2 * IKEv2 responder (RFC 4306) for EAP-IKEV2
3 * Copyright (c) 2007, Jouni Malinen <j@w1.fi>
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License version 2 as
7 * published by the Free Software Foundation.
9 * Alternatively, this software may be distributed under the terms of BSD
12 * See README and COPYING for more details.
18 #include "eap_common/ikev2_common.h"
20 struct ikev2_proposal_data
{
29 struct ikev2_responder_data
{
30 enum { SA_INIT
, SA_AUTH
, CHILD_SA
, NOTIFY
, IKEV2_DONE
, IKEV2_FAILED
}
32 u8 i_spi
[IKEV2_SPI_LEN
];
33 u8 r_spi
[IKEV2_SPI_LEN
];
34 u8 i_nonce
[IKEV2_NONCE_MAX_LEN
];
36 u8 r_nonce
[IKEV2_NONCE_MAX_LEN
];
38 struct wpabuf
*i_dh_public
;
39 struct wpabuf
*r_dh_private
;
40 struct ikev2_proposal_data proposal
;
41 const struct dh_group
*dh
;
42 struct ikev2_keys keys
;
48 struct wpabuf
*r_sign_msg
;
49 struct wpabuf
*i_sign_msg
;
51 size_t shared_secret_len
;
52 enum { PEER_AUTH_CERT
, PEER_AUTH_SECRET
} peer_auth
;
56 enum { LAST_MSG_SA_INIT
, LAST_MSG_SA_AUTH
} last_msg
;
60 void ikev2_responder_deinit(struct ikev2_responder_data
*data
);
61 int ikev2_responder_process(struct ikev2_responder_data
*data
,
62 const struct wpabuf
*buf
);
63 struct wpabuf
* ikev2_responder_build(struct ikev2_responder_data
*data
);