2 * Copyright (c) 2011, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
21 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 * RADIUS attribute provider.
37 #ifndef _UTIL_RADIUS_H_
38 #define _UTIL_RADIUS_H_ 1
42 #ifdef GSSEAP_ENABLE_ACCEPTOR
44 struct gss_eap_radius_attr_provider : gss_eap_attr_provider {
46 gss_eap_radius_attr_provider(void);
47 ~gss_eap_radius_attr_provider(void);
49 bool initWithExistingContext(const gss_eap_attr_ctx *source,
50 const gss_eap_attr_provider *ctx);
51 bool initWithGssContext(const gss_eap_attr_ctx *source,
52 const gss_cred_id_t cred,
53 const gss_ctx_id_t ctx);
55 bool getAttributeTypes(gss_eap_attr_enumeration_cb, void *data) const;
56 bool setAttribute(int complete,
57 const gss_buffer_t attr,
58 const gss_buffer_t value);
59 bool deleteAttribute(const gss_buffer_t attr);
60 bool getAttribute(const gss_buffer_t attr,
64 gss_buffer_t display_value,
66 gss_any_t mapToAny(int authenticated,
67 gss_buffer_t type_id) const;
68 void releaseAnyNameMapping(gss_buffer_t type_id,
69 gss_any_t input) const;
71 const char *prefix(void) const;
72 const char *name(void) const;
73 bool initWithJsonObject(const gss_eap_attr_ctx *manager,
75 JSONObject jsonRepresentation(void) const;
77 bool getAttribute(uint32_t attribute,
81 gss_buffer_t display_value,
83 bool getAttribute(uint16_t attribute,
88 gss_buffer_t display_value,
90 bool setAttribute(int complete,
92 const gss_buffer_t value);
93 bool deleteAttribute(uint32_t attribute);
95 bool getFragmentedAttribute(uint16_t attribute,
99 gss_buffer_t value) const;
100 bool getFragmentedAttribute(uint32_t attrid,
103 gss_buffer_t value) const;
105 bool authenticated(void) const { return m_authenticated; }
107 time_t getExpiryTime(void) const;
109 static bool init(void);
110 static void finalize(void);
112 static gss_eap_attr_provider *createAttrContext(void);
115 const VALUE_PAIR *getAvps(void) const {
120 bool m_authenticated;
123 #endif /* GSSEAP_ENABLE_ACCEPTOR */
129 #ifdef GSSEAP_ENABLE_ACCEPTOR
132 gssEapRadiusAddAvp(OM_uint32 *minor,
136 const gss_buffer_t buffer);
139 gssEapRadiusGetAvp(OM_uint32 *minor,
147 gssEapRadiusGetRawAvp(OM_uint32 *minor,
153 gssEapRadiusFreeAvps(OM_uint32 *minor,
156 OM_uint32 gssEapRadiusAttrProviderInit(OM_uint32 *minor);
157 OM_uint32 gssEapRadiusAttrProviderFinalize(OM_uint32 *minor);
160 gssEapRadiusMapError(OM_uint32 *minor,
161 struct rs_error *err);
164 gssEapCreateRadiusContext(OM_uint32 *minor,
166 struct rs_context **pRadContext);
168 #endif /* GSSEAP_ENABLE_ACCEPTOR */
170 /* initiator utilities that require only libeap, and not freeradius */
174 gssEapRadiusAddAttr(OM_uint32 *minor,
180 /* This really needs to be a function call on Windows */
181 #define RS_CONFIG_FILE SYSCONFDIR "/radsec.conf"
183 #define VENDORPEC_MS 311 /* RFC 2548 */
185 #define PW_MS_MPPE_SEND_KEY 16
186 #define PW_MS_MPPE_RECV_KEY 17
188 #define VENDORPEC_UKERNA 25622
190 #define PW_GSS_ACCEPTOR_SERVICE_NAME 128
191 #define PW_GSS_ACCEPTOR_HOST_NAME 129
192 #define PW_GSS_ACCEPTOR_SERVICE_SPECIFIC 130
193 #define PW_GSS_ACCEPTOR_REALM_NAME 131
194 #define PW_SAML_AAA_ASSERTION 132
195 #define PW_MS_WINDOWS_AUTH_DATA 133
201 #endif /* _UTIL_RADIUS_H_ */