2000-01-24 19:14:26 +00:00
|
|
|
/*
|
|
|
|
* Copyright (C) 1999, 2000 Internet Software Consortium.
|
2000-08-01 01:33:37 +00:00
|
|
|
*
|
2000-01-24 19:14:26 +00:00
|
|
|
* Permission to use, copy, modify, and distribute this software for any
|
|
|
|
* purpose with or without fee is hereby granted, provided that the above
|
|
|
|
* copyright notice and this permission notice appear in all copies.
|
2000-08-01 01:33:37 +00:00
|
|
|
*
|
2000-07-27 09:55:03 +00:00
|
|
|
* THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM
|
|
|
|
* DISCLAIMS ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL
|
|
|
|
* IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL
|
|
|
|
* INTERNET SOFTWARE CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT,
|
|
|
|
* INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING
|
|
|
|
* FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT,
|
|
|
|
* NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION
|
|
|
|
* WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
|
2000-01-24 19:14:26 +00:00
|
|
|
*/
|
|
|
|
|
2000-10-12 00:39:17 +00:00
|
|
|
/* $Id: tkeyconf.c,v 1.14 2000/10/12 00:39:17 bwelling Exp $ */
|
2000-06-22 22:00:42 +00:00
|
|
|
|
2000-01-24 19:14:26 +00:00
|
|
|
#include <config.h>
|
|
|
|
|
2000-05-08 14:38:29 +00:00
|
|
|
#include <isc/buffer.h>
|
2000-05-08 19:23:32 +00:00
|
|
|
#include <isc/string.h> /* Required for HP/UX (and others?) */
|
2000-05-08 14:38:29 +00:00
|
|
|
#include <isc/mem.h>
|
2000-01-24 19:14:26 +00:00
|
|
|
|
2000-10-12 00:39:17 +00:00
|
|
|
#include <dns/fixedname.h>
|
2000-01-24 19:14:26 +00:00
|
|
|
#include <dns/keyvalues.h>
|
|
|
|
#include <dns/name.h>
|
2000-05-08 14:38:29 +00:00
|
|
|
#include <dns/tkey.h>
|
2000-01-24 19:14:26 +00:00
|
|
|
#include <dns/tkeyconf.h>
|
|
|
|
|
|
|
|
#define RETERR(x) do { \
|
|
|
|
result = (x); \
|
|
|
|
if (result != ISC_R_SUCCESS) \
|
|
|
|
goto failure; \
|
|
|
|
} while (0)
|
|
|
|
|
|
|
|
|
|
|
|
isc_result_t
|
2000-06-09 22:33:08 +00:00
|
|
|
dns_tkeyctx_fromconfig(dns_c_ctx_t *cfg, isc_mem_t *mctx, isc_entropy_t *ectx,
|
|
|
|
dns_tkeyctx_t **tctxp)
|
2000-01-24 19:14:26 +00:00
|
|
|
{
|
|
|
|
isc_result_t result;
|
2000-06-09 22:33:08 +00:00
|
|
|
dns_tkeyctx_t *tctx = NULL;
|
2000-01-24 19:14:26 +00:00
|
|
|
char *s;
|
2000-06-05 09:17:14 +00:00
|
|
|
isc_uint32_t n;
|
2000-10-12 00:39:17 +00:00
|
|
|
dns_fixedname_t fname;
|
|
|
|
dns_name_t *name;
|
|
|
|
isc_buffer_t b;
|
2000-01-24 19:14:26 +00:00
|
|
|
|
2000-06-09 22:33:08 +00:00
|
|
|
result = dns_tkeyctx_create(mctx, ectx, &tctx);
|
2000-01-24 19:14:26 +00:00
|
|
|
if (result != ISC_R_SUCCESS)
|
|
|
|
return (result);
|
|
|
|
|
|
|
|
s = NULL;
|
|
|
|
result = dns_c_ctx_gettkeydhkey(cfg, &s, &n);
|
2000-10-12 00:39:17 +00:00
|
|
|
if (result == ISC_R_SUCCESS) {
|
|
|
|
isc_buffer_init(&b, s, strlen(s));
|
|
|
|
isc_buffer_add(&b, strlen(s));
|
|
|
|
dns_fixedname_init(&fname);
|
|
|
|
name = dns_fixedname_name(&fname);
|
|
|
|
RETERR(dns_name_fromtext(name, &b, dns_rootname,
|
|
|
|
ISC_FALSE, NULL));
|
|
|
|
RETERR(dst_key_fromfile(name, n, DNS_KEYALG_DH,
|
|
|
|
DST_TYPE_PUBLIC|DST_TYPE_PRIVATE,
|
|
|
|
NULL, mctx, &tctx->dhkey));
|
|
|
|
} else if (result != ISC_R_NOTFOUND)
|
|
|
|
goto failure;
|
|
|
|
|
2000-01-24 19:14:26 +00:00
|
|
|
s = NULL;
|
2000-10-12 00:39:17 +00:00
|
|
|
result = dns_c_ctx_gettkeydomain(cfg, &s);
|
|
|
|
if (result == ISC_R_SUCCESS) {
|
|
|
|
isc_buffer_init(&b, s, strlen(s));
|
|
|
|
isc_buffer_add(&b, strlen(s));
|
|
|
|
dns_fixedname_init(&fname);
|
|
|
|
name = dns_fixedname_name(&fname);
|
|
|
|
RETERR(dns_name_fromtext(name, &b, dns_rootname, ISC_FALSE,
|
|
|
|
NULL));
|
|
|
|
tctx->domain = isc_mem_get(mctx, sizeof(dns_name_t));
|
|
|
|
if (tctx->domain == NULL) {
|
|
|
|
result = ISC_R_NOMEMORY;
|
|
|
|
goto failure;
|
|
|
|
}
|
|
|
|
dns_name_init(tctx->domain, NULL);
|
|
|
|
RETERR(dns_name_dup(name, mctx, tctx->domain));
|
|
|
|
} else if (result != ISC_R_NOTFOUND)
|
|
|
|
goto failure;
|
|
|
|
|
|
|
|
result = dns_c_ctx_gettkeygsscred(cfg, &s);
|
|
|
|
if (result == ISC_R_SUCCESS) {
|
|
|
|
isc_buffer_init(&b, s, strlen(s));
|
|
|
|
isc_buffer_add(&b, strlen(s));
|
|
|
|
dns_fixedname_init(&fname);
|
|
|
|
name = dns_fixedname_name(&fname);
|
|
|
|
RETERR(dns_name_fromtext(name, &b, dns_rootname, ISC_FALSE,
|
|
|
|
NULL));
|
|
|
|
RETERR(dst_gssapi_acquirecred(name, ISC_FALSE,
|
|
|
|
&tctx->gsscred));
|
|
|
|
} else if (result != ISC_R_NOTFOUND)
|
2000-01-24 19:57:33 +00:00
|
|
|
goto failure;
|
2000-01-24 19:14:26 +00:00
|
|
|
|
|
|
|
*tctxp = tctx;
|
|
|
|
return (ISC_R_SUCCESS);
|
|
|
|
|
|
|
|
failure:
|
|
|
|
dns_tkeyctx_destroy(&tctx);
|
|
|
|
return (result);
|
|
|
|
}
|
|
|
|
|