Python port of ShadowsocksR
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

375 lines
14 KiB

13 years ago
#!/usr/bin/env python
11 years ago
# -*- coding: utf-8 -*-
13 years ago
11 years ago
# Copyright (c) 2014 clowwindy
13 years ago
#
# Permission is hereby granted, free of charge, to any person obtaining a copy
# of this software and associated documentation files (the "Software"), to deal
# in the Software without restriction, including without limitation the rights
# to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
# copies of the Software, and to permit persons to whom the Software is
# furnished to do so, subject to the following conditions:
#
# The above copyright notice and this permission notice shall be included in
# all copies or substantial portions of the Software.
#
# THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
# IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
# FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
# AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
# LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
# OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
# SOFTWARE.
from __future__ import with_statement
12 years ago
import sys
if sys.version_info < (2, 6):
import simplejson as json
else:
import json
12 years ago
12 years ago
try:
12 years ago
import gevent
import gevent.monkey
gevent.monkey.patch_all(dns=gevent.version_info[0] >= 1)
12 years ago
except ImportError:
gevent = None
print >>sys.stderr, 'warning: gevent not found, using threading instead'
13 years ago
import socket
11 years ago
import eventloop
import errno
13 years ago
import select
12 years ago
import SocketServer
13 years ago
import struct
import os
import random
import re
import logging
12 years ago
import getopt
12 years ago
import encrypt
11 years ago
import utils
11 years ago
import udprelay
13 years ago
11 years ago
MSG_FASTOPEN = 0x20000000
def send_all(sock, data):
bytes_sent = 0
while True:
r = sock.send(data[bytes_sent:])
if r < 0:
return r
bytes_sent += r
if bytes_sent == len(data):
return bytes_sent
13 years ago
12 years ago
13 years ago
class ThreadingTCPServer(SocketServer.ThreadingMixIn, SocketServer.TCPServer):
12 years ago
allow_reuse_address = True
13 years ago
def get_request(self):
connection = self.socket.accept()
connection[0].settimeout(config_timeout)
return connection
13 years ago
class Socks5Server(SocketServer.StreamRequestHandler):
11 years ago
@staticmethod
def get_server():
a_port = config_server_port
a_server = config_server
if isinstance(config_server_port, list):
# support config like "server_port": [8081, 8082]
11 years ago
a_port = random.choice(config_server_port)
if isinstance(config_server, list):
# support config like "server": ["123.123.123.1", "123.123.123.2"]
11 years ago
a_server = random.choice(config_server)
11 years ago
r = re.match(r'^(.*):(\d+)$', a_server)
if r:
# support config like "server": "123.123.123.1:8381"
11 years ago
# or "server": ["123.123.123.1:8381", "123.123.123.2:8381"]
11 years ago
a_server = r.group(1)
a_port = int(r.group(2))
return a_server, a_port
11 years ago
@staticmethod
def handle_tcp(sock, remote, encryptor, pending_data=None,
server=None, port=None):
11 years ago
connected = False
13 years ago
try:
11 years ago
if config_fast_open:
11 years ago
fdset = [sock]
else:
fdset = [sock, remote]
13 years ago
while True:
should_break = False
r, w, e = select.select(fdset, [], [], config_timeout)
if not r:
logging.warn('read time out')
break
13 years ago
if sock in r:
11 years ago
if not connected and config_fast_open:
11 years ago
data = sock.recv(4096)
11 years ago
data = encryptor.encrypt(pending_data + data)
pending_data = None
logging.info('fast open %s:%d' % (server, port))
11 years ago
try:
remote.sendto(data, MSG_FASTOPEN, (server, port))
except (OSError, IOError) as e:
if eventloop.errno_from_exception(e) == errno.EINPROGRESS:
pass
else:
raise e
11 years ago
connected = True
fdset = [sock, remote]
else:
11 years ago
data = sock.recv(4096)
if pending_data:
data = pending_data + data
pending_data = None
data = encryptor.encrypt(data)
11 years ago
if len(data) <= 0:
should_break = True
else:
result = send_all(remote, data)
if result < len(data):
raise Exception('failed to send all data')
12 years ago
13 years ago
if remote in r:
11 years ago
data = encryptor.decrypt(remote.recv(4096))
if len(data) <= 0:
should_break = True
else:
result = send_all(sock, data)
if result < len(data):
raise Exception('failed to send all data')
if should_break:
# make sure all data are read before we close the sockets
# TODO: we haven't read ALL the data, actually
# http://cs.ecs.baylor.edu/~donahoo/practical/CSockets/TCPRST.pdf
break
13 years ago
finally:
sock.close()
13 years ago
remote.close()
13 years ago
def handle(self):
try:
11 years ago
encryptor = encrypt.Encryptor(config_password, config_method)
12 years ago
sock = self.connection
11 years ago
sock.setsockopt(socket.IPPROTO_TCP, socket.TCP_NODELAY, 1)
11 years ago
data = sock.recv(262)
if not data:
sock.close()
return
if len(data) < 3:
return
method = ord(data[2])
if method == 2:
logging.warn('client tries to use username/password auth, prete'
'nding the password is OK')
sock.send('\x05\x02')
try:
ver_ulen = sock.recv(2)
ulen = ord(ver_ulen[1])
if ulen:
username = sock.recv(ulen)
assert(ulen == len(username))
plen = ord(sock.recv(1))
if plen:
_password = sock.recv(plen)
assert(plen == len(_password))
sock.send('\x01\x00')
except Exception as e:
logging.error(e)
return
elif method == 0:
sock.send("\x05\x00")
else:
logging.error('unsupported method %d' % method)
return
data = self.rfile.read(4) or '\x00' * 4
12 years ago
mode = ord(data[1])
11 years ago
if mode == 1:
pass
elif mode == 3:
# UDP
logging.debug('UDP assc request')
if sock.family == socket.AF_INET6:
header = '\x05\x00\x00\x04'
else:
header = '\x05\x00\x00\x01'
addr, port = sock.getsockname()
addr_to_send = socket.inet_pton(sock.family, addr)
port_to_send = struct.pack('>H', port)
sock.send(header + addr_to_send + port_to_send)
while True:
data = sock.recv(4096)
if not data:
break
return
else:
logging.warn('unknown mode %d' % mode)
12 years ago
return
12 years ago
addrtype = ord(data[3])
addr_to_send = data[3]
if addrtype == 1:
addr_ip = self.rfile.read(4)
addr = socket.inet_ntoa(addr_ip)
addr_to_send += addr_ip
elif addrtype == 3:
addr_len = self.rfile.read(1)
12 years ago
addr = self.rfile.read(ord(addr_len))
addr_to_send += addr_len + addr
elif addrtype == 4:
addr_ip = self.rfile.read(16)
addr = socket.inet_ntop(socket.AF_INET6, addr_ip)
addr_to_send += addr_ip
12 years ago
else:
logging.warn('addr_type not supported')
# not supported
12 years ago
return
12 years ago
addr_port = self.rfile.read(2)
addr_to_send += addr_port
port = struct.unpack('>H', addr_port)
try:
reply = "\x05\x00\x00\x01"
12 years ago
reply += socket.inet_aton('0.0.0.0') + struct.pack(">H", 2222)
self.wfile.write(reply)
# reply immediately
11 years ago
a_server, a_port = Socks5Server.get_server()
addrs = socket.getaddrinfo(a_server, a_port)
11 years ago
if addrs:
af, socktype, proto, canonname, sa = addrs[0]
11 years ago
if config_fast_open:
11 years ago
remote = socket.socket(af, socktype, proto)
remote.setsockopt(socket.IPPROTO_TCP,
socket.TCP_NODELAY, 1)
11 years ago
Socks5Server.handle_tcp(sock, remote, encryptor,
addr_to_send, a_server, a_port)
else:
11 years ago
logging.info('connecting %s:%d' % (addr, port[0]))
remote = socket.create_connection((a_server, a_port),
timeout=config_timeout)
remote.settimeout(config_timeout)
11 years ago
remote.setsockopt(socket.IPPROTO_TCP,
socket.TCP_NODELAY, 1)
Socks5Server.handle_tcp(sock, remote, encryptor,
addr_to_send)
11 years ago
except (OSError, IOError) as e:
logging.warn(e)
return
except (OSError, IOError) as e:
raise e
logging.warn(e)
13 years ago
11 years ago
def main():
11 years ago
global config_server, config_server_port, config_password, config_method,\
config_fast_open, config_timeout
11 years ago
logging.basicConfig(level=logging.DEBUG,
format='%(asctime)s %(levelname)-8s %(message)s',
datefmt='%Y-%m-%d %H:%M:%S', filemode='a+')
# fix py2exe
if hasattr(sys, "frozen") and sys.frozen in \
("windows_exe", "console_exe"):
p = os.path.dirname(os.path.abspath(sys.executable))
os.chdir(p)
version = ''
try:
11 years ago
import pkg_resources
version = pkg_resources.get_distribution('shadowsocks').version
11 years ago
except:
11 years ago
pass
print 'shadowsocks %s' % version
11 years ago
config_password = None
config_method = None
11 years ago
config_path = utils.find_config()
11 years ago
try:
optlist, args = getopt.getopt(sys.argv[1:], 's:b:p:k:l:m:c:t:',
11 years ago
['fast-open'])
11 years ago
for key, value in optlist:
if key == '-c':
config_path = value
if config_path:
logging.info('loading config from %s' % config_path)
with open(config_path, 'rb') as f:
try:
config = json.load(f)
except ValueError as e:
11 years ago
logging.error('found an error in config.json: %s',
e.message)
11 years ago
sys.exit(1)
else:
config = {}
optlist, args = getopt.getopt(sys.argv[1:], 's:b:p:k:l:m:c:t:',
11 years ago
['fast-open'])
11 years ago
for key, value in optlist:
if key == '-p':
config['server_port'] = int(value)
elif key == '-k':
config['password'] = value
elif key == '-l':
config['local_port'] = int(value)
elif key == '-s':
config['server'] = value
elif key == '-m':
config['method'] = value
elif key == '-b':
11 years ago
config['local_address'] = value
11 years ago
elif key == '--fast-open':
config['fast_open'] = True
except getopt.GetoptError as e:
logging.error(e)
11 years ago
utils.print_local_help()
sys.exit(2)
12 years ago
11 years ago
config_server = config['server']
config_server_port = config['server_port']
config_local_port = config['local_port']
config_password = config['password']
config_method = config.get('method', None)
config_local_address = config.get('local_address', '127.0.0.1')
config_timeout = int(config.get('timeout', 300))
11 years ago
config_fast_open = config.get('fast_open', False)
11 years ago
if not config_password and not config_path:
11 years ago
sys.exit('config not specified, please read '
'https://github.com/clowwindy/shadowsocks')
utils.check_config(config)
11 years ago
encrypt.init_table(config_password, config_method)
12 years ago
11 years ago
addrs = socket.getaddrinfo(config_local_address, config_local_port)
if not addrs:
11 years ago
logging.error('cant resolve listen address')
11 years ago
sys.exit(1)
ThreadingTCPServer.address_family = addrs[0][0]
12 years ago
try:
11 years ago
udprelay.UDPRelay(config_local_address, int(config_local_port),
config_server, config_server_port, config_password,
config_method, int(config_timeout), True).start()
server = ThreadingTCPServer((config_local_address, config_local_port),
Socks5Server)
server.timeout = int(config_timeout)
11 years ago
logging.info("starting local at %s:%d" %
tuple(server.server_address[:2]))
12 years ago
server.serve_forever()
except socket.error, e:
logging.error(e)
except KeyboardInterrupt:
server.shutdown()
sys.exit(0)
11 years ago
if __name__ == '__main__':
main()