Skip to main content

Module native

Module native 

Source
Expand description

Provider-neutral OpenRTC 2.0 control-plane client for pure native hosts.

Consumer applications own authentication, attestation registration, and secure private-key storage. OpenRTC owns assertion exchange, device enrollment, avenue-scoped gateway grants, renewal, and replay-safe device proofs. No Firebase type or project identifier is exposed by this module.

Structs§

AnonymousCapability
A backend-free native capability. Its install-bound principal and device identity come from the host-secure Ed25519 key, and the handle owns exactly one live avenue.
AttestationEvidence
CapabilityOptions
ControlPlane
ControlPlaneHttpError
CredentialRelay
Mutable opaque-credential relay for native runtimes constructed before the application finishes login. It carries only OpenRTC-issued device certificates and follows certificate renewal performed by the grant owner.
DeviceOptions
DeviceProfile
Public presentation metadata for one enrolled native installation.
Devices
An authenticated device-mesh capability plus its stable app-scoped principal. The handle remains network-idle until the runtime publishes its initial presence, and close() stops its socket and grant-refresh owner.
Features
FileSigner
Persistent software signer, with no OS keychain prompt. Supports Unix private directories (including macOS/Linux and native mobile sandboxes). Other hosts can implement DeviceSigner / OfflineSigner with their store.
IdentityAssertion
InMemoryCertificate
Network-idle, process-local certificate cache for prototypes and tests. Production native applications should supply durable protected storage.
NativeAuthorityAssignment
NativeAuthorityInterestAssignment
Signed, application-owned AOI/interest assignment delivered by the room authority. OpenRTC validates its bounded wire shape and uses it only as a routing input; the application remains the owner of entity semantics.
NativeCapabilities
Lightweight, network-idle entrypoint for pure-Rust OpenRTC 2.0 capability activation. It mirrors the public SDK namespaces without putting consumer authentication, attestation, or provider-specific types into the runtime.
NativeCapabilityHandle
Disposable OpenRTC 2.0 native avenue.
NativeGatewayGrant
NativeGatewayGrantRequest
NativeServiceErrorObservation
A historical, capability-local service denial observation. This is a diagnostic projection only; it does not authorize recovery or change gateway retry policy.
RelayAvailability
RoomArchitectureSnapshot
Customer-safe room policy projection delivered by the avenue gateway.
RoomAuthority
One connected developer authority capability. It uses the same native gateway and Rust peer-session owner as every other room; it adds only the signed AOI assignment permission carried by its server-minted grant.
RoomAuthorityOptions
Developer-backend-only configuration for one authoritative room replica. The service grant is bound to this replica’s device signer; the separate assignment signer can be shared by equivalent replicas after an application-owned state handoff.
RoomOptions
SignalingSlot
One-time, fail-closed signaling installation point for native hosts whose process is created before user authentication completes. Installation may happen exactly once; replacement requires closing and rebuilding the capability/runtime so this cannot become a shadow lifecycle owner.
StoredCertificate

Enums§

EffectiveRoomArchitecture
NativeCapabilityKind
RoomArchitectureMode
RoomArchitecturePhase
RoomArchitectureReason
RoomDelivery

Constants§

OPENRTC_PRODUCTION_CONTROL_PLANE

Traits§

AssertionProvider
Application-owned source of short-lived OIDC/JWKS assertions.
AttestationProvider
Optional application-owned managed-attestation bridge. It is invoked only during enrollment or certificate renewal, never as a socket heartbeat.
CertificateStore
Application-owned durable certificate storage. Desktop applications should protect this value with owner-only file permissions or the OS credential store. A certificate is public-key bound, but remains bearer authorization and therefore must not be placed in logs or world-readable preferences.
DeviceSigner
Host secure-storage bridge for the per-install Ed25519 device key. Private key bytes never enter the OpenRTC runtime.
NativeGatewayGrantProvider

Functions§

load_or_create_endpoint_key
Reopen the device’s private Iroh identity at process construction. Pass it directly to the native endpoint initializer; never return it through IPC.