]>
Commit | Line | Data |
---|---|---|
30460aeb | 1 | /* $OpenBSD: monitor_wrap.h,v 1.20 2006/08/03 03:34:42 deraadt Exp $ */ |
826f3a39 | 2 | |
3 | /* | |
4 | * Copyright 2002 Niels Provos <provos@citi.umich.edu> | |
5 | * All rights reserved. | |
6 | * | |
7 | * Redistribution and use in source and binary forms, with or without | |
8 | * modification, are permitted provided that the following conditions | |
9 | * are met: | |
10 | * 1. Redistributions of source code must retain the above copyright | |
11 | * notice, this list of conditions and the following disclaimer. | |
12 | * 2. Redistributions in binary form must reproduce the above copyright | |
13 | * notice, this list of conditions and the following disclaimer in the | |
14 | * documentation and/or other materials provided with the distribution. | |
15 | * | |
16 | * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR | |
17 | * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES | |
18 | * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. | |
19 | * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, | |
20 | * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT | |
21 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, | |
22 | * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY | |
23 | * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT | |
24 | * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF | |
25 | * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. | |
26 | */ | |
27 | ||
28 | #ifndef _MM_WRAP_H_ | |
29 | #define _MM_WRAP_H_ | |
826f3a39 | 30 | |
31 | extern int use_privsep; | |
32 | #define PRIVSEP(x) (use_privsep ? mm_##x : x) | |
33 | ||
34 | enum mm_keytype {MM_NOKEY, MM_HOSTKEY, MM_USERKEY, MM_RSAHOSTKEY, MM_RSAUSERKEY}; | |
35 | ||
36 | struct monitor; | |
37 | struct mm_master; | |
826f3a39 | 38 | struct Authctxt; |
39 | ||
540d72c3 | 40 | int mm_is_monitor(void); |
826f3a39 | 41 | DH *mm_choose_dh(int, int, int); |
42 | int mm_key_sign(Key *, u_char **, u_int *, u_char *, u_int); | |
43 | void mm_inform_authserv(char *, char *); | |
44 | struct passwd *mm_getpwnamallow(const char *); | |
d03f4262 | 45 | char *mm_auth2_read_banner(void); |
826f3a39 | 46 | int mm_auth_password(struct Authctxt *, char *); |
47 | int mm_key_allowed(enum mm_keytype, char *, char *, Key *); | |
48 | int mm_user_key_allowed(struct passwd *, Key *); | |
49 | int mm_hostbased_key_allowed(struct passwd *, char *, char *, Key *); | |
50 | int mm_auth_rhosts_rsa_key_allowed(struct passwd *, char *, char *, Key *); | |
51 | int mm_key_verify(Key *, u_char *, u_int, u_char *, u_int); | |
52 | int mm_auth_rsa_key_allowed(struct passwd *, BIGNUM *, Key **); | |
53 | int mm_auth_rsa_verify_response(Key *, BIGNUM *, u_char *); | |
54 | BIGNUM *mm_auth_rsa_generate_challenge(Key *); | |
55 | ||
7cac2b65 | 56 | #ifdef GSSAPI |
7e82606e | 57 | OM_uint32 mm_ssh_gssapi_server_ctx(Gssctxt **, gss_OID); |
58 | OM_uint32 mm_ssh_gssapi_accept_ctx(Gssctxt *, | |
59 | gss_buffer_desc *, gss_buffer_desc *, OM_uint32 *); | |
7cac2b65 | 60 | int mm_ssh_gssapi_userok(char *user); |
540d72c3 | 61 | OM_uint32 mm_ssh_gssapi_checkmic(Gssctxt *, gss_buffer_t, gss_buffer_t); |
fe4ad273 | 62 | OM_uint32 mm_ssh_gssapi_sign(Gssctxt *, gss_buffer_t, gss_buffer_t); |
540d72c3 | 63 | int mm_ssh_gssapi_localname(char **user); |
64 | OM_uint32 mm_gss_indicate_mechs(OM_uint32 *minor_status, | |
65 | gss_OID_set *mech_set); | |
66 | char *mm_ssh_gssapi_last_error(Gssctxt *ctxt, OM_uint32 *maj, OM_uint32 *min); | |
7cac2b65 | 67 | #endif |
68 | ||
826f3a39 | 69 | #ifdef USE_PAM |
12a403af | 70 | void mm_start_pam(struct Authctxt *); |
7cac2b65 | 71 | u_int mm_do_pam_account(void); |
72 | void *mm_sshpam_init_ctx(struct Authctxt *); | |
73 | int mm_sshpam_query(void *, char **, char **, u_int *, char ***, u_int **); | |
74 | int mm_sshpam_respond(void *, u_int, char **); | |
75 | void mm_sshpam_free_ctx(void *); | |
826f3a39 | 76 | #endif |
77 | ||
dfddba3d | 78 | #ifdef SSH_AUDIT_EVENTS |
79 | #include "audit.h" | |
80 | void mm_audit_event(ssh_audit_event_t); | |
81 | void mm_audit_run_command(const char *); | |
82 | #endif | |
83 | ||
540d72c3 | 84 | struct Session; |
826f3a39 | 85 | void mm_terminate(void); |
30460aeb | 86 | int mm_pty_allocate(int *, int *, char *, size_t); |
540d72c3 | 87 | void mm_session_pty_cleanup2(struct Session *); |
826f3a39 | 88 | |
89 | /* SSHv1 interfaces */ | |
90 | void mm_ssh1_session_id(u_char *); | |
91 | int mm_ssh1_session_key(BIGNUM *); | |
92 | ||
93 | /* Key export functions */ | |
94 | struct Newkeys *mm_newkeys_from_blob(u_char *, int); | |
95 | int mm_newkeys_to_blob(int, u_char **, u_int *); | |
96 | ||
97 | void monitor_apply_keystate(struct monitor *); | |
98 | void mm_get_keystate(struct monitor *); | |
99 | void mm_send_keystate(struct monitor*); | |
100 | ||
101 | /* bsdauth */ | |
102 | int mm_bsdauth_query(void *, char **, char **, u_int *, char ***, u_int **); | |
103 | int mm_bsdauth_respond(void *, u_int, char **); | |
104 | ||
105 | /* skey */ | |
106 | int mm_skey_query(void *, char **, char **, u_int *, char ***, u_int **); | |
107 | int mm_skey_respond(void *, u_int, char **); | |
108 | ||
109 | /* zlib allocation hooks */ | |
110 | ||
111 | void *mm_zalloc(struct mm_master *, u_int, u_int); | |
112 | void mm_zfree(struct mm_master *, void *); | |
113 | void mm_init_compression(struct mm_master *); | |
114 | ||
30460aeb | 115 | #endif /* _MM_WRAP_H_ */ |