ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/connection.h
(Generate patch)

Comparing gvpe/src/connection.h (file contents):
Revision 1.9 by pcg, Thu Oct 16 02:28:36 2003 UTC vs.
Revision 1.28 by pcg, Sat Nov 10 05:14:22 2007 UTC

1/* 1/*
2 connection.h -- header for connection.C 2 connection.h -- header for connection.C
3 Copyright (C) 2003-2005 Marc Lehmann <gvpe@schmorp.de>
3 4
5 This file is part of GVPE.
6
4 This program is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify
5 it under the terms of the GNU General Public License as published by 8 it under the terms of the GNU General Public License as published by
6 the Free Software Foundation; either version 2 of the License, or 9 the Free Software Foundation; either version 2 of the License, or
7 (at your option) any later version. 10 (at your option) any later version.
8 11
9 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful,
10 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 but WITHOUT ANY WARRANTY; without even the implied warranty of
11 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 GNU General Public License for more details. 15 GNU General Public License for more details.
13 16
14 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License
15 along with this program; if not, write to the Free Software 18 along with gvpe; if not, write to the Free Software
16 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19 Foundation, Inc. 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
17*/ 20*/
18 21
19#ifndef VPE_CONNECTION_H__ 22#ifndef GVPE_CONNECTION_H__
20#define VPE_CONNECTION_H__ 23#define GVPE_CONNECTION_H__
21 24
22#include <openssl/hmac.h> 25#include <openssl/hmac.h>
23 26
24#include "global.h" 27#include "global.h"
25#include "conf.h" 28#include "conf.h"
34 37
35struct rsaid { 38struct rsaid {
36 u8 id[RSA_IDLEN]; // the challenge id 39 u8 id[RSA_IDLEN]; // the challenge id
37}; 40};
38 41
39typedef u8 rsachallenge[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; 42typedef rsaclear rsachallenge; // challenge data;
40typedef u8 rsaencrdata[RSA_KEYLEN]; // encrypted challenge 43typedef rsacrypt rsaencrdata; // encrypted challenge
41typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash 44typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash
42 45
43//////////////////////////////////////////////////////////////////////////////////////// 46////////////////////////////////////////////////////////////////////////////////////////
44 47
45struct crypto_ctx; 48struct crypto_ctx;
46 49
47struct hmac_packet:net_packet 50struct hmac_packet : net_packet
48{ 51{
49 u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere 52 u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere
50 53
51 void hmac_set (crypto_ctx * ctx); 54 void hmac_set (crypto_ctx * ctx);
52 bool hmac_chk (crypto_ctx * ctx); 55 bool hmac_chk (crypto_ctx * ctx);
65 PT_DATA_UNCOMPRESSED, 68 PT_DATA_UNCOMPRESSED,
66 PT_DATA_COMPRESSED, 69 PT_DATA_COMPRESSED,
67 PT_PING, PT_PONG, // wasting namespace space? ;) 70 PT_PING, PT_PONG, // wasting namespace space? ;)
68 PT_AUTH_REQ, // authentification request 71 PT_AUTH_REQ, // authentification request
69 PT_AUTH_RES, // authentification response 72 PT_AUTH_RES, // authentification response
70 PT_CONNECT_REQ, // want other host to contact me 73 PT_CONNECT_REQ, // want other node to contact me
71 PT_CONNECT_INFO, // request connection to some node 74 PT_CONNECT_INFO, // request connection to some node
75 PT_DATA_BRIDGED, // uncompressed packet with foreign mac pot. larger than path mtu
72 PT_MAX 76 PT_MAX
73 }; 77 };
74 78
75 u8 type; 79 u8 type;
76 u8 srcdst, src1, dst1; 80 u8 srcdst, src1, dst1;
108 112
109 pkt_queue (); 113 pkt_queue ();
110 ~pkt_queue (); 114 ~pkt_queue ();
111 }; 115 };
112 116
117enum
118 {
119 FEATURE_COMPRESSION = 0x01,
120 FEATURE_ROHC = 0x02,
121 FEATURE_BRIDGING = 0x04,
122 };
123
113struct connection 124struct connection
114 { 125 {
115 conf_node *conf; 126 conf_node *conf;
116 struct vpn *vpn; 127 struct vpn *vpn;
117 128
122 133
123 u32 oseqno; 134 u32 oseqno;
124 sliding_window iseqno; 135 sliding_window iseqno;
125 136
126 u8 protocol; 137 u8 protocol;
138 u8 features;
127 139
128 pkt_queue data_queue, vpn_queue; 140 pkt_queue data_queue, vpn_queue;
129 141
130 crypto_ctx *octx, *ictx; 142 crypto_ctx *octx, *ictx;
143
144#if ENABLE_DNS
145 struct dns_connection *dns;
146
147 void dnsv4_reset_connection ();
148#endif
131 149
132 enum conf_node::connectmode connectmode; 150 enum conf_node::connectmode connectmode;
133 u8 prot_minor; // minor number of other side 151 u8 prot_minor; // minor number of other side
134 152
135 void reset_si (); 153 void reset_si ();
137 155
138 void shutdown (); 156 void shutdown ();
139 void connection_established (); 157 void connection_established ();
140 void reset_connection (); 158 void reset_connection ();
141 159
142 void establish_connection_cb (time_watcher &w); time_watcher establish_connection; 160 void establish_connection_cb (ev::timer &w, int revents); ev::timer establish_connection;
143 void rekey_cb (time_watcher &w); time_watcher rekey; // next rekying (actually current reset + reestablishing) 161 void rekey_cb (ev::timer &w, int revents); ev::timer rekey; // next rekying (actually current reset + reestablishing)
144 void keepalive_cb (time_watcher &w); time_watcher keepalive; // next keepalive probe 162 void keepalive_cb (ev::timer &w, int revents); ev::timer keepalive; // next keepalive probe
145 163
146 void send_connect_request (int id); 164 void send_connect_request (int id);
147 void send_auth_request (const sockinfo &si, bool initiate); 165 void send_auth_request (const sockinfo &si, bool initiate);
148 void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg); 166 void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg);
149 void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols); 167 void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols);
152 void send_data_packet (tap_packet *pkt); 170 void send_data_packet (tap_packet *pkt);
153 171
154 void inject_data_packet (tap_packet *pkt, bool broadcast = false); 172 void inject_data_packet (tap_packet *pkt, bool broadcast = false);
155 void inject_vpn_packet (vpn_packet *pkt, int tos = 0); // for forwarding 173 void inject_vpn_packet (vpn_packet *pkt, int tos = 0); // for forwarding
156 174
175 void recv_vpn_packet (vpn_packet *pkt, const sockinfo &rsi);
157 void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = 0); 176 void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = 0);
158 void recv_vpn_packet (vpn_packet *pkt, const sockinfo &rsi);
159 177
178 void script_init_env (const char *ext);
160 void script_node (); 179 void script_init_connect_env ();
161 const char *script_node_up (); 180 const char *script_node_up ();
162 const char *script_node_down (); 181 const char *script_node_down ();
163 182
164 void dump_status (); 183 void dump_status ();
165 184
166 connection(struct vpn *vpn_); 185 connection (struct vpn *vpn, conf_node *conf);
167 ~connection (); 186 ~connection ();
168 }; 187 };
169 188
170#endif 189#endif
171 190

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines