build-reject-domainset.ts 6.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161
  1. // @ts-check
  2. import path from 'node:path';
  3. import process from 'node:process';
  4. import { processHosts, processFilterRules, processDomainLists } from './lib/parse-filter';
  5. import { HOSTS, ADGUARD_FILTERS, PREDEFINED_WHITELIST, DOMAIN_LISTS, HOSTS_EXTRA, DOMAIN_LISTS_EXTRA, ADGUARD_FILTERS_EXTRA, PHISHING_DOMAIN_LISTS_EXTRA, PHISHING_HOSTS_EXTRA, ADGUARD_FILTERS_WHITELIST } from './constants/reject-data-source';
  6. import { compareAndWriteFile } from './lib/create-file';
  7. import { readFileByLine, readFileIntoProcessedArray } from './lib/fetch-text-by-line';
  8. import { task } from './trace';
  9. // tldts-experimental is way faster than tldts, but very little bit inaccurate
  10. // (since it is hashes based). But the result is still deterministic, which is
  11. // enough when creating a simple stat of reject hosts.
  12. import { SHARED_DESCRIPTION } from './lib/constants';
  13. import { getPhishingDomains } from './lib/get-phishing-domains';
  14. import { setAddFromArray } from './lib/set-add-from-array';
  15. import { appendArrayInPlace } from './lib/append-array-in-place';
  16. import { OUTPUT_INTERNAL_DIR, SOURCE_DIR } from './constants/dir';
  17. import { DomainsetOutput } from './lib/create-file';
  18. export const buildRejectDomainSet = task(require.main === module, __filename)(async (span) => {
  19. const rejectOutput = new DomainsetOutput(span, 'reject')
  20. .withTitle('Sukka\'s Ruleset - Reject Base')
  21. .withDescription([
  22. ...SHARED_DESCRIPTION,
  23. '',
  24. 'The domainset supports AD blocking, tracking protection, privacy protection, anti-phishing, anti-mining',
  25. '',
  26. 'Build from:',
  27. ...HOSTS.map(host => ` - ${host[0]}`),
  28. ...DOMAIN_LISTS.map(domainList => ` - ${domainList[0]}`),
  29. ...ADGUARD_FILTERS.map(filter => ` - ${Array.isArray(filter) ? filter[0] : filter}`)
  30. ]);
  31. const rejectExtraOutput = new DomainsetOutput(span, 'reject_extra')
  32. .withTitle('Sukka\'s Ruleset - Reject Extra')
  33. .withDescription([
  34. ...SHARED_DESCRIPTION,
  35. '',
  36. 'The domainset supports AD blocking, tracking protection, privacy protection, anti-phishing, anti-mining',
  37. '',
  38. 'Build from:',
  39. ...HOSTS_EXTRA.map(host => ` - ${host[0]}`),
  40. ...DOMAIN_LISTS_EXTRA.map(domainList => ` - ${domainList[0]}`),
  41. ...ADGUARD_FILTERS_EXTRA.map(filter => ` - ${Array.isArray(filter) ? filter[0] : filter}`),
  42. ...PHISHING_DOMAIN_LISTS_EXTRA.map(domainList => ` - ${domainList[0]}`),
  43. ...PHISHING_HOSTS_EXTRA.map(host => ` - ${host[0]}`)
  44. ]);
  45. const appendArrayToRejectOutput = rejectOutput.addFromDomainset.bind(rejectOutput);
  46. const appendArrayToRejectExtraOutput = rejectExtraOutput.addFromDomainset.bind(rejectExtraOutput);
  47. /** Whitelists */
  48. const filterRuleWhitelistDomainSets = new Set(PREDEFINED_WHITELIST);
  49. // Parse from AdGuard Filters
  50. const shouldStop = await span
  51. .traceChild('download and process hosts / adblock filter rules')
  52. .traceAsyncFn(async (childSpan) => {
  53. // eslint-disable-next-line sukka/no-single-return -- not single return
  54. let shouldStop = false;
  55. await Promise.all([
  56. // Parse from remote hosts & domain lists
  57. HOSTS.map(entry => processHosts(childSpan, ...entry).then(appendArrayToRejectOutput)),
  58. HOSTS_EXTRA.map(entry => processHosts(childSpan, ...entry).then(appendArrayToRejectExtraOutput)),
  59. DOMAIN_LISTS.map(entry => processDomainLists(childSpan, ...entry).then(appendArrayToRejectOutput)),
  60. DOMAIN_LISTS_EXTRA.map(entry => processDomainLists(childSpan, ...entry).then(appendArrayToRejectExtraOutput)),
  61. ADGUARD_FILTERS.map(
  62. entry => processFilterRules(childSpan, ...entry)
  63. .then(({ white, black, foundDebugDomain }) => {
  64. if (foundDebugDomain) {
  65. // eslint-disable-next-line sukka/no-single-return -- not single return
  66. shouldStop = true;
  67. // we should not break here, as we want to see full matches from all data source
  68. }
  69. setAddFromArray(filterRuleWhitelistDomainSets, white);
  70. appendArrayToRejectOutput(black);
  71. })
  72. ),
  73. ADGUARD_FILTERS_EXTRA.map(
  74. entry => processFilterRules(childSpan, ...entry)
  75. .then(({ white, black, foundDebugDomain }) => {
  76. if (foundDebugDomain) {
  77. // eslint-disable-next-line sukka/no-single-return -- not single return
  78. shouldStop = true;
  79. // we should not break here, as we want to see full matches from all data source
  80. }
  81. setAddFromArray(filterRuleWhitelistDomainSets, white);
  82. appendArrayToRejectExtraOutput(black);
  83. })
  84. ),
  85. ADGUARD_FILTERS_WHITELIST.map(entry => processFilterRules(childSpan, ...entry).then(({ white, black }) => {
  86. setAddFromArray(filterRuleWhitelistDomainSets, white);
  87. setAddFromArray(filterRuleWhitelistDomainSets, black);
  88. })),
  89. getPhishingDomains(childSpan).then(appendArrayToRejectExtraOutput),
  90. readFileIntoProcessedArray(path.join(SOURCE_DIR, 'domainset/reject_sukka.conf')).then(appendArrayToRejectOutput),
  91. // Dedupe domainSets
  92. span.traceChildAsync('collect black keywords/suffixes', async () => {
  93. /** Collect DOMAIN-KEYWORD from non_ip/reject.conf for deduplication */
  94. for await (const line of readFileByLine(path.resolve(__dirname, '../Source/non_ip/reject.conf'))) {
  95. const [type, value] = line.split(',');
  96. if (type === 'DOMAIN-KEYWORD') {
  97. rejectOutput.addDomainKeyword(value); // Add for later deduplication
  98. rejectExtraOutput.addDomainKeyword(value); // Add for later deduplication
  99. } else if (type === 'DOMAIN-SUFFIX') {
  100. filterRuleWhitelistDomainSets.add('.' + value);
  101. }
  102. }
  103. })
  104. ].flat());
  105. // eslint-disable-next-line sukka/no-single-return -- not single return
  106. return shouldStop;
  107. });
  108. if (shouldStop) {
  109. process.exit(1);
  110. }
  111. await Promise.all([
  112. rejectOutput.done(),
  113. rejectExtraOutput.done()
  114. ]);
  115. // whitelist
  116. span.traceChildSync('whitelist', () => {
  117. for (const domain of filterRuleWhitelistDomainSets) {
  118. rejectOutput.whitelistDomain(domain);
  119. rejectExtraOutput.whitelistDomain(domain);
  120. }
  121. for (let i = 0, len = rejectOutput.$preprocessed.length; i < len; i++) {
  122. rejectExtraOutput.whitelistDomain(rejectOutput.$preprocessed[i]);
  123. }
  124. });
  125. // Create reject stats
  126. const rejectDomainsStats: string[] = span
  127. .traceChild('create reject stats')
  128. .traceSyncFn(() => {
  129. const results = [];
  130. results.push('=== base ===');
  131. appendArrayInPlace(results, rejectOutput.getStatMap());
  132. results.push('=== extra ===');
  133. appendArrayInPlace(results, rejectExtraOutput.getStatMap());
  134. return results;
  135. });
  136. return Promise.all([
  137. rejectOutput.write(),
  138. rejectExtraOutput.write(),
  139. compareAndWriteFile(
  140. span,
  141. rejectDomainsStats,
  142. path.join(OUTPUT_INTERNAL_DIR, 'reject-stats.txt')
  143. )
  144. ]);
  145. });