qubes-mirage-firewall/config.ml

63 lines
1.9 KiB
OCaml
Raw Normal View History

2017-03-18 10:20:26 +00:00
(* Copyright (C) 2017, Thomas Leonard <thomas.leonard@unikernel.com>
2015-12-30 09:52:24 +00:00
See the README file for details. *)
(** Configuration for the "mirage" tool. *)
open Mirage
let table_size =
let info = Key.Arg.info
~doc:"The number of NAT entries to allocate."
~docv:"ENTRIES" ["nat-table-size"]
in
let key = Key.Arg.opt ~stage:`Both Key.Arg.int 5_000 info in
Key.create "nat_table_size" key
2023-06-30 14:58:08 +00:00
let ipv4 =
let doc = Key.Arg.info ~doc:"Manual IP setting." ["ipv4"] in
Key.(create "ipv4" Arg.(opt string "0.0.0.0" doc))
let ipv4_gw =
let doc = Key.Arg.info ~doc:"Manual Gateway IP setting." ["ipv4-gw"] in
Key.(create "ipv4_gw" Arg.(opt string "0.0.0.0" doc))
let ipv4_dns =
let doc = Key.Arg.info ~doc:"Manual DNS IP setting." ["ipv4-dns"] in
2023-07-01 14:49:07 +00:00
Key.(create "ipv4_dns" Arg.(opt string "10.139.1.1" doc))
2023-06-30 14:58:08 +00:00
let ipv4_dns2 =
let doc = Key.Arg.info ~doc:"Manual Second DNS IP setting." ["ipv4-dns2"] in
2023-07-01 14:49:07 +00:00
Key.(create "ipv4_dns2" Arg.(opt string "10.139.1.2" doc))
2023-06-30 14:58:08 +00:00
2015-12-30 09:52:24 +00:00
let main =
foreign
2023-06-30 14:58:08 +00:00
~keys:[
Key.v table_size;
Key.v ipv4;
Key.v ipv4_gw;
Key.v ipv4_dns;
Key.v ipv4_dns2;
]
2017-03-02 14:52:55 +00:00
~packages:[
package "vchan" ~min:"4.0.2";
2017-03-02 14:52:55 +00:00
package "cstruct";
package "astring";
package "tcpip" ~min:"3.7.0";
package ~min:"2.3.0" ~sublibs:["mirage"] "arp";
2022-01-09 11:36:35 +00:00
package ~min:"3.0.0" "ethernet";
2017-11-14 12:35:33 +00:00
package "shared-memory-ring" ~min:"3.0.0";
2023-07-30 15:28:52 +00:00
package ~min:"2.1.3" "netchannel";
package ~min:"2.1.3" "mirage-net-xen";
package "ipaddr" ~min:"5.2.0";
package "mirage-qubes" ~min:"0.9.1";
package ~min:"3.0.1" "mirage-nat";
2017-03-02 14:52:55 +00:00
package "mirage-logs";
package "mirage-xen" ~min:"8.0.0";
2022-10-27 09:24:59 +00:00
package ~min:"6.4.0" "dns-client";
package "pf-qubes";
2017-03-02 14:52:55 +00:00
]
"Unikernel.Main" (random @-> mclock @-> time @-> job)
2015-12-30 09:52:24 +00:00
let () =
register "qubes-firewall" [main $ default_random $ default_monotonic_clock $ default_time]