2 This file is part of GNUnet.
3 Copyright (C) 2015 GNUnet e.V.
5 GNUnet is free software: you can redistribute it and/or modify it
6 under the terms of the GNU Affero General Public License as published
7 by the Free Software Foundation, either version 3 of the License,
8 or (at your option) any later version.
10 GNUnet is distributed in the hope that it will be useful, but
11 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 Affero General Public License for more details.
15 You should have received a copy of the GNU Affero General Public License
16 along with this program. If not, see <http://www.gnu.org/licenses/>.
18 SPDX-License-Identifier: AGPL3.0-or-later
22 * @file nat/nat_auto.c
23 * @brief functions for auto-configuration of the network
24 * @author Christian Grothoff
25 * @author Bruno Cabral
28 #include "gnunet_util_lib.h"
29 #include "gnunet_resolver_service.h"
30 #include "gnunet_nat_lib.h"
33 #define LOG(kind, ...) GNUNET_log_from(kind, "nat", __VA_ARGS__)
37 * How long do we wait for the NAT test to report success?
39 #define TIMEOUT GNUNET_TIME_relative_multiply(GNUNET_TIME_UNIT_SECONDS, 15)
41 #define NAT_SERVER_TIMEOUT GNUNET_TIME_relative_multiply(GNUNET_TIME_UNIT_SECONDS, 10)
44 * Phases of the auto configuration.
48 * Initial start value.
53 * Test our external IP.
58 * Test our external IP.
63 * Test our internal IP.
68 * Test if NAT was punched.
73 * Test if UPnP is working.
78 * Test if ICMP server works.
83 * Test if ICMP client works.
88 * Last phase, we're done.
95 * Handle to auto-configuration in progress.
97 struct GNUNET_NAT_AutoHandle {
99 * Handle to the active NAT test.
101 struct GNUNET_NAT_Test *tst;
104 * Function to call when done.
106 GNUNET_NAT_AutoResultCallback fin_cb;
109 * Closure for @e fin_cb.
114 * Handle for active 'GNUNET_NAT_mini_get_external_ipv4'-operation.
116 struct GNUNET_NAT_ExternalHandle *eh;
119 * Current configuration (with updates from previous phases)
121 struct GNUNET_CONFIGURATION_Handle *cfg;
124 * Original configuration (used to calculate differences)
126 struct GNUNET_CONFIGURATION_Handle *initial_cfg;
129 * Task identifier for the timeout.
131 struct GNUNET_SCHEDULER_Task *task;
134 * Message queue to the gnunet-nat-server.
136 struct GNUNET_MQ_Handle *mq;
139 * Where are we in the test?
141 enum AutoPhase phase;
144 * Situation of the NAT
146 enum GNUNET_NAT_Type type;
154 * UPnP already set the external ip address ?
156 int upnp_set_external_address;
159 * Did the external server connected back ?
164 * Address detected by STUN
168 unsigned int stun_port;
171 * Internal IP is the same as the public one ?
173 int internal_ip_is_public;
176 * Error code for better debugging and user feedback
178 enum GNUNET_NAT_StatusCode ret;
183 * The listen socket of the service for IPv4
185 static struct GNUNET_NETWORK_Handle *lsock4;
188 * The listen task ID for IPv4
190 static struct GNUNET_SCHEDULER_Task *ltask4;
193 * The port the test service is running on (default 7895)
195 static unsigned long long port = 7895;
197 static char *stun_server = "stun.ekiga.net";
199 static unsigned int stun_port = 3478;
203 * Run the next phase of the auto test.
205 * @param ah auto test handle
208 next_phase(struct GNUNET_NAT_AutoHandle *ah);
212 process_stun_reply(struct sockaddr_in *answer,
213 struct GNUNET_NAT_AutoHandle *ah)
215 ah->stun_ip = inet_ntoa(answer->sin_addr);
216 ah->stun_port = ntohs(answer->sin_port);
217 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
218 "External IP is: %s , with port %u\n",
226 * Function that terminates the test.
231 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
232 "Stopping STUN and quitting...\n");
236 GNUNET_SCHEDULER_cancel(ltask4);
242 GNUNET_NETWORK_socket_close(lsock4);
249 * Activity on our incoming socket. Read data from the
250 * incoming connection.
