18d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt/*
28d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * IKEv2 initiator (RFC 4306) for EAP-IKEV2
38d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Copyright (c) 2007, Jouni Malinen <j@w1.fi>
48d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt *
58d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * This program is free software; you can redistribute it and/or modify
68d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * it under the terms of the GNU General Public License version 2 as
78d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * published by the Free Software Foundation.
88d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt *
98d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * Alternatively, this software may be distributed under the terms of BSD
108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * license.
118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt *
128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * See README and COPYING for more details.
138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt */
148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifndef IKEV2_H
168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#define IKEV2_H
178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "eap_common/ikev2_common.h"
198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct ikev2_proposal_data {
218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 proposal_num;
228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int integ;
238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int prf;
248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int encr;
258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int dh;
268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt};
278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct ikev2_initiator_data {
308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	enum { SA_INIT, SA_AUTH, CHILD_SA, IKEV2_DONE } state;
318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 i_spi[IKEV2_SPI_LEN];
328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 r_spi[IKEV2_SPI_LEN];
338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 i_nonce[IKEV2_NONCE_MAX_LEN];
348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t i_nonce_len;
358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 r_nonce[IKEV2_NONCE_MAX_LEN];
368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t r_nonce_len;
378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct wpabuf *r_dh_public;
388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct wpabuf *i_dh_private;
398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct ikev2_proposal_data proposal;
408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	const struct dh_group *dh;
418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct ikev2_keys keys;
428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 *IDi;
438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t IDi_len;
448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 *IDr;
458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t IDr_len;
468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 IDr_type;
478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct wpabuf *r_sign_msg;
488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct wpabuf *i_sign_msg;
498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 *shared_secret;
508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t shared_secret_len;
518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	enum { PEER_AUTH_CERT, PEER_AUTH_SECRET } peer_auth;
528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 *key_pad;
538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t key_pad_len;
548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	const u8 * (*get_shared_secret)(void *ctx, const u8 *IDr,
568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt					size_t IDr_len, size_t *secret_len);
578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	void *cb_ctx;
588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int unknown_user;
598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt};
608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ikev2_initiator_deinit(struct ikev2_initiator_data *data);
638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint ikev2_initiator_process(struct ikev2_initiator_data *data,
648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			    const struct wpabuf *buf);
658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct wpabuf * ikev2_initiator_build(struct ikev2_initiator_data *data);
668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* IKEV2_H */
68