blob: e82b1beab306582772b919804236f46200c82bcd [file] [log] [blame]
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001/*
2 * QEMU I/O channels driver websockets
3 *
4 * Copyright (c) 2015 Red Hat, Inc.
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, see <http://www.gnu.org/licenses/>.
18 *
19 */
20
Peter Maydellcae9fc52016-01-29 17:50:03 +000021#include "qemu/osdep.h"
Markus Armbrusterda34e652016-03-14 09:01:28 +010022#include "qapi/error.h"
Paolo Bonzini58369e22016-03-15 17:22:36 +010023#include "qemu/bswap.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000024#include "io/channel-websock.h"
25#include "crypto/hash.h"
26#include "trace.h"
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +010027#include "qemu/iov.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000028
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010029#include <time.h>
30
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000031
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +010032/* Max amount to allow in rawinput/encoutput buffers */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000033#define QIO_CHANNEL_WEBSOCK_MAX_BUFFER 8192
34
35#define QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN 24
36#define QIO_CHANNEL_WEBSOCK_GUID "258EAFA5-E914-47DA-95CA-C5AB0DC85B11"
37#define QIO_CHANNEL_WEBSOCK_GUID_LEN strlen(QIO_CHANNEL_WEBSOCK_GUID)
38
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000039#define QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL "sec-websocket-protocol"
40#define QIO_CHANNEL_WEBSOCK_HEADER_VERSION "sec-websocket-version"
41#define QIO_CHANNEL_WEBSOCK_HEADER_KEY "sec-websocket-key"
42#define QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE "upgrade"
43#define QIO_CHANNEL_WEBSOCK_HEADER_HOST "host"
44#define QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION "connection"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000045
46#define QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY "binary"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000047#define QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE "Upgrade"
48#define QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET "websocket"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000049
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010050#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
51 "Server: QEMU VNC\r\n" \
52 "Date: %s\r\n"
53
54#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000055 "HTTP/1.1 101 Switching Protocols\r\n" \
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010056 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000057 "Upgrade: websocket\r\n" \
58 "Connection: Upgrade\r\n" \
59 "Sec-WebSocket-Accept: %s\r\n" \
60 "Sec-WebSocket-Protocol: binary\r\n" \
61 "\r\n"
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010062#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND \
63 "HTTP/1.1 404 Not Found\r\n" \
64 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
65 "Connection: close\r\n" \
66 "\r\n"
67#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST \
68 "HTTP/1.1 400 Bad Request\r\n" \
69 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
70 "Connection: close\r\n" \
71 "Sec-WebSocket-Version: " \
72 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION \
73 "\r\n"
74#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR \
75 "HTTP/1.1 500 Internal Server Error\r\n" \
76 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
77 "Connection: close\r\n" \
78 "\r\n"
79#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE \
80 "HTTP/1.1 403 Request Entity Too Large\r\n" \
81 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
82 "Connection: close\r\n" \
83 "\r\n"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000084#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM "\r\n"
85#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_END "\r\n\r\n"
86#define QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION "13"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000087#define QIO_CHANNEL_WEBSOCK_HTTP_METHOD "GET"
88#define QIO_CHANNEL_WEBSOCK_HTTP_PATH "/"
89#define QIO_CHANNEL_WEBSOCK_HTTP_VERSION "HTTP/1.1"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000090
91/* The websockets packet header is variable length
92 * depending on the size of the payload... */
93
94/* ...length when using 7-bit payload length */
95#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT 6
96/* ...length when using 16-bit payload length */
97#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT 8
98/* ...length when using 64-bit payload length */
99#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT 14
100
101/* Length of the optional data mask field in header */
102#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK 4
103
104/* Maximum length that can fit in 7-bit payload size */
105#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT 126
106/* Maximum length that can fit in 16-bit payload size */
107#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT 65536
108
109/* Magic 7-bit length to indicate use of 16-bit payload length */
110#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT 126
111/* Magic 7-bit length to indicate use of 64-bit payload length */
112#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT 127
113
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700114/* Bitmasks for accessing header fields */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000115#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN 0x80
116#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE 0x0f
117#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK 0x80
118#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN 0x7f
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700119#define QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK 0x8
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000120
121typedef struct QIOChannelWebsockHeader QIOChannelWebsockHeader;
122
123struct QEMU_PACKED QIOChannelWebsockHeader {
124 unsigned char b0;
125 unsigned char b1;
126 union {
127 struct QEMU_PACKED {
128 uint16_t l16;
129 QIOChannelWebsockMask m16;
130 } s16;
131 struct QEMU_PACKED {
132 uint64_t l64;
133 QIOChannelWebsockMask m64;
134 } s64;
135 QIOChannelWebsockMask m;
136 } u;
137};
138
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000139typedef struct QIOChannelWebsockHTTPHeader QIOChannelWebsockHTTPHeader;
140
141struct QIOChannelWebsockHTTPHeader {
142 char *name;
143 char *value;
144};
145
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000146enum {
147 QIO_CHANNEL_WEBSOCK_OPCODE_CONTINUATION = 0x0,
148 QIO_CHANNEL_WEBSOCK_OPCODE_TEXT_FRAME = 0x1,
149 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME = 0x2,
150 QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE = 0x8,
151 QIO_CHANNEL_WEBSOCK_OPCODE_PING = 0x9,
152 QIO_CHANNEL_WEBSOCK_OPCODE_PONG = 0xA
153};
154
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100155static void qio_channel_websock_handshake_send_res(QIOChannelWebsock *ioc,
156 const char *resmsg,
157 ...)
