blob: 6cdd6948a9535bdf063001dcb94ebf28f7cd4c87 [file] [log] [blame]
Tom Joseph4e57ada2016-08-10 06:51:12 -05001#include "message_parsers.hpp"
2
3#include <iostream>
4#include <memory>
5
6#include "endian.hpp"
7#include "main.hpp"
8#include "message.hpp"
9#include "sessions_manager.hpp"
10
11namespace message
12{
13
14namespace parser
15{
16
17std::tuple<std::unique_ptr<Message>, SessionHeader> unflatten(
18 std::vector<uint8_t>& inPacket)
19{
20 // Check if the packet has atleast the size of the RMCP Header
21 if (inPacket.size() < sizeof(BasicHeader_t))
22 {
23 throw std::runtime_error("RMCP Header missing");
24 }
25
26 auto rmcpHeaderPtr = reinterpret_cast<BasicHeader_t*>(inPacket.data());
27
28 // Verify if the fields in the RMCP header conforms to the specification
29 if ((rmcpHeaderPtr->version != RMCP_VERSION) ||
30 (rmcpHeaderPtr->rmcpSeqNum != RMCP_SEQ) ||
31 (rmcpHeaderPtr->classOfMsg != RMCP_MESSAGE_CLASS_IPMI))
32 {
33 throw std::runtime_error("RMCP Header is invalid");
34 }
35
36 // Read the Session Header and invoke the parser corresponding to the
37 // header type
38 switch (static_cast<SessionHeader>(rmcpHeaderPtr->format.formatType))
39 {
40 case SessionHeader::IPMI15:
41 {
42 return std::make_tuple(ipmi15parser::unflatten(inPacket),
43 SessionHeader::IPMI15);
44 }
45 case SessionHeader::IPMI20:
46 {
47 return std::make_tuple(ipmi20parser::unflatten(inPacket),
48 SessionHeader::IPMI20);
49 }
50 default:
51 {
52 throw std::runtime_error("Invalid Session Header");
53 }
54 }
55}
56
57std::vector<uint8_t> flatten(Message& outMessage,
58 SessionHeader authType,
59 session::Session& session)
60{
61 // Call the flatten routine based on the header type
62 switch (authType)
63 {
64 case SessionHeader::IPMI15:
65 {
66 return ipmi15parser::flatten(outMessage, session);
67 }
68 case SessionHeader::IPMI20:
69 {
70 return ipmi20parser::flatten(outMessage, session);
71 }
72 default:
73 {
74 return {};
75 }
76 }
77}
78
79} // namespace parser
80
81namespace ipmi15parser
82{
83
84std::unique_ptr<Message> unflatten(std::vector<uint8_t>& inPacket)
85{
86 // Check if the packet has atleast the Session Header
87 if (inPacket.size() < sizeof(SessionHeader_t))
88 {
89 throw std::runtime_error("IPMI1.5 Session Header Missing");
90 }
91
92 auto message = std::make_unique<Message>();
93
94 auto header = reinterpret_cast<SessionHeader_t*>(inPacket.data());
95
96 message->payloadType = PayloadType::IPMI;
Tom Joseph6a560762017-01-10 15:30:28 +053097 message->bmcSessionID = endian::from_ipmi(header->sessId);
98 message->sessionSeqNum = endian::from_ipmi(header->sessSeqNum);
Tom Joseph4e57ada2016-08-10 06:51:12 -050099 message->isPacketEncrypted = false;
100 message->isPacketAuthenticated = false;
101
102 auto payloadLen = header->payloadLength;
103
104 (message->payload).assign(inPacket.data() + sizeof(SessionHeader_t),
105 inPacket.data() + sizeof(SessionHeader_t) +
106 payloadLen);
107
108 return message;
109}
110
111std::vector<uint8_t> flatten(Message& outMessage, session::Session& session)
112{
113 std::vector<uint8_t> packet(sizeof(SessionHeader_t));
114
115 // Insert Session Header into the Packet
116 auto header = reinterpret_cast<SessionHeader_t*>(packet.data());
117 header->base.version = parser::RMCP_VERSION;
118 header->base.reserved = 0x00;
119 header->base.rmcpSeqNum = parser::RMCP_SEQ;
120 header->base.classOfMsg = parser::RMCP_MESSAGE_CLASS_IPMI;
121 header->base.format.formatType =
122 static_cast<uint8_t>(parser::SessionHeader::IPMI15);
123 header->sessSeqNum = 0;
Tom Joseph6a560762017-01-10 15:30:28 +0530124 header->sessId = endian::to_ipmi(outMessage.rcSessionID);
Tom Joseph4e57ada2016-08-10 06:51:12 -0500125
126 header->payloadLength = static_cast<uint8_t>(outMessage.payload.size());
127
128 // Insert the Payload into the Packet
129 packet.insert(packet.end(), outMessage.payload.begin(),
130 outMessage.payload.end());
131
132 // Insert the Session Trailer
133 packet.resize(packet.size() + sizeof(SessionTrailer_t));
134 auto trailer = reinterpret_cast<SessionTrailer_t*>(packet.data() +
135 packet.size());
136 trailer->legacyPad = 0x00;
137
138 return packet;
139}
140
141} // namespace ipmi15parser
142
143namespace ipmi20parser
144{
145
146std::unique_ptr<Message> unflatten(std::vector<uint8_t>& inPacket)
147{
148 // Check if the packet has atleast the Session Header
149 if (inPacket.size() < sizeof(SessionHeader_t))
150 {
151 throw std::runtime_error("IPMI2.0 Session Header Missing");
152 }
153
154 auto message = std::make_unique<Message>();
155
156 auto header = reinterpret_cast<SessionHeader_t*>(inPacket.data());
157
158 message->payloadType = static_cast<PayloadType>
159 (header->payloadType & 0x3F);
Tom Joseph6a560762017-01-10 15:30:28 +0530160 message->bmcSessionID = endian::from_ipmi(header->sessId);
161 message->sessionSeqNum = endian::from_ipmi(header->sessSeqNum);
Tom Joseph4e57ada2016-08-10 06:51:12 -0500162 message->isPacketEncrypted =
163 ((header->payloadType & PAYLOAD_ENCRYPT_MASK) ? true : false);
164 message->isPacketAuthenticated =
165 ((header->payloadType & PAYLOAD_AUTH_MASK) ? true : false);
166
Tom Joseph6a560762017-01-10 15:30:28 +0530167 auto payloadLen = endian::from_ipmi(header->payloadLength);
Tom Joseph4e57ada2016-08-10 06:51:12 -0500168
Tom Joseph5fa487c2017-01-20 12:42:39 +0530169 if (message->isPacketAuthenticated)
Tom Joseph64703f42017-01-10 17:03:48 +0530170 {
Tom Joseph027dfc22017-01-26 13:30:53 +0530171 if (!(internal::verifyPacketIntegrity(inPacket,
172 *(message.get()),
173 payloadLen)))
Tom Joseph64703f42017-01-10 17:03:48 +0530174 {
175 throw std::runtime_error("Packet Integrity check failed");
176 }
177 }
178
Tom Joseph78478a82017-01-26 14:24:29 +0530179 // Decrypt the payload if the payload is encrypted
180 if (message->isPacketEncrypted)
181 {
182 // Assign the decrypted payload to the IPMI Message
183 message->payload = internal::decryptPayload(inPacket,
184 *(message.get()),
185 payloadLen);
186 }
187 else
188 {
189 message->payload.assign(inPacket.begin() + sizeof(SessionHeader_t),
190 inPacket.begin() + sizeof(SessionHeader_t) +
191 payloadLen);
192 }
193
Tom Joseph4e57ada2016-08-10 06:51:12 -0500194 return message;
195}
196
197std::vector<uint8_t> flatten(Message& outMessage, session::Session& session)
198{
199 std::vector<uint8_t> packet(sizeof(SessionHeader_t));
200
201 SessionHeader_t* header = reinterpret_cast<SessionHeader_t*>(packet.data());
202 header->base.version = parser::RMCP_VERSION;
203 header->base.reserved = 0x00;
204 header->base.rmcpSeqNum = parser::RMCP_SEQ;
205 header->base.classOfMsg = parser::RMCP_MESSAGE_CLASS_IPMI;
206 header->base.format.formatType =
207 static_cast<uint8_t>(parser::SessionHeader::IPMI20);
208 header->payloadType = static_cast<uint8_t>(outMessage.payloadType);
Tom Joseph6a560762017-01-10 15:30:28 +0530209 header->sessId = endian::to_ipmi(outMessage.rcSessionID);
Tom Joseph4e57ada2016-08-10 06:51:12 -0500210
211 // Add session sequence number
212 internal::addSequenceNumber(packet, session);
213
Tom Joseph1404bca2017-01-26 14:17:02 +0530214 size_t payloadLen = 0;
215
216 header->payloadLength = endian::to_ipmi<uint16_t>(
217 outMessage.payload.size());
218 payloadLen = outMessage.payload.size();
Tom Joseph4e57ada2016-08-10 06:51:12 -0500219 // Insert the Payload into the Packet
220 packet.insert(packet.end(), outMessage.payload.begin(),
221 outMessage.payload.end());
222
Tom Joseph5fa487c2017-01-20 12:42:39 +0530223 if (outMessage.isPacketAuthenticated)
Tom Joseph64703f42017-01-10 17:03:48 +0530224 {
Tom Joseph1404bca2017-01-26 14:17:02 +0530225 internal::addIntegrityData(packet, outMessage, payloadLen);
Tom Joseph64703f42017-01-10 17:03:48 +0530226 }
227
Tom Joseph4e57ada2016-08-10 06:51:12 -0500228 return packet;
229}
230
231namespace internal
232{
233
234void addSequenceNumber(std::vector<uint8_t>& packet, session::Session& session)
235{
236 SessionHeader_t* header = reinterpret_cast<SessionHeader_t*>(packet.data());
237
238 if (header->sessId == session::SESSION_ZERO)
239 {
240 header->sessSeqNum = 0x00;
241 }
242 else
243 {
244 auto seqNum = session.sequenceNums.increment();
Tom Joseph6a560762017-01-10 15:30:28 +0530245 header->sessSeqNum = endian::to_ipmi(seqNum);
Tom Joseph4e57ada2016-08-10 06:51:12 -0500246 }
247}
248
Tom Joseph64703f42017-01-10 17:03:48 +0530249bool verifyPacketIntegrity(const std::vector<uint8_t>& packet,
Tom Joseph027dfc22017-01-26 13:30:53 +0530250 const Message& message,
251 size_t payloadLen)
Tom Joseph64703f42017-01-10 17:03:48 +0530252{
Tom Joseph64703f42017-01-10 17:03:48 +0530253 /*
254 * Padding bytes are added to cause the number of bytes in the data range
255 * covered by the AuthCode(Integrity Data) field to be a multiple of 4 bytes
256 * .If present each integrity Pad byte is set to FFh. The following logic
257 * calculates the number of padding bytes added in the IPMI packet.
258 */
Tom Joseph5a2d3ce2017-02-01 20:18:37 +0530259 auto paddingLen = 4 - ((payloadLen + 2) & 3);
Tom Joseph64703f42017-01-10 17:03:48 +0530260
261 auto sessTrailerPos = sizeof(SessionHeader_t) + payloadLen + paddingLen;
262
263 auto trailer = reinterpret_cast<const SessionTrailer_t*>
264 (packet.data() + sessTrailerPos);
265
266 // Check trailer->padLength against paddingLen, both should match up,
267 // return false if the lengths don't match
Tom Joseph5fa487c2017-01-20 12:42:39 +0530268 if (trailer->padLength != paddingLen)
Tom Joseph64703f42017-01-10 17:03:48 +0530269 {
270 return false;
271 }
272
273 auto session = (std::get<session::Manager&>(singletonPool).getSession(
274 message.bmcSessionID)).lock();
275
276 auto integrityAlgo = session->getIntegrityAlgo();
277
278 // Check if Integrity data length is as expected, check integrity data
279 // length is same as the length expected for the Integrity Algorithm that
280 // was negotiated during the session open process.
Tom Joseph5fa487c2017-01-20 12:42:39 +0530281 if ((packet.size() - sessTrailerPos - sizeof(SessionTrailer_t)) !=
282 integrityAlgo->authCodeLength)
Tom Joseph64703f42017-01-10 17:03:48 +0530283 {
284 return false;
285 }
286
287 auto integrityIter = packet.cbegin();
288 std::advance(integrityIter, sessTrailerPos + sizeof(SessionTrailer_t));
289
290 // The integrity data is calculated from the AuthType/Format field up to and
291 // including the field that immediately precedes the AuthCode field itself.
292 size_t length = packet.size() - integrityAlgo->authCodeLength -
293 message::parser::RMCP_SESSION_HEADER_SIZE;
294
295 return integrityAlgo->verifyIntegrityData(packet, length, integrityIter);
296}
297
298void addIntegrityData(std::vector<uint8_t>& packet,
Tom Joseph1404bca2017-01-26 14:17:02 +0530299 const Message& message,
300 size_t payloadLen)
Tom Joseph64703f42017-01-10 17:03:48 +0530301{
Tom Joseph64703f42017-01-10 17:03:48 +0530302 // The following logic calculates the number of padding bytes to be added to
303 // IPMI packet. If needed each integrity Pad byte is set to FFh.
Tom Joseph5a2d3ce2017-02-01 20:18:37 +0530304 auto paddingLen = 4 - ((payloadLen + 2) & 3);
Tom Joseph64703f42017-01-10 17:03:48 +0530305 packet.insert(packet.end(), paddingLen, 0xFF);
306
307 packet.resize(packet.size() + sizeof(SessionTrailer_t));
308
309 auto trailer = reinterpret_cast<SessionTrailer_t*>
310 (packet.data() + packet.size() -
311 sizeof(SessionTrailer_t));
312
313 trailer->padLength = paddingLen;
314 trailer->nextHeader = parser::RMCP_MESSAGE_CLASS_IPMI;
315
316 auto session = (std::get<session::Manager&>(singletonPool).getSession(
317 message.bmcSessionID)).lock();
318
319 auto integrityData = session->getIntegrityAlgo()->
320 generateIntegrityData(packet);
321
322 packet.insert(packet.end(), integrityData.begin(), integrityData.end());
323}
324
Tom Joseph78478a82017-01-26 14:24:29 +0530325std::vector<uint8_t> decryptPayload(const std::vector<uint8_t>& packet,
326 const Message& message,
327 size_t payloadLen)
328{
329 auto session = (std::get<session::Manager&>(singletonPool).getSession(
330 message.bmcSessionID)).lock();
331
332 return session->getCryptAlgo()->decryptPayload(packet,
333 sizeof(SessionHeader_t),
334 payloadLen);
335}
336
Tom Joseph4e57ada2016-08-10 06:51:12 -0500337} // namespace internal
338
339} // namespace ipmi20parser
340
341} // namespace message