qsslsocket.h 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239
  1. /****************************************************************************
  2. **
  3. ** Copyright (C) 2016 The Qt Company Ltd.
  4. ** Contact: https://www.qt.io/licensing/
  5. **
  6. ** This file is part of the QtNetwork module of the Qt Toolkit.
  7. **
  8. ** $QT_BEGIN_LICENSE:LGPL$
  9. ** Commercial License Usage
  10. ** Licensees holding valid commercial Qt licenses may use this file in
  11. ** accordance with the commercial license agreement provided with the
  12. ** Software or, alternatively, in accordance with the terms contained in
  13. ** a written agreement between you and The Qt Company. For licensing terms
  14. ** and conditions see https://www.qt.io/terms-conditions. For further
  15. ** information use the contact form at https://www.qt.io/contact-us.
  16. **
  17. ** GNU Lesser General Public License Usage
  18. ** Alternatively, this file may be used under the terms of the GNU Lesser
  19. ** General Public License version 3 as published by the Free Software
  20. ** Foundation and appearing in the file LICENSE.LGPL3 included in the
  21. ** packaging of this file. Please review the following information to
  22. ** ensure the GNU Lesser General Public License version 3 requirements
  23. ** will be met: https://www.gnu.org/licenses/lgpl-3.0.html.
  24. **
  25. ** GNU General Public License Usage
  26. ** Alternatively, this file may be used under the terms of the GNU
  27. ** General Public License version 2.0 or (at your option) the GNU General
  28. ** Public license version 3 or any later version approved by the KDE Free
  29. ** Qt Foundation. The licenses are as published by the Free Software
  30. ** Foundation and appearing in the file LICENSE.GPL2 and LICENSE.GPL3
  31. ** included in the packaging of this file. Please review the following
  32. ** information to ensure the GNU General Public License requirements will
  33. ** be met: https://www.gnu.org/licenses/gpl-2.0.html and
  34. ** https://www.gnu.org/licenses/gpl-3.0.html.
  35. **
  36. ** $QT_END_LICENSE$
  37. **
  38. ****************************************************************************/
  39. #ifndef QSSLSOCKET_H
  40. #define QSSLSOCKET_H
  41. #include <QtCore/qlist.h>
  42. #include <QtCore/qregexp.h>
  43. #ifndef QT_NO_SSL
  44. # include <QtNetwork/qtcpsocket.h>
  45. # include <QtNetwork/qsslerror.h>
  46. #endif
  47. QT_BEGIN_NAMESPACE
  48. #ifndef QT_NO_SSL
  49. class QDir;
  50. class QSslCipher;
  51. class QSslCertificate;
  52. class QSslConfiguration;
  53. class QSslEllipticCurve;
  54. class QSslPreSharedKeyAuthenticator;
  55. class QSslSocketPrivate;
  56. class Q_NETWORK_EXPORT QSslSocket : public QTcpSocket
  57. {
  58. Q_OBJECT
  59. public:
  60. enum SslMode {
  61. UnencryptedMode,
  62. SslClientMode,
  63. SslServerMode
  64. };
  65. enum PeerVerifyMode {
  66. VerifyNone,
  67. QueryPeer,
  68. VerifyPeer,
  69. AutoVerifyPeer
  70. };
  71. explicit QSslSocket(QObject *parent = Q_NULLPTR);
  72. ~QSslSocket();
  73. void resume() Q_DECL_OVERRIDE; // to continue after proxy authentication required, SSL errors etc.
  74. // Autostarting the SSL client handshake.
  75. void connectToHostEncrypted(const QString &hostName, quint16 port, OpenMode mode = ReadWrite, NetworkLayerProtocol protocol = AnyIPProtocol);
  76. void connectToHostEncrypted(const QString &hostName, quint16 port, const QString &sslPeerName, OpenMode mode = ReadWrite, NetworkLayerProtocol protocol = AnyIPProtocol);
  77. bool setSocketDescriptor(qintptr socketDescriptor, SocketState state = ConnectedState,
  78. OpenMode openMode = ReadWrite) Q_DECL_OVERRIDE;
  79. using QAbstractSocket::connectToHost;
  80. void connectToHost(const QString &hostName, quint16 port, OpenMode openMode = ReadWrite, NetworkLayerProtocol protocol = AnyIPProtocol) Q_DECL_OVERRIDE;
  81. void disconnectFromHost() Q_DECL_OVERRIDE;
  82. virtual void setSocketOption(QAbstractSocket::SocketOption option, const QVariant &value) Q_DECL_OVERRIDE;
  83. virtual QVariant socketOption(QAbstractSocket::SocketOption option) Q_DECL_OVERRIDE;
  84. SslMode mode() const;
  85. bool isEncrypted() const;
  86. QSsl::SslProtocol protocol() const;
  87. void setProtocol(QSsl::SslProtocol protocol);
  88. QSslSocket::PeerVerifyMode peerVerifyMode() const;
  89. void setPeerVerifyMode(QSslSocket::PeerVerifyMode mode);
  90. int peerVerifyDepth() const;
  91. void setPeerVerifyDepth(int depth);
  92. QString peerVerifyName() const;
  93. void setPeerVerifyName(const QString &hostName);
  94. // From QIODevice
  95. qint64 bytesAvailable() const Q_DECL_OVERRIDE;
  96. qint64 bytesToWrite() const Q_DECL_OVERRIDE;
  97. bool canReadLine() const Q_DECL_OVERRIDE;
  98. void close() Q_DECL_OVERRIDE;
  99. bool atEnd() const Q_DECL_OVERRIDE;
  100. bool flush();
  101. void abort();
  102. // From QAbstractSocket:
  103. void setReadBufferSize(qint64 size) Q_DECL_OVERRIDE;
  104. // Similar to QIODevice's:
  105. qint64 encryptedBytesAvailable() const;
  106. qint64 encryptedBytesToWrite() const;
  107. // SSL configuration
  108. QSslConfiguration sslConfiguration() const;
  109. void setSslConfiguration(const QSslConfiguration &config);
  110. // Certificate & cipher accessors.
  111. void setLocalCertificateChain(const QList<QSslCertificate> &localChain);
  112. QList<QSslCertificate> localCertificateChain() const;
  113. void setLocalCertificate(const QSslCertificate &certificate);
  114. void setLocalCertificate(const QString &fileName, QSsl::EncodingFormat format = QSsl::Pem);
  115. QSslCertificate localCertificate() const;
  116. QSslCertificate peerCertificate() const;
  117. QList<QSslCertificate> peerCertificateChain() const;
  118. QSslCipher sessionCipher() const;
  119. QSsl::SslProtocol sessionProtocol() const;
  120. // Private keys, for server sockets.
  121. void setPrivateKey(const QSslKey &key);
  122. void setPrivateKey(const QString &fileName, QSsl::KeyAlgorithm algorithm = QSsl::Rsa,
  123. QSsl::EncodingFormat format = QSsl::Pem,
  124. const QByteArray &passPhrase = QByteArray());
  125. QSslKey privateKey() const;
  126. // Cipher settings.
  127. #if QT_DEPRECATED_SINCE(5, 5)
  128. QT_DEPRECATED_X("Use QSslConfiguration::ciphers()") QList<QSslCipher> ciphers() const;
  129. QT_DEPRECATED_X("Use QSslConfiguration::setCiphers()") void setCiphers(const QList<QSslCipher> &ciphers);
  130. QT_DEPRECATED void setCiphers(const QString &ciphers);
  131. QT_DEPRECATED static void setDefaultCiphers(const QList<QSslCipher> &ciphers);
  132. QT_DEPRECATED static QList<QSslCipher> defaultCiphers();
  133. QT_DEPRECATED_X("Use QSslConfiguration::supportedCiphers()") static QList<QSslCipher> supportedCiphers();
  134. #endif // QT_DEPRECATED_SINCE(5, 5)
  135. // CA settings.
