2 -- Copyright (C) 2008-2010 Matthew Wild
3 -- Copyright (C) 2008-2010 Waqas Hussain
5 -- This project is MIT/X11 licensed. Please see the
6 -- COPYING file in the source package for more information.
9 if module:get_host_type() ~= "component" then
10 error("Don't load mod_component manually, it should be for a component, please see http://prosody.im/doc/components", 0);
13 local hosts = _G.hosts;
15 local t_concat = table.concat;
17 local sha1 = require "util.hashes".sha1;
18 local st = require "util.stanza";
20 local log = module._log;
22 local main_session, send;
24 local function on_destroy(session, err)
25 if main_session == session then
28 session.on_destroy = nil;
32 local function handle_stanza(event)
33 local stanza = event.stanza;
35 stanza.attr.xmlns = nil;
38 log("warn", "Stanza being handled by default component; bouncing error for: %s", stanza:top_tag());
39 if stanza.attr.type ~= "error" and stanza.attr.type ~= "result" then
40 event.origin.send(st.error_reply(stanza, "wait", "service-unavailable", "Component unavailable"));
46 module:hook("iq/bare", handle_stanza);
47 module:hook("message/bare", handle_stanza);
48 module:hook("presence/bare", handle_stanza);
49 module:hook("iq/full", handle_stanza);
50 module:hook("message/full", handle_stanza);
51 module:hook("presence/full", handle_stanza);
52 module:hook("iq/host", handle_stanza);
53 module:hook("message/host", handle_stanza);
54 module:hook("presence/host", handle_stanza);
56 --- Handle authentication attempts by components
57 function handle_component_auth(event)
58 local session, stanza = event.origin, event.stanza;
60 if session.type ~= "component" then return; end
61 if main_session == session then return; end
63 log("info", "Handling component auth");
64 if (not session.host) or #stanza.tags > 0 then
65 (session.log or log)("warn", "Component handshake invalid");
66 session:close("not-authorized");
70 local secret = module:get_option("component_secret");
72 (session.log or log)("warn", "Component attempted to identify as %s, but component_secret is not set", session.host);
73 session:close("not-authorized");
77 local supplied_token = t_concat(stanza);
78 local calculated_token = sha1(session.streamid..secret, true);
79 if supplied_token:lower() ~= calculated_token:lower() then
80 log("info", "Component for %s authentication failed", session.host);
81 session:close{ condition = "not-authorized", text = "Given token does not match calculated token" };
86 log("info", "Component authenticated: %s", session.host);
88 session.component_validate_from = module:get_option_boolean("validate_from_addresses") ~= false;
90 -- If component not already created for this host, create one now
91 if not main_session then
93 main_session = session;
94 session.on_destroy = on_destroy;
95 log("info", "Component successfully registered");
96 session.send(st.stanza("handshake"));
98 log("error", "Multiple components bound to the same address, first one wins (TODO: Implement stanza distribution)");
99 session:close{ condition = "conflict", text = "Component already connected" };
105 module:hook("stanza/jabber:component:accept:handshake", handle_component_auth);