blob: 56b30564af69d0b42cf684308512eb4a37fb3b01 [file] [log] [blame]
Paul Bakkerf9c49532013-12-19 15:40:58 +01001/*
2 * SSL server demonstration program using pthread for handling multiple
3 * clients.
4 *
Manuel Pégourié-Gonnarda658a402015-01-23 09:45:19 +00005 * Copyright (C) 2006-2013, ARM Limited, All Rights Reserved
Paul Bakkerf9c49532013-12-19 15:40:58 +01006 *
Manuel Pégourié-Gonnardfe446432015-03-06 13:17:10 +00007 * This file is part of mbed TLS (https://tls.mbed.org)
Paul Bakkerf9c49532013-12-19 15:40:58 +01008 *
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
13 *
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
18 *
19 * You should have received a copy of the GNU General Public License along
20 * with this program; if not, write to the Free Software Foundation, Inc.,
21 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
22 */
23
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020024#if !defined(POLARSSL_CONFIG_FILE)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000025#include "mbedtls/config.h"
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020026#else
27#include POLARSSL_CONFIG_FILE
28#endif
Paul Bakkerf9c49532013-12-19 15:40:58 +010029
Rich Evansf90016a2015-01-19 14:26:37 +000030#if defined(POLARSSL_PLATFORM_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000031#include "mbedtls/platform.h"
Rich Evansf90016a2015-01-19 14:26:37 +000032#else
Rich Evans18b78c72015-02-11 14:06:19 +000033#include <stdio.h>
Rich Evansf90016a2015-01-19 14:26:37 +000034#define polarssl_fprintf fprintf
Rich Evans18b78c72015-02-11 14:06:19 +000035#define polarssl_printf printf
Manuel Pégourié-Gonnardac1f76c2015-02-13 15:11:24 +000036#define polarssl_snprintf snprintf
Rich Evansf90016a2015-01-19 14:26:37 +000037#endif
38
Paul Bakkerf9c49532013-12-19 15:40:58 +010039#if defined(_WIN32)
40#include <windows.h>
41#endif
42
Manuel Pégourié-Gonnard013bffe2015-02-13 14:09:44 +000043#if defined(POLARSSL_BIGNUM_C) && defined(POLARSSL_CERTS_C) && \
44 defined(POLARSSL_ENTROPY_C) && defined(POLARSSL_SSL_TLS_C) && \
45 defined(POLARSSL_SSL_SRV_C) && defined(POLARSSL_NET_C) && \
46 defined(POLARSSL_RSA_C) && defined(POLARSSL_CTR_DRBG_C) && \
47 defined(POLARSSL_X509_CRT_PARSE_C) && defined(POLARSSL_FS_IO) && \
Rich Evans18b78c72015-02-11 14:06:19 +000048 defined(POLARSSL_THREADING_C) && defined(POLARSSL_THREADING_PTHREAD)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000049#include "mbedtls/entropy.h"
50#include "mbedtls/ctr_drbg.h"
51#include "mbedtls/certs.h"
52#include "mbedtls/x509.h"
53#include "mbedtls/ssl.h"
54#include "mbedtls/net.h"
55#include "mbedtls/error.h"
Paul Bakkerf9c49532013-12-19 15:40:58 +010056
Rich Evans18b78c72015-02-11 14:06:19 +000057#include <stdio.h>
58#include <stdlib.h>
59#include <string.h>
60#endif
61
Paul Bakkerf9c49532013-12-19 15:40:58 +010062#if defined(POLARSSL_SSL_CACHE_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000063#include "mbedtls/ssl_cache.h"
Paul Bakkerf9c49532013-12-19 15:40:58 +010064#endif
65
66#if defined(POLARSSL_MEMORY_BUFFER_ALLOC_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000067#include "mbedtls/memory_buffer_alloc.h"
Paul Bakkerf9c49532013-12-19 15:40:58 +010068#endif
69
Rich Evans18b78c72015-02-11 14:06:19 +000070#define HTTP_RESPONSE \
