2 * Copyright (c) 2009,2012-2014 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
25 @header SecItemInternal
26 SecItemInternal defines SPI functions dealing with persistent refs
29 #ifndef _SECURITY_SECITEMINTERNAL_H_
30 #define _SECURITY_SECITEMINTERNAL_H_
32 #include <CoreFoundation/CFData.h>
34 #include <ipc/securityd_client.h>
35 #include <ctkclient.h>
39 #define kSecServerKeychainChangedNotification "com.apple.security.keychainchanged"
41 /* label when certificate data is joined with key data */
42 static const CFStringRef kSecAttrIdentityCertificateData
= CFSTR("certdata");
43 static const CFStringRef kSecAttrIdentityCertificateTokenID
= CFSTR("certtkid");
45 CF_RETURNS_RETAINED CFDataRef
_SecItemMakePersistentRef(CFTypeRef
class, sqlite_int64 rowid
);
47 bool _SecItemParsePersistentRef(CFDataRef persistent_ref
, CFStringRef
*return_class
,
48 sqlite_int64
*return_rowid
);
50 OSStatus
_SecRestoreKeychain(const char *path
);
52 OSStatus
SecOSStatusWith(bool (^perform
)(CFErrorRef
*error
));
54 bool cftype_client_to_bool_cftype_error_request(enum SecXPCOperation op
, CFTypeRef attributes
, __unused SecurityClient
*client
, CFTypeRef
*result
, CFErrorRef
*error
);
56 /* Structure representing copy-on-write dictionary. Typical use is:
57 int bar(CFDictionaryRef input);
58 int foo(CFDictionaryRef input) {
59 SecCFDictionaryCOW in = { input };
61 CFDictionarySetValue(SecCFDictionaryCOWGetMutable(&in), key, value);
64 CFReleaseSafe(in.mutable_dictionary);
68 // Real dictionary, not owned by this structure, should be accessed directly for read-only access.
69 CFDictionaryRef dictionary
;
71 // On-demand created (and possibly modified), owned writable copy of dictionary.
72 CFMutableDictionaryRef mutable_dictionary
;
75 CFMutableDictionaryRef
SecCFDictionaryCOWGetMutable(SecCFDictionaryCOW
*cow_dictionary
);
79 kSecItemAuthResultError
,
80 kSecItemAuthResultNeedAuth
83 bool SecItemAuthDo(SecCFDictionaryCOW
*auth_params
, CFErrorRef
*error
, SecItemAuthResult (^perform
)(CFDictionaryRef auth_params
, CFArrayRef
*ac_pairs
, CFErrorRef
*error
));
85 void SecItemAuthCopyParams(SecCFDictionaryCOW
*auth_params
, SecCFDictionaryCOW
*query
);
87 TKTokenRef
SecTokenCreate(CFStringRef token_id
, CFDictionaryRef auth_params
, CFErrorRef
*error
);
89 CFDataRef
_SecTokenItemCopyValueData(CFDataRef db_value
, CFErrorRef
*error
);
93 #endif /* !_SECURITY_SECITEMINTERNAL_H_ */