]> git.saurik.com Git - apple/ipsec.git/blob - ipsec-tools/racoon/gssapi.h
ipsec-146.3.tar.gz
[apple/ipsec.git] / ipsec-tools / racoon / gssapi.h
1 /* $Id: gssapi.h,v 1.5 2005/02/11 06:59:01 manubsd Exp $ */
2
3 /*
4 * Copyright 2000 Wasabi Systems, Inc.
5 * All rights reserved.
6 *
7 * This software was written by Frank van der Linden of Wasabi Systems
8 * for Zembu Labs, Inc. http://www.zembu.com/
9 *
10 * Redistribution and use in source and binary forms, with or without
11 * modification, are permitted provided that the following conditions
12 * are met:
13 * 1. Redistributions of source code must retain the above copyright
14 * notice, this list of conditions and the following disclaimer.
15 * 2. Redistributions in binary form must reproduce the above copyright
16 * notice, this list of conditions and the following disclaimer in the
17 * documentation and/or other materials provided with the distribution.
18 * 3. The name of Wasabi Systems, Inc. may not be used to endorse
19 * or promote products derived from this software without specific prior
20 * written permission.
21 *
22 * THIS SOFTWARE IS PROVIDED BY WASABI SYSTEMS, INC. ``AS IS'' AND
23 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
24 * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
25 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL WASABI SYSTEMS, INC
26 * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
27 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
28 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
29 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
30 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
31 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
32 * POSSIBILITY OF SUCH DAMAGE.
33 */
34
35 #ifndef __GSSAPI_H__
36 #define __GSSAPI_H__
37
38 #ifdef __FreeBSD__
39 #include "/usr/include/gssapi.h"
40 #else
41 #include <gssapi/gssapi.h>
42 #endif
43
44 #define GSSAPI_DEF_NAME "host"
45
46 struct ph1handle;
47 struct isakmpsa;
48
49 struct gssapi_ph1_state {
50 int gsscnt; /* # of token we're working on */
51 int gsscnt_p; /* # of token we're working on */
52
53 gss_buffer_desc gss[3]; /* gss-api tokens. */
54 /* NOTE: XXX this restricts the max # */
55 /* to 3. More should never happen */
56
57 gss_buffer_desc gss_p[3];
58
59 gss_ctx_id_t gss_context; /* context for gss_init_sec_context */
60
61 OM_uint32 gss_status; /* retval from gss_init_sec_context */
62 gss_cred_id_t gss_cred; /* acquired credentials */
63
64 int gss_flags;
65 #define GSSFLAG_ID_SENT 0x0001
66 #define GSSFLAG_ID_RCVD 0x0001
67 };
68
69 #define gssapi_get_state(ph) \
70 ((struct gssapi_ph1_state *)((ph)->gssapi_state))
71
72 #define gssapi_set_state(ph, st) \
73 (ph)->gssapi_state = (st)
74
75 #define gssapi_more_tokens(ph) \
76 ((gssapi_get_state(ph)->gss_status & GSS_S_CONTINUE_NEEDED) != 0)
77
78 int gssapi_get_itoken __P((struct ph1handle *, int *));
79 int gssapi_get_rtoken __P((struct ph1handle *, int *));
80 int gssapi_save_received_token __P((struct ph1handle *, vchar_t *));
81 int gssapi_get_token_to_send __P((struct ph1handle *, vchar_t **));
82 int gssapi_get_itokens __P((struct ph1handle *, vchar_t **));
83 int gssapi_get_rtokens __P((struct ph1handle *, vchar_t **));
84 vchar_t *gssapi_wraphash __P((struct ph1handle *));
85 vchar_t *gssapi_unwraphash __P((struct ph1handle *));
86 void gssapi_set_id_sent __P((struct ph1handle *));
87 int gssapi_id_sent __P((struct ph1handle *));
88 void gssapi_set_id_rcvd __P((struct ph1handle *));
89 int gssapi_id_rcvd __P((struct ph1handle *));
90 void gssapi_free_state __P((struct ph1handle *));
91 vchar_t *gssapi_get_id __P((struct ph1handle *));
92 vchar_t *gssapi_get_default_gss_id __P((void));
93
94 #endif /* __GSSAPI_H__ */
95