Commit | Line | Data |
---|---|---|
7f08437b | 1 | ;;; GNU Guix --- Functional package management for GNU |
9355498d | 2 | ;;; Copyright © 2013, 2014, 2015 Ludovic Courtès <ludo@gnu.org> |
722ec722 | 3 | ;;; Copyright © 2014, 2015 Mark H Weaver <mhw@netris.org> |
ca05bc0e | 4 | ;;; Copyright © 2016, 2017 Efraim Flashner <efraim@flashner.co.il> |
4a78fd46 | 5 | ;;; Copyright © 2016, 2017 Nils Gillmann <ng0@n0.is> |
0d92d2ad | 6 | ;;; Copyright © 2017, 2018 Tobias Geerinckx-Rice <me@tobias.gr> |
f3cf25c3 | 7 | ;;; Copyright © 2017 Eric Bavier <bavier@member.fsf.org> |
7e9e1a36 | 8 | ;;; Copyright © 2017 Rutger Helling <rhelling@mykolab.com> |
7f08437b LC |
9 | ;;; |
10 | ;;; This file is part of GNU Guix. | |
11 | ;;; | |
12 | ;;; GNU Guix is free software; you can redistribute it and/or modify it | |
13 | ;;; under the terms of the GNU General Public License as published by | |
14 | ;;; the Free Software Foundation; either version 3 of the License, or (at | |
15 | ;;; your option) any later version. | |
16 | ;;; | |
17 | ;;; GNU Guix is distributed in the hope that it will be useful, but | |
18 | ;;; WITHOUT ANY WARRANTY; without even the implied warranty of | |
19 | ;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | |
20 | ;;; GNU General Public License for more details. | |
21 | ;;; | |
22 | ;;; You should have received a copy of the GNU General Public License | |
23 | ;;; along with GNU Guix. If not, see <http://www.gnu.org/licenses/>. | |
24 | ||
25 | (define-module (gnu packages tor) | |
71794d7b | 26 | #:use-module ((guix licenses) #:prefix license:) |
7f08437b LC |
27 | #:use-module (guix packages) |
28 | #:use-module (guix download) | |
ba583bd2 | 29 | #:use-module (guix git-download) |
7f08437b | 30 | #:use-module (guix build-system gnu) |
c4605e4c | 31 | #:use-module (guix build-system python) |
ba583bd2 | 32 | #:use-module (gnu packages) |
f3cf25c3 | 33 | #:use-module (gnu packages base) |
7f08437b | 34 | #:use-module (gnu packages libevent) |
f3cf25c3 | 35 | #:use-module (gnu packages linux) |
ac257f12 | 36 | #:use-module (gnu packages check) |
7f08437b | 37 | #:use-module (gnu packages compression) |
b2e3dd94 | 38 | #:use-module (gnu packages pcre) |
6c97f17f | 39 | #:use-module (gnu packages pkg-config) |
8850303e | 40 | #:use-module (gnu packages python) |
1b2f753d | 41 | #:use-module (gnu packages python-web) |
b8ea5204 | 42 | #:use-module (gnu packages qt) |
b2e3dd94 | 43 | #:use-module (gnu packages autotools) |
cc2b77df | 44 | #:use-module (gnu packages tls) |
b2e3dd94 | 45 | #:use-module (gnu packages w3m)) |
7f08437b LC |
46 | |
47 | (define-public tor | |
48 | (package | |
49 | (name "tor") | |
502a822d | 50 | (version "0.3.3.7") |
7f08437b LC |
51 | (source (origin |
52 | (method url-fetch) | |
0ab57b0d | 53 | (uri (string-append "https://dist.torproject.org/tor-" |
7f08437b LC |
54 | version ".tar.gz")) |
55 | (sha256 | |
56 | (base32 | |
502a822d | 57 | "036ybfvldj7yfci9ipjki8smpzyxdg8c5r12bghc9yxdqh9basza")))) |
7f08437b | 58 | (build-system gnu-build-system) |
249eb389 | 59 | (arguments |
54727850 | 60 | `(#:configure-flags (list "--enable-gcc-hardening" |
249eb389 | 61 | "--enable-linker-hardening"))) |
8850303e | 62 | (native-inputs |
6c97f17f TGR |
63 | `(("pkg-config" ,pkg-config) |
64 | ("python" ,python-2))) ; for tests | |
7f08437b LC |
65 | (inputs |
66 | `(("zlib" ,zlib) | |
67 | ("openssl" ,openssl) | |
7e9e1a36 | 68 | ("libevent" ,libevent) |
6c97f17f TGR |
69 | ("libseccomp" ,libseccomp) |
70 | ("xz" ,xz) | |
71 | ("zstd" ,zstd))) | |
0ab57b0d | 72 | (home-page "https://www.torproject.org/") |
9e771e3b | 73 | (synopsis "Anonymous network router to improve privacy on the Internet") |
7f08437b LC |
74 | (description |
75 | "Tor protects you by bouncing your communications around a distributed | |
76 | network of relays run by volunteers all around the world: it prevents | |
77 | somebody watching your Internet connection from learning what sites you | |
78 | visit, and it prevents the sites you visit from learning your physical | |
35b9e423 | 79 | location. Tor works with many of your existing applications, including |
7f08437b | 80 | web browsers, instant messaging clients, remote login, and other |
fc9286d0 | 81 | applications based on the TCP protocol. |
55b27569 | 82 | |
fc9286d0 | 83 | To @code{torify} applications (to take measures to ensure that an application, |
84 | which has not been designed for use with Tor such as ssh, will use only Tor for | |
85 | internet connectivity, and also ensures that there are no leaks from DNS, UDP or | |
86 | the application layer) you need to install @code{torsocks}.") | |
71794d7b | 87 | (license license:bsd-3))) |
4f7e152b LC |
88 | |
89 | (define-public torsocks | |
90 | (package | |
91 | (name "torsocks") | |
91988aee | 92 | (version "2.2.0") |
4f7e152b | 93 | (source (origin |
91988aee | 94 | (method url-fetch) |
95 | (uri (string-append "https://people.torproject.org/~dgoulet/" | |
96 | name "/" name "-" version ".tar.xz")) | |
ba583bd2 LC |
97 | (sha256 |
98 | (base32 | |
91988aee | 99 | "0byr9ga9w79qz4vp0m11sbmspad7fsal9wm67r4znzb7zb7cis19")))) |
4f7e152b | 100 | (build-system gnu-build-system) |
f3cf25c3 EB |
101 | (inputs |
102 | `(("which" ,which) | |
103 | ("libcap" ,libcap))) | |
104 | (arguments | |
105 | `(#:phases (modify-phases %standard-phases | |
106 | (add-after 'build 'absolutize | |
107 | (lambda* (#:key inputs #:allow-other-keys) | |
108 | (substitute* "src/bin/torsocks" | |
109 | (("getcap=`.*`") | |
110 | (string-append "getcap=" (which "getcap"))) | |
111 | (("`which") | |
112 | (string-append "`" (which "which")))) | |
113 | #t))))) | |
91988aee | 114 | (home-page "https://www.torproject.org/") |
4f7e152b LC |
115 | (synopsis "Use socks-friendly applications with Tor") |
116 | (description | |
117 | "Torsocks allows you to use most socks-friendly applications in a safe | |
118 | way with Tor. It ensures that DNS requests are handled safely and explicitly | |
119 | rejects UDP traffic from the application you're using.") | |
ba583bd2 LC |
120 | |
121 | ;; All the files explicitly say "version 2 only". | |
71794d7b | 122 | (license license:gpl2))) |
b2e3dd94 LC |
123 | |
124 | (define-public privoxy | |
125 | (package | |
126 | (name "privoxy") | |
a8f3d492 | 127 | (version "3.0.26") |
b2e3dd94 LC |
128 | (source (origin |
129 | (method url-fetch) | |
130 | (uri (string-append "mirror://sourceforge/ijbswa/Sources/" | |
131 | version "%20%28stable%29/privoxy-" | |
132 | version "-stable-src.tar.gz")) | |
133 | (sha256 | |
134 | (base32 | |
a8f3d492 | 135 | "1n4wpxmahl8m2y3d1azxa8lrdbpaad007k458skxrpz57ss1br2p")))) |
b2e3dd94 LC |
136 | (build-system gnu-build-system) |
137 | (arguments | |
ae5c6fca LC |
138 | '(;; The default 'sysconfdir' is $out/etc; change that to |
139 | ;; $out/etc/privoxy. | |
140 | #:configure-flags (list (string-append "--sysconfdir=" | |
141 | (assoc-ref %outputs "out") | |
142 | "/etc/privoxy")) | |
dc1d3cde KK |
143 | #:phases |
144 | (modify-phases %standard-phases | |
145 | (add-after 'unpack 'autoconf | |
146 | (lambda _ | |
147 | ;; Unfortunately, this is not a tarball produced by | |
148 | ;; "make dist". | |
fbb0164a TGR |
149 | (invoke "autoreconf" "-vfi") |
150 | #t))) | |
b2e3dd94 LC |
151 | #:tests? #f)) |
152 | (inputs | |
153 | `(("w3m" ,w3m) | |
154 | ("pcre" ,pcre) | |
155 | ("zlib" ,zlib) | |
156 | ("autoconf" ,autoconf) | |
157 | ("automake" ,automake))) | |
a8f3d492 | 158 | (home-page "https://www.privoxy.org") |
b2e3dd94 LC |
159 | (synopsis "Web proxy with advanced filtering capabilities for enhancing privacy") |
160 | (description | |
161 | "Privoxy is a non-caching web proxy with advanced filtering capabilities | |
162 | for enhancing privacy, modifying web page data and HTTP headers, controlling | |
163 | access, and removing ads and other obnoxious Internet junk. Privoxy has a | |
164 | flexible configuration and can be customized to suit individual needs and | |
165 | tastes. It has application for both stand-alone systems and multi-user | |
166 | networks.") | |
71794d7b | 167 | (license license:gpl2+))) |
b8ea5204 EF |
168 | |
169 | (define-public onionshare | |
170 | (package | |
171 | (name "onionshare") | |
e5a12fba | 172 | (version "0.9.2") |
b8ea5204 EF |
173 | (source |
174 | (origin | |
175 | (method url-fetch) | |
176 | (uri (string-append "https://github.com/micahflee/onionshare/archive/v" | |
177 | version ".tar.gz")) | |
178 | (file-name (string-append name "-" version ".tar.gz")) | |
179 | (sha256 | |
180 | (base32 | |
e5a12fba | 181 | "02iv7dg15da57gy3zvfchnwwpr21n1gva7mqwpwr958ni2034smk")))) |
b8ea5204 EF |
182 | (build-system python-build-system) |
183 | (arguments | |
184 | `(#:phases | |
185 | (modify-phases %standard-phases | |
186 | (add-after 'unpack 'fix-install-path | |
187 | (lambda* (#:key outputs #:allow-other-keys) | |
188 | (let* ((out (assoc-ref outputs "out")) | |
189 | (onionshare (string-append out "/share/onionshare"))) | |
e5a12fba | 190 | (substitute* "onionshare/strings.py" |
b8ea5204 EF |
191 | ;; correct the locale directory |
192 | (("helpers.get_resource_path\\('locale'\\)") | |
193 | (string-append "'" onionshare "/locale'"))) | |
e5a12fba | 194 | (substitute* "onionshare/helpers.py" |
b8ea5204 | 195 | ;; correct the location of version.txt |
b8ea5204 EF |
196 | (("get_resource_path\\('version.txt'\\)") |
197 | (string-append "'" onionshare "/version.txt'")) | |
198 | (("get_resource_path\\('wordlist.txt'\\)") | |
199 | (string-append "'" onionshare "/wordlist.txt'"))) | |
e5a12fba | 200 | (substitute* "onionshare/web.py" |
b8ea5204 EF |
201 | ;; fix the location of the html files |
202 | (("helpers.get_resource_path\\('html/denied.html'\\)") | |
203 | (string-append "'" onionshare "/html/denied.html'")) | |
204 | (("helpers.get_resource_path\\('html/404.html'\\)") | |
205 | (string-append "'" onionshare "/html/404.html'")) | |
206 | (("helpers.get_resource_path\\('html/index.html'\\)") | |
207 | (string-append "'" onionshare "/html/index.html'"))) | |
e5a12fba EF |
208 | (substitute* "onionshare_gui/file_selection.py" |
209 | ;; fancy box image in the GUI | |
b8ea5204 EF |
210 | (("helpers.get_resource_path\\('images/drop_files.png'\\)") |
211 | (string-append "'" onionshare "/images/drop_files.png'"))) | |
e5a12fba | 212 | (substitute* "onionshare_gui/server_status.py" |
b8ea5204 EF |
213 | (("helpers.get_resource_path\\('images/server_stopped.png'\\)") |
214 | (string-append "'" onionshare "/images/server_stopped.png'")) | |
215 | (("helpers.get_resource_path\\('images/server_working.png'\\)") | |
216 | (string-append "'" onionshare "/images/server_working.png'")) | |
217 | (("helpers.get_resource_path\\('images/server_started.png'\\)") | |
218 | (string-append "'" onionshare "/images/server_started.png'"))) | |
e5a12fba EF |
219 | (substitute* "onionshare_gui/onionshare_gui.py" |
220 | ;; for the icon on the GUI | |
b8ea5204 EF |
221 | (("helpers.get_resource_path\\('images/logo.png'\\)") |
222 | (string-append "'" onionshare "/images/logo.png'"))) | |
e5a12fba EF |
223 | (substitute* '("setup.py" "onionshare/helpers.py") |
224 | (("sys.prefix,") (string-append "'" out "',"))) | |
225 | (substitute* "setup.py" | |
226 | ;; for the nautilus plugin | |
227 | (("/usr/share/nautilus") "share/nautilus")) | |
b8ea5204 EF |
228 | #t))) |
229 | (delete 'check) | |
230 | (add-before 'strip 'tests | |
231 | ;; After all the patching we run the tests after installing. | |
232 | ;; This is also a known issue: | |
233 | ;; https://github.com/micahflee/onionshare/issues/284 | |
68e7632d TGR |
234 | (lambda _ |
235 | (invoke "nosetests" "test") | |
236 | #t))))) | |
b8ea5204 EF |
237 | (native-inputs |
238 | `(("python-nose" ,python-nose))) | |
239 | (inputs | |
240 | `(("python-flask" ,python-flask) | |
241 | ("python-nautilus" ,python-nautilus) | |
242 | ("python-sip" ,python-sip) | |
243 | ("python-stem" ,python-stem) | |
244 | ("python-pyqt" ,python-pyqt))) | |
245 | (home-page "https://onionshare.org/") | |
246 | (synopsis "Securely and anonymously share files") | |
247 | (description "OnionShare lets you securely and anonymously share files of | |
248 | any size. It works by starting a web server, making it accessible as a Tor | |
249 | hidden service, and generating an unguessable URL to access and download the | |
250 | files. It doesn't require setting up a server on the internet somewhere or | |
251 | using a third party filesharing service. You host the file on your own computer | |
252 | and use a Tor hidden service to make it temporarily accessible over the | |
253 | internet. The other user just needs to use Tor Browser to download the file | |
254 | from you.") | |
71794d7b TGR |
255 | (license (list license:gpl3+ |
256 | license:bsd-3)))) ; onionshare/socks.py | |
61ac7544 TGR |
257 | |
258 | (define-public nyx | |
259 | ;; The last ‘arm’ relase was 5 years ago. Meanwhile, python3 support has | |
260 | ;; been added and the software was renamed to ‘nyx’. | |
261 | (let ((commit "fea209127484d9b304b908a4711c9528b1d065bc") | |
262 | (revision "1")) ; Guix package revision | |
263 | (package | |
264 | (name "nyx") | |
265 | (version (string-append "1.9-" | |
266 | revision "." (string-take commit 7))) | |
267 | (source | |
268 | (origin | |
269 | (method git-fetch) | |
270 | (file-name (string-append name "-" version "-checkout")) | |
271 | (uri (git-reference | |
272 | (url "https://git.torproject.org/nyx.git") | |
273 | (commit commit))) | |
274 | (sha256 | |
275 | (base32 | |
276 | "1g0l4988076xg5gs0x0nxzlg58rfx5g5agmklvyh4yp03vxncdb9")))) | |
277 | (build-system python-build-system) | |
278 | (native-inputs | |
279 | `(("python-mock" ,python-mock) | |
280 | ("python-pep8" ,python-pep8) | |
281 | ("python-pyflakes" ,python-pyflakes))) | |
282 | (inputs | |
283 | `(("python-stem" ,python-stem))) | |
284 | (arguments | |
285 | `(#:configure-flags | |
286 | (list (string-append "--man-page=" | |
287 | (assoc-ref %outputs "out") | |
288 | "/share/man/man1/nyx.1") | |
289 | (string-append "--sample-path=" | |
290 | (assoc-ref %outputs "out") | |
291 | "/share/doc/nyx/nyxrc.sample")) | |
292 | #:use-setuptools? #f ; setup.py still uses distutils | |
293 | #:phases | |
294 | (modify-phases %standard-phases | |
295 | (replace 'check | |
296 | (lambda _ | |
4e3a72d9 | 297 | (invoke "./run_tests.py" "--unit")))))) |
df23cac7 | 298 | (home-page "https://nyx.torproject.org/") |
61ac7544 | 299 | (synopsis "Tor relay status monitor") |
df23cac7 TGR |
300 | (description |
301 | "Nyx monitors the performance of relays participating in the | |
61ac7544 TGR |
302 | @uref{https://www.torproject.org/, Tor anonymity network}. It displays this |
303 | information visually and in real time, using a curses-based terminal interface. | |
304 | This makes Nyx well-suited for remote shell connections and servers without a | |
305 | graphical display. It's like @command{top} for Tor, providing detailed | |
306 | statistics and status reports on: | |
307 | ||
308 | @enumerate | |
309 | @item connections (with IP address, hostname, fingerprint, and consensus data), | |
310 | @item bandwidth, processor, and memory usage, | |
311 | @item the relay's current configuration, | |
312 | @item logged events, | |
313 | @item and much more. | |
314 | @end enumerate | |
315 | ||
316 | Potential client and exit connections are scrubbed of sensitive information.") | |
317 | (license license:gpl3+)))) |