2 -- Copyright (C) 2008-2010 Matthew Wild
3 -- Copyright (C) 2008-2010 Waqas Hussain
5 -- This project is MIT/X11 licensed. Please see the
6 -- COPYING file in the source package for more information.
11 local t_concat = table.concat;
12 local traceback = debug.traceback;
14 local logger = require "util.logger";
15 local sha1 = require "util.hashes".sha1;
16 local st = require "util.stanza";
18 local jid_split = require "util.jid".split;
19 local new_xmpp_stream = require "util.xmppstream".new;
20 local uuid_gen = require "util.uuid".generate;
22 local core_process_stanza = prosody.core_process_stanza;
23 local hosts = prosody.hosts;
25 local log = module._log;
27 local sessions = module:shared("sessions");
29 function module.add_host(module)
30 if module:get_host_type() ~= "component" then
31 error("Don't load mod_component manually, it should be for a component, please see http://prosody.im/doc/components", 0);
34 local env = module.environment;
35 env.connected = false;
39 local function on_destroy(session, err)
40 env.connected = false;
42 session.on_destroy = nil;
45 -- Handle authentication attempts by component
46 local function handle_component_auth(event)
47 local session, stanza = event.origin, event.stanza;
49 if session.type ~= "component_unauthed" then return; end
51 if (not session.host) or #stanza.tags > 0 then
52 (session.log or log)("warn", "Invalid component handshake for host: %s", session.host);
53 session:close("not-authorized");
57 local secret = module:get_option("component_secret");
59 (session.log or log)("warn", "Component attempted to identify as %s, but component_secret is not set", session.host);
60 session:close("not-authorized");
64 local supplied_token = t_concat(stanza);
65 local calculated_token = sha1(session.streamid..secret, true);
66 if supplied_token:lower() ~= calculated_token:lower() then
67 module:log("info", "Component authentication failed for %s", session.host);
68 session:close{ condition = "not-authorized", text = "Given token does not match calculated token" };
73 module:log("error", "Second component attempted to connect, denying connection");
74 session:close{ condition = "conflict", text = "Component already connected" };
80 session.on_destroy = on_destroy;
81 session.component_validate_from = module:get_option_boolean("validate_from_addresses", true);
82 session.type = "component";
83 module:log("info", "External component successfully authenticated");
84 session.send(st.stanza("handshake"));
88 module:hook("stanza/jabber:component:accept:handshake", handle_component_auth);
90 -- Handle stanzas addressed to this component
91 local function handle_stanza(event)
92 local stanza = event.stanza;
94 stanza.attr.xmlns = nil;
97 if stanza.name == "iq" and stanza.attr.type == "get" and stanza.attr.to == module.host then
98 local query = stanza.tags[1];
99 local node = query.attr.node;
100 if query.name == "query" and query.attr.xmlns == "http://jabber.org/protocol/disco#info" and (not node or node == "") then
101 local name = module:get_option_string("name");
103 event.origin.send(st.reply(stanza):tag("query", { xmlns = "http://jabber.org/protocol/disco#info" })
104 :tag("identity", { category = "component", type = "generic", name = module:get_option_string("name", "Prosody") }))
109 module:log("warn", "Component not connected, bouncing error for: %s", stanza:top_tag());
110 if stanza.attr.type ~= "error" and stanza.attr.type ~= "result" then
111 event.origin.send(st.error_reply(stanza, "wait", "service-unavailable", "Component unavailable"));
117 module:hook("iq/bare", handle_stanza, -1);
118 module:hook("message/bare", handle_stanza, -1);
119 module:hook("presence/bare", handle_stanza, -1);
120 module:hook("iq/full", handle_stanza, -1);
121 module:hook("message/full", handle_stanza, -1);
122 module:hook("presence/full", handle_stanza, -1);
123 module:hook("iq/host", handle_stanza, -1);
124 module:hook("message/host", handle_stanza, -1);
125 module:hook("presence/host", handle_stanza, -1);
128 --- Network and stream part ---
130 local xmlns_component = 'jabber:component:accept';
134 --- Callbacks/data for xmppstream to handle streams for us ---
136 local stream_callbacks = { default_ns = xmlns_component };
138 local xmlns_xmpp_streams = "urn:ietf:params:xml:ns:xmpp-streams";
140 function stream_callbacks.error(session, error, data, data2)
141 if session.destroyed then return; end
142 module:log("warn", "Error processing component stream: %s", tostring(error));
143 if error == "no-stream" then
144 session:close("invalid-namespace");
145 elseif error == "parse-error" then
146 session.log("warn", "External component %s XML parse error: %s", tostring(session.host), tostring(data));
147 session:close("not-well-formed");
148 elseif error == "stream-error" then
149 local condition, text = "undefined-condition";
150 for child in data:children() do
151 if child.attr.xmlns == xmlns_xmpp_streams then
152 if child.name ~= "text" then
153 condition = child.name;
155 text = child:get_text();
157 if condition ~= "undefined-condition" and text then
162 text = condition .. (text and (" ("..text..")") or "");
163 session.log("info", "Session closed by remote with error: %s", text);
164 session:close(nil, text);
168 function stream_callbacks.streamopened(session, attr)
169 if not hosts[attr.to] or not hosts[attr.to].modules.component then
170 session:close{ condition = "host-unknown", text = tostring(attr.to).." does not match any configured external components" };
173 session.host = attr.to;
174 session.streamid = uuid_gen();
175 session.notopen = nil;
176 -- Return stream header
177 session.send("<?xml version='1.0'?>");
178 session.send(st.stanza("stream:stream", { xmlns=xmlns_component,
179 ["xmlns:stream"]='http://etherx.jabber.org/streams', id=session.streamid, from=session.host }):top_tag());
182 function stream_callbacks.streamclosed(session)
183 session.log("debug", "Received </stream:stream>");
187 local function handleerr(err) log("error", "Traceback[component]: %s", traceback(tostring(err), 2)); end
188 function stream_callbacks.handlestanza(session, stanza)
189 -- Namespaces are icky.
