blob: 93c06f5b94cf3cac7a274a0defd85897bd82c049 [file] [log] [blame]
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001/*
2 * QEMU I/O channels driver websockets
3 *
4 * Copyright (c) 2015 Red Hat, Inc.
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, see <http://www.gnu.org/licenses/>.
18 *
19 */
20
Peter Maydellcae9fc52016-01-29 17:50:03 +000021#include "qemu/osdep.h"
Markus Armbrusterda34e652016-03-14 09:01:28 +010022#include "qapi/error.h"
Paolo Bonzini58369e22016-03-15 17:22:36 +010023#include "qemu/bswap.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000024#include "io/channel-websock.h"
25#include "crypto/hash.h"
26#include "trace.h"
27
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010028#include <time.h>
29
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000030
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +010031/* Max amount to allow in rawinput/encoutput buffers */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000032#define QIO_CHANNEL_WEBSOCK_MAX_BUFFER 8192
33
34#define QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN 24
35#define QIO_CHANNEL_WEBSOCK_GUID "258EAFA5-E914-47DA-95CA-C5AB0DC85B11"
36#define QIO_CHANNEL_WEBSOCK_GUID_LEN strlen(QIO_CHANNEL_WEBSOCK_GUID)
37
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000038#define QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL "sec-websocket-protocol"
39#define QIO_CHANNEL_WEBSOCK_HEADER_VERSION "sec-websocket-version"
40#define QIO_CHANNEL_WEBSOCK_HEADER_KEY "sec-websocket-key"
41#define QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE "upgrade"
42#define QIO_CHANNEL_WEBSOCK_HEADER_HOST "host"
43#define QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION "connection"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000044
45#define QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY "binary"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000046#define QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE "Upgrade"
47#define QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET "websocket"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000048
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010049#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
50 "Server: QEMU VNC\r\n" \
51 "Date: %s\r\n"
52
53#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000054 "HTTP/1.1 101 Switching Protocols\r\n" \
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010055 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000056 "Upgrade: websocket\r\n" \
57 "Connection: Upgrade\r\n" \
58 "Sec-WebSocket-Accept: %s\r\n" \
59 "Sec-WebSocket-Protocol: binary\r\n" \
60 "\r\n"
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010061#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND \
62 "HTTP/1.1 404 Not Found\r\n" \
63 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
64 "Connection: close\r\n" \
65 "\r\n"
66#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST \
67 "HTTP/1.1 400 Bad Request\r\n" \
68 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
69 "Connection: close\r\n" \
70 "Sec-WebSocket-Version: " \
71 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION \
72 "\r\n"
73#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR \
74 "HTTP/1.1 500 Internal Server Error\r\n" \
75 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
76 "Connection: close\r\n" \
77 "\r\n"
78#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE \
79 "HTTP/1.1 403 Request Entity Too Large\r\n" \
80 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
81 "Connection: close\r\n" \
82 "\r\n"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000083#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM "\r\n"
84#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_END "\r\n\r\n"
85#define QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION "13"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000086#define QIO_CHANNEL_WEBSOCK_HTTP_METHOD "GET"
87#define QIO_CHANNEL_WEBSOCK_HTTP_PATH "/"
88#define QIO_CHANNEL_WEBSOCK_HTTP_VERSION "HTTP/1.1"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000089
90/* The websockets packet header is variable length
91 * depending on the size of the payload... */
92
93/* ...length when using 7-bit payload length */
94#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT 6
95/* ...length when using 16-bit payload length */
96#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT 8
97/* ...length when using 64-bit payload length */
98#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT 14
99
100/* Length of the optional data mask field in header */
101#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK 4
102
103/* Maximum length that can fit in 7-bit payload size */
104#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT 126
105/* Maximum length that can fit in 16-bit payload size */
106#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT 65536
107
108/* Magic 7-bit length to indicate use of 16-bit payload length */
109#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT 126
110/* Magic 7-bit length to indicate use of 64-bit payload length */
111#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT 127
112
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700113/* Bitmasks for accessing header fields */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000114#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN 0x80
115#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE 0x0f
116#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK 0x80
117#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN 0x7f
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700118#define QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK 0x8
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000119
120typedef struct QIOChannelWebsockHeader QIOChannelWebsockHeader;
121
122struct QEMU_PACKED QIOChannelWebsockHeader {
123 unsigned char b0;
124 unsigned char b1;
125 union {
126 struct QEMU_PACKED {
127 uint16_t l16;
128 QIOChannelWebsockMask m16;
129 } s16;
130 struct QEMU_PACKED {
131 uint64_t l64;
132 QIOChannelWebsockMask m64;
133 } s64;
134 QIOChannelWebsockMask m;
135 } u;
136};
137
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000138typedef struct QIOChannelWebsockHTTPHeader QIOChannelWebsockHTTPHeader;
139
140struct QIOChannelWebsockHTTPHeader {
141 char *name;
142 char *value;
143};
144
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000145enum {
146 QIO_CHANNEL_WEBSOCK_OPCODE_CONTINUATION = 0x0,
147 QIO_CHANNEL_WEBSOCK_OPCODE_TEXT_FRAME = 0x1,
148 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME = 0x2,
149 QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE = 0x8,
150 QIO_CHANNEL_WEBSOCK_OPCODE_PING = 0x9,
151 QIO_CHANNEL_WEBSOCK_OPCODE_PONG = 0xA
152};
153
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100154static void qio_channel_websock_handshake_send_res(QIOChannelWebsock *ioc,
155 const char *resmsg,
156 ...)
