main.c 17.1 KB
Newer Older
1
2
3
/* Copyright 2001,2002 Roger Dingledine, Matej Pfajfar. */
/* See LICENSE for licensing information */
/* $Id$ */
Roger Dingledine's avatar
Roger Dingledine committed
4
5
6
7
8

#include "or.h"

/********* START VARIABLES **********/

9
or_options_t options; /* command-line and config-file options */
10
int global_role;
Roger Dingledine's avatar
Roger Dingledine committed
11

Roger Dingledine's avatar
Roger Dingledine committed
12
static connection_t *connection_array[MAXCONNECTIONS] =
Roger Dingledine's avatar
Roger Dingledine committed
13
14
        { NULL };

Nick Mathewson's avatar
Nick Mathewson committed
15
static struct pollfd poll_array[MAXCONNECTIONS];
Roger Dingledine's avatar
Roger Dingledine committed
16

Roger Dingledine's avatar
Roger Dingledine committed
17
static int nfds=0; /* number of connections currently active */
Roger Dingledine's avatar
Roger Dingledine committed
18

19
20
static int please_dumpstats=0; /* whether we should dump stats during the loop */

Roger Dingledine's avatar
Roger Dingledine committed
21
/* private key */
22
static crypto_pk_env_t *prkey;
Roger Dingledine's avatar
Roger Dingledine committed
23
24
25

/********* END VARIABLES ************/

Roger Dingledine's avatar
Roger Dingledine committed
26
27
28
29
30
31
32
33
/****************************************************************************
*
* This section contains accessors and other methods on the connection_array
* and poll_array variables (which are global within this file and unavailable
* outside it).
*
****************************************************************************/

Roger Dingledine's avatar
Roger Dingledine committed
34
35
int connection_add(connection_t *conn) {

36
  if(nfds >= options.MaxConn-1) {
37
    log(LOG_INFO,"connection_add(): failing because nfds is too high.");
Roger Dingledine's avatar
Roger Dingledine committed
38
39
40
41
42
43
44
45
46
47
48
49
50
    return -1;
  }

  conn->poll_index = nfds;
  connection_set_poll_socket(conn);
  connection_array[nfds] = conn;

  /* zero these out here, because otherwise we'll inherit values from the previously freed one */
  poll_array[nfds].events = 0;
  poll_array[nfds].revents = 0;

  nfds++;

51
  log(LOG_INFO,"connection_add(): new conn type %d, socket %d, nfds %d.",conn->type, conn->s, nfds);
Roger Dingledine's avatar
Roger Dingledine committed
52
53
54
55
56
57
58
59
60
61
62
63
64
65

  return 0;
}

void connection_set_poll_socket(connection_t *conn) {
  poll_array[conn->poll_index].fd = conn->s;
}

int connection_remove(connection_t *conn) {
  int current_index;

  assert(conn);
  assert(nfds>0);

66
  log(LOG_INFO,"connection_remove(): removing socket %d, nfds now %d",conn->s, nfds-1);
Roger Dingledine's avatar
Roger Dingledine committed
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
  circuit_about_to_close_connection(conn); /* flush and send destroys for all circuits on this conn */

  current_index = conn->poll_index;
  if(current_index == nfds-1) { /* this is the end */
    nfds--;
    return 0;
  } 

  /* we replace this one with the one at the end, then free it */
  nfds--;
  poll_array[current_index].fd = poll_array[nfds].fd; 
  poll_array[current_index].events = poll_array[nfds].events;
  poll_array[current_index].revents = poll_array[nfds].revents;
  connection_array[current_index] = connection_array[nfds];
  connection_array[current_index]->poll_index = current_index;

  return 0;  
}

86
connection_t *connection_twin_get_by_addr_port(uint32_t addr, uint16_t port) {
87
88
89
90
91
  /* Find a connection to the router described by addr and port,
   *   or alternately any router which knows its key.
   * This connection *must* be in 'open' state.
   * If not, return NULL.
   */
92
93
  int i;
  connection_t *conn;
Roger Dingledine's avatar
Roger Dingledine committed
94
  routerinfo_t *router;
95
96
97

