~ober/jerboa-secmonlib

Imported from ~/mine/jerboa-secmonlib

download snapshot

about

# jerboa-secmonlib

Static Jerboa security-monitor agent, collector/analyzer source, and native FFI
registration support.

The agent listener defaults to `127.0.0.1:31337`, binds the requested numeric
IPv4 address through the full socket path, and reports the OS-confirmed bound
address. A fixed worker pool, bounded queue, global/per-source active and rate
budgets, strict frames, and absolute authentication/idle read-and-write deadlines
protect the pre-auth boundary from Slowloris/thread exhaustion. `make test`
includes real non-loopback refusal, byte-drip, and non-reading-peer regressions.

This repo is not public-production-ready until `make release-evidence` is
captured on the target Linux or FreeBSD release host and the blockers in
`docs/release-evidence.md` are closed.

recent commits