V2bX/common/builder/inbound.go

316 lines
9.6 KiB
Go
Raw Normal View History

2023-05-22 09:01:31 -04:00
package builder
2022-06-01 13:35:41 -04:00
import (
"crypto/rand"
"encoding/base64"
"encoding/hex"
2022-06-01 13:35:41 -04:00
"fmt"
"github.com/Yuzuki616/V2bX/api/panel"
2023-01-12 01:27:06 -05:00
"github.com/Yuzuki616/V2bX/common/file"
"github.com/Yuzuki616/V2bX/conf"
"github.com/Yuzuki616/V2bX/node/lego"
2022-10-11 04:05:19 -04:00
"github.com/goccy/go-json"
2022-06-01 13:35:41 -04:00
"github.com/xtls/xray-core/common/net"
"github.com/xtls/xray-core/core"
coreConf "github.com/xtls/xray-core/infra/conf"
2022-06-01 13:35:41 -04:00
)
// BuildInbound build Inbound config for different protocol
func BuildInbound(config *conf.ControllerConfig, nodeInfo *panel.NodeInfo, tag string) (*core.InboundHandlerConfig, error) {
2023-05-22 09:01:31 -04:00
in := &coreConf.InboundDetourConfig{}
// Set network protocol
t := coreConf.TransportProtocol(nodeInfo.Network)
2023-05-22 09:01:31 -04:00
in.StreamSetting = &coreConf.StreamConfig{Network: &t}
var err error
switch nodeInfo.NodeType {
2023-05-18 23:27:08 -04:00
case "v2ray":
2023-05-22 09:01:31 -04:00
err = buildV2ray(config, nodeInfo, in)
2023-05-18 23:27:08 -04:00
case "trojan":
2023-05-22 09:01:31 -04:00
err = buildTrojan(config, nodeInfo, in)
2023-05-18 23:27:08 -04:00
case "shadowsocks":
2023-05-22 09:01:31 -04:00
err = buildShadowsocks(config, nodeInfo, in)
default:
2022-06-06 05:22:45 -04:00
return nil, fmt.Errorf("unsupported node type: %s, Only support: V2ray, Trojan, Shadowsocks", nodeInfo.NodeType)
}
if err != nil {
return nil, err
}
// Set server port
2023-05-22 09:01:31 -04:00
in.PortList = &coreConf.PortList{
Range: []coreConf.PortRange{{From: uint32(nodeInfo.ServerPort), To: uint32(nodeInfo.ServerPort)}},
}
// Set Listen IP address
2022-06-01 13:35:41 -04:00
ipAddress := net.ParseAddress(config.ListenIP)
2023-05-22 09:01:31 -04:00
in.ListenOn = &coreConf.Address{Address: ipAddress}
// Set SniffingConfig
sniffingConfig := &coreConf.SniffingConfig{
2022-06-01 13:35:41 -04:00
Enabled: true,
DestOverride: &coreConf.StringList{"http", "tls"},
2022-06-01 13:35:41 -04:00
}
if config.DisableSniffing {
sniffingConfig.Enabled = false
}
2023-05-22 09:01:31 -04:00
in.SniffingConfig = sniffingConfig
if *in.StreamSetting.Network == "tcp" {
if in.StreamSetting.TCPSettings != nil {
in.StreamSetting.TCPSettings.AcceptProxyProtocol = config.EnableProxyProtocol
2022-06-02 13:22:56 -04:00
} else {
tcpSetting := &coreConf.TCPConfig{
2022-06-02 13:22:56 -04:00
AcceptProxyProtocol: config.EnableProxyProtocol,
} //Enable proxy protocol
2023-05-22 09:01:31 -04:00
in.StreamSetting.TCPSettings = tcpSetting
2022-06-01 13:35:41 -04:00
}
2023-05-22 09:01:31 -04:00
} else if *in.StreamSetting.Network == "ws" {
in.StreamSetting.WSSettings = &coreConf.WebSocketConfig{
AcceptProxyProtocol: config.EnableProxyProtocol} //Enable proxy protocol
2022-06-01 13:35:41 -04:00
}
// Set TLS and XTLS settings
if nodeInfo.Tls != 0 {
if config.CertConfig.CertMode != "none" {
// Normal tls
2023-05-22 09:01:31 -04:00
in.StreamSetting.Security = "tls"
certFile, keyFile, err := getCertFile(config.CertConfig)
if err != nil {
return nil, err
}
2023-05-22 09:01:31 -04:00
in.StreamSetting.TLSSettings = &coreConf.TLSConfig{
Certs: []*coreConf.TLSCertConfig{
{
CertFile: certFile,
KeyFile: keyFile,
OcspStapling: 3600,
},
},
RejectUnknownSNI: config.CertConfig.RejectUnknownSni,
}
2023-05-21 23:05:00 -04:00
} else if config.EnableReality {
// Reality
2023-05-22 09:01:31 -04:00
in.StreamSetting.Security = "reality"
2023-05-21 23:20:09 -04:00
d, err := json.Marshal(config.RealityConfig.Dest)
if err != nil {
return nil, fmt.Errorf("marshal reality dest error: %s", err)
}
2023-05-22 09:01:31 -04:00
in.StreamSetting.REALITYSettings = &coreConf.REALITYConfig{
2023-05-21 23:20:09 -04:00
Dest: d,
2023-05-21 23:05:00 -04:00
Xver: config.RealityConfig.Xver,
ServerNames: config.RealityConfig.ServerNames,
PrivateKey: config.RealityConfig.PrivateKey,
MinClientVer: config.RealityConfig.MinClientVer,
MaxClientVer: config.RealityConfig.MaxClientVer,
MaxTimeDiff: config.RealityConfig.MaxTimeDiff,
ShortIds: config.RealityConfig.ShortIds,
}
2022-06-01 13:35:41 -04:00
}
}
// Support ProxyProtocol for any transport protocol
2023-05-22 09:01:31 -04:00
if *in.StreamSetting.Network != "tcp" &&
*in.StreamSetting.Network != "ws" &&
2022-06-01 13:35:41 -04:00
config.EnableProxyProtocol {
sockoptConfig := &coreConf.SocketConfig{
2022-06-01 13:35:41 -04:00
AcceptProxyProtocol: config.EnableProxyProtocol,
} //Enable proxy protocol
2023-05-22 09:01:31 -04:00
in.StreamSetting.SocketSettings = sockoptConfig
}
2023-05-22 09:01:31 -04:00
in.Tag = tag
return in.Build()
}
func buildV2ray(config *conf.ControllerConfig, nodeInfo *panel.NodeInfo, inbound *coreConf.InboundDetourConfig) error {
if config.EnableVless {
//Set vless
inbound.Protocol = "vless"
if config.EnableFallback {
// Set fallback
fallbackConfigs, err := buildVlessFallbacks(config.FallBackConfigs)
if err != nil {
return err
}
s, err := json.Marshal(&coreConf.VLessInboundConfig{
Decryption: "none",
Fallbacks: fallbackConfigs,
})
if err != nil {
return fmt.Errorf("marshal vless fallback config error: %s", err)
}
inbound.Settings = (*json.RawMessage)(&s)
} else {
var err error
s, err := json.Marshal(&coreConf.VLessInboundConfig{
Decryption: "none",
})
if err != nil {
return fmt.Errorf("marshal vless config error: %s", err)
}
inbound.Settings = (*json.RawMessage)(&s)
}
} else {
// Set vmess
inbound.Protocol = "vmess"
var err error
s, err := json.Marshal(&coreConf.VMessInboundConfig{})
if err != nil {
return fmt.Errorf("marshal vmess settings error: %s", err)
}
inbound.Settings = (*json.RawMessage)(&s)
}
if len(nodeInfo.NetworkSettings) == 0 {
return nil
}
switch nodeInfo.Network {
case "tcp":
err := json.Unmarshal(nodeInfo.NetworkSettings, &inbound.StreamSetting.TCPSettings)
if err != nil {
return fmt.Errorf("unmarshal tcp settings error: %s", err)
}
case "ws":
err := json.Unmarshal(nodeInfo.NetworkSettings, &inbound.StreamSetting.WSSettings)
if err != nil {
return fmt.Errorf("unmarshal ws settings error: %s", err)
}
case "grpc":
err := json.Unmarshal(nodeInfo.NetworkSettings, &inbound.StreamSetting.GRPCConfig)
if err != nil {
return fmt.Errorf("unmarshal grpc settings error: %s", err)
}
}
return nil
}
func buildTrojan(config *conf.ControllerConfig, nodeInfo *panel.NodeInfo, inbound *coreConf.InboundDetourConfig) error {
inbound.Protocol = "trojan"
if config.EnableFallback {
// Set fallback
fallbackConfigs, err := buildTrojanFallbacks(config.FallBackConfigs)
if err != nil {
return err
}
s, err := json.Marshal(&coreConf.TrojanServerConfig{
Fallbacks: fallbackConfigs,
})
inbound.Settings = (*json.RawMessage)(&s)
if err != nil {
return fmt.Errorf("marshal trojan fallback config error: %s", err)
}
} else {
s := []byte("{}")
inbound.Settings = (*json.RawMessage)(&s)
2022-06-01 13:35:41 -04:00
}
t := coreConf.TransportProtocol(nodeInfo.Network)
inbound.StreamSetting = &coreConf.StreamConfig{Network: &t}
return nil
}
func buildShadowsocks(config *conf.ControllerConfig, nodeInfo *panel.NodeInfo, inbound *coreConf.InboundDetourConfig) error {
inbound.Protocol = "shadowsocks"
settings := &coreConf.ShadowsocksServerConfig{
Cipher: nodeInfo.Cipher,
}
p := make([]byte, 32)
_, err := rand.Read(p)
if err != nil {
