Skip to main content

richat_shared/transports/
quic.rs

1use {
2    crate::{
3        config::{deserialize_num_str, deserialize_rustls_server_config, deserialize_x_tokens_set},
4        transports::{RecvError, RecvItem, RecvStream, Subscribe, SubscribeError, WriteVectored},
5        version::Version,
6    },
7    futures::stream::StreamExt,
8    prost::Message,
9    quinn::{
10        Connection, Endpoint, Incoming, SendStream, VarInt,
11        crypto::rustls::{NoInitialCipherSuite, QuicServerConfig},
12    },
13    richat_proto::richat::{
14        QuicSubscribeClose, QuicSubscribeCloseError, QuicSubscribeRequest, QuicSubscribeResponse,
15        QuicSubscribeResponseError,
16    },
17    serde::Deserialize,
18    std::{
19        borrow::Cow,
20        collections::{BTreeSet, HashSet, VecDeque},
21        future::Future,
22        io::{self, IoSlice},
23        net::{IpAddr, Ipv4Addr, SocketAddr},
24        sync::Arc,
25    },
26    thiserror::Error,
27    tokio::{
28        io::{AsyncReadExt, AsyncWriteExt},
29        task::{JoinError, JoinSet},
30    },
31    tokio_util::sync::CancellationToken,
32    tracing::{error, info},
33};
34
35#[derive(Debug, Clone, Deserialize)]
36#[serde(deny_unknown_fields)]
37pub struct ConfigQuicServer {
38    #[serde(default = "ConfigQuicServer::default_endpoint")]
39    pub endpoint: SocketAddr,
40    #[serde(deserialize_with = "deserialize_rustls_server_config")]
41    pub tls_config: rustls::ServerConfig,
42    /// Value in ms
43    #[serde(default = "ConfigQuicServer::default_expected_rtt")]
44    pub expected_rtt: u32,
45    /// Value in bytes/s, default with expected rtt 100 is 100Mbps
46    #[serde(
47        default = "ConfigQuicServer::default_max_stream_bandwidth",
48        deserialize_with = "deserialize_num_str"
49    )]
50    pub max_stream_bandwidth: u32,
51    /// Maximum duration of inactivity to accept before timing out the connection
52    #[serde(default = "ConfigQuicServer::default_max_idle_timeout")]
53    pub max_idle_timeout: Option<u32>,
54    /// Max number of outgoing streams
55    #[serde(default = "ConfigQuicServer::default_max_recv_streams")]
56    pub max_recv_streams: u32,
57    /// Max request size in bytes
58    #[serde(default = "ConfigQuicServer::default_max_request_size")]
59    pub max_request_size: usize,
60    #[serde(default, deserialize_with = "deserialize_x_tokens_set")]
61    pub x_tokens: HashSet<Vec<u8>>,
62}
63
64impl ConfigQuicServer {
65    pub const fn default_endpoint() -> SocketAddr {
66        SocketAddr::new(IpAddr::V4(Ipv4Addr::new(127, 0, 0, 1)), 10101)
67    }
68
69    const fn default_expected_rtt() -> u32 {
70        100
71    }
72
73    const fn default_max_stream_bandwidth() -> u32 {
74        12_500 * 1000
75    }
76
77    const fn default_max_idle_timeout() -> Option<u32> {
78        Some(30_000)
79    }
80
81    const fn default_max_recv_streams() -> u32 {
82        16
83    }
84
85    const fn default_max_request_size() -> usize {
86        1024
87    }
88
89    pub fn create_endpoint(&self) -> Result<Endpoint, CreateEndpointError> {
90        let mut server_config = quinn::ServerConfig::with_crypto(Arc::new(
91            QuicServerConfig::try_from(self.tls_config.clone())?,
92        ));
93
94        // disallow incoming uni streams
95        let transport_config = Arc::get_mut(&mut server_config.transport)
96            .ok_or(CreateEndpointError::TransportConfig)?;
97        transport_config.max_concurrent_bidi_streams(1u8.into());
98        transport_config.max_concurrent_uni_streams(0u8.into());
99
100        // set window size
101        let stream_rwnd = self.max_stream_bandwidth / 1_000 * self.expected_rtt;
102        transport_config.stream_receive_window(stream_rwnd.into());
103        transport_config.send_window(8 * stream_rwnd as u64);
104        transport_config.datagram_receive_buffer_size(Some(stream_rwnd as usize));
105
106        // set idle timeout
107        transport_config
108            .max_idle_timeout(self.max_idle_timeout.map(|ms| VarInt::from_u32(ms).into()));
109
110        Endpoint::server(server_config, self.endpoint).map_err(|error| CreateEndpointError::Bind {
111            error,
112            endpoint: self.endpoint,
113        })
114    }
115}
116
117#[derive(Debug, Error)]
118pub enum CreateEndpointError {
119    #[error("failed to crate QuicServerConfig")]
120    ServerConfig(#[from] NoInitialCipherSuite),
121    #[error("failed to modify TransportConfig")]
122    TransportConfig,
123    #[error("failed to bind {endpoint}: {error}")]
124    Bind {
125        error: io::Error,
126        endpoint: SocketAddr,
127    },
128}
129
130#[derive(Debug, Error)]
131enum ConnectionError {
132    #[error(transparent)]
133    QuinnConnection(#[from] quinn::ConnectionError),
134    #[error(transparent)]
135    QuinnReadExact(#[from] quinn::ReadExactError),
136    #[error(transparent)]
137    QuinnWrite(#[from] quinn::WriteError),
138    #[error(transparent)]
139    QuinnClosedStream(#[from] quinn::ClosedStream),
140    #[error(transparent)]
141    Io(#[from] io::Error),
142    #[error(transparent)]
143    Prost(#[from] prost::DecodeError),
144    #[error(transparent)]
145    Join(#[from] JoinError),
146    #[error("stream is not available")]
147    StreamNotAvailable,
148}
149
150#[derive(Debug)]
151pub struct QuicServer;
152
153impl QuicServer {
154    pub async fn spawn(
155        config: ConfigQuicServer,
156        messages: impl Subscribe + Clone + Send + 'static,
157        on_conn_new_cb: impl Fn() + Clone + Send + 'static,
158        on_conn_drop_cb: impl Fn() + Clone + Send + 'static,
159        version: Version<'static>,
160        shutdown: CancellationToken,
161    ) -> Result<impl Future<Output = Result<(), JoinError>>, CreateEndpointError> {
162        let endpoint = config.create_endpoint()?;
163        info!("start server at {}", config.endpoint);
164
165        Ok(tokio::spawn(async move {
166            let max_recv_streams = config.max_recv_streams;
167            let max_request_size = config.max_request_size as u64;
168            let x_tokens = Arc::new(config.x_tokens);
169
170            let mut id = 0;
171            loop {
172                tokio::select! {
173                    incoming = endpoint.accept() => {
174                        let Some(incoming) = incoming else {
175                            error!("quic connection closed");
176                            break;
177                        };
178
179                        let messages = messages.clone();
180                        let on_conn_new_cb = on_conn_new_cb.clone();
181                        let on_conn_drop_cb = on_conn_drop_cb.clone();
182                        let x_tokens = Arc::clone(&x_tokens);
183                        tokio::spawn(async move {
184                            on_conn_new_cb();
185                            if let Err(error) = Self::handle_incoming(
186                                id,
187                                incoming,
188                                messages,
189                                max_recv_streams,
190                                max_request_size,
191                                x_tokens,
192                                version.create_grpc_version_info().json(),
193                            ).await {
194                                error!("#{id}: connection failed: {error}");
195                            } else {
196                                info!("#{id}: connection closed");
197                            }
198                            on_conn_drop_cb();
199                        });
200                        id += 1;
201                    }
202                    () = shutdown.cancelled() => {
203                        endpoint.close(0u32.into(), b"shutdown");
204                        info!("shutdown");
205                        break
206                    },
207                };
208            }
209        }))
210    }
211
212    async fn handle_incoming(
213        id: u64,
214        incoming: Incoming,
215        messages: impl Subscribe,
216        max_recv_streams: u32,
217        max_request_size: u64,
218        x_tokens: Arc<HashSet<Vec<u8>>>,
219        version: String,
220    ) -> Result<(), ConnectionError> {
221        let conn = incoming.await?;
222        info!("#{id}: new connection from {:?}", conn.remote_address());
223
224        // Read request and subscribe
225        let (mut send, response, maybe_rx) = Self::handle_request(
226            id,
227            &conn,
228            messages,
229            max_recv_streams,