255 do_udp_read(void *cls)
257 struct GNUNET_NAT_AutoHandle *ah = cls;
258 unsigned char reply_buf[1024];
260 struct sockaddr_in answer;
261 const struct GNUNET_SCHEDULER_TaskContext *tc;
263 tc = GNUNET_SCHEDULER_get_task_context();
264 if ((0 != (tc->reason & GNUNET_SCHEDULER_REASON_READ_READY)) &&
265 (GNUNET_NETWORK_fdset_isset(tc->read_ready,
268 rlen = GNUNET_NETWORK_socket_recv(lsock4,
272 //Lets handle the packet
273 memset(&answer, 0, sizeof(struct sockaddr_in));
274 if (ah->phase == AUTO_NAT_PUNCHED)
276 //Destroy the connection
277 GNUNET_NETWORK_socket_close(lsock4);
278 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
279 "The external server was able to connect back");
280 ah->connected_back = GNUNET_YES;
286 GNUNET_NAT_stun_handle_packet(reply_buf, rlen, &answer))
289 process_stun_reply(&answer, ah);
299 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
300 "TIMEOUT while waiting for an answer\n");
301 if (ah->phase == AUTO_NAT_PUNCHED)
312 * Create an IPv4 listen socket bound to our port.
314 * @return NULL on error
316 static struct GNUNET_NETWORK_Handle *
319 struct GNUNET_NETWORK_Handle *ls;
320 struct sockaddr_in sa4;
323 memset(&sa4, 0, sizeof(sa4));
324 sa4.sin_family = AF_INET;
325 sa4.sin_port = htons(port);
326 #if HAVE_SOCKADDR_IN_SIN_LEN
327 sa4.sin_len = sizeof(sa4);
329 ls = GNUNET_NETWORK_socket_create(AF_INET,
335 GNUNET_NETWORK_socket_bind(ls, (const struct sockaddr *)&sa4,
339 GNUNET_NETWORK_socket_close(ls);
348 request_callback(void *cls,
349 enum GNUNET_NAT_StatusCode result)
351 // struct GNUNET_NAT_AutoHandle *ah = cls;
353 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
354 "Request callback: stop and quit\n");
357 // next_phase (ah); FIXME this always will be NULL, as called in test_stun()
362 * Function called by NAT to report the outcome of the nat-test.
363 * Clean up and update GUI.
365 * @param cls the auto handle
366 * @param success currently always #GNUNET_OK
367 * @param emsg NULL on success, otherwise an error message
370 result_callback(void *cls,
371 enum GNUNET_NAT_StatusCode ret)
373 struct GNUNET_NAT_AutoHandle *ah = cls;
375 if (GNUNET_NAT_ERROR_SUCCESS == ret)
376 GNUNET_NAT_test_stop(ah->tst);
379 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
380 GNUNET_NAT_ERROR_SUCCESS == ret
381 ? _("NAT traversal with ICMP Server succeeded.\n")
382 : _("NAT traversal with ICMP Server failed.\n"));
383 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "ENABLE_ICMP_SERVER",
384 GNUNET_NAT_ERROR_SUCCESS == ret ? "NO" : "YES");
390 * Main function for the connection reversal test.
392 * @param cls the `struct GNUNET_NAT_AutoHandle`
395 reversal_test(void *cls)
397 struct GNUNET_NAT_AutoHandle *ah = cls;
400 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
401 _("Testing connection reversal with ICMP server.\n"));
402 GNUNET_RESOLVER_connect(ah->cfg);
403 ah->tst = GNUNET_NAT_test_start(ah->cfg, GNUNET_YES, 0, 0, TIMEOUT,
404 &result_callback, ah);
409 * Set our external IPv4 address based on the UPnP.
412 * @param cls closure with our setup context
413 * @param addr the address, NULL on errors
414 * @param emsg NULL on success, otherwise an error message
417 set_external_ipv4(void *cls,
418 const struct in_addr *addr,
419 enum GNUNET_NAT_StatusCode ret)
421 struct GNUNET_NAT_AutoHandle *ah = cls;
422 char buf[INET_ADDRSTRLEN];
426 if (GNUNET_NAT_ERROR_SUCCESS != ret)
431 /* enable 'behind nat' */
432 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
433 _("Detected external IP `%s'\n"),
438 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "BEHIND_NAT", "YES");
440 /* set external IP address */
441 if (NULL == inet_ntop(AF_INET, addr, buf, sizeof(buf)))
444 /* actually, this should never happen, as the caller already executed just
445 * this check, but for consistency (eg: future changes in the caller)
446 * we still need to report this error...
448 ah->ret = GNUNET_NAT_ERROR_EXTERNAL_IP_ADDRESS_INVALID;
452 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "EXTERNAL_ADDRESS",
454 ah->upnp_set_external_address = GNUNET_YES;
460 * Determine our external IPv4 address.
462 * @param ah auto setup context
465 test_external_ip(struct GNUNET_NAT_AutoHandle *ah)
467 if (GNUNET_NAT_ERROR_SUCCESS != ah->ret)
471 /* try to detect external IP */
472 ah->eh = GNUNET_NAT_mini_get_external_ipv4(TIMEOUT,
473 &set_external_ipv4, ah);
478 * Determine our external IPv4 address and port using an external STUN server
480 * @param ah auto setup context
483 test_stun(struct GNUNET_NAT_AutoHandle *ah)
485 GNUNET_log(GNUNET_ERROR_TYPE_INFO, "Running STUN test\n");
487 /* Get port from the configuration */
489 GNUNET_CONFIGURATION_get_value_number(ah->cfg,
497 //Lets create the socket
501 GNUNET_log_strerror(GNUNET_ERROR_TYPE_ERROR, "bind");
507 //Lets call our function now when it accepts
508 ltask4 = GNUNET_SCHEDULER_add_read_net(NAT_SERVER_TIMEOUT,
515 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
516 "STUN service listens on port %u\n",
519 GNUNET_NAT_stun_make_request(stun_server,
525 /*An error happened*/
526 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG, "STUN error, stopping\n");
534 * Process list of local IP addresses. Find and set the
535 * one of the default interface.
537 * @param cls our `struct GNUNET_NAT_AutoHandle`
538 * @param name name of the interface (can be NULL for unknown)
539 * @param isDefault is this presumably the default interface
540 * @param addr address of this interface (can be NULL for unknown or unassigned)
541 * @param broadcast_addr the broadcast address (can be NULL for unknown or unassigned)
542 * @param netmask the network mask (can be NULL for unknown or unassigned))
543 * @param addrlen length of the @a addr and @a broadcast_addr
544 * @return #GNUNET_OK to continue iteration, #GNUNET_SYSERR to abort
547 process_if(void *cls,
550 const struct sockaddr *addr,
551 const struct sockaddr *broadcast_addr,
552 const struct sockaddr *netmask,
555 struct GNUNET_NAT_AutoHandle *ah = cls;
556 const struct sockaddr_in *in;
557 char buf[INET_ADDRSTRLEN];
560 if ((sizeof(struct sockaddr_in6) == addrlen) &&
561 (0 != GNUNET_memcmp(&in6addr_loopback, &((const struct sockaddr_in6 *)addr)->sin6_addr)) &&
562 (!IN6_IS_ADDR_LINKLOCAL(&((const struct sockaddr_in6 *)addr)->sin6_addr)))
564 ah->have_v6 = GNUNET_YES;
565 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
566 _("This system has a global IPv6 address, setting IPv6 to supported.\n"));
570 if (addrlen != sizeof(struct sockaddr_in))
572 in = (const struct sockaddr_in *)addr;
575 /* set internal IP address */
576 if (NULL == inet_ntop(AF_INET, &in->sin_addr, buf, sizeof(buf)))
581 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "INTERNAL_ADDRESS",
583 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
584 _("Detected internal network address `%s'.\n"),
588 ah->ret = GNUNET_NAT_ERROR_SUCCESS;
590 /* Check if our internal IP is the same as the External detect by STUN*/
591 if (ah->stun_ip && (strcmp(buf, ah->stun_ip) == 0))
593 ah->internal_ip_is_public = GNUNET_YES;
594 GNUNET_log(GNUNET_ERROR_TYPE_INFO, "A internal IP is the sameas the external");
595 /* No need to continue*/
596 return GNUNET_SYSERR;
599 /* no need to continue iteration if we found the default */
603 return GNUNET_SYSERR;
608 * Determine our local IP addresses; detect internal IP & IPv6-support
610 * @param ah auto setup context
613 test_local_ip(struct GNUNET_NAT_AutoHandle *ah)
615 ah->have_v6 = GNUNET_NO;
616 ah->ret = GNUNET_NAT_ERROR_NO_VALID_IF_IP_COMBO; // reset to success if any of the IFs in below iterator has a valid IP
617 GNUNET_OS_network_interfaces_list(&process_if, ah);
619 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "DISABLEV6",
620 (GNUNET_YES == ah->have_v6) ? "NO" : "YES");
626 * We got disconnected from the NAT server. Stop
627 * waiting for a reply.
629 * @param cls the `struct GNUNET_NAT_AutoHandle`
630 * @param error error code
633 mq_error_handler(void *cls,
634 enum GNUNET_MQ_Error error)
636 struct GNUNET_NAT_AutoHandle *ah = cls;
638 GNUNET_MQ_destroy(ah->mq);
640 /* wait a bit first? */
646 * Test if NAT has been punched
648 * @param ah auto setup context
651 test_nat_punched(struct GNUNET_NAT_AutoHandle *ah)
653 struct GNUNET_NAT_TestMessage *msg;
654 struct GNUNET_MQ_Envelope *env;
658 LOG(GNUNET_ERROR_TYPE_INFO,
659 "We don't have a STUN IP");
664 LOG(GNUNET_ERROR_TYPE_INFO,
665 "Asking gnunet-nat-server to connect to `%s'\n",
667 ah->mq = GNUNET_CLIENT_connect(ah->cfg,
674 GNUNET_log(GNUNET_ERROR_TYPE_ERROR,
675 _("Failed to connect to `gnunet-nat-server'\n"));
679 env = GNUNET_MQ_msg(msg,
680 GNUNET_MESSAGE_TYPE_NAT_TEST);
681 msg->dst_ipv4 = inet_addr(ah->stun_ip);
682 msg->dport = htons(ah->stun_port);
684 msg->is_tcp = htonl((uint32_t)GNUNET_NO);
685 GNUNET_MQ_send(ah->mq,
689 GNUNET_SCHEDULER_cancel(ltask4);
690 ltask4 = GNUNET_SCHEDULER_add_read_net(NAT_SERVER_TIMEOUT,
699 * Test if UPnPC works.
701 * @param ah auto setup context
704 test_upnpc(struct GNUNET_NAT_AutoHandle *ah)
708 if (GNUNET_NAT_ERROR_SUCCESS != ah->ret)
711 // test if upnpc is available
712 have_upnpc = (GNUNET_SYSERR !=
713 GNUNET_OS_check_helper_binary("upnpc", GNUNET_NO, NULL));
714 //FIXME: test if upnpc is actually working, that is, if transports start to work once we use UPnP
715 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
717 ? _("upnpc found, enabling its use\n")
718 : _("upnpc not found\n"));
719 GNUNET_CONFIGURATION_set_value_string(ah->cfg, "nat", "ENABLE_UPNP",
720 (GNUNET_YES == have_upnpc) ? "YES" : "NO");
726 * Test if ICMP server is working
728 * @param ah auto setup context
731 test_icmp_server(struct GNUNET_NAT_AutoHandle *ah)
744 helper = GNUNET_OS_get_libexec_binary_path("gnunet-helper-nat-server");
746 GNUNET_CONFIGURATION_get_value_string(ah->cfg,
753 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
754 _("test_icmp_server not possible, as we have no public IPv4 address\n"));
760 GNUNET_CONFIGURATION_get_value_yesno(ah->cfg,
765 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
766 _("test_icmp_server not possible, as we are not behind NAT\n"));
772 GNUNET_OS_check_helper_binary(helper,
776 binary = GNUNET_OK; // use localhost as source for that one udp-port, ok for testing
777 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
778 _("No working gnunet-helper-nat-server found\n"));
781 GNUNET_free_non_null(tmp);
784 if ((GNUNET_OK == ext_ip) &&
785 (GNUNET_YES == nated) &&
786 (GNUNET_OK == binary))
787 ah->task = GNUNET_SCHEDULER_add_now(&reversal_test,
795 * Test if ICMP client is working
797 * @param ah auto setup context
800 test_icmp_client(struct GNUNET_NAT_AutoHandle *ah)
806 helper = GNUNET_OS_get_libexec_binary_path("gnunet-helper-nat-client");
808 GNUNET_CONFIGURATION_get_value_string(ah->cfg,
814 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
815 _("test_icmp_client not possible, as we have no internal IPv4 address\n"));
821 GNUNET_CONFIGURATION_get_value_yesno(ah->cfg,
825 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
826 _("test_icmp_server not possible, as we are not behind NAT\n"));
832 GNUNET_OS_check_helper_binary(helper,
834 "-d 127.0.0.1 127.0.0.2 42"))
836 // none of these parameters are actually used in privilege testing mode
837 GNUNET_log(GNUNET_ERROR_TYPE_INFO,
838 _("No working gnunet-helper-nat-server found\n"));
841 GNUNET_free_non_null(tmp);
849 * Run the next phase of the auto test.
