2011-07-04 01:29:09 +04:00
|
|
|
/**
|
|
|
|
* FreeRDP: A Remote Desktop Protocol Client
|
|
|
|
* Transport Layer Security
|
|
|
|
*
|
|
|
|
* Copyright 2011 Marc-Andre Moreau <marcandre.moreau@gmail.com>
|
|
|
|
*
|
|
|
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
* you may not use this file except in compliance with the License.
|
|
|
|
* You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#ifndef __TLS_H
|
|
|
|
#define __TLS_H
|
|
|
|
|
2011-08-16 22:41:12 +04:00
|
|
|
#include "crypto.h"
|
2012-02-03 03:20:02 +04:00
|
|
|
#include "certificate.h"
|
2011-08-16 22:41:12 +04:00
|
|
|
|
2011-07-04 01:29:09 +04:00
|
|
|
#include <openssl/ssl.h>
|
|
|
|
#include <openssl/err.h>
|
|
|
|
|
2011-07-07 21:37:48 +04:00
|
|
|
#include <freerdp/types.h>
|
2011-07-04 01:29:09 +04:00
|
|
|
#include <freerdp/utils/stream.h>
|
|
|
|
|
|
|
|
typedef struct rdp_tls rdpTls;
|
|
|
|
|
|
|
|
struct rdp_tls
|
|
|
|
{
|
2011-07-07 22:11:12 +04:00
|
|
|
SSL* ssl;
|
2011-07-04 01:29:09 +04:00
|
|
|
int sockfd;
|
2011-07-07 22:11:12 +04:00
|
|
|
SSL_CTX* ctx;
|
2012-02-03 03:20:02 +04:00
|
|
|
rdpSettings* settings;
|
|
|
|
rdpCertificateStore* certificate_store;
|
2011-07-04 01:29:09 +04:00
|
|
|
};
|
|
|
|
|
2011-07-07 22:11:12 +04:00
|
|
|
boolean tls_connect(rdpTls* tls);
|
2011-08-19 09:35:29 +04:00
|
|
|
boolean tls_accept(rdpTls* tls, const char* cert_file, const char* privatekey_file);
|
2011-07-07 22:11:12 +04:00
|
|
|
boolean tls_disconnect(rdpTls* tls);
|
2012-02-03 03:20:02 +04:00
|
|
|
|
2011-07-10 23:34:43 +04:00
|
|
|
int tls_read(rdpTls* tls, uint8* data, int length);
|
|
|
|
int tls_write(rdpTls* tls, uint8* data, int length);
|
2012-02-03 03:20:02 +04:00
|
|
|
|
2011-07-07 22:11:12 +04:00
|
|
|
CryptoCert tls_get_certificate(rdpTls* tls);
|
2012-02-05 00:04:03 +04:00
|
|
|
boolean tls_verify_certificate(rdpTls* tls, CryptoCert cert, char* hostname);
|
2012-02-04 11:21:39 +04:00
|
|
|
void tls_print_certificate_error(char* hostname, char* fingerprint);
|
|
|
|
void tls_print_certificate_name_mismatch_error(char* hostname, char* common_name, char** alt_names, int alt_names_count);
|
2012-02-03 03:20:02 +04:00
|
|
|
|
2011-07-07 22:11:12 +04:00
|
|
|
boolean tls_print_error(char* func, SSL* connection, int value);
|
2012-02-03 03:20:02 +04:00
|
|
|
|
|
|
|
rdpTls* tls_new(rdpSettings* settings);
|
2011-07-07 22:11:12 +04:00
|
|
|
void tls_free(rdpTls* tls);
|
2011-07-04 01:29:09 +04:00
|
|
|
|
|
|
|
#endif /* __TLS_H */
|