cowboy_websocket.erl 32 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775
  1. %% Copyright (c) 2011-2013, Loïc Hoguin <essen@ninenines.eu>
  2. %%
  3. %% Permission to use, copy, modify, and/or distribute this software for any
  4. %% purpose with or without fee is hereby granted, provided that the above
  5. %% copyright notice and this permission notice appear in all copies.
  6. %%
  7. %% THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
  8. %% WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
  9. %% MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
  10. %% ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
  11. %% WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
  12. %% ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
  13. %% OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
  14. %% @doc Websocket protocol implementation.
  15. %%
  16. %% Cowboy supports versions 7 through 17 of the Websocket drafts.
  17. %% It also supports RFC6455, the proposed standard for Websocket.
  18. -module(cowboy_websocket).
  19. -behaviour(cowboy_sub_protocol).
  20. %% API.
  21. -export([upgrade/4]).
  22. %% Internal.
  23. -export([handler_loop/4]).
  24. -type close_code() :: 1000..4999.
  25. -export_type([close_code/0]).
  26. -type frame() :: close | ping | pong
  27. | {text | binary | close | ping | pong, iodata()}
  28. | {close, close_code(), iodata()}.
  29. -export_type([frame/0]).
  30. -type opcode() :: 0 | 1 | 2 | 8 | 9 | 10.
  31. -type mask_key() :: 0..16#ffffffff.
  32. -type frag_state() :: undefined
  33. | {nofin, opcode(), binary()} | {fin, opcode(), binary()}.
  34. -type rsv() :: << _:3 >>.
  35. -record(state, {
  36. env :: cowboy_middleware:env(),
  37. socket = undefined :: inet:socket(),
  38. transport = undefined :: module(),
  39. handler :: module(),
  40. handler_opts :: any(),
  41. key = undefined :: undefined | binary(),
  42. timeout = infinity :: timeout(),
  43. timeout_ref = undefined :: undefined | reference(),
  44. messages = undefined :: undefined | {atom(), atom(), atom()},
  45. hibernate = false :: boolean(),
  46. frag_state = undefined :: frag_state(),
  47. utf8_state = <<>> :: binary(),
  48. deflate_frame = false :: boolean(),
  49. inflate_state :: any(),
  50. inflate_buffer = <<>> :: binary(),
  51. deflate_state :: any()
  52. }).
  53. %% @doc Upgrade an HTTP request to the Websocket protocol.
  54. %%
  55. %% You do not need to call this function manually. To upgrade to the Websocket
  56. %% protocol, you simply need to return <em>{upgrade, protocol, {@module}}</em>
  57. %% in your <em>cowboy_http_handler:init/3</em> handler function.
  58. -spec upgrade(Req, Env, module(), any())
  59. -> {ok, Req, Env} | {error, 400, Req}
  60. | {suspend, module(), atom(), [any()]}
  61. when Req::cowboy_req:req(), Env::cowboy_middleware:env().
  62. upgrade(Req, Env, Handler, HandlerOpts) ->
  63. {_, Ref} = lists:keyfind(listener, 1, Env),
  64. ranch:remove_connection(Ref),
  65. [Socket, Transport] = cowboy_req:get([socket, transport], Req),
  66. State = #state{env=Env, socket=Socket, transport=Transport,
  67. handler=Handler, handler_opts=HandlerOpts},
  68. case catch websocket_upgrade(State, Req) of
  69. {ok, State2, Req2} -> handler_init(State2, Req2);
  70. {'EXIT', _Reason} -> upgrade_error(Req, Env)
  71. end.
  72. -spec websocket_upgrade(#state{}, Req)
  73. -> {ok, #state{}, Req} when Req::cowboy_req:req().
  74. websocket_upgrade(State, Req) ->
  75. {ok, ConnTokens, Req2}
  76. = cowboy_req:parse_header(<<"connection">>, Req),
  77. true = lists:member(<<"upgrade">>, ConnTokens),
  78. %% @todo Should probably send a 426 if the Upgrade header is missing.
  79. {ok, [<<"websocket">>], Req3}
  80. = cowboy_req:parse_header(<<"upgrade">>, Req2),
  81. {Version, Req4} = cowboy_req:header(<<"sec-websocket-version">>, Req3),
  82. IntVersion = list_to_integer(binary_to_list(Version)),
  83. true = (IntVersion =:= 7) orelse (IntVersion =:= 8)
  84. orelse (IntVersion =:= 13),
  85. {Key, Req5} = cowboy_req:header(<<"sec-websocket-key">>, Req4),
  86. false = Key =:= undefined,
  87. websocket_extensions(State#state{key=Key},
  88. cowboy_req:set_meta(websocket_version, IntVersion, Req5)).
  89. -spec websocket_extensions(#state{}, Req)
  90. -> {ok, #state{}, Req} when Req::cowboy_req:req().
  91. websocket_extensions(State, Req) ->
  92. case cowboy_req:parse_header(<<"sec-websocket-extensions">>, Req) of
  93. {ok, Extensions, Req2} when Extensions =/= undefined ->
  94. [Compress] = cowboy_req:get([resp_compress], Req),
  95. case lists:keyfind(<<"x-webkit-deflate-frame">>, 1, Extensions) of
  96. {<<"x-webkit-deflate-frame">>, []} when Compress =:= true ->
  97. Inflate = zlib:open(),
  98. Deflate = zlib:open(),
  99. % Since we are negotiating an unconstrained deflate-frame
  100. % then we must be willing to accept frames using the
  101. % maximum window size which is 2^15. The negative value
  102. % indicates that zlib headers are not used.