  /* first check if it's there exactly */
  conn = connection_exact_get_by_addr_port(addr,port);
98
  if(conn && connection_state_is_open(conn)) {
Roger Dingledine's avatar
Roger Dingledine committed
99
    log(LOG_INFO,"connection_twin_get_by_addr_port(): Found exact match.");
100
    return conn;
101
  }
102
103
104

  /* now check if any of the other open connections are a twin for this one */

Roger Dingledine's avatar
Roger Dingledine committed
105
106
107
108
109
110
111
  router = router_get_by_addr_port(addr,port);
  if(!router)
    return NULL;

  for(i=0;i<nfds;i++) {
    conn = connection_array[i];
    assert(conn);
112
    if(connection_state_is_open(conn) && !crypto_pk_cmp_keys(conn->pkey, router->pkey)) {
Roger Dingledine's avatar
Roger Dingledine committed
113
      log(LOG_INFO,"connection_twin_get_by_addr_port(): Found twin (%s).",conn->address);
Roger Dingledine's avatar
Roger Dingledine committed
114
115
116
      return conn;
    }
  }
117
118
119
120
121
122
123

  /* guess not */
  return NULL;

}

connection_t *connection_exact_get_by_addr_port(uint32_t addr, uint16_t port) {
Roger Dingledine's avatar
Roger Dingledine committed
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
  int i;
  connection_t *conn;

  for(i=0;i<nfds;i++) {
    conn = connection_array[i];
    assert(conn);
    if(conn->addr == addr && conn->port == port)
       return conn;
  }

  return NULL;
}

connection_t *connection_get_by_type(int type) {
  int i;
  connection_t *conn;

  for(i=0;i<nfds;i++) {
    conn = connection_array[i];
    if(conn->type == type)
       return conn;
  }

  return NULL;
}

Roger Dingledine's avatar
Roger Dingledine committed
150
151
152



153
/* FIXME can we cut this function out? */
154
connection_t *connect_to_router_as_op(routerinfo_t *router) {
155
  return connection_connect_to_router_as_op(router, options.ORPort);
156
157
}

Roger Dingledine's avatar
Roger Dingledine committed
158
159
160
161
162
163
164
void connection_watch_events(connection_t *conn, short events) {

  assert(conn && conn->poll_index < nfds);

  poll_array[conn->poll_index].events = events;
}

165
166
167
168
void connection_stop_reading(connection_t *conn) {

  assert(conn && conn->poll_index < nfds);

169
  log(LOG_DEBUG,"connection_stop_reading() called.");
170
171
172
173
174
175
176
177
178
179
180
  if(poll_array[conn->poll_index].events & POLLIN)
    poll_array[conn->poll_index].events -= POLLIN;
}

void connection_start_reading(connection_t *conn) {

  assert(conn && conn->poll_index < nfds);

  poll_array[conn->poll_index].events |= POLLIN;
}

181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
void connection_stop_writing(connection_t *conn) {

  assert(conn && conn->poll_index < nfds);

  if(poll_array[conn->poll_index].events & POLLOUT)
    poll_array[conn->poll_index].events -= POLLOUT;
}

void connection_start_writing(connection_t *conn) {

  assert(conn && conn->poll_index < nfds);

  poll_array[conn->poll_index].events |= POLLOUT;
}


Roger Dingledine's avatar
Roger Dingledine committed
197
198
199
200
201
202
203
204
void check_conn_read(int i) {
  int retval;
  connection_t *conn;

  if(poll_array[i].revents & POLLIN) { /* something to read */

    conn = connection_array[i];
    assert(conn);
205
//    log(LOG_DEBUG,"check_conn_read(): socket %d has something to read.",conn->s);
Roger Dingledine's avatar
Roger Dingledine committed
206
207
208
209
210

