1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227
//! Messages sent over Tor channels
//! A 'channel' is a direct connection between a tor client and a
//! relay, or between two relays. Current channels all use TLS.
//! This module implements the [ChanCell] type, which is the encoding for
//! data sent over a channel. It also encodes and decodes various
//! channel messages, which are the types of data conveyed over a
//! channel.
pub mod codec;
pub mod msg;
use std::num::NonZeroU32;
use caret::caret_int;
use derive_deftly::Deftly;
use tor_memquota::{derive_deftly_template_HasMemoryCost, HasMemoryCostStructural};
/// The amount of data sent in a fixed-length cell.
/// Historically, this was set at 509 bytes so that cells would be
/// 512 bytes long once commands and circuit IDs were added. But since
/// protocol version 4, circuit IDs are 2 bytes longer, so cells are
/// now 514 bytes.
pub const CELL_DATA_LEN: usize = 509;
/// A cell body considered as a raw array of bytes
pub type RawCellBody = [u8; CELL_DATA_LEN];
/// A [`RawCellBody`] stored on the heap.
/// We use this often to avoid copying cell bodies around.
pub type BoxedCellBody = Box<RawCellBody>;
/// Channel-local identifier for a circuit.
/// A circuit ID can be 2 or 4 bytes long; since version 4 of the Tor
/// protocol, it's 4 bytes long.
/// Cannot be zero. For an "optional" circuit ID, use `Option<CircId>`.
#[derive(Copy, Clone, PartialEq, Eq, Debug, Hash)]
pub struct CircId(NonZeroU32);
impl From<NonZeroU32> for CircId {
fn from(item: NonZeroU32) -> Self {
impl From<CircId> for u32 {
fn from(id: CircId) -> u32 {
impl std::fmt::Display for CircId {
fn fmt(&self, f: &mut std::fmt::Formatter<'_>) -> Result<(), std::fmt::Error> {
impl CircId {
/// Creates a `CircId` for non-zero `val`.
/// Returns `None` when `val` is zero. Messages with a zero/None circuit ID
/// apply to the channel as a whole.
pub fn new(val: u32) -> Option<Self> {
/// Convenience function to convert to a `u32`; `None` is mapped to 0.
pub fn get_or_zero(circ_id: Option<Self>) -> u32 {
match circ_id {
Some(circ_id) => circ_id.0.get(),
None => 0,
caret_int! {
/// A ChanCmd is the type of a channel cell. The value of the ChanCmd
/// indicates the meaning of the cell, and (possibly) its length.
pub struct ChanCmd(u8) {
/// A fixed-length cell that will be dropped.
/// Create a new circuit (obsolete format)
/// Finish circuit-creation handshake (obsolete format)
/// Relay cell, transmitted over a circuit.
RELAY = 3,
/// Destroy a circuit
/// Create a new circuit (no public-key)
/// Finish a circuit-creation handshake (no public-key)
// note gap in numbering: 7 is grouped with the variable-length cells
/// Finish a channel handshake with time and address information
/// Relay cell, transmitted over a circuit. Limited.
/// Create a new circuit (current format)
CREATE2 = 10,
/// Finish a circuit-creation handshake (current format)
CREATED2 = 11,
/// Adjust channel-padding settings
/// Variable-length cell, despite its number: negotiate versions
/// Variable-length channel-padding cell
/// Provide additional certificates beyond those given in the TLS
/// handshake
CERTS = 129,
/// Challenge material used in relay-to-relay handshake.
/// Response material used in relay-to-relay handshake.
/// Indicates client permission to use relay. Not currently used.
/// Possible requirements on circuit IDs for a channel command.
enum CircIdReq {
/// indicates a command that only takes a zero-valued circuit ID
/// indicates a command that only takes a nonzero-valued circuit ID
/// indicates a command that can take any circuit ID
impl ChanCmd {
/// Return true if this command is for a cell using the
/// variable-length format.
pub fn is_var_cell(self) -> bool {
// Version 1 of the channel protocol had no variable-length
// cells, but that's obsolete. In version 2, only the VERSIONS
// cell was variable-length. Since version 3, all cells having
// a command value >= 128 are variable-length.
self == ChanCmd::VERSIONS || self.0 >= 128_u8
/// Return what kind of circuit ID this command expects.
fn allows_circid(self) -> CircIdReq {
match self {
| ChanCmd::NETINFO
| ChanCmd::CERTS
| ChanCmd::AUTHENTICATE => CircIdReq::WantNone,
| ChanCmd::CREATED
| ChanCmd::RELAY
| ChanCmd::DESTROY
| ChanCmd::CREATE2
| ChanCmd::CREATED2 => CircIdReq::WantSome,
_ => CircIdReq::Any,
/// Return true if this command is one that accepts the particular
/// circuit ID `id`.
pub fn accepts_circid_val(self, id: Option<CircId>) -> bool {
match self.allows_circid() {
CircIdReq::WantNone => id.is_none(),
CircIdReq::WantSome => id.is_some(),
CircIdReq::Any => true,
/// A decoded and parsed channel cell of unrestricted type.
pub type AnyChanCell = ChanCell<msg::AnyChanMsg>;
/// Trait implemented by anything that can serve as a channel message.
/// Typically, this will be [`AnyChanMsg`](msg::AnyChanMsg) (to represent an unrestricted relay
/// message), or some restricted subset of those messages.
pub trait ChanMsg {
/// Return the [`ChanCmd`] for this message.
fn cmd(&self) -> ChanCmd;
/// Write the body of this message (not including length or command).
fn encode_onto<W: tor_bytes::Writer + ?Sized>(self, w: &mut W) -> tor_bytes::EncodeResult<()>;
/// Decode this message from a given reader, according to a specified
/// command value. The reader must be truncated to the exact length
/// of the body.
fn decode_from_reader(cmd: ChanCmd, r: &mut tor_bytes::Reader<'_>) -> tor_bytes::Result<Self>
Self: Sized;
/// A decoded channel cell, to be sent or received on a channel.
#[derive(Debug, Deftly)]
#[deftly(has_memory_cost(bounds = "M: HasMemoryCostStructural"))]
pub struct ChanCell<M> {
/// Circuit ID associated with this cell, if any.
circid: Option<CircId>,
/// Underlying message in this cell
msg: M,
impl<M: ChanMsg> ChanCell<M> {
/// Construct a new channel cell.
pub fn new(circid: Option<CircId>, msg: M) -> Self {
ChanCell { circid, msg }
/// Return the circuit ID for this cell.
pub fn circid(&self) -> Option<CircId> {
/// Return a reference to the underlying message of this cell.
pub fn msg(&self) -> &M {
/// Consume this cell and return its components.
pub fn into_circid_and_msg(self) -> (Option<CircId>, M) {
(self.circid, self.msg)