852 next_phase(struct GNUNET_NAT_AutoHandle *ah)
854 struct GNUNET_CONFIGURATION_Handle *diff;
863 case AUTO_EXTERNAL_IP:
864 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
865 "Will run AUTO_EXTERNAL_IP\n");
866 test_external_ip(ah);
870 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
871 "Will run AUTO_STUN\n");
876 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
877 "Will run AUTO_LOCAL_IP\n");
881 case AUTO_NAT_PUNCHED:
882 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
883 "Will run AUTO_NAT_PUNCHED\n");
884 test_nat_punched(ah);
888 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
889 "Will run AUTO_UPNPC\n");
893 case AUTO_ICMP_SERVER:
894 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
895 "Will run AUTO_ICMP_SERVER\n");
896 test_icmp_server(ah);
899 case AUTO_ICMP_CLIENT:
900 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
901 "Will run AUTO_ICMP_CLIENT\n");
902 test_icmp_client(ah);
906 GNUNET_log(GNUNET_ERROR_TYPE_DEBUG,
907 "Done with tests\n");
908 if (!ah->internal_ip_is_public)
910 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
915 if (ah->connected_back)
917 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
924 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
932 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
936 if (ah->connected_back)
938 ah->type = GNUNET_NAT_TYPE_STUN_PUNCHED_NAT;
939 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
946 ah->type = GNUNET_NAT_TYPE_UNREACHABLE_NAT;
947 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
953 if (0 != ah->stun_port)
955 GNUNET_CONFIGURATION_set_value_number(ah->cfg,
963 //The internal IP is the same as public, but we didn't got a incoming connection
964 if (ah->connected_back)
966 ah->type = GNUNET_NAT_TYPE_NO_NAT;
967 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
974 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
978 ah->type = GNUNET_NAT_TYPE_UNREACHABLE_NAT;
981 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
986 if (0 != ah->stun_port)
988 GNUNET_CONFIGURATION_set_value_number(ah->cfg,
996 diff = GNUNET_CONFIGURATION_get_diff(ah->initial_cfg,
1000 ah->fin_cb(ah->fin_cb_cls,
1004 GNUNET_CONFIGURATION_destroy(diff);
1005 GNUNET_NAT_autoconfig_cancel(ah);
1011 * Start auto-configuration routine. The resolver service should
1012 * be available when this function is called.
1014 * @param cfg initial configuration
1015 * @param cb function to call with autoconfiguration result
1016 * @param cb_cls closure for @a cb
1017 * @return handle to cancel operation
1019 struct GNUNET_NAT_AutoHandle *
1020 GNUNET_NAT_autoconfig_start(const struct GNUNET_CONFIGURATION_Handle *cfg,
1021 GNUNET_NAT_AutoResultCallback cb,
1024 struct GNUNET_NAT_AutoHandle *ah;
1026 ah = GNUNET_new(struct GNUNET_NAT_AutoHandle);
1028 ah->fin_cb_cls = cb_cls;
1029 ah->ret = GNUNET_NAT_ERROR_SUCCESS;
1030 ah->cfg = GNUNET_CONFIGURATION_dup(cfg);
1031 ah->initial_cfg = GNUNET_CONFIGURATION_dup(cfg);
1033 /* never use loopback addresses if user wanted autoconfiguration */
1034 GNUNET_CONFIGURATION_set_value_string(ah->cfg,
1045 * Abort autoconfiguration.
1047 * @param ah handle for operation to abort
1050 GNUNET_NAT_autoconfig_cancel(struct GNUNET_NAT_AutoHandle *ah)
1052 if (NULL != ah->tst)
1054 GNUNET_NAT_test_stop(ah->tst);
1059 GNUNET_NAT_mini_get_external_ipv4_cancel(ah->eh);
1064 GNUNET_MQ_destroy(ah->mq);
1067 if (NULL != ah->task)
1069 GNUNET_SCHEDULER_cancel(ah->task);
1072 GNUNET_CONFIGURATION_destroy(ah->cfg);
1073 GNUNET_CONFIGURATION_destroy(ah->initial_cfg);
1078 /* end of nat_auto.c */