stunmessage.c 17.9 KB
Newer Older
1 2 3
/*
 * This file is part of the Nice GLib ICE library.
 *
4 5 6
 * (C) 2008-2009 Collabora Ltd.
 *  Contact: Youness Alaoui
 * (C) 2007-2009 Nokia Corporation. All rights reserved.
7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24
 *  Contact: Rémi Denis-Courmont
 *
 * The contents of this file are subject to the Mozilla Public License Version
 * 1.1 (the "License"); you may not use this file except in compliance with
 * the License. You may obtain a copy of the License at
 * http://www.mozilla.org/MPL/
 *
 * Software distributed under the License is distributed on an "AS IS" basis,
 * WITHOUT WARRANTY OF ANY KIND, either express or implied. See the License
 * for the specific language governing rights and limitations under the
 * License.
 *
 * The Original Code is the Nice GLib ICE library.
 *
 * The Initial Developers of the Original Code are Collabora Ltd and Nokia
 * Corporation. All Rights Reserved.
 *
 * Contributors:
25
 *   Youness Alaoui, Collabora Ltd.
26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42
 *   Rémi Denis-Courmont, Nokia
 *
 * Alternatively, the contents of this file may be used under the terms of the
 * the GNU Lesser General Public License Version 2.1 (the "LGPL"), in which
 * case the provisions of LGPL are applicable instead of those above. If you
 * wish to allow use of your version of this file only under the terms of the
 * LGPL and not to allow others to use your version of this file under the
 * MPL, indicate your decision by deleting the provisions above and replace
 * them with the notice and other provisions required by the LGPL. If you do
 * not delete the provisions above, a recipient may use your version of this
 * file under either the MPL or the LGPL.
 */

#ifdef HAVE_CONFIG_H
# include <config.h>
#endif

Youness Alaoui's avatar
Youness Alaoui committed
43
#include "stunmessage.h"
44
#include "utils.h"
Youness Alaoui's avatar
Youness Alaoui committed
45 46 47

#ifdef _WIN32
#include <winsock2.h>
48
#include <ws2tcpip.h>
Youness Alaoui's avatar
Youness Alaoui committed
49
#else
50 51
#include <sys/types.h>
#include <sys/socket.h>
Alexis Ballier's avatar
Alexis Ballier committed
52
#include <netinet/in.h>
Youness Alaoui's avatar
Youness Alaoui committed
53
#endif
54 55 56 57 58


#include <string.h>
#include <stdlib.h>

59 60
bool stun_message_init (StunMessage *msg, StunClass c, StunMethod m,
    const StunTransactionId id)
61
{
62

63 64 65 66 67 68
  if (msg->buffer_len < STUN_MESSAGE_HEADER_LENGTH)
    return FALSE;

  memset (msg->buffer, 0, 4);
  stun_set_type (msg->buffer, c, m);

69
  memcpy (msg->buffer + STUN_MESSAGE_TRANS_ID_POS,
70
      id, STUN_MESSAGE_TRANS_ID_LEN);
71 72 73 74 75 76 77 78 79 80 81 82 83 84

  return TRUE;
}

uint16_t stun_message_length (const StunMessage *msg)
{
  return stun_getw (msg->buffer + STUN_MESSAGE_LENGTH_POS) +
      STUN_MESSAGE_HEADER_LENGTH;
}




const void *
85
stun_message_find (const StunMessage *msg, StunAttribute type,
86
    uint16_t *palen)
87 88 89 90
{
  size_t length = stun_message_length (msg);
  size_t offset = 0;

91 92 93 94 95 96 97 98
  /* In MS-TURN, IDs of REALM and NONCE STUN attributes are swapped. */
  if (msg->agent && msg->agent->compatibility == STUN_COMPATIBILITY_OC2007)
  {
    if (type == STUN_ATTRIBUTE_REALM)
      type = STUN_ATTRIBUTE_NONCE;
    else if (type == STUN_ATTRIBUTE_NONCE)
      type = STUN_ATTRIBUTE_REALM;
  }
99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118

  offset = STUN_MESSAGE_ATTRIBUTES_POS;

  while (offset < length)
  {
    uint16_t atype = stun_getw (msg->buffer + offset);
    size_t alen = stun_getw (msg->buffer + offset + STUN_ATTRIBUTE_TYPE_LEN);


    offset += STUN_ATTRIBUTE_VALUE_POS;

    if (atype == type)
    {
      *palen = alen;
      return msg->buffer + offset;
    }

