[jsonrpc].tls = { cert, key } makes the endpoint terminate TLS itself,
which also enables HTTP/2 (ALPN), so traffic is encrypted right up to
fedserv — for when it runs on a different host from the site, or the
browser's TLS should reach it directly. Absent = plain HTTP for a
reverse-proxy front. Reuses the same cert/key shape as [grpc]; a crypto
provider is pinned before building the config (the tree carries more than
one). Verified the TLS config builds against a real cert without a
provider panic.
42 lines
1.3 KiB
TOML
42 lines
1.3 KiB
TOML
[workspace]
|
|
members = ["api", "inspircd", "chanserv", "nickserv", "example", "botserv", "memoserv", "statserv"]
|
|
|
|
[package]
|
|
name = "fedserv"
|
|
version = "0.0.1"
|
|
edition = "2021"
|
|
description = "Federated IRC services daemon (protocol-agnostic core, InspIRCd link first)"
|
|
|
|
[dependencies]
|
|
fedserv-api = { path = "api" }
|
|
fedserv-inspircd = { path = "inspircd" }
|
|
fedserv-chanserv = { path = "chanserv" }
|
|
fedserv-nickserv = { path = "nickserv" }
|
|
fedserv-example = { path = "example" }
|
|
fedserv-botserv = { path = "botserv" }
|
|
fedserv-memoserv = { path = "memoserv" }
|
|
fedserv-statserv = { path = "statserv" }
|
|
tokio = { version = "1", features = ["net", "io-util", "rt-multi-thread", "macros", "time", "sync", "process"] }
|
|
serde = { version = "1", features = ["derive"] }
|
|
serde_json = "1"
|
|
toml = "0.8"
|
|
argon2 = { version = "0.5", features = ["std"] }
|
|
base64 = "0.22"
|
|
sha2 = "0.10"
|
|
hmac = "0.12"
|
|
pbkdf2 = { version = "0.12", default-features = false, features = ["hmac"] }
|
|
subtle = "2"
|
|
regex = "1"
|
|
anyhow = "1"
|
|
tracing = "0.1"
|
|
tracing-subscriber = { version = "0.3", features = ["env-filter"] }
|
|
tokio-rustls = "0.26.4"
|
|
rustls-pemfile = "2.2.0"
|
|
tonic = { version = "0.12", features = ["tls"] }
|
|
axum = "0.7"
|
|
axum-server = { version = "0.7", features = ["tls-rustls"] }
|
|
prost = "0.13"
|
|
tokio-stream = "0.1"
|
|
|
|
[build-dependencies]
|
|
tonic-build = "0.12"
|