1*4f1223e8SApple OSS Distributions /* $FreeBSD: src/sys/netinet6/ah.h,v 1.3.2.2 2001/07/03 11:01:49 ume Exp $ */ 2*4f1223e8SApple OSS Distributions /* $KAME: ah.h,v 1.13 2000/10/18 21:28:00 itojun Exp $ */ 3*4f1223e8SApple OSS Distributions 4*4f1223e8SApple OSS Distributions /* 5*4f1223e8SApple OSS Distributions * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 6*4f1223e8SApple OSS Distributions * All rights reserved. 7*4f1223e8SApple OSS Distributions * 8*4f1223e8SApple OSS Distributions * Redistribution and use in source and binary forms, with or without 9*4f1223e8SApple OSS Distributions * modification, are permitted provided that the following conditions 10*4f1223e8SApple OSS Distributions * are met: 11*4f1223e8SApple OSS Distributions * 1. Redistributions of source code must retain the above copyright 12*4f1223e8SApple OSS Distributions * notice, this list of conditions and the following disclaimer. 13*4f1223e8SApple OSS Distributions * 2. Redistributions in binary form must reproduce the above copyright 14*4f1223e8SApple OSS Distributions * notice, this list of conditions and the following disclaimer in the 15*4f1223e8SApple OSS Distributions * documentation and/or other materials provided with the distribution. 16*4f1223e8SApple OSS Distributions * 3. Neither the name of the project nor the names of its contributors 17*4f1223e8SApple OSS Distributions * may be used to endorse or promote products derived from this software 18*4f1223e8SApple OSS Distributions * without specific prior written permission. 19*4f1223e8SApple OSS Distributions * 20*4f1223e8SApple OSS Distributions * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 21*4f1223e8SApple OSS Distributions * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 22*4f1223e8SApple OSS Distributions * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 23*4f1223e8SApple OSS Distributions * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 24*4f1223e8SApple OSS Distributions * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 25*4f1223e8SApple OSS Distributions * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 26*4f1223e8SApple OSS Distributions * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 27*4f1223e8SApple OSS Distributions * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 28*4f1223e8SApple OSS Distributions * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 29*4f1223e8SApple OSS Distributions * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 30*4f1223e8SApple OSS Distributions * SUCH DAMAGE. 31*4f1223e8SApple OSS Distributions */ 32*4f1223e8SApple OSS Distributions 33*4f1223e8SApple OSS Distributions /* 34*4f1223e8SApple OSS Distributions * RFC1826/2402 authentication header. 35*4f1223e8SApple OSS Distributions */ 36*4f1223e8SApple OSS Distributions 37*4f1223e8SApple OSS Distributions #ifndef _NETINET6_AH_H_ 38*4f1223e8SApple OSS Distributions #define _NETINET6_AH_H_ 39*4f1223e8SApple OSS Distributions #include <sys/appleapiopts.h> 40*4f1223e8SApple OSS Distributions 41*4f1223e8SApple OSS Distributions #include <sys/types.h> 42*4f1223e8SApple OSS Distributions 43*4f1223e8SApple OSS Distributions #ifdef BSD_KERNEL_PRIVATE 44*4f1223e8SApple OSS Distributions #include <corecrypto/cchmac.h> 45*4f1223e8SApple OSS Distributions #include <corecrypto/ccsha2.h> 46*4f1223e8SApple OSS Distributions #endif /* BSD_KERNEL_PRIVATE */ 47*4f1223e8SApple OSS Distributions 48*4f1223e8SApple OSS Distributions struct ah { 49*4f1223e8SApple OSS Distributions u_int8_t ah_nxt; /* Next Header */ 50*4f1223e8SApple OSS Distributions u_int8_t ah_len; /* Length of data, in 32bit */ 51*4f1223e8SApple OSS Distributions u_int16_t ah_reserve; /* Reserved for future use */ 52*4f1223e8SApple OSS Distributions u_int32_t ah_spi; /* Security parameter index */ 53*4f1223e8SApple OSS Distributions /* variable size, 32bit bound*/ /* Authentication data */ 54*4f1223e8SApple OSS Distributions }; 55*4f1223e8SApple OSS Distributions 56*4f1223e8SApple OSS Distributions struct newah { 57*4f1223e8SApple OSS Distributions u_int8_t ah_nxt; /* Next Header */ 58*4f1223e8SApple OSS Distributions u_int8_t ah_len; /* Length of data + 1, in 32bit */ 59*4f1223e8SApple OSS Distributions u_int16_t ah_reserve; /* Reserved for future use */ 60*4f1223e8SApple OSS Distributions u_int32_t ah_spi; /* Security parameter index */ 61*4f1223e8SApple OSS Distributions u_int32_t ah_seq; /* Sequence number field */ 62*4f1223e8SApple OSS Distributions /* variable size, 32bit bound*/ /* Authentication data */ 63*4f1223e8SApple OSS Distributions }; 64*4f1223e8SApple OSS Distributions 65*4f1223e8SApple OSS Distributions #ifdef BSD_KERNEL_PRIVATE 66*4f1223e8SApple OSS Distributions struct secasvar; 67*4f1223e8SApple OSS Distributions 68*4f1223e8SApple OSS Distributions struct ah_algorithm_state { 69*4f1223e8SApple OSS Distributions const struct ccdigest_info *digest; 70*4f1223e8SApple OSS Distributions cchmac_ctx_decl(CCSHA512_STATE_SIZE, CCSHA512_BLOCK_SIZE, hmac_ctx); 71*4f1223e8SApple OSS Distributions }; 72*4f1223e8SApple OSS Distributions 73*4f1223e8SApple OSS Distributions struct ah_algorithm { 74*4f1223e8SApple OSS Distributions int (*sumsiz)(struct secasvar *); 75*4f1223e8SApple OSS Distributions int (*mature)(struct secasvar *); 76*4f1223e8SApple OSS Distributions u_int16_t keymin; /* in bits */ 77*4f1223e8SApple OSS Distributions u_int16_t keymax; /* in bits */ 78*4f1223e8SApple OSS Distributions const char *name; 79*4f1223e8SApple OSS Distributions int (*init)(struct ah_algorithm_state *, struct secasvar *); 80*4f1223e8SApple OSS Distributions void (*update)(struct ah_algorithm_state *, caddr_t, size_t); 81*4f1223e8SApple OSS Distributions void (*result)(struct ah_algorithm_state *, caddr_t, size_t); 82*4f1223e8SApple OSS Distributions /* not supposed to be called directly */ 83*4f1223e8SApple OSS Distributions const struct ccdigest_info *(*digest)(void); 84*4f1223e8SApple OSS Distributions size_t (*schedlen)(const struct ah_algorithm *); 85*4f1223e8SApple OSS Distributions int (*schedule)(const struct ah_algorithm *, struct secasvar *); 86*4f1223e8SApple OSS Distributions }; 87*4f1223e8SApple OSS Distributions 88*4f1223e8SApple OSS Distributions #define AH_MAXSUMSIZE 64 // sha2-512's output size 89*4f1223e8SApple OSS Distributions 90*4f1223e8SApple OSS Distributions extern const struct ah_algorithm *ah_algorithm_lookup(int); 91*4f1223e8SApple OSS Distributions 92*4f1223e8SApple OSS Distributions /* cksum routines */ 93*4f1223e8SApple OSS Distributions extern size_t ah_hdrlen(struct secasvar *); 94*4f1223e8SApple OSS Distributions extern size_t ah_hdrsiz(struct ipsecrequest *); 95*4f1223e8SApple OSS Distributions extern int ah_schedule(const struct ah_algorithm *, struct secasvar *); 96*4f1223e8SApple OSS Distributions 97*4f1223e8SApple OSS Distributions extern void ah4_input(struct mbuf *, int); 98*4f1223e8SApple OSS Distributions extern int ah4_output(struct mbuf *, struct secasvar *); 99*4f1223e8SApple OSS Distributions extern int ah4_calccksum(struct mbuf *, caddr_t __sized_by(len), size_t len, 100*4f1223e8SApple OSS Distributions const struct ah_algorithm *, struct secasvar *); 101*4f1223e8SApple OSS Distributions #endif /* BSD_KERNEL_PRIVATE */ 102*4f1223e8SApple OSS Distributions 103*4f1223e8SApple OSS Distributions #endif /* _NETINET6_AH_H_ */ 104