use std::error::Error;
use std::io;
use std::net::SocketAddr;
use futures::Future;
#[cfg(feature = "mtls")]
use openssl::pkcs12::Pkcs12;
use openssl::x509::X509;
use tokio_openssl::SslStream as TokioTlsStream;
use tokio_tcp::TcpStream as TokioTcpStream;
use trust_dns_proto::error::ProtoError;
use trust_dns_proto::tcp::TcpClientStream;
use trust_dns_proto::xfer::BufDnsStreamHandle;
use super::TlsStreamBuilder;
pub type TlsClientStream = TcpClientStream<TokioTlsStream<TokioTcpStream>>;
pub struct TlsClientStreamBuilder(TlsStreamBuilder);
impl TlsClientStreamBuilder {
pub fn new() -> Self {
TlsClientStreamBuilder(TlsStreamBuilder::new())
}
pub fn add_ca(&mut self, ca: X509) {
self.0.add_ca(ca);
}
pub fn add_ca_der(&mut self, ca_der: &[u8]) -> io::Result<()> {
let ca = X509::from_der(&ca_der)
.map_err(|e| io::Error::new(io::ErrorKind::InvalidData, e.description()))?;
self.add_ca(ca);
Ok(())
}
#[cfg(feature = "mtls")]
pub fn identity(&mut self, pkcs12: Pkcs12) {
self.0.identity(pkcs12);
}
pub fn build(
self,
name_server: SocketAddr,
dns_name: String,
) -> (
Box<Future<Item = TlsClientStream, Error = ProtoError> + Send>,
BufDnsStreamHandle,
) {
let (stream_future, sender) = self.0.build(name_server, dns_name);
let new_future = Box::new(
stream_future
.map(move |tls_stream| TcpClientStream::from_stream(tls_stream))
.map_err(ProtoError::from),
);
let sender = BufDnsStreamHandle::new(name_server, sender);
(new_future, sender)
}
}