socks_test.go 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495
  1. package scenarios
  2. import (
  3. "testing"
  4. "time"
  5. "github.com/xtls/xray-core/app/proxyman"
  6. "github.com/xtls/xray-core/app/router"
  7. "github.com/xtls/xray-core/common"
  8. "github.com/xtls/xray-core/common/net"
  9. "github.com/xtls/xray-core/common/protocol"
  10. "github.com/xtls/xray-core/common/serial"
  11. "github.com/xtls/xray-core/core"
  12. "github.com/xtls/xray-core/proxy/blackhole"
  13. "github.com/xtls/xray-core/proxy/dokodemo"
  14. "github.com/xtls/xray-core/proxy/freedom"
  15. "github.com/xtls/xray-core/proxy/http"
  16. "github.com/xtls/xray-core/proxy/socks"
  17. "github.com/xtls/xray-core/testing/servers/tcp"
  18. "github.com/xtls/xray-core/testing/servers/udp"
  19. xproxy "golang.org/x/net/proxy"
  20. socks4 "h12.io/socks"
  21. )
  22. func TestSocksBridgeTCP(t *testing.T) {
  23. tcpServer := tcp.Server{
  24. MsgProcessor: xor,
  25. }
  26. dest, err := tcpServer.Start()
  27. common.Must(err)
  28. defer tcpServer.Close()
  29. serverPort := tcp.PickPort()
  30. serverConfig := &core.Config{
  31. Inbound: []*core.InboundHandlerConfig{
  32. {
  33. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  34. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort)}},
  35. Listen: net.NewIPOrDomain(net.LocalHostIP),
  36. }),
  37. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  38. AuthType: socks.AuthType_PASSWORD,
  39. Accounts: map[string]string{
  40. "Test Account": "Test Password",
  41. },
  42. Address: net.NewIPOrDomain(net.LocalHostIP),
  43. UdpEnabled: false,
  44. }),
  45. },
  46. },
  47. Outbound: []*core.OutboundHandlerConfig{
  48. {
  49. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  50. },
  51. },
  52. }
  53. clientPort := tcp.PickPort()
  54. clientConfig := &core.Config{
  55. Inbound: []*core.InboundHandlerConfig{
  56. {
  57. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  58. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(clientPort)}},
  59. Listen: net.NewIPOrDomain(net.LocalHostIP),
  60. }),
  61. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  62. Address: net.NewIPOrDomain(dest.Address),
  63. Port: uint32(dest.Port),
  64. Networks: []net.Network{net.Network_TCP},
  65. }),
  66. },
  67. },
  68. Outbound: []*core.OutboundHandlerConfig{
  69. {
  70. ProxySettings: serial.ToTypedMessage(&socks.ClientConfig{
  71. Server: []*protocol.ServerEndpoint{
  72. {
  73. Address: net.NewIPOrDomain(net.LocalHostIP),
  74. Port: uint32(serverPort),
  75. User: []*protocol.User{
  76. {
  77. Account: serial.ToTypedMessage(&socks.Account{
  78. Username: "Test Account",
  79. Password: "Test Password",
  80. }),
  81. },
  82. },
  83. },
  84. },
  85. }),
  86. },
  87. },
  88. }
  89. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  90. common.Must(err)
  91. defer CloseAllServers(servers)
  92. if err := testTCPConn(clientPort, 1024, time.Second*2)(); err != nil {
  93. t.Error(err)
  94. }
  95. }
  96. func TestSocksWithHttpRequest(t *testing.T) {
  97. tcpServer := tcp.Server{
  98. MsgProcessor: xor,
  99. }
  100. dest, err := tcpServer.Start()
  101. common.Must(err)
  102. defer tcpServer.Close()
  103. serverPort := tcp.PickPort()
  104. serverConfig := &core.Config{
  105. Inbound: []*core.InboundHandlerConfig{
  106. {
  107. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  108. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort)}},
  109. Listen: net.NewIPOrDomain(net.LocalHostIP),
  110. }),
  111. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  112. AuthType: socks.AuthType_PASSWORD,
  113. Accounts: map[string]string{
  114. "Test Account": "Test Password",
  115. },
  116. Address: net.NewIPOrDomain(net.LocalHostIP),
  117. UdpEnabled: false,
  118. }),
  119. },
  120. },
  121. Outbound: []*core.OutboundHandlerConfig{
  122. {
  123. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  124. },
  125. },
  126. }
  127. clientPort := tcp.PickPort()
  128. clientConfig := &core.Config{
  129. Inbound: []*core.InboundHandlerConfig{
  130. {
  131. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  132. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(clientPort)}},
  133. Listen: net.NewIPOrDomain(net.LocalHostIP),
  134. }),
  135. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  136. Address: net.NewIPOrDomain(dest.Address),
  137. Port: uint32(dest.Port),
  138. Networks: []net.Network{net.Network_TCP},
  139. }),
  140. },
  141. },
  142. Outbound: []*core.OutboundHandlerConfig{
  143. {
  144. ProxySettings: serial.ToTypedMessage(&http.ClientConfig{
  145. Server: []*protocol.ServerEndpoint{
  146. {
  147. Address: net.NewIPOrDomain(net.LocalHostIP),
  148. Port: uint32(serverPort),
  149. User: []*protocol.User{
  150. {
  151. Account: serial.ToTypedMessage(&http.Account{
  152. Username: "Test Account",
  153. Password: "Test Password",
  154. }),
  155. },
  156. },
  157. },
  158. },
  159. }),
  160. },
  161. },
  162. }
  163. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  164. common.Must(err)
  165. defer CloseAllServers(servers)
  166. if err := testTCPConn(clientPort, 1024, time.Second*2)(); err != nil {
  167. t.Error(err)
  168. }
  169. }
  170. func TestSocksBridageUDP(t *testing.T) {
  171. udpServer := udp.Server{
  172. MsgProcessor: xor,
  173. }
  174. dest, err := udpServer.Start()
  175. common.Must(err)
  176. defer udpServer.Close()
  177. retry := 1
  178. serverPort := tcp.PickPort()
  179. for {
  180. serverConfig := &core.Config{
  181. Inbound: []*core.InboundHandlerConfig{
  182. {
  183. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  184. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort)}},
  185. Listen: net.NewIPOrDomain(net.LocalHostIP),
  186. }),
  187. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  188. AuthType: socks.AuthType_PASSWORD,
  189. Accounts: map[string]string{
  190. "Test Account": "Test Password",
  191. },
  192. Address: net.NewIPOrDomain(net.LocalHostIP),
  193. UdpEnabled: true,
  194. }),
  195. },
  196. {
  197. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  198. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort + 1)}},
  199. Listen: net.NewIPOrDomain(net.LocalHostIP),
  200. }),
  201. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  202. Address: net.NewIPOrDomain(dest.Address),
  203. Port: uint32(dest.Port),
  204. Networks: []net.Network{net.Network_UDP},
  205. }),
  206. },
  207. },
  208. Outbound: []*core.OutboundHandlerConfig{
  209. {
  210. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  211. },
  212. },
  213. }
  214. server, _ := InitializeServerConfig(serverConfig)
  215. if server != nil && WaitConnAvailableWithTest(t, testUDPConn(serverPort+1, 1024, time.Second*2)) {
  216. defer CloseServer(server)
  217. break
  218. }
  219. retry++
  220. if retry > 5 {
  221. t.Fatal("All attempts failed to start server")
  222. }
  223. serverPort = tcp.PickPort()
  224. }
  225. clientPort := udp.PickPort()
  226. clientConfig := &core.Config{
  227. Inbound: []*core.InboundHandlerConfig{
  228. {
  229. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  230. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(clientPort)}},
  231. Listen: net.NewIPOrDomain(net.LocalHostIP),
  232. }),
  233. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  234. Address: net.NewIPOrDomain(dest.Address),
  235. Port: uint32(dest.Port),
  236. Networks: []net.Network{net.Network_UDP},
  237. }),
  238. },
  239. },
  240. Outbound: []*core.OutboundHandlerConfig{
  241. {
  242. ProxySettings: serial.ToTypedMessage(&socks.ClientConfig{
  243. Server: []*protocol.ServerEndpoint{
  244. {
  245. Address: net.NewIPOrDomain(net.LocalHostIP),
  246. Port: uint32(serverPort),
  247. User: []*protocol.User{
  248. {
  249. Account: serial.ToTypedMessage(&socks.Account{
  250. Username: "Test Account",
  251. Password: "Test Password",
  252. }),
  253. },
  254. },
  255. },
  256. },
  257. }),
  258. },
  259. },
  260. }
  261. server, err := InitializeServerConfig(clientConfig)
  262. common.Must(err)
  263. defer CloseServer(server)
  264. if !WaitConnAvailableWithTest(t, testUDPConn(clientPort, 1024, time.Second*2)) {
  265. t.Fail()
  266. }
  267. }
  268. func TestSocksBridageUDPWithRouting(t *testing.T) {
  269. udpServer := udp.Server{
  270. MsgProcessor: xor,
  271. }
  272. dest, err := udpServer.Start()
  273. common.Must(err)
  274. defer udpServer.Close()
  275. retry := 1
  276. serverPort := tcp.PickPort()
  277. for {
  278. serverConfig := &core.Config{
  279. App: []*serial.TypedMessage{
  280. serial.ToTypedMessage(&router.Config{
  281. Rule: []*router.RoutingRule{
  282. {
  283. TargetTag: &router.RoutingRule_Tag{
  284. Tag: "out",
  285. },
  286. InboundTag: []string{"socks", "dokodemo"},
  287. },
  288. },
  289. }),
  290. },
  291. Inbound: []*core.InboundHandlerConfig{
  292. {
  293. Tag: "socks",
  294. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  295. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort)}},
  296. Listen: net.NewIPOrDomain(net.LocalHostIP),
  297. }),
  298. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  299. AuthType: socks.AuthType_NO_AUTH,
  300. Address: net.NewIPOrDomain(net.LocalHostIP),
  301. UdpEnabled: true,
  302. }),
  303. },
  304. {
  305. Tag: "dokodemo",
  306. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  307. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(serverPort + 1)}},
  308. Listen: net.NewIPOrDomain(net.LocalHostIP),
  309. }),
  310. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  311. Address: net.NewIPOrDomain(dest.Address),
  312. Port: uint32(dest.Port),
  313. Networks: []net.Network{net.Network_UDP},
  314. }),
  315. },
  316. },
  317. Outbound: []*core.OutboundHandlerConfig{
  318. {
  319. ProxySettings: serial.ToTypedMessage(&blackhole.Config{}),
  320. },
  321. {
  322. Tag: "out",
  323. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  324. },
  325. },
  326. }
  327. server, _ := InitializeServerConfig(serverConfig)
  328. if server != nil && WaitConnAvailableWithTest(t, testUDPConn(serverPort+1, 1024, time.Second*2)) {
  329. defer CloseServer(server)
  330. break
  331. }
  332. retry++
  333. if retry > 5 {
  334. t.Fatal("All attempts failed to start server")
  335. }
  336. serverPort = tcp.PickPort()
  337. }
  338. clientPort := udp.PickPort()
  339. clientConfig := &core.Config{
  340. Inbound: []*core.InboundHandlerConfig{
  341. {
  342. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  343. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(clientPort)}},
  344. Listen: net.NewIPOrDomain(net.LocalHostIP),
  345. }),
  346. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  347. Address: net.NewIPOrDomain(dest.Address),
  348. Port: uint32(dest.Port),
  349. Networks: []net.Network{net.Network_UDP},
  350. }),
  351. },
  352. },
  353. Outbound: []*core.OutboundHandlerConfig{
  354. {
  355. ProxySettings: serial.ToTypedMessage(&socks.ClientConfig{
  356. Server: []*protocol.ServerEndpoint{
  357. {
  358. Address: net.NewIPOrDomain(net.LocalHostIP),
  359. Port: uint32(serverPort),
  360. },
  361. },
  362. }),
  363. },
  364. },
  365. }
  366. server, err := InitializeServerConfig(clientConfig)
  367. common.Must(err)
  368. defer CloseServer(server)
  369. if !WaitConnAvailableWithTest(t, testUDPConn(clientPort, 1024, time.Second*2)) {
  370. t.Fail()
  371. }
  372. }
  373. func TestSocksConformanceMod(t *testing.T) {
  374. tcpServer := tcp.Server{
  375. MsgProcessor: xor,
  376. }
  377. dest, err := tcpServer.Start()
  378. common.Must(err)
  379. defer tcpServer.Close()
  380. authPort := tcp.PickPort()
  381. noAuthPort := tcp.PickPort()
  382. serverConfig := &core.Config{
  383. Inbound: []*core.InboundHandlerConfig{
  384. {
  385. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  386. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(authPort)}},
  387. Listen: net.NewIPOrDomain(net.LocalHostIP),
  388. }),
  389. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  390. AuthType: socks.AuthType_PASSWORD,
  391. Accounts: map[string]string{
  392. "Test Account": "Test Password",
  393. },
  394. Address: net.NewIPOrDomain(net.LocalHostIP),
  395. UdpEnabled: false,
  396. }),
  397. },
  398. {
  399. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  400. PortList: &net.PortList{Range: []*net.PortRange{net.SinglePortRange(noAuthPort)}},
  401. Listen: net.NewIPOrDomain(net.LocalHostIP),
  402. }),
  403. ProxySettings: serial.ToTypedMessage(&socks.ServerConfig{
  404. AuthType: socks.AuthType_NO_AUTH,
  405. Accounts: map[string]string{
  406. "Test Account": "Test Password",
  407. },
  408. Address: net.NewIPOrDomain(net.LocalHostIP),
  409. UdpEnabled: false,
  410. }),
  411. },
  412. },
  413. Outbound: []*core.OutboundHandlerConfig{
  414. {
  415. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  416. },
  417. },
  418. }
  419. servers, err := InitializeServerConfigs(serverConfig)
  420. common.Must(err)
  421. defer CloseAllServers(servers)
  422. {
  423. noAuthDialer, err := xproxy.SOCKS5("tcp", net.TCPDestination(net.LocalHostIP, noAuthPort).NetAddr(), nil, xproxy.Direct)
  424. common.Must(err)
  425. conn, err := noAuthDialer.Dial("tcp", dest.NetAddr())
  426. common.Must(err)
  427. defer conn.Close()
  428. if err := testTCPConn2(conn, 1024, time.Second*5)(); err != nil {
  429. t.Error(err)
  430. }
  431. }
  432. {
  433. authDialer, err := xproxy.SOCKS5("tcp", net.TCPDestination(net.LocalHostIP, authPort).NetAddr(), &xproxy.Auth{User: "Test Account", Password: "Test Password"}, xproxy.Direct)
  434. common.Must(err)
  435. conn, err := authDialer.Dial("tcp", dest.NetAddr())
  436. common.Must(err)
  437. defer conn.Close()
  438. if err := testTCPConn2(conn, 1024, time.Second*5)(); err != nil {
  439. t.Error(err)
  440. }
  441. }
  442. {
  443. dialer := socks4.Dial("socks4://" + net.TCPDestination(net.LocalHostIP, noAuthPort).NetAddr())
  444. conn, err := dialer("tcp", dest.NetAddr())
  445. common.Must(err)
  446. defer conn.Close()
  447. if err := testTCPConn2(conn, 1024, time.Second*5)(); err != nil {
  448. t.Error(err)
  449. }
  450. }
  451. {
  452. dialer := socks4.Dial("socks4://" + net.TCPDestination(net.LocalHostIP, noAuthPort).NetAddr())
  453. conn, err := dialer("tcp", net.TCPDestination(net.LocalHostIP, tcpServer.Port).NetAddr())
  454. common.Must(err)
  455. defer conn.Close()
  456. if err := testTCPConn2(conn, 1024, time.Second*5)(); err != nil {
  457. t.Error(err)
  458. }
  459. }
  460. }