3 # Electrum - lightweight Bitcoin client
4 # Copyright (C) 2011 thomasv@gitorious
6 # This program is free software: you can redistribute it and/or modify
7 # it under the terms of the GNU General Public License as published by
8 # the Free Software Foundation, either version 3 of the License, or
9 # (at your option) any later version.
11 # This program is distributed in the hope that it will be useful,
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 # GNU General Public License for more details.
16 # You should have received a copy of the GNU General Public License
17 # along with this program. If not, see <http://www.gnu.org/licenses/>.
20 import random, ast, re, errno, os
21 import threading, traceback, sys, time, json, Queue
26 from version import ELECTRUM_VERSION, PROTOCOL_VERSION
27 from util import print_error, print_msg
28 from simple_config import SimpleConfig
32 proxy_modes = ['socks4', 'socks5', 'http']
35 def check_cert(host, cert):
36 from OpenSSL import crypto as c
37 _cert = c.load_certificate(c.FILETYPE_PEM, cert)
40 m += "has_expired: %s\n"% _cert.has_expired()
41 m += "pubkey: %s bits\n" % _cert.get_pubkey().bits()
42 m += "serial number: %s\n"% _cert.get_serial_number()
43 #m += "issuer: %s\n"% _cert.get_issuer()
44 #m += "algo: %s\n"% _cert.get_signature_algorithm()
45 m += "version: %s\n"% _cert.get_version()
49 def cert_has_expired(cert_path):
53 print_error("Warning: cannot import OpenSSL")
55 from OpenSSL import crypto as c
56 with open(cert_path) as f:
58 _cert = c.load_certificate(c.FILETYPE_PEM, cert)
59 return _cert.has_expired()
62 def check_certificates():
63 config = SimpleConfig()
64 mydir = os.path.join(config.path, "certs")
65 certs = os.listdir(mydir)
68 p = os.path.join(mydir,c)
74 def cert_verify_hostname(s):
75 # hostname verification (disabled)
76 from backports.ssl_match_hostname import match_hostname, CertificateError
78 match_hostname(s.getpeercert(True), host)
79 print_error("hostname matches", host)
80 except CertificateError, ce:
81 print_error("hostname did not match", host)
85 class Interface(threading.Thread):
88 def __init__(self, server, config = None):
90 threading.Thread.__init__(self)
92 self.config = config if config is not None else SimpleConfig()
93 self.connect_event = threading.Event()
95 self.subscriptions = {}
96 self.lock = threading.Lock()
99 self.bytes_received = 0
100 self.is_connected = False
101 self.poll_interval = 1
103 self.debug = False # dump network messages. can be changed at runtime using the console
107 self.unanswered_requests = {}
108 self.pending_transactions_for_notifications= []
113 host, port, protocol = self.server.split(':')
119 if protocol not in 'ghst':
120 raise Exception('Unknown protocol: %s'%protocol)
124 self.protocol = protocol
125 self.use_ssl = ( protocol in 'sg' )
126 self.proxy = self.parse_proxy_options(self.config.get('proxy'))
128 self.proxy_mode = proxy_modes.index(self.proxy["mode"]) + 1
134 def queue_json_response(self, c):
138 print_error( "<--",c )
141 error = c.get('error')
144 print_error("received error:", c)
145 if msg_id is not None:
147 method, params, callback = self.unanswered_requests.pop(msg_id)
148 callback(self,{'method':method, 'params':params, 'error':error, 'id':msg_id})
152 if msg_id is not None:
154 method, params, callback = self.unanswered_requests.pop(msg_id)
155 result = c.get('result')
159 method = c.get('method')
160 params = c.get('params')
162 if method == 'blockchain.numblocks.subscribe':
166 elif method == 'blockchain.headers.subscribe':
170 elif method == 'blockchain.address.subscribe':
176 for k,v in self.subscriptions.items():
177 if (method, params) in v:
181 print_error( "received unexpected notification", method, params)
182 print_error( self.subscriptions )
186 callback(self, {'method':method, 'params':params, 'result':result, 'id':msg_id})
189 def on_version(self, i, result):
190 self.server_version = result
193 def start_http(self):
194 self.session_id = None
195 self.is_connected = True
196 self.connection_msg = ('https' if self.use_ssl else 'http') + '://%s:%d'%( self.host, self.port )
200 print_error("http init session failed")
201 self.is_connected = False
205 print_error('http session:',self.session_id)
206 self.is_connected = True
208 self.is_connected = False
211 self.is_connected = True
212 while self.is_connected:
216 time.sleep(self.poll_interval)
217 except socket.gaierror:
222 traceback.print_exc(file=sys.stdout)
225 self.is_connected = False
232 def send_http(self, messages, callback):
233 import urllib2, json, time, cookielib
234 print_error( "send_http", messages )
237 socks.setdefaultproxy(self.proxy_mode, self.proxy["host"], int(self.proxy["port"]) )
238 socks.wrapmodule(urllib2)
240 cj = cookielib.CookieJar()
241 opener = urllib2.build_opener(urllib2.HTTPCookieProcessor(cj))
242 urllib2.install_opener(opener)
250 if type(params) != type([]): params = [params]
251 data.append( { 'method':method, 'id':self.message_id, 'params':params } )
252 self.unanswered_requests[self.message_id] = method, params, callback
253 ids.append(self.message_id)
257 data_json = json.dumps(data)
263 headers = {'content-type': 'application/json'}
265 headers['cookie'] = 'SESSION=%s'%self.session_id
268 req = urllib2.Request(self.connection_msg, data_json, headers)
269 response_stream = urllib2.urlopen(req, timeout=DEFAULT_TIMEOUT)
273 for index, cookie in enumerate(cj):
274 if cookie.name=='SESSION':
275 self.session_id = cookie.value
277 response = response_stream.read()
278 self.bytes_received += len(response)
280 response = json.loads( response )
281 if type(response) is not type([]):
282 self.queue_json_response(response)
284 for item in response:
285 self.queue_json_response(item)
288 self.poll_interval = 1
290 if self.poll_interval < 15:
291 self.poll_interval += 1
292 #print self.poll_interval, response
294 self.rtime = time.time() - t1
295 self.is_connected = True
303 self.connection_msg = self.host + ':%d' % self.port
305 if self.proxy is not None:
307 socks.setdefaultproxy(self.proxy_mode, self.proxy["host"], int(self.proxy["port"]))
308 socket.socket = socks.socksocket
309 # prevent dns leaks, see http://stackoverflow.com/questions/13184205/dns-over-proxy
310 def getaddrinfo(*args):
311 return [(socket.AF_INET, socket.SOCK_STREAM, 6, '', (args[0], args[1]))]
312 socket.getaddrinfo = getaddrinfo
315 cert_path = os.path.join( self.config.path, 'certs', self.host)
317 if not os.path.exists(cert_path):
319 # get server certificate.
320 # Do not use ssl.get_server_certificate because it does not work with proxy
322 l = socket.getaddrinfo(self.host, self.port, socket.AF_UNSPEC, socket.SOCK_STREAM)
323 except socket.gaierror:
324 print_error("error: cannot resolve", self.host)
329 s = socket.socket( res[0], socket.SOCK_STREAM )
336 s = ssl.wrap_socket(s, ssl_version=ssl.PROTOCOL_SSLv3, cert_reqs=ssl.CERT_NONE, ca_certs=None)
337 except ssl.SSLError, e:
338 print_error("SSL error retrieving SSL certificate:", self.host, e)
346 dercert = s.getpeercert(True)
348 cert = ssl.DER_cert_to_PEM_cert(dercert)
349 # workaround android bug
350 cert = re.sub("([^\n])-----END CERTIFICATE-----","\\1\n-----END CERTIFICATE-----",cert)
351 temporary_path = cert_path + '.temp'
352 with open(temporary_path,"w") as f:
359 addrinfo = socket.getaddrinfo(self.host, self.port, socket.AF_UNSPEC, socket.SOCK_STREAM)
360 except socket.gaierror:
361 print_error("error: cannot resolve", self.host)
366 s = socket.socket( res[0], socket.SOCK_STREAM )
368 s.setsockopt(socket.SOL_SOCKET, socket.SO_KEEPALIVE, 1)
376 print_error("failed to connect", self.host, self.port)
381 s = ssl.wrap_socket(s,
382 ssl_version=ssl.PROTOCOL_SSLv3,
383 cert_reqs=ssl.CERT_REQUIRED,
384 ca_certs= (temporary_path if is_new else cert_path),
385 do_handshake_on_connect=True)
386 except ssl.SSLError, e:
387 print_error("SSL error:", self.host, e)
391 rej = cert_path + '.rej'
392 if os.path.exists(rej):
394 os.rename(temporary_path, rej)
396 if cert_has_expired(cert_path):
397 print_error("certificate has expired:", cert_path)
400 print_msg("wrong certificate", self.host)
403 print_error("wrap_socket failed", self.host)
404 traceback.print_exc(file=sys.stdout)
408 print_error("saving certificate for", self.host)
409 os.rename(temporary_path, cert_path)
413 self.is_connected = True
414 print_error("connected to", self.host, self.port)
419 #if self.use_ssl: self.s.do_handshake()
421 while self.is_connected:
424 msg = self.s.recv(1024)
425 except socket.timeout:
429 except socket.error, err:
430 if err.errno in [11, 10035]:
431 print_error("socket errno", err.errno)
435 traceback.print_exc(file=sys.stdout)
439 # ping the server with server.version, as a real ping does not exist yet
440 self.send([('server.version', [ELECTRUM_VERSION, PROTOCOL_VERSION])], self.on_version)
444 self.bytes_received += len(msg)
446 self.is_connected = False
454 self.queue_json_response(c)
457 traceback.print_exc(file=sys.stdout)
459 self.is_connected = False
462 def send_tcp(self, messages, callback):
463 """return the ids of the requests that we sent"""
468 request = json.dumps( { 'id':self.message_id, 'method':method, 'params':params } )
469 self.unanswered_requests[self.message_id] = method, params, callback
470 ids.append(self.message_id)
474 out += request + '\n'
477 sent = self.s.send( out )
479 except socket.error,e:
480 if e[0] in (errno.EWOULDBLOCK,errno.EAGAIN):
481 print_error( "EAGAIN: retrying")
485 traceback.print_exc(file=sys.stdout)
486 # this happens when we get disconnected
487 print_error( "Not connected, cannot send" )
495 def start_interface(self):
497 if self.protocol in 'st':
499 elif self.protocol in 'gh':
502 self.connect_event.set()
506 def stop_subscriptions(self):
507 for callback in self.subscriptions.keys():
509 self.subscriptions = {}
512 def send(self, messages, callback):
515 for message in messages:
517 if m[-10:] == '.subscribe':
522 if self.subscriptions.get(callback) is None:
523 self.subscriptions[callback] = []
525 if message not in self.subscriptions[callback]:
526 self.subscriptions[callback].append(message)
528 if not self.is_connected:
529 print_error("interface: trying to send while not connected")
532 if self.protocol in 'st':
534 out = self.send_tcp(messages, callback)
536 # do not use lock, http is synchronous
537 out = self.send_http(messages, callback)
542 def parse_proxy_options(self, s):
543 if type(s) == type({}): return s # fixme: type should be fixed
544 if type(s) != type(""): return None
545 if s.lower() == 'none': return None
546 proxy = { "mode":"socks5", "host":"localhost" }
549 if proxy_modes.count(args[n]) == 1:
550 proxy["mode"] = args[n]
553 proxy["host"] = args[n]
556 proxy["port"] = args[n]
558 proxy["port"] = "8080" if proxy["mode"] == "http" else "1080"
564 if self.is_connected and self.protocol in 'st' and self.s:
565 self.s.shutdown(socket.SHUT_RDWR)
568 self.is_connected = False
571 def is_up_to_date(self):
572 return self.unanswered_requests == {}
576 def start(self, queue = None, wait = False):
579 self.queue = queue if queue else Queue.Queue()
580 threading.Thread.start(self)
582 self.connect_event.wait()
586 self.start_interface()
587 if self.is_connected:
588 self.send([('server.version', [ELECTRUM_VERSION, PROTOCOL_VERSION])], self.on_version)
590 self.run_tcp() if self.protocol in 'st' else self.run_http()
594 def change_status(self):
595 #print "change status", self.server, self.is_connected
600 if __name__ == "__main__":