  136. bool addCaCertificates(const QString &path, QSsl::EncodingFormat format = QSsl::Pem,
  137. QRegExp::PatternSyntax syntax = QRegExp::FixedString);
  138. void addCaCertificate(const QSslCertificate &certificate);
  139. void addCaCertificates(const QList<QSslCertificate> &certificates);
  140. #if QT_DEPRECATED_SINCE(5, 5)
  141. QT_DEPRECATED_X("Use QSslConfiguration::setCaCertificates()") void setCaCertificates(const QList<QSslCertificate> &certificates);
  142. QT_DEPRECATED_X("Use QSslConfiguration::caCertificates()") QList<QSslCertificate> caCertificates() const;
  143. #endif // QT_DEPRECATED_SINCE(5, 5)
  144. static bool addDefaultCaCertificates(const QString &path, QSsl::EncodingFormat format = QSsl::Pem,
  145. QRegExp::PatternSyntax syntax = QRegExp::FixedString);
  146. static void addDefaultCaCertificate(const QSslCertificate &certificate);
  147. static void addDefaultCaCertificates(const QList<QSslCertificate> &certificates);
  148. #if QT_DEPRECATED_SINCE(5, 5)
  149. QT_DEPRECATED static void setDefaultCaCertificates(const QList<QSslCertificate> &certificates);
  150. QT_DEPRECATED static QList<QSslCertificate> defaultCaCertificates();
  151. QT_DEPRECATED_X("Use QSslConfiguration::systemCaCertificates()") static QList<QSslCertificate> systemCaCertificates();
  152. #endif // QT_DEPRECATED_SINCE(5, 5)
  153. bool waitForConnected(int msecs = 30000) Q_DECL_OVERRIDE;
  154. bool waitForEncrypted(int msecs = 30000);
  155. bool waitForReadyRead(int msecs = 30000) Q_DECL_OVERRIDE;
  156. bool waitForBytesWritten(int msecs = 30000) Q_DECL_OVERRIDE;
  157. bool waitForDisconnected(int msecs = 30000) Q_DECL_OVERRIDE;
  158. QList<QSslError> sslErrors() const;
  159. static bool supportsSsl();
  160. static long sslLibraryVersionNumber();
  161. static QString sslLibraryVersionString();
  162. static long sslLibraryBuildVersionNumber();
  163. static QString sslLibraryBuildVersionString();
  164. void ignoreSslErrors(const QList<QSslError> &errors);
  165. public Q_SLOTS:
  166. void startClientEncryption();
  167. void startServerEncryption();
  168. void ignoreSslErrors();
  169. Q_SIGNALS:
  170. void encrypted();
  171. void peerVerifyError(const QSslError &error);
  172. void sslErrors(const QList<QSslError> &errors);
  173. void modeChanged(QSslSocket::SslMode newMode);
  174. void encryptedBytesWritten(qint64 totalBytes);
  175. void preSharedKeyAuthenticationRequired(QSslPreSharedKeyAuthenticator *authenticator);
  176. protected:
  177. qint64 readData(char *data, qint64 maxlen) Q_DECL_OVERRIDE;
  178. qint64 writeData(const char *data, qint64 len) Q_DECL_OVERRIDE;
  179. private:
  180. Q_DECLARE_PRIVATE(QSslSocket)
  181. Q_DISABLE_COPY(QSslSocket)
  182. Q_PRIVATE_SLOT(d_func(), void _q_connectedSlot())
  183. Q_PRIVATE_SLOT(d_func(), void _q_hostFoundSlot())
  184. Q_PRIVATE_SLOT(d_func(), void _q_disconnectedSlot())
  185. Q_PRIVATE_SLOT(d_func(), void _q_stateChangedSlot(QAbstractSocket::SocketState))
  186. Q_PRIVATE_SLOT(d_func(), void _q_errorSlot(QAbstractSocket::SocketError))
  187. Q_PRIVATE_SLOT(d_func(), void _q_readyReadSlot())
  188. Q_PRIVATE_SLOT(d_func(), void _q_channelReadyReadSlot(int))
  189. Q_PRIVATE_SLOT(d_func(), void _q_bytesWrittenSlot(qint64))
  190. Q_PRIVATE_SLOT(d_func(), void _q_channelBytesWrittenSlot(int, qint64))
  191. Q_PRIVATE_SLOT(d_func(), void _q_flushWriteBuffer())
  192. Q_PRIVATE_SLOT(d_func(), void _q_flushReadBuffer())
  193. Q_PRIVATE_SLOT(d_func(), void _q_resumeImplementation())
  194. #if defined(Q_OS_WIN) && !defined(Q_OS_WINRT)
  195. Q_PRIVATE_SLOT(d_func(), void _q_caRootLoaded(QSslCertificate,QSslCertificate))
  196. #endif
  197. friend class QSslSocketBackendPrivate;
  198. };
  199. #endif // QT_NO_SSL
  200. QT_END_NAMESPACE
  201. #endif