RCTSRWebSocket.m 48 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636
  1. //
  2. // Copyright 2012 Square Inc.
  3. //
  4. // Licensed under the Apache License, Version 2.0 (the "License");
  5. // you may not use this file except in compliance with the License.
  6. // You may obtain a copy of the License at
  7. //
  8. // http://www.apache.org/licenses/LICENSE-2.0
  9. //
  10. // Unless required by applicable law or agreed to in writing, software
  11. // distributed under the License is distributed on an "AS IS" BASIS,
  12. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. // See the License for the specific language governing permissions and
  14. // limitations under the License.
  15. //
  16. #import <React/RCTSRWebSocket.h>
  17. #import <Availability.h>
  18. #import <Security/SecRandom.h>
  19. #import <CommonCrypto/CommonDigest.h>
  20. #import <React/RCTAssert.h>
  21. #import <React/RCTLog.h>
  22. typedef NS_ENUM(NSInteger, RCTSROpCode) {
  23. RCTSROpCodeTextFrame = 0x1,
  24. RCTSROpCodeBinaryFrame = 0x2,
  25. // 3-7 reserved.
  26. RCTSROpCodeConnectionClose = 0x8,
  27. RCTSROpCodePing = 0x9,
  28. RCTSROpCodePong = 0xA,
  29. // B-F reserved.
  30. };
  31. typedef struct {
  32. BOOL fin;
  33. // BOOL rsv1;
  34. // BOOL rsv2;
  35. // BOOL rsv3;
  36. uint8_t opcode;
  37. BOOL masked;
  38. uint64_t payload_length;
  39. } frame_header;
  40. static NSString *const RCTSRWebSocketAppendToSecKeyString = @"258EAFA5-E914-47DA-95CA-C5AB0DC85B11";
  41. //#define RCTSR_ENABLE_LOG
  42. #ifdef RCTSR_ENABLE_LOG
  43. #define RCTSRLog(format...) RCTLogInfo(format)
  44. #else
  45. #define RCTSRLog(...) do { } while (0)
  46. #endif
  47. // This is a hack, and probably not optimal
  48. static inline int32_t validate_dispatch_data_partial_string(NSData *data)
  49. {
  50. static const int maxCodepointSize = 3;
  51. for (int i = 0; i < maxCodepointSize; i++) {
  52. NSString *str = [[NSString alloc] initWithBytesNoCopy:(char *)data.bytes length:data.length - i encoding:NSUTF8StringEncoding freeWhenDone:NO];
  53. if (str) {
  54. return (int32_t)data.length - i;
  55. }
  56. }
  57. return -1;
  58. }
  59. @interface NSData (RCTSRWebSocket)
  60. @property (nonatomic, readonly, copy) NSString *stringBySHA1ThenBase64Encoding;
  61. @end
  62. @interface NSString (RCTSRWebSocket)
  63. @property (nonatomic, readonly, copy) NSString *stringBySHA1ThenBase64Encoding;
  64. @end
  65. @interface NSURL (RCTSRWebSocket)
  66. // The origin isn't really applicable for a native application.
  67. // So instead, just map ws -> http and wss -> https.
  68. @property (nonatomic, readonly, copy) NSString *RCTSR_origin;
  69. @end
  70. @interface _RCTSRRunLoopThread : NSThread
  71. @property (nonatomic, readonly) NSRunLoop *runLoop;
  72. @end
  73. static NSString *newSHA1String(const char *bytes, size_t length)
  74. {
  75. uint8_t md[CC_SHA1_DIGEST_LENGTH];
  76. assert(length >= 0);
  77. assert(length <= UINT32_MAX);
  78. CC_SHA1(bytes, (CC_LONG)length, md);
  79. NSData *data = [NSData dataWithBytes:md length:CC_SHA1_DIGEST_LENGTH];
  80. return [data base64EncodedStringWithOptions:0];
  81. }
  82. @implementation NSData (RCTSRWebSocket)
  83. - (NSString *)stringBySHA1ThenBase64Encoding
  84. {
  85. return newSHA1String(self.bytes, self.length);
  86. }
  87. @end
  88. @implementation NSString (RCTSRWebSocket)
  89. - (NSString *)stringBySHA1ThenBase64Encoding
  90. {
  91. return newSHA1String(self.UTF8String, self.length);
  92. }
  93. @end
  94. NSString *const RCTSRWebSocketErrorDomain = @"RCTSRWebSocketErrorDomain";
  95. NSString *const RCTSRHTTPResponseErrorKey = @"HTTPResponseStatusCode";
  96. // Returns number of bytes consumed. Returning 0 means you didn't match.
  97. // Sends bytes to callback handler;
  98. typedef size_t (^stream_scanner)(NSData *collected_data);
  99. typedef void (^data_callback)(RCTSRWebSocket *webSocket, NSData *data);
  100. @interface RCTSRIOConsumer : NSObject
  101. @property (nonatomic, copy, readonly) stream_scanner consumer;
  102. @property (nonatomic, copy, readonly) data_callback handler;
  103. @property (nonatomic, assign) size_t bytesNeeded;
  104. @property (nonatomic, assign, readonly) BOOL readToCurrentFrame;
  105. @property (nonatomic, assign, readonly) BOOL unmaskBytes;
  106. @end
  107. // This class is not thread-safe, and is expected to always be run on the same queue.
  108. @interface RCTSRIOConsumerPool : NSObject
  109. - (instancetype)initWithBufferCapacity:(NSUInteger)poolSize NS_DESIGNATED_INITIALIZER;
  110. - (RCTSRIOConsumer *)consumerWithScanner:(stream_scanner)scanner handler:(data_callback)handler bytesNeeded:(size_t)bytesNeeded readToCurrentFrame:(BOOL)readToCurrentFrame unmaskBytes:(BOOL)unmaskBytes;
  111. - (void)returnConsumer:(RCTSRIOConsumer *)consumer;
  112. @end
  113. @interface RCTSRWebSocket () <NSStreamDelegate>
  114. @property (nonatomic, assign) RCTSRReadyState readyState;
  115. @property (nonatomic, strong) NSOperationQueue *delegateOperationQueue;
  116. @property (nonatomic, strong) dispatch_queue_t delegateDispatchQueue;
  117. @end
  118. @implementation RCTSRWebSocket
  119. {
  120. NSInteger _webSocketVersion;
  121. NSOperationQueue *_delegateOperationQueue;
  122. dispatch_queue_t _delegateDispatchQueue;
  123. dispatch_queue_t _workQueue;
  124. NSMutableArray<RCTSRIOConsumer *> *_consumers;
  125. NSInputStream *_inputStream;
  126. NSOutputStream *_outputStream;
  127. NSMutableData *_readBuffer;
  128. NSUInteger _readBufferOffset;
  129. NSMutableData *_outputBuffer;
  130. NSUInteger _outputBufferOffset;
  131. uint8_t _currentFrameOpcode;
  132. size_t _currentFrameCount;
  133. size_t _readOpCount;
  134. uint32_t _currentStringScanPosition;
  135. NSMutableData *_currentFrameData;
  136. NSString *_closeReason;
  137. NSString *_secKey;
  138. BOOL _pinnedCertFound;
  139. uint8_t _currentReadMaskKey[4];
  140. size_t _currentReadMaskOffset;
  141. BOOL _consumerStopped;
  142. BOOL _closeWhenFinishedWriting;
  143. BOOL _failed;
  144. BOOL _secure;
  145. NSURLRequest *_urlRequest;
  146. CFHTTPMessageRef _receivedHTTPHeaders;
  147. BOOL _sentClose;
  148. BOOL _didFail;
  149. int _closeCode;
  150. BOOL _isPumping;
  151. BOOL _cleanupScheduled;
  152. NSMutableSet<NSArray *> *_scheduledRunloops;
  153. // We use this to retain ourselves.
  154. __strong RCTSRWebSocket *_selfRetain;
  155. NSArray<NSString *> *_requestedProtocols;
  156. RCTSRIOConsumerPool *_consumerPool;
  157. }
  158. - (instancetype)initWithURLRequest:(NSURLRequest *)request protocols:(NSArray<NSString *> *)protocols
  159. {
  160. RCTAssertParam(request);
  161. if ((self = [super init])) {
  162. _url = request.URL;
  163. _urlRequest = request;
  164. _requestedProtocols = [protocols copy];
  165. [self _RCTSR_commonInit];
  166. }
  167. return self;
  168. }
  169. RCT_NOT_IMPLEMENTED(- (instancetype)init)
  170. - (instancetype)initWithURLRequest:(NSURLRequest *)request
  171. {
  172. return [self initWithURLRequest:request protocols:nil];
  173. }
  174. - (instancetype)initWithURL:(NSURL *)URL
  175. {
  176. return [self initWithURL:URL protocols:nil];
  177. }
  178. - (instancetype)initWithURL:(NSURL *)URL protocols:(NSArray<NSString *> *)protocols
  179. {
  180. NSMutableURLRequest *request;
  181. if (URL) {
  182. // Build a mutable request so we can fill the cookie header.
  183. request = [NSMutableURLRequest requestWithURL:URL];
  184. // We load cookies from sharedHTTPCookieStorage (shared with XHR and
  185. // fetch). To get HTTPS-only cookies for wss URLs, replace wss with https
  186. // in the URL.
  187. NSURLComponents *components = [NSURLComponents componentsWithURL:URL resolvingAgainstBaseURL:true];
  188. if ([components.scheme isEqualToString:@"wss"]) {
  189. components.scheme = @"https";
  190. }
  191. // Load and set the cookie header.
  192. NSArray<NSHTTPCookie *> *cookies = [[NSHTTPCookieStorage sharedHTTPCookieStorage] cookiesForURL:components.URL];
  193. [request setAllHTTPHeaderFields:[NSHTTPCookie requestHeaderFieldsWithCookies:cookies]];
  194. }
  195. return [self initWithURLRequest:request protocols:protocols];
  196. }
  197. - (void)_RCTSR_commonInit
  198. {
  199. NSString *scheme = _url.scheme.lowercaseString;
  200. assert([scheme isEqualToString:@"ws"] || [scheme isEqualToString:@"http"] || [scheme isEqualToString:@"wss"] || [scheme isEqualToString:@"https"]);
  201. if ([scheme isEqualToString:@"wss"] || [scheme isEqualToString:@"https"]) {
  202. _secure = YES;
  203. }
  204. _readyState = RCTSR_CONNECTING;
  205. _consumerStopped = YES;
  206. _webSocketVersion = 13;
  207. _workQueue = dispatch_queue_create("com.facebook.react.SRWebSocket", DISPATCH_QUEUE_SERIAL);
  208. // Going to set a specific on the queue so we can validate we're on the work queue
  209. dispatch_queue_set_specific(_workQueue, (__bridge void *)self, (__bridge void *)_workQueue, NULL);
  210. _delegateDispatchQueue = dispatch_get_main_queue();
  211. _readBuffer = [NSMutableData new];
  212. _outputBuffer = [NSMutableData new];
  213. _currentFrameData = [NSMutableData new];
  214. _consumers = [NSMutableArray new];
  215. _consumerPool = [RCTSRIOConsumerPool new];
  216. _scheduledRunloops = [NSMutableSet new];
  217. [self _initializeStreams];
  218. // default handlers
  219. }
  220. - (void)assertOnWorkQueue
  221. {
  222. assert(dispatch_get_specific((__bridge void *)self) == (__bridge void *)_workQueue);
  223. }
  224. - (void)dealloc
  225. {
  226. _inputStream.delegate = nil;
  227. _outputStream.delegate = nil;
  228. [_inputStream close];
  229. [_outputStream close];
  230. if (_receivedHTTPHeaders) {
  231. CFRelease(_receivedHTTPHeaders);
  232. _receivedHTTPHeaders = NULL;
  233. }
  234. }
  235. #ifndef NDEBUG
  236. - (void)setReadyState:(RCTSRReadyState)aReadyState
  237. {
  238. [self willChangeValueForKey:@"readyState"];
  239. assert(aReadyState > _readyState);
  240. _readyState = aReadyState;
  241. [self didChangeValueForKey:@"readyState"];
  242. }
  243. #endif
  244. - (void)open
  245. {
  246. assert(_url);
  247. RCTAssert(_readyState == RCTSR_CONNECTING, @"Cannot call -(void)open on RCTSRWebSocket more than once");
  248. _selfRetain = self;
  249. [self _connect];
  250. }
  251. // Calls block on delegate queue
  252. - (void)_performDelegateBlock:(dispatch_block_t)block
  253. {
  254. if (_delegateOperationQueue) {
  255. [_delegateOperationQueue addOperationWithBlock:block];
  256. } else {
  257. assert(_delegateDispatchQueue);
  258. dispatch_async(_delegateDispatchQueue, block);
  259. }
  260. }
  261. - (void)setDelegateDispatchQueue:(dispatch_queue_t)queue
  262. {
  263. _delegateDispatchQueue = queue;
  264. }
  265. - (BOOL)_checkHandshake:(CFHTTPMessageRef)httpMessage
  266. {
  267. NSString *acceptHeader = CFBridgingRelease(CFHTTPMessageCopyHeaderFieldValue(httpMessage, CFSTR("Sec-WebSocket-Accept")));
  268. if (acceptHeader == nil) {
  269. return NO;
  270. }
  271. NSString *concattedString = [_secKey stringByAppendingString:RCTSRWebSocketAppendToSecKeyString];
  272. NSString *expectedAccept = [concattedString stringBySHA1ThenBase64Encoding];
  273. return [acceptHeader isEqualToString:expectedAccept];
  274. }
  275. - (void)_HTTPHeadersDidFinish
  276. {
  277. NSInteger responseCode = CFHTTPMessageGetResponseStatusCode(_receivedHTTPHeaders);
  278. if (responseCode >= 400) {
  279. RCTSRLog(@"Request failed with response code %ld", responseCode);
  280. [self _failWithError:[NSError errorWithDomain:RCTSRWebSocketErrorDomain code:2132 userInfo:@{NSLocalizedDescriptionKey:[NSString stringWithFormat:@"received bad response code from server %ld", (long)responseCode], RCTSRHTTPResponseErrorKey:@(responseCode)}]];
  281. return;
  282. }
  283. if (![self _checkHandshake:_receivedHTTPHeaders]) {
  284. [self _failWithError:[NSError errorWithDomain:RCTSRWebSocketErrorDomain code:2133 userInfo:@{NSLocalizedDescriptionKey: [NSString stringWithFormat:@"Invalid Sec-WebSocket-Accept response"]}]];
  285. return;
  286. }
  287. NSString *negotiatedProtocol = CFBridgingRelease(CFHTTPMessageCopyHeaderFieldValue(_receivedHTTPHeaders, CFSTR("Sec-WebSocket-Protocol")));
  288. if (negotiatedProtocol) {
  289. // Make sure we requested the protocol
  290. if ([_requestedProtocols indexOfObject:negotiatedProtocol] == NSNotFound) {
  291. [self _failWithError:[NSError errorWithDomain:RCTSRWebSocketErrorDomain code:2133 userInfo:@{NSLocalizedDescriptionKey: [NSString stringWithFormat:@"Server specified Sec-WebSocket-Protocol that wasn't requested"]}]];
  292. return;
  293. }
  294. _protocol = negotiatedProtocol;
  295. }
  296. self.readyState = RCTSR_OPEN;
  297. if (!_didFail) {
  298. [self _readFrameNew];
  299. }
  300. [self _performDelegateBlock:^{
