2006-04-23 18:26:03 +00:00
|
|
|
/*
|
|
|
|
* SSH port forwarding.
|
|
|
|
*/
|
|
|
|
|
2001-08-08 20:53:27 +00:00
|
|
|
#include <stdio.h>
|
|
|
|
#include <stdlib.h>
|
|
|
|
|
|
|
|
#include "putty.h"
|
|
|
|
#include "ssh.h"
|
|
|
|
|
|
|
|
#ifndef FALSE
|
|
|
|
#define FALSE 0
|
|
|
|
#endif
|
|
|
|
#ifndef TRUE
|
|
|
|
#define TRUE 1
|
|
|
|
#endif
|
|
|
|
|
|
|
|
struct PFwdPrivate {
|
2003-01-14 18:43:45 +00:00
|
|
|
const struct plug_function_table *fn;
|
2001-08-08 20:53:27 +00:00
|
|
|
/* the above variable absolutely *must* be the first in this structure */
|
|
|
|
void *c; /* (channel) data used by ssh.c */
|
2002-10-26 10:33:59 +00:00
|
|
|
void *backhandle; /* instance of SSH backend itself */
|
|
|
|
/* Note that backhandle need not be filled in if c is non-NULL */
|
2001-08-08 20:53:27 +00:00
|
|
|
Socket s;
|
2001-08-25 17:09:23 +00:00
|
|
|
int throttled, throttle_override;
|
2001-08-08 20:53:27 +00:00
|
|
|
int ready;
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* `dynamic' does double duty. It's set to 0 for an ordinary
|
|
|
|
* forwarded port, and nonzero for SOCKS-style dynamic port
|
|
|
|
* forwarding; but it also represents the state of the SOCKS
|
|
|
|
* exchange.
|
|
|
|
*/
|
|
|
|
int dynamic;
|
|
|
|
/*
|
|
|
|
* `hostname' and `port' are the real hostname and port, once
|
2013-07-11 17:23:56 +00:00
|
|
|
* we know what we're connecting to.
|
2003-04-05 11:45:21 +00:00
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
char *hostname;
|
2003-04-05 11:45:21 +00:00
|
|
|
int port;
|
2013-07-11 17:23:56 +00:00
|
|
|
/*
|
|
|
|
* `socksbuf' is the buffer we use to accumulate a SOCKS request.
|
|
|
|
*/
|
|
|
|
char *socksbuf;
|
|
|
|
int sockslen, sockssize;
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* When doing dynamic port forwarding, we can receive
|
|
|
|
* connection data before we are actually able to send it; so
|
|
|
|
* we may have to temporarily hold some in a dynamically
|
|
|
|
* allocated buffer here.
|
|
|
|
*/
|
|
|
|
void *buffer;
|
|
|
|
int buflen;
|
2001-08-08 20:53:27 +00:00
|
|
|
};
|
|
|
|
|
2013-07-11 17:23:56 +00:00
|
|
|
static struct PFwdPrivate *new_portfwd_private(void)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr = snew(struct PFwdPrivate);
|
|
|
|
pr->hostname = NULL;
|
|
|
|
pr->socksbuf = NULL;
|
|
|
|
pr->sockslen = pr->sockssize = 0;
|
|
|
|
pr->buffer = NULL;
|
|
|
|
return pr;
|
|
|
|
}
|
|
|
|
|
|
|
|
static void free_portfwd_private(struct PFwdPrivate *pr)
|
|
|
|
{
|
|
|
|
if (!pr)
|
|
|
|
return;
|
|
|
|
sfree(pr->hostname);
|
|
|
|
sfree(pr->socksbuf);
|
|
|
|
sfree(pr->buffer);
|
|
|
|
sfree(pr);
|
|
|
|
}
|
|
|
|
|
2005-01-16 14:29:34 +00:00
|
|
|
static void pfd_log(Plug plug, int type, SockAddr addr, int port,
|
|
|
|
const char *error_msg, int error_code)
|
|
|
|
{
|
|
|
|
/* we have to dump these since we have no interface to logging.c */
|
|
|
|
}
|
|
|
|
|
2003-05-04 14:18:18 +00:00
|
|
|
static int pfd_closing(Plug plug, const char *error_msg, int error_code,
|
2001-08-08 20:53:27 +00:00
|
|
|
int calling_back)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr = (struct PFwdPrivate *) plug;
|
|
|
|
|
2011-12-08 19:15:58 +00:00
|
|
|
if (error_msg) {
|
|
|
|
/*
|
|
|
|
* Socket error. Slam the connection instantly shut.
|
|
|
|
*/
|
|
|
|
sshfwd_unclean_close(pr->c);
|
|
|
|
} else {
|
|
|
|
/*
|
|
|
|
* Ordinary EOF received on socket. Send an EOF on the SSH
|
|
|
|
* channel.
