ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/connection.h
(Generate patch)

Comparing gvpe/src/connection.h (file contents):
Revision 1.3 by pcg, Wed Apr 2 05:15:00 2003 UTC vs.
Revision 1.21 by pcg, Sat Mar 5 19:13:15 2005 UTC

1/* 1/*
2 connection.h -- header for connection.C 2 connection.h -- header for connection.C
3 Copyright (C) 2003-2005 Marc Lehmann <gvpe@schmorp.de>
3 4
5 This file is part of GVPE.
6
4 This program is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify
5 it under the terms of the GNU General Public License as published by 8 it under the terms of the GNU General Public License as published by
6 the Free Software Foundation; either version 2 of the License, or 9 the Free Software Foundation; either version 2 of the License, or
7 (at your option) any later version. 10 (at your option) any later version.
8 11
9 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful,
10 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 but WITHOUT ANY WARRANTY; without even the implied warranty of
11 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 GNU General Public License for more details. 15 GNU General Public License for more details.
13 16
14 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License
15 along with this program; if not, write to the Free Software 18 along with gvpe; if not, write to the Free Software
16 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
17*/ 20*/
18 21
19#ifndef VPE_CONNECTION_H__ 22#ifndef VPE_CONNECTION_H__
20#define VPE_CONNECTION_H__ 23#define VPE_CONNECTION_H__
21
22#include <netinet/ip.h> // for tos etc.
23 24
24#include <openssl/hmac.h> 25#include <openssl/hmac.h>
25 26
26#include "global.h" 27#include "global.h"
27#include "conf.h" 28#include "conf.h"
36 37
37struct rsaid { 38struct rsaid {
38 u8 id[RSA_IDLEN]; // the challenge id 39 u8 id[RSA_IDLEN]; // the challenge id
39}; 40};
40 41
41typedef u8 rsachallenge[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; 42typedef rsaclear rsachallenge; // challenge data;
42typedef u8 rsaencrdata[RSA_KEYLEN]; // encrypted challenge 43typedef rsacrypt rsaencrdata; // encrypted challenge
43typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash 44typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash
44 45
45//////////////////////////////////////////////////////////////////////////////////////// 46////////////////////////////////////////////////////////////////////////////////////////
46 47
47struct crypto_ctx; 48struct crypto_ctx;
48 49
49struct hmac_packet:net_packet 50struct hmac_packet : net_packet
50{ 51{
51 u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere 52 u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere
52 53
53 void hmac_set (crypto_ctx * ctx); 54 void hmac_set (crypto_ctx * ctx);
54 bool hmac_chk (crypto_ctx * ctx); 55 bool hmac_chk (crypto_ctx * ctx);
75 }; 76 };
76 77
77 u8 type; 78 u8 type;
78 u8 srcdst, src1, dst1; 79 u8 srcdst, src1, dst1;
79 80
80 void set_hdr (ptype type, unsigned int dst); 81 void set_hdr (ptype type_, unsigned int dst);
81 82
82 unsigned int src () const 83 unsigned int src () const
83 { 84 {
84 return src1 | ((srcdst >> 4) << 8); 85 return src1 | ((srcdst >> 4) << 8);
85 } 86 }
98//////////////////////////////////////////////////////////////////////////////////////// 99////////////////////////////////////////////////////////////////////////////////////////
99 100
100// a very simple fifo pkt-queue 101// a very simple fifo pkt-queue
101class pkt_queue 102class pkt_queue
102 { 103 {
103 tap_packet *queue[QUEUEDEPTH]; 104 net_packet *queue[QUEUEDEPTH];
104 int i, j; 105 int i, j;
105 106
106 public: 107 public:
107 108
108 void put (tap_packet *p); 109 void put (net_packet *p);
109 tap_packet *get (); 110 net_packet *get ();
110 111
111 pkt_queue (); 112 pkt_queue ();
112 ~pkt_queue (); 113 ~pkt_queue ();
114 };
115
116enum
117 {
118 FEATURE_COMPRESSION = 0x01,
119 FEATURE_ROHC = 0x02,
113 }; 120 };
114 121
115struct connection 122struct connection
116 { 123 {
117 conf_node *conf; 124 conf_node *conf;
124 131
125 u32 oseqno; 132 u32 oseqno;
126 sliding_window iseqno; 133 sliding_window iseqno;
127 134
128 u8 protocol; 135 u8 protocol;
136 u8 features;
129 137
130 pkt_queue queue; 138 pkt_queue data_queue, vpn_queue;
131 139
132 crypto_ctx *octx, *ictx; 140 crypto_ctx *octx, *ictx;
141
142#if ENABLE_DNS
143 struct dns_connection *dns;
144
145 void dnsv4_reset_connection ();
146#endif
133 147
134 enum conf_node::connectmode connectmode; 148 enum conf_node::connectmode connectmode;
135 u8 prot_minor; // minor number of other side 149 u8 prot_minor; // minor number of other side
136 150
137 void reset_dstaddr (); 151 void reset_si ();
152 const sockinfo &forward_si (const sockinfo &si) const;
138 153
139 void shutdown (); 154 void shutdown ();
155 void connection_established ();
140 void reset_connection (); 156 void reset_connection ();
141 void establish_connection_cb (tstamp &ts); time_watcher establish_connection;
142 void rekey_cb (tstamp &ts); time_watcher rekey; // next rekying (actually current reset + reestablishing)
143 void keepalive_cb (tstamp &ts); time_watcher keepalive; // next keepalive probe
144 157
158 void establish_connection_cb (time_watcher &w); time_watcher establish_connection;
159 void rekey_cb (time_watcher &w); time_watcher rekey; // next rekying (actually current reset + reestablishing)
160 void keepalive_cb (time_watcher &w); time_watcher keepalive; // next keepalive probe
161
162 void send_connect_request (int id);
145 void send_auth_request (const sockinfo &si, bool initiate); 163 void send_auth_request (const sockinfo &si, bool initiate);
146 void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg); 164 void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg);
147 void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols); 165 void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols);
148 void send_reset (const sockinfo &dsi); 166 void send_reset (const sockinfo &dsi);
149 void send_ping (const sockinfo &dsi, u8 pong = 0); 167 void send_ping (const sockinfo &dsi, u8 pong = 0);
150 void send_data_packet (tap_packet *pkt, bool broadcast = false); 168 void send_data_packet (tap_packet *pkt);
169
151 void inject_data_packet (tap_packet *pkt, bool broadcast = false); 170 void inject_data_packet (tap_packet *pkt, bool broadcast = false);
152 void connect_request (int id); 171 void inject_vpn_packet (vpn_packet *pkt, int tos = 0); // for forwarding
153 172
154 void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = IPTOS_RELIABILITY);
155 void recv_vpn_packet (vpn_packet *pkt, const sockinfo &rsi); 173 void recv_vpn_packet (vpn_packet *pkt, const sockinfo &rsi);
174 void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = 0);
156 175
157 void script_node (); 176 void script_node ();
158 const char *script_node_up (); 177 const char *script_node_up ();
159 const char *script_node_down (); 178 const char *script_node_down ();
160 179
161 void dump_status (); 180 void dump_status ();
162 181
163 connection(struct vpn *vpn_); 182 connection (struct vpn *vpn, conf_node *conf);
164 ~connection (); 183 ~connection ();
165 }; 184 };
166 185
167#endif 186#endif
168 187

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines