]>
Commit | Line | Data |
---|---|---|
b5afdff5 | 1 | /* $OpenBSD: monitor_wrap.h,v 1.22 2009/03/05 07:18:19 djm Exp $ */ |
826f3a39 | 2 | |
3 | /* | |
4 | * Copyright 2002 Niels Provos <provos@citi.umich.edu> | |
5 | * All rights reserved. | |
6 | * | |
7 | * Redistribution and use in source and binary forms, with or without | |
8 | * modification, are permitted provided that the following conditions | |
9 | * are met: | |
10 | * 1. Redistributions of source code must retain the above copyright | |
11 | * notice, this list of conditions and the following disclaimer. | |
12 | * 2. Redistributions in binary form must reproduce the above copyright | |
13 | * notice, this list of conditions and the following disclaimer in the | |
14 | * documentation and/or other materials provided with the distribution. | |
15 | * | |
16 | * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR | |
17 | * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES | |
18 | * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. | |
19 | * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, | |
20 | * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT | |
21 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, | |
22 | * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY | |
23 | * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT | |
24 | * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF | |
25 | * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. | |
26 | */ | |
27 | ||
28 | #ifndef _MM_WRAP_H_ | |
29 | #define _MM_WRAP_H_ | |
826f3a39 | 30 | |
31 | extern int use_privsep; | |
32 | #define PRIVSEP(x) (use_privsep ? mm_##x : x) | |
33 | ||
34 | enum mm_keytype {MM_NOKEY, MM_HOSTKEY, MM_USERKEY, MM_RSAHOSTKEY, MM_RSAUSERKEY}; | |
35 | ||
36 | struct monitor; | |
37 | struct mm_master; | |
826f3a39 | 38 | struct Authctxt; |
39 | ||
540d72c3 | 40 | int mm_is_monitor(void); |
826f3a39 | 41 | DH *mm_choose_dh(int, int, int); |
42 | int mm_key_sign(Key *, u_char **, u_int *, u_char *, u_int); | |
43 | void mm_inform_authserv(char *, char *); | |
44 | struct passwd *mm_getpwnamallow(const char *); | |
d03f4262 | 45 | char *mm_auth2_read_banner(void); |
826f3a39 | 46 | int mm_auth_password(struct Authctxt *, char *); |
47 | int mm_key_allowed(enum mm_keytype, char *, char *, Key *); | |
48 | int mm_user_key_allowed(struct passwd *, Key *); | |
49 | int mm_hostbased_key_allowed(struct passwd *, char *, char *, Key *); | |
50 | int mm_auth_rhosts_rsa_key_allowed(struct passwd *, char *, char *, Key *); | |
51 | int mm_key_verify(Key *, u_char *, u_int, u_char *, u_int); | |
52 | int mm_auth_rsa_key_allowed(struct passwd *, BIGNUM *, Key **); | |
53 | int mm_auth_rsa_verify_response(Key *, BIGNUM *, u_char *); | |
54 | BIGNUM *mm_auth_rsa_generate_challenge(Key *); | |
55 | ||
7cac2b65 | 56 | #ifdef GSSAPI |
7e82606e | 57 | OM_uint32 mm_ssh_gssapi_server_ctx(Gssctxt **, gss_OID); |
58 | OM_uint32 mm_ssh_gssapi_accept_ctx(Gssctxt *, | |
59 | gss_buffer_desc *, gss_buffer_desc *, OM_uint32 *); | |
09dcbb73 | 60 | int mm_ssh_gssapi_userok(char *user, struct passwd *, int gssapi_keyex); |
540d72c3 | 61 | OM_uint32 mm_ssh_gssapi_checkmic(Gssctxt *, gss_buffer_t, gss_buffer_t); |
fe4ad273 | 62 | OM_uint32 mm_ssh_gssapi_sign(Gssctxt *, gss_buffer_t, gss_buffer_t); |
540d72c3 | 63 | int mm_ssh_gssapi_localname(char **user); |
64 | OM_uint32 mm_gss_indicate_mechs(OM_uint32 *minor_status, | |
65 | gss_OID_set *mech_set); | |
66 | char *mm_ssh_gssapi_last_error(Gssctxt *ctxt, OM_uint32 *maj, OM_uint32 *min); | |
f97edba6 | 67 | int mm_ssh_gssapi_update_creds(ssh_gssapi_ccache *); |
7cac2b65 | 68 | #endif |
69 | ||
826f3a39 | 70 | #ifdef USE_PAM |
12a403af | 71 | void mm_start_pam(struct Authctxt *); |
7cac2b65 | 72 | u_int mm_do_pam_account(void); |
73 | void *mm_sshpam_init_ctx(struct Authctxt *); | |
74 | int mm_sshpam_query(void *, char **, char **, u_int *, char ***, u_int **); | |
75 | int mm_sshpam_respond(void *, u_int, char **); | |
76 | void mm_sshpam_free_ctx(void *); | |
826f3a39 | 77 | #endif |
78 | ||
dfddba3d | 79 | #ifdef SSH_AUDIT_EVENTS |
80 | #include "audit.h" | |
81 | void mm_audit_event(ssh_audit_event_t); | |
82 | void mm_audit_run_command(const char *); | |
83 | #endif | |
84 | ||
540d72c3 | 85 | struct Session; |
826f3a39 | 86 | void mm_terminate(void); |
30460aeb | 87 | int mm_pty_allocate(int *, int *, char *, size_t); |
540d72c3 | 88 | void mm_session_pty_cleanup2(struct Session *); |
826f3a39 | 89 | |
90 | /* SSHv1 interfaces */ | |
91 | void mm_ssh1_session_id(u_char *); | |
92 | int mm_ssh1_session_key(BIGNUM *); | |
93 | ||
94 | /* Key export functions */ | |
95 | struct Newkeys *mm_newkeys_from_blob(u_char *, int); | |
96 | int mm_newkeys_to_blob(int, u_char **, u_int *); | |
97 | ||
98 | void monitor_apply_keystate(struct monitor *); | |
99 | void mm_get_keystate(struct monitor *); | |
100 | void mm_send_keystate(struct monitor*); | |
101 | ||
102 | /* bsdauth */ | |
103 | int mm_bsdauth_query(void *, char **, char **, u_int *, char ***, u_int **); | |
104 | int mm_bsdauth_respond(void *, u_int, char **); | |
105 | ||
106 | /* skey */ | |
107 | int mm_skey_query(void *, char **, char **, u_int *, char ***, u_int **); | |
108 | int mm_skey_respond(void *, u_int, char **); | |
109 | ||
5262cbfb | 110 | /* jpake */ |
b5afdff5 | 111 | struct modp_group; |
5262cbfb | 112 | void mm_auth2_jpake_get_pwdata(struct Authctxt *, BIGNUM **, char **, char **); |
b5afdff5 | 113 | void mm_jpake_step1(struct modp_group *, u_char **, u_int *, |
5262cbfb | 114 | BIGNUM **, BIGNUM **, BIGNUM **, BIGNUM **, |
115 | u_char **, u_int *, u_char **, u_int *); | |
b5afdff5 | 116 | void mm_jpake_step2(struct modp_group *, BIGNUM *, |
5262cbfb | 117 | BIGNUM *, BIGNUM *, BIGNUM *, BIGNUM *, |
118 | const u_char *, u_int, const u_char *, u_int, | |
119 | const u_char *, u_int, const u_char *, u_int, | |
120 | BIGNUM **, u_char **, u_int *); | |
b5afdff5 | 121 | void mm_jpake_key_confirm(struct modp_group *, BIGNUM *, BIGNUM *, |
5262cbfb | 122 | BIGNUM *, BIGNUM *, BIGNUM *, BIGNUM *, BIGNUM *, |
123 | const u_char *, u_int, const u_char *, u_int, | |
124 | const u_char *, u_int, const u_char *, u_int, | |
125 | BIGNUM **, u_char **, u_int *); | |
126 | int mm_jpake_check_confirm(const BIGNUM *, | |
127 | const u_char *, u_int, const u_char *, u_int, const u_char *, u_int); | |
128 | ||
129 | ||
826f3a39 | 130 | /* zlib allocation hooks */ |
131 | ||
132 | void *mm_zalloc(struct mm_master *, u_int, u_int); | |
133 | void mm_zfree(struct mm_master *, void *); | |
134 | void mm_init_compression(struct mm_master *); | |
135 | ||
30460aeb | 136 | #endif /* _MM_WRAP_H_ */ |