build-reject-domainset.ts 8.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188
  1. // @ts-check
  2. import path from 'node:path';
  3. import process from 'node:process';
  4. import { processHosts, processFilterRules, processDomainLists } from './lib/parse-filter';
  5. import { HOSTS, ADGUARD_FILTERS, PREDEFINED_WHITELIST, DOMAIN_LISTS, HOSTS_EXTRA, DOMAIN_LISTS_EXTRA, ADGUARD_FILTERS_EXTRA, PHISHING_DOMAIN_LISTS_EXTRA, ADGUARD_FILTERS_WHITELIST } from './constants/reject-data-source';
  6. import { compareAndWriteFile } from './lib/create-file';
  7. import { readFileIntoProcessedArray } from './lib/fetch-text-by-line';
  8. import { task } from './trace';
  9. // tldts-experimental is way faster than tldts, but very little bit inaccurate
  10. // (since it is hashes based). But the result is still deterministic, which is
  11. // enough when creating a simple stat of reject hosts.
  12. import { SHARED_DESCRIPTION } from './constants/description';
  13. import { getPhishingDomains } from './lib/get-phishing-domains';
  14. import { addArrayElementsToSet } from 'foxts/add-array-elements-to-set';
  15. import { appendArrayInPlace } from './lib/append-array-in-place';
  16. import { OUTPUT_INTERNAL_DIR, SOURCE_DIR } from './constants/dir';
  17. import { DomainsetOutput } from './lib/create-file';
  18. const readLocalRejectDomainsetPromise = readFileIntoProcessedArray(path.join(SOURCE_DIR, 'domainset/reject_sukka.conf'));
  19. const readLocalRejectExtraDomainsetPromise = readFileIntoProcessedArray(path.join(SOURCE_DIR, 'domainset/reject_sukka_extra.conf'));
  20. const readLocalRejectRulesetPromise = readFileIntoProcessedArray(path.join(SOURCE_DIR, 'non_ip/reject.conf'));
  21. const readLocalMyRejectRulesetPromise = readFileIntoProcessedArray(path.join(SOURCE_DIR, 'non_ip/my_reject.conf'));
  22. export const buildRejectDomainSet = task(require.main === module, __filename)(async (span) => {
  23. const rejectBaseDescription = [
  24. ...SHARED_DESCRIPTION,
  25. '',
  26. 'The domainset supports AD blocking, tracking protection, privacy protection, anti-phishing, anti-mining',
  27. '',
  28. 'Build from:',
  29. ...HOSTS.map(host => ` - ${host[0]}`),
  30. ...DOMAIN_LISTS.map(domainList => ` - ${domainList[0]}`),
  31. ...ADGUARD_FILTERS.map(filter => ` - ${Array.isArray(filter) ? filter[0] : filter}`)
  32. ];
  33. const rejectOutput = new DomainsetOutput(span, 'reject')
  34. .withTitle('Sukka\'s Ruleset - Reject Base')
  35. .withDescription(rejectBaseDescription);
  36. const rejectExtraOutput = new DomainsetOutput(span, 'reject_extra')
  37. .withTitle('Sukka\'s Ruleset - Reject Extra')
  38. .withDescription([
  39. ...SHARED_DESCRIPTION,
  40. '',
  41. 'The domainset supports AD blocking, tracking protection, privacy protection, anti-phishing, anti-mining',
  42. '',
  43. 'Build from:',
  44. ...HOSTS_EXTRA.map(host => ` - ${host[0]}`),
  45. ...DOMAIN_LISTS_EXTRA.map(domainList => ` - ${domainList[0]}`),
  46. ...ADGUARD_FILTERS_EXTRA.map(filter => ` - ${Array.isArray(filter) ? filter[0] : filter}`),
  47. ...PHISHING_DOMAIN_LISTS_EXTRA.map(domainList => ` - ${domainList[0]}`)
  48. ]);
  49. const appendArrayToRejectOutput = rejectOutput.addFromDomainset.bind(rejectOutput);
  50. const appendArrayToRejectExtraOutput = rejectExtraOutput.addFromDomainset.bind(rejectExtraOutput);
  51. /** Whitelists */
  52. const filterRuleWhitelistDomainSets = new Set(PREDEFINED_WHITELIST);
  53. // Parse from AdGuard Filters
  54. const shouldStop = await span
  55. .traceChild('download and process hosts / adblock filter rules')
  56. .traceAsyncFn(async (childSpan) => {
  57. // eslint-disable-next-line sukka/no-single-return -- not single return
  58. let shouldStop = false;
  59. await Promise.all([
  60. // Parse from remote hosts & domain lists
  61. HOSTS.map(entry => processHosts(childSpan, ...entry).then(appendArrayToRejectOutput)),
  62. HOSTS_EXTRA.map(entry => processHosts(childSpan, ...entry).then(appendArrayToRejectExtraOutput)),
  63. DOMAIN_LISTS.map(entry => processDomainLists(childSpan, ...entry).then(appendArrayToRejectOutput)),
  64. DOMAIN_LISTS_EXTRA.map(entry => processDomainLists(childSpan, ...entry).then(appendArrayToRejectExtraOutput)),
  65. ADGUARD_FILTERS.map(
  66. entry => processFilterRules(childSpan, ...entry)
  67. .then(({ white, black, foundDebugDomain }) => {
  68. if (foundDebugDomain) {
  69. // eslint-disable-next-line sukka/no-single-return -- not single return
  70. shouldStop = true;
  71. // we should not break here, as we want to see full matches from all data source
  72. }
  73. addArrayElementsToSet(filterRuleWhitelistDomainSets, white);
  74. appendArrayToRejectOutput(black);
  75. })
  76. ),
  77. ADGUARD_FILTERS_EXTRA.map(
  78. entry => processFilterRules(childSpan, ...entry)
  79. .then(({ white, black, foundDebugDomain }) => {
  80. if (foundDebugDomain) {
  81. // eslint-disable-next-line sukka/no-single-return -- not single return
  82. shouldStop = true;
  83. // we should not break here, as we want to see full matches from all data source
  84. }
  85. addArrayElementsToSet(filterRuleWhitelistDomainSets, white);
  86. appendArrayToRejectExtraOutput(black);
  87. })
  88. ),
  89. ADGUARD_FILTERS_WHITELIST.map(entry => processFilterRules(childSpan, ...entry).then(({ white, black }) => {
  90. addArrayElementsToSet(filterRuleWhitelistDomainSets, white);
  91. addArrayElementsToSet(filterRuleWhitelistDomainSets, black);
  92. })),
  93. getPhishingDomains(childSpan).then(appendArrayToRejectExtraOutput),
  94. readLocalRejectDomainsetPromise.then(appendArrayToRejectOutput),
  95. readLocalRejectDomainsetPromise.then(appendArrayToRejectExtraOutput),
  96. readLocalRejectExtraDomainsetPromise.then(appendArrayToRejectExtraOutput),
  97. // Dedupe domainSets
  98. // span.traceChildAsync('collect black keywords/suffixes', async () =>
  99. /**
  100. * Collect DOMAIN, DOMAIN-SUFFIX, and DOMAIN-KEYWORD from non_ip/reject.conf for deduplication
  101. * DOMAIN-WILDCARD is not really useful for deduplication, it is only included in AdGuardHome output
  102. */
  103. rejectOutput.addFromRuleset(readLocalRejectRulesetPromise),
  104. rejectExtraOutput.addFromRuleset(readLocalRejectRulesetPromise)
  105. ].flat());
  106. // eslint-disable-next-line sukka/no-single-return -- not single return
  107. return shouldStop;
  108. });
  109. if (shouldStop) {
  110. process.exit(1);
  111. }
  112. await Promise.all([
  113. rejectOutput.done(),
  114. rejectExtraOutput.done()
  115. ]);
  116. // whitelist
  117. span.traceChildSync('whitelist', () => {
  118. for (const domain of filterRuleWhitelistDomainSets) {
  119. rejectOutput.whitelistDomain(domain);
  120. rejectExtraOutput.whitelistDomain(domain);
  121. }
  122. for (let i = 0, len = rejectOutput.$preprocessed.length; i < len; i++) {
  123. rejectExtraOutput.whitelistDomain(rejectOutput.$preprocessed[i]);
  124. }
  125. });
  126. // Create reject stats
  127. const rejectDomainsStats: string[] = span
  128. .traceChild('create reject stats')
  129. .traceSyncFn(() => {
  130. const results = [];
  131. results.push('=== base ===');
  132. appendArrayInPlace(results, rejectOutput.getStatMap());
  133. results.push('=== extra ===');
  134. appendArrayInPlace(results, rejectExtraOutput.getStatMap());
  135. return results;
  136. });
  137. return Promise.all([
  138. rejectOutput.write(),
  139. rejectExtraOutput.write(),
  140. compareAndWriteFile(
  141. span,
  142. rejectDomainsStats,
  143. path.join(OUTPUT_INTERNAL_DIR, 'reject-stats.txt')
  144. ),
  145. compareAndWriteFile(
  146. span,
  147. appendArrayInPlace(
  148. [
  149. '! Title: Sukka\'s Ruleset - Blocklist for AdGuardHome',
  150. '! Last modified: ' + new Date().toUTCString(),
  151. '! Expires: 6 hours',
  152. '! License: https://github.com/SukkaW/Surge/blob/master/LICENSE',
  153. '! Homepage: https://github.com/SukkaW/Surge',
  154. '! Description: The domainset supports AD blocking, tracking protection, privacy protection, anti-phishing, anti-mining',
  155. '!'
  156. ],
  157. appendArrayInPlace(
  158. rejectOutput.adguardhome(),
  159. (
  160. await new DomainsetOutput(span, 'my_reject')
  161. .addFromRuleset(readLocalMyRejectRulesetPromise)
  162. .addFromRuleset(readLocalRejectRulesetPromise)
  163. .done()
  164. ).adguardhome()
  165. )
  166. ),
  167. path.join(OUTPUT_INTERNAL_DIR, 'reject-adguardhome.txt')
  168. )
  169. ]);
  170. });