4 * Copyright (C) 2004, 2005, 2007, 2009 Internet Systems Consortium, Inc. ("ISC")
5 * Copyright (C) 2003 Internet Software Consortium.
7 * Permission to use, copy, modify, and/or distribute this software for any
8 * purpose with or without fee is hereby granted, provided that the above
9 * copyright notice and this permission notice appear in all copies.
11 * THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
12 * REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
13 * AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
14 * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
15 * LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
16 * OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
17 * PERFORMANCE OF THIS SOFTWARE.
20 /* Id: rrsig_46.c,v 1.12 2009/12/04 22:06:37 tbox Exp */
22 /* Reviewed: Fri Mar 17 09:05:02 PST 2000 by gson */
26 #ifndef RDATA_GENERIC_RRSIG_46_C
27 #define RDATA_GENERIC_RRSIG_46_C
29 #define RRTYPE_RRSIG_ATTRIBUTES (DNS_RDATATYPEATTR_DNSSEC)
31 static inline isc_result_t
32 fromtext_rrsig(ARGS_FROMTEXT
) {
36 dns_rdatatype_t covered
;
41 isc_uint32_t time_signed
, time_expire
;
52 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_string
,
54 result
= dns_rdatatype_fromtext(&covered
, &token
.value
.as_textregion
);
55 if (result
!= ISC_R_SUCCESS
&& result
!= ISC_R_NOTIMPLEMENTED
) {
56 i
= strtol(DNS_AS_STR(token
), &e
, 10);
57 if (i
< 0 || i
> 65535)
61 covered
= (dns_rdatatype_t
)i
;
63 RETERR(uint16_tobuffer(covered
, target
));
68 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_string
,
70 RETTOK(dns_secalg_fromtext(&c
, &token
.value
.as_textregion
));
71 RETERR(mem_tobuffer(target
, &c
, 1));
76 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_number
,
78 if (token
.value
.as_ulong
> 0xffU
)
80 c
= (unsigned char)token
.value
.as_ulong
;
81 RETERR(mem_tobuffer(target
, &c
, 1));
86 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_number
,
88 RETERR(uint32_tobuffer(token
.value
.as_ulong
, target
));
91 * Signature expiration.
93 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_string
,
95 RETTOK(dns_time32_fromtext(DNS_AS_STR(token
), &time_expire
));
96 RETERR(uint32_tobuffer(time_expire
, target
));
101 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_string
,
103 RETTOK(dns_time32_fromtext(DNS_AS_STR(token
), &time_signed
));
104 RETERR(uint32_tobuffer(time_signed
, target
));
109 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_number
,
111 RETERR(uint16_tobuffer(token
.value
.as_ulong
, target
));
116 RETERR(isc_lex_getmastertoken(lexer
, &token
, isc_tokentype_string
,
118 dns_name_init(&name
, NULL
);
119 buffer_fromregion(&buffer
, &token
.value
.as_region
);
120 origin
= (origin
!= NULL
) ? origin
: dns_rootname
;
121 RETTOK(dns_name_fromtext(&name
, &buffer
, origin
, options
, target
));
126 return (isc_base64_tobuffer(lexer
, target
, -1));
129 static inline isc_result_t
130 totext_rrsig(ARGS_TOTEXT
) {
132 char buf
[sizeof("4294967295")];
133 dns_rdatatype_t covered
;
142 REQUIRE(rdata
->type
== 46);
143 REQUIRE(rdata
->length
!= 0);
145 dns_rdata_toregion(rdata
, &sr
);
150 covered
= uint16_fromregion(&sr
);
151 isc_region_consume(&sr
, 2);
153 * XXXAG We should have something like dns_rdatatype_isknown()
154 * that does the right thing with type 0.
156 if (dns_rdatatype_isknown(covered
) && covered
!= 0) {
157 RETERR(dns_rdatatype_totext(covered
, target
));
159 char buf
[sizeof("TYPE65535")];
160 sprintf(buf
, "TYPE%u", covered
);
161 RETERR(str_totext(buf
, target
));
163 RETERR(str_totext(" ", target
));
168 sprintf(buf
, "%u", sr
.base
[0]);
169 isc_region_consume(&sr
, 1);
170 RETERR(str_totext(buf
, target
));
171 RETERR(str_totext(" ", target
));
176 sprintf(buf
, "%u", sr
.base
[0]);
177 isc_region_consume(&sr
, 1);
178 RETERR(str_totext(buf
, target
));
179 RETERR(str_totext(" ", target
));
184 ttl
= uint32_fromregion(&sr
);
185 isc_region_consume(&sr
, 4);
186 sprintf(buf
, "%lu", ttl
);
187 RETERR(str_totext(buf
, target
));
188 RETERR(str_totext(" ", target
));
193 exp
= uint32_fromregion(&sr
);
194 isc_region_consume(&sr
, 4);
195 RETERR(dns_time32_totext(exp
, target
));
197 if ((tctx
->flags
& DNS_STYLEFLAG_MULTILINE
) != 0)
198 RETERR(str_totext(" (", target
));
199 RETERR(str_totext(tctx
->linebreak
, target
));
204 when
= uint32_fromregion(&sr
);
205 isc_region_consume(&sr
, 4);
206 RETERR(dns_time32_totext(when
, target
));
207 RETERR(str_totext(" ", target
));
212 foot
= uint16_fromregion(&sr
);
213 isc_region_consume(&sr
, 2);
214 sprintf(buf
, "%lu", foot
);
215 RETERR(str_totext(buf
, target
));
216 RETERR(str_totext(" ", target
));
221 dns_name_init(&name
, NULL
);
222 dns_name_init(&prefix
, NULL
);
223 dns_name_fromregion(&name
, &sr
);
224 isc_region_consume(&sr
, name_length(&name
));
225 sub
= name_prefix(&name
, tctx
->origin
, &prefix
);
226 RETERR(dns_name_totext(&prefix
, sub
, target
));
231 RETERR(str_totext(tctx
->linebreak
, target
));
232 RETERR(isc_base64_totext(&sr
, tctx
->width
- 2,
233 tctx
->linebreak
, target
));
234 if ((tctx
->flags
& DNS_STYLEFLAG_MULTILINE
) != 0)
235 RETERR(str_totext(" )", target
));
237 return (ISC_R_SUCCESS
);
240 static inline isc_result_t
241 fromwire_rrsig(ARGS_FROMWIRE
) {
250 dns_decompress_setmethods(dctx
, DNS_COMPRESS_NONE
);
252 isc_buffer_activeregion(source
, &sr
);
258 * signature expiration: 4
263 return (ISC_R_UNEXPECTEDEND
);
265 isc_buffer_forward(source
, 18);
266 RETERR(mem_tobuffer(target
, sr
.base
, 18));
271 dns_name_init(&name
, NULL
);
272 RETERR(dns_name_fromwire(&name
, source
, dctx
, options
, target
));
277 isc_buffer_activeregion(source
, &sr
);
278 isc_buffer_forward(source
, sr
.length
);
279 return (mem_tobuffer(target
, sr
.base
, sr
.length
));
282 static inline isc_result_t
283 towire_rrsig(ARGS_TOWIRE
) {
286 dns_offsets_t offsets
;
288 REQUIRE(rdata
->type
== 46);
289 REQUIRE(rdata
->length
!= 0);
291 dns_compress_setmethods(cctx
, DNS_COMPRESS_NONE
);
292 dns_rdata_toregion(rdata
, &sr
);
298 * signature expiration: 4
302 RETERR(mem_tobuffer(target
, sr
.base
, 18));
303 isc_region_consume(&sr
, 18);
308 dns_name_init(&name
, offsets
);
309 dns_name_fromregion(&name
, &sr
);
310 isc_region_consume(&sr
, name_length(&name
));
311 RETERR(dns_name_towire(&name
, cctx
, target
));
316 return (mem_tobuffer(target
, sr
.base
, sr
.length
));
320 compare_rrsig(ARGS_COMPARE
) {
324 REQUIRE(rdata1
->type
== rdata2
->type
);
325 REQUIRE(rdata1
->rdclass
== rdata2
->rdclass
);
326 REQUIRE(rdata1
->type
== 46);
327 REQUIRE(rdata1
->length
!= 0);
328 REQUIRE(rdata2
->length
!= 0);
330 dns_rdata_toregion(rdata1
, &r1
);
331 dns_rdata_toregion(rdata2
, &r2
);
332 return (isc_region_compare(&r1
, &r2
));
335 static inline isc_result_t
336 fromstruct_rrsig(ARGS_FROMSTRUCT
) {
337 dns_rdata_rrsig_t
*sig
= source
;
340 REQUIRE(source
!= NULL
);
341 REQUIRE(sig
->common
.rdtype
== type
);
342 REQUIRE(sig
->common
.rdclass
== rdclass
);
343 REQUIRE(sig
->signature
!= NULL
|| sig
->siglen
== 0);
351 RETERR(uint16_tobuffer(sig
->covered
, target
));
356 RETERR(uint8_tobuffer(sig
->algorithm
, target
));
361 RETERR(uint8_tobuffer(sig
->labels
, target
));
366 RETERR(uint32_tobuffer(sig
->originalttl
, target
));
371 RETERR(uint32_tobuffer(sig
->timeexpire
, target
));
376 RETERR(uint32_tobuffer(sig
->timesigned
, target
));
381 RETERR(uint16_tobuffer(sig
->keyid
, target
));
386 RETERR(name_tobuffer(&sig
->signer
, target
));
391 return (mem_tobuffer(target
, sig
->signature
, sig
->siglen
));
394 static inline isc_result_t
395 tostruct_rrsig(ARGS_TOSTRUCT
) {
397 dns_rdata_rrsig_t
*sig
= target
;
400 REQUIRE(rdata
->type
== 46);
401 REQUIRE(target
!= NULL
);
402 REQUIRE(rdata
->length
!= 0);
404 sig
->common
.rdclass
= rdata
->rdclass
;
405 sig
->common
.rdtype
= rdata
->type
;
406 ISC_LINK_INIT(&sig
->common
, link
);
408 dns_rdata_toregion(rdata
, &sr
);
413 sig
->covered
= uint16_fromregion(&sr
);
414 isc_region_consume(&sr
, 2);
419 sig
->algorithm
= uint8_fromregion(&sr
);
420 isc_region_consume(&sr
, 1);
425 sig
->labels
= uint8_fromregion(&sr
);
426 isc_region_consume(&sr
, 1);
431 sig
->originalttl
= uint32_fromregion(&sr
);
432 isc_region_consume(&sr
, 4);
437 sig
->timeexpire
= uint32_fromregion(&sr
);
438 isc_region_consume(&sr
, 4);
443 sig
->timesigned
= uint32_fromregion(&sr
);
444 isc_region_consume(&sr
, 4);
449 sig
->keyid
= uint16_fromregion(&sr
);
450 isc_region_consume(&sr
, 2);
452 dns_name_init(&signer
, NULL
);
453 dns_name_fromregion(&signer
, &sr
);
454 dns_name_init(&sig
->signer
, NULL
);
455 RETERR(name_duporclone(&signer
, mctx
, &sig
->signer
));
456 isc_region_consume(&sr
, name_length(&sig
->signer
));
461 sig
->siglen
= sr
.length
;
462 sig
->signature
= mem_maybedup(mctx
, sr
.base
, sig
->siglen
);
463 if (sig
->signature
== NULL
)
468 return (ISC_R_SUCCESS
);
472 dns_name_free(&sig
->signer
, mctx
);
473 return (ISC_R_NOMEMORY
);
477 freestruct_rrsig(ARGS_FREESTRUCT
) {
478 dns_rdata_rrsig_t
*sig
= (dns_rdata_rrsig_t
*) source
;
480 REQUIRE(source
!= NULL
);
481 REQUIRE(sig
->common
.rdtype
== 46);
483 if (sig
->mctx
== NULL
)
486 dns_name_free(&sig
->signer
, sig
->mctx
);
487 if (sig
->signature
!= NULL
)
488 isc_mem_free(sig
->mctx
, sig
->signature
);
492 static inline isc_result_t
493 additionaldata_rrsig(ARGS_ADDLDATA
) {
494 REQUIRE(rdata
->type
== 46);
500 return (ISC_R_SUCCESS
);
503 static inline isc_result_t
504 digest_rrsig(ARGS_DIGEST
) {
506 REQUIRE(rdata
->type
== 46);
512 return (ISC_R_NOTIMPLEMENTED
);
515 static inline dns_rdatatype_t
516 covers_rrsig(dns_rdata_t
*rdata
) {
517 dns_rdatatype_t type
;
520 REQUIRE(rdata
->type
== 46);
522 dns_rdata_toregion(rdata
, &r
);
523 type
= uint16_fromregion(&r
);
528 static inline isc_boolean_t
529 checkowner_rrsig(ARGS_CHECKOWNER
) {
541 static inline isc_boolean_t
542 checknames_rrsig(ARGS_CHECKNAMES
) {
544 REQUIRE(rdata
->type
== 46);
554 casecompare_rrsig(ARGS_COMPARE
) {
561 REQUIRE(rdata1
->type
== rdata2
->type
);
562 REQUIRE(rdata1
->rdclass
== rdata2
->rdclass
);
563 REQUIRE(rdata1
->type
== 46);
564 REQUIRE(rdata1
->length
!= 0);
565 REQUIRE(rdata2
->length
!= 0);
567 dns_rdata_toregion(rdata1
, &r1
);
568 dns_rdata_toregion(rdata2
, &r2
);
570 INSIST(r1
.length
> 18);
571 INSIST(r2
.length
> 18);
574 order
= isc_region_compare(&r1
, &r2
);
578 dns_name_init(&name1
, NULL
);
579 dns_name_init(&name2
, NULL
);
580 dns_rdata_toregion(rdata1
, &r1
);
581 dns_rdata_toregion(rdata2
, &r2
);
582 isc_region_consume(&r1
, 18);
583 isc_region_consume(&r2
, 18);
584 dns_name_fromregion(&name1
, &r1
);
585 dns_name_fromregion(&name2
, &r2
);
586 order
= dns_name_rdatacompare(&name1
, &name2
);
590 isc_region_consume(&r1
, name_length(&name1
));
591 isc_region_consume(&r2
, name_length(&name2
));
593 return (isc_region_compare(&r1
, &r2
));
596 #endif /* RDATA_GENERIC_RRSIG_46_C */