henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 1 | /* |
| 2 | * Copyright 2012 The WebRTC Project Authors. All rights reserved. |
| 3 | * |
| 4 | * Use of this source code is governed by a BSD-style license |
| 5 | * that can be found in the LICENSE file in the root of the source |
| 6 | * tree. An additional intellectual property rights grant can be found |
| 7 | * in the file PATENTS. All contributing project authors may |
| 8 | * be found in the AUTHORS file in the root of the source tree. |
| 9 | */ |
| 10 | |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 11 | #ifndef P2P_BASE_TEST_TURN_SERVER_H_ |
| 12 | #define P2P_BASE_TEST_TURN_SERVER_H_ |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 13 | |
| 14 | #include <string> |
| 15 | #include <vector> |
| 16 | |
Artem Titov | d15a575 | 2021-02-10 14:31:24 +0100 | [diff] [blame] | 17 | #include "api/sequence_checker.h" |
Patrik Höglund | 56d9452 | 2019-11-18 15:53:32 +0100 | [diff] [blame] | 18 | #include "api/transport/stun.h" |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 19 | #include "p2p/base/basic_packet_socket_factory.h" |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 20 | #include "p2p/base/turn_server.h" |
| 21 | #include "rtc_base/async_udp_socket.h" |
| 22 | #include "rtc_base/ssl_adapter.h" |
| 23 | #include "rtc_base/ssl_identity.h" |
Mirko Bonadei | 92ea95e | 2017-09-15 06:47:31 +0200 | [diff] [blame] | 24 | #include "rtc_base/thread.h" |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 25 | |
| 26 | namespace cricket { |
| 27 | |
| 28 | static const char kTestRealm[] = "example.org"; |
| 29 | static const char kTestSoftware[] = "TestTurnServer"; |
| 30 | |
| 31 | class TestTurnRedirector : public TurnRedirectInterface { |
| 32 | public: |
| 33 | explicit TestTurnRedirector(const std::vector<rtc::SocketAddress>& addresses) |
| 34 | : alternate_server_addresses_(addresses), |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 35 | iter_(alternate_server_addresses_.begin()) {} |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 36 | |
| 37 | virtual bool ShouldRedirect(const rtc::SocketAddress&, |
| 38 | rtc::SocketAddress* out) { |
| 39 | if (!out || iter_ == alternate_server_addresses_.end()) { |
| 40 | return false; |
| 41 | } |
| 42 | *out = *iter_++; |
| 43 | return true; |
| 44 | } |
| 45 | |
| 46 | private: |
| 47 | const std::vector<rtc::SocketAddress>& alternate_server_addresses_; |
| 48 | std::vector<rtc::SocketAddress>::const_iterator iter_; |
| 49 | }; |
| 50 | |
| 51 | class TestTurnServer : public TurnAuthInterface { |
| 52 | public: |
| 53 | TestTurnServer(rtc::Thread* thread, |
Honghai Zhang | 80f1db9 | 2016-01-27 11:54:45 -0800 | [diff] [blame] | 54 | const rtc::SocketAddress& int_addr, |
| 55 | const rtc::SocketAddress& udp_ext_addr, |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 56 | ProtocolType int_protocol = PROTO_UDP, |
| 57 | bool ignore_bad_cert = true, |
| 58 | const std::string& common_name = "test turn server") |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 59 | : server_(thread), thread_(thread) { |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 60 | AddInternalSocket(int_addr, int_protocol, ignore_bad_cert, common_name); |
Niels Möller | 9def994 | 2021-09-07 09:16:49 +0200 | [diff] [blame^] | 61 | // TODO(bugs.webrtc.org/13145): Take a SocketFactory as argument, so we |
| 62 | // don't need thread_->socketserver(). |
| 63 | server_.SetExternalSocketFactory( |
| 64 | new rtc::BasicPacketSocketFactory(thread_->socketserver()), |
| 65 | udp_ext_addr); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 66 | server_.set_realm(kTestRealm); |
| 67 | server_.set_software(kTestSoftware); |
| 68 | server_.set_auth_hook(this); |
| 69 | } |
| 70 | |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 71 | ~TestTurnServer() { RTC_DCHECK(thread_checker_.IsCurrent()); } |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 72 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 73 | void set_enable_otu_nonce(bool enable) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 74 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 75 | server_.set_enable_otu_nonce(enable); |
| 76 | } |
| 77 | |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 78 | TurnServer* server() { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 79 | RTC_DCHECK(thread_checker_.IsCurrent()); |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 80 | return &server_; |
| 81 | } |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 82 | |
| 83 | void set_redirect_hook(TurnRedirectInterface* redirect_hook) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 84 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 85 | server_.set_redirect_hook(redirect_hook); |
| 86 | } |
| 87 | |
Taylor Brandstetter | ef18470 | 2016-06-23 17:35:47 -0700 | [diff] [blame] | 88 | void set_enable_permission_checks(bool enable) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 89 | RTC_DCHECK(thread_checker_.IsCurrent()); |
Taylor Brandstetter | ef18470 | 2016-06-23 17:35:47 -0700 | [diff] [blame] | 90 | server_.set_enable_permission_checks(enable); |
| 91 | } |
| 92 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 93 | void AddInternalSocket(const rtc::SocketAddress& int_addr, |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 94 | ProtocolType proto, |
| 95 | bool ignore_bad_cert = true, |
| 96 | const std::string& common_name = "test turn server") { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 97 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 98 | if (proto == cricket::PROTO_UDP) { |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 99 | server_.AddInternalSocket( |
| 100 | rtc::AsyncUDPSocket::Create(thread_->socketserver(), int_addr), |
| 101 | proto); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 102 | } else if (proto == cricket::PROTO_TCP || proto == cricket::PROTO_TLS) { |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 103 | // For TCP we need to create a server socket which can listen for incoming |
| 104 | // new connections. |
Niels Möller | d0b8879 | 2021-08-12 10:32:30 +0200 | [diff] [blame] | 105 | rtc::Socket* socket = |
| 106 | thread_->socketserver()->CreateSocket(AF_INET, SOCK_STREAM); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 107 | if (proto == cricket::PROTO_TLS) { |
| 108 | // For TLS, wrap the TCP socket with an SSL adapter. The adapter must |
| 109 | // be configured with a self-signed certificate for testing. |
| 110 | // Additionally, the client will not present a valid certificate, so we |
| 111 | // must not fail when checking the peer's identity. |
| 112 | rtc::SSLAdapter* adapter = rtc::SSLAdapter::Create(socket); |
| 113 | adapter->SetRole(rtc::SSL_SERVER); |
| 114 | adapter->SetIdentity( |
Harald Alvestrand | 8515d5a | 2020-03-20 22:51:32 +0100 | [diff] [blame] | 115 | rtc::SSLIdentity::Create(common_name, rtc::KeyParams())); |
Sergey Silkin | 9c147dd | 2018-09-12 10:45:38 +0000 | [diff] [blame] | 116 | adapter->SetIgnoreBadCert(ignore_bad_cert); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 117 | socket = adapter; |
| 118 | } |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 119 | socket->Bind(int_addr); |
| 120 | socket->Listen(5); |
| 121 | server_.AddInternalServerSocket(socket, proto); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 122 | } else { |
| 123 | RTC_NOTREACHED() << "Unknown protocol type: " << proto; |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 124 | } |
| 125 | } |
| 126 | |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 127 | // Finds the first allocation in the server allocation map with a source |
| 128 | // ip and port matching the socket address provided. |
| 129 | TurnServerAllocation* FindAllocation(const rtc::SocketAddress& src) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 130 | RTC_DCHECK(thread_checker_.IsCurrent()); |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 131 | const TurnServer::AllocationMap& map = server_.allocations(); |
| 132 | for (TurnServer::AllocationMap::const_iterator it = map.begin(); |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 133 | it != map.end(); ++it) { |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 134 | if (src == it->first.src()) { |
deadbeef | 9794366 | 2016-07-12 11:04:50 -0700 | [diff] [blame] | 135 | return it->second.get(); |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 136 | } |
| 137 | } |
| 138 | return NULL; |
| 139 | } |
| 140 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 141 | private: |
| 142 | // For this test server, succeed if the password is the same as the username. |
| 143 | // Obviously, do not use this in a production environment. |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 144 | virtual bool GetKey(const std::string& username, |
| 145 | const std::string& realm, |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 146 | std::string* key) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 147 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 148 | return ComputeStunCredentialHash(username, realm, username, key); |
| 149 | } |
| 150 | |
| 151 | TurnServer server_; |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 152 | rtc::Thread* thread_; |
Artem Titov | c8421c4 | 2021-02-02 10:57:19 +0100 | [diff] [blame] | 153 | webrtc::SequenceChecker thread_checker_; |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 154 | }; |
| 155 | |
| 156 | } // namespace cricket |
| 157 | |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 158 | #endif // P2P_BASE_TEST_TURN_SERVER_H_ |