ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/util.h
(Generate patch)

Comparing gvpe/src/util.h (file contents):
Revision 1.20 by pcg, Sat Nov 10 05:14:22 2007 UTC vs.
Revision 1.34 by root, Thu Jan 9 08:15:05 2014 UTC

1/* 1/*
2 util.h -- process management and other utility functions 2 util.h -- process management and other utility functions
3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl> 3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl>
4 2000-2002 Guus Sliepen <guus@sliepen.eu.org> 4 2000-2002 Guus Sliepen <guus@sliepen.eu.org>
5 2003 Marc Lehmann <gvpe@schmorp.de> 5 2003-2013 Marc Lehmann <gvpe@schmorp.de>
6 6
7 This file is part of GVPE. 7 This file is part of GVPE.
8 8
9 GVPE is free software; you can redistribute it and/or modify 9 GVPE is free software; you can redistribute it and/or modify it
10 it under the terms of the GNU General Public License as published by 10 under the terms of the GNU General Public License as published by the
11 the Free Software Foundation; either version 2 of the License, or 11 Free Software Foundation; either version 3 of the License, or (at your
12 (at your option) any later version. 12 option) any later version.
13 13
14 This program is distributed in the hope that it will be useful, 14 This program is distributed in the hope that it will be useful, but
15 but WITHOUT ANY WARRANTY; without even the implied warranty of 15 WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
17 GNU General Public License for more details. 17 Public License for more details.
18 18
19 You should have received a copy of the GNU General Public License 19 You should have received a copy of the GNU General Public License along
20 along with gvpe; if not, write to the Free Software 20 with this program; if not, see <http://www.gnu.org/licenses/>.
21 Foundation, Inc. 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA 21
22 Additional permission under GNU GPL version 3 section 7
23
24 If you modify this Program, or any covered work, by linking or
25 combining it with the OpenSSL project's OpenSSL library (or a modified
26 version of that library), containing parts covered by the terms of the
27 OpenSSL or SSLeay licenses, the licensors of this Program grant you
28 additional permission to convey the resulting work. Corresponding
29 Source for a non-source form of such a combination shall include the
30 source code for the parts of OpenSSL used as well as that of the
31 covered work.
22*/ 32*/
23 33
24#ifndef UTIL_H__ 34#ifndef UTIL_H__
25#define UTIL_H__ 35#define UTIL_H__
26 36
27#include <openssl/rsa.h> 37#include <cstring>
38#include <sys/types.h>
28 39
29#include "gettext.h" 40#include "gettext.h"
30 41
31#include "slog.h" 42#include "slog.h"
32#include "ev_cpp.h" 43#include "ev_cpp.h"
33#include "callback.h" 44#include "callback.h"
45#include "global.h"
34 46
35typedef ev::ev_tstamp tstamp; 47typedef ev_tstamp tstamp;
36 48
37/* 49/*
38 * check for an existing gvpe for this net, and write pid to pidfile 50 * check for an existing gvpe for this net, and write pid to pidfile
39 */ 51 */
40extern int write_pidfile (void); 52extern int write_pidfile (void);
60 72
61extern void id2mac (unsigned int id, void *m); 73extern void id2mac (unsigned int id, void *m);
62 74
63#define mac2id(p) ((p)[0] & 0x01 ? 0 : ((p)[4] << 8) | (p)[5]) 75#define mac2id(p) ((p)[0] & 0x01 ? 0 : ((p)[4] << 8) | (p)[5])
64 76
65struct sliding_window { 77struct sliding_window
78{
66 u32 v[(WINDOWSIZE + 31) / 32]; 79 u32 v[(WINDOWSIZE + 31) / 32];
67 u32 seq; 80 u32 seq;
68 81
69 void reset (u32 seqno) 82 void reset (u32 seqno)
70 { 83 {
71 memset (v, -1, sizeof v); 84 memset (v, -1, sizeof v);
72 seq = seqno; 85 seq = seqno;
73 } 86 }
74 87
75 bool recv_ok (u32 seqno) 88 // 0 == ok, 1 == far history, 2 == duplicate in-window, 3 == far future
89 int seqno_classify (u32 seqno)
76 { 90 {
77 if (seqno <= seq - WINDOWSIZE) 91 if (seqno <= seq - WINDOWSIZE)
78 slog (L_ERR, _("received duplicate or outdated packet (received %08lx, expected %08lx)\n" 92 return 1;
79 "possible replay attack, or just massive packet reordering"), seqno, seq + 1);
80 else if (seqno > seq + WINDOWSIZE * 4) 93 else if (seqno > seq + WINDOWSIZE * 16)
81 slog (L_ERR, _("received duplicate or out-of-sync packet (received %08lx, expected %08lx)\n" 94 return 3;
82 "possible replay attack, or just massive packet loss"), seqno, seq + 1);
83 else 95 else
84 { 96 {
85 while (seqno > seq) 97 while (seqno > seq)
86 { 98 {
87 seq++; 99 seq++;
96 u32 s = seqno % WINDOWSIZE; 108 u32 s = seqno % WINDOWSIZE;
97 u32 *cell = v + (s >> 5); 109 u32 *cell = v + (s >> 5);
98 u32 mask = 1 << (s & 31); 110 u32 mask = 1 << (s & 31);
99 111
100 if (*cell & mask) 112 if (*cell & mask)
101 slog (L_ERR, _("received duplicate packet (received %08lx, expected %08lx)\n" 113 return 2;
102 "possible replay attack, or just packet duplication"), seqno, seq + 1);
103 else 114 else
104 { 115 {
105 *cell |= mask; 116 *cell |= mask;
106 return true; 117 return 0;
107 } 118 }
108 } 119 }
109
110 return false;
111 } 120 }
112}; 121};
113 122
114typedef callback0<const char *> run_script_cb; 123typedef callback<const char *()> run_script_cb;
115 124
116// run a shell script (or actually an external program). 125// run a shell script (or actually an external program).
117bool run_script (const run_script_cb &cb, bool wait); 126pid_t run_script (const run_script_cb &cb, bool wait);
127
128void hexdump (const char *header, void *data, int len);
118 129
119#if ENABLE_HTTP_PROXY 130#if ENABLE_HTTP_PROXY
120u8 *base64_encode (const u8 *data, unsigned int len); 131u8 *base64_encode (const u8 *data, unsigned int len);
121#endif 132#endif
122 133
134/* always take more or less the same time to compare */
135bool slow_memeq (const void *a, const void *b, int len);
136
123/*****************************************************************************/ 137/*****************************************************************************/
124 138
125typedef u8 rsaclear[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; 139void rand_fill (void *data, int len);
126typedef u8 rsacrypt[RSA_KEYLEN]; // encrypted challenge
127 140
128static inline void 141template<class T>
129rsa_encrypt (RSA *key, const rsaclear &chg, rsacrypt &encr) 142inline void rand_fill (T &t)
130{ 143{
131 if (RSA_public_encrypt (sizeof chg, 144 rand_fill (&t, sizeof (T));
132 (unsigned char *)&chg, (unsigned char *)&encr,
133 key, RSA_PKCS1_OAEP_PADDING) < 0)
134 fatal ("RSA_public_encrypt error");
135} 145}
136 146
137static inline bool 147/*****************************************************************************/
138rsa_decrypt (RSA *key, const rsacrypt &encr, rsaclear &chg) 148
139{ 149// run work_cb in another thread, call done_cb in main thread when finished
140 return RSA_private_decrypt (sizeof encr, 150// only one work_cb will execute at any one time.
141 (unsigned char *)&encr, (unsigned char *)&chg, 151void async (callback<void ()> work_cb, callback<void ()> done_cb);
142 key, RSA_PKCS1_OAEP_PADDING) > 0;
143}
144 152
145#endif 153#endif
146 154

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines