blob: fa7bfe506f804702cc285682b8c147effbbe871e [file] [log] [blame]
Andy Greena35c86f2013-01-31 10:16:44 +08001Changelog
2---------
3
Andy Green26319662019-08-14 10:44:14 +01004 - Master is now under the MIT license
5
Andy Green51cd9252019-08-14 09:22:50 +01006v3.2.0
7======
8
9 - This is the last planned release under LGPLv2+SLE. It's not planned to be
10 maintained like previous releases, please switch to master for the latest
11 stuff or continue to use v3.1-stable until the next release under the
12 new MIT license.
13
14 - NEW: completely refactored scheduler with a unified, sorted us-resolution
15 linked-list implementation. All polled checks like timeout are migrated
16 to use the new timers, which also work on the event lib implementations.
17 Faster operation, us-resolution timeouts and generic scheduled callbacks
18 from the event loop.
19
20 - NEW: lws_dsh specialized buffer memory allocator that can borrow space
21 from other cooperating buffers on the same list.
22
23 - NEW: lws_sequencer allows managing multi-connection processes and
24 retries
25
26 - NEW: memory buffer cert support
27
28 - NEW: LWS_WITH_NETWORK in CMake... can be configured without any network-
29 related code at all
30
31 - NEW: builds on QNX 6.5 and SmartOS
32
33 - NEW: JOSE / JWK / JWS / JWE support, for all common ciphers and algs,
34 works on OpenSSL and mbedtls backends
35
36 - NEW: gencrypto now has genaes and genec in addition to genrsa, works
37 on OpenSSL and mbedtls backends
38
39 - NEW: raw_proxy role
40
41 - NEW: Basic Auth works on ws connections
42
Andy Greeneda102e2018-12-13 20:05:12 +080043 - CHANGE: REMOVED: LWS_WITH_GENRSA, LWS_WITH_GENHASH, LWS_WITH_GENEC,
44 LWS_WITH_GENAES have all been removed and combined into LWS_WITH_GENCRYPTO
45
46 - CHANGE: REMOVED: LWS_WITH_JWS, LWS_WITH_JWE have been removed and combined
47 into LWS_WITH_JOSE
48
Andy Greenac032542018-11-16 09:10:41 +080049v3.1.0
50======
51
Andy Green502130d2018-05-10 16:13:26 +080052 - CHANGE: REMOVED: lws_client_connect() and lws_client_connect_extended()
53 compatibility apis for lws_client_connect_via_info() have been marked as
54 deprecated for several versions and are now removed. Use
Andy Greenac032542018-11-16 09:10:41 +080055 lws_client_connect_via_info() directly instead.
Andy Green502130d2018-05-10 16:13:26 +080056
Andy Greenac032542018-11-16 09:10:41 +080057 - CHANGE: CMAKE:
58 - LWS_WITH_HTTP2: now defaults ON
59
Andy Greend9f982a2018-11-19 07:40:47 +080060 - CHANGE: Minimal examples updated to use Content Security Policy best
61 practices, using
62 `LWS_SERVER_OPTION_HTTP_HEADERS_SECURITY_BEST_PRACTICES_ENFORCE` vhost
Andy Green9bed6d62018-11-23 08:47:56 +080063 option flag and disabling of inline style and scripts. A side-effect of
64 this is that buffers used to marshal headers have to be prepared to take
65 more content than previously... LWS_RECOMMENDED_MIN_HEADER_SPACE (2048
66 currently) is available for user (and internal) use to logically tie the
67 buffer size to this usecase (and follow future increases).
Andy Greend9f982a2018-11-19 07:40:47 +080068
Andy Greenac032542018-11-16 09:10:41 +080069 - NEW: CMAKE
70 - LWS_FOR_GITOHASHI: sets various cmake options suitable for gitohashi
71 - LWS_WITH_ASAN: for Linux, enable build with ASAN
72
73 Don't forget LWS_WITH_DISTRO_RECOMMENDED, which enables a wide range of lws
74 options suitable for a distro build of the library.
75
76 - NEW: lws threadpool - lightweight pool of pthreads integrated to lws wsi, with
77 all synchronization to event loop handled internally, queue for excess tasks
78 [threadpool docs](https://libwebsockets.org/git/libwebsockets/tree/lib/misc/threadpool)
79 [threadpool minimal example](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/ws-server/minimal-ws-server-threadpool)
80 Cmake config: `-DLWS_WITH_THREADPOOL=1`
81
82 - NEW: libdbus support integrated on lws event loop
83 [lws dbus docs](https://libwebsockets.org/git/libwebsockets/tree/lib/roles/dbus)
84 [lws dbus client minimal examples](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/dbus-client)
85 [lws dbus server minimal examples](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/dbus-server)
86 Cmake config: `-DLWS_ROLE_DBUS=1`
87
88 - NEW: lws allocated chunks (lwsac) - helpers for optimized mass allocation of small
89 objects inside a few larger malloc chunks... if you need to allocate a lot of
90 inter-related structs for a limited time, this removes per-struct allocation
91 library overhead completely and removes the need for any destruction handling
92 [lwsac docs](https://libwebsockets.org/git/libwebsockets/tree/lib/misc/lwsac)
93 [lwsac minimal example](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/api-tests/api-test-lwsac)
94 Cmake Config: `-DLWS_WITH_LWSAC=1`
95
96 - NEW: lws tokenizer - helper api for robustly tokenizing your own strings without
97 allocating or adding complexity. Configurable by flags for common delimiter
98 sets and comma-separated-lists in the tokenizer. Detects and reports syntax
99 errors.
100 [lws_tokenize docs](https://libwebsockets.org/git/libwebsockets/tree/include/libwebsockets/lws-tokenize.h)
101 [lws_tokenize minimal example / api test](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/api-tests/api-test-lws_tokenize)
102
103 - NEW: lws full-text search - optimized trie generation, serialization,
104 autocomplete suggestion generation and instant global search support extensible
105 to huge corpuses of UTF-8 text while remaining super lightweight on resources.
106 [full-text search docs](https://libwebsockets.org/git/libwebsockets/tree/lib/misc/fts)
107 [full-text search minimal example / api test](https://libwebsockets.org/git/libwebsockets/tree/minimal-examples/api-tests/api-test-fts)
108 [demo](https://libwebsockets.org/ftsdemo/)
109 [demo sources](https://libwebsockets.org/git/libwebsockets/tree/plugins/protocol_fulltext_demo.c)
110 Cmake config: `-DLWS_WITH_FTS=1 -DLWS_WITH_LWSAC=1`
111
112 - NEW: gzip + brotli http server-side compression - h1 and h2 automatic advertising
113 of server compression and application to files with mimetypes "text/*",
114 "application/javascript" and "image/svg.xml".
115 Cmake config: `-DLWS_WITH_HTTP_STREAM_COMPRESSION=1`, `-DLWS_WITH_HTTP_BROTLI=1`
116
117 - NEW: managed disk cache - API for managing a directory containing cached files
118 with hashed names, and automatic deletion of LRU files once the cache is
119 above a given limit.
120 [lws diskcache docs](https://libwebsockets.org/git/libwebsockets/tree/include/libwebsockets/lws-diskcache.h)
121 Cmake config: `-DLWS_WITH_DISKCACHE=1`
122
123 - NEW: http reverse proxy - lws mounts support proxying h1 or h2 requests to
124 a local or remote IP, or unix domain socket over h1. This allows microservice
125 type architectures where parts of the common URL space are actually handled
126 by external processes which may be remote or on the same machine.
127 [lws gitohashi serving](https://libwebsockets.org/git/) is handled this way.
128 CMake config: `-DLWS_WITH_HTTP_PROXY=1`
129
130 - NEW: lws_buflist - internally several types of ad-hoc malloc'd buffer have
131 been replaced by a new, exported api `struct lws_buflist`. This allows
132 multiple buffers to be chained and drawn down in strict FIFO order.
133
134 - NEW: In the case of h1 upgrade, the connection header is checked to contain
135 "upgrade". The vhost flag LWS_SERVER_OPTION_VHOST_UPG_STRICT_HOST_CHECK
136 also causes the Host: header to be confirmed to match the vhost name and
137 listen port.
Andy Greenc027c3d2018-11-21 06:46:23 +0800138
139 - NEW: If no 404 redirect for `lws_return_http_status()` is specified for the vhost,
140 the status page produced will try to bring in a stylesheet `/error.css`. This allows
141 you to produce styled 404 or other error pages with logos, graphics etc. See
142 https://libwebsockets.org/git/badrepo for an example of what you can do with it.
Andy Green502130d2018-05-10 16:13:26 +0800143
Andy Green1c08a962018-05-04 13:27:12 +0800144v3.0.0
145======
146
147 - CHANGE: Clients used to call LWS_CALLBACK_CLOSED same as servers...
148 LWS_CALLBACK_CLIENT_CLOSED has been introduced and is called for clients
149 now.
150
151 - CHANGE: LWS_CALLBACK_CLIENT_CONNECTION_ERROR used to only be directed at
152 protocols[0]. However in many cases, the protocol to bind to was provided
153 at client connection info time and the wsi bound accordingly. In those
154 cases, CONNECTION_ERROR is directed at the bound protocol, not protcols[0]
155 any more.
156
157 - CHANGE: CMAKE: the following cmake defaults have changed with this version:
158
159 - LWS_WITH_ZIP_FOPS: now defaults OFF
160 - LWS_WITH_RANGES: now defaults OFF
161 - LWS_WITH_ZLIB: now defaults OFF
162 - LWS_WITHOUT_EXTENSIONS: now defaults ON
163
164 - CHANGE: REMOVED: lws_alloc_vfs_file() (read a file to malloc buffer)
165
166 - CHANGE: REMOVED: lws_read() (no longer useful outside of lws internals)
167
168 - CHANGE: REMOVED: ESP8266... ESP32 is now within the same price range and much
169 more performant
170
171 - CHANGE: soname bump... don't forget to `ldconfig`
172
173 - NEW: all event libraries support "foreign" loop integration where lws itself
174 if just a temporary user of the loop unrelated to the actual loop lifecycle.
175
176 See `minimal-http-server-eventlib-foreign` for example code demonstrating
177 this for all the event libraries.
178
179 Internal loop in lws is also supported and demonstrated by
180 `minimal-http-server-eventlib`.
181
182 - NEW: ws-over-h2 support. This is a new RFC-on-the-way supported by Chrome
183 and shortly firefox that allows ws connections to be multiplexed back to the
184 server on the same tcp + tls wrapper h2 connection that the html and scripts
185 came in on. This is hugely faster that discrete connections.
186
187 - NEW: UDP socket adoption and related event callbacks
188
189 - NEW: Multi-client connection binding, queuing and pipelining support.
190
191 Lws detects multiple client connections to the same server and port, and
192 optimizes how it handles them according to the server type and provided
193 flags. For http/1.0, all occur with individual parallel connections. For
194 http/1.1, you can enable keepalive pipelining, so the connections occur
195 sequentially on a single network connection. For http/2, they all occur
196 as parallel streams within a single h2 network connection.
197
198 See minimal-http-client-multi for example code.
199
200 - NEW: High resolution timer API for wsi, get a callback on your wsi with
201 LWS_CALLBACK_TIMER, set and reset the timer with lws_set_timer_usecs(wsi, us)
202 Actual resolution depends on event backend. Works with all backends, poll,
203 libuv, libevent, and libev.
204
205 - NEW: Protocols can arrange vhost-protocol instance specific callbacks with
206 second resolution using `lws_timed_callback_vh_protocol()`
207
208 - NEW: ACME client plugin for self-service TLS certificates
209
210 - NEW: RFC7517 JSON Web Keys RFC7638 JWK thumbprint, and RFC7515 JSON Web
211 signatures support
212
213 - NEW: lws_cancel_service() now provides a generic way to synchronize events
214 from other threads, which appear as a LWS_CALLBACK_EVENT_WAIT_CANCELLED
215 callback on all protocols. This is compatible with all the event libraries.
216
217 - NEW: support BSD poll() where changes to the poll wait while waiting are
218 undone.
219
220 - NEW: Introduce generic hash, hmac and RSA apis that operate the same
221 regardless of OpenSSL or mbedTLS tls backend
222
223 - NEW: Introduce X509 element query api that works the same regardless of
224 OpenSSL or mbedTLS tls backend
225
226 - NEW: Introduce over 30 "minimal examples" in ./minimal-examples... these
227 replace most of the old test servers
228
229 - test-echo -> minimal-ws-server-echo and minimal-ws-client-echo
230
231 - test-server-libuv / -libevent / -libev ->
232 minimal-https-server-eventlib / -eventlib-foreign / -eventlib-demos
233
234 - test-server-v2.0 -> folded into all the minimal servers
235
236 - test-server direct http serving -> minimal-http-server-dynamic
237
238 The minimal examples allow individual standalone build using their own
239 small CMakeLists.txt.
240
241 - NEW: lws now detects any back-to-back writes that did not go through the
242 event loop inbetween and reports them. This will flag any possibility of
243 failure rather than wait until the problem happens.
244
245 - NEW: CMake has LWS_WITH_DISTRO_RECOMMENDED to select features that are
246 appropriate for distros
247
248 - NEW: Optional vhost URL `error_document_404` if given causes a redirect there
249 instead of serve the default 404 page.
250
251 - NEW: lws_strncpy() wrapper guarantees NUL in copied string even if it was
252 truncated to fit.
253
254 - NEW: for client connections, local protocol binding name can be separated
255 from the ws subprotocol name if needed, using .local_protocol_name
256
257 - NEW: Automatic detection of time discontiguities
258
259 - NEW: Applies TCP_USER_TIMEOUT for Linux tcp keepalive where available
260
261 - QA: 1600 tests run on each commit in Travis CI, including almost all
262 Autobahn in client and server mode, various h2load tests, h2spec, attack.sh
263 the minimal example selftests and others.
264
265 - QA: fix small warnings introduced on gcc8.x (eg, Fedora 28)
266
267 - QA: Add most of -Wextra on gcc (-Wsign-compare, -Wignored-qualifiers,
268 -Wtype-limits, -Wuninitialized)
269
270 - QA: clean out warnings on windows
271
272 - QA: pass all 146 h2spec tests now on strict
273
274 - QA: introduce 35 selftests that operate different minimal examples against
275 each other and confirm the results.
276
277 - QA: LWS_WITH_MINIMAL_EXAMPLES allows mass build of all relevant minimal-
278 examples with the LWS build, for CI and to make all the example binaries
279 available from the lws build dir ./bin
280
281 - REFACTOR: the lws source directory layout in ./lib has been radically
282 improved, and there are now README.md files in selected subdirs with extra
283 documentation of interest to people working on lws itself.
284
285 - REFACTOR: pipelined transactions return to the event loop before starting the
286 next part.
287
288 - REFACTOR: TLS: replace all TLS library constants with generic LWS ones and
289 adapt all the TLS library code to translate to these common ones.
290
291 Isolated all the tls-related private stuff in `./lib/tls/private.h`, and all
292 the mbedTLS stuff in `./lib/tls/mbedtls` + openSSL stuff in
293 `./lib/tls/openssl`
294
295 - REFACTOR: the various kinds of wsi possible with lws have been extracted
296 from the main code and isolated into "roles" in `./lib/roles` which
297 communicate with the core code via an ops struct. Everything related to
298 ah is migrated to the http role.
299
300 wsi modes are eliminated and replaced by the ops pointer for the role the
301 wsi is performing. Generic states for wsi are available to control the
302 lifecycle using core code.
303
304 Adding new "roles" is now much easier with the changes and ops struct to
305 plug into.
306
307 - REFACTOR: reduce four different kinds of buffer management in lws into a
308 generic scatter-gather struct lws_buflist.
309
310 - REFACTOR: close notifications go through event loop
311
312
Andy Greenfcf5b2c2017-10-16 20:09:58 +0800313v2.4.0
314======
315
316 - HTTP/2 server support is now mature and usable! LWS_WITH_HTTP2=1 enables it.
317 Uses ALPN to serve HTTP/2, HTTP/1 and ws[s] connections all from the same
318 listen port seamlessly. (Requires ALPN-capable OpenSSL 1.1 or mbedTLS).
319
320 - LWS_WITH_MBEDTLS=1 at CMake now builds and works against mbedTLS instead of
321 OpenSSL. Most things work identically, although on common targets where
322 OpenSSL has acceleration, mbedTLS is many times slower in operation. However
323 it is a lot smaller codewise.
324
325 - Generic hash apis introduced that work the same on mbedTLS or OpenSSL backend
326
327 - LWS_WITH_PEER_LIMITS tracks IPs across all vhosts and allows restrictions on
328 both the number of simultaneous connections and wsi in use for any single IP
329
330 - lws_ring apis provide a generic single- or multi-tail ringbuffer... mirror
331 protocol now uses this. Features include ring elements may be sized to fit
332 structs in the ringbuffer, callback when no tail any longer needs an element
333 and it can be deleted, and zerocopy options to write new members directly
334 into the ringbuffer, and use the ringbuffer element by address too.
335
336 - abstract ssh 2 server plugin included, with both plugin and standalone
337 demos provided. You can bind the plugin to a vhost and also serve full-
338 strength ssh from the vhost. IO from the ssh server is controlled by an
339 "ops" struct of callbacks for tx, rx, auth etc.
340
341 - Many fixes, cleanups, source refactors and other improvements.
342
343
Andy Greene6bd6292017-07-28 14:13:42 +0800344v2.3.0
345======
346
347 - ESP32 OpenSSL support for client and server
348
349 - ESP32 4 x WLAN credential slots may be configured
350
351 - Libevent event loop support
352
353 - SOCKS5 proxy support
354
355 - lws_meta protocol for websocket connection multiplexing
356
357 - lws_vhost_destroy() added... allows dynamic removal of listening
358 vhosts. Vhosts with shared listen sockets adopt the listen socket
359 automatically if the owner is destroyed.
360
361 - IPv6 on Windows
362
363 - Improved CGI handling suitable for general CGI scripting, eg, PHP
364
365 - Convert even the "old style" test servers to use statically included
366 plugin sources
367
368 - LWS_WITH_STATS cmake option dumps resource usage and timing information
369 every few seconds to debug log, including latency information about
370 delay from asking for writeable callback to getting it
371
372 - Large (> 2GB) files may be served
373
374 - LWS_WITH_HTTP_PROXY Cmake option adds proxying mounts
375
376 - Workaround for libev build by disabling -Werror on the test app
377
378 - HTTP2 support disabled since no way to serve websockets on it
379
380
Andy Green6be573f2017-03-06 15:35:45 +0800381v2.2.0
382======
383
384Major new features
385
386 - A mount can be protected by Basic Auth... in lwsws it looks like this
387
388 ```
389{
390 "mountpoint": "/basic-auth",
391 "origin": "file://_lws_ddir_/libwebsockets-test-server/private",
392 "basic-auth": "/var/www/balogins-private"
393}
394```
395
396The text file named in `basic-auth` contains user:password information
397one per line.
398
399See README.lwsws.md for more information.
400
401 - RFC7233 RANGES support in lws server... both single and multipart.
402 This allows seeking for multimedia file serving and download resume.
403 It's enabled by default but can be disabled by CMake option.
404
405 - On Linux, lwsws can reload configuration without dropping ongoing
406 connections, when sent a SIGHUP. The old configuration drops its
407 listen sockets so the new configuration can listen on them.
408 New connections connect to the server instance with the new
409 configuration. When all old connections eventually close, the old
410 instance automatically exits. This is equivalent to
411 `systemctl reload apache`
412
413 - New `adopt` api allow adoption including SSL negotiation and
414 for raw sockets and file descriptors.
415
416 - Chunked transfer encoding supported for client and server
417
418 - Adaptations to allow operations inside OPTEE Secure World
419
420 - ESP32 initial port - able to do all test server functions. See
421 README.build.md
422
423 - Serving gzipped files from inside a ZIP file is supported... this
424 includes directly serving the gzipped content if the client
425 indicated it could accept it (ie, almost all browsers) saving
426 bandwidth and time. For clients that can't accept it, lws
427 automatically decompresses and serves the content in memory-
428 efficient chunks. Only a few hundred bytes of heap are needed
429 to serve any size file from inside the zip. See README.coding.md
430
431 - RAW file descriptors may now be adopted into the lws event loop,
432 independent of event backend (including poll service).
433 See README.coding.md
434
435 - RAW server socket descriptors may now be enabled on the vhost if
436 the first thing sent on the connection is not a valid http method.
437 The user code can associate these with a specific protocol per
438 vhost, and RAW-specific callbacks appear there for creation, rx,
439 writable and close. See libwebsockets-test-server-v2.0 for an example.
440 See README.coding.md
441
442 - RAW client connections are now possible using the method "RAW".
443 After connection, the socket is associated to the protocol
444 named in the client connection info and RAW-specific callbacks
445 appear there for creation, rx, writable and close.
446 See libwebsockets-test-client (with raw://) for an example.
447 See README.coding.md
448
449
Andy Green73557502016-10-06 21:48:20 +0800450v2.1.0
451======
452
453Major new features
454
455 - Support POST arguments, including multipart and file attachment
456
457 - Move most of lwsws into lws, make the stub CC0
458
459 - Add loopback test plugin to confirm client ws / http coexistence
460
461 - Integrate lwsws testing on Appveyor (ie, windows)
462
463 - Introduce helpers for sql, urlencode and urldecode sanitation
464
465 - Introduce LWS_CALLBACK_HTTP_BIND_PROTOCOL / DROP_PROTOCOL that
466 are compatible with http:/1.1 pipelining and different plugins
467 owning different parts of the URL space
468
469 - lwsgs - Generic Sessions plugin supports serverside sessions,
470 cookies, hashed logins, forgot password etc
471
472 - Added APIs for sending email to SMTP servers
473
474 - Messageboard example plugin for lwsgs
475
476 - Automatic PING sending at fixed intervals and close if no response
477
478 - Change default header limit in ah to 4096 (from 1024)
479
480 - Add SNI matching for wildcards if no specific wildcard vhost name match
481
482 - Convert docs to Doxygen
483
484 - ESP8266 support ^^
485
Enno Boland7731a3e2016-05-05 22:08:41 +0200486Fixes
487-----
488
Andy Green73557502016-10-06 21:48:20 +0800489See git log v2.0.0..
Enno Boland7731a3e2016-05-05 22:08:41 +0200490
Andy Greenfb8be052016-05-12 19:39:29 +0800491
Enno Boland7731a3e2016-05-05 22:08:41 +0200492
Andy Green55006432016-05-05 09:40:18 +0800493v2.0.0
494======
495
496Summary
497-------
498
499 - There are only api additions, the api is compatible with v1.7.x. But
500 there is necessarily an soname bump to 8.
501
502 - If you are using lws client, you mainly need to be aware the option
503 LWS_SERVER_OPTION_DO_SSL_GLOBAL_INIT is needed at context-creation time
504 if you will use SSL.
505
506 - If you are using lws for serving, the above is also true but there are
507 many new features to simplify your code (and life). There is a
508 summany online here
509
510 https://libwebsockets.org/lws-2.0-new-features.html
511
512 but basically the keywords are vhosts, mounts and plugins. You can now
513 do the web serving part from lws without any user callback code at all.
514 See ./test-server/test-server-v2.0.c for an example, it has no user
515 code for ws either since it uses the protocol plugins... that one C file
516 is all that is needed to do the whole test server function.
517
518 You now have the option to use a small generic ws-capable webserver
519 "lwsws" and write your ws part as a plugin. That eliminates even
520 cut-and-pasting the test server code and offers more configurable
521 features like control over http cacheability in JSON.
522
523
Andy Green0c3cc2e2016-02-20 09:12:52 +0800524Fixes
525-----
526
Andy Green55006432016-05-05 09:40:18 +0800527These are already in 1.7.x series
528
Andy Green0c3cc2e2016-02-20 09:12:52 +08005291) MAJOR (Windows-only) fix assert firing
530
5312) MAJOR http:/1.1 connections handled by lws_return_http_status() did not
532get sent a content-length resulting in the link hanging until the peer closed
533it. attack.sh updated to add a test for this.
534
Andy Green26d42492016-02-24 12:40:21 +08005353) MINOR An error about hdr struct in _lws_ws_related is corrected, it's not
536known to affect anything until after it was fixed
537
Andy Green5c0bcf42016-02-24 21:27:46 +08005384) MINOR During the close shutdown wait state introduced at v1.7, if something
539requests callback on writeable for the socket it will busywait until the
540socket closes
541
Andy Greendbfbbb42016-02-24 20:58:19 +08005425) MAJOR Although the test server has done it for a few versions already, it
543is now required for the user code to explicitly call
544
545 if (lws_http_transaction_completed(wsi))
546 return -1;
547
548when it finishes replying to a transaction in http. Previously the library
549did it for you, but that disallowed large, long transfers with multiple
550trips around the event loop (and cgi...).
551
Andy Green4ba798d2016-02-25 21:50:49 +08005526) MAJOR connections on ah waiting list that closed did not get removed from
553the waiting list...
554
Andy Green83af28a2016-02-28 10:55:31 +08005557) MAJOR since we added the ability to hold an ah across http keepalive
556transactions where more headers had already arrived, we broke the ability
557to tell if more headers had arrived. Result was if the browser didn't
558close the keepalive, we retained ah for the lifetime of the keepalive,
559using up the pool.
560
Andy Green442e1c82016-02-29 10:10:42 +08005618) MAJOR windows-only-POLLHUP was not coming
562
Andy Green4f5ebec2016-03-09 23:13:31 +08005639) Client should not send ext hdr if no exts
Andy Greendbfbbb42016-02-24 20:58:19 +0800564
Andy Green0c3cc2e2016-02-20 09:12:52 +0800565Changes
566-------
567
5681) MINOR test-server gained some new switches
569
570 -C <file> use external SSL cert file
571 -K <file> use external SSL key file
572 -A <file> use external SSL CA cert file
573
574 -u <uid> set effective uid
575 -g <gid> set effective gid
576
577together you can use them like this to have the test-server work with the
578usual purchased SSL certs from an official CA.
579
580 --ssl -C your.crt -K your.key -A your.cer -u 99 -g 99
581
5822) MINOR the OpenSSL magic to setup ECDH cipher usage is implemented in the
583library, and the ciphers restricted to use ECDH only.
584Using this, the lws test server can score an A at SSLLABS test
585
5863) MINOR STS (SSL always) header is added to the test server if you use --ssl. With
587that, we score A+ at SSLLABS test
588
5894) MINOR daemonize function (disabled at cmake by default) is updated to work
590with systemd
591
5925) MINOR example systemd .service file now provided for test server
593(not installed by default)
594
Andy Green0ad1a6e2016-02-20 14:05:55 +08005956) test server html is updated with tabs and a new live server monitoring
596feature. Input sanitization added to the js.
597
Andy Green2d8d35a2016-02-29 14:19:16 +08005987) client connections attempted when no ah is free no longer fail, they are
599just deferred until an ah becomes available.
600
Andy Greena661ee52016-02-29 13:18:30 +08006018) The test client pays attention to if you give it an http:/ or https://
602protocol string to its argument in URL format. If so, it stays in http[s]
603client mode and doesn't upgrade to ws[s], allowing you to do generic http client
Andy Green5c8906e2016-03-13 16:44:19 +0800604operations. Receiving transfer-encoding: chunked is supported.
Andy Greena661ee52016-02-29 13:18:30 +0800605
Andy Green1e5a9ad2016-03-20 11:59:53 +08006069) If you enable -DLWS_WITH_HTTP_PROXY=1 at cmake, the test server has a
607new URI path http://localhost:7681/proxytest If you visit here, a client
608connection to http://example.com:80 is spawned, and the results piped on
609to your original connection.
610
61110) Also with LWS_WITH_HTTP_PROXY enabled at cmake, lws wants to link to an
612additional library, "libhubbub". This allows lws to do html rewriting on the
613fly, adjusting proxied urls in a lightweight and fast way.
Andy Greenfb5f33b2016-03-01 07:19:01 +0800614
Andy Greenc6fd3602016-03-23 09:22:11 +080061511) There's a new context creation flag LWS_SERVER_OPTION_DO_SSL_GLOBAL_INIT,
616this is included automatically if you give any other SSL-related option flag.
617If you give no SSL-related option flag, nor this one directly, then even
618though SSL support may be compiled in, it is never initialized nor used for the
619whole lifetime of the lws context.
620
621Conversely in order to prepare the context to use SSL, even though, eg, you
622are not listening on SSL but will use SSL client connections later, you must
623give this flag explicitly to make sure SSL is initialized.
624
Andy Green2d8d35a2016-02-29 14:19:16 +0800625
Andy Greend7fddad2016-02-18 20:36:55 +0800626User API additions
627------------------
628
Andy Green0c3cc2e2016-02-20 09:12:52 +08006291) MINOR APIBREAK There's a new member in struct lws_context_creation_info, ecdh_curve,
Andy Greend7fddad2016-02-18 20:36:55 +0800630which lets you set the name of the ECDH curve OpenSSL should use. By
631default (if you leave ecdh_curve NULL) it will use "prime256v1"
632
Andy Green51d9afa2016-02-24 11:05:56 +08006332) MINOR NEWAPI It was already possible to adopt a foreign socket that had not
634been read from using lws_adopt_socket() since v1.7. Now you can adopt a
635partially-used socket if you don't need SSL, by passing it what you read
636so it can drain that before reading from the socket.
637
638LWS_VISIBLE LWS_EXTERN struct lws *
639lws_adopt_socket_readbuf(struct lws_context *context, lws_sockfd_type accept_fd,
640 const char *readbuf, size_t len);
Andy Greend7fddad2016-02-18 20:36:55 +0800641
Andy Green6a8099b2016-02-21 21:25:48 +08006423) MINOR NEWAPI CGI type "network io" subprocess execution is now possible from
643a simple api.
644
645LWS_VISIBLE LWS_EXTERN int
Andy Green1a138852016-03-20 11:55:25 +0800646lws_cgi(struct lws *wsi, char * const *exec_array, int script_uri_path_len,
647 int timeout_secs);
Andy Green6a8099b2016-02-21 21:25:48 +0800648
649LWS_VISIBLE LWS_EXTERN int
650lws_cgi_kill(struct lws *wsi);
651
652To use it, you must first set the cmake option
653
654$ cmake .. -DLWS_WITH_CGI=1
655
656See test-server-http.c and test server path
657
658http://localhost:7681/cgitest
659
660stdin gets http body, you can test it with wget
661
662$ echo hello > hello.txt
663$ wget http://localhost:7681/cgitest --post-file=hello.txt -O- --quiet
664lwstest script
665read="hello"
666
Andy Green1a138852016-03-20 11:55:25 +0800667The test script returns text/html table showing /proc/meminfo. But the cgi
668support is complete enough to run cgit cgi.
669
Andy Greend61bed32016-02-25 15:01:55 +08006704) There is a helper api for forming logging timestamps
671
672LWS_VISIBLE int
673lwsl_timestamp(int level, char *p, int len)
674
675this generates this kind of timestamp for use as logging preamble
676
677lwsts[13116]: [2016/01/25 14:52:52:8386] NOTICE: Initial logging level 7
678
Andy Greena661ee52016-02-29 13:18:30 +08006795) struct lws_client_connect_info has a new member
680
681 const char *method
682
683If it's NULL, then everything happens as before, lws_client_connect_via_info()
684makes a ws or wss connection to the address given.
685
686If you set method to a valid http method like "GET", though, then this method
687is used and the connection remains in http[s], it's not upgraded to ws[s].
688
689So with this, you can perform http[s] client operations as well as ws[s] ones.
690
691There are 4 new related callbacks
692
693 LWS_CALLBACK_ESTABLISHED_CLIENT_HTTP = 44,
694 LWS_CALLBACK_CLOSED_CLIENT_HTTP = 45,
695 LWS_CALLBACK_RECEIVE_CLIENT_HTTP = 46,
696 LWS_CALLBACK_COMPLETED_CLIENT_HTTP = 47,
Andy Green6a8099b2016-02-21 21:25:48 +0800697
Andy Green494418a2016-03-02 09:17:22 +08006986) struct lws_client_connect_info has a new member
699
700 const char *parent_wsi
701
702if non-NULL, the client wsi is set to be a child of parent_wsi. This ensures
703if parent_wsi closes, then the client child is closed just before.
704
Andy Green0f9904f2016-03-17 15:26:49 +08007057) If you're using SSL, there's a new context creation-time option flag
706LWS_SERVER_OPTION_REDIRECT_HTTP_TO_HTTPS. If you give this, non-ssl
707connections to the server listen port are accepted and receive a 301
708redirect to / on the same host and port using https://
709
Andy Greenc5376b12016-04-08 09:45:49 +08007108) User code may set per-connection extension options now, using a new api
711"lws_set_extension_option()".
712
713This should be called from the ESTABLISHED callback like this
714
715 lws_set_extension_option(wsi, "permessage-deflate",
716 "rx_buf_size", "12"); /* 1 << 12 */
717
718If the extension is not active (missing or not negotiated for the
719connection, or extensions are disabled on the library) the call is
720just returns -1. Otherwise the connection's extension has its
721named option changed.
722
723The extension may decide to alter or disallow the change, in the
724example above permessage-deflate restricts the size of his rx
725output buffer also considering the protocol's rx_buf_size member.
726
727
Andy Greencd0c6962016-03-28 10:12:37 +0800728New application lwsws
729---------------------
730
731A libwebsockets-based general webserver is built by default now, lwsws.
732
733It's configured by JSON, by default in
734
735 /etc/lwsws/conf
736
737which contains global lws context settings like this
738
739{
740 "global": {
741 "uid": "99",
742 "gid": "99",
743 "interface": "eth0",
744 "count-threads": "1"
745 }
746}
747
748 /etc/lwsws/conf.d/*
749
750which contains zero or more files describing vhosts, like this
751
752{
753 "vhosts": [
754 { "name": "warmcat.com",
755 "port": "443",
756 "host-ssl-key": "/etc/pki/tls/private/warmcat.com.key",
757 "host-ssl-cert": "/etc/pki/tls/certs/warmcat.com.crt",
758 "host-ssl-ca": "/etc/pki/tls/certs/warmcat.com.cer",
759 "mounts": [
760 { "/": [
761 { "home": "file:///var/www/warmcat.com" },
762 { "default": "index.html" }
763 ]
764 }
765 ]
766 }
767 ]
768}
769
770
Andy Green0c3cc2e2016-02-20 09:12:52 +0800771
Andy Green9c60ed92016-02-16 12:32:18 +0800772v1.7.0
773======
774
Andy Green67112662016-01-11 11:34:01 +0800775Extension Changes
776-----------------
777
7781) There is now a "permessage-deflate" / RFC7692 implementation. It's very
779similar to "deflate-frame" we have offered for a long while; deflate-frame is
780now provided as an alias of permessage-deflate.
781
782The main differences are that the new permessage-deflate implementation:
783
784 - properly performs streaming respecting input and output buffer limits. The
785 old deflate-frame implementation could only work on complete deflate input
786 and produce complete inflate output for each frame. The new implementation
787 only mallocs buffers at initialization.
788
789 - goes around the event loop after each input package is processed allowing
790 interleaved output processing. The RX flow control api can be used to
791 force compressed input processing to match the rate of compressed output
792 processing (test--echo shows an example of how to do this).
793
794 - when being "deflate-frame" for compatibility he uses the same default zlib
795 settings as the old "deflate-frame", but instead of exponentially increasing
796 malloc allocations until the whole output will fit, he observes the default
797 input and output chunking buffer sizes of "permessage-deflate", that's
798 1024 in and 1024 out at a time.
799
8002) deflate-stream has been disabled for many versions (for over a year) and is
801now removed. Browsers are now standardizing on "permessage-deflate" / RFC7692
802
8033) struct lws_extension is simplified, and lws extensions now have a public
804api (their callback) for use in user code to compose extensions and options
805the user code wants. lws_get_internal_exts() is deprecated but kept around
806as a NOP. The changes allow one extension implementation to go by different
807names and allows the user client code to control option offers per-ext.
808
809The test client and server are updated to use the new way. If you use
810the old way it should still work, but extensions will be disabled until you
811update your code.
812
813Extensions are now responsible for allocating and per-instance private struct
814at instance construction time and freeing it when the instance is destroyed.
815Not needing to know the size means the extension's struct can be opaque
816to user code.
817
818
Andy Green3df58002015-12-25 12:44:12 +0800819User api additions
820------------------
821
Andy Green200a6a22016-02-15 20:36:02 +08008221) The info struct gained three new members
Andy Green3df58002015-12-25 12:44:12 +0800823
824 - max_http_header_data: 0 for default (1024) or set the maximum amount of known
825 http header payload that lws can deal with. Payload in unknown http
826 headers is dropped silently. If for some reason you need to send huge
827 cookies or other HTTP-level headers, you can now increase this at context-
828 creation time.
829
830 - max_http_header_pool: 0 for default (16) or set the maximum amount of http
831 headers that can be tracked by lws in this context. For the server, if
832 the header pool is completely in use then accepts on the listen socket
833 are disabled until one becomes free. For the client, if you simultaneously
834 have pending connects for more than this number of client connections,
835 additional connects will fail until some of the pending connections timeout
836 or complete.
837
Andy Green200a6a22016-02-15 20:36:02 +0800838 - timeout_secs: 0 for default (currently 20s), or set the library's
839 network activity timeout to the given number of seconds
840
Andy Green3df58002015-12-25 12:44:12 +0800841HTTP header processing in lws only exists until just after the first main
842callback after the HTTP handshake... for ws connections that is ESTABLISHED and
843for HTTP connections the HTTP callback.
844
845So these settings are not related to the maximum number of simultaneous
Andy Green3246ebb2015-12-26 12:03:06 +0800846connections, but the number of HTTP handshakes that may be expected or ongoing,
Andy Green3df58002015-12-25 12:44:12 +0800847or have just completed, at one time. The reason it's useful is it changes the
848memory allocation for header processing to be one-time at context creation
849instead of every time there is a new connection, and gives you control over
850the peak allocation.
851
852Setting max_http_header_pool to 1 is fine it will just queue incoming
853connections before the accept as necessary, you can still have as many
Andy Green5b85e392015-12-26 13:23:11 +0800854simultaneous post-header connections as you like. Since the http header
855processing is completed and the allocation released after ESTABLISHED or the
856HTTP callback, even with a pool of 1 many connections can be handled rapidly.
857
Andy Green066a7a12015-12-26 15:47:06 +08008582) There is a new callback that allows the user code to get acccess to the
859optional close code + aux data that may have been sent by the peer.
860
861LWS_CALLBACK_WS_PEER_INITIATED_CLOSE:
862 The peer has sent an unsolicited Close WS packet. @in and
863 @len are the optional close code (first 2 bytes, network
864 order) and the optional additional information which is not
865 defined in the standard, and may be a string or non-human-
866 readble data.
867 If you return 0 lws will echo the close and then close the
Andy Green67112662016-01-11 11:34:01 +0800868 connection. If you return nonzero lws will just close the
869 connection.
Andy Green066a7a12015-12-26 15:47:06 +0800870
871As usual not handling it does the right thing, if you're not interested in it
872just ignore it.
873
874The test server has "open and close" testing buttons at the bottom, if you
875open and close that connection, on close it will send a close code 3000 decimal
876and the string "Bye!" as the aux data.
877
878The test server dumb-increment callback handles this callback reason and prints
879
880lwsts[15714]: LWS_CALLBACK_WS_PEER_INITIATED_CLOSE: len 6
881lwsts[15714]: 0: 0x0B
882lwsts[15714]: 1: 0xB8
883lwsts[15714]: 2: 0x42
884lwsts[15714]: 3: 0x79
885lwsts[15714]: 4: 0x65
886lwsts[15714]: 5: 0x21
887
Andy Green1fb95e82015-12-26 17:20:34 +08008883) There is a new API to allow the user code to control the content of the
889close frame sent when about to return nonzero from the user callback to
890indicate the connection should close.
891
892/**
893 * lws_close_reason - Set reason and aux data to send with Close packet
894 * If you are going to return nonzero from the callback
895 * requesting the connection to close, you can optionally
896 * call this to set the reason the peer will be told if
897 * possible.
898 *
899 * @wsi: The websocket connection to set the close reason on
900 * @status: A valid close status from websocket standard
901 * @buf: NULL or buffer containing up to 124 bytes of auxiliary data
902 * @len: Length of data in @buf to send
903 */
904LWS_VISIBLE LWS_EXTERN void
905lws_close_reason(struct lws *wsi, enum lws_close_status status,
906 unsigned char *buf, size_t len);
907
908An extra button is added to the "open and close" test server page that requests
909that the test server close the connection from his end.
910
911The test server code will do so by
912
913 lws_close_reason(wsi, LWS_CLOSE_STATUS_GOINGAWAY,
914 (unsigned char *)"seeya", 5);
915 return -1;
916
917The browser shows the close code and reason he received
918
919websocket connection CLOSED, code: 1001, reason: seeya
920
Vijay Khurdiyae73d4462016-01-15 16:21:51 +08009214) There's a new context creation time option flag
Andy Green44a7f652015-12-29 11:20:09 +0800922
923LWS_SERVER_OPTION_VALIDATE_UTF8
924
925if you set it in info->options, then TEXT and CLOSE frames will get checked to
926confirm that they contain valid UTF-8. If they don't, the connection will get
927closed by lws.
928
Vijay Khurdiyae73d4462016-01-15 16:21:51 +08009295) ECDH Certs are now supported. Enable the CMake option
930
931cmake .. -DLWS_SSL_SERVER_WITH_ECDH_CERT=1
932
933**and** the info->options flag
934
Andy Greenff696482016-02-17 07:46:27 +0800935LWS_SERVER_OPTION_SSL_ECDH
Vijay Khurdiyae73d4462016-01-15 16:21:51 +0800936
937to build in support and select it at runtime.
938
Andy Greenff696482016-02-17 07:46:27 +08009396) There's a new api lws_parse_uri() that simplifies chopping up
Andy Green809d69a2016-01-14 11:37:56 +0800940https://xxx:yyy/zzz uris into parts nicely. The test client now uses this
Andy Greend3a55052016-01-19 03:34:24 +0800941to allow proper uris as well as the old address style.
942
9437) SMP support is integrated into LWS without any internal threading. It's
944very simple to use, libwebsockets-test-server-pthread shows how to do it,
945use -j <n> argument there to control the number of service threads up to 32.
946
947Two new members are added to the info struct
948
949 unsigned int count_threads;
950 unsigned int fd_limit_per_thread;
951
952leave them at the default 0 to get the normal singlethreaded service loop.
953
954Set count_threads to n to tell lws you will have n simultaneous service threads
955operating on the context.
956
957There is still a single listen socket on one port, no matter how many
958service threads.
959
960When a connection is made, it is accepted by the service thread with the least
961connections active to perform load balancing.
962
963The user code is responsible for spawning n threads running the service loop
964associated to a specific tsi (Thread Service Index, 0 .. n - 1). See
965the libwebsockets-test-server-pthread for how to do.
