default.go 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404
  1. package inbound
  2. import (
  3. "context"
  4. "net"
  5. "net/netip"
  6. "os"
  7. "sync"
  8. "time"
  9. "github.com/sagernet/sing-box/adapter"
  10. "github.com/sagernet/sing-box/common/settings"
  11. C "github.com/sagernet/sing-box/constant"
  12. "github.com/sagernet/sing-box/log"
  13. "github.com/sagernet/sing-box/option"
  14. "github.com/sagernet/sing-dns"
  15. "github.com/sagernet/sing/common"
  16. "github.com/sagernet/sing/common/buf"
  17. E "github.com/sagernet/sing/common/exceptions"
  18. M "github.com/sagernet/sing/common/metadata"
  19. N "github.com/sagernet/sing/common/network"
  20. "github.com/database64128/tfo-go"
  21. )
  22. var _ adapter.Inbound = (*myInboundAdapter)(nil)
  23. type myInboundAdapter struct {
  24. protocol string
  25. network []string
  26. ctx context.Context
  27. router adapter.Router
  28. logger log.ContextLogger
  29. tag string
  30. listenOptions option.ListenOptions
  31. connHandler adapter.ConnectionHandler
  32. packetHandler adapter.PacketHandler
  33. oobPacketHandler adapter.OOBPacketHandler
  34. packetUpstream any
  35. // http mixed
  36. setSystemProxy bool
  37. // internal
  38. tcpListener *net.TCPListener
  39. udpConn *net.UDPConn
  40. packetForce6 bool
  41. packetAccess sync.RWMutex
  42. packetOutboundClosed chan struct{}
  43. packetOutbound chan *myInboundPacket
  44. }
  45. func (a *myInboundAdapter) Type() string {
  46. return a.protocol
  47. }
  48. func (a *myInboundAdapter) Tag() string {
  49. return a.tag
  50. }
  51. func (a *myInboundAdapter) Start() error {
  52. bindAddr := M.SocksaddrFrom(netip.Addr(a.listenOptions.Listen), a.listenOptions.ListenPort)
  53. if common.Contains(a.network, C.NetworkTCP) {
  54. var tcpListener *net.TCPListener
  55. var err error
  56. if !a.listenOptions.TCPFastOpen {
  57. tcpListener, err = net.ListenTCP(M.NetworkFromNetAddr(C.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  58. } else {
  59. tcpListener, err = tfo.ListenTCP(M.NetworkFromNetAddr(C.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
  60. }
  61. if err != nil {
  62. return err
  63. }
  64. a.tcpListener = tcpListener
  65. go a.loopTCPIn()
  66. a.logger.Info("tcp server started at ", tcpListener.Addr())
  67. }
  68. if common.Contains(a.network, C.NetworkUDP) {
  69. udpConn, err := net.ListenUDP(M.NetworkFromNetAddr(C.NetworkUDP, bindAddr.Addr), bindAddr.UDPAddr())
  70. if err != nil {
  71. return err
  72. }
  73. a.udpConn = udpConn
  74. a.packetForce6 = M.SocksaddrFromNet(udpConn.LocalAddr()).Addr.Is6()
  75. a.packetOutboundClosed = make(chan struct{})
  76. a.packetOutbound = make(chan *myInboundPacket)
  77. if a.oobPacketHandler != nil {
  78. if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
  79. go a.loopUDPOOBIn()
  80. } else {
  81. go a.loopUDPOOBInThreadSafe()
  82. }
  83. } else {
  84. if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
  85. go a.loopUDPIn()
  86. } else {
  87. go a.loopUDPInThreadSafe()
  88. }
  89. go a.loopUDPOut()
  90. }
  91. a.logger.Info("udp server started at ", udpConn.LocalAddr())
  92. }
  93. if a.setSystemProxy {
  94. err := settings.SetSystemProxy(M.SocksaddrFromNet(a.tcpListener.Addr()).Port, a.protocol == C.TypeMixed)
  95. if err != nil {
  96. return E.Cause(err, "set system proxy")
  97. }
  98. }
  99. return nil
  100. }
  101. func (a *myInboundAdapter) Close() error {
  102. var err error
  103. if a.setSystemProxy {
  104. err = settings.ClearSystemProxy()
  105. }
  106. return E.Errors(err, common.Close(
  107. common.PtrOrNil(a.tcpListener),
  108. common.PtrOrNil(a.udpConn),
  109. ))
  110. }
  111. func (a *myInboundAdapter) upstreamHandler(metadata adapter.InboundContext) adapter.UpstreamHandlerAdapter {
  112. return adapter.NewUpstreamHandler(metadata, a.newConnection, a.streamPacketConnection, a)
  113. }
  114. func (a *myInboundAdapter) upstreamContextHandler() adapter.UpstreamHandlerAdapter {
  115. return adapter.NewUpstreamContextHandler(a.newConnection, a.newPacketConnection, a)
  116. }
  117. func (a *myInboundAdapter) newConnection(ctx context.Context, conn net.Conn, metadata adapter.InboundContext) error {
  118. a.logger.InfoContext(ctx, "inbound connection to ", metadata.Destination)
  119. return a.router.RouteConnection(ctx, conn, metadata)
  120. }
  121. func (a *myInboundAdapter) streamPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
  122. a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
  123. return a.router.RoutePacketConnection(ctx, conn, metadata)
  124. }
  125. func (a *myInboundAdapter) newPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
  126. ctx = log.ContextWithNewID(ctx)
  127. a.logger.InfoContext(ctx, "inbound packet connection from ", metadata.Source)
  128. a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
  129. return a.router.RoutePacketConnection(ctx, conn, metadata)
  130. }
  131. func (a *myInboundAdapter) loopTCPIn() {
  132. tcpListener := a.tcpListener
  133. for {
  134. conn, err := tcpListener.Accept()
  135. if err != nil {
  136. return
  137. }
  138. go func() {
  139. ctx := log.ContextWithNewID(a.ctx)
  140. var metadata adapter.InboundContext
  141. metadata.Inbound = a.tag
  142. metadata.InboundType = a.protocol
  143. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  144. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  145. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  146. metadata.Network = C.NetworkTCP
  147. metadata.Source = M.SocksaddrFromNet(conn.RemoteAddr())
  148. a.logger.InfoContext(ctx, "inbound connection from ", metadata.Source)
  149. hErr := a.connHandler.NewConnection(ctx, conn, metadata)
  150. if hErr != nil {
  151. conn.Close()
  152. a.NewError(ctx, E.Cause(hErr, "process connection from ", metadata.Source))
  153. }
  154. }()
  155. }
  156. }
  157. func (a *myInboundAdapter) loopUDPIn() {
  158. defer close(a.packetOutboundClosed)
  159. _buffer := buf.StackNewPacket()
  160. defer common.KeepAlive(_buffer)
  161. buffer := common.Dup(_buffer)
  162. defer buffer.Release()
  163. buffer.IncRef()
  164. defer buffer.DecRef()
  165. packetService := (*myInboundPacketAdapter)(a)
  166. for {
  167. buffer.Reset()
  168. n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  169. if err != nil {
  170. return
  171. }
  172. buffer.Truncate(n)
  173. var metadata adapter.InboundContext
  174. metadata.Inbound = a.tag
  175. metadata.InboundType = a.protocol
  176. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  177. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  178. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  179. metadata.Network = C.NetworkUDP
  180. metadata.Source = M.SocksaddrFromNetIP(addr)
  181. err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
  182. if err != nil {
  183. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  184. }
  185. }
  186. }
  187. func (a *myInboundAdapter) loopUDPOOBIn() {
  188. defer close(a.packetOutboundClosed)
  189. _buffer := buf.StackNewPacket()
  190. defer common.KeepAlive(_buffer)
  191. buffer := common.Dup(_buffer)
  192. defer buffer.Release()
  193. buffer.IncRef()
  194. defer buffer.DecRef()
  195. packetService := (*myInboundPacketAdapter)(a)
  196. oob := make([]byte, 1024)
  197. for {
  198. buffer.Reset()
  199. n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
  200. if err != nil {
  201. return
  202. }
  203. buffer.Truncate(n)
  204. var metadata adapter.InboundContext
  205. metadata.Inbound = a.tag
  206. metadata.InboundType = a.protocol
  207. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  208. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  209. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  210. metadata.Network = C.NetworkUDP
  211. metadata.Source = M.SocksaddrFromNetIP(addr)
  212. err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
  213. if err != nil {
  214. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  215. }
  216. }
  217. }
  218. func (a *myInboundAdapter) loopUDPInThreadSafe() {
  219. defer close(a.packetOutboundClosed)
  220. packetService := (*myInboundPacketAdapter)(a)
  221. for {
  222. buffer := buf.NewPacket()
  223. n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  224. if err != nil {
  225. buffer.Release()
  226. return
  227. }
  228. buffer.Truncate(n)
  229. var metadata adapter.InboundContext
  230. metadata.Inbound = a.tag
  231. metadata.InboundType = a.protocol
  232. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  233. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  234. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  235. metadata.Network = C.NetworkUDP
  236. metadata.Source = M.SocksaddrFromNetIP(addr)
  237. err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
  238. if err != nil {
  239. buffer.Release()
  240. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  241. }
  242. }
  243. }
  244. func (a *myInboundAdapter) loopUDPOOBInThreadSafe() {
  245. defer close(a.packetOutboundClosed)
  246. packetService := (*myInboundPacketAdapter)(a)
  247. oob := make([]byte, 1024)
  248. for {
  249. buffer := buf.NewPacket()
  250. n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
  251. if err != nil {
  252. buffer.Release()
  253. return
  254. }
  255. buffer.Truncate(n)
  256. var metadata adapter.InboundContext
  257. metadata.Inbound = a.tag
  258. metadata.InboundType = a.protocol
  259. metadata.SniffEnabled = a.listenOptions.SniffEnabled
  260. metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
  261. metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
  262. metadata.Network = C.NetworkUDP
  263. metadata.Source = M.SocksaddrFromNetIP(addr)
  264. err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
  265. if err != nil {
  266. buffer.Release()
  267. a.newError(E.Cause(err, "process packet from ", metadata.Source))
  268. }
  269. }
  270. }
  271. func (a *myInboundAdapter) loopUDPOut() {
  272. for {
  273. select {
  274. case packet := <-a.packetOutbound:
  275. err := a.writePacket(packet.buffer, packet.destination)
  276. if err != nil && !E.IsClosed(err) {
  277. a.newError(E.New("write back udp: ", err))
  278. }
  279. continue
  280. case <-a.packetOutboundClosed:
  281. }
  282. for {
  283. select {
  284. case packet := <-a.packetOutbound:
  285. packet.buffer.Release()
  286. default:
  287. return
  288. }
  289. }
  290. }
  291. }
  292. func (a *myInboundAdapter) newError(err error) {
  293. a.logger.Error(err)
  294. }
  295. func (a *myInboundAdapter) NewError(ctx context.Context, err error) {
  296. NewError(a.logger, ctx, err)
  297. }
  298. func NewError(logger log.ContextLogger, ctx context.Context, err error) {
  299. common.Close(err)
  300. if E.IsClosedOrCanceled(err) {
  301. logger.TraceContext(ctx, "connection closed: ", err)
  302. return
  303. }
  304. logger.ErrorContext(ctx, err)
  305. }
  306. func (a *myInboundAdapter) writePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
  307. defer buffer.Release()
  308. if destination.IsFqdn() {
  309. udpAddr, err := net.ResolveUDPAddr(C.NetworkUDP, destination.String())
  310. if err != nil {
  311. return err
  312. }
  313. return common.Error(a.udpConn.WriteTo(buffer.Bytes(), udpAddr))
  314. }
  315. if a.packetForce6 && destination.Addr.Is4() {
  316. destination.Addr = netip.AddrFrom16(destination.Addr.As16())
  317. }
  318. return common.Error(a.udpConn.WriteToUDPAddrPort(buffer.Bytes(), destination.AddrPort()))
  319. }
  320. type myInboundPacketAdapter myInboundAdapter
  321. func (s *myInboundPacketAdapter) ReadPacket(buffer *buf.Buffer) (M.Socksaddr, error) {
  322. n, addr, err := s.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
  323. if err != nil {
  324. return M.Socksaddr{}, err
  325. }
  326. buffer.Truncate(n)
  327. return M.SocksaddrFromNetIP(addr), nil
  328. }
  329. func (s *myInboundPacketAdapter) WriteIsThreadUnsafe() {
  330. }
  331. type myInboundPacket struct {
  332. buffer *buf.Buffer
  333. destination M.Socksaddr
  334. }
  335. func (s *myInboundPacketAdapter) Upstream() any {
  336. return s.udpConn
  337. }
  338. func (s *myInboundPacketAdapter) WritePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
  339. s.packetAccess.RLock()
  340. defer s.packetAccess.RUnlock()
  341. select {
  342. case <-s.packetOutboundClosed:
  343. return os.ErrClosed
  344. default:
  345. }
  346. s.packetOutbound <- &myInboundPacket{buffer, destination}
  347. return nil
  348. }
  349. func (s *myInboundPacketAdapter) Close() error {
  350. return s.udpConn.Close()
  351. }
  352. func (s *myInboundPacketAdapter) LocalAddr() net.Addr {
  353. return s.udpConn.LocalAddr()
  354. }
  355. func (s *myInboundPacketAdapter) SetDeadline(t time.Time) error {
  356. return s.udpConn.SetDeadline(t)
  357. }
  358. func (s *myInboundPacketAdapter) SetReadDeadline(t time.Time) error {
  359. return s.udpConn.SetReadDeadline(t)
  360. }
  361. func (s *myInboundPacketAdapter) SetWriteDeadline(t time.Time) error {
  362. return s.udpConn.SetWriteDeadline(t)
  363. }