Develop and Download Open Source Software

Browse Subversion Repository

Annotation of /branches/ssh_chacha20poly1305/ttssh2/ttxssh/ssh.h

Parent Directory Parent Directory | Revision Log Revision Log


Revision 2873 - (hide annotations) (download) (as text)
Fri Jun 23 13:57:24 2006 UTC (17 years, 9 months ago) by yutakakn
Original Path: ttssh2/trunk/ttxssh/ssh.h
File MIME type: text/x-chdr
File size: 14458 byte(s)
TTSSH 2.28にて遅延パケット圧縮をサポートした。

1 yutakakn 2728 /*
2     Copyright (c) 1998-2001, Robert O'Callahan
3     All rights reserved.
4    
5     Redistribution and use in source and binary forms, with or without modification,
6     are permitted provided that the following conditions are met:
7    
8     Redistributions of source code must retain the above copyright notice, this list of
9     conditions and the following disclaimer.
10    
11     Redistributions in binary form must reproduce the above copyright notice, this list
12     of conditions and the following disclaimer in the documentation and/or other materials
13     provided with the distribution.
14    
15     The name of Robert O'Callahan may not be used to endorse or promote products derived from
16     this software without specific prior written permission.
17    
18     THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS ``AS IS'' AND
19     ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20     OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL
21     THE REGENTS OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
22     EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
23     SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24     HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
25     OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
26     SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27     */
28    
29     /*
30     This code is copyright (C) 1998-1999 Robert O'Callahan.
31     See LICENSE.TXT for the license.
32     */
33    
34     #ifndef __SSH_H
35     #define __SSH_H
36    
37     #include "zlib.h"
38     #include <openssl/evp.h>
39    
40    
41     // yutaka
42     #define SSH2_USE
43    
44    
45     /* Some of this code has been adapted from Ian Goldberg's Pilot SSH */
46    
47     typedef enum {
48 yutakakn 2833 SSH_MSG_NONE, SSH_MSG_DISCONNECT, SSH_SMSG_PUBLIC_KEY, //2
49     SSH_CMSG_SESSION_KEY, SSH_CMSG_USER, SSH_CMSG_AUTH_RHOSTS, // 5
50 yutakakn 2728 SSH_CMSG_AUTH_RSA, SSH_SMSG_AUTH_RSA_CHALLENGE,
51     SSH_CMSG_AUTH_RSA_RESPONSE, SSH_CMSG_AUTH_PASSWORD,
52 yutakakn 2833 SSH_CMSG_REQUEST_PTY, // 10
53     SSH_CMSG_WINDOW_SIZE, SSH_CMSG_EXEC_SHELL,
54 yutakakn 2728 SSH_CMSG_EXEC_CMD, SSH_SMSG_SUCCESS, SSH_SMSG_FAILURE,
55     SSH_CMSG_STDIN_DATA, SSH_SMSG_STDOUT_DATA, SSH_SMSG_STDERR_DATA,
56     SSH_CMSG_EOF, SSH_SMSG_EXITSTATUS,
57     SSH_MSG_CHANNEL_OPEN_CONFIRMATION, SSH_MSG_CHANNEL_OPEN_FAILURE,
58     SSH_MSG_CHANNEL_DATA, SSH_MSG_CHANNEL_INPUT_EOF,
59     SSH_MSG_CHANNEL_OUTPUT_CLOSED, SSH_MSG_OBSOLETED0,
60     SSH_SMSG_X11_OPEN, SSH_CMSG_PORT_FORWARD_REQUEST, SSH_MSG_PORT_OPEN,
61     SSH_CMSG_AGENT_REQUEST_FORWARDING, SSH_SMSG_AGENT_OPEN,
62     SSH_MSG_IGNORE, SSH_CMSG_EXIT_CONFIRMATION,
63     SSH_CMSG_X11_REQUEST_FORWARDING, SSH_CMSG_AUTH_RHOSTS_RSA,
64     SSH_MSG_DEBUG, SSH_CMSG_REQUEST_COMPRESSION,
65     SSH_CMSG_MAX_PACKET_SIZE, SSH_CMSG_AUTH_TIS,
