This repository has been archived by the owner on Jun 28, 2022. It is now read-only.
forked from bronze1man/radius
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathserver.go
118 lines (101 loc) · 2.42 KB
/
server.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
package radius
import (
"net"
"sync"
"time"
)
const AUTH_PORT = 1812
const ACCOUNTING_PORT = 1813
type Server struct {
addr string
secret string
service Service
ch chan struct{}
waitGroup *sync.WaitGroup
cl *ClientList
}
// ServerChallenges stores the challenges sent to peers.
// The key is the EAP Identifier field
var ServerChallenges map[uint8][]byte
// PeerMSK stores the password and ntResponse of a successful challenge response for generating the MSK upon AccessAccept.
// The key is the EAP Identifier field
var PeerMSK map[uint8]map[string][]byte
type Service interface {
RadiusHandle(request *Packet) *Packet
}
// NewServer return a new Server given a addr, secret, and service
func NewServer(addr string, secret string, service Service) *Server {
// init EAP state vars
ServerChallenges = map[uint8][]byte{}
PeerMSK = map[uint8]map[string][]byte{}
s := &Server{addr: addr,
secret: secret,
service: service,
ch: make(chan struct{}),
waitGroup: &sync.WaitGroup{},
}
return s
}
// WithClientList set a list of clients that have it's own secret
func (s *Server) WithClientList(cl *ClientList) {
s.cl = cl
}
// ListenAndServe listen on the UDP network address
func (s *Server) ListenAndServe() error {
addr, err := net.ResolveUDPAddr("udp", s.addr)
if err != nil {
return err
}
conn, err := net.ListenUDP("udp", addr)
if err != nil {
return err
}
defer conn.Close()
for {
select {
case <-s.ch:
return nil
default:
}
conn.SetDeadline(time.Now().Add(2 * time.Second))
b := make([]byte, 4096)
n, addr, err := conn.ReadFrom(b)
if err != nil {
if opErr, ok := err.(*net.OpError); ok && opErr.Timeout() {
continue
}
return err
}
s.waitGroup.Add(1)
go func(p []byte, addr net.Addr) {
defer s.waitGroup.Done()
var secret = s.secret
if s.cl != nil {
host, _, err := net.SplitHostPort(addr.String())
if err != nil {
errlog("net.SplitHostPort: %s", err)
return
}
if cl := s.cl.Get(host); cl != nil {
secret = cl.GetSecret()
}
}
pac, err := DecodePacket(secret, p)
if err != nil {
errlog("DecodePacket: %s", err)
return
}
pac.ClientAddr = addr.String()
npac := s.service.RadiusHandle(pac)
err = npac.Send(conn, addr)
if err != nil {
errlog("npac.Send: %s", err)
}
}(b[:n], addr)
}
}
// Stop will stop the server
func (s *Server) Stop() {
close(s.ch)
s.waitGroup.Wait()
}