client_server_test.go 9.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448
  1. // Copyright 2013 The Gorilla WebSocket Authors. All rights reserved.
  2. // Use of this source code is governed by a BSD-style
  3. // license that can be found in the LICENSE file.
  4. package websocket
  5. import (
  6. "crypto/tls"
  7. "crypto/x509"
  8. "encoding/base64"
  9. "io"
  10. "io/ioutil"
  11. "net/http"
  12. "net/http/httptest"
  13. "net/url"
  14. "reflect"
  15. "strings"
  16. "testing"
  17. "time"
  18. )
  19. var cstUpgrader = Upgrader{
  20. Subprotocols: []string{"p0", "p1"},
  21. ReadBufferSize: 1024,
  22. WriteBufferSize: 1024,
  23. Error: func(w http.ResponseWriter, r *http.Request, status int, reason error) {
  24. http.Error(w, reason.Error(), status)
  25. },
  26. }
  27. var cstDialer = Dialer{
  28. Subprotocols: []string{"p1", "p2"},
  29. ReadBufferSize: 1024,
  30. WriteBufferSize: 1024,
  31. }
  32. type cstHandler struct{ *testing.T }
  33. type cstServer struct {
  34. *httptest.Server
  35. URL string
  36. }
  37. const (
  38. cstPath = "/a/b"
  39. cstRawQuery = "x=y"
  40. cstRequestURI = cstPath + "?" + cstRawQuery
  41. )
  42. func newServer(t *testing.T) *cstServer {
  43. var s cstServer
  44. s.Server = httptest.NewServer(cstHandler{t})
  45. s.Server.URL += cstRequestURI
  46. s.URL = makeWsProto(s.Server.URL)
  47. return &s
  48. }
  49. func newTLSServer(t *testing.T) *cstServer {
  50. var s cstServer
  51. s.Server = httptest.NewTLSServer(cstHandler{t})
  52. s.Server.URL += cstRequestURI
  53. s.URL = makeWsProto(s.Server.URL)
  54. return &s
  55. }
  56. func (t cstHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  57. if r.URL.Path != cstPath {
  58. t.Logf("path=%v, want %v", r.URL.Path, cstPath)
  59. http.Error(w, "bad path", 400)
  60. return
  61. }
  62. if r.URL.RawQuery != cstRawQuery {
  63. t.Logf("query=%v, want %v", r.URL.RawQuery, cstRawQuery)
  64. http.Error(w, "bad path", 400)
  65. return
  66. }
  67. subprotos := Subprotocols(r)
  68. if !reflect.DeepEqual(subprotos, cstDialer.Subprotocols) {
  69. t.Logf("subprotols=%v, want %v", subprotos, cstDialer.Subprotocols)
  70. http.Error(w, "bad protocol", 400)
  71. return
  72. }
  73. ws, err := cstUpgrader.Upgrade(w, r, http.Header{"Set-Cookie": {"sessionID=1234"}})
  74. if err != nil {
  75. t.Logf("Upgrade: %v", err)
  76. return
  77. }
  78. defer ws.Close()
  79. if ws.Subprotocol() != "p1" {
  80. t.Logf("Subprotocol() = %s, want p1", ws.Subprotocol())
  81. ws.Close()
  82. return
  83. }
  84. op, rd, err := ws.NextReader()
  85. if err != nil {
  86. t.Logf("NextReader: %v", err)
  87. return
  88. }
  89. wr, err := ws.NextWriter(op)
  90. if err != nil {
  91. t.Logf("NextWriter: %v", err)
  92. return
  93. }
  94. if _, err = io.Copy(wr, rd); err != nil {
  95. t.Logf("NextWriter: %v", err)
  96. return
  97. }
  98. if err := wr.Close(); err != nil {
  99. t.Logf("Close: %v", err)
  100. return
  101. }
  102. }
  103. func makeWsProto(s string) string {
  104. return "ws" + strings.TrimPrefix(s, "http")
  105. }
  106. func sendRecv(t *testing.T, ws *Conn) {
  107. const message = "Hello World!"
  108. if err := ws.SetWriteDeadline(time.Now().Add(time.Second)); err != nil {
  109. t.Fatalf("SetWriteDeadline: %v", err)
  110. }
  111. if err := ws.WriteMessage(TextMessage, []byte(message)); err != nil {
  112. t.Fatalf("WriteMessage: %v", err)
  113. }
  114. if err := ws.SetReadDeadline(time.Now().Add(time.Second)); err != nil {
  115. t.Fatalf("SetReadDeadline: %v", err)
  116. }
  117. _, p, err := ws.ReadMessage()
  118. if err != nil {
  119. t.Fatalf("ReadMessage: %v", err)
  120. }
  121. if string(p) != message {
  122. t.Fatalf("message=%s, want %s", p, message)
  123. }
  124. }
  125. func TestProxyDial(t *testing.T) {
  126. s := newServer(t)
  127. defer s.Close()
  128. surl, _ := url.Parse(s.URL)
  129. cstDialer.Proxy = http.ProxyURL(surl)
  130. connect := false
  131. origHandler := s.Server.Config.Handler
  132. // Capture the request Host header.
  133. s.Server.Config.Handler = http.HandlerFunc(
  134. func(w http.ResponseWriter, r *http.Request) {
  135. if r.Method == "CONNECT" {
  136. connect = true
  137. w.WriteHeader(200)
  138. return
  139. }
  140. if !connect {
  141. t.Log("connect not recieved")
  142. http.Error(w, "connect not recieved", 405)
  143. return
  144. }
  145. origHandler.ServeHTTP(w, r)
  146. })
  147. ws, _, err := cstDialer.Dial(s.URL, nil)
  148. if err != nil {
  149. t.Fatalf("Dial: %v", err)
  150. }
  151. defer ws.Close()
  152. sendRecv(t, ws)
  153. cstDialer.Proxy = http.ProxyFromEnvironment
  154. }
  155. func TestProxyAuthorizationDial(t *testing.T) {
  156. s := newServer(t)
  157. defer s.Close()
  158. surl, _ := url.Parse(s.URL)
  159. surl.User = url.UserPassword("username", "password")
  160. cstDialer.Proxy = http.ProxyURL(surl)
  161. connect := false
  162. origHandler := s.Server.Config.Handler
  163. // Capture the request Host header.
  164. s.Server.Config.Handler = http.HandlerFunc(
  165. func(w http.ResponseWriter, r *http.Request) {
  166. proxyAuth := r.Header.Get("Proxy-Authorization")
  167. expectedProxyAuth := "Basic " + base64.StdEncoding.EncodeToString([]byte("username:password"))
  168. if r.Method == "CONNECT" && proxyAuth == expectedProxyAuth {
  169. connect = true
  170. w.WriteHeader(200)
  171. return
  172. }
  173. if !connect {
  174. t.Log("connect with proxy authorization not recieved")
  175. http.Error(w, "connect with proxy authorization not recieved", 405)
  176. return
  177. }
  178. origHandler.ServeHTTP(w, r)
  179. })
  180. ws, _, err := cstDialer.Dial(s.URL, nil)
  181. if err != nil {
  182. t.Fatalf("Dial: %v", err)
  183. }
  184. defer ws.Close()
  185. sendRecv(t, ws)
  186. cstDialer.Proxy = http.ProxyFromEnvironment
  187. }
  188. func TestDial(t *testing.T) {
  189. s := newServer(t)
  190. defer s.Close()
  191. ws, _, err := cstDialer.Dial(s.URL, nil)
  192. if err != nil {
  193. t.Fatalf("Dial: %v", err)
  194. }
  195. defer ws.Close()
  196. sendRecv(t, ws)
  197. }
  198. func TestDialTLS(t *testing.T) {
  199. s := newTLSServer(t)
  200. defer s.Close()
  201. certs := x509.NewCertPool()
  202. for _, c := range s.TLS.Certificates {
  203. roots, err := x509.ParseCertificates(c.Certificate[len(c.Certificate)-1])
  204. if err != nil {
  205. t.Fatalf("error parsing server's root cert: %v", err)
  206. }
  207. for _, root := range roots {
  208. certs.AddCert(root)
  209. }
  210. }
  211. d := cstDialer
  212. d.TLSClientConfig = &tls.Config{RootCAs: certs}
  213. ws, _, err := d.Dial(s.URL, nil)
  214. if err != nil {
  215. t.Fatalf("Dial: %v", err)
  216. }
  217. defer ws.Close()
  218. sendRecv(t, ws)
  219. }
  220. func xTestDialTLSBadCert(t *testing.T) {
  221. // This test is deactivated because of noisy logging from the net/http package.
  222. s := newTLSServer(t)
  223. defer s.Close()
  224. ws, _, err := cstDialer.Dial(s.URL, nil)
  225. if err == nil {
  226. ws.Close()
  227. t.Fatalf("Dial: nil")
  228. }
  229. }
  230. func TestDialTLSNoVerify(t *testing.T) {
  231. s := newTLSServer(t)
  232. defer s.Close()
  233. d := cstDialer
  234. d.TLSClientConfig = &tls.Config{InsecureSkipVerify: true}
  235. ws, _, err := d.Dial(s.URL, nil)
  236. if err != nil {
  237. t.Fatalf("Dial: %v", err)
  238. }
  239. defer ws.Close()
  240. sendRecv(t, ws)
  241. }
  242. func TestDialTimeout(t *testing.T) {
  243. s := newServer(t)
  244. defer s.Close()
  245. d := cstDialer
  246. d.HandshakeTimeout = -1
  247. ws, _, err := d.Dial(s.URL, nil)
  248. if err == nil {
  249. ws.Close()
  250. t.Fatalf("Dial: nil")
  251. }
  252. }
  253. func TestDialBadScheme(t *testing.T) {
  254. s := newServer(t)
  255. defer s.Close()
  256. ws, _, err := cstDialer.Dial(s.Server.URL, nil)
  257. if err == nil {
  258. ws.Close()
  259. t.Fatalf("Dial: nil")
  260. }
  261. }
  262. func TestDialBadOrigin(t *testing.T) {
  263. s := newServer(t)
  264. defer s.Close()
  265. ws, resp, err := cstDialer.Dial(s.URL, http.Header{"Origin": {"bad"}})
  266. if err == nil {
  267. ws.Close()
  268. t.Fatalf("Dial: nil")
  269. }
  270. if resp == nil {
  271. t.Fatalf("resp=nil, err=%v", err)
  272. }
  273. if resp.StatusCode != http.StatusForbidden {
  274. t.Fatalf("status=%d, want %d", resp.StatusCode, http.StatusForbidden)
  275. }
  276. }
  277. func TestDialBadHeader(t *testing.T) {
  278. s := newServer(t)
  279. defer s.Close()
  280. for _, k := range []string{"Upgrade",
  281. "Connection",
  282. "Sec-Websocket-Key",
  283. "Sec-Websocket-Version",
  284. "Sec-Websocket-Protocol"} {
  285. h := http.Header{}
  286. h.Set(k, "bad")
  287. ws, _, err := cstDialer.Dial(s.URL, http.Header{"Origin": {"bad"}})
  288. if err == nil {
  289. ws.Close()
  290. t.Errorf("Dial with header %s returned nil", k)
  291. }
  292. }
  293. }
  294. func TestBadMethod(t *testing.T) {
  295. s := httptest.NewServer(http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  296. ws, err := cstUpgrader.Upgrade(w, r, nil)
  297. if err == nil {
  298. t.Errorf("handshake succeeded, expect fail")
  299. ws.Close()
  300. }
  301. }))
  302. defer s.Close()
  303. resp, err := http.PostForm(s.URL, url.Values{})
  304. if err != nil {
  305. t.Fatalf("PostForm returned error %v", err)
  306. }
  307. resp.Body.Close()
  308. if resp.StatusCode != http.StatusMethodNotAllowed {
  309. t.Errorf("Status = %d, want %d", resp.StatusCode, http.StatusMethodNotAllowed)
  310. }
  311. }
  312. func TestHandshake(t *testing.T) {
  313. s := newServer(t)
  314. defer s.Close()
  315. ws, resp, err := cstDialer.Dial(s.URL, http.Header{"Origin": {s.URL}})
  316. if err != nil {
  317. t.Fatalf("Dial: %v", err)
  318. }
  319. defer ws.Close()
  320. var sessionID string
  321. for _, c := range resp.Cookies() {
  322. if c.Name == "sessionID" {
  323. sessionID = c.Value
  324. }
  325. }
  326. if sessionID != "1234" {
  327. t.Error("Set-Cookie not received from the server.")
  328. }
  329. if ws.Subprotocol() != "p1" {
  330. t.Errorf("ws.Subprotocol() = %s, want p1", ws.Subprotocol())
  331. }
  332. sendRecv(t, ws)
  333. }
  334. func TestRespOnBadHandshake(t *testing.T) {
  335. const expectedStatus = http.StatusGone
  336. const expectedBody = "This is the response body."
  337. s := httptest.NewServer(http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  338. w.WriteHeader(expectedStatus)
  339. io.WriteString(w, expectedBody)
  340. }))
  341. defer s.Close()
  342. ws, resp, err := cstDialer.Dial(makeWsProto(s.URL), nil)
  343. if err == nil {
  344. ws.Close()
  345. t.Fatalf("Dial: nil")
  346. }
  347. if resp == nil {
  348. t.Fatalf("resp=nil, err=%v", err)
  349. }
  350. if resp.StatusCode != expectedStatus {
  351. t.Errorf("resp.StatusCode=%d, want %d", resp.StatusCode, expectedStatus)
  352. }
  353. p, err := ioutil.ReadAll(resp.Body)
  354. if err != nil {
  355. t.Fatalf("ReadFull(resp.Body) returned error %v", err)
  356. }
  357. if string(p) != expectedBody {
  358. t.Errorf("resp.Body=%s, want %s", p, expectedBody)
  359. }
  360. }
  361. // TestHostHeader confirms that the host header provided in the call to Dial is
  362. // sent to the server.
  363. func TestHostHeader(t *testing.T) {
  364. s := newServer(t)
  365. defer s.Close()
  366. specifiedHost := make(chan string, 1)
  367. origHandler := s.Server.Config.Handler
  368. // Capture the request Host header.
  369. s.Server.Config.Handler = http.HandlerFunc(
  370. func(w http.ResponseWriter, r *http.Request) {
  371. specifiedHost <- r.Host
  372. origHandler.ServeHTTP(w, r)
  373. })
  374. ws, _, err := cstDialer.Dial(s.URL, http.Header{"Host": {"testhost"}})
  375. if err != nil {
  376. t.Fatalf("Dial: %v", err)
  377. }
  378. defer ws.Close()
  379. if gotHost := <-specifiedHost; gotHost != "testhost" {
  380. t.Fatalf("gotHost = %q, want \"testhost\"", gotHost)
  381. }
  382. sendRecv(t, ws)
  383. }