  301. if ([self.delegate respondsToSelector:@selector(webSocketDidOpen:)]) {
  302. [self.delegate webSocketDidOpen:self];
  303. };
  304. }];
  305. }
  306. - (void)_readHTTPHeader
  307. {
  308. if (_receivedHTTPHeaders == NULL) {
  309. _receivedHTTPHeaders = CFHTTPMessageCreateEmpty(NULL, NO);
  310. }
  311. [self _readUntilHeaderCompleteWithCallback:^(RCTSRWebSocket *socket, NSData *data) {
  312. CFHTTPMessageAppendBytes(self->_receivedHTTPHeaders, (const UInt8 *)data.bytes, data.length);
  313. if (CFHTTPMessageIsHeaderComplete(self->_receivedHTTPHeaders)) {
  314. RCTSRLog(@"Finished reading headers %@", CFBridgingRelease(CFHTTPMessageCopyAllHeaderFields(_receivedHTTPHeaders)));
  315. [socket _HTTPHeadersDidFinish];
  316. } else {
  317. [socket _readHTTPHeader];
  318. }
  319. }];
  320. }
  321. - (void)didConnect
  322. {
  323. RCTSRLog(@"Connected");
  324. CFHTTPMessageRef request = CFHTTPMessageCreateRequest(NULL, CFSTR("GET"), (__bridge CFURLRef)_url, kCFHTTPVersion1_1);
  325. // Set host first so it defaults
  326. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Host"), (__bridge CFStringRef)(_url.port ? [NSString stringWithFormat:@"%@:%@", _url.host, _url.port] : _url.host));
  327. NSMutableData *keyBytes = [[NSMutableData alloc] initWithLength:16];
  328. int result __unused = SecRandomCopyBytes(kSecRandomDefault, keyBytes.length, keyBytes.mutableBytes);
  329. assert(result == 0);
  330. _secKey = [keyBytes base64EncodedStringWithOptions:0];
  331. assert([_secKey length] == 24);
  332. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Upgrade"), CFSTR("websocket"));
  333. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Connection"), CFSTR("Upgrade"));
  334. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Sec-WebSocket-Key"), (__bridge CFStringRef)_secKey);
  335. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Sec-WebSocket-Version"), (__bridge CFStringRef)[NSString stringWithFormat:@"%ld", (long)_webSocketVersion]);
  336. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Origin"), (__bridge CFStringRef)_url.RCTSR_origin);
  337. if (_requestedProtocols) {
  338. CFHTTPMessageSetHeaderFieldValue(request, CFSTR("Sec-WebSocket-Protocol"), (__bridge CFStringRef)[_requestedProtocols componentsJoinedByString:@", "]);
  339. }
  340. [_urlRequest.allHTTPHeaderFields enumerateKeysAndObjectsUsingBlock:^(id key, id obj, BOOL *stop) {
  341. CFHTTPMessageSetHeaderFieldValue(request, (__bridge CFStringRef)key, (__bridge CFStringRef)obj);
  342. }];
  343. NSData *message = CFBridgingRelease(CFHTTPMessageCopySerializedMessage(request));
  344. CFRelease(request);
  345. [self _writeData:message];
  346. [self _readHTTPHeader];
  347. }
  348. - (void)_initializeStreams
  349. {
  350. assert(_url.port.unsignedIntValue <= UINT32_MAX);
  351. uint32_t port = _url.port.unsignedIntValue;
  352. if (port == 0) {
  353. if (!_secure) {
  354. port = 80;
  355. } else {
  356. port = 443;
  357. }
  358. }
  359. NSString *host = _url.host;
  360. CFReadStreamRef readStream = NULL;
  361. CFWriteStreamRef writeStream = NULL;
  362. CFStreamCreatePairWithSocketToHost(NULL, (__bridge CFStringRef)host, port, &readStream, &writeStream);
  363. _outputStream = CFBridgingRelease(writeStream);
  364. _inputStream = CFBridgingRelease(readStream);
  365. if (_secure) {
  366. NSMutableDictionary<NSString *, id> *SSLOptions = [NSMutableDictionary new];
  367. [_outputStream setProperty:(__bridge id)kCFStreamSocketSecurityLevelNegotiatedSSL forKey:(__bridge id)kCFStreamPropertySocketSecurityLevel];
  368. // If we're using pinned certs, don't validate the certificate chain
  369. if (_urlRequest.RCTSR_SSLPinnedCertificates.count) {
  370. [SSLOptions setValue:@NO forKey:(__bridge id)kCFStreamSSLValidatesCertificateChain];
  371. }
  372. #if DEBUG
  373. [SSLOptions setValue:@NO forKey:(__bridge id)kCFStreamSSLValidatesCertificateChain];
  374. RCTLogInfo(@"SocketRocket: In debug mode. Allowing connection to any root cert");
  375. #endif
  376. [_outputStream setProperty:SSLOptions
  377. forKey:(__bridge id)kCFStreamPropertySSLSettings];
  378. }
  379. _inputStream.delegate = self;
  380. _outputStream.delegate = self;
  381. }
  382. - (void)_connect
  383. {
  384. if (!_scheduledRunloops.count) {
  385. [self scheduleInRunLoop:[NSRunLoop RCTSR_networkRunLoop] forMode:NSDefaultRunLoopMode];
  386. }
  387. [_outputStream open];
  388. [_inputStream open];
  389. }
  390. - (void)scheduleInRunLoop:(NSRunLoop *)aRunLoop forMode:(NSString *)mode
  391. {
  392. [_outputStream scheduleInRunLoop:aRunLoop forMode:mode];
  393. [_inputStream scheduleInRunLoop:aRunLoop forMode:mode];
  394. [_scheduledRunloops addObject:@[aRunLoop, mode]];
  395. }
  396. - (void)unscheduleFromRunLoop:(NSRunLoop *)aRunLoop forMode:(NSString *)mode
  397. {
  398. [_outputStream removeFromRunLoop:aRunLoop forMode:mode];
  399. [_inputStream removeFromRunLoop:aRunLoop forMode:mode];
  400. [_scheduledRunloops removeObject:@[aRunLoop, mode]];
  401. }
  402. - (void)close
  403. {
  404. [self closeWithCode:RCTSRStatusCodeNormal reason:nil];
  405. }
  406. - (void)closeWithCode:(NSInteger)code reason:(NSString *)reason
  407. {
  408. assert(code);
  409. dispatch_async(_workQueue, ^{
  410. if (self.readyState == RCTSR_CLOSING || self.readyState == RCTSR_CLOSED) {
  411. return;
  412. }
  413. BOOL wasConnecting = self.readyState == RCTSR_CONNECTING;
  414. self.readyState = RCTSR_CLOSING;
  415. RCTSRLog(@"Closing with code %ld reason %@", code, reason);
  416. if (wasConnecting) {
  417. [self _disconnect];
  418. return;
  419. }
  420. size_t maxMsgSize = [reason maximumLengthOfBytesUsingEncoding:NSUTF8StringEncoding];
  421. NSMutableData *mutablePayload = [[NSMutableData alloc] initWithLength:sizeof(uint16_t) + maxMsgSize];
  422. NSData *payload = mutablePayload;
  423. ((uint16_t *)mutablePayload.mutableBytes)[0] = NSSwapBigShortToHost(code);
  424. if (reason) {
  425. NSRange remainingRange = {0};
  426. NSUInteger usedLength = 0;
  427. BOOL success __unused = [reason getBytes:(char *)mutablePayload.mutableBytes + sizeof(uint16_t) maxLength:payload.length - sizeof(uint16_t) usedLength:&usedLength encoding:NSUTF8StringEncoding options:NSStringEncodingConversionExternalRepresentation range:NSMakeRange(0, reason.length) remainingRange:&remainingRange];
  428. assert(success);
  429. assert(remainingRange.length == 0);
  430. if (usedLength != maxMsgSize) {
  431. payload = [payload subdataWithRange:NSMakeRange(0, usedLength + sizeof(uint16_t))];
  432. }
  433. }
  434. [self _sendFrameWithOpcode:RCTSROpCodeConnectionClose data:payload];
  435. });
  436. }
  437. - (void)_closeWithProtocolError:(NSString *)message
  438. {
  439. // Need to shunt this on the _callbackQueue first to see if they received any messages
  440. [self _performDelegateBlock:^{
  441. [self closeWithCode:RCTSRStatusCodeProtocolError reason:message];
  442. dispatch_async(self->_workQueue, ^{
  443. [self _disconnect];
  444. });
  445. }];
  446. }
  447. - (void)_failWithError:(NSError *)error
  448. {
  449. dispatch_async(_workQueue, ^{
  450. if (self.readyState != RCTSR_CLOSED) {
  451. self->_failed = YES;
  452. [self _performDelegateBlock:^{
  453. if ([self.delegate respondsToSelector:@selector(webSocket:didFailWithError:)]) {
  454. [self.delegate webSocket:self didFailWithError:error];
  455. }
  456. }];
  457. self.readyState = RCTSR_CLOSED;
  458. RCTSRLog(@"Failing with error %@", error.localizedDescription);
  459. [self _disconnect];
  460. [self _scheduleCleanup];
  461. }
  462. });
  463. }
  464. - (void)_writeData:(NSData *)data
  465. {
  466. [self assertOnWorkQueue];
  467. if (_closeWhenFinishedWriting) {
  468. return;
  469. }
  470. [_outputBuffer appendData:data];
  471. [self _pumpWriting];
  472. }
  473. - (void)send:(id)data
  474. {
  475. RCTAssert(self.readyState != RCTSR_CONNECTING, @"Invalid State: Cannot call send: until connection is open");
  476. if (nil == data) {
  477. return;
  478. }
  479. // TODO: maybe not copy this for performance
  480. data = [data copy];
  481. dispatch_async(_workQueue, ^{
  482. if ([data isKindOfClass:[NSString class]]) {
  483. [self _sendFrameWithOpcode:RCTSROpCodeTextFrame data:[(NSString *)data dataUsingEncoding:NSUTF8StringEncoding]];
  484. } else if ([data isKindOfClass:[NSData class]]) {
  485. [self _sendFrameWithOpcode:RCTSROpCodeBinaryFrame data:data];
  486. } else {
  487. assert(NO);
  488. }
  489. });
  490. }
  491. - (void)sendPing:(NSData *)data
  492. {
  493. RCTAssert(self.readyState == RCTSR_OPEN, @"Invalid State: Cannot call send: until connection is open");
  494. // TODO: maybe not copy this for performance
  495. data = [data copy] ?: [NSData data]; // It's okay for a ping to be empty
  496. dispatch_async(_workQueue, ^{
  497. [self _sendFrameWithOpcode:RCTSROpCodePing data:data];
  498. });
  499. }
  500. - (void)handlePing:(NSData *)pingData
  501. {
  502. // Need to pingpong this off _callbackQueue first to make sure messages happen in order
  503. [self _performDelegateBlock:^{
  504. dispatch_async(self->_workQueue, ^{
  505. [self _sendFrameWithOpcode:RCTSROpCodePong data:pingData];
  506. });
  507. }];
  508. }
  509. - (void)handlePong:(NSData *)pongData
  510. {
  511. RCTSRLog(@"Received pong");
  512. [self _performDelegateBlock:^{
  513. if ([self.delegate respondsToSelector:@selector(webSocket:didReceivePong:)]) {
  514. [self.delegate webSocket:self didReceivePong:pongData];
  515. }
  516. }];
  517. }
  518. - (void)_handleMessage:(id)message
  519. {
  520. RCTSRLog(@"Received message");
  521. [self _performDelegateBlock:^{
  522. [self.delegate webSocket:self didReceiveMessage:message];
  523. }];
  524. }
  525. static inline BOOL closeCodeIsValid(int closeCode)
  526. {
  527. if (closeCode < 1000) {
  528. return NO;
  529. }
  530. if (closeCode >= 1000 && closeCode <= 1011) {
  531. if (closeCode == 1004 ||
  532. closeCode == 1005 ||
  533. closeCode == 1006) {
  534. return NO;
  535. }
  536. return YES;
  537. }
  538. if (closeCode >= 3000 && closeCode <= 3999) {
  539. return YES;
  540. }
  541. if (closeCode >= 4000 && closeCode <= 4999) {
  542. return YES;
  543. }
  544. return NO;
  545. }
  546. // Note from RFC:
  547. //
  548. // If there is a body, the first two
  549. // bytes of the body MUST be a 2-byte unsigned integer (in network byte
  550. // order) representing a status code with value /code/ defined in
  551. // Section 7.4. Following the 2-byte integer the body MAY contain UTF-8
  552. // encoded data with value /reason/, the interpretation of which is not
  553. // defined by this specification.
  554. - (void)handleCloseWithData:(NSData *)data
  555. {
  556. size_t dataSize = data.length;
  557. __block uint16_t closeCode = 0;
  558. RCTSRLog(@"Received close frame");
  559. if (dataSize == 1) {
  560. // TODO: handle error
  561. [self _closeWithProtocolError:@"Payload for close must be larger than 2 bytes"];
  562. return;
  563. } else if (dataSize >= 2) {
  564. [data getBytes:&closeCode length:sizeof(closeCode)];
  565. _closeCode = NSSwapBigShortToHost(closeCode);
  566. if (!closeCodeIsValid(_closeCode)) {
  567. [self _closeWithProtocolError:[NSString stringWithFormat:@"Cannot have close code of %d", _closeCode]];
  568. return;
  569. }
  570. if (dataSize > 2) {
  571. _closeReason = [[NSString alloc] initWithData:[data subdataWithRange:NSMakeRange(2, dataSize - 2)] encoding:NSUTF8StringEncoding];
  572. if (!_closeReason) {
  573. [self _closeWithProtocolError:@"Close reason MUST be valid UTF-8"];
  574. return;
  575. }
  576. }
  577. } else {
  578. _closeCode = RCTSRStatusNoStatusReceived;
  579. }
  580. [self assertOnWorkQueue];
  581. if (self.readyState == RCTSR_OPEN) {
  582. [self closeWithCode:1000 reason:nil];
  583. }
  584. dispatch_async(_workQueue, ^{
  585. [self _disconnect];
  586. });
  587. }
  588. - (void)_disconnect
  589. {
  590. [self assertOnWorkQueue];
  591. RCTSRLog(@"Trying to disconnect");
  592. _closeWhenFinishedWriting = YES;
  593. [self _pumpWriting];
  594. }
  595. - (void)_handleFrameWithData:(NSData *)frameData opCode:(NSInteger)opcode
  596. {
  597. // Check that the current data is valid UTF8
  598. BOOL isControlFrame = (opcode == RCTSROpCodePing || opcode == RCTSROpCodePong || opcode == RCTSROpCodeConnectionClose);
  599. if (!isControlFrame) {
  600. [self _readFrameNew];
  601. } else {
  602. dispatch_async(_workQueue, ^{
  603. [self _readFrameContinue];
  604. });
  605. }
  606. switch (opcode) {
  607. case RCTSROpCodeTextFrame: {
  608. NSString *str = [[NSString alloc] initWithData:frameData encoding:NSUTF8StringEncoding];
  609. if (str == nil && frameData) {
  610. [self closeWithCode:RCTSRStatusCodeInvalidUTF8 reason:@"Text frames must be valid UTF-8"];
  611. dispatch_async(_workQueue, ^{
  612. [self _disconnect];
  613. });
  614. return;
  615. }
  616. [self _handleMessage:str];
  617. break;
  618. }
  619. case RCTSROpCodeBinaryFrame:
  620. [self _handleMessage:[frameData copy]];
  621. break;
  622. case RCTSROpCodeConnectionClose:
  623. [self handleCloseWithData:frameData];
  624. break;
  625. case RCTSROpCodePing:
  626. [self handlePing:frameData];
  627. break;
  628. case RCTSROpCodePong:
  629. [self handlePong:frameData];
  630. break;
  631. default:
  632. [self _closeWithProtocolError:[NSString stringWithFormat:@"Unknown opcode %ld", (long)opcode]];
  633. // TODO: Handle invalid opcode
  634. break;
  635. }
  636. }
  637. - (void)_handleFrameHeader:(frame_header)frame_header curData:(NSData *)curData
  638. {
  639. assert(frame_header.opcode != 0);
  640. if (self.readyState != RCTSR_OPEN) {
  641. return;
  642. }
  643. BOOL isControlFrame = (frame_header.opcode == RCTSROpCodePing || frame_header.opcode == RCTSROpCodePong || frame_header.opcode == RCTSROpCodeConnectionClose);
  644. if (isControlFrame && !frame_header.fin) {
  645. [self _closeWithProtocolError:@"Fragmented control frames not allowed"];
  646. return;
  647. }
  648. if (isControlFrame && frame_header.payload_length >= 126) {
  649. [self _closeWithProtocolError:@"Control frames cannot have payloads larger than 126 bytes"];
  650. return;
  651. }
  652. if (!isControlFrame) {
  653. _currentFrameOpcode = frame_header.opcode;
  654. _currentFrameCount += 1;
  655. }
  656. if (frame_header.payload_length == 0) {
  657. if (isControlFrame) {
  658. [self _handleFrameWithData:curData opCode:frame_header.opcode];
  659. } else {
  660. if (frame_header.fin) {
  661. [self _handleFrameWithData:_currentFrameData opCode:frame_header.opcode];
  662. } else {
  663. // TODO: add assert that opcode is not a control;
  664. [self _readFrameContinue];
  665. }
  666. }
  667. } else {
  668. assert(frame_header.payload_length <= SIZE_T_MAX);
  669. [self _addConsumerWithDataLength:(size_t)frame_header.payload_length callback:^(RCTSRWebSocket *socket, NSData *newData) {
  670. if (isControlFrame) {
  671. [socket _handleFrameWithData:newData opCode:frame_header.opcode];
  672. } else {
  673. if (frame_header.fin) {
  674. [socket _handleFrameWithData:socket->_currentFrameData opCode:frame_header.opcode];
  675. } else {
  676. // TODO: add assert that opcode is not a control;
  677. [socket _readFrameContinue];
  678. }
  679. }
  680. } readToCurrentFrame:!isControlFrame unmaskBytes:frame_header.masked];
  681. }
  682. }
  683. /* From RFC:
  684. 0 1 2 3
  685. 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1
  686. +-+-+-+-+-------+-+-------------+-------------------------------+
  687. |F|R|R|R| opcode|M| Payload len | Extended payload length |
  688. |I|S|S|S| (4) |A| (7) | (16/64) |
  689. |N|V|V|V| |S| | (if payload len==126/127) |
  690. | |1|2|3| |K| | |
  691. +-+-+-+-+-------+-+-------------+ - - - - - - - - - - - - - - - +
  692. | Extended payload length continued, if payload len == 127 |
  693. + - - - - - - - - - - - - - - - +-------------------------------+
  694. | |Masking-key, if MASK set to 1 |
  695. +-------------------------------+-------------------------------+
  696. | Masking-key (continued) | Payload Data |
  697. +-------------------------------- - - - - - - - - - - - - - - - +
  698. : Payload Data continued ... :
  699. + - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - +
  700. | Payload Data continued ... |
  701. +---------------------------------------------------------------+
  702. */
  703. static const uint8_t RCTSRFinMask = 0x80;
  704. static const uint8_t RCTSROpCodeMask = 0x0F;
  705. static const uint8_t RCTSRRsvMask = 0x70;
  706. static const uint8_t RCTSRMaskMask = 0x80;
  707. static const uint8_t RCTSRPayloadLenMask = 0x7F;
  708. - (void)_readFrameContinue
  709. {
  710. assert((_currentFrameCount == 0 && _currentFrameOpcode == 0) || (_currentFrameCount > 0 && _currentFrameOpcode > 0));
  711. [self _addConsumerWithDataLength:2 callback:^(RCTSRWebSocket *socket, NSData *data) {
  712. __block frame_header header = {0};
  713. const uint8_t *headerBuffer = data.bytes;
  714. assert(data.length >= 2);
  715. if (headerBuffer[0] & RCTSRRsvMask) {
  716. [socket _closeWithProtocolError:@"Server used RSV bits"];
  717. return;
  718. }
  719. uint8_t receivedOpcode = (RCTSROpCodeMask &headerBuffer[0]);
  720. BOOL isControlFrame = (receivedOpcode == RCTSROpCodePing || receivedOpcode == RCTSROpCodePong || receivedOpcode == RCTSROpCodeConnectionClose);
  721. if (!isControlFrame && receivedOpcode != 0 && socket->_currentFrameCount > 0) {
  722. [socket _closeWithProtocolError:@"all data frames after the initial data frame must have opcode 0"];
  723. return;
  724. }
  725. if (receivedOpcode == 0 && socket->_currentFrameCount == 0) {
  726. [socket _closeWithProtocolError:@"cannot continue a message"];
  727. return;
  728. }
  729. header.opcode = receivedOpcode == 0 ? socket->_currentFrameOpcode : receivedOpcode;
  730. header.fin = !!(RCTSRFinMask &headerBuffer[0]);
  731. header.masked = !!(RCTSRMaskMask &headerBuffer[1]);
  732. header.payload_length = RCTSRPayloadLenMask & headerBuffer[1];
  733. headerBuffer = NULL;
  734. if (header.masked) {
  735. [socket _closeWithProtocolError:@"Client must receive unmasked data"];
  736. }
  737. size_t extra_bytes_needed = header.masked ? sizeof(self->_currentReadMaskKey) : 0;
  738. if (header.payload_length == 126) {
  739. extra_bytes_needed += sizeof(uint16_t);
  740. } else if (header.payload_length == 127) {
  741. extra_bytes_needed += sizeof(uint64_t);
  742. }
  743. if (extra_bytes_needed == 0) {
  744. [socket _handleFrameHeader:header curData:socket->_currentFrameData];
  745. } else {
  746. [socket _addConsumerWithDataLength:extra_bytes_needed callback:^(RCTSRWebSocket *_socket, NSData *_data) {
  747. size_t mapped_size __unused = _data.length;
  748. const void *mapped_buffer = _data.bytes;
  749. size_t offset = 0;
  750. if (header.payload_length == 126) {
  751. assert(mapped_size >= sizeof(uint16_t));
  752. uint16_t newLen = NSSwapBigShortToHost(*(uint16_t *)(mapped_buffer));
  753. header.payload_length = newLen;
  754. offset += sizeof(uint16_t);
  755. } else if (header.payload_length == 127) {
  756. assert(mapped_size >= sizeof(uint64_t));
  757. header.payload_length = NSSwapBigLongLongToHost(*(uint64_t *)(mapped_buffer));
  758. offset += sizeof(uint64_t);
  759. } else {
  760. assert(header.payload_length < 126 && header.payload_length >= 0);
  761. }
  762. if (header.masked) {
  763. assert(mapped_size >= sizeof(self->_currentReadMaskOffset) + offset);
  764. memcpy(_socket->_currentReadMaskKey, ((uint8_t *)mapped_buffer) + offset, sizeof(_socket->_currentReadMaskKey));
  765. }
  766. [_socket _handleFrameHeader:header curData:_socket->_currentFrameData];
  767. } readToCurrentFrame:NO unmaskBytes:NO];
  768. }
  769. } readToCurrentFrame:NO unmaskBytes:NO];
  770. }
  771. - (void)_readFrameNew
  772. {
  773. dispatch_async(_workQueue, ^{
  774. self->_currentFrameData.length = 0;
  775. self->_currentFrameOpcode = 0;
  776. self->_currentFrameCount = 0;
  777. self->_readOpCount = 0;
  778. self->_currentStringScanPosition = 0;
  779. [self _readFrameContinue];
  780. });
  781. }
  782. - (void)_pumpWriting
  783. {
  784. [self assertOnWorkQueue];
  785. NSUInteger dataLength = _outputBuffer.length;
  786. if (dataLength - _outputBufferOffset > 0 && _outputStream.hasSpaceAvailable) {
  787. NSInteger bytesWritten = [_outputStream write:_outputBuffer.bytes + _outputBufferOffset maxLength:dataLength - _outputBufferOffset];
  788. if (bytesWritten == -1) {
  789. [self _failWithError:[NSError errorWithDomain:RCTSRWebSocketErrorDomain code:2145 userInfo:@{NSLocalizedDescriptionKey: @"Error writing to stream"}]];
  790. return;
  791. }
  792. _outputBufferOffset += bytesWritten;
  793. if (_outputBufferOffset > 4096 && _outputBufferOffset > (_outputBuffer.length >> 1)) {
  794. _outputBuffer = [[NSMutableData alloc] initWithBytes:(char *)_outputBuffer.bytes + _outputBufferOffset length:_outputBuffer.length - _outputBufferOffset];
  795. _outputBufferOffset = 0;
  796. }
  797. }
  798. if (_closeWhenFinishedWriting &&
  799. _outputBuffer.length - _outputBufferOffset == 0 &&
  800. (_inputStream.streamStatus != NSStreamStatusNotOpen &&
  801. _inputStream.streamStatus != NSStreamStatusClosed) &&
  802. !_sentClose) {
  803. _sentClose = YES;
  804. [self _scheduleCleanup];
  805. if (!_failed) {
  806. [self _performDelegateBlock:^{
  807. if ([self.delegate respondsToSelector:@selector(webSocket:didCloseWithCode:reason:wasClean:)]) {
  808. [self.delegate webSocket:self didCloseWithCode:self->_closeCode reason:self->_closeReason wasClean:YES];
  809. }
  810. }];
  811. }
  812. }
  813. }
  814. - (void)_addConsumerWithScanner:(stream_scanner)consumer callback:(data_callback)callback
  815. {
  816. [self assertOnWorkQueue];
  817. [self _addConsumerWithScanner:consumer callback:callback dataLength:0];
  818. }
  819. - (void)_addConsumerWithDataLength:(size_t)dataLength callback:(data_callback)callback readToCurrentFrame:(BOOL)readToCurrentFrame unmaskBytes:(BOOL)unmaskBytes
  820. {
  821. [self assertOnWorkQueue];
  822. assert(dataLength);
  823. [_consumers addObject:[_consumerPool consumerWithScanner:nil handler:callback bytesNeeded:dataLength readToCurrentFrame:readToCurrentFrame unmaskBytes:unmaskBytes]];
  824. [self _pumpScanner];
  825. }
  826. - (void)_addConsumerWithScanner:(stream_scanner)consumer callback:(data_callback)callback dataLength:(size_t)dataLength
  827. {
  828. [self assertOnWorkQueue];
  829. [_consumers addObject:[_consumerPool consumerWithScanner:consumer handler:callback bytesNeeded:dataLength readToCurrentFrame:NO unmaskBytes:NO]];
  830. [self _pumpScanner];
  831. }
  832. static const char CRLFCRLFBytes[] = {'\r', '\n', '\r', '\n'};
  833. - (void)_readUntilHeaderCompleteWithCallback:(data_callback)dataHandler
  834. {
  835. [self _readUntilBytes:CRLFCRLFBytes length:sizeof(CRLFCRLFBytes) callback:dataHandler];
  836. }
  837. - (void)_readUntilBytes:(const void *)bytes length:(size_t)length callback:(data_callback)dataHandler
  838. {
  839. // TODO: optimize so this can continue from where we last searched
  840. stream_scanner consumer = ^size_t(NSData *data) {
  841. __block size_t found_size = 0;
  842. __block size_t match_count = 0;
  843. size_t size = data.length;
  844. const unsigned char *buffer = data.bytes;
  845. for (size_t i = 0; i < size; i++ ) {
  846. if (((const unsigned char *)buffer)[i] == ((const unsigned char *)bytes)[match_count]) {
  847. match_count += 1;
  848. if (match_count == length) {
  849. found_size = i + 1;
  850. break;
  851. }
  852. } else {
  853. match_count = 0;
  854. }
  855. }
  856. return found_size;
  857. };
  858. [self _addConsumerWithScanner:consumer callback:dataHandler];
  859. }
  860. // Returns true if did work
  861. - (BOOL)_innerPumpScanner
  862. {
  863. BOOL didWork = NO;
  864. if (self.readyState >= RCTSR_CLOSING) {
  865. return didWork;
  866. }
  867. if (!_consumers.count) {
  868. return didWork;
  869. }
  870. size_t curSize = _readBuffer.length - _readBufferOffset;
  871. if (!curSize) {
  872. return didWork;
  873. }
  874. RCTSRIOConsumer *consumer = _consumers[0];
  875. size_t bytesNeeded = consumer.bytesNeeded;
  876. size_t foundSize = 0;
  877. if (consumer.consumer) {
  878. NSData *tempView = [NSData dataWithBytesNoCopy:(char *)_readBuffer.bytes + _readBufferOffset length:_readBuffer.length - _readBufferOffset freeWhenDone:NO];
  879. foundSize = consumer.consumer(tempView);
  880. } else {
  881. assert(consumer.bytesNeeded);
  882. if (curSize >= bytesNeeded) {
  883. foundSize = bytesNeeded;
  884. } else if (consumer.readToCurrentFrame) {
  885. foundSize = curSize;
  886. }
  887. }
  888. NSData *slice = nil;
  889. if (consumer.readToCurrentFrame || foundSize) {
  890. NSRange sliceRange = NSMakeRange(_readBufferOffset, foundSize);
  891. slice = [_readBuffer subdataWithRange:sliceRange];
  892. _readBufferOffset += foundSize;
  893. if (_readBufferOffset > 4096 && _readBufferOffset > (_readBuffer.length >> 1)) {
  894. _readBuffer = [[NSMutableData alloc] initWithBytes:(char *)_readBuffer.bytes + _readBufferOffset length:_readBuffer.length - _readBufferOffset]; _readBufferOffset = 0;
  895. }
  896. if (consumer.unmaskBytes) {
  897. NSMutableData *mutableSlice = [slice mutableCopy];
  898. NSUInteger len = mutableSlice.length;
  899. uint8_t *bytes = mutableSlice.mutableBytes;
  900. for (NSUInteger i = 0; i < len; i++) {
  901. bytes[i] = bytes[i] ^ _currentReadMaskKey[_currentReadMaskOffset % sizeof(_currentReadMaskKey)];
  902. _currentReadMaskOffset += 1;
  903. }
  904. slice = mutableSlice;
  905. }
  906. if (consumer.readToCurrentFrame) {
  907. [_currentFrameData appendData:slice];
  908. _readOpCount += 1;
  909. if (_currentFrameOpcode == RCTSROpCodeTextFrame) {
  910. // Validate UTF8 stuff.
  911. size_t currentDataSize = _currentFrameData.length;
  912. if (_currentFrameOpcode == RCTSROpCodeTextFrame && currentDataSize > 0) {
  913. // TODO: Optimize this. Don't really have to copy all the data each time
  914. size_t scanSize = currentDataSize - _currentStringScanPosition;
  915. NSData *scan_data = [_currentFrameData subdataWithRange:NSMakeRange(_currentStringScanPosition, scanSize)];
  916. int32_t valid_utf8_size = validate_dispatch_data_partial_string(scan_data);
  917. if (valid_utf8_size == -1) {
  918. [self closeWithCode:RCTSRStatusCodeInvalidUTF8 reason:@"Text frames must be valid UTF-8"];
  919. dispatch_async(_workQueue, ^{
  920. [self _disconnect];
  921. });
  922. return didWork;
  923. } else {
  924. _currentStringScanPosition += valid_utf8_size;
  925. }
  926. }
  927. }
  928. consumer.bytesNeeded -= foundSize;
  929. if (consumer.bytesNeeded == 0) {
  930. [_consumers removeObjectAtIndex:0];
  931. consumer.handler(self, nil);
  932. [_consumerPool returnConsumer:consumer];
  933. didWork = YES;
  934. }
  935. } else if (foundSize) {
  936. [_consumers removeObjectAtIndex:0];
  937. consumer.handler(self, slice);
  938. [_consumerPool returnConsumer:consumer];
  939. didWork = YES;
  940. }
  941. }
  942. return didWork;
  943. }
  944. - (void)_pumpScanner
  945. {
  946. [self assertOnWorkQueue];
  947. if (!_isPumping) {
  948. _isPumping = YES;
  949. } else {
  950. return;
  951. }
  952. while ([self _innerPumpScanner]) {}
  953. _isPumping = NO;
  954. }
  955. //#define NOMASK
  956. static const size_t RCTSRFrameHeaderOverhead = 32;
  957. - (void)_sendFrameWithOpcode:(RCTSROpCode)opcode data:(NSData *)data
  958. {
  959. [self assertOnWorkQueue];
  960. if (nil == data) {
  961. return;
  962. }
  963. size_t payloadLength = [data length];
  964. NSMutableData *frame = [[NSMutableData alloc] initWithLength:payloadLength + RCTSRFrameHeaderOverhead];
  965. if (!frame) {
  966. [self closeWithCode:RCTSRStatusCodeMessageTooBig reason:@"Message too big"];
  967. return;
  968. }
  969. uint8_t *frame_buffer = (uint8_t *)frame.mutableBytes;
  970. // set fin
  971. frame_buffer[0] = RCTSRFinMask | opcode;
  972. BOOL useMask = YES;
  973. #ifdef NOMASK
  974. useMask = NO;
  975. #endif
  976. if (useMask) {
  977. // set the mask and header
  978. frame_buffer[1] |= RCTSRMaskMask;
  979. }
  980. size_t frame_buffer_size = 2;
  981. const uint8_t *unmasked_payload = (uint8_t *)[data bytes];
  982. if (payloadLength < 126) {
  983. frame_buffer[1] |= payloadLength;
  984. } else if (payloadLength <= UINT16_MAX) {
  985. frame_buffer[1] |= 126;
  986. *((uint16_t *)(frame_buffer + frame_buffer_size)) = NSSwapBigShortToHost((uint16_t)payloadLength);
  987. frame_buffer_size += sizeof(uint16_t);
  988. } else {
  989. frame_buffer[1] |= 127;
  990. *((uint64_t *)(frame_buffer + frame_buffer_size)) = NSSwapBigLongLongToHost((uint64_t)payloadLength);
  991. frame_buffer_size += sizeof(uint64_t);
  992. }
  993. if (!useMask) {
  994. for (size_t i = 0; i < payloadLength; i++) {
  995. frame_buffer[frame_buffer_size] = unmasked_payload[i];
  996. frame_buffer_size += 1;
  997. }
  998. } else {
  999. uint8_t *mask_key = frame_buffer + frame_buffer_size;
  1000. int result __unused = SecRandomCopyBytes(kSecRandomDefault, sizeof(uint32_t), (uint8_t *)mask_key);
  1001. assert(result == 0);
  1002. frame_buffer_size += sizeof(uint32_t);
  1003. // TODO: could probably optimize this with SIMD
  1004. for (size_t i = 0; i < payloadLength; i++) {
  1005. frame_buffer[frame_buffer_size] = unmasked_payload[i] ^ mask_key[i % sizeof(uint32_t)];
  1006. frame_buffer_size += 1;
  1007. }
  1008. }
  1009. assert(frame_buffer_size <= [frame length]);
  1010. frame.length = frame_buffer_size;
  1011. [self _writeData:frame];
  1012. }
  1013. - (void)stream:(NSStream *)aStream handleEvent:(NSStreamEvent)eventCode
  1014. {
  1015. if (_secure && !_pinnedCertFound && (eventCode == NSStreamEventHasBytesAvailable || eventCode == NSStreamEventHasSpaceAvailable)) {
  1016. NSArray *sslCerts = _urlRequest.RCTSR_SSLPinnedCertificates;
  1017. if (sslCerts) {
  1018. SecTrustRef secTrust = (__bridge SecTrustRef)[aStream propertyForKey:(__bridge id)kCFStreamPropertySSLPeerTrust];
  1019. if (secTrust) {
  1020. NSInteger numCerts = SecTrustGetCertificateCount(secTrust);
  1021. for (NSInteger i = 0; i < numCerts && !_pinnedCertFound; i++) {
  1022. SecCertificateRef cert = SecTrustGetCertificateAtIndex(secTrust, i);
  1023. NSData *certData = CFBridgingRelease(SecCertificateCopyData(cert));
  1024. for (id ref in sslCerts) {
  1025. SecCertificateRef trustedCert = (__bridge SecCertificateRef)ref;
  1026. NSData *trustedCertData = CFBridgingRelease(SecCertificateCopyData(trustedCert));
  1027. if ([trustedCertData isEqualToData:certData]) {
  1028. _pinnedCertFound = YES;
  1029. break;
  1030. }
  1031. }
  1032. }
  1033. }
  1034. if (!_pinnedCertFound) {
  1035. dispatch_async(_workQueue, ^{
  1036. [self _failWithError:[NSError errorWithDomain:RCTSRWebSocketErrorDomain code:23556 userInfo:@{NSLocalizedDescriptionKey: [NSString stringWithFormat:@"Invalid server cert"]}]];
  1037. });
  1038. return;
  1039. }
  1040. }
  1041. }
  1042. // _workQueue cannot be NULL
  1043. if (!_workQueue) {
  1044. return;
  1045. }
  1046. __weak typeof(self) weakSelf = self;
  1047. dispatch_async(_workQueue, ^{
  1048. typeof(self) strongSelf = weakSelf;
  1049. if (!strongSelf) {
  1050. return;
  1051. }
  1052. [strongSelf safeHandleEvent:eventCode stream:aStream];
  1053. });
  1054. }
  1055. - (void)safeHandleEvent:(NSStreamEvent)eventCode stream:(NSStream *)aStream
  1056. {
  1057. switch (eventCode) {
  1058. case NSStreamEventOpenCompleted: {
  1059. RCTSRLog(@"NSStreamEventOpenCompleted %@", aStream);
  1060. if (self.readyState >= RCTSR_CLOSING) {
  1061. return;
  1062. }
  1063. assert(self->_readBuffer);
  1064. if (self.readyState == RCTSR_CONNECTING && aStream == self->_inputStream) {
  1065. [self didConnect];
  1066. }
  1067. [self _pumpWriting];
  1068. [self _pumpScanner];
  1069. break;
  1070. }
  1071. case NSStreamEventErrorOccurred: {
  1072. RCTSRLog(@"NSStreamEventErrorOccurred %@ %@", aStream, [aStream.streamError copy]);
  1073. // TODO: specify error better!
  1074. [self _failWithError:aStream.streamError];
  1075. self->_readBufferOffset = 0;
  1076. self->_readBuffer.length = 0;
  1077. break;
  1078. }
  1079. case NSStreamEventEndEncountered: {
  1080. [self _pumpScanner];
  1081. RCTSRLog(@"NSStreamEventEndEncountered %@", aStream);
  1082. if (aStream.streamError) {
  1083. [self _failWithError:aStream.streamError];
  1084. } else {
  1085. dispatch_async(self->_workQueue, ^{
  1086. if (self.readyState != RCTSR_CLOSED) {
  1087. self.readyState = RCTSR_CLOSED;
  1088. [self _scheduleCleanup];
  1089. }
  1090. if (!self->_sentClose && !self->_failed) {
  1091. self->_sentClose = YES;
  1092. // If we get closed in this state it's probably not clean because we should be sending this when we send messages
  1093. [self _performDelegateBlock:^{
  1094. if ([self.delegate respondsToSelector:@selector(webSocket:didCloseWithCode:reason:wasClean:)]) {
  1095. [self.delegate webSocket:self didCloseWithCode:RCTSRStatusCodeGoingAway reason:@"Stream end encountered" wasClean:NO];
  1096. }
  1097. }];
  1098. }
  1099. });
  1100. }
  1101. break;
  1102. }
  1103. case NSStreamEventHasBytesAvailable: {
  1104. RCTSRLog(@"NSStreamEventHasBytesAvailable %@", aStream);
  1105. const int bufferSize = 2048;
  1106. uint8_t buffer[bufferSize];
  1107. while (self->_inputStream.hasBytesAvailable) {
  1108. NSInteger bytes_read = [self->_inputStream read:buffer maxLength:bufferSize];
  1109. if (bytes_read > 0) {
  1110. [self->_readBuffer appendBytes:buffer length:bytes_read];
  1111. } else if (bytes_read < 0) {
  1112. [self _failWithError:self->_inputStream.streamError];
  1113. }
  1114. if (bytes_read != bufferSize) {
  1115. break;
  1116. }
  1117. };
  1118. [self _pumpScanner];
  1119. break;
  1120. }
  1121. case NSStreamEventHasSpaceAvailable: {
  1122. RCTSRLog(@"NSStreamEventHasSpaceAvailable %@", aStream);
  1123. [self _pumpWriting];
  1124. break;
  1125. }
  1126. default:
  1127. RCTSRLog(@"(default) %@", aStream);
  1128. break;
  1129. }
  1130. }
  1131. - (void)_scheduleCleanup
  1132. {
  1133. if (_cleanupScheduled) {
  1134. return;
  1135. }
  1136. _cleanupScheduled = YES;
  1137. // Cleanup NSStream's delegate in the same RunLoop used by the streams themselves:
  1138. // This way we'll prevent race conditions between handleEvent and SRWebsocket's dealloc
  1139. NSTimer *timer = [NSTimer timerWithTimeInterval:(0.0f) target:self selector:@selector(_cleanupSelfReference:) userInfo:nil repeats:NO];
  1140. [[NSRunLoop RCTSR_networkRunLoop] addTimer:timer forMode:NSDefaultRunLoopMode];
  1141. }
  1142. - (void)_cleanupSelfReference:(NSTimer *)timer
  1143. {
  1144. // Remove the streams, right now, from the networkRunLoop
  1145. [_inputStream close];
  1146. [_outputStream close];
  1147. // Unschedule from RunLoop
  1148. for (NSArray *runLoop in [_scheduledRunloops copy]) {
  1149. [self unscheduleFromRunLoop:runLoop[0] forMode:runLoop[1]];
  1150. }
  1151. // Nuke NSStream's delegate
  1152. _inputStream.delegate = nil;
  1153. _outputStream.delegate = nil;
  1154. // Cleanup selfRetain in the same GCD queue as usual
  1155. dispatch_async(_workQueue, ^{
  1156. self->_selfRetain = nil;
  1157. });
  1158. }
  1159. @end
  1160. @implementation RCTSRIOConsumer
  1161. - (void)setupWithScanner:(stream_scanner)scanner handler:(data_callback)handler bytesNeeded:(size_t)bytesNeeded readToCurrentFrame:(BOOL)readToCurrentFrame unmaskBytes:(BOOL)unmaskBytes
  1162. {
  1163. _consumer = [scanner copy];
  1164. _handler = [handler copy];
  1165. _bytesNeeded = bytesNeeded;
  1166. _readToCurrentFrame = readToCurrentFrame;
  1167. _unmaskBytes = unmaskBytes;
  1168. assert(_consumer || _bytesNeeded);
  1169. }
  1170. @end
  1171. @implementation RCTSRIOConsumerPool
  1172. {
  1173. NSUInteger _poolSize;
  1174. NSMutableArray<RCTSRIOConsumer *> *_bufferedConsumers;
  1175. }
  1176. - (instancetype)initWithBufferCapacity:(NSUInteger)poolSize
  1177. {
  1178. if ((self = [super init])) {
  1179. _poolSize = poolSize;
  1180. _bufferedConsumers = [[NSMutableArray alloc] initWithCapacity:poolSize];
  1181. }
  1182. return self;
  1183. }
  1184. - (instancetype)init
  1185. {
  1186. return [self initWithBufferCapacity:8];
  1187. }
  1188. - (RCTSRIOConsumer *)consumerWithScanner:(stream_scanner)scanner handler:(data_callback)handler bytesNeeded:(size_t)bytesNeeded readToCurrentFrame:(BOOL)readToCurrentFrame unmaskBytes:(BOOL)unmaskBytes
  1189. {
  1190. RCTSRIOConsumer *consumer = nil;
  1191. if (_bufferedConsumers.count) {
  1192. consumer = _bufferedConsumers.lastObject;
  1193. [_bufferedConsumers removeLastObject];
  1194. } else {
  1195. consumer = [RCTSRIOConsumer new];
  1196. }
  1197. [consumer setupWithScanner:scanner handler:handler bytesNeeded:bytesNeeded readToCurrentFrame:readToCurrentFrame unmaskBytes:unmaskBytes];
  1198. return consumer;
  1199. }
  1200. - (void)returnConsumer:(RCTSRIOConsumer *)consumer
  1201. {
  1202. if (_bufferedConsumers.count < _poolSize) {
  1203. [_bufferedConsumers addObject:consumer];
  1204. }
  1205. }
  1206. @end
  1207. @implementation NSURLRequest (CertificateAdditions)
  1208. - (NSArray *)RCTSR_SSLPinnedCertificates
  1209. {
  1210. return [NSURLProtocol propertyForKey:@"RCTSR_SSLPinnedCertificates" inRequest:self];
  1211. }
  1212. @end
  1213. @implementation NSMutableURLRequest (CertificateAdditions)
  1214. - (NSArray *)RCTSR_SSLPinnedCertificates
  1215. {
  1216. return [NSURLProtocol propertyForKey:@"RCTSR_SSLPinnedCertificates" inRequest:self];
  1217. }
  1218. - (void)setRCTSR_SSLPinnedCertificates:(NSArray *)RCTSR_SSLPinnedCertificates
  1219. {
  1220. [NSURLProtocol setProperty:RCTSR_SSLPinnedCertificates forKey:@"RCTSR_SSLPinnedCertificates" inRequest:self];
  1221. }
  1222. @end
  1223. @implementation NSURL (RCTSRWebSocket)
  1224. - (NSString *)RCTSR_origin
  1225. {
  1226. NSString *scheme = self.scheme.lowercaseString;
  1227. if ([scheme isEqualToString:@"wss"]) {
  1228. scheme = @"https";
  1229. } else if ([scheme isEqualToString:@"ws"]) {
  1230. scheme = @"http";
  1231. }
  1232. int defaultPort = ([scheme isEqualToString:@"https"] ? 443 :
  1233. [scheme isEqualToString:@"http"] ? 80 :
  1234. -1);
  1235. int port = self.port.intValue;
  1236. if (port > 0 && port != defaultPort) {
  1237. return [NSString stringWithFormat:@"%@://%@:%d", scheme, self.host, port];
  1238. } else {
  1239. return [NSString stringWithFormat:@"%@://%@", scheme, self.host];
  1240. }
  1241. }
  1242. @end
  1243. static _RCTSRRunLoopThread *networkThread = nil;
  1244. static NSRunLoop *networkRunLoop = nil;
  1245. @implementation NSRunLoop (RCTSRWebSocket)
  1246. + (NSRunLoop *)RCTSR_networkRunLoop
  1247. {
  1248. static dispatch_once_t onceToken;
  1249. dispatch_once(&onceToken, ^{
  1250. networkThread = [_RCTSRRunLoopThread new];
  1251. networkThread.name = @"com.squareup.SocketRocket.NetworkThread";
  1252. [networkThread start];
  1253. networkRunLoop = networkThread.runLoop;
  1254. });
  1255. return networkRunLoop;
  1256. }
  1257. @end
  1258. @implementation _RCTSRRunLoopThread
  1259. {
  1260. dispatch_group_t _waitGroup;
  1261. }
  1262. @synthesize runLoop = _runLoop;
  1263. - (instancetype)init
  1264. {
  1265. if ((self = [super init])) {
  1266. _waitGroup = dispatch_group_create();
  1267. dispatch_group_enter(_waitGroup);
  1268. }
  1269. return self;
  1270. }
  1271. - (void)main
  1272. {
  1273. @autoreleasepool {
  1274. _runLoop = [NSRunLoop currentRunLoop];
  1275. dispatch_group_leave(_waitGroup);
  1276. NSTimer *timer = [[NSTimer alloc] initWithFireDate:[NSDate distantFuture] interval:0.0 target:self selector:@selector(step) userInfo:nil repeats:NO];
  1277. [_runLoop addTimer:timer forMode:NSDefaultRunLoopMode];
  1278. while ([_runLoop runMode:NSDefaultRunLoopMode beforeDate:[NSDate distantFuture]]) { }
  1279. assert(NO);
  1280. }
  1281. }
  1282. - (void)step
  1283. {
  1284. // Does nothing
  1285. }
  1286. - (NSRunLoop *)runLoop
  1287. {
  1288. dispatch_group_wait(_waitGroup, DISPATCH_TIME_FOREVER);
  1289. return _runLoop;
  1290. }
  1291. @end