00001 
00002 
00003 
00004 
00005 
00006 #ifndef _TOR_TORTLS_H
00007 #define _TOR_TORTLS_H
00008 
00014 #include "crypto.h"
00015 #include "compat.h"
00016 
00017 
00018 typedef struct tor_tls_t tor_tls_t;
00019 
00020 
00021 #define _MIN_TOR_TLS_ERROR_VAL     -9
00022 #define TOR_TLS_ERROR_MISC         -9
00023 
00024 #define TOR_TLS_ERROR_IO           -8
00025 #define TOR_TLS_ERROR_CONNREFUSED  -7
00026 #define TOR_TLS_ERROR_CONNRESET    -6
00027 #define TOR_TLS_ERROR_NO_ROUTE     -5
00028 #define TOR_TLS_ERROR_TIMEOUT      -4
00029 #define TOR_TLS_CLOSE              -3
00030 #define TOR_TLS_WANTREAD           -2
00031 #define TOR_TLS_WANTWRITE          -1
00032 #define TOR_TLS_DONE                0
00033 
00036 #define CASE_TOR_TLS_ERROR_ANY_NONIO            \
00037   case TOR_TLS_ERROR_MISC:                      \
00038   case TOR_TLS_ERROR_CONNREFUSED:               \
00039   case TOR_TLS_ERROR_CONNRESET:                 \
00040   case TOR_TLS_ERROR_NO_ROUTE:                  \
00041   case TOR_TLS_ERROR_TIMEOUT
00042 
00045 #define CASE_TOR_TLS_ERROR_ANY                  \
00046   CASE_TOR_TLS_ERROR_ANY_NONIO:                 \
00047   case TOR_TLS_ERROR_IO
00048 
00049 #define TOR_TLS_IS_ERROR(rv) ((rv) < TOR_TLS_CLOSE)
00050 const char *tor_tls_err_to_string(int err);
00051 
00052 void tor_tls_free_all(void);
00053 int tor_tls_context_new(crypto_pk_env_t *rsa, unsigned int key_lifetime);
00054 tor_tls_t *tor_tls_new(int sock, int is_server);
00055 void tor_tls_set_logged_address(tor_tls_t *tls, const char *address);
00056 void tor_tls_set_renegotiate_callback(tor_tls_t *tls,
00057                                       void (*cb)(tor_tls_t *, void *arg),
00058                                       void *arg);
00059 int tor_tls_is_server(tor_tls_t *tls);
00060 void tor_tls_free(tor_tls_t *tls);
00061 int tor_tls_peer_has_cert(tor_tls_t *tls);
00062 int tor_tls_verify(int severity, tor_tls_t *tls, crypto_pk_env_t **identity);
00063 int tor_tls_check_lifetime(tor_tls_t *tls, int tolerance);
00064 int tor_tls_read(tor_tls_t *tls, char *cp, size_t len);
00065 int tor_tls_write(tor_tls_t *tls, const char *cp, size_t n);
00066 int tor_tls_handshake(tor_tls_t *tls);
00067 int tor_tls_renegotiate(tor_tls_t *tls);
00068 void tor_tls_block_renegotiation(tor_tls_t *tls);
00069 int tor_tls_shutdown(tor_tls_t *tls);
00070 int tor_tls_get_pending_bytes(tor_tls_t *tls);
00071 size_t tor_tls_get_forced_write_size(tor_tls_t *tls);
00072 
00073 void tor_tls_get_n_raw_bytes(tor_tls_t *tls,
00074                              size_t *n_read, size_t *n_written);
00075 
00076 void tor_tls_get_buffer_sizes(tor_tls_t *tls,
00077                               size_t *rbuf_capacity, size_t *rbuf_bytes,
00078                               size_t *wbuf_capacity, size_t *wbuf_bytes);
00079 
00080 int tor_tls_used_v1_handshake(tor_tls_t *tls);
00081 
00082 
00083 
00084 #define check_no_tls_errors() _check_no_tls_errors(__FILE__,__LINE__)
00085 
00086 void _check_no_tls_errors(const char *fname, int line);
00087 
00088 #endif
00089