157{
158 va_list vargs;
159 char *response;
160 size_t responselen;
161
162 va_start(vargs, resmsg);
163 response = g_strdup_vprintf(resmsg, vargs);
164 responselen = strlen(response);
165 buffer_reserve(&ioc->encoutput, responselen);
166 buffer_append(&ioc->encoutput, response, responselen);
167 va_end(vargs);
168}
169
170static gchar *qio_channel_websock_date_str(void)
171{
172 struct tm tm;
173 time_t now = time(NULL);
174 char datebuf[128];
175
176 gmtime_r(&now, &tm);
177
178 strftime(datebuf, sizeof(datebuf), "%a, %d %b %Y %H:%M:%S GMT", &tm);
179
180 return g_strdup(datebuf);
181}
182
183static void qio_channel_websock_handshake_send_res_err(QIOChannelWebsock *ioc,
184 const char *resdata)
185{
186 char *date = qio_channel_websock_date_str();
187 qio_channel_websock_handshake_send_res(ioc, resdata, date);
188 g_free(date);
189}
190
Brandon Carpenter530ca602017-09-12 08:21:53 -0700191enum {
192 QIO_CHANNEL_WEBSOCK_STATUS_NORMAL = 1000,
193 QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR = 1002,
194 QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA = 1003,
195 QIO_CHANNEL_WEBSOCK_STATUS_POLICY = 1008,
196 QIO_CHANNEL_WEBSOCK_STATUS_TOO_LARGE = 1009,
197 QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR = 1011,
198};
199
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000200static size_t
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100201qio_channel_websock_extract_headers(QIOChannelWebsock *ioc,
202 char *buffer,
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000203 QIOChannelWebsockHTTPHeader *hdrs,
204 size_t nhdrsalloc,
205 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000206{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000207 char *nl, *sep, *tmp;
208 size_t nhdrs = 0;
209
210 /*
211 * First parse the HTTP protocol greeting of format:
212 *
213 * $METHOD $PATH $VERSION
214 *
215 * e.g.
216 *
217 * GET / HTTP/1.1
218 */
219
220 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
221 if (!nl) {
222 error_setg(errp, "Missing HTTP header delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100223 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000224 }
225 *nl = '\0';
226
227 tmp = strchr(buffer, ' ');
228 if (!tmp) {
229 error_setg(errp, "Missing HTTP path delimiter");
230 return 0;
231 }
232 *tmp = '\0';
233
234 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_METHOD)) {
235 error_setg(errp, "Unsupported HTTP method %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100236 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000237 }
238
239 buffer = tmp + 1;
240 tmp = strchr(buffer, ' ');
241 if (!tmp) {
242 error_setg(errp, "Missing HTTP version delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100243 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000244 }
245 *tmp = '\0';
246
247 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_PATH)) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100248 qio_channel_websock_handshake_send_res_err(
249 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000250 error_setg(errp, "Unexpected HTTP path %s", buffer);
251 return 0;
252 }
253
254 buffer = tmp + 1;
255
256 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_VERSION)) {
257 error_setg(errp, "Unsupported HTTP version %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100258 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000259 }
260
261 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
262
263 /*
264 * Now parse all the header fields of format
265 *
266 * $NAME: $VALUE
267 *
268 * e.g.
269 *
270 * Cache-control: no-cache
271 */
272 do {
273 QIOChannelWebsockHTTPHeader *hdr;
274
275 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
276 if (nl) {
277 *nl = '\0';
278 }
279
280 sep = strchr(buffer, ':');
281 if (!sep) {
282 error_setg(errp, "Malformed HTTP header");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100283 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000284 }
285 *sep = '\0';
286 sep++;
287 while (*sep == ' ') {
288 sep++;
289 }
290
291 if (nhdrs >= nhdrsalloc) {
292 error_setg(errp, "Too many HTTP headers");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100293 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000294 }
295
296 hdr = &hdrs[nhdrs++];
297 hdr->name = buffer;
298 hdr->value = sep;
299
300 /* Canonicalize header name for easier identification later */
301 for (tmp = hdr->name; *tmp; tmp++) {
302 *tmp = g_ascii_tolower(*tmp);
303 }
304
305 if (nl) {
306 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
307 }
308 } while (nl != NULL);
309
310 return nhdrs;
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100311
312 bad_request:
313 qio_channel_websock_handshake_send_res_err(
314 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
315 return 0;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000316}
317
318static const char *
319qio_channel_websock_find_header(QIOChannelWebsockHTTPHeader *hdrs,
320 size_t nhdrs,
321 const char *name)
322{
323 size_t i;
324
325 for (i = 0; i < nhdrs; i++) {
326 if (g_str_equal(hdrs[i].name, name)) {
327 return hdrs[i].value;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000328 }
329 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000330
331 return NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000332}
333
334
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100335static void qio_channel_websock_handshake_send_res_ok(QIOChannelWebsock *ioc,
336 const char *key,
337 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000338{
339 char combined_key[QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
340 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1];
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100341 char *accept = NULL;
342 char *date = qio_channel_websock_date_str();
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000343
344 g_strlcpy(combined_key, key, QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN + 1);
345 g_strlcat(combined_key, QIO_CHANNEL_WEBSOCK_GUID,
346 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
347 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1);
348
349 /* hash and encode it */
350 if (qcrypto_hash_base64(QCRYPTO_HASH_ALG_SHA1,
351 combined_key,
352 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
353 QIO_CHANNEL_WEBSOCK_GUID_LEN,
354 &accept,
355 errp) < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100356 qio_channel_websock_handshake_send_res_err(
357 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR);
358 return;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000359 }
360
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100361 qio_channel_websock_handshake_send_res(
362 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK, date, accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000363
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100364 g_free(date);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000365 g_free(accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000366}
367
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100368static void qio_channel_websock_handshake_process(QIOChannelWebsock *ioc,
369 char *buffer,
