blob: f3c659112198b47db83bc00f322e5a4bcce1887d [file] [log] [blame]
Manuel Pégourié-Gonnardfd6d8972015-05-15 12:09:00 +02001/**
2 * \file ssl_ticket.h
3 *
4 * \brief TLS server ticket callbacks implementation
5 *
6 * Copyright (C) 2015, ARM Limited, All Rights Reserved
7 *
8 * This file is part of mbed TLS (https://tls.mbed.org)
9 *
10 * This program is free software; you can redistribute it and/or modify
11 * it under the terms of the GNU General Public License as published by
12 * the Free Software Foundation; either version 2 of the License, or
13 * (at your option) any later version.
14 *
15 * This program is distributed in the hope that it will be useful,
16 * but WITHOUT ANY WARRANTY; without even the implied warranty of
17 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 * GNU General Public License for more details.
19 *
20 * You should have received a copy of the GNU General Public License along
21 * with this program; if not, write to the Free Software Foundation, Inc.,
22 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
23 */
24#ifndef MBEDTLS_SSL_TICKET_H
25#define MBEDTLS_SSL_TICKET_H
26
27#include "ssl.h"
Manuel Pégourié-Gonnard0c0f11f2015-05-20 09:55:50 +020028#include "aes.h"
Manuel Pégourié-Gonnardfd6d8972015-05-15 12:09:00 +020029
30#ifdef __cplusplus
31extern "C" {
32#endif
33
Manuel Pégourié-Gonnarda4a47352015-05-15 15:14:54 +020034
Manuel Pégourié-Gonnardd59675d2015-05-19 15:28:00 +020035/**
36 * \brief Context for session ticket handling functions
37 */
38typedef struct
39{
40 unsigned char key_name[16]; /*!< name to quickly reject bad tickets */
41 mbedtls_aes_context enc; /*!< encryption context */
42 mbedtls_aes_context dec; /*!< decryption context */
43 unsigned char mac_key[16]; /*!< authentication key */
44
45 uint32_t ticket_lifetime; /*!< lifetime of tickets in seconds */
46
47 /** Callback for getting (pseudo-)random numbers */
48 int (*f_rng)(void *, unsigned char *, size_t);
49 void *p_rng; /*!< context for the RNG function */
50}
51mbedtls_ssl_ticket_context;
52
53/**
54 * \brief Initialize a ticket context.
55 * (Just make it ready for mbedtls_ssl_ticket_setup()
56 * or mbedtls_ssl_ticket_free().)
57 *
58 * \param ctx Context to be initialized
59 */
60void mbedtls_ssl_ticket_init( mbedtls_ssl_ticket_context *ctx );
61
62/**
63 * \brief Prepare context to be actually used
64 *
65 * \param ctx Context to be set up
66 * \param f_rng RNG callback function
67 * \param p_rng RNG callback context
68 * \param lifetime Tickets lifetime in seconds
69 *
70 * \return 0 is successful,
71 * or a specific MBEDTLS_ERR_XXX error code
72 */
73int mbedtls_ssl_ticket_setup( mbedtls_ssl_ticket_context *ctx,
74 int (*f_rng)(void *, unsigned char *, size_t), void *p_rng,
75 uint32_t lifetime );
76
77/**
78 * \brief Implementation of the ticket write callback
79 *
80 * \note See \c mbedlts_ssl_ticket_write_t for description
81 */
82mbedtls_ssl_ticket_write_t mbedtls_ssl_ticket_write;
83
84/**
85 * \brief Implementation of the ticket parse callback
86 *
87 * \note See \c mbedlts_ssl_ticket_parse_t for description
88 */
89mbedtls_ssl_ticket_parse_t mbedtls_ssl_ticket_parse;
90
91/**
92 * \brief Free a context's content and zeroize it.
93 *
94 * \param ctx Context to be cleaned up
95 */
96void mbedtls_ssl_ticket_free( mbedtls_ssl_ticket_context *ctx );
Manuel Pégourié-Gonnardfd6d8972015-05-15 12:09:00 +020097
98#ifdef __cplusplus
99}
100#endif
101
102#endif /* ssl_ticket.h */