ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/util.h
(Generate patch)

Comparing gvpe/src/util.h (file contents):
Revision 1.22 by pcg, Sun Dec 2 00:09:36 2007 UTC vs.
Revision 1.34 by root, Thu Jan 9 08:15:05 2014 UTC

1/* 1/*
2 util.h -- process management and other utility functions 2 util.h -- process management and other utility functions
3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl> 3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl>
4 2000-2002 Guus Sliepen <guus@sliepen.eu.org> 4 2000-2002 Guus Sliepen <guus@sliepen.eu.org>
5 2003 Marc Lehmann <gvpe@schmorp.de> 5 2003-2013 Marc Lehmann <gvpe@schmorp.de>
6 6
7 This file is part of GVPE. 7 This file is part of GVPE.
8 8
9 GVPE is free software; you can redistribute it and/or modify 9 GVPE is free software; you can redistribute it and/or modify it
10 it under the terms of the GNU General Public License as published by 10 under the terms of the GNU General Public License as published by the
11 the Free Software Foundation; either version 2 of the License, or 11 Free Software Foundation; either version 3 of the License, or (at your
12 (at your option) any later version. 12 option) any later version.
13 13
14 This program is distributed in the hope that it will be useful, 14 This program is distributed in the hope that it will be useful, but
15 but WITHOUT ANY WARRANTY; without even the implied warranty of 15 WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
17 GNU General Public License for more details. 17 Public License for more details.
18 18
19 You should have received a copy of the GNU General Public License 19 You should have received a copy of the GNU General Public License along
20 along with gvpe; if not, write to the Free Software 20 with this program; if not, see <http://www.gnu.org/licenses/>.
21 Foundation, Inc. 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA 21
22 Additional permission under GNU GPL version 3 section 7
23
24 If you modify this Program, or any covered work, by linking or
25 combining it with the OpenSSL project's OpenSSL library (or a modified
26 version of that library), containing parts covered by the terms of the
27 OpenSSL or SSLeay licenses, the licensors of this Program grant you
28 additional permission to convey the resulting work. Corresponding
29 Source for a non-source form of such a combination shall include the
30 source code for the parts of OpenSSL used as well as that of the
31 covered work.
22*/ 32*/
23 33
24#ifndef UTIL_H__ 34#ifndef UTIL_H__
25#define UTIL_H__ 35#define UTIL_H__
26 36
27#include <openssl/rsa.h> 37#include <cstring>
38#include <sys/types.h>
28 39
29#include "gettext.h" 40#include "gettext.h"
30 41
31#include "slog.h" 42#include "slog.h"
32#include "ev_cpp.h" 43#include "ev_cpp.h"
33#include "callback.h" 44#include "callback.h"
45#include "global.h"
34 46
35typedef ev_tstamp tstamp; 47typedef ev_tstamp tstamp;
36 48
37/* 49/*
38 * check for an existing gvpe for this net, and write pid to pidfile 50 * check for an existing gvpe for this net, and write pid to pidfile
71 { 83 {
72 memset (v, -1, sizeof v); 84 memset (v, -1, sizeof v);
73 seq = seqno; 85 seq = seqno;
74 } 86 }
75 87
76 bool recv_ok (u32 seqno) 88 // 0 == ok, 1 == far history, 2 == duplicate in-window, 3 == far future
89 int seqno_classify (u32 seqno)
77 { 90 {
78 if (seqno <= seq - WINDOWSIZE) 91 if (seqno <= seq - WINDOWSIZE)
79 slog (L_ERR, _("received duplicate or outdated packet (received %08lx, expected %08lx)\n" 92 return 1;
80 "possible replay attack, or just massive packet reordering"), seqno, seq + 1);
81 else if (seqno > seq + WINDOWSIZE * 4) 93 else if (seqno > seq + WINDOWSIZE * 16)
82 slog (L_ERR, _("received duplicate or out-of-sync packet (received %08lx, expected %08lx)\n" 94 return 3;
83 "possible replay attack, or just massive packet loss"), seqno, seq + 1);
84 else 95 else
85 { 96 {
86 while (seqno > seq) 97 while (seqno > seq)
87 { 98 {
88 seq++; 99 seq++;
97 u32 s = seqno % WINDOWSIZE; 108 u32 s = seqno % WINDOWSIZE;
98 u32 *cell = v + (s >> 5); 109 u32 *cell = v + (s >> 5);
99 u32 mask = 1 << (s & 31); 110 u32 mask = 1 << (s & 31);
100 111
101 if (*cell & mask) 112 if (*cell & mask)
102 slog (L_ERR, _("received duplicate packet (received %08lx, expected %08lx)\n" 113 return 2;
103 "possible replay attack, or just packet duplication"), seqno, seq + 1);
104 else 114 else
105 { 115 {
106 *cell |= mask; 116 *cell |= mask;
107 return true; 117 return 0;
108 } 118 }
109 } 119 }
110
111 return false;
112 } 120 }
113}; 121};
114 122
115typedef callback0<const char *> run_script_cb; 123typedef callback<const char *()> run_script_cb;
116 124
117// run a shell script (or actually an external program). 125// run a shell script (or actually an external program).
118bool run_script (const run_script_cb &cb, bool wait); 126pid_t run_script (const run_script_cb &cb, bool wait);
127
128void hexdump (const char *header, void *data, int len);
119 129
120#if ENABLE_HTTP_PROXY 130#if ENABLE_HTTP_PROXY
121u8 *base64_encode (const u8 *data, unsigned int len); 131u8 *base64_encode (const u8 *data, unsigned int len);
122#endif 132#endif
123 133
134/* always take more or less the same time to compare */
135bool slow_memeq (const void *a, const void *b, int len);
136
124/*****************************************************************************/ 137/*****************************************************************************/
125 138
126typedef u8 rsaclear[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; 139void rand_fill (void *data, int len);
127typedef u8 rsacrypt[RSA_KEYLEN]; // encrypted challenge
128 140
129static inline void 141template<class T>
130rsa_encrypt (RSA *key, const rsaclear &chg, rsacrypt &encr) 142inline void rand_fill (T &t)
131{ 143{
132 if (RSA_public_encrypt (sizeof chg, 144 rand_fill (&t, sizeof (T));
133 (unsigned char *)&chg, (unsigned char *)&encr,
134 key, RSA_PKCS1_OAEP_PADDING) < 0)
135 fatal ("RSA_public_encrypt error");
136} 145}
137 146
138static inline bool 147/*****************************************************************************/
139rsa_decrypt (RSA *key, const rsacrypt &encr, rsaclear &chg) 148
140{ 149// run work_cb in another thread, call done_cb in main thread when finished
141 return RSA_private_decrypt (sizeof encr, 150// only one work_cb will execute at any one time.
142 (unsigned char *)&encr, (unsigned char *)&chg, 151void async (callback<void ()> work_cb, callback<void ()> done_cb);
143 key, RSA_PKCS1_OAEP_PADDING) > 0;
144}
145 152
146#endif 153#endif
147 154

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines