Parse PEM RSA keys ourself, and use libgcrypt to do RSA encryption and decryption.
[tinc] / src / connection.h
1 /*
2     connection.h -- header for connection.c
3     Copyright (C) 2000-2006 Guus Sliepen <guus@tinc-vpn.org>,
4                   2000-2005 Ivo Timmermans
5
6     This program is free software; you can redistribute it and/or modify
7     it under the terms of the GNU General Public License as published by
8     the Free Software Foundation; either version 2 of the License, or
9     (at your option) any later version.
10
11     This program is distributed in the hope that it will be useful,
12     but WITHOUT ANY WARRANTY; without even the implied warranty of
13     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14     GNU General Public License for more details.
15
16     You should have received a copy of the GNU General Public License
17     along with this program; if not, write to the Free Software
18     Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
19
20     $Id$
21 */
22
23 #ifndef __TINC_CONNECTION_H__
24 #define __TINC_CONNECTION_H__
25
26 //#include <openssl/rsa.h>
27 #include <openssl/evp.h>
28
29 #include <event.h>
30
31 #include "rsa.h"
32 #include "splay_tree.h"
33
34 #define OPTION_INDIRECT         0x0001
35 #define OPTION_TCPONLY          0x0002
36 #define OPTION_PMTU_DISCOVERY   0x0004
37
38 typedef union connection_status_t {
39         struct {
40                 int pinged:1;                           /* sent ping */
41                 int active:1;                           /* 1 if active.. */
42                 int connecting:1;                       /* 1 if we are waiting for a non-blocking connect() to finish */
43                 int termreq:1;                          /* the termination of this connection was requested */
44                 int remove_unused:1;                            /* Set to 1 if you want this connection removed */
45                 int timeout_unused:1;                           /* 1 if gotten timeout */
46                 int encryptout:1;                       /* 1 if we can encrypt outgoing traffic */
47                 int decryptin:1;                        /* 1 if we have to decrypt incoming traffic */
48                 int mst:1;                              /* 1 if this connection is part of a minimum spanning tree */
49                 int unused:23;
50         };
51         uint32_t value;
52 } connection_status_t;
53
54 #include "edge.h"
55 #include "list.h"
56 #include "net.h"
57 #include "node.h"
58
59 typedef struct connection_t {
60         char *name;                                     /* name he claims to have */
61
62         union sockaddr_t address;                       /* his real (internet) ip */
63         char *hostname;                         /* the hostname of its real ip */
64         int protocol_version;           /* used protocol */
65
66         int socket;                                     /* socket used for this connection */
67         long int options;                       /* options for this connection */
68         connection_status_t status;     /* status info */
69         int estimated_weight;           /* estimation for the weight of the edge for this connection */
70         struct timeval start;           /* time this connection was started, used for above estimation */
71         struct outgoing_t *outgoing;    /* used to keep track of outgoing connections */
72
73         struct node_t *node;            /* node associated with the other end */
74         struct edge_t *edge;            /* edge associated with this connection */
75
76         //RSA *rsa_key;                         /* his public/private key */
77         struct rsa_key_t rsa_key;          /* his public/private key */
78         const EVP_CIPHER *incipher;     /* Cipher he will use to send data to us */
79         const EVP_CIPHER *outcipher;    /* Cipher we will use to send data to him */
80         EVP_CIPHER_CTX *inctx;          /* Context of encrypted meta data that will come from him to us */
81         EVP_CIPHER_CTX *outctx;         /* Context of encrypted meta data that will be sent from us to him */
82         char *inkey;                            /* His symmetric meta key + iv */
83         char *outkey;                           /* Our symmetric meta key + iv */
84         int inkeylength;                        /* Length of his key + iv */
85         int outkeylength;                       /* Length of our key + iv */
86         const EVP_MD *indigest;
87         const EVP_MD *outdigest;
88         int inmaclength;
89         int outmaclength;
90         int incompression;
91         int outcompression;
92         char *mychallenge;                      /* challenge we received from him */
93         char *hischallenge;                     /* challenge we sent to him */
94
95         struct bufferevent *buffer;                     /* buffer events on this metadata connection */
96         struct event inevent;                           /* input event on this metadata connection */
97         int tcplen;                                     /* length of incoming TCPpacket */
98         int allow_request;                      /* defined if there's only one request possible */
99
100         time_t last_ping_time;          /* last time we saw some activity from the other end or pinged them */
101
102         splay_tree_t *config_tree;      /* Pointer to configuration tree belonging to him */
103 } connection_t;
104
105 extern splay_tree_t *connection_tree;
106 extern connection_t *broadcast;
107
108 extern void init_connections(void);
109 extern void exit_connections(void);
110 extern connection_t *new_connection(void) __attribute__ ((__malloc__));
111 extern void free_connection(connection_t *);
112 extern void connection_add(connection_t *);
113 extern void connection_del(connection_t *);
114 extern void dump_connections(void);
115 extern bool read_connection_config(connection_t *);
116
117 #endif                                                  /* __TINC_CONNECTION_H__ */