2 * Copyright (c) 2012, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
21 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
22 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
23 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
24 * COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
25 * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
26 * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
27 * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
29 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
30 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
31 * OF THE POSSIBILITY OF SUCH DAMAGE.
38 #include <arpa/inet.h>
39 #include <openssl/dh.h>
41 #include <trust_router/tr_name.h>
42 #include <trust_router/tr_versioning.h>
43 #include <trust_router/tr_constraint.h>
47 #define TID_PORT 12309
54 typedef struct tid_srvr_blk {
55 struct tid_srvr_blk *next;
56 struct in_addr aaa_server_addr;
58 DH *aaa_server_dh; /* AAA server's public dh information */
61 typedef struct tid_resp {
67 TR_CONSTRAINT_SET *cons;
69 TID_SRVR_BLK *servers; /* Linked list of servers */
70 /* TBD -- Trust Path Used */
73 typedef struct tidc_instance TIDC_INSTANCE;
74 typedef struct tids_instance TIDS_INSTANCE;
75 typedef struct tid_req TID_REQ;
77 typedef void (TIDC_RESP_FUNC)(TIDC_INSTANCE *, TID_REQ *, TID_RESP *, void *);
80 struct tid_req *next_req;
88 TR_CONSTRAINT_SET *cons;
90 DH *tidc_dh; /* Client's public dh information */
91 TIDC_RESP_FUNC *resp_func;
95 struct tidc_instance {
97 // TBD -- Do we still need a separate private key */
100 DH *client_dh; /* Client's DH struct with priv and pub keys */
103 typedef int (TIDS_REQ_FUNC)(TIDS_INSTANCE *, TID_REQ *, TID_RESP **, void *);
104 typedef int (tids_auth_func)(gss_name_t client_name, TR_NAME *display_name, void *cookie);
107 struct tids_instance {
111 const char *hostname;
112 TIDS_REQ_FUNC *req_handler;
113 tids_auth_func *auth_handler;
117 /* Utility funciton for TID_REQ structures, in tid/tid_req.c */
118 TR_EXPORT TID_REQ *tid_req_get_next_req(TID_REQ *req);
119 void tid_req_set_next_req(TID_REQ *req, TID_REQ *next_req);
120 TR_EXPORT int tid_req_get_resp_sent(TID_REQ *req);
121 void tid_req_set_resp_sent(TID_REQ *req, int resp_sent);
122 TR_EXPORT int tid_req_get_conn(TID_REQ *req);
123 void tid_req_set_conn(TID_REQ *req, int conn);
124 TR_EXPORT gss_ctx_id_t tid_req_get_gssctx(TID_REQ *req);
125 void tid_req_set_gssctx(TID_REQ *req, gss_ctx_id_t gssctx);
126 TR_EXPORT int tid_req_get_resp_rcvd(TID_REQ *req);
127 void tid_req_set_resp_rcvd(TID_REQ *req, int resp_rcvd);
128 TR_EXPORT TR_NAME *tid_req_get_rp_realm(TID_REQ *req);
129 void tid_req_set_rp_realm(TID_REQ *req, TR_NAME *rp_realm);
130 TR_EXPORT TR_NAME *tid_req_get_realm(TID_REQ *req);
131 void tid_req_set_realm(TID_REQ *req, TR_NAME *realm);
132 TR_EXPORT TR_NAME *tid_req_get_comm(TID_REQ *req);
133 void tid_req_set_comm(TID_REQ *req, TR_NAME *comm);
134 TR_EXPORT TR_NAME *tid_req_get_orig_coi(TID_REQ *req);
135 void tid_req_set_rp_orig_coi(TID_REQ *req, TR_NAME *orig_coi);
136 TR_EXPORT TIDC_RESP_FUNC *tid_req_get_resp_func(TID_REQ *req);
137 void tid_req_set_resp_func(TID_REQ *req, TIDC_RESP_FUNC *resp_func);
138 TR_EXPORT void *tid_req_get_cookie(TID_REQ *req);
139 void tid_req_set_cookie(TID_REQ *req, void *cookie);
140 TR_EXPORT TID_REQ *tid_dup_req (TID_REQ *orig_req);
142 /* Utility functions for TID_RESP structure, in tid/tid_resp.c */
143 TR_EXPORT TID_RC tid_resp_get_result(TID_RESP *resp);
144 void tid_resp_set_result(TID_RESP *resp, TID_RC result);
145 TR_EXPORT TR_NAME *tid_resp_get_err_msg(TID_RESP *resp);
146 void tid_resp_set_err_msg(TID_RESP *resp, TR_NAME *err_msg);
147 TR_EXPORT TR_NAME *tid_resp_get_rp_realm(TID_RESP *resp);
148 void tid_resp_set_rp_realm(TID_RESP *resp, TR_NAME *rp_realm);
149 TR_EXPORT TR_NAME *tid_resp_get_realm(TID_RESP *resp);
150 void tid_resp_set_realm(TID_RESP *resp, TR_NAME *realm);
151 TR_EXPORT TR_NAME *tid_resp_get_comm(TID_RESP *resp);
152 void tid_resp_set_comm(TID_RESP *resp, TR_NAME *comm);
153 TR_EXPORT TR_NAME *tid_resp_get_orig_coi(TID_RESP *resp);
154 void tid_resp_set_orig_coi(TID_RESP *resp, TR_NAME *orig_coi);
155 TR_EXPORT TID_SRVR_BLK *tid_resp_get_servers(TID_RESP *resp);
156 void tid_resp_set_servers(TID_RESP *resp, TID_SRVR_BLK *servers);
157 // TBD -- add function to add/remove items from linked list of servers?
159 /* TID Client functions, in tid/tidc.c */
160 TR_EXPORT TIDC_INSTANCE *tidc_create (void);
161 TR_EXPORT int tidc_open_connection (TIDC_INSTANCE *tidc, char *server, unsigned int port, gss_ctx_id_t *gssctx);
162 TR_EXPORT int tidc_send_request (TIDC_INSTANCE *tidc, int conn, gss_ctx_id_t gssctx, char *rp_realm, char *realm, char *coi, TIDC_RESP_FUNC *resp_handler, void *cookie);
163 TR_EXPORT int tidc_fwd_request (TIDC_INSTANCE *tidc, TID_REQ *req, TIDC_RESP_FUNC *resp_handler, void *cookie);
164 TR_EXPORT void tidc_destroy (TIDC_INSTANCE *tidc);
166 /* TID Server functions, in tid/tids.c */
167 TR_EXPORT TIDS_INSTANCE *tids_create (void);
168 TR_EXPORT int tids_start (TIDS_INSTANCE *tids, TIDS_REQ_FUNC *req_handler,
169 tids_auth_func *auth_handler, const char *hostname,
170 unsigned int port, void *cookie);
171 TR_EXPORT int tids_send_response (TIDS_INSTANCE *tids, TID_REQ *req, TID_RESP *resp);
172 TR_EXPORT int tids_send_err_response (TIDS_INSTANCE *tids, TID_REQ *req, const char *err_msg);
173 TR_EXPORT void tids_destroy (TIDS_INSTANCE *tids);