2 * Copyright (c) 2012, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
21 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
22 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
23 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
24 * COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
25 * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
26 * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
27 * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
29 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
30 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
31 * OF THE POSSIBILITY OF SUCH DAMAGE.
48 #include <tr_rp_client.h>
50 #include <trp_ptable.h>
51 #include <trp_internal.h>
53 #define TR_DEFAULT_MAX_TREE_DEPTH 12
54 #define TR_DEFAULT_TRPS_PORT 12308
55 #define TR_DEFAULT_TIDS_PORT 12309
56 #define TR_DEFAULT_LOG_THRESHOLD LOG_INFO
57 #define TR_DEFAULT_CONSOLE_THRESHOLD LOG_NOTICE
58 #define TR_DEFAULT_APC_EXPIRATION_INTERVAL 43200
59 #define TR_DEFAULT_TRP_CONNECT_INTERVAL 10
60 #define TR_DEFAULT_TRP_UPDATE_INTERVAL 30
61 #define TR_DEFAULT_TRP_SWEEP_INTERVAL 30
62 #define TR_DEFAULT_TID_REQ_TIMEOUT 5
63 #define TR_DEFAULT_TID_RESP_NUMER 2
64 #define TR_DEFAULT_TID_RESP_DENOM 3
66 #define TR_CFG_INVALID_SERIAL -1
68 typedef enum tr_cfg_rc {
69 TR_CFG_SUCCESS = 0, /* No error */
70 TR_CFG_ERROR, /* General processing error */
71 TR_CFG_BAD_PARAMS, /* Bad parameters passed to tr_config function */
72 TR_CFG_NOPARSE, /* Parsing error */
73 TR_CFG_NOMEM, /* Memory allocation error */
76 typedef struct tr_cfg_internal {
77 unsigned int max_tree_depth;
78 unsigned int tids_port;
79 unsigned int trps_port;
80 unsigned int monitoring_port;
83 int console_threshold;
84 unsigned int cfg_poll_interval;
85 unsigned int cfg_settling_time;
86 unsigned int trp_sweep_interval;
87 unsigned int trp_update_interval;
88 unsigned int trp_connect_interval;
89 unsigned int tid_req_timeout;
90 unsigned int tid_resp_numer; /* numerator of fraction of AAA servers to wait for in unshared mode */
91 unsigned int tid_resp_denom; /* denominator of fraction of AAA servers to wait for in unshared mode */
94 /* record of files loaded for this configuration */
95 typedef struct tr_cfg_file {
100 typedef struct tr_cfg {
101 TR_CFG_INTERNAL *internal; /* internal trust router config */
102 TR_RP_CLIENT *rp_clients; /* locally associated RP Clients */
103 TRP_PTABLE *peers; /* TRP peer table */
104 TR_COMM_TABLE *ctable; /* communities/realms */
105 TR_AAA_SERVER *default_servers; /* default server list */
107 GArray *files; /* files loaded to make this configuration */
110 typedef struct tr_cfg_mgr {
115 int tr_find_config_files(const char *config_dir, struct dirent ***cfg_files);
116 void tr_free_config_file_list(int n, struct dirent ***cfg_files);
117 TR_CFG_RC tr_parse_config(TR_CFG_MGR *cfg_mgr, unsigned int n_files, char **files_with_paths);
118 TR_CFG_RC tr_apply_new_config (TR_CFG_MGR *cfg_mgr);
119 TR_CFG_RC tr_cfg_validate (TR_CFG *trc);
120 TR_CFG *tr_cfg_new(TALLOC_CTX *mem_ctx);
121 TR_CFG_MGR *tr_cfg_mgr_new(TALLOC_CTX *mem_ctx);
122 void tr_cfg_free(TR_CFG *cfg);
123 void tr_cfg_mgr_free(TR_CFG_MGR *cfg);
125 void tr_print_config(TR_CFG *cfg);
126 void tr_print_comms(TR_COMM_TABLE *ctab);
127 void tr_print_comm_idps(TR_COMM_TABLE *ctab, TR_COMM *comm);
128 void tr_print_comm_rps(TR_COMM_TABLE *ctab, TR_COMM *comm);
130 /* tr_config_internal.c */
131 TR_CFG_RC tr_cfg_parse_internal(TR_CFG *trc, json_t *jint);
133 /* tr_config_comms.c */
134 TR_IDP_REALM *tr_cfg_find_idp (TR_CFG *tr_cfg, TR_NAME *idp_id, TR_CFG_RC *rc);
135 TR_RP_CLIENT *tr_cfg_find_rp (TR_CFG *tr_cfg, TR_NAME *rp_gss, TR_CFG_RC *rc);
136 TR_CFG_RC tr_cfg_parse_comms (TR_CFG *trc, json_t *jcfg);
137 TR_CFG_RC tr_cfg_parse_default_servers (TR_CFG *trc, json_t *jcfg);
139 /* tr_config_filters.c */
140 TR_FILTER_SET *tr_cfg_parse_filters(TALLOC_CTX *mem_ctx, json_t *jfilts, TR_CFG_RC *rc);
142 /* tr_config_orgs.c */
143 TR_CFG_RC tr_cfg_parse_local_orgs(TR_CFG *trc, json_t *jcfg);
144 TR_CFG_RC tr_cfg_parse_peer_orgs(TR_CFG *trc, json_t *jcfg);
146 /* tr_config_realms.c */
147 TR_IDP_REALM *tr_cfg_parse_idp_realms(TALLOC_CTX *mem_ctx, json_t *jrealms, TR_CFG_RC *rc);
148 TR_AAA_SERVER *tr_cfg_parse_one_aaa_server(TALLOC_CTX *mem_ctx, json_t *jaddr, TR_CFG_RC *rc);
149 TR_APC *tr_cfg_parse_apcs(TALLOC_CTX *mem_ctx, json_t *japcs, TR_CFG_RC *rc);
151 /* tr_config_rp_clients.c */
152 TR_RP_CLIENT *tr_cfg_parse_rp_clients(TALLOC_CTX *mem_ctx, json_t *jrealms, TR_CFG_RC *rc);
153 TR_GSS_NAMES *tr_cfg_parse_gss_names(TALLOC_CTX *mem_ctx, json_t *jgss_names, TR_CFG_RC *rc);
155 /* tr_config_encoders.c */
156 json_t *tr_cfg_files_to_json_array(TR_CFG *cfg);