Commit Graph
58 Commits
Author SHA1 Message Date
Max Lv 201e70c4bd Modernize C builds with offline dependencies and portable runtime helpers (#3050)
Bundle pinned offline dependencies, remove libcork/libipset and submodule requirements, and add portable runtime helpers with relocatable static/shared library installations.

Add Clang static build validation for Linux/musl, macOS and Windows, real TCP/UDP and SIP003 interoperability coverage, and recorded performance tradeoffs. All 21 hosted checks pass at the reviewed PR head 8d504e6218.
2026-09-11 13:42:11 +08:00
Max LvandClaude Opus 4.6 7bb250739e Modernize build: switch to CMake, add unit tests, fix man pages
* Modernize build: switch to CMake, add unit tests, fix man pages

Remove autotools (configure.ac, Makefile.am, m4/, autogen.sh) and make
CMake the sole build system. Enhance CMake with proper Find modules for
MbedTLS, libsodium, PCRE, and c-ares with version/feature detection.
Add support for connmarktos, nftables, stack protector, and MinGW.

Add 10 unit test suites (CTest) covering base64, buffer, cache, crypto,
jconf, json, netutils, ppbloom, rule, and utils modules. Add a Python
stress test measuring bandwidth per cipher with memory leak detection.

Fix man page typos ("Resovle" -> "Resolve"), document missing TCP buffer
options, fix ss-manager duplicate --executable entry, add example section
to ss-tunnel, and document --workdir and --nftables-sets options.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Migrate from PCRE to PCRE2

Replace legacy PCRE (libpcre3) with PCRE2 (libpcre2-8). PCRE1 has been
end-of-life since 2021.

- src/rule.h: use pcre2_code and pcre2_match_data types
- src/rule.c: pcre_compile -> pcre2_compile, pcre_exec -> pcre2_match,
  pcre_free -> pcre2_code_free, with proper error message retrieval
- cmake/FindPCRE.cmake -> cmake/FindPCRE2.cmake: find libpcre2-8 via
  pkg-config, pcre2-config, or manual search
- Update all CMakeLists.txt, config.h.cmake, configure.cmake, README.md

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Update Dockerfiles: use CMake build and pcre2-dev

The alpine Dockerfile still used autotools (autogen.sh/configure) which
were removed. Switch to cmake build and replace pcre-dev with pcre2-dev.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix Docker build: disable tests and remove git dep

The tests/ directory is excluded by .dockerignore, so pass
-DBUILD_TESTING=OFF to cmake. Submodules are already checked out
by actions/checkout, no need for git inside the container.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix Docker build: disable static libs (not available in alpine)

Alpine's mbedtls-dev only provides shared libraries. Disable static
build since Docker only needs shared binaries.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Rewrite GitHub Actions: build and test directly on runner

Replace Docker-based CI with direct cmake build on ubuntu-latest and
macos-latest. Install dependencies via apt/brew, build with cmake,
run unit tests with ctest.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix CI: use mbedtls@3 on macOS, disable static build

- macOS: brew's mbedtls is now v4 (incompatible), use mbedtls@3
- Disable static build since CI runners lack static lib packages

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix test build on Linux: add stdint.h and link libm

- test_ppbloom.c: add missing #include <stdint.h> for uint8_t
- test_json: link against libm for pow() used in json.c

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix test_ppbloom link: add libm for bloom's log()

On Linux, libbloom uses log() which requires explicit -lm linkage.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix Linux build: link libm for test_buffer and test_crypto, fix warnings

Both test_buffer and test_crypto link libbloom.so which uses log() from
libm. Also fix unused variable warnings in test_json.c that would fail
with -Werror.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Fix Linux build: link libm for test_jconf (json.c uses pow)

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* CI: add unit test and stress test steps to GitHub Actions

Split the Test step into separate "Unit tests" (ctest) and "Stress test"
(stress_test.py with 10MB transfer across all AEAD ciphers) steps for
better visibility.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-07 17:06:47 +08:00
vndroid 5fdb6624e3 Update
- Fix path error
2022-06-28 16:22:11 +08:00
vndroid c13c464604 Update
- Solve the problem of not being able to enter the container
- Execute strip after compilation
- Support multi-threaded compilation
2022-06-28 15:32:11 +08:00
Alexandre ABRIOUX e21f8248b6 fix: being able to use empty DNS_ADDRS with docker image 2022-04-11 08:32:33 +08:00
John 2a249b0bac added support for Docker secrets and password file in the Docker image
this means we no longer have to hardcode the password in the docker-compose file, and can treat the file as configuration rather than a secret.
2020-09-19 16:10:26 -02:30
mmx 57e0c9f924 Update Dockerfile set default timezone to UTC. 2020-03-20 16:28:48 +08:00
mmx b6ddbbe0b0 Add Dockerfile timezone, Update readme. 2020-03-20 14:20:28 +08:00
谭九鼎 21e3224ff1 readme(docker): remove "--fast-open" 2020-02-06 20:38:58 +08:00
David Osztertag 4c660f604f Set cap_net_bind_service for docker 2019-12-20 13:55:56 +01:00
Kebin Liu 2f61bac4c0 Update Dockerfile
Add ca-certificates for runtime dependency

When you use shadowsocks/shadowsocks-libev with [v2ray-plugin](https://github.com/shadowsocks/v2ray-plugin), it may occurs `x509: certificate signed by unknown authority` error.
2019-09-17 22:26:35 +08:00
Max Lv 0f55830b1d Remove default IPv6 and fast-open option in the dockerfile 2019-02-26 22:13:48 +08:00
edsgerlin 09762eda3f Docker: Support for IPv6 host, set default encryption method to GCM. 2018-09-10 15:35:49 +09:00
hwchan 00354513e6 Multipe nameservers support 2018-07-07 17:05:34 +08:00
Cheng Zhen 6ddbecc10f update image value.
Current setting will cause following error: `ERROR: pull access denied for shadowsocks-libev, repository does not exist or may require 'docker login'`, this update fixes this.
2018-05-27 10:14:16 +08:00
Dariush Alipour c3db67bce5 fixed docker -p flag syntax 2018-05-01 18:36:31 +04:30
zhuzeitou cb109a41fd Optimize Dockerfile, add SERVER_PORT back 2018-04-16 01:13:06 +08:00
Sah d70bba28f8 Docker: Dockerfile improvements
- Format adjustments
 - Fix error: missing runtime dependencies
2018-03-27 15:02:30 +02:00
Sah fdb6b6be3f Docker: optimize image size 2018-03-27 15:02:30 +02:00
Sah 2a250d2e0a Update documents regarding dockerization
* Update README.md in docker/alpine
  - Replace contents with the usage of the image auto-built by Docker Cloud
  - Add descriptions on the customizable environment variables
* Update Dockerfile maintainer list

Refer to #1914
2018-02-10 12:46:10 +01:00
Sah a9a7d434ca Optimize Dockerfile
* Install rng-tools as runtime dependency
* Remove unnecessary 'git submodule update', as Docker Cloud runs 'git submodule update' after cloning the repository
* Replace variable SERVER_PORT with fixed port 8388, as it can't be customized with -e anyway
2018-02-10 12:45:54 +01:00
Sah ea571c3f41 Update Dockerfile to utilize Docker Cloud auto build
* Use the repository as context, instead of released .tar.gz
* Remove version information from Dockerfile, and let Docker Cloud handle it
* Add .dockerignore

Next steps:

1. Connect repository in Docker Cloud
2. Setup automated builds:
   - A push on `master` branch triggers build for `unstable` tag
   - A tag matching /^v[0-9]+(\.[0-9]+){2}$/ triggers build for a same-named tag

Refer to #1914
2018-02-08 18:31:18 +01:00
Max Lv 85a64ae836 Bump version 2018-01-15 17:25:03 -08:00
Max Lv cba94db423 Bump version 2017-12-28 21:09:40 -08:00
玩牛牛 8a670546a2 Remove libtool to fix alpine 3.7 docker bug
Alpine 3.7 libtool pkg depends on bash pkg, this caused the compile hangs at "checking that generated files are newer than configure...", after check [this thread](https://forums.docker.com/t/problem-of-hanging-autoreconf/41015/3), I remove libtool and it works.
2017-12-03 23:03:19 +08:00
Max Lv 82198aece8 Bump version 2017-11-20 12:22:43 +08:00
Max Lv 69c41d9752 Bump version 2017-09-14 19:31:13 -07:00
Max Lv f1dd1354a9 Bump version 2017-07-27 11:22:27 +08:00
Secbone 4c88c72a66 delete duplicate code 2017-07-02 17:45:57 -05:00
Max Lv c11b2c08e4 Bump version 2017-06-27 14:17:53 +08:00
Jiewei Qian 42ce34518d Add ARGS env variable to alpine Dockerfile (#1537) 2017-06-21 00:57:02 -05:00
Max Lv bc96aed3b0 Bump version 2017-04-26 15:02:56 +08:00
Max Lv 48f5a3bec8 Bump version 2017-03-21 13:56:13 +08:00
Max Lv b725d575f2 Bump version 2017-03-16 14:21:11 +08:00
Max Lv 661429e579 Bump version 2017-02-24 12:16:20 +08:00
Max Lv 46fa5de9e4 Bump version 2017-02-13 09:13:16 +08:00
Max Lv fdb1f190f8 Bump version 2017-02-07 13:30:18 +08:00
Register f64177acce remove dependency: openssl-dev 2017-02-03 19:19:06 +08:00
Register 2444427e07 Update Dockerfile
fix .build-deps
2017-02-02 20:01:56 +08:00
Max Lv 4d25f176b6 Bump version 2017-02-01 19:18:12 +08:00
Asynchronous Interruption #0 5ff4f27b74 Update Dockerfile (#1146)
* Update README

* Update Dockerfile
2017-01-28 14:34:34 +08:00
Max Lv c5807058ba Add missing ss-nat 2017-01-25 10:57:12 +08:00
Max Lv 3f8cd982e5 Drop MinGW32 support 2017-01-24 20:10:31 +08:00
Max Lv 9c94e6792c Bump version 2017-01-16 10:23:01 +08:00
Max Lv 48b6a59df4 Bump version 2017-01-08 16:31:54 +08:00
Max Lv bf385587be Fix #1027 2017-01-01 10:19:13 +08:00
Max Lv 8cb4f81eba Add HTTP/TLS obfuscating. [SIP001] (#1009)
Add experimental HTTP/TLS obfuscating as an **optional extension** of shadowsocks protocol.

More discussions can be found here: https://github.com/shadowsocks/shadowsocks-org/issues/26

As this feature is still a SIP (Shadowsocks Improvement Proposal), it's very unstable and experimental. So, 

1. Don't enable it unless you know what it is.
2. Be very careful when using it in production environment.
2016-12-27 02:53:25 -06:00
Max Lv d6c377df9c Bump version 2016-11-01 09:56:22 +08:00
John Hu e49d3e93bb Remove -U option that disables TCP relay (#897) 2016-10-24 21:31:41 +08:00
Max Lv 9807e566d7 Bump version 2016-10-11 15:48:41 +08:00