1 /* 2 * util/netevent.h - event notification 3 * 4 * Copyright (c) 2007, NLnet Labs. All rights reserved. 5 * 6 * This software is open source. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 12 * Redistributions of source code must retain the above copyright notice, 13 * this list of conditions and the following disclaimer. 14 * 15 * Redistributions in binary form must reproduce the above copyright notice, 16 * this list of conditions and the following disclaimer in the documentation 17 * and/or other materials provided with the distribution. 18 * 19 * Neither the name of the NLNET LABS nor the names of its contributors may 20 * be used to endorse or promote products derived from this software without 21 * specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 24 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 25 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR 26 * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT 27 * HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 28 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED 29 * TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR 30 * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF 31 * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING 32 * NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS 33 * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 34 */ 35 36 /** 37 * \file 38 * 39 * This file contains event notification functions. 40 * 41 * There are three types of communication points 42 * o UDP socket - perthread buffer. 43 * o TCP-accept socket - array of TCP-sockets, socketcount. 44 * o TCP socket - own buffer, parent-TCPaccept, read/write state, 45 * number of bytes read/written, timeout. 46 * 47 * There are sockets aimed towards our clients and towards the internet. 48 * o frontside - aimed towards our clients, queries come in, answers back. 49 * o behind - aimed towards internet, to the authoritative DNS servers. 50 * 51 * Several event types are available: 52 * o comm_base - for thread safety of the comm points, one per thread. 53 * o comm_point - udp and tcp networking, with callbacks. 54 * o comm_timer - a timeout with callback. 55 * o comm_signal - callbacks when signal is caught. 56 * o comm_reply - holds reply info during networking callback. 57 * 58 */ 59 60 #ifndef NET_EVENT_H 61 #define NET_EVENT_H 62 63 #include <sys/time.h> 64 #include "dnscrypt/dnscrypt.h" 65 #ifdef HAVE_NGHTTP2_NGHTTP2_H 66 #include <nghttp2/nghttp2.h> 67 #endif 68 #ifdef HAVE_NGTCP2 69 #include <ngtcp2/ngtcp2.h> 70 #endif 71 72 struct sldns_buffer; 73 struct comm_point; 74 struct comm_reply; 75 struct tcl_list; 76 struct ub_event_base; 77 struct unbound_socket; 78 struct doq_server_socket; 79 struct doq_table; 80 struct doq_conn; 81 struct config_file; 82 struct ub_randstate; 83 84 struct mesh_state; 85 struct mesh_area; 86 87 /* internal event notification data storage structure. */ 88 struct internal_event; 89 struct internal_base; 90 struct internal_timer; /* A sub struct of the comm_timer super struct */ 91 92 enum listen_type; 93 94 /** callback from communication point function type */ 95 typedef int comm_point_callback_type(struct comm_point*, void*, int, 96 struct comm_reply*); 97 98 /** to pass no_error to callback function */ 99 #define NETEVENT_NOERROR 0 100 /** to pass closed connection to callback function */ 101 #define NETEVENT_CLOSED -1 102 /** to pass timeout happened to callback function */ 103 #define NETEVENT_TIMEOUT -2 104 /** to pass fallback from capsforID to callback function; 0x20 failed */ 105 #define NETEVENT_CAPSFAIL -3 106 /** to pass done transfer to callback function; http file is complete */ 107 #define NETEVENT_DONE -4 108 /** to pass write of the write packet is done to callback function 109 * used when tcp_write_and_read is enabled */ 110 #define NETEVENT_PKT_WRITTEN -5 111 112 /** timeout to slow accept calls when not possible, in msec. */ 113 #define NETEVENT_SLOW_ACCEPT_TIME 2000 114 /** timeout to slow accept calls when tcp queue is full, in msec. */ 115 #define NETEVENT_SLOW_ACCEPT_QUEUE_TIME 50 116 /** timeout to slow down log print, so it does not spam the logs, in sec */ 117 #define SLOW_LOG_TIME 10 118 /** for doq, the maximum dcid length, in ngtcp2 it is 20. */ 119 #define DOQ_MAX_CIDLEN 24 120 121 /** 122 * A communication point dispatcher. Thread specific. 123 */ 124 struct comm_base { 125 /** behind the scenes structure. with say libevent info. alloced */ 126 struct internal_base* eb; 127 /** callback to stop listening on accept sockets, 128 * performed when accept() will not function properly */ 129 void (*stop_accept)(void*); 130 /** callback to start listening on accept sockets, performed 131 * after stop_accept() then a timeout has passed. */ 132 void (*start_accept)(void*); 133 /** user argument for stop_accept and start_accept functions */ 134 void* cb_arg; 135 }; 136 137 /** 138 * Reply information for a communication point. 139 */ 140 struct comm_reply { 141 /** the comm_point with fd to send reply on to. */ 142 struct comm_point* c; 143 /** the address (for UDP based communication) */ 144 struct sockaddr_storage remote_addr; 145 /** length of address */ 146 socklen_t remote_addrlen; 147 /** return type 0 (none), 4(IP4), 6(IP6) 148 * used only with listen_type_udp_ancil* */ 149 int srctype; 150 /* DnsCrypt context */ 151 #ifdef USE_DNSCRYPT 152 uint8_t client_nonce[crypto_box_HALF_NONCEBYTES]; 153 uint8_t nmkey[crypto_box_BEFORENMBYTES]; 154 const dnsccert *dnsc_cert; 155 int is_dnscrypted; 156 #endif 157 /** the return source interface data */ 158 union { 159 #ifdef IPV6_PKTINFO 160 struct in6_pktinfo v6info; 161 #endif 162 #ifdef IP_PKTINFO 163 struct in_pktinfo v4info; 164 #elif defined(IP_RECVDSTADDR) 165 struct in_addr v4addr; 166 #endif 167 } 168 /** variable with return source data */ 169 pktinfo; 170 /** max udp size for udp packets */ 171 size_t max_udp_size; 172 /* if set, the request came through a proxy */ 173 int is_proxied; 174 /** the client address 175 * the same as remote_addr if not proxied */ 176 struct sockaddr_storage client_addr; 177 /** the original address length */ 178 socklen_t client_addrlen; 179 #ifdef HAVE_NGTCP2 180 /** the doq ifindex, together with addr and localaddr in pktinfo, 181 * and dcid makes the doq_conn_key to find the connection */ 182 int doq_ifindex; 183 /** the doq dcid, the connection id used to find the connection */ 184 uint8_t doq_dcid[DOQ_MAX_CIDLEN]; 185 /** the length of the doq dcid */ 186 size_t doq_dcidlen; 187 /** the doq stream id where the query came in on */ 188 int64_t doq_streamid; 189 /** port number for doq */ 190 int doq_srcport; 191 #endif /* HAVE_NGTCP2 */ 192 /** The doq stream to register mesh states to. */ 193 struct doq_stream* doq_stream; 194 }; 195 196 /** 197 * Communication point to the network 198 * These behaviours can be accomplished by setting the flags 199 * and passing return values from the callback. 200 * udp frontside: called after readdone. sendafter. 201 * tcp frontside: called readdone, sendafter. close. 202 * udp behind: called after readdone. No send after. 203 * tcp behind: write done, read done, then called. No send after. 204 */ 205 struct comm_point { 206 /** behind the scenes structure, with say libevent info. alloced. */ 207 struct internal_event* ev; 208 /** if the event is added or not */ 209 int event_added; 210 211 /** Reference to struct that is part of the listening ports, 212 * where for listening ports information is kept about the address. */ 213 struct unbound_socket* socket; 214 215 /** file descriptor for communication point */ 216 int fd; 217 218 /** timeout (NULL if it does not). Malloced. */ 219 struct timeval* timeout; 220 221 /** buffer pointer. Either to perthread, or own buffer or NULL */ 222 struct sldns_buffer* buffer; 223 224 /* -------- TCP Handler -------- */ 225 /** Read/Write state for TCP */ 226 int tcp_is_reading; 227 /** The current read/write count for TCP */ 228 size_t tcp_byte_count; 229 /** parent communication point (for TCP sockets) */ 230 struct comm_point* tcp_parent; 231 /** sockaddr from peer, for TCP handlers */ 232 struct comm_reply repinfo; 233 234 /* -------- TCP Accept -------- */ 235 /** the number of TCP handlers for this tcp-accept socket */ 236 int max_tcp_count; 237 /** current number of tcp handler in-use for this accept socket */ 238 int cur_tcp_count; 239 /** malloced array of tcp handlers for a tcp-accept, 240 of size max_tcp_count. */ 241 struct comm_point** tcp_handlers; 242 /** linked list of free tcp_handlers to use for new queries. 243 For tcp_accept the first entry, for tcp_handlers the next one. */ 244 struct comm_point* tcp_free; 245 /** Whether this struct is in its parent's tcp_free list */ 246 int is_in_tcp_free; 247 248 /* -------- SSL TCP DNS ------- */ 249 /** the SSL object with rw bio (owned) or for commaccept ctx ref */ 250 void* ssl; 251 /** handshake state for init and renegotiate */ 252 enum { 253 /** no handshake, it has been done */ 254 comm_ssl_shake_none = 0, 255 /** ssl initial handshake wants to read */ 256 comm_ssl_shake_read, 257 /** ssl initial handshake wants to write */ 258 comm_ssl_shake_write, 259 /** ssl_write wants to read */ 260 comm_ssl_shake_hs_read, 261 /** ssl_read wants to write */ 262 comm_ssl_shake_hs_write 263 } ssl_shake_state; 264 265 /* -------- HTTP ------- */ 266 /** Do not allow connection to use HTTP version lower than this. 0=no 267 * minimum. */ 268 enum { 269 http_version_none = 0, 270 http_version_2 = 2 271 } http_min_version; 272 /** http endpoint */ 273 char* http_endpoint; 274 /* -------- HTTP/1.1 ------- */ 275 /** Currently reading in http headers */ 276 int http_in_headers; 277 /** Currently reading in chunk headers, 0=not, 1=firstline, 2=unused 278 * (more lines), 3=trailer headers after chunk */ 279 int http_in_chunk_headers; 280 /** chunked transfer */ 281 int http_is_chunked; 282 /** http temp buffer (shared buffer for temporary work) */ 283 struct sldns_buffer* http_temp; 284 /** http stored content in buffer */ 285 size_t http_stored; 286 /* -------- HTTP/2 ------- */ 287 /** http2 session */ 288 struct http2_session* h2_session; 289 /** set to 1 if h2 is negotiated to be used (using alpn) */ 290 int use_h2; 291 /** stream currently being handled */ 292 struct http2_stream* h2_stream; 293 /** maximum allowed query buffer size, per stream */ 294 size_t http2_stream_max_qbuffer_size; 295 /** maximum number of HTTP/2 streams per connection. Send in HTTP/2 296 * SETTINGS frame. */ 297 uint32_t http2_max_streams; 298 /* -------- DoQ ------- */ 299 #ifdef HAVE_NGTCP2 300 /** the doq server socket, with list of doq connections */ 301 struct doq_server_socket* doq_socket; 302 #endif 303 304 /* -------- dnstap ------- */ 305 /** the dnstap environment */ 306 struct dt_env* dtenv; 307 308 /** is this a UDP, TCP-accept or TCP socket. */ 309 enum comm_point_type { 310 /** UDP socket - handle datagrams. */ 311 comm_udp, 312 /** TCP accept socket - only creates handlers if readable. */ 313 comm_tcp_accept, 314 /** TCP handler socket - handle byteperbyte readwrite. */ 315 comm_tcp, 316 /** HTTP handler socket */ 317 comm_http, 318 /** DOQ handler socket */ 319 comm_doq, 320 /** AF_UNIX socket - for internal commands. */ 321 comm_local, 322 /** raw - not DNS format - for pipe readers and writers */ 323 comm_raw 324 } 325 /** variable with type of socket, UDP,TCP-accept,TCP,pipe */ 326 type; 327 328 /* -------- PROXYv2 ------- */ 329 /** if set, PROXYv2 is expected on this connection */ 330 int pp2_enabled; 331 /** header state for the PROXYv2 header (for TCP) */ 332 enum { 333 /** no header encounter yet */ 334 pp2_header_none = 0, 335 /** read the static part of the header */ 336 pp2_header_init, 337 /** read the full header */ 338 pp2_header_done 339 } pp2_header_state; 340 341 /* ---------- Behaviour ----------- */ 342 /** if set the connection is NOT closed on delete. */ 343 int do_not_close; 344 345 /** if set, the connection is closed on error, on timeout, 346 and after read/write completes. No callback is done. */ 347 int tcp_do_close; 348 349 /** flag that indicates the stream is both written and read from. */ 350 int tcp_write_and_read; 351 352 /** byte count for written length over write channel, for when 353 * tcp_write_and_read is enabled. When tcp_write_and_read is enabled, 354 * this is the counter for writing, the one for reading is in the 355 * commpoint.buffer sldns buffer. The counter counts from 0 to 356 * 2+tcp_write_pkt_len, and includes the tcp length bytes. */ 357 size_t tcp_write_byte_count; 358 359 /** packet to write currently over the write channel. for when 360 * tcp_write_and_read is enabled. When tcp_write_and_read is enabled, 361 * this is the buffer for the written packet, the commpoint.buffer 362 * sldns buffer is the buffer for the received packet. */ 363 uint8_t* tcp_write_pkt; 364 /** length of tcp_write_pkt in bytes */ 365 size_t tcp_write_pkt_len; 366 367 /** if set try to read another packet again (over connection with 368 * multiple packets), once set, tries once, then zero again, 369 * so set it in the packet complete section. 370 * The pointer itself has to be set before the callback is invoked, 371 * when you set things up, and continue to exist also after the 372 * commpoint is closed and deleted in your callback. So that after 373 * the callback cleans up netevent can see what it has to do. 374 * Or leave NULL if it is not used at all. */ 375 int* tcp_more_read_again; 376 377 /** if set try to write another packet (over connection with 378 * multiple packets), once set, tries once, then zero again, 379 * so set it in the packet complete section. 380 * The pointer itself has to be set before the callback is invoked, 381 * when you set things up, and continue to exist also after the 382 * commpoint is closed and deleted in your callback. So that after 383 * the callback cleans up netevent can see what it has to do. 384 * Or leave NULL if it is not used at all. */ 385 int* tcp_more_write_again; 386 387 /** if set, read/write completes: 388 read/write state of tcp is toggled. 389 buffer reset/bytecount reset. 390 this flag cleared. 391 So that when that is done the callback is called. */ 392 int tcp_do_toggle_rw; 393 394 /** timeout in msec for TCP wait times for this connection */ 395 int tcp_timeout_msec; 396 397 /** if set, tcp keepalive is enabled on this connection */ 398 int tcp_keepalive; 399 400 /** if set, checks for pending error from nonblocking connect() call.*/ 401 int tcp_check_nb_connect; 402 403 /** if set, check for connection limit on tcp accept. */ 404 struct tcl_list* tcp_conn_limit; 405 /** the entry for the connection. */ 406 struct tcl_addr* tcl_addr; 407 408 /** the structure to keep track of open requests on this channel */ 409 struct tcp_req_info* tcp_req_info; 410 411 #ifdef USE_MSG_FASTOPEN 412 /** used to track if the sendto() call should be done when using TFO. */ 413 int tcp_do_fastopen; 414 #endif 415 416 #ifdef USE_DNSCRYPT 417 /** Is this a dnscrypt channel */ 418 int dnscrypt; 419 /** encrypted buffer pointer. Either to perthread, or own buffer or NULL */ 420 struct sldns_buffer* dnscrypt_buffer; 421 #endif 422 /** number of queries outstanding on this socket, used by 423 * outside network for udp ports */ 424 int inuse; 425 /** the timestamp when the packet was received by the kernel */ 426 struct timeval recv_tv; 427 /** callback when done. 428 tcp_accept does not get called back, is NULL then. 429 If a timeout happens, callback with timeout=1 is called. 430 If an error happens, callback is called with error set 431 nonzero. If not NETEVENT_NOERROR, it is an errno value. 432 If the connection is closed (by remote end) then the 433 callback is called with error set to NETEVENT_CLOSED=-1. 434 If a timeout happens on the connection, the error is set to 435 NETEVENT_TIMEOUT=-2. 436 The reply_info can be copied if the reply needs to happen at a 437 later time. It consists of a struct with commpoint and address. 438 It can be passed to a msg send routine some time later. 439 Note the reply information is temporary and must be copied. 440 NULL is passed for_reply info, in cases where error happened. 441 442 declare as: 443 int my_callback(struct comm_point* c, void* my_arg, int error, 444 struct comm_reply *reply_info); 445 446 if the routine returns 0, nothing is done. 447 Notzero, the buffer will be sent back to client. 448 For UDP this is done without changing the commpoint. 449 In TCP it sets write state. 450 */ 451 comm_point_callback_type* callback; 452 /** argument to pass to callback. */ 453 void *cb_arg; 454 }; 455 456 /** 457 * Structure only for making timeout events. 458 */ 459 struct comm_timer { 460 /** the internal event stuff (derived) */ 461 struct internal_timer* ev_timer; 462 463 /** callback function, takes user arg only */ 464 void (*callback)(void*); 465 466 /** callback user argument */ 467 void* cb_arg; 468 }; 469 470 /** 471 * Structure only for signal events. 472 */ 473 struct comm_signal { 474 /** the communication base */ 475 struct comm_base* base; 476 477 /** the internal event stuff */ 478 struct internal_signal* ev_signal; 479 480 /** callback function, takes signal number and user arg */ 481 void (*callback)(int, void*); 482 483 /** callback user argument */ 484 void* cb_arg; 485 }; 486 487 /** 488 * Create a new comm base. 489 * @param sigs: if true it attempts to create a default loop for 490 * signal handling. 491 * @return: the new comm base. NULL on error. 492 */ 493 struct comm_base* comm_base_create(int sigs); 494 495 /** 496 * Create comm base that uses the given ub_event_base (underlying pluggable 497 * event mechanism pointer). 498 * @param base: underlying pluggable event base. 499 * @return: the new comm base. NULL on error. 500 */ 501 struct comm_base* comm_base_create_event(struct ub_event_base* base); 502 503 /** 504 * Delete comm base structure but not the underlying lib event base. 505 * All comm points must have been deleted. 506 * @param b: the base to delete. 507 */ 508 void comm_base_delete_no_base(struct comm_base* b); 509 510 /** 511 * Destroy a comm base. 512 * All comm points must have been deleted. 513 * @param b: the base to delete. 514 */ 515 void comm_base_delete(struct comm_base* b); 516 517 /** 518 * Obtain two pointers. The pointers never change (until base_delete()). 519 * The pointers point to time values that are updated regularly. 520 * @param b: the communication base that will update the time values. 521 * @param tt: pointer to time in seconds is returned. 522 * @param tv: pointer to time in microseconds is returned. 523 */ 524 void comm_base_timept(struct comm_base* b, time_t** tt, struct timeval** tv); 525 526 /** 527 * Dispatch the comm base events. 528 * @param b: the communication to perform. 529 */ 530 void comm_base_dispatch(struct comm_base* b); 531 532 /** 533 * Exit from dispatch loop. 534 * @param b: the communication base that is in dispatch(). 535 */ 536 void comm_base_exit(struct comm_base* b); 537 538 /** 539 * Set the slow_accept mode handlers. You can not provide these if you do 540 * not perform accept() calls. 541 * @param b: comm base 542 * @param stop_accept: function that stops listening to accept fds. 543 * @param start_accept: function that resumes listening to accept fds. 544 * @param arg: callback arg to pass to the functions. 545 */ 546 void comm_base_set_slow_accept_handlers(struct comm_base* b, 547 void (*stop_accept)(void*), void (*start_accept)(void*), void* arg); 548 549 /** 550 * Access internal data structure (for util/tube.c on windows) 551 * @param b: comm base 552 * @return ub_event_base. 553 */ 554 struct ub_event_base* comm_base_internal(struct comm_base* b); 555 556 /** 557 * Access internal event structure. It is for use with 558 * ub_winsock_tcp_wouldblock on windows. 559 * @param c: comm point. 560 * @return event. 561 */ 562 struct ub_event* comm_point_internal(struct comm_point* c); 563 564 /** 565 * Create an UDP comm point. Calls malloc. 566 * setups the structure with the parameters you provide. 567 * @param base: in which base to alloc the commpoint. 568 * @param fd: file descriptor of open UDP socket. 569 * @param buffer: shared buffer by UDP sockets from this thread. 570 * @param pp2_enabled: if the comm point will support PROXYv2. 571 * @param callback: callback function pointer. 572 * @param callback_arg: will be passed to your callback function. 573 * @param socket: and opened socket properties will be passed to your callback function. 574 * @return: returns the allocated communication point. NULL on error. 575 * Sets timeout to NULL. Turns off TCP options. 576 */ 577 struct comm_point* comm_point_create_udp(struct comm_base* base, 578 int fd, struct sldns_buffer* buffer, int pp2_enabled, 579 comm_point_callback_type* callback, void* callback_arg, struct unbound_socket* socket); 580 581 /** 582 * Create an UDP with ancillary data comm point. Calls malloc. 583 * Uses recvmsg instead of recv to get udp message. 584 * setups the structure with the parameters you provide. 585 * @param base: in which base to alloc the commpoint. 586 * @param fd: file descriptor of open UDP socket. 587 * @param buffer: shared buffer by UDP sockets from this thread. 588 * @param pp2_enabled: if the comm point will support PROXYv2. 589 * @param callback: callback function pointer. 590 * @param callback_arg: will be passed to your callback function. 591 * @param socket: and opened socket properties will be passed to your callback function. 592 * @return: returns the allocated communication point. NULL on error. 593 * Sets timeout to NULL. Turns off TCP options. 594 */ 595 struct comm_point* comm_point_create_udp_ancil(struct comm_base* base, 596 int fd, struct sldns_buffer* buffer, int pp2_enabled, 597 comm_point_callback_type* callback, void* callback_arg, struct unbound_socket* socket); 598 599 /** 600 * Create an UDP comm point for DoQ. Calls malloc. 601 * setups the structure with the parameters you provide. 602 * @param base: in which base to alloc the commpoint. 603 * @param fd : file descriptor of open UDP socket. 604 * @param buffer: shared buffer by UDP sockets from this thread. 605 * @param callback: callback function pointer. 606 * @param callback_arg: will be passed to your callback function. 607 * @param socket: and opened socket properties will be passed to your callback function. 608 * @param table: the doq connection table for the host. 609 * @param rnd: random generator to use. 610 * @param quic_sslctx: the quic ssl context. 611 * @param cfg: config file struct. 612 * @return: returns the allocated communication point. NULL on error. 613 * Sets timeout to NULL. Turns off TCP options. 614 */ 615 struct comm_point* comm_point_create_doq(struct comm_base* base, 616 int fd, struct sldns_buffer* buffer, 617 comm_point_callback_type* callback, void* callback_arg, 618 struct unbound_socket* socket, struct doq_table* table, 619 struct ub_randstate* rnd, const void* quic_sslctx, 620 struct config_file* cfg); 621 622 /** 623 * Create a TCP listener comm point. Calls malloc. 624 * Setups the structure with the parameters you provide. 625 * Also Creates TCP Handlers, pre allocated for you. 626 * Uses the parameters you provide. 627 * @param base: in which base to alloc the commpoint. 628 * @param fd: file descriptor of open TCP socket set to listen nonblocking. 629 * @param num: becomes max_tcp_count, the routine allocates that 630 * many tcp handler commpoints. 631 * @param idle_timeout: TCP idle timeout in ms. 632 * @param harden_large_queries: whether query size should be limited. 633 * @param http_max_streams: maximum number of HTTP/2 streams per connection. 634 * @param http_endpoint: HTTP endpoint to service queries on 635 * @param tcp_conn_limit: TCP connection limit info. 636 * @param bufsize: size of buffer to create for handlers. 637 * @param spoolbuf: shared spool buffer for tcp_req_info structures. 638 * or NULL to not create those structures in the tcp handlers. 639 * @param port_type: the type of port we are creating a TCP listener for. Used 640 * to select handler type to use. 641 * @param pp2_enabled: if the comm point will support PROXYv2. 642 * @param callback: callback function pointer for TCP handlers. 643 * @param callback_arg: will be passed to your callback function. 644 * @param socket: and opened socket properties will be passed to your callback function. 645 * @return: returns the TCP listener commpoint. You can find the 646 * TCP handlers in the array inside the listener commpoint. 647 * returns NULL on error. 648 * Inits timeout to NULL. All handlers are on the free list. 649 */ 650 struct comm_point* comm_point_create_tcp(struct comm_base* base, 651 int fd, int num, int idle_timeout, int harden_large_queries, 652 uint32_t http_max_streams, char* http_endpoint, 653 struct tcl_list* tcp_conn_limit, 654 size_t bufsize, struct sldns_buffer* spoolbuf, 655 enum listen_type port_type, int pp2_enabled, 656 comm_point_callback_type* callback, void* callback_arg, struct unbound_socket* socket); 657 658 /** 659 * Create an outgoing TCP commpoint. No file descriptor is opened, left at -1. 660 * @param base: in which base to alloc the commpoint. 661 * @param bufsize: size of buffer to create for handlers. 662 * @param callback: callback function pointer for the handler. 663 * @param callback_arg: will be passed to your callback function. 664 * @return: the commpoint or NULL on error. 665 */ 666 struct comm_point* comm_point_create_tcp_out(struct comm_base* base, 667 size_t bufsize, comm_point_callback_type* callback, void* callback_arg); 668 669 /** 670 * Create an outgoing HTTP commpoint. No file descriptor is opened, left at -1. 671 * @param base: in which base to alloc the commpoint. 672 * @param bufsize: size of buffer to create for handlers. 673 * @param callback: callback function pointer for the handler. 674 * @param callback_arg: will be passed to your callback function. 675 * @param temp: sldns buffer, shared between other http_out commpoints, for 676 * temporary data when performing callbacks. 677 * @return: the commpoint or NULL on error. 678 */ 679 struct comm_point* comm_point_create_http_out(struct comm_base* base, 680 size_t bufsize, comm_point_callback_type* callback, 681 void* callback_arg, struct sldns_buffer* temp); 682 683 /** 684 * Create commpoint to listen to a local domain file descriptor. 685 * @param base: in which base to alloc the commpoint. 686 * @param fd: file descriptor of open AF_UNIX socket set to listen nonblocking. 687 * @param bufsize: size of buffer to create for handlers. 688 * @param callback: callback function pointer for the handler. 689 * @param callback_arg: will be passed to your callback function. 690 * @return: the commpoint or NULL on error. 691 */ 692 struct comm_point* comm_point_create_local(struct comm_base* base, 693 int fd, size_t bufsize, 694 comm_point_callback_type* callback, void* callback_arg); 695 696 /** 697 * Create commpoint to listen to a local domain pipe descriptor. 698 * @param base: in which base to alloc the commpoint. 699 * @param fd: file descriptor. 700 * @param writing: true if you want to listen to writes, false for reads. 701 * @param callback: callback function pointer for the handler. 702 * @param callback_arg: will be passed to your callback function. 703 * @return: the commpoint or NULL on error. 704 */ 705 struct comm_point* comm_point_create_raw(struct comm_base* base, 706 int fd, int writing, 707 comm_point_callback_type* callback, void* callback_arg); 708 709 /** 710 * Close a comm point fd. 711 * @param c: comm point to close. 712 */ 713 void comm_point_close(struct comm_point* c); 714 715 /** 716 * Close and deallocate (free) the comm point. If the comm point is 717 * a tcp-accept point, also its tcp-handler points are deleted. 718 * @param c: comm point to delete. 719 */ 720 void comm_point_delete(struct comm_point* c); 721 722 /** 723 * Send reply. Put message into commpoint buffer. 724 * @param repinfo: The reply info copied from a commpoint callback call. 725 */ 726 void comm_point_send_reply(struct comm_reply* repinfo); 727 728 /** 729 * Drop reply. Cleans up. 730 * @param repinfo: The reply info copied from a commpoint callback call. 731 */ 732 void comm_point_drop_reply(struct comm_reply* repinfo); 733 734 /** 735 * Send an udp message over a commpoint. 736 * @param c: commpoint to send it from. 737 * @param packet: what to send. 738 * @param addr: where to send it to. If NULL, send is performed, 739 * for connected sockets, to the connected address. 740 * @param addrlen: length of addr. 741 * @param is_connected: if the UDP socket is connect()ed. 742 * @return: false on a failure. 743 */ 744 int comm_point_send_udp_msg(struct comm_point* c, struct sldns_buffer* packet, 745 struct sockaddr* addr, socklen_t addrlen,int is_connected); 746 747 /** 748 * Stop listening for input on the commpoint. No callbacks will happen. 749 * @param c: commpoint to disable. The fd is not closed. 750 */ 751 void comm_point_stop_listening(struct comm_point* c); 752 753 /** 754 * Start listening again for input on the comm point. 755 * @param c: commpoint to enable again. 756 * @param newfd: new fd, or -1 to leave fd be. 757 * @param msec: timeout in milliseconds, or -1 for no (change to the) timeout. 758 * So seconds*1000. 759 */ 760 void comm_point_start_listening(struct comm_point* c, int newfd, int msec); 761 762 /** 763 * Stop listening and start listening again for reading or writing. 764 * @param c: commpoint 765 * @param rd: if true, listens for reading. 766 * @param wr: if true, listens for writing. 767 */ 768 void comm_point_listen_for_rw(struct comm_point* c, int rd, int wr); 769 770 /** 771 * For TCP handlers that use c->tcp_timeout_msec, this routine adjusts 772 * it with the minimum. Otherwise, a 0 value advertised without the 773 * minimum applied moves to a 0 in comm_point_start_listening and that 774 * routine treats it as no timeout, listen forever, which is not wanted. 775 * @param c: comm point to use the tcp_timeout_msec of. 776 * @return adjusted tcp_timeout_msec value with the minimum if smaller. 777 */ 778 int adjusted_tcp_timeout(struct comm_point* c); 779 780 /** 781 * Get size of memory used by comm point. 782 * For TCP handlers this includes subhandlers. 783 * For UDP handlers, this does not include the (shared) UDP buffer. 784 * @param c: commpoint. 785 * @return size in bytes. 786 */ 787 size_t comm_point_get_mem(struct comm_point* c); 788 789 /** 790 * create timer. Not active upon creation. 791 * @param base: event handling base. 792 * @param cb: callback function: void myfunc(void* myarg); 793 * @param cb_arg: user callback argument. 794 * @return: the new timer or NULL on error. 795 */ 796 struct comm_timer* comm_timer_create(struct comm_base* base, 797 void (*cb)(void*), void* cb_arg); 798 799 /** 800 * disable timer. Stops callbacks from happening. 801 * @param timer: to disable. 802 */ 803 void comm_timer_disable(struct comm_timer* timer); 804 805 /** 806 * reset timevalue for timer. 807 * @param timer: timer to (re)set. 808 * @param tv: when the timer should activate. if NULL timer is disabled. 809 */ 810 void comm_timer_set(struct comm_timer* timer, struct timeval* tv); 811 812 /** 813 * delete timer. 814 * @param timer: to delete. 815 */ 816 void comm_timer_delete(struct comm_timer* timer); 817 818 /** 819 * see if timeout has been set to a value. 820 * @param timer: the timer to examine. 821 * @return: false if disabled or not set. 822 */ 823 int comm_timer_is_set(struct comm_timer* timer); 824 825 /** 826 * Get size of memory used by comm timer. 827 * @param timer: the timer to examine. 828 * @return size in bytes. 829 */ 830 size_t comm_timer_get_mem(struct comm_timer* timer); 831 832 /** 833 * Create a signal handler. Call signal_bind() later to bind to a signal. 834 * @param base: communication base to use. 835 * @param callback: called when signal is caught. 836 * @param cb_arg: user argument to callback 837 * @return: the signal struct or NULL on error. 838 */ 839 struct comm_signal* comm_signal_create(struct comm_base* base, 840 void (*callback)(int, void*), void* cb_arg); 841 842 /** 843 * Bind signal struct to catch a signal. A single comm_signal can be bound 844 * to multiple signals, calling comm_signal_bind multiple times. 845 * @param comsig: the communication point, with callback information. 846 * @param sig: signal number. 847 * @return: true on success. false on error. 848 */ 849 int comm_signal_bind(struct comm_signal* comsig, int sig); 850 851 /** 852 * Delete the signal communication point. 853 * @param comsig: to delete. 854 */ 855 void comm_signal_delete(struct comm_signal* comsig); 856 857 /** 858 * perform accept(2) with error checking. 859 * @param c: commpoint with accept fd. 860 * @param addr: remote end returned here. 861 * @param addrlen: length of remote end returned here. 862 * @return new fd, or -1 on error. 863 * if -1, error message has been printed if necessary, simply drop 864 * out of the reading handler. 865 */ 866 int comm_point_perform_accept(struct comm_point* c, 867 struct sockaddr_storage* addr, socklen_t* addrlen); 868 869 /**** internal routines ****/ 870 871 /** 872 * This routine is published for checks and tests, and is only used internally. 873 * handle libevent callback for udp comm point. 874 * @param fd: file descriptor. 875 * @param event: event bits from libevent: 876 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 877 * @param arg: the comm_point structure. 878 */ 879 void comm_point_udp_callback(int fd, short event, void* arg); 880 881 /** 882 * This routine is published for checks and tests, and is only used internally. 883 * handle libevent callback for udp ancillary data comm point. 884 * @param fd: file descriptor. 885 * @param event: event bits from libevent: 886 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 887 * @param arg: the comm_point structure. 888 */ 889 void comm_point_udp_ancil_callback(int fd, short event, void* arg); 890 891 /** 892 * This routine is published for checks and tests, and is only used internally. 893 * handle libevent callback for doq comm point. 894 * @param fd: file descriptor. 895 * @param event: event bits from libevent: 896 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 897 * @param arg: the comm_point structure. 898 */ 899 void comm_point_doq_callback(int fd, short event, void* arg); 900 901 /** 902 * This routine is published for checks and tests, and is only used internally. 903 * handle libevent callback for tcp accept comm point 904 * @param fd: file descriptor. 905 * @param event: event bits from libevent: 906 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 907 * @param arg: the comm_point structure. 908 */ 909 void comm_point_tcp_accept_callback(int fd, short event, void* arg); 910 911 /** 912 * This routine is published for checks and tests, and is only used internally. 913 * handle libevent callback for tcp data comm point 914 * @param fd: file descriptor. 915 * @param event: event bits from libevent: 916 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 917 * @param arg: the comm_point structure. 918 */ 919 void comm_point_tcp_handle_callback(int fd, short event, void* arg); 920 921 /** 922 * This routine is published for checks and tests, and is only used internally. 923 * handle libevent callback for tcp data comm point 924 * @param fd: file descriptor. 925 * @param event: event bits from libevent: 926 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 927 * @param arg: the comm_point structure. 928 */ 929 void comm_point_http_handle_callback(int fd, short event, void* arg); 930 931 /** 932 * HTTP2 session. HTTP2 related info per comm point. 933 */ 934 struct http2_session { 935 /** first item in list of streams */ 936 struct http2_stream* first_stream; 937 #ifdef HAVE_NGHTTP2 938 /** nghttp2 session */ 939 nghttp2_session *session; 940 /** store nghttp2 callbacks for easy reuse */ 941 nghttp2_session_callbacks* callbacks; 942 #endif 943 /** comm point containing buffer used to build answer in worker or 944 * module */ 945 struct comm_point* c; 946 /** count the number of consecutive reads on the session */ 947 uint32_t reads_count; 948 /** session is instructed to get dropped (comm port will be closed) */ 949 int is_drop; 950 /** postpone dropping the session, can be used to prevent dropping 951 * while being in a callback */ 952 int postpone_drop; 953 }; 954 955 /** enum of HTTP status */ 956 enum http_status { 957 HTTP_STATUS_OK = 200, 958 HTTP_STATUS_BAD_REQUEST = 400, 959 HTTP_STATUS_NOT_FOUND = 404, 960 HTTP_STATUS_PAYLOAD_TOO_LARGE = 413, 961 HTTP_STATUS_URI_TOO_LONG = 414, 962 HTTP_STATUS_UNSUPPORTED_MEDIA_TYPE = 415, 963 HTTP_STATUS_NOT_IMPLEMENTED = 501 964 }; 965 966 /** 967 * HTTP stream. Part of list of HTTP2 streams per session. 968 */ 969 struct http2_stream { 970 /** next stream in list per session */ 971 struct http2_stream* next; 972 /** previous stream in list per session */ 973 struct http2_stream* prev; 974 /** HTTP2 stream ID is an unsigned 31-bit integer */ 975 int32_t stream_id; 976 /** HTTP method used for this stream */ 977 enum { 978 HTTP_METHOD_POST = 1, 979 HTTP_METHOD_GET, 980 HTTP_METHOD_UNSUPPORTED 981 } http_method; 982 /** message contains invalid content type */ 983 int invalid_content_type; 984 /** message body content type */ 985 size_t content_length; 986 /** HTTP response status */ 987 enum http_status status; 988 /** request for non existing endpoint */ 989 int invalid_endpoint; 990 /** query in request is too large */ 991 int query_too_large; 992 /** buffer to store query into. Can't use session shared buffer as query 993 * can arrive in parts, intertwined with frames for other queries. */ 994 struct sldns_buffer* qbuffer; 995 /** buffer to store response into. Can't use shared buffer as a next 996 * query read callback can overwrite it before it is send out. */ 997 struct sldns_buffer* rbuffer; 998 /** mesh area containing mesh state */ 999 struct mesh_area* mesh; 1000 /** mesh state for query. Used to remove mesh reply before closing 1001 * stream. */ 1002 struct mesh_state* mesh_state; 1003 }; 1004 1005 #ifdef HAVE_NGHTTP2 1006 /** nghttp2 receive cb. Read from SSL connection into nghttp2 buffer */ 1007 ssize_t http2_recv_cb(nghttp2_session* session, uint8_t* buf, 1008 size_t len, int flags, void* cb_arg); 1009 /** nghttp2 send callback. Send from nghttp2 buffer to ssl socket */ 1010 ssize_t http2_send_cb(nghttp2_session* session, const uint8_t* buf, 1011 size_t len, int flags, void* cb_arg); 1012 /** nghttp2 callback on closing stream */ 1013 int http2_stream_close_cb(nghttp2_session* session, int32_t stream_id, 1014 uint32_t error_code, void* cb_arg); 1015 #endif 1016 1017 /** 1018 * Create new http2 stream 1019 * @param stream_id: ID for stream to create. 1020 * @return malloc'ed stream, NULL on error 1021 */ 1022 struct http2_stream* http2_stream_create(int32_t stream_id); 1023 1024 /** 1025 * Add new stream to session linked list 1026 * @param h2_session: http2 session to add stream to 1027 * @param h2_stream: stream to add to session list 1028 */ 1029 void http2_session_add_stream(struct http2_session* h2_session, 1030 struct http2_stream* h2_stream); 1031 1032 /** Add mesh state to stream. To be able to remove mesh reply on stream closure 1033 */ 1034 void http2_stream_add_meshstate(struct http2_stream* h2_stream, 1035 struct mesh_area* mesh, struct mesh_state* m); 1036 1037 /** Remove mesh state from stream. When the mesh state has been removed. */ 1038 void http2_stream_remove_mesh_state(struct http2_stream* h2_stream); 1039 1040 /** 1041 * DoQ socket address storage for IP4 or IP6 address. Smaller than 1042 * the sockaddr_storage because not with af_unix pathnames. 