2 * Copyright (c) 2010, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
21 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33 #include "gssapiP_eap.h"
36 gss_verify_mic(OM_uint32 *minor,
38 gss_buffer_t message_buffer,
39 gss_buffer_t message_token,
42 gss_iov_buffer_desc iov[3];
45 if (message_token->length < 16) {
46 *minor = KRB5_BAD_MSIZE;
50 iov[0].type = GSS_IOV_BUFFER_TYPE_DATA;
51 iov[0].buffer = *message_buffer;
53 iov[1].type = GSS_IOV_BUFFER_TYPE_HEADER;
54 iov[1].buffer.length = 16;
55 iov[1].buffer.value = message_token->value;
57 iov[2].type = GSS_IOV_BUFFER_TYPE_TRAILER;
58 iov[2].buffer.length = message_token->length - 16;
59 iov[2].buffer.value = (unsigned char *)message_token->value + 16;
61 return gssEapUnwrapOrVerifyMIC(minor, ctx, &conf_state, qop_state,
62 iov, 3, TOK_TYPE_MIC);