default.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380
  1. package dialer
  2. import (
  3. "context"
  4. "errors"
  5. "net"
  6. "net/netip"
  7. "syscall"
  8. "time"
  9. "github.com/sagernet/sing-box/adapter"
  10. "github.com/sagernet/sing-box/common/conntrack"
  11. "github.com/sagernet/sing-box/common/listener"
  12. C "github.com/sagernet/sing-box/constant"
  13. "github.com/sagernet/sing-box/experimental/libbox/platform"
  14. "github.com/sagernet/sing-box/option"
  15. "github.com/sagernet/sing/common"
  16. "github.com/sagernet/sing/common/atomic"
  17. "github.com/sagernet/sing/common/control"
  18. E "github.com/sagernet/sing/common/exceptions"
  19. M "github.com/sagernet/sing/common/metadata"
  20. N "github.com/sagernet/sing/common/network"
  21. "github.com/sagernet/sing/service"
  22. )
  23. var (
  24. _ ParallelInterfaceDialer = (*DefaultDialer)(nil)
  25. _ WireGuardListener = (*DefaultDialer)(nil)
  26. )
  27. type DefaultDialer struct {
  28. dialer4 tcpDialer
  29. dialer6 tcpDialer
  30. udpDialer4 net.Dialer
  31. udpDialer6 net.Dialer
  32. udpListener net.ListenConfig
  33. udpAddr4 string
  34. udpAddr6 string
  35. netns string
  36. networkManager adapter.NetworkManager
  37. networkStrategy *C.NetworkStrategy
  38. defaultNetworkStrategy bool
  39. networkType []C.InterfaceType
  40. fallbackNetworkType []C.InterfaceType
  41. networkFallbackDelay time.Duration
  42. networkLastFallback atomic.TypedValue[time.Time]
  43. }
  44. func NewDefault(ctx context.Context, options option.DialerOptions) (*DefaultDialer, error) {
  45. networkManager := service.FromContext[adapter.NetworkManager](ctx)
  46. platformInterface := service.FromContext[platform.Interface](ctx)
  47. var (
  48. dialer net.Dialer
  49. listener net.ListenConfig
  50. interfaceFinder control.InterfaceFinder
  51. networkStrategy *C.NetworkStrategy
  52. defaultNetworkStrategy bool
  53. networkType []C.InterfaceType
  54. fallbackNetworkType []C.InterfaceType
  55. networkFallbackDelay time.Duration
  56. )
  57. if networkManager != nil {
  58. interfaceFinder = networkManager.InterfaceFinder()
  59. } else {
  60. interfaceFinder = control.NewDefaultInterfaceFinder()
  61. }
  62. if options.BindInterface != "" {
  63. if !(C.IsLinux || C.IsDarwin || C.IsWindows) {
  64. return nil, E.New("`bind_interface` is only supported on Linux, macOS and Windows")
  65. }
  66. bindFunc := control.BindToInterface(interfaceFinder, options.BindInterface, -1)
  67. dialer.Control = control.Append(dialer.Control, bindFunc)
  68. listener.Control = control.Append(listener.Control, bindFunc)
  69. }
  70. if options.RoutingMark > 0 {
  71. if !C.IsLinux {
  72. return nil, E.New("`routing_mark` is only supported on Linux")
  73. }
  74. dialer.Control = control.Append(dialer.Control, setMarkWrapper(networkManager, uint32(options.RoutingMark), false))
  75. listener.Control = control.Append(listener.Control, setMarkWrapper(networkManager, uint32(options.RoutingMark), false))
  76. }
  77. disableDefaultBind := options.BindInterface != "" || options.Inet4BindAddress != nil || options.Inet6BindAddress != nil
  78. if disableDefaultBind || options.TCPFastOpen {
  79. if options.NetworkStrategy != nil || len(options.NetworkType) > 0 && options.FallbackNetworkType == nil && options.FallbackDelay == 0 {
  80. return nil, E.New("`network_strategy` is conflict with `bind_interface`, `inet4_bind_address`, `inet6_bind_address` and `tcp_fast_open`")
  81. }
  82. }
  83. if networkManager != nil {
  84. defaultOptions := networkManager.DefaultOptions()
  85. if !disableDefaultBind {
  86. if defaultOptions.BindInterface != "" {
  87. bindFunc := control.BindToInterface(networkManager.InterfaceFinder(), defaultOptions.BindInterface, -1)
  88. dialer.Control = control.Append(dialer.Control, bindFunc)
  89. listener.Control = control.Append(listener.Control, bindFunc)
  90. } else if networkManager.AutoDetectInterface() {
  91. if platformInterface != nil {
  92. networkStrategy = (*C.NetworkStrategy)(options.NetworkStrategy)
  93. networkType = common.Map(options.NetworkType, option.InterfaceType.Build)
  94. fallbackNetworkType = common.Map(options.FallbackNetworkType, option.InterfaceType.Build)
  95. if networkStrategy == nil && len(networkType) == 0 && len(fallbackNetworkType) == 0 {
  96. networkStrategy = defaultOptions.NetworkStrategy
  97. networkType = defaultOptions.NetworkType
  98. fallbackNetworkType = defaultOptions.FallbackNetworkType
  99. }
  100. networkFallbackDelay = time.Duration(options.FallbackDelay)
  101. if networkFallbackDelay == 0 && defaultOptions.FallbackDelay != 0 {
  102. networkFallbackDelay = defaultOptions.FallbackDelay
  103. }
  104. if networkStrategy == nil {
  105. networkStrategy = common.Ptr(C.NetworkStrategyDefault)
  106. defaultNetworkStrategy = true
  107. }
  108. bindFunc := networkManager.ProtectFunc()
  109. dialer.Control = control.Append(dialer.Control, bindFunc)
  110. listener.Control = control.Append(listener.Control, bindFunc)
  111. } else {
  112. bindFunc := networkManager.AutoDetectInterfaceFunc()
  113. dialer.Control = control.Append(dialer.Control, bindFunc)
  114. listener.Control = control.Append(listener.Control, bindFunc)
  115. }
  116. }
  117. if options.RoutingMark == 0 && defaultOptions.RoutingMark != 0 {
  118. dialer.Control = control.Append(dialer.Control, setMarkWrapper(networkManager, defaultOptions.RoutingMark, true))
  119. listener.Control = control.Append(listener.Control, setMarkWrapper(networkManager, defaultOptions.RoutingMark, true))
  120. }
  121. }
  122. }
  123. if networkManager != nil {
  124. markFunc := networkManager.AutoRedirectOutputMarkFunc()
  125. dialer.Control = control.Append(dialer.Control, markFunc)
  126. listener.Control = control.Append(listener.Control, markFunc)
  127. }
  128. if options.ReuseAddr {
  129. listener.Control = control.Append(listener.Control, control.ReuseAddr())
  130. }
  131. if options.ProtectPath != "" {
  132. dialer.Control = control.Append(dialer.Control, control.ProtectPath(options.ProtectPath))
  133. listener.Control = control.Append(listener.Control, control.ProtectPath(options.ProtectPath))
  134. }
  135. if options.ConnectTimeout != 0 {
  136. dialer.Timeout = time.Duration(options.ConnectTimeout)
  137. } else {
  138. dialer.Timeout = C.TCPConnectTimeout
  139. }
  140. // TODO: Add an option to customize the keep alive period
  141. dialer.KeepAlive = C.TCPKeepAliveInitial
  142. dialer.Control = control.Append(dialer.Control, control.SetKeepAlivePeriod(C.TCPKeepAliveInitial, C.TCPKeepAliveInterval))
  143. var udpFragment bool
  144. if options.UDPFragment != nil {
  145. udpFragment = *options.UDPFragment
  146. } else {
  147. udpFragment = options.UDPFragmentDefault
  148. }
  149. if !udpFragment {
  150. dialer.Control = control.Append(dialer.Control, control.DisableUDPFragment())
  151. listener.Control = control.Append(listener.Control, control.DisableUDPFragment())
  152. }
  153. var (
  154. dialer4 = dialer
  155. udpDialer4 = dialer
  156. udpAddr4 string
  157. )
  158. if options.Inet4BindAddress != nil {
  159. bindAddr := options.Inet4BindAddress.Build(netip.IPv4Unspecified())
  160. dialer4.LocalAddr = &net.TCPAddr{IP: bindAddr.AsSlice()}
  161. udpDialer4.LocalAddr = &net.UDPAddr{IP: bindAddr.AsSlice()}
  162. udpAddr4 = M.SocksaddrFrom(bindAddr, 0).String()
  163. }
  164. var (
  165. dialer6 = dialer
  166. udpDialer6 = dialer
  167. udpAddr6 string
  168. )
  169. if options.Inet6BindAddress != nil {
  170. bindAddr := options.Inet6BindAddress.Build(netip.IPv6Unspecified())
  171. dialer6.LocalAddr = &net.TCPAddr{IP: bindAddr.AsSlice()}
  172. udpDialer6.LocalAddr = &net.UDPAddr{IP: bindAddr.AsSlice()}
  173. udpAddr6 = M.SocksaddrFrom(bindAddr, 0).String()
  174. }
  175. if options.TCPMultiPath {
  176. if !go121Available {
  177. return nil, E.New("MultiPath TCP requires go1.21, please recompile your binary.")
  178. }
  179. setMultiPathTCP(&dialer4)
  180. }
  181. tcpDialer4, err := newTCPDialer(dialer4, options.TCPFastOpen)
  182. if err != nil {
  183. return nil, err
  184. }
  185. tcpDialer6, err := newTCPDialer(dialer6, options.TCPFastOpen)
  186. if err != nil {
  187. return nil, err
  188. }
  189. return &DefaultDialer{
  190. dialer4: tcpDialer4,
  191. dialer6: tcpDialer6,
  192. udpDialer4: udpDialer4,
  193. udpDialer6: udpDialer6,
  194. udpListener: listener,
  195. udpAddr4: udpAddr4,
  196. udpAddr6: udpAddr6,
  197. netns: options.NetNs,
  198. networkManager: networkManager,
  199. networkStrategy: networkStrategy,
  200. defaultNetworkStrategy: defaultNetworkStrategy,
  201. networkType: networkType,
  202. fallbackNetworkType: fallbackNetworkType,
  203. networkFallbackDelay: networkFallbackDelay,
  204. }, nil
  205. }
  206. func setMarkWrapper(networkManager adapter.NetworkManager, mark uint32, isDefault bool) control.Func {
  207. if networkManager == nil {
  208. return control.RoutingMark(mark)
  209. }
  210. return func(network, address string, conn syscall.RawConn) error {
  211. if networkManager.AutoRedirectOutputMark() != 0 {
  212. if isDefault {
  213. return E.New("`route.default_mark` is conflict with `tun.auto_redirect`")
  214. } else {
  215. return E.New("`routing_mark` is conflict with `tun.auto_redirect`")
  216. }
  217. }
  218. return control.RoutingMark(mark)(network, address, conn)
  219. }
  220. }
  221. func (d *DefaultDialer) DialContext(ctx context.Context, network string, address M.Socksaddr) (net.Conn, error) {
  222. if !address.IsValid() {
  223. return nil, E.New("invalid address")
  224. } else if address.IsFqdn() {
  225. return nil, E.New("domain not resolved")
  226. }
  227. if d.networkStrategy == nil {
  228. return trackConn(listener.ListenNetworkNamespace[net.Conn](d.netns, func() (net.Conn, error) {
  229. switch N.NetworkName(network) {
  230. case N.NetworkUDP:
  231. if !address.IsIPv6() {
  232. return d.udpDialer4.DialContext(ctx, network, address.String())
  233. } else {
  234. return d.udpDialer6.DialContext(ctx, network, address.String())
  235. }
  236. }
  237. if !address.IsIPv6() {
  238. return DialSlowContext(&d.dialer4, ctx, network, address)
  239. } else {
  240. return DialSlowContext(&d.dialer6, ctx, network, address)
  241. }
  242. }))
  243. } else {
  244. return d.DialParallelInterface(ctx, network, address, d.networkStrategy, d.networkType, d.fallbackNetworkType, d.networkFallbackDelay)
  245. }
  246. }
  247. func (d *DefaultDialer) DialParallelInterface(ctx context.Context, network string, address M.Socksaddr, strategy *C.NetworkStrategy, interfaceType []C.InterfaceType, fallbackInterfaceType []C.InterfaceType, fallbackDelay time.Duration) (net.Conn, error) {
  248. if strategy == nil {
  249. strategy = d.networkStrategy
  250. }
  251. if strategy == nil {
  252. return d.DialContext(ctx, network, address)
  253. }
  254. if len(interfaceType) == 0 {
  255. interfaceType = d.networkType
  256. }
  257. if len(fallbackInterfaceType) == 0 {
  258. fallbackInterfaceType = d.fallbackNetworkType
  259. }
  260. if fallbackDelay == 0 {
  261. fallbackDelay = d.networkFallbackDelay
  262. }
  263. var dialer net.Dialer
  264. if N.NetworkName(network) == N.NetworkTCP {
  265. dialer = dialerFromTCPDialer(d.dialer4)
  266. } else {
  267. dialer = d.udpDialer4
  268. }
  269. fastFallback := time.Since(d.networkLastFallback.Load()) < C.TCPTimeout
  270. var (
  271. conn net.Conn
  272. isPrimary bool
  273. err error
  274. )
  275. if !fastFallback {
  276. conn, isPrimary, err = d.dialParallelInterface(ctx, dialer, network, address.String(), *strategy, interfaceType, fallbackInterfaceType, fallbackDelay)
  277. } else {
  278. conn, isPrimary, err = d.dialParallelInterfaceFastFallback(ctx, dialer, network, address.String(), *strategy, interfaceType, fallbackInterfaceType, fallbackDelay, d.networkLastFallback.Store)
  279. }
  280. if err != nil {
  281. // bind interface failed on legacy xiaomi systems
  282. if d.defaultNetworkStrategy && errors.Is(err, syscall.EPERM) {
  283. d.networkStrategy = nil
  284. return d.DialContext(ctx, network, address)
  285. } else {
  286. return nil, err
  287. }
  288. }
  289. if !fastFallback && !isPrimary {
  290. d.networkLastFallback.Store(time.Now())
  291. }
  292. return trackConn(conn, nil)
  293. }
  294. func (d *DefaultDialer) ListenPacket(ctx context.Context, destination M.Socksaddr) (net.PacketConn, error) {
  295. if d.networkStrategy == nil {
  296. return trackPacketConn(listener.ListenNetworkNamespace[net.PacketConn](d.netns, func() (net.PacketConn, error) {
  297. if destination.IsIPv6() {
  298. return d.udpListener.ListenPacket(ctx, N.NetworkUDP, d.udpAddr6)
  299. } else if destination.IsIPv4() && !destination.Addr.IsUnspecified() {
  300. return d.udpListener.ListenPacket(ctx, N.NetworkUDP+"4", d.udpAddr4)
  301. } else {
  302. return d.udpListener.ListenPacket(ctx, N.NetworkUDP, d.udpAddr4)
  303. }
  304. }))
  305. } else {
  306. return d.ListenSerialInterfacePacket(ctx, destination, d.networkStrategy, d.networkType, d.fallbackNetworkType, d.networkFallbackDelay)
  307. }
  308. }
  309. func (d *DefaultDialer) ListenSerialInterfacePacket(ctx context.Context, destination M.Socksaddr, strategy *C.NetworkStrategy, interfaceType []C.InterfaceType, fallbackInterfaceType []C.InterfaceType, fallbackDelay time.Duration) (net.PacketConn, error) {
  310. if strategy == nil {
  311. strategy = d.networkStrategy
  312. }
  313. if strategy == nil {
  314. return d.ListenPacket(ctx, destination)
  315. }
  316. if len(interfaceType) == 0 {
  317. interfaceType = d.networkType
  318. }
  319. if len(fallbackInterfaceType) == 0 {
  320. fallbackInterfaceType = d.fallbackNetworkType
  321. }
  322. if fallbackDelay == 0 {
  323. fallbackDelay = d.networkFallbackDelay
  324. }
  325. network := N.NetworkUDP
  326. if destination.IsIPv4() && !destination.Addr.IsUnspecified() {
  327. network += "4"
  328. }
  329. packetConn, err := d.listenSerialInterfacePacket(ctx, d.udpListener, network, "", *strategy, interfaceType, fallbackInterfaceType, fallbackDelay)
  330. if err != nil {
  331. // bind interface failed on legacy xiaomi systems
  332. if d.defaultNetworkStrategy && errors.Is(err, syscall.EPERM) {
  333. d.networkStrategy = nil
  334. return d.ListenPacket(ctx, destination)
  335. } else {
  336. return nil, err
  337. }
  338. }
  339. return trackPacketConn(packetConn, nil)
  340. }
  341. func (d *DefaultDialer) ListenPacketCompat(network, address string) (net.PacketConn, error) {
  342. udpListener := d.udpListener
  343. udpListener.Control = control.Append(udpListener.Control, func(network, address string, conn syscall.RawConn) error {
  344. for _, wgControlFn := range WgControlFns {
  345. err := wgControlFn(network, address, conn)
  346. if err != nil {
  347. return err
  348. }
  349. }
  350. return nil
  351. })
  352. return udpListener.ListenPacket(context.Background(), network, address)
  353. }
  354. func trackConn(conn net.Conn, err error) (net.Conn, error) {
  355. if !conntrack.Enabled || err != nil {
  356. return conn, err
  357. }
  358. return conntrack.NewConn(conn)
  359. }
  360. func trackPacketConn(conn net.PacketConn, err error) (net.PacketConn, error) {
  361. if !conntrack.Enabled || err != nil {
  362. return conn, err
  363. }
  364. return conntrack.NewPacketConn(conn)
  365. }