Subject: Mismatched lws_zalloc / free
[platform/upstream/libwebsockets.git] / lib / context.c
index 0d3a41c..37219cd 100644 (file)
@@ -67,8 +67,15 @@ lws_protocol_vh_priv_zalloc(struct lws_vhost *vhost, const struct lws_protocols
        while (n < vhost->count_protocols && &vhost->protocols[n] != prot)
                n++;
 
-       if (n == vhost->count_protocols)
-               return NULL;
+       if (n == vhost->count_protocols) {
+               n = 0;
+               while (n < vhost->count_protocols &&
+                      strcmp(vhost->protocols[n].name, prot->name))
+                       n++;
+
+               if (n == vhost->count_protocols)
+                       return NULL;
+       }
 
        vhost->protocol_vh_privs[n] = lws_zalloc(size);
        return vhost->protocol_vh_privs[n];
@@ -86,8 +93,15 @@ lws_protocol_vh_priv_get(struct lws_vhost *vhost, const struct lws_protocols *pr
                n++;
 
        if (n == vhost->count_protocols) {
-               lwsl_err("%s: unknown protocol %p\n", __func__, prot);
-               return NULL;
+               n = 0;
+               while (n < vhost->count_protocols &&
+                      strcmp(vhost->protocols[n].name, prot->name))
+                       n++;
+
+               if (n == vhost->count_protocols) {
+                       lwsl_err("%s: unknown protocol %p\n", __func__, prot);
+                       return NULL;
+               }
        }
 
        return vhost->protocol_vh_privs[n];
@@ -108,7 +122,11 @@ lws_vhost_protocol_options(struct lws_vhost *vh, const char *name)
        return NULL;
 }
 
-int
+/*
+ * inform every vhost that hasn't already done it, that
+ * his protocols are initializing
+ */
+LWS_VISIBLE int
 lws_protocol_init(struct lws_context *context)
 {
        struct lws_vhost *vh = context->vhost_list;
@@ -119,16 +137,21 @@ lws_protocol_init(struct lws_context *context)
        memset(&wsi, 0, sizeof(wsi));
        wsi.context = context;
 
-       lwsl_notice("%s\n", __func__);
+       lwsl_info("%s\n", __func__);
 
        while (vh) {
                wsi.vhost = vh;
 
+               /* only do the protocol init once for a given vhost */
+               if (vh->created_vhost_protocols)
+                       goto next;
+
                /* initialize supported protocols on this vhost */
 
                for (n = 0; n < vh->count_protocols; n++) {
                        wsi.protocol = &vh->protocols[n];
-
+                       if (!vh->protocols[n].name)
+                               continue;
                        pvo = lws_vhost_protocol_options(vh,
                                                         vh->protocols[n].name);
                        if (pvo) {
@@ -152,6 +175,13 @@ lws_protocol_init(struct lws_context *context)
                                                   vh->protocols[n].name);
                                                vh->default_protocol_index = n;
                                        }
+                                       if (!strcmp(pvo->name, "raw")) {
+                                               lwsl_notice("Setting raw "
+                                                  "protocol for vh %s to %s\n",
+                                                  vh->name,
+                                                  vh->protocols[n].name);
+                                               vh->raw_protocol_index = n;
+                                       }
                                        pvo = pvo->next;
                                }
 
@@ -165,29 +195,38 @@ lws_protocol_init(struct lws_context *context)
                         * NOTE the wsi is all zeros except for the context, vh and
                         * protocol ptrs so lws_get_context(wsi) etc can work
                         */
-                       vh->protocols[n].callback(&wsi,
+                       if (vh->protocols[n].callback(&wsi,
                                LWS_CALLBACK_PROTOCOL_INIT, NULL,
-                               (void *)pvo, 0);
+                               (void *)pvo, 0))
+                               return 1;
                }
 
+               vh->created_vhost_protocols = 1;
+next:
                vh = vh->vhost_next;
        }
 
+       if (!context->protocol_init_done)
+               lws_finalize_startup(context);
+
        context->protocol_init_done = 1;
 
        return 0;
 }
 
-static int
-callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
+LWS_VISIBLE int
+lws_callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
                    void *user, void *in, size_t len)
 {
 #ifdef LWS_WITH_CGI
        struct lws_cgi_args *args;
-       char buf[128];
+#endif
+#if defined(LWS_WITH_CGI) || defined(LWS_WITH_HTTP_PROXY)
+       char buf[512];
        int n;
 #endif
 
+
        switch (reason) {
        case LWS_CALLBACK_HTTP:
 #ifndef LWS_NO_SERVER
@@ -198,6 +237,12 @@ callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
 #endif
                        return -1;
                break;
+#if !defined(LWS_NO_SERVER)
+       case LWS_CALLBACK_HTTP_FILE_COMPLETION:
+               if (lws_http_transaction_completed(wsi))
+                       return -1;
+               break;
+#endif
 
        case LWS_CALLBACK_HTTP_WRITEABLE:
 #ifdef LWS_WITH_CGI
@@ -205,13 +250,99 @@ callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
                        if (lws_cgi_write_split_stdout_headers(wsi) < 0)
                                return -1;
 
-                       wsi->reason_bf &= ~1;
+                       if (wsi->reason_bf & 8)
+                               wsi->reason_bf &= ~8;
+                       else
+                               wsi->reason_bf &= ~1;
                        break;
                }
 #endif
+#if defined(LWS_WITH_HTTP_PROXY)
+               if (wsi->reason_bf & 2) {
+                       char *px = buf + LWS_PRE;
+                       int lenx = sizeof(buf) - LWS_PRE;
+                       /*
+                        * our sink is writeable and our source has something
+                        * to read.  So read a lump of source material of
+                        * suitable size to send or what's available, whichever
+                        * is the smaller.
+                        */
 
+
+                       wsi->reason_bf &= ~2;
+                       if (!lws_get_child(wsi))
+                               break;
+                       if (lws_http_client_read(lws_get_child(wsi), &px, &lenx) < 0)
+                               return -1;
+                       break;
+               }
+#endif
+               break;
+
+#if defined(LWS_WITH_HTTP_PROXY)
+       case LWS_CALLBACK_RECEIVE_CLIENT_HTTP:
+               //lwsl_err("LWS_CALLBACK_RECEIVE_CLIENT_HTTP: wsi %p\n", wsi);
+               assert(lws_get_parent(wsi));
+               if (!lws_get_parent(wsi))
+                       break;
+               lws_get_parent(wsi)->reason_bf |= 2;
+               lws_callback_on_writable(lws_get_parent(wsi));
                break;
 
+       case LWS_CALLBACK_RECEIVE_CLIENT_HTTP_READ:
+               //lwsl_err("LWS_CALLBACK_RECEIVE_CLIENT_HTTP_READ len %d\n", (int)len);
+               assert(lws_get_parent(wsi));
+               n = lws_write(lws_get_parent(wsi), (unsigned char *)in,
+                               len, LWS_WRITE_HTTP);
+               if (n < 0)
+                       return -1;
+               break;
+
+       case LWS_CALLBACK_ESTABLISHED_CLIENT_HTTP: {
+               unsigned char *p, *end;
+               char ctype[64], ctlen = 0;
+
+               //lwsl_err("LWS_CALLBACK_ESTABLISHED_CLIENT_HTTP\n");
+       
+               p = (unsigned char *)buf + LWS_PRE;
+               end = p + sizeof(buf) - LWS_PRE;
+
+               if (lws_add_http_header_status(lws_get_parent(wsi), HTTP_STATUS_OK, &p, end))
+                       return 1;
+               if (lws_add_http_header_by_token(lws_get_parent(wsi),
+                               WSI_TOKEN_HTTP_SERVER,
+                               (unsigned char *)"libwebsockets",
+                               13, &p, end))
+                       return 1;
+
+               ctlen = lws_hdr_copy(wsi, ctype, sizeof(ctype), WSI_TOKEN_HTTP_CONTENT_TYPE);
+               if (ctlen > 0) {
+                       if (lws_add_http_header_by_token(lws_get_parent(wsi),
+                               WSI_TOKEN_HTTP_CONTENT_TYPE,
+                               (unsigned char *)ctype, ctlen, &p, end))
+                               return 1;
+               }
+#if 0
+               if (lws_add_http_header_content_length(lws_get_parent(wsi),
+                                                      file_len, &p, end))
+                       return 1;
+#endif
+               if (lws_finalize_http_header(lws_get_parent(wsi), &p, end))
+                       return 1;
+
+               *p = '\0';
+//             lwsl_info("%s\n", buf + LWS_PRE);
+
+               n = lws_write(lws_get_parent(wsi), (unsigned char *)buf + LWS_PRE,
+                             p - ((unsigned char *)buf + LWS_PRE),
+                             LWS_WRITE_HTTP_HEADERS);
+               if (n < 0)
+                       return -1;
+
+               break; }
+
+#endif
+
 #ifdef LWS_WITH_CGI
        /* CGI IO events (POLLIN/OUT) appear here, our default policy is:
         *
@@ -232,7 +363,7 @@ callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
                        break;
                case LWS_STDERR:
                        n = read(lws_get_socket_fd(args->stdwsi[LWS_STDERR]),
-                                                  buf, sizeof(buf) - 1);
+                                                  buf, sizeof(buf) - 2);
                        if (n > 0) {
                                if (buf[n - 1] != '\n')
                                        buf[n++] = '\n';
@@ -256,6 +387,17 @@ callback_http_dummy(struct lws *wsi, enum lws_callback_reasons reason,
                                    "sent %d only %d went", n, args->len);
                return n;
 #endif
+
+       case LWS_CALLBACK_SSL_INFO:
+               {
+                       struct lws_ssl_info *si = in;
+
+                       (void)si;
+                       lwsl_notice("LWS_CALLBACK_SSL_INFO: where: 0x%x, ret: 0x%x\n",
+                                       si->where, si->ret);
+               }
+               break;
+
        default:
                break;
        }
@@ -270,16 +412,21 @@ static const struct lws_protocols protocols_dummy[] = {
 
        {
                "http-only",            /* name */
-               callback_http_dummy,            /* callback */
+               lws_callback_http_dummy,                /* callback */
                0,      /* per_session_data_size */
                0,                      /* max frame size / rx buffer */
+               0, NULL, 0
        },
        /*
         * the other protocols are provided by lws plugins
         */
-       { NULL, NULL, 0, 0 } /* terminator */
+       { NULL, NULL, 0, 0, 0, NULL, 0} /* terminator */
 };
 
+#ifdef LWS_PLAT_OPTEE
+#undef LWS_HAVE_GETENV
+#endif
+
 LWS_VISIBLE struct lws_vhost *
 lws_create_vhost(struct lws_context *context,
                 struct lws_context_creation_info *info)
@@ -287,12 +434,16 @@ lws_create_vhost(struct lws_context *context,
        struct lws_vhost *vh = lws_zalloc(sizeof(*vh)),
                         **vh1 = &context->vhost_list;
        const struct lws_http_mount *mounts;
+       const struct lws_protocol_vhost_options *pvo;
 #ifdef LWS_WITH_PLUGINS
        struct lws_plugin *plugin = context->plugin_list;
-       struct lws_protocols *lwsp;
-       int m, n, f = !info->pvo;
 #endif
+       struct lws_protocols *lwsp;
+       int m, f = !info->pvo;
+#ifdef LWS_HAVE_GETENV
        char *p;
+#endif
+       int n;
 
        if (!vh)
                return NULL;
@@ -307,6 +458,10 @@ lws_create_vhost(struct lws_context *context,
                vh->name = info->vhost_name;
 
        vh->iface = info->iface;
+#if !defined(LWS_WITH_ESP8266) && !defined(LWS_WITH_ESP32) && !defined(OPTEE_TA) && !defined(WIN32)
+       vh->bind_iface = info->bind_iface;
+#endif
+
        for (vh->count_protocols = 0;
             info->protocols[vh->count_protocols].callback;
             vh->count_protocols++)
@@ -314,31 +469,43 @@ lws_create_vhost(struct lws_context *context,
 
        vh->options = info->options;
        vh->pvo = info->pvo;
-       vh->keepalive_timeout = info->keepalive_timeout;
+       vh->headers = info->headers;
+       vh->ssl_info_event_mask = info->ssl_info_event_mask;
+       if (info->keepalive_timeout)
+               vh->keepalive_timeout = info->keepalive_timeout;
+       else
+               vh->keepalive_timeout = 5;
 
-#ifdef LWS_WITH_PLUGINS
-       if (plugin) {
-               /*
-                * give the vhost a unified list of protocols including the
-                * ones that came from plugins
-                */
-               lwsp = lws_zalloc(sizeof(struct lws_protocols) *
-                                          (vh->count_protocols +
-                                          context->plugin_protocol_count + 1));
-               if (!lwsp)
-                       return NULL;
+       if (info->timeout_secs_ah_idle)
+               vh->timeout_secs_ah_idle = info->timeout_secs_ah_idle;
+       else
+               vh->timeout_secs_ah_idle = 10;
 
-               m = vh->count_protocols;
-               memcpy(lwsp, info->protocols,
-                      sizeof(struct lws_protocols) * m);
+       /*
+        * give the vhost a unified list of protocols including the
+        * ones that came from plugins
+        */
+       lwsp = lws_zalloc(sizeof(struct lws_protocols) *
+                                  (vh->count_protocols +
+                                  context->plugin_protocol_count + 1));
+       if (!lwsp) {
+               lwsl_err("OOM\n");
+               return NULL;
+       }
 
-               /* for compatibility, all protocols enabled on vhost if only
-                * the default vhost exists.  Otherwise only vhosts who ask
-                * for a protocol get it enabled.
-                */
+       m = vh->count_protocols;
+       memcpy(lwsp, info->protocols, sizeof(struct lws_protocols) * m);
+
+       /* for compatibility, all protocols enabled on vhost if only
+        * the default vhost exists.  Otherwise only vhosts who ask
+        * for a protocol get it enabled.
+        */
 
-               if (info->options & LWS_SERVER_OPTION_EXPLICIT_VHOSTS)
-                       f = 0;
+       if (context->options & LWS_SERVER_OPTION_EXPLICIT_VHOSTS)
+               f = 0;
+       (void)f;
+#ifdef LWS_WITH_PLUGINS
+       if (plugin) {
 
                while (plugin) {
                        for (n = 0; n < plugin->caps.count_protocols; n++) {
@@ -357,10 +524,19 @@ lws_create_vhost(struct lws_context *context,
                        }
                        plugin = plugin->list;
                }
-               vh->protocols = lwsp;
-       } else
+       }
 #endif
+
+       if (
+#ifdef LWS_WITH_PLUGINS
+           (context->plugin_list) ||
+#endif
+           context->options & LWS_SERVER_OPTION_EXPLICIT_VHOSTS)
+               vh->protocols = lwsp;
+       else {
                vh->protocols = info->protocols;
+               lws_free(lwsp);
+       }
 
        vh->same_vh_protocol_list = (struct lws **)
                        lws_zalloc(sizeof(struct lws *) * vh->count_protocols);
@@ -378,9 +554,25 @@ lws_create_vhost(struct lws_context *context,
 
        mounts = info->mounts;
        while (mounts) {
+               (void)mount_protocols[0];
                lwsl_notice("   mounting %s%s to %s\n",
                                mount_protocols[mounts->origin_protocol],
                                mounts->origin, mounts->mountpoint);
+
+               /* convert interpreter protocol names to pointers */
+               pvo = mounts->interpret;
+               while (pvo) {
+                       for (n = 0; n < vh->count_protocols; n++)
+                               if (!strcmp(pvo->value, vh->protocols[n].name)) {
+                                       ((struct lws_protocol_vhost_options *)pvo)->value =
+                                                       (const char *)(lws_intptr_t)n;
+                                       break;
+                               }
+                       if (n == vh->count_protocols)
+                               lwsl_err("ignoring unknown interpret protocol %s\n", pvo->value);
+                       pvo = pvo->next;
+               }
+
                mounts = mounts->mount_next;
        }
 
@@ -419,11 +611,17 @@ lws_create_vhost(struct lws_context *context,
 #endif
 
        vh->listen_port = info->port;
+#if !defined(LWS_WITH_ESP8266)
        vh->http_proxy_port = 0;
        vh->http_proxy_address[0] = '\0';
+#if defined(LWS_WITH_SOCKS5)
+       vh->socks_proxy_port = 0;
+       vh->socks_proxy_address[0] = '\0';
+#endif
 
        /* either use proxy from info, or try get it from env var */
 
+       /* http proxy */
        if (info->http_proxy_address) {
                /* override for backwards compatibility */
                if (info->http_proxy_port)
@@ -436,6 +634,22 @@ lws_create_vhost(struct lws_context *context,
                        lws_set_proxy(vh, p);
 #endif
        }
+#if defined(LWS_WITH_SOCKS5)
+       /* socks proxy */
+       if (info->socks_proxy_address) {
+               /* override for backwards compatibility */
+               if (info->socks_proxy_port)
+                       vh->socks_proxy_port = info->socks_proxy_port;
+               lws_set_socks(vh, info->socks_proxy_address);
+       } else {
+#ifdef LWS_HAVE_GETENV
+               p = getenv("socks_proxy");
+               if (p)
+                       lws_set_socks(vh, p);
+#endif
+       }
+#endif
+#endif
 
        vh->ka_time = info->ka_time;
        vh->ka_interval = info->ka_interval;
@@ -462,15 +676,14 @@ lws_create_vhost(struct lws_context *context,
        } else
                vh->log_fd = (int)LWS_INVALID_FILE;
 #endif
-
        if (lws_context_init_server_ssl(info, vh))
                goto bail;
-
        if (lws_context_init_client_ssl(info, vh))
                goto bail;
-
-       if (lws_context_init_server(info, vh))
+       if (lws_context_init_server(info, vh)) {
+               lwsl_err("init server failed\n");
                goto bail;
+       }
 
        while (1) {
                if (!(*vh1)) {
@@ -479,6 +692,10 @@ lws_create_vhost(struct lws_context *context,
                }
                vh1 = &(*vh1)->vhost_next;
        };
+       /* for the case we are adding a vhost much later, after server init */
+
+       if (context->protocol_init_done)
+               lws_protocol_init(context);
 
        return vh;
 
@@ -488,31 +705,6 @@ bail:
        return NULL;
 }
 
-/**
- * lws_init_vhost_client_ssl() - also enable client SSL on an existing vhost
- *
- * @info: client ssl related info
- * @vhost: which vhost to initialize client ssl operations on
- *
- * You only need to call this if you plan on using SSL client connections on
- * the vhost.  For non-SSL client connections, it's not necessary to call this.
- *
- * The following members of @info are used during the call
- *
- *      - @options must have LWS_SERVER_OPTION_DO_SSL_GLOBAL_INIT set,
- *          otherwise the call does nothing
- *      - @provided_client_ssl_ctx must be NULL to get a generated client
- *          ssl context, otherwise you can pass a prepared one in by setting it
- *      - @ssl_cipher_list may be NULL or set to the client valid cipher list
- *      - @ssl_ca_filepath may be NULL or client cert filepath
- *      - @ssl_cert_filepath may be NULL or client cert filepath
- *      - @ssl_private_key_filepath may be NULL or client cert private key
- *
- * You must create your vhost explicitly if you want to use this, so you have
- * a pointer to the vhost.  Create the context first with the option flag
- * LWS_SERVER_OPTION_EXPLICIT_VHOSTS and then call lws_create_vhost() with
- * the same info struct.
- */
 LWS_VISIBLE int
 lws_init_vhost_client_ssl(const struct lws_context_creation_info *info,
                          struct lws_vhost *vhost)
@@ -525,40 +717,11 @@ lws_init_vhost_client_ssl(const struct lws_context_creation_info *info,
        return lws_context_init_client_ssl(&i, vhost);
 }
 
-/**
- * lws_create_context() - Create the websocket handler
- * @info:      pointer to struct with parameters
- *
- *     This function creates the listening socket (if serving) and takes care
- *     of all initialization in one step.
- *
- *     After initialization, it returns a struct lws_context * that
- *     represents this server.  After calling, user code needs to take care
- *     of calling lws_service() with the context pointer to get the
- *     server's sockets serviced.  This must be done in the same process
- *     context as the initialization call.
- *
- *     The protocol callback functions are called for a handful of events
- *     including http requests coming in, websocket connections becoming
- *     established, and data arriving; it's also called periodically to allow
- *     async transmission.
- *
- *     HTTP requests are sent always to the FIRST protocol in @protocol, since
- *     at that time websocket protocol has not been negotiated.  Other
- *     protocols after the first one never see any HTTP callack activity.
- *
- *     The server created is a simple http server by default; part of the
- *     websocket standard is upgrading this http connection to a websocket one.
- *
- *     This allows the same server to provide files like scripts and favicon /
- *     images or whatever over http and dynamic data over websockets all in
- *     one place; they're all handled in the user callback.
- */
 LWS_VISIBLE struct lws_context *
 lws_create_context(struct lws_context_creation_info *info)
 {
        struct lws_context *context = NULL;
-       struct lws wsi;
+       struct lws_plat_file_ops *prev;
 #ifndef LWS_NO_DAEMONIZE
        int pid_daemon = get_daemonize_pid();
 #endif
@@ -569,6 +732,9 @@ lws_create_context(struct lws_context_creation_info *info)
 
