Files
homelable/backend/tests/test_http_probe.py
T
Pouzor 6fa1b1a3d0 fix(scan): never send an HTTP GET to a raw printing port
A printer treats whatever bytes land on TCP/9100 as a print job, so our
probe's "GET / HTTP/1.1" came out of the tray as a page of plaintext.

Two paths reached it, and neither could be configured away — 9100 is
hard-coded in the scanner's port list, and user ranges only ever add to
that list:

- the deep-scan HTTP probe, once per scan;
- the status checker, every 60 s for as long as the node exists, which is
  the one that turns a scan annoyance into a ream of paper.

Both already had a non-HTTP port denylist; 515 and 9100-9107 were simply
missing from it. nmap ships `Exclude T:9100-9107` for this exact reason,
which is why the -sV pass never triggered it and only our own probes did.

Node Exporter also lives on 9100 and loses its status check as a result.
A grey dot is the cheaper mistake. Its fingerprint entry is port-match
only, so discovery and labelling are unaffected.

Fixes #404

ha-relevant: yes
2026-09-03 23:15:36 +02:00

252 lines
8.7 KiB
Python

"""Tests for the HTTP probe used by deep-scan service identification."""
from unittest.mock import patch
import httpx
import pytest
from app.services.http_probe import (
_MAX_BODY_BYTES,
_extract_title,
probe_open_ports,
probe_port,
)
def _response(text: str = "", headers: dict | None = None, status: int = 200) -> httpx.Response:
return httpx.Response(status_code=status, text=text, headers=headers or {})
class _TransportClient:
"""
Patch target for httpx.AsyncClient that routes through a MockTransport.
Real client, fake network: the probe exercises the genuine httpx request
path (including .stream() and aiter_bytes()) instead of a mock that would
happily accept any call shape. `requests` records what was actually sent.
"""
def __init__(self, handler):
self._handler = handler
# Bound before patching, so building the real client here does not
# recurse back into this stand-in.
self._real = httpx.AsyncClient
self.kwargs: list[dict] = []
self.requests: list[httpx.Request] = []
def _record(self, request: httpx.Request) -> httpx.Response:
self.requests.append(request)
return self._handler(request)
def __call__(self, **kwargs):
self.kwargs.append(dict(kwargs))
kwargs.pop("verify", None)
return self._real(transport=httpx.MockTransport(self._record), **kwargs)
def _patch_client(handler) -> tuple:
"""Return (context manager, factory) patching http_probe's AsyncClient."""
factory = _TransportClient(handler)
return patch("app.services.http_probe.httpx.AsyncClient", factory), factory
# ── _extract_title ──────────────────────────────────────────────────────────
def test_extract_title_basic():
assert _extract_title("<html><title>Jellyfin</title></html>") == "Jellyfin"
def test_extract_title_collapses_whitespace():
assert _extract_title("<title>\n My App\n</title>") == "My App"
def test_extract_title_missing():
assert _extract_title("<html><body>no title</body></html>") is None
def test_extract_title_case_insensitive():
assert _extract_title("<TITLE>Portainer</TITLE>") == "Portainer"
# ── probe_port ──────────────────────────────────────────────────────────────
@pytest.mark.asyncio
async def test_probe_port_reads_title():
ctx, _ = _patch_client(lambda req: _response("<title>Jellyfin</title>"))
with ctx:
result = await probe_port("10.0.0.5", 8096)
assert result == {"title": "Jellyfin", "headers": {}}
@pytest.mark.asyncio
async def test_probe_port_reads_headers():
ctx, _ = _patch_client(
lambda req: _response("", headers={"Server": "nginx", "X-Powered-By": "Express"})
)
with ctx:
result = await probe_port("10.0.0.5", 3000)
assert result["headers"] == {"Server": "nginx", "X-Powered-By": "Express"}
@pytest.mark.asyncio
async def test_probe_port_falls_back_to_http():
# https raises, http succeeds
def handler(request):
if str(request.url).startswith("https"):
raise httpx.ConnectError("tls fail")
return _response("<title>HTTP App</title>")
ctx, factory = _patch_client(handler)
with ctx:
result = await probe_port("10.0.0.5", 8080)
assert result["title"] == "HTTP App"
assert len(factory.requests) == 2 # tried https then http
@pytest.mark.asyncio
async def test_probe_port_no_signal_returns_none():
ctx, _ = _patch_client(lambda req: _response(""))
with ctx:
result = await probe_port("10.0.0.5", 8080)
assert result is None
@pytest.mark.asyncio
async def test_probe_port_timeout_returns_none():
def handler(request):
raise httpx.TimeoutException("slow")
ctx, _ = _patch_client(handler)
with ctx:
result = await probe_port("10.0.0.5", 8080)
assert result is None
@pytest.mark.asyncio
async def test_probe_port_skips_non_http_ports():
# SSH should never trigger an HTTP request
ctx, factory = _patch_client(lambda req: _response("<title>nope</title>"))
with ctx:
result = await probe_port("10.0.0.5", 22)
assert result is None
assert factory.requests == []
@pytest.mark.parametrize("port", [515, 9100, 9101, 9107])
@pytest.mark.asyncio
async def test_probe_port_never_touches_a_raw_printing_port(port):
"""Issue #404: a printer prints whatever bytes reach 9100, GET line included."""
ctx, factory = _patch_client(lambda req: _response("<title>nope</title>"))
with ctx:
result = await probe_port("10.0.0.5", port)
assert result is None
assert factory.requests == []
@pytest.mark.asyncio
async def test_probe_open_ports_leaves_a_printer_port_alone():
"""The batch path must skip it too, without dropping the port from the result."""
ports = [{"port": 8096, "protocol": "tcp"}, {"port": 9100, "protocol": "tcp"}]
ctx, factory = _patch_client(lambda req: _response("<title>Jellyfin</title>"))
with ctx:
result = await probe_open_ports("10.0.0.5", ports)
by_port = {p["port"]: p for p in result}
assert by_port[9100]["http_signals"] is None
assert by_port[8096]["http_signals"]["title"] == "Jellyfin"
assert all(":9100" not in str(r.url) for r in factory.requests)
@pytest.mark.asyncio
async def test_probe_port_verify_tls_flag_passed():
ctx, factory = _patch_client(lambda req: _response("<title>X</title>"))
with ctx:
await probe_port("10.0.0.5", 8443, verify_tls=True)
assert factory.kwargs[0]["verify"] is True
# ── endless bodies (issue #375) ─────────────────────────────────────────────
_CHUNK_SIZE = 16 * 1024
def _endless_body(counter: dict, head: bytes = b""):
"""
A body that never ends and declares no Content-Length. Bounded at 512
chunks so a regression fails the test instead of hanging the suite.
"""
async def gen():
if head:
counter["bytes"] += len(head)
yield head
for _ in range(512):
counter["bytes"] += _CHUNK_SIZE
yield b"\0" * _CHUNK_SIZE
return gen()
@pytest.mark.asyncio
async def test_probe_caps_the_download_of_an_endless_body():
# _MAX_BODY_BYTES caps the download, not just the <title> scan: the body is
# streamed and the connection dropped once we hold enough. Allow one chunk
# of overshoot — the read stops on a chunk boundary.
counter = {"bytes": 0}
def handler(request):
# Plain HTTP only, like the reproducer, so the counter covers one probe.
if str(request.url).startswith("https"):
raise httpx.ConnectError("no tls")
return httpx.Response(
200,
headers={"Content-Type": "application/octet-stream"},
content=_endless_body(counter),
)
ctx, _ = _patch_client(handler)
with ctx:
result = await probe_port("10.0.0.5", 8095)
assert result is None # null bytes carry no title and no signal header
assert counter["bytes"] <= _MAX_BODY_BYTES + _CHUNK_SIZE
@pytest.mark.asyncio
async def test_probe_still_reads_a_title_from_an_endless_body():
# Stopping early must not cost us the signal: a <title> in the first chunk
# is still found even though the rest of the stream is abandoned.
counter = {"bytes": 0}
def handler(request):
if str(request.url).startswith("https"):
raise httpx.ConnectError("no tls")
return httpx.Response(
200,
headers={"Content-Type": "text/html"},
content=_endless_body(counter, head=b"<html><title>Jellyfin</title>"),
)
ctx, _ = _patch_client(handler)
with ctx:
result = await probe_port("10.0.0.5", 8096)
assert result["title"] == "Jellyfin"
assert counter["bytes"] <= _MAX_BODY_BYTES + _CHUNK_SIZE
# ── probe_open_ports ─────────────────────────────────────────────────────────
@pytest.mark.asyncio
async def test_probe_open_ports_enriches_each_port():
def handler(request):
if ":8096" in str(request.url):
return _response("<title>Jellyfin</title>")
return _response("")
ports = [{"port": 8096, "protocol": "tcp"}, {"port": 9999, "protocol": "tcp"}]
ctx, _ = _patch_client(handler)
with ctx:
result = await probe_open_ports("10.0.0.5", ports)
by_port = {p["port"]: p for p in result}
assert by_port[8096]["http_signals"]["title"] == "Jellyfin"
assert by_port[9999]["http_signals"] is None