    /* Look for and ignore misordered attributes */
    switch (atype)
    {
119
      case STUN_ATTRIBUTE_MESSAGE_INTEGRITY:
120
        /* Only fingerprint may come after M-I */
121
        if (type == STUN_ATTRIBUTE_FINGERPRINT)
122 123
          break;

124
      case STUN_ATTRIBUTE_FINGERPRINT:
125 126
        /* Nothing may come after FPR */
        return NULL;
127 128 129 130

      default:
        /* Nothing misordered. */
        break;
131 132
    }

133 134
    if (!(msg->agent &&
            (msg->agent->usage_flags & STUN_AGENT_USAGE_NO_ALIGNED_ATTRIBUTES)))
135 136
      alen = stun_align (alen);

137 138 139 140 141 142 143
    offset += alen;
  }

  return NULL;
}


144
StunMessageReturn
145
stun_message_find_flag (const StunMessage *msg, StunAttribute type)
146 147
{
  const void *ptr;
148
  uint16_t len = 0;
149 150 151

  ptr = stun_message_find (msg, type, &len);
  if (ptr == NULL)
152 153 154
    return STUN_MESSAGE_RETURN_NOT_FOUND;
  return (len == 0) ? STUN_MESSAGE_RETURN_SUCCESS :
      STUN_MESSAGE_RETURN_INVALID;
155 156 157
}


158
StunMessageReturn
159
stun_message_find32 (const StunMessage *msg, StunAttribute type,
160
    uint32_t *pval)
161 162
{
  const void *ptr;
163
  uint16_t len = 0;
164 165 166

  ptr = stun_message_find (msg, type, &len);
  if (ptr == NULL)
167
    return STUN_MESSAGE_RETURN_NOT_FOUND;
168 169 170 171 172 173 174

  if (len == 4)
  {
    uint32_t val;

    memcpy (&val, ptr, sizeof (val));
    *pval = ntohl (val);
175
    return STUN_MESSAGE_RETURN_SUCCESS;
176
  }
177
  return STUN_MESSAGE_RETURN_INVALID;
178 179 180
}


181
StunMessageReturn
182
stun_message_find64 (const StunMessage *msg, StunAttribute type,
183 184 185
    uint64_t *pval)
{
  const void *ptr;
186
  uint16_t len = 0;
187 188 189

  ptr = stun_message_find (msg, type, &len);
  if (ptr == NULL)
190
    return STUN_MESSAGE_RETURN_NOT_FOUND;
191 192 193 194 195 196 197

  if (len == 8)
  {
    uint32_t tab[2];

    memcpy (tab, ptr, sizeof (tab));
    *pval = ((uint64_t)ntohl (tab[0]) << 32) | ntohl (tab[1]);
198
    return STUN_MESSAGE_RETURN_SUCCESS;
199
  }
200
  return STUN_MESSAGE_RETURN_INVALID;
201 202 203
}


204
StunMessageReturn
205
stun_message_find_string (const StunMessage *msg, StunAttribute type,
206 207 208
    char *buf, size_t buflen)
{
  const unsigned char *ptr;
209
  uint16_t len = 0;
210 211 212

  ptr = stun_message_find (msg, type, &len);
  if (ptr == NULL)
213
    return STUN_MESSAGE_RETURN_NOT_FOUND;
214 215

  if (len >= buflen)
216
    return STUN_MESSAGE_RETURN_NOT_ENOUGH_SPACE;
217 218 219

  memcpy (buf, ptr, len);
  buf[len] = '\0';
220
  return STUN_MESSAGE_RETURN_SUCCESS;
221 222 223
}


224
StunMessageReturn
225
stun_message_find_addr (const StunMessage *msg, StunAttribute type,
226
    struct sockaddr *addr, socklen_t *addrlen)
227 228
{
  const uint8_t *ptr;
229
  uint16_t len = 0;
230 231 232

  ptr = stun_message_find (msg, type, &len);
  if (ptr == NULL)
233
    return STUN_MESSAGE_RETURN_NOT_FOUND;
234 235

  if (len < 4)
236
    return STUN_MESSAGE_RETURN_INVALID;
237 238 239 240 241 242

  switch (ptr[1])
  {
    case 1:
      {
        struct sockaddr_in *ip4 = (struct sockaddr_in *)addr;
243
        if (((size_t) *addrlen < sizeof (*ip4)) || (len != 8))
244 245
        {
          *addrlen = sizeof (*ip4);
246
          return STUN_MESSAGE_RETURN_INVALID;
247 248 249 250 251 252 253 254 255 256
        }

        memset (ip4, 0, *addrlen);
        ip4->sin_family = AF_INET;
#ifdef HAVE_SA_LEN
        ip4->sin_len =
#endif
            *addrlen = sizeof (*ip4);
        memcpy (&ip4->sin_port, ptr + 2, 2);
        memcpy (&ip4->sin_addr, ptr + 4, 4);
257
        return STUN_MESSAGE_RETURN_SUCCESS;
258 259 260 261 262
      }

    case 2:
      {
        struct sockaddr_in6 *ip6 = (struct sockaddr_in6 *)addr;
263
        if (((size_t) *addrlen < sizeof (*ip6)) || (len != 20))
264 265
        {
          *addrlen = sizeof (*ip6);
266
          return STUN_MESSAGE_RETURN_INVALID;
267 268 269 270 271 272 273 274 275 276
        }

        memset (ip6, 0, *addrlen);
        ip6->sin6_family = AF_INET6;
#ifdef HAVE_SA_LEN
        ip6->sin6_len =
#endif
            *addrlen = sizeof (*ip6);
        memcpy (&ip6->sin6_port, ptr + 2, 2);
        memcpy (&ip6->sin6_addr, ptr + 4, 16);
277
        return STUN_MESSAGE_RETURN_SUCCESS;
278 279
      }

280 281 282
    default:
      return STUN_MESSAGE_RETURN_UNSUPPORTED_ADDRESS;
  }
283 284
}

285
StunMessageReturn
286
stun_message_find_xor_addr (const StunMessage *msg, StunAttribute type,
287 288
    struct sockaddr *addr,
    socklen_t *addrlen)
289
{
290
  StunMessageReturn val = stun_message_find_addr (msg, type, addr, addrlen);
291 292 293
  if (val)
    return val;

294 295 296
  return stun_xor_address (msg, addr, *addrlen, STUN_MAGIC_COOKIE);
}

297
StunMessageReturn
298
stun_message_find_xor_addr_full (const StunMessage *msg, StunAttribute type,
299
    struct sockaddr *addr,  socklen_t *addrlen,
300 301
    uint32_t magic_cookie)
{
302
  StunMessageReturn val = stun_message_find_addr (msg, type, addr, addrlen);
303 304 305 306
  if (val)
    return val;

  return stun_xor_address (msg, addr, *addrlen, magic_cookie);
307 308
}

309 310
StunMessageReturn
stun_message_find_error (const StunMessage *msg, int *code)
311
{
312
  uint16_t alen = 0;
313
  const uint8_t *ptr = stun_message_find (msg, STUN_ATTRIBUTE_ERROR_CODE, &alen);
314 315 316
  uint8_t class, number;

  if (ptr == NULL)
317
    return STUN_MESSAGE_RETURN_NOT_FOUND;
318
  if (alen < 4)
319
    return STUN_MESSAGE_RETURN_INVALID;
320 321 322 323

  class = ptr[2] & 0x7;
  number = ptr[3];
  if ((class < 3) || (class > 6) || (number > 99))
324
    return STUN_MESSAGE_RETURN_INVALID;
325 326

  *code = (class * 100) + number;
327
  return STUN_MESSAGE_RETURN_SUCCESS;
328 329 330
}

void *
331
stun_message_append (StunMessage *msg, StunAttribute type, size_t length)
332 333
{
  uint8_t *a;
334
  uint16_t mlen = stun_message_length (msg);
335

336 337 338 339 340 341 342 343 344
  /* In MS-TURN, IDs of REALM and NONCE STUN attributes are swapped. */
  if (msg->agent && msg->agent->compatibility == STUN_COMPATIBILITY_OC2007)
  {
    if (type == STUN_ATTRIBUTE_NONCE)
      type = STUN_ATTRIBUTE_REALM;
    else if (type == STUN_ATTRIBUTE_REALM)
      type = STUN_ATTRIBUTE_NONCE;
  }

345
  if ((size_t)mlen + STUN_ATTRIBUTE_HEADER_LENGTH + length > msg->buffer_len)
346 347 348
    return NULL;


