2019-06-18 14:28:30 +00:00
|
|
|
package xmpp
|
2016-01-06 15:51:12 +00:00
|
|
|
|
|
|
|
import (
|
|
|
|
"crypto/tls"
|
|
|
|
"encoding/xml"
|
|
|
|
"errors"
|
|
|
|
"fmt"
|
|
|
|
"io"
|
|
|
|
"net"
|
2019-06-26 15:14:52 +00:00
|
|
|
|
|
|
|
"gosrc.io/xmpp/stanza"
|
2016-01-06 15:51:12 +00:00
|
|
|
)
|
|
|
|
|
|
|
|
const xmppStreamOpen = "<?xml version='1.0'?><stream:stream to='%s' xmlns='%s' xmlns:stream='%s' version='1.0'>"
|
|
|
|
|
|
|
|
type Session struct {
|
|
|
|
// Session info
|
|
|
|
BindJid string // Jabber ID as provided by XMPP server
|
|
|
|
StreamId string
|
2019-06-26 15:14:52 +00:00
|
|
|
Features stanza.StreamFeatures
|
2016-01-06 15:51:12 +00:00
|
|
|
TlsEnabled bool
|
|
|
|
lastPacketId int
|
|
|
|
|
|
|
|
// read / write
|
2019-06-29 08:45:25 +00:00
|
|
|
streamLogger io.ReadWriter
|
|
|
|
decoder *xml.Decoder
|
2016-01-06 15:51:12 +00:00
|
|
|
|
|
|
|
// error management
|
|
|
|
err error
|
|
|
|
}
|
|
|
|
|
2018-09-26 14:25:04 +00:00
|
|
|
func NewSession(conn net.Conn, o Config) (net.Conn, *Session, error) {
|
2016-01-06 15:51:12 +00:00
|
|
|
s := new(Session)
|
|
|
|
s.init(conn, o)
|
|
|
|
|
|
|
|
// starttls
|
|
|
|
var tlsConn net.Conn
|
2019-06-07 13:56:41 +00:00
|
|
|
tlsConn = s.startTlsIfSupported(conn, o.parsedJid.Domain)
|
2016-01-06 16:19:16 +00:00
|
|
|
if s.TlsEnabled {
|
|
|
|
s.reset(conn, tlsConn, o)
|
|
|
|
}
|
2016-01-06 15:51:12 +00:00
|
|
|
|
2017-10-21 12:49:25 +00:00
|
|
|
if !s.TlsEnabled && !o.Insecure {
|
2019-06-07 13:23:23 +00:00
|
|
|
return nil, nil, NewConnError(errors.New("failed to negotiate TLS session"), true)
|
2017-10-21 12:49:25 +00:00
|
|
|
}
|
|
|
|
|
2016-01-06 15:51:12 +00:00
|
|
|
// auth
|
|
|
|
s.auth(o)
|
|
|
|
s.reset(tlsConn, tlsConn, o)
|
|
|
|
|
|
|
|
// bind resource and 'start' XMPP session
|
|
|
|
s.bind(o)
|
|
|
|
s.rfc3921Session(o)
|
|
|
|
|
|
|
|
return tlsConn, s, s.err
|
|
|
|
}
|
|
|
|
|
|
|
|
func (s *Session) PacketId() string {
|
|
|
|
s.lastPacketId++
|
|
|
|
return fmt.Sprintf("%x", s.lastPacketId)
|
|
|
|
}
|
|
|
|
|
2018-09-26 14:25:04 +00:00
|
|
|
func (s *Session) init(conn net.Conn, o Config) {
|
2019-06-29 08:45:25 +00:00
|
|
|
s.setStreamLogger(nil, conn, o)
|
2019-06-07 13:56:41 +00:00
|
|
|
s.Features = s.open(o.parsedJid.Domain)
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
|
2018-09-26 14:25:04 +00:00
|
|
|
func (s *Session) reset(conn net.Conn, newConn net.Conn, o Config) {
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2019-06-29 08:45:25 +00:00
|
|
|
s.setStreamLogger(conn, newConn, o)
|
2019-06-07 13:56:41 +00:00
|
|
|
s.Features = s.open(o.parsedJid.Domain)
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
|
2019-06-29 08:45:25 +00:00
|
|
|
func (s *Session) setStreamLogger(conn net.Conn, newConn net.Conn, o Config) {
|
2016-01-06 15:51:12 +00:00
|
|
|
if newConn != conn {
|
2019-06-29 08:45:25 +00:00
|
|
|
s.streamLogger = newStreamLogger(newConn, o.StreamLogger)
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
2019-06-29 08:45:25 +00:00
|
|
|
s.decoder = xml.NewDecoder(s.streamLogger)
|
2018-10-13 12:45:48 +00:00
|
|
|
s.decoder.CharsetReader = o.CharsetReader
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
|
2019-06-26 15:14:52 +00:00
|
|
|
func (s *Session) open(domain string) (f stanza.StreamFeatures) {
|
2016-01-06 15:51:12 +00:00
|
|
|
// Send stream open tag
|
2019-06-29 08:45:25 +00:00
|
|
|
if _, s.err = fmt.Fprintf(s.streamLogger, xmppStreamOpen, domain, stanza.NSClient, stanza.NSStream); s.err != nil {
|
2016-01-06 15:51:12 +00:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// Set xml decoder and extract streamID from reply
|
2019-06-26 15:14:52 +00:00
|
|
|
s.StreamId, s.err = stanza.InitStream(s.decoder) // TODO refactor / rename
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// extract stream features
|
|
|
|
if s.err = s.decoder.Decode(&f); s.err != nil {
|
|
|
|
s.err = errors.New("stream open decode features: " + s.err.Error())
|
|
|
|
}
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
func (s *Session) startTlsIfSupported(conn net.Conn, domain string) net.Conn {
|
|
|
|
if s.err != nil {
|
|
|
|
return conn
|
|
|
|
}
|
|
|
|
|
2019-06-10 14:27:52 +00:00
|
|
|
if _, ok := s.Features.DoesStartTLS(); ok {
|
2019-06-29 08:45:25 +00:00
|
|
|
fmt.Fprintf(s.streamLogger, "<starttls xmlns='urn:ietf:params:xml:ns:xmpp-tls'/>")
|
2016-01-06 15:51:12 +00:00
|
|
|
|
2019-06-26 15:14:52 +00:00
|
|
|
var k stanza.TLSProceed
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err = s.decoder.DecodeElement(&k, nil); s.err != nil {
|
|
|
|
s.err = errors.New("expecting starttls proceed: " + s.err.Error())
|
|
|
|
return conn
|
|
|
|
}
|
|
|
|
s.TlsEnabled = true
|
|
|
|
|
|
|
|
// TODO: add option to accept all TLS certificates: insecureSkipTlsVerify (DefaultTlsConfig.InsecureSkipVerify)
|
2019-06-26 15:14:52 +00:00
|
|
|
stanza.DefaultTlsConfig.ServerName = domain
|
|
|
|
tlsConn := tls.Client(conn, &stanza.DefaultTlsConfig)
|
2016-01-06 15:51:12 +00:00
|
|
|
// We convert existing connection to TLS
|
|
|
|
if s.err = tlsConn.Handshake(); s.err != nil {
|
|
|
|
return tlsConn
|
|
|
|
}
|
|
|
|
|
|
|
|
// We check that cert matches hostname
|
|
|
|
s.err = tlsConn.VerifyHostname(domain)
|
|
|
|
return tlsConn
|
|
|
|
}
|
|
|
|
|
|
|
|
// starttls is not supported => we do not upgrade the connection:
|
|
|
|
return conn
|
|
|
|
}
|
|
|
|
|
2018-09-26 14:25:04 +00:00
|
|
|
func (s *Session) auth(o Config) {
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2019-06-29 08:45:25 +00:00
|
|
|
s.err = authSASL(s.streamLogger, s.decoder, s.Features, o.parsedJid.Node, o.Password)
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
|
2018-09-26 14:25:04 +00:00
|
|
|
func (s *Session) bind(o Config) {
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// Send IQ message asking to bind to the local user name.
|
2019-06-07 13:56:41 +00:00
|
|
|
var resource = o.parsedJid.Resource
|
2016-01-06 15:51:12 +00:00
|
|
|
if resource != "" {
|
2019-06-29 08:45:25 +00:00
|
|
|
fmt.Fprintf(s.streamLogger, "<iq type='set' id='%s'><bind xmlns='%s'><resource>%s</resource></bind></iq>",
|
2019-06-26 15:14:52 +00:00
|
|
|
s.PacketId(), stanza.NSBind, resource)
|
2016-01-06 15:51:12 +00:00
|
|
|
} else {
|
2019-06-29 08:45:25 +00:00
|
|
|
fmt.Fprintf(s.streamLogger, "<iq type='set' id='%s'><bind xmlns='%s'/></iq>", s.PacketId(), stanza.NSBind)
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
|
2019-06-26 15:14:52 +00:00
|
|
|
var iq stanza.IQ
|
2016-02-15 14:22:51 +00:00
|
|
|
if s.err = s.decoder.Decode(&iq); s.err != nil {
|
|
|
|
s.err = errors.New("error decoding iq bind result: " + s.err.Error())
|
2016-01-06 15:51:12 +00:00
|
|
|
return
|
|
|
|
}
|
2016-02-15 14:22:51 +00:00
|
|
|
|
2018-01-15 11:28:34 +00:00
|
|
|
// TODO Check all elements
|
2019-06-19 08:21:57 +00:00
|
|
|
switch payload := iq.Payload.(type) {
|
2019-06-29 14:49:54 +00:00
|
|
|
case *stanza.Bind:
|
2016-02-15 14:22:51 +00:00
|
|
|
s.BindJid = payload.Jid // our local id (with possibly randomly generated resource
|
|
|
|
default:
|
|
|
|
s.err = errors.New("iq bind result missing")
|
|
|
|
}
|
|
|
|
|
2016-01-06 15:51:12 +00:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2019-06-29 14:49:54 +00:00
|
|
|
// After the bind, if the session is not optional (as per old RFC 3921), we send the session open iq.
|
2018-09-26 14:25:04 +00:00
|
|
|
func (s *Session) rfc3921Session(o Config) {
|
2016-01-06 15:51:12 +00:00
|
|
|
if s.err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2019-06-26 15:14:52 +00:00
|
|
|
var iq stanza.IQ
|
2019-06-29 15:39:19 +00:00
|
|
|
if !s.Features.Session.IsOptional() {
|
2019-06-29 08:45:25 +00:00
|
|
|
fmt.Fprintf(s.streamLogger, "<iq type='set' id='%s'><session xmlns='%s'/></iq>", s.PacketId(), stanza.NSSession)
|
2017-10-04 23:27:35 +00:00
|
|
|
if s.err = s.decoder.Decode(&iq); s.err != nil {
|
|
|
|
s.err = errors.New("expecting iq result after session open: " + s.err.Error())
|
|
|
|
return
|
|
|
|
}
|
2016-01-06 15:51:12 +00:00
|
|
|
}
|
|
|
|
}
|