rule_set_remote.go 8.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322
  1. package route
  2. import (
  3. "bytes"
  4. "context"
  5. "io"
  6. "net"
  7. "net/http"
  8. "runtime"
  9. "strings"
  10. "sync"
  11. "time"
  12. "github.com/sagernet/sing-box/adapter"
  13. "github.com/sagernet/sing-box/common/srs"
  14. C "github.com/sagernet/sing-box/constant"
  15. "github.com/sagernet/sing-box/option"
  16. "github.com/sagernet/sing/common"
  17. "github.com/sagernet/sing/common/atomic"
  18. E "github.com/sagernet/sing/common/exceptions"
  19. F "github.com/sagernet/sing/common/format"
  20. "github.com/sagernet/sing/common/json"
  21. "github.com/sagernet/sing/common/logger"
  22. M "github.com/sagernet/sing/common/metadata"
  23. N "github.com/sagernet/sing/common/network"
  24. "github.com/sagernet/sing/common/x/list"
  25. "github.com/sagernet/sing/service"
  26. "github.com/sagernet/sing/service/pause"
  27. "go4.org/netipx"
  28. )
  29. var _ adapter.RuleSet = (*RemoteRuleSet)(nil)
  30. type RemoteRuleSet struct {
  31. ctx context.Context
  32. cancel context.CancelFunc
  33. router adapter.Router
  34. logger logger.ContextLogger
  35. options option.RuleSet
  36. metadata adapter.RuleSetMetadata
  37. updateInterval time.Duration
  38. dialer N.Dialer
  39. rules []adapter.HeadlessRule
  40. lastUpdated time.Time
  41. lastEtag string
  42. updateTicker *time.Ticker
  43. pauseManager pause.Manager
  44. callbackAccess sync.Mutex
  45. callbacks list.List[adapter.RuleSetUpdateCallback]
  46. refs atomic.Int32
  47. }
  48. func NewRemoteRuleSet(ctx context.Context, router adapter.Router, logger logger.ContextLogger, options option.RuleSet) *RemoteRuleSet {
  49. ctx, cancel := context.WithCancel(ctx)
  50. var updateInterval time.Duration
  51. if options.RemoteOptions.UpdateInterval > 0 {
  52. updateInterval = time.Duration(options.RemoteOptions.UpdateInterval)
  53. } else {
  54. updateInterval = 24 * time.Hour
  55. }
  56. return &RemoteRuleSet{
  57. ctx: ctx,
  58. cancel: cancel,
  59. router: router,
  60. logger: logger,
  61. options: options,
  62. updateInterval: updateInterval,
  63. pauseManager: service.FromContext[pause.Manager](ctx),
  64. }
  65. }
  66. func (s *RemoteRuleSet) Name() string {
  67. return s.options.Tag
  68. }
  69. func (s *RemoteRuleSet) String() string {
  70. return strings.Join(F.MapToString(s.rules), " ")
  71. }
  72. func (s *RemoteRuleSet) StartContext(ctx context.Context, startContext adapter.RuleSetStartContext) error {
  73. var dialer N.Dialer
  74. if s.options.RemoteOptions.DownloadDetour != "" {
  75. outbound, loaded := s.router.Outbound(s.options.RemoteOptions.DownloadDetour)
  76. if !loaded {
  77. return E.New("download_detour not found: ", s.options.RemoteOptions.DownloadDetour)
  78. }
  79. dialer = outbound
  80. } else {
  81. outbound, err := s.router.DefaultOutbound(N.NetworkTCP)
  82. if err != nil {
  83. return err
  84. }
  85. dialer = outbound
  86. }
  87. s.dialer = dialer
  88. cacheFile := service.FromContext[adapter.CacheFile](s.ctx)
  89. if cacheFile != nil {
  90. if savedSet := cacheFile.LoadRuleSet(s.options.Tag); savedSet != nil {
  91. err := s.loadBytes(savedSet.Content)
  92. if err != nil {
  93. return E.Cause(err, "restore cached rule-set")
  94. }
  95. s.lastUpdated = savedSet.LastUpdated
  96. s.lastEtag = savedSet.LastEtag
  97. }
  98. }
  99. if s.lastUpdated.IsZero() {
  100. err := s.fetchOnce(ctx, startContext)
  101. if err != nil {
  102. return E.Cause(err, "initial rule-set: ", s.options.Tag)
  103. }
  104. }
  105. s.updateTicker = time.NewTicker(s.updateInterval)
  106. return nil
  107. }
  108. func (s *RemoteRuleSet) PostStart() error {
  109. go s.loopUpdate()
  110. return nil
  111. }
  112. func (s *RemoteRuleSet) Metadata() adapter.RuleSetMetadata {
  113. return s.metadata
  114. }
  115. func (s *RemoteRuleSet) ExtractIPSet() []*netipx.IPSet {
  116. return common.FlatMap(s.rules, extractIPSetFromRule)
  117. }
  118. func (s *RemoteRuleSet) IncRef() {
  119. s.refs.Add(1)
  120. }
  121. func (s *RemoteRuleSet) DecRef() {
  122. if s.refs.Add(-1) < 0 {
  123. panic("rule-set: negative refs")
  124. }
  125. }
  126. func (s *RemoteRuleSet) Cleanup() {
  127. if s.refs.Load() == 0 {
  128. s.rules = nil
  129. }
  130. }
  131. func (s *RemoteRuleSet) RegisterCallback(callback adapter.RuleSetUpdateCallback) *list.Element[adapter.RuleSetUpdateCallback] {
  132. s.callbackAccess.Lock()
  133. defer s.callbackAccess.Unlock()
  134. return s.callbacks.PushBack(callback)
  135. }
  136. func (s *RemoteRuleSet) UnregisterCallback(element *list.Element[adapter.RuleSetUpdateCallback]) {
  137. s.callbackAccess.Lock()
  138. defer s.callbackAccess.Unlock()
  139. s.callbacks.Remove(element)
  140. }
  141. func (s *RemoteRuleSet) loadBytes(content []byte) error {
  142. var (
  143. plainRuleSet option.PlainRuleSet
  144. err error
  145. )
  146. switch s.options.Format {
  147. case C.RuleSetFormatSource:
  148. var compat option.PlainRuleSetCompat
  149. compat, err = json.UnmarshalExtended[option.PlainRuleSetCompat](content)
  150. if err != nil {
  151. return err
  152. }
  153. plainRuleSet, err = compat.Upgrade()
  154. if err != nil {
  155. return err
  156. }
  157. case C.RuleSetFormatBinary:
  158. plainRuleSet, err = srs.Read(bytes.NewReader(content), false)
  159. if err != nil {
  160. return err
  161. }
  162. default:
  163. return E.New("unknown rule-set format: ", s.options.Format)
  164. }
  165. rules := make([]adapter.HeadlessRule, len(plainRuleSet.Rules))
  166. for i, ruleOptions := range plainRuleSet.Rules {
  167. rules[i], err = NewHeadlessRule(s.router, ruleOptions)
  168. if err != nil {
  169. return E.Cause(err, "parse rule_set.rules.[", i, "]")
  170. }
  171. }
  172. s.metadata.ContainsProcessRule = hasHeadlessRule(plainRuleSet.Rules, isProcessHeadlessRule)
  173. s.metadata.ContainsWIFIRule = hasHeadlessRule(plainRuleSet.Rules, isWIFIHeadlessRule)
  174. s.metadata.ContainsIPCIDRRule = hasHeadlessRule(plainRuleSet.Rules, isIPCIDRHeadlessRule)
  175. s.rules = rules
  176. s.callbackAccess.Lock()
  177. callbacks := s.callbacks.Array()
  178. s.callbackAccess.Unlock()
  179. for _, callback := range callbacks {
  180. callback(s)
  181. }
  182. return nil
  183. }
  184. func (s *RemoteRuleSet) loopUpdate() {
  185. if time.Since(s.lastUpdated) > s.updateInterval {
  186. err := s.fetchOnce(s.ctx, nil)
  187. if err != nil {
  188. s.logger.Error("fetch rule-set ", s.options.Tag, ": ", err)
  189. } else if s.refs.Load() == 0 {
  190. s.rules = nil
  191. }
  192. }
  193. for {
  194. runtime.GC()
  195. select {
  196. case <-s.ctx.Done():
  197. return
  198. case <-s.updateTicker.C:
  199. s.pauseManager.WaitActive()
  200. err := s.fetchOnce(s.ctx, nil)
  201. if err != nil {
  202. s.logger.Error("fetch rule-set ", s.options.Tag, ": ", err)
  203. } else if s.refs.Load() == 0 {
  204. s.rules = nil
  205. }
  206. }
  207. }
  208. }
  209. func (s *RemoteRuleSet) fetchOnce(ctx context.Context, startContext adapter.RuleSetStartContext) error {
  210. s.logger.Debug("updating rule-set ", s.options.Tag, " from URL: ", s.options.RemoteOptions.URL)
  211. var httpClient *http.Client
  212. if startContext != nil {
  213. httpClient = startContext.HTTPClient(s.options.RemoteOptions.DownloadDetour, s.dialer)
  214. } else {
  215. httpClient = &http.Client{
  216. Transport: &http.Transport{
  217. ForceAttemptHTTP2: true,
  218. TLSHandshakeTimeout: C.TCPTimeout,
  219. DialContext: func(ctx context.Context, network, addr string) (net.Conn, error) {
  220. return s.dialer.DialContext(ctx, network, M.ParseSocksaddr(addr))
  221. },
  222. },
  223. }
  224. }
  225. request, err := http.NewRequest("GET", s.options.RemoteOptions.URL, nil)
  226. if err != nil {
  227. return err
  228. }
  229. if s.lastEtag != "" {
  230. request.Header.Set("If-None-Match", s.lastEtag)
  231. }
  232. response, err := httpClient.Do(request.WithContext(ctx))
  233. if err != nil {
  234. return err
  235. }
  236. switch response.StatusCode {
  237. case http.StatusOK:
  238. case http.StatusNotModified:
  239. s.lastUpdated = time.Now()
  240. cacheFile := service.FromContext[adapter.CacheFile](s.ctx)
  241. if cacheFile != nil {
  242. savedRuleSet := cacheFile.LoadRuleSet(s.options.Tag)
  243. if savedRuleSet != nil {
  244. savedRuleSet.LastUpdated = s.lastUpdated
  245. err = cacheFile.SaveRuleSet(s.options.Tag, savedRuleSet)
  246. if err != nil {
  247. s.logger.Error("save rule-set updated time: ", err)
  248. return nil
  249. }
  250. }
  251. }
  252. s.logger.Info("update rule-set ", s.options.Tag, ": not modified")
  253. return nil
  254. default:
  255. return E.New("unexpected status: ", response.Status)
  256. }
  257. content, err := io.ReadAll(response.Body)
  258. if err != nil {
  259. response.Body.Close()
  260. return err
  261. }
  262. err = s.loadBytes(content)
  263. if err != nil {
  264. response.Body.Close()
  265. return err
  266. }
  267. response.Body.Close()
  268. eTagHeader := response.Header.Get("Etag")
  269. if eTagHeader != "" {
  270. s.lastEtag = eTagHeader
  271. }
  272. s.lastUpdated = time.Now()
  273. cacheFile := service.FromContext[adapter.CacheFile](s.ctx)
  274. if cacheFile != nil {
  275. err = cacheFile.SaveRuleSet(s.options.Tag, &adapter.SavedRuleSet{
  276. LastUpdated: s.lastUpdated,
  277. Content: content,
  278. LastEtag: s.lastEtag,
  279. })
  280. if err != nil {
  281. s.logger.Error("save rule-set cache: ", err)
  282. }
  283. }
  284. s.logger.Info("updated rule-set ", s.options.Tag)
  285. return nil
  286. }
  287. func (s *RemoteRuleSet) Close() error {
  288. s.rules = nil
  289. s.updateTicker.Stop()
  290. s.cancel()
  291. return nil
  292. }
  293. func (s *RemoteRuleSet) Match(metadata *adapter.InboundContext) bool {
  294. for _, rule := range s.rules {
  295. if rule.Match(metadata) {
  296. return true
  297. }
  298. }
  299. return false
  300. }