20#include <freerdp/config.h>
22#include <winpr/assert.h>
23#include <winpr/cast.h>
25#include <winpr/crypto.h>
27#include <freerdp/log.h>
29#include "ncacn_http.h"
30#include "rpc_client.h"
31#include "rts_signature.h"
35#define TAG FREERDP_TAG("core.gateway.rts")
70static int rts_destination_command_read(rdpRpc* rpc,
wStream* buffer, UINT32* Destination);
72static const char* rts_command_to_string(UINT32 cmd,
char* buffer,
size_t len)
74 const char* str =
nullptr;
84 ENTRY(RTS_CMD_RECEIVE_WINDOW_SIZE);
85 ENTRY(RTS_CMD_FLOW_CONTROL_ACK);
86 ENTRY(RTS_CMD_CONNECTION_TIMEOUT);
87 ENTRY(RTS_CMD_COOKIE);
88 ENTRY(RTS_CMD_CHANNEL_LIFETIME);
89 ENTRY(RTS_CMD_CLIENT_KEEPALIVE);
90 ENTRY(RTS_CMD_VERSION);
92 ENTRY(RTS_CMD_PADDING);
93 ENTRY(RTS_CMD_NEGATIVE_ANCE);
95 ENTRY(RTS_CMD_CLIENT_ADDRESS);
96 ENTRY(RTS_CMD_ASSOCIATION_GROUP_ID);
97 ENTRY(RTS_CMD_DESTINATION);
98 ENTRY(RTS_CMD_PING_TRAFFIC_SENT_NOTIFY);
99 ENTRY(RTS_CMD_LAST_ID);
101 str =
"RTS_CMD_UNKNOWN";
107 (void)_snprintf(buffer, len,
"%s [0x%08" PRIx32
"]", str, cmd);
111static const char* rts_pdu_ptype_to_string(UINT32 ptype)
116 return "PTYPE_REQUEST";
120 return "PTYPE_RESPONSE";
122 return "PTYPE_FAULT";
124 return "PTYPE_WORKING";
126 return "PTYPE_NOCALL";
128 return "PTYPE_REJECT";
131 case PTYPE_CL_CANCEL:
132 return "PTYPE_CL_CANCEL";
135 case PTYPE_CANCEL_ACK:
136 return "PTYPE_CANCEL_ACK";
140 return "PTYPE_BIND_ACK";
142 return "PTYPE_BIND_NAK";
143 case PTYPE_ALTER_CONTEXT:
144 return "PTYPE_ALTER_CONTEXT";
145 case PTYPE_ALTER_CONTEXT_RESP:
146 return "PTYPE_ALTER_CONTEXT_RESP";
147 case PTYPE_RPC_AUTH_3:
148 return "PTYPE_RPC_AUTH_3";
150 return "PTYPE_SHUTDOWN";
151 case PTYPE_CO_CANCEL:
152 return "PTYPE_CO_CANCEL";
154 return "PTYPE_ORPHANED";
165 header.header.rpc_vers = 5;
166 header.header.rpc_vers_minor = 0;
167 header.header.ptype = PTYPE_RTS;
168 header.header.packed_drep[0] = 0x10;
169 header.header.packed_drep[1] = 0x00;
170 header.header.packed_drep[2] = 0x00;
171 header.header.packed_drep[3] = 0x00;
172 header.header.pfc_flags = PFC_FIRST_FRAG | PFC_LAST_FRAG;
173 header.header.auth_length = 0;
174 header.header.call_id = 0;
179static BOOL rts_align_stream(
wStream* s,
size_t alignment, BOOL silent)
185 WINPR_ASSERT(alignment > 0);
187 pos = Stream_GetPosition(s);
188 pad = rpc_offset_align(&pos, alignment);
189 return Stream_ConditionalSafeSeek(s, pad, silent);
192static char* sdup(
const void* src,
size_t length)
195 WINPR_ASSERT(src || (length == 0));
199 dst = calloc(length + 1,
sizeof(
char));
202 memcpy(dst, src, length);
209 WINPR_ASSERT(header);
213 Stream_Write_UINT8(s, header->rpc_vers);
214 Stream_Write_UINT8(s, header->rpc_vers_minor);
215 Stream_Write_UINT8(s, header->ptype);
216 Stream_Write_UINT8(s, header->pfc_flags);
217 Stream_Write(s, header->packed_drep, ARRAYSIZE(header->packed_drep));
218 Stream_Write_UINT16(s, header->frag_length);
219 Stream_Write_UINT16(s, header->auth_length);
220 Stream_Write_UINT32(s, header->call_id);
228 WINPR_ASSERT(header);
233 return RTS_PDU_INCOMPLETE;
237 const size_t sz = Stream_GetRemainingLength(s);
239 return RTS_PDU_INCOMPLETE;
242 Stream_Read_UINT8(s, header->rpc_vers);
243 Stream_Read_UINT8(s, header->rpc_vers_minor);
244 Stream_Read_UINT8(s, header->ptype);
245 Stream_Read_UINT8(s, header->pfc_flags);
246 Stream_Read(s, header->packed_drep, ARRAYSIZE(header->packed_drep));
247 Stream_Read_UINT16(s, header->frag_length);
248 Stream_Read_UINT16(s, header->auth_length);
249 Stream_Read_UINT32(s, header->call_id);
254 WLog_WARN(TAG,
"Invalid header->frag_length of %" PRIu16
", expected %" PRIuz,
261 if (!Stream_CheckAndLogRequiredLength(TAG, s,
263 return RTS_PDU_INCOMPLETE;
267 const size_t sz2 = Stream_GetRemainingLength(s);
269 return RTS_PDU_INCOMPLETE;
271 return RTS_PDU_VALID;
274static BOOL rts_read_auth_verifier_no_checks(
wStream* s, auth_verifier_co_t* auth,
280 WINPR_ASSERT(header);
282 WINPR_ASSERT(header->frag_length > header->auth_length + 8);
285 *startPos = Stream_GetPosition(s);
289 const size_t expected = header->frag_length - header->auth_length - 8;
291 if (!Stream_SetPosition(s, expected))
293 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 8, silent))
296 Stream_Read_UINT8(s, auth->auth_type);
297 Stream_Read_UINT8(s, auth->auth_level);
298 Stream_Read_UINT8(s, auth->auth_pad_length);
299 Stream_Read_UINT8(s, auth->auth_reserved);
300 Stream_Read_UINT32(s, auth->auth_context_id);
303 if (header->auth_length != 0)
305 const void* ptr = Stream_Pointer(s);
306 if (!Stream_ConditionalSafeSeek(s, header->auth_length, silent))
308 auth->auth_value = (BYTE*)sdup(ptr, header->auth_length);
309 if (auth->auth_value ==
nullptr)
316static BOOL rts_read_auth_verifier(
wStream* s, auth_verifier_co_t* auth,
322 WINPR_ASSERT(header);
324 if (!rts_read_auth_verifier_no_checks(s, auth, header, &pos, silent))
327 const size_t expected = header->frag_length - header->auth_length - 8;
328 WINPR_ASSERT(pos + auth->auth_pad_length == expected);
329 return pos + auth->auth_pad_length == expected;
332static BOOL rts_read_auth_verifier_with_stub(
wStream* s, auth_verifier_co_t* auth,
336 size_t alloc_hint = 0;
337 BYTE** ptr =
nullptr;
339 if (!rts_read_auth_verifier_no_checks(s, auth, header, &pos, silent))
342 switch (header->ptype)
347 alloc_hint = hdr->alloc_hint;
348 ptr = &hdr->stub_data;
354 alloc_hint = hdr->alloc_hint;
355 ptr = &hdr->stub_data;
361 alloc_hint = hdr->alloc_hint;
362 ptr = &hdr->stub_data;
371 const size_t off = header->auth_length + 8 + auth->auth_pad_length + pos;
372 const size_t size = header->frag_length - MIN(header->frag_length, off);
373 const void* src = Stream_Buffer(s) + pos;
375 if (off > header->frag_length)
377 "Unexpected alloc_hint(%" PRIuz
") for PDU %s: size %" PRIuz
378 ", frag_length %" PRIu16
", offset %" PRIuz,
379 alloc_hint, rts_pdu_ptype_to_string(header->ptype), size, header->frag_length,
385 *ptr = (BYTE*)sdup(src, size);
394static void rts_free_auth_verifier(auth_verifier_co_t* auth)
398 free(auth->auth_value);
401static BOOL rts_write_auth_verifier(
wStream* s,
const auth_verifier_co_t* auth,
405 UINT8 auth_pad_length = 0;
409 WINPR_ASSERT(header);
412 pos = Stream_GetPosition(s);
415 auth_pad_length = 4 - (pos % 4);
416 if (!Stream_EnsureRemainingCapacity(s, auth_pad_length))
418 Stream_Zero(s, auth_pad_length);
421#if defined(WITH_VERBOSE_WINPR_ASSERT) && (WITH_VERBOSE_WINPR_ASSERT != 0)
422 WINPR_ASSERT(header->frag_length + 8ull > header->auth_length);
424 size_t apos = Stream_GetPosition(s);
425 size_t expected = header->frag_length - header->auth_length - 8;
427 WINPR_ASSERT(apos == expected);
431 if (!Stream_EnsureRemainingCapacity(s,
sizeof(auth_verifier_co_t)))
434 Stream_Write_UINT8(s, auth->auth_type);
435 Stream_Write_UINT8(s, auth->auth_level);
436 Stream_Write_UINT8(s, auth_pad_length);
437 Stream_Write_UINT8(s, 0);
438 Stream_Write_UINT32(s, auth->auth_context_id);
440 if (!Stream_EnsureRemainingCapacity(s, header->auth_length))
442 Stream_Write(s, auth->auth_value, header->auth_length);
449 WINPR_ASSERT(version);
451 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 2 *
sizeof(UINT8), silent))
453 Stream_Read_UINT8(s, version->major);
454 Stream_Read_UINT8(s, version->minor);
462 free(versions->p_protocols);
463 versions->p_protocols =
nullptr;
470 WINPR_ASSERT(versions);
472 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s,
sizeof(UINT8), silent))
475 Stream_Read_UINT8(s, versions->n_protocols);
477 if (versions->n_protocols > 0)
479 versions->p_protocols = calloc(versions->n_protocols,
sizeof(
p_rt_version_t));
480 if (!versions->p_protocols)
483 for (BYTE x = 0; x < versions->n_protocols; x++)
486 if (!rts_read_version(s, version, silent))
488 rts_free_supported_versions(versions);
501 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s,
sizeof(UINT16), silent))
504 Stream_Read_UINT16(s, port->length);
505 if (port->length == 0)
508 const void* ptr = Stream_ConstPointer(s);
509 if (!Stream_ConditionalSafeSeek(s, port->length, silent))
511 port->port_spec = sdup(ptr, port->length);
512 return port->port_spec !=
nullptr;
515static void rts_free_port_any(
port_any_t* port)
519 free(port->port_spec);
527 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s,
sizeof(
p_uuid_t), silent))
530 Stream_Read_UINT32(s, uuid->time_low);
531 Stream_Read_UINT16(s, uuid->time_mid);
532 Stream_Read_UINT16(s, uuid->time_hi_and_version);
533 Stream_Read_UINT8(s, uuid->clock_seq_hi_and_reserved);
534 Stream_Read_UINT8(s, uuid->clock_seq_low);
535 Stream_Read(s, uuid->node, ARRAYSIZE(uuid->node));
544 if (!Stream_EnsureRemainingCapacity(s,
sizeof(
p_uuid_t)))
547 Stream_Write_UINT32(s, uuid->time_low);
548 Stream_Write_UINT16(s, uuid->time_mid);
549 Stream_Write_UINT16(s, uuid->time_hi_and_version);
550 Stream_Write_UINT8(s, uuid->clock_seq_hi_and_reserved);
551 Stream_Write_UINT8(s, uuid->clock_seq_low);
552 Stream_Write(s, uuid->node, ARRAYSIZE(uuid->node));
569 WINPR_ASSERT(syntax_id);
571 if (!rts_read_uuid(s, &syntax_id->if_uuid, silent))
574 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
577 Stream_Read_UINT32(s, syntax_id->if_version);
584 WINPR_ASSERT(syntax_id);
586 if (!rts_write_uuid(s, &syntax_id->if_uuid))
589 if (!Stream_EnsureRemainingCapacity(s, 4))
592 Stream_Write_UINT32(s, syntax_id->if_version);
600 rts_syntax_id_free(ptr->transfer_syntaxes);
604WINPR_ATTR_MALLOC(rts_context_elem_free, 1)
615 WINPR_ASSERT(element);
617 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
620 Stream_Read_UINT16(s, element->p_cont_id);
621 Stream_Read_UINT8(s, element->n_transfer_syn);
622 Stream_Read_UINT8(s, element->reserved);
624 if (!rts_read_syntax_id(s, &element->abstract_syntax, silent))
627 if (element->n_transfer_syn > 0)
629 element->transfer_syntaxes = rts_syntax_id_new(element->n_transfer_syn);
630 if (!element->transfer_syntaxes)
632 for (BYTE x = 0; x < element->n_transfer_syn; x++)
635 if (!rts_read_syntax_id(s, syn, silent))
646 WINPR_ASSERT(element);
648 if (!Stream_EnsureRemainingCapacity(s, 4))
650 Stream_Write_UINT16(s, element->p_cont_id);
651 Stream_Write_UINT8(s, element->n_transfer_syn);
652 Stream_Write_UINT8(s, element->reserved);
653 if (!rts_write_syntax_id(s, &element->abstract_syntax))
656 for (BYTE x = 0; x < element->n_transfer_syn; x++)
659 if (!rts_write_syntax_id(s, syn))
671 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
673 Stream_Read_UINT8(s, list->n_context_elem);
674 Stream_Read_UINT8(s, list->reserved);
675 Stream_Read_UINT16(s, list->reserved2);
677 if (list->n_context_elem > 0)
679 list->p_cont_elem = rts_context_elem_new(list->n_context_elem);
680 if (!list->p_cont_elem)
682 for (BYTE x = 0; x < list->n_context_elem; x++)
685 if (!rts_read_context_elem(s, element, silent))
696 rts_context_elem_free(list->p_cont_elem);
704 if (!Stream_EnsureRemainingCapacity(s, 4))
706 Stream_Write_UINT8(s, list->n_context_elem);
707 Stream_Write_UINT8(s, 0);
708 Stream_Write_UINT16(s, 0);
710 for (BYTE x = 0; x < list->n_context_elem; x++)
713 if (!rts_write_context_elem(s, element))
719static p_result_t* rts_result_new(
size_t count)
724static void rts_result_free(
p_result_t* results)
734 WINPR_ASSERT(result);
736 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 2, silent))
739 const UINT16 res = Stream_Get_UINT16(s);
744 case provider_rejection:
748 WLog_ERR(TAG,
"Invalid p_cont_def_result_t %" PRIu16, res);
751 result->result = (p_cont_def_result_t)res;
753 const UINT16 reason = Stream_Get_UINT16(s);
756 case reason_not_specified:
757 case abstract_syntax_not_supported:
758 case proposed_transfer_syntaxes_not_supported:
759 case local_limit_exceeded:
762 WLog_ERR(TAG,
"Invalid p_provider_reason_t %" PRIu16, reason);
765 result->reason = (p_provider_reason_t)reason;
766 return rts_read_syntax_id(s, &result->transfer_syntax, silent);
769static void rts_free_result(
p_result_t* result)
780 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
782 Stream_Read_UINT8(s, list->n_results);
783 Stream_Read_UINT8(s, list->reserved);
784 Stream_Read_UINT16(s, list->reserved2);
786 if (list->n_results > 0)
788 list->p_results = rts_result_new(list->n_results);
789 if (!list->p_results)
792 for (BYTE x = 0; x < list->n_results; x++)
795 if (!rts_read_result(s, result, silent))
807 for (BYTE x = 0; x < list->n_results; x++)
810 rts_free_result(result);
812 rts_result_free(list->p_results);
820 rts_free_context_list(&ctx->p_context_elem);
821 rts_free_auth_verifier(&ctx->auth_verifier);
829 if (!Stream_ConditionalCheckAndLogRequiredLength(
833 Stream_Read_UINT16(s, ctx->max_xmit_frag);
834 Stream_Read_UINT16(s, ctx->max_recv_frag);
835 Stream_Read_UINT32(s, ctx->assoc_group_id);
837 if (!rts_read_context_list(s, &ctx->p_context_elem, silent))
840 if (!rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent))
846static BOOL rts_read_pdu_alter_context_response(
wStream* s,
853 if (!Stream_ConditionalCheckAndLogRequiredLength(
857 Stream_Read_UINT16(s, ctx->max_xmit_frag);
858 Stream_Read_UINT16(s, ctx->max_recv_frag);
859 Stream_Read_UINT32(s, ctx->assoc_group_id);
861 if (!rts_read_port_any(s, &ctx->sec_addr, silent))
864 if (!rts_align_stream(s, 4, silent))
867 if (!rts_read_result_list(s, &ctx->p_result_list, silent))
870 if (!rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent))
881 rts_free_port_any(&ctx->sec_addr);
882 rts_free_result_list(&ctx->p_result_list);
883 rts_free_auth_verifier(&ctx->auth_verifier);
891 if (!Stream_ConditionalCheckAndLogRequiredLength(
894 Stream_Read_UINT16(s, ctx->max_xmit_frag);
895 Stream_Read_UINT16(s, ctx->max_recv_frag);
896 Stream_Read_UINT32(s, ctx->assoc_group_id);
898 if (!rts_read_context_list(s, &ctx->p_context_elem, silent))
901 if (!rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent))
911 rts_free_context_list(&ctx->p_context_elem);
912 rts_free_auth_verifier(&ctx->auth_verifier);
920 if (!Stream_CheckAndLogRequiredLength(
923 Stream_Read_UINT16(s, ctx->max_xmit_frag);
924 Stream_Read_UINT16(s, ctx->max_recv_frag);
925 Stream_Read_UINT32(s, ctx->assoc_group_id);
927 if (!rts_read_port_any(s, &ctx->sec_addr, silent))
930 if (!rts_align_stream(s, 4, silent))
933 if (!rts_read_result_list(s, &ctx->p_result_list, silent))
936 return rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent);
943 rts_free_port_any(&ctx->sec_addr);
944 rts_free_result_list(&ctx->p_result_list);
945 rts_free_auth_verifier(&ctx->auth_verifier);
953 if (!Stream_ConditionalCheckAndLogRequiredLength(
956 Stream_Read_UINT16(s, ctx->provider_reject_reason);
957 return rts_read_supported_versions(s, &ctx->versions, silent);
965 rts_free_supported_versions(&ctx->versions);
973 if (!Stream_ConditionalCheckAndLogRequiredLength(
976 Stream_Read_UINT16(s, ctx->max_xmit_frag);
977 Stream_Read_UINT16(s, ctx->max_recv_frag);
979 return rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent);
986 rts_free_auth_verifier(&ctx->auth_verifier);
994 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 12, silent))
996 Stream_Read_UINT32(s, ctx->alloc_hint);
997 Stream_Read_UINT16(s, ctx->p_cont_id);
998 Stream_Read_UINT8(s, ctx->cancel_count);
999 Stream_Read_UINT8(s, ctx->reserved);
1000 Stream_Read_UINT32(s, ctx->status);
1002 WLog_WARN(TAG,
"status=%s", Win32ErrorCode2Tag(ctx->status & 0xFFFF));
1003 return rts_read_auth_verifier_with_stub(s, &ctx->auth_verifier, &ctx->header, silent);
1010 rts_free_auth_verifier(&ctx->auth_verifier);
1018 if (!Stream_ConditionalCheckAndLogRequiredLength(
1021 return rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent);
1028 rts_free_auth_verifier(&ctx->auth_verifier);
1036 if (!Stream_ConditionalCheckAndLogRequiredLength(
1039 return rts_read_auth_verifier(s, &ctx->auth_verifier, &ctx->header, silent);
1046 rts_free_auth_verifier(&ctx->auth_verifier);
1054 if (!Stream_ConditionalCheckAndLogRequiredLength(
1057 Stream_Read_UINT32(s, ctx->alloc_hint);
1058 Stream_Read_UINT16(s, ctx->p_cont_id);
1059 Stream_Read_UINT16(s, ctx->opnum);
1060 if (!rts_read_uuid(s, &ctx->object, silent))
1063 return rts_read_auth_verifier_with_stub(s, &ctx->auth_verifier, &ctx->header, silent);
1070 rts_free_auth_verifier(&ctx->auth_verifier);
1078 if (!Stream_ConditionalCheckAndLogRequiredLength(
1081 Stream_Read_UINT32(s, ctx->alloc_hint);
1082 Stream_Read_UINT16(s, ctx->p_cont_id);
1083 Stream_Read_UINT8(s, ctx->cancel_count);
1084 Stream_Read_UINT8(s, ctx->reserved);
1086 if (!rts_align_stream(s, 8, silent))
1089 return rts_read_auth_verifier_with_stub(s, &ctx->auth_verifier, &ctx->header, silent);
1096 free(ctx->stub_data);
1097 rts_free_auth_verifier(&ctx->auth_verifier);
1105 if (!Stream_ConditionalCheckAndLogRequiredLength(
1109 Stream_Read_UINT16(s, ctx->Flags);
1110 Stream_Read_UINT16(s, ctx->NumberOfCommands);
1119void rts_free_pdu_header(
rpcconn_hdr_t* header, BOOL allocated)
1124 switch (header->common.ptype)
1126 case PTYPE_ALTER_CONTEXT:
1127 rts_free_pdu_alter_context(&header->alter_context);
1129 case PTYPE_ALTER_CONTEXT_RESP:
1130 rts_free_pdu_alter_context_response(&header->alter_context_response);
1133 rts_free_pdu_bind(&header->bind);
1135 case PTYPE_BIND_ACK:
1136 rts_free_pdu_bind_ack(&header->bind_ack);
1138 case PTYPE_BIND_NAK:
1139 rts_free_pdu_bind_nak(&header->bind_nak);
1141 case PTYPE_RPC_AUTH_3:
1142 rts_free_pdu_auth3(&header->rpc_auth_3);
1144 case PTYPE_CANCEL_ACK:
1145 rts_free_pdu_cancel_ack(&header->cancel);
1148 rts_free_pdu_fault(&header->fault);
1150 case PTYPE_ORPHANED:
1151 rts_free_pdu_orphaned(&header->orphaned);
1154 rts_free_pdu_request(&header->request);
1156 case PTYPE_RESPONSE:
1157 rts_free_pdu_response(&header->response);
1160 rts_free_pdu_rts(&header->rts);
1163 case PTYPE_SHUTDOWN:
1172 case PTYPE_CL_CANCEL:
1174 case PTYPE_CO_CANCEL:
1185 return rts_read_pdu_header_ex(s, header, FALSE);
1192 WINPR_ASSERT(header);
1194 const rts_pdu_status_t status = rts_read_common_pdu_header(s, &header->common, silent);
1195 if (status != RTS_PDU_VALID)
1198 WLog_DBG(TAG,
"Reading PDU type %s", rts_pdu_ptype_to_string(header->common.ptype));
1200 switch (header->common.ptype)
1202 case PTYPE_ALTER_CONTEXT:
1203 rc = rts_read_pdu_alter_context(s, &header->alter_context, silent);
1205 case PTYPE_ALTER_CONTEXT_RESP:
1206 rc = rts_read_pdu_alter_context_response(s, &header->alter_context_response, silent);
1209 rc = rts_read_pdu_bind(s, &header->bind, silent);
1211 case PTYPE_BIND_ACK:
1212 rc = rts_read_pdu_bind_ack(s, &header->bind_ack, silent);
1214 case PTYPE_BIND_NAK:
1215 rc = rts_read_pdu_bind_nak(s, &header->bind_nak, silent);
1217 case PTYPE_RPC_AUTH_3:
1218 rc = rts_read_pdu_auth3(s, &header->rpc_auth_3, silent);
1220 case PTYPE_CANCEL_ACK:
1221 rc = rts_read_pdu_cancel_ack(s, &header->cancel, silent);
1224 rc = rts_read_pdu_fault(s, &header->fault, silent);
1226 case PTYPE_ORPHANED:
1227 rc = rts_read_pdu_orphaned(s, &header->orphaned, silent);
1230 rc = rts_read_pdu_request(s, &header->request, silent);
1232 case PTYPE_RESPONSE:
1233 rc = rts_read_pdu_response(s, &header->response, silent);
1236 rc = rts_read_pdu_rts(s, &header->rts, silent);
1238 case PTYPE_SHUTDOWN:
1248 case PTYPE_CL_CANCEL:
1250 case PTYPE_CO_CANCEL:
1261 WINPR_ASSERT(header);
1265 if (!rts_write_common_pdu_header(s, &header->header))
1268 Stream_Write_UINT16(s, header->Flags);
1269 Stream_Write_UINT16(s, header->NumberOfCommands);
1274static BOOL rts_receive_window_size_command_read(rdpRpc* rpc,
wStream* buffer,
1275 UINT32* ReceiveWindowSize)
1278 WINPR_ASSERT(buffer);
1280 if (!Stream_CheckAndLogRequiredLength(TAG, buffer, 8))
1282 const uint32_t CommandType = Stream_Get_UINT32(buffer);
1283 if (CommandType != RTS_CMD_RECEIVE_WINDOW_SIZE)
1285 WLog_Print(rpc->log, WLOG_ERROR,
1286 "[MS-RPCH] 2.2.3.5.1 ReceiveWindowSize::CommandType must be 0x%08" PRIx32
1289 WINPR_CXX_COMPAT_CAST(UINT32, RTS_CMD_RECEIVE_WINDOW_SIZE), CommandType);
1292 const UINT32 val = Stream_Get_UINT32(buffer);
1293 if (ReceiveWindowSize)
1294 *ReceiveWindowSize = val;
1300static BOOL rts_receive_window_size_command_write(
wStream* s, UINT32 ReceiveWindowSize)
1304 if (!Stream_EnsureRemainingCapacity(s, 2 *
sizeof(UINT32)))
1307 Stream_Write_UINT32(s, RTS_CMD_RECEIVE_WINDOW_SIZE);
1308 Stream_Write_UINT32(s, ReceiveWindowSize);
1314static int rts_flow_control_ack_command_read(rdpRpc* rpc,
wStream* buffer, UINT32* BytesReceived,
1315 UINT32* AvailableWindow, BYTE* ChannelCookie)
1321 WINPR_ASSERT(buffer);
1323 int rc = rts_destination_command_read(rpc, buffer, &Command);
1327 if (Command != RTS_CMD_FLOW_CONTROL_ACK)
1329 char buffer1[64] = WINPR_C_ARRAY_INIT;
1330 char buffer2[64] = WINPR_C_ARRAY_INIT;
1331 WLog_Print(rpc->log, WLOG_ERROR,
"got command %s, expected %s",
1332 rts_command_to_string(Command, buffer1,
sizeof(buffer1)),
1333 rts_command_to_string(RTS_CMD_FLOW_CONTROL_ACK, buffer2,
sizeof(buffer2)));
1338 if (!Stream_CheckAndLogRequiredLength(TAG, buffer, 24))
1341 Stream_Read_UINT32(buffer, val);
1343 *BytesReceived = val;
1345 Stream_Read_UINT32(buffer, val);
1346 if (AvailableWindow)
1347 *AvailableWindow = val;
1350 Stream_Read(buffer, ChannelCookie, 16);
1352 Stream_Seek(buffer, 16);
1357static BOOL rts_flow_control_ack_command_write(
wStream* s, UINT32 BytesReceived,
1358 UINT32 AvailableWindow, BYTE* ChannelCookie)
1362 if (!Stream_EnsureRemainingCapacity(s, 28))
1365 Stream_Write_UINT32(s, RTS_CMD_FLOW_CONTROL_ACK);
1366 Stream_Write_UINT32(s, BytesReceived);
1367 Stream_Write_UINT32(s, AvailableWindow);
1368 Stream_Write(s, ChannelCookie, 16);
1374static BOOL rts_connection_timeout_command_read(WINPR_ATTR_UNUSED rdpRpc* rpc,
wStream* buffer,
1375 UINT32* ConnectionTimeout)
1378 WINPR_ASSERT(buffer);
1380 if (!Stream_CheckAndLogRequiredLength(TAG, buffer, 8))
1383 const uint32_t CommandType = Stream_Get_UINT32(buffer);
1384 if (CommandType != RTS_CMD_CONNECTION_TIMEOUT)
1386 WLog_Print(rpc->log, WLOG_ERROR,
1387 "[MS-RPCH] 2.2.3.5.3 ConnectionTimeout::CommandType must be 0x%08" PRIx32
1390 WINPR_CXX_COMPAT_CAST(UINT32, RTS_CMD_CONNECTION_TIMEOUT), CommandType);
1393 const UINT32 val = Stream_Get_UINT32(buffer);
1394 if (ConnectionTimeout)
1395 *ConnectionTimeout = val;
1400static BOOL rts_cookie_command_write(
wStream* s,
const BYTE* Cookie)
1404 if (!Stream_EnsureRemainingCapacity(s, 20))
1407 Stream_Write_UINT32(s, RTS_CMD_COOKIE);
1408 Stream_Write(s, Cookie, 16);
1413static BOOL rts_channel_lifetime_command_write(
wStream* s, UINT32 ChannelLifetime)
1417 if (!Stream_EnsureRemainingCapacity(s, 8))
1419 Stream_Write_UINT32(s, RTS_CMD_CHANNEL_LIFETIME);
1420 Stream_Write_UINT32(s, ChannelLifetime);
1425static BOOL rts_client_keepalive_command_write(
wStream* s, UINT32 ClientKeepalive)
