Highly-opinionated (ex-bullshit-free) MTPROTO proxy for Telegram. If you use v1.0 or upgrade broke you proxy, please read the chapter Version 2
Вы не можете выбрать более 25 тем Темы должны начинаться с буквы или цифры, могут содержать дефисы(-) и должны содержать не более 35 символов.

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211
  1. package mtglib
  2. import (
  3. "context"
  4. "errors"
  5. "fmt"
  6. "net"
  7. "sync"
  8. "time"
  9. "github.com/9seconds/mtg/v2/mtglib/internal/obfuscated2"
  10. "github.com/9seconds/mtg/v2/mtglib/internal/telegram"
  11. "github.com/panjf2000/ants/v2"
  12. )
  13. type Proxy struct {
  14. ctx context.Context
  15. ctxCancel context.CancelFunc
  16. streamWaitGroup sync.WaitGroup
  17. idleTimeout time.Duration
  18. workerPool *ants.PoolWithFunc
  19. telegram *telegram.Telegram
  20. secret Secret
  21. antiReplayCache AntiReplayCache
  22. ipBlocklist IPBlocklist
  23. eventStream EventStream
  24. logger Logger
  25. }
  26. func (p *Proxy) ServeConn(conn net.Conn) {
  27. ctx := newStreamContext(p.ctx, p.logger, conn)
  28. defer ctx.Close()
  29. go func() {
  30. <-ctx.Done()
  31. ctx.Close()
  32. }()
  33. p.eventStream.Send(ctx, EventStart{
  34. CreatedAt: time.Now(),
  35. ConnID: ctx.connID,
  36. RemoteIP: ctx.ClientIP(),
  37. })
  38. ctx.logger.Info("Stream has been started")
  39. defer func() {
  40. p.eventStream.Send(ctx, EventFinish{
  41. CreatedAt: time.Now(),
  42. ConnID: ctx.connID,
  43. })
  44. ctx.logger.Info("Stream has been finished")
  45. }()
  46. if err := p.doObfuscated2Handshake(ctx); err != nil {
  47. p.logger.InfoError("obfuscated2 handshake is failed", err)
  48. return
  49. }
  50. if err := p.doTelegramCall(ctx); err != nil {
  51. p.logger.WarningError("cannot dial to telegram", err)
  52. return
  53. }
  54. }
  55. func (p *Proxy) Serve(listener net.Listener) error {
  56. for {
  57. conn, err := listener.Accept()
  58. if err != nil {
  59. return fmt.Errorf("cannot accept a new connection: %w", err)
  60. }
  61. if addr := conn.RemoteAddr().(*net.TCPAddr).IP; p.ipBlocklist.Contains(addr) {
  62. conn.Close()
  63. p.eventStream.Send(p.ctx, EventIPBlocklisted{
  64. CreatedAt: time.Now(),
  65. RemoteIP: addr,
  66. })
  67. continue
  68. }
  69. err = p.workerPool.Invoke(conn)
  70. switch {
  71. case err == nil:
  72. case errors.Is(err, ants.ErrPoolClosed):
  73. return nil
  74. case errors.Is(err, ants.ErrPoolOverload):
  75. p.eventStream.Send(p.ctx, EventConcurrencyLimited{
  76. CreatedAt: time.Now(),
  77. })
  78. }
  79. }
  80. }
  81. func (p *Proxy) Shutdown() {
  82. p.ctxCancel()
  83. p.streamWaitGroup.Wait()
  84. p.workerPool.Release()
  85. }
  86. func (p *Proxy) doObfuscated2Handshake(ctx *streamContext) error {
  87. dc, encryptor, decryptor, err := obfuscated2.ClientHandshake(p.secret.Key[:], ctx.clientConn)
  88. if err != nil {
  89. return fmt.Errorf("cannot process client handshake: %w", err)
  90. }
  91. ctx.dc = dc
  92. ctx.logger = ctx.logger.BindInt("dc", dc)
  93. ctx.clientConn = &obfuscated2.Conn{
  94. Conn: ctx.clientConn,
  95. Encryptor: encryptor,
  96. Decryptor: decryptor,
  97. }
  98. return nil
  99. }
  100. func (p *Proxy) doTelegramCall(ctx *streamContext) error {
  101. conn, err := p.telegram.Dial(ctx, ctx.dc)
  102. if err != nil {
  103. return fmt.Errorf("cannot dial to Telegram: %w", err)
  104. }
  105. encryptor, decryptor, err := obfuscated2.ServerHandshake(conn)
  106. if err != nil {
  107. conn.Close()
  108. return fmt.Errorf("cannot perform obfuscated2 handshake: %w", err)
  109. }
  110. ctx.telegramConn = &obfuscated2.Conn{
  111. Conn: connTelegramTraffic{
  112. Conn: conn,
  113. connID: ctx.connID,
  114. stream: p.eventStream,
  115. ctx: ctx,
  116. },
  117. Encryptor: encryptor,
  118. Decryptor: decryptor,
  119. }
  120. p.eventStream.Send(ctx, EventConnectedToDC{
  121. CreatedAt: time.Now(),
  122. ConnID: ctx.connID,
  123. RemoteIP: conn.RemoteAddr().(*net.TCPAddr).IP,
  124. DC: ctx.dc,
  125. })
  126. return nil
  127. }
  128. func NewProxy(opts ProxyOpts) (*Proxy, error) { // nolint: cyclop
  129. switch {
  130. case opts.Network == nil:
  131. return nil, ErrNetworkIsNotDefined
  132. case opts.AntiReplayCache == nil:
  133. return nil, ErrAntiReplayCacheIsNotDefined
  134. case opts.IPBlocklist == nil:
  135. return nil, ErrIPBlocklistIsNotDefined
  136. case opts.EventStream == nil:
  137. return nil, ErrEventStreamIsNotDefined
  138. case opts.Logger == nil:
  139. return nil, ErrLoggerIsNotDefined
  140. case !opts.Secret.Valid():
  141. return nil, ErrSecretInvalid
  142. }
  143. tg, err := telegram.New(opts.Network, opts.PreferIP)
  144. if err != nil {
  145. return nil, fmt.Errorf("cannot build telegram dialer: %w", err)
  146. }
  147. concurrency := opts.Concurrency
  148. if concurrency == 0 {
  149. concurrency = DefaultConcurrency
  150. }
  151. idleTimeout := opts.IdleTimeout
  152. if idleTimeout < 1 {
  153. idleTimeout = DefaultIdleTimeout
  154. }
  155. ctx, cancel := context.WithCancel(context.Background())
  156. proxy := &Proxy{
  157. ctx: ctx,
  158. ctxCancel: cancel,
  159. secret: opts.Secret,
  160. antiReplayCache: opts.AntiReplayCache,
  161. ipBlocklist: opts.IPBlocklist,
  162. eventStream: opts.EventStream,
  163. logger: opts.Logger.Named("proxy"),
  164. idleTimeout: idleTimeout,
  165. telegram: tg,
  166. }
  167. pool, err := ants.NewPoolWithFunc(int(concurrency), func(arg interface{}) {
  168. proxy.ServeConn(arg.(net.Conn))
  169. }, ants.WithLogger(opts.Logger.Named("ants")))
  170. if err != nil {
  171. return nil, fmt.Errorf("cannot initialize a pool: %w", err)
  172. }
  173. proxy.workerPool = pool
  174. return proxy, nil
  175. }