http.go 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238
  1. package libbox
  2. import (
  3. "bytes"
  4. "context"
  5. "crypto/sha256"
  6. "crypto/tls"
  7. "crypto/x509"
  8. "encoding/hex"
  9. "errors"
  10. "fmt"
  11. "io"
  12. "math/rand"
  13. "net"
  14. "net/http"
  15. "net/url"
  16. "os"
  17. "strconv"
  18. "sync"
  19. C "github.com/sagernet/sing-box/constant"
  20. "github.com/sagernet/sing/common"
  21. "github.com/sagernet/sing/common/bufio"
  22. E "github.com/sagernet/sing/common/exceptions"
  23. M "github.com/sagernet/sing/common/metadata"
  24. "github.com/sagernet/sing/protocol/socks"
  25. "github.com/sagernet/sing/protocol/socks/socks5"
  26. )
  27. type HTTPClient interface {
  28. RestrictedTLS()
  29. ModernTLS()
  30. PinnedTLS12()
  31. PinnedSHA256(sumHex string)
  32. TrySocks5(port int32)
  33. KeepAlive()
  34. NewRequest() HTTPRequest
  35. Close()
  36. }
  37. type HTTPRequest interface {
  38. SetURL(link string) error
  39. SetMethod(method string)
  40. SetHeader(key string, value string)
  41. SetContent(content []byte)
  42. SetContentString(content string)
  43. RandomUserAgent()
  44. SetUserAgent(userAgent string)
  45. Execute() (HTTPResponse, error)
  46. }
  47. type HTTPResponse interface {
  48. GetContent() (*StringBox, error)
  49. WriteTo(path string) error
  50. }
  51. var (
  52. _ HTTPClient = (*httpClient)(nil)
  53. _ HTTPRequest = (*httpRequest)(nil)
  54. _ HTTPResponse = (*httpResponse)(nil)
  55. )
  56. type httpClient struct {
  57. tls tls.Config
  58. client http.Client
  59. transport http.Transport
  60. }
  61. func NewHTTPClient() HTTPClient {
  62. client := new(httpClient)
  63. client.client.Transport = &client.transport
  64. client.transport.ForceAttemptHTTP2 = true
  65. client.transport.TLSHandshakeTimeout = C.TCPTimeout
  66. client.transport.TLSClientConfig = &client.tls
  67. client.transport.DisableKeepAlives = true
  68. return client
  69. }
  70. func (c *httpClient) ModernTLS() {
  71. c.tls.MinVersion = tls.VersionTLS12
  72. c.tls.CipherSuites = common.Map(tls.CipherSuites(), func(it *tls.CipherSuite) uint16 { return it.ID })
  73. }
  74. func (c *httpClient) RestrictedTLS() {
  75. c.tls.MinVersion = tls.VersionTLS13
  76. c.tls.CipherSuites = common.Map(common.Filter(tls.CipherSuites(), func(it *tls.CipherSuite) bool {
  77. return common.Contains(it.SupportedVersions, uint16(tls.VersionTLS13))
  78. }), func(it *tls.CipherSuite) uint16 {
  79. return it.ID
  80. })
  81. }
  82. func (c *httpClient) PinnedTLS12() {
  83. c.tls.MinVersion = tls.VersionTLS12
  84. c.tls.MaxVersion = tls.VersionTLS12
  85. }
  86. func (c *httpClient) PinnedSHA256(sumHex string) {
  87. c.tls.VerifyPeerCertificate = func(rawCerts [][]byte, verifiedChains [][]*x509.Certificate) error {
  88. for _, rawCert := range rawCerts {
  89. certSum := sha256.Sum256(rawCert)
  90. if sumHex == hex.EncodeToString(certSum[:]) {
  91. return nil
  92. }
  93. }
  94. return E.New("pinned sha256 sum mismatch")
  95. }
  96. }
  97. func (c *httpClient) TrySocks5(port int32) {
  98. dialer := new(net.Dialer)
  99. c.transport.DialContext = func(ctx context.Context, network, addr string) (net.Conn, error) {
  100. for {
  101. socksConn, err := dialer.DialContext(ctx, "tcp", "127.0.0.1:"+strconv.Itoa(int(port)))
  102. if err != nil {
  103. break
  104. }
  105. _, err = socks.ClientHandshake5(socksConn, socks5.CommandConnect, M.ParseSocksaddr(addr), "", "")
  106. if err != nil {
  107. break
  108. }
  109. //nolint:staticcheck
  110. return socksConn, err
  111. }
  112. return dialer.DialContext(ctx, network, addr)
  113. }
  114. }
  115. func (c *httpClient) KeepAlive() {
  116. c.transport.DisableKeepAlives = false
  117. }
  118. func (c *httpClient) NewRequest() HTTPRequest {
  119. req := &httpRequest{httpClient: c}
  120. req.request = http.Request{
  121. Method: "GET",
  122. Header: http.Header{},
  123. }
  124. return req
  125. }
  126. func (c *httpClient) Close() {
  127. c.transport.CloseIdleConnections()
  128. }
  129. type httpRequest struct {
  130. *httpClient
  131. request http.Request
  132. }
  133. func (r *httpRequest) SetURL(link string) (err error) {
  134. r.request.URL, err = url.Parse(link)
  135. if err != nil {
  136. return
  137. }
  138. if r.request.URL.User != nil {
  139. user := r.request.URL.User.Username()
  140. password, _ := r.request.URL.User.Password()
  141. r.request.SetBasicAuth(user, password)
  142. }
  143. return
  144. }
  145. func (r *httpRequest) SetMethod(method string) {
  146. r.request.Method = method
  147. }
  148. func (r *httpRequest) SetHeader(key string, value string) {
  149. r.request.Header.Set(key, value)
  150. }
  151. func (r *httpRequest) RandomUserAgent() {
  152. r.request.Header.Set("User-Agent", fmt.Sprintf("curl/7.%d.%d", rand.Int()%54, rand.Int()%2))
  153. }
  154. func (r *httpRequest) SetUserAgent(userAgent string) {
  155. r.request.Header.Set("User-Agent", userAgent)
  156. }
  157. func (r *httpRequest) SetContent(content []byte) {
  158. buffer := bytes.Buffer{}
  159. buffer.Write(content)
  160. r.request.Body = io.NopCloser(bytes.NewReader(buffer.Bytes()))
  161. r.request.ContentLength = int64(len(content))
  162. }
  163. func (r *httpRequest) SetContentString(content string) {
  164. r.SetContent([]byte(content))
  165. }
  166. func (r *httpRequest) Execute() (HTTPResponse, error) {
  167. response, err := r.client.Do(&r.request)
  168. if err != nil {
  169. return nil, err
  170. }
  171. httpResp := &httpResponse{Response: response}
  172. if response.StatusCode != http.StatusOK {
  173. return nil, errors.New(httpResp.errorString())
  174. }
  175. return httpResp, nil
  176. }
  177. type httpResponse struct {
  178. *http.Response
  179. getContentOnce sync.Once
  180. content []byte
  181. contentError error
  182. }
  183. func (h *httpResponse) errorString() string {
  184. content, err := h.GetContent()
  185. if err != nil {
  186. return fmt.Sprint("HTTP ", h.Status)
  187. }
  188. return fmt.Sprint("HTTP ", h.Status, ": ", content)
  189. }
  190. func (h *httpResponse) GetContent() (*StringBox, error) {
  191. h.getContentOnce.Do(func() {
  192. defer h.Body.Close()
  193. h.content, h.contentError = io.ReadAll(h.Body)
  194. })
  195. if h.contentError != nil {
  196. return nil, h.contentError
  197. }
  198. return wrapString(string(h.content)), nil
  199. }
  200. func (h *httpResponse) WriteTo(path string) error {
  201. defer h.Body.Close()
  202. file, err := os.Create(path)
  203. if err != nil {
  204. return err
  205. }
  206. defer file.Close()
  207. return common.Error(bufio.Copy(file, h.Body))
  208. }