blob: 7f7ce65e023a5e07dd691cf3c2c891852553af3c [file] [log] [blame]
Michal Vasko086311b2016-01-08 09:53:11 +01001/**
2 * \file session_server.c
3 * \author Michal Vasko <mvasko@cesnet.cz>
4 * \brief libnetconf2 server session manipulation functions
5 *
6 * Copyright (c) 2015 CESNET, z.s.p.o.
7 *
Radek Krejci9b81f5b2016-02-24 13:14:49 +01008 * This source code is licensed under BSD 3-Clause License (the "License").
9 * You may not use this file except in compliance with the License.
10 * You may obtain a copy of the License at
Michal Vaskoafd416b2016-02-25 14:51:46 +010011 *
Radek Krejci9b81f5b2016-02-24 13:14:49 +010012 * https://opensource.org/licenses/BSD-3-Clause
Michal Vasko086311b2016-01-08 09:53:11 +010013 */
14
15#include <stdint.h>
16#include <stdlib.h>
17#include <errno.h>
18#include <string.h>
19#include <poll.h>
20#include <sys/types.h>
21#include <sys/socket.h>
22#include <netinet/in.h>
23#include <arpa/inet.h>
24#include <unistd.h>
Michal Vaskob48aa812016-01-18 14:13:09 +010025#include <pthread.h>
Michal Vasko11d142a2016-01-19 15:58:24 +010026#include <time.h>
Michal Vasko086311b2016-01-08 09:53:11 +010027
Michal Vasko1a38c862016-01-15 15:50:07 +010028#include "libnetconf.h"
Michal Vasko086311b2016-01-08 09:53:11 +010029#include "session_server.h"
30
Michal Vaskob48aa812016-01-18 14:13:09 +010031struct nc_server_opts server_opts = {
Michal Vasko3031aae2016-01-27 16:07:18 +010032 .endpt_array_lock = PTHREAD_RWLOCK_INITIALIZER
Michal Vaskob48aa812016-01-18 14:13:09 +010033};
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010034
Michal Vasko3031aae2016-01-27 16:07:18 +010035extern struct nc_server_ssh_opts ssh_ch_opts;
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010036extern pthread_mutex_t ssh_ch_opts_lock;
37
Michal Vasko3031aae2016-01-27 16:07:18 +010038extern struct nc_server_tls_opts tls_ch_opts;
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010039extern pthread_mutex_t tls_ch_opts_lock;
Michal Vasko3031aae2016-01-27 16:07:18 +010040
41struct nc_endpt *
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010042nc_server_endpt_lock(const char *name, NC_TRANSPORT_IMPL ti)
Michal Vasko3031aae2016-01-27 16:07:18 +010043{
44 uint16_t i;
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010045 struct nc_endpt *endpt = NULL;
46
47 /* READ LOCK */
48 pthread_rwlock_rdlock(&server_opts.endpt_array_lock);
Michal Vasko3031aae2016-01-27 16:07:18 +010049
50 for (i = 0; i < server_opts.endpt_count; ++i) {
51 if ((server_opts.binds[i].ti == ti) && !strcmp(server_opts.endpts[i].name, name)) {
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010052 endpt = &server_opts.endpts[i];
53 break;
Michal Vasko3031aae2016-01-27 16:07:18 +010054 }
55 }
56
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +010057 if (!endpt) {
58 ERR("Endpoint \"%s\" was not found.", name);
59 /* READ UNLOCK */
60 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
61 return NULL;
62 }
63
64 /* ENDPT LOCK */
65 pthread_mutex_lock(&endpt->endpt_lock);
66
67 return endpt;
68}
69
70void
71nc_server_endpt_unlock(struct nc_endpt *endpt)
72{
73 /* ENDPT UNLOCK */
74 pthread_mutex_unlock(&endpt->endpt_lock);
75
76 /* READ UNLOCK */
Michal Vasko27562ad2016-02-02 15:50:39 +010077 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vasko3031aae2016-01-27 16:07:18 +010078}
Michal Vasko086311b2016-01-08 09:53:11 +010079
Michal Vasko1a38c862016-01-15 15:50:07 +010080API void
81nc_session_set_term_reason(struct nc_session *session, NC_SESSION_TERM_REASON reason)
82{
83 if (!session || !reason) {
84 ERRARG;
85 return;
86 }
87
88 session->term_reason = reason;
89}
90
Michal Vasko086311b2016-01-08 09:53:11 +010091int
Michal Vaskof05562c2016-01-20 12:06:43 +010092nc_sock_listen(const char *address, uint16_t port)
Michal Vasko086311b2016-01-08 09:53:11 +010093{
94 const int optVal = 1;
95 const socklen_t optLen = sizeof(optVal);
96 int is_ipv4, sock;
97 struct sockaddr_storage saddr;
98
99 struct sockaddr_in *saddr4;
100 struct sockaddr_in6 *saddr6;
101
102
103 if (!strchr(address, ':')) {
104 is_ipv4 = 1;
105 } else {
106 is_ipv4 = 0;
107 }
108
109 sock = socket((is_ipv4 ? AF_INET : AF_INET6), SOCK_STREAM, 0);
110 if (sock == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100111 ERR("Failed to create socket (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100112 goto fail;
113 }
114
115 if (setsockopt(sock, SOL_SOCKET, SO_REUSEADDR, (void *)&optVal, optLen)) {
Michal Vaskod083db62016-01-19 10:31:29 +0100116 ERR("Could not set socket SO_REUSEADDR socket option (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100117 goto fail;
118 }
119
120 bzero(&saddr, sizeof(struct sockaddr_storage));
121 if (is_ipv4) {
122 saddr4 = (struct sockaddr_in *)&saddr;
123
124 saddr4->sin_family = AF_INET;
125 saddr4->sin_port = htons(port);
126
127 if (inet_pton(AF_INET, address, &saddr4->sin_addr) != 1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100128 ERR("Failed to convert IPv4 address \"%s\".", address);
Michal Vasko086311b2016-01-08 09:53:11 +0100129 goto fail;
130 }
131
132 if (bind(sock, (struct sockaddr *)saddr4, sizeof(struct sockaddr_in)) == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100133 ERR("Could not bind \"%s\" port %d (%s).", address, port, strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100134 goto fail;
135 }
136
137 } else {
138 saddr6 = (struct sockaddr_in6 *)&saddr;
139
140 saddr6->sin6_family = AF_INET6;
141 saddr6->sin6_port = htons(port);
142
143 if (inet_pton(AF_INET6, address, &saddr6->sin6_addr) != 1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100144 ERR("Failed to convert IPv6 address \"%s\".", address);
Michal Vasko086311b2016-01-08 09:53:11 +0100145 goto fail;
146 }
147
148 if (bind(sock, (struct sockaddr *)saddr6, sizeof(struct sockaddr_in6)) == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100149 ERR("Could not bind \"%s\" port %d (%s).", address, port, strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100150 goto fail;
151 }
152 }
153
Michal Vaskofb89d772016-01-08 12:25:35 +0100154 if (listen(sock, NC_REVERSE_QUEUE) == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100155 ERR("Unable to start listening on \"%s\" port %d (%s).", address, port, strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100156 goto fail;
157 }
158
159 return sock;
160
161fail:
162 if (sock > -1) {
163 close(sock);
164 }
165
166 return -1;
167}
168
169int
Michal Vasko3031aae2016-01-27 16:07:18 +0100170nc_sock_accept_binds(struct nc_bind *binds, uint16_t bind_count, int timeout, char **host, uint16_t *port, uint16_t *idx)
