1252190Srpaulo/* 2252190Srpaulo * EAP server/peer: EAP-pwd shared definitions 3252190Srpaulo * Copyright (c) 2009, Dan Harkins <dharkins@lounge.org> 4252190Srpaulo * 5252190Srpaulo * This software may be distributed under the terms of the BSD license. 6252190Srpaulo * See README for more details. 7252190Srpaulo */ 8252190Srpaulo 9252190Srpaulo#ifndef EAP_PWD_COMMON_H 10252190Srpaulo#define EAP_PWD_COMMON_H 11252190Srpaulo 12252190Srpaulo#include <openssl/bn.h> 13252190Srpaulo#include <openssl/ec.h> 14252190Srpaulo#include <openssl/evp.h> 15252190Srpaulo 16252190Srpaulo/* 17252190Srpaulo * definition of a finite cyclic group 18252190Srpaulo * TODO: support one based on a prime field 19252190Srpaulo */ 20252190Srpaulotypedef struct group_definition_ { 21252190Srpaulo u16 group_num; 22252190Srpaulo EC_GROUP *group; 23252190Srpaulo EC_POINT *pwe; 24252190Srpaulo BIGNUM *order; 25252190Srpaulo BIGNUM *prime; 26252190Srpaulo} EAP_PWD_group; 27252190Srpaulo 28252190Srpaulo/* 29252190Srpaulo * EAP-pwd header, included on all payloads 30252190Srpaulo * L(1 bit) | M(1 bit) | exch(6 bits) | total_length(if L is set) 31252190Srpaulo */ 32252190Srpaulo#define EAP_PWD_HDR_SIZE 1 33252190Srpaulo 34252190Srpaulo#define EAP_PWD_OPCODE_ID_EXCH 1 35252190Srpaulo#define EAP_PWD_OPCODE_COMMIT_EXCH 2 36252190Srpaulo#define EAP_PWD_OPCODE_CONFIRM_EXCH 3 37252190Srpaulo#define EAP_PWD_GET_LENGTH_BIT(x) ((x) & 0x80) 38252190Srpaulo#define EAP_PWD_SET_LENGTH_BIT(x) ((x) |= 0x80) 39252190Srpaulo#define EAP_PWD_GET_MORE_BIT(x) ((x) & 0x40) 40252190Srpaulo#define EAP_PWD_SET_MORE_BIT(x) ((x) |= 0x40) 41252190Srpaulo#define EAP_PWD_GET_EXCHANGE(x) ((x) & 0x3f) 42252190Srpaulo#define EAP_PWD_SET_EXCHANGE(x,y) ((x) |= (y)) 43252190Srpaulo 44252190Srpaulo/* EAP-pwd-ID payload */ 45252190Srpaulostruct eap_pwd_id { 46252190Srpaulo be16 group_num; 47252190Srpaulo u8 random_function; 48252190Srpaulo#define EAP_PWD_DEFAULT_RAND_FUNC 1 49252190Srpaulo u8 prf; 50252190Srpaulo#define EAP_PWD_DEFAULT_PRF 1 51252190Srpaulo u8 token[4]; 52252190Srpaulo u8 prep; 53252190Srpaulo#define EAP_PWD_PREP_NONE 0 54252190Srpaulo#define EAP_PWD_PREP_MS 1 55252190Srpaulo u8 identity[0]; /* length inferred from payload */ 56252190Srpaulo} STRUCT_PACKED; 57252190Srpaulo 58252190Srpaulo/* common routines */ 59252190Srpauloint compute_password_element(EAP_PWD_group *, u16, u8 *, int, u8 *, int, u8 *, 60252190Srpaulo int, u8 *); 61252190Srpauloint compute_keys(EAP_PWD_group *, BN_CTX *, BIGNUM *, BIGNUM *, BIGNUM *, 62252190Srpaulo u8 *, u8 *, u32 *, u8 *, u8 *); 63252190Srpaulostruct crypto_hash * eap_pwd_h_init(void); 64252190Srpaulovoid eap_pwd_h_update(struct crypto_hash *hash, const u8 *data, size_t len); 65252190Srpaulovoid eap_pwd_h_final(struct crypto_hash *hash, u8 *digest); 66252190Srpaulo 67252190Srpaulo#endif /* EAP_PWD_COMMON_H */ 68