    if (conn->type == CONN_TYPE_OP_LISTENER) {
      retval = connection_op_handle_listener_read(conn);
    } else if (conn->type == CONN_TYPE_OR_LISTENER) {
      retval = connection_or_handle_listener_read(conn);
211
212
    } else if (conn->type == CONN_TYPE_AP_LISTENER) {
      retval = connection_ap_handle_listener_read(conn);
213
214
    } else if (conn->type == CONN_TYPE_DIR_LISTENER) {
      retval = connection_dir_handle_listener_read(conn);
Roger Dingledine's avatar
Roger Dingledine committed
215
216
217
218
    } else {
      retval = connection_read_to_buf(conn);
      if (retval >= 0) { /* all still well */
        retval = connection_process_inbuf(conn);
219
//      log(LOG_DEBUG,"check_conn_read(): connection_process_inbuf returned %d.",retval);
220
221
222
223
        if(retval >= 0 && !connection_state_is_open(conn) && conn->receiver_bucket == 0) {
          log(LOG_DEBUG,"check_conn_read(): receiver bucket reached 0 before handshake finished. Closing.");
          retval = -1;
        }
Roger Dingledine's avatar
Roger Dingledine committed
224
225
      }
    }
226

Roger Dingledine's avatar
Roger Dingledine committed
227
    if(retval < 0) { /* this connection is broken. remove it */
228
      log(LOG_INFO,"check_conn_read(): Connection broken, removing."); 
Roger Dingledine's avatar
Roger Dingledine committed
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
      connection_remove(conn);
      connection_free(conn);
      if(i<nfds) { /* we just replaced the one at i with a new one.
                      process it too. */
        check_conn_read(i);
      }
    }
  }
}

void check_conn_write(int i) {
  int retval;
  connection_t *conn;

  if(poll_array[i].revents & POLLOUT) { /* something to write */

    conn = connection_array[i];
246
//    log(LOG_DEBUG,"check_conn_write(): socket %d wants to write.",conn->s);
Roger Dingledine's avatar
Roger Dingledine committed
247

248
    if(connection_is_listener(conn)) {
Roger Dingledine's avatar
Roger Dingledine committed
249
250
251
      log(LOG_DEBUG,"check_conn_write(): Got a listener socket. Can't happen!");
      retval = -1;
    } else {
252
      /* else it's an OP, OR, or exit */
Roger Dingledine's avatar
Roger Dingledine committed
253
254
255
256
257
258
259
260
261
262
263
264
      retval = connection_flush_buf(conn); /* conns in CONNECTING state will fall through... */
      if(retval == 0) { /* it's done flushing */
        retval = connection_finished_flushing(conn); /* ...and get handled here. */
      }
    }

    if(retval < 0) { /* this connection is broken. remove it. */
      log(LOG_DEBUG,"check_conn_write(): Connection broken, removing.");
      connection_remove(conn);
      connection_free(conn);
      if(i<nfds) { /* we just replaced the one at i with a new one.
                      process it too. */
265
        check_conn_write(i);
Roger Dingledine's avatar
Roger Dingledine committed
266
267
268
269
270
271
272
273
274
275
276
277
      }
    }
  }
}

void check_conn_marked(int i) {
  connection_t *conn;

  conn = connection_array[i];
  assert(conn);
  if(conn->marked_for_close) {
    log(LOG_DEBUG,"check_conn_marked(): Cleaning up connection.");
278
279
280
281
    if(conn->s >= 0) { /* might be an incomplete exit connection */
      /* FIXME there's got to be a better way to check for this -- and make other checks? */
      connection_flush_buf(conn); /* flush it first */
    }
Roger Dingledine's avatar
Roger Dingledine committed
282
283
284
285
    connection_remove(conn);
    connection_free(conn);
    if(i<nfds) { /* we just replaced the one at i with a new one.
                    process it too. */
Roger Dingledine's avatar
Roger Dingledine committed
286
      check_conn_marked(i);
Roger Dingledine's avatar
Roger Dingledine committed
287
288
289
290
    }
  }
}

291
292
293
294
295
296
297
int prepare_for_poll(int *timeout) {
  int i;
  int need_to_refill_buckets = 0;
  connection_t *conn = NULL;
  connection_t *tmpconn;
  struct timeval now, soonest;
  static int current_second = 0; /* from previous calls to gettimeofday */
298
299
  static int time_to_rebuild_directory = 0;
  static int time_to_fetch_directory = 0;
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
  int ms_until_conn;

  *timeout = -1; /* set it to never timeout, possibly overridden below */
  
  /* first check if we need to refill buckets */
  for(i=0;i<nfds;i++) {
    if(connection_receiver_bucket_should_increase(connection_array[i])) {
      need_to_refill_buckets = 1;
      break;
    }
  }

  if(gettimeofday(&now,NULL) < 0)
    return -1;

315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
  if(options.Role & ROLE_DIR_SERVER) {
    if(time_to_rebuild_directory < now.tv_sec) {
      /* it's time to rebuild our directory */
      if(time_to_rebuild_directory == 0) { 
        /* we just started up. if we build a directory now it will be meaningless. */
        log(LOG_DEBUG,"prepare_for_poll(): Delaying initial dir build for 15 seconds.");
        time_to_rebuild_directory = now.tv_sec + 15; /* try in 15 seconds */
      } else {
        directory_rebuild();
        time_to_rebuild_directory = now.tv_sec + options.DirRebuildPeriod;
      }
    }
    *timeout = 1000*(time_to_rebuild_directory - now.tv_sec) + (1000 - (now.tv_usec / 1000));
//    log(LOG_DEBUG,"prepare_for_poll(): DirBuild timeout is %d",*timeout);
  }

  if(!(options.Role & ROLE_DIR_SERVER)) {
    if(time_to_fetch_directory < now.tv_sec) {
      /* it's time to fetch a new directory */
      /* NOTE directory servers do not currently fetch directories.
       * Hope this doesn't bite us later.
       */
      directory_initiate_fetch(router_pick_directory_server());
      time_to_fetch_directory = now.tv_sec + options.DirFetchPeriod;
    }
    *timeout = 1000*(time_to_fetch_directory - now.tv_sec) + (1000 - (now.tv_usec / 1000));
  }

343
344
  if(need_to_refill_buckets) {
    if(now.tv_sec > current_second) { /* the second has already rolled over! */
345
346
347
//      log(LOG_DEBUG,"prepare_for_poll(): The second has rolled over, immediately refilling.");
      for(i=0;i<nfds;i++)
        connection_increment_receiver_bucket(connection_array[i]);
348
349
      current_second = now.tv_sec; /* remember which second it is, for next time */
    }
350
    /* this timeout is definitely sooner than either of the above two */
351
352
353
354
355
356
357
    *timeout = 1000 - (now.tv_usec / 1000); /* how many milliseconds til the next second? */
  }

  if(options.LinkPadding) {
    /* now check which conn wants to speak soonest */
    for(i=0;i<nfds;i++) {
      tmpconn = connection_array[i];
358
      if(!connection_speaks_cells(tmpconn))
359
360
361
362
        continue; /* this conn type doesn't send cells */
      if(!connection_state_is_open(tmpconn))
        continue; /* only conns in state 'open' have a valid send_timeval */ 
      while(tv_cmp(&tmpconn->send_timeval,&now) <= 0) { /* send_timeval has already passed, let it send a cell */
Roger Dingledine's avatar
Roger Dingledine committed
363
364
365
366
//        log(LOG_DEBUG,"prepare_for_poll(): doing backlogged connection_send_cell on socket %d (%d ms old)",tmpconn->s,
//         (now.tv_sec - tmpconn->send_timeval.tv_sec)*1000 +
//         (now.tv_usec - tmpconn->send_timeval.tv_usec)/1000
//        );
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
        connection_send_cell(tmpconn);
      }
      if(!conn || tv_cmp(&tmpconn->send_timeval, &soonest) < 0) { /* this is the best choice so far */
//        log(LOG_DEBUG,"prepare_for_poll(): chose socket %d as best connection so far",tmpconn->s);
        conn = tmpconn;
        soonest.tv_sec = conn->send_timeval.tv_sec;
        soonest.tv_usec = conn->send_timeval.tv_usec;
      }
    }

    if(conn) { /* we might want to set *timeout sooner */
      ms_until_conn = (soonest.tv_sec - now.tv_sec)*1000 +
                    (soonest.tv_usec - now.tv_usec)/1000;
//      log(LOG_DEBUG,"prepare_for_poll(): conn %d times out in %d ms.",conn->s, ms_until_conn);
      if(*timeout == -1 || ms_until_conn < *timeout) { /* use the new one */
//        log(LOG_DEBUG,"prepare_for_poll(): conn %d soonest, in %d ms.",conn->s,ms_until_conn);
        *timeout = ms_until_conn;
      }
    }
  }

  return 0;
}

Roger Dingledine's avatar
Roger Dingledine committed
391
392
int do_main_loop(void) {
  int i;
393
394
  int timeout;
  int poll_result;
Roger Dingledine's avatar
Roger Dingledine committed
395
396

  /* load the routers file */
397
  if(router_get_list_from_file(options.RouterFile, options.ORPort) < 0) {
Roger Dingledine's avatar
Roger Dingledine committed
398
    log(LOG_ERR,"Error loading router list.");
399
    return -1;
Roger Dingledine's avatar
Roger Dingledine committed
400
401
  }

402
403
404
405
406
407
408
  /* load the private key, if we're supposed to have one */
  if(ROLE_IS_OR(global_role)) {
    prkey = crypto_new_pk_env(CRYPTO_PK_RSA);
    if (!prkey) {
      log(LOG_ERR,"Error creating a crypto environment.");
      return -1;
    }
409
    if (crypto_pk_read_private_key_from_filename(prkey, options.PrivateKeyFile))
410
411
412
413
    {
      log(LOG_ERR,"Error loading private key.");
      return -1;
    }
Roger Dingledine's avatar
Roger Dingledine committed
414
415
  }

416
417
  /* start-up the necessary connections based on global_role. This is where we
   * try to connect to all the other ORs, and start the listeners */
418
419
  retry_all_connections(options.Role, prkey, options.ORPort,
                        options.OPPort, options.APPort, options.DirPort);
Roger Dingledine's avatar
Roger Dingledine committed
420
421

  for(;;) {
422
423
424
    if(please_dumpstats) {
      dumpstats();
    }
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
    if(prepare_for_poll(&timeout) < 0) {
      log(LOG_DEBUG,"do_main_loop(): prepare_for_poll failed, exiting.");
      return -1;
    }
    /* now timeout is the value we'll hand to poll. It's either -1, meaning
     * don't timeout, else it indicates the soonest event (either the
     * one-second rollover for refilling receiver buckets, or the soonest
     * conn that needs to send a cell)
     */

    /* if the timeout is less than 10, set it to 10 */
    if(timeout >= 0 && timeout < 10)
      timeout = 10;

    /* poll until we have an event, or it's time to do something */
    poll_result = poll(poll_array, nfds, timeout);

Roger Dingledine's avatar
Roger Dingledine committed
442
#if 0 /* let catch() handle things like ^c, and otherwise don't worry about it */
443
444
445
446
447
    if(poll_result < 0) {
      log(LOG_ERR,"do_main_loop(): poll failed.");
      if(errno != EINTR) /* let the program survive things like ^z */
        return -1;
    }
Roger Dingledine's avatar
Roger Dingledine committed
448
#endif
Roger Dingledine's avatar
Roger Dingledine committed
449

450
451
452
453
    if(poll_result > 0) { /* we have at least one connection to deal with */
      /* do all the reads first, so we can detect closed sockets */
      for(i=0;i<nfds;i++)
        check_conn_read(i); /* this also blows away broken connections */
Roger Dingledine's avatar
Roger Dingledine committed
454

455
456
457
      /* then do the writes */
      for(i=0;i<nfds;i++)
        check_conn_write(i);
Roger Dingledine's avatar
Roger Dingledine committed
458

459
460
461
462
463
464
465
      /* any of the conns need to be closed now? */
      for(i=0;i<nfds;i++)
        check_conn_marked(i); 
    }
    /* refilling buckets and sending cells happens at the beginning of the
     * next iteration of the loop, inside prepare_for_poll()
     */
Roger Dingledine's avatar
Roger Dingledine committed
466
467
468
  }
}

469
void catchint () {
Roger Dingledine's avatar
Roger Dingledine committed
470
471
  errno = 0; /* netcat does this. it looks fun. */

472
  log(LOG_NOTICE,"Catching ^c, exiting cleanly.");
Roger Dingledine's avatar
Roger Dingledine committed
473
474
475
476
   
  exit(0);
}

477
478
479
480
481
482
483
484
void catchusr1 () {
  please_dumpstats = 1;
}

void dumpstats (void) { /* dump stats to stdout */
  int i;
  connection_t *conn;
  extern char *conn_type_to_string[];
485
  extern char *conn_state_to_string[][15];
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503

  printf("Dumping stats:\n");

  for(i=0;i<nfds;i++) {
    conn = connection_array[i];
    printf("Conn %d (socket %d) type %d (%s), state %d (%s)\n",
      i, conn->s, conn->type, conn_type_to_string[conn->type],
      conn->state, conn_state_to_string[conn->type][conn->state]);
    if(!connection_is_listener(conn)) {
      printf("Conn %d is to '%s:%d'.\n",i,conn->address, conn->port);
    }
    circuit_dump_by_conn(conn); /* dump info about all the circuits using this conn */
    printf("\n");
  }

  please_dumpstats = 0;
}

504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
void dump_directory_to_string(char *s, int maxlen) {
  int i;
  connection_t *conn;
  char *pkey;
  int pkeylen;
  int written;
  routerinfo_t *router;

  for(i=0;i<nfds;i++) {
    conn = connection_array[i];

    if(conn->type != CONN_TYPE_OR)
      continue; /* we only want to list ORs */
    router = router_get_by_addr_port(conn->addr,conn->port);
    if(!router) {
      log(LOG_ERR,"dump_directory_to_string(): couldn't find router %d:%d!",conn->addr,conn->port);
      return;
    }
    if(crypto_pk_write_public_key_to_string(router->pkey,&pkey,&pkeylen)<0) {
      log(LOG_ERR,"dump_directory_to_string(): write pkey to string failed!");
      return;
    }
    written = snprintf(s, maxlen, "%s %d %d %d %d %d\n%s\n",
      router->address,
      router->or_port,
      router->op_port,
      router->ap_port,
      router->dir_port,
      router->bandwidth,
      pkey);

    free(pkey);

    if(written < 0 || written > maxlen) { 
      /* apparently different glibcs do different things on error.. so check both */
      log(LOG_ERR,"dump_directory_to_string(): tried to exceed string length.");
      s[maxlen-1] = 0; /* make sure it's null terminated */
      return;
    }
  
    maxlen -= written;
    s += written;

  }

}

551
int main(int argc, char *argv[]) {
Roger Dingledine's avatar
Roger Dingledine committed
552
553
  int retval = 0;

554
555
  signal (SIGINT, catchint); /* to catch ^c so we can exit cleanly */
  signal (SIGUSR1, catchusr1); /* to dump stats to stdout */
Roger Dingledine's avatar
Roger Dingledine committed
556

557
  if ( getoptions(argc,argv,&options) ) exit(1);
558
  log(options.loglevel,NULL);         /* assign logging severity level from options */
559
  global_role = options.Role;   /* assign global_role from options. FIX: remove from global namespace later. */
Roger Dingledine's avatar
Roger Dingledine committed
560

561
  crypto_global_init();
Roger Dingledine's avatar
Roger Dingledine committed
562
  retval = do_main_loop();
563
  crypto_global_cleanup();
Roger Dingledine's avatar
Roger Dingledine committed
564
565
566
567

  return retval;
}