Network-binding cryptographic server implementing the Tang protocol, and made to run as a Cloudflare Worker
Vous ne pouvez pas sélectionner plus de 25 sujets Les noms de sujets doivent commencer par une lettre ou un nombre, peuvent contenir des tirets ('-') et peuvent comporter jusqu'à 35 caractères.
 
 
trinity-1686a b78ecce2f4 Update 'README.md' il y a 9 mois
src hide error message il y a 10 mois
tests init il y a 10 mois
worker add logging to telegram il y a 9 mois
.gitignore init il y a 10 mois
Cargo.lock add logging to telegram il y a 9 mois
Cargo.toml add logging to telegram il y a 9 mois
README.md Update 'README.md' il y a 9 mois
wrangler.toml change name il y a 9 mois

README.md

Tango-Charlie

Tango-Charlie is a network binding server : it allows a client to decrypt files, but only if the client is in the right network.
It's made to replace tang in a clevis setup.

Tango-Charlie is made to be deployed on Cloudflare Worker (Cloudflare FaaS platform). Contrary to Tang which allow whoever can contact the server to decrypt data, Tango-Charlie require the public ip of the client to have not changed (or be in the same /64 for ipv6). To do so while being stateless, Tango-Charlie generate keys on the fly, based on client ip and a secret known only to the server.

/!\ This software make heavy use of cryptography, and has not been audited, use at your own risks.

Name was inspired by an old french song