net.server_event: Increase SSL handshake timeout to 30s, make handshake round-trip...
[prosody.git] / net / server_event.lua
1 --[[
2
3
4                         server.lua based on lua/libevent by blastbeat
5
6                         notes:
7                         -- when using luaevent, never register 2 or more EV_READ at one socket, same for EV_WRITE
8                         -- you cant even register a new EV_READ/EV_WRITE callback inside another one
9                         -- never call eventcallback:close( ) from inside eventcallback
10                         -- to do some of the above, use timeout events or something what will called from outside
11                         -- dont let garbagecollect eventcallbacks, as long they are running
12                         -- when using luasec, there are 4 cases of timeout errors: wantread or wantwrite during reading or writing
13
14 --]]
15
16 local SCRIPT_NAME           = "server_event.lua"
17 local SCRIPT_VERSION        = "0.05"
18 local SCRIPT_AUTHOR         = "blastbeat"
19 local LAST_MODIFIED         = "2009/11/20"
20
21 local cfg = {
22         MAX_CONNECTIONS       = 100000,  -- max per server connections (use "ulimit -n" on *nix)
23         MAX_HANDSHAKE_ATTEMPS = 1000,  -- attemps to finish ssl handshake
24         HANDSHAKE_TIMEOUT     = 30,  -- timout in seconds per handshake attemp
25         MAX_READ_LENGTH       = 1024 * 1024 * 1024 * 1024,  -- max bytes allowed to read from sockets
26         MAX_SEND_LENGTH       = 1024 * 1024 * 1024 * 1024,  -- max bytes size of write buffer (for writing on sockets)
27         ACCEPT_DELAY          = 10,  -- seconds to wait until the next attemp of a full server to accept
28         READ_TIMEOUT          = 60 * 30,  -- timeout in seconds for read data from socket
29         WRITE_TIMEOUT         = 30,  -- timeout in seconds for write data on socket
30         CONNECT_TIMEOUT       = 20,  -- timeout in seconds for connection attemps
31         CLEAR_DELAY           = 5,  -- seconds to wait for clearing interface list (and calling ondisconnect listeners)
32         DEBUG                 = true,  -- show debug messages
33 }
34
35 local function use(x) return rawget(_G, x); end
36 local print = use "print"
37 local pcall = use "pcall"
38 local ipairs = use "ipairs"
39 local string = use "string"
40 local select = use "select"
41 local require = use "require"
42 local tostring = use "tostring"
43 local coroutine = use "coroutine"
44 local setmetatable = use "setmetatable"
45
46 local ssl = use "ssl"
47 local socket = use "socket" or require "socket"
48
49 local log = require ("util.logger").init("socket")
50
51 local function debug(...)
52         return log("debug", ("%s "):rep(select('#', ...)), ...)
53 end
54 local vdebug = debug;
55
56 local bitor = ( function( ) -- thx Rici Lake
57         local hasbit = function( x, p )
58                 return x % ( p + p ) >= p
59         end
60         return function( x, y )
61                 local p = 1
62                 local z = 0
63                 local limit = x > y and x or y
64                 while p <= limit do
65                         if hasbit( x, p ) or hasbit( y, p ) then
66                                 z = z + p
67                         end
68                         p = p + p
69                 end
70                 return z
71         end
72 end )( )
73
74 local event = require "luaevent.core"
75 local base = event.new( )
76 local EV_READ = event.EV_READ
77 local EV_WRITE = event.EV_WRITE
78 local EV_TIMEOUT = event.EV_TIMEOUT
79 local EV_SIGNAL = event.EV_SIGNAL
80
81 local EV_READWRITE = bitor( EV_READ, EV_WRITE )
82
83 local interfacelist = ( function( )  -- holds the interfaces for sockets
84         local array = { }
85         local len = 0
86         return function( method, arg )
87                 if "add" == method then
88                         len = len + 1
89                         array[ len ] = arg
90                         arg:_position( len )
91                         return len
92                 elseif "delete" == method then
93                         if len <= 0 then
94                                 return nil, "array is already empty"
95                         end
96                         local position = arg:_position()  -- get position in array
97                         if position ~= len then
98                                 local interface = array[ len ]  -- get last interface
99                                 array[ position ] = interface  -- copy it into free position
100                                 array[ len ] = nil  -- free last position
101                                 interface:_position( position )  -- set new position in array
102                         else  -- free last position
103                                 array[ len ] = nil
104                         end
105                         len = len - 1
106                         return len
107                 else
108                         return array
109                 end
110         end
111 end )( )
112
113 -- Client interface methods
114 local interface_mt
115 do
116         interface_mt = {}; interface_mt.__index = interface_mt;
117         
118         local addevent = base.addevent
119         local coroutine_wrap, coroutine_yield = coroutine.wrap,coroutine.yield
120         local string_len = string.len
121         
122         -- Private methods
123         function interface_mt:_position(new_position)
124                         self.position = new_position or self.position
125                         return self.position;
126         end
127         function interface_mt:_close() -- regs event to start self:_destroy()
128                         local callback = function( )
129                                 self:_destroy();
130                                 self.eventclose = nil
131                                 return -1
132                         end
133                         self.eventclose = addevent( base, nil, EV_TIMEOUT, callback, 0 )
134                         return true
135         end
136         
137         function interface_mt:_start_connection(plainssl) -- should be called from addclient
138                         local callback = function( event )
139                                 if EV_TIMEOUT == event then  -- timout during connection
140                                         self.fatalerror = "connection timeout"
141                                         self:ontimeout()  -- call timeout listener
142                                         self:_close()
143                                         debug( "new connection failed. id:", self.id, "error:", self.fatalerror )
144                                 else
145                                         if plainssl and ssl then  -- start ssl session
146                                                 self:starttls()
147                                         else  -- normal connection
148                                                 self:_start_session( self.listener.onconnect )
149                                         end
150                                         debug( "new connection established. id:", self.id )
151                                 end
152                                 self.eventconnect = nil
153                                 return -1
154                         end
155                         self.eventconnect = addevent( base, self.conn, EV_WRITE, callback, cfg.CONNECT_TIMEOUT )
156                         return true
157         end
158         function interface_mt:_start_session(onconnect) -- new session, for example after startssl
159                 if self.type == "client" then
160                         local callback = function( )
161                                 self:_lock( false,  false, false )
162                                 --vdebug( "start listening on client socket with id:", self.id )
163                                 self.eventread = addevent( base, self.conn, EV_READ, self.readcallback, cfg.READ_TIMEOUT )  -- register callback
164                                 self:onincoming()
165                                 self.eventsession = nil
166                                 return -1
167                         end
168                         self.eventsession = addevent( base, nil, EV_TIMEOUT, callback, 0 )
169                 else
170                         self:_lock( false )
171                         --vdebug( "start listening on server socket with id:", self.id )
172                         self.eventread = addevent( base, self.conn, EV_READ, self.readcallback )  -- register callback
173                 end
174                 return true
175         end
176         function interface_mt:_start_ssl(arg) -- old socket will be destroyed, therefore we have to close read/write events first
177                         --vdebug( "starting ssl session with client id:", self.id )
178                         local _
179                         _ = self.eventread and self.eventread:close( )  -- close events; this must be called outside of the event callbacks!
180                         _ = self.eventwrite and self.eventwrite:close( )
181                         self.eventread, self.eventwrite = nil, nil
182                         local err
183                         self.conn, err = ssl.wrap( self.conn, self._sslctx )
184                         if err then
185                                 self.fatalerror = err
186                                 self.conn = nil  -- cannot be used anymore
187                                 if "onconnect" == arg then
188                                         self.ondisconnect = nil  -- dont call this when client isnt really connected
189                                 end
190                                 self:_close()
191                                 debug( "fatal error while ssl wrapping:", err )
192                                 return false
193                         end
194                         self.conn:settimeout( 0 )  -- set non blocking
195                         local handshakecallback = coroutine_wrap(
196                                 function( event )
197                                         local _, err
198                                         local attempt = 0
199                                         local maxattempt = cfg.MAX_HANDSHAKE_ATTEMPS
200                                         while attempt < maxattempt do  -- no endless loop
201                                                 attempt = attempt + 1
202                                                 debug( "ssl handshake of client with id:"..tostring(self).."attemp:"..attempt )
203                                                 if attempt > maxattempt then
204                                                         self.fatalerror = "max handshake attemps exceeded"
205                                                 elseif EV_TIMEOUT == event then
206                                                         self.fatalerror = "timeout during handshake"
207                                                 else
208                                                         _, err = self.conn:dohandshake( )
209                                                         if not err then
210                                                                 self:_lock( false, false, false )  -- unlock the interface; sending, closing etc allowed
211                                                                 self.send = self.conn.send  -- caching table lookups with new client object
212                                                                 self.receive = self.conn.receive
213                                                                 local onsomething
214                                                                 if "onconnect" == arg then  -- trigger listener
215                                                                         onsomething = self.onconnect
216                                                                 else
217                                                                         onsomething = self.onsslconnection
218                                                                 end
219                                                                 self:_start_session( onsomething )
220                                                                 debug( "ssl handshake done" )
221                                                                 self:onstatus("ssl-handshake-complete");
222                                                                 self.eventhandshake = nil
223                                                                 return -1
224                                                         end
225                                                         debug( "error during ssl handshake:", err )
226                                                         if err == "wantwrite" then
227                                                                 event = EV_WRITE
228                                                         elseif err == "wantread" then
229                                                                 event = EV_READ
230                                                         else
231                                                                 self.fatalerror = err
232                                                         end
233                                                 end
234                                                 if self.fatalerror then
235                                                         if "onconnect" == arg then
236                                                                 self.ondisconnect = nil  -- dont call this when client isnt really connected
237                                                         end
238                                                         self:_close()
239                                                         debug( "handshake failed because:", self.fatalerror )
240                                                         self.eventhandshake = nil
241                                                         return -1
242                                                 end
243                                                 event = coroutine_yield( event, cfg.HANDSHAKE_TIMEOUT )  -- yield this monster...
244                                         end
245                                 end
246                         )
247                         debug "starting handshake..."
248                         self:_lock( false, true, true )  -- unlock read/write events, but keep interface locked
249                         self.eventhandshake = addevent( base, self.conn, EV_READWRITE, handshakecallback, cfg.HANDSHAKE_TIMEOUT )
250                         return true
251         end
252         function interface_mt:_destroy()  -- close this interface + events and call last listener
253                         debug( "closing client with id:", self.id )
254                         self:_lock( true, true, true )  -- first of all, lock the interface to avoid further actions
255                         local _
256                         _ = self.eventread and self.eventread:close( )  -- close events; this must be called outside of the event callbacks!
257                         if self.type == "client" then
258                                 _ = self.eventwrite and self.eventwrite:close( )
259                                 _ = self.eventhandshake and self.eventhandshake:close( )
260                                 _ = self.eventstarthandshake and self.eventstarthandshake:close( )
261                                 _ = self.eventconnect and self.eventconnect:close( )
262                                 _ = self.eventsession and self.eventsession:close( )
263                                 _ = self.eventwritetimeout and self.eventwritetimeout:close( )
264                                 _ = self.eventreadtimeout and self.eventreadtimeout:close( )
265                                 _ = self.ondisconnect and self:ondisconnect( self.fatalerror )  -- call ondisconnect listener (wont be the case if handshake failed on connect)
266                                 _ = self.conn and self.conn:close( ) -- close connection, must also be called outside of any socket registered events!
