A shared Rust native transport for Elide and stock Netty, with JVM FFM and GraalVM Native Image C bindings. Cargo builds native code; Elide resolves JVM dependencies, compiles Java, and produces JARs.
Status: transport extracted and integration-tested. Rust owns
buffers, socket drivers, TLS, HTTP, and workload accounting. Stock Netty 4.2
runs through either JVM FFM or Native Image C bindings, without an Elide runtime.
The Elide transport ABI 3 C symbols are preserved; Java APIs use dev.elide.bemo.
Rust CI passes on Linux, macOS, and Windows; JVM and packaging qualification
covers Linux x86-64 and macOS ARM64. Maven artifacts remain unpublished.
| Path | Responsibility |
|---|---|
crates/bemo |
Runtime-independent Rust core; consumable as a Cargo Git dependency |
crates/bemo-ffi |
One C boundary, built as rlib, staticlib, and cdylib |
include |
Bemo metadata ABI and preserved Elide transport ABI 3 |
packages/api |
JVM contract without runtime dependencies |
packages/ffm |
JDK 22+ dynamic-library adapter |
packages/native-image |
GraalVM C interop adapter for static linking |
packages/netty |
Stock Netty 4.2 channels, allocator, TLS, and event-loop adapter |
tests |
C and shared JVM binding contracts |
tools |
Build orchestration and artifact/consumer verification |
.github |
Reusable PR, push, merge-queue, check, build, and release-staging workflows |
Install Rustup, Python 3.11+, a C toolchain, a JDK 25 build toolchain, and the
Elide version in .elide-version. Rustup selects rust-toolchain.toml.
Use a GraalVM JDK 25 with native-image for the static binding test. AWS-LC
requires CMake; Windows additionally needs NASM or AWS_LC_SYS_PREBUILT_NASM=1.
OpenSSL on PATH enables additional TLS interoperability checks.
The FFM artifact targets regular JDK 22+, without preview features.
make deps
make build
make check
make test
make test-native-image
make package
python3 tools/verify_package.pymake test covers Rust, an external revision-pinned Cargo Git consumer, a C
consumer, and FFM on the JVM. make test-native-image compiles and executes the
same JVM contract against the static C binding. CI tests FFM on Temurin 22 and
25; Rust on Linux, macOS, and Windows; Native Image on Linux. JVM packaging is
initially Linux glibc x86-64 and macOS ARM64. Windows JVM and musl packaging are
not yet qualified.
Set ELIDE to select the build executable, JAVA_HOME for JVM tools, or
BEMO_TEST_JAVA to run the FFM contract with a separate stock JVM. Standard
Cargo CARGO_TARGET_DIR is supported. Cross-compilation is not wired into the
host binding tests or packaging commands. Build commands share output folders;
run them sequentially in a checkout.
After hosting this repository, pin an actual Bemo commit in the consuming Cargo workspace:
[dependencies]
bemo = { git = "https://github.com/elide-dev/bemo", rev = "<full-commit-sha>" }
bemo-ffi = { git = "https://github.com/elide-dev/bemo", rev = "<full-commit-sha>" }The Maven coordinates are dev.elide.bemo:bemo-api, bemo-ffm,
bemo-native-image, and bemo-netty. These are staged locally, not published. The FFM and
Native Image artifacts depend on the API artifact. GraalVM SDK dependencies
are confined to the Native Image artifact and marked provided.
import dev.elide.bemo.transport.FfmTransportNative;
import dev.elide.bemo.transport.NativeIoHandler;
import dev.elide.bemo.transport.NativeServerSocketChannel;
import dev.elide.bemo.transport.Workload;
import io.netty.channel.MultiThreadIoEventLoopGroup;
var transport = new FfmTransportNative();
var group = new MultiThreadIoEventLoopGroup(
2, NativeIoHandler.newFactory(transport, 0, 128, 8 * 1024 * 1024));
// Supply group and NativeServerSocketChannel.class to a Netty ServerBootstrap.
// After channels are closed:
group.shutdownGracefully().sync();
Workload.close(transport, Workload.DEFAULT);For Native Image, construct dev.elide.bemo.transport.svm.CapiTransportNative instead.
The transport binding retains its library for process lifetime; caller-owned
workloads and event loops have explicit shutdown. See the executable contracts
in tests/transport/java for complete TCP, Unix socket, and TLS examples.
Run with --enable-native-access=ALL-UNNAMED. Include the base FFM JAR and its
platform classifier JAR; the no-argument constructor extracts and loads the
shared library automatically. Static archives ship in the Native Image classifier.
See native loading for configuration. Netty TLS uses
a package-private ALPN adapter and currently requires the classpath rather than JPMS. See architecture, extraction boundaries,
Netty I/O ownership and batching,
publishing, and CI.
Licensed under Apache-2.0.
Test XML, coverage, and continuous CPU/RPS/RSS benchmarks are described in the measurement guide. ASAN, TSAN, Miri, and bounded native fuzzing are described in native safety verification.