1 | /* |
1 | /* |
2 | connection.h -- header for connection.C |
2 | connection.h -- header for connection.C |
|
|
3 | Copyright (C) 2003-2004 Marc Lehmann <pcg@goof.com> |
3 | |
4 | |
4 | This program is free software; you can redistribute it and/or modify |
5 | This program is free software; you can redistribute it and/or modify |
5 | it under the terms of the GNU General Public License as published by |
6 | it under the terms of the GNU General Public License as published by |
6 | the Free Software Foundation; either version 2 of the License, or |
7 | the Free Software Foundation; either version 2 of the License, or |
7 | (at your option) any later version. |
8 | (at your option) any later version. |
… | |
… | |
34 | |
35 | |
35 | struct rsaid { |
36 | struct rsaid { |
36 | u8 id[RSA_IDLEN]; // the challenge id |
37 | u8 id[RSA_IDLEN]; // the challenge id |
37 | }; |
38 | }; |
38 | |
39 | |
39 | typedef u8 rsachallenge[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; |
40 | typedef rsaclear rsachallenge; // challenge data; |
40 | typedef u8 rsaencrdata[RSA_KEYLEN]; // encrypted challenge |
41 | typedef rsacrypt rsaencrdata; // encrypted challenge |
41 | typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash |
42 | typedef u8 rsaresponse[RSA_RESLEN]; // the encrypted ripemd160 hash |
42 | |
43 | |
43 | //////////////////////////////////////////////////////////////////////////////////////// |
44 | //////////////////////////////////////////////////////////////////////////////////////// |
44 | |
45 | |
45 | struct crypto_ctx; |
46 | struct crypto_ctx; |
46 | |
47 | |
47 | struct hmac_packet:net_packet |
48 | struct hmac_packet : net_packet |
48 | { |
49 | { |
49 | u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere |
50 | u8 hmac[HMACLENGTH]; // each and every packet has a hmac field, but that is not (yet) checked everywhere |
50 | |
51 | |
51 | void hmac_set (crypto_ctx * ctx); |
52 | void hmac_set (crypto_ctx * ctx); |
52 | bool hmac_chk (crypto_ctx * ctx); |
53 | bool hmac_chk (crypto_ctx * ctx); |
… | |
… | |
96 | //////////////////////////////////////////////////////////////////////////////////////// |
97 | //////////////////////////////////////////////////////////////////////////////////////// |
97 | |
98 | |
98 | // a very simple fifo pkt-queue |
99 | // a very simple fifo pkt-queue |
99 | class pkt_queue |
100 | class pkt_queue |
100 | { |
101 | { |
101 | tap_packet *queue[QUEUEDEPTH]; |
102 | net_packet *queue[QUEUEDEPTH]; |
102 | int i, j; |
103 | int i, j; |
103 | |
104 | |
104 | public: |
105 | public: |
105 | |
106 | |
106 | void put (tap_packet *p); |
107 | void put (net_packet *p); |
107 | tap_packet *get (); |
108 | net_packet *get (); |
108 | |
109 | |
109 | pkt_queue (); |
110 | pkt_queue (); |
110 | ~pkt_queue (); |
111 | ~pkt_queue (); |
111 | }; |
112 | }; |
112 | |
113 | |
… | |
… | |
123 | u32 oseqno; |
124 | u32 oseqno; |
124 | sliding_window iseqno; |
125 | sliding_window iseqno; |
125 | |
126 | |
126 | u8 protocol; |
127 | u8 protocol; |
127 | |
128 | |
128 | pkt_queue queue; |
129 | pkt_queue data_queue, vpn_queue; |
129 | |
130 | |
130 | crypto_ctx *octx, *ictx; |
131 | crypto_ctx *octx, *ictx; |
131 | |
132 | |
132 | enum conf_node::connectmode connectmode; |
133 | enum conf_node::connectmode connectmode; |
133 | u8 prot_minor; // minor number of other side |
134 | u8 prot_minor; // minor number of other side |
… | |
… | |
147 | void send_auth_request (const sockinfo &si, bool initiate); |
148 | void send_auth_request (const sockinfo &si, bool initiate); |
148 | void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg); |
149 | void send_auth_response (const sockinfo &si, const rsaid &id, const rsachallenge &chg); |
149 | void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols); |
150 | void send_connect_info (int rid, const sockinfo &rsi, u8 rprotocols); |
150 | void send_reset (const sockinfo &dsi); |
151 | void send_reset (const sockinfo &dsi); |
151 | void send_ping (const sockinfo &dsi, u8 pong = 0); |
152 | void send_ping (const sockinfo &dsi, u8 pong = 0); |
152 | void send_data_packet (tap_packet *pkt, bool broadcast = false); |
153 | void send_data_packet (tap_packet *pkt); |
153 | |
154 | |
154 | void inject_data_packet (tap_packet *pkt, bool broadcast = false); |
155 | void inject_data_packet (tap_packet *pkt, bool broadcast = false); |
155 | void inject_vpn_packet (vpn_packet *pkt, int tos = 0); // for forwarding |
156 | void inject_vpn_packet (vpn_packet *pkt, int tos = 0); // for forwarding |
156 | |
157 | |
157 | void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = 0); |
158 | void send_vpn_packet (vpn_packet *pkt, const sockinfo &si, int tos = 0); |