tls_test.go 9.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378
  1. package scenarios
  2. import (
  3. "crypto/rand"
  4. "testing"
  5. "time"
  6. "v2ray.com/core"
  7. "v2ray.com/core/app/proxyman"
  8. "v2ray.com/core/common/net"
  9. "v2ray.com/core/common/protocol"
  10. "v2ray.com/core/common/serial"
  11. "v2ray.com/core/common/uuid"
  12. "v2ray.com/core/proxy/dokodemo"
  13. "v2ray.com/core/proxy/freedom"
  14. "v2ray.com/core/proxy/vmess"
  15. "v2ray.com/core/proxy/vmess/inbound"
  16. "v2ray.com/core/proxy/vmess/outbound"
  17. "v2ray.com/core/testing/servers/tcp"
  18. tlsgen "v2ray.com/core/testing/tls"
  19. "v2ray.com/core/transport/internet"
  20. "v2ray.com/core/transport/internet/tls"
  21. "v2ray.com/core/transport/internet/websocket"
  22. . "v2ray.com/ext/assert"
  23. )
  24. func TestSimpleTLSConnection(t *testing.T) {
  25. assert := With(t)
  26. tcpServer := tcp.Server{
  27. MsgProcessor: xor,
  28. }
  29. dest, err := tcpServer.Start()
  30. assert(err, IsNil)
  31. defer tcpServer.Close()
  32. userID := protocol.NewID(uuid.New())
  33. serverPort := pickPort()
  34. serverConfig := &core.Config{
  35. Inbound: []*proxyman.InboundHandlerConfig{
  36. {
  37. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  38. PortRange: net.SinglePortRange(serverPort),
  39. Listen: net.NewIPOrDomain(net.LocalHostIP),
  40. StreamSettings: &internet.StreamConfig{
  41. SecurityType: serial.GetMessageType(&tls.Config{}),
  42. SecuritySettings: []*serial.TypedMessage{
  43. serial.ToTypedMessage(&tls.Config{
  44. Certificate: []*tls.Certificate{tlsgen.GenerateCertificateForTest()},
  45. }),
  46. },
  47. },
  48. }),
  49. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  50. User: []*protocol.User{
  51. {
  52. Account: serial.ToTypedMessage(&vmess.Account{
  53. Id: userID.String(),
  54. }),
  55. },
  56. },
  57. }),
  58. },
  59. },
  60. Outbound: []*proxyman.OutboundHandlerConfig{
  61. {
  62. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  63. },
  64. },
  65. }
  66. clientPort := pickPort()
  67. clientConfig := &core.Config{
  68. Inbound: []*proxyman.InboundHandlerConfig{
  69. {
  70. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  71. PortRange: net.SinglePortRange(clientPort),
  72. Listen: net.NewIPOrDomain(net.LocalHostIP),
  73. }),
  74. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  75. Address: net.NewIPOrDomain(dest.Address),
  76. Port: uint32(dest.Port),
  77. NetworkList: &net.NetworkList{
  78. Network: []net.Network{net.Network_TCP},
  79. },
  80. }),
  81. },
  82. },
  83. Outbound: []*proxyman.OutboundHandlerConfig{
  84. {
  85. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  86. Receiver: []*protocol.ServerEndpoint{
  87. {
  88. Address: net.NewIPOrDomain(net.LocalHostIP),
  89. Port: uint32(serverPort),
  90. User: []*protocol.User{
  91. {
  92. Account: serial.ToTypedMessage(&vmess.Account{
  93. Id: userID.String(),
  94. }),
  95. },
  96. },
  97. },
  98. },
  99. }),
  100. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  101. StreamSettings: &internet.StreamConfig{
  102. SecurityType: serial.GetMessageType(&tls.Config{}),
  103. SecuritySettings: []*serial.TypedMessage{
  104. serial.ToTypedMessage(&tls.Config{
  105. AllowInsecure: true,
  106. }),
  107. },
  108. },
  109. }),
  110. },
  111. },
  112. }
  113. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  114. assert(err, IsNil)
  115. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  116. IP: []byte{127, 0, 0, 1},
  117. Port: int(clientPort),
  118. })
  119. assert(err, IsNil)
  120. payload := "dokodemo request."
  121. nBytes, err := conn.Write([]byte(payload))
  122. assert(err, IsNil)
  123. assert(nBytes, Equals, len(payload))
  124. response := readFrom(conn, time.Second*2, len(payload))
  125. assert(response, Equals, xor([]byte(payload)))
  126. assert(conn.Close(), IsNil)
  127. CloseAllServers(servers)
  128. }
  129. func TestTLSOverKCP(t *testing.T) {
  130. assert := With(t)
  131. tcpServer := tcp.Server{
  132. MsgProcessor: xor,
  133. }
  134. dest, err := tcpServer.Start()
  135. assert(err, IsNil)
  136. defer tcpServer.Close()
  137. userID := protocol.NewID(uuid.New())
  138. serverPort := pickUDPPort()
  139. serverConfig := &core.Config{
  140. Inbound: []*proxyman.InboundHandlerConfig{
  141. {
  142. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  143. PortRange: net.SinglePortRange(serverPort),
  144. Listen: net.NewIPOrDomain(net.LocalHostIP),
  145. StreamSettings: &internet.StreamConfig{
  146. Protocol: internet.TransportProtocol_MKCP,
  147. SecurityType: serial.GetMessageType(&tls.Config{}),
  148. SecuritySettings: []*serial.TypedMessage{
  149. serial.ToTypedMessage(&tls.Config{
  150. Certificate: []*tls.Certificate{tlsgen.GenerateCertificateForTest()},
  151. }),
  152. },
  153. },
  154. }),
  155. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  156. User: []*protocol.User{
  157. {
  158. Account: serial.ToTypedMessage(&vmess.Account{
  159. Id: userID.String(),
  160. }),
  161. },
  162. },
  163. }),
  164. },
  165. },
  166. Outbound: []*proxyman.OutboundHandlerConfig{
  167. {
  168. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  169. },
  170. },
  171. }
  172. clientPort := pickPort()
  173. clientConfig := &core.Config{
  174. Inbound: []*proxyman.InboundHandlerConfig{
  175. {
  176. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  177. PortRange: net.SinglePortRange(clientPort),
  178. Listen: net.NewIPOrDomain(net.LocalHostIP),
  179. }),
  180. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  181. Address: net.NewIPOrDomain(dest.Address),
  182. Port: uint32(dest.Port),
  183. NetworkList: &net.NetworkList{
  184. Network: []net.Network{net.Network_TCP},
  185. },
  186. }),
  187. },
  188. },
  189. Outbound: []*proxyman.OutboundHandlerConfig{
  190. {
  191. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  192. Receiver: []*protocol.ServerEndpoint{
  193. {
  194. Address: net.NewIPOrDomain(net.LocalHostIP),
  195. Port: uint32(serverPort),
  196. User: []*protocol.User{
  197. {
  198. Account: serial.ToTypedMessage(&vmess.Account{
  199. Id: userID.String(),
  200. }),
  201. },
  202. },
  203. },
  204. },
  205. }),
  206. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  207. StreamSettings: &internet.StreamConfig{
  208. Protocol: internet.TransportProtocol_MKCP,
  209. SecurityType: serial.GetMessageType(&tls.Config{}),
  210. SecuritySettings: []*serial.TypedMessage{
  211. serial.ToTypedMessage(&tls.Config{
  212. AllowInsecure: true,
  213. }),
  214. },
  215. },
  216. }),
  217. },
  218. },
  219. }
  220. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  221. assert(err, IsNil)
  222. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  223. IP: []byte{127, 0, 0, 1},
  224. Port: int(clientPort),
  225. })
  226. assert(err, IsNil)
  227. payload := "dokodemo request."
  228. nBytes, err := conn.Write([]byte(payload))
  229. assert(err, IsNil)
  230. assert(nBytes, Equals, len(payload))
  231. response := readFrom(conn, time.Second*2, len(payload))
  232. assert(response, Equals, xor([]byte(payload)))
  233. assert(conn.Close(), IsNil)
  234. CloseAllServers(servers)
  235. }
  236. func TestTLSOverWebSocket(t *testing.T) {
  237. assert := With(t)
  238. tcpServer := tcp.Server{
  239. MsgProcessor: xor,
  240. }
  241. dest, err := tcpServer.Start()
  242. assert(err, IsNil)
  243. defer tcpServer.Close()
  244. userID := protocol.NewID(uuid.New())
  245. serverPort := pickPort()
  246. serverConfig := &core.Config{
  247. Inbound: []*proxyman.InboundHandlerConfig{
  248. {
  249. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  250. PortRange: net.SinglePortRange(serverPort),
  251. Listen: net.NewIPOrDomain(net.LocalHostIP),
  252. StreamSettings: &internet.StreamConfig{
  253. Protocol: internet.TransportProtocol_WebSocket,
  254. SecurityType: serial.GetMessageType(&tls.Config{}),
  255. SecuritySettings: []*serial.TypedMessage{
  256. serial.ToTypedMessage(&tls.Config{
  257. Certificate: []*tls.Certificate{tlsgen.GenerateCertificateForTest()},
  258. }),
  259. },
  260. },
  261. }),
  262. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  263. User: []*protocol.User{
  264. {
  265. Account: serial.ToTypedMessage(&vmess.Account{
  266. Id: userID.String(),
  267. }),
  268. },
  269. },
  270. }),
  271. },
  272. },
  273. Outbound: []*proxyman.OutboundHandlerConfig{
  274. {
  275. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  276. },
  277. },
  278. }
  279. clientPort := pickPort()
  280. clientConfig := &core.Config{
  281. Inbound: []*proxyman.InboundHandlerConfig{
  282. {
  283. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  284. PortRange: net.SinglePortRange(clientPort),
  285. Listen: net.NewIPOrDomain(net.LocalHostIP),
  286. }),
  287. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  288. Address: net.NewIPOrDomain(dest.Address),
  289. Port: uint32(dest.Port),
  290. NetworkList: &net.NetworkList{
  291. Network: []net.Network{net.Network_TCP},
  292. },
  293. }),
  294. },
  295. },
  296. Outbound: []*proxyman.OutboundHandlerConfig{
  297. {
  298. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  299. Receiver: []*protocol.ServerEndpoint{
  300. {
  301. Address: net.NewIPOrDomain(net.LocalHostIP),
  302. Port: uint32(serverPort),
  303. User: []*protocol.User{
  304. {
  305. Account: serial.ToTypedMessage(&vmess.Account{
  306. Id: userID.String(),
  307. }),
  308. },
  309. },
  310. },
  311. },
  312. }),
  313. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  314. StreamSettings: &internet.StreamConfig{
  315. Protocol: internet.TransportProtocol_WebSocket,
  316. TransportSettings: []*internet.TransportConfig{
  317. {
  318. Protocol: internet.TransportProtocol_WebSocket,
  319. Settings: serial.ToTypedMessage(&websocket.Config{}),
  320. },
  321. },
  322. SecurityType: serial.GetMessageType(&tls.Config{}),
  323. SecuritySettings: []*serial.TypedMessage{
  324. serial.ToTypedMessage(&tls.Config{
  325. AllowInsecure: true,
  326. }),
  327. },
  328. },
  329. }),
  330. },
  331. },
  332. }
  333. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  334. assert(err, IsNil)
  335. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  336. IP: []byte{127, 0, 0, 1},
  337. Port: int(clientPort),
  338. })
  339. assert(err, IsNil)
  340. payload := make([]byte, 10240*1024)
  341. rand.Read(payload)
  342. nBytes, err := conn.Write([]byte(payload))
  343. assert(err, IsNil)
  344. assert(nBytes, Equals, len(payload))
  345. response := readFrom(conn, time.Second*20, len(payload))
  346. assert(response, Equals, xor([]byte(payload)))
  347. assert(conn.Close(), IsNil)
  348. CloseAllServers(servers)
  349. }