Michal Vasko086311b2016-01-08 09:53:11 +0100171{
172 uint16_t i;
173 struct pollfd *pfd;
174 struct sockaddr_storage saddr;
175 socklen_t saddr_len = sizeof(saddr);
176 int ret, sock = -1;
177
178 pfd = malloc(bind_count * sizeof *pfd);
179 for (i = 0; i < bind_count; ++i) {
180 pfd[i].fd = binds[i].sock;
181 pfd[i].events = POLLIN;
182 pfd[i].revents = 0;
183 }
184
185 /* poll for a new connection */
186 errno = 0;
187 ret = poll(pfd, bind_count, timeout);
188 if (!ret) {
189 /* we timeouted */
190 free(pfd);
191 return 0;
192 } else if (ret == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100193 ERR("Poll failed (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100194 free(pfd);
195 return -1;
196 }
197
198 for (i = 0; i < bind_count; ++i) {
199 if (pfd[i].revents & POLLIN) {
200 sock = pfd[i].fd;
201 break;
202 }
203 }
204 free(pfd);
205
206 if (sock == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100207 ERRINT;
Michal Vasko086311b2016-01-08 09:53:11 +0100208 return -1;
209 }
210
211 ret = accept(sock, (struct sockaddr *)&saddr, &saddr_len);
Michal Vasko3f6cc4a2016-01-21 15:58:53 +0100212 if (ret < 0) {
Michal Vaskod083db62016-01-19 10:31:29 +0100213 ERR("Accept failed (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100214 return -1;
215 }
216
Michal Vasko3031aae2016-01-27 16:07:18 +0100217 if (idx) {
218 *idx = i;
Michal Vasko9e036d52016-01-08 10:49:26 +0100219 }
220
Michal Vasko086311b2016-01-08 09:53:11 +0100221 /* host was requested */
222 if (host) {
223 if (saddr.ss_family == AF_INET) {
224 *host = malloc(15);
225 if (!inet_ntop(AF_INET, &((struct sockaddr_in *)&saddr)->sin_addr.s_addr, *host, 15)) {
Michal Vaskod083db62016-01-19 10:31:29 +0100226 ERR("inet_ntop failed (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100227 free(*host);
228 *host = NULL;
229 }
230
231 if (port) {
232 *port = ntohs(((struct sockaddr_in *)&saddr)->sin_port);
233 }
234 } else if (saddr.ss_family == AF_INET6) {
235 *host = malloc(40);
236 if (!inet_ntop(AF_INET6, ((struct sockaddr_in6 *)&saddr)->sin6_addr.s6_addr, *host, 40)) {
Michal Vaskod083db62016-01-19 10:31:29 +0100237 ERR("inet_ntop failed (%s).", strerror(errno));
Michal Vasko086311b2016-01-08 09:53:11 +0100238 free(*host);
239 *host = NULL;
240 }
241
242 if (port) {
243 *port = ntohs(((struct sockaddr_in6 *)&saddr)->sin6_port);
244 }
245 } else {
Michal Vaskod083db62016-01-19 10:31:29 +0100246 ERR("Source host of an unknown protocol family.");
Michal Vasko086311b2016-01-08 09:53:11 +0100247 }
248 }
249
250 return ret;
251}
252
Michal Vasko05ba9df2016-01-13 14:40:27 +0100253static struct nc_server_reply *
Michal Vasko428087d2016-01-14 16:04:28 +0100254nc_clb_default_get_schema(struct lyd_node *rpc, struct nc_session *UNUSED(session))
Michal Vasko05ba9df2016-01-13 14:40:27 +0100255{
256 const char *identifier = NULL, *version = NULL, *format = NULL;
257 char *model_data = NULL;
258 const struct lys_module *module;
259 struct nc_server_error *err;
260 struct lyd_node *child, *data = NULL;
Michal Vasko11d142a2016-01-19 15:58:24 +0100261 const struct lys_node *sdata = NULL;
Michal Vasko05ba9df2016-01-13 14:40:27 +0100262
263 LY_TREE_FOR(rpc->child, child) {
264 if (!strcmp(child->schema->name, "identifier")) {
265 identifier = ((struct lyd_node_leaf_list *)child)->value_str;
266 } else if (!strcmp(child->schema->name, "version")) {
267 version = ((struct lyd_node_leaf_list *)child)->value_str;
268 } else if (!strcmp(child->schema->name, "format")) {
269 format = ((struct lyd_node_leaf_list *)child)->value_str;
270 }
271 }
272
273 /* check version */
274 if (version && (strlen(version) != 10) && strcmp(version, "1.0")) {
Michal Vasko1a38c862016-01-15 15:50:07 +0100275 err = nc_err(NC_ERR_INVALID_VALUE, NC_ERR_TYPE_APP);
276 nc_err_set_msg(err, "The requested version is not supported.", "en");
277 return nc_server_reply_err(err);
Michal Vasko05ba9df2016-01-13 14:40:27 +0100278 }
279
280 /* check and get module with the name identifier */
281 module = ly_ctx_get_module(server_opts.ctx, identifier, version);
282 if (!module) {
Michal Vasko1a38c862016-01-15 15:50:07 +0100283 err = nc_err(NC_ERR_INVALID_VALUE, NC_ERR_TYPE_APP);
284 nc_err_set_msg(err, "The requested schema was not found.", "en");
285 return nc_server_reply_err(err);
Michal Vasko05ba9df2016-01-13 14:40:27 +0100286 }
287
288 /* check format */
289 if (!format || !strcmp(format, "yang")) {
290 lys_print_mem(&model_data, module, LYS_OUT_YANG, NULL);
291 } else if (!strcmp(format, "yin")) {
292 lys_print_mem(&model_data, module, LYS_OUT_YIN, NULL);
293 } else {
Michal Vasko1a38c862016-01-15 15:50:07 +0100294 err = nc_err(NC_ERR_INVALID_VALUE, NC_ERR_TYPE_APP);
295 nc_err_set_msg(err, "The requested format is not supported.", "en");
296 return nc_server_reply_err(err);
Michal Vasko05ba9df2016-01-13 14:40:27 +0100297 }
298
Michal Vaskofea54dc2016-02-17 13:12:16 +0100299 sdata = ly_ctx_get_node(server_opts.ctx, "/ietf-netconf-monitoring:get-schema/output/data");
Michal Vasko0473c4c2016-01-19 10:40:06 +0100300 if (model_data && sdata) {
Michal Vasko05ba9df2016-01-13 14:40:27 +0100301 data = lyd_output_new_anyxml(sdata, model_data);
302 }
303 free(model_data);
304 if (!data) {
305 ERRINT;
306 return NULL;
307 }
308
309 return nc_server_reply_data(data, NC_PARAMTYPE_FREE);
310}
311
312static struct nc_server_reply *
Michal Vasko428087d2016-01-14 16:04:28 +0100313nc_clb_default_close_session(struct lyd_node *UNUSED(rpc), struct nc_session *session)
Michal Vasko05ba9df2016-01-13 14:40:27 +0100314{
Michal Vasko428087d2016-01-14 16:04:28 +0100315 session->term_reason = NC_SESSION_TERM_CLOSED;
316 return nc_server_reply_ok();
Michal Vasko05ba9df2016-01-13 14:40:27 +0100317}
318
Michal Vasko086311b2016-01-08 09:53:11 +0100319API int
320nc_server_init(struct ly_ctx *ctx)
321{
Michal Vasko05ba9df2016-01-13 14:40:27 +0100322 const struct lys_node *rpc;
323
Michal Vasko086311b2016-01-08 09:53:11 +0100324 if (!ctx) {
325 ERRARG;
326 return -1;
327 }
328
Michal Vasko05ba9df2016-01-13 14:40:27 +0100329 /* set default <get-schema> callback if not specified */
Michal Vaskofea54dc2016-02-17 13:12:16 +0100330 rpc = ly_ctx_get_node(ctx, "/ietf-netconf-monitoring:get-schema");
Michal Vasko05ba9df2016-01-13 14:40:27 +0100331 if (rpc && !rpc->private) {
332 lys_set_private(rpc, nc_clb_default_get_schema);
333 }
334
335 /* set default <close-session> callback if not specififed */
Michal Vaskofea54dc2016-02-17 13:12:16 +0100336 rpc = ly_ctx_get_node(ctx, "/ietf-netconf:close-session");
Michal Vasko05ba9df2016-01-13 14:40:27 +0100337 if (rpc && !rpc->private) {
338 lys_set_private(rpc, nc_clb_default_close_session);
