1 /* $NetBSD: dst_internal.h,v 1.1.1.2 2014/07/12 11:57:50 spz Exp $ */
6 * Portions Copyright (c) 1995-1998 by Trusted Information Systems, Inc.
7 * Portions Copyright (c) 2007,2009 by Internet Systems Consortium, Inc. ("ISC")
9 * Permission to use, copy modify, and distribute this software for any
10 * purpose with or without fee is hereby granted, provided that the above
11 * copyright notice and this permission notice appear in all copies.
13 * THE SOFTWARE IS PROVIDED "AS IS" AND TRUSTED INFORMATION SYSTEMS
14 * DISCLAIMS ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL
15 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL
16 * TRUSTED INFORMATION SYSTEMS BE LIABLE FOR ANY SPECIAL, DIRECT,
17 * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING
18 * FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT,
19 * NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION
20 * WITH THE USE OR PERFORMANCE OF THE SOFTWARE.
23 #include <sys/param.h>
26 # ifdef POSIX_PATH_MAX
27 # define PATH_MAX POSIX_PATH_MAX
29 # define PATH_MAX 255 /* this is the value of POSIX_PATH_MAX */
33 typedef struct dst_key
{
34 char *dk_key_name
; /* name of the key */
35 int dk_key_size
; /* this is the size of the key in bits */
36 int dk_proto
; /* what protocols this key can be used for */
37 int dk_alg
; /* algorithm number from key record */
38 unsigned dk_flags
; /* and the flags of the public key */
39 unsigned dk_id
; /* identifier of the key */
40 void *dk_KEY_struct
; /* pointer to key in crypto pkg fmt */
41 struct dst_func
*dk_func
; /* point to crypto pgk specific function table */
45 #include <isc-dhcp/dst.h>
47 * define what crypto systems are supported for RSA,
48 * BSAFE is preferred over RSAREF; only one can be set at any time
50 #if defined(BSAFE) && defined(RSAREF)
51 # error "Cannot have both BSAFE and RSAREF defined"
54 /* Declare dst_lib specific constants */
55 #define KEY_FILE_FORMAT "1.2"
57 /* suffixes for key file names */
58 #define PRIVATE_KEY "private"
59 #define PUBLIC_KEY "key"
63 #define EREPORT(str) printf str
68 /* use our own special macro to FRRE memory */
71 #define SAFE_FREE(a) if(a != NULL){memset(a,0, sizeof(*a)); free(a); a=NULL;}
72 #define SAFE_FREE2(a,s) if (a != NULL && s > 0){memset(a,0, s);free(a); a=NULL;}
75 typedef struct dst_func
{
76 int (*sign
)(const int mode
, DST_KEY
*key
, void **context
,
77 const u_int8_t
*data
, const unsigned len
,
78 u_int8_t
*signature
, const unsigned sig_len
);
79 int (*verify
)(const int mode
, DST_KEY
*key
, void **context
,
80 const u_int8_t
*data
, const unsigned len
,
81 const u_int8_t
*signature
, const unsigned sig_len
);
82 int (*compare
)(const DST_KEY
*key1
, const DST_KEY
*key2
);
83 int (*generate
)(DST_KEY
*key
, int parms
);
84 void *(*destroy
)(void *key
);
85 /* conversion functions */
86 int (*to_dns_key
)(const DST_KEY
*key
, u_int8_t
*out
,
87 const unsigned out_len
);
88 int (*from_dns_key
)(DST_KEY
*key
, const u_int8_t
*str
,
89 const unsigned str_len
);
90 int (*to_file_fmt
)(const DST_KEY
*key
, char *out
,
91 const unsigned out_len
);
92 int (*from_file_fmt
)(DST_KEY
*key
, const char *out
,
93 const unsigned out_len
);
97 extern dst_func
*dst_t_func
[DST_MAX_ALGS
];
98 extern const char *key_file_fmt_str
;
99 extern const char *dst_path
;
101 #ifndef DST_HASH_SIZE
102 #define DST_HASH_SIZE 20 /* RIPEMD160 and SHA-1 are 20 bytes MD5 is 16 */
106 int dst_bsafe_init(void);
107 int dst_rsaref_init(void);
110 int dst_hmac_md5_init(void);
113 int dst_cylink_init(void);
114 int dst_eay_dss_init(void);
117 /* support functions */
118 /* base64 to bignum conversion routines */
119 int dst_s_conv_bignum_u8_to_b64( char *out_buf
, const unsigned out_len
,
121 const u_int8_t
*bin_data
,
122 const unsigned bin_len
);
123 int dst_s_conv_bignum_b64_to_u8( const char **buf
, u_int8_t
*loc
,
124 const unsigned loclen
) ;
125 /* from higher level support routines */
126 int dst_s_calculate_bits( const u_int8_t
*str
, const int max_bits
);
127 int dst_s_verify_str( const char **buf
, const char *str
);
130 /* conversion between dns names and key file names */
131 size_t dst_s_filename_length( const char *name
, const char *suffix
);
132 int dst_s_build_filename( char *filename
, const char *name
,
133 unsigned id
, int alg
, const char *suffix
,
134 size_t filename_length
);
136 FILE *dst_s_fopen (const char *filename
, const char *mode
, unsigned perm
);
138 /* from file prandom.c */
139 int dst_s_random( u_int8_t
*output
, unsigned size
);
140 int dst_s_semi_random( u_int8_t
*output
, unsigned size
);
141 u_int32_t
dst_s_quick_random( int inc
);
142 void dst_s_quick_random_set( u_int32_t val
, u_int32_t cnt
);
145 * read and write network byte order into u_int?_t
146 * all of these should be retired
148 u_int16_t
dst_s_get_int16( const u_int8_t
*buf
);
149 void dst_s_put_int16( u_int8_t
*buf
, const u_int16_t val
);
151 u_int32_t
dst_s_get_int32( const u_int8_t
*buf
);
152 void dst_s_put_int32( u_int8_t
*buf
, const u_int32_t val
);
156 # define DUMP(a,b,c,d) dst_s_dump(a,b,c,d)
158 # define DUMP(a,b,c,d)
161 #if defined (MINIRES_LIB)
162 #define b64_pton MRb64_pton
163 #define b64_ntop MRb64_ntop
165 int b64_pton (char const *, unsigned char *, size_t);
166 int b64_ntop (unsigned char const *, size_t, char *, size_t);
172 #endif /* DST_INTERNAL_H */