18d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt/* 28d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * IKEv2 initiator (RFC 4306) for EAP-IKEV2 38d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Copyright (c) 2007, Jouni Malinen <j@w1.fi> 48d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 58d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * This program is free software; you can redistribute it and/or modify 68d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * it under the terms of the GNU General Public License version 2 as 78d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * published by the Free Software Foundation. 88d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 98d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Alternatively, this software may be distributed under the terms of BSD 108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * license. 118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * 128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * See README and COPYING for more details. 138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt */ 148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifndef IKEV2_H 168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define IKEV2_H 178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "eap_common/ikev2_common.h" 198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct ikev2_proposal_data { 218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 proposal_num; 228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int integ; 238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int prf; 248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int encr; 258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int dh; 268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}; 278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct ikev2_initiator_data { 308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt enum { SA_INIT, SA_AUTH, CHILD_SA, IKEV2_DONE } state; 318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 i_spi[IKEV2_SPI_LEN]; 328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 r_spi[IKEV2_SPI_LEN]; 338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 i_nonce[IKEV2_NONCE_MAX_LEN]; 348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t i_nonce_len; 358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 r_nonce[IKEV2_NONCE_MAX_LEN]; 368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t r_nonce_len; 378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct wpabuf *r_dh_public; 388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct wpabuf *i_dh_private; 398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct ikev2_proposal_data proposal; 408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt const struct dh_group *dh; 418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct ikev2_keys keys; 428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *IDi; 438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t IDi_len; 448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *IDr; 458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t IDr_len; 468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 IDr_type; 478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct wpabuf *r_sign_msg; 488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt struct wpabuf *i_sign_msg; 498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *shared_secret; 508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t shared_secret_len; 518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt enum { PEER_AUTH_CERT, PEER_AUTH_SECRET } peer_auth; 528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt u8 *key_pad; 538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t key_pad_len; 548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt const u8 * (*get_shared_secret)(void *ctx, const u8 *IDr, 568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt size_t IDr_len, size_t *secret_len); 578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt void *cb_ctx; 588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt int unknown_user; 598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}; 608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ikev2_initiator_deinit(struct ikev2_initiator_data *data); 638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint ikev2_initiator_process(struct ikev2_initiator_data *data, 648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt const struct wpabuf *buf); 658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct wpabuf * ikev2_initiator_build(struct ikev2_initiator_data *data); 668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt 678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* IKEV2_H */ 68