1 1.1 christos # Copyright 2016-2019 The OpenSSL Project Authors. All Rights Reserved. 2 1.1 christos # 3 1.1 christos # Licensed under the OpenSSL license (the "License"). You may not use 4 1.1 christos # this file except in compliance with the License. You can obtain a copy 5 1.1 christos # in the file LICENSE in the source distribution or at 6 1.1 christos # https://www.openssl.org/source/license.html 7 1.1 christos 8 1.1 christos use strict; 9 1.1 christos 10 1.1 christos package TLSProxy::ClientHello; 11 1.1 christos 12 1.1 christos use vars '@ISA'; 13 1.1 christos push @ISA, 'TLSProxy::Message'; 14 1.1 christos 15 1.1 christos sub new 16 1.1 christos { 17 1.1 christos my $class = shift; 18 1.1 christos my ($server, 19 1.1 christos $data, 20 1.1 christos $records, 21 1.1 christos $startoffset, 22 1.1 christos $message_frag_lens) = @_; 23 1.1 christos 24 1.1 christos my $self = $class->SUPER::new( 25 1.1 christos $server, 26 1.1 christos 1, 27 1.1 christos $data, 28 1.1 christos $records, 29 1.1 christos $startoffset, 30 1.1 christos $message_frag_lens); 31 1.1 christos 32 1.1 christos $self->{client_version} = 0; 33 1.1 christos $self->{random} = []; 34 1.1 christos $self->{session_id_len} = 0; 35 1.1 christos $self->{session} = ""; 36 1.1 christos $self->{ciphersuite_len} = 0; 37 1.1 christos $self->{ciphersuites} = []; 38 1.1 christos $self->{comp_meth_len} = 0; 39 1.1 christos $self->{comp_meths} = []; 40 1.1 christos $self->{extensions_len} = 0; 41 1.1 christos $self->{extension_data} = ""; 42 1.1 christos 43 1.1 christos return $self; 44 1.1 christos } 45 1.1 christos 46 1.1 christos sub parse 47 1.1 christos { 48 1.1 christos my $self = shift; 49 1.1 christos my $ptr = 2; 50 1.1 christos my ($client_version) = unpack('n', $self->data); 51 1.1 christos my $random = substr($self->data, $ptr, 32); 52 1.1 christos $ptr += 32; 53 1.1 christos my $session_id_len = unpack('C', substr($self->data, $ptr)); 54 1.1 christos $ptr++; 55 1.1 christos my $session = substr($self->data, $ptr, $session_id_len); 56 1.1 christos $ptr += $session_id_len; 57 1.1 christos my $ciphersuite_len = unpack('n', substr($self->data, $ptr)); 58 1.1 christos $ptr += 2; 59 1.1 christos my @ciphersuites = unpack('n*', substr($self->data, $ptr, 60 1.1 christos $ciphersuite_len)); 61 1.1 christos $ptr += $ciphersuite_len; 62 1.1 christos my $comp_meth_len = unpack('C', substr($self->data, $ptr)); 63 1.1 christos $ptr++; 64 1.1 christos my @comp_meths = unpack('C*', substr($self->data, $ptr, $comp_meth_len)); 65 1.1 christos $ptr += $comp_meth_len; 66 1.1 christos my $extensions_len = unpack('n', substr($self->data, $ptr)); 67 1.1 christos $ptr += 2; 68 1.1 christos #For now we just deal with this as a block of data. In the future we will 69 1.1 christos #want to parse this 70 1.1 christos my $extension_data = substr($self->data, $ptr); 71 1.1 christos 72 1.1 christos if (length($extension_data) != $extensions_len) { 73 1.1 christos die "Invalid extension length\n"; 74 1.1 christos } 75 1.1 christos my %extensions = (); 76 1.1 christos while (length($extension_data) >= 4) { 77 1.1 christos my ($type, $size) = unpack("nn", $extension_data); 78 1.1 christos my $extdata = substr($extension_data, 4, $size); 79 1.1 christos $extension_data = substr($extension_data, 4 + $size); 80 1.1 christos $extensions{$type} = $extdata; 81 1.1 christos } 82 1.1 christos 83 1.1 christos $self->client_version($client_version); 84 1.1 christos $self->random($random); 85 1.1 christos $self->session_id_len($session_id_len); 86 1.1 christos $self->session($session); 87 1.1 christos $self->ciphersuite_len($ciphersuite_len); 88 1.1 christos $self->ciphersuites(\@ciphersuites); 89 1.1 christos $self->comp_meth_len($comp_meth_len); 90 1.1 christos $self->comp_meths(\@comp_meths); 91 1.1 christos $self->extensions_len($extensions_len); 92 1.1 christos $self->extension_data(\%extensions); 93 1.1 christos 94 1.1 christos $self->process_extensions(); 95 1.1 christos 96 1.1 christos print " Client Version:".$client_version."\n"; 97 1.1 christos print " Session ID Len:".$session_id_len."\n"; 98 1.1 christos print " Ciphersuite len:".$ciphersuite_len."\n"; 99 1.1 christos print " Compression Method Len:".$comp_meth_len."\n"; 100 1.1 christos print " Extensions Len:".$extensions_len."\n"; 101 1.1 christos } 102 1.1 christos 103 1.1 christos #Perform any actions necessary based on the extensions we've seen 104 1.1 christos sub process_extensions 105 1.1 christos { 106 1.1 christos my $self = shift; 107 1.1 christos my %extensions = %{$self->extension_data}; 108 1.1 christos 109 1.1 christos #Clear any state from a previous run 110 1.1 christos TLSProxy::Record->etm(0); 111 1.1 christos 112 1.1 christos if (exists $extensions{TLSProxy::Message::EXT_ENCRYPT_THEN_MAC}) { 113 1.1 christos TLSProxy::Record->etm(1); 114 1.1 christos } 115 1.1 christos } 116 1.1 christos 117 1.1 christos sub extension_contents 118 1.1 christos { 119 1.1 christos my $self = shift; 120 1.1 christos my $key = shift; 121 1.1 christos my $extension = ""; 122 1.1 christos 123 1.1 christos my $extdata = ${$self->extension_data}{$key}; 124 1.1 christos $extension .= pack("n", $key); 125 1.1 christos $extension .= pack("n", length($extdata)); 126 1.1 christos $extension .= $extdata; 127 1.1 christos return $extension; 128 1.1 christos } 129 1.1 christos 130 1.1 christos #Reconstruct the on-the-wire message data following changes 131 1.1 christos sub set_message_contents 132 1.1 christos { 133 1.1 christos my $self = shift; 134 1.1 christos my $data; 135 1.1 christos my $extensions = ""; 136 1.1 christos 137 1.1 christos $data = pack('n', $self->client_version); 138 1.1 christos $data .= $self->random; 139 1.1 christos $data .= pack('C', $self->session_id_len); 140 1.1 christos $data .= $self->session; 141 1.1 christos $data .= pack('n', $self->ciphersuite_len); 142 1.1 christos $data .= pack("n*", @{$self->ciphersuites}); 143 1.1 christos $data .= pack('C', $self->comp_meth_len); 144 1.1 christos $data .= pack("C*", @{$self->comp_meths}); 145 1.1 christos 146 1.1 christos foreach my $key (keys %{$self->extension_data}) { 147 1.1 christos next if ($key == TLSProxy::Message::EXT_PSK); 148 1.1 christos $extensions .= $self->extension_contents($key); 149 1.1 christos #Add extension twice if we are duplicating that extension 150 1.1 christos $extensions .= $self->extension_contents($key) if ($key == $self->dupext); 151 1.1 christos } 152 1.1 christos #PSK extension always goes last... 153 1.1 christos if (defined ${$self->extension_data}{TLSProxy::Message::EXT_PSK}) { 154 1.1 christos $extensions .= $self->extension_contents(TLSProxy::Message::EXT_PSK); 155 1.1 christos } 156 1.1 christos #unless we have EXT_FORCE_LAST 157 1.1 christos if (defined ${$self->extension_data}{TLSProxy::Message::EXT_FORCE_LAST}) { 158 1.1 christos $extensions .= $self->extension_contents(TLSProxy::Message::EXT_FORCE_LAST); 159 1.1 christos } 160 1.1 christos 161 1.1 christos $data .= pack('n', length($extensions)); 162 1.1 christos $data .= $extensions; 163 1.1 christos 164 1.1 christos $self->data($data); 165 1.1 christos } 166 1.1 christos 167 1.1 christos #Read/write accessors 168 1.1 christos sub client_version 169 1.1 christos { 170 1.1 christos my $self = shift; 171 1.1 christos if (@_) { 172 1.1 christos $self->{client_version} = shift; 173 1.1 christos } 174 1.1 christos return $self->{client_version}; 175 1.1 christos } 176 1.1 christos sub random 177 1.1 christos { 178 1.1 christos my $self = shift; 179 1.1 christos if (@_) { 180 1.1 christos $self->{random} = shift; 181 1.1 christos } 182 1.1 christos return $self->{random}; 183 1.1 christos } 184 1.1 christos sub session_id_len 185 1.1 christos { 186 1.1 christos my $self = shift; 187 1.1 christos if (@_) { 188 1.1 christos $self->{session_id_len} = shift; 189 1.1 christos } 190 1.1 christos return $self->{session_id_len}; 191 1.1 christos } 192 1.1 christos sub session 193 1.1 christos { 194 1.1 christos my $self = shift; 195 1.1 christos if (@_) { 196 1.1 christos $self->{session} = shift; 197 1.1 christos } 198 1.1 christos return $self->{session}; 199 1.1 christos } 200 1.1 christos sub ciphersuite_len 201 1.1 christos { 202 1.1 christos my $self = shift; 203 1.1 christos if (@_) { 204 1.1 christos $self->{ciphersuite_len} = shift; 205 1.1 christos } 206 1.1 christos return $self->{ciphersuite_len}; 207 1.1 christos } 208 1.1 christos sub ciphersuites 209 1.1 christos { 210 1.1 christos my $self = shift; 211 1.1 christos if (@_) { 212 1.1 christos $self->{ciphersuites} = shift; 213 1.1 christos } 214 1.1 christos return $self->{ciphersuites}; 215 1.1 christos } 216 1.1 christos sub comp_meth_len 217 1.1 christos { 218 1.1 christos my $self = shift; 219 1.1 christos if (@_) { 220 1.1 christos $self->{comp_meth_len} = shift; 221 1.1 christos } 222 1.1 christos return $self->{comp_meth_len}; 223 1.1 christos } 224 1.1 christos sub comp_meths 225 1.1 christos { 226 1.1 christos my $self = shift; 227 1.1 christos if (@_) { 228 1.1 christos $self->{comp_meths} = shift; 229 1.1 christos } 230 1.1 christos return $self->{comp_meths}; 231 1.1 christos } 232 1.1 christos sub extensions_len 233 1.1 christos { 234 1.1 christos my $self = shift; 235 1.1 christos if (@_) { 236 1.1 christos $self->{extensions_len} = shift; 237 1.1 christos } 238 1.1 christos return $self->{extensions_len}; 239 1.1 christos } 240 1.1 christos sub extension_data 241 1.1 christos { 242 1.1 christos my $self = shift; 243 1.1 christos if (@_) { 244 1.1 christos $self->{extension_data} = shift; 245 1.1 christos } 246 1.1 christos return $self->{extension_data}; 247 1.1 christos } 248 1.1 christos sub set_extension 249 1.1 christos { 250 1.1 christos my ($self, $ext_type, $ext_data) = @_; 251 1.1 christos $self->{extension_data}{$ext_type} = $ext_data; 252 1.1 christos } 253 1.1 christos sub delete_extension 254 1.1 christos { 255 1.1 christos my ($self, $ext_type) = @_; 256 1.1 christos delete $self->{extension_data}{$ext_type}; 257 1.1 christos } 258 1.1 christos 1; 259