Compare commits
216 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| ece8fb75d5 | |||
| a82147eeda | |||
| 6bd21d06c0 | |||
| 3416cda826 | |||
| 75c0a6a294 | |||
| 2e40daf0c4 | |||
| 9e2b0c041a | |||
| 9c40b04392 | |||
| 108a048f5a | |||
| 1217ea7a09 | |||
| a6ec5b041c | |||
| 7f6d462f22 | |||
| f55bf31c07 | |||
| 47876ecdb4 | |||
| b5a40fa0cc | |||
| 7e79f591c3 | |||
| 66f03709fc | |||
| 42aafc6427 | |||
| 1674f6929e | |||
| 12babef21e | |||
| 5791cabfb5 | |||
| 49d2d21f41 | |||
| 5263de514e | |||
| 9da810ba3d | |||
| b663eca445 | |||
| f8f95e22ac | |||
| 30f0f8c5f0 | |||
| 741f402ca1 | |||
| b6e078adc0 | |||
| ef3d40c098 | |||
| ded85fb79f | |||
| 31a5415e1f | |||
| b5ca5fbf93 | |||
| 570420274e | |||
| 7df97c6ca1 | |||
| 638fcf35d7 | |||
| 07022b1697 | |||
| baaf0e2d01 | |||
| f2bfad7c80 | |||
| be8bec6a7d | |||
| 4d6f59bc06 | |||
| acaec83877 | |||
| 8cf6c512cb | |||
| 880a8de7e5 | |||
| fe42515617 | |||
| 9662fc9d55 | |||
| 561bcb7023 | |||
| 9d7c735f79 | |||
| 8091eb4971 | |||
| 7e05806f6e | |||
| 967353bcd6 | |||
| 9f218c9f32 | |||
| 6a6bd3a4d2 | |||
| 149ce068bf | |||
| bc8b0ff033 | |||
| 624713347a | |||
| 52738c0491 | |||
| 277b00da87 | |||
| 455b9cea07 | |||
| 144366ce9d | |||
| 12b42d16b9 | |||
| 2d94504aa3 | |||
| 88f8c1c4c2 | |||
| d99ddc7ad9 | |||
| 6017bc4008 | |||
| 6631ea5cc2 | |||
| 09d49fd0fb | |||
| 6766a56440 | |||
| a1ac552c3e | |||
| 0c3a6cc90e | |||
| 95c9d40b00 | |||
| 4fb039ffc4 | |||
| 0b7ae110fc | |||
| af88237ddc | |||
| c0750c930a | |||
| 6fb1931c2d | |||
| 102ce5b0a5 | |||
| a72db227f0 | |||
| 45e1455d48 | |||
| 7582dc50c2 | |||
| e52fa68edd | |||
| 8dba00c9f7 | |||
| 381e6a9dba | |||
| bb1ac60acc | |||
| 08e001bcb0 | |||
| 256e43352a | |||
| c5a35e43be | |||
| eb0d0bb59f | |||
| 7316d49af8 | |||
| c1a637ac29 | |||
| 98d1961669 | |||
| 08f0babed6 | |||
| f2897d4b07 | |||
| b728553db5 | |||
| 9742cecf51 | |||
| 2ed3dfb6dd | |||
| 0cc49a89e5 | |||
| 6a31985863 | |||
| f4a9e63793 | |||
| 581e3a9bd1 | |||
| 8491ee9f51 | |||
| 49cefc3231 | |||
| b227431b7a | |||
| bb83ab0684 | |||
| 05267f44be | |||
| d1be532270 | |||
| 48798c7e61 | |||
| 84e71ab45b | |||
| 068f2d0cc9 | |||
| 759cf1973a | |||
| a11b7e0664 | |||
| d370b78815 | |||
| 913f75b4a8 | |||
| c3e850b102 | |||
| 3a89a1543b | |||
| 2a3e8e393c | |||
| 332b74e366 | |||
| dfa9efec7a | |||
| e1902827ce | |||
| 95fea3bb7b | |||
| 80a9f9f32d | |||
| 7fc1105728 | |||
| d46679caf6 | |||
| 910186ff00 | |||
| 5e72452a8d | |||
| 668756f1c7 | |||
| 29e7be6cd8 | |||
| a5599118fc | |||
| 040e8919f8 | |||
| d8e66f54a1 | |||
| 8a64bd7308 | |||
| 06a591debe | |||
| 7a77283b6e | |||
| 4a40a82d5b | |||
| abe78182fe | |||
| 16fc468516 | |||
| 85d8bc4e6d | |||
| 5f8979a62d | |||
| 969e981874 | |||
| 99d27da162 | |||
| a0f8b4df05 | |||
| ed720406da | |||
| 43d68515db | |||
| ac8aff2fb3 | |||
| 7a4583c036 | |||
| 7ffd9c10c5 | |||
| 228b617bfc | |||
| 9749677b86 | |||
| 045a849be8 | |||
| d50f7e07ac | |||
| 687c36cab2 | |||
| 1cabd1ddef | |||
| fb5203bbde | |||
| e50feabad7 | |||
| 8dd8ed1436 | |||
| f1cd57991e | |||
| 12d90f4446 | |||
| 30f9406021 | |||
| 6f12de7fd0 | |||
| 294a26ec7d | |||
| 7d12e5c972 | |||
| 2efcea9dbe | |||
| 5b1bf2b3d5 | |||
| 9f1b3d84f4 | |||
| e81c6a5dfb | |||
| c00dafa6d1 | |||
| cab00f4aed | |||
| 4082dac97b | |||
| 7317d418de | |||
| b7a1f9bbd6 | |||
| fcc165b4be | |||
| a9d16eadce | |||
| 82b95ccb85 | |||
| e01ef61b62 | |||
| 367bfc0fbc | |||
| 524c52e326 | |||
| 3bbb8290e5 | |||
| 1e8ac34370 | |||
| 2332e5ea71 | |||
| 796fa57330 | |||
| ce91b1152e | |||
| 64d44428d0 | |||
| 860fdc883f | |||
| f2f2066e99 | |||
| 3e343ce2b7 | |||
| 3c16620a7d | |||
| b1efd9f400 | |||
| cbe0ef8a12 | |||
| 24026d3678 | |||
| dea46815c7 | |||
| 11e34d8c4e | |||
| 3e3684eb34 | |||
| 7ee47db8e2 | |||
| b390fe7dd8 | |||
| fe0414cc59 | |||
| 48a1eba67e | |||
| 714cff7d76 | |||
| 0e8bab5c4c | |||
| 387e6e4986 | |||
| 6a7af1c30f | |||
| 2a17b4f1f3 | |||
| d005ccc919 | |||
| 5df89e7f89 | |||
| f6d72800cb | |||
| 4ff1929a22 | |||
| 46d54ffeee | |||
| 20cde272dd | |||
| 4270ee5b23 | |||
| cdcd6a7931 | |||
| f360091c1a | |||
| 3e52c3650e | |||
| 757c704d38 | |||
| 7c9f4d9815 | |||
| 9bfa7bd0c7 | |||
| d8620ef4f2 | |||
| d4b9c4af48 |
@@ -1,8 +1,11 @@
|
|||||||
TZ=Europe/Samara
|
TZ=Europe/Samara
|
||||||
WGADDRESS=10.0.1.1/24
|
WGADDRESS=10.0.1.1/24
|
||||||
WGPORT=51820
|
WGPORT=51820
|
||||||
|
WG1ADDRESS=10.0.3.1/24
|
||||||
|
WG1PORT=51821
|
||||||
SSPORT=8388
|
SSPORT=8388
|
||||||
TGPORT=4443
|
TGPORT=4443
|
||||||
IMAGE=alpine:3.18.2
|
IMAGE=alpine:3.18.2
|
||||||
IP=
|
IP=
|
||||||
VER=
|
VER=
|
||||||
|
ENV=/root/.ashrc
|
||||||
@@ -16,3 +16,7 @@
|
|||||||
.vscode/
|
.vscode/
|
||||||
.idea/
|
.idea/
|
||||||
mirror/.env
|
mirror/.env
|
||||||
|
update/*
|
||||||
|
!update/update.sh
|
||||||
|
|
||||||
|
override.env
|
||||||
@@ -0,0 +1,14 @@
|
|||||||
|
import sys
|
||||||
|
from PyQt5.QtCore import *
|
||||||
|
|
||||||
|
|
||||||
|
def enc(s):
|
||||||
|
ba = qCompress(QByteArray(s.encode()))
|
||||||
|
ba = ba.toBase64(QByteArray.Base64Option.Base64UrlEncoding | QByteArray.Base64Option.OmitTrailingEquals)
|
||||||
|
print('vpn://' + str(ba, 'utf-8'))
|
||||||
|
|
||||||
|
s = ''
|
||||||
|
for line in sys.stdin:
|
||||||
|
s += line
|
||||||
|
s = s.strip()
|
||||||
|
enc(s)
|
||||||
+2313
-384
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,11 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
require './config.php';
|
||||||
|
|
||||||
|
$ch = curl_init();
|
||||||
|
curl_setopt_array($ch, [
|
||||||
|
CURLOPT_URL => "https://api.telegram.org/bot{$c['key']}/getWebhookInfo",
|
||||||
|
CURLOPT_RETURNTRANSFER => true,
|
||||||
|
]);
|
||||||
|
$res = curl_exec($ch);
|
||||||
|
die(var_dump($res));
|
||||||
+44
-8
@@ -1,6 +1,10 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
$i = [
|
$i = [
|
||||||
|
'warp' => [
|
||||||
|
'en' => 'warp',
|
||||||
|
'ru' => 'warp',
|
||||||
|
],
|
||||||
'wg_title' => [
|
'wg_title' => [
|
||||||
'en' => 'Wireguard',
|
'en' => 'Wireguard',
|
||||||
'ru' => 'Wireguard',
|
'ru' => 'Wireguard',
|
||||||
@@ -166,12 +170,12 @@ $i = [
|
|||||||
'ru' => 'Некоторым клиентам требуется валидный сертификат при подключении, например Windows 11 DoH или ShadowSocks Android (URL-адрес PAC), для этого требуется домен',
|
'ru' => 'Некоторым клиентам требуется валидный сертификат при подключении, например Windows 11 DoH или ShadowSocks Android (URL-адрес PAC), для этого требуется домен',
|
||||||
],
|
],
|
||||||
'self list explain' => [
|
'self list explain' => [
|
||||||
'en' => ' - domains that will work through a proxy',
|
'en' => ' - domains that will work through a proxy, all others directly',
|
||||||
'ru' => ' - домены, которые будут работать через прокси',
|
'ru' => ' - домены, которые будут работать через прокси, все остальные напрямую',
|
||||||
],
|
],
|
||||||
'reverse list explain' => [
|
'reverse list explain' => [
|
||||||
'en' => ' - domains that will work without a proxy, all others through a proxy',
|
'en' => ' - domains that will work directly, all others through a proxy',
|
||||||
'ru' => ' - домены которые будут работать без прокси, все остальные через прокси',
|
'ru' => ' - домены которые будут работать напрямую, все остальные через прокси',
|
||||||
],
|
],
|
||||||
'timer' => [
|
'timer' => [
|
||||||
'en' => 'set timer',
|
'en' => 'set timer',
|
||||||
@@ -237,13 +241,17 @@ $i = [
|
|||||||
'en' => 'defaultDNS',
|
'en' => 'defaultDNS',
|
||||||
'ru' => 'дефолтный днс',
|
'ru' => 'дефолтный днс',
|
||||||
],
|
],
|
||||||
|
'defaultMTU' => [
|
||||||
|
'en' => 'defaultMTU',
|
||||||
|
'ru' => 'дефолтный MTU',
|
||||||
|
],
|
||||||
'debug' => [
|
'debug' => [
|
||||||
'en' => 'debug mode',
|
'en' => 'debug mode',
|
||||||
'ru' => 'режим отладки',
|
'ru' => 'режим отладки',
|
||||||
],
|
],
|
||||||
'backup' => [
|
'backup' => [
|
||||||
'en' => 'auto backup',
|
'en' => 'auto backup',
|
||||||
'ru' => 'бэкап',
|
'ru' => 'автобэкап',
|
||||||
],
|
],
|
||||||
'logs' => [
|
'logs' => [
|
||||||
'en' => 'logs',
|
'en' => 'logs',
|
||||||
@@ -254,8 +262,8 @@ $i = [
|
|||||||
'ru' => 'очистить',
|
'ru' => 'очистить',
|
||||||
],
|
],
|
||||||
'xray' => [
|
'xray' => [
|
||||||
'en' => 'XTLS-Reality',
|
'en' => 'Sing-box',
|
||||||
'ru' => 'XTLS-Reality',
|
'ru' => 'Sing-box',
|
||||||
],
|
],
|
||||||
'geodb' => [
|
'geodb' => [
|
||||||
'en' => 'GeoIp/GeoSite',
|
'en' => 'GeoIp/GeoSite',
|
||||||
@@ -263,7 +271,11 @@ $i = [
|
|||||||
],
|
],
|
||||||
'changeFakeDomain' => [
|
'changeFakeDomain' => [
|
||||||
'en' => 'changeFakeDomain',
|
'en' => 'changeFakeDomain',
|
||||||
'ru' => 'установить фейковый домен',
|
'ru' => 'фейковый домен',
|
||||||
|
],
|
||||||
|
'selfFakeDomain' => [
|
||||||
|
'en' => 'steal from yourself',
|
||||||
|
'ru' => 'steal from yourself',
|
||||||
],
|
],
|
||||||
'page' => [
|
'page' => [
|
||||||
'en' => 'pagination',
|
'en' => 'pagination',
|
||||||
@@ -301,4 +313,28 @@ $i = [
|
|||||||
'en' => 'download',
|
'en' => 'download',
|
||||||
'ru' => 'скачать',
|
'ru' => 'скачать',
|
||||||
],
|
],
|
||||||
|
'update bot' => [
|
||||||
|
'en' => 'update bot',
|
||||||
|
'ru' => 'обновить бота',
|
||||||
|
],
|
||||||
|
'third party browser' => [
|
||||||
|
'en' => 'third party browser',
|
||||||
|
'ru' => 'сторонний браузер',
|
||||||
|
],
|
||||||
|
'browser_notify_on' => [
|
||||||
|
'en' => 'the web panel can be opened in any browser',
|
||||||
|
'ru' => 'веб панель может быть открыта в любом браузере',
|
||||||
|
],
|
||||||
|
'browser_notify_off' => [
|
||||||
|
'en' => 'web panel is only available from telegram',
|
||||||
|
'ru' => 'веб панель доступна только из телеграмма',
|
||||||
|
],
|
||||||
|
'no updates' => [
|
||||||
|
'en' => 'no updates',
|
||||||
|
'ru' => 'нет обновлений',
|
||||||
|
],
|
||||||
|
'have updates' => [
|
||||||
|
'en' => '🟢 have updates',
|
||||||
|
'ru' => '🟢 есть обновления',
|
||||||
|
],
|
||||||
];
|
];
|
||||||
|
|||||||
+59
-18
@@ -17,29 +17,70 @@ if ('POST' == $_SERVER['REQUEST_METHOD'] && $_GET['k'] == $c['key']) {
|
|||||||
}
|
}
|
||||||
|
|
||||||
// pac
|
// pac
|
||||||
$type = $_GET['t'] ?? 'pac';
|
if (!empty($t = unserialize(base64_decode(explode('/', $_SERVER['REQUEST_URI'])[2])))) { // fix sing-box import
|
||||||
|
$_GET = array_merge($_GET, $t);
|
||||||
|
}
|
||||||
|
$type = $_GET['t'] ?? 'pac';
|
||||||
$address = $_GET['a'] ?: '127.0.0.1';
|
$address = $_GET['a'] ?: '127.0.0.1';
|
||||||
$port = $_GET['p'] ?: '1080';
|
$port = $_GET['p'] ?: '1080';
|
||||||
$hash = $_GET['h'];
|
$hash = $_GET['h'];
|
||||||
if ($hash == substr(md5($c['key']), 0, 8)) {
|
if ($hash == substr(md5($c['key']), 0, 8)) {
|
||||||
if ($type == 'mirror') {
|
require __DIR__ . '/bot.php';
|
||||||
|
require __DIR__ . '/i18n.php';
|
||||||
|
$bot = new Bot($c['key'], $i);
|
||||||
|
switch ($type) {
|
||||||
|
case 'mirror':
|
||||||
|
$bot->getMirror();
|
||||||
|
break;
|
||||||
|
case 's':
|
||||||
|
case 'si':
|
||||||
|
$bot->subscription();
|
||||||
|
exit;
|
||||||
|
|
||||||
|
case 'te':
|
||||||
|
if (!empty($_GET['te'])) {
|
||||||
|
$t = $bot->getPacConf()["{$_GET['ty']}templates"][$_GET['te']];
|
||||||
|
} else {
|
||||||
|
$t = json_decode(file_get_contents("/config/{$_GET['ty']}.json"), true);
|
||||||
|
}
|
||||||
|
if ($t) {
|
||||||
|
header('Content-Type: application/json');
|
||||||
|
echo json_encode($t, JSON_PRETTY_PRINT | JSON_UNESCAPED_UNICODE | JSON_UNESCAPED_SLASHES);
|
||||||
|
exit;
|
||||||
|
}
|
||||||
|
|
||||||
|
default:
|
||||||
|
if (file_exists($file = __DIR__ . "/zapretlists/$type")) {
|
||||||
|
$pac = file_get_contents($file);
|
||||||
|
header('Content-Type: text/plain');
|
||||||
|
echo str_replace([
|
||||||
|
'~address~',
|
||||||
|
'~port~',
|
||||||
|
], [
|
||||||
|
$address,
|
||||||
|
$port,
|
||||||
|
], $pac);
|
||||||
|
exit;
|
||||||
|
}
|
||||||
|
break;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
if (!empty($_GET['hash'])) {
|
||||||
|
$t = $_GET;
|
||||||
|
unset($t['hash']);
|
||||||
|
ksort($t);
|
||||||
|
foreach ($t as $k => $v) {
|
||||||
|
$s[] = "$k=$v";
|
||||||
|
}
|
||||||
|
$s = implode("\n", $s);
|
||||||
|
$sk = hash_hmac('sha256', $c['key'], "WebAppData", true);
|
||||||
|
if (hash_hmac('sha256', $s, $sk) == $_GET['hash']) {
|
||||||
require __DIR__ . '/bot.php';
|
require __DIR__ . '/bot.php';
|
||||||
require __DIR__ . '/i18n.php';
|
require __DIR__ . '/i18n.php';
|
||||||
$bot = new Bot($c['key'], $i);
|
$bot = new Bot($c['key'], $i);
|
||||||
$bot->getMirror();
|
setcookie('c', substr(hash('sha256', $c['key']), 0, 8), 0, '/');
|
||||||
} else {
|
setcookie('a', $bot->adguardBasicAuth(), 0, '/');
|
||||||
if (file_exists($file = __DIR__ . "/zapretlists/$type")) {
|
die('ok');
|
||||||
$pac = file_get_contents($file);
|
|
||||||
header('Content-Type: text/plain');
|
|
||||||
echo str_replace([
|
|
||||||
'~address~',
|
|
||||||
'~port~',
|
|
||||||
], [
|
|
||||||
$address,
|
|
||||||
$port,
|
|
||||||
], $pac);
|
|
||||||
exit;
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
+6
-8
@@ -2,18 +2,16 @@
|
|||||||
|
|
||||||
require __DIR__ . '/timezone.php';
|
require __DIR__ . '/timezone.php';
|
||||||
|
|
||||||
// require __DIR__ . '/debug.php';
|
|
||||||
require __DIR__ . '/bot.php';
|
require __DIR__ . '/bot.php';
|
||||||
require __DIR__ . '/config.php';
|
require __DIR__ . '/config.php';
|
||||||
require __DIR__ . '/i18n.php';
|
require __DIR__ . '/i18n.php';
|
||||||
|
if ($c['debug']) {
|
||||||
|
require __DIR__ . '/debug.php';
|
||||||
|
}
|
||||||
|
|
||||||
$bot = new Bot($c['key'], $i);
|
$bot = new Bot($c['key'], $i);
|
||||||
$bot->setwebhook();
|
$bot->adguardProtect();
|
||||||
|
$bot->adguardCheckPswd();
|
||||||
$bot->setcommands();
|
$bot->setcommands();
|
||||||
$bot->syncPortClients();
|
$bot->syncPortClients();
|
||||||
if (!empty($c['admin'])) {
|
$bot->setwebhook();
|
||||||
$ip = getenv('IP');
|
|
||||||
foreach ($c['admin'] as $k => $v) {
|
|
||||||
$bot->send($v, "start $ip");
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|||||||
@@ -0,0 +1,43 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
require __DIR__ . '/timezone.php';
|
||||||
|
|
||||||
|
require __DIR__ . '/bot.php';
|
||||||
|
require __DIR__ . '/config.php';
|
||||||
|
require __DIR__ . '/i18n.php';
|
||||||
|
|
||||||
|
if ($c['debug']) {
|
||||||
|
require __DIR__ . '/debug.php';
|
||||||
|
}
|
||||||
|
|
||||||
|
$bot = new Bot($c['key'], $i);
|
||||||
|
|
||||||
|
if (!empty($c['admin'])) {
|
||||||
|
$ip = getenv('IP');
|
||||||
|
$rm = explode(':', trim(file_get_contents('/update/reload_message')));
|
||||||
|
$m = file_get_contents('/update/message');
|
||||||
|
foreach ($c['admin'] as $k => $v) {
|
||||||
|
$r = $bot->send($v, "start $ip");
|
||||||
|
$bot->input['chat'] = $v;
|
||||||
|
$bot->input['message_id'] = $r['result']['message_id'];
|
||||||
|
if (file_exists($bot->update)) {
|
||||||
|
if (!empty($m)) {
|
||||||
|
$bot->send($v, "<pre>$m</pre>", $v == $rm[0] ? $rm[1] : 0);
|
||||||
|
}
|
||||||
|
$r = $bot->send($v, "import settings");
|
||||||
|
$bot->input['chat'] = $v;
|
||||||
|
$bot->input['message_id'] = $r['result']['message_id'];
|
||||||
|
$bot->input['callback_id'] = $r['result']['message_id'];
|
||||||
|
if (empty($flag)) {
|
||||||
|
$bot->importFile($bot->update);
|
||||||
|
unlink($bot->update);
|
||||||
|
$flag = true;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
file_put_contents('/update/message', '');
|
||||||
|
file_put_contents('/update/reload_message', '');
|
||||||
|
$bot->restartTG();
|
||||||
|
$bot->sslip();
|
||||||
|
$bot->cleanDocker();
|
||||||
+38
-98
@@ -89,98 +89,13 @@ function start()
|
|||||||
|
|
||||||
$conf = $bot->getPacConf();
|
$conf = $bot->getPacConf();
|
||||||
|
|
||||||
$subzones = array_keys(array_filter($conf['subzoneslist'], fn($x) => $x == true));
|
if (!empty($conf['subzoneslist'])) {
|
||||||
|
$subzones = array_keys(array_filter($conf['subzoneslist'], fn($x) => $x == true));
|
||||||
|
}
|
||||||
|
|
||||||
// check && exclude
|
// check && exclude
|
||||||
$include = array_filter($conf['includelist'], fn($x) => $x == true);
|
if (!empty($conf['includelist'])) {
|
||||||
if ($conf['zapret']) {
|
$domains = array_filter($conf['includelist'], fn($x) => $x == true);
|
||||||
foreach ($source as $k => $v) {
|
|
||||||
$size = getSize($v['source']);
|
|
||||||
if ($size > 0) {
|
|
||||||
if (file_exists($v['dest'])) {
|
|
||||||
unlink($v['dest']);
|
|
||||||
}
|
|
||||||
touch($v['dest']);
|
|
||||||
$percent = 0;
|
|
||||||
$curr = 0;
|
|
||||||
exec("php updatepac.php download $k > /dev/null &");
|
|
||||||
$i = $j = 0;
|
|
||||||
while ($curr <= $size) {
|
|
||||||
$rotate = $curr != $size ? $load[$j % count($load)] : '';
|
|
||||||
$tail = <<<text
|
|
||||||
Downloading {$v['source']}
|
|
||||||
$curr/$size $percent% $rotate
|
|
||||||
text;
|
|
||||||
update($text . $tail);
|
|
||||||
if ($curr == $size || $i > 50) {
|
|
||||||
break;
|
|
||||||
}
|
|
||||||
usleep(50000);
|
|
||||||
clearstatcache();
|
|
||||||
if ($curr == filesize($v['dest'])) {
|
|
||||||
$i++;
|
|
||||||
}
|
|
||||||
$curr = filesize($v['dest']);
|
|
||||||
$percent = (int) ceil($curr * 100 / $size);
|
|
||||||
$j++;
|
|
||||||
}
|
|
||||||
if ($curr != $size) {
|
|
||||||
$text .= "\nError downloading {$v['source']}\nabort script";
|
|
||||||
endScript($text);
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
$text .= "\nError size {$v['source']}\nabort script";
|
|
||||||
endScript($text);
|
|
||||||
}
|
|
||||||
$text .= $tail ? "$tail\n" : '';
|
|
||||||
}
|
|
||||||
// prepare
|
|
||||||
$reg = '~^([^.*]+\.(?:(?:' . implode('|', $subzones) . ')\.)?[^.]+)$~';
|
|
||||||
|
|
||||||
foreach ($source as $k => $v) {
|
|
||||||
$size = filesize($v['dest']);
|
|
||||||
$curr = $j = 0;
|
|
||||||
$time = microtime(true);
|
|
||||||
$name = basename($v['dest']);
|
|
||||||
$f = fopen($v['dest'], 'r');
|
|
||||||
while (($s = fgets($f)) !== false) {
|
|
||||||
$curr += strlen($s);
|
|
||||||
$percent = (int) ceil($curr * 100 / $size);
|
|
||||||
$rotate = $curr != $size ? $load[$j % count($load)] : '';
|
|
||||||
$tail = <<<text
|
|
||||||
Prepare $name $percent% $rotate
|
|
||||||
text;
|
|
||||||
if (microtime(true) - $time > 0.1) {
|
|
||||||
update($text . $tail);
|
|
||||||
$time = microtime(true);
|
|
||||||
$j++;
|
|
||||||
}
|
|
||||||
if ($name == 'dump.csv') {
|
|
||||||
if (!preg_match('~;.*;~', $s)) {
|
|
||||||
continue;
|
|
||||||
}
|
|
||||||
$t = explode(';', iconv('CP1251', 'utf-8', $s));
|
|
||||||
if (empty($t[1])) {
|
|
||||||
continue;
|
|
||||||
}
|
|
||||||
if (preg_match($reg, idn_to_ascii(trim($t[1])), $m)) {
|
|
||||||
$domains[$m[1]] = 0;
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
if (preg_match($reg, idn_to_ascii(iconv('CP1251', 'utf-8', trim($s))), $m)) {
|
|
||||||
$domains[$m[1]] = 0;
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
fclose($f);
|
|
||||||
$text .= $tail ? "$tail\n" : '';
|
|
||||||
}
|
|
||||||
$exclude = array_keys(array_filter($conf['excludelist'], fn($x) => $x == true));
|
|
||||||
foreach ($include as $k => $v) {
|
|
||||||
$domains[$k] = 0;
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
$domains = $include;
|
|
||||||
}
|
}
|
||||||
if (empty($domains)) {
|
if (empty($domains)) {
|
||||||
$text = "Empty domains. Delete pac files";
|
$text = "Empty domains. Delete pac files";
|
||||||
@@ -218,16 +133,30 @@ function start()
|
|||||||
$text .= $tail ? "$tail\n" : '';
|
$text .= $tail ? "$tail\n" : '';
|
||||||
|
|
||||||
// create pac
|
// create pac
|
||||||
$domains = elzw(json_encode($t));
|
$domains = json_encode($t);
|
||||||
$pac = 'function FindProxyForURL(t,e){"indexOf"in Array.prototype||(Array.prototype.indexOf=function(t,e){void 0===e&&(e=0),e<0&&(e+=this.length),e<0&&(e=0);for(var n=this.length;e<n;e++)if(e in this&&this[e]===t)return e;return -1}),"dlzw"in String.prototype||(String.prototype.dlzw=function(t){for(var e in text=this.split(""),code=256,o=phrase="",last=text.length,keys=[],text){if(o+=(cc="".charCodeAt.call(this[e],0))<256?text[e]:keys[cc],last==e)break;phrase&&phrase.length>0&&(keys[code]=phrase+(cc<256?text[e]:keys[cc][0]),code++),phrase=cc<256?text[e]:keys[cc]}return o});var n=JSON.parse(\'' . $domains . '\'.dlzw()),r=(/\.(' . implode('|', $subzones) . ')\.[^.]+$/.test(e)?e.replace(/(.+)\.([^.]+\.[^.]+\.[^.]+$)/,"$2"):e.replace(/(.+)\.([^.]+\.[^.]+$)/,"$2")).replace(/^www\.(.+)/,"$1").match(/(.*)\.([^.]+$)/);if(console.log(n,r),!r||!r[2])return"DIRECT";var o=r[1],i=r[2],a=[];if(n.hasOwnProperty(i)&&n[i].hasOwnProperty(o.length)){if("string"==typeof n[i][o.length]){var l=RegExp(".{"+o.length.toString()+"}","g");n[i][o.length]=n[i][o.length].match(l)}a=n[i][o.length]}return -1!==a.indexOf(o)?"SOCKS5 ~address~:~port~; DIRECT":"DIRECT"}';
|
$pac = <<<PAC
|
||||||
|
function FindProxyForURL(t, e) {
|
||||||
|
var n = JSON.parse('$domains'),
|
||||||
|
r = e.match(/((?:.+\.)*(.+))\.([^.]+)$/);
|
||||||
|
if (r && n.hasOwnProperty(r[3]) && (n[r[3]].hasOwnProperty(r[1].length) && (-1 !== n[r[3]][r[1].length].indexOf(r[1])) || n[r[3]].hasOwnProperty(r[2].length) && (-1 !== n[r[3]][r[2].length].indexOf(r[2])))) {
|
||||||
|
return "SOCKS5 ~address~:~port~; DIRECT";
|
||||||
|
}
|
||||||
|
return "DIRECT";
|
||||||
|
}
|
||||||
|
PAC;
|
||||||
|
$pac = preg_replace("~\s{2,}~", '', $pac);
|
||||||
|
$pac = preg_replace("~\n~", '', $pac);
|
||||||
file_put_contents(__DIR__ . '/zapretlists/pac', $pac);
|
file_put_contents(__DIR__ . '/zapretlists/pac', $pac);
|
||||||
$text .= "Create minified pac 100%\n";
|
$text .= "Create minified pac 100%\n";
|
||||||
}
|
}
|
||||||
|
|
||||||
// create reverse PAC
|
// create reverse PAC
|
||||||
$domains = array_filter($conf['reverselist'], fn($x) => $x == true);
|
unset($domains);
|
||||||
|
if (!empty($conf['reverselist'])) {
|
||||||
|
$domains = array_filter($conf['reverselist'], fn($x) => $x == true);
|
||||||
|
}
|
||||||
if (empty($domains)) {
|
if (empty($domains)) {
|
||||||
$text .= "Empty reverse domains. Delete reverse pac files";
|
|
||||||
|
// $text .= "Empty reverse domains. Delete reverse pac files";
|
||||||
unlink(__DIR__ . '/zapretlists/rmpac');
|
unlink(__DIR__ . '/zapretlists/rmpac');
|
||||||
unlink(__DIR__ . '/zapretlists/rpac');
|
unlink(__DIR__ . '/zapretlists/rpac');
|
||||||
} else {
|
} else {
|
||||||
@@ -258,11 +187,23 @@ function start()
|
|||||||
// fclose($f);
|
// fclose($f);
|
||||||
$text .= $tail ? "$tail\n" : '';
|
$text .= $tail ? "$tail\n" : '';
|
||||||
|
|
||||||
$domains = elzw(json_encode($t));
|
$domains = json_encode($t);
|
||||||
$pac = 'function FindProxyForURL(t,e){"indexOf"in Array.prototype||(Array.prototype.indexOf=function(t,e){void 0===e&&(e=0),e<0&&(e+=this.length),e<0&&(e=0);for(var n=this.length;e<n;e++)if(e in this&&this[e]===t)return e;return -1}),"dlzw"in String.prototype||(String.prototype.dlzw=function(t){for(var e in text=this.split(""),code=256,o=phrase="",last=text.length,keys=[],text){if(o+=(cc="".charCodeAt.call(this[e],0))<256?text[e]:keys[cc],last==e)break;phrase&&phrase.length>0&&(keys[code]=phrase+(cc<256?text[e]:keys[cc][0]),code++),phrase=cc<256?text[e]:keys[cc]}return o});var n=JSON.parse(\'' . $domains . '\'.dlzw()),r=(/\.(' . implode('|', $subzones) . ')\.[^.]+$/.test(e)?e.replace(/(.+)\.([^.]+\.[^.]+\.[^.]+$)/,"$2"):e.replace(/(.+)\.([^.]+\.[^.]+$)/,"$2")).replace(/^www\.(.+)/,"$1").match(/(.*)\.([^.]+$)/);if(console.log(n,r),!r||!r[2])return"DIRECT";var o=r[1],i=r[2],a=[];if(n.hasOwnProperty(i)&&n[i].hasOwnProperty(o.length)){if("string"==typeof n[i][o.length]){var l=RegExp(".{"+o.length.toString()+"}","g");n[i][o.length]=n[i][o.length].match(l)}a=n[i][o.length]}return -1!==a.indexOf(o)?"DIRECT":"SOCKS5 ~address~:~port~"}';
|
$pac = <<<PAC
|
||||||
|
function FindProxyForURL(t, e) {
|
||||||
|
var n = JSON.parse('$domains'),
|
||||||
|
r = e.match(/((?:.+\.)*(.+))\.([^.]+)$/);
|
||||||
|
if (r && n.hasOwnProperty(r[3]) && (n[r[3]].hasOwnProperty(r[1].length) && (-1 !== n[r[3]][r[1].length].indexOf(r[1])) || n[r[3]].hasOwnProperty(r[2].length) && (-1 !== n[r[3]][r[2].length].indexOf(r[2])))) {
|
||||||
|
return "DIRECT";
|
||||||
|
}
|
||||||
|
return "SOCKS5 ~address~:~port~";
|
||||||
|
}
|
||||||
|
PAC;
|
||||||
|
$pac = preg_replace("~\s{2,}+~", '', $pac);
|
||||||
|
$pac = preg_replace("~\n~", '', $pac);
|
||||||
file_put_contents(__DIR__ . '/zapretlists/rpac', $pac);
|
file_put_contents(__DIR__ . '/zapretlists/rpac', $pac);
|
||||||
$text .= 'Create minified reverse pac 100%';
|
$text .= 'Create minified reverse pac 100%';
|
||||||
}
|
}
|
||||||
|
|
||||||
endScript($text);
|
endScript($text);
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -308,7 +249,6 @@ $load = [
|
|||||||
'-',
|
'-',
|
||||||
'\\',
|
'\\',
|
||||||
];
|
];
|
||||||
|
|
||||||
switch ($_SERVER['argv'][1]) {
|
switch ($_SERVER['argv'][1]) {
|
||||||
case 'start':
|
case 'start':
|
||||||
$bot = new Bot($c['key'], $i);
|
$bot = new Bot($c['key'], $i);
|
||||||
|
|||||||
@@ -0,0 +1,26 @@
|
|||||||
|
<meta charset="utf-8">
|
||||||
|
<script src="jquery-3.7.1.min.js"></script>
|
||||||
|
<script>
|
||||||
|
jQuery(function($){
|
||||||
|
$('#copy').on('click', function (e){
|
||||||
|
$(this).text('copied');
|
||||||
|
var $temp = $("<input>");
|
||||||
|
$("body").append($temp);
|
||||||
|
$temp.val($(this).attr('data-id')).select();
|
||||||
|
document.execCommand("copy");
|
||||||
|
$temp.remove();
|
||||||
|
});
|
||||||
|
});
|
||||||
|
</script>
|
||||||
|
<div style="position:relative;width:100%;height:100%; background-color: white;">
|
||||||
|
<div style="position:absolute;top:0;right:0;width:35%;text-align:center;background-color: #17212b;">
|
||||||
|
<img src="toncoin.png" width="100%" alt="">
|
||||||
|
<a href="javascript:;" id="copy" style="color:white;text-decoration:none" data-id="UQCDDkaX3fCAFBek28Hx4TfvDDRqeizOW74blVMVAM4_m4OW">copy</a>
|
||||||
|
<!-- <iframe src="https://ghbtns.com/github-btn.html?user=mercurykd&repo=vpnbot&type=star&count=true" frameborder="0" scrolling="0" width="150" height="20" title="GitHub"></iframe> -->
|
||||||
|
</div>
|
||||||
|
<a style="background-color: #8B3FFD;height: 46px;display:inline-block;padding:0 54px;color: white;border-radius: 12px;text-decoration: none;font-size: 20px;line-height: 46px;font-family: arial;" href="https://yoomoney.ru/to/410011827900450">
|
||||||
|
<svg style="width: 24px;fill: white;position: relative;top: 4px;" class="qa-fundraise-button-logo mui-m0okdh" viewBox="0 0 16 16"><path d="M4.638 8.5a5.67 5.67 0 015.681-5.68A5.693 5.693 0 0116 8.5a5.693 5.693 0 01-5.68 5.682A5.67 5.67 0 014.637 8.5zm3.56 0c0 1.151.97 2.122 2.121 2.122 1.15 0 2.085-.97 2.121-2.121 0-1.15-.97-2.121-2.12-2.121-1.151 0-2.122.97-2.122 2.12zm-3.596 4.243v-8.27H0l2.589 8.27h2.013z" clip-rule="evenodd"></path></svg>
|
||||||
|
Перевести
|
||||||
|
</a>
|
||||||
|
<iframe style="width:100%;height:100%" src="https://pay.cloudtips.ru/p/757de378" frameborder="0"></iframe>
|
||||||
|
</div>
|
||||||
@@ -0,0 +1,24 @@
|
|||||||
|
<!DOCTYPE html>
|
||||||
|
<html lang="en">
|
||||||
|
<head>
|
||||||
|
<meta charset="UTF-8">
|
||||||
|
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||||
|
<script src="https://telegram.org/js/telegram-web-app.js"></script>
|
||||||
|
<script src="jquery-3.7.1.min.js"></script>
|
||||||
|
<title>Document</title>
|
||||||
|
</head>
|
||||||
|
<body>
|
||||||
|
<script>
|
||||||
|
var tg = window.Telegram.WebApp;
|
||||||
|
jQuery(function($) {
|
||||||
|
$.ajax({
|
||||||
|
'url': 'check?' + tg.initData,
|
||||||
|
}).done(function (r) {
|
||||||
|
location.replace('/adguard/');
|
||||||
|
}).fail(function (r) {
|
||||||
|
location.replace('/');
|
||||||
|
});
|
||||||
|
});
|
||||||
|
</script>
|
||||||
|
</body>
|
||||||
|
</html>
|
||||||
Vendored
+2
File diff suppressed because one or more lines are too long
@@ -0,0 +1,117 @@
|
|||||||
|
<!DOCTYPE html>
|
||||||
|
<html lang="en">
|
||||||
|
|
||||||
|
<head>
|
||||||
|
<meta charset="UTF-8">
|
||||||
|
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||||
|
<title>Login</title>
|
||||||
|
<style>
|
||||||
|
/* Design based on Blue Login Field of Kevin Sleger https://codepen.io/MurmeltierS/pen/macKb */
|
||||||
|
|
||||||
|
body {
|
||||||
|
background: #44c4e7 url("https://photos-6.dropbox.com/t/2/AAC_bdqR8LMkjEe-HPIf4K1DhtseMLRHPklBSzJSuzglvA/12/5714737/jpeg/1024x768/3/1418346000/0/2/bkg-blur.jpg/CLHm3AIgASgBKAI/b7RrveA2022yJyfO9RyRvv7LjJQESukGHssHUxVThzw") no-repeat center center fixed;
|
||||||
|
background-size: cover;
|
||||||
|
font-family: "Roboto";
|
||||||
|
-webkit-font-smoothing: antialiased;
|
||||||
|
-moz-osx-font-smoothing: grayscale;
|
||||||
|
|
||||||
|
&::before {
|
||||||
|
z-index: -1;
|
||||||
|
content: '';
|
||||||
|
position: fixed;
|
||||||
|
top: 0;
|
||||||
|
left: 0;
|
||||||
|
background: #44c4e7;
|
||||||
|
/* IE Fallback */
|
||||||
|
background: rgba(68, 196, 231, 0.8);
|
||||||
|
width: 100%;
|
||||||
|
height: 100%;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
.form {
|
||||||
|
position: absolute;
|
||||||
|
top: 50%;
|
||||||
|
left: 50%;
|
||||||
|
background: #fff;
|
||||||
|
width: 285px;
|
||||||
|
margin: -140px 0 0 -182px;
|
||||||
|
padding: 40px;
|
||||||
|
box-shadow: 0 0 3px rgba(0, 0, 0, 0.3);
|
||||||
|
|
||||||
|
h2 {
|
||||||
|
margin: 0 0 20px;
|
||||||
|
line-height: 1;
|
||||||
|
color: #44c4e7;
|
||||||
|
font-size: 18px;
|
||||||
|
font-weight: 400;
|
||||||
|
}
|
||||||
|
|
||||||
|
input {
|
||||||
|
outline: none;
|
||||||
|
display: block;
|
||||||
|
width: 100%;
|
||||||
|
margin: 0 0 20px;
|
||||||
|
padding: 10px 15px;
|
||||||
|
border: 1px solid #ccc;
|
||||||
|
color: #ccc;
|
||||||
|
font-family: "Roboto";
|
||||||
|
box-sizing: border-box;
|
||||||
|
font-size: 14px;
|
||||||
|
font-wieght: 400;
|
||||||
|
-webkit-font-smoothing: antialiased;
|
||||||
|
-moz-osx-font-smoothing: grayscale;
|
||||||
|
transition: 0.2s linear;
|
||||||
|
|
||||||
|
&input:focus {
|
||||||
|
color: #333;
|
||||||
|
border: 1px solid #44c4e7;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
button {
|
||||||
|
cursor: pointer;
|
||||||
|
background: #44c4e7;
|
||||||
|
width: 100%;
|
||||||
|
padding: 10px 15px;
|
||||||
|
border: 0;
|
||||||
|
color: #fff;
|
||||||
|
font-family: "Roboto";
|
||||||
|
font-size: 14px;
|
||||||
|
font-weight: 400;
|
||||||
|
|
||||||
|
&:hover {
|
||||||
|
background: #369cb8;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
.error,
|
||||||
|
.valid {
|
||||||
|
display: none;
|
||||||
|
}
|
||||||
|
</style>
|
||||||
|
<script src="jquery-3.7.1.min.js"></script>
|
||||||
|
</head>
|
||||||
|
|
||||||
|
<body>
|
||||||
|
<section class="form animated flipInX">
|
||||||
|
<h2>Login To Your Account</h2>
|
||||||
|
<p class="valid">Valid. Please wait a moment.</p>
|
||||||
|
<p class="error">Error. Please enter correct Username & password.</p>
|
||||||
|
<form class="loginbox" autocomplete="off">
|
||||||
|
<input placeholder="Username" type="text" id="username"></input>
|
||||||
|
<input placeholder="Password" type="password" id="password"></input>
|
||||||
|
<button id="submit">Login</button>
|
||||||
|
</form>
|
||||||
|
</section>
|
||||||
|
<script>
|
||||||
|
$(document).ready(function() {
|
||||||
|
$('#submit').click(function () {
|
||||||
|
event.preventDefault(); // prevent PageReLoad
|
||||||
|
$('.error').css('display', 'block'); // show error msg
|
||||||
|
});
|
||||||
|
});
|
||||||
|
</script>
|
||||||
|
</body>
|
||||||
|
</html>
|
||||||
Binary file not shown.
|
After Width: | Height: | Size: 28 KiB |
@@ -0,0 +1 @@
|
|||||||
|
[]
|
||||||
+19
-3
@@ -2,13 +2,13 @@ user nginx;
|
|||||||
worker_processes auto;
|
worker_processes auto;
|
||||||
|
|
||||||
error_log /logs/nginx_error;
|
error_log /logs/nginx_error;
|
||||||
pid /var/run/nginx.pid;
|
|
||||||
|
|
||||||
events {
|
events {
|
||||||
worker_connections 1024;
|
worker_connections 1024;
|
||||||
}
|
}
|
||||||
|
|
||||||
http {
|
http {
|
||||||
|
server_names_hash_bucket_size 64;
|
||||||
include include.conf;
|
include include.conf;
|
||||||
include /etc/nginx/mime.types;
|
include /etc/nginx/mime.types;
|
||||||
default_type application/octet-stream;
|
default_type application/octet-stream;
|
||||||
@@ -29,7 +29,9 @@ http {
|
|||||||
access_log /logs/nginx_default_access;
|
access_log /logs/nginx_default_access;
|
||||||
|
|
||||||
location / {
|
location / {
|
||||||
return 444;
|
root /app;
|
||||||
|
index login.html;
|
||||||
|
try_files $uri $uri/ =404;
|
||||||
}
|
}
|
||||||
location /adguard/ {
|
location /adguard/ {
|
||||||
access_log /logs/nginx_adguard_access;
|
access_log /logs/nginx_adguard_access;
|
||||||
@@ -37,6 +39,12 @@ http {
|
|||||||
proxy_redirect / /adguard/;
|
proxy_redirect / /adguard/;
|
||||||
proxy_cookie_path / /adguard/;
|
proxy_cookie_path / /adguard/;
|
||||||
}
|
}
|
||||||
|
location /webapp {
|
||||||
|
access_log /logs/nginx_webapp_access;
|
||||||
|
alias /app;
|
||||||
|
index index.html;
|
||||||
|
try_files $uri $uri/ /pac?$query_string;
|
||||||
|
}
|
||||||
location /pac {
|
location /pac {
|
||||||
access_log /logs/nginx_pac_access;
|
access_log /logs/nginx_pac_access;
|
||||||
proxy_pass http://php;
|
proxy_pass http://php;
|
||||||
@@ -79,7 +87,9 @@ http {
|
|||||||
# access_log /logs/nginx_domain_access;
|
# access_log /logs/nginx_domain_access;
|
||||||
|
|
||||||
# location / {
|
# location / {
|
||||||
# return 444;
|
# root /app;
|
||||||
|
# index login.html;
|
||||||
|
# try_files $uri $uri/ =404;
|
||||||
# }
|
# }
|
||||||
# location /adguard/ {
|
# location /adguard/ {
|
||||||
# access_log /logs/nginx_adguard_access;
|
# access_log /logs/nginx_adguard_access;
|
||||||
@@ -87,6 +97,12 @@ http {
|
|||||||
# proxy_redirect / /adguard/;
|
# proxy_redirect / /adguard/;
|
||||||
# proxy_cookie_path / /adguard/;
|
# proxy_cookie_path / /adguard/;
|
||||||
# }
|
# }
|
||||||
|
# location /webapp {
|
||||||
|
# access_log /logs/nginx_webapp_access;
|
||||||
|
# alias /app;
|
||||||
|
# index index.html;
|
||||||
|
# try_files $uri $uri/ /pac?$query_string;
|
||||||
|
# }
|
||||||
# location /pac {
|
# location /pac {
|
||||||
# access_log /logs/nginx_pac_access;
|
# access_log /logs/nginx_pac_access;
|
||||||
# proxy_pass http://php;
|
# proxy_pass http://php;
|
||||||
|
|||||||
@@ -2,13 +2,13 @@ user nginx;
|
|||||||
worker_processes auto;
|
worker_processes auto;
|
||||||
|
|
||||||
error_log /logs/nginx_error;
|
error_log /logs/nginx_error;
|
||||||
pid /var/run/nginx.pid;
|
|
||||||
|
|
||||||
events {
|
events {
|
||||||
worker_connections 1024;
|
worker_connections 1024;
|
||||||
}
|
}
|
||||||
|
|
||||||
http {
|
http {
|
||||||
|
server_names_hash_bucket_size 64;
|
||||||
include include.conf;
|
include include.conf;
|
||||||
include /etc/nginx/mime.types;
|
include /etc/nginx/mime.types;
|
||||||
default_type application/octet-stream;
|
default_type application/octet-stream;
|
||||||
@@ -29,7 +29,9 @@ http {
|
|||||||
access_log /logs/nginx_default_access;
|
access_log /logs/nginx_default_access;
|
||||||
|
|
||||||
location / {
|
location / {
|
||||||
return 444;
|
root /app;
|
||||||
|
index login.html;
|
||||||
|
try_files $uri $uri/ =404;
|
||||||
}
|
}
|
||||||
location /adguard/ {
|
location /adguard/ {
|
||||||
access_log /logs/nginx_adguard_access;
|
access_log /logs/nginx_adguard_access;
|
||||||
@@ -37,6 +39,12 @@ http {
|
|||||||
proxy_redirect / /adguard/;
|
proxy_redirect / /adguard/;
|
||||||
proxy_cookie_path / /adguard/;
|
proxy_cookie_path / /adguard/;
|
||||||
}
|
}
|
||||||
|
location /webapp {
|
||||||
|
access_log /logs/nginx_webapp_access;
|
||||||
|
alias /app;
|
||||||
|
index index.html;
|
||||||
|
try_files $uri $uri/ /pac?$query_string;
|
||||||
|
}
|
||||||
location /pac {
|
location /pac {
|
||||||
access_log /logs/nginx_pac_access;
|
access_log /logs/nginx_pac_access;
|
||||||
proxy_pass http://php;
|
proxy_pass http://php;
|
||||||
@@ -79,7 +87,9 @@ http {
|
|||||||
# access_log /logs/nginx_domain_access;
|
# access_log /logs/nginx_domain_access;
|
||||||
|
|
||||||
# location / {
|
# location / {
|
||||||
# return 444;
|
# root /app;
|
||||||
|
# index login.html;
|
||||||
|
# try_files $uri $uri/ =404;
|
||||||
# }
|
# }
|
||||||
# location /adguard/ {
|
# location /adguard/ {
|
||||||
# access_log /logs/nginx_adguard_access;
|
# access_log /logs/nginx_adguard_access;
|
||||||
@@ -87,6 +97,12 @@ http {
|
|||||||
# proxy_redirect / /adguard/;
|
# proxy_redirect / /adguard/;
|
||||||
# proxy_cookie_path / /adguard/;
|
# proxy_cookie_path / /adguard/;
|
||||||
# }
|
# }
|
||||||
|
# location /webapp {
|
||||||
|
# access_log /logs/nginx_webapp_access;
|
||||||
|
# alias /app;
|
||||||
|
# index index.html;
|
||||||
|
# try_files $uri $uri/ /pac?$query_string;
|
||||||
|
# }
|
||||||
# location /pac {
|
# location /pac {
|
||||||
# access_log /logs/nginx_pac_access;
|
# access_log /logs/nginx_pac_access;
|
||||||
# proxy_pass http://php;
|
# proxy_pass http://php;
|
||||||
|
|||||||
+2
-98
@@ -1,99 +1,3 @@
|
|||||||
{
|
{
|
||||||
"zapret": false,
|
"includelist": []
|
||||||
"excludelist": {
|
}
|
||||||
"(?:v|w)ul(?:c|k)an": true,
|
|
||||||
"^\\d": true,
|
|
||||||
"^a\\w-": true,
|
|
||||||
"^admiral": true,
|
|
||||||
"^avtomaty": true,
|
|
||||||
"^azart": true,
|
|
||||||
"^azimob": true,
|
|
||||||
"^baltplay": true,
|
|
||||||
"a(?:s|z)ino": true,
|
|
||||||
"adrenalin": true,
|
|
||||||
"alco": true,
|
|
||||||
"bet": true,
|
|
||||||
"prostitut": true,
|
|
||||||
"zenit": true,
|
|
||||||
"zerkalo": true,
|
|
||||||
"777": true
|
|
||||||
},
|
|
||||||
"includelist": {},
|
|
||||||
"reverselist": {},
|
|
||||||
"subzoneslist": {
|
|
||||||
"3dn": false,
|
|
||||||
"3nx": true,
|
|
||||||
"akadns": true,
|
|
||||||
"appspot": true,
|
|
||||||
"azurewebsites": true,
|
|
||||||
"beget": true,
|
|
||||||
"berlogovo": true,
|
|
||||||
"biz": true,
|
|
||||||
"brightcove": true,
|
|
||||||
"cc": true,
|
|
||||||
"cloudfront": true,
|
|
||||||
"co": true,
|
|
||||||
"com": true,
|
|
||||||
"cu": true,
|
|
||||||
"ddns": true,
|
|
||||||
"deviantart": true,
|
|
||||||
"dn": true,
|
|
||||||
"dp": true,
|
|
||||||
"dyndns": true,
|
|
||||||
"edgecastcdn": true,
|
|
||||||
"edu": true,
|
|
||||||
"eu": true,
|
|
||||||
"fastly": true,
|
|
||||||
"force": true,
|
|
||||||
"github": true,
|
|
||||||
"google": true,
|
|
||||||
"googleusercontent": true,
|
|
||||||
"gov": true,
|
|
||||||
"herokuapp": true,
|
|
||||||
"hldns": true,
|
|
||||||
"ho": true,
|
|
||||||
"hopto": true,
|
|
||||||
"hwcdn": true,
|
|
||||||
"i": true,
|
|
||||||
"iboards": true,
|
|
||||||
"in": true,
|
|
||||||
"info": true,
|
|
||||||
"int": true,
|
|
||||||
"itch": true,
|
|
||||||
"keenetic": true,
|
|
||||||
"kiev": true,
|
|
||||||
"kirov": true,
|
|
||||||
"linode": true,
|
|
||||||
"livejournal": true,
|
|
||||||
"maryno": true,
|
|
||||||
"mil": true,
|
|
||||||
"msk": true,
|
|
||||||
"my1": true,
|
|
||||||
"mybb2": true,
|
|
||||||
"ne": true,
|
|
||||||
"net": true,
|
|
||||||
"netdna-ssl": true,
|
|
||||||
"nnov": true,
|
|
||||||
"notion": true,
|
|
||||||
"nov": true,
|
|
||||||
"od": true,
|
|
||||||
"org": true,
|
|
||||||
"pp": true,
|
|
||||||
"pximg": true,
|
|
||||||
"pythonanywhere": true,
|
|
||||||
"ru": true,
|
|
||||||
"scaleway": true,
|
|
||||||
"sl": true,
|
|
||||||
"sl-reverse": true,
|
|
||||||
"spb": true,
|
|
||||||
"tilda": true,
|
|
||||||
"trafficmanager": true,
|
|
||||||
"tut": true,
|
|
||||||
"u-stream": true,
|
|
||||||
"ucoz": true,
|
|
||||||
"v": true,
|
|
||||||
"vercel": true,
|
|
||||||
"wix": true,
|
|
||||||
"wixmp": true
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -0,0 +1,112 @@
|
|||||||
|
{
|
||||||
|
"log": {
|
||||||
|
"level": "error",
|
||||||
|
"timestamp": true
|
||||||
|
},
|
||||||
|
"inbounds": [
|
||||||
|
{
|
||||||
|
"type": "tun",
|
||||||
|
"tag": "tun-in",
|
||||||
|
"domain_strategy": "prefer_ipv4",
|
||||||
|
"interface_name": "sing-tun",
|
||||||
|
"inet4_address": "172.19.0.1\/30",
|
||||||
|
"mtu": 1400,
|
||||||
|
"gso": true,
|
||||||
|
"auto_route": true,
|
||||||
|
"strict_route": true,
|
||||||
|
"sniff": true,
|
||||||
|
"endpoint_independent_nat": false,
|
||||||
|
"stack": "mixed",
|
||||||
|
"platform": {
|
||||||
|
"http_proxy": {
|
||||||
|
"enabled": false,
|
||||||
|
"server": "127.0.0.1",
|
||||||
|
"server_port": 2080
|
||||||
|
}
|
||||||
|
}
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"type": "mixed",
|
||||||
|
"tag": "mixed-in",
|
||||||
|
"domain_strategy": "prefer_ipv4",
|
||||||
|
"listen": "127.0.0.1",
|
||||||
|
"listen_port": 2080,
|
||||||
|
"tcp_fast_open": true,
|
||||||
|
"sniff": true,
|
||||||
|
"sniff_override_destination": false,
|
||||||
|
"users": []
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"dns": {
|
||||||
|
"servers": [
|
||||||
|
{
|
||||||
|
"tag": "dns_direct",
|
||||||
|
"address": "~dns~",
|
||||||
|
"address_resolver": "dns-remote",
|
||||||
|
"strategy": "prefer_ipv4",
|
||||||
|
"detour": "direct"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"tag": "dns-remote",
|
||||||
|
"address": "tcp:\/\/8.8.8.8",
|
||||||
|
"address_strategy": "prefer_ipv4",
|
||||||
|
"strategy": "prefer_ipv4",
|
||||||
|
"detour": "direct"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"strategy": "ipv4_only",
|
||||||
|
"independent_cache": true
|
||||||
|
},
|
||||||
|
"outbounds": [],
|
||||||
|
"route": {
|
||||||
|
"auto_detect_interface": true,
|
||||||
|
"override_android_vpn": true,
|
||||||
|
"rules": [
|
||||||
|
{
|
||||||
|
"protocol": "dns",
|
||||||
|
"outbound": "dns-out"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"createruleset": [
|
||||||
|
{
|
||||||
|
"name": "pac",
|
||||||
|
"interval": "15s",
|
||||||
|
"rules": [
|
||||||
|
{
|
||||||
|
"domain_suffix": "~pac~"
|
||||||
|
}
|
||||||
|
]
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"name": "warp",
|
||||||
|
"interval": "15s",
|
||||||
|
"rules": [
|
||||||
|
{
|
||||||
|
"domain_suffix": "~warp~"
|
||||||
|
}
|
||||||
|
]
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"outbound": "proxy"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"createruleset": [
|
||||||
|
{
|
||||||
|
"name": "block",
|
||||||
|
"interval": "15s",
|
||||||
|
"rules": [
|
||||||
|
{
|
||||||
|
"domain_suffix": "~block~"
|
||||||
|
}
|
||||||
|
]
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"outbound": "block"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"outbound": "direct"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"final": "direct"
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,26 @@
|
|||||||
|
{
|
||||||
|
"inbounds": [],
|
||||||
|
"log": {
|
||||||
|
"level": "info"
|
||||||
|
},
|
||||||
|
"outbounds": [
|
||||||
|
{
|
||||||
|
"type": "direct",
|
||||||
|
"tag": "direct"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"type": "block",
|
||||||
|
"tag": "block"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"type": "socks",
|
||||||
|
"tag": "warp",
|
||||||
|
"server": "10.10.0.13",
|
||||||
|
"server_port": 4000
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"route" : {
|
||||||
|
"rules": [],
|
||||||
|
"final": "direct"
|
||||||
|
}
|
||||||
|
}
|
||||||
+15
-6
@@ -3,7 +3,7 @@ worker_processes auto;
|
|||||||
|
|
||||||
load_module /usr/lib/nginx/modules/ngx_stream_module.so;
|
load_module /usr/lib/nginx/modules/ngx_stream_module.so;
|
||||||
|
|
||||||
error_log /logs/nginx_error;
|
error_log /logs/upstream_error;
|
||||||
pid /var/run/nginx.pid;
|
pid /var/run/nginx.pid;
|
||||||
|
|
||||||
events {
|
events {
|
||||||
@@ -15,8 +15,12 @@ stream {
|
|||||||
server ng:443;
|
server ng:443;
|
||||||
}
|
}
|
||||||
|
|
||||||
upstream reality {
|
upstream si {
|
||||||
server xr:443;
|
server si:443;
|
||||||
|
}
|
||||||
|
|
||||||
|
upstream singbox {
|
||||||
|
server 127.0.0.1:4443;
|
||||||
}
|
}
|
||||||
|
|
||||||
upstream ocserv {
|
upstream ocserv {
|
||||||
@@ -30,7 +34,7 @@ stream {
|
|||||||
map_hash_bucket_size 128;
|
map_hash_bucket_size 128;
|
||||||
map $ssl_preread_server_name $sni_name {
|
map $ssl_preread_server_name $sni_name {
|
||||||
#domain
|
#domain
|
||||||
www.microsoft.com reality;
|
vk.com singbox;
|
||||||
#domain
|
#domain
|
||||||
|
|
||||||
#ocserv
|
#ocserv
|
||||||
@@ -43,17 +47,22 @@ stream {
|
|||||||
default other;
|
default other;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
server {
|
||||||
|
listen 4443 reuseport proxy_protocol;
|
||||||
|
proxy_pass si;
|
||||||
|
}
|
||||||
|
|
||||||
server {
|
server {
|
||||||
listen 443 reuseport;
|
listen 443 reuseport;
|
||||||
proxy_pass $sni_name;
|
proxy_pass $sni_name;
|
||||||
proxy_protocol on;
|
|
||||||
ssl_preread on;
|
ssl_preread on;
|
||||||
|
proxy_protocol on;
|
||||||
}
|
}
|
||||||
|
|
||||||
server {
|
server {
|
||||||
listen 443 udp;
|
listen 443 udp;
|
||||||
proxy_pass $sni_name;
|
proxy_pass $sni_name;
|
||||||
proxy_protocol on;
|
|
||||||
ssl_preread on;
|
ssl_preread on;
|
||||||
|
proxy_protocol on;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -0,0 +1,95 @@
|
|||||||
|
{
|
||||||
|
"log": {
|
||||||
|
"access": "",
|
||||||
|
"error": "",
|
||||||
|
"loglevel": "warning"
|
||||||
|
},
|
||||||
|
"inbounds": [{
|
||||||
|
"tag": "socks",
|
||||||
|
"port": 10808,
|
||||||
|
"listen": "127.0.0.1",
|
||||||
|
"protocol": "socks",
|
||||||
|
"sniffing": {
|
||||||
|
"enabled": true,
|
||||||
|
"destOverride": ["http", "tls"],
|
||||||
|
"routeOnly": false
|
||||||
|
},
|
||||||
|
"settings": {
|
||||||
|
"auth": "noauth",
|
||||||
|
"udp": true,
|
||||||
|
"allowTransparent": false
|
||||||
|
}
|
||||||
|
}, {
|
||||||
|
"tag": "http",
|
||||||
|
"port": 10809,
|
||||||
|
"listen": "127.0.0.1",
|
||||||
|
"protocol": "http",
|
||||||
|
"sniffing": {
|
||||||
|
"enabled": true,
|
||||||
|
"destOverride": ["http", "tls"],
|
||||||
|
"routeOnly": false
|
||||||
|
},
|
||||||
|
"settings": {
|
||||||
|
"auth": "noauth",
|
||||||
|
"udp": true,
|
||||||
|
"allowTransparent": false
|
||||||
|
}
|
||||||
|
}],
|
||||||
|
"outbounds": [{
|
||||||
|
"tag": "proxy",
|
||||||
|
"protocol": "vless",
|
||||||
|
"settings": {
|
||||||
|
"vnext": [{
|
||||||
|
"address": "",
|
||||||
|
"port": 443,
|
||||||
|
"users": [{
|
||||||
|
"id": "",
|
||||||
|
"alterId": 0,
|
||||||
|
"email": "t@t.tt",
|
||||||
|
"security": "auto",
|
||||||
|
"encryption": "none",
|
||||||
|
"flow": "xtls-rprx-vision"
|
||||||
|
}]
|
||||||
|
}]
|
||||||
|
},
|
||||||
|
"streamSettings": {
|
||||||
|
"network": "tcp",
|
||||||
|
"security": "reality",
|
||||||
|
"realitySettings": {
|
||||||
|
"serverName": "",
|
||||||
|
"fingerprint": "chrome",
|
||||||
|
"show": false,
|
||||||
|
"publicKey": "",
|
||||||
|
"shortId": "",
|
||||||
|
"spiderX": ""
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"mux": {
|
||||||
|
"enabled": false,
|
||||||
|
"concurrency": -1
|
||||||
|
}
|
||||||
|
}, {
|
||||||
|
"tag": "direct",
|
||||||
|
"protocol": "freedom"
|
||||||
|
}, {
|
||||||
|
"tag": "block",
|
||||||
|
"protocol": "blackhole",
|
||||||
|
"settings": {
|
||||||
|
"response": {
|
||||||
|
"type": "http"
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}],
|
||||||
|
"routing": {
|
||||||
|
"domainStrategy": "AsIs",
|
||||||
|
"rules": [{
|
||||||
|
"type": "field",
|
||||||
|
"outboundTag": "proxy",
|
||||||
|
"domain": "~pac~"
|
||||||
|
}, {
|
||||||
|
"type": "field",
|
||||||
|
"port": "0-65535",
|
||||||
|
"outboundTag": "direct"
|
||||||
|
}]
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -1,66 +0,0 @@
|
|||||||
{
|
|
||||||
"inbounds": [
|
|
||||||
{
|
|
||||||
"port": 443,
|
|
||||||
"protocol": "vless",
|
|
||||||
"settings": {
|
|
||||||
"clients": [
|
|
||||||
{
|
|
||||||
"email": "user1@myserver",
|
|
||||||
"flow": "xtls-rprx-vision",
|
|
||||||
"id": ""
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"decryption": "none"
|
|
||||||
},
|
|
||||||
"sniffing": {
|
|
||||||
"destOverride": [
|
|
||||||
"http",
|
|
||||||
"tls"
|
|
||||||
],
|
|
||||||
"enabled": true
|
|
||||||
},
|
|
||||||
"streamSettings": {
|
|
||||||
"network": "tcp",
|
|
||||||
"realitySettings": {
|
|
||||||
"dest": "www.microsoft.com:443",
|
|
||||||
"maxClientVer": "",
|
|
||||||
"maxTimeDiff": 0,
|
|
||||||
"minClientVer": "",
|
|
||||||
"privateKey": "",
|
|
||||||
"serverNames": [
|
|
||||||
"www.microsoft.com"
|
|
||||||
],
|
|
||||||
"shortIds": [],
|
|
||||||
"show": false,
|
|
||||||
"xver": 0
|
|
||||||
},
|
|
||||||
"tcpSettings": {
|
|
||||||
"acceptProxyProtocol": true
|
|
||||||
},
|
|
||||||
"sockopt": {
|
|
||||||
"acceptProxyProtocol": true
|
|
||||||
},
|
|
||||||
"security": "reality"
|
|
||||||
},
|
|
||||||
"tag": "vless_tls"
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"log": {
|
|
||||||
"loglevel": "info"
|
|
||||||
},
|
|
||||||
"outbounds": [
|
|
||||||
{
|
|
||||||
"protocol": "freedom",
|
|
||||||
"tag": "direct"
|
|
||||||
},
|
|
||||||
{
|
|
||||||
"protocol": "blackhole",
|
|
||||||
"tag": "block"
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"routing": {
|
|
||||||
"domainStrategy": "AsIs",
|
|
||||||
"rules": []
|
|
||||||
}
|
|
||||||
}
|
|
||||||
+200
-49
@@ -1,5 +1,3 @@
|
|||||||
version: "3.7"
|
|
||||||
|
|
||||||
x-logging:
|
x-logging:
|
||||||
&default-logging
|
&default-logging
|
||||||
driver: "json-file"
|
driver: "json-file"
|
||||||
@@ -17,7 +15,7 @@ volumes:
|
|||||||
|
|
||||||
services:
|
services:
|
||||||
up:
|
up:
|
||||||
image: mercurykd/vpnbot-up:1.1
|
image: mercurykd/vpnbot-ng:1.1
|
||||||
build:
|
build:
|
||||||
context: dockerfile
|
context: dockerfile
|
||||||
dockerfile: nginx.dockerfile
|
dockerfile: nginx.dockerfile
|
||||||
@@ -25,9 +23,9 @@ services:
|
|||||||
image: ${IMAGE}
|
image: ${IMAGE}
|
||||||
volumes:
|
volumes:
|
||||||
- ./config/.profile:/root/.ashrc:ro
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
- ./config/upstream.conf:/etc/nginx/nginx.conf
|
|
||||||
- ./scripts/start_upstream.sh:/start_upstream.sh
|
- ./scripts/start_upstream.sh:/start_upstream.sh
|
||||||
- ./ssh:/ssh
|
- ./ssh:/ssh
|
||||||
|
- ./config:/config
|
||||||
- ./config/sshd_config:/etc/ssh/sshd_config
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
- ./logs/:/logs/
|
- ./logs/:/logs/
|
||||||
ports:
|
ports:
|
||||||
@@ -41,8 +39,11 @@ services:
|
|||||||
condition: service_started
|
condition: service_started
|
||||||
ss:
|
ss:
|
||||||
condition: service_started
|
condition: service_started
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_upstream.sh"]
|
command: ["/bin/sh", "/start_upstream.sh"]
|
||||||
networks:
|
networks:
|
||||||
@@ -58,14 +59,13 @@ services:
|
|||||||
image: ${IMAGE}
|
image: ${IMAGE}
|
||||||
volumes:
|
volumes:
|
||||||
- ./config/.profile:/root/.ashrc:ro
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
- ./config/nginx.conf:/etc/nginx/nginx.conf
|
- ./config:/config
|
||||||
- ./config/include.conf:/etc/nginx/include.conf
|
|
||||||
- ./config/nginx_default.conf:/nginx_default.conf
|
|
||||||
- ./scripts/start_ng.sh:/start_ng.sh
|
- ./scripts/start_ng.sh:/start_ng.sh
|
||||||
- ./certs/:/certs/
|
- ./certs/:/certs/
|
||||||
- ./ssh:/ssh
|
- ./ssh:/ssh
|
||||||
- ./config/sshd_config:/etc/ssh/sshd_config
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
- ./logs/:/logs/
|
- ./logs/:/logs/
|
||||||
|
- ./app/webapp:/app
|
||||||
ports:
|
ports:
|
||||||
- 80:80
|
- 80:80
|
||||||
hostname: nginx
|
hostname: nginx
|
||||||
@@ -73,9 +73,11 @@ services:
|
|||||||
depends_on:
|
depends_on:
|
||||||
up:
|
up:
|
||||||
condition: service_started
|
condition: service_started
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
SSPORT: ${SSPORT}
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_ng.sh"]
|
command: ["/bin/sh", "/start_ng.sh"]
|
||||||
networks:
|
networks:
|
||||||
@@ -83,11 +85,13 @@ services:
|
|||||||
ipv4_address: 10.10.0.2
|
ipv4_address: 10.10.0.2
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
php:
|
php:
|
||||||
image: mercurykd/vpnbot-php:1.1
|
image: mercurykd/vpnbot-php:1.5
|
||||||
build:
|
build:
|
||||||
dockerfile: dockerfile/php.dockerfile
|
dockerfile: dockerfile/php.dockerfile
|
||||||
args:
|
args:
|
||||||
image: ${IMAGE}
|
image: ${IMAGE}
|
||||||
|
ports:
|
||||||
|
- 127.0.0.1:8081:8080
|
||||||
volumes:
|
volumes:
|
||||||
- ./config/.profile:/root/.ashrc:ro
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
- ./config/php.ini:/etc/php81/php.ini
|
- ./config/php.ini:/etc/php81/php.ini
|
||||||
@@ -101,13 +105,18 @@ services:
|
|||||||
- ./version:/version
|
- ./version:/version
|
||||||
- ./mirror:/mirror
|
- ./mirror:/mirror
|
||||||
- ./.env:/mirror/.env
|
- ./.env:/mirror/.env
|
||||||
|
- ./update:/update
|
||||||
|
- ./.git:/.git
|
||||||
|
- ./singbox_windows:/singbox
|
||||||
|
- /var/run/docker.sock:/var/run/docker.sock:ro
|
||||||
environment:
|
environment:
|
||||||
TZ: ${TZ}
|
|
||||||
IP: ${IP}
|
IP: ${IP}
|
||||||
ADDRESS: ${WGADDRESS}
|
VER: ${VER}
|
||||||
WGPORT: ${WGPORT}
|
env_file:
|
||||||
SSPORT: ${SSPORT}
|
- path: ./.env
|
||||||
TGPORT: ${TGPORT}
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
hostname: php
|
hostname: php
|
||||||
container_name: php-${VER}
|
container_name: php-${VER}
|
||||||
restart: unless-stopped
|
restart: unless-stopped
|
||||||
@@ -125,8 +134,56 @@ services:
|
|||||||
interval: 5s
|
interval: 5s
|
||||||
timeout: 5s
|
timeout: 5s
|
||||||
retries: 5
|
retries: 5
|
||||||
|
service:
|
||||||
|
image: mercurykd/vpnbot-php:1.5
|
||||||
|
build:
|
||||||
|
dockerfile: dockerfile/php.dockerfile
|
||||||
|
args:
|
||||||
|
image: ${IMAGE}
|
||||||
|
volumes:
|
||||||
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
|
- ./config/php.ini:/etc/php81/php.ini
|
||||||
|
- ./config/:/config/
|
||||||
|
- ./certs/:/certs/
|
||||||
|
- ./ssh:/ssh
|
||||||
|
- ./app:/app
|
||||||
|
- ./logs/:/logs/
|
||||||
|
- ./update:/update
|
||||||
|
- ./scripts/start_service.sh:/start_service.sh
|
||||||
|
- /var/run/docker.sock:/var/run/docker.sock:ro
|
||||||
|
environment:
|
||||||
|
IP: ${IP}
|
||||||
|
VER: ${VER}
|
||||||
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
|
hostname: service
|
||||||
|
container_name: service-${VER}
|
||||||
|
# restart: unless-stopped
|
||||||
|
stop_grace_period: 1s
|
||||||
|
command: ["/bin/sh", "/start_service.sh"]
|
||||||
|
working_dir: /app
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
ipv4_address: 10.10.0.15
|
||||||
|
logging: *default-logging
|
||||||
|
depends_on:
|
||||||
|
- up
|
||||||
|
- ng
|
||||||
|
- php
|
||||||
|
- proxy
|
||||||
|
- wg
|
||||||
|
- wg1
|
||||||
|
- ad
|
||||||
|
- ss
|
||||||
|
- tg
|
||||||
|
- si
|
||||||
|
- oc
|
||||||
|
- np
|
||||||
proxy:
|
proxy:
|
||||||
image: mercurykd/vpnbot-ss:1.1
|
image: mercurykd/vpnbot-ss:1.2
|
||||||
build:
|
build:
|
||||||
dockerfile: dockerfile/shadowsocks.dockerfile
|
dockerfile: dockerfile/shadowsocks.dockerfile
|
||||||
args:
|
args:
|
||||||
@@ -147,7 +204,11 @@ services:
|
|||||||
ipv4_address: 10.10.0.3
|
ipv4_address: 10.10.0.3
|
||||||
environment:
|
environment:
|
||||||
TZ: ${TZ}
|
TZ: ${TZ}
|
||||||
SSPORT: ${SSPORT}
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_proxy.sh"]
|
command: ["/bin/sh", "/start_proxy.sh"]
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
@@ -164,9 +225,7 @@ services:
|
|||||||
- ./scripts/start_wg.sh:/start_wg.sh
|
- ./scripts/start_wg.sh:/start_wg.sh
|
||||||
- ./scripts/reset_wg.sh:/reset_wg.sh
|
- ./scripts/reset_wg.sh:/reset_wg.sh
|
||||||
- ./scripts/block_torrent.sh:/block_torrent.sh
|
- ./scripts/block_torrent.sh:/block_torrent.sh
|
||||||
- ./scripts/unblock_torrent.sh:/unblock_torrent.sh
|
|
||||||
- ./scripts/block_exchange.sh:/block_exchange.sh
|
- ./scripts/block_exchange.sh:/block_exchange.sh
|
||||||
- ./scripts/unblock_exchange.sh:/unblock_exchange.sh
|
|
||||||
- ./ssh:/ssh
|
- ./ssh:/ssh
|
||||||
- ./config/sshd_config:/etc/ssh/sshd_config
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
hostname: wireguard
|
hostname: wireguard
|
||||||
@@ -176,9 +235,12 @@ services:
|
|||||||
condition: service_healthy
|
condition: service_healthy
|
||||||
ports:
|
ports:
|
||||||
- ${WGPORT}:${WGPORT}/udp
|
- ${WGPORT}:${WGPORT}/udp
|
||||||
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
environment:
|
environment:
|
||||||
TZ: ${TZ}
|
|
||||||
WGPORT: ${WGPORT}
|
|
||||||
ADDRESS: ${WGADDRESS}
|
ADDRESS: ${WGADDRESS}
|
||||||
cap_add:
|
cap_add:
|
||||||
- NET_ADMIN
|
- NET_ADMIN
|
||||||
@@ -190,6 +252,46 @@ services:
|
|||||||
default:
|
default:
|
||||||
ipv4_address: 10.10.0.4
|
ipv4_address: 10.10.0.4
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
|
wg1:
|
||||||
|
image: mercurykd/vpnbot-wg:1.1
|
||||||
|
build:
|
||||||
|
dockerfile: dockerfile/wireguard.dockerfile
|
||||||
|
args:
|
||||||
|
image: ${IMAGE}
|
||||||
|
volumes:
|
||||||
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
|
- ./config/wg1.conf:/etc/wireguard/wg0.conf
|
||||||
|
- ./config/pac.json:/pac.json
|
||||||
|
- ./scripts/start_wg.sh:/start_wg.sh
|
||||||
|
- ./scripts/reset_wg.sh:/reset_wg.sh
|
||||||
|
- ./scripts/block_torrent.sh:/block_torrent.sh
|
||||||
|
- ./scripts/block_exchange.sh:/block_exchange.sh
|
||||||
|
- ./ssh:/ssh
|
||||||
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
|
hostname: wireguard1
|
||||||
|
container_name: wireguard1-${VER}
|
||||||
|
depends_on:
|
||||||
|
php:
|
||||||
|
condition: service_healthy
|
||||||
|
ports:
|
||||||
|
- ${WG1PORT}:${WG1PORT}/udp
|
||||||
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
|
environment:
|
||||||
|
ADDRESS: ${WG1ADDRESS}
|
||||||
|
cap_add:
|
||||||
|
- NET_ADMIN
|
||||||
|
devices:
|
||||||
|
- /dev/net/tun:/dev/net/tun
|
||||||
|
stop_grace_period: 1s
|
||||||
|
command: ["/bin/sh", "/start_wg.sh"]
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
ipv4_address: 10.10.0.14
|
||||||
|
logging: *default-logging
|
||||||
ad:
|
ad:
|
||||||
image: mercurykd/vpnbot-ad:1.1
|
image: mercurykd/vpnbot-ad:1.1
|
||||||
build:
|
build:
|
||||||
@@ -214,8 +316,11 @@ services:
|
|||||||
depends_on:
|
depends_on:
|
||||||
php:
|
php:
|
||||||
condition: service_healthy
|
condition: service_healthy
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
networks:
|
networks:
|
||||||
default:
|
default:
|
||||||
@@ -225,7 +330,7 @@ services:
|
|||||||
entrypoint: ["/bin/sh", "/start_ad.sh"]
|
entrypoint: ["/bin/sh", "/start_ad.sh"]
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
ss:
|
ss:
|
||||||
image: mercurykd/vpnbot-ss:1.1
|
image: mercurykd/vpnbot-ss:1.2
|
||||||
build:
|
build:
|
||||||
dockerfile: dockerfile/shadowsocks.dockerfile
|
dockerfile: dockerfile/shadowsocks.dockerfile
|
||||||
args:
|
args:
|
||||||
@@ -244,9 +349,11 @@ services:
|
|||||||
ports:
|
ports:
|
||||||
- ${SSPORT}:${SSPORT}/tcp
|
- ${SSPORT}:${SSPORT}/tcp
|
||||||
- ${SSPORT}:${SSPORT}/udp
|
- ${SSPORT}:${SSPORT}/udp
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
SSPORT: ${SSPORT}
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_ss.sh"]
|
command: ["/bin/sh", "/start_ss.sh"]
|
||||||
networks:
|
networks:
|
||||||
@@ -271,42 +378,49 @@ services:
|
|||||||
ports:
|
ports:
|
||||||
- ${TGPORT}:${TGPORT}
|
- ${TGPORT}:${TGPORT}
|
||||||
environment:
|
environment:
|
||||||
TZ: ${TZ}
|
|
||||||
IP: ${IP}
|
IP: ${IP}
|
||||||
TGPORT: ${TGPORT}
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_tg.sh"]
|
command: ["/bin/sh", "/start_tg.sh"]
|
||||||
networks:
|
networks:
|
||||||
default:
|
default:
|
||||||
ipv4_address: 10.10.0.8
|
ipv4_address: 10.10.0.8
