o
    Th1                     @  sL  d dl mZ d dlZd dlZd dlZd dlZd dlmZmZ d dl	m
Z
 d dlmZ d dlmZmZ ddlmZmZmZmZ dd	lmZmZ dd
lmZmZmZmZ ejdkr`d dlmZmZ nd dl mZmZ edZ!edZ"e#e#e$e$f df Z%e#e%df Z&G dd deZ'e
ddG dd deZ(e
ddG dd dee( Z)dS )    )annotationsN)CallableMapping)	dataclass)wraps)AnyTypeVar   )BrokenResourceErrorEndOfStreamaclose_forcefullyget_cancelled_exc_class)TypedAttributeSettyped_attribute)AnyByteStream
ByteStreamListener	TaskGroup)      )TypeVarTupleUnpackT_RetvalPosArgsT.c                   @  s   e Zd ZU dZe Zded< e Zded< e Zded< e Z	ded	< e Z
d
ed< e Zded< e Zded< e Zded< e Zded< e Zded< dS )TLSAttributez5Contains Transport Layer Security related attributes.
str | Nonealpn_protocolbyteschannel_binding_tls_uniqueztuple[str, str, int]cipherz*None | dict[str, str | _PCTRTTT | _PCTRTT]peer_certificatezbytes | Nonepeer_certificate_binaryboolserver_sidez!list[tuple[str, str, int]] | Noneshared_ciphersssl.SSLObject
ssl_objectstandard_compatiblestrtls_versionN)__name__
__module____qualname____doc__r   r   __annotations__r   r   r    r!   r#   r$   r&   r'   r)    r/   r/   Q/home/air/segue/gpt/backup/venv/lib/python3.10/site-packages/anyio/streams/tls.pyr       s   
 r   F)eqc                   @  s   e Zd ZU dZded< ded< ded< ded	< ded
< edddddd2ddZd3ddZd4dd Zd5d"d#Z	d6d7d(d)Z
d8d+d,Zd5d-d.Zed9d0d1ZdS ):	TLSStreama  
    A stream wrapper that encrypts all sent data and decrypts received data.

    This class has no public initializer; use :meth:`wrap` instead.
    All extra attributes from :class:`~TLSAttribute` are supported.

    :var AnyByteStream transport_stream: the wrapped stream

    r   transport_streamr"   r'   r%   _ssl_objectzssl.MemoryBIO	_read_bio
_write_bioNT)r#   hostnamessl_contextr'   r#   bool | Noner7   r   r8   ssl.SSLContext | Nonereturnc                  s   |du r| }|s'|rt jjnt jj}t |}tt dr'| jt j M  _t  }t  }|j	||||d}	| |||	||d}
|

|	jI dH  |
S )a  
        Wrap an existing stream with Transport Layer Security.

        This performs a TLS handshake with the peer.

        :param transport_stream: a bytes-transporting stream to wrap
        :param server_side: ``True`` if this is the server side of the connection,
            ``False`` if this is the client side (if omitted, will be set to ``False``
            if ``hostname`` has been provided, ``False`` otherwise). Used only to create
            a default context when an explicit context has not been provided.
        :param hostname: host name of the peer (if host name checking is desired)
        :param ssl_context: the SSLContext object to use (if not provided, a secure
            default will be created)
        :param standard_compatible: if ``False``, skip the closing handshake when
            closing the connection, and don't raise an exception if the peer does the
            same
        :raises ~ssl.SSLError: if the TLS handshake fails

        NOP_IGNORE_UNEXPECTED_EOF)r#   server_hostname)r3   r'   r4   r5   r6   )sslPurposeCLIENT_AUTHSERVER_AUTHcreate_default_contexthasattroptionsr<   	MemoryBIOwrap_bio_call_sslobject_methoddo_handshake)clsr3   r#   r7   r8   r'   purposebio_inbio_outr&   wrapperr/   r/   r0   wrapN   s.   

zTLSStream.wrapfunc&Callable[[Unpack[PosArgsT]], T_Retval]argsUnpack[PosArgsT]r   c                   s  	 z|| }W n t jyY   z| jjr!| j| j I d H  | j I d H }W n& ty8   | j	
  Y n tyP } z| j	
  | j
  t|d }~ww | j	| Y nl t jyn   | j| j I d H  Y nW t jy } z| j	
  | j
  t|d }~w t jy } z| j	
  | j
  t|t jsd|jv r| jrt|td  d }~ww | jjr| j| j I d H  |S q)NTUNEXPECTED_EOF_WHILE_READING)r>   SSLWantReadErrorr6   pendingr3   sendreadreceiver   r5   	write_eofOSErrorr
   writeSSLWantWriteErrorSSLSyscallErrorSSLError
isinstanceSSLEOFErrorstrerrorr'   )selfrO   rQ   resultdataexcr/   r/   r0   rG      sT   







z TLSStream._call_sslobject_methodtuple[AnyByteStream, bytes]c                   s:   |  | jjI dH  | j  | j  | j| j fS )z
        Does the TLS closing handshake.

        :return: a tuple of (wrapped byte stream, bytes left in the read buffer)

        N)rG   r4   unwrapr5   rY   r6   r3   rW   rb   r/   r/   r0   rg      s
   

zTLSStream.unwrapNonec                   sP   | j rz	|  I d H  W n ty   t| jI d H   w | j I d H  d S N)r'   rg   BaseExceptionr   r3   acloserh   r/   r/   r0   rl      s   zTLSStream.aclose   	max_bytesintr   c                   s$   |  | jj|I d H }|st|S rj   )rG   r4   rW   r   )rb   rn   rd   r/   r/   r0   rX      s
   zTLSStream.receiveitemc                   s   |  | jj|I d H  d S rj   )rG   r4   r[   )rb   rp   r/   r/   r0   rV      s   zTLSStream.sendc                   sb   |  tj}td|}|r-t|dt|dpd}}||fdk r-td| td)NzTLSv(\d+)(?:\.(\d+))?   r	   r   )rq   r   z;send_eof() requires at least TLSv1.3; current session uses z7send_eof() has not yet been implemented for TLS streams)extrar   r)   rematchro   groupNotImplementedError)rb   r)   rt   majorminorr/   r/   r0   send_eof   s   "zTLSStream.send_eofMapping[Any, Callable[[], Any]]c                   s   i  j jtj jjtj jjtj jjtj	 fddtj
 fddtj fddtj fddtj fddtj fddtj jji
S )Nc                         j dS )NFr4   getpeercertr/   rh   r/   r0   <lambda>   s    z,TLSStream.extra_attributes.<locals>.<lambda>c                     r{   )NTr|   r/   rh   r/   r0   r~      s    c                     s    j jS rj   )r4   r#   r/   rh   r/   r0   r~      s    c                     s    j jr	 j  S d S rj   )r4   r#   r$   r/   rh   r/   r0   r~      s   c                         j S rj   r'   r/   rh   r/   r0   r~          c                     r   rj   )r4   r/   rh   r/   r0   r~      r   )r3   extra_attributesr   r   r4   selected_alpn_protocolr   get_channel_bindingr   r    r!   r#   r$   r'   r&   r)   versionrh   r/   rh   r0   r      s   


zTLSStream.extra_attributes)r3   r   r#   r9   r7   r   r8   r:   r'   r"   r;   r2   )rO   rP   rQ   rR   r;   r   )r;   rf   r;   ri   )rm   )rn   ro   r;   r   )rp   r   r;   ri   r;   rz   )r*   r+   r,   r-   r.   classmethodrN   rG   rg   rl   rX   rV   ry   propertyr   r/   r/   r/   r0   r2   <   s*   
 

8
/



r2   c                   @  sn   e Zd ZU dZded< ded< dZded< d	Zd
ed< ed ddZ	d!d"ddZ	d#ddZ
ed$ddZdS )%TLSListenera  
    A convenience listener that wraps another listener and auto-negotiates a TLS session
    on every accepted connection.

    If the TLS handshake times out or raises an exception,
    :meth:`handle_handshake_error` is called to do whatever post-mortem processing is
    deemed necessary.

    Supports only the :attr:`~TLSAttribute.standard_compatible` extra attribute.

    :param Listener listener: the listener to wrap
    :param ssl_context: the SSL context object
    :param standard_compatible: a flag passed through to :meth:`TLSStream.wrap`
    :param handshake_timeout: time limit for the TLS handshake
        (passed to :func:`~anyio.fail_after`)
    zListener[Any]listenerzssl.SSLContextr8   Tr"   r'      floathandshake_timeoutre   rk   streamr   r;   ri   c                   sL   t |I dH  t| t sttjd| d t| tr#t| t r$ dS )a  
        Handle an exception raised during the TLS handshake.

        This method does 3 things:

        #. Forcefully closes the original stream
        #. Logs the exception (unless it was a cancellation exception) using the
           ``anyio.streams.tls`` logger
        #. Reraises the exception if it was a base exception or a cancellation exception

        :param exc: the exception
        :param stream: the original stream

        NzError during TLS handshake)exc_info)r   r_   r   logging	getLoggerr*   	exception	Exception)re   r   r/   r/   r0   handle_handshake_error  s   
z"TLSListener.handle_handshake_errorNhandlerCallable[[TLSStream], Any]
task_groupTaskGroup | Nonec                   s2   t  d fdd}j||I d H  d S )Nr   r   r;   ri   c              
     s   ddl m} z$|j tj| jjdI d H }W d    n1 s%w   Y  W n tyG } z|| I d H  W Y d }~d S d }~ww  |I d H  d S )Nr	   )
fail_after)r8   r'   )	 r   r   r2   rN   r8   r'   rk   r   )r   r   wrapped_streamre   r   rb   r/   r0   handler_wrapper9  s     z*TLSListener.serve.<locals>.handler_wrapper)r   r   r;   ri   )r   r   serve)rb   r   r   r   r/   r   r0   r   4  s   zTLSListener.servec                   s   | j  I d H  d S rj   )r   rl   rh   r/   r/   r0   rl   K  s   zTLSListener.acloserz   c                   s   t j fddiS )Nc                     r   rj   r   r/   rh   r/   r0   r~   Q  r   z.TLSListener.extra_attributes.<locals>.<lambda>)r   r'   rh   r/   rh   r0   r   N  s   zTLSListener.extra_attributes)re   rk   r   r   r;   ri   rj   )r   r   r   r   r;   ri   r   r   )r*   r+   r,   r-   r.   r'   r   staticmethodr   r   rl   r   r   r/   r/   r/   r0   r      s   
 "
r   )*
__future__r   r   rs   r>   syscollections.abcr   r   dataclassesr   	functoolsr   typingr   r   r   r
   r   r   r   _core._typedattrr   r   abcr   r   r   r   version_infor   r   typing_extensionsr   r   tupler(   _PCTRTT_PCTRTTTr   r2   r   r/   r/   r/   r0   <module>   s2    
 @