-
-
Notifications
You must be signed in to change notification settings - Fork 302
/
http.go
92 lines (78 loc) · 1.99 KB
/
http.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
package main
import (
"fmt"
"log"
"net"
"net/http"
"net/http/httputil"
"path/filepath"
"strings"
"github.com/gorilla/websocket"
"github.com/koding/websocketproxy"
"github.com/gin-gonic/gin"
)
// ProxyHolder holds proxy and connection info
type ProxyHolder struct {
ProxyHost string
ProxyTo string
Scheme string
}
func startHTTPHandler(state *State) {
releaseMode := gin.ReleaseMode
if *debug {
releaseMode = gin.DebugMode
}
gin.SetMode(releaseMode)
r := gin.New()
r.Use(func(c *gin.Context) {
clientIPAddr, _, err := net.SplitHostPort(c.Request.RemoteAddr)
if state.IPFilter.Blocked(c.ClientIP()) || state.IPFilter.Blocked(clientIPAddr) || err != nil {
c.AbortWithStatus(http.StatusForbidden)
return
}
c.Next()
}, gin.Logger(), gin.Recovery())
r.GET("/*proxy", func(c *gin.Context) {
hostname := strings.Split(c.Request.Host, ":")[0]
if hostname == *rootDomain && *redirectRoot {
c.Redirect(http.StatusFound, *redirectRootLocation)
return
}
loc, ok := state.HTTPListeners.Load(hostname)
if !ok {
c.AbortWithError(http.StatusNotFound, fmt.Errorf("cannot find connection for host: %s", hostname))
return
}
proxyHolder := loc.(*ProxyHolder)
url := c.Request.URL
url.Host = "local"
url.Scheme = proxyHolder.Scheme
dialer := func(network, addr string) (net.Conn, error) {
return net.Dial("unix", proxyHolder.ProxyTo)
}
if websocket.IsWebSocketUpgrade(c.Request) {
scheme := "ws"
if url.Scheme == "https" {
scheme = "wss"
}
url.Scheme = scheme
wsProxy := websocketproxy.NewProxy(url)
wsProxy.Dialer = &websocket.Dialer{
NetDial: dialer,
}
gin.WrapH(wsProxy)(c)
} else {
proxy := httputil.NewSingleHostReverseProxy(url)
proxy.Transport = &http.Transport{
Dial: dialer,
}
gin.WrapH(proxy)(c)
}
})
if *httpsEnabled {
go func() {
log.Fatal(r.RunTLS(*httpsAddr, filepath.Join(*httpsPems, "fullchain.pem"), filepath.Join(*httpsPems, "privkey.pem")))
}()
}
log.Fatal(r.Run(*httpAddr))
}