xref: /linux/net/rxrpc/insecure.c (revision 68993ced0f618e36cf33388f1e50223e5e6e78cc)
1 // SPDX-License-Identifier: GPL-2.0-or-later
2 /* Null security operations.
3  *
4  * Copyright (C) 2016 Red Hat, Inc. All Rights Reserved.
5  * Written by David Howells (dhowells@redhat.com)
6  */
7 
8 #include <net/af_rxrpc.h>
9 #include "ar-internal.h"
10 
none_init_connection_security(struct rxrpc_connection * conn,struct rxrpc_key_token * token)11 static int none_init_connection_security(struct rxrpc_connection *conn,
12 					 struct rxrpc_key_token *token)
13 {
14 	return 0;
15 }
16 
17 /*
18  * Allocate an appropriately sized buffer for the amount of data remaining.
19  */
none_alloc_txbuf(struct rxrpc_call * call,size_t remain,gfp_t gfp)20 static struct rxrpc_txbuf *none_alloc_txbuf(struct rxrpc_call *call, size_t remain, gfp_t gfp)
21 {
22 	return rxrpc_alloc_data_txbuf(call, umin(remain, RXRPC_JUMBO_DATALEN), 1, gfp);
23 }
24 
none_secure_packet(struct rxrpc_call * call,struct rxrpc_txbuf * txb)25 static int none_secure_packet(struct rxrpc_call *call, struct rxrpc_txbuf *txb)
26 {
27 	txb->pkt_len = txb->len;
28 	if (txb->len == RXRPC_JUMBO_DATALEN)
29 		txb->jumboable = true;
30 	return 0;
31 }
32 
none_verify_packet(struct rxrpc_call * call,struct sk_buff * skb)33 static int none_verify_packet(struct rxrpc_call *call, struct sk_buff *skb)
34 {
35 	return 0;
36 }
37 
none_free_call_crypto(struct rxrpc_call * call)38 static void none_free_call_crypto(struct rxrpc_call *call)
39 {
40 }
41 
none_validate_challenge(struct rxrpc_connection * conn,struct sk_buff * skb)42 static bool none_validate_challenge(struct rxrpc_connection *conn,
43 				    struct sk_buff *skb)
44 {
45 	rxrpc_abort_conn(conn, skb, RX_PROTOCOL_ERROR, -EPROTO,
46 			 rxrpc_eproto_rxnull_challenge);
47 	return true;
48 }
49 
none_sendmsg_respond_to_challenge(struct sk_buff * challenge,struct msghdr * msg)50 static int none_sendmsg_respond_to_challenge(struct sk_buff *challenge,
51 					     struct msghdr *msg)
52 {
53 	return -EINVAL;
54 }
55 
none_verify_response(struct rxrpc_connection * conn,struct sk_buff * response_skb,void * response,unsigned int len)56 static int none_verify_response(struct rxrpc_connection *conn,
57 				struct sk_buff *response_skb,
58 				void *response, unsigned int len)
59 {
60 	return rxrpc_abort_conn(conn, response_skb, RX_PROTOCOL_ERROR, -EPROTO,
61 				rxrpc_eproto_rxnull_response);
62 }
63 
none_clear(struct rxrpc_connection * conn)64 static void none_clear(struct rxrpc_connection *conn)
65 {
66 }
67 
none_init(void)68 static int none_init(void)
69 {
70 	return 0;
71 }
72 
none_exit(void)73 static void none_exit(void)
74 {
75 }
76 
77 /*
78  * RxRPC Kerberos-based security
79  */
80 const struct rxrpc_security rxrpc_no_security = {
81 	.name				= "none",
82 	.security_index			= RXRPC_SECURITY_NONE,
83 	.init				= none_init,
84 	.exit				= none_exit,
85 	.init_connection_security	= none_init_connection_security,
86 	.free_call_crypto		= none_free_call_crypto,
87 	.alloc_txbuf			= none_alloc_txbuf,
88 	.secure_packet			= none_secure_packet,
89 	.verify_packet			= none_verify_packet,
90 	.validate_challenge		= none_validate_challenge,
91 	.sendmsg_respond_to_challenge	= none_sendmsg_respond_to_challenge,
92 	.verify_response		= none_verify_response,
93 	.clear				= none_clear,
94 };
95