PNG  IHDR;IDATxܻn0K )(pA 7LeG{ §㻢|ذaÆ 6lذaÆ 6lذaÆ 6lom$^yذag5bÆ 6lذaÆ 6lذa{ 6lذaÆ `}HFkm,mӪôô! x|'ܢ˟;E:9&ᶒ}{v]n&6 h_tڠ͵-ҫZ;Z$.Pkž)!o>}leQfJTu іچ\X=8Rن4`Vwl>nG^is"ms$ui?wbs[m6K4O.4%/bC%t Mז -lG6mrz2s%9s@-k9=)kB5\+͂Zsٲ Rn~GRC wIcIn7jJhۛNCS|j08yiHKֶۛkɈ+;SzL/F*\Ԕ#"5m2[S=gnaPeғL lذaÆ 6l^ḵaÆ 6lذaÆ 6lذa; _ذaÆ 6lذaÆ 6lذaÆ RIENDB`  oY]*@sdZddddddddgZd d lZd d lZd d lZd d lZd d lZd d lZyd d l Z Wne k rd d l Z YnXd d l Zd d lmZd Zd ad dZeejjZdZddZdZddZdddddddgZddddd d!d"d#d$d%d&d'g ZgZx!eD]Zej ej!qYWd d(d)Z"d d*d+Z#d,d d-d d.d d/d iZ$ej%d0ej&Z'd1d2Z(d3d4Z)ej%d5ej&Z*ej%d6ej+ej&BZ,ej%d7ej-ej&BZ.d8d9Z/ej%d:ej-ej&BZ0d;d<Z1d=d>Z2ej%d?Z3ej%d@Z4ej%dAZ5ej%dBZ6dCdDZ7ej%dEZ8dFdGZ9dHdIZ:dJdKZ;ej%dLej&Z<dMdNZ=dOdPZ>dQdRZ?dSdTZ@ej%dUej&ZAdVdWZBdXdYZCdZd[ZDd\d]ZEd^ZFej%d_ZGd`daZHdbdcZIdddeZJdfdgZKGdhddZLGdiddZMGdjddeMZNdkdlZOdmdnZPGdodpdpZQGdqddZRGdrddeSZTGdsddeRZUdtduZVGdvddeUZWGdwddeUZXd S)xaHTTP cookie handling for web clients. This module has (now fairly distant) origins in Gisle Aas' Perl module HTTP::Cookies, from the libwww-perl library. Docstrings, comments and debug strings in this code refer to the attributes of the HTTP cookie system as cookie-attributes, to distinguish them clearly from Python attributes. Class diagram (note that BSDDBCookieJar and the MSIE* classes are not distributed with the Python standard library, but are available from http://wwwsearch.sf.net/): CookieJar____ / \ \ FileCookieJar \ \ / | \ \ \ MozillaCookieJar | LWPCookieJar \ \ | | \ | ---MSIEBase | \ | / | | \ | / MSIEDBCookieJar BSDDBCookieJar |/ MSIECookieJar Cookie CookieJar CookiePolicyDefaultCookiePolicy FileCookieJar LWPCookieJar LoadErrorMozillaCookieJarN)timegmFcGs8ts dSts+ddl}|jdatj|S)Nr zhttp.cookiejar)debugloggerlogging getLogger)argsr r(/opt/python35/lib/python3.5/cookiejar.py_debug.s  rzQa filename was not supplied (nor was the CookieJar instance initialised with one)cCsgddl}ddl}ddl}|j}|jd||j}|jd|dddS)Nr zhttp.cookiejar bug! %s stacklevel)iowarnings tracebackStringIO print_excgetvaluewarn)rrrfmsgrrr_warn_unhandled_exception<s $  ricCs|dd\}}}}}}|tkrd|koEdknrd|koadknrd|ko}dknrd|kodknrd|kodknrt|SdSdS) N r ;=) EPOCH_YEARr )ttyearmonthZmdayhourminsecrrr_timegmKs "DT r-ZMonZTueZWedZThuZFriZSatZSunZJanZFebZMarZAprZMayZJunZJulZAugZSepZOctZNovZDeccCs\|dkrtjj}ntjj|}d|j|j|j|j|j|jfS)aHReturn a string representing time in seconds since epoch, t. If the function is called without an argument, it will use the current time. The format of the returned string is like "YYYY-MM-DD hh:mm:ssZ", representing Universal Time (UTC, aka GMT). An example of this format is: 1994-11-24 08:49:37Z Nz%04d-%02d-%02d %02d:%02d:%02dZ) datetimeutcnowutcfromtimestampr(r)dayr*minutesecond)tdtrrr time2isozYs r6cCsq|dkrtjj}ntjj|}dt|j|jt|jd|j|j |j |j fS)zReturn a string representing time in seconds since epoch, t. If the function is called without an argument, it will use the current time. The format of the returned string is like this: Wed, DD-Mon-YYYY HH:MM:SS GMT Nz#%s, %02d-%s-%04d %02d:%02d:%02d GMTr ) r.r/r0DAYSZweekdayr1MONTHSr)r(r*r2r3)r4r5rrr time2netscapels !r9ZGMTUTCZUTZz^([-+])?(\d\d?):?(\d\d)?$cCsd}|tkrd}nvtj|}|rdt|jd}|jdru|dt|jd}|jddkr| }|S)Nr ir<r -) UTC_ZONES TIMEZONE_REsearchintgroup)tzoffsetmrrroffset_from_tz_strings  rGc Cst|}|tjkrdSytj|jd}Wndtk ryt|}Wntk rtdSYnXd|kodknr|}ndSYnX|dkrd}|dkrd}|dkrd}t|}t|}t|}t|}|dkrtjtjd}|d} |} ||| }| | } t | dkr| dkr|d}n |d}t |||||||f} | dk r|dkrd}|j }t |} | dkrdS| | } | S)Nr r!r id2r:) rBr.ZMAXYEAR MONTHS_LOWERindexlower ValueErrortime localtimeabsr-upperrG) r1monyrhrr+r,rDZimonZcur_yrrFtmpr4rErrr _str2timesV                  !      rVzV^[SMTWF][a-z][a-z], (\d\d) ([JFMASOND][a-z][a-z]) (\d\d\d\d) (\d\d):(\d\d):(\d\d) GMT$z+^(?:Sun|Mon|Tue|Wed|Thu|Fri|Sat)[a-z]*,?\s*a^ (\d\d?) # day (?:\s+|[-\/]) (\w+) # month (?:\s+|[-\/]) (\d+) # year (?: (?:\s+|:) # separator before clock (\d\d?):(\d\d) # hour:min (?::(\d\d))? # optional seconds )? # optional clock \s* ([-+]?\d{2,4}|(?![APap][Mm]\b)[A-Za-z]+)? # timezone \s* (?:\(\w+\))? # ASCII representation of timezone in parens. \s*$c Cs4tj|}|r|j}tj|djd}t|d|t|dt|dt|dt|df}t|S|j }t j d|d}dgd \}}}}}} } t j|}|dk r|j\}}}}}} } ndSt |||||| | S) aReturns time in seconds since epoch of time represented by a string. Return value is an integer. None is returned if the format of str is unrecognized, the time is outside the representable range, or the timezone string is not recognized. If the string contains no timezone, UTC is assumed. The timezone in the string may be numerical (like "-0800" or "+0100") or a string timezone (like "UTC", "GMT", "BST" or "EST"). Currently, only the timezone strings equivalent to UTC (zero offset) are known to the function. The function loosely parses the following formats: Wed, 09 Feb 1994 22:23:32 GMT -- HTTP format Tuesday, 08-Feb-94 14:15:29 GMT -- old rfc850 HTTP format Tuesday, 08-Feb-1994 14:15:29 GMT -- broken rfc850 HTTP format 09 Feb 1994 22:23:32 GMT -- HTTP format (no weekday) 08-Feb-94 14:15:29 GMT -- rfc850 format (no weekday) 08-Feb-1994 14:15:29 GMT -- broken rfc850 format (no weekday) The parser ignores leading and trailing whitespace. The time may be absent. If the year is given with only 2 digits, the function will select the century that makes the year closest to the current date. r rr r<N)STRICT_DATE_RErAgroupsrJrKrLrBfloatr-lstrip WEEKDAY_REsubLOOSE_HTTP_DATE_RErV) textrFgrRr'r1rSrTr+r,rDrrr http2times -  " $rda^ (\d{4}) # year [-\/]? (\d\d?) # numerical month [-\/]? (\d\d?) # day (?: (?:\s+|[-:Tt]) # separator before clock (\d\d?):?(\d\d) # hour:min (?::?(\d\d(?:\.\d*)?))? # optional seconds (and fractional) )? # optional clock \s* ([-+]?\d\d?:?(:?\d\d)? |Z|z)? # timezone (Z is "zero meridian", i.e. GMT) \s*$c Cs|j}dgd\}}}}}}}tj|}|dk rp|j\}}}}}}}} ndSt|||||||S)av As for http2time, but parses the ISO 8601 formats: 1994-02-03 14:15:29 -0100 -- ISO 8601 format 1994-02-03 14:15:29 -- zone is optional 1994-02-03 -- only date 1994-02-03T14:15:29 -- Use T as separator 19940203T141529Z -- ISO 8601 compact format 19940203 -- only date NrZ)r^ ISO_DATE_RErAr\rV) rbr1rRrSrTr+r,rDrF_rrriso2time's " 'rgcCs7|jd\}}|jd||j|dS)z)Return unmatched part of re.Match object.r N)spanstring)matchstartendrrr unmatchedHsrmz^\s*([^=\s;,]+)z&^\s*=\s*\"([^\"\\]*(?:\\.[^\"\\]*)*)\"z^\s*=\s*([^\s;,]*)z\\(.)c Cst|t stg}x|D]}|}g}xg|rtj|}|rt|}|jd}tj|}|rt|}|jd}tj d|}nEt j|}|rt|}|jd}|j }nd}|j ||fq8|j jdrU|j dd}|rL|j |g}q8tjdd|\}} | dkstd|||f|}q8W|r#|j |q#W|S) amParse header values into a list of lists containing key,value pairs. The function knows how to deal with ",", ";" and "=" as well as quoted values after "=". A list of space separated tokens are parsed as if they were separated by ";". If the header_values passed as argument contains multiple values, then they are treated as if they were a single value separated by comma ",". This means that this function is useful for parsing header fields that follow this syntax (BNF as from the HTTP/1.1 specification, but we relax the requirement for tokens). headers = #header header = (token | parameter) *( [";"] (token | parameter)) token = 1* separators = "(" | ")" | "<" | ">" | "@" | "," | ";" | ":" | "\" | <"> | "/" | "[" | "]" | "?" | "=" | "{" | "}" | SP | HT quoted-string = ( <"> *(qdtext | quoted-pair ) <"> ) qdtext = > quoted-pair = "\" CHAR parameter = attribute "=" value attribute = token value = token | quoted-string Each header is represented by a list of key/value pairs. The value for a simple token (not part of a parameter) is None. Syntactically incorrect headers will not necessarily be parsed as you would want. This is easier to describe with some examples: >>> split_header_words(['foo="bar"; port="80,81"; discard, bar=baz']) [[('foo', 'bar'), ('port', '80,81'), ('discard', None)], [('bar', 'baz')]] >>> split_header_words(['text/html; charset="iso-8859-1"']) [[('text/html', None), ('charset', 'iso-8859-1')]] >>> split_header_words([r'Basic realm="\"foo\bar\""']) [[('Basic', None), ('realm', '"foobar"')]] r z\1N,z^[=\s;]*rYr z&split_header_words bug: '%s', '%s', %s) isinstancestrAssertionErrorHEADER_TOKEN_RErArmrCHEADER_QUOTED_VALUE_REHEADER_ESCAPE_REr`HEADER_VALUE_RErstripappendr^ startswithresubn) Z header_valuesresultrbZ orig_textpairsrFnamevalueZnon_junkZ nr_junk_charsrrrsplit_header_wordsQsF-        rz([\"\\])cCsg}x|D]}g}xk|D]c\}}|dk rvtjd|sftjd|}d|}d||f}|j|q W|r |jdj|q Wdj|S)aDo the inverse (almost) of the conversion done by split_header_words. Takes a list of lists of (key, value) pairs and produces a single header value. Attribute values are quoted if needed. >>> join_header_words([[("text/plain", None), ("charset", "iso-8859-1")]]) 'text/plain; charset="iso-8859-1"' >>> join_header_words([[("text/plain", None)], [("charset", "iso-8859-1")]]) 'text/plain, charset="iso-8859-1"' Nz^\w+$z\\\1z"%s"z%s=%sz; z, )ryrAHEADER_JOIN_ESCAPE_REr`rwjoin)Zlistsheadersr|attrkvrrrjoin_header_wordss    rcCsB|jdr|dd}|jdr>|dd}|S)N"r )rxendswith)rbrrr strip_quotess rc Csnd}g}x[|D]S}g}d}xt|jd D]\}}|j}|jd \}} } |j}|s|d kr;Pnq;| r| jnd } |d kr)|j} | |kr| }|dkr| d k rt| } d }n*|dkr)| d k r)tt| } |j|| fq;W|r|sY|jd|j|qW|S)a5Ad-hoc parser for Netscape protocol cookie-attributes. The old Netscape cookie format for Set-Cookie can for instance contain an unquoted "," in the expires field, so we have to use this ad-hoc parser instead of split_header_words. XXX This may not make the best possible effort to parse all the crap that Netscape Cookie headers contain. Ronald Tschalar's HTTPClient parser is probably better, so could do worse than following that if this ever gives any trouble. Currently, this is also used for parsing RFC 2109 cookies. expiresdomainpathsecureversionportmax-ageF;=r NT0)rrrrrrr)rr) enumeratesplitstrip partitionrLrrdrw) Z ns_headersZ known_attrsr{Z ns_headerr| version_setiiZparamkeysepvallcrrrparse_ns_headerss@ "             rz\.\d+$cCsKtj|rdS|dkr#dS|ddksC|ddkrGdSdS)z*Return True if text is a host domain name.FrYr .r Tr)IPV4_RErA)rbrrris_HDN s  rcCs|j}|j}||kr(dSt|s8dS|j|}|dks_|dkrcdS|jdsvdSt|ddsdSdS)aReturn True if domain A domain-matches domain B, according to RFC 2965. A and B may be host domain names or IP addresses. RFC 2965, section 1: Host names can be specified either as an IP address or a HDN string. Sometimes we compare one host name with another. (Such comparisons SHALL be case-insensitive.) Host A's name domain-matches host B's if * their host name strings string-compare equal; or * A is a HDN string and has the form NB, where N is a non-empty name string, B has the form .B', and B' is a HDN string. (So, x.y.com domain-matches .Y.com but not Y.com.) Note that domain-match is not a commutative operation: a.b.c.com domain-matches .c.com, but not the reverse. TFr r rNr)rLrrfindrx)ABirrr domain_matchs    rcCstj|rdSdS)zdReturn True if text is a sort-of-like a host domain name. For accepting/blocking domains. FT)rrA)rbrrrliberal_is_HDNBsrcCs|j}|j}t|o-t|sD||kr@dSdS|jd}|rl|j|rldS| r||krdSdS)z\For blocking/accepting domains. A and B may be host domain names or IP addresses. TFr)rLrrxr)rr initial_dotrrruser_domain_matchLs   rz:\d+$cCs_|j}tjj|d}|dkr@|jdd}tjd|d}|jS)zReturn request-host, as defined by RFC 2965. Variation from RFC: returned value is lowercased, for convenient comparison. r rYZHost) get_full_urlurllibparseurlparseZ get_header cut_port_rer`rL)requesturlhostrrr request_hostas   rcCsIt|}}|jddkr?tj| r?|d}||fS)zzReturn a tuple (request-host, effective request-host name). As defined by RFC 2965, except both are lowercased. rr z.localr)rfindrrA)rerhnreq_hostrrreff_request_hostqs% rcCsJ|j}tjj|}t|j}|jdsFd|}|S)z6Path component of request-URI, as defined by RFC 2965./)rrrZurlsplit escape_pathrrx)rrpartsrrrr request_path|s   rc Csy|j}|jd}|dkro||dd}yt|Wqutk rktd|dSYquXnt}|S)N:r r znonnumeric port: '%s')rrrBrMrDEFAULT_HTTP_PORT)rrrrrrr request_ports     rz%/;:@&=+$,!~*'()z%([0-9a-fA-F][0-9a-fA-F])cCsd|jdjS)Nz%%%sr )rCrQ)rjrrruppercase_escaped_charsrcCs+tjj|t}tjt|}|S)zEEscape any invalid characters in HTTP URL, and uppercase all escapes.)rrquoteHTTP_PATH_SAFEESCAPED_CHAR_REr`r)rrrrrs rcCsn|jd}|dkrj||dd}|jd}t|rj|dksb|dkrjd|S|S)aBReturn reach of host h, as defined by RFC 2965, section 1. The reach R of a host name H is defined as follows: * If - H is the host domain name of a host; and, - H has the form A.B; and - A has no embedded (that is, interior) dots; and - B has at least one embedded dot, or B is the string "local". then the reach of H is .B. * Otherwise, the reach of H is H. >>> reach("www.acme.com") '.acme.com' >>> reach("acme.com") 'acme.com' >>> reach("acme.local") '.local' rr r Nlocal)rr)hrbrrrreachs $rcCs0t|}t|t|js(dSdSdS)z RFC 2965, section 3.3.6: An unverifiable transaction is to a third-party host if its request- host U does not domain-match the reach R of the request-host O in the origin transaction. TFN)rrrZorigin_req_host)rrrrris_third_partys rc@sseZdZdZdddZddZddd Zd d Zdd d ZddZ ddZ dS)raHTTP Cookie. This class represents both Netscape and RFC 2965 cookies. This is deliberately a very simple class. It just holds attributes. It's possible to construct Cookie instances that don't comply with the cookie standards. CookieJar.make_cookies is the factory function for Cookie objects -- it deals with cookie parsing, supplying defaults, and normalising to the representation used in this class. CookiePolicy is responsible for checking them to see whether they should be accepted from and returned to the server. Note that the port may be present in the headers, but unspecified ("Port" rather than"Port=80", for example); if this is the case, port is None. FcCs|dk rt|}| dk r6tt| } |dkrZ|dkrZtd||_||_||_||_||_|j|_ ||_ ||_ | |_ | |_ | |_| |_| |_||_||_||_tj||_dS)NTz-if port is None, port_specified must be false)rBr]rMrr}r~rport_specifiedrLrdomain_specifieddomain_initial_dotrpath_specifiedrrdiscardcomment comment_urlrfc2109copy_rest)selfrr}r~rrrrrrrrrrrrrestrrrr__init__s.                  zCookie.__init__cCs ||jkS)N)r)rr}rrrhas_nonstandard_attrszCookie.has_nonstandard_attrNcCs|jj||S)N)rget)rr}defaultrrrget_nonstandard_attrszCookie.get_nonstandard_attrcCs||j||dkrtj}|jdk r:|j|kr:dSdS)NTF)rNr)rnowrrr is_expireds  zCookie.is_expiredcCsx|jdkrd}n d|j}|j||j}|jdk rad|j|jf}n |j}d||fS)NrYrz%s=%sz)rrrr~r})rplimitZ namevaluerrr__str__%s   zCookie.