Develop and Download Open Source Software

Browse Subversion Repository

Annotation of /branches/ssh_chacha20poly1305/ttssh2/ttxssh/ssh.h

Parent Directory Parent Directory | Revision Log Revision Log


Revision 5587 - (hide annotations) (download) (as text)
Mon May 19 03:11:52 2014 UTC (9 years, 10 months ago) by doda
Original Path: trunk/ttssh2/ttxssh/ssh.h
File MIME type: text/x-chdr
File size: 28292 byte(s)
ONLCRのon/offを送るようにした。

1 maya 3227 /*
2     Copyright (c) 1998-2001, Robert O'Callahan
3     All rights reserved.
4    
5     Redistribution and use in source and binary forms, with or without modification,
6     are permitted provided that the following conditions are met:
7    
8     Redistributions of source code must retain the above copyright notice, this list of
9     conditions and the following disclaimer.
10    
11     Redistributions in binary form must reproduce the above copyright notice, this list
12     of conditions and the following disclaimer in the documentation and/or other materials
13     provided with the distribution.
14    
15     The name of Robert O'Callahan may not be used to endorse or promote products derived from
16     this software without specific prior written permission.
17    
18     THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS ``AS IS'' AND
19     ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20     OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL
21     THE REGENTS OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
22     EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
23     SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24     HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
25     OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
26     SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27     */
28    
29     /*
30     This code is copyright (C) 1998-1999 Robert O'Callahan.
31     See LICENSE.TXT for the license.
32     */
33    
34     #ifndef __SSH_H
35     #define __SSH_H
36    
37     #include "zlib.h"
38     #include <openssl/evp.h>
39    
40     #include "buffer.h"
41 doda 4433 #include "config.h"
42 yutakapon 4926 #include <sys/types.h>
43     #include <sys/stat.h>
44 maya 3227
45     #define DEBUG_PRINT_TO_FILE(base, msg, len) { \
46     static int count = 0; \
47     debug_print(count + base, msg, len); \
48     count++; \
49     }
50    
51     // from OpenSSH
52     extern const EVP_CIPHER *evp_aes_128_ctr(void);
53 doda 3850 extern const EVP_CIPHER *evp_des3_ctr(void);
54     extern const EVP_CIPHER *evp_bf_ctr(void);
55     extern const EVP_CIPHER *evp_cast5_ctr(void);
56 doda 4433 extern const EVP_CIPHER *evp_camellia_128_ctr(void);
57 maya 3227
58     /* Some of this code has been adapted from Ian Goldberg's Pilot SSH */
59    
60     typedef enum {
61     SSH_MSG_NONE, SSH_MSG_DISCONNECT, SSH_SMSG_PUBLIC_KEY, //2
62     SSH_CMSG_SESSION_KEY, SSH_CMSG_USER, SSH_CMSG_AUTH_RHOSTS, // 5
63     SSH_CMSG_AUTH_RSA, SSH_SMSG_AUTH_RSA_CHALLENGE,
64     SSH_CMSG_AUTH_RSA_RESPONSE, SSH_CMSG_AUTH_PASSWORD,
65     SSH_CMSG_REQUEST_PTY, // 10
66     SSH_CMSG_WINDOW_SIZE, SSH_CMSG_EXEC_SHELL,
67     SSH_CMSG_EXEC_CMD, SSH_SMSG_SUCCESS, SSH_SMSG_FAILURE,
68     SSH_CMSG_STDIN_DATA, SSH_SMSG_STDOUT_DATA, SSH_SMSG_STDERR_DATA,
69     SSH_CMSG_EOF, SSH_SMSG_EXITSTATUS,
70     SSH_MSG_CHANNEL_OPEN_CONFIRMATION, SSH_MSG_CHANNEL_OPEN_FAILURE,
71     SSH_MSG_CHANNEL_DATA, SSH_MSG_CHANNEL_INPUT_EOF,
72     SSH_MSG_CHANNEL_OUTPUT_CLOSED, SSH_MSG_OBSOLETED0,
73     SSH_SMSG_X11_OPEN, SSH_CMSG_PORT_FORWARD_REQUEST, SSH_MSG_PORT_OPEN,
74     SSH_CMSG_AGENT_REQUEST_FORWARDING, SSH_SMSG_AGENT_OPEN,
75     SSH_MSG_IGNORE, SSH_CMSG_EXIT_CONFIRMATION,
76     SSH_CMSG_X11_REQUEST_FORWARDING, SSH_CMSG_AUTH_RHOSTS_RSA,
77     SSH_MSG_DEBUG, SSH_CMSG_REQUEST_COMPRESSION,
78     SSH_CMSG_MAX_PACKET_SIZE, SSH_CMSG_AUTH_TIS,
79     SSH_SMSG_AUTH_TIS_CHALLENGE, SSH_CMSG_AUTH_TIS_RESPONSE,
80     SSH_CMSG_AUTH_KERBEROS, SSH_SMSG_AUTH_KERBEROS_RESPONSE
81     } SSHMessage;
82    
83     typedef enum {
