o
    ç÷¡gâj  ã                
   @   sâ   d Z ddlZddlZddlZddlZddlZddlZddlmZ ddl	m
Z
 ddlmZ d\ZZzddlZW n eyJ Z zeZW Y dZ[ndZ[ww ddlmZmZ d	ZG d
d„ dƒZdd„ ZG dd„ dƒZG dd„ deƒZdS )z2
Configuration file (aka ``ssh_config``) support.
é    N)Úsha1)ÚStringIO)Úpartial)NNé   )ÚCouldNotCanonicalizeÚConfigParseErroré   c                   @   sØ   e Zd ZdZe d¡Zg d¢dgg d¢g d¢g d¢g d¢d	œZd
d„ Ze	dd„ ƒZ
e	dd„ ƒZe	dd„ ƒZdd„ Zdd„ Zd.dd„Zdd„ Zdd„ Zdd„ Zd d!„ Zd"d#„ Zd$d%„ Zd&d'„ Zd(d)„ Zd*d+„ Zd,d-„ ZdS )/Ú	SSHConfigaƒ  
    Representation of config information as stored in the format used by
    OpenSSH. Queries can be made via `lookup`. The format is described in
    OpenSSH's ``ssh_config`` man page. This class is provided primarily as a
    convenience to posix users (since the OpenSSH format is a de-facto
    standard on posix) but should work fine on Windows too.

    .. versionadded:: 1.6
    z(\w+)(?:\s*=\s*|\s+)(.+))ú%Cú%hú%lú%Lú%nú%pú%rú%ur   )r
   ú~ú%dr   r   r   r   )r   r   r   r   )r   r   r   )	r
   r   r   r   r   r   r   r   r   )ÚcontrolpathÚhostnameÚidentityfileÚproxycommandÚ	proxyjumpú
match-execc                 C   s
   g | _ dS )a†  
        Create a new OpenSSH config object.

        Note: the newer alternate constructors `from_path`, `from_file` and
        `from_text` are simpler to use, as they parse on instantiation. For
        example, instead of::

            config = SSHConfig()
            config.parse(open("some-path.config")

        you could::

            config = SSHConfig.from_file(open("some-path.config"))
            # Or more directly:
            config = SSHConfig.from_path("some-path.config")
            # Or if you have arbitrary ssh_config text from some other source:
            config = SSHConfig.from_text("Host foo\n\tUser bar")
        N)Ú_config)Úself© r   ú:/usr/local/lib/python3.10/dist-packages/paramiko/config.pyÚ__init__H   s   
zSSHConfig.__init__c                 C   s   |   t|ƒ¡S )zg
        Create a new, parsed `SSHConfig` from ``text`` string.

        .. versionadded:: 2.7
        )Ú	from_filer   )ÚclsÚtextr   r   r   Ú	from_text]   s   zSSHConfig.from_textc                 C   s6   t |ƒ�}|  |¡W  d  ƒ S 1 sw   Y  dS )zr
        Create a new, parsed `SSHConfig` from the file found at ``path``.

        .. versionadded:: 2.7
        N)Úopenr   )r    ÚpathÚflor   r   r   Ú	from_pathf   s   
$ÿzSSHConfig.from_pathc                 C   s   | ƒ }|  |¡ |S )zp
        Create a new, parsed `SSHConfig` from file-like object ``flo``.

        .. versionadded:: 2.7
        )Úparse)r    r%   Úobjr   r   r   r   p   s   
zSSHConfig.from_filec                 C   sL  dgi dœ}|D ]•}|  ¡ }|r| d¡rqt | j|¡}|s&td |¡ƒ‚| d¡ ¡ }| d¡}|dv rT| j	 
|¡ di i}|d	krL|  |¡|d	< q|  |¡|d
< q|dkre| ¡ dkred|d |< q| d¡ru| d¡ru|dd… }|dv r‘||d v r‰|d |  
|¡ q|g|d |< q||d vr�||d |< q| j	 
|¡ dS )zŽ
        Read an OpenSSH config from the given file object.

        :param file_obj: a file-like object to read the config file from
        Ú*)ÚhostÚconfigú#zUnparsable line {}r   é   )r*   Úmatchr+   r*   Úmatchesr   ÚnoneNú"éÿÿÿÿ)r   ÚlocalforwardÚremoteforward)ÚstripÚ
startswithÚrer.   ÚSETTINGS_REGEXr   ÚformatÚgroupÚlowerr   ÚappendÚ
_get_hostsÚ_get_matchesÚendswith)r   Úfile_objÚcontextÚliner.   ÚkeyÚvaluer   r   r   r'   {   s8   
€zSSHConfig.parsec                 C   sœ   | j |d�}d|vr||d< | dd¡dv }t| dd¡ƒ}|rC| d¡|krC|d	  ¡ }|  |||¡}||d< | j ||d
d
d�}|S | j ||dd
d�}|S )a  
        Return a dict (`SSHConfigDict`) of config options for a given hostname.

        The host-matching rules of OpenSSH's ``ssh_config`` man page are used:
        For each parameter, the first obtained value will be used.  The
        configuration files contain sections separated by ``Host`` and/or
        ``Match`` specifications, and that section is only applied for hosts
        which match the given patterns or keywords

        Since the first obtained value for each parameter is used, more host-
        specific declarations should be given near the beginning of the file,
        and general defaults at the end.

        The keys in the returned dict are all normalized to lowercase (look for
        ``"port"``, not ``"Port"``. The values are processed according to the
        rules for substitution variable expansion in ``ssh_config``.

        Finally, please see the docs for `SSHConfigDict` for deeper info on
        features such as optional type conversion methods, e.g.::

            conf = my_config.lookup('myhost')
            assert conf['passwordauthentication'] == 'yes'
            assert conf.as_bool('passwordauthentication') is True

        .. note::
            If there is no explicitly configured ``HostName`` value, it will be
            set to the being-looked-up hostname, which is as close as we can
            get to OpenSSH's behavior around that particular option.

        :param str hostname: the hostname to lookup

        .. versionchanged:: 2.5
            Returns `SSHConfigDict` objects instead of dict literals.
        .. versionchanged:: 2.7
            Added canonicalization support.
        .. versionchanged:: 2.7
            Added ``Match`` support.
        .. versionchanged:: 3.3
            Added ``Match final`` support.
        )r   r   ÚcanonicalizehostnameN)ÚyesÚalwaysÚcanonicalizemaxdotsr   Ú.ÚcanonicaldomainsT)Ú	canonicalÚfinalF)Ú_lookupÚgetÚintÚcountÚsplitÚcanonicalize)r   r   ÚoptionsÚcanonÚmaxdotsÚdomainsr   r   r   Úlookup·   s"   *ÿýÿzSSHConfig.lookupNFc                    sÀ   ˆd u rt ƒ ‰| jD ]K}|  | dg ¡|¡s$|  | dg ¡|||ˆ¡s$q
|d  ¡ D ]*\‰ }ˆ ˆvrA|d ur<|d d … n|ˆˆ < q*ˆ dkrTˆˆ   ‡ ‡fdd„|D ƒ¡ q*q
|r^|  ˆ|¡‰ˆS )Nr*   r/   r+   r   c                 3   s    � | ]}|ˆˆ  vr|V  qd S ©Nr   ©Ú.0Úx©rC   rS   r   r   Ú	<genexpr>  s   € ÿz$SSHConfig._lookup.<locals>.<genexpr>)ÚSSHConfigDictr   Ú_pattern_matchesrN   Ú_does_matchÚitemsÚextendÚ_expand_variables)r   r   rS   rK   rL   rA   rD   r   r\   r   rM   ù   s4   
ÿ
ûþ
ÿ€øzSSHConfig._lookupc              	   C   s‚   d}|D ].}d  ||¡}t||ƒ}|dur|d }nzt |¡}W n
 tjy+   Y nw |r2|  S q| dd¡dkr=|S t|ƒ‚)ag  
        Return canonicalized version of ``hostname``.

