default.go 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431
  1. package inbound
  2. import (
  3. "context"
  4. "net"
  5. "net/netip"
  6. "os"
  7. "sync"
  8. "time"
  9. "github.com/sagernet/sing-box/adapter"
  10. "github.com/sagernet/sing-box/common/settings"
  11. C "github.com/sagernet/sing-box/constant"
  12. "github.com/sagernet/sing-box/log"
  13. "github.com/sagernet/sing-box/option"
  14. "github.com/sagernet/sing-dns"
  15. "github.com/sagernet/sing/common"
  16. "github.com/sagernet/sing/common/buf"
  17. E "github.com/sagernet/sing/common/exceptions"
  18. M "github.com/sagernet/sing/common/metadata"
  19. N "github.com/sagernet/sing/common/network"
  20. "github.com/database64128/tfo-go"
  21. )
  22. var _ adapter.Inbound = (*myInboundAdapter)(nil)
  23. type myInboundAdapter struct {
  24. protocol string
  25. network []string
  26. ctx context.Context
  27. router adapter.Router
  28. logger log.ContextLogger
  29. tag string
  30. listenOptions option.ListenOptions
  31. connHandler adapter.ConnectionHandler
  32. packetHandler adapter.PacketHandler
  33. oobPacketHandler adapter.OOBPacketHandler
  34. packetUpstream any
  35. // http mixed
  36. setSystemProxy bool
  37. clearSystemProxy func() error
  38. // internal
  39. tcpListener *net.TCPListener
  40. udpConn *net.UDPConn
  41. udpAddr M.Socksaddr
  42. packetAccess sync.RWMutex
  43. packetOutboundClosed chan struct{}
  44. packetOutbound chan *myInboundPacket
  45. }
  46. func (a *myInboundAdapter) Type() string {
  47. return a.protocol
  48. }
  49. func (a *myInboundAdapter) Tag() string {
  50. return a.tag
  51. }
  52. func (a *myInboundAdapter) Start() error {
  53. var err error
  54. bindAddr := M.SocksaddrFrom(netip.Addr(a.listenOptions.Listen), a.listenOptions.ListenPort)
  55. if common.Contains(a.network, N.NetworkTCP) {
  56. var tcpListener *net.TCPListener
  57. if !a.listenOptions.TCPFastOpen {
  58. tcpListener, err = net.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  59. } else {
  60. tcpListener, err = tfo.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  61. }
  62. if err != nil {
  63. return err
  64. }
  65. a.tcpListener = tcpListener
  66. go a.loopTCPIn()
  67. a.logger.Info("tcp server started at ", tcpListener.Addr())
  68. }
  69. if common.Contains(a.network, N.NetworkUDP) {
  70. var udpConn *net.UDPConn
  71. udpConn, err = net.ListenUDP(M.NetworkFromNetAddr(N.NetworkUDP, bindAddr.Addr), bindAddr.UDPAddr())
  72. if err != nil {
  73. return err
  74. }
  75. a.udpConn = udpConn
  76. a.udpAddr = bindAddr
  77. a.packetOutboundClosed = make(chan struct{})
  78. a.packetOutbound = make(chan *myInboundPacket)
  79. if a.oobPacketHandler != nil {
  80. if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
  81. go a.loopUDPOOBIn()
  82. } else {
  83. go a.loopUDPOOBInThreadSafe()
  84. }
  85. } else {
  86. if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
  87. go a.loopUDPIn()
  88. } else {
  89. go a.loopUDPInThreadSafe()
  90. }
  91. go a.loopUDPOut()
  92. }
  93. a.logger.Info("udp server started at ", udpConn.LocalAddr())
  94. }
  95. if a.setSystemProxy {
  96. a.clearSystemProxy, err = settings.SetSystemProxy(a.router, M.SocksaddrFromNet(a.tcpListener.Addr()).Port, a.protocol == C.TypeMixed)
  97. if err != nil {
  98. return E.Cause(err, "set system proxy")
  99. }
  100. }
  101. return nil
  102. }
  103. func (a *myInboundAdapter) ListenTCP() (*net.TCPListener, error) {
  104. var err error
  105. bindAddr := M.SocksaddrFrom(netip.Addr(a.listenOptions.Listen), a.listenOptions.ListenPort)
  106. var tcpListener *net.TCPListener
  107. if !a.listenOptions.TCPFastOpen {
  108. tcpListener, err = net.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  109. } else {
  110. tcpListener, err = tfo.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  111. }
  112. if err == nil {
  113. a.logger.Info("tcp server started at ", tcpListener.Addr())
  114. }
  115. a.tcpListener = tcpListener
  116. return tcpListener, err
  117. }
  118. func (a *myInboundAdapter) Close() error {
  119. var err error
  120. if a.clearSystemProxy != nil {
  121. err = a.clearSystemProxy()
  122. }
  123. return E.Errors(err, common.Close(
  124. common.PtrOrNil(a.tcpListener),
  125. common.PtrOrNil(a.udpConn),
  126. ))
  127. }
  128. func (a *myInboundAdapter) upstreamHandler(metadata adapter.InboundContext) adapter.UpstreamHandlerAdapter {
  129. return adapter.NewUpstreamHandler(metadata, a.newConnection, a.streamPacketConnection, a)
  130. }
  131. func (a *myInboundAdapter) upstreamContextHandler() adapter.UpstreamHandlerAdapter {
  132. return adapter.NewUpstreamContextHandler(a.newConnection, a.newPacketConnection, a)
  133. }
  134. func (a *myInboundAdapter) newConnection(ctx context.Context, conn net.Conn, metadata adapter.InboundContext) error {
  135. a.logger.InfoContext(ctx, "inbound connection to ", metadata.Destination)
  136. return a.router.RouteConnection(ctx, conn, metadata)
  137. }
  138. func (a *myInboundAdapter) streamPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
  139. a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
  140. return a.router.RoutePacketConnection(ctx, conn, metadata)
  141. }
  142. func (a *myInboundAdapter) newPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
  143. ctx = log.ContextWithNewID(ctx)
  144. a.logger.InfoContext(ctx, "inbound packet connection from ", metadata.Source)
  145. a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
  146. return a.router.RoutePacketConnection(ctx, conn, metadata)
  147. }
  148. func (a *myInboundAdapter) loopTCPIn() {
  149. tcpListener := a.tcpListener
  150. for {
  151. conn, err := tcpListener.AcceptTCP()
  152. if err != nil {
  153. return
  154. }
  155. go a.injectTCP(conn)
  156. }
  157. }
  158. func (a *myInboundAdapter) createMetadata(conn net.Conn) adapter.InboundContext {
  159. var metadata adapter.InboundContext
  160. metadata.Inbound = a.tag
  161. metadata.InboundType = a.protocol
  162. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  163. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  164. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  165. metadata.Network = N.NetworkTCP
  166. metadata.Source = M.SocksaddrFromNet(conn.RemoteAddr())
  167. metadata.OriginDestination = M.SocksaddrFromNet(conn.LocalAddr())
  168. return metadata
  169. }
  170. func (a *myInboundAdapter) injectTCP(conn net.Conn) {
  171. ctx := log.ContextWithNewID(a.ctx)
  172. metadata := a.createMetadata(conn)
  173. a.logger.InfoContext(ctx, "inbound connection from ", metadata.Source)
  174. hErr := a.connHandler.NewConnection(ctx, conn, metadata)
  175. if hErr != nil {
  176. conn.Close()
  177. a.NewError(ctx, E.Cause(hErr, "process connection from ", metadata.Source))
  178. }
  179. }
  180. func (a *myInboundAdapter) loopUDPIn() {
  181. defer close(a.packetOutboundClosed)
  182. _buffer := buf.StackNewPacket()
  183. defer common.KeepAlive(_buffer)
  184. buffer := common.Dup(_buffer)
  185. defer buffer.Release()
  186. buffer.IncRef()
  187. defer buffer.DecRef()
  188. packetService := (*myInboundPacketAdapter)(a)
  189. for {
  190. buffer.Reset()
  191. n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  192. if err != nil {
  193. return
  194. }
  195. buffer.Truncate(n)
  196. var metadata adapter.InboundContext
  197. metadata.Inbound = a.tag
  198. metadata.InboundType = a.protocol
  199. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  200. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  201. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  202. metadata.Network = N.NetworkUDP
  203. metadata.Source = M.SocksaddrFromNetIP(addr)
  204. metadata.OriginDestination = a.udpAddr
  205. err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
  206. if err != nil {
  207. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  208. }
  209. }
  210. }
  211. func (a *myInboundAdapter) loopUDPOOBIn() {
  212. defer close(a.packetOutboundClosed)
  213. _buffer := buf.StackNewPacket()
  214. defer common.KeepAlive(_buffer)
  215. buffer := common.Dup(_buffer)
  216. defer buffer.Release()
  217. buffer.IncRef()
  218. defer buffer.DecRef()
  219. packetService := (*myInboundPacketAdapter)(a)
  220. oob := make([]byte, 1024)
  221. for {
  222. buffer.Reset()
  223. n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
  224. if err != nil {
  225. return
  226. }
  227. buffer.Truncate(n)
  228. var metadata adapter.InboundContext
  229. metadata.Inbound = a.tag
  230. metadata.InboundType = a.protocol
  231. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  232. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  233. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  234. metadata.Network = N.NetworkUDP
  235. metadata.Source = M.SocksaddrFromNetIP(addr)
  236. metadata.OriginDestination = a.udpAddr
  237. err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
  238. if err != nil {
  239. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  240. }
  241. }
  242. }
  243. func (a *myInboundAdapter) loopUDPInThreadSafe() {
  244. defer close(a.packetOutboundClosed)
  245. packetService := (*myInboundPacketAdapter)(a)
  246. for {
  247. buffer := buf.NewPacket()
  248. n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  249. if err != nil {
  250. buffer.Release()
  251. return
  252. }
  253. buffer.Truncate(n)
  254. var metadata adapter.InboundContext
  255. metadata.Inbound = a.tag
  256. metadata.InboundType = a.protocol
  257. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  258. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  259. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  260. metadata.Network = N.NetworkUDP
  261. metadata.Source = M.SocksaddrFromNetIP(addr)
  262. metadata.OriginDestination = a.udpAddr
  263. err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
  264. if err != nil {
  265. buffer.Release()
  266. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  267. }
  268. }
  269. }
  270. func (a *myInboundAdapter) loopUDPOOBInThreadSafe() {
  271. defer close(a.packetOutboundClosed)
  272. packetService := (*myInboundPacketAdapter)(a)
  273. oob := make([]byte, 1024)
  274. for {
  275. buffer := buf.NewPacket()
  276. n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
  277. if err != nil {
  278. buffer.Release()
  279. return
  280. }
  281. buffer.Truncate(n)
  282. var metadata adapter.InboundContext
  283. metadata.Inbound = a.tag
  284. metadata.InboundType = a.protocol
  285. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  286. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  287. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  288. metadata.Network = N.NetworkUDP
  289. metadata.Source = M.SocksaddrFromNetIP(addr)
  290. metadata.OriginDestination = a.udpAddr
  291. err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
  292. if err != nil {
  293. buffer.Release()
  294. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  295. }
  296. }
  297. }
  298. func (a *myInboundAdapter) loopUDPOut() {
  299. for {
  300. select {
  301. case packet := <-a.packetOutbound:
  302. err := a.writePacket(packet.buffer, packet.destination)
  303. if err != nil && !E.IsClosed(err) {
  304. a.newError(E.New("write back udp: ", err))
  305. }
  306. continue
  307. case <-a.packetOutboundClosed:
  308. }
  309. for {
  310. select {
  311. case packet := <-a.packetOutbound:
  312. packet.buffer.Release()
  313. default:
  314. return
  315. }
  316. }
  317. }
  318. }
  319. func (a *myInboundAdapter) newError(err error) {
  320. a.logger.Error(err)
  321. }
  322. func (a *myInboundAdapter) NewError(ctx context.Context, err error) {
  323. NewError(a.logger, ctx, err)
  324. }
  325. func NewError(logger log.ContextLogger, ctx context.Context, err error) {
  326. common.Close(err)
  327. if E.IsClosedOrCanceled(err) {
  328. logger.DebugContext(ctx, "connection closed: ", err)
  329. return
  330. }
  331. logger.ErrorContext(ctx, err)
  332. }
  333. func (a *myInboundAdapter) writePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
  334. defer buffer.Release()
  335. if destination.IsFqdn() {
  336. udpAddr, err := net.ResolveUDPAddr(N.NetworkUDP, destination.String())
  337. if err != nil {
  338. return err
  339. }
  340. return common.Error(a.udpConn.WriteTo(buffer.Bytes(), udpAddr))
  341. }
  342. return common.Error(a.udpConn.WriteToUDPAddrPort(buffer.Bytes(), destination.AddrPort()))
  343. }
  344. type myInboundPacketAdapter myInboundAdapter
  345. func (s *myInboundPacketAdapter) ReadPacket(buffer *buf.Buffer) (M.Socksaddr, error) {
  346. n, addr, err := s.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  347. if err != nil {
  348. return M.Socksaddr{}, err
  349. }
  350. buffer.Truncate(n)
  351. return M.SocksaddrFromNetIP(addr), nil
  352. }
  353. func (s *myInboundPacketAdapter) WriteIsThreadUnsafe() {
  354. }
  355. type myInboundPacket struct {
  356. buffer *buf.Buffer
  357. destination M.Socksaddr
  358. }
  359. func (s *myInboundPacketAdapter) Upstream() any {
  360. return s.udpConn
  361. }
  362. func (s *myInboundPacketAdapter) WritePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
  363. s.packetAccess.RLock()
  364. defer s.packetAccess.RUnlock()
  365. select {
  366. case <-s.packetOutboundClosed:
  367. return os.ErrClosed
  368. default:
  369. }
  370. s.packetOutbound <- &myInboundPacket{buffer, destination}
  371. return nil
  372. }
  373. func (s *myInboundPacketAdapter) Close() error {
  374. return s.udpConn.Close()
  375. }
  376. func (s *myInboundPacketAdapter) LocalAddr() net.Addr {
  377. return s.udpConn.LocalAddr()
  378. }
  379. func (s *myInboundPacketAdapter) SetDeadline(t time.Time) error {
  380. return s.udpConn.SetDeadline(t)
  381. }
  382. func (s *myInboundPacketAdapter) SetReadDeadline(t time.Time) error {
  383. return s.udpConn.SetReadDeadline(t)
  384. }
  385. func (s *myInboundPacketAdapter) SetWriteDeadline(t time.Time) error {
  386. return s.udpConn.SetWriteDeadline(t)
  387. }