ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/util.h
(Generate patch)

Comparing gvpe/src/util.h (file contents):
Revision 1.23 by pcg, Sun Dec 2 00:54:52 2007 UTC vs.
Revision 1.33 by root, Wed Jul 17 16:40:58 2013 UTC

1/* 1/*
2 util.h -- process management and other utility functions 2 util.h -- process management and other utility functions
3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl> 3 Copyright (C) 1998-2002 Ivo Timmermans <ivo@o2w.nl>
4 2000-2002 Guus Sliepen <guus@sliepen.eu.org> 4 2000-2002 Guus Sliepen <guus@sliepen.eu.org>
5 2003 Marc Lehmann <gvpe@schmorp.de> 5 2003-2013 Marc Lehmann <gvpe@schmorp.de>
6 6
7 This file is part of GVPE. 7 This file is part of GVPE.
8 8
9 GVPE is free software; you can redistribute it and/or modify 9 GVPE is free software; you can redistribute it and/or modify it
10 it under the terms of the GNU General Public License as published by 10 under the terms of the GNU General Public License as published by the
11 the Free Software Foundation; either version 2 of the License, or 11 Free Software Foundation; either version 3 of the License, or (at your
12 (at your option) any later version. 12 option) any later version.
13 13
14 This program is distributed in the hope that it will be useful, 14 This program is distributed in the hope that it will be useful, but
15 but WITHOUT ANY WARRANTY; without even the implied warranty of 15 WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
17 GNU General Public License for more details. 17 Public License for more details.
18 18
19 You should have received a copy of the GNU General Public License 19 You should have received a copy of the GNU General Public License along
20 along with gvpe; if not, write to the Free Software 20 with this program; if not, see <http://www.gnu.org/licenses/>.
21 Foundation, Inc. 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA 21
22 Additional permission under GNU GPL version 3 section 7
23
24 If you modify this Program, or any covered work, by linking or
25 combining it with the OpenSSL project's OpenSSL library (or a modified
26 version of that library), containing parts covered by the terms of the
27 OpenSSL or SSLeay licenses, the licensors of this Program grant you
28 additional permission to convey the resulting work. Corresponding
29 Source for a non-source form of such a combination shall include the
30 source code for the parts of OpenSSL used as well as that of the
31 covered work.
22*/ 32*/
23 33
24#ifndef UTIL_H__ 34#ifndef UTIL_H__
25#define UTIL_H__ 35#define UTIL_H__
26 36
27#include <openssl/rsa.h> 37#include <cstring>
38#include <sys/types.h>
28 39
29#include "gettext.h" 40#include "gettext.h"
30 41
31#include "slog.h" 42#include "slog.h"
32#include "ev_cpp.h" 43#include "ev_cpp.h"
33#include "callback.h" 44#include "callback.h"
45#include "global.h"
34 46
35typedef ev_tstamp tstamp; 47typedef ev_tstamp tstamp;
36 48
37/* 49/*
38 * check for an existing gvpe for this net, and write pid to pidfile 50 * check for an existing gvpe for this net, and write pid to pidfile
71 { 83 {
72 memset (v, -1, sizeof v); 84 memset (v, -1, sizeof v);
73 seq = seqno; 85 seq = seqno;
74 } 86 }
75 87
76 bool recv_ok (u32 seqno) 88 // 0 == ok, 1 == far history, 2 == duplicate in-window, 3 == far future
89 int seqno_classify (u32 seqno)
77 { 90 {
78 if (seqno <= seq - WINDOWSIZE) 91 if (seqno <= seq - WINDOWSIZE)
79 slog (L_ERR, _("received duplicate or outdated packet (received %08lx, expected %08lx)\n" 92 return 1;
80 "possible replay attack, or just massive packet reordering"), seqno, seq + 1);
81 else if (seqno > seq + WINDOWSIZE * 4) 93 else if (seqno > seq + WINDOWSIZE * 16)
82 slog (L_ERR, _("received duplicate or out-of-sync packet (received %08lx, expected %08lx)\n" 94 return 3;
83 "possible replay attack, or just massive packet loss"), seqno, seq + 1);
84 else 95 else
85 { 96 {
86 while (seqno > seq) 97 while (seqno > seq)
87 { 98 {
88 seq++; 99 seq++;
97 u32 s = seqno % WINDOWSIZE; 108 u32 s = seqno % WINDOWSIZE;
98 u32 *cell = v + (s >> 5); 109 u32 *cell = v + (s >> 5);
99 u32 mask = 1 << (s & 31); 110 u32 mask = 1 << (s & 31);
100 111
101 if (*cell & mask) 112 if (*cell & mask)
102 slog (L_ERR, _("received duplicate packet (received %08lx, expected %08lx)\n" 113 return 2;
103 "possible replay attack, or just packet duplication"), seqno, seq + 1);
104 else 114 else
105 { 115 {
106 *cell |= mask; 116 *cell |= mask;
107 return true; 117 return 0;
108 } 118 }
109 } 119 }
110
111 return false;
112 } 120 }
113}; 121};
114 122
115typedef callback<const char * ()> run_script_cb; 123typedef callback<const char *()> run_script_cb;
116 124
117// run a shell script (or actually an external program). 125// run a shell script (or actually an external program).
118bool run_script (const run_script_cb &cb, bool wait); 126pid_t run_script (const run_script_cb &cb, bool wait);
127
128void hexdump (const char *header, void *data, int len);
119 129
120#if ENABLE_HTTP_PROXY 130#if ENABLE_HTTP_PROXY
121u8 *base64_encode (const u8 *data, unsigned int len); 131u8 *base64_encode (const u8 *data, unsigned int len);
122#endif 132#endif
123 133
124/*****************************************************************************/ 134/*****************************************************************************/
125 135
126typedef u8 rsaclear[RSA_KEYLEN - RSA_OVERHEAD]; // challenge data; 136void rand_fill (void *data, int len);
127typedef u8 rsacrypt[RSA_KEYLEN]; // encrypted challenge
128 137
129static inline void 138template<class T>
130rsa_encrypt (RSA *key, const rsaclear &chg, rsacrypt &encr) 139inline void rand_fill (T &t)
131{ 140{
132 if (RSA_public_encrypt (sizeof chg, 141 rand_fill (&t, sizeof (T));
133 (unsigned char *)&chg, (unsigned char *)&encr,
134 key, RSA_PKCS1_OAEP_PADDING) < 0)
135 fatal ("RSA_public_encrypt error");
136} 142}
137 143
138static inline bool 144/*****************************************************************************/
139rsa_decrypt (RSA *key, const rsacrypt &encr, rsaclear &chg) 145
140{ 146// run work_cb in another thread, call done_cb in main thread when finished
141 return RSA_private_decrypt (sizeof encr, 147// only one work_cb will execute at any one time.
142 (unsigned char *)&encr, (unsigned char *)&chg, 148void async (callback<void ()> work_cb, callback<void ()> done_cb);
143 key, RSA_PKCS1_OAEP_PADDING) > 0;
144}
145 149
146#endif 150#endif
147 151

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines