blob: ec48a305f025edb851c2a9af0b40e16b8fae0752 [file] [log] [blame]
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001/*
2 * QEMU I/O channels driver websockets
3 *
4 * Copyright (c) 2015 Red Hat, Inc.
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, see <http://www.gnu.org/licenses/>.
18 *
19 */
20
Peter Maydellcae9fc52016-01-29 17:50:03 +000021#include "qemu/osdep.h"
Markus Armbrusterda34e652016-03-14 09:01:28 +010022#include "qapi/error.h"
Paolo Bonzini58369e22016-03-15 17:22:36 +010023#include "qemu/bswap.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000024#include "io/channel-websock.h"
25#include "crypto/hash.h"
26#include "trace.h"
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +010027#include "qemu/iov.h"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000028
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +010029/* Max amount to allow in rawinput/encoutput buffers */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000030#define QIO_CHANNEL_WEBSOCK_MAX_BUFFER 8192
31
32#define QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN 24
33#define QIO_CHANNEL_WEBSOCK_GUID "258EAFA5-E914-47DA-95CA-C5AB0DC85B11"
34#define QIO_CHANNEL_WEBSOCK_GUID_LEN strlen(QIO_CHANNEL_WEBSOCK_GUID)
35
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000036#define QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL "sec-websocket-protocol"
37#define QIO_CHANNEL_WEBSOCK_HEADER_VERSION "sec-websocket-version"
38#define QIO_CHANNEL_WEBSOCK_HEADER_KEY "sec-websocket-key"
39#define QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE "upgrade"
40#define QIO_CHANNEL_WEBSOCK_HEADER_HOST "host"
41#define QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION "connection"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000042
43#define QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY "binary"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000044#define QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE "Upgrade"
45#define QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET "websocket"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000046
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010047#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
48 "Server: QEMU VNC\r\n" \
49 "Date: %s\r\n"
50
51#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000052 "HTTP/1.1 101 Switching Protocols\r\n" \
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010053 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000054 "Upgrade: websocket\r\n" \
55 "Connection: Upgrade\r\n" \
56 "Sec-WebSocket-Accept: %s\r\n" \
57 "Sec-WebSocket-Protocol: binary\r\n" \
58 "\r\n"
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +010059#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND \
60 "HTTP/1.1 404 Not Found\r\n" \
61 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
62 "Connection: close\r\n" \
63 "\r\n"
64#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST \
65 "HTTP/1.1 400 Bad Request\r\n" \
66 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
67 "Connection: close\r\n" \
68 "Sec-WebSocket-Version: " \
69 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION \
70 "\r\n"
71#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR \
72 "HTTP/1.1 500 Internal Server Error\r\n" \
73 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
74 "Connection: close\r\n" \
75 "\r\n"
76#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE \
77 "HTTP/1.1 403 Request Entity Too Large\r\n" \
78 QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_COMMON \
79 "Connection: close\r\n" \
80 "\r\n"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000081#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM "\r\n"
82#define QIO_CHANNEL_WEBSOCK_HANDSHAKE_END "\r\n\r\n"
83#define QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION "13"
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +000084#define QIO_CHANNEL_WEBSOCK_HTTP_METHOD "GET"
85#define QIO_CHANNEL_WEBSOCK_HTTP_PATH "/"
86#define QIO_CHANNEL_WEBSOCK_HTTP_VERSION "HTTP/1.1"
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +000087
88/* The websockets packet header is variable length
89 * depending on the size of the payload... */
90
91/* ...length when using 7-bit payload length */
92#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT 6
93/* ...length when using 16-bit payload length */
94#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT 8
95/* ...length when using 64-bit payload length */
96#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT 14
97
98/* Length of the optional data mask field in header */
99#define QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK 4
100
101/* Maximum length that can fit in 7-bit payload size */
102#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT 126
103/* Maximum length that can fit in 16-bit payload size */
104#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT 65536
105
106/* Magic 7-bit length to indicate use of 16-bit payload length */
107#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT 126
108/* Magic 7-bit length to indicate use of 64-bit payload length */
109#define QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT 127
110
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700111/* Bitmasks for accessing header fields */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000112#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN 0x80
113#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE 0x0f
114#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK 0x80
115#define QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN 0x7f
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700116#define QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK 0x8
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000117
118typedef struct QIOChannelWebsockHeader QIOChannelWebsockHeader;
119
120struct QEMU_PACKED QIOChannelWebsockHeader {
121 unsigned char b0;
122 unsigned char b1;
123 union {
124 struct QEMU_PACKED {
125 uint16_t l16;
126 QIOChannelWebsockMask m16;
127 } s16;
128 struct QEMU_PACKED {
129 uint64_t l64;
130 QIOChannelWebsockMask m64;
131 } s64;
132 QIOChannelWebsockMask m;
133 } u;
134};
135
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000136typedef struct QIOChannelWebsockHTTPHeader QIOChannelWebsockHTTPHeader;
137
138struct QIOChannelWebsockHTTPHeader {
139 char *name;
140 char *value;
141};
142
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000143enum {
144 QIO_CHANNEL_WEBSOCK_OPCODE_CONTINUATION = 0x0,
145 QIO_CHANNEL_WEBSOCK_OPCODE_TEXT_FRAME = 0x1,
146 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME = 0x2,
147 QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE = 0x8,
148 QIO_CHANNEL_WEBSOCK_OPCODE_PING = 0x9,
149 QIO_CHANNEL_WEBSOCK_OPCODE_PONG = 0xA
150};
151
Stefan Weil52aa5642017-10-07 16:56:09 +0200152static void GCC_FMT_ATTR(2, 3)
153qio_channel_websock_handshake_send_res(QIOChannelWebsock *ioc,
154 const char *resmsg,
155 ...)
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100156{
157 va_list vargs;
158 char *response;
159 size_t responselen;
160
161 va_start(vargs, resmsg);
162 response = g_strdup_vprintf(resmsg, vargs);
163 responselen = strlen(response);
164 buffer_reserve(&ioc->encoutput, responselen);
165 buffer_append(&ioc->encoutput, response, responselen);
166 va_end(vargs);
167}
168
169static gchar *qio_channel_websock_date_str(void)
170{
171 struct tm tm;
172 time_t now = time(NULL);
173 char datebuf[128];
174
175 gmtime_r(&now, &tm);
176
177 strftime(datebuf, sizeof(datebuf), "%a, %d %b %Y %H:%M:%S GMT", &tm);
178
179 return g_strdup(datebuf);
180}
181
182static void qio_channel_websock_handshake_send_res_err(QIOChannelWebsock *ioc,
183 const char *resdata)
184{
185 char *date = qio_channel_websock_date_str();
186 qio_channel_websock_handshake_send_res(ioc, resdata, date);
187 g_free(date);
188}
189
Brandon Carpenter530ca602017-09-12 08:21:53 -0700190enum {
191 QIO_CHANNEL_WEBSOCK_STATUS_NORMAL = 1000,
192 QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR = 1002,
193 QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA = 1003,
194 QIO_CHANNEL_WEBSOCK_STATUS_POLICY = 1008,
195 QIO_CHANNEL_WEBSOCK_STATUS_TOO_LARGE = 1009,
196 QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR = 1011,
197};
198
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000199static size_t
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100200qio_channel_websock_extract_headers(QIOChannelWebsock *ioc,
201 char *buffer,
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000202 QIOChannelWebsockHTTPHeader *hdrs,
203 size_t nhdrsalloc,
204 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000205{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000206 char *nl, *sep, *tmp;
207 size_t nhdrs = 0;
208
209 /*
210 * First parse the HTTP protocol greeting of format:
211 *
212 * $METHOD $PATH $VERSION
213 *
214 * e.g.
215 *
216 * GET / HTTP/1.1
217 */
218
219 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
220 if (!nl) {
221 error_setg(errp, "Missing HTTP header delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100222 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000223 }
224 *nl = '\0';
Daniel P. Berrange0efd6c92017-10-10 13:28:03 +0100225 trace_qio_channel_websock_http_greeting(ioc, buffer);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000226
227 tmp = strchr(buffer, ' ');
228 if (!tmp) {
229 error_setg(errp, "Missing HTTP path delimiter");
230 return 0;
231 }
232 *tmp = '\0';
233
234 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_METHOD)) {
235 error_setg(errp, "Unsupported HTTP method %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100236 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000237 }
238
239 buffer = tmp + 1;
240 tmp = strchr(buffer, ' ');
241 if (!tmp) {
242 error_setg(errp, "Missing HTTP version delimiter");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100243 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000244 }
245 *tmp = '\0';
246
247 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_PATH)) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100248 qio_channel_websock_handshake_send_res_err(
249 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_NOT_FOUND);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000250 error_setg(errp, "Unexpected HTTP path %s", buffer);
251 return 0;
252 }
253
254 buffer = tmp + 1;
255
256 if (!g_str_equal(buffer, QIO_CHANNEL_WEBSOCK_HTTP_VERSION)) {
257 error_setg(errp, "Unsupported HTTP version %s", buffer);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100258 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000259 }
260
261 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
262
263 /*
264 * Now parse all the header fields of format
265 *
266 * $NAME: $VALUE
267 *
268 * e.g.
269 *
270 * Cache-control: no-cache
271 */
272 do {
273 QIOChannelWebsockHTTPHeader *hdr;
274
275 nl = strstr(buffer, QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
276 if (nl) {
277 *nl = '\0';
278 }
279
280 sep = strchr(buffer, ':');
281 if (!sep) {
282 error_setg(errp, "Malformed HTTP header");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100283 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000284 }
285 *sep = '\0';
286 sep++;
287 while (*sep == ' ') {
288 sep++;
289 }
290
291 if (nhdrs >= nhdrsalloc) {
292 error_setg(errp, "Too many HTTP headers");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100293 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000294 }
295
296 hdr = &hdrs[nhdrs++];
297 hdr->name = buffer;
298 hdr->value = sep;
299
300 /* Canonicalize header name for easier identification later */
301 for (tmp = hdr->name; *tmp; tmp++) {
302 *tmp = g_ascii_tolower(*tmp);
303 }
304
305 if (nl) {
306 buffer = nl + strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_DELIM);
307 }
308 } while (nl != NULL);
309
310 return nhdrs;
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100311
312 bad_request:
313 qio_channel_websock_handshake_send_res_err(
314 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
315 return 0;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000316}
317
318static const char *
319qio_channel_websock_find_header(QIOChannelWebsockHTTPHeader *hdrs,
320 size_t nhdrs,
321 const char *name)
322{
323 size_t i;
324
325 for (i = 0; i < nhdrs; i++) {
326 if (g_str_equal(hdrs[i].name, name)) {
327 return hdrs[i].value;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000328 }
329 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000330
331 return NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000332}
333
334
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100335static void qio_channel_websock_handshake_send_res_ok(QIOChannelWebsock *ioc,
336 const char *key,
337 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000338{
339 char combined_key[QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
340 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1];
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100341 char *accept = NULL;
Daniel P. Berrange7fc3fce2017-10-11 16:38:10 +0100342 char *date = NULL;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000343
344 g_strlcpy(combined_key, key, QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN + 1);
345 g_strlcat(combined_key, QIO_CHANNEL_WEBSOCK_GUID,
346 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
347 QIO_CHANNEL_WEBSOCK_GUID_LEN + 1);
348
349 /* hash and encode it */
350 if (qcrypto_hash_base64(QCRYPTO_HASH_ALG_SHA1,
351 combined_key,
352 QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN +
353 QIO_CHANNEL_WEBSOCK_GUID_LEN,
354 &accept,
355 errp) < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100356 qio_channel_websock_handshake_send_res_err(
357 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_SERVER_ERR);
358 return;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000359 }
360
Daniel P. Berrange7fc3fce2017-10-11 16:38:10 +0100361 date = qio_channel_websock_date_str();
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100362 qio_channel_websock_handshake_send_res(
363 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_OK, date, accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000364
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100365 g_free(date);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000366 g_free(accept);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000367}
368
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100369static void qio_channel_websock_handshake_process(QIOChannelWebsock *ioc,
370 char *buffer,
371 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000372{
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000373 QIOChannelWebsockHTTPHeader hdrs[32];
374 size_t nhdrs = G_N_ELEMENTS(hdrs);
375 const char *protocols = NULL, *version = NULL, *key = NULL,
376 *host = NULL, *connection = NULL, *upgrade = NULL;
Daniel P. Berrange6d5d23b2017-10-09 17:52:28 +0100377 char **connectionv;
378 bool upgraded = false;
379 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000380
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100381 nhdrs = qio_channel_websock_extract_headers(ioc, buffer, hdrs, nhdrs, errp);
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000382 if (!nhdrs) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100383 return;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000384 }
385
386 protocols = qio_channel_websock_find_header(
387 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_PROTOCOL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000388 if (!protocols) {
389 error_setg(errp, "Missing websocket protocol header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100390 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000391 }
392
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000393 version = qio_channel_websock_find_header(
394 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_VERSION);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000395 if (!version) {
396 error_setg(errp, "Missing websocket version header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100397 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000398 }
399
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000400 key = qio_channel_websock_find_header(
401 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_KEY);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000402 if (!key) {
403 error_setg(errp, "Missing websocket key header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100404 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000405 }
406
407 host = qio_channel_websock_find_header(
408 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_HOST);
409 if (!host) {
410 error_setg(errp, "Missing websocket host header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100411 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000412 }
413
414 connection = qio_channel_websock_find_header(
415 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_CONNECTION);
416 if (!connection) {
417 error_setg(errp, "Missing websocket connection header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100418 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000419 }
420
421 upgrade = qio_channel_websock_find_header(
422 hdrs, nhdrs, QIO_CHANNEL_WEBSOCK_HEADER_UPGRADE);
423 if (!upgrade) {
424 error_setg(errp, "Missing websocket upgrade header data");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100425 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000426 }
427
Daniel P. Berrange0efd6c92017-10-10 13:28:03 +0100428 trace_qio_channel_websock_http_request(ioc, protocols, version,
429 host, connection, upgrade, key);
430
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000431 if (!g_strrstr(protocols, QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY)) {
432 error_setg(errp, "No '%s' protocol is supported by client '%s'",
433 QIO_CHANNEL_WEBSOCK_PROTOCOL_BINARY, protocols);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100434 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000435 }
436
437 if (!g_str_equal(version, QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION)) {
438 error_setg(errp, "Version '%s' is not supported by client '%s'",
439 QIO_CHANNEL_WEBSOCK_SUPPORTED_VERSION, version);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100440 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000441 }
442
443 if (strlen(key) != QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN) {
444 error_setg(errp, "Key length '%zu' was not as expected '%d'",
445 strlen(key), QIO_CHANNEL_WEBSOCK_CLIENT_KEY_LEN);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100446 goto bad_request;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000447 }
448
Daniel P. Berrange6d5d23b2017-10-09 17:52:28 +0100449 connectionv = g_strsplit(connection, ",", 0);
450 for (i = 0; connectionv != NULL && connectionv[i] != NULL; i++) {
451 g_strstrip(connectionv[i]);
452 if (strcasecmp(connectionv[i],
453 QIO_CHANNEL_WEBSOCK_CONNECTION_UPGRADE) == 0) {
454 upgraded = true;
455 }
456 }
457 g_strfreev(connectionv);
458 if (!upgraded) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000459 error_setg(errp, "No connection upgrade requested '%s'", connection);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100460 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000461 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000462
Daniel P. Berrange33badfd2017-09-06 14:49:41 +0100463 if (strcasecmp(upgrade, QIO_CHANNEL_WEBSOCK_UPGRADE_WEBSOCKET) != 0) {
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000464 error_setg(errp, "Incorrect upgrade method '%s'", upgrade);
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100465 goto bad_request;
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000466 }
467
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100468 qio_channel_websock_handshake_send_res_ok(ioc, key, errp);
469 return;
470
471 bad_request:
472 qio_channel_websock_handshake_send_res_err(
473 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_BAD_REQUEST);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000474}
475
476static int qio_channel_websock_handshake_read(QIOChannelWebsock *ioc,
477 Error **errp)
478{
479 char *handshake_end;
480 ssize_t ret;
481 /* Typical HTTP headers from novnc are 512 bytes, so limiting
482 * total header size to 4096 is easily enough. */
483 size_t want = 4096 - ioc->encinput.offset;
484 buffer_reserve(&ioc->encinput, want);
485 ret = qio_channel_read(ioc->master,
486 (char *)buffer_end(&ioc->encinput), want, errp);
487 if (ret < 0) {
488 return -1;
489 }
490 ioc->encinput.offset += ret;
491
492 handshake_end = g_strstr_len((char *)ioc->encinput.buffer,
493 ioc->encinput.offset,
494 QIO_CHANNEL_WEBSOCK_HANDSHAKE_END);
495 if (!handshake_end) {
496 if (ioc->encinput.offset >= 4096) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100497 qio_channel_websock_handshake_send_res_err(
498 ioc, QIO_CHANNEL_WEBSOCK_HANDSHAKE_RES_TOO_LARGE);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000499 error_setg(errp,
500 "End of headers not found in first 4096 bytes");
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100501 return 1;
Edgar Kaziakhmedova46ded12018-01-10 18:39:24 +0300502 } else if (ret == 0) {
503 error_setg(errp,
504 "End of headers not found before connection closed");
505 return -1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000506 }
Edgar Kaziakhmedova46ded12018-01-10 18:39:24 +0300507 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000508 }
Daniel P. Berrange07e95cd2017-02-28 10:37:24 +0000509 *handshake_end = '\0';
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000510
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100511 qio_channel_websock_handshake_process(ioc,
512 (char *)ioc->encinput.buffer,
513 errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000514
515 buffer_advance(&ioc->encinput,
516 handshake_end - (char *)ioc->encinput.buffer +
517 strlen(QIO_CHANNEL_WEBSOCK_HANDSHAKE_END));
518 return 1;
519}
520
521static gboolean qio_channel_websock_handshake_send(QIOChannel *ioc,
522 GIOCondition condition,
523 gpointer user_data)
524{
525 QIOTask *task = user_data;
526 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
527 qio_task_get_source(task));
528 Error *err = NULL;
529 ssize_t ret;
530
531 ret = qio_channel_write(wioc->master,
532 (char *)wioc->encoutput.buffer,
533 wioc->encoutput.offset,
534 &err);
535
536 if (ret < 0) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100537 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100538 qio_task_set_error(task, err);
539 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000540 return FALSE;
541 }
542
543 buffer_advance(&wioc->encoutput, ret);
544 if (wioc->encoutput.offset == 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100545 if (wioc->io_err) {
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100546 trace_qio_channel_websock_handshake_fail(
547 ioc, error_get_pretty(wioc->io_err));
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100548 qio_task_set_error(task, wioc->io_err);
549 wioc->io_err = NULL;
550 qio_task_complete(task);
551 } else {
552 trace_qio_channel_websock_handshake_complete(ioc);
553 qio_task_complete(task);
554 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000555 return FALSE;
556 }
557 trace_qio_channel_websock_handshake_pending(ioc, G_IO_OUT);
558 return TRUE;
559}
560
561static gboolean qio_channel_websock_handshake_io(QIOChannel *ioc,
562 GIOCondition condition,
563 gpointer user_data)
564{
565 QIOTask *task = user_data;
566 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(
567 qio_task_get_source(task));
568 Error *err = NULL;
569 int ret;
570
571 ret = qio_channel_websock_handshake_read(wioc, &err);
572 if (ret < 0) {
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100573 /*
574 * We only take this path on a fatal I/O error reading from
575 * client connection, as most of the time we have an
576 * HTTP 4xx err response to send instead
577 */
Daniel P. Berrange3a3f8702017-09-06 11:38:36 +0100578 trace_qio_channel_websock_handshake_fail(ioc, error_get_pretty(err));
Daniel P. Berrange60e705c2016-08-11 15:20:58 +0100579 qio_task_set_error(task, err);
580 qio_task_complete(task);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000581 return FALSE;
582 }
583 if (ret == 0) {
584 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
585 /* need more data still */
586 return TRUE;
587 }
588
Daniel P. Berrangef69a8bd2017-09-06 11:33:17 +0100589 if (err) {
590 error_propagate(&wioc->io_err, err);
591 }
592
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000593 trace_qio_channel_websock_handshake_reply(ioc);
594 qio_channel_add_watch(
595 wioc->master,
596 G_IO_OUT,
597 qio_channel_websock_handshake_send,
598 task,
Daniel P. Berrangebc35d512016-06-07 12:27:51 +0100599 NULL);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000600 return FALSE;
601}
602
603
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100604static void qio_channel_websock_encode(QIOChannelWebsock *ioc,
605 uint8_t opcode,
606 const struct iovec *iov,
607 size_t niov,
608 size_t size)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000609{
610 size_t header_size;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100611 size_t i;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000612 union {
613 char buf[QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT];
614 QIOChannelWebsockHeader ws;
615 } header;
616
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100617 assert(size <= iov_size(iov, niov));
618
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700619 header.ws.b0 = QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN |
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700620 (opcode & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE);
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100621 if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_7_BIT) {
622 header.ws.b1 = (uint8_t)size;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000623 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100624 } else if (size < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_THRESHOLD_16_BIT) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000625 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100626 header.ws.u.s16.l16 = cpu_to_be16((uint16_t)size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000627 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
628 } else {
629 header.ws.b1 = QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT;
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100630 header.ws.u.s64.l64 = cpu_to_be64(size);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000631 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
632 }
633 header_size -= QIO_CHANNEL_WEBSOCK_HEADER_LEN_MASK;
634
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100635 trace_qio_channel_websock_encode(ioc, opcode, header_size, size);
636 buffer_reserve(&ioc->encoutput, header_size + size);
637 buffer_append(&ioc->encoutput, header.buf, header_size);
638 for (i = 0; i < niov && size != 0; i++) {
639 size_t want = iov[i].iov_len;
640 if (want > size) {
641 want = size;
642 }
643 buffer_append(&ioc->encoutput, iov[i].iov_base, want);
644 size -= want;
645 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700646}
647
648
Brandon Carpenter530ca602017-09-12 08:21:53 -0700649static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *, Error **);
650
651
652static void qio_channel_websock_write_close(QIOChannelWebsock *ioc,
653 uint16_t code, const char *reason)
654{
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100655 struct iovec iov[2] = {
656 { .iov_base = &code, .iov_len = sizeof(code) },
657 };
658 size_t niov = 1;
659 size_t size = iov[0].iov_len;
660
661 cpu_to_be16s(&code);
662
Brandon Carpenter530ca602017-09-12 08:21:53 -0700663 if (reason) {
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100664 iov[1].iov_base = (void *)reason;
665 iov[1].iov_len = strlen(reason);
666 size += iov[1].iov_len;
667 niov++;
Brandon Carpenter530ca602017-09-12 08:21:53 -0700668 }
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100669 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +0100670 iov, niov, size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700671 qio_channel_websock_write_wire(ioc, NULL);
672 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
673}
674
675
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700676static int qio_channel_websock_decode_header(QIOChannelWebsock *ioc,
677 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000678{
679 unsigned char opcode, fin, has_mask;
680 size_t header_size;
681 size_t payload_len;
682 QIOChannelWebsockHeader *header =
683 (QIOChannelWebsockHeader *)ioc->encinput.buffer;
684
685 if (ioc->payload_remain) {
686 error_setg(errp,
687 "Decoding header but %zu bytes of payload remain",
688 ioc->payload_remain);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700689 qio_channel_websock_write_close(
690 ioc, QIO_CHANNEL_WEBSOCK_STATUS_SERVER_ERR,
691 "internal server error");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000692 return -1;
693 }
694 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT) {
695 /* header not complete */
696 return QIO_CHANNEL_ERR_BLOCK;
697 }
698
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700699 fin = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_FIN;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000700 opcode = header->b0 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_OPCODE;
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700701 has_mask = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_HAS_MASK;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000702 payload_len = header->b1 & QIO_CHANNEL_WEBSOCK_HEADER_FIELD_PAYLOAD_LEN;
703
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700704 /* Save or restore opcode. */
705 if (opcode) {
706 ioc->opcode = opcode;
707 } else {
708 opcode = ioc->opcode;
709 }
710
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100711 trace_qio_channel_websock_header_partial_decode(ioc, payload_len,
712 fin, opcode, (int)has_mask);
713
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000714 if (opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
715 /* disconnect */
716 return 0;
717 }
718
719 /* Websocket frame sanity check:
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700720 * * Fragmentation is only supported for binary frames.