1429 if (!Stream_EnsureRemainingCapacity(s, 8))
1437 Stream_Write_UINT32(s, RTS_CMD_CLIENT_KEEPALIVE);
1438 Stream_Write_UINT32(s, ClientKeepalive);
1444static BOOL rts_version_command_read(rdpRpc* rpc,
wStream* buffer, uint32_t* pversion)
1447 WINPR_ASSERT(buffer);
1449 if (!Stream_EnsureRemainingCapacity(buffer, 8))
1452 const uint32_t CommandType = Stream_Get_UINT32(buffer);
1453 if (CommandType != RTS_CMD_VERSION)
1455 WLog_Print(rpc->log, WLOG_ERROR,
1456 "[MS-RPCH] 2.2.3.5.7 Version::CommandType must be 0x%08" PRIx32
", got "
1458 WINPR_CXX_COMPAT_CAST(UINT32, RTS_CMD_VERSION), CommandType);
1461 const uint32_t version = Stream_Get_UINT32(buffer);
1464 WLog_Print(rpc->log, WLOG_WARN,
1465 "[MS-RPCH] 2.2.3.5.7 Version::Version should be 0x00000001, got 0x%08" PRIx32,
1469 *pversion = version;
1475static BOOL rts_version_command_write(
wStream* buffer)
1477 WINPR_ASSERT(buffer);
1479 if (!Stream_EnsureRemainingCapacity((buffer), 8))
1482 Stream_Write_UINT32(buffer, RTS_CMD_VERSION);
1483 Stream_Write_UINT32(buffer, 1);
1488static BOOL rts_empty_command_write(
wStream* s)
1492 if (!Stream_EnsureRemainingCapacity(s, 8))
1495 Stream_Write_UINT32(s, RTS_CMD_EMPTY);
1500static BOOL rts_padding_command_read(
wStream* s,
size_t* length, BOOL silent)
1502 UINT32 ConformanceCount = 0;
1504 WINPR_ASSERT(length);
1505 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
1507 Stream_Read_UINT32(s, ConformanceCount);
1508 *length = ConformanceCount + 4;
1512static BOOL rts_client_address_command_read(
wStream* s,
size_t* length, BOOL silent)
1514 UINT32 AddressType = 0;
1517 WINPR_ASSERT(length);
1519 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, 4, silent))
1521 Stream_Read_UINT32(s, AddressType);
1523 if (AddressType == 0)
1527 *length = 4 + 4 + 12;
1533 *length = 4 + 16 + 12;
1538static BOOL rts_association_group_id_command_write(
wStream* s,
const BYTE* AssociationGroupId)
1542 if (!Stream_EnsureRemainingCapacity(s, 20))
1545 Stream_Write_UINT32(s, RTS_CMD_ASSOCIATION_GROUP_ID);
1546 Stream_Write(s, AssociationGroupId, 16);
1551static int rts_destination_command_read(WINPR_ATTR_UNUSED rdpRpc* rpc,
wStream* buffer,
1552 UINT32* Destination)
1556 WINPR_ASSERT(buffer);
1558 if (!Stream_CheckAndLogRequiredLength(TAG, buffer, 4))
1560 Stream_Read_UINT32(buffer, val);
1567static BOOL rts_destination_command_write(
wStream* s, UINT32 Destination)
1571 if (!Stream_EnsureRemainingCapacity(s, 8))
1574 Stream_Write_UINT32(s, RTS_CMD_DESTINATION);
1575 Stream_Write_UINT32(s, Destination);
1580BOOL rts_generate_cookie(BYTE* cookie)
1582 WINPR_ASSERT(cookie);
1583 return winpr_RAND(cookie, 16) >= 0;
1586#define rts_send_buffer(channel, s, frag_length) \
1587 rts_send_buffer_int((channel), (s), (frag_length), __FILE__, __LINE__, __func__)
1588static BOOL rts_send_buffer_int(
RpcChannel* channel,
wStream* s,
size_t frag_length,
1589 const char* file,
size_t line,
const char* fkt)
1591 BOOL status = FALSE;
1594 WINPR_ASSERT(channel);
1595 WINPR_ASSERT(channel->rpc);
1598 Stream_SealLength(s);
1600 const DWORD level = WLOG_TRACE;
1601 if (WLog_IsLevelActive(channel->rpc->log, level))
1603 WLog_PrintTextMessage(channel->rpc->log, level, line, file, fkt,
1604 "Sending [%s] %" PRIuz
" bytes", fkt, Stream_Length(s));
1608 if (Stream_Length(s) != frag_length)
1611 rc = rpc_channel_write(channel, Stream_Buffer(s), Stream_Length(s));
1614 if ((
size_t)rc != Stream_Length(s))
1623BOOL rts_send_CONN_A1_pdu(rdpRpc* rpc)
1625 BOOL status = FALSE;
1628 UINT32 ReceiveWindowSize = 0;
1629 BYTE* OUTChannelCookie =
nullptr;
1630 BYTE* VirtualConnectionCookie =
nullptr;
1636 connection = rpc->VirtualConnection;
1637 WINPR_ASSERT(connection);
1639 outChannel = connection->DefaultOutChannel;
1640 WINPR_ASSERT(outChannel);
1642 header.header.frag_length = 76;
1643 header.Flags = RTS_FLAG_NONE;
1644 header.NumberOfCommands = 4;
1646 WLog_DBG(TAG,
"Sending CONN/A1 RTS PDU");
1647 VirtualConnectionCookie = (BYTE*)&(connection->Cookie);
1648 OUTChannelCookie = (BYTE*)&(outChannel->common.Cookie);
1649 ReceiveWindowSize = outChannel->ReceiveWindow;
1651 buffer = Stream_New(
nullptr, header.header.frag_length);
1656 if (!rts_write_pdu_header(buffer, &header))
1658 status = rts_version_command_write(buffer);
1661 status = rts_cookie_command_write(
1662 buffer, VirtualConnectionCookie);
1665 status = rts_cookie_command_write(buffer, OUTChannelCookie);
1668 status = rts_receive_window_size_command_write(
1669 buffer, ReceiveWindowSize);
1672 status = rts_send_buffer(&outChannel->common, buffer, header.header.frag_length);
1674 Stream_Free(buffer, TRUE);
1678BOOL rts_recv_CONN_A3_pdu(rdpRpc* rpc,
wStream* buffer)
1681 UINT32 ConnectionTimeout = 0;
1684 if (!rts_read_pdu_header(buffer, &header))
1687 if (header.rts.Flags != RTS_FLAG_NONE)
1689 WLog_Print(rpc->log, WLOG_ERROR,
1690 "[MS-RPCH] 2.2.4.4 CONN/A3 RTS PDU unexpected Flags=0x%08" PRIx32
1691 ", expected 0x%08" PRIx32,
1692 header.rts.Flags, WINPR_CXX_COMPAT_CAST(UINT32, RTS_FLAG_NONE));
1695 if (header.rts.NumberOfCommands != 1)
1697 WLog_Print(rpc->log, WLOG_ERROR,
1698 "[MS-RPCH] 2.2.4.4 CONN/A3 RTS PDU unexpected NumberOfCommands=%" PRIu32
1700 header.rts.NumberOfCommands);
1704 if (!rts_connection_timeout_command_read(rpc, buffer, &ConnectionTimeout))
1707 WLog_Print(rpc->log, WLOG_DEBUG,
"Receiving CONN/A3 RTS PDU: ConnectionTimeout: %" PRIu32
"",
1711 WINPR_ASSERT(rpc->VirtualConnection);
1712 WINPR_ASSERT(rpc->VirtualConnection->DefaultInChannel);
1714 rpc->VirtualConnection->DefaultInChannel->PingOriginator.ConnectionTimeout = ConnectionTimeout;
1719 rts_free_pdu_header(&header, FALSE);
1725BOOL rts_send_CONN_B1_pdu(rdpRpc* rpc)
