1 /* $NetBSD: packet.h,v 1.28 2024/09/24 21:32:18 christos Exp $ */ 2 /* $OpenBSD: packet.h,v 1.99 2024/08/15 00:51:51 djm Exp $ */ 3 4 /* 5 * Author: Tatu Ylonen <ylo@cs.hut.fi> 6 * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland 7 * All rights reserved 8 * Interface for the packet protocol functions. 9 * 10 * As far as I am concerned, the code I have written for this software 11 * can be used freely for any purpose. Any derived versions of this 12 * software must be clearly marked as such, and if the derived work is 13 * incompatible with the protocol description in the RFC file, it must be 14 * called by a name other than "ssh" or "Secure Shell". 15 */ 16 17 #ifndef PACKET_H 18 #define PACKET_H 19 20 #include <termios.h> 21 22 #include <sys/signal.h> 23 #include <sys/queue.h> 24 25 #ifdef WITH_OPENSSL 26 #include <openssl/bn.h> 27 #include <openssl/ec.h> 28 #include <openssl/ecdsa.h> 29 #include <openssl/evp.h> 30 #else /* OPENSSL */ 31 #define BIGNUM void 32 #define EC_GROUP void 33 #define EC_POINT void 34 #define EVP_PKEY void 35 #endif /* WITH_OPENSSL */ 36 37 struct kex; 38 struct sshkey; 39 struct sshbuf; 40 struct session_state; /* private session data */ 41 42 #include "dispatch.h" /* typedef, DISPATCH_MAX */ 43 44 struct key_entry { 45 TAILQ_ENTRY(key_entry) next; 46 struct sshkey *key; 47 }; 48 49 struct ssh { 50 /* Session state */ 51 struct session_state *state; 52 53 /* Key exchange */ 54 struct kex *kex; 55 56 /* cached local and remote ip addresses and ports */ 57 char *remote_ipaddr; 58 int remote_port; 59 char *local_ipaddr; 60 int local_port; 61 char *rdomain_in; 62 63 /* Optional preamble for log messages (e.g. username) */ 64 char *log_preamble; 65 66 /* Dispatcher table */ 67 dispatch_fn *dispatch[DISPATCH_MAX]; 68 /* number of packets to ignore in the dispatcher */ 69 int dispatch_skip_packets; 70 71 /* datafellows */ 72 int compat; 73 74 /* Lists for private and public keys */ 75 TAILQ_HEAD(, key_entry) private_keys; 76 TAILQ_HEAD(, key_entry) public_keys; 77 78 /* Client/Server authentication context */ 79 void *authctxt; 80 81 /* Channels context */ 82 struct ssh_channels *chanctxt; 83 84 /* APP data */ 85 void *app_data; 86 }; 87 88 typedef int (ssh_packet_hook_fn)(struct ssh *, struct sshbuf *, 89 u_char *, void *); 90 91 struct ssh *ssh_alloc_session_state(void); 92 struct ssh *ssh_packet_set_connection(struct ssh *, int, int); 93 void ssh_packet_set_timeout(struct ssh *, int, int); 94 int ssh_packet_stop_discard(struct ssh *); 95 int ssh_packet_connection_af(struct ssh *); 96 void ssh_packet_set_nonblocking(struct ssh *); 97 int ssh_packet_get_connection_in(struct ssh *); 98 int ssh_packet_get_connection_out(struct ssh *); 99 void ssh_packet_close(struct ssh *); 100 void ssh_packet_set_input_hook(struct ssh *, ssh_packet_hook_fn *, void *); 101 void ssh_packet_clear_keys(struct ssh *); 102 void ssh_clear_newkeys(struct ssh *, int); 103 104 int ssh_packet_is_rekeying(struct ssh *); 105 int ssh_packet_check_rekey(struct ssh *); 106 void ssh_packet_set_protocol_flags(struct ssh *, u_int); 107 u_int ssh_packet_get_protocol_flags(struct ssh *); 108 void ssh_packet_set_tos(struct ssh *, int); 109 void ssh_packet_set_interactive(struct ssh *, int, int, int); 110 int ssh_packet_is_interactive(struct ssh *); 111 void ssh_packet_set_server(struct ssh *); 112 void ssh_packet_set_authenticated(struct ssh *); 113 void ssh_packet_set_mux(struct ssh *); 114 int ssh_packet_get_mux(struct ssh *); 115 int ssh_packet_set_log_preamble(struct ssh *, const char *, ...) 116 __attribute__((format(printf, 2, 3))); 117 118 int ssh_packet_log_type(u_char); 119 120 int ssh_packet_send2_wrapped(struct ssh *); 121 int ssh_packet_send2(struct ssh *); 122 int ssh_packet_authentication_state(struct ssh *); 123 void ssh_packet_request_rekeying(void); 124 125 int ssh_packet_read(struct ssh *); 126 int ssh_packet_read_poll2(struct ssh *, u_char *, u_int32_t *seqnr_p); 127 int ssh_packet_process_incoming(struct ssh *, const char *buf, u_int len); 128 int ssh_packet_process_read(struct ssh *, int); 129 int ssh_packet_read_seqnr(struct ssh *, u_char *, u_int32_t *seqnr_p); 130 int ssh_packet_read_poll_seqnr(struct ssh *, u_char *, u_int32_t *seqnr_p); 131 132 void ssh_packet_disconnect(struct ssh *, const char *fmt, ...) 133 __attribute__((format(printf, 2, 3))) 134 __attribute__((noreturn)); 135 void ssh_packet_send_debug(struct ssh *, const char *fmt, ...) __attribute__((format(printf, 2, 3))); 136 137 int ssh_set_newkeys(struct ssh *, int mode); 138 void ssh_packet_get_bytes(struct ssh *, u_int64_t *, u_int64_t *); 139 140 int ssh_packet_write_poll(struct ssh *); 141 int ssh_packet_write_wait(struct ssh *); 142 int ssh_packet_have_data_to_write(struct ssh *); 143 int ssh_packet_not_very_much_data_to_write(struct ssh *); 144 int ssh_packet_interactive_data_to_write(struct ssh *); 145 146 int ssh_packet_connection_is_on_socket(struct ssh *); 147 int ssh_packet_remaining(struct ssh *); 148 149 void ssh_tty_make_modes(struct ssh *, int, struct termios *); 150 void ssh_tty_parse_modes(struct ssh *, int); 151 152 void ssh_packet_set_alive_timeouts(struct ssh *, int); 153 int ssh_packet_inc_alive_timeouts(struct ssh *); 154 int ssh_packet_set_maxsize(struct ssh *, u_int); 155 u_int ssh_packet_get_maxsize(struct ssh *); 156 157 int ssh_packet_get_state(struct ssh *, struct sshbuf *); 158 int ssh_packet_set_state(struct ssh *, struct sshbuf *); 159 160 const char *ssh_remote_ipaddr(struct ssh *); 161 int ssh_remote_port(struct ssh *); 162 const char *ssh_local_ipaddr(struct ssh *); 163 int ssh_local_port(struct ssh *); 164 const char *ssh_packet_rdomain_in(struct ssh *); 165 char *ssh_remote_hostname(struct ssh *); 166 167 void ssh_packet_set_rekey_limits(struct ssh *, u_int64_t, u_int32_t); 168 time_t ssh_packet_get_rekey_timeout(struct ssh *); 169 170 void *ssh_packet_get_input(struct ssh *); 171 void *ssh_packet_get_output(struct ssh *); 172 173 /* new API */ 174 int sshpkt_start(struct ssh *ssh, u_char type); 175 int sshpkt_send(struct ssh *ssh); 176 int sshpkt_sendx(struct ssh *ssh); 177 int sshpkt_disconnect(struct ssh *, const char *fmt, ...) 178 __attribute__((format(printf, 2, 3))); 179 int sshpkt_add_padding(struct ssh *, u_char); 180 void sshpkt_fatal(struct ssh *ssh, int r, const char *fmt, ...) 181 __attribute__((format(printf, 3, 4))) 182 __attribute__((noreturn)); 183 int sshpkt_msg_ignore(struct ssh *, u_int); 184 185 int sshpkt_put(struct ssh *ssh, const void *v, size_t len); 186 int sshpkt_putb(struct ssh *ssh, const struct sshbuf *b); 187 int sshpkt_put_u8(struct ssh *ssh, u_char val); 188 int sshpkt_put_u32(struct ssh *ssh, u_int32_t val); 189 int sshpkt_put_u64(struct ssh *ssh, u_int64_t val); 190 int sshpkt_put_string(struct ssh *ssh, const void *v, size_t len); 191 int sshpkt_put_cstring(struct ssh *ssh, const void *v); 192 int sshpkt_put_stringb(struct ssh *ssh, const struct sshbuf *v); 193 int sshpkt_put_ec(struct ssh *ssh, const EC_POINT *v, const EC_GROUP *g); 194 int sshpkt_put_ec_pkey(struct ssh *ssh, EVP_PKEY *pkey); 195 int sshpkt_put_bignum2(struct ssh *ssh, const BIGNUM *v); 196 197 int sshpkt_get(struct ssh *ssh, void *valp, size_t len); 198 int sshpkt_get_u8(struct ssh *ssh, u_char *valp); 199 int sshpkt_get_u32(struct ssh *ssh, u_int32_t *valp); 200 int sshpkt_get_u64(struct ssh *ssh, u_int64_t *valp); 201 int sshpkt_get_string(struct ssh *ssh, u_char **valp, size_t *lenp); 202 int sshpkt_get_string_direct(struct ssh *ssh, const u_char **valp, size_t *lenp); 203 int sshpkt_peek_string_direct(struct ssh *ssh, const u_char **valp, size_t *lenp); 204 int sshpkt_get_cstring(struct ssh *ssh, char **valp, size_t *lenp); 205 int sshpkt_getb_froms(struct ssh *ssh, struct sshbuf **valp); 206 int sshpkt_get_ec(struct ssh *ssh, EC_POINT *v, const EC_GROUP *g); 207 int sshpkt_get_bignum2(struct ssh *ssh, BIGNUM **valp); 208 int sshpkt_get_end(struct ssh *ssh); 209 void sshpkt_fmt_connection_id(struct ssh *ssh, char *s, size_t l); 210 const u_char *sshpkt_ptr(struct ssh *, size_t *lenp); 211 212 #endif /* PACKET_H */ 213