2 * Copyright (c) 2013-2014 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
25 @header SecDbKeychainItem.h - The thing that does the stuff with the gibli.
28 #ifndef _SECURITYD_SECKEYCHAINITEM_H_
29 #define _SECURITYD_SECKEYCHAINITEM_H_
31 #include <securityd/SecKeybagSupport.h>
32 #include <securityd/SecDbItem.h>
33 #include <securityd/SecDbQuery.h>
37 bool ks_encrypt_data(keybag_handle_t keybag
, SecAccessControlRef access_control
, CFDataRef acm_context
,
38 CFDictionaryRef secretData
, CFDictionaryRef attributes
, CFDictionaryRef authenticated_attributes
, CFDataRef
*pBlob
, bool useDefaultIV
, CFErrorRef
*error
);
39 bool ks_encrypt_data_legacy(keybag_handle_t keybag
, SecAccessControlRef access_control
, CFDataRef acm_context
,
40 CFDictionaryRef attributes
, CFDictionaryRef authenticated_attributes
, CFDataRef
*pBlob
, bool useDefaultIV
, CFErrorRef
*error
); // used for backup
41 bool ks_decrypt_data(keybag_handle_t keybag
, CFTypeRef cryptoOp
, SecAccessControlRef
*paccess_control
, CFDataRef acm_context
,
42 CFDataRef blob
, const SecDbClass
*db_class
, CFArrayRef caller_access_groups
,
43 CFMutableDictionaryRef
*attributes_p
, uint32_t *version_p
, bool decryptSecretData
, keyclass_t
* outKeyclass
, CFErrorRef
*error
);
44 bool s3dl_item_from_data(CFDataRef edata
, Query
*q
, CFArrayRef accessGroups
,
45 CFMutableDictionaryRef
*item
, SecAccessControlRef
*access_control
, keyclass_t
* keyclass
, CFErrorRef
*error
);
46 SecDbItemRef
SecDbItemCreateWithBackupDictionary(CFAllocatorRef allocator
, const SecDbClass
*dbclass
, CFDictionaryRef dict
, keybag_handle_t src_keybag
, keybag_handle_t dst_keybag
, CFErrorRef
*error
);
47 bool SecDbItemExtractRowIdFromBackupDictionary(SecDbItemRef item
, CFDictionaryRef dict
, CFErrorRef
*error
);
48 bool SecDbItemInferSyncable(SecDbItemRef item
, CFErrorRef
*error
);
50 CFTypeRef
SecDbKeychainItemCopyPrimaryKey(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef
*error
);
51 CFTypeRef
SecDbKeychainItemCopySHA256PrimaryKey(SecDbItemRef item
, CFErrorRef
*error
);
52 CFTypeRef
SecDbKeychainItemCopySHA1(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef
*error
);
53 CFTypeRef
SecDbKeychainItemCopyCurrentDate(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef
*error
);
54 CFTypeRef
SecDbKeychainItemCopyEncryptedData(SecDbItemRef item
, const SecDbAttr
*attr
, CFErrorRef
*error
);
56 SecAccessControlRef
SecDbItemCopyAccessControl(SecDbItemRef item
, CFErrorRef
*error
);
57 bool SecDbItemSetAccessControl(SecDbItemRef item
, SecAccessControlRef access_control
, CFErrorRef
*error
);
59 void SecDbResetMetadataKeys(void);
63 #endif /* _SECURITYD_SECKEYCHAINITEM_H_ */