wildduck/lib/filter-handler.js

747 lines
24 KiB
JavaScript
Raw Normal View History

2017-10-18 17:42:51 +08:00
'use strict';
const log = require('npmlog');
const ObjectID = require('mongodb').ObjectID;
const forward = require('./forward');
const autoreply = require('./autoreply');
2017-12-21 20:24:28 +08:00
const Maildropper = require('./maildropper');
2017-12-22 21:10:32 +08:00
const tools = require('./tools');
2017-12-27 21:22:48 +08:00
const consts = require('./consts');
2019-10-01 16:22:10 +08:00
const util = require('util');
2017-10-18 17:42:51 +08:00
class FilterHandler {
constructor(options) {
2017-12-21 20:24:28 +08:00
this.db = options.db;
2017-10-18 17:42:51 +08:00
this.messageHandler = options.messageHandler;
2019-10-01 16:22:10 +08:00
this.prepareMessage = util.promisify(this.messageHandler.prepareMessage.bind(this.messageHandler));
this.encryptMessage = util.promisify(this.messageHandler.encryptMessage.bind(this.messageHandler));
this.addMessage = util.promisify((...args) => {
let callback = args.pop();
this.messageHandler.add(...args, (err, status, data) => {
if (err) {
return callback(err);
}
return callback(null, { status, data });
});
});
this.ttlcounter = util.promisify(this.messageHandler.counters.ttlcounter.bind(this.messageHandler.counters));
this.forward = util.promisify(forward);
this.autoreply = util.promisify(autoreply);
2017-12-21 20:24:28 +08:00
this.maildrop = new Maildropper({
db: this.db,
zone: options.sender.zone,
collection: options.sender.collection,
gfs: options.sender.gfs
});
2017-10-18 17:42:51 +08:00
}
getUserData(address, callback) {
let query = {};
if (!address) {
return callback(null, false);
}
if (typeof address === 'object' && address._id) {
return callback(null, address);
}
let collection;
2018-04-29 03:44:38 +08:00
if (tools.isId(address)) {
2017-10-18 17:42:51 +08:00
query._id = new ObjectID(address);
collection = 'users';
} else if (typeof address !== 'string') {
return callback(null, false);
} else if (address.indexOf('@') >= 0) {
2018-05-11 19:39:23 +08:00
query.addrview = tools.uview(address);
2017-10-18 17:42:51 +08:00
collection = 'addresses';
} else {
query.unameview = address.replace(/\./g, '');
collection = 'users';
}
let fields = {
name: true,
forwards: true,
2018-01-21 03:38:56 +08:00
targets: true,
2017-10-18 17:42:51 +08:00
autoreply: true,
encryptMessages: true,
2017-10-30 19:41:53 +08:00
encryptForwarded: true,
2018-01-30 22:14:15 +08:00
pubKey: true,
2019-10-02 16:35:31 +08:00
spamLevel: true
2017-10-18 17:42:51 +08:00
};
if (collection === 'users') {
2017-12-21 20:24:28 +08:00
return this.db.users.collection('users').findOne(
2017-10-18 17:42:51 +08:00
query,
{
projection: fields
2017-10-18 17:42:51 +08:00
},
callback
);
}
2017-12-21 20:24:28 +08:00
return this.db.users.collection('addresses').findOne(query, (err, addressData) => {
2017-10-18 17:42:51 +08:00
if (err) {
return callback(err);
}
2017-12-27 19:32:57 +08:00
if (!addressData || !!addressData.user) {
2017-10-18 17:42:51 +08:00
return callback(null, false);
}
2017-12-21 20:24:28 +08:00
return this.db.users.collection('users').findOne(
{
_id: addressData.user
},
2017-10-18 17:42:51 +08:00
{
projection: fields
2017-10-18 17:42:51 +08:00
},
callback
);
});
}
process(options, callback) {
this.getUserData(options.user || options.recipient, (err, userData) => {
if (err) {
return callback(err);
}
2019-10-01 16:22:10 +08:00
2017-10-18 17:42:51 +08:00
if (!userData) {
return callback(null, false);
}
2019-10-01 16:22:10 +08:00
this.storeMessage(userData, options)
.then(status => callback(null, status.response, status.prepared))
.catch(callback);
2017-10-18 17:42:51 +08:00
});
}
2019-10-01 16:22:10 +08:00
async storeMessage(userData, options) {
2017-10-18 17:42:51 +08:00
let sender = options.sender || '';
