2 * Copyright (c) 2013-2014 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
25 @header SecDbKeychainItem.h - The thing that does the stuff with the gibli.
28 #ifndef _SECURITYD_SECKEYCHAINITEM_H_
29 #define _SECURITYD_SECKEYCHAINITEM_H_
31 #include "keychain/securityd/SecKeybagSupport.h"
32 #include "keychain/securityd/SecDbItem.h"
33 #include "keychain/securityd/SecDbQuery.h"
35 CF_ASSUME_NONNULL_BEGIN
39 bool ks_encrypt_data(keybag_handle_t keybag
, SecAccessControlRef _Nullable access_control
, CFDataRef _Nullable acm_context
,
40 CFDictionaryRef secretData
, CFDictionaryRef attributes
, CFDictionaryRef authenticated_attributes
, CFDataRef _Nullable
*_Nonnull pBlob
, bool useDefaultIV
, CFErrorRef _Nullable
*_Nullable error
);
41 bool ks_encrypt_data_with_backupuuid(keybag_handle_t keybag
, SecAccessControlRef _Nullable access_control
, CFDataRef _Nullable acm_context
,
42 CFDictionaryRef secretData
, CFDictionaryRef attributes
, CFDictionaryRef authenticated_attributes
, CFDataRef _Nullable
*_Nonnull pBlob
, CFDataRef _Nullable
*_Nullable bkUUID
, bool useDefaultIV
, CFErrorRef _Nullable
*_Nullable error
);
43 bool ks_encrypt_data_legacy(keybag_handle_t keybag
, SecAccessControlRef _Nullable access_control
, CFDataRef _Nullable acm_context
,
44 CFDictionaryRef attributes
, CFDictionaryRef authenticated_attributes
, CFDataRef _Nullable
*_Nonnull pBlob
, bool useDefaultIV
, CFErrorRef _Nullable
*_Nullable error
); // used for backup
45 bool ks_decrypt_data(keybag_handle_t keybag
, CFTypeRef cryptoOp
, SecAccessControlRef _Nullable
*_Nullable paccess_control
, CFDataRef acm_context
,
46 CFDataRef blob
, const SecDbClass
*db_class
, CFArrayRef caller_access_groups
,
47 CFMutableDictionaryRef _Nullable
*_Nullable attributes_p
, uint32_t *_Nullable version_p
, bool decryptSecretData
, keyclass_t
*_Nullable outKeyclass
, CFErrorRef _Nullable
*_Nullable error
);
48 bool s3dl_item_from_data(CFDataRef edata
, Query
*q
, CFArrayRef accessGroups
,
49 CFMutableDictionaryRef _Nonnull
*_Nonnull item
, SecAccessControlRef _Nullable
*_Nullable access_control
, keyclass_t
*_Nullable keyclass
, CFErrorRef _Nullable
*_Nullable error
);
50 SecDbItemRef _Nullable
SecDbItemCreateWithBackupDictionary(const SecDbClass
*dbclass
, CFDictionaryRef dict
, keybag_handle_t src_keybag
, keybag_handle_t dst_keybag
, CFErrorRef _Nullable
*_Nullable error
);
51 bool SecDbItemExtractRowIdFromBackupDictionary(SecDbItemRef item
, CFDictionaryRef dict
, CFErrorRef _Nullable
*_Nullable error
);
52 bool SecDbItemInferSyncable(SecDbItemRef item
, CFErrorRef _Nullable
*_Nullable error
);
54 CFTypeRef _Nullable
SecDbKeychainItemCopyPrimaryKey(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef _Nullable
*_Nullable error
);
55 CFTypeRef _Nullable
SecDbKeychainItemCopySHA256PrimaryKey(SecDbItemRef item
, CFErrorRef _Nullable
*_Nullable error
);
56 CFTypeRef _Nullable
SecDbKeychainItemCopySHA1(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef _Nullable
*_Nullable error
);
57 CFTypeRef _Nullable
SecDbKeychainItemCopyCurrentDate(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef _Nullable
*_Nullable error
);
58 CFTypeRef _Nullable
SecDbKeychainItemCopyEncryptedData(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef _Nullable
*_Nullable error
);
60 SecAccessControlRef _Nullable
SecDbItemCopyAccessControl(SecDbItemRef item
, CFErrorRef _Nullable
*_Nullable error
);
61 bool SecDbItemSetAccessControl(SecDbItemRef item
, SecAccessControlRef access_control
, CFErrorRef _Nullable
*_Nullable error
);
63 void SecDbResetMetadataKeys(void);
69 #endif /* _SECURITYD_SECKEYCHAINITEM_H_ */