|
|
|
|
*/
|
|
|
|
if (pr->c)
|
|
|
|
sshfwd_write_eof(pr->c);
|
|
|
|
}
|
2011-09-13 11:44:03 +00:00
|
|
|
|
2001-08-08 20:53:27 +00:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
|
|
|
static int pfd_receive(Plug plug, int urgent, char *data, int len)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr = (struct PFwdPrivate *) plug;
|
2003-04-05 11:45:21 +00:00
|
|
|
if (pr->dynamic) {
|
|
|
|
while (len--) {
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->sockslen >= pr->sockssize) {
|
|
|
|
pr->sockssize = pr->sockslen * 5 / 4 + 256;
|
|
|
|
pr->socksbuf = sresize(pr->socksbuf, pr->sockssize, char);
|
2003-04-05 11:45:21 +00:00
|
|
|
}
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->socksbuf[pr->sockslen++] = *data++;
|
2003-04-05 11:45:21 +00:00
|
|
|
|
|
|
|
/*
|
|
|
|
* Now check what's in the buffer to see if it's a
|
|
|
|
* valid and complete message in the SOCKS exchange.
|
|
|
|
*/
|
|
|
|
if ((pr->dynamic == 1 || (pr->dynamic >> 12) == 4) &&
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->socksbuf[0] == 4) {
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* SOCKS 4.
|
|
|
|
*/
|
|
|
|
if (pr->dynamic == 1)
|
|
|
|
pr->dynamic = 0x4000;
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->sockslen < 2)
|
|
|
|
continue; /* don't have command code yet */
|
|
|
|
if (pr->socksbuf[1] != 1) {
|
2003-10-10 22:58:53 +00:00
|
|
|
/* Not CONNECT. */
|
2003-04-05 11:45:21 +00:00
|
|
|
/* Send back a SOCKS 4 error before closing. */
|
|
|
|
char data[8];
|
|
|
|
memset(data, 0, sizeof(data));
|
|
|
|
data[1] = 91; /* generic `request rejected' */
|
|
|
|
sk_write(pr->s, data, 8);
|
|
|
|
pfd_close(pr->s);
|
|
|
|
return 1;
|
|
|
|
}
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->sockslen <= 8)
|
|
|
|
continue; /* haven't started user/hostname */
|
|
|
|
if (pr->socksbuf[pr->sockslen-1] != 0)
|
2003-10-10 22:58:53 +00:00
|
|
|
continue; /* haven't _finished_ user/hostname */
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* Now we have a full SOCKS 4 request. Check it to
|
|
|
|
* see if it's a SOCKS 4A request.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->socksbuf[4] == 0 && pr->socksbuf[5] == 0 &&
|
|
|
|
pr->socksbuf[6] == 0 && pr->socksbuf[7] != 0) {
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* It's SOCKS 4A. So if we haven't yet
|
|
|
|
* collected the host name, we should continue
|
|
|
|
* waiting for data in order to do so; if we
|
|
|
|
* have, we can go ahead.
|
|
|
|
*/
|
|
|
|
int len;
|
|
|
|
if (pr->dynamic == 0x4000) {
|
|
|
|
pr->dynamic = 0x4001;
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->sockslen = 8; /* reset buffer to overwrite name */
|
2003-04-05 11:45:21 +00:00
|
|
|
continue;
|
|
|
|
}
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->socksbuf[0] = 0; /* reply version code */
|
|
|
|
pr->socksbuf[1] = 90; /* request granted */
|
|
|
|
sk_write(pr->s, pr->socksbuf, 8);
|
|
|
|
len = pr->sockslen - 8;
|
|
|
|
pr->port = GET_16BIT_MSB_FIRST(pr->socksbuf+2);
|
|
|
|
pr->hostname = snewn(len+1, char);
|
|
|
|
pr->hostname[len] = '\0';
|
|
|
|
memcpy(pr->hostname, pr->socksbuf + 8, len);
|
2003-04-05 11:45:21 +00:00
|
|
|
goto connect;
|
|
|
|
} else {
|
|
|
|
/*
|
|
|
|
* It's SOCKS 4, which means we should format
|
|
|
|
* the IP address into the hostname string and
|
|
|
|
* then just go.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->socksbuf[0] = 0; /* reply version code */
|
|
|
|
pr->socksbuf[1] = 90; /* request granted */
|
|
|
|
sk_write(pr->s, pr->socksbuf, 8);
|
|
|
|
pr->port = GET_16BIT_MSB_FIRST(pr->socksbuf+2);
|
|
|
|
pr->hostname = dupprintf("%d.%d.%d.%d",
|
|
|
|
(unsigned char)pr->socksbuf[4],
|
|
|
|
(unsigned char)pr->socksbuf[5],
|
|
|
|
(unsigned char)pr->socksbuf[6],
|
|
|
|
(unsigned char)pr->socksbuf[7]);
|
2003-04-05 11:45:21 +00:00
|
|
|
goto connect;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
if ((pr->dynamic == 1 || (pr->dynamic >> 12) == 5) &&
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->socksbuf[0] == 5) {
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* SOCKS 5.
