Blame


1 fb1a36c0 2022-01-09 op /*
2 fb1a36c0 2022-01-09 op * Copyright (c) 2021 Omar Polo <op@omarpolo.com>
3 fb1a36c0 2022-01-09 op *
4 fb1a36c0 2022-01-09 op * Permission to use, copy, modify, and distribute this software for any
5 fb1a36c0 2022-01-09 op * purpose with or without fee is hereby granted, provided that the above
6 fb1a36c0 2022-01-09 op * copyright notice and this permission notice appear in all copies.
7 fb1a36c0 2022-01-09 op *
8 fb1a36c0 2022-01-09 op * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 fb1a36c0 2022-01-09 op * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 fb1a36c0 2022-01-09 op * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 fb1a36c0 2022-01-09 op * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 fb1a36c0 2022-01-09 op * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 fb1a36c0 2022-01-09 op * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 fb1a36c0 2022-01-09 op * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
15 fb1a36c0 2022-01-09 op */
16 fb1a36c0 2022-01-09 op
17 fb1a36c0 2022-01-09 op #ifndef KAMID_H
18 fb1a36c0 2022-01-09 op #define KAMID_H
19 fb1a36c0 2022-01-09 op
20 fb1a36c0 2022-01-09 op #include <limits.h>
21 fb1a36c0 2022-01-09 op #include <stdint.h>
22 fb1a36c0 2022-01-09 op #include <tls.h>
23 fb1a36c0 2022-01-09 op
24 fb1a36c0 2022-01-09 op /* TODO: make these customizable */
25 fb1a36c0 2022-01-09 op #define KD_CONF_FILE "/etc/kamid.conf"
26 fb1a36c0 2022-01-09 op #define KD_USER "_kamid"
27 fb1a36c0 2022-01-09 op #define KD_SOCKET "/var/run/kamid.sock"
28 fb1a36c0 2022-01-09 op
29 fb1a36c0 2022-01-09 op #define IMSG_DATA_SIZE(imsg) ((imsg).hdr.len - IMSG_HEADER_SIZE)
30 fb1a36c0 2022-01-09 op
31 fb1a36c0 2022-01-09 op enum imsg_type {
32 fb1a36c0 2022-01-09 op IMSG_NONE,
33 fb1a36c0 2022-01-09 op IMSG_CTL_LOG_VERBOSE,
34 fb1a36c0 2022-01-09 op IMSG_CTL_RELOAD,
35 fb1a36c0 2022-01-09 op IMSG_CONTROLFD,
36 fb1a36c0 2022-01-09 op IMSG_STARTUP,
37 fb1a36c0 2022-01-09 op IMSG_RECONF_CONF,
38 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI,
39 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI_CERT,
40 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI_KEY,
41 fb1a36c0 2022-01-09 op IMSG_RECONF_LISTEN,
42 fb1a36c0 2022-01-09 op IMSG_RECONF_END,
43 fb1a36c0 2022-01-09 op IMSG_AUTH,
44 fb1a36c0 2022-01-09 op IMSG_AUTH_DIR,
45 fb1a36c0 2022-01-09 op IMSG_AUTH_TLS,
46 fb1a36c0 2022-01-09 op IMSG_CONN_GONE,
47 fb1a36c0 2022-01-09 op IMSG_BUF,
48 fb1a36c0 2022-01-09 op IMSG_MSIZE,
49 fb1a36c0 2022-01-09 op IMSG_CLOSE,
50 fb1a36c0 2022-01-09 op };
51 fb1a36c0 2022-01-09 op
52 fb1a36c0 2022-01-09 op struct kd_options_conf {
53 fb1a36c0 2022-01-09 op /* ... */
54 fb1a36c0 2022-01-09 op };
55 fb1a36c0 2022-01-09 op
56 fb1a36c0 2022-01-09 op enum table_type {
57 fb1a36c0 2022-01-09 op T_NONE = 0,
58 fb1a36c0 2022-01-09 op T_HASH = 0x01,
59 fb1a36c0 2022-01-09 op };
60 fb1a36c0 2022-01-09 op
61 fb1a36c0 2022-01-09 op struct table {
62 fb1a36c0 2022-01-09 op char t_name[LINE_MAX];
63 fb1a36c0 2022-01-09 op enum table_type t_type;
64 fb1a36c0 2022-01-09 op char t_path[PATH_MAX];
65 fb1a36c0 2022-01-09 op void *t_handle;
66 fb1a36c0 2022-01-09 op struct table_backend *t_backend;
67 fb1a36c0 2022-01-09 op };
68 fb1a36c0 2022-01-09 op
69 fb1a36c0 2022-01-09 op struct table_backend {
70 fb1a36c0 2022-01-09 op const char *name;
71 fb1a36c0 2022-01-09 op int (*open)(struct table *);
72 fb1a36c0 2022-01-09 op int (*add)(struct table *, const char *, const char *);
73 fb1a36c0 2022-01-09 op int (*lookup)(struct table *, const char *, char **);
74 fb1a36c0 2022-01-09 op void (*close)(struct table *);
75 fb1a36c0 2022-01-09 op };
76 fb1a36c0 2022-01-09 op
77 fb1a36c0 2022-01-09 op /* table_static.c */
78 fb1a36c0 2022-01-09 op extern struct table_backend table_static;
79 fb1a36c0 2022-01-09 op
80 fb1a36c0 2022-01-09 op #define L_NONE 0x0
81 fb1a36c0 2022-01-09 op #define L_TLS 0x1
82 fb1a36c0 2022-01-09 op struct kd_listen_conf {
83 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_listen_conf) entry;
84 fb1a36c0 2022-01-09 op uint32_t id;
85 fb1a36c0 2022-01-09 op uint32_t flags;
86 fb1a36c0 2022-01-09 op int fd;
87 fb1a36c0 2022-01-09 op char iface[LINE_MAX];
88 fb1a36c0 2022-01-09 op uint16_t port;
89 fb1a36c0 2022-01-09 op
90 fb1a36c0 2022-01-09 op /* certificate hash => (virtual) user */
91 fb1a36c0 2022-01-09 op struct table *auth_table;
92 fb1a36c0 2022-01-09 op
93 fb1a36c0 2022-01-09 op /* virtual user => local user */
94 fb1a36c0 2022-01-09 op struct table *virtual_table;
95 fb1a36c0 2022-01-09 op
96 fb1a36c0 2022-01-09 op /* (virtual) user => export directory */
97 fb1a36c0 2022-01-09 op struct table *userdata_table;
98 fb1a36c0 2022-01-09 op
99 fb1a36c0 2022-01-09 op char pki[LINE_MAX];
100 fb1a36c0 2022-01-09 op struct event ev;
101 fb1a36c0 2022-01-09 op struct tls *ctx;
102 fb1a36c0 2022-01-09 op };
103 fb1a36c0 2022-01-09 op
104 fb1a36c0 2022-01-09 op struct kd_pki_conf {
105 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_pki_conf) entry;
106 fb1a36c0 2022-01-09 op char name[LINE_MAX];
107 fb1a36c0 2022-01-09 op uint8_t *cert;
108 fb1a36c0 2022-01-09 op size_t certlen;
109 fb1a36c0 2022-01-09 op uint8_t *key;
110 fb1a36c0 2022-01-09 op size_t keylen;
111 fb1a36c0 2022-01-09 op struct tls_config *tlsconf;
112 fb1a36c0 2022-01-09 op };
113 fb1a36c0 2022-01-09 op
114 fb1a36c0 2022-01-09 op struct kd_tables_conf {
115 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_tables_conf) entry;
116 fb1a36c0 2022-01-09 op struct table *table;
117 fb1a36c0 2022-01-09 op };
118 fb1a36c0 2022-01-09 op
119 fb1a36c0 2022-01-09 op struct kd_conf {
120 fb1a36c0 2022-01-09 op struct kd_options_conf kd_options;
121 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_pki_conf_head, kd_pki_conf) pki_head;
122 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_tables_conf_head, kd_tables_conf) table_head;
123 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_listen_conf_head, kd_listen_conf) listen_head;
124 fb1a36c0 2022-01-09 op };
125 fb1a36c0 2022-01-09 op
126 fb1a36c0 2022-01-09 op struct kd_auth_req {
127 fb1a36c0 2022-01-09 op uint32_t listen_id;
128 fb1a36c0 2022-01-09 op char hash[128+1];
129 fb1a36c0 2022-01-09 op };
130 fb1a36c0 2022-01-09 op
131 fb1a36c0 2022-01-09 op /* kamid.c */
132 fb1a36c0 2022-01-09 op extern int verbose;
133 fb1a36c0 2022-01-09 op int main_imsg_compose_listener(int, int, uint32_t, const void *, uint16_t);
134 fb1a36c0 2022-01-09 op void merge_config(struct kd_conf *, struct kd_conf *);
135 fb1a36c0 2022-01-09 op
136 fb1a36c0 2022-01-09 op struct kd_conf *config_new_empty(void);
137 fb1a36c0 2022-01-09 op void config_clear(struct kd_conf *);
138 fb1a36c0 2022-01-09 op
139 fb1a36c0 2022-01-09 op /* parse.y */
140 fb1a36c0 2022-01-09 op struct kd_conf *parse_config(const char *);
141 fb1a36c0 2022-01-09 op int cmdline_symset(char *);
142 fb1a36c0 2022-01-09 op
143 fb1a36c0 2022-01-09 op #endif