339 }
340
Michal Vasko086311b2016-01-08 09:53:11 +0100341 server_opts.ctx = ctx;
Michal Vaskob48aa812016-01-18 14:13:09 +0100342
343 server_opts.new_session_id = 1;
344 pthread_spin_init(&server_opts.sid_lock, PTHREAD_PROCESS_PRIVATE);
345
Michal Vasko086311b2016-01-08 09:53:11 +0100346 return 0;
347}
348
Michal Vaskob48aa812016-01-18 14:13:09 +0100349API void
350nc_server_destroy(void)
351{
352 pthread_spin_destroy(&server_opts.sid_lock);
353
Radek Krejci53691be2016-02-22 13:58:37 +0100354#if defined(NC_ENABLED_SSH) || defined(NC_ENABLED_TLS)
Michal Vasko3031aae2016-01-27 16:07:18 +0100355 nc_server_del_endpt(NULL, 0);
Michal Vaskob48aa812016-01-18 14:13:09 +0100356#endif
357}
358
Michal Vasko086311b2016-01-08 09:53:11 +0100359API int
360nc_server_set_capab_withdefaults(NC_WD_MODE basic_mode, int also_supported)
361{
362 if (!basic_mode || (basic_mode == NC_WD_ALL_TAG)
363 || (also_supported && !(also_supported & (NC_WD_ALL | NC_WD_ALL_TAG | NC_WD_TRIM | NC_WD_EXPLICIT)))) {
364 ERRARG;
365 return -1;
366 }
367
368 server_opts.wd_basic_mode = basic_mode;
369 server_opts.wd_also_supported = also_supported;
370 return 0;
371}
372
Michal Vasko1a38c862016-01-15 15:50:07 +0100373API void
Michal Vasko086311b2016-01-08 09:53:11 +0100374nc_server_set_capab_interleave(int interleave_support)
375{
376 if (interleave_support) {
377 server_opts.interleave_capab = 1;
378 } else {
379 server_opts.interleave_capab = 0;
380 }
Michal Vasko086311b2016-01-08 09:53:11 +0100381}
382
Michal Vasko1a38c862016-01-15 15:50:07 +0100383API void
Michal Vasko086311b2016-01-08 09:53:11 +0100384nc_server_set_hello_timeout(uint16_t hello_timeout)
385{
Michal Vasko086311b2016-01-08 09:53:11 +0100386 server_opts.hello_timeout = hello_timeout;
Michal Vasko086311b2016-01-08 09:53:11 +0100387}
388
Michal Vasko1a38c862016-01-15 15:50:07 +0100389API void
Michal Vasko086311b2016-01-08 09:53:11 +0100390nc_server_set_idle_timeout(uint16_t idle_timeout)
391{
Michal Vasko086311b2016-01-08 09:53:11 +0100392 server_opts.idle_timeout = idle_timeout;
Michal Vasko086311b2016-01-08 09:53:11 +0100393}
394
395API int
Michal Vasko1a38c862016-01-15 15:50:07 +0100396nc_accept_inout(int fdin, int fdout, const char *username, struct nc_session **session)
Michal Vasko086311b2016-01-08 09:53:11 +0100397{
Michal Vasko7f1c78b2016-01-19 09:52:14 +0100398 if (!server_opts.ctx || (fdin < 0) || (fdout < 0) || !username || !session) {
Michal Vasko1a38c862016-01-15 15:50:07 +0100399 ERRARG;
400 return -1;
Michal Vasko086311b2016-01-08 09:53:11 +0100401 }
402
403 /* prepare session structure */
Michal Vasko1a38c862016-01-15 15:50:07 +0100404 *session = calloc(1, sizeof **session);
405 if (!(*session)) {
Michal Vasko086311b2016-01-08 09:53:11 +0100406 ERRMEM;
Michal Vasko1a38c862016-01-15 15:50:07 +0100407 return -1;
Michal Vasko086311b2016-01-08 09:53:11 +0100408 }
Michal Vasko1a38c862016-01-15 15:50:07 +0100409 (*session)->status = NC_STATUS_STARTING;
410 (*session)->side = NC_SERVER;
Michal Vasko086311b2016-01-08 09:53:11 +0100411
412 /* transport specific data */
Michal Vasko1a38c862016-01-15 15:50:07 +0100413 (*session)->ti_type = NC_TI_FD;
414 (*session)->ti.fd.in = fdin;
415 (*session)->ti.fd.out = fdout;
Michal Vasko086311b2016-01-08 09:53:11 +0100416
417 /* assign context (dicionary needed for handshake) */
Michal Vasko1a38c862016-01-15 15:50:07 +0100418 (*session)->flags = NC_SESSION_SHAREDCTX;
419 (*session)->ctx = server_opts.ctx;
Michal Vasko086311b2016-01-08 09:53:11 +0100420
Michal Vaskob48aa812016-01-18 14:13:09 +0100421 /* assign new SID atomically */
422 pthread_spin_lock(&server_opts.sid_lock);
423 (*session)->id = server_opts.new_session_id++;
424 pthread_spin_unlock(&server_opts.sid_lock);
425
Michal Vasko086311b2016-01-08 09:53:11 +0100426 /* NETCONF handshake */
Michal Vasko1a38c862016-01-15 15:50:07 +0100427 if (nc_handshake(*session)) {
Michal Vasko086311b2016-01-08 09:53:11 +0100428 goto fail;
429 }
Michal Vasko1a38c862016-01-15 15:50:07 +0100430 (*session)->status = NC_STATUS_RUNNING;
Michal Vasko5e6f4cc2016-01-20 13:27:44 +0100431 (*session)->last_rpc = time(NULL);
Michal Vasko086311b2016-01-08 09:53:11 +0100432
Michal Vasko1a38c862016-01-15 15:50:07 +0100433 return 0;
Michal Vasko086311b2016-01-08 09:53:11 +0100434
435fail:
Michal Vasko1a38c862016-01-15 15:50:07 +0100436 nc_session_free(*session);
437 *session = NULL;
438 return -1;
Michal Vasko086311b2016-01-08 09:53:11 +0100439}
Michal Vasko9e036d52016-01-08 10:49:26 +0100440
Michal Vasko428087d2016-01-14 16:04:28 +0100441API struct nc_pollsession *
442nc_ps_new(void)
443{
444 return calloc(1, sizeof(struct nc_pollsession));
445}
446
447API void
448nc_ps_free(struct nc_pollsession *ps)
449{
Michal Vasko7f1c78b2016-01-19 09:52:14 +0100450 if (!ps) {
451 return;
452 }
453
Michal Vasko3a715132016-01-21 15:40:31 +0100454 free(ps->pfds);
Michal Vasko428087d2016-01-14 16:04:28 +0100455 free(ps->sessions);
456 free(ps);
457}
458
459API int
460nc_ps_add_session(struct nc_pollsession *ps, struct nc_session *session)
461{
462 if (!ps || !session) {
463 ERRARG;
464 return -1;
465 }
466
467 ++ps->session_count;
Michal Vasko3a715132016-01-21 15:40:31 +0100468 ps->pfds = realloc(ps->pfds, ps->session_count * sizeof *ps->pfds);
Michal Vasko428087d2016-01-14 16:04:28 +0100469 ps->sessions = realloc(ps->sessions, ps->session_count * sizeof *ps->sessions);
470
471 switch (session->ti_type) {
472 case NC_TI_FD:
Michal Vasko3a715132016-01-21 15:40:31 +0100473 ps->pfds[ps->session_count - 1].fd = session->ti.fd.in;
Michal Vasko428087d2016-01-14 16:04:28 +0100474 break;
475
Radek Krejci53691be2016-02-22 13:58:37 +0100476#ifdef NC_ENABLED_SSH
Michal Vasko428087d2016-01-14 16:04:28 +0100477 case NC_TI_LIBSSH:
Michal Vasko3a715132016-01-21 15:40:31 +0100478 ps->pfds[ps->session_count - 1].fd = ssh_get_fd(session->ti.libssh.session);
Michal Vasko428087d2016-01-14 16:04:28 +0100479 break;
480#endif
481
Radek Krejci53691be2016-02-22 13:58:37 +0100482#ifdef NC_ENABLED_TLS
Michal Vasko428087d2016-01-14 16:04:28 +0100483 case NC_TI_OPENSSL:
Michal Vasko3a715132016-01-21 15:40:31 +0100484 ps->pfds[ps->session_count - 1].fd = SSL_get_rfd(session->ti.tls);
Michal Vasko428087d2016-01-14 16:04:28 +0100485 break;
486#endif
487
488 default:
489 ERRINT;
490 return -1;
491 }
Michal Vasko3a715132016-01-21 15:40:31 +0100492 ps->pfds[ps->session_count - 1].events = POLLIN;
493 ps->pfds[ps->session_count - 1].revents = 0;
494 ps->sessions[ps->session_count - 1] = session;
Michal Vasko428087d2016-01-14 16:04:28 +0100495
496 return 0;
497}
498
499API int
500nc_ps_del_session(struct nc_pollsession *ps, struct nc_session *session)
501{
502 uint16_t i;
503
504 if (!ps || !session) {
505 ERRARG;
506 return -1;
507 }
508
509 for (i = 0; i < ps->session_count; ++i) {
Michal Vasko3a715132016-01-21 15:40:31 +0100510 if (ps->sessions[i] == session) {
Michal Vasko428087d2016-01-14 16:04:28 +0100511 --ps->session_count;
Michal Vasko58005732016-02-02 15:50:52 +0100512 if (i < ps->session_count) {
513 ps->sessions[i] = ps->sessions[ps->session_count];
514 memcpy(&ps->pfds[i], &ps->pfds[ps->session_count], sizeof *ps->pfds);
515 } else if (!ps->session_count) {
516 free(ps->sessions);
517 ps->sessions = NULL;
518 free(ps->pfds);
519 ps->pfds = NULL;
520 }
Michal Vasko428087d2016-01-14 16:04:28 +0100521 return 0;
522 }
523 }
524
Michal Vaskof0537d82016-01-29 14:42:38 +0100525 return -1;
Michal Vasko428087d2016-01-14 16:04:28 +0100526}
527
Michal Vasko0fdb7ac2016-03-01 09:03:12 +0100528API uint16_t
529nc_ps_session_count(struct nc_pollsession *ps)
530{
531 if (!ps) {
532 ERRARG;
533 return 0;
534 }
535
536 return ps->session_count;
537}
538
Michal Vasko428087d2016-01-14 16:04:28 +0100539/* must be called holding the session lock! */
540static NC_MSG_TYPE
541nc_recv_rpc(struct nc_session *session, struct nc_server_rpc **rpc)
542{
543 struct lyxml_elem *xml = NULL;
544 NC_MSG_TYPE msgtype;
545
546 if (!session || !rpc) {
547 ERRARG;
548 return NC_MSG_ERROR;
549 } else if ((session->status != NC_STATUS_RUNNING) || (session->side != NC_SERVER)) {
Michal Vaskod083db62016-01-19 10:31:29 +0100550 ERR("Session %u: invalid session to receive RPCs.", session->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100551 return NC_MSG_ERROR;
552 }
553
554 msgtype = nc_read_msg(session, &xml);
555
556 switch (msgtype) {
557 case NC_MSG_RPC:
558 *rpc = malloc(sizeof **rpc);
Michal Vaskoca4a2422016-02-02 12:17:14 +0100559
Michal Vasko428087d2016-01-14 16:04:28 +0100560 (*rpc)->tree = lyd_parse_xml(server_opts.ctx, &xml->child, LYD_OPT_DESTRUCT | LYD_OPT_RPC);
Michal Vaskoca4a2422016-02-02 12:17:14 +0100561 if (!(*rpc)->tree) {
562 ERR("Session %u: received message failed to be parsed into a known RPC.", session->id);
563 msgtype = NC_MSG_NONE;
564 }
Michal Vasko428087d2016-01-14 16:04:28 +0100565 (*rpc)->root = xml;
566 break;
567 case NC_MSG_HELLO:
Michal Vaskod083db62016-01-19 10:31:29 +0100568 ERR("Session %u: received another <hello> message.", session->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100569 goto error;
570 case NC_MSG_REPLY:
Michal Vasko81614ee2016-02-02 12:20:14 +0100571 ERR("Session %u: received <rpc-reply> from a NETCONF client.", session->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100572 goto error;
573 case NC_MSG_NOTIF:
Michal Vasko81614ee2016-02-02 12:20:14 +0100574 ERR("Session %u: received <notification> from a NETCONF client.", session->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100575 goto error;
576 default:
577 /* NC_MSG_ERROR - pass it out;
578 * NC_MSG_WOULDBLOCK and NC_MSG_NONE is not returned by nc_read_msg()
579 */
580 break;
581 }
582
583 return msgtype;
584
585error:
586 /* cleanup */
587 lyxml_free(server_opts.ctx, xml);
588
589 return NC_MSG_ERROR;
590}
591
592/* must be called holding the session lock! */
593static NC_MSG_TYPE
594nc_send_reply(struct nc_session *session, struct nc_server_rpc *rpc)
595{
596 nc_rpc_clb clb;
597 struct nc_server_reply *reply;
598 int ret;
599
600 /* no callback, reply with a not-implemented error */
Michal Vaskoca4a2422016-02-02 12:17:14 +0100601 if (!rpc->tree || !rpc->tree->schema->private) {
Michal Vasko1a38c862016-01-15 15:50:07 +0100602 reply = nc_server_reply_err(nc_err(NC_ERR_OP_NOT_SUPPORTED, NC_ERR_TYPE_PROT));
Michal Vasko428087d2016-01-14 16:04:28 +0100603 } else {
604 clb = (nc_rpc_clb)rpc->tree->schema->private;
605 reply = clb(rpc->tree, session);
606 }
607
608 if (!reply) {
Michal Vasko1a38c862016-01-15 15:50:07 +0100609 reply = nc_server_reply_err(nc_err(NC_ERR_OP_FAILED, NC_ERR_TYPE_APP));
Michal Vasko428087d2016-01-14 16:04:28 +0100610 }
611
612 ret = nc_write_msg(session, NC_MSG_REPLY, rpc->root, reply);
613
614 /* special case if term_reason was set in callback, last reply was sent (needed for <close-session> if nothing else) */
615 if ((session->status == NC_STATUS_RUNNING) && (session->term_reason != NC_SESSION_TERM_NONE)) {
616 session->status = NC_STATUS_INVALID;
617 }
618
619 if (ret == -1) {
Michal Vaskod083db62016-01-19 10:31:29 +0100620 ERR("Session %u: failed to write reply.", session->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100621 nc_server_reply_free(reply);
622 return NC_MSG_ERROR;
623 }
624 nc_server_reply_free(reply);
625
626 return NC_MSG_REPLY;
627}
628
629API int
630nc_ps_poll(struct nc_pollsession *ps, int timeout)
631{
632 int ret;
Michal Vasko3512e402016-01-28 16:22:34 +0100633 uint16_t i;
Michal Vasko5e6f4cc2016-01-20 13:27:44 +0100634 time_t cur_time;
Michal Vasko428087d2016-01-14 16:04:28 +0100635 NC_MSG_TYPE msgtype;
636 struct nc_session *session;
637 struct nc_server_rpc *rpc;
Michal Vasko428087d2016-01-14 16:04:28 +0100638
639 if (!ps || !ps->session_count) {
640 ERRARG;
641 return -1;
642 }
643
Michal Vasko5e6f4cc2016-01-20 13:27:44 +0100644 cur_time = time(NULL);
645
Michal Vasko428087d2016-01-14 16:04:28 +0100646 for (i = 0; i < ps->session_count; ++i) {
Michal Vasko3a715132016-01-21 15:40:31 +0100647 if (ps->sessions[i]->status != NC_STATUS_RUNNING) {
648 ERR("Session %u: session not running.", ps->sessions[i]->id);
Michal Vasko428087d2016-01-14 16:04:28 +0100649 return -1;
650 }
Michal Vaskobd8ef262016-01-20 11:09:27 +0100651
Michal Vasko5e6f4cc2016-01-20 13:27:44 +0100652 /* TODO invalidate only sessions without subscription */
Michal Vasko3a715132016-01-21 15:40:31 +0100653 if (server_opts.idle_timeout && (ps->sessions[i]->last_rpc + server_opts.idle_timeout >= cur_time)) {
654 ERR("Session %u: session idle timeout elapsed.", ps->sessions[i]->id);
655 ps->sessions[i]->status = NC_STATUS_INVALID;
656 ps->sessions[i]->term_reason = NC_SESSION_TERM_TIMEOUT;
Michal Vasko5e6f4cc2016-01-20 13:27:44 +0100657 return 3;
658 }
659
Michal Vasko3a715132016-01-21 15:40:31 +0100660 if (ps->pfds[i].revents) {
Michal Vaskobd8ef262016-01-20 11:09:27 +0100661 break;
662 }
Michal Vasko428087d2016-01-14 16:04:28 +0100663 }
664
Michal Vaskobd8ef262016-01-20 11:09:27 +0100665 if (i == ps->session_count) {
Radek Krejci53691be2016-02-22 13:58:37 +0100666#ifdef NC_ENABLED_SSH
Michal Vasko3a715132016-01-21 15:40:31 +0100667retry_poll:
Michal Vasko3512e402016-01-28 16:22:34 +0100668#endif
Michal Vaskobd8ef262016-01-20 11:09:27 +0100669 /* no leftover event */
670 i = 0;
Michal Vasko3a715132016-01-21 15:40:31 +0100671 ret = poll(ps->pfds, ps->session_count, timeout);
Michal Vaskobd8ef262016-01-20 11:09:27 +0100672 if (ret < 1) {
673 return ret;
674 }
Michal Vasko428087d2016-01-14 16:04:28 +0100675 }
676
Michal Vaskobd8ef262016-01-20 11:09:27 +0100677 /* find the first fd with POLLIN, we don't care if there are more now */
678 for (; i < ps->session_count; ++i) {
Michal Vasko3a715132016-01-21 15:40:31 +0100679 if (ps->pfds[i].revents & POLLHUP) {
680 ERR("Session %u: communication socket unexpectedly closed.", ps->sessions[i]->id);
681 ps->sessions[i]->status = NC_STATUS_INVALID;
682 ps->sessions[i]->term_reason = NC_SESSION_TERM_DROPPED;
Michal Vaskobd8ef262016-01-20 11:09:27 +0100683 return 3;
Michal Vasko3a715132016-01-21 15:40:31 +0100684 } else if (ps->pfds[i].revents & POLLERR) {
685 ERR("Session %u: communication socket error.", ps->sessions[i]->id);
686 ps->sessions[i]->status = NC_STATUS_INVALID;
687 ps->sessions[i]->term_reason = NC_SESSION_TERM_OTHER;
Michal Vaskobd8ef262016-01-20 11:09:27 +0100688 return 3;
Michal Vasko3a715132016-01-21 15:40:31 +0100689 } else if (ps->pfds[i].revents & POLLIN) {
Radek Krejci53691be2016-02-22 13:58:37 +0100690#ifdef NC_ENABLED_SSH
Michal Vasko96164bf2016-01-21 15:41:58 +0100691 if (ps->sessions[i]->ti_type == NC_TI_LIBSSH) {
Michal Vasko3512e402016-01-28 16:22:34 +0100692 uint16_t j;
693
Michal Vasko96164bf2016-01-21 15:41:58 +0100694 /* things are not that simple with SSH... */
695 ret = nc_ssh_pollin(ps->sessions[i], &timeout);
696
697 /* clear POLLIN on sessions sharing this session's SSH session */
698 if ((ret == 1) || (ret >= 4)) {
699 for (j = i + 1; j < ps->session_count; ++j) {
700 if (ps->pfds[j].fd == ps->pfds[i].fd) {
701 ps->pfds[j].revents = 0;
702 }
703 }
704 }
705
706 /* actual event happened */
707 if ((ret <= 0) || (ret >= 3)) {
708 ps->pfds[i].revents = 0;
709 return ret;
710
711 /* event occurred on some other channel */
712 } else if (ret == 2) {
713 ps->pfds[i].revents = 0;
Michal Vasko428087d2016-01-14 16:04:28 +0100714 if (i == ps->session_count - 1) {
715 /* last session and it is not the right channel, ... */
Michal Vasko8c748832016-02-03 15:32:16 +0100716 if (!timeout) {
Michal Vasko428087d2016-01-14 16:04:28 +0100717 /* ... timeout is 0, so that is it */
718 return 0;
Michal Vasko428087d2016-01-14 16:04:28 +0100719 }
Michal Vasko8c748832016-02-03 15:32:16 +0100720 /* ... retry polling reasonable time apart ... */
721 usleep(NC_TIMEOUT_STEP);
722 if (timeout > 0) {
723 /* ... and decrease timeout, if not -1 */
Michal Vasko7b38e232016-02-26 15:01:07 +0100724 timeout -= NC_TIMEOUT_STEP * 1000;
Michal Vasko8c748832016-02-03 15:32:16 +0100725 }
726 goto retry_poll;
Michal Vasko428087d2016-01-14 16:04:28 +0100727 }
728 /* check other sessions */
729 continue;
Michal Vasko428087d2016-01-14 16:04:28 +0100730 }
731 }
Radek Krejci53691be2016-02-22 13:58:37 +0100732#endif /* NC_ENABLED_SSH */
Michal Vasko428087d2016-01-14 16:04:28 +0100733
Michal Vaskobd8ef262016-01-20 11:09:27 +0100734 /* we are going to process it now */
Michal Vasko3a715132016-01-21 15:40:31 +0100735 ps->pfds[i].revents = 0;
Michal Vasko428087d2016-01-14 16:04:28 +0100736 break;
737 }
738 }
739
740 if (i == ps->session_count) {
741 ERRINT;
742 return -1;
743 }
744
745 /* this is the session with some data available for reading */
Michal Vasko3a715132016-01-21 15:40:31 +0100746 session = ps->sessions[i];
Michal Vasko428087d2016-01-14 16:04:28 +0100747
Michal Vaskobd8ef262016-01-20 11:09:27 +0100748 /* reading an RPC and sending a reply must be atomic (no other RPC should be read) */
Michal Vasko7f1c78b2016-01-19 09:52:14 +0100749 ret = nc_timedlock(session->ti_lock, timeout, NULL);
750 if (ret != 1) {
751 /* error or timeout */
752 return ret;
Michal Vasko428087d2016-01-14 16:04:28 +0100753 }
754
755 msgtype = nc_recv_rpc(session, &rpc);
756 if (msgtype == NC_MSG_ERROR) {
Michal Vasko7f1c78b2016-01-19 09:52:14 +0100757 pthread_mutex_unlock(session->ti_lock);
Michal Vasko428087d2016-01-14 16:04:28 +0100758 if (session->status != NC_STATUS_RUNNING) {
Michal Vaskobd8ef262016-01-20 11:09:27 +0100759 return 3;
Michal Vasko428087d2016-01-14 16:04:28 +0100760 }
761 return -1;
762 }
763
Michal Vaskoca4a2422016-02-02 12:17:14 +0100764 /* NC_MSG_NONE is not a real (known) RPC */
765 if (msgtype == NC_MSG_RPC) {
766 session->last_rpc = time(NULL);
767 }
768
Michal Vasko428087d2016-01-14 16:04:28 +0100769 /* process RPC */
770 msgtype = nc_send_reply(session, rpc);
771
Michal Vasko7f1c78b2016-01-19 09:52:14 +0100772 pthread_mutex_unlock(session->ti_lock);
Michal Vasko428087d2016-01-14 16:04:28 +0100773
774 if (msgtype == NC_MSG_ERROR) {
Michal Vaskoca4a2422016-02-02 12:17:14 +0100775 nc_server_rpc_free(rpc, server_opts.ctx);
Michal Vasko428087d2016-01-14 16:04:28 +0100776 return -1;
777 }
Michal Vaskoca4a2422016-02-02 12:17:14 +0100778 nc_server_rpc_free(rpc, server_opts.ctx);
Michal Vaskobd8ef262016-01-20 11:09:27 +0100779
Michal Vaskobd8b4e12016-01-22 16:11:20 +0100780 /* status change takes precedence over leftover events (return 2) */
781 if (session->status != NC_STATUS_RUNNING) {
782 return 3;
783 }
784
Michal Vaskobd8ef262016-01-20 11:09:27 +0100785 /* is there some other socket waiting? */
786 for (++i; i < ps->session_count; ++i) {
Michal Vasko3a715132016-01-21 15:40:31 +0100787 if (ps->pfds[i].revents) {
Michal Vaskobd8ef262016-01-20 11:09:27 +0100788 return 2;
789 }
790 }
791
Michal Vasko428087d2016-01-14 16:04:28 +0100792 return 1;
793}
794
Michal Vaskod09eae62016-02-01 10:32:52 +0100795API void
Michal Vaskocad3ac42016-03-01 09:06:01 +0100796nc_ps_clear(struct nc_pollsession *ps, int all)
Michal Vaskod09eae62016-02-01 10:32:52 +0100797{
798 uint16_t i;
799 struct nc_session *session;
800
Michal Vasko9a25e932016-02-01 10:36:42 +0100801 if (!ps) {
802 ERRARG;
803 return;
804 }
805
Michal Vaskod09eae62016-02-01 10:32:52 +0100806 for (i = 0; i < ps->session_count; ) {
Michal Vaskocad3ac42016-03-01 09:06:01 +0100807 if (all || (ps->sessions[i]->status != NC_STATUS_RUNNING)) {
Michal Vaskod09eae62016-02-01 10:32:52 +0100808 session = ps->sessions[i];
809 nc_ps_del_session(ps, session);
810 nc_session_free(session);
811 continue;
812 }
813
814 ++i;
815 }
816}
817
Radek Krejci53691be2016-02-22 13:58:37 +0100818#if defined(NC_ENABLED_SSH) || defined(NC_ENABLED_TLS)
Michal Vasko9e036d52016-01-08 10:49:26 +0100819
Michal Vasko3031aae2016-01-27 16:07:18 +0100820int
821nc_server_add_endpt_listen(const char *name, const char *address, uint16_t port, NC_TRANSPORT_IMPL ti)
Michal Vasko9e036d52016-01-08 10:49:26 +0100822{
823 int sock;
Michal Vasko3031aae2016-01-27 16:07:18 +0100824 uint16_t i;
Radek Krejci53691be2016-02-22 13:58:37 +0100825#ifdef NC_ENABLED_SSH
Michal Vasko08a629a2016-02-02 12:20:47 +0100826 struct nc_server_ssh_opts *ssh_opts;
827#endif
Michal Vasko9e036d52016-01-08 10:49:26 +0100828
Michal Vasko3031aae2016-01-27 16:07:18 +0100829 if (!name || !address || !port) {
Michal Vasko9e036d52016-01-08 10:49:26 +0100830 ERRARG;
831 return -1;
832 }
833
Michal Vasko51e514d2016-02-02 15:51:52 +0100834 /* WRITE LOCK */
835 pthread_rwlock_wrlock(&server_opts.endpt_array_lock);
Michal Vasko3031aae2016-01-27 16:07:18 +0100836
837 /* check name uniqueness */
838 for (i = 0; i < server_opts.endpt_count; ++i) {
Michal Vaskod4c03a82016-02-08 15:27:26 +0100839 if ((server_opts.binds[i].ti == ti) && !strcmp(server_opts.endpts[i].name, name)) {
Michal Vasko3031aae2016-01-27 16:07:18 +0100840 ERR("Endpoint \"%s\" already exists.", name);
Michal Vasko51e514d2016-02-02 15:51:52 +0100841 /* WRITE UNLOCK */
Michal Vasko9faf1c82016-02-01 13:26:19 +0100842 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vasko3031aae2016-01-27 16:07:18 +0100843 return -1;
844 }
845 }
846
Michal Vasko9e036d52016-01-08 10:49:26 +0100847 sock = nc_sock_listen(address, port);
848 if (sock == -1) {
Michal Vasko51e514d2016-02-02 15:51:52 +0100849 /* WRITE UNLOCK */
850 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vasko9e036d52016-01-08 10:49:26 +0100851 return -1;
852 }
853
Michal Vasko3031aae2016-01-27 16:07:18 +0100854 ++server_opts.endpt_count;
855 server_opts.binds = realloc(server_opts.binds, server_opts.endpt_count * sizeof *server_opts.binds);
856 server_opts.endpts = realloc(server_opts.endpts, server_opts.endpt_count * sizeof *server_opts.endpts);
Michal Vasko9e036d52016-01-08 10:49:26 +0100857
Michal Vasko3031aae2016-01-27 16:07:18 +0100858 server_opts.endpts[server_opts.endpt_count - 1].name = lydict_insert(server_opts.ctx, name, 0);
859 server_opts.binds[server_opts.endpt_count - 1].address = lydict_insert(server_opts.ctx, address, 0);
Michal Vasko3031aae2016-01-27 16:07:18 +0100860 server_opts.binds[server_opts.endpt_count - 1].port = port;
861 server_opts.binds[server_opts.endpt_count - 1].sock = sock;
862 server_opts.binds[server_opts.endpt_count - 1].ti = ti;
863 switch (ti) {
Radek Krejci53691be2016-02-22 13:58:37 +0100864#ifdef NC_ENABLED_SSH
Michal Vasko3031aae2016-01-27 16:07:18 +0100865 case NC_TI_LIBSSH:
Michal Vasko08a629a2016-02-02 12:20:47 +0100866 ssh_opts = calloc(1, sizeof *ssh_opts);
867 /* set default values */
868 ssh_opts->auth_methods = NC_SSH_AUTH_PUBLICKEY | NC_SSH_AUTH_PASSWORD | NC_SSH_AUTH_INTERACTIVE;
869 ssh_opts->auth_attempts = 3;
870 ssh_opts->auth_timeout = 10;
871
872 server_opts.endpts[server_opts.endpt_count - 1].ti_opts = ssh_opts;
Michal Vasko3031aae2016-01-27 16:07:18 +0100873 break;
874#endif
Radek Krejci53691be2016-02-22 13:58:37 +0100875#ifdef NC_ENABLED_TLS
Michal Vasko3031aae2016-01-27 16:07:18 +0100876 case NC_TI_OPENSSL:
877 server_opts.endpts[server_opts.endpt_count - 1].ti_opts = calloc(1, sizeof(struct nc_server_tls_opts));
878 break;
879#endif
880 default:
881 ERRINT;
882 server_opts.endpts[server_opts.endpt_count - 1].ti_opts = NULL;
883 break;
884 }
885 pthread_mutex_init(&server_opts.endpts[server_opts.endpt_count - 1].endpt_lock, NULL);
Michal Vasko9e036d52016-01-08 10:49:26 +0100886
Michal Vasko3031aae2016-01-27 16:07:18 +0100887 /* WRITE UNLOCK */
888 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vaskob48aa812016-01-18 14:13:09 +0100889
Michal Vasko9e036d52016-01-08 10:49:26 +0100890 return 0;
891}
892
Michal Vasko3031aae2016-01-27 16:07:18 +0100893int
Michal Vaskoda514772016-02-01 11:32:01 +0100894nc_server_endpt_set_address_port(const char *endpt_name, const char *address, uint16_t port, NC_TRANSPORT_IMPL ti)
895{
896 struct nc_endpt *endpt;
897 struct nc_bind *bind = NULL;
898 uint16_t i;
899 int sock;
900
901 if (!endpt_name || (!address && !port) || (address && port) || !ti) {
902 ERRARG;
903 return -1;
904 }
905
Michal Vasko51e514d2016-02-02 15:51:52 +0100906 /* LOCK */
Michal Vaskoda514772016-02-01 11:32:01 +0100907 endpt = nc_server_endpt_lock(endpt_name, ti);
908 if (!endpt) {
909 return -1;
910 }
911
912 /* we need to learn the index, to get the bind :-/ */
913 for (i = 0; i < server_opts.endpt_count; ++i) {
914 if (&server_opts.endpts[i] == endpt) {
915 bind = &server_opts.binds[i];
916 }
917 }
918 if (!bind) {
919 ERRINT;
Michal Vasko51e514d2016-02-02 15:51:52 +0100920 goto fail;
Michal Vaskoda514772016-02-01 11:32:01 +0100921 }
922
923 if (address) {
924 sock = nc_sock_listen(address, bind->port);
925 } else {
926 sock = nc_sock_listen(bind->address, port);
927 }
928 if (sock == -1) {
Michal Vasko51e514d2016-02-02 15:51:52 +0100929 goto fail;
Michal Vaskoda514772016-02-01 11:32:01 +0100930 }
931
932 /* close old socket, update parameters */
933 close(bind->sock);
934 bind->sock = sock;
935 if (address) {
936 lydict_remove(server_opts.ctx, bind->address);
937 bind->address = lydict_insert(server_opts.ctx, address, 0);
938 } else {
939 bind->port = port;
940 }
941
Michal Vasko51e514d2016-02-02 15:51:52 +0100942 /* UNLOCK */
Michal Vasko7a93af72016-02-01 16:00:15 +0100943 nc_server_endpt_unlock(endpt);
Michal Vaskoda514772016-02-01 11:32:01 +0100944 return 0;
Michal Vasko51e514d2016-02-02 15:51:52 +0100945
946fail:
947 /* UNLOCK */
948 nc_server_endpt_unlock(endpt);
949 return -1;
Michal Vaskoda514772016-02-01 11:32:01 +0100950}
951
952int
Michal Vasko3031aae2016-01-27 16:07:18 +0100953nc_server_del_endpt(const char *name, NC_TRANSPORT_IMPL ti)
Michal Vasko9e036d52016-01-08 10:49:26 +0100954{
955 uint32_t i;
956 int ret = -1;
957
Michal Vasko3031aae2016-01-27 16:07:18 +0100958 /* WRITE LOCK */
959 pthread_rwlock_wrlock(&server_opts.endpt_array_lock);
Michal Vaskob48aa812016-01-18 14:13:09 +0100960
Michal Vasko3031aae2016-01-27 16:07:18 +0100961 if (!name && !ti) {
962 /* remove all */
Michal Vasko3031aae2016-01-27 16:07:18 +0100963 for (i = 0; i < server_opts.endpt_count; ++i) {
964 lydict_remove(server_opts.ctx, server_opts.endpts[i].name);
Michal Vasko11d142a2016-01-19 15:58:24 +0100965 lydict_remove(server_opts.ctx, server_opts.binds[i].address);
Michal Vasko51e514d2016-02-02 15:51:52 +0100966
Michal Vasko3031aae2016-01-27 16:07:18 +0100967 close(server_opts.binds[i].sock);
968 pthread_mutex_destroy(&server_opts.endpts[i].endpt_lock);
969 switch (server_opts.binds[i].ti) {
Radek Krejci53691be2016-02-22 13:58:37 +0100970#ifdef NC_ENABLED_SSH
Michal Vasko3031aae2016-01-27 16:07:18 +0100971 case NC_TI_LIBSSH:
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +0100972 nc_server_ssh_clear_opts(server_opts.endpts[i].ti_opts);
Michal Vasko3031aae2016-01-27 16:07:18 +0100973 break;
974#endif
Radek Krejci53691be2016-02-22 13:58:37 +0100975#ifdef NC_ENABLED_TLS
Michal Vasko3031aae2016-01-27 16:07:18 +0100976 case NC_TI_OPENSSL:
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +0100977 nc_server_tls_clear_opts(server_opts.endpts[i].ti_opts);
Michal Vasko3031aae2016-01-27 16:07:18 +0100978 break;
979#endif
980 default:
981 ERRINT;
982 break;
983 }
984 free(server_opts.endpts[i].ti_opts);
Michal Vasko9e036d52016-01-08 10:49:26 +0100985
Michal Vasko9e036d52016-01-08 10:49:26 +0100986 ret = 0;
987 }
Michal Vasko7ddc5702016-02-08 15:29:39 +0100988 free(server_opts.binds);
989 server_opts.binds = NULL;
Michal Vasko3031aae2016-01-27 16:07:18 +0100990 free(server_opts.endpts);
991 server_opts.endpts = NULL;
992 server_opts.endpt_count = 0;
993
Michal Vasko1a38c862016-01-15 15:50:07 +0100994 } else {
Michal Vasko3031aae2016-01-27 16:07:18 +0100995 /* remove one name endpoint or all ti endpoints */
996 for (i = 0; i < server_opts.endpt_count; ++i) {
997 if ((server_opts.binds[i].ti == ti) &&
998 (!name || !strcmp(server_opts.endpts[i].name, name))) {
999
Michal Vasko3031aae2016-01-27 16:07:18 +01001000 lydict_remove(server_opts.ctx, server_opts.endpts[i].name);
Michal Vasko11d142a2016-01-19 15:58:24 +01001001 lydict_remove(server_opts.ctx, server_opts.binds[i].address);
Michal Vasko3031aae2016-01-27 16:07:18 +01001002 close(server_opts.binds[i].sock);
1003 pthread_mutex_destroy(&server_opts.endpts[i].endpt_lock);
1004 switch (server_opts.binds[i].ti) {
Radek Krejci53691be2016-02-22 13:58:37 +01001005#ifdef NC_ENABLED_SSH
Michal Vasko3031aae2016-01-27 16:07:18 +01001006 case NC_TI_LIBSSH:
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001007 nc_server_ssh_clear_opts(server_opts.endpts[i].ti_opts);
Michal Vasko3031aae2016-01-27 16:07:18 +01001008 break;
1009#endif
Radek Krejci53691be2016-02-22 13:58:37 +01001010#ifdef NC_ENABLED_TLS
Michal Vasko3031aae2016-01-27 16:07:18 +01001011 case NC_TI_OPENSSL:
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001012 nc_server_tls_clear_opts(server_opts.endpts[i].ti_opts);
Michal Vasko3031aae2016-01-27 16:07:18 +01001013 break;
1014#endif
1015 default:
1016 ERRINT;
1017 break;
1018 }
1019 free(server_opts.endpts[i].ti_opts);
Michal Vasko1a38c862016-01-15 15:50:07 +01001020
Michal Vasko3031aae2016-01-27 16:07:18 +01001021 --server_opts.endpt_count;
Michal Vaskoc0256492016-02-02 12:19:06 +01001022 if (i < server_opts.endpt_count) {
1023 memcpy(&server_opts.binds[i], &server_opts.binds[server_opts.endpt_count], sizeof *server_opts.binds);
1024 memcpy(&server_opts.endpts[i], &server_opts.endpts[server_opts.endpt_count], sizeof *server_opts.endpts);
1025 } else if (!server_opts.endpt_count) {
1026 free(server_opts.binds);
1027 server_opts.binds = NULL;
1028 free(server_opts.endpts);
1029 server_opts.endpts = NULL;
1030 }
Michal Vasko1a38c862016-01-15 15:50:07 +01001031
1032 ret = 0;
Michal Vasko3031aae2016-01-27 16:07:18 +01001033
1034 if (name) {
1035 /* one name endpoint removed, they are unique, we're done */
1036 break;
1037 }
Michal Vasko1a38c862016-01-15 15:50:07 +01001038 }
1039 }
Michal Vasko9e036d52016-01-08 10:49:26 +01001040 }
1041
Michal Vasko3031aae2016-01-27 16:07:18 +01001042 /* WRITE UNLOCK */
1043 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vaskob48aa812016-01-18 14:13:09 +01001044
Michal Vasko9e036d52016-01-08 10:49:26 +01001045 return ret;
1046}
1047
Michal Vasko1a38c862016-01-15 15:50:07 +01001048API int
1049nc_accept(int timeout, struct nc_session **session)
Michal Vasko9e036d52016-01-08 10:49:26 +01001050{
Michal Vasko1a38c862016-01-15 15:50:07 +01001051 int sock, ret;
Michal Vasko5c2f7952016-01-22 13:16:31 +01001052 char *host = NULL;
Michal Vasko3031aae2016-01-27 16:07:18 +01001053 uint16_t port, idx;
Michal Vasko9e036d52016-01-08 10:49:26 +01001054
Michal Vasko51e514d2016-02-02 15:51:52 +01001055 if (!server_opts.ctx || !session) {
Michal Vasko9e036d52016-01-08 10:49:26 +01001056 ERRARG;
Michal Vasko1a38c862016-01-15 15:50:07 +01001057 return -1;
Michal Vasko9e036d52016-01-08 10:49:26 +01001058 }
1059
Michal Vasko51e514d2016-02-02 15:51:52 +01001060 /* we have to hold WRITE for the whole time, since there is not
1061 * a way of downgrading the lock to READ */
1062 /* WRITE LOCK */
1063 pthread_rwlock_wrlock(&server_opts.endpt_array_lock);
1064
1065 if (!server_opts.endpt_count) {
1066 ERRARG;
1067 /* WRITE UNLOCK */
1068 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
1069 return -1;
1070 }
Michal Vaskob48aa812016-01-18 14:13:09 +01001071
Michal Vasko3031aae2016-01-27 16:07:18 +01001072 ret = nc_sock_accept_binds(server_opts.binds, server_opts.endpt_count, timeout, &host, &port, &idx);
Michal Vaskob48aa812016-01-18 14:13:09 +01001073
Michal Vasko50456e82016-02-02 12:16:08 +01001074 if (ret < 1) {
Michal Vasko51e514d2016-02-02 15:51:52 +01001075 /* WRITE UNLOCK */
Michal Vasko3031aae2016-01-27 16:07:18 +01001076 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
Michal Vaskob737d752016-02-09 09:01:27 +01001077 free(host);
Michal Vaskob48aa812016-01-18 14:13:09 +01001078 return ret;
Michal Vasko9e036d52016-01-08 10:49:26 +01001079 }
Michal Vaskob48aa812016-01-18 14:13:09 +01001080 sock = ret;
Michal Vasko9e036d52016-01-08 10:49:26 +01001081
Michal Vasko1a38c862016-01-15 15:50:07 +01001082 *session = calloc(1, sizeof **session);
Michal Vasko686aa312016-01-21 15:58:18 +01001083 if (!(*session)) {
Michal Vasko9e036d52016-01-08 10:49:26 +01001084 ERRMEM;
Michal Vaskoc14e3c82016-01-11 16:14:30 +01001085 close(sock);
Michal Vasko5c2f7952016-01-22 13:16:31 +01001086 free(host);
Michal Vasko3031aae2016-01-27 16:07:18 +01001087 ret = -1;
1088 goto fail;
Michal Vasko9e036d52016-01-08 10:49:26 +01001089 }
Michal Vasko1a38c862016-01-15 15:50:07 +01001090 (*session)->status = NC_STATUS_STARTING;
1091 (*session)->side = NC_SERVER;
1092 (*session)->ctx = server_opts.ctx;
1093 (*session)->flags = NC_SESSION_SHAREDCTX;
1094 (*session)->host = lydict_insert_zc(server_opts.ctx, host);
1095 (*session)->port = port;
Michal Vasko9e036d52016-01-08 10:49:26 +01001096
1097 /* transport lock */
Michal Vasko1a38c862016-01-15 15:50:07 +01001098 (*session)->ti_lock = malloc(sizeof *(*session)->ti_lock);
1099 if (!(*session)->ti_lock) {
Michal Vasko9e036d52016-01-08 10:49:26 +01001100 ERRMEM;
Michal Vaskoc14e3c82016-01-11 16:14:30 +01001101 close(sock);
Michal Vasko1a38c862016-01-15 15:50:07 +01001102 ret = -1;
Michal Vasko9e036d52016-01-08 10:49:26 +01001103 goto fail;
1104 }
Michal Vasko1a38c862016-01-15 15:50:07 +01001105 pthread_mutex_init((*session)->ti_lock, NULL);
Michal Vasko9e036d52016-01-08 10:49:26 +01001106
Michal Vasko3031aae2016-01-27 16:07:18 +01001107 (*session)->ti_opts = server_opts.endpts[idx].ti_opts;
1108
Michal Vaskoc14e3c82016-01-11 16:14:30 +01001109 /* sock gets assigned to session or closed */
Radek Krejci53691be2016-02-22 13:58:37 +01001110#ifdef NC_ENABLED_SSH
Michal Vasko3031aae2016-01-27 16:07:18 +01001111 if (server_opts.binds[idx].ti == NC_TI_LIBSSH) {
Michal Vasko8f5270d2016-02-29 16:22:25 +01001112 ret = nc_accept_ssh_session(*session, sock);
Michal Vasko1a38c862016-01-15 15:50:07 +01001113 if (ret < 1) {
Michal Vasko9e036d52016-01-08 10:49:26 +01001114 goto fail;
1115 }
Michal Vasko3d865d22016-01-28 16:00:53 +01001116 } else
1117#endif
Radek Krejci53691be2016-02-22 13:58:37 +01001118#ifdef NC_ENABLED_TLS
Michal Vasko3d865d22016-01-28 16:00:53 +01001119 if (server_opts.binds[idx].ti == NC_TI_OPENSSL) {
Michal Vasko8f5270d2016-02-29 16:22:25 +01001120 ret = nc_accept_tls_session(*session, sock);
Michal Vasko1a38c862016-01-15 15:50:07 +01001121 if (ret < 1) {
Michal Vasko9e036d52016-01-08 10:49:26 +01001122 goto fail;
1123 }
Michal Vasko3d865d22016-01-28 16:00:53 +01001124 } else
1125#endif
1126 {
Michal Vasko9e036d52016-01-08 10:49:26 +01001127 ERRINT;
Michal Vaskoc14e3c82016-01-11 16:14:30 +01001128 close(sock);
Michal Vasko1a38c862016-01-15 15:50:07 +01001129 ret = -1;
Michal Vasko9e036d52016-01-08 10:49:26 +01001130 goto fail;
1131 }
1132
Michal Vasko51e514d2016-02-02 15:51:52 +01001133 /* WRITE UNLOCK */
Michal Vasko3031aae2016-01-27 16:07:18 +01001134 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
1135
Michal Vaskob48aa812016-01-18 14:13:09 +01001136 /* assign new SID atomically */
1137 /* LOCK */
1138 pthread_spin_lock(&server_opts.sid_lock);
1139 (*session)->id = server_opts.new_session_id++;
1140 /* UNLOCK */
1141 pthread_spin_unlock(&server_opts.sid_lock);
1142
Michal Vasko9e036d52016-01-08 10:49:26 +01001143 /* NETCONF handshake */
Michal Vasko1a38c862016-01-15 15:50:07 +01001144 if (nc_handshake(*session)) {
Michal Vasko3031aae2016-01-27 16:07:18 +01001145 nc_session_free(*session);
1146 *session = NULL;
1147 return -1;
Michal Vasko9e036d52016-01-08 10:49:26 +01001148 }
Michal Vasko1a38c862016-01-15 15:50:07 +01001149 (*session)->status = NC_STATUS_RUNNING;
Michal Vasko9e036d52016-01-08 10:49:26 +01001150
Michal Vasko1a38c862016-01-15 15:50:07 +01001151 return 1;
Michal Vasko9e036d52016-01-08 10:49:26 +01001152
1153fail:
Michal Vasko3031aae2016-01-27 16:07:18 +01001154 /* WRITE UNLOCK */
1155 pthread_rwlock_unlock(&server_opts.endpt_array_lock);
1156
Michal Vasko1a38c862016-01-15 15:50:07 +01001157 nc_session_free(*session);
1158 *session = NULL;
Michal Vaskoc61c4492016-01-25 11:13:34 +01001159 return ret;
Michal Vasko9e036d52016-01-08 10:49:26 +01001160}
1161
Michal Vasko3031aae2016-01-27 16:07:18 +01001162int
Michal Vasko8f5270d2016-02-29 16:22:25 +01001163nc_connect_callhome(const char *host, uint16_t port, NC_TRANSPORT_IMPL ti, struct nc_session **session)
Michal Vaskob05053d2016-01-22 16:12:06 +01001164{
1165 int sock, ret;
1166
Michal Vaskoc61c4492016-01-25 11:13:34 +01001167 if (!host || !port || !ti || !session) {
1168 ERRARG;
1169 return -1;
1170 }
1171
Michal Vaskob05053d2016-01-22 16:12:06 +01001172 sock = nc_sock_connect(host, port);
Michal Vaskoc61c4492016-01-25 11:13:34 +01001173 if (sock < 0) {
1174 return -1;
Michal Vaskob05053d2016-01-22 16:12:06 +01001175 }
1176
1177 *session = calloc(1, sizeof **session);
1178 if (!(*session)) {
1179 ERRMEM;
1180 close(sock);
1181 return -1;
1182 }
1183 (*session)->status = NC_STATUS_STARTING;
1184 (*session)->side = NC_SERVER;
1185 (*session)->ctx = server_opts.ctx;
1186 (*session)->flags = NC_SESSION_SHAREDCTX | NC_SESSION_CALLHOME;
Michal Vaskob05053d2016-01-22 16:12:06 +01001187 (*session)->host = lydict_insert(server_opts.ctx, host, 0);
Michal Vaskob05053d2016-01-22 16:12:06 +01001188 (*session)->port = port;
1189
1190 /* transport lock */
1191 (*session)->ti_lock = malloc(sizeof *(*session)->ti_lock);
1192 if (!(*session)->ti_lock) {
1193 ERRMEM;
1194 close(sock);
1195 ret = -1;
1196 goto fail;
1197 }
1198 pthread_mutex_init((*session)->ti_lock, NULL);
1199
1200 /* sock gets assigned to session or closed */
Radek Krejci53691be2016-02-22 13:58:37 +01001201#ifdef NC_ENABLED_SSH
Michal Vaskob05053d2016-01-22 16:12:06 +01001202 if (ti == NC_TI_LIBSSH) {
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001203 /* OPTS LOCK */
1204 pthread_mutex_lock(&ssh_ch_opts_lock);
1205
Michal Vasko3031aae2016-01-27 16:07:18 +01001206 (*session)->ti_opts = &ssh_ch_opts;
Michal Vasko8f5270d2016-02-29 16:22:25 +01001207 ret = nc_accept_ssh_session(*session, sock);
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001208 (*session)->ti_opts = NULL;
1209
1210 /* OPTS UNLOCK */
1211 pthread_mutex_unlock(&ssh_ch_opts_lock);
1212
Michal Vaskob05053d2016-01-22 16:12:06 +01001213 if (ret < 1) {
1214 goto fail;
1215 }
Michal Vasko3d865d22016-01-28 16:00:53 +01001216 } else
1217#endif
Radek Krejci53691be2016-02-22 13:58:37 +01001218#ifdef NC_ENABLED_TLS
Michal Vasko3d865d22016-01-28 16:00:53 +01001219 if (ti == NC_TI_OPENSSL) {
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001220 /* OPTS LOCK */
1221 pthread_mutex_lock(&tls_ch_opts_lock);
1222
Michal Vasko3031aae2016-01-27 16:07:18 +01001223 (*session)->ti_opts = &tls_ch_opts;
Michal Vasko8f5270d2016-02-29 16:22:25 +01001224 ret = nc_accept_tls_session(*session, sock);
Michal Vaskoc6b9c7b2016-01-28 11:10:08 +01001225 (*session)->ti_opts = NULL;
1226
1227 /* OPTS UNLOCK */
1228 pthread_mutex_unlock(&tls_ch_opts_lock);
1229
Michal Vaskob05053d2016-01-22 16:12:06 +01001230 if (ret < 1) {
1231 goto fail;
1232 }
Michal Vasko3d865d22016-01-28 16:00:53 +01001233 } else
1234#endif
1235 {
Michal Vaskob05053d2016-01-22 16:12:06 +01001236 ERRINT;
1237 close(sock);
1238 ret = -1;
1239 goto fail;
1240 }
1241
1242 /* assign new SID atomically */
1243 /* LOCK */
1244 pthread_spin_lock(&server_opts.sid_lock);
1245 (*session)->id = server_opts.new_session_id++;
1246 /* UNLOCK */
1247 pthread_spin_unlock(&server_opts.sid_lock);
1248
1249 /* NETCONF handshake */
1250 if (nc_handshake(*session)) {
1251 ret = -1;
1252 goto fail;
1253 }
1254 (*session)->status = NC_STATUS_RUNNING;
1255
1256 return 1;
1257
1258fail:
1259 nc_session_free(*session);
1260 *session = NULL;
Michal Vaskoc61c4492016-01-25 11:13:34 +01001261 return ret;
Michal Vaskob05053d2016-01-22 16:12:06 +01001262}
1263
Radek Krejci53691be2016-02-22 13:58:37 +01001264#endif /* NC_ENABLED_SSH || NC_ENABLED_TLS */