make-mac.mk 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238
  1. CC=clang
  2. CXX=clang++
  3. TOPDIR=$(shell pwd)
  4. INCLUDES=-I$(shell pwd)/rustybits/target -isystem $(TOPDIR)/ext -I$(TOPDIR)/ext/prometheus-cpp-lite-1.0/core/include -I$(TOPDIR)/ext-prometheus-cpp-lite-1.0/3rdparty/http-client-lite/include -I$(TOPDIR)/ext/prometheus-cpp-lite-1.0/simpleapi/include
  5. DEFS=
  6. LIBS=
  7. ARCH_FLAGS=-arch x86_64 -arch arm64
  8. CODESIGN=echo
  9. PRODUCTSIGN=echo
  10. CODESIGN_APP_CERT=
  11. CODESIGN_INSTALLER_CERT=
  12. NOTARIZE=echo
  13. NOTARIZE_APPLE_ID=null
  14. NOTARIZE_TEAM_ID=null
  15. ZT_BUILD_PLATFORM=3
  16. ZT_BUILD_ARCHITECTURE=2
  17. ZT_VERSION_MAJOR=$(shell cat version.h | grep -F VERSION_MAJOR | cut -d ' ' -f 3)
  18. ZT_VERSION_MINOR=$(shell cat version.h | grep -F VERSION_MINOR | cut -d ' ' -f 3)
  19. ZT_VERSION_REV=$(shell cat version.h | grep -F VERSION_REVISION | cut -d ' ' -f 3)
  20. ZT_VERSION_BUILD=$(shell cat version.h | grep -F VERSION_BUILD | cut -d ' ' -f 3)
  21. # for central controller builds
  22. TIMESTAMP=$(shell date +"%Y%m%d%H%M")
  23. DEFS+=-DZT_BUILD_PLATFORM=$(ZT_BUILD_PLATFORM) -DZT_BUILD_ARCHITECTURE=$(ZT_BUILD_ARCHITECTURE)
  24. include objects.mk
  25. ONE_OBJS+=osdep/MacEthernetTap.o osdep/MacKextEthernetTap.o osdep/MacDNSHelper.o ext/http-parser/http_parser.o
  26. LIBS+=-framework CoreServices -framework SystemConfiguration -framework CoreFoundation -framework Security
  27. EXTRA_CARGO_FLAGS?=
  28. # Official releases are signed with our Apple cert and apply software updates by default
  29. ifeq ($(ZT_OFFICIAL_RELEASE),1)
  30. DEFS+=-DZT_SOFTWARE_UPDATE_DEFAULT="\"apply\""
  31. ZT_USE_MINIUPNPC=1
  32. CODESIGN=codesign
  33. PRODUCTSIGN=productsign
  34. CODESIGN_APP_CERT="Developer ID Application: ZeroTier, Inc (8ZD9JUCZ4V)"
  35. CODESIGN_INSTALLER_CERT="Developer ID Installer: ZeroTier, Inc (8ZD9JUCZ4V)"
  36. NOTARIZE=xcrun notarytool
  37. NOTARIZE_APPLE_ID="[email protected]"
  38. NOTARIZE_TEAM_ID="8ZD9JUCZ4V"
  39. else
  40. DEFS+=-DZT_SOFTWARE_UPDATE_DEFAULT="\"download\""
  41. endif
  42. # Use fast ASM Salsa20/12 for x64 processors
  43. DEFS+=-DZT_USE_X64_ASM_SALSA2012
  44. CORE_OBJS+=ext/x64-salsa2012-asm/salsa2012.o
  45. CXXFLAGS=$(CFLAGS) -std=c++17 -stdlib=libc++
  46. # Build miniupnpc and nat-pmp as included libraries -- extra defs are required for these sources
  47. DEFS+=-DMACOSX -DZT_SSO_SUPPORTED -DZT_USE_MINIUPNPC -DMINIUPNP_STATICLIB -D_DARWIN_C_SOURCE -DMINIUPNPC_SET_SOCKET_TIMEOUT -DMINIUPNPC_GET_SRC_ADDR -D_BSD_SOURCE -D_DEFAULT_SOURCE -DOS_STRING=\"Darwin/15.0.0\" -DMINIUPNPC_VERSION_STRING=\"2.0\" -DUPNP_VERSION_STRING=\"UPnP/1.1\" -DENABLE_STRNATPMPERR
  48. ONE_OBJS+=ext/libnatpmp/natpmp.o ext/libnatpmp/getgateway.o ext/miniupnpc/connecthostport.o ext/miniupnpc/igd_desc_parse.o ext/miniupnpc/minisoap.o ext/miniupnpc/minissdpc.o ext/miniupnpc/miniupnpc.o ext/miniupnpc/miniwget.o ext/miniupnpc/minixml.o ext/miniupnpc/portlistingparse.o ext/miniupnpc/receivedata.o ext/miniupnpc/upnpcommands.o ext/miniupnpc/upnpdev.o ext/miniupnpc/upnperrors.o ext/miniupnpc/upnpreplyparse.o osdep/PortMapper.o
  49. ifeq ($(ZT_CONTROLLER),1)
  50. MACOS_VERSION_MIN=10.15
  51. override CXXFLAGS=$(CFLAGS) -std=c++17 -stdlib=libc++
  52. LIBS+=-L/opt/homebrew/lib -L/usr/local/opt/libpqxx/lib -L/usr/local/opt/libpq/lib -L/usr/local/opt/openssl/lib/ -lpqxx -lpq -lssl -lcrypto -lgssapi_krb5 ext/redis-plus-plus-1.1.1/install/macos/lib/libredis++.a ext/hiredis-0.14.1/lib/macos/libhiredis.a rustybits/target/librustybits.a
  53. DEFS+=-DZT_CONTROLLER_USE_LIBPQ -DZT_CONTROLLER_USE_REDIS -DZT_CONTROLLER
  54. INCLUDES+=-I/opt/homebrew/include -I/opt/homebrew/opt/libpq/include -I/usr/local/opt/libpq/include -I/usr/local/opt/libpqxx/include -Iext/hiredis-0.14.1/include/ -Iext/redis-plus-plus-1.1.1/install/macos/include/sw/ -Irustybits/target/
  55. EXTRA_CARGO_FLAGS+=-F ztcontroller
  56. else
  57. MACOS_VERSION_MIN=10.13
  58. endif
  59. # Build with address sanitization library for advanced debugging (clang)
  60. ifeq ($(ZT_SANITIZE),1)
  61. DEFS+=-fsanitize=address -DASAN_OPTIONS=symbolize=1
  62. endif
  63. ifeq ($(ZT_DEBUG_TRACE),1)
  64. DEFS+=-DZT_DEBUG_TRACE
  65. endif
  66. # Debug mode -- dump trace output, build binary with -g
  67. ifeq ($(ZT_DEBUG),1)
  68. ZT_TRACE=1
  69. ARCH_FLAGS=
  70. CFLAGS+=-Wall -g $(INCLUDES) $(DEFS) $(ARCH_FLAGS)
  71. STRIP=echo
  72. RUST_VARIANT=debug
  73. # The following line enables optimization for the crypto code, since
  74. # C25519 in particular is almost UNUSABLE in heavy testing without it.
  75. node/Salsa20.o node/SHA512.o node/C25519.o node/Poly1305.o: CFLAGS = -Wall -O2 -g $(INCLUDES) $(DEFS)
  76. else
  77. CFLAGS?=-O3 -fstack-protector-strong
  78. CFLAGS+=$(ARCH_FLAGS) -Wall -flto -fPIE -mmacosx-version-min=$(MACOS_VERSION_MIN) -DNDEBUG -Wno-unused-private-field $(INCLUDES) $(DEFS)
  79. STRIP=strip
  80. EXTRA_CARGO_FLAGS+=--release
  81. RUST_VARIANT=release
  82. endif
  83. ifeq ($(ZT_TRACE),1)
  84. DEFS+=-DZT_TRACE
  85. endif
  86. ifeq ($(ZT_DEBUG),1)
  87. DEFS+=-DZT_DEBUG
  88. endif
  89. ifeq ($(ZT_VAULT_SUPPORT),1)
  90. DEFS+=-DZT_VAULT_SUPPORT=1
  91. LIBS+=-lcurl
  92. endif
  93. OTEL_VERSION=1.21.0
  94. ifeq (${ZT_OTEL},1)
  95. OTEL_INSTALL_DIR=ext/opentelemetry-cpp-${OTEL_VERSION}/localinstall
  96. DEFS+=-DZT_OTEL
  97. INCLUDES+=-I${OTEL_INSTALL_DIR}/include
  98. LIBS+=-L${OTEL_INSTALL_DIR}/lib -lopentelemetry_exporter_in_memory_metric -lopentelemetry_exporter_in_memory -lopentelemetry_exporter_ostream_logs -lopentelemetry_exporter_ostream_metrics -lopentelemetry_exporter_ostream_span -lopentelemetry_trace -lopentelemetry_common -lopentelemetry_resources -lopentelemetry_logs -lopentelemetry_metrics -lopentelemetry_version
  99. else
  100. OTEL_INSTALL_DIR=ext/opentelemetry-cpp-api-only
  101. INCLUDES+=-I${OTEL_INSTALL_DIR}/include
  102. endif
  103. all: one
  104. ext/x64-salsa2012-asm/salsa2012.o:
  105. as -arch x86_64 -mmacosx-version-min=$(MACOS_VERSION_MIN) -o ext/x64-salsa2012-asm/salsa2012.o ext/x64-salsa2012-asm/salsa2012.s
  106. mac-agent: FORCE
  107. $(CC) -O3 $(ARCH_FLAGS) -mmacosx-version-min=$(MACOS_VERSION_MIN) -o MacEthernetTapAgent osdep/MacEthernetTapAgent.c
  108. $(CODESIGN) -f --options=runtime -s $(CODESIGN_APP_CERT) MacEthernetTapAgent
  109. osdep/MacDNSHelper.o: osdep/MacDNSHelper.mm
  110. $(CXX) $(CXXFLAGS) -c osdep/MacDNSHelper.mm -o osdep/MacDNSHelper.o
  111. ifeq ($(ZT_CONTROLLER),1)
  112. one: otel rustybits $(CORE_OBJS) $(ONE_OBJS) one.o mac-agent
  113. else
  114. one: otel rustybits $(CORE_OBJS) $(ONE_OBJS) one.o mac-agent
  115. endif
  116. $(CXX) $(CXXFLAGS) -o zerotier-one $(CORE_OBJS) $(ONE_OBJS) one.o $(LIBS) rustybits/target/librustybits.a
  117. # $(STRIP) zerotier-one
  118. ln -sf zerotier-one zerotier-idtool
  119. ln -sf zerotier-one zerotier-cli
  120. $(CODESIGN) -f --options=runtime -s $(CODESIGN_APP_CERT) zerotier-one
  121. zerotier-one: one
  122. rustybits: rustybits/target/rustybits.a
  123. rustybits/target/rustybits.a: FORCE
  124. cd rustybits && MACOSX_DEPLOYMENT_TARGET=$(MACOS_VERSION_MIN) cargo build --target=x86_64-apple-darwin $(EXTRA_CARGO_FLAGS)
  125. cd rustybits && MACOSX_DEPLOYMENT_TARGET=$(MACOS_VERSION_MIN) cargo build --target=aarch64-apple-darwin $(EXTRA_CARGO_FLAGS)
  126. cd rustybits && lipo -create target/x86_64-apple-darwin/$(RUST_VARIANT)/librustybits.a target/aarch64-apple-darwin/$(RUST_VARIANT)/librustybits.a -output target/librustybits.a
  127. central-controller:
  128. make ARCH_FLAGS="-arch x86_64" ZT_CONTROLLER=1 one
  129. zerotier-idtool: one
  130. zerotier-cli: one
  131. $(ONE_OBJS): rustybits
  132. libzerotiercore.a: $(CORE_OBJS)
  133. ar rcs libzerotiercore.a $(CORE_OBJS)
  134. ranlib libzerotiercore.a
  135. core: libzerotiercore.a
  136. #cli: FORCE
  137. # $(CXX) $(CXXFLAGS) -o zerotier cli/zerotier.cpp osdep/OSUtils.cpp node/InetAddress.cpp node/Utils.cpp node/Salsa20.cpp node/Identity.cpp node/SHA512.cpp node/C25519.cpp -lcurl
  138. # $(STRIP) zerotier
  139. selftest: $(CORE_OBJS) $(ONE_OBJS) selftest.o
  140. $(CXX) $(CXXFLAGS) -o zerotier-selftest selftest.o $(CORE_OBJS) $(ONE_OBJS) $(LIBS) rustybits/target/librustybits.a
  141. $(STRIP) zerotier-selftest
  142. zerotier-selftest: selftest
  143. # Make compile_commands.json for clangd editor extensions. Probably works on Linux too.
