+#ifndef TINC_PROTOCOL_H
+#define TINC_PROTOCOL_H
+
/*
protocol.h -- header for protocol.c
- Copyright (C) 1999 Ivo Timmermans <zarq@iname.com>
+ Copyright (C) 1999-2005 Ivo Timmermans,
+ 2000-2017 Guus Sliepen <guus@tinc-vpn.org>
This program is free software; you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
- You should have received a copy of the GNU General Public License
- along with this program; if not, write to the Free Software
- Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
+ You should have received a copy of the GNU General Public License along
+ with this program; if not, write to the Free Software Foundation, Inc.,
+ 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
*/
-#ifndef __TINC_PROTOCOL_H__
-#define __TINC_PROTOCOL_H__
+#include "ecdsa.h"
-#include "net.h"
+/* Protocol version. Different major versions are incompatible. */
+
+#define PROT_MAJOR 17
+#define PROT_MINOR 7 /* Should not exceed 255! */
+
+/* Silly Windows */
+
+#ifdef ERROR
+#undef ERROR
+#endif
+
+/* Request numbers */
-enum {
- PROT_RESERVED = 0, /* reserved: do not use. */
- PROT_NOT_IN_USE,
- PROT_TOO_OLD = 2,
- PROT_3,
- PROT_CURRENT, /* protocol currently in use */
-};
-
-enum {
- ACK = 1, /* acknowledged */
- AUTH_S_INIT = 10, /* initiate authentication */
- AUTH_C_INIT,
- AUTH_S_SPP, /* send passphrase */
- AUTH_C_SPP,
- AUTH_S_SKEY, /* send g^k */
- AUTH_C_SKEY,
- AUTH_S_SACK, /* send ack */
- AUTH_C_RACK, /* waiting for ack */
- TERMREQ = 30, /* terminate connection */
- PINGTIMEOUT, /* terminate due to ping t.o. */
- DEL_HOST, /* forward a termreq to others */
- PING = 40, /* ping */
- PONG,
- ADD_HOST = 60, /* Add new given host to connection list */
- BASIC_INFO, /* some basic info follows */
- PASSPHRASE, /* encrypted passphrase */
- PUBLIC_KEY, /* public key in base-36 */
- HOLD = 80, /* don't send any data */
- RESUME, /* resume dataflow with new encryption key */
- CALCULATE = 100, /* calculate the following numer^privkey and send me the result */
- CALC_RES, /* result of the above */
- ALMOST_KEY, /* this number^privkey is the shared key */
- REQ_KEY = 160, /* request public key */
- ANS_KEY, /* answer to such request */
- KEY_CHANGED, /* public key has changed */
-};
-
-typedef struct add_host_t {
- unsigned char type;
- char unused1;
- ip_t real_ip;
- ip_t vpn_ip;
- ip_t vpn_mask;
- unsigned short portnr;
-} add_host_t;
-
-typedef struct termreq_t {
- unsigned char type;
- char unused1;
- ip_t vpn_ip;
-} termreq_t;
-
-typedef struct basic_info_t {
- unsigned char type;
- unsigned char protocol;
- unsigned short portnr;
- ip_t vpn_ip;
- ip_t vpn_mask;
-} basic_info_t;
-
-typedef struct calculate_t {
- unsigned char type;
- char unused1;
- unsigned short len;
- char key;
-} calculate_t;
-
-typedef struct public_key_t {
- unsigned char type;
- char unused1;
- unsigned short len;
- char key;
-} public_key_t;
-
-typedef struct key_req_t {
- unsigned char type;
- char unused1;
- ip_t from;
- ip_t to;
- time_t expiry;
- short int len; /* 0 if requesting */
- char key;
-} key_req_t;
-
-typedef struct key_changed_t {
- unsigned char type;
- char unused1;
- ip_t from;
-} key_changed_t;
-
-typedef struct del_host_t {
- unsigned char type;
- char unused1;
- ip_t vpn_ip;
-} del_host_t;
-
-extern int (*request_handlers[256])(conn_list_t*, unsigned char*, int);
-
-extern int send_ping(conn_list_t*);
-extern int send_basic_info(conn_list_t *);
-extern int send_termreq(conn_list_t *);
-extern int send_timeout(conn_list_t *);
-extern int send_key_request(ip_t);
-extern void send_key_changed2(void);
-
-#endif /* __TINC_PROTOCOL_H__ */
+typedef enum request_t {
+ ALL = -1, /* Guardian for allow_request */
+ ID = 0, METAKEY, CHALLENGE, CHAL_REPLY, ACK,
+ STATUS, ERROR, TERMREQ,
+ PING, PONG,
+ ADD_SUBNET, DEL_SUBNET,
+ ADD_EDGE, DEL_EDGE,
+ KEY_CHANGED, REQ_KEY, ANS_KEY,
+ PACKET,
+ /* Tinc 1.1 requests */
+ CONTROL,
+ REQ_PUBKEY, ANS_PUBKEY,
+ SPTPS_PACKET,
+ UDP_INFO, MTU_INFO,
+ LAST /* Guardian for the highest request number */
+} request_t;
+typedef struct past_request_t {
+ const char *request;
+ time_t firstseen;
+} past_request_t;
+
+extern bool tunnelserver;
+extern bool strictsubnets;
+extern bool experimental;
+
+extern int invitation_lifetime;
+extern ecdsa_t *invitation_key;
+
+/* Maximum size of strings in a request.
+ * scanf terminates %2048s with a NUL character,
+ * but the NUL character can be written after the 2048th non-NUL character.
+ */
+
+#define MAX_STRING_SIZE 2049
+#define MAX_STRING "%2048s"
+
+#include "edge.h"
+#include "net.h"
+#include "node.h"
+#include "subnet.h"
+
+/* Basic functions */
+
+extern bool send_request(struct connection_t *c, const char *format, ...) __attribute__((__format__(printf, 2, 3)));
+extern void forward_request(struct connection_t *c, const char *request);
+extern bool receive_request(struct connection_t *c, const char *request);
+
+extern void exit_requests(void);
+extern bool seen_request(const char *request);
+
+/* Requests */
+
+extern bool send_id(struct connection_t *c);
+extern bool send_metakey(struct connection_t *c);
+extern bool send_metakey_ec(struct connection_t *c);
+extern bool send_challenge(struct connection_t *c);
+extern bool send_chal_reply(struct connection_t *c);
+extern bool send_ack(struct connection_t *c);
+extern bool send_termreq(struct connection_t *c);
+extern bool send_ping(struct connection_t *c);
+extern bool send_pong(struct connection_t *c);
+extern bool send_add_subnet(struct connection_t *c, const struct subnet_t *subnet);
+extern bool send_del_subnet(struct connection_t *c, const struct subnet_t *subnet);
+extern bool send_add_edge(struct connection_t *c, const struct edge_t *e);
+extern bool send_del_edge(struct connection_t *c, const struct edge_t *e);
+extern void send_key_changed(void);
+extern bool send_req_key(struct node_t *to);
+extern bool send_ans_key(struct node_t *to);
+extern bool send_tcppacket(struct connection_t *c, const struct vpn_packet_t *packet);
+extern bool send_sptps_tcppacket(struct connection_t *c, const void *packet, size_t len);
+extern bool send_udp_info(struct node_t *from, struct node_t *to);
+extern bool send_mtu_info(struct node_t *from, struct node_t *to, int mtu);
+
+/* Request handlers */
+
+extern bool id_h(struct connection_t *c, const char *request);
+extern bool metakey_h(struct connection_t *c, const char *request);
+extern bool challenge_h(struct connection_t *c, const char *request);
+extern bool chal_reply_h(struct connection_t *c, const char *request);
+extern bool ack_h(struct connection_t *c, const char *request);
+extern bool status_h(struct connection_t *c, const char *request);
+extern bool error_h(struct connection_t *c, const char *request);
+extern bool termreq_h(struct connection_t *c, const char *request);
+extern bool ping_h(struct connection_t *c, const char *request);
+extern bool pong_h(struct connection_t *c, const char *request);
+extern bool add_subnet_h(struct connection_t *c, const char *request);
+extern bool del_subnet_h(struct connection_t *c, const char *request);
+extern bool add_edge_h(struct connection_t *c, const char *request);
+extern bool del_edge_h(struct connection_t *c, const char *request);
+extern bool key_changed_h(struct connection_t *c, const char *request);
+extern bool req_key_h(struct connection_t *c, const char *request);
+extern bool ans_key_h(struct connection_t *c, const char *request);
+extern bool tcppacket_h(struct connection_t *c, const char *request);
+extern bool sptps_tcppacket_h(struct connection_t *c, const char *request);
+extern bool control_h(struct connection_t *c, const char *request);
+extern bool udp_info_h(struct connection_t *c, const char *request);
+extern bool mtu_info_h(struct connection_t *c, const char *request);
+
+#endif