1*1c60b9acSAndroid Build Coastguard Worker /*
2*1c60b9acSAndroid Build Coastguard Worker  * lws-minimal-http-client-jit-trust
3*1c60b9acSAndroid Build Coastguard Worker  *
4*1c60b9acSAndroid Build Coastguard Worker  * Written in 2010-2021 by Andy Green <[email protected]>
5*1c60b9acSAndroid Build Coastguard Worker  *
6*1c60b9acSAndroid Build Coastguard Worker  * This file is made available under the Creative Commons CC0 1.0
7*1c60b9acSAndroid Build Coastguard Worker  * Universal Public Domain Dedication.
8*1c60b9acSAndroid Build Coastguard Worker  *
9*1c60b9acSAndroid Build Coastguard Worker  * This demonstrates the a minimal http client using lws.
10*1c60b9acSAndroid Build Coastguard Worker  *
11*1c60b9acSAndroid Build Coastguard Worker  * It visits https://warmcat.com/ and receives the html page there.  You
12*1c60b9acSAndroid Build Coastguard Worker  * can dump the page data by changing the #if 0 below.
13*1c60b9acSAndroid Build Coastguard Worker  */
14*1c60b9acSAndroid Build Coastguard Worker 
15*1c60b9acSAndroid Build Coastguard Worker #include <libwebsockets.h>
16*1c60b9acSAndroid Build Coastguard Worker #include <string.h>
17*1c60b9acSAndroid Build Coastguard Worker #include <signal.h>
18*1c60b9acSAndroid Build Coastguard Worker 
19*1c60b9acSAndroid Build Coastguard Worker static int interrupted, bad = 1, status, conmon;
20*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_HTTP2)
21*1c60b9acSAndroid Build Coastguard Worker static int long_poll;
22*1c60b9acSAndroid Build Coastguard Worker #endif
23*1c60b9acSAndroid Build Coastguard Worker static struct lws *client_wsi;
24*1c60b9acSAndroid Build Coastguard Worker static const char *ba_user, *ba_password;
25*1c60b9acSAndroid Build Coastguard Worker static int budget = 6;
26*1c60b9acSAndroid Build Coastguard Worker 
27*1c60b9acSAndroid Build Coastguard Worker /*
28*1c60b9acSAndroid Build Coastguard Worker  * For this example, we import the C-formatted array version of the trust blob
29*1c60b9acSAndroid Build Coastguard Worker  * directly.  This is produced by running scripts/mozilla-trust-gen.sh and can
30*1c60b9acSAndroid Build Coastguard Worker  * be found in ./_trust after that.
31*1c60b9acSAndroid Build Coastguard Worker  */
32*1c60b9acSAndroid Build Coastguard Worker 
33*1c60b9acSAndroid Build Coastguard Worker static uint8_t jit_trust_blob[] = {
34*1c60b9acSAndroid Build Coastguard Worker #include "./trust_blob.h"
35*1c60b9acSAndroid Build Coastguard Worker };
36*1c60b9acSAndroid Build Coastguard Worker 
37*1c60b9acSAndroid Build Coastguard Worker static const lws_retry_bo_t retry = {
38*1c60b9acSAndroid Build Coastguard Worker 	.secs_since_valid_ping = 3,
39*1c60b9acSAndroid Build Coastguard Worker 	.secs_since_valid_hangup = 10,
40*1c60b9acSAndroid Build Coastguard Worker };
41*1c60b9acSAndroid Build Coastguard Worker 
42*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_CONMON)
43*1c60b9acSAndroid Build Coastguard Worker void
dump_conmon_data(struct lws * wsi)44*1c60b9acSAndroid Build Coastguard Worker dump_conmon_data(struct lws *wsi)
45*1c60b9acSAndroid Build Coastguard Worker {
46*1c60b9acSAndroid Build Coastguard Worker 	const struct addrinfo *ai;
47*1c60b9acSAndroid Build Coastguard Worker 	struct lws_conmon cm;
48*1c60b9acSAndroid Build Coastguard Worker 	char ads[48];
49*1c60b9acSAndroid Build Coastguard Worker 
50*1c60b9acSAndroid Build Coastguard Worker 	lws_conmon_wsi_take(wsi, &cm);
51*1c60b9acSAndroid Build Coastguard Worker 
52*1c60b9acSAndroid Build Coastguard Worker 	lws_sa46_write_numeric_address(&cm.peer46, ads, sizeof(ads));
53*1c60b9acSAndroid Build Coastguard Worker 	lwsl_notice("%s: peer %s, dns: %uus, sockconn: %uus, "
54*1c60b9acSAndroid Build Coastguard Worker 		    "tls: %uus, txn_resp: %uus\n",
55*1c60b9acSAndroid Build Coastguard Worker 		    __func__, ads,
56*1c60b9acSAndroid Build Coastguard Worker 		    (unsigned int)cm.ciu_dns,
57*1c60b9acSAndroid Build Coastguard Worker 		    (unsigned int)cm.ciu_sockconn,
58*1c60b9acSAndroid Build Coastguard Worker 		    (unsigned int)cm.ciu_tls,
59*1c60b9acSAndroid Build Coastguard Worker 		    (unsigned int)cm.ciu_txn_resp);
60*1c60b9acSAndroid Build Coastguard Worker 
61*1c60b9acSAndroid Build Coastguard Worker 	ai = cm.dns_results_copy;
62*1c60b9acSAndroid Build Coastguard Worker 	while (ai) {
63*1c60b9acSAndroid Build Coastguard Worker 		lws_sa46_write_numeric_address((lws_sockaddr46 *)ai->ai_addr,
64*1c60b9acSAndroid Build Coastguard Worker 						ads, sizeof(ads));
65*1c60b9acSAndroid Build Coastguard Worker 		lwsl_notice("%s: DNS %s\n", __func__, ads);
66*1c60b9acSAndroid Build Coastguard Worker 		ai = ai->ai_next;
67*1c60b9acSAndroid Build Coastguard Worker 	}
68*1c60b9acSAndroid Build Coastguard Worker 
69*1c60b9acSAndroid Build Coastguard Worker 	/*
70*1c60b9acSAndroid Build Coastguard Worker 	 * This destroys the DNS list in the lws_conmon that we took
71*1c60b9acSAndroid Build Coastguard Worker 	 * responsibility for when we used lws_conmon_wsi_take()
72*1c60b9acSAndroid Build Coastguard Worker 	 */
73*1c60b9acSAndroid Build Coastguard Worker 
74*1c60b9acSAndroid Build Coastguard Worker 	lws_conmon_release(&cm);
75*1c60b9acSAndroid Build Coastguard Worker }
76*1c60b9acSAndroid Build Coastguard Worker #endif
77*1c60b9acSAndroid Build Coastguard Worker 
78*1c60b9acSAndroid Build Coastguard Worker struct args {
79*1c60b9acSAndroid Build Coastguard Worker 	int argc;
80*1c60b9acSAndroid Build Coastguard Worker 	const char **argv;
81*1c60b9acSAndroid Build Coastguard Worker };
82*1c60b9acSAndroid Build Coastguard Worker 
83*1c60b9acSAndroid Build Coastguard Worker static const struct lws_protocols protocols[];
84*1c60b9acSAndroid Build Coastguard Worker 
85*1c60b9acSAndroid Build Coastguard Worker static int
try_connect(struct lws_context * cx)86*1c60b9acSAndroid Build Coastguard Worker try_connect(struct lws_context *cx)
87*1c60b9acSAndroid Build Coastguard Worker {
88*1c60b9acSAndroid Build Coastguard Worker 	struct lws_client_connect_info i;
89*1c60b9acSAndroid Build Coastguard Worker 	struct args *a = lws_context_user(cx);
90*1c60b9acSAndroid Build Coastguard Worker 	const char *p;
91*1c60b9acSAndroid Build Coastguard Worker 
92*1c60b9acSAndroid Build Coastguard Worker 	memset(&i, 0, sizeof i); /* otherwise uninitialized garbage */
93*1c60b9acSAndroid Build Coastguard Worker 	i.context = cx;
94*1c60b9acSAndroid Build Coastguard Worker 	if (!lws_cmdline_option(a->argc, a->argv, "-n")) {
95*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection = LCCSCF_USE_SSL;
96*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_HTTP2)
97*1c60b9acSAndroid Build Coastguard Worker 		/* requires h2 */
98*1c60b9acSAndroid Build Coastguard Worker 		if (lws_cmdline_option(a->argc, a->argv, "--long-poll")) {
99*1c60b9acSAndroid Build Coastguard Worker 			lwsl_user("%s: long poll mode\n", __func__);
100*1c60b9acSAndroid Build Coastguard Worker 			long_poll = 1;
101*1c60b9acSAndroid Build Coastguard Worker 		}
102*1c60b9acSAndroid Build Coastguard Worker #endif
103*1c60b9acSAndroid Build Coastguard Worker 	}
104*1c60b9acSAndroid Build Coastguard Worker 
105*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-l")) {
106*1c60b9acSAndroid Build Coastguard Worker 		i.port = 7681;
107*1c60b9acSAndroid Build Coastguard Worker 		i.address = "localhost";
108*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_ALLOW_SELFSIGNED;
109*1c60b9acSAndroid Build Coastguard Worker 	} else {
110*1c60b9acSAndroid Build Coastguard Worker 		i.port = 443;
111*1c60b9acSAndroid Build Coastguard Worker 		i.address = "warmcat.com";
112*1c60b9acSAndroid Build Coastguard Worker 	}
113*1c60b9acSAndroid Build Coastguard Worker 
114*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "--nossl"))
115*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection = 0;
116*1c60b9acSAndroid Build Coastguard Worker 
117*1c60b9acSAndroid Build Coastguard Worker 	i.ssl_connection |= LCCSCF_H2_QUIRK_OVERFLOWS_TXCR |
118*1c60b9acSAndroid Build Coastguard Worker 			    LCCSCF_H2_QUIRK_NGHTTP2_END_STREAM |
119*1c60b9acSAndroid Build Coastguard Worker 			    LCCSCF_ACCEPT_TLS_DOWNGRADE_REDIRECTS;
120*1c60b9acSAndroid Build Coastguard Worker 
121*1c60b9acSAndroid Build Coastguard Worker 	i.alpn = "h2,http/1.1";
122*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "--h1"))
123*1c60b9acSAndroid Build Coastguard Worker 		i.alpn = "http/1.1";
124*1c60b9acSAndroid Build Coastguard Worker 
125*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "--h2-prior-knowledge"))
126*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_H2_PRIOR_KNOWLEDGE;
127*1c60b9acSAndroid Build Coastguard Worker 
128*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "-p")))
129*1c60b9acSAndroid Build Coastguard Worker 		i.port = atoi(p);
130*1c60b9acSAndroid Build Coastguard Worker 
131*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "--user")))
132*1c60b9acSAndroid Build Coastguard Worker 		ba_user = p;
133*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "--password")))
134*1c60b9acSAndroid Build Coastguard Worker 		ba_password = p;
135*1c60b9acSAndroid Build Coastguard Worker 
136*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-j"))
137*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_ALLOW_SELFSIGNED;
138*1c60b9acSAndroid Build Coastguard Worker 
139*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-k"))
140*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_ALLOW_INSECURE;
141*1c60b9acSAndroid Build Coastguard Worker 
142*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-m"))
143*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_SKIP_SERVER_CERT_HOSTNAME_CHECK;
144*1c60b9acSAndroid Build Coastguard Worker 
145*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-e"))
146*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_ALLOW_EXPIRED;
147*1c60b9acSAndroid Build Coastguard Worker 
148*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "-f"))) {
149*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_H2_MANUAL_RXFLOW;
150*1c60b9acSAndroid Build Coastguard Worker 		i.manual_initial_tx_credit = atoi(p);
151*1c60b9acSAndroid Build Coastguard Worker 		lwsl_notice("%s: manual peer tx credit %d\n", __func__,
152*1c60b9acSAndroid Build Coastguard Worker 				i.manual_initial_tx_credit);
153*1c60b9acSAndroid Build Coastguard Worker 	}
154*1c60b9acSAndroid Build Coastguard Worker 
155*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_CONMON)
156*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "--conmon")) {
157*1c60b9acSAndroid Build Coastguard Worker 		i.ssl_connection |= LCCSCF_CONMON;
158*1c60b9acSAndroid Build Coastguard Worker 		conmon = 1;
159*1c60b9acSAndroid Build Coastguard Worker 	}
160*1c60b9acSAndroid Build Coastguard Worker #endif
161*1c60b9acSAndroid Build Coastguard Worker 
162*1c60b9acSAndroid Build Coastguard Worker 	/* the default validity check is 5m / 5m10s... -v = 3s / 10s */
163*1c60b9acSAndroid Build Coastguard Worker 
164*1c60b9acSAndroid Build Coastguard Worker 	if (lws_cmdline_option(a->argc, a->argv, "-v"))
165*1c60b9acSAndroid Build Coastguard Worker 		i.retry_and_idle_policy = &retry;
166*1c60b9acSAndroid Build Coastguard Worker 
167*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "--server")))
168*1c60b9acSAndroid Build Coastguard Worker 		i.address = p;
169*1c60b9acSAndroid Build Coastguard Worker 
170*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(a->argc, a->argv, "--path")))
171*1c60b9acSAndroid Build Coastguard Worker 		i.path = p;
172*1c60b9acSAndroid Build Coastguard Worker 	else
173*1c60b9acSAndroid Build Coastguard Worker 		i.path = "/";
174*1c60b9acSAndroid Build Coastguard Worker 
175*1c60b9acSAndroid Build Coastguard Worker 	i.host = i.address;
176*1c60b9acSAndroid Build Coastguard Worker 	i.origin = i.address;
177*1c60b9acSAndroid Build Coastguard Worker 	i.method = "GET";
178*1c60b9acSAndroid Build Coastguard Worker 
179*1c60b9acSAndroid Build Coastguard Worker 	i.protocol = protocols[0].name;
180*1c60b9acSAndroid Build Coastguard Worker 	i.pwsi = &client_wsi;
