Home | History | Annotate | Download | only in base
      1 /*
      2  * libjingle
      3  * Copyright 2004--2005, Google Inc.
      4  *
      5  * Redistribution and use in source and binary forms, with or without
      6  * modification, are permitted provided that the following conditions are met:
      7  *
      8  *  1. Redistributions of source code must retain the above copyright notice,
      9  *     this list of conditions and the following disclaimer.
     10  *  2. Redistributions in binary form must reproduce the above copyright notice,
     11  *     this list of conditions and the following disclaimer in the documentation
     12  *     and/or other materials provided with the distribution.
     13  *  3. The name of the author may not be used to endorse or promote products
     14  *     derived from this software without specific prior written permission.
     15  *
     16  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR IMPLIED
     17  * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
     18  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO
     19  * EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
     20  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
     21  * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS;
     22  * OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY,
     23  * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR
     24  * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
     25  * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
     26  */
     27 
     28 #ifndef TALK_BASE_SSLADAPTER_H_
     29 #define TALK_BASE_SSLADAPTER_H_
     30 
     31 #include "talk/base/asyncsocket.h"
     32 
     33 namespace talk_base {
     34 
     35 ///////////////////////////////////////////////////////////////////////////////
     36 
     37 class SSLAdapter : public AsyncSocketAdapter {
     38  public:
     39   explicit SSLAdapter(AsyncSocket* socket)
     40     : AsyncSocketAdapter(socket), ignore_bad_cert_(false) { }
     41 
     42   bool ignore_bad_cert() const { return ignore_bad_cert_; }
     43   void set_ignore_bad_cert(bool ignore) { ignore_bad_cert_ = ignore; }
     44 
     45   // StartSSL returns 0 if successful.
     46   // If StartSSL is called while the socket is closed or connecting, the SSL
     47   // negotiation will begin as soon as the socket connects.
     48   virtual int StartSSL(const char* hostname, bool restartable) = 0;
     49 
     50   // Create the default SSL adapter for this platform. On failure, returns NULL
     51   // and deletes |socket|. Otherwise, the returned SSLAdapter takes ownership
     52   // of |socket|.
     53   static SSLAdapter* Create(AsyncSocket* socket);
     54 
     55  private:
     56   // If true, the server certificate need not match the configured hostname.
     57   bool ignore_bad_cert_;
     58 };
     59 
     60 ///////////////////////////////////////////////////////////////////////////////
     61 
     62 typedef bool (*VerificationCallback)(void* cert);
     63 
     64 // Call this on the main thread, before using SSL.
     65 // Call CleanupSSLThread when finished with SSL.
     66 bool InitializeSSL(VerificationCallback callback = NULL);
     67 
     68 // Call to initialize additional threads.
     69 bool InitializeSSLThread();
     70 
     71 // Call to cleanup additional threads, and also the main thread.
     72 bool CleanupSSL();
     73 
     74 ///////////////////////////////////////////////////////////////////////////////
     75 
     76 }  // namespace talk_base
     77 
     78 #endif  // TALK_BASE_SSLADAPTER_H_
     79