gecko-dev/dom/webauthn/u2f-hid-rs
Matt Brubeck 4aa522320e Bug 1451825 - Update to env_logger 0.5. r=ted
MozReview-Commit-ID: CqKdONY1NMT

--HG--
extra : rebase_source : 29f9c7a40cf71847a6f5e5e3f33e8695e9bd0b64
2018-04-05 10:08:05 -07:00
..
examples Bug 1451825 - Update to env_logger 0.5. r=ted 2018-04-05 10:08:05 -07:00
fuzz Bug 1400513 - u2f-hid-rs: fuzzers should use a deterministic cmd byte r=jcj 2017-09-17 20:07:32 +02:00
src Bug 1451825 - Update to env_logger 0.5. r=ted 2018-04-05 10:08:05 -07:00
.gitignore Bug 1398268 - [u2f-hid-rs] Rewrite macOS IOHIDManager communication and state machine r=jcj 2017-11-14 11:39:29 +01:00
.travis.yml Bug 1413598 - Pull in latest changes from u2f-hid-rs git repository r=jcj 2017-11-02 12:18:07 +01:00
Cargo.toml Bug 1451825 - Update to env_logger 0.5. r=ted 2018-04-05 10:08:05 -07:00
LICENSE Bug 1404556 - Support libc::ioctl() call on musl libc 2017-10-04 16:53:17 +02:00
README.md Bug 1442562 - Sync u2f-hid-rs rustfmt changes r=jcj 2018-03-02 16:00:58 +01:00
rustfmt.toml

README.md

A Rust HID library for interacting with U2F Security Keys

Build Status Maturity Level

This is a cross-platform library for interacting with U2F Security Key-type devices via Rust.

  • Supported Platforms: Windows, Linux, and Mac OS X.
  • Supported HID Transports: USB.
  • Supported Protocols: FIDO U2F over USB.

This library currently focuses on U2F security keys, but is expected to be extended to support additional protocols and transports.

Usage

There's only a simple example function that tries to register and sign right now. It uses env_logger for logging, which you configure with the RUST_LOG environment variable:

cargo build --example main
RUST_LOG=debug cargo run --example main

Proper usage should be to call into this library from something else - e.g., Firefox. There are some C headers exposed for the purpose.

Tests

There are some tests of the cross-platform runloop logic and the protocol decoder:

cargo test

Fuzzing

There are fuzzers for the USB protocol reader, basically fuzzing inputs from the HID layer. There are not (yet) fuzzers for the C API used by callers (such as Gecko).

To fuzz, you will need cargo-fuzz (the latest version from GitHub) as well as Rust Nightly.

rustup install nightly
cargo install --git https://github.com/rust-fuzz/cargo-fuzz/

cargo +nightly fuzz run u2f_read -- -max_len=512
cargo +nightly fuzz run u2f_read_write -- -max_len=512