henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 1 | /* |
| 2 | * Copyright 2012 The WebRTC Project Authors. All rights reserved. |
| 3 | * |
| 4 | * Use of this source code is governed by a BSD-style license |
| 5 | * that can be found in the LICENSE file in the root of the source |
| 6 | * tree. An additional intellectual property rights grant can be found |
| 7 | * in the file PATENTS. All contributing project authors may |
| 8 | * be found in the AUTHORS file in the root of the source tree. |
| 9 | */ |
| 10 | |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 11 | #ifndef P2P_BASE_TEST_TURN_SERVER_H_ |
| 12 | #define P2P_BASE_TEST_TURN_SERVER_H_ |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 13 | |
Niels Möller | ac9a288 | 2021-10-20 15:25:09 +0200 | [diff] [blame] | 14 | #include <memory> |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 15 | #include <string> |
Niels Möller | ac9a288 | 2021-10-20 15:25:09 +0200 | [diff] [blame] | 16 | #include <utility> |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 17 | #include <vector> |
| 18 | |
Artem Titov | d15a575 | 2021-02-10 14:31:24 +0100 | [diff] [blame] | 19 | #include "api/sequence_checker.h" |
Patrik Höglund | 56d9452 | 2019-11-18 15:53:32 +0100 | [diff] [blame] | 20 | #include "api/transport/stun.h" |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 21 | #include "p2p/base/basic_packet_socket_factory.h" |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 22 | #include "p2p/base/turn_server.h" |
| 23 | #include "rtc_base/async_udp_socket.h" |
| 24 | #include "rtc_base/ssl_adapter.h" |
| 25 | #include "rtc_base/ssl_identity.h" |
Mirko Bonadei | 92ea95e | 2017-09-15 06:47:31 +0200 | [diff] [blame] | 26 | #include "rtc_base/thread.h" |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 27 | |
| 28 | namespace cricket { |
| 29 | |
| 30 | static const char kTestRealm[] = "example.org"; |
| 31 | static const char kTestSoftware[] = "TestTurnServer"; |
| 32 | |
| 33 | class TestTurnRedirector : public TurnRedirectInterface { |
| 34 | public: |
| 35 | explicit TestTurnRedirector(const std::vector<rtc::SocketAddress>& addresses) |
| 36 | : alternate_server_addresses_(addresses), |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 37 | iter_(alternate_server_addresses_.begin()) {} |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 38 | |
| 39 | virtual bool ShouldRedirect(const rtc::SocketAddress&, |
| 40 | rtc::SocketAddress* out) { |
| 41 | if (!out || iter_ == alternate_server_addresses_.end()) { |
| 42 | return false; |
| 43 | } |
| 44 | *out = *iter_++; |
| 45 | return true; |
| 46 | } |
| 47 | |
| 48 | private: |
| 49 | const std::vector<rtc::SocketAddress>& alternate_server_addresses_; |
| 50 | std::vector<rtc::SocketAddress>::const_iterator iter_; |
| 51 | }; |
| 52 | |
| 53 | class TestTurnServer : public TurnAuthInterface { |
| 54 | public: |
| 55 | TestTurnServer(rtc::Thread* thread, |
Honghai Zhang | 80f1db9 | 2016-01-27 11:54:45 -0800 | [diff] [blame] | 56 | const rtc::SocketAddress& int_addr, |
| 57 | const rtc::SocketAddress& udp_ext_addr, |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 58 | ProtocolType int_protocol = PROTO_UDP, |
| 59 | bool ignore_bad_cert = true, |
| 60 | const std::string& common_name = "test turn server") |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 61 | : server_(thread), thread_(thread) { |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 62 | AddInternalSocket(int_addr, int_protocol, ignore_bad_cert, common_name); |
Niels Möller | 9def994 | 2021-09-07 09:16:49 +0200 | [diff] [blame] | 63 | // TODO(bugs.webrtc.org/13145): Take a SocketFactory as argument, so we |
| 64 | // don't need thread_->socketserver(). |
| 65 | server_.SetExternalSocketFactory( |
| 66 | new rtc::BasicPacketSocketFactory(thread_->socketserver()), |
| 67 | udp_ext_addr); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 68 | server_.set_realm(kTestRealm); |
| 69 | server_.set_software(kTestSoftware); |
| 70 | server_.set_auth_hook(this); |
| 71 | } |
| 72 | |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 73 | ~TestTurnServer() { RTC_DCHECK(thread_checker_.IsCurrent()); } |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 74 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 75 | void set_enable_otu_nonce(bool enable) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 76 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 77 | server_.set_enable_otu_nonce(enable); |
| 78 | } |
| 79 | |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 80 | TurnServer* server() { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 81 | RTC_DCHECK(thread_checker_.IsCurrent()); |
Seth Hampson | aed7164 | 2018-06-11 07:41:32 -0700 | [diff] [blame] | 82 | return &server_; |
| 83 | } |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 84 | |
| 85 | void set_redirect_hook(TurnRedirectInterface* redirect_hook) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 86 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 87 | server_.set_redirect_hook(redirect_hook); |
| 88 | } |
| 89 | |
Taylor Brandstetter | ef18470 | 2016-06-23 17:35:47 -0700 | [diff] [blame] | 90 | void set_enable_permission_checks(bool enable) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 91 | RTC_DCHECK(thread_checker_.IsCurrent()); |
Taylor Brandstetter | ef18470 | 2016-06-23 17:35:47 -0700 | [diff] [blame] | 92 | server_.set_enable_permission_checks(enable); |
| 93 | } |
| 94 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 95 | void AddInternalSocket(const rtc::SocketAddress& int_addr, |
Benjamin Wright | d6f86e8 | 2018-05-08 13:12:25 -0700 | [diff] [blame] | 96 | ProtocolType proto, |
| 97 | bool ignore_bad_cert = true, |
| 98 | const std::string& common_name = "test turn server") { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 99 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 100 | if (proto == cricket::PROTO_UDP) { |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 101 | server_.AddInternalSocket( |
| 102 | rtc::AsyncUDPSocket::Create(thread_->socketserver(), int_addr), |
| 103 | proto); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 104 | } else if (proto == cricket::PROTO_TCP || proto == cricket::PROTO_TLS) { |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 105 | // For TCP we need to create a server socket which can listen for incoming |
| 106 | // new connections. |
Niels Möller | d0b8879 | 2021-08-12 10:32:30 +0200 | [diff] [blame] | 107 | rtc::Socket* socket = |
| 108 | thread_->socketserver()->CreateSocket(AF_INET, SOCK_STREAM); |
Niels Möller | ac9a288 | 2021-10-20 15:25:09 +0200 | [diff] [blame] | 109 | socket->Bind(int_addr); |
| 110 | socket->Listen(5); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 111 | if (proto == cricket::PROTO_TLS) { |
| 112 | // For TLS, wrap the TCP socket with an SSL adapter. The adapter must |
| 113 | // be configured with a self-signed certificate for testing. |
| 114 | // Additionally, the client will not present a valid certificate, so we |
| 115 | // must not fail when checking the peer's identity. |
Niels Möller | ac9a288 | 2021-10-20 15:25:09 +0200 | [diff] [blame] | 116 | std::unique_ptr<rtc::SSLAdapterFactory> ssl_adapter_factory = |
| 117 | rtc::SSLAdapterFactory::Create(); |
| 118 | ssl_adapter_factory->SetRole(rtc::SSL_SERVER); |
| 119 | ssl_adapter_factory->SetIdentity( |
Harald Alvestrand | 8515d5a | 2020-03-20 22:51:32 +0100 | [diff] [blame] | 120 | rtc::SSLIdentity::Create(common_name, rtc::KeyParams())); |
Niels Möller | ac9a288 | 2021-10-20 15:25:09 +0200 | [diff] [blame] | 121 | ssl_adapter_factory->SetIgnoreBadCert(ignore_bad_cert); |
| 122 | server_.AddInternalServerSocket(socket, proto, |
| 123 | std::move(ssl_adapter_factory)); |
| 124 | } else { |
| 125 | server_.AddInternalServerSocket(socket, proto); |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 126 | } |
Steve Anton | 786de70 | 2017-08-17 15:15:46 -0700 | [diff] [blame] | 127 | } else { |
Artem Titov | d325196 | 2021-11-15 16:57:07 +0100 | [diff] [blame^] | 128 | RTC_DCHECK_NOTREACHED() << "Unknown protocol type: " << proto; |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 129 | } |
| 130 | } |
| 131 | |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 132 | // Finds the first allocation in the server allocation map with a source |
| 133 | // ip and port matching the socket address provided. |
| 134 | TurnServerAllocation* FindAllocation(const rtc::SocketAddress& src) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 135 | RTC_DCHECK(thread_checker_.IsCurrent()); |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 136 | const TurnServer::AllocationMap& map = server_.allocations(); |
| 137 | for (TurnServer::AllocationMap::const_iterator it = map.begin(); |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 138 | it != map.end(); ++it) { |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 139 | if (src == it->first.src()) { |
deadbeef | 9794366 | 2016-07-12 11:04:50 -0700 | [diff] [blame] | 140 | return it->second.get(); |
pthatcher@webrtc.org | 0ba1533 | 2015-01-10 00:47:02 +0000 | [diff] [blame] | 141 | } |
| 142 | } |
| 143 | return NULL; |
| 144 | } |
| 145 | |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 146 | private: |
| 147 | // For this test server, succeed if the password is the same as the username. |
| 148 | // Obviously, do not use this in a production environment. |
Yves Gerey | 665174f | 2018-06-19 15:03:05 +0200 | [diff] [blame] | 149 | virtual bool GetKey(const std::string& username, |
| 150 | const std::string& realm, |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 151 | std::string* key) { |
Sebastian Jansson | c01367d | 2019-04-08 15:20:44 +0200 | [diff] [blame] | 152 | RTC_DCHECK(thread_checker_.IsCurrent()); |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 153 | return ComputeStunCredentialHash(username, realm, username, key); |
| 154 | } |
| 155 | |
| 156 | TurnServer server_; |
Taylor Brandstetter | e5835f5 | 2016-09-16 15:07:50 -0700 | [diff] [blame] | 157 | rtc::Thread* thread_; |
Artem Titov | c8421c4 | 2021-02-02 10:57:19 +0100 | [diff] [blame] | 158 | webrtc::SequenceChecker thread_checker_; |
henrike@webrtc.org | 269fb4b | 2014-10-28 22:20:11 +0000 | [diff] [blame] | 159 | }; |
| 160 | |
| 161 | } // namespace cricket |
| 162 | |
Steve Anton | 10542f2 | 2019-01-11 09:11:00 -0800 | [diff] [blame] | 163 | #endif // P2P_BASE_TEST_TURN_SERVER_H_ |