84     SSH_CIPHER_NONE, SSH_CIPHER_IDEA, SSH_CIPHER_DES, SSH_CIPHER_3DES,
85     SSH_CIPHER_TSS, SSH_CIPHER_RC4, SSH_CIPHER_BLOWFISH,
86     // for SSH2
87     SSH2_CIPHER_3DES_CBC, SSH2_CIPHER_AES128_CBC,
88     SSH2_CIPHER_AES192_CBC, SSH2_CIPHER_AES256_CBC,
89     SSH2_CIPHER_BLOWFISH_CBC, SSH2_CIPHER_AES128_CTR,
90     SSH2_CIPHER_AES192_CTR, SSH2_CIPHER_AES256_CTR,
91     SSH2_CIPHER_ARCFOUR, SSH2_CIPHER_ARCFOUR128, SSH2_CIPHER_ARCFOUR256,
92     SSH2_CIPHER_CAST128_CBC,
93 doda 3850 SSH2_CIPHER_3DES_CTR, SSH2_CIPHER_BLOWFISH_CTR, SSH2_CIPHER_CAST128_CTR,
94 doda 4433 SSH2_CIPHER_CAMELLIA128_CBC, SSH2_CIPHER_CAMELLIA192_CBC, SSH2_CIPHER_CAMELLIA256_CBC,
95     SSH2_CIPHER_CAMELLIA128_CTR, SSH2_CIPHER_CAMELLIA192_CTR, SSH2_CIPHER_CAMELLIA256_CTR,
96     SSH_CIPHER_MAX = SSH2_CIPHER_CAMELLIA256_CTR,
97 maya 3227 } SSHCipher;
98    
99     typedef enum {
100     SSH_AUTH_NONE, SSH_AUTH_RHOSTS, SSH_AUTH_RSA, SSH_AUTH_PASSWORD,
101     SSH_AUTH_RHOSTS_RSA, SSH_AUTH_TIS, SSH_AUTH_KERBEROS,
102     SSH_AUTH_PAGEANT = 16,
103 maya 4378 SSH_AUTH_MAX = SSH_AUTH_PAGEANT,
104 maya 3227 } SSHAuthMethod;
105    
106     typedef enum {
107     SSH_GENERIC_AUTHENTICATION, SSH_TIS_AUTHENTICATION
108     } SSHAuthMode;
109    
110     #define SSH_PROTOFLAG_SCREEN_NUMBER 1
111     #define SSH_PROTOFLAG_HOST_IN_FWD_OPEN 2
112    
113     enum channel_type {
114     TYPE_SHELL, TYPE_PORTFWD, TYPE_SCP, TYPE_SFTP, TYPE_AGENT,
115     };
116    
117     // for SSH1
118     #define SSH_MAX_SEND_PACKET_SIZE 250000
119    
120     // for SSH2
121     /* default window/packet sizes for tcp/x11-fwd-channel */
122     // changed CHAN_SES_WINDOW_DEFAULT from 32KB to 128KB. (2007.10.29 maya)
123     #define CHAN_SES_PACKET_DEFAULT (32*1024)
124     #define CHAN_SES_WINDOW_DEFAULT (4*CHAN_SES_PACKET_DEFAULT)
125     #define CHAN_TCP_PACKET_DEFAULT (32*1024)
126     #define CHAN_TCP_WINDOW_DEFAULT (4*CHAN_TCP_PACKET_DEFAULT)
127     #if 0 // unused
128     #define CHAN_X11_PACKET_DEFAULT (16*1024)
129     #define CHAN_X11_WINDOW_DEFAULT (4*CHAN_X11_PACKET_DEFAULT)
130     #endif
131    
132    
133     /* SSH2 constants */
134    
135     /* SSH2 messages */
136     #define SSH2_MSG_DISCONNECT 1
137     #define SSH2_MSG_IGNORE 2
138     #define SSH2_MSG_UNIMPLEMENTED 3
139     #define SSH2_MSG_DEBUG 4
140     #define SSH2_MSG_SERVICE_REQUEST 5
141     #define SSH2_MSG_SERVICE_ACCEPT 6
142    
143     #define SSH2_MSG_KEXINIT 20
144     #define SSH2_MSG_NEWKEYS 21
145    
146     #define SSH2_MSG_KEXDH_INIT 30
147     #define SSH2_MSG_KEXDH_REPLY 31
148    
149     #define SSH2_MSG_KEX_DH_GEX_GROUP 31
150     #define SSH2_MSG_KEX_DH_GEX_INIT 32
151     #define SSH2_MSG_KEX_DH_GEX_REPLY 33
152     #define SSH2_MSG_KEX_DH_GEX_REQUEST 34
153    
154 maya 4314 #define SSH2_MSG_KEX_ECDH_INIT 30
155     #define SSH2_MSG_KEX_ECDH_REPLY 31
156    
157 maya 3227 #define SSH2_MSG_USERAUTH_REQUEST 50
158     #define SSH2_MSG_USERAUTH_FAILURE 51
159     #define SSH2_MSG_USERAUTH_SUCCESS 52
160     #define SSH2_MSG_USERAUTH_BANNER 53
161    
162     #define SSH2_MSG_USERAUTH_PK_OK 60
163     #define SSH2_MSG_USERAUTH_PASSWD_CHANGEREQ 60
164     #define SSH2_MSG_USERAUTH_INFO_REQUEST 60
165     #define SSH2_MSG_USERAUTH_INFO_RESPONSE 61
166    
167     #define SSH2_MSG_GLOBAL_REQUEST 80
168     #define SSH2_MSG_REQUEST_SUCCESS 81
169     #define SSH2_MSG_REQUEST_FAILURE 82
170     #define SSH2_MSG_CHANNEL_OPEN 90
171     #define SSH2_MSG_CHANNEL_OPEN_CONFIRMATION 91
172     #define SSH2_MSG_CHANNEL_OPEN_FAILURE 92
173     #define SSH2_MSG_CHANNEL_WINDOW_ADJUST 93
174     #define SSH2_MSG_CHANNEL_DATA 94
175     #define SSH2_MSG_CHANNEL_EXTENDED_DATA 95
176     #define SSH2_MSG_CHANNEL_EOF 96
177     #define SSH2_MSG_CHANNEL_CLOSE 97
178     #define SSH2_MSG_CHANNEL_REQUEST 98
179     #define SSH2_MSG_CHANNEL_SUCCESS 99
180     #define SSH2_MSG_CHANNEL_FAILURE 100
181    
182     /* SSH2 miscellaneous constants */
183     #define SSH2_DISCONNECT_HOST_NOT_ALLOWED_TO_CONNECT 1
184     #define SSH2_DISCONNECT_PROTOCOL_ERROR 2
185     #define SSH2_DISCONNECT_KEY_EXCHANGE_FAILED 3
186     #define SSH2_DISCONNECT_HOST_AUTHENTICATION_FAILED 4
187     #define SSH2_DISCONNECT_MAC_ERROR 5
188     #define SSH2_DISCONNECT_COMPRESSION_ERROR 6
189     #define SSH2_DISCONNECT_SERVICE_NOT_AVAILABLE 7
190     #define SSH2_DISCONNECT_PROTOCOL_VERSION_NOT_SUPPORTED 8
191     #define SSH2_DISCONNECT_HOST_KEY_NOT_VERIFIABLE 9
192     #define SSH2_DISCONNECT_CONNECTION_LOST 10
193     #define SSH2_DISCONNECT_BY_APPLICATION 11
194    
195     #define SSH2_OPEN_ADMINISTRATIVELY_PROHIBITED 1
196     #define SSH2_OPEN_CONNECT_FAILED 2
197     #define SSH2_OPEN_UNKNOWN_CHANNEL_TYPE 3
198     #define SSH2_OPEN_RESOURCE_SHORTAGE 4
199    
200 doda 5587 // Terminal Modes
201     #define SSH2_TTY_OP_END 0
202     #define SSH2_TTY_KEY_VINTR 1
203     #define SSH2_TTY_KEY_VQUIT 2
204     #define SSH2_TTY_KEY_VERASE 3
205     #define SSH2_TTY_KEY_VKILL 4
206     #define SSH2_TTY_KEY_VEOF 5
207     #define SSH2_TTY_KEY_VEOL 6
208     #define SSH2_TTY_KEY_VEOL2 7
209     #define SSH2_TTY_KEY_VSTART 8
210     #define SSH2_TTY_KEY_VSTOP 9
211     #define SSH2_TTY_KEY_VSUSP 10
212     #define SSH2_TTY_KEY_VDSUSP 11
213     #define SSH2_TTY_KEY_VREPRINT 12
214     #define SSH2_TTY_KEY_VWERASE 13
215     #define SSH2_TTY_KEY_VLNEXT 14
216     #define SSH2_TTY_KEY_VFLUSH 15
217     #define SSH2_TTY_KEY_VSWTCH 16
218     #define SSH2_TTY_KEY_VSTATUS 17
219     #define SSH2_TTY_KEY_VDISCARD 18
220     #define SSH2_TTY_OP_IGNPAR 30
221     #define SSH2_TTY_OP_PARMRK 31
222     #define SSH2_TTY_OP_INPCK 32
223     #define SSH2_TTY_OP_ISTRIP 33
224     #define SSH2_TTY_OP_INLCR 34
225     #define SSH2_TTY_OP_IGNCR 35
226     #define SSH2_TTY_OP_ICRNL 36
227     #define SSH2_TTY_OP_IUCLC 37
228     #define SSH2_TTY_OP_IXON 38
229     #define SSH2_TTY_OP_IXANY 39
230     #define SSH2_TTY_OP_IXOFF 40
231     #define SSH2_TTY_OP_IMAXBEL 41
232     #define SSH2_TTY_OP_ISIG 50
233     #define SSH2_TTY_OP_ICANON 51
234     #define SSH2_TTY_OP_XCASE 52
235     #define SSH2_TTY_OP_ECHO 53
236     #define SSH2_TTY_OP_ECHOE 54
237     #define SSH2_TTY_OP_ECHOK 55
238     #define SSH2_TTY_OP_ECHONL 56
239     #define SSH2_TTY_OP_NOFLSH 57
240     #define SSH2_TTY_OP_TOSTOP 58
241     #define SSH2_TTY_OP_IEXTEN 59
242     #define SSH2_TTY_OP_ECHOCTL 60
243     #define SSH2_TTY_OP_ECHOKE 61
244     #define SSH2_TTY_OP_PENDIN 62
245     #define SSH2_TTY_OP_OPOST 70
246     #define SSH2_TTY_OP_OLCUC 71
247     #define SSH2_TTY_OP_ONLCR 72
248     #define SSH2_TTY_OP_OCRNL 73
249     #define SSH2_TTY_OP_ONOCR 74
250     #define SSH2_TTY_OP_ONLRET 75
251     #define SSH2_TTY_OP_CS7 90
252     #define SSH2_TTY_OP_CS8 91
253     #define SSH2_TTY_OP_PARENB 92
254     #define SSH2_TTY_OP_PARODD 93
255     #define SSH2_TTY_OP_ISPEED 128
256     #define SSH2_TTY_OP_OSPEED 129
257 maya 3227
258 doda 5587
259 maya 4378 // �N���C�A���g�����T�[�o������������
260 maya 3227 enum kex_init_proposals {
261     PROPOSAL_KEX_ALGS,
262     PROPOSAL_SERVER_HOST_KEY_ALGS,
263     PROPOSAL_ENC_ALGS_CTOS,
264     PROPOSAL_ENC_ALGS_STOC,
265     PROPOSAL_MAC_ALGS_CTOS,
266     PROPOSAL_MAC_ALGS_STOC,
267     PROPOSAL_COMP_ALGS_CTOS,
268     PROPOSAL_COMP_ALGS_STOC,
269     PROPOSAL_LANG_CTOS,
270     PROPOSAL_LANG_STOC,
271     PROPOSAL_MAX
272     };
273    
274 maya 4378 #define KEX_DEFAULT_KEX ""
275     #define KEX_DEFAULT_PK_ALG ""
276     #define KEX_DEFAULT_ENCRYPT ""
277     #define KEX_DEFAULT_MAC ""
278     #define KEX_DEFAULT_COMP ""
279     #define KEX_DEFAULT_LANG ""
280 maya 3227
281     static char *myproposal[PROPOSAL_MAX] = {
282     KEX_DEFAULT_KEX,
283     KEX_DEFAULT_PK_ALG,
284     KEX_DEFAULT_ENCRYPT,
285     KEX_DEFAULT_ENCRYPT,
286     KEX_DEFAULT_MAC,
287     KEX_DEFAULT_MAC,
288     KEX_DEFAULT_COMP,
289     KEX_DEFAULT_COMP,
290     KEX_DEFAULT_LANG,
291     KEX_DEFAULT_LANG,
292     };
293    
294    
295 maya 4378 typedef enum {
296     KEY_NONE,
297     KEY_RSA1,
298     KEY_RSA,
299     KEY_DSA,
300     KEY_ECDSA256,
301     KEY_ECDSA384,
302     KEY_ECDSA521,
303 yutakapon 5545 KEY_ED25519,
304 maya 4378 KEY_UNSPEC,
305     KEY_MAX = KEY_UNSPEC,
306     } ssh_keytype;
307 yutakapon 5545 #define isFixedLengthKey(type) ((type) >= KEY_DSA && (type) <= KEY_ED25519)
308 maya 4378
309     typedef struct ssh2_host_key {
310     ssh_keytype type;
311     char *name;
312     } ssh2_host_key_t;
313    
314     static ssh2_host_key_t ssh2_host_key[] = {
315 maya 4592 {KEY_RSA1, "ssh-rsa1"}, // for SSH1 only
316     {KEY_RSA, "ssh-rsa"}, // RFC4253
317     {KEY_DSA, "ssh-dss"}, // RFC4253
318     {KEY_ECDSA256, "ecdsa-sha2-nistp256"}, // RFC5656
319     {KEY_ECDSA384, "ecdsa-sha2-nistp384"}, // RFC5656
320     {KEY_ECDSA521, "ecdsa-sha2-nistp521"}, // RFC5656
321 yutakapon 5545 {KEY_ED25519, "ssh-ed25519"},
322 maya 4378 {KEY_UNSPEC, "ssh-unknown"},
323     {KEY_NONE, NULL},
324     };
325    
326     /* Minimum modulus size (n) for RSA keys. */
327     #define SSH_RSA_MINIMUM_MODULUS_SIZE 768
328    
329     #define SSH_KEYGEN_DEFAULT_BITS 2048
330     #define SSH_RSA_MINIMUM_KEY_SIZE 768
331     #define SSH_DSA_MINIMUM_KEY_SIZE 1024
332    
333    
334 maya 3227 typedef struct ssh2_cipher {
335     SSHCipher cipher;
336     char *name;
337     int block_size;
338     int key_len;
339     int discard_len;
340     const EVP_CIPHER *(*func)(void);
341     } ssh2_cipher_t;
342    
343     static ssh2_cipher_t ssh2_ciphers[] = {
344 maya 4592 {SSH2_CIPHER_3DES_CBC, "3des-cbc", 8, 24, 0, EVP_des_ede3_cbc}, // RFC4253
345     {SSH2_CIPHER_AES128_CBC, "aes128-cbc", 16, 16, 0, EVP_aes_128_cbc}, // RFC4253
346     {SSH2_CIPHER_AES192_CBC, "aes192-cbc", 16, 24, 0, EVP_aes_192_cbc}, // RFC4253
347     {SSH2_CIPHER_AES256_CBC, "aes256-cbc", 16, 32, 0, EVP_aes_256_cbc}, // RFC4253
348     {SSH2_CIPHER_BLOWFISH_CBC, "blowfish-cbc", 8, 16, 0, EVP_bf_cbc}, // RFC4253
349     {SSH2_CIPHER_AES128_CTR, "aes128-ctr", 16, 16, 0, evp_aes_128_ctr}, // RFC4344
350     {SSH2_CIPHER_AES192_CTR, "aes192-ctr", 16, 24, 0, evp_aes_128_ctr}, // RFC4344
351     {SSH2_CIPHER_AES256_CTR, "aes256-ctr", 16, 32, 0, evp_aes_128_ctr}, // RFC4344
352     {SSH2_CIPHER_ARCFOUR, "arcfour", 8, 16, 0, EVP_rc4}, // RFC4253
353     {SSH2_CIPHER_ARCFOUR128, "arcfour128", 8, 16, 1536, EVP_rc4}, // RFC4345
354     {SSH2_CIPHER_ARCFOUR256, "arcfour256", 8, 32, 1536, EVP_rc4}, // RFC4345
355     {SSH2_CIPHER_CAST128_CBC, "cast128-cbc", 8, 16, 0, EVP_cast5_cbc}, // RFC4253
356     {SSH2_CIPHER_3DES_CTR, "3des-ctr", 8, 24, 0, evp_des3_ctr}, // RFC4344
357     {SSH2_CIPHER_BLOWFISH_CTR, "blowfish-ctr", 8, 16, 0, evp_bf_ctr}, // RFC4344
358     {SSH2_CIPHER_CAST128_CTR, "cast128-ctr", 8, 16, 0, evp_cast5_ctr}, // RFC4344
359     {SSH2_CIPHER_CAMELLIA128_CBC, "camellia128-cbc", 16, 16, 0, EVP_camellia_128_cbc}, // draft-kanno-secsh-camellia-02
360     {SSH2_CIPHER_CAMELLIA192_CBC, "camellia192-cbc", 16, 24, 0, EVP_camellia_192_cbc}, // draft-kanno-secsh-camellia-02
361     {SSH2_CIPHER_CAMELLIA256_CBC, "camellia256-cbc", 16, 32, 0, EVP_camellia_256_cbc}, // draft-kanno-secsh-camellia-02
362     {SSH2_CIPHER_CAMELLIA128_CTR, "camellia128-ctr", 16, 16, 0, evp_camellia_128_ctr}, // draft-kanno-secsh-camellia-02
363     {SSH2_CIPHER_CAMELLIA192_CTR, "camellia192-ctr", 16, 24, 0, evp_camellia_128_ctr}, // draft-kanno-secsh-camellia-02
364     {SSH2_CIPHER_CAMELLIA256_CTR, "camellia256-ctr", 16, 32, 0, evp_camellia_128_ctr}, // draft-kanno-secsh-camellia-02
365 doda 4433 #ifdef WITH_CAMELLIA_PRIVATE
366     {SSH2_CIPHER_CAMELLIA128_CBC, "camellia128-cbc@openssh.org", 16, 16, 0, EVP_camellia_128_cbc},
367     {SSH2_CIPHER_CAMELLIA192_CBC, "camellia192-cbc@openssh.org", 16, 24, 0, EVP_camellia_192_cbc},
368     {SSH2_CIPHER_CAMELLIA256_CBC, "camellia256-cbc@openssh.org", 16, 32, 0, EVP_camellia_256_cbc},
369     {SSH2_CIPHER_CAMELLIA128_CTR, "camellia128-ctr@openssh.org", 16, 16, 0, evp_camellia_128_ctr},
370     {SSH2_CIPHER_CAMELLIA192_CTR, "camellia192-ctr@openssh.org", 16, 24, 0, evp_camellia_128_ctr},
371     {SSH2_CIPHER_CAMELLIA256_CTR, "camellia256-ctr@openssh.org", 16, 32, 0, evp_camellia_128_ctr},
372     #endif // WITH_CAMELLIA_PRIVATE
373 maya 4301 {SSH_CIPHER_NONE, NULL, 0, 0, 0, NULL},
374 maya 3227 };
375    
376    
377 maya 4378 typedef enum {
378 yutakapon 4367 KEX_DH_NONE, /* disabled line */
379 maya 4301 KEX_DH_GRP1_SHA1,
380     KEX_DH_GRP14_SHA1,
381     KEX_DH_GEX_SHA1,
382     KEX_DH_GEX_SHA256,
383 maya 4314 KEX_ECDH_SHA2_256,
384     KEX_ECDH_SHA2_384,
385     KEX_ECDH_SHA2_521,
386 maya 4301 KEX_DH_UNKNOWN,
387 yutakapon 4367 KEX_DH_MAX = KEX_DH_UNKNOWN,
388 maya 4378 } kex_algorithm;
389 maya 4301
390     typedef struct ssh2_kex_algorithm {
391 maya 4378 kex_algorithm kextype;
392 maya 4301 char *name;
393     const EVP_MD *(*evp_md)(void);
394     } ssh2_kex_algorithm_t;
395    
396     static ssh2_kex_algorithm_t ssh2_kex_algorithms[] = {
397 maya 4592 {KEX_DH_GRP1_SHA1, "diffie-hellman-group1-sha1", EVP_sha1}, // RFC4253
398     {KEX_DH_GRP14_SHA1, "diffie-hellman-group14-sha1", EVP_sha1}, // RFC4253
399     {KEX_DH_GEX_SHA1, "diffie-hellman-group-exchange-sha1", EVP_sha1}, // RFC4419
400     {KEX_DH_GEX_SHA256, "diffie-hellman-group-exchange-sha256", EVP_sha256}, // RFC4419
401     {KEX_ECDH_SHA2_256, "ecdh-sha2-nistp256", EVP_sha256}, // RFC5656
402     {KEX_ECDH_SHA2_384, "ecdh-sha2-nistp384", EVP_sha384}, // RFC5656
403     {KEX_ECDH_SHA2_521, "ecdh-sha2-nistp521", EVP_sha512}, // RFC5656
404 maya 4378 {KEX_DH_NONE , NULL, NULL},
405 maya 4301 };
406    
407    
408 maya 4378 typedef enum {
409     HMAC_NONE, /* disabled line */
410 maya 4301 HMAC_SHA1,
411     HMAC_MD5,
412 doda 4422 HMAC_SHA1_96,
413     HMAC_MD5_96,
414 doda 4423 HMAC_RIPEMD160,
415 doda 4425 HMAC_SHA2_256,
416     HMAC_SHA2_256_96,
417     HMAC_SHA2_512,
418     HMAC_SHA2_512_96,
419 yutakapon 4367 HMAC_UNKNOWN,
420     HMAC_MAX = HMAC_UNKNOWN,
421 maya 4378 } hmac_type;
422 maya 4301
423 maya 3227 typedef struct ssh2_mac {
424 maya 4378 hmac_type type;
425 maya 3227 char *name;
426 maya 4378 const EVP_MD *(*evp_md)(void);
427 maya 3227 int truncatebits;
428     } ssh2_mac_t;
429    
430     static ssh2_mac_t ssh2_macs[] = {
431 maya 4592 {HMAC_SHA1, "hmac-sha1", EVP_sha1, 0}, // RFC4253
432     {HMAC_MD5, "hmac-md5", EVP_md5, 0}, // RFC4253
433     {HMAC_SHA1_96, "hmac-sha1-96", EVP_sha1, 96}, // RFC4253
434     {HMAC_MD5_96, "hmac-md5-96", EVP_md5, 96}, // RFC4253
435 doda 4425 {HMAC_RIPEMD160, "hmac-ripemd160@openssh.com", EVP_ripemd160, 0},
436 maya 4980 {HMAC_SHA2_256, "hmac-sha2-256", EVP_sha256, 0}, // RFC6668
437 doda 5016 // {HMAC_SHA2_256_96, "hmac-sha2-256-96", EVP_sha256, 96}, // draft-dbider-sha2-mac-for-ssh-05, deleted at 06
438 maya 4980 {HMAC_SHA2_512, "hmac-sha2-512", EVP_sha512, 0}, // RFC6668
439 doda 5016 // {HMAC_SHA2_512_96, "hmac-sha2-512-96", EVP_sha512, 96}, // draft-dbider-sha2-mac-for-ssh-05, deleted at 06
440 doda 4425 {HMAC_NONE, NULL, NULL, 0},
441 maya 3227 };
442    
443 maya 4301
444 maya 4378 typedef enum {
445     COMP_NONE, /* disabled line */
446     COMP_NOCOMP,
447 maya 4301 COMP_ZLIB,
448     COMP_DELAYED,
449 yutakapon 4367 COMP_UNKNOWN,
450     COMP_MAX = COMP_UNKNOWN,
451 maya 4378 } compression_type;
452 maya 3227
453 maya 4378 typedef struct ssh2_comp {
454     compression_type type;
455 maya 4301 char *name;
456 maya 4378 } ssh2_comp_t;
457 maya 3227
458 maya 4378 static ssh2_comp_t ssh2_comps[] = {
459 maya 4592 {COMP_NOCOMP, "none"}, // RFC4253
460     {COMP_ZLIB, "zlib"}, // RFC4253
461 maya 4301 {COMP_DELAYED, "zlib@openssh.com"},
462 maya 4378 {COMP_NONE, NULL},
463 maya 4301 };
464    
465    
466 maya 3227 struct Enc {
467     u_char *key;
468     u_char *iv;
469     unsigned int key_len;
470     unsigned int block_size;
471     };
472    
473     struct Mac {
474     char *name;
475     int enabled;
476     const EVP_MD *md;
477     int mac_len;
478     u_char *key;
479     int key_len;
480     };
481    
482     struct Comp {
483     int type;
484     int enabled;
485     char *name;
486     };
487    
488     typedef struct {
489     struct Enc enc;
490     struct Mac mac;
491     struct Comp comp;
492     } Newkeys;
493    
494     #define roundup(x, y) ((((x)+((y)-1))/(y))*(y))
495    
496     enum kex_modes {
497     MODE_IN,
498     MODE_OUT,
499     MODE_MAX
500     };
501    
502    
503     // �z�X�g�L�[(SSH1, SSH2����)���f�[�^�\�� (2006.3.21 yutaka)
504     typedef struct Key {
505     // host key type
506 maya 4378 ssh_keytype type;
507 maya 3227 // SSH2 RSA
508     RSA *rsa;
509     // SSH2 DSA
510     DSA *dsa;
511 maya 4321 // SSH2 ECDSA
512     EC_KEY *ecdsa;
513 maya 3227 // SSH1 RSA
514     int bits;
515     unsigned char *exp;
516     unsigned char *mod;
517 yutakapon 5545 // SSH2 ED25519
518     unsigned char *ed25519_sk;
519     unsigned char *ed25519_pk;
520     int bcrypt_kdf;
521 maya 3227 } Key;
522    
523     // fingerprint������
524     enum fp_rep {
525     SSH_FP_HEX,
526     SSH_FP_BUBBLEBABBLE,
527     SSH_FP_RANDOMART
528     };
529    
530 doda 4531 enum fp_type {
531 doda 4539 SSH_FP_MD5,
532 doda 4531 SSH_FP_SHA1,
533 doda 4539 SSH_FP_SHA256
534 doda 4531 };
535    
536 maya 3227 enum scp_dir {
537 r850 3375 TOREMOTE, FROMREMOTE,
538 maya 3227 };
539    
540     /* The packet handler returns TRUE to keep the handler in place,
541     FALSE to remove the handler. */
542     typedef BOOL (* SSHPacketHandler)(PTInstVar pvar);
543    
544     typedef struct _SSHPacketHandlerItem SSHPacketHandlerItem;
545     struct _SSHPacketHandlerItem {
546     SSHPacketHandler handler;
547     /* Circular list of handlers for given message */
548     SSHPacketHandlerItem FAR * next_for_message;
549     SSHPacketHandlerItem FAR * last_for_message;
550     /* Circular list of handlers in set */
551     SSHPacketHandlerItem FAR * next_in_set;
552     int active_for_message;
553     };
554    
555     typedef struct {
556     char FAR * hostname;
557    
558     int server_protocol_flags;
559     char FAR * server_ID;
560    
561     /* This buffer is used to hold the outgoing data, and encrypted in-place
562     here if necessary. */
563     unsigned char FAR * outbuf;
564     long outbuflen;
565     /* This buffer is used by the SSH protocol processing to store uncompressed
566     packet data for compression. User data is never streamed through here;
567     it is compressed directly from the user's buffer. */
568     unsigned char FAR * precompress_outbuf;
569     long precompress_outbuflen;
570     /* this is the length of the packet data, including the type header */
571     long outgoing_packet_len;
572    
573     /* This buffer is used by the SSH protocol processing to store decompressed
574     packet data. User data is never streamed through here; it is decompressed
575     directly to the user's buffer. */
576     unsigned char FAR * postdecompress_inbuf;
577     long postdecompress_inbuflen;
578    
579     unsigned char FAR * payload;
580     long payload_grabbed;
581     long payloadlen;
582     long payload_datastart;
583     long payload_datalen;
584    
585     uint32 receiver_sequence_number;
586     uint32 sender_sequence_number;
587    
588     z_stream compress_stream;
589     z_stream decompress_stream;
590     BOOL compressing;
591     BOOL decompressing;
592     int compression_level;
593    
594     SSHPacketHandlerItem FAR * packet_handlers[256];
595     int status_flags;
596    
597     int win_cols;
598     int win_rows;
599    
600     unsigned short tcpport;
601     } SSHState;
602    
603     #define STATUS_DONT_SEND_USER_NAME 0x01
604     #define STATUS_EXPECTING_COMPRESSION_RESPONSE 0x02
605     #define STATUS_DONT_SEND_CREDENTIALS 0x04
606     #define STATUS_HOST_OK 0x08
607     #define STATUS_INTERACTIVE 0x10
608     #define STATUS_IN_PARTIAL_ID_STRING 0x20
609    
610     void SSH_init(PTInstVar pvar);
611     void SSH_open(PTInstVar pvar);
612     void SSH_notify_disconnecting(PTInstVar pvar, char FAR * reason);
613     /* SSH_handle_server_ID returns TRUE iff a valid ID string has been
614     received. If it returns FALSE, we need to keep looking for another
615     ID string. */
616     BOOL SSH_handle_server_ID(PTInstVar pvar, char FAR * ID, int ID_len);
617     /* SSH_handle_packet requires NO PAYLOAD on entry.
618     'len' is the size of the packet: payload + padding (+ CRC for SSHv1)
619     'padding' is the size of the padding.
620     'data' points to the start of the packet data (the length field)
621     */
622     void SSH_handle_packet(PTInstVar pvar, char FAR * data, int len, int padding);
623     void SSH_notify_win_size(PTInstVar pvar, int cols, int rows);
624     void SSH_notify_user_name(PTInstVar pvar);
625     void SSH_notify_cred(PTInstVar pvar);
626     void SSH_notify_host_OK(PTInstVar pvar);
627     void SSH_send(PTInstVar pvar, unsigned char const FAR * buf, unsigned int buflen);
628     /* SSH_extract_payload returns number of bytes extracted */
629     int SSH_extract_payload(PTInstVar pvar, unsigned char FAR * dest, int len);
630     void SSH_end(PTInstVar pvar);
631    
632     void SSH_get_server_ID_info(PTInstVar pvar, char FAR * dest, int len);
633     void SSH_get_protocol_version_info(PTInstVar pvar, char FAR * dest, int len);
634     void SSH_get_compression_info(PTInstVar pvar, char FAR * dest, int len);
635    
636     /* len must be <= SSH_MAX_SEND_PACKET_SIZE */
637     void SSH_channel_send(PTInstVar pvar, int channel_num,
638     uint32 remote_channel_num,
639 yutakapon 5039 unsigned char FAR * buf, int len, int retry);
640 maya 3227 void SSH_fail_channel_open(PTInstVar pvar, uint32 remote_channel_num);
641     void SSH_confirm_channel_open(PTInstVar pvar, uint32 remote_channel_num, uint32 local_channel_num);
642     void SSH_channel_output_eof(PTInstVar pvar, uint32 remote_channel_num);
643     void SSH_channel_input_eof(PTInstVar pvar, uint32 remote_channel_num, uint32 local_channel_num);
644 maya 3808 void SSH_request_forwarding(PTInstVar pvar, char FAR * bind_address, int from_server_port,
645     char FAR * to_local_host, int to_local_port);
646 maya 4987 void SSH_cancel_request_forwarding(PTInstVar pvar, char FAR * bind_address, int from_server_port, int reply);
647 maya 3227 void SSH_request_X11_forwarding(PTInstVar pvar,
648     char FAR * auth_protocol, unsigned char FAR * auth_data, int auth_data_len, int screen_num);
649     void SSH_open_channel(PTInstVar pvar, uint32 local_channel_num,
650     char FAR * to_remote_host, int to_remote_port,
651     char FAR * originator, unsigned short originator_port);
652    
653     int SSH_start_scp(PTInstVar pvar, char *sendfile, char *dstfile);
654     int SSH_start_scp_receive(PTInstVar pvar, char *filename);
655     int SSH_scp_transaction(PTInstVar pvar, char *sendfile, char *dstfile, enum scp_dir direction);
656     int SSH_sftp_transaction(PTInstVar pvar);
657    
658     /* auxiliary SSH2 interfaces for pkt.c */
659     int SSH_get_min_packet_size(PTInstVar pvar);
660     /* data is guaranteed to be at least SSH_get_min_packet_size bytes long
661     at least 5 bytes must be decrypted */
662     void SSH_predecrpyt_packet(PTInstVar pvar, char FAR * data);
663     int SSH_get_clear_MAC_size(PTInstVar pvar);
664    
665     #define SSH_is_any_payload(pvar) ((pvar)->ssh_state.payload_datalen > 0)
666     #define SSH_get_host_name(pvar) ((pvar)->ssh_state.hostname)
667     #define SSH_get_compression_level(pvar) ((pvar)->ssh_state.compressing ? (pvar)->ts_SSH_CompressionLevel : 0)
668    
669     void SSH2_send_kexinit(PTInstVar pvar);
670     BOOL do_SSH2_userauth(PTInstVar pvar);
671     BOOL do_SSH2_authrequest(PTInstVar pvar);
672     void debug_print(int no, char *msg, int len);
673     int get_cipher_block_size(SSHCipher cipher);
674     int get_cipher_key_len(SSHCipher cipher);
675 yutakapon 5545 SSHCipher get_cipher_by_name(char *name);
676 maya 4378 char* get_kex_algorithm_name(kex_algorithm kextype);
677 maya 3227 const EVP_CIPHER* get_cipher_EVP_CIPHER(SSHCipher cipher);
678 maya 4378 const EVP_MD* get_kex_algorithm_EVP_MD(kex_algorithm kextype);
679     char* get_ssh2_mac_name(hmac_type type);
680     const EVP_MD* get_ssh2_mac_EVP_MD(hmac_type type);
681     int get_ssh2_mac_truncatebits(hmac_type type);
682     char* get_ssh2_comp_name(compression_type type);
683     char* get_ssh_keytype_name(ssh_keytype type);
