Skip to content

Commit da0c698

Browse files
authored
client - Add functionality to specify cors for rpc server (#1762)
* Add functionality to specify cors for rpc server
1 parent f96c9ec commit da0c698

File tree

5 files changed

+31
-11
lines changed

5 files changed

+31
-11
lines changed

package-lock.json

Lines changed: 4 additions & 8 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

packages/client/bin/cli.ts

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -159,6 +159,11 @@ const args = yargs(hideBin(process.argv))
159159
describe: 'Additionally log complete RPC calls on log level debug (i.e. --loglevel=debug)',
160160
boolean: true,
161161
})
162+
.option('rpcCors', {
163+
describe: 'Configure the Access-Control-Allow-Origin CORS header for RPC server',
164+
string: true,
165+
default: '*',
166+
})
162167
.option('maxPerRequest', {
163168
describe: 'Max items per block or header request',
164169
number: true,

packages/client/bin/startRpc.ts

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -20,6 +20,7 @@ type RPCArgs = {
2020
helprpc: boolean
2121
'jwt-secret'?: string
2222
rpcEngineAuth: boolean
23+
rpcCors: string
2324
}
2425

2526
/**
@@ -104,6 +105,7 @@ export function startRPCServers(client: EthereumClient, args: RPCArgs) {
104105
rpcEnginePort,
105106
'jwt-secret': jwtSecretPath,
106107
rpcEngineAuth,
108+
rpcCors,
107109
} = args
108110
const manager = new RPCManager(client, config)
109111
const jwtSecret = parseJwtSecret(config, jwtSecretPath)
@@ -121,6 +123,7 @@ export function startRPCServers(client: EthereumClient, args: RPCArgs) {
121123

122124
if (rpc) {
123125
rpcHttpServer = createRPCServerListener({
126+
rpcCors,
124127
server,
125128
withEngineMiddleware:
126129
withEngineMethods && rpcEngineAuth
@@ -140,6 +143,7 @@ export function startRPCServers(client: EthereumClient, args: RPCArgs) {
140143
}
141144
if (ws) {
142145
const opts: any = {
146+
rpcCors,
143147
server,
144148
withEngineMiddleware: withEngineMethods && rpcEngineAuth ? { jwtSecret } : undefined,
145149
}
@@ -166,6 +170,7 @@ export function startRPCServers(client: EthereumClient, args: RPCArgs) {
166170
server.on('response', onBatchResponse)
167171

168172
createRPCServerListener({
173+
rpcCors,
169174
server,
170175
withEngineMiddleware: rpcEngineAuth
171176
? {

packages/client/lib/util/rpc.ts

Lines changed: 16 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,12 @@ import { Server as RPCServer, HttpServer } from 'jayson/promise'
33
import { json as jsonParser } from 'body-parser'
44
import { decode, TAlgorithm } from 'jwt-simple'
55
import Connect, { IncomingMessage } from 'connect'
6+
import cors from 'cors'
67

78
const algorithm: TAlgorithm = 'HS256'
89

910
type CreateRPCServerListenerOpts = {
11+
rpcCors?: string
1012
server: RPCServer
1113
withEngineMiddleware?: WithEngineMiddleware
1214
}
@@ -24,8 +26,10 @@ function checkHeaderAuth(req: any, jwtSecret: Buffer): void {
2426
}
2527

2628
export function createRPCServerListener(opts: CreateRPCServerListenerOpts): HttpServer {
27-
const { server, withEngineMiddleware } = opts
29+
const { server, withEngineMiddleware, rpcCors } = opts
30+
2831
const app = Connect()
32+
if (rpcCors) app.use(cors({ origin: rpcCors }))
2933
app.use(jsonParser())
3034

3135
if (withEngineMiddleware) {
@@ -54,9 +58,18 @@ export function createRPCServerListener(opts: CreateRPCServerListenerOpts): Http
5458
export function createWsRPCServerListener(
5559
opts: CreateRPCServerListenerOpts & { httpServer?: HttpServer }
5660
): HttpServer | undefined {
57-
const { server, withEngineMiddleware } = opts
61+
const { server, withEngineMiddleware, rpcCors } = opts
62+
5863
// Get the server to hookup upgrade request on
59-
const httpServer = opts.httpServer ?? createServer()
64+
let httpServer = opts.httpServer
65+
if (!httpServer) {
66+
const app = Connect()
67+
// In case browser pre-flights the upgrade request with an options request
68+
// more likely in case of wss connection
69+
if (rpcCors) app.use(cors({ origin: rpcCors }))
70+
httpServer = createServer(app)
71+
}
72+
6073
const wss = server.websocket({ noServer: true })
6174

6275
httpServer.on('upgrade', (req, socket, head) => {

packages/client/package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -60,6 +60,7 @@
6060
"body-parser": "^1.19.2",
6161
"chalk": "^4.1.2",
6262
"connect": "^3.7.0",
63+
"cors": "^2.8.5",
6364
"debug": "^4.3.3",
6465
"ethereumjs-util": "^7.1.4",
6566
"fs-extra": "^10.0.0",

0 commit comments

Comments
 (0)