[BACK]Return to ssh-gss.h CVS log [TXT][DIR] Up to [local] / src / usr.bin / ssh

Annotation of src/usr.bin/ssh/ssh-gss.h, Revision 1.1.2.1

1.1.2.1 ! brad        1: /*     $OpenBSD: ssh-gss.h,v 1.4 2003/11/17 11:06:07 markus Exp $      */
1.1       markus      2: /*
                      3:  * Copyright (c) 2001-2003 Simon Wilkinson. All rights reserved.
                      4:  *
                      5:  * Redistribution and use in source and binary forms, with or without
                      6:  * modification, are permitted provided that the following conditions
                      7:  * are met:
                      8:  * 1. Redistributions of source code must retain the above copyright
                      9:  *    notice, this list of conditions and the following disclaimer.
                     10:  * 2. Redistributions in binary form must reproduce the above copyright
                     11:  *    notice, this list of conditions and the following disclaimer in the
                     12:  *    documentation and/or other materials provided with the distribution.
                     13:  *
                     14:  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR `AS IS'' AND ANY EXPRESS OR
                     15:  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
                     16:  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
                     17:  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
                     18:  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
                     19:  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
                     20:  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
                     21:  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
                     22:  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
                     23:  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
                     24:  */
                     25:
                     26: #ifndef _SSH_GSS_H
                     27: #define _SSH_GSS_H
                     28:
                     29: #ifdef GSSAPI
                     30:
                     31: #include "buffer.h"
                     32:
                     33: #include <gssapi.h>
                     34:
                     35: /* draft-ietf-secsh-gsskeyex-06 */
                     36: #define SSH2_MSG_USERAUTH_GSSAPI_RESPONSE              60
                     37: #define SSH2_MSG_USERAUTH_GSSAPI_TOKEN                 61
                     38: #define SSH2_MSG_USERAUTH_GSSAPI_EXCHANGE_COMPLETE     63
                     39: #define SSH2_MSG_USERAUTH_GSSAPI_ERROR                 64
                     40: #define SSH2_MSG_USERAUTH_GSSAPI_ERRTOK                        65
1.1.2.1 ! brad       41: #define SSH2_MSG_USERAUTH_GSSAPI_MIC                   66
1.1       markus     42:
                     43: #define SSH_GSS_OIDTYPE 0x06
                     44:
                     45: typedef struct {
                     46:        char *filename;
                     47:        char *envvar;
                     48:        char *envval;
                     49:        void *data;
                     50: } ssh_gssapi_ccache;
                     51:
                     52: typedef struct {
                     53:        gss_buffer_desc displayname;
                     54:        gss_buffer_desc exportedname;
                     55:        gss_cred_id_t creds;
                     56:        struct ssh_gssapi_mech_struct *mech;
                     57:        ssh_gssapi_ccache store;
                     58: } ssh_gssapi_client;
                     59:
                     60: typedef struct ssh_gssapi_mech_struct {
                     61:        char *enc_name;
                     62:        char *name;
                     63:        gss_OID_desc oid;
                     64:        int (*dochild) (ssh_gssapi_client *);
                     65:        int (*userok) (ssh_gssapi_client *, char *);
                     66:        int (*localname) (ssh_gssapi_client *, char **);
                     67:        void (*storecreds) (ssh_gssapi_client *);
                     68: } ssh_gssapi_mech;
                     69:
                     70: typedef struct {
                     71:        OM_uint32       major; /* both */
                     72:        OM_uint32       minor; /* both */
                     73:        gss_ctx_id_t    context; /* both */
                     74:        gss_name_t      name; /* both */
                     75:        gss_OID         oid; /* client */
                     76:        gss_cred_id_t   creds; /* server */
                     77:        gss_name_t      client; /* server */
                     78:        gss_cred_id_t   client_creds; /* server */
                     79: } Gssctxt;
                     80:
                     81: extern ssh_gssapi_mech *supported_mechs[];
                     82:
                     83: int  ssh_gssapi_check_oid(Gssctxt *ctx, void *data, size_t len);
                     84: void ssh_gssapi_set_oid_data(Gssctxt *ctx, void *data, size_t len);
                     85: void ssh_gssapi_set_oid(Gssctxt *ctx, gss_OID oid);
                     86: void ssh_gssapi_supported_oids(gss_OID_set *oidset);
                     87: ssh_gssapi_mech *ssh_gssapi_get_ctype(Gssctxt *ctxt);
                     88:
                     89: OM_uint32 ssh_gssapi_import_name(Gssctxt *ctx, const char *host);
                     90: OM_uint32 ssh_gssapi_acquire_cred(Gssctxt *ctx);
                     91: OM_uint32 ssh_gssapi_init_ctx(Gssctxt *ctx, int deleg_creds,
                     92:     gss_buffer_desc *recv_tok, gss_buffer_desc *send_tok, OM_uint32 *flags);
                     93: OM_uint32 ssh_gssapi_accept_ctx(Gssctxt *ctx,
                     94:     gss_buffer_desc *recv_tok, gss_buffer_desc *send_tok, OM_uint32 *flags);
                     95: OM_uint32 ssh_gssapi_getclient(Gssctxt *ctx, ssh_gssapi_client *);
                     96: void ssh_gssapi_error(Gssctxt *ctx);
                     97: char *ssh_gssapi_last_error(Gssctxt *ctxt, OM_uint32 *maj, OM_uint32 *min);
                     98: void ssh_gssapi_build_ctx(Gssctxt **ctx);
                     99: void ssh_gssapi_delete_ctx(Gssctxt **ctx);
1.1.2.1 ! brad      100: OM_uint32 ssh_gssapi_sign(Gssctxt *, gss_buffer_t, gss_buffer_t);
1.1       markus    101: OM_uint32 ssh_gssapi_server_ctx(Gssctxt **ctx, gss_OID oid);
1.1.2.1 ! brad      102: void ssh_gssapi_buildmic(Buffer *, const char *, const char *, const char *);
1.1       markus    103:
                    104: /* In the server */
                    105: int ssh_gssapi_userok(char *name);
1.1.2.1 ! brad      106: OM_uint32 ssh_gssapi_checkmic(Gssctxt *, gss_buffer_t, gss_buffer_t);
1.1       markus    107: void ssh_gssapi_do_child(char ***envp, u_int *envsizep);
1.1.2.1 ! brad      108: void ssh_gssapi_cleanup_creds(void);
1.1       markus    109: void ssh_gssapi_storecreds(void);
                    110:
                    111: #endif /* GSSAPI */
                    112:
                    113: #endif /* _SSH_GSS_H */