Compare commits

..

105 Commits

Author SHA1 Message Date
renovate[bot]
ea9096ae59
[dependencies] Update golangci/golangci-lint-action action to v8 2025-06-04 15:38:26 +00:00
世界
b03d912eb5
documentation: Bump version 2025-06-04 23:37:40 +08:00
世界
bf0611fa0b
Fix missing home for derp service 2025-06-04 23:37:14 +08:00
Zero Clover
92c6119109
documentation: Fix services 2025-06-04 23:37:14 +08:00
世界
f02de6ec00
Fix dns.client_subnet ignored 2025-06-04 23:37:14 +08:00
世界
1499dac0e1
documentation: Minor fixes 2025-06-04 23:37:13 +08:00
世界
cccd9622cc
Fix tailscale forward 2025-06-04 23:37:13 +08:00
世界
eb9e6beade
Minor fixes 2025-06-04 23:37:13 +08:00
世界
183c09a53b
Add SSM API service 2025-06-04 23:37:13 +08:00
世界
c09b96aedb
Add resolved service and DNS server 2025-06-04 23:37:12 +08:00
世界
4a162455c7
Add DERP service 2025-06-04 23:37:12 +08:00
世界
c4889e76ff
Add service component type 2025-06-04 23:37:12 +08:00
世界
03fba739e4
Fix tproxy tcp control 2025-06-04 23:37:12 +08:00
愚者
338bc709b4
release: Fix build tags for android
Signed-off-by: 愚者 <11926619+FansChou@users.noreply.github.com>
2025-06-04 23:37:12 +08:00
世界
936220aa64
prevent creation of bind and mark controls on unsupported platforms 2025-06-04 23:37:11 +08:00
PuerNya
9336bf802f
documentation: Fix description of reject DNS action behavior 2025-06-04 23:37:11 +08:00
Restia-Ashbell
4ecea1ae2b
Fix TLS record fragment 2025-06-04 23:37:11 +08:00
世界
20e462b577
Add missing accept_routes option for Tailscale 2025-06-04 23:37:11 +08:00
世界
46e97a5c7c
Add TLS record fragment support 2025-06-04 23:37:11 +08:00
世界
91a229b26e
release: Update Go to 1.24.3 2025-06-04 23:37:10 +08:00
世界
68cdf2246f
Fix set edns0 client subnet 2025-06-04 23:37:10 +08:00
世界
168548c8cc
Update minor dependencies 2025-06-04 23:37:10 +08:00
世界
14619fb5bd
Update certmagic and providers 2025-06-04 23:37:10 +08:00
世界
7760aa3e6c
Update protobuf and grpc 2025-06-04 23:37:09 +08:00
世界
af73e784f1
Add control options for listeners 2025-06-04 23:37:09 +08:00
世界
c44e127064
Update quic-go to v0.52.0 2025-06-04 23:37:08 +08:00
世界
7345152a8a
Update utls to v1.7.2 2025-06-04 23:37:08 +08:00
世界
979d8054a8
Handle EDNS version downgrade 2025-06-04 23:37:08 +08:00
世界
86841c36b5
documentation: Fix anytls padding scheme description 2025-06-04 23:37:07 +08:00
安容
d637de0043
Report invalid DNS address early 2025-06-04 23:37:07 +08:00
世界
1a9138ae4a
Fix wireguard listen_port 2025-06-04 23:37:07 +08:00
世界
67178bbd82
clash-api: Add more meta api 2025-06-04 23:37:06 +08:00
世界
c4b97029d2
Fix DNS lookup 2025-06-04 23:37:06 +08:00
世界
f7edfc5867
Fix fetch ECH configs 2025-06-04 23:37:06 +08:00
reletor
a6ca8e64ea
documentation: Minor fixes 2025-06-04 23:37:05 +08:00
caelansar
34b45bcd6b
Fix callback deletion in UDP transport 2025-06-04 23:37:05 +08:00
世界
1aa3791ced
documentation: Try to make the play review happy 2025-06-04 23:37:05 +08:00
世界
3313578a09
Fix missing handling of legacy domain_strategy options 2025-06-04 23:37:04 +08:00
世界
a5b9cd9696
Improve local DNS server 2025-06-04 23:37:04 +08:00
anytls
c1167df04d
Update anytls
Co-authored-by: anytls <anytls>
2025-06-04 23:37:04 +08:00
世界
c60adfd4b8
Fix DNS dialer 2025-06-04 23:37:03 +08:00
世界
f9d4b00e78
release: Skip override version for iOS 2025-06-04 23:37:03 +08:00
iikira
d262c8bff9
Fix UDP DNS server crash
Signed-off-by: iikira <i2@mail.iikira.com>
2025-06-04 23:37:03 +08:00
ReleTor
0b7ee68187
Fix fetch ECH configs 2025-06-04 23:37:02 +08:00
世界
84a3a364d1
Allow direct outbounds without domain_resolver 2025-06-04 23:37:02 +08:00
世界
186ecfcc61
Fix Tailscale dialer 2025-06-04 23:37:02 +08:00
dyhkwong
f92c3e9b54
Fix DNS over QUIC stream close 2025-06-04 23:37:02 +08:00
anytls
45f240f562
Update anytls
Co-authored-by: anytls <anytls>
2025-06-04 23:37:01 +08:00
Rambling2076
7b2dad1073
Fix missing with_tailscale in Dockerfile
Signed-off-by: Rambling2076 <Rambling2076@proton.me>
2025-06-04 23:37:01 +08:00
世界
955edac785
Fail when default DNS server not found 2025-06-04 23:37:01 +08:00
世界
21dc56b47e
Update gVisor to 20250319.0 2025-06-04 23:37:01 +08:00
世界
1d7a20a879
Explicitly reject detour to empty direct outbounds 2025-06-04 23:37:00 +08:00
世界
710b26c95d
Add netns support 2025-06-04 23:37:00 +08:00
世界
99154e8221
Add wildcard name support for predefined records 2025-06-04 23:36:59 +08:00
世界
0f0bdddc09
Remove map usage in options 2025-06-04 23:36:59 +08:00
世界
b2003ff63c
Fix unhandled DNS loop 2025-06-04 23:36:59 +08:00
世界
666fcf3342
Add wildcard-sni support for shadow-tls inbound 2025-06-04 23:36:59 +08:00
k9982874
b3257446a9
Add ntp protocol sniffing 2025-06-04 23:36:58 +08:00
世界
6f0917af2c
option: Fix marshal legacy DNS options 2025-06-04 23:36:58 +08:00
世界
c997cd5995
Make domain_resolver optional when only one DNS server is configured 2025-06-04 23:36:58 +08:00
世界
51e1ea0ff2
Fix DNS lookup context pollution 2025-06-04 23:36:57 +08:00
世界
d2aa704bd6
Fix http3 DNS server connecting to wrong address 2025-06-04 23:36:57 +08:00
Restia-Ashbell
d24c2ff9ef
documentation: Fix typo 2025-06-04 23:36:57 +08:00
anytls
30bdf826cb
Update sing-anytls
Co-authored-by: anytls <anytls>
2025-06-04 23:36:57 +08:00
k9982874
13f283554f
Fix hosts DNS server 2025-06-04 23:36:56 +08:00
世界
22b96aa95e
Fix UDP DNS server crash 2025-06-04 23:36:56 +08:00
世界
9cd361400c
documentation: Fix missing ip_accept_any DNS rule option 2025-06-04 23:36:55 +08:00
世界
9b34001232
Fix anytls dialer usage 2025-06-04 23:36:55 +08:00
世界
38f83819df
Move predefined DNS server to rule action 2025-06-04 23:36:55 +08:00
世界
a79799bb08
Fix domain resolver on direct outbound 2025-06-04 23:36:54 +08:00
Zephyruso
5f037b01f4
Fix missing AnyTLS display name 2025-06-04 23:36:54 +08:00
anytls
09ca2d0d91
Update sing-anytls
Co-authored-by: anytls <anytls>
2025-06-04 23:36:54 +08:00
Estel
61cbe8ed5d
documentation: Fix typo
Signed-off-by: Estel <callmebedrockdigger@gmail.com>
2025-06-04 23:36:54 +08:00
TargetLocked
9088fb312f
Fix parsing legacy DNS options 2025-06-04 23:36:53 +08:00
世界
0c29d16733
Fix DNS fallback 2025-06-04 23:36:53 +08:00
世界
75e15c7ac6
documentation: Fix missing hosts DNS server 2025-06-04 23:36:52 +08:00
anytls
e63154f746
Add MinIdleSession option to AnyTLS outbound
Co-authored-by: anytls <anytls>
2025-06-04 23:36:52 +08:00
ReleTor
b28721f08b
documentation: Minor fixes 2025-06-04 23:36:52 +08:00
libtry486
2eaa348762
documentation: Fix typo
fix typo

Signed-off-by: libtry486 <89328481+libtry486@users.noreply.github.com>
2025-06-04 23:36:52 +08:00
Alireza Ahmadi
76d94b0674
Fix Outbound deadlock 2025-06-04 23:36:52 +08:00
世界
3bbfff6e8b
documentation: Fix AnyTLS doc 2025-06-04 23:36:51 +08:00
anytls
6d7d1e9ada
Add AnyTLS protocol 2025-06-04 23:36:50 +08:00
世界
f709b1a265
Migrate to stdlib ECH support 2025-06-04 23:36:50 +08:00
世界
d35558a771
Add fallback local DNS server for iOS 2025-06-04 23:36:50 +08:00
世界
f1fc578414
Get darwin local DNS server from libresolv 2025-06-04 23:36:49 +08:00
世界
c498c5e48f
Improve resolve action 2025-06-04 23:36:49 +08:00
世界
e3aaa27d82
Add back port hopping to hysteria 1 2025-06-04 23:36:48 +08:00
xchacha20-poly1305
d6949a4ea4
Remove single quotes of raw Moziila certs 2025-06-04 23:36:48 +08:00
世界
19febe44cb
Add Tailscale endpoint 2025-06-04 23:36:47 +08:00
世界
f7adac3847
Build legacy binaries with latest Go 2025-06-04 23:36:47 +08:00
世界
1c63ddc69e
documentation: Remove outdated icons 2025-06-04 23:36:47 +08:00
世界
c37d2627ee
documentation: Certificate store 2025-06-04 23:36:46 +08:00
世界
e447da0f41
documentation: TLS fragment 2025-06-04 23:36:46 +08:00
世界
ed35d7a44f
documentation: Outbound domain resolver 2025-06-04 23:36:45 +08:00
世界
55254639d9
documentation: Refactor DNS 2025-06-04 23:36:45 +08:00
世界
f80e4ff91a
Add certificate store 2025-06-04 23:36:45 +08:00
世界
207a40fbb5
Add TLS fragment support 2025-06-04 23:36:45 +08:00
世界
2645466e48
refactor: Outbound domain resolver 2025-06-04 23:36:44 +08:00
世界
8ab0427199
refactor: DNS 2025-06-04 23:36:44 +08:00
世界
255068fd40
Bump version 2025-06-04 23:32:10 +08:00
世界
098a00b025
Fix v2ray websocket transport 2025-06-04 23:23:36 +08:00
世界
dba0b5276b
Bump version 2025-06-04 20:06:38 +08:00
Sentsuki
78ae935468
documentation: Fix typo
Signed-off-by: Sentsuki <52487960+Sentsuki@users.noreply.github.com>
2025-06-04 20:06:38 +08:00
Mahdi
3ea5f76470
Fix nil logger at v2rayhttp server 2025-06-04 20:06:20 +08:00
世界
b4d294c05e
Fix TUIC read buffer 2025-06-04 20:03:51 +08:00
13 changed files with 40 additions and 45 deletions

@ -1 +1 @@
Subproject commit c0885a2dc304797336756c8066c77bb4c193b009
Subproject commit 320170a1077ea5c93872b3e055b96b8836615ef0

View File

@ -2,11 +2,18 @@
icon: material/alert-decagram
---
#### 1.12.0-beta.20
#### 1.12.0-beta.21
* Fix missing `home` option for DERP service **1**
* Fixes and improvements
### 1.11.12
**1**:
You can now choose what the DERP home page shows, just like with derper's `-home` flag.
See [DERP](/configuration/service/derp/#home).
### 1.11.13
* Fixes and improvements

View File

@ -398,11 +398,11 @@ UDP NAT 过期时间。
TCP/IP 栈。
| 栈 | 描述 |
|--------|------------------------------------------------------------------|
| system | 基于系统网络栈执行 L3 到 L4 转换 |
| gVisor | 基于 [gVisor](https://github.com/google/gvisor) 虚拟网络栈执行 L3 到 L4 转换 |
| mixed | 混合 `system` TCP 栈与 `gvisor` UDP 栈 |
| 栈 | 描述 |
|----------|-------------------------------------------------------------------------------------------------------|
| `system` | 基于系统网络栈执行 L3 到 L4 转换 |
| `gvisor` | 基于 [gVisor](https://github.com/google/gvisor) 虚拟网络栈执行 L3 到 L4 转换 |
| `mixed` | 混合 `system` TCP 栈与 `gvisor` UDP 栈 |
默认使用 `mixed` 栈如果 gVisor 构建标记已启用,否则默认使用 `system` 栈。

View File

@ -20,6 +20,7 @@ DERP service is a Tailscale DERP server, similar to [derper](https://pkg.go.dev/
"config_path": "",
"verify_client_endpoint": [],
"verify_client_url": [],
"home": "",
"mesh_with": [],
"mesh_psk": "",
"mesh_psk_file": "",
@ -69,6 +70,10 @@ Setting Array value to a string `__URL__` is equivalent to configuring:
{ "url": __URL__ }
```
#### home
What to serve at the root path. It may be left empty (the default, for a default homepage), `blank` for a blank page, or a URL to redirect to
#### mesh_with
Mesh with other DERP servers.

View File

@ -10,7 +10,7 @@ icon: material/new-box
```json
{
"endpoints": [
"services": [
{
"type": "",
"tag": ""
@ -25,6 +25,7 @@ icon: material/new-box
|------------|------------------------|
| `derp` | [DERP](./derp) |
| `resolved` | [Resolved](./resolved) |
| `ssm-api` | [SSM API](./ssm-api) |
#### tag

2
go.mod
View File

@ -30,7 +30,7 @@ require (
github.com/sagernet/quic-go v0.52.0-beta.1
github.com/sagernet/sing v0.6.11-0.20250521033217-30d675ea099b
github.com/sagernet/sing-mux v0.3.2
github.com/sagernet/sing-quic v0.5.0-beta.1
github.com/sagernet/sing-quic v0.5.0-beta.2
github.com/sagernet/sing-shadowsocks v0.2.8
github.com/sagernet/sing-shadowsocks2 v0.2.1
github.com/sagernet/sing-shadowtls v0.2.1-0.20250503051639-fcd445d33c11

4
go.sum
View File

@ -172,8 +172,8 @@ github.com/sagernet/sing v0.6.11-0.20250521033217-30d675ea099b h1:ZjTCYPb5f7aHdf
github.com/sagernet/sing v0.6.11-0.20250521033217-30d675ea099b/go.mod h1:ARkL0gM13/Iv5VCZmci/NuoOlePoIsW0m7BWfln/Hak=
github.com/sagernet/sing-mux v0.3.2 h1:meZVFiiStvHThb/trcpAkCrmtJOuItG5Dzl1RRP5/NE=
github.com/sagernet/sing-mux v0.3.2/go.mod h1:pht8iFY4c9Xltj7rhVd208npkNaeCxzyXCgulDPLUDA=
github.com/sagernet/sing-quic v0.5.0-beta.1 h1:nC0i/s8LhlZB8ev6laZCXF/uiwAE4kRdT4PcDdE4rI4=
github.com/sagernet/sing-quic v0.5.0-beta.1/go.mod h1:SAv/qdeDN+75msGG5U5ZIwG+3Ua50jVIKNrRSY8pkx0=
github.com/sagernet/sing-quic v0.5.0-beta.2 h1:j7KAbBuGmsKwSxVAQL5soJ+wDqxim4/llK2kxB0hSKk=
github.com/sagernet/sing-quic v0.5.0-beta.2/go.mod h1:SAv/qdeDN+75msGG5U5ZIwG+3Ua50jVIKNrRSY8pkx0=
github.com/sagernet/sing-shadowsocks v0.2.8 h1:PURj5PRoAkqeHh2ZW205RWzN9E9RtKCVCzByXruQWfE=
github.com/sagernet/sing-shadowsocks v0.2.8/go.mod h1:lo7TWEMDcN5/h5B8S0ew+r78ZODn6SwVaFhvB6H+PTI=
github.com/sagernet/sing-shadowsocks2 v0.2.1 h1:dWV9OXCeFPuYGHb6IRqlSptVnSzOelnqqs2gQ2/Qioo=

View File

@ -36,6 +36,7 @@ type DERPServiceOptions struct {
ConfigPath string `json:"config_path,omitempty"`
VerifyClientEndpoint badoption.Listable[string] `json:"verify_client_endpoint,omitempty"`
VerifyClientURL badoption.Listable[*DERPVerifyClientURLOptions] `json:"verify_client_url,omitempty"`
Home string `json:"home,omitempty"`
MeshWith badoption.Listable[*DERPMeshOptions] `json:"mesh_with,omitempty"`
MeshPSK string `json:"mesh_psk,omitempty"`
MeshPSKFile string `json:"mesh_psk_file,omitempty"`

View File

@ -124,6 +124,7 @@ func NewService(ctx context.Context, logger log.ContextLogger, tag string, optio
configPath: configPath,
verifyClientEndpoint: options.VerifyClientEndpoint,
verifyClientURL: options.VerifyClientURL,
home: options.Home,
meshKey: options.MeshPSK,
meshKeyPath: options.MeshPSKFile,
meshWith: options.MeshWith,

View File

@ -47,6 +47,7 @@ func NewServer(ctx context.Context, logger logger.ContextLogger, options option.
server := &Server{
ctx: ctx,
tlsConfig: tlsConfig,
logger: logger,
handler: handler,
h2Server: &http2.Server{
IdleTimeout: time.Duration(options.IdleTimeout),

View File

@ -62,15 +62,16 @@ func (c *WebsocketConn) Close() error {
func (c *WebsocketConn) Read(b []byte) (n int, err error) {
var header ws.Header
for {
n, err = wrapWsError0(c.reader.Read(b))
n, err = c.reader.Read(b)
if n > 0 {
err = nil
return
}
if !E.IsMulti(err, io.EOF, wsutil.ErrNoFrameAdvance) {
err = wrapWsError(err)
return
}
header, err = c.reader.NextFrame()
header, err = wrapWsError0(c.reader.NextFrame())
if err != nil {
return
}
@ -79,14 +80,14 @@ func (c *WebsocketConn) Read(b []byte) (n int, err error) {
err = wsutil.ErrFrameTooLarge
return
}
err = c.controlHandler(header, c.reader)
err = wrapWsError(c.controlHandler(header, c.reader))
if err != nil {
return
}
continue
}
if header.OpCode&ws.OpBinary == 0 {
err = c.reader.Discard()
err = wrapWsError(c.reader.Discard())
if err != nil {
return
}
@ -178,12 +179,12 @@ func (c *EarlyWebsocketConn) writeRequest(content []byte) error {
conn, err = c.dialContext(c.ctx, &c.requestURL, c.headers)
}
if err != nil {
return wrapWsError(err)
return err
}
if len(lateData) > 0 {
_, err = conn.Write(lateData)
if err != nil {
return wrapWsError(err)
return err
}
}
c.conn = conn
@ -202,7 +203,7 @@ func (c *EarlyWebsocketConn) Write(b []byte) (n int, err error) {
if c.conn != nil {
return wrapWsError0(c.conn.Write(b))
}
err = wrapWsError(c.writeRequest(b))
err = c.writeRequest(b)
c.err = err
close(c.create)
if err != nil {
@ -223,7 +224,7 @@ func (c *EarlyWebsocketConn) WriteBuffer(buffer *buf.Buffer) error {
if c.err != nil {
return c.err
}
err := wrapWsError(c.writeRequest(buffer.Bytes()))
err := c.writeRequest(buffer.Bytes())
c.err = err
close(c.create)
return err
@ -278,7 +279,7 @@ func wrapWsError(err error) error {
if err == nil {
return nil
}
var closedErr *wsutil.ClosedError
var closedErr wsutil.ClosedError
if errors.As(err, &closedErr) {
if closedErr.Code == ws.StatusNormalClosure {
err = io.EOF
@ -291,5 +292,5 @@ func wrapWsError0[T any](value T, err error) (T, error) {
if err == nil {
return value, nil
}
return common.DefaultValue[T](), wrapWsError(err)
return value, wrapWsError(err)
}

View File

@ -1,22 +0,0 @@
package v2raywebsocket
import (
"net"
"time"
)
type deadConn struct {
net.Conn
}
func (c *deadConn) SetDeadline(t time.Time) error {
return nil
}
func (c *deadConn) SetReadDeadline(t time.Time) error {
return nil
}
func (c *deadConn) SetWriteDeadline(t time.Time) error {
return nil
}

View File

@ -66,7 +66,7 @@ func (w *Writer) WriteBuffer(buffer *buf.Buffer) error {
ws.Cipher(data, *(*[4]byte)(header[1+payloadBitLength:]), 0)
}
return w.writer.WriteBuffer(buffer)
return wrapWsError(w.writer.WriteBuffer(buffer))
}
func (w *Writer) FrontHeadroom() int {