66     SSH_SMSG_AUTH_TIS_CHALLENGE, SSH_CMSG_AUTH_TIS_RESPONSE,
67     SSH_CMSG_AUTH_KERBEROS, SSH_SMSG_AUTH_KERBEROS_RESPONSE
68     } SSHMessage;
69    
70     typedef enum {
71     SSH_CIPHER_NONE, SSH_CIPHER_IDEA, SSH_CIPHER_DES, SSH_CIPHER_3DES,
72     SSH_CIPHER_TSS, SSH_CIPHER_RC4, SSH_CIPHER_BLOWFISH,
73     // for SSH2
74     SSH_CIPHER_3DES_CBC, SSH_CIPHER_AES128,
75     } SSHCipher;
76    
77     //#define SSH_CIPHER_MAX SSH_CIPHER_BLOWFISH
78     #define SSH_CIPHER_MAX SSH_CIPHER_AES128
79    
80     typedef enum {
81     SSH_AUTH_NONE, SSH_AUTH_RHOSTS, SSH_AUTH_RSA, SSH_AUTH_PASSWORD,
82     SSH_AUTH_RHOSTS_RSA, SSH_AUTH_TIS, SSH_AUTH_KERBEROS,
83     // for SSH2
84     SSH_AUTH_DSA,
85     } SSHAuthMethod;
86    
87     /* we don't support Kerberos at this time */
88     //#define SSH_AUTH_MAX SSH_AUTH_TIS
89     #define SSH_AUTH_MAX SSH_AUTH_DSA
90    
91     typedef enum {
92     SSH_GENERIC_AUTHENTICATION, SSH_TIS_AUTHENTICATION
93     } SSHAuthMode;
94    
95     #define SSH_PROTOFLAG_SCREEN_NUMBER 1
96     #define SSH_PROTOFLAG_HOST_IN_FWD_OPEN 2
97    
98     #define SSH_MAX_SEND_PACKET_SIZE 250000
99    
100    
101     /* SSH2 constants */
102    
103     /* SSH2 messages */
104     #define SSH2_MSG_DISCONNECT 1
105     #define SSH2_MSG_IGNORE 2
106     #define SSH2_MSG_UNIMPLEMENTED 3
107     #define SSH2_MSG_DEBUG 4
108     #define SSH2_MSG_SERVICE_REQUEST 5
109     #define SSH2_MSG_SERVICE_ACCEPT 6
110    
111     #define SSH2_MSG_KEXINIT 20
112     #define SSH2_MSG_NEWKEYS 21
113    
114     #define SSH2_MSG_KEXDH_INIT 30
115     #define SSH2_MSG_KEXDH_REPLY 31
116    
117     #define SSH2_MSG_KEX_DH_GEX_GROUP 31
118     #define SSH2_MSG_KEX_DH_GEX_INIT 32
119     #define SSH2_MSG_KEX_DH_GEX_REPLY 33
120     #define SSH2_MSG_KEX_DH_GEX_REQUEST 34
121    
122     #define SSH2_MSG_USERAUTH_REQUEST 50
123     #define SSH2_MSG_USERAUTH_FAILURE 51
124     #define SSH2_MSG_USERAUTH_SUCCESS 52
125     #define SSH2_MSG_USERAUTH_BANNER 53
126    
127     #define SSH2_MSG_USERAUTH_PK_OK 60
128     #define SSH2_MSG_USERAUTH_PASSWD_CHANGEREQ 60
129 yutakakn 2782 #define SSH2_MSG_USERAUTH_INFO_REQUEST 60
130     #define SSH2_MSG_USERAUTH_INFO_RESPONSE 61
131 yutakakn 2728
132     #define SSH2_MSG_GLOBAL_REQUEST 80
133     #define SSH2_MSG_REQUEST_SUCCESS 81
134     #define SSH2_MSG_REQUEST_FAILURE 82
135     #define SSH2_MSG_CHANNEL_OPEN 90
136     #define SSH2_MSG_CHANNEL_OPEN_CONFIRMATION 91
137     #define SSH2_MSG_CHANNEL_OPEN_FAILURE 92
138     #define SSH2_MSG_CHANNEL_WINDOW_ADJUST 93
139     #define SSH2_MSG_CHANNEL_DATA 94
140     #define SSH2_MSG_CHANNEL_EXTENDED_DATA 95
141     #define SSH2_MSG_CHANNEL_EOF 96
142     #define SSH2_MSG_CHANNEL_CLOSE 97
143     #define SSH2_MSG_CHANNEL_REQUEST 98
144     #define SSH2_MSG_CHANNEL_SUCCESS 99
145     #define SSH2_MSG_CHANNEL_FAILURE 100
146    
147     /* SSH2 miscellaneous constants */
148     #define SSH2_DISCONNECT_HOST_NOT_ALLOWED_TO_CONNECT 1
149     #define SSH2_DISCONNECT_PROTOCOL_ERROR 2
150     #define SSH2_DISCONNECT_KEY_EXCHANGE_FAILED 3
151     #define SSH2_DISCONNECT_HOST_AUTHENTICATION_FAILED 4
152     #define SSH2_DISCONNECT_MAC_ERROR 5
153     #define SSH2_DISCONNECT_COMPRESSION_ERROR 6
154     #define SSH2_DISCONNECT_SERVICE_NOT_AVAILABLE 7
155     #define SSH2_DISCONNECT_PROTOCOL_VERSION_NOT_SUPPORTED 8
156     #define SSH2_DISCONNECT_HOST_KEY_NOT_VERIFIABLE 9
157     #define SSH2_DISCONNECT_CONNECTION_LOST 10
158     #define SSH2_DISCONNECT_BY_APPLICATION 11
159    
160     #define SSH2_OPEN_ADMINISTRATIVELY_PROHIBITED 1
161     #define SSH2_OPEN_CONNECT_FAILED 2
162     #define SSH2_OPEN_UNKNOWN_CHANNEL_TYPE 3
163     #define SSH2_OPEN_RESOURCE_SHORTAGE 4
164    
165     // �L�[�����A���S���Y��
166     #define KEX_DH1 "diffie-hellman-group1-sha1"
167     #define KEX_DH14 "diffie-hellman-group14-sha1"
168     #define KEX_DHGEX "diffie-hellman-group-exchange-sha1"
169    
170 yutakakn 2873 // support of "Compression delayed" (2006.6.23 maya)
171     #define COMP_UNKNOWN -1
172     #define COMP_NONE 0
173     #define COMP_ZLIB 1
174     #define COMP_DELAYED 2
175    
176 yutakakn 2728 enum kex_exchange {
177     KEX_DH_GRP1_SHA1,
178     KEX_DH_GRP14_SHA1,
179     KEX_DH_GEX_SHA1,
180     KEX_MAX
181     };
182    
183     enum hostkey_type {
184     KEY_RSA1,
185     KEY_RSA,
186     KEY_DSA,
187     KEY_UNSPEC,
188     };
189    
190 yutakakn 2757 // ���L���C���f�b�N�X�� ssh2_macs[] ���������������B
191     enum hmac_type {
192     HMAC_SHA1,
193     HMAC_MD5,
194     HMAC_UNKNOWN
195     };
196    
197 yutakakn 2728 #define KEX_DEFAULT_KEX "diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1"
198    
199     #define KEX_DEFAULT_PK_ALG "ssh-rsa,ssh-dss"
200     #define KEX_DEFAULT_ENCRYPT \
201     "aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour," \
202     "aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se," \
203     "aes128-ctr,aes192-ctr,aes256-ctr"
204     #define KEX_DEFAULT_MAC \
205     "hmac-md5,hmac-sha1,hmac-ripemd160," \
206     "hmac-ripemd160@openssh.com," \
207     "hmac-sha1-96,hmac-md5-96"
208 yutakakn 2873 // support of "Compression delayed" (2006.6.23 maya)
209     #define KEX_DEFAULT_COMP "none,zlib@openssh.com,zlib"
210 yutakakn 2728 #define KEX_DEFAULT_LANG ""
211    
212     /* Minimum modulus size (n) for RSA keys. */
213     #define SSH_RSA_MINIMUM_MODULUS_SIZE 768
214    
215    
216     enum kex_init_proposals {
217     PROPOSAL_KEX_ALGS,
218     PROPOSAL_SERVER_HOST_KEY_ALGS,
219     PROPOSAL_ENC_ALGS_CTOS,
220     PROPOSAL_ENC_ALGS_STOC,
221     PROPOSAL_MAC_ALGS_CTOS,
222     PROPOSAL_MAC_ALGS_STOC,
223     PROPOSAL_COMP_ALGS_CTOS,
224     PROPOSAL_COMP_ALGS_STOC,
225     PROPOSAL_LANG_CTOS,
226     PROPOSAL_LANG_STOC,
227     PROPOSAL_MAX
228     };
229    
230     struct Enc {
231     u_char *key;
232     u_char *iv;
233     unsigned int key_len;
234     unsigned int block_size;
235     };
236    
237     struct Mac {
238     char *name;
239     int enabled;
240     const EVP_MD *md;
241     int mac_len;
242     u_char *key;
243     int key_len;
244     };
245    
246     struct Comp {
247     int type;
248     int enabled;
249     char *name;
250     };
251    
252     typedef struct {
253     struct Enc enc;
254     struct Mac mac;
255     struct Comp comp;
256     } Newkeys;
257    
258     #define roundup(x, y) ((((x)+((y)-1))/(y))*(y))
259    
260     enum kex_modes {
261     MODE_IN,
262     MODE_OUT,
263     MODE_MAX
264     };
265    
266    
267 yutakakn 2856 // �z�X�g�L�[(SSH1, SSH2����)���f�[�^�\�� (2006.3.21 yutaka)
268     typedef struct Key {
269     // host key type
270     enum hostkey_type type;
271     // SSH2 RSA
272     RSA *rsa;
273     // SSH2 DSA
274     DSA *dsa;
275     // SSH1 RSA
276     int bits;
277     unsigned char *exp;
278     unsigned char *mod;
279     } Key;
280 yutakakn 2728
281 yutakakn 2856
282 yutakakn 2728 /* The packet handler returns TRUE to keep the handler in place,
283     FALSE to remove the handler. */
284     typedef BOOL (* SSHPacketHandler)(PTInstVar pvar);
285    
286     typedef struct _SSHPacketHandlerItem SSHPacketHandlerItem;
287     struct _SSHPacketHandlerItem {
288     SSHPacketHandler handler;
289     /* Circular list of handlers for given message */
290     SSHPacketHandlerItem FAR * next_for_message;
291     SSHPacketHandlerItem FAR * last_for_message;
292     /* Circular list of handlers in set */
293     SSHPacketHandlerItem FAR * next_in_set;
294     int active_for_message;
295     };
296    
297     typedef struct {
298     char FAR * hostname;
299    
300     int server_protocol_flags;
301     char FAR * server_ID;
302    
303     /* This buffer is used to hold the outgoing data, and encrypted in-place
304     here if necessary. */
305     unsigned char FAR * outbuf;
306     long outbuflen;
307     /* This buffer is used by the SSH protocol processing to store uncompressed
308     packet data for compression. User data is never streamed through here;
309     it is compressed directly from the user's buffer. */
310     unsigned char FAR * precompress_outbuf;
311     long precompress_outbuflen;
312     /* this is the length of the packet data, including the type header */
313     long outgoing_packet_len;
314    
315     /* This buffer is used by the SSH protocol processing to store decompressed
316     packet data. User data is never streamed through here; it is decompressed
317     directly to the user's buffer. */
318     unsigned char FAR * postdecompress_inbuf;
319     long postdecompress_inbuflen;
320    
321     unsigned char FAR * payload;
322     long payload_grabbed;
323     long payloadlen;
324     long payload_datastart;
325     long payload_datalen;
326    
327     uint32 receiver_sequence_number;
328     uint32 sender_sequence_number;
329    
330     z_stream compress_stream;
331     z_stream decompress_stream;
332     BOOL compressing;
333     BOOL decompressing;
334     int compression_level;
335    
336     SSHPacketHandlerItem FAR * packet_handlers[256];
337     int status_flags;
338    
339     int win_cols;
340     int win_rows;
341     } SSHState;
342    
343     #define STATUS_DONT_SEND_USER_NAME 0x01
344     #define STATUS_EXPECTING_COMPRESSION_RESPONSE 0x02
345     #define STATUS_DONT_SEND_CREDENTIALS 0x04
346     #define STATUS_HOST_OK 0x08
347     #define STATUS_INTERACTIVE 0x10
348     #define STATUS_IN_PARTIAL_ID_STRING 0x20
349    
350     void SSH_init(PTInstVar pvar);
351     void SSH_open(PTInstVar pvar);
352     void SSH_notify_disconnecting(PTInstVar pvar, char FAR * reason);
353     /* SSH_handle_server_ID returns TRUE iff a valid ID string has been
354     received. If it returns FALSE, we need to keep looking for another
355     ID string. */
356     BOOL SSH_handle_server_ID(PTInstVar pvar, char FAR * ID, int ID_len);
357     /* SSH_handle_packet requires NO PAYLOAD on entry.
358     'len' is the size of the packet: payload + padding (+ CRC for SSHv1)
359     'padding' is the size of the padding.