158{
159 va_list vargs;
160 char *response;
161 size_t responselen;
162
163 va_start(vargs, resmsg);
164 response = g_strdup_vprintf(resmsg, vargs);
165 responselen = strlen(response);
166 buffer_reserve(&ioc->encoutput, responselen);
167 buffer_append(&ioc->encoutput, response, responselen);
168 va_end(vargs);
169}
170
171static gchar *qio_channel_websock_date_str(void)
172{
173 struct tm tm;
174 time_t now = time(NULL);
175 char datebuf[128];
176
177 gmtime_r(&now, &tm);
178
179 strftime(datebuf, sizeof(datebuf), "%a, %d %b %Y %H:%M:%S GMT", &tm);
180
181 return g_strdup(datebuf);
182}
183
184static void qio_channel_websock_handshake_send_res_err(QIOChannelWebsock *ioc,
185 const char *resdata)
186{
187 char *date = qio_channel_websock_date_str();
188 qio_channel_websock_handshake_send_res(ioc, resdata, date);
189 g_free(date);
190}
191
Brandon Carpenter530ca602017-09-12 08:21:53 -0700192enum {
193 QIO_CHANNEL_WEBSOCK_STATUS_NORMAL = 1000,
194 QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR = 1002,
195 QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA = 1003,
196 QIO_CHANNEL_WEBSOCK_STATUS_POLICY = 1008,
197 QIO_CHANNEL_WEBSOCK_STATUS_TOO_LARGE = 1009,
198 QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR = 1011,
199};
200
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000201static size_t
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100202qio_channel_websock_extract_headers(QIOChannelWebsock *ioc,
203 char *buffer,
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000204 QIOChannelWebsockHTTPHeader *hdrs,
205 size_t nhdrsalloc,
206 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000207{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000208 char *nl, *sep, *tmp;
209 size_t nhdrs = 0;
210
211 /*
212 * First parse the HTTP protocol greeting of format:
213 *
214 * $METHOD $PATH $VERSION
215 *
216 * e.g.
217 *
218 * GET / HTTP/1.1
219 */
220
221 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
222 if (!nl) {
223 error_setg(errp, "Missing HTTP header delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100224 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000225 }
226 *nl = '\0';
227
228 tmp = strchr(buffer, ' ');
229 if (!tmp) {
230 error_setg(errp, "Missing HTTP path delimiter");
231 return 0;
232 }
233 *tmp = '\0';
234
235 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_METHOD)) {
236 error_setg(errp, "Unsupported HTTP method %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100237 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000238 }
239
240 buffer = tmp + 1;
241 tmp = strchr(buffer, ' ');
242 if (!tmp) {
243 error_setg(errp, "Missing HTTP version delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100244 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000245 }
246 *tmp = '\0';
247
248 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_PATH)) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100249 qio_channel_websock_handshake_send_res_err(
250 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000251 error_setg(errp, "Unexpected HTTP path %s", buffer);
252 return 0;
253 }
254
255 buffer = tmp + 1;
256
257 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_VERSION)) {
258 error_setg(errp, "Unsupported HTTP version %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100259 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000260 }
261
262 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
263
264 /*
265 * Now parse all the header fields of format
266 *
267 * $NAME: $VALUE
268 *
269 * e.g.
270 *
271 * Cache-control: no-cache
272 */
273 do {
274 QIOChannelWebsockHTTPHeader *hdr;
275
276 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
277 if (nl) {
278 *nl = '\0';
279 }
280
281 sep = strchr(buffer, ':');
282 if (!sep) {
283 error_setg(errp, "Malformed HTTP header");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100284 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000285 }
286 *sep = '\0';
287 sep++;
288 while (*sep == ' ') {
289 sep++;
290 }
291
292 if (nhdrs >= nhdrsalloc) {
293 error_setg(errp, "Too many HTTP headers");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100294 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000295 }
296
297 hdr = &hdrs[nhdrs++];
298 hdr->name = buffer;
299 hdr->value = sep;
300
301 /* Canonicalize header name for easier identification later */
302 for (tmp = hdr->name; *tmp; tmp++) {
303 *tmp = g_ascii_tolower(*tmp);
304 }
305
306 if (nl) {
307 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
308 }
309 } while (nl != NULL);
310
311 return nhdrs;
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100312
313 bad_request:
314 qio_channel_websock_handshake_send_res_err(
315 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
316 return 0;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000317}
318
319static const char *
320qio_channel_websock_find_header(QIOChannelWebsockHTTPHeader *hdrs,
321 size_t nhdrs,
322 const char *name)
323{
324 size_t i;
325
326 for (i = 0; i < nhdrs; i++) {
327 if (g_str_equal(hdrs[i].name, name)) {
328 return hdrs[i].value;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000329 }
330 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000331
332 return NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000333}
334
335
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100336static void qio_channel_websock_handshake_send_res_ok(QIOChannelWebsock *ioc,
337 const char *key,
338 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000339{
340 char combined_key[QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
341 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1];
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100342 char *accept = NULL;
343 char *date = qio_channel_websock_date_str();
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000344
345 g_strlcpy(combined_key, key, QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN + 1);
346 g_strlcat(combined_key, QIO_CHANNEL_WEBSOCK_GUID,
347 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
348 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1);
349
350 /* hash and encode it */
351 if (qcrypto_hash_base64(QCRYPTO_HASH_ALG_SHA1,
352 combined_key,
353 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
354 QIO_CHANNEL_WEBSOCK_GUID_LEN,
355 &accept,
356 errp) < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100357 qio_channel_websock_handshake_send_res_err(
358 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR);
359 return;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000360 }
361
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100362 qio_channel_websock_handshake_send_res(
363 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK, date, accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000364
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100365 g_free(date);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000366 g_free(accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000367}
368
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100369static void qio_channel_websock_handshake_process(QIOChannelWebsock *ioc,
370 char *buffer,
371 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000372{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000373 QIOChannelWebsockHTTPHeader hdrs[32];
374 size_t nhdrs = G_N_ELEMENTS(hdrs);
375 const char *protocols = NULL, *version = NULL, *key = NULL,
376 *host = NULL, *connection = NULL, *upgrade = NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000377
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100378 nhdrs = qio_channel_websock_extract_headers(ioc, buffer, hdrs, nhdrs, errp);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000379 if (!nhdrs) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100380 return;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000381 }
382
383 protocols = qio_channel_websock_find_header(
384 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000385 if (!protocols) {
386 error_setg(errp, "Missing websocket protocol header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100387 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000388 }
389
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000390 version = qio_channel_websock_find_header(
391 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_VERSION);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000392 if (!version) {
393 error_setg(errp, "Missing websocket version header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100394 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000395 }
396
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000397 key = qio_channel_websock_find_header(
398 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_KEY);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000399 if (!key) {
400 error_setg(errp, "Missing websocket key header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100401 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000402 }
403
404 host = qio_channel_websock_find_header(
405 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_HOST);
406 if (!host) {
407 error_setg(errp, "Missing websocket host header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100408 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000409 }
410
411 connection = qio_channel_websock_find_header(
412 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION);
413 if (!connection) {
414 error_setg(errp, "Missing websocket connection header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100415 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000416 }
417
418 upgrade = qio_channel_websock_find_header(
419 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE);
420 if (!upgrade) {
421 error_setg(errp, "Missing websocket upgrade header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100422 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000423 }
424
425 if (!g_strrstr(protocols, QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY)) {
426 error_setg(errp, "No '%s' protocol is supported by client '%s'",
427 QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY, protocols);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100428 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000429 }
430
431 if (!g_str_equal(version, QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION)) {
432 error_setg(errp, "Version '%s' is not supported by client '%s'",
433 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION, version);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100434 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000435 }
436
437 if (strlen(key) != QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN) {
438 error_setg(errp, "Key length '%zu' was not as expected '%d'",
439 strlen(key), QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100440 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000441 }
442
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100443 if (strcasecmp(connection, QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000444 error_setg(errp, "No connection upgrade requested '%s'", connection);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100445 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000446 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000447
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100448 if (strcasecmp(upgrade, QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000449 error_setg(errp, "Incorrect upgrade method '%s'", upgrade);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100450 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000451 }
452
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100453 qio_channel_websock_handshake_send_res_ok(ioc, key, errp);
454 return;
455
456 bad_request:
457 qio_channel_websock_handshake_send_res_err(
458 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000459}
460
461static int qio_channel_websock_handshake_read(QIOChannelWebsock *ioc,
462 Error **errp)
463{
464 char *handshake_end;
465 ssize_t ret;
466 /* Typical HTTP headers from novnc are 512 bytes, so limiting
467 * total header size to 4096 is easily enough. */
468 size_t want = 4096 - ioc->encinput.offset;
469 buffer_reserve(&ioc->encinput, want);
470 ret = qio_channel_read(ioc->master,
471 (char *)buffer_end(&ioc->encinput), want, errp);
472 if (ret < 0) {
473 return -1;
474 }
475 ioc->encinput.offset += ret;
476
477 handshake_end = g_strstr_len((char *)ioc->encinput.buffer,
478 ioc->encinput.offset,
479 QIO_CHANNEL_WEBSOCK_HANDSHAKE_END);
480 if (!handshake_end) {
481 if (ioc->encinput.offset >= 4096) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100482 qio_channel_websock_handshake_send_res_err(
483 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000484 error_setg(errp,
485 "End of headers not found in first 4096 bytes");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100486 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000487 } else {
488 return 0;
489 }
490 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000491 *handshake_end = '\0';
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000492
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100493 qio_channel_websock_handshake_process(ioc,
494 (char *)ioc->encinput.buffer,
495 errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000496
497 buffer_advance(&ioc->encinput,
498 handshake_end - (char *)ioc->encinput.buffer +
499 strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_END));
500 return 1;
501}
502
503static gboolean qio_channel_websock_handshake_send(QIOChannel *ioc,
504 GIOCondition condition,
505 gpointer user_data)
506{
507 QIOTask *task = user_data;
508 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
509 qio_task_get_source(task));
510 Error *err = NULL;
511 ssize_t ret;
512
513 ret = qio_channel_write(wioc->master,
514 (char *)wioc->encoutput.buffer,
515 wioc->encoutput.offset,
516 &err);
517
518 if (ret < 0) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100519 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100520 qio_task_set_error(task, err);
521 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000522 return FALSE;
523 }
524
525 buffer_advance(&wioc->encoutput, ret);
526 if (wioc->encoutput.offset == 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100527 if (wioc->io_err) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100528 trace_qio_channel_websock_handshake_fail(
529 ioc, error_get_pretty(wioc->io_err));
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100530 qio_task_set_error(task, wioc->io_err);
531 wioc->io_err = NULL;
532 qio_task_complete(task);
533 } else {
534 trace_qio_channel_websock_handshake_complete(ioc);
535 qio_task_complete(task);
536 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000537 return FALSE;
538 }
539 trace_qio_channel_websock_handshake_pending(ioc, G_IO_OUT);
540 return TRUE;
541}
542
543static gboolean qio_channel_websock_handshake_io(QIOChannel *ioc,
544 GIOCondition condition,
545 gpointer user_data)
546{
547 QIOTask *task = user_data;
548 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
549 qio_task_get_source(task));
550 Error *err = NULL;
551 int ret;
552
553 ret = qio_channel_websock_handshake_read(wioc, &err);
554 if (ret < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100555 /*
556 * We only take this path on a fatal I/O error reading from
557 * client connection, as most of the time we have an
558 * HTTP 4xx err response to send instead
559 */
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100560 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100561 qio_task_set_error(task, err);
562 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000563 return FALSE;
564 }
565 if (ret == 0) {
566 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
567 /* need more data still */
568 return TRUE;
569 }
570
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100571 if (err) {
572 error_propagate(&wioc->io_err, err);
573 }
574
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000575 trace_qio_channel_websock_handshake_reply(ioc);
576 qio_channel_add_watch(
577 wioc->master,
578 G_IO_OUT,
579 qio_channel_websock_handshake_send,
580 task,
Daniel P. Berrangebc35d512016-06-07 12:27:51 +0100581 NULL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000582 return FALSE;
583}
584
585
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100586static void qio_channel_websock_encode(QIOChannelWebsock *ioc,
587 uint8_t opcode,
588 const struct iovec *iov,
589 size_t niov,
590 size_t size)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000591{
592 size_t header_size;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100593 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000594 union {
595 char buf[QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT];
596 QIOChannelWebsockHeader ws;
597 } header;
598
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100599 assert(size <= iov_size(iov, niov));
600
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700601 header.ws.b0 = QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN |
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700602 (opcode & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE);
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100603 if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT) {
604 header.ws.b1 = (uint8_t)size;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000605 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100606 } else if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000607 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100608 header.ws.u.s16.l16 = cpu_to_be16((uint16_t)size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000609 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
610 } else {
611 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100612 header.ws.u.s64.l64 = cpu_to_be64(size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000613 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
614 }
615 header_size -= QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK;
616
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100617 trace_qio_channel_websock_encode(ioc, opcode, header_size, size);
618 buffer_reserve(&ioc->encoutput, header_size + size);
619 buffer_append(&ioc->encoutput, header.buf, header_size);
620 for (i = 0; i < niov && size != 0; i++) {
621 size_t want = iov[i].iov_len;
622 if (want > size) {
623 want = size;
624 }
625 buffer_append(&ioc->encoutput, iov[i].iov_base, want);
626 size -= want;
627 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700628}
629
630
Brandon Carpenter530ca602017-09-12 08:21:53 -0700631static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *, Error **);
632
633
634static void qio_channel_websock_write_close(QIOChannelWebsock *ioc,
635 uint16_t code, const char *reason)
636{
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100637 struct iovec iov[2] = {
638 { .iov_base = &code, .iov_len = sizeof(code) },
639 };
640 size_t niov = 1;
641 size_t size = iov[0].iov_len;
642
643 cpu_to_be16s(&code);
644
Brandon Carpenter530ca602017-09-12 08:21:53 -0700645 if (reason) {
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100646 iov[1].iov_base = (void *)reason;
647 iov[1].iov_len = strlen(reason);
648 size += iov[1].iov_len;
649 niov++;
Brandon Carpenter530ca602017-09-12 08:21:53 -0700650 }
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100651 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100652 iov, niov, size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700653 qio_channel_websock_write_wire(ioc, NULL);
654 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
655}
656
657
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700658static int qio_channel_websock_decode_header(QIOChannelWebsock *ioc,
659 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000660{
661 unsigned char opcode, fin, has_mask;
662 size_t header_size;
663 size_t payload_len;
664 QIOChannelWebsockHeader *header =
665 (QIOChannelWebsockHeader *)ioc->encinput.buffer;
666
667 if (ioc->payload_remain) {
668 error_setg(errp,
669 "Decoding header but %zu bytes of payload remain",
670 ioc->payload_remain);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700671 qio_channel_websock_write_close(
672 ioc, QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR,
673 "internal server error");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000674 return -1;
675 }
676 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT) {
677 /* header not complete */
678 return QIO_CHANNEL_ERR_BLOCK;
679 }
680
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700681 fin = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000682 opcode = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE;
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700683 has_mask = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000684 payload_len = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN;
685
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700686 /* Save or restore opcode. */
687 if (opcode) {
688 ioc->opcode = opcode;
689 } else {
690 opcode = ioc->opcode;
691 }
692
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100693 trace_qio_channel_websock_header_partial_decode(ioc, payload_len,
694 fin, opcode, (int)has_mask);
695
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000696 if (opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
697 /* disconnect */
698 return 0;
699 }
700
701 /* Websocket frame sanity check:
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700702 * * Fragmentation is only supported for binary frames.
703 * * All frames sent by a client MUST be masked.
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700704 * * Only binary and ping/pong encoding is supported.
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000705 */
706 if (!fin) {
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700707 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
708 error_setg(errp, "only binary websocket frames may be fragmented");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700709 qio_channel_websock_write_close(
710 ioc, QIO_CHANNEL_WEBSOCK_STATUS_POLICY ,
711 "only binary frames may be fragmented");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700712 return -1;
713 }
714 } else {
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700715 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME &&
Brandon Carpenter530ca602017-09-12 08:21:53 -0700716 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE &&
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700717 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PING &&
718 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PONG) {
Brandon Carpenter530ca602017-09-12 08:21:53 -0700719 error_setg(errp, "unsupported opcode: %#04x; only binary, close, "
720 "ping, and pong websocket frames are supported", opcode);
721 qio_channel_websock_write_close(
722 ioc, QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA ,
723 "only binary, close, ping, and pong frames are supported");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700724 return -1;
725 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000726 }
727 if (!has_mask) {
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700728 error_setg(errp, "client websocket frames must be masked");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700729 qio_channel_websock_write_close(
730 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
731 "client frames must be masked");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000732 return -1;
733 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000734
735 if (payload_len < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT) {
736 ioc->payload_remain = payload_len;
737 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
738 ioc->mask = header->u.m;
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700739 } else if (opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
740 error_setg(errp, "websocket control frame is too large");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700741 qio_channel_websock_write_close(
742 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
743 "control frame is too large");
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700744 return -1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000745 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT &&
746 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT) {
747 ioc->payload_remain = be16_to_cpu(header->u.s16.l16);
748 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
749 ioc->mask = header->u.s16.m16;
750 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT &&
751 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT) {
752 ioc->payload_remain = be64_to_cpu(header->u.s64.l64);
753 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
754 ioc->mask = header->u.s64.m64;
755 } else {
756 /* header not complete */
757 return QIO_CHANNEL_ERR_BLOCK;
758 }
759
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100760 trace_qio_channel_websock_header_full_decode(
761 ioc, header_size, ioc->payload_remain, ioc->mask.u);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000762 buffer_advance(&ioc->encinput, header_size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700763 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000764}
765
766
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700767static int qio_channel_websock_decode_payload(QIOChannelWebsock *ioc,
768 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000769{
770 size_t i;
Brandon Carpenter3a296402017-09-12 08:21:50 -0700771 size_t payload_len = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000772 uint32_t *payload32;
773
Brandon Carpenter3a296402017-09-12 08:21:50 -0700774 if (ioc->payload_remain) {
775 /* If we aren't at the end of the payload, then drop
776 * off the last bytes, so we're always multiple of 4
777 * for purpose of unmasking, except at end of payload
778 */
779 if (ioc->encinput.offset < ioc->payload_remain) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700780 /* Wait for the entire payload before processing control frames
781 * because the payload will most likely be echoed back. */
782 if (ioc->opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
783 return QIO_CHANNEL_ERR_BLOCK;
784 }
Brandon Carpenter3a296402017-09-12 08:21:50 -0700785 payload_len = ioc->encinput.offset - (ioc->encinput.offset % 4);
786 } else {
787 payload_len = ioc->payload_remain;
788 }
789 if (payload_len == 0) {
790 return QIO_CHANNEL_ERR_BLOCK;
791 }
792
793 ioc->payload_remain -= payload_len;
794
795 /* unmask frame */
796 /* process 1 frame (32 bit op) */
