mirror of
https://github.com/v2fly/v2ray-core.git
synced 2025-01-18 07:17:32 -05:00
d29370a654
1. Enables http outbound to set up a HTTP tunnel above HTTP/1.1, HTTP/1.1 over TLS, or HTTP/2 over TLS. Previously it only works for plain HTTP/1.1 2. In setting up CONNECT tunnel, replaces handcrafted request with standard http.Request
68 lines
1.4 KiB
Go
68 lines
1.4 KiB
Go
// +build !confonly
|
|
|
|
package tls
|
|
|
|
import (
|
|
"crypto/tls"
|
|
|
|
"v2ray.com/core/common/buf"
|
|
"v2ray.com/core/common/net"
|
|
|
|
utls "github.com/refraction-networking/utls"
|
|
)
|
|
|
|
//go:generate errorgen
|
|
|
|
var (
|
|
_ buf.Writer = (*Conn)(nil)
|
|
)
|
|
|
|
type Conn struct {
|
|
*tls.Conn
|
|
}
|
|
|
|
func (c *Conn) WriteMultiBuffer(mb buf.MultiBuffer) error {
|
|
mb = buf.Compact(mb)
|
|
mb, err := buf.WriteMultiBuffer(c, mb)
|
|
buf.ReleaseMulti(mb)
|
|
return err
|
|
}
|
|
|
|
func (c *Conn) HandshakeAddress() net.Address {
|
|
if err := c.Handshake(); err != nil {
|
|
return nil
|
|
}
|
|
state := c.ConnectionState()
|
|
if state.ServerName == "" {
|
|
return nil
|
|
}
|
|
return net.ParseAddress(state.ServerName)
|
|
}
|
|
|
|
// Client initiates a TLS client handshake on the given connection.
|
|
func Client(c net.Conn, config *tls.Config) net.Conn {
|
|
tlsConn := tls.Client(c, config)
|
|
return &Conn{Conn: tlsConn}
|
|
}
|
|
|
|
func copyConfig(c *tls.Config) *utls.Config {
|
|
return &utls.Config{
|
|
NextProtos: c.NextProtos,
|
|
ServerName: c.ServerName,
|
|
InsecureSkipVerify: c.InsecureSkipVerify,
|
|
MinVersion: utls.VersionTLS12,
|
|
MaxVersion: utls.VersionTLS12,
|
|
}
|
|
}
|
|
|
|
func UClient(c net.Conn, config *tls.Config) net.Conn {
|
|
uConfig := copyConfig(config)
|
|
return utls.Client(c, uConfig)
|
|
}
|
|
|
|
// Server initiates a TLS server handshake on the given connection.
|
|
func Server(c net.Conn, config *tls.Config) net.Conn {
|
|
tlsConn := tls.Server(c, config)
|
|
return &Conn{Conn: tlsConn}
|
|
}
|