Tunneling all sockets by using regular HTTP requests.
If you always suffered from the limitations of proxy or firewall that cannot be avoided, then this tool MIGHT be useful for you.
It is a pair of HTTP client/server programs. The client also acts as a server, capturing all incoming sockets and sending them to the server. The server then sends the received socket data to the target server.
All data between the client and server is encrypted and wrapped in HTTP requests.
HTTPS is supported, but your proxy may block self-signed server certificates. Even with a formal certificate, the proxy may still decrypt the SSL/TLS layer by using fake certificates, and the data is encrypted (again, by this tool) anyway.
HTTPS may be only necessary for WebSocket since it will connect by using the CONNECT method via proxy, which is probably not allowed other than HTTPS.
If there is still any concern, put the server behind a firewall or any reverse proxy that can handle SSL/TLS connections.
The connection WILL be slow, and may not be stable too.
Although the WebSocket method can do way better performance than others, it may not be suitable for all situations.
Since HTTP is stateless, it's better to use this tool with other "real" tunnel protocols, such as SSH, that maintain consistent connections, otherwise, it may consume a lot of sessions, which is not efficient and might be suspected.
- Python 3.8+
- requests, pysocks (for easy client handling)
- fastapi-slim, uvicorn (for easy server implementation)
- websockets (for WebSocket implementation)
- cryptography
- OS: Linux, Windows, MacOS(not tested)
pip install http-tunnel
-
To start server:
http-tunnel -s
-
To start client:
http-tunnel -c
Note: To use proxy, set the
HTTP_PROXY
orHTTPS_PROXY
environment variable. -
For more information:
http-tunnel --help
Support other request methods.-
POST -
PUT -
DELETE -
PATCH -
WebSocket
-
- Support UDP.
Use at your own risk and responsibility.