summaryrefslogtreecommitdiff
path: root/config.md
blob: 772c1c6ee17bbd1f42018570904ff6b2462a0321 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
---
title: Configuring and Building HaxIRCd
---

# `.makeopts`
```makefile
LAST_PLAINTEXT_CLIENT = 
LAST_PLAINTEXT_SERVER = 1
LAST_GNUTLS_CLIENT = 
LAST_GNUTLS_SERVER = 
LAST_OPENSSL_CLIENT = 
LAST_OPENSSL_SERVER = 1
LAST_PLAINTEXT_BUFFERED_CLIENT = 
LAST_PLAINTEXT_BUFFERED_SERVER = 1
LAST_GNUTLS_BUFFERED_CLIENT = 
LAST_GNUTLS_BUFFERED_SERVER =   
LAST_OPENSSL_BUFFERED_CLIENT = 
LAST_OPENSSL_BUFFERED_SERVER = 1
LAST_INSPIRCD2_PROTOCOL = 1
LAST_INSPIRCD3_PROTOCOL = 1
LAST_INSPIRCD4_PROTOCOL = 1
LAST_HAXSERV_PSEUDOCLIENT = 1
LAST_SERVICES_PSEUDOCLIENT = 1
LAST_SAFE_STACK = 1
LAST_FUTEX = 1
LAST_MISERABLE_SPINLOCKS = 
LAST_ATOMICS = 1
LAST_IPv6 = 1
LAST_CFLAGS = 
LAST_CC = cc
```

# `config.c`
```c
#include <time.h>

#include "config.h"
#include "general_network.h"
#include "protocols.h"

#ifdef USE_SERVER
#include "server_network.h"
#endif

#ifdef USE_SERVER
struct server_config SERVER_CONFIG[] = {
	{
	 .name = STRING("peer.server.name"),
	 /*
	  * The name of the remote server. Must be in a valid DNS format,
	  * but doesn't have to resolve.
	  */

	 .sid = STRING("1UL"),
	 /*
	  * The server ID of the remote server. The format depends on the
	  * protocol, but most protocols expect a three-byte string,
	  * where the first byte is a number and the two subsequent
	  * bytes are alphanumeric. Letters should usually be in
	  * uppercase. Server IDs are not translted between protocols
	  * so a uniform format is generally required.
	  */

	 .in_pass = STRING("password-to-expect-from-peer"),
	 .out_pass = STRING("password-to-send-to-peer"),
	 /*
	  * Passwords, should be self-explanatory.
	  */

	 .protocol = INSPIRCD4_PROTOCOL,
	 /*
	  * Which protocol to use. Currently, only InspIRCd protocols are
	  * supported. A custom HaxIRCd binary protocol is planned, and
	  * support for TS6, UnrealIRCd, and other protocols may be added.
	  *
	  * INSPIRCD4_PROTOCOL: the 1206 protocol native to InspIRCd v4
	  * INSPIRCD3_PROTOCOL: the 1205 protocol native to InspIRCd v3
	  * INSPIRCD2_PROTOCOL: the 1202 protocol native to InspIRCd v2
	  */

	 .ignore_remote_unlinks = 0,
	 .ignore_remote_kills = 1,
	 .ignore_local_kills = 1,

	 .autoconnect = 1,
	 .autoconnect_type = NET_TYPE_PLAINTEXT,
	 /*
	  * TLS links are highly recommended if not connecting to localhost
	  * or otherwise over a secure channel such as WireGuard. Although
	  * GnuTLS is supported, the primary developers use OpenSSL, and
	  * OpenSSL is more common anyways.
	  * Buffering is also highly recommended as it measurably improves
	  * performance.
	  *
	  * NET_TYPE_PLAINTEXT: Plain TCP link
	  * NET_TYPE_GNUTLS: GnuTLS link
	  * NET_TYPE_OPENSSL: OpenSSL link
	  * NET_TYPE_PLAINTEXT_BUFFERED: Plain TCP link with buffering
	  * NET_TYPE_GNUTLS_BUFFERED: GnuTLS link with buffering
	  * NET_TYPE_OPENSSL_BUFFERED: OpenSSL link with buffering
	  */

	 .address = STRING("127.0.0.1"),
	 /*
	  * The address to connect to, either as an IP address or as a domain
	  * name.
	  * If it is possible that getaddrinfo(3) returns an IPv6 address, or
	  * if an IPv6 address is specified directly, then IPv6 MUST be
	  * enabled; otherwise the behavior is undefined.
	  */

	 .port = STRING("7000"),
	 },
};

size_t SERVER_CONFIG_LEN = sizeof(SERVER_CONFIG) / sizeof(*SERVER_CONFIG);
#endif

struct string SID = STRING("2TX");
/*
 * Our own server ID. Most protocols expect a three-byte string,
 * where the first byte is a number and the two subsequent
 * bytes are alphanumeric. Letters should usually be in
 * uppercase. Server IDs are not translted between protocols
 * so a uniform format is generally required.
 */

struct string SERVER_NAME = STRING("h.learn.tuxiversity.org");
/*
 * Our server name. Well-formed DNS, doesn't have to resolve.
 */

struct string SERVER_FULLNAME = STRING("HaxIRCd");
/*
 * Our server description.
 */

time_t PING_INTERVAL = 60;
/*
 * How many seconds between sending PINGs.
 */

#ifdef USE_GNUTLS
char GNUTLS_USE_SYSTEM_TRUST = 1;
char *GNUTLS_CERT_PATH = "/etc/letsencrypt/live/learn.tuxiversity.org/fullchain.pem";
char *GNUTLS_KEY_PATH = "/etc/letsencrypt/live/learn.tuxiversity.org/privkey.pem";
#endif

#ifdef USE_OPENSSL
char OPENSSL_USE_SYSTEM_TRUST = 1;
char *OPENSSL_CERT_PATH = "/etc/letsencrypt/live/learn.tuxiversity.org/fullchain.pem";
char *OPENSSL_KEY_PATH = "/etc/letsencrypt/live/learn.tuxiversity.org/privkey.pem";
#endif

/*
 * NOTE: We do not check the validity of TLS certificates yet. CertFP
 * authentication will be added later.
 */

#ifdef USE_SERVER
unsigned short SERVER_PORTS[NUM_NET_TYPES][NUM_PROTOCOLS] = {
#ifdef USE_PLAINTEXT
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD2_PROTOCOL] = 7001,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD3_PROTOCOL] = 7002,
#endif
#endif
#ifdef USE_GNUTLS
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD2_PROTOCOL] = 7011,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD3_PROTOCOL] = 7012,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD4_PROTOCOL] = 7013,
#endif
#endif
#ifdef USE_OPENSSL
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD2_PROTOCOL] = 7021,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD3_PROTOCOL] = 7022,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD4_PROTOCOL] = 7023,
#endif
#endif
};

size_t SERVER_LISTEN[NUM_NET_TYPES][NUM_PROTOCOLS] = {
#ifdef USE_PLAINTEXT
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD2_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD3_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD4_PROTOCOL] = 16,
#endif
#endif
#ifdef USE_GNUTLS
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD2_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD3_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD4_PROTOCOL] = 16,
#endif
#endif
#ifdef USE_OPENSSL
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD2_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD3_PROTOCOL] = 16,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD4_PROTOCOL] = 16,
#endif
#endif
};

char SERVER_INCOMING[NUM_NET_TYPES][NUM_PROTOCOLS] = {
#ifdef USE_PLAINTEXT
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD2_PROTOCOL] = 0,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD3_PROTOCOL] = 0,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_PLAINTEXT][INSPIRCD4_PROTOCOL] = 0,
#endif
#endif
#ifdef USE_GNUTLS
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD2_PROTOCOL] = 0,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD3_PROTOCOL] = 0,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_GNUTLS][INSPIRCD4_PROTOCOL] = 0,
#endif
#endif
#ifdef USE_OPENSSL
#ifdef USE_INSPIRCD2_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD2_PROTOCOL] = 1,
#endif
#ifdef USE_INSPIRCD3_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD3_PROTOCOL] = 0,
#endif
#ifdef USE_INSPIRCD4_PROTOCOL
	[NET_TYPE_OPENSSL][INSPIRCD4_PROTOCOL] = 0,
#endif
#endif
};
#endif

#ifdef USE_HAXSERV_PSEUDOCLIENT
struct string HAXSERV_UID = STRING("2TX000000");
/* 
 * The UID of the HaxServ pseudoclient. For compatibility with most
 * protocols, this should be 9 bytes long, and the first 3 bytes
 * must match the SID.
 */

struct string HAXSERV_NICK = STRING("TuxServ");
struct string HAXSERV_FULLNAME = STRING("TuxServ");
struct string HAXSERV_IDENT = STRING("TuxServ");
struct string HAXSERV_VHOST = STRING("services/TuxServ");
struct string HAXSERV_HOST = STRING("/dev/full");
struct string HAXSERV_ADDRESS = STRING("/dev/null");

struct string HAXSERV_PREJOIN_CHANNELS[] = {
	STRING("#chat"),
	STRING("#services"),
	STRING("#spam"),
};

size_t HAXSERV_NUM_PREJOIN_CHANNELS =
    sizeof(HAXSERV_PREJOIN_CHANNELS) / sizeof(*HAXSERV_PREJOIN_CHANNELS);

struct string HAXSERV_COMMAND_PREFIX = STRING("TuxServ: ");

struct string HAXSERV_REQUIRED_OPER_TYPE = STRING("NetAdmin");
/*
 * Which operator class is required to access HaxServ's extended
 * command set? Note that HaxServ includes dangerous commands such
 * as raw S2S message injections and SPAM.
 */

struct string HAXSERV_LOG_CHANNEL = STRING("#services");
/*
 * HaxServ logs command usages to a channel. Specify the channel here.
 */
#endif

#ifdef USE_PLAINTEXT_BUFFERED
size_t PLAINTEXT_BUFFERED_LEN = 1048576;
#endif
#ifdef USE_GNUTLS_BUFFERED
size_t GNUTLS_BUFFERED_LEN = 1048576;
#endif
#ifdef USE_OPENSSL_BUFFERED
size_t OPENSSL_BUFFERED_LEN = 1048576;
#endif
/*
 * You may specify the size of the ring buffers for each buffered
 * network backend here. They must be larger than any full message;
 * otherwise, undefined behavior occurs.
 */

#ifdef USE_HAXSERV_PSEUDOCLIENT
struct string NICKSERV_UID = STRING("2TX000001");
struct string NICKSERV_NICK = STRING("TuxNickServ");
struct string NICKSERV_FULLNAME = STRING("Tux's Nickname Services");
struct string NICKSERV_IDENT = STRING("TuxNickServ");
struct string NICKSERV_VHOST = STRING("services/TuxNickServ");
struct string NICKSERV_HOST = STRING("localhost");
struct string NICKSERV_ADDRESS = STRING("/dev/null");
struct string SERVICES_CHANNEL = STRING("#services");
size_t SERVICES_DB_MAX_SIZE = 104857600;
struct string SERVICES_DB_PATH = STRING("services.mdb");
#endif
```