|
@@ -123,12 +123,12 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
|
|
|
|
|
_, err := io.ReadFull(reader, buffer[:protocol.IDBytesLen])
|
|
_, err := io.ReadFull(reader, buffer[:protocol.IDBytesLen])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read request header").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read request header").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
user, timestamp, valid := v.userValidator.Get(buffer[:protocol.IDBytesLen])
|
|
user, timestamp, valid := v.userValidator.Get(buffer[:protocol.IDBytesLen])
|
|
|
if !valid {
|
|
if !valid {
|
|
|
- return nil, errors.New("VMess|Server: Invalid user.")
|
|
|
|
|
|
|
+ return nil, errors.New("invalid user").Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
timestampHash := md5.New()
|
|
timestampHash := md5.New()
|
|
@@ -136,7 +136,7 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
iv := timestampHash.Sum(nil)
|
|
iv := timestampHash.Sum(nil)
|
|
|
account, err := user.GetTypedAccount()
|
|
account, err := user.GetTypedAccount()
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to get user account").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to get user account").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
vmessAccount := account.(*vmess.InternalAccount)
|
|
vmessAccount := account.(*vmess.InternalAccount)
|
|
|
|
|
|
|
@@ -145,7 +145,7 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
|
|
|
|
|
nBytes, err := io.ReadFull(decryptor, buffer[:41])
|
|
nBytes, err := io.ReadFull(decryptor, buffer[:41])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read request header").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read request header").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
bufferLen := nBytes
|
|
bufferLen := nBytes
|
|
|
|
|
|
|
@@ -155,7 +155,7 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
if request.Version != Version {
|
|
if request.Version != Version {
|
|
|
- return nil, errors.New("invalid protocol version ", request.Version).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("invalid protocol version ", request.Version).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
v.requestBodyIV = append([]byte(nil), buffer[1:17]...) // 16 bytes
|
|
v.requestBodyIV = append([]byte(nil), buffer[1:17]...) // 16 bytes
|
|
@@ -165,7 +165,7 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
copy(sid.key[:], v.requestBodyKey)
|
|
copy(sid.key[:], v.requestBodyKey)
|
|
|
copy(sid.nonce[:], v.requestBodyIV)
|
|
copy(sid.nonce[:], v.requestBodyIV)
|
|
|
if v.sessionHistory.has(sid) {
|
|
if v.sessionHistory.has(sid) {
|
|
|
- return nil, errors.New("duplicated session id, possibly under replay attack").Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("duplicated session id, possibly under replay attack").Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
v.sessionHistory.add(sid)
|
|
v.sessionHistory.add(sid)
|
|
|
|
|
|
|
@@ -183,28 +183,28 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
_, err = io.ReadFull(decryptor, buffer[41:45]) // 4 bytes
|
|
_, err = io.ReadFull(decryptor, buffer[41:45]) // 4 bytes
|
|
|
bufferLen += 4
|
|
bufferLen += 4
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read IPv4 address").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read IPv4 address").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
request.Address = net.IPAddress(buffer[41:45])
|
|
request.Address = net.IPAddress(buffer[41:45])
|
|
|
case AddrTypeIPv6:
|
|
case AddrTypeIPv6:
|
|
|
_, err = io.ReadFull(decryptor, buffer[41:57]) // 16 bytes
|
|
_, err = io.ReadFull(decryptor, buffer[41:57]) // 16 bytes
|
|
|
bufferLen += 16
|
|
bufferLen += 16
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read IPv6 address").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read IPv6 address").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
request.Address = net.IPAddress(buffer[41:57])
|
|
request.Address = net.IPAddress(buffer[41:57])
|
|
|
case AddrTypeDomain:
|
|
case AddrTypeDomain:
|
|
|
_, err = io.ReadFull(decryptor, buffer[41:42])
|
|
_, err = io.ReadFull(decryptor, buffer[41:42])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read domain address").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read domain address").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
domainLength := int(buffer[41])
|
|
domainLength := int(buffer[41])
|
|
|
if domainLength == 0 {
|
|
if domainLength == 0 {
|
|
|
- return nil, errors.New("zero length domain").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("zero length domain").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
_, err = io.ReadFull(decryptor, buffer[42:42+domainLength])
|
|
_, err = io.ReadFull(decryptor, buffer[42:42+domainLength])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read domain address").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read domain address").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
bufferLen += 1 + domainLength
|
|
bufferLen += 1 + domainLength
|
|
|
request.Address = net.DomainAddress(string(buffer[42 : 42+domainLength]))
|
|
request.Address = net.DomainAddress(string(buffer[42 : 42+domainLength]))
|
|
@@ -213,14 +213,14 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
if padingLen > 0 {
|
|
if padingLen > 0 {
|
|
|
_, err = io.ReadFull(decryptor, buffer[bufferLen:bufferLen+padingLen])
|
|
_, err = io.ReadFull(decryptor, buffer[bufferLen:bufferLen+padingLen])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read padding").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read padding").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
bufferLen += padingLen
|
|
bufferLen += padingLen
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
_, err = io.ReadFull(decryptor, buffer[bufferLen:bufferLen+4])
|
|
_, err = io.ReadFull(decryptor, buffer[bufferLen:bufferLen+4])
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
- return nil, errors.New("failed to read checksum").Base(err).Path("VMess", "Server")
|
|
|
|
|
|
|
+ return nil, errors.New("failed to read checksum").Base(err).Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
fnv1a := fnv.New32a()
|
|
fnv1a := fnv.New32a()
|
|
@@ -229,11 +229,11 @@ func (v *ServerSession) DecodeRequestHeader(reader io.Reader) (*protocol.Request
|
|
|
expectedHash := serial.BytesToUint32(buffer[bufferLen : bufferLen+4])
|
|
expectedHash := serial.BytesToUint32(buffer[bufferLen : bufferLen+4])
|
|
|
|
|
|
|
|
if actualHash != expectedHash {
|
|
if actualHash != expectedHash {
|
|
|
- return nil, errors.New("VMess|Server: Invalid auth.")
|
|
|
|
|
|
|
+ return nil, errors.New("invalid auth").Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
if request.Address == nil {
|
|
if request.Address == nil {
|
|
|
- return nil, errors.New("VMess|Server: Invalid remote address.")
|
|
|
|
|
|
|
+ return nil, errors.New("invalid remote address").Path("Proxy", "VMess", "Encoding", "ServerSession")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
return request, nil
|
|
return request, nil
|