rule_set_remote.go 8.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320
  1. package route
  2. import (
  3. "bytes"
  4. "context"
  5. "io"
  6. "net"
  7. "net/http"
  8. "runtime"
  9. "strings"
  10. "sync"
  11. "time"
  12. "github.com/sagernet/sing-box/adapter"
  13. "github.com/sagernet/sing-box/common/srs"
  14. C "github.com/sagernet/sing-box/constant"
  15. "github.com/sagernet/sing-box/option"
  16. "github.com/sagernet/sing/common"
  17. "github.com/sagernet/sing/common/atomic"
  18. E "github.com/sagernet/sing/common/exceptions"
  19. F "github.com/sagernet/sing/common/format"
  20. "github.com/sagernet/sing/common/json"
  21. "github.com/sagernet/sing/common/logger"
  22. M "github.com/sagernet/sing/common/metadata"
  23. N "github.com/sagernet/sing/common/network"
  24. "github.com/sagernet/sing/common/x/list"
  25. "github.com/sagernet/sing/service"
  26. "github.com/sagernet/sing/service/pause"
  27. "go4.org/netipx"
  28. )
  29. var _ adapter.RuleSet = (*RemoteRuleSet)(nil)
  30. type RemoteRuleSet struct {
  31. ctx context.Context
  32. cancel context.CancelFunc
  33. router adapter.Router
  34. logger logger.ContextLogger
  35. options option.RuleSet
  36. metadata adapter.RuleSetMetadata
  37. updateInterval time.Duration
  38. dialer N.Dialer
  39. rules []adapter.HeadlessRule
  40. lastUpdated time.Time
  41. lastEtag string
  42. updateTicker *time.Ticker
  43. cacheFile adapter.CacheFile
  44. pauseManager pause.Manager
  45. callbackAccess sync.Mutex
  46. callbacks list.List[adapter.RuleSetUpdateCallback]
  47. refs atomic.Int32
  48. }
  49. func NewRemoteRuleSet(ctx context.Context, router adapter.Router, logger logger.ContextLogger, options option.RuleSet) *RemoteRuleSet {
  50. ctx, cancel := context.WithCancel(ctx)
  51. var updateInterval time.Duration
  52. if options.RemoteOptions.UpdateInterval > 0 {
  53. updateInterval = time.Duration(options.RemoteOptions.UpdateInterval)
  54. } else {
  55. updateInterval = 24 * time.Hour
  56. }
  57. return &RemoteRuleSet{
  58. ctx: ctx,
  59. cancel: cancel,
  60. router: router,
  61. logger: logger,
  62. options: options,
  63. updateInterval: updateInterval,
  64. pauseManager: service.FromContext[pause.Manager](ctx),
  65. }
  66. }
  67. func (s *RemoteRuleSet) Name() string {
  68. return s.options.Tag
  69. }
  70. func (s *RemoteRuleSet) String() string {
  71. return strings.Join(F.MapToString(s.rules), " ")
  72. }
  73. func (s *RemoteRuleSet) StartContext(ctx context.Context, startContext *adapter.HTTPStartContext) error {
  74. s.cacheFile = service.FromContext[adapter.CacheFile](s.ctx)
  75. var dialer N.Dialer
  76. if s.options.RemoteOptions.DownloadDetour != "" {
  77. outbound, loaded := s.router.Outbound(s.options.RemoteOptions.DownloadDetour)
  78. if !loaded {
  79. return E.New("download_detour not found: ", s.options.RemoteOptions.DownloadDetour)
  80. }
  81. dialer = outbound
  82. } else {
  83. outbound, err := s.router.DefaultOutbound(N.NetworkTCP)
  84. if err != nil {
  85. return err
  86. }
  87. dialer = outbound
  88. }
  89. s.dialer = dialer
  90. if s.cacheFile != nil {
  91. if savedSet := s.cacheFile.LoadRuleSet(s.options.Tag); savedSet != nil {
  92. err := s.loadBytes(savedSet.Content)
  93. if err != nil {
