vmessin.go 4.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154
  1. package vmess
  2. import (
  3. "crypto/md5"
  4. "io"
  5. "net"
  6. "strconv"
  7. "sync"
  8. "time"
  9. "github.com/v2ray/v2ray-core"
  10. v2io "github.com/v2ray/v2ray-core/common/io"
  11. "github.com/v2ray/v2ray-core/common/log"
  12. v2net "github.com/v2ray/v2ray-core/common/net"
  13. "github.com/v2ray/v2ray-core/proxy/vmess/protocol"
  14. "github.com/v2ray/v2ray-core/proxy/vmess/protocol/user"
  15. )
  16. const (
  17. requestReadTimeOut = 4 * time.Second
  18. )
  19. var (
  20. zeroTime time.Time
  21. )
  22. type VMessInboundHandler struct {
  23. vPoint *core.Point
  24. clients user.UserSet
  25. accepting bool
  26. }
  27. func NewVMessInboundHandler(vp *core.Point, clients user.UserSet) *VMessInboundHandler {
  28. return &VMessInboundHandler{
  29. vPoint: vp,
  30. clients: clients,
  31. }
  32. }
  33. func (handler *VMessInboundHandler) Listen(port uint16) error {
  34. listener, err := net.Listen("tcp", ":"+strconv.Itoa(int(port)))
  35. if err != nil {
  36. return log.Error("Unable to listen tcp:%d", port)
  37. }
  38. handler.accepting = true
  39. go handler.AcceptConnections(listener)
  40. return nil
  41. }
  42. func (handler *VMessInboundHandler) AcceptConnections(listener net.Listener) error {
  43. for handler.accepting {
  44. connection, err := listener.Accept()
  45. if err != nil {
  46. return log.Error("Failed to accpet connection: %s", err.Error())
  47. }
  48. go handler.HandleConnection(connection)
  49. }
  50. return nil
  51. }
  52. func (handler *VMessInboundHandler) HandleConnection(connection net.Conn) error {
  53. defer connection.Close()
  54. reader := protocol.NewVMessRequestReader(handler.clients)
  55. // Timeout 4 seconds to prevent DoS attack
  56. connection.SetReadDeadline(time.Now().Add(requestReadTimeOut))
  57. request, err := reader.Read(connection)
  58. if err != nil {
  59. log.Warning("VMessIn: Invalid request from (%s): %v", connection.RemoteAddr().String(), err)
  60. return err
  61. }
  62. log.Debug("VMessIn: Received request for %s", request.Address.String())
  63. // Clear read timeout
  64. connection.SetReadDeadline(zeroTime)
  65. ray := handler.vPoint.DispatchToOutbound(v2net.NewTCPPacket(request.Destination()))
  66. input := ray.InboundInput()
  67. output := ray.InboundOutput()
  68. var readFinish, writeFinish sync.Mutex
  69. readFinish.Lock()
  70. writeFinish.Lock()
  71. go handleInput(request, connection, input, &readFinish)
  72. responseKey := md5.Sum(request.RequestKey[:])
  73. responseIV := md5.Sum(request.RequestIV[:])
  74. response := protocol.NewVMessResponse(request)
  75. responseWriter, err := v2io.NewAesEncryptWriter(responseKey[:], responseIV[:], connection)
  76. if err != nil {
  77. return log.Error("VMessIn: Failed to create encrypt writer: %v", err)
  78. }
  79. // Optimize for small response packet
  80. buffer := make([]byte, 0, 2*1024)
  81. buffer = append(buffer, response[:]...)
  82. if data, open := <-output; open {
  83. buffer = append(buffer, data...)
  84. responseWriter.Write(buffer)
  85. go handleOutput(request, responseWriter, output, &writeFinish)
  86. writeFinish.Lock()
  87. }
  88. if tcpConn, ok := connection.(*net.TCPConn); ok {
  89. tcpConn.CloseWrite()
  90. }
  91. readFinish.Lock()
  92. return nil
  93. }
  94. func handleInput(request *protocol.VMessRequest, reader io.Reader, input chan<- []byte, finish *sync.Mutex) {
  95. defer close(input)
  96. defer finish.Unlock()
  97. requestReader, err := v2io.NewAesDecryptReader(request.RequestKey[:], request.RequestIV[:], reader)
  98. if err != nil {
  99. log.Error("VMessIn: Failed to create decrypt reader: %v", err)
  100. return
  101. }
  102. v2net.ReaderToChan(input, requestReader)
  103. }
  104. func handleOutput(request *protocol.VMessRequest, writer io.Writer, output <-chan []byte, finish *sync.Mutex) {
  105. v2net.ChanToWriter(writer, output)
  106. finish.Unlock()
  107. }
  108. type VMessInboundHandlerFactory struct {
  109. }
  110. func (factory *VMessInboundHandlerFactory) Create(vp *core.Point, rawConfig []byte) (core.InboundConnectionHandler, error) {
  111. config, err := loadInboundConfig(rawConfig)
  112. if err != nil {
  113. panic(log.Error("VMessIn: Failed to load VMess inbound config: %v", err))
  114. }
  115. allowedClients := user.NewTimedUserSet()
  116. for _, client := range config.AllowedClients {
  117. user, err := client.ToUser()
  118. if err != nil {
  119. panic(log.Error("VMessIn: Failed to parse user id %s: %v", client.Id, err))
  120. }
  121. allowedClients.AddUser(user)
  122. }
  123. return NewVMessInboundHandler(vp, allowedClients), nil
  124. }
  125. func init() {
  126. core.RegisterInboundConnectionHandlerFactory("vmess", &VMessInboundHandlerFactory{})
  127. }