17#ifndef GLOBUS_I_GSI_GSS_UTILS_H
18#define GLOBUS_I_GSI_GSS_UTILS_H
20#ifndef GLOBUS_DONT_DOCUMENT_INTERNAL
32#define GLOBUS_GSI_GSSAPI_ERROR_RESULT(_MIN_RESULT_, _MIN_, \
34 if (_MIN_RESULT_ != NULL) \
37 globus_common_create_string _ERRSTR_; \
38 *_MIN_RESULT_ = (OM_uint32) globus_i_gsi_gssapi_error_result( \
39 _MIN_, __FILE__, __func__, \
40 __LINE__, tmpstr, NULL); \
41 globus_libc_free(tmpstr); \
44#define GLOBUS_GSI_GSSAPI_OPENSSL_ERROR_RESULT(_MIN_RESULT_, \
45 _ERRORTYPE_, _ERRORSTR_) \
48 globus_common_create_string _ERRORSTR_; \
50 (OM_uint32) globus_i_gsi_gssapi_openssl_error_result( \
51 _ERRORTYPE_, __FILE__, __func__, __LINE__, tmpstr, NULL); \
52 globus_libc_free(tmpstr); \
55#define GLOBUS_GSI_GSSAPI_ERROR_CHAIN_RESULT(_MIN_RESULT_, _TOP_RESULT_, \
57 *_MIN_RESULT_ = (OM_uint32) globus_i_gsi_gssapi_error_chain_result( \
58 (globus_result_t)_TOP_RESULT_, \
59 _ERRORTYPE_, __FILE__, \
60 __func__, __LINE__, NULL, NULL)
62#define GLOBUS_GSI_GSSAPI_LONG_ERROR_RESULT(_MIN_RESULT_, _MIN_, \
63 _ERRSTR_, _LONG_DESC_) \
66 globus_common_create_string _ERRSTR_; \
67 *_MIN_RESULT_ = (OM_uint32) globus_i_gsi_gssapi_error_result( \
68 _MIN_, __FILE__, __func__, \
69 __LINE__, tmpstr, _LONG_DESC_); \
70 globus_libc_free(tmpstr); \
73#define GLOBUS_GSI_GSSAPI_OPENSSL_LONG_ERROR_RESULT(_MIN_RESULT_, \
79 globus_common_create_string _ERRORSTR_; \
81 (OM_uint32) globus_i_gsi_gssapi_openssl_error_result( \
82 _ERRORTYPE_, __FILE__, __func__, \
83 __LINE__, tmpstr, _LONG_DESC_); \
84 globus_libc_free(tmpstr); \
87#define GLOBUS_GSI_GSSAPI_LONG_ERROR_CHAIN_RESULT(_MIN_RESULT_, _TOP_RESULT_, \
88 _ERRORTYPE_, _LONG_DESC_) \
89 *_MIN_RESULT_ = (OM_uint32) globus_i_gsi_gssapi_error_chain_result( \
90 (globus_result_t)_TOP_RESULT_, \
91 _ERRORTYPE_, __FILE__, \
92 __func__, __LINE__, NULL, _LONG_DESC_)
94#define GLOBUS_GSI_GSSAPI_MALLOC_ERROR(_MIN_RESULT_) \
97 globus_l_gsi_gssapi_error_strings[ \
98 GLOBUS_GSI_GSSAPI_ERROR_OUT_OF_MEMORY]; \
99 *_MIN_RESULT_ = (OM_uint32) globus_error_put( \
100 globus_error_wrap_errno_error( \
101 GLOBUS_GSI_GSSAPI_MODULE, \
103 GLOBUS_GSI_GSSAPI_ERROR_OUT_OF_MEMORY, \
114extern int globus_i_gsi_gssapi_debug_level;
115extern FILE * globus_i_gsi_gssapi_debug_fstream;
116extern globus_mutex_t globus_i_gssapi_activate_mutex;
117extern globus_bool_t globus_i_gssapi_active;
122#define GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_) \
123 (globus_i_gsi_gssapi_debug_level >= (_LEVEL_))
125#define GLOBUS_I_GSI_GSSAPI_DEBUG_FPRINTF(_LEVEL_, _MESSAGE_) \
127 if (GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_)) \
129 globus_libc_fprintf _MESSAGE_; \
133#define GLOBUS_I_GSI_GSSAPI_DEBUG_FNPRINTF(_LEVEL_, _MESSAGE_) \
135 if (GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_)) \
138 globus_common_create_nstring _MESSAGE_; \
139 globus_libc_fprintf(globus_i_gsi_gssapi_debug_fstream, \
141 globus_libc_free(_tmp_str_); \
145#define GLOBUS_I_GSI_GSSAPI_DEBUG_PRINT(_LEVEL_, _MESSAGE_) \
147 if (GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_)) \
149 globus_libc_fprintf( \
150 globus_i_gsi_gssapi_debug_fstream, \
155#define GLOBUS_I_GSI_GSSAPI_DEBUG_PRINT_OBJECT(_LEVEL_, _TYPE_, _OBJ_) \
157 if (GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_)) \
160 globus_i_gsi_gssapi_debug_fstream, \
167#define GLOBUS_I_GSI_GSSAPI_DEBUG(_LEVEL_) 0
168#define GLOBUS_I_GSI_GSSAPI_DEBUG_FPRINTF(_LEVEL_, _MESSAGE_)
169#define GLOBUS_I_GSI_GSSAPI_DEBUG_FNPRINTF(_LEVEL_, _MESSAGE_)
170#define GLOBUS_I_GSI_GSSAPI_DEBUG_PRINT(_LEVEL_, _MESSAGE_)
171#define GLOBUS_I_GSI_GSSAPI_DEBUG_PRINT_OBJECT(_LEVEL,_TYPE_, _OBJ_)
175#define GLOBUS_I_GSI_GSSAPI_DEBUG_ENTER \
176 GLOBUS_I_GSI_GSSAPI_DEBUG_FPRINTF( \
177 3, (globus_i_gsi_gssapi_debug_fstream, \
178 "%s entering\n", __func__))
180#define GLOBUS_I_GSI_GSSAPI_DEBUG_EXIT \
181 GLOBUS_I_GSI_GSSAPI_DEBUG_FPRINTF( \
182 3, (globus_i_gsi_gssapi_debug_fstream, \
183 "%s exiting: major_status=%d\n", \
184 __func__, (int)major_status))
186#define GLOBUS_I_GSI_GSSAPI_INTERNAL_DEBUG_EXIT \
187 GLOBUS_I_GSI_GSSAPI_DEBUG_FPRINTF( \
188 3, (globus_i_gsi_gssapi_debug_fstream, \
192extern int globus_i_gsi_gssapi_min_tls_protocol;
193extern int globus_i_gsi_gssapi_max_tls_protocol;
194extern const char * globus_i_gsi_gssapi_cipher_list;
195extern globus_bool_t globus_i_gsi_gssapi_server_cipher_order;
196extern uid_t globus_i_gsi_gssapi_vhost_cred_owner;
200 GLOBUS_I_GSI_GSS_DEFAULT_CONTEXT,
201 GLOBUS_I_GSI_GSS_ANON_CONTEXT
202} globus_i_gsi_gss_context_type_t;
205globus_i_gsi_gss_copy_name_to_name(
206 OM_uint32 * minor_status,
207 gss_name_desc ** output,
208 const gss_name_desc * input);
211globus_i_gsi_gss_create_and_fill_context(
212 OM_uint32 * minor_status,
213 gss_ctx_id_desc ** context_handle,
215 const gss_name_t target_name,
216 gss_cred_id_desc * cred_handle,
217 const gss_cred_usage_t cred_usage,
218 OM_uint32 req_flags);
221globus_i_gsi_gss_create_anonymous_cred(
222 OM_uint32 * minor_status,
223 gss_cred_id_t * output_cred_handle,
224 const gss_cred_usage_t cred_usage);
227globus_i_gsi_gss_cred_read_bio(
228 OM_uint32 * minor_status,
229 const gss_cred_usage_t cred_usage,
230 gss_cred_id_t * cred_id_handle,
234globus_i_gsi_gss_cred_read(
235 OM_uint32 * minor_status,
