blob: 2b120c551370111c58ded02d9f8505e9c488682c [file] [log] [blame]
Paul Bakker5121ce52009-01-03 21:22:43 +00001/*
Manuel Pégourié-Gonnardf4acfe12014-09-17 10:56:54 +02002 * TCP/IP or UDP/IP networking functions
Paul Bakker5121ce52009-01-03 21:22:43 +00003 *
Bence Szépkúti1e148272020-08-07 13:07:28 +02004 * Copyright The Mbed TLS Contributors
Dave Rodgman16799db2023-11-02 19:47:20 +00005 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Paul Bakker5121ce52009-01-03 21:22:43 +00006 */
7
Nicholas Wilson2682edf2017-12-05 12:08:15 +00008/* Enable definition of getaddrinfo() even when compiling with -std=c99. Must
Bence Szépkútibb0cfeb2021-05-28 09:42:25 +02009 * be set before mbedtls_config.h, which pulls in glibc's features.h indirectly.
Nicholas Wilson2682edf2017-12-05 12:08:15 +000010 * Harmless on other platforms. */
Flavio Ceolinb0257032020-05-27 22:41:19 -070011#ifndef _POSIX_C_SOURCE
Nicholas Wilson2682edf2017-12-05 12:08:15 +000012#define _POSIX_C_SOURCE 200112L
Flavio Ceolinb0257032020-05-27 22:41:19 -070013#endif
14#ifndef _XOPEN_SOURCE
nia0b01fd92020-06-11 12:29:15 +010015#define _XOPEN_SOURCE 600 /* sockaddr_storage */
Flavio Ceolinb0257032020-05-27 22:41:19 -070016#endif
Nicholas Wilson2682edf2017-12-05 12:08:15 +000017
Gilles Peskinedb09ef62020-06-03 01:43:33 +020018#include "common.h"
Paul Bakker5121ce52009-01-03 21:22:43 +000019
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020020#if defined(MBEDTLS_NET_C)
Paul Bakker5121ce52009-01-03 21:22:43 +000021
Manuel Pégourié-Gonnard325ce092016-02-22 10:33:34 +010022#if !defined(unix) && !defined(__unix__) && !defined(__unix) && \
Augustin Cavalier60bc47d2018-04-11 20:27:32 -040023 !defined(__APPLE__) && !defined(_WIN32) && !defined(__QNXNTO__) && \
Ørjan Malde479d8de2020-05-20 09:32:39 +000024 !defined(__HAIKU__) && !defined(__midipix__)
Bence Szépkútibb0cfeb2021-05-28 09:42:25 +020025#error "This module only works on Unix and Windows, see MBEDTLS_NET_C in mbedtls_config.h"
Manuel Pégourié-Gonnard325ce092016-02-22 10:33:34 +010026#endif
27
SimonBd5800b72016-04-26 07:43:27 +010028#include "mbedtls/platform.h"
SimonBd5800b72016-04-26 07:43:27 +010029
Andres AG788aa4a2016-09-14 14:32:09 +010030#include "mbedtls/net_sockets.h"
Janos Follath73c616b2019-12-18 15:07:04 +000031#include "mbedtls/error.h"
Paul Bakker5121ce52009-01-03 21:22:43 +000032
Rich Evans00ab4702015-02-06 13:43:58 +000033#include <string.h>
34
Paul Bakkerfa6a6202013-10-28 18:48:30 +010035#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
36 !defined(EFI32)
Paul Bakker5121ce52009-01-03 21:22:43 +000037
Gilles Peskine449bd832023-01-11 14:50:10 +010038#define IS_EINTR(ret) ((ret) == WSAEINTR)
Hanno Beckeref527962018-03-15 15:49:24 +000039
Manuel Pégourié-Gonnard6a398d42013-12-17 16:10:58 +010040#include <ws2tcpip.h>
Manuel Pégourié-Gonnard6a398d42013-12-17 16:10:58 +010041
Manuel Pégourié-Gonnard13211352013-12-17 17:38:55 +010042#include <winsock2.h>
43#include <windows.h>
opatomic2b2acf12020-04-24 10:00:36 -040044#if (_WIN32_WINNT < 0x0501)
45#include <wspiapi.h>
46#endif
Manuel Pégourié-Gonnard13211352013-12-17 17:38:55 +010047
Paul Bakkerf0fc2a22013-12-30 15:42:43 +010048#if defined(_MSC_VER)
Paul Bakker5121ce52009-01-03 21:22:43 +000049#if defined(_WIN32_WCE)
50#pragma comment( lib, "ws2.lib" )
51#else
52#pragma comment( lib, "ws2_32.lib" )
53#endif
Paul Bakkerf0fc2a22013-12-30 15:42:43 +010054#endif /* _MSC_VER */
Paul Bakker5121ce52009-01-03 21:22:43 +000055
Gilles Peskine449bd832023-01-11 14:50:10 +010056#define read(fd, buf, len) recv(fd, (char *) (buf), (int) (len), 0)
57#define write(fd, buf, len) send(fd, (char *) (buf), (int) (len), 0)
Paul Bakker5121ce52009-01-03 21:22:43 +000058#define close(fd) closesocket(fd)
59
60static int wsa_init_done = 0;
61
Paul Bakkerdb20c102014-06-17 14:34:44 +020062#else /* ( _WIN32 || _WIN32_WCE ) && !EFIX64 && !EFI32 */
Paul Bakker5121ce52009-01-03 21:22:43 +000063
64#include <sys/types.h>
65#include <sys/socket.h>
66#include <netinet/in.h>
67#include <arpa/inet.h>
68#include <sys/time.h>
69#include <unistd.h>
70#include <signal.h>
71#include <fcntl.h>
72#include <netdb.h>
73#include <errno.h>
Paul Bakkerb3bb6c02009-07-27 21:09:47 +000074
Gilles Peskine449bd832023-01-11 14:50:10 +010075#define IS_EINTR(ret) ((ret) == EINTR)
Sergeyb57b0482023-03-06 15:51:39 -070076#define SOCKET int
Hanno Beckeref527962018-03-15 15:49:24 +000077
Paul Bakkerdb20c102014-06-17 14:34:44 +020078#endif /* ( _WIN32 || _WIN32_WCE ) && !EFIX64 && !EFI32 */
Paul Bakker5121ce52009-01-03 21:22:43 +000079
Manuel Pégourié-Gonnard9de64f52015-07-01 15:51:43 +020080/* Some MS functions want int and MSVC warns if we pass size_t,
Andres Amaya Garciabd9d42c2017-07-12 14:04:40 +010081 * but the standard functions use socklen_t, so cast only for MSVC */
Manuel Pégourié-Gonnard9de64f52015-07-01 15:51:43 +020082#if defined(_MSC_VER)
83#define MSVC_INT_CAST (int)
84#else
85#define MSVC_INT_CAST
86#endif
87
Paul Bakker5121ce52009-01-03 21:22:43 +000088#include <stdio.h>
Paul Bakkerfa9b1002013-07-03 15:31:03 +020089
Andrzej Kurek108bf522022-03-02 10:55:08 -050090#if defined(MBEDTLS_HAVE_TIME)
