Cipherpack v1.2.0-dirty
A Cryprographic Stream Processor
|
This project's canonical repositories is hosted on Gothel Software.
Cipherpack, a secure stream processor utilizing public-key signatures to authenticate the sender and public-key encryption of a symmetric-key for multiple receiver ensuring their privacy and high-performance message encryption.
Cipherpack securely streams messages through any media, via file using ByteInStream_File and via all libcurl network protocols using ByteInStream_URL are build-in and supported.
Note: libcurl must be enabled via `-DUSE_LIBCURL=ON` at build.
A user may use the media agnostic ByteInStream_Feed to produce the input stream by injecting data off-thread and a CipherpackListener to receive the processed output stream.
Cipherpack is implemented using C++20 and is accessible via C++ and Java.
Please find the more detailed overview in the API doc.
Original use-case is a secure update process, elevating your installed firm- and software.
Hence original project name was Elevator.
See details on the C++ and Java API including its different C++ API level modules.
Build and clang-tidy clean on C++20, passing all unit tests.
Language requirements
See supported platforms for details.
C++20 is the minimum requirement for releases > 1.1.4, see jaulib C++ Minimum Requirements.
Release 1.1.4 is the last version conforming to C++17.
Up to date API documentation can be found:
This project uses the following git submodules
lint
validationvscodium
integrationInstalling build dependencies on FreeBSD >= 13:
Install optional Java dependencies:
For Java ensure /etc/fstab
includes:
jau::fs::mount_image()
and jau::fs::umount()
are currenly not fully implemented under FreeBSD
, hence testing using cmake option -DTEST_WITH_SUDO=ON
is disabled.
To use URL streaming functionality via the curl
library in jau_io_util.hpp
and jau/io_util.cpp
, the cmake option -DUSE_LIBCURL=ON
must be set.
This also requires installation of the following packets:
Note: mini-httpd
is being used for unit testing URL streaming only.
Installing build dependencies for Debian >= 12 and Ubuntu >= 22:
If using optional clang toolchain, perhaps change the clang version-suffix of above clang install line to the appropriate version.
After complete clang installation, you might want to setup the latest version as your default. For Debian you can use this clang alternatives setup script.
Install optional Java dependencies:
To test jau::fs::mount_image()
and jau::fs::umount()
under Linux
with enabled cmake option -DTEST_WITH_SUDO=ON
,
the following build dependencies are added
To use URL streaming functionality via the curl
library in jau_io_util.hpp
and jau/io_util.cpp
, the cmake option -DUSE_LIBCURL=ON
must be set.
This also requires installation of the following packets:
Note: mini-httpd
is being used for unit testing URL streaming only.
Analog to jaulib CMake build presets ...
Following debug presets are defined in CMakePresets.json
debug
debug-gcc
debug
gcc
clang-tidy
debug-clang
debug
clang
clang-tidy
release
debug
release-gcc
gcc
clang-tidy
release-clang
clang
clang-tidy
Kick-off the workflow by e.g. using preset release-gcc
to configure, build, test, install and building documentation. You may skip install
and doc
by dropping it from --target
.
Analog to jaulib CMake hardcoded presets ...
Besides above CMakePresets.json
presets, JaulibSetup.cmake
contains hardcoded presets for undefined variables if
CMAKE_INSTALL_PREFIX
and CMAKE_CXX_CLANG_TIDY
cmake variables are unset, orJAU_CMAKE_ENFORCE_PRESETS
cmake- or environment-variable is set to TRUE
or ON
The hardcoded presets resemble debug-clang
presets.
Kick-off the workflow to configure, build, test, install and building documentation. You may skip install
and doc
by dropping it from --target
.
The install target of the last command will create the include/ and lib/ directories with a copy of the headers and library objects respectively in your dist location.
Our cmake configure has a number of options, cmake-gui or ccmake can show you all the options. The interesting ones are detailed below:
See jaulib CMake variables for details.
scripts/build-cross.sh
.. cross-buildscripts/rebuild-cross.sh
.. cross-build(FIXME: scripts needs to be overhauled to reflect new CMake build/dist folder)
scripts/test_java.sh
.. invoke a java unit testscripts/test_exe_template.sh
.. invoke the symlink'ed files to invoke native unit tests(FIXME: scripts needs to be overhauled to reflect new CMake build/dist folder)
Also provided is a cross-build script using chroot into a target system using QEMU User space emulation and Linux kernel binfmt_misc to run on other architectures than the host.
You may use our pi-gen branch to produce a Raspi-arm64, Raspi-armhf or PC-amd64 target image.
Tested Eclipse 2024-03 (4.31).
IDE integration configuration files are provided for
https://download.eclipse.org/tools/cdt/releases/cdt-lsp-latest
C/C++ LSP Support
in the Eclipse CDT LSP Category
CMake Support
, install C/C++ CMake Build Support
with ID org.eclipse.cdt.cmake.feature.group
debug-clang
The Hardcoded CMake Presets will use build/default
as the default build folder with debug enabled.
Make sure to set the environment variable CMAKE_BUILD_PARALLEL_LEVEL
to a suitable high number, best to your CPU core count. This will enable parallel build with the IDE.
You can import the project to your workspace via File . Import...
and Existing Projects into Workspace
menu item.
For Eclipse one might need to adjust some setting in the .project
and .cproject
(CDT) via Eclipse settings UI, but it should just work out of the box.
Otherwise recreate the Eclipse project by
.project
and .cproject
File . New . C/C++ Project
and Empty or Existing CMake Project
while using this project folder.IDE integration configuration files are provided for
.settings/org.eclipse.jdt.core.prefs
describes the lint
behaviorFor VSCodium one might copy the example root-workspace file to the parent folder of this project (note the filename change) and adjust the path
to your filesystem.
Then you can open it via File . Open Workspace from File...
menu item.
clang-tidy
enabledclang-tidy
is too slow, just remove it from the settings file.clangd
will still contain a good portion of clang-tidy
checksCipherpack is provided by Gothel Software and Zafena ICT.
If you like to utilize Cipherpack in a commercial setting, please contact Gothel Software to setup a potential support contract.
1.1.4
1.1.1
Java_org_jau_sys_Clock_get[Monotonic|WallClock]TimeImpl()
for JNI callbacksjau::io::ByteInStream_[URL|Feed]
utilize blocking read-operations w/o knowledge of content-size1.0.0
0.6.0
CIPHERPACK_0003
and API doc0.5.0
encryptThenSign()
and checkSignThenDecrypt()
base function0.4.0
0.0.0