  94. return E.Cause(err, "restore cached rule-set")
  95. }
  96. s.lastUpdated = savedSet.LastUpdated
  97. s.lastEtag = savedSet.LastEtag
  98. }
  99. }
  100. if s.lastUpdated.IsZero() {
  101. err := s.fetchOnce(ctx, startContext)
  102. if err != nil {
  103. return E.Cause(err, "initial rule-set: ", s.options.Tag)
  104. }
  105. }
  106. s.updateTicker = time.NewTicker(s.updateInterval)
  107. return nil
  108. }
  109. func (s *RemoteRuleSet) PostStart() error {
  110. go s.loopUpdate()
  111. return nil
  112. }
  113. func (s *RemoteRuleSet) Metadata() adapter.RuleSetMetadata {
  114. return s.metadata
  115. }
  116. func (s *RemoteRuleSet) ExtractIPSet() []*netipx.IPSet {
  117. return common.FlatMap(s.rules, extractIPSetFromRule)
  118. }
  119. func (s *RemoteRuleSet) IncRef() {
  120. s.refs.Add(1)
  121. }
  122. func (s *RemoteRuleSet) DecRef() {
  123. if s.refs.Add(-1) < 0 {
  124. panic("rule-set: negative refs")
  125. }
  126. }
  127. func (s *RemoteRuleSet) Cleanup() {
  128. if s.refs.Load() == 0 {
  129. s.rules = nil
  130. }
  131. }
  132. func (s *RemoteRuleSet) RegisterCallback(callback adapter.RuleSetUpdateCallback) *list.Element[adapter.RuleSetUpdateCallback] {
  133. s.callbackAccess.Lock()
  134. defer s.callbackAccess.Unlock()
  135. return s.callbacks.PushBack(callback)
  136. }
  137. func (s *RemoteRuleSet) UnregisterCallback(element *list.Element[adapter.RuleSetUpdateCallback]) {
  138. s.callbackAccess.Lock()
  139. defer s.callbackAccess.Unlock()
  140. s.callbacks.Remove(element)
  141. }
  142. func (s *RemoteRuleSet) loadBytes(content []byte) error {
  143. var (
  144. ruleSet option.PlainRuleSetCompat
  145. err error
  146. )
  147. switch s.options.Format {
  148. case C.RuleSetFormatSource:
  149. ruleSet, err = json.UnmarshalExtended[option.PlainRuleSetCompat](content)
  150. if err != nil {
  151. return err
  152. }
  153. case C.RuleSetFormatBinary:
  154. ruleSet, err = srs.Read(bytes.NewReader(content), false)
  155. if err != nil {
  156. return err
  157. }
  158. default:
  159. return E.New("unknown rule-set format: ", s.options.Format)
  160. }
  161. plainRuleSet, err := ruleSet.Upgrade()
  162. if err != nil {
  163. return err
  164. }
  165. rules := make([]adapter.HeadlessRule, len(plainRuleSet.Rules))
  166. for i, ruleOptions := range plainRuleSet.Rules {
  167. rules[i], err = NewHeadlessRule(s.router, ruleOptions)
  168. if err != nil {
  169. return E.Cause(err, "parse rule_set.rules.[", i, "]")
  170. }
  171. }
  172. s.metadata.ContainsProcessRule = hasHeadlessRule(plainRuleSet.Rules, isProcessHeadlessRule)
  173. s.metadata.ContainsWIFIRule = hasHeadlessRule(plainRuleSet.Rules, isWIFIHeadlessRule)
  174. s.metadata.ContainsIPCIDRRule = hasHeadlessRule(plainRuleSet.Rules, isIPCIDRHeadlessRule)
  175. s.rules = rules
  176. s.callbackAccess.Lock()
  177. callbacks := s.callbacks.Array()
  178. s.callbackAccess.Unlock()
  179. for _, callback := range callbacks {
  180. callback(s)
  181. }
  182. return nil
  183. }
  184. func (s *RemoteRuleSet) loopUpdate() {
  185. if time.Since(s.lastUpdated) > s.updateInterval {
  186. err := s.fetchOnce(s.ctx, nil)
  187. if err != nil {
  188. s.logger.Error("fetch rule-set ", s.options.Tag, ": ", err)
  189. } else if s.refs.Load() == 0 {
  190. s.rules = nil
  191. }
  192. }
  193. for {
  194. runtime.GC()
  195. select {
  196. case <-s.ctx.Done():
  197. return
  198. case <-s.updateTicker.C:
  199. s.pauseManager.WaitActive()
  200. err := s.fetchOnce(s.ctx, nil)
  201. if err != nil {
  202. s.logger.Error("fetch rule-set ", s.options.Tag, ": ", err)
  203. } else if s.refs.Load() == 0 {
  204. s.rules = nil
  205. }
  206. }
  207. }
  208. }
  209. func (s *RemoteRuleSet) fetchOnce(ctx context.Context, startContext *adapter.HTTPStartContext) error {
  210. s.logger.Debug("updating rule-set ", s.options.Tag, " from URL: ", s.options.RemoteOptions.URL)
  211. var httpClient *http.Client
  212. if startContext != nil {
  213. httpClient = startContext.HTTPClient(s.options.RemoteOptions.DownloadDetour, s.dialer)
  214. } else {
  215. httpClient = &http.Client{
  216. Transport: &http.Transport{
  217. ForceAttemptHTTP2: true,
  218. TLSHandshakeTimeout: C.TCPTimeout,
  219. DialContext: func(ctx context.Context, network, addr string) (net.Conn, error) {
  220. return s.dialer.DialContext(ctx, network, M.ParseSocksaddr(addr))
  221. },
  222. },
  223. }
  224. }
  225. request, err := http.NewRequest("GET", s.options.RemoteOptions.URL, nil)
  226. if err != nil {
  227. return err
  228. }
  229. if s.lastEtag != "" {
  230. request.Header.Set("If-None-Match", s.lastEtag)
  231. }
  232. response, err := httpClient.Do(request.WithContext(ctx))
  233. if err != nil {
  234. return err
  235. }
  236. switch response.StatusCode {
  237. case http.StatusOK:
  238. case http.StatusNotModified:
  239. s.lastUpdated = time.Now()
  240. if s.cacheFile != nil {
  241. savedRuleSet := s.cacheFile.LoadRuleSet(s.options.Tag)
  242. if savedRuleSet != nil {
  243. savedRuleSet.LastUpdated = s.lastUpdated
  244. err = s.cacheFile.SaveRuleSet(s.options.Tag, savedRuleSet)
  245. if err != nil {
  246. s.logger.Error("save rule-set updated time: ", err)
  247. return nil
  248. }
  249. }
  250. }
  251. s.logger.Info("update rule-set ", s.options.Tag, ": not modified")
  252. return nil
  253. default:
  254. return E.New("unexpected status: ", response.Status)
  255. }
  256. content, err := io.ReadAll(response.Body)
  257. if err != nil {
  258. response.Body.Close()
  259. return err
  260. }
  261. err = s.loadBytes(content)
  262. if err != nil {
  263. response.Body.Close()
  264. return err
  265. }
  266. response.Body.Close()
  267. eTagHeader := response.Header.Get("Etag")
  268. if eTagHeader != "" {
  269. s.lastEtag = eTagHeader
  270. }
  271. s.lastUpdated = time.Now()
  272. if s.cacheFile != nil {
  273. err = s.cacheFile.SaveRuleSet(s.options.Tag, &adapter.SavedRuleSet{
  274. LastUpdated: s.lastUpdated,
  275. Content: content,
  276. LastEtag: s.lastEtag,
  277. })
  278. if err != nil {
  279. s.logger.Error("save rule-set cache: ", err)
  280. }
  281. }
  282. s.logger.Info("updated rule-set ", s.options.Tag)
  283. return nil
  284. }
  285. func (s *RemoteRuleSet) Close() error {
  286. s.rules = nil
  287. s.updateTicker.Stop()
  288. s.cancel()
  289. return nil
  290. }
  291. func (s *RemoteRuleSet) Match(metadata *adapter.InboundContext) bool {
  292. for _, rule := range s.rules {
  293. if rule.Match(metadata) {
  294. return true
  295. }
  296. }
  297. return false
  298. }