684 maya 3227 int get_cipher_discard_len(SSHCipher cipher);
685     void ssh_heartbeat_lock_initialize(void);
686     void ssh_heartbeat_lock_finalize(void);
687     void ssh_heartbeat_lock(void);
688     void ssh_heartbeat_unlock(void);
689     void halt_ssh_heartbeat_thread(PTInstVar pvar);
690     void ssh2_channel_free(void);
691     BOOL handle_SSH2_userauth_inforeq(PTInstVar pvar);
692 yutakapon 4152 BOOL handle_SSH2_userauth_passwd_changereq(PTInstVar pvar);
693 maya 3227 void SSH2_update_compression_myproposal(PTInstVar pvar);
694     void SSH2_update_cipher_myproposal(PTInstVar pvar);
695 yutakapon 4367 void SSH2_update_kex_myproposal(PTInstVar pvar);
696     void SSH2_update_host_key_myproposal(PTInstVar pvar);
697     void SSH2_update_hmac_myproposal(PTInstVar pvar);
698 yutakapon 4106 int SSH_notify_break_signal(PTInstVar pvar);
699 maya 3227
700 yutakapon 4926 ///
701     enum scp_state {
702     SCP_INIT, SCP_TIMESTAMP, SCP_FILEINFO, SCP_DATA, SCP_CLOSING,
703     };
704    
705     typedef struct bufchain {
706     buffer_t *msg;
707     struct bufchain *next;
708     } bufchain_t;
709    
710     typedef struct scp {
711     enum scp_dir dir; // transfer direction
712     enum scp_state state; // SCP state
713     char localfile[MAX_PATH]; // local filename
714     char localfilefull[MAX_PATH]; // local filename fullpath
715     char remotefile[MAX_PATH]; // remote filename
716     FILE *localfp; // file pointer for local file
717     struct __stat64 filestat; // file status information
718     HWND progress_window;
719     HANDLE thread;
720     unsigned int thread_id;
721     PTInstVar pvar;
722     // for receiving file
723     long long filetotalsize;
724     long long filercvsize;
725     } scp_t;
726    
727     enum sftp_state {
728 yutakapon 4930 SFTP_INIT, SFTP_CONNECTED, SFTP_REALPATH,
729 yutakapon 4926 };
730    
731     typedef struct sftp {
732     enum sftp_state state;
733 yutakapon 4930 HWND console_window;
734 yutakapon 4929 unsigned int transfer_buflen;
735     unsigned int num_requests;
736     unsigned int version;
737     unsigned int msg_id;
738     #define SFTP_EXT_POSIX_RENAME 0x00000001
739     #define SFTP_EXT_STATVFS 0x00000002
740     #define SFTP_EXT_FSTATVFS 0x00000004
741     #define SFTP_EXT_HARDLINK 0x00000008
742     unsigned int exts;
743     unsigned long long limit_kbps;
744     //struct bwlimit bwlimit_in, bwlimit_out;
745 yutakapon 4930 char path[1024];
746 yutakapon 4926 } sftp_t;
747    
748     typedef struct channel {
749     int used;
750     int self_id;
751     int remote_id;
752     unsigned int local_window;
753     unsigned int local_window_max;
754     unsigned int local_consumed;
755     unsigned int local_maxpacket;
756     unsigned int remote_window;
757     unsigned int remote_maxpacket;
758     enum channel_type type;
759     int local_num;
760     bufchain_t *bufchain;
761     scp_t scp;
762     buffer_t *agent_msg;
763     int agent_request_len;
764     sftp_t sftp;
765 maya 5422 #define SSH_CHANNEL_STATE_CLOSE_SENT 0x00000001
766     unsigned int state;
767 yutakapon 4926 } Channel_t;
768    
769     unsigned char FAR *begin_send_packet(PTInstVar pvar, int type, int len);
770     void finish_send_packet_special(PTInstVar pvar, int skip_compress);
771 yutakapon 5039 void SSH2_send_channel_data(PTInstVar pvar, Channel_t *c, unsigned char FAR * buf, unsigned int buflen, int retry);
772 yutakapon 4926
773     #define finish_send_packet(pvar) finish_send_packet_special((pvar), 0)
774     #define get_payload_uint32(pvar, offset) get_uint32_MSBfirst((pvar)->ssh_state.payload + (offset))
775     #define get_uint32(buf) get_uint32_MSBfirst((buf))
776     #define set_uint32(buf, v) set_uint32_MSBfirst((buf), (v))
777     #define get_mpint_len(pvar, offset) ((get_ushort16_MSBfirst((pvar)->ssh_state.payload + (offset)) + 7) >> 3)
778     #define get_ushort16(buf) get_ushort16_MSBfirst((buf))
779     ///
780    
781 maya 3227 #endif

Back to OSDN">Back to OSDN
ViewVC Help
Powered by ViewVC 1.1.26