21#include <freerdp/config.h>
23#include <winpr/assert.h>
24#include <winpr/cast.h>
25#include <winpr/string.h>
26#include <winpr/print.h>
28#include "pf_channel_rdpdr.h"
29#include "pf_channel_smartcard.h"
31#include <freerdp/server/proxy/proxy_log.h>
32#include <freerdp/channels/rdpdr.h>
33#include <freerdp/channels/channels.h>
34#include <freerdp/utils/rdpdr_utils.h>
36#define RTAG PROXY_TAG("channel.rdpdr")
38#define SCARD_DEVICE_ID UINT32_MAX
48 UINT32 computerNameLen;
49 BOOL computerNameUnicode;
56 UINT32 SpecialDeviceCount;
57 UINT32 capabilityVersions[6];
58} pf_channel_common_context;
62 STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST = 0x01,
63 STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST = 0x02,
64 STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM = 0x04,
65 STATE_CLIENT_CHANNEL_RUNNING = 0x10
66} pf_channel_client_state;
70 pf_channel_common_context common;
71 pf_channel_client_state state;
73 UINT16 maxMajorVersion;
74 UINT16 maxMinorVersion;
77} pf_channel_client_context;
82 STATE_SERVER_EXPECT_CLIENT_ANNOUNCE_REPLY,
83 STATE_SERVER_EXPECT_CLIENT_NAME_REQUEST,
84 STATE_SERVER_EXPECT_EXPECT_CLIENT_CAPABILITY_RESPONE,
85 STATE_SERVER_CHANNEL_RUNNING
86} pf_channel_server_state;
90 pf_channel_common_context common;
91 pf_channel_server_state state;
94 wArrayList* blockedDevices;
96} pf_channel_server_context;
98#define proxy_client "[proxy<-->client]"
99#define proxy_server "[proxy<-->server]"
101#define proxy_client_rx proxy_client " receive"
102#define proxy_client_tx proxy_client " send"
103#define proxy_server_rx proxy_server " receive"
104#define proxy_server_tx proxy_server " send"
106#define SERVER_RX_LOG(log, lvl, fmt, ...) WLog_Print(log, lvl, proxy_client_rx fmt, ##__VA_ARGS__)
107#define CLIENT_RX_LOG(log, lvl, fmt, ...) WLog_Print(log, lvl, proxy_server_rx fmt, ##__VA_ARGS__)
108#define SERVER_TX_LOG(log, lvl, fmt, ...) WLog_Print(log, lvl, proxy_client_tx fmt, ##__VA_ARGS__)
109#define CLIENT_TX_LOG(log, lvl, fmt, ...) WLog_Print(log, lvl, proxy_server_tx fmt, ##__VA_ARGS__)
110#define RX_LOG(srv, lvl, fmt, ...) \
115 SERVER_RX_LOG(lvl, fmt, ##__VA_ARGS__); \
119 CLIENT_RX_LOG(lvl, fmt, ##__VA_ARGS__); \
123#define SERVER_RXTX_LOG(send, log, lvl, fmt, ...) \
128 SERVER_TX_LOG(log, lvl, fmt, ##__VA_ARGS__); \
132 SERVER_RX_LOG(log, lvl, fmt, ##__VA_ARGS__); \
136#define Stream_CheckAndLogRequiredLengthSrv(log, s, len) \
137 Stream_CheckAndLogRequiredLengthWLogEx(log, WLOG_WARN, s, len, 1, \
138 proxy_client_rx " %s(%s:%" PRIuz ")", __func__, \
139 __FILE__, (size_t)__LINE__)
140#define Stream_CheckAndLogRequiredLengthClient(log, s, len) \
141 Stream_CheckAndLogRequiredLengthWLogEx(log, WLOG_WARN, s, len, 1, \
142 proxy_server_rx " %s(%s:%" PRIuz ")", __func__, \
143 __FILE__, (size_t)__LINE__)
144#define Stream_CheckAndLogRequiredLengthRx(srv, log, s, len) \
145 Stream_CheckAndLogRequiredLengthRx_(srv, log, s, len, 1, __func__, __FILE__, __LINE__)
146static BOOL Stream_CheckAndLogRequiredLengthRx_(BOOL srv, wLog* log,
wStream* s,
size_t nmemb,
147 size_t size,
const char* fkt,
const char* file,
151 srv ? proxy_server_rx
" %s(%s:%" PRIuz
")" : proxy_client_rx
" %s(%s:%" PRIuz
")";
153 return Stream_CheckAndLogRequiredLengthWLogEx(log, WLOG_WARN, s, nmemb, size, fmt, fkt, file,
157static const char* rdpdr_server_state_to_string(pf_channel_server_state state)
161 case STATE_SERVER_INITIAL:
162 return "STATE_SERVER_INITIAL";
163 case STATE_SERVER_EXPECT_CLIENT_ANNOUNCE_REPLY:
164 return "STATE_SERVER_EXPECT_CLIENT_ANNOUNCE_REPLY";
165 case STATE_SERVER_EXPECT_CLIENT_NAME_REQUEST:
166 return "STATE_SERVER_EXPECT_CLIENT_NAME_REQUEST";
167 case STATE_SERVER_EXPECT_EXPECT_CLIENT_CAPABILITY_RESPONE:
168 return "STATE_SERVER_EXPECT_EXPECT_CLIENT_CAPABILITY_RESPONE";
169 case STATE_SERVER_CHANNEL_RUNNING:
170 return "STATE_SERVER_CHANNEL_RUNNING";
172 return "STATE_SERVER_UNKNOWN";
176static const char* rdpdr_client_state_to_string(pf_channel_client_state state)
180 case STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST:
181 return "STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST";
182 case STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST:
183 return "STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST";
184 case STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM:
185 return "STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM";
186 case STATE_CLIENT_CHANNEL_RUNNING:
187 return "STATE_CLIENT_CHANNEL_RUNNING";
189 return "STATE_CLIENT_UNKNOWN";
193static wStream* rdpdr_get_send_buffer(pf_channel_common_context* rdpdr, UINT16 component,
194 UINT16 PacketID,
size_t capacity)
197 WINPR_ASSERT(rdpdr->s);
198 if (!Stream_SetPosition(rdpdr->s, 0))
200 if (!Stream_EnsureCapacity(rdpdr->s, capacity + 4))
202 Stream_Write_UINT16(rdpdr->s, component);
203 Stream_Write_UINT16(rdpdr->s, PacketID);
207static wStream* rdpdr_client_get_send_buffer(pf_channel_client_context* rdpdr, UINT16 component,
208 UINT16 PacketID,
size_t capacity)
211 return rdpdr_get_send_buffer(&rdpdr->common, component, PacketID, capacity);
214static wStream* rdpdr_server_get_send_buffer(pf_channel_server_context* rdpdr, UINT16 component,
215 UINT16 PacketID,
size_t capacity)
218 return rdpdr_get_send_buffer(&rdpdr->common, component, PacketID, capacity);
221static UINT rdpdr_client_send(wLog* log, pClientContext* pc,
wStream* s)
223 UINT16 channelId = 0;
228 WINPR_ASSERT(pc->context.instance);
232 CLIENT_TX_LOG(log, WLOG_WARN,
"Ignoring channel %s message, not connected!",
233 RDPDR_SVC_CHANNEL_NAME);
234 return CHANNEL_RC_OK;
237 channelId = freerdp_channels_get_id_by_name(pc->context.instance, RDPDR_SVC_CHANNEL_NAME);
240 if ((channelId == 0) || (channelId == UINT16_MAX))
241 return ERROR_INTERNAL_ERROR;
243 Stream_SealLength(s);
244 rdpdr_dump_send_packet(log, WLOG_TRACE, s, proxy_server_tx);
245 WINPR_ASSERT(pc->context.instance->SendChannelData);
246 if (!pc->context.instance->SendChannelData(pc->context.instance, channelId, Stream_Buffer(s),
248 return ERROR_EVT_CHANNEL_NOT_FOUND;
249 return CHANNEL_RC_OK;
252static UINT rdpdr_seal_send_free_request(pf_channel_server_context* context,
wStream* s)
257 WINPR_ASSERT(context);
258 WINPR_ASSERT(context->handle);
261 Stream_SealLength(s);
262 len = Stream_Length(s);
263 WINPR_ASSERT(len <= UINT32_MAX);
265 rdpdr_dump_send_packet(context->log, WLOG_TRACE, s, proxy_client_tx);
266 status = WTSVirtualChannelWrite(context->handle, Stream_BufferAs(s,
char), (ULONG)len, NULL);
267 return (status) ? CHANNEL_RC_OK : ERROR_INTERNAL_ERROR;
270static BOOL rdpdr_process_server_header(BOOL server, wLog* log,
wStream* s, UINT16 component,
271 UINT16 PacketId,
size_t expect)
273 UINT16 rpacketid = 0;
274 UINT16 rcomponent = 0;
277 if (!Stream_CheckAndLogRequiredLengthRx(server, log, s, 4))
279 RX_LOG(server, log, WLOG_WARN,
"RDPDR_HEADER[%s | %s]: expected length 4, got %" PRIuz,
280 rdpdr_component_string(component), rdpdr_packetid_string(PacketId),
281 Stream_GetRemainingLength(s));
285 Stream_Read_UINT16(s, rcomponent);
286 Stream_Read_UINT16(s, rpacketid);
288 if (rcomponent != component)
290 RX_LOG(server, log, WLOG_WARN,
"RDPDR_HEADER[%s | %s]: got component %s",
291 rdpdr_component_string(component), rdpdr_packetid_string(PacketId),
292 rdpdr_component_string(rcomponent));
296 if (rpacketid != PacketId)
298 RX_LOG(server, log, WLOG_WARN,
"RDPDR_HEADER[%s | %s]: got PacketID %s",
299 rdpdr_component_string(component), rdpdr_packetid_string(PacketId),
300 rdpdr_packetid_string(rpacketid));
304 if (!Stream_CheckAndLogRequiredLengthRx(server, log, s, expect))
306 RX_LOG(server, log, WLOG_WARN,
307 "RDPDR_HEADER[%s | %s] not enough data, expected %" PRIuz
", "
309 rdpdr_component_string(component), rdpdr_packetid_string(PacketId), expect,
310 Stream_GetRemainingLength(s));
311 return ERROR_INVALID_DATA;
317static BOOL rdpdr_check_version(BOOL server, wLog* log, UINT16 versionMajor, UINT16 versionMinor,
318 UINT16 component, UINT16 PacketId)
320 if (versionMajor != RDPDR_VERSION_MAJOR)
322 RX_LOG(server, log, WLOG_WARN,
"[%s | %s] expected MajorVersion %" PRIu16
", got %" PRIu16,
323 rdpdr_component_string(component), rdpdr_packetid_string(PacketId),
324 RDPDR_VERSION_MAJOR, versionMajor);
327 switch (versionMinor)
329 case RDPDR_VERSION_MINOR_RDP50:
330 case RDPDR_VERSION_MINOR_RDP51:
331 case RDPDR_VERSION_MINOR_RDP52:
332 case RDPDR_VERSION_MINOR_RDP6X:
333 case RDPDR_VERSION_MINOR_RDP10X:
337 RX_LOG(server, log, WLOG_WARN,
"[%s | %s] unsupported MinorVersion %" PRIu16,
338 rdpdr_component_string(component), rdpdr_packetid_string(PacketId),
346static UINT rdpdr_process_server_announce_request(pf_channel_client_context* rdpdr,
wStream* s)
348 const UINT16 component = RDPDR_CTYP_CORE;
349 const UINT16 packetid = PAKID_CORE_SERVER_ANNOUNCE;
353 if (!rdpdr_process_server_header(FALSE, rdpdr->log, s, component, packetid, 8))
354 return ERROR_INVALID_DATA;
356 Stream_Read_UINT16(s, rdpdr->common.versionMajor);
357 Stream_Read_UINT16(s, rdpdr->common.versionMinor);
359 if (!rdpdr_check_version(FALSE, rdpdr->log, rdpdr->common.versionMajor,
360 rdpdr->common.versionMinor, component, packetid))
361 return ERROR_INVALID_DATA;
364 if (rdpdr->common.versionMajor > rdpdr->maxMajorVersion)
366 rdpdr->common.versionMajor = rdpdr->maxMajorVersion;
367 rdpdr->common.versionMinor = rdpdr->maxMinorVersion;
369 else if (rdpdr->common.versionMinor > rdpdr->maxMinorVersion)
370 rdpdr->common.versionMinor = rdpdr->maxMinorVersion;
372 Stream_Read_UINT32(s, rdpdr->common.clientID);
373 return CHANNEL_RC_OK;
376static UINT rdpdr_server_send_announce_request(pf_channel_server_context* context)
379 rdpdr_server_get_send_buffer(context, RDPDR_CTYP_CORE, PAKID_CORE_SERVER_ANNOUNCE, 8);
381 return CHANNEL_RC_NO_MEMORY;
383 Stream_Write_UINT16(s, context->common.versionMajor);
384 Stream_Write_UINT16(s, context->common.versionMinor);
385 Stream_Write_UINT32(s, context->common.clientID);
386 return rdpdr_seal_send_free_request(context, s);
389static UINT rdpdr_process_client_announce_reply(pf_channel_server_context* rdpdr,
wStream* s)
391 const UINT16 component = RDPDR_CTYP_CORE;
392 const UINT16 packetid = PAKID_CORE_CLIENTID_CONFIRM;
393 UINT16 versionMajor = 0;
394 UINT16 versionMinor = 0;
400 if (!rdpdr_process_server_header(TRUE, rdpdr->log, s, component, packetid, 8))
401 return ERROR_INVALID_DATA;
403 Stream_Read_UINT16(s, versionMajor);
404 Stream_Read_UINT16(s, versionMinor);
406 if (!rdpdr_check_version(TRUE, rdpdr->log, versionMajor, versionMinor, component, packetid))
407 return ERROR_INVALID_DATA;
409 if ((rdpdr->common.versionMajor != versionMajor) ||
410 (rdpdr->common.versionMinor != versionMinor))
413 rdpdr->log, WLOG_WARN,
414 "[%s | %s] downgrading version from %" PRIu16
".%" PRIu16
" to %" PRIu16
".%" PRIu16,
415 rdpdr_component_string(component), rdpdr_packetid_string(packetid),
416 rdpdr->common.versionMajor, rdpdr->common.versionMinor, versionMajor, versionMinor);
417 rdpdr->common.versionMajor = versionMajor;
418 rdpdr->common.versionMinor = versionMinor;
420 Stream_Read_UINT32(s, clientID);
421 if (rdpdr->common.clientID != clientID)
423 SERVER_RX_LOG(rdpdr->log, WLOG_WARN,
424 "[%s | %s] changing clientID 0x%08" PRIu32
" to 0x%08" PRIu32,
425 rdpdr_component_string(component), rdpdr_packetid_string(packetid),
426 rdpdr->common.clientID, clientID);
427 rdpdr->common.clientID = clientID;
430 return CHANNEL_RC_OK;
433static UINT rdpdr_send_client_announce_reply(pClientContext* pc, pf_channel_client_context* rdpdr)
436 rdpdr_client_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_CLIENTID_CONFIRM, 8);
438 return CHANNEL_RC_NO_MEMORY;
440 Stream_Write_UINT16(s, rdpdr->common.versionMajor);
441 Stream_Write_UINT16(s, rdpdr->common.versionMinor);
442 Stream_Write_UINT32(s, rdpdr->common.clientID);
443 return rdpdr_client_send(rdpdr->log, pc, s);
446static UINT rdpdr_process_client_name_request(pf_channel_server_context* rdpdr,
wStream* s,
449 UINT32 unicodeFlag = 0;
456 if (!rdpdr_process_server_header(TRUE, rdpdr->log, s, RDPDR_CTYP_CORE, PAKID_CORE_CLIENT_NAME,
458 return ERROR_INVALID_DATA;
460 Stream_Read_UINT32(s, unicodeFlag);
461 rdpdr->common.computerNameUnicode = ((unicodeFlag & 1) != 0) ? TRUE : FALSE;
463 Stream_Read_UINT32(s, codePage);
464 WINPR_UNUSED(codePage);
465 Stream_Read_UINT32(s, rdpdr->common.computerNameLen);
466 if (!Stream_CheckAndLogRequiredLengthSrv(rdpdr->log, s, rdpdr->common.computerNameLen))
469 rdpdr->log, WLOG_WARN,
"[%s | %s]: missing data, got %" PRIu32
", expected %" PRIu32,
470 rdpdr_component_string(RDPDR_CTYP_CORE), rdpdr_packetid_string(PAKID_CORE_CLIENT_NAME),
471 Stream_GetRemainingLength(s), rdpdr->common.computerNameLen);
472 return ERROR_INVALID_DATA;
474 void* tmp = realloc(rdpdr->common.computerName.v, rdpdr->common.computerNameLen);
476 return CHANNEL_RC_NO_MEMORY;
477 rdpdr->common.computerName.v = tmp;
479 Stream_Read(s, rdpdr->common.computerName.v, rdpdr->common.computerNameLen);
481 pc->computerNameLen = rdpdr->common.computerNameLen;
482 pc->computerNameUnicode = rdpdr->common.computerNameUnicode;
483 tmp = realloc(pc->computerName.v, pc->computerNameLen);
485 return CHANNEL_RC_NO_MEMORY;
486 pc->computerName.v = tmp;
487 memcpy(pc->computerName.v, rdpdr->common.computerName.v, pc->computerNameLen);
489 return CHANNEL_RC_OK;
492static UINT rdpdr_send_client_name_request(pClientContext* pc, pf_channel_client_context* rdpdr)
500 void* tmp = realloc(rdpdr->common.computerName.v, pc->computerNameLen);
502 return CHANNEL_RC_NO_MEMORY;
503 rdpdr->common.computerName.v = tmp;
504 rdpdr->common.computerNameLen = pc->computerNameLen;
505 rdpdr->common.computerNameUnicode = pc->computerNameUnicode;
506 memcpy(rdpdr->common.computerName.v, pc->computerName.v, pc->computerNameLen);
508 s = rdpdr_client_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_CLIENT_NAME,
509 12U + rdpdr->common.computerNameLen);
511 return CHANNEL_RC_NO_MEMORY;
513 Stream_Write_UINT32(s, rdpdr->common.computerNameUnicode
516 Stream_Write_UINT32(s, 0);
517 Stream_Write_UINT32(s, rdpdr->common.computerNameLen);
518 Stream_Write(s, rdpdr->common.computerName.v, rdpdr->common.computerNameLen);
519 return rdpdr_client_send(rdpdr->log, pc, s);
522#define rdpdr_ignore_capset(srv, log, s, header) \
523 rdpdr_ignore_capset_((srv), (log), (s), header, __func__)
524static UINT rdpdr_ignore_capset_(WINPR_ATTR_UNUSED BOOL srv, WINPR_ATTR_UNUSED wLog* log,
526 WINPR_ATTR_UNUSED
const char* fkt)
529 WINPR_ASSERT(header);
531 Stream_Seek(s, header->CapabilityLength);
532 return CHANNEL_RC_OK;
535static UINT rdpdr_client_process_general_capset(pf_channel_client_context* rdpdr,
wStream* s,
539 return rdpdr_ignore_capset(FALSE, rdpdr->log, s, header);
542static UINT rdpdr_process_printer_capset(pf_channel_client_context* rdpdr,
wStream* s,
546 return rdpdr_ignore_capset(FALSE, rdpdr->log, s, header);
549static UINT rdpdr_process_port_capset(pf_channel_client_context* rdpdr,
wStream* s,
553 return rdpdr_ignore_capset(FALSE, rdpdr->log, s, header);
556static UINT rdpdr_process_drive_capset(pf_channel_client_context* rdpdr,
wStream* s,
560 return rdpdr_ignore_capset(FALSE, rdpdr->log, s, header);
563static UINT rdpdr_process_smartcard_capset(pf_channel_client_context* rdpdr,
wStream* s,
567 return rdpdr_ignore_capset(FALSE, rdpdr->log, s, header);
570static UINT rdpdr_process_server_core_capability_request(pf_channel_client_context* rdpdr,
573 UINT status = CHANNEL_RC_OK;
574 UINT16 numCapabilities = 0;
578 if (!rdpdr_process_server_header(FALSE, rdpdr->log, s, RDPDR_CTYP_CORE,
579 PAKID_CORE_SERVER_CAPABILITY, 4))
580 return ERROR_INVALID_DATA;
582 Stream_Read_UINT16(s, numCapabilities);
585 for (UINT16 i = 0; i < numCapabilities; i++)
588 UINT error = rdpdr_read_capset_header(rdpdr->log, s, &header);
589 if (error != CHANNEL_RC_OK)
592 if (header.CapabilityType < ARRAYSIZE(rdpdr->common.capabilityVersions))
594 if (rdpdr->common.capabilityVersions[header.CapabilityType] > header.Version)
595 rdpdr->common.capabilityVersions[header.CapabilityType] = header.Version;
597 WLog_Print(rdpdr->log, WLOG_TRACE,
598 "capability %s got version %" PRIu32
", will use version %" PRIu32,
599 rdpdr_cap_type_string(header.CapabilityType), header.Version,
600 rdpdr->common.capabilityVersions[header.CapabilityType]);
603 switch (header.CapabilityType)
605 case CAP_GENERAL_TYPE:
606 status = rdpdr_client_process_general_capset(rdpdr, s, &header);
609 case CAP_PRINTER_TYPE:
610 status = rdpdr_process_printer_capset(rdpdr, s, &header);
614 status = rdpdr_process_port_capset(rdpdr, s, &header);
618 status = rdpdr_process_drive_capset(rdpdr, s, &header);
621 case CAP_SMARTCARD_TYPE:
622 status = rdpdr_process_smartcard_capset(rdpdr, s, &header);
626 WLog_Print(rdpdr->log, WLOG_WARN,
627 "unknown capability 0x%04" PRIx16
", length %" PRIu16
628 ", version %" PRIu32,
629 header.CapabilityType, header.CapabilityLength, header.Version);
630 Stream_Seek(s, header.CapabilityLength);
634 if (status != CHANNEL_RC_OK)
638 return CHANNEL_RC_OK;
641static BOOL rdpdr_write_general_capset(wLog* log, pf_channel_common_context* rdpdr,
wStream* s)
647 rdpdr->capabilityVersions[CAP_GENERAL_TYPE] };
648 if (rdpdr_write_capset_header(log, s, &header) != CHANNEL_RC_OK)
650 Stream_Write_UINT32(s, 0);
651 Stream_Write_UINT32(s, 0);
652 Stream_Write_UINT16(s, rdpdr->versionMajor);
653 Stream_Write_UINT16(s, rdpdr->versionMinor);
654 Stream_Write_UINT32(s, 0x0000FFFF);
655 Stream_Write_UINT32(s, 0);
656 Stream_Write_UINT32(s, RDPDR_DEVICE_REMOVE_PDUS | RDPDR_CLIENT_DISPLAY_NAME_PDU |
657 RDPDR_USER_LOGGEDON_PDU);
658 Stream_Write_UINT32(s, ENABLE_ASYNCIO);
659 Stream_Write_UINT32(s, 0);
660 Stream_Write_UINT32(s, rdpdr->SpecialDeviceCount);
665static BOOL rdpdr_write_printer_capset(wLog* log, pf_channel_common_context* rdpdr,
wStream* s)
671 rdpdr->capabilityVersions[CAP_PRINTER_TYPE] };
672 if (rdpdr_write_capset_header(log, s, &header) != CHANNEL_RC_OK)
677static BOOL rdpdr_write_port_capset(wLog* log, pf_channel_common_context* rdpdr,
wStream* s)
683 rdpdr->capabilityVersions[CAP_PORT_TYPE] };
684 if (rdpdr_write_capset_header(log, s, &header) != CHANNEL_RC_OK)
689static BOOL rdpdr_write_drive_capset(wLog* log, pf_channel_common_context* rdpdr,
wStream* s)
695 rdpdr->capabilityVersions[CAP_DRIVE_TYPE] };
696 if (rdpdr_write_capset_header(log, s, &header) != CHANNEL_RC_OK)
701static BOOL rdpdr_write_smartcard_capset(wLog* log, pf_channel_common_context* rdpdr,
wStream* s)
707 rdpdr->capabilityVersions[CAP_SMARTCARD_TYPE] };
708 if (rdpdr_write_capset_header(log, s, &header) != CHANNEL_RC_OK)
713static UINT rdpdr_send_server_capability_request(pf_channel_server_context* rdpdr)
716 rdpdr_server_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_SERVER_CAPABILITY, 8);
718 return CHANNEL_RC_NO_MEMORY;
719 Stream_Write_UINT16(s, 5);
720 Stream_Write_UINT16(s, 0);
721 if (!rdpdr_write_general_capset(rdpdr->log, &rdpdr->common, s))
722 return CHANNEL_RC_NO_MEMORY;
723 if (!rdpdr_write_printer_capset(rdpdr->log, &rdpdr->common, s))
724 return CHANNEL_RC_NO_MEMORY;
725 if (!rdpdr_write_port_capset(rdpdr->log, &rdpdr->common, s))
726 return CHANNEL_RC_NO_MEMORY;
727 if (!rdpdr_write_drive_capset(rdpdr->log, &rdpdr->common, s))
728 return CHANNEL_RC_NO_MEMORY;
729 if (!rdpdr_write_smartcard_capset(rdpdr->log, &rdpdr->common, s))
730 return CHANNEL_RC_NO_MEMORY;
731 return rdpdr_seal_send_free_request(rdpdr, s);
734static UINT rdpdr_process_client_capability_response(pf_channel_server_context* rdpdr,
wStream* s)
736 const UINT16 component = RDPDR_CTYP_CORE;
737 const UINT16 packetid = PAKID_CORE_CLIENT_CAPABILITY;
738 UINT status = CHANNEL_RC_OK;
739 UINT16 numCapabilities = 0;
742 if (!rdpdr_process_server_header(TRUE, rdpdr->log, s, component, packetid, 4))
743 return ERROR_INVALID_DATA;
745 Stream_Read_UINT16(s, numCapabilities);
746 Stream_Seek_UINT16(s);
748 for (UINT16 x = 0; x < numCapabilities; x++)
751 UINT error = rdpdr_read_capset_header(rdpdr->log, s, &header);
752 if (error != CHANNEL_RC_OK)
754 if (header.CapabilityType < ARRAYSIZE(rdpdr->common.capabilityVersions))
756 if (rdpdr->common.capabilityVersions[header.CapabilityType] > header.Version)
757 rdpdr->common.capabilityVersions[header.CapabilityType] = header.Version;
759 WLog_Print(rdpdr->log, WLOG_TRACE,
760 "capability %s got version %" PRIu32
", will use version %" PRIu32,
761 rdpdr_cap_type_string(header.CapabilityType), header.Version,
762 rdpdr->common.capabilityVersions[header.CapabilityType]);
765 switch (header.CapabilityType)
767 case CAP_GENERAL_TYPE:
768 status = rdpdr_ignore_capset(TRUE, rdpdr->log, s, &header);
771 case CAP_PRINTER_TYPE:
772 status = rdpdr_ignore_capset(TRUE, rdpdr->log, s, &header);
776 status = rdpdr_ignore_capset(TRUE, rdpdr->log, s, &header);
780 status = rdpdr_ignore_capset(TRUE, rdpdr->log, s, &header);
783 case CAP_SMARTCARD_TYPE:
784 status = rdpdr_ignore_capset(TRUE, rdpdr->log, s, &header);
788 SERVER_RX_LOG(rdpdr->log, WLOG_WARN,
789 "[%s | %s] invalid capability type 0x%04" PRIx16,
790 rdpdr_component_string(component), rdpdr_packetid_string(packetid),
791 header.CapabilityType);
792 status = ERROR_INVALID_DATA;
796 if (status != CHANNEL_RC_OK)
803static UINT rdpdr_send_client_capability_response(pClientContext* pc,
804 pf_channel_client_context* rdpdr)
809 s = rdpdr_client_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_CLIENT_CAPABILITY, 4);
811 return CHANNEL_RC_NO_MEMORY;
813 Stream_Write_UINT16(s, 5);
814 Stream_Write_UINT16(s, 0);
815 if (!rdpdr_write_general_capset(rdpdr->log, &rdpdr->common, s))
816 return CHANNEL_RC_NO_MEMORY;
817 if (!rdpdr_write_printer_capset(rdpdr->log, &rdpdr->common, s))
818 return CHANNEL_RC_NO_MEMORY;
819 if (!rdpdr_write_port_capset(rdpdr->log, &rdpdr->common, s))
820 return CHANNEL_RC_NO_MEMORY;
821 if (!rdpdr_write_drive_capset(rdpdr->log, &rdpdr->common, s))
822 return CHANNEL_RC_NO_MEMORY;
823 if (!rdpdr_write_smartcard_capset(rdpdr->log, &rdpdr->common, s))
824 return CHANNEL_RC_NO_MEMORY;
825 return rdpdr_client_send(rdpdr->log, pc, s);
828static UINT rdpdr_send_server_clientid_confirm(pf_channel_server_context* rdpdr)
832 s = rdpdr_server_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_CLIENTID_CONFIRM, 8);
834 return CHANNEL_RC_NO_MEMORY;
835 Stream_Write_UINT16(s, rdpdr->common.versionMajor);
836 Stream_Write_UINT16(s, rdpdr->common.versionMinor);
837 Stream_Write_UINT32(s, rdpdr->common.clientID);
838 return rdpdr_seal_send_free_request(rdpdr, s);
841static UINT rdpdr_process_server_clientid_confirm(pf_channel_client_context* rdpdr,
wStream* s)
843 UINT16 versionMajor = 0;
844 UINT16 versionMinor = 0;
850 if (!rdpdr_process_server_header(FALSE, rdpdr->log, s, RDPDR_CTYP_CORE,
851 PAKID_CORE_CLIENTID_CONFIRM, 8))
852 return ERROR_INVALID_DATA;
854 Stream_Read_UINT16(s, versionMajor);
855 Stream_Read_UINT16(s, versionMinor);
856 if (!rdpdr_check_version(FALSE, rdpdr->log, versionMajor, versionMinor, RDPDR_CTYP_CORE,
857 PAKID_CORE_CLIENTID_CONFIRM))
858 return ERROR_INVALID_DATA;
860 Stream_Read_UINT32(s, clientID);
862 if ((versionMajor != rdpdr->common.versionMajor) ||
863 (versionMinor != rdpdr->common.versionMinor))
865 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
866 "[%s | %s] Version mismatch, sent %" PRIu16
".%" PRIu16
867 ", downgraded to %" PRIu16
".%" PRIu16,
868 rdpdr_component_string(RDPDR_CTYP_CORE),
869 rdpdr_packetid_string(PAKID_CORE_CLIENTID_CONFIRM),
870 rdpdr->common.versionMajor, rdpdr->common.versionMinor, versionMajor,
872 rdpdr->common.versionMajor = versionMajor;
873 rdpdr->common.versionMinor = versionMinor;
876 if (clientID != rdpdr->common.clientID)
878 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
879 "[%s | %s] clientID mismatch, sent 0x%08" PRIx32
", changed to 0x%08" PRIx32,
880 rdpdr_component_string(RDPDR_CTYP_CORE),
881 rdpdr_packetid_string(PAKID_CORE_CLIENTID_CONFIRM), rdpdr->common.clientID,
883 rdpdr->common.clientID = clientID;
886 return CHANNEL_RC_OK;
890rdpdr_process_server_capability_request_or_clientid_confirm(pf_channel_client_context* rdpdr,
893 const UINT32 mask = STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM |
894 STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST;
895 const UINT16 rcomponent = RDPDR_CTYP_CORE;
896 UINT16 component = 0;
902 if ((rdpdr->flags & mask) == mask)
904 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
"already past this state, abort!");
908 if (!Stream_CheckAndLogRequiredLengthClient(rdpdr->log, s, 4))
911 Stream_Read_UINT16(s, component);
912 if (rcomponent != component)
914 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
"got component %s, expected %s",
915 rdpdr_component_string(component), rdpdr_component_string(rcomponent));
918 Stream_Read_UINT16(s, packetid);
923 case PAKID_CORE_SERVER_CAPABILITY:
924 if (rdpdr->flags & STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST)
926 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
"got duplicate packetid %s",
927 rdpdr_packetid_string(packetid));
930 rdpdr->flags |= STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST;
931 return rdpdr_process_server_core_capability_request(rdpdr, s) == CHANNEL_RC_OK;
932 case PAKID_CORE_CLIENTID_CONFIRM:
934 if (rdpdr->flags & STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM)
936 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
"got duplicate packetid %s",
937 rdpdr_packetid_string(packetid));
940 rdpdr->flags |= STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM;
941 return rdpdr_process_server_clientid_confirm(rdpdr, s) == CHANNEL_RC_OK;
945#if defined(WITH_PROXY_EMULATE_SMARTCARD)
946static UINT rdpdr_send_emulated_scard_device_list_announce_request(pClientContext* pc,
947 pf_channel_client_context* rdpdr)
951 s = rdpdr_client_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_DEVICELIST_ANNOUNCE, 24);
953 return CHANNEL_RC_NO_MEMORY;
955 Stream_Write_UINT32(s, 1);
956 Stream_Write_UINT32(s, RDPDR_DTYP_SMARTCARD);
959 Stream_Write(s,
"SCARD\0\0\0", 8);
960 Stream_Write_UINT32(s, 6);
961 Stream_Write(s,
"SCARD\0", 6);
963 return rdpdr_client_send(rdpdr->log, pc, s);
966static UINT rdpdr_send_emulated_scard_device_remove(pClientContext* pc,