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
xr:
|
si:
|
||||||
image: mercurykd/vpnbot-xr:1.1
|
image: mercurykd/vpnbot-sb:1.2
|
||||||
build:
|
build:
|
||||||
dockerfile: dockerfile/xray.dockerfile
|
dockerfile: dockerfile/singbox.dockerfile
|
||||||
args:
|
args:
|
||||||
image: ${IMAGE}
|
image: ${IMAGE}
|
||||||
volumes:
|
volumes:
|
||||||
- ./config/.profile:/root/.ashrc:ro
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
- ./ssh:/ssh
|
- ./ssh:/ssh
|
||||||
- ./config/sshd_config:/etc/ssh/sshd_config
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
- ./config/xray.json:/xray.json
|
- ./config:/config
|
||||||
- ./scripts/start_xray.sh:/start_xray.sh
|
- ./certs:/certs
|
||||||
hostname: xray
|
- ./scripts/start_sing.sh:/start_sing.sh
|
||||||
container_name: xray-${VER}
|
hostname: singbox
|
||||||
|
container_name: singbox-${VER}
|
||||||
depends_on:
|
depends_on:
|
||||||
php:
|
php:
|
||||||
condition: service_healthy
|
condition: service_healthy
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_xray.sh"]
|
command: ["/bin/sh", "/start_sing.sh"]
|
||||||
networks:
|
networks:
|
||||||
default:
|
default:
|
||||||
ipv4_address: 10.10.0.9
|
ipv4_address: 10.10.0.9
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
oc:
|
oc:
|
||||||
image: mercurykd/vpnbot-oc:1.1
|
image: mercurykd/vpnbot-oc:1.2
|
||||||
build:
|
build:
|
||||||
dockerfile: dockerfile/ocserv.dockerfile
|
dockerfile: dockerfile/ocserv.dockerfile
|
||||||
args:
|
args:
|
||||||
@@ -323,9 +437,11 @@ services:
|
|||||||
depends_on:
|
depends_on:
|
||||||
php:
|
php:
|
||||||
condition: service_healthy
|
condition: service_healthy
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
ENV: /root/.ashrc
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_oc.sh"]
|
command: ["/bin/sh", "/start_oc.sh"]
|
||||||
cap_add:
|
cap_add:
|
||||||
@@ -354,9 +470,11 @@ services:
|
|||||||
depends_on:
|
depends_on:
|
||||||
php:
|
php:
|
||||||
condition: service_healthy
|
condition: service_healthy
|
||||||
environment:
|
env_file:
|
||||||
TZ: ${TZ}
|
- path: ./.env
|
||||||
ENV: /root/.ashrc
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
stop_grace_period: 1s
|
stop_grace_period: 1s
|
||||||
command: ["/bin/sh", "/start_np.sh"]
|
command: ["/bin/sh", "/start_np.sh"]
|
||||||
cap_add:
|
cap_add:
|
||||||
@@ -365,3 +483,36 @@ services:
|
|||||||
default:
|
default:
|
||||||
ipv4_address: 10.10.0.12
|
ipv4_address: 10.10.0.12
|
||||||
logging: *default-logging
|
logging: *default-logging
|
||||||
|
wp:
|
||||||
|
image: mercurykd/vpnbot-wp:1.2
|
||||||
|
build:
|
||||||
|
dockerfile: dockerfile/warp.dockerfile
|
||||||
|
args:
|
||||||
|
image: ${IMAGE}
|
||||||
|
cap_add:
|
||||||
|
- NET_ADMIN
|
||||||
|
devices:
|
||||||
|
- /dev/net/tun:/dev/net/tun
|
||||||
|
volumes:
|
||||||
|
- ./config/.profile:/root/.ashrc:ro
|
||||||
|
- ./ssh:/ssh
|
||||||
|
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||||
|
- ./config:/config
|
||||||
|
- ./certs:/certs
|
||||||
|
- ./scripts/start_wp.sh:/start_wp.sh
|
||||||
|
hostname: warp
|
||||||
|
container_name: warp-${VER}
|
||||||
|
depends_on:
|
||||||
|
php:
|
||||||
|
condition: service_healthy
|
||||||
|
env_file:
|
||||||
|
- path: ./.env
|
||||||
|
required: true # default
|
||||||
|
- path: ./override.env
|
||||||
|
required: false
|
||||||
|
stop_grace_period: 1s
|
||||||
|
command: ["/bin/sh", "/start_wp.sh"]
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
ipv4_address: 10.10.0.13
|
||||||
|
logging: *default-logging
|
||||||
|
|||||||
@@ -1,21 +1,22 @@
|
|||||||
ARG image
|
ARG image
|
||||||
FROM $image
|
FROM $image
|
||||||
RUN apk add --update openssh iptables \
|
RUN apk add --update openssh \
|
||||||
&& apk add --no-cache --virtual .build-deps \
|
iptables \
|
||||||
curl \
|
|
||||||
g++ \
|
|
||||||
gnutls-dev \
|
gnutls-dev \
|
||||||
gpgme \
|
|
||||||
libev-dev \
|
libev-dev \
|
||||||
libnl3-dev \
|
|
||||||
libseccomp-dev \
|
|
||||||
linux-headers \
|
|
||||||
linux-pam-dev \
|
linux-pam-dev \
|
||||||
lz4-dev \
|
lz4-dev \
|
||||||
|
libseccomp-dev \
|
||||||
|
&& apk add --no-cache --virtual .build-deps \
|
||||||
|
xz \
|
||||||
|
linux-headers \
|
||||||
|
libnl3-dev \
|
||||||
|
g++ \
|
||||||
|
gpgme \
|
||||||
|
curl \
|
||||||
make \
|
make \
|
||||||
readline-dev \
|
readline-dev \
|
||||||
tar \
|
tar \
|
||||||
xz \
|
|
||||||
autoconf \
|
autoconf \
|
||||||
automake \
|
automake \
|
||||||
gperf \
|
gperf \
|
||||||
|
|||||||
@@ -4,6 +4,7 @@ RUN apk add --no-cache --update php81 \
|
|||||||
php81-mbstring \
|
php81-mbstring \
|
||||||
php81-session \
|
php81-session \
|
||||||
php81-phar \
|
php81-phar \
|
||||||
|
php81-zip \
|
||||||
php81-curl \
|
php81-curl \
|
||||||
php81-opcache \
|
php81-opcache \
|
||||||
php81-openssl \
|
php81-openssl \
|
||||||
@@ -19,9 +20,16 @@ RUN apk add --no-cache --update php81 \
|
|||||||
openssh \
|
openssh \
|
||||||
openssl \
|
openssl \
|
||||||
curl \
|
curl \
|
||||||
|
git \
|
||||||
|
py3-qt5 \
|
||||||
&& wget https://github.com/ameshkov/dnslookup/releases/download/v1.9.1/dnslookup-linux-amd64-v1.9.1.tar.gz \
|
&& wget https://github.com/ameshkov/dnslookup/releases/download/v1.9.1/dnslookup-linux-amd64-v1.9.1.tar.gz \
|
||||||
&& tar -xf dnslookup-linux-amd64-v1.9.1.tar.gz \
|
&& tar -xf dnslookup-linux-amd64-v1.9.1.tar.gz \
|
||||||
&& mv linux-amd64/dnslookup /usr/bin \
|
&& mv linux-amd64/dnslookup /usr/bin \
|
||||||
&& rm dnslookup-linux-amd64-v1.9.1.tar.gz \
|
&& rm dnslookup-linux-amd64-v1.9.1.tar.gz \
|
||||||
&& rm -rf /linux-amd64
|
&& rm -rf /linux-amd64 \
|
||||||
|
&& wget https://github.com/SagerNet/sing-box/releases/download/v1.8.11/sing-box-1.8.11-linux-amd64.tar.gz \
|
||||||
|
&& tar -xf sing-box-1.8.11-linux-amd64.tar.gz \
|
||||||
|
&& mv sing-box-1.8.11-linux-amd64/sing-box /usr/bin \
|
||||||
|
&& rm sing-box-1.8.11-linux-amd64.tar.gz \
|
||||||
|
&& rm -rf /sing-box-1.8.11-linux-amd64
|
||||||
ENV ENV="/root/.ashrc"
|
ENV ENV="/root/.ashrc"
|
||||||
|
|||||||
@@ -2,16 +2,16 @@ ARG image
|
|||||||
FROM $image
|
FROM $image
|
||||||
RUN apk add openssh git xz \
|
RUN apk add openssh git xz \
|
||||||
&& mkdir /root/.ssh \
|
&& mkdir /root/.ssh \
|
||||||
&& wget https://github.com/shadowsocks/shadowsocks-rust/releases/download/v1.15.3/shadowsocks-v1.15.3.x86_64-unknown-linux-musl.tar.xz \
|
&& wget -O shadowsocks-rust.x86_64-unknown-linux-musl.tar.xz $(wget -q -O - https://api.github.com/repos/shadowsocks/shadowsocks-rust/releases/latest | grep browser_download_url | cut -d\" -f4 | egrep '.x86_64-unknown-linux-musl.tar.xz$') \
|
||||||
&& tar -xf shadowsocks-v1.15.3.x86_64-unknown-linux-musl.tar.xz \
|
&& tar -xf shadowsocks-rust.x86_64-unknown-linux-musl.tar.xz \
|
||||||
&& wget https://github.com/teddysun/v2ray-plugin/releases/download/v5.7.0/v2ray-plugin-linux-amd64-v5.7.0.tar.gz \
|
&& wget -O v2ray-plugin-linux-amd64.tar.gz $(wget -q -O - https://api.github.com/repos/teddysun/v2ray-plugin/releases/latest | grep browser_download_url | cut -d\" -f4 | egrep 'v2ray-plugin-linux-amd64') \
|
||||||
&& tar -xf v2ray-plugin-linux-amd64-v5.7.0.tar.gz \
|
&& tar -xf v2ray-plugin-linux-amd64.tar.gz \
|
||||||
&& mv sslocal /usr/bin/ \
|
&& mv sslocal /usr/bin/ \
|
||||||
&& mv ssserver /usr/bin/ \
|
&& mv ssserver /usr/bin/ \
|
||||||
&& mv ssmanager /usr/bin/ \
|
&& mv ssmanager /usr/bin/ \
|
||||||
&& mv ssservice /usr/bin/ \
|
&& mv ssservice /usr/bin/ \
|
||||||
&& mv ssurl /usr/bin/ \
|
&& mv ssurl /usr/bin/ \
|
||||||
&& mv v2ray-plugin_linux_amd64 /usr/bin/v2ray-plugin \
|
&& mv v2ray-plugin_linux_amd64 /usr/bin/v2ray-plugin \
|
||||||
&& rm v2ray-plugin-linux-amd64-v5.7.0.tar.gz\
|
&& rm v2ray-plugin-linux-amd64.tar.gz \
|
||||||
&& rm shadowsocks-v1.15.3.x86_64-unknown-linux-musl.tar.xz
|
&& rm shadowsocks-rust.x86_64-unknown-linux-musl.tar.xz
|
||||||
ENV ENV="/root/.ashrc"
|
ENV ENV="/root/.ashrc"
|
||||||
|
|||||||
@@ -0,0 +1,9 @@
|
|||||||
|
ARG image
|
||||||
|
FROM $image
|
||||||
|
RUN apk add openssh openssl jq \
|
||||||
|
&& mkdir /root/.ssh \
|
||||||
|
&& wget https://github.com/SagerNet/sing-box/releases/download/v1.9.3/sing-box-1.9.3-linux-amd64.tar.gz \
|
||||||
|
&& tar -xf sing-box-1.9.3-linux-amd64.tar.gz \
|
||||||
|
&& mv sing-box-1.9.3-linux-amd64/sing-box /usr/bin \
|
||||||
|
&& rm sing-box-1.9.3-linux-amd64.tar.gz \
|
||||||
|
&& rm -rf /sing-box-1.9.3-linux-amd64
|
||||||
@@ -0,0 +1,16 @@
|
|||||||
|
FROM ubuntu:22.04 AS build
|
||||||
|
RUN apt update && apt install -y curl gpg lsb-release \
|
||||||
|
&& curl -fsSL https://pkg.cloudflareclient.com/pubkey.gpg | gpg --yes --dearmor --output /usr/share/keyrings/cloudflare-warp-archive-keyring.gpg \
|
||||||
|
&& echo "deb [signed-by=/usr/share/keyrings/cloudflare-warp-archive-keyring.gpg] https://pkg.cloudflareclient.com/ $(lsb_release -cs) main" | tee /etc/apt/sources.list.d/cloudflare-client.list \
|
||||||
|
&& apt update && apt install -y cloudflare-warp
|
||||||
|
|
||||||
|
FROM alpine:3.17
|
||||||
|
ARG GLIBC_VERSION=2.34-r0
|
||||||
|
COPY --from=build /usr/bin/warp-cli /usr/bin/warp-svc /usr/local/bin/
|
||||||
|
RUN apk add --no-cache dbus-libs wget socat openssh-server jq curl \
|
||||||
|
&& mkdir /tmp/glibc-pkgs \
|
||||||
|
&& for PKG in glibc-$GLIBC_VERSION.apk glibc-bin-$GLIBC_VERSION.apk; do wget -q --directory-prefix /tmp/glibc-pkgs https://github.com/sgerrand/alpine-pkg-glibc/releases/download/$GLIBC_VERSION/$PKG; done \
|
||||||
|
&& apk add --no-cache --allow-untrusted --force-overwrite /tmp/glibc-pkgs/* \
|
||||||
|
&& rm -rf /tmp/glibc-pkgs \
|
||||||
|
&& /usr/glibc-compat/sbin/ldconfig /lib /usr/glibc-compat/lib \
|
||||||
|
&& mkdir /root/.ssh
|
||||||
@@ -1,6 +1,8 @@
|
|||||||
ARG image
|
ARG image
|
||||||
FROM $image
|
FROM $image
|
||||||
RUN apk add --no-cache --virtual .build-deps alpine-sdk git go \
|
COPY --from=golang:1.22.3-alpine /usr/local/go/ /usr/local/go/
|
||||||
|
ENV PATH="/usr/local/go/bin:${PATH}"
|
||||||
|
RUN apk add --no-cache --virtual .build-deps alpine-sdk git \
|
||||||
&& apk add iproute2 linux-headers iptables xtables-addons openssh wireguard-tools jq bash htop \
|
&& apk add iproute2 linux-headers iptables xtables-addons openssh wireguard-tools jq bash htop \
|
||||||
&& git clone https://github.com/amnezia-vpn/amneziawg-go \
|
&& git clone https://github.com/amnezia-vpn/amneziawg-go \
|
||||||
&& git clone https://github.com/amnezia-vpn/amneziawg-tools.git \
|
&& git clone https://github.com/amnezia-vpn/amneziawg-tools.git \
|
||||||
|
|||||||
@@ -1,12 +0,0 @@
|
|||||||
ARG image
|
|
||||||
FROM $image
|
|
||||||
RUN apk add openssh openssl jq \
|
|
||||||
&& mkdir /root/.ssh \
|
|
||||||
&& wget https://github.com/XTLS/Xray-core/releases/download/v1.8.3/Xray-linux-64.zip \
|
|
||||||
&& unzip Xray-linux-64.zip \
|
|
||||||
&& mv xray /usr/bin/ \
|
|
||||||
&& rm Xray-linux-64.zip \
|
|
||||||
&& rm geoip.dat \
|
|
||||||
&& rm geosite.dat \
|
|
||||||
&& chmod +x /usr/bin/xray
|
|
||||||
ENV ENV="/root/.ashrc"
|
|
||||||
@@ -1,12 +1,15 @@
|
|||||||
b:
|
b:
|
||||||
docker compose build
|
docker compose build
|
||||||
u: # запуск контейнеров
|
u: # запуск контейнеров
|
||||||
IP=$(shell ip -4 addr | sed -ne 's|^.* inet \([^/]*\)/.* scope global.*$$|\1|p' | awk '{print $1}' | head -1) VER=$(shell git describe --tags) docker compose up -d --force-recreate
|
bash ./update/update.sh &
|
||||||
|
touch ./override.env
|
||||||
|
IP=$(shell curl https://ipinfo.io/ip) VER=$(shell git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate
|
||||||
d: # остановка контейнеров
|
d: # остановка контейнеров
|
||||||
docker compose down
|
-kill -9 $(shell cat ./update/update_pid) > /dev/null
|
||||||
|
docker compose down --remove-orphans
|
||||||
dv: # остановка контейнеров
|
dv: # остановка контейнеров
|
||||||
docker compose down -v
|
docker compose down -v
|
||||||
r: cleanf d u cleanf
|
r: d u
|
||||||
ps: # список контейнеров
|
ps: # список контейнеров
|
||||||
docker compose ps
|
docker compose ps
|
||||||
l: # логи из контейнеров
|
l: # логи из контейнеров
|
||||||
@@ -15,6 +18,8 @@ php: # консоль сервиса
|
|||||||
docker compose exec php /bin/sh
|
docker compose exec php /bin/sh
|
||||||
wg: # консоль сервиса
|
wg: # консоль сервиса
|
||||||
docker compose exec wg /bin/sh
|
docker compose exec wg /bin/sh
|
||||||
|
wg1: # консоль сервиса
|
||||||
|
docker compose exec wg1 /bin/sh
|
||||||
ss: # консоль сервиса
|
ss: # консоль сервиса
|
||||||
docker compose exec ss /bin/sh
|
docker compose exec ss /bin/sh
|
||||||
ng: # консоль сервиса
|
ng: # консоль сервиса
|
||||||
@@ -25,12 +30,14 @@ up: # консоль сервиса
|
|||||||
docker compose exec up /bin/sh
|
docker compose exec up /bin/sh
|
||||||
ad: # консоль сервиса
|
ad: # консоль сервиса
|
||||||
docker compose exec ad /bin/sh
|
docker compose exec ad /bin/sh
|
||||||
|
wp: # консоль сервиса
|
||||||
|
docker compose exec wp /bin/sh
|
||||||
proxy: # консоль сервиса
|
proxy: # консоль сервиса
|
||||||
docker compose exec proxy /bin/sh
|
docker compose exec proxy /bin/sh
|
||||||
tg: # консоль сервиса
|
tg: # консоль сервиса
|
||||||
docker compose exec tg /bin/sh
|
docker compose exec tg /bin/sh
|
||||||
xr: # консоль сервиса
|
si: # консоль сервиса
|
||||||
docker compose exec xr /bin/shec tg /bin/sh
|
docker compose exec si /bin/sh
|
||||||
oc: # консоль сервиса
|
oc: # консоль сервиса
|
||||||
docker compose exec oc /bin/sh
|
docker compose exec oc /bin/sh
|
||||||
clean:
|
clean:
|
||||||
@@ -42,12 +49,13 @@ cleanf:
|
|||||||
cleanall:
|
cleanall:
|
||||||
docker image prune -a -f
|
docker image prune -a -f
|
||||||
docker builder prune -a -f
|
docker builder prune -a -f
|
||||||
p:
|
|
||||||
git stash
|
|
||||||
git pull
|
|
||||||
git stash pop stash@{0}
|
|
||||||
update: p r
|
|
||||||
cn:
|
|
||||||
docker compose exec ng nginx -t
|
|
||||||
push:
|
push:
|
||||||
docker compose push
|
docker compose push
|
||||||
|
s:
|
||||||
|
git status -su
|
||||||
|
c:
|
||||||
|
git add config/
|
||||||
|
git checkout .
|
||||||
|
git reset
|
||||||
|
webhook:
|
||||||
|
docker compose exec php php checkwebhook.php
|
||||||
Regular → Executable
@@ -6,6 +6,10 @@ telegram bot to manage servers (inside the bot)
|
|||||||
- change secret
|
- change secret
|
||||||
- qr/config
|
- qr/config
|
||||||
- change fake domain
|
- change fake domain
|
||||||
|
- multiple users
|
||||||
|
- subscriptions with routing
|
||||||
|
- routing templates per user
|
||||||
|
- steal from yourself
|
||||||
<img src="https://github.com/mercurykd/vpnbot/assets/30900414/39bdf4e0-96a6-4257-b61e-30a14122e236" width="200">
|
<img src="https://github.com/mercurykd/vpnbot/assets/30900414/39bdf4e0-96a6-4257-b61e-30a14122e236" width="200">
|
||||||
|
|
||||||
### NaiveProxy
|
### NaiveProxy
|
||||||
@@ -62,19 +66,17 @@ telegram bot to manage servers (inside the bot)
|
|||||||
<img src="https://github.com/mercurykd/vpnbot/assets/30900414/431ec09d-9c14-4c74-b8f6-e49c142132e8" width="200">
|
<img src="https://github.com/mercurykd/vpnbot/assets/30900414/431ec09d-9c14-4c74-b8f6-e49c142132e8" width="200">
|
||||||
|
|
||||||
---
|
---
|
||||||
environment: ubuntu 18.04/20.04/22.04, debian 11
|
environment: ubuntu 18.04/20.04/22.04, debian 11/12
|
||||||
|
|
||||||
install:
|
### Install:
|
||||||
|
|
||||||
`wget -O- https://raw.githubusercontent.com/mercurykd/vpnbot/master/scripts/init.sh | sh -s YOUR_TELEGRAM_BOT_KEY`
|
|
||||||
|
|
||||||
---
|
|
||||||
|
|
||||||
additional options:
|
|
||||||
|
|
||||||
install as service(autoload on start):
|
|
||||||
|
|
||||||
|
```shell
|
||||||
|
wget -O- https://raw.githubusercontent.com/mercurykd/vpnbot/master/scripts/init.sh | sh -s YOUR_TELEGRAM_BOT_KEY
|
||||||
```
|
```
|
||||||
|
|
||||||
|
### Install as service (autoload on start):
|
||||||
|
|
||||||
|
```shell
|
||||||
cd /root/vpnbot
|
cd /root/vpnbot
|
||||||
bash scripts/install_as_service.sh
|
bash scripts/install_as_service.sh
|
||||||
```
|
```
|
||||||
|
|||||||
Regular → Executable
Regular → Executable
Regular → Executable
+1
-1
@@ -1,4 +1,4 @@
|
|||||||
if [[ -f "/ssh/key.pub" && -s "/ssh/key.pub" ]]; then
|
if [[ -f "/start" && -f "/ssh/key.pub" && -s "/ssh/key.pub" ]]; then
|
||||||
exit 0;
|
exit 0;
|
||||||
else
|
else
|
||||||
exit 1;
|
exit 1;
|
||||||
|
|||||||
Regular → Executable
Regular → Executable
Regular → Executable
Regular → Executable
+2
-1
@@ -1,3 +1,4 @@
|
|||||||
cp scripts/vpnbot.service /etc/systemd/system/vpnbot.service
|
path=`pwd`
|
||||||
|
sed "s|path|$path|g" "$path/scripts/vpnbot.service" > /etc/systemd/system/vpnbot.service
|
||||||
systemctl daemon-reload
|
systemctl daemon-reload
|
||||||
systemctl enable vpnbot
|
systemctl enable vpnbot
|
||||||
|
|||||||
Regular → Executable
Regular → Executable
+1
@@ -1,4 +1,5 @@
|
|||||||
route add -net 10.0.1.0 netmask 255.255.255.0 gw wg
|
route add -net 10.0.1.0 netmask 255.255.255.0 gw wg
|
||||||
|
route add -net 10.0.3.0 netmask 255.255.255.0 gw wg1
|
||||||
route add -net 10.0.2.0 netmask 255.255.255.0 gw oc
|
route add -net 10.0.2.0 netmask 255.255.255.0 gw oc
|
||||||
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
ssh-keygen -A
|
ssh-keygen -A
|
||||||
|
|||||||
Regular → Executable
+5
-5
@@ -1,8 +1,8 @@
|
|||||||
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
ssh-keygen -A
|
ssh-keygen -A
|
||||||
exec /usr/sbin/sshd -D -e "$@" &
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
sed "s/ss:[0-9]\+/ss:$SSPORT/" /nginx_default.conf > change_port
|
sed "s/ss:[0-9]\+/ss:$SSPORT/" /config/nginx_default.conf > change_port
|
||||||
cat change_port > /nginx_default.conf
|
cat change_port > /config/nginx_default.conf
|
||||||
sed "s/ss:[0-9]\+/ss:$SSPORT/" /etc/nginx/nginx.conf > change_port
|
sed "s/ss:[0-9]\+/ss:$SSPORT/" /config/nginx.conf > change_port
|
||||||
cat change_port > /etc/nginx/nginx.conf
|
cat change_port > /config/nginx.conf
|
||||||
nginx -g "daemon off;"
|
nginx -g "daemon off;" -c /config/nginx.conf
|
||||||
|
|||||||
Regular → Executable
Regular → Executable
Regular → Executable
+1
-1
@@ -6,4 +6,4 @@ php cron.php &
|
|||||||
unitd --log /logs/unit_error
|
unitd --log /logs/unit_error
|
||||||
curl -X PUT --data-binary @/config/unit.json --unix-socket /var/run/control.unit.sock http://localhost/config
|
curl -X PUT --data-binary @/config/unit.json --unix-socket /var/run/control.unit.sock http://localhost/config
|
||||||
pkill unitd
|
pkill unitd
|
||||||
unitd --no-daemon --log /logs/unit_error
|
unitd --no-daemon --control 0.0.0.0:8080 --log /logs/unit_error
|
||||||
|
|||||||
Regular → Executable
Executable
+1
@@ -0,0 +1 @@
|
|||||||
|
php service.php
|
||||||
Executable
+5
@@ -0,0 +1,5 @@
|
|||||||
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
|
ssh-keygen -A
|
||||||
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
|
sing-box run -c /config/singbox.json > /dev/null &
|
||||||
|
tail -f /dev/null
|
||||||
Regular → Executable
Regular → Executable
-5
@@ -4,9 +4,4 @@ ssh-keygen -A
|
|||||||
exec /usr/sbin/sshd -D -e "$@" &
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
curl -s https://core.telegram.org/getProxySecret -o proxy-secret
|
curl -s https://core.telegram.org/getProxySecret -o proxy-secret
|
||||||
curl -s https://core.telegram.org/getProxyConfig -o proxy-multi.conf
|
curl -s https://core.telegram.org/getProxyConfig -o proxy-multi.conf
|
||||||
if [ $(cat /mtprotosecret | wc -c) -gt 0 ]
|
|
||||||
then
|
|
||||||
SECRET=$(cat /mtprotosecret)
|
|
||||||
mtproto-proxy -u nobody -H $TGPORT --nat-info 10.10.0.8:$IP -S $SECRET --aes-pwd /proxy-secret /proxy-multi.conf -M 1
|
|
||||||
fi
|
|
||||||
tail -f /dev/null
|
tail -f /dev/null
|
||||||
|
|||||||
Regular → Executable
+1
-1
@@ -1,4 +1,4 @@
|
|||||||
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
ssh-keygen -A
|
ssh-keygen -A
|
||||||
exec /usr/sbin/sshd -D -e "$@" &
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
nginx -g "daemon off;"
|
nginx -g "daemon off;" -c /config/upstream.conf
|
||||||
|
|||||||
Regular → Executable
+56
-22
@@ -1,33 +1,67 @@
|
|||||||
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
|
ssh-keygen -A
|
||||||
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
|
|
||||||
INTERFACE=$(route | grep '^default' | grep -o '[^ ]*$')
|
INTERFACE=$(route | grep '^default' | grep -o '[^ ]*$')
|
||||||
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
if [ "$HOSTNAME" = "wireguard1" ]
|
||||||
then
|
then
|
||||||
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
||||||
echo "[Interface]" > /etc/wireguard/wg0.conf
|
then
|
||||||
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
||||||
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
echo "[Interface]" > /etc/wireguard/wg0.conf
|
||||||
echo "ListenPort = $WGPORT" >> /etc/wireguard/wg0.conf
|
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
||||||
|
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
||||||
|
echo "ListenPort = $WG1PORT" >> /etc/wireguard/wg0.conf
|
||||||
|
else
|
||||||
|
sed "s/ListenPort = [0-9]\+/ListenPort = $WG1PORT/" /etc/wireguard/wg0.conf > change_port
|
||||||
|
cat change_port > /etc/wireguard/wg0.conf
|
||||||
|
fi
|
||||||
else
|
else
|
||||||
sed "s/ListenPort = [0-9]\+/ListenPort = $WGPORT/" /etc/wireguard/wg0.conf > change_port
|
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
||||||
cat change_port > /etc/wireguard/wg0.conf
|
then
|
||||||
|
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
||||||
|
echo "[Interface]" > /etc/wireguard/wg0.conf
|
||||||
|
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
||||||
|
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
||||||
|
echo "ListenPort = $WGPORT" >> /etc/wireguard/wg0.conf
|
||||||
|
else
|
||||||
|
sed "s/ListenPort = [0-9]\+/ListenPort = $WGPORT/" /etc/wireguard/wg0.conf > change_port
|
||||||
|
cat change_port > /etc/wireguard/wg0.conf
|
||||||
|
fi
|
||||||
fi
|
fi
|
||||||
iptables -t nat -A POSTROUTING --destination 10.10.0.5 -j ACCEPT
|
iptables -t nat -A POSTROUTING --destination 10.10.0.5 -j ACCEPT
|
||||||
iptables -t nat -A POSTROUTING -o $INTERFACE -j MASQUERADE
|
iptables -t nat -A POSTROUTING -o $INTERFACE -j MASQUERADE
|
||||||
ln -s /etc/wireguard/wg0.conf /etc/amnezia/amneziawg/wg0.conf
|
ln -s /etc/wireguard/wg0.conf /etc/amnezia/amneziawg/wg0.conf
|
||||||
if [ $(cat /pac.json | jq .amnezia) -eq 1 ]
|
if [ "$HOSTNAME" = "wireguard1" ]
|
||||||
then
|
then
|
||||||
awg-quick up wg0
|
if [ $(cat /pac.json | jq .wg1_amnezia) -eq 1 ]
|
||||||
|
then
|
||||||
|
awg-quick up wg0
|
||||||
|
else
|
||||||
|
wg-quick up wg0
|
||||||
|
fi
|
||||||
|
if [ $(cat /pac.json | jq .wg1_blocktorrent) -eq 1 ]
|
||||||
|
then
|
||||||
|
sh /block_torrent.sh
|
||||||
|
fi
|
||||||
|
if [ $(cat /pac.json | jq .wg1_exchange) -eq 1 ]
|
||||||
|
then
|
||||||
|
sh /block_exchange.sh
|
||||||
|
fi
|
||||||
else
|
else
|
||||||
wg-quick up wg0
|
if [ $(cat /pac.json | jq .amnezia) -eq 1 ]
|
||||||
fi
|
then
|
||||||
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
awg-quick up wg0
|
||||||
ssh-keygen -A
|
else
|
||||||
exec /usr/sbin/sshd -D -e "$@" &
|
wg-quick up wg0
|
||||||
if [ $(cat /pac.json | jq .blocktorrent) -eq 1 ]
|
fi
|
||||||
then
|
if [ $(cat /pac.json | jq .blocktorrent) -eq 1 ]
|
||||||
sh /block_torrent.sh
|
then
|
||||||
fi
|
sh /block_torrent.sh
|
||||||
if [ $(cat /pac.json | jq .exchange) -eq 1 ]
|
fi
|
||||||
then
|
if [ $(cat /pac.json | jq .exchange) -eq 1 ]
|
||||||
sh /block_exchange.sh
|
then
|
||||||
|
sh /block_exchange.sh
|
||||||
|
fi
|
||||||
fi
|
fi
|
||||||
tail -f /dev/null
|
tail -f /dev/null
|
||||||
|
|||||||
Executable
+14
@@ -0,0 +1,14 @@
|
|||||||
|
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
||||||
|
ssh-keygen -A
|
||||||
|
exec /usr/sbin/sshd -D -e "$@" &
|
||||||
|
warp-svc > /dev/null &
|
||||||
|
sleep 3
|
||||||
|
warp-cli --accept-tos registration new
|
||||||
|
key=$(cat /config/pac.json | jq -r .warp)
|
||||||
|
if [ ! -z "$key" ]
|
||||||
|
then
|
||||||
|
warp-cli --accept-tos registration license $key
|
||||||
|
fi
|
||||||
|
warp-cli --accept-tos mode proxy
|
||||||
|
warp-cli --accept-tos connect
|
||||||
|
socat TCP-LISTEN:4000,fork TCP:127.0.0.1:40000
|
||||||
@@ -1,8 +0,0 @@
|
|||||||
cat /ssh/key.pub > /root/.ssh/authorized_keys
|
|
||||||
ssh-keygen -A
|
|
||||||
exec /usr/sbin/sshd -D -e "$@" &
|
|
||||||
if [ $(cat /xray.json | jq -r '.inbounds[0].settings.clients[0].id' | wc -c) -gt 1 ]
|
|
||||||
then
|
|
||||||
xray run -config /xray.json > /dev/null &
|
|
||||||
fi
|
|
||||||
tail -f /dev/null
|
|
||||||
@@ -1 +0,0 @@
|
|||||||
iptables -D FORWARD -i wg0 -o wg0 -j REJECT
|
|
||||||
@@ -1,12 +0,0 @@
|
|||||||
iptables -D FORWARD -p tcp -m ipp2p --bit -j DROP
|
|
||||||
iptables -D FORWARD -p udp -m ipp2p --bit -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "BitTorrent" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "BitTorrent protocol" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "peer_id=" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string ".torrent" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "announce.php?passkey=" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "torrent" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "announce" -j DROP
|
|
||||||
iptables -D FORWARD -m string --algo bm --string "info_hash" -j DROP
|
|
||||||
iptables -D OUTPUT -p tcp -m ipp2p --bit -j DROP
|
|
||||||
iptables -D OUTPUT -p udp -m ipp2p --bit -j DROP
|
|
||||||
@@ -3,10 +3,14 @@ Description=VPN: Docker Compose Application Service
|
|||||||
Requires=docker.service
|
Requires=docker.service
|
||||||
After=docker.service
|
After=docker.service
|
||||||
[Service]
|
[Service]
|
||||||
WorkingDirectory=/root/vpnbot
|
Type=oneshot
|
||||||
ExecStart=/bin/sh -c "IP=$(ip -4 addr | sed -ne 's|^.* inet \([^/]*\)/.* scope global.*$|\1|p' | awk '{print $1}' | head -1) docker compose up --build --force-recreate"
|
RemainAfterExit=yes
|
||||||
ExecStop=/usr/bin/docker compose down
|
WorkingDirectory=path
|
||||||
|
ExecStartPre=/bin/sh -c "touch ./override.env"
|
||||||
|
ExecStart=/bin/sh -c "IP=$(curl https://ipinfo.io/ip) VER=$(git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate"
|
||||||
|
ExecStartPost=/bin/sh -c "bash ./update/update.sh &"
|
||||||
|
ExecStop=/bin/sh -c "docker compose down --remove-orphans"
|
||||||
|
ExecStopPost=/bin/sh -c "kill -9 $(cat ./update/update_pid) > /dev/null"
|
||||||
TimeoutStartSec=0
|
TimeoutStartSec=0
|
||||||
Restart=on-failure
|
|
||||||
[Install]
|
[Install]
|
||||||
WantedBy=multi-user.target
|
WantedBy=multi-user.target
|
||||||
|
|||||||
@@ -0,0 +1,2 @@
|
|||||||
|
winsw3.exe install
|
||||||
|
pause
|
||||||
@@ -0,0 +1,2 @@
|
|||||||
|
winsw3.exe stop
|
||||||
|
winsw3.exe start
|
||||||
Binary file not shown.
@@ -0,0 +1 @@
|
|||||||
|
winsw3.exe start
|
||||||
@@ -0,0 +1,2 @@
|
|||||||
|
winsw3.exe status
|
||||||
|
pause
|
||||||
@@ -0,0 +1 @@
|
|||||||
|
winsw3.exe stop
|
||||||
@@ -0,0 +1,2 @@
|
|||||||
|
winsw3.exe uninstall
|
||||||
|
pause
|
||||||
Binary file not shown.
@@ -0,0 +1,17 @@
|
|||||||
|
<service>
|
||||||
|
<id>singbox</id>
|
||||||
|
<name>singbox</name>
|
||||||
|
<description>singbox</description>
|
||||||
|
<executable>%BASE%\sing-box.exe</executable>
|
||||||
|
<arguments>run -c %BASE%\config.json</arguments>
|
||||||
|
<logmode>rotate</logmode>
|
||||||
|
<onfailure action="restart" delay="10 sec" />
|
||||||
|
<onfailure action="restart" delay="20 sec" />
|
||||||
|
<onfailure action="restart" delay="30 sec" />
|
||||||
|
<onfailure action="none" />
|
||||||
|
<onexit action="restart" />
|
||||||
|
<onexit action="restart" />
|
||||||
|
<onexit action="restart" />
|
||||||
|
<onexit action="none" />
|
||||||
|
<download from="~url~" to="%BASE%\config.json"/>
|
||||||
|
</service>
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
@url = http://127.0.0.1:8081
|
||||||
|
###
|
||||||
|
|
||||||
|
GET {{url}}/status
|
||||||
|
###
|
||||||
|
GET {{url}}/config
|
||||||
Executable
+34
@@ -0,0 +1,34 @@
|
|||||||
|
#!/bin/bash
|
||||||
|
pwd=`pwd`
|
||||||
|
> $pwd/update/pipe
|
||||||
|
echo "$$" > $pwd/update/update_pid
|
||||||
|
|
||||||
|
while true
|
||||||
|
do
|
||||||
|
cmd=$(cat $pwd/update/pipe)
|
||||||
|
branch=$(cat $pwd/update/branch 2>/dev/null)
|
||||||
|
if [[ -n "$cmd" ]]
|
||||||
|
then
|
||||||
|
key=$(cat $pwd/update/key)
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "останавливаю бота"/')"
|
||||||
|
docker compose down --remove-orphans
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "очищаю директорию"/')"
|
||||||
|
git reset --hard && git clean -fd
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "скачиваю обновление"/')"
|
||||||
|
git fetch
|
||||||
|
if [[ -n "$branch" ]]
|
||||||
|
then
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "меняю ветку"/')"
|
||||||
|
git checkout -t origin/$branch || git checkout $branch
|
||||||
|
fi
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "применяю обновления"/')"
|
||||||
|
git pull > ./update/message
|
||||||
|
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "запускаю бота"/')"
|
||||||
|
IP=$(curl https://ipinfo.io/ip) VER=$(git describe --tags) docker compose up -d --force-recreate
|
||||||
|
bash $pwd/update/update.sh &
|
||||||
|
> $pwd/update/key
|
||||||
|
> $pwd/update/curl
|
||||||
|
exit 0
|
||||||
|
fi
|
||||||
|
sleep 1
|
||||||
|
done
|
||||||
@@ -1,3 +1,138 @@
|
|||||||
|
26.08.2024 v1.44
|
||||||
|
- qr для xtls
|
||||||
|
- фикс действий на элементом списков
|
||||||
|
21.08.2024 v1.43
|
||||||
|
- singbox:поддержка кастомных outbound для ruleset
|
||||||
|
16.08.2024 v1.42.1
|
||||||
|
- фикс добавления рулсетов с длинными урл
|
||||||
|
16.08.2024 v1.42
|
||||||
|
- добавлена возможность сохранять/восстанавливать список доменов/правил маршрутизации
|
||||||
|
- изменена ссылка на сингбокс-конфиг для совместимости с клиентом сингбокса (фикс импорта в sing-box)
|
||||||
|
- sing-box: добавлена возможность добавлять свои packagename (outbound:proxy)
|
||||||
|
- sing-box: добавлена возможность добавлять свои ruleset с указанием outbound и временем обновления
|
||||||
|
- sing-box: списки доменов pac/warp/block трансформируются в собственный ruleset и присутствуют в шаблоне origin всегда, даже если они пустые. это дает возможность не ждать перезагрузки конфига клиентом
|
||||||
|
09.08.2024 v1.41.1
|
||||||
|
- фикс для "удалить все" в списках доменов
|
||||||
|
06.08.2024 v1.41
|
||||||
|
- возможность очистить РАС лист
|
||||||
|
03.08.2024 v1.40
|
||||||
|
- возможность менять MTU для Wireguard/Amnezia
|
||||||
|
- раздельный qr для AmneziaWG + AmneziaVPN
|
||||||
|
18.05.2024 v1.39
|
||||||
|
- изменен автобэкап
|
||||||
|
04.05.2024 v1.38
|
||||||
|
- changelog в сообщении новой версии
|
||||||
|
04.05.2024 v1.37.1
|
||||||
|
- warp на образе alpine (thx @zmeyzloy)
|
||||||
|
- фикс выбора шаблона singbox
|
||||||
|
22.04.2024 v1.35
|
||||||
|
- очистка старых образов
|
||||||
|
19.04.2024 v1.34
|
||||||
|
- формирование rule_set из шаблона singbox
|
||||||
|
18.04.2024 v1.33
|
||||||
|
- вывод статуса warp в меню
|
||||||
|
18.04.2024 v1.32
|
||||||
|
- фиксы в названии и отображении выбранного шаблона xtls
|
||||||
|
18.04.2024 v1.31
|
||||||
|
- возможность устанавливать ключ для warp
|
||||||
|
16.04.2024 v1.30.1
|
||||||
|
- улучшение сообщения об обновлениях
|
||||||
|
16.04.2024 v1.30
|
||||||
|
- улучшение скрипта обновления
|
||||||
|
16.04.2024 v1.29
|
||||||
|
- рефакторинг подписок
|
||||||
|
- кнопки импорта для различных клиентов
|
||||||
|
- шаблоны для v2ray
|
||||||
|
15.04.2024 v1.28
|
||||||
|
- xtls: список блокировки, список warp
|
||||||
|
- улучшение отображения таймера
|
||||||
|
14.04.2024 v1.27.1
|
||||||
|
- singbox windows: замена winsw на winsw3, + скрипт обновления подписки
|
||||||
|
13.04.2024 v1.27
|
||||||
|
- архив сингбокса для windows, работает как служба
|
||||||
|
12.04.2024 v1.26
|
||||||
|
- имя клиента xtls подтягивается по подписке из бота
|
||||||
|
11.04.2024 v1.25
|
||||||
|
- подпись дефолтного шаблона в разделе пользователя xtls
|
||||||
|
11.04.2024 v1.24
|
||||||
|
- обновлен раздел PAC, добавлена возможность добавить домены из https://community.antifilter.download/
|
||||||
|
11.04.2024 v1.23
|
||||||
|
- фикс совместимости старого конфига xray из бэкапа
|
||||||
|
11.04.2024 v1.22
|
||||||
|
- улучшение гибкости выбора шаблона sing-box
|
||||||
|
11.04.2024 v1.21
|
||||||
|
- фикс доступности адгвард панели при первом запуске
|
||||||
|
10.04.2024 v1.20
|
||||||
|
- выбор дефолтного шаблона sing-box
|
||||||
|
10.04.2024 v1.19
|
||||||
|
- загрузка шаблонов sing-box
|
||||||
|
- выбор шаблона sing-box для пользователя
|
||||||
|
10.04.2024 v1.18
|
||||||
|
- включение/выключение xtls юзеров
|
||||||
|
09.04.2024 v1.17
|
||||||
|
- редактируемые конфиги v2ray/sing-box
|
||||||
|
09.04.2024 v1.16
|
||||||
|
- редактируемые конфиги v2ray/sing-box
|
||||||
|
09.04.2024 v1.15.4
|
||||||
|
- замена domain на domain_suffix
|
||||||
|
09.04.2024 v1.15.2
|
||||||
|
- фикс подписки v2ray
|
||||||
|
09.04.2024 v1.15.2
|
||||||
|
- редиректы вместо кнопки-подписки
|
||||||
|
- фикс добавления подписки
|
||||||
|
09.04.2024 v1.15.1
|
||||||
|
- кнопка sing-box
|
||||||
|
- фикс пустого списка РАС для sing-box
|
||||||
|
09.04.2024 v1.15.1
|
||||||
|
- кнопка sing-box
|
||||||
|
- фикс пустого списка РАС для sing-box
|
||||||
|
08.04.2024 v1.15
|
||||||
|
- подписка с маршрутизацией для singbox
|
||||||
|
07.04.2024 v1.14
|
||||||
|
- раздельные пользователи для XTLS-Reality
|
||||||
|
- подписка с маршрутизацией для v2rayN/nginx
|
||||||
|
- обновление ядра xray 1.8.10
|
||||||
|
- упрощение PAC
|
||||||
|
28.03.2024 v1.13
|
||||||
|
- кнопка обновления показывает есть ли обновления
|
||||||
|
21.03.2024 v1.12
|
||||||
|
- доработка скрипта обновления
|
||||||
|
20.03.2024 v1.11
|
||||||
|
- XTLS-Reality steal from yourself
|
||||||
|
18.03.2024 v1.10
|
||||||
|
- MTProto Fake-TLS
|
||||||
|
17.03.2024 v1.9
|
||||||
|
- автоматический технический домен sslip
|
||||||
|
13.03.2024 v1.8.10
|
||||||
|
- фикс override.env
|
||||||
|
10.03.2024 v1.8.9
|
||||||
|
- веб морда адгварда "встроена" в телеграм
|
||||||
|
- мелкие улучшения меню
|
||||||
|
07.03.2024 v1.8.8
|
||||||
|
- фикс не работающего wireguard
|
||||||
|
07.03.2024 v1.8.7
|
||||||
|
- фикс порта амнезии
|
||||||
|
- у кого ошибка запуска обновите докер и докер композ
|
||||||
|
07.03.2024 v1.8.6
|
||||||
|
- фикс синхронизации клиентов амнезии, бот падал после рестарта, клиенты пропадали
|
||||||
|
- возможность переназначить порты в override.env, файл не отслеживаемый, обновление не будет его сбрасывать
|
||||||
|
- убрал дублирование образа php
|
||||||
|
06.03.2024
|
||||||
|
- короткие ссылки для амнезии
|
||||||
|
- фикс работы openconnect
|
||||||
|
- фикс экспорта пользователей openconnect
|
||||||
|
- фикс скрипта установки бота как сервиса
|
||||||
|
04.03.2024
|
||||||
|
- решение "серого айпи" при запуске
|
||||||
|
- фикс стартового скрипта второго контейнера wireguard
|
||||||
|
03.03.2024 возможность обновления бота по кнопке из самого бота
|
||||||
|
- <code>git pull && make r</code>
|
||||||
|
02.03.2024 2 сервера wireguard, для возможности один запускать как wireguard а второй как amnezia
|
||||||
|
- <code>git pull && make r</code>
|
||||||
|
01.03.2024 фикс блокировок торрентов и обмена между пользователями
|
||||||
|
- <code>git pull && make r</code>
|
||||||
|
01.03.2024 фикс установки домена с длинным названием
|
||||||
|
- <code>make update</code>
|
||||||
29.02.2024 образы теперь будут скачиваться с docker hub
|
29.02.2024 образы теперь будут скачиваться с docker hub
|
||||||
- <code>git pull && make d cleanall u</code>
|
- <code>git pull && make d cleanall u</code>
|
||||||
28.02.2024 v1.1 добавлен раздел "зеркало"
|
28.02.2024 v1.1 добавлен раздел "зеркало"
|
||||||
|
|||||||
Reference in New Issue
Block a user