server.go 4.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160
  1. package mtproto
  2. import (
  3. "bytes"
  4. "context"
  5. "time"
  6. "github.com/xtls/xray-core/common"
  7. "github.com/xtls/xray-core/common/buf"
  8. "github.com/xtls/xray-core/common/crypto"
  9. "github.com/xtls/xray-core/common/net"
  10. "github.com/xtls/xray-core/common/protocol"
  11. "github.com/xtls/xray-core/common/session"
  12. "github.com/xtls/xray-core/common/signal"
  13. "github.com/xtls/xray-core/common/task"
  14. "github.com/xtls/xray-core/core"
  15. "github.com/xtls/xray-core/features/policy"
  16. "github.com/xtls/xray-core/features/routing"
  17. "github.com/xtls/xray-core/transport/internet/stat"
  18. )
  19. var dcList = []net.Address{
  20. net.ParseAddress("149.154.175.50"),
  21. net.ParseAddress("149.154.167.51"),
  22. net.ParseAddress("149.154.175.100"),
  23. net.ParseAddress("149.154.167.91"),
  24. net.ParseAddress("149.154.171.5"),
  25. }
  26. type Server struct {
  27. user *protocol.User
  28. account *Account
  29. policy policy.Manager
  30. }
  31. func NewServer(ctx context.Context, config *ServerConfig) (*Server, error) {
  32. if len(config.User) == 0 {
  33. return nil, newError("no user configured.")
  34. }
  35. user := config.User[0]
  36. rawAccount, err := config.User[0].GetTypedAccount()
  37. if err != nil {
  38. return nil, newError("invalid account").Base(err)
  39. }
  40. account, ok := rawAccount.(*Account)
  41. if !ok {
  42. return nil, newError("not a MTProto account")
  43. }
  44. v := core.MustFromContext(ctx)
  45. return &Server{
  46. user: user,
  47. account: account,
  48. policy: v.GetFeature(policy.ManagerType()).(policy.Manager),
  49. }, nil
  50. }
  51. func (s *Server) Network() []net.Network {
  52. return []net.Network{net.Network_TCP}
  53. }
  54. var (
  55. ctype1 = []byte{0xef, 0xef, 0xef, 0xef}
  56. ctype2 = []byte{0xee, 0xee, 0xee, 0xee}
  57. )
  58. func isValidConnectionType(c [4]byte) bool {
  59. if bytes.Equal(c[:], ctype1) {
  60. return true
  61. }
  62. if bytes.Equal(c[:], ctype2) {
  63. return true
  64. }
  65. return false
  66. }
  67. func (s *Server) Process(ctx context.Context, network net.Network, conn stat.Connection, dispatcher routing.Dispatcher) error {
  68. sPolicy := s.policy.ForLevel(s.user.Level)
  69. if err := conn.SetDeadline(time.Now().Add(sPolicy.Timeouts.Handshake)); err != nil {
  70. newError("failed to set deadline").Base(err).WriteToLog(session.ExportIDToError(ctx))
  71. }
  72. auth, err := ReadAuthentication(conn)
  73. if err != nil {
  74. return newError("failed to read authentication header").Base(err)
  75. }
  76. defer putAuthenticationObject(auth)
  77. if err := conn.SetDeadline(time.Time{}); err != nil {
  78. newError("failed to clear deadline").Base(err).WriteToLog(session.ExportIDToError(ctx))
  79. }
  80. auth.ApplySecret(s.account.Secret)
  81. decryptor := crypto.NewAesCTRStream(auth.DecodingKey[:], auth.DecodingNonce[:])
  82. decryptor.XORKeyStream(auth.Header[:], auth.Header[:])
  83. ct := auth.ConnectionType()
  84. if !isValidConnectionType(ct) {
  85. return newError("invalid connection type: ", ct)
  86. }
  87. dcID := auth.DataCenterID()
  88. if dcID >= uint16(len(dcList)) {
  89. return newError("invalid datacenter id: ", dcID)
  90. }
  91. dest := net.Destination{
  92. Network: net.Network_TCP,
  93. Address: dcList[dcID],
  94. Port: net.Port(443),
  95. }
  96. ctx, cancel := context.WithCancel(ctx)
  97. timer := signal.CancelAfterInactivity(ctx, cancel, sPolicy.Timeouts.ConnectionIdle)
  98. ctx = policy.ContextWithBufferPolicy(ctx, sPolicy.Buffer)
  99. sc := SessionContext{
  100. ConnectionType: ct,
  101. DataCenterID: dcID,
  102. }
  103. ctx = ContextWithSessionContext(ctx, sc)
  104. link, err := dispatcher.Dispatch(ctx, dest)
  105. if err != nil {
  106. return newError("failed to dispatch request to: ", dest).Base(err)
  107. }
  108. request := func() error {
  109. defer timer.SetTimeout(sPolicy.Timeouts.DownlinkOnly)
  110. reader := buf.NewReader(crypto.NewCryptionReader(decryptor, conn))
  111. return buf.Copy(reader, link.Writer, buf.UpdateActivity(timer))
  112. }
  113. response := func() error {
  114. defer timer.SetTimeout(sPolicy.Timeouts.UplinkOnly)
  115. encryptor := crypto.NewAesCTRStream(auth.EncodingKey[:], auth.EncodingNonce[:])
  116. writer := buf.NewWriter(crypto.NewCryptionWriter(encryptor, conn))
  117. return buf.Copy(link.Reader, writer, buf.UpdateActivity(timer))
  118. }
  119. responseDoneAndCloseWriter := task.OnSuccess(response, task.Close(link.Writer))
  120. if err := task.Run(ctx, request, responseDoneAndCloseWriter); err != nil {
  121. common.Interrupt(link.Reader)
  122. common.Interrupt(link.Writer)
  123. return newError("connection ends").Base(err)
  124. }
  125. return nil
  126. }
  127. func init() {
  128. common.Must(common.RegisterConfig((*ServerConfig)(nil), func(ctx context.Context, config interface{}) (interface{}, error) {
  129. return NewServer(ctx, config.(*ServerConfig))
  130. }))
  131. }