Annotation of src/usr.bin/ssh/kex.h, Revision 1.13
1.13 ! stevesk 1: /* $OpenBSD: kex.h,v 1.12 2001/01/29 01:58:16 niklas Exp $ */
1.12 niklas 2:
1.1 markus 3: /*
4: * Copyright (c) 2000 Markus Friedl. All rights reserved.
5: *
6: * Redistribution and use in source and binary forms, with or without
7: * modification, are permitted provided that the following conditions
8: * are met:
9: * 1. Redistributions of source code must retain the above copyright
10: * notice, this list of conditions and the following disclaimer.
11: * 2. Redistributions in binary form must reproduce the above copyright
12: * notice, this list of conditions and the following disclaimer in the
13: * documentation and/or other materials provided with the distribution.
14: *
15: * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
16: * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
17: * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
18: * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
19: * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
20: * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
21: * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
22: * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
23: * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
24: * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
25: */
26: #ifndef KEX_H
27: #define KEX_H
28:
1.5 provos 29: #define KEX_DH1 "diffie-hellman-group1-sha1"
30: #define KEX_DHGEX "diffie-hellman-group-exchange-sha1"
31: #define KEX_DSS "ssh-dss"
1.1 markus 32:
33: enum kex_init_proposals {
34: PROPOSAL_KEX_ALGS,
35: PROPOSAL_SERVER_HOST_KEY_ALGS,
36: PROPOSAL_ENC_ALGS_CTOS,
37: PROPOSAL_ENC_ALGS_STOC,
38: PROPOSAL_MAC_ALGS_CTOS,
39: PROPOSAL_MAC_ALGS_STOC,
40: PROPOSAL_COMP_ALGS_CTOS,
41: PROPOSAL_COMP_ALGS_STOC,
42: PROPOSAL_LANG_CTOS,
43: PROPOSAL_LANG_STOC,
44: PROPOSAL_MAX
45: };
46:
47: enum kex_modes {
48: MODE_IN,
49: MODE_OUT,
50: MODE_MAX
51: };
52:
1.5 provos 53: enum kex_exchange {
54: DH_GRP1_SHA1,
55: DH_GEX_SHA1
56: };
1.13 ! stevesk 57:
1.1 markus 58: typedef struct Kex Kex;
59: typedef struct Mac Mac;
60: typedef struct Comp Comp;
61: typedef struct Enc Enc;
62:
63: struct Enc {
1.6 markus 64: char *name;
65: Cipher *cipher;
1.1 markus 66: int enabled;
1.10 markus 67: u_char *key;
68: u_char *iv;
1.1 markus 69: };
70: struct Mac {
1.6 markus 71: char *name;
72: int enabled;
1.1 markus 73: EVP_MD *md;
74: int mac_len;
1.10 markus 75: u_char *key;
1.1 markus 76: int key_len;
77: };
78: struct Comp {
79: int type;
80: int enabled;
81: char *name;
82: };
83: struct Kex {
84: Enc enc [MODE_MAX];
85: Mac mac [MODE_MAX];
86: Comp comp[MODE_MAX];
87: int we_need;
88: int server;
89: char *name;
1.8 markus 90: int hostkey_type;
1.5 provos 91: int kex_type;
1.1 markus 92: };
93:
94: Buffer *kex_init(char *myproposal[PROPOSAL_MAX]);
1.3 markus 95: void
96: kex_exchange_kexinit(
97: Buffer *my_kexinit, Buffer *peer_kexint,
98: char *peer_proposal[PROPOSAL_MAX]);
99: Kex *
100: kex_choose_conf(char *cprop[PROPOSAL_MAX],
101: char *sprop[PROPOSAL_MAX], int server);
1.10 markus 102: int kex_derive_keys(Kex *k, u_char *hash, BIGNUM *shared_secret);
1.3 markus 103: void packet_set_kex(Kex *k);
1.2 markus 104: int dh_pub_is_valid(DH *dh, BIGNUM *dh_pub);
1.5 provos 105: DH *dh_new_group_asc(const char *, const char *);
106: DH *dh_new_group(BIGNUM *, BIGNUM *);
1.11 markus 107: void dh_gen_key(DH *);
108: DH *dh_new_group1(void);
1.1 markus 109:
1.10 markus 110: u_char *
1.1 markus 111: kex_hash(
112: char *client_version_string,
113: char *server_version_string,
114: char *ckexinit, int ckexinitlen,
115: char *skexinit, int skexinitlen,
116: char *serverhostkeyblob, int sbloblen,
117: BIGNUM *client_dh_pub,
118: BIGNUM *server_dh_pub,
119: BIGNUM *shared_secret);
120:
1.10 markus 121: u_char *
1.5 provos 122: kex_hash_gex(
123: char *client_version_string,
124: char *server_version_string,
125: char *ckexinit, int ckexinitlen,
126: char *skexinit, int skexinitlen,
127: char *serverhostkeyblob, int sbloblen,
128: int minbits, BIGNUM *prime, BIGNUM *gen,
129: BIGNUM *client_dh_pub,
130: BIGNUM *server_dh_pub,
131: BIGNUM *shared_secret);
1.1 markus 132: #endif