hub.go 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252
  1. package http
  2. import (
  3. "context"
  4. gotls "crypto/tls"
  5. "io"
  6. "net/http"
  7. "strings"
  8. "time"
  9. "github.com/quic-go/quic-go"
  10. "github.com/quic-go/quic-go/http3"
  11. goreality "github.com/xtls/reality"
  12. "github.com/xtls/xray-core/common"
  13. "github.com/xtls/xray-core/common/errors"
  14. "github.com/xtls/xray-core/common/net"
  15. "github.com/xtls/xray-core/common/net/cnc"
  16. http_proto "github.com/xtls/xray-core/common/protocol/http"
  17. "github.com/xtls/xray-core/common/serial"
  18. "github.com/xtls/xray-core/common/signal/done"
  19. "github.com/xtls/xray-core/transport/internet"
  20. "github.com/xtls/xray-core/transport/internet/reality"
  21. "github.com/xtls/xray-core/transport/internet/tls"
  22. "golang.org/x/net/http2"
  23. "golang.org/x/net/http2/h2c"
  24. )
  25. type Listener struct {
  26. server *http.Server
  27. h3server *http3.Server
  28. handler internet.ConnHandler
  29. local net.Addr
  30. config *Config
  31. isH3 bool
  32. }
  33. func (l *Listener) Addr() net.Addr {
  34. return l.local
  35. }
  36. func (l *Listener) Close() error {
  37. if l.h3server != nil {
  38. if err := l.h3server.Close(); err != nil {
  39. return err
  40. }
  41. } else if l.server != nil {
  42. return l.server.Close()
  43. }
  44. return errors.New("listener does not have an HTTP/3 server or h2 server")
  45. }
  46. type flushWriter struct {
  47. w io.Writer
  48. d *done.Instance
  49. }
  50. func (fw flushWriter) Write(p []byte) (n int, err error) {
  51. if fw.d.Done() {
  52. return 0, io.ErrClosedPipe
  53. }
  54. defer func() {
  55. if recover() != nil {
  56. fw.d.Close()
  57. err = io.ErrClosedPipe
  58. }
  59. }()
  60. n, err = fw.w.Write(p)
  61. if f, ok := fw.w.(http.Flusher); ok && err == nil {
  62. f.Flush()
  63. }
  64. return
  65. }
  66. func (l *Listener) ServeHTTP(writer http.ResponseWriter, request *http.Request) {
  67. host := request.Host
  68. if !l.config.isValidHost(host) {
  69. writer.WriteHeader(404)
  70. return
  71. }
  72. path := l.config.getNormalizedPath()
  73. if !strings.HasPrefix(request.URL.Path, path) {
  74. writer.WriteHeader(404)
  75. return
  76. }
  77. writer.Header().Set("Cache-Control", "no-store")
  78. for _, httpHeader := range l.config.Header {
  79. for _, httpHeaderValue := range httpHeader.Value {
  80. writer.Header().Set(httpHeader.Name, httpHeaderValue)
  81. }
  82. }
  83. writer.WriteHeader(200)
  84. if f, ok := writer.(http.Flusher); ok {
  85. f.Flush()
  86. }
  87. remoteAddr := l.Addr()
  88. dest, err := net.ParseDestination(request.RemoteAddr)
  89. if err != nil {
  90. errors.LogInfoInner(context.Background(), err, "failed to parse request remote addr: ", request.RemoteAddr)
  91. } else {
  92. remoteAddr = &net.TCPAddr{
  93. IP: dest.Address.IP(),
  94. Port: int(dest.Port),
  95. }
  96. }
  97. forwardedAddress := http_proto.ParseXForwardedFor(request.Header)
  98. if len(forwardedAddress) > 0 && forwardedAddress[0].Family().IsIP() {
  99. remoteAddr = &net.TCPAddr{
  100. IP: forwardedAddress[0].IP(),
  101. Port: 0,
  102. }
  103. }
  104. done := done.New()
  105. conn := cnc.NewConnection(
  106. cnc.ConnectionOutput(request.Body),
  107. cnc.ConnectionInput(flushWriter{w: writer, d: done}),
  108. cnc.ConnectionOnClose(common.ChainedClosable{done, request.Body}),
  109. cnc.ConnectionLocalAddr(l.Addr()),
  110. cnc.ConnectionRemoteAddr(remoteAddr),
  111. )
  112. l.handler(conn)
  113. <-done.Wait()
  114. }
  115. func Listen(ctx context.Context, address net.Address, port net.Port, streamSettings *internet.MemoryStreamConfig, handler internet.ConnHandler) (internet.Listener, error) {
