… | |
… | |
24 | #include <time.h> |
24 | #include <time.h> |
25 | |
25 | |
26 | |
26 | |
27 | #define RSA_KEYBITS 1280 // must be >= 1280 and divisible by 8 |
27 | #define RSA_KEYBITS 1280 // must be >= 1280 and divisible by 8 |
28 | #define RSA_KEYLEN ((RSA_KEYBITS) >> 3) |
28 | #define RSA_KEYLEN ((RSA_KEYBITS) >> 3) |
29 | #define RSA_OVERHEAD (41 + 1) // well, no define for OAEP |
29 | #define RSA_OVERHEAD (41 + 1) // well, no define for OAEP in openssl |
30 | |
30 | |
|
|
31 | #define RSA_HASH EVP_ripemd160 ()// speed don't matter, boy, safety does.. I need sha256 :( |
|
|
32 | #define RSA_HASHLEN (160 >> 3) |
|
|
33 | |
|
|
34 | #define RSA_IDLEN 16 // how many bytes are used to identify the challenge |
31 | #define CHALLENGE_TTL 30 // challenge bytes timeout after 30 seconds |
35 | #define RSA_TTL 20 // challenge bytes timeout after n seconds |
32 | |
36 | |
33 | #define CIPHER ENABLE_CIPHER () |
37 | #define CIPHER ENABLE_CIPHER () |
34 | #define CIPHER_KEYLEN (EVP_CIPHER_key_length (CIPHER)) |
38 | #define CIPHER_KEYLEN (EVP_CIPHER_key_length (CIPHER)) |
35 | #define DIGEST ENABLE_DIGEST () |
39 | #define DIGEST ENABLE_DIGEST () |
36 | #define HMAC_KEYLEN (256 >> 3) // number of bits used for the HMAC key (also change CHG_HMAC_KEY) |
40 | #define HMAC_KEYLEN (256 >> 3) // number of bits used for the HMAC key (also change CHG_HMAC_KEY) |
37 | |
41 | |
38 | #define MAX_SEQNO 0xfffff000U |
42 | #define MAX_SEQNO 0xfffffff0U |
39 | |
43 | |
40 | #define CHG_SEQNO 0 // where the seqno starts within the rsa challenge |
44 | #define CHG_SEQNO 0 // where the seqno starts within the rsa challenge |
41 | #define CHG_CIPHER_KEY 4 // where the key starts within the rsa challenge |
45 | #define CHG_CIPHER_KEY 4 // where the key starts within the rsa challenge |
42 | #define CHG_HMAC_KEY 86 // where the key starts within the rsa challenge (256 bits at the end!) |
46 | #define CHG_HMAC_KEY 86 // where the key starts within the rsa challenge (256 bits at the end!) |
43 | |
47 | |
44 | // hdr seq len hmac MAC MAC |
48 | // hdr seq len hmac MAC MAC |
45 | #define VPE_OVERHEAD (4 + 4 + 4 + RAND_SIZE + HMACLENGTH - 6 - 6) |
49 | #define VPE_OVERHEAD (4 + 4 + 4 + RAND_SIZE + HMACLENGTH - 6 - 6) |
46 | #define UDP_OVERHEAD 40 // size of a (normal) ip + udp header |
50 | #define IP_OVERHEAD 20 // size of a (normal) ip header |
|
|
51 | #define UDP_OVERHEAD (IP_OVERHEAD + 20) // size of a (normal) ip + udp header |
|
|
52 | #define MAX_OVERHEAD UDP_OVERHEAD // the max. overhead of any protocol |
47 | #define ETH_OVERHEAD 14 // the size of an ethernet header |
53 | #define ETH_OVERHEAD 14 // the size of an ethernet header |
48 | #define MAXSIZE (MAX_MTU + VPE_OVERHEAD)// slightly too large, but who cares |
54 | #define MAXSIZE (MAX_MTU + VPE_OVERHEAD)// slightly too large, but who cares |
49 | |
|
|
50 | #define TIMER_GRANULARITY 5 // check for events at least every 5 seconds |
|
|
51 | |
55 | |
52 | #define PKTCACHESIZE 4 // the size of the memory pool for packets |
56 | #define PKTCACHESIZE 4 // the size of the memory pool for packets |
53 | |
57 | |
54 | #define QUEUEDEPTH 16 // the number of packets that will be queued (should be low) |
58 | #define QUEUEDEPTH 16 // the number of packets that will be queued (should be low) |
55 | |
59 | |
56 | #define WINDOWSIZE 256 // sliding window size |
60 | #define WINDOWSIZE 512 // sliding window size |
57 | |
61 | |
58 | extern char *confbase; // directory in which all config files are |
62 | extern char *confbase; // directory in which all config files are |
59 | extern char *thisnode; // config for current node (TODO: remove) |
63 | extern char *thisnode; // config for current node (TODO: remove) |
60 | extern char *pidfilename; // pid file location |
64 | extern char *pidfilename; // pid file location |
61 | |
65 | |
62 | extern time_t now; // globale now variable |
|
|
63 | |
|
|
64 | #endif |
66 | #endif |
65 | |
67 | |