]> Cypherpunks.ru repositories - govpn.git/blob - src/cypherpunks.ru/govpn/cmd/govpn-server/udp.go
go vet/lint
[govpn.git] / src / cypherpunks.ru / govpn / cmd / govpn-server / udp.go
1 /*
2 GoVPN -- simple secure free software virtual private network daemon
3 Copyright (C) 2014-2017 Sergey Matveev <stargrave@stargrave.org>
4
5 This program is free software: you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published by
7 the Free Software Foundation, either version 3 of the License, or
8 (at your option) any later version.
9
10 This program is distributed in the hope that it will be useful,
11 but WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
13 GNU General Public License for more details.
14
15 You should have received a copy of the GNU General Public License
16 along with this program.  If not, see <http://www.gnu.org/licenses/>.
17 */
18
19 package main
20
21 import (
22         "log"
23         "net"
24
25         "cypherpunks.ru/govpn"
26 )
27
28 type UDPSender struct {
29         conn *net.UDPConn
30         addr *net.UDPAddr
31 }
32
33 func (c UDPSender) Write(data []byte) (int, error) {
34         return c.conn.WriteToUDP(data, c.addr)
35 }
36
37 var (
38         // Buffers for UDP parallel processing
39         udpBufs = make(chan []byte, 1<<8)
40 )
41
42 func startUDP() {
43         bind, err := net.ResolveUDPAddr("udp", *bindAddr)
44         if err != nil {
45                 log.Fatalln("Can not resolve bind address:", err)
46         }
47         conn, err := net.ListenUDP("udp", bind)
48         if err != nil {
49                 log.Fatalln("Can not listen on UDP:", err)
50         }
51         govpn.BothPrintf(`[udp-listen bind="%s"]`, *bindAddr)
52
53         udpBufs <- make([]byte, govpn.MTUMax)
54         go func() {
55                 var buf []byte
56                 var raddr *net.UDPAddr
57                 var addr string
58                 var n int
59                 var err error
60                 var ps *PeerState
61                 var hs *govpn.Handshake
62                 var addrPrev string
63                 var exists bool
64                 var peerID *govpn.PeerID
65                 var conf *govpn.PeerConf
66                 for {
67                         buf = <-udpBufs
68                         n, raddr, err = conn.ReadFromUDP(buf)
69                         if err != nil {
70                                 govpn.Printf(`[receive-failed bind="%s" err="%s"]`, *bindAddr, err)
71                                 break
72                         }
73                         addr = raddr.String()
74
75                         peersLock.RLock()
76                         ps, exists = peers[addr]
77                         peersLock.RUnlock()
78                         if exists {
79                                 go func(peer *govpn.Peer, tap *govpn.TAP, buf []byte, n int) {
80                                         peer.PktProcess(buf[:n], tap, true)
81                                         udpBufs <- buf
82                                 }(ps.peer, ps.tap, buf, n)
83                                 continue
84                         }
85
86                         hsLock.RLock()
87                         hs, exists = handshakes[addr]
88                         hsLock.RUnlock()
89                         if !exists {
90                                 peerID = idsCache.Find(buf[:n])
91                                 if peerID == nil {
92                                         govpn.Printf(`[identity-unknown bind="%s" addr="%s"]`, *bindAddr, addr)
93                                         udpBufs <- buf
94                                         continue
95                                 }
96                                 conf = confs[*peerID]
97                                 if conf == nil {
98                                         govpn.Printf(
99                                                 `[conf-get-failed bind="%s" peer="%s"]`,
100                                                 *bindAddr, peerID.String(),
101                                         )
102                                         udpBufs <- buf
103                                         continue
104                                 }
105                                 hs := govpn.NewHandshake(
106                                         addr,
107                                         UDPSender{conn: conn, addr: raddr},
108                                         conf,
109                                 )
110                                 hs.Server(buf[:n])
111                                 udpBufs <- buf
112                                 hsLock.Lock()
113                                 handshakes[addr] = hs
114                                 hsLock.Unlock()
115                                 continue
116                         }
117
118                         peer := hs.Server(buf[:n])
119                         if peer == nil {
120                                 udpBufs <- buf
121                                 continue
122                         }
123                         govpn.Printf(
124                                 `[handshake-completed bind="%s" addr="%s" peer="%s"]`,
125                                 *bindAddr, addr, peerID.String(),
126                         )
127                         hs.Zero()
128                         hsLock.Lock()
129                         delete(handshakes, addr)
130                         hsLock.Unlock()
131
132                         go func() {
133                                 udpBufs <- make([]byte, govpn.MTUMax)
134                                 udpBufs <- make([]byte, govpn.MTUMax)
135                         }()
136                         peersByIDLock.RLock()
137                         addrPrev, exists = peersByID[*peer.ID]
138                         peersByIDLock.RUnlock()
139                         if exists {
140                                 peersLock.Lock()
141                                 peers[addrPrev].terminator <- struct{}{}
142                                 psNew := &PeerState{
143                                         peer:       peer,
144                                         tap:        peers[addrPrev].tap,
145                                         terminator: make(chan struct{}),
146                                 }
147                                 go func(peer *govpn.Peer, tap *govpn.TAP, terminator chan struct{}) {
148                                         govpn.PeerTapProcessor(peer, tap, terminator)
149                                         <-udpBufs
150                                         <-udpBufs
151                                 }(psNew.peer, psNew.tap, psNew.terminator)
152                                 peersByIDLock.Lock()
153                                 kpLock.Lock()
154                                 delete(peers, addrPrev)
155                                 delete(knownPeers, addrPrev)
156                                 peers[addr] = psNew
157                                 knownPeers[addr] = &peer
158                                 peersByID[*peer.ID] = addr
159                                 peersLock.Unlock()
160                                 peersByIDLock.Unlock()
161                                 kpLock.Unlock()
162                                 govpn.Printf(
163                                         `[rehandshake-completed bind="%s" peer="%s"]`,
164                                         *bindAddr, peer.ID.String(),
165                                 )
166                         } else {
167                                 go func(addr string, peer *govpn.Peer) {
168                                         ifaceName, err := callUp(peer.ID, peer.Addr)
169                                         if err != nil {
170                                                 return
171                                         }
172                                         tap, err := govpn.TAPListen(ifaceName, peer.MTU)
173                                         if err != nil {
174                                                 govpn.Printf(
175                                                         `[tap-failed bind="%s" peer="%s" err="%s"]`,
176                                                         *bindAddr, peer.ID.String(), err,
177                                                 )
178                                                 return
179                                         }
180                                         psNew := &PeerState{
181                                                 peer:       peer,
182                                                 tap:        tap,
183                                                 terminator: make(chan struct{}),
184                                         }
185                                         go func(peer *govpn.Peer, tap *govpn.TAP, terminator chan struct{}) {
186                                                 govpn.PeerTapProcessor(peer, tap, terminator)
187                                                 <-udpBufs
188                                                 <-udpBufs
189                                         }(psNew.peer, psNew.tap, psNew.terminator)
190                                         peersLock.Lock()
191                                         peersByIDLock.Lock()
192                                         kpLock.Lock()
193                                         peers[addr] = psNew
194                                         knownPeers[addr] = &peer
195                                         peersByID[*peer.ID] = addr
196                                         peersLock.Unlock()
197                                         peersByIDLock.Unlock()
198                                         kpLock.Unlock()
199                                         govpn.Printf(`[peer-created bind="%s" peer="%s"]`, *bindAddr, peer.ID.String())
200                                 }(addr, peer)
201                         }
202                         udpBufs <- buf
203                 }
204         }()
205 }