From 5abe508bfef8372472d66adf69cf08e07125820c Mon Sep 17 00:00:00 2001 From: Laurent Bercot Date: Tue, 21 Nov 2017 16:12:18 +0000 Subject: Initial commit --- doc/index.html | 134 ++++++++++++++++++++++++++++++++++++ doc/skabus-dyntee-client.html | 57 ++++++++++++++++ doc/skabus-dyntee.html | 123 +++++++++++++++++++++++++++++++++ doc/skabus-dynteed.html | 154 ++++++++++++++++++++++++++++++++++++++++++ doc/upgrade.html | 28 ++++++++ 5 files changed, 496 insertions(+) create mode 100644 doc/index.html create mode 100644 doc/skabus-dyntee-client.html create mode 100644 doc/skabus-dyntee.html create mode 100644 doc/skabus-dynteed.html create mode 100644 doc/upgrade.html (limited to 'doc') diff --git a/doc/index.html b/doc/index.html new file mode 100644 index 0000000..140f1e5 --- /dev/null +++ b/doc/index.html @@ -0,0 +1,134 @@ + + + + + + skabus - a Unix bus system + + + + + + +

+Software
+skarnet.org +

+ +

skabus

+ +

What is it ?

+ +

+ skabus is a suite of programs and libraries for Unix systems +that aim to implement a bus, i.e. a many-to-many interprocess +communication mechanism. +

+ +

+ It is very much a work in progress, and won't be complete for a long time. +For now, it looks like a random collection of tools, even though there is +a consistent vision behind them. +

+ +
+ + +
  • An overview of skabus
  • + + +
    +--> + +

    Installation

    + +

    Requirements

    + + + +

    Licensing

    + +

    + skabus is free software. It is available under the +ISC license. +

    + +

    Download

    + + + +

    Compilation

    + + + +

    Upgrade notes

    + + + +
    + +

    Reference

    + +

    Commands

    + +

    + All these commands exit 111 if they encounter a temporary error or +hardware error, and +100 if they encounter a permanent error - such as a misuse. Short-lived +commands exit 0 on success. Other exit codes are documented in the +relevant page. +

    + +

    Publication/subscription

    + + + +
    + + +

    Related resources

    +
    + +

    skabus discussion

    + + + +

    Similar work

    + + + + + diff --git a/doc/skabus-dyntee-client.html b/doc/skabus-dyntee-client.html new file mode 100644 index 0000000..1f54a8b --- /dev/null +++ b/doc/skabus-dyntee-client.html @@ -0,0 +1,57 @@ + + + + + + skabus: the skabus-dyntee-client program + + + + + + +

    +skabus
    +Software
    +skarnet.org +

    + +

    The skabus-dyntee-client program

    + +

    +skabus-dyntee-client is a client for the +skabus-dyntee server. +It connects to a Unix domain socket where a +skabus-dyntee instance is listening, +then executes into a program with the data stream from skabus-dyntee +on its standard input. +

    + +

    Interface

    + +
    +     skabus-dyntee-client path prog...
    +
    + + + +

    Notes

    + + + + + diff --git a/doc/skabus-dyntee.html b/doc/skabus-dyntee.html new file mode 100644 index 0000000..57b34f3 --- /dev/null +++ b/doc/skabus-dyntee.html @@ -0,0 +1,123 @@ + + + + + + skabus: the skabus-dyntee program + + + + + + +

    +skabus
    +Software
    +skarnet.org +

    + +

    The skabus-dyntee program

    + +

    +skabus-dyntee is a dynamic tee, which is the +simplest publisher daemon possible. +It listens on a Unix domain socket, accepts client connections, and +publishes to its clients everything it reads on its standard +input, as a byte stream. It only writes to clients and never reads +from them. +

    + +

    Interface

    + +
    +     skabus-dyntee [ -1 ] [ -D | -d ] [ -c maxconn ] [ -b backlog ] [ -G gidlist ] [ -g gid ] [ -u uid ] [ -U ] [ -t clienttimeout ] [ -T lameducktimeout ] [ -i rulesdir | -x rulesfile ] path
    +
    + + + +

    + skabus-dyntee is just a wrapper that binds to its socket and +drops privileges before executing into +skabus-dynteed. For details of +the daemon's operation, see the +skabus-dynteed documentation. +

    + +

    Options

    + + + +

    Notes

    + + + + + diff --git a/doc/skabus-dynteed.html b/doc/skabus-dynteed.html new file mode 100644 index 0000000..7573f3b --- /dev/null +++ b/doc/skabus-dynteed.html @@ -0,0 +1,154 @@ + + + + + + skabus: the skabus-dynteed program + + + + + + +

    +skabus
    +Software
    +skarnet.org +

    + +

    The skabus-dynteed program

    + +

    +skabus-dynteed is the serving part of the +skabus-dyntee program. +It assumes that one of its file descriptors (3 or above) is a +bound, listening, non-blocking domain socket; +it accepts connections from clients connecting to that socket, +and copies its stdin stream to all its clients. +

    + +

    Interface

    + +
    +     skabus-dynteed [ -1 ] [ -c maxconn ] [ -t clienttimeout ] [ -T lameducktimeout ] [ -i rulesdir | -x rulesfile ]
    +
    + + + +

    Options

    + + + +

    Signals

    + + + + +

    Configuration

    +
    + +

    +skabus-dynteed (or its wrapper skabus-dyntee) +can be instructed not to accept every client. This is achieved +via a series of rules, or ruleset, stored in either a +rulesfile in the +CDB format, +and given to skabus-dynteed with the -x option, +or in a rulesdir, i.e. a directory in the filesystem following a +certain format, and given to skabus-dynteed with the -i option. +If neither the -i nor the -x option has been provided, +skabus-dynteed will accept connections from any client. +

    + +

    + Rulesets can be converted between the rulesdir and +rulesfile formats with the +s6-accessrules-cdb-from-fs and +s6-accessrules-fs-from-cdb +conversion tools. +

    + +

    Rules format

    + +

    + The rules file, or rules directory, follows the +s6 accessrules format for uid and +gid checking. For every connecting client, skabus-dynteed matches the uid +and gid of the client against the provided ruleset, and determines whether +the client is authorized or not to connect. +The right to connect is given if an +allow file is found in one of the subdirectories checked by +s6_accessrules_keycheck_uidgid. +For instance, to allow everyone to connect, touch +rulesdir/uid/default/allow. +

    + +

    + If a rulesfile or rulesdir has been provided to +skabus-dynteed, and the client's uid and gid match no rule in the +ruleset, then the connection is denied. +

    + +

    Notes

    + + + + + diff --git a/doc/upgrade.html b/doc/upgrade.html new file mode 100644 index 0000000..0827f95 --- /dev/null +++ b/doc/upgrade.html @@ -0,0 +1,28 @@ + + + + + + skabus: how to upgrade + + + + + + +

    +skabus
    +Software
    +skarnet.org +

    + +

    What has changed in skabus

    + +

    in 0.0.1.0

    + + + + + -- cgit v1.3.1