Skip to main content

moqtap_client/draft17/
connection.rs

1use std::sync::Arc;
2
3use bytes::{Buf, Bytes, BytesMut};
4
5use crate::draft17::endpoint::{Endpoint, EndpointError};
6use crate::draft17::event::{ClientEvent, Direction, StreamKind};
7use crate::draft17::observer::ConnectionObserver;
8use crate::draft17::session::request_id::Role;
9use crate::transport::quic::QuicTransport;
10use crate::transport::{RecvStream, SendStream, Transport, TransportError};
11use moqtap_codec::dispatch::{
12    AnyControlMessage, AnyDatagramHeader, AnyFetchHeader, AnySubgroupHeader,
13};
14use moqtap_codec::draft17::data_stream::{FetchHeader, SubgroupObject, SubgroupObjectReader};
15use moqtap_codec::draft17::message::ControlMessage;
16use moqtap_codec::error::CodecError;
17use moqtap_codec::kvp::KeyValuePair;
18use moqtap_codec::types::*;
19use moqtap_codec::varint::VarInt;
20use moqtap_codec::version::DraftVersion;
21
22/// MoQT ALPN identifier (used by raw QUIC transport).
23pub const MOQT_ALPN: &[u8] = b"moq-00";
24
25/// Errors from the connection layer.
26#[derive(Debug, thiserror::Error)]
27pub enum ConnectionError {
28    /// Endpoint state machine error.
29    #[error("endpoint error: {0}")]
30    Endpoint(#[from] EndpointError),
31    /// Wire codec error.
32    #[error("codec error: {0}")]
33    Codec(#[from] CodecError),
34    /// Transport-level error.
35    #[error("transport error: {0}")]
36    Transport(#[from] TransportError),
37    /// Variable-length integer decoding error.
38    #[error("varint error: {0}")]
39    VarInt(#[from] moqtap_codec::varint::VarIntError),
40    /// Control stream was not opened.
41    #[error("control stream not open")]
42    NoControlStream,
43    /// Stream ended before a complete message was read.
44    #[error("unexpected end of stream")]
45    UnexpectedEnd,
46    /// Stream was finished by the peer.
47    #[error("stream finished")]
48    StreamFinished,
49    /// Invalid server address string.
50    #[error("invalid server address: {0}")]
51    InvalidAddress(String),
52    /// TLS configuration error.
53    #[error("TLS config error: {0}")]
54    TlsConfig(String),
55    /// Data stream used out of order (e.g. object before header).
56    #[error("data stream state error: {0}")]
57    DataStreamState(&'static str),
58}
59
60/// Transport type for the connection.
61#[derive(Debug, Clone)]
62pub enum TransportType {
63    /// Raw QUIC via quinn. The `addr` field should be `host:port`.
64    Quic,
65    /// WebTransport via wtransport. The `url` field is the WebTransport URL.
66    WebTransport {
67        /// The WebTransport endpoint URL (e.g., `https://host:port/path`).
68        url: String,
69    },
70}
71
72/// Configuration for a MoQT client connection.
73///
74/// Both `draft` and `transport` are required -- there is no `Default` impl.
75pub struct ClientConfig {
76    /// The MoQT draft version to use (primary, determines codec/framing).
77    pub draft: DraftVersion,
78    /// The transport type (QUIC or WebTransport).
79    pub transport: TransportType,
80    /// Whether to skip TLS certificate verification (for testing).
81    pub skip_cert_verification: bool,
82    /// Custom CA certificates to trust (DER-encoded).
83    pub ca_certs: Vec<Vec<u8>>,
84    /// Setup parameters to include in CLIENT_SETUP (e.g., auth tokens).
85    pub setup_parameters: Vec<KeyValuePair>,
86}
87
88impl ClientConfig {
89    /// Returns the ALPN protocol identifiers for the transport.
90    pub fn alpn(&self) -> Vec<Vec<u8>> {
91        match &self.transport {
92            TransportType::Quic => vec![self.draft.quic_alpn().to_vec()],
93            TransportType::WebTransport { .. } => vec![b"h3".to_vec()],
94        }
95    }
96}
97
98/// A framed writer for a send stream. Handles MoQT length-prefixed framing.
99pub struct FramedSendStream {
100    inner: SendStream,
101    draft: DraftVersion,
102    /// Stateful subgroup object writer.
103    subgroup_io: Option<SubgroupObjectReader>,
104}
105
106impl FramedSendStream {
107    /// Create a new framed send stream for the given draft version.
108    pub fn new(inner: SendStream, draft: DraftVersion) -> Self {
109        Self { inner, draft, subgroup_io: None }
110    }
111
112    /// Get the transport-level stream ID.
113    pub fn stream_id(&self) -> u64 {
114        self.inner.stream_id()
115    }
116
117    /// Write a control message to the stream with type+length framing.
118    /// Returns the raw bytes that were written (for event capture).
119    pub async fn write_control(
120        &mut self,
121        msg: &AnyControlMessage,
122    ) -> Result<Vec<u8>, ConnectionError> {
123        let mut buf = Vec::new();
124        msg.encode(&mut buf)?;
125        self.inner.write_all(&buf).await?;
126        Ok(buf)
127    }
128
129    /// Write a subgroup stream header. Also initializes the internal
130    /// delta-encoding state used by
131    /// [`FramedSendStream::write_subgroup_object`].
132    pub async fn write_subgroup_header(
133        &mut self,
134        header: &AnySubgroupHeader,
135    ) -> Result<(), ConnectionError> {
136        let mut buf = Vec::new();
137        header.encode(&mut buf);
138        self.inner.write_all(&buf).await?;
139        if let AnySubgroupHeader::Draft17(ref d17) = header {
140            self.subgroup_io = Some(SubgroupObjectReader::new(d17));
141        }
142        Ok(())
143    }
144
145    /// Write a fetch response header.
146    pub async fn write_fetch_header(
147        &mut self,
148        header: &AnyFetchHeader,
149    ) -> Result<(), ConnectionError> {
150        let mut buf = Vec::new();
151        header.encode(&mut buf);
152        self.inner.write_all(&buf).await?;
153        Ok(())
154    }
155
156    /// Append a draft-17 subgroup object to the stream using the
157    /// stateful writer seeded from
158    /// [`FramedSendStream::write_subgroup_header`].
159    pub async fn write_subgroup_object(
160        &mut self,
161        object: &SubgroupObject,
162    ) -> Result<(), ConnectionError> {
163        let writer = self
164            .subgroup_io
165            .as_mut()
166            .ok_or(ConnectionError::DataStreamState("subgroup header not written yet"))?;
167        let mut buf = Vec::new();
168        writer.write_object(object, &mut buf)?;
169        self.inner.write_all(&buf).await?;
170        Ok(())
171    }
172
173    /// Finish the stream (send FIN).
174    pub async fn finish(&mut self) -> Result<(), ConnectionError> {
175        self.inner.finish()?;
176        Ok(())
177    }
178
179    /// Returns the draft version this stream is framed for.
180    pub fn draft(&self) -> DraftVersion {
181        self.draft
182    }
183}
184
185/// A framed reader for a recv stream. Handles MoQT varint-length decoding.
186pub struct FramedRecvStream {
187    inner: RecvStream,
188    buf: BytesMut,
189    draft: DraftVersion,
190    /// Stateful subgroup object reader.
191    subgroup_io: Option<SubgroupObjectReader>,
192}
193
194impl FramedRecvStream {
195    /// Create a new framed receive stream for the given draft version.
196    pub fn new(inner: RecvStream, draft: DraftVersion) -> Self {
197        Self { inner, buf: BytesMut::with_capacity(4096), draft, subgroup_io: None }
198    }
199
200    /// Get the transport-level stream ID.
201    pub fn stream_id(&self) -> u64 {
202        self.inner.stream_id()
203    }
204
205    /// Read more data from the stream into the internal buffer.
206    async fn fill(&mut self) -> Result<bool, ConnectionError> {
207        let mut tmp = [0u8; 4096];
208        match self.inner.read(&mut tmp).await {
209            Ok(Some(n)) => {
210                self.buf.extend_from_slice(&tmp[..n]);
211                Ok(true)
212            }
213            Ok(None) => Ok(false),
214            Err(e) => Err(ConnectionError::Transport(e)),
215        }
216    }
217
218    /// Ensure at least `n` bytes are available in the buffer.
219    async fn ensure(&mut self, n: usize) -> Result<(), ConnectionError> {
220        while self.buf.len() < n {
221            if !self.fill().await? {
222                return Err(ConnectionError::UnexpectedEnd);
223            }
224        }
225        Ok(())
226    }
227
228    /// Read a control message from the stream.
229    ///
230    /// When `capture_raw` is true, the returned tuple includes a clone of the
231    /// framed wire bytes (for observer emission). When false, the second
232    /// element is `None` and the payload clone is skipped.
233    pub async fn read_control(
234        &mut self,
235        capture_raw: bool,
236    ) -> Result<(AnyControlMessage, Option<Vec<u8>>), ConnectionError> {
237        // Read type ID varint
238        self.ensure(1).await?;
239        let type_len = varint_len(self.buf[0]);
240        self.ensure(type_len).await?;
241
242        let mut cursor = &self.buf[..type_len];
243        let _type_id = VarInt::decode(&mut cursor)?;
244
245        // Draft-17: 16-bit BE payload length
246        let (payload_len, len_field_size) = if self.draft.uses_fixed_length_framing() {
247            self.ensure(type_len + 2).await?;
248            let hi = self.buf[type_len] as usize;
249            let lo = self.buf[type_len + 1] as usize;
250            ((hi << 8) | lo, 2)
251        } else {
252            self.ensure(type_len + 1).await?;
253            let payload_len_start = type_len;
254            let payload_len_varint_len = varint_len(self.buf[payload_len_start]);
255            self.ensure(type_len + payload_len_varint_len).await?;
256            let mut cursor = &self.buf[payload_len_start..type_len + payload_len_varint_len];
257            let payload_len = VarInt::decode(&mut cursor)?.into_inner() as usize;
258            (payload_len, payload_len_varint_len)
259        };
260
261        // Read full payload
262        let total = type_len + len_field_size + payload_len;
263        self.ensure(total).await?;
264
265        // Capture raw bytes only if requested (observer attached).
266        let raw = capture_raw.then(|| self.buf[..total].to_vec());
267
268        // Now decode the whole message
269        let mut frame = &self.buf[..total];
270        let msg = AnyControlMessage::decode(self.draft, &mut frame)?;
271        self.buf.advance(total);
272        Ok((msg, raw))
273    }
274
275    /// Read a subgroup stream header. Also initializes the internal
276    /// delta-decoding state.
277    pub async fn read_subgroup_header(&mut self) -> Result<AnySubgroupHeader, ConnectionError> {
278        self.ensure(1).await?;
279        loop {
280            let mut cursor = &self.buf[..];
281            match AnySubgroupHeader::decode(self.draft, &mut cursor) {
282                Ok(header) => {
283                    let consumed = self.buf.len() - cursor.remaining();
284                    self.buf.advance(consumed);
285                    if let AnySubgroupHeader::Draft17(ref d17) = header {
286                        self.subgroup_io = Some(SubgroupObjectReader::new(d17));
287                    }
288                    return Ok(header);
289                }
290                Err(CodecError::UnexpectedEnd) => {
291                    if !self.fill().await? {
292                        return Err(ConnectionError::UnexpectedEnd);
293                    }
294                }
295                Err(e) => return Err(ConnectionError::Codec(e)),
296            }
297        }
298    }
299
300    /// Read a fetch response header.
301    pub async fn read_fetch_header(&mut self) -> Result<AnyFetchHeader, ConnectionError> {
302        self.ensure(1).await?;
303        loop {
304            let mut cursor = &self.buf[..];
305            match AnyFetchHeader::decode(self.draft, &mut cursor) {
306                Ok(header) => {
307                    let consumed = self.buf.len() - cursor.remaining();
308                    self.buf.advance(consumed);
309                    return Ok(header);
310                }
311                Err(CodecError::UnexpectedEnd) => {
312                    if !self.fill().await? {
313                        return Err(ConnectionError::UnexpectedEnd);
314                    }
315                }
316                Err(e) => return Err(ConnectionError::Codec(e)),
317            }
318        }
319    }
320
321    /// Read the next draft-17 subgroup object from this stream using
322    /// the stateful reader seeded by
323    /// [`FramedRecvStream::read_subgroup_header`].
324    pub async fn read_subgroup_object(&mut self) -> Result<SubgroupObject, ConnectionError> {
325        if self.subgroup_io.is_none() {
326            return Err(ConnectionError::DataStreamState("subgroup header not read yet"));
327        }
328        loop {
329            let reader = self.subgroup_io.as_mut().unwrap();
330            let mut probe = reader.clone();
331            let mut cursor = &self.buf[..];
332            match probe.read_object(&mut cursor) {
333                Ok(obj) => {
334                    let consumed = self.buf.len() - cursor.remaining();
335                    self.buf.advance(consumed);
336                    *reader = probe;
337                    return Ok(obj);
338                }
339                Err(CodecError::UnexpectedEnd) => {
340                    if !self.fill().await? {
341                        return Err(ConnectionError::UnexpectedEnd);
342                    }
343                }
344                Err(e) => return Err(ConnectionError::Codec(e)),
345            }
346        }
347    }
348
349    /// Read the next draft-17 fetch header from this stream.