1727 BOOL status = FALSE;
1730 BYTE* INChannelCookie =
nullptr;
1731 BYTE* AssociationGroupId =
nullptr;
1732 BYTE* VirtualConnectionCookie =
nullptr;
1738 connection = rpc->VirtualConnection;
1739 WINPR_ASSERT(connection);
1741 inChannel = connection->DefaultInChannel;
1742 WINPR_ASSERT(inChannel);
1744 header.header.frag_length = 104;
1745 header.Flags = RTS_FLAG_NONE;
1746 header.NumberOfCommands = 6;
1748 WLog_DBG(TAG,
"Sending CONN/B1 RTS PDU");
1750 VirtualConnectionCookie = (BYTE*)&(connection->Cookie);
1751 INChannelCookie = (BYTE*)&(inChannel->common.Cookie);
1752 AssociationGroupId = (BYTE*)&(connection->AssociationGroupId);
1753 buffer = Stream_New(
nullptr, header.header.frag_length);
1757 if (!rts_write_pdu_header(buffer, &header))
1759 if (!rts_version_command_write(buffer))
1761 if (!rts_cookie_command_write(buffer,
1762 VirtualConnectionCookie))
1764 if (!rts_cookie_command_write(buffer, INChannelCookie))
1766 if (!rts_channel_lifetime_command_write(buffer,
1767 rpc->ChannelLifetime))
1769 if (!rts_client_keepalive_command_write(buffer,
1770 rpc->KeepAliveInterval))
1772 if (!rts_association_group_id_command_write(
1773 buffer, AssociationGroupId))
1775 status = rts_send_buffer(&inChannel->common, buffer, header.header.frag_length);
1777 Stream_Free(buffer, TRUE);
1783BOOL rts_recv_CONN_C2_pdu(rdpRpc* rpc,
wStream* buffer)
1786 UINT32 ReceiveWindowSize = 0;
1787 UINT32 ConnectionTimeout = 0;
1790 WINPR_ASSERT(buffer);
1793 if (!rts_read_pdu_header(buffer, &header))
1796 if (header.rts.Flags != RTS_FLAG_NONE)
1798 WLog_Print(rpc->log, WLOG_ERROR,
1799 "[MS-RPCH] 2.2.4.9 CONN/C2 RTS PDU unexpected Flags=0x%08" PRIx32
1800 ", expected 0x%08" PRIx32,
1801 header.rts.Flags, WINPR_CXX_COMPAT_CAST(UINT32, RTS_FLAG_NONE));
1804 if (header.rts.NumberOfCommands != 3)
1806 WLog_Print(rpc->log, WLOG_ERROR,
1807 "[MS-RPCH] 2.2.4.9 CONN/C2 RTS PDU unexpected NumberOfCommands=%" PRIu32
1809 header.rts.NumberOfCommands);
1812 if (!rts_version_command_read(rpc, buffer,
nullptr))
1815 if (!rts_receive_window_size_command_read(rpc, buffer, &ReceiveWindowSize))
1818 if (!rts_connection_timeout_command_read(rpc, buffer, &ConnectionTimeout))
1821 WLog_Print(rpc->log, WLOG_DEBUG,
1822 "Receiving CONN/C2 RTS PDU: ConnectionTimeout: %" PRIu32
1823 " ReceiveWindowSize: %" PRIu32
"",
1824 ConnectionTimeout, ReceiveWindowSize);
1827 WINPR_ASSERT(rpc->VirtualConnection);
1828 WINPR_ASSERT(rpc->VirtualConnection->DefaultInChannel);
1830 rpc->VirtualConnection->DefaultInChannel->PingOriginator.ConnectionTimeout = ConnectionTimeout;
1831 rpc->VirtualConnection->DefaultInChannel->PeerReceiveWindow = ReceiveWindowSize;
1836 rts_free_pdu_header(&header, FALSE);
1842BOOL rts_send_flow_control_ack_pdu(rdpRpc* rpc)
1844 BOOL status = FALSE;
1847 UINT32 BytesReceived = 0;
1848 UINT32 AvailableWindow = 0;
1849 BYTE* ChannelCookie =
nullptr;
1856 connection = rpc->VirtualConnection;
1857 WINPR_ASSERT(connection);
1859 inChannel = connection->DefaultInChannel;
1860 WINPR_ASSERT(inChannel);
1862 outChannel = connection->DefaultOutChannel;
1863 WINPR_ASSERT(outChannel);
1865 header.header.frag_length = 56;
1866 header.Flags = RTS_FLAG_OTHER_CMD;
1867 header.NumberOfCommands = 2;
1869 WLog_DBG(TAG,
"Sending FlowControlAck RTS PDU");
1871 BytesReceived = outChannel->BytesReceived;
1872 AvailableWindow = outChannel->AvailableWindowAdvertised;
1873 ChannelCookie = (BYTE*)&(outChannel->common.Cookie);
1874 outChannel->ReceiverAvailableWindow = outChannel->AvailableWindowAdvertised;
1875 buffer = Stream_New(
nullptr, header.header.frag_length);
1880 if (!rts_write_pdu_header(buffer, &header))
1882 if (!rts_destination_command_write(buffer, FDOutProxy))
1886 if (!rts_flow_control_ack_command_write(buffer, BytesReceived, AvailableWindow, ChannelCookie))
1889 status = rts_send_buffer(&inChannel->common, buffer, header.header.frag_length);
1891 Stream_Free(buffer, TRUE);
1895static int rts_recv_flow_control_ack_pdu(rdpRpc* rpc,
wStream* buffer)
1898 UINT32 BytesReceived = 0;
1899 UINT32 AvailableWindow = 0;
1900 BYTE ChannelCookie[16] = WINPR_C_ARRAY_INIT;
1902 rc = rts_flow_control_ack_command_read(rpc, buffer, &BytesReceived, &AvailableWindow,
1903 (BYTE*)&ChannelCookie);
1907 "Receiving FlowControlAck RTS PDU: BytesReceived: %" PRIu32
1908 " AvailableWindow: %" PRIu32
"",
1909 BytesReceived, AvailableWindow);
1911 WINPR_ASSERT(rpc->VirtualConnection);
1912 WINPR_ASSERT(rpc->VirtualConnection->DefaultInChannel);
1914 rpc->VirtualConnection->DefaultInChannel->SenderAvailableWindow =
1915 AvailableWindow - (rpc->VirtualConnection->DefaultInChannel->BytesSent - BytesReceived);
1919static int rts_recv_flow_control_ack_with_destination_pdu(rdpRpc* rpc,
wStream* buffer)
1922 UINT32 Destination = 0;
1923 UINT32 BytesReceived = 0;
1924 UINT32 AvailableWindow = 0;
1925 BYTE ChannelCookie[16] = WINPR_C_ARRAY_INIT;
1943 int rc = rts_destination_command_read(rpc, buffer, &Command);
1947 if (Command != RTS_CMD_DESTINATION)
1949 char buffer1[64] = WINPR_C_ARRAY_INIT;
1950 char buffer2[64] = WINPR_C_ARRAY_INIT;
1951 WLog_Print(rpc->log, WLOG_ERROR,
"got command %s, expected %s",
1952 rts_command_to_string(Command, buffer1,
sizeof(buffer1)),
1953 rts_command_to_string(RTS_CMD_DESTINATION, buffer2,
sizeof(buffer2)));
1957 rc = rts_destination_command_read(rpc, buffer, &Destination);
1961 switch (Destination)
1972 WLog_Print(rpc->log, WLOG_ERROR,
1973 "got destination %" PRIu32
1974 ", expected one of [FDClient[0]|FDInProxy[1]|FDServer[2]|FDOutProxy[3]",
1979 rc = rts_flow_control_ack_command_read(rpc, buffer, &BytesReceived, &AvailableWindow,
1985 "Receiving FlowControlAckWithDestination RTS PDU: BytesReceived: %" PRIu32