267                                 _ = self._server and self._server:counter(-1);
268                                 self.eventread, self.eventwrite = nil, nil
269                                 self.eventstarthandshake, self.eventhandshake, self.eventclose = nil, nil, nil
270                                 self.readcallback, self.writecallback = nil, nil
271                         else
272                                 self.conn:close( )
273                                 self.eventread, self.eventclose = nil, nil
274                                 self.interface, self.readcallback = nil, nil
275                         end
276                         interfacelist( "delete", self )
277                         return true
278         end
279         
280         function interface_mt:_lock(nointerface, noreading, nowriting)  -- lock or unlock this interface or events
281                         self.nointerface, self.noreading, self.nowriting = nointerface, noreading, nowriting
282                         return nointerface, noreading, nowriting
283         end
284
285         function interface_mt:counter(c)
286                 if c then
287                         self._connections = self._connections + c
288                 end
289                 return self._connections
290         end
291         
292         -- Public methods
293         function interface_mt:write(data)
294                 if self.nowriting then return nil, "locked" end
295                 --vdebug( "try to send data to client, id/data:", self.id, data )
296                 data = tostring( data )
297                 local len = string_len( data )
298                 local total = len + self.writebufferlen
299                 if total > cfg.MAX_SEND_LENGTH then  -- check buffer length
300                         local err = "send buffer exceeded"
301                         debug( "error:", err )  -- to much, check your app
302                         return nil, err
303                 end
304                 self.writebuffer = self.writebuffer .. data -- new buffer
305                 self.writebufferlen = total
306                 if not self.eventwrite then  -- register new write event
307                         --vdebug( "register new write event" )
308                         self.eventwrite = addevent( base, self.conn, EV_WRITE, self.writecallback, cfg.WRITE_TIMEOUT )
309                 end
310                 return true
311         end
312         function interface_mt:close(now)
313                 if self.nointerface then return nil, "locked"; end
314                 debug( "try to close client connection with id:", self.id )
315                 if self.type == "client" then
316                         self.fatalerror = "client to close"
317                         if ( not self.eventwrite ) or now then  -- try to close immediately
318                                 self:_lock( true, true, true )
319                                 self:_close()
320                                 return true
321                         else  -- wait for incomplete write request
322                                 self:_lock( true, true, false )
323                                 debug "closing delayed until writebuffer is empty"
324                                 return nil, "writebuffer not empty, waiting"
325                         end
326                 else
327                         debug( "try to close server with id:", self.id, "args:", now )
328                         self.fatalerror = "server to close"
329                         self:_lock( true )
330                         local count = 0
331                         for _, item in ipairs( interfacelist( ) ) do
332                                 if ( item.type ~= "server" ) and ( item._server == self ) then  -- client/server match
333                                         if item:close( now ) then  -- writebuffer was empty
334                                                 count = count + 1
335                                         end
336                                 end
337                         end
338                         local timeout = 0  -- dont wait for unfinished writebuffers of clients...
339                         if not now then
340                                 timeout = cfg.WRITE_TIMEOUT  -- ...or wait for it
341                         end
342                         self:_close( timeout )  -- add new event to remove the server interface
343                         debug( "seconds remained until server is closed:", timeout )
344                         return count  -- returns finished clients with empty writebuffer
345                 end
346         end
347         
348         function interface_mt:server()
349                 return self._server or self;
350         end
351         
352         function interface_mt:port()
353                 return self._port
354         end
355         
356         function interface_mt:serverport()
357                 return self._serverport
358         end
359         
360         function interface_mt:ip()
361                 return self._ip
362         end
363         
364         function interface_mt:ssl()
365                 return self._usingssl
366         end
367
368         function interface_mt:type()
369                 return self._type or "client"
370         end
371         
372         function interface_mt:connections()
373                 return self._connections
374         end
375         
376         function interface_mt:address()
377                 return self.addr
378         end
379         
380         function interface_mt:set_sslctx(sslctx)
381                 self._sslctx = sslctx;
382                 if sslctx then
383                         self.starttls = nil; -- use starttls() of interface_mt
384                 else
385                         self.starttls = false; -- prevent starttls()
386                 end
387         end
388         
389         function interface_mt:set_send(new_send)
390                 -- No-op, we always use the underlying connection's send
391         end
392         
393         function interface_mt:starttls(sslctx)
394                 debug( "try to start ssl at client id:", self.id )
395                 local err
396                 self._sslctx = sslctx;
397                 if self._usingssl then  -- startssl was already called
398                         err = "ssl already active"
399                 end
400                 if err then
401                         debug( "error:", err )
402                         return nil, err
403                 end
404                 self._usingssl = true
405                 self.startsslcallback = function( )  -- we have to start the handshake outside of a read/write event
406                         self.startsslcallback = nil
407                         self:_start_ssl();
408                         self.eventstarthandshake = nil
409                         return -1
410                 end
411                 if not self.eventwrite then
412                         self:_lock( true, true, true )  -- lock the interface, to not disturb the handshake
413                         self.eventstarthandshake = addevent( base, nil, EV_TIMEOUT, self.startsslcallback, 0 )  -- add event to start handshake
414                 else  -- wait until writebuffer is empty
415                         self:_lock( true, true, false )
416                         debug "ssl session delayed until writebuffer is empty..."
417                 end
418                 self.starttls = false;
419                 return true
420         end
421         
422         function interface_mt:setoption(option, value)
423                 if self.conn.setoption then
424                         return self.conn:setoption(option, value);
425                 end
426                 return false, "setoption not implemented";
427         end
428         
429         function interface_mt:setlistener(listener)
430                 self.onconnect, self.ondisconnect, self.onincoming, self.ontimeout, self.onstatus
431                         = listener.onconnect, listener.ondisconnect, listener.onincoming, listener.ontimeout, listener.onstatus;
432         end
433         
434         -- Stub handlers
435         function interface_mt:onconnect()
436         end
437         function interface_mt:onincoming()
438         end
439         function interface_mt:ondisconnect()
440         end
441         function interface_mt:ontimeout()
442         end
443         function interface_mt:onstatus()
444                 debug("server.lua: Dummy onstatus()")
445         end
446 end
447
448 -- End of client interface methods
449
450 local handleclient;
451 do
452         local string_sub = string.sub  -- caching table lookups
453         local string_len = string.len
454         local addevent = base.addevent
455         local coroutine_wrap = coroutine.wrap
456         local socket_gettime = socket.gettime
457         local coroutine_yield = coroutine.yield
458         function handleclient( client, ip, port, server, pattern, listener, _, sslctx )  -- creates an client interface
459                 --vdebug("creating client interfacce...")
460                 local interface = {
461                         type = "client";
462                         conn = client;
463                         currenttime = socket_gettime( );  -- safe the origin
464                         writebuffer = "";  -- writebuffer
465                         writebufferlen = 0;  -- length of writebuffer
466                         send = client.send;  -- caching table lookups
467                         receive = client.receive;
468                         onconnect = listener.onconnect;  -- will be called when client disconnects
469                         ondisconnect = listener.ondisconnect;  -- will be called when client disconnects
470                         onincoming = listener.onincoming;  -- will be called when client sends data
471                         ontimeout = listener.ontimeout; -- called when fatal socket timeout occurs
472                         onstatus = listener.onstatus; -- called for status changes (e.g. of SSL/TLS)
473                         eventread = false, eventwrite = false, eventclose = false,
474                         eventhandshake = false, eventstarthandshake = false;  -- event handler
475                         eventconnect = false, eventsession = false;  -- more event handler...
476                         eventwritetimeout = false;  -- even more event handler...
477                         eventreadtimeout = false;
478                         fatalerror = false;  -- error message
479                         writecallback = false;  -- will be called on write events
480                         readcallback = false;  -- will be called on read events
481                         nointerface = true;  -- lock/unlock parameter of this interface
482                         noreading = false, nowriting = false;  -- locks of the read/writecallback
483                         startsslcallback = false;  -- starting handshake callback
484                         position = false;  -- position of client in interfacelist
485                         
486                         -- Properties
487                         _ip = ip, _port = port, _server = server, _pattern = pattern,
488                         _serverport = (server and server:port() or nil),
489                         _sslctx = sslctx; -- parameters
490                         _usingssl = false;  -- client is using ssl;
491                 }
492                 if not ssl then interface.starttls = false; end
493                 interface.id = tostring(interface):match("%x+$");
494                 interface.writecallback = function( event )  -- called on write events
495                         --vdebug( "new client write event, id/ip/port:", interface, ip, port )
496                         if interface.nowriting or ( interface.fatalerror and ( "client to close" ~= interface.fatalerror ) ) then  -- leave this event
497                                 --vdebug( "leaving this event because:", interface.nowriting or interface.fatalerror )
498                                 interface.eventwrite = false
499                                 return -1
500                         end
501                         if EV_TIMEOUT == event then  -- took too long to write some data to socket -> disconnect
502                                 interface.fatalerror = "timeout during writing"
503                                 debug( "writing failed:", interface.fatalerror )
504                                 interface:_close()
505                                 interface.eventwrite = false
506                                 return -1
507                         else  -- can write :)
508                                 if interface._usingssl then  -- handle luasec
509                                         if interface.eventreadtimeout then  -- we have to read first
510                                                 local ret = interface.readcallback( )  -- call readcallback
511                                                 --vdebug( "tried to read in writecallback, result:", ret )
512                                         end
513                                         if interface.eventwritetimeout then  -- luasec only
514                                                 interface.eventwritetimeout:close( )  -- first we have to close timeout event which where regged after a wantread error
515                                                 interface.eventwritetimeout = false
516                                         end
517                                 end
518                                 local succ, err, byte = interface.conn:send( interface.writebuffer, 1, interface.writebufferlen )
519                                 --vdebug( "write data:", interface.writebuffer, "error:", err, "part:", byte )
520                                 if succ then  -- writing succesful
521                                         interface.writebuffer = ""
522                                         interface.writebufferlen = 0
523                                         if interface.fatalerror then
524                                                 debug "closing client after writing"
525                                                 interface:_close()  -- close interface if needed
526                                         elseif interface.startsslcallback then  -- start ssl connection if needed
527                                                 debug "starting ssl handshake after writing"
528                                                 interface.eventstarthandshake = addevent( base, nil, EV_TIMEOUT, interface.startsslcallback, 0 )
529                                         elseif interface.eventreadtimeout then
530                                                 return EV_WRITE, EV_TIMEOUT
531                                         end
532                                         interface.eventwrite = nil
533                                         return -1
534                                 elseif byte then  -- want write again
535                                         --vdebug( "writebuffer is not empty:", err )
536                                         interface.writebuffer = string_sub( interface.writebuffer, byte + 1, interface.writebufferlen )  -- new buffer
537                                         interface.writebufferlen = interface.writebufferlen - byte
538                                         if "wantread" == err then  -- happens only with luasec
539                                                 local callback = function( )
540                                                         interface:_close()
541                                                         interface.eventwritetimeout = nil
542                                                         return evreturn, evtimeout
543                                                 end
544                                                 interface.eventwritetimeout = addevent( base, nil, EV_TIMEOUT, callback, cfg.WRITE_TIMEOUT )  -- reg a new timeout event
545                                                 debug( "wantread during write attemp, reg it in readcallback but dont know what really happens next..." )
546                                                 -- hopefully this works with luasec; its simply not possible to use 2 different write events on a socket in luaevent
547                                                 return -1
548                                         end
549                                         return EV_WRITE, cfg.WRITE_TIMEOUT
550                                 else  -- connection was closed during writing or fatal error
551                                         interface.fatalerror = err or "fatal error"
552                                         debug( "connection failed in write event:", interface.fatalerror )
553                                         interface:_close()
554                                         interface.eventwrite = nil
555                                         return -1
556                                 end
557                         end
558                 end
559                 
560                 interface.readcallback = function( event )  -- called on read events
561                         --vdebug( "new client read event, id/ip/port:", tostring(interface.id), tostring(ip), tostring(port) )
562                         if interface.noreading or interface.fatalerror then  -- leave this event
563                                 --vdebug( "leaving this event because:", tostring(interface.noreading or interface.fatalerror) )
564                                 interface.eventread = nil
565                                 return -1
566                         end
567                         if EV_TIMEOUT == event then  -- took too long to get some data from client -> disconnect
568                                 interface.fatalerror = "timeout during receiving"
569                                 debug( "connection failed:", interface.fatalerror )
570                                 interface:_close()
571                                 interface.eventread = nil
572                                 return -1
573                         else -- can read
574                                 if interface._usingssl then  -- handle luasec
575                                         if interface.eventwritetimeout then  -- ok, in the past writecallback was regged
576                                                 local ret = interface.writecallback( )  -- call it
577                                                 --vdebug( "tried to write in readcallback, result:", tostring(ret) )
578                                         end
579                                         if interface.eventreadtimeout then
580                                                 interface.eventreadtimeout:close( )
581                                                 interface.eventreadtimeout = nil
582                                         end
583                                 end
584                                 local buffer, err, part = interface.conn:receive( pattern )  -- receive buffer with "pattern"
585                                 --vdebug( "read data:", tostring(buffer), "error:", tostring(err), "part:", tostring(part) )
586                                 buffer = buffer or part or ""
587                                 local len = string_len( buffer )
588                                 if len > cfg.MAX_READ_LENGTH then  -- check buffer length
589                                         interface.fatalerror = "receive buffer exceeded"
590                                         debug( "fatal error:", interface.fatalerror )
591                                         interface:_close()
592                                         interface.eventread = nil
593                                         return -1
594                                 end
595                                 interface.onincoming( interface, buffer, err )  -- send new data to listener
596                                 if err and ( err ~= "timeout" and err ~= "wantread" ) then
597                                         if "wantwrite" == err then -- need to read on write event
598                                                 if not interface.eventwrite then  -- register new write event if needed
599                                                         interface.eventwrite = addevent( base, interface.conn, EV_WRITE, interface.writecallback, cfg.WRITE_TIMEOUT )
600                                                 end
601                                                 interface.eventreadtimeout = addevent( base, nil, EV_TIMEOUT,
602                                                         function( )
603                                                                 interface:_close()
604                                                         end, cfg.READ_TIMEOUT
605                                                 )
606                                                 debug( "wantwrite during read attemp, reg it in writecallback but dont know what really happens next..." )
607                                                 -- to be honest i dont know what happens next, if it is allowed to first read, the write etc...
608                                         else  -- connection was closed or fatal error
609                                                 interface.fatalerror = err
610                                                 debug( "connection failed in read event:", interface.fatalerror )
611                                                 interface:_close()
612                                                 interface.eventread = nil
613                                                 return -1
614                                         end
615                                 end
616                                 return EV_READ, cfg.READ_TIMEOUT
617                         end
618                 end
619
620                 client:settimeout( 0 )  -- set non blocking
621                 setmetatable(interface, interface_mt)
622                 interfacelist( "add", interface )  -- add to interfacelist
623                 return interface
624         end
625 end
626
627 local handleserver
628 do
629         function handleserver( server, addr, port, pattern, listener, sslctx )  -- creates an server interface
630                 debug "creating server interface..."
631                 local interface = {
632                         _connections = 0;
633                         
634                         conn = server;
635                         onconnect = listener.onconnect;  -- will be called when new client connected
636                         eventread = false;  -- read event handler
637                         eventclose = false; -- close event handler
638                         readcallback = false; -- read event callback
639                         fatalerror = false; -- error message
640                         nointerface = true;  -- lock/unlock parameter
641                         
642                         _ip = addr, _port = port, _pattern = pattern,
643                         _sslctx = sslctx;
644                 }
645                 interface.id = tostring(interface):match("%x+$");
646                 interface.readcallback = function( event )  -- server handler, called on incoming connections
647                         --vdebug( "server can accept, id/addr/port:", interface, addr, port )
648                         if interface.fatalerror then
649                                 --vdebug( "leaving this event because:", self.fatalerror )
650                                 interface.eventread = nil
651                                 return -1
652                         end
653                         local delay = cfg.ACCEPT_DELAY
654                         if EV_TIMEOUT == event then
655                                 if interface._connections >= cfg.MAX_CONNECTIONS then  -- check connection count
656                                         debug( "to many connections, seconds to wait for next accept:", delay )
657                                         return EV_TIMEOUT, delay  -- timeout...
658                                 else
659                                         return EV_READ  -- accept again
660                                 end
661                         end
662                         --vdebug("max connection check ok, accepting...")
663                         local client, err = server:accept()    -- try to accept; TODO: check err
664                         while client do
665                                 if interface._connections >= cfg.MAX_CONNECTIONS then
666                                         client:close( )  -- refuse connection
667                                         debug( "maximal connections reached, refuse client connection; accept delay:", delay )
668                                         return EV_TIMEOUT, delay  -- delay for next accept attemp
669                                 end
670                                 local ip, port = client:getpeername( )
671                                 interface._connections = interface._connections + 1  -- increase connection count
672                                 local clientinterface = handleclient( client, ip, port, interface, pattern, listener, nil, sslctx )
673                                 --vdebug( "client id:", clientinterface, "startssl:", startssl )
674                                 if ssl and sslctx then
675                                         clientinterface:starttls(sslctx)
676                                 else
677                                         clientinterface:_start_session( clientinterface.onconnect )
678                                 end
679                                 debug( "accepted incoming client connection from:", ip, port )
680                                 
681                                 client, err = server:accept()    -- try to accept again
682                         end
683                         return EV_READ
684                 end
685                 
686                 server:settimeout( 0 )
687                 setmetatable(interface, interface_mt)
688                 interfacelist( "add", interface )
689                 interface:_start_session()
690                 return interface
691         end
692 end
693
694 local addserver = ( function( )
695         return function( addr, port, listener, pattern, sslcfg, startssl )  -- TODO: check arguments
696                 --vdebug( "creating new tcp server with following parameters:", addr or "nil", port or "nil", sslcfg or "nil", startssl or "nil")
697                 local server, err = socket.bind( addr, port, cfg.ACCEPT_QUEUE )  -- create server socket
698                 if not server then
699                         debug( "creating server socket failed because:", err )
700                         return nil, err
701                 end
702                 local sslctx
703                 if sslcfg then
704                         if not ssl then
705                                 debug "fatal error: luasec not found"
706                                 return nil, "luasec not found"
707                         end
708                         sslctx, err = sslcfg
709                         if err then
710                                 debug( "error while creating new ssl context for server socket:", err )
711                                 return nil, err
712                         end
713                 end
714                 local interface = handleserver( server, addr, port, pattern, listener, sslctx, startssl )  -- new server handler
715                 debug( "new server created with id:", tostring(interface))
716                 return interface
717         end
718 end )( )
719
720 local addclient, wrapclient
721 do
722         function wrapclient( client, ip, port, listeners, pattern, sslctx, startssl )
723                 local interface = handleclient( client, ip, port, nil, pattern, listeners, sslctx )
724                 interface:_start_session()
725                 return interface
726                 --function handleclient( client, ip, port, server, pattern, listener, _, sslctx )  -- creates an client interface
727         end
728         
729         function addclient( addr, serverport, listener, pattern, localaddr, localport, sslcfg, startssl )
730                 local client, err = socket.tcp()  -- creating new socket
731                 if not client then
732                         debug( "cannot create socket:", err )
733                         return nil, err
734                 end
735                 client:settimeout( 0 )  -- set nonblocking
736                 if localaddr then
737                         local res, err = client:bind( localaddr, localport, -1 )
738                         if not res then
739                                 debug( "cannot bind client:", err )
740                                 return nil, err
741                         end
742                 end
743                 local sslctx
744                 if sslcfg then  -- handle ssl/new context
745                         if not ssl then
746                                 debug "need luasec, but not available"
747                                 return nil, "luasec not found"
748                         end
749                         sslctx, err = sslcfg
750                         if err then
751                                 debug( "cannot create new ssl context:", err )
752                                 return nil, err
753                         end
754                 end
755                 local res, err = client:connect( addr, serverport )  -- connect
756                 if res or ( err == "timeout" ) then
757                         local ip, port = client:getsockname( )
758                         local server = function( )
759                                 return nil, "this is a dummy server interface"
760                         end
761                         local interface = wrapclient( client, ip, serverport, listeners, pattern, sslctx, startssl )
762                         interface:_start_connection( startssl )
763                         debug( "new connection id:", interface.id )
764                         return interface, err
765                 else
766                         debug( "new connection failed:", err )
767                         return nil, err
768                 end
769         end
770 end
771
772
773 local loop = function( )  -- starts the event loop
774         base:loop( )
775         return "quitting";
776 end
777
778 local newevent = ( function( )
779         local add = base.addevent
780         return function( ... )
781                 return add( base, ... )
782         end
783 end )( )
784
785 local closeallservers = function( arg )
786         for _, item in ipairs( interfacelist( ) ) do
787                 if item.type == "server" then
788                         item:close( arg )
789                 end
790         end
791 end
792
793 local function setquitting(yes)
794         if yes then
795                  -- Quit now
796                  closeallservers();
797                  base:loopexit();
798         end
799 end
800
801 function get_backend()
802         return base:method();
803 end
804
805 -- We need to hold onto the events to stop them
806 -- being garbage-collected
807 local signal_events = {}; -- [signal_num] -> event object
808 function hook_signal(signal_num, handler)
809         local function _handler(event)
810                 local ret = handler();
811                 if ret ~= false then -- Continue handling this signal?
812                         return EV_SIGNAL; -- Yes
813                 end
814                 return -1; -- Close this event
815         end
816         signal_events[signal_num] = base:addevent(signal_num, EV_SIGNAL, _handler);
817         return signal_events[signal_num];
818 end
819
820 return {
821
822         cfg = cfg,
823         base = base,
824         loop = loop,
825         event = event,
826         event_base = base,
827         addevent = newevent,
828         addserver = addserver,
829         addclient = addclient,
830         wrapclient = wrapclient,
831         setquitting = setquitting,
832         closeall = closeallservers,
833         get_backend = get_backend,
834         hook_signal = hook_signal,
835
836         __NAME = SCRIPT_NAME,
837         __DATE = LAST_MODIFIED,
838         __AUTHOR = SCRIPT_AUTHOR,
839         __VERSION = SCRIPT_VERSION,
840
841 }