dialParameters_test.go 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586
  1. /*
  2. * Copyright (c) 2018, Psiphon Inc.
  3. * All rights reserved.
  4. *
  5. * This program is free software: you can redistribute it and/or modify
  6. * it under the terms of the GNU General Public License as published by
  7. * the Free Software Foundation, either version 3 of the License, or
  8. * (at your option) any later version.
  9. *
  10. * This program is distributed in the hope that it will be useful,
  11. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  12. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  13. * GNU General Public License for more details.
  14. *
  15. * You should have received a copy of the GNU General Public License
  16. * along with this program. If not, see <http://www.gnu.org/licenses/>.
  17. *
  18. */
  19. package psiphon
  20. import (
  21. "bytes"
  22. "encoding/json"
  23. "fmt"
  24. "io/ioutil"
  25. "os"
  26. "testing"
  27. "time"
  28. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common"
  29. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common/parameters"
  30. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common/prng"
  31. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common/protocol"
  32. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common/values"
  33. )
  34. func TestDialParametersAndReplay(t *testing.T) {
  35. for _, tunnelProtocol := range protocol.SupportedTunnelProtocols {
  36. if !common.Contains(protocol.DefaultDisabledTunnelProtocols, tunnelProtocol) {
  37. runDialParametersAndReplay(t, tunnelProtocol)
  38. }
  39. }
  40. }
  41. var testNetworkID = prng.HexString(8)
  42. type testNetworkGetter struct {
  43. }
  44. func (t *testNetworkGetter) GetNetworkID() string {
  45. return testNetworkID
  46. }
  47. func runDialParametersAndReplay(t *testing.T, tunnelProtocol string) {
  48. t.Logf("Test %s...", tunnelProtocol)
  49. testDataDirName, err := ioutil.TempDir("", "psiphon-dial-parameters-test")
  50. if err != nil {
  51. t.Fatalf("TempDir failed: %s", err)
  52. }
  53. defer os.RemoveAll(testDataDirName)
  54. SetNoticeWriter(ioutil.Discard)
  55. clientConfig := &Config{
  56. PropagationChannelId: "0",
  57. SponsorId: "0",
  58. DataRootDirectory: testDataDirName,
  59. NetworkIDGetter: new(testNetworkGetter),
  60. }
  61. err = clientConfig.Commit(false)
  62. if err != nil {
  63. t.Fatalf("error committing configuration file: %s", err)
  64. }
  65. holdOffTunnelProtocols := protocol.TunnelProtocols{protocol.TUNNEL_PROTOCOL_OBFUSCATED_SSH}
  66. frontingProviderID := prng.HexString(8)
  67. applyParameters := make(map[string]interface{})
  68. applyParameters[parameters.TransformHostNameProbability] = 1.0
  69. applyParameters[parameters.PickUserAgentProbability] = 1.0
  70. applyParameters[parameters.HoldOffTunnelMinDuration] = "1ms"
  71. applyParameters[parameters.HoldOffTunnelMaxDuration] = "10ms"
  72. applyParameters[parameters.HoldOffTunnelProtocols] = holdOffTunnelProtocols
  73. applyParameters[parameters.HoldOffTunnelFrontingProviderIDs] = []string{frontingProviderID}
  74. applyParameters[parameters.HoldOffTunnelProbability] = 1.0
  75. err = clientConfig.SetParameters("tag1", true, applyParameters)