let recipient = options.recipient || userData.address;
2018-09-21 17:44:07 +08:00
let filterResults = [];
2017-10-18 17:42:51 +08:00
// create Delivered-To and Return-Path headers
let extraHeader = Buffer.from(['Delivered-To: ' + recipient, 'Return-Path: <' + sender + '>'].join('\r\n') + '\r\n');
let chunks = options.chunks;
let chunklen = options.chunklen;
if (!chunks && options.raw) {
chunks = [options.raw];
chunklen = options.raw.length;
}
2019-10-01 16:22:10 +08:00
let rawchunks = chunks;
2017-11-10 21:04:58 +08:00
2019-10-01 16:22:10 +08:00
let prepared;
2019-10-01 16:22:10 +08:00
if (options.mimeTree) {
if (options.mimeTree && options.mimeTree.header) {
// remove old headers
if (/^Delivered-To/.test(options.mimeTree.header[0])) {
options.mimeTree.header.shift();
}
if (/^Return-Path/.test(options.mimeTree.header[0])) {
options.mimeTree.header.shift();
}
2017-11-10 21:04:58 +08:00
}
2019-10-01 16:22:10 +08:00
prepared = await this.prepareMessage({
mimeTree: options.mimeTree
});
} else {
let raw = Buffer.concat(chunks, chunklen);
prepared = await this.prepareMessage({
raw
});
}
2019-10-01 16:22:10 +08:00
prepared.mimeTree.header.unshift('Return-Path: <' + sender + '>');
prepared.mimeTree.header.unshift('Delivered-To: ' + recipient);
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
prepared.mimeTree.parsedHeader['return-path'] = '<' + sender + '>';
prepared.mimeTree.parsedHeader['delivered-to'] = '<' + recipient + '>';
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
prepared.size = this.messageHandler.indexer.getSize(prepared.mimeTree);
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
let maildata = options.maildata || this.messageHandler.indexer.getMaildata(prepared.mimeTree);
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
// default flags are empty
let flags = [];
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
// default mailbox target is INBOX
let mailboxQueryKey = 'path';
let mailboxQueryValue = 'INBOX';
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
let meta = options.meta || {};
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
let received = [].concat((prepared.mimeTree.parsedHeader && prepared.mimeTree.parsedHeader.received) || []);
if (received.length) {
let receivedData = parseReceived(received[0]);
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
if (!receivedData.has('id') && received.length > 1) {
receivedData = parseReceived(received[1]);
}
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
if (receivedData.has('with')) {
meta.transtype = receivedData.get('with');
}
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
if (receivedData.has('id')) {
meta.queueId = receivedData.get('id');
}
2017-10-27 16:50:37 +08:00
2019-10-01 16:22:10 +08:00
if (receivedData.has('from')) {
meta.origin = receivedData.get('from');
2017-11-10 21:04:58 +08:00
}
2019-10-01 16:22:10 +08:00
}
2017-10-18 17:42:51 +08:00
2019-10-01 16:22:10 +08:00
let filters = [];
try {
filters = await this.db.database
2017-11-10 21:04:58 +08:00
.collection('filters')
.find({
2019-10-01 16:22:10 +08:00
user: userData._id,
disabled: { $ne: true }
2017-11-10 21:04:58 +08:00
})
.sort({
_id: 1
})
2019-10-01 16:22:10 +08:00
.toArray();
} catch (err) {
// ignore as filters are not so importand
}
2017-11-10 21:04:58 +08:00
2019-10-01 16:22:10 +08:00
let isEncrypted = false;
let forwardTargets = new Map();
2018-09-20 18:10:10 +08:00
2019-10-01 16:22:10 +08:00
let matchingFilters = [];
let filterActions = new Map();
2018-01-30 22:14:15 +08:00
2019-10-01 16:22:10 +08:00
for (let filterData of filters) {
if (!(await checkFilter(filterData, prepared, maildata))) {
continue;
}
matchingFilters.push(filterData.id || filterData._id);
// apply matching filter
Object.keys(filterData.action).forEach(key => {
