You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
lal/app/demo/dispatch/dispatch__security.go

78 lines
2.1 KiB
Go

// Copyright 2024, Chef. All rights reserved.
// https://github.com/q191201771/lal
//
// Use of this source code is governed by a MIT-style license
// that can be found in the License file.
//
// Author: Chef (191201771@qq.com)
package main
import (
"github.com/q191201771/lal/pkg/base"
"github.com/q191201771/naza/pkg/nazalog"
"net"
"time"
)
func securityMaxSubSessionPerIp(info base.UpdateInfo) {
if config.MaxSubSessionPerIp <= 0 {
return
}
ip2SubSessions := make(map[string][]base.StatSub)
sessionId2StreamName := make(map[string]string)
for _, g := range info.Groups {
for _, sub := range g.StatSubs {
host, _, err := net.SplitHostPort(sub.RemoteAddr)
if err != nil {
nazalog.Warnf("split host port failed. remote addr=%s", sub.RemoteAddr)
continue
}
ip2SubSessions[host] = append(ip2SubSessions[host], sub)
sessionId2StreamName[sub.SessionId] = g.StreamName
}
}
for ip, subs := range ip2SubSessions {
if len(subs) <= config.MaxSubSessionPerIp {
continue
}
nazalog.Debugf("close session. ip=%s, session count=%d", ip, len(subs))
for _, sub := range subs {
//if sub.Protocol == base.SessionProtocolHlsStr {
// host, _, err := net.SplitHostPort(sub.RemoteAddr)
// if err != nil {
// nazalog.Warnf("split host port failed. remote addr=%s", sub.RemoteAddr)
// continue
// }
// addIpBlacklist(info.ServerId, host, 60)
//}
kickSession(info.ServerId, sessionId2StreamName[sub.SessionId], sub.SessionId)
}
}
}
func securityMaxSubDurationSec(info base.UpdateInfo) {
if config.MaxSubDurationSec <= 0 {
return
}
now := time.Now()
for _, g := range info.Groups {
for _, sub := range g.StatSubs {
st, err := base.ParseReadableTime(sub.StartTime)
if err != nil {
nazalog.Warnf("parse readable time failed. start time=%s, err=%+v", sub.StartTime, err)
continue
}
diff := int(now.Sub(st).Seconds())
if diff <= config.MaxSubDurationSec {
continue
}
nazalog.Infof("close session. sub session start time=%s, diff=%d", sub.StartTime, diff)
kickSession(info.ServerId, g.StreamName, sub.SessionId)
}
}
}