hub.go 4.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164
  1. package websocket
  2. import (
  3. "bytes"
  4. "context"
  5. "crypto/tls"
  6. "encoding/base64"
  7. "io"
  8. "net/http"
  9. "strings"
  10. "sync"
  11. "time"
  12. "github.com/gorilla/websocket"
  13. "github.com/xtls/xray-core/common"
  14. "github.com/xtls/xray-core/common/net"
  15. http_proto "github.com/xtls/xray-core/common/protocol/http"
  16. "github.com/xtls/xray-core/common/session"
  17. "github.com/xtls/xray-core/transport/internet"
  18. v2tls "github.com/xtls/xray-core/transport/internet/tls"
  19. )
  20. type requestHandler struct {
  21. path string
  22. ln *Listener
  23. }
  24. var replacer = strings.NewReplacer("+", "-", "/", "_", "=", "")
  25. var upgrader = &websocket.Upgrader{
  26. ReadBufferSize: 4 * 1024,
  27. WriteBufferSize: 4 * 1024,
  28. HandshakeTimeout: time.Second * 4,
  29. CheckOrigin: func(r *http.Request) bool {
  30. return true
  31. },
  32. }
  33. func (h *requestHandler) ServeHTTP(writer http.ResponseWriter, request *http.Request) {
  34. if request.URL.Path != h.path {
  35. writer.WriteHeader(http.StatusNotFound)
  36. return
  37. }
  38. var extraReader io.Reader
  39. responseHeader := http.Header{}
  40. if str := request.Header.Get("Sec-WebSocket-Protocol"); str != "" {
  41. if ed, err := base64.RawURLEncoding.DecodeString(replacer.Replace(str)); err == nil && len(ed) > 0 {
  42. extraReader = bytes.NewReader(ed)
  43. responseHeader.Set("Sec-WebSocket-Protocol", str)
  44. }
  45. }
  46. conn, err := upgrader.Upgrade(writer, request, responseHeader)
  47. if err != nil {
  48. newError("failed to convert to WebSocket connection").Base(err).WriteToLog()
  49. return
  50. }
  51. forwardedAddrs := http_proto.ParseXForwardedFor(request.Header)
  52. remoteAddr := conn.RemoteAddr()
  53. if len(forwardedAddrs) > 0 && forwardedAddrs[0].Family().IsIP() {
  54. remoteAddr = &net.TCPAddr{
  55. IP: forwardedAddrs[0].IP(),
  56. Port: int(0),
  57. }
  58. }
  59. h.ln.addConn(newConnection(conn, remoteAddr, extraReader))
  60. }
  61. type Listener struct {
  62. sync.Mutex
  63. server http.Server
  64. listener net.Listener
  65. config *Config
  66. addConn internet.ConnHandler
  67. locker *internet.FileLocker // for unix domain socket
  68. }
  69. func ListenWS(ctx context.Context, address net.Address, port net.Port, streamSettings *internet.MemoryStreamConfig, addConn internet.ConnHandler) (internet.Listener, error) {
  70. l := &Listener{
  71. addConn: addConn,
  72. }
  73. wsSettings := streamSettings.ProtocolSettings.(*Config)
  74. l.config = wsSettings
  75. if l.config != nil {
  76. if streamSettings.SocketSettings == nil {
  77. streamSettings.SocketSettings = &internet.SocketConfig{}
  78. }
  79. streamSettings.SocketSettings.AcceptProxyProtocol = l.config.AcceptProxyProtocol || streamSettings.SocketSettings.AcceptProxyProtocol
  80. }
  81. var listener net.Listener
  82. var err error
  83. if port == net.Port(0) { // unix
  84. listener, err = internet.ListenSystem(ctx, &net.UnixAddr{
  85. Name: address.Domain(),
  86. Net: "unix",
  87. }, streamSettings.SocketSettings)
  88. if err != nil {
  89. return nil, newError("failed to listen unix domain socket(for WS) on ", address).Base(err)
  90. }
  91. newError("listening unix domain socket(for WS) on ", address).WriteToLog(session.ExportIDToError(ctx))
  92. locker := ctx.Value(address.Domain())
  93. if locker != nil {
  94. l.locker = locker.(*internet.FileLocker)
  95. }
  96. } else { // tcp
  97. listener, err = internet.ListenSystem(ctx, &net.TCPAddr{
  98. IP: address.IP(),
  99. Port: int(port),
  100. }, streamSettings.SocketSettings)
  101. if err != nil {
  102. return nil, newError("failed to listen TCP(for WS) on ", address, ":", port).Base(err)
  103. }
  104. newError("listening TCP(for WS) on ", address, ":", port).WriteToLog(session.ExportIDToError(ctx))
  105. }
  106. if streamSettings.SocketSettings != nil && streamSettings.SocketSettings.AcceptProxyProtocol {
  107. newError("accepting PROXY protocol").AtWarning().WriteToLog(session.ExportIDToError(ctx))
  108. }
  109. if config := v2tls.ConfigFromStreamSettings(streamSettings); config != nil {
  110. if tlsConfig := config.GetTLSConfig(); tlsConfig != nil {
  111. listener = tls.NewListener(listener, tlsConfig)
  112. }
  113. }
  114. l.listener = listener
  115. l.server = http.Server{
  116. Handler: &requestHandler{
  117. path: wsSettings.GetNormalizedPath(),
  118. ln: l,
  119. },
  120. ReadHeaderTimeout: time.Second * 4,
  121. MaxHeaderBytes: 4096,
  122. }
  123. go func() {
  124. if err := l.server.Serve(l.listener); err != nil {
  125. newError("failed to serve http for WebSocket").Base(err).AtWarning().WriteToLog(session.ExportIDToError(ctx))
  126. }
  127. }()
  128. return l, err
  129. }
  130. // Addr implements net.Listener.Addr().
  131. func (ln *Listener) Addr() net.Addr {
  132. return ln.listener.Addr()
  133. }
  134. // Close implements net.Listener.Close().
  135. func (ln *Listener) Close() error {
  136. if ln.locker != nil {
  137. ln.locker.Release()
  138. }
  139. return ln.listener.Close()
  140. }
  141. func init() {
  142. common.Must(internet.RegisterTransportListener(protocolName, ListenWS))
  143. }