        lwsl_notice("Initial logging level %d\n", log_level);
        lwsl_notice("Libwebsockets version: %s\n", library_version);
+#if defined(GCC_VER)
+       lwsl_notice("Compiled with  %s\n", GCC_VER);
+#endif
 #if LWS_POSIX
 #ifdef LWS_USE_IPV6
        if (!lws_check_opt(info->options, LWS_SERVER_OPTION_DISABLE_IPV6))
@@ -578,14 +744,19 @@ lws_create_context(struct lws_context_creation_info *info)
 #else
        lwsl_notice("IPV6 not compiled in\n");
 #endif
+#if !defined(LWS_PLAT_OPTEE) && !defined(LWS_PLAT_ESP32)
        lws_feature_status_libev(info);
        lws_feature_status_libuv(info);
 #endif
+#endif
        lwsl_info(" LWS_DEF_HEADER_LEN    : %u\n", LWS_DEF_HEADER_LEN);
        lwsl_info(" LWS_MAX_PROTOCOLS     : %u\n", LWS_MAX_PROTOCOLS);
        lwsl_info(" LWS_MAX_SMP           : %u\n", LWS_MAX_SMP);
        lwsl_info(" SPEC_LATEST_SUPPORTED : %u\n", SPEC_LATEST_SUPPORTED);
-       lwsl_info(" sizeof (*info)        : %u\n", sizeof(*info));
+       lwsl_info(" sizeof (*info)        : %ld\n", (long)sizeof(*info));
+#if defined(LWS_WITH_STATS)
+       lwsl_notice(" LWS_WITH_STATS        : on\n");
+#endif
 #if LWS_POSIX
        lwsl_info(" SYSTEM_RANDOM_FILEPATH: '%s'\n", SYSTEM_RANDOM_FILEPATH);
 #endif
@@ -597,13 +768,51 @@ lws_create_context(struct lws_context_creation_info *info)
                lwsl_err("No memory for websocket context\n");
                return NULL;
        }
-
        if (info->pt_serv_buf_size)
                context->pt_serv_buf_size = info->pt_serv_buf_size;
        else
                context->pt_serv_buf_size = 4096;
 
+       /* default to just the platform fops implementation */
+
+       context->fops_platform.LWS_FOP_OPEN     = _lws_plat_file_open;
+       context->fops_platform.LWS_FOP_CLOSE    = _lws_plat_file_close;
+       context->fops_platform.LWS_FOP_SEEK_CUR = _lws_plat_file_seek_cur;
+       context->fops_platform.LWS_FOP_READ     = _lws_plat_file_read;
+       context->fops_platform.LWS_FOP_WRITE    = _lws_plat_file_write;
+       context->fops_platform.fi[0].sig        = NULL;
+
+       /*
+        *  arrange a linear linked-list of fops starting from context->fops
+        *
+        * platform fops
+        * [ -> fops_zip (copied into context so .next settable) ]
+        * [ -> info->fops ]
+        */
+
+       context->fops = &context->fops_platform;
+       prev = (struct lws_plat_file_ops *)context->fops;
+
+#if defined(LWS_WITH_ZIP_FOPS)
+       /* make a soft copy so we can set .next */
+       context->fops_zip = fops_zip;
+       prev->next = &context->fops_zip;
+       prev = (struct lws_plat_file_ops *)prev->next;
+#endif
+
+       /* if user provided fops, tack them on the end of the list */
+       if (info->fops)
+               prev->next = info->fops;
+
+       context->reject_service_keywords = info->reject_service_keywords;
+       if (info->external_baggage_free_on_destroy)
+               context->external_baggage_free_on_destroy =
+                       info->external_baggage_free_on_destroy;
+
        context->time_up = time(NULL);
+
+       context->simultaneous_ssl_restriction = info->simultaneous_ssl_restriction;
+
 #ifndef LWS_NO_DAEMONIZE
        if (pid_daemon) {
                context->started_with_parent = pid_daemon;
@@ -638,6 +847,8 @@ lws_create_context(struct lws_context_creation_info *info)
        else
                context->timeout_secs = AWAITING_TIMEOUT;
 
+       context->ws_ping_pong_interval = info->ws_ping_pong_interval;
+
        lwsl_info(" default timeout (secs): %u\n", context->timeout_secs);
 
        if (info->max_http_header_data)
@@ -664,7 +875,9 @@ lws_create_context(struct lws_context_creation_info *info)
                        return NULL;
                }
 
+#ifdef LWS_USE_LIBUV
                context->pt[n].context = context;
+#endif
                context->pt[n].tid = n;
                context->pt[n].http_header_data = lws_malloc(context->max_http_header_data *
                                                       context->max_http_header_pool);
@@ -692,9 +905,6 @@ lws_create_context(struct lws_context_creation_info *info)
        lwsl_notice(" Threads: %d each %d fds\n", context->count_threads,
                    context->fd_limit_per_thread);
 
-       memset(&wsi, 0, sizeof(wsi));
-       wsi.context = context;
-
        if (!info->ka_interval && info->ka_time > 0) {
                lwsl_err("info->ka_interval can't be 0 if ka_time used\n");
                return NULL;
@@ -720,21 +930,31 @@ lws_create_context(struct lws_context_creation_info *info)
        context->use_ev_sigint = 1;
        context->lws_uv_sigint_cb = &lws_uv_sigint_cb;
 #endif
+#ifdef LWS_USE_LIBEVENT
+       /* (Issue #264) In order to *avoid breaking backwards compatibility*, we
+        * enable libev mediated SIGINT handling with a default handler of
+        * lws_sigint_cb. The handler can be overridden or disabled
+        * by invoking lws_sigint_cfg after creating the context, but
+        * before invoking lws_initloop:
+        */
+       context->use_ev_sigint = 1;
+       context->lws_event_sigint_cb = &lws_event_sigint_cb;
+#endif /* LWS_USE_LIBEVENT */
 
-       lwsl_info(" mem: context:         %5u bytes (%d ctx + (%d thr x %d))\n",
-                 sizeof(struct lws_context) +
+       lwsl_info(" mem: context:         %5lu bytes (%ld ctx + (%ld thr x %d))\n",
+                 (long)sizeof(struct lws_context) +
                  (context->count_threads * context->pt_serv_buf_size),
-                 sizeof(struct lws_context),
-                 context->count_threads,
+                 (long)sizeof(struct lws_context),
+                 (long)context->count_threads,
                  context->pt_serv_buf_size);
 
-       lwsl_info(" mem: http hdr rsvd:   %5u bytes (%u thr x (%u + %u) x %u))\n",
-                   (context->max_http_header_data +
+       lwsl_info(" mem: http hdr rsvd:   %5lu bytes (%u thr x (%u + %lu) x %u))\n",
+                   (long)(context->max_http_header_data +
                     sizeof(struct allocated_headers)) *
                    context->max_http_header_pool * context->count_threads,
                    context->count_threads,
                    context->max_http_header_data,
-                   sizeof(struct allocated_headers),
+                   (long)sizeof(struct allocated_headers),
                    context->max_http_header_pool);
        n = sizeof(struct lws_pollfd) * context->count_threads *
            context->fd_limit_per_thread;
@@ -749,9 +969,6 @@ lws_create_context(struct lws_context_creation_info *info)
                context->server_string = info->server_string;
                context->server_string_len = (short)
                                strlen(context->server_string);
-       } else {
-               context->server_string = "libwebsockets";
-               context->server_string_len = 13;
        }
 
 #if LWS_MAX_SMP > 1
@@ -780,8 +997,8 @@ lws_create_context(struct lws_context_creation_info *info)
 
        lws_context_init_extensions(info, context);
 
-       lwsl_notice(" mem: per-conn:        %5u bytes + protocol rx buf\n",
-                   sizeof(struct lws));
+       lwsl_notice(" mem: per-conn:        %5lu bytes + protocol rx buf\n",
+                   (unsigned long)sizeof(struct lws));
 
        strcpy(context->canonical_hostname, "unknown");
        lws_server_get_canonical_hostname(context, info);
@@ -789,6 +1006,11 @@ lws_create_context(struct lws_context_creation_info *info)
        context->uid = info->uid;
        context->gid = info->gid;
 
+#if defined(LWS_HAVE_SYS_CAPABILITY_H) && defined(LWS_HAVE_LIBCAP)
+       memcpy(context->caps, info->caps, sizeof(context->caps));
+       context->count_caps = info->count_caps;
+#endif
+
        /*
         * drop any root privs for this process
         * to listen on port < 1023 we would have needed root, but now we are
@@ -817,30 +1039,311 @@ bail:
        return NULL;
 }
 
-/**
- * lws_context_destroy() - Destroy the websocket context
- * @context:   Websocket context
- *
- *     This function closes any active connections and then frees the
- *     context.  After calling this, any further use of the context is
- *     undefined.
- */
+LWS_VISIBLE LWS_EXTERN void
+lws_context_deprecate(struct lws_context *context, lws_reload_func cb)
+{
+       struct lws_vhost *vh = context->vhost_list, *vh1;
+       struct lws *wsi;
+
+       /*
+        * "deprecation" means disable the context from accepting any new
+        * connections and free up listen sockets to be used by a replacement
+        * context.
+        *
+        * Otherwise the deprecated context remains operational, until its
+        * number of connected sockets falls to zero, when it is deleted.
+        */
+
+       /* for each vhost, close his listen socket */
+
+       while (vh) {
+               wsi = vh->lserv_wsi;
+               if (wsi) {
+                       wsi->socket_is_permanently_unusable = 1;
+                       lws_close_free_wsi(wsi, LWS_CLOSE_STATUS_NOSTATUS);
+                       wsi->context->deprecation_pending_listen_close_count++;
+                       /*
+                        * other vhosts can share the listen port, they
+                        * point to the same wsi.  So zap those too.
+                        */
+                       vh1 = context->vhost_list;
+                       while (vh1) {
+                               if (vh1->lserv_wsi == wsi)
+                                       vh1->lserv_wsi = NULL;
+                               vh1 = vh1->vhost_next;
+                       }
+               }
+               vh = vh->vhost_next;
+       }
+
+       context->deprecated = 1;
+       context->deprecation_cb = cb;
+}
+
+LWS_VISIBLE LWS_EXTERN int
+lws_context_is_deprecated(struct lws_context *context)
+{
+       return context->deprecated;
+}
+
 LWS_VISIBLE void
-lws_context_destroy(struct lws_context *context)
+lws_context_destroy2(struct lws_context *context);
+
+
+static void
+lws_vhost_destroy1(struct lws_vhost *vh)
 {
        const struct lws_protocols *protocol = NULL;
        struct lws_context_per_thread *pt;
-       struct lws_vhost *vh = NULL, *vh1;
+       int n, m = vh->context->count_threads;
+       struct lws_context *context = vh->context;
        struct lws wsi;
-       int n, m;
 
        lwsl_notice("%s\n", __func__);
 
