Case mismatch in `SCRIPT_NAME` on IIS with Rewrite module
まだ誰も着手していません。
- 主要言語
- C
- スター
- 40.4k
- フォーク
- 8.2k
- 平均マージ
- 2日 13時間
- マージ済み PR(30日)
- 96
説明
Description
I'm encountering a strange behavior on IIS regarding the $_SERVER['SCRIPT_NAME'] variable.
On a Windows 11 machine, I have an IIS running with PHP via FastCGI. I've configured a virtual directory named routingtest. in that directory, I have an index.php file that just dumps the script name and the request URI.
<?php
var_dump($_SERVER['SCRIPT_NAME']);
var_dump($_SERVER['REQUEST_URI']);
So, if I point my browser to http://localhost/routingtest/index.php/foo/bar, I see the expected output:
string(22) "/routingtest/index.php"
string(30) "/routingtest/index.php/foo/bar"
Since directory and file names are case-insensitive in Windows and IIS, I can reach the same script as http://localhost/RoutingTest/index.php/foo/bar and the two variables reflect the different case:
string(22) "/RoutingTest/index.php"
string(30) "/RoutingTest/index.php/foo/bar"
That's still as it should be. Now, I add a rewrite rule because I want to get rid of the index.php in my URLs:
<?xml version="1.0" encoding="UTF-8"?>
<configuration>
<system.webServer>
<rewrite>
<rules>
<rule name="FrontController">
<match url=".*" />
<conditions trackAllCaptures="true">
<add input="{REQUEST_FILENAME}" matchType="IsFile" negate="true" />
<add input="{REQUEST_FILENAME}" matchType="IsDirectory" negate="true" />
</conditions>
<action type="Rewrite" url="index.php/{R:0}" />
</rule>
</rules>
</rewrite>
</system.webServer>
</configuration>
Calling http://localhost/routingtest/foo/bar:
string(22) "/routingtest/index.php"
string(20) "/routingtest/foo/bar"
Looks correct. Calling http://localhost/RoutingTest/foo/bar:
string(22) "/routingtest/index.php"
string(20) "/RoutingTest/foo/bar"
Note how SCRIPT_NAME still contains the value from the first request while REQUEST_URI is updated correctly. If I restart the IIS and make the two requests in reverse order, I get:
http://localhost/RoutingTest/foo/bar:
string(22) "/RoutingTest/index.php"
string(20) "/RoutingTest/foo/bar"
http://localhost/routingtest/foo/bar:
string(22) "/RoutingTest/index.php"
string(20) "/routingtest/foo/bar"
This means the first request after the IIS has started controls how SCRIPT_NAME is reported for all subsequent requests until the server is restarted again. This behavior confuses e.g. Symfony's HttpFoundation which uses SCRIPT_NAME and REQUEST_URI to determine the base path to the front controller script.
I don't really know if this is a bug in PHP or if this has to be fixed in IIS or the rewrite module. If I have to take this somewhere else, please point me into that direction.
PHP Version
8.1.22
Operating System
Windows 11
コントリビューションガイド
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
調査の方向性
まず、FastCGI 経由の Windows 11 上の PHP 8.1.22 で、index.php と IIS Rewrite 構成を使ってシーケンスを再現します。大文字と小文字が異なるリクエスト間で SCRIPT_NAME と REQUEST_URI を比較し、その後、その動作の発生元が PHP か IIS/Rewrite かを特定します。担当コンポーネントを特定し、適切な解決策を文書化または実装できれば完了です。
索引モデルが issue の本文から書いたものです。
評価
- 技術スタック
- php
- 領域
- backend
- issue の種類
- バグ
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 活発さ
- 停滞
- 明瞭さ
- 説明が足りない
- 初心者へのやさしさ
- 25/100