mirror of
https://github.com/Rain-kl/OpenFlare.git
synced 2026-10-05 15:26:36 +08:00
2f60329886
代码质量全量清理,零行为变化:golangci 扩展集 13 类 linter(gosec/modernize/perfsprint/canonicalheader/usestdlibvars/wastedassign/intrange/errorlint/forcetypeassert/recvcheck/exhaustive/unparam)全量修复,测试代码质量(testifylint/thelper/usetesting)25→0,frpc 进程生命周期真 bug(进程组击杀)、全仓 go test -race 6 类数据竞争(含 1 个生产竞争)、SPDX license 头补齐 131 文件、前端测试套件 next-intl 迁移后 44 失败→全绿、过期 swagger 文档重新生成、pnpm-workspace 构建审批。 Experiments: #2-#17, #18, #20, #21, #23 Metric: total_issues 108 → 8 (-92.6%)
46 lines
1.5 KiB
Go
46 lines
1.5 KiB
Go
// Copyright 2026 Arctel.net
|
|
// SPDX-License-Identifier: Apache-2.0
|
|
|
|
package nginx
|
|
|
|
import (
|
|
_ "embed"
|
|
|
|
"github.com/Rain-kl/Wavelet/internal/apps/agent/protocol"
|
|
)
|
|
|
|
//go:embed waf_runtime.lua
|
|
var openRestyWAFRuntimeLua string
|
|
|
|
//go:embed waf_ip_groups.lua
|
|
var openRestyWAFIPGroupsLua string
|
|
|
|
// Vendored from https://github.com/api7/lua-resty-ipmatcher v0.6.1 (Apache-2.0).
|
|
// OPM has no api7/lua-resty-ipmatcher package; deploy with Agent Lua assets instead.
|
|
//
|
|
//go:embed resty/ipmatcher.lua
|
|
var openRestyIPMatcherLua string
|
|
|
|
const openRestyWAFCheckLua = `local source = debug.getinfo(1, "S").source or ""
|
|
if string.sub(source, 1, 1) == "@" then
|
|
local script_path = string.sub(source, 2)
|
|
local base_dir = string.match(script_path, "^(.*)/waf/[^/]+%.lua$")
|
|
if base_dir and base_dir ~= "" and not string.find(package.path, base_dir, 1, true) then
|
|
package.path = base_dir .. "/?.lua;" .. base_dir .. "/?/init.lua;" .. package.path
|
|
end
|
|
end
|
|
|
|
return require("waf.runtime").check()
|
|
`
|
|
|
|
// ManagedWAFLuaFiles returns the embedded Lua source files that must be deployed to the WAF runtime directory.
|
|
func ManagedWAFLuaFiles() []protocol.SupportFile {
|
|
return []protocol.SupportFile{
|
|
{Path: "waf/runtime.lua", Content: openRestyWAFRuntimeLua},
|
|
{Path: "waf/ip_groups.lua", Content: openRestyWAFIPGroupsLua},
|
|
{Path: "waf/check.lua", Content: openRestyWAFCheckLua},
|
|
// resty.ipmatcher under lua_package_path <luaDir>/?.lua
|
|
{Path: "resty/ipmatcher.lua", Content: openRestyIPMatcherLua},
|
|
}
|
|
}
|