1 /***************************************************************************
2 * Copyright (C) 2005-2020 by the Quassel Project *
3 * devel@quassel-irc.org *
5 * This program is free software; you can redistribute it and/or modify *
6 * it under the terms of the GNU General Public License as published by *
7 * the Free Software Foundation; either version 2 of the License, or *
8 * (at your option) version 3. *
10 * This program is distributed in the hope that it will be useful, *
11 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
13 * GNU General Public License for more details. *
15 * You should have received a copy of the GNU General Public License *
16 * along with this program; if not, write to the *
17 * Free Software Foundation, Inc., *
18 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA. *
19 ***************************************************************************/
24 #include <QLinkedList>
25 #include <QSslCertificate>
29 #include "metricsserver.h"
31 class SslServer : public QTcpServer
36 SslServer(QObject* parent = nullptr);
38 bool hasPendingConnections() const override { return !_pendingConnections.isEmpty(); }
39 QTcpSocket* nextPendingConnection() override;
41 const QSslCertificate& certificate() const { return _cert; }
42 const QSslKey& key() const { return _key; }
43 bool isCertValid() const { return _isCertValid; }
46 * Reloads SSL certificates used for connections
48 * If this command fails, it will try to maintain the most recent working certificate. Error
49 * conditions are automatically written to the log.
51 * @return True if certificates reloaded successfully, otherwise false.
55 void setMetricsServer(MetricsServer* metricsServer);
58 void incomingConnection(qintptr socketDescriptor) override;
60 bool setCertificate(const QString& path, const QString& keyPath);
64 * Loads SSL certificates used for connections
66 * If this command fails, it will try to maintain the most recent working certificate. Will log
67 * specific failure points, but does not offer verbose guidance.
69 * @return True if certificates loaded successfully, otherwise false.
72 QSslKey loadKey(QFile* keyFile);
74 MetricsServer* _metricsServer{nullptr};
76 QLinkedList<QTcpSocket*> _pendingConnections;
77 QSslCertificate _cert;
79 QList<QSslCertificate> _ca;
80 bool _isCertValid{false};
82 // Used when reloading certificates later
83 QString _sslCertPath; /// Path to the certificate file
84 QString _sslKeyPath; /// Path to the private key file (may be in same file as above)
86 QDateTime _certificateExpires;