18d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt/* 28d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * IEEE 802.1X-2004 Authenticator - EAPOL state machine 38d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Copyright (c) 2002-2009, Jouni Malinen <j@w1.fi> 48d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 58d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * This program is free software; you can redistribute it and/or modify 68d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * it under the terms of the GNU General Public License version 2 as 78d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * published by the Free Software Foundation. 88d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 98d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Alternatively, this software may be distributed under the terms of BSD 108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * license. 118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * See README and COPYING for more details. 138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt */ 148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifndef EAPOL_AUTH_SM_H 168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define EAPOL_AUTH_SM_H 178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define EAPOL_SM_PREAUTH BIT(0) 198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define EAPOL_SM_WAIT_START BIT(1) 208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define EAPOL_SM_USES_WPA BIT(2) 218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define EAPOL_SM_FROM_PMKSA_CACHE BIT(3) 228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct eapol_auth_config { 248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int eap_reauth_period; 258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int wpa; 268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int individual_wep_key_len; 278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int eap_server; 288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void *ssl_ctx; 298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void *msg_ctx; 308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void *eap_sim_db_priv; 318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt char *eap_req_id_text; /* a copy of this will be allocated */ 328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t eap_req_id_text_len; 338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *pac_opaque_encr_key; 348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *eap_fast_a_id; 358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t eap_fast_a_id_len; 368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt char *eap_fast_a_id_info; 378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int eap_fast_prov; 388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int pac_key_lifetime; 398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int pac_key_refresh_time; 408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int eap_sim_aka_result_ind; 418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int tnc; 428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct wps_context *wps; 438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int fragment_size; 448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u16 pwd_group; 4587fd279308af3f806848c8f2ab65ef18c6ac4c30Jouni Malinen int pbc_in_m1; 468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt /* Opaque context pointer to owner data for callback functions */ 488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void *ctx; 498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}; 508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct eap_user; 528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidttypedef enum { 548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt EAPOL_LOGGER_DEBUG, EAPOL_LOGGER_INFO, EAPOL_LOGGER_WARNING 558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt} eapol_logger_level; 568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtenum eapol_event { 588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt EAPOL_AUTH_SM_CHANGE, 598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt EAPOL_AUTH_REAUTHENTICATE 608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}; 618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct eapol_auth_cb { 638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*eapol_send)(void *ctx, void *sta_ctx, u8 type, const u8 *data, 648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t datalen); 658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*aaa_send)(void *ctx, void *sta_ctx, const u8 *data, 668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t datalen); 678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*finished)(void *ctx, void *sta_ctx, int success, int preauth); 688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int (*get_eap_user)(void *ctx, const u8 *identity, size_t identity_len, 698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int phase2, struct eap_user *user); 708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int (*sta_entry_alive)(void *ctx, const u8 *addr); 718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*logger)(void *ctx, const u8 *addr, eapol_logger_level level, 728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt const char *txt); 738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*set_port_authorized)(void *ctx, void *sta_ctx, int authorized); 748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*abort_auth)(void *ctx, void *sta_ctx); 758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*tx_key)(void *ctx, void *sta_ctx); 768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void (*eapol_event)(void *ctx, void *sta_ctx, enum eapol_event type); 778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}; 788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct eapol_authenticator * eapol_auth_init(struct eapol_auth_config *conf, 818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct eapol_auth_cb *cb); 828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid eapol_auth_deinit(struct eapol_authenticator *eapol); 838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct eapol_state_machine * 848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidteapol_auth_alloc(struct eapol_authenticator *eapol, const u8 *addr, 858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int flags, const struct wpabuf *assoc_wps_ie, 868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt const struct wpabuf *assoc_p2p_ie, void *sta_ctx); 878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid eapol_auth_free(struct eapol_state_machine *sm); 888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid eapol_auth_step(struct eapol_state_machine *sm); 898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid eapol_auth_dump_state(FILE *f, const char *prefix, 908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct eapol_state_machine *sm); 918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint eapol_auth_eap_pending_cb(struct eapol_state_machine *sm, void *ctx); 928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* EAPOL_AUTH_SM_H */ 94