if (key === 'targets') {
[].concat(filterData.action[key] || []).forEach(target => {
forwardTargets.set(target.value, target);
});
return;
}
// if a previous filter already has set a value then do not touch it
if (!filterActions.has(key)) {
filterActions.set(key, filterData.action[key]);
}
});
}
if (typeof userData.spamLevel === 'number' && userData.spamLevel >= 0) {
let isSpam;
if (userData.spamLevel === 0) {
// always mark as spam
isSpam = true;
} else if (userData.spamLevel === 100) {
// always mark as ham
isSpam = false;
filterActions.set('spam', false);
} else if (!filterActions.has('spam')) {
let spamScore;
switch (meta.spamAction) {
case 'reject':
spamScore = 75;
break;
case 'rewrite subject':
case 'soft reject':
spamScore = 50;
break;
case 'greylist':
case 'add header':
spamScore = 25;
break;
case 'no action':
default:
spamScore = 0;
break;
}
isSpam = spamScore >= userData.spamLevel;
}
if (isSpam && !filterActions.has('spam')) {
// only update if spam decision is not yet made
filterActions.set('spam', true);
}
}
let encryptMessage = async () => {
if (isEncrypted) {
return;
}
let encrypted = await this.encryptMessage(userData.pubKey, {
chunks,
chunklen
});
if (encrypted) {
chunks = [encrypted];
chunklen = encrypted.length;
isEncrypted = true;
prepared = await this.prepareMessage({
raw: Buffer.concat([extraHeader, encrypted])
});
maildata = this.messageHandler.indexer.getMaildata(prepared.mimeTree);
}
};
let forwardMessage = async () => {
if (!filterActions.get('delete')) {
// forward to default recipient only if the message is not deleted
if (userData.targets && userData.targets.length) {
userData.targets.forEach(targetData => {
let key = targetData.value;
if (targetData.type === 'relay') {
targetData.recipient = userData.address;
key = `${targetData.recipient}:${targetData.value}`;
2017-12-22 21:10:32 +08:00
}
2019-10-01 16:22:10 +08:00
forwardTargets.set(key, targetData);
});
} else if (options.targets && options.targets.length) {
// if user had no special targets, then use default ones provided by options
options.targets.forEach(targetData => {
let key = targetData.value;
if (targetData.type === 'relay') {
targetData.recipient = userData.address;
key = `${targetData.recipient}:${targetData.value}`;
2017-12-22 21:10:32 +08:00
}
2019-10-01 16:22:10 +08:00
forwardTargets.set(key, targetData);
});
}
}
2017-12-22 21:10:32 +08:00
2019-10-01 16:22:10 +08:00
// never forward messages marked as spam
if (!forwardTargets.size || filterActions.get('spam')) {
return;
}
2017-12-22 21:10:32 +08:00
2019-10-01 16:22:10 +08:00
// check limiting counters
try {
let counterResult = await this.ttlcounter(
'wdf:' + userData._id.toString(),
forwardTargets.size,
userData.forwards || consts.MAX_FORWARDS,
false
);
if (!counterResult.success) {
log.silly('Filter', 'FRWRDFAIL key=%s error=%s', 'wdf:' + userData._id.toString(), 'Precondition failed');
return false;
}
} catch (err) {
// failed checks, ignore
log.error('Filter', 'FRWRDFAIL key=%s error=%s', 'wdf:' + userData._id.toString(), err.message);
}
2017-12-22 21:10:32 +08:00
2019-10-01 16:22:10 +08:00
if (userData.encryptForwarded && userData.pubKey) {
await encryptMessage();
}
2017-11-10 21:04:58 +08:00
2019-10-22 03:46:00 +08:00
let forwardResponse = await this.forward({
2019-10-01 16:22:10 +08:00
db: this.db,
maildrop: this.maildrop,
parentId: prepared.id,
userData,
sender,
recipient,
targets:
(forwardTargets.size &&
Array.from(forwardTargets).map(row => ({
type: row[1].type,
value: row[1].value,
recipient
}))) ||
false,
chunks,
chunklen
});
return forwardResponse;
};
let sendAutoreply = async () => {
// never reply to messages marked as spam
if (!sender || !userData.autoreply || filterActions.get('spam') || options.disableAutoreply) {
return;
}
let curtime = new Date();