350    pub async fn read_fetch_stream_header(&mut self) -> Result<FetchHeader, ConnectionError> {
351        loop {
352            let mut cursor = &self.buf[..];
353            match FetchHeader::decode(&mut cursor) {
354                Ok(hdr) => {
355                    let consumed = self.buf.len() - cursor.remaining();
356                    self.buf.advance(consumed);
357                    return Ok(hdr);
358                }
359                Err(CodecError::UnexpectedEnd) => {
360                    if !self.fill().await? {
361                        return Err(ConnectionError::UnexpectedEnd);
362                    }
363                }
364                Err(e) => return Err(ConnectionError::Codec(e)),
365            }
366        }
367    }
368
369    /// Returns the draft version this stream is framed for.
370    pub fn draft(&self) -> DraftVersion {
371        self.draft
372    }
373}
374
375/// A live MoQT connection over QUIC or WebTransport, combining the endpoint
376/// state machine with actual network I/O.
377pub struct Connection {
378    transport: Transport,
379    endpoint: Endpoint,
380    draft: DraftVersion,
381    control_send: Option<FramedSendStream>,
382    control_recv: Option<FramedRecvStream>,
383    observer: Option<Box<dyn ConnectionObserver>>,
384    /// Setup events buffered during `connect()` and replayed when an
385    /// observer attaches via `set_observer` — without this, an observer
386    /// attached after `connect` returns would never see the handshake.
387    pending_events: Vec<ClientEvent>,
388}
389
390impl Connection {
391    /// Connect to a MoQT server as a client.
392    ///
393    /// Establishes a QUIC or WebTransport connection (based on
394    /// `config.transport`), opens a bidirectional control stream,
395    /// performs the CLIENT_SETUP / SERVER_SETUP handshake, and returns
396    /// a ready-to-use connection.
397    pub async fn connect(addr: &str, config: ClientConfig) -> Result<Self, ConnectionError> {
398        let draft = config.draft;
399        let transport = match &config.transport {
400            TransportType::Quic => Self::connect_quic(addr, &config).await?,
401            TransportType::WebTransport { url } => {
402                let url = url.clone();
403                Self::connect_webtransport(&url, &config).await?
404            }
405        };
406
407        // Open bidirectional control stream
408        let (send, recv) = transport.open_bi().await?;
409        let mut control_send = FramedSendStream::new(send, draft);
410        let mut control_recv = FramedRecvStream::new(recv, draft);
411
412        // Perform setup handshake (draft-17: no versions)
413        let mut endpoint = Endpoint::new(Role::Client);
414        endpoint.connect()?;
415        let setup_msg = endpoint.send_setup(config.setup_parameters.clone())?;
416        let any_setup = AnyControlMessage::Draft17(setup_msg);
417        let raw_setup = control_send.write_control(&any_setup).await?;
418
419        let (server_setup, raw_server_setup) = control_recv.read_control(true).await?;
420        // Unified SETUP in draft-17: server responds with the same message type.
421        match &server_setup {
422            AnyControlMessage::Draft17(ControlMessage::Setup(ref s)) => {
423                endpoint.receive_setup(s)?;
424            }
425            _ => {
426                return Err(ConnectionError::Endpoint(EndpointError::NotActive));
427            }
428        }
429
430        let pending_events = vec![
431            ClientEvent::ControlMessage {
432                direction: Direction::Send,
433                message: any_setup,
434                raw: Some(raw_setup),
435            },
436            ClientEvent::ControlMessage {
437                direction: Direction::Receive,
438                message: server_setup,
439                raw: raw_server_setup,
440            },
441            ClientEvent::SetupComplete { negotiated_version: 0xff000000 + 17 },
442        ];
443
444        Ok(Self {
445            transport,
446            endpoint,
447            draft,
448            control_send: Some(control_send),
449            control_recv: Some(control_recv),
450            observer: None,
451            pending_events,
452        })
453    }
454
455    /// Establish a raw QUIC connection.
456    async fn connect_quic(addr: &str, config: &ClientConfig) -> Result<Transport, ConnectionError> {
457        let server_addr = addr.parse().map_err(|e: std::net::AddrParseError| {
458            ConnectionError::InvalidAddress(e.to_string())
459        })?;
460
461        // Build TLS config
462        let mut tls_config = if config.skip_cert_verification {
463            rustls::ClientConfig::builder()
464                .dangerous()
465                .with_custom_certificate_verifier(Arc::new(SkipVerification))
466                .with_no_client_auth()
467        } else {
468            let mut roots = rustls::RootCertStore::empty();
469            roots.extend(webpki_roots::TLS_SERVER_ROOTS.iter().cloned());
470            for der in &config.ca_certs {
471                roots
472                    .add(rustls::pki_types::CertificateDer::from(der.clone()))
473                    .map_err(|e| ConnectionError::TlsConfig(format!("bad CA cert: {e}")))?;
474            }
475            rustls::ClientConfig::builder().with_root_certificates(roots).with_no_client_auth()
476        };
477
478        tls_config.alpn_protocols = config.alpn();
479
480        let quic_config: quinn::crypto::rustls::QuicClientConfig =
481            tls_config.try_into().map_err(|e| ConnectionError::TlsConfig(format!("{e}")))?;
482        let client_config = quinn::ClientConfig::new(Arc::new(quic_config));
483
484        let mut quinn_endpoint = quinn::Endpoint::client("0.0.0.0:0".parse().unwrap())
485            .map_err(|e| ConnectionError::InvalidAddress(e.to_string()))?;
486        quinn_endpoint.set_default_client_config(client_config);
487
488        let server_name = addr.split(':').next().unwrap_or("localhost").to_string();
489
490        let quic = quinn_endpoint
491            .connect(server_addr, &server_name)
492            .map_err(TransportError::from)?
493            .await
494            .map_err(TransportError::from)?;
495
496        Ok(Transport::Quic(QuicTransport::new(quic)))
497    }
498
499    /// Establish a WebTransport connection.
500    #[cfg(feature = "webtransport")]
501    async fn connect_webtransport(
502        url: &str,
503        config: &ClientConfig,
504    ) -> Result<Transport, ConnectionError> {
505        use crate::transport::webtransport::WebTransportTransport;
506
507        let wt_config = if config.skip_cert_verification {
508            wtransport::ClientConfig::builder()
509                .with_bind_default()
510                .with_no_cert_validation()
511                .build()
512        } else {
513            wtransport::ClientConfig::builder().with_bind_default().with_native_certs().build()
514        };
515
516        let endpoint = wtransport::Endpoint::client(wt_config)
517            .map_err(|e| ConnectionError::Transport(TransportError::Connect(e.to_string())))?;
518
519        let connection = endpoint
520            .connect(url)
521            .await
522            .map_err(|e| ConnectionError::Transport(TransportError::Connect(e.to_string())))?;
523
524        Ok(Transport::WebTransport(WebTransportTransport::new(connection)))
525    }
526
527    /// Stub for when the webtransport feature is not enabled.
528    #[cfg(not(feature = "webtransport"))]
529    async fn connect_webtransport(
530        _url: &str,
531        _config: &ClientConfig,
532    ) -> Result<Transport, ConnectionError> {
533        Err(ConnectionError::Transport(TransportError::Connect(
534            "webtransport feature not enabled".into(),
535        )))
536    }
537
538    // -- Observer ---------------------------------------------------
539
540    /// Attach an observer. Buffered handshake events from `connect()` are
541    /// flushed in arrival order before this returns.
542    pub fn set_observer(&mut self, observer: Box<dyn ConnectionObserver>) {
543        self.observer = Some(observer);
544        for event in self.pending_events.drain(..) {
545            if let Some(ref obs) = self.observer {
546                obs.on_event_owned(event);
547            }
548        }
549    }
550
551    /// Remove the observer.
552    pub fn clear_observer(&mut self) {
553        self.observer = None;
554    }
555
556    /// Emit an event to the observer, if one is attached.
557    fn emit(&self, event: ClientEvent) {
558        if let Some(ref obs) = self.observer {
559            obs.on_event_owned(event);
560        }
561    }
562
563    // -- Control message I/O ----------------------------------------
564
565    /// Send a control message on the control stream.
566    ///
567    /// Wraps the draft-17 message in `AnyControlMessage::Draft17` for
568    /// framing.
569    pub async fn send_control(&mut self, msg: &ControlMessage) -> Result<(), ConnectionError> {
570        let any = AnyControlMessage::Draft17(msg.clone());
571        let send = self.control_send.as_mut().ok_or(ConnectionError::NoControlStream)?;
572        let raw = send.write_control(&any).await?;
573        self.emit(ClientEvent::ControlMessage {
574            direction: Direction::Send,
575            message: any,
576            raw: Some(raw),
577        });
578        Ok(())
579    }
580
581    /// Read the next control message from the control stream.
582    ///
583    /// Returns the `AnyControlMessage` and also extracts the draft-17
584    /// `ControlMessage` for internal endpoint dispatch.
585    pub async fn recv_control(&mut self) -> Result<ControlMessage, ConnectionError> {
586        let recv = self.control_recv.as_mut().ok_or(ConnectionError::NoControlStream)?;
587        let capture_raw = self.observer.is_some();
588        let (any, raw) = recv.read_control(capture_raw).await?;
589        if capture_raw {
590            self.emit(ClientEvent::ControlMessage {
591                direction: Direction::Receive,
592                message: any.clone(),
593                raw,
594            });
595        }
596        // Unwrap to draft-17 for the endpoint
597        match any {
598            AnyControlMessage::Draft17(msg) => Ok(msg),
599            _ => Err(ConnectionError::Codec(CodecError::UnknownMessageType(0))),
600        }
601    }
602
603    /// Read and dispatch the next incoming control message through the
604    /// endpoint state machine. Returns the decoded message for inspection.
605    pub async fn recv_and_dispatch(&mut self) -> Result<ControlMessage, ConnectionError> {
606        let msg = self.recv_control().await?;
607        self.endpoint.receive_message(msg.clone())?;
608
609        // Emit draining event if this was a GoAway
610        if let ControlMessage::GoAway(ref ga) = msg {
611            self.emit(ClientEvent::Draining { new_session_uri: ga.new_session_uri.clone() });
612        }
613
614        Ok(msg)
615    }
616
617    // -- Subscribe flow ---------------------------------------------
618
619    /// Send a SUBSCRIBE and return the allocated request ID.
620    pub async fn subscribe(
621        &mut self,
622        track_namespace: TrackNamespace,
623        track_name: Vec<u8>,
624        parameters: Vec<KeyValuePair>,
625    ) -> Result<VarInt, ConnectionError> {
626        let (req_id, msg) = self.endpoint.subscribe(track_namespace, track_name, parameters)?;
627        self.send_control(&msg).await?;
628        Ok(req_id)
629    }
630
631    // Draft-17: UNSUBSCRIBE removed. Subscribers end via RequestUpdate or
632    // wait for PublishDone.
633
634    // -- Fetch flow -------------------------------------------------
635
636    /// Send a standalone FETCH and return the allocated request ID.
637    pub async fn fetch(
638        &mut self,
639        track_namespace: TrackNamespace,
640        track_name: Vec<u8>,
641        start_group: VarInt,
642        start_object: VarInt,
643        end_group: VarInt,
644        end_object: VarInt,
645    ) -> Result<VarInt, ConnectionError> {
646        let (req_id, msg) = self.endpoint.fetch(
647            track_namespace,
648            track_name,
649            start_group,
650            start_object,
651            end_group,
652            end_object,
653        )?;
654        self.send_control(&msg).await?;
655        Ok(req_id)
656    }
657
658    /// Send a joining FETCH and return the allocated request ID.
659    pub async fn joining_fetch(
660        &mut self,
661        joining_request_id: VarInt,
662        joining_start: VarInt,
663    ) -> Result<VarInt, ConnectionError> {
664        let (req_id, msg) = self.endpoint.joining_fetch(joining_request_id, joining_start)?;
665        self.send_control(&msg).await?;
666        Ok(req_id)
667    }
668
669    // Draft-17: FETCH_CANCEL removed. Fetchers abort via stream reset.
670
671    // -- Namespace flows --------------------------------------------
672
673    /// Send a SUBSCRIBE_NAMESPACE and return the request ID.
674    pub async fn subscribe_namespace(
675        &mut self,
676        namespace_prefix: TrackNamespace,
677        subscribe_options: VarInt,
678        parameters: Vec<KeyValuePair>,
679    ) -> Result<VarInt, ConnectionError> {
680        let (req_id, msg) =
681            self.endpoint.subscribe_namespace(namespace_prefix, subscribe_options, parameters)?;
682        self.send_control(&msg).await?;
683        Ok(req_id)
684    }
685
686    /// Send a PUBLISH_NAMESPACE and return the request ID.
687    pub async fn publish_namespace(
688        &mut self,
689        track_namespace: TrackNamespace,
690        parameters: Vec<KeyValuePair>,
691    ) -> Result<VarInt, ConnectionError> {
692        let (req_id, msg) = self.endpoint.publish_namespace(track_namespace, parameters)?;
693        self.send_control(&msg).await?;
694        Ok(req_id)
695    }
696
697    // -- Track Status flow ------------------------------------------
698
699    /// Send a TRACK_STATUS and return the allocated request ID.
700    pub async fn track_status(
701        &mut self,
702        track_namespace: TrackNamespace,
703        track_name: Vec<u8>,
704        parameters: Vec<KeyValuePair>,
705    ) -> Result<VarInt, ConnectionError> {
706        let (req_id, msg) = self.endpoint.track_status(track_namespace, track_name, parameters)?;
707        self.send_control(&msg).await?;
708        Ok(req_id)
709    }
710
711    // -- Publish flow (publisher side) ------------------------------
712
713    /// Send a PUBLISH and return the allocated request ID.
