1 /*	$NetBSD: kdc_locl.h,v 1.2 2017/01/28 21:31:44 christos Exp $	*/
2 
3 /*
4  * Copyright (c) 1997-2005 Kungliga Tekniska Högskolan
5  * (Royal Institute of Technology, Stockholm, Sweden).
6  * All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  *
12  * 1. Redistributions of source code must retain the above copyright
13  *    notice, this list of conditions and the following disclaimer.
14  *
15  * 2. Redistributions in binary form must reproduce the above copyright
16  *    notice, this list of conditions and the following disclaimer in the
17  *    documentation and/or other materials provided with the distribution.
18  *
19  * 3. Neither the name of the Institute nor the names of its contributors
20  *    may be used to endorse or promote products derived from this software
21  *    without specific prior written permission.
22  *
23  * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
24  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26  * ARE DISCLAIMED.  IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
27  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33  * SUCH DAMAGE.
34  */
35 
36 /*
37  * Id
38  */
39 
40 #ifndef __KDC_LOCL_H__
41 #define __KDC_LOCL_H__
42 
43 #include "headers.h"
44 
45 typedef struct pk_client_params pk_client_params;
46 struct DigestREQ;
47 struct Kx509Request;
48 typedef struct kdc_request_desc *kdc_request_t;
49 
50 #include <kdc-private.h>
51 
52 #define FAST_EXPIRATION_TIME (3 * 60)
53 
54 struct kdc_request_desc {
55     krb5_context context;
56     krb5_kdc_configuration *config;
57 
58     /* */
59 
60     krb5_data request;
61     KDC_REQ req;
62     METHOD_DATA *padata;
63 
64     /* out */
65 
66     METHOD_DATA outpadata;
67 
68     KDC_REP rep;
69     EncTicketPart et;
70     EncKDCRepPart ek;
71 
72     /* PA methods can affect both the reply key and the session key (pkinit) */
73     krb5_enctype sessionetype;
74     krb5_keyblock reply_key;
75     krb5_keyblock session_key;
76 
77     const char *e_text;
78 
79     /* state */
80     krb5_principal client_princ;
81     char *client_name;
82     hdb_entry_ex *client;
83     HDB *clientdb;
84 
85     krb5_principal server_princ;
86     char *server_name;
87     hdb_entry_ex *server;
88 
89     krb5_crypto armor_crypto;
90 
91     KDCFastState fast;
92 };
93 
94 
95 extern sig_atomic_t exit_flag;
96 extern size_t max_request_udp;
97 extern size_t max_request_tcp;
98 extern const char *request_log;
99 extern const char *port_str;
100 extern krb5_addresses explicit_addresses;
101 
102 extern int enable_http;
103 
104 extern int detach_from_console;
105 extern int daemon_child;
106 extern int do_bonjour;
107 
108 extern int testing_flag;
109 
110 extern const struct units _kdc_digestunits[];
111 
112 #define KDC_LOG_FILE		"kdc.log"
113 
114 extern struct timeval _kdc_now;
115 #define kdc_time (_kdc_now.tv_sec)
116 
117 extern char *runas_string;
118 extern char *chroot_string;
119 
120 void
121 start_kdc(krb5_context context, krb5_kdc_configuration *config, const char *argv0);
122 
123 krb5_kdc_configuration *
124 configure(krb5_context context, int argc, char **argv, int *optidx);
125 
126 #ifdef __APPLE__
127 void bonjour_announce(krb5_context, krb5_kdc_configuration *);
128 #endif
129 
130 #endif /* __KDC_LOCL_H__ */
131