http.go 6.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273
  1. package proxy
  2. import (
  3. "bufio"
  4. "crypto/tls"
  5. "io"
  6. "net"
  7. "net/http"
  8. "net/http/httputil"
  9. "os"
  10. "path/filepath"
  11. "strconv"
  12. "strings"
  13. "sync"
  14. "ehang.io/nps/bridge"
  15. "ehang.io/nps/lib/cache"
  16. "ehang.io/nps/lib/common"
  17. "ehang.io/nps/lib/conn"
  18. "ehang.io/nps/lib/file"
  19. "ehang.io/nps/server/connection"
  20. "github.com/astaxie/beego/logs"
  21. )
  22. type httpServer struct {
  23. BaseServer
  24. httpPort int
  25. httpsPort int
  26. httpServer *http.Server
  27. httpsServer *http.Server
  28. httpsListener net.Listener
  29. useCache bool
  30. addOrigin bool
  31. cache *cache.Cache
  32. cacheLen int
  33. }
  34. func NewHttp(bridge *bridge.Bridge, c *file.Tunnel, httpPort, httpsPort int, useCache bool, cacheLen int, addOrigin bool) *httpServer {
  35. httpServer := &httpServer{
  36. BaseServer: BaseServer{
  37. task: c,
  38. bridge: bridge,
  39. Mutex: sync.Mutex{},
  40. },
  41. httpPort: httpPort,
  42. httpsPort: httpsPort,
  43. useCache: useCache,
  44. cacheLen: cacheLen,
  45. addOrigin: addOrigin,
  46. }
  47. if useCache {
  48. httpServer.cache = cache.New(cacheLen)
  49. }
  50. return httpServer
  51. }
  52. func (s *httpServer) Start() error {
  53. var err error
  54. if s.errorContent, err = common.ReadAllFromFile(filepath.Join(common.GetRunPath(), "web", "static", "page", "error.html")); err != nil {
  55. s.errorContent = []byte("nps 404")
  56. }
  57. if s.httpPort > 0 {
  58. s.httpServer = s.NewServer(s.httpPort, "http")
  59. go func() {
  60. l, err := connection.GetHttpListener()
  61. if err != nil {
  62. logs.Error(err)
  63. os.Exit(0)
  64. }
  65. err = s.httpServer.Serve(l)
  66. if err != nil {
  67. logs.Error(err)
  68. os.Exit(0)
  69. }
  70. }()
  71. }
  72. if s.httpsPort > 0 {
  73. s.httpsServer = s.NewServer(s.httpsPort, "https")
  74. go func() {
  75. s.httpsListener, err = connection.GetHttpsListener()
  76. if err != nil {
  77. logs.Error(err)
  78. os.Exit(0)
  79. }
  80. logs.Error(NewHttpsServer(s.httpsListener, s.bridge, s.useCache, s.cacheLen).Start())
  81. }()
  82. }
  83. return nil
  84. }
  85. func (s *httpServer) Close() error {
  86. if s.httpsListener != nil {
  87. s.httpsListener.Close()
  88. }
  89. if s.httpsServer != nil {
  90. s.httpsServer.Close()
  91. }
  92. if s.httpServer != nil {
  93. s.httpServer.Close()
  94. }
  95. return nil
  96. }
  97. func (s *httpServer) handleTunneling(w http.ResponseWriter, r *http.Request) {
  98. hijacker, ok := w.(http.Hijacker)
  99. if !ok {
  100. http.Error(w, "Hijacking not supported", http.StatusInternalServerError)
  101. return
  102. }
  103. c, _, err := hijacker.Hijack()
  104. if err != nil {
  105. http.Error(w, err.Error(), http.StatusServiceUnavailable)
  106. }
  107. s.handleHttp(conn.NewConn(c), r)
  108. }
  109. func (s *httpServer) handleHttp(c *conn.Conn, r *http.Request) {
  110. var (
  111. host *file.Host
  112. target net.Conn
  113. err error
  114. connClient io.ReadWriteCloser
  115. scheme = r.URL.Scheme
  116. lk *conn.Link
  117. targetAddr string
  118. lenConn *conn.LenConn
  119. isReset bool
  120. wg sync.WaitGroup
  121. )
  122. defer func() {
  123. if connClient != nil {
  124. s.writeConnFail(c.Conn)
  125. connClient.Close()
  126. }
  127. c.Close()
  128. }()
  129. reset:
  130. if isReset {
  131. host.Client.AddConn()
  132. }
  133. if host, err = file.GetDb().GetInfoByHost(r.Host, r); err != nil {
  134. logs.Notice("the url %s %s %s can't be parsed!", r.URL.Scheme, r.Host, r.RequestURI)
  135. return
  136. }
  137. if err := s.CheckFlowAndConnNum(host.Client); err != nil {
  138. logs.Warn("client id %d, host id %d, error %s, when https connection", host.Client.Id, host.Id, err.Error())
  139. return
  140. }
  141. if !isReset {
  142. defer host.Client.AddConn()
  143. }
  144. if err = s.auth(r, c, host.Client.Cnf.U, host.Client.Cnf.P); err != nil {
  145. logs.Warn("auth error", err, r.RemoteAddr)
  146. return
  147. }
  148. if targetAddr, err = host.Target.GetRandomTarget(); err != nil {
  149. logs.Warn(err.Error())
  150. return
  151. }
  152. lk = conn.NewLink("http", targetAddr, host.Client.Cnf.Crypt, host.Client.Cnf.Compress, r.RemoteAddr, host.Target.LocalProxy)
  153. if target, err = s.bridge.SendLinkInfo(host.Client.Id, lk, nil); err != nil {
  154. logs.Notice("connect to target %s error %s", lk.Host, err)
  155. return
  156. }
  157. connClient = conn.GetConn(target, lk.Crypt, lk.Compress, host.Client.Rate, true)
  158. //read from inc-client
  159. go func() {
  160. wg.Add(1)
  161. isReset = false
  162. defer connClient.Close()
  163. defer func() {
  164. wg.Done()
  165. if !isReset {
  166. c.Close()
  167. }
  168. }()
  169. for {
  170. if resp, err := http.ReadResponse(bufio.NewReader(connClient), r); err != nil || resp == nil {
  171. return
  172. } else {
  173. //if the cache is start and the response is in the extension,store the response to the cache list
  174. if s.useCache && r.URL != nil && strings.Contains(r.URL.Path, ".") {
  175. b, err := httputil.DumpResponse(resp, true)
  176. if err != nil {
  177. return
  178. }
  179. c.Write(b)
  180. host.Flow.Add(0, int64(len(b)))
  181. s.cache.Add(filepath.Join(host.Host, r.URL.Path), b)
  182. } else {
  183. lenConn := conn.NewLenConn(c)
  184. if err := resp.Write(lenConn); err != nil {
  185. logs.Error(err)
  186. return
  187. }
  188. host.Flow.Add(0, int64(lenConn.Len))
  189. }
  190. }
  191. }
  192. }()
  193. for {
  194. //if the cache start and the request is in the cache list, return the cache
  195. if s.useCache {
  196. if v, ok := s.cache.Get(filepath.Join(host.Host, r.URL.Path)); ok {
  197. n, err := c.Write(v.([]byte))
  198. if err != nil {
  199. break
  200. }
  201. logs.Trace("%s request, method %s, host %s, url %s, remote address %s, return cache", r.URL.Scheme, r.Method, r.Host, r.URL.Path, c.RemoteAddr().String())
  202. host.Flow.Add(0, int64(n))
  203. //if return cache and does not create a new conn with client and Connection is not set or close, close the connection.
  204. if strings.ToLower(r.Header.Get("Connection")) == "close" || strings.ToLower(r.Header.Get("Connection")) == "" {
  205. break
  206. }
  207. goto readReq
  208. }
  209. }
  210. //change the host and header and set proxy setting
  211. common.ChangeHostAndHeader(r, host.HostChange, host.HeaderChange, c.Conn.RemoteAddr().String(), s.addOrigin)
  212. logs.Trace("%s request, method %s, host %s, url %s, remote address %s, target %s", r.URL.Scheme, r.Method, r.Host, r.URL.Path, c.RemoteAddr().String(), lk.Host)
  213. //write
  214. lenConn = conn.NewLenConn(connClient)
  215. if err := r.Write(lenConn); err != nil {
  216. logs.Error(err)
  217. break
  218. }
  219. host.Flow.Add(int64(lenConn.Len), 0)
  220. readReq:
  221. //read req from connection
  222. if r, err = http.ReadRequest(bufio.NewReader(c)); err != nil {
  223. break
  224. }
  225. r.URL.Scheme = scheme
  226. //What happened ,Why one character less???
  227. r.Method = resetReqMethod(r.Method)
  228. if hostTmp, err := file.GetDb().GetInfoByHost(r.Host, r); err != nil {
  229. logs.Notice("the url %s %s %s can't be parsed!", r.URL.Scheme, r.Host, r.RequestURI)
  230. break
  231. } else if host != hostTmp {
  232. host = hostTmp
  233. isReset = true
  234. connClient.Close()
  235. goto reset
  236. }
  237. }
  238. wg.Wait()
  239. }
  240. func resetReqMethod(method string) string {
  241. if method == "ET" {
  242. return "GET"
  243. }
  244. if method == "OST" {
  245. return "POST"
  246. }
  247. return method
  248. }
  249. func (s *httpServer) NewServer(port int, scheme string) *http.Server {
  250. return &http.Server{
  251. Addr: ":" + strconv.Itoa(port),
  252. Handler: http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  253. r.URL.Scheme = scheme
  254. s.handleTunneling(w, r)
  255. }),
  256. // Disable HTTP/2.
  257. TLSNextProto: make(map[string]func(*http.Server, *tls.Conn, http.Handler)),
  258. }
  259. }