tls_test.go 7.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278
  1. package scenarios
  2. import (
  3. "net"
  4. "path/filepath"
  5. "testing"
  6. "io/ioutil"
  7. "os"
  8. "time"
  9. "v2ray.com/core"
  10. v2net "v2ray.com/core/common/net"
  11. "v2ray.com/core/common/protocol"
  12. "v2ray.com/core/common/serial"
  13. "v2ray.com/core/common/uuid"
  14. "v2ray.com/core/proxy/dokodemo"
  15. "v2ray.com/core/proxy/freedom"
  16. "v2ray.com/core/proxy/vmess"
  17. "v2ray.com/core/proxy/vmess/inbound"
  18. "v2ray.com/core/proxy/vmess/outbound"
  19. "v2ray.com/core/testing/assert"
  20. "v2ray.com/core/testing/servers/tcp"
  21. "v2ray.com/core/transport/internet"
  22. "v2ray.com/core/transport/internet/tls"
  23. )
  24. func mustReadFile(name string) []byte {
  25. content, err := ioutil.ReadFile(name)
  26. if err != nil {
  27. panic(err)
  28. }
  29. return content
  30. }
  31. func TestSimpleTLSConnection(t *testing.T) {
  32. assert := assert.On(t)
  33. tcpServer := tcp.Server{
  34. MsgProcessor: xor,
  35. }
  36. dest, err := tcpServer.Start()
  37. assert.Error(err).IsNil()
  38. userID := protocol.NewID(uuid.New())
  39. serverPort := pickPort()
  40. serverConfig := &core.Config{
  41. Inbound: []*core.InboundConnectionConfig{
  42. {
  43. PortRange: v2net.SinglePortRange(serverPort),
  44. ListenOn: v2net.NewIPOrDomain(v2net.LocalHostIP),
  45. Settings: serial.ToTypedMessage(&inbound.Config{
  46. User: []*protocol.User{
  47. {
  48. Account: serial.ToTypedMessage(&vmess.Account{
  49. Id: userID.String(),
  50. }),
  51. },
  52. },
  53. }),
  54. StreamSettings: &internet.StreamConfig{
  55. SecurityType: serial.GetMessageType(&tls.Config{}),
  56. SecuritySettings: []*serial.TypedMessage{
  57. serial.ToTypedMessage(&tls.Config{
  58. Certificate: []*tls.Certificate{
  59. {
  60. Certificate: mustReadFile(filepath.Join(os.Getenv("GOPATH"), "src", "v2ray.com", "core", "testing", "tls", "cert.pem")),
  61. Key: mustReadFile(filepath.Join(os.Getenv("GOPATH"), "src", "v2ray.com", "core", "testing", "tls", "key.pem")),
  62. },
  63. },
  64. }),
  65. },
  66. },
  67. },
  68. },
  69. Outbound: []*core.OutboundConnectionConfig{
  70. {
  71. Settings: serial.ToTypedMessage(&freedom.Config{}),
  72. },
  73. },
  74. }
  75. clientPort := pickPort()
  76. clientConfig := &core.Config{
  77. Inbound: []*core.InboundConnectionConfig{
  78. {
  79. PortRange: v2net.SinglePortRange(clientPort),
  80. ListenOn: v2net.NewIPOrDomain(v2net.LocalHostIP),
  81. Settings: serial.ToTypedMessage(&dokodemo.Config{
  82. Address: v2net.NewIPOrDomain(dest.Address),
  83. Port: uint32(dest.Port),
  84. NetworkList: &v2net.NetworkList{
  85. Network: []v2net.Network{v2net.Network_TCP},
  86. },
  87. }),
  88. },
  89. },
  90. Outbound: []*core.OutboundConnectionConfig{
  91. {
  92. Settings: serial.ToTypedMessage(&outbound.Config{
  93. Receiver: []*protocol.ServerEndpoint{
  94. {
  95. Address: v2net.NewIPOrDomain(v2net.LocalHostIP),
  96. Port: uint32(serverPort),
  97. User: []*protocol.User{
  98. {
  99. Account: serial.ToTypedMessage(&vmess.Account{
  100. Id: userID.String(),
  101. }),
  102. },
  103. },
  104. },
  105. },
  106. }),
  107. StreamSettings: &internet.StreamConfig{
  108. SecurityType: serial.GetMessageType(&tls.Config{}),
  109. SecuritySettings: []*serial.TypedMessage{
  110. serial.ToTypedMessage(&tls.Config{
  111. AllowInsecure: true,
  112. }),
  113. },
  114. },
  115. },
  116. },
  117. }
  118. assert.Error(InitializeServerConfig(serverConfig)).IsNil()
  119. assert.Error(InitializeServerConfig(clientConfig)).IsNil()
  120. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  121. IP: []byte{127, 0, 0, 1},
  122. Port: int(clientPort),
  123. })
  124. assert.Error(err).IsNil()
  125. payload := "dokodemo request."
  126. nBytes, err := conn.Write([]byte(payload))
  127. assert.Error(err).IsNil()
  128. assert.Int(nBytes).Equals(len(payload))
  129. response := readFrom(conn, time.Second*2, len(payload))
  130. assert.Bytes(response).Equals(xor([]byte(payload)))
  131. assert.Error(conn.Close()).IsNil()
  132. CloseAllServers()
  133. }
  134. func TestTLSConnectionReuse(t *testing.T) {
  135. assert := assert.On(t)
  136. tcpServer := tcp.Server{
  137. MsgProcessor: xor,
  138. }
  139. dest, err := tcpServer.Start()
  140. assert.Error(err).IsNil()
  141. userID := protocol.NewID(uuid.New())
  142. serverPort := pickPort()
  143. serverConfig := &core.Config{
  144. Inbound: []*core.InboundConnectionConfig{
  145. {
  146. PortRange: v2net.SinglePortRange(serverPort),
  147. ListenOn: v2net.NewIPOrDomain(v2net.LocalHostIP),
  148. Settings: serial.ToTypedMessage(&inbound.Config{
  149. User: []*protocol.User{
  150. {
  151. Account: serial.ToTypedMessage(&vmess.Account{
  152. Id: userID.String(),
  153. }),
  154. },
  155. },
  156. }),
  157. StreamSettings: &internet.StreamConfig{
  158. SecurityType: serial.GetMessageType(&tls.Config{}),
  159. SecuritySettings: []*serial.TypedMessage{
  160. serial.ToTypedMessage(&tls.Config{
  161. Certificate: []*tls.Certificate{
  162. {
  163. Certificate: mustReadFile(filepath.Join(os.Getenv("GOPATH"), "src", "v2ray.com", "core", "testing", "tls", "cert.pem")),
  164. Key: mustReadFile(filepath.Join(os.Getenv("GOPATH"), "src", "v2ray.com", "core", "testing", "tls", "key.pem")),
  165. },
  166. },
  167. }),
  168. },
  169. },
  170. },
  171. },
  172. Outbound: []*core.OutboundConnectionConfig{
  173. {
  174. Settings: serial.ToTypedMessage(&freedom.Config{}),
  175. },
  176. },
  177. }
  178. clientPort := pickPort()
  179. clientConfig := &core.Config{
  180. Inbound: []*core.InboundConnectionConfig{
  181. {
  182. PortRange: v2net.SinglePortRange(clientPort),
  183. ListenOn: v2net.NewIPOrDomain(v2net.LocalHostIP),
  184. Settings: serial.ToTypedMessage(&dokodemo.Config{
  185. Address: v2net.NewIPOrDomain(dest.Address),
  186. Port: uint32(dest.Port),
  187. NetworkList: &v2net.NetworkList{
  188. Network: []v2net.Network{v2net.Network_TCP},
  189. },
  190. }),
  191. },
  192. },
  193. Outbound: []*core.OutboundConnectionConfig{
  194. {
  195. Settings: serial.ToTypedMessage(&outbound.Config{
  196. Receiver: []*protocol.ServerEndpoint{
  197. {
  198. Address: v2net.NewIPOrDomain(v2net.LocalHostIP),
  199. Port: uint32(serverPort),
  200. User: []*protocol.User{
  201. {
  202. Account: serial.ToTypedMessage(&vmess.Account{
  203. Id: userID.String(),
  204. }),
  205. },
  206. },
  207. },
  208. },
  209. }),
  210. StreamSettings: &internet.StreamConfig{
  211. SecurityType: serial.GetMessageType(&tls.Config{}),
  212. SecuritySettings: []*serial.TypedMessage{
  213. serial.ToTypedMessage(&tls.Config{
  214. AllowInsecure: true,
  215. }),
  216. },
  217. },
  218. },
  219. },
  220. }
  221. assert.Error(InitializeServerConfig(serverConfig)).IsNil()
  222. assert.Error(InitializeServerConfig(clientConfig)).IsNil()
  223. for i := 0; i < 5; i++ {
  224. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  225. IP: []byte{127, 0, 0, 1},
  226. Port: int(clientPort),
  227. })
  228. assert.Error(err).IsNil()
  229. payload := "dokodemo request."
  230. nBytes, err := conn.Write([]byte(payload))
  231. assert.Error(err).IsNil()
  232. assert.Int(nBytes).Equals(len(payload))
  233. response := readFrom(conn, time.Second*2, len(payload))
  234. assert.Bytes(response).Equals(xor([]byte(payload)))
  235. assert.Error(conn.Close()).IsNil()
  236. }
  237. time.Sleep(time.Second * 10)
  238. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  239. IP: []byte{127, 0, 0, 1},
  240. Port: int(clientPort),
  241. })
  242. assert.Error(err).IsNil()
  243. payload := "dokodemo request."
  244. nBytes, err := conn.Write([]byte(payload))
  245. assert.Error(err).IsNil()
  246. assert.Int(nBytes).Equals(len(payload))
  247. response := readFrom(conn, time.Second*2, len(payload))
  248. assert.Bytes(response).Equals(xor([]byte(payload)))
  249. assert.Error(conn.Close()).IsNil()
  250. CloseAllServers()
  251. }