714    pub async fn publish(
715        &mut self,
716        track_namespace: TrackNamespace,
717        track_name: Vec<u8>,
718        track_alias: VarInt,
719        parameters: Vec<KeyValuePair>,
720        track_properties: Vec<KeyValuePair>,
721    ) -> Result<VarInt, ConnectionError> {
722        let (req_id, msg) = self.endpoint.publish(
723            track_namespace,
724            track_name,
725            track_alias,
726            parameters,
727            track_properties,
728        )?;
729        self.send_control(&msg).await?;
730        Ok(req_id)
731    }
732
733    /// Send a PUBLISH_DONE for the given request ID.
734    pub async fn publish_done(
735        &mut self,
736        request_id: VarInt,
737        status_code: VarInt,
738        stream_count: VarInt,
739        reason_phrase: Vec<u8>,
740    ) -> Result<(), ConnectionError> {
741        let msg = self.endpoint.send_publish_done(
742            request_id,
743            status_code,
744            stream_count,
745            reason_phrase,
746        )?;
747        self.send_control(&msg).await
748    }
749
750    // -- Data streams -----------------------------------------------
751
752    /// Open a new unidirectional stream for sending subgroup data.
753    pub async fn open_subgroup_stream(
754        &self,
755        header: &AnySubgroupHeader,
756    ) -> Result<FramedSendStream, ConnectionError> {
757        let send = self.transport.open_uni().await?;
758        let mut framed = FramedSendStream::new(send, self.draft);
759        let sid = framed.stream_id();
760        framed.write_subgroup_header(header).await?;
761        self.emit(ClientEvent::StreamOpened {
762            direction: Direction::Send,
763            stream_kind: StreamKind::Subgroup,
764            stream_id: sid,
765        });
766        self.emit(ClientEvent::DataStreamHeader {
767            stream_id: sid,
768            direction: Direction::Send,
769            header: header.clone(),
770        });
771        Ok(framed)
772    }
773
774    /// Accept an incoming unidirectional data stream and read its subgroup
775    /// header.
776    pub async fn accept_subgroup_stream(
777        &self,
778    ) -> Result<(AnySubgroupHeader, FramedRecvStream), ConnectionError> {
779        let recv = self.transport.accept_uni().await?;
780        let mut framed = FramedRecvStream::new(recv, self.draft);
781        let sid = framed.stream_id();
782        let header = framed.read_subgroup_header().await?;
783        self.emit(ClientEvent::StreamOpened {
784            direction: Direction::Receive,
785            stream_kind: StreamKind::Subgroup,
786            stream_id: sid,
787        });
788        self.emit(ClientEvent::DataStreamHeader {
789            stream_id: sid,
790            direction: Direction::Receive,
791            header: header.clone(),
792        });
793        Ok((header, framed))
794    }
795
796    /// Send an object via datagram.
797    pub fn send_datagram(
798        &self,
799        header: &AnyDatagramHeader,
800        payload: &[u8],
801    ) -> Result<(), ConnectionError> {
802        let mut buf = Vec::new();
803        header.encode(&mut buf);
804        buf.extend_from_slice(payload);
805        self.emit(ClientEvent::DatagramReceived {
806            direction: Direction::Send,
807            header: header.clone(),
808            payload_len: payload.len(),
809        });
810        self.transport.send_datagram(bytes::Bytes::from(buf))?;
811        Ok(())
812    }
813
814    /// Receive a datagram and decode its header.
815    pub async fn recv_datagram(&self) -> Result<(AnyDatagramHeader, Bytes), ConnectionError> {
816        let data = self.transport.recv_datagram().await?;
817        let mut cursor = &data[..];
818        let header = AnyDatagramHeader::decode(self.draft, &mut cursor)?;
819        let consumed = data.len() - cursor.len();
820        let payload = data.slice(consumed..);
821        self.emit(ClientEvent::DatagramReceived {
822            direction: Direction::Receive,
823            header: header.clone(),
824            payload_len: payload.len(),
825        });
826        Ok((header, payload))
827    }
828
829    // -- Accessors --------------------------------------------------
830
831    /// Access the underlying endpoint state machine.
832    pub fn endpoint(&self) -> &Endpoint {
833        &self.endpoint
834    }
835
836    /// Mutable access to the endpoint state machine.
837    pub fn endpoint_mut(&mut self) -> &mut Endpoint {
838        &mut self.endpoint
839    }
840
841    /// Returns the draft version this connection is using.
842    pub fn draft(&self) -> DraftVersion {
843        self.draft
844    }
845
846    /// Close the connection.
847    pub fn close(&self, code: u32, reason: &[u8]) {
848        self.emit(ClientEvent::Closed { code, reason: reason.to_vec() });
849        self.transport.close(code, reason);
850    }
851}
852
853/// Determine the encoded length of a varint from its first byte.
854fn varint_len(first_byte: u8) -> usize {
855    1 << (first_byte >> 6)
856}
857
858/// TLS certificate verifier that skips all verification (for testing only).
859#[derive(Debug)]
860struct SkipVerification;
861
862impl rustls::client::danger::ServerCertVerifier for SkipVerification {
863    fn verify_server_cert(
864        &self,
865        _end_entity: &rustls::pki_types::CertificateDer<'_>,
866        _intermediates: &[rustls::pki_types::CertificateDer<'_>],
867        _server_name: &rustls::pki_types::ServerName<'_>,
868        _ocsp_response: &[u8],
869        _now: rustls::pki_types::UnixTime,
870    ) -> Result<rustls::client::danger::ServerCertVerified, rustls::Error> {
871        Ok(rustls::client::danger::ServerCertVerified::assertion())
872    }
873
874    fn verify_tls12_signature(
875        &self,
876        _message: &[u8],
877        _cert: &rustls::pki_types::CertificateDer<'_>,
878        _dcs: &rustls::DigitallySignedStruct,
879    ) -> Result<rustls::client::danger::HandshakeSignatureValid, rustls::Error> {
880        Ok(rustls::client::danger::HandshakeSignatureValid::assertion())
881    }
882
883    fn verify_tls13_signature(
884        &self,
885        _message: &[u8],
886        _cert: &rustls::pki_types::CertificateDer<'_>,
887        _dcs: &rustls::DigitallySignedStruct,
888    ) -> Result<rustls::client::danger::HandshakeSignatureValid, rustls::Error> {
889        Ok(rustls::client::danger::HandshakeSignatureValid::assertion())
890    }
891
892    fn supported_verify_schemes(&self) -> Vec<rustls::SignatureScheme> {
893        vec![
894            rustls::SignatureScheme::ECDSA_NISTP256_SHA256,
895            rustls::SignatureScheme::ECDSA_NISTP384_SHA384,
896            rustls::SignatureScheme::ED25519,
897            rustls::SignatureScheme::RSA_PSS_SHA256,
898            rustls::SignatureScheme::RSA_PSS_SHA384,
899            rustls::SignatureScheme::RSA_PSS_SHA512,
900        ]
901    }
902}
903
904#[cfg(test)]
905mod tests {
906    use super::*;
907
908    #[test]
909    fn varint_len_single_byte() {
910        assert_eq!(varint_len(0x00), 1);
911        assert_eq!(varint_len(0x3F), 1);
912    }
913
914    #[test]
915    fn varint_len_two_bytes() {
916        assert_eq!(varint_len(0x40), 2);
917        assert_eq!(varint_len(0x7F), 2);
918    }
919
920    #[test]
921    fn varint_len_four_bytes() {
922        assert_eq!(varint_len(0x80), 4);
923        assert_eq!(varint_len(0xBF), 4);
924    }
925
926    #[test]
927    fn varint_len_eight_bytes() {
928        assert_eq!(varint_len(0xC0), 8);
929        assert_eq!(varint_len(0xFF), 8);
930    }
931
932    #[test]
933    fn client_config_alpn_quic_draft17() {
934        let config = ClientConfig {
935            draft: DraftVersion::Draft17,
936            transport: TransportType::Quic,
937            skip_cert_verification: false,
938            ca_certs: Vec::new(),
939            setup_parameters: Vec::new(),
940        };
941        assert_eq!(config.alpn(), vec![b"moqt-17".to_vec()]);
942    }
943
944    #[test]
945    fn client_config_alpn_webtransport() {
946        let config = ClientConfig {
947            draft: DraftVersion::Draft17,
948            transport: TransportType::WebTransport { url: "https://example.com".to_string() },
949            skip_cert_verification: false,
950            ca_certs: Vec::new(),
951            setup_parameters: Vec::new(),
952        };
953        assert_eq!(config.alpn(), vec![b"h3".to_vec()]);
954    }
955
956    #[test]
957    fn moqt_alpn_value() {
958        assert_eq!(MOQT_ALPN, b"moq-00");
959    }
960
961    #[test]
962    fn transport_type_debug() {
963        let quic = TransportType::Quic;
964        assert!(format!("{quic:?}").contains("Quic"));
965
966        let wt = TransportType::WebTransport { url: "https://example.com".to_string() };
967        assert!(format!("{wt:?}").contains("WebTransport"));
968    }
969}