1 /* 2 * libjingle 3 * Copyright 2004--2005, Google Inc. 4 * 5 * Redistribution and use in source and binary forms, with or without 6 * modification, are permitted provided that the following conditions are met: 7 * 8 * 1. Redistributions of source code must retain the above copyright notice, 9 * this list of conditions and the following disclaimer. 10 * 2. Redistributions in binary form must reproduce the above copyright notice, 11 * this list of conditions and the following disclaimer in the documentation 12 * and/or other materials provided with the distribution. 13 * 3. The name of the author may not be used to endorse or promote products 14 * derived from this software without specific prior written permission. 15 * 16 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR IMPLIED 17 * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF 18 * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO 19 * EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 20 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, 21 * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; 22 * OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, 23 * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR 24 * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF 25 * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 26 */ 27 28 #ifndef TALK_BASE_SSLADAPTER_H__ 29 #define TALK_BASE_SSLADAPTER_H__ 30 31 #include "talk/base/asyncsocket.h" 32 33 namespace talk_base { 34 35 /////////////////////////////////////////////////////////////////////////////// 36 37 class SSLAdapter : public AsyncSocketAdapter { 38 public: 39 SSLAdapter(AsyncSocket* socket) 40 : AsyncSocketAdapter(socket), ignore_bad_cert_(false) { } 41 42 bool ignore_bad_cert() const { return ignore_bad_cert_; } 43 void set_ignore_bad_cert(bool ignore) { ignore_bad_cert_ = ignore; } 44 45 // StartSSL returns 0 if successful. 46 // If StartSSL is called while the socket is closed or connecting, the SSL 47 // negotiation will begin as soon as the socket connects. 48 virtual int StartSSL(const char* hostname, bool restartable) = 0; 49 50 // Create the default SSL adapter for this platform 51 static SSLAdapter* Create(AsyncSocket* socket); 52 53 private: 54 // If true, the server certificate need not match the configured hostname. 55 bool ignore_bad_cert_; 56 }; 57 58 /////////////////////////////////////////////////////////////////////////////// 59 60 typedef bool (*VerificationCallback)(void* cert); 61 62 // Call this on the main thread, before using SSL. 63 // Call CleanupSSLThread when finished with SSL. 64 bool InitializeSSL(VerificationCallback callback = NULL); 65 66 // Call to initialize additional threads. 67 bool InitializeSSLThread(); 68 69 // Call to cleanup additional threads, and also the main thread. 70 bool CleanupSSL(); 71 72 /////////////////////////////////////////////////////////////////////////////// 73 74 } // namespace talk_base 75 76 #endif // TALK_BASE_SSLADAPTER_H__ 77