190 if not stanza.attr.xmlns and stanza.name == "handshake" then
191 stanza.attr.xmlns = xmlns_component;
193 if not stanza.attr.xmlns or stanza.attr.xmlns == "jabber:client" then
194 local from = stanza.attr.from;
196 if session.component_validate_from then
197 local _, domain = jid_split(stanza.attr.from);
198 if domain ~= session.host then
200 session.log("warn", "Component sent stanza with missing or invalid 'from' address");
202 condition = "invalid-from";
203 text = "Component tried to send from address <"..tostring(from)
204 .."> which is not in domain <"..tostring(session.host)..">";
210 stanza.attr.from = session.host; -- COMPAT: Strictly we shouldn't allow this
212 if not stanza.attr.to then
213 session.log("warn", "Rejecting stanza with no 'to' address");
214 session.send(st.error_reply(stanza, "modify", "bad-request", "Components MUST specify a 'to' address on stanzas"));
220 return xpcall(function () return core_process_stanza(session, stanza) end, handleerr);
224 --- Closing a component connection
225 local stream_xmlns_attr = {xmlns='urn:ietf:params:xml:ns:xmpp-streams'};
226 local default_stream_attr = { ["xmlns:stream"] = "http://etherx.jabber.org/streams", xmlns = stream_callbacks.default_ns, version = "1.0", id = "" };
227 local function session_close(session, reason)
228 if session.destroyed then return; end
230 if session.notopen then
231 session.send("<?xml version='1.0'?>");
232 session.send(st.stanza("stream:stream", default_stream_attr):top_tag());
235 if type(reason) == "string" then -- assume stream error
236 module:log("info", "Disconnecting component, <stream:error> is: %s", reason);
237 session.send(st.stanza("stream:error"):tag(reason, {xmlns = 'urn:ietf:params:xml:ns:xmpp-streams' }));
238 elseif type(reason) == "table" then
239 if reason.condition then
240 local stanza = st.stanza("stream:error"):tag(reason.condition, stream_xmlns_attr):up();
242 stanza:tag("text", stream_xmlns_attr):text(reason.text):up();
245 stanza:add_child(reason.extra);
247 module:log("info", "Disconnecting component, <stream:error> is: %s", tostring(stanza));
248 session.send(stanza);
249 elseif reason.name then -- a stanza
250 module:log("info", "Disconnecting component, <stream:error> is: %s", tostring(reason));
251 session.send(reason);
255 session.send("</stream:stream>");
256 session.conn:close();
257 listener.ondisconnect(session.conn, "stream error");
261 --- Component connlistener
263 function listener.onconnect(conn)
264 local _send = conn.write;
265 local session = { type = "component_unauthed", conn = conn, send = function (data) return _send(conn, tostring(data)); end };
267 -- Logging functions --
268 local conn_name = "jcp"..tostring(session):match("[a-f0-9]+$");
269 session.log = logger.init(conn_name);
270 session.close = session_close;
272 session.log("info", "Incoming Jabber component connection");
274 local stream = new_xmpp_stream(session, stream_callbacks);
275 session.stream = stream;
277 session.notopen = true;
279 function session.reset_stream()
280 session.notopen = true;
281 session.stream:reset();
284 function session.data(conn, data)
285 local ok, err = stream:feed(data);
286 if ok then return; end
287 module:log("debug", "Received invalid XML (%s) %d bytes: %s", tostring(err), #data, data:sub(1, 300):gsub("[\r\n]+", " "):gsub("[%z\1-\31]", "_"));
288 session:close("not-well-formed");
291 session.dispatch_stanza = stream_callbacks.handlestanza;
293 sessions[conn] = session;
295 function listener.onincoming(conn, data)
296 local session = sessions[conn];
297 session.data(conn, data);
299 function listener.ondisconnect(conn, err)
300 local session = sessions[conn];
302 (session.log or log)("info", "component disconnected: %s (%s)", tostring(session.host), tostring(err));
303 if session.on_destroy then session:on_destroy(err); end
304 sessions[conn] = nil;
305 for k in pairs(session) do
306 if k ~= "log" and k ~= "close" then
310 session.destroyed = true;
315 module:provides("net", {
321 pattern = "^<.*:stream.*%sxmlns%s*=%s*(['\"])jabber:component:accept%1.*>";