An open-source reimplementation of the defined.net management protocol
Find a file
core be14179c2d
All checks were successful
/ build_x64 (push) Successful in 3m46s
/ build_arm64 (push) Successful in 10m10s
incomplete work on new i18n
2023-10-06 22:27:04 -04:00
.builds fix pkgver calculation 2023-06-27 09:11:26 -04:00
.forgejo/workflows [ci] tfclient arm64 builds disable caching 2023-09-28 11:15:41 -04:00
.idea proper sidebar handling & host deletion 2023-09-30 19:28:23 -04:00
api tfclient enrollment successful 2023-03-28 12:16:00 -04:00
dnapi-rs bump crate versions & clean warnings 2023-09-26 09:14:42 -04:00
docs add new docs pages 2023-07-27 17:36:53 -04:00
nebula-ffi bump crate versions & clean warnings 2023-09-26 09:14:42 -04:00
packages fix void builds 2023-07-18 22:03:25 -04:00
tfcli bump crate versions & clean warnings 2023-09-26 09:14:42 -04:00
tfclient bump crate versions & clean warnings 2023-09-26 09:14:42 -04:00
tfweb incomplete work on new i18n 2023-10-06 22:27:04 -04:00
trifid-api trifid-api 0.2.2 2023-09-28 21:55:14 -04:00
trifid-pki code cleanup 2023-05-15 14:51:27 -04:00
website/docs hotfix: configurable threadpool size & new website starts 2023-08-15 00:16:47 -04:00
.env buildfiles pt5 2023-02-07 14:00:57 -05:00
.gitignore add new docs pages 2023-07-27 17:36:53 -04:00
Cargo.lock trifid-api 0.2.2 2023-09-28 21:55:14 -04:00
Cargo.toml bump crate versions & clean warnings 2023-09-26 09:14:42 -04:00
Cross.toml wrong table name 2023-06-26 23:20:07 -04:00
Dockerfile docker 2023-06-23 19:13:16 -04:00
index.md more docs improvements 2023-07-27 17:35:26 -04:00
LICENSE.txt licensing 2023-02-27 20:50:31 -05:00
README.md some minor documentation improvements pt2 2023-07-27 17:21:46 -04:00

trifid

trifid is an open-souce reimplementation of the Defined Networking management protocol for Nebula networks.

It includes a reimplementation of the API Server, the Web UI, dnclient, nebula-cert and dnapi - all fully API-compatible with the original versions.

In addition to this, we include a command-line tool tfcli for interfacing with the DN management API, fully compatible with the upstream API or a third-party API implementation such as trifid-api.

We also include a Rust library for interacting with keys and certificates in the Nebula PKI. Find it in trifid-pki/, or on crates.rs as trifid-pki. This library is an implementation of the Nebula PKI system that is mostly feature-complete, with the exception of non-Curve25519 cryptography, which is currently unsupported.

Want to make your own Defined Networking client? Check out dnapi-rs! dnapi-rs is a Rust port of the official dnapi Go library, to allow for easy interactions with Defined Networking-compatible API servers. Find it in dnapi-rs/, or on crates.rs as dnapi-rs.

The API implementation is tested with the official dnclient implementaiton, and the dnclient implementation is tested with the official API server, to ensure complete feature parity between the two.

Documentation

You can find the documentation here!

Documentation work is underway. Parts of the documentation may be broken or unfinished.

Supported Platforms

tfclient is designed to be self-contained and as cross-platform as possible. Where possible, tfclient can be completley self-contained and fully functional on so-called "Tier 1" supported platforms. On other platforms, tfclient itself works great, but due to limitations of the platform cannot properly link with nebula, and thus needs to be broken out into two components - tfclient, to fetch config from the API, and nebula, running entirely separately, running off of that config. These platforms are known as "Tier 2" platforms.

In addition, not all clients support connecting to trifid-api. Both tfclient support tiers and trifid-api connectivity capability are listed below.

Operating System / Architecture tfclient support tier trifid-api compatible?
Windows (all architectures) Tier 2 - external nebula required Yes (tfclient/dnclient)
Darwin (OSX, MacOS) Tier 2 - untested, maybe T1 Yes (tfclient/dnclient)
FreeBSD (amd64) Tier 1 - untested Yes (tfclient/dnclient)
Linux (most architectures) Tier 1 Yes (tfclient/dnclient)
Android Unsupported No (almost - help wanted! see docs)
iOS Unsupported No (almost - help wanted! see docs)