vmessout.go 5.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206
  1. package vmess
  2. import (
  3. "bytes"
  4. "crypto/md5"
  5. "crypto/rand"
  6. mrand "math/rand"
  7. "net"
  8. "sync"
  9. "github.com/v2ray/v2ray-core"
  10. v2io "github.com/v2ray/v2ray-core/common/io"
  11. "github.com/v2ray/v2ray-core/common/log"
  12. v2net "github.com/v2ray/v2ray-core/common/net"
  13. "github.com/v2ray/v2ray-core/proxy/vmess/protocol"
  14. "github.com/v2ray/v2ray-core/proxy/vmess/protocol/user"
  15. )
  16. const (
  17. InfoTimeNotSync = "Please check the User ID in your vmess configuration, and make sure the time on your local and remote server are in sync."
  18. )
  19. // VNext is the next Point server in the connection chain.
  20. type VNextServer struct {
  21. Destination v2net.Destination // Address of VNext server
  22. Users []user.User // User accounts for accessing VNext.
  23. }
  24. type VMessOutboundHandler struct {
  25. vPoint *core.Point
  26. packet v2net.Packet
  27. vNextList []VNextServer
  28. }
  29. func NewVMessOutboundHandler(vp *core.Point, vNextList []VNextServer, firstPacket v2net.Packet) *VMessOutboundHandler {
  30. return &VMessOutboundHandler{
  31. vPoint: vp,
  32. packet: firstPacket,
  33. vNextList: vNextList,
  34. }
  35. }
  36. func (handler *VMessOutboundHandler) pickVNext() (v2net.Destination, user.User) {
  37. vNextLen := len(handler.vNextList)
  38. if vNextLen == 0 {
  39. panic("VMessOut: Zero vNext is configured.")
  40. }
  41. vNextIndex := 0
  42. if vNextLen > 1 {
  43. vNextIndex = mrand.Intn(vNextLen)
  44. }
  45. vNext := handler.vNextList[vNextIndex]
  46. vNextUserLen := len(vNext.Users)
  47. if vNextUserLen == 0 {
  48. panic("VMessOut: Zero User account.")
  49. }
  50. vNextUserIndex := 0
  51. if vNextUserLen > 1 {
  52. vNextUserIndex = mrand.Intn(vNextUserLen)
  53. }
  54. vNextUser := vNext.Users[vNextUserIndex]
  55. return vNext.Destination, vNextUser
  56. }
  57. func (handler *VMessOutboundHandler) Start(ray core.OutboundRay) error {
  58. vNextAddress, vNextUser := handler.pickVNext()
  59. command := protocol.CmdTCP
  60. if handler.packet.Destination().IsUDP() {
  61. command = protocol.CmdUDP
  62. }
  63. request := &protocol.VMessRequest{
  64. Version: protocol.Version,
  65. UserId: vNextUser.Id,
  66. Command: command,
  67. Address: handler.packet.Destination().Address(),
  68. }
  69. rand.Read(request.RequestIV[:])
  70. rand.Read(request.RequestKey[:])
  71. rand.Read(request.ResponseHeader[:])
  72. go startCommunicate(request, vNextAddress, ray, handler.packet)
  73. return nil
  74. }
  75. func startCommunicate(request *protocol.VMessRequest, dest v2net.Destination, ray core.OutboundRay, firstPacket v2net.Packet) error {
  76. conn, err := net.DialTCP(dest.Network(), nil, &net.TCPAddr{dest.Address().IP(), int(dest.Address().Port()), ""})
  77. if err != nil {
  78. log.Error("Failed to open tcp (%s): %v", dest.String(), err)
  79. if ray != nil {
  80. close(ray.OutboundOutput())
  81. }
  82. return err
  83. }
  84. log.Info("VMessOut: Tunneling request for %s", request.Address.String())
  85. defer conn.Close()
  86. input := ray.OutboundInput()
  87. output := ray.OutboundOutput()
  88. var requestFinish, responseFinish sync.Mutex
  89. requestFinish.Lock()
  90. responseFinish.Lock()
  91. go handleRequest(conn, request, firstPacket, input, &requestFinish)
  92. go handleResponse(conn, request, output, &responseFinish)
  93. requestFinish.Lock()
  94. conn.CloseWrite()
  95. responseFinish.Lock()
  96. return nil
  97. }
  98. func handleRequest(conn *net.TCPConn, request *protocol.VMessRequest, firstPacket v2net.Packet, input <-chan []byte, finish *sync.Mutex) {
  99. defer finish.Unlock()
  100. encryptRequestWriter, err := v2io.NewAesEncryptWriter(request.RequestKey[:], request.RequestIV[:], conn)
  101. if err != nil {
  102. log.Error("VMessOut: Failed to create encrypt writer: %v", err)
  103. return
  104. }
  105. buffer := make([]byte, 0, 2*1024)
  106. buffer, err = request.ToBytes(user.NewTimeHash(user.HMACHash{}), user.GenerateRandomInt64InRange, buffer)
  107. if err != nil {
  108. log.Error("VMessOut: Failed to serialize VMess request: %v", err)
  109. return
  110. }
  111. // Send first packet of payload together with request, in favor of small requests.
  112. firstChunk := firstPacket.Chunk()
  113. moreChunks := firstPacket.MoreChunks()
  114. if firstChunk == nil && moreChunks {
  115. firstChunk, moreChunks = <-input
  116. }
  117. if firstChunk != nil {
  118. encryptRequestWriter.Crypt(firstChunk)
  119. buffer = append(buffer, firstChunk...)
  120. _, err = conn.Write(buffer)
  121. if err != nil {
  122. log.Error("VMessOut: Failed to write VMess request: %v", err)
  123. return
  124. }
  125. }
  126. if moreChunks {
  127. v2net.ChanToWriter(encryptRequestWriter, input)
  128. }
  129. return
  130. }
  131. func handleResponse(conn *net.TCPConn, request *protocol.VMessRequest, output chan<- []byte, finish *sync.Mutex) {
  132. defer finish.Unlock()
  133. defer close(output)
  134. responseKey := md5.Sum(request.RequestKey[:])
  135. responseIV := md5.Sum(request.RequestIV[:])
  136. decryptResponseReader, err := v2io.NewAesDecryptReader(responseKey[:], responseIV[:], conn)
  137. if err != nil {
  138. log.Error("VMessOut: Failed to create decrypt reader: %v", err)
  139. return
  140. }
  141. response := protocol.VMessResponse{}
  142. _, err = decryptResponseReader.Read(response[:])
  143. if err != nil {
  144. //log.Error("VMessOut: Failed to read VMess response (%d bytes): %v", nBytes, err)
  145. return
  146. }
  147. if !bytes.Equal(response[:], request.ResponseHeader[:]) {
  148. log.Warning("VMessOut: unexepcted response header. The connection is probably hijacked.")
  149. return
  150. }
  151. v2net.ReaderToChan(output, decryptResponseReader)
  152. return
  153. }
  154. type VMessOutboundHandlerFactory struct {
  155. servers []VNextServer
  156. }
  157. func (factory *VMessOutboundHandlerFactory) Initialize(rawConfig []byte) error {
  158. config, err := loadOutboundConfig(rawConfig)
  159. if err != nil {
  160. panic(log.Error("Failed to load VMess outbound config: %v", err))
  161. return err
  162. }
  163. servers := make([]VNextServer, 0, len(config.VNextList))
  164. for _, server := range config.VNextList {
  165. servers = append(servers, server.ToVNextServer())
  166. }
  167. factory.servers = servers
  168. return nil
  169. }
  170. func (factory *VMessOutboundHandlerFactory) Create(vp *core.Point, firstPacket v2net.Packet) (core.OutboundConnectionHandler, error) {
  171. return NewVMessOutboundHandler(vp, factory.servers, firstPacket), nil
  172. }
  173. func init() {
  174. core.RegisterOutboundConnectionHandlerFactory("vmess", &VMessOutboundHandlerFactory{})
  175. }