tls_test.go 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662
  1. package scenarios
  2. import (
  3. "crypto/rand"
  4. "crypto/x509"
  5. "runtime"
  6. "sync"
  7. "testing"
  8. "time"
  9. "v2ray.com/core"
  10. "v2ray.com/core/app/proxyman"
  11. "v2ray.com/core/common/net"
  12. "v2ray.com/core/common/protocol"
  13. "v2ray.com/core/common/protocol/tls/cert"
  14. "v2ray.com/core/common/serial"
  15. "v2ray.com/core/common/uuid"
  16. "v2ray.com/core/proxy/dokodemo"
  17. "v2ray.com/core/proxy/freedom"
  18. "v2ray.com/core/proxy/vmess"
  19. "v2ray.com/core/proxy/vmess/inbound"
  20. "v2ray.com/core/proxy/vmess/outbound"
  21. "v2ray.com/core/testing/servers/tcp"
  22. "v2ray.com/core/testing/servers/udp"
  23. "v2ray.com/core/transport/internet"
  24. "v2ray.com/core/transport/internet/http"
  25. "v2ray.com/core/transport/internet/tls"
  26. "v2ray.com/core/transport/internet/websocket"
  27. . "v2ray.com/ext/assert"
  28. )
  29. func TestSimpleTLSConnection(t *testing.T) {
  30. assert := With(t)
  31. tcpServer := tcp.Server{
  32. MsgProcessor: xor,
  33. }
  34. dest, err := tcpServer.Start()
  35. assert(err, IsNil)
  36. defer tcpServer.Close()
  37. userID := protocol.NewID(uuid.New())
  38. serverPort := tcp.PickPort()
  39. serverConfig := &core.Config{
  40. Inbound: []*core.InboundHandlerConfig{
  41. {
  42. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  43. PortRange: net.SinglePortRange(serverPort),
  44. Listen: net.NewIPOrDomain(net.LocalHostIP),
  45. StreamSettings: &internet.StreamConfig{
  46. SecurityType: serial.GetMessageType(&tls.Config{}),
  47. SecuritySettings: []*serial.TypedMessage{
  48. serial.ToTypedMessage(&tls.Config{
  49. Certificate: []*tls.Certificate{tls.ParseCertificate(cert.MustGenerate(nil))},
  50. }),
  51. },
  52. },
  53. }),
  54. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  55. User: []*protocol.User{
  56. {
  57. Account: serial.ToTypedMessage(&vmess.Account{
  58. Id: userID.String(),
  59. }),
  60. },
  61. },
  62. }),
  63. },
  64. },
  65. Outbound: []*core.OutboundHandlerConfig{
  66. {
  67. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  68. },
  69. },
  70. }
  71. clientPort := tcp.PickPort()
  72. clientConfig := &core.Config{
  73. Inbound: []*core.InboundHandlerConfig{
  74. {
  75. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  76. PortRange: net.SinglePortRange(clientPort),
  77. Listen: net.NewIPOrDomain(net.LocalHostIP),
  78. }),
  79. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  80. Address: net.NewIPOrDomain(dest.Address),
  81. Port: uint32(dest.Port),
  82. NetworkList: &net.NetworkList{
  83. Network: []net.Network{net.Network_TCP},
  84. },
  85. }),
  86. },
  87. },
  88. Outbound: []*core.OutboundHandlerConfig{
  89. {
  90. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  91. Receiver: []*protocol.ServerEndpoint{
  92. {
  93. Address: net.NewIPOrDomain(net.LocalHostIP),
  94. Port: uint32(serverPort),
  95. User: []*protocol.User{
  96. {
  97. Account: serial.ToTypedMessage(&vmess.Account{
  98. Id: userID.String(),
  99. }),
  100. },
  101. },
  102. },
  103. },
  104. }),
  105. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  106. StreamSettings: &internet.StreamConfig{
  107. SecurityType: serial.GetMessageType(&tls.Config{}),
  108. SecuritySettings: []*serial.TypedMessage{
  109. serial.ToTypedMessage(&tls.Config{
  110. AllowInsecure: true,
  111. }),
  112. },
  113. },
  114. }),
  115. },
  116. },
  117. }
  118. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  119. assert(err, IsNil)
  120. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  121. IP: []byte{127, 0, 0, 1},
  122. Port: int(clientPort),
  123. })
  124. assert(err, IsNil)
  125. payload := "dokodemo request."
  126. nBytes, err := conn.Write([]byte(payload))
  127. assert(err, IsNil)
  128. assert(nBytes, Equals, len(payload))
  129. response := readFrom(conn, time.Second*2, len(payload))
  130. assert(response, Equals, xor([]byte(payload)))
  131. assert(conn.Close(), IsNil)
  132. CloseAllServers(servers)
  133. }
  134. func TestAutoIssuingCertificate(t *testing.T) {
  135. if runtime.GOOS == "windows" {
  136. // Not supported on Windows yet.
  137. return
  138. }
  139. if runtime.GOARCH == "arm64" {
  140. return
  141. }
  142. assert := With(t)
  143. tcpServer := tcp.Server{
  144. MsgProcessor: xor,
  145. }
  146. dest, err := tcpServer.Start()
  147. assert(err, IsNil)
  148. defer tcpServer.Close()
  149. caCert, err := cert.Generate(nil, cert.Authority(true), cert.KeyUsage(x509.KeyUsageDigitalSignature|x509.KeyUsageKeyEncipherment|x509.KeyUsageCertSign))
  150. assert(err, IsNil)
  151. certPEM, keyPEM := caCert.ToPEM()
  152. userID := protocol.NewID(uuid.New())
  153. serverPort := tcp.PickPort()
  154. serverConfig := &core.Config{
  155. Inbound: []*core.InboundHandlerConfig{
  156. {
  157. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  158. PortRange: net.SinglePortRange(serverPort),
  159. Listen: net.NewIPOrDomain(net.LocalHostIP),
  160. StreamSettings: &internet.StreamConfig{
  161. SecurityType: serial.GetMessageType(&tls.Config{}),
  162. SecuritySettings: []*serial.TypedMessage{
  163. serial.ToTypedMessage(&tls.Config{
  164. Certificate: []*tls.Certificate{{
  165. Certificate: certPEM,
  166. Key: keyPEM,
  167. Usage: tls.Certificate_AUTHORITY_ISSUE,
  168. }},
  169. }),
  170. },
  171. },
  172. }),
  173. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  174. User: []*protocol.User{
  175. {
  176. Account: serial.ToTypedMessage(&vmess.Account{
  177. Id: userID.String(),
  178. }),
  179. },
  180. },
  181. }),
  182. },
  183. },
  184. Outbound: []*core.OutboundHandlerConfig{
  185. {
  186. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  187. },
  188. },
  189. }
  190. clientPort := tcp.PickPort()
  191. clientConfig := &core.Config{
  192. Inbound: []*core.InboundHandlerConfig{
  193. {
  194. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  195. PortRange: net.SinglePortRange(clientPort),
  196. Listen: net.NewIPOrDomain(net.LocalHostIP),
  197. }),
  198. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  199. Address: net.NewIPOrDomain(dest.Address),
  200. Port: uint32(dest.Port),
  201. NetworkList: &net.NetworkList{
  202. Network: []net.Network{net.Network_TCP},
  203. },
  204. }),
  205. },
  206. },
  207. Outbound: []*core.OutboundHandlerConfig{
  208. {
  209. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  210. Receiver: []*protocol.ServerEndpoint{
  211. {
  212. Address: net.NewIPOrDomain(net.LocalHostIP),
  213. Port: uint32(serverPort),
  214. User: []*protocol.User{
  215. {
  216. Account: serial.ToTypedMessage(&vmess.Account{
  217. Id: userID.String(),
  218. }),
  219. },
  220. },
  221. },
  222. },
  223. }),
  224. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  225. StreamSettings: &internet.StreamConfig{
  226. SecurityType: serial.GetMessageType(&tls.Config{}),
  227. SecuritySettings: []*serial.TypedMessage{
  228. serial.ToTypedMessage(&tls.Config{
  229. ServerName: "v2ray.com",
  230. Certificate: []*tls.Certificate{{
  231. Certificate: certPEM,
  232. Usage: tls.Certificate_AUTHORITY_VERIFY,
  233. }},
  234. }),
  235. },
  236. },
  237. }),
  238. },
  239. },
  240. }
  241. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  242. assert(err, IsNil)
  243. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  244. IP: []byte{127, 0, 0, 1},
  245. Port: int(clientPort),
  246. })
  247. assert(err, IsNil)
  248. payload := "dokodemo request."
