Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
22 changes: 9 additions & 13 deletions src/client/legacy/connect/proxy/socks/v4/messages.rs
Original file line number Diff line number Diff line change
Expand Up @@ -41,7 +41,7 @@ impl Request<'_> {
pub fn write_to_buf<B: BufMut>(&self, mut buf: B) -> Result<usize, SerializeError> {
match self.0 {
Address::Socket(socket) => {
if buf.remaining_mut() < 10 {
if buf.remaining_mut() < 9 {
return Err(SerializeError::WouldOverflow);
}

Expand All @@ -51,30 +51,28 @@ impl Request<'_> {
buf.put_u16(socket.port()); // Port
buf.put_slice(&socket.ip().octets()); // IP

buf.put_u8(0x00); // USERID
buf.put_u8(0x00); // NULL
buf.put_u8(0x00); // NULL terminating an empty USERID

Ok(10)
Ok(9)
}

Address::Domain(domain, port) => {
if buf.remaining_mut() < 10 + domain.len() + 1 {
if buf.remaining_mut() < 9 + domain.len() + 1 {
return Err(SerializeError::WouldOverflow);
}

buf.put_u8(0x04); // Version
buf.put_u8(0x01); // CONNECT

buf.put_u16(*port); // IP
buf.put_u16(*port); // Port
buf.put_slice(&[0x00, 0x00, 0x00, 0xFF]); // Invalid IP

buf.put_u8(0x00); // USERID
buf.put_u8(0x00); // NULL
buf.put_u8(0x00); // NULL terminating an empty USERID

buf.put_slice(domain.as_bytes()); // Domain
buf.put_u8(0x00); // NULL

Ok(10 + domain.len() + 1)
Ok(9 + domain.len() + 1)
}
}
}
Expand Down Expand Up @@ -143,8 +141,7 @@ mod test {
0x01, // command: connect
0x1F, 0x90, // destination port: 8080
127, 0, 0, 1, // destination address: 127.0.0.1
0x00, // userid (empty)
0x00, // null terminator
0x00, // null terminating an empty userid
];

let addr = Address::Socket(SocketAddrV4::new(Ipv4Addr::LOCALHOST, 8080));
Expand All @@ -161,8 +158,7 @@ mod test {
0x01, // command: connect
0x1F, 0x90, // destination port: 8080
0x00, 0x00, 0x00, 0xFF, // invalid IP: signals that a domain follows (SOCKS4a)
0x00, // userid (empty)
0x00, // null terminator
0x00, // null terminating an empty userid
b'e', b'x', b'a', b'm', b'p', b'l', b'e', b'.', b'c', b'o', b'm', // domain
0x00, // null terminator
];
Expand Down
50 changes: 49 additions & 1 deletion tests/proxy.rs
Original file line number Diff line number Diff line change
Expand Up @@ -381,7 +381,7 @@ async fn test_socks_v4_works() {

let [p1, p2] = target_addr.port().to_be_bytes();
let [ip1, ip2, ip3, ip4] = [127, 0, 0, 1];
let message = [4, 0x01, p1, p2, ip1, ip2, ip3, ip4, 0, 0];
let message = [4, 0x01, p1, p2, ip1, ip2, ip3, ip4, 0];
let n = to_client.read(&mut buf).await.expect("read");
assert_eq!(&buf[..n], message);

Expand Down Expand Up @@ -418,6 +418,54 @@ async fn test_socks_v4_works() {
t3.await.expect("task - target");
}

#[cfg(not(miri))]
#[tokio::test]
async fn test_socks_v4a_with_server_resolved_domain_works() {
let proxy_tcp = TcpListener::bind("127.0.0.1:0").await.expect("bind");
let proxy_addr = proxy_tcp.local_addr().expect("local_addr");
let proxy_dst = format!("http://{proxy_addr}").parse().expect("uri");

let mut connector = SocksV4::new(proxy_dst, HttpConnector::new());

// Client
//
// Will use `SocksV4` to establish a tunnel to a domain name, leaving
// resolution to the proxy server (the SOCKS4a extension).
let t1 = tokio::spawn(async move {
let _conn = connector
.call("https://hyper.rs:443".try_into().unwrap())
.await
.expect("tunnel");
});

// Proxy
//
// Will receive a SOCKS4a CONNECT command carrying the domain name, and
// reply with a success status.
let t2 = tokio::spawn(async move {
let (mut to_client, _) = proxy_tcp.accept().await.expect("accept");
let mut buf = [0u8; 512];

let host = "hyper.rs";
let [p1, p2] = 443u16.to_be_bytes();

// VN, CD, DSTPORT, DSTIP (0.0.0.x marks a SOCKS4a request), then the
// NULL terminating an empty USERID, then the NULL-terminated domain.
let mut message = vec![0x04, 0x01, p1, p2, 0x00, 0x00, 0x00, 0xFF, 0x00];
message.extend(host.as_bytes());
message.push(0x00);

let n = to_client.read(&mut buf).await.expect("read");
assert_eq!(&buf[..n], message);

let message = [0, 90, p1, p2, 0, 0, 0, 0];
to_client.write_all(&message).await.expect("write");
});

t1.await.expect("task - client");
t2.await.expect("task - proxy");
}

#[cfg(not(miri))]
#[tokio::test]
async fn test_socks_v5_optimistic_works() {
Expand Down
Loading