1252190Srpaulo/*
2252190Srpaulo * EAP server/peer: EAP-pwd shared definitions
3252190Srpaulo * Copyright (c) 2009, Dan Harkins <dharkins@lounge.org>
4252190Srpaulo *
5252190Srpaulo * This software may be distributed under the terms of the BSD license.
6252190Srpaulo * See README for more details.
7252190Srpaulo */
8252190Srpaulo
9252190Srpaulo#ifndef EAP_PWD_COMMON_H
10252190Srpaulo#define EAP_PWD_COMMON_H
11252190Srpaulo
12252190Srpaulo#include <openssl/bn.h>
13252190Srpaulo#include <openssl/ec.h>
14252190Srpaulo#include <openssl/evp.h>
15252190Srpaulo
16252190Srpaulo/*
17252190Srpaulo * definition of a finite cyclic group
18252190Srpaulo * TODO: support one based on a prime field
19252190Srpaulo */
20252190Srpaulotypedef struct group_definition_ {
21252190Srpaulo	u16 group_num;
22252190Srpaulo	EC_GROUP *group;
23252190Srpaulo	EC_POINT *pwe;
24252190Srpaulo	BIGNUM *order;
25252190Srpaulo	BIGNUM *prime;
26252190Srpaulo} EAP_PWD_group;
27252190Srpaulo
28252190Srpaulo/*
29252190Srpaulo * EAP-pwd header, included on all payloads
30252190Srpaulo * L(1 bit) | M(1 bit) | exch(6 bits) | total_length(if L is set)
31252190Srpaulo */
32252190Srpaulo#define EAP_PWD_HDR_SIZE                1
33252190Srpaulo
34252190Srpaulo#define EAP_PWD_OPCODE_ID_EXCH          1
35252190Srpaulo#define EAP_PWD_OPCODE_COMMIT_EXCH      2
36252190Srpaulo#define EAP_PWD_OPCODE_CONFIRM_EXCH     3
37252190Srpaulo#define EAP_PWD_GET_LENGTH_BIT(x)       ((x) & 0x80)
38252190Srpaulo#define EAP_PWD_SET_LENGTH_BIT(x)       ((x) |= 0x80)
39252190Srpaulo#define EAP_PWD_GET_MORE_BIT(x)         ((x) & 0x40)
40252190Srpaulo#define EAP_PWD_SET_MORE_BIT(x)         ((x) |= 0x40)
41252190Srpaulo#define EAP_PWD_GET_EXCHANGE(x)         ((x) & 0x3f)
42252190Srpaulo#define EAP_PWD_SET_EXCHANGE(x,y)       ((x) |= (y))
43252190Srpaulo
44252190Srpaulo/* EAP-pwd-ID payload */
45252190Srpaulostruct eap_pwd_id {
46252190Srpaulo	be16 group_num;
47252190Srpaulo	u8 random_function;
48252190Srpaulo#define EAP_PWD_DEFAULT_RAND_FUNC       1
49252190Srpaulo	u8 prf;
50252190Srpaulo#define EAP_PWD_DEFAULT_PRF             1
51252190Srpaulo	u8 token[4];
52252190Srpaulo	u8 prep;
53252190Srpaulo#define EAP_PWD_PREP_NONE               0
54252190Srpaulo#define EAP_PWD_PREP_MS                 1
55252190Srpaulo	u8 identity[0];     /* length inferred from payload */
56252190Srpaulo} STRUCT_PACKED;
57252190Srpaulo
58252190Srpaulo/* common routines */
59252190Srpauloint compute_password_element(EAP_PWD_group *, u16, u8 *, int, u8 *, int, u8 *,
60252190Srpaulo			     int, u8 *);
61252190Srpauloint compute_keys(EAP_PWD_group *, BN_CTX *, BIGNUM *, BIGNUM *, BIGNUM *,
62252190Srpaulo		 u8 *, u8 *, u32 *, u8 *, u8 *);
63252190Srpaulostruct crypto_hash * eap_pwd_h_init(void);
64252190Srpaulovoid eap_pwd_h_update(struct crypto_hash *hash, const u8 *data, size_t len);
65252190Srpaulovoid eap_pwd_h_final(struct crypto_hash *hash, u8 *digest);
66252190Srpaulo
67252190Srpaulo#endif  /* EAP_PWD_COMMON_H */
68