__str__cCsg}x:dD]2}t||}|jd|t|fq W|jdt|j|jdt|jd|jjdj|fS)Nrr}r~rrrrrrrrrrrrz%s=%szrest=%sz rfc2109=%sz%s(%s)z, )rr}r~rrrrrrrrrrrr)getattrrwreprrr __class____name__r)rrr}rrrr__repr__/s !zCookie.__repr__) r __module__ __qualname____doc__rrrrrrrrrrrrs     c@sFeZdZdZddZddZddZdd Zd S) ra Defines which cookies get accepted from and returned to server. May also modify cookies, though this is probably a bad idea. The subclass DefaultCookiePolicy defines the standard rules for Netscape and RFC 2965 cookies -- override that if you want a customized policy. cCs tdS)zReturn true if (and only if) cookie should be accepted from server. Currently, pre-expired cookies never get this far -- the CookieJar class deletes such cookies itself. N)NotImplementedError)rcookierrrrset_okGszCookiePolicy.set_okcCs tdS)zAReturn true if (and only if) cookie should be returned to server.N)r)rrrrrr return_okPszCookiePolicy.return_okcCsdS)zMReturn false if cookies should not be returned, given cookie domain. Tr)rrrrrrdomain_return_okTszCookiePolicy.domain_return_okcCsdS)zKReturn false if cookies should not be returned, given cookie path. Tr)rrrrrrpath_return_okYszCookiePolicy.path_return_okN)rrrrrrrrrrrrr>s   c@speZdZdZdZdZdZdZeeBZdddddddddeddd d Z d d Z d dZ ddZ ddZ ddZddZddZddZddZddZdd Zd!d"Zd#d$Zd%d&Zd'd(Zd)d*Zd+d,Zd-d.Zd/d0Zd1d2Zd3d4Zd5d6ZdS)7rzBImplements the standard rules for accepting and returning cookies.r rrWr NTFc Cs||_||_||_||_||_||_| |_| |_| |_| |_ |dk rxt ||_ n f|_ |dk rt |}||_ dS)zAConstructor arguments should be passed as keyword arguments only.N) netscaperfc2965rfc2109_as_netscape hide_cookie2 strict_domainstrict_rfc2965_unverifiablestrict_ns_unverifiablestrict_ns_domainstrict_ns_set_initial_dollarstrict_ns_set_pathtuple_blocked_domains_allowed_domains) rblocked_domainsallowed_domainsrrrrrrrrrrrrrris              zDefaultCookiePolicy.__init__cCs|jS)z4Return the sequence of blocked domains (as a tuple).)r)rrrrrsz#DefaultCookiePolicy.blocked_domainscCst||_dS)z$Set the sequence of blocked domains.N)rr)rrrrrset_blocked_domainssz'DefaultCookiePolicy.set_blocked_domainscCs+x$|jD]}t||r dSq WdS)NTF)rr)rrZblocked_domainrrr is_blockedszDefaultCookiePolicy.is_blockedcCs|jS)z=Return None, or the sequence of allowed domains (as a tuple).)r)rrrrrsz#DefaultCookiePolicy.allowed_domainscCs%|dk rt|}||_dS)z-Set the sequence of allowed domains, or None.N)rr)rrrrrset_allowed_domainss  z'DefaultCookiePolicy.set_allowed_domainscCs>|jdkrdSx$|jD]}t||rdSqWdS)NFT)rr)rrZallowed_domainrrris_not_alloweds z"DefaultCookiePolicy.is_not_allowedcCsltd|j|j|jdk s+tx:d D]2}d |}t||}|||s2d Sq2Wd S) z If you override .set_ok(), be sure to call this method. If it returns false, so should your subclass (assuming your subclass wants to be more strict about which cookies to accept). z - checking cookie %s=%sNr verifiabilityr}rrrZset_ok_FT)rrr}rrr)rr}r~rqr)rrrnfn_namefnrrrrs  zDefaultCookiePolicy.set_okcCs{|jdkr)td|j|jdS|jdkrP|j rPtddS|jdkrw|j rwtddSdS)Nz0 Set-Cookie2 without version attribute (%s=%s)Fr z$ RFC 2965 cookies are switched offz$ Netscape cookies are switched offT)rrr}r~rr)rrrrrrset_ok_versions  z"DefaultCookiePolicy.set_ok_versioncCse|jrat|ra|jdkr;|jr;tddS|jdkra|jratddSdS)Nr z> third-party RFC 2965 cookie during unverifiable transactionFz> third-party Netscape cookie during unverifiable transactionT) unverifiablerrrrr)rrrrrrset_ok_verifiabilitys  z(DefaultCookiePolicy.set_ok_verifiabilitycCsB|jdkr>|jr>|jjdr>td|jdSdS)Nr $z' illegal name (starts with '$'): '%s'FT)rrr}rxr)rrrrrr set_ok_names zDefaultCookiePolicy.set_ok_namecCsj|jrft|}|jdks<|jdkrf|jrf|j|j rftd|j|dSdS)Nr z7 path attribute %s is not a prefix of request path %sFT)rrrrrxrr)rrrreq_pathrrr set_ok_paths   zDefaultCookiePolicy.set_ok_pathc Cs|j|jr&td|jdS|j|jrLtd|jdS|jrt|\}}|j}|jr|jddkr|jd}|jdd|}|dkr||dd}||d|} | j d$krt |dkrtd|dS|j dr=|dd} n|} | j ddk} | r||dkr|td|dS|j dkr|j| r|j d rd|j| rtd ||dS|j dks|j|j@rt||std!