Go to file
Hylke van der Schaaf 2f4f7135fb
Validate fixed header bits in MQTT (#11389)
Motivation:
The MQTT spec states that the bits in the fixed header must be set to specific values depending on message type. If a client sends a message with the wrong bits, the server must treat the message as malformed. Netty did not check the value of the reserved bits in the fixed header.

See:
MQTT3.1.1: http://docs.oasis-open.org/mqtt/mqtt/v3.1.1/errata01/os/mqtt-v3.1.1-errata01-os-complete.html#_Toc442180835
MQTT 5.0: https://docs.oasis-open.org/mqtt/mqtt/v5.0/os/mqtt-v5.0-os.html#_Toc3901023


Modification:
Add validation checks to MqttDecoder.java
Add unit tests to MqttCodecTest.java 
Fixed two instances where messages were generated for other unit tests with an incorrect fixed header.

Result:
Fixes #11379.
2021-06-16 14:59:15 +02:00
.github Make build log output less chatty (#11365) 2021-06-07 10:53:10 +02:00
.mvn/wrapper Use MAVEN_OPTS to setup timeouts for dependency downloads (#11250) 2021-05-12 18:02:35 +02:00
all [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
bom [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
buffer Fix typo in AbstractMultiSearchProcessorFactory (#11368) 2021-06-07 08:45:55 +02:00
codec Make all compression codecs support buffers that don't have arrays (#11383) (#11387) 2021-06-15 08:04:44 +02:00
codec-dns Remove unUsed import statement (#11338) 2021-05-31 08:35:14 +02:00
codec-haproxy Migrate codec-haproxy tests to JUnit 5 (#11308) 2021-05-26 10:05:10 +02:00
codec-http HttpUtil.getCharset() fails for charset in double-quotes (#11373) 2021-06-09 12:37:23 +02:00
codec-http2 Don't iterate through active h2-streams if lastStreamId is MAX_VALUE (#11304) 2021-05-26 12:05:57 +02:00
codec-memcache Migrate codec-memcache tests to JUnit 5 (#11310) 2021-05-26 10:16:02 +02:00
codec-mqtt Validate fixed header bits in MQTT (#11389) 2021-06-16 14:59:15 +02:00
codec-redis Modify List to Map of pooled redis message in FixedRedisMessagePool (#11300) 2021-06-09 12:54:42 +02:00
codec-smtp Migrate codec-smtp tests to JUnit 5 (#11309) 2021-05-26 09:48:56 +02:00
codec-socks Migrate codec-socks tests to JUnit 5 (#11314) 2021-05-26 10:45:22 +02:00
codec-stomp Migrate codec-stomp tests to JUnit 5 (#11312) 2021-05-26 10:35:05 +02:00
codec-xml Migrate codec-xml tests to JUnit 5 (#11311) 2021-05-26 10:06:28 +02:00
common Some minor cleanups for TypeParameterMatcher (#11286) 2021-05-27 09:02:29 +02:00
dev-tools [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
docker Make build log output less chatty (#11365) 2021-06-07 10:53:10 +02:00
example [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
handler Fix IpSubnetFilterRule with IPv6 Default Route does not accept all IPv6 addresses (#11351) 2021-06-07 08:06:52 +02:00
handler-proxy Migrate handler-proxy tests to JUnit 5 (#11313) 2021-05-26 10:37:18 +02:00
license Enable nohttp check during the build (#10708) 2020-10-23 14:44:18 +02:00
microbench [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
resolver [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
resolver-dns Skip the windows tests when there is an entry for localhost in the hosts file (#11385) 2021-06-14 09:05:44 +02:00
resolver-dns-native-macos [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
scripts Remove tarball module (#11377) 2021-06-10 10:19:18 +02:00
testsuite Migrate testsuite, transport-native-epoll, transport-native-kqueue, and transport-native-unix-common-tests tests to JUnit 5 (#11320) 2021-05-27 15:55:58 +02:00
testsuite-autobahn [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-http2 [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-native [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-native-image [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-native-image-client [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-native-image-client-runtime-init [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-osgi [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
testsuite-shading Migrate testsuite-shading tests to JUnit 5 (#11323) 2021-05-27 15:59:49 +02:00
transport Remove useless code (#11339) 2021-05-31 15:35:42 +02:00
transport-blockhound-tests Migrate transport-blockhound-tests tests to JUnit 5 (#11322) 2021-05-27 16:00:51 +02:00
transport-native-epoll Migrate testsuite, transport-native-epoll, transport-native-kqueue, and transport-native-unix-common-tests tests to JUnit 5 (#11320) 2021-05-27 15:55:58 +02:00
transport-native-kqueue Migrate testsuite, transport-native-epoll, transport-native-kqueue, and transport-native-unix-common-tests tests to JUnit 5 (#11320) 2021-05-27 15:55:58 +02:00
transport-native-unix-common Migrate transport-native-unix-common tests to JUnit 5 (#11321) 2021-05-27 15:57:53 +02:00
transport-native-unix-common-tests Migrate testsuite, transport-native-epoll, transport-native-kqueue, and transport-native-unix-common-tests tests to JUnit 5 (#11320) 2021-05-27 15:55:58 +02:00
transport-rxtx [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
transport-sctp Move sctp tests to correct directory and migrate to junit5 (#11331) 2021-05-28 15:03:18 +02:00
transport-udt [maven-release-plugin] prepare for next development iteration 2021-05-19 12:09:18 +00:00
.fbprefs Updated Find Bugs configuration 2009-03-04 10:33:09 +00:00
.gitattributes Include mvn wrapper to make setup of development env easier 2018-01-26 08:13:17 +01:00
.gitignore Ignore .shelf/ folder generated by IntelliJ IDEA (#10445) 2020-08-03 07:51:53 +02:00
.lgtm.yml Enables lgtm.com to process this project and create a CodeQL database 2020-01-17 11:05:53 +01:00
CONTRIBUTING.md Change the netty.io homepage scheme(http -> https) (#9344) 2019-07-09 21:09:42 +02:00
LICENSE.txt Enable nohttp check during the build (#10708) 2020-10-23 14:44:18 +02:00
mvnw Enable nohttp check during the build (#10708) 2020-10-23 14:44:18 +02:00
mvnw.cmd Enable nohttp check during the build (#10708) 2020-10-23 14:44:18 +02:00
nohttp-checkstyle-suppressions.xml Ensure Checkstyle suppression for dependency-reduced-pom.xml on Windows (#10899) 2021-01-01 19:30:13 +01:00
nohttp-checkstyle.xml Enable nohttp check during the build (#10708) 2020-10-23 14:44:18 +02:00
NOTICE.txt Fix License type of dnsinfo (#10773) 2020-11-04 10:40:43 +01:00
pom.xml Remove tarball module (#11377) 2021-06-10 10:19:18 +02:00
README.md Fix url in README.md (#10915) 2021-01-11 07:48:58 +01:00
run-example.sh Add license header to our scripts and workflows (#11282) 2021-05-19 14:06:42 +02:00
SECURITY.md Added a security policy (#10692) 2020-10-15 20:39:37 +02:00

Build project

Netty Project

Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients.

How to build

For the detailed information about building and developing Netty, please visit the developer guide. This page only gives very basic information.

You require the following to build Netty:

Note that this is build-time requirement. JDK 5 (for 3.x) or 6 (for 4.0+ / 4.1+) is enough to run your Netty-based application.

Branches to look

Development of all versions takes place in each branch whose name is identical to <majorVersion>.<minorVersion>. For example, the development of 3.9 and 4.1 resides in the branch '3.9' and the branch '4.1' respectively.

Usage with JDK 9+

Netty can be used in modular JDK9+ applications as a collection of automatic modules. The module names follow the reverse-DNS style, and are derived from subproject names rather than root packages due to historical reasons. They are listed below:

  • io.netty.all
  • io.netty.buffer
  • io.netty.codec
  • io.netty.codec.dns
  • io.netty.codec.haproxy
  • io.netty.codec.http
  • io.netty.codec.http2
  • io.netty.codec.memcache
  • io.netty.codec.mqtt
  • io.netty.codec.redis
  • io.netty.codec.smtp
  • io.netty.codec.socks
  • io.netty.codec.stomp
  • io.netty.codec.xml
  • io.netty.common
  • io.netty.handler
  • io.netty.handler.proxy
  • io.netty.resolver
  • io.netty.resolver.dns
  • io.netty.transport
  • io.netty.transport.epoll (native omitted - reserved keyword in Java)
  • io.netty.transport.kqueue (native omitted - reserved keyword in Java)
  • io.netty.transport.unix.common (native omitted - reserved keyword in Java)
  • io.netty.transport.rxtx
  • io.netty.transport.sctp
  • io.netty.transport.udt

Automatic modules do not provide any means to declare dependencies, so you need to list each used module separately in your module-info file.