Change default cipher in smime app to des3.
[openssl.git] / apps / s_socket.c
1 /* apps/s_socket.c -  socket-related functions used by s_client and s_server */
2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3  * All rights reserved.
4  *
5  * This package is an SSL implementation written
6  * by Eric Young (eay@cryptsoft.com).
7  * The implementation was written so as to conform with Netscapes SSL.
8  * 
9  * This library is free for commercial and non-commercial use as long as
10  * the following conditions are aheared to.  The following conditions
11  * apply to all code found in this distribution, be it the RC4, RSA,
12  * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
13  * included with this distribution is covered by the same copyright terms
14  * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15  * 
16  * Copyright remains Eric Young's, and as such any Copyright notices in
17  * the code are not to be removed.
18  * If this package is used in a product, Eric Young should be given attribution
19  * as the author of the parts of the library used.
20  * This can be in the form of a textual message at program startup or
21  * in documentation (online or textual) provided with the package.
22  * 
23  * Redistribution and use in source and binary forms, with or without
24  * modification, are permitted provided that the following conditions
25  * are met:
26  * 1. Redistributions of source code must retain the copyright
27  *    notice, this list of conditions and the following disclaimer.
28  * 2. Redistributions in binary form must reproduce the above copyright
29  *    notice, this list of conditions and the following disclaimer in the
30  *    documentation and/or other materials provided with the distribution.
31  * 3. All advertising materials mentioning features or use of this software
32  *    must display the following acknowledgement:
33  *    "This product includes cryptographic software written by
34  *     Eric Young (eay@cryptsoft.com)"
35  *    The word 'cryptographic' can be left out if the rouines from the library
36  *    being used are not cryptographic related :-).
37  * 4. If you include any Windows specific code (or a derivative thereof) from 
38  *    the apps directory (application code) you must include an acknowledgement:
39  *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40  * 
41  * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51  * SUCH DAMAGE.
52  * 
53  * The licence and distribution terms for any publically available version or
54  * derivative of this code cannot be changed.  i.e. this code cannot simply be
55  * copied and put under another distribution licence
56  * [including the GNU Public Licence.]
57  */
58
59 #include <stdio.h>
60 #include <stdlib.h>
61 #include <string.h>
62 #include <errno.h>
63 #include <signal.h>
64
65 #ifdef FLAT_INC
66 #include "e_os2.h"
67 #else
68 #include "../e_os2.h"
69 #endif
70
71 /* With IPv6, it looks like Digital has mixed up the proper order of
72    recursive header file inclusion, resulting in the compiler complaining
73    that u_int isn't defined, but only if _POSIX_C_SOURCE is defined, which
74    is needed to have fileno() declared correctly...  So let's define u_int */
75 #if defined(OPENSSL_SYS_VMS_DECC) && !defined(__U_INT)
76 #define __U_INT
77 typedef unsigned int u_int;
78 #endif
79
80 #define USE_SOCKETS
81 #define NON_MAIN
82 #include "apps.h"
83 #undef USE_SOCKETS
84 #undef NON_MAIN
85 #include "s_apps.h"
86 #include <openssl/ssl.h>
87
88 #ifdef FLAT_INC
89 #include "e_os.h"
90 #else
91 #include "../e_os.h"
92 #endif
93
94 #ifndef OPENSSL_NO_SOCK
95
96 #if defined(OPENSSL_SYS_NETWARE) && defined(NETWARE_BSDSOCK)
97 #include "netdb.h"
98 #endif
99
100 static struct hostent *GetHostByName(char *name);
101 #if defined(OPENSSL_SYS_WINDOWS) || (defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK))
102 static void ssl_sock_cleanup(void);
103 #endif
104 static int ssl_sock_init(void);
105 static int init_client_ip(int *sock,unsigned char ip[4], int port, int type);
106 static int init_server(int *sock, int port, int type);
107 static int init_server_long(int *sock, int port,char *ip, int type);
108 static int do_accept(int acc_sock, int *sock, char **host);
109 static int host_ip(char *str, unsigned char ip[4]);
110
111 #ifdef OPENSSL_SYS_WIN16
112 #define SOCKET_PROTOCOL 0 /* more microsoft stupidity */
