strongswan/src/libstrongswan/ipsec/ipsec_types.c

120 lines
2.4 KiB
C

/*
* Copyright (C) 2012-2013 Tobias Brunner
* Hochschule fuer Technik Rapperswil
*
* This program is free software; you can redistribute it and/or modify it
* under the terms of the GNU General Public License as published by the
* Free Software Foundation; either version 2 of the License, or (at your
* option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
*
* This program is distributed in the hope that it will be useful, but
* WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
* or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
* for more details.
*/
#include "ipsec_types.h"
ENUM(ipsec_mode_names, MODE_TRANSPORT, MODE_DROP,
"TRANSPORT",
"TUNNEL",
"BEET",
"PASS",
"DROP"
);
ENUM(policy_dir_names, POLICY_IN, POLICY_FWD,
"in",
"out",
"fwd"
);
ENUM(ipcomp_transform_names, IPCOMP_NONE, IPCOMP_LZJH,
"IPCOMP_NONE",
"IPCOMP_OUI",
"IPCOMP_DEFLATE",
"IPCOMP_LZS",
"IPCOMP_LZJH"
);
ENUM(hw_offload_names, HW_OFFLOAD_NO, HW_OFFLOAD_AUTO,
"no",
"yes",
"auto",
);
/*
* See header
*/
bool ipsec_sa_cfg_equals(ipsec_sa_cfg_t *a, ipsec_sa_cfg_t *b)
{
return a->mode == b->mode &&
a->reqid == b->reqid &&
a->policy_count == b->policy_count &&
a->esp.use == b->esp.use &&
a->esp.spi == b->esp.spi &&
a->ah.use == b->ah.use &&
a->ah.spi == b->ah.spi &&
a->ipcomp.transform == b->ipcomp.transform &&
a->ipcomp.cpi == b->ipcomp.cpi;
}
/*
* See header
*/
bool mark_from_string(const char *value, mark_t *mark)
{
char *endptr;
if (!value)
{
return FALSE;
}
if (strcasepfx(value, "%unique"))
{
endptr = (char*)value + strlen("%unique");
if (strcasepfx(endptr, "-dir"))
{
mark->value = MARK_UNIQUE_DIR;
endptr += strlen("-dir");
}
else if (!*endptr || *endptr == '/')
{
mark->value = MARK_UNIQUE;
}
else
{
DBG1(DBG_APP, "invalid mark value: %s", value);
return FALSE;
}
}
else
{
mark->value = strtoul(value, &endptr, 0);
}
if (*endptr)
{
if (*endptr != '/')
{
DBG1(DBG_APP, "invalid mark value: %s", value);
return FALSE;
}
mark->mask = strtoul(endptr+1, &endptr, 0);
if (*endptr)
{
DBG1(DBG_LIB, "invalid mark mask: %s", endptr);
return FALSE;
}
}
else
{
mark->mask = 0xffffffff;
}
if (!MARK_IS_UNIQUE(mark->value))
{
/* apply the mask to ensure the value is in range */
mark->value &= mark->mask;
}
return TRUE;
}