370 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000371{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000372 QIOChannelWebsockHTTPHeader hdrs[32];
373 size_t nhdrs = G_N_ELEMENTS(hdrs);
374 const char *protocols = NULL, *version = NULL, *key = NULL,
375 *host = NULL, *connection = NULL, *upgrade = NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000376
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100377 nhdrs = qio_channel_websock_extract_headers(ioc, buffer, hdrs, nhdrs, errp);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000378 if (!nhdrs) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100379 return;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000380 }
381
382 protocols = qio_channel_websock_find_header(
383 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000384 if (!protocols) {
385 error_setg(errp, "Missing websocket protocol header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100386 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000387 }
388
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000389 version = qio_channel_websock_find_header(
390 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_VERSION);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000391 if (!version) {
392 error_setg(errp, "Missing websocket version header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100393 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000394 }
395
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000396 key = qio_channel_websock_find_header(
397 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_KEY);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000398 if (!key) {
399 error_setg(errp, "Missing websocket key header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100400 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000401 }
402
403 host = qio_channel_websock_find_header(
404 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_HOST);
405 if (!host) {
406 error_setg(errp, "Missing websocket host header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100407 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000408 }
409
410 connection = qio_channel_websock_find_header(
411 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION);
412 if (!connection) {
413 error_setg(errp, "Missing websocket connection header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100414 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000415 }
416
417 upgrade = qio_channel_websock_find_header(
418 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE);
419 if (!upgrade) {
420 error_setg(errp, "Missing websocket upgrade header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100421 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000422 }
423
424 if (!g_strrstr(protocols, QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY)) {
425 error_setg(errp, "No '%s' protocol is supported by client '%s'",
426 QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY, protocols);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100427 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000428 }
429
430 if (!g_str_equal(version, QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION)) {
431 error_setg(errp, "Version '%s' is not supported by client '%s'",
432 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION, version);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100433 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000434 }
435
436 if (strlen(key) != QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN) {
437 error_setg(errp, "Key length '%zu' was not as expected '%d'",
438 strlen(key), QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100439 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000440 }
441
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100442 if (strcasecmp(connection, QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000443 error_setg(errp, "No connection upgrade requested '%s'", connection);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100444 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000445 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000446
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100447 if (strcasecmp(upgrade, QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000448 error_setg(errp, "Incorrect upgrade method '%s'", upgrade);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100449 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000450 }
451
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100452 qio_channel_websock_handshake_send_res_ok(ioc, key, errp);
453 return;
454
455 bad_request:
456 qio_channel_websock_handshake_send_res_err(
457 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000458}
459
460static int qio_channel_websock_handshake_read(QIOChannelWebsock *ioc,
461 Error **errp)
462{
463 char *handshake_end;
464 ssize_t ret;
465 /* Typical HTTP headers from novnc are 512 bytes, so limiting
466 * total header size to 4096 is easily enough. */
467 size_t want = 4096 - ioc->encinput.offset;
468 buffer_reserve(&ioc->encinput, want);
469 ret = qio_channel_read(ioc->master,
470 (char *)buffer_end(&ioc->encinput), want, errp);
471 if (ret < 0) {
472 return -1;
473 }
474 ioc->encinput.offset += ret;
475
476 handshake_end = g_strstr_len((char *)ioc->encinput.buffer,
477 ioc->encinput.offset,
478 QIO_CHANNEL_WEBSOCK_HANDSHAKE_END);
479 if (!handshake_end) {
480 if (ioc->encinput.offset >= 4096) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100481 qio_channel_websock_handshake_send_res_err(
482 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000483 error_setg(errp,
484 "End of headers not found in first 4096 bytes");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100485 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000486 } else {
487 return 0;
488 }
489 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000490 *handshake_end = '\0';
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000491
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100492 qio_channel_websock_handshake_process(ioc,
493 (char *)ioc->encinput.buffer,
494 errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000495
496 buffer_advance(&ioc->encinput,
497 handshake_end - (char *)ioc->encinput.buffer +
498 strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_END));
499 return 1;
500}
501
502static gboolean qio_channel_websock_handshake_send(QIOChannel *ioc,
503 GIOCondition condition,
504 gpointer user_data)
505{
506 QIOTask *task = user_data;
507 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
508 qio_task_get_source(task));
509 Error *err = NULL;
510 ssize_t ret;
511
512 ret = qio_channel_write(wioc->master,
513 (char *)wioc->encoutput.buffer,
514 wioc->encoutput.offset,
515 &err);
516
517 if (ret < 0) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100518 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100519 qio_task_set_error(task, err);
520 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000521 return FALSE;
522 }
523
524 buffer_advance(&wioc->encoutput, ret);
525 if (wioc->encoutput.offset == 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100526 if (wioc->io_err) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100527 trace_qio_channel_websock_handshake_fail(
