|
@@ -21,6 +21,7 @@ import (
|
|
|
"os"
|
|
"os"
|
|
|
"os/signal"
|
|
"os/signal"
|
|
|
"path/filepath"
|
|
"path/filepath"
|
|
|
|
|
+ "slices"
|
|
|
"sync"
|
|
"sync"
|
|
|
"syscall"
|
|
"syscall"
|
|
|
"time"
|
|
"time"
|
|
@@ -36,11 +37,18 @@ import (
|
|
|
"github.com/fatedier/frp/pkg/util/version"
|
|
"github.com/fatedier/frp/pkg/util/version"
|
|
|
)
|
|
)
|
|
|
|
|
|
|
|
|
|
+type UnsafeFeature = string
|
|
|
|
|
+
|
|
|
|
|
+const (
|
|
|
|
|
+ TokenSourceExec UnsafeFeature = "TokenSourceExec"
|
|
|
|
|
+)
|
|
|
|
|
+
|
|
|
var (
|
|
var (
|
|
|
cfgFile string
|
|
cfgFile string
|
|
|
cfgDir string
|
|
cfgDir string
|
|
|
showVersion bool
|
|
showVersion bool
|
|
|
strictConfigMode bool
|
|
strictConfigMode bool
|
|
|
|
|
+ allowUnsafe []UnsafeFeature
|
|
|
)
|
|
)
|
|
|
|
|
|
|
|
func init() {
|
|
func init() {
|
|
@@ -48,6 +56,7 @@ func init() {
|
|
|
rootCmd.PersistentFlags().StringVarP(&cfgDir, "config_dir", "", "", "config directory, run one frpc service for each file in config directory")
|
|
rootCmd.PersistentFlags().StringVarP(&cfgDir, "config_dir", "", "", "config directory, run one frpc service for each file in config directory")
|
|
|
rootCmd.PersistentFlags().BoolVarP(&showVersion, "version", "v", false, "version of frpc")
|
|
rootCmd.PersistentFlags().BoolVarP(&showVersion, "version", "v", false, "version of frpc")
|
|
|
rootCmd.PersistentFlags().BoolVarP(&strictConfigMode, "strict_config", "", true, "strict config parsing mode, unknown fields will cause an errors")
|
|
rootCmd.PersistentFlags().BoolVarP(&strictConfigMode, "strict_config", "", true, "strict config parsing mode, unknown fields will cause an errors")
|
|
|
|
|
+ rootCmd.PersistentFlags().StringSliceVarP(&allowUnsafe, "allow_unsafe", "", []string{}, "allowed unsafe features, one or more of: TokenSourceExec")
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
var rootCmd = &cobra.Command{
|
|
var rootCmd = &cobra.Command{
|
|
@@ -59,15 +68,17 @@ var rootCmd = &cobra.Command{
|
|
|
return nil
|
|
return nil
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
|
|
+ unsafeFeatures := v1.UnsafeFeatures{TokenSourceExec: slices.Contains(allowUnsafe, TokenSourceExec)}
|
|
|
|
|
+
|
|
|
// If cfgDir is not empty, run multiple frpc service for each config file in cfgDir.
|
|
// If cfgDir is not empty, run multiple frpc service for each config file in cfgDir.
|
|
|
// Note that it's only designed for testing. It's not guaranteed to be stable.
|
|
// Note that it's only designed for testing. It's not guaranteed to be stable.
|
|
|
if cfgDir != "" {
|
|
if cfgDir != "" {
|
|
|
- _ = runMultipleClients(cfgDir)
|
|
|
|
|
|
|
+ _ = runMultipleClients(cfgDir, unsafeFeatures)
|
|
|
return nil
|
|
return nil
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
// Do not show command usage here.
|
|
// Do not show command usage here.
|
|
|
- err := runClient(cfgFile)
|
|
|
|
|
|
|
+ err := runClient(cfgFile, unsafeFeatures)
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
fmt.Println(err)
|
|
fmt.Println(err)
|
|
|
os.Exit(1)
|
|
os.Exit(1)
|
|
@@ -76,7 +87,7 @@ var rootCmd = &cobra.Command{
|
|
|
},
|
|
},
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
-func runMultipleClients(cfgDir string) error {
|
|
|
|
|
|
|
+func runMultipleClients(cfgDir string, unsafeFeatures v1.UnsafeFeatures) error {
|
|
|
var wg sync.WaitGroup
|
|
var wg sync.WaitGroup
|
|
|
err := filepath.WalkDir(cfgDir, func(path string, d fs.DirEntry, err error) error {
|
|
err := filepath.WalkDir(cfgDir, func(path string, d fs.DirEntry, err error) error {
|
|
|
if err != nil || d.IsDir() {
|
|
if err != nil || d.IsDir() {
|
|
@@ -86,7 +97,7 @@ func runMultipleClients(cfgDir string) error {
|
|
|
time.Sleep(time.Millisecond)
|
|
time.Sleep(time.Millisecond)
|
|
|
go func() {
|
|
go func() {
|
|
|
defer wg.Done()
|
|
defer wg.Done()
|
|
|
- err := runClient(path)
|
|
|
|
|
|
|
+ err := runClient(path, unsafeFeatures)
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
fmt.Printf("frpc service error for config file [%s]\n", path)
|
|
fmt.Printf("frpc service error for config file [%s]\n", path)
|
|
|
}
|
|
}
|
|
@@ -111,7 +122,7 @@ func handleTermSignal(svr *client.Service) {
|
|
|
svr.GracefulClose(500 * time.Millisecond)
|
|
svr.GracefulClose(500 * time.Millisecond)
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
-func runClient(cfgFilePath string) error {
|
|
|
|
|
|
|
+func runClient(cfgFilePath string, unsafeFeatures v1.UnsafeFeatures) error {
|
|
|
cfg, proxyCfgs, visitorCfgs, isLegacyFormat, err := config.LoadClientConfig(cfgFilePath, strictConfigMode)
|
|
cfg, proxyCfgs, visitorCfgs, isLegacyFormat, err := config.LoadClientConfig(cfgFilePath, strictConfigMode)
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
return err
|
|
return err
|
|
@@ -127,20 +138,21 @@ func runClient(cfgFilePath string) error {
|
|
|
}
|
|
}
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
- warning, err := validation.ValidateAllClientConfig(cfg, proxyCfgs, visitorCfgs)
|
|
|
|
|
|
|
+ warning, err := validation.ValidateAllClientConfig(cfg, proxyCfgs, visitorCfgs, unsafeFeatures)
|
|
|
if warning != nil {
|
|
if warning != nil {
|
|
|
fmt.Printf("WARNING: %v\n", warning)
|
|
fmt.Printf("WARNING: %v\n", warning)
|
|
|
}
|
|
}
|
|
|
if err != nil {
|
|
if err != nil {
|
|
|
return err
|
|
return err
|
|
|
}
|
|
}
|
|
|
- return startService(cfg, proxyCfgs, visitorCfgs, cfgFilePath)
|
|
|
|
|
|
|
+ return startService(cfg, proxyCfgs, visitorCfgs, unsafeFeatures, cfgFilePath)
|
|
|
}
|
|
}
|
|
|
|
|
|
|
|
func startService(
|
|
func startService(
|
|
|
cfg *v1.ClientCommonConfig,
|
|
cfg *v1.ClientCommonConfig,
|
|
|
proxyCfgs []v1.ProxyConfigurer,
|
|
proxyCfgs []v1.ProxyConfigurer,
|
|
|
visitorCfgs []v1.VisitorConfigurer,
|
|
visitorCfgs []v1.VisitorConfigurer,
|
|
|
|
|
+ unsafeFeatures v1.UnsafeFeatures,
|
|
|
cfgFile string,
|
|
cfgFile string,
|
|
|
) error {
|
|
) error {
|
|
|
log.InitLogger(cfg.Log.To, cfg.Log.Level, int(cfg.Log.MaxDays), cfg.Log.DisablePrintColor)
|
|
log.InitLogger(cfg.Log.To, cfg.Log.Level, int(cfg.Log.MaxDays), cfg.Log.DisablePrintColor)
|
|
@@ -153,6 +165,7 @@ func startService(
|
|
|
Common: cfg,
|
|
Common: cfg,
|
|
|
ProxyCfgs: proxyCfgs,
|
|
ProxyCfgs: proxyCfgs,
|
|
|
VisitorCfgs: visitorCfgs,
|
|
VisitorCfgs: visitorCfgs,
|
|
|
|
|
+ UnsafeFeatures: unsafeFeatures,
|
|
|
ConfigFilePath: cfgFile,
|
|
ConfigFilePath: cfgFile,
|
|
|
})
|
|
})
|
|
|
if err != nil {
|
|
if err != nil {
|