vmessout.go 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215
  1. package vmess
  2. import (
  3. "bytes"
  4. "crypto/md5"
  5. "crypto/rand"
  6. mrand "math/rand"
  7. "net"
  8. "sync"
  9. "github.com/v2ray/v2ray-core"
  10. v2io "github.com/v2ray/v2ray-core/common/io"
  11. "github.com/v2ray/v2ray-core/common/log"
  12. v2net "github.com/v2ray/v2ray-core/common/net"
  13. "github.com/v2ray/v2ray-core/proxy/vmess/protocol"
  14. "github.com/v2ray/v2ray-core/proxy/vmess/protocol/user"
  15. )
  16. const (
  17. InfoTimeNotSync = "Please check the User ID in your vmess configuration, and make sure the time on your local and remote server are in sync."
  18. )
  19. // VNext is the next Point server in the connection chain.
  20. type VNextServer struct {
  21. Destination v2net.Destination // Address of VNext server
  22. Users []user.User // User accounts for accessing VNext.
  23. }
  24. type VMessOutboundHandler struct {
  25. vPoint *core.Point
  26. packet v2net.Packet
  27. vNextList []VNextServer
  28. vNextListUDP []VNextServer
  29. }
  30. func NewVMessOutboundHandler(vp *core.Point, vNextList, vNextListUDP []VNextServer, firstPacket v2net.Packet) *VMessOutboundHandler {
  31. return &VMessOutboundHandler{
  32. vPoint: vp,
  33. packet: firstPacket,
  34. vNextList: vNextList,
  35. }
  36. }
  37. func pickVNext(serverList []VNextServer) (v2net.Destination, user.User) {
  38. vNextLen := len(serverList)
  39. if vNextLen == 0 {
  40. panic("VMessOut: Zero vNext is configured.")
  41. }
  42. vNextIndex := 0
  43. if vNextLen > 1 {
  44. vNextIndex = mrand.Intn(vNextLen)
  45. }
  46. vNext := serverList[vNextIndex]
  47. vNextUserLen := len(vNext.Users)
  48. if vNextUserLen == 0 {
  49. panic("VMessOut: Zero User account.")
  50. }
  51. vNextUserIndex := 0
  52. if vNextUserLen > 1 {
  53. vNextUserIndex = mrand.Intn(vNextUserLen)
  54. }
  55. vNextUser := vNext.Users[vNextUserIndex]
  56. return vNext.Destination, vNextUser
  57. }
  58. func (handler *VMessOutboundHandler) Start(ray core.OutboundRay) error {
  59. vNextAddress, vNextUser := pickVNext(handler.vNextList)
  60. command := protocol.CmdTCP
  61. if handler.packet.Destination().IsUDP() {
  62. command = protocol.CmdUDP
  63. }
  64. request := &protocol.VMessRequest{
  65. Version: protocol.Version,
  66. UserId: vNextUser.Id,
  67. Command: command,
  68. Address: handler.packet.Destination().Address(),
  69. }
  70. rand.Read(request.RequestIV[:])
  71. rand.Read(request.RequestKey[:])
  72. rand.Read(request.ResponseHeader[:])
  73. go startCommunicate(request, vNextAddress, ray, handler.packet)
  74. return nil
  75. }
  76. func startCommunicate(request *protocol.VMessRequest, dest v2net.Destination, ray core.OutboundRay, firstPacket v2net.Packet) error {
  77. conn, err := net.DialTCP(dest.Network(), nil, &net.TCPAddr{dest.Address().IP(), int(dest.Address().Port()), ""})
  78. if err != nil {
  79. log.Error("Failed to open tcp (%s): %v", dest.String(), err)
  80. if ray != nil {
  81. close(ray.OutboundOutput())
  82. }
  83. return err
  84. }
  85. log.Info("VMessOut: Tunneling request for %s", request.Address.String())
  86. defer conn.Close()
  87. input := ray.OutboundInput()
  88. output := ray.OutboundOutput()
  89. var requestFinish, responseFinish sync.Mutex
  90. requestFinish.Lock()
  91. responseFinish.Lock()
  92. go handleRequest(conn, request, firstPacket, input, &requestFinish)
  93. go handleResponse(conn, request, output, &responseFinish)
  94. requestFinish.Lock()
  95. conn.CloseWrite()
  96. responseFinish.Lock()
  97. return nil
  98. }
  99. func handleRequest(conn *net.TCPConn, request *protocol.VMessRequest, firstPacket v2net.Packet, input <-chan []byte, finish *sync.Mutex) {
  100. defer finish.Unlock()
  101. encryptRequestWriter, err := v2io.NewAesEncryptWriter(request.RequestKey[:], request.RequestIV[:], conn)
  102. if err != nil {
  103. log.Error("VMessOut: Failed to create encrypt writer: %v", err)
  104. return
  105. }
  106. buffer := make([]byte, 0, 2*1024)
  107. buffer, err = request.ToBytes(user.NewTimeHash(user.HMACHash{}), user.GenerateRandomInt64InRange, buffer)
  108. if err != nil {
  109. log.Error("VMessOut: Failed to serialize VMess request: %v", err)
  110. return
  111. }
  112. // Send first packet of payload together with request, in favor of small requests.
  113. firstChunk := firstPacket.Chunk()
  114. moreChunks := firstPacket.MoreChunks()
  115. if firstChunk == nil && moreChunks {
  116. firstChunk, moreChunks = <-input
  117. }
  118. if firstChunk != nil {
  119. encryptRequestWriter.Crypt(firstChunk)
  120. buffer = append(buffer, firstChunk...)
  121. _, err = conn.Write(buffer)
  122. if err != nil {
  123. log.Error("VMessOut: Failed to write VMess request: %v", err)
  124. return
  125. }
  126. }
  127. if moreChunks {
  128. v2net.ChanToWriter(encryptRequestWriter, input)
  129. }
  130. return
  131. }
  132. func handleResponse(conn *net.TCPConn, request *protocol.VMessRequest, output chan<- []byte, finish *sync.Mutex) {
  133. defer finish.Unlock()
  134. defer close(output)
  135. responseKey := md5.Sum(request.RequestKey[:])
  136. responseIV := md5.Sum(request.RequestIV[:])
  137. decryptResponseReader, err := v2io.NewAesDecryptReader(responseKey[:], responseIV[:], conn)
  138. if err != nil {
  139. log.Error("VMessOut: Failed to create decrypt reader: %v", err)
  140. return
  141. }
  142. response := protocol.VMessResponse{}
  143. _, err = decryptResponseReader.Read(response[:])
  144. if err != nil {
  145. //log.Error("VMessOut: Failed to read VMess response (%d bytes): %v", nBytes, err)
  146. return
  147. }
  148. if !bytes.Equal(response[:], request.ResponseHeader[:]) {
  149. log.Warning("VMessOut: unexepcted response header. The connection is probably hijacked.")
  150. return
  151. }
  152. v2net.ReaderToChan(output, decryptResponseReader)
  153. return
  154. }
  155. type VMessOutboundHandlerFactory struct {
  156. servers []VNextServer
  157. udpServers []VNextServer
  158. }
  159. func (factory *VMessOutboundHandlerFactory) Initialize(rawConfig []byte) error {
  160. config, err := loadOutboundConfig(rawConfig)
  161. if err != nil {
  162. panic(log.Error("Failed to load VMess outbound config: %v", err))
  163. return err
  164. }
  165. servers := make([]VNextServer, 0, len(config.VNextList))
  166. udpServers := make([]VNextServer, 0, len(config.VNextList))
  167. for _, server := range config.VNextList {
  168. if server.HasNetwork("tcp") {
  169. servers = append(servers, server.ToVNextServer())
  170. }
  171. if server.HasNetwork("udp") {
  172. udpServers = append(udpServers, server.ToVNextServer())
  173. }
  174. }
  175. factory.servers = servers
  176. factory.udpServers = udpServers
  177. return nil
  178. }
  179. func (factory *VMessOutboundHandlerFactory) Create(vp *core.Point, firstPacket v2net.Packet) (core.OutboundConnectionHandler, error) {
  180. return NewVMessOutboundHandler(vp, factory.servers, factory.udpServers, firstPacket), nil
  181. }
  182. func init() {
  183. core.RegisterOutboundConnectionHandlerFactory("vmess", &VMessOutboundHandlerFactory{})
  184. }