721 * * All frames sent by a client MUST be masked.
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700722 * * Only binary and ping/pong encoding is supported.
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000723 */
724 if (!fin) {
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700725 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
726 error_setg(errp, "only binary websocket frames may be fragmented");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700727 qio_channel_websock_write_close(
728 ioc, QIO_CHANNEL_WEBSOCK_STATUS_POLICY ,
729 "only binary frames may be fragmented");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700730 return -1;
731 }
732 } else {
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700733 if (opcode != QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME &&
Brandon Carpenter530ca602017-09-12 08:21:53 -0700734 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE &&
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700735 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PING &&
736 opcode != QIO_CHANNEL_WEBSOCK_OPCODE_PONG) {
Brandon Carpenter530ca602017-09-12 08:21:53 -0700737 error_setg(errp, "unsupported opcode: %#04x; only binary, close, "
738 "ping, and pong websocket frames are supported", opcode);
739 qio_channel_websock_write_close(
740 ioc, QIO_CHANNEL_WEBSOCK_STATUS_INVALID_DATA ,
741 "only binary, close, ping, and pong frames are supported");
Brandon Carpenterff1300e2017-09-12 08:21:49 -0700742 return -1;
743 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000744 }
745 if (!has_mask) {
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700746 error_setg(errp, "client websocket frames must be masked");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700747 qio_channel_websock_write_close(
748 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
749 "client frames must be masked");
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000750 return -1;
751 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000752
753 if (payload_len < QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT) {
754 ioc->payload_remain = payload_len;
755 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_7_BIT;
756 ioc->mask = header->u.m;
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700757 } else if (opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
758 error_setg(errp, "websocket control frame is too large");
Brandon Carpenter530ca602017-09-12 08:21:53 -0700759 qio_channel_websock_write_close(
760 ioc, QIO_CHANNEL_WEBSOCK_STATUS_PROTOCOL_ERR,
761 "control frame is too large");
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700762 return -1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000763 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_16_BIT &&
764 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT) {
765 ioc->payload_remain = be16_to_cpu(header->u.s16.l16);
766 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_16_BIT;
767 ioc->mask = header->u.s16.m16;
768 } else if (payload_len == QIO_CHANNEL_WEBSOCK_PAYLOAD_LEN_MAGIC_64_BIT &&
769 ioc->encinput.offset >= QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT) {
770 ioc->payload_remain = be64_to_cpu(header->u.s64.l64);
771 header_size = QIO_CHANNEL_WEBSOCK_HEADER_LEN_64_BIT;
772 ioc->mask = header->u.s64.m64;
773 } else {
774 /* header not complete */
775 return QIO_CHANNEL_ERR_BLOCK;
776 }
777
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100778 trace_qio_channel_websock_header_full_decode(
779 ioc, header_size, ioc->payload_remain, ioc->mask.u);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000780 buffer_advance(&ioc->encinput, header_size);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700781 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000782}
783
784
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700785static int qio_channel_websock_decode_payload(QIOChannelWebsock *ioc,
786 Error **errp)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000787{
788 size_t i;
Brandon Carpenter3a296402017-09-12 08:21:50 -0700789 size_t payload_len = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000790 uint32_t *payload32;
791
Brandon Carpenter3a296402017-09-12 08:21:50 -0700792 if (ioc->payload_remain) {
793 /* If we aren't at the end of the payload, then drop
794 * off the last bytes, so we're always multiple of 4
795 * for purpose of unmasking, except at end of payload
796 */
797 if (ioc->encinput.offset < ioc->payload_remain) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700798 /* Wait for the entire payload before processing control frames
799 * because the payload will most likely be echoed back. */
800 if (ioc->opcode & QIO_CHANNEL_WEBSOCK_CONTROL_OPCODE_MASK) {
801 return QIO_CHANNEL_ERR_BLOCK;
802 }
Brandon Carpenter3a296402017-09-12 08:21:50 -0700803 payload_len = ioc->encinput.offset - (ioc->encinput.offset % 4);
804 } else {
805 payload_len = ioc->payload_remain;
806 }
807 if (payload_len == 0) {
808 return QIO_CHANNEL_ERR_BLOCK;
809 }
810
811 ioc->payload_remain -= payload_len;
812
813 /* unmask frame */
814 /* process 1 frame (32 bit op) */
815 payload32 = (uint32_t *)ioc->encinput.buffer;
816 for (i = 0; i < payload_len / 4; i++) {
817 payload32[i] ^= ioc->mask.u;
818 }
819 /* process the remaining bytes (if any) */
820 for (i *= 4; i < payload_len; i++) {
821 ioc->encinput.buffer[i] ^= ioc->mask.c[i % 4];
822 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000823 }
824
Daniel P. Berrange59f183b2017-09-21 11:00:47 +0100825 trace_qio_channel_websock_payload_decode(
826 ioc, ioc->opcode, ioc->payload_remain);
827
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700828 if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME) {
829 if (payload_len) {
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700830 /* binary frames are passed on */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700831 buffer_reserve(&ioc->rawinput, payload_len);
832 buffer_append(&ioc->rawinput, ioc->encinput.buffer, payload_len);
833 }
Brandon Carpenter530ca602017-09-12 08:21:53 -0700834 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE) {
835 /* close frames are echoed back */
836 error_setg(errp, "websocket closed by peer");
837 if (payload_len) {
838 /* echo client status */
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100839 struct iovec iov = { .iov_base = ioc->encinput.buffer,
840 .iov_len = ioc->encinput.offset };
841 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_CLOSE,
842 &iov, 1, iov.iov_len);
Brandon Carpenter530ca602017-09-12 08:21:53 -0700843 qio_channel_websock_write_wire(ioc, NULL);
844 qio_channel_shutdown(ioc->master, QIO_CHANNEL_SHUTDOWN_BOTH, NULL);
845 } else {
846 /* send our own status */
847 qio_channel_websock_write_close(
848 ioc, QIO_CHANNEL_WEBSOCK_STATUS_NORMAL, "peer requested close");
849 }
850 return -1;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700851 } else if (ioc->opcode == QIO_CHANNEL_WEBSOCK_OPCODE_PING) {
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100852 /* ping frames produce an immediate reply, as long as we've not still
853 * got a previous pong queued, in which case we drop the new pong */
854 if (ioc->pong_remain == 0) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +0100855 struct iovec iov = { .iov_base = ioc->encinput.buffer,
856 .iov_len = ioc->encinput.offset };
857 qio_channel_websock_encode(ioc, QIO_CHANNEL_WEBSOCK_OPCODE_PONG,
858 &iov, 1, iov.iov_len);
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100859 ioc->pong_remain = ioc->encoutput.offset;
860 }
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700861 } /* pong frames are ignored */
Brandon Carpenter01af17f2017-09-12 08:21:51 -0700862
Brandon Carpenter3a296402017-09-12 08:21:50 -0700863 if (payload_len) {
Brandon Carpenter3a296402017-09-12 08:21:50 -0700864 buffer_advance(&ioc->encinput, payload_len);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000865 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700866 return 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000867}
868
869
870QIOChannelWebsock *
871qio_channel_websock_new_server(QIOChannel *master)
872{
873 QIOChannelWebsock *wioc;
874 QIOChannel *ioc;
875
876 wioc = QIO_CHANNEL_WEBSOCK(object_new(TYPE_QIO_CHANNEL_WEBSOCK));
877 ioc = QIO_CHANNEL(wioc);
878
879 wioc->master = master;
Felipe Franciosie413ae02016-09-29 08:52:36 -0700880 if (qio_channel_has_feature(master, QIO_CHANNEL_FEATURE_SHUTDOWN)) {
Felipe Franciosid8d3c7c2016-09-29 08:52:37 -0700881 qio_channel_set_feature(ioc, QIO_CHANNEL_FEATURE_SHUTDOWN);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000882 }
883 object_ref(OBJECT(master));
884
885 trace_qio_channel_websock_new_server(wioc, master);
886 return wioc;
887}
888
889void qio_channel_websock_handshake(QIOChannelWebsock *ioc,
890 QIOTaskFunc func,
891 gpointer opaque,
892 GDestroyNotify destroy)
893{
894 QIOTask *task;
895
896 task = qio_task_new(OBJECT(ioc),
897 func,
898 opaque,
899 destroy);
900
901 trace_qio_channel_websock_handshake_start(ioc);
902 trace_qio_channel_websock_handshake_pending(ioc, G_IO_IN);
903 qio_channel_add_watch(ioc->master,
904 G_IO_IN,
905 qio_channel_websock_handshake_io,
906 task,
907 NULL);
908}
909
910
911static void qio_channel_websock_finalize(Object *obj)
912{
913 QIOChannelWebsock *ioc = QIO_CHANNEL_WEBSOCK(obj);
914
915 buffer_free(&ioc->encinput);
916 buffer_free(&ioc->encoutput);
917 buffer_free(&ioc->rawinput);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000918 object_unref(OBJECT(ioc->master));
919 if (ioc->io_tag) {
920 g_source_remove(ioc->io_tag);
921 }
922 if (ioc->io_err) {
923 error_free(ioc->io_err);
924 }
925}
926
927
928static ssize_t qio_channel_websock_read_wire(QIOChannelWebsock *ioc,
929 Error **errp)
930{
931 ssize_t ret;
932
933 if (ioc->encinput.offset < 4096) {
934 size_t want = 4096 - ioc->encinput.offset;
935
936 buffer_reserve(&ioc->encinput, want);
937 ret = qio_channel_read(ioc->master,
938 (char *)ioc->encinput.buffer +
939 ioc->encinput.offset,
940 want,
941 errp);
942 if (ret < 0) {
943 return ret;
944 }
Brandon Carpentereefa3d82017-09-12 08:21:48 -0700945 if (ret == 0 && ioc->encinput.offset == 0) {
946 ioc->io_eof = TRUE;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000947 return 0;
948 }
949 ioc->encinput.offset += ret;
950 }
951
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000952 while (ioc->encinput.offset != 0) {
953 if (ioc->payload_remain == 0) {
954 ret = qio_channel_websock_decode_header(ioc, errp);
955 if (ret < 0) {
956 return ret;
957 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000958 }
959
960 ret = qio_channel_websock_decode_payload(ioc, errp);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000961 if (ret < 0) {
962 return ret;
963 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000964 }
Daniel P. Berrangecd892a22017-01-27 18:11:32 +0000965 return 1;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000966}
967
968
969static ssize_t qio_channel_websock_write_wire(QIOChannelWebsock *ioc,
970 Error **errp)
971{
972 ssize_t ret;
973 ssize_t done = 0;
Brandon Carpenter268a53f2017-09-12 08:21:52 -0700974
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000975 while (ioc->encoutput.offset > 0) {
976 ret = qio_channel_write(ioc->master,
977 (char *)ioc->encoutput.buffer,
978 ioc->encoutput.offset,
979 errp);
980 if (ret < 0) {
981 if (ret == QIO_CHANNEL_ERR_BLOCK &&
982 done > 0) {
983 return done;
984 } else {
985 return ret;
986 }
987 }
988 buffer_advance(&ioc->encoutput, ret);
989 done += ret;
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +0100990 if (ioc->pong_remain < ret) {
991 ioc->pong_remain = 0;
992 } else {
993 ioc->pong_remain -= ret;
994 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +0000995 }
996 return done;
997}
998
999
1000static void qio_channel_websock_flush_free(gpointer user_data)
1001{
1002 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
1003 object_unref(OBJECT(wioc));
1004}
1005
1006static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc);
1007
1008static gboolean qio_channel_websock_flush(QIOChannel *ioc,
1009 GIOCondition condition,
1010 gpointer user_data)
1011{
1012 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(user_data);
1013 ssize_t ret;
1014
1015 if (condition & G_IO_OUT) {
1016 ret = qio_channel_websock_write_wire(wioc, &wioc->io_err);
1017 if (ret < 0) {
1018 goto cleanup;
1019 }
1020 }
1021
1022 if (condition & G_IO_IN) {
1023 ret = qio_channel_websock_read_wire(wioc, &wioc->io_err);
1024 if (ret < 0) {
1025 goto cleanup;
1026 }
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001027 }
1028
1029 cleanup:
1030 qio_channel_websock_set_watch(wioc);
1031 return FALSE;
1032}
1033
1034
1035static void qio_channel_websock_unset_watch(QIOChannelWebsock *ioc)
1036{
1037 if (ioc->io_tag) {
1038 g_source_remove(ioc->io_tag);
1039 ioc->io_tag = 0;
1040 }
1041}
1042
1043static void qio_channel_websock_set_watch(QIOChannelWebsock *ioc)
1044{
1045 GIOCondition cond = 0;
1046
1047 qio_channel_websock_unset_watch(ioc);
1048
1049 if (ioc->io_err) {
1050 return;
1051 }
1052
Daniel P. Berrange57b0cdf2017-10-09 15:34:06 +01001053 if (ioc->encoutput.offset) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001054 cond |= G_IO_OUT;
1055 }
1056 if (ioc->encinput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER &&
1057 !ioc->io_eof) {
1058 cond |= G_IO_IN;
1059 }
1060
1061 if (cond) {
1062 object_ref(OBJECT(ioc));
1063 ioc->io_tag =
1064 qio_channel_add_watch(ioc->master,
1065 cond,
1066 qio_channel_websock_flush,
1067 ioc,
1068 qio_channel_websock_flush_free);
1069 }
1070}
1071
1072
1073static ssize_t qio_channel_websock_readv(QIOChannel *ioc,
1074 const struct iovec *iov,
1075 size_t niov,
1076 int **fds,
1077 size_t *nfds,
1078 Error **errp)
1079{
1080 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1081 size_t i;
1082 ssize_t got = 0;
1083 ssize_t ret;
1084
1085 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001086 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001087 return -1;
1088 }
1089
1090 if (!wioc->rawinput.offset) {
1091 ret = qio_channel_websock_read_wire(QIO_CHANNEL_WEBSOCK(ioc), errp);
1092 if (ret < 0) {
1093 return ret;
1094 }
1095 }
1096
1097 for (i = 0 ; i < niov ; i++) {
1098 size_t want = iov[i].iov_len;
1099 if (want > (wioc->rawinput.offset - got)) {
1100 want = (wioc->rawinput.offset - got);
1101 }
1102
1103 memcpy(iov[i].iov_base,
1104 wioc->rawinput.buffer + got,
1105 want);
1106 got += want;
1107
1108 if (want < iov[i].iov_len) {
1109 break;
1110 }
1111 }
1112
1113 buffer_advance(&wioc->rawinput, got);
1114 qio_channel_websock_set_watch(wioc);
1115 return got;
1116}
1117
1118
1119static ssize_t qio_channel_websock_writev(QIOChannel *ioc,
1120 const struct iovec *iov,
1121 size_t niov,
1122 int *fds,
1123 size_t nfds,
1124 Error **errp)
1125{
1126 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001127 ssize_t want = iov_size(iov, niov);
1128 ssize_t avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001129 ssize_t ret;
1130
1131 if (wioc->io_err) {
Eduardo Habkoste79ea672017-06-08 10:39:04 -03001132 error_propagate(errp, error_copy(wioc->io_err));
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001133 return -1;
1134 }
1135
1136 if (wioc->io_eof) {
1137 error_setg(errp, "%s", "Broken pipe");
1138 return -1;
1139 }
1140
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001141 avail = wioc->encoutput.offset >= QIO_CHANNEL_WEBSOCK_MAX_BUFFER ?
1142 0 : (QIO_CHANNEL_WEBSOCK_MAX_BUFFER - wioc->encoutput.offset);
1143 if (want > avail) {
1144 want = avail;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001145 }
1146
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001147 if (want) {
Daniel P. Berrangefb74e592017-10-09 16:33:20 +01001148 qio_channel_websock_encode(wioc,
1149 QIO_CHANNEL_WEBSOCK_OPCODE_BINARY_FRAME,
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001150 iov, niov, want);
Daniel P. Berrangebac6c952017-10-09 14:39:17 +01001151 }
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001152
1153 /* Even if want == 0, we'll try write_wire in case there's
1154 * pending data we could usefully flush out
1155 */
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001156 ret = qio_channel_websock_write_wire(wioc, errp);
1157 if (ret < 0 &&
1158 ret != QIO_CHANNEL_ERR_BLOCK) {
1159 qio_channel_websock_unset_watch(wioc);
1160 return -1;
1161 }
1162
1163 qio_channel_websock_set_watch(wioc);
1164
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001165 if (want == 0) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001166 return QIO_CHANNEL_ERR_BLOCK;
1167 }
1168
Daniel P. Berrange8dfd5f92017-10-09 16:54:07 +01001169 return want;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001170}
1171
1172static int qio_channel_websock_set_blocking(QIOChannel *ioc,
1173 bool enabled,
1174 Error **errp)
1175{
1176 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1177
1178 qio_channel_set_blocking(wioc->master, enabled, errp);
1179 return 0;
1180}
1181
1182static void qio_channel_websock_set_delay(QIOChannel *ioc,
1183 bool enabled)
1184{
1185 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1186
1187 qio_channel_set_delay(tioc->master, enabled);
1188}
1189
1190static void qio_channel_websock_set_cork(QIOChannel *ioc,
1191 bool enabled)
1192{
1193 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1194
1195 qio_channel_set_cork(tioc->master, enabled);
1196}
1197
1198static int qio_channel_websock_shutdown(QIOChannel *ioc,
1199 QIOChannelShutdown how,
1200 Error **errp)
1201{
1202 QIOChannelWebsock *tioc = QIO_CHANNEL_WEBSOCK(ioc);
1203
1204 return qio_channel_shutdown(tioc->master, how, errp);
1205}
1206
1207static int qio_channel_websock_close(QIOChannel *ioc,
1208 Error **errp)
1209{
1210 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1211
Daniel P. Berrange59f183b2017-09-21 11:00:47 +01001212 trace_qio_channel_websock_close(ioc);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001213 return qio_channel_close(wioc->master, errp);
1214}
1215
1216typedef struct QIOChannelWebsockSource QIOChannelWebsockSource;
1217struct QIOChannelWebsockSource {
1218 GSource parent;
1219 QIOChannelWebsock *wioc;
1220 GIOCondition condition;
1221};
1222
1223static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001224qio_channel_websock_source_check(GSource *source)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001225{
1226 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
1227 GIOCondition cond = 0;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001228
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001229 if (wsource->wioc->rawinput.offset || wsource->wioc->io_eof) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001230 cond |= G_IO_IN;
1231 }
Daniel P. Berrangea7b20a82017-10-09 14:43:42 +01001232 if (wsource->wioc->encoutput.offset < QIO_CHANNEL_WEBSOCK_MAX_BUFFER) {
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001233 cond |= G_IO_OUT;
1234 }
1235
1236 return cond & wsource->condition;
1237}
1238
1239static gboolean
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001240qio_channel_websock_source_prepare(GSource *source,
1241 gint *timeout)
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001242{
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001243 *timeout = -1;
1244 return qio_channel_websock_source_check(source);
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001245}
1246
1247static gboolean
1248qio_channel_websock_source_dispatch(GSource *source,
1249 GSourceFunc callback,
1250 gpointer user_data)
1251{
1252 QIOChannelFunc func = (QIOChannelFunc)callback;
1253 QIOChannelWebsockSource *wsource = (QIOChannelWebsockSource *)source;
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001254
1255 return (*func)(QIO_CHANNEL(wsource->wioc),
Brandon Carpentereefa3d82017-09-12 08:21:48 -07001256 qio_channel_websock_source_check(source),
Daniel P. Berrange2d1d0e72015-03-04 15:57:41 +00001257 user_data);
1258}
1259
1260static void
1261qio_channel_websock_source_finalize(GSource *source)
1262{
1263 QIOChannelWebsockSource *ssource = (QIOChannelWebsockSource *)source;
1264
1265 object_unref(OBJECT(ssource->wioc));
1266}
1267
1268GSourceFuncs qio_channel_websock_source_funcs = {
1269 qio_channel_websock_source_prepare,
1270 qio_channel_websock_source_check,
1271 qio_channel_websock_source_dispatch,
1272 qio_channel_websock_source_finalize
1273};
1274
1275static GSource *qio_channel_websock_create_watch(QIOChannel *ioc,
1276 GIOCondition condition)
1277{
1278 QIOChannelWebsock *wioc = QIO_CHANNEL_WEBSOCK(ioc);
1279 QIOChannelWebsockSource *ssource;
1280 GSource *source;
1281
1282 source = g_source_new(&qio_channel_websock_source_funcs,
1283 sizeof(QIOChannelWebsockSource));
1284 ssource = (QIOChannelWebsockSource *)source;
1285
1286 ssource->wioc = wioc;
1287 object_ref(OBJECT(wioc));
1288
1289 ssource->condition = condition;
1290
1291 qio_channel_websock_set_watch(wioc);
1292 return source;
1293}
1294
1295static void qio_channel_websock_class_init(ObjectClass *klass,
1296 void *class_data G_GNUC_UNUSED)
1297{
1298 QIOChannelClass *ioc_klass = QIO_CHANNEL_CLASS(klass);
1299
1300 ioc_klass->io_writev = qio_channel_websock_writev;
1301 ioc_klass->io_readv = qio_channel_websock_readv;
1302 ioc_klass->io_set_blocking = qio_channel_websock_set_blocking;
1303 ioc_klass->io_set_cork = qio_channel_websock_set_cork;
1304 ioc_klass->io_set_delay = qio_channel_websock_set_delay;
1305 ioc_klass->io_close = qio_channel_websock_close;
1306 ioc_klass->io_shutdown = qio_channel_websock_shutdown;
1307 ioc_klass->io_create_watch = qio_channel_websock_create_watch;
1308}
1309
1310static const TypeInfo qio_channel_websock_info = {
1311 .parent = TYPE_QIO_CHANNEL,
1312 .name = TYPE_QIO_CHANNEL_WEBSOCK,
1313 .instance_size = sizeof(QIOChannelWebsock),
1314 .instance_finalize = qio_channel_websock_finalize,
1315 .class_init = qio_channel_websock_class_init,
1316};
1317
1318static void qio_channel_websock_register_types(void)
1319{
1320 type_register_static(&qio_channel_websock_info);
1321}
1322
1323type_init(qio_channel_websock_register_types);