Highly-opinionated (ex-bullshit-free) MTPROTO proxy for Telegram. If you use v1.0 or upgrade broke you proxy, please read the chapter Version 2
Du kannst nicht mehr als 25 Themen auswählen Themen müssen mit entweder einem Buchstaben oder einer Ziffer beginnen. Sie können Bindestriche („-“) enthalten und bis zu 35 Zeichen lang sein.

run_proxy.go 6.5KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241
  1. package cli
  2. import (
  3. "context"
  4. "fmt"
  5. "net"
  6. "net/url"
  7. "os"
  8. "github.com/9seconds/mtg/v2/antireplay"
  9. "github.com/9seconds/mtg/v2/events"
  10. "github.com/9seconds/mtg/v2/internal/config"
  11. "github.com/9seconds/mtg/v2/internal/utils"
  12. "github.com/9seconds/mtg/v2/ipblocklist"
  13. "github.com/9seconds/mtg/v2/logger"
  14. "github.com/9seconds/mtg/v2/mtglib"
  15. "github.com/9seconds/mtg/v2/network"
  16. "github.com/9seconds/mtg/v2/stats"
  17. "github.com/rs/zerolog"
  18. )
  19. func makeLogger(conf *config.Config) mtglib.Logger {
  20. zerolog.TimeFieldFormat = zerolog.TimeFormatUnixMs
  21. zerolog.TimestampFieldName = "timestamp"
  22. zerolog.LevelFieldName = "level"
  23. if conf.Debug.Get(false) {
  24. zerolog.SetGlobalLevel(zerolog.DebugLevel)
  25. } else {
  26. zerolog.SetGlobalLevel(zerolog.WarnLevel)
  27. }
  28. baseLogger := zerolog.New(os.Stdout).With().Timestamp().Logger()
  29. return logger.NewZeroLogger(baseLogger)
  30. }
  31. func makeNetwork(conf *config.Config, version string) (mtglib.Network, error) {
  32. tcpTimeout := conf.Network.Timeout.TCP.Get(network.DefaultTimeout)
  33. httpTimeout := conf.Network.Timeout.HTTP.Get(network.DefaultHTTPTimeout)
  34. dohIP := conf.Network.DOHIP.Get(net.ParseIP(network.DefaultDOHHostname)).String()
  35. userAgent := "mtg/" + version
  36. baseDialer, err := network.NewDefaultDialer(tcpTimeout, 0)
  37. if err != nil {
  38. return nil, fmt.Errorf("cannot build a default dialer: %w", err)
  39. }
  40. if len(conf.Network.Proxies) == 0 {
  41. return network.NewNetwork(baseDialer, userAgent, dohIP, httpTimeout) // nolint: wrapcheck
  42. }
  43. proxyURLs := make([]*url.URL, 0, len(conf.Network.Proxies))
  44. for _, v := range conf.Network.Proxies {
  45. if value := v.Get(nil); value != nil {
  46. proxyURLs = append(proxyURLs, value)
  47. }
  48. }
  49. if len(proxyURLs) == 1 {
  50. socksDialer, err := network.NewSocks5Dialer(baseDialer, proxyURLs[0])
  51. if err != nil {
  52. return nil, fmt.Errorf("cannot build socks5 dialer: %w", err)
  53. }
  54. return network.NewNetwork(socksDialer, userAgent, dohIP, httpTimeout) // nolint: wrapcheck
  55. }
  56. socksDialer, err := network.NewLoadBalancedSocks5Dialer(baseDialer, proxyURLs)
  57. if err != nil {
  58. return nil, fmt.Errorf("cannot build socks5 dialer: %w", err)
  59. }
  60. return network.NewNetwork(socksDialer, userAgent, dohIP, httpTimeout) // nolint: wrapcheck
  61. }
  62. func makeAntiReplayCache(conf *config.Config) mtglib.AntiReplayCache {
  63. if !conf.Defense.AntiReplay.Enabled.Get(false) {
  64. return antireplay.NewNoop()
  65. }
  66. return antireplay.NewStableBloomFilter(
  67. conf.Defense.AntiReplay.MaxSize.Get(antireplay.DefaultStableBloomFilterMaxSize),
  68. conf.Defense.AntiReplay.ErrorRate.Get(antireplay.DefaultStableBloomFilterErrorRate),
  69. )
  70. }
  71. func makeIPBlocklist(conf config.ListConfig,
  72. logger mtglib.Logger,
  73. ntw mtglib.Network,
  74. updateCallback ipblocklist.FireholUpdateCallback,
  75. ) (mtglib.IPBlocklist, error) {
  76. if !conf.Enabled.Get(false) {
  77. return ipblocklist.NewNoop(), nil
  78. }
  79. remoteURLs := []string{}
  80. localFiles := []string{}
  81. for _, v := range conf.URLs {
  82. if v.IsRemote() {
  83. remoteURLs = append(remoteURLs, v.String())
  84. } else {
  85. localFiles = append(localFiles, v.String())
  86. }
  87. }
  88. firehol, err := ipblocklist.NewFirehol(logger.Named("ipblockist"),
  89. ntw,
  90. conf.DownloadConcurrency.Get(1),
  91. remoteURLs,
  92. localFiles,
  93. updateCallback)
  94. if err != nil {
  95. return nil, fmt.Errorf("incorrect parameters for firehol: %w", err)
  96. }
  97. go firehol.Run(conf.UpdateEach.Get(ipblocklist.DefaultFireholUpdateEach))
  98. return firehol, nil
  99. }
  100. func makeEventStream(conf *config.Config, logger mtglib.Logger) (mtglib.EventStream, error) {
  101. factories := make([]events.ObserverFactory, 0, 2) // nolint: gomnd
  102. if conf.Stats.StatsD.Enabled.Get(false) {
  103. statsdFactory, err := stats.NewStatsd(
  104. conf.Stats.StatsD.Address.Get(""),
  105. logger.Named("statsd"),
  106. conf.Stats.StatsD.MetricPrefix.Get(stats.DefaultStatsdMetricPrefix),
  107. conf.Stats.StatsD.TagFormat.Get(stats.DefaultStatsdTagFormat))
  108. if err != nil {
  109. return nil, fmt.Errorf("cannot build statsd observer: %w", err)
  110. }
  111. factories = append(factories, statsdFactory.Make)
  112. }
  113. if conf.Stats.Prometheus.Enabled.Get(false) {
  114. prometheus := stats.NewPrometheus(
  115. conf.Stats.Prometheus.MetricPrefix.Get(stats.DefaultMetricPrefix),
  116. conf.Stats.Prometheus.HTTPPath.Get("/"),
  117. )
  118. listener, err := net.Listen("tcp", conf.Stats.Prometheus.BindTo.Get(""))
  119. if err != nil {
  120. return nil, fmt.Errorf("cannot start a listener for prometheus: %w", err)
  121. }
  122. go prometheus.Serve(listener) // nolint: errcheck
  123. factories = append(factories, prometheus.Make)
  124. }
  125. if len(factories) > 0 {
  126. return events.NewEventStream(factories), nil
  127. }
  128. return events.NewNoopStream(), nil
  129. }
  130. func runProxy(conf *config.Config, version string) error { // nolint: funlen
  131. logger := makeLogger(conf)
  132. logger.BindJSON("configuration", conf.String()).Debug("configuration")
  133. eventStream, err := makeEventStream(conf, logger)
  134. if err != nil {
  135. return fmt.Errorf("cannot build event stream: %w", err)
  136. }
  137. ntw, err := makeNetwork(conf, version)
  138. if err != nil {
  139. return fmt.Errorf("cannot build network: %w", err)
  140. }
  141. blocklist, err := makeIPBlocklist(
  142. conf.Defense.Blocklist,
  143. logger.Named("blocklist"),
  144. ntw,
  145. func(ctx context.Context, size int) {
  146. eventStream.Send(ctx, mtglib.NewEventIPListSize(size, true))
  147. })
  148. if err != nil {
  149. return fmt.Errorf("cannot build ip blocklist: %w", err)
  150. }
  151. var whitelist mtglib.IPBlocklist
  152. if conf.Defense.Allowlist.Enabled.Get(false) {
  153. whlist, err := makeIPBlocklist(
  154. conf.Defense.Allowlist,
  155. logger.Named("allowlist"),
  156. ntw,
  157. func(ctx context.Context, size int) {
  158. eventStream.Send(ctx, mtglib.NewEventIPListSize(size, false))
  159. })
  160. if err != nil {
  161. return fmt.Errorf("cannot build ip allowlist: %w", err)
  162. }
  163. whitelist = whlist
  164. }
  165. opts := mtglib.ProxyOpts{
  166. Logger: logger,
  167. Network: ntw,
  168. AntiReplayCache: makeAntiReplayCache(conf),
  169. IPBlocklist: blocklist,
  170. IPWhitelist: whitelist,
  171. EventStream: eventStream,
  172. Secret: conf.Secret,
  173. DomainFrontingPort: conf.DomainFrontingPort.Get(mtglib.DefaultDomainFrontingPort),
  174. PreferIP: conf.PreferIP.Get(mtglib.DefaultPreferIP),
  175. AllowFallbackOnUnknownDC: conf.AllowFallbackOnUnknownDC.Get(false),
  176. TolerateTimeSkewness: conf.TolerateTimeSkewness.Value,
  177. }
  178. proxy, err := mtglib.NewProxy(opts)
  179. if err != nil {
  180. return fmt.Errorf("cannot create a proxy: %w", err)
  181. }
  182. listener, err := utils.NewListener(conf.BindTo.Get(""), 0)
  183. if err != nil {
  184. return fmt.Errorf("cannot start proxy: %w", err)
  185. }
  186. ctx := utils.RootContext()
  187. go proxy.Serve(listener) // nolint: errcheck
  188. <-ctx.Done()
  189. listener.Close()
  190. proxy.Shutdown()
  191. return nil
  192. }