1*6d49e1aeSJan Lentfer /* 2*6d49e1aeSJan Lentfer * TLSv1 client - internal structures 3*6d49e1aeSJan Lentfer * Copyright (c) 2006-2007, Jouni Malinen <j@w1.fi> 4*6d49e1aeSJan Lentfer * 5*6d49e1aeSJan Lentfer * This program is free software; you can redistribute it and/or modify 6*6d49e1aeSJan Lentfer * it under the terms of the GNU General Public License version 2 as 7*6d49e1aeSJan Lentfer * published by the Free Software Foundation. 8*6d49e1aeSJan Lentfer * 9*6d49e1aeSJan Lentfer * Alternatively, this software may be distributed under the terms of BSD 10*6d49e1aeSJan Lentfer * license. 11*6d49e1aeSJan Lentfer * 12*6d49e1aeSJan Lentfer * See README and COPYING for more details. 13*6d49e1aeSJan Lentfer */ 14*6d49e1aeSJan Lentfer 15*6d49e1aeSJan Lentfer #ifndef TLSV1_CLIENT_I_H 16*6d49e1aeSJan Lentfer #define TLSV1_CLIENT_I_H 17*6d49e1aeSJan Lentfer 18*6d49e1aeSJan Lentfer struct tlsv1_client { 19*6d49e1aeSJan Lentfer enum { 20*6d49e1aeSJan Lentfer CLIENT_HELLO, SERVER_HELLO, SERVER_CERTIFICATE, 21*6d49e1aeSJan Lentfer SERVER_KEY_EXCHANGE, SERVER_CERTIFICATE_REQUEST, 22*6d49e1aeSJan Lentfer SERVER_HELLO_DONE, CLIENT_KEY_EXCHANGE, CHANGE_CIPHER_SPEC, 23*6d49e1aeSJan Lentfer SERVER_CHANGE_CIPHER_SPEC, SERVER_FINISHED, ACK_FINISHED, 24*6d49e1aeSJan Lentfer ESTABLISHED, FAILED 25*6d49e1aeSJan Lentfer } state; 26*6d49e1aeSJan Lentfer 27*6d49e1aeSJan Lentfer struct tlsv1_record_layer rl; 28*6d49e1aeSJan Lentfer 29*6d49e1aeSJan Lentfer u8 session_id[TLS_SESSION_ID_MAX_LEN]; 30*6d49e1aeSJan Lentfer size_t session_id_len; 31*6d49e1aeSJan Lentfer u8 client_random[TLS_RANDOM_LEN]; 32*6d49e1aeSJan Lentfer u8 server_random[TLS_RANDOM_LEN]; 33*6d49e1aeSJan Lentfer u8 master_secret[TLS_MASTER_SECRET_LEN]; 34*6d49e1aeSJan Lentfer 35*6d49e1aeSJan Lentfer u8 alert_level; 36*6d49e1aeSJan Lentfer u8 alert_description; 37*6d49e1aeSJan Lentfer 38*6d49e1aeSJan Lentfer unsigned int certificate_requested:1; 39*6d49e1aeSJan Lentfer unsigned int session_resumed:1; 40*6d49e1aeSJan Lentfer unsigned int session_ticket_included:1; 41*6d49e1aeSJan Lentfer unsigned int use_session_ticket:1; 42*6d49e1aeSJan Lentfer 43*6d49e1aeSJan Lentfer struct crypto_public_key *server_rsa_key; 44*6d49e1aeSJan Lentfer 45*6d49e1aeSJan Lentfer struct tls_verify_hash verify; 46*6d49e1aeSJan Lentfer 47*6d49e1aeSJan Lentfer #define MAX_CIPHER_COUNT 30 48*6d49e1aeSJan Lentfer u16 cipher_suites[MAX_CIPHER_COUNT]; 49*6d49e1aeSJan Lentfer size_t num_cipher_suites; 50*6d49e1aeSJan Lentfer 51*6d49e1aeSJan Lentfer u16 prev_cipher_suite; 52*6d49e1aeSJan Lentfer 53*6d49e1aeSJan Lentfer u8 *client_hello_ext; 54*6d49e1aeSJan Lentfer size_t client_hello_ext_len; 55*6d49e1aeSJan Lentfer 56*6d49e1aeSJan Lentfer /* The prime modulus used for Diffie-Hellman */ 57*6d49e1aeSJan Lentfer u8 *dh_p; 58*6d49e1aeSJan Lentfer size_t dh_p_len; 59*6d49e1aeSJan Lentfer /* The generator used for Diffie-Hellman */ 60*6d49e1aeSJan Lentfer u8 *dh_g; 61*6d49e1aeSJan Lentfer size_t dh_g_len; 62*6d49e1aeSJan Lentfer /* The server's Diffie-Hellman public value */ 63*6d49e1aeSJan Lentfer u8 *dh_ys; 64*6d49e1aeSJan Lentfer size_t dh_ys_len; 65*6d49e1aeSJan Lentfer 66*6d49e1aeSJan Lentfer struct tlsv1_credentials *cred; 67*6d49e1aeSJan Lentfer 68*6d49e1aeSJan Lentfer tlsv1_client_session_ticket_cb session_ticket_cb; 69*6d49e1aeSJan Lentfer void *session_ticket_cb_ctx; 70*6d49e1aeSJan Lentfer }; 71*6d49e1aeSJan Lentfer 72*6d49e1aeSJan Lentfer 73*6d49e1aeSJan Lentfer void tls_alert(struct tlsv1_client *conn, u8 level, u8 description); 74*6d49e1aeSJan Lentfer void tlsv1_client_free_dh(struct tlsv1_client *conn); 75*6d49e1aeSJan Lentfer int tls_derive_pre_master_secret(u8 *pre_master_secret); 76*6d49e1aeSJan Lentfer int tls_derive_keys(struct tlsv1_client *conn, 77*6d49e1aeSJan Lentfer const u8 *pre_master_secret, size_t pre_master_secret_len); 78*6d49e1aeSJan Lentfer u8 * tls_send_client_hello(struct tlsv1_client *conn, size_t *out_len); 79*6d49e1aeSJan Lentfer u8 * tlsv1_client_send_alert(struct tlsv1_client *conn, u8 level, 80*6d49e1aeSJan Lentfer u8 description, size_t *out_len); 81*6d49e1aeSJan Lentfer u8 * tlsv1_client_handshake_write(struct tlsv1_client *conn, size_t *out_len, 82*6d49e1aeSJan Lentfer int no_appl_data); 83*6d49e1aeSJan Lentfer int tlsv1_client_process_handshake(struct tlsv1_client *conn, u8 ct, 84*6d49e1aeSJan Lentfer const u8 *buf, size_t *len, 85*6d49e1aeSJan Lentfer u8 **out_data, size_t *out_len); 86*6d49e1aeSJan Lentfer 87*6d49e1aeSJan Lentfer #endif /* TLSV1_CLIENT_I_H */ 88