Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(73)

Side by Side Diff: net/socket/ssl_client_socket_nss.cc

Issue 11366155: SSLClientSocket::IsConnected should care for internal buffers (Closed) Base URL: http://git.chromium.org/chromium/src.git@master
Patch Set: review #30 Created 7 years, 11 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
« no previous file with comments | « net/socket/ssl_client_socket_nss.h ('k') | no next file » | no next file with comments »
Toggle Intra-line Diffs ('i') | Expand Comments ('e') | Collapse Comments ('c') | Show Comments Hide Comments ('s')
OLDNEW
1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 // This file includes code SSLClientSocketNSS::DoVerifyCertComplete() derived 5 // This file includes code SSLClientSocketNSS::DoVerifyCertComplete() derived
6 // from AuthCertificateCallback() in 6 // from AuthCertificateCallback() in
7 // mozilla/security/manager/ssl/src/nsNSSCallbacks.cpp. 7 // mozilla/security/manager/ssl/src/nsNSSCallbacks.cpp.
8 8
9 /* ***** BEGIN LICENSE BLOCK ***** 9 /* ***** BEGIN LICENSE BLOCK *****
10 * Version: MPL 1.1/GPL 2.0/LGPL 2.1 10 * Version: MPL 1.1/GPL 2.0/LGPL 2.1
(...skipping 624 matching lines...) Expand 10 before | Expand all | Expand 10 after
635 // any time. 635 // any time.
636 const HandshakeState& state() const { return network_handshake_state_; } 636 const HandshakeState& state() const { return network_handshake_state_; }
637 637
638 // Called on the network task runner. 638 // Called on the network task runner.
639 // Read() and Write() mirror the net::Socket functions of the same name. 639 // Read() and Write() mirror the net::Socket functions of the same name.
640 // If ERR_IO_PENDING is returned, |callback| will be invoked on the network 640 // If ERR_IO_PENDING is returned, |callback| will be invoked on the network
641 // task runner at a later point, unless the caller calls Detach(). 641 // task runner at a later point, unless the caller calls Detach().
642 int Read(IOBuffer* buf, int buf_len, const CompletionCallback& callback); 642 int Read(IOBuffer* buf, int buf_len, const CompletionCallback& callback);
643 int Write(IOBuffer* buf, int buf_len, const CompletionCallback& callback); 643 int Write(IOBuffer* buf, int buf_len, const CompletionCallback& callback);
644 644
645 // Called on the network task runner.
646 bool IsClosed();
647 bool HasPendingAsyncOperation();
648 bool HasUnhandledReceivedData();
649
645 private: 650 private:
646 friend class base::RefCountedThreadSafe<Core>; 651 friend class base::RefCountedThreadSafe<Core>;
647 ~Core(); 652 ~Core();
648 653
649 enum State { 654 enum State {
650 STATE_NONE, 655 STATE_NONE,
651 STATE_HANDSHAKE, 656 STATE_HANDSHAKE,
652 STATE_GET_DOMAIN_BOUND_CERT_COMPLETE, 657 STATE_GET_DOMAIN_BOUND_CERT_COMPLETE,
653 }; 658 };
654 659
660 enum Operation {
661 OPERATION_READ,
662 OPERATION_WRITE,
663 OPERATION_UPDATE,
664 };
665
655 bool OnNSSTaskRunner() const; 666 bool OnNSSTaskRunner() const;
656 bool OnNetworkTaskRunner() const; 667 bool OnNetworkTaskRunner() const;
657 668
658 //////////////////////////////////////////////////////////////////////////// 669 ////////////////////////////////////////////////////////////////////////////
659 // Methods that are ONLY called on the NSS task runner: 670 // Methods that are ONLY called on the NSS task runner:
660 //////////////////////////////////////////////////////////////////////////// 671 ////////////////////////////////////////////////////////////////////////////
661 672
662 // Called by NSS during full handshakes to allow the application to 673 // Called by NSS during full handshakes to allow the application to
663 // verify the certificate. Instead of verifying the certificate in the midst 674 // verify the certificate. Instead of verifying the certificate in the midst
664 // of the handshake, SECSuccess is always returned and the peer's certificate 675 // of the handshake, SECSuccess is always returned and the peer's certificate
(...skipping 68 matching lines...) Expand 10 before | Expand all | Expand 10 after
733 bool DoTransportIO(); 744 bool DoTransportIO();
734 int BufferRecv(); 745 int BufferRecv();
735 int BufferSend(); 746 int BufferSend();
736 747
737 void OnRecvComplete(int result); 748 void OnRecvComplete(int result);
738 void OnSendComplete(int result); 749 void OnSendComplete(int result);
739 750
740 void DoConnectCallback(int result); 751 void DoConnectCallback(int result);
741 void DoReadCallback(int result); 752 void DoReadCallback(int result);
742 void DoWriteCallback(int result); 753 void DoWriteCallback(int result);
754 void UpdateNSSTaskRunnerStatus(int amount_in_read_buffer,
755 bool closed,
756 Operation operation,
757 const base::Closure& callback);
743 758
744 // Client channel ID handler. 759 // Client channel ID handler.
745 static SECStatus ClientChannelIDHandler( 760 static SECStatus ClientChannelIDHandler(
746 void* arg, 761 void* arg,
747 PRFileDesc* socket, 762 PRFileDesc* socket,
748 SECKEYPublicKey **out_public_key, 763 SECKEYPublicKey **out_public_key,
749 SECKEYPrivateKey **out_private_key); 764 SECKEYPrivateKey **out_private_key);
750 765
751 // ImportChannelIDKeys is a helper function for turning a DER-encoded cert and 766 // ImportChannelIDKeys is a helper function for turning a DER-encoded cert and
752 // key into a SECKEYPublicKey and SECKEYPrivateKey. Returns OK upon success 767 // key into a SECKEYPublicKey and SECKEYPrivateKey. Returns OK upon success
(...skipping 57 matching lines...) Expand 10 before | Expand all | Expand 10 after
810 ClientSocketHandle* transport_; 825 ClientSocketHandle* transport_;
811 base::WeakPtrFactory<BoundNetLog> weak_net_log_factory_; 826 base::WeakPtrFactory<BoundNetLog> weak_net_log_factory_;
812 827
813 // The current handshake state. Mirrors |nss_handshake_state_|. 828 // The current handshake state. Mirrors |nss_handshake_state_|.
814 HandshakeState network_handshake_state_; 829 HandshakeState network_handshake_state_;
815 830
816 // The service for retrieving Channel ID keys. May be NULL. 831 // The service for retrieving Channel ID keys. May be NULL.
817 ServerBoundCertService* server_bound_cert_service_; 832 ServerBoundCertService* server_bound_cert_service_;
818 ServerBoundCertService::RequestHandle domain_bound_cert_request_handle_; 833 ServerBoundCertService::RequestHandle domain_bound_cert_request_handle_;
819 834
835 // The information about NSS task runner.
836 int unhandled_buffer_size_;
837 bool nss_waiting_read_;
838 bool nss_waiting_write_;
839 bool nss_is_closed_;
840
820 //////////////////////////////////////////////////////////////////////////// 841 ////////////////////////////////////////////////////////////////////////////
821 // Members that are ONLY accessed on the NSS task runner: 842 // Members that are ONLY accessed on the NSS task runner:
822 //////////////////////////////////////////////////////////////////////////// 843 ////////////////////////////////////////////////////////////////////////////
823 HostPortPair host_and_port_; 844 HostPortPair host_and_port_;
824 SSLConfig ssl_config_; 845 SSLConfig ssl_config_;
825 846
826 // NSS SSL socket. 847 // NSS SSL socket.
827 PRFileDesc* nss_fd_; 848 PRFileDesc* nss_fd_;
828 849
829 // Buffers for the network end of the SSL state machine 850 // Buffers for the network end of the SSL state machine
(...skipping 59 matching lines...) Expand 10 before | Expand all | Expand 10 after
889 base::SequencedTaskRunner* nss_task_runner, 910 base::SequencedTaskRunner* nss_task_runner,
890 ClientSocketHandle* transport, 911 ClientSocketHandle* transport,
891 const HostPortPair& host_and_port, 912 const HostPortPair& host_and_port,
892 const SSLConfig& ssl_config, 913 const SSLConfig& ssl_config,
893 BoundNetLog* net_log, 914 BoundNetLog* net_log,
894 ServerBoundCertService* server_bound_cert_service) 915 ServerBoundCertService* server_bound_cert_service)
895 : detached_(false), 916 : detached_(false),
896 transport_(transport), 917 transport_(transport),
897 weak_net_log_factory_(net_log), 918 weak_net_log_factory_(net_log),
898 server_bound_cert_service_(server_bound_cert_service), 919 server_bound_cert_service_(server_bound_cert_service),
920 unhandled_buffer_size_(0),
921 nss_waiting_read_(false),
922 nss_waiting_write_(false),
923 nss_is_closed_(false),
899 host_and_port_(host_and_port), 924 host_and_port_(host_and_port),
900 ssl_config_(ssl_config), 925 ssl_config_(ssl_config),
901 nss_fd_(NULL), 926 nss_fd_(NULL),
902 nss_bufs_(NULL), 927 nss_bufs_(NULL),
903 next_handshake_state_(STATE_NONE), 928 next_handshake_state_(STATE_NONE),
904 channel_id_xtn_negotiated_(false), 929 channel_id_xtn_negotiated_(false),
905 channel_id_needed_(false), 930 channel_id_needed_(false),
906 client_auth_cert_needed_(false), 931 client_auth_cert_needed_(false),
907 handshake_callback_called_(false), 932 handshake_callback_called_(false),
908 transport_recv_busy_(false), 933 transport_recv_busy_(false),
(...skipping 188 matching lines...) Expand 10 before | Expand all | Expand 10 after
1097 return posted ? ERR_IO_PENDING : ERR_ABORTED; 1122 return posted ? ERR_IO_PENDING : ERR_ABORTED;
1098 } 1123 }
1099 1124
1100 DCHECK(OnNSSTaskRunner()); 1125 DCHECK(OnNSSTaskRunner());
1101 DCHECK(handshake_callback_called_); 1126 DCHECK(handshake_callback_called_);
1102 DCHECK_EQ(STATE_NONE, next_handshake_state_); 1127 DCHECK_EQ(STATE_NONE, next_handshake_state_);
1103 DCHECK(user_read_callback_.is_null()); 1128 DCHECK(user_read_callback_.is_null());
1104 DCHECK(user_connect_callback_.is_null()); 1129 DCHECK(user_connect_callback_.is_null());
1105 DCHECK(!user_read_buf_); 1130 DCHECK(!user_read_buf_);
1106 DCHECK(nss_bufs_); 1131 DCHECK(nss_bufs_);
1132 DCHECK(!nss_waiting_read_);
1107 1133
1108 user_read_buf_ = buf; 1134 user_read_buf_ = buf;
1109 user_read_buf_len_ = buf_len; 1135 user_read_buf_len_ = buf_len;
1110 1136
1111 int rv = DoReadLoop(OK); 1137 int rv = DoReadLoop(OK);
1112 if (rv == ERR_IO_PENDING) { 1138 if (rv == ERR_IO_PENDING) {
1113 user_read_callback_ = callback; 1139 user_read_callback_ = callback;
1140 nss_waiting_read_ = true;
1114 } else { 1141 } else {
1115 user_read_buf_ = NULL; 1142 user_read_buf_ = NULL;
1116 user_read_buf_len_ = 0; 1143 user_read_buf_len_ = 0;
1117 1144
1118 if (!OnNetworkTaskRunner()) { 1145 if (!OnNetworkTaskRunner()) {
1119 PostOrRunCallback(FROM_HERE, base::Bind(callback, rv)); 1146 PostOrRunCallback(FROM_HERE, base::Bind(callback, rv));
1120 return ERR_IO_PENDING; 1147 return ERR_IO_PENDING;
1121 } 1148 }
1122 } 1149 }
1123 1150
(...skipping 15 matching lines...) Expand all
1139 return rv; 1166 return rv;
1140 } 1167 }
1141 1168
1142 DCHECK(OnNSSTaskRunner()); 1169 DCHECK(OnNSSTaskRunner());
1143 DCHECK(handshake_callback_called_); 1170 DCHECK(handshake_callback_called_);
1144 DCHECK_EQ(STATE_NONE, next_handshake_state_); 1171 DCHECK_EQ(STATE_NONE, next_handshake_state_);
1145 DCHECK(user_write_callback_.is_null()); 1172 DCHECK(user_write_callback_.is_null());
1146 DCHECK(user_connect_callback_.is_null()); 1173 DCHECK(user_connect_callback_.is_null());
1147 DCHECK(!user_write_buf_); 1174 DCHECK(!user_write_buf_);
1148 DCHECK(nss_bufs_); 1175 DCHECK(nss_bufs_);
1176 DCHECK(!nss_waiting_write_);
1149 1177
1150 user_write_buf_ = buf; 1178 user_write_buf_ = buf;
1151 user_write_buf_len_ = buf_len; 1179 user_write_buf_len_ = buf_len;
1152 1180
1153 int rv = DoWriteLoop(OK); 1181 int rv = DoWriteLoop(OK);
1154 if (rv == ERR_IO_PENDING) { 1182 if (rv == ERR_IO_PENDING) {
1155 user_write_callback_ = callback; 1183 user_write_callback_ = callback;
1184 nss_waiting_write_ = true;
1156 } else { 1185 } else {
1157 user_write_buf_ = NULL; 1186 user_write_buf_ = NULL;
1158 user_write_buf_len_ = 0; 1187 user_write_buf_len_ = 0;
1159 1188
1160 if (!OnNetworkTaskRunner()) { 1189 if (!OnNetworkTaskRunner()) {
1161 PostOrRunCallback(FROM_HERE, base::Bind(callback, rv)); 1190 PostOrRunCallback(FROM_HERE, base::Bind(callback, rv));
1162 return ERR_IO_PENDING; 1191 return ERR_IO_PENDING;
1163 } 1192 }
1164 } 1193 }
1165 1194
1166 return rv; 1195 return rv;
1167 } 1196 }
1168 1197
1198 bool SSLClientSocketNSS::Core::IsClosed() {
1199 return nss_is_closed_;
1200 }
1201
1202 bool SSLClientSocketNSS::Core::HasPendingAsyncOperation() {
1203 DCHECK(OnNetworkTaskRunner());
1204 return nss_waiting_read_ || nss_waiting_write_;
1205 }
1206
1207 bool SSLClientSocketNSS::Core::HasUnhandledReceivedData() {
1208 DCHECK(OnNetworkTaskRunner());
1209 return unhandled_buffer_size_ != 0;
1210 }
1211
1169 bool SSLClientSocketNSS::Core::OnNSSTaskRunner() const { 1212 bool SSLClientSocketNSS::Core::OnNSSTaskRunner() const {
1170 return nss_task_runner_->RunsTasksOnCurrentThread(); 1213 return nss_task_runner_->RunsTasksOnCurrentThread();
1171 } 1214 }
1172 1215
1173 bool SSLClientSocketNSS::Core::OnNetworkTaskRunner() const { 1216 bool SSLClientSocketNSS::Core::OnNetworkTaskRunner() const {
1174 return network_task_runner_->RunsTasksOnCurrentThread(); 1217 return network_task_runner_->RunsTasksOnCurrentThread();
1175 } 1218 }
1176 1219
1177 // static 1220 // static
1178 SECStatus SSLClientSocketNSS::Core::OwnAuthCertHandler( 1221 SECStatus SSLClientSocketNSS::Core::OwnAuthCertHandler(
(...skipping 858 matching lines...) Expand 10 before | Expand all | Expand 10 after
2037 GotoState(STATE_HANDSHAKE); 2080 GotoState(STATE_HANDSHAKE);
2038 return OK; 2081 return OK;
2039 } 2082 }
2040 2083
2041 int SSLClientSocketNSS::Core::DoPayloadRead() { 2084 int SSLClientSocketNSS::Core::DoPayloadRead() {
2042 DCHECK(OnNSSTaskRunner()); 2085 DCHECK(OnNSSTaskRunner());
2043 DCHECK(user_read_buf_); 2086 DCHECK(user_read_buf_);
2044 DCHECK_GT(user_read_buf_len_, 0); 2087 DCHECK_GT(user_read_buf_len_, 0);
2045 2088
2046 int rv = PR_Read(nss_fd_, user_read_buf_->data(), user_read_buf_len_); 2089 int rv = PR_Read(nss_fd_, user_read_buf_->data(), user_read_buf_len_);
2090 // Update NSSTaskRunner status because PR_Read may consume |nss_bufs_|, then
2091 // following |amount_in_read_buffer| may be changed here.
2092 int amount_in_read_buffer = memio_GetReadableBufferSize(nss_bufs_);
2093 base::Closure task = base::Bind(
2094 &Core::UpdateNSSTaskRunnerStatus,
2095 this,
2096 amount_in_read_buffer,
2097 rv <= 0 && rv != ERR_IO_PENDING,
2098 OPERATION_UPDATE,
2099 base::Closure());
2100
2047 if (client_auth_cert_needed_) { 2101 if (client_auth_cert_needed_) {
2048 // We don't need to invalidate the non-client-authenticated SSL session 2102 // We don't need to invalidate the non-client-authenticated SSL session
2049 // because the server will renegotiate anyway. 2103 // because the server will renegotiate anyway.
2050 rv = ERR_SSL_CLIENT_AUTH_CERT_NEEDED; 2104 rv = ERR_SSL_CLIENT_AUTH_CERT_NEEDED;
2051 PostOrRunCallback( 2105 PostOrRunCallback(
2052 FROM_HERE, 2106 FROM_HERE,
2053 base::Bind(&AddLogEventWithCallback, weak_net_log_, 2107 base::Bind(&AddLogEventWithCallback, weak_net_log_,
2054 NetLog::TYPE_SSL_READ_ERROR, 2108 NetLog::TYPE_SSL_READ_ERROR,
2055 CreateNetLogSSLErrorCallback(rv, 0))); 2109 CreateNetLogSSLErrorCallback(rv, 0)));
2056 return rv; 2110 return rv;
(...skipping 17 matching lines...) Expand all
2074 NetLog::TYPE_SSL_READ_ERROR, 2128 NetLog::TYPE_SSL_READ_ERROR,
2075 CreateNetLogSSLErrorCallback(rv, prerr))); 2129 CreateNetLogSSLErrorCallback(rv, prerr)));
2076 return rv; 2130 return rv;
2077 } 2131 }
2078 2132
2079 int SSLClientSocketNSS::Core::DoPayloadWrite() { 2133 int SSLClientSocketNSS::Core::DoPayloadWrite() {
2080 DCHECK(OnNSSTaskRunner()); 2134 DCHECK(OnNSSTaskRunner());
2081 2135
2082 DCHECK(user_write_buf_); 2136 DCHECK(user_write_buf_);
2083 2137
2138 int old_amount_in_read_buffer = memio_GetReadableBufferSize(nss_bufs_);
2084 int rv = PR_Write(nss_fd_, user_write_buf_->data(), user_write_buf_len_); 2139 int rv = PR_Write(nss_fd_, user_write_buf_->data(), user_write_buf_len_);
2140 int new_amount_in_read_buffer = memio_GetReadableBufferSize(nss_bufs_);
2141 // PR_Write could potentially consume the unhandled data in the memio read
2142 // buffer if a renegotiation is in progress. If the buffer is consumed,
2143 // notify the latest buffer size to NetworkRunner.
2144 if (old_amount_in_read_buffer != new_amount_in_read_buffer) {
2145 base::Closure task = base::Bind(
2146 &Core::UpdateNSSTaskRunnerStatus,
2147 this,
2148 new_amount_in_read_buffer,
2149 false,
2150 OPERATION_UPDATE,
2151 base::Closure());
2152 }
2085 if (rv >= 0) { 2153 if (rv >= 0) {
2086 PostOrRunCallback( 2154 PostOrRunCallback(
2087 FROM_HERE, 2155 FROM_HERE,
2088 base::Bind(&LogByteTransferEvent, weak_net_log_, 2156 base::Bind(&LogByteTransferEvent, weak_net_log_,
2089 NetLog::TYPE_SSL_SOCKET_BYTES_SENT, rv, 2157 NetLog::TYPE_SSL_SOCKET_BYTES_SENT, rv,
2090 scoped_refptr<IOBuffer>(user_write_buf_))); 2158 scoped_refptr<IOBuffer>(user_write_buf_)));
2091 return rv; 2159 return rv;
2092 } 2160 }
2093 PRErrorCode prerr = PR_GetError(); 2161 PRErrorCode prerr = PR_GetError();
2094 if (prerr == PR_WOULD_BLOCK_ERROR) 2162 if (prerr == PR_WOULD_BLOCK_ERROR)
(...skipping 185 matching lines...) Expand 10 before | Expand all | Expand 10 after
2280 PostOrRunCallback(FROM_HERE, c); 2348 PostOrRunCallback(FROM_HERE, c);
2281 } 2349 }
2282 2350
2283 void SSLClientSocketNSS::Core::DoReadCallback(int rv) { 2351 void SSLClientSocketNSS::Core::DoReadCallback(int rv) {
2284 DCHECK(OnNSSTaskRunner()); 2352 DCHECK(OnNSSTaskRunner());
2285 DCHECK_NE(ERR_IO_PENDING, rv); 2353 DCHECK_NE(ERR_IO_PENDING, rv);
2286 DCHECK(!user_read_callback_.is_null()); 2354 DCHECK(!user_read_callback_.is_null());
2287 2355
2288 user_read_buf_ = NULL; 2356 user_read_buf_ = NULL;
2289 user_read_buf_len_ = 0; 2357 user_read_buf_len_ = 0;
2290 base::Closure c = base::Bind( 2358 int amount_in_read_buffer = memio_GetReadableBufferSize(nss_bufs_);
2291 base::ResetAndReturn(&user_read_callback_), 2359 // This will invoke the user callback with |rv| as result.
