* Move portbase into monorepo * Add new simple module mgr * [WIP] Switch to new simple module mgr * Add StateMgr and more worker variants * [WIP] Switch more modules * [WIP] Switch more modules * [WIP] swtich more modules * [WIP] switch all SPN modules * [WIP] switch all service modules * [WIP] Convert all workers to the new module system * [WIP] add new task system to module manager * [WIP] Add second take for scheduling workers * [WIP] Add FIXME for bugs in new scheduler * [WIP] Add minor improvements to scheduler * [WIP] Add new worker scheduler * [WIP] Fix more bug related to new module system * [WIP] Fix start handing of the new module system * [WIP] Improve startup process * [WIP] Fix minor issues * [WIP] Fix missing subsystem in settings * [WIP] Initialize managers in constructor * [WIP] Move module event initialization to constrictors * [WIP] Fix setting for enabling and disabling the SPN module * [WIP] Move API registeration into module construction * [WIP] Update states mgr for all modules * [WIP] Add CmdLine operation support * Add state helper methods to module group and instance * Add notification and module status handling to status package * Fix starting issues * Remove pilot widget and update security lock to new status data * Remove debug logs * Improve http server shutdown * Add workaround for cleanly shutting down firewall+netquery * Improve logging * Add syncing states with notifications for new module system * Improve starting, stopping, shutdown; resolve FIXMEs/TODOs * [WIP] Fix most unit tests * Review new module system and fix minor issues * Push shutdown and restart events again via API * Set sleep mode via interface * Update example/template module * [WIP] Fix spn/cabin unit test * Remove deprecated UI elements * Make log output more similar for the logging transition phase * Switch spn hub and observer cmds to new module system * Fix log sources * Make worker mgr less error prone * Fix tests and minor issues * Fix observation hub * Improve shutdown and restart handling * Split up big connection.go source file * Move varint and dsd packages to structures repo * Improve expansion test * Fix linter warnings * Fix interception module on windows * Fix linter errors --------- Co-authored-by: Vladimir Stoilov <vladimir@safing.io>
50 lines
1.1 KiB
Go
50 lines
1.1 KiB
Go
package updater
|
|
|
|
import (
|
|
"strings"
|
|
|
|
"github.com/safing/jess"
|
|
)
|
|
|
|
// VerificationOptions holds options for verification of files.
|
|
type VerificationOptions struct {
|
|
TrustStore jess.TrustStore
|
|
DownloadPolicy SignaturePolicy
|
|
DiskLoadPolicy SignaturePolicy
|
|
}
|
|
|
|
// GetVerificationOptions returns the verification options for the given identifier.
|
|
func (reg *ResourceRegistry) GetVerificationOptions(identifier string) *VerificationOptions {
|
|
if reg.Verification == nil {
|
|
return nil
|
|
}
|
|
|
|
var (
|
|
longestPrefix = -1
|
|
bestMatch *VerificationOptions
|
|
)
|
|
for prefix, opts := range reg.Verification {
|
|
if len(prefix) > longestPrefix && strings.HasPrefix(identifier, prefix) {
|
|
longestPrefix = len(prefix)
|
|
bestMatch = opts
|
|
}
|
|
}
|
|
|
|
return bestMatch
|
|
}
|
|
|
|
// SignaturePolicy defines behavior in case of errors.
|
|
type SignaturePolicy uint8
|
|
|
|
// Signature Policies.
|
|
const (
|
|
// SignaturePolicyRequire fails on any error.
|
|
SignaturePolicyRequire = iota
|
|
|
|
// SignaturePolicyWarn only warns on errors.
|
|
SignaturePolicyWarn
|
|
|
|
// SignaturePolicyDisable only downloads signatures, but does not verify them.
|
|
SignaturePolicyDisable
|
|
)
|