protocol.go 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127
  1. package shadowsocks
  2. import (
  3. "io"
  4. "github.com/v2ray/v2ray-core/common/alloc"
  5. "github.com/v2ray/v2ray-core/common/log"
  6. v2net "github.com/v2ray/v2ray-core/common/net"
  7. "github.com/v2ray/v2ray-core/common/serial"
  8. "github.com/v2ray/v2ray-core/proxy"
  9. "github.com/v2ray/v2ray-core/transport"
  10. )
  11. const (
  12. AddrTypeIPv4 = 1
  13. AddrTypeIPv6 = 4
  14. AddrTypeDomain = 3
  15. )
  16. type Request struct {
  17. Address v2net.Address
  18. Port v2net.Port
  19. OTA bool
  20. UDPPayload *alloc.Buffer
  21. }
  22. func ReadRequest(reader io.Reader, auth *Authenticator, udp bool) (*Request, error) {
  23. buffer := alloc.NewSmallBuffer()
  24. defer buffer.Release()
  25. _, err := io.ReadFull(reader, buffer.Value[:1])
  26. if err != nil {
  27. log.Error("Shadowsocks: Failed to read address type: ", err)
  28. return nil, transport.ErrorCorruptedPacket
  29. }
  30. lenBuffer := 1
  31. request := new(Request)
  32. addrType := (buffer.Value[0] & 0x0F)
  33. if (buffer.Value[0] & 0x10) == 0x10 {
  34. request.OTA = true
  35. }
  36. switch addrType {
  37. case AddrTypeIPv4:
  38. _, err := io.ReadFull(reader, buffer.Value[lenBuffer:lenBuffer+4])
  39. if err != nil {
  40. log.Error("Shadowsocks: Failed to read IPv4 address: ", err)
  41. return nil, transport.ErrorCorruptedPacket
  42. }
  43. request.Address = v2net.IPAddress(buffer.Value[lenBuffer : lenBuffer+4])
  44. lenBuffer += 4
  45. case AddrTypeIPv6:
  46. _, err := io.ReadFull(reader, buffer.Value[lenBuffer:lenBuffer+16])
  47. if err != nil {
  48. log.Error("Shadowsocks: Failed to read IPv6 address: ", err)
  49. return nil, transport.ErrorCorruptedPacket
  50. }
  51. request.Address = v2net.IPAddress(buffer.Value[lenBuffer : lenBuffer+16])
  52. lenBuffer += 16
  53. case AddrTypeDomain:
  54. _, err := io.ReadFull(reader, buffer.Value[lenBuffer:lenBuffer+1])
  55. if err != nil {
  56. log.Error("Shadowsocks: Failed to read domain lenth: ", err)
  57. return nil, transport.ErrorCorruptedPacket
  58. }
  59. domainLength := int(buffer.Value[lenBuffer])
  60. lenBuffer++
  61. _, err = io.ReadFull(reader, buffer.Value[lenBuffer:lenBuffer+domainLength])
  62. if err != nil {
  63. log.Error("Shadowsocks: Failed to read domain: ", err)
  64. return nil, transport.ErrorCorruptedPacket
  65. }
  66. request.Address = v2net.DomainAddress(string(buffer.Value[lenBuffer : lenBuffer+domainLength]))
  67. lenBuffer += domainLength
  68. default:
  69. log.Error("Shadowsocks: Unknown address type: ", addrType)
  70. return nil, transport.ErrorCorruptedPacket
  71. }
  72. _, err = io.ReadFull(reader, buffer.Value[lenBuffer:lenBuffer+2])
  73. if err != nil {
  74. log.Error("Shadowsocks: Failed to read port: ", err)
  75. return nil, transport.ErrorCorruptedPacket
  76. }
  77. request.Port = v2net.PortFromBytes(buffer.Value[lenBuffer : lenBuffer+2])
  78. lenBuffer += 2
  79. var authBytes []byte
  80. if udp {
  81. nBytes, err := reader.Read(buffer.Value[lenBuffer:])
  82. if err != nil {
  83. log.Error("Shadowsocks: Failed to read UDP payload: ", err)
  84. return nil, transport.ErrorCorruptedPacket
  85. }
  86. buffer.Slice(0, lenBuffer+nBytes)
  87. if request.OTA {
  88. authBytes = buffer.Value[lenBuffer+nBytes-AuthSize:]
  89. request.UDPPayload = alloc.NewSmallBuffer().Clear().Append(buffer.Value[lenBuffer : lenBuffer+nBytes-AuthSize])
  90. lenBuffer = lenBuffer + nBytes - AuthSize
  91. } else {
  92. request.UDPPayload = alloc.NewSmallBuffer().Clear().Append(buffer.Value[lenBuffer:])
  93. }
  94. } else {
  95. if request.OTA {
  96. authBytes = buffer.Value[lenBuffer : lenBuffer+AuthSize]
  97. _, err = io.ReadFull(reader, authBytes)
  98. if err != nil {
  99. log.Error("Shadowsocks: Failed to read OTA: ", err)
  100. return nil, transport.ErrorCorruptedPacket
  101. }
  102. }
  103. }
  104. if request.OTA {
  105. actualAuth := auth.Authenticate(nil, buffer.Value[0:lenBuffer])
  106. if !serial.BytesLiteral(actualAuth).Equals(serial.BytesLiteral(authBytes)) {
  107. log.Debug("Shadowsocks: Invalid OTA. Expecting ", actualAuth, ", but got ", authBytes)
  108. log.Warning("Shadowsocks: Invalid OTA.")
  109. return nil, proxy.ErrorInvalidAuthentication
  110. }
  111. }
  112. return request, nil
  113. }