        :param str hostname: Target hostname.
        :param options: An `SSHConfigDict` from a previous lookup pass.
        :param domains: List of domains (e.g. ``["paramiko.org"]``).

        :returns: A canonicalized hostname if one was found, else ``None``.

        .. versionadded:: 2.7
        Fz{}.{}Nr   ÚcanonicalizefallbacklocalrF   )r9   Ú_addressfamily_host_lookupÚsocketÚgethostbynameÚgaierrorrN   r   )r   r   rS   rV   ÚfoundÚdomainÚ	candidateÚfamily_specificr   r   r   rR     s"   

ÿýzSSHConfig.canonicalizec                 C   s$   t ƒ }| jD ]	}| |d ¡ q|S )z‡
        Return the set of literal hostnames defined in the SSH config (both
        explicit hostnames and wildcard entries).
        r*   )Úsetr   Úupdate)r   ÚhostsÚentryr   r   r   Úget_hostnamesE  s   
zSSHConfig.get_hostnamesc                 C   sZ   t |dƒr
| d¡}d}|D ]}| d¡r"t ||dd … ¡r" dS t ||¡r*d}q|S )NrQ   ú,Fú!r   T)ÚhasattrrQ   r6   Úfnmatch)r   ÚpatternsÚtargetr.   Úpatternr   r   r   r_   O  s   

ÿ€zSSHConfig._pattern_matchesc                 C   sN  g }|d d … }t  ¡ }|r¥| d¡}	d }
| dd ¡}| dd ¡}|	d |	d }}|dkr6|  ||	¡r6dS |dkr=|}
nU|d	krCd
S |dkrR|pJ|}|  ||¡}
n@|dkr]|  ||¡}
n5|dkrl|pd|}|  ||¡}
n&|dkrw|  ||¡}
n|dkr’|  ||d|¡}td u r‰t‚tj	|dd
d�j
}
|
d urž|  |
|	¡rždS | |	¡ |s|S )Nr   r   ÚuserÚtypeÚparamrK   FrL   ÚallTr*   ÚoriginalhostÚ	localuserÚexecr   Ústdout)ÚhideÚwarn)ÚgetpassÚgetuserÚpoprN   Ú_should_failr_   Ú	_tokenizeÚinvokeÚinvoke_import_errorÚrunÚokr<   )r   Ú
match_listÚtarget_hostnamerK   rL   rS   ÚmatchedÚ
candidatesÚlocal_usernamerk   ÚpassedÚconfigured_hostÚconfigured_userÚtype_r{   Úhostvalry   Úexec_cmdr   r   r   r`   `  sL   
ÿ
Ò0zSSHConfig._does_matchc                 C   s   |d r|S | S )NÚnegater   )r   Ú
would_passrk   r   r   r   r†   ˜  s   zSSHConfig._should_failc                 C   sô   |   |¡}|s	|S |}|dkr| d|¡}d|v r|d }nt}t ¡ }d|v r-|d }	n|}	t ¡  d¡d }
t||
ƒ}t	j
 d¡}|
| t|ƒ |	 }t| ¡ ƒ ¡ |||
||||	||dœ
}|}| ¡ D ]\}}||vroqf| |t|ƒ¡}qf|S )a„  
        Tokenize a string based on current config/hostname data.

        :param config: Current config data.
        :param target_hostname: Original target connection hostname.
        :param key: Config key being tokenized (used to filter token list).
        :param value: Config value being tokenized.

        :returns: The tokenized version of the input ``value`` string.
        r   Úportry   rI   r   r   )
r
   r   r   r   r   r   r   r   r   r   )Ú_allowed_tokensrN   ÚSSH_PORTrƒ   r„   rf   ÚgethostnamerQ   ÚLazyFqdnÚosr$   Ú
expanduserÚreprr   ÚencodeÚ	hexdigestra   ÚreplaceÚstr)r   r+   r�   rC   rD   Úallowed_tokensÚconfigured_hostnamer™   ry   Ú
remoteuserÚlocal_hostnameÚ
local_fqdnÚhomedirÚtohashÚreplacementsÚ	tokenizedÚfindr£   r   r   r   r‡   ›  sD   



ñzSSHConfig._tokenizec                 C   s   | j  |g ¡S )aJ  
        Given config ``key``, return list of token strings to tokenize.

        .. note::
            This feels like it wants to eventually go away, but is used to
            preserve as-strict-as-possible compatibility with OpenSSH, which
            for whatever reason only applies some tokens to some config keys.
        )ÚTOKENS_BY_CONFIG_KEYrN   ©r   rC   r   r   r   rš   Ù  s   	zSSHConfig._allowed_tokensc                 C   sr   |D ]4}|| du rqt | j|||ƒ}t|| tƒr.t|| ƒD ]\}}||ƒ|| |< q q||| ƒ||< q|S )aA  
        Return a dict of config options with expanded substitutions
        for a given original & current target hostname.

        Please refer to :doc:`/api/config` for details.

        :param dict config: the currently parsed config
        :param str hostname: the hostname whose config is being looked up
        N)r   r‡   Ú
isinstanceÚlistÚ	enumerate)r   r+   r�   ÚkÚ	tokenizerÚirD   r   r   r   rc   ä  s   
ÿzSSHConfig._expand_variablesc                 C   s*   zt  |¡W S  ty   td |¡ƒ‚w )z>
        Return a list of host_names from host value.
        zUnparsable host {})ÚshlexrQ   Ú
ValueErrorr   r9   )r   r*   r   r   r   r=   ù  s
   ÿzSSHConfig._get_hostsc           	         s  g }t  |¡}|rHddddœ}| d¡}| d¡r#d|d< |dd… }||d	< |d
v r1| |¡ q|s:td |¡ƒ‚| d¡|d< | |¡ |s	dd„ |D ƒ}d|v r�d‰ tt‡ fdd„|ƒƒtt‡ fdd„|ƒƒ}}d}t	|ƒrud}nd|v r…| 
d¡| 
d¡kr…d}|dur�t|ƒ‚|S )z�
        Parse a specific Match config line into a list-of-dicts for its values.

        Performs some parse-time validation as well.
        NF)rz   r{   r—   r   rs   Tr—   r   rz   )r|   rK   rL   z'Missing parameter to Match '{}' keywordr{   c                 S   s   g | ]}|d  ‘qS )rz   r   rY   r   r   r   Ú
<listcomp>  s    z*SSHConfig._get_matches.<locals>.<listcomp>r|   )r|   rK   c                    s   | ˆ v S rX   r   ©r[   ©Ú	allowabler   r   Ú<lambda>"  ó    z(SSHConfig._get_matches.<locals>.<lambda>c                    s   | ˆ vS rX   r   rº   r»   r   r   r½   #  r¾   z>Match does not allow 'all' mixed with anything but 'canonical'rK   z-Match does not allow 'all' before 'canonical')r·   rQ   r…   r6   r<   r   r9   r²   ÚfilterÚanyÚindex)	r   r.   r/   Útokensr”   Úkeywordsr‹   ÚbadÚerrr   r»   r   r>     sB   



ÿ
ïþzSSHConfig._get_matches)NFF)Ú__name__Ú
__module__Ú__qualname__Ú__doc__r7   Úcompiler8   r¯   r   Úclassmethodr"   r&   r   r'   rW   rM   rR   rq   r_   r`   r†   r‡   rš   rc   r=   r>   r   r   r   r   r	   .   s<    

ø

	

<
B#)
8>	r	   c                 C   sd   |  dd¡ ¡ }|dkrdS ztj}|dkrtj}t | d|tjtjtj¡W S  tj	y1   Y dS w )a  
    Try looking up ``hostname`` in an IPv4 or IPv6 specific manner.

    This is an odd duck due to needing use in two divergent use cases. It looks
    up ``AddressFamily`` in ``options`` and if it is ``inet`` or ``inet6``,
    this function uses `socket.getaddrinfo` to perform a family-specific
    lookup, returning the result if successful.

    In any other situation -- lookup failure, or ``AddressFamily`` being
    unspecified or ``any`` -- ``None`` is returned instead and the caller is
    expected to do something situation-appropriate like calling
    `socket.gethostbyname`.

    :param str hostname: Hostname to look up.
    :param options: `SSHConfigDict` instance w/ parsed options.
    :returns: ``getaddrinfo``-style tuples, or ``None``, depending.
    ÚaddressfamilyrÀ   NÚinet)
rN   r;   rf   ÚAF_INET6ÚAF_INETÚgetaddrinfoÚ
SOCK_DGRAMÚ
IPPROTO_IPÚAI_CANONNAMErh   )r   rS   Úaddress_familyÚfamilyr   r   r   re   /  s$   úÿre   c                   @   s"   e Zd ZdZddd„Zdd„ ZdS )r�   z7
    Returns the host's fqdn on request as string.
    Nc                 C   s   d | _ || _|| _d S rX   )Úfqdnr+   r*   )r   r+   r*   r   r   r   r   Y  s   
zLazyFqdn.__init__c           	      C   sl   | j d u r3d }t| j| jƒ}|d ur(|D ]}|\}}}}}|r'd|v r'|} nq|d u r0t ¡ }|| _ | j S )NrI   )rÖ   re   r*   r+   rf   Úgetfqdn)	r   rÖ   ÚresultsÚresÚafÚsocktypeÚprotoÚ	canonnameÚsar   r   r   Ú__str__^  s   
€zLazyFqdn.__str__rX   )rÆ   rÇ   rÈ   rÉ   r   rß   r   r   r   r   r�   T  s    
r�   c                   @   s    e Zd ZdZdd„ Zdd„ ZdS )r^   aÃ  
    A dictionary wrapper/subclass for per-host configuration structures.

    This class introduces some usage niceties for consumers of `SSHConfig`,
    specifically around the issue of variable type conversions: normal value
    access yields strings, but there are now methods such as `as_bool` and
    `as_int` that yield casted values instead.

    For example, given the following ``ssh_config`` file snippet::

        Host foo.example.com
            PasswordAuthentication no
            Compression yes
            ServerAliveInterval 60

    the following code highlights how you can access the raw strings as well as
    usefully Python type-casted versions (recalling that keys are all
    normalized to lowercase first)::

        my_config = SSHConfig()
        my_config.parse(open('~/.ssh/config'))
        conf = my_config.lookup('foo.example.com')

        assert conf['passwordauthentication'] == 'no'
        assert conf.as_bool('passwordauthentication') is False
        assert conf['compression'] == 'yes'
        assert conf.as_bool('compression') is True
        assert conf['serveraliveinterval'] == '60'
        assert conf.as_int('serveraliveinterval') == 60

    .. versionadded:: 2.5
    c                 C   s"   | | }t |tƒr|S | ¡ dkS )aº  
        Express given key's value as a boolean type.

        Typically, this is used for ``ssh_config``'s pseudo-boolean values
        which are either ``"yes"`` or ``"no"``. In such cases, ``"yes"`` yields
        ``True`` and any other value becomes ``False``.

        .. note::
            If (for whatever reason) the stored value is already boolean in
            nature, it's simply returned.

        .. versionadded:: 2.5
        rF   )r±   Úboolr;   )r   rC   Úvalr   r   r   Úas_boolœ  s   
zSSHConfigDict.as_boolc                 C   s   t | | ƒS )zí
        Express given key's value as an integer, if possible.

        This method will raise ``ValueError`` or similar if the value is not
        int-appropriate, same as the builtin `int` type.

        .. versionadded:: 2.5
        )rO   r°   r   r   r   Úas_int¯  s   	zSSHConfigDict.as_intN)rÆ   rÇ   rÈ   rÉ   râ   rã   r   r   r   r   r^   z  s    !r^   )rÉ   ru   rƒ   rž   r7   r·   rf   Úhashlibr   Úior   Ú	functoolsr   rˆ   r‰   ÚImportErrorÚeÚssh_exceptionr   r   r›   r	   re   r�   Údictr^   r   r   r   r   Ú<module>   s6   €ÿ    %&