2 * Copyright 2016 IoT.bzh
3 * Author: José Bollo <jose.bollo@iot.bzh>
5 * Licensed under the Apache License, Version 2.0 (the "License");
6 * you may not use this file except in compliance with the License.
7 * You may obtain a copy of the License at
9 * http://www.apache.org/licenses/LICENSE-2.0
11 * Unless required by applicable law or agreed to in writing, software
12 * distributed under the License is distributed on an "AS IS" BASIS,
13 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14 * See the License for the specific language governing permissions and
15 * limitations under the License.
25 #include <openssl/sha.h>
26 #include <microhttpd.h>
28 #include "afb-method.h"
29 #include "afb-context.h"
31 #include "afb-websock.h"
32 #include "afb-ws-json1.h"
34 /**************** WebSocket connection upgrade ****************************/
36 static const char websocket_s[] = "websocket";
37 static const char sec_websocket_key_s[] = "Sec-WebSocket-Key";
38 static const char sec_websocket_version_s[] = "Sec-WebSocket-Version";
39 static const char sec_websocket_accept_s[] = "Sec-WebSocket-Accept";
40 static const char sec_websocket_protocol_s[] = "Sec-WebSocket-Protocol";
41 static const char websocket_guid[] = "258EAFA5-E914-47DA-95CA-C5AB0DC85B11";
43 static void enc64(unsigned char *in, char *out)
45 static const char tob64[] =
46 "ABCDEFGHIJKLMNOPQRSTUVWXYZ"
47 "abcdefghijklmnopqrstuvwxyz"
49 out[0] = tob64[in[0] >> 2];
50 out[1] = tob64[((in[0] & 0x03) << 4) | ((in[1] & 0xf0) >> 4)];
51 out[2] = tob64[((in[1] & 0x0f) << 2) | ((in[2] & 0xc0) >> 6)];
52 out[3] = tob64[in[2] & 0x3f];
55 static void make_accept_value(const char *key, char result[29])
57 unsigned char md[SHA_DIGEST_LENGTH+1];
58 size_t len = strlen(key);
59 char *buffer = alloca(len + sizeof websocket_guid - 1);
60 memcpy(buffer, key, len);
61 memcpy(buffer + len, websocket_guid, sizeof websocket_guid - 1);
62 SHA1((const unsigned char *)buffer, (unsigned long)(len + sizeof websocket_guid - 1), md);
63 assert(SHA_DIGEST_LENGTH == 20);
65 enc64(&md[0], &result[0]);
66 enc64(&md[3], &result[4]);
67 enc64(&md[6], &result[8]);
68 enc64(&md[9], &result[12]);
69 enc64(&md[12], &result[16]);
70 enc64(&md[15], &result[20]);
71 enc64(&md[18], &result[24]);
76 static const char vseparators[] = " \t,";
78 static int headerhas(const char *header, const char *needle)
84 header += strspn(header, vseparators);
87 len = strcspn(header, vseparators);
88 if (n == len && 0 == strncasecmp(needle, header, n))
97 void *(*create)(int fd, void *context, void (*cleanup)(void*), void *cleanup_closure);
100 static const struct protodef *search_proto(const struct protodef *protodefs, const char *protocols)
106 protocols += strspn(protocols, vseparators);
109 len = strcspn(protocols, vseparators);
110 for (i = 0 ; protodefs[i].name != NULL ; i++)
111 if (!strncasecmp(protodefs[i].name, protocols, len)
112 && !protodefs[i].name[len])
113 return &protodefs[i];
118 static int check_websocket_upgrade(struct MHD_Connection *con, const struct protodef *protodefs, void *context, void **websock)
120 const union MHD_ConnectionInfo *info;
121 struct MHD_Response *response;
122 const char *connection, *upgrade, *key, *version, *protocols;
125 const struct protodef *proto;
128 /* is an upgrade to websocket ? */
129 upgrade = MHD_lookup_connection_value(con, MHD_HEADER_KIND, MHD_HTTP_HEADER_UPGRADE);
130 if (upgrade == NULL || strcasecmp(upgrade, websocket_s))
133 /* is a connection for upgrade ? */
134 connection = MHD_lookup_connection_value(con, MHD_HEADER_KIND, MHD_HTTP_HEADER_CONNECTION);
135 if (connection == NULL
136 || !headerhas (connection, MHD_HTTP_HEADER_UPGRADE))
139 /* has a key and a version ? */
140 key = MHD_lookup_connection_value(con, MHD_HEADER_KIND, sec_websocket_key_s);
141 version = MHD_lookup_connection_value(con, MHD_HEADER_KIND, sec_websocket_version_s);
142 if (key == NULL || version == NULL)
145 /* is a supported version ? */
146 vernum = atoi(version);
148 response = MHD_create_response_from_buffer(0, NULL, MHD_RESPMEM_PERSISTENT);
149 MHD_add_response_header(response, sec_websocket_version_s, "13");
150 MHD_queue_response(con, MHD_HTTP_UPGRADE_REQUIRED, response);
151 MHD_destroy_response(response);
155 /* is the protocol supported ? */
156 protocols = MHD_lookup_connection_value(con, MHD_HEADER_KIND, sec_websocket_protocol_s);
157 proto = protocols == NULL ? NULL : search_proto(protodefs, protocols);
159 response = MHD_create_response_from_buffer(0, NULL, MHD_RESPMEM_PERSISTENT);
160 MHD_queue_response(con, MHD_HTTP_PRECONDITION_FAILED, response);
161 MHD_destroy_response(response);
165 /* create the web socket */
166 info = MHD_get_connection_info(con, MHD_CONNECTION_INFO_CONNECTION_FD);
168 response = MHD_create_response_from_buffer(0, NULL, MHD_RESPMEM_PERSISTENT);
169 MHD_queue_response(con, MHD_HTTP_INTERNAL_SERVER_ERROR, response);
170 MHD_destroy_response(response);
173 ws = proto->create(info->connect_fd, context, (void*)MHD_resume_connection, con);
175 response = MHD_create_response_from_buffer(0, NULL, MHD_RESPMEM_PERSISTENT);
176 MHD_queue_response(con, MHD_HTTP_INTERNAL_SERVER_ERROR, response);
177 MHD_destroy_response(response);
181 /* send the accept connection */
182 make_accept_value(key, acceptval);
183 response = MHD_create_response_from_buffer(0, NULL, MHD_RESPMEM_PERSISTENT);
184 MHD_add_response_header(response, sec_websocket_accept_s, acceptval);
185 MHD_add_response_header(response, sec_websocket_protocol_s, proto->name);
186 MHD_add_response_header(response, MHD_HTTP_HEADER_CONNECTION, MHD_HTTP_HEADER_UPGRADE);
187 MHD_add_response_header(response, MHD_HTTP_HEADER_UPGRADE, websocket_s);
188 MHD_queue_response(con, MHD_HTTP_SWITCHING_PROTOCOLS, response);
189 MHD_destroy_response(response);
195 static const struct protodef protodefs[] = {
196 { "x-afb-ws-json1", (void*)afb_ws_json1_create },
200 int afb_websock_check_upgrade(struct afb_hreq *hreq)
206 if (hreq->method != afb_method_get
207 || strcasecmp(hreq->version, MHD_HTTP_VERSION_1_1))
211 rc = check_websocket_upgrade(hreq->connection, protodefs, hreq->context.session, &ws);