  103. ok = zlib:inflateInit(Inflate, -15),
  104. % Initialize the deflater with a window size of 2^15 bits and disable
  105. % the zlib headers.
  106. ok = zlib:deflateInit(Deflate, best_compression, deflated, -15, 8, default),
  107. {ok, State#state{
  108. deflate_frame = true,
  109. inflate_state = Inflate,
  110. inflate_buffer = <<>>,
  111. deflate_state = Deflate
  112. }, Req2};
  113. _ ->
  114. {ok, State, Req2}
  115. end;
  116. _ ->
  117. {ok, State, Req}
  118. end.
  119. -spec handler_init(#state{}, Req)
  120. -> {ok, Req, cowboy_middleware:env()} | {error, 400, Req}
  121. | {suspend, module(), atom(), [any()]}
  122. when Req::cowboy_req:req().
  123. handler_init(State=#state{env=Env, transport=Transport,
  124. handler=Handler, handler_opts=HandlerOpts}, Req) ->
  125. try Handler:websocket_init(Transport:name(), Req, HandlerOpts) of
  126. {ok, Req2, HandlerState} ->
  127. websocket_handshake(State, Req2, HandlerState);
  128. {ok, Req2, HandlerState, hibernate} ->
  129. websocket_handshake(State#state{hibernate=true},
  130. Req2, HandlerState);
  131. {ok, Req2, HandlerState, Timeout} ->
  132. websocket_handshake(State#state{timeout=Timeout},
  133. Req2, HandlerState);
  134. {ok, Req2, HandlerState, Timeout, hibernate} ->
  135. websocket_handshake(State#state{timeout=Timeout,
  136. hibernate=true}, Req2, HandlerState);
  137. {shutdown, Req2} ->
  138. cowboy_req:ensure_response(Req2, 400),
  139. {ok, Req2, [{result, closed}|Env]}
  140. catch Class:Reason ->
  141. error_logger:error_msg(
  142. "** Cowboy handler ~p terminating in ~p/~p~n"
  143. " for the reason ~p:~p~n** Options were ~p~n"
  144. "** Request was ~p~n** Stacktrace: ~p~n~n",
  145. [Handler, websocket_init, 3, Class, Reason, HandlerOpts,
  146. cowboy_req:to_list(Req),erlang:get_stacktrace()]),
  147. upgrade_error(Req, Env)
  148. end.
  149. %% Only send an error reply if there is no resp_sent message.
  150. -spec upgrade_error(Req, Env) -> {ok, Req, Env} | {error, 400, Req}
  151. when Req::cowboy_req:req(), Env::cowboy_middleware:env().
  152. upgrade_error(Req, Env) ->
  153. receive
  154. {cowboy_req, resp_sent} ->
  155. {ok, Req, [{result, closed}|Env]}
  156. after 0 ->
  157. {error, 400, Req}
  158. end.
  159. -spec websocket_handshake(#state{}, Req, any())
  160. -> {ok, Req, cowboy_middleware:env()}
  161. | {suspend, module(), atom(), [any()]}
  162. when Req::cowboy_req:req().
  163. websocket_handshake(State=#state{
  164. transport=Transport, key=Key, deflate_frame=DeflateFrame},
  165. Req, HandlerState) ->
  166. Challenge = base64:encode(crypto:sha(
  167. << Key/binary, "258EAFA5-E914-47DA-95CA-C5AB0DC85B11" >>)),
  168. Extensions = case DeflateFrame of
  169. false -> [];
  170. true -> [{<<"sec-websocket-extensions">>, <<"x-webkit-deflate-frame">>}]
  171. end,
  172. {ok, Req2} = cowboy_req:upgrade_reply(
  173. 101,
  174. [{<<"upgrade">>, <<"websocket">>},
  175. {<<"sec-websocket-accept">>, Challenge}|
  176. Extensions],
  177. Req),
  178. %% Flush the resp_sent message before moving on.
  179. receive {cowboy_req, resp_sent} -> ok after 0 -> ok end,
  180. State2 = handler_loop_timeout(State),
  181. handler_before_loop(State2#state{key=undefined,
  182. messages=Transport:messages()}, Req2, HandlerState, <<>>).
  183. -spec handler_before_loop(#state{}, Req, any(), binary())
  184. -> {ok, Req, cowboy_middleware:env()}
  185. | {suspend, module(), atom(), [any()]}
  186. when Req::cowboy_req:req().
  187. handler_before_loop(State=#state{
  188. socket=Socket, transport=Transport, hibernate=true},
  189. Req, HandlerState, SoFar) ->
  190. Transport:setopts(Socket, [{active, once}]),
  191. {suspend, ?MODULE, handler_loop,
  192. [State#state{hibernate=false}, Req, HandlerState, SoFar]};
  193. handler_before_loop(State=#state{socket=Socket, transport=Transport},
  194. Req, HandlerState, SoFar) ->
  195. Transport:setopts(Socket, [{active, once}]),
  196. handler_loop(State, Req, HandlerState, SoFar).
  197. -spec handler_loop_timeout(#state{}) -> #state{}.
  198. handler_loop_timeout(State=#state{timeout=infinity}) ->
  199. State#state{timeout_ref=undefined};
  200. handler_loop_timeout(State=#state{timeout=Timeout, timeout_ref=PrevRef}) ->
  201. _ = case PrevRef of undefined -> ignore; PrevRef ->
  202. erlang:cancel_timer(PrevRef) end,
  203. TRef = erlang:start_timer(Timeout, self(), ?MODULE),
  204. State#state{timeout_ref=TRef}.
  205. %% @private
  206. -spec handler_loop(#state{}, Req, any(), binary())
  207. -> {ok, Req, cowboy_middleware:env()}
  208. | {suspend, module(), atom(), [any()]}
  209. when Req::cowboy_req:req().
