1 /* shishi.h Header file for Shishi library. -*- c -*-
2 * Copyright (C) 2002, 2003 Simon Josefsson
4 * This file is part of Shishi.
6 * Shishi is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 2 of the License, or
9 * (at your option) any later version.
11 * Shishi is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with Shishi; if not, write to the Free Software
18 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
25 #include <stdio.h> /* FILE */
26 #include <stddef.h> /* size_t */
28 #define SHISHI_VERSION "@PACKAGE_VERSION@"
34 SHISHI_ASN1_ERROR
= 1,
35 SHISHI_FOPEN_ERROR
= 2,
36 SHISHI_FCLOSE_ERROR
= 3,
37 SHISHI_MALLOC_ERROR
= 4,
38 SHISHI_BASE64_ERROR
= 5,
39 SHISHI_REALM_MISMATCH
= 6,
40 SHISHI_CNAME_MISMATCH
= 7,
41 SHISHI_NONCE_MISMATCH
= 8,
42 SHISHI_TGSREP_BAD_KEYTYPE
= 9,
43 SHISHI_KDCREP_BAD_KEYTYPE
= 10,
44 SHISHI_APREP_BAD_KEYTYPE
= 11,
45 SHISHI_APREP_VERIFY_FAILED
= 12,
46 SHISHI_APREQ_BAD_KEYTYPE
= 13,
47 SHISHI_TOO_SMALL_BUFFER
= 14,
48 SHISHI_DERIVEDKEY_TOO_SMALL
= 15,
49 SHISHI_KEY_TOO_LARGE
= 16,
50 SHISHI_CRYPTO_ERROR
= 17,
51 SHISHI_GCRYPT_ERROR
= 18,
52 SHISHI_SOCKET_ERROR
= 19,
53 SHISHI_BIND_ERROR
= 20,
54 SHISHI_SENDTO_ERROR
= 21,
55 SHISHI_RECVFROM_ERROR
= 22,
56 SHISHI_CLOSE_ERROR
= 23,
57 SHISHI_KDC_TIMEOUT
= 24,
58 SHISHI_KDC_NOT_KNOWN_FOR_REALM
= 25,
59 SHISHI_TTY_ERROR
= 26,
60 SHISHI_GOT_KRBERROR
= 27,
61 SHISHI_HANDLE_ERROR
= 28,
62 SHISHI_INVALID_TKTS
= 29,
63 SHISHI_TICKET_BAD_KEYTYPE
= 30,
64 SHISHI_INVALID_KEY
= 31,
65 SHISHI_APREQ_DECRYPT_FAILED
= 32,
66 SHISHI_TICKET_DECRYPT_FAILED
= 33,
67 SHISHI_INVALID_TICKET
= 34,
68 SHISHI_OUT_OF_RANGE
= 35,
69 SHISHI_ASN1_NO_ELEMENT
= 36,
70 SHISHI_SAFE_BAD_KEYTYPE
= 37,
71 SHISHI_SAFE_VERIFY_FAILED
= 38
74 /* This is not specified in the ASN.1 syntax for some reason. */
77 SHISHI_NT_UNKNOWN
= 0, /* Name type not known */
78 SHISHI_NT_PRINCIPAL
, /* Just the name of the principal as in */
79 /* DCE, or for users */
80 SHISHI_NT_SRV_INST
, /* Service and other unique instance (krbtgt) */
81 SHISHI_NT_SRV_HST
, /* Service with host name as instance */
82 /* (telnet, rcommands) */
83 SHISHI_NT_SRV_XHST
, /* Service with host as remaining components */
84 SHISHI_NT_UID
/* Unique ID */
88 /* This is not specified in the ASN.1 syntax for some reason. */
91 SHISHI_PA_TGS_REQ
= 1, /* padata is APREQ */
92 SHISHI_PA_ENC_TIMESTAMP
, /* timestamp pre authentication */
93 SHISHI_PA_PW_SALT
, /* salt for string-to-key */
94 SHISHI_PA_ETYPE_INFO
= 10, /* in krb-error, request for preauth */
95 SHISHI_PA_USE_SPECIFIED_KVNO
= 20 /* use specified kvno */
99 /* This is not specified in the ASN.1 syntax for some reason. */
102 SHISHI_TR_DOMAIN_X500_COMPRESS
= 1
108 SHISHI_APOPTIONS_RESERVED
= 0x1, /* bit 0 */
109 SHISHI_APOPTIONS_USE_SESSION_KEY
= 0x2, /* bit 1 */
110 SHISHI_APOPTIONS_MUTUAL_REQUIRED
= 0x4 /* bit 2 */
116 SHISHI_TICKETFLAGS_RESERVED
= 0x1, /* bit 0 */
117 SHISHI_TICKETFLAGS_FORWARDABLE
= 0x2, /* bit 1 */
118 SHISHI_TICKETFLAGS_FORWARDED
= 0x4, /* bit 2 */
119 SHISHI_TICKETFLAGS_PROXIABLE
= 0x8, /* bit 3 */
120 SHISHI_TICKETFLAGS_PROXY
= 0x10, /* bit 4 */
121 SHISHI_TICKETFLAGS_MAY_POSTDATE
= 0x20, /* bit 5 */
122 SHISHI_TICKETFLAGS_POSTDATED
= 0x40, /* bit 6 */
123 SHISHI_TICKETFLAGS_INVALID
= 0x80, /* bit 7 */
124 SHISHI_TICKETFLAGS_RENEWABLE
= 0x100, /* bit 8 */
125 SHISHI_TICKETFLAGS_INITIAL
= 0x200, /* bit 9 */
126 SHISHI_TICKETFLAGS_PRE_AUTHENT
= 0x400, /* bit 10 */
127 SHISHI_TICKETFLAGS_HW_AUTHENT
= 0x800, /* bit 11 */
128 SHISHI_TICKETFLAGS_TRANSITED_POLICY_CHECKED
= 0x1000, /* bit 12 */
129 SHISHI_TICKETFLAGS_OK_AS_DELEGATE
= 0x2000 /* bit 13 */
135 SHISHI_KDCOPTIONS_RESERVED
= 0x1, /* bit 0 */
136 SHISHI_KDCOPTIONS_FORWARDABLE
= 0x2, /* bit 1 */
137 SHISHI_KDCOPTIONS_FORWARDED
= 0x4, /* bit 2 */
138 SHISHI_KDCOPTIONS_PROXIABLE
= 0x8, /* bit 3 */
139 SHISHI_KDCOPTIONS_PROXY
= 0x10, /* bit 4 */
140 SHISHI_KDCOPTIONS_ALLOW_POSTDATE
= 0x20, /* bit 5 */
141 SHISHI_KDCOPTIONS_POSTDATED
= 0x40, /* bit 6 */
142 SHISHI_KDCOPTIONS_UNUSED7
= 0x80, /* bit 7 */
143 SHISHI_KDCOPTIONS_RENEWABLE
= 0x100, /* bit 8 */
144 SHISHI_KDCOPTIONS_UNUSED9
= 0x200, /* bit 9 */
145 SHISHI_KDCOPTIONS_UNUSED10
= 0x400, /* bit 10 */
146 SHISHI_KDCOPTIONS_UNUSED11
= 0x800, /* bit 11 */
147 SHISHI_KDCOPTIONS_DISABLE_TRANSITED_CHECK
= 0x4000000, /* bit 26 */
148 SHISHI_KDCOPTIONS_RENEWABLE_OK
= 0x8000000, /* bit 27 */
149 SHISHI_KDCOPTIONS_ENC_TKT_IN_SKEY
= 0x10000000, /* bit 28 */
150 SHISHI_KDCOPTIONS_RENEW
= 0x40000000, /* bit 30 */
151 SHISHI_KDCOPTIONS_VALIDATE
= 0x80000000 /* bit 31 */
157 SHISHI_MSGTYPE_AS_REQ
= 10,
158 SHISHI_MSGTYPE_AS_REP
= 11,
159 SHISHI_MSGTYPE_TGS_REQ
= 12,
160 SHISHI_MSGTYPE_TGS_REP
= 13
166 SHISHI_LRTYPE_LAST_INITIAL_TGT_REQUEST
= 1,
167 SHISHI_LRTYPE_LAST_INITIAL_REQUEST
= 2,
168 SHISHI_LRTYPE_NEWEST_TGT_ISSUE
= 3,
169 SHISHI_LRTYPE_LAST_RENEWAL
= 4,
170 SHISHI_LRTYPE_LAST_REQUEST
= 5
177 SHISHI_DES_CBC_CRC
= 1,
178 SHISHI_DES_CBC_MD4
= 2,
179 SHISHI_DES_CBC_MD5
= 3,
180 SHISHI_DES3_CBC_HMAC_SHA1_KD
= 16,
181 SHISHI_AES128_CTS_HMAC_SHA1_96
= 17,
182 SHISHI_AES256_CTS_HMAC_SHA1_96
= 18
190 SHISHI_RSA_MD4_DES
= 3,
192 SHISHI_DES_MAC_K
= 5,
193 SHISHI_RSA_MD4_DES_K
= 6,
195 SHISHI_RSA_MD5_DES
= 8,
196 SHISHI_HMAC_SHA1_96_AES128
= 10,
197 SHISHI_HMAC_SHA1_96_AES256
= 11,
198 SHISHI_HMAC_SHA1_DES3_KD
= 12
204 SHISHI_FILETYPE_TEXT
= 0,
207 SHISHI_FILETYPE_BASE64
,
208 SHISHI_FILETYPE_BINARY
214 /* 1. AS-REQ PA-ENC-TIMESTAMP padata timestamp, encrypted with the
216 SHISHI_KEYUSAGE_ASREQ_PA_ENC_TIMESTAMP
= 1,
217 /* 2. AS-REP Ticket and TGS-REP Ticket (includes TGS session key or
218 application session key), encrypted with the service key */
219 SHISHI_KEYUSAGE_ENCTICKETPART
= 2,
220 /* 3. AS-REP encrypted part (includes TGS session key or application
221 session key), encrypted with the client key */
222 SHISHI_KEYUSAGE_ENCASREPPART
= 3,
223 /* 4. TGS-REQ KDC-REQ-BODY AuthorizationData, encrypted with the TGS
225 SHISHI_KEYUSAGE_TGSREQ_AUTHORIZATIONDATA_TGS_SESSION_KEY
= 4,
226 /* 5. TGS-REQ KDC-REQ-BODY AuthorizationData, encrypted with the TGS
227 authenticator subkey (section 5.4.1) */
228 SHISHI_KEYUSAGE_TGSREQ_AUTHORIZATIONDATA_TGS_AUTHENTICATOR_KEY
= 5,
229 /* 6. TGS-REQ PA-TGS-REQ padata AP-REQ Authenticator cksum, keyed with the
231 SHISHI_KEYUSAGE_TGSREQ_APREQ_AUTHENTICATOR_CKSUM
= 6,
232 /* 7. TGS-REQ PA-TGS-REQ padata AP-REQ Authenticator (includes TGS
233 authenticator subkey), encrypted with the TGS session key */
234 SHISHI_KEYUSAGE_TGSREQ_APREQ_AUTHENTICATOR
= 7,
235 /* 8. TGS-REP encrypted part (includes application session key), encrypted
236 with the TGS session key */
237 SHISHI_KEYUSAGE_ENCTGSREPPART_SESSION_KEY
= 8,
238 /* 9. TGS-REP encrypted part (includes application session key), encrypted
239 with the TGS authenticator subkey */
240 SHISHI_KEYUSAGE_ENCTGSREPPART_AUTHENTICATOR_KEY
= 9,
241 /* 10. AP-REQ Authenticator cksum, keyed with the application
243 SHISHI_KEYUSAGE_APREQ_AUTHENTICATOR_CKSUM
= 10,
244 /* 11. AP-REQ Authenticator (includes application authenticator subkey),
245 encrypted with the application session key */
246 SHISHI_KEYUSAGE_APREQ_AUTHENTICATOR
= 11,
247 /* 12. AP-REP encrypted part (includes application session subkey),
248 encrypted with the application session key */
249 SHISHI_KEYUSAGE_ENCAPREPPART
= 12,
250 /* 13. KRB-PRIV encrypted part, encrypted with a key chosen by the
252 SHISHI_KEYUSAGE_KRB_PRIV
= 13,
253 /* 14. KRB-CRED encrypted part, encrypted with a key chosen by the
255 SHISHI_KEYUSAGE_KRB_CRED
= 14,
256 /* 15. KRB-SAFE cksum, keyed with a key chosen by the application */
257 SHISHI_KEYUSAGE_KRB_SAFE
= 15,
258 /* 18. KRB-ERROR checksum (e-cksum) */
259 SHISHI_KEYUSAGE_KRB_ERROR
= 18,
260 /* 19. AD-KDCIssued checksum (ad-checksum) */
261 SHISHI_KEYUSAGE_AD_KDCISSUED
= 19,
262 /* 20. Checksum for Mandatory Ticket Extensions */
263 SHISHI_KEYUSAGE_TICKET_EXTENSION
= 20,
264 /* 21. Checksum in Authorization Data in Ticket Extensions */
265 SHISHI_KEYUSAGE_TICKET_EXTENSION_AUTHORIZATION
= 21,
266 /* 22-24. Reserved for use in GSSAPI mechanisms derived from RFC 1964.
268 SHISHI_KEYUSAGE_GSS_R1
= 22,
269 SHISHI_KEYUSAGE_GSS_R2
= 23,
270 SHISHI_KEYUSAGE_GSS_R3
= 24,
271 /* 25-511. Reserved for future use in Kerberos and related protocols. */
272 /* 512-1023. Reserved for uses internal to a Kerberos implementation. */
278 SHISHI_TKTSHINTFLAGS_ACCEPT_EXPIRED
= 1
280 Shishi_tkts_hintflags
;
282 struct Shishi_tkts_hint
286 const char *serverrealm
;
288 const char *clientrealm
;
293 typedef struct Shishi_tkts_hint Shishi_tkts_hint
;
295 typedef struct Shishi Shishi
;
296 typedef struct Shishi_tkt Shishi_tkt
;
297 typedef struct Shishi_tkts Shishi_tkts
;
298 typedef struct Shishi_as Shishi_as
;
299 typedef struct Shishi_tgs Shishi_tgs
;
300 typedef struct Shishi_ap Shishi_ap
;
301 typedef struct Shishi_key Shishi_key
;
302 typedef struct Shishi_safe Shishi_safe
;
303 #ifndef _SHISHI_HAS_LIBTASN1_H
304 typedef struct node_asn_struct
*ASN1_TYPE
;
306 typedef ASN1_TYPE Shishi_asn1
;
309 extern Shishi
*shishi (void);
310 extern int shishi_init (Shishi
** handle
);
311 extern int shishi_init_with_paths (Shishi
** handle
,
312 const char *tktsfile
,
313 const char *systemcfgfile
,
314 const char *usercfgfile
);
315 extern int shishi_init_server (Shishi
** handle
);
316 extern int shishi_init_server_with_paths (Shishi
** handle
,
317 const char *systemcfgfile
);
318 extern void shishi_warn (Shishi
* handle
, const char *fmt
, ...);
321 extern void shishi_done (Shishi
* handle
);
324 extern int shishi_cfg (Shishi
* handle
, char *option
);
325 extern int shishi_cfg_from_file (Shishi
* handle
, const char *cfg
);
326 extern int shishi_cfg_print (Shishi
* handle
, FILE * fh
);
327 extern const char *shishi_cfg_default_systemfile (Shishi
* handle
);
328 extern const char *shishi_cfg_default_userfile (Shishi
* handle
);
329 extern int shishi_cfg_clientkdcetype (Shishi
* handle
, int **etypes
);
330 extern int shishi_cfg_clientkdcetype_set (Shishi
* handle
, char *value
);
333 extern const char *shishi_strerror (int err
);
334 extern const char *shishi_strerror_details (Shishi
* handle
);
335 extern void shishi_error_set (Shishi
* handle
, const char *error
);
336 extern void shishi_error_printf (Shishi
* handle
, char *format
, ...);
337 extern void shishi_error_clear (Shishi
* handle
);
340 extern char *shishi_realm_default_guess (void);
341 extern const char *shishi_realm_default (Shishi
* handle
);
342 extern void shishi_realm_default_set (Shishi
* handle
, const char *realm
);
343 extern const char *shishi_realm_for_server_file (Shishi
* handle
,
345 extern const char *shishi_realm_for_server_dns (Shishi
* handle
,
347 extern const char *shishi_realm_for_server (Shishi
* handle
, char *server
);
350 extern char *shishi_principal_default_guess (void);
351 extern const char *shishi_principal_default (Shishi
* handle
);
352 extern void shishi_principal_default_set (Shishi
* handle
,
353 const char *principal
);
354 extern int shishi_principal_name_get (Shishi
* handle
, Shishi_asn1 namenode
,
355 const char *namefield
, char *out
,
357 extern int shishi_principal_name_realm_get (Shishi
* handle
,
358 Shishi_asn1 namenode
,
359 const char *namefield
,
360 Shishi_asn1 realmnode
,
361 const char *realmfield
,
362 char *out
, size_t * outlen
);
363 extern int shishi_principal_name_set (Shishi
* handle
,
364 Shishi_asn1 namenode
,
365 const char *namefield
,
366 Shishi_name_type name_type
,
368 extern int shishi_principal_set (Shishi
* handle
,
369 Shishi_asn1 namenode
,
370 const char *namefield
,
374 extern int shishi_ticket_sname_get (Shishi
* handle
,
376 char *server
, int *serverlen
);
377 extern int shishi_ticket_sname_set (Shishi
* handle
,
379 Shishi_name_type name_type
,
381 extern int shishi_ticket_snamerealm_get (Shishi
* handle
, Shishi_asn1 ticket
,
383 int *serverrealmlen
);
384 extern int shishi_ticket_srealmserver_set (Shishi
* handle
,
385 Shishi_asn1 ticket
, char *realm
,
387 extern int shishi_ticket_set_server (Shishi
* handle
, Shishi_asn1 ticket
,
389 extern int shishi_ticket_realm_get (Shishi
* handle
, Shishi_asn1 ticket
,
390 char *realm
, int *realmlen
);
391 extern int shishi_ticket_realm_set (Shishi
* handle
, Shishi_asn1 ticket
,
393 extern int shishi_ticket_get_enc_part_etype (Shishi
* handle
,
394 Shishi_asn1 ticket
, int *etype
);
395 extern int shishi_ticket_set_enc_part (Shishi
* handle
, Shishi_asn1 ticket
,
396 int etype
, int kvno
, char *buf
,
398 extern int shishi_ticket_add_enc_part (Shishi
* handle
, Shishi_asn1 ticket
,
400 Shishi_asn1 encticketpart
);
401 extern int shishi_enckdcreppart_key_set (Shishi
* handle
,
402 Shishi_asn1 enckdcreppart
,
404 extern int shishi_ticket_decrypt (Shishi
* handle
, Shishi_asn1 ticket
,
406 Shishi_asn1
* encticketpart
);
409 extern Shishi_asn1
shishi_tkt_ticket (Shishi_tkt
* tkt
);
410 extern Shishi_asn1
shishi_tkt_kdcrep (Shishi_tkt
* tkt
);
411 extern Shishi_asn1
shishi_tkt_enckdcreppart (Shishi_tkt
* tkt
);
412 extern void shishi_tkt_enckdcreppart_set (Shishi_tkt
* tkt
,
413 Shishi_asn1 enckdcreppart
);
414 extern Shishi_asn1
shishi_tkt_encticketpart (Shishi_tkt
* tkt
);
415 extern void shishi_tkt_encticketpart_set (Shishi_tkt
* tkt
,
416 Shishi_asn1 encticketpart
);
417 extern Shishi_key
*shishi_tkt_key (Shishi_tkt
* tkt
);
418 extern int shishi_tkt_key_set (Shishi_tkt
* tkt
, Shishi_key
* key
);
419 extern int shishi_tkt (Shishi
* handle
, Shishi_tkt
** tkt
);
420 extern Shishi_tkt
*shishi_tkt2 (Shishi
* handle
,
422 Shishi_asn1 enckdcreppart
,
424 extern int shishi_tkt_pretty_print (Shishi_tkt
* tkt
, FILE * fh
);
425 extern int shishi_tkt_realm (Shishi_tkt
* tkt
, char *realm
, int *realmlen
);
426 extern int shishi_tkt_cnamerealm (Shishi_tkt
* tkt
,
427 char *cnamerealm
, int *cnamerealmlen
);
428 extern int shishi_tkt_cnamerealm_p (Shishi_tkt
* tkt
, const char *client
);
429 extern int shishi_tkt_client (Shishi_tkt
* tkt
, char *client
, int *clientlen
);
430 extern int shishi_tkt_client_p (Shishi_tkt
* tkt
, const char *client
);
431 extern int shishi_tkt_clientrealm_set (Shishi_tkt
* tkt
,
432 char *realm
, char *client
);
433 extern int shishi_tkt_serverrealm_set (Shishi_tkt
* tkt
,
434 char *realm
, char *server
);
435 extern int shishi_tkt_build (Shishi_tkt
* tkt
, Shishi_key
* key
);
436 extern int shishi_tkt_lastreq (Shishi_tkt
* tkt
,
437 char *lrtime
, int *lrtimelen
, int lrtype
);
438 extern time_t shishi_tkt_lastreqc (Shishi_tkt
* tkt
, Shihi_lrtype lrtype
);
439 extern int shishi_tkt_lastreq_pretty_print (Shishi_tkt
* tkt
, FILE * fh
);
440 extern int shishi_tkt_authtime (Shishi_tkt
* tkt
,
441 char *authtime
, int *authtimelen
);
442 extern time_t shishi_tkt_authctime (Shishi_tkt
* tkt
);
443 extern int shishi_tkt_starttime (Shishi_tkt
* tkt
,
444 char *starttime
, int *starttimelen
);
445 extern time_t shishi_tkt_startctime (Shishi_tkt
* tkt
);
446 extern int shishi_tkt_endtime (Shishi_tkt
* tkt
,
447 char *endtime
, int *endtimelen
);
448 extern time_t shishi_tkt_endctime (Shishi_tkt
* tkt
);
449 extern int shishi_tkt_renew_till (Shishi_tkt
* tkt
,
450 char *renewtilltime
, int *renewtilllen
);
451 extern time_t shishi_tkt_renew_tillc (Shishi_tkt
* tkt
);
452 extern int shishi_tkt_keytype (Shishi_tkt
* tkt
, int *etype
);
453 extern int shishi_tkt_keytype_p (Shishi_tkt
* tkt
, int etype
);
454 extern int shishi_tkt_server (Shishi_tkt
* tkt
,
455 char *service
, int *servicelen
);
456 extern int shishi_tkt_server_p (Shishi_tkt
* tkt
, const char *service
);
457 extern int shishi_tkt_server_realm (Shishi_tkt
* tkt
,
458 char *serverrealm
, int *serverrealmlen
);
459 extern int shishi_tkt_valid_at_time_p (Shishi_tkt
* tkt
, time_t now
);
460 extern int shishi_tkt_valid_now_p (Shishi_tkt
* tkt
);
461 extern int shishi_tkt_decrypt (Shishi_tkt
* tkt
, Shishi_key
* key
);
462 extern void shishi_tkt_done (Shishi_tkt
* tkt
);
463 extern int shishi_tkt_flags (Shishi_tkt
* tkt
, int *flags
);
464 extern int shishi_tkt_flags_set (Shishi_tkt
* tkt
, int flags
);
465 extern int shishi_tkt_forwardable_p (Shishi_tkt
* tkt
);
466 extern int shishi_tkt_forwarded_p (Shishi_tkt
* tkt
);
467 extern int shishi_tkt_proxiable_p (Shishi_tkt
* tkt
);
468 extern int shishi_tkt_proxy_p (Shishi_tkt
* tkt
);
469 extern int shishi_tkt_may_postdate_p (Shishi_tkt
* tkt
);
470 extern int shishi_tkt_postdated_p (Shishi_tkt
* tkt
);
471 extern int shishi_tkt_invalid_p (Shishi_tkt
* tkt
);
472 extern int shishi_tkt_renewable_p (Shishi_tkt
* tkt
);
473 extern int shishi_tkt_initial_p (Shishi_tkt
* tkt
);
474 extern int shishi_tkt_pre_authent_p (Shishi_tkt
* tkt
);
475 extern int shishi_tkt_hw_authent_p (Shishi_tkt
* tkt
);
476 extern int shishi_tkt_transited_policy_checked_p (Shishi_tkt
* tkt
);
477 extern int shishi_tkt_ok_as_delegate_p (Shishi_tkt
* tkt
);
480 extern char *shishi_tkts_default_file_guess (void);
481 extern const char *shishi_tkts_default_file (Shishi
* handle
);
482 extern void shishi_tkts_default_file_set (Shishi
* handle
,
483 const char *tktsfile
);
484 extern Shishi_tkts
*shishi_tkts_default (Shishi
* handle
);
485 extern int shishi_tkts (Shishi
* handle
, Shishi_tkts
** tkts
);
486 extern Shishi_tkt
*shishi_tkts_nth (Shishi_tkts
* tkts
, int ticketno
);
487 extern int shishi_tkts_size (Shishi_tkts
* tkts
);
488 extern int shishi_tkts_add (Shishi_tkts
* tkts
, Shishi_tkt
* ticket
);
489 extern int shishi_tkts_new (Shishi_tkts
* tkts
,
491 Shishi_asn1 enckdcreppart
, Shishi_asn1 kdcrep
);
492 extern int shishi_tkts_remove (Shishi_tkts
* tkts
, int ticketno
);
493 extern int shishi_tkts_expire (Shishi_tkts
* tkts
);
494 extern int shishi_tkts_print_for_service (Shishi_tkts
* tkts
,
496 const char *service
);
497 extern int shishi_tkts_print (Shishi_tkts
* tkts
, FILE * fh
);
498 extern int shishi_tkts_write (Shishi_tkts
* tkts
, FILE * fh
);
499 extern int shishi_tkts_to_file (Shishi_tkts
* tkts
, const char *filename
);
500 extern int shishi_tkts_read (Shishi_tkts
* tkts
, FILE * fh
);
501 extern int shishi_tkts_from_file (Shishi_tkts
* tkts
, const char *filename
);
502 extern void shishi_tkts_done (Shishi_tkts
** tkts
);
503 extern int shishi_tkt_match_p (Shishi_tkt
* tkt
, Shishi_tkts_hint
* hint
);
504 extern Shishi_tkt
*shishi_tkts_find (Shishi_tkts
* tkts
,
505 Shishi_tkts_hint
* hint
);
506 extern Shishi_tkt
*shishi_tkts_find_for_clientserver (Shishi_tkts
* tkts
,
509 extern Shishi_tkt
*shishi_tkts_find_for_server (Shishi_tkts
* tkts
,
511 extern Shishi_tkt
*shishi_tkts_get (Shishi_tkts
* tkts
,
512 Shishi_tkts_hint
* hint
);
513 extern Shishi_tkt
*shishi_tkts_get_for_clientserver (Shishi_tkts
* tkts
,
516 extern Shishi_tkt
*shishi_tkts_get_for_server (Shishi_tkts
* tkts
,
518 extern Shishi_tkt
*shishi_tkts_get_for_localservicepasswd (Shishi_tkts
* tkts
,
526 shishi_enckdcreppart_print (Shishi
* handle
,
527 FILE * fh
, Shishi_asn1 enckdcreppart
);
529 shishi_enckdcreppart_save (Shishi
* handle
,
530 FILE * fh
, Shishi_asn1 enckdcreppart
);
532 shishi_enckdcreppart_parse (Shishi
* handle
,
533 FILE * fh
, Shishi_asn1
* enckdcreppart
);
535 shishi_enckdcreppart_read (Shishi
* handle
,
536 FILE * fh
, Shishi_asn1
* enckdcreppart
);
537 extern int shishi_ticket_save (Shishi
* handle
, FILE * fh
,
539 extern int shishi_ticket_print (Shishi
* handle
, FILE * fh
,
541 extern int shishi_kdc_req_print (Shishi
* handle
, FILE * fh
,
543 extern int shishi_kdc_rep_print (Shishi
* handle
, FILE * fh
,
545 extern int shishi_kdc_print (Shishi
* handle
, FILE * fh
, Shishi_asn1 asreq
,
546 Shishi_asn1 asrep
, Shishi_asn1 encasreppart
);
547 extern int shishi_kdc_req_parse (Shishi
* handle
, FILE * fh
,
548 Shishi_asn1
* asreq
);
549 extern int shishi_kdc_rep_parse (Shishi
* handle
, FILE * fh
,
550 Shishi_asn1
* asrep
);
551 extern int shishi_ticket_parse (Shishi
* handle
, FILE * fh
,
552 Shishi_asn1
* ticket
);
553 extern int shishi_ticket_read (Shishi
* handle
, FILE * fh
,
554 Shishi_asn1
* ticket
);
556 /* authenticator.c */
557 extern Shishi_asn1
shishi_authenticator (Shishi
* handle
);
558 extern int shishi_authenticator_set_crealm (Shishi
* handle
,
561 extern int shishi_authenticator_set_cname (Shishi
* handle
,
562 Shishi_asn1 authenticator
,
563 Shishi_name_type name_type
,
564 const char *cname
[]);
565 extern int shishi_authenticator_client_set (Shishi
* handle
,
566 Shishi_asn1 authenticator
,
568 extern int shishi_authenticator_ctime_get (Shishi
* handle
,
569 Shishi_asn1 authenticator
,
571 extern int shishi_authenticator_cusec_get (Shishi
* handle
,
572 Shishi_asn1 authenticator
,
574 extern int shishi_authenticator_cname_get (Shishi
* handle
,
575 Shishi_asn1 authenticator
,
576 char *cname
, int *cnamelen
);
577 extern int shishi_authenticator_cnamerealm_get (Shishi
* handle
,
578 Shishi_asn1 authenticator
,
581 extern int shishi_authenticator_remove_cksum (Shishi
* handle
,
582 Shishi_asn1 authenticator
);
583 extern int shishi_authenticator_cksum (Shishi
* handle
,
584 Shishi_asn1 authenticator
,
586 char *cksum
, size_t * cksumlen
);
587 extern int shishi_authenticator_set_cksum (Shishi
* handle
,
588 Shishi_asn1 authenticator
,
590 char *cksum
, int cksumlen
);
591 extern int shishi_authenticator_add_cksum (Shishi
* handle
,
592 Shishi_asn1 authenticator
,
595 char *data
, int datalen
);
597 shishi_authenticator_clear_authorizationdata (Shishi
* handle
,
598 Shishi_asn1 authenticator
);
600 shishi_authenticator_add_authorizationdata (Shishi
* handle
,
601 Shishi_asn1 authenticator
,
603 char *addata
, int addatalen
);
605 shishi_authenticator_authorizationdata (Shishi
* handle
,
606 Shishi_asn1 authenticator
,
608 char *addata
, int *addatalen
,
610 extern int shishi_authenticator_read (Shishi
* handle
, FILE * fh
,
611 Shishi_asn1
* authenticator
);
612 extern int shishi_authenticator_parse (Shishi
* handle
, FILE * fh
,
613 Shishi_asn1
* authenticator
);
614 extern int shishi_authenticator_from_file (Shishi
* handle
,
615 Shishi_asn1
* authenticator
,
616 int filetype
, char *filename
);
617 extern int shishi_authenticator_print (Shishi
* handle
, FILE * fh
,
618 Shishi_asn1 authenticator
);
619 extern int shishi_authenticator_to_file (Shishi
* handle
,
620 Shishi_asn1 authenticator
,
621 int filetype
, char *filename
);
622 extern int shishi_authenticator_save (Shishi
* handle
, FILE * fh
,
623 Shishi_asn1 authenticator
);
626 extern Shishi_asn1
shishi_as_req (Shishi_as
* as
);
627 extern void shishi_as_req_set (Shishi_as
* as
, Shishi_asn1 asreq
);
628 extern int shishi_as_req_der (Shishi_as
* as
, char *out
, int *outlen
);
629 extern int shishi_as_req_der_set (Shishi_as
* as
, char *der
, int derlen
);
630 extern Shishi_asn1
shishi_as_rep (Shishi_as
* as
);
631 extern void shishi_as_rep_set (Shishi_as
* as
, Shishi_asn1 asrep
);
632 extern int shishi_as_rep_build (Shishi_as
* as
, Shishi_key
* key
);
633 extern int shishi_as_rep_der (Shishi_as
* as
, char *out
, int *outlen
);
634 extern int shishi_as_rep_der_set (Shishi_as
* as
, char *der
, int derlen
);
635 extern Shishi_asn1
shishi_as_encasreppart (Shishi_as
* as
);
636 extern void shishi_as_encasreppart_set (Shishi_as
* as
,
637 Shishi_asn1 encasreppart
);
638 extern Shishi_asn1
shishi_as_krberror (Shishi_as
* as
);
639 extern int shishi_as_krberror_der (Shishi_as
* as
, char *out
, int *outlen
);
640 extern void shishi_as_krberror_set (Shishi_as
* as
, Shishi_asn1 krberror
);
641 extern Shishi_tkt
*shishi_as_tkt (Shishi_as
* as
);
642 extern void shishi_as_tkt_set (Shishi_as
* as
, Shishi_tkt
* ticket
);
643 extern int shishi_as (Shishi
* handle
, Shishi_as
** as
);
644 extern int shishi_as_password_cnamerealmsname (Shishi
* handle
,
648 char *realm
, char *sname
);
649 extern int shishi_as_key_cnamerealmsname (Shishi
* handle
,
653 char *realm
, char *sname
);
654 extern int shishi_as_cnamerealmsname (Shishi
* handle
,
658 char *cname
, char *realm
, char *sname
);
659 extern int shishi_as_sendrecv (Shishi_as
* as
);
660 extern int shishi_as_rep_process (Shishi_as
* as
,
661 Shishi_key
* key
, const char *password
);
664 extern int shishi_tgs (Shishi
* handle
, Shishi_tgs
** tgs
);
665 extern Shishi_tkt
*shishi_tgs_tgtkt (Shishi_tgs
* tgs
);
666 extern void shishi_tgs_tgtkt_set (Shishi_tgs
* tgs
, Shishi_tkt
* tgticket
);
667 extern Shishi_ap
*shishi_tgs_ap (Shishi_tgs
* tgs
);
668 extern Shishi_asn1
shishi_tgs_req (Shishi_tgs
* tgs
);
669 extern int shishi_tgs_req_build (Shishi_tgs
* tgs
);
670 extern Shishi_asn1
shishi_tgs_rep (Shishi_tgs
* tgs
);
671 extern int shishi_tgs_rep_process (Shishi_tgs
* tgs
);
672 extern Shishi_asn1
shishi_tgs_krberror (Shishi_tgs
* tgs
);
673 extern Shishi_tkt
*shishi_tgs_tkt (Shishi_tgs
* tgs
);
674 extern void shishi_tgs_tkt_set (Shishi_tgs
* tgs
, Shishi_tkt
* ticket
);
675 extern int shishi_tgs_sendrecv (Shishi_tgs
* tgs
);
676 extern int shishi_tgs_set_server (Shishi_tgs
* tgs
, const char *server
);
677 extern int shishi_tgs_set_realm (Shishi_tgs
* tgs
, const char *realm
);
678 extern int shishi_tgs_set_realmserver (Shishi_tgs
* tgs
,
679 const char *realm
, const char *server
);
682 extern int shishi_kdcreq (Shishi
* handle
, char *realm
,
683 char *service
, Shishi_asn1
* req
);
684 extern Shishi_asn1
shishi_asreq (Shishi
* handle
);
685 extern Shishi_asn1
shishi_asreq_rsc (Shishi
* handle
, char *realm
,
686 char *server
, char *client
);
687 extern Shishi_asn1
shishi_tgsreq (Shishi
* handle
);
688 extern Shishi_asn1
shishi_tgsreq_rst (Shishi
* handle
, char *realm
,
689 char *server
, Shishi_tkt
* ticket
);
690 extern int shishi_kdcreq_save (Shishi
* handle
, FILE * fh
,
692 extern int shishi_kdcreq_print (Shishi
* handle
, FILE * fh
,
694 extern int shishi_kdcreq_to_file (Shishi
* handle
, Shishi_asn1 kdcreq
,
695 int filetype
, char *filename
);
696 extern int shishi_kdcreq_parse (Shishi
* handle
, FILE * fh
,
697 Shishi_asn1
* kdcreq
);
698 extern int shishi_kdcreq_read (Shishi
* handle
, FILE * fh
,
699 Shishi_asn1
* kdcreq
);
700 extern int shishi_kdcreq_from_file (Shishi
* handle
, Shishi_asn1
* kdcreq
,
701 int filetype
, char *filename
);
702 extern int shishi_asreq_cnamerealm_get (Shishi
* handle
, Shishi_asn1 kdcreq
,
704 size_t * cnamerealmlen
);
705 extern int shishi_kdcreq_nonce (Shishi
* handle
, Shishi_asn1 kdcreq
,
706 unsigned long *nonce
);
707 extern int shishi_kdcreq_cname_get (Shishi
* handle
,
709 char *cname
, size_t * cnamelen
);
710 extern int shishi_kdcreq_set_cname (Shishi
* handle
, Shishi_asn1 kdcreq
,
711 Shishi_name_type name_type
,
712 const char *principal
);
713 extern int shishi_kdcreq_sname_get (Shishi
* handle
, Shishi_asn1 kdcreq
,
714 char *sname
, size_t * snamelen
);
715 extern int shishi_kdcreq_snamerealm_get (Shishi
* handle
, Shishi_asn1 kdcreq
,
717 size_t * snamerealmlen
);
718 extern int shishi_kdcreq_set_sname (Shishi
* handle
, Shishi_asn1 kdcreq
,
719 Shishi_name_type name_type
,
720 const char *sname
[]);
721 extern int shishi_kdcreq_realm_get (Shishi
* handle
, Shishi_asn1 kdcreq
,
722 char *realm
, int *realmlen
);
723 extern int shishi_kdcreq_set_realm (Shishi
* handle
, Shishi_asn1 node
,
725 extern int shishi_kdcreq_set_server (Shishi
* handle
, Shishi_asn1 req
,
726 const char *service
);
727 extern int shishi_kdcreq_set_realmserver (Shishi
* handle
, Shishi_asn1 req
,
728 char *realm
, char *service
);
729 extern int shishi_kdcreq_etype (Shishi
* handle
, Shishi_asn1 kdcreq
,
730 int *etype
, int netype
);
731 extern int shishi_kdcreq_set_etype (Shishi
* handle
, Shishi_asn1 kdcreq
,
732 int *etype
, int netype
);
733 extern int shishi_kdcreq_clear_padata (Shishi
* handle
, Shishi_asn1 kdcreq
);
734 extern int shishi_kdcreq_add_padata (Shishi
* handle
,
736 int padatatype
, char *data
, int datalen
);
737 extern int shishi_kdcreq_add_padata_tgs (Shishi
* handle
,
741 /* enckdcreppart.c */
742 extern Shishi_asn1
shishi_enckdcreppart (Shishi
* handle
);
743 extern Shishi_asn1
shishi_encasreppart (Shishi
* handle
);
744 extern int shishi_enckdcreppart_srealmserver_set (Shishi
* handle
,
745 Shishi_asn1 enckdcreppart
,
748 extern int shishi_enckdcreppart_nonce_set (Shishi
* handle
,
749 Shishi_asn1 enckdcreppart
,
750 unsigned long nonce
);
752 shishi_enckdcreppart_populate_encticketpart (Shishi
* handle
,
753 Shishi_asn1 enckdcreppart
,
754 Shishi_asn1 encticketpart
);
755 extern int shishi_enckdcreppart_flags_set (Shishi
* handle
,
756 Shishi_asn1 enckdcreppart
,
760 extern int shishi_as_derive_salt (Shishi
* handle
,
762 Shishi_asn1 asrep
, char *salt
,
764 extern int shishi_tgs_process (Shishi
* handle
, Shishi_asn1 tgsreq
,
766 Shishi_asn1 oldenckdcreppart
,
767 Shishi_asn1
* enckdcreppart
);
768 extern int shishi_as_process (Shishi
* handle
, Shishi_asn1 asreq
,
771 Shishi_asn1
* enckdcreppart
);
772 extern int shishi_kdc_process (Shishi
* handle
, Shishi_asn1 kdcreq
,
773 Shishi_asn1 kdcrep
, Shishi_key
* key
,
774 int keyusage
, Shishi_asn1
* enckdcreppart
);
775 extern int shishi_kdcreq_sendrecv (Shishi
* handle
, Shishi_asn1 kdcreq
,
776 Shishi_asn1
* kdcrep
);
777 extern int shishi_kdc_copy_crealm (Shishi
* handle
, Shishi_asn1 kdcrep
,
778 Shishi_asn1 encticketpart
);
779 extern int shishi_as_check_crealm (Shishi
* handle
, Shishi_asn1 asreq
,
781 extern int shishi_kdc_copy_cname (Shishi
* handle
, Shishi_asn1 kdcrep
,
782 Shishi_asn1 encticketpart
);
783 extern int shishi_as_check_cname (Shishi
* handle
, Shishi_asn1 asreq
,
785 extern int shishi_kdc_copy_nonce (Shishi
* handle
, Shishi_asn1 kdcreq
,
786 Shishi_asn1 enckdcreppart
);
787 extern int shishi_kdc_check_nonce (Shishi
* handle
, Shishi_asn1 kdcreq
,
788 Shishi_asn1 enckdcreppart
);
791 extern Shishi_asn1
shishi_asrep (Shishi
* handle
);
792 extern Shishi_asn1
shishi_tgsrep (Shishi
* handle
);
793 extern int shishi_kdcrep_save (Shishi
* handle
, FILE * fh
,
795 extern int shishi_kdcrep_print (Shishi
* handle
, FILE * fh
,
797 extern int shishi_kdcrep_to_file (Shishi
* handle
, Shishi_asn1 kdcrep
,
798 int filetype
, char *filename
);
799 extern int shishi_kdcrep_parse (Shishi
* handle
, FILE * fh
,
800 Shishi_asn1
* kdcrep
);
801 extern int shishi_kdcrep_read (Shishi
* handle
, FILE * fh
,
802 Shishi_asn1
* kdcrep
);
803 extern int shishi_kdcrep_from_file (Shishi
* handle
, Shishi_asn1
* kdcrep
,
804 int filetype
, char *filename
);
805 extern int shishi_kdcrep_clear_padata (Shishi
* handle
, Shishi_asn1 kdcrep
);
806 extern int shishi_kdcrep_get_enc_part_etype (Shishi
* handle
,
807 Shishi_asn1 asrep
, int *etype
);
808 extern int shishi_kdcrep_add_enc_part (Shishi
* handle
,
812 Shishi_asn1 enckdcreppart
);
813 extern int shishi_kdcrep_get_ticket (Shishi
* handle
,
815 Shishi_asn1
* ticket
);
816 extern int shishi_kdcrep_set_ticket (Shishi
* handle
, Shishi_asn1 kdcrep
,
818 extern int shishi_kdcrep_crealm_set (Shishi
* handle
,
819 Shishi_asn1 kdcrep
, const char *crealm
);
820 extern int shishi_kdcrep_cname_set (Shishi
* handle
,
822 Shishi_name_type name_type
,
824 extern int shishi_kdcrep_client_set (Shishi
* handle
, Shishi_asn1 kdcrep
,
826 extern int shishi_kdcrep_crealmserver_set (Shishi
* handle
,
830 extern int shishi_kdcrep_set_enc_part (Shishi
* handle
, Shishi_asn1 kdcrep
,
831 int etype
, int kvno
, char *buf
,
835 extern Shishi_asn1
shishi_krberror (Shishi
* handle
);
836 extern int shishi_krberror_print (Shishi
* handle
, FILE * fh
,
837 Shishi_asn1 krberror
);
838 extern int shishi_krberror_save (Shishi
* handle
, FILE * fh
,
839 Shishi_asn1 krberror
);
840 extern int shishi_krberror_to_file (Shishi
* handle
, Shishi_asn1 krberror
,
841 int filetype
, char *filename
);
842 extern int shishi_krberror_parse (Shishi
* handle
, FILE * fh
,
843 Shishi_asn1
* krberror
);
844 extern int shishi_krberror_read (Shishi
* handle
, FILE * fh
,
845 Shishi_asn1
* krberror
);
846 extern int shishi_krberror_from_file (Shishi
* handle
, Shishi_asn1
* krberror
,
847 int filetype
, char *filename
);
848 extern const char *shishi_krberror_errorcode_message (Shishi
* handle
,
850 extern const char *shishi_krberror_message (Shishi
* handle
,
851 Shishi_asn1 krberror
);
852 extern int shishi_krberror_etext (Shishi
* handle
, Shishi_asn1 krberror
,
853 char *etext
, size_t * etextlen
);
854 extern int shishi_krberror_errorcode (Shishi
* handle
,
855 Shishi_asn1 krberror
, int *errorcode
);
856 extern int shishi_krberror_errorcode_fast (Shishi
* handle
,
857 Shishi_asn1 krberror
);
858 extern int shishi_krberror_pretty_print (Shishi
* handle
,
859 FILE * fh
, Shishi_asn1 krberror
);
862 extern void shishi_to_base64 (unsigned char *out
, const unsigned char *in
,
864 extern int shishi_from_base64 (unsigned char *out
, const unsigned char *in
);
867 extern int shishi_asprintf (char **result
, char *format
, ...);
870 extern const char *shishi_generalize_time (Shishi
* handle
, time_t t
);
871 extern time_t shishi_generalize_ctime (Shishi
* handle
, const char *t
);
874 extern int shishi_cipher_supported_p (int type
);
875 extern const char *shishi_cipher_name (int type
);
876 extern int shishi_cipher_blocksize (int type
);
877 extern int shishi_cipher_minpadsize (int type
);
878 extern int shishi_cipher_confoundersize (int type
);
879 extern size_t shishi_cipher_keylen (int type
);
880 extern size_t shishi_cipher_randomlen (int type
);
881 extern int shishi_cipher_defaultcksumtype (int type
);
882 extern int shishi_cipher_parse (const char *cipher
);
883 extern int shishi_string_to_key (Shishi
* handle
,
885 const char *password
,
889 const char *parameter
, Shishi_key
* outkey
);
890 extern int shishi_random_to_key (Shishi
* handle
,
893 int randomlen
, Shishi_key
* outkey
);
894 extern int shishi_encrypt (Shishi
* handle
,
897 char *in
, int inlen
, char *out
, int *outlen
);
898 extern int shishi_decrypt (Shishi
* handle
,
901 char *in
, int inlen
, char *out
, int *outlen
);
902 extern int shishi_checksum (Shishi
* handle
,
906 char *in
, int inlen
, char *out
, int *outlen
);
907 extern int shishi_randomize (Shishi
* handle
, char *data
, int datalen
);
908 extern int shishi_dk (Shishi
* handle
,
911 int constantlen
, Shishi_key
* derivedkey
);
912 extern int shishi_dr (Shishi
* handle
,
915 int derivedkeylen
, char *constant
, int constantlen
);
916 extern int shishi_n_fold (Shishi
* handle
, char *in
, int m
, char *out
, int n
);
919 extern const char *shishi_check_version (const char *req_version
);
922 extern int shishi_read_password (FILE * fh
, char *s
, int size
);
924 shishi_prompt_password_raw (FILE * in
, char *s
, int size
,
925 FILE * out
, char *format
, ...);
927 shishi_prompt_password (Shishi
* handle
,
928 FILE * in
, char *s
, int size
,
929 FILE * out
, char *format
, ...);
932 extern int shishi_a2d_field (Shishi
* handle
,
934 const char *field
, char *der
, int *len
);
935 extern int shishi_a2d (Shishi
* handle
, Shishi_asn1 node
,
936 char *der
, int *len
);
937 extern int shishi_a2d_new_field (Shishi
* handle
, Shishi_asn1 node
,
938 const char *field
, char **der
, int *len
);
939 extern int shishi_new_a2d (Shishi
* handle
, Shishi_asn1 node
,
940 char **der
, int *len
);
941 extern int shishi_asn1_done (Shishi
* handle
, Shishi_asn1 node
);
942 extern int shishi_asn1_read (Shishi
* handle
, Shishi_asn1 node
,
943 const char *field
, char *data
, size_t * datalen
);
944 extern int shishi_asn1_read_integer (Shishi
* handle
, Shishi_asn1 node
,
945 const char *field
, int *i
);
946 extern int shishi_asn1_write (Shishi
* handle
, Shishi_asn1 node
,
948 const char *data
, size_t datalen
);
949 extern int shishi_asn1_field (Shishi
* handle
,
951 char *data
, size_t * datalen
,
953 extern int shishi_asn1_optional_field (Shishi
* handle
,
955 char *data
, size_t * datalen
,
957 extern int shishi_asn1_integer_field (Shishi
* handle
,
958 Shishi_asn1 node
, int *i
,
960 extern int shishi_asn1_number_of_elements (Shishi
* handle
,
962 const char *field
, int *n
);
963 extern Shishi_asn1
shishi_asn1_asreq (Shishi
* handle
);
964 extern Shishi_asn1
shishi_asn1_asrep (Shishi
* handle
);
965 extern Shishi_asn1
shishi_asn1_tgsreq (Shishi
* handle
);
966 extern Shishi_asn1
shishi_asn1_tgsrep (Shishi
* handle
);
967 extern Shishi_asn1
shishi_asn1_apreq (Shishi
* handle
);
968 extern Shishi_asn1
shishi_asn1_aprep (Shishi
* handle
);
969 extern Shishi_asn1
shishi_asn1_ticket (Shishi
* handle
);
970 extern Shishi_asn1
shishi_asn1_encapreppart (Shishi
* handle
);
971 extern Shishi_asn1
shishi_asn1_encticketpart (Shishi
* handle
);
972 extern Shishi_asn1
shishi_asn1_authenticator (Shishi
* handle
);
973 extern Shishi_asn1
shishi_asn1_enckdcreppart (Shishi
* handle
);
974 extern Shishi_asn1
shishi_asn1_encasreppart (Shishi
* handle
);
975 extern Shishi_asn1
shishi_asn1_krberror (Shishi
* handle
);
976 extern Shishi_asn1
shishi_asn1_krbsafe (Shishi
* handle
);
977 extern Shishi_asn1
shishi_der2asn1 (Shishi
* handle
,
978 const char *fieldname
,
979 const char *nodename
,
980 const char *der
, size_t derlen
);
981 extern Shishi_asn1
shishi_der2asn1_ticket (Shishi
* handle
,
982 const char *der
, size_t derlen
);
983 extern Shishi_asn1
shishi_der2asn1_encticketpart (Shishi
* handle
,
986 extern Shishi_asn1
shishi_der2asn1_asreq (Shishi
* handle
,
987 const char *der
, size_t derlen
);
988 extern Shishi_asn1
shishi_der2asn1_tgsreq (Shishi
* handle
,
989 const char *der
, size_t derlen
);
990 extern Shishi_asn1
shishi_der2asn1_asrep (Shishi
* handle
,
991 const char *der
, size_t derlen
);
992 extern Shishi_asn1
shishi_der2asn1_tgsrep (Shishi
* handle
,
993 const char *der
, size_t derlen
);
994 extern Shishi_asn1
shishi_der2asn1_kdcrep (Shishi
* handle
,
995 const char *der
, size_t derlen
);
996 extern Shishi_asn1
shishi_der2asn1_kdcreq (Shishi
* handle
,
997 const char *der
, size_t derlen
);
998 extern Shishi_asn1
shishi_der2asn1_encasreppart (Shishi
* handle
,
1001 extern Shishi_asn1
shishi_der2asn1_enctgsreppart (Shishi
* handle
,
1004 extern Shishi_asn1
shishi_der2asn1_enckdcreppart (Shishi
* handle
,
1007 extern Shishi_asn1
shishi_der2asn1_authenticator (Shishi
* handle
,
1010 extern Shishi_asn1
shishi_der2asn1_krberror (Shishi
* handle
,
1011 const char *der
, size_t derlen
);
1012 extern Shishi_asn1
shishi_der2asn1_krbsafe (Shishi
* handle
,
1013 const char *der
, size_t derlen
);
1014 extern Shishi_asn1
shishi_der2asn1_apreq (Shishi
* handle
,
1015 const char *der
, size_t derlen
);
1016 extern Shishi_asn1
shishi_der2asn1_aprep (Shishi
* handle
,
1017 const char *der
, size_t derlen
);
1018 extern Shishi_asn1
shishi_der2asn1_encapreppart (Shishi
* handle
,
1023 extern const char *shishi_ap_option2string (int option
);
1024 extern int shishi_ap_string2option (const char *str
);
1026 extern int shishi_ap (Shishi
* handle
, Shishi_ap
** ap
);
1027 extern int shishi_ap_set_tktoptions (Shishi_ap
* ap
,
1028 Shishi_tkt
* ticket
, int options
);
1029 extern int shishi_ap_tktoptions (Shishi
* handle
,
1031 Shishi_tkt
* ticket
, int options
);
1032 extern int shishi_ap_set_tktoptionsdata (Shishi_ap
* ap
,
1033 Shishi_tkt
* ticket
,
1034 int options
, char *data
, int len
);
1035 extern int shishi_ap_tktoptionsdata (Shishi
* handle
,
1037 Shishi_tkt
* ticket
,
1038 int options
, char *data
, int len
);
1039 extern int shishi_ap_set_tktoptionsasn1usage (Shishi_ap
* ap
,
1040 Shishi_tkt
* ticket
,
1044 int authenticatorcksumkeyusage
,
1045 int authenticatorkeyusage
);
1046 extern int shishi_ap_tktoptionsasn1usage (Shishi
* handle
,
1048 Shishi_tkt
* ticket
,
1052 int authenticatorcksumkeyusage
,
1053 int authenticatorkeyusage
);
1055 extern Shishi_tkt
*shishi_ap_tkt (Shishi_ap
* ap
);
1056 extern void shishi_ap_tkt_set (Shishi_ap
* ap
, Shishi_tkt
* ticket
);
1058 extern int shishi_ap_authenticator_cksumdata (Shishi_ap
* ap
,
1059 char *out
, int *len
);
1061 shishi_ap_authenticator_cksumdata_set (Shishi_ap
* ap
,
1062 char *authenticatorcksumdata
,
1063 int authenticatorcksumdatalen
);
1065 extern Shishi_asn1
shishi_ap_authenticator (Shishi_ap
* ap
);
1066 extern void shishi_ap_authenticator_set (Shishi_ap
* ap
,
1067 Shishi_asn1 authenticator
);
1069 extern Shishi_asn1
shishi_ap_req (Shishi_ap
* ap
);
1070 extern void shishi_ap_req_set (Shishi_ap
* ap
, Shishi_asn1 apreq
);
1071 extern int shishi_ap_req_der (Shishi_ap
* ap
, char *out
, int *outlen
);
1072 extern int shishi_ap_req_der_set (Shishi_ap
* ap
, char *der
, int derlen
);
1073 extern int shishi_ap_req_der_new (Shishi_ap
* ap
, char **out
, int *outlen
);
1074 extern int shishi_ap_req_build (Shishi_ap
* ap
);
1075 extern int shishi_ap_req_asn1 (Shishi_ap
* ap
, Shishi_asn1
* apreq
);
1076 extern int shishi_ap_req_process (Shishi_ap
* ap
, Shishi_key
* key
);
1077 extern int shishi_ap_req_build (Shishi_ap
* ap
);
1079 extern Shishi_asn1
shishi_ap_rep (Shishi_ap
* ap
);
1080 extern void shishi_ap_rep_set (Shishi_ap
* ap
, Shishi_asn1 aprep
);
1081 extern int shishi_ap_rep_der (Shishi_ap
* ap
, char *out
, int *outlen
);
1082 extern int shishi_ap_rep_der_set (Shishi_ap
* ap
, char *der
, int derlen
);
1083 extern int shishi_ap_rep_verify (Shishi_ap
* ap
);
1084 extern int shishi_ap_rep_verify_der (Shishi_ap
* ap
, char *der
, int derlen
);
1085 extern int shishi_ap_rep_verify_asn1 (Shishi_ap
* ap
, Shishi_asn1 aprep
);
1086 extern int shishi_ap_rep_asn1 (Shishi_ap
* ap
, Shishi_asn1
* aprep
);
1087 extern int shishi_ap_rep_build (Shishi_ap
* ap
);
1089 extern Shishi_asn1
shishi_ap_encapreppart (Shishi_ap
* ap
);
1090 extern void shishi_ap_encapreppart_set (Shishi_ap
* ap
,
1091 Shishi_asn1 encapreppart
);
1094 extern const char *shishi_key_principal (Shishi_key
* key
);
1095 extern void shishi_key_principal_set (Shishi_key
* key
,
1096 const char *principal
);
1097 extern const char *shishi_key_realm (Shishi_key
* key
);
1098 extern void shishi_key_realm_set (Shishi_key
* key
, const char *realm
);
1099 extern int shishi_key_type (Shishi_key
* key
);
1100 extern void shishi_key_type_set (Shishi_key
* key
, int type
);
1101 extern char *shishi_key_value (Shishi_key
* key
);
1102 extern void shishi_key_value_set (Shishi_key
* key
, const char *value
);
1103 extern int shishi_key_value_set_random (Shishi_key
* key
,
1104 char *random
, int randomlen
);
1105 extern int shishi_key_value_set_string (Shishi_key
* key
,
1109 int saltlen
, char *parameter
);
1110 extern const char *shishi_key_name (Shishi_key
* key
);
1111 extern size_t shishi_key_length (Shishi_key
* key
);
1112 extern int shishi_key_version (Shishi_key
* key
);
1113 extern void shishi_key_version_set (Shishi_key
* key
, int version
);
1114 extern int shishi_key (Shishi
* handle
, Shishi_key
** key
);
1115 extern void shishi_key_done (Shishi_key
** key
);
1116 extern void shishi_key_copy (Shishi_key
* dstkey
, Shishi_key
* srckey
);
1117 extern int shishi_key_print (Shishi
* handle
, FILE * fh
, Shishi_key
* key
);
1118 extern int shishi_key_to_file (Shishi
* handle
,
1119 const char *filename
, Shishi_key
* key
);
1120 extern int shishi_key_parse (Shishi
* handle
, FILE * fh
, Shishi_key
** key
);;
1121 extern int shishi_key_random (Shishi
* handle
, int type
, Shishi_key
** key
);
1122 extern int shishi_key_from_value (Shishi
* handle
,
1123 int type
, char *value
, Shishi_key
** key
);
1124 extern int shishi_key_from_base64 (Shishi
* handle
,
1125 int type
, char *value
, Shishi_key
** key
);
1126 extern int shishi_key_from_random (Shishi
* handle
,
1129 int randomlen
, Shishi_key
** outkey
);
1130 extern int shishi_key_from_string (Shishi
* handle
,
1132 const char *password
,
1136 const char *parameter
,
1137 Shishi_key
** outkey
);
1140 extern const char *shishi_hostkeys_default_file (Shishi
* handle
);
1141 extern void shishi_hostkeys_default_file_set (Shishi
* handle
,
1142 const char *hostkeysfile
);
1143 extern Shishi_key
*shishi_hostkeys_for_serverrealm_in_file (Shishi
* handle
,
1150 extern Shishi_key
*shishi_hostkeys_for_server_in_file (Shishi
* handle
,
1151 const char *filename
,
1152 const char *server
);
1153 extern Shishi_key
*shishi_hostkeys_for_server (Shishi
* handle
,
1154 const char *server
);
1155 extern Shishi_key
*shishi_hostkeys_for_serverrealm (Shishi
* handle
,
1158 extern Shishi_key
*shishi_hostkeys_for_localservicerealm (Shishi
* handle
,
1159 const char *service
,
1161 extern Shishi_key
*shishi_hostkeys_for_localservice (Shishi
* handle
,
1162 const char *service
);
1164 /* encapreppart.c */
1165 extern Shishi_asn1
shishi_encapreppart (Shishi
* handle
);
1166 extern int shishi_encapreppart_time_copy (Shishi
* handle
,
1167 Shishi_asn1 encapreppart
,
1168 Shishi_asn1 authenticator
);
1169 extern int shishi_encapreppart_ctime_get (Shishi
* handle
,
1170 Shishi_asn1 encapreppart
,
1172 extern int shishi_encapreppart_ctime_set (Shishi
* handle
,
1173 Shishi_asn1 encapreppart
,
1175 extern int shishi_encapreppart_cusec_get (Shishi
* handle
,
1176 Shishi_asn1 encapreppart
,
1178 extern int shishi_encapreppart_cusec_set (Shishi
* handle
,
1179 Shishi_asn1 encapreppart
,
1181 extern int shishi_encapreppart_print (Shishi
* handle
, FILE * fh
,
1182 Shishi_asn1 encapreppart
);
1183 extern int shishi_encapreppart_save (Shishi
* handle
, FILE * fh
,
1184 Shishi_asn1 encapreppart
);
1185 extern int shishi_encapreppart_to_file (Shishi
* handle
,
1186 Shishi_asn1 encapreppart
,
1187 int filetype
, char *filename
);
1188 extern int shishi_encapreppart_read (Shishi
* handle
, FILE * fh
,
1189 Shishi_asn1
* encapreppart
);
1190 extern int shishi_encapreppart_parse (Shishi
* handle
, FILE * fh
,
1191 Shishi_asn1
* encapreppart
);
1192 extern int shishi_encapreppart_from_file (Shishi
* handle
,
1193 Shishi_asn1
* encapreppart
,
1194 int filetype
, char *filename
);
1195 extern int shishi_encapreppart_get_key (Shishi
* handle
,
1196 Shishi_asn1 encapreppart
,
1197 int *keytype
, unsigned char *keyvalue
,
1201 extern Shishi_asn1
shishi_apreq (Shishi
* handle
);
1202 extern int shishi_apreq_parse (Shishi
* handle
, FILE * fh
,
1203 Shishi_asn1
* apreq
);
1204 extern int shishi_apreq_from_file (Shishi
* handle
, Shishi_asn1
* apreq
,
1205 int filetype
, char *filename
);
1206 extern int shishi_apreq_print (Shishi
* handle
, FILE * fh
, Shishi_asn1 apreq
);
1207 extern int shishi_apreq_to_file (Shishi
* handle
, Shishi_asn1 apreq
,
1208 int filetype
, char *filename
);
1209 extern int shishi_apreq_read (Shishi
* handle
, FILE * fh
,
1210 Shishi_asn1
* apreq
);
1211 extern int shishi_apreq_save (Shishi
* handle
, FILE * fh
, Shishi_asn1 apreq
);
1212 extern int shishi_apreq_options (Shishi
* handle
, Shishi_asn1 apreq
,
1214 extern int shishi_apreq_options_set (Shishi
* handle
, Shishi_asn1 apreq
,
1216 extern int shishi_apreq_set_ticket (Shishi
* handle
, Shishi_asn1 apreq
,
1217 Shishi_asn1 ticket
);
1218 extern int shishi_apreq_set_authenticator (Shishi
* handle
, Shishi_asn1 apreq
,
1219 int etype
, char *buf
, int buflen
);
1220 extern int shishi_apreq_add_authenticator (Shishi
* handle
, Shishi_asn1 apreq
,
1221 Shishi_key
* key
, int keyusage
,
1222 Shishi_asn1 authenticator
);
1223 extern int shishi_apreq_options (Shishi
* handle
, Shishi_asn1 apreq
,
1225 extern int shishi_apreq_use_session_key_p (Shishi
* handle
,
1227 extern int shishi_apreq_mutual_required_p (Shishi
* handle
,
1229 extern int shishi_apreq_options_set (Shishi
* handle
, Shishi_asn1 apreq
,
1231 extern int shishi_apreq_options_add (Shishi
* handle
, Shishi_asn1 apreq
,
1233 extern int shishi_apreq_get_ticket (Shishi
* handle
, Shishi_asn1 apreq
,
1234 Shishi_asn1
* ticket
);
1235 extern int shishi_apreq_get_authenticator_etype (Shishi
* handle
,
1238 extern int shishi_apreq_decrypt (Shishi
* handle
, Shishi_asn1 apreq
,
1239 Shishi_key
* key
, int keyusage
,
1240 Shishi_asn1
* authenticator
);
1243 extern int shishi_kdcrep_decrypt (Shishi
* handle
,
1246 int keyusage
, Shishi_asn1
* enckdcreppart
);
1247 /* enckdcreppart.c */
1248 extern int shishi_enckdcreppart_get_key (Shishi
* handle
,
1249 Shishi_asn1 enckdcreppart
,
1251 extern int shishi_enckdcreppart_srealm_set (Shishi
* handle
,
1252 Shishi_asn1 enckdcreppart
,
1253 const char *srealm
);
1254 extern int shishi_enckdcreppart_sname_set (Shishi
* handle
,
1255 Shishi_asn1 enckdcreppart
,
1256 Shishi_name_type name_type
,
1258 extern int shishi_enckdcreppart_server_set (Shishi
* handle
,
1259 Shishi_asn1 enckdcreppart
,
1260 const char *server
);
1263 extern Shishi_asn1
shishi_aprep (Shishi
* handle
);
1264 extern int shishi_aprep_print (Shishi
* handle
, FILE * fh
, Shishi_asn1 aprep
);
1265 extern int shishi_aprep_save (Shishi
* handle
, FILE * fh
, Shishi_asn1 aprep
);
1266 extern int shishi_aprep_to_file (Shishi
* handle
, Shishi_asn1 aprep
,
1267 int filetype
, char *filename
);
1268 extern int shishi_aprep_read (Shishi
* handle
, FILE * fh
,
1269 Shishi_asn1
* aprep
);
1270 extern int shishi_aprep_parse (Shishi
* handle
, FILE * fh
,
1271 Shishi_asn1
* aprep
);
1272 extern int shishi_aprep_from_file (Shishi
* handle
, Shishi_asn1
* aprep
,
1273 int filetype
, char *filename
);
1274 extern int shishi_aprep_decrypt (Shishi
* handle
, Shishi_asn1 aprep
,
1275 Shishi_key
* key
, int keyusage
,
1276 Shishi_asn1
* encapreppart
);
1277 extern int shishi_aprep_verify (Shishi
* handle
, Shishi_asn1 authenticator
,
1278 Shishi_asn1 encapreppart
);
1279 extern int shishi_aprep_enc_part_set (Shishi
* handle
, Shishi_asn1 aprep
,
1280 int etype
, const char *buf
, int buflen
);
1281 extern int shishi_aprep_enc_part_add (Shishi
* handle
, Shishi_asn1 aprep
,
1282 Shishi_asn1 encticketpart
,
1283 Shishi_asn1 encapreppart
);
1284 extern int shishi_aprep_enc_part_make (Shishi
* handle
, Shishi_asn1 aprep
,
1285 Shishi_asn1 authenticator
,
1286 Shishi_asn1 encticketpart
);
1287 extern int shishi_aprep_get_enc_part_etype (Shishi
* handle
,
1288 Shishi_asn1 aprep
, int *etype
);
1291 extern int shishi_kdc_sendrecv (Shishi
* handle
,
1294 size_t inlen
, char *outdata
, size_t * outlen
);
1296 /* encticketpart.c */
1297 extern Shishi_asn1
shishi_encticketpart (Shishi
* handle
);
1298 extern int shishi_encticketpart_key_set (Shishi
* handle
,
1299 Shishi_asn1 encticketpart
,
1301 extern int shishi_encticketpart_get_enc_part_etype (Shishi
* handle
,
1302 Shishi_asn1 encticketpart
,
1304 extern int shishi_encticketpart_get_key (Shishi
* handle
,
1305 Shishi_asn1 encticketpart
,
1307 extern int shishi_encticketpart_crealm_set (Shishi
* handle
,
1308 Shishi_asn1 encticketpart
,
1310 extern int shishi_encticketpart_cname_get (Shishi
* handle
,
1311 Shishi_asn1 encticketpart
,
1312 char *cname
, int *cnamelen
);
1313 extern int shishi_encticketpart_cname_set (Shishi
* handle
,
1314 Shishi_asn1 encticketpart
,
1315 Shishi_name_type name_type
,
1316 const char *principal
);
1317 extern int shishi_encticketpart_cnamerealm_get (Shishi
* handle
,
1318 Shishi_asn1 encticketpart
,
1320 int *cnamerealmlen
);
1321 extern int shishi_encticketpart_print (Shishi
* handle
, FILE * fh
,
1322 Shishi_asn1 encticketpart
);
1323 extern int shishi_encticketpart_flags_set (Shishi
* handle
,
1324 Shishi_asn1 encticketpart
,
1326 extern int shishi_encticketpart_transited_set (Shishi
* handle
,
1327 Shishi_asn1 encticketpart
,
1331 extern int shishi_encticketpart_authtime_set (Shishi
* handle
,
1332 Shishi_asn1 encticketpart
,
1333 const char *authtime
);
1334 extern int shishi_encticketpart_endtime_set (Shishi
* handle
,
1335 Shishi_asn1 encticketpart
,
1336 const char *endtime
);
1337 extern int shishi_encticketpart_authtime (Shishi
* handle
,
1338 Shishi_asn1 encticketpart
,
1339 char *authtime
, int *authtimelen
);
1340 extern time_t shishi_encticketpart_authctime (Shishi
* handle
,
1341 Shishi_asn1 encticketpart
);
1344 extern int shishi_safe (Shishi
* handle
, Shishi_safe
** safe
);
1345 extern Shishi_key
*shishi_safe_key (Shishi_safe
* safe
);
1346 extern void shishi_safe_key_set (Shishi_safe
* safe
, Shishi_key
* key
);
1347 extern Shishi_asn1
shishi_safe_safe (Shishi_safe
* safe
);
1348 extern void shishi_safe_safe_set (Shishi_safe
* safe
, Shishi_asn1 asn1safe
);
1349 extern int shishi_safe_safe_der (Shishi_safe
* safe
, char *out
, int *outlen
);
1350 extern int shishi_safe_safe_der_set (Shishi_safe
* safe
,
1351 char *der
, int derlen
);
1352 extern int shishi_safe_print (Shishi
* handle
, FILE * fh
, Shishi_asn1 safe
);
1353 extern int shishi_safe_save (Shishi
* handle
, FILE * fh
, Shishi_asn1 safe
);
1354 extern int shishi_safe_to_file (Shishi
* handle
, Shishi_asn1 safe
,
1355 int filetype
, char *filename
);
1356 extern int shishi_safe_parse (Shishi
* handle
, FILE * fh
, Shishi_asn1
* safe
);
1357 extern int shishi_safe_read (Shishi
* handle
, FILE * fh
, Shishi_asn1
* safe
);
1358 extern int shishi_safe_from_file (Shishi
* handle
, Shishi_asn1
* safe
,
1359 int filetype
, char *filename
);
1360 extern int shishi_safe_cksum (Shishi
* handle
,
1362 int *cksumtype
, char *cksum
, size_t * cksumlen
);
1363 extern int shishi_safe_set_cksum (Shishi
* handle
,
1365 int cksumtype
, char *cksum
, int cksumlen
);
1366 extern int shishi_safe_user_data (Shishi
* handle
,
1368 char *userdata
, size_t * userdatalen
);
1369 extern int shishi_safe_set_user_data (Shishi
* handle
,
1371 char *userdata
, int userdatalen
);
1372 extern int shishi_safe_build (Shishi_safe
* safe
, Shishi_key
* key
);
1373 extern int shishi_safe_verify (Shishi_safe
* safe
, Shishi_key
* key
);