528 ioc, error_get_pretty(wioc->io_err));
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100529 qio_task_set_error(task, wioc->io_err);
530 wioc->io_err = NULL;
531 qio_task_complete(task);
532 } else {
533 trace_qio_channel_websock_handshake_complete(ioc);
534 qio_task_complete(task);
535 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000536 return FALSE;
537 }
538 trace_qio_channel_websock_handshake_pending(ioc, G_IO_OUT);
539 return TRUE;
540}
541
542static gboolean qio_channel_websock_handshake_io(QIOChannel *ioc,
543 GIOCondition condition,
544 gpointer user_data)
545{
546 QIOTask *task = user_data;
547 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
548 qio_task_get_source(task));
549 Error *err = NULL;
550 int ret;
551
552 ret = qio_channel_websock_handshake_read(wioc, &err);
553 if (ret < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100554 /*
555 * We only take this path on a fatal I/O error reading from
556 * client connection, as most of the time we have an
557 * HTTP 4xx err response to send instead
558 */
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100559 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100560 qio_task_set_error(task, err);
561 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000562 return FALSE;
563 }
564 if (ret == 0) {
565 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
566 /* need more data still */
567 return TRUE;
568 }
569
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100570 if (err) {
571 error_propagate(&wioc->io_err, err);
572 }
573
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000574 trace_qio_channel_websock_handshake_reply(ioc);
575 qio_channel_add_watch(
576 wioc->master,
577 G_IO_OUT,
578 qio_channel_websock_handshake_send,
579 task,
Daniel P. Berrangebc35d512016-06-07 12:27:51 +0100580 NULL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000581 return FALSE;
582}
583
584
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100585static void qio_channel_websock_encode(QIOChannelWebsock *ioc,
586 uint8_t opcode,
587 const struct iovec *iov,
588 size_t niov,
589 size_t size)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000590{
591 size_t header_size;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100592 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000593 union {
594 char buf[QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT];
595 QIOChannelWebsockHeader ws;
596 } header;
597
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100598 assert(size <= iov_size(iov, niov));
599
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700600 header.ws.b0 = QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN |
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700601 (opcode & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE);
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100602 if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT) {
603 header.ws.b1 = (uint8_t)size;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000604 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100605 } else if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000606 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100607 header.ws.u.s16.l16 = cpu_to_be16((uint16_t)size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000608 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
609 } else {
610 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100611 header.ws.u.s64.l64 = cpu_to_be64(size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000612 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
613 }
614 header_size -= QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK;
615
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100616 trace_qio_channel_websock_encode(ioc, opcode, header_size, size);
617 buffer_reserve(&ioc->encoutput, header_size + size);
618 buffer_append(&ioc->encoutput, header.buf, header_size);
619 for (i = 0; i < niov && size != 0; i++) {
620 size_t want = iov[i].iov_len;
621 if (want > size) {
622 want = size;
623 }
624 buffer_append(&ioc->encoutput, iov[i].iov_base, want);
625 size -= want;
626 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700627}
628
629
Brandon Carpenter530ca602017-09-12 08:21:53 -0700630static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *, Error **);
631
632
633static void qio_channel_websock_write_close(QIOChannelWebsock *ioc,
634 uint16_t code, const char *reason)
635{
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100636 struct iovec iov;
Brandon Carpenter530ca602017-09-12 08:21:53 -0700637 buffer_reserve(&ioc->rawoutput, 2 + (reason ? strlen(reason) : 0));
638 *(uint16_t *)(ioc->rawoutput.buffer + ioc->rawoutput.offset) =
639 cpu_to_be16(code);
640 ioc->rawoutput.offset += 2;
641 if (reason) {
642 buffer_append(&ioc->rawoutput, reason, strlen(reason));
643 }
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100644 iov.iov_base = ioc->rawoutput.buffer;
645 iov.iov_len = ioc->rawoutput.offset;
646 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
647 &iov, 1, iov.iov_len);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700648 buffer_reset(&ioc->rawoutput);
649 qio_channel_websock_write_wire(ioc, NULL);
650 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
651}
652
653
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700654static int qio_channel_websock_decode_header(QIOChannelWebsock *ioc,
655 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000656{
657 unsigned char opcode, fin, has_mask;
658 size_t header_size;
659 size_t payload_len;
660 QIOChannelWebsockHeader *header =
661 (QIOChannelWebsockHeader *)ioc->encinput.buffer;
662
663 if (ioc->payload_remain) {
664 error_setg(errp,
665 "Decoding header but %zu bytes of payload remain",
666 ioc->payload_remain);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700667 qio_channel_websock_write_close(
668 ioc, QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR,
669 "internal server error");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000670 return -1;
671 }
672 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT) {
673 /* header not complete */
674 return QIO_CHANNEL_ERR_BLOCK;
675 }
676
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700677 fin = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000678 opcode = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE;
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700679 has_mask = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000680 payload_len = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN;
681
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700682 /* Save or restore opcode. */
683 if (opcode) {
684 ioc->opcode = opcode;
685 } else {
686 opcode = ioc->opcode;
687 }
688
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100689 trace_qio_channel_websock_header_partial_decode(ioc, payload_len,
690 fin, opcode, (int)has_mask);
691
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000692 if (opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
693 /* disconnect */
694 return 0;
695 }
696
697 /* Websocket frame sanity check:
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700698 * * Fragmentation is only supported for binary frames.
