2008-05-17 13:23:37 +00:00
|
|
|
/*
|
2014-08-22 23:08:44 +04:00
|
|
|
* Bittorrent Client using Qt and libtorrent.
|
|
|
|
* Copyright (C) 2014 Vladimir Golovnev <glassez@yandex.ru>
|
|
|
|
* Copyright (C) 2006 Christophe Dumez <chris@qbittorrent.org>
|
|
|
|
* Copyright (C) 2006 Ishan Arora <ishan@qbittorrent.org>
|
2008-05-17 13:23:37 +00:00
|
|
|
*
|
2009-04-05 18:48:45 +00:00
|
|
|
* This program is free software; you can redistribute it and/or
|
|
|
|
* modify it under the terms of the GNU General Public License
|
|
|
|
* as published by the Free Software Foundation; either version 2
|
|
|
|
* of the License, or (at your option) any later version.
|
2008-05-17 13:23:37 +00:00
|
|
|
*
|
2009-04-05 18:48:45 +00:00
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
2008-05-17 13:23:37 +00:00
|
|
|
*
|
2009-04-05 18:48:45 +00:00
|
|
|
* You should have received a copy of the GNU General Public License
|
|
|
|
* along with this program; if not, write to the Free Software
|
|
|
|
* Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
|
|
|
|
*
|
|
|
|
* In addition, as a special exception, the copyright holders give permission to
|
|
|
|
* link this program with the OpenSSL project's "OpenSSL" library (or with
|
|
|
|
* modified versions of it that use the same license as the "OpenSSL" library),
|
|
|
|
* and distribute the linked executables. You must obey the GNU General Public
|
|
|
|
* License in all respects for all of the code used other than "OpenSSL". If you
|
|
|
|
* modify file(s), you may extend this exception to your version of the file(s),
|
|
|
|
* but you are not obligated to do so. If you do not wish to do so, delete this
|
|
|
|
* exception statement from your version.
|
2008-05-17 13:23:37 +00:00
|
|
|
*/
|
|
|
|
|
2017-03-04 15:03:39 +08:00
|
|
|
#include "server.h"
|
|
|
|
|
2019-01-17 09:42:01 +08:00
|
|
|
#include <algorithm>
|
|
|
|
|
2017-04-11 12:07:17 +08:00
|
|
|
#include <QMutableListIterator>
|
2017-03-04 15:03:39 +08:00
|
|
|
#include <QNetworkProxy>
|
2019-01-17 09:42:01 +08:00
|
|
|
#include <QSslCipher>
|
2019-02-27 15:23:56 +08:00
|
|
|
#include <QSslConfiguration>
|
2019-01-17 09:42:01 +08:00
|
|
|
#include <QSslSocket>
|
2017-03-04 15:03:39 +08:00
|
|
|
#include <QStringList>
|
2017-04-11 12:07:17 +08:00
|
|
|
#include <QTimer>
|
2017-03-04 15:03:39 +08:00
|
|
|
|
2019-01-17 09:42:01 +08:00
|
|
|
#include "base/utils/net.h"
|
2015-01-28 12:03:22 +03:00
|
|
|
#include "connection.h"
|
2010-03-13 12:21:15 +00:00
|
|
|
|
2019-01-17 09:42:01 +08:00
|
|
|
namespace
|
|
|
|
{
|
|
|
|
const int KEEP_ALIVE_DURATION = 7 * 1000; // milliseconds
|
|
|
|
const int CONNECTIONS_LIMIT = 500;
|
|
|
|
const int CONNECTIONS_SCAN_INTERVAL = 2; // seconds
|
|
|
|
|
|
|
|
QList<QSslCipher> safeCipherList()
|
|
|
|
{
|
2019-01-11 16:05:57 +08:00
|
|
|
const QStringList badCiphers {"idea", "rc4"};
|
2019-02-27 15:23:56 +08:00
|
|
|
const QList<QSslCipher> allCiphers {QSslConfiguration::supportedCiphers()};
|
2019-01-17 09:42:01 +08:00
|
|
|
QList<QSslCipher> safeCiphers;
|
2019-01-11 16:05:57 +08:00
|
|
|
std::copy_if(allCiphers.cbegin(), allCiphers.cend(), std::back_inserter(safeCiphers), [&badCiphers](const QSslCipher &cipher)
|
|
|
|
{
|
|
|
|
return std::none_of(badCiphers.cbegin(), badCiphers.cend(), [&cipher](const QString &badCipher)
|
|
|
|
{
|
|
|
|
return cipher.name().contains(badCipher, Qt::CaseInsensitive);
|
|
|
|
});
|
|
|
|
});
|
2019-01-17 09:42:01 +08:00
|
|
|
return safeCiphers;
|
|
|
|
}
|
|
|
|
}
|
2017-04-11 12:07:17 +08:00
|
|
|
|
2015-01-28 12:03:22 +03:00
|
|
|
using namespace Http;
|
|
|
|
|
2015-05-13 18:39:48 +03:00
|
|
|
Server::Server(IRequestHandler *requestHandler, QObject *parent)
|
2015-02-05 19:54:15 +03:00
|
|
|
: QTcpServer(parent)
|
|
|
|
, m_requestHandler(requestHandler)
|
2014-08-22 23:08:44 +04:00
|
|
|
, m_https(false)
|
|
|
|
{
|
2017-02-20 23:57:49 +01:00
|
|
|
setProxy(QNetworkProxy::NoProxy);
|
2019-02-27 15:23:56 +08:00
|
|
|
|
|
|
|
QSslConfiguration sslConf {QSslConfiguration::defaultConfiguration()};
|
|
|
|
sslConf.setCiphers(safeCipherList());
|
|
|
|
QSslConfiguration::setDefaultConfiguration(sslConf);
|
2017-04-11 12:07:17 +08:00
|
|
|
|
2019-02-13 17:12:02 +02:00
|
|
|
auto *dropConnectionTimer = new QTimer(this);
|
2017-04-11 12:07:17 +08:00
|
|
|
connect(dropConnectionTimer, &QTimer::timeout, this, &Server::dropTimedOutConnection);
|
|
|
|
dropConnectionTimer->start(CONNECTIONS_SCAN_INTERVAL * 1000);
|
2008-05-17 13:23:37 +00:00
|
|
|
}
|
|
|
|
|
2019-02-21 23:31:43 +02:00
|
|
|
void Server::incomingConnection(const qintptr socketDescriptor)
|
2017-04-10 20:10:48 +08:00
|
|
|
{
|
2017-04-11 12:07:17 +08:00
|
|
|
if (m_connections.size() >= CONNECTIONS_LIMIT) return;
|
|
|
|
|
2017-04-10 20:10:48 +08:00
|
|
|
QTcpSocket *serverSocket;
|
|
|
|
if (m_https)
|
|
|
|
serverSocket = new QSslSocket(this);
|
|
|
|
else
|
|
|
|
serverSocket = new QTcpSocket(this);
|
|
|
|
|
2017-04-11 12:07:17 +08:00
|
|
|
if (!serverSocket->setSocketDescriptor(socketDescriptor)) {
|
|
|
|
delete serverSocket;
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (m_https) {
|
|
|
|
static_cast<QSslSocket *>(serverSocket)->setProtocol(QSsl::SecureProtocols);
|
|
|
|
static_cast<QSslSocket *>(serverSocket)->setPrivateKey(m_key);
|
|
|
|
static_cast<QSslSocket *>(serverSocket)->setLocalCertificateChain(m_certificates);
|
|
|
|
static_cast<QSslSocket *>(serverSocket)->setPeerVerifyMode(QSslSocket::VerifyNone);
|
|
|
|
static_cast<QSslSocket *>(serverSocket)->startServerEncryption();
|
2017-04-10 20:10:48 +08:00
|
|
|
}
|
2017-04-11 12:07:17 +08:00
|
|
|
|
2019-02-13 17:12:02 +02:00
|
|
|
auto *c = new Connection(serverSocket, m_requestHandler, this);
|
2019-04-15 21:22:11 +08:00
|
|
|
m_connections.insert(c);
|
2019-04-15 19:52:49 +08:00
|
|
|
connect(serverSocket, &QAbstractSocket::disconnected, this, [c, this]() { removeConnection(c); });
|
|
|
|
}
|
|
|
|
|
|
|
|
void Server::removeConnection(Connection *connection)
|
|
|
|
{
|
2019-04-15 21:22:11 +08:00
|
|
|
m_connections.remove(connection);
|
2019-04-15 19:52:49 +08:00
|
|
|
connection->deleteLater();
|
2017-04-11 12:07:17 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
void Server::dropTimedOutConnection()
|
|
|
|
{
|
2019-04-15 21:22:11 +08:00
|
|
|
QMutableSetIterator<Connection *> i(m_connections);
|
2017-04-11 12:07:17 +08:00
|
|
|
while (i.hasNext()) {
|
2019-04-15 19:52:49 +08:00
|
|
|
Connection *connection = i.next();
|
|
|
|
if (connection->hasExpired(KEEP_ALIVE_DURATION)) {
|
|
|
|
connection->deleteLater();
|
2017-04-11 12:07:17 +08:00
|
|
|
i.remove();
|
|
|
|
}
|
2017-04-10 20:10:48 +08:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2019-01-17 09:42:01 +08:00
|
|
|
bool Server::setupHttps(const QByteArray &certificates, const QByteArray &privateKey)
|
2014-08-22 23:08:44 +04:00
|
|
|
{
|
2019-01-17 09:42:01 +08:00
|
|
|
const QList<QSslCertificate> certs {Utils::Net::loadSSLCertificate(certificates)};
|
|
|
|
const QSslKey key {Utils::Net::loadSSLKey(privateKey)};
|
|
|
|
|
|
|
|
if (certs.isEmpty() || key.isNull()) {
|
2017-04-10 20:04:02 +08:00
|
|
|
disableHttps();
|
|
|
|
return false;
|
|
|
|
}
|
2019-01-17 09:42:01 +08:00
|
|
|
|
|
|
|
m_key = key;
|
|
|
|
m_certificates = certs;
|
|
|
|
m_https = true;
|
|
|
|
return true;
|
2011-06-05 16:08:30 +00:00
|
|
|
}
|
|
|
|
|
2015-01-28 12:03:22 +03:00
|
|
|
void Server::disableHttps()
|
2014-08-22 23:08:44 +04:00
|
|
|
{
|
2015-02-05 19:54:15 +03:00
|
|
|
m_https = false;
|
2016-03-05 02:41:18 -05:00
|
|
|
m_certificates.clear();
|
2015-02-05 19:54:15 +03:00
|
|
|
m_key.clear();
|
2011-06-05 16:08:30 +00:00
|
|
|
}
|