1
#![cfg_attr(docsrs, feature(doc_cfg))]
2
#![doc = include_str!("../README.md")]
3
// @@ begin lint list maintained by maint/add_warning @@
4
#![allow(renamed_and_removed_lints)] // @@REMOVE_WHEN(ci_arti_stable)
5
#![allow(unknown_lints)] // @@REMOVE_WHEN(ci_arti_nightly)
6
#![warn(missing_docs)]
7
#![warn(noop_method_call)]
8
#![warn(unreachable_pub)]
9
#![warn(clippy::all)]
10
#![deny(clippy::await_holding_lock)]
11
#![deny(clippy::cargo_common_metadata)]
12
#![deny(clippy::cast_lossless)]
13
#![deny(clippy::checked_conversions)]
14
#![allow(clippy::cognitive_complexity)] // See arti#2556
15
#![deny(clippy::debug_assert_with_mut_call)]
16
#![deny(clippy::exhaustive_enums)]
17
#![deny(clippy::exhaustive_structs)]
18
#![deny(clippy::expl_impl_clone_on_copy)]
19
#![deny(clippy::fallible_impl_from)]
20
#![deny(clippy::implicit_clone)]
21
#![deny(clippy::large_stack_arrays)]
22
#![warn(clippy::manual_ok_or)]
23
#![deny(clippy::missing_docs_in_private_items)]
24
#![warn(clippy::needless_borrow)]
25
#![warn(clippy::needless_pass_by_value)]
26
#![warn(clippy::option_option)]
27
#![deny(clippy::print_stderr)]
28
#![deny(clippy::print_stdout)]
29
#![warn(clippy::rc_buffer)]
30
#![deny(clippy::ref_option_ref)]
31
#![warn(clippy::semicolon_if_nothing_returned)]
32
#![warn(clippy::trait_duplication_in_bounds)]
33
#![deny(clippy::unchecked_time_subtraction)]
34
#![deny(clippy::unnecessary_wraps)]
35
#![warn(clippy::unseparated_literal_suffix)]
36
#![deny(clippy::unwrap_used)]
37
#![deny(clippy::mod_module_files)]
38
#![allow(clippy::let_unit_value)] // This can reasonably be done for explicitness
39
#![allow(clippy::uninlined_format_args)]
40
#![allow(clippy::significant_drop_in_scrutinee)] // arti/-/merge_requests/588/#note_2812945
41
#![allow(clippy::result_large_err)] // temporary workaround for arti#587
42
#![allow(clippy::needless_raw_string_hashes)] // complained-about code is fine, often best
43
#![allow(clippy::needless_lifetimes)] // See arti#1765
44
#![allow(mismatched_lifetime_syntaxes)] // temporary workaround for arti#2060
45
#![allow(clippy::collapsible_if)] // See arti#2342
46
#![deny(clippy::unused_async)]
47
#![deny(clippy::string_slice)] // See arti#2571
48
#![allow(recursion_depth_exceeding_limit)] // arti#2715, rust/issues/159228
49
//! <!-- @@ end lint list maintained by maint/add_warning @@ -->
50

            
51
mod err;
52
mod impls;
53
mod reader;
54
mod secretbuf;
55
mod writer;
56

            
57
pub use err::{EncodeError, Error};
58
pub use reader::{Cursor, Reader};
59
pub use secretbuf::SecretBuf;
60
pub use writer::Writer;
61

            
62
/// Result type returned by this crate for [`Reader`]-related methods.
63
pub type Result<T> = std::result::Result<T, Error>;
64
/// Result type returned by this crate for [`Writer`]-related methods.
65
pub type EncodeResult<T> = std::result::Result<T, EncodeError>;
66

            
67
/// Trait for an object that can be encoded onto a Writer by reference.
68
///
69
/// Implement this trait in order to make an object writeable.
70
///
71
/// Most code won't need to call this directly, but will instead use
72
/// it implicitly via the Writer::write() method.
73
///
74
/// # Example
75
///
76
/// ```
77
/// use tor_bytes::{Writeable, Writer, EncodeResult};
78
/// #[derive(Debug, Eq, PartialEq)]
79
/// struct Message {
80
///   flags: u32,
81
///   cmd: u8
82
/// }
83
///
84
/// impl Writeable for Message {
85
///     fn write_onto<B:Writer+?Sized>(&self, b: &mut B) -> EncodeResult<()> {
86
///         // We'll say that a "Message" is encoded as flags, then command.
87
///         b.write_u32(self.flags);
88
///         b.write_u8(self.cmd);
89
///         Ok(())
90
///     }
91
/// }
92
///
93
/// let msg = Message { flags: 0x43, cmd: 0x07 };
94
/// let mut writer: Vec<u8> = Vec::new();
95
/// writer.write(&msg);
96
/// assert_eq!(writer, &[0x00, 0x00, 0x00, 0x43, 0x07 ]);
97
/// ```
98
pub trait Writeable {
99
    /// Encode this object into the writer `b`.
100
    fn write_onto<B: Writer + ?Sized>(&self, b: &mut B) -> EncodeResult<()>;
101
}
102

            
103
/// Trait for an object that can be encoded and consumed by a Writer.
104
///
105
/// Implement this trait in order to make an object that can be
106
/// written more efficiently by absorbing it into the writer.
107
///
108
/// Most code won't need to call this directly, but will instead use
109
/// it implicitly via the Writer::write_and_consume() method.
110
pub trait WriteableOnce: Sized {
111
    /// Encode this object into the writer `b`, and consume it.
112
    fn write_into<B: Writer + ?Sized>(self, b: &mut B) -> EncodeResult<()>;
113
}
114

            
115
impl<W: Writeable + Sized> WriteableOnce for W {
116
23536
    fn write_into<B: Writer + ?Sized>(self, b: &mut B) -> EncodeResult<()> {
117
23536
        self.write_onto(b)
118
23536
    }
119
}
120

            
121
impl<W: Writeable + ?Sized> Writeable for &W {
122
5331
    fn write_onto<B: Writer + ?Sized>(&self, b: &mut B) -> EncodeResult<()> {
123
5331
        (*self).write_onto(b)
124
5331
    }
125
}
126

            
127
// ----------------------------------------------------------------------
128

            
129
/// Trait for an object that can be extracted from a Reader.
130
///
131
/// Implement this trait in order to make an object that can (maybe)
132
/// be decoded from a reader.
133
//
134
/// Most code won't need to call this directly, but will instead use
135
/// it implicitly via the Reader::extract() method.
136
///
137
/// # Correctness (determinism), and error handling
138
///
139
/// The `take_from` method should produce consistent and deterministic results.
140
///
141
/// If `take_from` returns `Ok`, consuming some data,
142
/// a future call with a reader which has that consumed data as a prefix,
143
/// must consume the same data and succeed with an equivalent value.
144
///
145
/// If `take_from` returns `Err`, it is allowed to have consumed
146
/// none, any, or all, of the `Reader`.
147
///
148
/// If `take_from` returns `Error::Incomplete`:
149
/// then calling `take_from` again on a similar `Reader`
150
/// (ie, where the old reader is a prefix of the new, or vice versa)
151
/// must do one of the following:
152
///  * Succeed, consuming at least as many bytes as
153
///    were available in the previous reader plus `deficit`.
154
///  * Return `Error::Incomplete` with a consistent value of `deficit`.
155
///
156
/// If `take_from` fails another way with some reader, it must fail the same way
157
/// with all other readers which have that reader as a prefix.
158
///
159
/// (Here, "prefix" and "length" relate only to the remaining bytes in the `Reader`,
160
/// irrespective of the length or value of any bytes which were previously consumed.)
161
///
162
/// (tor-socksproto relies on these properties.)
163
///
164
/// Specific implementations may provide stronger guarantees.
165
///
166
/// # Example
167
///
168
/// ```
169
/// use tor_bytes::{Readable,Reader,Result};
170
/// #[derive(Debug, Eq, PartialEq)]
171
/// struct Message {
172
///   flags: u32,
173
///   cmd: u8
174
/// }
175
///
176
/// impl Readable for Message {
177
///     fn take_from(r: &mut Reader<'_>) -> Result<Self> {
178
///         // A "Message" is encoded as flags, then command.
179
///         let flags = r.take_u32()?;
180
///         let cmd = r.take_u8()?;
181
///         Ok(Message{ flags, cmd })
182
///     }
183
/// }
184
///
185
/// let encoded = [0x00, 0x00, 0x00, 0x43, 0x07 ];
186
/// let mut reader = Reader::from_slice(&encoded);
187
/// let m: Message = reader.extract()?;
188
/// assert_eq!(m, Message { flags: 0x43, cmd: 0x07 });
189
/// reader.should_be_exhausted()?; // make sure there are no bytes left over
190
/// # Result::Ok(())
191
/// ```
192
pub trait Readable: Sized {
193
    /// Try to extract an object of this type from a Reader.
194
    ///
195
    /// Implementations should generally try to be efficient: this is
196
    /// not the right place to check signatures or perform expensive
197
    /// operations.  If you have an object that must not be used until
198
    /// it is finally validated, consider making this function return
199
    /// a wrapped type that can be unwrapped later on once it gets
200
    /// checked.
201
    fn take_from(b: &mut Reader<'_>) -> Result<Self>;
202
}
203

            
204
// ----------------------------------------------------------------------
205

            
206
#[cfg(test)]
207
mod test {
208
    // @@ begin test lint list maintained by maint/add_warning @@
209
    #![allow(clippy::bool_assert_comparison)]
210
    #![allow(clippy::clone_on_copy)]
211
    #![allow(clippy::dbg_macro)]
212
    #![allow(clippy::mixed_attributes_style)]
213
    #![allow(clippy::print_stderr)]
214
    #![allow(clippy::print_stdout)]
215
    #![allow(clippy::single_char_pattern)]
216
    #![allow(clippy::unwrap_used)]
217
    #![allow(clippy::unchecked_time_subtraction)]
218
    #![allow(clippy::useless_vec)]
219
    #![allow(clippy::needless_pass_by_value)]
220
    #![allow(clippy::string_slice)] // See arti#2571
221
    //! <!-- @@ end test lint list maintained by maint/add_warning @@ -->
222
    use super::*;
223

            
224
    #[test]
225
    fn writer() {
226
        let mut v: Vec<u8> = Vec::new();
227
        v.write_u8(0x57);
228
        v.write_u16(0x6520);
229
        v.write_u32(0x68617665);
230
        v.write_u64(0x2061206d61636869);
231
        v.write_all(b"ne in a plexiglass dome");
232
        v.write_zeros(3);
233
        assert_eq!(&v[..], &b"We have a machine in a plexiglass dome\0\0\0"[..]);
234
    }
235
}