Blame


1 fb1a36c0 2022-01-09 op /*
2 fb1a36c0 2022-01-09 op * Copyright (c) 2021 Omar Polo <op@omarpolo.com>
3 fb1a36c0 2022-01-09 op *
4 fb1a36c0 2022-01-09 op * Permission to use, copy, modify, and distribute this software for any
5 fb1a36c0 2022-01-09 op * purpose with or without fee is hereby granted, provided that the above
6 fb1a36c0 2022-01-09 op * copyright notice and this permission notice appear in all copies.
7 fb1a36c0 2022-01-09 op *
8 fb1a36c0 2022-01-09 op * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 fb1a36c0 2022-01-09 op * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 fb1a36c0 2022-01-09 op * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 fb1a36c0 2022-01-09 op * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 fb1a36c0 2022-01-09 op * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 fb1a36c0 2022-01-09 op * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 fb1a36c0 2022-01-09 op * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
15 fb1a36c0 2022-01-09 op */
16 fb1a36c0 2022-01-09 op
17 fb1a36c0 2022-01-09 op #ifndef KAMID_H
18 fb1a36c0 2022-01-09 op #define KAMID_H
19 fb1a36c0 2022-01-09 op
20 fb1a36c0 2022-01-09 op #include <limits.h>
21 fb1a36c0 2022-01-09 op #include <stdint.h>
22 fb1a36c0 2022-01-09 op #include <tls.h>
23 fb1a36c0 2022-01-09 op
24 fb1a36c0 2022-01-09 op /* TODO: make these customizable */
25 fb1a36c0 2022-01-09 op #define KD_CONF_FILE "/etc/kamid.conf"
26 fb1a36c0 2022-01-09 op #define KD_USER "_kamid"
27 fb1a36c0 2022-01-09 op #define KD_SOCKET "/var/run/kamid.sock"
28 fb1a36c0 2022-01-09 op
29 fb1a36c0 2022-01-09 op #define IMSG_DATA_SIZE(imsg) ((imsg).hdr.len - IMSG_HEADER_SIZE)
30 fb1a36c0 2022-01-09 op
31 fb1a36c0 2022-01-09 op enum imsg_type {
32 fb1a36c0 2022-01-09 op IMSG_NONE,
33 fb1a36c0 2022-01-09 op IMSG_CTL_LOG_VERBOSE,
34 fb1a36c0 2022-01-09 op IMSG_CTL_RELOAD,
35 fb1a36c0 2022-01-09 op IMSG_CONTROLFD,
36 fb1a36c0 2022-01-09 op IMSG_STARTUP,
37 fb1a36c0 2022-01-09 op IMSG_RECONF_CONF,
38 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI,
39 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI_CERT,
40 fb1a36c0 2022-01-09 op IMSG_RECONF_PKI_KEY,
41 fb1a36c0 2022-01-09 op IMSG_RECONF_LISTEN,
42 fb1a36c0 2022-01-09 op IMSG_RECONF_END,
43 1e84c7b7 2022-01-10 op IMSG_AUTH, /* kd_auth_proc */
44 1e84c7b7 2022-01-10 op IMSG_AUTH_TLS, /* kd_auth_req */
45 fb1a36c0 2022-01-09 op IMSG_CONN_GONE,
46 fb1a36c0 2022-01-09 op IMSG_BUF,
47 fb1a36c0 2022-01-09 op IMSG_MSIZE,
48 fb1a36c0 2022-01-09 op IMSG_CLOSE,
49 fb1a36c0 2022-01-09 op };
50 fb1a36c0 2022-01-09 op
51 fb1a36c0 2022-01-09 op struct kd_options_conf {
52 fb1a36c0 2022-01-09 op /* ... */
53 fb1a36c0 2022-01-09 op };
54 fb1a36c0 2022-01-09 op
55 35c6cd0e 2022-01-10 op struct table;
56 fb1a36c0 2022-01-09 op
57 fb1a36c0 2022-01-09 op #define L_NONE 0x0
58 fb1a36c0 2022-01-09 op #define L_TLS 0x1
59 fb1a36c0 2022-01-09 op struct kd_listen_conf {
60 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_listen_conf) entry;
61 fb1a36c0 2022-01-09 op uint32_t id;
62 fb1a36c0 2022-01-09 op uint32_t flags;
63 fb1a36c0 2022-01-09 op int fd;
64 fb1a36c0 2022-01-09 op char iface[LINE_MAX];
65 fb1a36c0 2022-01-09 op uint16_t port;
66 fb1a36c0 2022-01-09 op
67 fb1a36c0 2022-01-09 op /* certificate hash => (virtual) user */
68 fb1a36c0 2022-01-09 op struct table *auth_table;
69 fb1a36c0 2022-01-09 op
70 fb1a36c0 2022-01-09 op /* virtual user => local user */
71 fb1a36c0 2022-01-09 op struct table *virtual_table;
72 fb1a36c0 2022-01-09 op
73 fb1a36c0 2022-01-09 op /* (virtual) user => export directory */
74 fb1a36c0 2022-01-09 op struct table *userdata_table;
75 fb1a36c0 2022-01-09 op
76 fb1a36c0 2022-01-09 op char pki[LINE_MAX];
77 fb1a36c0 2022-01-09 op struct event ev;
78 fb1a36c0 2022-01-09 op struct tls *ctx;
79 fb1a36c0 2022-01-09 op };
80 fb1a36c0 2022-01-09 op
81 fb1a36c0 2022-01-09 op struct kd_pki_conf {
82 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_pki_conf) entry;
83 fb1a36c0 2022-01-09 op char name[LINE_MAX];
84 fb1a36c0 2022-01-09 op uint8_t *cert;
85 fb1a36c0 2022-01-09 op size_t certlen;
86 fb1a36c0 2022-01-09 op uint8_t *key;
87 fb1a36c0 2022-01-09 op size_t keylen;
88 fb1a36c0 2022-01-09 op struct tls_config *tlsconf;
89 fb1a36c0 2022-01-09 op };
90 fb1a36c0 2022-01-09 op
91 fb1a36c0 2022-01-09 op struct kd_tables_conf {
92 fb1a36c0 2022-01-09 op STAILQ_ENTRY(kd_tables_conf) entry;
93 fb1a36c0 2022-01-09 op struct table *table;
94 fb1a36c0 2022-01-09 op };
95 fb1a36c0 2022-01-09 op
96 fb1a36c0 2022-01-09 op struct kd_conf {
97 fb1a36c0 2022-01-09 op struct kd_options_conf kd_options;
98 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_pki_conf_head, kd_pki_conf) pki_head;
99 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_tables_conf_head, kd_tables_conf) table_head;
100 fb1a36c0 2022-01-09 op STAILQ_HEAD(kd_listen_conf_head, kd_listen_conf) listen_head;
101 fb1a36c0 2022-01-09 op };
102 fb1a36c0 2022-01-09 op
103 fb1a36c0 2022-01-09 op struct kd_auth_req {
104 fb1a36c0 2022-01-09 op uint32_t listen_id;
105 fb1a36c0 2022-01-09 op char hash[128+1];
106 fb1a36c0 2022-01-09 op };
107 fb1a36c0 2022-01-09 op
108 1e84c7b7 2022-01-10 op struct kd_auth_proc {
109 1e84c7b7 2022-01-10 op char uname[LOGIN_NAME_MAX];
110 1e84c7b7 2022-01-10 op char dir[PATH_MAX];
111 1e84c7b7 2022-01-10 op };
112 1e84c7b7 2022-01-10 op
113 fb1a36c0 2022-01-09 op /* kamid.c */
114 fb1a36c0 2022-01-09 op extern int verbose;
115 fb1a36c0 2022-01-09 op int main_imsg_compose_listener(int, int, uint32_t, const void *, uint16_t);
116 fb1a36c0 2022-01-09 op void merge_config(struct kd_conf *, struct kd_conf *);
117 fb1a36c0 2022-01-09 op
118 fb1a36c0 2022-01-09 op struct kd_conf *config_new_empty(void);
119 fb1a36c0 2022-01-09 op void config_clear(struct kd_conf *);
120 fb1a36c0 2022-01-09 op
121 fb1a36c0 2022-01-09 op /* parse.y */
122 fb1a36c0 2022-01-09 op struct kd_conf *parse_config(const char *);
123 fb1a36c0 2022-01-09 op int cmdline_symset(char *);
124 fb1a36c0 2022-01-09 op
125 fb1a36c0 2022-01-09 op #endif