28 #ifndef WEBSOCKETPP_TRANSPORT_SECURITY_TLS_HPP 29 #define WEBSOCKETPP_TRANSPORT_SECURITY_TLS_HPP 31 #include <websocketpp/transport/asio/security/base.hpp> 33 #include <websocketpp/uri.hpp> 35 #include <websocketpp/common/asio_ssl.hpp> 36 #include <websocketpp/common/asio.hpp> 37 #include <websocketpp/common/connection_hdl.hpp> 38 #include <websocketpp/common/functional.hpp> 39 #include <websocketpp/common/memory.hpp> 44 namespace websocketpp {
49 namespace tls_socket {
52 typedef lib::function<
void(connection_hdl,lib::asio::ssl::stream<
53 lib::asio::ip::tcp::socket>&)> socket_init_handler;
55 typedef lib::function<lib::shared_ptr<lib::asio::ssl::context>(connection_hdl)>
63 class connection :
public lib::enable_shared_from_this<connection> {
66 typedef connection type;
68 typedef lib::shared_ptr<type> ptr;
71 typedef lib::asio::ssl::stream<lib::asio::ip::tcp::socket> socket_type;
73 typedef lib::shared_ptr<socket_type> socket_ptr;
75 typedef lib::asio::io_service * io_service_ptr;
77 typedef lib::shared_ptr<lib::asio::io_service::strand> strand_ptr;
79 typedef lib::shared_ptr<lib::asio::ssl::context> context_ptr;
81 explicit connection() {
88 return shared_from_this();
95 bool is_secure()
const {
103 socket_type::lowest_layer_type & get_raw_socket() {
104 return m_socket->lowest_layer();
111 socket_type::next_layer_type & get_next_layer() {
112 return m_socket->next_layer();
119 socket_type & get_socket() {
131 void set_socket_init_handler(socket_init_handler h) {
132 m_socket_init_handler = h;
144 void set_tls_init_handler(tls_init_handler h) {
145 m_tls_init_handler = h;
158 std::string get_remote_endpoint(lib::error_code & ec)
const {
161 lib::asio::error_code aec;
162 lib::asio::ip::tcp::endpoint ep = m_socket->lowest_layer().remote_endpoint(aec);
165 ec = error::make_error_code(error::pass_through);
166 s <<
"Error getting remote endpoint: " << aec
167 <<
" (" << aec.message() <<
")";
170 ec = lib::error_code();
185 lib::error_code init_asio (io_service_ptr service, strand_ptr strand,
188 if (!m_tls_init_handler) {
189 return socket::make_error_code(socket::error::missing_tls_init_handler);
191 m_context = m_tls_init_handler(m_hdl);
194 return socket::make_error_code(socket::error::invalid_tls_context);
196 m_socket.reset(
new socket_type(*service, *m_context));
198 if (m_socket_init_handler) {
199 m_socket_init_handler(m_hdl, get_socket());
202 m_io_service = service;
204 m_is_server = is_server;
206 return lib::error_code();
221 void set_uri(uri_ptr u) {
234 void pre_init(init_handler callback) {
238 #if OPENSSL_VERSION_NUMBER >= 0x90812f
243 long res = SSL_set_tlsext_host_name(
244 get_socket().native_handle(), m_uri->get_host().c_str());
246 callback(socket::make_error_code(socket::error::tls_failed_sni_hostname));
251 callback(lib::error_code());
262 void post_init(init_handler callback) {
263 m_ec = socket::make_error_code(socket::error::tls_handshake_timeout);
267 m_socket->async_handshake(
268 get_handshake_type(),
269 m_strand->wrap(lib::bind(
270 &type::handle_init, get_shared(),
272 lib::placeholders::_1
276 m_socket->async_handshake(
277 get_handshake_type(),
279 &type::handle_init, get_shared(),
281 lib::placeholders::_1
294 void set_handle(connection_hdl hdl) {
298 void handle_init(init_handler callback,lib::asio::error_code
const & ec) {
300 m_ec = socket::make_error_code(socket::error::tls_handshake_failed);
302 m_ec = lib::error_code();
308 lib::error_code get_ec()
const {
321 lib::asio::error_code cancel_socket() {
322 lib::asio::error_code ec;
323 get_raw_socket().cancel(ec);
327 void async_shutdown(socket::shutdown_handler callback) {
329 m_socket->async_shutdown(m_strand->wrap(callback));
331 m_socket->async_shutdown(callback);
355 template <
typename ErrorCodeType>
357 lib::error_code translate_ec(ErrorCodeType ec) {
358 if (ec.category() == lib::asio::error::get_ssl_category()) {
361 return make_error_code(transport::error::tls_error);
365 return make_error_code(transport::error::pass_through);
372 lib::error_code translate_ec(lib::error_code ec) {
376 socket_type::handshake_type get_handshake_type() {
378 return lib::asio::ssl::stream_base::server;
380 return lib::asio::ssl::stream_base::client;
384 io_service_ptr m_io_service;
386 context_ptr m_context;
391 lib::error_code m_ec;
393 connection_hdl m_hdl;
394 socket_init_handler m_socket_init_handler;
395 tls_init_handler m_tls_init_handler;
406 typedef endpoint type;
409 typedef connection socket_con_type;
412 typedef socket_con_type::ptr socket_con_ptr;
414 explicit endpoint() {}
420 bool is_secure()
const {
432 void set_socket_init_handler(socket_init_handler h) {
433 m_socket_init_handler = h;
445 void set_tls_init_handler(tls_init_handler h) {
446 m_tls_init_handler = h;
458 lib::error_code init(socket_con_ptr scon) {
459 scon->set_socket_init_handler(m_socket_init_handler);
460 scon->set_tls_init_handler(m_tls_init_handler);
461 return lib::error_code();
465 socket_init_handler m_socket_init_handler;
466 tls_init_handler m_tls_init_handler;