||dS|j dks4|j|j@r|dt | } | j ddkrtj| rtd"| |dSd#S)%Nz" domain %s is in user block-listFz& domain %s is not in user allow-listrrr r coaccomeduorgnetgovmilrBaerobizcatcoopinfojobsmobimuseumr}protraveleuz& country-code second level domain %sz.localz/ non-local domain %s contains no embedded dotzO effective request-host %s (even with added initial dot) does not end with %sz5 effective request-host %s does not domain-match %sz. host prefix %s for domain %s contains a dotT)r r r rrrrrrBrrrrrrrrr}rrr)rrrrrrrcountrrLlenrxrrrrDomainRFC2965MatchrDomainStrictNoDotsrrA) rrrrrrrjZtldZsldZundotted_domainZ embedded_dotsZ host_prefixrrr set_ok_domainsf        z!DefaultCookiePolicy.set_ok_domainc Cs|jrt|}|dkr*d}n t|}xr|jjdD]G}yt|Wn#tk rtd|dSYnX||krIPqIWtd||jdSdS)N80rnz bad port %s (not numeric)Fz$ request port (%s) not found in %sT)rrrprrrBrMr)rrrreq_portrrrr set_ok_port%s"          zDefaultCookiePolicy.set_ok_portcCsWtd|j|jx:d D]2}d|}t||}|||sd SqWd S) z If you override .return_ok(), be sure to call this method. If it returns false, so should your subclass (assuming your subclass wants to be more strict about which cookies to return). z - checking cookie %s=%srrrrrrZ return_ok_FT)rrrrrr)rr}r~r)rrrrrrrrrr:s   zDefaultCookiePolicy.return_okcCsR|jdkr'|j r'tddS|jdkrN|j rNtddSdS)Nr z$ RFC 2965 cookies are switched offFz$ Netscape cookies are switched offT)rrrr)rrrrrrreturn_ok_versionLs  z%DefaultCookiePolicy.return_ok_versioncCse|jrat|ra|jdkr;|jr;tddS|jdkra|jratddSdS)Nr z> third-party RFC 2965 cookie during unverifiable transactionFz> third-party Netscape cookie during unverifiable transactionT)rrrrrr)rrrrrrreturn_ok_verifiabilityUs  z+DefaultCookiePolicy.return_ok_verifiabilitycCs*|jr&|jdkr&tddSdS)NZhttpsz( secure cookie with non-secure requestFT)rtyper)rrrrrrreturn_ok_secureas z$DefaultCookiePolicy.return_ok_securecCs$|j|jr tddSdS)Nz cookie expiredFT)r_nowr)rrrrrrreturn_ok_expiresgs z%DefaultCookiePolicy.return_ok_expirescCsl|jrht|}|dkr'd}x>|jjdD]}||kr:Pq:Wtd||jdSdS)Nr$rnz0 request port %s does not match cookie port %sFT)rrrr)rrrr%rrrrreturn_ok_portms     z"DefaultCookiePolicy.return_ok_portcCst|\}}|j}|jdkr^|j|j@r^|j r^||kr^tddS|jdkrt|| rtd||dS|jdkrd|j| rtd||dSdS)Nr zQ cookie with unspecified domain does not string-compare equal to request domainFzQ effective request-host name %s does not domain-match RFC 2965 cookie domain %srz; request-host %s does not match Netscape cookie domain %sT) rrrrDomainStrictNonDomainrrrr)rrrrrrrrrreturn_ok_domain{s    # z$DefaultCookiePolicy.return_ok_domaincCst|\}}|jds+d|}|jdsDd|}|j|p_|j|sfdS|j|rtd|dS|j|rtd|dSdS)NrFz" domain %s is in user block-listz& domain %s is not in user allow-listT)rrxrrrr)rrrrrrrrrs    z$DefaultCookiePolicy.domain_return_okcCs@td|t|}|j|s<td||dSdS)Nz- checking cookie path=%sz %s does not path-match %sFT)rrrx)rrrr rrrrs   z"DefaultCookiePolicy.path_return_ok) rrrrr!r.r Z DomainLiberalZ DomainStrictrrrrrrrrrrrr r#r&rr'r(r*r,r-r/rrrrrrr_sL           ;       cCs"t|j}t|j|S)N)sortedkeysmapr)Zadictr1rrrvals_sorted_by_keysr3c csgt|}xT|D]L}d}y |jWntk r>YnXd}t|EdH|s|VqWdS)zBIterates over nested mapping, depth-first, in sorted order by key.FTN)r3itemsAttributeError deepvalues)mappingvaluesobjrrrr6s    r6c@seZdZdS)AbsentN)rrrrrrrr:s r:c@s~eZdZdZejdZejdZejdZejdZ ejdZ ejdej Z dd d Z d d Zd dZddZddZddZddZddZddZddZddZdd Zd!d"Zd#d$Zdddd%d&Zd'd(Zd)d*Zd+d,Zd-d.Zd/d0Z d1d2Z!dS)3rzCollection of HTTP cookies. You may not need to know about this class: try urllib.request.build_opener(HTTPCookieProcessor).open(url). z\Wz([\"\\])z\.?