codec.go 6.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258
  1. package wireguard
  2. import (
  3. "context"
  4. "fmt"
  5. "golang.zx2c4.com/wireguard/tun"
  6. "net"
  7. "os"
  8. "gvisor.dev/gvisor/pkg/tcpip"
  9. "gvisor.dev/gvisor/pkg/tcpip/adapters/gonet"
  10. "gvisor.dev/gvisor/pkg/tcpip/buffer"
  11. "gvisor.dev/gvisor/pkg/tcpip/header"
  12. "gvisor.dev/gvisor/pkg/tcpip/network/ipv4"
  13. "gvisor.dev/gvisor/pkg/tcpip/network/ipv6"
  14. "gvisor.dev/gvisor/pkg/tcpip/stack"
  15. "gvisor.dev/gvisor/pkg/tcpip/transport/tcp"
  16. "gvisor.dev/gvisor/pkg/tcpip/transport/udp"
  17. )
  18. type netTun struct {
  19. stack *stack.Stack
  20. dispatcher stack.NetworkDispatcher
  21. events chan tun.Event
  22. incomingPacket chan buffer.VectorisedView
  23. mtu int
  24. hasV4, hasV6 bool
  25. }
  26. type endpoint netTun
  27. // WritePackets writes packets back into io.ReadWriter.
  28. func (e *endpoint) WritePackets(_ stack.RouteInfo, pkts stack.PacketBufferList, _ tcpip.NetworkProtocolNumber) (int, tcpip.Error) {
  29. n := 0
  30. for pkt := pkts.Front(); pkt != nil; pkt = pkt.Next() {
  31. if err := e.WriteRawPacket(pkt); err != nil {
  32. break
  33. }
  34. n++
  35. }
  36. return n, nil
  37. }
  38. func (e *endpoint) WriteRawPacket(buffer *stack.PacketBuffer) tcpip.Error {
  39. data := buffer.Data().ExtractVV()
  40. _, err := (*netTun)(e).Write(data.ToView(), 0)
  41. if err != nil {
  42. return &tcpip.ErrAborted{}
  43. }
  44. return nil
  45. }
  46. type Net netTun
  47. func (e *endpoint) Attach(dispatcher stack.NetworkDispatcher) {
  48. e.dispatcher = dispatcher
  49. }
  50. func (e *endpoint) IsAttached() bool {
  51. return e.dispatcher != nil
  52. }
  53. func (e *endpoint) MTU() uint32 {
  54. mtu, err := (*netTun)(e).MTU()
  55. if err != nil {
  56. panic(err)
  57. }
  58. return uint32(mtu)
  59. }
  60. func (*endpoint) Capabilities() stack.LinkEndpointCapabilities {
  61. return stack.CapabilityNone
  62. }
  63. func (*endpoint) MaxHeaderLength() uint16 {
  64. return 0
  65. }
  66. func (*endpoint) LinkAddress() tcpip.LinkAddress {
  67. return ""
  68. }
  69. func (*endpoint) Wait() {}
  70. func (e *endpoint) WritePacket(_ stack.RouteInfo, _ tcpip.NetworkProtocolNumber, pkt *stack.PacketBuffer) tcpip.Error {
  71. e.incomingPacket <- buffer.NewVectorisedView(pkt.Size(), pkt.Views())
  72. return nil
  73. }
  74. func (*endpoint) ARPHardwareType() header.ARPHardwareType {
  75. return header.ARPHardwareNone
  76. }
  77. func (e *endpoint) AddHeader(tcpip.LinkAddress, tcpip.LinkAddress, tcpip.NetworkProtocolNumber, *stack.PacketBuffer) {
  78. }
  79. func CreateNetTUN(localAddresses []net.IP, mtu int) (tun.Device, *Net, error) {
  80. opts := stack.Options{
  81. NetworkProtocols: []stack.NetworkProtocolFactory{ipv4.NewProtocol, ipv6.NewProtocol},
  82. TransportProtocols: []stack.TransportProtocolFactory{tcp.NewProtocol, udp.NewProtocol},
  83. HandleLocal: true,
  84. }
  85. dev := &netTun{
  86. stack: stack.New(opts),
  87. events: make(chan tun.Event, 10),
  88. incomingPacket: make(chan buffer.VectorisedView),
  89. mtu: mtu,
  90. }
  91. tcpipErr := dev.stack.CreateNIC(1, (*endpoint)(dev))
  92. if tcpipErr != nil {
  93. return nil, nil, fmt.Errorf("CreateNIC: %v", tcpipErr)
  94. }
  95. for _, ip := range localAddresses {
  96. if ip4 := ip.To4(); ip4 != nil {
  97. protoAddr := tcpip.ProtocolAddress{
  98. Protocol: ipv4.ProtocolNumber,
  99. AddressWithPrefix: tcpip.Address(ip4).WithPrefix(),
  100. }
  101. tcpipErr := dev.stack.AddProtocolAddress(1, protoAddr, stack.AddressProperties{})
  102. if tcpipErr != nil {
  103. return nil, nil, fmt.Errorf("AddProtocolAddress(%v): %v", ip4, tcpipErr)
  104. }
  105. dev.hasV4 = true
  106. } else {
  107. protoAddr := tcpip.ProtocolAddress{
  108. Protocol: ipv6.ProtocolNumber,
  109. AddressWithPrefix: tcpip.Address(ip).WithPrefix(),
  110. }
  111. tcpipErr := dev.stack.AddProtocolAddress(1, protoAddr, stack.AddressProperties{})
  112. if tcpipErr != nil {
  113. return nil, nil, fmt.Errorf("AddProtocolAddress(%v): %v", ip, tcpipErr)
  114. }
  115. dev.hasV6 = true
  116. }
  117. }
  118. if dev.hasV4 {
  119. dev.stack.AddRoute(tcpip.Route{Destination: header.IPv4EmptySubnet, NIC: 1})
  120. }
  121. if dev.hasV6 {
  122. dev.stack.AddRoute(tcpip.Route{Destination: header.IPv6EmptySubnet, NIC: 1})
  123. }
  124. dev.events <- tun.EventUp
  125. return dev, (*Net)(dev), nil
  126. }
  127. func (tun *netTun) Name() (string, error) {
  128. return "go", nil
  129. }
  130. func (tun *netTun) File() *os.File {
  131. return nil
  132. }
  133. func (tun *netTun) Events() chan tun.Event {
  134. return tun.events
  135. }
  136. func (tun *netTun) Read(buf []byte, offset int) (int, error) {
  137. view, ok := <-tun.incomingPacket
  138. if !ok {
  139. return 0, os.ErrClosed
  140. }
  141. return view.Read(buf[offset:])
  142. }
  143. func (tun *netTun) Write(buf []byte, offset int) (int, error) {
  144. packet := buf[offset:]
  145. if len(packet) == 0 {
  146. return 0, nil
  147. }
  148. pkb := stack.NewPacketBuffer(stack.PacketBufferOptions{Data: buffer.NewVectorisedView(len(packet), []buffer.View{buffer.NewViewFromBytes(packet)})})
  149. switch packet[0] >> 4 {
  150. case 4:
  151. tun.dispatcher.DeliverNetworkPacket("", "", ipv4.ProtocolNumber, pkb)
  152. case 6:
  153. tun.dispatcher.DeliverNetworkPacket("", "", ipv6.ProtocolNumber, pkb)
  154. }
  155. return len(buf), nil
  156. }
  157. func (tun *netTun) Flush() error {
  158. return nil
  159. }
  160. func (tun *netTun) Close() error {
  161. tun.stack.RemoveNIC(1)
  162. if tun.events != nil {
  163. close(tun.events)
  164. }
  165. if tun.incomingPacket != nil {
  166. close(tun.incomingPacket)
  167. }
  168. return nil
  169. }
  170. func (tun *netTun) MTU() (int, error) {
  171. return tun.mtu, nil
  172. }
  173. func convertToFullAddr(ip net.IP, port int) (tcpip.FullAddress, tcpip.NetworkProtocolNumber) {
  174. if ip4 := ip.To4(); ip4 != nil {
  175. return tcpip.FullAddress{
  176. NIC: 1,
  177. Addr: tcpip.Address(ip4),
  178. Port: uint16(port),
  179. }, ipv4.ProtocolNumber
  180. } else {
  181. return tcpip.FullAddress{
  182. NIC: 1,
  183. Addr: tcpip.Address(ip),
  184. Port: uint16(port),
  185. }, ipv6.ProtocolNumber
  186. }
  187. }
  188. func (net *Net) DialContextTCP(ctx context.Context, addr *net.TCPAddr) (*gonet.TCPConn, error) {
  189. if addr == nil {
  190. panic("todo: deal with auto addr semantics for nil addr")
  191. }
  192. fa, pn := convertToFullAddr(addr.IP, addr.Port)
  193. return gonet.DialContextTCP(ctx, net.stack, fa, pn)
  194. }
  195. func (net *Net) DialTCP(addr *net.TCPAddr) (*gonet.TCPConn, error) {
  196. if addr == nil {
  197. panic("todo: deal with auto addr semantics for nil addr")
  198. }
  199. fa, pn := convertToFullAddr(addr.IP, addr.Port)
  200. return gonet.DialTCP(net.stack, fa, pn)
  201. }
  202. func (net *Net) ListenTCP(addr *net.TCPAddr) (*gonet.TCPListener, error) {
  203. if addr == nil {
  204. panic("todo: deal with auto addr semantics for nil addr")
  205. }
  206. fa, pn := convertToFullAddr(addr.IP, addr.Port)
  207. return gonet.ListenTCP(net.stack, fa, pn)
  208. }
  209. func (net *Net) DialUDP(laddr, raddr *net.UDPAddr) (*gonet.UDPConn, error) {
  210. var lfa, rfa *tcpip.FullAddress
  211. var pn tcpip.NetworkProtocolNumber
  212. if laddr != nil {
  213. var addr tcpip.FullAddress
  214. addr, pn = convertToFullAddr(laddr.IP, laddr.Port)
  215. lfa = &addr
  216. }
  217. if raddr != nil {
  218. var addr tcpip.FullAddress
  219. addr, pn = convertToFullAddr(raddr.IP, raddr.Port)
  220. rfa = &addr
  221. }
  222. return gonet.DialUDP(net.stack, lfa, rfa, pn)
  223. }