Skip to content
Snippets Groups Projects
Log.php 11 KiB
Newer Older
<?php
Roeland Jago Douma's avatar
Roeland Jago Douma committed
declare(strict_types=1);
Joas Schilling's avatar
Joas Schilling committed
 * @copyright Copyright (c) 2016, ownCloud, Inc.
 *
Morris Jobke's avatar
Morris Jobke committed
 * @author Arthur Schiwon <blizzz@arthur-schiwon.de>
 * @author Bart Visscher <bartv@thisnet.nl>
 * @author Bernhard Posselt <dev@bernhard-posselt.com>
Joas Schilling's avatar
Joas Schilling committed
 * @author Joas Schilling <coding@schilljs.com>
Morris Jobke's avatar
Morris Jobke committed
 * @author Johannes Schlichenmaier <johannes@schlichenmaier.info>
 * @author Juan Pablo Villafáñez <jvillafanez@solidgear.es>
Lukas Reschke's avatar
Lukas Reschke committed
 * @author Lukas Reschke <lukas@statuscode.ch>
 * @author Morris Jobke <hey@morrisjobke.de>
 * @author Olivier Paroz <github@oparoz.com>
Joas Schilling's avatar
Joas Schilling committed
 * @author Robin Appelman <robin@icewind.nl>
 * @author Thomas Müller <thomas.mueller@tmit.eu>
Morris Jobke's avatar
Morris Jobke committed
 * @author Thomas Pulzer <t.pulzer@kniel.de>
 * @author Victor Dubiniuk <dubiniuk@owncloud.com>
 *
 * @license AGPL-3.0
 *
 * This code is free software: you can redistribute it and/or modify
 * it under the terms of the GNU Affero General Public License, version 3,
 * as published by the Free Software Foundation.
 *
 * This program is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
 * GNU Affero General Public License for more details.
 *
 * You should have received a copy of the GNU Affero General Public License, version 3,
 * along with this program.  If not, see <http://www.gnu.org/licenses/>
 *
namespace OC;

use InterfaSys\LogNormalizer\Normalizer;

use OCP\ILogger;
use OCP\Support\CrashReport\IRegistry;
Thomas Müller's avatar
Thomas Müller committed
use OCP\Util;
 * logging utilities
 * This is a stand in, this should be replaced by a Psr\Log\LoggerInterface
 * compatible logger. See https://github.com/php-fig/fig-standards/blob/master/accepted/PSR-3-logger-interface.md
 * for the full interface specification.
 *
 * MonoLog is an example implementing this interface.
class Log implements ILogger {
Morris Jobke's avatar
Morris Jobke committed

Morris Jobke's avatar
Morris Jobke committed
	/** @var string */
	private $logger;
Thomas Müller's avatar
Thomas Müller committed

Morris Jobke's avatar
Morris Jobke committed
	/** @var SystemConfig */
	private $config;

	/** @var boolean|null cache the result of the log condition check for the request */
	private $logConditionSatisfied = null;
Thomas Müller's avatar
Thomas Müller committed

	/** @var Normalizer */
	private $normalizer;
	/** @var IRegistry */
	private $crashReporters;

	protected $methodsWithSensitiveParameters = [
		// Session/User
		'completeLogin',
		'checkPasswordNoLogging',
		'loginWithPassword',
		'updatePrivateKeyPassword',
		'validateUserPass',

		// TokenProvider
		'getToken',
		'isTokenPassword',
		'getPassword',
		'decryptPassword',
		'logClientIn',
		'generateToken',
		'validateToken',

		// TwoFactorAuth
		'solveChallenge',
		'verifyChallenge',

		'calculateHMAC',
		'encrypt',
		'decrypt',

		// LDAP
		'bind',
		'areCredentialsValid',
		'invokeLDAPMethod',
	/**
	 * @param string $logger The logger that should be used
Morris Jobke's avatar
Morris Jobke committed
	 * @param SystemConfig $config the system config object
	 * @param Normalizer|null $normalizer
	 * @param IRegistry|null $registry
	public function __construct($logger = null, SystemConfig $config = null, $normalizer = null, IRegistry $registry = null) {
Morris Jobke's avatar
Morris Jobke committed
		// FIXME: Add this for backwards compatibility, should be fixed at some point probably
Morris Jobke's avatar
Morris Jobke committed
			$config = \OC::$server->getSystemConfig();
		}

