github.com/euank/go@v0.0.0-20160829210321-495514729181/src/crypto/tls/tls_test.go (about) 1 // Copyright 2012 The Go Authors. All rights reserved. 2 // Use of this source code is governed by a BSD-style 3 // license that can be found in the LICENSE file. 4 5 package tls 6 7 import ( 8 "bytes" 9 "crypto/x509" 10 "errors" 11 "fmt" 12 "internal/testenv" 13 "io" 14 "math" 15 "math/rand" 16 "net" 17 "os" 18 "reflect" 19 "strings" 20 "testing" 21 "testing/quick" 22 "time" 23 ) 24 25 var rsaCertPEM = `-----BEGIN CERTIFICATE----- 26 MIIB0zCCAX2gAwIBAgIJAI/M7BYjwB+uMA0GCSqGSIb3DQEBBQUAMEUxCzAJBgNV 27 BAYTAkFVMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBX 28 aWRnaXRzIFB0eSBMdGQwHhcNMTIwOTEyMjE1MjAyWhcNMTUwOTEyMjE1MjAyWjBF 29 MQswCQYDVQQGEwJBVTETMBEGA1UECAwKU29tZS1TdGF0ZTEhMB8GA1UECgwYSW50 30 ZXJuZXQgV2lkZ2l0cyBQdHkgTHRkMFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANLJ 31 hPHhITqQbPklG3ibCVxwGMRfp/v4XqhfdQHdcVfHap6NQ5Wok/4xIA+ui35/MmNa 32 rtNuC+BdZ1tMuVCPFZcCAwEAAaNQME4wHQYDVR0OBBYEFJvKs8RfJaXTH08W+SGv 33 zQyKn0H8MB8GA1UdIwQYMBaAFJvKs8RfJaXTH08W+SGvzQyKn0H8MAwGA1UdEwQF 34 MAMBAf8wDQYJKoZIhvcNAQEFBQADQQBJlffJHybjDGxRMqaRmDhX0+6v02TUKZsW 35 r5QuVbpQhH6u+0UgcW0jp9QwpxoPTLTWGXEWBBBurxFwiCBhkQ+V 36 -----END CERTIFICATE----- 37 ` 38 39 var rsaKeyPEM = `-----BEGIN RSA PRIVATE KEY----- 40 MIIBOwIBAAJBANLJhPHhITqQbPklG3ibCVxwGMRfp/v4XqhfdQHdcVfHap6NQ5Wo 41 k/4xIA+ui35/MmNartNuC+BdZ1tMuVCPFZcCAwEAAQJAEJ2N+zsR0Xn8/Q6twa4G 42 6OB1M1WO+k+ztnX/1SvNeWu8D6GImtupLTYgjZcHufykj09jiHmjHx8u8ZZB/o1N 43 MQIhAPW+eyZo7ay3lMz1V01WVjNKK9QSn1MJlb06h/LuYv9FAiEA25WPedKgVyCW 44 SmUwbPw8fnTcpqDWE3yTO3vKcebqMSsCIBF3UmVue8YU3jybC3NxuXq3wNm34R8T 45 xVLHwDXh/6NJAiEAl2oHGGLz64BuAfjKrqwz7qMYr9HCLIe/YsoWq/olzScCIQDi 46 D2lWusoe2/nEqfDVVWGWlyJ7yOmqaVm/iNUN9B2N2g== 47 -----END RSA PRIVATE KEY----- 48 ` 49 50 // keyPEM is the same as rsaKeyPEM, but declares itself as just 51 // "PRIVATE KEY", not "RSA PRIVATE KEY". https://golang.org/issue/4477 52 var keyPEM = `-----BEGIN PRIVATE KEY----- 53 MIIBOwIBAAJBANLJhPHhITqQbPklG3ibCVxwGMRfp/v4XqhfdQHdcVfHap6NQ5Wo 54 k/4xIA+ui35/MmNartNuC+BdZ1tMuVCPFZcCAwEAAQJAEJ2N+zsR0Xn8/Q6twa4G 55 6OB1M1WO+k+ztnX/1SvNeWu8D6GImtupLTYgjZcHufykj09jiHmjHx8u8ZZB/o1N 56 MQIhAPW+eyZo7ay3lMz1V01WVjNKK9QSn1MJlb06h/LuYv9FAiEA25WPedKgVyCW 57 SmUwbPw8fnTcpqDWE3yTO3vKcebqMSsCIBF3UmVue8YU3jybC3NxuXq3wNm34R8T 58 xVLHwDXh/6NJAiEAl2oHGGLz64BuAfjKrqwz7qMYr9HCLIe/YsoWq/olzScCIQDi 59 D2lWusoe2/nEqfDVVWGWlyJ7yOmqaVm/iNUN9B2N2g== 60 -----END PRIVATE KEY----- 61 ` 62 63 var ecdsaCertPEM = `-----BEGIN CERTIFICATE----- 64 MIIB/jCCAWICCQDscdUxw16XFDAJBgcqhkjOPQQBMEUxCzAJBgNVBAYTAkFVMRMw 65 EQYDVQQIEwpTb21lLVN0YXRlMSEwHwYDVQQKExhJbnRlcm5ldCBXaWRnaXRzIFB0 66 eSBMdGQwHhcNMTIxMTE0MTI0MDQ4WhcNMTUxMTE0MTI0MDQ4WjBFMQswCQYDVQQG 67 EwJBVTETMBEGA1UECBMKU29tZS1TdGF0ZTEhMB8GA1UEChMYSW50ZXJuZXQgV2lk 68 Z2l0cyBQdHkgTHRkMIGbMBAGByqGSM49AgEGBSuBBAAjA4GGAAQBY9+my9OoeSUR 69 lDQdV/x8LsOuLilthhiS1Tz4aGDHIPwC1mlvnf7fg5lecYpMCrLLhauAc1UJXcgl 70 01xoLuzgtAEAgv2P/jgytzRSpUYvgLBt1UA0leLYBy6mQQbrNEuqT3INapKIcUv8 71 XxYP0xMEUksLPq6Ca+CRSqTtrd/23uTnapkwCQYHKoZIzj0EAQOBigAwgYYCQXJo 72 A7Sl2nLVf+4Iu/tAX/IF4MavARKC4PPHK3zfuGfPR3oCCcsAoz3kAzOeijvd0iXb 73 H5jBImIxPL4WxQNiBTexAkF8D1EtpYuWdlVQ80/h/f4pBcGiXPqX5h2PQSQY7hP1 74 +jwM1FGS4fREIOvlBYr/SzzQRtwrvrzGYxDEDbsC0ZGRnA== 75 -----END CERTIFICATE----- 76 ` 77 78 var ecdsaKeyPEM = `-----BEGIN EC PARAMETERS----- 79 BgUrgQQAIw== 80 -----END EC PARAMETERS----- 81 -----BEGIN EC PRIVATE KEY----- 82 MIHcAgEBBEIBrsoKp0oqcv6/JovJJDoDVSGWdirrkgCWxrprGlzB9o0X8fV675X0 83 NwuBenXFfeZvVcwluO7/Q9wkYoPd/t3jGImgBwYFK4EEACOhgYkDgYYABAFj36bL 84 06h5JRGUNB1X/Hwuw64uKW2GGJLVPPhoYMcg/ALWaW+d/t+DmV5xikwKssuFq4Bz 85 VQldyCXTXGgu7OC0AQCC/Y/+ODK3NFKlRi+AsG3VQDSV4tgHLqZBBus0S6pPcg1q 86 kohxS/xfFg/TEwRSSws+roJr4JFKpO2t3/be5OdqmQ== 87 -----END EC PRIVATE KEY----- 88 ` 89 90 var keyPairTests = []struct { 91 algo string 92 cert string 93 key string 94 }{ 95 {"ECDSA", ecdsaCertPEM, ecdsaKeyPEM}, 96 {"RSA", rsaCertPEM, rsaKeyPEM}, 97 {"RSA-untyped", rsaCertPEM, keyPEM}, // golang.org/issue/4477 98 } 99 100 func TestX509KeyPair(t *testing.T) { 101 var pem []byte 102 for _, test := range keyPairTests { 103 pem = []byte(test.cert + test.key) 104 if _, err := X509KeyPair(pem, pem); err != nil { 105 t.Errorf("Failed to load %s cert followed by %s key: %s", test.algo, test.algo, err) 106 } 107 pem = []byte(test.key + test.cert) 108 if _, err := X509KeyPair(pem, pem); err != nil { 109 t.Errorf("Failed to load %s key followed by %s cert: %s", test.algo, test.algo, err) 110 } 111 } 112 } 113 114 func TestX509KeyPairErrors(t *testing.T) { 115 _, err := X509KeyPair([]byte(rsaKeyPEM), []byte(rsaCertPEM)) 116 if err == nil { 117 t.Fatalf("X509KeyPair didn't return an error when arguments were switched") 118 } 119 if subStr := "been switched"; !strings.Contains(err.Error(), subStr) { 120 t.Fatalf("Expected %q in the error when switching arguments to X509KeyPair, but the error was %q", subStr, err) 121 } 122 123 _, err = X509KeyPair([]byte(rsaCertPEM), []byte(rsaCertPEM)) 124 if err == nil { 125 t.Fatalf("X509KeyPair didn't return an error when both arguments were certificates") 126 } 127 if subStr := "certificate"; !strings.Contains(err.Error(), subStr) { 128 t.Fatalf("Expected %q in the error when both arguments to X509KeyPair were certificates, but the error was %q", subStr, err) 129 } 130 131 const nonsensePEM = ` 132 -----BEGIN NONSENSE----- 133 Zm9vZm9vZm9v 134 -----END NONSENSE----- 135 ` 136 137 _, err = X509KeyPair([]byte(nonsensePEM), []byte(nonsensePEM)) 138 if err == nil { 139 t.Fatalf("X509KeyPair didn't return an error when both arguments were nonsense") 140 } 141 if subStr := "NONSENSE"; !strings.Contains(err.Error(), subStr) { 142 t.Fatalf("Expected %q in the error when both arguments to X509KeyPair were nonsense, but the error was %q", subStr, err) 143 } 144 } 145 146 func TestX509MixedKeyPair(t *testing.T) { 147 if _, err := X509KeyPair([]byte(rsaCertPEM), []byte(ecdsaKeyPEM)); err == nil { 148 t.Error("Load of RSA certificate succeeded with ECDSA private key") 149 } 150 if _, err := X509KeyPair([]byte(ecdsaCertPEM), []byte(rsaKeyPEM)); err == nil { 151 t.Error("Load of ECDSA certificate succeeded with RSA private key") 152 } 153 } 154 155 func newLocalListener(t testing.TB) net.Listener { 156 ln, err := net.Listen("tcp", "127.0.0.1:0") 157 if err != nil { 158 ln, err = net.Listen("tcp6", "[::1]:0") 159 } 160 if err != nil { 161 t.Fatal(err) 162 } 163 return ln 164 } 165 166 func TestDialTimeout(t *testing.T) { 167 if testing.Short() { 168 t.Skip("skipping in short mode") 169 } 170 listener := newLocalListener(t) 171 172 addr := listener.Addr().String() 173 defer listener.Close() 174 175 complete := make(chan bool) 176 defer close(complete) 177 178 go func() { 179 conn, err := listener.Accept() 180 if err != nil { 181 t.Error(err) 182 return 183 } 184 <-complete 185 conn.Close() 186 }() 187 188 dialer := &net.Dialer{ 189 Timeout: 10 * time.Millisecond, 190 } 191 192 var err error 193 if _, err = DialWithDialer(dialer, "tcp", addr, nil); err == nil { 194 t.Fatal("DialWithTimeout completed successfully") 195 } 196 197 if !isTimeoutError(err) { 198 t.Errorf("resulting error not a timeout: %v\nType %T: %#v", err, err, err) 199 } 200 } 201 202 func isTimeoutError(err error) bool { 203 if ne, ok := err.(net.Error); ok { 204 return ne.Timeout() 205 } 206 return false 207 } 208 209 // tests that Conn.Read returns (non-zero, io.EOF) instead of 210 // (non-zero, nil) when a Close (alertCloseNotify) is sitting right 211 // behind the application data in the buffer. 212 func TestConnReadNonzeroAndEOF(t *testing.T) { 213 // This test is racy: it assumes that after a write to a 214 // localhost TCP connection, the peer TCP connection can 215 // immediately read it. Because it's racy, we skip this test 216 // in short mode, and then retry it several times with an 217 // increasing sleep in between our final write (via srv.Close 218 // below) and the following read. 219 if testing.Short() { 220 t.Skip("skipping in short mode") 221 } 222 var err error 223 for delay := time.Millisecond; delay <= 64*time.Millisecond; delay *= 2 { 224 if err = testConnReadNonzeroAndEOF(t, delay); err == nil { 225 return 226 } 227 } 228 t.Error(err) 229 } 230 231 func testConnReadNonzeroAndEOF(t *testing.T, delay time.Duration) error { 232 ln := newLocalListener(t) 233 defer ln.Close() 234 235 srvCh := make(chan *Conn, 1) 236 var serr error 237 go func() { 238 sconn, err := ln.Accept() 239 if err != nil { 240 serr = err 241 srvCh <- nil 242 return 243 } 244 serverConfig := testConfig.clone() 245 srv := Server(sconn, serverConfig) 246 if err := srv.Handshake(); err != nil { 247 serr = fmt.Errorf("handshake: %v", err) 248 srvCh <- nil 249 return 250 } 251 srvCh <- srv 252 }() 253 254 clientConfig := testConfig.clone() 255 conn, err := Dial("tcp", ln.Addr().String(), clientConfig) 256 if err != nil { 257 t.Fatal(err) 258 } 259 defer conn.Close() 260 261 srv := <-srvCh 262 if srv == nil { 263 return serr 264 } 265 266 buf := make([]byte, 6) 267 268 srv.Write([]byte("foobar")) 269 n, err := conn.Read(buf) 270 if n != 6 || err != nil || string(buf) != "foobar" { 271 return fmt.Errorf("Read = %d, %v, data %q; want 6, nil, foobar", n, err, buf) 272 } 273 274 srv.Write([]byte("abcdef")) 275 srv.Close() 276 time.Sleep(delay) 277 n, err = conn.Read(buf) 278 if n != 6 || string(buf) != "abcdef" { 279 return fmt.Errorf("Read = %d, buf= %q; want 6, abcdef", n, buf) 280 } 281 if err != io.EOF { 282 return fmt.Errorf("Second Read error = %v; want io.EOF", err) 283 } 284 return nil 285 } 286 287 func TestTLSUniqueMatches(t *testing.T) { 288 ln := newLocalListener(t) 289 defer ln.Close() 290 291 serverTLSUniques := make(chan []byte) 292 go func() { 293 for i := 0; i < 2; i++ { 294 sconn, err := ln.Accept() 295 if err != nil { 296 t.Fatal(err) 297 } 298 serverConfig := testConfig.clone() 299 srv := Server(sconn, serverConfig) 300 if err := srv.Handshake(); err != nil { 301 t.Fatal(err) 302 } 303 serverTLSUniques <- srv.ConnectionState().TLSUnique 304 } 305 }() 306 307 clientConfig := testConfig.clone() 308 clientConfig.ClientSessionCache = NewLRUClientSessionCache(1) 309 conn, err := Dial("tcp", ln.Addr().String(), clientConfig) 310 if err != nil { 311 t.Fatal(err) 312 } 313 if !bytes.Equal(conn.ConnectionState().TLSUnique, <-serverTLSUniques) { 314 t.Error("client and server channel bindings differ") 315 } 316 conn.Close() 317 318 conn, err = Dial("tcp", ln.Addr().String(), clientConfig) 319 if err != nil { 320 t.Fatal(err) 321 } 322 defer conn.Close() 323 if !conn.ConnectionState().DidResume { 324 t.Error("second session did not use resumption") 325 } 326 if !bytes.Equal(conn.ConnectionState().TLSUnique, <-serverTLSUniques) { 327 t.Error("client and server channel bindings differ when session resumption is used") 328 } 329 } 330 331 func TestVerifyHostname(t *testing.T) { 332 testenv.MustHaveExternalNetwork(t) 333 334 c, err := Dial("tcp", "www.google.com:https", nil) 335 if err != nil { 336 t.Fatal(err) 337 } 338 if err := c.VerifyHostname("www.google.com"); err != nil { 339 t.Fatalf("verify www.google.com: %v", err) 340 } 341 if err := c.VerifyHostname("www.yahoo.com"); err == nil { 342 t.Fatalf("verify www.yahoo.com succeeded") 343 } 344 345 c, err = Dial("tcp", "www.google.com:https", &Config{InsecureSkipVerify: true}) 346 if err != nil { 347 t.Fatal(err) 348 } 349 if err := c.VerifyHostname("www.google.com"); err == nil { 350 t.Fatalf("verify www.google.com succeeded with InsecureSkipVerify=true") 351 } 352 if err := c.VerifyHostname("www.yahoo.com"); err == nil { 353 t.Fatalf("verify www.google.com succeeded with InsecureSkipVerify=true") 354 } 355 } 356 357 func TestVerifyHostnameResumed(t *testing.T) { 358 testenv.MustHaveExternalNetwork(t) 359 360 config := &Config{ 361 ClientSessionCache: NewLRUClientSessionCache(32), 362 } 363 for i := 0; i < 2; i++ { 364 c, err := Dial("tcp", "www.google.com:https", config) 365 if err != nil { 366 t.Fatalf("Dial #%d: %v", i, err) 367 } 368 cs := c.ConnectionState() 369 if i > 0 && !cs.DidResume { 370 t.Fatalf("Subsequent connection unexpectedly didn't resume") 371 } 372 if cs.VerifiedChains == nil { 373 t.Fatalf("Dial #%d: cs.VerifiedChains == nil", i) 374 } 375 if err := c.VerifyHostname("www.google.com"); err != nil { 376 t.Fatalf("verify www.google.com #%d: %v", i, err) 377 } 378 c.Close() 379 } 380 } 381 382 func TestConnCloseBreakingWrite(t *testing.T) { 383 ln := newLocalListener(t) 384 defer ln.Close() 385 386 srvCh := make(chan *Conn, 1) 387 var serr error 388 var sconn net.Conn 389 go func() { 390 var err error 391 sconn, err = ln.Accept() 392 if err != nil { 393 serr = err 394 srvCh <- nil 395 return 396 } 397 serverConfig := testConfig.clone() 398 srv := Server(sconn, serverConfig) 399 if err := srv.Handshake(); err != nil { 400 serr = fmt.Errorf("handshake: %v", err) 401 srvCh <- nil 402 return 403 } 404 srvCh <- srv 405 }() 406 407 cconn, err := net.Dial("tcp", ln.Addr().String()) 408 if err != nil { 409 t.Fatal(err) 410 } 411 defer cconn.Close() 412 413 conn := &changeImplConn{ 414 Conn: cconn, 415 } 416 417 clientConfig := testConfig.clone() 418 tconn := Client(conn, clientConfig) 419 if err := tconn.Handshake(); err != nil { 420 t.Fatal(err) 421 } 422 423 srv := <-srvCh 424 if srv == nil { 425 t.Fatal(serr) 426 } 427 defer sconn.Close() 428 429 connClosed := make(chan struct{}) 430 conn.closeFunc = func() error { 431 close(connClosed) 432 return nil 433 } 434 435 inWrite := make(chan bool, 1) 436 var errConnClosed = errors.New("conn closed for test") 437 conn.writeFunc = func(p []byte) (n int, err error) { 438 inWrite <- true 439 <-connClosed 440 return 0, errConnClosed 441 } 442 443 closeReturned := make(chan bool, 1) 444 go func() { 445 <-inWrite 446 tconn.Close() // test that this doesn't block forever. 447 closeReturned <- true 448 }() 449 450 _, err = tconn.Write([]byte("foo")) 451 if err != errConnClosed { 452 t.Errorf("Write error = %v; want errConnClosed", err) 453 } 454 455 <-closeReturned 456 if err := tconn.Close(); err != errClosed { 457 t.Errorf("Close error = %v; want errClosed", err) 458 } 459 } 460 461 func TestClone(t *testing.T) { 462 var c1 Config 463 v := reflect.ValueOf(&c1).Elem() 464 465 rnd := rand.New(rand.NewSource(time.Now().Unix())) 466 typ := v.Type() 467 for i := 0; i < typ.NumField(); i++ { 468 f := v.Field(i) 469 if !f.CanSet() { 470 // unexported field; not cloned. 