Skip to main content

MiddlewareHandler

Struct MiddlewareHandler 

Source
#[non_exhaustive]
pub struct MiddlewareHandler { pub engine: Arc<Engine>, pub file_path: String, pub ast: AST, pub confine_to: Option<PathBuf>, }
Expand description

Handler for a single Rhai middleware script.

§Why the AST is compiled once at startup

Rhai offers both “compile on every evaluation” and “compile once, re-run the AST” modes. Middleware is invoked on the hot path (every request), so we keep the compiled AST alongside the Engine and only evaluate at request time. This trades a small amount of memory for a large throughput win and keeps parse errors as startup failures instead of per-request 500s.

The Engine is wrapped in Arc so that MiddlewareHandler can be cloned cheaply into each request task without deep-cloning the interpreter state.

Fields (Non-exhaustive)§

This struct is marked as non-exhaustive
Non-exhaustive structs could have additional fields added in future. Therefore, non-exhaustive structs cannot be constructed in external crates using the traditional Struct { .. } syntax; cannot be matched against without a wildcard ..; and struct update syntax will not work.
§engine: Arc<Engine>§file_path: String§ast: AST§confine_to: Option<PathBuf>

The middleware script’s own directory, canonicalised once here at compile time. A file path the script returns is confined to this directory the same way a rule’s respond.file_path is confined to respond_dir — see MiddlewareResponse::file_response (private to this crate; not linked here since rustdoc’s public docs can’t resolve a private item, and widening its visibility is a separate, deliberate decision — not this comment’s to make).

Implementations§

Source§

impl MiddlewareHandler

Source

pub fn new(file_path: &str, max_operations: u64) -> ServerResult<Self>

Compile a middleware script from disk into a reusable handler.

Returns an AppError on either a missing file or a compile-time Rhai parse error. Callers treat both as startup-time failures — we deliberately do not try to recover by, say, skipping the offending script, because silently ignoring a misconfigured middleware would produce confusing request-time behaviour.

§max_operations (RFC 068 S-03)

Engine::new() used to set no limits at all — not set_max_operations, not set_max_call_levels, not the string/array size caps — so a non-terminating script (a while true an operator is actively developing is the ordinary case, not an attack) ran forever. max_operations bounds a script by work done; call-depth and string/array/map growth get fixed, generous ceilings from limits regardless of what’s configured here, since there’s no legitimate reason a mock middleware needs more of either. Neither is the whole fix on its own — see handle’s doc comment for the other half.

Source

pub async fn handle( &self, request_url_path: &str, request_body_json_value: Option<&Value>, request_headers: &HeaderMap, cors_allow_credentials_origins: &[String], ) -> Option<Result<Response<BoxBody>, Error>>

Evaluate the middleware for one request.

Returns:

  • Some(Ok(response)) — the script decided to handle the request and produced a response.
  • Some(Err(_)) — the script tried to handle the request but the response could not be built (e.g. invalid header value).
  • None — the script returned a value that is neither a string nor a map, which is the convention for “let the next layer handle it”.
§Why errors here are logged and converted, not propagated

A Rhai runtime error during per-request evaluation is a script bug, not a startup config bug. Turning it into an AppError would force the whole process down, which is the opposite of what an HTTP server should do. We instead log and fall through to the next handler, producing an HTTP response rather than aborting.

§Why evaluation runs in spawn_blocking (RFC 068 S-03)

This used to call eval_ast_with_scope directly, synchronously, on the async runtime’s own worker thread. max_operations (Self::new) bounds a runaway script by work done, but that is a value an operator can raise, and it does nothing for a script blocked on something that isn’t a counted operation. Moving evaluation into spawn_blocking is what turns the failure mode from “one fewer tokio worker, permanently” into “one slow request” — the same reason file reads already go through spawn_blocking elsewhere in this crate. Rhai’s sync feature is enabled, so Engine/AST are Send and this is possible without a dependency change.

Trait Implementations§

Source§

impl Clone for MiddlewareHandler

Source§

fn clone(&self) -> MiddlewareHandler

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> Pointable for T

Source§

const ALIGN: usize

The alignment of pointer.
Source§

type Init = T

The type for initializers.
Source§

unsafe fn init(init: <T as Pointable>::Init) -> usize

Initializes a with the given initializer. Read more
Source§

unsafe fn deref<'a>(ptr: usize) -> &'a T

Dereferences the given pointer. Read more
Source§

unsafe fn deref_mut<'a>(ptr: usize) -> &'a mut T

Mutably dereferences the given pointer. Read more
Source§

unsafe fn drop(ptr: usize)

Drops the object pointed to by the given pointer. Read more
Source§

impl<T> Read<Exclusive, BecauseExclusive> for T
where T: ?Sized,

Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = !

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, !>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more