]> git.saurik.com Git - apple/security.git/blame - OSX/sec/SOSCircle/SecureObjectSync/SOSCircle.h
Security-57740.60.18.tar.gz
[apple/security.git] / OSX / sec / SOSCircle / SecureObjectSync / SOSCircle.h
CommitLineData
427c49bc 1/*
d8f41ccd
A
2 * Copyright (c) 2012-2014 Apple Inc. All Rights Reserved.
3 *
4 * @APPLE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
11 * file.
12 *
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
20 *
21 * @APPLE_LICENSE_HEADER_END@
427c49bc
A
22 */
23
d8f41ccd 24
427c49bc
A
25/*!
26 @header SOSCircle.h
27 The functions provided in SOSCircle.h provide an interface to a
28 secure object syncing circle for a single class
29 */
30
31#ifndef _SOSCIRCLE_H_
32#define _SOSCIRCLE_H_
33
34#include <Security/Security.h>
5c19dc3a
A
35#include <Security/SecureObjectSync/SOSFullPeerInfo.h>
36#include <Security/SecureObjectSync/SOSPeerInfo.h>
37#include <Security/SecureObjectSync/SOSPeer.h>
38#include <Security/SecureObjectSync/SOSConcordanceTrust.h>
e0e0d90e
A
39#include <Security/SecureObjectSync/SOSGenCount.h>
40
427c49bc
A
41
42__BEGIN_DECLS
43
44typedef struct __OpaqueSOSCircle *SOSCircleRef;
45
427c49bc
A
46CFTypeID SOSCircleGetTypeID();
47
48SOSCircleRef SOSCircleCreate(CFAllocatorRef allocator, CFStringRef circleName, CFErrorRef *error);
49SOSCircleRef SOSCircleCreateFromDER(CFAllocatorRef allocator, CFErrorRef* error,
50 const uint8_t** der_p, const uint8_t *der_end);
51SOSCircleRef SOSCircleCreateFromData(CFAllocatorRef allocator, CFDataRef circleData, CFErrorRef *error);
52SOSCircleRef SOSCircleCopyCircle(CFAllocatorRef allocator, SOSCircleRef otherCircle, CFErrorRef *error);
53
fa7225c8
A
54bool SOSCircleSetSignature(SOSCircleRef circle, SecKeyRef pubkey, CFDataRef signature, CFErrorRef *error);
55CFDataRef SOSCircleGetSignature(SOSCircleRef circle, SecKeyRef pubkey, CFErrorRef *error);
427c49bc
A
56bool SOSCircleSign(SOSCircleRef circle, SecKeyRef privkey, CFErrorRef *error);
57bool SOSCircleVerifySignatureExists(SOSCircleRef circle, SecKeyRef pubKey, CFErrorRef *error);
58bool SOSCircleVerify(SOSCircleRef circle, SecKeyRef pubkey, CFErrorRef *error);
59
60bool SOSCircleVerifyPeerSigned(SOSCircleRef circle, SOSPeerInfoRef peer, CFErrorRef *error);
61
62bool SOSCircleGenerationSign(SOSCircleRef circle, SecKeyRef user_approver, SOSFullPeerInfoRef peerinfo, CFErrorRef *error);
5c19dc3a
A
63bool SOSCircleSignOldStyleResetToOfferingCircle(SOSCircleRef circle, SOSFullPeerInfoRef peerinfo, SecKeyRef user_approver, CFErrorRef *error);
64
65
66size_t SOSCircleGetDEREncodedSize(SOSCircleRef cir, CFErrorRef *error);
67uint8_t* SOSCircleEncodeToDER(SOSCircleRef cir, CFErrorRef* error, const uint8_t* der, uint8_t* der_end);
68CFDataRef SOSCircleCopyEncodedData(SOSCircleRef circle, CFAllocatorRef allocator, CFErrorRef *error);
427c49bc
A
69
70size_t SOSCircleGetDEREncodedSize(SOSCircleRef cir, CFErrorRef *error);
71uint8_t* SOSCircleEncodeToDER(SOSCircleRef cir, CFErrorRef* error, const uint8_t* der, uint8_t* der_end);
72CFDataRef SOSCircleCopyEncodedData(SOSCircleRef circle, CFAllocatorRef allocator, CFErrorRef *error);
73
74int SOSCircleCountApplicants(SOSCircleRef circle);
75bool SOSCircleHasApplicant(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
d8f41ccd 76CFMutableSetRef SOSCircleCopyApplicants(SOSCircleRef c, CFAllocatorRef allocator);
427c49bc
A
77void SOSCircleForEachApplicant(SOSCircleRef circle, void (^action)(SOSPeerInfoRef peer));
78
79int SOSCircleCountRejectedApplicants(SOSCircleRef circle);
80bool SOSCircleHasRejectedApplicant(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
81SOSPeerInfoRef SOSCircleCopyRejectedApplicant(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
82CFMutableArrayRef SOSCircleCopyRejectedApplicants(SOSCircleRef c, CFAllocatorRef allocator);
e0e0d90e 83void SOSCircleSetGeneration(SOSCircleRef circle, SOSGenCountRef gencount);
427c49bc
A
84
85CFStringRef SOSCircleGetName(SOSCircleRef circle);
86const char *SOSCircleGetNameC(SOSCircleRef circle);
87
d8f41ccd 88void SOSCircleGenerationSetValue(SOSCircleRef circle, int64_t value);
e0e0d90e 89SOSGenCountRef SOSCircleGetGeneration(SOSCircleRef circle);
427c49bc
A
90int64_t SOSCircleGetGenerationSint(SOSCircleRef circle);
91void SOSCircleGenerationIncrement(SOSCircleRef circle);
92
d8f41ccd
A
93CFMutableSetRef SOSCircleCopyPeers(SOSCircleRef circle, CFAllocatorRef allocator);
94bool SOSCircleAppendConcurringPeers(SOSCircleRef circle, CFMutableArrayRef appendHere, CFErrorRef *error);
427c49bc 95CFMutableArrayRef SOSCircleCopyConcurringPeers(SOSCircleRef circle, CFErrorRef* error);
d8f41ccd 96SOSPeerInfoRef SOSCircleCopyPeerWithID(SOSCircleRef circle, CFStringRef peerid, CFErrorRef *error);
427c49bc
A
97
98int SOSCircleCountPeers(SOSCircleRef circle);
99int SOSCircleCountActivePeers(SOSCircleRef circle);
100int SOSCircleCountActiveValidPeers(SOSCircleRef circle, SecKeyRef pubkey);
fa7225c8
A
101int SOSCircleCountValidSyncingPeers(SOSCircleRef circle, SecKeyRef pubkey);
102
427c49bc
A
103int SOSCircleCountRetiredPeers(SOSCircleRef circle);
104
105void SOSCircleForEachPeer(SOSCircleRef circle, void (^action)(SOSPeerInfoRef peer));
106void SOSCircleForEachRetiredPeer(SOSCircleRef circle, void (^action)(SOSPeerInfoRef peer));
6b200bc3 107void SOSCircleForEachiCloudIdentityPeer(SOSCircleRef circle, void (^action)(SOSPeerInfoRef peer));
427c49bc
A
108void SOSCircleForEachActivePeer(SOSCircleRef circle, void (^action)(SOSPeerInfoRef peer));
109void SOSCircleForEachActiveValidPeer(SOSCircleRef circle, SecKeyRef user_public_key, void (^action)(SOSPeerInfoRef peer));
5c19dc3a 110void SOSCircleForEachValidPeer(SOSCircleRef circle, SecKeyRef user_public_key, void (^action)(SOSPeerInfoRef peer));
fa7225c8 111void SOSCircleForEachValidSyncingPeer(SOSCircleRef circle, SecKeyRef user_public_key, void (^action)(SOSPeerInfoRef peer));
427c49bc
A
112
113bool SOSCircleHasPeerWithID(SOSCircleRef circle, CFStringRef peerid, CFErrorRef *error);
5c19dc3a 114
427c49bc
A
115bool SOSCircleHasPeer(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
116bool SOSCircleHasActivePeerWithID(SOSCircleRef circle, CFStringRef peerid, CFErrorRef *error);
117bool SOSCircleHasActivePeer(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
d8f41ccd
A
118bool SOSCircleHasActiveValidPeerWithID(SOSCircleRef circle, CFStringRef peerid, SecKeyRef user_public_key, CFErrorRef *error);
119bool SOSCircleHasActiveValidPeer(SOSCircleRef circle, SOSPeerInfoRef peerInfo, SecKeyRef user_public_key, CFErrorRef *error);
6b200bc3 120bool SOSCircleHasValidSyncingPeer(SOSCircleRef circle, SOSPeerInfoRef peerInfo, SecKeyRef user_public_key, CFErrorRef *error);
427c49bc
A
121
122bool SOSCircleResetToOffering(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef requestor, CFErrorRef *error);
123bool SOSCircleResetToEmpty(SOSCircleRef circle, CFErrorRef *error);
fa7225c8 124bool SOSCircleResetToEmptyWithSameGeneration(SOSCircleRef circle, CFErrorRef *error);
427c49bc 125bool SOSCircleRequestAdmission(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef requestor, CFErrorRef *error);
949d2ff0 126bool SOSCircleRequestReadmission(SOSCircleRef circle, SecKeyRef user_pubkey, SOSPeerInfoRef requestor, CFErrorRef *error);
427c49bc
A
127
128bool SOSCircleAcceptRequest(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef device_approver, SOSPeerInfoRef peerInfo, CFErrorRef *error);
129bool SOSCircleRejectRequest(SOSCircleRef circle, SOSFullPeerInfoRef device_approver, SOSPeerInfoRef peerInfo, CFErrorRef *error);
130bool SOSCircleWithdrawRequest(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
131bool SOSCircleRemoveRejectedPeer(SOSCircleRef circle, SOSPeerInfoRef peerInfo, CFErrorRef *error);
132bool SOSCirclePeerSigUpdate(SOSCircleRef circle, SecKeyRef userPrivKey, SOSFullPeerInfoRef fpi,
133 CFErrorRef *error);
5c19dc3a 134
427c49bc
A
135//
136// Update a peer's meta information.
137// No resigning of the circle is done, only updates to their own self signed description.
138//
139bool SOSCircleUpdatePeerInfo(SOSCircleRef circle, SOSPeerInfoRef replacement_peer_info);
6b200bc3 140bool SOSCircleRemovePeersByIDUnsigned(SOSCircleRef circle, CFSetRef peersToRemove);
427c49bc
A
141
142bool SOSCircleRemovePeer(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef device_approver, SOSPeerInfoRef peerInfo, CFErrorRef *error);
e0e0d90e 143bool SOSCircleRemovePeers(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef device_approver, CFSetRef peerInfo, CFErrorRef *error);
6b200bc3 144bool SOSCircleRemovePeersByID(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef device_approver, CFSetRef peerIDs, CFErrorRef *error);
d8f41ccd 145bool SOSCircleRemoveRetired(SOSCircleRef circle, CFErrorRef *error);
427c49bc
A
146
147bool SOSCircleAcceptRequests(SOSCircleRef circle, SecKeyRef user_privkey, SOSFullPeerInfoRef device_approver, CFErrorRef *error);
148
427c49bc
A
149// Stuff above this line is really SOSCircleInfo below the line is the active SOSCircle functionality
150
5c19dc3a 151SOSFullPeerInfoRef SOSCircleCopyiCloudFullPeerInfoRef(SOSCircleRef circle, CFErrorRef *error);
427c49bc
A
152
153bool SOSCircleConcordanceSign(SOSCircleRef circle, SOSFullPeerInfoRef peerinfo, CFErrorRef *error);
154
427c49bc
A
155bool SOSCircleSharedTrustedPeers(SOSCircleRef current, SOSCircleRef proposed, SOSPeerInfoRef me);
156
fa7225c8
A
157bool SOSCircleIsOlderGeneration(SOSCircleRef current, SOSCircleRef proposed);
158
427c49bc
A
159SOSConcordanceStatus SOSCircleConcordanceTrust(SOSCircleRef known_circle, SOSCircleRef proposed_circle,
160 SecKeyRef known_pubkey, SecKeyRef user_pubkey,
161 SOSPeerInfoRef exclude, CFErrorRef *error);
fa7225c8
A
162
163CFDataRef SOSCircleCopyNextGenSignatureWithPeerAdded(SOSCircleRef circle, SOSPeerInfoRef peer, SecKeyRef privKey, CFErrorRef *error);
164bool SOSCirclePreGenerationSign(SOSCircleRef circle, SecKeyRef userPubKey, CFErrorRef *error);
165
427c49bc
A
166//
167// Testing routines:
168//
169
170CFDataRef SOSCircleCreateIncompatibleCircleDER(CFErrorRef* error);
5c19dc3a 171void debugDumpCircle(CFStringRef message, SOSCircleRef circle);
fa7225c8
A
172void SOSCircleLogState(char *category, SOSCircleRef circle, SecKeyRef pubKey, CFStringRef myPID);
173
174bool SOSCircleAcceptPeerFromHSA2(SOSCircleRef circle, SecKeyRef userKey, SOSGenCountRef gencount, SecKeyRef pPubKey, CFDataRef signature, SOSFullPeerInfoRef fpi, CFErrorRef *error);
427c49bc
A
175
176__END_DECLS
177
178#endif /* !_SOSCIRCLE_H_ */