blob: 0414cac9260c46fb1cfd877bd2ec69f0301ab670 [file] [log] [blame]
Amit Ghoshc9ac1e52017-07-28 12:31:18 +01001/*
2 * Copyright 2017-present Open Networking Foundation
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
Matteo Scandolocf847b82019-04-26 15:00:00 -070016package org.opencord.aaa.impl;
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010017
Shubham Sharma4900ce62019-06-19 14:18:50 +000018import com.google.common.util.concurrent.ThreadFactoryBuilder;
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010019import org.onlab.packet.DeserializationException;
20import org.onlab.packet.EthType;
21import org.onlab.packet.Ethernet;
22import org.onlab.packet.RADIUS;
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010023import org.onosproject.core.ApplicationId;
24import org.onosproject.net.flow.DefaultTrafficSelector;
25import org.onosproject.net.flow.TrafficSelector;
26import org.onosproject.net.packet.InboundPacket;
27import org.onosproject.net.packet.PacketContext;
28import org.onosproject.net.packet.PacketService;
Matteo Scandolocf847b82019-04-26 15:00:00 -070029import org.opencord.aaa.AaaConfig;
30import org.opencord.aaa.RadiusCommunicator;
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010031import org.slf4j.Logger;
32
Shubham Sharma4900ce62019-06-19 14:18:50 +000033import java.io.IOException;
34import java.net.DatagramPacket;
35import java.net.DatagramSocket;
36import java.net.InetAddress;
37import java.net.InetSocketAddress;
38import java.net.UnknownHostException;
39import java.util.concurrent.ExecutorService;
40import java.util.concurrent.Executors;
41
42import static org.onosproject.net.packet.PacketPriority.CONTROL;
43import static org.slf4j.LoggerFactory.getLogger;
Jonathan Hartf935b122018-07-11 16:16:02 -070044
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010045/**
46 * Handles Socket based communication with the RADIUS server.
47 */
48public class SocketBasedRadiusCommunicator implements RadiusCommunicator {
49
50 // for verbose output
51 private final Logger log = getLogger(getClass());
52
53 // our unique identifier
54 private ApplicationId appId;
55
56 // to receive Packet-in events that we'll respond to
57 PacketService packetService;
58
59 // Socket used for UDP communications with RADIUS server
60 private DatagramSocket radiusSocket;
61
Jonathan Hartf935b122018-07-11 16:16:02 -070062 private String radiusHost;
63
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010064 // Parsed RADIUS server addresses
65 protected InetAddress radiusIpAddress;
66
67 // RADIUS server TCP port number
68 protected short radiusServerPort;
69
70 // Executor for RADIUS communication thread
71 private ExecutorService executor;
72
73 AaaManager aaaManager;
74
75 SocketBasedRadiusCommunicator(ApplicationId appId, PacketService pktService,
76 AaaManager aaaManager) {
77 this.appId = appId;
78 this.packetService = pktService;
79 this.aaaManager = aaaManager;
80 }
81
82 @Override
83 public void initializeLocalState(AaaConfig newCfg) {
84 if (newCfg.radiusIp() != null) {
85 radiusIpAddress = newCfg.radiusIp();
86 }
87 radiusServerPort = newCfg.radiusServerUdpPort();
Jonathan Hartf935b122018-07-11 16:16:02 -070088 radiusHost = newCfg.radiusHostName();
Amit Ghoshc9ac1e52017-07-28 12:31:18 +010089
90 try {
91 radiusSocket = new DatagramSocket(null);
92 radiusSocket.setReuseAddress(true);
93 radiusSocket.bind(new InetSocketAddress(radiusServerPort));
94 } catch (Exception ex) {
95 log.error("Can't open RADIUS socket", ex);
96 }
97
Matt Jeanneret2ff1a782018-06-13 15:24:25 -040098 log.info("Remote RADIUS Server: {}:{}", radiusIpAddress, radiusServerPort);
99
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100100 executor = Executors.newSingleThreadExecutor(
101 new ThreadFactoryBuilder()
102 .setNameFormat("AAA-radius-%d").build());
103 executor.execute(radiusListener);
104 }
105
106 @Override
107 public void clearLocalState() {
Matteo Scandoloe033c262020-10-14 11:37:39 -0700108 log.info("Closing RADIUS socket: {}:{}", radiusIpAddress, radiusServerPort);
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100109 radiusSocket.close();
110 executor.shutdownNow();
111 }
112
113 @Override
Deepa Vaddireddyd87f2872017-10-24 07:58:11 +0000114 public void deactivate() {
115 clearLocalState();
116 }
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100117
118 @Override
119 public void requestIntercepts() {
120 TrafficSelector.Builder selector = DefaultTrafficSelector.builder();
121 selector.matchEthType(EthType.EtherType.EAPOL.ethType().toShort());