699 * * All frames sent by a client MUST be masked.
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700700 * * Only binary and ping/pong encoding is supported.
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000701 */
702 if (!fin) {
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700703 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
704 error_setg(errp, "only binary websocket frames may be fragmented");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700705 qio_channel_websock_write_close(
706 ioc, QIO_CHANNEL_WEBSOCK_STATUS_POLICY ,
707 "only binary frames may be fragmented");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700708 return -1;
709 }
710 } else {
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700711 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME &&
Brandon Carpenter530ca602017-09-12 08:21:53 -0700712 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE &&
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700713 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PING &&
714 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PONG) {
Brandon Carpenter530ca602017-09-12 08:21:53 -0700715 error_setg(errp, "unsupported opcode: %#04x; only binary, close, "
716 "ping, and pong websocket frames are supported", opcode);
717 qio_channel_websock_write_close(
718 ioc, QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA ,
719 "only binary, close, ping, and pong frames are supported");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700720 return -1;
721 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000722 }
723 if (!has_mask) {
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700724 error_setg(errp, "client websocket frames must be masked");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700725 qio_channel_websock_write_close(
726 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
727 "client frames must be masked");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000728 return -1;
729 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000730
731 if (payload_len < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT) {
732 ioc->payload_remain = payload_len;
733 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
734 ioc->mask = header->u.m;
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700735 } else if (opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
736 error_setg(errp, "websocket control frame is too large");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700737 qio_channel_websock_write_close(
738 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
739 "control frame is too large");
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700740 return -1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000741 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT &&
742 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT) {
743 ioc->payload_remain = be16_to_cpu(header->u.s16.l16);
744 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
745 ioc->mask = header->u.s16.m16;
746 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT &&
747 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT) {
748 ioc->payload_remain = be64_to_cpu(header->u.s64.l64);
749 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
750 ioc->mask = header->u.s64.m64;
751 } else {
752 /* header not complete */
753 return QIO_CHANNEL_ERR_BLOCK;
754 }
755
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100756 trace_qio_channel_websock_header_full_decode(
757 ioc, header_size, ioc->payload_remain, ioc->mask.u);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000758 buffer_advance(&ioc->encinput, header_size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700759 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000760}
761
762
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700763static int qio_channel_websock_decode_payload(QIOChannelWebsock *ioc,
764 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000765{
766 size_t i;
Brandon Carpenter3a296402017-09-12 08:21:50 -0700767 size_t payload_len = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000768 uint32_t *payload32;
769
Brandon Carpenter3a296402017-09-12 08:21:50 -0700770 if (ioc->payload_remain) {
771 /* If we aren't at the end of the payload, then drop
772 * off the last bytes, so we're always multiple of 4
773 * for purpose of unmasking, except at end of payload
774 */
775 if (ioc->encinput.offset < ioc->payload_remain) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700776 /* Wait for the entire payload before processing control frames
777 * because the payload will most likely be echoed back. */
778 if (ioc->opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
779 return QIO_CHANNEL_ERR_BLOCK;
780 }
Brandon Carpenter3a296402017-09-12 08:21:50 -0700781 payload_len = ioc->encinput.offset - (ioc->encinput.offset % 4);
782 } else {
783 payload_len = ioc->payload_remain;
784 }
785 if (payload_len == 0) {
786 return QIO_CHANNEL_ERR_BLOCK;
787 }
788
789 ioc->payload_remain -= payload_len;
790
791 /* unmask frame */
792 /* process 1 frame (32 bit op) */
793 payload32 = (uint32_t *)ioc->encinput.buffer;
794 for (i = 0; i < payload_len / 4; i++) {
795 payload32[i] ^= ioc->mask.u;
796 }
797 /* process the remaining bytes (if any) */
798 for (i *= 4; i < payload_len; i++) {
799 ioc->encinput.buffer[i] ^= ioc->mask.c[i % 4];
