mirror of
https://github.com/microsoft/regorus.git
synced 2026-08-05 02:16:11 +00:00
* feat!: add Rego Virtual Machine (RVM) implementation This commit introduces a register-based virtual machine for executing Rego policies with bytecode-style instructions. Unlike the existing tree-walking interpreter, the RVM compiles policies into instruction sequences that operate on virtual registers, offering better performance and optimization potential. Core Components: Instruction Set Architecture: - Define instruction types for data operations, control flow, and builtins - Implement instruction parameter encoding and display formatting - Add instruction parser with comprehensive test coverage Virtual Machine Engine: - Register-based execution model with program counter management - Loop execution supporting iterators, comprehensions, and quantifiers - Function call handling with argument evaluation and context management - Rule evaluation with default value resolution and virtual data support - Arithmetic and comparison operation implementations Program Representation: - Program listing builder with instruction sequencing - Rule tree construction for organizing policy rules - Binary and JSON serialization for compiled programs - Recompilation support for program modification Testing Infrastructure: - Extensive YAML test suites covering all VM features - Rust unit tests for VM execution and instruction parsing - Test suites for loops, comprehensions, builtins, and control flow BREAKING CHANGE: Introduces new VM execution path alongside interpreter Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com> * docs: add detailed RVM architecture references Introduce architecture.md explaining program artifacts, serialization, and runtime subsystems. Document the full opcode catalog in instruction-set.md, including operands, parameter tables, and outcomes. Walk through execution flow, stacks, and operational guidance in vm-runtime.md, tying the runtime to the new architecture docs. Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com> --------- Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com>
41 lines
1.3 KiB
Bash
Executable File
41 lines
1.3 KiB
Bash
Executable File
#!/bin/bash
|
|
# Copyright (c) Microsoft Corporation.
|
|
# Licensed under the MIT License.
|
|
|
|
set -eo pipefail
|
|
|
|
if [ -f Cargo.toml ]; then
|
|
# Run precommit checks.
|
|
dir=$(dirname "${BASH_SOURCE[0]}")
|
|
"$dir/pre-commit"
|
|
|
|
# Ensure that the public API works.
|
|
cargo test -r --doc
|
|
|
|
# Ensure that no_std build succeeds.
|
|
# Build for a target that has no std available.
|
|
if command -v rustup > /dev/null; then
|
|
rustup target add thumbv7m-none-eabi
|
|
(cd tests/ensure_no_std; cargo build -r --target thumbv7m-none-eabi --no-default-features --features opa-no-std)
|
|
fi
|
|
|
|
# Ensure that we can build with only std.
|
|
cargo build -r --example regorus --no-default-features --features std
|
|
|
|
# Ensure that we can build with all features.
|
|
cargo build -r --all-features
|
|
|
|
# Ensure that all tests pass.
|
|
cargo test -r
|
|
cargo test -r --test aci
|
|
cargo test -r --test kata
|
|
|
|
# Ensure that all tests pass with extensions
|
|
cargo test -r --features rego-extensions
|
|
cargo test -r --test aci --features rego-extensions
|
|
cargo test -r --test kata --features rego-extensions
|
|
|
|
# Ensure that OPA conformance tests don't regress.
|
|
cargo test -r --features opa-testutil,serde_json/arbitrary_precision,rego-extensions --test opa -- $(tr '\n' ' ' < tests/opa.passing)
|
|
fi
|