Compare commits
42 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| 1cabd1ddef | |||
| fb5203bbde | |||
| e50feabad7 | |||
| 8dd8ed1436 | |||
| f1cd57991e | |||
| 12d90f4446 | |||
| 30f9406021 | |||
| 6f12de7fd0 | |||
| 294a26ec7d | |||
| 7d12e5c972 | |||
| 2efcea9dbe | |||
| 5b1bf2b3d5 | |||
| 9f1b3d84f4 | |||
| e81c6a5dfb | |||
| c00dafa6d1 | |||
| cab00f4aed | |||
| 4082dac97b | |||
| 7317d418de | |||
| b7a1f9bbd6 | |||
| fcc165b4be | |||
| a9d16eadce | |||
| 82b95ccb85 | |||
| e01ef61b62 | |||
| 367bfc0fbc | |||
| 524c52e326 | |||
| 3bbb8290e5 | |||
| 1e8ac34370 | |||
| 2332e5ea71 | |||
| 796fa57330 | |||
| ce91b1152e | |||
| 64d44428d0 | |||
| 860fdc883f | |||
| f2f2066e99 | |||
| 3e343ce2b7 | |||
| 3c16620a7d | |||
| b1efd9f400 | |||
| cbe0ef8a12 | |||
| 24026d3678 | |||
| dea46815c7 | |||
| 11e34d8c4e | |||
| 3e3684eb34 | |||
| 7ee47db8e2 |
@@ -18,3 +18,5 @@
|
||||
mirror/.env
|
||||
update/*
|
||||
!update/update.sh
|
||||
|
||||
override.env
|
||||
+561
-78
@@ -5,6 +5,7 @@ class Bot
|
||||
public $input;
|
||||
public $adguard;
|
||||
public $update;
|
||||
public $ip;
|
||||
|
||||
public function __construct($key, $i18n)
|
||||
{
|
||||
@@ -120,7 +121,7 @@ class Bot
|
||||
case preg_match('~^/menu (?P<type>addpeer) (?P<arg>(?:-)?\d+)$~', $this->input['callback'], $m):
|
||||
case preg_match('~^/menu (?P<type>wg) (?P<arg>(?:-)?\d+)$~', $this->input['callback'], $m):
|
||||
case preg_match('~^/menu (?P<type>client) (?P<arg>\d+(?:_(?:-)?\d+)?)$~', $this->input['callback'], $m):
|
||||
case preg_match('~^/menu (?P<type>pac|adguard|config|ss|lang|oc|naive|mirror)$~', $this->input['callback'], $m):
|
||||
case preg_match('~^/menu (?P<type>pac|adguard|config|ss|lang|oc|naive|mirror|update)$~', $this->input['callback'], $m):
|
||||
case preg_match('~^/menu (?P<type>subzoneslist|reverselist|includelist|excludelist) (?P<arg>(?:-)?\d+)$~', $this->input['callback'], $m):
|
||||
$this->menu(type: $m['type'] ?? false, arg: $m['arg'] ?? false);
|
||||
break;
|
||||
@@ -130,11 +131,20 @@ class Bot
|
||||
case preg_match('~^/id$~', $this->input['message'], $m):
|
||||
$this->send($this->input['chat'], $this->input['from'], $this->input['message_id']);
|
||||
break;
|
||||
case preg_match('~^/adguardChBr$~', $this->input['callback'], $m):
|
||||
$this->adguardChBr();
|
||||
break;
|
||||
case preg_match('~^/mtproto$~', $this->input['callback'], $m):
|
||||
$this->mtproto();
|
||||
break;
|
||||
case preg_match('~^/updatebot$~', $this->input['callback'], $m):
|
||||
$this->updatebot();
|
||||
case preg_match('~^/applyupdatebot$~', $this->input['callback'], $m):
|
||||
$this->applyupdatebot();
|
||||
break;
|
||||
case preg_match('~^/branches$~', $this->input['callback'], $m):
|
||||
$this->branches();
|
||||
break;
|
||||
case preg_match('~^/changeBranch (\d+)$~', $this->input['callback'], $m):
|
||||
$this->changeBranch($m[1]);
|
||||
break;
|
||||
case preg_match('~^/getMirror$~', $this->input['callback'], $m):
|
||||
$this->getMirror();
|
||||
@@ -211,6 +221,12 @@ class Bot
|
||||
case preg_match('~^/addOcUser$~', $this->input['callback'], $m):
|
||||
$this->addOcUser();
|
||||
break;
|
||||
case preg_match('~^/addXrUser$~', $this->input['callback'], $m):
|
||||
$this->addXrUser();
|
||||
break;
|
||||
case preg_match('~^/renameXrUser (\d+)$~', $this->input['callback'], $m):
|
||||
$this->renameXrUser($m[1]);
|
||||
break;
|
||||
case preg_match('~^/v2ray$~', $this->input['callback'], $m):
|
||||
$this->v2ray();
|
||||
break;
|
||||
@@ -259,6 +275,12 @@ class Bot
|
||||
case preg_match('~^/deloc (\d+)$~', $this->input['callback'], $m):
|
||||
$this->deloc($m[1]);
|
||||
break;
|
||||
case preg_match('~^/userXr (\d+)$~', $this->input['callback'], $m):
|
||||
$this->userXr($m[1]);
|
||||
break;
|
||||
case preg_match('~^/delxr (\d+)$~', $this->input['callback'], $m):
|
||||
$this->delxr($m[1]);
|
||||
break;
|
||||
case preg_match('~^/switchTorrent (\d+)$~', $this->input['callback'], $m):
|
||||
$this->switchTorrent($m[1]);
|
||||
break;
|
||||
@@ -284,8 +306,8 @@ class Bot
|
||||
case preg_match('~^/qrSS$~', $this->input['callback'], $m):
|
||||
$this->qrSS();
|
||||
break;
|
||||
case preg_match('~^/qrXray$~', $this->input['callback'], $m):
|
||||
$this->qrXray();
|
||||
case preg_match('~^/qrXray (\d+)$~', $this->input['callback'], $m):
|
||||
$this->qrXray($m[1]);
|
||||
break;
|
||||
case preg_match('~^/qrMtproto$~', $this->input['callback'], $m):
|
||||
$this->qrMtproto();
|
||||
@@ -332,6 +354,12 @@ class Bot
|
||||
case preg_match('~^/changeFakeDomain$~', $this->input['callback'], $m):
|
||||
$this->changeFakeDomain();
|
||||
break;
|
||||
case preg_match('~^/selfFakeDomain$~', $this->input['callback'], $m):
|
||||
$this->selfFakeDomain();
|
||||
break;
|
||||
case preg_match('~^/changeTGDomain$~', $this->input['callback'], $m):
|
||||
$this->changeTGDomain();
|
||||
break;
|
||||
case preg_match('~^/include (\d+)$~', $this->input['callback'], $m):
|
||||
$this->include($m[1]);
|
||||
break;
|
||||
@@ -397,17 +425,26 @@ class Bot
|
||||
|
||||
public function secretSet($secret)
|
||||
{
|
||||
$this->restartTG($secret);
|
||||
file_put_contents('/config/mtprotosecret', $secret);
|
||||
$this->restartTG();
|
||||
$this->mtproto();
|
||||
}
|
||||
|
||||
public function restartTG($secret)
|
||||
public function setTelegramDomain($domain)
|
||||
{
|
||||
file_put_contents('/config/mtprotosecret', $secret ?: '');
|
||||
file_put_contents('/config/mtprotodomain', $domain);
|
||||
$this->restartTG();
|
||||
$this->mtproto();
|
||||
}
|
||||
|
||||
public function restartTG()
|
||||
{
|
||||
$secret = file_get_contents('/config/mtprotosecret');
|
||||
$fakedomain = file_get_contents('/config/mtprotodomain') ?: 'vk.com';
|
||||
$this->ssh('pkill mtproto-proxy', 'tg');
|
||||
if (preg_match('~^\w{32}$~', $secret)) {
|
||||
$p = getenv('TGPORT');
|
||||
$this->ssh("mtproto-proxy -u nobody -H $p --nat-info 10.10.0.8:{$this->ip} -S $secret --aes-pwd /proxy-secret /proxy-multi.conf -M 1 >/dev/null 2>&1 &", 'tg');
|
||||
$this->ssh("mtproto-proxy --domain $fakedomain -u nobody -H $p --nat-info 10.10.0.8:{$this->ip} -S $secret --aes-pwd /proxy-secret /proxy-multi.conf -M 1 >/dev/null 2>&1 &", 'tg');
|
||||
}
|
||||
}
|
||||
|
||||
@@ -422,18 +459,22 @@ class Bot
|
||||
{
|
||||
$s = file_get_contents('/config/mtprotosecret');
|
||||
$p = getenv('TGPORT');
|
||||
$d = trim(file_get_contents('/config/mtprotodomain') ?: 'vk.com');
|
||||
$d = exec("echo $d | tr -d '\\n' | xxd -ps -c 200");
|
||||
$ip = $this->getPacConf()['domain'] ?: $this->ip;
|
||||
return "https://t.me/proxy?server=$ip&port=$p&secret=$s";
|
||||
return "https://t.me/proxy?server=$ip&port=$p&secret=ee$s$d";
|
||||
}
|
||||
|
||||
public function mtproto()
|
||||
{
|
||||
$s = file_get_contents('/config/mtprotosecret');
|
||||
$d = file_get_contents('/config/mtprotodomain') ?: 'vk.com';
|
||||
$p = getenv('TGPORT');
|
||||
$ip = $this->getPacConf()['domain'] ?: $this->ip;
|
||||
$st = $this->ssh('pgrep mtproto-proxy', 'tg') ? 'on' : 'off';
|
||||
$text[] = "Menu -> MTProto\n";
|
||||
$text[] = "status: $st\n";
|
||||
$text[] = "fake domain: <code>$d</code>\n";
|
||||
if ($st == 'on') {
|
||||
$text[] = $this->linkMtproto();
|
||||
}
|
||||
@@ -449,6 +490,12 @@ class Bot
|
||||
'callback_data' => "/setSecret",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('changeFakeDomain'),
|
||||
'callback_data' => "/changeTGDomain",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('show QR'),
|
||||
@@ -628,6 +675,38 @@ class Bot
|
||||
];
|
||||
}
|
||||
|
||||
public function addXrUser()
|
||||
{
|
||||
$r = $this->send(
|
||||
$this->input['chat'],
|
||||
"@{$this->input['username']} enter name",
|
||||
$this->input['message_id'],
|
||||
reply: 'enter password',
|
||||
);
|
||||
$_SESSION['reply'][$r['result']['message_id']] = [
|
||||
'start_message' => $this->input['message_id'],
|
||||
'start_callback' => $this->input['callback_id'],
|
||||
'callback' => 'addxrus',
|
||||
'args' => [],
|
||||
];
|
||||
}
|
||||
|
||||
public function renameXrUser($i)
|
||||
{
|
||||
$r = $this->send(
|
||||
$this->input['chat'],
|
||||
"@{$this->input['username']} enter name",
|
||||
$this->input['message_id'],
|
||||
reply: 'enter password',
|
||||
);
|
||||
$_SESSION['reply'][$r['result']['message_id']] = [
|
||||
'start_message' => $this->input['message_id'],
|
||||
'start_callback' => $this->input['callback_id'],
|
||||
'callback' => 'renXrUs',
|
||||
'args' => [$i],
|
||||
];
|
||||
}
|
||||
|
||||