  76. if err != nil {
  77. t.Fatalf("SetParameters failed: %s", err)
  78. }
  79. err = OpenDataStore(clientConfig)
  80. if err != nil {
  81. t.Fatalf("error initializing client datastore: %s", err)
  82. }
  83. defer CloseDataStore()
  84. serverEntries := makeMockServerEntries(tunnelProtocol, frontingProviderID, 100)
  85. canReplay := func(serverEntry *protocol.ServerEntry, replayProtocol string) bool {
  86. return replayProtocol == tunnelProtocol
  87. }
  88. selectProtocol := func(serverEntry *protocol.ServerEntry) (string, bool) {
  89. return tunnelProtocol, true
  90. }
  91. values.SetSSHClientVersionsSpec(
  92. values.NewPickOneSpec([]string{"SSH-2.0-A", "SSH-2.0-B", "SSH-2.0-C"}))
  93. values.SetUserAgentsSpec(
  94. values.NewPickOneSpec([]string{"ua1", "ua2", "ua3"}))
  95. // Test: expected dial parameter fields set
  96. upstreamProxyErrorCallback := func(_ error) {}
  97. dialParams, err := MakeDialParameters(
  98. clientConfig, upstreamProxyErrorCallback, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  99. if err != nil {
  100. t.Fatalf("MakeDialParameters failed: %s", err)
  101. }
  102. if dialParams.ServerEntry != serverEntries[0] {
  103. t.Fatalf("unexpected server entry")
  104. }
  105. if dialParams.NetworkID != testNetworkID {
  106. t.Fatalf("unexpected network ID")
  107. }
  108. if dialParams.IsReplay {
  109. t.Fatalf("unexpected replay")
  110. }
  111. if dialParams.TunnelProtocol != tunnelProtocol {
  112. t.Fatalf("unexpected tunnel protocol")
  113. }
  114. if !protocol.TunnelProtocolUsesMeek(tunnelProtocol) &&
  115. dialParams.DirectDialAddress == "" {
  116. t.Fatalf("missing direct dial fields")
  117. }
  118. if dialParams.DialPortNumber == "" {
  119. t.Fatalf("missing port number fields")
  120. }
  121. if !dialParams.SelectedSSHClientVersion || dialParams.SSHClientVersion == "" || dialParams.SSHKEXSeed == nil {
  122. t.Fatalf("missing SSH fields")
  123. }
  124. if protocol.TunnelProtocolUsesObfuscatedSSH(tunnelProtocol) &&
  125. dialParams.ObfuscatorPaddingSeed == nil {
  126. t.Fatalf("missing obfuscator fields")
  127. }
  128. if dialParams.FragmentorSeed == nil {
  129. t.Fatalf("missing fragmentor field")
  130. }
  131. if protocol.TunnelProtocolUsesMeek(tunnelProtocol) &&
  132. (dialParams.MeekDialAddress == "" ||
  133. dialParams.MeekHostHeader == "" ||
  134. dialParams.MeekObfuscatorPaddingSeed == nil) {
  135. t.Fatalf("missing meek fields")
  136. }
  137. if protocol.TunnelProtocolUsesFrontedMeek(tunnelProtocol) &&
  138. (dialParams.MeekFrontingDialAddress == "" ||
  139. dialParams.MeekFrontingHost == "") {
  140. t.Fatalf("missing meek fronting fields")
  141. }
  142. if protocol.TunnelProtocolUsesMeekHTTP(tunnelProtocol) &&
  143. dialParams.UserAgent == "" {
  144. t.Fatalf("missing meek HTTP fields")
  145. }
  146. if protocol.TunnelProtocolUsesMeekHTTPS(tunnelProtocol) &&
  147. (dialParams.MeekSNIServerName == "" ||
  148. !dialParams.SelectedTLSProfile ||
  149. dialParams.TLSProfile == "") {
  150. t.Fatalf("missing meek HTTPS fields")
  151. }
  152. if protocol.TunnelProtocolUsesQUIC(tunnelProtocol) {
  153. if dialParams.QUICVersion == "" {
  154. t.Fatalf("missing QUIC version field")
  155. }
  156. if protocol.TunnelProtocolUsesFrontedMeekQUIC(tunnelProtocol) {