[^.]*z[^.]*z^\.+z^\#LWP-Cookies-(\d+\.\d+)NcCs:|dkrt}||_tj|_i|_dS)N)r_policy _threadingRLock _cookies_lock_cookies)rpolicyrrrrs    zCookieJar.__init__cCs ||_dS)N)r;)rr@rrr set_policyszCookieJar.set_policycCsg}|jj||sgStd||j|}x|jD]x}|jj||sdqF||}xM|jD]?}|jj||stdq{td|j|q{WqFW|S)Nz!Checking %s for cookies to returnz not returning cookiez it's a match) r;rrr?r1rr8rrw)rrrcookiesZcookies_by_pathrZcookies_by_namerrrr_cookies_for_domains      zCookieJar._cookies_for_domaincCs=g}x0|jjD]}|j|j||qW|S)z2Return a list of cookies to be returned to server.)r?r1extendrC)rrrBrrrr_cookies_for_requestszCookieJar._cookies_for_requestc Cs|jdddddd}g}x|D]}|j}|sgd}|dkrg|jd||jd k r|jj|jr|dkr|jjd |j}n |j}|jd kr|j|jn|jd |j|f|dkr/|j r |jd |j |j j d ru|j }|j rd|j d rd|dd }|jd||jd k r/d}|jr|d|j}|j|q/W|S)zReturn a list of cookie-attributes to be returned to server. like ['foo="bar"; $Path="/"', ...] The $Version attribute is also added when appropriate (currently only once per request). rcSs t|jS)N)rr)arrrsz)CookieJar._cookie_attrs..reverseTFr z $Version=%sNz\\\1z%s=%sz $Path="%s"rr z $Domain="%s"z$Portz="%s")sortrrwr~ non_word_rerAquote_rer`r}rrrrxrrr) rrBrattrsrrr~rrrrr _cookie_attrss>    !      zCookieJar._cookie_attrsc Cstd|jjzttj|j_|_|j|}|j|}|r|j ds|j ddj ||jj r|jj r|j d rx.|D]&}|jdkr|j ddPqWWd|jjX|jdS)zAdd correct Cookie: header to request (urllib.request.Request object). The Cookie2 header is also added unless policy.hide_cookie2 is true. add_cookie_headerrz; ZCookie2r z $Version="1"N)rr>acquirerBrNr;r+rErMZ has_headerZadd_unredirected_headerrrrrreleaseclear_expired_cookies)rrrBrLrrrrrN6s$    zCookieJar.add_cookie_headercCsg}d}d}x|D]}|d \}}d }d } i} i} x|d dD]}\} } | j}||ks||kr|} | |kr| dkrd} | | krqX| dkr| dkrtdd} P| j} | dkr|rqX| dkrtdqX| dkryd}yt| } Wn#tk retdd} PYnXd} |j| } | |ks| |kr| dkr| dkrtd| d} P| | | .no_matching_rfc2965)rZget_allr;rrr_r Exceptionrrr`rrr}filterrD) rresponserrZ rfc2965_hdrsZns_hdrsrrrBZ ns_cookiesrarrbrrr make_cookies)sB            zCookieJar.make_cookiesc Csg|jjzEttj|j_|_|jj||rQ|j|Wd|jjXdS)z-Set a cookie if policy says it's OK to do so.N) r>rOrBrNr;r+r set_cookierP)rrrrrrset_cookie_if_ok_s  zCookieJar.set_cookie_if_okc Cs|j}|jjzc|j|kr5i||j<||j}|j|kr^i||j<||j}|||jrOrrr}rP)rrcc2Zc3rrrrgls      zCookieJar.set_cookiec Cstd|j|jjzottj|j_|_xI|j||D]5}|jj ||rUtd||j |qUWWd|jj XdS)zAExtract cookies from response, where allowable given the request.zextract_cookies: %sz setting cookie: %sN) rrr>rOrBrNr;r+rfrrgrP)rrerrrrrextract_cookiesys  zCookieJar.extract_cookiescCs|dk rE|dks$|dkr0td|j|||=nW|dk rz|dkritd|j||=n"|dk r|j|=n i|_dS)aClear some cookies. Invoking this method without arguments will clear all cookies. If given a single argument, only cookies belonging to that domain will be removed. If given two arguments, cookies belonging to the specified path within that domain are removed. If given three arguments, then the cookie with the specified name, path and domain is removed. Raises KeyError if no matching cookie exists. Nz8domain and path must be given to remove