public function restartOcserv($conf)
|
||||
{
|
||||
file_put_contents('/config/ocserv.conf', $conf);
|
||||
@@ -872,10 +951,10 @@ class Bot
|
||||
$last = file_get_contents('https://raw.githubusercontent.com/mercurykd/vpnbot/master/version');
|
||||
if (!empty($last) && $last != $this->last && $last != $current) {
|
||||
$this->last = $last;
|
||||
$diff = implode("\n", array_slice(explode("\n", $last), 0, count(explode("\n", $last)) - count(explode("\n", $current))));
|
||||
$diff = array_slice(explode("\n", $last), 0, count(explode("\n", $last)) - count(explode("\n", $current)));
|
||||
if (!empty($diff)) {
|
||||
foreach ($c['admin'] as $k => $v) {
|
||||
$this->send($v, "update:\n$diff");
|
||||
$this->send($v, "update:\n{$diff[0]}");
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -1002,10 +1081,11 @@ class Bot
|
||||
'private' => file_get_contents('/certs/cert_private'),
|
||||
'public' => file_get_contents('/certs/cert_public'),
|
||||
] : false,
|
||||
'mtproto' => file_get_contents('/config/mtprotosecret'),
|
||||
'xray' => json_decode(file_get_contents('/config/xray.json'), true),
|
||||
'oc' => file_get_contents('/config/ocserv.conf'),
|
||||
'ocu' => file_get_contents('/config/ocserv.passwd'),
|
||||
'mtproto' => file_get_contents('/config/mtprotosecret'),
|
||||
'mtprotodomain' => file_get_contents('/config/mtprotodomain'),
|
||||
'xray' => $this->getXray(),
|
||||
'oc' => file_get_contents('/config/ocserv.conf'),
|
||||
'ocu' => file_get_contents('/config/ocserv.passwd'),
|
||||
|
||||
];
|
||||
return json_encode($conf, JSON_PRETTY_PRINT | JSON_UNESCAPED_UNICODE | JSON_UNESCAPED_SLASHES);
|
||||
@@ -1117,7 +1197,9 @@ class Bot
|
||||
if (!empty($json['mtproto'])) {
|
||||
$out[] = 'update mtproto';
|
||||
$this->update($this->input['chat'], $this->input['message_id'], implode("\n", $out));
|
||||
$this->restartTG($json['mtproto']);
|
||||
file_put_contents('/config/mtprotosecret', $json['mtproto']);
|
||||
file_put_contents('/config/mtprotodomain', $json['mtprotodomain'] ?: '');
|
||||
$this->restartTG();
|
||||
}
|
||||
// xray
|
||||
if (!empty($json['xray'])) {
|
||||
@@ -1158,6 +1240,7 @@ class Bot
|
||||
}
|
||||
}
|
||||
file_put_contents('/config/nginx.conf', $t);
|
||||
$this->adguardProtect();
|
||||
$out[] = $this->ssh("nginx -s reload 2>&1", 'ng');
|
||||
$this->update($this->input['chat'], $this->input['message_id'], implode("\n", $out));
|
||||
|
||||
@@ -1368,9 +1451,9 @@ class Bot
|
||||
}
|
||||
}
|
||||
|
||||
public function qrXray()
|
||||
public function qrXray($i)
|
||||
{
|
||||
$link = $this->linkXray();
|
||||
$link = $this->linkXray($i);
|
||||
$qr_file = __DIR__ . "/qr/xray.png";
|
||||
exec("qrencode -t png -o $qr_file '$link'");
|
||||
$r = $this->sendPhoto(
|
||||
@@ -1447,7 +1530,7 @@ class Bot
|
||||
}
|
||||
}
|
||||
|
||||
public function addDomain($domain)
|
||||
public function addDomain($domain, $nomenu = false)
|
||||
{
|
||||
$domain = trim($domain);
|
||||
if (!empty($domain)) {
|
||||
@@ -1474,8 +1557,21 @@ class Bot
|
||||
file_put_contents('/config/nginx.conf', $nginx);
|
||||
}
|
||||
}
|
||||
sleep(3);
|
||||
$this->menu('config');
|
||||
if (empty($nomenu)) {
|
||||
sleep(3);
|
||||
$this->menu('config');
|
||||
}
|
||||
}
|
||||
|
||||
public function sslip()
|
||||
{
|
||||
$c = $this->getPacConf();
|
||||
if (empty($c['domain'])) {
|
||||
$this->addDomain(str_replace('.', '-', $this->ip) . '.sslip.io', 1);
|
||||
$this->setSSL('letsencrypt');
|
||||
} else {
|
||||
$this->menu();
|
||||
}
|
||||
}
|
||||
|
||||
public function comment($text, $tag)
|
||||
@@ -2181,6 +2277,17 @@ DNS-over-HTTPS with IP:
|
||||
$c = $this->getPacConf();
|
||||
$conf = $this->readConfig();
|
||||
$status = $this->readStatus();
|
||||
if (empty($status)) {
|
||||
return [
|
||||
'text' => "Menu -> " . $this->getTitleWG() . "\n\nerror status",
|
||||
'data' => [[
|
||||
[
|
||||
'text' => $this->i18n('back'),
|
||||
'callback_data' => "/menu",
|
||||
],
|
||||
]],
|
||||
];
|
||||
}
|
||||
$clients = $this->getClients($page);
|
||||
$bt = $c[$this->getInstanceWG(1) . 'blocktorrent'];
|
||||
$ex = $c[$this->getInstanceWG(1) . 'exchange'];
|
||||
@@ -2232,7 +2339,7 @@ DNS-over-HTTPS with IP:
|
||||
if (!empty($v['# PublicKey'])) {
|
||||
$conf['peers'][$k]['online'] = 'off';
|
||||
} else {
|
||||
$conf['peers'][$k]['status'] = $this->getStatusPeer($v['PublicKey'], $status['peers']);
|
||||
$conf['peers'][$k]['status'] = $status ? $this->getStatusPeer($v['PublicKey'], $status['peers']) : 'error';
|
||||
$conf['peers'][$k]['online'] = preg_match('~^(\d+ seconds|[12] minute)~', $conf['peers'][$k]['status']['latest handshake']) ? 'online' : '';
|
||||
}
|
||||
}
|
||||
@@ -2587,7 +2694,7 @@ DNS-over-HTTPS with IP:
|
||||
if ($clients) {
|
||||
$name = $this->getName($clients[$client]['interface']);
|
||||
$conf = $this->createConfig($clients[$client]);
|
||||
if ($this->getInstanceWG(1)) {
|
||||
if ($this->getWGType() == 'awg') {
|
||||
$sl = $this->getAmneziaShortLink($clients[$client]);
|
||||
}
|
||||
return [
|
||||
@@ -2713,9 +2820,9 @@ DNS-over-HTTPS with IP:
|
||||
|
||||
<code>RU blacklist:</code> <code>https://github.com/zapret-info/z-i</code>
|
||||
|
||||
{$this->i18n('self list')}{$this->i18n('self list explain')}
|
||||
{$this->i18n('proxy')}{$this->i18n('self list explain')}
|
||||
|
||||
{$this->i18n('reverse list')}{$this->i18n('reverse list explain')}
|
||||
{$this->i18n('direct')}{$this->i18n('reverse list explain')}
|
||||
text;
|
||||
if ($pac) {
|
||||
$pac['time'] = date('d.m.Y H:i:s', $pac['mtime']);
|
||||
@@ -2805,15 +2912,16 @@ DNS-over-HTTPS with IP:
|
||||
}
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('self list'),
|
||||
'text' => $this->i18n('proxy'),
|
||||
'callback_data' => "/menu includelist 0",
|
||||
'callback_data' => "/menu includelist 0",
|
||||
],
|
||||
// [
|
||||
// 'text' => $this->i18n('subzones'),
|
||||
// 'callback_data' => "/menu subzoneslist 0",
|
||||
// ],
|
||||
[
|
||||
'text' => $this->i18n('subzones'),
|
||||
'callback_data' => "/menu subzoneslist 0",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('reverse list'),
|
||||
'text' => $this->i18n('direct'),
|
||||
'callback_data' => "/menu reverselist 0",
|
||||
],
|
||||
];
|
||||
@@ -2845,7 +2953,15 @@ DNS-over-HTTPS with IP:
|
||||
{
|
||||
$count = $this->limit;
|
||||
$name = str_replace('list', '', $type);
|
||||
$text = "Menu -> pac -> {$name}list\n\n";
|
||||
switch ($name) {
|
||||
case 'include':
|
||||
$additional = $this->i18n('self list explain');
|
||||
break;
|
||||
case 'reverse':
|
||||
$additional = $this->i18n('reverse list explain');
|
||||
break;
|
||||
}
|
||||
$text = "Menu -> pac -> {$name}list\n\n$additional";
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('add'),
|
||||
@@ -3071,11 +3187,13 @@ DNS-over-HTTPS with IP:
|
||||
[
|
||||
[
|
||||
'text' => $this->i18n('chat'),
|
||||
'url' => "https://t.me/+bUuWfsKzaMZhNjQy",
|
||||
'url' => "https://t.me/vpnbot_group",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('donate'),
|
||||
'url' => "https://yoomoney.ru/to/410011827900450",
|
||||
'web_app' => [
|
||||
'url' => "https://www.donationalerts.com/r/mercurykd",
|
||||
]
|
||||
],
|
||||
],
|
||||
],
|
||||
@@ -3095,6 +3213,7 @@ DNS-over-HTTPS with IP:
|
||||
'oc' => $type == 'oc' ? $this->ocMenu() : false,
|
||||
'naive' => $type == 'naive' ? $this->naiveMenu() : false,
|
||||
'mirror' => $type == 'mirror' ? $this->mirrorMenu() : false,
|
||||
'update' => $type == 'update' ? $this->updatebot() : false,
|
||||
];
|
||||
|
||||
$text = $menu[$type ?: 'main' ]['text'];
|
||||
@@ -3126,12 +3245,12 @@ DNS-over-HTTPS with IP:
|
||||
$this->answer($this->input['callback_id'], 'in developing...');
|
||||
}
|
||||
|
||||
public function linkXray()
|
||||
public function linkXray($i)
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$pac = $this->getPacConf();
|
||||
$domain = $pac['domain'] ?: $this->ip;
|
||||
return "vless://{$c['inbounds'][0]['settings']['clients'][0]['id']}@$domain:443?security=reality&sni={$c['inbounds'][0]['streamSettings']['realitySettings']['serverNames'][0]}&fp=chrome&pbk={$pac['xray']}&sid={$c['inbounds'][0]['streamSettings']['realitySettings']['shortIds'][0]}&type=tcp&flow=xtls-rprx-vision#vpnbot";
|
||||
return "vless://{$c['inbounds'][0]['settings']['clients'][$i]['id']}@$domain:443?security=reality&sni={$c['inbounds'][0]['streamSettings']['realitySettings']['serverNames'][0]}&fp=chrome&pbk={$pac['xray']}&sid={$c['inbounds'][0]['streamSettings']['realitySettings']['shortIds'][0]}&type=tcp&flow=xtls-rprx-vision#vpnbot";
|
||||
}
|
||||
|
||||
public function naiveMenu()
|
||||
@@ -3293,6 +3412,19 @@ DNS-over-HTTPS with IP:
|
||||
$this->menu('oc');
|
||||
}
|
||||
|
||||
public function delxr($i)
|
||||
{
|
||||
$r = $this->getXray();
|
||||
foreach ($r['inbounds'][0]['settings']['clients'] as $k => $v) {
|
||||
if ($i == $k) {
|
||||
unset($r['inbounds'][0]['settings']['clients'][$k]);
|
||||
$this->restartXray($r);
|
||||
break;
|
||||
}
|
||||
}
|
||||
$this->xray();
|
||||
}
|
||||
|
||||
public function getClientsOc()
|
||||
{
|
||||
$users = array_filter(explode("\n", file_get_contents('/config/ocserv.passwd')), fn ($e) => !empty($e));
|
||||
@@ -3306,26 +3438,44 @@ DNS-over-HTTPS with IP:
|
||||
$this->menu('oc');
|
||||
}
|
||||
|
||||
public function addxrus($user)
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$uuid = trim($this->ssh('xray uuid', 'xr'));
|
||||
$c['inbounds'][0]['settings']['clients'][] = [
|
||||
'id' => $uuid,
|
||||
'flow' => 'xtls-rprx-vision',
|
||||
'email' => $user,
|
||||
];
|
||||
$this->restartXray($c);
|
||||
$this->xray();
|
||||
}
|
||||
|
||||
public function renXrUs($name, $i)
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$c['inbounds'][0]['settings']['clients'][$i]['email'] = $name;
|
||||
$this->restartXray($c);
|
||||
$this->userXr($i);
|
||||
}
|
||||
|
||||
public function xray()
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$pac = $this->getPacConf();
|
||||
$domain = $pac['domain'] ?: $this->ip;
|
||||
$st = $this->ssh('pgrep xray', 'xr') ? 'on' : 'off';
|
||||
$text[] = "Menu -> " . $this->i18n('xray') . "\n";
|
||||
$text[] = "uuid: <code>{$c['inbounds'][0]['settings']['clients'][0]['id']}</code>";
|
||||
$text[] = "shortId: <code>{$c['inbounds'][0]['streamSettings']['realitySettings']['shortIds'][0]}</code>";
|
||||
$text[] = "pubkey: <code>{$pac['xray']}</code>";
|
||||
$text[] = "fake domain: <code>{$c['inbounds'][0]['streamSettings']['realitySettings']['serverNames'][0]}</code>";
|
||||
if ($c['inbounds'][0]['settings']['clients'][0]['id']) {
|
||||
$text[] = "\n<code>{$this->linkXray()}</code>";
|
||||
if (!$this->ssh('pgrep xray', 'xr')) {
|
||||
$this->generateSecretXray();
|
||||
}
|
||||
$text[] = "\nstatus: $st";
|
||||
$c = $this->getXray();
|
||||
$text[] = "Menu -> " . $this->i18n('xray');
|
||||
$text[] = "fake domain: <code>{$c['inbounds'][0]['streamSettings']['realitySettings']['serverNames'][0]}</code>";
|
||||
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('generateSecret'),
|
||||
'callback_data' => "/generateSecretXray",
|
||||
'text' => 'android',
|
||||
'web_app' => ['url' => 'https://github.com/2dust/v2rayNG/releases'],
|
||||
],
|
||||
[
|
||||
'text' => 'windows',
|
||||
'web_app' => ['url' => 'https://github.com/2dust/v2rayN/releases'],
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
@@ -3333,12 +3483,22 @@ DNS-over-HTTPS with IP:
|
||||
'text' => $this->i18n('changeFakeDomain'),
|
||||
'callback_data' => "/changeFakeDomain",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('selfFakeDomain'),
|
||||
'callback_data' => "/selfFakeDomain",
|
||||
],
|
||||
];
|
||||
if ($c['inbounds'][0]['settings']['clients'][0]['id']) {
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('add peer'),
|
||||
'callback_data' => "/addXrUser",
|
||||
],
|
||||
];
|
||||
foreach ($c['inbounds'][0]['settings']['clients'] as $k => $v) {
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('show QR'),
|
||||
'callback_data' => "/qrXray",
|
||||
'text' => "{$v['email']}",
|
||||
'callback_data' => "/userXr $k",
|
||||
],
|
||||
];
|
||||
}
|
||||
@@ -3356,6 +3516,182 @@ DNS-over-HTTPS with IP:
|
||||
);
|
||||
}
|
||||
|
||||
public function userXr($i)
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$domain = $this->getPacConf()['domain'] ?: $this->ip;
|
||||
$scheme = empty($this->nginxGetTypeCert()) ? 'http' : 'https';
|
||||
$hash = substr(md5($this->key), 0, 8);
|
||||
$link = "$scheme://{$domain}/pac?h=$hash&t=s&s={$c['inbounds'][0]['settings']['clients'][$i]['id']}";
|
||||
|
||||
|
||||
$text[] = "Menu -> " . $this->i18n('xray') . " -> {$c['inbounds'][0]['settings']['clients'][$i]['email']}\n";
|
||||
$text[] = "<code>{$this->linkXray($i)}</code>\n";
|
||||
$text[] = "v2ray subscription: <code>$link</code>";
|
||||
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('show QR'),
|
||||
'callback_data' => "/qrXray $i",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('rename'),
|
||||
'callback_data' => "/renameXrUser $i",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('delete'),
|
||||
'callback_data' => "/delxr $i",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('back'),
|
||||
'callback_data' => "/xray",
|
||||
],
|
||||
];
|
||||
$this->update(
|
||||
$this->input['chat'],
|
||||
$this->input['message_id'],
|
||||
implode("\n", $text ?: ['...']),
|
||||
$data ?: false,
|
||||
);
|
||||
}
|
||||
|
||||
public function v2raySubscription($key)
|
||||
{
|
||||
$domain = $this->getPacConf()['domain'] ?: $this->ip;
|
||||
$xr = $this->getXray();
|
||||
$pac = $this->getPacConf();
|
||||
|
||||
$flag = true;
|
||||
foreach ($xr['inbounds'][0]['settings']['clients'] as $k => $v) {
|
||||
if ($v['id'] == $key) {
|
||||
$flag = false;
|
||||
break;
|
||||
}
|
||||
}
|
||||
if ($flag) {
|
||||
return;
|
||||
}
|
||||
|
||||
$c = [
|
||||
"log" => [
|
||||
"access" => "",
|
||||
"error" => "",
|
||||
"loglevel" => "warning"
|
||||
],
|
||||
"inbounds" => [
|
||||
[
|
||||
"tag" => "socks",
|
||||
"port" => 10808,
|
||||
"listen" => "127.0.0.1",
|
||||
"protocol" => "socks",
|
||||
"sniffing" => [
|
||||
"enabled" => true,
|
||||
"destOverride" => [
|
||||
"http",
|
||||
"tls"
|
||||
],
|
||||
"routeOnly" => false
|
||||
],
|
||||
"settings" => [
|
||||
"auth" => "noauth",
|
||||
"udp" => true,
|
||||
"allowTransparent" => false
|
||||
]
|
||||
],
|
||||
[
|
||||
"tag" => "http",
|
||||
"port" => 10809,
|
||||
"listen" => "127.0.0.1",
|
||||
"protocol" => "http",
|
||||
"sniffing" => [
|
||||
"enabled" => true,
|
||||
"destOverride" => [
|
||||
"http",
|
||||
"tls"
|
||||
],
|
||||
"routeOnly" => false
|
||||
],
|
||||
"settings" => [
|
||||
"auth" => "noauth",
|
||||
"udp" => true,
|
||||
"allowTransparent" => false
|
||||
]
|
||||
]
|
||||
],
|
||||
"outbounds" => [
|
||||
[
|
||||
"tag" => "proxy",
|
||||
"protocol" => "vless",
|
||||
"settings" => [
|
||||
"vnext" => [[
|
||||
"address" => $domain,
|
||||
"port" => 443,
|
||||
"users" => [[
|
||||
"id" => $key,
|
||||
"alterId" => 0,
|
||||
"email" => "t@t.tt",
|
||||
"security" => "auto",
|
||||
"encryption" => "none",
|
||||
"flow" => "xtls-rprx-vision"
|
||||
]]
|
||||
]]
|
||||
],
|
||||
"streamSettings" => [
|
||||
"network" => "tcp",
|
||||
"security" => "reality",
|
||||
"realitySettings" => [
|
||||
"serverName" => $domain,
|
||||
"fingerprint" => "chrome",
|
||||
"show" => false,
|
||||
"publicKey" => $pac['xray'],
|
||||
"shortId" => $xr['inbounds'][0]['streamSettings']['realitySettings']['shortIds'][0],
|
||||
"spiderX" => ""
|
||||
]
|
||||
],
|
||||
"mux" => [
|
||||
"enabled" => false,
|
||||
"concurrency" => -1
|
||||
]
|
||||
],
|
||||
[
|
||||
"tag" => "direct",
|
||||
"protocol" => "freedom",
|
||||
],
|
||||
[
|
||||
"tag" => "block",
|
||||
"protocol" => "blackhole",
|
||||
"settings" => [
|
||||
"response" => [
|
||||
"type" => "http"
|
||||
]
|
||||
]
|
||||
]
|
||||
],
|
||||
"routing" => [
|
||||
"domainStrategy" => "AsIs",
|
||||
"rules" => [
|
||||
[
|
||||
"type" => "field",
|
||||
"outboundTag" => "proxy",
|
||||
"domain" => array_keys(array_filter($pac['includelist']))
|
||||
],
|
||||
[
|
||||
"type" => "field",
|
||||
"port" => "0-65535",
|
||||
"outboundTag" => "direct"
|
||||
]
|
||||
]
|
||||
]
|
||||
];
|
||||
echo json_encode($c);
|
||||
}
|
||||
|
||||
public function getXray()
|
||||
{
|
||||
return json_decode(file_get_contents('/config/xray.json'), true);
|
||||
@@ -3364,21 +3700,18 @@ DNS-over-HTTPS with IP:
|
||||
public function generateSecretXray()
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$uuid = trim($this->ssh('xray uuid', 'xr'));
|
||||
$shortId = trim($this->ssh('openssl rand -hex 8', 'xr'));
|
||||
$keys = $this->ssh('xray x25519', 'xr');
|
||||
preg_match('~^Private key:\s([^\s]+)~m', $keys, $m);
|
||||
$private = trim($m[1]);
|
||||
preg_match('~^Public key:\s([^\s]+)~m', $keys, $m);
|
||||
$public = trim($m[1]);
|
||||
$c['inbounds'][0]['settings']['clients'][0]['id'] = $uuid;
|
||||
$c['inbounds'][0]['streamSettings']['realitySettings']['privateKey'] = $private;
|
||||
$c['inbounds'][0]['streamSettings']['realitySettings']['shortIds'][0] = $shortId;
|
||||
$pac = $this->getPacConf();
|
||||
$pac['xray'] = $public;
|
||||
$this->setPacConf($pac);
|
||||
$this->restartXray($c);
|
||||
$this->xray();
|
||||
}
|
||||
|
||||
public function setUpstreamDomain($domain)
|
||||
@@ -3444,37 +3777,95 @@ DNS-over-HTTPS with IP:
|
||||
];
|
||||
}
|
||||
|
||||
public function adguardProtect()
|
||||
{
|
||||
$h = substr(hash('sha256', $this->key), 0, 8);
|
||||
$s = empty($this->getPacConf()['adgbrowser']) ? '' : '#';
|
||||
$a = $this->adguardBasicAuth();
|
||||
$r = <<<CONF
|
||||
location /adguard/ {
|
||||
access_log /logs/nginx_adguard_access;
|
||||
if (\$cookie_c != "$h") {
|
||||
$s rewrite .* /webapp redirect;
|
||||
}
|
||||
proxy_pass http://ad:80/;
|
||||
proxy_redirect / /adguard/;
|
||||
proxy_cookie_path / /adguard/;
|
||||
proxy_set_header Authorization "Basic \$cookie_a";
|
||||
}
|
||||
location
|
||||
CONF;
|
||||
$f = '/config/nginx.conf';
|
||||
$c = file_get_contents($f);
|
||||
$t = preg_replace('~(location /adguard.+?})\s*location~s', $r, $c);
|
||||
file_put_contents($f, $t);
|
||||
}
|
||||
|
||||
public function adguardBasicAuth()
|
||||
{
|
||||
return base64_encode('admin:' . $this->getPacConf()['adpswd']);
|
||||
}
|
||||
|
||||
public function adguardChBr()
|
||||
{
|
||||
$c = $this->getPacConf();
|
||||
$c['adgbrowser'] = $c['adgbrowser'] ? 0 : 1;
|
||||
$this->setPacConf($c);
|
||||
$this->adguardProtect();
|
||||
$this->ssh('nginx -s reload', 'ng');
|
||||
$this->answer($this->input['callback_id'], $this->i18n($c['adgbrowser'] ? 'browser_notify_on' : 'browser_notify_off'), true);
|
||||
$this->menu('adguard');
|
||||
}
|
||||
|
||||
public function adguardMenu()
|
||||
{
|
||||
$conf = $this->getPacConf();
|
||||
$ip = $this->ip;
|
||||
$domain = $conf['domain'] ?: $ip;
|
||||
$scheme = empty($ssl = $this->nginxGetTypeCert()) ? 'http' : 'https';
|
||||
$text = "$scheme://$domain/adguard\nLogin: admin\nPass: <span class='tg-spoiler'>{$conf['adpswd']}</span>\n\n";
|
||||
$text = "$scheme://$domain/adguard\nLogin: admin\nPass: <span class='tg-spoiler'>{$conf['adpswd']}</span>\n\n";
|
||||
if ($ssl) {
|
||||
$text .= "DNS over HTTPS:\n<code>$ip</code>\n<code>$scheme://$domain/dns-query" . ($conf['adguardkey'] ? "/{$conf['adguardkey']}" : '') . "</code>\n\n";
|
||||
$text .= "DNS over TLS:\n<code>tls://" . ($conf['adguardkey'] ? "{$conf['adguardkey']}." : '') . "$domain</code>";
|
||||
}
|
||||
$data = [
|
||||
[
|
||||
[
|
||||
'text' => 'web panel',
|
||||
'web_app' => [
|
||||
"url" => "https://$domain/adguard"
|
||||
],
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('third party browser') . ': ' . $this->i18n($conf['adgbrowser'] ? 'on' : 'off'),
|
||||
'callback_data' => '/adguardChBr'
|
||||
],
|
||||
],
|
||||
[
|
||||
[
|
||||
'text' => $this->i18n('change password'),
|
||||
'callback_data' => "/adguardpsswd",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('reset settings'),
|
||||
'callback_data' => "/adguardreset",
|
||||
'text' => 'ClientID' . ($conf['adguardkey'] ? ": {$conf['adguardkey']}" : ''),
|
||||
'callback_data' => "/setAdguardKey",
|
||||
],
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('reset settings'),
|
||||
'callback_data' => "/adguardreset",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('add upstream'),
|
||||
'callback_data' => "/addupstream",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('setSecret') . ($conf['adguardkey'] ? ": {$conf['adguardkey']}" : ''),
|
||||
'callback_data' => "/setAdguardKey",
|
||||
'text' => $this->i18n('check DNS'),
|
||||
'callback_data' => "/checkdns",
|
||||
],
|
||||
];
|
||||
$upstreams = yaml_parse_file($this->adguard)['dns']['upstream_dns'];
|
||||
@@ -3492,12 +3883,6 @@ DNS-over-HTTPS with IP:
|
||||
];
|
||||
}
|
||||
}
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('check DNS'),
|
||||
'callback_data' => "/checkdns",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('back'),
|
||||
@@ -3547,6 +3932,41 @@ DNS-over-HTTPS with IP:
|
||||
}
|
||||
|
||||
public function updatebot()
|
||||
{
|
||||
$b = exec('git -C / rev-parse --abbrev-ref HEAD');
|
||||
$track = trim(file_get_contents('/update/branch'));
|
||||
$data = [
|
||||
[
|
||||
[
|
||||
'text' => "$b => $track",
|
||||
'callback_data' => "/branches",
|
||||
],
|
||||
[
|
||||
'text' => $this->i18n('changelog'),
|
||||
'web_app' => ['url' => "https://raw.githubusercontent.com/mercurykd/vpnbot/$b/version"],
|
||||
],
|
||||
],
|
||||
[
|
||||
[
|
||||
'text' => $this->i18n('update bot'),
|
||||
'callback_data' => "/applyupdatebot",
|
||||
],
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('back'),
|
||||
'callback_data' => "/menu config",
|
||||
],
|
||||
];
|
||||
exec("git -C / branch -vv", $mm);
|
||||
return [
|
||||
'text' => '<pre><code class="language-shell">' . implode("\n", $mm) . '</code></pre>',
|
||||
'data' => $data,
|
||||
];
|
||||
}
|
||||
|
||||
public function applyupdatebot()
|
||||
{
|
||||
$this->exportManual($this->update);
|
||||
$r = $this->send($this->input['from'], 'update...');
|
||||
@@ -3557,8 +3977,12 @@ DNS-over-HTTPS with IP:
|
||||
|
||||
public function configMenu()
|
||||
{
|
||||
$conf = $this->getPacConf();
|
||||
$text = $this->i18n('domain explain');
|
||||
exec('git -C / fetch');
|
||||
$conf = $this->getPacConf();
|
||||
$text[] = $conf['domain'] ? "Domains:\n{$conf['domain']}\nnp.{$conf['domain']}\noc.{$conf['domain']}" . ($conf['adguardkey'] ? "\n{$conf['adguardkey']}.{$conf['domain']}" : '') : $this->i18n('domain explain');
|
||||
$ssl = $this->expireCert();
|
||||
$text[] = $conf['domain'] ? "\nSSL: " . ($ssl ? date('Y-m-d H:i:s', $this->expireCert()) : 'none') : '';
|
||||
|
||||
$data = [
|
||||
[
|
||||
[
|
||||
@@ -3573,7 +3997,7 @@ DNS-over-HTTPS with IP:
|
||||
case 'letsencrypt':
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('renew SSL') . ': ' . date('Y-m-d H:i:s', $this->expireCert()),
|
||||
'text' => $this->i18n('renew SSL'),
|
||||
'callback_data' => "/setSSL letsencrypt",
|
||||
],
|
||||
[
|
||||
@@ -3667,8 +4091,8 @@ DNS-over-HTTPS with IP:
|
||||
];
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('update bot'),
|
||||
'callback_data' => "/updatebot",
|
||||
'text' => $this->i18n(exec('git -C / rev-list --count HEAD..@{u}') ? 'have updates' : 'no updates'),
|
||||
'callback_data' => "/menu update",
|
||||
],
|
||||
];
|
||||
$data[] = [
|
||||
@@ -3678,11 +4102,44 @@ DNS-over-HTTPS with IP:
|
||||
],
|
||||
];
|
||||
return [
|
||||
'text' => $text,
|
||||
'text' => implode("\n", $text),
|
||||
'data' => $data,
|
||||
];
|
||||
}
|
||||
|
||||
public function branches()
|
||||
{
|
||||
exec('git -C / branch -r', $m);
|
||||
array_shift($m);
|
||||
foreach ($m as $k => $v) {
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $v,
|
||||
'callback_data' => "/changeBranch $k",
|
||||
]
|
||||
];
|
||||
}
|
||||
$data[] = [
|
||||
[
|
||||
'text' => $this->i18n('back'),
|
||||
'callback_data' => "/menu update",
|
||||
]
|
||||
];
|
||||
$this->update($this->input['from'], $this->input['message_id'], 'branches', $data);
|
||||
}
|
||||
|
||||
public function changeBranch($i)
|
||||
{
|
||||
exec('git -C / branch -r', $m);
|
||||
array_shift($m);
|
||||
foreach ($m as $k => $v) {
|
||||
if ($i == $k) {
|
||||
file_put_contents('/update/branch', trim(str_replace('origin/', '', $v)));
|
||||
}
|
||||
}
|
||||
$this->menu('config');
|
||||
}
|
||||
|
||||
public function logs()
|
||||
{
|
||||
foreach (scandir('/logs/') as $k => $v) {
|
||||
@@ -3785,16 +4242,42 @@ DNS-over-HTTPS with IP:
|
||||
];
|
||||
}
|
||||
|
||||
public function setFakeDomain($domain)
|
||||
public function changeTGDomain()
|
||||
{
|
||||
$r = $this->send(
|
||||
$this->input['chat'],
|
||||
"@{$this->input['username']} enter domain",
|
||||
$this->input['message_id'],
|
||||
reply: 'enter domain',
|
||||
);
|
||||
$_SESSION['reply'][$r['result']['message_id']] = [
|
||||
'start_message' => $this->input['message_id'],
|
||||
'start_callback' => $this->input['callback_id'],
|
||||
'callback' => 'setTelegramDomain',
|
||||
'args' => [],
|
||||
];
|
||||
}
|
||||
|
||||
public function setFakeDomain($domain, $self = false)
|
||||
{
|
||||
$c = $this->getXray();
|
||||
$c['inbounds'][0]['streamSettings']['realitySettings']['serverNames'][0] = $domain;
|
||||
$c['inbounds'][0]['streamSettings']['realitySettings']['dest'] = "$domain:443";
|
||||
$c['inbounds'][0]['streamSettings']['realitySettings']['dest'] = $self ? "10.10.1.2:443" : "$domain:443";
|
||||
$this->restartXray($c);
|
||||
$this->setUpstreamDomain($domain);
|
||||
$this->xray();
|
||||
}
|
||||
|
||||
public function selfFakeDomain()
|
||||
{
|
||||
$c = $this->getPacConf();
|
||||
if (!empty($c['domain'])) {
|
||||
$this->setFakeDomain($c['domain'], 1);
|
||||
} else{
|
||||
$this->answer($this->input['callback_id'], 'empty domain', true);
|
||||
}
|
||||
}
|
||||
|
||||
public function setBackup($text)
|
||||
{
|
||||
$text = trim($text);
|
||||
@@ -4060,8 +4543,8 @@ DNS-over-HTTPS with IP:
|
||||
$this->wg = $i;
|
||||
$clients = $this->readClients();
|
||||
foreach ($clients as $k => $v) {
|
||||
foreach ($v['peers'] as $i => $j) {
|
||||
$clients[$k]['peers'][$i]['Endpoint'] = $endpoint[$i];
|
||||
foreach ($v['peers'] as $n => $j) {
|
||||
$clients[$k]['peers'][$n]['Endpoint'] = $endpoint[$i];
|
||||
}
|
||||
}
|
||||
$this->saveClients($clients);
|
||||
|
||||
@@ -0,0 +1,11 @@
|
||||
<?php
|
||||
|
||||
require './config.php';
|
||||
|
||||
$ch = curl_init();
|
||||
curl_setopt_array($ch, [
|
||||
CURLOPT_URL => "https://api.telegram.org/bot{$c['key']}/getWebhookInfo",
|
||||
CURLOPT_RETURNTRANSFER => true,
|
||||
]);
|
||||
$res = curl_exec($ch);
|
||||
die(var_dump($res));
|
||||
+29
-5
@@ -166,12 +166,12 @@ $i = [
|
||||
'ru' => 'Некоторым клиентам требуется валидный сертификат при подключении, например Windows 11 DoH или ShadowSocks Android (URL-адрес PAC), для этого требуется домен',
|
||||
],
|
||||
'self list explain' => [
|
||||
'en' => ' - domains that will work through a proxy',
|
||||
'ru' => ' - домены, которые будут работать через прокси',
|
||||
'en' => ' - domains that will work through a proxy, all others directly',
|
||||
'ru' => ' - домены, которые будут работать через прокси, все остальные напрямую',
|
||||
],
|
||||
'reverse list explain' => [
|
||||
'en' => ' - domains that will work without a proxy, all others through a proxy',
|
||||
'ru' => ' - домены которые будут работать без прокси, все остальные через прокси',
|
||||
'en' => ' - domains that will work directly, all others through a proxy',
|
||||
'ru' => ' - домены которые будут работать напрямую, все остальные через прокси',
|
||||
],
|
||||
'timer' => [
|
||||
'en' => 'set timer',
|
||||
@@ -263,7 +263,11 @@ $i = [
|
||||
],
|
||||
'changeFakeDomain' => [
|
||||
'en' => 'changeFakeDomain',
|
||||
'ru' => 'установить фейковый домен',
|
||||
'ru' => 'фейковый домен',
|
||||
],
|
||||
'selfFakeDomain' => [
|
||||
'en' => 'selfFakeDomain',
|
||||
'ru' => 'домен бота',
|
||||
],
|
||||
'page' => [
|
||||
'en' => 'pagination',
|
||||
@@ -305,4 +309,24 @@ $i = [
|
||||
'en' => 'update bot',
|
||||
'ru' => 'обновить бота',
|
||||
],
|
||||
'third party browser' => [
|
||||
'en' => 'third party browser',
|
||||
'ru' => 'сторонний браузер',
|
||||
],
|
||||
'browser_notify_on' => [
|
||||
'en' => 'the web panel can be opened in any browser',
|
||||
'ru' => 'веб панель может быть открыта в любом браузере',
|
||||
],
|
||||
'browser_notify_off' => [
|
||||
'en' => 'web panel is only available from telegram',
|
||||
'ru' => 'веб панель доступна только из телеграмма',
|
||||
],
|
||||
'no updates' => [
|
||||
'en' => 'no updates',
|
||||
'ru' => 'нет обновлений',
|
||||
],
|
||||
'have updates' => [
|
||||
'en' => 'have updates',
|
||||
'ru' => 'есть обновления',
|
||||
],
|
||||
];
|
||||
|
||||
+44
-15
@@ -22,24 +22,53 @@ $address = $_GET['a'] ?: '127.0.0.1';
|
||||
$port = $_GET['p'] ?: '1080';
|
||||
$hash = $_GET['h'];
|
||||
if ($hash == substr(md5($c['key']), 0, 8)) {
|
||||
if ($type == 'mirror') {
|
||||
switch ($type) {
|
||||
case 'mirror':
|
||||
require __DIR__ . '/bot.php';
|
||||
require __DIR__ . '/i18n.php';
|
||||
$bot = new Bot($c['key'], $i);
|
||||
$bot->getMirror();
|
||||
break;
|
||||
|
||||
case 's':
|
||||
require __DIR__ . '/bot.php';
|
||||
require __DIR__ . '/i18n.php';
|
||||
$bot = new Bot($c['key'], $i);
|
||||
$bot->v2raySubscription($_GET['s']);
|
||||
exit;
|
||||
|
||||
default:
|
||||
if (file_exists($file = __DIR__ . "/zapretlists/$type")) {
|
||||
$pac = file_get_contents($file);
|
||||
header('Content-Type: text/plain');
|
||||
echo str_replace([
|
||||
'~address~',
|
||||
'~port~',
|
||||
], [
|
||||
$address,
|
||||
$port,
|
||||
], $pac);
|
||||
exit;
|
||||
}
|
||||
break;
|
||||
}
|
||||
}
|
||||
if (!empty($_GET['hash'])) {
|
||||
$t = $_GET;
|
||||
unset($t['hash']);
|
||||
ksort($t);
|
||||
foreach ($t as $k => $v) {
|
||||
$s[] = "$k=$v";
|
||||
}
|
||||
$s = implode("\n", $s);
|
||||
$sk = hash_hmac('sha256', $c['key'], "WebAppData", true);
|
||||
if (hash_hmac('sha256', $s, $sk) == $_GET['hash']) {
|
||||
require __DIR__ . '/bot.php';
|
||||
require __DIR__ . '/i18n.php';
|
||||
$bot = new Bot($c['key'], $i);
|
||||
$bot->getMirror();
|
||||
} else {
|
||||
if (file_exists($file = __DIR__ . "/zapretlists/$type")) {
|
||||
$pac = file_get_contents($file);
|
||||
header('Content-Type: text/plain');
|
||||
echo str_replace([
|
||||
'~address~',
|
||||
'~port~',
|
||||
], [
|
||||
$address,
|
||||
$port,
|
||||
], $pac);
|
||||
exit;
|
||||
}
|
||||
setcookie('c', substr(hash('sha256', $c['key']), 0, 8), 0, '/');
|
||||
setcookie('a', $bot->adguardBasicAuth(), 0, '/');
|
||||
die('ok');
|
||||
}
|
||||
}
|
||||
|
||||
|
||||
+2
-1
@@ -8,6 +8,7 @@ require __DIR__ . '/config.php';
|
||||
require __DIR__ . '/i18n.php';
|
||||
|
||||
$bot = new Bot($c['key'], $i);
|
||||
$bot->setwebhook();
|
||||
$bot->adguardProtect();
|
||||
$bot->setcommands();
|
||||
$bot->syncPortClients();
|
||||
$bot->setwebhook();
|
||||
|
||||
+2
-1
@@ -35,4 +35,5 @@ if (!empty($c['admin'])) {
|
||||
}
|
||||
file_put_contents('/update/message', '');
|
||||
file_put_contents('/update/reload_message', '');
|
||||
$bot->menu();
|
||||
$bot->restartTG();
|
||||
$bot->sslip();
|
||||
|
||||
+27
-5
@@ -218,8 +218,19 @@ function start()
|
||||
$text .= $tail ? "$tail\n" : '';
|
||||
|
||||
// create pac
|
||||
$domains = elzw(json_encode($t));
|
||||
$pac = 'function FindProxyForURL(t,e){"indexOf"in Array.prototype||(Array.prototype.indexOf=function(t,e){void 0===e&&(e=0),e<0&&(e+=this.length),e<0&&(e=0);for(var n=this.length;e<n;e++)if(e in this&&this[e]===t)return e;return -1}),"dlzw"in String.prototype||(String.prototype.dlzw=function(t){for(var e in text=this.split(""),code=256,o=phrase="",last=text.length,keys=[],text){if(o+=(cc="".charCodeAt.call(this[e],0))<256?text[e]:keys[cc],last==e)break;phrase&&phrase.length>0&&(keys[code]=phrase+(cc<256?text[e]:keys[cc][0]),code++),phrase=cc<256?text[e]:keys[cc]}return o});var n=JSON.parse(\'' . $domains . '\'.dlzw()),r=(/\.(' . implode('|', $subzones) . ')\.[^.]+$/.test(e)?e.replace(/(.+)\.([^.]+\.[^.]+\.[^.]+$)/,"$2"):e.replace(/(.+)\.([^.]+\.[^.]+$)/,"$2")).replace(/^www\.(.+)/,"$1").match(/(.*)\.([^.]+$)/);if(console.log(n,r),!r||!r[2])return"DIRECT";var o=r[1],i=r[2],a=[];if(n.hasOwnProperty(i)&&n[i].hasOwnProperty(o.length)){if("string"==typeof n[i][o.length]){var l=RegExp(".{"+o.length.toString()+"}","g");n[i][o.length]=n[i][o.length].match(l)}a=n[i][o.length]}return -1!==a.indexOf(o)?"SOCKS5 ~address~:~port~; DIRECT":"DIRECT"}';
|
||||
$domains = json_encode($t);
|
||||
$pac = <<<PAC
|
||||
function FindProxyForURL(t, e) {
|
||||
var n = JSON.parse('$domains'),
|
||||
r = e.match(/((?:.+\.)*(.+))\.([^.]+)$/);
|
||||
if (r && n.hasOwnProperty(r[3]) && (n[r[3]].hasOwnProperty(r[1].length) && (-1 !== n[r[3]][r[1].length].indexOf(r[1])) || n[r[3]].hasOwnProperty(r[2].length) && (-1 !== n[r[3]][r[2].length].indexOf(r[2])))) {
|
||||
return "SOCKS5 ~address~:~port~; DIRECT";
|
||||
}
|
||||
return "DIRECT";
|
||||
}
|
||||
PAC;
|
||||
$pac = preg_replace("~\s{2,}~", '', $pac);
|
||||
$pac = preg_replace("~\n~", '', $pac);
|
||||
file_put_contents(__DIR__ . '/zapretlists/pac', $pac);
|
||||
$text .= "Create minified pac 100%\n";
|
||||
}
|
||||
@@ -227,7 +238,7 @@ function start()
|
||||
// create reverse PAC
|
||||
$domains = array_filter($conf['reverselist'], fn($x) => $x == true);
|
||||
if (empty($domains)) {
|
||||
$text .= "Empty reverse domains. Delete reverse pac files";
|
||||
// $text .= "Empty reverse domains. Delete reverse pac files";
|
||||
unlink(__DIR__ . '/zapretlists/rmpac');
|
||||
unlink(__DIR__ . '/zapretlists/rpac');
|
||||
} else {
|
||||
@@ -258,8 +269,19 @@ function start()
|
||||
// fclose($f);
|
||||
$text .= $tail ? "$tail\n" : '';
|
||||
|
||||
$domains = elzw(json_encode($t));
|
||||
$pac = 'function FindProxyForURL(t,e){"indexOf"in Array.prototype||(Array.prototype.indexOf=function(t,e){void 0===e&&(e=0),e<0&&(e+=this.length),e<0&&(e=0);for(var n=this.length;e<n;e++)if(e in this&&this[e]===t)return e;return -1}),"dlzw"in String.prototype||(String.prototype.dlzw=function(t){for(var e in text=this.split(""),code=256,o=phrase="",last=text.length,keys=[],text){if(o+=(cc="".charCodeAt.call(this[e],0))<256?text[e]:keys[cc],last==e)break;phrase&&phrase.length>0&&(keys[code]=phrase+(cc<256?text[e]:keys[cc][0]),code++),phrase=cc<256?text[e]:keys[cc]}return o});var n=JSON.parse(\'' . $domains . '\'.dlzw()),r=(/\.(' . implode('|', $subzones) . ')\.[^.]+$/.test(e)?e.replace(/(.+)\.([^.]+\.[^.]+\.[^.]+$)/,"$2"):e.replace(/(.+)\.([^.]+\.[^.]+$)/,"$2")).replace(/^www\.(.+)/,"$1").match(/(.*)\.([^.]+$)/);if(console.log(n,r),!r||!r[2])return"DIRECT";var o=r[1],i=r[2],a=[];if(n.hasOwnProperty(i)&&n[i].hasOwnProperty(o.length)){if("string"==typeof n[i][o.length]){var l=RegExp(".{"+o.length.toString()+"}","g");n[i][o.length]=n[i][o.length].match(l)}a=n[i][o.length]}return -1!==a.indexOf(o)?"DIRECT":"SOCKS5 ~address~:~port~"}';
|
||||
$domains = json_encode($t);
|
||||
$pac = <<<PAC
|
||||
function FindProxyForURL(t, e) {
|
||||
var n = JSON.parse('$domains'),
|
||||
r = e.match(/((?:.+\.)*(.+))\.([^.]+)$/);
|
||||
if (r && n.hasOwnProperty(r[3]) && (n[r[3]].hasOwnProperty(r[1].length) && (-1 !== n[r[3]][r[1].length].indexOf(r[1])) || n[r[3]].hasOwnProperty(r[2].length) && (-1 !== n[r[3]][r[2].length].indexOf(r[2])))) {
|
||||
return "DIRECT";
|
||||
}
|
||||
return "SOCKS5 ~address~:~port~";
|
||||
}
|
||||
PAC;
|
||||
$pac = preg_replace("~\s{2,}+~", '', $pac);
|
||||
$pac = preg_replace("~\n~", '', $pac);
|
||||
file_put_contents(__DIR__ . '/zapretlists/rpac', $pac);
|
||||
$text .= 'Create minified reverse pac 100%';
|
||||
}
|
||||
|
||||
@@ -0,0 +1,24 @@
|
||||
<!DOCTYPE html>
|
||||
<html lang="en">
|
||||
<head>
|
||||
<meta charset="UTF-8">
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||
<script src="https://telegram.org/js/telegram-web-app.js"></script>
|
||||
<script src="jquery-3.7.1.min.js"></script>
|
||||
<title>Document</title>
|
||||
</head>
|
||||
<body>
|
||||
<script>
|
||||
var tg = window.Telegram.WebApp;
|
||||
jQuery(function($) {
|
||||
$.ajax({
|
||||
'url': 'check?' + tg.initData,
|
||||
}).done(function (r) {
|
||||
location.replace('/adguard/');
|
||||
}).fail(function (r) {
|
||||
location.replace('/');
|
||||
});
|
||||
});
|
||||
</script>
|
||||
</body>
|
||||
</html>
|
||||
Vendored
+2
File diff suppressed because one or more lines are too long
@@ -0,0 +1,117 @@
|
||||
<!DOCTYPE html>
|
||||
<html lang="en">
|
||||
|
||||
<head>
|
||||
<meta charset="UTF-8">
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||
<title>Login</title>
|
||||
<style>
|
||||
/* Design based on Blue Login Field of Kevin Sleger https://codepen.io/MurmeltierS/pen/macKb */
|
||||
|
||||
body {
|
||||
background: #44c4e7 url("https://photos-6.dropbox.com/t/2/AAC_bdqR8LMkjEe-HPIf4K1DhtseMLRHPklBSzJSuzglvA/12/5714737/jpeg/1024x768/3/1418346000/0/2/bkg-blur.jpg/CLHm3AIgASgBKAI/b7RrveA2022yJyfO9RyRvv7LjJQESukGHssHUxVThzw") no-repeat center center fixed;
|
||||
background-size: cover;
|
||||
font-family: "Roboto";
|
||||
-webkit-font-smoothing: antialiased;
|
||||
-moz-osx-font-smoothing: grayscale;
|
||||
|
||||
&::before {
|
||||
z-index: -1;
|
||||
content: '';
|
||||
position: fixed;
|
||||
top: 0;
|
||||
left: 0;
|
||||
background: #44c4e7;
|
||||
/* IE Fallback */
|
||||
background: rgba(68, 196, 231, 0.8);
|
||||
width: 100%;
|
||||
height: 100%;
|
||||
}
|
||||
}
|
||||
|
||||
.form {
|
||||
position: absolute;
|
||||
top: 50%;
|
||||
left: 50%;
|
||||
background: #fff;
|
||||
width: 285px;
|
||||
margin: -140px 0 0 -182px;
|
||||
padding: 40px;
|
||||
box-shadow: 0 0 3px rgba(0, 0, 0, 0.3);
|
||||
|
||||
h2 {
|
||||
margin: 0 0 20px;
|
||||
line-height: 1;
|
||||
color: #44c4e7;
|
||||
font-size: 18px;
|
||||
font-weight: 400;
|
||||
}
|
||||
|
||||
input {
|
||||
outline: none;
|
||||
display: block;
|
||||
width: 100%;
|
||||
margin: 0 0 20px;
|
||||
padding: 10px 15px;
|
||||
border: 1px solid #ccc;
|
||||
color: #ccc;
|
||||
font-family: "Roboto";
|
||||
box-sizing: border-box;
|
||||
font-size: 14px;
|
||||
font-wieght: 400;
|
||||
-webkit-font-smoothing: antialiased;
|
||||
-moz-osx-font-smoothing: grayscale;
|
||||
transition: 0.2s linear;
|
||||
|
||||
&input:focus {
|
||||
color: #333;
|
||||
border: 1px solid #44c4e7;
|
||||
}
|
||||
}
|
||||
|
||||
button {
|
||||
cursor: pointer;
|
||||
background: #44c4e7;
|
||||
width: 100%;
|
||||
padding: 10px 15px;
|
||||
border: 0;
|
||||
color: #fff;
|
||||
font-family: "Roboto";
|
||||
font-size: 14px;
|
||||
font-weight: 400;
|
||||
|
||||
&:hover {
|
||||
background: #369cb8;
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
.error,
|
||||
.valid {
|
||||
display: none;
|
||||
}
|
||||
</style>
|
||||
<script src="jquery-3.7.1.min.js"></script>
|
||||
</head>
|
||||
|
||||
<body>
|
||||
<section class="form animated flipInX">
|
||||
<h2>Login To Your Account</h2>
|
||||
<p class="valid">Valid. Please wait a moment.</p>
|
||||
<p class="error">Error. Please enter correct Username & password.</p>
|
||||
<form class="loginbox" autocomplete="off">
|
||||
<input placeholder="Username" type="text" id="username"></input>
|
||||
<input placeholder="Password" type="password" id="password"></input>
|
||||
<button id="submit">Login</button>
|
||||
</form>
|
||||
</section>
|
||||
<script>
|
||||
$(document).ready(function() {
|
||||
$('#submit').click(function () {
|
||||
event.preventDefault(); // prevent PageReLoad
|
||||
$('.error').css('display', 'block'); // show error msg
|
||||
});
|
||||
});
|
||||
</script>
|
||||
</body>
|
||||
</html>
|
||||
+23
-6
@@ -22,15 +22,17 @@ http {
|
||||
set_real_ip_from 10.10.0.10;
|
||||
|
||||
server {
|
||||
listen 80 default_server;
|
||||
listen 443 ssl http2 default_server proxy_protocol;
|
||||
listen 10.10.0.2:80 default_server;
|
||||
listen 10.10.0.2:443 ssl http2 default_server proxy_protocol;
|
||||
ssl_certificate /certs/self_public;
|
||||
ssl_certificate_key /certs/self_private;
|
||||
|
||||
access_log /logs/nginx_default_access;
|
||||
|
||||
location / {
|
||||
return 444;
|
||||
root /app;
|
||||
index login.html;
|
||||
try_files $uri $uri/ =404;
|
||||
}
|
||||
location /adguard/ {
|
||||
access_log /logs/nginx_adguard_access;
|
||||
@@ -38,6 +40,12 @@ http {
|
||||
proxy_redirect / /adguard/;
|
||||
proxy_cookie_path / /adguard/;
|
||||
}
|
||||
location /webapp {
|
||||
access_log /logs/nginx_webapp_access;
|
||||
alias /app;
|
||||
index index.html;
|
||||
try_files $uri $uri/ /pac?$query_string;
|
||||
}
|
||||
location /pac {
|
||||
access_log /logs/nginx_pac_access;
|
||||
proxy_pass http://php;
|
||||
@@ -67,11 +75,12 @@ http {
|
||||
|
||||
#-domain
|
||||
# server {
|
||||
# listen 80;
|
||||
# listen 10.10.0.2:80;
|
||||
# server_name ;
|
||||
#-domain
|
||||
#-ssl
|
||||
# listen 443 ssl http2 proxy_protocol;
|
||||
# listen 10.10.0.2:443 ssl http2 proxy_protocol;
|
||||
# listen 10.10.1.2:443 ssl http2;
|
||||
# ssl_certificate /certs/cert_public;
|
||||
# ssl_certificate_key /certs/cert_private;
|
||||
#-ssl
|
||||
@@ -80,7 +89,9 @@ http {
|
||||
# access_log /logs/nginx_domain_access;
|
||||
|
||||
# location / {
|
||||
# return 444;
|
||||
# root /app;
|
||||
# index login.html;
|
||||
# try_files $uri $uri/ =404;
|
||||
# }
|
||||
# location /adguard/ {
|
||||
# access_log /logs/nginx_adguard_access;
|
||||
@@ -88,6 +99,12 @@ http {
|
||||
# proxy_redirect / /adguard/;
|
||||
# proxy_cookie_path / /adguard/;
|
||||
# }
|
||||
# location /webapp {
|
||||
# access_log /logs/nginx_webapp_access;
|
||||
# alias /app;
|
||||
# index index.html;
|
||||
# try_files $uri $uri/ /pac?$query_string;
|
||||
# }
|
||||
# location /pac {
|
||||
# access_log /logs/nginx_pac_access;
|
||||
# proxy_pass http://php;
|
||||
|
||||
@@ -22,15 +22,17 @@ http {
|
||||
set_real_ip_from 10.10.0.10;
|
||||
|
||||
server {
|
||||
listen 80 default_server;
|
||||
listen 443 ssl http2 default_server proxy_protocol;
|
||||
listen 10.10.0.2:80 default_server;
|
||||
listen 10.10.0.2:443 ssl http2 default_server proxy_protocol;
|
||||
ssl_certificate /certs/self_public;
|
||||
ssl_certificate_key /certs/self_private;
|
||||
|
||||
access_log /logs/nginx_default_access;
|
||||
|
||||
location / {
|
||||
return 444;
|
||||
root /app;
|
||||
index login.html;
|
||||
try_files $uri $uri/ =404;
|
||||
}
|
||||
location /adguard/ {
|
||||
access_log /logs/nginx_adguard_access;
|
||||
@@ -38,6 +40,12 @@ http {
|
||||
proxy_redirect / /adguard/;
|
||||
proxy_cookie_path / /adguard/;
|
||||
}
|
||||
location /webapp {
|
||||
access_log /logs/nginx_webapp_access;
|
||||
alias /app;
|
||||
index index.html;
|
||||
try_files $uri $uri/ /pac?$query_string;
|
||||
}
|
||||
location /pac {
|
||||
access_log /logs/nginx_pac_access;
|
||||
proxy_pass http://php;
|
||||
@@ -67,11 +75,12 @@ http {
|
||||
|
||||
#-domain
|
||||
# server {
|
||||
# listen 80;
|
||||
# listen 10.10.0.2:80;
|
||||
# server_name ;
|
||||
#-domain
|
||||
#-ssl
|
||||
# listen 443 ssl http2 proxy_protocol;
|
||||
# listen 10.10.0.2:443 ssl http2 proxy_protocol;
|
||||
# listen 10.10.1.2:443 ssl http2;
|
||||
# ssl_certificate /certs/cert_public;
|
||||
# ssl_certificate_key /certs/cert_private;
|
||||
#-ssl
|
||||
@@ -80,7 +89,9 @@ http {
|
||||
# access_log /logs/nginx_domain_access;
|
||||
|
||||
# location / {
|
||||
# return 444;
|
||||
# root /app;
|
||||
# index login.html;
|
||||
# try_files $uri $uri/ =404;
|
||||
# }
|
||||
# location /adguard/ {
|
||||
# access_log /logs/nginx_adguard_access;
|
||||
@@ -88,6 +99,12 @@ http {
|
||||
# proxy_redirect / /adguard/;
|
||||
# proxy_cookie_path / /adguard/;
|
||||
# }
|
||||
# location /webapp {
|
||||
# access_log /logs/nginx_webapp_access;
|
||||
# alias /app;
|
||||
# index index.html;
|
||||
# try_files $uri $uri/ /pac?$query_string;
|
||||
# }
|
||||
# location /pac {
|
||||
# access_log /logs/nginx_pac_access;
|
||||
# proxy_pass http://php;
|
||||
|
||||
+80
-44
@@ -12,6 +12,10 @@ networks:
|
||||
ipam:
|
||||
config:
|
||||
- subnet: 10.10.0.0/24
|
||||
xray:
|
||||
ipam:
|
||||
config:
|
||||
- subnet: 10.10.1.0/24
|
||||
volumes:
|
||||
adguard:
|
||||
|
||||
@@ -41,8 +45,11 @@ services:
|
||||
condition: service_started
|
||||
ss:
|
||||
condition: service_started
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_upstream.sh"]
|
||||
networks:
|
||||
@@ -66,6 +73,7 @@ services:
|
||||
- ./ssh:/ssh
|
||||
- ./config/sshd_config:/etc/ssh/sshd_config
|
||||
- ./logs/:/logs/
|
||||
- ./app/webapp:/app
|
||||
ports:
|
||||
- 80:80
|
||||
hostname: nginx
|
||||
@@ -73,21 +81,27 @@ services:
|
||||
depends_on:
|
||||
up:
|
||||
condition: service_started
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
SSPORT: ${SSPORT}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_ng.sh"]
|
||||
networks:
|
||||
default:
|
||||
ipv4_address: 10.10.0.2
|
||||
xray:
|
||||
ipv4_address: 10.10.1.2
|
||||
logging: *default-logging
|
||||
php:
|
||||
image: mercurykd/vpnbot-php:1.2
|
||||
image: mercurykd/vpnbot-php:1.3
|
||||
build:
|
||||
dockerfile: dockerfile/php.dockerfile
|
||||
args:
|
||||
image: ${IMAGE}
|
||||
ports:
|
||||
- 127.0.0.1:8081:8080
|
||||
volumes:
|
||||
- ./config/.profile:/root/.ashrc:ro
|
||||
- ./config/php.ini:/etc/php81/php.ini
|
||||
@@ -102,16 +116,15 @@ services:
|
||||
- ./mirror:/mirror
|
||||
- ./.env:/mirror/.env
|
||||
- ./update:/update
|
||||
- ./.git:/.git
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
IP: ${IP}
|
||||
ADDRESS: ${WGADDRESS}
|
||||
WGPORT: ${WGPORT}
|
||||
WG1ADDRESS: ${WG1ADDRESS}
|
||||
WG1PORT: ${WG1PORT}
|
||||
SSPORT: ${SSPORT}
|
||||
TGPORT: ${TGPORT}
|
||||
VER: ${VER}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
hostname: php
|
||||
container_name: php-${VER}
|
||||
restart: unless-stopped
|
||||
@@ -130,7 +143,7 @@ services:
|
||||
timeout: 5s
|
||||
retries: 5
|
||||
service:
|
||||
image: mercurykd/vpnbot-php:1.1
|
||||
image: mercurykd/vpnbot-php:1.2
|
||||
build:
|
||||
dockerfile: dockerfile/php.dockerfile
|
||||
args:
|
||||
@@ -146,15 +159,13 @@ services:
|
||||
- ./update:/update
|
||||
- ./scripts/start_service.sh:/start_service.sh
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
IP: ${IP}
|
||||
ADDRESS: ${WGADDRESS}
|
||||
WGPORT: ${WGPORT}
|
||||
WG1ADDRESS: ${WG1ADDRESS}
|
||||
WG1PORT: ${WG1PORT}
|
||||
SSPORT: ${SSPORT}
|
||||
TGPORT: ${TGPORT}
|
||||
VER: ${VER}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
hostname: service
|
||||
container_name: service-${VER}
|
||||
# restart: unless-stopped
|
||||
@@ -200,7 +211,11 @@ services:
|
||||
ipv4_address: 10.10.0.3
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
SSPORT: ${SSPORT}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_proxy.sh"]
|
||||
logging: *default-logging
|
||||
@@ -227,11 +242,13 @@ services:
|
||||
condition: service_healthy
|
||||
ports:
|
||||
- ${WGPORT}:${WGPORT}/udp
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
WGPORT: ${WGPORT}
|
||||
ADDRESS: ${WGADDRESS}
|
||||
ENV: /root/.ashrc
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
devices:
|
||||
@@ -265,11 +282,13 @@ services:
|
||||
condition: service_healthy
|
||||
ports:
|
||||
- ${WG1PORT}:${WG1PORT}/udp
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
WGPORT: ${WG1PORT}
|
||||
ADDRESS: ${WG1ADDRESS}
|
||||
ENV: /root/.ashrc
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
devices:
|
||||
@@ -304,8 +323,11 @@ services:
|
||||
depends_on:
|
||||
php:
|
||||
condition: service_healthy
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
networks:
|
||||
default:
|
||||
@@ -334,9 +356,11 @@ services:
|
||||
ports:
|
||||
- ${SSPORT}:${SSPORT}/tcp
|
||||
- ${SSPORT}:${SSPORT}/udp
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
SSPORT: ${SSPORT}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_ss.sh"]
|
||||
networks:
|
||||
@@ -361,9 +385,12 @@ services:
|
||||
ports:
|
||||
- ${TGPORT}:${TGPORT}
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
IP: ${IP}
|
||||
TGPORT: ${TGPORT}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_tg.sh"]
|
||||
networks:
|
||||
@@ -371,7 +398,7 @@ services:
|
||||
ipv4_address: 10.10.0.8
|
||||
logging: *default-logging
|
||||
xr:
|
||||
image: mercurykd/vpnbot-xr:1.1
|
||||
image: mercurykd/vpnbot-xr:1.2
|
||||
build:
|
||||
dockerfile: dockerfile/xray.dockerfile
|
||||
args:
|
||||
@@ -387,13 +414,18 @@ services:
|
||||
depends_on:
|
||||
php:
|
||||
condition: service_healthy
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_xray.sh"]
|
||||
networks:
|
||||
default:
|
||||
ipv4_address: 10.10.0.9
|
||||
xray:
|
||||
ipv4_address: 10.10.1.9
|
||||
logging: *default-logging
|
||||
oc:
|
||||
image: mercurykd/vpnbot-oc:1.2
|
||||
@@ -413,9 +445,11 @@ services:
|
||||
depends_on:
|
||||
php:
|
||||
condition: service_healthy
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
ENV: /root/.ashrc
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_oc.sh"]
|
||||
cap_add:
|
||||
@@ -444,9 +478,11 @@ services:
|
||||
depends_on:
|
||||
php:
|
||||
condition: service_healthy
|
||||
environment:
|
||||
TZ: ${TZ}
|
||||
ENV: /root/.ashrc
|
||||
env_file:
|
||||
- path: ./.env
|
||||
required: true # default
|
||||
- path: ./override.env
|
||||
required: false
|
||||
stop_grace_period: 1s
|
||||
command: ["/bin/sh", "/start_np.sh"]
|
||||
cap_add:
|
||||
|
||||
@@ -19,6 +19,7 @@ RUN apk add --no-cache --update php81 \
|
||||
openssh \
|
||||
openssl \
|
||||
curl \
|
||||
git \
|
||||
py3-qt5 \
|
||||
&& wget https://github.com/ameshkov/dnslookup/releases/download/v1.9.1/dnslookup-linux-amd64-v1.9.1.tar.gz \
|
||||
&& tar -xf dnslookup-linux-amd64-v1.9.1.tar.gz \
|
||||
|
||||
@@ -2,7 +2,7 @@ ARG image
|
||||
FROM $image
|
||||
RUN apk add openssh openssl jq \
|
||||
&& mkdir /root/.ssh \
|
||||
&& wget https://github.com/XTLS/Xray-core/releases/download/v1.8.3/Xray-linux-64.zip \
|
||||
&& wget https://github.com/XTLS/Xray-core/releases/download/v1.8.10/Xray-linux-64.zip \
|
||||
&& unzip Xray-linux-64.zip \
|
||||
&& mv xray /usr/bin/ \
|
||||
&& rm Xray-linux-64.zip \
|
||||
|
||||
@@ -2,7 +2,8 @@ b:
|
||||
docker compose build
|
||||
u: # запуск контейнеров
|
||||
bash ./update/update.sh &
|
||||
IP=$(shell curl https://ipinfo.io/ip) VER=$(shell git describe --tags) docker compose up -d --force-recreate
|
||||
touch ./override.env
|
||||
IP=$(shell curl https://ipinfo.io/ip) VER=$(shell git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate
|
||||
d: # остановка контейнеров
|
||||
-kill -9 $(shell cat ./update/update_pid) > /dev/null
|
||||
docker compose down --remove-orphans
|
||||
@@ -55,4 +56,6 @@ s:
|
||||
c:
|
||||
git add config/
|
||||
git checkout .
|
||||
git reset
|
||||
git reset
|
||||
webhook:
|
||||
docker compose exec php php checkwebhook.php
|
||||
@@ -62,19 +62,17 @@ telegram bot to manage servers (inside the bot)
|
||||
<img src="https://github.com/mercurykd/vpnbot/assets/30900414/431ec09d-9c14-4c74-b8f6-e49c142132e8" width="200">
|
||||
|
||||
---
|
||||
environment: ubuntu 18.04/20.04/22.04, debian 11
|
||||
environment: ubuntu 18.04/20.04/22.04, debian 11/12
|
||||
|
||||
install:
|
||||
|
||||
`wget -O- https://raw.githubusercontent.com/mercurykd/vpnbot/master/scripts/init.sh | sh -s YOUR_TELEGRAM_BOT_KEY`
|
||||
|
||||
---
|
||||
|
||||
additional options:
|
||||
|
||||
install as service(autoload on start):
|
||||
### Install:
|
||||
|
||||
```shell
|
||||
wget -O- https://raw.githubusercontent.com/mercurykd/vpnbot/master/scripts/init.sh | sh -s YOUR_TELEGRAM_BOT_KEY
|
||||
```
|
||||
|
||||
### Install as service (autoload on start):
|
||||
|
||||
```shell
|
||||
cd /root/vpnbot
|
||||
bash scripts/install_as_service.sh
|
||||
```
|
||||
|
||||
@@ -1,3 +1,4 @@
|
||||
cp scripts/vpnbot.service /etc/systemd/system/vpnbot.service
|
||||
path=`pwd`
|
||||
sed "s|path|$path|g" "$path/scripts/vpnbot.service" > /etc/systemd/system/vpnbot.service
|
||||
systemctl daemon-reload
|
||||
systemctl enable vpnbot
|
||||
|
||||
@@ -6,4 +6,4 @@ php cron.php &
|
||||
unitd --log /logs/unit_error
|
||||
curl -X PUT --data-binary @/config/unit.json --unix-socket /var/run/control.unit.sock http://localhost/config
|
||||
pkill unitd
|
||||
unitd --no-daemon --log /logs/unit_error
|
||||
unitd --no-daemon --control 0.0.0.0:8080 --log /logs/unit_error
|
||||
|
||||
@@ -4,9 +4,4 @@ ssh-keygen -A
|
||||
exec /usr/sbin/sshd -D -e "$@" &
|
||||
curl -s https://core.telegram.org/getProxySecret -o proxy-secret
|
||||
curl -s https://core.telegram.org/getProxyConfig -o proxy-multi.conf
|
||||
if [ $(cat /mtprotosecret | wc -c) -gt 0 ]
|
||||
then
|
||||
SECRET=$(cat /mtprotosecret)
|
||||
mtproto-proxy -u nobody -H $TGPORT --nat-info 10.10.0.8:$IP -S $SECRET --aes-pwd /proxy-secret /proxy-multi.conf -M 1
|
||||
fi
|
||||
tail -f /dev/null
|
||||
|
||||
+23
-8
@@ -3,16 +3,31 @@ ssh-keygen -A
|
||||
exec /usr/sbin/sshd -D -e "$@" &
|
||||
|
||||
INTERFACE=$(route | grep '^default' | grep -o '[^ ]*$')
|
||||
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
||||
if [ "$HOSTNAME" = "wireguard1" ]
|
||||
then
|
||||
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
||||
echo "[Interface]" > /etc/wireguard/wg0.conf
|
||||
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
||||
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
||||
echo "ListenPort = $WGPORT" >> /etc/wireguard/wg0.conf
|
||||
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
||||
then
|
||||
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
||||
echo "[Interface]" > /etc/wireguard/wg0.conf
|
||||
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
||||
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
||||
echo "ListenPort = $WG1PORT" >> /etc/wireguard/wg0.conf
|
||||
else
|
||||
sed "s/ListenPort = [0-9]\+/ListenPort = $WG1PORT/" /etc/wireguard/wg0.conf > change_port
|
||||
cat change_port > /etc/wireguard/wg0.conf
|
||||
fi
|
||||
else
|
||||
sed "s/ListenPort = [0-9]\+/ListenPort = $WGPORT/" /etc/wireguard/wg0.conf > change_port
|
||||
cat change_port > /etc/wireguard/wg0.conf
|
||||
if [ $(cat /etc/wireguard/wg0.conf | wc -c) -eq 0 ]
|
||||
then
|
||||
PRIVATEKEY=$(wg genkey | tee /etc/wireguard/privatekey)
|
||||
echo "[Interface]" > /etc/wireguard/wg0.conf
|
||||
echo "PrivateKey = $PRIVATEKEY" >> /etc/wireguard/wg0.conf
|
||||
echo "Address = $ADDRESS" >> /etc/wireguard/wg0.conf
|
||||
echo "ListenPort = $WGPORT" >> /etc/wireguard/wg0.conf
|
||||
else
|
||||
sed "s/ListenPort = [0-9]\+/ListenPort = $WGPORT/" /etc/wireguard/wg0.conf > change_port
|
||||
cat change_port > /etc/wireguard/wg0.conf
|
||||
fi
|
||||
fi
|
||||
iptables -t nat -A POSTROUTING --destination 10.10.0.5 -j ACCEPT
|
||||
iptables -t nat -A POSTROUTING -o $INTERFACE -j MASQUERADE
|
||||
|
||||
@@ -3,10 +3,14 @@ Description=VPN: Docker Compose Application Service
|
||||
Requires=docker.service
|
||||
After=docker.service
|
||||
[Service]
|
||||
WorkingDirectory=/root/vpnbot
|
||||
ExecStart=/bin/sh -c "IP=$(curl https://ipinfo.io/ip) VER=$(git describe --tags) docker compose up -d --force-recreate && bash ./update/update.sh &"
|
||||
ExecStop=/bin/sh -c "kill -9 $(cat ./update/update_pid) > /dev/null && docker compose down --remove-orphans"
|
||||
Type=oneshot
|
||||
RemainAfterExit=yes
|
||||
WorkingDirectory=path
|
||||
ExecStartPre=/bin/sh -c "touch ./override.env"
|
||||
ExecStart=/bin/sh -c "IP=$(curl https://ipinfo.io/ip) VER=$(git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate"
|
||||
ExecStartPost=/bin/sh -c "bash ./update/update.sh &"
|
||||
ExecStop=/bin/sh -c "docker compose down --remove-orphans"
|
||||
ExecStopPost=/bin/sh -c "kill -9 $(cat ./update/update_pid) > /dev/null"
|
||||
TimeoutStartSec=0
|
||||
Restart=on-failure
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
|
||||
@@ -0,0 +1,6 @@
|
||||
@url = http://127.0.0.1:8081
|
||||
###
|
||||
|
||||
GET {{url}}/status
|
||||
###
|
||||
GET {{url}}/config
|
||||
+7
-1
@@ -6,10 +6,16 @@ echo "$$" > $pwd/update/update_pid
|
||||
while true
|
||||
do
|
||||
cmd=$(cat $pwd/update/pipe)
|
||||
branch=$(cat $pwd/update/branch 2>/dev/null)
|
||||
if [[ -n "$cmd" ]]
|
||||
then
|
||||
docker compose down --remove-orphans
|
||||
git reset --hard
|
||||
git reset --hard && git clean -fd
|
||||
git fetch
|
||||
if [[ -n "$branch" ]]
|
||||
then
|
||||
git checkout -t origin/$branch || git checkout $branch
|
||||
fi
|
||||
git pull > ./update/message
|
||||
IP=$(curl https://ipinfo.io/ip) VER=$(git describe --tags) docker compose up -d --force-recreate
|
||||
bash $pwd/update/update.sh &
|
||||
|
||||
@@ -1,3 +1,32 @@
|
||||
07.04.2024 v1.14
|
||||
- раздельные пользователи для XTLS-Reality
|
||||
- подписка с маршрутизацией для v2rayN/nginx
|
||||
- обновление ядра xray 1.8.10
|
||||
- упрощение PAC
|
||||
28.03.2024 v1.13
|
||||
- кнопка обновления показывает есть ли обновления
|
||||
21.03.2024 v1.12
|
||||
- доработка скрипта обновления
|
||||
20.03.2024 v1.11
|
||||
- XTLS-Reality steal from yourself
|
||||
18.03.2024 v1.10
|
||||
- MTProto Fake-TLS
|
||||
17.03.2024 v1.9
|
||||
- автоматический технический домен sslip
|
||||
13.03.2024 v1.8.10
|
||||
- фикс override.env
|
||||
10.03.2024 v1.8.9
|
||||
- веб морда адгварда "встроена" в телеграм
|
||||
- мелкие улучшения меню
|
||||
07.03.2024 v1.8.8
|
||||
- фикс не работающего wireguard
|
||||
07.03.2024 v1.8.7
|
||||
- фикс порта амнезии
|
||||
- у кого ошибка запуска обновите докер и докер композ
|
||||
07.03.2024 v1.8.6
|
||||
- фикс синхронизации клиентов амнезии, бот падал после рестарта, клиенты пропадали
|
||||
- возможность переназначить порты в override.env, файл не отслеживаемый, обновление не будет его сбрасывать
|
||||
- убрал дублирование образа php
|
||||
06.03.2024
|
||||
- короткие ссылки для амнезии
|
||||
- фикс работы openconnect
|
||||
|
||||
Reference in New Issue
Block a user