800 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000801 }
802
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100803 trace_qio_channel_websock_payload_decode(
804 ioc, ioc->opcode, ioc->payload_remain);
805
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700806 if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
807 if (payload_len) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700808 /* binary frames are passed on */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700809 buffer_reserve(&ioc->rawinput, payload_len);
810 buffer_append(&ioc->rawinput, ioc->encinput.buffer, payload_len);
811 }
Brandon Carpenter530ca602017-09-12 08:21:53 -0700812 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
813 /* close frames are echoed back */
814 error_setg(errp, "websocket closed by peer");
815 if (payload_len) {
816 /* echo client status */
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100817 struct iovec iov = { .iov_base = ioc->encinput.buffer,
818 .iov_len = ioc->encinput.offset };
819 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
820 &iov, 1, iov.iov_len);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700821 qio_channel_websock_write_wire(ioc, NULL);
822 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
823 } else {
824 /* send our own status */
825 qio_channel_websock_write_close(
826 ioc, QIO_CHANNEL_WEBSOCK_STATUS_NORMAL, "peer requested close");
827 }
828 return -1;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700829 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_PING) {
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100830 /* ping frames produce an immediate reply, as long as we've not still
831 * got a previous pong queued, in which case we drop the new pong */
832 if (ioc->pong_remain == 0) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100833 struct iovec iov = { .iov_base = ioc->encinput.buffer,
834 .iov_len = ioc->encinput.offset };
835 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_PONG,
836 &iov, 1, iov.iov_len);
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100837 ioc->pong_remain = ioc->encoutput.offset;
838 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700839 } /* pong frames are ignored */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700840
Brandon Carpenter3a296402017-09-12 08:21:50 -0700841 if (payload_len) {
Brandon Carpenter3a296402017-09-12 08:21:50 -0700842 buffer_advance(&ioc->encinput, payload_len);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000843 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700844 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000845}
846
847
848QIOChannelWebsock *
849qio_channel_websock_new_server(QIOChannel *master)
850{
851 QIOChannelWebsock *wioc;
852 QIOChannel *ioc;
853
854 wioc = QIO_CHANNEL_WEBSOCK(object_new(TYPE_QIO_CHANNEL_WEBSOCK));
855 ioc = QIO_CHANNEL(wioc);
856
857 wioc->master = master;
Felipe Franciosie413ae02016-09-29 08:52:36 -0700858 if (qio_channel_has_feature(master, QIO_CHANNEL_FEATURE_SHUTDOWN)) {
Felipe Franciosid8d3c7c2016-09-29 08:52:37 -0700859 qio_channel_set_feature(ioc, QIO_CHANNEL_FEATURE_SHUTDOWN);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000860 }
861 object_ref(OBJECT(master));
862
863 trace_qio_channel_websock_new_server(wioc, master);
864 return wioc;
865}
866
867void qio_channel_websock_handshake(QIOChannelWebsock *ioc,
868 QIOTaskFunc func,
869 gpointer opaque,
870 GDestroyNotify destroy)
871{
872 QIOTask *task;
873
874 task = qio_task_new(OBJECT(ioc),
875 func,
876 opaque,
877 destroy);
878
879 trace_qio_channel_websock_handshake_start(ioc);
880 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
881 qio_channel_add_watch(ioc->master,
882 G_IO_IN,
883 qio_channel_websock_handshake_io,
884 task,
885 NULL);
886}
887
888
889static void qio_channel_websock_finalize(Object *obj)
890{
891 QIOChannelWebsock *ioc = QIO_CHANNEL_WEBSOCK(obj);
892
893 buffer_free(&ioc->encinput);
894 buffer_free(&ioc->encoutput);
895 buffer_free(&ioc->rawinput);
896 buffer_free(&ioc->rawoutput);
897 object_unref(OBJECT(ioc->master));
898 if (ioc->io_tag) {
899 g_source_remove(ioc->io_tag);
900 }
901 if (ioc->io_err) {
902 error_free(ioc->io_err);
903 }
904}
905
906
907static ssize_t qio_channel_websock_read_wire(QIOChannelWebsock *ioc,
908 Error **errp)
909{
910 ssize_t ret;
911
912 if (ioc->encinput.offset < 4096) {
913 size_t want = 4096 - ioc->encinput.offset;
914
915 buffer_reserve(&ioc->encinput, want);
916 ret = qio_channel_read(ioc->master,
917 (char *)ioc->encinput.buffer +
918 ioc->encinput.offset,
919 want,
920 errp);
921 if (ret < 0) {
922 return ret;
923 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700924 if (ret == 0 && ioc->encinput.offset == 0) {
925 ioc->io_eof = TRUE;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000926 return 0;
927 }
928 ioc->encinput.offset += ret;
929 }
930
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000931 while (ioc->encinput.offset != 0) {
932 if (ioc->payload_remain == 0) {
933 ret = qio_channel_websock_decode_header(ioc, errp);
934 if (ret < 0) {
935 return ret;
936 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000937 }
938
939 ret = qio_channel_websock_decode_payload(ioc, errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000940 if (ret < 0) {
941 return ret;
942 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000943 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000944 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000945}
946
947
948static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *ioc,
949 Error **errp)
950{
951 ssize_t ret;
952 ssize_t done = 0;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700953
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000954 while (ioc->encoutput.offset > 0) {
955 ret = qio_channel_write(ioc->master,
956 (char *)ioc->encoutput.buffer,
957 ioc->encoutput.offset,
958 errp);
959 if (ret < 0) {
960 if (ret == QIO_CHANNEL_ERR_BLOCK &&
961 done > 0) {
962 return done;
963 } else {
964 return ret;
965 }
966 }
967 buffer_advance(&ioc->encoutput, ret);
968 done += ret;
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100969 if (ioc->pong_remain < ret) {
970 ioc->pong_remain = 0;
971 } else {
972 ioc->pong_remain -= ret;
973 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000974 }
975 return done;
976}
977
978
979static void qio_channel_websock_flush_free(gpointer user_data)
980{
981 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
982 object_unref(OBJECT(wioc));
983}
984
985static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc);
986
987static gboolean qio_channel_websock_flush(QIOChannel *ioc,
988 GIOCondition condition,
989 gpointer user_data)
990{
991 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
992 ssize_t ret;
993
994 if (condition & G_IO_OUT) {
995 ret = qio_channel_websock_write_wire(wioc, &wioc->io_err);
996 if (ret < 0) {
997 goto cleanup;
998 }
999 }
1000
1001 if (condition & G_IO_IN) {
1002 ret = qio_channel_websock_read_wire(wioc, &wioc->io_err);
1003 if (ret < 0) {
1004 goto cleanup;
1005 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001006 }
1007
1008 cleanup:
1009 qio_channel_websock_set_watch(wioc);
1010 return FALSE;
1011}
1012
1013
1014static void qio_channel_websock_unset_watch(QIOChannelWebsock *ioc)
1015{
1016 if (ioc->io_tag) {
1017 g_source_remove(ioc->io_tag);
1018 ioc->io_tag = 0;
1019 }
1020}
1021
1022static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc)
1023{
1024 GIOCondition cond = 0;
1025
1026 qio_channel_websock_unset_watch(ioc);
1027
1028 if (ioc->io_err) {
1029 return;
1030 }
1031
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +01001032 if (ioc->encoutput.offset) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001033 cond |= G_IO_OUT;
1034 }
1035 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER &&
1036 !ioc->io_eof) {
1037 cond |= G_IO_IN;
1038 }
1039
1040 if (cond) {
1041 object_ref(OBJECT(ioc));
1042 ioc->io_tag =
1043 qio_channel_add_watch(ioc->master,
1044 cond,
1045 qio_channel_websock_flush,
1046 ioc,
1047 qio_channel_websock_flush_free);
1048 }
1049}
1050
1051
1052static ssize_t qio_channel_websock_readv(QIOChannel *ioc,
1053 const struct iovec *iov,
1054 size_t niov,
1055 int **fds,
1056 size_t *nfds,
1057 Error **errp)
1058{
1059 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1060 size_t i;
1061 ssize_t got = 0;
1062 ssize_t ret;
1063
1064 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001065 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001066 return -1;
1067 }
1068
1069 if (!wioc->rawinput.offset) {
1070 ret = qio_channel_websock_read_wire(QIO_CHANNEL_WEBSOCK(ioc), errp);
1071 if (ret < 0) {
1072 return ret;
1073 }
1074 }
1075
1076 for (i = 0 ; i < niov ; i++) {
1077 size_t want = iov[i].iov_len;
1078 if (want > (wioc->rawinput.offset - got)) {
1079 want = (wioc->rawinput.offset - got);
1080 }
1081
1082 memcpy(iov[i].iov_base,
1083 wioc->rawinput.buffer + got,
1084 want);
1085 got += want;
1086
1087 if (want < iov[i].iov_len) {
1088 break;
1089 }
1090 }
1091
1092 buffer_advance(&wioc->rawinput, got);
1093 qio_channel_websock_set_watch(wioc);
1094 return got;
1095}
1096
1097
1098static ssize_t qio_channel_websock_writev(QIOChannel *ioc,
1099 const struct iovec *iov,
1100 size_t niov,
1101 int *fds,
1102 size_t nfds,
1103 Error **errp)
1104{
1105 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1106 size_t i;
1107 ssize_t done = 0;
1108 ssize_t ret;
1109
1110 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001111 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001112 return -1;
1113 }
1114
1115 if (wioc->io_eof) {
1116 error_setg(errp, "%s", "Broken pipe");
1117 return -1;
1118 }
1119
1120 for (i = 0; i < niov; i++) {
1121 size_t want = iov[i].iov_len;
1122 if ((want + wioc->rawoutput.offset) > QIO_CHANNEL_WEBSOCK_MAX_BUFFER) {
1123 want = (QIO_CHANNEL_WEBSOCK_MAX_BUFFER - wioc->rawoutput.offset);
1124 }
1125 if (want == 0) {
1126 goto done;
1127 }
1128
1129 buffer_reserve(&wioc->rawoutput, want);
1130 buffer_append(&wioc->rawoutput, iov[i].iov_base, want);
1131 done += want;
1132 if (want < iov[i].iov_len) {
1133 break;
1134 }
1135 }
1136
1137 done:
Daniel P. Berrangefb74e592017-10-09 16:33:20 +01001138 if (wioc->rawoutput.offset) {
1139 struct iovec iov = { .iov_base = wioc->rawoutput.buffer,
1140 .iov_len = wioc->rawoutput.offset };
1141 qio_channel_websock_encode(wioc,
1142 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME,
1143 &iov, 1, iov.iov_len);
1144 buffer_reset(&wioc->rawoutput);
Daniel P. Berrangebac6c952017-10-09 14:39:17 +01001145 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001146 ret = qio_channel_websock_write_wire(wioc, errp);
1147 if (ret < 0 &&
1148 ret != QIO_CHANNEL_ERR_BLOCK) {
1149 qio_channel_websock_unset_watch(wioc);
1150 return -1;
1151 }
1152
1153 qio_channel_websock_set_watch(wioc);
1154
1155 if (done == 0) {
1156 return QIO_CHANNEL_ERR_BLOCK;
1157 }
1158
1159 return done;
1160}
1161
1162static int qio_channel_websock_set_blocking(QIOChannel *ioc,
1163 bool enabled,
1164 Error **errp)
1165{
1166 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1167
1168 qio_channel_set_blocking(wioc->master, enabled, errp);
1169 return 0;
1170}
1171
1172static void qio_channel_websock_set_delay(QIOChannel *ioc,
1173 bool enabled)
1174{
1175 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1176
1177 qio_channel_set_delay(tioc->master, enabled);
1178}
1179
1180static void qio_channel_websock_set_cork(QIOChannel *ioc,
1181 bool enabled)
1182{
1183 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1184
1185 qio_channel_set_cork(tioc->master, enabled);
1186}
1187
1188static int qio_channel_websock_shutdown(QIOChannel *ioc,
1189 QIOChannelShutdown how,
1190 Error **errp)
1191{
1192 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1193
1194 return qio_channel_shutdown(tioc->master, how, errp);
1195}
1196
1197static int qio_channel_websock_close(QIOChannel *ioc,
1198 Error **errp)
1199{
1200 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1201
Daniel P. Berrange59f183b2017-09-21 11:00:47 +01001202 trace_qio_channel_websock_close(ioc);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001203 return qio_channel_close(wioc->master, errp);
1204}
1205
1206typedef struct QIOChannelWebsockSource QIOChannelWebsockSource;
1207struct QIOChannelWebsockSource {
1208 GSource parent;
1209 QIOChannelWebsock *wioc;
1210 GIOCondition condition;
1211};
1212
1213static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001214qio_channel_websock_source_check(GSource *source)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001215{
1216 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
1217 GIOCondition cond = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001218
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001219 if (wsource->wioc->rawinput.offset || wsource->wioc->io_eof) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001220 cond |= G_IO_IN;
1221 }
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +01001222 if (wsource->wioc->encoutput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001223 cond |= G_IO_OUT;
1224 }
1225
1226 return cond & wsource->condition;
1227}
1228
1229static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001230qio_channel_websock_source_prepare(GSource *source,
1231 gint *timeout)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001232{
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001233 *timeout = -1;
1234 return qio_channel_websock_source_check(source);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001235}
1236
1237static gboolean
1238qio_channel_websock_source_dispatch(GSource *source,
1239 GSourceFunc callback,
1240 gpointer user_data)
1241{
1242 QIOChannelFunc func = (QIOChannelFunc)callback;
1243 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001244
1245 return (*func)(QIO_CHANNEL(wsource->wioc),
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001246 qio_channel_websock_source_check(source),
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001247 user_data);
1248}
1249
1250static void
1251qio_channel_websock_source_finalize(GSource *source)
1252{
1253 QIOChannelWebsockSource *ssource = (QIOChannelWebsockSource *)source;
1254
1255 object_unref(OBJECT(ssource->wioc));
1256}
1257
1258GSourceFuncs qio_channel_websock_source_funcs = {
1259 qio_channel_websock_source_prepare,
1260 qio_channel_websock_source_check,
1261 qio_channel_websock_source_dispatch,
1262 qio_channel_websock_source_finalize
1263};
1264
1265static GSource *qio_channel_websock_create_watch(QIOChannel *ioc,
1266 GIOCondition condition)
1267{
1268 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1269 QIOChannelWebsockSource *ssource;
1270 GSource *source;
1271
1272 source = g_source_new(&qio_channel_websock_source_funcs,
1273 sizeof(QIOChannelWebsockSource));
1274 ssource = (QIOChannelWebsockSource *)source;
1275
1276 ssource->wioc = wioc;
1277 object_ref(OBJECT(wioc));
1278
1279 ssource->condition = condition;
1280
1281 qio_channel_websock_set_watch(wioc);
1282 return source;
1283}
1284
1285static void qio_channel_websock_class_init(ObjectClass *klass,
1286 void *class_data G_GNUC_UNUSED)
1287{
1288 QIOChannelClass *ioc_klass = QIO_CHANNEL_CLASS(klass);
1289
1290 ioc_klass->io_writev = qio_channel_websock_writev;
1291 ioc_klass->io_readv = qio_channel_websock_readv;
1292 ioc_klass->io_set_blocking = qio_channel_websock_set_blocking;
1293 ioc_klass->io_set_cork = qio_channel_websock_set_cork;
1294 ioc_klass->io_set_delay = qio_channel_websock_set_delay;
1295 ioc_klass->io_close = qio_channel_websock_close;
1296 ioc_klass->io_shutdown = qio_channel_websock_shutdown;
1297 ioc_klass->io_create_watch = qio_channel_websock_create_watch;
1298}
1299
1300static const TypeInfo qio_channel_websock_info = {
1301 .parent = TYPE_QIO_CHANNEL,
1302 .name = TYPE_QIO_CHANNEL_WEBSOCK,
1303 .instance_size = sizeof(QIOChannelWebsock),
1304 .instance_finalize = qio_channel_websock_finalize,
1305 .class_init = qio_channel_websock_class_init,
1306};
1307
1308static void qio_channel_websock_register_types(void)
1309{
1310 type_register_static(&qio_channel_websock_info);
1311}
1312
1313type_init(qio_channel_websock_register_types);