wireguard.go 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195
  1. package proxy
  2. import (
  3. "bytes"
  4. "context"
  5. "encoding/binary"
  6. "fmt"
  7. "log"
  8. "net"
  9. "runtime"
  10. "strconv"
  11. "github.com/c-robinson/iplib"
  12. "github.com/gravitl/netmaker/netclient/netclient-proxy/common"
  13. "github.com/gravitl/netmaker/netclient/netclient-proxy/packet"
  14. "github.com/gravitl/netmaker/netclient/netclient-proxy/wg"
  15. )
  16. func NewProxy(config Config) *Proxy {
  17. p := &Proxy{Config: config}
  18. p.Ctx, p.Cancel = context.WithCancel(context.Background())
  19. return p
  20. }
  21. // proxyToRemote proxies everything from Wireguard to the RemoteKey peer
  22. func (p *Proxy) ProxyToRemote() {
  23. buf := make([]byte, 1500)
  24. for {
  25. select {
  26. case <-p.Ctx.Done():
  27. log.Printf("stopped proxying to remote peer %s due to closed connection\n", p.Config.RemoteKey)
  28. return
  29. default:
  30. n, err := p.LocalConn.Read(buf)
  31. if err != nil {
  32. log.Println("ERRR READ: ", err)
  33. continue
  34. }
  35. if peerI, ok := common.Peers[p.Config.RemoteKey]; ok {
  36. log.Println("PROCESSING PKT BEFORE SENDING")
  37. buf, n, err = packet.ProcessPacketBeforeSending(buf, n, peerI.Config.RemoteWgPort)
  38. if err != nil {
  39. log.Println("failed to process pkt before sending: ", err)
  40. }
  41. } else {
  42. log.Printf("Peer: %s not found in config\n", p.Config.RemoteKey)
  43. }
  44. // test(n, buf)
  45. log.Printf("PROXING TO REMOTE!!!---> %s >>>>> %s\n", p.Config.ProxyServer.Server.LocalAddr().String(), p.RemoteConn.RemoteAddr().String())
  46. host, port, _ := net.SplitHostPort(p.RemoteConn.RemoteAddr().String())
  47. portInt, _ := strconv.Atoi(port)
  48. _, err = p.Config.ProxyServer.Server.WriteToUDP(buf[:n], &net.UDPAddr{
  49. IP: net.ParseIP(host),
  50. Port: portInt,
  51. })
  52. if err != nil {
  53. log.Println("Failed to send to remote: ", err)
  54. }
  55. }
  56. }
  57. }
  58. func test(n int, data []byte) {
  59. var localWgPort uint16
  60. //portBuf := data[n-2 : n+1]
  61. portBuf := data[2:4]
  62. reader := bytes.NewReader(portBuf)
  63. err := binary.Read(reader, binary.BigEndian, &localWgPort)
  64. if err != nil {
  65. log.Println("Failed to read port buffer: ", err)
  66. }
  67. log.Println("TEST WFGPO: ", localWgPort)
  68. }
  69. // proxyToLocal proxies everything from the RemoteKey peer to local Wireguard
  70. func (p *Proxy) ProxyToLocal() {
  71. buf := make([]byte, 1500)
  72. for {
  73. select {
  74. case <-p.Ctx.Done():
  75. log.Printf("stopped proxying from remote peer %s due to closed connection\n", p.Config.RemoteKey)
  76. return
  77. default:
  78. n, err := p.RemoteConn.Read(buf)
  79. if err != nil {
  80. continue
  81. }
  82. log.Printf("PROXING TO LOCAL!!!---> %s <<<<<<<< %s\n", p.LocalConn.LocalAddr().String(), p.RemoteConn.RemoteAddr().String())
  83. _, err = p.LocalConn.Write(buf[:n])
  84. if err != nil {
  85. continue
  86. }
  87. }
  88. }
  89. }
  90. func (p *Proxy) updateEndpoint() error {
  91. udpAddr, err := net.ResolveUDPAddr("udp", p.LocalConn.LocalAddr().String())
  92. if err != nil {
  93. return err
  94. }
  95. log.Println("--------> UDPADDR: ", udpAddr)
  96. // add local proxy connection as a Wireguard peer
  97. err = p.Config.WgInterface.UpdatePeer(p.Config.RemoteKey, p.Config.AllowedIps, wg.DefaultWgKeepAlive,
  98. udpAddr, p.Config.PreSharedKey)
  99. if err != nil {
  100. return err
  101. }
  102. return nil
  103. }
  104. func (p *Proxy) Start(remoteConn net.Conn) error {
  105. p.RemoteConn = remoteConn
  106. var err error
  107. addr, err := GetFreeIp("127.0.0.1/8")
  108. if err != nil {
  109. log.Println("Failed to get freeIp: ", err)
  110. return err
  111. }
  112. wgAddr := "127.0.0.1"
  113. if runtime.GOOS == "darwin" {
  114. wgAddr = addr
  115. }
  116. wgPort, err := p.Config.WgInterface.GetListenPort()
  117. if err != nil {
  118. log.Printf("Failed to get listen port for iface: %s,Err: %v\n", p.Config.WgInterface.Name, err)
  119. return err
  120. }
  121. p.LocalConn, err = net.DialUDP("udp", &net.UDPAddr{
  122. IP: net.ParseIP(addr),
  123. Port: common.NmProxyPort,
  124. }, &net.UDPAddr{
  125. IP: net.ParseIP(wgAddr),
  126. Port: *wgPort,
  127. })
  128. if err != nil {
  129. log.Fatalf("failed dialing to local Wireguard port,Err: %v\n", err)
  130. }
  131. log.Printf("Dialing to local Wireguard port %s --> %s\n", p.LocalConn.LocalAddr().String(), p.LocalConn.RemoteAddr().String())
  132. err = p.updateEndpoint()
  133. if err != nil {
  134. log.Printf("error while updating Wireguard peer endpoint [%s] %v\n", p.Config.RemoteKey, err)
  135. return err
  136. }
  137. go p.ProxyToRemote()
  138. return nil
  139. }
  140. func GetFreeIp(cidrAddr string) (string, error) {
  141. //ensure AddressRange is valid
  142. if _, _, err := net.ParseCIDR(cidrAddr); err != nil {
  143. log.Println("UniqueAddress encountered an error")
  144. return "", err
  145. }
  146. net4 := iplib.Net4FromStr(cidrAddr)
  147. newAddrs := net4.FirstAddress()
  148. log.Println("COUNT: ", net4.Count())
  149. for {
  150. if runtime.GOOS == "darwin" {
  151. _, err := common.RunCmd(fmt.Sprintf("ifconfig lo0 alias %s 255.255.255.255", newAddrs.String()), true)
  152. if err != nil {
  153. log.Println("Failed to add alias: ", err)
  154. }
  155. }
  156. conn, err := net.DialUDP("udp", &net.UDPAddr{
  157. IP: net.ParseIP(newAddrs.String()),
  158. Port: 51722,
  159. }, &net.UDPAddr{
  160. IP: net.ParseIP("127.0.0.1"),
  161. Port: 51820,
  162. })
  163. if err == nil {
  164. conn.Close()
  165. return newAddrs.String(), nil
  166. }
  167. newAddrs, err = net4.NextIP(newAddrs)
  168. if err != nil {
  169. return "", err
  170. }
  171. }
  172. }