  144. compile_commands: FORCE
  145. compiledb make ZT_DEBUG=1
  146. # Requires Packages: http://s.sudre.free.fr/Software/Packages/about.html
  147. mac-dist-pkg: FORCE
  148. packagesbuild "ext/installfiles/mac/ZeroTier One.pkgproj"
  149. rm -f "ZeroTier One Signed.pkg"
  150. $(PRODUCTSIGN) --sign $(CODESIGN_INSTALLER_CERT) "ZeroTier One.pkg" "ZeroTier One Signed.pkg"
  151. if [ -f "ZeroTier One Signed.pkg" ]; then mv -f "ZeroTier One Signed.pkg" "ZeroTier One.pkg"; fi
  152. rm -f zt1_update_$(ZT_BUILD_PLATFORM)_$(ZT_BUILD_ARCHITECTURE)_*
  153. cat ext/installfiles/mac-update/updater.tmpl.sh "ZeroTier One.pkg" >zt1_update_$(ZT_BUILD_PLATFORM)_$(ZT_BUILD_ARCHITECTURE)_$(ZT_VERSION_MAJOR).$(ZT_VERSION_MINOR).$(ZT_VERSION_REV)_$(ZT_VERSION_BUILD).exe
  154. $(NOTARIZE) submit --apple-id "[email protected]" --team-id "8ZD9JUCZ4V" --wait "ZeroTier One.pkg"
  155. echo '*** When Apple notifies that the app is notarized, run: xcrun stapler staple "ZeroTier One.pkg"'
  156. # For ZeroTier, Inc. to build official signed packages
  157. official: FORCE
  158. cd ../DesktopUI ; make ZT_OFFICIAL_RELEASE=1
  159. make clean
  160. make ZT_OFFICIAL_RELEASE=1 -j 8 one
  161. make ZT_OFFICIAL_RELEASE=1 mac-dist-pkg
  162. _buildx:
  163. @echo "docker buildx create"
  164. # docker run --rm --privileged multiarch/qemu-user-static --reset -p yes
  165. docker run --privileged --rm tonistiigi/binfmt --install all
  166. @echo docker buildx create --name multiarch --driver docker-container --use
  167. @echo docker buildx inspect --bootstrap
  168. controller-builder: _buildx FORCE
  169. docker buildx build --platform linux/arm64,linux/amd64 --no-cache -t registry.zerotier.com/zerotier/ctlbuild:latest -f ext/central-controller-docker/Dockerfile.builder . --push
  170. controller-run: _buildx FORCE
  171. docker buildx build --platform linux/arm64,linux/amd64 --no-cache -t registry.zerotier.com/zerotier-central/ctlrun:latest -f ext/central-controller-docker/Dockerfile.run_base . --push
  172. central-controller-docker: _buildx FORCE
  173. docker buildx build --platform linux/arm64,linux/amd64 --no-cache -t registry.zerotier.com/zerotier-central/ztcentral-controller:${TIMESTAMP} -f ext/central-controller-docker/Dockerfile --build-arg git_branch=$(shell git name-rev --name-only HEAD) . --push
  174. @echo Image: registry.zerotier.com/zerotier-central/ztcentral-controller:${TIMESTAMP}
  175. centralv2-controller-docker: _buildx FORCE
  176. docker buildx build --platform linux/amd64,linux/arm64 --no-cache -t us-central1-docker.pkg.dev/zerotier-d648c7/central-v2/ztcentral-controller:${TIMESTAMP} -f ext/central-controller-docker/Dockerfile --build-arg git_branch=`git name-rev --name-only HEAD` . --push
  177. @echo Image: us-central1-docker.pkg.dev/zerotier-d648c7/central-v2/ztcentral-controller:${TIMESTAMP}
  178. docker-release: _buildx
  179. docker buildx build --platform linux/386,linux/amd64,linux/arm/v7,linux/arm64,linux/mips64le,linux/ppc64le,linux/s390x -t zerotier/zerotier:${RELEASE_DOCKER_TAG} -t zerotier/zerotier:latest --build-arg VERSION=${RELEASE_VERSION} -f Dockerfile.release . --push
  180. clean:
  181. rm -rf MacEthernetTapAgent *.dSYM build-* *.a *.pkg *.dmg *.o node/*.o controller/*.o service/*.o osdep/*.o ext/http-parser/*.o $(CORE_OBJS) $(ONE_OBJS) zerotier-one zerotier-idtool zerotier-selftest zerotier-cli zerotier doc/node_modules zt1_update_$(ZT_BUILD_PLATFORM)_$(ZT_BUILD_ARCHITECTURE)_* rustybits/target/ ext/opentelemetry-cpp-${OTEL_VERSION}/localinstall ext/opentelemetry-cpp-${OTEL_VERSION}/build
  182. ifeq (${ZT_OTEL},1)
  183. otel:
  184. cd ext/opentelemetry-cpp-1.21.0 && mkdir -p localinstall && cmake -B build -S . -DCMAKE_BUILD_TYPE=Release -DCMAKE_INSTALL_PREFIX=$(shell pwd)/ext/opentelemetry-cpp-1.21.0/localinstall -DCMAKE_OSX_ARCHITECTURES="arm64;x86_64" -DCMAKE_OSX_DEPLOYMENT_TARGET=${MACOS_VERSION_MIN} -DBUILD_TESTING=OFF -DOPENTELEMETRY_INSTALL=ON -DWITH_BENCHMARK=OFF -DWITH_EXAMPLES=OFF -DWITH_FUNC_TESTS=OFF
  185. cd ext/opentelemetry-cpp-1.21.0/build && make install
  186. else
  187. otel:
  188. @echo "OpenTelemetry Exporter not enabled, skipping build."
  189. endif
  190. distclean: clean
  191. realclean: clean
  192. FORCE: