123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451 |
- package inbound
- import (
- "context"
- "net"
- "net/netip"
- "os"
- "sync"
- "time"
- "github.com/sagernet/sing-box/adapter"
- "github.com/sagernet/sing-box/common/proxyproto"
- "github.com/sagernet/sing-box/common/settings"
- C "github.com/sagernet/sing-box/constant"
- "github.com/sagernet/sing-box/log"
- "github.com/sagernet/sing-box/option"
- "github.com/sagernet/sing-dns"
- "github.com/sagernet/sing/common"
- "github.com/sagernet/sing/common/buf"
- E "github.com/sagernet/sing/common/exceptions"
- M "github.com/sagernet/sing/common/metadata"
- N "github.com/sagernet/sing/common/network"
- "github.com/database64128/tfo-go"
- )
- var _ adapter.Inbound = (*myInboundAdapter)(nil)
- type myInboundAdapter struct {
- protocol string
- network []string
- ctx context.Context
- router adapter.Router
- logger log.ContextLogger
- tag string
- listenOptions option.ListenOptions
- connHandler adapter.ConnectionHandler
- packetHandler adapter.PacketHandler
- oobPacketHandler adapter.OOBPacketHandler
- packetUpstream any
- // http mixed
- setSystemProxy bool
- clearSystemProxy func() error
- // internal
- tcpListener net.Listener
- udpConn *net.UDPConn
- udpAddr M.Socksaddr
- packetAccess sync.RWMutex
- packetOutboundClosed chan struct{}
- packetOutbound chan *myInboundPacket
- }
- func (a *myInboundAdapter) Type() string {
- return a.protocol
- }
- func (a *myInboundAdapter) Tag() string {
- return a.tag
- }
- func (a *myInboundAdapter) Start() error {
- var err error
- if common.Contains(a.network, N.NetworkTCP) {
- _, err = a.ListenTCP()
- if err != nil {
- return err
- }
- go a.loopTCPIn()
- }
- if common.Contains(a.network, N.NetworkUDP) {
- _, err = a.ListenUDP()
- if err != nil {
- return err
- }
- a.packetOutboundClosed = make(chan struct{})
- a.packetOutbound = make(chan *myInboundPacket)
- if a.oobPacketHandler != nil {
- if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
- go a.loopUDPOOBIn()
- } else {
- go a.loopUDPOOBInThreadSafe()
- }
- } else {
- if _, threadUnsafeHandler := common.Cast[N.ThreadUnsafeWriter](a.packetUpstream); !threadUnsafeHandler {
- go a.loopUDPIn()
- } else {
- go a.loopUDPInThreadSafe()
- }
- go a.loopUDPOut()
- }
- }
- if a.setSystemProxy {
- a.clearSystemProxy, err = settings.SetSystemProxy(a.router, M.SocksaddrFromNet(a.tcpListener.Addr()).Port, a.protocol == C.TypeMixed)
- if err != nil {
- return E.Cause(err, "set system proxy")
- }
- }
- return nil
- }
- func (a *myInboundAdapter) ListenTCP() (net.Listener, error) {
- var err error
- bindAddr := M.SocksaddrFrom(netip.Addr(a.listenOptions.Listen), a.listenOptions.ListenPort)
- var tcpListener net.Listener
- if !a.listenOptions.TCPFastOpen {
- tcpListener, err = net.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
- } else {
- tcpListener, err = tfo.ListenTCP(M.NetworkFromNetAddr(N.NetworkTCP, bindAddr.Addr), bindAddr.TCPAddr())
- }
- if err == nil {
- a.logger.Info("tcp server started at ", tcpListener.Addr())
- }
- if a.listenOptions.ProxyProtocol {
- a.logger.Debug("proxy protocol enabled")
- tcpListener = &proxyproto.Listener{Listener: tcpListener}
- }
- a.tcpListener = tcpListener
- return tcpListener, err
- }
- func (a *myInboundAdapter) ListenUDP() (net.PacketConn, error) {
- bindAddr := M.SocksaddrFrom(netip.Addr(a.listenOptions.Listen), a.listenOptions.ListenPort)
- udpConn, err := net.ListenUDP(M.NetworkFromNetAddr(N.NetworkUDP, bindAddr.Addr), bindAddr.UDPAddr())
- if err != nil {
- return nil, err
- }
- a.udpConn = udpConn
- a.udpAddr = bindAddr
- a.logger.Info("udp server started at ", udpConn.LocalAddr())
- return udpConn, err
- }
- func (a *myInboundAdapter) Close() error {
- var err error
- if a.clearSystemProxy != nil {
- err = a.clearSystemProxy()
- }
- return E.Errors(err, common.Close(
- a.tcpListener,
- common.PtrOrNil(a.udpConn),
- ))
- }
- func (a *myInboundAdapter) upstreamHandler(metadata adapter.InboundContext) adapter.UpstreamHandlerAdapter {
- return adapter.NewUpstreamHandler(metadata, a.newConnection, a.streamPacketConnection, a)
- }
- func (a *myInboundAdapter) upstreamContextHandler() adapter.UpstreamHandlerAdapter {
- return adapter.NewUpstreamContextHandler(a.newConnection, a.newPacketConnection, a)
- }
- func (a *myInboundAdapter) newConnection(ctx context.Context, conn net.Conn, metadata adapter.InboundContext) error {
- a.logger.InfoContext(ctx, "inbound connection to ", metadata.Destination)
- return a.router.RouteConnection(ctx, conn, metadata)
- }
- func (a *myInboundAdapter) streamPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
- a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
- return a.router.RoutePacketConnection(ctx, conn, metadata)
- }
- func (a *myInboundAdapter) newPacketConnection(ctx context.Context, conn N.PacketConn, metadata adapter.InboundContext) error {
- ctx = log.ContextWithNewID(ctx)
- a.logger.InfoContext(ctx, "inbound packet connection from ", metadata.Source)
- a.logger.InfoContext(ctx, "inbound packet connection to ", metadata.Destination)
- return a.router.RoutePacketConnection(ctx, conn, metadata)
- }
- func (a *myInboundAdapter) loopTCPIn() {
- tcpListener := a.tcpListener
- for {
- conn, err := tcpListener.Accept()
- if err != nil {
- return
- }
- go a.injectTCP(conn)
- }
- }
- func (a *myInboundAdapter) createMetadata(conn net.Conn, metadata adapter.InboundContext) adapter.InboundContext {
- metadata.Inbound = a.tag
- metadata.InboundType = a.protocol
- metadata.SniffEnabled = a.listenOptions.SniffEnabled
- metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
- metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
- metadata.Network = N.NetworkTCP
- if !metadata.Source.IsValid() {
- metadata.Source = M.SocksaddrFromNet(conn.RemoteAddr())
- }
- if !metadata.Destination.IsValid() {
- metadata.Destination = M.SocksaddrFromNet(conn.LocalAddr())
- }
- if tcpConn, isTCP := common.Cast[*net.TCPConn](conn); isTCP {
- metadata.OriginDestination = M.SocksaddrFromNet(tcpConn.LocalAddr())
- }
- return metadata
- }
- func (a *myInboundAdapter) injectTCP(conn net.Conn) {
- ctx := log.ContextWithNewID(a.ctx)
- metadata := a.createMetadata(conn, adapter.InboundContext{})
- a.logger.InfoContext(ctx, "inbound connection from ", metadata.Source)
- hErr := a.connHandler.NewConnection(ctx, conn, metadata)
- if hErr != nil {
- conn.Close()
- a.NewError(ctx, E.Cause(hErr, "process connection from ", metadata.Source))
- }
- }
- func (a *myInboundAdapter) routeTCP(ctx context.Context, conn net.Conn, metadata adapter.InboundContext) {
- a.logger.InfoContext(ctx, "inbound connection from ", metadata.Source)
