TURN and STUN 服务器

Gustavo Garcia 8ea9452c0a Fix msvc analyzer error on goto label on rfc5769check 1 an în urmă
.github e96f22ab71 workflow tidying (#1396) 1 an în urmă
cmake 294f897ccd CMake: find prometheus(fix #1304) (#1315) 1 an în urmă
docker e1d8661b40 Update Debian "bookworm" to 20240423 snapshot in Docker image 1 an în urmă
docs 460cfa38af Update SQLite.md (#1429) 1 an în urmă
examples eb3af26867 Add support for raw public keys (Rfc 7250) (#1458) 1 an în urmă
fuzzing da332ed9e7 Add the InsertBraces command for clang-format to ensure that all conditionals always have braces (#1408) 1 an în urmă
man da6bc6b0c4 Fix typos (#1345) 1 an în urmă
rpm 4ba2f69ba3 Update turnserver.spec (#1192) 2 ani în urmă
src 8ea9452c0a Fix msvc analyzer error on goto label on rfc5769check 1 an în urmă
turndb a767115055 Add hash algorithm for key value to redis userdb schema 4 ani în urmă
.clang-format da332ed9e7 Add the InsertBraces command for clang-format to ensure that all conditionals always have braces (#1408) 1 an în urmă
.clang-tidy 72ad1f01d1 Add clang-tidy, include-what-you-use, and msvc-analyzer github actions (#1363) 1 an în urmă
.dockerignore 8b8660530e Avoid duplication via common rootfs/ dir 4 ani în urmă
.gitignore 40c99db6ba Support Windows MSVC (#855) 3 ani în urmă
AUTHORS.md af8a057eac Update version to 4.6.2 (#1174) 2 ani în urmă
CMakeLists.txt 0fc60d48fa CMake: Declare the variable nearby (#1387) 1 an în urmă
CONTRIBUTING.md 43b430a715 Update CONTRIBUTING.md 2 ani în urmă
ChangeLog af8a057eac Update version to 4.6.2 (#1174) 2 ani în urmă
INSTALL 85c11b69e3 Move and split documentation files (#1096) 2 ani în urmă
LICENSE 702b29bc22 initial code import 11 ani în urmă
Makefile.in d9108a4b54 Add clang format rules and checks (#935) 2 ani în urmă
README.md 19744a4a39 added warnings for prometheus apt unavailability (#1184) 2 ani în urmă
README.turnadmin bc1678cc52 Regenerate manual pages from README files (#1117) 2 ani în urmă
README.turnserver eb3af26867 Add support for raw public keys (Rfc 7250) (#1458) 1 an în urmă
README.turnutils da6bc6b0c4 Fix typos (#1345) 1 an în urmă
STATUS.md 38088baa22 Update Changelog and Readme (#1087) 2 ani în urmă
authors.sh 22e51044cd Generate AUTHORS as Markdown, update references (#1102) 2 ani în urmă
configure 8f2a482ad9 Add github action that runs tests with compiler sanitizers (#1370) 1 an în urmă
iwyu-ubuntu.imp 72ad1f01d1 Add clang-tidy, include-what-you-use, and msvc-analyzer github actions (#1363) 1 an în urmă
make-man.sh 2ff0150c98 man pages util fixed 8 ani în urmă
postinstall.txt 85c11b69e3 Move and split documentation files (#1096) 2 ani în urmă
release.sh 54842274d3 Scripts to generate AUTHORS and ChangeLog (#1101) 2 ani în urmă
vcpkg.json c0cb48d4a2 Update version in vcpkg.json (#1254) 2 ani în urmă

README.md

Docker CI Docker Hub

Docker Hub | GitHub Container Registry | Quay.io

Coturn TURN server

coturn is a free open source implementation of TURN and STUN Server. The TURN Server is a VoIP media traffic NAT traversal server and gateway.

Installing / Getting started

Linux distros may have a version of coturn which you can install by

apt install coturn
turnserver --log-file stdout

Or run coturn using docker container:

docker run -d -p 3478:3478 -p 3478:3478/udp -p 5349:5349 -p 5349:5349/udp -p 49152-65535:49152-65535/udp coturn/coturn

See more details about using docker container Docker Readme

Developing

Dependencies

coturn requires following dependencies to be installed first

  • libevent2

Optional

  • openssl (to support TLS and DTLS, authorized STUN and TURN)
  • libmicrohttp and prometheus-client-c (prometheus interface)
  • MySQL (user database)
  • Hiredis (user database, monitoring)
  • SQLite (user database)
  • PostgreSQL (user database)

Building

git clone [email protected]:coturn/coturn.git
cd coturn
./configure
make

Features

STUN specs:

  • RFC 3489 - "classic" STUN
  • RFC 5389 - base "new" STUN specs
  • RFC 5769 - test vectors for STUN protocol testing
  • RFC 5780 - NAT behavior discovery support
  • RFC 7443 - ALPN support for STUN & TURN
  • RFC 7635 - oAuth third-party TURN/STUN authorization

TURN specs:

ICE and related specs:

The implementation fully supports the following client-to-TURN-server protocols:

Relay protocols:

User databases (for user repository, with passwords or keys, if authentication is required):

  • SQLite
  • MySQL
  • PostgreSQL
  • Redis
  • MongoDB

Management interfaces:

  • telnet cli
  • HTTPS interface

Monitoring:

  • Redis can be used for status and statistics storage and notification
  • prometheus interface (unavailable on apt package)

Message integrity digest algorithms:

  • HMAC-SHA1, with MD5-hashed keys (as required by STUN and TURN standards)

TURN authentication mechanisms:

  • 'classic' long-term credentials mechanism;
  • TURN REST API (a modification of the long-term mechanism, for time-limited secret-based authentication, for WebRTC applications: http://tools.ietf.org/html/draft-uberti-behave-turn-rest-00);
  • experimental third-party oAuth-based client authorization option;

Performance and Load Balancing:

When used as a part of an ICE solution, for VoIP connectivity, this TURN server can handle thousands simultaneous calls per CPU (when TURN protocol is used) or tens of thousands calls when only STUN protocol is used. For virtually unlimited scalability a load balancing scheme can be used. The load balancing can be implemented with the following tools (either one or a combination of them):

  • DNS SRV based load balancing;
  • built-in 300 ALTERNATE-SERVER mechanism (requires 300 response support by the TURN client);
  • network load-balancer server.

Traffic bandwidth limitation and congestion avoidance algorithms implemented.

Target platforms:

  • Linux (Debian, Ubuntu, Mint, CentOS, Fedora, Redhat, Amazon Linux, Arch Linux, OpenSUSE)
  • BSD (FreeBSD, NetBSD, OpenBSD, DragonFlyBSD)
  • Solaris 11
  • Mac OS X
  • Cygwin (for non-production R&D purposes)
  • Windows (native with, e.g., MSVC toolchain)

This project can be successfully used on other *NIX platforms, too, but that is not officially supported.

The implementation is supposed to be simple, easy to install and configure. The project focuses on performance, scalability and simplicity. The aim is to provide an enterprise-grade TURN solution.

To achieve high performance and scalability, the TURN server is implemented with the following features:

  • High-performance industrial-strength Network IO engine libevent2 is used
  • Configurable multi-threading model implemented to allow full usage of available CPU resources (if OS allows multi-threading)
  • Multiple listening and relay addresses can be configured
  • Efficient memory model used
  • The TURN project code can be used in a custom proprietary networking environment. In the TURN server code, an abstract networking API is used. Only couple files in the project have to be re-written to plug-in the TURN server into a proprietary environment. With this project, only implementation for standard UNIX Networking/IO API is provided, but the user can implement any other environment. The TURN server code was originally developed for a high-performance proprietary corporate environment, then adopted for UNIX Networking API
  • The TURN server works as a user space process, without imposing any special requirements on the system

Links