blob: aa35ef327442228f34ccbdf919444c096e1460af [file] [log] [blame]
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001/*
2 * QEMU I/O channels driver websockets
3 *
4 * Copyright (c) 2015 Red Hat, Inc.
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, see <http://www.gnu.org/licenses/>.
18 *
19 */
20
Peter Maydellcae9fc52016-01-29 17:50:03 +000021#include "qemu/osdep.h"
Markus Armbrusterda34e652016-03-14 09:01:28 +010022#include "qapi/error.h"
Paolo Bonzini58369e22016-03-15 17:22:36 +010023#include "qemu/bswap.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000024#include "io/channel-websock.h"
25#include "crypto/hash.h"
26#include "trace.h"
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +010027#include "qemu/iov.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000028
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010029#include <time.h>
30
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000031
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +010032/* Max amount to allow in rawinput/encoutput buffers */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000033#define QIO_CHANNEL_WEBSOCK_MAX_BUFFER 8192
34
35#define QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN 24
36#define QIO_CHANNEL_WEBSOCK_GUID "258EAFA5-E914-47DA-95CA-C5AB0DC85B11"
37#define QIO_CHANNEL_WEBSOCK_GUID_LEN strlen(QIO_CHANNEL_WEBSOCK_GUID)
38
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000039#define QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL "sec-websocket-protocol"
40#define QIO_CHANNEL_WEBSOCK_HEADER_VERSION "sec-websocket-version"
41#define QIO_CHANNEL_WEBSOCK_HEADER_KEY "sec-websocket-key"
42#define QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE "upgrade"
43#define QIO_CHANNEL_WEBSOCK_HEADER_HOST "host"
44#define QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION "connection"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000045
46#define QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY "binary"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000047#define QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE "Upgrade"
48#define QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET "websocket"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000049
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010050#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
51 "Server: QEMU VNC\r\n" \
52 "Date: %s\r\n"
53
54#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000055 "HTTP/1.1 101 Switching Protocols\r\n" \
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010056 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000057 "Upgrade: websocket\r\n" \
58 "Connection: Upgrade\r\n" \
59 "Sec-WebSocket-Accept: %s\r\n" \
60 "Sec-WebSocket-Protocol: binary\r\n" \
61 "\r\n"
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010062#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND \
63 "HTTP/1.1 404 Not Found\r\n" \
64 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
65 "Connection: close\r\n" \
66 "\r\n"
67#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST \
68 "HTTP/1.1 400 Bad Request\r\n" \
69 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
70 "Connection: close\r\n" \
71 "Sec-WebSocket-Version: " \
72 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION \
73 "\r\n"
74#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR \
75 "HTTP/1.1 500 Internal Server Error\r\n" \
76 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
77 "Connection: close\r\n" \
78 "\r\n"
79#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE \
80 "HTTP/1.1 403 Request Entity Too Large\r\n" \
81 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
82 "Connection: close\r\n" \
83 "\r\n"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000084#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM "\r\n"
85#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_END "\r\n\r\n"
86#define QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION "13"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000087#define QIO_CHANNEL_WEBSOCK_HTTP_METHOD "GET"
88#define QIO_CHANNEL_WEBSOCK_HTTP_PATH "/"
89#define QIO_CHANNEL_WEBSOCK_HTTP_VERSION "HTTP/1.1"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000090
91/* The websockets packet header is variable length
92 * depending on the size of the payload... */
93
94/* ...length when using 7-bit payload length */
95#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT 6
96/* ...length when using 16-bit payload length */
97#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT 8
98/* ...length when using 64-bit payload length */
99#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT 14
100
101/* Length of the optional data mask field in header */
102#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK 4
103
104/* Maximum length that can fit in 7-bit payload size */
105#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT 126
106/* Maximum length that can fit in 16-bit payload size */
107#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT 65536
108
109/* Magic 7-bit length to indicate use of 16-bit payload length */
110#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT 126
111/* Magic 7-bit length to indicate use of 64-bit payload length */
112#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT 127
113
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700114/* Bitmasks for accessing header fields */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000115#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN 0x80
116#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE 0x0f
117#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK 0x80
118#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN 0x7f
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700119#define QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK 0x8
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000120
121typedef struct QIOChannelWebsockHeader QIOChannelWebsockHeader;
122
123struct QEMU_PACKED QIOChannelWebsockHeader {
124 unsigned char b0;
125 unsigned char b1;
126 union {
127 struct QEMU_PACKED {
128 uint16_t l16;
129 QIOChannelWebsockMask m16;
130 } s16;
131 struct QEMU_PACKED {
132 uint64_t l64;
133 QIOChannelWebsockMask m64;
134 } s64;
135 QIOChannelWebsockMask m;
136 } u;
137};
138
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000139typedef struct QIOChannelWebsockHTTPHeader QIOChannelWebsockHTTPHeader;
140
141struct QIOChannelWebsockHTTPHeader {
142 char *name;
143 char *value;
144};
145
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000146enum {
147 QIO_CHANNEL_WEBSOCK_OPCODE_CONTINUATION = 0x0,
148 QIO_CHANNEL_WEBSOCK_OPCODE_TEXT_FRAME = 0x1,
149 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME = 0x2,
150 QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE = 0x8,
151 QIO_CHANNEL_WEBSOCK_OPCODE_PING = 0x9,
152 QIO_CHANNEL_WEBSOCK_OPCODE_PONG = 0xA
153};
154
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100155static void qio_channel_websock_handshake_send_res(QIOChannelWebsock *ioc,
156 const char *resmsg,
157 ...)
158{
159 va_list vargs;
160 char *response;
161 size_t responselen;
162
163 va_start(vargs, resmsg);
164 response = g_strdup_vprintf(resmsg, vargs);
165 responselen = strlen(response);
166 buffer_reserve(&ioc->encoutput, responselen);
167 buffer_append(&ioc->encoutput, response, responselen);
168 va_end(vargs);
169}
170
171static gchar *qio_channel_websock_date_str(void)
172{
173 struct tm tm;
174 time_t now = time(NULL);
175 char datebuf[128];
176
177 gmtime_r(&now, &tm);
178
179 strftime(datebuf, sizeof(datebuf), "%a, %d %b %Y %H:%M:%S GMT", &tm);
180
181 return g_strdup(datebuf);
182}
183
184static void qio_channel_websock_handshake_send_res_err(QIOChannelWebsock *ioc,
185 const char *resdata)
186{
187 char *date = qio_channel_websock_date_str();
188 qio_channel_websock_handshake_send_res(ioc, resdata, date);
189 g_free(date);
190}
191
Brandon Carpenter530ca602017-09-12 08:21:53 -0700192enum {
193 QIO_CHANNEL_WEBSOCK_STATUS_NORMAL = 1000,
194 QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR = 1002,
195 QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA = 1003,
196 QIO_CHANNEL_WEBSOCK_STATUS_POLICY = 1008,
197 QIO_CHANNEL_WEBSOCK_STATUS_TOO_LARGE = 1009,
198 QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR = 1011,
199};
200
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000201static size_t
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100202qio_channel_websock_extract_headers(QIOChannelWebsock *ioc,
203 char *buffer,
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000204 QIOChannelWebsockHTTPHeader *hdrs,
205 size_t nhdrsalloc,
206 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000207{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000208 char *nl, *sep, *tmp;
209 size_t nhdrs = 0;
210
211 /*
212 * First parse the HTTP protocol greeting of format:
213 *
214 * $METHOD $PATH $VERSION
215 *
216 * e.g.
217 *
218 * GET / HTTP/1.1
219 */
220
221 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
222 if (!nl) {
223 error_setg(errp, "Missing HTTP header delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100224 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000225 }
226 *nl = '\0';
Daniel P. Berrange0efd6c92017-10-10 13:28:03 +0100227 trace_qio_channel_websock_http_greeting(ioc, buffer);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000228
229 tmp = strchr(buffer, ' ');
230 if (!tmp) {
231 error_setg(errp, "Missing HTTP path delimiter");
232 return 0;
233 }
234 *tmp = '\0';
235
236 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_METHOD)) {
237 error_setg(errp, "Unsupported HTTP method %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100238 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000239 }
240
241 buffer = tmp + 1;
242 tmp = strchr(buffer, ' ');
243 if (!tmp) {
244 error_setg(errp, "Missing HTTP version delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100245 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000246 }
247 *tmp = '\0';
248
249 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_PATH)) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100250 qio_channel_websock_handshake_send_res_err(
251 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000252 error_setg(errp, "Unexpected HTTP path %s", buffer);
253 return 0;
254 }
255
256 buffer = tmp + 1;
257
258 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_VERSION)) {
259 error_setg(errp, "Unsupported HTTP version %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100260 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000261 }
262
263 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
264
265 /*
266 * Now parse all the header fields of format
267 *
268 * $NAME: $VALUE
269 *
270 * e.g.
271 *
272 * Cache-control: no-cache
273 */
274 do {
275 QIOChannelWebsockHTTPHeader *hdr;
276
277 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
278 if (nl) {
279 *nl = '\0';
280 }
281
282 sep = strchr(buffer, ':');
283 if (!sep) {
284 error_setg(errp, "Malformed HTTP header");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100285 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000286 }
287 *sep = '\0';
288 sep++;
289 while (*sep == ' ') {
290 sep++;
291 }
292
293 if (nhdrs >= nhdrsalloc) {
294 error_setg(errp, "Too many HTTP headers");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100295 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000296 }
297
298 hdr = &hdrs[nhdrs++];
299 hdr->name = buffer;
300 hdr->value = sep;
301
302 /* Canonicalize header name for easier identification later */
303 for (tmp = hdr->name; *tmp; tmp++) {
304 *tmp = g_ascii_tolower(*tmp);
305 }
306
307 if (nl) {
308 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
309 }
310 } while (nl != NULL);
311
312 return nhdrs;
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100313
314 bad_request:
315 qio_channel_websock_handshake_send_res_err(
316 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
317 return 0;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000318}
319
320static const char *
321qio_channel_websock_find_header(QIOChannelWebsockHTTPHeader *hdrs,
322 size_t nhdrs,
323 const char *name)
324{
325 size_t i;
326
327 for (i = 0; i < nhdrs; i++) {
328 if (g_str_equal(hdrs[i].name, name)) {
329 return hdrs[i].value;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000330 }
331 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000332
333 return NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000334}
335
336
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100337static void qio_channel_websock_handshake_send_res_ok(QIOChannelWebsock *ioc,
338 const char *key,
339 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000340{
341 char combined_key[QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
342 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1];
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100343 char *accept = NULL;
344 char *date = qio_channel_websock_date_str();
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000345
346 g_strlcpy(combined_key, key, QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN + 1);
347 g_strlcat(combined_key, QIO_CHANNEL_WEBSOCK_GUID,
348 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
349 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1);
350
351 /* hash and encode it */
352 if (qcrypto_hash_base64(QCRYPTO_HASH_ALG_SHA1,
353 combined_key,
354 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
355 QIO_CHANNEL_WEBSOCK_GUID_LEN,
356 &accept,
357 errp) < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100358 qio_channel_websock_handshake_send_res_err(
359 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR);
360 return;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000361 }
362
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100363 qio_channel_websock_handshake_send_res(
364 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK, date, accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000365
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100366 g_free(date);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000367 g_free(accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000368}
369
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100370static void qio_channel_websock_handshake_process(QIOChannelWebsock *ioc,
371 char *buffer,
372 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000373{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000374 QIOChannelWebsockHTTPHeader hdrs[32];
375 size_t nhdrs = G_N_ELEMENTS(hdrs);
376 const char *protocols = NULL, *version = NULL, *key = NULL,
377 *host = NULL, *connection = NULL, *upgrade = NULL;
Daniel P. Berrange6d5d23b2017-10-09 17:52:28 +0100378 char **connectionv;
379 bool upgraded = false;
380 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000381
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100382 nhdrs = qio_channel_websock_extract_headers(ioc, buffer, hdrs, nhdrs, errp);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000383 if (!nhdrs) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100384 return;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000385 }
386
387 protocols = qio_channel_websock_find_header(
388 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000389 if (!protocols) {
390 error_setg(errp, "Missing websocket protocol header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100391 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000392 }
393
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000394 version = qio_channel_websock_find_header(
395 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_VERSION);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000396 if (!version) {
397 error_setg(errp, "Missing websocket version header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100398 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000399 }
400
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000401 key = qio_channel_websock_find_header(
402 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_KEY);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000403 if (!key) {
404 error_setg(errp, "Missing websocket key header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100405 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000406 }
407
408 host = qio_channel_websock_find_header(
409 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_HOST);
410 if (!host) {
411 error_setg(errp, "Missing websocket host header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100412 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000413 }
414
415 connection = qio_channel_websock_find_header(
416 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION);
417 if (!connection) {
418 error_setg(errp, "Missing websocket connection header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100419 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000420 }
421
422 upgrade = qio_channel_websock_find_header(
423 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE);
424 if (!upgrade) {
425 error_setg(errp, "Missing websocket upgrade header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100426 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000427 }
428
Daniel P. Berrange0efd6c92017-10-10 13:28:03 +0100429 trace_qio_channel_websock_http_request(ioc, protocols, version,
430 host, connection, upgrade, key);
431
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000432 if (!g_strrstr(protocols, QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY)) {
433 error_setg(errp, "No '%s' protocol is supported by client '%s'",
434 QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY, protocols);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100435 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000436 }
437
438 if (!g_str_equal(version, QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION)) {
439 error_setg(errp, "Version '%s' is not supported by client '%s'",
440 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION, version);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100441 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000442 }
443
444 if (strlen(key) != QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN) {
445 error_setg(errp, "Key length '%zu' was not as expected '%d'",
446 strlen(key), QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100447 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000448 }
449
Daniel P. Berrange6d5d23b2017-10-09 17:52:28 +0100450 connectionv = g_strsplit(connection, ",", 0);
451 for (i = 0; connectionv != NULL && connectionv[i] != NULL; i++) {
452 g_strstrip(connectionv[i]);
453 if (strcasecmp(connectionv[i],
454 QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE) == 0) {
455 upgraded = true;
456 }
457 }
458 g_strfreev(connectionv);
459 if (!upgraded) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000460 error_setg(errp, "No connection upgrade requested '%s'", connection);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100461 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000462 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000463
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100464 if (strcasecmp(upgrade, QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000465 error_setg(errp, "Incorrect upgrade method '%s'", upgrade);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100466 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000467 }
468
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100469 qio_channel_websock_handshake_send_res_ok(ioc, key, errp);
470 return;
471
472 bad_request:
473 qio_channel_websock_handshake_send_res_err(
474 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000475}
476
477static int qio_channel_websock_handshake_read(QIOChannelWebsock *ioc,
478 Error **errp)
479{
480 char *handshake_end;
481 ssize_t ret;
482 /* Typical HTTP headers from novnc are 512 bytes, so limiting
483 * total header size to 4096 is easily enough. */
484 size_t want = 4096 - ioc->encinput.offset;
485 buffer_reserve(&ioc->encinput, want);
486 ret = qio_channel_read(ioc->master,
487 (char *)buffer_end(&ioc->encinput), want, errp);
488 if (ret < 0) {
489 return -1;
490 }
491 ioc->encinput.offset += ret;
492
493 handshake_end = g_strstr_len((char *)ioc->encinput.buffer,
494 ioc->encinput.offset,
495 QIO_CHANNEL_WEBSOCK_HANDSHAKE_END);
496 if (!handshake_end) {
497 if (ioc->encinput.offset >= 4096) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100498 qio_channel_websock_handshake_send_res_err(
499 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000500 error_setg(errp,
501 "End of headers not found in first 4096 bytes");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100502 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000503 } else {
504 return 0;
505 }
506 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000507 *handshake_end = '\0';
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000508
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100509 qio_channel_websock_handshake_process(ioc,
510 (char *)ioc->encinput.buffer,
511 errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000512
513 buffer_advance(&ioc->encinput,
514 handshake_end - (char *)ioc->encinput.buffer +
515 strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_END));
516 return 1;
517}
518
519static gboolean qio_channel_websock_handshake_send(QIOChannel *ioc,
520 GIOCondition condition,
521 gpointer user_data)
522{
523 QIOTask *task = user_data;
524 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
525 qio_task_get_source(task));
526 Error *err = NULL;
527 ssize_t ret;
528
529 ret = qio_channel_write(wioc->master,
530 (char *)wioc->encoutput.buffer,
531 wioc->encoutput.offset,
532 &err);
533
534 if (ret < 0) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100535 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100536 qio_task_set_error(task, err);
537 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000538 return FALSE;