797 payload32 = (uint32_t *)ioc->encinput.buffer;
798 for (i = 0; i < payload_len / 4; i++) {
799 payload32[i] ^= ioc->mask.u;
800 }
801 /* process the remaining bytes (if any) */
802 for (i *= 4; i < payload_len; i++) {
803 ioc->encinput.buffer[i] ^= ioc->mask.c[i % 4];
804 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000805 }
806
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100807 trace_qio_channel_websock_payload_decode(
808 ioc, ioc->opcode, ioc->payload_remain);
809
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700810 if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
811 if (payload_len) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700812 /* binary frames are passed on */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700813 buffer_reserve(&ioc->rawinput, payload_len);
814 buffer_append(&ioc->rawinput, ioc->encinput.buffer, payload_len);
815 }
Brandon Carpenter530ca602017-09-12 08:21:53 -0700816 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
817 /* close frames are echoed back */
818 error_setg(errp, "websocket closed by peer");
819 if (payload_len) {
820 /* echo client status */
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100821 struct iovec iov = { .iov_base = ioc->encinput.buffer,
822 .iov_len = ioc->encinput.offset };
823 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
824 &iov, 1, iov.iov_len);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700825 qio_channel_websock_write_wire(ioc, NULL);
826 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
827 } else {
828 /* send our own status */
829 qio_channel_websock_write_close(
830 ioc, QIO_CHANNEL_WEBSOCK_STATUS_NORMAL, "peer requested close");
831 }
832 return -1;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700833 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_PING) {
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100834 /* ping frames produce an immediate reply, as long as we've not still
835 * got a previous pong queued, in which case we drop the new pong */
836 if (ioc->pong_remain == 0) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100837 struct iovec iov = { .iov_base = ioc->encinput.buffer,
838 .iov_len = ioc->encinput.offset };
839 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_PONG,
840 &iov, 1, iov.iov_len);
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100841 ioc->pong_remain = ioc->encoutput.offset;
842 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700843 } /* pong frames are ignored */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700844
Brandon Carpenter3a296402017-09-12 08:21:50 -0700845 if (payload_len) {
Brandon Carpenter3a296402017-09-12 08:21:50 -0700846 buffer_advance(&ioc->encinput, payload_len);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000847 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700848 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000849}
850
851
852QIOChannelWebsock *
853qio_channel_websock_new_server(QIOChannel *master)
854{
855 QIOChannelWebsock *wioc;
856 QIOChannel *ioc;
857
858 wioc = QIO_CHANNEL_WEBSOCK(object_new(TYPE_QIO_CHANNEL_WEBSOCK));
859 ioc = QIO_CHANNEL(wioc);
860
861 wioc->master = master;
Felipe Franciosie413ae02016-09-29 08:52:36 -0700862 if (qio_channel_has_feature(master, QIO_CHANNEL_FEATURE_SHUTDOWN)) {
Felipe Franciosid8d3c7c2016-09-29 08:52:37 -0700863 qio_channel_set_feature(ioc, QIO_CHANNEL_FEATURE_SHUTDOWN);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000864 }
865 object_ref(OBJECT(master));
866
867 trace_qio_channel_websock_new_server(wioc, master);
868 return wioc;
869}
870
871void qio_channel_websock_handshake(QIOChannelWebsock *ioc,
872 QIOTaskFunc func,
873 gpointer opaque,
874 GDestroyNotify destroy)
875{
876 QIOTask *task;
877
878 task = qio_task_new(OBJECT(ioc),
879 func,
880 opaque,
881 destroy);
882
883 trace_qio_channel_websock_handshake_start(ioc);
884 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
885 qio_channel_add_watch(ioc->master,
886 G_IO_IN,
887 qio_channel_websock_handshake_io,
888 task,
889 NULL);
890}
891
892
893static void qio_channel_websock_finalize(Object *obj)
894{
895 QIOChannelWebsock *ioc = QIO_CHANNEL_WEBSOCK(obj);
896
897 buffer_free(&ioc->encinput);
898 buffer_free(&ioc->encoutput);
899 buffer_free(&ioc->rawinput);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000900 object_unref(OBJECT(ioc->master));
901 if (ioc->io_tag) {
902 g_source_remove(ioc->io_tag);
903 }
904 if (ioc->io_err) {
905 error_free(ioc->io_err);
906 }
907}
908
909
910static ssize_t qio_channel_websock_read_wire(QIOChannelWebsock *ioc,
911 Error **errp)
912{
913 ssize_t ret;
914
915 if (ioc->encinput.offset < 4096) {
916 size_t want = 4096 - ioc->encinput.offset;
917
918 buffer_reserve(&ioc->encinput, want);
919 ret = qio_channel_read(ioc->master,
920 (char *)ioc->encinput.buffer +
921 ioc->encinput.offset,
922 want,
923 errp);
924 if (ret < 0) {
925 return ret;
926 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700927 if (ret == 0 && ioc->encinput.offset == 0) {
928 ioc->io_eof = TRUE;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000929 return 0;
930 }
931 ioc->encinput.offset += ret;
932 }
933
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000934 while (ioc->encinput.offset != 0) {
935 if (ioc->payload_remain == 0) {
936 ret = qio_channel_websock_decode_header(ioc, errp);
937 if (ret < 0) {
938 return ret;
939 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000940 }
941
942 ret = qio_channel_websock_decode_payload(ioc, errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000943 if (ret < 0) {
944 return ret;
945 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000946 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000947 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000948}
949
950
951static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *ioc,
952 Error **errp)
953{
954 ssize_t ret;
955 ssize_t done = 0;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700956
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000957 while (ioc->encoutput.offset > 0) {
958 ret = qio_channel_write(ioc->master,
959 (char *)ioc->encoutput.buffer,
960 ioc->encoutput.offset,
961 errp);
962 if (ret < 0) {
963 if (ret == QIO_CHANNEL_ERR_BLOCK &&
964 done > 0) {
965 return done;
966 } else {
967 return ret;
968 }
969 }
970 buffer_advance(&ioc->encoutput, ret);
971 done += ret;
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100972 if (ioc->pong_remain < ret) {
973 ioc->pong_remain = 0;
974 } else {
975 ioc->pong_remain -= ret;
976 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000977 }
978 return done;
979}
980
981
982static void qio_channel_websock_flush_free(gpointer user_data)
983{
984 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
985 object_unref(OBJECT(wioc));
986}
987
988static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc);
989
990static gboolean qio_channel_websock_flush(QIOChannel *ioc,
991 GIOCondition condition,
992 gpointer user_data)
993{
994 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
995 ssize_t ret;
996
997 if (condition & G_IO_OUT) {
998 ret = qio_channel_websock_write_wire(wioc, &wioc->io_err);
999 if (ret < 0) {
1000 goto cleanup;
1001 }
1002 }
1003
1004 if (condition & G_IO_IN) {
1005 ret = qio_channel_websock_read_wire(wioc, &wioc->io_err);
1006 if (ret < 0) {
1007 goto cleanup;
1008 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001009 }
1010
1011 cleanup:
1012 qio_channel_websock_set_watch(wioc);
1013 return FALSE;
1014}
1015
1016
1017static void qio_channel_websock_unset_watch(QIOChannelWebsock *ioc)
1018{
1019 if (ioc->io_tag) {
1020 g_source_remove(ioc->io_tag);
1021 ioc->io_tag = 0;
1022 }
1023}
1024
1025static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc)
1026{
1027 GIOCondition cond = 0;
1028
1029 qio_channel_websock_unset_watch(ioc);
1030
1031 if (ioc->io_err) {
1032 return;
1033 }
1034
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +01001035 if (ioc->encoutput.offset) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001036 cond |= G_IO_OUT;
1037 }
1038 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER &&
1039 !ioc->io_eof) {
1040 cond |= G_IO_IN;
1041 }
1042
1043 if (cond) {
1044 object_ref(OBJECT(ioc));
1045 ioc->io_tag =
1046 qio_channel_add_watch(ioc->master,
1047 cond,
1048 qio_channel_websock_flush,
1049 ioc,
1050 qio_channel_websock_flush_free);
1051 }
1052}
1053
1054
1055static ssize_t qio_channel_websock_readv(QIOChannel *ioc,
1056 const struct iovec *iov,
1057 size_t niov,
1058 int **fds,
1059 size_t *nfds,
1060 Error **errp)
1061{
1062 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1063 size_t i;
1064 ssize_t got = 0;
1065 ssize_t ret;
1066
1067 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001068 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001069 return -1;
1070 }
1071
1072 if (!wioc->rawinput.offset) {
1073 ret = qio_channel_websock_read_wire(QIO_CHANNEL_WEBSOCK(ioc), errp);
1074 if (ret < 0) {
1075 return ret;
1076 }
1077 }
1078
1079 for (i = 0 ; i < niov ; i++) {
1080 size_t want = iov[i].iov_len;
1081 if (want > (wioc->rawinput.offset - got)) {
1082 want = (wioc->rawinput.offset - got);
1083 }
1084
1085 memcpy(iov[i].iov_base,
1086 wioc->rawinput.buffer + got,
1087 want);
1088 got += want;
1089
1090 if (want < iov[i].iov_len) {
1091 break;
1092 }
1093 }
1094
1095 buffer_advance(&wioc->rawinput, got);
1096 qio_channel_websock_set_watch(wioc);
1097 return got;
1098}
1099
1100
1101static ssize_t qio_channel_websock_writev(QIOChannel *ioc,
1102 const struct iovec *iov,
1103 size_t niov,
1104 int *fds,
1105 size_t nfds,
1106 Error **errp)
1107{
1108 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001109 ssize_t want = iov_size(iov, niov);
1110 ssize_t avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001111 ssize_t ret;
1112
1113 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001114 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001115 return -1;
1116 }
1117
1118 if (wioc->io_eof) {
1119 error_setg(errp, "%s", "Broken pipe");
1120 return -1;
1121 }
1122
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001123 avail = wioc->encoutput.offset >= QIO_CHANNEL_WEBSOCK_MAX_BUFFER ?
