diff options
author | Vlad Yasevich <vladislav.yasevich@hp.com> | 2007-10-09 04:15:59 -0400 |
---|---|---|
committer | David S. Miller <davem@sunset.davemloft.net> | 2007-10-10 19:51:29 -0400 |
commit | 1f485649f52929d9937b346a920a522a7363e202 (patch) | |
tree | 663ac69ba7fff641e243306d7aad5b95378e4d6d /include/net/sctp/auth.h | |
parent | f7b0e93ba1a484700bd1b0e36bdaddaf4eb51b0b (diff) |
[SCTP]: Implement SCTP-AUTH internals
This patch implements the internals operations of the AUTH, such as
key computation and storage. It also adds necessary variables to
the SCTP data structures.
Signed-off-by: Vlad Yasevich <vladislav.yasevich@hp.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
Diffstat (limited to 'include/net/sctp/auth.h')
-rw-r--r-- | include/net/sctp/auth.h | 112 |
1 files changed, 112 insertions, 0 deletions
diff --git a/include/net/sctp/auth.h b/include/net/sctp/auth.h new file mode 100644 index 000000000000..10c8010552ff --- /dev/null +++ b/include/net/sctp/auth.h | |||
@@ -0,0 +1,112 @@ | |||
1 | /* SCTP kernel reference Implementation | ||
2 | * (C) Copyright 2007 Hewlett-Packard Development Company, L.P. | ||
3 | * | ||
4 | * This file is part of the SCTP kernel reference Implementation | ||
5 | * | ||
6 | * The SCTP reference implementation is free software; | ||
7 | * you can redistribute it and/or modify it under the terms of | ||
8 | * the GNU General Public License as published by | ||
9 | * the Free Software Foundation; either version 2, or (at your option) | ||
10 | * any later version. | ||
11 | * | ||
12 | * The SCTP reference implementation is distributed in the hope that it | ||
13 | * will be useful, but WITHOUT ANY WARRANTY; without even the implied | ||
14 | * ************************ | ||
15 | * warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. | ||
16 | * See the GNU General Public License for more details. | ||
17 | * | ||
18 | * You should have received a copy of the GNU General Public License | ||
19 | * along with GNU CC; see the file COPYING. If not, write to | ||
20 | * the Free Software Foundation, 59 Temple Place - Suite 330, | ||
21 | * Boston, MA 02111-1307, USA. | ||
22 | * | ||
23 | * Please send any bug reports or fixes you make to the | ||
24 | * email address(es): | ||
25 | * lksctp developers <lksctp-developers@lists.sourceforge.net> | ||
26 | * | ||
27 | * Or submit a bug report through the following website: | ||
28 | * http://www.sf.net/projects/lksctp | ||
29 | * | ||
30 | * Written or modified by: | ||
31 | * Vlad Yasevich <vladislav.yasevich@hp.com> | ||
32 | * | ||
33 | * Any bugs reported given to us we will try to fix... any fixes shared will | ||
34 | * be incorporated into the next SCTP release. | ||
35 | */ | ||
36 | |||
37 | #ifndef __sctp_auth_h__ | ||
38 | #define __sctp_auth_h__ | ||
39 | |||
40 | #include <linux/list.h> | ||
41 | #include <linux/crypto.h> | ||
42 | |||
43 | struct sctp_endpoint; | ||
44 | struct sctp_association; | ||
45 | struct sctp_authkey; | ||
46 | |||
47 | /* | ||
48 | * Define a generic struct that will hold all the info | ||
49 | * necessary for an HMAC transform | ||
50 | */ | ||
51 | struct sctp_hmac { | ||
52 | __u16 hmac_id; /* one of the above ids */ | ||
53 | char *hmac_name; /* name for loading */ | ||
54 | __u16 hmac_len; /* length of the signature */ | ||
55 | }; | ||
56 | |||
57 | /* This is generic structure that containst authentication bytes used | ||
58 | * as keying material. It's a what is referred to as byte-vector all | ||
59 | * over SCTP-AUTH | ||
60 | */ | ||
61 | struct sctp_auth_bytes { | ||
62 | atomic_t refcnt; | ||
63 | __u32 len; | ||
64 | __u8 data[]; | ||
65 | }; | ||
66 | |||
67 | /* Definition for a shared key, weather endpoint or association */ | ||
68 | struct sctp_shared_key { | ||
69 | struct list_head key_list; | ||
70 | __u16 key_id; | ||
71 | struct sctp_auth_bytes *key; | ||
72 | }; | ||
73 | |||
74 | #define key_for_each(__key, __list_head) \ | ||
75 | list_for_each_entry(__key, __list_head, key_list) | ||
76 | |||
77 | #define key_for_each_safe(__key, __tmp, __list_head) \ | ||
78 | list_for_each_entry_safe(__key, __tmp, __list_head, key_list) | ||
79 | |||
80 | static inline void sctp_auth_key_hold(struct sctp_auth_bytes *key) | ||
81 | { | ||
82 | if (!key) | ||
83 | return; | ||
84 | |||
85 | atomic_inc(&key->refcnt); | ||
86 | } | ||
87 | |||
88 | void sctp_auth_key_put(struct sctp_auth_bytes *key); | ||
89 | struct sctp_shared_key *sctp_auth_shkey_create(__u16 key_id, gfp_t gfp); | ||
90 | void sctp_auth_shkey_free(struct sctp_shared_key *sh_key); | ||
91 | void sctp_auth_destroy_keys(struct list_head *keys); | ||
92 | int sctp_auth_asoc_init_active_key(struct sctp_association *asoc, gfp_t gfp); | ||
93 | struct sctp_shared_key *sctp_auth_get_shkey( | ||
94 | const struct sctp_association *asoc, | ||
95 | __u16 key_id); | ||
96 | int sctp_auth_asoc_copy_shkeys(const struct sctp_endpoint *ep, | ||
97 | struct sctp_association *asoc, | ||
98 | gfp_t gfp); | ||
99 | int sctp_auth_init_hmacs(struct sctp_endpoint *ep, gfp_t gfp); | ||
100 | void sctp_auth_destroy_hmacs(struct crypto_hash *auth_hmacs[]); | ||
101 | struct sctp_hmac *sctp_auth_get_hmac(__u16 hmac_id); | ||
102 | struct sctp_hmac *sctp_auth_asoc_get_hmac(const struct sctp_association *asoc); | ||
103 | void sctp_auth_asoc_set_default_hmac(struct sctp_association *asoc, | ||
104 | struct sctp_hmac_algo_param *hmacs); | ||
105 | int sctp_auth_asoc_verify_hmac_id(const struct sctp_association *asoc, | ||
106 | __u16 hmac_id); | ||
107 | int sctp_auth_send_cid(sctp_cid_t chunk, const struct sctp_association *asoc); | ||
108 | int sctp_auth_recv_cid(sctp_cid_t chunk, const struct sctp_association *asoc); | ||
109 | void sctp_auth_calculate_hmac(const struct sctp_association *asoc, | ||
110 | struct sk_buff *skb, | ||
111 | struct sctp_auth_chunk *auth, gfp_t gfp); | ||
112 | #endif | ||