1 /* $KAME: key.h,v 1.11 2000/03/25 07:24:12 sumikawa Exp $ */
4 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
7 * Redistribution and use in source and binary forms, with or without
8 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
15 * 3. Neither the name of the project nor the names of its contributors
16 * may be used to endorse or promote products derived from this software
17 * without specific prior written permission.
19 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
20 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
23 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
32 #ifndef _NETKEY_KEY_H_
33 #define _NETKEY_KEY_H_
34 #include <sys/appleapiopts.h>
36 #ifdef BSD_KERNEL_PRIVATE
38 #define KEY_SADB_UNLOCKED 0
39 #define KEY_SADB_LOCKED 1
41 extern struct key_cb key_cb
;
44 struct secpolicyindex
;
56 extern struct secpolicy
*key_allocsp(struct secpolicyindex
*, u_int
);
57 extern struct secasvar
*key_allocsa_policy(struct secasindex
*);
58 extern struct secpolicy
*key_gettunnel(struct sockaddr
*,
59 struct sockaddr
*, struct sockaddr
*, struct sockaddr
*);
60 extern struct secasvar
*key_alloc_outbound_sav_for_interface(ifnet_t interface
, int family
,
62 struct sockaddr
*dst
);
63 extern int key_checkrequest(struct ipsecrequest
*isr
, struct secasindex
*,
64 struct secasvar
**sav
);
65 extern struct secasvar
*key_allocsa(u_int
, caddr_t
, caddr_t
,
68 key_allocsa_extended(u_int family
, caddr_t src
, caddr_t dst
,
69 u_int proto
, u_int32_t spi
, ifnet_t interface
);
70 extern bool key_checksa_present(u_int family
, caddr_t src
, caddr_t dst
, u_int16_t src_port
, u_int16_t dst_port
);
71 extern u_int16_t
key_natt_get_translated_port(struct secasvar
*);
72 extern void key_freesp(struct secpolicy
*, int);
73 extern void key_freesav(struct secasvar
*, int);
74 extern struct secpolicy
*key_newsp(void);
75 extern struct secpolicy
*key_msg2sp(struct sadb_x_policy
*, size_t, int *);
76 extern struct mbuf
*key_sp2msg(struct secpolicy
*);
77 extern int key_ismyaddr(struct sockaddr
*);
78 extern int key_spdacquire(struct secpolicy
*);
79 extern void key_timehandler(void);
80 extern u_int32_t
key_random(void);
81 extern void key_randomfill(void *, size_t);
82 extern void key_freereg(struct socket
*);
83 extern int key_parse(struct mbuf
*, struct socket
*);
84 extern int key_checktunnelsanity(struct secasvar
*, u_int
, caddr_t
, caddr_t
);
85 extern void key_sa_recordxfer(struct secasvar
*, struct mbuf
*);
86 extern void key_sa_routechange(struct sockaddr
*);
87 extern void key_sa_chgstate(struct secasvar
*, u_int8_t
);
88 extern void key_sa_stir_iv(struct secasvar
*);
89 extern void key_delsah(struct secashead
*sah
);
90 extern struct secashead
*key_newsah2(struct secasindex
*saidx
, u_int8_t dir
);
91 extern u_int32_t
key_getspi2(struct sockaddr
*src
,
96 struct sadb_spirange
*spirange
);
97 extern struct secasvar
* key_newsav2(struct secashead
*sah
,
103 struct sadb_key
*key_auth
,
104 u_int16_t key_auth_len
,
105 struct sadb_key
*key_enc
,
106 u_int16_t key_enc_len
,
111 struct sadb_lifetime
*lifetime_hard
,
112 struct sadb_lifetime
*lifetime_soft
);
113 extern void key_delsav(struct secasvar
*sav
);
114 extern struct secpolicy
*key_getspbyid(u_int32_t
);
115 extern void key_delsp_for_ipsec_if(ifnet_t ipsec_if
);
118 struct ifnet_keepalive_offload_frame
;
119 extern u_int32_t
key_fill_offload_frames_for_savs(struct ifnet
*,
120 struct ifnet_keepalive_offload_frame
*frames_array
, u_int32_t
, size_t);
124 #endif /* BSD_KERNEL_PRIVATE */
125 #endif /* _NETKEY_KEY_H_ */