- hErr := a.newConnection(ctx, conn, metadata)
- if hErr != nil {
- conn.Close()
- a.NewError(ctx, E.Cause(hErr, "process connection from ", metadata.Source))
- }
- }
- func (a *myInboundAdapter) loopUDPIn() {
- defer close(a.packetOutboundClosed)
- _buffer := buf.StackNewPacket()
- defer common.KeepAlive(_buffer)
- buffer := common.Dup(_buffer)
- defer buffer.Release()
- buffer.IncRef()
- defer buffer.DecRef()
- packetService := (*myInboundPacketAdapter)(a)
- for {
- buffer.Reset()
- n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
- if err != nil {
- return
- }
- buffer.Truncate(n)
- var metadata adapter.InboundContext
- metadata.Inbound = a.tag
- metadata.InboundType = a.protocol
- metadata.SniffEnabled = a.listenOptions.SniffEnabled
- metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
- metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
- metadata.Network = N.NetworkUDP
- metadata.Source = M.SocksaddrFromNetIP(addr)
- metadata.OriginDestination = a.udpAddr
- err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
- if err != nil {
- a.newError(E.Cause(err, "process packet from ", metadata.Source))
- }
- }
- }
- func (a *myInboundAdapter) loopUDPOOBIn() {
- defer close(a.packetOutboundClosed)
- _buffer := buf.StackNewPacket()
- defer common.KeepAlive(_buffer)
- buffer := common.Dup(_buffer)
- defer buffer.Release()
- buffer.IncRef()
- defer buffer.DecRef()
- packetService := (*myInboundPacketAdapter)(a)
- oob := make([]byte, 1024)
- for {
- buffer.Reset()
- n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
- if err != nil {
- return
- }
- buffer.Truncate(n)
- var metadata adapter.InboundContext
- metadata.Inbound = a.tag
- metadata.InboundType = a.protocol
- metadata.SniffEnabled = a.listenOptions.SniffEnabled
- metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
- metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
- metadata.Network = N.NetworkUDP
- metadata.Source = M.SocksaddrFromNetIP(addr)
- metadata.OriginDestination = a.udpAddr
- err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
- if err != nil {
- a.newError(E.Cause(err, "process packet from ", metadata.Source))
- }
- }
- }
- func (a *myInboundAdapter) loopUDPInThreadSafe() {
- defer close(a.packetOutboundClosed)
- packetService := (*myInboundPacketAdapter)(a)
- for {
- buffer := buf.NewPacket()
- n, addr, err := a.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
- if err != nil {
- buffer.Release()
- return
- }
- buffer.Truncate(n)
- var metadata adapter.InboundContext
- metadata.Inbound = a.tag
- metadata.InboundType = a.protocol
- metadata.SniffEnabled = a.listenOptions.SniffEnabled
- metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
- metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
- metadata.Network = N.NetworkUDP
- metadata.Source = M.SocksaddrFromNetIP(addr)
- metadata.OriginDestination = a.udpAddr
- err = a.packetHandler.NewPacket(a.ctx, packetService, buffer, metadata)
- if err != nil {
- buffer.Release()
- a.newError(E.Cause(err, "process packet from ", metadata.Source))
- }
- }
- }
- func (a *myInboundAdapter) loopUDPOOBInThreadSafe() {
- defer close(a.packetOutboundClosed)
- packetService := (*myInboundPacketAdapter)(a)
- oob := make([]byte, 1024)
- for {
- buffer := buf.NewPacket()
- n, oobN, _, addr, err := a.udpConn.ReadMsgUDPAddrPort(buffer.FreeBytes(), oob)
- if err != nil {
- buffer.Release()
- return
- }
- buffer.Truncate(n)
- var metadata adapter.InboundContext
- metadata.Inbound = a.tag
- metadata.InboundType = a.protocol
- metadata.SniffEnabled = a.listenOptions.SniffEnabled
- metadata.SniffOverrideDestination = a.listenOptions.SniffOverrideDestination
- metadata.DomainStrategy = dns.DomainStrategy(a.listenOptions.DomainStrategy)
- metadata.Network = N.NetworkUDP
- metadata.Source = M.SocksaddrFromNetIP(addr)
- metadata.OriginDestination = a.udpAddr
- err = a.oobPacketHandler.NewPacket(a.ctx, packetService, buffer, oob[:oobN], metadata)
- if err != nil {
- buffer.Release()
- a.newError(E.Cause(err, "process packet from ", metadata.Source))
- }
- }
- }
- func (a *myInboundAdapter) loopUDPOut() {
- for {
- select {
- case packet := <-a.packetOutbound:
- err := a.writePacket(packet.buffer, packet.destination)
- if err != nil && !E.IsClosed(err) {
- a.newError(E.New("write back udp: ", err))
- }
- continue
- case <-a.packetOutboundClosed:
- }
- for {
- select {
- case packet := <-a.packetOutbound:
- packet.buffer.Release()
- default:
- return
- }
- }
- }
- }
- func (a *myInboundAdapter) newError(err error) {
- a.logger.Error(err)
- }
- func (a *myInboundAdapter) NewError(ctx context.Context, err error) {
- NewError(a.logger, ctx, err)
- }
- func NewError(logger log.ContextLogger, ctx context.Context, err error) {
- common.Close(err)
- if E.IsClosedOrCanceled(err) {
- logger.DebugContext(ctx, "connection closed: ", err)
- return
- }
- logger.ErrorContext(ctx, err)
- }
- func (a *myInboundAdapter) writePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
- defer buffer.Release()
- if destination.IsFqdn() {
- udpAddr, err := net.ResolveUDPAddr(N.NetworkUDP, destination.String())
- if err != nil {
- return err
- }
- return common.Error(a.udpConn.WriteTo(buffer.Bytes(), udpAddr))
- }
- return common.Error(a.udpConn.WriteToUDPAddrPort(buffer.Bytes(), destination.AddrPort()))
- }
- type myInboundPacketAdapter myInboundAdapter
- func (s *myInboundPacketAdapter) ReadPacket(buffer *buf.Buffer) (M.Socksaddr, error) {
- n, addr, err := s.udpConn.ReadFromUDPAddrPort(buffer.FreeBytes())
- if err != nil {
- return M.Socksaddr{}, err
- }
- buffer.Truncate(n)
- return M.SocksaddrFromNetIP(addr), nil
- }
- func (s *myInboundPacketAdapter) WriteIsThreadUnsafe() {
- }
- type myInboundPacket struct {
- buffer *buf.Buffer
- destination M.Socksaddr
- }
- func (s *myInboundPacketAdapter) Upstream() any {
- return s.udpConn
- }
- func (s *myInboundPacketAdapter) WritePacket(buffer *buf.Buffer, destination M.Socksaddr) error {
- s.packetAccess.RLock()
- defer s.packetAccess.RUnlock()
- select {
- case <-s.packetOutboundClosed:
- return os.ErrClosed
- default:
- }
- s.packetOutbound <- &myInboundPacket{buffer, destination}
- return nil
- }
- func (s *myInboundPacketAdapter) Close() error {
- return s.udpConn.Close()
- }
- func (s *myInboundPacketAdapter) LocalAddr() net.Addr {
- return s.udpConn.LocalAddr()
- }
- func (s *myInboundPacketAdapter) SetDeadline(t time.Time) error {
- return s.udpConn.SetDeadline(t)
- }
- func (s *myInboundPacketAdapter) SetReadDeadline(t time.Time) error {
- return s.udpConn.SetReadDeadline(t)
- }
- func (s *myInboundPacketAdapter) SetWriteDeadline(t time.Time) error {
- return s.udpConn.SetWriteDeadline(t)
- }
|