2 * This program is free software; you can redistribute it and/or modify
3 * it under the terms of the GNU General Public License as published by
4 * the Free Software Foundation; either version 2 of the License, or
5 * (at your option) any later version.
7 * This program is distributed in the hope that it will be useful,
8 * but WITHOUT ANY WARRANTY; without even the implied warranty of
9 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
10 * GNU General Public License for more details.
12 * You should have received a copy of the GNU General Public License
13 * along with this program; if not, write to the Free Software
14 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
18 * Author : Boris Mikhailenko <stg34@stargazer.dp.ua>
23 #include "stg/store.h"
24 #include "stg/module_settings.h"
25 #include "stg/user_ips.h"
27 #include "stg/users.h"
28 #include "stg/user_property.h"
29 #include "stg/ia_packets.h"
30 #include "stg/blowfish.h"
31 #include "stg/logger.h"
32 #include "stg/utime.h"
33 #include "stg/logger.h"
44 #pragma GCC diagnostic push
45 #pragma GCC diagnostic ignored "-Wshadow"
46 #include <jthread.hpp>
47 #pragma GCC diagnostic pop
51 //#define IA_DEBUG (1)
52 //#define IA_PHASE_DEBUG (1)
55 //-----------------------------------------------------------------------------
80 //-----------------------------------------------------------------------------
93 const UTIME & GetTime() const;
96 void SetUserLogin(const std::string & login);
97 void SetLogFileName(const std::string & logFileName);
104 #ifdef IA_PHASE_DEBUG
105 void WritePhaseChange(int newPhase);
111 //-----------------------------------------------------------------------------
113 using ConstUserPtr = const STG::User*;
117 rnd(static_cast<uint32_t>(random())),
120 password("NO PASSWORD")
122 char keyL[PASSWD_LEN];
123 memset(keyL, 0, PASSWD_LEN);
124 strncpy(keyL, password.c_str(), PASSWD_LEN);
125 Blowfish_Init(&ctx, keyL, PASSWD_LEN);
132 IA_USER(const IA_USER & u)
136 lastSendAlive(u.lastSendAlive),
140 messagesToSend(u.messagesToSend),
141 protoVer(u.protoVer),
145 aliveSent = u.aliveSent;
147 memcpy(&ctx, &u.ctx, sizeof(BLOWFISH_CTX));
150 IA_USER(const std::string & l,
157 rnd(static_cast<uint32_t>(random())),
161 password(user->GetProperties().password.Get())
163 char keyL[PASSWD_LEN];
164 memset(keyL, 0, PASSWD_LEN);
165 strncpy(keyL, password.c_str(), PASSWD_LEN);
166 Blowfish_Init(&ctx, keyL, PASSWD_LEN);
180 std::vector<STG::Message> messagesToSend;
182 std::string password;
188 IA_USER & operator=(const IA_USER & rvalue);
190 //-----------------------------------------------------------------------------
191 class AUTH_IA_SETTINGS {
194 virtual ~AUTH_IA_SETTINGS() {}
195 const std::string & GetStrError() const { return errorStr; }
196 int ParseSettings(const STG::ModuleSettings & s);
197 UTIME GetUserDelay() const { return UTIME(userDelay); }
198 UTIME GetUserTimeout() const { return UTIME(userTimeout); }
199 uint16_t GetUserPort() const { return port; }
200 FREEMB GetFreeMbShowType() const { return freeMbShowType; }
201 bool LogProtocolErrors() const { return logProtocolErrors; }
207 std::string errorStr;
208 FREEMB freeMbShowType;
209 bool logProtocolErrors;
211 //-----------------------------------------------------------------------------
213 using UserPtr = STG::User*;
214 //-----------------------------------------------------------------------------
215 class AUTH_IA : public STG::Auth {
220 void SetUsers(STG::Users * u) override { users = u; }
221 void SetStgSettings(const STG::Settings * s) override { stgSettings = s; }
222 void SetSettings(const STG::ModuleSettings & s) override { settings = s; }
223 int ParseSettings() override;
225 int Start() override;
227 int Reload(const STG::ModuleSettings & ms) override;
228 bool IsRunning() override { return isRunningRunTimeouter || isRunningRun; }
230 const std::string & GetStrError() const override { return errorStr; }
231 std::string GetVersion() const override { return "InetAccess authorization plugin v.1.4"; }
232 uint16_t GetStartPosition() const override { return 30; }
233 uint16_t GetStopPosition() const override { return 30; }
235 int SendMessage(const STG::Message & msg, uint32_t ip) const override;
238 AUTH_IA(const AUTH_IA & rvalue);
239 AUTH_IA & operator=(const AUTH_IA & rvalue);
241 void Run(std::stop_token token);
242 void RunTimeouter(std::stop_token token);
245 void DelUser(UserPtr u);
246 int RecvData(char * buffer, int bufferSize);
247 int CheckHeader(const char * buffer, uint32_t sip, int * protoVer);
248 int PacketProcessor(void * buff, size_t dataLen, uint32_t sip, uint16_t sport, int protoVer, UserPtr user);
250 int Process_CONN_SYN_6(CONN_SYN_6 * connSyn, IA_USER * iaUser, uint32_t sip);
251 int Process_CONN_SYN_7(CONN_SYN_7 * connSyn, IA_USER * iaUser, uint32_t sip);
252 int Process_CONN_SYN_8(CONN_SYN_8 * connSyn, IA_USER * iaUser, uint32_t sip);
254 int Process_CONN_ACK_6(CONN_ACK_6 * connAck, IA_USER * iaUser, uint32_t sip);
255 int Process_CONN_ACK_7(CONN_ACK_7 * connAck, IA_USER * iaUser, uint32_t sip);
256 int Process_CONN_ACK_8(CONN_ACK_8 * connAck, IA_USER * iaUser, uint32_t sip);
258 int Process_ALIVE_ACK_6(ALIVE_ACK_6 * aliveAck, IA_USER * iaUser, uint32_t sip);
259 int Process_ALIVE_ACK_7(ALIVE_ACK_7 * aliveAck, IA_USER * iaUser, uint32_t sip);
260 int Process_ALIVE_ACK_8(ALIVE_ACK_8 * aliveAck, IA_USER * iaUser, uint32_t sip);
262 int Process_DISCONN_SYN_6(DISCONN_SYN_6 * disconnSyn, IA_USER * iaUser, uint32_t sip);
263 int Process_DISCONN_SYN_7(DISCONN_SYN_7 * disconnSyn, IA_USER * iaUser, uint32_t sip);
264 int Process_DISCONN_SYN_8(DISCONN_SYN_8 * disconnSyn, IA_USER * iaUser, uint32_t sip);
266 int Process_DISCONN_ACK_6(DISCONN_ACK_6 * disconnSyn,
269 std::map<uint32_t, IA_USER>::iterator it);
270 int Process_DISCONN_ACK_7(DISCONN_ACK_7 * disconnSyn,
273 std::map<uint32_t, IA_USER>::iterator it);
274 int Process_DISCONN_ACK_8(DISCONN_ACK_8 * disconnSyn,
277 std::map<uint32_t, IA_USER>::iterator it);
279 int Send_CONN_SYN_ACK_6(IA_USER * iaUser, uint32_t sip);
280 int Send_CONN_SYN_ACK_7(IA_USER * iaUser, uint32_t sip);
281 int Send_CONN_SYN_ACK_8(IA_USER * iaUser, uint32_t sip);
283 int Send_ALIVE_SYN_6(IA_USER * iaUser, uint32_t sip);
284 int Send_ALIVE_SYN_7(IA_USER * iaUser, uint32_t sip);
285 int Send_ALIVE_SYN_8(IA_USER * iaUser, uint32_t sip);
287 int Send_DISCONN_SYN_ACK_6(IA_USER * iaUser, uint32_t sip);
288 int Send_DISCONN_SYN_ACK_7(IA_USER * iaUser, uint32_t sip);
289 int Send_DISCONN_SYN_ACK_8(IA_USER * iaUser, uint32_t sip);
291 int Send_FIN_6(IA_USER * iaUser, uint32_t sip, std::map<uint32_t, IA_USER>::iterator it);
292 int Send_FIN_7(IA_USER * iaUser, uint32_t sip, std::map<uint32_t, IA_USER>::iterator it);
293 int Send_FIN_8(IA_USER * iaUser, uint32_t sip, std::map<uint32_t, IA_USER>::iterator it);
297 int SendError(uint32_t ip, uint16_t port, int protoVer, const std::string & text);
298 int Send(uint32_t ip, uint16_t port, const void* buffer, size_t len);
299 int RealSendMessage6(const STG::Message & msg, uint32_t ip, IA_USER & user);
300 int RealSendMessage7(const STG::Message & msg, uint32_t ip, IA_USER & user);
301 int RealSendMessage8(const STG::Message & msg, uint32_t ip, IA_USER & user);
303 BLOWFISH_CTX ctxS; //for loginS
305 mutable std::string errorStr;
306 AUTH_IA_SETTINGS iaSettings;
307 STG::ModuleSettings settings;
310 bool isRunningRunTimeouter;
313 const STG::Settings * stgSettings;
315 mutable std::map<uint32_t, IA_USER> ip2user;
317 std::jthread m_thread;
318 std::jthread m_timeouterThread;
319 mutable std::mutex m_mutex;
323 CONN_SYN_ACK_6 connSynAck6;
324 CONN_SYN_ACK_8 connSynAck8;
326 DISCONN_SYN_ACK_6 disconnSynAck6;
327 DISCONN_SYN_ACK_8 disconnSynAck8;
329 ALIVE_SYN_6 aliveSyn6;
330 ALIVE_SYN_8 aliveSyn8;
334 std::map<std::string, int> packetTypes;
336 uint32_t enabledDirs;
338 STG::ScopedConnection m_onDelUserConn;
340 STG::PluginLogger logger;
342 friend class UnauthorizeUser;
344 //-----------------------------------------------------------------------------
345 class UnauthorizeUser : std::unary_function<const std::pair<uint32_t, IA_USER> &, void> {
347 explicit UnauthorizeUser(AUTH_IA * a) : auth(a) {}
348 UnauthorizeUser(const UnauthorizeUser & rvalue) : auth(rvalue.auth) {}
349 void operator()(const std::pair<uint32_t, IA_USER> & p)
351 auth->users->Unauthorize(p.second.user->GetLogin(), auth);
354 UnauthorizeUser & operator=(const UnauthorizeUser & rvalue);