|
Packit |
1fb8d4 |
/**
|
|
Packit |
1fb8d4 |
* FreeRDP: A Remote Desktop Protocol Implementation
|
|
Packit |
1fb8d4 |
* pcap File Format Utils
|
|
Packit |
1fb8d4 |
*
|
|
Packit |
1fb8d4 |
* Copyright 2011 Marc-Andre Moreau <marcandre.moreau@gmail.com>
|
|
Packit |
1fb8d4 |
*
|
|
Packit |
1fb8d4 |
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
Packit |
1fb8d4 |
* you may not use this file except in compliance with the License.
|
|
Packit |
1fb8d4 |
* You may obtain a copy of the License at
|
|
Packit |
1fb8d4 |
*
|
|
Packit |
1fb8d4 |
* http://www.apache.org/licenses/LICENSE-2.0
|
|
Packit |
1fb8d4 |
*
|
|
Packit |
1fb8d4 |
* Unless required by applicable law or agreed to in writing, software
|
|
Packit |
1fb8d4 |
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
Packit |
1fb8d4 |
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
Packit |
1fb8d4 |
* See the License for the specific language governing permissions and
|
|
Packit |
1fb8d4 |
* limitations under the License.
|
|
Packit |
1fb8d4 |
*/
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#ifdef HAVE_CONFIG_H
|
|
Packit |
1fb8d4 |
#include "config.h"
|
|
Packit |
1fb8d4 |
#endif
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#include <stdio.h>
|
|
Packit |
1fb8d4 |
#include <stdlib.h>
|
|
Packit |
1fb8d4 |
#include <string.h>
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#include <winpr/wtypes.h>
|
|
Packit |
1fb8d4 |
#include <winpr/crt.h>
|
|
Packit |
1fb8d4 |
#include <freerdp/log.h>
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#define TAG FREERDP_TAG("utils")
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#ifndef _WIN32
|
|
Packit |
1fb8d4 |
#include <sys/time.h>
|
|
Packit |
1fb8d4 |
#else
|
|
Packit |
1fb8d4 |
#include <time.h>
|
|
Packit |
1fb8d4 |
#include <sys/timeb.h>
|
|
Packit |
1fb8d4 |
#include <winpr/windows.h>
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
int gettimeofday(struct timeval* tp, void* tz)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
struct _timeb timebuffer;
|
|
Packit |
1fb8d4 |
_ftime(&timebuffer);
|
|
Packit |
1fb8d4 |
tp->tv_sec = (long) timebuffer.time;
|
|
Packit |
1fb8d4 |
tp->tv_usec = timebuffer.millitm * 1000;
|
|
Packit |
1fb8d4 |
return 0;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
#endif
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#include <freerdp/types.h>
|
|
Packit |
1fb8d4 |
#include <freerdp/utils/pcap.h>
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
#define PCAP_MAGIC 0xA1B2C3D4
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_read_header(rdpPcap* pcap, pcap_header* header)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return fread((void*) header, sizeof(pcap_header), 1, pcap->fp) == 1;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_write_header(rdpPcap* pcap, pcap_header* header)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return fwrite((void*) header, sizeof(pcap_header), 1, pcap->fp) == 1;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_read_record_header(rdpPcap* pcap, pcap_record_header* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return fread((void*) record, sizeof(pcap_record_header), 1, pcap->fp) == 1;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_write_record_header(rdpPcap* pcap, pcap_record_header* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return fwrite((void*) record, sizeof(pcap_record_header), 1, pcap->fp) == 1;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_read_record(rdpPcap* pcap, pcap_record* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
if (!pcap_read_record_header(pcap, &record->header))
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
record->length = record->header.incl_len;
|
|
Packit |
1fb8d4 |
record->data = malloc(record->length);
|
|
Packit |
1fb8d4 |
if (!record->data)
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (fread(record->data, record->length, 1, pcap->fp) != 1)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
free(record->data);
|
|
Packit |
1fb8d4 |
record->data = NULL;
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
return TRUE;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
static BOOL pcap_write_record(rdpPcap* pcap, pcap_record* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return pcap_write_record_header(pcap, &record->header) &&
|
|
Packit |
1fb8d4 |
(fwrite(record->data, record->length, 1, pcap->fp) == 1);
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
BOOL pcap_add_record(rdpPcap* pcap, void* data, UINT32 length)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
pcap_record* record;
|
|
Packit |
1fb8d4 |
struct timeval tp;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (pcap->tail == NULL)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
pcap->tail = (pcap_record*) calloc(1, sizeof(pcap_record));
|
|
Packit |
1fb8d4 |
if (!pcap->tail)
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
pcap->head = pcap->tail;
|
|
Packit |
1fb8d4 |
pcap->record = pcap->head;
|
|
Packit |
1fb8d4 |
record = pcap->tail;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
else
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
record = (pcap_record*) calloc(1, sizeof(pcap_record));
|
|
Packit |
1fb8d4 |
if (!record)
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
pcap->tail->next = record;
|
|
Packit |
1fb8d4 |
pcap->tail = record;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (pcap->record == NULL)
|
|
Packit |
1fb8d4 |
pcap->record = record;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
record->data = data;
|
|
Packit |
1fb8d4 |
record->length = length;
|
|
Packit |
1fb8d4 |
record->header.incl_len = length;
|
|
Packit |
1fb8d4 |
record->header.orig_len = length;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
gettimeofday(&tp, 0);
|
|
Packit |
1fb8d4 |
record->header.ts_sec = tp.tv_sec;
|
|
Packit |
1fb8d4 |
record->header.ts_usec = tp.tv_usec;
|
|
Packit |
1fb8d4 |
return TRUE;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
BOOL pcap_has_next_record(rdpPcap* pcap)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
if (pcap->file_size - (_ftelli64(pcap->fp)) <= 16)
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
return TRUE;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
BOOL pcap_get_next_record_header(rdpPcap* pcap, pcap_record* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
if (pcap_has_next_record(pcap) != TRUE)
|
|
Packit |
1fb8d4 |
return FALSE;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
pcap_read_record_header(pcap, &record->header);
|
|
Packit |
1fb8d4 |
record->length = record->header.incl_len;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
return TRUE;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
BOOL pcap_get_next_record_content(rdpPcap* pcap, pcap_record* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return fread(record->data, record->length, 1, pcap->fp) == 1;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
BOOL pcap_get_next_record(rdpPcap* pcap, pcap_record* record)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
return pcap_has_next_record(pcap) &&
|
|
Packit |
1fb8d4 |
pcap_read_record(pcap, record);
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
rdpPcap* pcap_open(char* name, BOOL write)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
rdpPcap* pcap;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
FILE* pcap_fp = fopen(name, write ? "w+b" : "rb");
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (pcap_fp == NULL)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
WLog_ERR(TAG, "opening pcap dump");
|
|
Packit |
1fb8d4 |
return NULL;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
pcap = (rdpPcap*) calloc(1, sizeof(rdpPcap));
|
|
Packit |
1fb8d4 |
if (!pcap)
|
|
Packit |
1fb8d4 |
goto fail_close;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
pcap->name = name;
|
|
Packit |
1fb8d4 |
pcap->write = write;
|
|
Packit |
1fb8d4 |
pcap->record_count = 0;
|
|
Packit |
1fb8d4 |
pcap->fp = pcap_fp;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (write)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
pcap->header.magic_number = 0xA1B2C3D4;
|
|
Packit |
1fb8d4 |
pcap->header.version_major = 2;
|
|
Packit |
1fb8d4 |
pcap->header.version_minor = 4;
|
|
Packit |
1fb8d4 |
pcap->header.thiszone = 0;
|
|
Packit |
1fb8d4 |
pcap->header.sigfigs = 0;
|
|
Packit |
1fb8d4 |
pcap->header.snaplen = 0xFFFFFFFF;
|
|
Packit |
1fb8d4 |
pcap->header.network = 0;
|
|
Packit |
1fb8d4 |
if (!pcap_write_header(pcap, &pcap->header))
|
|
Packit |
1fb8d4 |
goto fail;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
else
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
_fseeki64(pcap->fp, 0, SEEK_END);
|
|
Packit |
1fb8d4 |
pcap->file_size = _ftelli64(pcap->fp);
|
|
Packit |
1fb8d4 |
_fseeki64(pcap->fp, 0, SEEK_SET);
|
|
Packit |
1fb8d4 |
if (!pcap_read_header(pcap, &pcap->header))
|
|
Packit |
1fb8d4 |
goto fail;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
return pcap;
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
fail:
|
|
Packit |
1fb8d4 |
free(pcap);
|
|
Packit |
1fb8d4 |
fail_close:
|
|
Packit |
1fb8d4 |
fclose(pcap_fp);
|
|
Packit |
1fb8d4 |
return NULL;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
void pcap_flush(rdpPcap* pcap)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
while (pcap->record != NULL)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
pcap_write_record(pcap, pcap->record);
|
|
Packit |
1fb8d4 |
pcap->record = pcap->record->next;
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (pcap->fp != NULL)
|
|
Packit |
1fb8d4 |
fflush(pcap->fp);
|
|
Packit |
1fb8d4 |
}
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
void pcap_close(rdpPcap* pcap)
|
|
Packit |
1fb8d4 |
{
|
|
Packit |
1fb8d4 |
pcap_flush(pcap);
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
if (pcap->fp != NULL)
|
|
Packit |
1fb8d4 |
fclose(pcap->fp);
|
|
Packit |
1fb8d4 |
|
|
Packit |
1fb8d4 |
free(pcap);
|
|
Packit |
1fb8d4 |
}
|