| Commit message (Collapse) | Author | Age | Files | Lines |
| ... | |
| | |
|
| |
|
|
|
|
|
|
| |
Introduce exec_process() to handle external command execution, stdin
piping, and error reporting. Now cleanup() and apply_nft_rules() call
exec_process() to call modprobe, nft respectively.
This improves error handling for cleanup xt_u32.
|
| |
|
|
|
| |
Do not log errors if cleanup fails during startup.
Retain error logging for cleanup failures on shutdown.
|
| |
|
|
|
| |
nftables-rs didn’t fit use case, so it was decoupled, and logging was
improved.
|
| | |
|
| | |
|
| |
|
|
|
|
|
| |
`CloseAction::Uninstall` triggers ERROR_INVALID_NAME (0x8007007B) on Windows,
likely due to the crate passing a non–NUL-terminated "WinDivert" string to
`OpenServiceA`. For now, skip uninstallation and just close the handle
normally. Added a FIXME comment with details.
|
| | |
|
| | |
|
| |
|
|
|
|
|
|
| |
Add additional nftables match expressions to detect TLS records
(ContentType 0x16 = Handshake): and specifically ClientHello
(HandshakeType 0x01):. Packets matching this pattern are queued to
NFQUEUE. Mark xt_u32 as supported when nftables filtering is
successfully applied.
|
| |
|
|
|
|
|
|
|
|
| |
Introduce nftables rules under a dedicated "dpibreak" table and
chain. Traffic on TCP port 443 is queued using NFQUEUE. If nftables
is not supported, fall back to the existing iptables-based rules
for both IPv4 and IPv6.
Also update cleanup logic to remove nftables table if used, or
iptables rules otherwise.
|
| | |
|
| |
|
|
|
|
|
| |
* Extracted: repeated split/send/sleep logic from `handle_packet` into
new `split_packet_1` function for clarity and reuse.
* Simplifies: `handle_packet` by replacing manual steps with a single
call.
|
| |
|
|
| |
This removes unnecessary allocations per packet handling.
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
* Introduce: `splash!` macro in `log.rs` to print startup messages
conditionally, based on `--no-splash` flag.
* Move: `NO_SPLASH` management into `log.rs` with helper
functions: (`set_no_splash`, `no_splash`).
* Remove: old `splash()` function in `main.rs` and replace with
`splash!` macro usage.
* Set: default `LogLevel` according to build profile (Debug → Debug,
Release → Warning).
* Print: unified startup messages across Linux and Windows, including
`MESSAGE_AT_RUN`.
|
| | |
|
| | |
|
| |
|
|
| |
* Use: Cargo.toml inside on program
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
* Introduce: `DEFAULT_LOG_LEVEL` and `LOG_LEVEL_OVERRIDE` (OnceLock)
in log.rs.
* Add: `set_log_level()` and `current_log_level()`; gate defaults by
`debug_assertions`.
* Implement: `FromStr` for `LogLevel` with a proper error
type (`ParseLogLevelError`).
* Update: `log_println!` to respect `current_log_level()` and use
`format_args!`.
* Extend: CLI: `--loglevel <debug|info|warning|error>` and reflect it
in `usage()`.
* Replace: ad-hoc prints with `log_println!` and plumb parsed level
into `set_log_level`.
|
| |
|
|
|
|
| |
* Remove: unused `Fatal` variant from `LogLevel`.
* Update: comment on `Error` to indicate it represents unrecoverable
errors.
|
| |
|
|
|
|
|
|
|
| |
* Set: `LOG_LEVEL` to `Debug` in debug builds and `Warning` in release
builds via `#[cfg(debug_assertions)]`.
* Replace: direct `println!` calls with `log_println!` for packet
handling, warning messages, and argument parsing errors.
* Ensures: consistent log formatting and respects the global log level
configuration across the codebase.
|
| |
|
|
|
|
|
|
|
| |
Introduce `EnsureCleanup` struct with a `Drop` implementation that
calls `platform::cleanup()`. This guarantees cleanup is always
performed after a successful bootstrap, regardless of how execution
exits. Error handling is centralized in `main()`, where errors are
logged once with their cause chain, and the process exits with the
appropriate status code.
|
| | |
|
| | |
|
| | |
|
| |
|
|
|
|
| |
Define the TCP:443 outbound filter as a constant and reuse it in
WinDivert::network. Add a log message when the handle is successfully
constructed for better visibility during runtime.
|
| | |
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
| |
* Replace once_cell::Lazy with plain AtomicBool
|
| | |
|
| | |
|
| |
|
|
|
|
|
|
| |
* Remove: wildcard import from platform and top-level TLSMsg import.
* Add: local use of TLSMsg inside is_client_hello().
* Add: local use of send_to_raw() inside handle_packet().
* Qualify: IS_U32_SUPPORTED, QUEUE_NUM, bootstrap(), run(), and
cleanup() with platform::.
|
| |
|
|
|
|
| |
* Remove nested TLSMsg::new() invocation.
* Introduce fragment variable for readability.
* Simplify control flow by flattening record parsing.
|
| |
|
|
|
|
|
| |
* Remove Arc<AtomicBool> indirection and introduce global RUNNING.
* Rename plant_handler() to trap_exit() for clarity.
* Update run() implementations on Linux and Windows to use RUNNING directly.
* Drop unused imports in main.rs, linux.rs, and windows.rs.
|
| | |
|
| |
|
|
|
|
|
| |
Previously split_packet used truncate() after writing, which could
leave stale data from earlier writes. This patch calls clear() before
builder.write() to ensure the buffer only contains the current packet
contents.
|
| |
|
|
|
|
|
|
|
|
|
| |
This change introduces basic CLI parsing for --delay-ms,
--queue-num (Linux only), and -h/--help. A usage() function was added,
and error/help output now goes to stdout for consistency.
Global constants DELAY_MS and QUEUE_NUM are replaced with
OnceLock-based initialization, with helper accessors delay_ms() and
queue_num(). The Linux platform code is updated accordingly to use
queue_num() instead of a constant.
|
| |
|
|
|
| |
Extracted common args.next() + parse logic into take_value() to remove
duplication in --delay-ms and --queue-num handling.
|
| | |
|
| | |
|
| | |
|
| | |
|
| | |
|