a cookie by namez.domain must be given to remove cookies by path)rMr?)rrrr}rrrr[s       zCookieJar.clearc Cs\|jjz:x3|D]+}|jr|j|j|j|jqWWd|jjXdS)zDiscard all session cookies. Note that the .save() method won't save session cookies anyway, unless you ask otherwise by passing a true ignore_discard argument. N)r>rOrr[rrr}rP)rrrrrclear_session_cookiess    $zCookieJar.clear_session_cookiesc Csn|jjzLtj}x9|D]1}|j|r#|j|j|j|jq#WWd|jjXdS)aDiscard all expired cookies. You probably don't need to call this method: expired cookies are never sent back to the server (provided you're using DefaultCookiePolicy), this method is called by CookieJar itself every so often, and the .save() method won't save expired cookies anyway (unless you ask otherwise by passing a true ignore_expires argument). N) r>rOrNrr[rrr}rP)rrrrrrrQs   $zCookieJar.clear_expired_cookiescCs t|jS)N)r6r?)rrrr__iter__szCookieJar.__iter__cCs%d}x|D]}|d}q W|S)z#Return number of contained cookies.r r r)rrrrrr__len__s zCookieJar.__len__cCsGg}x!|D]}|jt|q Wd|jjdj|fS)Nz<%s[%s]>z, )rwrrrr)rrrrrrrs zCookieJar.__repr__cCsGg}x!|D]}|jt|q Wd|jjdj|fS)Nz<%s[%s]>z, )rwrprrr)rrorrrrrs zCookieJar.__str__)"rrrrrycompilerJrKZstrict_domain_reZ domain_reZdots_reASCIImagic_rerrArCrErMrNrYr^r_r`rfrhrgrkr[rlrQrmrnrrrrrrrs8     ; ! a \ 6      c@seZdZdS)rN)rrrrrrrrs c@sjeZdZdZdddddZdddddZddddd Zdddd d ZdS) rz6CookieJar that can be loaded from and saved to a file.NFc Cs[tj|||dk r?y |dWntdYnX||_t||_dS)z} Cookies are NOT loaded from the named file until either the .load() or .revert() method is called. NrYzfilename must be string-like)rrrMfilenamerZ delayload)rrsrtr@rrrrs   zFileCookieJar.__init__cCs tdS)zSave cookies to a file.N)r)rrsignore_discardignore_expiresrrrsaveszFileCookieJar.savec Csc|dkr3|jdk r'|j}n ttt|}|j||||WdQRXdS)zLoad cookies from a file.N)rsrMMISSING_FILENAME_TEXTopen _really_load)rrsrurvrrrrloads    zFileCookieJar.loadcCs|dkr3|jdk r'|j}n tt|jjzWtj|j}i|_y|j|||Wnt k r||_YnXWd|jj XdS)zClear all cookies and reload cookies from a saved file. Raises LoadError (or OSError) if reversion is not successful; the object's state will not be altered if this happens. N) rsrMrxr>rOrdeepcopyr?r{OSErrorrP)rrsrurvZ old_staterrrreverts        zFileCookieJar.revert)rrrrrrwr{r~rrrrrs  cCs|j|jfd|jfd|jfg}|jdk rR|jd|jf|jrh|jd|jr~|jd|jr|jd|j r|jd|j r|jd t t |j f|j r|jd|jr |jd |jf|jr)|jd |jft|jj}x.|D]&}|j|t|j|fqEW|jd t|jft|gS)zReturn string representation of Cookie in the LWP cookie file format. Actually, the format is extended a bit -- see module docstring. rrNr path_spec port_spec domain_dotrrrrrSr)rN)rN)rN)rN)rN)r}r~rrrrwrrrrrr6r]rrrr0rr1rprr)rrr1rrrrlwp_cookie_strs6          $rc@sIeZdZdZddddZdddddZd d ZdS) ra[ The LWPCookieJar saves a sequence of "Set-Cookie3" lines. "Set-Cookie3" is the format used by the libwww-perl library, not known to be compatible with any browser, but which is easy to read and doesn't lose information about RFC 2965 cookies. Additional methods as_lwp_str(ignore_discard=True, ignore_expired=True) TcCsztj}g}xQ|D]I}| r2|jr2q| rK|j|rKq|jdt|qWdj|dgS)zReturn cookies as a string of "\n"-separated "Set-Cookie3" headers. ignore_discard and ignore_expires: see docstring for FileCookieJar.save zSet-Cookie3: %s rY)rNrrrwrr)rrurvrrorrrr as_lwp_str>s  zLWPCookieJar.as_lwp_strNFc Csv|dkr3|jdk r'|j}n ttt|d-}|jd|j|j||WdQRXdS)Nwz#LWP-Cookies-2.0 )rsrMrxrywriter)rrsrurvrrrrrwNs    zLWPCookieJar.savecCs|j}|jj|s4d|}t|tj}d}d} d} y_xX|j} | dkrqP| j|sqX| t|dj} x t| gD]} | d\} }i}i}x| D]}d||s             8  8 !  U   D  '      # b!R  : x