feat(M4): Windows WinForms client, TOFU identity pinning, VAD threshold + always-on mode

Core ABI extensions (voicecat.h):
- vc_list_channels / vc_list_users / vc_list_user_streams — pull-based snapshot getters
  for the channel-tree and user-list UI; session_model_mu_ guards cross-thread reads
- VC_EVENT_JOIN_RESULT / vc_join_channel — channel join with optional password
- VC_EVENT_SERVER_IDENTITY + vc_confirm_server_identity — TOFU gate that blocks io_thread_
  until the UI approves or rejects; pins TLS leaf-cert SHA-256 (not declared Ed25519)
- vc_get_server_identity_display — Ed25519 fingerprint for human-readable display only
- VC_INPUT_ALWAYS_ON = 2 in vc_input_mode — transmit unconditionally, no VAD gate
- vc_set_vad_threshold — live RMS threshold update (0.0–1.0); EnergyVadProcessor stores
  it atomically so the audio RT path reads without a lock

C++ implementation:
- SessionModel::apply_snapshot / apply_channel_event fixed to populate parent_id,
  password_protected, and max_users (were permanently zeroed)
- TlsContext::peer_cert_fingerprint — SHA-256 of peer leaf cert DER via mbedTLS
- TofuStore split into peek (read-only) + pin (write) so first-connect only persists
  after user approval; tofu_store_path in vc_config for per-user pin file location
- TcpAcceptor uses dual-stack IPv6+IPv4 fallback (fixes localhost → ::1 on Windows)
- windows-client CMake preset: Release shared DLL, static MinGW runtime, no tools/tests
- New C++ tests: test_channel_user_list_abi, test_tofu_flow (14/14 green)

Windows client (clients/windows/ — .NET 10 WinForms):
- VoiceCat.Interop: LibraryImport P/Invoke surface, UnmanagedCallersOnly callbacks,
  Channel<VoiceCatEvent> event delivery drained by 30ms WinForms Timer
- VoiceCat.App: ConnectDialog (saved servers, DPAPI password storage), ServerIdentity-
  Dialog (TOFU first-connect / mismatch warning), MainForm (channel TreeView, user
  ListBox, RichTextBox chat, voice controls, device pickers, VAD/PTT/always-on mode,
  per-user gain/mute/NR tuning, VAD sensitivity TrackBar, level meter ProgressBar)
- PttKeyCaptureDialog — focus-scoped PTT key capture (documented limitation)
- PerUserTuningDialog — real-time gain/mute/NR applied to all of a user's streams
- Accessibility: explicit AccessibleName/Description on every control, & mnemonics,
  Activity log ListBox as durable screen-reader record, AutomationNotification for
  curated live announcements

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
2026-06-17 00:35:16 +02:00
parent 5be869c61a
commit 63b241cc2e
56 changed files with 4685 additions and 35 deletions

View File

@@ -0,0 +1,80 @@
using VoiceCat.App.Models;
namespace VoiceCat.App.Forms;
/// <summary>Add or edit a saved server entry. DialogResult.OK -> read Result.</summary>
public partial class AddServerDialog : Form
{
private readonly SavedServer _editing;
private bool _passwordChanged;
public SavedServer? Result { get; private set; }
public AddServerDialog(SavedServer? existing = null)
{
InitializeComponent();
_editing = existing ?? new SavedServer();
txtDisplayName.Text = _editing.DisplayName;
txtHost.Text = _editing.Host;
numPort.Value = _editing.Port == 0 ? 8384 : _editing.Port;
txtNickname.Text = _editing.LastNickname;
radioGuest.Checked = _editing.AuthMode == AuthMode.Guest;
radioPassword.Checked = _editing.AuthMode == AuthMode.Password;
txtUsername.Text = _editing.SavedUsername ?? "";
chkRememberPassword.Checked = _editing.ProtectedPasswordBase64 is not null;
if (_editing.ProtectedPasswordBase64 is not null)
txtPassword.Text = "********"; // placeholder — never decrypt-and-show; re-typing replaces it
UpdateAuthFieldsEnabled();
radioGuest.CheckedChanged += (_, _) => UpdateAuthFieldsEnabled();
radioPassword.CheckedChanged += (_, _) => UpdateAuthFieldsEnabled();
txtPassword.TextChanged += (_, _) => _passwordChanged = true;
btnOk.Click += BtnOk_Click;
}
private void UpdateAuthFieldsEnabled()
{
bool password = radioPassword.Checked;
txtNickname.Enabled = !password;
txtUsername.Enabled = password;
txtPassword.Enabled = password;
chkRememberPassword.Enabled = password;
}
private void BtnOk_Click(object? sender, EventArgs e)
{
if (string.IsNullOrWhiteSpace(txtHost.Text))
{
MessageBox.Show(this, "Host is required.", "VoiceCat", MessageBoxButtons.OK, MessageBoxIcon.Warning);
DialogResult = DialogResult.None;
return;
}
_editing.DisplayName = txtDisplayName.Text.Trim();
_editing.Host = txtHost.Text.Trim();
_editing.Port = (ushort)numPort.Value;
_editing.AuthMode = radioPassword.Checked ? AuthMode.Password : AuthMode.Guest;
if (_editing.AuthMode == AuthMode.Guest)
{
_editing.LastNickname = txtNickname.Text.Trim();
_editing.SavedUsername = null;
_editing.ProtectedPasswordBase64 = null;
}
else
{
_editing.SavedUsername = txtUsername.Text.Trim();
if (chkRememberPassword.Checked && _passwordChanged && txtPassword.Text.Length > 0)
_editing.ProtectedPasswordBase64 = PasswordProtector.Protect(txtPassword.Text);
else if (!chkRememberPassword.Checked)
_editing.ProtectedPasswordBase64 = null;
// else: remember-password still checked and password box untouched (still shows
// the placeholder) — keep whatever was already protected/stored.
}
Result = _editing;
DialogResult = DialogResult.OK;
}
}