2
0

DnsInterceptor.cs 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192
  1. using DNS.Protocol;
  2. using DNS.Protocol.ResourceRecords;
  3. using FastGithub.Configuration;
  4. using Microsoft.Extensions.Logging;
  5. using Microsoft.Extensions.Options;
  6. using System;
  7. using System.ComponentModel;
  8. using System.Diagnostics.CodeAnalysis;
  9. using System.Linq;
  10. using System.Net;
  11. using System.Runtime.InteropServices;
  12. using System.Runtime.Versioning;
  13. using System.Threading;
  14. using System.Threading.Tasks;
  15. using WindivertDotnet;
  16. namespace FastGithub.PacketIntercept.Dns
  17. {
  18. /// <summary>
  19. /// dns拦截器
  20. /// </summary>
  21. [SupportedOSPlatform("windows")]
  22. sealed class DnsInterceptor : IDnsInterceptor
  23. {
  24. private static readonly Filter filter = Filter.True.And(f => f.Udp.DstPort == 53);
  25. private readonly FastGithubConfig fastGithubConfig;
  26. private readonly ILogger<DnsInterceptor> logger;
  27. private readonly TimeSpan ttl = TimeSpan.FromMinutes(5d);
  28. /// <summary>
  29. /// 刷新DNS缓存
  30. /// </summary>
  31. [DllImport("dnsapi.dll", EntryPoint = "DnsFlushResolverCache", SetLastError = true)]
  32. private static extern void DnsFlushResolverCache();
  33. /// <summary>
  34. /// dns拦截器
  35. /// </summary>
  36. /// <param name="fastGithubConfig"></param>
  37. /// <param name="logger"></param>
  38. /// <param name="options"></param>
  39. public DnsInterceptor(
  40. FastGithubConfig fastGithubConfig,
  41. ILogger<DnsInterceptor> logger,
  42. IOptionsMonitor<FastGithubOptions> options)
  43. {
  44. this.fastGithubConfig = fastGithubConfig;
  45. this.logger = logger;
  46. options.OnChange(_ => DnsFlushResolverCache());
  47. }
  48. /// <summary>
  49. /// DNS拦截
  50. /// </summary>
  51. /// <param name="cancellationToken"></param>
  52. /// <exception cref="Win32Exception"></exception>
  53. /// <returns></returns>
  54. public async Task InterceptAsync(CancellationToken cancellationToken)
  55. {
  56. await Task.Yield();
  57. using var divert = new WinDivert(filter, WinDivertLayer.Network);
  58. cancellationToken.Register(d =>
  59. {
  60. ((WinDivert)d!).Dispose();
  61. DnsFlushResolverCache();
  62. }, divert);
  63. var addr = new WinDivertAddress();
  64. using var packet = new WinDivertPacket();
  65. DnsFlushResolverCache();
  66. while (cancellationToken.IsCancellationRequested == false)
  67. {
  68. divert.Recv(packet, ref addr);
  69. try
  70. {
  71. this.ModifyDnsPacket(packet, ref addr);
  72. }
  73. catch (Exception ex)
  74. {
  75. this.logger.LogWarning(ex.Message);
  76. }
  77. finally
  78. {
  79. divert.Send(packet, ref addr);
  80. }
  81. }
  82. }
  83. /// <summary>
  84. /// 修改DNS数据包
  85. /// </summary>
  86. /// <param name="packet"></param>
  87. /// <param name="addr"></param>
  88. unsafe private void ModifyDnsPacket(WinDivertPacket packet, ref WinDivertAddress addr)
  89. {
  90. var result = packet.GetParseResult();
  91. var requestPayload = result.DataSpan.ToArray();
  92. if (TryParseRequest(requestPayload, out var request) == false ||
  93. request.OperationCode != OperationCode.Query ||
  94. request.Questions.Count == 0)
  95. {
  96. return;
  97. }
  98. var question = request.Questions.First();
  99. if (question.Type != RecordType.A && question.Type != RecordType.AAAA)
  100. {
  101. return;
  102. }
  103. var domain = question.Name;
  104. if (this.fastGithubConfig.IsMatch(question.Name.ToString()) == false)
  105. {
  106. return;
  107. }
  108. // dns响应数据
  109. var response = Response.FromRequest(request);
  110. var loopback = question.Type == RecordType.A ? IPAddress.Loopback : IPAddress.IPv6Loopback;
  111. var record = new IPAddressResourceRecord(domain, loopback, this.ttl);
  112. response.AnswerRecords.Add(record);
  113. var responsePayload = response.ToArray();
  114. // 修改payload和包长
  115. responsePayload.CopyTo(new Span<byte>(result.Data, responsePayload.Length));
  116. packet.Length = packet.Length + responsePayload.Length - requestPayload.Length;
  117. // 修改ip包
  118. IPAddress destAddress;
  119. if (result.IPV4Header != null)
  120. {
  121. destAddress = result.IPV4Header->DstAddr;
  122. result.IPV4Header->DstAddr = result.IPV4Header->SrcAddr;
  123. result.IPV4Header->SrcAddr = destAddress;
  124. result.IPV4Header->Length = (ushort)packet.Length;
  125. }
  126. else
  127. {
  128. destAddress = result.IPV6Header->DstAddr;
  129. result.IPV6Header->DstAddr = result.IPV6Header->SrcAddr;
  130. result.IPV6Header->SrcAddr = destAddress;
  131. result.IPV6Header->Length = (ushort)(packet.Length - sizeof(IPV6Header));
  132. }
  133. // 修改udp包
  134. var destPort = result.UdpHeader->DstPort;
  135. result.UdpHeader->DstPort = result.UdpHeader->SrcPort;
  136. result.UdpHeader->SrcPort = destPort;
  137. result.UdpHeader->Length = (ushort)(sizeof(UdpHeader) + responsePayload.Length);
  138. addr.Flags |= WinDivertAddressFlag.Impostor;
  139. if (addr.Flags.HasFlag(WinDivertAddressFlag.Loopback))
  140. {
  141. addr.Flags |= WinDivertAddressFlag.Outbound;
  142. }
  143. else
  144. {
  145. addr.Flags ^= WinDivertAddressFlag.Outbound;
  146. }
  147. packet.CalcChecksums(ref addr);
  148. this.logger.LogInformation($"{domain}->{loopback}");
  149. }
  150. /// <summary>
  151. /// 尝试解析请求
  152. /// </summary>
  153. /// <param name="payload"></param>
  154. /// <param name="request"></param>
  155. /// <returns></returns>
  156. static bool TryParseRequest(byte[] payload, [MaybeNullWhen(false)] out Request request)
  157. {
  158. try
  159. {
  160. request = Request.FromArray(payload);
  161. return true;
  162. }
  163. catch (Exception)
  164. {
  165. request = null;
  166. return false;
  167. }
  168. }
  169. }
  170. }