2 * Copyright (c) 2012, 2013, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
21 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
22 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
23 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
24 * COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
25 * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
26 * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
27 * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
29 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
30 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
31 * OF THE POSSIBILITY OF SUCH DAMAGE.
41 #include <trust_router/tr_name.h>
42 #include <trust_router/tr_constraint.h>
43 #include <trust_router/tid.h>
44 #include <trust_router/trp.h>
46 #define TR_MAX_FILTERS 5
47 #define TR_MAX_FILTER_LINES 8
48 #define TR_MAX_FILTER_SPECS 8
49 #define TR_MAX_FILTER_SPEC_MATCHES 8
53 TR_FILTER_ACTION_REJECT = 0,
54 TR_FILTER_ACTION_ACCEPT,
55 TR_FILTER_ACTION_UNKNOWN
59 #define TR_FILTER_MATCH 0
60 #define TR_FILTER_NO_MATCH 1
64 TR_FILTER_TYPE_TID_INBOUND = 0,
65 TR_FILTER_TYPE_TRP_INBOUND,
66 TR_FILTER_TYPE_TRP_OUTBOUND,
67 TR_FILTER_TYPE_UNKNOWN
70 typedef struct tr_fspec {
72 TR_NAME *match[TR_MAX_FILTER_SPEC_MATCHES];
75 typedef struct tr_fline {
76 TR_FILTER_ACTION action;
77 TR_FSPEC *specs[TR_MAX_FILTER_SPECS];
78 TR_CONSTRAINT *realm_cons;
79 TR_CONSTRAINT *domain_cons;
82 typedef struct tr_filter {
84 TR_FLINE *lines[TR_MAX_FILTER_LINES];
87 TR_FILTER *tr_filter_new(TALLOC_CTX *mem_ctx);
89 void tr_filter_free(TR_FILTER *filt);
91 void tr_filter_set_type(TR_FILTER *filt, TR_FILTER_TYPE type);
93 TR_FILTER_TYPE tr_filter_get_type(TR_FILTER *filt);
95 TR_FLINE *tr_fline_new(TALLOC_CTX *mem_ctx);
97 void tr_fline_free(TR_FLINE *fline);
99 TR_FSPEC *tr_fspec_new(TALLOC_CTX *mem_ctx);
101 void tr_fspec_free(TR_FSPEC *fspec);
103 void tr_fspec_add_match(TR_FSPEC *fspec, TR_NAME *match);
105 int tr_fspec_matches(TR_FSPEC *fspec, TR_FILTER_TYPE ftype, void *target);
108 /*In tr_constraint.c and exported, but not really a public symbol; needed by tr_filter.c and by tr_constraint.c*/
109 int TR_EXPORT tr_prefix_wildcard_match(const char *str, const char *wc_str);
111 int tr_filter_apply(void *target, TR_FILTER *filt, TR_CONSTRAINT_SET **constraints, TR_FILTER_ACTION *out_action);
112 int tr_filter_process_rp_permitted(TR_NAME *rp_realm, TR_FILTER *rpp_filter, TR_CONSTRAINT_SET *in_constraints,
113 TR_CONSTRAINT_SET **out_constraints, TR_FILTER_ACTION *out_action);
115 TR_CONSTRAINT_SET *tr_constraint_set_from_fline(TR_FLINE *fline);
117 int tr_filter_validate(TR_FILTER *filt);
118 int tr_filter_validate_spec_field(TR_FILTER_TYPE ftype, TR_FSPEC *fspec);