feat(M1): TCP/TLS control plane -- auth, channels, ephemeral text
Implements the full M1 milestone. Two clients authenticate over TLS 1.3 (guest + Argon2id password) and exchange channel + private text messages through a real server. All five ctest --preset m1-dev tests pass in ~1 s. Key components added: - vcpkg baseline + m1-dev preset (protobuf/mbedTLS/libsodium/asio/sqlite3) - FrameCodec feed+emit, encode/decode_envelope, protobuf codegen - TcpServerConn with blocking TLS handshake thread + tls_read_loop - TlsContext (mbedTLS 1.3, ECDSA-P256 self-signed cert, TOFU on client) - WorkerPool (3 threads, used for Argon2id) - Database: SQLite + libsodium Argon2id, account lifecycle, bootstrap admin - ServerIdentityManager: Ed25519 key + cert generate/persist/fingerprint - ConnSession state machine: WaitingHello -> WaitingAuth -> Authenticated - SessionRegistry: channel tree, user map, text routing, broadcast - vc_client full M1 C ABI: connect/TLS/handshake/auth/text/disconnect - voicecat-admin CLI: account add/reset/del/list - test_m1_integration: M1 exit criterion, verified green Bug fixed: double-framing in ConnSession::send_envelope -- encode_envelope was adding the [4-byte len] prefix, then TcpServerConn::send_frame added a second one, causing the client to parse [len][proto] as protobuf (silent failure). Fixed by serializing raw protobuf bytes in send_envelope and letting send_frame apply the single length prefix. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
21
vcpkg.json
21
vcpkg.json
@@ -3,19 +3,16 @@
|
||||
"name": "voicecat",
|
||||
"version": "0.0.1",
|
||||
"description": "Self-hosted native voice & text chat. See docs/.",
|
||||
"builtin-baseline": "0000000000000000000000000000000000000000",
|
||||
"$comment-baseline": "TODO: set builtin-baseline to a real vcpkg commit SHA when first enabling VOICECAT_USE_VCPKG_DEPS. Until then the skeleton builds with deps OFF and this manifest is inert.",
|
||||
"builtin-baseline": "d46283cf33cf5de7bd88e12156ce03882be1f179",
|
||||
"dependencies": [
|
||||
{ "name": "opus", "$why": "voice codec (libopus 1.6) — docs/voice.md" },
|
||||
{ "name": "libsodium", "$why": "Argon2id, ChaCha20-Poly1305 media AEAD, Ed25519 — docs/security.md" },
|
||||
{ "name": "mbedtls", "$why": "TLS 1.3 control channel + keying-material exporter — docs/security.md" },
|
||||
{ "name": "protobuf", "$why": "control-plane serialization — docs/protocol.md" },
|
||||
{ "name": "sqlite3", "$why": "server accounts/state — docs/security.md" },
|
||||
{ "name": "asio", "$why": "TCP/UDP/timers reactor — docs/architecture.md" },
|
||||
{ "name": "miniaudio", "$why": "cross-platform capture/playback — docs/tech-stack.md" },
|
||||
{ "name": "speexdsp", "$why": "resampling + jitter reference — docs/tech-stack.md" },
|
||||
{ "name": "webrtc-audio-processing", "$why": "AEC/NS/AGC/VAD (APM) — docs/voice.md" },
|
||||
{ "name": "spdlog", "$why": "logging — docs/tech-stack.md" }
|
||||
{ "name": "protobuf", "$why": "control-plane serialization — docs/protocol.md" },
|
||||
{ "name": "libsodium", "$why": "Argon2id, ChaCha20-Poly1305 media AEAD, Ed25519 — docs/security.md" },
|
||||
{ "name": "mbedtls", "$why": "TLS 1.3 control channel + keying-material exporter — docs/security.md" },
|
||||
{ "name": "asio", "$why": "TCP/UDP/timers reactor — docs/architecture.md" },
|
||||
{ "name": "sqlite3", "$why": "server accounts/state — docs/security.md" },
|
||||
{ "name": "spdlog", "$why": "logging — docs/tech-stack.md" },
|
||||
{ "name": "opus", "$why": "voice codec (libopus) — docs/voice.md — M2" },
|
||||
{ "name": "miniaudio", "$why": "cross-platform capture/playback — docs/tech-stack.md — M2" }
|
||||
],
|
||||
"$license-note": "All of the above are permissive (BSD/MIT/ISC/Apache-2.0/public-domain). No GPL/LGPL — see docs/tech-stack.md §5."
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user