|
|
|
|
*/
|
|
|
|
if (pr->dynamic == 1)
|
|
|
|
pr->dynamic = 0x5000;
|
|
|
|
|
|
|
|
if (pr->dynamic == 0x5000) {
|
|
|
|
int i, method;
|
|
|
|
char data[2];
|
|
|
|
/*
|
|
|
|
* We're receiving a set of method identifiers.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->sockslen < 2)
|
|
|
|
continue; /* no method count yet */
|
|
|
|
if (pr->sockslen < 2 + (unsigned char)pr->socksbuf[1])
|
2003-04-05 11:45:21 +00:00
|
|
|
continue; /* no methods yet */
|
|
|
|
method = 0xFF; /* invalid */
|
2013-07-11 17:23:56 +00:00
|
|
|
for (i = 0; i < (unsigned char)pr->socksbuf[1]; i++)
|
|
|
|
if (pr->socksbuf[2+i] == 0) {
|
2003-04-05 11:45:21 +00:00
|
|
|
method = 0;/* no auth */
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
data[0] = 5;
|
|
|
|
data[1] = method;
|
|
|
|
sk_write(pr->s, data, 2);
|
|
|
|
pr->dynamic = 0x5001;
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->sockslen = 0; /* re-empty the buffer */
|
2003-04-05 11:45:21 +00:00
|
|
|
continue;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (pr->dynamic == 0x5001) {
|
2003-10-10 21:20:01 +00:00
|
|
|
/*
|
|
|
|
* We're receiving a SOCKS request.
|
|
|
|
*/
|
|
|
|
unsigned char reply[10]; /* SOCKS5 atyp=1 reply */
|
2003-04-12 21:15:43 +00:00
|
|
|
int atype, alen = 0;
|
2003-10-10 21:20:01 +00:00
|
|
|
|
|
|
|
/*
|
|
|
|
* Pre-fill reply packet.
|
|
|
|
* In all cases, we set BND.{HOST,ADDR} to 0.0.0.0:0
|
|
|
|
* (atyp=1) in the reply; if we succeed, we don't know
|
|
|
|
* the right answers, and if we fail, they should be
|
|
|
|
* ignored.
|
|
|
|
*/
|
|
|
|
memset(reply, 0, lenof(reply));
|
|
|
|
reply[0] = 5; /* VER */
|
|
|
|
reply[3] = 1; /* ATYP = 1 (IPv4, 0.0.0.0:0) */
|
|
|
|
|
2013-07-11 17:23:56 +00:00
|
|
|
if (pr->sockslen < 6) continue;
|
|
|
|
atype = (unsigned char)pr->socksbuf[3];
|
2003-04-05 11:45:21 +00:00
|
|
|
if (atype == 1) /* IPv4 address */
|
|
|
|
alen = 4;
|
|
|
|
if (atype == 4) /* IPv6 address */
|
|
|
|
alen = 16;
|
|
|
|
if (atype == 3) /* domain name has leading length */
|
2013-07-11 17:23:56 +00:00
|
|
|
alen = 1 + (unsigned char)pr->socksbuf[4];
|
|
|
|
if (pr->sockslen < 6 + alen) continue;
|
|
|
|
if (pr->socksbuf[1] != 1 || pr->socksbuf[2] != 0) {
|
2003-10-10 21:20:01 +00:00
|
|
|
/* Not CONNECT or reserved field nonzero - error */
|
|
|
|
reply[1] = 1; /* generic failure */
|
2004-01-21 19:45:44 +00:00
|
|
|
sk_write(pr->s, (char *) reply, lenof(reply));
|
2003-04-05 11:45:21 +00:00
|
|
|
pfd_close(pr->s);
|
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
/*
|
|
|
|
* Now we have a viable connect request. Switch
|
|
|
|
* on atype.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->port = GET_16BIT_MSB_FIRST(pr->socksbuf+4+alen);
|
2003-04-05 11:45:21 +00:00
|
|
|
if (atype == 1) {
|
2003-10-10 21:20:01 +00:00
|
|
|
/* REP=0 (success) already */
|
2004-01-21 19:45:44 +00:00
|
|
|
sk_write(pr->s, (char *) reply, lenof(reply));
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->hostname = dupprintf("%d.%d.%d.%d",
|
|
|
|
(unsigned char)pr->socksbuf[4],
|
|
|
|
(unsigned char)pr->socksbuf[5],
|
|
|
|
(unsigned char)pr->socksbuf[6],
|
|
|
|
(unsigned char)pr->socksbuf[7]);
|
2003-04-05 11:45:21 +00:00
|
|
|
goto connect;
|
|
|
|
} else if (atype == 3) {
|
2003-10-10 21:20:01 +00:00
|
|
|
/* REP=0 (success) already */
|
2004-01-21 19:45:44 +00:00
|
|
|
sk_write(pr->s, (char *) reply, lenof(reply));
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->hostname = snewn(alen, char);
|
2003-04-05 11:45:21 +00:00
|
|
|
pr->hostname[alen-1] = '\0';
|
2013-07-11 17:23:56 +00:00
|
|
|
memcpy(pr->hostname, pr->socksbuf + 5, alen-1);
|
2003-04-05 11:45:21 +00:00
|
|
|
goto connect;
|
|
|
|
} else {
|
|
|
|
/*
|
|
|
|
* Unknown address type. (FIXME: support IPv6!)
|
|
|
|
*/
|
2003-10-10 21:20:01 +00:00
|
|
|
reply[1] = 8; /* atype not supported */
|
2004-01-21 19:45:44 +00:00
|
|
|
sk_write(pr->s, (char *) reply, lenof(reply));
|
2003-04-05 11:45:21 +00:00
|
|
|
pfd_close(pr->s);
|
2004-01-21 19:45:44 +00:00
|
|
|
return 1;
|
2003-04-05 11:45:21 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2004-01-21 19:45:44 +00:00
|
|
|
|
2003-04-05 11:45:21 +00:00
|
|
|
/*
|
|
|
|
* If we get here without either having done `continue'
|
|
|
|
* or `goto connect', it must be because there is no
|
|
|
|
* sensible interpretation of what's in our buffer. So
|
|
|
|
* close the connection rudely.
