server.go 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463
  1. package quic
  2. import (
  3. "bytes"
  4. "crypto/tls"
  5. "errors"
  6. "fmt"
  7. "io"
  8. "net"
  9. "sync"
  10. "time"
  11. "github.com/lucas-clemente/quic-go/internal/handshake"
  12. "github.com/lucas-clemente/quic-go/internal/protocol"
  13. "github.com/lucas-clemente/quic-go/internal/utils"
  14. "github.com/lucas-clemente/quic-go/internal/wire"
  15. )
  16. // packetHandler handles packets
  17. type packetHandler interface {
  18. handlePacket(*receivedPacket)
  19. io.Closer
  20. destroy(error)
  21. GetPerspective() protocol.Perspective
  22. }
  23. type unknownPacketHandler interface {
  24. handlePacket(*receivedPacket)
  25. closeWithError(error) error
  26. }
  27. type packetHandlerManager interface {
  28. Add(protocol.ConnectionID, packetHandler)
  29. Retire(protocol.ConnectionID)
  30. Remove(protocol.ConnectionID)
  31. SetServer(unknownPacketHandler)
  32. CloseServer()
  33. }
  34. type quicSession interface {
  35. Session
  36. handlePacket(*receivedPacket)
  37. GetVersion() protocol.VersionNumber
  38. run() error
  39. destroy(error)
  40. closeRemote(error)
  41. }
  42. type sessionRunner interface {
  43. onHandshakeComplete(Session)
  44. retireConnectionID(protocol.ConnectionID)
  45. removeConnectionID(protocol.ConnectionID)
  46. }
  47. type runner struct {
  48. onHandshakeCompleteImpl func(Session)
  49. retireConnectionIDImpl func(protocol.ConnectionID)
  50. removeConnectionIDImpl func(protocol.ConnectionID)
  51. }
  52. func (r *runner) onHandshakeComplete(s Session) { r.onHandshakeCompleteImpl(s) }
  53. func (r *runner) retireConnectionID(c protocol.ConnectionID) { r.retireConnectionIDImpl(c) }
  54. func (r *runner) removeConnectionID(c protocol.ConnectionID) { r.removeConnectionIDImpl(c) }
  55. var _ sessionRunner = &runner{}
  56. // A Listener of QUIC
  57. type server struct {
  58. mutex sync.Mutex
  59. tlsConf *tls.Config
  60. config *Config
  61. conn net.PacketConn
  62. // If the server is started with ListenAddr, we create a packet conn.
  63. // If it is started with Listen, we take a packet conn as a parameter.
  64. createdPacketConn bool
  65. cookieGenerator *handshake.CookieGenerator
  66. sessionHandler packetHandlerManager
  67. // set as a member, so they can be set in the tests
  68. newSession func(connection, sessionRunner, protocol.ConnectionID /* original connection ID */, protocol.ConnectionID /* destination connection ID */, protocol.ConnectionID /* source connection ID */, *Config, *tls.Config, *handshake.TransportParameters, utils.Logger, protocol.VersionNumber) (quicSession, error)
  69. serverError error
  70. errorChan chan struct{}
  71. closed bool
  72. sessionQueue chan Session
  73. sessionRunner sessionRunner
  74. logger utils.Logger
  75. }
  76. var _ Listener = &server{}
  77. var _ unknownPacketHandler = &server{}
  78. // ListenAddr creates a QUIC server listening on a given address.
  79. // The tls.Config must not be nil and must contain a certificate configuration.
  80. // The quic.Config may be nil, in that case the default values will be used.
  81. func ListenAddr(addr string, tlsConf *tls.Config, config *Config) (Listener, error) {
  82. udpAddr, err := net.ResolveUDPAddr("udp", addr)
  83. if err != nil {
  84. return nil, err
  85. }
  86. conn, err := net.ListenUDP("udp", udpAddr)
  87. if err != nil {
  88. return nil, err
  89. }
  90. serv, err := listen(conn, tlsConf, config)
  91. if err != nil {
  92. return nil, err
  93. }
  94. serv.createdPacketConn = true
  95. return serv, nil
  96. }
  97. // Listen listens for QUIC connections on a given net.PacketConn.
  98. // A single PacketConn only be used for a single call to Listen.
  99. // The PacketConn can be used for simultaneous calls to Dial.
  100. // QUIC connection IDs are used for demultiplexing the different connections.
  101. // The tls.Config must not be nil and must contain a certificate configuration.
  102. // The quic.Config may be nil, in that case the default values will be used.
