2013-07-04 20:56:19 +00:00
/*
* ZeroTier One - Global Peer to Peer Ethernet
* Copyright ( C ) 2012 - 2013 ZeroTier Networks LLC
*
* This program is free software : you can redistribute it and / or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation , either version 3 of the License , or
* ( at your option ) any later version .
*
* This program is distributed in the hope that it will be useful ,
* but WITHOUT ANY WARRANTY ; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE . See the
* GNU General Public License for more details .
*
* You should have received a copy of the GNU General Public License
* along with this program . If not , see < http : //www.gnu.org/licenses/>.
*
* - -
*
* ZeroTier may be used and distributed under the terms of the GPLv3 , which
* are available at : http : //www.gnu.org/licenses/gpl-3.0.html
*
* If you would like to embed ZeroTier into a commercial application or
* redistribute it in a modified binary form , please contact ZeroTier Networks
* LLC . Start here : http : //www.zerotier.com/
*/
# include <stdio.h>
# include <stdlib.h>
# include <algorithm>
# include <utility>
# include <stdexcept>
# include "Switch.hpp"
# include "Node.hpp"
# include "EthernetTap.hpp"
# include "InetAddress.hpp"
# include "Topology.hpp"
# include "RuntimeEnvironment.hpp"
# include "Defaults.hpp"
# include "Peer.hpp"
# include "NodeConfig.hpp"
# include "Demarc.hpp"
2013-07-08 23:52:40 +00:00
# include "Filter.hpp"
2013-07-04 20:56:19 +00:00
# include "../version.h"
namespace ZeroTier {
Switch : : Switch ( const RuntimeEnvironment * renv ) :
_r ( renv )
{
}
Switch : : ~ Switch ( )
{
}
void Switch : : onRemotePacket ( Demarc : : Port localPort , const InetAddress & fromAddr , const Buffer < 4096 > & data )
{
try {
if ( data . size ( ) > ZT_PROTO_MIN_FRAGMENT_LENGTH ) {
2013-07-11 21:52:04 +00:00
if ( data [ ZT_PACKET_FRAGMENT_IDX_FRAGMENT_INDICATOR ] = = ZT_PACKET_FRAGMENT_INDICATOR )
2013-07-11 20:19:06 +00:00
_handleRemotePacketFragment ( localPort , fromAddr , data ) ;
2013-07-11 21:52:04 +00:00
else if ( data . size ( ) > ZT_PROTO_MIN_PACKET_LENGTH )
2013-07-11 20:19:06 +00:00
_handleRemotePacketHead ( localPort , fromAddr , data ) ;
2013-07-11 21:52:04 +00:00
else {
TRACE ( " dropped runt packet from %s " , fromAddr . toString ( ) . c_str ( ) ) ;
2013-07-04 20:56:19 +00:00
}
}
} catch ( std : : exception & ex ) {
TRACE ( " dropped packet from %s: %s " , fromAddr . toString ( ) . c_str ( ) , ex . what ( ) ) ;
} catch ( . . . ) {
2013-07-11 20:19:06 +00:00
TRACE ( " dropped packet from %s: unknown exception " , fromAddr . toString ( ) . c_str ( ) ) ;
2013-07-04 20:56:19 +00:00
}
}
void Switch : : onLocalEthernet ( const SharedPtr < Network > & network , const MAC & from , const MAC & to , unsigned int etherType , const Buffer < 4096 > & data )
{
if ( from ! = network - > tap ( ) . mac ( ) ) {
2013-07-11 20:19:06 +00:00
LOG ( " ignored tap: %s -> %s %s (bridging is not (yet?) supported) " , from . toString ( ) . c_str ( ) , to . toString ( ) . c_str ( ) , Filter : : etherTypeName ( etherType ) ) ;
2013-07-04 20:56:19 +00:00
return ;
}
if ( to = = network - > tap ( ) . mac ( ) ) {
// Right thing to do? Will this ever happen?
TRACE ( " weird OS behavior: ethernet frame received from self, reflecting " ) ;
network - > tap ( ) . put ( from , to , etherType , data . data ( ) , data . size ( ) ) ;
return ;
}
if ( ( etherType ! = ZT_ETHERTYPE_ARP ) & & ( etherType ! = ZT_ETHERTYPE_IPV4 ) & & ( etherType ! = ZT_ETHERTYPE_IPV6 ) ) {
2013-07-08 23:52:40 +00:00
LOG ( " ignored tap: %s -> %s %s (not a supported etherType) " , from . toString ( ) . c_str ( ) , to . toString ( ) . c_str ( ) , Filter : : etherTypeName ( etherType ) ) ;
2013-07-04 20:56:19 +00:00
return ;
}
if ( to . isMulticast ( ) ) {
MulticastGroup mg ( to , 0 ) ;
2013-07-06 19:56:12 +00:00
if ( to . isBroadcast ( ) ) {
// Cram IPv4 IP into ADI field to make IPv4 ARP broadcast channel specific and scalable
if ( ( etherType = = ZT_ETHERTYPE_ARP ) & & ( data . size ( ) = = 28 ) & & ( data [ 2 ] = = 0x08 ) & & ( data [ 3 ] = = 0x00 ) & & ( data [ 4 ] = = 6 ) & & ( data [ 5 ] = = 4 ) & & ( data [ 7 ] = = 0x01 ) )
mg = MulticastGroup : : deriveMulticastGroupForAddressResolution ( InetAddress ( data . field ( 24 , 4 ) , 4 , 0 ) ) ;
}
2013-07-04 20:56:19 +00:00
2013-07-11 20:19:06 +00:00
Multicaster : : MulticastBloomFilter newbf ;
SharedPtr < Peer > propPeers [ ZT_MULTICAST_PROPAGATION_BREADTH ] ;
unsigned int np = _multicaster . pickNextPropagationPeers (
* ( _r - > topology ) ,
network - > id ( ) ,
mg ,
_r - > identity . address ( ) ,
Address ( ) ,
newbf ,
ZT_MULTICAST_PROPAGATION_BREADTH ,
propPeers ,
Utils : : now ( ) ) ;
if ( ! np )
return ;
2013-07-11 21:52:04 +00:00
std : : string signature ( Multicaster : : signMulticastPacket ( _r - > identity , network - > id ( ) , from , mg , etherType , data . data ( ) , data . size ( ) ) ) ;
2013-07-11 20:19:06 +00:00
if ( ! signature . length ( ) ) {
TRACE ( " failure signing multicast message! " ) ;
return ;
}
Packet outpTmpl ( propPeers [ 0 ] - > address ( ) , _r - > identity . address ( ) , Packet : : VERB_MULTICAST_FRAME ) ;
outpTmpl . append ( ( uint8_t ) 0 ) ;
outpTmpl . append ( ( uint64_t ) network - > id ( ) ) ;
outpTmpl . append ( _r - > identity . address ( ) . data ( ) , ZT_ADDRESS_LENGTH ) ;
outpTmpl . append ( from . data , 6 ) ;
outpTmpl . append ( mg . mac ( ) . data , 6 ) ;
outpTmpl . append ( ( uint32_t ) mg . adi ( ) ) ;
2013-07-11 21:52:04 +00:00
outpTmpl . append ( newbf . data ( ) , ZT_PROTO_VERB_MULTICAST_FRAME_BLOOM_FILTER_SIZE_BYTES ) ;
2013-07-11 20:19:06 +00:00
outpTmpl . append ( ( uint8_t ) 0 ) ; // 0 hops
outpTmpl . append ( ( uint16_t ) etherType ) ;
2013-07-11 21:52:04 +00:00
outpTmpl . append ( ( uint16_t ) data . size ( ) ) ;
2013-07-11 20:19:06 +00:00
outpTmpl . append ( ( uint16_t ) signature . length ( ) ) ;
2013-07-11 21:52:04 +00:00
outpTmpl . append ( data . data ( ) , data . size ( ) ) ;
2013-07-11 20:19:06 +00:00
outpTmpl . append ( signature . data ( ) , signature . length ( ) ) ;
outpTmpl . compress ( ) ;
send ( outpTmpl , true ) ;
for ( unsigned int i = 1 ; i < np ; + + i ) {
outpTmpl . newInitializationVector ( ) ;
outpTmpl . setDestination ( propPeers [ i ] - > address ( ) ) ;
send ( outpTmpl , true ) ;
}
2013-07-04 20:56:19 +00:00
} else if ( to . isZeroTier ( ) ) {
// Simple unicast frame from us to another node
Address toZT ( to . data + 1 ) ;
if ( network - > isAllowed ( toZT ) ) {
Packet outp ( toZT , _r - > identity . address ( ) , Packet : : VERB_FRAME ) ;
outp . append ( network - > id ( ) ) ;
outp . append ( ( uint16_t ) etherType ) ;
outp . append ( data ) ;
outp . compress ( ) ;
send ( outp , true ) ;
} else {
2013-07-08 23:52:40 +00:00
TRACE ( " UNICAST: %s -> %s %s (dropped, destination not a member of closed network %llu) " , from . toString ( ) . c_str ( ) , to . toString ( ) . c_str ( ) , Filter : : etherTypeName ( etherType ) , network - > id ( ) ) ;
2013-07-04 20:56:19 +00:00
}
} else {
2013-07-08 23:52:40 +00:00
TRACE ( " UNICAST: %s -> %s %s (dropped, destination MAC not ZeroTier) " , from . toString ( ) . c_str ( ) , to . toString ( ) . c_str ( ) , Filter : : etherTypeName ( etherType ) ) ;
2013-07-04 20:56:19 +00:00
}
}
void Switch : : send ( const Packet & packet , bool encrypt )
{
//TRACE("%.16llx %s -> %s (size: %u) (enc: %s)",packet.packetId(),Packet::verbString(packet.verb()),packet.destination().toString().c_str(),packet.size(),(encrypt ? "yes" : "no"));
2013-07-11 20:19:06 +00:00
if ( ! _trySend ( packet , encrypt ) ) {
Mutex : : Lock _l ( _txQueue_m ) ;
2013-07-11 21:52:04 +00:00
_txQueue . insert ( std : : pair < Address , TXQueueEntry > ( packet . destination ( ) , TXQueueEntry ( Utils : : now ( ) , packet , encrypt ) ) ) ;
2013-07-04 20:56:19 +00:00
}
}
void Switch : : sendHELLO ( const Address & dest )
{
Packet outp ( dest , _r - > identity . address ( ) , Packet : : VERB_HELLO ) ;
outp . append ( ( unsigned char ) ZT_PROTO_VERSION ) ;
outp . append ( ( unsigned char ) ZEROTIER_ONE_VERSION_MAJOR ) ;
outp . append ( ( unsigned char ) ZEROTIER_ONE_VERSION_MINOR ) ;
outp . append ( ( uint16_t ) ZEROTIER_ONE_VERSION_REVISION ) ;
outp . append ( Utils : : now ( ) ) ;
_r - > identity . serialize ( outp , false ) ;
send ( outp , false ) ;
}
2013-07-06 20:20:35 +00:00
bool Switch : : sendHELLO ( const SharedPtr < Peer > & dest , Demarc : : Port localPort , const InetAddress & addr )
{
Packet outp ( dest - > address ( ) , _r - > identity . address ( ) , Packet : : VERB_HELLO ) ;
outp . append ( ( unsigned char ) ZT_PROTO_VERSION ) ;
outp . append ( ( unsigned char ) ZEROTIER_ONE_VERSION_MAJOR ) ;
outp . append ( ( unsigned char ) ZEROTIER_ONE_VERSION_MINOR ) ;
outp . append ( ( uint16_t ) ZEROTIER_ONE_VERSION_REVISION ) ;
outp . append ( Utils : : now ( ) ) ;
_r - > identity . serialize ( outp , false ) ;
outp . hmacSet ( dest - > macKey ( ) ) ;
return _r - > demarc - > send ( localPort , addr , outp . data ( ) , outp . size ( ) , - 1 ) ;
}
2013-07-04 20:56:19 +00:00
bool Switch : : unite ( const Address & p1 , const Address & p2 , bool force )
{
SharedPtr < Peer > p1p = _r - > topology - > getPeer ( p1 ) ;
if ( ! p1p )
return false ;
SharedPtr < Peer > p2p = _r - > topology - > getPeer ( p2 ) ;
if ( ! p2p )
return false ;
uint64_t now = Utils : : now ( ) ;
std : : pair < InetAddress , InetAddress > cg ( Peer : : findCommonGround ( * p1p , * p2p , now ) ) ;
if ( ! ( cg . first ) )
return false ;
// Addresses are sorted in key for last unite attempt map for order
// invariant lookup: (p1,p2) == (p2,p1)
Array < Address , 2 > uniteKey ;
if ( p1 > = p2 ) {
uniteKey [ 0 ] = p2 ;
uniteKey [ 1 ] = p1 ;
} else {
uniteKey [ 0 ] = p1 ;
uniteKey [ 1 ] = p2 ;
}
{
Mutex : : Lock _l ( _lastUniteAttempt_m ) ;
std : : map < Array < Address , 2 > , uint64_t > : : const_iterator e ( _lastUniteAttempt . find ( uniteKey ) ) ;
if ( ( ! force ) & & ( e ! = _lastUniteAttempt . end ( ) ) & & ( ( now - e - > second ) < ZT_MIN_UNITE_INTERVAL ) )
return false ;
else _lastUniteAttempt [ uniteKey ] = now ;
}
TRACE ( " unite: %s(%s) <> %s(%s) " , p1 . toString ( ) . c_str ( ) , cg . second . toString ( ) . c_str ( ) , p2 . toString ( ) . c_str ( ) , cg . first . toString ( ) . c_str ( ) ) ;
{ // tell p1 where to find p2
Packet outp ( p1 , _r - > identity . address ( ) , Packet : : VERB_RENDEZVOUS ) ;
outp . append ( p2 . data ( ) , ZT_ADDRESS_LENGTH ) ;
outp . append ( ( uint16_t ) cg . first . port ( ) ) ;
if ( cg . first . isV6 ( ) ) {
outp . append ( ( unsigned char ) 16 ) ;
outp . append ( cg . first . rawIpData ( ) , 16 ) ;
} else {
outp . append ( ( unsigned char ) 4 ) ;
outp . append ( cg . first . rawIpData ( ) , 4 ) ;
}
outp . encrypt ( p1p - > cryptKey ( ) ) ;
outp . hmacSet ( p1p - > macKey ( ) ) ;
p1p - > send ( _r , outp . data ( ) , outp . size ( ) , false , Packet : : VERB_RENDEZVOUS , now ) ;
}
{ // tell p2 where to find p1
Packet outp ( p2 , _r - > identity . address ( ) , Packet : : VERB_RENDEZVOUS ) ;
outp . append ( p1 . data ( ) , ZT_ADDRESS_LENGTH ) ;
outp . append ( ( uint16_t ) cg . second . port ( ) ) ;
if ( cg . second . isV6 ( ) ) {
outp . append ( ( unsigned char ) 16 ) ;
outp . append ( cg . second . rawIpData ( ) , 16 ) ;
} else {
outp . append ( ( unsigned char ) 4 ) ;
outp . append ( cg . second . rawIpData ( ) , 4 ) ;
}
outp . encrypt ( p2p - > cryptKey ( ) ) ;
outp . hmacSet ( p2p - > macKey ( ) ) ;
p2p - > send ( _r , outp . data ( ) , outp . size ( ) , false , Packet : : VERB_RENDEZVOUS , now ) ;
}
return true ;
}
unsigned long Switch : : doTimerTasks ( )
{
unsigned long nextDelay = ~ ( ( unsigned long ) 0 ) ; // big number, caller will cap return value
uint64_t now = Utils : : now ( ) ;
{
Mutex : : Lock _l ( _rendezvousQueue_m ) ;
for ( std : : map < Address , RendezvousQueueEntry > : : iterator i ( _rendezvousQueue . begin ( ) ) ; i ! = _rendezvousQueue . end ( ) ; ) {
if ( now > = i - > second . fireAtTime ) {
SharedPtr < Peer > withPeer = _r - > topology - > getPeer ( i - > first ) ;
if ( withPeer ) {
2013-07-06 20:20:35 +00:00
TRACE ( " sending NAT-T HELLO to %s(%s) " , i - > first . toString ( ) . c_str ( ) , i - > second . inaddr . toString ( ) . c_str ( ) ) ;
sendHELLO ( withPeer , i - > second . localPort , i - > second . inaddr ) ;
2013-07-04 20:56:19 +00:00
}
_rendezvousQueue . erase ( i + + ) ;
} else {
nextDelay = std : : min ( nextDelay , ( unsigned long ) ( i - > second . fireAtTime - now ) ) ;
+ + i ;
}
}
}
{
Mutex : : Lock _l ( _outstandingWhoisRequests_m ) ;
for ( std : : map < Address , WhoisRequest > : : iterator i ( _outstandingWhoisRequests . begin ( ) ) ; i ! = _outstandingWhoisRequests . end ( ) ; ) {
unsigned long since = ( unsigned long ) ( now - i - > second . lastSent ) ;
if ( since > = ZT_WHOIS_RETRY_DELAY ) {
if ( i - > second . retries > = ZT_MAX_WHOIS_RETRIES ) {
TRACE ( " WHOIS %s timed out " , i - > first . toString ( ) . c_str ( ) ) ;
_outstandingWhoisRequests . erase ( i + + ) ;
continue ;
} else {
i - > second . lastSent = now ;
i - > second . peersConsulted [ i - > second . retries ] = _sendWhoisRequest ( i - > first , i - > second . peersConsulted , i - > second . retries ) ;
+ + i - > second . retries ;
TRACE ( " WHOIS %s (retry %u) " , i - > first . toString ( ) . c_str ( ) , i - > second . retries ) ;
nextDelay = std : : min ( nextDelay , ( unsigned long ) ZT_WHOIS_RETRY_DELAY ) ;
}
} else nextDelay = std : : min ( nextDelay , ZT_WHOIS_RETRY_DELAY - since ) ;
+ + i ;
}
}
{
Mutex : : Lock _l ( _txQueue_m ) ;
2013-07-11 21:52:04 +00:00
for ( std : : multimap < Address , TXQueueEntry > : : iterator i ( _txQueue . begin ( ) ) ; i ! = _txQueue . end ( ) ; ) {
2013-07-11 20:19:06 +00:00
if ( _trySend ( i - > second . packet , i - > second . encrypt ) )
2013-07-04 20:56:19 +00:00
_txQueue . erase ( i + + ) ;
else if ( ( now - i - > second . creationTime ) > ZT_TRANSMIT_QUEUE_TIMEOUT ) {
TRACE ( " TX %s -> %s timed out " , i - > second . packet . source ( ) . toString ( ) . c_str ( ) , i - > second . packet . destination ( ) . toString ( ) . c_str ( ) ) ;
_txQueue . erase ( i + + ) ;
} else + + i ;
}
}
2013-07-11 21:52:04 +00:00
2013-07-04 20:56:19 +00:00
{
Mutex : : Lock _l ( _rxQueue_m ) ;
2013-07-11 21:52:04 +00:00
for ( std : : multimap < Address , SharedPtr < PacketDecoder > > : : iterator i ( _rxQueue . begin ( ) ) ; i ! = _rxQueue . end ( ) ; ) {
if ( ( now - i - > second - > receiveTime ( ) ) > ZT_RECEIVE_QUEUE_TIMEOUT ) {
TRACE ( " RX %s -> %s timed out " , i - > second - > source ( ) . toString ( ) . c_str ( ) , i - > second - > destination ( ) . toString ( ) . c_str ( ) ) ;
2013-07-04 20:56:19 +00:00
_rxQueue . erase ( i + + ) ;
} else + + i ;
}
}
{
Mutex : : Lock _l ( _defragQueue_m ) ;
for ( std : : map < uint64_t , DefragQueueEntry > : : iterator i ( _defragQueue . begin ( ) ) ; i ! = _defragQueue . end ( ) ; ) {
if ( ( now - i - > second . creationTime ) > ZT_FRAGMENTED_PACKET_RECEIVE_TIMEOUT ) {
TRACE ( " incomplete fragmented packet %.16llx timed out, fragments discarded " , i - > first ) ;
_defragQueue . erase ( i + + ) ;
} else + + i ;
}
}
2013-07-11 21:52:04 +00:00
return std : : max ( nextDelay , ( unsigned long ) 10 ) ; // minimum delay
2013-07-04 20:56:19 +00:00
}
void Switch : : announceMulticastGroups ( const std : : map < SharedPtr < Network > , std : : set < MulticastGroup > > & allMemberships )
{
std : : vector < SharedPtr < Peer > > directPeers ;
_r - > topology - > eachPeer ( Topology : : CollectPeersWithActiveDirectPath ( directPeers ) ) ;
# ifdef ZT_TRACE
unsigned int totalMulticastGroups = 0 ;
for ( std : : map < SharedPtr < Network > , std : : set < MulticastGroup > > : : const_iterator i ( allMemberships . begin ( ) ) ; i ! = allMemberships . end ( ) ; + + i )
totalMulticastGroups + = ( unsigned int ) i - > second . size ( ) ;
TRACE ( " announcing %u multicast groups for %u networks to %u peers " , totalMulticastGroups , ( unsigned int ) allMemberships . size ( ) , ( unsigned int ) directPeers . size ( ) ) ;
# endif
for ( std : : vector < SharedPtr < Peer > > : : iterator p ( directPeers . begin ( ) ) ; p ! = directPeers . end ( ) ; + + p ) {
Packet outp ( ( * p ) - > address ( ) , _r - > identity . address ( ) , Packet : : VERB_MULTICAST_LIKE ) ;
for ( std : : map < SharedPtr < Network > , std : : set < MulticastGroup > > : : const_iterator nwmgs ( allMemberships . begin ( ) ) ; nwmgs ! = allMemberships . end ( ) ; + + nwmgs ) {
if ( ( nwmgs - > first - > open ( ) ) | | ( _r - > topology - > isSupernode ( ( * p ) - > address ( ) ) ) | | ( nwmgs - > first - > isMember ( ( * p ) - > address ( ) ) ) ) {
for ( std : : set < MulticastGroup > : : iterator mg ( nwmgs - > second . begin ( ) ) ; mg ! = nwmgs - > second . end ( ) ; + + mg ) {
if ( ( outp . size ( ) + 18 ) > ZT_UDP_DEFAULT_PAYLOAD_MTU ) {
send ( outp , true ) ;
outp . reset ( ( * p ) - > address ( ) , _r - > identity . address ( ) , Packet : : VERB_MULTICAST_LIKE ) ;
}
outp . append ( ( uint64_t ) nwmgs - > first - > id ( ) ) ;
outp . append ( mg - > mac ( ) . data , 6 ) ;
outp . append ( ( uint32_t ) mg - > adi ( ) ) ;
}
}
}
if ( outp . size ( ) > ZT_PROTO_MIN_PACKET_LENGTH )
send ( outp , true ) ;
}
}
2013-07-11 21:52:04 +00:00
void Switch : : requestWhois ( const Address & addr )
2013-07-11 20:19:06 +00:00
{
TRACE ( " requesting WHOIS for %s " , addr . toString ( ) . c_str ( ) ) ;
2013-07-11 21:52:04 +00:00
{
Mutex : : Lock _l ( _outstandingWhoisRequests_m ) ;
std : : pair < std : : map < Address , WhoisRequest > : : iterator , bool > entry ( _outstandingWhoisRequests . insert ( std : : pair < Address , WhoisRequest > ( addr , WhoisRequest ( ) ) ) ) ;
entry . first - > second . lastSent = Utils : : now ( ) ;
entry . first - > second . retries = 0 ; // reset retry count if entry already existed
}
2013-07-11 20:19:06 +00:00
_sendWhoisRequest ( addr , ( const Address * ) 0 , 0 ) ;
}
2013-07-04 20:56:19 +00:00
void Switch : : _CBaddPeerFromHello ( void * arg , const SharedPtr < Peer > & p , Topology : : PeerVerifyResult result )
{
_CBaddPeerFromHello_Data * req = ( _CBaddPeerFromHello_Data * ) arg ;
const RuntimeEnvironment * _r = req - > parent - > _r ;
switch ( result ) {
case Topology : : PEER_VERIFY_ACCEPTED_NEW :
case Topology : : PEER_VERIFY_ACCEPTED_ALREADY_HAVE :
case Topology : : PEER_VERIFY_ACCEPTED_DISPLACED_INVALID_ADDRESS : {
2013-07-11 21:52:04 +00:00
req - > parent - > _finishWhoisRequest ( p ) ;
2013-07-11 20:19:06 +00:00
2013-07-04 20:56:19 +00:00
Packet outp ( req - > source , _r - > identity . address ( ) , Packet : : VERB_OK ) ;
outp . append ( ( unsigned char ) Packet : : VERB_HELLO ) ;
outp . append ( req - > helloPacketId ) ;
outp . append ( req - > helloTimestamp ) ;
outp . encrypt ( p - > cryptKey ( ) ) ;
outp . hmacSet ( p - > macKey ( ) ) ;
req - > parent - > _r - > demarc - > send ( req - > localPort , req - > fromAddr , outp . data ( ) , outp . size ( ) , - 1 ) ;
} break ;
2013-07-11 20:19:06 +00:00
2013-07-04 20:56:19 +00:00
case Topology : : PEER_VERIFY_REJECTED_INVALID_IDENTITY : {
Packet outp ( req - > source , _r - > identity . address ( ) , Packet : : VERB_ERROR ) ;
outp . append ( ( unsigned char ) Packet : : VERB_HELLO ) ;
outp . append ( req - > helloPacketId ) ;
outp . append ( ( unsigned char ) Packet : : ERROR_IDENTITY_INVALID ) ;
outp . encrypt ( p - > cryptKey ( ) ) ;
outp . hmacSet ( p - > macKey ( ) ) ;
req - > parent - > _r - > demarc - > send ( req - > localPort , req - > fromAddr , outp . data ( ) , outp . size ( ) , - 1 ) ;
} break ;
2013-07-11 20:19:06 +00:00
2013-07-04 20:56:19 +00:00
case Topology : : PEER_VERIFY_REJECTED_DUPLICATE :
case Topology : : PEER_VERIFY_REJECTED_DUPLICATE_TRIAGED : {
Packet outp ( req - > source , _r - > identity . address ( ) , Packet : : VERB_ERROR ) ;
outp . append ( ( unsigned char ) Packet : : VERB_HELLO ) ;
outp . append ( req - > helloPacketId ) ;
outp . append ( ( unsigned char ) Packet : : ERROR_IDENTITY_COLLISION ) ;
outp . encrypt ( p - > cryptKey ( ) ) ;
outp . hmacSet ( p - > macKey ( ) ) ;
req - > parent - > _r - > demarc - > send ( req - > localPort , req - > fromAddr , outp . data ( ) , outp . size ( ) , - 1 ) ;
} break ;
}
delete req ;
}
void Switch : : _CBaddPeerFromWhois ( void * arg , const SharedPtr < Peer > & p , Topology : : PeerVerifyResult result )
{
switch ( result ) {
case Topology : : PEER_VERIFY_ACCEPTED_NEW :
case Topology : : PEER_VERIFY_ACCEPTED_ALREADY_HAVE :
case Topology : : PEER_VERIFY_ACCEPTED_DISPLACED_INVALID_ADDRESS :
2013-07-11 20:19:06 +00:00
( ( Switch * ) arg ) - > _finishWhoisRequest ( p ) ;
2013-07-04 20:56:19 +00:00
break ;
default :
break ;
}
}
2013-07-11 21:52:04 +00:00
void Switch : : _finishWhoisRequest ( const SharedPtr < Peer > & peer )
2013-07-04 20:56:19 +00:00
{
2013-07-11 21:52:04 +00:00
{
Mutex : : Lock _l ( _outstandingWhoisRequests_m ) ;
_outstandingWhoisRequests . erase ( peer - > address ( ) ) ;
}
{
Mutex : : Lock _l ( _rxQueue_m ) ;
std : : pair < std : : multimap < Address , SharedPtr < PacketDecoder > > : : iterator , std : : multimap < Address , SharedPtr < PacketDecoder > > : : iterator > waitingRxQueueItems ( _rxQueue . equal_range ( peer - > address ( ) ) ) ;
for ( std : : multimap < Address , SharedPtr < PacketDecoder > > : : iterator rxi ( waitingRxQueueItems . first ) ; rxi ! = waitingRxQueueItems . second ; ) {
if ( rxi - > second - > tryDecode ( _r ) )
_rxQueue . erase ( rxi + + ) ;
else + + rxi ;
}
}
{
Mutex : : Lock _l ( _txQueue_m ) ;
std : : pair < std : : multimap < Address , TXQueueEntry > : : iterator , std : : multimap < Address , TXQueueEntry > : : iterator > waitingTxQueueItems ( _txQueue . equal_range ( peer - > address ( ) ) ) ;
for ( std : : multimap < Address , TXQueueEntry > : : iterator txi ( waitingTxQueueItems . first ) ; txi ! = waitingTxQueueItems . second ; ) {
if ( _trySend ( txi - > second . packet , txi - > second . encrypt ) )
_txQueue . erase ( txi + + ) ;
else + + txi ;
2013-07-11 20:19:06 +00:00
}
}
}
2013-07-04 20:56:19 +00:00
2013-07-11 20:19:06 +00:00
void Switch : : _handleRemotePacketFragment ( Demarc : : Port localPort , const InetAddress & fromAddr , const Buffer < 4096 > & data )
{
Packet : : Fragment fragment ( data ) ;
2013-07-04 20:56:19 +00:00
2013-07-11 20:19:06 +00:00
Address destination ( fragment . destination ( ) ) ;
if ( destination ! = _r - > identity . address ( ) ) {
// Fragment is not for us, so try to relay it
if ( fragment . hops ( ) < ZT_RELAY_MAX_HOPS ) {
fragment . incrementHops ( ) ;
SharedPtr < Peer > relayTo = _r - > topology - > getPeer ( destination ) ;
if ( ( ! relayTo ) | | ( ! relayTo - > send ( _r , fragment . data ( ) , fragment . size ( ) , true , Packet : : VERB_NOP , Utils : : now ( ) ) ) ) {
relayTo = _r - > topology - > getBestSupernode ( ) ;
if ( relayTo )
relayTo - > send ( _r , fragment . data ( ) , fragment . size ( ) , true , Packet : : VERB_NOP , Utils : : now ( ) ) ;
}
} else {
TRACE ( " dropped relay [fragment](%s) -> %s, max hops exceeded " , fromAddr . toString ( ) . c_str ( ) , destination . toString ( ) . c_str ( ) ) ;
}
} else {
// Fragment looks like ours
uint64_t pid = fragment . packetId ( ) ;
unsigned int fno = fragment . fragmentNumber ( ) ;
unsigned int tf = fragment . totalFragments ( ) ;
if ( ( tf < = ZT_MAX_PACKET_FRAGMENTS ) & & ( fno < ZT_MAX_PACKET_FRAGMENTS ) & & ( fno > 0 ) & & ( tf > 1 ) ) {
// Fragment appears basically sane. Its fragment number must be
// 1 or more, since a Packet with fragmented bit set is fragment 0.
// Total fragments must be more than 1, otherwise why are we
// seeing a Packet::Fragment?
