Commit Graph

  • fa2efa0e45 Crazy race ugh Nate Brown 2021-03-03 20:28:44 -06:00
  • da5c478435 Initial ipv6 outside support ipv6-outside Nate Brown 2021-03-03 16:30:43 -06:00
  • 29c5f31f90 Add a check in the makefile to ensure a minimum version of go is installed (#383) master Nathan Brown 2021-03-02 13:29:05 -06:00
  • b6234abfb3 Add a way to trigger punch backs via lighthouse (#394) Nathan Brown 2021-03-01 19:06:01 -06:00
  • 2a4beb41b9 Routine-local conntrack cache (#391) Wade Simmons 2021-03-01 19:52:17 -05:00
  • d232ccbfab add metrics for the udp sockets using SO_MEMINFO (#390) Wade Simmons 2021-03-01 19:51:33 -05:00
  • ecfb40f29c Fix osx for mq changes, this does not implement mq on osx (#395) Nathan Brown 2021-03-01 15:57:05 -06:00
  • 1bae5b2550 more validation in pending hostmap deletes (#344) Wade Simmons 2021-03-01 12:40:46 -05:00
  • 73081d99bc add make smoke-docker (#287) Wade Simmons 2021-03-01 11:15:15 -05:00
  • e7e6a23cde fix a few typos (#302) Tim Rots 2021-03-01 17:14:34 +01:00
  • a0583ebdca tun_disabled: reply to ICMP Echo Request (#342) Wade Simmons 2021-03-01 11:09:41 -05:00
  • 38f94a3b4d Update README.md documentation-site Ryan Huber 2021-02-26 12:41:05 -08:00
  • 93074a4391 Update README.md Ryan Huber 2021-02-26 12:22:43 -08:00
  • 7075fcd29b Update README.md Ryan Huber 2021-02-26 12:21:37 -08:00
  • cc5f62ff20 Update README.md Ryan Huber 2021-02-26 12:16:54 -08:00
  • e83ab1f4f8 Update README.md Ryan Huber 2021-02-26 12:16:10 -08:00
  • 14f74be049 Update README.md Ryan Huber 2021-02-26 12:14:18 -08:00
  • 9907a9bea5 Update README.md Ryan Huber 2021-02-26 12:11:58 -08:00
  • 5f1dfd5eb0 Update README.md Ryan Huber 2021-02-26 12:10:15 -08:00
  • 77669c5fca Update README.md Ryan Huber 2021-02-26 12:09:24 -08:00
  • d80d8567ee Update README.md Ryan Huber 2021-02-26 12:03:35 -08:00
  • 50b3fc89b7 Update README.md Ryan Huber 2021-02-26 12:02:11 -08:00
  • 38c26ad6f1 Update README.md Ryan Huber 2021-02-26 11:57:18 -08:00
  • f69fa1bdd0 Merge branch 'minimalist_examples' of github.com:slackhq/nebula into minimalist_examples minimalist_examples Ryan Huber 2021-02-25 14:02:43 -06:00
  • bfadb02560 add minimalist comments Ryan Huber 2021-02-24 17:41:37 -06:00
  • c2d1a75676 move Ryan Huber 2021-02-24 17:27:57 -06:00
  • 66e53d3106 add inline certificate example Ryan Huber 2021-02-24 17:19:40 -06:00
  • 09b5f8f100 put minimalist config examples in a directory Ryan Huber 2021-02-24 17:09:07 -06:00
  • 97bcbe9477 add minimalist configuration examples Ryan Huber 2021-02-24 17:08:12 -06:00
  • 27d9a67dda Proper multiqueue support for tun devices (#382) Wade Simmons 2021-02-25 15:01:14 -05:00
  • dfb66ed802 add minimalist comments Ryan Huber 2021-02-24 17:41:37 -06:00
  • eb6fa818d8 move Ryan Huber 2021-02-24 17:27:57 -06:00
  • 17074789a5 add inline certificate example Ryan Huber 2021-02-24 17:19:40 -06:00
  • 1a8aebbcb3 put minimalist config examples in a directory Ryan Huber 2021-02-24 17:09:07 -06:00
  • 680814bd3b add minimalist configuration examples Ryan Huber 2021-02-24 17:08:12 -06:00
  • 2bce222550 List possible cipher options in example config (#385) John Maguire 2021-02-19 22:46:42 -05:00
  • 3dd1108099 Go 1.16 and darwin-arm64 (#381) Wade Simmons 2021-02-17 13:11:57 -05:00
  • d4b81f9b8d Add QR code support to nebula-cert (#297) Nathan Brown 2021-02-11 18:53:25 -06:00
  • 454bc8a6bb Check certificate banner during nebula-cert print (#373) brad-defined 2021-02-05 15:52:32 -05:00
  • ce9ad37431 fix regression with LightHouseHandler and punchBack (#346) Wade Simmons 2020-11-25 17:49:26 -05:00
  • ee7c27093c add HostMap.RemoteIndexes (#329) Wade Simmons 2020-11-23 14:51:16 -05:00
  • 2e7ca027a4 Lighthouse handler optimizations (#320) Wade Simmons 2020-11-23 14:50:01 -05:00
  • 672ce1f0a8 Move slice allocations in connection manager monitor loop (#340) mhp 2020-11-19 15:44:05 -08:00
  • 384b1166ea fix panic in UnmarshalNebulaCertificate (#339) Wade Simmons 2020-11-19 08:44:54 -05:00
  • 0389596f66 don't mark handshake packets as "lost" (#331) Wade Simmons 2020-11-16 14:03:08 -05:00
  • e4b99dd160 make the packet slightly larger for ID also remove ongoing punches ryan_is_very_very_very_very_sorry Ryan Huber 2020-11-02 09:47:29 -06:00
  • 8f71742aa4 better ttl default for testing Ryan Huber 2020-11-01 17:38:07 -06:00
  • 107cc05b4d socket lock note for ttl Ryan Huber 2020-11-01 16:50:59 -06:00
  • 2c300dc8b6 add comment Ryan Huber 2020-11-01 16:34:51 -06:00
  • 33dd05c639 interesting workaround here.. use TTL to ensure conntrack race doesn't happen Ryan Huber 2020-11-01 16:33:12 -06:00
  • 9dc398ce48 dumb delay for now Ryan Huber 2020-10-30 18:23:24 -05:00
  • afc21f1bd4 so it turns out that the opportunistic hole punching confused the hell out of linux conntrack. Ryan Huber 2020-10-30 16:43:57 -05:00
  • 43a3988afc i don't think this is used at all anymore (#323) Ryan Huber 2020-10-29 20:43:50 -05:00
  • 5c23676a0f Added line to systemd config template to start Nebula before sshd (#317) Brian Kelly 2020-10-29 21:43:02 -04:00
  • f6d0b4b893 Update README for supported platforms (#312) Nathan Brown 2020-10-12 13:11:32 -05:00
  • db11e2f1af Revert "smoke test" interface-hooks Dave Russell 2020-10-03 00:09:18 +10:00
  • 2ee428b067 Hook send should use a code path that actually firewalls Dave Russell 2020-10-02 23:42:20 +10:00
  • e9657d571e control->Send: Also set the src port Dave Russell 2020-10-02 22:25:31 +10:00
  • 3cebf38504 The custom message packet sender needs a dest port Dave Russell 2020-10-02 20:46:08 +10:00
  • ae3ee42469 Provide hooks for custom message packet handlers Dave Russell 2020-09-28 22:31:16 +10:00
  • fa034a6d83 smoke test Dave Russell 2020-09-27 22:43:24 +10:00
  • 55d72ac46f Tighten up the inside handlers with a bit of DRY Dave Russell 2020-09-27 22:37:20 +10:00
  • 2c931d5691 Move inside packet handlers into map Dave Russell 2020-09-27 22:04:14 +10:00
  • fee2a6d25f tidy up a couple of nits tidy Dave Russell 2020-09-26 09:48:25 +10:00
  • fe893ddd57 Remove commented code stub Dave Russell 2020-09-26 09:40:28 +10:00
  • 044cd1433b rename package util to internal/assert Dave Russell 2020-09-26 09:37:16 +10:00
  • 0d6b55e495 Bring in the new version of kardianos/service and output logfiles on osx (#303) Ryan Huber 2020-09-24 15:34:08 -07:00
  • c71c84882e v1.3.0 (#268) v1.3.0 Wade Simmons 2020-09-22 12:21:12 -04:00
  • 0010db46e4 Fix a data race on message counter (#284) Darren Hoo 2020-09-22 09:41:46 +08:00
  • 68e3e84fdc More like a library (#279) Nathan Brown 2020-09-18 09:20:09 -05:00
  • 6238f1550b Handle panic when invalid IP entered in sshd (#296) Brian Luong 2020-09-18 07:10:25 -07:00
  • 50b04413c7 Block nebula ssh server from listening on port 22 (#266) forfuncsake 2020-09-15 23:57:32 +10:00
  • ef498a31da Add disable_timestamp option (#288) CzBiX 2020-09-09 19:42:11 +08:00
  • 2e5a477a50 Align linux UDP performance optimizations with configuration (#275) forfuncsake 2020-08-13 08:24:05 +10:00
  • 32fe9bfe75 Use Go 1.15 (#277) Wade Simmons 2020-08-12 16:16:21 -04:00
  • 9b8b3c478b Support startup without a tun device (#269) forfuncsake 2020-08-10 23:15:55 +10:00
  • 7b3f23d9a1 Start nebula after the network is up (#270) Michael Hardy 2020-08-07 09:33:48 -07:00
  • 25964b54f6 Use inclusive terminology for cert blocking (#272) forfuncsake 2020-08-06 11:17:47 +10:00
  • ac557f381b drop unroutable packets (#267) Wade Simmons 2020-08-04 22:59:04 -04:00
  • a54f3fc681 fix fast handshake trigger for static hosts (#265) Wade Simmons 2020-08-02 20:59:50 -04:00
  • 5545cff6ef log remote certificate fingerprint on handshakes (#262) Alan Lam 2020-07-31 15:54:51 -07:00
  • f3a6d8d990 Preserve conntrack table during firewall rules reload (SIGHUP) (#233) Wade Simmons 2020-07-31 18:53:36 -04:00
  • 9b06748506 Make Interface.Inside an interface type (#252) forfuncsake 2020-07-28 22:53:16 +10:00
  • 4756c9613d trigger handshakes when lighthouse reply arrives (#246) Wade Simmons 2020-07-22 10:35:10 -04:00
  • 82ec695346 Fix localOnly inversion; some idiomatic adjustments lib-fix Dave Russell 2020-07-10 13:33:10 +10:00
  • 890ef15dd8 Log goodbye in Stop, stop using the global logger Nate Brown 2020-07-03 18:19:29 -05:00
  • 58e209c52d A lot more control commands Nate Brown 2020-07-02 17:39:16 -05:00
  • 3271137064 Initial thoughts Nate Brown 2020-06-30 23:52:40 -05:00
  • 4645e6034b Fix up the tun for android (#249) Nathan Brown 2020-07-01 10:20:52 -05:00
  • aba42f9fa6 enforce the use of goimports (#248) Wade Simmons 2020-06-30 18:53:30 -04:00
  • 41578ca971 Be more like a library to support mobile (#247) Nathan Brown 2020-06-30 13:48:58 -05:00
  • 1ea8847085 linux: set advmss correctly when route MTU is used (#245) Wade Simmons 2020-06-26 13:47:21 -04:00
  • 55858c64cc smoke test: test firewall inbound / outbound (#240) Wade Simmons 2020-06-26 13:46:51 -04:00
  • e94c6b0125 mips-softfloat (#231) Wade Simmons 2020-06-26 13:46:23 -04:00
  • b37a91cfbc add meta packet statistics (#230) Wade Simmons 2020-06-26 13:45:48 -04:00
  • 3212b769d4 fix typo in conntrack section in examples/config.yml (#236) David Sonder 2020-06-26 18:08:22 +02:00
  • ecf0e5a9f6 drop packets even if we aren't going to emit Debug logs about it (#239) Patrick Bogen 2020-06-10 14:55:49 -07:00
  • ff13aba8fc allow go test -bench=. to run (#234) Wade Simmons 2020-05-27 16:52:34 -04:00
  • cc03ff9e9a Unbreak building for FreeBSD (#103) Mateusz Kwiatkowski 2020-05-27 04:23:23 +02:00
  • 363c836422 log the reason for fw drops (#220) Patrick Bogen 2020-04-10 10:57:21 -07:00