diff --git a/main.go b/main.go index 4d2f05d5..37104b36 100644 --- a/main.go +++ b/main.go @@ -11,6 +11,7 @@ import ( "x-ui/config" "x-ui/database" "x-ui/logger" + "x-ui/sub" "x-ui/v2ui" "x-ui/web" "x-ui/web/global" @@ -50,6 +51,16 @@ func runWebServer() { return } + var subServer *sub.Server + subServer = sub.NewServer() + global.SetSubServer(subServer) + + err = subServer.Start() + if err != nil { + log.Println(err) + return + } + sigCh := make(chan os.Signal, 1) // Trap shutdown signals signal.Notify(sigCh, syscall.SIGHUP, syscall.SIGTERM) @@ -62,6 +73,11 @@ func runWebServer() { if err != nil { logger.Warning("stop server err:", err) } + err = subServer.Stop() + if err != nil { + logger.Warning("stop server err:", err) + } + server = web.NewServer() global.SetWebServer(server) err = server.Start() @@ -69,8 +85,18 @@ func runWebServer() { log.Println(err) return } + + subServer = sub.NewServer() + global.SetSubServer(subServer) + + err = subServer.Start() + if err != nil { + log.Println(err) + return + } default: server.Stop() + subServer.Stop() return } } diff --git a/sub/sub.go b/sub/sub.go new file mode 100644 index 00000000..be541ed2 --- /dev/null +++ b/sub/sub.go @@ -0,0 +1,171 @@ +package sub + +import ( + "context" + "crypto/tls" + "io" + "net" + "net/http" + "strconv" + "strings" + "x-ui/config" + "x-ui/logger" + "x-ui/util/common" + "x-ui/web/network" + "x-ui/web/service" + + "github.com/gin-gonic/gin" +) + +type Server struct { + httpServer *http.Server + listener net.Listener + + sub *SUBController + settingService service.SettingService + + ctx context.Context + cancel context.CancelFunc +} + +func NewServer() *Server { + ctx, cancel := context.WithCancel(context.Background()) + return &Server{ + ctx: ctx, + cancel: cancel, + } +} + +func (s *Server) initRouter() (*gin.Engine, error) { + if config.IsDebug() { + gin.SetMode(gin.DebugMode) + } else { + gin.DefaultWriter = io.Discard + gin.DefaultErrorWriter = io.Discard + gin.SetMode(gin.ReleaseMode) + } + + engine := gin.Default() + + subPath, err := s.settingService.GetSubPath() + if err != nil { + return nil, err + } + + subDomain, err := s.settingService.GetSubDomain() + if err != nil { + return nil, err + } + + if subDomain != "" { + validateDomain := func(c *gin.Context) { + host := strings.Split(c.Request.Host, ":")[0] + + if host != subDomain { + c.AbortWithStatus(http.StatusForbidden) + return + } + + c.Next() + } + + engine.Use(validateDomain) + } + + g := engine.Group(subPath) + + s.sub = NewSUBController(g) + + return engine, nil +} + +func (s *Server) Start() (err error) { + //This is an anonymous function, no function name + defer func() { + if err != nil { + s.Stop() + } + }() + + subEnable, err := s.settingService.GetSubEnable() + if err != nil { + return err + } + if !subEnable { + return nil + } + + engine, err := s.initRouter() + if err != nil { + return err + } + + certFile, err := s.settingService.GetSubCertFile() + if err != nil { + return err + } + keyFile, err := s.settingService.GetSubKeyFile() + if err != nil { + return err + } + listen, err := s.settingService.GetSubListen() + if err != nil { + return err + } + port, err := s.settingService.GetSubPort() + if err != nil { + return err + } + listenAddr := net.JoinHostPort(listen, strconv.Itoa(port)) + listener, err := net.Listen("tcp", listenAddr) + if err != nil { + return err + } + if certFile != "" || keyFile != "" { + cert, err := tls.LoadX509KeyPair(certFile, keyFile) + if err != nil { + listener.Close() + return err + } + c := &tls.Config{ + Certificates: []tls.Certificate{cert}, + } + listener = network.NewAutoHttpsListener(listener) + listener = tls.NewListener(listener, c) + } + + if certFile != "" || keyFile != "" { + logger.Info("Sub server run https on", listener.Addr()) + } else { + logger.Info("Sub server run http on", listener.Addr()) + } + s.listener = listener + + s.httpServer = &http.Server{ + Handler: engine, + } + + go func() { + s.httpServer.Serve(listener) + }() + + return nil +} + +func (s *Server) Stop() error { + s.cancel() + + var err1 error + var err2 error + if s.httpServer != nil { + err1 = s.httpServer.Shutdown(s.ctx) + } + if s.listener != nil { + err2 = s.listener.Close() + } + return common.Combine(err1, err2) +} + +func (s *Server) GetCtx() context.Context { + return s.ctx +} diff --git a/web/controller/sub.go b/sub/subController.go similarity index 89% rename from web/controller/sub.go rename to sub/subController.go index 2b218c21..69d9086d 100644 --- a/web/controller/sub.go +++ b/sub/subController.go @@ -1,17 +1,14 @@ -package controller +package sub import ( "encoding/base64" "strings" - "x-ui/web/service" "github.com/gin-gonic/gin" ) type SUBController struct { - BaseController - - subService service.SubService + subService SubService } func NewSUBController(g *gin.RouterGroup) *SUBController { @@ -21,7 +18,7 @@ func NewSUBController(g *gin.RouterGroup) *SUBController { } func (a *SUBController) initRouter(g *gin.RouterGroup) { - g = g.Group("/sub") + g = g.Group("/") g.GET("/:subid", a.subs) } diff --git a/web/service/sub.go b/sub/subService.go similarity index 90% rename from web/service/sub.go rename to sub/subService.go index a5a80004..32c57c81 100644 --- a/web/service/sub.go +++ b/sub/subService.go @@ -1,4 +1,4 @@ -package service +package sub import ( "encoding/base64" @@ -8,6 +8,7 @@ import ( "x-ui/database" "x-ui/database/model" "x-ui/logger" + "x-ui/web/service" "x-ui/xray" "github.com/goccy/go-json" @@ -15,7 +16,8 @@ import ( type SubService struct { address string - inboundService InboundService + inboundService service.InboundService + settingServics service.SettingService } func (s *SubService) GetSubs(subId string, host string) ([]string, []string, error) { @@ -29,7 +31,7 @@ func (s *SubService) GetSubs(subId string, host string) ([]string, []string, err return nil, nil, err } for _, inbound := range inbounds { - clients, err := s.inboundService.getClients(inbound) + clients, err := s.inboundService.GetClients(inbound) if err != nil { logger.Error("SubService - GetSub: Unable to get clients from inbound") } @@ -66,7 +68,8 @@ func (s *SubService) GetSubs(subId string, host string) ([]string, []string, err } } headers = append(headers, fmt.Sprintf("upload=%d; download=%d; total=%d; expire=%d", traffic.Up, traffic.Down, traffic.Total, traffic.ExpiryTime/1000)) - headers = append(headers, "12") + updateInterval, _ := s.settingServics.GetSubUpdates() + headers = append(headers, fmt.Sprintf("%d", updateInterval)) headers = append(headers, subId) return result, headers, nil } @@ -163,6 +166,7 @@ func (s *SubService) genVmessLink(inbound *model.Inbound, email string) string { } security, _ := stream["security"].(string) + var domains []interface{} obj["tls"] = security if security == "tls" { tlsSetting, _ := stream["tlsSettings"].(map[string]interface{}) @@ -185,6 +189,9 @@ func (s *SubService) genVmessLink(inbound *model.Inbound, email string) string { if insecure, ok := searchKey(tlsSettings, "allowInsecure"); ok { obj["allowInsecure"], _ = insecure.(bool) } + if domainSettings, ok := searchKey(tlsSettings, "domains"); ok { + domains, _ = domainSettings.([]interface{}) + } } serverName, _ := tlsSetting["serverName"].(string) if serverName != "" { @@ -192,7 +199,7 @@ func (s *SubService) genVmessLink(inbound *model.Inbound, email string) string { } } - clients, _ := s.inboundService.getClients(inbound) + clients, _ := s.inboundService.GetClients(inbound) clientIndex := -1 for i, client := range clients { if client.Email == email { @@ -203,6 +210,21 @@ func (s *SubService) genVmessLink(inbound *model.Inbound, email string) string { obj["id"] = clients[clientIndex].ID obj["aid"] = clients[clientIndex].AlterIds + if len(domains) > 0 { + links := "" + for index, d := range domains { + domain := d.(map[string]interface{}) + obj["ps"] = remark + "-" + domain["remark"].(string) + obj["add"] = domain["domain"].(string) + if index > 0 { + links += "\n" + } + jsonStr, _ := json.MarshalIndent(obj, "", " ") + links += "vmess://" + base64.StdEncoding.EncodeToString(jsonStr) + } + return links + } + jsonStr, _ := json.MarshalIndent(obj, "", " ") return "vmess://" + base64.StdEncoding.EncodeToString(jsonStr) } @@ -214,7 +236,7 @@ func (s *SubService) genVlessLink(inbound *model.Inbound, email string) string { } var stream map[string]interface{} json.Unmarshal([]byte(inbound.StreamSettings), &stream) - clients, _ := s.inboundService.getClients(inbound) + clients, _ := s.inboundService.GetClients(inbound) clientIndex := -1 for i, client := range clients { if client.Email == email { @@ -270,6 +292,7 @@ func (s *SubService) genVlessLink(inbound *model.Inbound, email string) string { } security, _ := stream["security"].(string) + var domains []interface{} if security == "tls" { params["security"] = "tls" tlsSetting, _ := stream["tlsSettings"].(map[string]interface{}) @@ -294,6 +317,9 @@ func (s *SubService) genVlessLink(inbound *model.Inbound, email string) string { params["allowInsecure"] = "1" } } + if domainSettings, ok := searchKey(tlsSettings, "domains"); ok { + domains, _ = domainSettings.([]interface{}) + } } if streamNetwork == "tcp" && len(clients[clientIndex].Flow) > 0 { @@ -354,8 +380,22 @@ func (s *SubService) genVlessLink(inbound *model.Inbound, email string) string { // Set the new query values on the URL url.RawQuery = q.Encode() - remark := fmt.Sprintf("%s-%s", inbound.Remark, email) + + if len(domains) > 0 { + links := "" + for index, d := range domains { + domain := d.(map[string]interface{}) + url.Fragment = remark + "-" + domain["remark"].(string) + url.Host = domain["domain"].(string) + if index > 0 { + links += "\n" + } + links += url.String() + } + return links + } + url.Fragment = remark return url.String() } @@ -367,7 +407,7 @@ func (s *SubService) genTrojanLink(inbound *model.Inbound, email string) string } var stream map[string]interface{} json.Unmarshal([]byte(inbound.StreamSettings), &stream) - clients, _ := s.inboundService.getClients(inbound) + clients, _ := s.inboundService.GetClients(inbound) clientIndex := -1 for i, client := range clients { if client.Email == email { @@ -423,6 +463,7 @@ func (s *SubService) genTrojanLink(inbound *model.Inbound, email string) string } security, _ := stream["security"].(string) + var domains []interface{} if security == "tls" { params["security"] = "tls" tlsSetting, _ := stream["tlsSettings"].(map[string]interface{}) @@ -447,6 +488,9 @@ func (s *SubService) genTrojanLink(inbound *model.Inbound, email string) string params["allowInsecure"] = "1" } } + if domainSettings, ok := searchKey(tlsSettings, "domains"); ok { + domains, _ = domainSettings.([]interface{}) + } } serverName, _ := tlsSetting["serverName"].(string) @@ -506,6 +550,21 @@ func (s *SubService) genTrojanLink(inbound *model.Inbound, email string) string url.RawQuery = q.Encode() remark := fmt.Sprintf("%s-%s", inbound.Remark, email) + + if len(domains) > 0 { + links := "" + for index, d := range domains { + domain := d.(map[string]interface{}) + url.Fragment = remark + "-" + domain["remark"].(string) + url.Host = fmt.Sprintf("%s:%d", domain["domain"].(string), port) + if index > 0 { + links += "\n" + } + links += url.String() + } + return links + } + url.Fragment = remark return url.String() } @@ -517,7 +576,7 @@ func (s *SubService) genShadowsocksLink(inbound *model.Inbound, email string) st } var stream map[string]interface{} json.Unmarshal([]byte(inbound.StreamSettings), &stream) - clients, _ := s.inboundService.getClients(inbound) + clients, _ := s.inboundService.GetClients(inbound) var settings map[string]interface{} json.Unmarshal([]byte(inbound.Settings), &settings) diff --git a/web/assets/js/model/models.js b/web/assets/js/model/models.js index 03064a59..d7fc7981 100644 --- a/web/assets/js/model/models.js +++ b/web/assets/js/model/models.js @@ -180,6 +180,14 @@ class AllSetting { this.tgBotBackup = false; this.tgCpu = ""; this.xrayTemplateConfig = ""; + this.subEnable = false; + this.subListen = ""; + this.subPort = "2096"; + this.subPath = "sub/"; + this.subDomain = ""; + this.subCertFile = ""; + this.subKeyFile = ""; + this.subUpdates = 0; this.timeLocation = "Asia/Tehran"; diff --git a/web/controller/setting.go b/web/controller/setting.go index 623a34ce..305c5222 100644 --- a/web/controller/setting.go +++ b/web/controller/setting.go @@ -70,11 +70,56 @@ func (a *SettingController) getDefaultSettings(c *gin.Context) { jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) return } + tgBotEnable, err := a.settingService.GetTgbotenabled() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subEnable, err := a.settingService.GetSubEnable() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subPort, err := a.settingService.GetSubPort() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subPath, err := a.settingService.GetSubPath() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subDomain, err := a.settingService.GetSubDomain() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subKeyFile, err := a.settingService.GetSubKeyFile() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subCertFile, err := a.settingService.GetSubCertFile() + if err != nil { + jsonMsg(c, I18n(c, "pages.settings.toasts.getSettings"), err) + return + } + subTLS := false + if subKeyFile != "" || subCertFile != "" { + subTLS = true + } result := map[string]interface{}{ "expireDiff": expireDiff, "trafficDiff": trafficDiff, "defaultCert": defaultCert, "defaultKey": defaultKey, + "tgBotEnable": tgBotEnable, + "subEnable": subEnable, + "subPort": subPort, + "subPath": subPath, + "subDomain": subDomain, + "subTLS": subTLS, } jsonObj(c, result, nil) } diff --git a/web/entity/entity.go b/web/entity/entity.go index 0186a8c6..cfdd3b6b 100644 --- a/web/entity/entity.go +++ b/web/entity/entity.go @@ -43,6 +43,14 @@ type AllSetting struct { TgCpu int `json:"tgCpu" form:"tgCpu"` XrayTemplateConfig string `json:"xrayTemplateConfig" form:"xrayTemplateConfig"` TimeLocation string `json:"timeLocation" form:"timeLocation"` + SubEnable bool `json:"subEnable" form:"subEnable"` + SubListen string `json:"subListen" form:"subListen"` + SubPort int `json:"subPort" form:"subPort"` + SubPath string `json:"subPath" form:"subPath"` + SubDomain string `json:"subDomain" form:"subDomain"` + SubCertFile string `json:"subCertFile" form:"subCertFile"` + SubKeyFile string `json:"subKeyFile" form:"subKeyFile"` + SubUpdates int `json:"subUpdates" form:"subUpdates"` } func (s *AllSetting) CheckValid() error { @@ -53,10 +61,25 @@ func (s *AllSetting) CheckValid() error { } } + if s.SubListen != "" { + ip := net.ParseIP(s.SubListen) + if ip == nil { + return common.NewError("Sub listen is not valid ip:", s.SubListen) + } + } + if s.WebPort <= 0 || s.WebPort > 65535 { return common.NewError("web port is not a valid port:", s.WebPort) } + if s.SubPort <= 0 || s.SubPort > 65535 { + return common.NewError("Sub port is not a valid port:", s.SubPort) + } + + if s.SubPort == s.WebPort { + return common.NewError("Sub and Web could not use same port:", s.SubPort) + } + if s.WebCertFile != "" || s.WebKeyFile != "" { _, err := tls.LoadX509KeyPair(s.WebCertFile, s.WebKeyFile) if err != nil { @@ -64,6 +87,13 @@ func (s *AllSetting) CheckValid() error { } } + if s.SubCertFile != "" || s.SubKeyFile != "" { + _, err := tls.LoadX509KeyPair(s.SubCertFile, s.SubKeyFile) + if err != nil { + return common.NewErrorf("cert file <%v> or key file <%v> invalid: %v", s.SubCertFile, s.SubKeyFile, err) + } + } + if !strings.HasPrefix(s.WebBasePath, "/") { s.WebBasePath = "/" + s.WebBasePath } diff --git a/web/global/global.go b/web/global/global.go index 09d0683a..7d0b4e1f 100644 --- a/web/global/global.go +++ b/web/global/global.go @@ -2,17 +2,23 @@ package global import ( "context" - "github.com/robfig/cron/v3" _ "unsafe" + + "github.com/robfig/cron/v3" ) var webServer WebServer +var subServer SubServer type WebServer interface { GetCron() *cron.Cron GetCtx() context.Context } +type SubServer interface { + GetCtx() context.Context +} + func SetWebServer(s WebServer) { webServer = s } @@ -20,3 +26,11 @@ func SetWebServer(s WebServer) { func GetWebServer() WebServer { return webServer } + +func SetSubServer(s SubServer) { + subServer = s +} + +func GetSubServer() SubServer { + return subServer +} diff --git a/web/html/xui/client_bulk_modal.html b/web/html/xui/client_bulk_modal.html index ff636e71..37e8045d 100644 --- a/web/html/xui/client_bulk_modal.html +++ b/web/html/xui/client_bulk_modal.html @@ -71,7 +71,7 @@ -
| Subscription link | -
- [[ subBase + infoModal.clientSettings.subId ]]
- |
-
| Telegram Username | -@[[ infoModal.clientSettings.tgId ]] | -