cowboy_websocket.erl 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697
  1. %% Copyright (c) 2011-2013, Loïc Hoguin <essen@ninenines.eu>
  2. %%
  3. %% Permission to use, copy, modify, and/or distribute this software for any
  4. %% purpose with or without fee is hereby granted, provided that the above
  5. %% copyright notice and this permission notice appear in all copies.
  6. %%
  7. %% THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
  8. %% WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
  9. %% MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
  10. %% ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
  11. %% WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
  12. %% ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
  13. %% OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
  14. %% @doc Websocket protocol implementation.
  15. %%
  16. %% Cowboy supports versions 7 through 17 of the Websocket drafts.
  17. %% It also supports RFC6455, the proposed standard for Websocket.
  18. -module(cowboy_websocket).
  19. -behaviour(cowboy_sub_protocol).
  20. %% API.
  21. -export([upgrade/4]).
  22. %% Internal.
  23. -export([handler_loop/4]).
  24. -type close_code() :: 1000..4999.
  25. -export_type([close_code/0]).
  26. -type frame() :: close | ping | pong
  27. | {text | binary | close | ping | pong, binary()}
  28. | {close, close_code(), binary()}.
  29. -export_type([frame/0]).
  30. -type opcode() :: 0 | 1 | 2 | 8 | 9 | 10.
  31. -type mask_key() :: 0..16#ffffffff.
  32. -type frag_state() :: undefined
  33. | {nofin, opcode(), binary()} | {fin, opcode(), binary()}.
  34. -record(state, {
  35. env :: cowboy_middleware:env(),
  36. socket = undefined :: inet:socket(),
  37. transport = undefined :: module(),
  38. handler :: module(),
  39. handler_opts :: any(),
  40. key = undefined :: undefined | binary(),
  41. timeout = infinity :: timeout(),
  42. timeout_ref = undefined :: undefined | reference(),
  43. messages = undefined :: undefined | {atom(), atom(), atom()},
  44. hibernate = false :: boolean(),
  45. frag_state = undefined :: frag_state(),
  46. utf8_state = <<>> :: binary()
  47. }).
  48. %% @doc Upgrade an HTTP request to the Websocket protocol.
  49. %%
  50. %% You do not need to call this function manually. To upgrade to the Websocket
  51. %% protocol, you simply need to return <em>{upgrade, protocol, {@module}}</em>
  52. %% in your <em>cowboy_http_handler:init/3</em> handler function.
  53. -spec upgrade(Req, Env, module(), any())
  54. -> {ok, Req, Env} | {error, 400, Req}
  55. | {suspend, module(), atom(), [any()]}
  56. when Req::cowboy_req:req(), Env::cowboy_middleware:env().
  57. upgrade(Req, Env, Handler, HandlerOpts) ->
  58. {_, ListenerPid} = lists:keyfind(listener, 1, Env),
  59. ranch_listener:remove_connection(ListenerPid),
  60. [Socket, Transport] = cowboy_req:get([socket, transport], Req),
  61. State = #state{env=Env, socket=Socket, transport=Transport,
  62. handler=Handler, handler_opts=HandlerOpts},
  63. case catch websocket_upgrade(State, Req) of
  64. {ok, State2, Req2} -> handler_init(State2, Req2);
  65. {'EXIT', _Reason} -> upgrade_error(Req, Env)
  66. end.
  67. -spec websocket_upgrade(#state{}, Req)
  68. -> {ok, #state{}, Req} when Req::cowboy_req:req().
  69. websocket_upgrade(State, Req) ->
  70. {ok, ConnTokens, Req2}
  71. = cowboy_req:parse_header(<<"connection">>, Req),
  72. true = lists:member(<<"upgrade">>, ConnTokens),
  73. %% @todo Should probably send a 426 if the Upgrade header is missing.
  74. {ok, [<<"websocket">>], Req3}
  75. = cowboy_req:parse_header(<<"upgrade">>, Req2),
  76. {Version, Req4} = cowboy_req:header(<<"sec-websocket-version">>, Req3),
  77. IntVersion = list_to_integer(binary_to_list(Version)),
  78. true = (IntVersion =:= 7) orelse (IntVersion =:= 8)
  79. orelse (IntVersion =:= 13),
  80. {Key, Req5} = cowboy_req:header(<<"sec-websocket-key">>, Req4),
  81. false = Key =:= undefined,
  82. {ok, State#state{key=Key},
  83. cowboy_req:set_meta(websocket_version, IntVersion, Req5)}.
  84. -spec handler_init(#state{}, Req)
  85. -> {ok, Req, cowboy_middleware:env()} | {error, 400, Req}
  86. | {suspend, module(), atom(), [any()]}
  87. when Req::cowboy_req:req().
  88. handler_init(State=#state{env=Env, transport=Transport,
  89. handler=Handler, handler_opts=HandlerOpts}, Req) ->
  90. try Handler:websocket_init(Transport:name(), Req, HandlerOpts) of
  91. {ok, Req2, HandlerState} ->
  92. websocket_handshake(State, Req2, HandlerState);
  93. {ok, Req2, HandlerState, hibernate} ->
  94. websocket_handshake(State#state{hibernate=true},
  95. Req2, HandlerState);
  96. {ok, Req2, HandlerState, Timeout} ->
  97. websocket_handshake(State#state{timeout=Timeout},
  98. Req2, HandlerState);
  99. {ok, Req2, HandlerState, Timeout, hibernate} ->
  100. websocket_handshake(State#state{timeout=Timeout,
  101. hibernate=true}, Req2, HandlerState);
  102. {shutdown, Req2} ->
  103. cowboy_req:ensure_response(Req2, 400),
  104. {ok, Req2, [{result, closed}|Env]}
  105. catch Class:Reason ->
  106. error_logger:error_msg(
  107. "** Cowboy handler ~p terminating in ~p/~p~n"
  108. " for the reason ~p:~p~n** Options were ~p~n"
  109. "** Request was ~p~n** Stacktrace: ~p~n~n",
  110. [Handler, websocket_init, 3, Class, Reason, HandlerOpts,
  111. cowboy_req:to_list(Req),erlang:get_stacktrace()]),
  112. upgrade_error(Req, Env)
  113. end.
  114. %% Only send an error reply if there is no resp_sent message.
  115. -spec upgrade_error(Req, Env) -> {ok, Req, Env} | {error, 400, Req}
  116. when Req::cowboy_req:req(), Env::cowboy_middleware:env().
  117. upgrade_error(Req, Env) ->
  118. receive
  119. {cowboy_req, resp_sent} ->
  120. {ok, Req, [{result, closed}|Env]}
  121. after 0 ->
  122. {error, 400, Req}
  123. end.
  124. -spec websocket_handshake(#state{}, Req, any())
  125. -> {ok, Req, cowboy_middleware:env()}
  126. | {suspend, module(), atom(), [any()]}
  127. when Req::cowboy_req:req().
  128. websocket_handshake(State=#state{transport=Transport, key=Key},
  129. Req, HandlerState) ->
  130. Challenge = base64:encode(crypto:sha(
  131. << Key/binary, "258EAFA5-E914-47DA-95CA-C5AB0DC85B11" >>)),
  132. {ok, Req2} = cowboy_req:upgrade_reply(
  133. 101,
  134. [{<<"upgrade">>, <<"websocket">>},
  135. {<<"sec-websocket-accept">>, Challenge}],
  136. Req),
  137. %% Flush the resp_sent message before moving on.
  138. receive {cowboy_req, resp_sent} -> ok after 0 -> ok end,
  139. State2 = handler_loop_timeout(State),
  140. handler_before_loop(State2#state{key=undefined,
  141. messages=Transport:messages()}, Req2, HandlerState, <<>>).
  142. -spec handler_before_loop(#state{}, Req, any(), binary())
  143. -> {ok, Req, cowboy_middleware:env()}
  144. | {suspend, module(), atom(), [any()]}
  145. when Req::cowboy_req:req().
  146. handler_before_loop(State=#state{
  147. socket=Socket, transport=Transport, hibernate=true},
  148. Req, HandlerState, SoFar) ->
  149. Transport:setopts(Socket, [{active, once}]),
  150. {suspend, ?MODULE, handler_loop,
  151. [State#state{hibernate=false}, Req, HandlerState, SoFar]};
  152. handler_before_loop(State=#state{socket=Socket, transport=Transport},
  153. Req, HandlerState, SoFar) ->
  154. Transport:setopts(Socket, [{active, once}]),
  155. handler_loop(State, Req, HandlerState, SoFar).
  156. -spec handler_loop_timeout(#state{}) -> #state{}.
  157. handler_loop_timeout(State=#state{timeout=infinity}) ->
  158. State#state{timeout_ref=undefined};
  159. handler_loop_timeout(State=#state{timeout=Timeout, timeout_ref=PrevRef}) ->
  160. _ = case PrevRef of undefined -> ignore; PrevRef ->
  161. erlang:cancel_timer(PrevRef) end,
  162. TRef = erlang:start_timer(Timeout, self(), ?MODULE),
  163. State#state{timeout_ref=TRef}.
  164. %% @private
  165. -spec handler_loop(#state{}, Req, any(), binary())
  166. -> {ok, Req, cowboy_middleware:env()}
  167. | {suspend, module(), atom(), [any()]}
  168. when Req::cowboy_req:req().
  169. handler_loop(State=#state{socket=Socket, messages={OK, Closed, Error},
  170. timeout_ref=TRef}, Req, HandlerState, SoFar) ->
  171. receive
  172. {OK, Socket, Data} ->
  173. State2 = handler_loop_timeout(State),
  174. websocket_data(State2, Req, HandlerState,
  175. << SoFar/binary, Data/binary >>);
  176. {Closed, Socket} ->
  177. handler_terminate(State, Req, HandlerState, {error, closed});
  178. {Error, Socket, Reason} ->
  179. handler_terminate(State, Req, HandlerState, {error, Reason});
  180. {timeout, TRef, ?MODULE} ->
  181. websocket_close(State, Req, HandlerState, {normal, timeout});
  182. {timeout, OlderTRef, ?MODULE} when is_reference(OlderTRef) ->
  183. handler_loop(State, Req, HandlerState, SoFar);
  184. Message ->
  185. handler_call(State, Req, HandlerState,
  186. SoFar, websocket_info, Message, fun handler_before_loop/4)
  187. end.
  188. %% All frames passing through this function are considered valid,
  189. %% with the only exception of text and close frames with a payload
  190. %% which may still contain errors.
  191. -spec websocket_data(#state{}, Req, any(), binary())
  192. -> {ok, Req, cowboy_middleware:env()}
  193. | {suspend, module(), atom(), [any()]}
  194. when Req::cowboy_req:req().
  195. %% RSV bits MUST be 0 unless an extension is negotiated
  196. %% that defines meanings for non-zero values.
  197. websocket_data(State, Req, HandlerState, << _:1, Rsv:3, _/bits >>)
  198. when Rsv =/= 0 ->
  199. websocket_close(State, Req, HandlerState, {error, badframe});
  200. %% Invalid opcode. Note that these opcodes may be used by extensions.
  201. websocket_data(State, Req, HandlerState, << _:4, Opcode:4, _/bits >>)
  202. when Opcode > 2, Opcode =/= 8, Opcode =/= 9, Opcode =/= 10 ->
  203. websocket_close(State, Req, HandlerState, {error, badframe});
  204. %% Control frames MUST NOT be fragmented.
  205. websocket_data(State, Req, HandlerState, << 0:1, _:3, Opcode:4, _/bits >>)
  206. when Opcode >= 8 ->
  207. websocket_close(State, Req, HandlerState, {error, badframe});
  208. %% A frame MUST NOT use the zero opcode unless fragmentation was initiated.
  209. websocket_data(State=#state{frag_state=undefined}, Req, HandlerState,
  210. << _:4, 0:4, _/bits >>) ->
  211. websocket_close(State, Req, HandlerState, {error, badframe});
  212. %% Non-control opcode when expecting control message or next fragment.
  213. websocket_data(State=#state{frag_state={nofin, _, _}}, Req, HandlerState,
  214. << _:4, Opcode:4, _/bits >>)
  215. when Opcode =/= 0, Opcode < 8 ->
  216. websocket_close(State, Req, HandlerState, {error, badframe});
  217. %% Close control frame length MUST be 0 or >= 2.
  218. websocket_data(State, Req, HandlerState, << _:4, 8:4, _:1, 1:7, _/bits >>) ->
  219. websocket_close(State, Req, HandlerState, {error, badframe});
  220. %% Close control frame with incomplete close code. Need more data.
  221. websocket_data(State, Req, HandlerState,
  222. Data = << _:4, 8:4, 1:1, Len:7, _/bits >>)
  223. when Len > 1, byte_size(Data) < 8 ->
  224. handler_before_loop(State, Req, HandlerState, Data);
  225. %% 7 bits payload length.
  226. websocket_data(State, Req, HandlerState, << Fin:1, _Rsv:3, Opcode:4, 1:1,
  227. Len:7, MaskKey:32, Rest/bits >>)
  228. when Len < 126 ->
  229. websocket_data(State, Req, HandlerState,
  230. Opcode, Len, MaskKey, Rest, Fin);
  231. %% 16 bits payload length.
  232. websocket_data(State, Req, HandlerState, << Fin:1, _Rsv:3, Opcode:4, 1:1,
  233. 126:7, Len:16, MaskKey:32, Rest/bits >>)
  234. when Len > 125, Opcode < 8 ->
  235. websocket_data(State, Req, HandlerState,
  236. Opcode, Len, MaskKey, Rest, Fin);
  237. %% 63 bits payload length.
  238. websocket_data(State, Req, HandlerState, << Fin:1, _Rsv:3, Opcode:4, 1:1,
  239. 127:7, 0:1, Len:63, MaskKey:32, Rest/bits >>)
  240. when Len > 16#ffff, Opcode < 8 ->
  241. websocket_data(State, Req, HandlerState,
  242. Opcode, Len, MaskKey, Rest, Fin);
  243. %% When payload length is over 63 bits, the most significant bit MUST be 0.
  244. websocket_data(State, Req, HandlerState, << _:8, 1:1, 127:7, 1:1, _:7, _/binary >>) ->
  245. websocket_close(State, Req, HandlerState, {error, badframe});
  246. %% All frames sent from the client to the server are masked.
  247. websocket_data(State, Req, HandlerState, << _:8, 0:1, _/bits >>) ->
  248. websocket_close(State, Req, HandlerState, {error, badframe});
  249. %% For the next two clauses, it can be one of the following:
  250. %%
  251. %% * The minimal number of bytes MUST be used to encode the length
  252. %% * All control frames MUST have a payload length of 125 bytes or less
  253. websocket_data(State, Req, HandlerState, << _:9, 126:7, _:48, _/bits >>) ->
  254. websocket_close(State, Req, HandlerState, {error, badframe});
  255. websocket_data(State, Req, HandlerState, << _:9, 127:7, _:96, _/bits >>) ->
  256. websocket_close(State, Req, HandlerState, {error, badframe});
  257. %% Need more data.
  258. websocket_data(State, Req, HandlerState, Data) ->
  259. handler_before_loop(State, Req, HandlerState, Data).
  260. %% Initialize or update fragmentation state.
  261. -spec websocket_data(#state{}, Req, any(),
  262. opcode(), non_neg_integer(), mask_key(), binary(), 0 | 1)
  263. -> {ok, Req, cowboy_middleware:env()}
  264. | {suspend, module(), atom(), [any()]}
  265. when Req::cowboy_req:req().
  266. %% The opcode is only included in the first frame fragment.
  267. websocket_data(State=#state{frag_state=undefined}, Req, HandlerState,
  268. Opcode, Len, MaskKey, Data, 0) ->
  269. websocket_payload(State#state{frag_state={nofin, Opcode, <<>>}},
  270. Req, HandlerState, 0, Len, MaskKey, <<>>, Data);
  271. %% Subsequent frame fragments.
  272. websocket_data(State=#state{frag_state={nofin, _, _}}, Req, HandlerState,
  273. 0, Len, MaskKey, Data, 0) ->
  274. websocket_payload(State, Req, HandlerState,
  275. 0, Len, MaskKey, <<>>, Data);
  276. %% Final frame fragment.
  277. websocket_data(State=#state{frag_state={nofin, Opcode, SoFar}},
  278. Req, HandlerState, 0, Len, MaskKey, Data, 1) ->
  279. websocket_payload(State#state{frag_state={fin, Opcode, SoFar}},
  280. Req, HandlerState, 0, Len, MaskKey, <<>>, Data);
  281. %% Unfragmented frame.
  282. websocket_data(State, Req, HandlerState, Opcode, Len, MaskKey, Data, 1) ->
  283. websocket_payload(State, Req, HandlerState,
  284. Opcode, Len, MaskKey, <<>>, Data).
  285. -spec websocket_payload(#state{}, Req, any(),
  286. opcode(), non_neg_integer(), mask_key(), binary(), binary())
  287. -> {ok, Req, cowboy_middleware:env()}
  288. | {suspend, module(), atom(), [any()]}
  289. when Req::cowboy_req:req().
  290. %% Close control frames with a payload MUST contain a valid close code.
  291. websocket_payload(State, Req, HandlerState,
  292. Opcode=8, Len, MaskKey, <<>>, << MaskedCode:2/binary, Rest/bits >>) ->
  293. Unmasked = << Code:16 >> = websocket_unmask(MaskedCode, MaskKey, <<>>),
  294. if Code < 1000; Code =:= 1004; Code =:= 1005; Code =:= 1006;
  295. (Code > 1011) and (Code < 3000); Code > 4999 ->
  296. websocket_close(State, Req, HandlerState, {error, badframe});
  297. true ->
  298. websocket_payload(State, Req, HandlerState,
  299. Opcode, Len - 2, MaskKey, Unmasked, Rest)
  300. end;
  301. %% Text frames and close control frames MUST have a payload that is valid UTF-8.
  302. websocket_payload(State=#state{utf8_state=Incomplete},
  303. Req, HandlerState, Opcode, Len, MaskKey, Unmasked, Data)
  304. when (byte_size(Data) < Len) andalso ((Opcode =:= 1) orelse
  305. ((Opcode =:= 8) andalso (Unmasked =/= <<>>))) ->
  306. Unmasked2 = websocket_unmask(Data,
  307. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  308. case is_utf8(<< Incomplete/binary, Unmasked2/binary >>) of
  309. false ->
  310. websocket_close(State, Req, HandlerState, {error, badencoding});
  311. Utf8State ->
  312. websocket_payload_loop(State#state{utf8_state=Utf8State},
  313. Req, HandlerState, Opcode, Len - byte_size(Data), MaskKey,
  314. << Unmasked/binary, Unmasked2/binary >>)
  315. end;
  316. websocket_payload(State=#state{utf8_state=Incomplete},
  317. Req, HandlerState, Opcode, Len, MaskKey, Unmasked, Data)
  318. when Opcode =:= 1; (Opcode =:= 8) and (Unmasked =/= <<>>) ->
  319. << End:Len/binary, Rest/bits >> = Data,
  320. Unmasked2 = websocket_unmask(End,
  321. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  322. case is_utf8(<< Incomplete/binary, Unmasked2/binary >>) of
  323. <<>> ->
  324. websocket_dispatch(State#state{utf8_state= <<>>},
  325. Req, HandlerState, Rest, Opcode,
  326. << Unmasked/binary, Unmasked2/binary >>);
  327. _ ->
  328. websocket_close(State, Req, HandlerState, {error, badencoding})
  329. end;
  330. %% Fragmented text frames may cut payload in the middle of UTF-8 codepoints.
  331. websocket_payload(State=#state{frag_state={_, 1, _}, utf8_state=Incomplete},
  332. Req, HandlerState, Opcode=0, Len, MaskKey, Unmasked, Data)
  333. when byte_size(Data) < Len ->
  334. Unmasked2 = websocket_unmask(Data,
  335. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  336. case is_utf8(<< Incomplete/binary, Unmasked2/binary >>) of
  337. false ->
  338. websocket_close(State, Req, HandlerState, {error, badencoding});
  339. Utf8State ->
  340. websocket_payload_loop(State#state{utf8_state=Utf8State},
  341. Req, HandlerState, Opcode, Len - byte_size(Data), MaskKey,
  342. << Unmasked/binary, Unmasked2/binary >>)
  343. end;
  344. websocket_payload(State=#state{frag_state={Fin, 1, _}, utf8_state=Incomplete},
  345. Req, HandlerState, Opcode=0, Len, MaskKey, Unmasked, Data) ->
  346. << End:Len/binary, Rest/bits >> = Data,
  347. Unmasked2 = websocket_unmask(End,
  348. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  349. case is_utf8(<< Incomplete/binary, Unmasked2/binary >>) of
  350. <<>> ->
  351. websocket_dispatch(State#state{utf8_state= <<>>},
  352. Req, HandlerState, Rest, Opcode,
  353. << Unmasked/binary, Unmasked2/binary >>);
  354. Utf8State when is_binary(Utf8State), Fin =:= nofin ->
  355. websocket_dispatch(State#state{utf8_state=Utf8State},
  356. Req, HandlerState, Rest, Opcode,
  357. << Unmasked/binary, Unmasked2/binary >>);
  358. _ ->
  359. websocket_close(State, Req, HandlerState, {error, badencoding})
  360. end;
  361. %% Other frames have a binary payload.
  362. websocket_payload(State, Req, HandlerState,
  363. Opcode, Len, MaskKey, Unmasked, Data)
  364. when byte_size(Data) < Len ->
  365. Unmasked2 = websocket_unmask(Data,
  366. rotate_mask_key(MaskKey, byte_size(Unmasked)), Unmasked),
  367. websocket_payload_loop(State, Req, HandlerState,
  368. Opcode, Len - byte_size(Data), MaskKey, Unmasked2);
  369. websocket_payload(State, Req, HandlerState,
  370. Opcode, Len, MaskKey, Unmasked, Data) ->
  371. << End:Len/binary, Rest/bits >> = Data,
  372. Unmasked2 = websocket_unmask(End,
  373. rotate_mask_key(MaskKey, byte_size(Unmasked)), Unmasked),
  374. websocket_dispatch(State, Req, HandlerState, Rest, Opcode, Unmasked2).
  375. -spec websocket_unmask(B, mask_key(), B) -> B when B::binary().
  376. websocket_unmask(<<>>, _, Unmasked) ->
  377. Unmasked;
  378. websocket_unmask(<< O:32, Rest/bits >>, MaskKey, Acc) ->
  379. T = O bxor MaskKey,
  380. websocket_unmask(Rest, MaskKey, << Acc/binary, T:32 >>);
  381. websocket_unmask(<< O:24 >>, MaskKey, Acc) ->
  382. << MaskKey2:24, _:8 >> = << MaskKey:32 >>,
  383. T = O bxor MaskKey2,
  384. << Acc/binary, T:24 >>;
  385. websocket_unmask(<< O:16 >>, MaskKey, Acc) ->
  386. << MaskKey2:16, _:16 >> = << MaskKey:32 >>,
  387. T = O bxor MaskKey2,
  388. << Acc/binary, T:16 >>;
  389. websocket_unmask(<< O:8 >>, MaskKey, Acc) ->
  390. << MaskKey2:8, _:24 >> = << MaskKey:32 >>,
  391. T = O bxor MaskKey2,
  392. << Acc/binary, T:8 >>.
  393. %% Because we unmask on the fly we need to continue from the right mask byte.
  394. -spec rotate_mask_key(mask_key(), non_neg_integer()) -> mask_key().
  395. rotate_mask_key(MaskKey, UnmaskedLen) ->
  396. Left = UnmaskedLen rem 4,
  397. Right = 4 - Left,
  398. (MaskKey bsl (Left * 8)) + (MaskKey bsr (Right * 8)).
  399. %% Returns <<>> if the argument is valid UTF-8, false if not,
  400. %% or the incomplete part of the argument if we need more data.
  401. -spec is_utf8(binary()) -> false | binary().
  402. is_utf8(Valid = <<>>) ->
  403. Valid;
  404. is_utf8(<< _/utf8, Rest/binary >>) ->
  405. is_utf8(Rest);
  406. %% 2 bytes. Codepages C0 and C1 are invalid; fail early.
  407. is_utf8(<< 2#1100000:7, _/bits >>) ->
  408. false;
  409. is_utf8(Incomplete = << 2#110:3, _:5 >>) ->
  410. Incomplete;
  411. %% 3 bytes.
  412. is_utf8(Incomplete = << 2#1110:4, _:4 >>) ->
  413. Incomplete;
  414. is_utf8(Incomplete = << 2#1110:4, _:4, 2#10:2, _:6 >>) ->
  415. Incomplete;
  416. %% 4 bytes. Codepage F4 may have invalid values greater than 0x10FFFF.
  417. is_utf8(<< 2#11110100:8, 2#10:2, High:6, _/bits >>) when High >= 2#10000 ->
  418. false;
  419. is_utf8(Incomplete = << 2#11110:5, _:3 >>) ->
  420. Incomplete;
  421. is_utf8(Incomplete = << 2#11110:5, _:3, 2#10:2, _:6 >>) ->
  422. Incomplete;
  423. is_utf8(Incomplete = << 2#11110:5, _:3, 2#10:2, _:6, 2#10:2, _:6 >>) ->
  424. Incomplete;
  425. %% Invalid.
  426. is_utf8(_) ->
  427. false.
  428. -spec websocket_payload_loop(#state{}, Req, any(),
  429. opcode(), non_neg_integer(), mask_key(), binary())
  430. -> {ok, Req, cowboy_middleware:env()}
  431. | {suspend, module(), atom(), [any()]}
  432. when Req::cowboy_req:req().
  433. websocket_payload_loop(State=#state{socket=Socket, transport=Transport,
  434. messages={OK, Closed, Error}, timeout_ref=TRef},
  435. Req, HandlerState, Opcode, Len, MaskKey, Unmasked) ->
  436. Transport:setopts(Socket, [{active, once}]),
  437. receive
  438. {OK, Socket, Data} ->
  439. State2 = handler_loop_timeout(State),
  440. websocket_payload(State2, Req, HandlerState,
  441. Opcode, Len, MaskKey, Unmasked, Data);
  442. {Closed, Socket} ->
  443. handler_terminate(State, Req, HandlerState, {error, closed});
  444. {Error, Socket, Reason} ->
  445. handler_terminate(State, Req, HandlerState, {error, Reason});
  446. {timeout, TRef, ?MODULE} ->
  447. websocket_close(State, Req, HandlerState, {normal, timeout});
  448. {timeout, OlderTRef, ?MODULE} when is_reference(OlderTRef) ->
  449. websocket_payload_loop(State, Req, HandlerState,
  450. Opcode, Len, MaskKey, Unmasked);
  451. Message ->
  452. handler_call(State, Req, HandlerState,
  453. <<>>, websocket_info, Message,
  454. fun (State2, Req2, HandlerState2, _) ->
  455. websocket_payload_loop(State2, Req2, HandlerState2,
  456. Opcode, Len, MaskKey, Unmasked)
  457. end)
  458. end.
  459. -spec websocket_dispatch(#state{}, Req, any(), binary(), opcode(), binary())
  460. -> {ok, Req, cowboy_middleware:env()}
  461. | {suspend, module(), atom(), [any()]}
  462. when Req::cowboy_req:req().
  463. %% Continuation frame.
  464. websocket_dispatch(State=#state{frag_state={nofin, Opcode, SoFar}},
  465. Req, HandlerState, RemainingData, 0, Payload) ->
  466. websocket_data(State#state{frag_state={nofin, Opcode,
  467. << SoFar/binary, Payload/binary >>}}, Req, HandlerState, RemainingData);
  468. %% Last continuation frame.
  469. websocket_dispatch(State=#state{frag_state={fin, Opcode, SoFar}},
  470. Req, HandlerState, RemainingData, 0, Payload) ->
  471. websocket_dispatch(State#state{frag_state=undefined}, Req, HandlerState,
  472. RemainingData, Opcode, << SoFar/binary, Payload/binary >>);
  473. %% Text frame.
  474. websocket_dispatch(State, Req, HandlerState, RemainingData, 1, Payload) ->
  475. handler_call(State, Req, HandlerState, RemainingData,
  476. websocket_handle, {text, Payload}, fun websocket_data/4);
  477. %% Binary frame.
  478. websocket_dispatch(State, Req, HandlerState, RemainingData, 2, Payload) ->
  479. handler_call(State, Req, HandlerState, RemainingData,
  480. websocket_handle, {binary, Payload}, fun websocket_data/4);
  481. %% Close control frame.
  482. websocket_dispatch(State, Req, HandlerState, _RemainingData, 8, <<>>) ->
  483. websocket_close(State, Req, HandlerState, {remote, closed});
  484. websocket_dispatch(State, Req, HandlerState, _RemainingData, 8,
  485. << Code:16, Payload/bits >>) ->
  486. websocket_close(State, Req, HandlerState, {remote, Code, Payload});
  487. %% Ping control frame. Send a pong back and forward the ping to the handler.
  488. websocket_dispatch(State=#state{socket=Socket, transport=Transport},
  489. Req, HandlerState, RemainingData, 9, Payload) ->
  490. Len = payload_length_to_binary(byte_size(Payload)),
  491. Transport:send(Socket, << 1:1, 0:3, 10:4, 0:1, Len/bits, Payload/binary >>),
  492. handler_call(State, Req, HandlerState, RemainingData,
  493. websocket_handle, {ping, Payload}, fun websocket_data/4);
  494. %% Pong control frame.
  495. websocket_dispatch(State, Req, HandlerState, RemainingData, 10, Payload) ->
  496. handler_call(State, Req, HandlerState, RemainingData,
  497. websocket_handle, {pong, Payload}, fun websocket_data/4).
  498. -spec handler_call(#state{}, Req, any(), binary(), atom(), any(), fun())
  499. -> {ok, Req, cowboy_middleware:env()}
  500. | {suspend, module(), atom(), [any()]}
  501. when Req::cowboy_req:req().
  502. handler_call(State=#state{handler=Handler, handler_opts=HandlerOpts}, Req,
  503. HandlerState, RemainingData, Callback, Message, NextState) ->
  504. try Handler:Callback(Message, Req, HandlerState) of
  505. {ok, Req2, HandlerState2} ->
  506. NextState(State, Req2, HandlerState2, RemainingData);
  507. {ok, Req2, HandlerState2, hibernate} ->
  508. NextState(State#state{hibernate=true},
  509. Req2, HandlerState2, RemainingData);
  510. {reply, Payload, Req2, HandlerState2}
  511. when is_tuple(Payload) ->
  512. case websocket_send(Payload, State) of
  513. ok ->
  514. NextState(State, Req2, HandlerState2, RemainingData);
  515. shutdown ->
  516. handler_terminate(State, Req2, HandlerState2,
  517. {normal, shutdown});
  518. {error, _} = Error ->
  519. handler_terminate(State, Req2, HandlerState2, Error)
  520. end;
  521. {reply, Payload, Req2, HandlerState2, hibernate}
  522. when is_tuple(Payload) ->
  523. case websocket_send(Payload, State) of
  524. ok ->
  525. NextState(State#state{hibernate=true},
  526. Req2, HandlerState2, RemainingData);
  527. shutdown ->
  528. handler_terminate(State, Req2, HandlerState2,
  529. {normal, shutdown});
  530. {error, _} = Error ->
  531. handler_terminate(State, Req2, HandlerState2, Error)
  532. end;
  533. {reply, Payload, Req2, HandlerState2}
  534. when is_list(Payload) ->
  535. case websocket_send_many(Payload, State) of
  536. ok ->
  537. NextState(State, Req2, HandlerState2, RemainingData);
  538. shutdown ->
  539. handler_terminate(State, Req2, HandlerState2,
  540. {normal, shutdown});
  541. {error, _} = Error ->
  542. handler_terminate(State, Req2, HandlerState2, Error)
  543. end;
  544. {reply, Payload, Req2, HandlerState2, hibernate}
  545. when is_list(Payload) ->
  546. case websocket_send_many(Payload, State) of
  547. ok ->
  548. NextState(State#state{hibernate=true},
  549. Req2, HandlerState2, RemainingData);
  550. shutdown ->
  551. handler_terminate(State, Req2, HandlerState2,
  552. {normal, shutdown});
  553. {error, _} = Error ->
  554. handler_terminate(State, Req2, HandlerState2, Error)
  555. end;
  556. {shutdown, Req2, HandlerState2} ->
  557. websocket_close(State, Req2, HandlerState2, {normal, shutdown})
  558. catch Class:Reason ->
  559. PLReq = cowboy_req:to_list(Req),
  560. error_logger:error_msg(
  561. "** Cowboy handler ~p terminating in ~p/~p~n"
  562. " for the reason ~p:~p~n** Message was ~p~n"
  563. "** Options were ~p~n** Handler state was ~p~n"
  564. "** Request was ~p~n** Stacktrace: ~p~n~n",
  565. [Handler, Callback, 3, Class, Reason, Message, HandlerOpts,
  566. HandlerState, PLReq, erlang:get_stacktrace()]),
  567. websocket_close(State, Req, HandlerState, {error, handler})
  568. end.
  569. websocket_opcode(text) -> 1;
  570. websocket_opcode(binary) -> 2;
  571. websocket_opcode(close) -> 8;
  572. websocket_opcode(ping) -> 9;
  573. websocket_opcode(pong) -> 10.
  574. -spec websocket_send(frame(), #state{})
  575. -> ok | shutdown | {error, atom()}.
  576. websocket_send(Type, #state{socket=Socket, transport=Transport})
  577. when Type =:= close ->
  578. Opcode = websocket_opcode(Type),
  579. case Transport:send(Socket, << 1:1, 0:3, Opcode:4, 0:8 >>) of
  580. ok -> shutdown;
  581. Error -> Error
  582. end;
  583. websocket_send(Type, #state{socket=Socket, transport=Transport})
  584. when Type =:= ping; Type =:= pong ->
  585. Opcode = websocket_opcode(Type),
  586. Transport:send(Socket, << 1:1, 0:3, Opcode:4, 0:8 >>);
  587. websocket_send({close, Payload}, State) ->
  588. websocket_send({close, 1000, Payload}, State);
  589. websocket_send({Type = close, StatusCode, Payload}, #state{
  590. socket=Socket, transport=Transport}) ->
  591. Opcode = websocket_opcode(Type),
  592. Len = 2 + iolist_size(Payload),
  593. %% Control packets must not be > 125 in length.
  594. true = Len =< 125,
  595. BinLen = payload_length_to_binary(Len),
  596. Transport:send(Socket,
  597. [<< 1:1, 0:3, Opcode:4, 0:1, BinLen/bits, StatusCode:16 >>, Payload]),
  598. shutdown;
  599. websocket_send({Type, Payload}, #state{socket=Socket, transport=Transport}) ->
  600. Opcode = websocket_opcode(Type),
  601. Len = iolist_size(Payload),
  602. %% Control packets must not be > 125 in length.
  603. true = if Type =:= ping; Type =:= pong ->
  604. Len =< 125;
  605. true ->
  606. true
  607. end,
  608. BinLen = payload_length_to_binary(Len),
  609. Transport:send(Socket,
  610. [<< 1:1, 0:3, Opcode:4, 0:1, BinLen/bits >>, Payload]).
  611. -spec websocket_send_many([frame()], #state{})
  612. -> ok | shutdown | {error, atom()}.
  613. websocket_send_many([], _) ->
  614. ok;
  615. websocket_send_many([Frame|Tail], State) ->
  616. case websocket_send(Frame, State) of
  617. ok -> websocket_send_many(Tail, State);
  618. shutdown -> shutdown;
  619. Error -> Error
  620. end.
  621. -spec websocket_close(#state{}, Req, any(),
  622. {atom(), atom()} | {remote, close_code(), binary()})
  623. -> {ok, Req, cowboy_middleware:env()}
  624. when Req::cowboy_req:req().
  625. websocket_close(State=#state{socket=Socket, transport=Transport},
  626. Req, HandlerState, Reason) ->
  627. case Reason of
  628. {normal, _} ->
  629. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1000:16 >>);
  630. {error, badframe} ->
  631. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1002:16 >>);
  632. {error, badencoding} ->
  633. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1007:16 >>);
  634. {error, handler} ->
  635. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1011:16 >>);
  636. {remote, closed} ->
  637. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:8 >>);
  638. {remote, Code, _} ->
  639. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, Code:16 >>)
  640. end,
  641. handler_terminate(State, Req, HandlerState, Reason).
  642. -spec handler_terminate(#state{}, Req, any(), atom() | {atom(), atom()})
  643. -> {ok, Req, cowboy_middleware:env()}
  644. when Req::cowboy_req:req().
  645. handler_terminate(#state{env=Env, handler=Handler, handler_opts=HandlerOpts},
  646. Req, HandlerState, TerminateReason) ->
  647. try
  648. Handler:websocket_terminate(TerminateReason, Req, HandlerState)
  649. catch Class:Reason ->
  650. PLReq = cowboy_req:to_list(Req),
  651. error_logger:error_msg(
  652. "** Cowboy handler ~p terminating in ~p/~p~n"
  653. " for the reason ~p:~p~n** Initial reason was ~p~n"
  654. "** Options were ~p~n** Handler state was ~p~n"
  655. "** Request was ~p~n** Stacktrace: ~p~n~n",
  656. [Handler, websocket_terminate, 3, Class, Reason, TerminateReason,
  657. HandlerOpts, HandlerState, PLReq, erlang:get_stacktrace()])
  658. end,
  659. {ok, Req, [{result, closed}|Env]}.
  660. -spec payload_length_to_binary(0..16#7fffffffffffffff)
  661. -> << _:7 >> | << _:23 >> | << _:71 >>.
  662. payload_length_to_binary(N) ->
  663. case N of
  664. N when N =< 125 -> << N:7 >>;
  665. N when N =< 16#ffff -> << 126:7, N:16 >>;
  666. N when N =< 16#7fffffffffffffff -> << 127:7, N:64 >>
  667. end.