47 ai_hint.ai_socktype = SOCK_STREAM;
48 ai_hint.ai_protocol = IPPROTO_TCP;
50 ai_hint.ai_family = AF_UNSPEC;
57 ai_hint.ai_flags = allow_lookup ? AI_ADDRCONFIG : AI_NUMERICHOST;
59 addrinfo* ai_res{
nullptr};
60 const int n_err{getaddrinfo(
name.c_str(),
nullptr, &ai_hint, &ai_res)};
66 addrinfo* ai_trav{ai_res};
67 std::vector<CNetAddr> resolved_addresses;
68 while (ai_trav !=
nullptr) {
69 if (ai_trav->ai_family == AF_INET) {
70 assert(ai_trav->ai_addrlen >=
sizeof(sockaddr_in));
71 resolved_addresses.emplace_back(reinterpret_cast<sockaddr_in*>(ai_trav->ai_addr)->sin_addr);
73 if (ai_trav->ai_family == AF_INET6) {
74 assert(ai_trav->ai_addrlen >=
sizeof(sockaddr_in6));
75 const sockaddr_in6* s6{
reinterpret_cast<sockaddr_in6*
>(ai_trav->ai_addr)};
76 resolved_addresses.emplace_back(s6->sin6_addr, s6->sin6_scope_id);
78 ai_trav = ai_trav->ai_next;
82 return resolved_addresses;
88 std::string net =
ToLower(net_in);
93 LogPrintf(
"Warning: net name 'tor' is deprecated and will be removed in the future. You should use 'onion' instead.\n");
123 std::vector<std::string> names;
124 for (
int n = 0; n <
NET_MAX; ++n) {
129 if (append_unroutable) {
135 static bool LookupIntern(
const std::string&
name, std::vector<CNetAddr>& vIP,
unsigned int nMaxSolutions,
bool fAllowLookup,
DNSLookupFn dns_lookup_function)
157 for (
const CNetAddr& resolved : dns_lookup_function(
name, fAllowLookup)) {
158 if (nMaxSolutions > 0 && vIP.size() >= nMaxSolutions) {
162 if (!resolved.IsInternal()) {
163 vIP.push_back(resolved);
167 return (vIP.size() > 0);
170 bool LookupHost(
const std::string&
name, std::vector<CNetAddr>& vIP,
unsigned int nMaxSolutions,
bool fAllowLookup,
DNSLookupFn dns_lookup_function)
175 std::string strHost =
name;
178 if (strHost.front() ==
'[' && strHost.back() ==
']') {
179 strHost = strHost.substr(1, strHost.size() - 2);
182 return LookupIntern(strHost, vIP, nMaxSolutions, fAllowLookup, dns_lookup_function);
190 std::vector<CNetAddr> vIP;
198 bool Lookup(
const std::string&
name, std::vector<CService>& vAddr, uint16_t portDefault,
bool fAllowLookup,
unsigned int nMaxSolutions,
DNSLookupFn dns_lookup_function)
203 uint16_t port{portDefault};
204 std::string hostname;
207 std::vector<CNetAddr> vIP;
208 bool fRet =
LookupIntern(hostname, vIP, nMaxSolutions, fAllowLookup, dns_lookup_function);
211 vAddr.resize(vIP.size());
212 for (
unsigned int i = 0; i < vIP.size(); i++)
222 std::vector<CService> vService;
223 bool fRet =
Lookup(
name, vService, portDefault, fAllowLookup, 1, dns_lookup_function);
238 if(!
Lookup(
name, addr, portDefault,
false, dns_lookup_function))
313 int64_t endTime = curTime + timeout;
314 while (len > 0 && curTime < endTime) {
315 ssize_t
ret = sock.
Recv(data, len, 0);
319 }
else if (
ret == 0) {
326 const auto remaining = std::chrono::milliseconds{endTime - curTime};
327 const auto timeout = std::min(remaining, std::chrono::milliseconds{
MAX_WAIT_FOR_IO});
347 return "general failure";
349 return "connection not allowed";
351 return "network unreachable";
353 return "host unreachable";
355 return "connection refused";
357 return "TTL expired";
359 return "protocol error";
361 return "address type not supported";
371 if (strDest.size() > 255) {
372 return error(
"Hostname too long");
375 std::vector<uint8_t> vSocks5Init;
378 vSocks5Init.push_back(0x02);
382 vSocks5Init.push_back(0x01);
386 if (
ret != (ssize_t)vSocks5Init.size()) {
387 return error(
"Error sending to proxy");
391 LogPrintf(
"Socks5() connect to %s:%d failed: InterruptibleRecv() timeout or other failure\n", strDest, port);
395 return error(
"Proxy failed to initialize");
399 std::vector<uint8_t> vAuth;
400 vAuth.push_back(0x01);
402 return error(
"Proxy username or password too long");
403 vAuth.push_back(auth->
username.size());
405 vAuth.push_back(auth->
password.size());
408 if (
ret != (ssize_t)vAuth.size()) {
409 return error(
"Error sending authentication to proxy");
414 return error(
"Error reading proxy authentication response");
416 if (pchRetA[0] != 0x01 || pchRetA[1] != 0x00) {
417 return error(
"Proxy authentication unsuccessful");
422 return error(
"Proxy requested wrong authentication method %02x", pchRet1[1]);
424 std::vector<uint8_t> vSocks5;
427 vSocks5.push_back(0x00);
429 vSocks5.push_back(strDest.size());
430 vSocks5.insert(vSocks5.end(), strDest.begin(), strDest.end());
431 vSocks5.push_back((port >> 8) & 0xFF);
432 vSocks5.push_back((port >> 0) & 0xFF);
434 if (
ret != (ssize_t)vSocks5.size()) {
435 return error(
"Error sending to proxy");
445 return error(
"Error while reading proxy response");
449 return error(
"Proxy failed to accept request");
456 if (pchRet2[2] != 0x00) {
457 return error(
"Error: malformed proxy response");
459 uint8_t pchRet3[256];
468 return error(
"Error reading from proxy");
470 int nRecv = pchRet3[0];
474 default:
return error(
"Error: malformed proxy response");
477 return error(
"Error reading from proxy");
480 return error(
"Error reading from proxy");
489 struct sockaddr_storage sockaddr;
490 socklen_t len =
sizeof(sockaddr);
491 if (!address_family.
GetSockAddr((
struct sockaddr*)&sockaddr, &len)) {
492 LogPrintf(
"Cannot create socket for %s: unsupported network\n", address_family.
ToString());
497 SOCKET hSocket = socket(((
struct sockaddr*)&sockaddr)->sa_family, SOCK_STREAM, IPPROTO_TCP);
502 auto sock = std::make_unique<Sock>(hSocket);
507 LogPrintf(
"Cannot create connection: non-selectable socket created (fd >= FD_SETSIZE ?)\n");
515 if (sock->SetSockOpt(SOL_SOCKET, SO_NOSIGPIPE, (
void*)&
set,
sizeof(
int)) ==
SOCKET_ERROR) {
516 LogPrintf(
"Error setting SO_NOSIGPIPE on socket: %s, continuing anyway\n",
523 if (sock->SetSockOpt(IPPROTO_TCP, TCP_NODELAY, &on,
sizeof(on)) ==
SOCKET_ERROR) {
524 LogPrint(
BCLog::NET,
"Unable to set TCP_NODELAY on a newly created socket, continuing anyway\n");
537 template<
typename... Args>
540 if (manual_connection) {
550 struct sockaddr_storage sockaddr;
551 socklen_t len =
sizeof(sockaddr);
556 if (!addrConnect.
GetSockAddr((
struct sockaddr*)&sockaddr, &len)) {
557 LogPrintf(
"Cannot connect to %s: unsupported network\n", addrConnect.
ToString());
572 if (!sock.
Wait(std::chrono::milliseconds{nTimeout}, requested, &occurred)) {
573 LogPrintf(
"wait for connect to %s failed: %s\n",
577 }
else if (occurred == 0) {
587 socklen_t sockerr_len =
sizeof(sockerr);
595 "connect() to %s failed after wait: %s",
619 proxyInfo[net] = addrProxy;
626 if (!proxyInfo[net].IsValid())
628 proxyInfoOut = proxyInfo[net];
636 nameProxy = addrProxy;
642 if(!nameProxy.IsValid())
644 nameProxyOut = nameProxy;
650 return nameProxy.IsValid();
655 for (
int i = 0; i <
NET_MAX; i++) {
656 if (addr == static_cast<CNetAddr>(proxyInfo[i].proxy))
662 bool ConnectThroughProxy(
const Proxy& proxy,
const std::string& strDest, uint16_t port,
const Sock& sock,
int nTimeout,
bool& outProxyConnectionFailed)
666 outProxyConnectionFailed =
true;
672 static std::atomic_int counter(0);
674 if (!
Socks5(strDest, port, &random_auth, sock)) {
678 if (!
Socks5(strDest, port,
nullptr, sock)) {
691 const size_t slash_pos{subnet_str.find_last_of(
'/')};
692 const std::string str_addr{subnet_str.substr(0, slash_pos)};
696 if (slash_pos != subnet_str.npos) {
697 const std::string netmask_str{subnet_str.substr(slash_pos + 1)};
701 subnet_out =
CSubNet{addr, netmask};
706 if (
LookupHost(netmask_str, full_netmask,
false)) {
707 subnet_out =
CSubNet{addr, full_netmask};
724 if (ioctlsocket(hSocket, FIONBIO, &nOne) ==
SOCKET_ERROR) {
726 int fFlags = fcntl(hSocket, F_GETFL, 0);
727 if (fcntl(hSocket, F_SETFL, fFlags | O_NONBLOCK) ==
SOCKET_ERROR) {
bool Socks5(const std::string &strDest, uint16_t port, const ProxyCredentials *auth, const Sock &sock)
Connect to a specified destination service through an already connected SOCKS5 proxy.
SOCKS5Reply
Values defined for REP in RFC1928.
int g_socks5_recv_timeout
#define LogPrint(category,...)
A set of addresses that represent the hash of a string or FQDN.
Dummy value to indicate the number of NET_* constants.
static bool IsSelectableSocket(const SOCKET &s)
bool randomize_credentials
int64_t GetTimeMillis()
Returns the system time (not mockable)
static void LogConnectFailure(bool manual_connection, const char *fmt, const Args &... args)
bool GetProxy(enum Network net, Proxy &proxyInfoOut)
bool ConnectThroughProxy(const Proxy &proxy, const std::string &strDest, uint16_t port, const Sock &sock, int nTimeout, bool &outProxyConnectionFailed)
Connect to a specified destination service through a SOCKS5 proxy by first connecting to the SOCKS5 p...
bool LookupHost(const std::string &name, std::vector< CNetAddr > &vIP, unsigned int nMaxSolutions, bool fAllowLookup, DNSLookupFn dns_lookup_function)
Resolve a host string to its corresponding network addresses.
bool SetProxy(enum Network net, const Proxy &addrProxy)
bool SetSpecial(const std::string &addr)
Parse a Tor or I2P address and set this object to it.
CService LookupNumeric(const std::string &name, uint16_t portDefault, DNSLookupFn dns_lookup_function)
Resolve a service string with a numeric IP to its first corresponding service.
virtual ssize_t Recv(void *buf, size_t len, int flags) const
recv(2) wrapper.
bool Lookup(const std::string &name, std::vector< CService > &vAddr, uint16_t portDefault, bool fAllowLookup, unsigned int nMaxSolutions, DNSLookupFn dns_lookup_function)
Resolve a service string to its corresponding service.
#define WSAGetLastError()
virtual bool Wait(std::chrono::milliseconds timeout, Event requested, Event *occurred=nullptr) const
Wait for readiness for input (recv) or output (send).
std::unique_ptr< Sock > CreateSockTCP(const CService &address_family)
Create a TCP socket in the given address family.
No authentication required.
SOCKS5Command
Values defined for CMD in RFC1928.
static constexpr Event SEND
If passed to Wait(), then it will wait for readiness to send to the socket.
static Proxy proxyInfo [NET_MAX] GUARDED_BY(g_proxyinfo_mutex)
bool SetSocketNonBlocking(const SOCKET &hSocket)
Enable non-blocking mode for a socket.
virtual int GetSockOpt(int level, int opt_name, void *opt_val, socklen_t *opt_len) const
getsockopt(2) wrapper.
bool IsBadPort(uint16_t port)
Determine if a port is "bad" from the perspective of attempting to connect to a node on that port...
bool ContainsNoNUL(std::string_view str) noexcept
Check if a string does not contain any embedded NUL (\0) characters.
bool ConnectSocketDirectly(const CService &addrConnect, const Sock &sock, int nTimeout, bool manual_connection)
Try to connect to the specified service on the specified socket.
std::vector< CNetAddr > WrappedGetAddrInfo(const std::string &name, bool allow_lookup)
Wrapper for getaddrinfo(3).
bool GetSockAddr(struct sockaddr *paddr, socklen_t *addrlen) const
Obtain the IPv4/6 socket address this represents.
virtual ssize_t Send(const void *data, size_t len, int flags) const
send(2) wrapper.
A combination of a network address (CNetAddr) and a (TCP) port.
bool SetNameProxy(const Proxy &addrProxy)
Set the name proxy to use for all connections to nodes specified by a hostname.
Credentials for proxy authentication.
IntrRecvError
Status codes that can be returned by InterruptibleRecv.
bool IsProxy(const CNetAddr &addr)
SOCKSVersion
SOCKS version.
bool ParseUInt8(std::string_view str, uint8_t *out)
Convert decimal string to unsigned 8-bit integer with strict parse error feedback.
static std::atomic< bool > interruptSocks5Recv(false)
static const int DEFAULT_NAME_LOOKUP
-dns default
std::string NetworkErrorString(int err)
Return readable error string for a network error code.
static std::string Socks5ErrorString(uint8_t err)
Convert SOCKS5 reply to an error message.
std::vector< std::string > GetNetworkNames(bool append_unroutable)
Return a vector of publicly routable Network names; optionally append NET_UNROUTABLE.
SOCKS5Method
Values defined for METHOD in RFC1928.
enum Network ParseNetwork(const std::string &net_in)
std::string ToLower(std::string_view str)
Returns the lowercase equivalent of the given string.
bool GetNameProxy(Proxy &nameProxyOut)
static IntrRecvError InterruptibleRecv(uint8_t *data, size_t len, int timeout, const Sock &sock)
Try to read a specified number of bytes from a socket.
static constexpr Event RECV
If passed to Wait(), then it will wait for readiness to read from the socket.
std::function< std::vector< CNetAddr >(const std::string &, bool)> DNSLookupFn
virtual SOCKET Get() const
Get the value of the contained socket.
static const int DEFAULT_CONNECT_TIMEOUT
-timeout default
bool LookupSubNet(const std::string &subnet_str, CSubNet &subnet_out)
Parse and resolve a specified subnet string into the appropriate internal representation.
void InterruptSocks5(bool interrupt)
std::string ToString() const
RAII helper class that manages a socket.
std::function< std::unique_ptr< Sock >const CService &)> CreateSock
Socket factory.
Address type not supported.
Connection not allowed by ruleset.
Different type to mark Mutex at global scope.
std::string GetNetworkName(enum Network net)
static GlobalMutex g_proxyinfo_mutex
SOCKS5Atyp
Values defined for ATYPE in RFC1928.
bool error(const char *fmt, const Args &... args)
static bool LookupIntern(const std::string &name, std::vector< CNetAddr > &vIP, unsigned int nMaxSolutions, bool fAllowLookup, DNSLookupFn dns_lookup_function)
virtual int Connect(const sockaddr *addr, socklen_t addr_len) const
connect(2) wrapper.
static constexpr auto MAX_WAIT_FOR_IO
Maximum time to wait for I/O readiness.
Addresses from these networks are not publicly routable on the global Internet.
void SplitHostPort(std::string_view in, uint16_t &portOut, std::string &hostOut)