		$this->config = $config;

		// FIXME: Add this for backwards compatibility, should be fixed at some point probably
			$logType = $this->config->getValue('log_type', 'file');
			$this->logger = static::getLogClass($logType);
Roeland Jago Douma's avatar
Roeland Jago Douma committed
			call_user_func([$this->logger, 'init']);
		} else {
			$this->logger = $logger;
		}
		if ($normalizer === null) {
			$this->normalizer = new Normalizer();
		} else {
			$this->normalizer = $normalizer;
		}
		$this->crashReporters = $registry;
	 * System is unusable.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function emergency(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::FATAL, $message, $context);
Bart Visscher's avatar
Bart Visscher committed

	/**
	 * Action must be taken immediately.
	 *
	 * Example: Entire website down, database unavailable, etc. This should
	 * trigger the SMS alerts and wake you up.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function alert(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::ERROR, $message, $context);
Bart Visscher's avatar
Bart Visscher committed

	/**
	 * Critical conditions.
	 *
	 * Example: Application component unavailable, unexpected exception.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function critical(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::ERROR, $message, $context);
	/**
	 * Runtime errors that do not require immediate action but should typically
	 * be logged and monitored.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function error(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::ERROR, $message, $context);
	}

	/**
	 * Exceptional occurrences that are not errors.
	 *
	 * Example: Use of deprecated APIs, poor use of an API, undesirable things
	 * that are not necessarily wrong.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function warning(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::WARN, $message, $context);
	/**
	 * Normal but significant events.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function notice(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::INFO, $message, $context);
	}

	/**
	 * Interesting events.
	 *
	 * Example: User logs in, SQL logs.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function info(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::INFO, $message, $context);
	}

	/**
	 * Detailed debug information.
	 *
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function debug(string $message, array $context = []) {
Thomas Müller's avatar
Thomas Müller committed
		$this->log(Util::DEBUG, $message, $context);
	/**
	 * Logs with an arbitrary level.
	 *
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	 * @param int $level
	 * @param string $message
	 * @param array $context
Thomas Müller's avatar
Thomas Müller committed
	 * @return void
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function log(int $level, string $message, array $context = []) {
		$minLevel = $this->getLogLevel($context);
		array_walk($context, [$this->normalizer, 'format']);

		$app = $context['app'] ?? 'no app in context';
		// interpolate $message as defined in PSR-3
Roeland Jago Douma's avatar
Roeland Jago Douma committed
		$replace = [];
		foreach ($context as $key => $val) {
			$replace['{' . $key . '}'] = $val;
		}
		$message = strtr($message, $replace);

		if ($level >= $minLevel) {
			call_user_func([$this->logger, 'write'], $app, $message, $level);
		}
	}

	private function getLogLevel($context) {
Morris Jobke's avatar
Morris Jobke committed
		/**
		 * check for a special log condition - this enables an increased log on
		 * a per request/user base
		 */
		if ($this->logConditionSatisfied === null) {
Morris Jobke's avatar
Morris Jobke committed
			// default to false to just process this once per request
			$this->logConditionSatisfied = false;
			if (!empty($logCondition)) {
Morris Jobke's avatar
Morris Jobke committed

				// check for secret token in the request
				if (isset($logCondition['shared_secret'])) {
Morris Jobke's avatar
Morris Jobke committed
					$request = \OC::$server->getRequest();

					// if token is found in the request change set the log condition to satisfied
					if ($request && hash_equals($logCondition['shared_secret'], $request->getParam('log_secret', ''))) {
Morris Jobke's avatar
Morris Jobke committed
						$this->logConditionSatisfied = true;
					}
				}

				// check for user
				if (isset($logCondition['users'])) {
Morris Jobke's avatar
Morris Jobke committed
					$user = \OC::$server->getUserSession()->getUser();

					// if the user matches set the log condition to satisfied
					if ($user !== null && in_array($user->getUID(), $logCondition['users'], true)) {
Morris Jobke's avatar
Morris Jobke committed
						$this->logConditionSatisfied = true;
					}
				}
			}
		}
Morris Jobke's avatar
Morris Jobke committed
		// if log condition is satisfied change the required log level to DEBUG
		if ($this->logConditionSatisfied) {
			return Util::DEBUG;
Morris Jobke's avatar
Morris Jobke committed
		}
		if (isset($context['app'])) {
			$logCondition = $this->config->getValue('log.condition', []);
			$app = $context['app'];

			/**
			 * check log condition based on the context of each log message
			 * once this is met -> change the required log level to debug
			 */
			if (!empty($logCondition)
				&& isset($logCondition['apps'])
				&& in_array($app, $logCondition['apps'], true)) {
				return Util::DEBUG;
			}
		}

		return min($this->config->getValue('loglevel', Util::WARN), Util::FATAL);
	}

	private function filterTrace(array $trace) {
		$sensitiveValues = [];
		$trace = array_map(function (array $traceLine) use (&$sensitiveValues) {
			foreach ($this->methodsWithSensitiveParameters as $sensitiveMethod) {
				if (strpos($traceLine['function'], $sensitiveMethod) !== false) {
					$sensitiveValues = array_merge($sensitiveValues, $traceLine['args']);
					$traceLine['args'] = ['*** sensitive parameters replaced ***'];
					return $traceLine;
				}
			}
			return $traceLine;
		}, $trace);
		return array_map(function (array $traceLine) use ($sensitiveValues) {
			$traceLine['args'] = $this->removeValuesFromArgs($traceLine['args'], $sensitiveValues);
			return $traceLine;
		}, $trace);
	}

	private function removeValuesFromArgs($args, $values) {
		foreach($args as &$arg) {
			if (in_array($arg, $values, true)) {
				$arg = '*** sensitive parameter replaced ***';
			} else if (is_array($arg)) {
				$arg = $this->removeValuesFromArgs($arg, $values);
			}

	/**
	 * Logs an exception very detailed
	 *
	 * @param \Exception|\Throwable $exception
	 * @param array $context
	 * @return void
	 * @since 8.2.0
	 */
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public function logException(\Throwable $exception, array $context = []) {
		$app = $context['app'] ?? 'no app in context';
		$level = $context['level'] ?? Util::ERROR;

Roeland Jago Douma's avatar
Roeland Jago Douma committed
		$data = [
			'CustomMessage' => $context['message'] ?? '--',
			'Exception' => get_class($exception),
			'Message' => $exception->getMessage(),
			'Code' => $exception->getCode(),
			'Trace' => $this->filterTrace($exception->getTrace()),
			'File' => $exception->getFile(),
			'Line' => $exception->getLine(),
		if ($exception instanceof HintException) {
			$data['Hint'] = $exception->getHint();
		}

		$minLevel = $this->getLogLevel($context);

		array_walk($context, [$this->normalizer, 'format']);

		if ($level >= $minLevel) {
			if ($this->logger === File::class) {
				call_user_func([$this->logger, 'write'], $app, $data, $level);
			} else {
				$entry = json_encode($data, JSON_PARTIAL_OUTPUT_ON_ERROR);
				call_user_func([$this->logger, 'write'], $app, $entry, $level);
			}
		}

		$context['level'] = $level;
		if (!is_null($this->crashReporters)) {
			$this->crashReporters->delegateReport($exception, $context);

	/**
	 * @param string $logType
	 * @return string
	 * @internal
	 */
Roeland Jago Douma's avatar
Roeland Jago Douma committed
	public static function getLogClass(string $logType): string {
		switch (strtolower($logType)) {
			case 'errorlog':
				return \OC\Log\Errorlog::class;
			case 'syslog':
				return \OC\Log\Syslog::class;
			case 'file':
				return \OC\Log\File::class;

			// Backwards compatibility for old and fallback for unknown log types
			case 'owncloud':
			case 'nextcloud':
			default:
				return \OC\Log\File::class;