2008-02-27 20:34:43 -05:00
|
|
|
/*
|
|
|
|
* TLSv1 Record Protocol
|
|
|
|
* Copyright (c) 2006-2007, Jouni Malinen <j@w1.fi>
|
|
|
|
*
|
|
|
|
* This program is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License version 2 as
|
|
|
|
* published by the Free Software Foundation.
|
|
|
|
*
|
|
|
|
* Alternatively, this software may be distributed under the terms of BSD
|
|
|
|
* license.
|
|
|
|
*
|
|
|
|
* See README and COPYING for more details.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#ifndef TLSV1_RECORD_H
|
|
|
|
#define TLSV1_RECORD_H
|
|
|
|
|
2009-11-29 16:04:43 -05:00
|
|
|
#include "crypto/crypto.h"
|
2008-02-27 20:34:43 -05:00
|
|
|
|
|
|
|
#define TLS_MAX_WRITE_MAC_SECRET_LEN 20
|
|
|
|
#define TLS_MAX_WRITE_KEY_LEN 32
|
|
|
|
#define TLS_MAX_IV_LEN 16
|
|
|
|
#define TLS_MAX_KEY_BLOCK_LEN (2 * (TLS_MAX_WRITE_MAC_SECRET_LEN + \
|
|
|
|
TLS_MAX_WRITE_KEY_LEN + TLS_MAX_IV_LEN))
|
|
|
|
|
|
|
|
#define TLS_SEQ_NUM_LEN 8
|
|
|
|
#define TLS_RECORD_HEADER_LEN 5
|
|
|
|
|
|
|
|
/* ContentType */
|
|
|
|
enum {
|
|
|
|
TLS_CONTENT_TYPE_CHANGE_CIPHER_SPEC = 20,
|
|
|
|
TLS_CONTENT_TYPE_ALERT = 21,
|
|
|
|
TLS_CONTENT_TYPE_HANDSHAKE = 22,
|
|
|
|
TLS_CONTENT_TYPE_APPLICATION_DATA = 23
|
|
|
|
};
|
|
|
|
|
|
|
|
struct tlsv1_record_layer {
|
|
|
|
u8 write_mac_secret[TLS_MAX_WRITE_MAC_SECRET_LEN];
|
|
|
|
u8 read_mac_secret[TLS_MAX_WRITE_MAC_SECRET_LEN];
|
|
|
|
u8 write_key[TLS_MAX_WRITE_KEY_LEN];
|
|
|
|
u8 read_key[TLS_MAX_WRITE_KEY_LEN];
|
|
|
|
u8 write_iv[TLS_MAX_IV_LEN];
|
|
|
|
u8 read_iv[TLS_MAX_IV_LEN];
|
|
|
|
|
|
|
|
size_t hash_size;
|
|
|
|
size_t key_material_len;
|
|
|
|
size_t iv_size; /* also block_size */
|
|
|
|
|
|
|
|
enum crypto_hash_alg hash_alg;
|
|
|
|
enum crypto_cipher_alg cipher_alg;
|
|
|
|
|
|
|
|
u8 write_seq_num[TLS_SEQ_NUM_LEN];
|
|
|
|
u8 read_seq_num[TLS_SEQ_NUM_LEN];
|
|
|
|
|
|
|
|
u16 cipher_suite;
|
|
|
|
u16 write_cipher_suite;
|
|
|
|
u16 read_cipher_suite;
|
|
|
|
|
|
|
|
struct crypto_cipher *write_cbc;
|
|
|
|
struct crypto_cipher *read_cbc;
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
int tlsv1_record_set_cipher_suite(struct tlsv1_record_layer *rl,
|
|
|
|
u16 cipher_suite);
|
|
|
|
int tlsv1_record_change_write_cipher(struct tlsv1_record_layer *rl);
|
|
|
|
int tlsv1_record_change_read_cipher(struct tlsv1_record_layer *rl);
|
|
|
|
int tlsv1_record_send(struct tlsv1_record_layer *rl, u8 content_type, u8 *buf,
|
2011-09-25 10:11:52 -04:00
|
|
|
size_t buf_size, const u8 *payload, size_t payload_len,
|
|
|
|
size_t *out_len);
|
2008-02-27 20:34:43 -05:00
|
|
|
int tlsv1_record_receive(struct tlsv1_record_layer *rl,
|
|
|
|
const u8 *in_data, size_t in_len,
|
|
|
|
u8 *out_data, size_t *out_len, u8 *alert);
|
|
|
|
|
|
|
|
#endif /* TLSV1_RECORD_H */
|