#ifndef CLIENT_HTTPS_HPP #define CLIENT_HTTPS_HPP #include "client_http.hpp" #ifdef USE_STANDALONE_ASIO #include #else #include #endif namespace SimpleWeb { typedef asio::ssl::stream HTTPS; template <> class Client : public ClientBase { friend ClientBase; Client(const Client &) = delete; Client &operator=(const Client &) = delete; public: static std::shared_ptr create(const std::string &server_port_path, bool verify_certificate = true, const std::string &cert_file = std::string(), const std::string &private_key_file = std::string(), const std::string &verify_file = std::string()) { return std::shared_ptr(new Client(server_port_path, verify_certificate, cert_file, private_key_file, verify_file)); } protected: Client(const std::string &server_port_path, bool verify_certificate, const std::string &cert_file, const std::string &private_key_file, const std::string &verify_file) : ClientBase::ClientBase(server_port_path, 443), context(asio::ssl::context::tlsv12) { if(cert_file.size() > 0 && private_key_file.size() > 0) { context.use_certificate_chain_file(cert_file); context.use_private_key_file(private_key_file, asio::ssl::context::pem); } if(verify_certificate) context.set_verify_callback(asio::ssl::rfc2818_verification(host)); if(verify_file.size() > 0) context.load_verify_file(verify_file); else context.set_default_verify_paths(); if(verify_file.size() > 0 || verify_certificate) context.set_verify_mode(asio::ssl::verify_peer); else context.set_verify_mode(asio::ssl::verify_none); } asio::ssl::context context; std::shared_ptr create_connection() override { return std::make_shared(std::unique_ptr(new HTTPS(*io_service, context))); } void connect(std::shared_ptr &session) override { if(!session->connection->socket->lowest_layer().is_open()) { auto resolver = std::make_shared(*io_service); resolver->async_resolve(*query, [this, session, resolver](const error_code &ec, asio::ip::tcp::resolver::iterator it) mutable { if(!ec) { session->set_timeout(this->config.timeout_connect); asio::async_connect(session->connection->socket->lowest_layer(), it, [this, session, resolver](const error_code &ec, asio::ip::tcp::resolver::iterator /*it*/) mutable { session->cancel_timeout(); if(!ec) { asio::ip::tcp::no_delay option(true); session->connection->socket->lowest_layer().set_option(option); if(!this->config.proxy_server.empty()) { auto write_buffer = std::make_shared(); std::ostream write_stream(write_buffer.get()); auto host_port = this->host + ':' + std::to_string(this->port); write_stream << "CONNECT " + host_port + " HTTP/1.1\r\n" << "Host: " << host_port << "\r\n\r\n"; session->set_timeout(this->config.timeout_connect); asio::async_write(session->connection->socket->next_layer(), *write_buffer, [this, session, write_buffer](const error_code &ec, size_t /*bytes_transferred*/) mutable { session->cancel_timeout(); if(!ec) { std::shared_ptr response(new Response()); session->set_timeout(this->config.timeout_connect); asio::async_read_until(session->connection->socket->next_layer(), response->content_buffer, "\r\n\r\n", [this, session, response](const error_code &ec, size_t /*bytes_transferred*/) mutable { session->cancel_timeout(); if(!ec) { this->parse_response_header(response); if(response->status_code.empty() || response->status_code.compare(0, 3, "200") != 0) { session->connection->close(); session->callback(make_error_code::make_error_code(errc::permission_denied)); } else this->handshake(session); } else { session->connection->close(); session->callback(ec); } }); } else { session->connection->close(); session->callback(ec); } }); } else this->handshake(session); } else { session->connection->close(); session->callback(ec); } }); } else { session->connection->close(); session->callback(ec); } }); } else write(session); } void handshake(std::shared_ptr &session) { session->set_timeout(this->config.timeout_connect); session->connection->socket->async_handshake(asio::ssl::stream_base::client, [this, session](const error_code &ec) mutable { session->cancel_timeout(); if(!ec) this->write(session); else { session->connection->close(); session->callback(ec); } }); } }; } // namespace SimpleWeb #endif /* CLIENT_HTTPS_HPP */