  249. nBytes, err := conn.Write([]byte(payload))
  250. assert(err, IsNil)
  251. assert(nBytes, Equals, len(payload))
  252. response := readFrom(conn, time.Second*2, len(payload))
  253. assert(response, Equals, xor([]byte(payload)))
  254. assert(conn.Close(), IsNil)
  255. CloseAllServers(servers)
  256. }
  257. func TestTLSOverKCP(t *testing.T) {
  258. assert := With(t)
  259. tcpServer := tcp.Server{
  260. MsgProcessor: xor,
  261. }
  262. dest, err := tcpServer.Start()
  263. assert(err, IsNil)
  264. defer tcpServer.Close()
  265. userID := protocol.NewID(uuid.New())
  266. serverPort := udp.PickPort()
  267. serverConfig := &core.Config{
  268. Inbound: []*core.InboundHandlerConfig{
  269. {
  270. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  271. PortRange: net.SinglePortRange(serverPort),
  272. Listen: net.NewIPOrDomain(net.LocalHostIP),
  273. StreamSettings: &internet.StreamConfig{
  274. Protocol: internet.TransportProtocol_MKCP,
  275. SecurityType: serial.GetMessageType(&tls.Config{}),
  276. SecuritySettings: []*serial.TypedMessage{
  277. serial.ToTypedMessage(&tls.Config{
  278. Certificate: []*tls.Certificate{tls.ParseCertificate(cert.MustGenerate(nil))},
  279. }),
  280. },
  281. },
  282. }),
  283. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  284. User: []*protocol.User{
  285. {
  286. Account: serial.ToTypedMessage(&vmess.Account{
  287. Id: userID.String(),
  288. }),
  289. },
  290. },
  291. }),
  292. },
  293. },
  294. Outbound: []*core.OutboundHandlerConfig{
  295. {
  296. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  297. },
  298. },
  299. }
  300. clientPort := tcp.PickPort()
  301. clientConfig := &core.Config{
  302. Inbound: []*core.InboundHandlerConfig{
  303. {
  304. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  305. PortRange: net.SinglePortRange(clientPort),
  306. Listen: net.NewIPOrDomain(net.LocalHostIP),
  307. }),
  308. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  309. Address: net.NewIPOrDomain(dest.Address),
  310. Port: uint32(dest.Port),
  311. NetworkList: &net.NetworkList{
  312. Network: []net.Network{net.Network_TCP},
  313. },
  314. }),
  315. },
  316. },
  317. Outbound: []*core.OutboundHandlerConfig{
  318. {
  319. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  320. Receiver: []*protocol.ServerEndpoint{
  321. {
  322. Address: net.NewIPOrDomain(net.LocalHostIP),
  323. Port: uint32(serverPort),
  324. User: []*protocol.User{
  325. {
  326. Account: serial.ToTypedMessage(&vmess.Account{
  327. Id: userID.String(),
  328. }),
  329. },
  330. },
  331. },
  332. },
  333. }),
  334. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  335. StreamSettings: &internet.StreamConfig{
  336. Protocol: internet.TransportProtocol_MKCP,
  337. SecurityType: serial.GetMessageType(&tls.Config{}),
  338. SecuritySettings: []*serial.TypedMessage{
  339. serial.ToTypedMessage(&tls.Config{
  340. AllowInsecure: true,
  341. }),
  342. },
  343. },
  344. }),
  345. },
  346. },
  347. }
  348. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  349. assert(err, IsNil)
  350. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  351. IP: []byte{127, 0, 0, 1},
  352. Port: int(clientPort),
  353. })
  354. assert(err, IsNil)
  355. payload := "dokodemo request."
  356. nBytes, err := conn.Write([]byte(payload))
  357. assert(err, IsNil)
  358. assert(nBytes, Equals, len(payload))
  359. response := readFrom(conn, time.Second*2, len(payload))
  360. assert(response, Equals, xor([]byte(payload)))
  361. assert(conn.Close(), IsNil)
  362. CloseAllServers(servers)
  363. }
  364. func TestTLSOverWebSocket(t *testing.T) {
  365. assert := With(t)
  366. tcpServer := tcp.Server{
  367. MsgProcessor: xor,
  368. }
  369. dest, err := tcpServer.Start()
  370. assert(err, IsNil)
  371. defer tcpServer.Close()
  372. userID := protocol.NewID(uuid.New())
  373. serverPort := tcp.PickPort()
  374. serverConfig := &core.Config{
  375. Inbound: []*core.InboundHandlerConfig{
  376. {
  377. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  378. PortRange: net.SinglePortRange(serverPort),
  379. Listen: net.NewIPOrDomain(net.LocalHostIP),
  380. StreamSettings: &internet.StreamConfig{
  381. Protocol: internet.TransportProtocol_WebSocket,
  382. SecurityType: serial.GetMessageType(&tls.Config{}),
  383. SecuritySettings: []*serial.TypedMessage{
  384. serial.ToTypedMessage(&tls.Config{
  385. Certificate: []*tls.Certificate{tls.ParseCertificate(cert.MustGenerate(nil))},
  386. }),
  387. },
  388. },
  389. }),
  390. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  391. User: []*protocol.User{
  392. {
  393. Account: serial.ToTypedMessage(&vmess.Account{
  394. Id: userID.String(),
  395. }),
  396. },
  397. },
  398. }),
  399. },
  400. },
  401. Outbound: []*core.OutboundHandlerConfig{
  402. {
  403. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  404. },
  405. },
  406. }
  407. clientPort := tcp.PickPort()
  408. clientConfig := &core.Config{
  409. Inbound: []*core.InboundHandlerConfig{
  410. {
  411. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  412. PortRange: net.SinglePortRange(clientPort),
  413. Listen: net.NewIPOrDomain(net.LocalHostIP),
  414. }),
  415. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  416. Address: net.NewIPOrDomain(dest.Address),
  417. Port: uint32(dest.Port),
  418. NetworkList: &net.NetworkList{
  419. Network: []net.Network{net.Network_TCP},
  420. },
  421. }),
  422. },
  423. },
  424. Outbound: []*core.OutboundHandlerConfig{
  425. {
  426. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  427. Receiver: []*protocol.ServerEndpoint{
  428. {
  429. Address: net.NewIPOrDomain(net.LocalHostIP),
  430. Port: uint32(serverPort),
  431. User: []*protocol.User{
  432. {
  433. Account: serial.ToTypedMessage(&vmess.Account{
  434. Id: userID.String(),
  435. }),
  436. },
  437. },
  438. },
  439. },
  440. }),
  441. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  442. StreamSettings: &internet.StreamConfig{
  443. Protocol: internet.TransportProtocol_WebSocket,
  444. TransportSettings: []*internet.TransportConfig{
  445. {
  446. Protocol: internet.TransportProtocol_WebSocket,
  447. Settings: serial.ToTypedMessage(&websocket.Config{}),
  448. },
  449. },
  450. SecurityType: serial.GetMessageType(&tls.Config{}),
  451. SecuritySettings: []*serial.TypedMessage{
  452. serial.ToTypedMessage(&tls.Config{
  453. AllowInsecure: true,
  454. }),
  455. },
  456. },
  457. }),
  458. },
  459. },
  460. }
  461. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  462. assert(err, IsNil)
  463. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  464. IP: []byte{127, 0, 0, 1},
  465. Port: int(clientPort),
  466. })
  467. assert(err, IsNil)
  468. payload := make([]byte, 10240*1024)
  469. rand.Read(payload)
  470. nBytes, err := conn.Write([]byte(payload))
  471. assert(err, IsNil)
  472. assert(nBytes, Equals, len(payload))
  473. response := readFrom(conn, time.Second*20, len(payload))
  474. assert(response, Equals, xor([]byte(payload)))
  475. assert(conn.Close(), IsNil)
  476. CloseAllServers(servers)
  477. }
  478. func TestHTTP2(t *testing.T) {
  479. assert := With(t)
  480. tcpServer := tcp.Server{
  481. MsgProcessor: xor,
  482. }
  483. dest, err := tcpServer.Start()
  484. assert(err, IsNil)
  485. defer tcpServer.Close()
  486. userID := protocol.NewID(uuid.New())
  487. serverPort := tcp.PickPort()
  488. serverConfig := &core.Config{
  489. Inbound: []*core.InboundHandlerConfig{
  490. {
  491. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  492. PortRange: net.SinglePortRange(serverPort),
  493. Listen: net.NewIPOrDomain(net.LocalHostIP),
  494. StreamSettings: &internet.StreamConfig{
  495. Protocol: internet.TransportProtocol_HTTP,
  496. TransportSettings: []*internet.TransportConfig{
  497. {
  498. Protocol: internet.TransportProtocol_HTTP,
  499. Settings: serial.ToTypedMessage(&http.Config{
  500. Host: []string{"v2ray.com"},
  501. Path: "/testpath",
  502. }),
  503. },
  504. },
  505. SecurityType: serial.GetMessageType(&tls.Config{}),
  506. SecuritySettings: []*serial.TypedMessage{
  507. serial.ToTypedMessage(&tls.Config{
  508. Certificate: []*tls.Certificate{tls.ParseCertificate(cert.MustGenerate(nil))},
  509. }),
  510. },
  511. },
  512. }),
  513. ProxySettings: serial.ToTypedMessage(&inbound.Config{
  514. User: []*protocol.User{
  515. {
  516. Account: serial.ToTypedMessage(&vmess.Account{
  517. Id: userID.String(),
  518. }),
  519. },
  520. },
  521. }),
  522. },
  523. },
  524. Outbound: []*core.OutboundHandlerConfig{
  525. {
  526. ProxySettings: serial.ToTypedMessage(&freedom.Config{}),
  527. },
  528. },
  529. }
  530. clientPort := tcp.PickPort()
  531. clientConfig := &core.Config{
  532. Inbound: []*core.InboundHandlerConfig{
  533. {
  534. ReceiverSettings: serial.ToTypedMessage(&proxyman.ReceiverConfig{
  535. PortRange: net.SinglePortRange(clientPort),
  536. Listen: net.NewIPOrDomain(net.LocalHostIP),
  537. }),
  538. ProxySettings: serial.ToTypedMessage(&dokodemo.Config{
  539. Address: net.NewIPOrDomain(dest.Address),
  540. Port: uint32(dest.Port),
  541. NetworkList: &net.NetworkList{
  542. Network: []net.Network{net.Network_TCP},
  543. },
  544. }),
  545. },
  546. },
  547. Outbound: []*core.OutboundHandlerConfig{
  548. {
  549. ProxySettings: serial.ToTypedMessage(&outbound.Config{
  550. Receiver: []*protocol.ServerEndpoint{
  551. {
  552. Address: net.NewIPOrDomain(net.LocalHostIP),
  553. Port: uint32(serverPort),
  554. User: []*protocol.User{
  555. {
  556. Account: serial.ToTypedMessage(&vmess.Account{
  557. Id: userID.String(),
  558. }),
  559. },
  560. },
  561. },
  562. },
  563. }),
  564. SenderSettings: serial.ToTypedMessage(&proxyman.SenderConfig{
  565. StreamSettings: &internet.StreamConfig{
  566. Protocol: internet.TransportProtocol_HTTP,
  567. TransportSettings: []*internet.TransportConfig{
  568. {
  569. Protocol: internet.TransportProtocol_HTTP,
  570. Settings: serial.ToTypedMessage(&http.Config{
  571. Host: []string{"v2ray.com"},
  572. Path: "/testpath",
  573. }),
  574. },
  575. },
  576. SecurityType: serial.GetMessageType(&tls.Config{}),
  577. SecuritySettings: []*serial.TypedMessage{
  578. serial.ToTypedMessage(&tls.Config{
  579. AllowInsecure: true,
  580. }),
  581. },
  582. },
  583. }),
  584. },
  585. },
  586. }
  587. servers, err := InitializeServerConfigs(serverConfig, clientConfig)
  588. assert(err, IsNil)
  589. var wg sync.WaitGroup
  590. for i := 0; i < 10; i++ {
  591. wg.Add(1)
  592. go func() {
  593. defer wg.Done()
  594. conn, err := net.DialTCP("tcp", nil, &net.TCPAddr{
  595. IP: []byte{127, 0, 0, 1},
  596. Port: int(clientPort),
  597. })
  598. assert(err, IsNil)
  599. payload := make([]byte, 10240*1024)
  600. rand.Read(payload)
  601. nBytes, err := conn.Write([]byte(payload))
  602. assert(err, IsNil)
  603. assert(nBytes, Equals, len(payload))
  604. response := readFrom(conn, time.Second*20, len(payload))
  605. assert(response, Equals, xor([]byte(payload)))
  606. assert(conn.Close(), IsNil)
  607. }()
  608. }
  609. wg.Wait()
  610. CloseAllServers(servers)
  611. }