|
|
|
|
*/
|
|
|
|
pfd_close(pr->s);
|
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
return 1;
|
|
|
|
|
|
|
|
/*
|
|
|
|
* We come here when we're ready to make an actual
|
|
|
|
* connection.
|
|
|
|
*/
|
|
|
|
connect:
|
2013-07-11 17:23:56 +00:00
|
|
|
sfree(pr->socksbuf);
|
|
|
|
pr->socksbuf = NULL;
|
2003-04-05 11:45:21 +00:00
|
|
|
|
2009-04-23 17:33:42 +00:00
|
|
|
/*
|
|
|
|
* Freeze the socket until the SSH server confirms the
|
|
|
|
* connection.
|
|
|
|
*/
|
|
|
|
sk_set_frozen(pr->s, 1);
|
|
|
|
|
2003-04-05 11:45:21 +00:00
|
|
|
pr->c = new_sock_channel(pr->backhandle, pr->s);
|
|
|
|
if (pr->c == NULL) {
|
|
|
|
pfd_close(pr->s);
|
|
|
|
return 1;
|
|
|
|
} else {
|
|
|
|
/* asks to forward to the specified host/port for this */
|
|
|
|
ssh_send_port_open(pr->c, pr->hostname, pr->port, "forwarding");
|
|
|
|
}
|
|
|
|
pr->dynamic = 0;
|
|
|
|
|
|
|
|
/*
|
|
|
|
* If there's any data remaining in our current buffer,
|
|
|
|
* save it to be sent on pfd_confirm().
|
|
|
|
*/
|
|
|
|
if (len > 0) {
|
|
|
|
pr->buffer = snewn(len, char);
|
|
|
|
memcpy(pr->buffer, data, len);
|
|
|
|
pr->buflen = len;
|
|
|
|
}
|
|
|
|
}
|
2001-08-25 17:09:23 +00:00
|
|
|
if (pr->ready) {
|
|
|
|
if (sshfwd_write(pr->c, data, len) > 0) {
|
|
|
|
pr->throttled = 1;
|
|
|
|
sk_set_frozen(pr->s, 1);
|
|
|
|
}
|
|
|
|
}
|
2001-08-08 20:53:27 +00:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
2001-08-25 17:09:23 +00:00
|
|
|
static void pfd_sent(Plug plug, int bufsize)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr = (struct PFwdPrivate *) plug;
|
|
|
|
|
2003-04-05 11:45:21 +00:00
|
|
|
if (pr->c)
|
|
|
|
sshfwd_unthrottle(pr->c, bufsize);
|
2001-08-25 17:09:23 +00:00
|
|
|
}
|
|
|
|
|
2001-08-08 20:53:27 +00:00
|
|
|
/*
|
|
|
|
* Called when receiving a PORT OPEN from the server
|
|
|
|
*/
|
2003-05-04 14:18:18 +00:00
|
|
|
const char *pfd_newconnect(Socket *s, char *hostname, int port,
|
Post-release destabilisation! Completely remove the struct type
'Config' in putty.h, which stores all PuTTY's settings and includes an
arbitrary length limit on every single one of those settings which is
stored in string form. In place of it is 'Conf', an opaque data type
everywhere outside the new file conf.c, which stores a list of (key,
value) pairs in which every key contains an integer identifying a
configuration setting, and for some of those integers the key also
contains extra parts (so that, for instance, CONF_environmt is a
string-to-string mapping). Everywhere that a Config was previously
used, a Conf is now; everywhere there was a Config structure copy,
conf_copy() is called; every lookup, adjustment, load and save
operation on a Config has been rewritten; and there's a mechanism for
serialising a Conf into a binary blob and back for use with Duplicate
Session.
User-visible effects of this change _should_ be minimal, though I
don't doubt I've introduced one or two bugs here and there which will
eventually be found. The _intended_ visible effects of this change are
that all arbitrary limits on configuration strings and lists (e.g.
limit on number of port forwardings) should now disappear; that list
boxes in the configuration will now be displayed in a sorted order
rather than the arbitrary order in which they were added to the list
(since the underlying data structure is now a sorted tree234 rather
than an ad-hoc comma-separated string); and one more specific change,
which is that local and dynamic port forwardings on the same port
number are now mutually exclusive in the configuration (putting 'D' in
the key rather than the value was a mistake in the first place).
One other reorganisation as a result of this is that I've moved all
the dialog.c standard handlers (dlg_stdeditbox_handler and friends)
out into config.c, because I can't really justify calling them generic
any more. When they took a pointer to an arbitrary structure type and
the offset of a field within that structure, they were independent of
whether that structure was a Config or something completely different,
but now they really do expect to talk to a Conf, which can _only_ be
used for PuTTY configuration, so I've renamed them all things like
conf_editbox_handler and moved them out of the nominally independent
dialog-box management module into the PuTTY-specific config.c.
