mirror of
https://github.com/SagerNet/sing-box.git
synced 2025-09-08 18:28:50 +08:00
107 lines
2.3 KiB
Go
107 lines
2.3 KiB
Go
//go:build linux && go1.25 && !without_badtls
|
|
|
|
package ktls
|
|
|
|
import (
|
|
"context"
|
|
"crypto/tls"
|
|
"io"
|
|
"net"
|
|
"os"
|
|
"syscall"
|
|
|
|
"github.com/sagernet/sing-box/common/badtls"
|
|
E "github.com/sagernet/sing/common/exceptions"
|
|
"github.com/sagernet/sing/common/logger"
|
|
N "github.com/sagernet/sing/common/network"
|
|
aTLS "github.com/sagernet/sing/common/tls"
|
|
)
|
|
|
|
type Conn struct {
|
|
aTLS.Conn
|
|
ctx context.Context
|
|
logger logger.ContextLogger
|
|
conn net.Conn
|
|
rawConn *badtls.RawConn
|
|
syscallConn syscall.Conn
|
|
rawSyscallConn syscall.RawConn
|
|
readWaitOptions N.ReadWaitOptions
|
|
kernelTx bool
|
|
kernelRx bool
|
|
}
|
|
|
|
func NewConn(ctx context.Context, logger logger.ContextLogger, conn aTLS.Conn, txOffload, rxOffload bool) (aTLS.Conn, error) {
|
|
err := Load()
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
syscallConn, isSyscallConn := N.CastReader[interface {
|
|
io.Reader
|
|
syscall.Conn
|
|
}](conn.NetConn())
|
|
if !isSyscallConn {
|
|
return nil, os.ErrInvalid
|
|
}
|
|
rawSyscallConn, err := syscallConn.SyscallConn()
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
rawConn, err := badtls.NewRawConn(conn)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
if *rawConn.Vers != tls.VersionTLS13 {
|
|
return nil, os.ErrInvalid
|
|
}
|
|
for rawConn.RawInput.Len() > 0 {
|
|
err = rawConn.ReadRecord()
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
for rawConn.Hand.Len() > 0 {
|
|
err = rawConn.HandlePostHandshakeMessage()
|
|
if err != nil {
|
|
return nil, E.Cause(err, "ktls: failed to handle post-handshake messages")
|
|
}
|
|
}
|
|
}
|
|
kConn := &Conn{
|
|
Conn: conn,
|
|
ctx: ctx,
|
|
logger: logger,
|
|
conn: conn.NetConn(),
|
|
rawConn: rawConn,
|
|
syscallConn: syscallConn,
|
|
rawSyscallConn: rawSyscallConn,
|
|
}
|
|
err = kConn.setupKernel(txOffload, rxOffload)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return kConn, nil
|
|
}
|
|
|
|
func (c *Conn) Upstream() any {
|
|
return c.Conn
|
|
}
|
|
|
|
func (c *Conn) SyscallConnForRead() syscall.Conn {
|
|
if !c.kernelRx {
|
|
return nil
|
|
}
|
|
if !*c.rawConn.IsClient {
|
|
c.logger.WarnContext(c.ctx, "ktls: RX splice is unavailable on the server size, since it will cause an unknown failure")
|
|
return nil
|
|
}
|
|
c.logger.DebugContext(c.ctx, "ktls: RX splice requested")
|
|
return c.syscallConn
|
|
}
|
|
|
|
func (c *Conn) SyscallConnForWrite() syscall.Conn {
|
|
if !c.kernelTx {
|
|
return nil
|
|
}
|
|
c.logger.DebugContext(c.ctx, "ktls: TX splice requested")
|
|
return c.syscallConn
|
|
}
|