inbound.go 4.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165
  1. package inbound
  2. import (
  3. "crypto/md5"
  4. "io"
  5. "sync"
  6. "github.com/v2ray/v2ray-core/app"
  7. "github.com/v2ray/v2ray-core/common/alloc"
  8. v2crypto "github.com/v2ray/v2ray-core/common/crypto"
  9. v2io "github.com/v2ray/v2ray-core/common/io"
  10. "github.com/v2ray/v2ray-core/common/log"
  11. v2net "github.com/v2ray/v2ray-core/common/net"
  12. "github.com/v2ray/v2ray-core/common/serial"
  13. "github.com/v2ray/v2ray-core/proxy"
  14. "github.com/v2ray/v2ray-core/proxy/internal"
  15. "github.com/v2ray/v2ray-core/proxy/vmess"
  16. "github.com/v2ray/v2ray-core/proxy/vmess/protocol"
  17. "github.com/v2ray/v2ray-core/transport/hub"
  18. )
  19. // Inbound connection handler that handles messages in VMess format.
  20. type VMessInboundHandler struct {
  21. sync.Mutex
  22. space app.Space
  23. clients protocol.UserSet
  24. user *vmess.User
  25. accepting bool
  26. listener *hub.TCPHub
  27. features *FeaturesConfig
  28. listeningPort v2net.Port
  29. }
  30. func (this *VMessInboundHandler) Port() v2net.Port {
  31. return this.listeningPort
  32. }
  33. func (this *VMessInboundHandler) Close() {
  34. this.accepting = false
  35. if this.listener != nil {
  36. this.Lock()
  37. this.listener.Close()
  38. this.listener = nil
  39. this.Unlock()
  40. }
  41. }
  42. func (this *VMessInboundHandler) GetUser() *vmess.User {
  43. return this.user
  44. }
  45. func (this *VMessInboundHandler) Listen(port v2net.Port) error {
  46. if this.accepting {
  47. if this.listeningPort == port {
  48. return nil
  49. } else {
  50. return proxy.ErrorAlreadyListening
  51. }
  52. }
  53. this.listeningPort = port
  54. tcpListener, err := hub.ListenTCP(port, this.HandleConnection)
  55. if err != nil {
  56. log.Error("Unable to listen tcp port ", port, ": ", err)
  57. return err
  58. }
  59. this.accepting = true
  60. this.Lock()
  61. this.listener = tcpListener
  62. this.Unlock()
  63. return nil
  64. }
  65. func (this *VMessInboundHandler) HandleConnection(connection *hub.TCPConn) {
  66. defer connection.Close()
  67. connReader := v2net.NewTimeOutReader(16, connection)
  68. requestReader := protocol.NewVMessRequestReader(this.clients)
  69. request, err := requestReader.Read(connReader)
  70. if err != nil {
  71. log.Access(connection.RemoteAddr(), serial.StringLiteral(""), log.AccessRejected, serial.StringLiteral(err.Error()))
  72. log.Warning("VMessIn: Invalid request from ", connection.RemoteAddr(), ": ", err)
  73. return
  74. }
  75. log.Access(connection.RemoteAddr(), request.Address, log.AccessAccepted, serial.StringLiteral(""))
  76. log.Debug("VMessIn: Received request for ", request.Address)
  77. ray := this.space.PacketDispatcher().DispatchToOutbound(v2net.NewPacket(request.Destination(), nil, true))
  78. input := ray.InboundInput()
  79. output := ray.InboundOutput()
  80. var readFinish, writeFinish sync.Mutex
  81. readFinish.Lock()
  82. writeFinish.Lock()
  83. userSettings := vmess.GetUserSettings(request.User.Level)
  84. connReader.SetTimeOut(userSettings.PayloadReadTimeout)
  85. go handleInput(request, connReader, input, &readFinish)
  86. responseKey := md5.Sum(request.RequestKey)
  87. responseIV := md5.Sum(request.RequestIV)
  88. aesStream, err := v2crypto.NewAesEncryptionStream(responseKey[:], responseIV[:])
  89. if err != nil {
  90. log.Error("VMessIn: Failed to create AES decryption stream: ", err)
  91. close(input)
  92. return
  93. }
  94. responseWriter := v2crypto.NewCryptionWriter(aesStream, connection)
  95. // Optimize for small response packet
  96. buffer := alloc.NewLargeBuffer().Clear()
  97. defer buffer.Release()
  98. buffer.AppendBytes(request.ResponseHeader, byte(0))
  99. this.generateCommand(buffer)
  100. if data, open := <-output; open {
  101. buffer.Append(data.Value)
  102. data.Release()
  103. responseWriter.Write(buffer.Value)
  104. go handleOutput(request, responseWriter, output, &writeFinish)
  105. writeFinish.Lock()
  106. }
  107. connection.CloseWrite()
  108. readFinish.Lock()
  109. }
  110. func handleInput(request *protocol.VMessRequest, reader io.Reader, input chan<- *alloc.Buffer, finish *sync.Mutex) {
  111. defer close(input)
  112. defer finish.Unlock()
  113. aesStream, err := v2crypto.NewAesDecryptionStream(request.RequestKey, request.RequestIV)
  114. if err != nil {
  115. log.Error("VMessIn: Failed to create AES decryption stream: ", err)
  116. return
  117. }
  118. requestReader := v2crypto.NewCryptionReader(aesStream, reader)
  119. v2io.RawReaderToChan(input, requestReader)
  120. }
  121. func handleOutput(request *protocol.VMessRequest, writer io.Writer, output <-chan *alloc.Buffer, finish *sync.Mutex) {
  122. v2io.ChanToWriter(writer, output)
  123. finish.Unlock()
  124. }
  125. func init() {
  126. internal.MustRegisterInboundHandlerCreator("vmess",
  127. func(space app.Space, rawConfig interface{}) (proxy.InboundHandler, error) {
  128. config := rawConfig.(*Config)
  129. allowedClients := protocol.NewTimedUserSet()
  130. for _, user := range config.AllowedUsers {
  131. allowedClients.AddUser(user)
  132. }
  133. return &VMessInboundHandler{
  134. space: space,
  135. clients: allowedClients,
  136. features: config.Features,
  137. user: config.AllowedUsers[0],
  138. }, nil
  139. })
  140. }