1189251Ssam/* 2189251Ssam * TLSv1 Record Protocol 3252726Srpaulo * Copyright (c) 2006-2011, Jouni Malinen <j@w1.fi> 4189251Ssam * 5252726Srpaulo * This software may be distributed under the terms of the BSD license. 6252726Srpaulo * See README for more details. 7189251Ssam */ 8189251Ssam 9189251Ssam#ifndef TLSV1_RECORD_H 10189251Ssam#define TLSV1_RECORD_H 11189251Ssam 12214734Srpaulo#include "crypto/crypto.h" 13189251Ssam 14252726Srpaulo#define TLS_MAX_WRITE_MAC_SECRET_LEN 32 15189251Ssam#define TLS_MAX_WRITE_KEY_LEN 32 16189251Ssam#define TLS_MAX_IV_LEN 16 17189251Ssam#define TLS_MAX_KEY_BLOCK_LEN (2 * (TLS_MAX_WRITE_MAC_SECRET_LEN + \ 18189251Ssam TLS_MAX_WRITE_KEY_LEN + TLS_MAX_IV_LEN)) 19189251Ssam 20189251Ssam#define TLS_SEQ_NUM_LEN 8 21189251Ssam#define TLS_RECORD_HEADER_LEN 5 22189251Ssam 23189251Ssam/* ContentType */ 24189251Ssamenum { 25189251Ssam TLS_CONTENT_TYPE_CHANGE_CIPHER_SPEC = 20, 26189251Ssam TLS_CONTENT_TYPE_ALERT = 21, 27189251Ssam TLS_CONTENT_TYPE_HANDSHAKE = 22, 28189251Ssam TLS_CONTENT_TYPE_APPLICATION_DATA = 23 29189251Ssam}; 30189251Ssam 31189251Ssamstruct tlsv1_record_layer { 32252726Srpaulo u16 tls_version; 33252726Srpaulo 34189251Ssam u8 write_mac_secret[TLS_MAX_WRITE_MAC_SECRET_LEN]; 35189251Ssam u8 read_mac_secret[TLS_MAX_WRITE_MAC_SECRET_LEN]; 36189251Ssam u8 write_key[TLS_MAX_WRITE_KEY_LEN]; 37189251Ssam u8 read_key[TLS_MAX_WRITE_KEY_LEN]; 38189251Ssam u8 write_iv[TLS_MAX_IV_LEN]; 39189251Ssam u8 read_iv[TLS_MAX_IV_LEN]; 40189251Ssam 41189251Ssam size_t hash_size; 42189251Ssam size_t key_material_len; 43189251Ssam size_t iv_size; /* also block_size */ 44189251Ssam 45189251Ssam enum crypto_hash_alg hash_alg; 46189251Ssam enum crypto_cipher_alg cipher_alg; 47189251Ssam 48189251Ssam u8 write_seq_num[TLS_SEQ_NUM_LEN]; 49189251Ssam u8 read_seq_num[TLS_SEQ_NUM_LEN]; 50189251Ssam 51189251Ssam u16 cipher_suite; 52189251Ssam u16 write_cipher_suite; 53189251Ssam u16 read_cipher_suite; 54189251Ssam 55189251Ssam struct crypto_cipher *write_cbc; 56189251Ssam struct crypto_cipher *read_cbc; 57189251Ssam}; 58189251Ssam 59189251Ssam 60189251Ssamint tlsv1_record_set_cipher_suite(struct tlsv1_record_layer *rl, 61189251Ssam u16 cipher_suite); 62189251Ssamint tlsv1_record_change_write_cipher(struct tlsv1_record_layer *rl); 63189251Ssamint tlsv1_record_change_read_cipher(struct tlsv1_record_layer *rl); 64189251Ssamint tlsv1_record_send(struct tlsv1_record_layer *rl, u8 content_type, u8 *buf, 65252726Srpaulo size_t buf_size, const u8 *payload, size_t payload_len, 66252726Srpaulo size_t *out_len); 67189251Ssamint tlsv1_record_receive(struct tlsv1_record_layer *rl, 68189251Ssam const u8 *in_data, size_t in_len, 69189251Ssam u8 *out_data, size_t *out_len, u8 *alert); 70189251Ssam 71189251Ssam#endif /* TLSV1_RECORD_H */ 72