2 * uclient - ustream based protocol client library
4 * Copyright (C) 2014 Felix Fietkau <nbd@openwrt.org>
6 * Permission to use, copy, modify, and/or distribute this software for any
7 * purpose with or without fee is hereby granted, provided that the above
8 * copyright notice and this permission notice appear in all copies.
10 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
15 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
16 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
27 #include <libubox/blobmsg.h>
30 #include "uclient-utils.h"
33 #define LIB_EXT "dylib"
38 static struct ustream_ssl_ctx *ssl_ctx;
39 static const struct ustream_ssl_ops *ssl_ops;
40 static int quiet = false;
41 static bool verify = true;
42 static bool default_certs = false;
43 static const char *output_file;
44 static int output_fd = -1;
47 static char *username;
48 static char *password;
49 static char *auth_str;
53 static void request_done(struct uclient *cl);
55 static int open_output_file(const char *path, bool create)
62 flags |= O_CREAT | O_EXCL;
65 if (!strcmp(output_file, "-"))
69 fprintf(stderr, "Writing to stdout\n");
72 return open(output_file, flags, 0644);
75 filename = uclient_get_url_filename(path, "index.html");
77 fprintf(stderr, "Writing to '%s'\n", filename);
78 ret = open(filename, flags, 0644);
84 static void header_done_cb(struct uclient *cl)
88 if (retries < 10 && uclient_http_redirect(cl)) {
90 fprintf(stderr, "Redirected to %s on %s\n", cl->url->location, cl->url->host);
97 switch (cl->status_code) {
100 output_fd = open_output_file(cl->url->location, true);
103 perror("Cannot open output file");
111 fprintf(stderr, "HTTP error %d\n", cl->status_code);
118 static void read_data_cb(struct uclient *cl)
127 len = uclient_read(cl, buf, sizeof(buf));
132 write(output_fd, buf, len);
136 static void msg_connecting(struct uclient *cl)
138 char addr[INET6_ADDRSTRLEN];
144 uclient_get_addr(addr, &port, &cl->remote_addr);
145 fprintf(stderr, "Connecting to %s:%d\n", addr, port);
148 static int init_request(struct uclient *cl)
153 uclient_http_set_ssl_ctx(cl, ssl_ops, ssl_ctx, verify);
155 rc = uclient_connect(cl);
161 rc = uclient_http_set_request_type(cl, "GET");
165 rc = uclient_request(cl);
172 static void request_done(struct uclient *cl)
175 uclient_set_url(cl, *urls, auth_str);
177 error_ret = init_request(cl);
182 if (output_fd >= 0 && !output_file) {
186 uclient_disconnect(cl);
191 static void eof_cb(struct uclient *cl)
195 fprintf(stderr, "Connection reset prematurely\n");
198 fprintf(stderr, "Download completed (%d bytes)\n", out_bytes);
203 static void handle_uclient_error(struct uclient *cl, int code)
205 const char *type = "Unknown error";
209 case UCLIENT_ERROR_CONNECT:
210 type = "Connection failed";
213 case UCLIENT_ERROR_TIMEDOUT:
214 type = "Connection timed out";
217 case UCLIENT_ERROR_SSL_INVALID_CERT:
218 type = "Invalid SSL certificate";
222 case UCLIENT_ERROR_SSL_CN_MISMATCH:
223 type = "Server hostname does not match SSL certificate";
233 fprintf(stderr, "Connection error: %s%s\n", type, ignore ? " (ignored)" : "");
241 static const struct uclient_cb cb = {
242 .header_done = header_done_cb,
243 .data_read = read_data_cb,
245 .error = handle_uclient_error,
248 static int usage(const char *progname)
251 "Usage: %s [options] <URL>\n"
253 " -q: Turn off status messages\n"
254 " -O <file>: Redirect output to file (use \"-\" for stdout)\n"
255 " --user=<user> HTTP authentication username\n"
256 " --password=<password> HTTP authentication password\n"
259 " --ca-certificate=<cert>: Load CA certificates from file <cert>\n"
260 " --no-check-certificate: don't validate the server's certificate\n"
265 static void init_ca_cert(void)
270 glob("/etc/ssl/certs/*.crt", 0, NULL, &gl);
271 for (i = 0; i < gl.gl_pathc; i++)
272 ssl_ops->context_add_ca_crt_file(ssl_ctx, gl.gl_pathv[i]);
275 static void init_ustream_ssl(void)
279 dlh = dlopen("libustream-ssl." LIB_EXT, RTLD_LAZY | RTLD_LOCAL);
283 ssl_ops = dlsym(dlh, "ustream_ssl_ops");
287 ssl_ctx = ssl_ops->context_new(false);
290 static int no_ssl(const char *progname)
292 fprintf(stderr, "%s: SSL support not available, please install ustream-ssl\n", progname);
297 L_NO_CHECK_CERTIFICATE,
303 static const struct option longopts[] = {
304 [L_NO_CHECK_CERTIFICATE] = { "no-check-certificate", no_argument },
305 [L_CA_CERTIFICATE] = { "ca-certificate", required_argument },
306 [L_USER] = { "user", required_argument },
307 [L_PASSWORD] = { "password", required_argument },
313 int main(int argc, char **argv)
315 const char *progname = argv[0];
318 bool has_cert = false;
324 while ((ch = getopt_long(argc, argv, "qO:", longopts, &longopt_idx)) != -1) {
327 switch (longopt_idx) {
328 case L_NO_CHECK_CERTIFICATE:
331 case L_CA_CERTIFICATE:
334 ssl_ops->context_add_ca_crt_file(ssl_ctx, optarg);
339 username = strdup(optarg);
340 memset(optarg, '*', strlen(optarg));
345 password = strdup(optarg);
346 memset(optarg, '*', strlen(optarg));
349 return usage(progname);
353 output_file = optarg;
359 return usage(progname);
366 if (verify && !has_cert)
367 default_certs = true;
370 return usage(progname);
373 for (i = 0; i < argc; i++) {
374 if (!strncmp(argv[i], "https", 5))
375 return no_ssl(progname);
386 asprintf(&auth_str, "%s:%s", username, password);
392 fprintf(stderr, "Downloading '%s'\n", argv[0]);
394 cl = uclient_new(argv[0], auth_str, &cb);
396 fprintf(stderr, "Failed to allocate uclient context\n");
403 rc = init_request(cl);
405 /* no error received, we can enter main loop */
408 fprintf(stderr, "Failed to establish connection\n");
416 if (output_fd >= 0 && output_fd != STDOUT_FILENO)
420 ssl_ops->context_free(ssl_ctx);