  210. handler_loop(State=#state{socket=Socket, messages={OK, Closed, Error},
  211. timeout_ref=TRef}, Req, HandlerState, SoFar) ->
  212. receive
  213. {OK, Socket, Data} ->
  214. State2 = handler_loop_timeout(State),
  215. websocket_data(State2, Req, HandlerState,
  216. << SoFar/binary, Data/binary >>);
  217. {Closed, Socket} ->
  218. handler_terminate(State, Req, HandlerState, {error, closed});
  219. {Error, Socket, Reason} ->
  220. handler_terminate(State, Req, HandlerState, {error, Reason});
  221. {timeout, TRef, ?MODULE} ->
  222. websocket_close(State, Req, HandlerState, {normal, timeout});
  223. {timeout, OlderTRef, ?MODULE} when is_reference(OlderTRef) ->
  224. handler_loop(State, Req, HandlerState, SoFar);
  225. Message ->
  226. handler_call(State, Req, HandlerState,
  227. SoFar, websocket_info, Message, fun handler_before_loop/4)
  228. end.
  229. %% All frames passing through this function are considered valid,
  230. %% with the only exception of text and close frames with a payload
  231. %% which may still contain errors.
  232. -spec websocket_data(#state{}, Req, any(), binary())
  233. -> {ok, Req, cowboy_middleware:env()}
  234. | {suspend, module(), atom(), [any()]}
  235. when Req::cowboy_req:req().
  236. %% RSV bits MUST be 0 unless an extension is negotiated
  237. %% that defines meanings for non-zero values.
  238. websocket_data(State, Req, HandlerState, << _:1, Rsv:3, _/bits >>)
  239. when Rsv =/= 0, State#state.deflate_frame =:= false ->
  240. websocket_close(State, Req, HandlerState, {error, badframe});
  241. %% Invalid opcode. Note that these opcodes may be used by extensions.
  242. websocket_data(State, Req, HandlerState, << _:4, Opcode:4, _/bits >>)
  243. when Opcode > 2, Opcode =/= 8, Opcode =/= 9, Opcode =/= 10 ->
  244. websocket_close(State, Req, HandlerState, {error, badframe});
  245. %% Control frames MUST NOT be fragmented.
  246. websocket_data(State, Req, HandlerState, << 0:1, _:3, Opcode:4, _/bits >>)
  247. when Opcode >= 8 ->
  248. websocket_close(State, Req, HandlerState, {error, badframe});
  249. %% A frame MUST NOT use the zero opcode unless fragmentation was initiated.
  250. websocket_data(State=#state{frag_state=undefined}, Req, HandlerState,
  251. << _:4, 0:4, _/bits >>) ->
  252. websocket_close(State, Req, HandlerState, {error, badframe});
  253. %% Non-control opcode when expecting control message or next fragment.
  254. websocket_data(State=#state{frag_state={nofin, _, _}}, Req, HandlerState,
  255. << _:4, Opcode:4, _/bits >>)
  256. when Opcode =/= 0, Opcode < 8 ->
  257. websocket_close(State, Req, HandlerState, {error, badframe});
  258. %% Close control frame length MUST be 0 or >= 2.
  259. websocket_data(State, Req, HandlerState, << _:4, 8:4, _:1, 1:7, _/bits >>) ->
  260. websocket_close(State, Req, HandlerState, {error, badframe});
  261. %% Close control frame with incomplete close code. Need more data.
  262. websocket_data(State, Req, HandlerState,
  263. Data = << _:4, 8:4, 1:1, Len:7, _/bits >>)
  264. when Len > 1, byte_size(Data) < 8 ->
  265. handler_before_loop(State, Req, HandlerState, Data);
  266. %% 7 bits payload length.
  267. websocket_data(State, Req, HandlerState, << Fin:1, Rsv:3/bits, Opcode:4, 1:1,
  268. Len:7, MaskKey:32, Rest/bits >>)
  269. when Len < 126 ->
  270. websocket_data(State, Req, HandlerState,
  271. Opcode, Len, MaskKey, Rest, Rsv, Fin);
  272. %% 16 bits payload length.
  273. websocket_data(State, Req, HandlerState, << Fin:1, Rsv:3/bits, Opcode:4, 1:1,
  274. 126:7, Len:16, MaskKey:32, Rest/bits >>)
  275. when Len > 125, Opcode < 8 ->
  276. websocket_data(State, Req, HandlerState,
  277. Opcode, Len, MaskKey, Rest, Rsv, Fin);
  278. %% 63 bits payload length.
  279. websocket_data(State, Req, HandlerState, << Fin:1, Rsv:3/bits, Opcode:4, 1:1,
  280. 127:7, 0:1, Len:63, MaskKey:32, Rest/bits >>)
  281. when Len > 16#ffff, Opcode < 8 ->
  282. websocket_data(State, Req, HandlerState,
  283. Opcode, Len, MaskKey, Rest, Rsv, Fin);
  284. %% When payload length is over 63 bits, the most significant bit MUST be 0.
  285. websocket_data(State, Req, HandlerState, << _:8, 1:1, 127:7, 1:1, _:7, _/binary >>) ->
  286. websocket_close(State, Req, HandlerState, {error, badframe});
  287. %% All frames sent from the client to the server are masked.
  288. websocket_data(State, Req, HandlerState, << _:8, 0:1, _/bits >>) ->
  289. websocket_close(State, Req, HandlerState, {error, badframe});
  290. %% For the next two clauses, it can be one of the following:
  291. %%
  292. %% * The minimal number of bytes MUST be used to encode the length
  293. %% * All control frames MUST have a payload length of 125 bytes or less
  294. websocket_data(State, Req, HandlerState, << _:9, 126:7, _:48, _/bits >>) ->
  295. websocket_close(State, Req, HandlerState, {error, badframe});
  296. websocket_data(State, Req, HandlerState, << _:9, 127:7, _:96, _/bits >>) ->
  297. websocket_close(State, Req, HandlerState, {error, badframe});
  298. %% Need more data.
  299. websocket_data(State, Req, HandlerState, Data) ->
  300. handler_before_loop(State, Req, HandlerState, Data).
  301. %% Initialize or update fragmentation state.
  302. -spec websocket_data(#state{}, Req, any(),
  303. opcode(), non_neg_integer(), mask_key(), binary(), rsv(), 0 | 1)
  304. -> {ok, Req, cowboy_middleware:env()}
  305. | {suspend, module(), atom(), [any()]}
  306. when Req::cowboy_req:req().
  307. %% The opcode is only included in the first frame fragment.
  308. websocket_data(State=#state{frag_state=undefined}, Req, HandlerState,
  309. Opcode, Len, MaskKey, Data, Rsv, 0) ->
  310. websocket_payload(State#state{frag_state={nofin, Opcode, <<>>}},
  311. Req, HandlerState, 0, Len, MaskKey, <<>>, Data, Rsv);
  312. %% Subsequent frame fragments.
  313. websocket_data(State=#state{frag_state={nofin, _, _}}, Req, HandlerState,
  314. 0, Len, MaskKey, Data, Rsv, 0) ->
  315. websocket_payload(State, Req, HandlerState,
  316. 0, Len, MaskKey, <<>>, Data, Rsv);
  317. %% Final frame fragment.
  318. websocket_data(State=#state{frag_state={nofin, Opcode, SoFar}},
  319. Req, HandlerState, 0, Len, MaskKey, Data, Rsv, 1) ->
  320. websocket_payload(State#state{frag_state={fin, Opcode, SoFar}},
  321. Req, HandlerState, 0, Len, MaskKey, <<>>, Data, Rsv);
  322. %% Unfragmented frame.
  323. websocket_data(State, Req, HandlerState, Opcode, Len, MaskKey, Data, Rsv, 1) ->
  324. websocket_payload(State, Req, HandlerState,
  325. Opcode, Len, MaskKey, <<>>, Data, Rsv).
  326. -spec websocket_payload(#state{}, Req, any(),
  327. opcode(), non_neg_integer(), mask_key(), binary(), binary(), rsv())
  328. -> {ok, Req, cowboy_middleware:env()}
  329. | {suspend, module(), atom(), [any()]}
  330. when Req::cowboy_req:req().
  331. %% Close control frames with a payload MUST contain a valid close code.
  332. websocket_payload(State, Req, HandlerState,
  333. Opcode=8, Len, MaskKey, <<>>, << MaskedCode:2/binary, Rest/bits >>, Rsv) ->
  334. Unmasked = << Code:16 >> = websocket_unmask(MaskedCode, MaskKey, <<>>),
  335. if Code < 1000; Code =:= 1004; Code =:= 1005; Code =:= 1006;
  336. (Code > 1011) and (Code < 3000); Code > 4999 ->
  337. websocket_close(State, Req, HandlerState, {error, badframe});
  338. true ->
  339. websocket_payload(State, Req, HandlerState,
  340. Opcode, Len - 2, MaskKey, Unmasked, Rest, Rsv)
  341. end;
  342. %% Text frames and close control frames MUST have a payload that is valid UTF-8.
  343. websocket_payload(State=#state{utf8_state=Incomplete},
  344. Req, HandlerState, Opcode, Len, MaskKey, Unmasked, Data, Rsv)
  345. when (byte_size(Data) < Len) andalso ((Opcode =:= 1) orelse
  346. ((Opcode =:= 8) andalso (Unmasked =/= <<>>))) ->
  347. Unmasked2 = websocket_unmask(Data,
  348. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  349. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, false, State),
  350. case is_utf8(<< Incomplete/binary, Unmasked3/binary >>) of
  351. false ->
  352. websocket_close(State2, Req, HandlerState, {error, badencoding});
  353. Utf8State ->
  354. websocket_payload_loop(State2#state{utf8_state=Utf8State},
  355. Req, HandlerState, Opcode, Len - byte_size(Data), MaskKey,
  356. << Unmasked/binary, Unmasked3/binary >>, Rsv)
  357. end;
  358. websocket_payload(State=#state{utf8_state=Incomplete},
  359. Req, HandlerState, Opcode, Len, MaskKey, Unmasked, Data, Rsv)
  360. when Opcode =:= 1; (Opcode =:= 8) and (Unmasked =/= <<>>) ->
  361. << End:Len/binary, Rest/bits >> = Data,
  362. Unmasked2 = websocket_unmask(End,
  363. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  364. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, true, State),
  365. case is_utf8(<< Incomplete/binary, Unmasked3/binary >>) of
  366. <<>> ->
  367. websocket_dispatch(State2#state{utf8_state= <<>>},
  368. Req, HandlerState, Rest, Opcode,
  369. << Unmasked/binary, Unmasked3/binary >>);
  370. _ ->
  371. websocket_close(State2, Req, HandlerState, {error, badencoding})
  372. end;
  373. %% Fragmented text frames may cut payload in the middle of UTF-8 codepoints.
  374. websocket_payload(State=#state{frag_state={_, 1, _}, utf8_state=Incomplete},
  375. Req, HandlerState, Opcode=0, Len, MaskKey, Unmasked, Data, Rsv)
  376. when byte_size(Data) < Len ->
  377. Unmasked2 = websocket_unmask(Data,
  378. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  379. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, false, State),
  380. case is_utf8(<< Incomplete/binary, Unmasked3/binary >>) of
  381. false ->
  382. websocket_close(State2, Req, HandlerState, {error, badencoding});
  383. Utf8State ->
  384. websocket_payload_loop(State2#state{utf8_state=Utf8State},
  385. Req, HandlerState, Opcode, Len - byte_size(Data), MaskKey,
  386. << Unmasked/binary, Unmasked3/binary >>, Rsv)
  387. end;
  388. websocket_payload(State=#state{frag_state={Fin, 1, _}, utf8_state=Incomplete},
  389. Req, HandlerState, Opcode=0, Len, MaskKey, Unmasked, Data, Rsv) ->
  390. << End:Len/binary, Rest/bits >> = Data,
  391. Unmasked2 = websocket_unmask(End,
  392. rotate_mask_key(MaskKey, byte_size(Unmasked)), <<>>),
  393. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, true, State),
  394. case is_utf8(<< Incomplete/binary, Unmasked3/binary >>) of
  395. <<>> ->
  396. websocket_dispatch(State2#state{utf8_state= <<>>},
  397. Req, HandlerState, Rest, Opcode,
  398. << Unmasked/binary, Unmasked3/binary >>);
  399. Utf8State when is_binary(Utf8State), Fin =:= nofin ->
  400. websocket_dispatch(State2#state{utf8_state=Utf8State},
  401. Req, HandlerState, Rest, Opcode,
  402. << Unmasked/binary, Unmasked3/binary >>);
  403. _ ->
  404. websocket_close(State, Req, HandlerState, {error, badencoding})
  405. end;
  406. %% Other frames have a binary payload.
  407. websocket_payload(State, Req, HandlerState,
  408. Opcode, Len, MaskKey, Unmasked, Data, Rsv)
  409. when byte_size(Data) < Len ->
  410. Unmasked2 = websocket_unmask(Data,
  411. rotate_mask_key(MaskKey, byte_size(Unmasked)), Unmasked),
  412. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, false, State),
  413. websocket_payload_loop(State2, Req, HandlerState,
  414. Opcode, Len - byte_size(Data), MaskKey, Unmasked3, Rsv);
  415. websocket_payload(State, Req, HandlerState,
  416. Opcode, Len, MaskKey, Unmasked, Data, Rsv) ->
  417. << End:Len/binary, Rest/bits >> = Data,
  418. Unmasked2 = websocket_unmask(End,
  419. rotate_mask_key(MaskKey, byte_size(Unmasked)), Unmasked),
  420. {Unmasked3, State2} = websocket_inflate_frame(Unmasked2, Rsv, true, State),
  421. websocket_dispatch(State2, Req, HandlerState, Rest, Opcode, Unmasked3).
  422. -spec websocket_inflate_frame(binary(), rsv(), boolean(), #state{}) ->
  423. {binary(), #state{}}.
  424. websocket_inflate_frame(Data, << Rsv1:1, _:2 >>, _,
  425. #state{deflate_frame = DeflateFrame} = State)
  426. when DeflateFrame =:= false orelse Rsv1 =:= 0 ->
  427. {Data, State};
  428. websocket_inflate_frame(Data, << 1:1, _:2 >>, false,
  429. #state{inflate_buffer = Buffer} = State) ->
  430. {<<>>, State#state{inflate_buffer = << Buffer/binary, Data/binary >>}};
  431. websocket_inflate_frame(Data, << 1:1, _:2 >>, true,
  432. #state{inflate_state = Inflate, inflate_buffer = Buffer} = State) ->
  433. Deflated = << Buffer/binary, Data/binary, 0:8, 0:8, 255:8, 255:8 >>,
  434. Result = zlib:inflate(Inflate, Deflated),
  435. {iolist_to_binary(Result), State#state{inflate_buffer = <<>>}}.
  436. -spec websocket_unmask(B, mask_key(), B) -> B when B::binary().
  437. websocket_unmask(<<>>, _, Unmasked) ->
  438. Unmasked;
  439. websocket_unmask(<< O:32, Rest/bits >>, MaskKey, Acc) ->
  440. T = O bxor MaskKey,
  441. websocket_unmask(Rest, MaskKey, << Acc/binary, T:32 >>);
  442. websocket_unmask(<< O:24 >>, MaskKey, Acc) ->
  443. << MaskKey2:24, _:8 >> = << MaskKey:32 >>,
  444. T = O bxor MaskKey2,
  445. << Acc/binary, T:24 >>;
  446. websocket_unmask(<< O:16 >>, MaskKey, Acc) ->
  447. << MaskKey2:16, _:16 >> = << MaskKey:32 >>,
  448. T = O bxor MaskKey2,
  449. << Acc/binary, T:16 >>;
  450. websocket_unmask(<< O:8 >>, MaskKey, Acc) ->
  451. << MaskKey2:8, _:24 >> = << MaskKey:32 >>,
  452. T = O bxor MaskKey2,
  453. << Acc/binary, T:8 >>.
  454. %% Because we unmask on the fly we need to continue from the right mask byte.
  455. -spec rotate_mask_key(mask_key(), non_neg_integer()) -> mask_key().
  456. rotate_mask_key(MaskKey, UnmaskedLen) ->
  457. Left = UnmaskedLen rem 4,
  458. Right = 4 - Left,
  459. (MaskKey bsl (Left * 8)) + (MaskKey bsr (Right * 8)).
  460. %% Returns <<>> if the argument is valid UTF-8, false if not,
  461. %% or the incomplete part of the argument if we need more data.
  462. -spec is_utf8(binary()) -> false | binary().
  463. is_utf8(Valid = <<>>) ->
  464. Valid;
  465. is_utf8(<< _/utf8, Rest/binary >>) ->
  466. is_utf8(Rest);
  467. %% 2 bytes. Codepages C0 and C1 are invalid; fail early.
  468. is_utf8(<< 2#1100000:7, _/bits >>) ->
  469. false;
  470. is_utf8(Incomplete = << 2#110:3, _:5 >>) ->
  471. Incomplete;
  472. %% 3 bytes.
  473. is_utf8(Incomplete = << 2#1110:4, _:4 >>) ->
  474. Incomplete;
  475. is_utf8(Incomplete = << 2#1110:4, _:4, 2#10:2, _:6 >>) ->
  476. Incomplete;
  477. %% 4 bytes. Codepage F4 may have invalid values greater than 0x10FFFF.
  478. is_utf8(<< 2#11110100:8, 2#10:2, High:6, _/bits >>) when High >= 2#10000 ->
  479. false;
  480. is_utf8(Incomplete = << 2#11110:5, _:3 >>) ->
  481. Incomplete;
  482. is_utf8(Incomplete = << 2#11110:5, _:3, 2#10:2, _:6 >>) ->
  483. Incomplete;
  484. is_utf8(Incomplete = << 2#11110:5, _:3, 2#10:2, _:6, 2#10:2, _:6 >>) ->
  485. Incomplete;
  486. %% Invalid.
  487. is_utf8(_) ->
  488. false.
  489. -spec websocket_payload_loop(#state{}, Req, any(),
  490. opcode(), non_neg_integer(), mask_key(), binary(), rsv())
  491. -> {ok, Req, cowboy_middleware:env()}
  492. | {suspend, module(), atom(), [any()]}
  493. when Req::cowboy_req:req().
  494. websocket_payload_loop(State=#state{socket=Socket, transport=Transport,
  495. messages={OK, Closed, Error}, timeout_ref=TRef},
  496. Req, HandlerState, Opcode, Len, MaskKey, Unmasked, Rsv) ->
  497. Transport:setopts(Socket, [{active, once}]),
  498. receive
  499. {OK, Socket, Data} ->
  500. State2 = handler_loop_timeout(State),
  501. websocket_payload(State2, Req, HandlerState,
  502. Opcode, Len, MaskKey, Unmasked, Data, Rsv);
  503. {Closed, Socket} ->
  504. handler_terminate(State, Req, HandlerState, {error, closed});
  505. {Error, Socket, Reason} ->
  506. handler_terminate(State, Req, HandlerState, {error, Reason});
  507. {timeout, TRef, ?MODULE} ->
  508. websocket_close(State, Req, HandlerState, {normal, timeout});
  509. {timeout, OlderTRef, ?MODULE} when is_reference(OlderTRef) ->
  510. websocket_payload_loop(State, Req, HandlerState,
  511. Opcode, Len, MaskKey, Unmasked, Rsv);
  512. Message ->
  513. handler_call(State, Req, HandlerState,
  514. <<>>, websocket_info, Message,
  515. fun (State2, Req2, HandlerState2, _) ->
  516. websocket_payload_loop(State2, Req2, HandlerState2,
  517. Opcode, Len, MaskKey, Unmasked, Rsv)
  518. end)
  519. end.
  520. -spec websocket_dispatch(#state{}, Req, any(), binary(), opcode(), binary())
  521. -> {ok, Req, cowboy_middleware:env()}
  522. | {suspend, module(), atom(), [any()]}
  523. when Req::cowboy_req:req().
  524. %% Continuation frame.
  525. websocket_dispatch(State=#state{frag_state={nofin, Opcode, SoFar}},
  526. Req, HandlerState, RemainingData, 0, Payload) ->
  527. websocket_data(State#state{frag_state={nofin, Opcode,
  528. << SoFar/binary, Payload/binary >>}}, Req, HandlerState, RemainingData);
  529. %% Last continuation frame.
  530. websocket_dispatch(State=#state{frag_state={fin, Opcode, SoFar}},
  531. Req, HandlerState, RemainingData, 0, Payload) ->
  532. websocket_dispatch(State#state{frag_state=undefined}, Req, HandlerState,
  533. RemainingData, Opcode, << SoFar/binary, Payload/binary >>);
  534. %% Text frame.
  535. websocket_dispatch(State, Req, HandlerState, RemainingData, 1, Payload) ->
  536. handler_call(State, Req, HandlerState, RemainingData,
  537. websocket_handle, {text, Payload}, fun websocket_data/4);
  538. %% Binary frame.
  539. websocket_dispatch(State, Req, HandlerState, RemainingData, 2, Payload) ->
  540. handler_call(State, Req, HandlerState, RemainingData,
  541. websocket_handle, {binary, Payload}, fun websocket_data/4);
  542. %% Close control frame.
  543. websocket_dispatch(State, Req, HandlerState, _RemainingData, 8, <<>>) ->
  544. websocket_close(State, Req, HandlerState, {remote, closed});
  545. websocket_dispatch(State, Req, HandlerState, _RemainingData, 8,
  546. << Code:16, Payload/bits >>) ->
  547. websocket_close(State, Req, HandlerState, {remote, Code, Payload});
  548. %% Ping control frame. Send a pong back and forward the ping to the handler.
  549. websocket_dispatch(State=#state{socket=Socket, transport=Transport},
  550. Req, HandlerState, RemainingData, 9, Payload) ->
  551. Len = payload_length_to_binary(byte_size(Payload)),
  552. Transport:send(Socket, << 1:1, 0:3, 10:4, 0:1, Len/bits, Payload/binary >>),
  553. handler_call(State, Req, HandlerState, RemainingData,
  554. websocket_handle, {ping, Payload}, fun websocket_data/4);
  555. %% Pong control frame.
  556. websocket_dispatch(State, Req, HandlerState, RemainingData, 10, Payload) ->
  557. handler_call(State, Req, HandlerState, RemainingData,
  558. websocket_handle, {pong, Payload}, fun websocket_data/4).
  559. -spec handler_call(#state{}, Req, any(), binary(), atom(), any(), fun())
  560. -> {ok, Req, cowboy_middleware:env()}
  561. | {suspend, module(), atom(), [any()]}
  562. when Req::cowboy_req:req().
  563. handler_call(State=#state{handler=Handler, handler_opts=HandlerOpts}, Req,
  564. HandlerState, RemainingData, Callback, Message, NextState) ->
  565. try Handler:Callback(Message, Req, HandlerState) of
  566. {ok, Req2, HandlerState2} ->
  567. NextState(State, Req2, HandlerState2, RemainingData);
  568. {ok, Req2, HandlerState2, hibernate} ->
  569. NextState(State#state{hibernate=true},
  570. Req2, HandlerState2, RemainingData);
  571. {reply, Payload, Req2, HandlerState2}
  572. when is_tuple(Payload) ->
  573. case websocket_send(Payload, State) of
  574. {ok, State2} ->
  575. NextState(State2, Req2, HandlerState2, RemainingData);
  576. {shutdown, State2} ->
  577. handler_terminate(State2, Req2, HandlerState2,
  578. {normal, shutdown});
  579. {{error, _} = Error, State2} ->
  580. handler_terminate(State2, Req2, HandlerState2, Error)
  581. end;
  582. {reply, Payload, Req2, HandlerState2, hibernate}
  583. when is_tuple(Payload) ->
  584. case websocket_send(Payload, State) of
  585. {ok, State2} ->
  586. NextState(State2#state{hibernate=true},
  587. Req2, HandlerState2, RemainingData);
  588. {shutdown, State2} ->
  589. handler_terminate(State2, Req2, HandlerState2,
  590. {normal, shutdown});
  591. {{error, _} = Error, State2} ->
  592. handler_terminate(State2, Req2, HandlerState2, Error)
  593. end;
  594. {reply, Payload, Req2, HandlerState2}
  595. when is_list(Payload) ->
  596. case websocket_send_many(Payload, State) of
  597. {ok, State2} ->
  598. NextState(State2, Req2, HandlerState2, RemainingData);
  599. {shutdown, State2} ->
  600. handler_terminate(State2, Req2, HandlerState2,
  601. {normal, shutdown});
  602. {{error, _} = Error, State2} ->
  603. handler_terminate(State2, Req2, HandlerState2, Error)
  604. end;
  605. {reply, Payload, Req2, HandlerState2, hibernate}
  606. when is_list(Payload) ->
  607. case websocket_send_many(Payload, State) of
  608. {ok, State2} ->
  609. NextState(State2#state{hibernate=true},
  610. Req2, HandlerState2, RemainingData);
  611. {shutdown, State2} ->
  612. handler_terminate(State2, Req2, HandlerState2,
  613. {normal, shutdown});
  614. {{error, _} = Error, State2} ->
  615. handler_terminate(State2, Req2, HandlerState2, Error)
  616. end;
  617. {shutdown, Req2, HandlerState2} ->
  618. websocket_close(State, Req2, HandlerState2, {normal, shutdown})
  619. catch Class:Reason ->
  620. PLReq = cowboy_req:to_list(Req),
  621. error_logger:error_msg(
  622. "** Cowboy handler ~p terminating in ~p/~p~n"
  623. " for the reason ~p:~p~n** Message was ~p~n"
  624. "** Options were ~p~n** Handler state was ~p~n"
  625. "** Request was ~p~n** Stacktrace: ~p~n~n",
  626. [Handler, Callback, 3, Class, Reason, Message, HandlerOpts,
  627. HandlerState, PLReq, erlang:get_stacktrace()]),
  628. websocket_close(State, Req, HandlerState, {error, handler})
  629. end.
  630. websocket_opcode(text) -> 1;
  631. websocket_opcode(binary) -> 2;
  632. websocket_opcode(close) -> 8;
  633. websocket_opcode(ping) -> 9;
  634. websocket_opcode(pong) -> 10.
  635. -spec websocket_deflate_frame(opcode(), binary(), #state{}) -> {binary(), <<_:3>>, #state{}}.
  636. websocket_deflate_frame(Opcode, Payload,
  637. State=#state{deflate_frame = DeflateFrame})
  638. when DeflateFrame =:= false orelse Opcode >= 8 ->
  639. {Payload, <<0:3>>, State};
  640. websocket_deflate_frame(_, Payload, State=#state{deflate_state = Deflate}) ->
  641. Deflated = iolist_to_binary(zlib:deflate(Deflate, Payload, sync)),
  642. DeflatedBodyLength = erlang:size(Deflated) - 4,
  643. Deflated1 = case Deflated of
  644. <<Body:DeflatedBodyLength/binary, 0:8, 0:8, 255:8, 255:8>> -> Body;
  645. _ -> Deflated
  646. end,
  647. {Deflated1, <<1:1, 0:2>>, State}.
  648. -spec websocket_send(frame(), #state{})
  649. -> {ok, #state{}} | {shutdown, #state{}} | {{error, atom()}, #state{}}.
  650. websocket_send(Type, State=#state{socket=Socket, transport=Transport})
  651. when Type =:= close ->
  652. Opcode = websocket_opcode(Type),
  653. case Transport:send(Socket, << 1:1, 0:3, Opcode:4, 0:8 >>) of
  654. ok -> {shutdown, State};
  655. Error -> {Error, State}
  656. end;
  657. websocket_send(Type, State=#state{socket=Socket, transport=Transport})
  658. when Type =:= ping; Type =:= pong ->
  659. Opcode = websocket_opcode(Type),
  660. {Transport:send(Socket, << 1:1, 0:3, Opcode:4, 0:8 >>), State};
  661. websocket_send({close, Payload}, State) ->
  662. websocket_send({close, 1000, Payload}, State);
  663. websocket_send({Type = close, StatusCode, Payload}, State=#state{
  664. socket=Socket, transport=Transport}) ->
  665. Opcode = websocket_opcode(Type),
  666. Len = 2 + iolist_size(Payload),
  667. %% Control packets must not be > 125 in length.
  668. true = Len =< 125,
  669. BinLen = payload_length_to_binary(Len),
  670. Transport:send(Socket,
  671. [<< 1:1, 0:3, Opcode:4, 0:1, BinLen/bits, StatusCode:16 >>, Payload]),
  672. {shutdown, State};
  673. websocket_send({Type, Payload0}, State=#state{socket=Socket, transport=Transport}) ->
  674. Opcode = websocket_opcode(Type),
  675. {Payload, Rsv, State2} = websocket_deflate_frame(Opcode, iolist_to_binary(Payload0), State),
  676. Len = iolist_size(Payload),
  677. %% Control packets must not be > 125 in length.
  678. true = if Type =:= ping; Type =:= pong ->
  679. Len =< 125;
  680. true ->
  681. true
  682. end,
  683. BinLen = payload_length_to_binary(Len),
  684. {Transport:send(Socket,
  685. [<< 1:1, Rsv/bits, Opcode:4, 0:1, BinLen/bits >>, Payload]), State2}.
  686. -spec websocket_send_many([frame()], #state{})
  687. -> {ok, #state{}} | {shutdown, #state{}} | {{error, atom()}, #state{}}.
  688. websocket_send_many([], State) ->
  689. {ok, State};
  690. websocket_send_many([Frame|Tail], State) ->
  691. case websocket_send(Frame, State) of
  692. {ok, State2} -> websocket_send_many(Tail, State2);
  693. {shutdown, State2} -> {shutdown, State2};
  694. {Error, State2} -> {Error, State2}
  695. end.
  696. -spec websocket_close(#state{}, Req, any(),
  697. {atom(), atom()} | {remote, close_code(), binary()})
  698. -> {ok, Req, cowboy_middleware:env()}
  699. when Req::cowboy_req:req().
  700. websocket_close(State=#state{socket=Socket, transport=Transport},
  701. Req, HandlerState, Reason) ->
  702. case Reason of
  703. {normal, _} ->
  704. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1000:16 >>);
  705. {error, badframe} ->
  706. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1002:16 >>);
  707. {error, badencoding} ->
  708. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1007:16 >>);
  709. {error, handler} ->
  710. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, 1011:16 >>);
  711. {remote, closed} ->
  712. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:8 >>);
  713. {remote, Code, _} ->
  714. Transport:send(Socket, << 1:1, 0:3, 8:4, 0:1, 2:7, Code:16 >>)
  715. end,
  716. handler_terminate(State, Req, HandlerState, Reason).
  717. -spec handler_terminate(#state{}, Req, any(), atom() | {atom(), atom()})
  718. -> {ok, Req, cowboy_middleware:env()}
  719. when Req::cowboy_req:req().
  720. handler_terminate(#state{env=Env, handler=Handler, handler_opts=HandlerOpts},
  721. Req, HandlerState, TerminateReason) ->
  722. try
  723. Handler:websocket_terminate(TerminateReason, Req, HandlerState)
  724. catch Class:Reason ->
  725. PLReq = cowboy_req:to_list(Req),
  726. error_logger:error_msg(
  727. "** Cowboy handler ~p terminating in ~p/~p~n"
  728. " for the reason ~p:~p~n** Initial reason was ~p~n"
  729. "** Options were ~p~n** Handler state was ~p~n"
  730. "** Request was ~p~n** Stacktrace: ~p~n~n",
  731. [Handler, websocket_terminate, 3, Class, Reason, TerminateReason,
  732. HandlerOpts, HandlerState, PLReq, erlang:get_stacktrace()])
  733. end,
  734. {ok, Req, [{result, closed}|Env]}.
  735. -spec payload_length_to_binary(0..16#7fffffffffffffff)
  736. -> << _:7 >> | << _:23 >> | << _:71 >>.
  737. payload_length_to_binary(N) ->
  738. case N of
  739. N when N =< 125 -> << N:7 >>;
  740. N when N =< 16#ffff -> << 126:7, N:16 >>;
  741. N when N =< 16#7fffffffffffffff -> << 127:7, N:64 >>
  742. end.