Mutex : : Lock _l ( _defragQueue_m ) ;
std : : map < uint64_t , DefragQueueEntry > : : iterator dqe ( _defragQueue . find ( pid ) ) ;
if ( dqe = = _defragQueue . end ( ) ) {
// We received a Packet::Fragment without its head, so queue it and wait
DefragQueueEntry & dq = _defragQueue [ pid ] ;
dq . creationTime = Utils : : now ( ) ;
dq . frags [ fno - 1 ] = fragment ;
dq . totalFragments = tf ; // total fragment count is known
dq . haveFragments = 1 < < fno ; // we have only this fragment
//TRACE("fragment (%u/%u) of %.16llx from %s",fno + 1,tf,pid,fromAddr.toString().c_str());
} else if ( ! ( dqe - > second . haveFragments & ( 1 < < fno ) ) ) {
// We have other fragments and maybe the head, so add this one and check
dqe - > second . frags [ fno - 1 ] = fragment ;
dqe - > second . totalFragments = tf ;
//TRACE("fragment (%u/%u) of %.16llx from %s",fno + 1,tf,pid,fromAddr.toString().c_str());
if ( Utils : : countBits ( dqe - > second . haveFragments | = ( 1 < < fno ) ) = = tf ) {
// We have all fragments -- assemble and process full Packet
//TRACE("packet %.16llx is complete, assembling and processing...",pid);
2013-07-11 21:52:04 +00:00
SharedPtr < PacketDecoder > packet ( dqe - > second . frag0 ) ;
2013-07-11 20:19:06 +00:00
for ( unsigned int f = 1 ; f < tf ; + + f )
2013-07-11 21:52:04 +00:00
packet - > append ( dqe - > second . frags [ f - 1 ] . payload ( ) , dqe - > second . frags [ f - 1 ] . payloadLength ( ) ) ;
2013-07-11 20:19:06 +00:00
_defragQueue . erase ( dqe ) ;
2013-07-11 21:52:04 +00:00
if ( ! packet - > tryDecode ( _r ) ) {
Mutex : : Lock _l ( _rxQueue_m ) ;
_rxQueue . insert ( std : : pair < Address , SharedPtr < PacketDecoder > > ( destination , packet ) ) ;
}
2013-07-11 20:19:06 +00:00
}
} // else this is a duplicate fragment, ignore
}
2013-07-11 02:58:43 +00:00
}
2013-07-11 20:19:06 +00:00
}
2013-07-11 21:52:04 +00:00
void Switch : : _handleRemotePacketHead ( Demarc : : Port localPort , const InetAddress & fromAddr , const Buffer < 4096 > & data )
2013-07-11 20:19:06 +00:00
{
2013-07-11 21:52:04 +00:00
SharedPtr < PacketDecoder > packet ( new PacketDecoder ( data , localPort , fromAddr ) ) ;
Address destination ( packet - > destination ( ) ) ;
2013-07-11 20:19:06 +00:00
if ( destination ! = _r - > identity . address ( ) ) {
// Packet is not for us, so try to relay it
2013-07-11 21:52:04 +00:00
if ( packet - > hops ( ) < ZT_RELAY_MAX_HOPS ) {
packet - > incrementHops ( ) ;
2013-07-11 20:19:06 +00:00
SharedPtr < Peer > relayTo = _r - > topology - > getPeer ( destination ) ;
2013-07-11 21:52:04 +00:00
if ( ( relayTo ) & & ( relayTo - > send ( _r , packet - > data ( ) , packet - > size ( ) , true , Packet : : VERB_NOP , Utils : : now ( ) ) ) ) {
unite ( packet - > source ( ) , destination , false ) ; // periodically try to get them to talk directly
2013-07-11 20:19:06 +00:00
} else {
relayTo = _r - > topology - > getBestSupernode ( ) ;
if ( relayTo )
2013-07-11 21:52:04 +00:00
relayTo - > send ( _r , packet - > data ( ) , packet - > size ( ) , true , Packet : : VERB_NOP , Utils : : now ( ) ) ;
2013-07-11 20:19:06 +00:00
}
} else {
2013-07-11 21:52:04 +00:00
TRACE ( " dropped relay %s(%s) -> %s, max hops exceeded " , packet - > source ( ) . toString ( ) . c_str ( ) , fromAddr . toString ( ) . c_str ( ) , destination . toString ( ) . c_str ( ) ) ;
2013-07-11 20:19:06 +00:00
}
2013-07-11 21:52:04 +00:00
} else if ( packet - > fragmented ( ) ) {
2013-07-11 20:19:06 +00:00
// Packet is the head of a fragmented packet series
2013-07-11 21:52:04 +00:00
uint64_t pid = packet - > packetId ( ) ;
2013-07-11 20:19:06 +00:00
Mutex : : Lock _l ( _defragQueue_m ) ;
std : : map < uint64_t , DefragQueueEntry > : : iterator dqe ( _defragQueue . find ( pid ) ) ;
if ( dqe = = _defragQueue . end ( ) ) {
// If we have no other fragments yet, create an entry and save the head
DefragQueueEntry & dq = _defragQueue [ pid ] ;
dq . creationTime = Utils : : now ( ) ;
dq . frag0 = packet ;
dq . totalFragments = 0 ; // 0 == unknown, waiting for Packet::Fragment
dq . haveFragments = 1 ; // head is first bit (left to right)
//TRACE("fragment (0/?) of %.16llx from %s",pid,fromAddr.toString().c_str());
} else if ( ! ( dqe - > second . haveFragments & 1 ) ) {
// If we have other fragments but no head, see if we are complete with the head
if ( ( dqe - > second . totalFragments ) & & ( Utils : : countBits ( dqe - > second . haveFragments | = 1 ) = = dqe - > second . totalFragments ) ) {
// We have all fragments -- assemble and process full Packet
//TRACE("packet %.16llx is complete, assembling and processing...",pid);
// packet already contains head, so append fragments
for ( unsigned int f = 1 ; f < dqe - > second . totalFragments ; + + f )
2013-07-11 21:52:04 +00:00
packet - > append ( dqe - > second . frags [ f - 1 ] . payload ( ) , dqe - > second . frags [ f - 1 ] . payloadLength ( ) ) ;
2013-07-11 20:19:06 +00:00
_defragQueue . erase ( dqe ) ;
2013-07-11 21:52:04 +00:00
if ( ! packet - > tryDecode ( _r ) ) {
Mutex : : Lock _l ( _rxQueue_m ) ;
_rxQueue . insert ( std : : pair < Address , SharedPtr < PacketDecoder > > ( destination , packet ) ) ;
}
2013-07-11 20:19:06 +00:00
} else {
// Still waiting on more fragments, so queue the head
dqe - > second . frag0 = packet ;
}
} // else this is a duplicate head, ignore
} else {
// Packet is unfragmented, so just process it
2013-07-11 21:52:04 +00:00
if ( ! packet - > tryDecode ( _r ) ) {
Mutex : : Lock _l ( _rxQueue_m ) ;
_rxQueue . insert ( std : : pair < Address , SharedPtr < PacketDecoder > > ( destination , packet ) ) ;
2013-07-04 20:56:19 +00:00
}
}
}
Address Switch : : _sendWhoisRequest ( const Address & addr , const Address * peersAlreadyConsulted , unsigned int numPeersAlreadyConsulted )
{
SharedPtr < Peer > supernode ( _r - > topology - > getBestSupernode ( peersAlreadyConsulted , numPeersAlreadyConsulted ) ) ;
if ( supernode ) {
Packet outp ( supernode - > address ( ) , _r - > identity . address ( ) , Packet : : VERB_WHOIS ) ;
outp . append ( addr . data ( ) , ZT_ADDRESS_LENGTH ) ;
outp . encrypt ( supernode - > cryptKey ( ) ) ;
outp . hmacSet ( supernode - > macKey ( ) ) ;
supernode - > send ( _r , outp . data ( ) , outp . size ( ) , false , Packet : : VERB_WHOIS , Utils : : now ( ) ) ;
return supernode - > address ( ) ;
}
return Address ( ) ;
}
2013-07-11 20:19:06 +00:00
bool Switch : : _trySend ( const Packet & packet , bool encrypt )
2013-07-04 20:56:19 +00:00
{
SharedPtr < Peer > peer ( _r - > topology - > getPeer ( packet . destination ( ) ) ) ;
2013-07-11 21:52:04 +00:00
2013-07-04 20:56:19 +00:00
if ( peer ) {
uint64_t now = Utils : : now ( ) ;
bool isRelay ;
SharedPtr < Peer > via ;
if ( ( _r - > topology - > isSupernode ( peer - > address ( ) ) ) | | ( peer - > hasActiveDirectPath ( now ) ) ) {
isRelay = false ;
via = peer ;
} else {
isRelay = true ;
via = _r - > topology - > getBestSupernode ( ) ;
if ( ! via )
2013-07-11 20:19:06 +00:00
return false ;
2013-07-04 20:56:19 +00:00
}
Packet tmp ( packet ) ;
unsigned int chunkSize = std : : min ( tmp . size ( ) , ( unsigned int ) ZT_UDP_DEFAULT_PAYLOAD_MTU ) ;
tmp . setFragmented ( chunkSize < tmp . size ( ) ) ;
if ( encrypt )
tmp . encrypt ( peer - > cryptKey ( ) ) ;
tmp . hmacSet ( peer - > macKey ( ) ) ;
Packet : : Verb verb = packet . verb ( ) ;
if ( via - > send ( _r , tmp . data ( ) , chunkSize , isRelay , verb , now ) ) {
if ( chunkSize < tmp . size ( ) ) {
// Too big for one bite, fragment the rest
unsigned int fragStart = chunkSize ;
unsigned int remaining = tmp . size ( ) - chunkSize ;
unsigned int fragsRemaining = ( remaining / ( ZT_UDP_DEFAULT_PAYLOAD_MTU - ZT_PROTO_MIN_FRAGMENT_LENGTH ) ) ;
if ( ( fragsRemaining * ( ZT_UDP_DEFAULT_PAYLOAD_MTU - ZT_PROTO_MIN_FRAGMENT_LENGTH ) ) < remaining )
+ + fragsRemaining ;
unsigned int totalFragments = fragsRemaining + 1 ;
for ( unsigned int f = 0 ; f < fragsRemaining ; + + f ) {
chunkSize = std : : min ( remaining , ( unsigned int ) ( ZT_UDP_DEFAULT_PAYLOAD_MTU - ZT_PROTO_MIN_FRAGMENT_LENGTH ) ) ;
Packet : : Fragment frag ( tmp , fragStart , chunkSize , f + 1 , totalFragments ) ;
if ( ! via - > send ( _r , frag . data ( ) , frag . size ( ) , isRelay , verb , now ) ) {
TRACE ( " WARNING: packet send to %s failed on later fragment #%u (check IP layer buffer sizes?) " , via - > address ( ) . toString ( ) . c_str ( ) , f + 1 ) ;
2013-07-11 20:19:06 +00:00
return false ;
2013-07-04 20:56:19 +00:00
}
fragStart + = chunkSize ;
remaining - = chunkSize ;
}
}
2013-07-11 20:19:06 +00:00
return true ;
2013-07-04 20:56:19 +00:00
}
2013-07-11 20:19:06 +00:00
return false ;
2013-07-04 20:56:19 +00:00
}
2013-07-11 21:52:04 +00:00
requestWhois ( packet . destination ( ) ) ;
2013-07-11 20:19:06 +00:00
return false ;
2013-07-04 20:56:19 +00:00
}
} // namespace ZeroTier