122 packetService.requestPackets(selector.build(), CONTROL, appId);
123 }
124
125 @Override
126 public void withdrawIntercepts() {
127 TrafficSelector.Builder selector = DefaultTrafficSelector.builder();
128 selector.matchEthType(EthType.EtherType.EAPOL.ethType().toShort());
129 packetService.cancelPackets(selector.build(), CONTROL, appId);
130 }
131
132 @Override
133 public void sendRadiusPacket(RADIUS radiusPacket, InboundPacket inPkt) {
134 try {
135 final byte[] data = radiusPacket.serialize();
136 final DatagramSocket socket = radiusSocket;
137
Jonathan Hartf935b122018-07-11 16:16:02 -0700138 try {
139 InetAddress address;
140 if (radiusHost != null) {
141 address = InetAddress.getByName(radiusHost);
142 } else {
143 address = radiusIpAddress;
144 }
145 DatagramPacket packet =
146 new DatagramPacket(data, data.length, address, radiusServerPort);
Saurav Das987441a2018-09-18 16:33:47 -0700147 if (log.isTraceEnabled()) {
148 log.trace("Sending packet {} to Radius Server {}:{} using socket",
149 radiusPacket, address, radiusServerPort);
150 }
Jonathan Hartf935b122018-07-11 16:16:02 -0700151 socket.send(packet);
Shubham Sharma4900ce62019-06-19 14:18:50 +0000152 aaaManager.radiusOperationalStatusService.setStatusServerReqSent(true);
Jonathan Hartf935b122018-07-11 16:16:02 -0700153 } catch (UnknownHostException uhe) {
154 log.warn("Unable to resolve host {}", radiusHost);
Shubham Sharma4900ce62019-06-19 14:18:50 +0000155 aaaManager.radiusOperationalStatusService.setStatusServerReqSent(false);
Jonathan Hartf935b122018-07-11 16:16:02 -0700156 }
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100157 } catch (IOException e) {
Matteo Scandoloe033c262020-10-14 11:37:39 -0700158 log.warn("Cannot send packet to RADIUS server", e);
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100159 }
160 }
161
162 @Override
163 public void handlePacketFromServer(PacketContext context) {
164 InboundPacket pkt = context.inPacket();
165 Ethernet ethPkt = pkt.parsed();
Saurav Das987441a2018-09-18 16:33:47 -0700166 if (log.isTraceEnabled() && ethPkt.getEtherType() != Ethernet.TYPE_LLDP
167 && ethPkt.getEtherType() != Ethernet.TYPE_BSN) {
168 log.trace("Skipping Ethernet packet type {}",
169 EthType.EtherType.lookup(ethPkt.getEtherType()));
170 }
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100171 }
172
173 class RadiusListener implements Runnable {
174
175 @Override
176 public void run() {
177 boolean done = false;
178 int packetNumber = 1;
179
180 log.info("UDP listener thread starting up");
181 RADIUS inboundRadiusPacket;
182 while (!done) {
183 try {
184 byte[] packetBuffer = new byte[RADIUS.RADIUS_MAX_LENGTH];
185 DatagramPacket inboundBasePacket =
186 new DatagramPacket(packetBuffer, packetBuffer.length);
187 DatagramSocket socket = radiusSocket;
188 socket.receive(inboundBasePacket);
kartikey dubeye1545422019-05-22 12:53:45 +0000189 aaaManager.checkForPacketFromUnknownServer(inboundBasePacket.getAddress().getHostAddress());
Matt Jeanneret2ff1a782018-06-13 15:24:25 -0400190 log.debug("Packet #{} received", packetNumber++);
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100191 try {
192 inboundRadiusPacket =
193 RADIUS.deserializer()
194 .deserialize(inboundBasePacket.getData(),
195 0,
196 inboundBasePacket.getLength());
Matteo Scandoloe033c262020-10-14 11:37:39 -0700197 if (log.isTraceEnabled()) {
198 log.trace("Received RADIUS packet with Identifier {}",
199 inboundRadiusPacket.getIdentifier() & 0xff);
200 }
kartikey dubeye1545422019-05-22 12:53:45 +0000201 aaaManager.aaaStatisticsManager.handleRoundtripTime(inboundRadiusPacket.getIdentifier());
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100202 aaaManager.handleRadiusPacket(inboundRadiusPacket);
203 } catch (DeserializationException dex) {
kartikey dubeye1545422019-05-22 12:53:45 +0000204 aaaManager.aaaStatisticsManager.getAaaStats().increaseMalformedResponsesRx();
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100205 log.error("Cannot deserialize packet", dex);
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100206 }
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100207 } catch (IOException e) {
Matteo Scandoloe033c262020-10-14 11:37:39 -0700208 log.warn("Socket was closed, exiting listener thread");
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100209 done = true;
210 }
211 }
Matteo Scandoloe033c262020-10-14 11:37:39 -0700212 log.info("UDP listener thread shutting down");
Amit Ghoshc9ac1e52017-07-28 12:31:18 +0100213 }
214 }
215
216 RadiusListener radiusListener = new RadiusListener();
217}