2021-04-03 21:09:34 +02:00
|
|
|
package tunnel
|
|
|
|
|
|
|
|
import (
|
|
|
|
"context"
|
2021-04-05 17:41:15 +02:00
|
|
|
"net"
|
2021-04-03 21:09:34 +02:00
|
|
|
"os"
|
|
|
|
|
2021-04-05 17:41:15 +02:00
|
|
|
"github.com/armon/go-socks5"
|
2021-04-03 21:25:08 +02:00
|
|
|
"github.com/cretz/bine/control"
|
|
|
|
"github.com/cretz/bine/tor"
|
2021-04-03 21:09:34 +02:00
|
|
|
"github.com/ooni/psiphon/oopsi/github.com/Psiphon-Labs/psiphon-tunnel-core/ClientLibrary/clientlib"
|
2021-05-04 08:14:25 +02:00
|
|
|
"golang.org/x/sys/execabs"
|
2021-04-03 21:09:34 +02:00
|
|
|
)
|
|
|
|
|
2021-05-04 08:14:25 +02:00
|
|
|
// Logger is the logger to use. Its signature is compatibile
|
|
|
|
// with the apex/log logger signature.
|
|
|
|
type Logger interface {
|
|
|
|
// Infof formats and emits an informative message
|
|
|
|
Infof(format string, v ...interface{})
|
|
|
|
}
|
|
|
|
|
2021-04-05 11:27:41 +02:00
|
|
|
// Config contains the configuration for creating a Tunnel instance. You need
|
2021-04-05 16:08:16 +02:00
|
|
|
// to fill all the mandatory fields. You SHOULD NOT modify the content of this
|
2021-04-05 11:27:41 +02:00
|
|
|
// structure while in use, because that may lead to data races.
|
2021-04-03 21:09:34 +02:00
|
|
|
type Config struct {
|
2021-05-04 08:14:25 +02:00
|
|
|
// Logger is the logger to use. If empty we use a default
|
|
|
|
// implementation that does not emit any output.
|
|
|
|
Logger Logger
|
|
|
|
|
2021-04-03 21:09:34 +02:00
|
|
|
// Name is the mandatory name of the tunnel. We support
|
2021-04-05 17:41:15 +02:00
|
|
|
// "tor", "psiphon", and "fake" tunnels. You SHOULD
|
|
|
|
// use "fake" tunnels only for testing: they don't provide
|
|
|
|
// any real tunneling, just a socks5 proxy.
|
2021-04-03 21:09:34 +02:00
|
|
|
Name string
|
|
|
|
|
2021-04-05 16:08:16 +02:00
|
|
|
// Session is the mandatory measurement session, or a suitable
|
|
|
|
// mock of the required functionality. That is, the possibility
|
|
|
|
// of obtaining a valid psiphon configuration.
|
2021-04-03 21:09:34 +02:00
|
|
|
Session Session
|
|
|
|
|
2021-04-05 11:27:41 +02:00
|
|
|
// TorArgs contains the optional arguments that you want us to pass
|
2021-04-04 12:08:13 +02:00
|
|
|
// to the tor binary when invoking it. By default we do not
|
|
|
|
// pass any extra argument. This flag might be useful to
|
|
|
|
// configure pluggable transports.
|
|
|
|
TorArgs []string
|
|
|
|
|
2021-04-05 11:27:41 +02:00
|
|
|
// TorBinary is the optional path of the TorBinary we SHOULD be
|
2021-04-04 12:08:13 +02:00
|
|
|
// executing. When not set, we execute `tor`.
|
|
|
|
TorBinary string
|
|
|
|
|
2021-04-05 11:27:41 +02:00
|
|
|
// TunnelDir is the mandatory directory in which the tunnel SHOULD
|
|
|
|
// store its state, if any. If this field is empty, the
|
|
|
|
// Start function fails with ErrEmptyTunnelDir.
|
|
|
|
TunnelDir string
|
2021-04-03 21:09:34 +02:00
|
|
|
|
2021-05-04 08:14:25 +02:00
|
|
|
// testExecabsLookPath allows us to mock exeabs.LookPath
|
|
|
|
testExecabsLookPath func(name string) (string, error)
|
|
|
|
|
2021-04-03 21:09:34 +02:00
|
|
|
// testMkdirAll allows us to mock os.MkdirAll in testing code.
|
|
|
|
testMkdirAll func(path string, perm os.FileMode) error
|
|
|
|
|
2021-04-05 17:41:15 +02:00
|
|
|
// testNetListen allows us to mock net.Listen in testing code.
|
|
|
|
testNetListen func(network string, address string) (net.Listener, error)
|
|
|
|
|
|
|
|
// testSocks5New allows us to mock socks5.New in testing code.
|
|
|
|
testSocks5New func(conf *socks5.Config) (*socks5.Server, error)
|
|
|
|
|
2021-04-03 21:09:34 +02:00
|
|
|
// testStartPsiphon allows us to mock psiphon's clientlib.StartTunnel.
|
|
|
|
testStartPsiphon func(ctx context.Context, config []byte,
|
|
|
|
workdir string) (*clientlib.PsiphonTunnel, error)
|
2021-04-03 21:25:08 +02:00
|
|
|
|
|
|
|
// testTorStart allows us to mock tor.Start.
|
|
|
|
testTorStart func(ctx context.Context, conf *tor.StartConf) (*tor.Tor, error)
|
|
|
|
|
|
|
|
// testTorEnableNetwork allows us to fake a failure when
|
|
|
|
// telling to the tor daemon to enable the network.
|
|
|
|
testTorEnableNetwork func(ctx context.Context, tor *tor.Tor, wait bool) error
|
|
|
|
|
|
|
|
// testTorGetInfo allows us to fake a failure when
|
|
|
|
// getting info from the tor control port.
|
|
|
|
testTorGetInfo func(ctrl *control.Conn, keys ...string) ([]*control.KeyVal, error)
|
2021-04-03 21:09:34 +02:00
|
|
|
}
|
|
|
|
|
2021-05-04 08:14:25 +02:00
|
|
|
// silentLogger is a logger that does not emit output.
|
|
|
|
type silentLogger struct{}
|
|
|
|
|
|
|
|
// Infof implements Logger.Infof.
|
|
|
|
func (sl *silentLogger) Infof(format string, v ...interface{}) {}
|
|
|
|
|
|
|
|
// defaultLogger is the default logger.
|
|
|
|
var defaultLogger = &silentLogger{}
|
|
|
|
|
|
|
|
// logger returns the logger to use.
|
|
|
|
func (c *Config) logger() Logger {
|
|
|
|
if c.Logger != nil {
|
|
|
|
return c.Logger
|
|
|
|
}
|
|
|
|
return defaultLogger
|
|
|
|
}
|
|
|
|
|
|
|
|
// execabsLookPath calls either testExeabsLookPath or execabs.LookPath
|
|
|
|
func (c *Config) execabsLookPath(name string) (string, error) {
|
|
|
|
if c.testExecabsLookPath != nil {
|
|
|
|
return c.testExecabsLookPath(name)
|
|
|
|
}
|
|
|
|
return execabs.LookPath(name)
|
|
|
|
}
|
|
|
|
|
2021-04-03 21:09:34 +02:00
|
|
|
// mkdirAll calls either testMkdirAll or os.MkdirAll.
|
|
|
|
func (c *Config) mkdirAll(path string, perm os.FileMode) error {
|
|
|
|
if c.testMkdirAll != nil {
|
|
|
|
return c.testMkdirAll(path, perm)
|
|
|
|
}
|
|
|
|
return os.MkdirAll(path, perm)
|
|
|
|
}
|
|
|
|
|
2021-04-05 17:41:15 +02:00
|
|
|
// netListen calls either testNetListen or net.Listen.
|
|
|
|
func (c *Config) netListen(network string, address string) (net.Listener, error) {
|
|
|
|
if c.testNetListen != nil {
|
|
|
|
return c.testNetListen(network, address)
|
|
|
|
}
|
|
|
|
return net.Listen(network, address)
|
|
|
|
}
|
|
|
|
|
|
|
|
// socks5New calls either testSocks5New or socks5.New
|
|
|
|
func (c *Config) socks5New(conf *socks5.Config) (*socks5.Server, error) {
|
|
|
|
if c.testSocks5New != nil {
|
|
|
|
return c.testSocks5New(conf)
|
|
|
|
}
|
|
|
|
return socks5.New(conf)
|
|
|
|
}
|
|
|
|
|
2021-04-03 21:09:34 +02:00
|
|
|
// startPsiphon calls either testStartPsiphon or psiphon's clientlib.StartTunnel.
|
|
|
|
func (c *Config) startPsiphon(ctx context.Context, config []byte,
|
|
|
|
workdir string) (*clientlib.PsiphonTunnel, error) {
|
|
|
|
if c.testStartPsiphon != nil {
|
|
|
|
return c.testStartPsiphon(ctx, config, workdir)
|
|
|
|
}
|
|
|
|
return clientlib.StartTunnel(ctx, config, "", clientlib.Parameters{
|
|
|
|
DataRootDirectory: &workdir}, nil, nil)
|
|
|
|
}
|
2021-04-03 21:25:08 +02:00
|
|
|
|
2021-05-04 08:14:25 +02:00
|
|
|
// torBinary returns the tor binary path, if configured, or
|
|
|
|
// the default path, otherwise.
|
|
|
|
func (c *Config) torBinary() string {
|
|
|
|
if c.TorBinary != "" {
|
|
|
|
return c.TorBinary
|
|
|
|
}
|
|
|
|
return "tor"
|
|
|
|
}
|
|
|
|
|
2021-04-03 21:25:08 +02:00
|
|
|
// torStart calls either testTorStart or tor.Start.
|
|
|
|
func (c *Config) torStart(ctx context.Context, conf *tor.StartConf) (*tor.Tor, error) {
|
|
|
|
if c.testTorStart != nil {
|
|
|
|
return c.testTorStart(ctx, conf)
|
|
|
|
}
|
|
|
|
return tor.Start(ctx, conf)
|
|
|
|
}
|
|
|
|
|
|
|
|
// torEnableNetwork calls either testTorEnableNetwork or tor.EnableNetwork.
|
|
|
|
func (c *Config) torEnableNetwork(ctx context.Context, tor *tor.Tor, wait bool) error {
|
|
|
|
if c.testTorEnableNetwork != nil {
|
|
|
|
return c.testTorEnableNetwork(ctx, tor, wait)
|
|
|
|
}
|
|
|
|
return tor.EnableNetwork(ctx, wait)
|
|
|
|
}
|
|
|
|
|
|
|
|
// torGetInfo calls either testTorGetInfo or ctrl.GetInfo.
|
|
|
|
func (c *Config) torGetInfo(ctrl *control.Conn, keys ...string) ([]*control.KeyVal, error) {
|
|
|
|
if c.testTorGetInfo != nil {
|
|
|
|
return c.testTorGetInfo(ctrl, keys...)
|
|
|
|
}
|
|
|
|
return ctrl.GetInfo(keys...)
|
|
|
|
}
|