Restful web services in Drupal 7
During the work on my thesis over the last year, I played around a lot with RESTful services based upon the Entity API. What I needed was a simple service that just exposes Drupal's entities in a RESTful manner, while obeying Drupal's permission and access systems. Now, me and klausi have created a small module that does exactly that: Restful web services.
So how does it work?
The module makes use of the Entity API and the information about entity properties (provided via hook_entity_property_info()
) to provide resource representations for all entity types (nodes, comments, users, taxonomy terms, ..). It aims to be fully compliant to the REST principles. Drupal's entities are exposed at the unified $entity_type/$id
paths, while respecting the Content Accept/Content Type headers of the HTTP requests. That means if a client requests node/1
with usual HTTP accept headers it will get Drupal's usual output, if it requests node/1
while accepting only JSON, it will get the JSON representation of the node. Similarly, all CRUD operations are supported as common for RESTful services. Then, the module supports GET requests on paths like node/1.json
, node/1.xml
or node/1.rdf
too.
And authentication...?
As mentioned above, the solution just obeys Drupal's permission and access system. If there is an active session and the user has sufficient permission for the request, it will be served. So any add-on authentication strategies would have to plug into Drupal's usual user system. For example, the RestWS module comes with a small add-on module that authenticates users via HTTP basic authentication. So you can define a regular user for a client, configure their access permissions as usual, and just pass its credentials with a request.
So what about the property information?
The module makes use of the property information the entity API collects for all entity types, as well as the accompanying wrapper classes. While the API also allows providing non-entities as resources, it requires the existence of property information. Representations of entities are provided according to their property information. What does that mean?
So let's have a look at an example: The node author. In the property information about nodes, there is no uid
property, instead there is an 'author' property, pointing to the according user entity. So the module makes use of that information to output a proper reference to the author, being the author's URI (URIs are the proper way to do references in RESTful designs). So instead of just outputting user id as uid
property with an integer value, we output a proper reference to the node's author. Apart from that, the property information includes access permissions - so updating the node author will only be possible if you have sufficient permissions.
Then the property information could be used to provide a description of the web service for the caller, in a human as well as in a machine-readable way.
Which formats are supported?
The module currently comes with support for JSON, XML and RDF/XML whereas modules may add more formatters. As the property information is available to the formatters too, it's possible to do formatters that output some properties in a certain way, e.g. using a special XML namespace. Similarly the RDF formatter looks up the RDF mapping being defined for a property, in order to generate meaningful RDF output.
What's different to the Services module?
The main differences are:
- RestWS provides only RESTful services (no message-oriented or RPC-style web services like SOAP, XML-RPC etc.).
- RestWS strongly builds upon the Entity API and its property information, thus utilizes it for CRUD, access checks, getting property information, ..
- Property information is built into the API, so formatters may make use of it to format the data in a sensible way.
- There are no "service endpoints" to configure as resources are just available at uniform paths like
node/1
,user/1
. We do not see a need to have multiple endpoints for the same resource in a RESTful desgin.
For more about the relation and partial overlap to the Services module, read and participate in the discussion over at http://drupal.org/node/1042512.
Example output
You might be interested in the output, so here is the output the module currently produces for a testing-node:
JSON:
{<br> "nid":"3",<br> "vid":"3",<br> "is_new":false,<br> "type":"article",<br> "title":"asdfdsf",<br> "language":"und",<br> "url":"https:\/\/example.com\/node\/3",<br> "edit_url":"https:\/\/example.com\/node\/3\/edit",<br> "status":"1",<br> "promote":"1",<br> "sticky":"0",<br> "created":"1294913241",<br> "changed":"1296405309",<br> "author":{<br> "uri":"https:\/\/example.com\/user\/1",<br> "id":"1",<br> "resource":"user"<br> },<br> "log":"",<br> "revision":null,<br> "comment":"2",<br> "comment_count":"0",<br> "comment_count_new":"0",<br> "body":{<br> "value":"\u003cp\u003etest2\u003c\/p\u003e\n",<br> "summary":"\u003cp\u003eha\u003c\/p\u003e\n",<br> "format":"filtered_html"<br> },<br> "field_tags":[<p> ],<br> "field_image":[</p><p> ],<br> "field_test":"1",<br> "field_file":[</p><p> ]<br>}</p>
The same node in XML:
<?xml version="1.0" encoding="utf-8"?><br><node><br> <nid>3</nid><br> <vid>3</vid><br> <is_new/><br> <type>article</type><br> <title>asdfdsf</title><br> <language>und</language><br> <url>https://example.com/node/3</url><br> <edit_url>https://example.com/node/3/edit</edit_url><br> <status>1</status><br> <promote>1</promote><br> <sticky>0</sticky><br> <created>1294913241</created><br> <changed>1296405309</changed><br> <author resource="user" id="1">https://example.com/user/1</author><br> <log/><br> <revision/><br> <comment>2</comment><br> <comment_count>0</comment_count><br> <comment_count_new>0</comment_count_new><br> <body><br> <value>&lt;p&gt;test2&lt;/p&gt;<p></value><br> <summary>&lt;p&gt;ha&lt;/p&gt;<br></summary><br> <format>filtered_html</format><br> </body><br> <field_tags/><br> <field_image/><br> <field_test>1</field_test><br> <field_file/><br></node></p>
And finally in RDF/XML:
<?xml version="1.0"?><br><rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"><br> <rdf:Description xmlns:site="https://example.com/" xmlns:dc="http://purl.org/dc/terms/" xmlns:sioc="http://rdfs.org/sioc/ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:og="http://ogp.me/ns#" rdf:about="https://example.com/node/3"><br> <rdf:type rdf:resource="http://rdfs.org/sioc/ns#Item"/><br> <rdf:type rdf:resource="http://xmlns.com/foaf/0.1/Document"/><br> <site:nid xmlns:site="https://example.com/">3</site:nid><br> <site:vid xmlns:site="https://example.com/">3</site:vid><br> <site:is_new xmlns:site="https://example.com/"/><br> <site:type xmlns:site="https://example.com/">article</site:type><br> <dc:title xmlns:dc="http://purl.org/dc/terms/">asdfdsf</dc:title><br> <site:language xmlns:site="https://example.com/">und</site:language><br> <site:url xmlns:site="https://example.com/">https://example.com/node/3</site:url><br> <site:edit_url xmlns:site="https://example.com/">https://example.com/node/3/edit</site:edit_url><br> <site:status xmlns:site="https://example.com/">1</site:status><br> <site:promote xmlns:site="https://example.com/">1</site:promote><br> <site:sticky xmlns:site="https://example.com/">0</site:sticky><br> <dc:date xmlns:dc="http://purl.org/dc/terms/" rdf:datatype="xsd:dateTime">1294913241</dc:date><br> <dc:modified xmlns:dc="http://purl.org/dc/terms/" rdf:datatype="xsd:dateTime">1296405309</dc:modified><br> <site:author xmlns:site="https://example.com/"><br> <rdf:Description rdf:about="https://example.com/user/1"/><br> </site:author><br> <site:log xmlns:site="https://example.com/"/><br> <site:revision xmlns:site="https://example.com/"/><br> <site:comment xmlns:site="https://example.com/">2</site:comment><br> <sioc:num_replies xmlns:sioc="http://rdfs.org/sioc/ns#" rdf:datatype="xsd:integer">0</sioc:num_replies><br> <site:comment_count_new xmlns:site="https://example.com/">0</site:comment_count_new><br> <content:encoded xmlns:content="http://purl.org/rss/1.0/modules/content/"><br> <rdf:Description><br> <site:value xmlns:site="https://example.com/">&lt;p&gt;test2&lt;/p&gt;<p></site:value><br> <site:summary xmlns:site="https://example.com/">&lt;p&gt;ha&lt;/p&gt;<br></site:summary><br> <site:format xmlns:site="https://example.com/">filtered_html</site:format><br> </rdf:Description><br> </content:encoded><br> <dc:subject xmlns:dc="http://purl.org/dc/terms/"><br> <rdf:Description/><br> </dc:subject><br> <og:image xmlns:og="http://ogp.me/ns#"><br> <rdf:Description><br> <site:alt xmlns:site="https://example.com/"/><br> </rdf:Description><br> </og:image><br> <site:field_test xmlns:site="https://example.com/">1</site:field_test><br> <site:field_file xmlns:site="https://example.com/"><br> <rdf:Description/><br> </site:field_file><br> </rdf:Description><br></rdf:RDF></p>
Tags: