xref: /freebsd/crypto/openssh/channels.h (revision 557f75e54ae47df936c7de8fb97ec70c4180a5c0)
1 /* $OpenBSD: channels.h,v 1.118 2015/07/01 02:26:31 djm Exp $ */
2 /* $FreeBSD$ */
3 
4 /*
5  * Author: Tatu Ylonen <ylo@cs.hut.fi>
6  * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland
7  *                    All rights reserved
8  *
9  * As far as I am concerned, the code I have written for this software
10  * can be used freely for any purpose.  Any derived versions of this
11  * software must be clearly marked as such, and if the derived work is
12  * incompatible with the protocol description in the RFC file, it must be
13  * called by a name other than "ssh" or "Secure Shell".
14  */
15 /*
16  * Copyright (c) 1999, 2000, 2001, 2002 Markus Friedl.  All rights reserved.
17  *
18  * Redistribution and use in source and binary forms, with or without
19  * modification, are permitted provided that the following conditions
20  * are met:
21  * 1. Redistributions of source code must retain the above copyright
22  *    notice, this list of conditions and the following disclaimer.
23  * 2. Redistributions in binary form must reproduce the above copyright
24  *    notice, this list of conditions and the following disclaimer in the
25  *    documentation and/or other materials provided with the distribution.
26  *
27  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
28  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
29  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
30  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
31  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
32  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
33  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
34  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
35  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
36  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
37  */
38 
39 #ifndef CHANNEL_H
40 #define CHANNEL_H
41 
42 /* Definitions for channel types. */
43 #define SSH_CHANNEL_X11_LISTENER	1	/* Listening for inet X11 conn. */
44 #define SSH_CHANNEL_PORT_LISTENER	2	/* Listening on a port. */
45 #define SSH_CHANNEL_OPENING		3	/* waiting for confirmation */
46 #define SSH_CHANNEL_OPEN		4	/* normal open two-way channel */
47 #define SSH_CHANNEL_CLOSED		5	/* waiting for close confirmation */
48 #define SSH_CHANNEL_AUTH_SOCKET		6	/* authentication socket */
49 #define SSH_CHANNEL_X11_OPEN		7	/* reading first X11 packet */
50 #define SSH_CHANNEL_INPUT_DRAINING	8	/* sending remaining data to conn */
51 #define SSH_CHANNEL_OUTPUT_DRAINING	9	/* sending remaining data to app */
52 #define SSH_CHANNEL_LARVAL		10	/* larval session */
53 #define SSH_CHANNEL_RPORT_LISTENER	11	/* Listening to a R-style port  */
54 #define SSH_CHANNEL_CONNECTING		12
55 #define SSH_CHANNEL_DYNAMIC		13
56 #define SSH_CHANNEL_ZOMBIE		14	/* Almost dead. */
57 #define SSH_CHANNEL_MUX_LISTENER	15	/* Listener for mux conn. */
58 #define SSH_CHANNEL_MUX_CLIENT		16	/* Conn. to mux slave */
59 #define SSH_CHANNEL_ABANDONED		17	/* Abandoned session, eg mux */
60 #define SSH_CHANNEL_UNIX_LISTENER	18	/* Listening on a domain socket. */
61 #define SSH_CHANNEL_RUNIX_LISTENER	19	/* Listening to a R-style domain socket. */
62 #define SSH_CHANNEL_MAX_TYPE		20
63 
64 #define CHANNEL_CANCEL_PORT_STATIC	-1
65 
66 struct Channel;
67 typedef struct Channel Channel;
68 
69 typedef void channel_open_fn(int, int, void *);
70 typedef void channel_callback_fn(int, void *);
71 typedef int channel_infilter_fn(struct Channel *, char *, int);
72 typedef void channel_filter_cleanup_fn(int, void *);
73 typedef u_char *channel_outfilter_fn(struct Channel *, u_char **, u_int *);
74 
75 /* Channel success/failure callbacks */
76 typedef void channel_confirm_cb(int, struct Channel *, void *);
77 typedef void channel_confirm_abandon_cb(struct Channel *, void *);
78 struct channel_confirm {
79 	TAILQ_ENTRY(channel_confirm) entry;
80 	channel_confirm_cb *cb;
81 	channel_confirm_abandon_cb *abandon_cb;
82 	void *ctx;
83 };
84 TAILQ_HEAD(channel_confirms, channel_confirm);
85 
86 /* Context for non-blocking connects */
87 struct channel_connect {
88 	char *host;
89 	int port;
90 	struct addrinfo *ai, *aitop;
91 };
92 
93 /* Callbacks for mux channels back into client-specific code */
94 typedef int mux_callback_fn(struct Channel *);
95 
96 struct Channel {
97 	int     type;		/* channel type/state */
98 	int     self;		/* my own channel identifier */
99 	int     remote_id;	/* channel identifier for remote peer */
100 	u_int   istate;		/* input from channel (state of receive half) */
101 	u_int   ostate;		/* output to channel  (state of transmit half) */
102 	int     flags;		/* close sent/rcvd */
103 	int     rfd;		/* read fd */
104 	int     wfd;		/* write fd */
105 	int     efd;		/* extended fd */
106 	int     sock;		/* sock fd */
107 	int     ctl_chan;	/* control channel (multiplexed connections) */
108 	int     isatty;		/* rfd is a tty */
109 #ifdef _AIX
110 	int     wfd_isatty;	/* wfd is a tty */
111 #endif
112 	int	client_tty;	/* (client) TTY has been requested */
113 	int     force_drain;	/* force close on iEOF */
114 	time_t	notbefore;	/* Pause IO until deadline (time_t) */
115 	int     delayed;	/* post-select handlers for newly created
116 				 * channels are delayed until the first call
117 				 * to a matching pre-select handler.
118 				 * this way post-select handlers are not
119 				 * accidentally called if a FD gets reused */
120 	Buffer  input;		/* data read from socket, to be sent over
121 				 * encrypted connection */
122 	Buffer  output;		/* data received over encrypted connection for
123 				 * send on socket */
124 	Buffer  extended;
125 	char    *path;
126 		/* path for unix domain sockets, or host name for forwards */
127 	int     listening_port;	/* port being listened for forwards */
128 	char   *listening_addr;	/* addr being listened for forwards */
129 	int     host_port;	/* remote port to connect for forwards */
130 	char   *remote_name;	/* remote hostname */
131 
132 	u_int	remote_window;
133 	u_int	remote_maxpacket;
134 	u_int	local_window;
135 	u_int	local_window_max;
136 	u_int	local_consumed;
137 	u_int	local_maxpacket;
138 	int     extended_usage;
139 	int	single_connection;
140 
141 	char   *ctype;		/* type */
142 
143 	/* callback */
144 	channel_open_fn		*open_confirm;
145 	void			*open_confirm_ctx;
146 	channel_callback_fn	*detach_user;
147 	int			detach_close;
148 	struct channel_confirms	status_confirms;
149 
150 	/* filter */
151 	channel_infilter_fn	*input_filter;
152 	channel_outfilter_fn	*output_filter;
153 	void			*filter_ctx;
154 	channel_filter_cleanup_fn *filter_cleanup;
155 
156 	/* keep boundaries */
157 	int     		datagram;
158 
159 	/* non-blocking connect */
160 	struct channel_connect	connect_ctx;
161 
162 	/* multiplexing protocol hook, called for each packet received */
163 	mux_callback_fn		*mux_rcb;
164 	void			*mux_ctx;
165 	int			mux_pause;
166 };
167 
168 #define CHAN_EXTENDED_IGNORE		0
169 #define CHAN_EXTENDED_READ		1
170 #define CHAN_EXTENDED_WRITE		2
171 
172 /* default window/packet sizes for tcp/x11-fwd-channel */
173 #define CHAN_SES_PACKET_DEFAULT	(32*1024)
174 #define CHAN_SES_WINDOW_DEFAULT	(64*CHAN_SES_PACKET_DEFAULT)
175 #define CHAN_TCP_PACKET_DEFAULT	(32*1024)
176 #define CHAN_TCP_WINDOW_DEFAULT	(64*CHAN_TCP_PACKET_DEFAULT)
177 #define CHAN_X11_PACKET_DEFAULT	(16*1024)
178 #define CHAN_X11_WINDOW_DEFAULT	(4*CHAN_X11_PACKET_DEFAULT)
179 
180 /* possible input states */
181 #define CHAN_INPUT_OPEN			0
182 #define CHAN_INPUT_WAIT_DRAIN		1
183 #define CHAN_INPUT_WAIT_OCLOSE		2
184 #define CHAN_INPUT_CLOSED		3
185 
186 /* possible output states */
187 #define CHAN_OUTPUT_OPEN		0
188 #define CHAN_OUTPUT_WAIT_DRAIN		1
189 #define CHAN_OUTPUT_WAIT_IEOF		2
190 #define CHAN_OUTPUT_CLOSED		3
191 
192 #define CHAN_CLOSE_SENT			0x01
193 #define CHAN_CLOSE_RCVD			0x02
194 #define CHAN_EOF_SENT			0x04
195 #define CHAN_EOF_RCVD			0x08
196 #define CHAN_LOCAL			0x10
197 
198 #define CHAN_RBUF	16*1024
199 
200 /* check whether 'efd' is still in use */
201 #define CHANNEL_EFD_INPUT_ACTIVE(c) \
202 	(compat20 && c->extended_usage == CHAN_EXTENDED_READ && \
203 	(c->efd != -1 || \
204 	buffer_len(&c->extended) > 0))
205 #define CHANNEL_EFD_OUTPUT_ACTIVE(c) \
206 	(compat20 && c->extended_usage == CHAN_EXTENDED_WRITE && \
207 	c->efd != -1 && (!(c->flags & (CHAN_EOF_RCVD|CHAN_CLOSE_RCVD)) || \
208 	buffer_len(&c->extended) > 0))
209 
210 /* channel management */
211 
212 Channel	*channel_by_id(int);
213 Channel	*channel_lookup(int);
214 Channel *channel_new(char *, int, int, int, int, u_int, u_int, int, char *, int);
215 void	 channel_set_fds(int, int, int, int, int, int, int, u_int);
216 void	 channel_free(Channel *);
217 void	 channel_free_all(void);
218 void	 channel_stop_listening(void);
219 
220 void	 channel_send_open(int);
221 void	 channel_request_start(int, char *, int);
222 void	 channel_register_cleanup(int, channel_callback_fn *, int);
223 void	 channel_register_open_confirm(int, channel_open_fn *, void *);
224 void	 channel_register_filter(int, channel_infilter_fn *,
225     channel_outfilter_fn *, channel_filter_cleanup_fn *, void *);
226 void	 channel_register_status_confirm(int, channel_confirm_cb *,
227     channel_confirm_abandon_cb *, void *);
228 void	 channel_cancel_cleanup(int);
229 int	 channel_close_fd(int *);
230 void	 channel_send_window_changes(void);
231 
232 /* protocol handler */
233 
234 int	 channel_input_close(int, u_int32_t, void *);
235 int	 channel_input_close_confirmation(int, u_int32_t, void *);
236 int	 channel_input_data(int, u_int32_t, void *);
237 int	 channel_input_extended_data(int, u_int32_t, void *);
238 int	 channel_input_ieof(int, u_int32_t, void *);
239 int	 channel_input_oclose(int, u_int32_t, void *);
240 int	 channel_input_open_confirmation(int, u_int32_t, void *);
241 int	 channel_input_open_failure(int, u_int32_t, void *);
242 int	 channel_input_port_open(int, u_int32_t, void *);
243 int	 channel_input_window_adjust(int, u_int32_t, void *);
244 int	 channel_input_status_confirm(int, u_int32_t, void *);
245 
246 /* file descriptor handling (read/write) */
247 
248 void	 channel_prepare_select(fd_set **, fd_set **, int *, u_int*,
249 	     time_t*, int);
250 void     channel_after_select(fd_set *, fd_set *);
251 void     channel_output_poll(void);
252 
253 int      channel_not_very_much_buffered_data(void);
254 void     channel_close_all(void);
255 int      channel_still_open(void);
256 char	*channel_open_message(void);
257 int	 channel_find_open(void);
258 
259 /* tcp forwarding */
260 struct Forward;
261 struct ForwardOptions;
262 void	 channel_set_af(int af);
263 void     channel_permit_all_opens(void);
264 void	 channel_add_permitted_opens(char *, int);
265 int	 channel_add_adm_permitted_opens(char *, int);
266 void	 channel_disable_adm_local_opens(void);
267 void	 channel_update_permitted_opens(int, int);
268 void	 channel_clear_permitted_opens(void);
269 void	 channel_clear_adm_permitted_opens(void);
270 void 	 channel_print_adm_permitted_opens(void);
271 int      channel_input_port_forward_request(int, struct ForwardOptions *);
272 Channel	*channel_connect_to_port(const char *, u_short, char *, char *);
273 Channel *channel_connect_to_path(const char *, char *, char *);
274 Channel	*channel_connect_stdio_fwd(const char*, u_short, int, int);
275 Channel	*channel_connect_by_listen_address(const char *, u_short,
276 	     char *, char *);
277 Channel	*channel_connect_by_listen_path(const char *, char *, char *);
278 int	 channel_request_remote_forwarding(struct Forward *);
279 int	 channel_setup_local_fwd_listener(struct Forward *, struct ForwardOptions *);
280 int	 channel_request_rforward_cancel(struct Forward *);
281 int	 channel_setup_remote_fwd_listener(struct Forward *, int *, struct ForwardOptions *);
282 int	 channel_cancel_rport_listener(struct Forward *);
283 int	 channel_cancel_lport_listener(struct Forward *, int, struct ForwardOptions *);
284 int	 permitopen_port(const char *);
285 
286 /* x11 forwarding */
287 
288 void	 channel_set_x11_refuse_time(u_int);
289 int	 x11_connect_display(void);
290 int	 x11_create_display_inet(int, int, int, u_int *, int **);
291 int      x11_input_open(int, u_int32_t, void *);
292 void	 x11_request_forwarding_with_spoofing(int, const char *, const char *,
293 	     const char *, int);
294 int	 deny_input_open(int, u_int32_t, void *);
295 
296 /* agent forwarding */
297 
298 void	 auth_request_forwarding(void);
299 
300 /* channel close */
301 
302 int	 chan_is_dead(Channel *, int);
303 void	 chan_mark_dead(Channel *);
304 
305 /* channel events */
306 
307 void	 chan_rcvd_oclose(Channel *);
308 void	 chan_rcvd_eow(Channel *);	/* SSH2-only */
309 void	 chan_read_failed(Channel *);
310 void	 chan_ibuf_empty(Channel *);
311 
312 void	 chan_rcvd_ieof(Channel *);
313 void	 chan_write_failed(Channel *);
314 void	 chan_obuf_empty(Channel *);
315 
316 #endif
317