Adam Ierymenko 010d0a7d56 Docs and a bit of cleanup. In particular ALL makes no sense for revocations because they have IDs. In that case you would just revoke the COM. 9 anni fa
..
Address.hpp 31db768e4d A bit of code cleanup. 9 anni fa
Array.hpp 4e4fd51117 boring doc stuff 10 anni fa
AtomicCounter.hpp 4931e44998 Implement "weak pointer" behavior on Topology Path canonicalization hash table. 9 anni fa
Buffer.hpp 2bf9145ae6 Outgoing side of packet counter for link quality reporting. Also some cleanup and a cluster mode build fix. 9 anni fa
C25519.cpp 38433e85bf More little stuff in crypto code. 11 anni fa
C25519.hpp 4e4fd51117 boring doc stuff 10 anni fa
Capability.cpp 98152d974a More cleanup and removal of DeferredPackets, will do the latter in a more elegant way. 9 anni fa
Capability.hpp 010d0a7d56 Docs and a bit of cleanup. In particular ALL makes no sense for revocations because they have IDs. In that case you would just revoke the COM. 9 anni fa
CertificateOfMembership.cpp 56febbf2ba . 9 anni fa
CertificateOfMembership.hpp 32fa061700 Compute credential TTL et al. 9 anni fa
CertificateOfOwnership.cpp 72653e54f9 Finish wiring up ipauth and macauth to Network filter. 9 anni fa
CertificateOfOwnership.hpp 72653e54f9 Finish wiring up ipauth and macauth to Network filter. 9 anni fa
CertificateOfRepresentation.hpp 010d0a7d56 Docs and a bit of cleanup. In particular ALL makes no sense for revocations because they have IDs. In that case you would just revoke the COM. 9 anni fa
Cluster.cpp 2bf9145ae6 Outgoing side of packet counter for link quality reporting. Also some cleanup and a cluster mode build fix. 9 anni fa
Cluster.hpp 29ec7bf3a2 Add more specific check in source==self case instead of dumping it. 9 anni fa
Constants.hpp 0f3148bda2 Roots need to respond to lots of WHOISes 9 anni fa
Dictionary.hpp 15c07c58b6 Refactored network config chunking to sign every chunk to prevent stupid DOS attack potential, and implement network config fast propagate (though we probably will not use this for a bit). 9 anni fa
Hashtable.hpp 8a2e8bd585 Rework how paths are set as remote cluster preferred. The code is now clearer and cluster preference indications are now very sticky as they should be. 9 anni fa
Identity.cpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 9 anni fa
Identity.hpp 7036831203 Sign Dictionary in doNETWORK_CONFIG_REQUEST. 9 anni fa
IncomingPacket.cpp 0f3148bda2 Roots need to respond to lots of WHOISes 9 anni fa
IncomingPacket.hpp d5528e4e9a Wire up VERB_USER_MESSAGE in core. 9 anni fa
InetAddress.cpp 6a50291aa2 Fix the case for InetAddress::containsAddress for IPv6 route of :: 9 anni fa
InetAddress.hpp 25f9c294dc Small bug fix and warning removal. 9 anni fa
MAC.hpp 4e4fd51117 boring doc stuff 10 anni fa
Membership.cpp 010d0a7d56 Docs and a bit of cleanup. In particular ALL makes no sense for revocations because they have IDs. In that case you would just revoke the COM. 9 anni fa
Membership.hpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
MulticastGroup.hpp dbf3e6c3c9 Dead code removal. 9 anni fa
Multicaster.cpp 1615ef1114 Rename getBestRoot() etc. 9 anni fa
Multicaster.hpp 1346e31a8e Windows build fixes, Software update fix, warning removal. 9 anni fa
Mutex.hpp 4e4fd51117 boring doc stuff 10 anni fa
Network.cpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
Network.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 9 anni fa
NetworkConfig.cpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 9 anni fa
NetworkConfig.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 9 anni fa
NetworkController.hpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
Node.cpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
Node.hpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
NonCopyable.hpp 4e4fd51117 boring doc stuff 10 anni fa
OutboundMulticast.cpp 4436824faf ipauth characteristic now works with ARP 9 anni fa
OutboundMulticast.hpp cc4bacc199 Cleanup, and implement compression disable flag for networks. 9 anni fa