1043 */ 1044 struct doq_addr_storage { 1045 union { 1046 struct sockaddr_in in; 1047 #ifdef AF_INET6 1048 struct sockaddr_in6 in6; 1049 #endif 1050 } sockaddr; 1051 }; 1052 1053 /** 1054 * The DoQ server socket information, for DNS over QUIC. 1055 */ 1056 struct doq_server_socket { 1057 /** the doq connection table */ 1058 struct doq_table* table; 1059 /** random generator */ 1060 struct ub_randstate* rnd; 1061 /** if address validation is enabled */ 1062 uint8_t validate_addr; 1063 /** the server scid length */ 1064 int sv_scidlen; 1065 /** the idle timeout in nanoseconds */ 1066 uint64_t idle_timeout; 1067 /** the static secret for the server */ 1068 uint8_t* static_secret; 1069 /** length of the static secret */ 1070 size_t static_secret_len; 1071 /** ssl context, SSL_CTX* */ 1072 void* ctx; 1073 #ifndef HAVE_NGTCP2_CRYPTO_QUICTLS_CONFIGURE_SERVER_CONTEXT 1074 /** quic method functions, SSL_QUIC_METHOD* */ 1075 void* quic_method; 1076 #endif 1077 /** the comm point for this doq server socket */ 1078 struct comm_point* cp; 1079 /** the buffer for packets, doq in and out */ 1080 struct sldns_buffer* pkt_buf; 1081 /** the current doq connection when we are in callbacks to worker, 1082 * so that we have the already locked structure at our disposal. */ 1083 struct doq_conn* current_conn; 1084 /** if the callback event on the fd has write flags */ 1085 uint8_t event_has_write; 1086 /** if there is a blocked packet in the blocked_pkt buffer */ 1087 int have_blocked_pkt; 1088 /** store blocked packet, a packet that could not be send on the 1089 * nonblocking socket. It has to be sent later, when the write on 1090 * the udp socket unblocks. */ 1091 struct sldns_buffer* blocked_pkt; 1092 #ifdef HAVE_NGTCP2 1093 /** the ecn info for the blocked packet, congestion information. */ 1094 struct ngtcp2_pkt_info blocked_pkt_pi; 1095 #endif 1096 /** the packet destination for the blocked packet. */ 1097 struct doq_pkt_addr* blocked_paddr; 1098 /** timer for this worker on this comm_point to wait on. */ 1099 struct comm_timer* timer; 1100 #ifdef HAVE_NGTCP2 1101 /** the timer that is marked by the doq_socket as waited on. */ 1102 ngtcp2_tstamp marked_time; 1103 #endif 1104 /** the current time for use by time functions, time_t. */ 1105 time_t* now_tt; 1106 /** the current time for use by time functions, timeval. */ 1107 struct timeval* now_tv; 1108 /** config file for the worker. */ 1109 struct config_file* cfg; 1110 }; 1111 1112 /** 1113 * DoQ packet address information. From pktinfo, stores local and remote 1114 * address and ifindex, so the packet can be sent there. 1115 */ 1116 struct doq_pkt_addr { 1117 /** the remote addr, and local addr */ 1118 struct doq_addr_storage addr, localaddr; 1119 /** length of addr and length of localaddr */ 1120 socklen_t addrlen, localaddrlen; 1121 /** interface index from pktinfo ancillary information */ 1122 int ifindex; 1123 }; 1124 1125 /** Initialize the pkt addr with lengths set to sizeof. That is ready for 1126 * a call to recv. */ 1127 void doq_pkt_addr_init(struct doq_pkt_addr* paddr); 1128 1129 /** send doq packet over UDP. */ 1130 void doq_send_pkt(struct comm_point* c, struct doq_pkt_addr* paddr, 1131 uint32_t ecn); 1132 1133 /** doq timer callback function. */ 1134 void doq_timer_cb(void* arg); 1135 1136 /** 1137 * This routine is published for checks and tests, and is only used internally. 1138 * handle libevent callback for timer comm. 1139 * @param fd: file descriptor (always -1). 1140 * @param event: event bits from libevent: 1141 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 1142 * @param arg: the comm_timer structure. 1143 */ 1144 void comm_timer_callback(int fd, short event, void* arg); 1145 1146 /** 1147 * This routine is published for checks and tests, and is only used internally. 1148 * handle libevent callback for signal comm. 1149 * @param fd: file descriptor (used for the signal number). 1150 * @param event: event bits from libevent: 1151 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 1152 * @param arg: the internal commsignal structure. 1153 */ 1154 void comm_signal_callback(int fd, short event, void* arg); 1155 1156 /** 1157 * This routine is published for checks and tests, and is only used internally. 1158 * libevent callback for AF_UNIX fds 1159 * @param fd: file descriptor. 1160 * @param event: event bits from libevent: 1161 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 1162 * @param arg: the comm_point structure. 1163 */ 1164 void comm_point_local_handle_callback(int fd, short event, void* arg); 1165 1166 /** 1167 * This routine is published for checks and tests, and is only used internally. 1168 * libevent callback for raw fd access. 1169 * @param fd: file descriptor. 1170 * @param event: event bits from libevent: 1171 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 1172 * @param arg: the comm_point structure. 1173 */ 1174 void comm_point_raw_handle_callback(int fd, short event, void* arg); 1175 1176 /** 1177 * This routine is published for checks and tests, and is only used internally. 1178 * libevent callback for timeout on slow accept. 1179 * @param fd: file descriptor. 1180 * @param event: event bits from libevent: 1181 * EV_READ, EV_WRITE, EV_SIGNAL, EV_TIMEOUT. 1182 * @param arg: the comm_point structure. 1183 */ 1184 void comm_base_handle_slow_accept(int fd, short event, void* arg); 1185 1186 #ifdef USE_WINSOCK 1187 /** 1188 * Callback for openssl BIO to on windows detect WSAEWOULDBLOCK and notify 1189 * the winsock_event of this for proper TCP nonblocking implementation. 1190 * @param c: comm_point, fd must be set its struct event is registered. 1191 * @param ssl: openssl SSL, fd must be set so it has a bio. 1192 */ 1193 void comm_point_tcp_win_bio_cb(struct comm_point* c, void* ssl); 1194 #endif 1195 1196 /** 1197 * See if errno for tcp connect has to be logged or not. This uses errno 1198 * @param addr: apart from checking errno, the addr is checked for ip4mapped 1199 * and broadcast type, hence passed. 1200 * @param addrlen: length of the addr parameter. 1201 * @return true if it needs to be logged. 1202 */ 1203 int tcp_connect_errno_needs_log(struct sockaddr* addr, socklen_t addrlen); 1204 1205 #ifdef HAVE_SSL 1206 /** 1207 * True if the ssl handshake error has to be squelched from the logs 1208 * @param err: the error returned by the openssl routine, ERR_get_error. 1209 * This is a packed structure with elements that are examined. 1210 * @return true if the error is squelched (not logged). 1211 */ 1212 int squelch_err_ssl_handshake(unsigned long err); 1213 #endif 1214 1215 #endif /* NET_EVENT_H */ 1216