Blame lib/anon_cred.c

Packit Service 4684c1
/*
Packit Service 4684c1
 * Copyright (C) 2001-2012 Free Software Foundation, Inc.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Author: Nikos Mavrogiannopoulos
Packit Service 4684c1
 *
Packit Service 4684c1
 * This file is part of GnuTLS.
Packit Service 4684c1
 *
Packit Service 4684c1
 * The GnuTLS is free software; you can redistribute it and/or
Packit Service 4684c1
 * modify it under the terms of the GNU Lesser General Public License
Packit Service 4684c1
 * as published by the Free Software Foundation; either version 2.1 of
Packit Service 4684c1
 * the License, or (at your option) any later version.
Packit Service 4684c1
 *
Packit Service 4684c1
 * This library is distributed in the hope that it will be useful, but
Packit Service 4684c1
 * WITHOUT ANY WARRANTY; without even the implied warranty of
Packit Service 4684c1
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit Service 4684c1
 * Lesser General Public License for more details.
Packit Service 4684c1
 *
Packit Service 4684c1
 * You should have received a copy of the GNU Lesser General Public License
Packit Service 4684c1
 * along with this program.  If not, see <https://www.gnu.org/licenses/>
Packit Service 4684c1
 *
Packit Service 4684c1
 */
Packit Service 4684c1
Packit Service 4684c1
#include "gnutls_int.h"
Packit Service 4684c1
Packit Service 4684c1
#ifdef ENABLE_ANON
Packit Service 4684c1
Packit Service 4684c1
#include "errors.h"
Packit Service 4684c1
#include <auth/anon.h>
Packit Service 4684c1
#include "auth.h"
Packit Service 4684c1
#include "dh.h"
Packit Service 4684c1
#include "num.h"
Packit Service 4684c1
#include "mpi.h"
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_free_server_credentials:
Packit Service 4684c1
 * @sc: is a #gnutls_anon_server_credentials_t type.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Free a gnutls_anon_server_credentials_t structure.
Packit Service 4684c1
 **/
Packit Service 4684c1
void
Packit Service 4684c1
gnutls_anon_free_server_credentials(gnutls_anon_server_credentials_t sc)
Packit Service 4684c1
{
Packit Service 4684c1
	if (sc->deinit_dh_params) {
Packit Service 4684c1
		gnutls_dh_params_deinit(sc->dh_params);
Packit Service 4684c1
	}
Packit Service 4684c1
	gnutls_free(sc);
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_allocate_server_credentials:
Packit Service 4684c1
 * @sc: is a pointer to a #gnutls_anon_server_credentials_t type.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Allocate a gnutls_anon_server_credentials_t structure.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Returns: %GNUTLS_E_SUCCESS on success, or an error code.
Packit Service 4684c1
 **/
Packit Service 4684c1
int
Packit Service 4684c1
gnutls_anon_allocate_server_credentials(gnutls_anon_server_credentials_t *
Packit Service 4684c1
					sc)
Packit Service 4684c1
{
Packit Service 4684c1
Packit Service 4684c1
	*sc = gnutls_calloc(1, sizeof(anon_server_credentials_st));
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_free_client_credentials:
Packit Service 4684c1
 * @sc: is a #gnutls_anon_client_credentials_t type.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Free a gnutls_anon_client_credentials_t structure.
Packit Service 4684c1
 **/
Packit Service 4684c1
void
Packit Service 4684c1
gnutls_anon_free_client_credentials(gnutls_anon_client_credentials_t sc)
Packit Service 4684c1
{
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
static struct gnutls_anon_client_credentials_st anon_dummy_struct;
Packit Service 4684c1
static const gnutls_anon_client_credentials_t anon_dummy =
Packit Service 4684c1
    &anon_dummy_struct;
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_allocate_client_credentials:
Packit Service 4684c1
 * @sc: is a pointer to a #gnutls_anon_client_credentials_t type.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Allocate a gnutls_anon_client_credentials_t structure.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Returns: %GNUTLS_E_SUCCESS on success, or an error code.
Packit Service 4684c1
 **/
Packit Service 4684c1
int
Packit Service 4684c1
gnutls_anon_allocate_client_credentials(gnutls_anon_client_credentials_t *
Packit Service 4684c1
					sc)
Packit Service 4684c1
{
Packit Service 4684c1
	/* anon_dummy is only there for *sc not to be null.
Packit Service 4684c1
	 * it is not used at all;
Packit Service 4684c1
	 */
Packit Service 4684c1
	*sc = anon_dummy;
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_set_server_dh_params:
Packit Service 4684c1
 * @res: is a gnutls_anon_server_credentials_t type
Packit Service 4684c1
 * @dh_params: The Diffie-Hellman parameters.
Packit Service 4684c1
 *
Packit Service 4684c1
 * This function will set the Diffie-Hellman parameters for an
Packit Service 4684c1
 * anonymous server to use.  These parameters will be used in
Packit Service 4684c1
 * Anonymous Diffie-Hellman cipher suites.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Deprecated: This function is unnecessary and discouraged on GnuTLS 3.6.0
Packit Service 4684c1
 * or later. Since 3.6.0, DH parameters are negotiated
Packit Service 4684c1
 * following RFC7919.
Packit Service 4684c1
 **/
Packit Service 4684c1
void
Packit Service 4684c1
gnutls_anon_set_server_dh_params(gnutls_anon_server_credentials_t res,
Packit Service 4684c1
				 gnutls_dh_params_t dh_params)
Packit Service 4684c1
{
Packit Service 4684c1
	if (res->deinit_dh_params) {
Packit Service 4684c1
		res->deinit_dh_params = 0;
Packit Service 4684c1
		gnutls_dh_params_deinit(res->dh_params);
Packit Service 4684c1
		res->dh_params = NULL;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	res->dh_params = dh_params;
Packit Service 4684c1
	res->dh_sec_param = gnutls_pk_bits_to_sec_param(GNUTLS_PK_DH, _gnutls_mpi_get_nbits(dh_params->params[0]));
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_set_server_known_dh_params:
Packit Service 4684c1
 * @res: is a gnutls_anon_server_credentials_t type
Packit Service 4684c1
 * @sec_param: is an option of the %gnutls_sec_param_t enumeration
Packit Service 4684c1
 *
Packit Service 4684c1
 * This function will set the Diffie-Hellman parameters for an
Packit Service 4684c1
 * anonymous server to use.  These parameters will be used in
Packit Service 4684c1
 * Anonymous Diffie-Hellman cipher suites and will be selected from
Packit Service 4684c1
 * the FFDHE set of RFC7919 according to the security level provided.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Deprecated: This function is unnecessary and discouraged on GnuTLS 3.6.0
Packit Service 4684c1
 * or later. Since 3.6.0, DH parameters are negotiated
Packit Service 4684c1
 * following RFC7919.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Returns: On success, %GNUTLS_E_SUCCESS (0) is returned, otherwise a
Packit Service 4684c1
 *   negative error value.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Since: 3.5.6
Packit Service 4684c1
 **/
Packit Service 4684c1
int
Packit Service 4684c1
gnutls_anon_set_server_known_dh_params(gnutls_anon_server_credentials_t res,
Packit Service 4684c1
					gnutls_sec_param_t sec_param)
Packit Service 4684c1
{
Packit Service 4684c1
	res->dh_sec_param = sec_param;
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_set_server_params_function:
Packit Service 4684c1
 * @res: is a gnutls_certificate_credentials_t type
Packit Service 4684c1
 * @func: is the function to be called
Packit Service 4684c1
 *
Packit Service 4684c1
 * This function will set a callback in order for the server to get
Packit Service 4684c1
 * the Diffie-Hellman parameters for anonymous authentication.  The
Packit Service 4684c1
 * callback should return %GNUTLS_E_SUCCESS (0) on success.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Deprecated: This function is unnecessary and discouraged on GnuTLS 3.6.0
Packit Service 4684c1
 * or later. Since 3.6.0, DH parameters are negotiated
Packit Service 4684c1
 * following RFC7919.
Packit Service 4684c1
 *
Packit Service 4684c1
 **/
Packit Service 4684c1
void
Packit Service 4684c1
gnutls_anon_set_server_params_function(gnutls_anon_server_credentials_t
Packit Service 4684c1
				       res, gnutls_params_function * func)
Packit Service 4684c1
{
Packit Service 4684c1
	res->params_func = func;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
/**
Packit Service 4684c1
 * gnutls_anon_set_params_function:
Packit Service 4684c1
 * @res: is a gnutls_anon_server_credentials_t type
Packit Service 4684c1
 * @func: is the function to be called
Packit Service 4684c1
 *
Packit Service 4684c1
 * This function will set a callback in order for the server to get
Packit Service 4684c1
 * the Diffie-Hellman or RSA parameters for anonymous authentication.
Packit Service 4684c1
 * The callback should return %GNUTLS_E_SUCCESS (0) on success.
Packit Service 4684c1
 *
Packit Service 4684c1
 * Deprecated: This function is unnecessary and discouraged on GnuTLS 3.6.0
Packit Service 4684c1
 * or later. Since 3.6.0, DH parameters are negotiated
Packit Service 4684c1
 * following RFC7919.
Packit Service 4684c1
 *
Packit Service 4684c1
 **/
Packit Service 4684c1
void
Packit Service 4684c1
gnutls_anon_set_params_function(gnutls_anon_server_credentials_t res,
Packit Service 4684c1
				gnutls_params_function * func)
Packit Service 4684c1
{
Packit Service 4684c1
	res->params_func = func;
Packit Service 4684c1
}
Packit Service 4684c1
#endif