230            max_request_size,
231            x_tokens,
232            version,
233        )
234        .await?;
235
236        // Send response
237        let buf = response.encode_to_vec();
238        send.write_u64(buf.len() as u64).await?;
239        send.write_all(&buf).await?;
240        send.flush().await?;
241
242        let Some((recv_streams, max_backlog, mut rx)) = maybe_rx else {
243            return Ok(());
244        };
245
246        // Open connections
247        let mut streams = VecDeque::with_capacity(recv_streams as usize);
248        while streams.len() < recv_streams as usize {
249            streams.push_back(conn.open_uni().await?);
250        }
251
252        // Send loop
253        let mut msg_id = 0;
254        let mut msg_ids = BTreeSet::new();
255        let mut next_message: Option<RecvItem> = None;
256        let mut set = JoinSet::new();
257        loop {
258            if msg_id - msg_ids.first().copied().unwrap_or(msg_id) < max_backlog {
259                if let Some(message) = next_message.take() {
260                    if let Some(mut stream) = streams.pop_front() {
261                        msg_ids.insert(msg_id);
262                        set.spawn(async move {
263                            WriteVectored::new(
264                                &mut stream,
265                                &mut [
266                                    IoSlice::new(&msg_id.to_be_bytes()),
267                                    IoSlice::new(&(message.len() as u64).to_be_bytes()),
268                                    IoSlice::new(&message),
269                                ],
270                            )
271                            .await?;
272                            Ok::<_, ConnectionError>((msg_id, stream))
273                        });
274                        msg_id += 1;
275                    } else {
276                        next_message = Some(message);
277                    }
278                }
279            }
280
281            tokio::select! {
282                message = rx.next(), if next_message.is_none() => {
283                    match message {
284                        Some(Ok(message)) => next_message = Some(message),
285                        Some(Err(error)) => {
286                            error!("#{id}: failed to get message: {error}");
287                            if streams.is_empty() {
288                                let (msg_id, stream) = set.join_next().await.expect("already verified")??;
289                                msg_ids.remove(&msg_id);
290                                streams.push_back(stream);
291                            }
292                            let Some(mut stream) = streams.pop_front() else {
293                                return Err(ConnectionError::StreamNotAvailable);
294                            };
295
296                            let msg = QuicSubscribeClose {
297                                error: match error {
298                                    RecvError::Lagged => QuicSubscribeCloseError::Lagged,
299                                    RecvError::Closed => QuicSubscribeCloseError::Closed,
300                                } as i32
301                            };
302                            let message = msg.encode_to_vec();
303
304                            set.spawn(async move {
305                                stream.write_u64(u64::MAX).await?;
306                                stream.write_u64(message.len() as u64).await?;
307                                stream.write_all(&message).await?;
308                                Ok::<_, ConnectionError>((msg_id, stream))
309                            });
310                        },
311                        None => break,
312                    }
313                },
314                result = set.join_next(), if !set.is_empty() => {
315                    let (msg_id, stream) = result.expect("already verified")??;
316                    msg_ids.remove(&msg_id);
317                    streams.push_back(stream);
318                }
319            }
320        }
321
322        for (_, mut stream) in set.join_all().await.into_iter().flatten() {
323            stream.finish()?;
324        }
325        for mut stream in streams {
326            stream.finish()?;
327        }
328        drop(conn);
329
330        Ok(())
331    }
332
333    async fn handle_request(
334        id: u64,
335        conn: &Connection,
336        messages: impl Subscribe,
337        max_recv_streams: u32,
338        max_request_size: u64,
339        x_tokens: Arc<HashSet<Vec<u8>>>,
340        version: String,
341    ) -> Result<
342        (
343            SendStream,
344            QuicSubscribeResponse,
345            Option<(u32, u64, RecvStream)>,
346        ),
347        ConnectionError,
348    > {
349        let (send, mut recv) = conn.accept_bi().await?;
350
351        // Read request
352        let size = recv.read_u64().await?;
353        if size > max_request_size {
354            let msg = QuicSubscribeResponse {
355                error: Some(QuicSubscribeResponseError::RequestSizeTooLarge as i32),
356                version,
357                ..Default::default()
358            };
359            return Ok((send, msg, None));
360        }
361        let mut buf = vec![0; size as usize]; // TODO: use MaybeUninit
362        recv.read_exact(buf.as_mut_slice()).await?;
363
364        // Decode request
365        let QuicSubscribeRequest {
366            x_token,
367            recv_streams,
368            max_backlog,
369            replay_from_slot,
370            filter,
371        } = Message::decode(buf.as_slice())?;
372
373        // verify access token
374        if !x_tokens.is_empty() {
375            if let Some(error) = match x_token {
376                Some(x_token) if !x_tokens.contains(&x_token) => {
377                    Some(QuicSubscribeResponseError::XTokenInvalid as i32)
378                }
379                None => Some(QuicSubscribeResponseError::XTokenRequired as i32),
380                _ => None,
381            } {
382                let msg = QuicSubscribeResponse {
383                    error: Some(error),
384                    version,
385                    ..Default::default()
386                };
387                return Ok((send, msg, None));
388            }
389        }
390
391        // validate number of streams
392        if recv_streams == 0 || recv_streams > max_recv_streams {
393            let code = if recv_streams == 0 {
394                QuicSubscribeResponseError::ZeroRecvStreams
395            } else {
396                QuicSubscribeResponseError::ExceedRecvStreams
397            };
398            let msg = QuicSubscribeResponse {
399                error: Some(code as i32),
400                max_recv_streams: Some(max_recv_streams),
401                version,
402                ..Default::default()
403            };
404            return Ok((send, msg, None));
405        }
406
407        Ok(match messages.subscribe(replay_from_slot, filter) {
408            Ok(rx) => {
409                let pos = replay_from_slot
410                    .map(|slot| format!("slot {slot}").into())
411                    .unwrap_or(Cow::Borrowed("latest"));
412                info!("#{id}: subscribed from {pos}");
413                (
414                    send,
415                    QuicSubscribeResponse {
416                        version,
417                        ..Default::default()
418                    },
419                    Some((
420                        recv_streams,
421                        max_backlog.map(|x| x as u64).unwrap_or(u64::MAX),
422                        rx,
423                    )),
424                )
425            }
426            Err(SubscribeError::NotInitialized) => {
427                let msg = QuicSubscribeResponse {
428                    error: Some(QuicSubscribeResponseError::NotInitialized as i32),
429                    version,
430                    ..Default::default()
431                };
432                (send, msg, None)
433            }
434            Err(SubscribeError::SlotNotAvailable { first_available }) => {
435                let msg = QuicSubscribeResponse {
436                    error: Some(QuicSubscribeResponseError::SlotNotAvailable as i32),
437                    first_available_slot: Some(first_available),
438                    version,
439                    ..Default::default()
440                };
441                (send, msg, None)
442            }
443        })
444    }
445}