539 }
540
541 buffer_advance(&wioc->encoutput, ret);
542 if (wioc->encoutput.offset == 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100543 if (wioc->io_err) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100544 trace_qio_channel_websock_handshake_fail(
545 ioc, error_get_pretty(wioc->io_err));
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100546 qio_task_set_error(task, wioc->io_err);
547 wioc->io_err = NULL;
548 qio_task_complete(task);
549 } else {
550 trace_qio_channel_websock_handshake_complete(ioc);
551 qio_task_complete(task);
552 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000553 return FALSE;
554 }
555 trace_qio_channel_websock_handshake_pending(ioc, G_IO_OUT);
556 return TRUE;
557}
558
559static gboolean qio_channel_websock_handshake_io(QIOChannel *ioc,
560 GIOCondition condition,
561 gpointer user_data)
562{
563 QIOTask *task = user_data;
564 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
565 qio_task_get_source(task));
566 Error *err = NULL;
567 int ret;
568
569 ret = qio_channel_websock_handshake_read(wioc, &err);
570 if (ret < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100571 /*
572 * We only take this path on a fatal I/O error reading from
573 * client connection, as most of the time we have an
574 * HTTP 4xx err response to send instead
575 */
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100576 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100577 qio_task_set_error(task, err);
578 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000579 return FALSE;
580 }
581 if (ret == 0) {
582 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
583 /* need more data still */
584 return TRUE;
585 }
586
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100587 if (err) {
588 error_propagate(&wioc->io_err, err);
589 }
590
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000591 trace_qio_channel_websock_handshake_reply(ioc);
592 qio_channel_add_watch(
593 wioc->master,
594 G_IO_OUT,
595 qio_channel_websock_handshake_send,
596 task,
Daniel P. Berrangebc35d512016-06-07 12:27:51 +0100597 NULL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000598 return FALSE;
599}
600
601
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100602static void qio_channel_websock_encode(QIOChannelWebsock *ioc,
603 uint8_t opcode,
604 const struct iovec *iov,
605 size_t niov,
606 size_t size)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000607{
608 size_t header_size;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100609 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000610 union {
611 char buf[QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT];
612 QIOChannelWebsockHeader ws;
613 } header;
614
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100615 assert(size <= iov_size(iov, niov));
616
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700617 header.ws.b0 = QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN |
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700618 (opcode & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE);
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100619 if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT) {
620 header.ws.b1 = (uint8_t)size;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000621 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100622 } else if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000623 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100624 header.ws.u.s16.l16 = cpu_to_be16((uint16_t)size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000625 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
626 } else {
627 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100628 header.ws.u.s64.l64 = cpu_to_be64(size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000629 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
630 }
631 header_size -= QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK;
632
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100633 trace_qio_channel_websock_encode(ioc, opcode, header_size, size);
634 buffer_reserve(&ioc->encoutput, header_size + size);
635 buffer_append(&ioc->encoutput, header.buf, header_size);
636 for (i = 0; i < niov && size != 0; i++) {
637 size_t want = iov[i].iov_len;
638 if (want > size) {
639 want = size;
640 }
641 buffer_append(&ioc->encoutput, iov[i].iov_base, want);
642 size -= want;
643 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700644}
645
646
Brandon Carpenter530ca602017-09-12 08:21:53 -0700647static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *, Error **);
648
649
650static void qio_channel_websock_write_close(QIOChannelWebsock *ioc,
651 uint16_t code, const char *reason)
652{
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100653 struct iovec iov[2] = {
654 { .iov_base = &code, .iov_len = sizeof(code) },
655 };
656 size_t niov = 1;
657 size_t size = iov[0].iov_len;
658
659 cpu_to_be16s(&code);
660
Brandon Carpenter530ca602017-09-12 08:21:53 -0700661 if (reason) {
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100662 iov[1].iov_base = (void *)reason;
663 iov[1].iov_len = strlen(reason);
664 size += iov[1].iov_len;
665 niov++;
Brandon Carpenter530ca602017-09-12 08:21:53 -0700666 }
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100667 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100668 iov, niov, size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700669 qio_channel_websock_write_wire(ioc, NULL);
670 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
671}
672
673
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700674static int qio_channel_websock_decode_header(QIOChannelWebsock *ioc,
675 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000676{
677 unsigned char opcode, fin, has_mask;
678 size_t header_size;
679 size_t payload_len;
680 QIOChannelWebsockHeader *header =
681 (QIOChannelWebsockHeader *)ioc->encinput.buffer;
682
683 if (ioc->payload_remain) {
684 error_setg(errp,
685 "Decoding header but %zu bytes of payload remain",
686 ioc->payload_remain);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700687 qio_channel_websock_write_close(
688 ioc, QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR,
689 "internal server error");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000690 return -1;
691 }
692 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT) {
693 /* header not complete */
694 return QIO_CHANNEL_ERR_BLOCK;
695 }
696
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700697 fin = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000698 opcode = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE;
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700699 has_mask = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000700 payload_len = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN;
701
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700702 /* Save or restore opcode. */
703 if (opcode) {
704 ioc->opcode = opcode;
705 } else {
706 opcode = ioc->opcode;
707 }
708
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100709 trace_qio_channel_websock_header_partial_decode(ioc, payload_len,
710 fin, opcode, (int)has_mask);
711
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000712 if (opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
713 /* disconnect */
714 return 0;
715 }
716
717 /* Websocket frame sanity check:
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700718 * * Fragmentation is only supported for binary frames.
719 * * All frames sent by a client MUST be masked.
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700720 * * Only binary and ping/pong encoding is supported.
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000721 */
722 if (!fin) {
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700723 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
724 error_setg(errp, "only binary websocket frames may be fragmented");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700725 qio_channel_websock_write_close(
726 ioc, QIO_CHANNEL_WEBSOCK_STATUS_POLICY ,
727 "only binary frames may be fragmented");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700728 return -1;
729 }
730 } else {
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700731 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME &&
Brandon Carpenter530ca602017-09-12 08:21:53 -0700732 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE &&
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700733 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PING &&
734 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PONG) {
Brandon Carpenter530ca602017-09-12 08:21:53 -0700735 error_setg(errp, "unsupported opcode: %#04x; only binary, close, "
736 "ping, and pong websocket frames are supported", opcode);
737 qio_channel_websock_write_close(
738 ioc, QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA ,
739 "only binary, close, ping, and pong frames are supported");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700740 return -1;
741 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000742 }
743 if (!has_mask) {
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700744 error_setg(errp, "client websocket frames must be masked");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700745 qio_channel_websock_write_close(
746 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
747 "client frames must be masked");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000748 return -1;
749 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000750
751 if (payload_len < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT) {
752 ioc->payload_remain = payload_len;
753 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
754 ioc->mask = header->u.m;
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700755 } else if (opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
756 error_setg(errp, "websocket control frame is too large");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700757 qio_channel_websock_write_close(
758 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
759 "control frame is too large");
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700760 return -1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000761 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT &&
762 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT) {
763 ioc->payload_remain = be16_to_cpu(header->u.s16.l16);
764 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
765 ioc->mask = header->u.s16.m16;
766 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT &&
767 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT) {
768 ioc->payload_remain = be64_to_cpu(header->u.s64.l64);
769 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
770 ioc->mask = header->u.s64.m64;
771 } else {
772 /* header not complete */
773 return QIO_CHANNEL_ERR_BLOCK;
774 }
775
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100776 trace_qio_channel_websock_header_full_decode(
777 ioc, header_size, ioc->payload_remain, ioc->mask.u);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000778 buffer_advance(&ioc->encinput, header_size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700779 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000780}
781
782
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700783static int qio_channel_websock_decode_payload(QIOChannelWebsock *ioc,
784 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000785{
786 size_t i;
Brandon Carpenter3a296402017-09-12 08:21:50 -0700787 size_t payload_len = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000788 uint32_t *payload32;
789
Brandon Carpenter3a296402017-09-12 08:21:50 -0700790 if (ioc->payload_remain) {
791 /* If we aren't at the end of the payload, then drop
792 * off the last bytes, so we're always multiple of 4
793 * for purpose of unmasking, except at end of payload
794 */
795 if (ioc->encinput.offset < ioc->payload_remain) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700796 /* Wait for the entire payload before processing control frames
797 * because the payload will most likely be echoed back. */
798 if (ioc->opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
799 return QIO_CHANNEL_ERR_BLOCK;
800 }
Brandon Carpenter3a296402017-09-12 08:21:50 -0700801 payload_len = ioc->encinput.offset - (ioc->encinput.offset % 4);
802 } else {
803 payload_len = ioc->payload_remain;
804 }
805 if (payload_len == 0) {
806 return QIO_CHANNEL_ERR_BLOCK;
807 }
808
809 ioc->payload_remain -= payload_len;
810
811 /* unmask frame */
812 /* process 1 frame (32 bit op) */
