]>
Commit | Line | Data |
---|---|---|
1 | /* $OpenBSD: monitor_wrap.h,v 1.8 2002/09/26 11:38:43 markus Exp $ */ | |
2 | ||
3 | /* | |
4 | * Copyright 2002 Niels Provos <provos@citi.umich.edu> | |
5 | * All rights reserved. | |
6 | * | |
7 | * Redistribution and use in source and binary forms, with or without | |
8 | * modification, are permitted provided that the following conditions | |
9 | * are met: | |
10 | * 1. Redistributions of source code must retain the above copyright | |
11 | * notice, this list of conditions and the following disclaimer. | |
12 | * 2. Redistributions in binary form must reproduce the above copyright | |
13 | * notice, this list of conditions and the following disclaimer in the | |
14 | * documentation and/or other materials provided with the distribution. | |
15 | * | |
16 | * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR | |
17 | * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES | |
18 | * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. | |
19 | * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, | |
20 | * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT | |
21 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, | |
22 | * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY | |
23 | * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT | |
24 | * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF | |
25 | * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. | |
26 | */ | |
27 | ||
28 | #ifndef _MM_WRAP_H_ | |
29 | #define _MM_WRAP_H_ | |
30 | #include "key.h" | |
31 | #include "buffer.h" | |
32 | ||
33 | extern int use_privsep; | |
34 | #define PRIVSEP(x) (use_privsep ? mm_##x : x) | |
35 | ||
36 | enum mm_keytype {MM_NOKEY, MM_HOSTKEY, MM_USERKEY, MM_RSAHOSTKEY, MM_RSAUSERKEY}; | |
37 | ||
38 | struct monitor; | |
39 | struct mm_master; | |
40 | struct passwd; | |
41 | struct Authctxt; | |
42 | ||
43 | DH *mm_choose_dh(int, int, int); | |
44 | int mm_key_sign(Key *, u_char **, u_int *, u_char *, u_int); | |
45 | void mm_inform_authserv(char *, char *); | |
46 | struct passwd *mm_getpwnamallow(const char *); | |
47 | char *mm_auth2_read_banner(void); | |
48 | int mm_auth_password(struct Authctxt *, char *); | |
49 | int mm_key_allowed(enum mm_keytype, char *, char *, Key *); | |
50 | int mm_user_key_allowed(struct passwd *, Key *); | |
51 | int mm_hostbased_key_allowed(struct passwd *, char *, char *, Key *); | |
52 | int mm_auth_rhosts_rsa_key_allowed(struct passwd *, char *, char *, Key *); | |
53 | int mm_key_verify(Key *, u_char *, u_int, u_char *, u_int); | |
54 | int mm_auth_rsa_key_allowed(struct passwd *, BIGNUM *, Key **); | |
55 | int mm_auth_rsa_verify_response(Key *, BIGNUM *, u_char *); | |
56 | BIGNUM *mm_auth_rsa_generate_challenge(Key *); | |
57 | ||
58 | #ifdef USE_PAM | |
59 | void mm_start_pam(char *); | |
60 | #endif | |
61 | ||
62 | #ifdef GSSAPI | |
63 | #include "ssh-gss.h" | |
64 | OM_uint32 mm_ssh_gssapi_server_ctx(Gssctxt **ctxt, gss_OID oid); | |
65 | OM_uint32 mm_ssh_gssapi_accept_ctx(Gssctxt *ctxt, gss_buffer_desc *recv, | |
66 | gss_buffer_desc *send, OM_uint32 *flags); | |
67 | OM_uint32 mm_ssh_gssapi_sign(Gssctxt *ctxt, gss_buffer_desc *buffer, | |
68 | gss_buffer_desc *hash); | |
69 | int mm_ssh_gssapi_userok(char *user); | |
70 | int mm_ssh_gssapi_localname(char **user); | |
71 | OM_uint32 mm_gss_indicate_mechs(OM_uint32 *minor_status, | |
72 | gss_OID_set *mech_set); | |
73 | char *mm_ssh_gssapi_last_error(Gssctxt *ctxt, OM_uint32 *maj, OM_uint32 *min); | |
74 | #endif | |
75 | ||
76 | #ifdef GSI | |
77 | int mm_gsi_gridmap(char *subject_name, char **mapped_name); | |
78 | #endif | |
79 | ||
80 | void mm_terminate(void); | |
81 | int mm_pty_allocate(int *, int *, char *, int); | |
82 | void mm_session_pty_cleanup2(void *); | |
83 | ||
84 | /* SSHv1 interfaces */ | |
85 | void mm_ssh1_session_id(u_char *); | |
86 | int mm_ssh1_session_key(BIGNUM *); | |
87 | ||
88 | /* Key export functions */ | |
89 | struct Newkeys *mm_newkeys_from_blob(u_char *, int); | |
90 | int mm_newkeys_to_blob(int, u_char **, u_int *); | |
91 | ||
92 | void monitor_apply_keystate(struct monitor *); | |
93 | void mm_get_keystate(struct monitor *); | |
94 | void mm_send_keystate(struct monitor*); | |
95 | ||
96 | /* bsdauth */ | |
97 | int mm_bsdauth_query(void *, char **, char **, u_int *, char ***, u_int **); | |
98 | int mm_bsdauth_respond(void *, u_int, char **); | |
99 | ||
100 | /* skey */ | |
101 | int mm_skey_query(void *, char **, char **, u_int *, char ***, u_int **); | |
102 | int mm_skey_respond(void *, u_int, char **); | |
103 | ||
104 | /* auth_krb */ | |
105 | #ifdef KRB4 | |
106 | int mm_auth_krb4(struct Authctxt *, void *, char **, void *); | |
107 | #endif | |
108 | #ifdef KRB5 | |
109 | /* auth and reply are really krb5_data objects, but we don't want to | |
110 | * include all of the krb5 headers here */ | |
111 | int mm_auth_krb5(void *authctxt, void *auth, char **client, void *reply); | |
112 | #endif | |
113 | ||
114 | /* zlib allocation hooks */ | |
115 | ||
116 | void *mm_zalloc(struct mm_master *, u_int, u_int); | |
117 | void mm_zfree(struct mm_master *, void *); | |
118 | void mm_init_compression(struct mm_master *); | |
119 | ||
120 | #endif /* _MM_H_ */ |