]> git.saurik.com Git - apple/dyld.git/blob - dyld3/CodeSigningTypes.h
dyld-519.2.2.tar.gz
[apple/dyld.git] / dyld3 / CodeSigningTypes.h
1 /* -*- mode: C++; c-basic-offset: 4; indent-tabs-mode: nil -*-
2 *
3 * Copyright (c) 2015 Apple Inc. All rights reserved.
4 *
5 * @APPLE_LICENSE_HEADER_START@
6 *
7 * This file contains Original Code and/or Modifications of Original Code
8 * as defined in and that are subject to the Apple Public Source License
9 * Version 2.0 (the 'License'). You may not use this file except in
10 * compliance with the License. Please obtain a copy of the License at
11 * http://www.opensource.apple.com/apsl/ and read it before using this
12 * file.
13 *
14 * The Original Code and all software distributed under the License are
15 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
16 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
17 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
18 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
19 * Please see the License for the specific language governing rights and
20 * limitations under the License.
21 *
22 * @APPLE_LICENSE_HEADER_END@
23 */
24
25 #ifndef _CODE_SIGNING_TYPES_
26 #define _CODE_SIGNING_TYPES_
27
28 #include <stdint.h>
29 #include <stddef.h>
30
31
32 //
33 // Magic numbers used by Code Signing
34 //
35 enum {
36 CSMAGIC_REQUIREMENT = 0xfade0c00, // single Requirement blob
37 CSMAGIC_REQUIREMENTS = 0xfade0c01, // Requirements vector (internal requirements)
38 CSMAGIC_CODEDIRECTORY = 0xfade0c02, // CodeDirectory blob
39 CSMAGIC_EMBEDDED_SIGNATURE = 0xfade0cc0, // embedded form of signature data
40 CSMAGIC_DETACHED_SIGNATURE = 0xfade0cc1, // multi-arch collection of embedded signatures
41 CSMAGIC_BLOBWRAPPER = 0xfade0b01, // used for the cms blob
42 };
43
44 enum {
45 CS_PAGE_SIZE = 4096,
46
47 CS_HASHTYPE_SHA1 = 1,
48 CS_HASHTYPE_SHA256 = 2,
49 CS_HASHTYPE_SHA256_TRUNCATED = 3,
50
51 CS_HASH_SIZE_SHA1 = 20,
52 CS_HASH_SIZE_SHA256 = 32,
53 CS_HASH_SIZE_SHA256_TRUNCATED = 20,
54
55 CSSLOT_CODEDIRECTORY = 0,
56 CSSLOT_INFOSLOT = 1,
57 CSSLOT_REQUIREMENTS = 2,
58 CSSLOT_RESOURCEDIR = 3,
59 CSSLOT_APPLICATION = 4,
60 CSSLOT_ENTITLEMENTS = 5,
61 CSSLOT_ALTERNATE_CODEDIRECTORIES = 0x1000,
62 CSSLOT_ALTERNATE_CODEDIRECTORY_MAX = 5,
63 CSSLOT_ALTERNATE_CODEDIRECTORY_LIMIT =
64 CSSLOT_ALTERNATE_CODEDIRECTORIES + CSSLOT_ALTERNATE_CODEDIRECTORY_MAX,
65 CSSLOT_CMS_SIGNATURE = 0x10000,
66
67 kSecCodeSignatureAdhoc = 2
68 };
69
70 enum {
71 CS_REQUIRE_LV = 0x0002000 // require library validation
72 };
73
74 //
75 // Structure of a SuperBlob
76 //
77 struct CS_BlobIndex {
78 uint32_t type; // type of entry
79 uint32_t offset; // offset of entry
80 };
81
82 struct CS_SuperBlob {
83 uint32_t magic; // magic number
84 uint32_t length; // total length of SuperBlob
85 uint32_t count; // number of index entries following
86 CS_BlobIndex index[]; // (count) entries
87 // followed by Blobs in no particular order as indicated by offsets in index
88 };
89
90 //
91 // C form of a CodeDirectory.
92 //
93 struct CS_CodeDirectory {
94 uint32_t magic; // magic number (CSMAGIC_CODEDIRECTORY) */
95 uint32_t length; // total length of CodeDirectory blob
96 uint32_t version; // compatibility version
97 uint32_t flags; // setup and mode flags
98 uint32_t hashOffset; // offset of hash slot element at index zero
99 uint32_t identOffset; // offset of identifier string
100 uint32_t nSpecialSlots; // number of special hash slots
101 uint32_t nCodeSlots; // number of ordinary (code) hash slots
102 uint32_t codeLimit; // limit to main image signature range
103 uint8_t hashSize; // size of each hash in bytes
104 uint8_t hashType; // type of hash (cdHashType* constants)
105 uint8_t platform; // platform identifier; zero if not platform binary
106 uint8_t pageSize; // log2(page size in bytes); 0 => infinite
107 uint32_t spare2; // unused (must be zero)
108
109 char end_earliest[0];
110
111 /* Version 0x20100 */
112 uint32_t scatterOffset; /* offset of optional scatter vector */
113 char end_withScatter[0];
114
115 /* Version 0x20200 */
116 uint32_t teamOffset; /* offset of optional team identifier */
117 char end_withTeam[0];
118
119 /* Version 0x20300 */
120 uint32_t spare3; /* unused (must be zero) */
121 uint64_t codeLimit64; /* limit to main image signature range, 64 bits */
122 char end_withCodeLimit64[0];
123
124 /* Version 0x20400 */
125 uint64_t execSegBase; /* offset of executable segment */
126 uint64_t execSegLimit; /* limit of executable segment */
127 uint64_t execSegFlags; /* exec segment flags */
128 char end_withExecSeg[0];
129
130 /* followed by dynamic content as located by offset fields above */
131 };
132
133 struct CS_Blob {
134 uint32_t magic; // magic number
135 uint32_t length; // total length of blob
136 };
137
138 struct CS_RequirementsBlob {
139 uint32_t magic; // magic number
140 uint32_t length; // total length of blob
141 uint32_t data; // zero for dyld shared cache
142 };
143
144
145 struct CS_Scatter {
146 uint32_t count; // number of pages; zero for sentinel (only)
147 uint32_t base; // first page number
148 uint64_t targetOffset; // byte offset in target
149 uint64_t spare; // reserved (must be zero)
150 };
151
152
153 #endif // _CODE_SIGNING_TYPES_
154
155
156