-       if (!context)
+       if (vh->being_destroyed)
+               return;
+
+       vh->being_destroyed = 1;
+
+       /*
+        * Are there other vhosts that are piggybacking on our listen socket?
+        * If so we need to hand the listen socket off to one of the others
+        * so it will remain open.  If not, leave it attached to the closing
+        * vhost and it will get closed.
+        */
+
+       if (vh->lserv_wsi)
+               lws_start_foreach_ll(struct lws_vhost *, v, context->vhost_list) {
+                       if (v != vh &&
+                           !v->being_destroyed &&
+                           v->listen_port == vh->listen_port &&
+                           ((!v->iface && !vh->iface) ||
+                           (v->iface && vh->iface &&
+                           !strcmp(v->iface, vh->iface)))) {
+                               /*
+                                * this can only be a listen wsi, which is
+                                * restricted... it has no protocol or other
+                                * bindings or states.  So we can simply
+                                * swap it to a vhost that has the same
+                                * iface + port, but is not closing.
+                                */
+                               assert(v->lserv_wsi == NULL);
+                               v->lserv_wsi = vh->lserv_wsi;
+                               vh->lserv_wsi = NULL;
+                               v->lserv_wsi->vhost = v;
+
+                               lwsl_notice("%s: listen skt from %s to %s\n",
+                                           __func__, vh->name, v->name);
+                               break;
+                       }
+               } lws_end_foreach_ll(v, vhost_next);
+
+       /*
+        * Forcibly close every wsi assoicated with this vhost.  That will
+        * include the listen socket if it is still associated with the closing
+        * vhost.
+        */
+
+       while (m--) {
+               pt = &context->pt[m];
+
+               for (n = 0; (unsigned int)n < context->pt[m].fds_count; n++) {
+                       struct lws *wsi = wsi_from_fd(context, pt->fds[n].fd);
+                       if (!wsi)
+                               continue;
+                       if (wsi->vhost != vh)
+                               continue;
+
+                       lws_close_free_wsi(wsi,
+                               LWS_CLOSE_STATUS_NOSTATUS_CONTEXT_DESTROY
+                               /* no protocol close */);
+                       n--;
+               }
+       }
+
+       /*
+        * let the protocols destroy the per-vhost protocol objects
+        */
+
+       memset(&wsi, 0, sizeof(wsi));
+       wsi.context = vh->context;
+       wsi.vhost = vh;
+       protocol = vh->protocols;
+       if (protocol) {
+               n = 0;
+               while (n < vh->count_protocols) {
+                       wsi.protocol = protocol;
+                       protocol->callback(&wsi, LWS_CALLBACK_PROTOCOL_DESTROY,
+                                          NULL, NULL, 0);
+                       protocol++;
+                       n++;
+               }
+       }
+
+       /*
+        * remove vhost from context list of vhosts
+        */
+
+       lws_start_foreach_llp(struct lws_vhost **, pv, context->vhost_list) {
+               if (*pv == vh) {
+                       *pv = vh->vhost_next;
+                       break;
+               }
+       } lws_end_foreach_llp(pv, vhost_next);
+
+       /* add ourselves to the pending destruction list */
+
+       vh->vhost_next = vh->context->vhost_pending_destruction_list;
+       vh->context->vhost_pending_destruction_list = vh;
+}
+
+static void
+lws_vhost_destroy2(struct lws_vhost *vh)
+{
+       const struct lws_protocols *protocol = NULL;
+       struct lws_context *context = vh->context;
+       struct lws_deferred_free *df;
+       int n;
+
+       lwsl_notice("%s: %p\n", __func__, vh);
+
+       /* if we are still on deferred free list, remove ourselves */
+
+       lws_start_foreach_llp(struct lws_deferred_free **, pdf, context->deferred_free_list) {
+               if ((*pdf)->payload == vh) {
+                       df = *pdf;
+                       *pdf = df->next;
+                       lws_free(df);
+                       break;
+               }
+       } lws_end_foreach_llp(pdf, next);
+
+       /* remove ourselves from the pending destruction list */
+
+       lws_start_foreach_llp(struct lws_vhost **, pv, context->vhost_pending_destruction_list) {
+               if ((*pv) == vh) {
+                       *pv = (*pv)->vhost_next;
+                       break;
+               }
+       } lws_end_foreach_llp(pv, vhost_next);
+
+       /*
+        * Free all the allocations associated with the vhost
+        */
+
+       protocol = vh->protocols;
+       if (protocol) {
+               n = 0;
+               while (n < vh->count_protocols) {
+                       if (vh->protocol_vh_privs &&
+                           vh->protocol_vh_privs[n]) {
+                               lws_free(vh->protocol_vh_privs[n]);
+                               vh->protocol_vh_privs[n] = NULL;
+                       }
+                       protocol++;
+                       n++;
+               }
+       }
+       if (vh->protocol_vh_privs)
+               lws_free(vh->protocol_vh_privs);
+       lws_ssl_SSL_CTX_destroy(vh);
+       lws_free(vh->same_vh_protocol_list);
+#ifdef LWS_WITH_PLUGINS
+       if (LWS_LIBUV_ENABLED(context)) {
+               if (context->plugin_list)
+                       lws_free((void *)vh->protocols);
+       } else
+#endif
+       {
+               if (context->options & LWS_SERVER_OPTION_EXPLICIT_VHOSTS)
+                       lws_free((void *)vh->protocols);
+       }
+
+#ifdef LWS_WITH_PLUGINS
+#ifndef LWS_NO_EXTENSIONS
+       if (context->plugin_extension_count)
+               lws_free((void *)vh->extensions);
+#endif
+#endif
+#ifdef LWS_WITH_ACCESS_LOG
+       if (vh->log_fd != (int)LWS_INVALID_FILE)
+               close(vh->log_fd);
+#endif
+
+       /*
+        * although async event callbacks may still come for wsi handles with
+        * pending close in the case of asycn event library like libuv,
+        * they do not refer to the vhost.  So it's safe to free.
+        */
+
+       lwsl_notice("  %s: Freeing vhost %p\n", __func__, vh);
+
+       memset(vh, 0, sizeof(*vh));
+       free(vh);
+}
+
+int
+lws_check_deferred_free(struct lws_context *context, int force)
+{
+       struct lws_deferred_free *df;
+       time_t now = lws_now_secs();
+
+       lws_start_foreach_llp(struct lws_deferred_free **, pdf, context->deferred_free_list) {
+               if (now > (*pdf)->deadline || force) {
+                       df = *pdf;
+                       *pdf = df->next;
+                       /* finalize vh destruction */
+                       lwsl_notice("doing deferred vh %p destroy\n", df->payload);
+                       lws_vhost_destroy2(df->payload);
+                       lws_free(df);
+                       continue; /* after deletion we already point to next */
+               }
+       } lws_end_foreach_llp(pdf, next);
+
+       return 0;
+}
+
+LWS_VISIBLE void
+lws_vhost_destroy(struct lws_vhost *vh)
+{
+       struct lws_deferred_free *df = malloc(sizeof(*df));
+
+       if (!df)
+               return;
+
+       lws_vhost_destroy1(vh);
+
+       /* part 2 is deferred to allow all the handle closes to complete */
+
+       df->next = vh->context->deferred_free_list;
+       df->deadline = lws_now_secs() + 5;
+       df->payload = vh;
+       vh->context->deferred_free_list = df;
+}
+
+LWS_VISIBLE void
+lws_context_destroy(struct lws_context *context)
+{
+       struct lws_context_per_thread *pt;
+       struct lws_vhost *vh = NULL;
+       struct lws wsi;
+       int n, m;
+
+       if (!context) {
+               lwsl_notice("%s: ctx %p\n", __func__, context);
+               return;
+       }
+       if (context->being_destroyed1) {
+               lwsl_notice("%s: ctx %p: already being destroyed\n", __func__, context);
                return;
+       }
+
+       lwsl_notice("%s: ctx %p\n", __func__, context);
 
        m = context->count_threads;
        context->being_destroyed = 1;
+       context->being_destroyed1 = 1;
 
        memset(&wsi, 0, sizeof(wsi));
        wsi.context = context;
@@ -865,6 +1368,7 @@ lws_context_destroy(struct lws_context *context)
                }
                lws_pt_mutex_destroy(pt);
        }
+
        /*
         * give all extensions a chance to clean up any per-context
         * allocations they might have made
@@ -885,19 +1389,7 @@ lws_context_destroy(struct lws_context *context)
        if (context->protocol_init_done)
                vh = context->vhost_list;
        while (vh) {
-               wsi.vhost = vh;
-               protocol = vh->protocols;
-               if (protocol) {
-                       n = 0;
-                       while (n < vh->count_protocols) {
-                               wsi.protocol = protocol;
-                               protocol->callback(&wsi, LWS_CALLBACK_PROTOCOL_DESTROY,
-                                                  NULL, NULL, 0);
-                               protocol++;
-                               n++;
-                       }
-               }
-
+               lws_vhost_destroy1(vh);
                vh = vh->vhost_next;
        }
 
@@ -906,6 +1398,7 @@ lws_context_destroy(struct lws_context *context)
 
                lws_libev_destroyloop(context, n);
                lws_libuv_destroyloop(context, n);
+               lws_libevent_destroyloop(context, n);
 
                lws_free_set_NULL(context->pt[n].serv_buf);
                if (pt->ah_pool)
@@ -914,51 +1407,52 @@ lws_context_destroy(struct lws_context *context)
                        lws_free(pt->http_header_data);
        }
        lws_plat_context_early_destroy(context);
-       lws_ssl_context_destroy(context);
 
        if (context->pt[0].fds)
                lws_free_set_NULL(context->pt[0].fds);
 
-       /* free all the vhost allocations */
+       if (!LWS_LIBUV_ENABLED(context))
+               lws_context_destroy2(context);
+}
+
+/*
+ * call the second one after the event loop has been shut down cleanly
+ */
+
+LWS_VISIBLE void
+lws_context_destroy2(struct lws_context *context)
+{
+       struct lws_vhost *vh = NULL, *vh1;
+
+       lwsl_notice("%s: ctx %p\n", __func__, context);
+
+       /*
+        * free all the per-vhost allocations
+        */
 
        vh = context->vhost_list;
        while (vh) {
-               protocol = vh->protocols;
-               if (protocol) {
-                       n = 0;
-                       while (n < vh->count_protocols) {
-                               if (vh->protocol_vh_privs &&
-                                   vh->protocol_vh_privs[n]) {
-                                       lws_free(vh->protocol_vh_privs[n]);
-                                       vh->protocol_vh_privs[n] = NULL;
-                               }
-                               protocol++;
-                               n++;
-                       }
-               }
-               if (vh->protocol_vh_privs)
-                       lws_free(vh->protocol_vh_privs);
-               lws_ssl_SSL_CTX_destroy(vh);
-               lws_free(vh->same_vh_protocol_list);
-#ifdef LWS_WITH_PLUGINS
-               if (context->plugin_list)
-                       lws_free((void *)vh->protocols);
-#ifndef LWS_NO_EXTENSIONS
-               if (context->plugin_extension_count)
-                       lws_free((void *)vh->extensions);
-#endif
-#endif
-#ifdef LWS_WITH_ACCESS_LOG
-               if (vh->log_fd != (int)LWS_INVALID_FILE)
-                       close(vh->log_fd);
-#endif
-
                vh1 = vh->vhost_next;
-               lws_free(vh);
+               lws_vhost_destroy2(vh);
                vh = vh1;
        }
 
+       /* remove ourselves from the pending destruction list */
+
+       while (context->vhost_pending_destruction_list)
+               /* removes itself from list */
+               lws_vhost_destroy2(context->vhost_pending_destruction_list);
+
+
+       lws_stats_log_dump(context);
+
+       lws_ssl_context_destroy(context);
        lws_plat_context_late_destroy(context);
 
+       if (context->external_baggage_free_on_destroy)
+               free(context->external_baggage_free_on_destroy);
+
+       lws_check_deferred_free(context, 1);
+
        lws_free(context);
 }