1 // Copyright 2012 The Chromium Authors
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
4
5 #include "net/http/http_network_session.h"
6
7 #include <inttypes.h>
8
9 #include <utility>
10
11 #include "base/atomic_sequence_num.h"
12 #include "base/check_op.h"
13 #include "base/compiler_specific.h"
14 #include "base/containers/contains.h"
15 #include "base/notreached.h"
16 #include "base/strings/string_number_conversions.h"
17 #include "base/strings/string_util.h"
18 #include "base/values.h"
19 #include "build/build_config.h"
20 #include "net/base/features.h"
21 #include "net/dns/host_resolver.h"
22 #include "net/http/http_auth_handler_factory.h"
23 #include "net/http/http_response_body_drainer.h"
24 #include "net/http/http_stream_factory.h"
25 #include "net/http/url_security_manager.h"
26 #include "net/proxy_resolution/proxy_resolution_service.h"
27 #include "net/quic/platform/impl/quic_chromium_clock.h"
28 #include "net/quic/quic_crypto_client_stream_factory.h"
29 #include "net/quic/quic_stream_factory.h"
30 #include "net/socket/client_socket_factory.h"
31 #include "net/socket/client_socket_pool_manager_impl.h"
32 #include "net/socket/next_proto.h"
33 #include "net/socket/ssl_client_socket.h"
34 #include "net/spdy/spdy_session.h"
35 #include "net/spdy/spdy_session_pool.h"
36 #include "net/third_party/quiche/src/quiche/quic/core/crypto/quic_random.h"
37 #include "net/third_party/quiche/src/quiche/quic/core/quic_packets.h"
38 #include "net/third_party/quiche/src/quiche/quic/core/quic_tag.h"
39 #include "net/third_party/quiche/src/quiche/quic/core/quic_utils.h"
40
41 namespace net {
42
43 // The maximum receive window sizes for HTTP/2 sessions and streams.
44 const int32_t kSpdySessionMaxRecvWindowSize = 15 * 1024 * 1024; // 15 MB
45 const int32_t kSpdyStreamMaxRecvWindowSize = 6 * 1024 * 1024; // 6 MB
46
47 // Value of SETTINGS_ENABLE_PUSH reflecting that server push is not supported.
48 const uint32_t kSpdyDisablePush = 0;
49
50 namespace {
51
52 // Keep all HTTP2 parameters in |http2_settings|, even the ones that are not
53 // implemented, to be sent to the server.
54 // Set default values for settings that |http2_settings| does not specify.
AddDefaultHttp2Settings(spdy::SettingsMap http2_settings)55 spdy::SettingsMap AddDefaultHttp2Settings(spdy::SettingsMap http2_settings) {
56 // Server push is not supported.
57 http2_settings[spdy::SETTINGS_ENABLE_PUSH] = kSpdyDisablePush;
58
59 // For other setting parameters, set default values only if |http2_settings|
60 // does not have a value set for given setting.
61 auto it = http2_settings.find(spdy::SETTINGS_HEADER_TABLE_SIZE);
62 if (it == http2_settings.end())
63 http2_settings[spdy::SETTINGS_HEADER_TABLE_SIZE] = kSpdyMaxHeaderTableSize;
64
65 it = http2_settings.find(spdy::SETTINGS_INITIAL_WINDOW_SIZE);
66 if (it == http2_settings.end())
67 http2_settings[spdy::SETTINGS_INITIAL_WINDOW_SIZE] =
68 kSpdyStreamMaxRecvWindowSize;
69
70 it = http2_settings.find(spdy::SETTINGS_MAX_HEADER_LIST_SIZE);
71 if (it == http2_settings.end())
72 http2_settings[spdy::SETTINGS_MAX_HEADER_LIST_SIZE] =
73 kSpdyMaxHeaderListSize;
74
75 return http2_settings;
76 }
77
78 } // unnamed namespace
79
HttpNetworkSessionParams()80 HttpNetworkSessionParams::HttpNetworkSessionParams()
81 : spdy_session_max_recv_window_size(kSpdySessionMaxRecvWindowSize),
82 spdy_session_max_queued_capped_frames(kSpdySessionMaxQueuedCappedFrames),
83 time_func(&base::TimeTicks::Now) {
84 enable_early_data =
85 base::FeatureList::IsEnabled(features::kEnableTLS13EarlyData);
86 use_dns_https_svcb_alpn =
87 base::FeatureList::IsEnabled(features::kUseDnsHttpsSvcbAlpn);
88 }
89
90 HttpNetworkSessionParams::HttpNetworkSessionParams(
91 const HttpNetworkSessionParams& other) = default;
92
93 HttpNetworkSessionParams::~HttpNetworkSessionParams() = default;
94
HttpNetworkSessionContext()95 HttpNetworkSessionContext::HttpNetworkSessionContext()
96 : client_socket_factory(nullptr),
97 host_resolver(nullptr),
98 cert_verifier(nullptr),
99 transport_security_state(nullptr),
100 ct_policy_enforcer(nullptr),
101 sct_auditing_delegate(nullptr),
102 proxy_resolution_service(nullptr),
103 proxy_delegate(nullptr),
104 http_user_agent_settings(nullptr),
105 ssl_config_service(nullptr),
106 http_auth_handler_factory(nullptr),
107 net_log(nullptr),
108 socket_performance_watcher_factory(nullptr),
109 network_quality_estimator(nullptr),
110 quic_context(nullptr),
111 #if BUILDFLAG(ENABLE_REPORTING)
112 reporting_service(nullptr),
113 network_error_logging_service(nullptr),
114 #endif
115 quic_crypto_client_stream_factory(
116 QuicCryptoClientStreamFactory::GetDefaultFactory()) {
117 }
118
119 HttpNetworkSessionContext::HttpNetworkSessionContext(
120 const HttpNetworkSessionContext& other) = default;
121
122 HttpNetworkSessionContext::~HttpNetworkSessionContext() = default;
123
124 // TODO(mbelshe): Move the socket factories into HttpStreamFactory.
HttpNetworkSession(const HttpNetworkSessionParams & params,const HttpNetworkSessionContext & context)125 HttpNetworkSession::HttpNetworkSession(const HttpNetworkSessionParams& params,
126 const HttpNetworkSessionContext& context)
127 : net_log_(context.net_log),
128 http_server_properties_(context.http_server_properties),
129 cert_verifier_(context.cert_verifier),
130 http_auth_handler_factory_(context.http_auth_handler_factory),
131 host_resolver_(context.host_resolver),
132 #if BUILDFLAG(ENABLE_REPORTING)
133 reporting_service_(context.reporting_service),
134 network_error_logging_service_(context.network_error_logging_service),
135 #endif
136 proxy_resolution_service_(context.proxy_resolution_service),
137 ssl_config_service_(context.ssl_config_service),
138 http_auth_cache_(
139 params.key_auth_cache_server_entries_by_network_anonymization_key),
140 ssl_client_session_cache_(SSLClientSessionCache::Config()),
141 ssl_client_context_(context.ssl_config_service,
142 context.cert_verifier,
143 context.transport_security_state,
144 context.ct_policy_enforcer,
145 &ssl_client_session_cache_,
146 context.sct_auditing_delegate),
147 quic_stream_factory_(context.net_log,
148 context.host_resolver,
149 context.ssl_config_service,
150 context.client_socket_factory,
151 context.http_server_properties,
152 context.cert_verifier,
153 context.ct_policy_enforcer,
154 context.transport_security_state,
155 context.sct_auditing_delegate,
156 context.socket_performance_watcher_factory,
157 context.quic_crypto_client_stream_factory,
158 context.quic_context),
159 spdy_session_pool_(context.host_resolver,
160 &ssl_client_context_,
