nat.go 10.9 KB
Newer Older
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
1 2 3
package nat

import (
4
	"errors"
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
5 6 7
	"fmt"
	"strconv"
	"strings"
8
	"sync"
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
9 10 11 12 13 14 15
	"time"

	ma "github.com/jbenet/go-ipfs/Godeps/_workspace/src/github.com/jbenet/go-multiaddr"
	manet "github.com/jbenet/go-ipfs/Godeps/_workspace/src/github.com/jbenet/go-multiaddr-net"

	nat "github.com/jbenet/go-ipfs/Godeps/_workspace/src/github.com/fd/go-nat"
	goprocess "github.com/jbenet/go-ipfs/Godeps/_workspace/src/github.com/jbenet/goprocess"
16
	periodic "github.com/jbenet/go-ipfs/Godeps/_workspace/src/github.com/jbenet/goprocess/periodic"
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
17
	eventlog "github.com/jbenet/go-ipfs/thirdparty/eventlog"
18 19 20 21 22 23
	notifier "github.com/jbenet/go-ipfs/thirdparty/notifier"
)

var (
	// ErrNoMapping signals no mapping exists for an address
	ErrNoMapping = errors.New("mapping not established")
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
24 25 26 27
)

var log = eventlog.Logger("nat")

28 29
// MappingDuration is a default port mapping duration.
// Port mappings are renewed every (MappingDuration / 3)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
30 31
const MappingDuration = time.Second * 60

32
// DiscoverNAT looks for a NAT device in the network and
33
// returns an object that can manage port mappings.
34
func DiscoverNAT() *NAT {
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
35 36 37 38 39 40 41 42 43 44 45
	nat, err := nat.DiscoverGateway()
	if err != nil {
		log.Debug("DiscoverGateway error:", err)
		return nil
	}
	addr, err := nat.GetDeviceAddress()
	if err != nil {
		log.Debug("DiscoverGateway address error:", err)
	} else {
		log.Debug("DiscoverGateway address:", addr)
	}
46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74
	return newNAT(nat)
}

// NAT is an object that manages address port mappings in
// NATs (Network Address Translators). It is a long-running
// service that will periodically renew port mappings,
// and keep an up-to-date list of all the external addresses.
type NAT struct {
	nat  nat.NAT
	proc goprocess.Process // manages nat mappings lifecycle

	mappingmu sync.RWMutex // guards mappings
	mappings  []*mapping

	Notifier
}

func newNAT(realNAT nat.NAT) *NAT {
	return &NAT{
		nat:  realNAT,
		proc: goprocess.WithParent(goprocess.Background()),
	}
}

// Close shuts down all port mappings. NAT can no longer be used.
func (nat *NAT) Close() error {
	return nat.proc.Close()
}

75 76 77 78 79 80
// Process returns the nat's life-cycle manager, for making it listen
// to close signals.
func (nat *NAT) Process() goprocess.Process {
	return nat.proc
}

81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120
// Notifier is an object that assists NAT in notifying listeners.
// It is implemented using github.com/jbenet/go-ipfs/thirdparty/notifier
type Notifier struct {
	n notifier.Notifier
}

func (n *Notifier) notifyAll(notify func(n Notifiee)) {
	n.n.NotifyAll(func(n notifier.Notifiee) {
		notify(n.(Notifiee))
	})
}

// Notify signs up notifiee to listen to NAT events.
func (n *Notifier) Notify(notifiee Notifiee) {
	n.n.Notify(n)
}

// StopNotify stops signaling events to notifiee.
func (n *Notifier) StopNotify(notifiee Notifiee) {
	n.n.StopNotify(notifiee)
}

// Notifiee is an interface objects must implement to listen to NAT events.
type Notifiee interface {

	// Called every time a successful mapping happens
	// Warning: the port mapping may have changed. If that is the
	// case, both MappingSuccess and MappingChanged are called.
	MappingSuccess(nat *NAT, m Mapping)

	// Called when mapping a port succeeds, but the mapping is
	// with a different port than an earlier success.
	MappingChanged(nat *NAT, m Mapping, oldport int, newport int)

	// Called when a port mapping fails. NAT will continue attempting after
	// the next period. To stop trying, use: mapping.Close(). After this failure,
	// mapping.ExternalPort() will be zero, and nat.ExternalAddrs() will not
	// return the address for this mapping. With luck, the next attempt will
	// succeed, without the client needing to do anything.
	MappingFailed(nat *NAT, m Mapping, oldport int, err error)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
121 122
}

123
// Mapping represents a port mapping in a NAT.
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
124
type Mapping interface {
125 126 127 128 129
	// NAT returns the NAT object this Mapping belongs to.
	NAT() *NAT

	// Protocol returns the protocol of this port mapping. This is either
	// "tcp" or "udp" as no other protocols are likely to be NAT-supported.
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
130
	Protocol() string
131 132 133

	// InternalPort returns the internal device port. Mapping will continue to
	// try to map InternalPort() to an external facing port.
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
134
	InternalPort() int
135 136 137

	// ExternalPort returns the external facing port. If the mapping is not
	// established, port will be 0
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
138
	ExternalPort() int
139 140 141 142 143 144 145

	// InternalAddr returns the internal address.
	InternalAddr() ma.Multiaddr

	// ExternalAddr returns the external facing address. If the mapping is not
	// established, addr will be nil, and and ErrNoMapping will be returned.
	ExternalAddr() (addr ma.Multiaddr, err error)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
146 147
}

148
// keeps republishing
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
149
type mapping struct {
150 151 152
	sync.Mutex // guards all fields

	nat     *NAT
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
153 154 155
	proto   string
	intport int
	extport int
156
	intaddr ma.Multiaddr
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
157 158 159
	proc    goprocess.Process
}

160 161 162
func (m *mapping) NAT() *NAT {
	m.Lock()
	defer m.Unlock()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
163 164
	return m.nat
}
165

Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
166
func (m *mapping) Protocol() string {
167 168
	m.Lock()
	defer m.Unlock()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
169 170
	return m.proto
}
171

Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
172
func (m *mapping) InternalPort() int {
173 174
	m.Lock()
	defer m.Unlock()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
175 176
	return m.intport
}
177

Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
178
func (m *mapping) ExternalPort() int {
179 180
	m.Lock()
	defer m.Unlock()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
181 182 183
	return m.extport
}

184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201
func (m *mapping) setExternalPort(p int) {
	m.Lock()
	defer m.Unlock()
	m.extport = p
}

func (m *mapping) InternalAddr() ma.Multiaddr {
	m.Lock()
	defer m.Unlock()
	return m.intaddr
}

func (m *mapping) ExternalAddr() (ma.Multiaddr, error) {
	if m.ExternalPort() == 0 { // dont even try right now.
		return nil, ErrNoMapping
	}

	ip, err := m.nat.nat.GetExternalAddress()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
202 203 204 205
	if err != nil {
		return nil, err
	}

206 207 208 209
	ipmaddr, err := manet.FromIP(ip)
	if err != nil {
		return nil, fmt.Errorf("error parsing ip")
	}
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
210

211 212 213 214 215 216 217 218 219 220 221 222 223
	// call m.ExternalPort again, as mapping may have changed under our feet. (tocttou)
	extport := m.ExternalPort()
	if extport == 0 {
		return nil, ErrNoMapping
	}

	tcp, err := ma.NewMultiaddr(fmt.Sprintf("/%s/%d", m.Protocol(), extport))
	if err != nil {
		return nil, err
	}

	maddr2 := ipmaddr.Encapsulate(tcp)
	return maddr2, nil
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
224 225 226 227 228 229
}

func (m *mapping) Close() error {
	return m.proc.Close()
}

230 231 232 233 234 235
// Mappings returns a slice of all NAT mappings
func (nat *NAT) Mappings() []Mapping {
	nat.mappingmu.Lock()
	maps2 := make([]Mapping, len(nat.mappings))
	for i, m := range nat.mappings {
		maps2[i] = m
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
236
	}
237 238 239
	nat.mappingmu.Unlock()
	return maps2
}
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
240

241 242 243
func (nat *NAT) addMapping(m *mapping) {
	// make mapping automatically close when nat is closed.
	nat.proc.AddChild(m.proc)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
244

245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260
	nat.mappingmu.Lock()
	nat.mappings = append(nat.mappings, m)
	nat.mappingmu.Unlock()
}

// NewMapping attemps to construct a mapping on protocol and internal port
// It will also periodically renew the mapping until the returned Mapping
// -- or its parent NAT -- is Closed.
//
// May not succeed, and mappings may change over time;
// NAT devices may not respect our port requests, and even lie.
// Clients should not store the mapped results, but rather always
// poll our object for the latest mappings.
func (nat *NAT) NewMapping(maddr ma.Multiaddr) (Mapping, error) {
	if nat == nil {
		return nil, fmt.Errorf("no nat available")
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276
	}

	network, addr, err := manet.DialArgs(maddr)
	if err != nil {
		return nil, fmt.Errorf("DialArgs failed on addr:", maddr.String())
	}

	switch network {
	case "tcp", "tcp4", "tcp6":
		network = "tcp"
	case "udp", "udp4", "udp6":
		network = "udp"
	default:
		return nil, fmt.Errorf("transport not supported by NAT: %s", network)
	}

277 278
	intports := strings.Split(addr, ":")[1]
	intport, err := strconv.Atoi(intports)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
279 280 281 282
	if err != nil {
		return nil, err
	}

283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318
	m := &mapping{
		nat:     nat,
		proto:   network,
		intport: intport,
		intaddr: maddr,
	}
	m.proc = periodic.Every(MappingDuration/3, func(worker goprocess.Process) {
		nat.establishMapping(m)
	})
	nat.addMapping(m)
	// do it once synchronously, so first mapping is done right away, and before exiting,
	// allowing users -- in the optimistic case -- to use results right after.
	nat.establishMapping(m)
	return m, nil
}

func (nat *NAT) establishMapping(m *mapping) {
	oldport := m.ExternalPort()
	log.Debugf("Attempting port map: %s/%d", m.Protocol(), m.InternalPort())
	newport, err := nat.nat.AddPortMapping(m.Protocol(), m.InternalPort(), "http", MappingDuration)

	failure := func() {
		m.setExternalPort(0) // clear mapping
		// TODO: log.Event
		log.Infof("failed to establish port mapping: %s", err)
		nat.Notifier.notifyAll(func(n Notifiee) {
			n.MappingFailed(nat, m, oldport, err)
		})

		// we do not close if the mapping failed,
		// because it may work again next time.
	}

	if err != nil || newport == 0 {
		failure()
		return
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
319 320
	}

321 322
	m.setExternalPort(newport)
	ext, err := m.ExternalAddr()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
323
	if err != nil {
324 325 326
		log.Debugf("NAT Mapping addr error: %s %s", m.InternalAddr(), err)
		failure()
		return
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
327 328
	}

329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365
	log.Debugf("NAT Mapping: %s --> %s", m.InternalAddr(), ext)
	if oldport != 0 && newport != oldport {
		log.Infof("failed to renew same port mapping: ch %d -> %d", oldport, newport)
		nat.Notifier.notifyAll(func(n Notifiee) {
			n.MappingChanged(nat, m, oldport, newport)
		})
	}

	nat.Notifier.notifyAll(func(n Notifiee) {
		n.MappingSuccess(nat, m)
	})
}

// PortMapAddrs attempts to open (and continue to keep open)
// port mappings for given addrs. This function blocks until
// all  addresses have been tried. This allows clients to
// retrieve results immediately after:
//
//   nat.PortMapAddrs(addrs)
//   mapped := nat.ExternalAddrs()
//
// Some may not succeed, and mappings may change over time;
// NAT devices may not respect our port requests, and even lie.
// Clients should not store the mapped results, but rather always
// poll our object for the latest mappings.
func (nat *NAT) PortMapAddrs(addrs []ma.Multiaddr) {
	// spin off addr mappings independently.
	var wg sync.WaitGroup
	for _, addr := range addrs {
		// do all of them concurrently
		wg.Add(1)
		go func() {
			defer wg.Done()
			nat.NewMapping(addr)
		}()
	}
	wg.Wait()
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
366 367
}

368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390
// MappedAddrs returns address mappings NAT believes have been
// successfully established. Unsuccessful mappings are nil. This is:
//
// 		map[internalAddr]externalAddr
//
// This set of mappings _may not_ be correct, as NAT devices are finicky.
// Consider this with _best effort_ semantics.
func (nat *NAT) MappedAddrs() map[ma.Multiaddr]ma.Multiaddr {

	mappings := nat.Mappings()
	addrmap := make(map[ma.Multiaddr]ma.Multiaddr, len(mappings))

	for _, m := range mappings {
		i := m.InternalAddr()
		e, err := m.ExternalAddr()
		if err != nil {
			addrmap[i] = nil
		} else {
			addrmap[i] = e
		}
	}
	return addrmap
}
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
391

392 393 394 395 396 397 398 399 400 401 402 403 404 405
// ExternalAddrs returns a list of addresses that NAT believes have
// been successfully established. Unsuccessful mappings are omitted,
// so nat.ExternalAddrs() may return less addresses than nat.InternalAddrs().
// To see which addresses are mapped, use nat.MappedAddrs().
//
// This set of mappings _may not_ be correct, as NAT devices are finicky.
// Consider this with _best effort_ semantics.
func (nat *NAT) ExternalAddrs() []ma.Multiaddr {
	mappings := nat.Mappings()
	addrs := make([]ma.Multiaddr, 0, len(mappings))
	for _, m := range mappings {
		a, err := m.ExternalAddr()
		if err != nil {
			continue // this mapping not currently successful.
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
406
		}
407
		addrs = append(addrs, a)
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
408
	}
409
	return addrs
Juan Batiz-Benet's avatar
Juan Batiz-Benet committed
410
}