f8ead215d8
build-windows / build-hello-agent-x64 (push) Successful in 5m41s
A single-binary, Flutter-free remote-support agent that speaks the stock
RustDesk wire protocol. Designed for one-line MDM deployment against a
self-hosted rustdesk-server: a supporter using the unmodified rustdesk.exe
client connects, the controlled-side user gets a native Win32 approval
prompt, click Yes / No.
CLI surface
hello-agent.exe --install # register + start service
hello-agent.exe --uninstall # stop, delete, clean up
hello-agent.exe --config <BLOB> # admin-UI deploy string
hello-agent.exe --install --config <BLOB> # MDM one-liner
--config accepts both forms emitted by the rustdesk-server admin UI: the
reversed-base64 deploy string and the host=,key=,api=,relay= filename
form. Decoded via the upstream custom_server module, persisted via
hbb_common::config::Config::set_option.
Architecture
--service runs as a Session 0 LocalSystem service. It polls
WTSGetActiveConsoleSessionId and (re)spawns hello-agent.exe --server
into the active console session via librustdesk::platform::run_as_user,
handling the Session 0 → user-session token impersonation.
--server is the worker. It boots three concurrent components:
1. cm_popup: an IPC listener on the rustdesk `_cm` named pipe
2. librustdesk::start_server(true, false): the upstream protocol
stack — rendezvous mediator, NAT punch, IPC server, screen
capture, login validation, hbbs_http heartbeat / sysinfo sync
3. (implicit) ApproveMode::Click is pinned in config, so every
incoming connection routes through cm_popup
The popup mechanism reuses an existing upstream contract without any
patches to the protocol code: when a peer connects with no password,
Connection::start in the upstream code calls try_start_cm_ipc, which
ipc::connect-s the `_cm` pipe before falling back to spawning a Flutter
CM child. Since cm_popup is up first, step 1 succeeds; we read the
Data::Login{authorized:false} frame, show MessageBoxTimeoutW (Yes/No,
60s, top-most, system-modal), and reply Data::Authorize or Data::Close.
Source tree
src/main.rs CLI dispatcher + run_server() composition
src/cli.rs hand-rolled argv parser + unit tests
src/service.rs windows-service install/uninstall/dispatcher
src/config_import.rs --config blob decoding + persistence
src/cm_popup.rs _cm IPC listener + Win32 approval dialog
Vendoring
The upstream RustDesk crate is vendored under vendor/rustdesk/ — full
workspace including libs/{hbb_common, scrap, enigo, clipboard,
virtual_display, remote_printer}. This makes the build self-contained
(no submodules, no sibling-repo checkout in CI) and gives us freedom to
fork in a different direction later. Excluded from the vendor: .git,
target/, flutter/, appimage/, flatpak/, fastlane/, docs/, examples/,
ci/, build.py, Dockerfile, upstream README/CLAUDE/AGENTS/GEMINI.
One local divergence vs. upstream: vendor/rustdesk/src/lib.rs flips
`mod custom_server` → `pub mod custom_server` so config_import.rs can
call get_custom_server_from_string without going through the
ui_interface shim. Documented in README.md → "Re-syncing the vendored
copy".
CI
.gitea/workflows/build-windows.yml builds on a self-hosted Windows
runner with Rust 1.75, LLVM 15.0.6 (libclang for bindgen via libvpx-sys),
and a vcpkg cache. The vendored vcpkg.json drives x64-windows-static
deps. The workflow stages the resulting hello-agent.exe into
SignOutput\, reports authenticode signing status (warns on unsigned),
and uploads as artifact. ~15 min full build, faster on incremental.
Out of scope for this commit: Linux/macOS builds, code signing, MSI
packaging, coexistence with stock rustdesk on the same box (currently
shares the RustDesk APP_NAME and config dir).
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
176 lines
5.6 KiB
C++
176 lines
5.6 KiB
C++
// https://learn.microsoft.com/en-us/windows/win32/services/installing-a-service
|
|
|
|
#include "pch.h"
|
|
|
|
#include <iostream>
|
|
#include <Windows.h>
|
|
#include <strsafe.h>
|
|
|
|
bool MyCreateServiceW(LPCWSTR serviceName, LPCWSTR displayName, LPCWSTR binaryPath)
|
|
{
|
|
SC_HANDLE schSCManager;
|
|
SC_HANDLE schService;
|
|
|
|
// Get a handle to the SCM database.
|
|
schSCManager = OpenSCManagerW(
|
|
NULL, // local computer
|
|
NULL, // ServicesActive database
|
|
SC_MANAGER_ALL_ACCESS); // full access rights
|
|
|
|
if (NULL == schSCManager)
|
|
{
|
|
WcaLog(LOGMSG_STANDARD, "OpenSCManager failed (%d)\n", GetLastError());
|
|
return false;
|
|
}
|
|
|
|
// Create the service
|
|
schService = CreateServiceW(
|
|
schSCManager, // SCM database
|
|
serviceName, // name of service
|
|
displayName, // service name to display
|
|
SERVICE_ALL_ACCESS, // desired access
|
|
SERVICE_WIN32_OWN_PROCESS, // service type
|
|
SERVICE_AUTO_START, // start type
|
|
SERVICE_ERROR_NORMAL, // error control type
|
|
binaryPath, // path to service's binary
|
|
NULL, // no load ordering group
|
|
NULL, // no tag identifier
|
|
NULL, // no dependencies
|
|
NULL, // LocalSystem account
|
|
NULL); // no password
|
|
if (schService == NULL)
|
|
{
|
|
WcaLog(LOGMSG_STANDARD, "CreateService failed (%d)\n", GetLastError());
|
|
CloseServiceHandle(schSCManager);
|
|
return false;
|
|
}
|
|
else
|
|
{
|
|
WcaLog(LOGMSG_STANDARD, "Service installed successfully\n");
|
|
}
|
|
|
|
CloseServiceHandle(schService);
|
|
CloseServiceHandle(schSCManager);
|
|
return true;
|
|
}
|
|
|
|
bool MyDeleteServiceW(LPCWSTR serviceName)
|
|
{
|
|
SC_HANDLE hSCManager = OpenSCManagerW(NULL, NULL, SC_MANAGER_CONNECT);
|
|
if (hSCManager == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open Service Control Manager, error: 0x%02X", GetLastError());
|
|
return false;
|
|
}
|
|
|
|
SC_HANDLE hService = OpenServiceW(hSCManager, serviceName, SERVICE_STOP | DELETE);
|
|
if (hService == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open service: %ls, error: 0x%02X", serviceName, GetLastError());
|
|
CloseServiceHandle(hSCManager);
|
|
return false;
|
|
}
|
|
|
|
SERVICE_STATUS serviceStatus;
|
|
if (ControlService(hService, SERVICE_CONTROL_STOP, &serviceStatus)) {
|
|
WcaLog(LOGMSG_STANDARD, "Stopping service: %ls", serviceName);
|
|
}
|
|
|
|
bool success = DeleteService(hService);
|
|
if (!success) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to delete service: %ls, error: 0x%02X", serviceName, GetLastError());
|
|
}
|
|
|
|
CloseServiceHandle(hService);
|
|
CloseServiceHandle(hSCManager);
|
|
|
|
return success;
|
|
}
|
|
|
|
bool MyStartServiceW(LPCWSTR serviceName)
|
|
{
|
|
SC_HANDLE hSCManager = OpenSCManagerW(NULL, NULL, SC_MANAGER_CONNECT);
|
|
if (hSCManager == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open Service Control Manager, error: 0x%02X", GetLastError());
|
|
return false;
|
|
}
|
|
|
|
SC_HANDLE hService = OpenServiceW(hSCManager, serviceName, SERVICE_START);
|
|
if (hService == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open service: %ls, error: 0x%02X", serviceName, GetLastError());
|
|
CloseServiceHandle(hSCManager);
|
|
return false;
|
|
}
|
|
|
|
bool success = StartServiceW(hService, 0, NULL);
|
|
if (!success) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to start service: %ls, error: 0x%02X", serviceName, GetLastError());
|
|
}
|
|
|
|
CloseServiceHandle(hService);
|
|
CloseServiceHandle(hSCManager);
|
|
|
|
return success;
|
|
}
|
|
|
|
bool MyStopServiceW(LPCWSTR serviceName)
|
|
{
|
|
SC_HANDLE hSCManager = OpenSCManagerW(NULL, NULL, SC_MANAGER_CONNECT);
|
|
if (hSCManager == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open Service Control Manager");
|
|
return false;
|
|
}
|
|
|
|
SC_HANDLE hService = OpenServiceW(hSCManager, serviceName, SERVICE_STOP);
|
|
if (hService == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open service: %ls", serviceName);
|
|
CloseServiceHandle(hSCManager);
|
|
return false;
|
|
}
|
|
|
|
SERVICE_STATUS serviceStatus;
|
|
if (!ControlService(hService, SERVICE_CONTROL_STOP, &serviceStatus)) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to stop service: %ls", serviceName);
|
|
CloseServiceHandle(hService);
|
|
CloseServiceHandle(hSCManager);
|
|
return false;
|
|
}
|
|
|
|
CloseServiceHandle(hService);
|
|
CloseServiceHandle(hSCManager);
|
|
|
|
return true;
|
|
}
|
|
|
|
bool QueryServiceStatusExW(LPCWSTR serviceName, SERVICE_STATUS_PROCESS* status)
|
|
{
|
|
SC_HANDLE hSCManager = OpenSCManagerW(NULL, NULL, SC_MANAGER_CONNECT);
|
|
if (hSCManager == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open Service Control Manager");
|
|
return false;
|
|
}
|
|
|
|
SC_HANDLE hService = OpenServiceW(hSCManager, serviceName, SERVICE_QUERY_STATUS);
|
|
if (hService == NULL) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to open service: %ls", serviceName);
|
|
CloseServiceHandle(hSCManager);
|
|
return false;
|
|
}
|
|
|
|
DWORD bytesNeeded;
|
|
BOOL success = QueryServiceStatusEx(hService, SC_STATUS_PROCESS_INFO, reinterpret_cast<LPBYTE>(status), sizeof(*status), &bytesNeeded);
|
|
if (!success) {
|
|
WcaLog(LOGMSG_STANDARD, "Failed to query service: %ls", serviceName);
|
|
}
|
|
|
|
CloseServiceHandle(hService);
|
|
CloseServiceHandle(hSCManager);
|
|
|
|
return success;
|
|
}
|
|
|
|
bool IsServiceRunningW(LPCWSTR serviceName)
|
|
{
|
|
SERVICE_STATUS_PROCESS serviceStatus;
|
|
QueryServiceStatusExW(serviceName, &serviceStatus);
|
|
return (serviceStatus.dwCurrentState == SERVICE_RUNNING);
|
|
}
|