161 context.http_server_properties,
162 context.transport_security_state,
163 context.quic_context->params()->supported_versions,
164 params.enable_spdy_ping_based_connection_checking,
165 params.enable_http2,
166 params.enable_quic,
167 params.spdy_session_max_recv_window_size,
168 params.spdy_session_max_queued_capped_frames,
169 AddDefaultHttp2Settings(params.http2_settings),
170 params.enable_http2_settings_grease,
171 params.greased_http2_frame,
172 params.http2_end_stream_with_data_frame,
173 params.enable_priority_update,
174 params.spdy_go_away_on_ip_change,
175 params.time_func,
176 context.network_quality_estimator,
177 // cleanup_sessions_on_ip_address_changed
178 !params.ignore_ip_address_changes),
179 http_stream_factory_(std::make_unique<HttpStreamFactory>(this)),
180 params_(params),
181 context_(context) {
182 DCHECK(proxy_resolution_service_);
183 DCHECK(ssl_config_service_);
184 CHECK(http_server_properties_);
185 DCHECK(context_.client_socket_factory);
186
187 normal_socket_pool_manager_ = std::make_unique<ClientSocketPoolManagerImpl>(
188 CreateCommonConnectJobParams(false /* for_websockets */),
189 CreateCommonConnectJobParams(true /* for_websockets */),
190 NORMAL_SOCKET_POOL,
191 // cleanup_on_ip_address_change
192 !params.ignore_ip_address_changes);
193 websocket_socket_pool_manager_ =
194 std::make_unique<ClientSocketPoolManagerImpl>(
195 CreateCommonConnectJobParams(false /* for_websockets */),
196 CreateCommonConnectJobParams(true /* for_websockets */),
197 WEBSOCKET_SOCKET_POOL,
198 // cleanup_on_ip_address_change
199 !params.ignore_ip_address_changes);
200
201 if (params_.enable_http2) {
202 next_protos_.push_back(kProtoHTTP2);
203 if (base::FeatureList::IsEnabled(features::kAlpsForHttp2)) {
204 // Enable ALPS for HTTP/2 with empty data.
205 application_settings_[kProtoHTTP2] = {};
206 }
207 }
208
209 next_protos_.push_back(kProtoHTTP11);
210
211 http_server_properties_->SetMaxServerConfigsStoredInProperties(
212 context.quic_context->params()->max_server_configs_stored_in_properties);
213 http_server_properties_->SetBrokenAlternativeServicesDelayParams(
214 context.quic_context->params()
215 ->initial_delay_for_broken_alternative_service,
216 context.quic_context->params()->exponential_backoff_on_initial_delay);
217
218 if (!params_.disable_idle_sockets_close_on_memory_pressure) {
219 memory_pressure_listener_ = std::make_unique<base::MemoryPressureListener>(
220 FROM_HERE, base::BindRepeating(&HttpNetworkSession::OnMemoryPressure,
221 base::Unretained(this)));
222 }
223 }
224
~HttpNetworkSession()225 HttpNetworkSession::~HttpNetworkSession() {
226 DCHECK_CALLED_ON_VALID_THREAD(thread_checker_);
227 response_drainers_.clear();
228 // TODO(bnc): CloseAllSessions() is also called in SpdySessionPool destructor,
229 // one of the two calls should be removed.
230 spdy_session_pool_.CloseAllSessions();
231 }
232
StartResponseDrainer(std::unique_ptr<HttpResponseBodyDrainer> drainer)233 void HttpNetworkSession::StartResponseDrainer(
234 std::unique_ptr<HttpResponseBodyDrainer> drainer) {
235 DCHECK(!base::Contains(response_drainers_, drainer.get()));
236 HttpResponseBodyDrainer* drainer_ptr = drainer.get();
237 response_drainers_.insert(std::move(drainer));
238 drainer_ptr->Start(this);
239 }
240
RemoveResponseDrainer(HttpResponseBodyDrainer * drainer)241 void HttpNetworkSession::RemoveResponseDrainer(
242 HttpResponseBodyDrainer* drainer) {
243 DCHECK(base::Contains(response_drainers_, drainer));
244
245 response_drainers_.erase(response_drainers_.find(drainer));
246 }
247
GetSocketPool(SocketPoolType pool_type,const ProxyChain & proxy_chain)248 ClientSocketPool* HttpNetworkSession::GetSocketPool(
249 SocketPoolType pool_type,
250 const ProxyChain& proxy_chain) {
251 return GetSocketPoolManager(pool_type)->GetSocketPool(proxy_chain);
252 }
253
SocketPoolInfoToValue() const254 base::Value HttpNetworkSession::SocketPoolInfoToValue() const {
255 // TODO(yutak): Should merge values from normal pools and WebSocket pools.