113 #else
114 #define SOCKET_PROTOCOL IPPROTO_TCP
115 #endif
116
117 #if defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
118 static int wsa_init_done=0;
119 #endif
120
121 #ifdef OPENSSL_SYS_WINDOWS
122 static struct WSAData wsa_state;
123 static int wsa_init_done=0;
124
125 #ifdef OPENSSL_SYS_WIN16
126 static HWND topWnd=0;
127 static FARPROC lpTopWndProc=NULL;
128 static FARPROC lpTopHookProc=NULL;
129 extern HINSTANCE _hInstance;  /* nice global CRT provides */
130
131 static LONG FAR PASCAL topHookProc(HWND hwnd, UINT message, WPARAM wParam,
132              LPARAM lParam)
133         {
134         if (hwnd == topWnd)
135                 {
136                 switch(message)
137                         {
138                 case WM_DESTROY:
139                 case WM_CLOSE:
140                         SetWindowLong(topWnd,GWL_WNDPROC,(LONG)lpTopWndProc);
141                         ssl_sock_cleanup();
142                         break;
143                         }
144                 }
145         return CallWindowProc(lpTopWndProc,hwnd,message,wParam,lParam);
146         }
147
148 static BOOL CALLBACK enumproc(HWND hwnd,LPARAM lParam)
149         {
150         topWnd=hwnd;
151         return(FALSE);
152         }
153
154 #endif /* OPENSSL_SYS_WIN32 */
155 #endif /* OPENSSL_SYS_WINDOWS */
156
157 #ifdef OPENSSL_SYS_WINDOWS
158 static void ssl_sock_cleanup(void)
159         {
160         if (wsa_init_done)
161                 {
162                 wsa_init_done=0;
163 #ifndef OPENSSL_SYS_WINCE
164                 WSACancelBlockingCall();
165 #endif
166                 WSACleanup();
167                 }
168         }
169 #elif defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
170 static void sock_cleanup(void)
171     {
172     if (wsa_init_done)
173         {
174         wsa_init_done=0;
175                 WSACleanup();
176                 }
177         }
178 #endif
179
180 static int ssl_sock_init(void)
181         {
182 #ifdef WATT32
183         extern int _watt_do_exit;
184         _watt_do_exit = 0;
185         if (sock_init())
186                 return (0);
187 #elif defined(OPENSSL_SYS_WINDOWS)
188         if (!wsa_init_done)
189                 {
190                 int err;
191           
192 #ifdef SIGINT
193                 signal(SIGINT,(void (*)(int))ssl_sock_cleanup);
194 #endif
195                 wsa_init_done=1;
196                 memset(&wsa_state,0,sizeof(wsa_state));
197                 if (WSAStartup(0x0101,&wsa_state)!=0)
198                         {
199                         err=WSAGetLastError();
200                         BIO_printf(bio_err,"unable to start WINSOCK, error code=%d\n",err);
201                         return(0);
202                         }
203
204 #ifdef OPENSSL_SYS_WIN16
205                 EnumTaskWindows(GetCurrentTask(),enumproc,0L);
206                 lpTopWndProc=(FARPROC)GetWindowLong(topWnd,GWL_WNDPROC);
207                 lpTopHookProc=MakeProcInstance((FARPROC)topHookProc,_hInstance);
208
209                 SetWindowLong(topWnd,GWL_WNDPROC,(LONG)lpTopHookProc);
210 #endif /* OPENSSL_SYS_WIN16 */
211                 }
212 #elif defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
213    WORD wVerReq;
214    WSADATA wsaData;
215    int err;
216
217    if (!wsa_init_done)
218       {
219    
220 # ifdef SIGINT
221       signal(SIGINT,(void (*)(int))sock_cleanup);
222 # endif
223
224       wsa_init_done=1;
225       wVerReq = MAKEWORD( 2, 0 );
226       err = WSAStartup(wVerReq,&wsaData);
227       if (err != 0)
228          {
229          BIO_printf(bio_err,"unable to start WINSOCK2, error code=%d\n",err);
230          return(0);
231          }
232       }
233 #endif /* OPENSSL_SYS_WINDOWS */
234         return(1);
235         }
236
237 int init_client(int *sock, char *host, int port, int type)
238         {
239         unsigned char ip[4];
240
241         memset(ip, '\0', sizeof ip);
242         if (!host_ip(host,&(ip[0])))
243                 return 0;
244         return init_client_ip(sock,ip,port,type);
245         }
246
247 static int init_client_ip(int *sock, unsigned char ip[4], int port, int type)
248         {
249         unsigned long addr;
250         struct sockaddr_in them;
251         int s,i;
252
253         if (!ssl_sock_init()) return(0);
254
255         memset((char *)&them,0,sizeof(them));
