meekConn_test.go 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. /*
  2. * Copyright (c) 2021, Psiphon Inc.
  3. * All rights reserved.
  4. *
  5. * This program is free software: you can redistribute it and/or modify
  6. * it under the terms of the GNU General Public License as published by
  7. * the Free Software Foundation, either version 3 of the License, or
  8. * (at your option) any later version.
  9. *
  10. * This program is distributed in the hope that it will be useful,
  11. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  12. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  13. * GNU General Public License for more details.
  14. *
  15. * You should have received a copy of the GNU General Public License
  16. * along with this program. If not, see <http://www.gnu.org/licenses/>.
  17. *
  18. */
  19. package psiphon
  20. import (
  21. "context"
  22. "io/ioutil"
  23. "net/http"
  24. "os"
  25. "testing"
  26. "time"
  27. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common"
  28. "github.com/Psiphon-Labs/psiphon-tunnel-core/psiphon/common/parameters"
  29. utls "github.com/Psiphon-Labs/utls"
  30. )
  31. // MeekModeRelay and MeekModeObfuscatedRoundTrip are tested via meek protocol
  32. // and tactics test cases.
  33. func TestMeekModePlaintextRoundTrip(t *testing.T) {
  34. testDataDirName, err := ioutil.TempDir("", "psiphon-meek-mode-plaintext-round-trip-test")
  35. if err != nil {
  36. t.Fatalf("TempDir failed: %v", err)
  37. }
  38. defer os.RemoveAll(testDataDirName)
  39. serverName := "example.org"
  40. rootCAsFileName,
  41. rootCACertificatePin,
  42. serverCertificatePin,
  43. shutdown,
  44. serverAddr,
  45. dialer := initTestCertificatesAndWebServer(
  46. t, testDataDirName, serverName)
  47. defer shutdown()
  48. params, err := parameters.NewParameters(nil)
  49. if err != nil {
  50. t.Fatalf("parameters.NewParameters failed: %v", err)
  51. }
  52. tlsCache := common.WrapUtlsClientSessionCache(utls.NewLRUClientSessionCache(0), serverAddr)
  53. testCases := []struct {
  54. description string
  55. meekMode MeekMode
  56. verifyServerName string
  57. verifyPins []string
  58. }{
  59. {
  60. meekMode: MeekModePlaintextRoundTrip,
  61. verifyServerName: serverName,
  62. verifyPins: []string{rootCACertificatePin, serverCertificatePin},
  63. },
  64. {
  65. meekMode: MeekModeWrappedPlaintextRoundTrip,
  66. verifyServerName: "",
  67. verifyPins: nil,
  68. },
  69. }
  70. for _, testCase := range testCases {
  71. t.Run(testCase.description, func(t *testing.T) {
  72. meekConfig := &MeekConfig{
  73. Parameters: params,
  74. Mode: testCase.meekMode,
  75. DialAddress: serverAddr,
  76. UseHTTPS: true,
  77. SNIServerName: "not-" + serverName,
  78. VerifyServerName: testCase.verifyServerName,
  79. VerifyPins: testCase.verifyPins,
  80. TLSClientSessionCache: tlsCache,
  81. }
  82. dialConfig := &DialConfig{
  83. TrustedCACertificatesFilename: rootCAsFileName,
  84. CustomDialer: dialer,
  85. }
  86. for _, tlsFragmentClientHello := range []bool{false, true} {
  87. ctx, cancelFunc := context.WithTimeout(context.Background(), 1*time.Second)
  88. defer cancelFunc()
  89. meekConfig.TLSFragmentClientHello = tlsFragmentClientHello
  90. meekConn, err := DialMeek(ctx, meekConfig, dialConfig)
  91. if err != nil {
  92. t.Fatalf("DialMeek failed: %v", err)
  93. }
  94. client := &http.Client{
  95. Transport: meekConn,
  96. }
  97. response, err := client.Get("https://" + serverAddr + "/")
  98. if err != nil {
  99. t.Fatalf("http.Client.Get failed: %v", err)
  100. }
  101. response.Body.Close()
  102. if response.StatusCode != http.StatusOK {
  103. t.Fatalf("unexpected response code: %v", response.StatusCode)
  104. }
  105. err = meekConn.Close()
  106. if err != nil {
  107. t.Fatalf("MeekConn.Close failed: %v", err)
  108. }
  109. }
  110. })
  111. }
  112. }