return fmt.Errorf("generate random password error: %s", err)
}
randomPasswd := hex.EncodeToString(p)
cipher := nodeInfo.Cipher
if nodeInfo.ServerKey != "" {
settings.Password = nodeInfo.ServerKey
randomPasswd = base64.StdEncoding.EncodeToString([]byte(randomPasswd))
cipher = ""
}
defaultSSuser := &coreConf.ShadowsocksUserConfig{
Cipher: cipher,
Password: randomPasswd,
}
settings.Users = append(settings.Users, defaultSSuser)
settings.NetworkList = &coreConf.NetworkList{"tcp", "udp"}
settings.IVCheck = true
if config.DisableIVCheck {
settings.IVCheck = false
}
t := coreConf.TransportProtocol("tcp")
inbound.StreamSetting = &coreConf.StreamConfig{Network: &t}
s, err := json.Marshal(settings)
inbound.Settings = (*json.RawMessage)(&s)
if err != nil {
return fmt.Errorf("marshal shadowsocks settings error: %s", err)
}
return nil
2022-06-01 13:35:41 -04:00
}
func getCertFile(certConfig *conf.CertConfig) (certFile string, keyFile string, err error) {
2023-01-12 01:27:06 -05:00
if certConfig.CertFile == "" || certConfig.KeyFile == "" {
return "", "", fmt.Errorf("cert file path or key file path not exist")
}
switch certConfig.CertMode {
case "file":
2022-06-01 13:35:41 -04:00
return certConfig.CertFile, certConfig.KeyFile, nil
2023-01-12 01:27:06 -05:00
case "dns", "http":
if file.IsExist(certConfig.CertFile) && file.IsExist(certConfig.KeyFile) {
return certConfig.CertFile, certConfig.KeyFile, nil
2022-06-01 13:35:41 -04:00
}
2023-01-12 01:27:06 -05:00
l, err := lego.New(certConfig)
2022-06-01 13:35:41 -04:00
if err != nil {
2023-01-12 01:27:06 -05:00
return "", "", fmt.Errorf("create lego object error: %s", err)
2022-06-01 13:35:41 -04:00
}
2023-01-12 01:27:06 -05:00
err = l.CreateCert()
2022-06-01 13:35:41 -04:00
if err != nil {
2023-01-12 01:27:06 -05:00
return "", "", fmt.Errorf("create cert error: %s", err)
2022-06-01 13:35:41 -04:00
}
2023-01-12 01:27:06 -05:00
return certConfig.CertFile, certConfig.KeyFile, nil
2022-06-01 13:35:41 -04:00
}
return "", "", fmt.Errorf("unsupported certmode: %s", certConfig.CertMode)
}
2023-05-18 22:06:31 -04:00
func buildVlessFallbacks(fallbackConfigs []conf.FallBackConfig) ([]*coreConf.VLessInboundFallback, error) {
2022-06-01 13:35:41 -04:00
if fallbackConfigs == nil {
return nil, fmt.Errorf("you must provide FallBackConfigs")
}
vlessFallBacks := make([]*coreConf.VLessInboundFallback, len(fallbackConfigs))
2022-06-01 13:35:41 -04:00
for i, c := range fallbackConfigs {
if c.Dest == "" {
return nil, fmt.Errorf("dest is required for fallback fialed")
}
var dest json.RawMessage
dest, err := json.Marshal(c.Dest)
if err != nil {
return nil, fmt.Errorf("marshal dest %s config fialed: %s", dest, err)
}
vlessFallBacks[i] = &coreConf.VLessInboundFallback{
2022-06-01 13:35:41 -04:00
Name: c.SNI,
Alpn: c.Alpn,
Path: c.Path,
Dest: dest,
Xver: c.ProxyProtocolVer,
}
}
return vlessFallBacks, nil
}
2023-05-18 22:06:31 -04:00
func buildTrojanFallbacks(fallbackConfigs []conf.FallBackConfig) ([]*coreConf.TrojanInboundFallback, error) {
2022-06-01 13:35:41 -04:00
if fallbackConfigs == nil {
return nil, fmt.Errorf("you must provide FallBackConfigs")
}
trojanFallBacks := make([]*coreConf.TrojanInboundFallback, len(fallbackConfigs))
2022-06-01 13:35:41 -04:00
for i, c := range fallbackConfigs {
if c.Dest == "" {
return nil, fmt.Errorf("dest is required for fallback fialed")
}
var dest json.RawMessage
dest, err := json.Marshal(c.Dest)
if err != nil {
return nil, fmt.Errorf("marshal dest %s config fialed: %s", dest, err)
}
trojanFallBacks[i] = &coreConf.TrojanInboundFallback{
2022-06-01 13:35:41 -04:00
Name: c.SNI,
Alpn: c.Alpn,
Path: c.Path,
Dest: dest,
Xver: c.ProxyProtocolVer,
}
}
return trojanFallBacks, nil
}