[originally from svn r9214]
2011-07-14 18:52:21 +00:00
|
|
|
void *c, Conf *conf, int addressfamily)
|
2001-08-08 20:53:27 +00:00
|
|
|
{
|
2003-01-14 18:43:45 +00:00
|
|
|
static const struct plug_function_table fn_table = {
|
2005-01-16 14:29:34 +00:00
|
|
|
pfd_log,
|
2001-08-08 20:53:27 +00:00
|
|
|
pfd_closing,
|
|
|
|
pfd_receive,
|
2001-08-25 17:09:23 +00:00
|
|
|
pfd_sent,
|
2001-08-08 20:53:27 +00:00
|
|
|
NULL
|
|
|
|
};
|
|
|
|
|
|
|
|
SockAddr addr;
|
2003-05-04 14:18:18 +00:00
|
|
|
const char *err;
|
|
|
|
char *dummy_realhost;
|
2001-08-08 20:53:27 +00:00
|
|
|
struct PFwdPrivate *pr;
|
|
|
|
|
|
|
|
/*
|
|
|
|
* Try to find host.
|
|
|
|
*/
|
Post-release destabilisation! Completely remove the struct type
'Config' in putty.h, which stores all PuTTY's settings and includes an
arbitrary length limit on every single one of those settings which is
stored in string form. In place of it is 'Conf', an opaque data type
everywhere outside the new file conf.c, which stores a list of (key,
value) pairs in which every key contains an integer identifying a
configuration setting, and for some of those integers the key also
contains extra parts (so that, for instance, CONF_environmt is a
string-to-string mapping). Everywhere that a Config was previously
used, a Conf is now; everywhere there was a Config structure copy,
conf_copy() is called; every lookup, adjustment, load and save
operation on a Config has been rewritten; and there's a mechanism for
serialising a Conf into a binary blob and back for use with Duplicate
Session.
User-visible effects of this change _should_ be minimal, though I
don't doubt I've introduced one or two bugs here and there which will
eventually be found. The _intended_ visible effects of this change are
that all arbitrary limits on configuration strings and lists (e.g.
limit on number of port forwardings) should now disappear; that list
boxes in the configuration will now be displayed in a sorted order
rather than the arbitrary order in which they were added to the list
(since the underlying data structure is now a sorted tree234 rather
than an ad-hoc comma-separated string); and one more specific change,
which is that local and dynamic port forwardings on the same port
number are now mutually exclusive in the configuration (putting 'D' in
the key rather than the value was a mistake in the first place).
One other reorganisation as a result of this is that I've moved all
the dialog.c standard handlers (dlg_stdeditbox_handler and friends)
out into config.c, because I can't really justify calling them generic
any more. When they took a pointer to an arbitrary structure type and
the offset of a field within that structure, they were independent of
whether that structure was a Config or something completely different,
but now they really do expect to talk to a Conf, which can _only_ be
used for PuTTY configuration, so I've renamed them all things like
conf_editbox_handler and moved them out of the nominally independent
dialog-box management module into the PuTTY-specific config.c.
[originally from svn r9214]
2011-07-14 18:52:21 +00:00
|
|
|
addr = name_lookup(hostname, port, &dummy_realhost, conf, addressfamily);
|
2003-08-07 16:04:33 +00:00
|
|
|
if ((err = sk_addr_error(addr)) != NULL) {
|
|
|
|
sk_addr_free(addr);
|
2013-07-21 07:40:26 +00:00
|
|
|
sfree(dummy_realhost);
|
2001-08-08 20:53:27 +00:00
|
|
|
return err;
|
2003-08-07 16:04:33 +00:00
|
|
|
}
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
/*
|
|
|
|
* Open socket.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
pr = new_portfwd_private();
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->fn = &fn_table;
|
2001-08-25 17:09:23 +00:00
|
|
|
pr->throttled = pr->throttle_override = 0;
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->ready = 1;
|
|
|
|
pr->c = c;
|
2002-10-26 10:33:59 +00:00
|
|
|
pr->backhandle = NULL; /* we shouldn't need this */
|
2003-04-09 11:18:41 +00:00
|
|
|
pr->dynamic = 0;
|
2001-08-08 20:53:27 +00:00
|
|
|
|
2003-01-12 15:26:10 +00:00
|
|
|
pr->s = *s = new_connection(addr, dummy_realhost, port,
|
Post-release destabilisation! Completely remove the struct type
'Config' in putty.h, which stores all PuTTY's settings and includes an
arbitrary length limit on every single one of those settings which is
stored in string form. In place of it is 'Conf', an opaque data type
everywhere outside the new file conf.c, which stores a list of (key,
value) pairs in which every key contains an integer identifying a
configuration setting, and for some of those integers the key also
contains extra parts (so that, for instance, CONF_environmt is a
string-to-string mapping). Everywhere that a Config was previously
used, a Conf is now; everywhere there was a Config structure copy,
conf_copy() is called; every lookup, adjustment, load and save
operation on a Config has been rewritten; and there's a mechanism for
serialising a Conf into a binary blob and back for use with Duplicate
Session.
User-visible effects of this change _should_ be minimal, though I
don't doubt I've introduced one or two bugs here and there which will
eventually be found. The _intended_ visible effects of this change are
that all arbitrary limits on configuration strings and lists (e.g.
limit on number of port forwardings) should now disappear; that list
boxes in the configuration will now be displayed in a sorted order
rather than the arbitrary order in which they were added to the list
(since the underlying data structure is now a sorted tree234 rather
than an ad-hoc comma-separated string); and one more specific change,
which is that local and dynamic port forwardings on the same port
number are now mutually exclusive in the configuration (putting 'D' in
the key rather than the value was a mistake in the first place).
One other reorganisation as a result of this is that I've moved all
the dialog.c standard handlers (dlg_stdeditbox_handler and friends)
out into config.c, because I can't really justify calling them generic
any more. When they took a pointer to an arbitrary structure type and
the offset of a field within that structure, they were independent of
whether that structure was a Config or something completely different,
but now they really do expect to talk to a Conf, which can _only_ be
used for PuTTY configuration, so I've renamed them all things like
conf_editbox_handler and moved them out of the nominally independent
dialog-box management module into the PuTTY-specific config.c.
[originally from svn r9214]
2011-07-14 18:52:21 +00:00
|
|
|
0, 1, 0, 0, (Plug) pr, conf);
|
2013-07-14 10:46:07 +00:00
|
|
|
sfree(dummy_realhost);
|
2003-01-05 13:04:04 +00:00
|
|
|
if ((err = sk_socket_error(*s)) != NULL) {
|
2013-07-11 17:23:56 +00:00
|
|
|
free_portfwd_private(pr);
|
2001-08-08 20:53:27 +00:00
|
|
|
return err;
|
|
|
|
}
|
|
|
|
|
|
|
|
sk_set_private_ptr(*s, pr);
|
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
|
|
|
/*
|
|
|
|
called when someone connects to the local port
|
|
|
|
*/
|
|
|
|
|
2003-05-10 08:35:54 +00:00
|
|
|
static int pfd_accepting(Plug p, OSSocket sock)
|
2001-08-08 20:53:27 +00:00
|
|
|
{
|
2003-01-14 18:43:45 +00:00
|
|
|
static const struct plug_function_table fn_table = {
|
2005-01-16 14:29:34 +00:00
|
|
|
pfd_log,
|
2001-08-08 20:53:27 +00:00
|
|
|
pfd_closing,
|
|
|
|
pfd_receive,
|
2001-08-25 17:09:23 +00:00
|
|
|
pfd_sent,
|
2001-08-08 20:53:27 +00:00
|
|
|
NULL
|
|
|
|
};
|
|
|
|
struct PFwdPrivate *pr, *org;
|
|
|
|
Socket s;
|
2003-05-04 14:18:18 +00:00
|
|
|
const char *err;
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
org = (struct PFwdPrivate *)p;
|
2013-07-11 17:23:56 +00:00
|
|
|
pr = new_portfwd_private();
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->fn = &fn_table;
|
|
|
|
|
|
|
|
pr->c = NULL;
|
2002-10-26 10:33:59 +00:00
|
|
|
pr->backhandle = org->backhandle;
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
pr->s = s = sk_register(sock, (Plug) pr);
|
2003-01-05 13:04:04 +00:00
|
|
|
if ((err = sk_socket_error(s)) != NULL) {
|
2013-07-11 17:23:56 +00:00
|
|
|
free_portfwd_private(pr);
|
2001-08-08 20:53:27 +00:00
|
|
|
return err != NULL;
|
|
|
|
}
|
|
|
|
|
2003-04-05 11:45:21 +00:00
|
|
|
sk_set_private_ptr(s, pr);
|
2001-08-08 20:53:27 +00:00
|
|
|
|
2001-08-25 17:09:23 +00:00
|
|
|
pr->throttled = pr->throttle_override = 0;
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->ready = 0;
|
|
|
|
|
2003-04-05 11:45:21 +00:00
|
|
|
if (org->dynamic) {
|
|
|
|
pr->dynamic = 1;
|
2003-10-10 22:58:53 +00:00
|
|
|
pr->port = 0; /* "hostname" buffer is so far empty */
|
2003-04-05 11:45:21 +00:00
|
|
|
sk_set_frozen(s, 0); /* we want to receive SOCKS _now_! */
|
2001-08-08 20:53:27 +00:00
|
|
|
} else {
|
2003-04-09 11:18:41 +00:00
|
|
|
pr->dynamic = 0;
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->hostname = dupstr(org->hostname);
|
2003-04-05 11:45:21 +00:00
|
|
|
pr->port = org->port;
|
|
|
|
pr->c = new_sock_channel(org->backhandle, s);
|
|
|
|
|
|
|
|
if (pr->c == NULL) {
|
2013-07-11 17:23:56 +00:00
|
|
|
free_portfwd_private(pr);
|
2003-04-05 11:45:21 +00:00
|
|
|
return 1;
|
|
|
|
} else {
|
|
|
|
/* asks to forward to the specified host/port for this */
|
|
|
|
ssh_send_port_open(pr->c, pr->hostname, pr->port, "forwarding");
|
|
|
|
}
|
2001-08-08 20:53:27 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
return 0;
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
/* Add a new forwarding from port -> desthost:destport
|
2002-12-18 11:39:25 +00:00
|
|
|
sets up a listener on the local machine on (srcaddr:)port
|
2001-08-08 20:53:27 +00:00
|
|
|
*/
|
2003-05-04 14:18:18 +00:00
|
|
|
const char *pfd_addforward(char *desthost, int destport, char *srcaddr,
|
Post-release destabilisation! Completely remove the struct type
'Config' in putty.h, which stores all PuTTY's settings and includes an
arbitrary length limit on every single one of those settings which is
stored in string form. In place of it is 'Conf', an opaque data type
everywhere outside the new file conf.c, which stores a list of (key,
value) pairs in which every key contains an integer identifying a
configuration setting, and for some of those integers the key also
contains extra parts (so that, for instance, CONF_environmt is a
string-to-string mapping). Everywhere that a Config was previously
used, a Conf is now; everywhere there was a Config structure copy,
conf_copy() is called; every lookup, adjustment, load and save
operation on a Config has been rewritten; and there's a mechanism for
serialising a Conf into a binary blob and back for use with Duplicate
Session.
User-visible effects of this change _should_ be minimal, though I
don't doubt I've introduced one or two bugs here and there which will
eventually be found. The _intended_ visible effects of this change are
that all arbitrary limits on configuration strings and lists (e.g.
limit on number of port forwardings) should now disappear; that list
boxes in the configuration will now be displayed in a sorted order
rather than the arbitrary order in which they were added to the list
(since the underlying data structure is now a sorted tree234 rather
than an ad-hoc comma-separated string); and one more specific change,
which is that local and dynamic port forwardings on the same port
number are now mutually exclusive in the configuration (putting 'D' in
the key rather than the value was a mistake in the first place).
One other reorganisation as a result of this is that I've moved all
the dialog.c standard handlers (dlg_stdeditbox_handler and friends)
out into config.c, because I can't really justify calling them generic
any more. When they took a pointer to an arbitrary structure type and
the offset of a field within that structure, they were independent of
whether that structure was a Config or something completely different,
but now they really do expect to talk to a Conf, which can _only_ be
used for PuTTY configuration, so I've renamed them all things like
conf_editbox_handler and moved them out of the nominally independent
dialog-box management module into the PuTTY-specific config.c.
[originally from svn r9214]
2011-07-14 18:52:21 +00:00
|
|
|
int port, void *backhandle, Conf *conf,
|
2004-12-30 16:45:11 +00:00
|
|
|
void **sockdata, int address_family)
|
2001-08-08 20:53:27 +00:00
|
|
|
{
|
2003-01-14 18:43:45 +00:00
|
|
|
static const struct plug_function_table fn_table = {
|
2005-01-16 14:29:34 +00:00
|
|
|
pfd_log,
|
2001-08-08 20:53:27 +00:00
|
|
|
pfd_closing,
|
2001-08-25 17:09:23 +00:00
|
|
|
pfd_receive, /* should not happen... */
|
|
|
|
pfd_sent, /* also should not happen */
|
2001-08-08 20:53:27 +00:00
|
|
|
pfd_accepting
|
|
|
|
};
|
|
|
|
|
2003-05-04 14:18:18 +00:00
|
|
|
const char *err;
|
2001-08-08 20:53:27 +00:00
|
|
|
struct PFwdPrivate *pr;
|
|
|
|
Socket s;
|
|
|
|
|
|
|
|
/*
|
|
|
|
* Open socket.
|
|
|
|
*/
|
2013-07-11 17:23:56 +00:00
|
|
|
pr = new_portfwd_private();
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->fn = &fn_table;
|
|
|
|
pr->c = NULL;
|
2003-04-05 11:45:21 +00:00
|
|
|
if (desthost) {
|
2013-07-11 17:23:56 +00:00
|
|
|
pr->hostname = dupstr(desthost);
|
2003-04-05 11:45:21 +00:00
|
|
|
pr->port = destport;
|
|
|
|
pr->dynamic = 0;
|
|
|
|
} else
|
|
|
|
pr->dynamic = 1;
|
2001-08-25 17:09:23 +00:00
|
|
|
pr->throttled = pr->throttle_override = 0;
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->ready = 0;
|
2002-10-26 10:33:59 +00:00
|
|
|
pr->backhandle = backhandle;
|
2001-08-08 20:53:27 +00:00
|
|
|
|
2003-01-12 15:26:10 +00:00
|
|
|
pr->s = s = new_listener(srcaddr, port, (Plug) pr,
|
Post-release destabilisation! Completely remove the struct type
'Config' in putty.h, which stores all PuTTY's settings and includes an
arbitrary length limit on every single one of those settings which is
stored in string form. In place of it is 'Conf', an opaque data type
everywhere outside the new file conf.c, which stores a list of (key,
value) pairs in which every key contains an integer identifying a
configuration setting, and for some of those integers the key also
contains extra parts (so that, for instance, CONF_environmt is a
string-to-string mapping). Everywhere that a Config was previously
used, a Conf is now; everywhere there was a Config structure copy,
conf_copy() is called; every lookup, adjustment, load and save
operation on a Config has been rewritten; and there's a mechanism for
serialising a Conf into a binary blob and back for use with Duplicate
Session.
User-visible effects of this change _should_ be minimal, though I
don't doubt I've introduced one or two bugs here and there which will
eventually be found. The _intended_ visible effects of this change are
that all arbitrary limits on configuration strings and lists (e.g.
limit on number of port forwardings) should now disappear; that list
boxes in the configuration will now be displayed in a sorted order
rather than the arbitrary order in which they were added to the list
(since the underlying data structure is now a sorted tree234 rather
than an ad-hoc comma-separated string); and one more specific change,
which is that local and dynamic port forwardings on the same port
number are now mutually exclusive in the configuration (putting 'D' in
the key rather than the value was a mistake in the first place).
One other reorganisation as a result of this is that I've moved all
the dialog.c standard handlers (dlg_stdeditbox_handler and friends)
out into config.c, because I can't really justify calling them generic
any more. When they took a pointer to an arbitrary structure type and
the offset of a field within that structure, they were independent of
whether that structure was a Config or something completely different,
but now they really do expect to talk to a Conf, which can _only_ be
used for PuTTY configuration, so I've renamed them all things like
conf_editbox_handler and moved them out of the nominally independent
dialog-box management module into the PuTTY-specific config.c.
[originally from svn r9214]
2011-07-14 18:52:21 +00:00
|
|
|
!conf_get_int(conf, CONF_lport_acceptall),
|
|
|
|
conf, address_family);
|
2003-01-05 13:04:04 +00:00
|
|
|
if ((err = sk_socket_error(s)) != NULL) {
|
2013-07-11 17:23:56 +00:00
|
|
|
free_portfwd_private(pr);
|
2001-08-08 20:53:27 +00:00
|
|
|
return err;
|
|
|
|
}
|
|
|
|
|
|
|
|
sk_set_private_ptr(s, pr);
|
|
|
|
|
2004-12-28 14:07:05 +00:00
|
|
|
*sockdata = (void *)s;
|
|
|
|
|
2001-08-08 20:53:27 +00:00
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
|
|
|
void pfd_close(Socket s)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr;
|
|
|
|
|
|
|
|
if (!s)
|
|
|
|
return;
|
|
|
|
|
|
|
|
pr = (struct PFwdPrivate *) sk_get_private_ptr(s);
|
|
|
|
|
2013-07-11 17:23:56 +00:00
|
|
|
free_portfwd_private(pr);
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
sk_close(s);
|
|
|
|
}
|
|
|
|
|
2004-12-28 14:07:05 +00:00
|
|
|
/*
|
|
|
|
* Terminate a listener.
|
|
|
|
*/
|
|
|
|
void pfd_terminate(void *sv)
|
|
|
|
{
|
|
|
|
pfd_close((Socket)sv);
|
|
|
|
}
|
|
|
|
|
2001-08-25 17:09:23 +00:00
|
|
|
void pfd_unthrottle(Socket s)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr;
|
|
|
|
if (!s)
|
|
|
|
return;
|
|
|
|
pr = (struct PFwdPrivate *) sk_get_private_ptr(s);
|
|
|
|
|
|
|
|
pr->throttled = 0;
|
|
|
|
sk_set_frozen(s, pr->throttled || pr->throttle_override);
|
|
|
|
}
|
|
|
|
|
|
|
|
void pfd_override_throttle(Socket s, int enable)
|
|
|
|
{
|
|
|
|
struct PFwdPrivate *pr;
|
|
|
|
if (!s)
|
|
|
|
return;
|
|
|
|
pr = (struct PFwdPrivate *) sk_get_private_ptr(s);
|
|
|
|
|
|
|
|
pr->throttle_override = enable;
|
|
|
|
sk_set_frozen(s, pr->throttled || pr->throttle_override);
|
|
|
|
}
|
|
|
|
|
2001-08-08 20:53:27 +00:00
|
|
|
/*
|
|
|
|
* Called to send data down the raw connection.
|
|
|
|
*/
|
2001-08-25 17:09:23 +00:00
|
|
|
int pfd_send(Socket s, char *data, int len)
|
2001-08-08 20:53:27 +00:00
|
|
|
{
|
|
|
|
if (s == NULL)
|
2001-08-25 17:09:23 +00:00
|
|
|
return 0;
|
|
|
|
return sk_write(s, data, len);
|
2001-08-08 20:53:27 +00:00
|
|
|
}
|
|
|
|
|
2011-09-13 11:44:03 +00:00
|
|
|
void pfd_send_eof(Socket s)
|
|
|
|
{
|
|
|
|
sk_write_eof(s);
|
|
|
|
}
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
void pfd_confirm(Socket s)
|
|
|
|
{
|
2001-08-13 12:43:29 +00:00
|
|
|
struct PFwdPrivate *pr;
|
2001-08-08 20:53:27 +00:00
|
|
|
|
|
|
|
if (s == NULL)
|
|
|
|
return;
|
|
|
|
|
2001-08-13 12:43:29 +00:00
|
|
|
pr = (struct PFwdPrivate *) sk_get_private_ptr(s);
|
2001-08-08 20:53:27 +00:00
|
|
|
pr->ready = 1;
|
|
|
|
sk_set_frozen(s, 0);
|
|
|
|
sk_write(s, NULL, 0);
|
2003-04-05 11:45:21 +00:00
|
|
|
if (pr->buffer) {
|
|
|
|
sshfwd_write(pr->c, pr->buffer, pr->buflen);
|
|
|
|
sfree(pr->buffer);
|
|
|
|
pr->buffer = NULL;
|
|
|
|
}
|
2001-08-08 20:53:27 +00:00
|
|
|
}
|