Packet.cpp 47166c9614 Sigh. Another thinko. 9 anni fa
Packet.hpp 5e6a4e5f5e Send revocations automatically on deauth for instant kill, also fix some issues with the RP. 9 anni fa
Path.cpp a3bdae9735 Work in progress: Path canonicalization refactor. 9 anni fa
Path.hpp a97918f812 Windows build fixes. 9 anni fa
Peer.cpp a577b8d381 Update how controller handles circuit tests -- save results to filesystem. 9 anni fa
Peer.hpp e3b1fc2ac0 Tweak WHOIS path for federation. 9 anni fa
Poly1305.cpp c952fbbd8d Only enable 128-bit Poly1305 on X86_64 right now. Has compilation issues on ARM, but the 64-bit version should be fine. 10 anni fa
Poly1305.hpp 4e4fd51117 boring doc stuff 10 anni fa
README.md 8a2ff0b31e Actual documentation. 9 anni fa
Revocation.cpp 1f74dd4589 Revocation work in progress, add WATCH which is TEE with implicit rate sync (thanks JG@DCVC!), and clean up some cruft in Network. 9 anni fa
Revocation.hpp 010d0a7d56 Docs and a bit of cleanup. In particular ALL makes no sense for revocations because they have IDs. In that case you would just revoke the COM. 9 anni fa
RuntimeEnvironment.hpp 98152d974a More cleanup and removal of DeferredPackets, will do the latter in a more elegant way. 9 anni fa
SHA512.cpp 4e4fd51117 boring doc stuff 10 anni fa
SHA512.hpp 4e4fd51117 boring doc stuff 10 anni fa
Salsa20.cpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 9 anni fa
Salsa20.hpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 9 anni fa
SelfAwareness.cpp d3524f3609 Refactor COM stuff a bit, and respond to COM requests a bit more readily for rapid setup. Will need to revisit later. 9 anni fa
SelfAwareness.hpp b5c86b6ba4 Bunch more path refactoring. Peers no longer forget paths, but do not normally use expired paths. Expired paths might still be tried if nothing else is reachable. 9 anni fa
SharedPtr.hpp 4931e44998 Implement "weak pointer" behavior on Topology Path canonicalization hash table. 9 anni fa
Switch.cpp e3b1fc2ac0 Tweak WHOIS path for federation. 9 anni fa
Switch.hpp d9e4ba1280 Eliminate a little copypasta. 9 anni fa
Tag.cpp 1f74dd4589 Revocation work in progress, add WATCH which is TEE with implicit rate sync (thanks JG@DCVC!), and clean up some cruft in Network. 9 anni fa
Tag.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 9 anni fa
Topology.cpp db87d95c1d getUpstreamPeer issue with interim federated roots 9 anni fa
Topology.hpp af4e79735c Fix "orbit" semantics. Federation works. 9 anni fa
Utils.cpp 42f28bce52 Cleanup and make moons (federated roots) a little easier to deal with. 9 anni fa
Utils.hpp 1d39be61b2 ZeroTier now has link quality measurement. We are not using this yet but decided to put it in to prep for future QoS support and SD-WAN stuff. 9 anni fa
World.hpp 4b11566505 Integrate moon concept into http config bus, and clean up that code quite a bit. 9 anni fa

README.md

ZeroTier Network Hypervisor Core

This directory contains the real ZeroTier: a completely OS-independent global virtual Ethernet switch engine. This is where the magic happens.

Give it wire packets and it gives you Ethernet packets, and vice versa. The core contains absolutely no actual I/O, port configuration, or other OS-specific code (except Utils::getSecureRandom()). It provides a simple C API via /include/ZeroTierOne.h. It's designed to be small and maximally portable for future use on small embedded and special purpose systems.

Code in here follows these guidelines:

  • Keep it minimal, especially in terms of code footprint and memory use.
  • There should be no OS-dependent code here unless absolutely necessary (e.g. getSecureRandom).
  • If it's not part of the core virtual Ethernet switch it does not belong here.
  • No C++11 or C++14 since older and embedded compilers don't support it yet and this should be maximally portable.
  • Minimize the use of complex C++ features since at some point we might end up "minus-minus'ing" this code if doing so proves necessary to port to tiny embedded systems.