feat(transport): 完成安全架构拆分并收口 stream/bulk 传输优化
- 新增 managed/external/nested 三种传输保护模式 - 新增 peer attach 显式认证、抗重放、channel binding 和可选前向保密协商 - 明确单连接注入与可重拨连接源的语义边界 - 禁止 ConnectByConn 场景下 dedicated bulk 走 sidecar,auto 模式自动回退 shared - 修正 dedicated attach 在 bootstrap/steady profile 切换下的处理逻辑 - 优化 shared bulk super-batch 与批量 framed write 路径 - 降低 stream/bulk fast path 的复制和分发损耗 - 补齐 benchmark、回归测试、运行时快照和 README 文档
This commit is contained in:
+8
-6
@@ -156,11 +156,12 @@ func decodeStreamFastDataFrame(payload []byte) (streamFastDataFrame, bool, error
|
||||
}
|
||||
|
||||
func (c *ClientCommon) encodeFastStreamPayload(frame streamFastDataFrame) ([]byte, error) {
|
||||
if c != nil && c.fastStreamEncode != nil && frame.Flags == 0 {
|
||||
return c.fastStreamEncode(c.SecretKey, frame.DataID, frame.Seq, frame.Payload)
|
||||
profile := c.clientTransportProtectionSnapshot()
|
||||
if c != nil && profile.fastStreamEncode != nil && frame.Flags == 0 {
|
||||
return profile.fastStreamEncode(profile.secretKey, frame.DataID, frame.Seq, frame.Payload)
|
||||
}
|
||||
if c != nil && c.fastPlainEncode != nil {
|
||||
return encodeStreamFastFramePayloadFast(c.fastPlainEncode, c.SecretKey, frame)
|
||||
if c != nil && profile.fastPlainEncode != nil {
|
||||
return encodeStreamFastFramePayloadFast(profile.fastPlainEncode, profile.secretKey, frame)
|
||||
}
|
||||
plain, err := encodeStreamFastFramePayload(frame)
|
||||
if err != nil {
|
||||
@@ -181,8 +182,9 @@ func (c *ClientCommon) encodeFastStreamBatchPayload(frames []streamFastDataFrame
|
||||
if c == nil {
|
||||
return nil, errStreamClientNil
|
||||
}
|
||||
if c.fastPlainEncode != nil {
|
||||
return encodeStreamFastBatchPayloadFast(c.fastPlainEncode, c.SecretKey, frames)
|
||||
profile := c.clientTransportProtectionSnapshot()
|
||||
if profile.fastPlainEncode != nil {
|
||||
return encodeStreamFastBatchPayloadFast(profile.fastPlainEncode, profile.secretKey, frames)
|
||||
}
|
||||
plain, err := encodeStreamFastBatchPlain(frames)
|
||||
if err != nil {
|
||||
|
||||
Reference in New Issue
Block a user