966
967If you leave fd_limit_per_thread at 0, then the process limit of fds is shared
968between the service threads; if you process was allowed 1024 fds overall then
969each thread is limited to 1024 / n.
970
971You can set fd_limit_per_thread to a nonzero number to control this manually, eg
972the overall supported fd limit is less than the process allowance.
973
974You can control the context basic data allocation for multithreading from Cmake
975using -DLWS_MAX_SMP=, if not given it's set to 32. The serv_buf allocation
976for the threads (currently 4096) is made at runtime only for active threads.
977
978Because lws will limit the requested number of actual threads supported
979according to LWS_MAX_SMP, there is an api lws_get_count_threads(context) to
980discover how many threads were actually allowed when the context was created.
981
982It's required to implement locking in the user code in the same way that
983libwebsockets-test-server-pthread does it, for the FD locking callbacks.
984
Andy Greenba119e92016-01-26 21:40:32 +0800985If LWS_MAX_SMP=1, then there is no code related to pthreads compiled in the
986library. If more than 1, a small amount of pthread mutex code is built into
987the library.
Andy Green809d69a2016-01-14 11:37:56 +0800988
Andy Greenba119e92016-01-26 21:40:32 +08009898) New API
990
991LWS_VISIBLE struct lws *
992lws_adopt_socket(struct lws_context *context, lws_sockfd_type accept_fd)
993
994allows foreign sockets accepted by non-lws code to be adopted by lws as if they
995had just been accepted by lws' own listen socket.
Andy Green3df58002015-12-25 12:44:12 +0800996
Danomi Czaski4e9c7f32016-01-28 09:40:53 +08009979) X-Real-IP: header has been added as WSI_TOKEN_HTTP_X_REAL_IP
998
Andy Green86ed65f2016-02-14 09:27:41 +080099910) Libuv support is added, there are new related user apis
1000
1001typedef void (lws_uv_signal_cb_t)(uv_loop_t *l, uv_signal_t *w, int revents);
1002
1003LWS_VISIBLE LWS_EXTERN int
1004lws_uv_sigint_cfg(struct lws_context *context, int use_uv_sigint,
1005 lws_uv_signal_cb_t *cb);
1006
1007LWS_VISIBLE LWS_EXTERN int
1008lws_uv_initloop(struct lws_context *context, uv_loop_t *loop, int tsi);
1009
1010LWS_VISIBLE void
1011lws_uv_sigint_cb(uv_loop_t *loop, uv_signal_t *watcher, int revents);
1012
1013and CMAKE option
1014
1015LWS_WITH_LIBUV
1016
Danomi Czaski4e9c7f32016-01-28 09:40:53 +08001017
Andy Green3246ebb2015-12-26 12:03:06 +08001018User api changes
1019----------------
1020
10211) LWS_SEND_BUFFER_POST_PADDING is now 0 and deprecated. You can remove it; if
1022you still use it, obviously it does nothing. Old binary code with nonzero
1023LWS_SEND_BUFFER_POST_PADDING is perfectly compatible, the old code just
Andy Green5b85e392015-12-26 13:23:11 +08001024allocated a buffer bigger than the library is going to use.
Andy Green3246ebb2015-12-26 12:03:06 +08001025
Andy Green5b85e392015-12-26 13:23:11 +08001026The example apps no longer use LWS_SEND_BUFFER_POST_PADDING.
Andy Green3246ebb2015-12-26 12:03:06 +08001027
Andy Green4e2ac762015-12-26 20:26:11 +08001028The only path who made use of it was sending with LWS_WRITE_CLOSE --->
Andy Green3246ebb2015-12-26 12:03:06 +08001029
Andy Green1fb95e82015-12-26 17:20:34 +080010302) Because of lws_close_reason() formalizing handling close frames,
1031LWS_WRITE_CLOSE is removed from libwebsockets.h. It was only of use to send
1032close frames...close frame content should be managed using lws_close_reason()
1033now.
1034
Andy Green44a7f652015-12-29 11:20:09 +080010353) We check for invalid CLOSE codes and complain about protocol violation in
1036our close code. But it changes little since we were in the middle of closing
1037anyway.
1038
10394) zero-length RX frames and zero length TX frames are now allowed.
1040
10415) Pings and close used to be limited to 124 bytes, the correct limit is 125
1042so that is now also allowed.
Andy Green3246ebb2015-12-26 12:03:06 +08001043
Steffen Vogelf9267172016-02-09 07:19:15 +010010446) LWS_PRE is provided as a synonym for LWS_SEND_BUFFER_PRE_PADDING, either is
Andy Green67112662016-01-11 11:34:01 +08001045valid to use now.
1046
10477) There's generic support for RFC7462 style extension options built into the
1048library now. As a consequence, a field "options" is added to lws_extension.
1049It can be NULL if there are no options on the extension. Extension internal
1050info is part of the public abi because extensions may be implemented outside
1051the library.
1052
Danomi Czaski4e9c7f32016-01-28 09:40:53 +080010538) WSI_TOKEN_PROXY enum was accidentally defined to collide with another token
1054of value 73. That's now corrected and WSI_TOKEN_PROXY moved to his own place at
105577.
1056
Andy Green86ed65f2016-02-14 09:27:41 +080010579) With the addition of libuv support, libev is not the only event loop
1058library in town and his api names must be elaborated with _ev_
1059
1060 Callback typedef: lws_signal_cb ---> lws_ev_signal_cb_t
1061 lws_sigint_cfg --> lws_ev_sigint_cfg
1062 lws_initloop --> lws_ev_initloop
1063 lws_sigint_cb --> lws_ev_sigint_cb
1064
106510) Libev support is made compatible with multithreaded service,
1066lws_ev_initloop (was lws_initloop) gets an extra argument for the
1067thread service index (use 0 if you will just have 1 service thread).
1068
1069LWS_VISIBLE LWS_EXTERN int
Andy Greenff696482016-02-17 07:46:27 +08001070lws_ev_initloop(struct lws_context *context, ev_loop_t *loop, int tsi);
Andy Green86ed65f2016-02-14 09:27:41 +08001071
Andy Green3df58002015-12-25 12:44:12 +08001072
Andy Greenaef3dc42016-05-06 07:45:19 +08001073(for earlier changelogs, see the tagged releases)