let autoreplyData = await this.db.database.collection('autoreplies').findOne({
user: userData._id
});
if (!autoreplyData || !autoreplyData.status) {
return false;
}
if (autoreplyData.start && autoreplyData.start > curtime) {
return false;
}
if (autoreplyData.end && autoreplyData.end < curtime) {
return false;
}
let autoreplyResponse = await autoreply(
{
db: this.db,
maildrop: this.maildrop,
parentId: prepared.id,
userData,
sender,
recipient,
chunks,
chunklen,
messageHandler: this.messageHandler
},
autoreplyData
);
return autoreplyResponse;
};
let outbound = [];
try {
let forwardId = await forwardMessage();
if (forwardId) {
filterResults.push({
forward: Array.from(forwardTargets)
.map(row => row[0])
.join(','),
'forward-queue-id': forwardId
2017-10-18 17:42:51 +08:00
});
2019-10-01 16:22:10 +08:00
outbound.push(forwardId);
log.silly(
'Filter',
'%s FRWRDOK id=%s from=%s to=%s target=%s',
prepared.id.toString(),
forwardId,
sender,
recipient,
Array.from(forwardTargets)
.map(row => row[0])
.join(',')
);
}
} catch (err) {
log.error(
'Filter',
'%s FRWRDFAIL from=%s to=%s target=%s error=%s',
prepared.id.toString(),
sender,
recipient,
Array.from(forwardTargets)
.map(row => row[0])
.join(','),
err.message
);
}
try {
let autoreplyId = await sendAutoreply();
if (autoreplyId) {
filterResults.push({ autoreply: sender, 'autoreply-queue-id': autoreplyId });
outbound.push(autoreplyId);
log.silly('Filter', '%s AUTOREPLYOK id=%s from=%s to=%s', prepared.id.toString(), autoreplyId, '<>', sender);
}
} catch (err) {
log.error('Filter', '%s AUTOREPLYFAIL from=%s to=%s error=%s', prepared.id.toString(), '<>', sender, err.message);
}
if (filterActions.get('delete')) {
// nothing to do with the message, just continue
let err = new Error(`Message dropped by policy [${matchingFilters.map(id => (id || '').toString()).join(':')}]`);
err.code = 'DroppedByPolicy';
filterResults.push({ delete: true });
return {
userData,
response: 'Message dropped by policy as ' + prepared.id.toString(),
error: err
};
}
// apply filter results to the message
filterActions.forEach((value, key) => {
switch (key) {
case 'spam':
if (value > 0) {
// positive value is spam
mailboxQueryKey = 'specialUse';
mailboxQueryValue = '\\Junk';
filterResults.push({ spam: true });
}
break;
case 'seen':
if (value) {
flags.push('\\Seen');
filterResults.push({ seen: true });
}
break;
case 'flag':
if (value) {
flags.push('\\Flagged');
filterResults.push({ flagged: true });
}
break;
case 'mailbox':
if (value) {
// positive value is spam
mailboxQueryKey = 'mailbox';
mailboxQueryValue = value;
}
break;
}
2017-11-10 21:04:58 +08:00
});
2019-10-01 16:22:10 +08:00
let messageOpts = {
user: userData._id,
[mailboxQueryKey]: mailboxQueryValue,
inboxDefault: true, // if mailbox is not found, then store to INBOX
prepared,
maildata,
meta,
filters: matchingFilters,
date: false,
flags,
rawchunks
};
if (options.verificationResults) {
messageOpts.verificationResults = options.verificationResults;
}
if (outbound && outbound.length) {
messageOpts.outbound = [].concat(outbound || []);
}
if (forwardTargets.size) {
messageOpts.forwardTargets = Array.from(forwardTargets).map(row => ({
type: row[1].type,
value: row[1].value
}));
}
if (userData.encryptMessages && userData.pubKey) {
await encryptMessage();
if (isEncrypted) {
// make sure we have the updated message structure values
messageOpts.prepared = prepared;
messageOpts.maildata = maildata;
filterResults.push({ encrypted: true });
}
}
if (matchingFilters && matchingFilters.length) {
filterResults.push({
matchingFilters: matchingFilters.map(id => (id || '').toString())
});
}
try {
let { data } = await this.addMessage(messageOpts);
if (data) {
filterResults.push({
mailbox: data.mailbox && data.mailbox.toString(),
id: data.id && data.id.toString()
});
return {
response: {
userData,
response: 'Message stored as ' + data.id.toString(),
filterResults
},
prepared:
(!isEncrypted && {
// reuse parsed values
mimeTree: messageOpts.prepared.mimeTree,
maildata: messageOpts.maildata
}) ||
false
};
}
} catch (err) {
return {
response: {
userData,
response: err,
filterResults,
error: err
},
prepared:
(!isEncrypted && {
// reuse parsed values
mimeTree: messageOpts.prepared.mimeTree,
maildata: messageOpts.maildata
}) ||
false
};
}
2017-10-18 17:42:51 +08:00
}
}
2019-10-01 16:22:10 +08:00
async function checkFilter(filterData, prepared, maildata) {
if (!filterData || !filterData.query) {
2017-10-18 17:42:51 +08:00
return false;
}
2019-10-01 16:22:10 +08:00
let query = filterData.query;
2017-10-18 17:42:51 +08:00
// prepare filter data
let headerFilters = new Map();
if (query.headers) {
Object.keys(query.headers).forEach(key => {
2018-11-02 16:18:24 +08:00
let header = key.replace(/[A-Z]+/g, c => '-' + c.toLowerCase());
2017-10-18 17:42:51 +08:00
let value = query.headers[key];
if (!value || !value.isRegex) {
value = (query.headers[key] || '').toString().toLowerCase();
}
2018-10-19 15:35:27 +08:00
if (value) {
2018-11-02 16:18:24 +08:00
if (header === 'list-id' && typeof value === 'string' && value.indexOf('<') >= 0) {
// only check actual ID part of the List-ID header
let m = value.match(/<([^>]+)/);
if (m && m[1] && m[1].trim()) {
value = m[1].trim();
}
}
headerFilters.set(header, value);
2018-10-19 00:07:13 +08:00
}
2017-10-18 17:42:51 +08:00
});
}
// check headers
if (headerFilters.size) {
let headerMatches = new Set();
for (let j = prepared.headers.length - 1; j >= 0; j--) {
let header = prepared.headers[j];
2018-10-19 15:35:27 +08:00
let key = header.key;
switch (key) {
case 'cc':
if (!headerFilters.get('cc')) {
// match cc against to query
key = 'to';
}
break;
}
if (headerFilters.has(key)) {
let check = headerFilters.get(key);
2018-11-02 16:18:24 +08:00
let value = (header.value || '').toString();
2018-10-19 15:35:27 +08:00
if (check.isRegex) {
2018-11-02 16:18:24 +08:00
if (check.test(value)) {
2018-10-19 15:35:27 +08:00
headerMatches.add(key);
}
2018-11-02 16:18:24 +08:00
} else if (value === check || value.indexOf(check) >= 0) {
2018-10-19 15:35:27 +08:00
headerMatches.add(key);
2017-10-18 17:42:51 +08:00
}
}
}
if (headerMatches.size < headerFilters.size) {
// not enough matches
return false;
}
}
if (typeof query.ha === 'boolean') {
let hasAttachments = maildata.attachments && maildata.attachments.length;
// true ha means attachmens must exist
if (!hasAttachments && query.ha) {
return false;
}
}
if (query.size) {
let messageSize = prepared.size;
let filterSize = Math.abs(query.size);
// negative value means "less than", positive means "more than"
if (query.size < 0 && messageSize > filterSize) {
return false;
}
if (query.size > 0 && messageSize < filterSize) {
return false;
}
}
if (
query.text &&
maildata.text
.toLowerCase()
.replace(/\s+/g, ' ')
.indexOf(query.text.toLowerCase()) < 0
) {
// message plaintext does not match the text field value
return false;
}
2019-10-01 16:22:10 +08:00
log.silly('Filter', 'Filter %s matched message %s', filterData.id, prepared.id);
2017-10-18 17:42:51 +08:00
// we reached the end of the filter, so this means we have a match
2019-10-01 16:22:10 +08:00
return filterData;
2017-10-18 17:42:51 +08:00
}
module.exports = FilterHandler;
function parseReceived(str) {
let result = new Map();
str.trim()
.replace(/[\r\n\s\t]+/g, ' ')
.trim()
.replace(/(^|\s+)(from|by|with|id|for)\s+([^\s]+)/gi, (m, p, k, v) => {
let key = k.toLowerCase();
let value = v;
if (!result.has(key)) {
result.set(key, value);
}
});
let date = str
.split(';')
.pop()
.trim();
if (date) {
date = new Date(date);
if (date.getTime()) {
result.set('date', date);
}
}
return result;
}