blob: 97bc8891fbc1e91a4a5dde0b9d38691134d55fc3 [file] [log] [blame]
Damien Millerd4a8b7e1999-10-27 13:42:43 +10001/*
Damien Miller95def091999-11-25 00:26:21 +11002 * Author: Tatu Ylonen <ylo@cs.hut.fi>
Damien Miller95def091999-11-25 00:26:21 +11003 * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland
4 * All rights reserved
Damien Miller4af51302000-04-16 11:18:38 +10005 *
Damien Millere4340be2000-09-16 13:29:08 +11006 * As far as I am concerned, the code I have written for this software
7 * can be used freely for any purpose. Any derived versions of this
8 * software must be clearly marked as such, and if the derived work is
9 * incompatible with the protocol description in the RFC file, it must be
10 * called by a name other than "ssh" or "Secure Shell".
Damien Miller874d77b2000-10-14 16:23:11 +110011 *
12 * Copyright (c) 2000 Markus Friedl. All rights reserved.
13 *
14 * Redistribution and use in source and binary forms, with or without
15 * modification, are permitted provided that the following conditions
16 * are met:
17 * 1. Redistributions of source code must retain the above copyright
18 * notice, this list of conditions and the following disclaimer.
19 * 2. Redistributions in binary form must reproduce the above copyright
20 * notice, this list of conditions and the following disclaimer in the
21 * documentation and/or other materials provided with the distribution.
22 *
23 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
24 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
25 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
26 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
27 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
28 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
29 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
30 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
31 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
32 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
Damien Miller95def091999-11-25 00:26:21 +110033 */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100034
Damien Miller874d77b2000-10-14 16:23:11 +110035/* RCSID("$OpenBSD: cipher.h,v 1.22 2000/10/13 18:59:14 markus Exp $"); */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100036
37#ifndef CIPHER_H
38#define CIPHER_H
39
40#include <openssl/des.h>
41#include <openssl/blowfish.h>
Damien Millerb38eff82000-04-01 11:09:21 +100042#include <openssl/rc4.h>
43#include <openssl/cast.h>
Damien Miller874d77b2000-10-14 16:23:11 +110044#include "rijndael.h"
45/*
46 * Cipher types for SSH-1. New types can be added, but old types should not
47 * be removed for compatibility. The maximum allowed value is 31.
48 */
49#define SSH_CIPHER_SSH2 -3
Damien Miller30c3d422000-05-09 11:02:59 +100050#define SSH_CIPHER_ILLEGAL -2 /* No valid cipher selected. */
Damien Miller95def091999-11-25 00:26:21 +110051#define SSH_CIPHER_NOT_SET -1 /* None selected (invalid number). */
52#define SSH_CIPHER_NONE 0 /* no encryption */
53#define SSH_CIPHER_IDEA 1 /* IDEA CFB */
54#define SSH_CIPHER_DES 2 /* DES CBC */
55#define SSH_CIPHER_3DES 3 /* 3DES CBC */
56#define SSH_CIPHER_BROKEN_TSS 4 /* TRI's Simple Stream encryption CBC */
57#define SSH_CIPHER_BROKEN_RC4 5 /* Alleged RC4 */
Damien Millerd4a8b7e1999-10-27 13:42:43 +100058#define SSH_CIPHER_BLOWFISH 6
Damien Millerb38eff82000-04-01 11:09:21 +100059#define SSH_CIPHER_RESERVED 7
Damien Miller874d77b2000-10-14 16:23:11 +110060#define SSH_CIPHER_MAX 31
Damien Millerb38eff82000-04-01 11:09:21 +100061
Damien Miller874d77b2000-10-14 16:23:11 +110062typedef struct Cipher Cipher;
63typedef struct CipherContext CipherContext;
Damien Millerd4a8b7e1999-10-27 13:42:43 +100064
Damien Miller874d77b2000-10-14 16:23:11 +110065struct CipherContext {
Damien Miller95def091999-11-25 00:26:21 +110066 union {
67 struct {
Damien Miller874d77b2000-10-14 16:23:11 +110068 des_key_schedule key;
69 des_cblock iv;
70 } des;
71 struct {
Damien Miller95def091999-11-25 00:26:21 +110072 des_key_schedule key1;
73 des_key_schedule key2;
74 des_cblock iv2;
75 des_key_schedule key3;
76 des_cblock iv3;
77 } des3;
78 struct {
79 struct bf_key_st key;
Damien Miller874d77b2000-10-14 16:23:11 +110080 u_char iv[8];
Damien Miller95def091999-11-25 00:26:21 +110081 } bf;
Damien Millerb38eff82000-04-01 11:09:21 +100082 struct {
83 CAST_KEY key;
Damien Miller874d77b2000-10-14 16:23:11 +110084 u_char iv[8];
Damien Millerb38eff82000-04-01 11:09:21 +100085 } cast;
Damien Miller874d77b2000-10-14 16:23:11 +110086 struct {
87 u4byte iv[4];
88 rijndael_ctx enc;
89 rijndael_ctx dec;
90 } rijndael;
Damien Millerb38eff82000-04-01 11:09:21 +100091 RC4_KEY rc4;
Damien Miller95def091999-11-25 00:26:21 +110092 } u;
Damien Miller874d77b2000-10-14 16:23:11 +110093 Cipher *cipher;
94};
95struct Cipher {
96 char *name;
97 int number; /* for ssh1 only */
98 u_int block_size;
99 u_int key_len;
100 void (*setkey)(CipherContext *, const u_char *, u_int);
101 void (*setiv)(CipherContext *, const u_char *, u_int);
102 void (*encrypt)(CipherContext *, u_char *, const u_char *, u_int);
103 void (*decrypt)(CipherContext *, u_char *, const u_char *, u_int);
104};
Damien Millerd4a8b7e1999-10-27 13:42:43 +1000105
Damien Miller874d77b2000-10-14 16:23:11 +1100106unsigned int cipher_mask_ssh1(int client);
107Cipher *cipher_by_name(const char *name);
108Cipher *cipher_by_number(int id);
109int cipher_number(const char *name);
110char *cipher_name(int id);
111int ciphers_valid(const char *names);
112void cipher_init(CipherContext *, Cipher *, const u_char *, u_int, const u_char *, u_int);
113void cipher_encrypt(CipherContext *context, u_char *dest, const u_char *src, u_int len);
114void cipher_decrypt(CipherContext *context, u_char *dest, const u_char *src, u_int len);
115void cipher_set_key_string(CipherContext *context, Cipher *cipher, const char *passphrase);
Damien Millerd4a8b7e1999-10-27 13:42:43 +1000116
Damien Miller95def091999-11-25 00:26:21 +1100117#endif /* CIPHER_H */