2 * Copyright (c) 2009,2012-2014 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
25 @header SecItemInternal
26 SecItemInternal defines SPI functions dealing with persistent refs
29 #ifndef _SECURITY_SECITEMINTERNAL_H_
30 #define _SECURITY_SECITEMINTERNAL_H_
32 #include <CoreFoundation/CFData.h>
34 #include <ipc/securityd_client.h>
35 #include <ctkclient.h>
39 #define kSecServerKeychainChangedNotification "com.apple.security.keychainchanged"
40 #define kSecServerCertificateTrustNotification "com.apple.security.certificatetrust"
42 /* label when certificate data is joined with key data */
43 static const CFStringRef kSecAttrIdentityCertificateData
= CFSTR("certdata");
44 static const CFStringRef kSecAttrIdentityCertificateTokenID
= CFSTR("certtkid");
46 CF_RETURNS_RETAINED CFDataRef
_SecItemMakePersistentRef(CFTypeRef iclass
, sqlite_int64 rowid
);
48 bool _SecItemParsePersistentRef(CFDataRef persistent_ref
, CFStringRef
*return_class
,
49 sqlite_int64
*return_rowid
);
51 OSStatus
_SecRestoreKeychain(const char *path
);
53 OSStatus
SecOSStatusWith(bool (^perform
)(CFErrorRef
*error
));
55 bool cftype_client_to_bool_cftype_error_request(enum SecXPCOperation op
, CFTypeRef attributes
, __unused SecurityClient
*client
, CFTypeRef
*result
, CFErrorRef
*error
);
57 /* Structure representing copy-on-write dictionary. Typical use is:
58 int bar(CFDictionaryRef input);
59 int foo(CFDictionaryRef input) {
60 SecCFDictionaryCOW in = { input };
62 CFDictionarySetValue(SecCFDictionaryCOWGetMutable(&in), key, value);
65 CFReleaseSafe(in.mutable_dictionary);
69 // Real dictionary, not owned by this structure, should be accessed directly for read-only access.
70 CFDictionaryRef dictionary
;
72 // On-demand created (and possibly modified), owned writable copy of dictionary.
73 CFMutableDictionaryRef mutable_dictionary
;
76 CFMutableDictionaryRef
SecCFDictionaryCOWGetMutable(SecCFDictionaryCOW
*cow_dictionary
);
80 kSecItemAuthResultError
,
81 kSecItemAuthResultNeedAuth
84 bool SecItemAuthDo(SecCFDictionaryCOW
*auth_params
, CFErrorRef
*error
, SecItemAuthResult (^perform
)(CFDictionaryRef auth_params
, CFArrayRef
*ac_pairs
, CFErrorRef
*error
));
86 void SecItemAuthCopyParams(SecCFDictionaryCOW
*auth_params
, SecCFDictionaryCOW
*query
);
88 TKTokenRef
SecTokenCreate(CFStringRef token_id
, CFDictionaryRef auth_params
, CFErrorRef
*error
);
90 CFDataRef
_SecTokenItemCopyValueData(CFDataRef db_value
, CFErrorRef
*error
);
92 CFDataRef
SecItemAttributesCopyPreparedAuthContext(CFTypeRef la_context
, CFErrorRef
*error
);
96 #endif /* !_SECURITY_SECITEMINTERNAL_H_ */