Directories
¶
| Path | Synopsis |
|---|---|
|
components
|
|
|
api
Package api provides shared HTTP API handlers (auth, health) and standardized error responses.
|
Package api provides shared HTTP API handlers (auth, health) and standardized error responses. |
|
api/inbox/invites
Package invites provides session-gated API handlers for inbox invites (list, import, accept, decline).
|
Package invites provides session-gated API handlers for inbox invites (list, import, accept, decline). |
|
api/inbox/shares
Package shares provides session-gated API handlers for inbox shares (list, detail, accept, decline, verify-access).
|
Package shares provides session-gated API handlers for inbox shares (list, detail, accept, decline, verify-access). |
|
api/outgoing/invites
Package invites provides the session-gated handler for POST /api/invites/outgoing (create invite tokens).
|
Package invites provides the session-gated handler for POST /api/invites/outgoing (create invite tokens). |
|
api/outgoing/shares
Package shares provides the session-gated handler for POST /api/shares/outgoing (create shares to remote receivers).
|
Package shares provides the session-gated handler for POST /api/shares/outgoing (create shares to remote receivers). |
|
federationvalidator/active/forwardshare
Package forwardshare implements the validator's active forward-share dispatch leg: a policy guard on the generic outgoing-share handler that refuses every non-designated share while a run is active, plus the outbox-backed designated dispatch with a single-winner send permit, idempotent replay, and capability presence healing.
|
Package forwardshare implements the validator's active forward-share dispatch leg: a policy guard on the generic outgoing-share handler that refuses every non-designated share while a run is active, plus the outbox-backed designated dispatch with a single-winner send permit, idempotent replay, and capability presence healing. |
|
federationvalidator/active/identitybind
Package identitybind canonicalizes OCM invite identities for the federation-validator active path.
|
Package identitybind canonicalizes OCM invite identities for the federation-validator active path. |
|
federationvalidator/active/reverseinvite
Package reverseinvite implements the validator's active reverse-invite leg: atomic outgoing invite minting, outgoing-acceptance observation, reverse solicit, paste import, and acceptance orchestration against the live OCM invite domain operations.
|
Package reverseinvite implements the validator's active reverse-invite leg: atomic outgoing invite minting, outgoing-acceptance observation, reverse solicit, paste import, and acceptance orchestration against the live OCM invite domain operations. |
|
federationvalidator/active/reverseshare
Package reverseshare implements the validator's active reverse-share leg: the event-driven wait opened after the capability exercise, the inbound share observer that passes the run on a timely or late reverse share, and the durable terminal-stats retry behind both.
|
Package reverseshare implements the validator's active reverse-share leg: the event-driven wait opened after the capability exercise, the inbound share observer that passes the run on a timely or late reverse share, and the durable terminal-stats retry behind both. |
|
federationvalidator/active/runner
Package runner drives the validator active-session kick and heal loop.
|
Package runner drives the validator active-session kick and heal loop. |
|
federationvalidator/catalog
Package catalog is the validator route and capability SSOT.
|
Package catalog is the validator route and capability SSOT. |
|
federationvalidator/core
Package core holds federation validator shared state wired at startup.
|
Package core holds federation validator shared state wired at startup. |
|
federationvalidator/httpsigprobe
Package httpsigprobe runs a signed two-request differential against a probe-only dummy URL.
|
Package httpsigprobe runs a signed two-request differential against a probe-only dummy URL. |
|
federationvalidator/jwksprobe
Package jwksprobe fetches and grades a peer JWKS document without store I/O.
|
Package jwksprobe fetches and grades a peer JWKS document without store I/O. |
|
identity
Package identity provides user management, authentication, and session handling.
|
Package identity provides user management, authentication, and session handling. |
|
identity/sessiongate
Package sessiongate provides session authentication middleware for HTTP servers.
|
Package sessiongate provides session authentication middleware for HTTP servers. |
|
ocm/access
Package access provides remote file access for incoming OCM shares.
|
Package access provides remote file access for incoming OCM shares. |
|
ocm/address
Package address provides OCM address parsing and formatting.
|
Package address provides OCM address parsing and formatting. |
|
ocm/directoryservice
Package directoryservice fetches and verifies OCM directory service listings.
|
Package directoryservice fetches and verifies OCM directory service listings. |
|
ocm/discovery/resolve
Package resolve derives OCM discovery provider configuration from service-local TOML plus narrow ResolveInputs supplied by wiring.
|
Package resolve derives OCM discovery provider configuration from service-local TOML plus narrow ResolveInputs supplied by wiring. |
|
ocm/inbound/signature
Package signature verifies inbound OCM HTTP request signatures.
|
Package signature verifies inbound OCM HTTP request signatures. |
|
ocm/invites
Package invites provides shared types for OCM invitations.
|
Package invites provides shared types for OCM invitations. |
|
ocm/invites/incoming
Package incoming provides incoming invite models, repository, and the invite-accepted domain port used when we accept a received invite.
|
Package incoming provides incoming invite models, repository, and the invite-accepted domain port used when we accept a received invite. |
|
ocm/invites/outgoing
Package outgoing provides outgoing invite models and repository.
|
Package outgoing provides outgoing invite models and repository. |
|
ocm/invites/outgoing/accepted
Package accepted handles POST /ocm/invite-accepted, which remote recipients call to accept one of OUR outgoing invites.
|
Package accepted handles POST /ocm/invite-accepted, which remote recipients call to accept one of OUR outgoing invites. |
|
ocm/notifications
Package notifications provides shared OCM notification types and errors.
|
Package notifications provides shared OCM notification types and errors. |
|
ocm/notifications/outgoing
Package outgoing posts OCM share lifecycle notifications to remote peers.
|
Package outgoing posts OCM share lifecycle notifications to remote peers. |
|
ocm/outbound
Package outbound centralizes the shared OCM outbound POST flow: resolve the peer origin, discover the peer endpoint, sign when configured, and send the request.
|
Package outbound centralizes the shared OCM outbound POST flow: resolve the peer origin, discover the peer endpoint, sign when configured, and send the request. |
|
ocm/peer
Package peer provides peer resolvers for OCM signature middleware.
|
Package peer provides peer resolvers for OCM signature middleware. |
|
ocm/peerorigin
Package peerorigin resolves peer origin (scheme and base URL) and validates absolute-URI peer authorities for OCM outbound and inbound peer-boundary callers.
|
Package peerorigin resolves peer origin (scheme and base URL) and validates absolute-URI peer authorities for OCM outbound and inbound peer-boundary callers. |
|
ocm/peertrust
Package peertrust manages trust groups and peer allow/deny policy.
|
Package peertrust manages trust groups and peer allow/deny policy. |
|
ocm/policy
Package policy resolves OCM code-flow facts for peers.
|
Package policy resolves OCM code-flow facts for peers. |
|
ocm/reason
Package reason owns the canonical internal peer/federation failure taxonomy and explicit translation tables for every outward-facing wire surface.
|
Package reason owns the canonical internal peer/federation failure taxonomy and explicit translation tables for every outward-facing wire surface. |
|
ocm/shares
Package shares provides shared share lifecycle enums used by the incoming and outgoing share packages.
|
Package shares provides shared share lifecycle enums used by the incoming and outgoing share packages. |
|
ocm/shares/incoming
Package incoming provides incoming share models, repository, and the POST /ocm/shares handler.
|
Package incoming provides incoming share models, repository, and the POST /ocm/shares handler. |
|
ocm/shares/outgoing
Package outgoing provides outgoing share models and repository.
|
Package outgoing provides outgoing share models and repository. |
|
ocm/spec
Package spec defines OCM wire-format types (discovery, shares, invites, errors).
|
Package spec defines OCM wire-format types (discovery, shares, invites, errors). |
|
ocm/spec/wire
Package wire holds leaf OCM wire-protocol string constants that the parent spec package re-exports.
|
Package wire holds leaf OCM wire-protocol string constants that the parent spec package re-exports. |
|
ocm/token
Package token implements OCM token exchange (OAuth-style).
|
Package token implements OCM token exchange (OAuth-style). |
|
ocmaux
Package ocmaux provides /ocm-aux HTTP handlers (federations, discover).
|
Package ocmaux provides /ocm-aux HTTP handlers (federations, discover). |
|
ui
Package ui provides the web UI (login, inbox, outgoing, wayf, accept-invite).
|
Package ui provides the web UI (login, inbox, outgoing, wayf, accept-invite). |
|
webdav
Package webdav provides WebDAV file serving with OCM Bearer auth and read-only behavior.
|
Package webdav provides WebDAV file serving with OCM Bearer auth and read-only behavior. |
|
frameworks
|
|
|
service/cfg
Package cfg provides config decoding for services (mapstructure, Setter for defaults).
|
Package cfg provides config decoding for services (mapstructure, Setter for defaults). |
|
service/httpwrap
Package httpwrap provides HTTP handler wrappers for service layer use.
|
Package httpwrap provides HTTP handler wrappers for service layer use. |
|
Package interceptors provides cross-cutting HTTP middleware types and shared profile-config helpers.
|
Package interceptors provides cross-cutting HTTP middleware types and shared profile-config helpers. |
|
ratelimit
Package ratelimit provides a rate limiting interceptor using the cache subsystem.
|
Package ratelimit provides a rate limiting interceptor using the cache subsystem. |
|
platform
|
|
|
appctx
Package appctx provides context-based utilities for cross-cutting concerns.
|
Package appctx provides context-based utilities for cross-cutting concerns. |
|
cache
Package cache provides caching with TTL support for discovery and rate limiting.
|
Package cache provides caching with TTL support for discovery and rate limiting. |
|
cache/bounded
Package bounded provides a cardinality-bounded LRU container.
|
Package bounded provides a cardinality-bounded LRU container. |
|
cache/loader
Package loader registers cache drivers via blank imports.
|
Package loader registers cache drivers via blank imports. |
|
cache/memory
Package memory provides an in-memory cache implementation with TTL support.
|
Package memory provides an in-memory cache implementation with TTL support. |
|
cache/redis
Package redis provides a Redis/Valkey cache driver using valkey-go.
|
Package redis provides a Redis/Valkey cache driver using valkey-go. |
|
config
Package config provides configuration loading and validation.
|
Package config provides configuration loading and validation. |
|
crypto
Package crypto provides cryptographic primitives for OCM signatures.
|
Package crypto provides cryptographic primitives for OCM signatures. |
|
crypto/jwks
Package jwks publishes and resolves public keys in RFC 7517 format.
|
Package jwks publishes and resolves public keys in RFC 7517 format. |
|
crypto/keyid
Package keyid provides canonical parsing and comparison normalization for OCM keyId URIs.
|
Package keyid provides canonical parsing and comparison normalization for OCM keyId URIs. |
|
crypto/sigalg
Package sigalg resolves and validates RFC 9421 HTTP signature algorithms.
|
Package sigalg resolves and validates RFC 9421 HTTP signature algorithms. |
|
crypto/sigparams
Package sigparams parses RFC 9421 Signature and Signature-Input headers using Structured Field Values (RFC 8941) for the subset required by OCM.
|
Package sigparams parses RFC 9421 Signature and Signature-Input headers using Structured Field Values (RFC 8941) for the subset required by OCM. |
|
hostport
Package hostport provides scheme-aware authority normalization for host[:port] comparison.
|
Package hostport provides scheme-aware authority normalization for host[:port] comparison. |
|
http/client
Package client provides a safe outbound HTTP client with SSRF protections.
|
Package client provides a safe outbound HTTP client with SSRF protections. |
|
http/middleware
Package middleware provides always-on transport middleware for HTTP servers.
|
Package middleware provides always-on transport middleware for HTTP servers. |
|
http/realip
Package realip provides trusted proxy utilities for extracting real client IP.
|
Package realip provides trusted proxy utilities for extracting real client IP. |
|
http/tls
Package tls provides TLS configuration and certificate management.
|
Package tls provides TLS configuration and certificate management. |
|
instanceid
Package instanceid derives instance public identity from config.PublicOrigin.
|
Package instanceid derives instance public identity from config.PublicOrigin. |
|
localidentity
Package localidentity is the single source of truth for this instance's published public identity: origin, provider domain, base path, and endpoint base.
|
Package localidentity is the single source of truth for this instance's published public identity: origin, provider domain, base path, and endpoint base. |
|
logutil
Package logutil provides nil-safe logger helpers.
|
Package logutil provides nil-safe logger helpers. |
|
repos
Package repos provides an app-facing persistence seam that constructs the four OCM repository interfaces from a PersistenceConfig.
|
Package repos provides an app-facing persistence seam that constructs the four OCM repository interfaces from a PersistenceConfig. |
|
statistics
Package statistics provides shared redaction and statistics hashing helpers.
|
Package statistics provides shared redaction and statistics hashing helpers. |
|
store
Package store provides persistence primitives and driver abstractions.
|
Package store provides persistence primitives and driver abstractions. |
|
store/json
Package json implements a JSON file-based persistence driver.
|
Package json implements a JSON file-based persistence driver. |
|
store/memcore
Package memcore is the private shared in-memory persistence engine used by the memory driver.
|
Package memcore is the private shared in-memory persistence engine used by the memory driver. |
|
store/memory
Package memory implements an in-memory persistence driver.
|
Package memory implements an in-memory persistence driver. |
|
store/mirror
Package mirror implements a SQLite + JSON mirror persistence driver.
|
Package mirror implements a SQLite + JSON mirror persistence driver. |
|
store/sqlite
Package sqlite implements a SQLite-based persistence driver using GORM.
|
Package sqlite implements a SQLite-based persistence driver using GORM. |
|
store/sqlitecore
Package sqlitecore is the private shared SQLite/GORM persistence engine used by the sqlite and mirror drivers.
|
Package sqlitecore is the private shared SQLite/GORM persistence engine used by the sqlite and mirror drivers. |
|
store/validatorcore
Package validatorcore holds federation validator session and statistics persistence models and store methods.
|
Package validatorcore holds federation validator session and statistics persistence models and store methods. |
|
services
|
|
|
api
Package api provides the /api/* endpoints.
|
Package api provides the /api/* endpoints. |
|
ocmaux
Package ocmaux provides OCM auxiliary endpoints (WAYF helpers).
|
Package ocmaux provides OCM auxiliary endpoints (WAYF helpers). |
|
ui
Package ui provides the /ui/* endpoints as a registry service.
|
Package ui provides the /ui/* endpoints as a registry service. |
|
webdav
Package webdav provides the /webdav/* endpoints as a registry service.
|
Package webdav provides the /webdav/* endpoints as a registry service. |
|
testsupport
|
|
|
crypto
Package crypto provides shared test helpers for platform crypto tests.
|
Package crypto provides shared test helpers for platform crypto tests. |
|
directoryservice
Package directoryservice provides test helpers for Directory Service JWS fixtures.
|
Package directoryservice provides test helpers for Directory Service JWS fixtures. |
|
http
Package http provides test helper factories for outbound HTTP client configs and clients.
|
Package http provides test helper factories for outbound HTTP client configs and clients. |
|
invite
Package invite provides helpers for OCM invite integration tests.
|
Package invite provides helpers for OCM invite integration tests. |
|
localidentity
Package localidentity provides shared test fixtures for local public identity.
|
Package localidentity provides shared test fixtures for local public identity. |
|
ocm/configfixture
Package configfixture provides reusable TOML string fragments for config loader tests.
|
Package configfixture provides reusable TOML string fragments for config loader tests. |
|
protocol
Package protocol provides TOML config fragments for strict two-server protocol integration tests.
|
Package protocol provides TOML config fragments for strict two-server protocol integration tests. |
|
repos
Package repos provides shared persistence backend lists and test open helpers.
|
Package repos provides shared persistence backend lists and test open helpers. |
|
routing
Package routing provides shared route-policy test helpers and ensures service route spec registrars are linked for aggregation tests.
|
Package routing provides shared route-policy test helpers and ensures service route spec registrars are linked for aggregation tests. |
|
session
Package session provides HTTP helpers for authenticated integration tests.
|
Package session provides HTTP helpers for authenticated integration tests. |
|
store
Package store provides shared test helpers for store driver tests.
|
Package store provides shared test helpers for store driver tests. |
|
validatorpeer
Package validatorpeer is an in-process mock OCM peer for validator tests.
|
Package validatorpeer is an in-process mock OCM peer for validator tests. |
|
wiring
Package wiring provides shared bootstrap/wiring test helpers and neutral wiring fixtures for concern-split parity tests.
|
Package wiring provides shared bootstrap/wiring test helpers and neutral wiring fixtures for concern-split parity tests. |
|
Package wiring is the composition root for opencloudmesh-go process startup.
|
Package wiring is the composition root for opencloudmesh-go process startup. |
Click to show internal directories.
Click to hide internal directories.