236 const gss_cred_usage_t cred_usage,
237 gss_cred_id_t * cred_handle,
238 const X509_NAME * desired_subject);
241globus_i_gsi_gss_create_cred(
242 OM_uint32 * minor_status,
243 const gss_cred_usage_t cred_usage,
244 gss_cred_id_t * output_cred_handle_P,
245 globus_gsi_cred_handle_t * cred_handle,
246 globus_bool_t sni_context);
248int globus_i_gsi_gss_verify_extensions_callback(
249 globus_gsi_callback_data_t callback_data,
250 X509_EXTENSION * extension);
253globus_i_gsi_gss_handshake(
254 OM_uint32 * minor_status,
255 gss_ctx_id_desc * context_handle);
258globus_i_gsi_gss_get_token(
259 OM_uint32 * minor_status,
260 const gss_ctx_id_desc * context_handle,
262 const gss_buffer_t output_token);
265globus_i_gsi_gss_put_token(
266 OM_uint32 * minor_status,
267 const gss_ctx_id_desc * context_handle,
269 const gss_buffer_t input_token);
272globus_i_gsi_gss_retrieve_peer(
273 OM_uint32 * minor_status,
274 gss_ctx_id_desc * context_handle,
275 const gss_cred_usage_t cred_usage);
277#if LINK_WITH_INTERNAL_OPENSSL_API
279globus_i_gsi_gss_SSL_write_bio(
280 OM_uint32 * minor_status,
281 gss_ctx_id_desc * context,
285globus_i_gsi_gss_SSL_read_bio(
286 OM_uint32 * minor_status,
287 gss_ctx_id_desc * context,
292globus_i_gsi_gss_get_context_goodtill(
293 OM_uint32 * minor_status,
294 gss_ctx_id_t context,
298globus_i_gsi_gssapi_init_ssl_context(
299 OM_uint32 * minor_status,
300 gss_cred_id_t credential,
301 globus_i_gsi_gss_context_type_t anon_ctx,
302 globus_bool_t sni_context);
305globus_i_gsi_gssapi_openssl_error_result(
307 const char * filename,
308 const char * function_name,
310 const char * short_desc,
311 const char * long_desc);
314globus_i_gsi_gssapi_error_result(
315 const OM_uint32 minor_status,
316 const char * filename,
317 const char * function_name,
319 const char * short_desc,
320 const char * long_desc);
323globus_i_gsi_gssapi_error_chain_result(
324 globus_result_t chain_result,
326 const char * filename,
327 const char * function_name,
329 const char * short_desc,
330 const char * long_desc);
333globus_i_gsi_gssapi_error_join_chains_result(
334 globus_result_t outer_error,
335 globus_result_t inner_error);
338globus_i_gsi_gssapi_get_hostname(
339 OM_uint32 * minor_status,
340 gss_name_desc * name);
343globus_i_gss_read_vhost_cred_dir(
344 OM_uint32 *minor_status,
346 gss_cred_id_t **output_credentials_array,
347 size_t *output_credentials_array_count);
351 GSS_I_COMPATIBILITY_HYBRID,
352 GSS_I_COMPATIBILITY_STRICT_GT2,
353 GSS_I_COMPATIBILITY_STRICT_RFC2818
355gss_i_name_compatibility_mode_t;
357extern gss_i_name_compatibility_mode_t gss_i_name_compatibility_mode;