2005-11-14 06:55:51 +00:00
|
|
|
/*
|
2007-10-02 11:55:10 +00:00
|
|
|
* Copyright (C) 2007 Tobias Brunner
|
2006-07-07 08:49:06 +00:00
|
|
|
* Copyright (C) 2005-2006 Martin Willi
|
|
|
|
* Copyright (C) 2005 Jan Hutter
|
2005-11-14 06:55:51 +00:00
|
|
|
* Hochschule fuer Technik Rapperswil
|
|
|
|
*
|
|
|
|
* This program is free software; you can redistribute it and/or modify it
|
|
|
|
* under the terms of the GNU General Public License as published by the
|
|
|
|
* Free Software Foundation; either version 2 of the License, or (at your
|
|
|
|
* option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful, but
|
|
|
|
* WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
|
|
|
|
* or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
|
|
|
|
* for more details.
|
|
|
|
*/
|
|
|
|
|
|
|
|
|
|
|
|
#include "payload.h"
|
|
|
|
|
2005-11-23 09:57:18 +00:00
|
|
|
#include <encoding/payloads/ike_header.h>
|
|
|
|
#include <encoding/payloads/sa_payload.h>
|
|
|
|
#include <encoding/payloads/nonce_payload.h>
|
2005-11-29 09:57:22 +00:00
|
|
|
#include <encoding/payloads/id_payload.h>
|
2005-11-23 09:57:18 +00:00
|
|
|
#include <encoding/payloads/ke_payload.h>
|
|
|
|
#include <encoding/payloads/notify_payload.h>
|
2005-11-29 11:16:15 +00:00
|
|
|
#include <encoding/payloads/auth_payload.h>
|
2005-12-05 12:21:38 +00:00
|
|
|
#include <encoding/payloads/cert_payload.h>
|
2005-12-05 12:54:49 +00:00
|
|
|
#include <encoding/payloads/certreq_payload.h>
|
2005-11-29 15:58:09 +00:00
|
|
|
#include <encoding/payloads/encryption_payload.h>
|
2005-11-29 15:23:04 +00:00
|
|
|
#include <encoding/payloads/ts_payload.h>
|
2005-12-05 13:43:43 +00:00
|
|
|
#include <encoding/payloads/delete_payload.h>
|
2005-12-05 14:01:56 +00:00
|
|
|
#include <encoding/payloads/vendor_id_payload.h>
|
2005-12-05 18:16:39 +00:00
|
|
|
#include <encoding/payloads/cp_payload.h>
|
|
|
|
#include <encoding/payloads/configuration_attribute.h>
|
2005-12-05 18:56:22 +00:00
|
|
|
#include <encoding/payloads/eap_payload.h>
|
2005-12-05 19:17:45 +00:00
|
|
|
#include <encoding/payloads/unknown_payload.h>
|
2005-11-14 06:55:51 +00:00
|
|
|
|
|
|
|
|
2006-10-18 11:46:13 +00:00
|
|
|
ENUM_BEGIN(payload_type_names, NO_PAYLOAD, NO_PAYLOAD,
|
|
|
|
"NO_PAYLOAD");
|
2011-11-15 13:47:20 +00:00
|
|
|
ENUM_NEXT(payload_type_names, SECURITY_ASSOCIATION_V1, VENDOR_ID_V1, NO_PAYLOAD,
|
|
|
|
"SECURITY_ASSOCIATION_V1",
|
|
|
|
"PROPOSAL_V1",
|
|
|
|
"TRANSFORM_V1",
|
|
|
|
"KEY_EXCHANGE_V1",
|
|
|
|
"ID_V1",
|
|
|
|
"CERTIFICATE_V1",
|
|
|
|
"CERTIFICATE_REQUEST_V1",
|
|
|
|
"HASH_V1",
|
|
|
|
"SIGNATURE_V1",
|
|
|
|
"NONCE_V1",
|
2011-11-17 17:01:41 +00:00
|
|
|
"NOTIFY_V1",
|
2011-11-15 13:47:20 +00:00
|
|
|
"DELETE_V1",
|
|
|
|
"VENDOR_ID_V1");
|
|
|
|
ENUM_NEXT(payload_type_names, SECURITY_ASSOCIATION, EXTENSIBLE_AUTHENTICATION, VENDOR_ID_V1,
|
2006-10-18 11:46:13 +00:00
|
|
|
"SECURITY_ASSOCIATION",
|
|
|
|
"KEY_EXCHANGE",
|
|
|
|
"ID_INITIATOR",
|
|
|
|
"ID_RESPONDER",
|
|
|
|
"CERTIFICATE",
|
|
|
|