  116. httpSettings := streamSettings.ProtocolSettings.(*Config)
  117. config := tls.ConfigFromStreamSettings(streamSettings)
  118. var tlsConfig *gotls.Config
  119. if config == nil {
  120. tlsConfig = &gotls.Config{}
  121. } else {
  122. tlsConfig = config.GetTLSConfig()
  123. }
  124. isH3 := len(tlsConfig.NextProtos) == 1 && tlsConfig.NextProtos[0] == "h3"
  125. listener := &Listener{
  126. handler: handler,
  127. config: httpSettings,
  128. isH3: isH3,
  129. }
  130. if port == net.Port(0) { // unix
  131. listener.local = &net.UnixAddr{
  132. Name: address.Domain(),
  133. Net: "unix",
  134. }
  135. } else if isH3 { // udp
  136. listener.local = &net.UDPAddr{
  137. IP: address.IP(),
  138. Port: int(port),
  139. }
  140. } else {
  141. listener.local = &net.TCPAddr{
  142. IP: address.IP(),
  143. Port: int(port),
  144. }
  145. }
  146. if streamSettings.SocketSettings != nil && streamSettings.SocketSettings.AcceptProxyProtocol {
  147. errors.LogWarning(ctx, "accepting PROXY protocol")
  148. }
  149. if isH3 {
  150. Conn, err := internet.ListenSystemPacket(context.Background(), listener.local, streamSettings.SocketSettings)
  151. if err != nil {
  152. return nil, errors.New("failed to listen UDP(for SH3) on ", address, ":", port).Base(err)
  153. }
  154. h3listener, err := quic.ListenEarly(Conn, tlsConfig, nil)
  155. if err != nil {
  156. return nil, errors.New("failed to listen QUIC(for SH3) on ", address, ":", port).Base(err)
  157. }
  158. errors.LogInfo(ctx, "listening QUIC(for SH3) on ", address, ":", port)
  159. listener.h3server = &http3.Server{
  160. Handler: listener,
  161. }
  162. go func() {
  163. if err := listener.h3server.ServeListener(h3listener); err != nil {
  164. errors.LogWarningInner(ctx, err, "failed to serve http3 for splithttp")
  165. }
  166. }()
  167. } else {
  168. var server *http.Server
  169. if config == nil {
  170. h2s := &http2.Server{}
  171. server = &http.Server{
  172. Addr: serial.Concat(address, ":", port),
  173. Handler: h2c.NewHandler(listener, h2s),
  174. ReadHeaderTimeout: time.Second * 4,
  175. }
  176. } else {
  177. server = &http.Server{
  178. Addr: serial.Concat(address, ":", port),
  179. TLSConfig: config.GetTLSConfig(tls.WithNextProto("h2")),
  180. Handler: listener,
  181. ReadHeaderTimeout: time.Second * 4,
  182. }
  183. }
  184. listener.server = server
  185. go func() {
  186. var streamListener net.Listener
  187. var err error
  188. if port == net.Port(0) { // unix
  189. streamListener, err = internet.ListenSystem(ctx, &net.UnixAddr{
  190. Name: address.Domain(),
  191. Net: "unix",
  192. }, streamSettings.SocketSettings)
  193. if err != nil {
  194. errors.LogErrorInner(ctx, err, "failed to listen on ", address)
  195. return
  196. }
  197. } else { // tcp
  198. streamListener, err = internet.ListenSystem(ctx, &net.TCPAddr{
  199. IP: address.IP(),
  200. Port: int(port),
  201. }, streamSettings.SocketSettings)
  202. if err != nil {
  203. errors.LogErrorInner(ctx, err, "failed to listen on ", address, ":", port)
  204. return
  205. }
  206. }
  207. if config == nil {
  208. if config := reality.ConfigFromStreamSettings(streamSettings); config != nil {
  209. streamListener = goreality.NewListener(streamListener, config.GetREALITYConfig())
  210. }
  211. err = server.Serve(streamListener)
  212. if err != nil {
  213. errors.LogInfoInner(ctx, err, "stopping serving H2C or REALITY H2")
  214. }
  215. } else {
  216. err = server.ServeTLS(streamListener, "", "")
  217. if err != nil {
  218. errors.LogInfoInner(ctx, err, "stopping serving TLS H2")
  219. }
  220. }
  221. }()
  222. }
  223. return listener, nil
  224. }
  225. func init() {
  226. common.Must(internet.RegisterTransportListener(protocolName, Listen))
  227. }