2292 rv); 2360 base::Closure user_cb = base::Bind(
2293 PostOrRunCallback(FROM_HERE, c); 2361 base::ResetAndReturn(&user_read_callback_), rv);
2362 // This is used to curry the |amount_int_read_buffer| and |user_cb| back to
2363 // the network task runner.
2364 base::Closure task = base::Bind(
2365 &Core::UpdateNSSTaskRunnerStatus,
2366 this,
2367 amount_in_read_buffer,
2368 rv <= 0, // EOF or errors.
2369 OPERATION_READ,
2370 user_cb);
2371 PostOrRunCallback(FROM_HERE, task);
2294 } 2372 }
2295 2373
2296 void SSLClientSocketNSS::Core::DoWriteCallback(int rv) { 2374 void SSLClientSocketNSS::Core::DoWriteCallback(int rv) {
2297 DCHECK(OnNSSTaskRunner()); 2375 DCHECK(OnNSSTaskRunner());
2298 DCHECK_NE(ERR_IO_PENDING, rv); 2376 DCHECK_NE(ERR_IO_PENDING, rv);
2299 DCHECK(!user_write_callback_.is_null()); 2377 DCHECK(!user_write_callback_.is_null());
2300 2378
2301 // Since Run may result in Write being called, clear |user_write_callback_| 2379 // Since Run may result in Write being called, clear |user_write_callback_|
2302 // up front. 2380 // up front.
2303 user_write_buf_ = NULL; 2381 user_write_buf_ = NULL;
2304 user_write_buf_len_ = 0; 2382 user_write_buf_len_ = 0;
2305 base::Closure c = base::Bind( 2383 // Update buffer status because DoWriteLoop called DoTransportIO which may
2306 base::ResetAndReturn(&user_write_callback_), 2384 // perform read operations.
2307 rv); 2385 int amount_in_read_buffer = memio_GetReadableBufferSize(nss_bufs_);
2308 PostOrRunCallback(FROM_HERE, c); 2386 // This will invoke the user callback with |rv| as result.
2387 base::Closure user_cb = base::Bind(
2388 base::ResetAndReturn(&user_write_callback_), rv);
2389 // This is used to curry the |amount_int_read_buffer| and |user_cb| back to
2390 // the network task runner.
2391 base::Closure task = base::Bind(
2392 &Core::UpdateNSSTaskRunnerStatus,
2393 this,
2394 amount_in_read_buffer,
2395 rv < 0, // Errors.
2396 OPERATION_WRITE,
2397 user_cb);
2398 PostOrRunCallback(FROM_HERE, task);
2399 }
2400
2401 void SSLClientSocketNSS::Core::UpdateNSSTaskRunnerStatus(
2402 int amount_in_read_buffer,
2403 bool closed,
2404 Operation operation,
2405 const base::Closure& callback) {
2406 DCHECK(OnNetworkTaskRunner());
2407 DCHECK(!callback.is_null());
Ryan Sleevi 2013/01/18 00:03:24 Have you actually run this on a debug build on Lin
Takashi Toyoshima 2013/01/21 14:51:17 Thanks. I didn't check it in debug build this time
2408 DCHECK((operation == OPERATION_READ && nss_waiting_read_) ||
2409 (operation == OPERATION_WRITE && nss_waiting_write_) ||
2410 operation == OPERATION_UPDATE);
2411
2412 unhandled_buffer_size_ = amount_in_read_buffer;
2413 if (closed)
2414 nss_is_closed_ = true;
2415 if (operation == OPERATION_READ)
2416 nss_waiting_read_ = false;
2417 else if (operation == OPERATION_WRITE)
2418 nss_waiting_write_ = false;
2419
2420 if (operation != OPERATION_UPDATE)
2421 callback.Run();
2309 } 2422 }
2310 2423
2311 SECStatus SSLClientSocketNSS::Core::ClientChannelIDHandler( 2424 SECStatus SSLClientSocketNSS::Core::ClientChannelIDHandler(
2312 void* arg, 2425 void* arg,
2313 PRFileDesc* socket, 2426 PRFileDesc* socket,
2314 SECKEYPublicKey **out_public_key, 2427 SECKEYPublicKey **out_public_key,
2315 SECKEYPrivateKey **out_private_key) { 2428 SECKEYPrivateKey **out_private_key) {
2316 Core* core = reinterpret_cast<Core*>(arg); 2429 Core* core = reinterpret_cast<Core*>(arg);
2317 DCHECK(core->OnNSSTaskRunner()); 2430 DCHECK(core->OnNSSTaskRunner());
2318 2431
(...skipping 408 matching lines...) Expand 10 before | Expand all | Expand 10 after
2727 const SSLConfig& ssl_config, 2840 const SSLConfig& ssl_config,
2728 const SSLClientSocketContext& context) 2841 const SSLClientSocketContext& context)
2729 : nss_task_runner_(nss_task_runner), 2842 : nss_task_runner_(nss_task_runner),
2730 transport_(transport_socket), 2843 transport_(transport_socket),
2731 host_and_port_(host_and_port), 2844 host_and_port_(host_and_port),
2732 ssl_config_(ssl_config), 2845 ssl_config_(ssl_config),
2733 cert_verifier_(context.cert_verifier), 2846 cert_verifier_(context.cert_verifier),
2734 server_bound_cert_service_(context.server_bound_cert_service), 2847 server_bound_cert_service_(context.server_bound_cert_service),
2735 ssl_session_cache_shard_(context.ssl_session_cache_shard), 2848 ssl_session_cache_shard_(context.ssl_session_cache_shard),
2736 completed_handshake_(false), 2849 completed_handshake_(false),
2850 ssl_is_closed_(false),
2737 next_handshake_state_(STATE_NONE), 2851 next_handshake_state_(STATE_NONE),
2738 nss_fd_(NULL), 2852 nss_fd_(NULL),
2739 net_log_(transport_socket->socket()->NetLog()), 2853 net_log_(transport_socket->socket()->NetLog()),
2740 transport_security_state_(context.transport_security_state), 2854 transport_security_state_(context.transport_security_state),
2741 valid_thread_id_(base::kInvalidThreadId) { 2855 valid_thread_id_(base::kInvalidThreadId) {
2742 EnterFunction(""); 2856 EnterFunction("");
2743 InitCore(); 2857 InitCore();
2744 LeaveFunction(""); 2858 LeaveFunction("");
2745 } 2859 }
2746 2860
(...skipping 168 matching lines...) Expand 10 before | Expand all | Expand 10 after
2915 user_connect_callback_.Reset(); 3029 user_connect_callback_.Reset();
2916 server_cert_verify_result_.Reset(); 3030 server_cert_verify_result_.Reset();
2917 completed_handshake_ = false; 3031 completed_handshake_ = false;
2918 start_cert_verification_time_ = base::TimeTicks(); 3032 start_cert_verification_time_ = base::TimeTicks();
2919 InitCore(); 3033 InitCore();
2920 3034
2921 LeaveFunction(""); 3035 LeaveFunction("");
2922 } 3036 }
2923 3037
2924 bool SSLClientSocketNSS::IsConnected() const { 3038 bool SSLClientSocketNSS::IsConnected() const {
2925 // Ideally, we should also check if we have received the close_notify alert
2926 // message from the server, and return false in that case. We're not doing
2927 // that, so this function may return a false positive. Since the upper
2928 // layer (HttpNetworkTransaction) needs to handle a persistent connection
2929 // closed by the server when we send a request anyway, a false positive in
2930 // exchange for simpler code is a good trade-off.
2931 EnterFunction(""); 3039 EnterFunction("");
2932 bool ret = completed_handshake_ && transport_->socket()->IsConnected(); 3040 bool ret = completed_handshake_ &&
3041 !ssl_is_closed_ &&
3042 (core_->HasPendingAsyncOperation() ||
3043 (!core_->IsClosed() && core_->HasUnhandledReceivedData()) ||
3044 transport_->socket()->IsConnected());
Ryan Sleevi 2013/01/18 00:03:24 indents are wrong here
Takashi Toyoshima 2013/01/21 14:51:17 Done.
2933 LeaveFunction(""); 3045 LeaveFunction("");
2934 return ret; 3046 return ret;
2935 } 3047 }
2936 3048
2937 bool SSLClientSocketNSS::IsConnectedAndIdle() const { 3049 bool SSLClientSocketNSS::IsConnectedAndIdle() const {
2938 // Unlike IsConnected, this method doesn't return a false positive.
2939 //
2940 // Strictly speaking, we should check if we have received the close_notify
2941 // alert message from the server, and return false in that case. Although
2942 // the close_notify alert message means EOF in the SSL layer, it is just
2943 // bytes to the transport layer below, so
2944 // transport_->socket()->IsConnectedAndIdle() returns the desired false
2945 // when we receive close_notify.
2946 EnterFunction(""); 3050 EnterFunction("");
2947 bool ret = completed_handshake_ && transport_->socket()->IsConnectedAndIdle(); 3051 bool ret = IsConnected() &&
3052 (core_->IsClosed() || !core_->HasUnhandledReceivedData()) &&
3053 transport_->socket()->IsConnectedAndIdle();
2948 LeaveFunction(""); 3054 LeaveFunction("");
2949 return ret; 3055 return ret;
2950 } 3056 }
2951 3057
2952 int SSLClientSocketNSS::GetPeerAddress(IPEndPoint* address) const { 3058 int SSLClientSocketNSS::GetPeerAddress(IPEndPoint* address) const {
2953 return transport_->socket()->GetPeerAddress(address); 3059 return transport_->socket()->GetPeerAddress(address);
2954 } 3060 }
2955 3061
2956 int SSLClientSocketNSS::GetLocalAddress(IPEndPoint* address) const { 3062 int SSLClientSocketNSS::GetLocalAddress(IPEndPoint* address) const {
2957 return transport_->socket()->GetLocalAddress(address); 3063 return transport_->socket()->GetLocalAddress(address);
(...skipping 51 matching lines...) Expand 10 before | Expand all | Expand 10 after
3009 return base::TimeDelta::FromMicroseconds(-1); 3115 return base::TimeDelta::FromMicroseconds(-1);
3010 } 3116 }
3011 3117
3012 int SSLClientSocketNSS::Read(IOBuffer* buf, int buf_len, 3118 int SSLClientSocketNSS::Read(IOBuffer* buf, int buf_len,
3013 const CompletionCallback& callback) { 3119 const CompletionCallback& callback) {
3014 DCHECK(core_); 3120 DCHECK(core_);
3015 DCHECK(!callback.is_null()); 3121 DCHECK(!callback.is_null());
3016 3122
3017 EnterFunction(buf_len); 3123 EnterFunction(buf_len);
3018 int rv = core_->Read(buf, buf_len, callback); 3124 int rv = core_->Read(buf, buf_len, callback);
3125 if (rv <= 0 && rv != ERR_IO_PENDING)
3126 ssl_is_closed_ = true;
3019 LeaveFunction(rv); 3127 LeaveFunction(rv);
3020 3128
3021 return rv; 3129 return rv;
3022 } 3130 }
3023 3131
3024 int SSLClientSocketNSS::Write(IOBuffer* buf, int buf_len, 3132 int SSLClientSocketNSS::Write(IOBuffer* buf, int buf_len,
3025 const CompletionCallback& callback) { 3133 const CompletionCallback& callback) {
3026 DCHECK(core_); 3134 DCHECK(core_);
3027 DCHECK(!callback.is_null()); 3135 DCHECK(!callback.is_null());
3028 3136
3029 EnterFunction(buf_len); 3137 EnterFunction(buf_len);
3030 int rv = core_->Write(buf, buf_len, callback); 3138 int rv = core_->Write(buf, buf_len, callback);
3139 if (rv < 0 && rv != ERR_IO_PENDING)
3140 ssl_is_closed_ = true;
3031 LeaveFunction(rv); 3141 LeaveFunction(rv);
3032 3142
3033 return rv; 3143 return rv;
3034 } 3144 }
3035 3145
3036 bool SSLClientSocketNSS::SetReceiveBufferSize(int32 size) { 3146 bool SSLClientSocketNSS::SetReceiveBufferSize(int32 size) {
3037 return transport_->socket()->SetReceiveBufferSize(size); 3147 return transport_->socket()->SetReceiveBufferSize(size);
3038 } 3148 }
3039 3149
3040 bool SSLClientSocketNSS::SetSendBufferSize(int32 size) { 3150 bool SSLClientSocketNSS::SetSendBufferSize(int32 size) {
(...skipping 450 matching lines...) Expand 10 before | Expand all | Expand 10 after
3491 EnsureThreadIdAssigned(); 3601 EnsureThreadIdAssigned();
3492 base::AutoLock auto_lock(lock_); 3602 base::AutoLock auto_lock(lock_);
3493 return valid_thread_id_ == base::PlatformThread::CurrentId(); 3603 return valid_thread_id_ == base::PlatformThread::CurrentId();
3494 } 3604 }
3495 3605
3496 ServerBoundCertService* SSLClientSocketNSS::GetServerBoundCertService() const { 3606 ServerBoundCertService* SSLClientSocketNSS::GetServerBoundCertService() const {
3497 return server_bound_cert_service_; 3607 return server_bound_cert_service_;
3498 } 3608 }
3499 3609
3500 } // namespace net 3610 } // namespace net
OLDNEW
« no previous file with comments | « net/socket/ssl_client_socket_nss.h ('k') | no next file » | no next file with comments »

Powered by Google App Engine
This is Rietveld 408576698