71 "HTTP/1.0 200 OK\r\nContent-Type: text/html\r\n\r\n" \
72 "<h2>mbed TLS Test Server</h2>\r\n" \
73 "<p>Successful connection using: %s</p>\r\n"
74
75#define DEBUG_LEVEL 0
76
Rich Evans85b05ec2015-02-12 11:37:29 +000077#define MAX_NUM_THREADS 5
78
Paul Bakkerf9c49532013-12-19 15:40:58 +010079#if !defined(POLARSSL_BIGNUM_C) || !defined(POLARSSL_CERTS_C) || \
80 !defined(POLARSSL_ENTROPY_C) || !defined(POLARSSL_SSL_TLS_C) || \
81 !defined(POLARSSL_SSL_SRV_C) || !defined(POLARSSL_NET_C) || \
82 !defined(POLARSSL_RSA_C) || !defined(POLARSSL_CTR_DRBG_C) || \
Rich Evans18b78c72015-02-11 14:06:19 +000083 !defined(POLARSSL_X509_CRT_PARSE_C) || !defined(POLARSSL_FS_IO) || \
Paul Bakkerf9c49532013-12-19 15:40:58 +010084 !defined(POLARSSL_THREADING_C) || !defined(POLARSSL_THREADING_PTHREAD)
Rich Evans85b05ec2015-02-12 11:37:29 +000085int main( void )
Paul Bakkerf9c49532013-12-19 15:40:58 +010086{
Rich Evansf90016a2015-01-19 14:26:37 +000087 polarssl_printf("POLARSSL_BIGNUM_C and/or POLARSSL_CERTS_C and/or POLARSSL_ENTROPY_C "
Paul Bakkerf9c49532013-12-19 15:40:58 +010088 "and/or POLARSSL_SSL_TLS_C and/or POLARSSL_SSL_SRV_C and/or "
89 "POLARSSL_NET_C and/or POLARSSL_RSA_C and/or "
90 "POLARSSL_CTR_DRBG_C and/or POLARSSL_X509_CRT_PARSE_C and/or "
91 "POLARSSL_THREADING_C and/or POLARSSL_THREADING_PTHREAD "
92 "not defined.\n");
93 return( 0 );
94}
95#else
Paul Bakkerf9c49532013-12-19 15:40:58 +010096threading_mutex_t debug_mutex;
97
98static void my_mutexed_debug( void *ctx, int level, const char *str )
99{
100 polarssl_mutex_lock( &debug_mutex );
101 if( level < DEBUG_LEVEL )
102 {
Rich Evansf90016a2015-01-19 14:26:37 +0000103 polarssl_fprintf( (FILE *) ctx, "%s", str );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100104 fflush( (FILE *) ctx );
105 }
106 polarssl_mutex_unlock( &debug_mutex );
107}
108
109typedef struct {
110 int client_fd;
111 int thread_complete;
112 entropy_context *entropy;
113#if defined(POLARSSL_SSL_CACHE_C)
114 ssl_cache_context *cache;
115#endif
116 x509_crt *ca_chain;
117 x509_crt *server_cert;
118 pk_context *server_key;
119} thread_info_t;
120
121typedef struct {
122 int active;
123 thread_info_t data;
124 pthread_t thread;
125} pthread_info_t;
126
Paul Bakkerf9c49532013-12-19 15:40:58 +0100127static thread_info_t base_info;
128static pthread_info_t threads[MAX_NUM_THREADS];
129
130static void *handle_ssl_connection( void *data )
131{
132 int ret, len;
133 thread_info_t *thread_info = (thread_info_t *) data;
134 int client_fd = thread_info->client_fd;
135 int thread_id = (int) pthread_self();
136 unsigned char buf[1024];
137 char pers[50];
138 ssl_context ssl;
139 ctr_drbg_context ctr_drbg;
140
Manuel Pégourié-Gonnard955028f2014-07-12 01:27:34 +0200141 /* Make sure memory references are valid */
142 memset( &ssl, 0, sizeof( ssl_context ) );
143 memset( &ctr_drbg, 0, sizeof( ctr_drbg_context ) );
144
Rich Evans783d9d12015-01-30 11:11:57 +0000145 polarssl_snprintf( pers, sizeof(pers), "SSL Pthread Thread %d", thread_id );
Rich Evansf90016a2015-01-19 14:26:37 +0000146 polarssl_printf( " [ #%d ] Client FD %d\n", thread_id, client_fd );
147 polarssl_printf( " [ #%d ] Seeding the random number generator...\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100148
149 /* entropy_func() is thread-safe if POLARSSL_THREADING_C is set
150 */
151 if( ( ret = ctr_drbg_init( &ctr_drbg, entropy_func, thread_info->entropy,
152 (const unsigned char *) pers,
153 strlen( pers ) ) ) != 0 )
154 {
Rich Evansf90016a2015-01-19 14:26:37 +0000155 polarssl_printf( " [ #%d ] failed: ctr_drbg_init returned -0x%04x\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100156 thread_id, -ret );
157 goto thread_exit;
158 }
159
Rich Evansf90016a2015-01-19 14:26:37 +0000160 polarssl_printf( " [ #%d ] ok\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100161
162 /*
163 * 4. Setup stuff
164 */
Rich Evansf90016a2015-01-19 14:26:37 +0000165 polarssl_printf( " [ #%d ] Setting up the SSL data....\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100166
167 if( ( ret = ssl_init( &ssl ) ) != 0 )
168 {
Rich Evansf90016a2015-01-19 14:26:37 +0000169 polarssl_printf( " [ #%d ] failed: ssl_init returned -0x%04x\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100170 thread_id, -ret );
171 goto thread_exit;
172 }
173
174 ssl_set_endpoint( &ssl, SSL_IS_SERVER );
175 ssl_set_authmode( &ssl, SSL_VERIFY_NONE );
176
Manuel Pégourié-Gonnard448ea502015-01-12 11:40:14 +0100177 /* SSLv3 is deprecated, set minimum to TLS 1.0 */
178 ssl_set_min_version( &ssl, SSL_MAJOR_VERSION_3, SSL_MINOR_VERSION_1 );
179
Paul Bakkerf9c49532013-12-19 15:40:58 +0100180 ssl_set_rng( &ssl, ctr_drbg_random, &ctr_drbg );
181 ssl_set_dbg( &ssl, my_mutexed_debug, stdout );
182
183 /* ssl_cache_get() and ssl_cache_set() are thread-safe if
184 * POLARSSL_THREADING_C is set.
185 */
186#if defined(POLARSSL_SSL_CACHE_C)
187 ssl_set_session_cache( &ssl, ssl_cache_get, thread_info->cache,
188 ssl_cache_set, thread_info->cache );
189#endif
190
191 ssl_set_ca_chain( &ssl, thread_info->ca_chain, NULL, NULL );
Manuel Pégourié-Gonnardc5fd3912014-07-08 14:05:52 +0200192 if( ( ret = ssl_set_own_cert( &ssl, thread_info->server_cert, thread_info->server_key ) ) != 0 )
193 {
Rich Evansf90016a2015-01-19 14:26:37 +0000194 polarssl_printf( " failed\n ! ssl_set_own_cert returned %d\n\n", ret );
Manuel Pégourié-Gonnard955028f2014-07-12 01:27:34 +0200195 goto thread_exit;
Manuel Pégourié-Gonnardc5fd3912014-07-08 14:05:52 +0200196 }
Paul Bakkerf9c49532013-12-19 15:40:58 +0100197
Rich Evansf90016a2015-01-19 14:26:37 +0000198 polarssl_printf( " [ #%d ] ok\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100199
Manuel Pégourié-Gonnardaeab2522015-03-25 19:38:23 +0100200 ssl_set_bio_timeout( &ssl, &client_fd, net_send, net_recv, NULL, 0 );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100201
Rich Evansf90016a2015-01-19 14:26:37 +0000202 polarssl_printf( " [ #%d ] ok\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100203
204 /*
205 * 5. Handshake
206 */
Rich Evansf90016a2015-01-19 14:26:37 +0000207 polarssl_printf( " [ #%d ] Performing the SSL/TLS handshake\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100208
209 while( ( ret = ssl_handshake( &ssl ) ) != 0 )
210 {
211 if( ret != POLARSSL_ERR_NET_WANT_READ && ret != POLARSSL_ERR_NET_WANT_WRITE )
212 {
Rich Evansf90016a2015-01-19 14:26:37 +0000213 polarssl_printf( " [ #%d ] failed: ssl_handshake returned -0x%04x\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100214 thread_id, -ret );
215 goto thread_exit;
216 }
217 }
218