"CERTIFICATE_REQUEST",
|
|
|
|
"AUTHENTICATION",
|
|
|
|
"NONCE",
|
|
|
|
"NOTIFY",
|
|
|
|
"DELETE",
|
|
|
|
"VENDOR_ID",
|
|
|
|
"TRAFFIC_SELECTOR_INITIATOR",
|
|
|
|
"TRAFFIC_SELECTOR_RESPONDER",
|
|
|
|
"ENCRYPTED",
|
|
|
|
"CONFIGURATION",
|
|
|
|
"EXTENSIBLE_AUTHENTICATION");
|
2008-03-26 18:40:19 +00:00
|
|
|
#ifdef ME
|
2007-10-03 15:10:41 +00:00
|
|
|
ENUM_NEXT(payload_type_names, ID_PEER, ID_PEER, EXTENSIBLE_AUTHENTICATION,
|
|
|
|
"ID_PEER");
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_NEXT(payload_type_names, HEADER, CONFIGURATION_ATTRIBUTE, ID_PEER,
|
2008-11-11 09:22:00 +00:00
|
|
|
"HEADER",
|
|
|
|
"PROPOSAL_SUBSTRUCTURE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"PROPOSAL_SUBSTRUCTURE_V1",
|
2008-11-11 09:22:00 +00:00
|
|
|
"TRANSFORM_SUBSTRUCTURE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSFORM_SUBSTRUCTURE_V1",
|
2008-11-11 09:22:00 +00:00
|
|
|
"TRANSFORM_ATTRIBUTE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSFORM_ATTRIBUTE_V1",
|
2008-11-11 09:22:00 +00:00
|
|
|
"TRAFFIC_SELECTOR_SUBSTRUCTURE",
|
2010-11-10 13:17:03 +00:00
|
|
|
"CONFIGURATION_ATTRIBUTE");
|
2007-10-03 15:10:41 +00:00
|
|
|
#else
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_NEXT(payload_type_names, HEADER, CONFIGURATION_ATTRIBUTE, EXTENSIBLE_AUTHENTICATION,
|
2006-10-18 11:46:13 +00:00
|
|
|
"HEADER",
|
|
|
|
"PROPOSAL_SUBSTRUCTURE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"PROPOSAL_SUBSTRUCTURE_V1",
|
2006-10-18 11:46:13 +00:00
|
|
|
"TRANSFORM_SUBSTRUCTURE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSFORM_SUBSTRUCTURE_V1",
|
2006-10-18 11:46:13 +00:00
|
|
|
"TRANSFORM_ATTRIBUTE",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSFORM_ATTRIBUTE_V1",
|
2006-10-18 11:46:13 +00:00
|
|
|
"TRAFFIC_SELECTOR_SUBSTRUCTURE",
|
2010-11-10 13:17:03 +00:00
|
|
|
"CONFIGURATION_ATTRIBUTE");
|
2008-11-11 09:22:00 +00:00
|
|
|
#endif /* ME */
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_END(payload_type_names, CONFIGURATION_ATTRIBUTE);
|
2006-10-18 11:46:13 +00:00
|
|
|
|
|
|
|
/* short forms of payload names */
|
|
|
|
ENUM_BEGIN(payload_type_short_names, NO_PAYLOAD, NO_PAYLOAD,
|
|
|
|
"--");
|
2011-11-15 13:47:20 +00:00
|
|
|
ENUM_NEXT(payload_type_short_names, SECURITY_ASSOCIATION_V1, VENDOR_ID_V1, NO_PAYLOAD,
|
|
|
|
"SA",
|
|
|
|
"PROP",
|
|
|
|
"TRANS",
|
|
|
|
"KE",
|
|
|
|
"ID",
|
|
|
|
"CERT",
|
|
|
|
"CERTREQ",
|
|
|
|
"HASH",
|
|
|
|
"SIG",
|
|
|
|
"No",
|
2011-11-17 17:01:41 +00:00
|
|
|
"N",
|
2011-11-15 13:47:20 +00:00
|
|
|
"D",
|
|
|
|
"V");
|
|
|
|
ENUM_NEXT(payload_type_short_names, SECURITY_ASSOCIATION, EXTENSIBLE_AUTHENTICATION, VENDOR_ID_V1,
|
2006-10-18 11:46:13 +00:00
|
|
|
"SA",
|
|
|
|
"KE",
|
|
|
|
"IDi",
|
|
|
|
"IDr",
|
|
|
|
"CERT",
|
|
|
|
"CERTREQ",
|
|
|
|
"AUTH",
|
|
|
|
"No",
|
|
|
|
"N",
|
|
|
|
"D",
|
|
|
|
"V",
|
|
|
|
"TSi",
|
|
|
|
"TSr",
|
|
|
|
"E",
|
|
|
|
"CP",
|
|
|
|
"EAP");
|
2008-03-26 18:40:19 +00:00
|
|
|
#ifdef ME
|
2007-10-03 15:10:41 +00:00
|
|
|
ENUM_NEXT(payload_type_short_names, ID_PEER, ID_PEER, EXTENSIBLE_AUTHENTICATION,
|
|
|
|
"IDp");
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_NEXT(payload_type_short_names, HEADER, CONFIGURATION_ATTRIBUTE, ID_PEER,
|
2008-11-11 09:22:00 +00:00
|
|
|
"HDR",
|
|
|
|
"PROP",
|
2011-11-16 12:40:09 +00:00
|
|
|
"PROP",
|
|
|
|
"TRANS",
|
2008-11-11 09:22:00 +00:00
|
|
|
"TRANS",
|
|
|
|
"TRANSATTR",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSATTR",
|
2008-11-11 09:22:00 +00:00
|
|
|
"TSSUB",
|
2011-11-16 12:40:09 +00:00
|
|
|
"CATTR");
|
2007-10-03 15:10:41 +00:00
|
|
|
#else
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_NEXT(payload_type_short_names, HEADER, CONFIGURATION_ATTRIBUTE, EXTENSIBLE_AUTHENTICATION,
|
2006-10-18 11:46:13 +00:00
|
|
|
"HDR",
|
|
|
|
"PROP",
|
2011-11-16 12:40:09 +00:00
|
|
|
"PROP",
|
|
|
|
"TRANS",
|
2006-10-18 11:46:13 +00:00
|
|
|
"TRANS",
|
|
|
|
"TRANSATTR",
|
2011-11-16 12:40:09 +00:00
|
|
|
"TRANSATTR",
|
2006-10-18 11:46:13 +00:00
|
|
|
"TSSUB",
|
2011-11-16 12:40:09 +00:00
|
|
|
"CATTR");
|
2008-11-11 09:22:00 +00:00
|
|
|
#endif /* ME */
|
2010-11-10 13:17:03 +00:00
|
|
|
ENUM_END(payload_type_short_names, CONFIGURATION_ATTRIBUTE);
|
2006-07-05 10:53:20 +00:00
|
|
|
|
2005-11-14 07:15:43 +00:00
|
|
|
/*
|
|
|
|
* see header
|
|
|
|
*/
|
2005-11-14 09:43:18 +00:00
|
|
|
payload_t *payload_create(payload_type_t type)
|
2005-11-14 07:15:43 +00:00
|
|
|
{
|
|
|
|
switch (type)
|
|
|
|
{
|
|
|
|
case HEADER:
|
|
|
|
return (payload_t*)ike_header_create();
|
2005-11-14 17:29:22 +00:00
|
|
|
case SECURITY_ASSOCIATION:
|
2011-11-16 08:29:38 +00:00
|
|
|
case SECURITY_ASSOCIATION_V1:
|
|
|
|
return (payload_t*)sa_payload_create(type);
|
2005-11-14 17:29:22 +00:00
|
|
|
case PROPOSAL_SUBSTRUCTURE:
|
2011-11-16 12:40:09 +00:00
|
|
|
case PROPOSAL_SUBSTRUCTURE_V1:
|
|
|
|
return (payload_t*)proposal_substructure_create(type);
|
2005-11-14 17:29:22 +00:00
|
|
|
case TRANSFORM_SUBSTRUCTURE:
|
2011-11-16 12:40:09 +00:00
|
|
|
case TRANSFORM_SUBSTRUCTURE_V1:
|
|
|
|
return (payload_t*)transform_substructure_create(type);
|
2005-11-14 17:29:22 +00:00
|
|
|
case TRANSFORM_ATTRIBUTE:
|
2011-11-16 12:40:09 +00:00
|
|
|
case TRANSFORM_ATTRIBUTE_V1:
|
|
|
|
return (payload_t*)transform_attribute_create(type);
|
2005-11-15 15:26:27 +00:00
|
|
|
case NONCE:
|
2011-11-17 09:53:35 +00:00
|
|
|
case NONCE_V1:
|
|
|
|
return (payload_t*)nonce_payload_create(type);
|
2005-11-29 09:57:22 +00:00
|
|
|
case ID_INITIATOR:
|
|
|
|
case ID_RESPONDER:
|
2011-11-17 13:46:02 +00:00
|
|
|
case ID_V1:
|
2008-03-26 18:40:19 +00:00
|
|
|
#ifdef ME
|
2007-10-03 15:10:41 +00:00
|
|
|
case ID_PEER:
|
2008-03-26 18:40:19 +00:00
|
|
|
#endif /* ME */
|
2011-11-16 12:40:09 +00:00
|
|
|
return (payload_t*)id_payload_create(type);
|
2005-11-29 11:16:15 +00:00
|
|
|
case AUTHENTICATION:
|
|
|
|
return (payload_t*)auth_payload_create();
|
2005-12-05 12:21:38 +00:00
|
|
|
case CERTIFICATE:
|
|
|
|
return (payload_t*)cert_payload_create();
|
2005-12-05 12:54:49 +00:00
|
|
|
case CERTIFICATE_REQUEST:
|
|
|
|
return (payload_t*)certreq_payload_create();
|
2005-11-29 15:23:04 +00:00
|
|
|
case TRAFFIC_SELECTOR_SUBSTRUCTURE:
|
|
|
|
return (payload_t*)traffic_selector_substructure_create();
|
|
|
|
case TRAFFIC_SELECTOR_INITIATOR:
|
|
|
|
return (payload_t*)ts_payload_create(TRUE);
|
|
|
|
case TRAFFIC_SELECTOR_RESPONDER:
|
|
|
|
return (payload_t*)ts_payload_create(FALSE);
|
2005-11-15 15:44:18 +00:00
|
|
|
case KEY_EXCHANGE:
|
2011-11-17 10:16:02 +00:00
|
|
|
case KEY_EXCHANGE_V1:
|
|
|
|
return (payload_t*)ke_payload_create(type);
|
2005-11-15 16:18:02 +00:00
|
|
|
case NOTIFY:
|
2011-11-17 17:01:41 +00:00
|
|
|
case NOTIFY_V1:
|
|
|
|
return (payload_t*)notify_payload_create(type);
|
2005-12-05 13:43:43 +00:00
|
|
|
case DELETE:
|
2011-11-17 17:14:51 +00:00
|
|
|
case DELETE_V1:
|
|
|
|
return (payload_t*)delete_payload_create(type, 0);
|
2005-12-05 14:01:56 +00:00
|
|
|
case VENDOR_ID:
|
2011-11-15 14:58:47 +00:00
|
|
|
case VENDOR_ID_V1:
|
|
|
|
return (payload_t*)vendor_id_payload_create(type);
|
2005-12-05 18:16:39 +00:00
|
|
|
case CONFIGURATION:
|
|
|
|
return (payload_t*)cp_payload_create();
|
|
|
|
case CONFIGURATION_ATTRIBUTE:
|
|
|
|
return (payload_t*)configuration_attribute_create();
|
2005-12-05 18:56:22 +00:00
|
|
|
case EXTENSIBLE_AUTHENTICATION:
|
|
|
|
return (payload_t*)eap_payload_create();
|
2005-11-29 15:58:09 +00:00
|
|
|
case ENCRYPTED:
|
2011-11-21 10:53:23 +00:00
|
|
|
case ENCRYPTED_V1:
|
|
|
|
return (payload_t*)encryption_payload_create(type);
|
2005-11-14 07:15:43 +00:00
|
|
|
default:
|
2010-11-10 13:17:03 +00:00
|
|
|
return (payload_t*)unknown_payload_create(type);
|
2005-11-14 07:15:43 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2010-11-10 13:17:03 +00:00
|
|
|
/**
|
|
|
|
* See header.
|
|
|
|
*/
|
|
|
|
bool payload_is_known(payload_type_t type)
|
|
|
|
{
|
2011-11-15 14:58:23 +00:00
|
|
|
if (type == HEADER)
|
|
|
|
{
|
|
|
|
return TRUE;
|
|
|
|
}
|
|
|
|
if (type >= SECURITY_ASSOCIATION && type <= EXTENSIBLE_AUTHENTICATION)
|
|
|
|
{
|
|
|
|
return TRUE;
|
|
|
|
}
|
|
|
|
if (type >= SECURITY_ASSOCIATION_V1 && type <= VENDOR_ID_V1)
|
2010-11-10 13:17:03 +00:00
|
|
|
{
|
|
|
|
return TRUE;
|
|
|
|
}
|
|
|
|
#ifdef ME
|
|
|
|
if (type == ID_PEER)
|
|
|
|
{
|
|
|
|
return TRUE;
|
|
|
|
}
|
|
|
|
#endif
|
|
|
|
return FALSE;
|
|
|
|
}
|
2010-11-24 15:52:49 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* See header.
|
|
|
|
*/
|
|
|
|
void* payload_get_field(payload_t *payload, encoding_type_t type, u_int skip)
|
|
|
|
{
|
|
|
|
encoding_rule_t *rule;
|
2011-11-17 10:27:55 +00:00
|
|
|
int i, count;
|
2010-11-24 15:52:49 +00:00
|
|
|
|
2011-11-17 10:27:55 +00:00
|
|
|
count = payload->get_encoding_rules(payload, &rule);
|
2010-11-24 15:52:49 +00:00
|
|
|
for (i = 0; i < count; i++)
|
|
|
|
{
|
|
|
|
if (rule[i].type == type && skip-- == 0)
|
|
|
|
{
|
|
|
|
return ((char*)payload) + rule[i].offset;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return NULL;
|
|
|
|
}
|