blob: 1bbd646dad97c1e8c3c4be1688b33bdc1e7fb0a6 [file] [log] [blame]
Manuel Pégourié-Gonnardfd6d8972015-05-15 12:09:00 +02001/**
2 * \file ssl_ticket.h
3 *
4 * \brief TLS server ticket callbacks implementation
5 *
6 * Copyright (C) 2015, ARM Limited, All Rights Reserved
7 *
8 * This file is part of mbed TLS (https://tls.mbed.org)
9 *
10 * This program is free software; you can redistribute it and/or modify
11 * it under the terms of the GNU General Public License as published by
12 * the Free Software Foundation; either version 2 of the License, or
13 * (at your option) any later version.
14 *
15 * This program is distributed in the hope that it will be useful,
16 * but WITHOUT ANY WARRANTY; without even the implied warranty of
17 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 * GNU General Public License for more details.
19 *
20 * You should have received a copy of the GNU General Public License along
21 * with this program; if not, write to the Free Software Foundation, Inc.,
22 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
23 */
24#ifndef MBEDTLS_SSL_TICKET_H
25#define MBEDTLS_SSL_TICKET_H
26
27#include "ssl.h"
28
29#ifdef __cplusplus
30extern "C" {
31#endif
32
Manuel Pégourié-Gonnarda4a47352015-05-15 15:14:54 +020033
Manuel Pégourié-Gonnardd59675d2015-05-19 15:28:00 +020034/**
35 * \brief Context for session ticket handling functions
36 */
37typedef struct
38{
39 unsigned char key_name[16]; /*!< name to quickly reject bad tickets */
40 mbedtls_aes_context enc; /*!< encryption context */
41 mbedtls_aes_context dec; /*!< decryption context */
42 unsigned char mac_key[16]; /*!< authentication key */
43
44 uint32_t ticket_lifetime; /*!< lifetime of tickets in seconds */
45
46 /** Callback for getting (pseudo-)random numbers */
47 int (*f_rng)(void *, unsigned char *, size_t);
48 void *p_rng; /*!< context for the RNG function */
49}
50mbedtls_ssl_ticket_context;
51
52/**
53 * \brief Initialize a ticket context.
54 * (Just make it ready for mbedtls_ssl_ticket_setup()
55 * or mbedtls_ssl_ticket_free().)
56 *
57 * \param ctx Context to be initialized
58 */
59void mbedtls_ssl_ticket_init( mbedtls_ssl_ticket_context *ctx );
60
61/**
62 * \brief Prepare context to be actually used
63 *
64 * \param ctx Context to be set up
65 * \param f_rng RNG callback function
66 * \param p_rng RNG callback context
67 * \param lifetime Tickets lifetime in seconds
68 *
69 * \return 0 is successful,
70 * or a specific MBEDTLS_ERR_XXX error code
71 */
72int mbedtls_ssl_ticket_setup( mbedtls_ssl_ticket_context *ctx,
73 int (*f_rng)(void *, unsigned char *, size_t), void *p_rng,
74 uint32_t lifetime );
75
76/**
77 * \brief Implementation of the ticket write callback
78 *
79 * \note See \c mbedlts_ssl_ticket_write_t for description
80 */
81mbedtls_ssl_ticket_write_t mbedtls_ssl_ticket_write;
82
83/**
84 * \brief Implementation of the ticket parse callback
85 *
86 * \note See \c mbedlts_ssl_ticket_parse_t for description
87 */
88mbedtls_ssl_ticket_parse_t mbedtls_ssl_ticket_parse;
89
90/**
91 * \brief Free a context's content and zeroize it.
92 *
93 * \param ctx Context to be cleaned up
94 */
95void mbedtls_ssl_ticket_free( mbedtls_ssl_ticket_context *ctx );
Manuel Pégourié-Gonnardfd6d8972015-05-15 12:09:00 +020096
97#ifdef __cplusplus
98}
99#endif
100
101#endif /* ssl_ticket.h */