default.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387
  1. package dialer
  2. import (
  3. "context"
  4. "errors"
  5. "net"
  6. "net/netip"
  7. "syscall"
  8. "time"
  9. "github.com/sagernet/sing-box/adapter"
  10. "github.com/sagernet/sing-box/common/conntrack"
  11. "github.com/sagernet/sing-box/common/listener"
  12. C "github.com/sagernet/sing-box/constant"
  13. "github.com/sagernet/sing-box/experimental/libbox/platform"
  14. "github.com/sagernet/sing-box/option"
  15. "github.com/sagernet/sing/common"
  16. "github.com/sagernet/sing/common/control"
  17. E "github.com/sagernet/sing/common/exceptions"
  18. M "github.com/sagernet/sing/common/metadata"
  19. N "github.com/sagernet/sing/common/network"
  20. "github.com/sagernet/sing/service"
  21. )
  22. var (
  23. _ ParallelInterfaceDialer = (*DefaultDialer)(nil)
  24. _ WireGuardListener = (*DefaultDialer)(nil)
  25. )
  26. type DefaultDialer struct {
  27. dialer4 tcpDialer
  28. dialer6 tcpDialer
  29. udpDialer4 net.Dialer
  30. udpDialer6 net.Dialer
  31. udpListener net.ListenConfig
  32. udpAddr4 string
  33. udpAddr6 string
  34. netns string
  35. networkManager adapter.NetworkManager
  36. networkStrategy *C.NetworkStrategy
  37. defaultNetworkStrategy bool
  38. networkType []C.InterfaceType
  39. fallbackNetworkType []C.InterfaceType
  40. networkFallbackDelay time.Duration
  41. networkLastFallback common.TypedValue[time.Time]
  42. }
  43. func NewDefault(ctx context.Context, options option.DialerOptions) (*DefaultDialer, error) {
  44. networkManager := service.FromContext[adapter.NetworkManager](ctx)
  45. platformInterface := service.FromContext[platform.Interface](ctx)
  46. var (
  47. dialer net.Dialer
  48. listener net.ListenConfig
  49. interfaceFinder control.InterfaceFinder
  50. networkStrategy *C.NetworkStrategy
  51. defaultNetworkStrategy bool
  52. networkType []C.InterfaceType
  53. fallbackNetworkType []C.InterfaceType
  54. networkFallbackDelay time.Duration
  55. )
  56. if networkManager != nil {
  57. interfaceFinder = networkManager.InterfaceFinder()
  58. } else {
  59. interfaceFinder = control.NewDefaultInterfaceFinder()
  60. }
  61. if options.BindInterface != "" {
  62. if !(C.IsLinux || C.IsDarwin || C.IsWindows) {
  63. return nil, E.New("`bind_interface` is only supported on Linux, macOS and Windows")
  64. }
  65. bindFunc := control.BindToInterface(interfaceFinder, options.BindInterface, -1)
  66. dialer.Control = control.Append(dialer.Control, bindFunc)
  67. listener.Control = control.Append(listener.Control, bindFunc)
  68. }
  69. if options.RoutingMark > 0 {
  70. if !C.IsLinux {
  71. return nil, E.New("`routing_mark` is only supported on Linux")
  72. }
  73. dialer.Control = control.Append(dialer.Control, setMarkWrapper(networkManager, uint32(options.RoutingMark), false))
  74. listener.Control = control.Append(listener.Control, setMarkWrapper(networkManager, uint32(options.RoutingMark), false))
  75. }
  76. disableDefaultBind := options.BindInterface != "" || options.Inet4BindAddress != nil || options.Inet6BindAddress != nil
  77. if disableDefaultBind || options.TCPFastOpen {
  78. if options.NetworkStrategy != nil || len(options.NetworkType) > 0 && options.FallbackNetworkType == nil && options.FallbackDelay == 0 {
  79. return nil, E.New("`network_strategy` is conflict with `bind_interface`, `inet4_bind_address`, `inet6_bind_address` and `tcp_fast_open`")
  80. }
  81. }
  82. if networkManager != nil {
  83. defaultOptions := networkManager.DefaultOptions()
  84. if !disableDefaultBind {
  85. if defaultOptions.BindInterface != "" {
  86. bindFunc := control.BindToInterface(networkManager.InterfaceFinder(), defaultOptions.BindInterface, -1)
  87. dialer.Control = control.Append(dialer.Control, bindFunc)
  88. listener.Control = control.Append(listener.Control, bindFunc)
  89. } else if networkManager.AutoDetectInterface() {
  90. if platformInterface != nil {
  91. networkStrategy = (*C.NetworkStrategy)(options.NetworkStrategy)
  92. networkType = common.Map(options.NetworkType, option.InterfaceType.Build)
  93. fallbackNetworkType = common.Map(options.FallbackNetworkType, option.InterfaceType.Build)
  94. if networkStrategy == nil && len(networkType) == 0 && len(fallbackNetworkType) == 0 {
  95. networkStrategy = defaultOptions.NetworkStrategy
  96. networkType = defaultOptions.NetworkType
  97. fallbackNetworkType = defaultOptions.FallbackNetworkType
  98. }
  99. networkFallbackDelay = time.Duration(options.FallbackDelay)
  100. if networkFallbackDelay == 0 && defaultOptions.FallbackDelay != 0 {
  101. networkFallbackDelay = defaultOptions.FallbackDelay
  102. }
  103. if networkStrategy == nil {
  104. networkStrategy = common.Ptr(C.NetworkStrategyDefault)
  105. defaultNetworkStrategy = true
  106. }
  107. bindFunc := networkManager.ProtectFunc()
  108. dialer.Control = control.Append(dialer.Control, bindFunc)
  109. listener.Control = control.Append(listener.Control, bindFunc)
  110. } else {
  111. bindFunc := networkManager.AutoDetectInterfaceFunc()
  112. dialer.Control = control.Append(dialer.Control, bindFunc)
  113. listener.Control = control.Append(listener.Control, bindFunc)
  114. }
  115. }
  116. if options.RoutingMark == 0 && defaultOptions.RoutingMark != 0 {
  117. dialer.Control = control.Append(dialer.Control, setMarkWrapper(networkManager, defaultOptions.RoutingMark, true))
  118. listener.Control = control.Append(listener.Control, setMarkWrapper(networkManager, defaultOptions.RoutingMark, true))
  119. }
  120. }
  121. }
  122. if networkManager != nil {
  123. markFunc := networkManager.AutoRedirectOutputMarkFunc()
  124. dialer.Control = control.Append(dialer.Control, markFunc)
  125. listener.Control = control.Append(listener.Control, markFunc)
  126. }
  127. if options.ReuseAddr {
  128. listener.Control = control.Append(listener.Control, control.ReuseAddr())
  129. }
  130. if options.ProtectPath != "" {
  131. dialer.Control = control.Append(dialer.Control, control.ProtectPath(options.ProtectPath))
  132. listener.Control = control.Append(listener.Control, control.ProtectPath(options.ProtectPath))
  133. }
  134. if options.ConnectTimeout != 0 {
  135. dialer.Timeout = time.Duration(options.ConnectTimeout)
  136. } else {
  137. dialer.Timeout = C.TCPConnectTimeout
  138. }
  139. // TODO: Add an option to customize the keep alive period
  140. dialer.KeepAlive = C.TCPKeepAliveInitial
  141. dialer.Control = control.Append(dialer.Control, control.SetKeepAlivePeriod(C.TCPKeepAliveInitial, C.TCPKeepAliveInterval))
  142. var udpFragment bool
  143. if options.UDPFragment != nil {
  144. udpFragment = *options.UDPFragment
  145. } else {
  146. udpFragment = options.UDPFragmentDefault
  147. }
  148. if !udpFragment {
  149. dialer.Control = control.Append(dialer.Control, control.DisableUDPFragment())
  150. listener.Control = control.Append(listener.Control, control.DisableUDPFragment())
  151. }
  152. var (
  153. dialer4 = dialer
  154. udpDialer4 = dialer
  155. udpAddr4 string
  156. )
  157. if options.Inet4BindAddress != nil {
  158. bindAddr := options.Inet4BindAddress.Build(netip.IPv4Unspecified())
  159. dialer4.LocalAddr = &net.TCPAddr{IP: bindAddr.AsSlice()}
  160. udpDialer4.LocalAddr = &net.UDPAddr{IP: bindAddr.AsSlice()}
  161. udpAddr4 = M.SocksaddrFrom(bindAddr, 0).String()
  162. }
  163. var (
  164. dialer6 = dialer
  165. udpDialer6 = dialer
  166. udpAddr6 string
  167. )
  168. if options.Inet6BindAddress != nil {
  169. bindAddr := options.Inet6BindAddress.Build(netip.IPv6Unspecified())
  170. dialer6.LocalAddr = &net.TCPAddr{IP: bindAddr.AsSlice()}
  171. udpDialer6.LocalAddr = &net.UDPAddr{IP: bindAddr.AsSlice()}
  172. udpAddr6 = M.SocksaddrFrom(bindAddr, 0).String()
  173. }
  174. if options.TCPMultiPath {
  175. if !go121Available {
  176. return nil, E.New("MultiPath TCP requires go1.21, please recompile your binary.")
  177. }
  178. setMultiPathTCP(&dialer4)
  179. }
  180. tcpDialer4, err := newTCPDialer(dialer4, options.TCPFastOpen)
  181. if err != nil {
  182. return nil, err
  183. }
  184. tcpDialer6, err := newTCPDialer(dialer6, options.TCPFastOpen)
  185. if err != nil {
  186. return nil, err
  187. }
  188. return &DefaultDialer{
  189. dialer4: tcpDialer4,
  190. dialer6: tcpDialer6,
  191. udpDialer4: udpDialer4,
  192. udpDialer6: udpDialer6,
  193. udpListener: listener,
  194. udpAddr4: udpAddr4,
  195. udpAddr6: udpAddr6,
  196. netns: options.NetNs,
  197. networkManager: networkManager,
  198. networkStrategy: networkStrategy,
  199. defaultNetworkStrategy: defaultNetworkStrategy,
  200. networkType: networkType,
  201. fallbackNetworkType: fallbackNetworkType,
  202. networkFallbackDelay: networkFallbackDelay,
  203. }, nil
  204. }
  205. func setMarkWrapper(networkManager adapter.NetworkManager, mark uint32, isDefault bool) control.Func {
  206. if networkManager == nil {
  207. return control.RoutingMark(mark)
  208. }
  209. return func(network, address string, conn syscall.RawConn) error {
  210. if networkManager.AutoRedirectOutputMark() != 0 {
  211. if isDefault {
  212. return E.New("`route.default_mark` is conflict with `tun.auto_redirect`")
  213. } else {
  214. return E.New("`routing_mark` is conflict with `tun.auto_redirect`")
  215. }
  216. }
  217. return control.RoutingMark(mark)(network, address, conn)
  218. }
  219. }
  220. func (d *DefaultDialer) DialContext(ctx context.Context, network string, address M.Socksaddr) (net.Conn, error) {
  221. if !address.IsValid() {
  222. return nil, E.New("invalid address")
  223. } else if address.IsFqdn() {
  224. return nil, E.New("domain not resolved")
  225. }
  226. if d.networkStrategy == nil {
  227. return trackConn(listener.ListenNetworkNamespace[net.Conn](d.netns, func() (net.Conn, error) {
  228. switch N.NetworkName(network) {
  229. case N.NetworkUDP:
  230. if !address.IsIPv6() {
  231. return d.udpDialer4.DialContext(ctx, network, address.String())
  232. } else {
  233. return d.udpDialer6.DialContext(ctx, network, address.String())
  234. }
  235. }
  236. if !address.IsIPv6() {
  237. return DialSlowContext(&d.dialer4, ctx, network, address)
  238. } else {
  239. return DialSlowContext(&d.dialer6, ctx, network, address)
  240. }
  241. }))
  242. } else {
  243. return d.DialParallelInterface(ctx, network, address, d.networkStrategy, d.networkType, d.fallbackNetworkType, d.networkFallbackDelay)
  244. }
  245. }
  246. func (d *DefaultDialer) DialParallelInterface(ctx context.Context, network string, address M.Socksaddr, strategy *C.NetworkStrategy, interfaceType []C.InterfaceType, fallbackInterfaceType []C.InterfaceType, fallbackDelay time.Duration) (net.Conn, error) {
  247. if strategy == nil {
  248. strategy = d.networkStrategy
  249. }
  250. if strategy == nil {
  251. return d.DialContext(ctx, network, address)
  252. }
  253. if len(interfaceType) == 0 {
  254. interfaceType = d.networkType
  255. }
  256. if len(fallbackInterfaceType) == 0 {
  257. fallbackInterfaceType = d.fallbackNetworkType
  258. }
  259. if fallbackDelay == 0 {
  260. fallbackDelay = d.networkFallbackDelay
  261. }
  262. var dialer net.Dialer
  263. if N.NetworkName(network) == N.NetworkTCP {
  264. dialer = dialerFromTCPDialer(d.dialer4)
  265. } else {
  266. dialer = d.udpDialer4
  267. }
  268. fastFallback := time.Since(d.networkLastFallback.Load()) < C.TCPTimeout
  269. var (
  270. conn net.Conn
  271. isPrimary bool
  272. err error
  273. )
  274. if !fastFallback {
  275. conn, isPrimary, err = d.dialParallelInterface(ctx, dialer, network, address.String(), *strategy, interfaceType, fallbackInterfaceType, fallbackDelay)
  276. } else {
  277. conn, isPrimary, err = d.dialParallelInterfaceFastFallback(ctx, dialer, network, address.String(), *strategy, interfaceType, fallbackInterfaceType, fallbackDelay, d.networkLastFallback.Store)
  278. }
  279. if err != nil {
  280. // bind interface failed on legacy xiaomi systems
  281. if d.defaultNetworkStrategy && errors.Is(err, syscall.EPERM) {
  282. d.networkStrategy = nil
  283. return d.DialContext(ctx, network, address)
  284. } else {
  285. return nil, err
  286. }
  287. }
  288. if !fastFallback && !isPrimary {
  289. d.networkLastFallback.Store(time.Now())
  290. }
  291. return trackConn(conn, nil)
  292. }
  293. func (d *DefaultDialer) ListenPacket(ctx context.Context, destination M.Socksaddr) (net.PacketConn, error) {
  294. if d.networkStrategy == nil {
  295. return trackPacketConn(listener.ListenNetworkNamespace[net.PacketConn](d.netns, func() (net.PacketConn, error) {
  296. if destination.IsIPv6() {
  297. return d.udpListener.ListenPacket(ctx, N.NetworkUDP, d.udpAddr6)
  298. } else if destination.IsIPv4() && !destination.Addr.IsUnspecified() {
  299. return d.udpListener.ListenPacket(ctx, N.NetworkUDP+"4", d.udpAddr4)
  300. } else {
  301. return d.udpListener.ListenPacket(ctx, N.NetworkUDP, d.udpAddr4)
  302. }
  303. }))
  304. } else {
  305. return d.ListenSerialInterfacePacket(ctx, destination, d.networkStrategy, d.networkType, d.fallbackNetworkType, d.networkFallbackDelay)
  306. }
  307. }
  308. func (d *DefaultDialer) DialerForICMPDestination(destination netip.Addr) net.Dialer {
  309. if !destination.Is6() {
  310. return dialerFromTCPDialer(d.dialer6)
  311. } else {
  312. return dialerFromTCPDialer(d.dialer4)
  313. }
  314. }
  315. func (d *DefaultDialer) ListenSerialInterfacePacket(ctx context.Context, destination M.Socksaddr, strategy *C.NetworkStrategy, interfaceType []C.InterfaceType, fallbackInterfaceType []C.InterfaceType, fallbackDelay time.Duration) (net.PacketConn, error) {
  316. if strategy == nil {
  317. strategy = d.networkStrategy
  318. }
  319. if strategy == nil {
  320. return d.ListenPacket(ctx, destination)
  321. }
  322. if len(interfaceType) == 0 {
  323. interfaceType = d.networkType
  324. }
  325. if len(fallbackInterfaceType) == 0 {
  326. fallbackInterfaceType = d.fallbackNetworkType
  327. }
  328. if fallbackDelay == 0 {
  329. fallbackDelay = d.networkFallbackDelay
  330. }
  331. network := N.NetworkUDP
  332. if destination.IsIPv4() && !destination.Addr.IsUnspecified() {
  333. network += "4"
  334. }
  335. packetConn, err := d.listenSerialInterfacePacket(ctx, d.udpListener, network, "", *strategy, interfaceType, fallbackInterfaceType, fallbackDelay)
  336. if err != nil {
  337. // bind interface failed on legacy xiaomi systems
  338. if d.defaultNetworkStrategy && errors.Is(err, syscall.EPERM) {
  339. d.networkStrategy = nil
  340. return d.ListenPacket(ctx, destination)
  341. } else {
  342. return nil, err
  343. }
  344. }
  345. return trackPacketConn(packetConn, nil)
  346. }
  347. func (d *DefaultDialer) ListenPacketCompat(network, address string) (net.PacketConn, error) {
  348. udpListener := d.udpListener
  349. udpListener.Control = control.Append(udpListener.Control, func(network, address string, conn syscall.RawConn) error {
  350. for _, wgControlFn := range WgControlFns {
  351. err := wgControlFn(network, address, conn)
  352. if err != nil {
  353. return err
  354. }
  355. }
  356. return nil
  357. })
  358. return udpListener.ListenPacket(context.Background(), network, address)
  359. }
  360. func trackConn(conn net.Conn, err error) (net.Conn, error) {
  361. if !conntrack.Enabled || err != nil {
  362. return conn, err
  363. }
  364. return conntrack.NewConn(conn)
  365. }
  366. func trackPacketConn(conn net.PacketConn, err error) (net.PacketConn, error) {
  367. if !conntrack.Enabled || err != nil {
  368. return conn, err
  369. }
  370. return conntrack.NewPacketConn(conn)
  371. }