xref: /netbsd-src/external/bsd/tcpdump/dist/nameser.h (revision 26ba0b503b498a5194a71ac319838b7f5497f3fe)
10f74e101Schristos /*
20f74e101Schristos  * Copyright (c) 1983, 1989, 1993
30f74e101Schristos  *	The Regents of the University of California.  All rights reserved.
40f74e101Schristos  *
50f74e101Schristos  * Redistribution and use in source and binary forms, with or without
60f74e101Schristos  * modification, are permitted provided that the following conditions
70f74e101Schristos  * are met:
80f74e101Schristos  * 1. Redistributions of source code must retain the above copyright
90f74e101Schristos  *    notice, this list of conditions and the following disclaimer.
100f74e101Schristos  * 2. Redistributions in binary form must reproduce the above copyright
110f74e101Schristos  *    notice, this list of conditions and the following disclaimer in the
120f74e101Schristos  *    documentation and/or other materials provided with the distribution.
1311b3aaa1Schristos  * 3. Neither the name of the University nor the names of its contributors
140f74e101Schristos  *    may be used to endorse or promote products derived from this software
150f74e101Schristos  *    without specific prior written permission.
160f74e101Schristos  *
170f74e101Schristos  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
180f74e101Schristos  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
190f74e101Schristos  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
200f74e101Schristos  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
210f74e101Schristos  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
220f74e101Schristos  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
230f74e101Schristos  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
240f74e101Schristos  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
250f74e101Schristos  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
260f74e101Schristos  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
270f74e101Schristos  * SUCH DAMAGE.
280f74e101Schristos  *
290f74e101Schristos  *      @(#)nameser.h	8.2 (Berkeley) 2/16/94
300f74e101Schristos  * -
310f74e101Schristos  * Portions Copyright (c) 1993 by Digital Equipment Corporation.
320f74e101Schristos  *
330f74e101Schristos  * Permission to use, copy, modify, and distribute this software for any
340f74e101Schristos  * purpose with or without fee is hereby granted, provided that the above
350f74e101Schristos  * copyright notice and this permission notice appear in all copies, and that
360f74e101Schristos  * the name of Digital Equipment Corporation not be used in advertising or
370f74e101Schristos  * publicity pertaining to distribution of the document or software without
380f74e101Schristos  * specific, written prior permission.
390f74e101Schristos  *
400f74e101Schristos  * THE SOFTWARE IS PROVIDED "AS IS" AND DIGITAL EQUIPMENT CORP. DISCLAIMS ALL
410f74e101Schristos  * WARRANTIES WITH REGARD TO THIS SOFTWARE, INCLUDING ALL IMPLIED WARRANTIES
420f74e101Schristos  * OF MERCHANTABILITY AND FITNESS.   IN NO EVENT SHALL DIGITAL EQUIPMENT
430f74e101Schristos  * CORPORATION BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL
440f74e101Schristos  * DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR
450f74e101Schristos  * PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS
460f74e101Schristos  * ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS
470f74e101Schristos  * SOFTWARE.
480f74e101Schristos  * -
490f74e101Schristos  * --Copyright--
500f74e101Schristos  */
510f74e101Schristos 
520f74e101Schristos #ifndef _NAMESER_H_
530f74e101Schristos #define	_NAMESER_H_
540f74e101Schristos 
550f74e101Schristos #include <sys/types.h>
560f74e101Schristos 
570f74e101Schristos /*
580f74e101Schristos  * Define constants based on rfc883
590f74e101Schristos  */
600f74e101Schristos #define PACKETSZ	512		/* maximum packet size */
610f74e101Schristos #define MAXDNAME	256		/* maximum domain name */
620f74e101Schristos #define MAXCDNAME	255		/* maximum compressed domain name */
630f74e101Schristos #define MAXLABEL	63		/* maximum length of domain label */
640f74e101Schristos 	/* Number of bytes of fixed size data in query structure */
650f74e101Schristos #define QFIXEDSZ	4
660f74e101Schristos 	/* number of bytes of fixed size data in resource record */
670f74e101Schristos #define RRFIXEDSZ	10
680f74e101Schristos 
690f74e101Schristos /*
700f74e101Schristos  * Currently defined opcodes
710f74e101Schristos  */
720f74e101Schristos #define QUERY		0x0		/* standard query */
730f74e101Schristos #define IQUERY		0x1		/* inverse query */
740f74e101Schristos #define STATUS		0x2		/* nameserver status query */
750f74e101Schristos #if 0
760f74e101Schristos #define xxx		0x3		/* 0x3 reserved */
770f74e101Schristos #endif
780f74e101Schristos 	/* non standard - supports ALLOW_UPDATES stuff from Mike Schwartz */
790f74e101Schristos #define UPDATEA		0x9		/* add resource record */
800f74e101Schristos #define UPDATED		0xa		/* delete a specific resource record */
810f74e101Schristos #define UPDATEDA	0xb		/* delete all named resource record */
820f74e101Schristos #define UPDATEM		0xc		/* modify a specific resource record */
830f74e101Schristos #define UPDATEMA	0xd		/* modify all named resource record */
840f74e101Schristos 
850f74e101Schristos #define ZONEINIT	0xe		/* initial zone transfer */
86*26ba0b50Schristos #define ZONEREF		0xf		/* incremental zone refresh */
870f74e101Schristos 
880f74e101Schristos /*
890f74e101Schristos  * Undefine various #defines from various System V-flavored OSes (Solaris,
900f74e101Schristos  * SINIX, HP-UX) so the compiler doesn't whine that we redefine them.
910f74e101Schristos  */
920f74e101Schristos #ifdef T_NULL
930f74e101Schristos #undef T_NULL
940f74e101Schristos #endif
950f74e101Schristos #ifdef T_OPT
960f74e101Schristos #undef T_OPT
970f74e101Schristos #endif
980f74e101Schristos #ifdef T_UNSPEC
990f74e101Schristos #undef T_UNSPEC
1000f74e101Schristos #endif
1010f74e101Schristos #ifdef NOERROR
1020f74e101Schristos #undef NOERROR
1030f74e101Schristos #endif
1040f74e101Schristos 
1050f74e101Schristos /*
1060f74e101Schristos  * Currently defined response codes
1070f74e101Schristos  */
1080f74e101Schristos #define NOERROR		0		/* no error */
1090f74e101Schristos #define FORMERR		1		/* format error */
1100f74e101Schristos #define SERVFAIL	2		/* server failure */
1110f74e101Schristos #define NXDOMAIN	3		/* nonexistent domain */
1120f74e101Schristos #define NOTIMP		4		/* not implemented */
1130f74e101Schristos #define REFUSED		5		/* query refused */
1140f74e101Schristos 	/* non standard */
1150f74e101Schristos #define NOCHANGE	0xf		/* update failed to change db */
1160f74e101Schristos 
1170f74e101Schristos /*
1180f74e101Schristos  * Type values for resources and queries
1190f74e101Schristos  */
1200f74e101Schristos #define T_A		1		/* host address */
1210f74e101Schristos #define T_NS		2		/* authoritative server */
1220f74e101Schristos #define T_MD		3		/* mail destination */
1230f74e101Schristos #define T_MF		4		/* mail forwarder */
124*26ba0b50Schristos #define T_CNAME		5		/* canonical name */
1250f74e101Schristos #define T_SOA		6		/* start of authority zone */
1260f74e101Schristos #define T_MB		7		/* mailbox domain name */
1270f74e101Schristos #define T_MG		8		/* mail group member */
1280f74e101Schristos #define T_MR		9		/* mail rename name */
1290f74e101Schristos #define T_NULL		10		/* null resource record */
1300f74e101Schristos #define T_WKS		11		/* well known service */
1310f74e101Schristos #define T_PTR		12		/* domain name pointer */
1320f74e101Schristos #define T_HINFO		13		/* host information */
1330f74e101Schristos #define T_MINFO		14		/* mailbox information */
1340f74e101Schristos #define T_MX		15		/* mail routing information */
1350f74e101Schristos #define T_TXT		16		/* text strings */
1360f74e101Schristos #define	T_RP		17		/* responsible person */
1370f74e101Schristos #define	T_AFSDB		18		/* AFS cell database */
1380f74e101Schristos #define T_X25		19		/* X_25 calling address */
1390f74e101Schristos #define T_ISDN		20		/* ISDN calling address */
1400f74e101Schristos #define T_RT		21		/* router */
1410f74e101Schristos #define	T_NSAP		22		/* NSAP address */
1420f74e101Schristos #define	T_NSAP_PTR	23		/* reverse lookup for NSAP */
1430f74e101Schristos #define T_SIG		24		/* security signature */
1440f74e101Schristos #define T_KEY		25		/* security key */
1450f74e101Schristos #define T_PX		26		/* X.400 mail mapping */
1460f74e101Schristos #define T_GPOS		27		/* geographical position (withdrawn) */
1470f74e101Schristos #define T_AAAA		28		/* IP6 Address */
1480f74e101Schristos #define T_LOC		29		/* Location Information */
1490f74e101Schristos #define T_NXT		30		/* Next Valid Name in Zone */
1500f74e101Schristos #define T_EID		31		/* Endpoint identifier */
1510f74e101Schristos #define T_NIMLOC	32		/* Nimrod locator */
1520f74e101Schristos #define T_SRV		33		/* Server selection */
1530f74e101Schristos #define T_ATMA		34		/* ATM Address */
1540f74e101Schristos #define T_NAPTR		35		/* Naming Authority PoinTeR */
1550f74e101Schristos #define T_KX		36		/* Key Exchanger */