256 return normal_socket_pool_manager_->SocketPoolInfoToValue();
257 }
258
SpdySessionPoolInfoToValue() const259 std::unique_ptr<base::Value> HttpNetworkSession::SpdySessionPoolInfoToValue()
260 const {
261 return spdy_session_pool_.SpdySessionPoolInfoToValue();
262 }
263
QuicInfoToValue() const264 base::Value HttpNetworkSession::QuicInfoToValue() const {
265 base::Value::Dict dict;
266 dict.Set("sessions", quic_stream_factory_.QuicStreamFactoryInfoToValue());
267 dict.Set("quic_enabled", IsQuicEnabled());
268
269 const QuicParams* quic_params = context_.quic_context->params();
270
271 base::Value::List connection_options;
272 for (const auto& option : quic_params->connection_options)
273 connection_options.Append(quic::QuicTagToString(option));
274 dict.Set("connection_options", std::move(connection_options));
275
276 base::Value::List supported_versions;
277 for (const auto& version : quic_params->supported_versions)
278 supported_versions.Append(ParsedQuicVersionToString(version));
279 dict.Set("supported_versions", std::move(supported_versions));
280
281 base::Value::List origins_to_force_quic_on;
282 for (const auto& origin : quic_params->origins_to_force_quic_on)
283 origins_to_force_quic_on.Append(origin.ToString());
284 dict.Set("origins_to_force_quic_on", std::move(origins_to_force_quic_on));
285
286 dict.Set("max_packet_length",
287 static_cast<int>(quic_params->max_packet_length));
288 dict.Set(
289 "max_server_configs_stored_in_properties",
290 static_cast<int>(quic_params->max_server_configs_stored_in_properties));
291 dict.Set("idle_connection_timeout_seconds",
292 static_cast<int>(quic_params->idle_connection_timeout.InSeconds()));
293 dict.Set("reduced_ping_timeout_seconds",
294 static_cast<int>(quic_params->reduced_ping_timeout.InSeconds()));
295 dict.Set("retry_without_alt_svc_on_quic_errors",
296 quic_params->retry_without_alt_svc_on_quic_errors);
297 dict.Set("close_sessions_on_ip_change",
298 quic_params->close_sessions_on_ip_change);
299 dict.Set("goaway_sessions_on_ip_change",
300 quic_params->goaway_sessions_on_ip_change);
301 dict.Set("migrate_sessions_on_network_change_v2",
302 quic_params->migrate_sessions_on_network_change_v2);
303 dict.Set("migrate_sessions_early_v2", quic_params->migrate_sessions_early_v2);
304 dict.Set("retransmittable_on_wire_timeout_milliseconds",
305 static_cast<int>(
306 quic_params->retransmittable_on_wire_timeout.InMilliseconds()));
307 dict.Set("retry_on_alternate_network_before_handshake",
308 quic_params->retry_on_alternate_network_before_handshake);
309 dict.Set("migrate_idle_sessions", quic_params->migrate_idle_sessions);
310 dict.Set(
311 "idle_session_migration_period_seconds",
312 static_cast<int>(quic_params->idle_session_migration_period.InSeconds()));
313 dict.Set("max_time_on_non_default_network_seconds",
314 static_cast<int>(
315 quic_params->max_time_on_non_default_network.InSeconds()));
316 dict.Set("max_num_migrations_to_non_default_network_on_write_error",
317 quic_params->max_migrations_to_non_default_network_on_write_error);
318 dict.Set(
319 "max_num_migrations_to_non_default_network_on_path_degrading",
320 quic_params->max_migrations_to_non_default_network_on_path_degrading);
321 dict.Set("allow_server_migration", quic_params->allow_server_migration);
322 dict.Set("estimate_initial_rtt", quic_params->estimate_initial_rtt);
323 dict.Set("initial_rtt_for_handshake_milliseconds",
324 static_cast<int>(
325 quic_params->initial_rtt_for_handshake.InMilliseconds()));
326
327 return base::Value(std::move(dict));
328 }
329
CloseAllConnections(int net_error,const char * net_log_reason_utf8)330 void HttpNetworkSession::CloseAllConnections(int net_error,
331 const char* net_log_reason_utf8) {
332 normal_socket_pool_manager_->FlushSocketPoolsWithError(net_error,
333 net_log_reason_utf8);
334 websocket_socket_pool_manager_->FlushSocketPoolsWithError(
335 net_error, net_log_reason_utf8);
336 spdy_session_pool_.CloseCurrentSessions(static_cast<net::Error>(net_error));
337 quic_stream_factory_.CloseAllSessions(net_error, quic::QUIC_PEER_GOING_AWAY);
338 }
339
CloseIdleConnections(const char * net_log_reason_utf8)340 void HttpNetworkSession::CloseIdleConnections(const char* net_log_reason_utf8) {
341 normal_socket_pool_manager_->CloseIdleSockets(net_log_reason_utf8);
342 websocket_socket_pool_manager_->CloseIdleSockets(net_log_reason_utf8);
343 spdy_session_pool_.CloseCurrentIdleSessions(net_log_reason_utf8);
344 }
345
IsQuicEnabled() const346 bool HttpNetworkSession::IsQuicEnabled() const {
347 return params_.enable_quic;
348 }
349
DisableQuic()350 void HttpNetworkSession::DisableQuic() {
351 params_.enable_quic = false;
352 }
353
IgnoreCertificateErrorsForTesting()354 void HttpNetworkSession::IgnoreCertificateErrorsForTesting() {
355 params_.ignore_certificate_errors = true;
356 }
357
ClearSSLSessionCache()358 void HttpNetworkSession::ClearSSLSessionCache() {
359 ssl_client_session_cache_.Flush();
360 }
361
CreateCommonConnectJobParams(bool for_websockets)362 CommonConnectJobParams HttpNetworkSession::CreateCommonConnectJobParams(
363 bool for_websockets) {
364 // Use null websocket_endpoint_lock_manager, which is only set for WebSockets,
365 // and only when not using a proxy.
366 return CommonConnectJobParams(
367 context_.client_socket_factory, context_.host_resolver, &http_auth_cache_,
368 context_.http_auth_handler_factory, &spdy_session_pool_,
369 &context_.quic_context->params()->supported_versions,
370 &quic_stream_factory_, context_.proxy_delegate,
371 context_.http_user_agent_settings, &ssl_client_context_,
372 context_.socket_performance_watcher_factory,
373 context_.network_quality_estimator, context_.net_log,
374 for_websockets ? &websocket_endpoint_lock_manager_ : nullptr,
375 context_.http_server_properties, &next_protos_, &application_settings_,
376 ¶ms_.ignore_certificate_errors);
377 }
378
GetSocketPoolManager(SocketPoolType pool_type)379 ClientSocketPoolManager* HttpNetworkSession::GetSocketPoolManager(
380 SocketPoolType pool_type) {
381 switch (pool_type) {
382 case NORMAL_SOCKET_POOL:
383 return normal_socket_pool_manager_.get();
384 case WEBSOCKET_SOCKET_POOL:
385 return websocket_socket_pool_manager_.get();
386 default:
387 NOTREACHED();
388 break;
389 }
390 return nullptr;
391 }
392
OnMemoryPressure(base::MemoryPressureListener::MemoryPressureLevel memory_pressure_level)393 void HttpNetworkSession::OnMemoryPressure(
394 base::MemoryPressureListener::MemoryPressureLevel memory_pressure_level) {
395 DCHECK(!params_.disable_idle_sockets_close_on_memory_pressure);
396
397 switch (memory_pressure_level) {
398 case base::MemoryPressureListener::MEMORY_PRESSURE_LEVEL_NONE:
399 break;
400
401 case base::MemoryPressureListener::MEMORY_PRESSURE_LEVEL_MODERATE:
402 case base::MemoryPressureListener::MEMORY_PRESSURE_LEVEL_CRITICAL:
403 CloseIdleConnections("Low memory");
404 break;
405 }
406 }
407
408 } // namespace net
409