  103. func Listen(conn net.PacketConn, tlsConf *tls.Config, config *Config) (Listener, error) {
  104. return listen(conn, tlsConf, config)
  105. }
  106. func listen(conn net.PacketConn, tlsConf *tls.Config, config *Config) (*server, error) {
  107. config = populateServerConfig(config)
  108. for _, v := range config.Versions {
  109. if !protocol.IsValidVersion(v) {
  110. return nil, fmt.Errorf("%s is not a valid QUIC version", v)
  111. }
  112. }
  113. sessionHandler, err := getMultiplexer().AddConn(conn, config.ConnectionIDLength)
  114. if err != nil {
  115. return nil, err
  116. }
  117. s := &server{
  118. conn: conn,
  119. tlsConf: tlsConf,
  120. config: config,
  121. sessionHandler: sessionHandler,
  122. sessionQueue: make(chan Session, 5),
  123. errorChan: make(chan struct{}),
  124. newSession: newSession,
  125. logger: utils.DefaultLogger.WithPrefix("server"),
  126. }
  127. if err := s.setup(); err != nil {
  128. return nil, err
  129. }
  130. sessionHandler.SetServer(s)
  131. s.logger.Debugf("Listening for %s connections on %s", conn.LocalAddr().Network(), conn.LocalAddr().String())
  132. return s, nil
  133. }
  134. func (s *server) setup() error {
  135. s.sessionRunner = &runner{
  136. onHandshakeCompleteImpl: func(sess Session) { s.sessionQueue <- sess },
  137. retireConnectionIDImpl: s.sessionHandler.Retire,
  138. removeConnectionIDImpl: s.sessionHandler.Remove,
  139. }
  140. cookieGenerator, err := handshake.NewCookieGenerator()
  141. if err != nil {
  142. return err
  143. }
  144. s.cookieGenerator = cookieGenerator
  145. return nil
  146. }
  147. var defaultAcceptCookie = func(clientAddr net.Addr, cookie *Cookie) bool {
  148. if cookie == nil {
  149. return false
  150. }
  151. if time.Now().After(cookie.SentTime.Add(protocol.CookieExpiryTime)) {
  152. return false
  153. }
  154. var sourceAddr string
  155. if udpAddr, ok := clientAddr.(*net.UDPAddr); ok {
  156. sourceAddr = udpAddr.IP.String()
  157. } else {
  158. sourceAddr = clientAddr.String()
  159. }
  160. return sourceAddr == cookie.RemoteAddr
  161. }
  162. // populateServerConfig populates fields in the quic.Config with their default values, if none are set
  163. // it may be called with nil
  164. func populateServerConfig(config *Config) *Config {
  165. if config == nil {
  166. config = &Config{}
  167. }
  168. versions := config.Versions
  169. if len(versions) == 0 {
  170. versions = protocol.SupportedVersions
  171. }
  172. vsa := defaultAcceptCookie
  173. if config.AcceptCookie != nil {
  174. vsa = config.AcceptCookie
  175. }
  176. handshakeTimeout := protocol.DefaultHandshakeTimeout
  177. if config.HandshakeTimeout != 0 {
  178. handshakeTimeout = config.HandshakeTimeout
  179. }
  180. idleTimeout := protocol.DefaultIdleTimeout
  181. if config.IdleTimeout != 0 {
  182. idleTimeout = config.IdleTimeout
  183. }
  184. maxReceiveStreamFlowControlWindow := config.MaxReceiveStreamFlowControlWindow
  185. if maxReceiveStreamFlowControlWindow == 0 {
  186. maxReceiveStreamFlowControlWindow = protocol.DefaultMaxReceiveStreamFlowControlWindow
  187. }
  188. maxReceiveConnectionFlowControlWindow := config.MaxReceiveConnectionFlowControlWindow
  189. if maxReceiveConnectionFlowControlWindow == 0 {
  190. maxReceiveConnectionFlowControlWindow = protocol.DefaultMaxReceiveConnectionFlowControlWindow
  191. }
  192. maxIncomingStreams := config.MaxIncomingStreams
  193. if maxIncomingStreams == 0 {
  194. maxIncomingStreams = protocol.DefaultMaxIncomingStreams
  195. } else if maxIncomingStreams < 0 {
  196. maxIncomingStreams = 0
  197. }
  198. maxIncomingUniStreams := config.MaxIncomingUniStreams
  199. if maxIncomingUniStreams == 0 {
  200. maxIncomingUniStreams = protocol.DefaultMaxIncomingUniStreams
  201. } else if maxIncomingUniStreams < 0 {
  202. maxIncomingUniStreams = 0
  203. }
  204. connIDLen := config.ConnectionIDLength
  205. if connIDLen == 0 {
  206. connIDLen = protocol.DefaultConnectionIDLength
  207. }
  208. return &Config{
  209. Versions: versions,
  210. HandshakeTimeout: handshakeTimeout,
  211. IdleTimeout: idleTimeout,
  212. AcceptCookie: vsa,
  213. KeepAlive: config.KeepAlive,
  214. MaxReceiveStreamFlowControlWindow: maxReceiveStreamFlowControlWindow,
  215. MaxReceiveConnectionFlowControlWindow: maxReceiveConnectionFlowControlWindow,
  216. MaxIncomingStreams: maxIncomingStreams,
  217. MaxIncomingUniStreams: maxIncomingUniStreams,
  218. ConnectionIDLength: connIDLen,
  219. }
  220. }
  221. // Accept returns newly openend sessions
  222. func (s *server) Accept() (Session, error) {
  223. var sess Session
  224. select {
  225. case sess = <-s.sessionQueue:
  226. return sess, nil
  227. case <-s.errorChan:
  228. return nil, s.serverError
  229. }
  230. }
  231. // Close the server
  232. func (s *server) Close() error {
  233. s.mutex.Lock()
  234. defer s.mutex.Unlock()
  235. if s.closed {
  236. return nil
  237. }
  238. return s.closeWithMutex()
  239. }
  240. func (s *server) closeWithMutex() error {
  241. s.sessionHandler.CloseServer()
  242. if s.serverError == nil {
  243. s.serverError = errors.New("server closed")
  244. }
  245. var err error
  246. // If the server was started with ListenAddr, we created the packet conn.
  247. // We need to close it in order to make the go routine reading from that conn return.
  248. if s.createdPacketConn {
  249. err = s.conn.Close()
  250. }
  251. s.closed = true
  252. close(s.errorChan)
  253. return err
  254. }
  255. func (s *server) closeWithError(e error) error {
  256. s.mutex.Lock()
  257. defer s.mutex.Unlock()
  258. if s.closed {
  259. return nil
  260. }
  261. s.serverError = e
  262. return s.closeWithMutex()
  263. }
  264. // Addr returns the server's network address
  265. func (s *server) Addr() net.Addr {
  266. return s.conn.LocalAddr()
  267. }
  268. func (s *server) handlePacket(p *receivedPacket) {
  269. hdr := p.hdr
  270. // send a Version Negotiation Packet if the client is speaking a different protocol version
  271. if !protocol.IsSupportedVersion(s.config.Versions, hdr.Version) {
  272. go s.sendVersionNegotiationPacket(p)
  273. return
  274. }
  275. if hdr.Type == protocol.PacketTypeInitial {
  276. go s.handleInitial(p)
  277. }
  278. // TODO(#943): send Stateless Reset
  279. }
  280. func (s *server) handleInitial(p *receivedPacket) {
  281. // TODO: add a check that DestConnID == SrcConnID
  282. s.logger.Debugf("<- Received Initial packet.")
  283. sess, connID, err := s.handleInitialImpl(p)
  284. if err != nil {
  285. s.logger.Errorf("Error occurred handling initial packet: %s", err)
  286. return
  287. }
  288. if sess == nil { // a retry was done
  289. return
  290. }
  291. serverSession := newServerSession(sess, s.config, s.logger)
  292. s.sessionHandler.Add(connID, serverSession)
  293. }
  294. func (s *server) handleInitialImpl(p *receivedPacket) (quicSession, protocol.ConnectionID, error) {
  295. hdr := p.hdr
  296. if len(hdr.Token) == 0 && hdr.DestConnectionID.Len() < protocol.MinConnectionIDLenInitial {
  297. return nil, nil, errors.New("dropping Initial packet with too short connection ID")
  298. }
  299. if len(p.data) < protocol.MinInitialPacketSize {
  300. return nil, nil, errors.New("dropping too small Initial packet")
  301. }
  302. var cookie *Cookie
  303. var origDestConnectionID protocol.ConnectionID
  304. if len(hdr.Token) > 0 {
  305. c, err := s.cookieGenerator.DecodeToken(hdr.Token)
  306. if err == nil {
  307. cookie = &Cookie{
  308. RemoteAddr: c.RemoteAddr,
  309. SentTime: c.SentTime,
  310. }
  311. origDestConnectionID = c.OriginalDestConnectionID
  312. }
  313. }
  314. if !s.config.AcceptCookie(p.remoteAddr, cookie) {
  315. // Log the Initial packet now.
  316. // If no Retry is sent, the packet will be logged by the session.
  317. (&wire.ExtendedHeader{Header: *p.hdr}).Log(s.logger)
  318. return nil, nil, s.sendRetry(p.remoteAddr, hdr)
  319. }
  320. connID, err := protocol.GenerateConnectionID(s.config.ConnectionIDLength)
  321. if err != nil {
  322. return nil, nil, err
  323. }
  324. s.logger.Debugf("Changing connection ID to %s.", connID)
  325. sess, err := s.createNewSession(
  326. p.remoteAddr,
  327. origDestConnectionID,
  328. hdr.DestConnectionID,
  329. hdr.SrcConnectionID,
  330. connID,
  331. hdr.Version,
  332. )
  333. if err != nil {
  334. return nil, nil, err
  335. }
  336. sess.handlePacket(p)
  337. return sess, connID, nil
  338. }
  339. func (s *server) createNewSession(
  340. remoteAddr net.Addr,
  341. origDestConnID protocol.ConnectionID,
  342. clientDestConnID protocol.ConnectionID,
  343. destConnID protocol.ConnectionID,
  344. srcConnID protocol.ConnectionID,
  345. version protocol.VersionNumber,
  346. ) (quicSession, error) {
  347. params := &handshake.TransportParameters{
  348. InitialMaxStreamDataBidiLocal: protocol.InitialMaxStreamData,
  349. InitialMaxStreamDataBidiRemote: protocol.InitialMaxStreamData,
  350. InitialMaxStreamDataUni: protocol.InitialMaxStreamData,
  351. InitialMaxData: protocol.InitialMaxData,
  352. IdleTimeout: s.config.IdleTimeout,
  353. MaxBidiStreams: uint64(s.config.MaxIncomingStreams),
  354. MaxUniStreams: uint64(s.config.MaxIncomingUniStreams),
  355. DisableMigration: true,
  356. // TODO(#855): generate a real token
  357. StatelessResetToken: bytes.Repeat([]byte{42}, 16),
  358. OriginalConnectionID: origDestConnID,
  359. }
  360. sess, err := s.newSession(
  361. &conn{pconn: s.conn, currentAddr: remoteAddr},
  362. s.sessionRunner,
  363. clientDestConnID,
  364. destConnID,
  365. srcConnID,
  366. s.config,
  367. s.tlsConf,
  368. params,
  369. s.logger,
  370. version,
  371. )
  372. if err != nil {
  373. return nil, err
  374. }
  375. go sess.run()
  376. return sess, nil
  377. }
  378. func (s *server) sendRetry(remoteAddr net.Addr, hdr *wire.Header) error {
  379. token, err := s.cookieGenerator.NewToken(remoteAddr, hdr.DestConnectionID)
  380. if err != nil {
  381. return err
  382. }
  383. connID, err := protocol.GenerateConnectionID(s.config.ConnectionIDLength)
  384. if err != nil {
  385. return err
  386. }
  387. replyHdr := &wire.ExtendedHeader{}
  388. replyHdr.IsLongHeader = true
  389. replyHdr.Type = protocol.PacketTypeRetry
  390. replyHdr.Version = hdr.Version
  391. replyHdr.SrcConnectionID = connID
  392. replyHdr.DestConnectionID = hdr.SrcConnectionID
  393. replyHdr.OrigDestConnectionID = hdr.DestConnectionID
  394. replyHdr.Token = token
  395. s.logger.Debugf("Changing connection ID to %s.\n-> Sending Retry", connID)
  396. replyHdr.Log(s.logger)
  397. buf := &bytes.Buffer{}
  398. if err := replyHdr.Write(buf, hdr.Version); err != nil {
  399. return err
  400. }
  401. if _, err := s.conn.WriteTo(buf.Bytes(), remoteAddr); err != nil {
  402. s.logger.Debugf("Error sending Retry: %s", err)
  403. }
  404. return nil
  405. }
  406. func (s *server) sendVersionNegotiationPacket(p *receivedPacket) {
  407. hdr := p.hdr
  408. s.logger.Debugf("Client offered version %s, sending Version Negotiation", hdr.Version)
  409. data, err := wire.ComposeVersionNegotiation(hdr.SrcConnectionID, hdr.DestConnectionID, s.config.Versions)
  410. if err != nil {
  411. s.logger.Debugf("Error composing Version Negotiation: %s", err)
  412. return
  413. }
  414. if _, err := s.conn.WriteTo(data, p.remoteAddr); err != nil {
  415. s.logger.Debugf("Error sending Version Negotiation: %s", err)
  416. }
  417. }