Compare commits

...

45 Commits

Author SHA1 Message Date
mercury 54fa8d35b1 update version 2025-07-04 17:48:15 +04:00
mercury ffe6bb4ba8 subscription page 2025-07-04 17:45:50 +04:00
mercury 6be95533c4 improve vless menu 2025-07-04 16:42:47 +04:00
mercury 8d13bee021 improve /id 2025-07-04 16:38:39 +04:00
mercury db6a18f498 update version 2025-06-18 00:56:49 +04:00
mercury 6954a16fa2 get ip from host 2025-06-18 00:47:48 +04:00
mercury ca7a9c955d update version 2025-06-11 14:09:51 +04:00
mercury 852fbd55c6 Pagination number 2025-05-27 23:42:02 +04:00
mercury 3a8a843d8c update version 2025-05-20 21:39:34 +04:00
mercury 90828d1117 improve main menu 2025-05-18 19:23:42 +04:00
mercury 37e8b96bcf improve main menu 2025-05-18 11:30:59 +04:00
mercury 306bc41813 improve main menu 2025-05-18 03:29:15 +04:00
mercury f6e5da382b reset vless stats monthly 2025-05-17 16:18:46 +04:00
mercury d7ed7042ec update version 2025-05-17 14:54:58 +04:00
mercury 4496a30552 add status process container 2025-05-17 14:49:32 +04:00
mercury ca1a596f85 fix crash vless when enable timer user 2025-05-17 14:24:22 +04:00
mercury b3edf1bdcc Merge branch 'dev' of github.com:mercurykd/vpnbot into dev 2025-05-17 13:55:28 +04:00
mercury c6306aa918 vless: check already exists user 2025-05-17 13:52:45 +04:00
Konstantin d5bbc9a564 Merge pull request #39 from legiz-ru/dev
add no overwrite key for Clash Mi
2025-05-10 12:22:57 +04:00
legiz-ru d2aab8ee4b add no overwrite key for Clash Mi 2025-05-09 22:18:30 +03:00
mercury 304217d36e Периодическое падение upstream при запуске сервисов 2025-04-26 23:37:37 +04:00
mercury 2622397542 mihomo: udp true 2025-04-18 23:40:33 +04:00
mercury 702123e39c vless: ip limit only notifies 2025-04-17 00:58:13 +04:00
mercury 01ef7707c4 fix first start 2025-04-14 11:36:26 +04:00
mercury 064d39d80b Excess image php 2025-04-09 18:12:18 +04:00
mercury 1b93d41421 cyclical rebooting panel adguardhome fix 2025-04-07 00:22:50 +04:00
mercury e41c8e30a4 fix warp 2025-04-06 23:57:46 +04:00
mercury 260f988360 Merge branch 'dev' of github.com:mercurykd/vpnbot into dev 2025-04-05 00:38:54 +04:00
mercury ca4905220d np/oc the domain is preserved when transferring 2025-04-05 00:36:08 +04:00
Konstantin 08c5ff136e Merge pull request #38 from legiz-ru/dev
new variable ~dnspath~
2025-03-04 15:45:18 +04:00
legiz-ru 8709531717 new variable ~dnspath~
new variable ~dnspath~ for client templates (required for future release sing-box 1.12)
2025-03-04 12:41:23 +03:00
Konstantin 71f53c3575 Merge pull request #37 from legiz-ru/dev
update singbox 1.11.4 windows x64
2025-03-04 12:16:19 +04:00
legiz-ru 2607f1f264 update singbox 1.11.4 windows x64 2025-03-04 10:46:56 +03:00
mercury a94cab7dc1 fix ip limit user off 2025-03-02 18:41:18 +04:00
mercury 694d446402 update version 2025-02-22 18:56:42 +04:00
mercury 6074d40643 update version 2025-02-22 18:52:17 +04:00
mercury 4b1df94325 Revert "add clash mode selector for sing-box clients"
This reverts commit fb22744fa7.
2025-02-22 18:51:49 +04:00
mercury 232c75d5bf Merge branch 'dev' of github.com:mercurykd/vpnbot into dev 2025-02-22 18:50:32 +04:00
mercury 5e860a4896 fix addruleset for block outbound 2025-02-22 18:47:36 +04:00
Konstantin 5b05486b98 Merge pull request #35 from legiz-ru/dev
add clash mode selector for sing-box clients
2025-02-13 10:13:38 +04:00
legiz-ru fb22744fa7 add clash mode selector for sing-box clients 2025-02-13 08:11:20 +03:00
mercury af812b7c93 vless: stats collect improve 2025-02-12 13:29:08 +04:00
mercury 3302ca8871 vless stats: fix delete user 2025-02-12 12:50:39 +04:00
mercury 2c5eff03d5 vless stats: fix reset user stats 2025-02-12 00:25:23 +04:00
mercury a8a203041f vless stats: fix reset user stats 2025-02-11 22:48:47 +04:00
11 changed files with 374 additions and 108 deletions
+2
View File
@@ -26,3 +26,5 @@ docker-compose.override.yml
backup.json
app/webapp/override/
.rest
subscription.php
+308 -82
View File
@@ -40,7 +40,7 @@ class Bot
$this->reg = '~' . implode('|', [
'GET / HTTP',
'GET /favicon.ico HTTP',
preg_quote($this->getHashBot())
preg_quote($this->getHashBot(1))
]) . '~';
}
@@ -162,6 +162,9 @@ class Bot
case preg_match('~^/switchBanIp$~', $this->input['callback'], $m):
$this->switchBanIp();
break;
case preg_match('~^/switchMonthlyStats$~', $this->input['callback'], $m):
$this->switchMonthlyStats();
break;
case preg_match('~^/setIpLimit$~', $this->input['callback'], $m):
$this->setIpLimit();
break;
@@ -241,8 +244,7 @@ class Bot
$this->addLinkDomain();
break;
case preg_match('~^/id$~', $this->input['message'], $m):
$this->send($this->input['chat'], $this->input['from'], $this->input['message_id']);
$this->send($this->input['chat'], $this->input['chat'], $this->input['message_id']);
$this->send($this->input['chat'], "your id: {$this->input['from']}\nchat id: {$this->input['chat']}", $this->input['message_id']);
break;
case preg_match('~^/adguardChBr$~', $this->input['callback'], $m):
$this->adguardChBr();
@@ -755,11 +757,11 @@ class Bot
'download' => 0,
'upload' => 0,
];
foreach ($p['clients'] as $k => $v) {
$p['clients'][$k]['global']['download'] += $v['session']['download'];
$p['clients'][$k]['session']['download'] = 0;
$p['clients'][$k]['global']['upload'] += $v['session']['upload'];
$p['clients'][$k]['session']['upload'] = 0;
foreach ($p['users'] as $k => $v) {
$p['users'][$k]['global']['download'] += $v['session']['download'];
$p['users'][$k]['session']['download'] = 0;
$p['users'][$k]['global']['upload'] += $v['session']['upload'];
$p['users'][$k]['session']['upload'] = 0;
}
$this->setXrayStats($p);
}
@@ -993,7 +995,7 @@ class Bot
{
$r = $this->send(
$this->input['chat'],
"@{$this->input['username']} enter pass",
"@{$this->input['username']} enter password",
$this->input['message_id'],
reply: 'enter password',
);
@@ -1011,7 +1013,7 @@ class Bot
$this->input['chat'],
"@{$this->input['username']} enter name",
$this->input['message_id'],
reply: 'enter password',
reply: 'enter name',
);
$_SESSION['reply'][$r['result']['message_id']] = [
'start_message' => $this->input['message_id'],
@@ -1188,8 +1190,7 @@ class Bot
$this->ssh('ssserver -v -d -c /config.json', 'ss');
$this->ssh('sslocal -v -d -c /config.json', 'proxy');
$this->sd($c, 1);
if (!empty($nomenu)) {
if (empty($nomenu)) {
$this->menu('ss');
}
}
@@ -1338,6 +1339,7 @@ class Bot
$this->checkVersion();
$this->checkBackup($period);
$this->checkLogs($period);
$this->checkResetXrayStats($period);
$this->checkCert();
$this->autoAnalyzeLogs();
$this->xrayStatsUser();
@@ -1357,14 +1359,22 @@ class Bot
'upload' => $tu,
];
if (!empty($users = $x['inbounds'][0]['settings']['clients'])) {
$tmp = [];
foreach ($users as $k => $v) {
$d = json_decode($this->ssh('xray api stats --server=127.0.0.1:8080 -name "user>>>' . $v['email'] . '>>>traffic>>>downlink" 2>&1', 'xr'), true)['stat']['value'] ?: 0;
$u = json_decode($this->ssh('xray api stats --server=127.0.0.1:8080 -name "user>>>' . $v['email'] . '>>>traffic>>>uplink" 2>&1', 'xr'), true)['stat']['value'] ?: 0;
$p['users'][$k]['session'] = [
'download' => $d,
'upload' => $u,
$tmp[$k] = [
'session' => [
'download' => $d,
'upload' => $u,
],
'global' => [
'download' => $p['users'][$k]['global']['download'],
'upload' => $p['users'][$k]['global']['upload'],
]
];
}
$p['users'] = $tmp;
}
$this->setXrayStats($p);
} catch (\Throwable $th) {
@@ -1437,6 +1447,29 @@ class Bot
}
}
public function checkResetXrayStats($delta)
{
$pac = $this->getPacConf();
if (!empty($pac['reset_monthly'])) {
$now = strtotime(date('Y-m-d H:i:s'));
$start = strtotime('first day of previous month midnight');
$period = strtotime('1 month', 0);
if (
!empty($start)
&& !empty($period)
&& empty($this->backup)
&& $now - $start >= 0
&& (($now - $start) % $period < $delta)
) {
$this->resetXrStats(1);
require __DIR__ . '/config.php';
foreach ($c['admin'] as $admin) {
$this->send($admin, "vless: reset stats");
}
}
}
}
public function checkLogs($delta)
{
$c = $this->getPacConf();
@@ -3388,10 +3421,14 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/subnet {$wgpage}_" . ($page - 1 >= 0 ? $page - 1 : $all - 1) . ($openconnect ? '_1' : ''),
],
[
'text' => $page + 1,
'callback_data' => "/subnet {$wgpage}_$page" . ($openconnect ? '_1' : ''),
],
[
'text' => '>>',
'callback_data' => "/subnet {$wgpage}_" . ($page < $all - 1 ? $page + 1 : 0) . ($openconnect ? '_1' : ''),
]
],
];
}
}
@@ -3627,10 +3664,10 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/menu wg " . ($page - 1 >= 0 ? $page - 1 : $all - 1),
],
// [
// 'text' => 'all',
// 'callback_data' => "/menu wg -1",
// ],
[
'text' => $page + 1,
'callback_data' => "/menu wg $page",
],
[
'text' => '>>',
'callback_data' => "/menu wg " . ($page < $all - 1 ? $page + 1 : 0),
@@ -4130,10 +4167,14 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/$menu " . ($page - 1 >= 0 ? $page - 1 : $all - 1),
],
[
'text' => $page + 1,
'callback_data' => "/$menu $page",
],
[
'text' => '>>',
'callback_data' => "/$menu " . ($page < $all - 1 ? $page + 1 : 0),
]
],
];
}
$data[] = [
@@ -4269,6 +4310,43 @@ DNS-over-HTTPS with IP:
$this->menu('wg', 0);
}
public function alignColumns(array $columns): string
{
// Находим максимальную длину для каждого столбца
$columnLengths = [];
foreach ($columns as $column) {
$maxLength = 0;
foreach ($column as $cell) {
$len = mb_strlen($cell, 'UTF-8');
$maxLength = max($maxLength, $len);
}
$columnLengths[] = $maxLength;
}
// Получаем количество строк из первого столбца
$rowCount = count($columns[0]);
$columnCount = count($columns);
// Формируем строки с выравниванием
$result = [];
for ($row = 0; $row < $rowCount; $row++) {
$line = '';
for ($col = 0; $col < $columnCount; $col++) {
$cell = $columns[$col][$row];
$padding = str_repeat(' ', $columnLengths[$col] - mb_strlen($cell, 'UTF-8'));
$line .= $cell . $padding;
// Добавляем разделитель между столбцами, кроме последнего
if ($col < $columnCount - 1) {
$line .= ' '; // Два пробела между столбцами
}
}
$result[] = $line;
}
return implode("\n", $result);
}
public function menu($type = false, $arg = false, $return = false)
{
$conf = $this->getPacConf();
@@ -4289,26 +4367,70 @@ DNS-over-HTTPS with IP:
$f = '/docker/compose';
$c = yaml_parse_file($f)['services'];
$main[] = 'v' . getenv('VER') . " $branch" . ($update ? ' (have updates)' : '');
$main[] = '';
$main[] = $cron;
$main[] = $this->i18n($backup ? 'on' : 'off') . ' autobackup' . ($backup ? " $backup" : '');
$main[] = $this->i18n($conf['autoupdate'] ? 'on' : 'off') . ' autoupdate';
$main[] = $this->i18n($conf['autoscan'] ? 'on' : 'off') . ' autoscan';
$main[] = $this->i18n($conf['autodeny'] ? 'on' : 'off') . ' autoblock' . ($conf['deny'] ? ': ' . count($conf['deny']) : '');
$main[] = '';
$main[] = $this->i18n($c['wg'] ? 'on' : 'off') . ' ' . getenv('WGPORT') . ' Wireguard';
$main[] = $this->i18n($c['wg1'] ? 'on' : 'off') . ' ' . getenv('WG1PORT') . ' Wireguard 1';
$main[] = $this->i18n($c['tg'] ? 'on' : 'off') . ' ' . getenv('TGPORT') . ' MTProto';
$main[] = $this->i18n($c['ad'] ? 'on' : 'off') . ' 853 AdguardHome DoT';
$main[] = $this->i18n($c['ss'] ? 'on' : 'off') . ' 8388 Shadowsocks';
if (!empty($conf['domain'])) {
$main[] = '';
$oc = $this->getHashSubdomain('oc');
$np = $this->getHashSubdomain('np');
$main[] = $conf['domain'] ? "Domains:\n{$conf['domain']}\n$np.{$conf['domain']} (for naiveproxy)\n$oc.{$conf['domain']} (for openconnect)" . ($conf['adguardkey'] ? "\n{$conf['adguardkey']}.{$conf['domain']} (for adguard DoT)" : '') : $this->i18n('domain explain');
$ssl = $this->expireCert();
$main[] = $conf['domain'] ? "\nSSL: " . ($ssl ? date('Y-m-d H:i:s', $this->expireCert()) . "\n" . $this->domainsCert() : 'none') : '';
if (!empty($conf['domain'])) {
$ssl_expiry = $this->expireCert();
$certs = $this->domainsCert() ?: [];
$main[] = "<blockquote>";