Paul Bakker5121ce52009-01-03 21:22:43 +000091#include <time.h>
Andrzej Kurek108bf522022-03-02 10:55:08 -050092#endif
Paul Bakker5121ce52009-01-03 21:22:43 +000093
Manuel Pégourié-Gonnard93866642015-06-22 19:21:23 +020094#include <stdint.h>
Paul Bakker5c2364c2012-10-01 14:41:15 +000095
Paul Bakker5121ce52009-01-03 21:22:43 +000096/*
Manuel Pégourié-Gonnard2e5c3162013-12-13 11:55:32 +010097 * Prepare for using the sockets interface
Paul Bakker5121ce52009-01-03 21:22:43 +000098 */
Gilles Peskine449bd832023-01-11 14:50:10 +010099static int net_prepare(void)
Paul Bakker5121ce52009-01-03 21:22:43 +0000100{
Gilles Peskine449bd832023-01-11 14:50:10 +0100101#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100102 !defined(EFI32)
Paul Bakker5121ce52009-01-03 21:22:43 +0000103 WSADATA wsaData;
104
Gilles Peskine449bd832023-01-11 14:50:10 +0100105 if (wsa_init_done == 0) {
106 if (WSAStartup(MAKEWORD(2, 0), &wsaData) != 0) {
107 return MBEDTLS_ERR_NET_SOCKET_FAILED;
108 }
Paul Bakker5121ce52009-01-03 21:22:43 +0000109
110 wsa_init_done = 1;
111 }
112#else
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100113#if !defined(EFIX64) && !defined(EFI32)
Gilles Peskine449bd832023-01-11 14:50:10 +0100114 signal(SIGPIPE, SIG_IGN);
Paul Bakker5121ce52009-01-03 21:22:43 +0000115#endif
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100116#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100117 return 0;
Manuel Pégourié-Gonnard2e5c3162013-12-13 11:55:32 +0100118}
119
120/*
Gilles Peskine05360002021-06-20 23:08:19 +0200121 * Return 0 if the file descriptor is valid, an error otherwise.
122 * If for_select != 0, check whether the file descriptor is within the range
123 * allowed for fd_set used for the FD_xxx macros and the select() function.
124 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100125static int check_fd(int fd, int for_select)
Gilles Peskine05360002021-06-20 23:08:19 +0200126{
Gilles Peskine449bd832023-01-11 14:50:10 +0100127 if (fd < 0) {
128 return MBEDTLS_ERR_NET_INVALID_CONTEXT;
129 }
Gilles Peskine05360002021-06-20 23:08:19 +0200130
Gilles Peskinea5dd7bd2021-06-20 22:01:36 +0200131#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
132 !defined(EFI32)
133 (void) for_select;
134#else
Gilles Peskine05360002021-06-20 23:08:19 +0200135 /* A limitation of select() is that it only works with file descriptors
136 * that are strictly less than FD_SETSIZE. This is a limitation of the
137 * fd_set type. Error out early, because attempting to call FD_SET on a
138 * large file descriptor is a buffer overflow on typical platforms. */
Gilles Peskine449bd832023-01-11 14:50:10 +0100139 if (for_select && fd >= FD_SETSIZE) {
140 return MBEDTLS_ERR_NET_POLL_FAILED;
141 }
Gilles Peskinea5dd7bd2021-06-20 22:01:36 +0200142#endif
Gilles Peskine05360002021-06-20 23:08:19 +0200143
Gilles Peskine449bd832023-01-11 14:50:10 +0100144 return 0;
Gilles Peskine05360002021-06-20 23:08:19 +0200145}
146
147/*
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200148 * Initialize a context
149 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100150void mbedtls_net_init(mbedtls_net_context *ctx)
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200151{
152 ctx->fd = -1;
153}
154
155/*
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100156 * Initiate a TCP connection with host:port and the given protocol
Manuel Pégourié-Gonnard2e5c3162013-12-13 11:55:32 +0100157 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100158int mbedtls_net_connect(mbedtls_net_context *ctx, const char *host,
159 const char *port, int proto)
Manuel Pégourié-Gonnard2e5c3162013-12-13 11:55:32 +0100160{
Janos Follath865b3eb2019-12-16 11:46:15 +0000161 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100162 struct addrinfo hints, *addr_list, *cur;
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100163
Gilles Peskine449bd832023-01-11 14:50:10 +0100164 if ((ret = net_prepare()) != 0) {
165 return ret;
166 }
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100167
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100168 /* Do name resolution with both IPv6 and IPv4 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100169 memset(&hints, 0, sizeof(hints));
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100170 hints.ai_family = AF_UNSPEC;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200171 hints.ai_socktype = proto == MBEDTLS_NET_PROTO_UDP ? SOCK_DGRAM : SOCK_STREAM;
172 hints.ai_protocol = proto == MBEDTLS_NET_PROTO_UDP ? IPPROTO_UDP : IPPROTO_TCP;
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100173
Gilles Peskine449bd832023-01-11 14:50:10 +0100174 if (getaddrinfo(host, port, &hints, &addr_list) != 0) {
175 return MBEDTLS_ERR_NET_UNKNOWN_HOST;
176 }
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100177
178 /* Try the sockaddrs until a connection succeeds */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200179 ret = MBEDTLS_ERR_NET_UNKNOWN_HOST;
Gilles Peskine449bd832023-01-11 14:50:10 +0100180 for (cur = addr_list; cur != NULL; cur = cur->ai_next) {
181 ctx->fd = (int) socket(cur->ai_family, cur->ai_socktype,
182 cur->ai_protocol);