Rich Evansf90016a2015-01-19 14:26:37 +0000219 polarssl_printf( " [ #%d ] ok\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100220
221 /*
222 * 6. Read the HTTP Request
223 */
Rich Evansf90016a2015-01-19 14:26:37 +0000224 polarssl_printf( " [ #%d ] < Read from client\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100225
226 do
227 {
228 len = sizeof( buf ) - 1;
229 memset( buf, 0, sizeof( buf ) );
230 ret = ssl_read( &ssl, buf, len );
231
232 if( ret == POLARSSL_ERR_NET_WANT_READ || ret == POLARSSL_ERR_NET_WANT_WRITE )
233 continue;
234
235 if( ret <= 0 )
236 {
237 switch( ret )
238 {
239 case POLARSSL_ERR_SSL_PEER_CLOSE_NOTIFY:
Rich Evansf90016a2015-01-19 14:26:37 +0000240 polarssl_printf( " [ #%d ] connection was closed gracefully\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100241 thread_id );
242 goto thread_exit;
243
244 case POLARSSL_ERR_NET_CONN_RESET:
Rich Evansf90016a2015-01-19 14:26:37 +0000245 polarssl_printf( " [ #%d ] connection was reset by peer\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100246 thread_id );
247 goto thread_exit;
248
249 default:
Rich Evansf90016a2015-01-19 14:26:37 +0000250 polarssl_printf( " [ #%d ] ssl_read returned -0x%04x\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100251 thread_id, -ret );
252 goto thread_exit;
253 }
Paul Bakkerf9c49532013-12-19 15:40:58 +0100254 }
255
256 len = ret;
Rich Evansf90016a2015-01-19 14:26:37 +0000257 polarssl_printf( " [ #%d ] %d bytes read\n=====\n%s\n=====\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100258 thread_id, len, (char *) buf );
259
260 if( ret > 0 )
261 break;
262 }
263 while( 1 );
264
265 /*
266 * 7. Write the 200 Response
267 */
Rich Evansf90016a2015-01-19 14:26:37 +0000268 polarssl_printf( " [ #%d ] > Write to client:\n", thread_id );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100269
270 len = sprintf( (char *) buf, HTTP_RESPONSE,
271 ssl_get_ciphersuite( &ssl ) );
272
273 while( ( ret = ssl_write( &ssl, buf, len ) ) <= 0 )
274 {
275 if( ret == POLARSSL_ERR_NET_CONN_RESET )
276 {
Rich Evansf90016a2015-01-19 14:26:37 +0000277 polarssl_printf( " [ #%d ] failed: peer closed the connection\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100278 thread_id );
279 goto thread_exit;
280 }
281
282 if( ret != POLARSSL_ERR_NET_WANT_READ && ret != POLARSSL_ERR_NET_WANT_WRITE )
283 {
Rich Evansf90016a2015-01-19 14:26:37 +0000284 polarssl_printf( " [ #%d ] failed: ssl_write returned -0x%04x\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100285 thread_id, ret );
286 goto thread_exit;
287 }
288 }
289
290 len = ret;
Rich Evansf90016a2015-01-19 14:26:37 +0000291 polarssl_printf( " [ #%d ] %d bytes written\n=====\n%s\n=====\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100292 thread_id, len, (char *) buf );
293
Rich Evansf90016a2015-01-19 14:26:37 +0000294 polarssl_printf( " [ #%d ] . Closing the connection...", thread_id );
Manuel Pégourié-Gonnard6b0d2682014-03-25 11:24:43 +0100295
296 while( ( ret = ssl_close_notify( &ssl ) ) < 0 )
297 {
298 if( ret != POLARSSL_ERR_NET_WANT_READ &&
299 ret != POLARSSL_ERR_NET_WANT_WRITE )
300 {
Rich Evansf90016a2015-01-19 14:26:37 +0000301 polarssl_printf( " [ #%d ] failed: ssl_close_notify returned -0x%04x\n",
Manuel Pégourié-Gonnard6b0d2682014-03-25 11:24:43 +0100302 thread_id, ret );
303 goto thread_exit;
304 }
305 }
306
Rich Evansf90016a2015-01-19 14:26:37 +0000307 polarssl_printf( " ok\n" );
Manuel Pégourié-Gonnard6b0d2682014-03-25 11:24:43 +0100308
Paul Bakkerf9c49532013-12-19 15:40:58 +0100309 ret = 0;
310
311thread_exit:
312
313#ifdef POLARSSL_ERROR_C
314 if( ret != 0 )
315 {
316 char error_buf[100];
317 polarssl_strerror( ret, error_buf, 100 );
Rich Evansf90016a2015-01-19 14:26:37 +0000318 polarssl_printf(" [ #%d ] Last error was: -0x%04x - %s\n\n",
Paul Bakkerf9c49532013-12-19 15:40:58 +0100319 thread_id, -ret, error_buf );
320 }
321#endif
322
323 net_close( client_fd );
Manuel Pégourié-Gonnard955028f2014-07-12 01:27:34 +0200324 ctr_drbg_free( &ctr_drbg );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100325 ssl_free( &ssl );
326
327 thread_info->thread_complete = 1;
328
329 return( NULL );
330}
331
332static int thread_create( int client_fd )
333{
334 int ret, i;
335
336 /*
337 * Find in-active or finished thread slot
338 */
339 for( i = 0; i < MAX_NUM_THREADS; i++ )
340 {
341 if( threads[i].active == 0 )
342 break;
343
344 if( threads[i].data.thread_complete == 1 )
345 {
Rich Evansf90016a2015-01-19 14:26:37 +0000346 polarssl_printf( " [ main ] Cleaning up thread %d\n", i );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100347 pthread_join(threads[i].thread, NULL );
348 memset( &threads[i], 0, sizeof(pthread_info_t) );
349 break;
350 }
351 }
352
353 if( i == MAX_NUM_THREADS )
354 return( -1 );
355
356 /*
357 * Fill thread-info for thread
358 */
359 memcpy( &threads[i].data, &base_info, sizeof(base_info) );
360 threads[i].active = 1;
361 threads[i].data.client_fd = client_fd;
362
363 if( ( ret = pthread_create( &threads[i].thread, NULL, handle_ssl_connection, &threads[i].data ) ) != 0 )
364 {
365 return( ret );
366 }
367
368 return( 0 );
369}
370
Rich Evans85b05ec2015-02-12 11:37:29 +0000371int main( void )
Paul Bakkerf9c49532013-12-19 15:40:58 +0100372{
373 int ret;
374 int listen_fd;
375 int client_fd = -1;
376
377 entropy_context entropy;
378 x509_crt srvcert;
379 pk_context pkey;
380#if defined(POLARSSL_MEMORY_BUFFER_ALLOC_C)
381 unsigned char alloc_buf[100000];
382#endif
383#if defined(POLARSSL_SSL_CACHE_C)
384 ssl_cache_context cache;
385#endif
386
Paul Bakkerf9c49532013-12-19 15:40:58 +0100387#if defined(POLARSSL_MEMORY_BUFFER_ALLOC_C)
388 memory_buffer_alloc_init( alloc_buf, sizeof(alloc_buf) );
389#endif
390
391#if defined(POLARSSL_SSL_CACHE_C)
392 ssl_cache_init( &cache );
393 base_info.cache = &cache;
394#endif
395
396 memset( threads, 0, sizeof(threads) );
397
398 polarssl_mutex_init( &debug_mutex );
399
400 /*
401 * We use only a single entropy source that is used in all the threads.
402 */
403 entropy_init( &entropy );
404 base_info.entropy = &entropy;
405
406 /*
407 * 1. Load the certificates and private RSA key
408 */
Rich Evansf90016a2015-01-19 14:26:37 +0000409 polarssl_printf( "\n . Loading the server cert. and key..." );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100410 fflush( stdout );
411
412 x509_crt_init( &srvcert );
413
414 /*
415 * This demonstration program uses embedded test certificates.
416 * Instead, you may want to use x509_crt_parse_file() to read the
417 * server and CA certificates, as well as pk_parse_keyfile().
418 */
419 ret = x509_crt_parse( &srvcert, (const unsigned char *) test_srv_crt,
420 strlen( test_srv_crt ) );
421 if( ret != 0 )
422 {
Rich Evansf90016a2015-01-19 14:26:37 +0000423 polarssl_printf( " failed\n ! x509_crt_parse returned %d\n\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100424 goto exit;
425 }
426
427 ret = x509_crt_parse( &srvcert, (const unsigned char *) test_ca_list,
428 strlen( test_ca_list ) );
429 if( ret != 0 )
430 {
Rich Evansf90016a2015-01-19 14:26:37 +0000431 polarssl_printf( " failed\n ! x509_crt_parse returned %d\n\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100432 goto exit;
433 }
434
435 pk_init( &pkey );
436 ret = pk_parse_key( &pkey, (const unsigned char *) test_srv_key,
437 strlen( test_srv_key ), NULL, 0 );
438 if( ret != 0 )
439 {
Rich Evansf90016a2015-01-19 14:26:37 +0000440 polarssl_printf( " failed\n ! pk_parse_key returned %d\n\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100441 goto exit;
442 }
443
444 base_info.ca_chain = srvcert.next;
445 base_info.server_cert = &srvcert;
446 base_info.server_key = &pkey;
447
Rich Evansf90016a2015-01-19 14:26:37 +0000448 polarssl_printf( " ok\n" );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100449
450 /*
451 * 2. Setup the listening TCP socket
452 */
Rich Evansf90016a2015-01-19 14:26:37 +0000453 polarssl_printf( " . Bind on https://localhost:4433/ ..." );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100454 fflush( stdout );
455
Manuel Pégourié-Gonnardf5a13122014-03-23 17:38:16 +0100456 if( ( ret = net_bind( &listen_fd, NULL, 4433, NET_PROTO_TCP ) ) != 0 )
Paul Bakkerf9c49532013-12-19 15:40:58 +0100457 {
Rich Evansf90016a2015-01-19 14:26:37 +0000458 polarssl_printf( " failed\n ! net_bind returned %d\n\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100459 goto exit;
460 }
461
Rich Evansf90016a2015-01-19 14:26:37 +0000462 polarssl_printf( " ok\n" );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100463
464reset:
465#ifdef POLARSSL_ERROR_C
466 if( ret != 0 )
467 {
468 char error_buf[100];
469 polarssl_strerror( ret, error_buf, 100 );
Rich Evansf90016a2015-01-19 14:26:37 +0000470 polarssl_printf( " [ main ] Last error was: -0x%04x - %s\n", -ret, error_buf );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100471 }
472#endif
473
474 /*
475 * 3. Wait until a client connects
476 */
477 client_fd = -1;
478
Rich Evansf90016a2015-01-19 14:26:37 +0000479 polarssl_printf( " [ main ] Waiting for a remote connection\n" );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100480
481 if( ( ret = net_accept( listen_fd, &client_fd, NULL ) ) != 0 )
482 {
Rich Evansf90016a2015-01-19 14:26:37 +0000483 polarssl_printf( " [ main ] failed: net_accept returned -0x%04x\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100484 goto exit;
485 }
486
Rich Evansf90016a2015-01-19 14:26:37 +0000487 polarssl_printf( " [ main ] ok\n" );
488 polarssl_printf( " [ main ] Creating a new thread\n" );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100489
490 if( ( ret = thread_create( client_fd ) ) != 0 )
491 {
Rich Evansf90016a2015-01-19 14:26:37 +0000492 polarssl_printf( " [ main ] failed: thread_create returned %d\n", ret );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100493 net_close( client_fd );
494 goto reset;
495 }
496
497 ret = 0;
498 goto reset;
499
500exit:
501 x509_crt_free( &srvcert );
502 pk_free( &pkey );
503#if defined(POLARSSL_SSL_CACHE_C)
504 ssl_cache_free( &cache );
505#endif
Paul Bakkerf9c49532013-12-19 15:40:58 +0100506 entropy_free( &entropy );
507
508 polarssl_mutex_free( &debug_mutex );
509
510#if defined(POLARSSL_MEMORY_BUFFER_ALLOC_C)
511 memory_buffer_alloc_free();
512#endif
513
514#if defined(_WIN32)
Rich Evansf90016a2015-01-19 14:26:37 +0000515 polarssl_printf( " Press Enter to exit this program.\n" );
Paul Bakkerf9c49532013-12-19 15:40:58 +0100516 fflush( stdout ); getchar();
517#endif
518
519 return( ret );
520}
521
522#endif /* POLARSSL_BIGNUM_C && POLARSSL_CERTS_C && POLARSSL_ENTROPY_C &&
523 POLARSSL_SSL_TLS_C && POLARSSL_SSL_SRV_C && POLARSSL_NET_C &&
524 POLARSSL_RSA_C && POLARSSL_CTR_DRBG_C && POLARSSL_THREADING_C &&
525 POLARSSL_THREADING_PTHREAD */