1 /* $NetBSD: isakmp_var.h,v 1.17 2010/11/12 10:36:37 tteras Exp $ */ 2 3 /* Id: isakmp_var.h,v 1.12 2005/05/07 14:45:31 manubsd Exp */ 4 5 /* 6 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 7 * All rights reserved. 8 * 9 * Redistribution and use in source and binary forms, with or without 10 * modification, are permitted provided that the following conditions 11 * are met: 12 * 1. Redistributions of source code must retain the above copyright 13 * notice, this list of conditions and the following disclaimer. 14 * 2. Redistributions in binary form must reproduce the above copyright 15 * notice, this list of conditions and the following disclaimer in the 16 * documentation and/or other materials provided with the distribution. 17 * 3. Neither the name of the project nor the names of its contributors 18 * may be used to endorse or promote products derived from this software 19 * without specific prior written permission. 20 * 21 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 22 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 24 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 25 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 26 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 27 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 29 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 30 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 31 * SUCH DAMAGE. 32 */ 33 34 #ifndef _ISAKMP_VAR_H 35 #define _ISAKMP_VAR_H 36 37 #include "vmbuf.h" 38 #include "policy.h" 39 40 #define PORT_ISAKMP 500 41 #define PORT_ISAKMP_NATT 4500 42 43 #define DEFAULT_NONCE_SIZE 16 44 45 typedef u_char cookie_t[8]; 46 typedef u_char msgid_t[4]; 47 48 typedef struct { /* i_cookie + r_cookie */ 49 cookie_t i_ck; 50 cookie_t r_ck; 51 } isakmp_index; 52 53 struct isakmp_gen; 54 struct sched; 55 56 struct sockaddr; 57 struct ph1handle; 58 struct ph2handle; 59 struct remoteconf; 60 struct ipsecdoi_pl_id; /* XXX */ 61 struct isakmp_pl_ke; /* XXX */ 62 struct isakmp_pl_nonce; /* XXX */ 63 64 extern struct ph1handle *isakmp_ph1begin_i __P((struct remoteconf *, 65 struct sockaddr *, struct sockaddr *)); 66 67 extern vchar_t *isakmp_parsewoh __P((int, struct isakmp_gen *, int)); 68 extern vchar_t *isakmp_parse __P((vchar_t *)); 69 70 extern int isakmp_init __P((void)); 71 extern const char *isakmp_pindex __P((const isakmp_index *, const u_int32_t)); 72 extern int isakmp_open __P((struct sockaddr *, int)); 73 extern void isakmp_close __P((int fd)); 74 extern int isakmp_send __P((struct ph1handle *, vchar_t *)); 75 76 extern int isakmp_ph1send __P((struct ph1handle *)); 77 extern int isakmp_ph2send __P((struct ph2handle *)); 78 extern void isakmp_ph1dying_stub __P((struct sched *)); 79 extern void isakmp_ph1dying __P((struct ph1handle *)); 80 extern void isakmp_ph1expire_stub __P((struct sched *)); 81 extern void isakmp_ph1expire __P((struct ph1handle *)); 82 extern void isakmp_ph1delete_stub __P((struct sched *)); 83 extern void isakmp_ph1delete __P((struct ph1handle *)); 84 extern void isakmp_ph2expire_stub __P((struct sched *)); 85 extern void isakmp_ph2expire __P((struct ph2handle *)); 86 extern void isakmp_ph2delete_stub __P((struct sched *)); 87 extern void isakmp_ph2delete __P((struct ph2handle *)); 88 89 extern int isakmp_get_sainfo __P((struct ph2handle *, struct secpolicy *, struct secpolicy *)); 90 extern int isakmp_post_acquire __P((struct ph2handle *, struct ph1handle *, int)); 91 extern int isakmp_post_getspi __P((struct ph2handle *)); 92 extern void isakmp_chkph1there_stub __P((struct sched *)); 93 extern void isakmp_chkph1there __P((struct ph2handle *)); 94 95 extern caddr_t isakmp_set_attr_v __P((caddr_t, int, caddr_t, int)); 96 extern caddr_t isakmp_set_attr_l __P((caddr_t, int, u_int32_t)); 97 extern vchar_t *isakmp_add_attr_v __P((vchar_t *, int, caddr_t, int)); 98 extern vchar_t *isakmp_add_attr_l __P((vchar_t *, int, u_int32_t)); 99 100 extern int isakmp_newcookie __P((caddr_t, struct sockaddr *, struct sockaddr *)); 101 102 extern int isakmp_p2ph __P((vchar_t **, struct isakmp_gen *)); 103 104 extern u_int32_t isakmp_newmsgid2 __P((struct ph1handle *)); 105 extern caddr_t set_isakmp_header1 __P((vchar_t *, struct ph1handle *, int)); 106 extern caddr_t set_isakmp_header2 __P((vchar_t *, struct ph2handle *, int)); 107 extern caddr_t set_isakmp_payload __P((caddr_t, vchar_t *, int)); 108 109 extern struct payload_list *isakmp_plist_append_full __P(( 110 struct payload_list *plist, vchar_t *payload, 111 u_int8_t payload_type, u_int8_t free)); 112 113 static inline struct payload_list *isakmp_plist_append(plist, payload, payload_type) 114 struct payload_list *plist; 115 vchar_t *payload; 116 u_int8_t payload_type; 117 { 118 return isakmp_plist_append_full(plist, payload, payload_type, 0); 119 } 120 121 122 extern vchar_t *isakmp_plist_set_all __P((struct payload_list **plist, 123 struct ph1handle *iph1)); 124 125 #ifdef HAVE_PRINT_ISAKMP_C 126 extern void isakmp_printpacket __P((vchar_t *, struct sockaddr *, 127 struct sockaddr *, int)); 128 #endif 129 130 extern int copy_ph1addresses __P(( struct ph1handle *, 131 struct remoteconf *, struct sockaddr *, struct sockaddr *)); 132 extern void log_ph1established __P((const struct ph1handle *)); 133 134 extern void script_hook __P((struct ph1handle *, int)); 135 extern int script_env_append __P((char ***, int *, char *, char *)); 136 extern int script_exec __P((char *, int, char * const *)); 137 138 void purge_remote __P((struct ph1handle *)); 139 void delete_spd __P((struct ph2handle *, u_int64_t)); 140 #ifdef INET6 141 u_int32_t setscopeid __P((struct sockaddr *, struct sockaddr *)); 142 #endif 143 144 #endif /* _ISAKMP_VAR_H */ 145