Без опису

Ambroz Bizjak 1d2cb74f35 FreeBSD assertion fix attempt. 10 роки тому
arpprobe 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
base 9314b91783 Refactoring using MemRef. 11 роки тому
blog_generator a21e23fe8a port to compile with MSVC 13 роки тому
bproto a21e23fe8a port to compile with MSVC 13 роки тому
bproto_generator 3291a4713e bproto_generator: fix aliasing issues 13 роки тому
client a23d1d7f84 client, server: implement experimental support for performing SSL operations in worker threads 13 роки тому
cmake af505a92a2 system: add a BReactor implementation using the GLib event loop 14 роки тому
dhcpclient 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
dostest 47431d77c0 add some programs for playing with DoS attacks on TCP 13 роки тому
examples 347fa1a7a5 ncd: Store the NCDStingIndex pointer in NCDValMem. 10 роки тому
flooder a23d1d7f84 client, server: implement experimental support for performing SSL operations in worker threads 13 роки тому
flow faa7a69c48 compile PIC versions of internal libraries, to be used by NCD plugins 13 роки тому
flowextra 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
generated 2d242ebc89 ncd: Permit functions with have zero arguments. 11 роки тому
lemon 20d7a01ad9 Add NCD, the Network Configuration Daemon 15 роки тому
lime 198d6cd4b8 Initial import 15 роки тому
lwip cedb690976 lwip: Fix undefined behavior. 11 роки тому
misc 752c6b492b version 1.999.130 11 роки тому
ncd 59a2fe9a1b Fix a typo in getargs.c 10 роки тому
ncd-request 347fa1a7a5 ncd: Store the NCDStingIndex pointer in NCDValMem. 10 роки тому
nspr_support 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
predicate 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
protocol ed6449d06a tun2socks: IPv6 support. Includes updated lwIP version and udpgw program. 13 роки тому
random 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
scripts 4d020a06ed scripts/copy_nss: copy programs too 15 роки тому
security 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
server ae14d254ac server: Fix bug forgetting to call BSSLConnection_ReleaseBuffers(). 12 роки тому
server_connection 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
socksclient 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
stringmap 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
structure 194edaec18 structure: Vector: Reduce interface. 11 роки тому
system 1d2cb74f35 FreeBSD assertion fix attempt. 10 роки тому
tests 93bc612a21 get rid of some warnings 13 роки тому
threadwork 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
tun2socks 64e54ba888 Refactoring using MemRef. 11 роки тому
tunctl 65011dfa08 Fix some variable shadowing (no bugs). 11 роки тому
tuntap 92a2fc831b Fix TUN/TAP operation with Linux kernel 3.19. 11 роки тому
udevmonitor 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
udpgw 1ba0000b7c udpgw: fix clang warning 12 роки тому
udpgw_client 5153894f43 Use badvpn_add_library for all internal libraries. 11 роки тому
CMakeLists.txt 88c5266e22 CMakeLists.txt: Don't build the -plugin libs by default. 11 роки тому
COPYING 0d99d6a26a switch to using the New BSD License 14 роки тому
ChangeLog 752c6b492b version 1.999.130 11 роки тому
INSTALL c736d012bd INSTALL: mention how to avoid NSS dependency when it's not needed 13 роки тому
INSTALL-WINDOWS c4017da109 INSTALL-WINDOWS: openssl compiles fine without "no-asm". Add note that prebuilt versions of libraries are available. 13 роки тому
README.md 44bbee7fd6 Readme adaptation. 10 роки тому
badvpn.7 0d99d6a26a switch to using the New BSD License 14 роки тому
badvpn.nix 1be45b445d Nix expressions: Separate the package function from the composition. 11 роки тому
blog_channels.txt 462ed77f14 ncd: Implement object reference infrastructure and objref module. 11 роки тому
build.nix 1be45b445d Nix expressions: Separate the package function from the composition. 11 роки тому
compile-tun2sock.sh 2ecf51b42f Use env in shebangs. 11 роки тому
compile-udpgw.sh 2ecf51b42f Use env in shebangs. 11 роки тому
fix_flex.php a21e23fe8a port to compile with MSVC 13 роки тому
generate_files bb9ca1fe73 ncd: rename NCDValue{Generator,Parser} to NCDVal{Generator,Parser} 13 роки тому

README.md

BadVPN

Introduction

In this project I host some of my open-source networking software. All of the software is written in C and utilizes a custom-developed framework for event-driven programming. The extensive code sharing is the reason all the software is packaged together. However, it is possible to compile only the required components to avoid extra dependencies.

NCD programming language

NCD (Network Configuration Daemon) is a daemon and programming/scripting language for configuration of network interfaces and other aspects of the operating system. It implements various functionalities as built-in modules, which may be used from an NCD program wherever and for whatever purpose the user needs them. This modularity makes NCD extremely flexible and extensible. It does a very good job with hotplugging in various forms, like USB network interfaces and link detection for wired devices. New features can be added by implementing statements as C-language modules using a straightforward interface.

Tun2socks network-layer proxifier

The tun2socks program "socksifes" TCP connections at the network layer. It implements a TUN device which accepts all incoming TCP connections (regardless of destination IP), and forwards the connections through a SOCKS server. This allows you to forward all connections through SOCKS, without any need for application support. It can be used, for example, to forward connections through a remote SSH server.

Peer-to-peer VPN

The VPN part of this project implements a Layer 2 (Ethernet) network between the peers (VPN nodes). The peers connect to a central server which acts as a communication proxy allowing the peers to establish direct connections between each other (data connections). These connections are used for transferring network data (Ethernet frames), and can be secured with a multitude of mechanisms. Notable features are:

  • UDP and TCP transport
  • Converges very quickly after a new peer joins
  • IGMP snooping to deliver multicasts efficiently (e.g. for IPTV)
  • Double SSL: if SSL is enabled, not only do peers connect to the server with SSL, but they use an additional layer of SSL when exchanging messages through the server
  • Features related to the NAT problem:
    • Can work with multiple layers of NAT (needs configuration)
    • Local peers inside a NAT can communicate directly
    • Relaying as a fallback (needs configuration)

Documentation

  • [NCD] - Introduction to the NCD language.
  • [badvpn] - General description of BadVPN and its features.
  • [Examples] - Quick guide to setting up a working VPN.
  • [badvpn_server], [badvpn_client] - Documentation of individual programs.

Requirements

NCD only works on Linux. Tun2socks works on Linux and Windows. The P2P VPN works on Linux, Windows and FreeBSD (not tested often).

Installation

Packages are available for NixOS (badvpn), Gentoo Linux (net-misc/badvpn), Arch Linux (AUR package badvpn) and Ubuntu (see Installation). A Windows build is available too. If you want to build BadVPN from source, see INSTALL or INSTALL-WINDOWS.

License

The BSD 3-clause license as shown below applies to most of the code.

Copyright (c) 2009, Ambroz Bizjak <ambrop7@gmail.com>
All rights reserved.

Redistribution and use in source and binary forms, with or without
modification, are permitted provided that the following conditions are met:
1. Redistributions of source code must retain the above copyright
   notice, this list of conditions and the following disclaimer.
2. Redistributions in binary form must reproduce the above copyright
   notice, this list of conditions and the following disclaimer in the
   documentation and/or other materials provided with the distribution.
3. Neither the name of the author nor the
   names of its contributors may be used to endorse or promote products
   derived from this software without specific prior written permission.

THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND
ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
DISCLAIMED. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY
DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
(INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.

List of third-party code included in the source:

  • lwIP - A Lightweight TCP/IP stack. License: lwip/COPYING