181*1c60b9acSAndroid Build Coastguard Worker 	i.fi_wsi_name = "user";
182*1c60b9acSAndroid Build Coastguard Worker 
183*1c60b9acSAndroid Build Coastguard Worker 	if (!lws_client_connect_via_info(&i)) {
184*1c60b9acSAndroid Build Coastguard Worker 		lwsl_err("Client creation failed\n");
185*1c60b9acSAndroid Build Coastguard Worker 		interrupted = 1;
186*1c60b9acSAndroid Build Coastguard Worker 		bad = 2; /* could not even start client connection */
187*1c60b9acSAndroid Build Coastguard Worker 		lws_cancel_service(cx);
188*1c60b9acSAndroid Build Coastguard Worker 
189*1c60b9acSAndroid Build Coastguard Worker 		return 1;
190*1c60b9acSAndroid Build Coastguard Worker 	}
191*1c60b9acSAndroid Build Coastguard Worker 
192*1c60b9acSAndroid Build Coastguard Worker 	return 0;
193*1c60b9acSAndroid Build Coastguard Worker }
194*1c60b9acSAndroid Build Coastguard Worker 
195*1c60b9acSAndroid Build Coastguard Worker static const char *ua = "Mozilla/5.0 (X11; Linux x86_64) "
196*1c60b9acSAndroid Build Coastguard Worker 			"AppleWebKit/537.36 (KHTML, like Gecko) "
197*1c60b9acSAndroid Build Coastguard Worker 			"Chrome/51.0.2704.103 Safari/537.36",
198*1c60b9acSAndroid Build Coastguard Worker 		  *acc = "*/*";
199*1c60b9acSAndroid Build Coastguard Worker 
200*1c60b9acSAndroid Build Coastguard Worker static int
callback_http(struct lws * wsi,enum lws_callback_reasons reason,void * user,void * in,size_t len)201*1c60b9acSAndroid Build Coastguard Worker callback_http(struct lws *wsi, enum lws_callback_reasons reason,
202*1c60b9acSAndroid Build Coastguard Worker 	      void *user, void *in, size_t len)
203*1c60b9acSAndroid Build Coastguard Worker {
204*1c60b9acSAndroid Build Coastguard Worker 	switch (reason) {
205*1c60b9acSAndroid Build Coastguard Worker 
206*1c60b9acSAndroid Build Coastguard Worker 	/* because we are protocols[0] ... */
207*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_CLIENT_CONNECTION_ERROR:
208*1c60b9acSAndroid Build Coastguard Worker 		lwsl_err("CLIENT_CONNECTION_ERROR: %s\n",
209*1c60b9acSAndroid Build Coastguard Worker 			 in ? (char *)in : "(null)");
210*1c60b9acSAndroid Build Coastguard Worker 
211*1c60b9acSAndroid Build Coastguard Worker 		if (budget--) {
212*1c60b9acSAndroid Build Coastguard Worker 			try_connect(lws_get_context(wsi));
213*1c60b9acSAndroid Build Coastguard Worker 			break;
214*1c60b9acSAndroid Build Coastguard Worker 		}
215*1c60b9acSAndroid Build Coastguard Worker 
216*1c60b9acSAndroid Build Coastguard Worker 		interrupted = 1;
217*1c60b9acSAndroid Build Coastguard Worker 		bad = 3; /* connection failed before we could make connection */
218*1c60b9acSAndroid Build Coastguard Worker 		lws_cancel_service(lws_get_context(wsi));
219*1c60b9acSAndroid Build Coastguard Worker 
220*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_CONMON)
221*1c60b9acSAndroid Build Coastguard Worker 	if (conmon)
222*1c60b9acSAndroid Build Coastguard Worker 		dump_conmon_data(wsi);
223*1c60b9acSAndroid Build Coastguard Worker #endif
224*1c60b9acSAndroid Build Coastguard Worker 		break;
225*1c60b9acSAndroid Build Coastguard Worker 
226*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_ESTABLISHED_CLIENT_HTTP:
227*1c60b9acSAndroid Build Coastguard Worker 		{
228*1c60b9acSAndroid Build Coastguard Worker 			char buf[128];
229*1c60b9acSAndroid Build Coastguard Worker 
230*1c60b9acSAndroid Build Coastguard Worker 			lws_get_peer_simple(wsi, buf, sizeof(buf));
231*1c60b9acSAndroid Build Coastguard Worker 			status = (int)lws_http_client_http_response(wsi);
232*1c60b9acSAndroid Build Coastguard Worker 
233*1c60b9acSAndroid Build Coastguard Worker 			lwsl_user("Connected to %s, http response: %d\n",
234*1c60b9acSAndroid Build Coastguard Worker 					buf, status);
235*1c60b9acSAndroid Build Coastguard Worker 		}
236*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_HTTP2)
237*1c60b9acSAndroid Build Coastguard Worker 		if (long_poll) {
238*1c60b9acSAndroid Build Coastguard Worker 			lwsl_user("%s: Client entering long poll mode\n", __func__);
239*1c60b9acSAndroid Build Coastguard Worker 			lws_h2_client_stream_long_poll_rxonly(wsi);
240*1c60b9acSAndroid Build Coastguard Worker 		}
241*1c60b9acSAndroid Build Coastguard Worker #endif
242*1c60b9acSAndroid Build Coastguard Worker 
243*1c60b9acSAndroid Build Coastguard Worker 		if (lws_fi_user_wsi_fi(wsi, "user_reject_at_est"))
244*1c60b9acSAndroid Build Coastguard Worker 			return -1;
245*1c60b9acSAndroid Build Coastguard Worker 
246*1c60b9acSAndroid Build Coastguard Worker 		break;
247*1c60b9acSAndroid Build Coastguard Worker 
248*1c60b9acSAndroid Build Coastguard Worker 
249*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_CLIENT_APPEND_HANDSHAKE_HEADER:
250*1c60b9acSAndroid Build Coastguard Worker 	{
251*1c60b9acSAndroid Build Coastguard Worker 		unsigned char **p = (unsigned char **)in, *end = (*p) + len;
252*1c60b9acSAndroid Build Coastguard Worker 
253*1c60b9acSAndroid Build Coastguard Worker 		if (lws_add_http_header_by_token(wsi, WSI_TOKEN_HTTP_USER_AGENT,
254*1c60b9acSAndroid Build Coastguard Worker 				(unsigned char *)ua, (int)strlen(ua), p, end))
255*1c60b9acSAndroid Build Coastguard Worker 			return -1;
256*1c60b9acSAndroid Build Coastguard Worker 
257*1c60b9acSAndroid Build Coastguard Worker 		if (lws_add_http_header_by_token(wsi, WSI_TOKEN_HTTP_ACCEPT,
258*1c60b9acSAndroid Build Coastguard Worker 				(unsigned char *)acc, (int)strlen(acc), p, end))
259*1c60b9acSAndroid Build Coastguard Worker 			return -1;
260*1c60b9acSAndroid Build Coastguard Worker 
261*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_HTTP_BASIC_AUTH)
262*1c60b9acSAndroid Build Coastguard Worker 		{
263*1c60b9acSAndroid Build Coastguard Worker 		char b[128];
264*1c60b9acSAndroid Build Coastguard Worker 
265*1c60b9acSAndroid Build Coastguard Worker 	/* you only need this if you need to do Basic Auth */
266*1c60b9acSAndroid Build Coastguard Worker 
267*1c60b9acSAndroid Build Coastguard Worker 		if (!ba_user || !ba_password)
268*1c60b9acSAndroid Build Coastguard Worker 			break;
269*1c60b9acSAndroid Build Coastguard Worker 
270*1c60b9acSAndroid Build Coastguard Worker 		if (lws_http_basic_auth_gen(ba_user, ba_password, b, sizeof(b)))
271*1c60b9acSAndroid Build Coastguard Worker 			break;
272*1c60b9acSAndroid Build Coastguard Worker 		if (lws_add_http_header_by_token(wsi, WSI_TOKEN_HTTP_AUTHORIZATION,
273*1c60b9acSAndroid Build Coastguard Worker 				(unsigned char *)b, (int)strlen(b), p, end))
274*1c60b9acSAndroid Build Coastguard Worker 			return -1;
275*1c60b9acSAndroid Build Coastguard Worker 		}
276*1c60b9acSAndroid Build Coastguard Worker #endif
277*1c60b9acSAndroid Build Coastguard Worker 
278*1c60b9acSAndroid Build Coastguard Worker 		break;
279*1c60b9acSAndroid Build Coastguard Worker 	}
280*1c60b9acSAndroid Build Coastguard Worker 
281*1c60b9acSAndroid Build Coastguard Worker 	/* chunks of chunked content, with header removed */
282*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_RECEIVE_CLIENT_HTTP_READ:
283*1c60b9acSAndroid Build Coastguard Worker 		lwsl_user("RECEIVE_CLIENT_HTTP_READ: read %d\n", (int)len);
284*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_HTTP2)
285*1c60b9acSAndroid Build Coastguard Worker 		if (long_poll) {
286*1c60b9acSAndroid Build Coastguard Worker 			char dotstar[128];
287*1c60b9acSAndroid Build Coastguard Worker 			lws_strnncpy(dotstar, (const char *)in, len,
288*1c60b9acSAndroid Build Coastguard Worker 				     sizeof(dotstar));
289*1c60b9acSAndroid Build Coastguard Worker 			lwsl_notice("long poll rx: %d '%s'\n", (int)len,
290*1c60b9acSAndroid Build Coastguard Worker 					dotstar);
291*1c60b9acSAndroid Build Coastguard Worker 		}
292*1c60b9acSAndroid Build Coastguard Worker #endif
293*1c60b9acSAndroid Build Coastguard Worker #if 0
294*1c60b9acSAndroid Build Coastguard Worker 		lwsl_hexdump_notice(in, len);
295*1c60b9acSAndroid Build Coastguard Worker #endif
296*1c60b9acSAndroid Build Coastguard Worker 
297*1c60b9acSAndroid Build Coastguard Worker 		return 0; /* don't passthru */
298*1c60b9acSAndroid Build Coastguard Worker 
299*1c60b9acSAndroid Build Coastguard Worker 	/* uninterpreted http content */
300*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_RECEIVE_CLIENT_HTTP:
301*1c60b9acSAndroid Build Coastguard Worker 		{
302*1c60b9acSAndroid Build Coastguard Worker 			char buffer[1024 + LWS_PRE];
303*1c60b9acSAndroid Build Coastguard Worker 			char *px = buffer + LWS_PRE;
304*1c60b9acSAndroid Build Coastguard Worker 			int lenx = sizeof(buffer) - LWS_PRE;
305*1c60b9acSAndroid Build Coastguard Worker 
306*1c60b9acSAndroid Build Coastguard Worker 			if (lws_fi_user_wsi_fi(wsi, "user_reject_at_rx"))
307*1c60b9acSAndroid Build Coastguard Worker 				return -1;
308*1c60b9acSAndroid Build Coastguard Worker 
309*1c60b9acSAndroid Build Coastguard Worker 			if (lws_http_client_read(wsi, &px, &lenx) < 0)
310*1c60b9acSAndroid Build Coastguard Worker 				return -1;
311*1c60b9acSAndroid Build Coastguard Worker 		}
312*1c60b9acSAndroid Build Coastguard Worker 		return 0; /* don't passthru */
313*1c60b9acSAndroid Build Coastguard Worker 
314*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_COMPLETED_CLIENT_HTTP:
315*1c60b9acSAndroid Build Coastguard Worker 		lwsl_user("LWS_CALLBACK_COMPLETED_CLIENT_HTTP\n");
316*1c60b9acSAndroid Build Coastguard Worker 		interrupted = 1;
317*1c60b9acSAndroid Build Coastguard Worker 		bad = 0; // we accept 403 or whatever for this test status != 200;
318*1c60b9acSAndroid Build Coastguard Worker 		lws_cancel_service(lws_get_context(wsi)); /* abort poll wait */
319*1c60b9acSAndroid Build Coastguard Worker 		break;
320*1c60b9acSAndroid Build Coastguard Worker 
321*1c60b9acSAndroid Build Coastguard Worker 	case LWS_CALLBACK_CLOSED_CLIENT_HTTP:
322*1c60b9acSAndroid Build Coastguard Worker 		lwsl_notice("%s: LWS_CALLBACK_CLOSED_CLIENT_HTTP\n", __func__);
323*1c60b9acSAndroid Build Coastguard Worker 		interrupted = 1;
324*1c60b9acSAndroid Build Coastguard Worker 		bad = 0; // status != 200;
325*1c60b9acSAndroid Build Coastguard Worker 		lws_cancel_service(lws_get_context(wsi)); /* abort poll wait */
326*1c60b9acSAndroid Build Coastguard Worker #if defined(LWS_WITH_CONMON)
327*1c60b9acSAndroid Build Coastguard Worker 		if (conmon)
328*1c60b9acSAndroid Build Coastguard Worker 			dump_conmon_data(wsi);
329*1c60b9acSAndroid Build Coastguard Worker #endif
330*1c60b9acSAndroid Build Coastguard Worker 		break;
331*1c60b9acSAndroid Build Coastguard Worker 
332*1c60b9acSAndroid Build Coastguard Worker 	default:
333*1c60b9acSAndroid Build Coastguard Worker 		break;
334*1c60b9acSAndroid Build Coastguard Worker 	}
335*1c60b9acSAndroid Build Coastguard Worker 
336*1c60b9acSAndroid Build Coastguard Worker 	return lws_callback_http_dummy(wsi, reason, user, in, len);
337*1c60b9acSAndroid Build Coastguard Worker }
338*1c60b9acSAndroid Build Coastguard Worker 
339*1c60b9acSAndroid Build Coastguard Worker static const struct lws_protocols protocols[] = {
340*1c60b9acSAndroid Build Coastguard Worker 	{
341*1c60b9acSAndroid Build Coastguard Worker 		"http",
342*1c60b9acSAndroid Build Coastguard Worker 		callback_http,
343*1c60b9acSAndroid Build Coastguard Worker 		0, 0, 0, NULL, 0
344*1c60b9acSAndroid Build Coastguard Worker 	},
345*1c60b9acSAndroid Build Coastguard Worker 	LWS_PROTOCOL_LIST_TERM
346*1c60b9acSAndroid Build Coastguard Worker };
347*1c60b9acSAndroid Build Coastguard Worker 
348*1c60b9acSAndroid Build Coastguard Worker static void
sigint_handler(int sig)349*1c60b9acSAndroid Build Coastguard Worker sigint_handler(int sig)
350*1c60b9acSAndroid Build Coastguard Worker {
351*1c60b9acSAndroid Build Coastguard Worker 	interrupted = 1;
352*1c60b9acSAndroid Build Coastguard Worker }
353*1c60b9acSAndroid Build Coastguard Worker 
354*1c60b9acSAndroid Build Coastguard Worker static int
system_notify_cb(lws_state_manager_t * mgr,lws_state_notify_link_t * link,int current,int target)355*1c60b9acSAndroid Build Coastguard Worker system_notify_cb(lws_state_manager_t *mgr, lws_state_notify_link_t *link,
356*1c60b9acSAndroid Build Coastguard Worker 		   int current, int target)
357*1c60b9acSAndroid Build Coastguard Worker {
358*1c60b9acSAndroid Build Coastguard Worker 	struct lws_context *cx = mgr->parent;
359*1c60b9acSAndroid Build Coastguard Worker 
360*1c60b9acSAndroid Build Coastguard Worker 	if (current != LWS_SYSTATE_OPERATIONAL ||
361*1c60b9acSAndroid Build Coastguard Worker 	    target != LWS_SYSTATE_OPERATIONAL)
362*1c60b9acSAndroid Build Coastguard Worker 		return 0;
363*1c60b9acSAndroid Build Coastguard Worker 
364*1c60b9acSAndroid Build Coastguard Worker 	lwsl_info("%s: operational\n", __func__);
365*1c60b9acSAndroid Build Coastguard Worker 
366*1c60b9acSAndroid Build Coastguard Worker 	try_connect(cx);
367*1c60b9acSAndroid Build Coastguard Worker 
368*1c60b9acSAndroid Build Coastguard Worker 	return 0;
369*1c60b9acSAndroid Build Coastguard Worker }
370*1c60b9acSAndroid Build Coastguard Worker 
371*1c60b9acSAndroid Build Coastguard Worker static int
jit_trust_query(struct lws_context * cx,const uint8_t * skid,size_t skid_len,void * got_opaque)372*1c60b9acSAndroid Build Coastguard Worker jit_trust_query(struct lws_context *cx, const uint8_t *skid,
373*1c60b9acSAndroid Build Coastguard Worker 		size_t skid_len, void *got_opaque)
374*1c60b9acSAndroid Build Coastguard Worker {
375*1c60b9acSAndroid Build Coastguard Worker 	const uint8_t *der = NULL;
376*1c60b9acSAndroid Build Coastguard Worker 	size_t der_len = 0;
377*1c60b9acSAndroid Build Coastguard Worker 
378*1c60b9acSAndroid Build Coastguard Worker 	lwsl_info("%s\n", __func__);
379*1c60b9acSAndroid Build Coastguard Worker 	lwsl_hexdump_info(skid, skid_len);
380*1c60b9acSAndroid Build Coastguard Worker 
381*1c60b9acSAndroid Build Coastguard Worker 	/*
382*1c60b9acSAndroid Build Coastguard Worker 	 * For this example, we look up SKIDs using a trust table that's
383*1c60b9acSAndroid Build Coastguard Worker 	 * compiled in, synchronously.  Lws provides the necessary helper.
384*1c60b9acSAndroid Build Coastguard Worker 	 *
385*1c60b9acSAndroid Build Coastguard Worker 	 * DER will remain NULL if no match.
386*1c60b9acSAndroid Build Coastguard Worker 	 */
387*1c60b9acSAndroid Build Coastguard Worker 
388*1c60b9acSAndroid Build Coastguard Worker 	lws_tls_jit_trust_blob_queury_skid(jit_trust_blob,
389*1c60b9acSAndroid Build Coastguard Worker 					   sizeof(jit_trust_blob), skid,
390*1c60b9acSAndroid Build Coastguard Worker 					   skid_len, &der, &der_len);
391*1c60b9acSAndroid Build Coastguard Worker 
392*1c60b9acSAndroid Build Coastguard Worker 	if (der)
393*1c60b9acSAndroid Build Coastguard Worker 		lwsl_info("%s: found len %d\n", __func__, (int)der_len);
394*1c60b9acSAndroid Build Coastguard Worker 	else
395*1c60b9acSAndroid Build Coastguard Worker 		lwsl_info("%s: not trusted\n", __func__);
396*1c60b9acSAndroid Build Coastguard Worker 
397*1c60b9acSAndroid Build Coastguard Worker 	/* Once we have a result, pass it to the completion helper */
398*1c60b9acSAndroid Build Coastguard Worker 
399*1c60b9acSAndroid Build Coastguard Worker 	return lws_tls_jit_trust_got_cert_cb(cx, got_opaque, skid, skid_len,
400*1c60b9acSAndroid Build Coastguard Worker 					     der, der_len);
401*1c60b9acSAndroid Build Coastguard Worker }
402*1c60b9acSAndroid Build Coastguard Worker 
403*1c60b9acSAndroid Build Coastguard Worker static lws_system_ops_t system_ops = {
404*1c60b9acSAndroid Build Coastguard Worker 	.jit_trust_query		= jit_trust_query
405*1c60b9acSAndroid Build Coastguard Worker };
406*1c60b9acSAndroid Build Coastguard Worker 
main(int argc,const char ** argv)407*1c60b9acSAndroid Build Coastguard Worker int main(int argc, const char **argv)
408*1c60b9acSAndroid Build Coastguard Worker {
409*1c60b9acSAndroid Build Coastguard Worker 	lws_state_notify_link_t notifier = { { NULL, NULL, NULL },
410*1c60b9acSAndroid Build Coastguard Worker 						system_notify_cb, "app" };
411*1c60b9acSAndroid Build Coastguard Worker 	lws_state_notify_link_t *na[] = { &notifier, NULL };
412*1c60b9acSAndroid Build Coastguard Worker 	struct lws_context_creation_info info;
413*1c60b9acSAndroid Build Coastguard Worker 	struct lws_context *context;
414*1c60b9acSAndroid Build Coastguard Worker 	int n = 0, expected = 0;
415*1c60b9acSAndroid Build Coastguard Worker 	struct args args;
416*1c60b9acSAndroid Build Coastguard Worker 	const char *p;
417*1c60b9acSAndroid Build Coastguard Worker 
418*1c60b9acSAndroid Build Coastguard Worker 	args.argc = argc;
419*1c60b9acSAndroid Build Coastguard Worker 	args.argv = argv;
420*1c60b9acSAndroid Build Coastguard Worker 
421*1c60b9acSAndroid Build Coastguard Worker 	signal(SIGINT, sigint_handler);
422*1c60b9acSAndroid Build Coastguard Worker 
423*1c60b9acSAndroid Build Coastguard Worker 	memset(&info, 0, sizeof info); /* otherwise uninitialized garbage */
424*1c60b9acSAndroid Build Coastguard Worker 	lws_cmdline_option_handle_builtin(argc, argv, &info);
425*1c60b9acSAndroid Build Coastguard Worker 
426*1c60b9acSAndroid Build Coastguard Worker 	lwsl_user("LWS minimal http client JIT Trust [-d<verbosity>] [-l] [--h1]\n");
427*1c60b9acSAndroid Build Coastguard Worker 
428*1c60b9acSAndroid Build Coastguard Worker 	info.options = LWS_SERVER_OPTION_DO_SSL_GLOBAL_INIT |
429*1c60b9acSAndroid Build Coastguard Worker 		       /* we start off not trusting anything */
430*1c60b9acSAndroid Build Coastguard Worker 		       LWS_SERVER_OPTION_DISABLE_OS_CA_CERTS |
431*1c60b9acSAndroid Build Coastguard Worker 		       LWS_SERVER_OPTION_H2_JUST_FIX_WINDOW_UPDATE_OVERFLOW;
432*1c60b9acSAndroid Build Coastguard Worker 	info.port = CONTEXT_PORT_NO_LISTEN; /* we do not run any server */
433*1c60b9acSAndroid Build Coastguard Worker 	info.protocols = protocols;
434*1c60b9acSAndroid Build Coastguard Worker 	info.user = &args;
435*1c60b9acSAndroid Build Coastguard Worker 	info.register_notifier_list = na;
436*1c60b9acSAndroid Build Coastguard Worker 	info.connect_timeout_secs = 30;
437*1c60b9acSAndroid Build Coastguard Worker 	info.system_ops = &system_ops;
438*1c60b9acSAndroid Build Coastguard Worker 	info.fd_limit_per_thread = 1 + 6 + 1;
439*1c60b9acSAndroid Build Coastguard Worker 	info.max_http_header_data = 8192;
440*1c60b9acSAndroid Build Coastguard Worker 
441*1c60b9acSAndroid Build Coastguard Worker 	context = lws_create_context(&info);
442*1c60b9acSAndroid Build Coastguard Worker 	if (!context) {
443*1c60b9acSAndroid Build Coastguard Worker 		lwsl_err("lws init failed\n");
444*1c60b9acSAndroid Build Coastguard Worker 		bad = 5;
445*1c60b9acSAndroid Build Coastguard Worker 		goto bail;
446*1c60b9acSAndroid Build Coastguard Worker 	}
447*1c60b9acSAndroid Build Coastguard Worker 
448*1c60b9acSAndroid Build Coastguard Worker 	while (n >= 0 && !interrupted)
449*1c60b9acSAndroid Build Coastguard Worker 		n = lws_service(context, 0);
450*1c60b9acSAndroid Build Coastguard Worker 
451*1c60b9acSAndroid Build Coastguard Worker 	lwsl_err("%s: destroying context, interrupted = %d\n", __func__,
452*1c60b9acSAndroid Build Coastguard Worker 			interrupted);
453*1c60b9acSAndroid Build Coastguard Worker 
454*1c60b9acSAndroid Build Coastguard Worker 	lws_context_destroy(context);
455*1c60b9acSAndroid Build Coastguard Worker 
456*1c60b9acSAndroid Build Coastguard Worker bail:
457*1c60b9acSAndroid Build Coastguard Worker 	if ((p = lws_cmdline_option(argc, argv, "--expected-exit")))
458*1c60b9acSAndroid Build Coastguard Worker 		expected = atoi(p);
459*1c60b9acSAndroid Build Coastguard Worker 
460*1c60b9acSAndroid Build Coastguard Worker 	if (bad == expected) {
461*1c60b9acSAndroid Build Coastguard Worker 		lwsl_user("Completed: OK (seen expected %d)\n", expected);
462*1c60b9acSAndroid Build Coastguard Worker 		return 0;
463*1c60b9acSAndroid Build Coastguard Worker 	}
464*1c60b9acSAndroid Build Coastguard Worker 
465*1c60b9acSAndroid Build Coastguard Worker 	lwsl_err("Completed: failed: exit %d, expected %d\n", bad, expected);
466*1c60b9acSAndroid Build Coastguard Worker 
467*1c60b9acSAndroid Build Coastguard Worker 	return 1;
468*1c60b9acSAndroid Build Coastguard Worker }
469