183 if (ctx->fd < 0) {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200184 ret = MBEDTLS_ERR_NET_SOCKET_FAILED;
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100185 continue;
186 }
187
Gilles Peskine449bd832023-01-11 14:50:10 +0100188 if (connect(ctx->fd, cur->ai_addr, MSVC_INT_CAST cur->ai_addrlen) == 0) {
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100189 ret = 0;
190 break;
191 }
192
Gilles Peskine449bd832023-01-11 14:50:10 +0100193 close(ctx->fd);
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200194 ret = MBEDTLS_ERR_NET_CONNECT_FAILED;
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100195 }
196
Gilles Peskine449bd832023-01-11 14:50:10 +0100197 freeaddrinfo(addr_list);
Manuel Pégourié-Gonnard10934de2013-12-13 12:54:09 +0100198
Gilles Peskine449bd832023-01-11 14:50:10 +0100199 return ret;
Paul Bakker5121ce52009-01-03 21:22:43 +0000200}
201
202/*
203 * Create a listening socket on bind_ip:port
204 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100205int mbedtls_net_bind(mbedtls_net_context *ctx, const char *bind_ip, const char *port, int proto)
Paul Bakker5121ce52009-01-03 21:22:43 +0000206{
Manuel Pégourié-Gonnard173402b2013-12-17 15:57:05 +0100207 int n, ret;
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100208 struct addrinfo hints, *addr_list, *cur;
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100209
Gilles Peskine449bd832023-01-11 14:50:10 +0100210 if ((ret = net_prepare()) != 0) {
211 return ret;
212 }
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100213
Manuel Pégourié-Gonnarddb2468d2015-06-30 17:19:48 +0200214 /* Bind to IPv6 and/or IPv4, but only in the desired protocol */
Gilles Peskine449bd832023-01-11 14:50:10 +0100215 memset(&hints, 0, sizeof(hints));
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100216 hints.ai_family = AF_UNSPEC;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200217 hints.ai_socktype = proto == MBEDTLS_NET_PROTO_UDP ? SOCK_DGRAM : SOCK_STREAM;
218 hints.ai_protocol = proto == MBEDTLS_NET_PROTO_UDP ? IPPROTO_UDP : IPPROTO_TCP;
Gilles Peskine449bd832023-01-11 14:50:10 +0100219 if (bind_ip == NULL) {
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100220 hints.ai_flags = AI_PASSIVE;
Gilles Peskine449bd832023-01-11 14:50:10 +0100221 }
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100222
Gilles Peskine449bd832023-01-11 14:50:10 +0100223 if (getaddrinfo(bind_ip, port, &hints, &addr_list) != 0) {
224 return MBEDTLS_ERR_NET_UNKNOWN_HOST;
225 }
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100226
227 /* Try the sockaddrs until a binding succeeds */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200228 ret = MBEDTLS_ERR_NET_UNKNOWN_HOST;
Gilles Peskine449bd832023-01-11 14:50:10 +0100229 for (cur = addr_list; cur != NULL; cur = cur->ai_next) {
230 ctx->fd = (int) socket(cur->ai_family, cur->ai_socktype,
231 cur->ai_protocol);
232 if (ctx->fd < 0) {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200233 ret = MBEDTLS_ERR_NET_SOCKET_FAILED;
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100234 continue;
235 }
236
Manuel Pégourié-Gonnardfd6b4cc2013-12-17 13:59:01 +0100237 n = 1;
Gilles Peskine449bd832023-01-11 14:50:10 +0100238 if (setsockopt(ctx->fd, SOL_SOCKET, SO_REUSEADDR,
239 (const char *) &n, sizeof(n)) != 0) {
240 close(ctx->fd);
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200241 ret = MBEDTLS_ERR_NET_SOCKET_FAILED;
Paul Bakker874bd642014-04-17 12:43:05 +0200242 continue;
243 }
Manuel Pégourié-Gonnardfd6b4cc2013-12-17 13:59:01 +0100244
Gilles Peskine449bd832023-01-11 14:50:10 +0100245 if (bind(ctx->fd, cur->ai_addr, MSVC_INT_CAST cur->ai_addrlen) != 0) {
246 close(ctx->fd);
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200247 ret = MBEDTLS_ERR_NET_BIND_FAILED;
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100248 continue;
249 }
250
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100251 /* Listen only makes sense for TCP */
Gilles Peskine449bd832023-01-11 14:50:10 +0100252 if (proto == MBEDTLS_NET_PROTO_TCP) {
253 if (listen(ctx->fd, MBEDTLS_NET_LISTEN_BACKLOG) != 0) {
254 close(ctx->fd);
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200255 ret = MBEDTLS_ERR_NET_LISTEN_FAILED;
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100256 continue;
257 }
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100258 }
259
Brian J Murray2adecba2016-11-06 04:45:15 -0800260 /* Bind was successful */
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100261 ret = 0;
262 break;
263 }
264
Gilles Peskine449bd832023-01-11 14:50:10 +0100265 freeaddrinfo(addr_list);
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100266
Gilles Peskine449bd832023-01-11 14:50:10 +0100267 return ret;
Manuel Pégourié-Gonnard389ce632013-12-13 14:00:51 +0100268
Paul Bakker5121ce52009-01-03 21:22:43 +0000269}
270
Gilles Peskine449bd832023-01-11 14:50:10 +0100271#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100272 !defined(EFI32)
Paul Bakker80025412014-01-23 20:59:49 +0100273/*
274 * Check if the requested operation would be blocking on a non-blocking socket
275 * and thus 'failed' with a negative return value.
276 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100277static int net_would_block(const mbedtls_net_context *ctx)
Paul Bakker80025412014-01-23 20:59:49 +0100278{
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200279 ((void) ctx);
Gilles Peskine449bd832023-01-11 14:50:10 +0100280 return WSAGetLastError() == WSAEWOULDBLOCK;
Paul Bakker80025412014-01-23 20:59:49 +0100281}
Paul Bakker5121ce52009-01-03 21:22:43 +0000282#else
Paul Bakker80025412014-01-23 20:59:49 +0100283/*
284 * Check if the requested operation would be blocking on a non-blocking socket
285 * and thus 'failed' with a negative return value.
286 *
287 * Note: on a blocking socket this function always returns 0!
288 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100289static int net_would_block(const mbedtls_net_context *ctx)
Paul Bakker80025412014-01-23 20:59:49 +0100290{
Hanno Beckera6ed9c52017-05-04 13:39:22 +0100291 int err = errno;
Hanno Beckerf4e5b7e2018-04-03 16:28:09 +0100292
Paul Bakker80025412014-01-23 20:59:49 +0100293 /*
Jaeden Ameroa152e422019-05-29 09:38:29 +0100294 * Never return 'WOULD BLOCK' on a blocking socket
Paul Bakker80025412014-01-23 20:59:49 +0100295 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100296 if ((fcntl(ctx->fd, F_GETFL) & O_NONBLOCK) != O_NONBLOCK) {
Hanno Beckera6ed9c52017-05-04 13:39:22 +0100297 errno = err;
Gilles Peskine449bd832023-01-11 14:50:10 +0100298 return 0;
Hanno Beckera6ed9c52017-05-04 13:39:22 +0100299 }
Paul Bakker80025412014-01-23 20:59:49 +0100300
Gilles Peskine449bd832023-01-11 14:50:10 +0100301 switch (errno = err) {
Paul Bakker5121ce52009-01-03 21:22:43 +0000302#if defined EAGAIN
303 case EAGAIN:
304#endif
305#if defined EWOULDBLOCK && EWOULDBLOCK != EAGAIN
306 case EWOULDBLOCK:
307#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100308 return 1;
Paul Bakker5121ce52009-01-03 21:22:43 +0000309 }
Gilles Peskine449bd832023-01-11 14:50:10 +0100310 return 0;
Paul Bakker5121ce52009-01-03 21:22:43 +0000311}
Paul Bakkerdb20c102014-06-17 14:34:44 +0200312#endif /* ( _WIN32 || _WIN32_WCE ) && !EFIX64 && !EFI32 */
Paul Bakker5121ce52009-01-03 21:22:43 +0000313
314/*
315 * Accept a connection from a remote client
316 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100317int mbedtls_net_accept(mbedtls_net_context *bind_ctx,
318 mbedtls_net_context *client_ctx,
319 void *client_ip, size_t buf_size, size_t *ip_len)
Paul Bakker5121ce52009-01-03 21:22:43 +0000320{
Janos Follath865b3eb2019-12-16 11:46:15 +0000321 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100322 int type;
323
Manuel Pégourié-Gonnard6e315a92013-12-13 16:21:25 +0100324 struct sockaddr_storage client_addr;
Paul Bakker5121ce52009-01-03 21:22:43 +0000325
Paul Bakker394c56f2011-12-20 12:19:03 +0000326#if defined(__socklen_t_defined) || defined(_SOCKLEN_T) || \
nia0b01fd92020-06-11 12:29:15 +0100327 defined(_SOCKLEN_T_DECLARED) || defined(__DEFINED_socklen_t) || \
okhowang(王沛文)76158ce2020-09-03 15:36:36 +0800328 defined(socklen_t) || (defined(_POSIX_VERSION) && _POSIX_VERSION >= 200112L)
Gilles Peskine449bd832023-01-11 14:50:10 +0100329 socklen_t n = (socklen_t) sizeof(client_addr);
330 socklen_t type_len = (socklen_t) sizeof(type);
Paul Bakker5121ce52009-01-03 21:22:43 +0000331#else
Gilles Peskine449bd832023-01-11 14:50:10 +0100332 int n = (int) sizeof(client_addr);
333 int type_len = (int) sizeof(type);
Paul Bakker5121ce52009-01-03 21:22:43 +0000334#endif
335
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100336 /* Is this a TCP or UDP socket? */
Gilles Peskine449bd832023-01-11 14:50:10 +0100337 if (getsockopt(bind_ctx->fd, SOL_SOCKET, SO_TYPE,
338 (void *) &type, &type_len) != 0 ||
339 (type != SOCK_STREAM && type != SOCK_DGRAM)) {
340 return MBEDTLS_ERR_NET_ACCEPT_FAILED;
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100341 }
Paul Bakker5121ce52009-01-03 21:22:43 +0000342
Gilles Peskine449bd832023-01-11 14:50:10 +0100343 if (type == SOCK_STREAM) {
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100344 /* TCP: actual accept() */
Gilles Peskine449bd832023-01-11 14:50:10 +0100345 ret = client_ctx->fd = (int) accept(bind_ctx->fd,
346 (struct sockaddr *) &client_addr, &n);
347 } else {
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100348 /* UDP: wait for a message, but keep it in the queue */
349 char buf[1] = { 0 };
350
Gilles Peskine449bd832023-01-11 14:50:10 +0100351 ret = (int) recvfrom(bind_ctx->fd, buf, sizeof(buf), MSG_PEEK,
352 (struct sockaddr *) &client_addr, &n);
Manuel Pégourié-Gonnard16a17a42015-06-30 11:20:22 +0200353
354#if defined(_WIN32)
Gilles Peskine449bd832023-01-11 14:50:10 +0100355 if (ret == SOCKET_ERROR &&
356 WSAGetLastError() == WSAEMSGSIZE) {
Manuel Pégourié-Gonnard16a17a42015-06-30 11:20:22 +0200357 /* We know buf is too small, thanks, just peeking here */
358 ret = 0;
359 }
360#endif
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100361 }
362
Gilles Peskine449bd832023-01-11 14:50:10 +0100363 if (ret < 0) {
364 if (net_would_block(bind_ctx) != 0) {
365 return MBEDTLS_ERR_SSL_WANT_READ;
366 }
Paul Bakker5121ce52009-01-03 21:22:43 +0000367
Gilles Peskine449bd832023-01-11 14:50:10 +0100368 return MBEDTLS_ERR_NET_ACCEPT_FAILED;
Paul Bakker5121ce52009-01-03 21:22:43 +0000369 }
370
Manuel Pégourié-Gonnardabc729e2015-07-01 01:28:24 +0200371 /* UDP: hijack the listening socket to communicate with the client,
372 * then bind a new socket to accept new connections */
Gilles Peskine449bd832023-01-11 14:50:10 +0100373 if (type != SOCK_STREAM) {
Manuel Pégourié-Gonnardabc729e2015-07-01 01:28:24 +0200374 struct sockaddr_storage local_addr;
375 int one = 1;
376
Gilles Peskine449bd832023-01-11 14:50:10 +0100377 if (connect(bind_ctx->fd, (struct sockaddr *) &client_addr, n) != 0) {
378 return MBEDTLS_ERR_NET_ACCEPT_FAILED;
379 }
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100380
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200381 client_ctx->fd = bind_ctx->fd;
Manuel Pégourié-Gonnardabc729e2015-07-01 01:28:24 +0200382 bind_ctx->fd = -1; /* In case we exit early */
383
Gilles Peskine449bd832023-01-11 14:50:10 +0100384 n = sizeof(struct sockaddr_storage);
385 if (getsockname(client_ctx->fd,
386 (struct sockaddr *) &local_addr, &n) != 0 ||
387 (bind_ctx->fd = (int) socket(local_addr.ss_family,
388 SOCK_DGRAM, IPPROTO_UDP)) < 0 ||
389 setsockopt(bind_ctx->fd, SOL_SOCKET, SO_REUSEADDR,
390 (const char *) &one, sizeof(one)) != 0) {
391 return MBEDTLS_ERR_NET_SOCKET_FAILED;
Manuel Pégourié-Gonnardabc729e2015-07-01 01:28:24 +0200392 }
393
Gilles Peskine449bd832023-01-11 14:50:10 +0100394 if (bind(bind_ctx->fd, (struct sockaddr *) &local_addr, n) != 0) {
395 return MBEDTLS_ERR_NET_BIND_FAILED;
Manuel Pégourié-Gonnardabc729e2015-07-01 01:28:24 +0200396 }
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100397 }
398
Gilles Peskine449bd832023-01-11 14:50:10 +0100399 if (client_ip != NULL) {
400 if (client_addr.ss_family == AF_INET) {
Manuel Pégourié-Gonnard6e315a92013-12-13 16:21:25 +0100401 struct sockaddr_in *addr4 = (struct sockaddr_in *) &client_addr;
Gilles Peskine449bd832023-01-11 14:50:10 +0100402 *ip_len = sizeof(addr4->sin_addr.s_addr);
Manuel Pégourié-Gonnard0b104b02015-05-14 21:52:40 +0200403
Gilles Peskine449bd832023-01-11 14:50:10 +0100404 if (buf_size < *ip_len) {
405 return MBEDTLS_ERR_NET_BUFFER_TOO_SMALL;
406 }
Manuel Pégourié-Gonnard0b104b02015-05-14 21:52:40 +0200407
Gilles Peskine449bd832023-01-11 14:50:10 +0100408 memcpy(client_ip, &addr4->sin_addr.s_addr, *ip_len);
409 } else {
Manuel Pégourié-Gonnard6e315a92013-12-13 16:21:25 +0100410 struct sockaddr_in6 *addr6 = (struct sockaddr_in6 *) &client_addr;
Gilles Peskine449bd832023-01-11 14:50:10 +0100411 *ip_len = sizeof(addr6->sin6_addr.s6_addr);
Manuel Pégourié-Gonnard0b104b02015-05-14 21:52:40 +0200412
Gilles Peskine449bd832023-01-11 14:50:10 +0100413 if (buf_size < *ip_len) {
414 return MBEDTLS_ERR_NET_BUFFER_TOO_SMALL;
415 }
Manuel Pégourié-Gonnard0b104b02015-05-14 21:52:40 +0200416
Gilles Peskine449bd832023-01-11 14:50:10 +0100417 memcpy(client_ip, &addr6->sin6_addr.s6_addr, *ip_len);
Manuel Pégourié-Gonnard6e315a92013-12-13 16:21:25 +0100418 }
Manuel Pégourié-Gonnard6e315a92013-12-13 16:21:25 +0100419 }
Paul Bakker5121ce52009-01-03 21:22:43 +0000420
Gilles Peskine449bd832023-01-11 14:50:10 +0100421 return 0;
Paul Bakker5121ce52009-01-03 21:22:43 +0000422}
423
424/*
425 * Set the socket blocking or non-blocking
426 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100427int mbedtls_net_set_block(mbedtls_net_context *ctx)
Paul Bakker5121ce52009-01-03 21:22:43 +0000428{
Gilles Peskine449bd832023-01-11 14:50:10 +0100429#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100430 !defined(EFI32)
Paul Bakkerf4f69682011-04-24 16:08:12 +0000431 u_long n = 0;
Gilles Peskine449bd832023-01-11 14:50:10 +0100432 return ioctlsocket(ctx->fd, FIONBIO, &n);
Paul Bakker5121ce52009-01-03 21:22:43 +0000433#else
Gilles Peskine449bd832023-01-11 14:50:10 +0100434 return fcntl(ctx->fd, F_SETFL, fcntl(ctx->fd, F_GETFL) & ~O_NONBLOCK);
Paul Bakker5121ce52009-01-03 21:22:43 +0000435#endif
436}
437
Gilles Peskine449bd832023-01-11 14:50:10 +0100438int mbedtls_net_set_nonblock(mbedtls_net_context *ctx)
Paul Bakker5121ce52009-01-03 21:22:43 +0000439{
Gilles Peskine449bd832023-01-11 14:50:10 +0100440#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100441 !defined(EFI32)
Paul Bakkerf4f69682011-04-24 16:08:12 +0000442 u_long n = 1;
Gilles Peskine449bd832023-01-11 14:50:10 +0100443 return ioctlsocket(ctx->fd, FIONBIO, &n);
Paul Bakker5121ce52009-01-03 21:22:43 +0000444#else
Gilles Peskine449bd832023-01-11 14:50:10 +0100445 return fcntl(ctx->fd, F_SETFL, fcntl(ctx->fd, F_GETFL) | O_NONBLOCK);
Paul Bakker5121ce52009-01-03 21:22:43 +0000446#endif
447}
448
449/*
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100450 * Check if data is available on the socket
451 */
452
Gilles Peskine449bd832023-01-11 14:50:10 +0100453int mbedtls_net_poll(mbedtls_net_context *ctx, uint32_t rw, uint32_t timeout)
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100454{
Janos Follath865b3eb2019-12-16 11:46:15 +0000455 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100456 struct timeval tv;
457
458 fd_set read_fds;
459 fd_set write_fds;
460
461 int fd = ctx->fd;
462
Gilles Peskine449bd832023-01-11 14:50:10 +0100463 ret = check_fd(fd, 1);
464 if (ret != 0) {
465 return ret;
466 }
Gilles Peskineddf43742021-02-24 19:49:44 +0100467
Gilles Peskineec4733b2018-04-05 14:55:47 +0200468#if defined(__has_feature)
469#if __has_feature(memory_sanitizer)
470 /* Ensure that memory sanitizers consider read_fds and write_fds as
471 * initialized even on platforms such as Glibc/x86_64 where FD_ZERO
472 * is implemented in assembly. */
Gilles Peskine449bd832023-01-11 14:50:10 +0100473 memset(&read_fds, 0, sizeof(read_fds));
474 memset(&write_fds, 0, sizeof(write_fds));
Gilles Peskineec4733b2018-04-05 14:55:47 +0200475#endif
476#endif
Hanno Beckerf4e5b7e2018-04-03 16:28:09 +0100477
Gilles Peskine449bd832023-01-11 14:50:10 +0100478 FD_ZERO(&read_fds);
479 if (rw & MBEDTLS_NET_POLL_READ) {
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100480 rw &= ~MBEDTLS_NET_POLL_READ;
Sergeyb57b0482023-03-06 15:51:39 -0700481 FD_SET((SOCKET) fd, &read_fds);
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100482 }
483
Gilles Peskine449bd832023-01-11 14:50:10 +0100484 FD_ZERO(&write_fds);
485 if (rw & MBEDTLS_NET_POLL_WRITE) {
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100486 rw &= ~MBEDTLS_NET_POLL_WRITE;
Sergeyb57b0482023-03-06 15:51:39 -0700487 FD_SET((SOCKET) fd, &write_fds);
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100488 }
489
Gilles Peskine449bd832023-01-11 14:50:10 +0100490 if (rw != 0) {
491 return MBEDTLS_ERR_NET_BAD_INPUT_DATA;
492 }
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100493
494 tv.tv_sec = timeout / 1000;
Gilles Peskine449bd832023-01-11 14:50:10 +0100495 tv.tv_usec = (timeout % 1000) * 1000;
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100496
Gilles Peskine449bd832023-01-11 14:50:10 +0100497 do {
498 ret = select(fd + 1, &read_fds, &write_fds, NULL,
499 timeout == (uint32_t) -1 ? NULL : &tv);
500 } while (IS_EINTR(ret));
501
502 if (ret < 0) {
503 return MBEDTLS_ERR_NET_POLL_FAILED;
Hanno Becker80e06d72018-03-15 14:41:55 +0000504 }
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100505
506 ret = 0;
Gilles Peskine449bd832023-01-11 14:50:10 +0100507 if (FD_ISSET(fd, &read_fds)) {
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100508 ret |= MBEDTLS_NET_POLL_READ;
Gilles Peskine449bd832023-01-11 14:50:10 +0100509 }
510 if (FD_ISSET(fd, &write_fds)) {
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100511 ret |= MBEDTLS_NET_POLL_WRITE;
Gilles Peskine449bd832023-01-11 14:50:10 +0100512 }
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100513
Gilles Peskine449bd832023-01-11 14:50:10 +0100514 return ret;
Hanno Beckere09ca3d2017-05-22 15:06:06 +0100515}
516
517/*
Paul Bakker5121ce52009-01-03 21:22:43 +0000518 * Portable usleep helper
519 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100520void mbedtls_net_usleep(unsigned long usec)
Paul Bakker5121ce52009-01-03 21:22:43 +0000521{
Manuel Pégourié-Gonnardacecb652015-07-01 11:29:31 +0200522#if defined(_WIN32)
Gilles Peskine449bd832023-01-11 14:50:10 +0100523 Sleep((usec + 999) / 1000);
Manuel Pégourié-Gonnardacecb652015-07-01 11:29:31 +0200524#else
Paul Bakker5121ce52009-01-03 21:22:43 +0000525 struct timeval tv;
Manuel Pégourié-Gonnarde4232462014-11-21 09:52:23 +0100526 tv.tv_sec = usec / 1000000;
Manuel Pégourié-Gonnardacecb652015-07-01 11:29:31 +0200527#if defined(__unix__) || defined(__unix) || \
Gilles Peskine449bd832023-01-11 14:50:10 +0100528 (defined(__APPLE__) && defined(__MACH__))
Manuel Pégourié-Gonnarde4232462014-11-21 09:52:23 +0100529 tv.tv_usec = (suseconds_t) usec % 1000000;
Sander Niemeijeref5087d2014-08-16 12:45:52 +0200530#else
Manuel Pégourié-Gonnarde4232462014-11-21 09:52:23 +0100531 tv.tv_usec = usec % 1000000;
Sander Niemeijeref5087d2014-08-16 12:45:52 +0200532#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100533 select(0, NULL, NULL, NULL, &tv);
Manuel Pégourié-Gonnardacecb652015-07-01 11:29:31 +0200534#endif
Paul Bakker5121ce52009-01-03 21:22:43 +0000535}
536
537/*
538 * Read at most 'len' characters
539 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100540int mbedtls_net_recv(void *ctx, unsigned char *buf, size_t len)
Paul Bakkerfa6a6202013-10-28 18:48:30 +0100541{
Janos Follath865b3eb2019-12-16 11:46:15 +0000542 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200543 int fd = ((mbedtls_net_context *) ctx)->fd;
Manuel Pégourié-Gonnard9bd0afd2015-07-01 19:03:27 +0200544
Gilles Peskine449bd832023-01-11 14:50:10 +0100545 ret = check_fd(fd, 0);
546 if (ret != 0) {
547 return ret;
Paul Bakker5121ce52009-01-03 21:22:43 +0000548 }
549
Gilles Peskine449bd832023-01-11 14:50:10 +0100550 ret = (int) read(fd, buf, len);
551
552 if (ret < 0) {
553 if (net_would_block(ctx) != 0) {
554 return MBEDTLS_ERR_SSL_WANT_READ;
555 }
556
557#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
558 !defined(EFI32)
559 if (WSAGetLastError() == WSAECONNRESET) {
560 return MBEDTLS_ERR_NET_CONN_RESET;
561 }
562#else
563 if (errno == EPIPE || errno == ECONNRESET) {
564 return MBEDTLS_ERR_NET_CONN_RESET;
565 }
566
567 if (errno == EINTR) {
568 return MBEDTLS_ERR_SSL_WANT_READ;
569 }
570#endif
571
572 return MBEDTLS_ERR_NET_RECV_FAILED;
573 }
574
575 return ret;
Paul Bakker5121ce52009-01-03 21:22:43 +0000576}
577
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200578/*
Manuel Pégourié-Gonnardc8d8e972014-10-01 15:01:39 +0200579 * Read at most 'len' characters, blocking for at most 'timeout' ms
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200580 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100581int mbedtls_net_recv_timeout(void *ctx, unsigned char *buf,
582 size_t len, uint32_t timeout)
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200583{
Janos Follath865b3eb2019-12-16 11:46:15 +0000584 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200585 struct timeval tv;
586 fd_set read_fds;
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200587 int fd = ((mbedtls_net_context *) ctx)->fd;
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200588
Gilles Peskine449bd832023-01-11 14:50:10 +0100589 ret = check_fd(fd, 1);
590 if (ret != 0) {
591 return ret;
592 }
Gilles Peskineddf43742021-02-24 19:49:44 +0100593
Gilles Peskine449bd832023-01-11 14:50:10 +0100594 FD_ZERO(&read_fds);
Sergeyb57b0482023-03-06 15:51:39 -0700595 FD_SET((SOCKET) fd, &read_fds);
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200596
Manuel Pégourié-Gonnardc8d8e972014-10-01 15:01:39 +0200597 tv.tv_sec = timeout / 1000;
