blob: 1b79d4d6925c0b7bcdc08ffaaa5cb82865bda03a [file] [log] [blame]
Damien Millerd4a8b7e1999-10-27 13:42:43 +10001/*
Damien Miller95def091999-11-25 00:26:21 +11002 * Author: Tatu Ylonen <ylo@cs.hut.fi>
Damien Miller95def091999-11-25 00:26:21 +11003 * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland
4 * All rights reserved
Damien Miller4af51302000-04-16 11:18:38 +10005 *
Damien Millere4340be2000-09-16 13:29:08 +11006 * As far as I am concerned, the code I have written for this software
7 * can be used freely for any purpose. Any derived versions of this
8 * software must be clearly marked as such, and if the derived work is
9 * incompatible with the protocol description in the RFC file, it must be
10 * called by a name other than "ssh" or "Secure Shell".
Damien Miller874d77b2000-10-14 16:23:11 +110011 *
12 * Copyright (c) 2000 Markus Friedl. All rights reserved.
13 *
14 * Redistribution and use in source and binary forms, with or without
15 * modification, are permitted provided that the following conditions
16 * are met:
17 * 1. Redistributions of source code must retain the above copyright
18 * notice, this list of conditions and the following disclaimer.
19 * 2. Redistributions in binary form must reproduce the above copyright
20 * notice, this list of conditions and the following disclaimer in the
21 * documentation and/or other materials provided with the distribution.
22 *
23 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
24 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
25 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
26 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
27 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
28 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
29 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
30 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
31 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
32 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
Damien Miller95def091999-11-25 00:26:21 +110033 */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100034
Ben Lindstrom4cc240d2001-07-04 04:46:56 +000035/* RCSID("$OpenBSD: cipher.h,v 1.28 2001/06/26 17:27:23 markus Exp $"); */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100036
37#ifndef CIPHER_H
38#define CIPHER_H
39
40#include <openssl/des.h>
41#include <openssl/blowfish.h>
Damien Millerb38eff82000-04-01 11:09:21 +100042#include <openssl/rc4.h>
43#include <openssl/cast.h>
Damien Miller874d77b2000-10-14 16:23:11 +110044#include "rijndael.h"
45/*
46 * Cipher types for SSH-1. New types can be added, but old types should not
47 * be removed for compatibility. The maximum allowed value is 31.
48 */
49#define SSH_CIPHER_SSH2 -3
Damien Miller30c3d422000-05-09 11:02:59 +100050#define SSH_CIPHER_ILLEGAL -2 /* No valid cipher selected. */
Damien Miller95def091999-11-25 00:26:21 +110051#define SSH_CIPHER_NOT_SET -1 /* None selected (invalid number). */
52#define SSH_CIPHER_NONE 0 /* no encryption */
53#define SSH_CIPHER_IDEA 1 /* IDEA CFB */
54#define SSH_CIPHER_DES 2 /* DES CBC */
55#define SSH_CIPHER_3DES 3 /* 3DES CBC */
56#define SSH_CIPHER_BROKEN_TSS 4 /* TRI's Simple Stream encryption CBC */
57#define SSH_CIPHER_BROKEN_RC4 5 /* Alleged RC4 */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100058#define SSH_CIPHER_BLOWFISH 6
Damien Millerb38eff82000-04-01 11:09:21 +100059#define SSH_CIPHER_RESERVED 7
Damien Miller874d77b2000-10-14 16:23:11 +110060#define SSH_CIPHER_MAX 31
Damien Millerb38eff82000-04-01 11:09:21 +100061
Damien Miller874d77b2000-10-14 16:23:11 +110062typedef struct Cipher Cipher;
63typedef struct CipherContext CipherContext;
Damien Millerd4a8b7e1999-10-27 13:42:43 +100064
Damien Miller874d77b2000-10-14 16:23:11 +110065struct CipherContext {
Damien Miller95def091999-11-25 00:26:21 +110066 union {
67 struct {
Damien Miller874d77b2000-10-14 16:23:11 +110068 des_key_schedule key;
69 des_cblock iv;
70 } des;
71 struct {
Damien Miller95def091999-11-25 00:26:21 +110072 des_key_schedule key1;
73 des_key_schedule key2;
Damien Miller95def091999-11-25 00:26:21 +110074 des_key_schedule key3;
Ben Lindstroma3828d42001-06-05 20:50:16 +000075 des_cblock iv1;
76 des_cblock iv2;
Damien Miller95def091999-11-25 00:26:21 +110077 des_cblock iv3;
78 } des3;
79 struct {
80 struct bf_key_st key;
Damien Miller874d77b2000-10-14 16:23:11 +110081 u_char iv[8];
Damien Miller95def091999-11-25 00:26:21 +110082 } bf;
Damien Millerb38eff82000-04-01 11:09:21 +100083 struct {
84 CAST_KEY key;
Damien Miller874d77b2000-10-14 16:23:11 +110085 u_char iv[8];
Damien Millerb38eff82000-04-01 11:09:21 +100086 } cast;
Damien Miller874d77b2000-10-14 16:23:11 +110087 struct {
Ben Lindstromfa1b3d02000-12-10 01:55:37 +000088 u4byte iv[4];
89 rijndael_ctx enc;
90 rijndael_ctx dec;
Damien Miller874d77b2000-10-14 16:23:11 +110091 } rijndael;
Damien Millerb38eff82000-04-01 11:09:21 +100092 RC4_KEY rc4;
Damien Miller95def091999-11-25 00:26:21 +110093 } u;
Damien Miller874d77b2000-10-14 16:23:11 +110094 Cipher *cipher;
95};
96struct Cipher {
97 char *name;
98 int number; /* for ssh1 only */
99 u_int block_size;
100 u_int key_len;
101 void (*setkey)(CipherContext *, const u_char *, u_int);
102 void (*setiv)(CipherContext *, const u_char *, u_int);
103 void (*encrypt)(CipherContext *, u_char *, const u_char *, u_int);
104 void (*decrypt)(CipherContext *, u_char *, const u_char *, u_int);
105};
Damien Millerd4a8b7e1999-10-27 13:42:43 +1000106
Ben Lindstrom4cc240d2001-07-04 04:46:56 +0000107u_int cipher_mask_ssh1(int);
108Cipher *cipher_by_name(const char *);
109Cipher *cipher_by_number(int);
110int cipher_number(const char *);
111char *cipher_name(int);
112int ciphers_valid(const char *);
113void cipher_init(CipherContext *, Cipher *, const u_char *, u_int,
Ben Lindstrom16ae3d02001-07-04 04:02:36 +0000114 const u_char *, u_int);
Ben Lindstrom4cc240d2001-07-04 04:46:56 +0000115void cipher_encrypt(CipherContext *, u_char *, const u_char *, u_int);
116void cipher_decrypt(CipherContext *, u_char *, const u_char *, u_int);
117void cipher_set_key_string(CipherContext *, Cipher *, const char *);
Damien Millerd4a8b7e1999-10-27 13:42:43 +1000118
Damien Miller95def091999-11-25 00:26:21 +1100119#endif /* CIPHER_H */