| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144 |
- package tcp
- import (
- "context"
- gotls "crypto/tls"
- "strings"
- "time"
- goreality "github.com/xtls/reality"
- "github.com/xtls/xray-core/common"
- "github.com/xtls/xray-core/common/net"
- "github.com/xtls/xray-core/common/session"
- "github.com/xtls/xray-core/transport/internet"
- "github.com/xtls/xray-core/transport/internet/reality"
- "github.com/xtls/xray-core/transport/internet/stat"
- "github.com/xtls/xray-core/transport/internet/tls"
- )
- // Listener is an internet.Listener that listens for TCP connections.
- type Listener struct {
- listener net.Listener
- tlsConfig *gotls.Config
- realityConfig *goreality.Config
- authConfig internet.ConnectionAuthenticator
- config *Config
- addConn internet.ConnHandler
- locker *internet.FileLocker // for unix domain socket
- }
- // ListenTCP creates a new Listener based on configurations.
- func ListenTCP(ctx context.Context, address net.Address, port net.Port, streamSettings *internet.MemoryStreamConfig, handler internet.ConnHandler) (internet.Listener, error) {
- l := &Listener{
- addConn: handler,
- }
- tcpSettings := streamSettings.ProtocolSettings.(*Config)
- l.config = tcpSettings
- if l.config != nil {
- if streamSettings.SocketSettings == nil {
- streamSettings.SocketSettings = &internet.SocketConfig{}
- }
- streamSettings.SocketSettings.AcceptProxyProtocol = l.config.AcceptProxyProtocol || streamSettings.SocketSettings.AcceptProxyProtocol
- }
- var listener net.Listener
- var err error
- if port == net.Port(0) { // unix
- listener, err = internet.ListenSystem(ctx, &net.UnixAddr{
- Name: address.Domain(),
- Net: "unix",
- }, streamSettings.SocketSettings)
- if err != nil {
- return nil, newError("failed to listen Unix Domain Socket on ", address).Base(err)
- }
- newError("listening Unix Domain Socket on ", address).WriteToLog(session.ExportIDToError(ctx))
- locker := ctx.Value(address.Domain())
- if locker != nil {
- l.locker = locker.(*internet.FileLocker)
- }
- } else {
- listener, err = internet.ListenSystem(ctx, &net.TCPAddr{
- IP: address.IP(),
- Port: int(port),
- }, streamSettings.SocketSettings)
- if err != nil {
- return nil, newError("failed to listen TCP on ", address, ":", port).Base(err)
- }
- newError("listening TCP on ", address, ":", port).WriteToLog(session.ExportIDToError(ctx))
- }
- if streamSettings.SocketSettings != nil && streamSettings.SocketSettings.AcceptProxyProtocol {
- newError("accepting PROXY protocol").AtWarning().WriteToLog(session.ExportIDToError(ctx))
- }
- l.listener = listener
- if config := tls.ConfigFromStreamSettings(streamSettings); config != nil {
- l.tlsConfig = config.GetTLSConfig()
- }
- if config := reality.ConfigFromStreamSettings(streamSettings); config != nil {
- l.realityConfig = config.GetREALITYConfig()
- }
- if tcpSettings.HeaderSettings != nil {
- headerConfig, err := tcpSettings.HeaderSettings.GetInstance()
- if err != nil {
- return nil, newError("invalid header settings").Base(err).AtError()
- }
- auth, err := internet.CreateConnectionAuthenticator(headerConfig)
- if err != nil {
- return nil, newError("invalid header settings.").Base(err).AtError()
- }
- l.authConfig = auth
- }
- go l.keepAccepting()
- return l, nil
- }
- func (v *Listener) keepAccepting() {
- for {
- conn, err := v.listener.Accept()
- if err != nil {
- errStr := err.Error()
- if strings.Contains(errStr, "closed") {
- break
- }
- newError("failed to accepted raw connections").Base(err).AtWarning().WriteToLog()
- if strings.Contains(errStr, "too many") {
- time.Sleep(time.Millisecond * 500)
- }
- continue
- }
- go func() {
- if v.tlsConfig != nil {
- conn = tls.Server(conn, v.tlsConfig)
- } else if v.realityConfig != nil {
- if conn, err = reality.Server(conn, v.realityConfig); err != nil {
- newError(err).AtInfo().WriteToLog()
- return
- }
- }
- if v.authConfig != nil {
- conn = v.authConfig.Server(conn)
- }
- v.addConn(stat.Connection(conn))
- }()
- }
- }
- // Addr implements internet.Listener.Addr.
- func (v *Listener) Addr() net.Addr {
- return v.listener.Addr()
- }
- // Close implements internet.Listener.Close.
- func (v *Listener) Close() error {
- if v.locker != nil {
- v.locker.Release()
- }
- return v.listener.Close()
- }
- func init() {
- common.Must(internet.RegisterTransportListener(protocolName, ListenTCP))
- }
|