2019-08-06 06:54:47 +03:00
// Copyright (c) 2019 Alexander Medvednikov. All rights reserved.
// Use of this source code is governed by an MIT license
// that can be found in the LICENSE file.
module http
import strings
2019-08-13 09:56:18 +03:00
// On linux, prefer a localy build openssl, because it is
// much more likely for it to be newer, than the system
// openssl from libssl-dev. If there is no local openssl,
// the next flag is harmless, since it will still use the
// (older) system openssl.
#flag linux -I/usr/local/include/openssl -L/usr/local/lib
2019-08-07 15:08:59 +03:00
#flag windows -I @VROOT/thirdparty/openssl/include
2019-08-07 15:16:10 +03:00
#flag darwin -I @VROOT/thirdparty/openssl/include
2019-08-09 13:52:14 +03:00
#flag -l ssl -l crypto
2019-08-06 20:07:02 +03:00
// MacPorts
#flag darwin -L/opt/local/lib
2019-08-08 01:53:23 +03:00
// Brew
#flag darwin -L/usr/local/opt/openssl/lib
2019-08-06 06:54:47 +03:00
#include <openssl/ssl.h>
struct C.SSL {
2019-08-06 14:57:58 +03:00
fn init_module() {
2019-08-06 17:35:41 +03:00
$if mac {
2019-08-07 04:57:47 +03:00
$if linux {
2019-08-06 14:57:58 +03:00
2019-08-06 06:54:47 +03:00
2019-08-10 11:05:59 +03:00
fn ssl_do(method, host_name, path string) Response {
2019-08-06 17:35:41 +03:00
//ssl_method := C.SSLv23_method()
ssl_method := C.TLSv1_2_method()
2019-08-06 06:54:47 +03:00
if isnil(method) {
ctx := C.SSL_CTX_new(ssl_method)
if isnil(ctx) {
C.SSL_CTX_set_verify_depth(ctx, 4)
C.SSL_CTX_set_options(ctx, flags)
mut res := C.SSL_CTX_load_verify_locations(ctx, 'random-org-chain.pem', 0)
if res != 1 {
web := C.BIO_new_ssl_connect(ctx)
if isnil(ctx) {
addr := host_name + ':443'
res = C.BIO_set_conn_hostname(web, addr.str)
if res != 1 {
ssl := &C.SSL{!}
C.BIO_get_ssl(web, &ssl)
if isnil(ssl) {
preferred_ciphers := 'HIGH:!aNULL:!kRSA:!PSK:!SRP:!MD5:!RC4'
res = C.SSL_set_cipher_list(ssl, preferred_ciphers.str)
if res != 1 {
res = C.SSL_set_tlsext_host_name(ssl, host_name.str)
res = C.BIO_do_connect(web)
res = C.BIO_do_handshake(web)
cert := C.SSL_get_peer_certificate(ssl)
res = C.SSL_get_verify_result(ssl)
2019-08-10 11:05:59 +03:00
s := build_request_headers('', method, host_name, path)
2019-08-06 06:54:47 +03:00
C.BIO_puts(web, s.str)
mut sb := strings.new_builder(100)
for {
buff := [1536]byte
len := int(C.BIO_read(web, buff, 1536) )
if len > 0 {
sb.write(tos(buff, len))
else {
if !isnil(web) {
if !isnil(ctx) {
2019-08-10 11:05:59 +03:00
2019-08-17 15:50:47 +03:00
return parse_response(sb.str())
2019-08-06 06:54:47 +03:00