- remove Java plugins (velocity/paper), dashboard, all MC-specific code
(handshake, death_code, varint, hostname-HMAC); available in history pre-v0.2
- merge crates/* into one package with src/bin/{rampart,rampart-manager,rampart-cli}
- ProtocolHandler trait + registry (no implementations yet), universal PoW kept
- XDP: universal L3/L4 filter (xdp/core/) + pluggable hook API (xdp/hooks/),
fix IPv6 saddr bug; clang build verified
- docs: bilingual knowledge base (docs/kb/: attacks x4, defense-levels,
practice x3), rewrite README/architecture for universal concept
- TODO.md v4.0: <=300-line module limit, competitor benchmark section (ref/)
- deploy/CI/docs cleanup: no MC references, new binary names
cargo build/clippy(-D warnings)/test green (55 tests)
73 lines
2.3 KiB
TOML
73 lines
2.3 KiB
TOML
[package]
|
|
name = "rampart"
|
|
version = "0.3.0-dev"
|
|
edition = "2024"
|
|
license = "GPL-3.0-only"
|
|
authors = ["loki"]
|
|
description = "Universal L3/L4/L7 network protection platform"
|
|
|
|
[[bin]]
|
|
name = "rampart"
|
|
path = "src/bin/rampart.rs"
|
|
|
|
[[bin]]
|
|
name = "rampart-manager"
|
|
path = "src/bin/rampart-manager.rs"
|
|
|
|
[[bin]]
|
|
name = "rampart-cli"
|
|
path = "src/bin/rampart-cli.rs"
|
|
|
|
[lints.clippy]
|
|
# Deny — критически важные для безопасности и стабильности
|
|
type_complexity = "allow"
|
|
unwrap_used = "deny"
|
|
panic = "deny"
|
|
dbg_macro = "deny"
|
|
print_stdout = "deny"
|
|
print_stderr = "deny"
|
|
wildcard_imports = "deny"
|
|
exit = "deny"
|
|
# expect разрешён — используется в prometheus метриках при старте
|
|
# cast разрешён — неизбежен в сетевых протоколах
|
|
|
|
[features]
|
|
default = ["store-redis"]
|
|
store-redis = ["dep:redis"]
|
|
geoip = ["dep:maxminddb"]
|
|
xdp = ["dep:libbpf-rs", "dep:libc"]
|
|
io-uring = ["dep:tokio-splice"]
|
|
# Резерв под реализацию HTTP-протокольного обработчика (модель plugin-by-feature).
|
|
# Реализаций пока нет: реестр протоколов пуст и edge-нода требует явного флага.
|
|
protocol-http = []
|
|
|
|
[dependencies]
|
|
tokio = { version = "1", features = ["full"] }
|
|
serde = { version = "1", features = ["derive"] }
|
|
serde_json = "1"
|
|
tracing = "0.1"
|
|
tracing-subscriber = { version = "0.3", features = ["json", "env-filter"] }
|
|
thiserror = "2"
|
|
anyhow = "1"
|
|
dashmap = "6"
|
|
hex = "0.4"
|
|
sha2 = "0.10"
|
|
subtle = "2"
|
|
socket2 = { version = "0.5", features = ["all"] }
|
|
futures = "0.3"
|
|
reqwest = { version = "0.12", default-features = false, features = ["json", "rustls-tls"] }
|
|
prometheus = { version = "0.14", features = ["process"] }
|
|
toml = "0.8"
|
|
rand = { version = "0.8", default-features = false, features = ["std", "std_rng"] }
|
|
clap = { version = "4", features = ["derive"] }
|
|
chrono = { version = "0.4", features = ["serde"] }
|
|
|
|
axum = "0.8"
|
|
tower-http = { version = "0.6", features = ["cors"] }
|
|
jsonwebtoken = "9"
|
|
|
|
redis = { version = "0.27", optional = true, features = ["tokio-comp", "connection-manager"] }
|
|
maxminddb = { version = "0.30", optional = true }
|
|
tokio-splice = { version = "0.2", optional = true }
|
|
libbpf-rs = { version = "0.24", optional = true }
|
|
libc = { version = "0.2", optional = true }
|