ustream-mbedtls.h 1.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869
  1. /*
  2. * ustream-ssl - library for SSL over ustream
  3. *
  4. * Copyright (C) 2012 Felix Fietkau <nbd@openwrt.org>
  5. *
  6. * Permission to use, copy, modify, and/or distribute this software for any
  7. * purpose with or without fee is hereby granted, provided that the above
  8. * copyright notice and this permission notice appear in all copies.
  9. *
  10. * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
  11. * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
  12. * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
  13. * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
  14. * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
  15. * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
  16. * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
  17. */
  18. #ifndef __USTREAM_POLARSSL_H
  19. #define __USTREAM_POLARSSL_H
  20. #include <mbedtls/net_sockets.h>
  21. #include <mbedtls/ssl.h>
  22. #include <mbedtls/x509.h>
  23. #include <mbedtls/rsa.h>
  24. #include <mbedtls/error.h>
  25. #include <mbedtls/version.h>
  26. #include <mbedtls/entropy.h>
  27. #if defined(MBEDTLS_SSL_CACHE_C)
  28. #include <mbedtls/ssl_cache.h>
  29. #endif
  30. struct ustream_ssl_ctx {
  31. mbedtls_ssl_config conf;
  32. mbedtls_pk_context key;
  33. mbedtls_x509_crt ca_cert;
  34. mbedtls_x509_crt cert;
  35. #if defined(MBEDTLS_SSL_CACHE_C)
  36. mbedtls_ssl_cache_context cache;
  37. #endif
  38. ustream_ssl_debug_cb debug_cb;
  39. void *debug_cb_priv;
  40. bool server;
  41. int *ciphersuites;
  42. void *session_data;
  43. size_t session_data_len;
  44. };
  45. static inline char *__ustream_ssl_strerror(int error, char *buffer, int len)
  46. {
  47. mbedtls_strerror(error, buffer, len);
  48. return buffer;
  49. }
  50. static inline void __ustream_ssl_set_server_name(struct ustream_ssl *us)
  51. {
  52. mbedtls_ssl_set_hostname(us->ssl, us->server_name);
  53. }
  54. static inline void __ustream_ssl_update_peer_cn(struct ustream_ssl *us)
  55. {
  56. mbedtls_ssl_set_hostname(us->ssl, us->peer_cn);
  57. }
  58. void *__ustream_ssl_session_new(struct ustream_ssl_ctx *ctx);
  59. #endif