godns/resolver.go

298 lines
6.5 KiB
Go
Raw Permalink Normal View History

2013-07-23 11:10:38 +00:00
package main
import (
"bufio"
2013-07-23 11:10:38 +00:00
"fmt"
2019-09-26 04:43:17 +00:00
"log"
"net"
"os"
2015-02-04 08:21:08 +00:00
"strconv"
2013-07-23 16:37:38 +00:00
"strings"
2015-02-12 09:19:46 +00:00
"sync"
2013-07-23 11:10:38 +00:00
"time"
"github.com/miekg/dns"
2018-07-02 00:47:22 +00:00
"errors"
"crypto/tls"
2013-07-23 11:10:38 +00:00
)
2013-07-23 16:37:38 +00:00
type ResolvError struct {
2015-02-12 09:19:46 +00:00
qname, net string
2013-07-23 16:37:38 +00:00
nameservers []string
}
func (e ResolvError) Error() string {
2015-02-12 09:19:46 +00:00
errmsg := fmt.Sprintf("%s resolv failed on %s (%s)", e.qname, strings.Join(e.nameservers, "; "), e.net)
2013-07-23 16:37:38 +00:00
return errmsg
}
type RResp struct {
msg *dns.Msg
nameserver string
rtt time.Duration
}
2013-07-23 11:10:38 +00:00
type Resolver struct {
2015-02-04 08:21:08 +00:00
servers []string
domain_server *suffixTreeNode
2015-02-04 08:21:08 +00:00
config *ResolvSettings
2018-07-02 00:47:22 +00:00
2018-07-03 05:35:20 +00:00
tcpClient *dns.Client
udpClient *dns.Client
2018-07-02 00:47:22 +00:00
httpsClient *dns.Client
}
func NewResolver(c ResolvSettings) *Resolver {
2015-02-04 08:21:08 +00:00
r := &Resolver{
servers: []string{},
domain_server: newSuffixTreeRoot(),
config: &c,
}
2018-08-05 03:53:11 +00:00
if len(c.ServerListFile) > 0 {
2015-02-04 08:21:08 +00:00
r.ReadServerListFile(c.ServerListFile)
2019-09-26 04:43:17 +00:00
log.Println("Read servers", strings.Join(r.servers, ", "))
2015-02-04 08:21:08 +00:00
}
2015-02-04 08:21:08 +00:00
if len(c.ResolvFile) > 0 {
clientConfig, err := dns.ClientConfigFromFile(c.ResolvFile)
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
if err != nil {
logger.Error(":%s is not a valid resolv.conf file\n", c.ResolvFile)
logger.Error("%s", err)
2015-02-04 08:21:08 +00:00
panic(err)
}
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
for _, server := range clientConfig.Servers {
2018-07-01 03:08:29 +00:00
r.servers = append(r.servers, net.JoinHostPort(server, clientConfig.Port))
2015-02-04 08:21:08 +00:00
}
}
2015-02-04 08:21:08 +00:00
2018-07-01 03:08:29 +00:00
if len(c.DOHServer) > 0 {
r.servers = append([]string{c.DOHServer}, r.servers...)
}
2018-07-02 00:47:22 +00:00
timeout := r.Timeout()
r.udpClient = &dns.Client{
2018-07-03 05:35:20 +00:00
Net: "udp",
ReadTimeout: timeout,
2018-07-02 00:47:22 +00:00
WriteTimeout: timeout,
}
r.tcpClient = &dns.Client{
2018-07-03 05:35:20 +00:00
Net: "tcp",
ReadTimeout: timeout,
2018-07-02 00:47:22 +00:00
WriteTimeout: timeout,
}
r.httpsClient = &dns.Client{
2018-07-03 05:35:20 +00:00
Net: "https",
ReadTimeout: timeout,
2018-07-02 00:47:22 +00:00
WriteTimeout: timeout,
}
return r
}
func (r *Resolver) parseServerListFile(buf *os.File) {
scanner := bufio.NewScanner(buf)
2018-07-01 03:08:29 +00:00
var line string
var idx int
for scanner.Scan() {
2018-07-01 03:08:29 +00:00
line = strings.TrimSpace(scanner.Text())
if !strings.HasPrefix(line, "server") {
continue
}
2018-07-01 03:08:29 +00:00
idx = strings.Index(line, "=")
if idx == -1 {
continue
}
2019-09-26 04:43:17 +00:00
line = strings.TrimSpace(line[idx+1:])
2018-07-01 03:08:29 +00:00
2018-07-01 22:44:11 +00:00
if strings.HasPrefix(line, "https://") {
r.servers = append(r.servers, line)
continue
}
tokens := strings.Split(line, "/")
2015-02-04 08:21:08 +00:00
switch len(tokens) {
case 3:
domain := tokens[1]
ip := tokens[2]
2015-02-04 08:21:08 +00:00
if !isDomain(domain) || !isIP(ip) {
continue
}
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
r.domain_server.sinsert(strings.Split(domain, "."), ip)
case 1:
srv_port := strings.Split(line, "#")
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
if len(srv_port) > 2 {
continue
}
ip := ""
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
if ip = srv_port[0]; !isIP(ip) {
continue
}
port := "53"
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
if len(srv_port) == 2 {
if _, err := strconv.Atoi(srv_port[1]); err != nil {
continue
}
2018-07-01 03:08:29 +00:00
2015-02-04 08:21:08 +00:00
port = srv_port[1]
}
2018-07-01 03:08:29 +00:00
r.servers = append(r.servers, net.JoinHostPort(ip, port))
}
}
2013-07-23 11:10:38 +00:00
}
func (r *Resolver) ReadServerListFile(path string) {
files := strings.Split(path, ";")
for _, file := range files {
buf, err := os.Open(file)
if err != nil {
panic("Can't open " + file)
}
defer buf.Close()
r.parseServerListFile(buf)
}
}
2015-02-12 09:19:46 +00:00
// Lookup will ask each nameserver in top-to-bottom fashion, starting a new request
// in every second, and return as early as possbile (have an answer).
// It returns an error if no request has succeeded.
2013-07-23 16:37:38 +00:00
func (r *Resolver) Lookup(net string, req *dns.Msg) (message *dns.Msg, err error) {
if net == "udp" && settings.ResolvConfig.SetEDNS0 {
req = req.SetEdns0(65535, true)
}
2013-07-23 16:37:38 +00:00
qname := req.Question[0].Name
2013-07-23 11:10:38 +00:00
res := make(chan *RResp, 1)
2015-02-12 09:19:46 +00:00
var wg sync.WaitGroup
2018-07-02 00:47:22 +00:00
L := func(resolver *Resolver, nameserver string) {
2015-02-12 09:19:46 +00:00
defer wg.Done()
2018-07-01 03:08:29 +00:00
2018-07-02 00:47:22 +00:00
c, err := resolver.resolverFor(net, nameserver)
2018-07-01 03:08:29 +00:00
2018-07-02 00:47:22 +00:00
if err != nil {
logger.Warn("error:%s", err.Error())
return
2018-07-01 03:08:29 +00:00
}
2018-07-02 00:47:22 +00:00
r, rtt, err := c.Exchange(req, nameserver)
2013-07-23 16:37:38 +00:00
if err != nil {
2015-10-13 17:00:28 +00:00
logger.Warn("%s socket error on %s", qname, nameserver)
logger.Warn("error:%s", err.Error())
2015-02-12 09:19:46 +00:00
return
2013-07-23 16:37:38 +00:00
}
// If SERVFAIL happen, should return immediately and try another upstream resolver.
// However, other Error code like NXDOMAIN is an clear response stating
// that it has been verified no such domain existas and ask other resolvers
// would make no sense. See more about #20
2013-07-23 16:37:38 +00:00
if r != nil && r.Rcode != dns.RcodeSuccess {
2015-10-13 17:00:28 +00:00
logger.Warn("%s failed to get an valid answer on %s", qname, nameserver)
if r.Rcode == dns.RcodeServerFailure {
return
}
2015-02-12 09:19:46 +00:00
}
re := &RResp{r, nameserver, rtt}
2015-02-12 09:19:46 +00:00
select {
case res <- re:
2015-02-12 09:19:46 +00:00
default:
}
}
ticker := time.NewTicker(time.Duration(settings.ResolvConfig.Interval) * time.Millisecond)
2015-02-12 09:19:46 +00:00
defer ticker.Stop()
// Start lookup on each nameserver top-down, in every second
nameservers := r.Nameservers(qname)
for _, nameserver := range nameservers {
2015-02-12 09:19:46 +00:00
wg.Add(1)
2018-07-02 00:47:22 +00:00
go L(r, nameserver)
2015-02-12 09:19:46 +00:00
// but exit early, if we have an answer
select {
case re := <-res:
logger.Debug("%s resolv on %s rtt: %v", UnFqdn(qname), re.nameserver, re.rtt)
return re.msg, nil
2015-02-12 09:19:46 +00:00
case <-ticker.C:
2013-07-23 16:37:38 +00:00
continue
}
2015-02-12 09:19:46 +00:00
}
// wait for all the namservers to finish
wg.Wait()
select {
case re := <-res:
logger.Debug("%s resolv on %s rtt: %v", UnFqdn(qname), re.nameserver, re.rtt)
return re.msg, nil
2015-02-12 09:19:46 +00:00
default:
return nil, ResolvError{qname, net, nameservers}
2013-07-23 11:10:38 +00:00
}
}
2018-07-02 00:47:22 +00:00
func (r *Resolver) resolverFor(net, nameserver string) (*dns.Client, error) {
if strings.HasPrefix(nameserver, "https") {
return r.httpsClient, nil
} else if strings.HasSuffix(nameserver, ":853") {
// TODO We need to set the server name so we can confirm the TLS connection. This may require a rewrite of storing nameservers.
return &dns.Client{
2018-07-03 05:35:20 +00:00
Net: "tcp-tls",
ReadTimeout: r.Timeout(),
2018-07-02 00:47:22 +00:00
WriteTimeout: r.Timeout(),
TLSConfig: &tls.Config{
ServerName: "",
},
}, nil
} else if net == "udp" {
return r.udpClient, nil
} else if net == "tcp" {
return r.tcpClient, nil
}
return nil, errors.New("no client for nameserver")
}
// Namservers return the array of nameservers, with port number appended.
// '#' in the name is treated as port separator, as with dnsmasq.
func (r *Resolver) Nameservers(qname string) []string {
queryKeys := strings.Split(qname, ".")
queryKeys = queryKeys[:len(queryKeys)-1] // ignore last '.'
ns := []string{}
if v, found := r.domain_server.search(queryKeys); found {
logger.Debug("%s be found in domain server list, upstream: %v", qname, v)
2018-07-01 22:44:11 +00:00
ns = append(ns, net.JoinHostPort(v, "53"))
//Ensure query the specific upstream nameserver in async Lookup() function.
return ns
}
2015-02-04 08:21:08 +00:00
for _, nameserver := range r.servers {
2013-07-23 11:10:38 +00:00
ns = append(ns, nameserver)
}
2018-07-01 03:08:29 +00:00
return ns
2013-07-23 11:10:38 +00:00
}
func (r *Resolver) Timeout() time.Duration {
return time.Duration(r.config.Timeout) * time.Second
}