Adam Ierymenko 31bece7fa0 Add ipauth handling of IPv6 NDP neighbor solicitations and advertisements. IPv6 works well now with ipauth. 8 years ago
..
Address.hpp 31db768e4d A bit of code cleanup. 8 years ago
Array.hpp 4e4fd51117 boring doc stuff 9 years ago
AtomicCounter.hpp 4931e44998 Implement "weak pointer" behavior on Topology Path canonicalization hash table. 9 years ago
Buffer.hpp 8f2a42d1ad allow user to specify arbitrary allowed IP networks in allowManaged 8 years ago
C25519.cpp 38433e85bf More little stuff in crypto code. 11 years ago
C25519.hpp 4e4fd51117 boring doc stuff 9 years ago
Capability.cpp 98152d974a More cleanup and removal of DeferredPackets, will do the latter in a more elegant way. 9 years ago
Capability.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
CertificateOfMembership.cpp 56febbf2ba . 9 years ago
CertificateOfMembership.hpp 32fa061700 Compute credential TTL et al. 9 years ago
CertificateOfOwnership.cpp 72653e54f9 Finish wiring up ipauth and macauth to Network filter. 8 years ago
CertificateOfOwnership.hpp 72653e54f9 Finish wiring up ipauth and macauth to Network filter. 8 years ago
CertificateOfRepresentation.hpp 3587aa1ea7 Add and send certificates of representation to tell people what our valid upstreams are. These are not used yet but will be needed for future privacy modes, etc. Also some cleanup. 8 years ago
Cluster.cpp dcb1233b0d Slight refactor to RENEDEZVOUS sending code for federation. 8 years ago
Cluster.hpp 29ec7bf3a2 Add more specific check in source==self case instead of dumping it. 8 years ago
Constants.hpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
Dictionary.hpp 15c07c58b6 Refactored network config chunking to sign every chunk to prevent stupid DOS attack potential, and implement network config fast propagate (though we probably will not use this for a bit). 9 years ago
Hashtable.hpp 8a2e8bd585 Rework how paths are set as remote cluster preferred. The code is now clearer and cluster preference indications are now very sticky as they should be. 9 years ago
Identity.cpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
Identity.hpp 7036831203 Sign Dictionary in doNETWORK_CONFIG_REQUEST. 9 years ago
IncomingPacket.cpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
IncomingPacket.hpp d5528e4e9a Wire up VERB_USER_MESSAGE in core. 8 years ago
InetAddress.cpp 6a50291aa2 Fix the case for InetAddress::containsAddress for IPv6 route of :: 9 years ago
InetAddress.hpp 25f9c294dc Small bug fix and warning removal. 9 years ago
MAC.hpp 4e4fd51117 boring doc stuff 9 years ago
Membership.cpp 4436824faf ipauth characteristic now works with ARP 8 years ago
Membership.hpp 72653e54f9 Finish wiring up ipauth and macauth to Network filter. 8 years ago
MulticastGroup.hpp dbf3e6c3c9 Dead code removal. 9 years ago
Multicaster.cpp 1615ef1114 Rename getBestRoot() etc. 9 years ago
Multicaster.hpp 1346e31a8e Windows build fixes, Software update fix, warning removal. 8 years ago
Mutex.hpp 4e4fd51117 boring doc stuff 9 years ago
Network.cpp 31bece7fa0 Add ipauth handling of IPv6 NDP neighbor solicitations and advertisements. IPv6 works well now with ipauth. 8 years ago
Network.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
NetworkConfig.cpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
NetworkConfig.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
NetworkController.hpp 226123ca08 Refactor controller to permit sending of pushes as well as just replies to config requests. 9 years ago
Node.cpp 4b11566505 Integrate moon concept into http config bus, and clean up that code quite a bit. 8 years ago
Node.hpp 4b11566505 Integrate moon concept into http config bus, and clean up that code quite a bit. 8 years ago
NonCopyable.hpp 4e4fd51117 boring doc stuff 9 years ago
OutboundMulticast.cpp 4436824faf ipauth characteristic now works with ARP 8 years ago
OutboundMulticast.hpp cc4bacc199 Cleanup, and implement compression disable flag for networks. 9 years ago
Packet.cpp e0d63c50db One more tweak after thinking about related keys and key stream reuse. Just a precaution. 8 years ago
Packet.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
Path.cpp a3bdae9735 Work in progress: Path canonicalization refactor. 9 years ago
Path.hpp 5b6d27e659 Implement relay policy, and setting multicast limit to 0 now disables multicast on the network as would be expected. 9 years ago
Peer.cpp afba19e01c When deciding whether to send PUSH_DIRECT_PATHS we should check global trust flag, not the one passed into receive(). 8 years ago
Peer.hpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
Poly1305.cpp c952fbbd8d Only enable 128-bit Poly1305 on X86_64 right now. Has compilation issues on ARM, but the 64-bit version should be fine. 10 years ago
Poly1305.hpp 4e4fd51117 boring doc stuff 9 years ago
README.md 8a2ff0b31e Actual documentation. 8 years ago
Revocation.cpp 1f74dd4589 Revocation work in progress, add WATCH which is TEE with implicit rate sync (thanks JG@DCVC!), and clean up some cruft in Network. 9 years ago
Revocation.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
RuntimeEnvironment.hpp 98152d974a More cleanup and removal of DeferredPackets, will do the latter in a more elegant way. 9 years ago
SHA512.cpp 4e4fd51117 boring doc stuff 9 years ago
SHA512.hpp 4e4fd51117 boring doc stuff 9 years ago
Salsa20.cpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
Salsa20.hpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
SelfAwareness.cpp d3524f3609 Refactor COM stuff a bit, and respond to COM requests a bit more readily for rapid setup. Will need to revisit later. 9 years ago
SelfAwareness.hpp b5c86b6ba4 Bunch more path refactoring. Peers no longer forget paths, but do not normally use expired paths. Expired paths might still be tried if nothing else is reachable. 9 years ago
SharedPtr.hpp 4931e44998 Implement "weak pointer" behavior on Topology Path canonicalization hash table. 9 years ago
Switch.cpp 43182f8f57 Docs, code cleanup, and protect the extra new fields of HELLO with encryption as a precaution. 8 years ago
Switch.hpp d9e4ba1280 Eliminate a little copypasta. 8 years ago
Tag.cpp 1f74dd4589 Revocation work in progress, add WATCH which is TEE with implicit rate sync (thanks JG@DCVC!), and clean up some cruft in Network. 9 years ago
Tag.hpp 10185e92fa Certificate of ownership -- used to secure against IP address spoofing, especially for IPv4 and regular IPv6. 8 years ago
Topology.cpp af4e79735c Fix "orbit" semantics. Federation works. 8 years ago
Topology.hpp af4e79735c Fix "orbit" semantics. Federation works. 8 years ago
Utils.cpp 42f28bce52 Cleanup and make moons (federated roots) a little easier to deal with. 8 years ago
Utils.hpp 42f28bce52 Cleanup and make moons (federated roots) a little easier to deal with. 8 years ago
World.hpp 4b11566505 Integrate moon concept into http config bus, and clean up that code quite a bit. 8 years ago

README.md

ZeroTier Network Hypervisor Core

This directory contains the real ZeroTier: a completely OS-independent global virtual Ethernet switch engine. This is where the magic happens.

Give it wire packets and it gives you Ethernet packets, and vice versa. The core contains absolutely no actual I/O, port configuration, or other OS-specific code (except Utils::getSecureRandom()). It provides a simple C API via /include/ZeroTierOne.h. It's designed to be small and maximally portable for future use on small embedded and special purpose systems.

Code in here follows these guidelines:

  • Keep it minimal, especially in terms of code footprint and memory use.
  • There should be no OS-dependent code here unless absolutely necessary (e.g. getSecureRandom).
  • If it's not part of the core virtual Ethernet switch it does not belong here.
  • No C++11 or C++14 since older and embedded compilers don't support it yet and this should be maximally portable.
  • Minimize the use of complex C++ features since at some point we might end up "minus-minus'ing" this code if doing so proves necessary to port to tiny embedded systems.