diff options
| author | Christophe Besson <cbesson@gmail.com> | 2026-08-31 10:49:45 +0200 |
|---|---|---|
| committer | Christophe Besson <cbesson@gmail.com> | 2026-08-31 10:49:45 +0200 |
| commit | 8d5c564e75ad2928e77ea66decc979366ca5ccd5 (patch) | |
| tree | 7f88ceb2ccd838011bb2f399f148c7f9b39f75ec /packaging/firewall | |
| parent | 0c2754d2d4cb1905d5e324f56fbc64e4afae526f (diff) | |
| download | meshbay-8d5c564e75ad2928e77ea66decc979366ca5ccd5.tar.gz | |
feat(packaging): 4-package .deb/.rpm build system under /opt
Shared venv architecture: meshbay-common owns the Python venv with all
pip deps pre-installed; hub and node add only their code into it.
Client is a standalone Electron app. No pip runs at install time.
- Add build scripts (packaging/build/) for common, hub, node, client
- Add orchestrator build-packages.sh with deb/rpm auto-detection
- Add .deb control/postinst for all 4 packages
- Add .rpm specs for all 4 packages (replaces python3-meshbay-common)
- Add Gnome .desktop launcher and icon resizing
- Add firewalld services (meshbay-cast, meshbay-node) and UFW profiles
- Update systemd units to use /opt/meshbay-common/venv/bin/ paths
- TMDB token baked into node package at build time via QE/node.env
- Fix package-lock.json sync for protobufjs override
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
Diffstat (limited to 'packaging/firewall')
| -rw-r--r-- | packaging/firewall/firewalld/meshbay-cast.xml | 7 | ||||
| -rw-r--r-- | packaging/firewall/firewalld/meshbay-node.xml | 6 | ||||
| -rw-r--r-- | packaging/firewall/ufw/meshbay | 9 |
3 files changed, 22 insertions, 0 deletions
diff --git a/packaging/firewall/firewalld/meshbay-cast.xml b/packaging/firewall/firewalld/meshbay-cast.xml new file mode 100644 index 0000000..065820b --- /dev/null +++ b/packaging/firewall/firewalld/meshbay-cast.xml @@ -0,0 +1,7 @@ +<?xml version="1.0" encoding="utf-8"?> +<service> + <short>MeshBay Cast</short> + <description>HTTP relay for casting decrypted video to Chromecast and Smart TV devices on the local network. Includes mDNS for device discovery.</description> + <port protocol="tcp" port="19550-19553"/> + <port protocol="udp" port="5353"/> +</service> diff --git a/packaging/firewall/firewalld/meshbay-node.xml b/packaging/firewall/firewalld/meshbay-node.xml new file mode 100644 index 0000000..3443b54 --- /dev/null +++ b/packaging/firewall/firewalld/meshbay-node.xml @@ -0,0 +1,6 @@ +<?xml version="1.0" encoding="utf-8"?> +<service> + <short>MeshBay Node</short> + <description>MeshBay Node local administration interface (localhost only by default).</description> + <port protocol="tcp" port="18000"/> +</service> diff --git a/packaging/firewall/ufw/meshbay b/packaging/firewall/ufw/meshbay new file mode 100644 index 0000000..5a610a5 --- /dev/null +++ b/packaging/firewall/ufw/meshbay @@ -0,0 +1,9 @@ +[MeshBay Cast] +title=MeshBay Chromecast relay +description=HTTP relay for casting decrypted video to LAN devices +ports=19550:19553/tcp|5353/udp + +[MeshBay Node] +title=MeshBay Node admin UI +description=Local administration interface (localhost only by default) +ports=18000/tcp |