  157. if dialParams.MeekFrontingDialAddress == "" ||
  158. dialParams.MeekFrontingHost == "" ||
  159. dialParams.MeekSNIServerName == "" {
  160. t.Fatalf("missing fronted QUIC fields")
  161. }
  162. } else {
  163. if dialParams.QUICDialSNIAddress == "" {
  164. t.Fatalf("missing QUIC SNI field")
  165. }
  166. }
  167. }
  168. if dialParams.LivenessTestSeed == nil {
  169. t.Fatalf("missing liveness test fields")
  170. }
  171. if dialParams.APIRequestPaddingSeed == nil {
  172. t.Fatalf("missing API request fields")
  173. }
  174. if common.Contains(holdOffTunnelProtocols, tunnelProtocol) ||
  175. protocol.TunnelProtocolUsesFrontedMeek(tunnelProtocol) {
  176. if dialParams.HoldOffTunnelDuration < 1*time.Millisecond ||
  177. dialParams.HoldOffTunnelDuration > 10*time.Millisecond {
  178. t.Fatalf("unexpected hold-off duration: %v", dialParams.HoldOffTunnelDuration)
  179. }
  180. } else {
  181. if dialParams.HoldOffTunnelDuration != 0 {
  182. t.Fatalf("unexpected hold-off duration: %v", dialParams.HoldOffTunnelDuration)
  183. }
  184. }
  185. dialConfig := dialParams.GetDialConfig()
  186. if dialConfig.UpstreamProxyErrorCallback == nil {
  187. t.Fatalf("missing upstreamProxyErrorCallback")
  188. }
  189. // Test: no replay after dial reported to fail
  190. dialParams.Failed(clientConfig)
  191. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  192. if err != nil {
  193. t.Fatalf("MakeDialParameters failed: %s", err)
  194. }
  195. if dialParams.IsReplay {
  196. t.Fatalf("unexpected replay")
  197. }
  198. // Test: no replay after network ID changes
  199. dialParams.Succeeded()
  200. testNetworkID = prng.HexString(8)
  201. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  202. if err != nil {
  203. t.Fatalf("MakeDialParameters failed: %s", err)
  204. }
  205. if dialParams.NetworkID != testNetworkID {
  206. t.Fatalf("unexpected network ID")
  207. }
  208. if dialParams.IsReplay {
  209. t.Fatalf("unexpected replay")
  210. }
  211. // Test: replay after dial reported to succeed, and replay fields match previous dial parameters
  212. dialParams.Succeeded()
  213. replayDialParams, err := MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  214. if err != nil {
  215. t.Fatalf("MakeDialParameters failed: %s", err)
  216. }
  217. if !replayDialParams.IsReplay {
  218. t.Fatalf("unexpected non-replay")
  219. }
  220. if !replayDialParams.LastUsedTimestamp.After(dialParams.LastUsedTimestamp) {
  221. t.Fatalf("unexpected non-updated timestamp")
  222. }
  223. if replayDialParams.TunnelProtocol != dialParams.TunnelProtocol {
  224. t.Fatalf("mismatching tunnel protocol")
  225. }
  226. if replayDialParams.DirectDialAddress != dialParams.DirectDialAddress ||
  227. replayDialParams.DialPortNumber != dialParams.DialPortNumber {
  228. t.Fatalf("mismatching dial fields")
  229. }
  230. identicalSeeds := func(seed1, seed2 *prng.Seed) bool {
  231. if seed1 == nil {
  232. return seed2 == nil
  233. }
  234. return bytes.Equal(seed1[:], seed2[:])
  235. }
  236. if replayDialParams.SelectedSSHClientVersion != dialParams.SelectedSSHClientVersion ||
  237. replayDialParams.SSHClientVersion != dialParams.SSHClientVersion ||
  238. !identicalSeeds(replayDialParams.SSHKEXSeed, dialParams.SSHKEXSeed) {
  239. t.Fatalf("mismatching SSH fields")
  240. }
  241. if !identicalSeeds(replayDialParams.ObfuscatorPaddingSeed, dialParams.ObfuscatorPaddingSeed) {
  242. t.Fatalf("mismatching obfuscator fields")
  243. }
  244. if !identicalSeeds(replayDialParams.FragmentorSeed, dialParams.FragmentorSeed) {
  245. t.Fatalf("mismatching fragmentor fields")
  246. }
  247. if replayDialParams.MeekFrontingDialAddress != dialParams.MeekFrontingDialAddress ||
  248. replayDialParams.MeekFrontingHost != dialParams.MeekFrontingHost ||
  249. replayDialParams.MeekDialAddress != dialParams.MeekDialAddress ||
  250. replayDialParams.MeekTransformedHostName != dialParams.MeekTransformedHostName ||
  251. replayDialParams.MeekSNIServerName != dialParams.MeekSNIServerName ||
  252. replayDialParams.MeekHostHeader != dialParams.MeekHostHeader ||
  253. !identicalSeeds(replayDialParams.MeekObfuscatorPaddingSeed, dialParams.MeekObfuscatorPaddingSeed) {
  254. t.Fatalf("mismatching meek fields")
  255. }
  256. if replayDialParams.SelectedUserAgent != dialParams.SelectedUserAgent ||
  257. replayDialParams.UserAgent != dialParams.UserAgent {
  258. t.Fatalf("mismatching user agent fields")
  259. }
  260. if replayDialParams.SelectedTLSProfile != dialParams.SelectedTLSProfile ||
  261. replayDialParams.TLSProfile != dialParams.TLSProfile ||
  262. !identicalSeeds(replayDialParams.RandomizedTLSProfileSeed, dialParams.RandomizedTLSProfileSeed) {
  263. t.Fatalf("mismatching TLS fields")
  264. }
  265. if replayDialParams.QUICVersion != dialParams.QUICVersion ||
  266. replayDialParams.QUICDialSNIAddress != dialParams.QUICDialSNIAddress ||
  267. !identicalSeeds(replayDialParams.ObfuscatedQUICPaddingSeed, dialParams.ObfuscatedQUICPaddingSeed) {
  268. t.Fatalf("mismatching QUIC fields")
  269. }
  270. if !identicalSeeds(replayDialParams.LivenessTestSeed, dialParams.LivenessTestSeed) {
  271. t.Fatalf("mismatching liveness test fields")
  272. }
  273. if !identicalSeeds(replayDialParams.APIRequestPaddingSeed, dialParams.APIRequestPaddingSeed) {
  274. t.Fatalf("mismatching API request fields")
  275. }
  276. // Test: no replay after change tactics
  277. applyParameters[parameters.ReplayDialParametersTTL] = "1s"
  278. err = clientConfig.SetParameters("tag2", true, applyParameters)
  279. if err != nil {
  280. t.Fatalf("SetParameters failed: %s", err)
  281. }
  282. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  283. if err != nil {
  284. t.Fatalf("MakeDialParameters failed: %s", err)
  285. }
  286. if dialParams.IsReplay {
  287. t.Fatalf("unexpected replay")
  288. }
  289. // Test: no replay after dial parameters expired
  290. dialParams.Succeeded()
  291. time.Sleep(1 * time.Second)
  292. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  293. if err != nil {
  294. t.Fatalf("MakeDialParameters failed: %s", err)
  295. }
  296. if dialParams.IsReplay {
  297. t.Fatalf("unexpected replay")
  298. }
  299. // Test: no replay after server entry changes
  300. dialParams.Succeeded()
  301. serverEntries[0].ConfigurationVersion += 1
  302. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  303. if err != nil {
  304. t.Fatalf("MakeDialParameters failed: %s", err)
  305. }
  306. if dialParams.IsReplay {
  307. t.Fatalf("unexpected replay")
  308. }
  309. // Test: disable replay elements (partial coverage)
  310. applyParameters[parameters.ReplayDialParametersTTL] = "24h"
  311. applyParameters[parameters.ReplaySSH] = false
  312. applyParameters[parameters.ReplayObfuscatorPadding] = false
  313. applyParameters[parameters.ReplayFragmentor] = false
  314. applyParameters[parameters.ReplayRandomizedTLSProfile] = false
  315. applyParameters[parameters.ReplayObfuscatedQUIC] = false
  316. applyParameters[parameters.ReplayLivenessTest] = false
  317. applyParameters[parameters.ReplayAPIRequestPadding] = false
  318. err = clientConfig.SetParameters("tag3", true, applyParameters)
  319. if err != nil {
  320. t.Fatalf("SetParameters failed: %s", err)
  321. }
  322. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  323. if err != nil {
  324. t.Fatalf("MakeDialParameters failed: %s", err)
  325. }
  326. dialParams.Succeeded()
  327. replayDialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  328. if err != nil {
  329. t.Fatalf("MakeDialParameters failed: %s", err)
  330. }
  331. if !replayDialParams.IsReplay {
  332. t.Fatalf("unexpected non-replay")
  333. }
  334. if identicalSeeds(replayDialParams.SSHKEXSeed, dialParams.SSHKEXSeed) ||
  335. (protocol.TunnelProtocolUsesObfuscatedSSH(tunnelProtocol) &&
  336. identicalSeeds(replayDialParams.ObfuscatorPaddingSeed, dialParams.ObfuscatorPaddingSeed)) ||
  337. identicalSeeds(replayDialParams.FragmentorSeed, dialParams.FragmentorSeed) ||
  338. (protocol.TunnelProtocolUsesMeek(tunnelProtocol) &&
  339. identicalSeeds(replayDialParams.MeekObfuscatorPaddingSeed, dialParams.MeekObfuscatorPaddingSeed)) ||
  340. (protocol.TunnelProtocolUsesMeekHTTPS(tunnelProtocol) &&
  341. identicalSeeds(replayDialParams.RandomizedTLSProfileSeed, dialParams.RandomizedTLSProfileSeed) &&
  342. replayDialParams.RandomizedTLSProfileSeed != nil) ||
  343. (protocol.TunnelProtocolUsesQUIC(tunnelProtocol) &&
  344. identicalSeeds(replayDialParams.ObfuscatedQUICPaddingSeed, dialParams.ObfuscatedQUICPaddingSeed) &&
  345. replayDialParams.ObfuscatedQUICPaddingSeed != nil) ||
  346. identicalSeeds(replayDialParams.LivenessTestSeed, dialParams.LivenessTestSeed) ||
  347. identicalSeeds(replayDialParams.APIRequestPaddingSeed, dialParams.APIRequestPaddingSeed) {
  348. t.Fatalf("unexpected replayed fields")
  349. }
  350. // Test: client-side restrict fronting provider ID
  351. applyParameters[parameters.RestrictFrontingProviderIDs] = []string{frontingProviderID}
  352. applyParameters[parameters.RestrictFrontingProviderIDsClientProbability] = 1.0
  353. err = clientConfig.SetParameters("tag4", true, applyParameters)
  354. if err != nil {
  355. t.Fatalf("SetParameters failed: %s", err)
  356. }
  357. dialParams, err = MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntries[0], false, 0, 0)
  358. if protocol.TunnelProtocolUsesFrontedMeek(tunnelProtocol) {
  359. if err == nil {
  360. if dialParams != nil {
  361. t.Fatalf("unexpected MakeDialParameters success")
  362. }
  363. }
  364. } else {
  365. if err != nil {
  366. t.Fatalf("MakeDialParameters failed: %s", err)
  367. }
  368. }
  369. applyParameters[parameters.RestrictFrontingProviderIDsClientProbability] = 0.0
  370. err = clientConfig.SetParameters("tag5", true, applyParameters)
  371. if err != nil {
  372. t.Fatalf("SetParameters failed: %s", err)
  373. }
  374. // Test: iterator shuffles
  375. for i, serverEntry := range serverEntries {
  376. data, err := json.Marshal(serverEntry)
  377. if err != nil {
  378. t.Fatalf("json.Marshal failed: %s", err)
  379. }
  380. var serverEntryFields protocol.ServerEntryFields
  381. err = json.Unmarshal(data, &serverEntryFields)
  382. if err != nil {
  383. t.Fatalf("json.Unmarshal failed: %s", err)
  384. }
  385. err = StoreServerEntry(serverEntryFields, false)
  386. if err != nil {
  387. t.Fatalf("StoreServerEntry failed: %s", err)
  388. }
  389. if i%10 == 0 {
  390. dialParams, err := MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntry, false, 0, 0)
  391. if err != nil {
  392. t.Fatalf("MakeDialParameters failed: %s", err)
  393. }
  394. dialParams.Succeeded()
  395. }
  396. }
  397. for i := 0; i < 5; i++ {
  398. hasAffinity, iterator, err := NewServerEntryIterator(clientConfig)
  399. if err != nil {
  400. t.Fatalf("NewServerEntryIterator failed: %s", err)
  401. }
  402. if hasAffinity {
  403. t.Fatalf("unexpected affinity server")
  404. }
  405. // Test: the first shuffle should move the replay candidates to the front
  406. for j := 0; j < 10; j++ {
  407. serverEntry, err := iterator.Next()
  408. if err != nil {
  409. t.Fatalf("ServerEntryIterator.Next failed: %s", err)
  410. }
  411. dialParams, err := MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntry, false, 0, 0)
  412. if err != nil {
  413. t.Fatalf("MakeDialParameters failed: %s", err)
  414. }
  415. if !dialParams.IsReplay {
  416. t.Fatalf("unexpected non-replay")
  417. }
  418. }
  419. iterator.Reset()
  420. // Test: subsequent shuffles should not move the replay candidates
  421. allReplay := true
  422. for j := 0; j < 10; j++ {
  423. serverEntry, err := iterator.Next()
  424. if err != nil {
  425. t.Fatalf("ServerEntryIterator.Next failed: %s", err)
  426. }
  427. dialParams, err := MakeDialParameters(clientConfig, nil, canReplay, selectProtocol, serverEntry, false, 0, 0)
  428. if err != nil {
  429. t.Fatalf("MakeDialParameters failed: %s", err)
  430. }
  431. if !dialParams.IsReplay {
  432. allReplay = false
  433. }
  434. }
  435. if allReplay {
  436. t.Fatalf("unexpected all replay")
  437. }
  438. iterator.Close()
  439. }
  440. }
  441. func makeMockServerEntries(
  442. tunnelProtocol string,
  443. frontingProviderID string,
  444. count int) []*protocol.ServerEntry {
  445. serverEntries := make([]*protocol.ServerEntry, count)
  446. for i := 0; i < count; i++ {
  447. serverEntries[i] = &protocol.ServerEntry{
  448. IpAddress: fmt.Sprintf("192.168.0.%d", i),
  449. SshPort: 1,
  450. SshObfuscatedPort: 2,
  451. SshObfuscatedQUICPort: 3,
  452. SshObfuscatedTapDancePort: 4,
  453. SshObfuscatedConjurePort: 5,
  454. MeekServerPort: 6,
  455. MeekFrontingHosts: []string{"www1.example.org", "www2.example.org", "www3.example.org"},
  456. MeekFrontingAddressesRegex: "[a-z0-9]{1,64}.example.org",
  457. FrontingProviderID: frontingProviderID,
  458. LocalSource: protocol.SERVER_ENTRY_SOURCE_EMBEDDED,
  459. LocalTimestamp: common.TruncateTimestampToHour(common.GetCurrentTimestamp()),
  460. }
  461. }
  462. return serverEntries
  463. }