349
  a = msg->buffer + mlen;
350
  a = stun_setw (a, type);
351 352
  if (msg->agent &&
      (msg->agent->usage_flags & STUN_AGENT_USAGE_NO_ALIGNED_ATTRIBUTES))
353 354 355 356 357 358 359 360 361 362 363
  {
    a = stun_setw (a, length);
  } else {
    /* NOTE: If cookie is not present, we need to force the attribute length
     * to a multiple of 4 for compatibility with old RFC3489 */
    a = stun_setw (a, stun_message_has_cookie (msg) ? length : stun_align (length));

    /* Add padding if needed */
    memset (a + length, ' ', stun_padding (length));
    mlen += stun_padding (length);
  }
364

365
  mlen +=  4 + length;
366

367
  stun_setw (msg->buffer + STUN_MESSAGE_LENGTH_POS, mlen - STUN_MESSAGE_HEADER_LENGTH);
368 369 370 371
  return a;
}


372
StunMessageReturn
373
stun_message_append_bytes (StunMessage *msg, StunAttribute type,
374 375 376 377
    const void *data, size_t len)
{
  void *ptr = stun_message_append (msg, type, len);
  if (ptr == NULL)
378
    return STUN_MESSAGE_RETURN_NOT_ENOUGH_SPACE;
379

380 381 382
  if (len > 0)
    memcpy (ptr, data, len);

383
  return STUN_MESSAGE_RETURN_SUCCESS;
384 385 386
}


387
StunMessageReturn
388
stun_message_append_flag (StunMessage *msg, StunAttribute type)
389 390 391 392 393
{
  return stun_message_append_bytes (msg, type, NULL, 0);
}


394
StunMessageReturn
395
stun_message_append32 (StunMessage *msg, StunAttribute type,
396 397 398 399 400 401 402
    uint32_t value)
{
  value = htonl (value);
  return stun_message_append_bytes (msg, type, &value, 4);
}


403
StunMessageReturn
404
stun_message_append64 (StunMessage *msg, StunAttribute type,
405 406 407 408 409 410 411 412 413
    uint64_t value)
{
  uint32_t tab[2];
  tab[0] = htonl ((uint32_t)(value >> 32));
  tab[1] = htonl ((uint32_t)value);
  return stun_message_append_bytes (msg, type, tab, 8);
}


414
StunMessageReturn
415
stun_message_append_string (StunMessage * msg, StunAttribute type,
416 417 418 419 420
    const char *str)
{
  return stun_message_append_bytes (msg, type, str, strlen (str));
}

421
StunMessageReturn
422
stun_message_append_addr (StunMessage *msg, StunAttribute type,
423
    const struct sockaddr *addr, socklen_t addrlen)
424 425 426 427 428 429
{
  const void *pa;
  uint8_t *ptr;
  uint16_t alen, port;
  uint8_t family;

430
  if ((size_t) addrlen < sizeof (struct sockaddr))
431
    return STUN_MESSAGE_RETURN_INVALID;
432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447

  switch (addr->sa_family)
  {
    case AF_INET:
      {
        const struct sockaddr_in *ip4 = (const struct sockaddr_in *)addr;
        family = 1;
        port = ip4->sin_port;
        alen = 4;
        pa = &ip4->sin_addr;
        break;
      }

    case AF_INET6:
      {
        const struct sockaddr_in6 *ip6 = (const struct sockaddr_in6 *)addr;
448
        if ((size_t) addrlen < sizeof (*ip6))
449
          return STUN_MESSAGE_RETURN_INVALID;
450 451 452 453 454 455 456 457 458

        family = 2;
        port = ip6->sin6_port;
        alen = 16;
        pa = &ip6->sin6_addr;
        break;
      }

    default:
459
      return STUN_MESSAGE_RETURN_UNSUPPORTED_ADDRESS;
460 461 462 463
  }

  ptr = stun_message_append (msg, type, 4 + alen);
  if (ptr == NULL)
464
    return STUN_MESSAGE_RETURN_NOT_ENOUGH_SPACE;
465 466 467 468 469

  ptr[0] = 0;
  ptr[1] = family;
  memcpy (ptr + 2, &port, 2);
  memcpy (ptr + 4, pa, alen);
470
  return STUN_MESSAGE_RETURN_SUCCESS;
471 472 473
}


474
StunMessageReturn
475
stun_message_append_xor_addr (StunMessage *msg, StunAttribute type,
476
    const struct sockaddr *addr, socklen_t addrlen)
477
{
478
  StunMessageReturn val;
479
  /* Must be big enough to hold any supported address: */
480 481 482 483
  union {
    struct sockaddr_storage storage;
    struct sockaddr addr;
  } xor;
484

485
  if ((size_t) addrlen > sizeof (xor))
486
    addrlen = sizeof (xor);
487
  memcpy (&xor.storage, addr, addrlen);
488

489
  val = stun_xor_address (msg, &xor.addr, addrlen,
490 491 492 493
      STUN_MAGIC_COOKIE);
  if (val)
    return val;

494
  return stun_message_append_addr (msg, type, &xor.addr, addrlen);
495 496
}

497
StunMessageReturn
498
stun_message_append_xor_addr_full (StunMessage *msg, StunAttribute type,
499
    const struct sockaddr *addr, socklen_t addrlen,
500 501
    uint32_t magic_cookie)
{
502
  StunMessageReturn val;
503
  /* Must be big enough to hold any supported address: */
504 505 506 507
  union {
    struct sockaddr_storage storage;
    struct sockaddr addr;
  } xor;
508

509
  if ((size_t) addrlen > sizeof (xor))
510
    addrlen = sizeof (xor);
511
  memcpy (&xor.storage, addr, addrlen);
512

513
  val = stun_xor_address (msg, &xor.addr, addrlen, magic_cookie);
514 515 516
  if (val)
    return val;

517
  return stun_message_append_addr (msg, type, &xor.addr, addrlen);
518 519 520 521
}



522
StunMessageReturn
523
stun_message_append_error (StunMessage *msg, StunError code)
524 525 526 527
{
  const char *str = stun_strerror (code);
  size_t len = strlen (str);

528
  uint8_t *ptr = stun_message_append (msg, STUN_ATTRIBUTE_ERROR_CODE, 4 + len);
529
  if (ptr == NULL)
530
    return STUN_MESSAGE_RETURN_NOT_ENOUGH_SPACE;
531 532

  memset (ptr, 0, 2);
533 534
  ptr[2] = code / 100;
  ptr[3] = code % 100;
535
  memcpy (ptr + 4, str, len);
536
  return STUN_MESSAGE_RETURN_SUCCESS;
537 538
}

539 540
int stun_message_validate_buffer_length (const uint8_t *msg, size_t length,
    bool has_padding)
541 542 543 544 545 546 547
{
  size_t mlen;
  size_t len;

  if (length < 1)
  {
    stun_debug ("STUN error: No data!\n");
548
    return STUN_MESSAGE_BUFFER_INVALID;
549 550 551 552 553
  }

  if (msg[0] >> 6)
  {
    stun_debug ("STUN error: RTP or other non-protocol packet!\n");
554
    return STUN_MESSAGE_BUFFER_INVALID; // RTP or other non-STUN packet
555 556 557 558 559
  }

  if (length < 4)
  {
    stun_debug ("STUN error: Incomplete STUN message header!\n");
560
    return STUN_MESSAGE_BUFFER_INCOMPLETE;
561 562 563 564 565
  }

  mlen = stun_getw (msg + STUN_MESSAGE_LENGTH_POS) +
      STUN_MESSAGE_HEADER_LENGTH;

566
  if (has_padding && stun_padding (mlen))
567 568
  {
    stun_debug ("STUN error: Invalid message length: %u!\n", (unsigned)mlen);
569
    return STUN_MESSAGE_BUFFER_INVALID; // wrong padding
570 571 572 573 574 575
  }

  if (length < mlen)
  {
    stun_debug ("STUN error: Incomplete message: %u of %u bytes!\n",
        (unsigned)length, (unsigned)mlen);
576
    return STUN_MESSAGE_BUFFER_INCOMPLETE; // partial message
577 578 579 580 581 582 583 584
  }

  msg += 20;
  len = mlen - 20;

  /* from then on, we know we have the entire packet in buffer */
  while (len > 0)
  {
585 586 587
    size_t alen = stun_getw (msg + STUN_ATTRIBUTE_TYPE_LEN);
    if (has_padding)
      alen = stun_align (alen);
588 589 590 591 592 593 594 595 596

    /* thanks to padding check, if (end > msg) then there is not only one
     * but at least 4 bytes left */
    len -= 4;

    if (len < alen)
    {
      stun_debug ("STUN error: %u instead of %u bytes for attribute!\n",
          (unsigned)len, (unsigned)alen);
597
      return STUN_MESSAGE_BUFFER_INVALID; // no room for attribute value + padding
598 599 600 601 602 603
    }

    len -= alen;
    msg += 4 + alen;
  }

604 605 606
  return mlen;
}

607
void stun_message_id (const StunMessage *msg, StunTransactionId id)
608 609 610 611
{
  memcpy (id, msg->buffer + STUN_MESSAGE_TRANS_ID_POS, STUN_MESSAGE_TRANS_ID_LEN);
}

612
StunMethod stun_message_get_method (const StunMessage *msg)
613 614
{
  uint16_t t = stun_getw (msg->buffer);
Youness Alaoui's avatar
Youness Alaoui committed
615
  /* HACK HACK HACK
616
     A google/msn data indication is 0x0115 which is contrary to the RFC 5389
Youness Alaoui's avatar
Youness Alaoui committed
617 618 619 620 621 622 623 624
     which states that 8th and 12th bits are for the class and that 0x01 is
     for indications...
     So 0x0115 is reported as a "connect error response", while it should be
     a data indication, which message type should actually be 0x0017
     This should fix the issue, and it's considered safe since the "connect"
     method doesn't exist anymore */
  if (t == 0x0115)
    t = 0x0017;
625
  return (StunMethod)(((t & 0x3e00) >> 2) | ((t & 0x00e0) >> 1) |
626 627 628 629
                          (t & 0x000f));
}


630
StunClass stun_message_get_class (const StunMessage *msg)
631 632
{
  uint16_t t = stun_getw (msg->buffer);
Youness Alaoui's avatar
Youness Alaoui committed
633
  /* HACK HACK HACK
634
     A google/msn data indication is 0x0115 which is contrary to the RFC 5389
Youness Alaoui's avatar
Youness Alaoui committed
635 636 637 638 639 640 641 642
     which states that 8th and 12th bits are for the class and that 0x01 is
     for indications...
     So 0x0115 is reported as a "connect error response", while it should be
     a data indication, which message type should actually be 0x0017
     This should fix the issue, and it's considered safe since the "connect"
     method doesn't exist anymore */
  if (t == 0x0115)
    t = 0x0017;
643
  return (StunClass)(((t & 0x0100) >> 7) | ((t & 0x0010) >> 4));
644 645
}

646
bool stun_message_has_attribute (const StunMessage *msg, StunAttribute type)
647 648 649
{
  uint16_t dummy;
  return stun_message_find (msg, type, &dummy) != NULL;
650
}
651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700


bool stun_optional (uint16_t t)
{
  return (t >> 15) == 1;
}

const char *stun_strerror (StunError code)
{
  static const struct
  {
    StunError code;
    char     phrase[32];
  } tab[] =
  {
    { STUN_ERROR_TRY_ALTERNATE, "Try alternate server" },
    { STUN_ERROR_BAD_REQUEST, "Bad request" },
    { STUN_ERROR_UNAUTHORIZED, "Unauthorized" },
    { STUN_ERROR_UNKNOWN_ATTRIBUTE, "Unknown Attribute" },
    { STUN_ERROR_ALLOCATION_MISMATCH, "Allocation Mismatch" },
    { STUN_ERROR_STALE_NONCE, "Stale Nonce" },
    { STUN_ERROR_ACT_DST_ALREADY, "Active Destination Already Set" },
    { STUN_ERROR_UNSUPPORTED_FAMILY, "Address Family not Supported" },
    { STUN_ERROR_UNSUPPORTED_TRANSPORT, "Unsupported Transport Protocol" },
    { STUN_ERROR_INVALID_IP, "Invalid IP Address" },
    { STUN_ERROR_INVALID_PORT, "Invalid Port" },
    { STUN_ERROR_OP_TCP_ONLY, "Operation for TCP Only" },
    { STUN_ERROR_CONN_ALREADY, "Connection Already Exists" },
    { STUN_ERROR_ALLOCATION_QUOTA_REACHED, "Allocation Quota Reached" },
    { STUN_ERROR_ROLE_CONFLICT, "Role conflict" },
    { STUN_ERROR_SERVER_ERROR, "Server Error" },
    { STUN_ERROR_SERVER_CAPACITY, "Insufficient Capacity" },
    { STUN_ERROR_INSUFFICIENT_CAPACITY, "Insufficient Capacity" },
  };
  const char *str = "Unknown error";
  size_t i;

  for (i = 0; i < (sizeof (tab) / sizeof (tab[0])); i++)
  {
    if (tab[i].code == code)
    {
      str = tab[i].phrase;
      break;
    }
  }

  /* Maximum allowed error message length */
  //  assert (strlen (str) < 128);
  return str;
}