360     'data' points to the start of the packet data (the length field)
361     */
362     void SSH_handle_packet(PTInstVar pvar, char FAR * data, int len, int padding);
363     void SSH_notify_win_size(PTInstVar pvar, int cols, int rows);
364     void SSH_notify_user_name(PTInstVar pvar);
365     void SSH_notify_cred(PTInstVar pvar);
366     void SSH_notify_host_OK(PTInstVar pvar);
367     void SSH_send(PTInstVar pvar, unsigned char const FAR * buf, int buflen);
368     /* SSH_extract_payload returns number of bytes extracted */
369     int SSH_extract_payload(PTInstVar pvar, unsigned char FAR * dest, int len);
370     void SSH_end(PTInstVar pvar);
371    
372     void SSH_get_server_ID_info(PTInstVar pvar, char FAR * dest, int len);
373     void SSH_get_protocol_version_info(PTInstVar pvar, char FAR * dest, int len);
374     void SSH_get_compression_info(PTInstVar pvar, char FAR * dest, int len);
375    
376     /* len must be <= SSH_MAX_SEND_PACKET_SIZE */
377 yutakakn 2823 void SSH_channel_send(PTInstVar pvar, int channel_num,
378     uint32 remote_channel_num,
379     unsigned char FAR * buf, int len);
380 yutakakn 2728 void SSH_fail_channel_open(PTInstVar pvar, uint32 remote_channel_num);
381     void SSH_confirm_channel_open(PTInstVar pvar, uint32 remote_channel_num, uint32 local_channel_num);
382     void SSH_channel_output_eof(PTInstVar pvar, uint32 remote_channel_num);
383 yutakakn 2823 void SSH_channel_input_eof(PTInstVar pvar, uint32 remote_channel_num, uint32 local_channel_num);
384 yutakakn 2728 void SSH_request_forwarding(PTInstVar pvar, int from_server_port,
385     char FAR * to_local_host, int to_local_port);
386     void SSH_request_X11_forwarding(PTInstVar pvar,
387     char FAR * auth_protocol, unsigned char FAR * auth_data, int auth_data_len, int screen_num);
388     void SSH_open_channel(PTInstVar pvar, uint32 local_channel_num,
389 yutakakn 2809 char FAR * to_remote_host, int to_remote_port,
390     char FAR * originator, unsigned short originator_port);
391 yutakakn 2728
392     /* auxiliary SSH2 interfaces for pkt.c */
393     int SSH_get_min_packet_size(PTInstVar pvar);
394     /* data is guaranteed to be at least SSH_get_min_packet_size bytes long
395     at least 5 bytes must be decrypted */
396     void SSH_predecrpyt_packet(PTInstVar pvar, char FAR * data);
397     int SSH_get_clear_MAC_size(PTInstVar pvar);
398    
399     #define SSH_is_any_payload(pvar) ((pvar)->ssh_state.payload_datalen > 0)
400     #define SSH_get_host_name(pvar) ((pvar)->ssh_state.hostname)
401     #define SSH_get_compression_level(pvar) ((pvar)->ssh_state.compressing ? (pvar)->ts_SSH_CompressionLevel : 0)
402    
403     void SSH2_send_kexinit(PTInstVar pvar);
404     BOOL do_SSH2_userauth(PTInstVar pvar);
405     void debug_print(int no, char *msg, int len);
406 yutakakn 2748 void ssh_heartbeat_lock_initialize(void);
407 yutakakn 2766 void ssh_heartbeat_lock_finalize(void);
408 yutakakn 2748 void ssh_heartbeat_lock(void);
409     void ssh_heartbeat_unlock(void);
410 yutakakn 2766 void halt_ssh_heartbeat_thread(PTInstVar pvar);
411 yutakakn 2809 void ssh2_channel_free(void);
412 yutakakn 2800 BOOL handle_SSH2_userauth_inforeq(PTInstVar pvar);
413 yutakakn 2833 void SSH2_update_compression_myproposal(PTInstVar pvar);
414     void SSH2_update_cipher_myproposal(PTInstVar pvar);
415 yutakakn 2728
416 yutakakn 2856 enum hostkey_type get_keytype_from_name(char *name);
417     char *get_sshname_from_key(Key *key);
418     int key_to_blob(Key *key, char **blobp, int *lenp);
419     Key *key_from_blob(char *data, int blen);
420     void key_free(Key *key);
421     RSA *duplicate_RSA(RSA *src);
422     DSA *duplicate_DSA(DSA *src);
423 yutakakn 2857 char *key_fingerprint(Key *key);
424 yutakakn 2856
425 yutakakn 2728 #endif

Back to OSDN">Back to OSDN
ViewVC Help
Powered by ViewVC 1.1.26