813 payload32 = (uint32_t *)ioc->encinput.buffer;
814 for (i = 0; i < payload_len / 4; i++) {
815 payload32[i] ^= ioc->mask.u;
816 }
817 /* process the remaining bytes (if any) */
818 for (i *= 4; i < payload_len; i++) {
819 ioc->encinput.buffer[i] ^= ioc->mask.c[i % 4];
820 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000821 }
822
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100823 trace_qio_channel_websock_payload_decode(
824 ioc, ioc->opcode, ioc->payload_remain);
825
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700826 if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
827 if (payload_len) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700828 /* binary frames are passed on */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700829 buffer_reserve(&ioc->rawinput, payload_len);
830 buffer_append(&ioc->rawinput, ioc->encinput.buffer, payload_len);
831 }
Brandon Carpenter530ca602017-09-12 08:21:53 -0700832 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
833 /* close frames are echoed back */
834 error_setg(errp, "websocket closed by peer");
835 if (payload_len) {
836 /* echo client status */
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100837 struct iovec iov = { .iov_base = ioc->encinput.buffer,
838 .iov_len = ioc->encinput.offset };
839 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
840 &iov, 1, iov.iov_len);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700841 qio_channel_websock_write_wire(ioc, NULL);
842 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
843 } else {
844 /* send our own status */
845 qio_channel_websock_write_close(
846 ioc, QIO_CHANNEL_WEBSOCK_STATUS_NORMAL, "peer requested close");
847 }
848 return -1;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700849 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_PING) {
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100850 /* ping frames produce an immediate reply, as long as we've not still
851 * got a previous pong queued, in which case we drop the new pong */
852 if (ioc->pong_remain == 0) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100853 struct iovec iov = { .iov_base = ioc->encinput.buffer,
854 .iov_len = ioc->encinput.offset };
855 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_PONG,
856 &iov, 1, iov.iov_len);
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100857 ioc->pong_remain = ioc->encoutput.offset;
858 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700859 } /* pong frames are ignored */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700860
Brandon Carpenter3a296402017-09-12 08:21:50 -0700861 if (payload_len) {
Brandon Carpenter3a296402017-09-12 08:21:50 -0700862 buffer_advance(&ioc->encinput, payload_len);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000863 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700864 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000865}
866
867
868QIOChannelWebsock *
869qio_channel_websock_new_server(QIOChannel *master)
870{
871 QIOChannelWebsock *wioc;
872 QIOChannel *ioc;
873
874 wioc = QIO_CHANNEL_WEBSOCK(object_new(TYPE_QIO_CHANNEL_WEBSOCK));
875 ioc = QIO_CHANNEL(wioc);
876
877 wioc->master = master;
Felipe Franciosie413ae02016-09-29 08:52:36 -0700878 if (qio_channel_has_feature(master, QIO_CHANNEL_FEATURE_SHUTDOWN)) {
Felipe Franciosid8d3c7c2016-09-29 08:52:37 -0700879 qio_channel_set_feature(ioc, QIO_CHANNEL_FEATURE_SHUTDOWN);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000880 }
881 object_ref(OBJECT(master));
882
883 trace_qio_channel_websock_new_server(wioc, master);
884 return wioc;
885}
886
887void qio_channel_websock_handshake(QIOChannelWebsock *ioc,
888 QIOTaskFunc func,
889 gpointer opaque,
890 GDestroyNotify destroy)
891{
892 QIOTask *task;
893
894 task = qio_task_new(OBJECT(ioc),
895 func,
896 opaque,
897 destroy);
898
899 trace_qio_channel_websock_handshake_start(ioc);
900 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
901 qio_channel_add_watch(ioc->master,
902 G_IO_IN,
903 qio_channel_websock_handshake_io,
904 task,
905 NULL);
906}
907
908
909static void qio_channel_websock_finalize(Object *obj)
910{
911 QIOChannelWebsock *ioc = QIO_CHANNEL_WEBSOCK(obj);
912
913 buffer_free(&ioc->encinput);
914 buffer_free(&ioc->encoutput);
915 buffer_free(&ioc->rawinput);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000916 object_unref(OBJECT(ioc->master));
917 if (ioc->io_tag) {
918 g_source_remove(ioc->io_tag);
919 }
920 if (ioc->io_err) {
921 error_free(ioc->io_err);
922 }
923}
924
925
926static ssize_t qio_channel_websock_read_wire(QIOChannelWebsock *ioc,
927 Error **errp)
928{
929 ssize_t ret;
930
931 if (ioc->encinput.offset < 4096) {
932 size_t want = 4096 - ioc->encinput.offset;
933
934 buffer_reserve(&ioc->encinput, want);
935 ret = qio_channel_read(ioc->master,
936 (char *)ioc->encinput.buffer +
937 ioc->encinput.offset,
938 want,
939 errp);
940 if (ret < 0) {
941 return ret;
942 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700943 if (ret == 0 && ioc->encinput.offset == 0) {
944 ioc->io_eof = TRUE;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000945 return 0;
946 }
947 ioc->encinput.offset += ret;
948 }
949
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000950 while (ioc->encinput.offset != 0) {
951 if (ioc->payload_remain == 0) {
952 ret = qio_channel_websock_decode_header(ioc, errp);
953 if (ret < 0) {
954 return ret;
955 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000956 }
957
958 ret = qio_channel_websock_decode_payload(ioc, errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000959 if (ret < 0) {
960 return ret;
961 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000962 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000963 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000964}
965
966
967static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *ioc,
968 Error **errp)
969{
970 ssize_t ret;
971 ssize_t done = 0;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700972
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000973 while (ioc->encoutput.offset > 0) {
974 ret = qio_channel_write(ioc->master,
975 (char *)ioc->encoutput.buffer,
976 ioc->encoutput.offset,
977 errp);
978 if (ret < 0) {
979 if (ret == QIO_CHANNEL_ERR_BLOCK &&
980 done > 0) {
981 return done;
982 } else {
983 return ret;
984 }
985 }
986 buffer_advance(&ioc->encoutput, ret);
987 done += ret;
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100988 if (ioc->pong_remain < ret) {
989 ioc->pong_remain = 0;
990 } else {
991 ioc->pong_remain -= ret;
992 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000993 }
994 return done;
995}
996
997
998static void qio_channel_websock_flush_free(gpointer user_data)
999{
1000 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
1001 object_unref(OBJECT(wioc));
1002}
1003
1004static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc);
1005
1006static gboolean qio_channel_websock_flush(QIOChannel *ioc,
1007 GIOCondition condition,
1008 gpointer user_data)
1009{
1010 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
1011 ssize_t ret;
1012
1013 if (condition & G_IO_OUT) {
1014 ret = qio_channel_websock_write_wire(wioc, &wioc->io_err);
1015 if (ret < 0) {
1016 goto cleanup;
1017 }
1018 }
1019
1020 if (condition & G_IO_IN) {
1021 ret = qio_channel_websock_read_wire(wioc, &wioc->io_err);
1022 if (ret < 0) {
1023 goto cleanup;
1024 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001025 }
1026
1027 cleanup:
1028 qio_channel_websock_set_watch(wioc);
1029 return FALSE;
1030}
1031
1032
1033static void qio_channel_websock_unset_watch(QIOChannelWebsock *ioc)
1034{
1035 if (ioc->io_tag) {
1036 g_source_remove(ioc->io_tag);
1037 ioc->io_tag = 0;
1038 }
1039}
1040
1041static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc)
1042{
1043 GIOCondition cond = 0;
1044
1045 qio_channel_websock_unset_watch(ioc);
1046
1047 if (ioc->io_err) {
1048 return;
1049 }
1050
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +01001051 if (ioc->encoutput.offset) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001052 cond |= G_IO_OUT;
1053 }
1054 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER &&
1055 !ioc->io_eof) {
1056 cond |= G_IO_IN;
1057 }
1058
1059 if (cond) {
1060 object_ref(OBJECT(ioc));
1061 ioc->io_tag =
1062 qio_channel_add_watch(ioc->master,
1063 cond,
1064 qio_channel_websock_flush,
1065 ioc,
1066 qio_channel_websock_flush_free);
1067 }
1068}
1069
1070
1071static ssize_t qio_channel_websock_readv(QIOChannel *ioc,
1072 const struct iovec *iov,
1073 size_t niov,
1074 int **fds,
1075 size_t *nfds,
1076 Error **errp)
1077{
1078 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1079 size_t i;
1080 ssize_t got = 0;
1081 ssize_t ret;
1082
1083 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001084 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001085 return -1;
1086 }
1087
1088 if (!wioc->rawinput.offset) {
1089 ret = qio_channel_websock_read_wire(QIO_CHANNEL_WEBSOCK(ioc), errp);
1090 if (ret < 0) {
1091 return ret;
1092 }
1093 }
1094
1095 for (i = 0 ; i < niov ; i++) {
1096 size_t want = iov[i].iov_len;
1097 if (want > (wioc->rawinput.offset - got)) {
1098 want = (wioc->rawinput.offset - got);
1099 }
1100
1101 memcpy(iov[i].iov_base,
1102 wioc->rawinput.buffer + got,
1103 want);
1104 got += want;
1105
1106 if (want < iov[i].iov_len) {
1107 break;
1108 }
1109 }
1110
1111 buffer_advance(&wioc->rawinput, got);
1112 qio_channel_websock_set_watch(wioc);
1113 return got;
1114}
1115
1116
1117static ssize_t qio_channel_websock_writev(QIOChannel *ioc,
1118 const struct iovec *iov,
1119 size_t niov,
1120 int *fds,
1121 size_t nfds,
1122 Error **errp)
1123{
1124 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001125 ssize_t want = iov_size(iov, niov);
1126 ssize_t avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001127 ssize_t ret;
1128
1129 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001130 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001131 return -1;
1132 }
1133
1134 if (wioc->io_eof) {
1135 error_setg(errp, "%s", "Broken pipe");
1136 return -1;
1137 }
1138
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001139 avail = wioc->encoutput.offset >= QIO_CHANNEL_WEBSOCK_MAX_BUFFER ?
