亚洲香蕉成人av网站在线观看_欧美精品成人91久久久久久久_久久久久久久久久久亚洲_热久久视久久精品18亚洲精品_国产精自产拍久久久久久_亚洲色图国产精品_91精品国产网站_中文字幕欧美日韩精品_国产精品久久久久久亚洲调教_国产精品久久一区_性夜试看影院91社区_97在线观看视频国产_68精品久久久久久欧美_欧美精品在线观看_国产精品一区二区久久精品_欧美老女人bb

首頁 > 編程 > C > 正文

使用pthread庫實現openssl多線程ssl服務端和客戶端

2020-01-26 15:37:42
字體:
來源:轉載
供稿:網友

服務端代碼如下:

復制代碼 代碼如下:

#include <stdio.h>
#include <stdlib.h>
#include <memory.h>
#include <errno.h>
#ifndef    _WIN32
#include <sys/types.h>
#include <sys/socket.h>
#include <netinet/in.h>
#include <arpa/inet.h>
#include <netdb.h>
#include <unistd.h>
#else
#include <winsock2.h>
#include <windows.h>
#endif
#include "pthread.h"
#include <openssl/rsa.h>
#include <openssl/crypto.h>
#include <openssl/x509.h>
#include <openssl/pem.h>
#include <openssl/ssl.h>
#include <openssl/err.h>
#define CERTF "certs/sslservercert.pem"
#define KEYF  "certs/sslserverkey.pem"
#define    CAFILE  "certs/cacert.pem"
pthread_mutex_t    mlock=PTHREAD_MUTEX_INITIALIZER;
static pthread_mutex_t *lock_cs;
static long *lock_count;
#define CHK_NULL(x) if ((x)==NULL) { printf("null/n"); }
#define CHK_ERR(err,s) if ((err)==-1) { printf(" -1 /n"); }
#define CHK_SSL(err) if ((err)==-1) {  printf(" -1 /n");}
#define    CAFILE  "certs/cacert.pem"

int  verify_callback_server(int ok, X509_STORE_CTX *ctx)
{
              printf("verify_callback_server /n");
        return ok;
}

int    SSL_CTX_use_PrivateKey_file_pass(SSL_CTX *ctx,char *filename,char *pass)
{
       EVP_PKEY     *pkey=NULL;
       BIO               *key=NULL;

       key=BIO_new(BIO_s_file());
       BIO_read_filename(key,filename);
       pkey=PEM_read_bio_PrivateKey(key,NULL,NULL,pass);
       if(pkey==NULL)
       {
              printf("PEM_read_bio_PrivateKey err");
              return -1;
       }
       if (SSL_CTX_use_PrivateKey(ctx,pkey) <= 0)
       {
              printf("SSL_CTX_use_PrivateKey err/n");
              return -1;
       }
       BIO_free(key);
       return 1;
}

static int s_server_verify=SSL_VERIFY_NONE;
void * thread_main(void *arg)

       SOCKET s,AcceptSocket;
       WORD wVersionRequested;
       WSADATA wsaData;
       struct sockaddr_in  service;
       int    err;
      size_t             client_len;                                                                                           SSL_CTX             *ctx;
      SSL        *ssl;
      X509             *client_cert;
      char        *str;
      char    buf[1024];
      SSL_METHOD     *meth;

       ssl=(SSL *)arg;
       s=SSL_get_fd(ssl);
       err = SSL_accept (ssl);
      if(err<0)
       {
              printf("ssl accerr/n");
              return ;
       }
      printf ("SSL connection using %s/n", SSL_get_cipher (ssl));
      client_cert = SSL_get_peer_certificate (ssl);
      if (client_cert != NULL)
      {
                   printf ("Client certificate:/n");
                     str = X509_NAME_oneline (X509_get_subject_name (client_cert), 0, 0);
                   CHK_NULL(str);
                   printf ("/t subject: %s/n", str);
                   OPENSSL_free (str);
                     str = X509_NAME_oneline (X509_get_issuer_name  (client_cert), 0, 0);
                   CHK_NULL(str);
                   printf ("/t issuer: %s/n", str);
                   OPENSSL_free (str);
                     X509_free (client_cert);
      }
      else
                  printf ("Client does not have certificate./n");
       memset(buf,0,1024);
       err = SSL_read (ssl, buf, sizeof(buf) - 1);
       if(err<0)
       {
              printf("ssl read err/n");
              closesocket(s);
              return;
       }
       printf("get : %s/n",buf);
#if 0
      buf[err] = '/0';
      err = SSL_write (ssl, "I hear you.", strlen("I hear you."));  CHK_SSL(err);
#endif
      SSL_free (ssl);
       closesocket(s);
}

pthread_t pthreads_thread_id(void)
{
       pthread_t ret;

       ret=pthread_self();
       return(ret);
}

void pthreads_locking_callback(int mode, int type, char *file,
            int line)
{
       if (mode & CRYPTO_LOCK)
              {
              pthread_mutex_lock(&(lock_cs[type]));
              lock_count[type]++;
              }
       else
              {
              pthread_mutex_unlock(&(lock_cs[type]));
              }
}

int main ()
{
       int                  err;                
       int                  i;
       SOCKET        s,AcceptSocket;
       WORD           wVersionRequested;
       WSADATA            wsaData;
       struct sockaddr_in  service;
       pthread_tpid;
      size_t             client_len;
      SSL_CTX             *ctx;
      SSL               *ssl;
      X509             *client_cert;
       char        *str;
      char    buf[1024];
      SSL_METHOD     *meth;

      SSL_load_error_strings();
      SSLeay_add_ssl_algorithms();
      meth = SSLv3_server_method();
      ctx = SSL_CTX_new (meth);
      if (!ctx)
      {
                  ERR_print_errors_fp(stderr);
                  exit(2);
      }
       if ((!SSL_CTX_load_verify_locations(ctx,CAFILE,NULL)) ||
                (!SSL_CTX_set_default_verify_paths(ctx)))
    {
              printf("err/n");
              exit(1);
    }
      if (SSL_CTX_use_certificate_file(ctx, CERTF, SSL_FILETYPE_PEM) <= 0)
      {
           ERR_print_errors_fp(stderr);
           exit(3);
      }
      if (SSL_CTX_use_PrivateKey_file_pass(ctx, KEYF, "123456") <= 0)
      {
                  ERR_print_errors_fp(stderr);
                  exit(4);
      }
       if (!SSL_CTX_check_private_key(ctx))
       {
                  fprintf(stderr,"Private key does not match the certificate public key/n");
                  exit(5);
      }
       s_server_verify=SSL_VERIFY_PEER|SSL_VERIFY_FAIL_IF_NO_PEER_CERT|
                                SSL_VERIFY_CLIENT_ONCE;
       SSL_CTX_set_verify(ctx,s_server_verify,verify_callback_server);
       SSL_CTX_set_client_CA_list(ctx,SSL_load_client_CA_file(CAFILE));
       wVersionRequested = MAKEWORD( 2, 2 );
       err = WSAStartup( wVersionRequested, &wsaData );
       if ( err != 0 )
       {
              printf("err/n");     
              return -1;
       }
       s = socket(AF_INET, SOCK_STREAM, IPPROTO_TCP);
       if(s<0) return -1;
       service.sin_family = AF_INET;
       service.sin_addr.s_addr = inet_addr("127.0.0.1");
       service.sin_port = htons(1111);
       if (bind( s, (SOCKADDR*) &service, sizeof(service)) == SOCKET_ERROR)
       {
              printf("bind() failed./n");
              closesocket(s);
              return -1;
       }
    if (listen( s, 1 ) == SOCKET_ERROR)
              printf("Error listening on socket./n");

       printf("recv ...../n");
       lock_cs=OPENSSL_malloc(CRYPTO_num_locks() * sizeof(pthread_mutex_t));
       lock_count=OPENSSL_malloc(CRYPTO_num_locks() * sizeof(long));
       for (i=0; i<CRYPTO_num_locks(); i++)
       {
              lock_count[i]=0;
              pthread_mutex_init(&(lock_cs[i]),NULL);
       }
       CRYPTO_set_id_callback((unsigned long (*)())pthreads_thread_id);
       CRYPTO_set_locking_callback((void (*)())pthreads_locking_callback);
       while(1)
       {
              struct timeval tv;
              fd_set fdset;
              tv.tv_sec = 1;
              tv.tv_usec = 0;
              FD_ZERO(&fdset);
              FD_SET(s, &fdset);
           select(s+1, &fdset, NULL, NULL, (struct timeval *)&tv);
           if(FD_ISSET(s, &fdset))
              {
                     AcceptSocket=accept(s, NULL,NULL);
                     ssl = SSL_new (ctx);     
                    CHK_NULL(ssl);
                     err=SSL_set_fd (ssl, AcceptSocket);
                     if(err>0)
                     {
                            err=pthread_create(&pid,NULL,&thread_main,(void *)ssl);
                            pthread_detach(pid);
                     }
                     else
                            continue;
              }
       }
      SSL_CTX_free (ctx);
      return 0;
}

客戶端代碼如下:

復制代碼 代碼如下:

#include <stdio.h>
#include <memory.h>
#include <errno.h>
#ifndef    _WIN32
#include <sys/types.h>
#include <sys/socket.h>
#include <netinet/in.h>
#include <arpa/inet.h>
#include <netdb.h>
#include <unistd.h>
#else
#include <windows.h>
#endif
#include "pthread.h"
#include <openssl/crypto.h>
#include <openssl/x509.h>
#include <openssl/pem.h>
#include <openssl/ssl.h>
#include <openssl/err.h>
#define    MAX_T 1000
#define    CLIENTCERT       "certs/sslclientcert.pem"
#define    CLIENTKEY  "certs/sslclientkey.pem"
#define    CAFILE         "certs/cacert.pem"
static pthread_mutex_t *lock_cs;
static long *lock_count;

pthread_t pthreads_thread_id(void)
{
       pthread_t ret;

       ret=pthread_self();
       return(ret);
}

void pthreads_locking_callback(int mode, int type, char *file,
            int line)
{
       if (mode & CRYPTO_LOCK)
              {
              pthread_mutex_lock(&(lock_cs[type]));
              lock_count[type]++;
              }
       else
              {
              pthread_mutex_unlock(&(lock_cs[type]));
              }
}

int    verify_callback(int ok, X509_STORE_CTX *ctx)
{
       printf("verify_callback/n");
       return ok;
}

int    SSL_CTX_use_PrivateKey_file_pass(SSL_CTX *ctx,char *filename,char *pass)
{
       EVP_PKEY     *pkey=NULL;
       BIO               *key=NULL;

       key=BIO_new(BIO_s_file());
       BIO_read_filename(key,filename);
       pkey=PEM_read_bio_PrivateKey(key,NULL,NULL,pass);
       if(pkey==NULL)
       {
              printf("PEM_read_bio_PrivateKey err");
              return -1;
       }
       if (SSL_CTX_use_PrivateKey(ctx,pkey) <= 0)
       {
              printf("SSL_CTX_use_PrivateKey err/n");
              return -1;
       }
       BIO_free(key);
       return 1;
}

void*thread_main(void *arg)
{
       int          err,buflen,read;
      int          sd;
       SSL_CTX             *ctx=(SSL_CTX *)arg;
       struct            sockaddr_in dest_sin;
       SOCKET        sock;
       PHOSTENT   phe;
       WORD           wVersionRequested;
       WSADATA            wsaData;
      SSL               *ssl;
      X509             *server_cert;
      char     *str;
      char        buf [1024];
      SSL_METHOD     *meth;
       FILE              *fp;

       wVersionRequested = MAKEWORD( 2, 2 );
       err = WSAStartup( wVersionRequested, &wsaData );
       if ( err != 0 )
       {
              printf("WSAStartup err/n");     
              return -1;
       }
       sock = socket(AF_INET, SOCK_STREAM, 0);
       dest_sin.sin_family = AF_INET;
       dest_sin.sin_addr.s_addr = inet_addr( "127.0.0.1" );
       dest_sin.sin_port = htons( 1111 );

again:
       err=connect( sock,(PSOCKADDR) &dest_sin, sizeof( dest_sin));
       if(err<0)
       {
              Sleep(1);
              goto again;
       }
    ssl = SSL_new (ctx);                       
       if(ssl==NULL)
       {
              printf("ss new err/n");
              return ;
       }
       SSL_set_fd(ssl,sock);
      err = SSL_connect (ssl);                   
      if(err<0)
       {
              printf("SSL_connect err/n");
              return;
       }
      printf ("SSL connection using %s/n", SSL_get_cipher (ssl));
      server_cert = SSL_get_peer_certificate (ssl);     
      printf ("Server certificate:/n");
      str = X509_NAME_oneline (X509_get_subject_name (server_cert),0,0);
      printf ("/t subject: %s/n", str);
      OPENSSL_free (str);
      str = X509_NAME_oneline (X509_get_issuer_name  (server_cert),0,0);
      printf ("/t issuer: %s/n", str);
      OPENSSL_free (str); 
      X509_free (server_cert);
       err = SSL_write (ssl, "Hello World!", strlen("Hello World!"));
       if(err<0)
       {
              printf("ssl write err/n");
              return ;
       }
#if 0
       memset(buf,0,ONE_BUF_SIZE);
      err = SSL_read (ssl, buf, sizeof(buf) - 1);                 
       if(err<0)
       {
              printf("ssl read err/n");
              return ;
       }
      buf[err] = '/0';
      printf ("Got %d chars:'%s'/n", err, buf);
#endif
      SSL_shutdown (ssl);  /* send SSL/TLS close_notify */
      SSL_free (ssl);
       closesocket(sock);
}

int    main ()
{
       int          err,buflen,read;
      int          sd;

       struct            sockaddr_in dest_sin;
       SOCKETsock;
       PHOSTENT phe;
       WORD wVersionRequested;
       WSADATA wsaData;
      SSL_CTX             *ctx;
      SSL        *ssl;
      X509             *server_cert;
      char     *str;
      char        buf [1024];
      SSL_METHOD     *meth;
       int           i;
       pthread_tpid[MAX_T];

      SSLeay_add_ssl_algorithms();
      meth = SSLv3_client_method();
      SSL_load_error_strings();
      ctx = SSL_CTX_new (meth);                     
       if(ctx==NULL)
       {
              printf("ssl ctx new eer/n");
              return -1;
       }

       if (SSL_CTX_use_certificate_file(ctx, CLIENTCERT, SSL_FILETYPE_PEM) <= 0)
    {
        ERR_print_errors_fp(stderr);
        exit(3);
    }
    if (SSL_CTX_use_PrivateKey_file_pass(ctx, CLIENTKEY, "123456") <= 0)
    {
         ERR_print_errors_fp(stderr);
         exit(4);
     }
       lock_cs=OPENSSL_malloc(CRYPTO_num_locks() * sizeof(pthread_mutex_t));
       lock_count=OPENSSL_malloc(CRYPTO_num_locks() * sizeof(long));
       for (i=0; i<CRYPTO_num_locks(); i++)
       {
              lock_count[i]=0;
              pthread_mutex_init(&(lock_cs[i]),NULL);
       }
       CRYPTO_set_id_callback((unsigned long (*)())pthreads_thread_id);
       CRYPTO_set_locking_callback((void (*)())pthreads_locking_callback);
       for(i=0;i<MAX_T;i++)
       {          
              err=pthread_create(&(pid[i]),NULL,&thread_main,(void *)ctx);
              if(err!=0)
              {
                     printf("pthread_create err/n");
                     continue;
              }
       }
       for (i=0; i<MAX_T; i++)
       {
              pthread_join(pid[i],NULL);
       }
      SSL_CTX_free (ctx);
      printf("test ok/n");
       return 0;
}

上述程序在windows下運行成功,采用了windows下的開源pthread庫。
需要注意的是,如果多線程用openssl,需要設置兩個回調函數

復制代碼 代碼如下:

CRYPTO_set_id_callback((unsigned long (*)())pthreads_thread_id);
CRYPTO_set_locking_callback((void (*)())pthreads_locking_callback);

