1 |
pcg |
1.1 |
/* |
2 |
|
|
global.h -- global variables and constants |
3 |
root |
1.26 |
Copyright (C) 2003-2013 Marc Lehmann <gvpe@schmorp.de> |
4 |
pcg |
1.1 |
|
5 |
pcg |
1.19 |
This file is part of GVPE. |
6 |
|
|
|
7 |
pcg |
1.24 |
GVPE is free software; you can redistribute it and/or modify it |
8 |
|
|
under the terms of the GNU General Public License as published by the |
9 |
|
|
Free Software Foundation; either version 3 of the License, or (at your |
10 |
|
|
option) any later version. |
11 |
|
|
|
12 |
|
|
This program is distributed in the hope that it will be useful, but |
13 |
|
|
WITHOUT ANY WARRANTY; without even the implied warranty of |
14 |
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General |
15 |
|
|
Public License for more details. |
16 |
|
|
|
17 |
|
|
You should have received a copy of the GNU General Public License along |
18 |
|
|
with this program; if not, see <http://www.gnu.org/licenses/>. |
19 |
|
|
|
20 |
|
|
Additional permission under GNU GPL version 3 section 7 |
21 |
|
|
|
22 |
|
|
If you modify this Program, or any covered work, by linking or |
23 |
|
|
combining it with the OpenSSL project's OpenSSL library (or a modified |
24 |
|
|
version of that library), containing parts covered by the terms of the |
25 |
|
|
OpenSSL or SSLeay licenses, the licensors of this Program grant you |
26 |
|
|
additional permission to convey the resulting work. Corresponding |
27 |
|
|
Source for a non-source form of such a combination shall include the |
28 |
|
|
source code for the parts of OpenSSL used as well as that of the |
29 |
|
|
covered work. |
30 |
pcg |
1.1 |
*/ |
31 |
|
|
|
32 |
|
|
#ifndef GLOBAL_H__ |
33 |
|
|
#define GLOBAL_H__ |
34 |
|
|
|
35 |
|
|
#include "config.h" |
36 |
|
|
|
37 |
|
|
#include <time.h> |
38 |
|
|
|
39 |
root |
1.27 |
#define HASH_BITS(hash) hashbits_ ## hash |
40 |
|
|
#define HASH_SIZE(hash) (HASH_BITS (hash) >> 3) |
41 |
|
|
#define hashbits_EVP_ripemd160 160 |
42 |
|
|
#define hashbits_EVP_sha1 160 |
43 |
|
|
#define hashbits_EVP_sha224 224 |
44 |
|
|
#define hashbits_EVP_sha256 256 |
45 |
|
|
#define hashbits_EVP_sha384 384 |
46 |
|
|
#define hashbits_EVP_sha512 512 |
47 |
|
|
#define hashbits_EVP_whirlpool 512 |
48 |
|
|
|
49 |
|
|
#define KEY_BITS(cipher) keybits_ ## cipher |
50 |
|
|
#define KEY_SIZE(cipher) (KEY_BITS (cipher) >> 3) |
51 |
|
|
#define keybits_EVP_bf_cbc 128 // actually 32-448 |
52 |
|
|
#define keybits_EVP_aes_128_cbc 128 |
53 |
|
|
#define keybits_EVP_aes_192_cbc 192 |
54 |
|
|
#define keybits_EVP_aes_256_cbc 256 |
55 |
|
|
|
56 |
|
|
#define BLOCK_BITS(cipher) blockbits_ ## cipher |
57 |
|
|
#define BLOCK_SIZE(cipher) (BLOCK_BITS (cipher) >> 3) |
58 |
|
|
#define blockbits_EVP_bf_cbc 64 |
59 |
|
|
#define blockbits_EVP_aes_128_cbc 128 |
60 |
|
|
#define blockbits_EVP_aes_192_cbc 128 |
61 |
|
|
#define blockbits_EVP_aes_256_cbc 128 |
62 |
|
|
|
63 |
pcg |
1.8 |
/* Protocol version. Different major versions are incompatible, |
64 |
|
|
* different minor versions probably are compatible ;) |
65 |
|
|
*/ |
66 |
|
|
|
67 |
root |
1.27 |
#define PROTOCOL_MAJOR 1 |
68 |
|
|
#define PROTOCOL_MINOR 0 |
69 |
pcg |
1.1 |
|
70 |
root |
1.26 |
#define SEED_SIZE 64 // how many octets to seed rng with |
71 |
|
|
|
72 |
root |
1.27 |
#define HKDF_SALT 32 |
73 |
|
|
#define IKM_SIZE 32 |
74 |
|
|
|
75 |
|
|
#define RSA_KEYLEN (RSABITS >> 3) |
76 |
|
|
|
77 |
|
|
#define AUTH_DIGEST ENABLE_AUTH |
78 |
|
|
#define AUTH_SIZE (HASH_SIZE (AUTH_DIGEST)) |
79 |
|
|
#define AUTH_TTL 12 // challenge bytes timeout after n seconds of non-use |
80 |
|
|
|
81 |
|
|
#define CIPHER ENABLE_CIPHER |
82 |
|
|
#define CIPHER_KEYSIZE (KEY_SIZE (CIPHER)) |
83 |
|
|
|
84 |
|
|
#define MAC_DIGEST ENABLE_DIGEST |
85 |
|
|
#define MAC_KEYSIZE HASH_SIZE (ENABLE_DIGEST) // number of bits used for the HMAC key |
86 |
pcg |
1.1 |
|
87 |
pcg |
1.22 |
#define WINDOWSIZE 512 // sliding window size |
88 |
pcg |
1.21 |
#define MAX_SEQNO (0xfffffff0U - WINDOWSIZE * 8) |
89 |
pcg |
1.1 |
|
90 |
pcg |
1.22 |
// hdr seq len hmac MAC MAC |
91 |
|
|
#define VPE_OVERHEAD (4 + 4 + 4 + RAND_SIZE + HMACLENGTH - 6 - 6) |
92 |
|
|
#define IP_OVERHEAD 20 // size of a (normal) ip header |
93 |
|
|
#define GRE_OVERHEAD (IP_OVERHEAD + 4) |
94 |
|
|
#define ICMP_OVERHEAD (IP_OVERHEAD + 4) |
95 |
|
|
#define UDP_OVERHEAD (IP_OVERHEAD + 20) // size of a (normal) ip + udp header (wrong, but don't care) |
96 |
|
|
#define TCP_OVERHEAD (IP_OVERHEAD + 22) // size of a (normal) ip + tcp header + packetlength |
97 |
|
|
#define MAX_OVERHEAD UDP_OVERHEAD // the max. overhead of any protocol (ok, tcp doesn't count) |
98 |
|
|
#define ETH_OVERHEAD 14 // the size of an ethernet header |
99 |
|
|
#define MAXSIZE (MAX_MTU + VPE_OVERHEAD) // slightly too large, but who cares |
100 |
pcg |
1.1 |
|
101 |
pcg |
1.23 |
#define PKTCACHESIZE 16 // the size of the memory pool for packets |
102 |
pcg |
1.2 |
|
103 |
pcg |
1.1 |
extern char *confbase; // directory in which all config files are |
104 |
|
|
extern char *thisnode; // config for current node (TODO: remove) |
105 |
|
|
|
106 |
root |
1.25 |
template<typename T, typename U> static inline T min (T a, U b) { return a < (T)b ? a : (T)b; } |
107 |
|
|
template<typename T, typename U> static inline void min_it (T &a, U b) { a = a < (T)b ? a : (T)b; } |
108 |
|
|
template<typename T, typename U> static inline T max (T a, U b) { return a > (T)b ? a : (T)b; } |
109 |
|
|
template<typename T, typename U> static inline void max_it (T &a, U b) { a = a > (T)b ? a : (T)b; } |
110 |
|
|
|
111 |
|
|
template<typename T, typename U, typename V> static inline T clamp (T v, U a, V b) { return v < (T)a ? a : v >(T)b ? b : v; } |
112 |
|
|
|
113 |
|
|
template<typename T, typename U> static inline void swap (T& a, U& b) { T t=a; a=(T)b; b=(U)t; } |
114 |
|
|
|
115 |
pcg |
1.1 |
#endif |
116 |
|
|
|