967 pf_channel_client_context* rdpdr)
971 s = rdpdr_client_get_send_buffer(rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_DEVICELIST_REMOVE, 24);
973 return CHANNEL_RC_NO_MEMORY;
975 Stream_Write_UINT32(s, 1);
979 return rdpdr_client_send(rdpdr->log, pc, s);
982static UINT rdpdr_process_server_device_announce_response(pf_channel_client_context* rdpdr,
985 const UINT16 component = RDPDR_CTYP_CORE;
986 const UINT16 packetid = PAKID_CORE_DEVICE_REPLY;
988 UINT32 resultCode = 0;
993 if (!rdpdr_process_server_header(TRUE, rdpdr->log, s, component, packetid, 8))
994 return ERROR_INVALID_DATA;
996 Stream_Read_UINT32(s, deviceID);
997 Stream_Read_UINT32(s, resultCode);
999 if (deviceID != SCARD_DEVICE_ID)
1001 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
1002 "[%s | %s] deviceID mismatch, sent 0x%08" PRIx32
", changed to 0x%08" PRIx32,
1003 rdpdr_component_string(component), rdpdr_packetid_string(packetid),
1004 SCARD_DEVICE_ID, deviceID);
1006 else if (resultCode != 0)
1008 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
1009 "[%s | %s] deviceID 0x%08" PRIx32
" resultCode=0x%08" PRIx32,
1010 rdpdr_component_string(component), rdpdr_packetid_string(packetid), deviceID,
1014 CLIENT_RX_LOG(rdpdr->log, WLOG_DEBUG,
1015 "[%s | %s] deviceID 0x%08" PRIx32
" resultCode=0x%08" PRIx32
1016 " -> emulated smartcard redirected!",
1017 rdpdr_component_string(component), rdpdr_packetid_string(packetid), deviceID,
1020 return CHANNEL_RC_OK;
1024static BOOL pf_channel_rdpdr_rewrite_device_list_to(
wStream* s, UINT32 fromVersion,
1028 if (fromVersion == toVersion)
1031 const size_t cap = Stream_GetRemainingLength(s);
1032 wStream* clone = Stream_New(NULL, cap);
1035 const size_t pos = Stream_GetPosition(s);
1036 Stream_Copy(s, clone, cap);
1037 Stream_SealLength(clone);
1039 Stream_SetPosition(clone, 0);
1040 Stream_SetPosition(s, pos);
1043 if (!Stream_SafeSeek(s, 4))
1047 if (Stream_GetRemainingLength(clone) < 4)
1049 Stream_Read_UINT32(clone, count);
1051 for (UINT32 x = 0; x < count; x++)
1054 const size_t charCount = ARRAYSIZE(device.PreferredDosName);
1055 if (Stream_GetRemainingLength(clone) < 20)
1058 Stream_Read_UINT32(clone, device.DeviceType);
1059 Stream_Read_UINT32(clone, device.DeviceId);
1060 Stream_Read(clone, device.PreferredDosName, charCount);
1061 Stream_Read_UINT32(clone, device.DeviceDataLength);
1062 device.DeviceData = Stream_Pointer(clone);
1063 if (!Stream_SafeSeek(clone, device.DeviceDataLength))
1066 if (!Stream_EnsureRemainingCapacity(s, 20))
1068 Stream_Write_UINT32(s, device.DeviceType);
1069 Stream_Write_UINT32(s, device.DeviceId);
1070 Stream_Write(s, device.PreferredDosName, charCount);
1072 if (device.DeviceType == RDPDR_DTYP_FILESYSTEM)
1074 if (toVersion == DRIVE_CAPABILITY_VERSION_01)
1075 Stream_Write_UINT32(s, 0);
1078 const size_t datalen = charCount *
sizeof(WCHAR);
1079 if (!Stream_EnsureRemainingCapacity(s, datalen +
sizeof(UINT32)))
1081 Stream_Write_UINT32(s, WINPR_ASSERTING_INT_CAST(uint32_t, datalen));
1083 const SSIZE_T rcw = Stream_Write_UTF16_String_From_UTF8(
1084 s, charCount, device.PreferredDosName, charCount - 1, TRUE);
1091 Stream_Write_UINT32(s, device.DeviceDataLength);
1092 if (!Stream_EnsureRemainingCapacity(s, device.DeviceDataLength))
1094 Stream_Write(s, device.DeviceData, device.DeviceDataLength);
1098 Stream_SealLength(s);
1102 Stream_Free(clone, TRUE);
1106static BOOL pf_channel_rdpdr_rewrite_device_list(pf_channel_client_context* rdpdr,
1107 pServerContext* ps,
wStream* s, BOOL toServer)
1109 WINPR_ASSERT(rdpdr);
1112 const size_t pos = Stream_GetPosition(s);
1113 UINT16 component = 0;
1114 UINT16 packetid = 0;
1115 Stream_SetPosition(s, 0);
1117 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s, 4))
1120 Stream_Read_UINT16(s, component);
1121 Stream_Read_UINT16(s, packetid);
1122 if ((component != RDPDR_CTYP_CORE) || (packetid != PAKID_CORE_DEVICELIST_ANNOUNCE))
1124 Stream_SetPosition(s, pos);
1128 const pf_channel_server_context* srv =
1129 HashTable_GetItemValue(ps->interceptContextMap, RDPDR_SVC_CHANNEL_NAME);
1132 WLog_Print(rdpdr->log, WLOG_ERROR,
"No channel %s in intercep map", RDPDR_SVC_CHANNEL_NAME);
1136 UINT32 from = srv->common.capabilityVersions[CAP_DRIVE_TYPE];
1137 UINT32 to = rdpdr->common.capabilityVersions[CAP_DRIVE_TYPE];
1140 from = rdpdr->common.capabilityVersions[CAP_DRIVE_TYPE];
1141 to = srv->common.capabilityVersions[CAP_DRIVE_TYPE];
1143 if (!pf_channel_rdpdr_rewrite_device_list_to(s, from, to))
1146 Stream_SetPosition(s, pos);
1150static BOOL pf_channel_rdpdr_client_send_to_server(pf_channel_client_context* rdpdr,
1151 pServerContext* ps,
wStream* s)
1153 WINPR_ASSERT(rdpdr);
1156 UINT16 server_channel_id = WTSChannelGetId(ps->context.peer, RDPDR_SVC_CHANNEL_NAME);
1161 if (server_channel_id == 0)
1164 if (!pf_channel_rdpdr_rewrite_device_list(rdpdr, ps, s, TRUE))
1166 size_t len = Stream_Length(s);
1167 Stream_SetPosition(s, len);
1168 rdpdr_dump_send_packet(rdpdr->log, WLOG_TRACE, s, proxy_client_tx);
1169 WINPR_ASSERT(ps->context.peer);
1170 WINPR_ASSERT(ps->context.peer->SendChannelData);
1171 return ps->context.peer->SendChannelData(ps->context.peer, server_channel_id,
1172 Stream_Buffer(s), len);
1177static BOOL pf_channel_send_client_queue(pClientContext* pc, pf_channel_client_context* rdpdr);
1179#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1180static BOOL rdpdr_process_server_loggedon_request(pServerContext* ps, pClientContext* pc,
1181 pf_channel_client_context* rdpdr,
wStream* s,
1182 UINT16 component, UINT16 packetid)
1184 WINPR_ASSERT(rdpdr);
1185 WLog_Print(rdpdr->log, WLOG_DEBUG,
"[%s | %s]", rdpdr_component_string(component),
1186 rdpdr_packetid_string(packetid));
1187 if (rdpdr_send_emulated_scard_device_remove(pc, rdpdr) != CHANNEL_RC_OK)
1189 if (rdpdr_send_emulated_scard_device_list_announce_request(pc, rdpdr) != CHANNEL_RC_OK)
1191 return pf_channel_rdpdr_client_send_to_server(rdpdr, ps, s);
1194static BOOL filter_smartcard_io_requests(pf_channel_client_context* rdpdr,
wStream* s,
1198 UINT16 component = 0;
1199 UINT16 packetid = 0;
1200 UINT32 deviceID = 0;
1203 WINPR_ASSERT(rdpdr);
1204 WINPR_ASSERT(pPacketid);
1206 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s, 4))
1209 pos = Stream_GetPosition(s);
1210 Stream_Read_UINT16(s, component);
1211 Stream_Read_UINT16(s, packetid);
1213 if (Stream_GetRemainingLength(s) >= 4)
1214 Stream_Read_UINT32(s, deviceID);
1216 WLog_Print(rdpdr->log, WLOG_DEBUG,
"got: [%s | %s]: [0x%08" PRIx32
"]",
1217 rdpdr_component_string(component), rdpdr_packetid_string(packetid), deviceID);
1219 if (component != RDPDR_CTYP_CORE)
1224 case PAKID_CORE_SERVER_ANNOUNCE:
1225 case PAKID_CORE_CLIENTID_CONFIRM:
1226 case PAKID_CORE_CLIENT_NAME:
1227 case PAKID_CORE_DEVICELIST_ANNOUNCE:
1228 case PAKID_CORE_DEVICELIST_REMOVE:
1229 case PAKID_CORE_SERVER_CAPABILITY:
1230 case PAKID_CORE_CLIENT_CAPABILITY:
1231 WLog_Print(rdpdr->log, WLOG_WARN,
"Filtering client -> server message [%s | %s]",
1232 rdpdr_component_string(component), rdpdr_packetid_string(packetid));
1233 *pPacketid = packetid;
1235 case PAKID_CORE_USER_LOGGEDON:
1236 *pPacketid = packetid;
1238 case PAKID_CORE_DEVICE_REPLY:
1239 case PAKID_CORE_DEVICE_IOREQUEST:
1240 if (deviceID != SCARD_DEVICE_ID)
1242 *pPacketid = packetid;
1245 if (deviceID != SCARD_DEVICE_ID)
1247 WLog_Print(rdpdr->log, WLOG_WARN,
1248 "Got [%s | %s] for deviceID 0x%08" PRIx32
", TODO: Not handled!",
1249 rdpdr_component_string(component), rdpdr_packetid_string(packetid),
1257 Stream_SetPosition(s, pos);
1262BOOL pf_channel_send_client_queue(pClientContext* pc, pf_channel_client_context* rdpdr)
1264 UINT16 channelId = 0;
1267 WINPR_ASSERT(rdpdr);
1269 if (rdpdr->state != STATE_CLIENT_CHANNEL_RUNNING)
1271 channelId = freerdp_channels_get_id_by_name(pc->context.instance, RDPDR_SVC_CHANNEL_NAME);
1272 if ((channelId == 0) || (channelId == UINT16_MAX))
1275 Queue_Lock(rdpdr->queue);
1276 while (Queue_Count(rdpdr->queue) > 0)
1278 wStream* s = Queue_Dequeue(rdpdr->queue);
1282 size_t len = Stream_Length(s);
1283 Stream_SetPosition(s, len);
1285 rdpdr_dump_send_packet(rdpdr->log, WLOG_TRACE, s, proxy_server_tx
" (queue) ");
1286 WINPR_ASSERT(pc->context.instance->SendChannelData);
1287 if (!pc->context.instance->SendChannelData(pc->context.instance, channelId,
1288 Stream_Buffer(s), len))
1290 CLIENT_TX_LOG(rdpdr->log, WLOG_ERROR,
"xxxxxx TODO: Failed to send data!");
1292 Stream_Free(s, TRUE);
1294 Queue_Unlock(rdpdr->queue);
1298static BOOL rdpdr_handle_server_announce_request(pClientContext* pc,
1299 pf_channel_client_context* rdpdr,
wStream* s)
1302 WINPR_ASSERT(rdpdr);
1305 if (rdpdr_process_server_announce_request(rdpdr, s) != CHANNEL_RC_OK)
1307 if (rdpdr_send_client_announce_reply(pc, rdpdr) != CHANNEL_RC_OK)
1309 if (rdpdr_send_client_name_request(pc, rdpdr) != CHANNEL_RC_OK)
1311 rdpdr->state = STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST;
1315BOOL pf_channel_rdpdr_client_handle(pClientContext* pc, UINT16 channelId,
const char* channel_name,
1316 const BYTE* xdata,
size_t xsize, UINT32 flags,
size_t totalSize)
1318 pf_channel_client_context* rdpdr = NULL;
1319 pServerContext* ps = NULL;
1321#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1322 UINT16 packetid = 0;
1326 WINPR_ASSERT(pc->pdata);
1327 WINPR_ASSERT(pc->interceptContextMap);
1328 WINPR_ASSERT(channel_name);
1329 WINPR_ASSERT(xdata);
1333 rdpdr = HashTable_GetItemValue(pc->interceptContextMap, channel_name);
1336 CLIENT_RX_LOG(WLog_Get(RTAG), WLOG_ERROR,
1337 "Channel %s [0x%04" PRIx16
"] missing context in interceptContextMap",
1338 channel_name, channelId);
1341 s = rdpdr->common.buffer;
1342 if (flags & CHANNEL_FLAG_FIRST)
1343 Stream_SetPosition(s, 0);
1344 if (!Stream_EnsureRemainingCapacity(s, xsize))
1346 CLIENT_RX_LOG(rdpdr->log, WLOG_ERROR,
1347 "Channel %s [0x%04" PRIx16
"] not enough memory [need %" PRIuz
"]",
1348 channel_name, channelId, xsize);
1351 Stream_Write(s, xdata, xsize);
1352 if ((flags & CHANNEL_FLAG_LAST) == 0)
1355 Stream_SealLength(s);
1356 Stream_SetPosition(s, 0);
1357 if (Stream_Length(s) != totalSize)
1359 CLIENT_RX_LOG(rdpdr->log, WLOG_WARN,
1360 "Received invalid %s channel data (server -> proxy), expected %" PRIuz
1361 "bytes, got %" PRIuz,
1362 channel_name, totalSize, Stream_Length(s));
1366 rdpdr_dump_received_packet(rdpdr->log, WLOG_TRACE, s, proxy_server_rx);
1367 switch (rdpdr->state)
1369 case STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST:
1370 if (!rdpdr_handle_server_announce_request(pc, rdpdr, s))
1373 case STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST:
1374 if (!rdpdr_process_server_capability_request_or_clientid_confirm(rdpdr, s))
1376 rdpdr->state = STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM;
1378 case STATE_CLIENT_EXPECT_SERVER_CLIENT_ID_CONFIRM:
1379 if (!rdpdr_process_server_capability_request_or_clientid_confirm(rdpdr, s))
1381 if (rdpdr_send_client_capability_response(pc, rdpdr) != CHANNEL_RC_OK)
1383#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1384 if (pf_channel_smartcard_client_emulate(pc))
1386 if (rdpdr_send_emulated_scard_device_list_announce_request(pc, rdpdr) !=
1389 rdpdr->state = STATE_CLIENT_CHANNEL_RUNNING;
1394 rdpdr->state = STATE_CLIENT_CHANNEL_RUNNING;
1395 pf_channel_send_client_queue(pc, rdpdr);
1399 case STATE_CLIENT_CHANNEL_RUNNING:
1400#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1401 if (!pf_channel_smartcard_client_emulate(pc) ||
1402 !filter_smartcard_io_requests(rdpdr, s, &packetid))
1403 return pf_channel_rdpdr_client_send_to_server(rdpdr, ps, s);
1408 case PAKID_CORE_USER_LOGGEDON:
1409 return rdpdr_process_server_loggedon_request(ps, pc, rdpdr, s,
1410 RDPDR_CTYP_CORE, packetid);
1411 case PAKID_CORE_DEVICE_IOREQUEST:
1413 wStream* out = rdpdr_client_get_send_buffer(
1414 rdpdr, RDPDR_CTYP_CORE, PAKID_CORE_DEVICE_IOCOMPLETION, 0);
1417 if (!rdpdr_process_server_header(FALSE, rdpdr->log, s, RDPDR_CTYP_CORE,
1418 PAKID_CORE_DEVICE_IOREQUEST, 20))
1421 if (!pf_channel_smartcard_client_handle(rdpdr->log, pc, s, out,
1426 case PAKID_CORE_SERVER_ANNOUNCE:
1427 pf_channel_rdpdr_client_reset(pc);
1428 if (!rdpdr_handle_server_announce_request(pc, rdpdr, s))
1431 case PAKID_CORE_SERVER_CAPABILITY:
1432 rdpdr->state = STATE_CLIENT_EXPECT_SERVER_CORE_CAPABILITY_REQUEST;
1434 return pf_channel_rdpdr_client_handle(pc, channelId, channel_name, xdata,
1435 xsize, flags, totalSize);
1436 case PAKID_CORE_DEVICE_REPLY:
1440 rdpdr->log, WLOG_ERROR,
1441 "Channel %s [0x%04" PRIx16
1442 "] we´ve reached an impossible state %s! [%s] aliens invaded!",
1443 channel_name, channelId, rdpdr_client_state_to_string(rdpdr->state),
1444 rdpdr_packetid_string(packetid));
1450 return pf_channel_rdpdr_client_send_to_server(rdpdr, ps, s);
1453 CLIENT_RX_LOG(rdpdr->log, WLOG_ERROR,
1454 "Channel %s [0x%04" PRIx16
1455 "] we´ve reached an impossible state %s! aliens invaded!",
1456 channel_name, channelId, rdpdr_client_state_to_string(rdpdr->state));
1463static void pf_channel_rdpdr_common_context_free(pf_channel_common_context* common)
1467 free(common->computerName.v);
1468 Stream_Free(common->s, TRUE);
1469 Stream_Free(common->buffer, TRUE);
1474 pf_channel_client_context* entry = (pf_channel_client_context*)base;
1478 pf_channel_rdpdr_common_context_free(&entry->common);
1479 Queue_Free(entry->queue);
1483static BOOL pf_channel_rdpdr_common_context_new(pf_channel_common_context* common,
1488 common->base.free = fkt;
1489 common->s = Stream_New(NULL, 1024);
1492 common->buffer = Stream_New(NULL, 1024);
1493 if (!common->buffer)
1495 common->computerNameUnicode = 1;
1496 common->computerName.v = NULL;
1497 common->versionMajor = RDPDR_VERSION_MAJOR;
1498 common->versionMinor = RDPDR_VERSION_MINOR_RDP10X;
1499 common->clientID = SCARD_DEVICE_ID;
1501 const UINT32 versions[] = { 0,
1502 GENERAL_CAPABILITY_VERSION_02,
1503 PRINT_CAPABILITY_VERSION_01,
1504 PORT_CAPABILITY_VERSION_01,
1505 DRIVE_CAPABILITY_VERSION_02,
1506 SMARTCARD_CAPABILITY_VERSION_01 };
1508 memcpy(common->capabilityVersions, versions,
sizeof(common->capabilityVersions));
1512static BOOL pf_channel_rdpdr_client_pass_message(pServerContext* ps, pClientContext* pc,
1513 WINPR_ATTR_UNUSED UINT16 channelId,
1514 const char* channel_name,
wStream* s)
1516 pf_channel_client_context* rdpdr = NULL;
1521 rdpdr = HashTable_GetItemValue(pc->interceptContextMap, channel_name);
1524 WINPR_ASSERT(rdpdr->queue);
1526 if (!pf_channel_rdpdr_rewrite_device_list(rdpdr, ps, s, FALSE))
1528 if (!Queue_Enqueue(rdpdr->queue, s))
1530 pf_channel_send_client_queue(pc, rdpdr);
1534#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1535static BOOL filter_smartcard_device_list_remove(pf_channel_server_context* rdpdr,
wStream* s)
1540 WINPR_ASSERT(rdpdr);
1541 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s,
sizeof(UINT32)))
1543 pos = Stream_GetPosition(s);
1544 Stream_Read_UINT32(s, count);
1549 if (!Stream_CheckAndLogRequiredLengthOfSizeWLog(rdpdr->log, s, count,
sizeof(UINT32)))
1552 for (UINT32 x = 0; x < count; x++)
1554 UINT32 deviceID = 0;
1555 BYTE* dst = Stream_Pointer(s);
1556 Stream_Read_UINT32(s, deviceID);
1557 if (deviceID == SCARD_DEVICE_ID)
1559 ArrayList_Remove(rdpdr->blockedDevices, (
void*)(
size_t)deviceID);
1566 memmove(dst, Stream_ConstPointer(s), (count - x - 1) *
sizeof(UINT32));
1569 Stream_SetPosition(s, pos);
1570 Stream_Write_UINT32(s, count);
1578static BOOL filter_smartcard_device_io_request(pf_channel_server_context* rdpdr,
wStream* s)
1580 UINT32 DeviceID = 0;
1581 WINPR_ASSERT(rdpdr);
1583 Stream_Read_UINT32(s, DeviceID);
1584 return ArrayList_Contains(rdpdr->blockedDevices, (
void*)(
size_t)DeviceID);
1587static BOOL filter_smartcard_device_list_announce(pf_channel_server_context* rdpdr,
wStream* s)
1591 WINPR_ASSERT(rdpdr);
1592 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s,
sizeof(UINT32)))
1594 const size_t pos = Stream_GetPosition(s);
1595 Stream_Read_UINT32(s, count);
1600 for (UINT32 x = 0; x < count; x++)
1602 UINT32 DeviceType = 0;
1603 UINT32 DeviceId = 0;
1604 char PreferredDosName[8];
1605 UINT32 DeviceDataLength = 0;
1606 BYTE* dst = Stream_Pointer(s);
1607 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s, 20))
1609 Stream_Read_UINT32(s, DeviceType);
1610 Stream_Read_UINT32(s, DeviceId);
1611 Stream_Read(s, PreferredDosName, ARRAYSIZE(PreferredDosName));
1612 Stream_Read_UINT32(s, DeviceDataLength);
1613 if (!Stream_SafeSeek(s, DeviceDataLength))
1615 if (DeviceType == RDPDR_DTYP_SMARTCARD)
1617 ArrayList_Append(rdpdr->blockedDevices, (
void*)(
size_t)DeviceId);
1621 WLog_Print(rdpdr->log, WLOG_INFO,
"Filtering smartcard device 0x%08" PRIx32
"",
1624 memmove(dst, Stream_ConstPointer(s), Stream_GetRemainingLength(s));
1625 Stream_SetPosition(s, pos);
1626 Stream_Write_UINT32(s, count - 1);
1634static BOOL filter_smartcard_device_list_announce_request(pf_channel_server_context* rdpdr,
1639 UINT16 component = 0;
1640 UINT16 packetid = 0;
1642 WINPR_ASSERT(rdpdr);
1643 if (!Stream_CheckAndLogRequiredLengthWLog(rdpdr->log, s, 8))
1646 pos = Stream_GetPosition(s);
1648 Stream_Read_UINT16(s, component);
1649 Stream_Read_UINT16(s, packetid);
1651 if (component != RDPDR_CTYP_CORE)
1656 case PAKID_CORE_DEVICELIST_ANNOUNCE:
1657 if (filter_smartcard_device_list_announce(rdpdr, s))
1660 case PAKID_CORE_DEVICELIST_REMOVE:
1661 if (filter_smartcard_device_list_remove(rdpdr, s))
1664 case PAKID_CORE_DEVICE_IOREQUEST:
1665 if (filter_smartcard_device_io_request(rdpdr, s))
1669 case PAKID_CORE_SERVER_ANNOUNCE:
1670 case PAKID_CORE_CLIENTID_CONFIRM:
1671 case PAKID_CORE_CLIENT_NAME:
1672 case PAKID_CORE_DEVICE_REPLY:
1673 case PAKID_CORE_SERVER_CAPABILITY:
1674 case PAKID_CORE_CLIENT_CAPABILITY:
1675 case PAKID_CORE_USER_LOGGEDON:
1676 WLog_Print(rdpdr->log, WLOG_WARN,
"Filtering client -> server message [%s | %s]",
1677 rdpdr_component_string(component), rdpdr_packetid_string(packetid));
1685 Stream_SetPosition(s, pos);
1690static void* stream_copy(
const void* obj)
1693 wStream* dst = Stream_New(NULL, Stream_Capacity(src));
1696 memcpy(Stream_Buffer(dst), Stream_ConstBuffer(src), Stream_Capacity(dst));
1697 Stream_SetLength(dst, Stream_Length(src));
1698 Stream_SetPosition(dst, Stream_GetPosition(src));
1702static void stream_free(
void* obj)
1705 Stream_Free(s, TRUE);
1708static const char* pf_channel_rdpdr_client_context(
void* arg)
1710 pClientContext* pc = arg;
1714 return "pc->pdata=null";
1715 return pc->pdata->session_id;
1718BOOL pf_channel_rdpdr_client_new(pClientContext* pc)
1721 pf_channel_client_context* rdpdr = NULL;
1724 WINPR_ASSERT(pc->interceptContextMap);
1726 rdpdr = calloc(1,
sizeof(pf_channel_client_context));
1729 rdpdr->log = WLog_Get(RTAG);
1730 WINPR_ASSERT(rdpdr->log);
1732 WLog_SetContext(rdpdr->log, pf_channel_rdpdr_client_context, pc);
1733 if (!pf_channel_rdpdr_common_context_new(&rdpdr->common, pf_channel_rdpdr_client_context_free))
1736 rdpdr->maxMajorVersion = RDPDR_VERSION_MAJOR;
1737 rdpdr->maxMinorVersion = RDPDR_VERSION_MINOR_RDP10X;
1738 rdpdr->state = STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST;
1740 rdpdr->queue = Queue_New(TRUE, 0, 0);
1743 obj = Queue_Object(rdpdr->queue);
1745 obj->fnObjectNew = stream_copy;
1746 obj->fnObjectFree = stream_free;
1747 if (!HashTable_Insert(pc->interceptContextMap, RDPDR_SVC_CHANNEL_NAME, rdpdr))
1752 pf_channel_rdpdr_client_context_free(&rdpdr->common.base);
1756void pf_channel_rdpdr_client_free(pClientContext* pc)
1759 WINPR_ASSERT(pc->interceptContextMap);
1760 HashTable_Remove(pc->interceptContextMap, RDPDR_SVC_CHANNEL_NAME);
1765 pf_channel_server_context* entry = (pf_channel_server_context*)base;
1769 (void)WTSVirtualChannelClose(entry->handle);
1770 pf_channel_rdpdr_common_context_free(&entry->common);
1771 ArrayList_Free(entry->blockedDevices);
1775static const char* pf_channel_rdpdr_server_context(
void* arg)
1777 pServerContext* ps = arg;
1781 return "ps->pdata=null";
1782 return ps->pdata->session_id;
1785BOOL pf_channel_rdpdr_server_new(pServerContext* ps)
1787 pf_channel_server_context* rdpdr = NULL;
1788 PULONG pSessionId = NULL;
1789 DWORD BytesReturned = 0;
1792 WINPR_ASSERT(ps->interceptContextMap);
1794 rdpdr = calloc(1,
sizeof(pf_channel_server_context));
1797 rdpdr->log = WLog_Get(RTAG);
1798 WINPR_ASSERT(rdpdr->log);
1799 WLog_SetContext(rdpdr->log, pf_channel_rdpdr_server_context, ps);
1801 if (!pf_channel_rdpdr_common_context_new(&rdpdr->common, pf_channel_rdpdr_server_context_free))
1803 rdpdr->state = STATE_SERVER_INITIAL;
1805 rdpdr->blockedDevices = ArrayList_New(FALSE);
1806 if (!rdpdr->blockedDevices)
1809 rdpdr->SessionId = WTS_CURRENT_SESSION;
1810 if (WTSQuerySessionInformationA(ps->vcm, WTS_CURRENT_SESSION, WTSSessionId, (LPSTR*)&pSessionId,
1813 rdpdr->SessionId = (DWORD)*pSessionId;
1814 WTSFreeMemory(pSessionId);
1817 rdpdr->handle = WTSVirtualChannelOpenEx(rdpdr->SessionId, RDPDR_SVC_CHANNEL_NAME, 0);
1818 if (rdpdr->handle == 0)
1820 if (!HashTable_Insert(ps->interceptContextMap, RDPDR_SVC_CHANNEL_NAME, rdpdr))
1826 pf_channel_rdpdr_server_context_free(&rdpdr->common.base);
1830void pf_channel_rdpdr_server_free(pServerContext* ps)
1833 WINPR_ASSERT(ps->interceptContextMap);
1834 HashTable_Remove(ps->interceptContextMap, RDPDR_SVC_CHANNEL_NAME);
1837static pf_channel_server_context* get_channel(pServerContext* ps, BOOL send)
1839 pf_channel_server_context* rdpdr = NULL;
1841 WINPR_ASSERT(ps->interceptContextMap);
1843 rdpdr = HashTable_GetItemValue(ps->interceptContextMap, RDPDR_SVC_CHANNEL_NAME);
1846 SERVER_RXTX_LOG(send, WLog_Get(RTAG), WLOG_ERROR,
1847 "Channel %s missing context in interceptContextMap",
1848 RDPDR_SVC_CHANNEL_NAME);
1855BOOL pf_channel_rdpdr_server_handle(pServerContext* ps, UINT16 channelId,
const char* channel_name,
1856 const BYTE* xdata,
size_t xsize, UINT32 flags,
size_t totalSize)
1859 pClientContext* pc = NULL;
1860 pf_channel_server_context* rdpdr = get_channel(ps, FALSE);
1864 WINPR_ASSERT(ps->pdata);
1867 s = rdpdr->common.buffer;
1869 if (flags & CHANNEL_FLAG_FIRST)
1870 Stream_SetPosition(s, 0);
1872 if (!Stream_EnsureRemainingCapacity(s, xsize))
1874 Stream_Write(s, xdata, xsize);
1876 if ((flags & CHANNEL_FLAG_LAST) == 0)
1879 Stream_SealLength(s);
1880 Stream_SetPosition(s, 0);
1882 if (Stream_Length(s) != totalSize)
1884 SERVER_RX_LOG(rdpdr->log, WLOG_WARN,
1885 "Received invalid %s channel data (client -> proxy), expected %" PRIuz
1886 "bytes, got %" PRIuz,
1887 channel_name, totalSize, Stream_Length(s));
1891 rdpdr_dump_received_packet(rdpdr->log, WLOG_TRACE, s, proxy_client_rx);
1892 switch (rdpdr->state)
1894 case STATE_SERVER_EXPECT_CLIENT_ANNOUNCE_REPLY:
1895 if (rdpdr_process_client_announce_reply(rdpdr, s) != CHANNEL_RC_OK)
1897 rdpdr->state = STATE_SERVER_EXPECT_CLIENT_NAME_REQUEST;
1899 case STATE_SERVER_EXPECT_CLIENT_NAME_REQUEST:
1900 if (rdpdr_process_client_name_request(rdpdr, s, pc) != CHANNEL_RC_OK)
1902 if (rdpdr_send_server_capability_request(rdpdr) != CHANNEL_RC_OK)
1904 if (rdpdr_send_server_clientid_confirm(rdpdr) != CHANNEL_RC_OK)
1906 rdpdr->state = STATE_SERVER_EXPECT_EXPECT_CLIENT_CAPABILITY_RESPONE;
1908 case STATE_SERVER_EXPECT_EXPECT_CLIENT_CAPABILITY_RESPONE:
1909 if (rdpdr_process_client_capability_response(rdpdr, s) != CHANNEL_RC_OK)
1911 rdpdr->state = STATE_SERVER_CHANNEL_RUNNING;
1913 case STATE_SERVER_CHANNEL_RUNNING:
1914#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1915 if (!pf_channel_smartcard_client_emulate(pc) ||
1916 !filter_smartcard_device_list_announce_request(rdpdr, s))
1918 if (!pf_channel_rdpdr_client_pass_message(ps, pc, channelId, channel_name, s))
1922 return pf_channel_smartcard_server_handle(ps, s);
1924 if (!pf_channel_rdpdr_client_pass_message(ps, pc, channelId, channel_name, s))
1929 case STATE_SERVER_INITIAL:
1930 SERVER_RX_LOG(rdpdr->log, WLOG_WARN,
"Invalid state %s",
1931 rdpdr_server_state_to_string(rdpdr->state));
1938BOOL pf_channel_rdpdr_server_announce(pServerContext* ps)
1940 pf_channel_server_context* rdpdr = get_channel(ps, TRUE);
1944 WINPR_ASSERT(rdpdr->state == STATE_SERVER_INITIAL);
1945 if (rdpdr_server_send_announce_request(rdpdr) != CHANNEL_RC_OK)
1947 rdpdr->state = STATE_SERVER_EXPECT_CLIENT_ANNOUNCE_REPLY;
1951BOOL pf_channel_rdpdr_client_reset(pClientContext* pc)
1953 pf_channel_client_context* rdpdr = NULL;
1956 WINPR_ASSERT(pc->pdata);
1957 WINPR_ASSERT(pc->interceptContextMap);
1959 rdpdr = HashTable_GetItemValue(pc->interceptContextMap, RDPDR_SVC_CHANNEL_NAME);
1963 Queue_Clear(rdpdr->queue);
1965 rdpdr->state = STATE_CLIENT_EXPECT_SERVER_ANNOUNCE_REQUEST;
1970static PfChannelResult pf_rdpdr_back_data(proxyData* pdata,
1971 const pServerStaticChannelContext* channel,
1972 const BYTE* xdata,
size_t xsize, UINT32 flags,
1975 WINPR_ASSERT(pdata);
1976 WINPR_ASSERT(channel);
1978 if (!pf_channel_rdpdr_client_handle(pdata->pc,
1979 WINPR_ASSERTING_INT_CAST(UINT16, channel->back_channel_id),
1980 channel->channel_name, xdata, xsize, flags, totalSize))
1981 return PF_CHANNEL_RESULT_ERROR;
1983#if defined(WITH_PROXY_EMULATE_SMARTCARD)
1984 if (pf_channel_smartcard_client_emulate(pdata->pc))
1985 return PF_CHANNEL_RESULT_DROP;
1987 return PF_CHANNEL_RESULT_DROP;
1990static PfChannelResult pf_rdpdr_front_data(proxyData* pdata,
1991 const pServerStaticChannelContext* channel,
1992 const BYTE* xdata,
size_t xsize, UINT32 flags,
1995 WINPR_ASSERT(pdata);
1996 WINPR_ASSERT(channel);
1998 if (!pf_channel_rdpdr_server_handle(pdata->ps,
1999 WINPR_ASSERTING_INT_CAST(UINT16, channel->front_channel_id),
2000 channel->channel_name, xdata, xsize, flags, totalSize))
2001 return PF_CHANNEL_RESULT_ERROR;
2003#if defined(WITH_PROXY_EMULATE_SMARTCARD)
2004 if (pf_channel_smartcard_client_emulate(pdata->pc))
2005 return PF_CHANNEL_RESULT_DROP;
2007 return PF_CHANNEL_RESULT_DROP;
2010BOOL pf_channel_setup_rdpdr(pServerContext* ps, pServerStaticChannelContext* channel)
2012 channel->onBackData = pf_rdpdr_back_data;
2013 channel->onFrontData = pf_rdpdr_front_data;
2015 if (!pf_channel_rdpdr_server_new(ps))
2017 if (!pf_channel_rdpdr_server_announce(ps))
This struct contains function pointer to initialize/free objects.