Gilles Peskine449bd832023-01-11 14:50:10 +0100598 tv.tv_usec = (timeout % 1000) * 1000;
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200599
Gilles Peskine449bd832023-01-11 14:50:10 +0100600 ret = select(fd + 1, &read_fds, NULL, NULL, timeout == 0 ? NULL : &tv);
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200601
602 /* Zero fds ready means we timed out */
Gilles Peskine449bd832023-01-11 14:50:10 +0100603 if (ret == 0) {
604 return MBEDTLS_ERR_SSL_TIMEOUT;
605 }
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200606
Gilles Peskine449bd832023-01-11 14:50:10 +0100607 if (ret < 0) {
608#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
609 !defined(EFI32)
610 if (WSAGetLastError() == WSAEINTR) {
611 return MBEDTLS_ERR_SSL_WANT_READ;
612 }
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200613#else
Gilles Peskine449bd832023-01-11 14:50:10 +0100614 if (errno == EINTR) {
615 return MBEDTLS_ERR_SSL_WANT_READ;
616 }
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200617#endif
618
Gilles Peskine449bd832023-01-11 14:50:10 +0100619 return MBEDTLS_ERR_NET_RECV_FAILED;
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200620 }
621
622 /* This call will not block */
Gilles Peskine449bd832023-01-11 14:50:10 +0100623 return mbedtls_net_recv(ctx, buf, len);
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200624}
Manuel Pégourié-Gonnard9d9b0032014-09-18 11:22:45 +0200625
Paul Bakker5121ce52009-01-03 21:22:43 +0000626/*
627 * Write at most 'len' characters
628 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100629int mbedtls_net_send(void *ctx, const unsigned char *buf, size_t len)
Paul Bakker5121ce52009-01-03 21:22:43 +0000630{
Janos Follath865b3eb2019-12-16 11:46:15 +0000631 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200632 int fd = ((mbedtls_net_context *) ctx)->fd;
Manuel Pégourié-Gonnard9bd0afd2015-07-01 19:03:27 +0200633
Gilles Peskine449bd832023-01-11 14:50:10 +0100634 ret = check_fd(fd, 0);
635 if (ret != 0) {
636 return ret;
Paul Bakker5121ce52009-01-03 21:22:43 +0000637 }
638
Gilles Peskine449bd832023-01-11 14:50:10 +0100639 ret = (int) write(fd, buf, len);
640
641 if (ret < 0) {
642 if (net_would_block(ctx) != 0) {
643 return MBEDTLS_ERR_SSL_WANT_WRITE;
644 }
645
646#if (defined(_WIN32) || defined(_WIN32_WCE)) && !defined(EFIX64) && \
647 !defined(EFI32)
648 if (WSAGetLastError() == WSAECONNRESET) {
649 return MBEDTLS_ERR_NET_CONN_RESET;
650 }
651#else
652 if (errno == EPIPE || errno == ECONNRESET) {
653 return MBEDTLS_ERR_NET_CONN_RESET;
654 }
655
656 if (errno == EINTR) {
657 return MBEDTLS_ERR_SSL_WANT_WRITE;
658 }
659#endif
660
661 return MBEDTLS_ERR_NET_SEND_FAILED;
662 }
663
664 return ret;
Paul Bakker5121ce52009-01-03 21:22:43 +0000665}
666
667/*
Robert Larsendf8e5112019-08-23 10:55:47 +0200668 * Close the connection
669 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100670void mbedtls_net_close(mbedtls_net_context *ctx)
Robert Larsendf8e5112019-08-23 10:55:47 +0200671{
Gilles Peskine449bd832023-01-11 14:50:10 +0100672 if (ctx->fd == -1) {
Robert Larsendf8e5112019-08-23 10:55:47 +0200673 return;
Gilles Peskine449bd832023-01-11 14:50:10 +0100674 }
Robert Larsendf8e5112019-08-23 10:55:47 +0200675
Gilles Peskine449bd832023-01-11 14:50:10 +0100676 close(ctx->fd);
Robert Larsendf8e5112019-08-23 10:55:47 +0200677
678 ctx->fd = -1;
679}
680
681/*
Paul Bakker5121ce52009-01-03 21:22:43 +0000682 * Gracefully close the connection
683 */
Gilles Peskine449bd832023-01-11 14:50:10 +0100684void mbedtls_net_free(mbedtls_net_context *ctx)
Paul Bakker5121ce52009-01-03 21:22:43 +0000685{
Gilles Peskine449bd832023-01-11 14:50:10 +0100686 if (ctx->fd == -1) {
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200687 return;
Gilles Peskine449bd832023-01-11 14:50:10 +0100688 }
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200689
Gilles Peskine449bd832023-01-11 14:50:10 +0100690 shutdown(ctx->fd, 2);
691 close(ctx->fd);
Manuel Pégourié-Gonnard91895852015-06-30 13:34:45 +0200692
693 ctx->fd = -1;
Paul Bakker5121ce52009-01-03 21:22:43 +0000694}
695
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200696#endif /* MBEDTLS_NET_C */