1124 0 : (QIO_CHANNEL_WEBSOCK_MAX_BUFFER - wioc->encoutput.offset);
1125 if (want > avail) {
1126 want = avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001127 }
1128
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001129 if (want) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +01001130 qio_channel_websock_encode(wioc,
1131 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001132 iov, niov, want);
Daniel P. Berrangebac6c952017-10-09 14:39:17 +01001133 }
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001134
1135 /* Even if want == 0, we'll try write_wire in case there's
1136 * pending data we could usefully flush out
1137 */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001138 ret = qio_channel_websock_write_wire(wioc, errp);
1139 if (ret < 0 &&
1140 ret != QIO_CHANNEL_ERR_BLOCK) {
1141 qio_channel_websock_unset_watch(wioc);
1142 return -1;
1143 }
1144
1145 qio_channel_websock_set_watch(wioc);
1146
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001147 if (want == 0) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001148 return QIO_CHANNEL_ERR_BLOCK;
1149 }
1150
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001151 return want;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001152}
1153
1154static int qio_channel_websock_set_blocking(QIOChannel *ioc,
1155 bool enabled,
1156 Error **errp)
1157{
1158 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1159
1160 qio_channel_set_blocking(wioc->master, enabled, errp);
1161 return 0;
1162}
1163
1164static void qio_channel_websock_set_delay(QIOChannel *ioc,
1165 bool enabled)
1166{
1167 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1168
1169 qio_channel_set_delay(tioc->master, enabled);
1170}
1171
1172static void qio_channel_websock_set_cork(QIOChannel *ioc,
1173 bool enabled)
1174{
1175 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1176
1177 qio_channel_set_cork(tioc->master, enabled);
1178}
1179
1180static int qio_channel_websock_shutdown(QIOChannel *ioc,
1181 QIOChannelShutdown how,
1182 Error **errp)
1183{
1184 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1185
1186 return qio_channel_shutdown(tioc->master, how, errp);
1187}
1188
1189static int qio_channel_websock_close(QIOChannel *ioc,
1190 Error **errp)
1191{
1192 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1193
Daniel P. Berrange59f183b2017-09-21 11:00:47 +01001194 trace_qio_channel_websock_close(ioc);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001195 return qio_channel_close(wioc->master, errp);
1196}
1197
1198typedef struct QIOChannelWebsockSource QIOChannelWebsockSource;
1199struct QIOChannelWebsockSource {
1200 GSource parent;
1201 QIOChannelWebsock *wioc;
1202 GIOCondition condition;
1203};
1204
1205static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001206qio_channel_websock_source_check(GSource *source)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001207{
1208 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
1209 GIOCondition cond = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001210
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001211 if (wsource->wioc->rawinput.offset || wsource->wioc->io_eof) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001212 cond |= G_IO_IN;
1213 }
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +01001214 if (wsource->wioc->encoutput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001215 cond |= G_IO_OUT;
1216 }
1217
1218 return cond & wsource->condition;
1219}
1220
1221static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001222qio_channel_websock_source_prepare(GSource *source,
1223 gint *timeout)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001224{
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001225 *timeout = -1;
1226 return qio_channel_websock_source_check(source);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001227}
1228
1229static gboolean
1230qio_channel_websock_source_dispatch(GSource *source,
1231 GSourceFunc callback,
1232 gpointer user_data)
1233{
1234 QIOChannelFunc func = (QIOChannelFunc)callback;
1235 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001236
1237 return (*func)(QIO_CHANNEL(wsource->wioc),
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001238 qio_channel_websock_source_check(source),
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001239 user_data);
1240}
1241
1242static void
1243qio_channel_websock_source_finalize(GSource *source)
1244{
1245 QIOChannelWebsockSource *ssource = (QIOChannelWebsockSource *)source;
1246
1247 object_unref(OBJECT(ssource->wioc));
1248}
1249
1250GSourceFuncs qio_channel_websock_source_funcs = {
1251 qio_channel_websock_source_prepare,
1252 qio_channel_websock_source_check,
1253 qio_channel_websock_source_dispatch,
1254 qio_channel_websock_source_finalize
1255};
1256
1257static GSource *qio_channel_websock_create_watch(QIOChannel *ioc,
1258 GIOCondition condition)
1259{
1260 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1261 QIOChannelWebsockSource *ssource;
1262 GSource *source;
1263
1264 source = g_source_new(&qio_channel_websock_source_funcs,
1265 sizeof(QIOChannelWebsockSource));
1266 ssource = (QIOChannelWebsockSource *)source;
1267
1268 ssource->wioc = wioc;
1269 object_ref(OBJECT(wioc));
1270
1271 ssource->condition = condition;
1272
1273 qio_channel_websock_set_watch(wioc);
1274 return source;
1275}
1276
1277static void qio_channel_websock_class_init(ObjectClass *klass,
1278 void *class_data G_GNUC_UNUSED)
1279{
1280 QIOChannelClass *ioc_klass = QIO_CHANNEL_CLASS(klass);
1281
1282 ioc_klass->io_writev = qio_channel_websock_writev;
1283 ioc_klass->io_readv = qio_channel_websock_readv;
1284 ioc_klass->io_set_blocking = qio_channel_websock_set_blocking;
1285 ioc_klass->io_set_cork = qio_channel_websock_set_cork;
1286 ioc_klass->io_set_delay = qio_channel_websock_set_delay;
1287 ioc_klass->io_close = qio_channel_websock_close;
1288 ioc_klass->io_shutdown = qio_channel_websock_shutdown;
1289 ioc_klass->io_create_watch = qio_channel_websock_create_watch;
1290}
1291
1292static const TypeInfo qio_channel_websock_info = {
1293 .parent = TYPE_QIO_CHANNEL,
1294 .name = TYPE_QIO_CHANNEL_WEBSOCK,
1295 .instance_size = sizeof(QIOChannelWebsock),
1296 .instance_finalize = qio_channel_websock_finalize,
1297 .class_init = qio_channel_websock_class_init,
1298};
1299
1300static void qio_channel_websock_register_types(void)
1301{
1302 type_register_static(&qio_channel_websock_info);
1303}
1304
1305type_init(qio_channel_websock_register_types);