mirror of
https://github.com/truewhile/MeBox.git
synced 2026-09-28 11:16:37 +08:00
155 lines
5.2 KiB
Go
155 lines
5.2 KiB
Go
package service
|
|
|
|
import (
|
|
"bytes"
|
|
"net/http"
|
|
"net/http/httptest"
|
|
"os"
|
|
"path/filepath"
|
|
"testing"
|
|
|
|
"go.uber.org/zap"
|
|
|
|
"github.com/truewhile/MeBox/internal/config"
|
|
)
|
|
|
|
func TestIsLocalImagePathAcceptsLegacyImgSidecar(t *testing.T) {
|
|
if !isLocalImagePath(filepath.Join(t.TempDir(), "movie-poster.img")) {
|
|
t.Fatal("legacy .img sidecar should remain displayable")
|
|
}
|
|
}
|
|
|
|
var testJPEG = []byte{
|
|
0xff, 0xd8, 0xff, 0xe0, 0x00, 0x10, 'J', 'F', 'I', 'F',
|
|
0x00, 0x01, 0x01, 0x00, 0x00, 0x01, 0x00, 0x01,
|
|
0x00, 0x00, 0xff, 0xd9,
|
|
}
|
|
|
|
func TestImageProxyServesLocalImagePath(t *testing.T) {
|
|
dir := t.TempDir()
|
|
imagePath := filepath.Join(dir, "episode-thumb.png")
|
|
if err := os.WriteFile(imagePath, transparent1x1PNG, 0o644); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
|
|
proxy := NewImageProxy(&config.Config{Cache: config.CacheConfig{CacheDir: filepath.Join(dir, "cache")}}, zap.NewNop())
|
|
req := httptest.NewRequest(http.MethodGet, "/api/img", nil)
|
|
rec := httptest.NewRecorder()
|
|
|
|
if err := proxy.Serve(t.Context(), rec, req, imagePath); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
if rec.Code != http.StatusOK {
|
|
t.Fatalf("status = %d, want 200", rec.Code)
|
|
}
|
|
if got := rec.Header().Get("Content-Type"); got == "" {
|
|
t.Fatal("missing content-type")
|
|
}
|
|
if rec.Body.Len() != len(transparent1x1PNG) {
|
|
t.Fatalf("body length = %d, want %d", rec.Body.Len(), len(transparent1x1PNG))
|
|
}
|
|
}
|
|
|
|
// TestImageProxyServesPosterUnderLibraryRoot verifies that sidecar posters
|
|
// stored under an arbitrary media library root (not the configured
|
|
// data/cache/movies dirs) are served rather than dropped to the placeholder.
|
|
// This is the regression that made web/Emby posters disappear.
|
|
func TestImageProxyServesPosterUnderLibraryRoot(t *testing.T) {
|
|
libDir := t.TempDir()
|
|
posterPath := filepath.Join(libDir, "Inception (2010)", "poster.png")
|
|
if err := os.MkdirAll(filepath.Dir(posterPath), 0o755); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
realPoster := testJPEG
|
|
if err := os.WriteFile(posterPath, realPoster, 0o644); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
|
|
proxy := NewImageProxy(&config.Config{Cache: config.CacheConfig{CacheDir: filepath.Join(t.TempDir(), "cache")}}, zap.NewNop())
|
|
|
|
// Without a library-roots provider the poster lives outside every allowed
|
|
// root, so it must fall back to the transparent placeholder.
|
|
rec := httptest.NewRecorder()
|
|
if err := proxy.Serve(t.Context(), rec, httptest.NewRequest(http.MethodGet, "/api/img", nil), posterPath); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
if rec.Body.Len() != len(transparent1x1PNG) {
|
|
t.Fatalf("expected placeholder before provider set, got %d bytes", rec.Body.Len())
|
|
}
|
|
|
|
// Once the library root is known, the real poster bytes are served.
|
|
proxy.SetLibraryRootsProvider(func() []string { return []string{libDir} })
|
|
rec = httptest.NewRecorder()
|
|
if err := proxy.Serve(t.Context(), rec, httptest.NewRequest(http.MethodGet, "/api/img", nil), posterPath); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
if rec.Code != http.StatusOK {
|
|
t.Fatalf("status = %d, want 200", rec.Code)
|
|
}
|
|
if got := rec.Body.Bytes(); !bytes.Equal(got, realPoster) {
|
|
t.Fatalf("served %x, want real poster bytes", got)
|
|
}
|
|
etag := rec.Header().Get("ETag")
|
|
if etag == "" {
|
|
t.Fatal("expected static image ETag")
|
|
}
|
|
req := httptest.NewRequest(http.MethodGet, "/api/img", nil)
|
|
req.Header.Set("If-None-Match", etag)
|
|
rec = httptest.NewRecorder()
|
|
if err := proxy.Serve(t.Context(), rec, req, posterPath); err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
if rec.Code != http.StatusNotModified {
|
|
t.Fatalf("conditional status = %d, want 304", rec.Code)
|
|
}
|
|
if rec.Body.Len() != 0 {
|
|
t.Fatalf("conditional body length = %d, want 0", rec.Body.Len())
|
|
}
|
|
}
|
|
|
|
type imageRoundTripFunc func(*http.Request) (*http.Response, error)
|
|
|
|
func (f imageRoundTripFunc) RoundTrip(req *http.Request) (*http.Response, error) {
|
|
return f(req)
|
|
}
|
|
|
|
func TestIsPrivateHost(t *testing.T) {
|
|
blocked := []string{"127.0.0.1", "10.0.0.5", "192.168.1.10", "169.254.169.254", "0.0.0.0", "::1", ""}
|
|
for _, h := range blocked {
|
|
if !isPrivateHost(h) {
|
|
t.Errorf("isPrivateHost(%q) = false, want true (literal private/loopback IP)", h)
|
|
}
|
|
}
|
|
// Hostnames must NOT be blocked even though GFW DNS poisoning may resolve
|
|
// them to private/loopback IPs — blocking them broke legitimate posters.
|
|
allowed := []string{"image.tmdb.org", "lain.bgm.tv", "example.com", "8.8.8.8"}
|
|
for _, h := range allowed {
|
|
if isPrivateHost(h) {
|
|
t.Errorf("isPrivateHost(%q) = true, want false", h)
|
|
}
|
|
}
|
|
}
|
|
|
|
func TestImageProxyAllowedRemoteHostBypassesPrivateCheck(t *testing.T) {
|
|
proxy := NewImageProxy(&config.Config{Cache: config.CacheConfig{CacheDir: filepath.Join(t.TempDir(), "cache")}}, zap.NewNop())
|
|
|
|
rawURL := "http://192.168.1.100:8096/emby/Items/123/Images/Primary"
|
|
// Before setting allowed remote hosts, private host is rejected by validateURL
|
|
if _, err := proxy.validateURL(rawURL); err == nil {
|
|
t.Fatal("expected validateURL to reject private IP before whitelist")
|
|
}
|
|
|
|
// After configuring whitelist with the Emby host
|
|
proxy.SetAllowedRemoteHostsProvider(func() []string {
|
|
return []string{"192.168.1.100:8096"}
|
|
})
|
|
|
|
u, err := proxy.validateURL(rawURL)
|
|
if err != nil {
|
|
t.Fatalf("expected validateURL to allow whitelisted host, got: %v", err)
|
|
}
|
|
if u.Hostname() != "192.168.1.100" {
|
|
t.Fatalf("hostname = %s, want 192.168.1.100", u.Hostname())
|
|
}
|
|
}
|