1178825Sdfr/* 2233294Sstas * Copyright (c) 1997 - 2003 Kungliga Tekniska H��gskolan 3233294Sstas * (Royal Institute of Technology, Stockholm, Sweden). 4233294Sstas * All rights reserved. 5178825Sdfr * 6233294Sstas * Redistribution and use in source and binary forms, with or without 7233294Sstas * modification, are permitted provided that the following conditions 8233294Sstas * are met: 9178825Sdfr * 10233294Sstas * 1. Redistributions of source code must retain the above copyright 11233294Sstas * notice, this list of conditions and the following disclaimer. 12178825Sdfr * 13233294Sstas * 2. Redistributions in binary form must reproduce the above copyright 14233294Sstas * notice, this list of conditions and the following disclaimer in the 15233294Sstas * documentation and/or other materials provided with the distribution. 16178825Sdfr * 17233294Sstas * 3. Neither the name of the Institute nor the names of its contributors 18233294Sstas * may be used to endorse or promote products derived from this software 19233294Sstas * without specific prior written permission. 20178825Sdfr * 21233294Sstas * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 22233294Sstas * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 23233294Sstas * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 24233294Sstas * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 25233294Sstas * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 26233294Sstas * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 27233294Sstas * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 28233294Sstas * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 29233294Sstas * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 30233294Sstas * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 31233294Sstas * SUCH DAMAGE. 32178825Sdfr */ 33178825Sdfr 34233294Sstas#include "gsskrb5_locl.h" 35178825Sdfr 36178825Sdfrvoid 37178825Sdfr_gssapi_encap_length (size_t data_len, 38178825Sdfr size_t *len, 39178825Sdfr size_t *total_len, 40178825Sdfr const gss_OID mech) 41178825Sdfr{ 42178825Sdfr size_t len_len; 43178825Sdfr 44178825Sdfr *len = 1 + 1 + mech->length + data_len; 45178825Sdfr 46178825Sdfr len_len = der_length_len(*len); 47178825Sdfr 48178825Sdfr *total_len = 1 + len_len + *len; 49178825Sdfr} 50178825Sdfr 51178825Sdfrvoid 52178825Sdfr_gsskrb5_encap_length (size_t data_len, 53178825Sdfr size_t *len, 54178825Sdfr size_t *total_len, 55178825Sdfr const gss_OID mech) 56178825Sdfr{ 57178825Sdfr _gssapi_encap_length(data_len + 2, len, total_len, mech); 58178825Sdfr} 59178825Sdfr 60178825Sdfrvoid * 61178825Sdfr_gsskrb5_make_header (void *ptr, 62178825Sdfr size_t len, 63178825Sdfr const void *type, 64178825Sdfr const gss_OID mech) 65178825Sdfr{ 66178825Sdfr u_char *p = ptr; 67178825Sdfr p = _gssapi_make_mech_header(p, len, mech); 68178825Sdfr memcpy (p, type, 2); 69178825Sdfr p += 2; 70178825Sdfr return p; 71178825Sdfr} 72178825Sdfr 73178825Sdfrvoid * 74178825Sdfr_gssapi_make_mech_header(void *ptr, 75178825Sdfr size_t len, 76178825Sdfr const gss_OID mech) 77178825Sdfr{ 78178825Sdfr u_char *p = ptr; 79178825Sdfr int e; 80178825Sdfr size_t len_len, foo; 81178825Sdfr 82178825Sdfr *p++ = 0x60; 83178825Sdfr len_len = der_length_len(len); 84178825Sdfr e = der_put_length (p + len_len - 1, len_len, len, &foo); 85178825Sdfr if(e || foo != len_len) 86178825Sdfr abort (); 87178825Sdfr p += len_len; 88178825Sdfr *p++ = 0x06; 89178825Sdfr *p++ = mech->length; 90178825Sdfr memcpy (p, mech->elements, mech->length); 91178825Sdfr p += mech->length; 92178825Sdfr return p; 93178825Sdfr} 94178825Sdfr 95178825Sdfr/* 96178825Sdfr * Give it a krb5_data and it will encapsulate with extra GSS-API wrappings. 97178825Sdfr */ 98178825Sdfr 99178825SdfrOM_uint32 100178825Sdfr_gssapi_encapsulate( 101178825Sdfr OM_uint32 *minor_status, 102178825Sdfr const krb5_data *in_data, 103178825Sdfr gss_buffer_t output_token, 104178825Sdfr const gss_OID mech 105178825Sdfr) 106178825Sdfr{ 107178825Sdfr size_t len, outer_len; 108178825Sdfr void *p; 109178825Sdfr 110178825Sdfr _gssapi_encap_length (in_data->length, &len, &outer_len, mech); 111233294Sstas 112178825Sdfr output_token->length = outer_len; 113178825Sdfr output_token->value = malloc (outer_len); 114178825Sdfr if (output_token->value == NULL) { 115178825Sdfr *minor_status = ENOMEM; 116178825Sdfr return GSS_S_FAILURE; 117233294Sstas } 118178825Sdfr 119178825Sdfr p = _gssapi_make_mech_header (output_token->value, len, mech); 120178825Sdfr memcpy (p, in_data->data, in_data->length); 121178825Sdfr return GSS_S_COMPLETE; 122178825Sdfr} 123178825Sdfr 124178825Sdfr/* 125178825Sdfr * Give it a krb5_data and it will encapsulate with extra GSS-API krb5 126178825Sdfr * wrappings. 127178825Sdfr */ 128178825Sdfr 129178825SdfrOM_uint32 130178825Sdfr_gsskrb5_encapsulate( 131233294Sstas OM_uint32 *minor_status, 132178825Sdfr const krb5_data *in_data, 133178825Sdfr gss_buffer_t output_token, 134178825Sdfr const void *type, 135178825Sdfr const gss_OID mech 136178825Sdfr) 137178825Sdfr{ 138178825Sdfr size_t len, outer_len; 139178825Sdfr u_char *p; 140178825Sdfr 141178825Sdfr _gsskrb5_encap_length (in_data->length, &len, &outer_len, mech); 142233294Sstas 143178825Sdfr output_token->length = outer_len; 144178825Sdfr output_token->value = malloc (outer_len); 145178825Sdfr if (output_token->value == NULL) { 146178825Sdfr *minor_status = ENOMEM; 147178825Sdfr return GSS_S_FAILURE; 148233294Sstas } 149178825Sdfr 150178825Sdfr p = _gsskrb5_make_header (output_token->value, len, type, mech); 151178825Sdfr memcpy (p, in_data->data, in_data->length); 152178825Sdfr return GSS_S_COMPLETE; 153178825Sdfr} 154