1560f74e101Schristos #define T_CERT		37		/* Certificates in the DNS */
1570f74e101Schristos #define T_A6		38		/* IP6 address */
1580f74e101Schristos #define T_DNAME		39		/* non-terminal redirection */
1590f74e101Schristos #define T_SINK		40		/* unknown */
1600f74e101Schristos #define T_OPT		41		/* EDNS0 option (meta-RR) */
1610f74e101Schristos #define T_APL		42		/* lists of address prefixes */
1620f74e101Schristos #define T_DS		43		/* Delegation Signer */
1630f74e101Schristos #define T_SSHFP		44		/* SSH Fingerprint */
1640f74e101Schristos #define T_IPSECKEY	45		/* IPsec keying material */
1650f74e101Schristos #define T_RRSIG		46		/* new security signature */
1660f74e101Schristos #define T_NSEC		47		/* provable insecure information */
1670f74e101Schristos #define T_DNSKEY	48		/* new security key */
168c74ad251Schristos #define T_DHCID		49		/* DHCP IDentifier */
169c74ad251Schristos #define T_NSEC3		50		/* Next SECure record v3 */
170c74ad251Schristos #define T_NSEC3PARAM	51		/* NSEC3 PARAMeter */
171c74ad251Schristos #define T_TLSA		52		/* TLS Authentication */
172c74ad251Schristos #define T_SMIMEA	53		/* S/MIME Authentication */
173c74ad251Schristos /* Unassigned */
174c74ad251Schristos #define T_HIP		55		/* Host Identity Protocol */
175c74ad251Schristos #define T_NINFO		56		/* zone status information */
176c74ad251Schristos #define T_RKEY		57		/* Record encryption KEY */
177c74ad251Schristos #define T_TALINK	58		/* Trust Anchor LINK */
178c74ad251Schristos #define T_CDS		59		/* Child Delegation Signer */
179c74ad251Schristos #define T_CDNSKEY	60		/* Child DNSKEY */
180c74ad251Schristos #define T_OPENPGPKEY	61		/* OpenPGP KEY */
181*26ba0b50Schristos #define T_CSYNC		62		/* Child to parent SYNChronization */
182c74ad251Schristos #define T_ZONEMD	63		/* ZONE data Message Digest */
183c74ad251Schristos #define T_SVCB		64		/* SerViCe Binding */
184c74ad251Schristos #define T_HTTPS		65		/* HTTPS binding */
1850f74e101Schristos 	/* non standard */
1860f74e101Schristos #define T_SPF		99		/* sender policy framework */
1870f74e101Schristos #define T_UINFO		100		/* user (finger) information */
1880f74e101Schristos #define T_UID		101		/* user ID */
1890f74e101Schristos #define T_GID		102		/* group ID */
1900f74e101Schristos #define T_UNSPEC	103		/* Unspecified format (binary data) */
191c74ad251Schristos #define T_NID		104		/* Node IDentifier */
192c74ad251Schristos #define T_L32		105		/* Locator 32-bit */
193c74ad251Schristos #define T_L64		106		/* Locator 64-bit */
194c74ad251Schristos #define T_LP		107		/* Locator Pointer */
195c74ad251Schristos #define T_EUI48		108		/* an EUI-48 address */
196c74ad251Schristos #define T_EUI64		109		/* an EUI-64 address */
1970f74e101Schristos 	/* Query type values which do not appear in resource records */
1980f74e101Schristos #define T_TKEY		249		/* Transaction Key [RFC2930] */
1990f74e101Schristos #define T_TSIG		250		/* Transaction Signature [RFC2845] */
2000f74e101Schristos #define T_IXFR		251		/* incremental transfer [RFC1995] */
2010f74e101Schristos #define T_AXFR		252		/* transfer zone of authority */
2020f74e101Schristos #define T_MAILB		253		/* transfer mailbox records */
2030f74e101Schristos #define T_MAILA		254		/* transfer mail agent records */
2040f74e101Schristos #define T_ANY		255		/* wildcard match */
205c74ad251Schristos #define T_URI		256		/* uri records [RFC7553] */
206c74ad251Schristos #define T_CAA		257		/* Certification Authority Authorization */
207c74ad251Schristos #define T_AVC		258		/* Application Visibility and Control */
208c74ad251Schristos #define T_DOA		259		/* Digital Object Architecture */
209c74ad251Schristos #define T_AMTRELAY	260		/* Automatic Multicast Tunneling RELAY */
210c74ad251Schristos #define T_TA		32768		/* DNSSEC Trust Authorities */
211c74ad251Schristos #define T_DLV		32769		/* DNSSEC Lookaside Validation */
2120f74e101Schristos 
2130f74e101Schristos /*
2140f74e101Schristos  * Values for class field
2150f74e101Schristos  */
2160f74e101Schristos 
2170f74e101Schristos #define C_IN		1		/* the arpa internet */
2180f74e101Schristos #define C_CHAOS		3		/* for chaos net (MIT) */
2190f74e101Schristos #define C_HS		4		/* for Hesiod name server (MIT) (XXX) */
2200f74e101Schristos 	/* Query class values which do not appear in resource records */
2210f74e101Schristos #define C_ANY		255		/* wildcard match */
2220f74e101Schristos #define C_QU		0x8000		/* mDNS QU flag in queries */
2230f74e101Schristos #define C_CACHE_FLUSH	0x8000		/* mDNS cache flush flag in replies */
2240f74e101Schristos 
2250f74e101Schristos /*
226c74ad251Schristos  * Values for EDNS option types
227c74ad251Schristos  */
228c74ad251Schristos #define E_LLQ           1       /* long lived queries protocol */
229c74ad251Schristos #define E_UL            2       /* dynamic dns update leases */
230c74ad251Schristos #define E_NSID          3       /* name server identifier */
231c74ad251Schristos #define E_DAU           5       /* signal DNSSEC algorithm understood */
232c74ad251Schristos #define E_DHU           6       /* signal DS hash understood */
233c74ad251Schristos #define E_N3U           7       /* signal NSEC3 hash understood */
234c74ad251Schristos #define E_ECS           8       /* EDNS client subnet */
235c74ad251Schristos #define E_EXPIRE        9       /* zone expiration */
236c74ad251Schristos #define E_COOKIE        10      /* DNS cookies */
237c74ad251Schristos #define E_KEEPALIVE     11      /* TCP keepalive */
238c74ad251Schristos #define E_PADDING       12      /* pad DNS messages */
239c74ad251Schristos #define E_CHAIN         13      /* chain DNS queries */
240c74ad251Schristos #define E_KEYTAG        14      /* EDNS key tag */
241c74ad251Schristos #define E_CLIENTTAG     16      /* EDNS client tag */
242c74ad251Schristos #define E_SERVERTAG     17      /* EDNS server tag */
243c74ad251Schristos 
244c74ad251Schristos /*
245c74ad251Schristos  * Values for DNSSEC Algorithms
246c74ad251Schristos  * https://www.iana.org/assignments/dns-sec-alg-numbers/dns-sec-alg-numbers.xhtml
247c74ad251Schristos  */
248c74ad251Schristos 
249c74ad251Schristos #define A_DELETE                0
250c74ad251Schristos #define A_RSAMD5                1
251c74ad251Schristos #define A_DH                    2
252c74ad251Schristos #define A_DSA                   3
253c74ad251Schristos #define A_RSASHA1               5
254c74ad251Schristos #define A_DSA_NSEC3_SHA1        6
255c74ad251Schristos #define A_RSASHA1_NSEC3_SHA1    7
256c74ad251Schristos #define A_RSASHA256             8
257c74ad251Schristos #define A_RSASHA512             10
258c74ad251Schristos #define A_ECC_GOST              12
259c74ad251Schristos #define A_ECDSAP256SHA256       13
260c74ad251Schristos #define A_ECDSAP384SHA384       14
261c74ad251Schristos #define A_ED25519               15
262c74ad251Schristos #define A_ED448                 16
263c74ad251Schristos #define A_INDIRECT              252
264c74ad251Schristos #define A_PRIVATEDNS            253
265c74ad251Schristos #define A_PRIVATEOID            254
266c74ad251Schristos 
267c74ad251Schristos /*
268c74ad251Schristos  * Values for NSEC3 algorithms
269c74ad251Schristos  * https://www.iana.org/assignments/dnssec-nsec3-parameters/dnssec-nsec3-parameters.xhtml
270c74ad251Schristos  */
271c74ad251Schristos #define NSEC_SHA1   1
272c74ad251Schristos 
273c74ad251Schristos /*
274c74ad251Schristos  * Values for delegation signer algorithms
275c74ad251Schristos  * https://www.iana.org/assignments/ds-rr-types/ds-rr-types.xhtml
276c74ad251Schristos  */
277c74ad251Schristos #define DS_SHA1     1
278c74ad251Schristos #define DS_SHA256   2
279c74ad251Schristos #define DS_GOST     3
280c74ad251Schristos #define DS_SHA384   4
281c74ad251Schristos 
282c74ad251Schristos 
283c74ad251Schristos /*
2840f74e101Schristos  * Status return codes for T_UNSPEC conversion routines
2850f74e101Schristos  */
2860f74e101Schristos #define CONV_SUCCESS 0
2870f74e101Schristos #define CONV_OVERFLOW -1
2880f74e101Schristos #define CONV_BADFMT -2
2890f74e101Schristos #define CONV_BADCKSUM -3
2900f74e101Schristos #define CONV_BADBUFLEN -4
2910f74e101Schristos 
2920f74e101Schristos /*
2930f74e101Schristos  * Structure for query header.
2940f74e101Schristos  */
2950f74e101Schristos typedef struct {
296c74ad251Schristos 	nd_uint16_t id;		/* query identification number */
297c74ad251Schristos 	nd_uint16_t flags;	/* QR, Opcode, AA, TC, RD, RA, RCODE */
298c74ad251Schristos 	nd_uint16_t qdcount;	/* number of question entries */
299c74ad251Schristos 	nd_uint16_t ancount;	/* number of answer entries */
300c74ad251Schristos 	nd_uint16_t nscount;	/* number of authority entries */
301c74ad251Schristos 	nd_uint16_t arcount;	/* number of resource entries */
302c74ad251Schristos } dns_header_t;
3030f74e101Schristos 
3040f74e101Schristos /*
3050f74e101Schristos  * Macros for subfields of flag fields.
3060f74e101Schristos  */
307c74ad251Schristos #define DNS_QR(flags)		((flags) & 0x8000)	/* response flag */
308c74ad251Schristos #define DNS_OPCODE(flags)	(((flags) >> 11) & 0xF)	/* purpose of message */
309c74ad251Schristos #define DNS_AA(flags)		(flags & 0x0400)	/* authoritative answer */
310c74ad251Schristos #define DNS_TC(flags)		(flags & 0x0200)	/* truncated message */
311c74ad251Schristos #define DNS_RD(flags)		(flags & 0x0100)	/* recursion desired */
312c74ad251Schristos #define DNS_RA(flags)		(flags & 0x0080)	/* recursion available */
313c74ad251Schristos #define DNS_AD(flags)		(flags & 0x0020)	/* authentic data from named */
314c74ad251Schristos #define DNS_CD(flags)		(flags & 0x0010)	/* checking disabled by resolver */
315c74ad251Schristos #define DNS_RCODE(flags)	(flags & 0x000F)	/* response code */
3160f74e101Schristos 
3170f74e101Schristos /*
3180f74e101Schristos  * Defines for handling compressed domain names, EDNS0 labels, etc.
3190f74e101Schristos  */
320c74ad251Schristos #define TYPE_MASK	0xc0	/* mask for the type bits of the item */
321c74ad251Schristos #define TYPE_INDIR	0xc0	/* 11.... - pointer */
322c74ad251Schristos #define TYPE_RESERVED	0x80	/* 10.... - reserved */
323c74ad251Schristos #define TYPE_EDNS0	0x40	/* 01.... - EDNS(0) label */
324c74ad251Schristos #define TYPE_LABEL	0x00	/* 00.... - regular label */
3250f74e101Schristos #  define EDNS0_ELT_BITLABEL 0x01
3260f74e101Schristos 
3270f74e101Schristos #endif /* !_NAMESER_H_ */
328