1140 0 : (QIO_CHANNEL_WEBSOCK_MAX_BUFFER - wioc->encoutput.offset);
1141 if (want > avail) {
1142 want = avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001143 }
1144
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001145 if (want) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +01001146 qio_channel_websock_encode(wioc,
1147 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001148 iov, niov, want);
Daniel P. Berrangebac6c952017-10-09 14:39:17 +01001149 }
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001150
1151 /* Even if want == 0, we'll try write_wire in case there's
1152 * pending data we could usefully flush out
1153 */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001154 ret = qio_channel_websock_write_wire(wioc, errp);
1155 if (ret < 0 &&
1156 ret != QIO_CHANNEL_ERR_BLOCK) {
1157 qio_channel_websock_unset_watch(wioc);
1158 return -1;
1159 }
1160
1161 qio_channel_websock_set_watch(wioc);
1162
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001163 if (want == 0) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001164 return QIO_CHANNEL_ERR_BLOCK;
1165 }
1166
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001167 return want;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001168}
1169
1170static int qio_channel_websock_set_blocking(QIOChannel *ioc,
1171 bool enabled,
1172 Error **errp)
1173{
1174 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1175
1176 qio_channel_set_blocking(wioc->master, enabled, errp);
1177 return 0;
1178}
1179
1180static void qio_channel_websock_set_delay(QIOChannel *ioc,
1181 bool enabled)
1182{
1183 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1184
1185 qio_channel_set_delay(tioc->master, enabled);
1186}
1187
1188static void qio_channel_websock_set_cork(QIOChannel *ioc,
1189 bool enabled)
1190{
1191 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1192
1193 qio_channel_set_cork(tioc->master, enabled);
1194}
1195
1196static int qio_channel_websock_shutdown(QIOChannel *ioc,
1197 QIOChannelShutdown how,
1198 Error **errp)
1199{
1200 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1201
1202 return qio_channel_shutdown(tioc->master, how, errp);
1203}
1204
1205static int qio_channel_websock_close(QIOChannel *ioc,
1206 Error **errp)
1207{
1208 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1209
Daniel P. Berrange59f183b2017-09-21 11:00:47 +01001210 trace_qio_channel_websock_close(ioc);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001211 return qio_channel_close(wioc->master, errp);
1212}
1213
1214typedef struct QIOChannelWebsockSource QIOChannelWebsockSource;
1215struct QIOChannelWebsockSource {
1216 GSource parent;
1217 QIOChannelWebsock *wioc;
1218 GIOCondition condition;
1219};
1220
1221static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001222qio_channel_websock_source_check(GSource *source)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001223{
1224 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
1225 GIOCondition cond = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001226
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001227 if (wsource->wioc->rawinput.offset || wsource->wioc->io_eof) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001228 cond |= G_IO_IN;
1229 }
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +01001230 if (wsource->wioc->encoutput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001231 cond |= G_IO_OUT;
1232 }
1233
1234 return cond & wsource->condition;
1235}
1236
1237static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001238qio_channel_websock_source_prepare(GSource *source,
1239 gint *timeout)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001240{
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001241 *timeout = -1;
1242 return qio_channel_websock_source_check(source);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001243}
1244
1245static gboolean
1246qio_channel_websock_source_dispatch(GSource *source,
1247 GSourceFunc callback,
1248 gpointer user_data)
1249{
1250 QIOChannelFunc func = (QIOChannelFunc)callback;
1251 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001252
1253 return (*func)(QIO_CHANNEL(wsource->wioc),
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001254 qio_channel_websock_source_check(source),
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001255 user_data);
1256}
1257
1258static void
1259qio_channel_websock_source_finalize(GSource *source)
1260{
1261 QIOChannelWebsockSource *ssource = (QIOChannelWebsockSource *)source;
1262
1263 object_unref(OBJECT(ssource->wioc));
1264}
1265
1266GSourceFuncs qio_channel_websock_source_funcs = {
1267 qio_channel_websock_source_prepare,
1268 qio_channel_websock_source_check,
1269 qio_channel_websock_source_dispatch,
1270 qio_channel_websock_source_finalize
1271};
1272
1273static GSource *qio_channel_websock_create_watch(QIOChannel *ioc,
1274 GIOCondition condition)
1275{
1276 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1277 QIOChannelWebsockSource *ssource;
1278 GSource *source;
1279
1280 source = g_source_new(&qio_channel_websock_source_funcs,
1281 sizeof(QIOChannelWebsockSource));
1282 ssource = (QIOChannelWebsockSource *)source;
1283
1284 ssource->wioc = wioc;
1285 object_ref(OBJECT(wioc));
1286
1287 ssource->condition = condition;
1288
1289 qio_channel_websock_set_watch(wioc);
1290 return source;
1291}
1292
1293static void qio_channel_websock_class_init(ObjectClass *klass,
1294 void *class_data G_GNUC_UNUSED)
1295{
1296 QIOChannelClass *ioc_klass = QIO_CHANNEL_CLASS(klass);
1297
1298 ioc_klass->io_writev = qio_channel_websock_writev;
1299 ioc_klass->io_readv = qio_channel_websock_readv;
1300 ioc_klass->io_set_blocking = qio_channel_websock_set_blocking;
1301 ioc_klass->io_set_cork = qio_channel_websock_set_cork;
1302 ioc_klass->io_set_delay = qio_channel_websock_set_delay;
1303 ioc_klass->io_close = qio_channel_websock_close;
1304 ioc_klass->io_shutdown = qio_channel_websock_shutdown;
1305 ioc_klass->io_create_watch = qio_channel_websock_create_watch;
1306}
1307
1308static const TypeInfo qio_channel_websock_info = {
1309 .parent = TYPE_QIO_CHANNEL,
1310 .name = TYPE_QIO_CHANNEL_WEBSOCK,
1311 .instance_size = sizeof(QIOChannelWebsock),
1312 .instance_finalize = qio_channel_websock_finalize,
1313 .class_init = qio_channel_websock_class_init,
1314};
1315
1316static void qio_channel_websock_register_types(void)
1317{
1318 type_register_static(&qio_channel_websock_info);
1319}
1320
1321type_init(qio_channel_websock_register_types);