256         them.sin_family=AF_INET;
257         them.sin_port=htons((unsigned short)port);
258         addr=(unsigned long)
259                 ((unsigned long)ip[0]<<24L)|
260                 ((unsigned long)ip[1]<<16L)|
261                 ((unsigned long)ip[2]<< 8L)|
262                 ((unsigned long)ip[3]);
263         them.sin_addr.s_addr=htonl(addr);
264
265         if (type == SOCK_STREAM)
266                 s=socket(AF_INET,SOCK_STREAM,SOCKET_PROTOCOL);
267         else /* ( type == SOCK_DGRAM) */
268                 s=socket(AF_INET,SOCK_DGRAM,IPPROTO_UDP);
269                         
270         if (s == INVALID_SOCKET) { perror("socket"); return(0); }
271
272 #if defined(SO_KEEPALIVE) && !defined(OPENSSL_SYS_MPE)
273         if (type == SOCK_STREAM)
274                 {
275                 i=0;
276                 i=setsockopt(s,SOL_SOCKET,SO_KEEPALIVE,(char *)&i,sizeof(i));
277                 if (i < 0) { closesocket(s); perror("keepalive"); return(0); }
278                 }
279 #endif
280
281         if (connect(s,(struct sockaddr *)&them,sizeof(them)) == -1)
282                 { closesocket(s); perror("connect"); return(0); }
283         *sock=s;
284         return(1);
285         }
286
287 int do_server(int port, int type, int *ret, int (*cb)(char *hostname, int s, int stype, unsigned char *context), unsigned char *context, int naccept)
288         {
289         int sock;
290         char *name = NULL;
291         int accept_socket = 0;
292         int i;
293
294         if (!init_server(&accept_socket,port,type)) return(0);
295
296         if (ret != NULL)
297                 {
298                 *ret=accept_socket;
299                 /* return(1);*/
300                 }
301         for (;;)
302                 {
303                 if (type==SOCK_STREAM)
304                         {
305                         if (do_accept(accept_socket,&sock,&name) == 0)
306                                 {
307                                 SHUTDOWN(accept_socket);
308                                 return(0);
309                                 }
310                         }
311                 else
312                         sock = accept_socket;
313                 i=(*cb)(name,sock, type, context);
314                 if (name != NULL) OPENSSL_free(name);
315                 if (type==SOCK_STREAM)
316                         SHUTDOWN2(sock);
317                 if (naccept != -1)
318                         naccept--;
319                 if (i < 0 || naccept == 0)
320                         {
321                         SHUTDOWN2(accept_socket);
322                         return(i);
323                         }
324                 }
325         }
326
327 static int init_server_long(int *sock, int port, char *ip, int type)
328         {
329         int ret=0;
330         struct sockaddr_in server;
331         int s= -1;
332
333         if (!ssl_sock_init()) return(0);
334
335         memset((char *)&server,0,sizeof(server));
336         server.sin_family=AF_INET;
337         server.sin_port=htons((unsigned short)port);
338         if (ip == NULL)
339                 server.sin_addr.s_addr=INADDR_ANY;
340         else
341 /* Added for T3E, address-of fails on bit field (beckman@acl.lanl.gov) */
342 #ifndef BIT_FIELD_LIMITS
343                 memcpy(&server.sin_addr.s_addr,ip,4);
344 #else
345                 memcpy(&server.sin_addr,ip,4);
346 #endif
347         
348                 if (type == SOCK_STREAM)
349                         s=socket(AF_INET,SOCK_STREAM,SOCKET_PROTOCOL);
350                 else /* type == SOCK_DGRAM */
351                         s=socket(AF_INET, SOCK_DGRAM,IPPROTO_UDP);
352
353         if (s == INVALID_SOCKET) goto err;
354 #if defined SOL_SOCKET && defined SO_REUSEADDR
355                 {
356                 int j = 1;
357                 setsockopt(s, SOL_SOCKET, SO_REUSEADDR,
358                            (void *) &j, sizeof j);
359                 }
360 #endif
361         if (bind(s,(struct sockaddr *)&server,sizeof(server)) == -1)
362                 {
363 #ifndef OPENSSL_SYS_WINDOWS
364                 perror("bind");
365 #endif
366                 goto err;
367                 }
368         /* Make it 128 for linux */
369         if (type==SOCK_STREAM && listen(s,128) == -1) goto err;
370         *sock=s;
371         ret=1;
372 err:
373         if ((ret == 0) && (s != -1))
374                 {
375                 SHUTDOWN(s);
376                 }
377         return(ret);
378         }
379
380 static int init_server(int *sock, int port, int type)
381         {
382         return(init_server_long(sock, port, NULL, type));
383         }
384
385 static int do_accept(int acc_sock, int *sock, char **host)
386         {
387         int ret;
388         struct hostent *h1,*h2;
389         static struct sockaddr_in from;
390         int len;
391 /*      struct linger ling; */
392
393         if (!ssl_sock_init()) return(0);
394
395 #ifndef OPENSSL_SYS_WINDOWS
396 redoit:
397 #endif
398
399         memset((char *)&from,0,sizeof(from));
400         len=sizeof(from);
401         /* Note: under VMS with SOCKETSHR the fourth parameter is currently
402          * of type (int *) whereas under other systems it is (void *) if
403          * you don't have a cast it will choke the compiler: if you do
404          * have a cast then you can either go for (int *) or (void *).
405          */
406         ret=accept(acc_sock,(struct sockaddr *)&from,(void *)&len);
407         if (ret == INVALID_SOCKET)
408                 {
409 #if defined(OPENSSL_SYS_WINDOWS) || (defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK))
410                 int i;
411                 i=WSAGetLastError();
412                 BIO_printf(bio_err,"accept error %d\n",i);
413 #else
414                 if (errno == EINTR)
415                         {
416                         /*check_timeout(); */
417                         goto redoit;
418                         }
419                 fprintf(stderr,"errno=%d ",errno);
420                 perror("accept");
421 #endif
422                 return(0);
423                 }
424
425 /*
426         ling.l_onoff=1;
427         ling.l_linger=0;
428         i=setsockopt(ret,SOL_SOCKET,SO_LINGER,(char *)&ling,sizeof(ling));
429         if (i < 0) { perror("linger"); return(0); }
430         i=0;
431         i=setsockopt(ret,SOL_SOCKET,SO_KEEPALIVE,(char *)&i,sizeof(i));
432         if (i < 0) { perror("keepalive"); return(0); }
433 */
434
435         if (host == NULL) goto end;
436 #ifndef BIT_FIELD_LIMITS
437         /* I should use WSAAsyncGetHostByName() under windows */
438         h1=gethostbyaddr((char *)&from.sin_addr.s_addr,
439                 sizeof(from.sin_addr.s_addr),AF_INET);
440 #else
441         h1=gethostbyaddr((char *)&from.sin_addr,
442                 sizeof(struct in_addr),AF_INET);
443 #endif
444         if (h1 == NULL)
445                 {
446                 BIO_printf(bio_err,"bad gethostbyaddr\n");
447                 *host=NULL;
448                 /* return(0); */
449                 }
450         else
451                 {
452                 if ((*host=(char *)OPENSSL_malloc(strlen(h1->h_name)+1)) == NULL)
453                         {
454                         perror("OPENSSL_malloc");
455                         closesocket(ret);
456                         return(0);
457                         }
458                 BUF_strlcpy(*host,h1->h_name,strlen(h1->h_name)+1);
459
460                 h2=GetHostByName(*host);
461                 if (h2 == NULL)
462                         {
463                         BIO_printf(bio_err,"gethostbyname failure\n");
464                         closesocket(ret);
465                         return(0);
466                         }
467                 if (h2->h_addrtype != AF_INET)
468                         {
469                         BIO_printf(bio_err,"gethostbyname addr is not AF_INET\n");
470                         closesocket(ret);
471                         return(0);
472                         }
473                 }
474 end:
475         *sock=ret;
476         return(1);
477         }
478
479 int extract_host_port(char *str, char **host_ptr, unsigned char *ip,
480              short *port_ptr)
481         {
482         char *h,*p;
483
484         h=str;
485         p=strchr(str,':');
486         if (p == NULL)
487                 {
488                 BIO_printf(bio_err,"no port defined\n");
489                 return(0);
490                 }
491         *(p++)='\0';
492
493         if ((ip != NULL) && !host_ip(str,ip))
494                 goto err;
495         if (host_ptr != NULL) *host_ptr=h;
496
497         if (!extract_port(p,port_ptr))
498                 goto err;
499         return(1);
500 err:
501         return(0);
502         }
503
504 static int host_ip(char *str, unsigned char ip[4])
505         {
506         unsigned int in[4]; 
507         int i;
508
509         if (sscanf(str,"%u.%u.%u.%u",&(in[0]),&(in[1]),&(in[2]),&(in[3])) == 4)
510                 {
511                 for (i=0; i<4; i++)
512                         if (in[i] > 255)
513                                 {
514                                 BIO_printf(bio_err,"invalid IP address\n");
515                                 goto err;
516                                 }
517                 ip[0]=in[0];
518                 ip[1]=in[1];
519                 ip[2]=in[2];
520                 ip[3]=in[3];
521                 }
522         else
523                 { /* do a gethostbyname */
524                 struct hostent *he;
525
526                 if (!ssl_sock_init()) return(0);
527
528                 he=GetHostByName(str);
529                 if (he == NULL)
530                         {
531                         BIO_printf(bio_err,"gethostbyname failure\n");
532                         goto err;
533                         }
534                 /* cast to short because of win16 winsock definition */
535                 if ((short)he->h_addrtype != AF_INET)
536                         {
537                         BIO_printf(bio_err,"gethostbyname addr is not AF_INET\n");
538                         return(0);
539                         }
540                 ip[0]=he->h_addr_list[0][0];
541                 ip[1]=he->h_addr_list[0][1];
542                 ip[2]=he->h_addr_list[0][2];
543                 ip[3]=he->h_addr_list[0][3];
544                 }
545         return(1);
546 err:
547         return(0);
548         }
549
550 int extract_port(char *str, short *port_ptr)
551         {
552         int i;
553         struct servent *s;
554
555         i=atoi(str);
556         if (i != 0)
557                 *port_ptr=(unsigned short)i;
558         else
559                 {
560                 s=getservbyname(str,"tcp");
561                 if (s == NULL)
562                         {
563                         BIO_printf(bio_err,"getservbyname failure for %s\n",str);
564                         return(0);
565                         }
566                 *port_ptr=ntohs((unsigned short)s->s_port);
567                 }
568         return(1);
569         }
570
571 #define GHBN_NUM        4
572 static struct ghbn_cache_st
573         {
574         char name[128];
575         struct hostent ent;
576         unsigned long order;
577         } ghbn_cache[GHBN_NUM];
578
579 static unsigned long ghbn_hits=0L;
580 static unsigned long ghbn_miss=0L;
581
582 static struct hostent *GetHostByName(char *name)
583         {
584         struct hostent *ret;
585         int i,lowi=0;
586         unsigned long low= (unsigned long)-1;
587
588         for (i=0; i<GHBN_NUM; i++)
589                 {
590                 if (low > ghbn_cache[i].order)
591                         {
592                         low=ghbn_cache[i].order;
593                         lowi=i;
594                         }
595                 if (ghbn_cache[i].order > 0)
596                         {
597                         if (strncmp(name,ghbn_cache[i].name,128) == 0)
598                                 break;
599                         }
600                 }
601         if (i == GHBN_NUM) /* no hit*/
602                 {
603                 ghbn_miss++;
604                 ret=gethostbyname(name);
605                 if (ret == NULL) return(NULL);
606                 /* else add to cache */
607                 if(strlen(name) < sizeof ghbn_cache[0].name)
608                         {
609                         strcpy(ghbn_cache[lowi].name,name);
610                         memcpy((char *)&(ghbn_cache[lowi].ent),ret,sizeof(struct hostent));
611                         ghbn_cache[lowi].order=ghbn_miss+ghbn_hits;
612                         }
613                 return(ret);
614                 }
615         else
616                 {
617                 ghbn_hits++;
618                 ret= &(ghbn_cache[i].ent);
619                 ghbn_cache[i].order=ghbn_miss+ghbn_hits;
620                 return(ret);
621                 }
622         }
623
624 #endif