2018-08-13 00:42:59 +08:00
|
|
|
package ipset
|
2017-08-28 19:23:32 +08:00
|
|
|
|
|
|
|
import (
|
2022-02-03 00:04:17 +08:00
|
|
|
"net/netip"
|
2017-08-28 19:23:32 +08:00
|
|
|
"strings"
|
|
|
|
"sync"
|
|
|
|
|
2020-09-27 00:08:16 +08:00
|
|
|
"github.com/nadoo/ipset"
|
2020-09-26 23:34:26 +08:00
|
|
|
|
2020-09-27 00:08:16 +08:00
|
|
|
"github.com/nadoo/glider/rule"
|
2018-06-28 09:49:23 +08:00
|
|
|
)
|
2017-08-28 19:23:32 +08:00
|
|
|
|
2020-09-25 11:04:13 +08:00
|
|
|
// Manager struct.
|
2018-08-14 19:33:18 +08:00
|
|
|
type Manager struct {
|
2017-08-28 19:23:32 +08:00
|
|
|
domainSet sync.Map
|
|
|
|
}
|
|
|
|
|
2018-08-14 19:33:18 +08:00
|
|
|
// NewManager returns a Manager
|
2018-11-27 23:25:20 +08:00
|
|
|
func NewManager(rules []*rule.Config) (*Manager, error) {
|
2020-09-27 00:08:16 +08:00
|
|
|
if err := ipset.Init(); err != nil {
|
2017-08-28 19:23:32 +08:00
|
|
|
return nil, err
|
|
|
|
}
|
2017-08-29 18:36:42 +08:00
|
|
|
|
2022-01-23 00:13:49 +08:00
|
|
|
m := &Manager{}
|
2020-08-26 19:21:35 +08:00
|
|
|
sets := make(map[string]struct{})
|
|
|
|
|
2018-11-27 23:25:20 +08:00
|
|
|
for _, r := range rules {
|
2022-01-29 21:10:09 +08:00
|
|
|
if r.IPSet == "" {
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
|
|
|
|
if _, ok := sets[r.IPSet]; !ok {
|
|
|
|
sets[r.IPSet] = struct{}{}
|
|
|
|
ipset.Create(r.IPSet)
|
|
|
|
ipset.Flush(r.IPSet)
|
|
|
|
ipset.Create(r.IPSet+"6", ipset.OptIPv6())
|
|
|
|
ipset.Flush(r.IPSet + "6")
|
|
|
|
}
|
2022-01-23 00:13:49 +08:00
|
|
|
|
2022-01-29 21:10:09 +08:00
|
|
|
for _, domain := range r.Domain {
|
|
|
|
m.domainSet.Store(domain, r.IPSet)
|
|
|
|
}
|
|
|
|
for _, ip := range r.IP {
|
|
|
|
addToSet(r.IPSet, ip)
|
|
|
|
}
|
|
|
|
for _, cidr := range r.CIDR {
|
|
|
|
addToSet(r.IPSet, cidr)
|
2017-08-29 18:36:42 +08:00
|
|
|
}
|
2017-08-28 19:23:32 +08:00
|
|
|
}
|
|
|
|
|
2017-08-29 18:36:42 +08:00
|
|
|
return m, nil
|
2017-08-28 19:23:32 +08:00
|
|
|
}
|
|
|
|
|
2020-09-25 11:04:13 +08:00
|
|
|
// AddDomainIP implements the dns AnswerHandler function, used to update ipset according to domainSet rule.
|
2022-02-03 00:04:17 +08:00
|
|
|
func (m *Manager) AddDomainIP(domain string, ip netip.Addr) error {
|
2020-08-16 12:00:46 +08:00
|
|
|
domain = strings.ToLower(domain)
|
|
|
|
for i := len(domain); i != -1; {
|
|
|
|
i = strings.LastIndexByte(domain[:i], '.')
|
2020-09-27 00:08:16 +08:00
|
|
|
if setName, ok := m.domainSet.Load(domain[i+1:]); ok {
|
2022-02-03 00:04:17 +08:00
|
|
|
addAddrToSet(setName.(string), ip)
|
2017-08-28 19:23:32 +08:00
|
|
|
}
|
|
|
|
}
|
2020-09-25 11:04:13 +08:00
|
|
|
return nil
|
2017-08-28 19:23:32 +08:00
|
|
|
}
|
2022-02-08 15:39:18 +08:00
|
|
|
|
|
|
|
func addToSet(s, item string) error {
|
|
|
|
if strings.IndexByte(item, '.') == -1 {
|
|
|
|
return ipset.Add(s+"6", item)
|
|
|
|
}
|
|
|
|
return ipset.Add(s, item)
|
|
|
|
}
|
|
|
|
|
|
|
|
func addAddrToSet(s string, ip netip.Addr) error {
|
|
|
|
if ip.Is4() {
|
|
|
|
return ipset.AddAddr(s, ip)
|
|
|
|
}
|
|
|
|
return ipset.AddAddr(s+"6", ip)
|
|
|
|
}
|