code wiki / _hdl_build / nx_office_daemon.nx

nx_office_daemon.nx

buildroot/runtime/_hdl_build/nx_office_daemon.nx

4662 B86 linesdepth 16pulls 56 transitivereach 0 importersview sourcekind servicetopic office
docsdependenciesstructsconstsfunctions

about

nx_office_daemon.nx -- the DEPLOYABLE Nishi Office daemon (ops shell around the gated pure core nx_office_serve). Binds 0.0.0.0:8030 (LAN-reachable on the NAS); files live under CWD "office/". Route /office -> this port on the sovereign edge. R-AUTHZ: resolves the OPAQUE session (X-Nishi-Session header, or the `sess` form field on a zero-JS POST) -> handle, and passes it to of_handle_auth so OWNED docs are ReBAC-gated while unowned docs stay PUBLIC (non-breaking). FAIL-SAFE: if the auth ctx can't init, serve PUBLIC-only (owned docs lock, public work). Build with --build-only; run deliberately. license_tier: ORIGINAL

dependencies 2 imports · 0 importers

nx_office_serve.nx nx_opaque_login.nx nx_office_daemon.nx

imports: nx_office_serve.nxnx_opaque_login.nx

imported by: nobody (leaf or entry point)

call flow from main pre-order; caps 40 nodes / depth 6 declared; ↻ = already shown

main olg_ctx_setup olg_ctx_setup_ttl nx_uas_server_keys_load_or sys_mmap sys_read_file sys_openat_rd sys_lseek sys_mmap ↻ sys_read sys_close _uas_hex_dec _uas_nib nx_csprng_fill sys_mmap ↻ nx_csprng_urandom_path sys_openat_rd ↻ sys_read ↻ sys_close ↻ nx_opq_derive_keypair sys_mmap ↻ _voprf_load_context_string u256_alloc nx_scratch nx_opq_hash_to_scalar sys_mmap ↻ nx_h2c_expand_message_xmd_ u256_alloc ↻ _opq_reduce_48be_mod_n u256_store_be u256_load_be u256_is_zero p256_point_alloc nx_scratch ↻ u256_alloc ↻ p256_field_one p256_field_zero p256_point_load_g p256_field_one ↻ p256_scalar_mul

structs

none

consts

10const OD_PORT: i64 = 0x1f5e // 8030
11const OD_KEYS: *u8 = "opaque_keys.bin"
12const OD_ASTORE: *u8 = "opaque_store.log"
13const OD_IDX: *u8 = "nishi_uid_handle.tsv" // the login daemon's uid(hex)->handle index (authz keys off handle)

functions

15func d_addr(out: *u8, port: i64) -> i64
called by 1: main
24func main() -> i64