$main[] = "Domains:";
$main[] = $conf['domain'] . (in_array($conf['domain'], $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
$main[] = 'naive ' . "$np.{$conf['domain']}" . (in_array("$np.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
$main[] = 'openconnect ' . "$oc.{$conf['domain']}" . (in_array("$oc.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
if (!empty($conf['adguardkey'])) {
$main[] = "{$conf['adguardkey']}.{$conf['domain']}" . (in_array("{$conf['adguardkey']}.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '') . ' adguard DOT';;
}
$main[] = "</blockquote>";
} else {
$main[] = $this->i18n('domain explain');
}
}
$main[] = '';
$main[] = '<code>';
$main[] = $this->alignColumns([
[
$this->i18n($this->ssh($this->getPacConf()['amnezia'] ? 'awg' : 'wg', 'wg') ? 'on' : 'off') . ' ' . $this->i18n($this->getPacConf()['amnezia'] ? 'amnezia' : 'wg_title'),
$this->i18n($this->ssh($this->getPacConf()['wg1_amnezia'] ? 'awg' : 'wg', 'wg1') ? 'on' : 'off') . ' ' . $this->i18n($this->getPacConf()['wg1_amnezia'] ? 'amnezia' : 'wg_title'),
$this->i18n($this->ssh('pgrep xray', 'xr') ? 'on' : 'off') . ' ' . $this->i18n('xray'),
$this->i18n($this->ssh('pgrep caddy', 'np') ? 'on' : 'off') . ' ' . $this->i18n('naive'),
$this->i18n($this->ssh('pgrep ocserv', 'oc') ? 'on' : 'off') . ' ' . $this->i18n('ocserv'),
$this->i18n($this->ssh('pgrep mtproto-proxy', 'tg') ? 'on' : 'off') . ' ' . $this->i18n('mtproto'),
$this->i18n(exec("JSON=1 timeout 2 dnslookup google.com ad") ? 'on' : 'off') . ' ' . $this->i18n('ad_title'),
$this->i18n($this->ssh('pgrep ssserver', 'ss') ? 'on' : 'off') . ' ' . $this->i18n('sh_title'),
$this->i18n($this->warpStatus()) . ' ' . $this->i18n('warp'),
],
[
$this->i18n($c['wg'] ? 'on' : 'off') . ' ' . getenv('WGPORT'),
$this->i18n($c['wg1'] ? 'on' : 'off') . ' ' . getenv('WG1PORT'),
$this->i18n('on') . ' 443',
$this->i18n('on') . ' 443',
$this->i18n('on') . ' 443',
$this->i18n($c['tg'] ? 'on' : 'off') . ' ' . getenv('TGPORT'),
$this->i18n($c['ad'] ? 'on' : 'off') . ' 853',
$this->i18n($c['ss'] ? 'on' : 'off') . ' ' . getenv('SSPORT'),
'',
],
]);
$main[] = '';
$main[] = $this->alignColumns([
[
$this->i18n($backup ? 'on' : 'off') . ' autobackup',
$this->i18n($conf['autoupdate'] ? 'on' : 'off') . ' autoupdate',
$this->i18n($conf['autoscan'] ? 'on' : 'off') . ' autoscan',
],
[
$this->i18n($conf['autodeny'] ? 'on' : 'off') . ' autoblock' . ($conf['deny'] ? ': ' . count($conf['deny']) : ''),
$this->i18n($conf['reset_monthly'] ? 'on' : 'off') . ' autoreset',
$cron,
],
]);
$main[] = '</code>';
}
$menu = [
'main' => [
@@ -4350,7 +4472,7 @@ DNS-over-HTTPS with IP:
'callback_data' => "/menu adguard",
],
[
'text' => $this->i18n('warp') . ': ' . $this->warpStatus(),
'text' => $this->i18n('warp'),
'callback_data' => "/warp",
],
],
@@ -4452,6 +4574,14 @@ DNS-over-HTTPS with IP:
$this->ipMenu();
}
public function switchMonthlyStats()
{
$c = $this->getPacConf();
$c['reset_monthly'] = $c['reset_monthly'] ? 0 : 1;
$this->setPacConf($c);
$this->xray();
}
public function switchIpLimit($limit)
{
$limit = explode(':', $limit);
@@ -4672,10 +4802,14 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/analysisIp " . ($page - 1 >= 0 ? $page - 1 : $all - 1),
],
[
'text' => $page + 1,
'callback_data' => "/analysisIp $page",
],
[
'text' => '>>',
'callback_data' => "/analysisIp " . ($page < $all - 1 ? $page + 1 : 0),
]
],
];
}
}
@@ -4881,10 +5015,14 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/denyList " . ($page - 1 >= 0 ? $page - 1 : $all - 1) . ($white ? " 1" : ' 0'),
],
[
'text' => $page + 1,
'callback_data' => "/denyList $page" . ($white ? " 1" : ' 0'),
],
[
'text' => '>>',
'callback_data' => "/denyList " . ($page < $all - 1 ? $page + 1 : 0) . ($white ? " 1" : ' 0'),
]
],
];
}
$data[] = [
@@ -5304,10 +5442,13 @@ DNS-over-HTTPS with IP:
public function delxr($i)
{
$r = $this->getXray();
$r = $this->getXray();
$st = $this->getXrayStats();
foreach ($r['inbounds'][0]['settings']['clients'] as $k => $v) {
if ($i == $k) {
unset($r['inbounds'][0]['settings']['clients'][$k]);
unset($st['users'][$k]);
$this->setXrayStats($st);
$this->restartXray($r);
$this->adguardXrayClients();
break;
@@ -5335,8 +5476,16 @@ DNS-over-HTTPS with IP:
$p = $this->getPacConf();
$users = array_map(fn ($e) => trim($e), explode(',', $users));
$users = array_map(fn ($e) => explode(':', $e), $users);
foreach ($c['inbounds'][0]['settings']['clients'] as $k => $v) {
$uuids[] = $v['id'];
$emails[] = $v['email'];
}
foreach ($users as $user) {
$uuid = $user[1] ?: trim($this->ssh('xray uuid', 'xr'));
if (in_array($uuid, $uuids ?: []) || in_array($user[0], $emails ?: [])) {
$this->send($this->input['chat'], "user {$user[0]} already exists");
return $this->xray();
}
$c['inbounds'][0]['settings']['clients'][] = $p['transport'] != 'Reality' ? [
'id' => $uuid,
'email' => $user[0],
@@ -5366,20 +5515,22 @@ DNS-over-HTTPS with IP:
$this->send($this->input['chat'], 'wrong format');
return;
}
if (!empty($c['inbounds'][0]['settings']['clients'][$i]['off'])) {
$this->switchXr($i, 1);
$c = $this->getXray();
}
$c['inbounds'][0]['settings']['clients'][$i]['time'] = $time;
}
file_put_contents('/config/xray.json', json_encode($c, JSON_PRETTY_PRINT | JSON_UNESCAPED_UNICODE | JSON_UNESCAPED_SLASHES));
$this->userXr($i);
$this->restartXray($c, 1);
if (!empty($c['inbounds'][0]['settings']['clients'][$i]['off'])) {
$this->switchXr($i, 0, 1);
} else {
$this->userXr($i);
}
}
public function switchXr($i, $nm = 0)
public function switchXr($i, $nm = 0, $time = false)
{
$c = $this->getXray();
unset($c['inbounds'][0]['settings']['clients'][$i]['time']);
if (empty($time)) {
unset($c['inbounds'][0]['settings']['clients'][$i]['time']);
}
if (empty($c['inbounds'][0]['settings']['clients'][$i]['off'])) {
$c['inbounds'][0]['settings']['clients'][$i]['off'] = $c['inbounds'][0]['settings']['clients'][$i]['id'];
$c['inbounds'][0]['settings']['clients'][$i]['id'] = trim($this->ssh('xray uuid', 'xr'));
@@ -5415,19 +5566,18 @@ DNS-over-HTTPS with IP:
public function resetXrUser($i)
{
$c = $this->getXrayStats();
$c['clients'][$i]['global'] = [
'download' => 0,
'upload' => 0,
];
unset($c['users'][$i]);
$this->restartXray($this->getXray());
$this->userXr($i);
}
public function resetXrStats()
public function resetXrStats($nomenu = false)
{
$this->restartXray($this->getXray());
$this->setXrayStats([]);
$this->xray();
if (empty($nomenu)) {
$this->xray();
}
}
public function listXr($i)
@@ -5600,6 +5750,7 @@ DNS-over-HTTPS with IP:
<code>~block~</code>
<code>~warp~</code>
<code>~dns~</code>
<code>~dnspath~</code>
<code>~uid~</code>
<code>~domain~</code>
<code>~directdomain~</code>
@@ -5733,11 +5884,16 @@ DNS-over-HTTPS with IP:
$st = $this->getXrayStats();
$td = $this->getBytes($st['global']['download'] + $st['session']['download']);
$tu = $this->getBytes($st['global']['upload'] + $st['session']['upload']);
$text[] = "$td$tu";
$data[] = [
[
'text' => $this->i18n('reset stats') . ": ↓$td$tu",
'text' => $this->i18n('reset stats'),
'callback_data' => '/resetXrStats',
],
[
'text' => $this->i18n('reset monthly') . ": " . $this->i18n($this->getPacConf()['reset_monthly'] ? 'on' : 'off'),
'callback_data' => '/switchMonthlyStats',
],
];
$data[] = [
[
@@ -5751,7 +5907,6 @@ DNS-over-HTTPS with IP:
'callback_data' => '/addLinkDomain',
],
];
$ip_count = $p['ip_count'] ?: 1;
$data[] = [
[
'text' => $this->i18n('Reality') . ' ' . ($p['transport'] == 'Reality' ? $this->i18n('on') : $this->i18n('off')),
@@ -5761,6 +5916,9 @@ DNS-over-HTTPS with IP:
'text' => $this->i18n('Websocket') . ' ' . ($p['transport'] != 'Reality' ? $this->i18n('on') : $this->i18n('off')),
'callback_data' => "/changeTransport 1",
],
];
$ip_count = $p['ip_count'] ?: 1;
$data[] = [
[
'text' => $this->i18n('ip limit') . ' ' . ($p['ip_limit'] ? ": {$p['ip_limit']} sec & $ip_count" : $this->i18n('off')),
'callback_data' => "/setIpLimit",
@@ -5830,10 +5988,14 @@ DNS-over-HTTPS with IP:
'text' => '<<',
'callback_data' => "/xray " . ($page - 1 >= 0 ? $page - 1 : $all - 1),
],
[
'text' => $page + 1,
'callback_data' => "/xray $page",
],
[
'text' => '>>',
'callback_data' => "/xray " . ($page < $all - 1 ? $page + 1 : 0),
]
],
];
}
$data[] = [
@@ -5988,7 +6150,6 @@ DNS-over-HTTPS with IP:
public function frequencyAnalyze($line, $pac)
{
preg_match('~(?<date>.+)\sfrom\s(?<ip>\d+\.\d+\.\d+\.\d+)(?=.+email:\s(?<email>.+))~', $line, $m);
if (!empty($this->pool)) {
foreach ($this->pool as $i => $j) {
if (!empty($j['ips'])) {
@@ -6000,6 +6161,9 @@ DNS-over-HTTPS with IP:
}
}
}
if (empty(preg_match('~(?<date>.+)\sfrom\s(?<ip>\d+\.\d+\.\d+\.\d+)(?=.+email:\s(?<email>.+))~', $line, $m))) {
return;
}
if (!empty($m['ip']) && !empty($m['email'])) {
$ip = ip2long($m['ip']);
if (!empty($this->pool[$m['email']]['ip']) && $this->pool[$m['email']]['ip'] != $ip) {
@@ -6010,19 +6174,20 @@ DNS-over-HTTPS with IP:
foreach ($xr['inbounds'][0]['settings']['clients'] as $k => $v) {
if (empty($v['off']) && $v['email'] == $m['email']) {
require __DIR__ . '/config.php';
foreach ($c['admin'] as $k => $v) {
$this->send($v, "vless: {$m['email']} is turned off (limit by one IP)");
foreach ($c['admin'] as $admin) {
$this->send($admin, "vless: {$m['email']} limit ip " . count($this->pool[$m['email']]['ips']) . ' > ' . ($pac['ip_count'] ?: 1), button: [[
[
'text' => $this->i18n($c['off'] ? 'off' : 'on'),
'callback_data' => "/switchXr $k",
],
]]);
}
unset($this->pool[$m['email']]);
$this->switchXr($k, 1);
$flag = 1;
break;
}
}
}
if (empty($flag)) {
$this->pool[$m['email']]['ip'] = $ip;
}
$this->pool[$m['email']]['ip'] = $ip;
}
}
@@ -6151,6 +6316,9 @@ DNS-over-HTTPS with IP:
$hash = $this->getHashBot();
$text[] = "Menu -> " . $this->i18n('xray') . " -> {$c['email']}\n";
if (file_exists(__DIR__ . '/subscription.php')) {
$text[] = "<a href='$scheme://{$domain}/pac$hash/sub?id={$c['id']}'>subscription</a>";
}
$text[] = "<pre><code>{$this->linkXray($i)}</code></pre>\n";
$text[] = "<a href='$scheme://{$domain}/pac$hash?t=s&r=v&s={$c['id']}#{$c['email']}'>import://v2rayng</a>";
@@ -6278,6 +6446,47 @@ DNS-over-HTTPS with IP:
return $c['domain'] ?: $this->ip;
}
public function sub()
{
$xr = $this->getXray();
$pac = $this->getPacConf();
$st = $this->getXrayStats();
$domain = $_GET['cdn'] ?: ($_SERVER['SERVER_NAME'] ?: $this->getDomain($pac['transport'] != 'Reality'));
$scheme = empty($this->nginxGetTypeCert()) ? 'http' : 'https';
$hash = $this->getHashBot();
$flag = true;
foreach ($xr['inbounds'][0]['settings']['clients'] as $k => $v) {
if ($v['id'] == $_GET['id']) {
if (empty($v['off'])) {
$flag = false;
}
$uid = $v['id'];
$email = $v['email'];
break;
}
}
$download = $this->getBytes($st['users'][$k]['global']['download'] + $st['users'][$k]['session']['download']);
$upload = $this->getBytes($st['users'][$k]['global']['upload'] + $st['users'][$k]['session']['upload']);
$singbox = "$scheme://{$domain}/pac$hash/" . base64_encode(serialize([
'h' => $hash,
't' => 'si',
's' => $uid,
]));
$xray = "$scheme://{$domain}/pac$hash/" . base64_encode(serialize([
'h' => $hash,
't' => 's',
's' => $uid,
]));
$clash = "$scheme://{$domain}/pac$hash/" . base64_encode(serialize([
'h' => $hash,
't' => 'cl',
's' => $uid,
]));
$vless = $this->linkXray($k);
$windows = "$scheme://{$domain}/pac$hash?t=si&r=w&s=$uid";
require __DIR__ . '/subscription.php';
}
public function subscription()
{
switch ($_GET['t']) {
@@ -6347,7 +6556,7 @@ DNS-over-HTTPS with IP:
header("Location: hiddify://install-config/?url=$si");
exit;
case 'c':
header("Location: clash://install-config/?url=$cl&name=$email");
header("Location: clash://install-config/?url=$cl&overwrite=no&name=$email");
exit;
case 'w':
$link = htmlspecialchars($si, ENT_XML1, 'UTF-8');
@@ -6487,6 +6696,7 @@ DNS-over-HTTPS with IP:
'"~package~"' => json_encode(array_keys(array_filter($pac['packagelist'] ?: []))),
'"~subnet~"' => json_encode(array_keys(array_filter($pac['subnetlist'] ?: []))),
'~dns~' => "https://$domain/dns-query$hash/$uid",
'~dnspath~' => "/dns-query$hash/$uid",
'~uid~' => $uid,
'~domain~' => $domain,
'~directdomain~' => $pac['domain'],
@@ -6644,7 +6854,7 @@ DNS-over-HTTPS with IP:
if (!empty($route['rules'])) {
foreach ($route['rules'] as $k => $v) {
if (!empty($v['addruleset'])) {
$t[$v['outbound']] = $k;
$t[$v['outbound'] ?: 'block'] = $k;
}
}
$p = $this->getPacConf();
@@ -6793,14 +7003,16 @@ DNS-over-HTTPS with IP:
$this->ssh("nginx -s reload 2>&1", 'up');
}
public function getHashBot()
public function getHashBot($notset = false)
{
$p = $this->getPacConf();
if (!empty($p['hashbot'])) {
return $p['hashbot'];
}
$p['hashbot'] = substr(hash('sha256', $this->key), 0, 8);
$this->setPacConf($p);
if (empty($notset)) {
$this->setPacConf($p);
}
return $p['hashbot'];
}
@@ -6845,7 +7057,13 @@ DNS-over-HTTPS with IP:
public function getHashSubdomain($subdomain)
{
return $this->getPacConf()["{$subdomain}_domain"] ?: substr(hash('sha256', "$subdomain{$this->key}"), 0, 8);
$p = $this->getPacConf();
if (!empty($p["{$subdomain}_domain"])) {
return $p["{$subdomain}_domain"];
}
$p["{$subdomain}_domain"] = substr(hash('sha256', "$subdomain{$this->key}"), 0, 8);
$this->setPacConf($p);
return $p["{$subdomain}_domain"];
}
public function addWg($page)
@@ -7064,7 +7282,7 @@ DNS-over-HTTPS with IP:
if (empty($domains)) {
return false;
}
return implode("\n", array_map(fn($e) => trim($e), explode(',', str_replace('DNS:', '', $domains))));
return array_map(fn($e) => trim($e), explode(',', str_replace('DNS:', '', $domains)));
}
public function updatebot()
@@ -7134,17 +7352,24 @@ DNS-over-HTTPS with IP:
public function configMenu()
{
$conf = $this->getPacConf();
if (!empty($conf['subdomain'])) {
$custom = "\ncustom:\n";
foreach ($conf['subdomain'] as $v) {
$custom .= "$v\n";
}
}
$oc = $this->getHashSubdomain('oc');
$np = $this->getHashSubdomain('np');
$text[] = $conf['domain'] ? "Domains:\n{$conf['domain']}\n$np.{$conf['domain']} (for naiveproxy)\n$oc.{$conf['domain']} (for openconnect)" . ($conf['adguardkey'] ? "\n{$conf['adguardkey']}.{$conf['domain']} (for adguard DoT)" : '') : $this->i18n('domain explain');
$ssl = $this->expireCert();
$text[] = $conf['domain'] ? "\nSSL: " . ($ssl ? date('Y-m-d H:i:s', $this->expireCert()) . "\n" . $this->domainsCert() : 'none') : '';
if (!empty($conf['domain'])) {
$ssl_expiry = $this->expireCert();
$certs = $this->domainsCert() ?: [];
$text[] = "<blockquote>";
$text[] = "Domains:";
$text[] = $conf['domain'] . (in_array($conf['domain'], $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
$text[] = 'naive ' . "$np.{$conf['domain']}" . (in_array("$np.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
$text[] = 'openconnect ' . "$oc.{$conf['domain']}" . (in_array("$oc.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '');
if (!empty($conf['adguardkey'])) {
$text[] = "{$conf['adguardkey']}.{$conf['domain']}" . (in_array("{$conf['adguardkey']}.{$conf['domain']}", $certs) ? ' (ssl: ' . date('Y-m-d H:i:s', $ssl_expiry) . ')' : '') . ' adguard DOT';;
}
$text[] = "</blockquote>";
} else {
$text[] = $this->i18n('domain explain');
}
$data = [
[
@@ -8065,8 +8290,9 @@ DNS-over-HTTPS with IP:
}
echo "$ip\n";
var_dump($r = $this->request('setWebhook', [
'url' => "https://$ip/tlgrm?k={$this->key}",
'certificate' => curl_file_create('/certs/self_public'),
'url' => "https://$ip/tlgrm?k={$this->key}",
'certificate' => curl_file_create('/certs/self_public'),
'allowed_updates' => json_encode(['*']),
]));
if (!empty($r['result']) && $r['result'] == true) {
file_put_contents('/start', 1);
+5 -1
View File
@@ -38,10 +38,14 @@ switch (true) {
// adguard cookie
case preg_match('~^' . preg_quote("/webapp$hash/check") . '~', $_SERVER['REQUEST_URI']) && $webapp:
setcookie('c', substr(hash('sha256', $c['key']), 0, 8), 0, '/');
setcookie('c', $hash, 0, '/');
echo "/adguard$hash/";
break;
case preg_match('~^' . preg_quote("/pac$hash/sub") . '~', $_SERVER['REQUEST_URI']) && file_exists(__DIR__ . '/subscription.php'):
$bot->sub();
exit;
// subs & pac
case preg_match('~^' . preg_quote("/pac$hash") . '~', $_SERVER['REQUEST_URI']):
if (!empty($t = unserialize(base64_decode(explode('/', $_SERVER['REQUEST_URI'])[2])))) { // fix sing-box import
+1
View File
@@ -72,6 +72,7 @@
"uuid": "~uid~",
"network": "tcp",
"flow": "xtls-rprx-vision",
"udp": true,
"tls": true,
"reality-opts": {
"public-key": "~public_key~",
+14 -6
View File
@@ -42,10 +42,18 @@ services:
depends_on:
php:
condition: service_healthy
ng:
condition: service_started
ad:
condition: service_started
ss:
condition: service_started
xr:
condition: service_started
oc:
condition: service_started
np:
condition: service_started
env_file:
- path: ./.env
required: true # default
@@ -79,9 +87,6 @@ services:
- 80:80
hostname: nginx
container_name: nginx-${VER}
depends_on:
up:
condition: service_started
env_file:
- path: ./.env
required: true # default
@@ -95,6 +100,9 @@ services:
xray:
ipv4_address: 10.10.1.2
logging: *default-logging
depends_on:
php:
condition: service_healthy
php:
image: mercurykd/vpnbot-php:1.7
build:
@@ -147,7 +155,7 @@ services:
timeout: 5s
retries: 5
service:
image: mercurykd/vpnbot-php:1.6
image: mercurykd/vpnbot-php:1.7
build:
dockerfile: dockerfile/php.dockerfile
args:
@@ -432,7 +440,7 @@ services:
ipv4_address: 10.10.0.12
logging: *default-logging
wp:
image: mercurykd/vpnbot-wp:1.2
image: mercurykd/vpnbot-wp:1.3
build:
dockerfile: dockerfile/warp.dockerfile
args:
@@ -442,7 +450,7 @@ services:
devices:
- /dev/net/tun:/dev/net/tun
volumes:
- ./config/.profile:/root/.ashrc:ro
- ./config/.profile:/root/.bashrc:ro
- ./ssh:/ssh
- ./config/sshd_config:/etc/ssh/sshd_config
- ./config:/config
+3 -13
View File
@@ -1,16 +1,6 @@
FROM ubuntu:22.04 AS build
RUN apt update && apt install -y curl gpg lsb-release \
FROM ubuntu:22.04
RUN apt update && apt install -y curl gpg socat jq lsb-release openssh-server \
&& curl -fsSL https://pkg.cloudflareclient.com/pubkey.gpg | gpg --yes --dearmor --output /usr/share/keyrings/cloudflare-warp-archive-keyring.gpg \
&& echo "deb [signed-by=/usr/share/keyrings/cloudflare-warp-archive-keyring.gpg] https://pkg.cloudflareclient.com/ $(lsb_release -cs) main" | tee /etc/apt/sources.list.d/cloudflare-client.list \
&& apt update && apt install -y cloudflare-warp
FROM alpine:3.17
ARG GLIBC_VERSION=2.34-r0
COPY --from=build /usr/bin/warp-cli /usr/bin/warp-svc /usr/local/bin/
RUN apk add --no-cache dbus-libs wget socat openssh-server jq curl \
&& mkdir /tmp/glibc-pkgs \
&& for PKG in glibc-$GLIBC_VERSION.apk glibc-bin-$GLIBC_VERSION.apk; do wget -q --directory-prefix /tmp/glibc-pkgs https://github.com/sgerrand/alpine-pkg-glibc/releases/download/$GLIBC_VERSION/$PKG; done \
&& apk add --no-cache --allow-untrusted --force-overwrite /tmp/glibc-pkgs/* \
&& rm -rf /tmp/glibc-pkgs \
&& /usr/glibc-compat/sbin/ldconfig /lib /usr/glibc-compat/lib \
&& apt update && apt install -y cloudflare-warp \
&& mkdir /root/.ssh
+4 -2
View File
@@ -1,7 +1,7 @@
b:
docker compose build
u: # запуск контейнеров
$(eval IP := $(shell curl -s -t 1 2ip.io || curl -s -t 1 ipinfo.io/ip || curl -s -t 1 ifconfig.me))
$(eval IP := $(shell hostname -I | awk '{print $$1}'))
bash ./update/update.sh &
touch ./override.env ./docker-compose.override.yml
IP=$(IP) VER=$(shell git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate
@@ -32,7 +32,7 @@ up: # консоль сервиса
ad: # консоль сервиса
docker compose exec ad /bin/sh
wp: # консоль сервиса
docker compose exec wp /bin/sh
docker compose exec wp bash
proxy: # консоль сервиса
docker compose exec proxy /bin/sh
tg: # консоль сервиса
@@ -41,6 +41,8 @@ xr: # консоль сервиса
docker compose exec xr /bin/sh
oc: # консоль сервиса
docker compose exec oc /bin/sh
service: # консоль сервиса
docker compose exec service /bin/sh
clean:
docker image prune
docker builder prune
+4 -3
View File
@@ -1,9 +1,10 @@
cat /ssh/key.pub > /root/.ssh/authorized_keys
ssh-keygen -A
exec /usr/sbin/sshd -D -e "$@" &
echo 'HostKeyAlgorithms +ssh-rsa' >> /etc/ssh/sshd_config
echo 'PubkeyAcceptedKeyTypes +ssh-rsa' >> /etc/ssh/sshd_config
service ssh start
off=$(cat /config/pac.json | jq -r .warpoff)
key=$(cat /config/pac.json | jq -r .warp)
if [ "$off" == 'null' ]
if [ "$off" = 'null' ]
then
warp-svc > /dev/null &
sleep 3
Binary file not shown.
+1 -1
View File
@@ -38,7 +38,7 @@ do
curl -H "Content-Type: application/json" -X POST https://api.telegram.org/bot$key/editMessageText -d "$(cat $pwd/update/curl | sed 's/"text":"~t~"/"text": "launching the bot"/')"
> $pwd/update/key
> $pwd/update/curl
IP=$(curl -s -t 1 2ip.io || curl -s -t 1 ipinfo.io/ip || curl -s -t 1 ifconfig.me) VER=$(git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate
IP=$(hostname -I | awk '{print $1}') VER=$(git describe --tags) docker compose --env-file ./.env --env-file ./override.env up -d --force-recreate
bash $pwd/update/update.sh &
exit 0
fi
+32
View File
@@ -1,3 +1,35 @@
04.07.2025 v2.23
- фикс двойного /id
- фикс отображения статы vless на мобилке
- страница подписок app/subscription.php
18.06.2025 v2.22
- фикс определения айпи при запуске
11.06.2025 v2.21
- пагинация в списках
20.05.2025 v2.20
- коррекция главного меню
- vless: опция обнуления статы ежемесячно
17.05.2025 v2.19
- фикс падения vless при одинаковом имени пользователей
- фикс падения vless при установке таймера для выключенного пользователя
- подсветка в меню работы процесса контейнера
- overwrite=no для импорта клеш подписки (legiz)
18.04.2025 v2.18
- фикс отсутствия ssl при первом старте
- iplimit уведомляет без отключения пользователя
- включение udp в mihomo-шаблоне
- удаление лишнего образа пхп
07.04.2025 v2.17
- фикс циклической перезагрузки панели adguardHome
07.04.2025 v2.16
- фикс warp
07.04.2025 v2.15
- миграция поддоменов np/oc вместе в с бэкапом
02.03.2025 v2.14
- vless ip limit: фикс выключения юзера
22.02.2025 v2.13
- vless: улучшение сбора статы
- vless: фикс добавления правил srs для block outbound
11.02.2025 v2.12
- vless: хранение статы в отдельном файле
- vless ip limit: возможность указать кол-во айпи