發表評論 共有條評論
用戶名: 密碼:
驗證碼: 匿名發表

圖片精選

亚洲香蕉成人av网站在线观看_欧美精品成人91久久久久久久_久久久久久久久久久亚洲_热久久视久久精品18亚洲精品_国产精自产拍久久久久久_亚洲色图国产精品_91精品国产网站_中文字幕欧美日韩精品_国产精品久久久久久亚洲调教_国产精品久久一区_性夜试看影院91社区_97在线观看视频国产_68精品久久久久久欧美_欧美精品在线观看_国产精品一区二区久久精品_欧美老女人bb
精品少妇v888av| 久青草国产97香蕉在线视频| 亚洲一区二区中文| 亚洲男人的天堂在线播放| 国产日产欧美精品| 中文字幕精品一区二区精品| 亚洲第一网中文字幕| 中文字幕亚洲无线码a| 国产精品入口夜色视频大尺度| 欧美性猛交xxxx乱大交极品| 精品福利在线视频| 日韩电影免费观看在线观看| 日韩在线中文字幕| 成人做爰www免费看视频网站| 国产精品免费一区豆花| 国产视频久久网| 色无极影院亚洲| 国产精品爽爽爽| 欧美国产中文字幕| 成人xvideos免费视频| 91精品国产91| 亚洲精品美女久久久久| 亚洲免费福利视频| 九九视频这里只有精品| 国产亚洲精品久久久优势| 日韩欧美一区视频| 国产精品中文字幕在线观看| 91a在线视频| 国产精品久久久久久久天堂| 亚洲精品一区二区三区婷婷月| 国产成人精品视频在线| 国产一区二区激情| 国产精品视频26uuu| 日韩美女写真福利在线观看| 色偷偷888欧美精品久久久| 欧美大人香蕉在线| 精品女厕一区二区三区| 成人av番号网| 国产丝袜一区二区三区免费视频| 久久久久久国产精品三级玉女聊斋| 欧美性猛交xxxx免费看| 欧美丰满少妇xxxx| 亚洲欧美在线第一页| 日韩中文字幕视频在线观看| 国产亚洲在线播放| 97香蕉久久超级碰碰高清版| 亚洲精品av在线播放| 日韩中文字幕在线视频| 亚洲精品国产精品国产自| 精品国产一区二区三区久久狼5月| 97人洗澡人人免费公开视频碰碰碰| 色诱女教师一区二区三区| 一区二区三区在线播放欧美| 欧美极品少妇全裸体| 国产精品丝袜一区二区三区| 亚洲视频日韩精品| 国产在线视频一区| 国产亚洲精品久久久久动| 青青草精品毛片| 中文字幕不卡在线视频极品| 北条麻妃99精品青青久久| 国产成+人+综合+亚洲欧洲| 亚洲精品美女免费| 欧美在线免费观看| 国产亚洲精品久久| 草民午夜欧美限制a级福利片| 国产午夜精品理论片a级探花| 欧美乱妇高清无乱码| 成人国产精品色哟哟| 亚洲国产另类 国产精品国产免费| 国产精品美女网站| 亚洲xxxx在线| 98视频在线噜噜噜国产| 黄网动漫久久久| 成人激情视频在线观看| 亚洲欧洲在线观看| 日韩av免费在线观看| 国产精品扒开腿爽爽爽视频| 亚洲欧美成人一区二区在线电影| 国产精品自产拍在线观| 亚洲图片欧洲图片av| 中文字幕成人精品久久不卡| 久久久久久成人| 91精品国产色综合久久不卡98口| 国产综合色香蕉精品| 亚洲欧美日韩国产中文专区| 国产精品久久久久久久久男| 欧美人与性动交a欧美精品| 久久久久在线观看| 亚洲欧洲视频在线| 午夜精品免费视频| 亚洲国产古装精品网站| www.亚洲天堂| 精品国产乱码久久久久久虫虫漫画| 日韩成人高清在线| 亚洲欧美日韩精品| 欧美亚洲国产精品| 亚洲一区制服诱惑| 午夜精品久久久久久久99热浪潮| 亚洲欧美成人一区二区在线电影| 78m国产成人精品视频| 欧美日韩成人网| 欧美视频在线视频| 亚洲成人中文字幕| 影音先锋欧美在线资源| 欧美日韩一区二区在线| 精品av在线播放| 精品久久久中文| 亚洲一区二区久久久| 91夜夜未满十八勿入爽爽影院| 午夜精品久久久久久99热| 久久精品国产精品| 久久免费视频网站| 欧美日韩免费在线| 国产精品成人久久久久| 久久亚洲私人国产精品va| 青青在线视频一区二区三区| 国产狼人综合免费视频| 中文字幕亚洲无线码在线一区| 欧美日韩在线一区| 美女999久久久精品视频| 亚洲国产成人精品久久久国产成人一区| 精品国产成人av| 4p变态网欧美系列| 欧美日韩在线看| 国产精品欧美激情| 久久夜色精品国产欧美乱| 在线播放日韩专区| 国产免费一区二区三区香蕉精| 亚洲欧美日韩久久久久久| 色综合天天综合网国产成人网| 久久中国妇女中文字幕| 国产免费亚洲高清| 欧美大片在线看| 9.1国产丝袜在线观看| 超在线视频97| 4p变态网欧美系列| 久久久久免费视频| 欧美性生交大片免网| 国产精品99免视看9| 欧美成人四级hd版| 精品中文字幕久久久久久| 欧美激情一区二区三区久久久| 精品久久久香蕉免费精品视频| 亚洲乱码国产乱码精品精| 国产日韩在线一区| 日韩一二三在线视频播| 亚洲欧美日韩直播| 欧美激情免费看| 成人免费黄色网| 日韩天堂在线视频| 中文字幕av一区二区三区谷原希美| 久久人人爽人人爽爽久久| 欧美成人精品在线播放| 国产精品精品一区二区三区午夜版| 国产精品三级久久久久久电影| 久久成人av网站| 日韩欧美在线国产| 国产精品综合久久久| 日韩视频一区在线| 91最新国产视频| 日本一区二区在线播放| 91国产精品91| 精品人伦一区二区三区蜜桃免费|