471 continue 472 } 473 474 // testing/quick can't handle functions or interfaces. 475 fn := typ.Field(i).Name 476 switch fn { 477 case "Rand": 478 f.Set(reflect.ValueOf(io.Reader(os.Stdin))) 479 continue 480 case "Time", "GetCertificate": 481 // DeepEqual can't compare functions. 482 continue 483 case "Certificates": 484 f.Set(reflect.ValueOf([]Certificate{ 485 {Certificate: [][]byte{{'b'}}}, 486 })) 487 continue 488 case "NameToCertificate": 489 f.Set(reflect.ValueOf(map[string]*Certificate{"a": nil})) 490 continue 491 case "RootCAs", "ClientCAs": 492 f.Set(reflect.ValueOf(x509.NewCertPool())) 493 continue 494 case "ClientSessionCache": 495 f.Set(reflect.ValueOf(NewLRUClientSessionCache(10))) 496 continue 497 case "KeyLogWriter": 498 f.Set(reflect.ValueOf(io.Writer(os.Stdout))) 499 continue 500 501 } 502 503 q, ok := quick.Value(f.Type(), rnd) 504 if !ok { 505 t.Fatalf("quick.Value failed on field %s", fn) 506 } 507 f.Set(q) 508 } 509 510 c2 := c1.clone() 511 512 if !reflect.DeepEqual(&c1, c2) { 513 t.Errorf("clone failed to copy a field") 514 } 515 } 516 517 // changeImplConn is a net.Conn which can change its Write and Close 518 // methods. 519 type changeImplConn struct { 520 net.Conn 521 writeFunc func([]byte) (int, error) 522 closeFunc func() error 523 } 524 525 func (w *changeImplConn) Write(p []byte) (n int, err error) { 526 if w.writeFunc != nil { 527 return w.writeFunc(p) 528 } 529 return w.Conn.Write(p) 530 } 531 532 func (w *changeImplConn) Close() error { 533 if w.closeFunc != nil { 534 return w.closeFunc() 535 } 536 return w.Conn.Close() 537 } 538 539 func throughput(b *testing.B, totalBytes int64, dynamicRecordSizingDisabled bool) { 540 ln := newLocalListener(b) 541 defer ln.Close() 542 543 N := b.N 544 545 // Less than 64KB because Windows appears to use a TCP rwin < 64KB. 546 // See Issue #15899. 547 const bufsize = 32 << 10 548 549 go func() { 550 buf := make([]byte, bufsize) 551 for i := 0; i < N; i++ { 552 sconn, err := ln.Accept() 553 if err != nil { 554 // panic rather than synchronize to avoid benchmark overhead 555 // (cannot call b.Fatal in goroutine) 556 panic(fmt.Errorf("accept: %v", err)) 557 } 558 serverConfig := testConfig.clone() 559 serverConfig.DynamicRecordSizingDisabled = dynamicRecordSizingDisabled 560 srv := Server(sconn, serverConfig) 561 if err := srv.Handshake(); err != nil { 562 panic(fmt.Errorf("handshake: %v", err)) 563 } 564 if _, err := io.CopyBuffer(srv, srv, buf); err != nil { 565 panic(fmt.Errorf("copy buffer: %v", err)) 566 } 567 } 568 }() 569 570 b.SetBytes(totalBytes) 571 clientConfig := testConfig.clone() 572 clientConfig.DynamicRecordSizingDisabled = dynamicRecordSizingDisabled 573 574 buf := make([]byte, bufsize) 575 chunks := int(math.Ceil(float64(totalBytes) / float64(len(buf)))) 576 for i := 0; i < N; i++ { 577 conn, err := Dial("tcp", ln.Addr().String(), clientConfig) 578 if err != nil { 579 b.Fatal(err) 580 } 581 for j := 0; j < chunks; j++ { 582 _, err := conn.Write(buf) 583 if err != nil { 584 b.Fatal(err) 585 } 586 _, err = io.ReadFull(conn, buf) 587 if err != nil { 588 b.Fatal(err) 589 } 590 } 591 conn.Close() 592 } 593 } 594 595 func BenchmarkThroughput(b *testing.B) { 596 for _, mode := range []string{"Max", "Dynamic"} { 597 for size := 1; size <= 64; size <<= 1 { 598 name := fmt.Sprintf("%sPacket/%dMB", mode, size) 599 b.Run(name, func(b *testing.B) { 600 throughput(b, int64(size<<20), mode == "Max") 601 }) 602 } 603 } 604 } 605 606 type slowConn struct { 607 net.Conn 608 bps int 609 } 610 611 func (c *slowConn) Write(p []byte) (int, error) { 612 if c.bps == 0 { 613 panic("too slow") 614 } 615 t0 := time.Now() 616 wrote := 0 617 for wrote < len(p) { 618 time.Sleep(100 * time.Microsecond) 619 allowed := int(time.Since(t0).Seconds()*float64(c.bps)) / 8 620 if allowed > len(p) { 621 allowed = len(p) 622 } 623 if wrote < allowed { 624 n, err := c.Conn.Write(p[wrote:allowed]) 625 wrote += n 626 if err != nil { 627 return wrote, err 628 } 629 } 630 } 631 return len(p), nil 632 } 633 634 func latency(b *testing.B, bps int, dynamicRecordSizingDisabled bool) { 635 ln := newLocalListener(b) 636 defer ln.Close() 637 638 N := b.N 639 640 go func() { 641 for i := 0; i < N; i++ { 642 sconn, err := ln.Accept() 643 if err != nil { 644 // panic rather than synchronize to avoid benchmark overhead 645 // (cannot call b.Fatal in goroutine) 646 panic(fmt.Errorf("accept: %v", err)) 647 } 648 serverConfig := testConfig.clone() 649 serverConfig.DynamicRecordSizingDisabled = dynamicRecordSizingDisabled 650 srv := Server(&slowConn{sconn, bps}, serverConfig) 651 if err := srv.Handshake(); err != nil { 652 panic(fmt.Errorf("handshake: %v", err)) 653 } 654 io.Copy(srv, srv) 655 } 656 }() 657 658 clientConfig := testConfig.clone() 659 clientConfig.DynamicRecordSizingDisabled = dynamicRecordSizingDisabled 660 661 buf := make([]byte, 16384) 662 peek := make([]byte, 1) 663 664 for i := 0; i < N; i++ { 665 conn, err := Dial("tcp", ln.Addr().String(), clientConfig) 666 if err != nil { 667 b.Fatal(err) 668 } 669 // make sure we're connected and previous connection has stopped 670 if _, err := conn.Write(buf[:1]); err != nil { 671 b.Fatal(err) 672 } 673 if _, err := io.ReadFull(conn, peek); err != nil { 674 b.Fatal(err) 675 } 676 if _, err := conn.Write(buf); err != nil { 677 b.Fatal(err) 678 } 679 if _, err = io.ReadFull(conn, peek); err != nil { 680 b.Fatal(err) 681 } 682 conn.Close() 683 } 684 } 685 686 func BenchmarkLatency(b *testing.B) { 687 for _, mode := range []string{"Max", "Dynamic"} { 688 for _, kbps := range []int{200, 500, 1000, 2000, 5000} { 689 name := fmt.Sprintf("%sPacket/%dkbps", mode, kbps) 690 b.Run(name, func(b *testing.B) { 691 latency(b, kbps*1000, mode == "Max") 692 }) 693 } 694 } 695 }