1986 " AvailableWindow: %" PRIu32
"",
1987 BytesReceived, AvailableWindow);
1989 WINPR_ASSERT(rpc->VirtualConnection);
1990 WINPR_ASSERT(rpc->VirtualConnection->DefaultInChannel);
1991 rpc->VirtualConnection->DefaultInChannel->SenderAvailableWindow =
1992 AvailableWindow - (rpc->VirtualConnection->DefaultInChannel->BytesSent - BytesReceived);
1996BOOL rts_recv_ping_pdu(rdpRpc* rpc,
wStream* s)
2002 WINPR_ASSERT(rpc->auth);
2005 if (!rts_read_pdu_header(s, &header))
2009 if (header.common.ptype != PTYPE_RTS)
2011 WLog_Print(rpc->log, WLOG_ERROR,
"received invalid ping PDU, type is 0x%" PRIx32,
2012 header.common.ptype);
2015 if (header.rts.Flags != RTS_FLAG_PING)
2017 WLog_Print(rpc->log, WLOG_ERROR,
"received unexpected ping PDU::Flags 0x%" PRIx32,
2022 rts_free_pdu_header(&header, FALSE);
2026static int rts_send_ping_pdu(rdpRpc* rpc)
2028 BOOL status = FALSE;
2034 WINPR_ASSERT(rpc->VirtualConnection);
2036 inChannel = rpc->VirtualConnection->DefaultInChannel;
2037 WINPR_ASSERT(inChannel);
2039 header.header.frag_length = 20;
2040 header.Flags = RTS_FLAG_PING;
2041 header.NumberOfCommands = 0;
2043 WLog_DBG(TAG,
"Sending Ping RTS PDU");
2044 buffer = Stream_New(
nullptr, header.header.frag_length);
2049 if (!rts_write_pdu_header(buffer, &header))
2051 status = rts_send_buffer(&inChannel->common, buffer, header.header.frag_length);
2053 Stream_Free(buffer, TRUE);
2054 return (status) ? 1 : -1;
2057BOOL rts_command_length(UINT32 CommandType,
wStream* s,
size_t* length, BOOL silent)
2060 size_t CommandLength = 0;
2064 switch (CommandType)
2066 case RTS_CMD_RECEIVE_WINDOW_SIZE:
2067 CommandLength = RTS_CMD_RECEIVE_WINDOW_SIZE_LENGTH;
2070 case RTS_CMD_FLOW_CONTROL_ACK:
2071 CommandLength = RTS_CMD_FLOW_CONTROL_ACK_LENGTH;
2074 case RTS_CMD_CONNECTION_TIMEOUT:
2075 CommandLength = RTS_CMD_CONNECTION_TIMEOUT_LENGTH;
2078 case RTS_CMD_COOKIE:
2079 CommandLength = RTS_CMD_COOKIE_LENGTH;
2082 case RTS_CMD_CHANNEL_LIFETIME:
2083 CommandLength = RTS_CMD_CHANNEL_LIFETIME_LENGTH;
2086 case RTS_CMD_CLIENT_KEEPALIVE:
2087 CommandLength = RTS_CMD_CLIENT_KEEPALIVE_LENGTH;
2090 case RTS_CMD_VERSION:
2091 CommandLength = RTS_CMD_VERSION_LENGTH;
2095 CommandLength = RTS_CMD_EMPTY_LENGTH;
2098 case RTS_CMD_PADDING:
2099 if (!rts_padding_command_read(s, &padding, silent))
2103 case RTS_CMD_NEGATIVE_ANCE:
2104 CommandLength = RTS_CMD_NEGATIVE_ANCE_LENGTH;
2108 CommandLength = RTS_CMD_ANCE_LENGTH;
2111 case RTS_CMD_CLIENT_ADDRESS:
2112 if (!rts_client_address_command_read(s, &CommandLength, silent))
2116 case RTS_CMD_ASSOCIATION_GROUP_ID:
2117 CommandLength = RTS_CMD_ASSOCIATION_GROUP_ID_LENGTH;
2120 case RTS_CMD_DESTINATION:
2121 CommandLength = RTS_CMD_DESTINATION_LENGTH;
2124 case RTS_CMD_PING_TRAFFIC_SENT_NOTIFY:
2125 CommandLength = RTS_CMD_PING_TRAFFIC_SENT_NOTIFY_LENGTH;
2129 WLog_ERR(TAG,
"Error: Unknown RTS Command Type: 0x%" PRIx32
"", CommandType);
2133 CommandLength += padding;
2134 if (!Stream_ConditionalCheckAndLogRequiredLength(TAG, s, CommandLength, silent))
2138 *length = CommandLength;
2142static int rts_send_OUT_R2_A7_pdu(rdpRpc* rpc)
2144 BOOL status = FALSE;
2147 BYTE* SuccessorChannelCookie =
nullptr;
2152 WINPR_ASSERT(rpc->VirtualConnection);
2154 inChannel = rpc->VirtualConnection->DefaultInChannel;
2155 WINPR_ASSERT(inChannel);
2157 nextOutChannel = rpc->VirtualConnection->NonDefaultOutChannel;
2158 WINPR_ASSERT(nextOutChannel);
2160 header.header.frag_length = 56;
2161 header.Flags = RTS_FLAG_OUT_CHANNEL;
2162 header.NumberOfCommands = 3;
2164 WLog_DBG(TAG,
"Sending OUT_R2/A7 RTS PDU");
2166 SuccessorChannelCookie = (BYTE*)&(nextOutChannel->common.Cookie);
2167 buffer = Stream_New(
nullptr, header.header.frag_length);
2172 if (!rts_write_pdu_header(buffer, &header))
2174 if (!rts_destination_command_write(buffer, FDServer))
2176 if (!rts_cookie_command_write(buffer,
2177 SuccessorChannelCookie))
2179 if (!rts_version_command_write(buffer))
2181 status = rts_send_buffer(&inChannel->common, buffer, header.header.frag_length);
2183 Stream_Free(buffer, TRUE);
2184 return (status) ? 1 : -1;
2187static int rts_send_OUT_R2_C1_pdu(rdpRpc* rpc)
2189 BOOL status = FALSE;
2195 WINPR_ASSERT(rpc->VirtualConnection);
2197 nextOutChannel = rpc->VirtualConnection->NonDefaultOutChannel;
2198 WINPR_ASSERT(nextOutChannel);
2200 header.header.frag_length = 24;
2201 header.Flags = RTS_FLAG_PING;
2202 header.NumberOfCommands = 1;
2204 WLog_DBG(TAG,
"Sending OUT_R2/C1 RTS PDU");
2205 buffer = Stream_New(
nullptr, header.header.frag_length);
2210 if (!rts_write_pdu_header(buffer, &header))
2213 if (!rts_empty_command_write(buffer))
2215 status = rts_send_buffer(&nextOutChannel->common, buffer, header.header.frag_length);
2217 Stream_Free(buffer, TRUE);
2218 return (status) ? 1 : -1;
2221BOOL rts_send_OUT_R1_A3_pdu(rdpRpc* rpc)
2223 BOOL status = FALSE;
2226 UINT32 ReceiveWindowSize = 0;
2227 BYTE* VirtualConnectionCookie =
nullptr;
2228 BYTE* PredecessorChannelCookie =
nullptr;
2229 BYTE* SuccessorChannelCookie =
nullptr;
2236 connection = rpc->VirtualConnection;
2237 WINPR_ASSERT(connection);
2239 outChannel = connection->DefaultOutChannel;
2240 WINPR_ASSERT(outChannel);
2242 nextOutChannel = connection->NonDefaultOutChannel;
2243 WINPR_ASSERT(nextOutChannel);
2245 header.header.frag_length = 96;
2246 header.Flags = RTS_FLAG_RECYCLE_CHANNEL;
2247 header.NumberOfCommands = 5;
2249 WLog_DBG(TAG,
"Sending OUT_R1/A3 RTS PDU");
2251 VirtualConnectionCookie = (BYTE*)&(connection->Cookie);
2252 PredecessorChannelCookie = (BYTE*)&(outChannel->common.Cookie);
2253 SuccessorChannelCookie = (BYTE*)&(nextOutChannel->common.Cookie);
2254 ReceiveWindowSize = outChannel->ReceiveWindow;
2255 buffer = Stream_New(
nullptr, header.header.frag_length);
2260 if (!rts_write_pdu_header(buffer, &header))
2262 if (!rts_version_command_write(buffer))
2264 if (!rts_cookie_command_write(buffer,
2265 VirtualConnectionCookie))
2267 if (!rts_cookie_command_write(
2268 buffer, PredecessorChannelCookie))
2270 if (!rts_cookie_command_write(buffer,
2271 SuccessorChannelCookie))
2273 if (!rts_receive_window_size_command_write(buffer,
2277 status = rts_send_buffer(&nextOutChannel->common, buffer, header.header.frag_length);
2279 Stream_Free(buffer, TRUE);
2283static int rts_recv_OUT_R1_A2_pdu(rdpRpc* rpc,
wStream* buffer)
2286 UINT32 Destination = 0;
2289 WINPR_ASSERT(buffer);
2291 connection = rpc->VirtualConnection;
2292 WINPR_ASSERT(connection);
2294 WLog_DBG(TAG,
"Receiving OUT R1/A2 RTS PDU");
2296 status = rts_destination_command_read(rpc, buffer, &Destination);
2300 connection->NonDefaultOutChannel = rpc_out_channel_new(rpc, &connection->Cookie);
2302 if (!connection->NonDefaultOutChannel)
2305 status = rpc_out_channel_replacement_connect(connection->NonDefaultOutChannel, 5000);
2309 WLog_ERR(TAG,
"rpc_out_channel_replacement_connect failure");
2313 rpc_out_channel_transition_to_state(connection->DefaultOutChannel,
2314 CLIENT_OUT_CHANNEL_STATE_OPENED_A6W);
2318static int rts_recv_OUT_R2_A6_pdu(rdpRpc* rpc, WINPR_ATTR_UNUSED
wStream* buffer)
2324 WINPR_ASSERT(buffer);
2326 connection = rpc->VirtualConnection;
2327 WINPR_ASSERT(connection);
2329 WLog_DBG(TAG,
"Receiving OUT R2/A6 RTS PDU");
2330 status = rts_send_OUT_R2_C1_pdu(rpc);
2334 WLog_ERR(TAG,
"rts_send_OUT_R2_C1_pdu failure");
2338 status = rts_send_OUT_R2_A7_pdu(rpc);
2342 WLog_ERR(TAG,
"rts_send_OUT_R2_A7_pdu failure");
2346 rpc_out_channel_transition_to_state(connection->NonDefaultOutChannel,
2347 CLIENT_OUT_CHANNEL_STATE_OPENED_B3W);
2348 rpc_out_channel_transition_to_state(connection->DefaultOutChannel,
2349 CLIENT_OUT_CHANNEL_STATE_OPENED_B3W);
2353static int rts_recv_OUT_R2_B3_pdu(rdpRpc* rpc, WINPR_ATTR_UNUSED
wStream* buffer)
2358 WINPR_ASSERT(buffer);
2360 connection = rpc->VirtualConnection;
2361 WINPR_ASSERT(connection);
2363 WLog_DBG(TAG,
"Receiving OUT R2/B3 RTS PDU");
2364 rpc_out_channel_transition_to_state(connection->DefaultOutChannel,
2365 CLIENT_OUT_CHANNEL_STATE_RECYCLED);
2371 BOOL status = FALSE;
2377 WINPR_ASSERT(buffer);
2378 WINPR_ASSERT(header);
2380 wLog* log = WLog_Get(TAG);
2382 const size_t total = Stream_Length(buffer);
2383 length = header->common.frag_length;
2386 WLog_Print(log, WLOG_ERROR,
"PDU length %" PRIuz
" does not match available data %" PRIuz,
2391 connection = rpc->VirtualConnection;
2395 WLog_Print(log, WLOG_ERROR,
"not connected, aborting");
2399 if (!rts_extract_pdu_signature(&signature, buffer, header))
2402 rts_print_pdu_signature(log, WLOG_TRACE, &signature);
2404 if (memcmp(&signature, &RTS_PDU_FLOW_CONTROL_ACK_SIGNATURE,
sizeof(signature)) == 0)
2406 status = rts_recv_flow_control_ack_pdu(rpc, buffer);
2408 else if (memcmp(&signature, &RTS_PDU_FLOW_CONTROL_ACK_WITH_DESTINATION_SIGNATURE,
2409 sizeof(signature)) == 0)
2411 status = rts_recv_flow_control_ack_with_destination_pdu(rpc, buffer);
2413 else if (memcmp(&signature, &RTS_PDU_PING_SIGNATURE,
sizeof(signature)) == 0)
2415 status = rts_send_ping_pdu(rpc);
2419 if (connection->DefaultOutChannel->State == CLIENT_OUT_CHANNEL_STATE_OPENED)
2421 if (memcmp(&signature, &RTS_PDU_OUT_R1_A2_SIGNATURE,
sizeof(signature)) == 0)
2423 status = rts_recv_OUT_R1_A2_pdu(rpc, buffer);
2426 else if (connection->DefaultOutChannel->State == CLIENT_OUT_CHANNEL_STATE_OPENED_A6W)
2428 if (memcmp(&signature, &RTS_PDU_OUT_R2_A6_SIGNATURE,
sizeof(signature)) == 0)
2430 status = rts_recv_OUT_R2_A6_pdu(rpc, buffer);
2433 else if (connection->DefaultOutChannel->State == CLIENT_OUT_CHANNEL_STATE_OPENED_B3W)
2435 if (memcmp(&signature, &RTS_PDU_OUT_R2_B3_SIGNATURE,
sizeof(signature)) == 0)
2437 status = rts_recv_OUT_R2_B3_pdu(rpc, buffer);
2444 const UINT32 SignatureId = rts_identify_pdu_signature(&signature,
nullptr);
2445 WLog_Print(log, WLOG_ERROR,
"error parsing RTS PDU with signature id: 0x%08" PRIX32
"",
2447 rts_print_pdu_signature(log, WLOG_ERROR, &signature);
2450 const size_t rem = Stream_GetRemainingLength(buffer);
2453 WLog_Print(log, WLOG_ERROR,
"%" PRIuz
" bytes or %" PRIuz
" total not parsed, aborting",
2455 rts_print_pdu_signature(log, WLOG_ERROR, &signature);
2467 if (!rts_write_common_pdu_header(s, &auth->header))
2470 if (!Stream_EnsureRemainingCapacity(s, 2 *
sizeof(UINT16)))
2473 Stream_Write_UINT16(s, auth->max_xmit_frag);
2474 Stream_Write_UINT16(s, auth->max_recv_frag);
2476 return rts_write_auth_verifier(s, &auth->auth_verifier, &auth->header);
2485 if (!rts_write_common_pdu_header(s, &bind->header))
2488 if (!Stream_EnsureRemainingCapacity(s, 8))
2491 Stream_Write_UINT16(s, bind->max_xmit_frag);
2492 Stream_Write_UINT16(s, bind->max_recv_frag);
2493 Stream_Write_UINT32(s, bind->assoc_group_id);
2495 if (!rts_write_context_list(s, &bind->p_context_elem))
2498 return rts_write_auth_verifier(s, &bind->auth_verifier, &bind->header);
2501BOOL rts_conditional_check_and_log(
const char* tag,
wStream* s,
size_t size, BOOL silent,
2502 const char* fkt,
const char* file,
size_t line)
2506 const size_t rem = Stream_GetRemainingLength(s);
2507 return (rem >= size);
2510 return Stream_CheckAndLogRequiredLengthEx(tag, WLOG_WARN, s, size, 1,
"%s(%s:%" PRIuz
")", fkt,
2514BOOL rts_conditional_safe_seek(
wStream* s,
size_t size, BOOL silent,
const char* fkt,
2515 const char* file,
size_t line)
2519 const size_t rem = Stream_GetRemainingLength(s);
2523 return Stream_SafeSeekEx(s, size, file, line, fkt);