xref: /freebsd/contrib/wpa/src/eap_server/eap_sim_db.h (revision 780fb4a2fa9a9aee5ac48a60b790f567c0dc13e9)
139beb93cSSam Leffler /*
239beb93cSSam Leffler  * hostapd / EAP-SIM database/authenticator gateway
3f05cddf9SRui Paulo  * Copyright (c) 2005-2008, 2012, Jouni Malinen <j@w1.fi>
439beb93cSSam Leffler  *
5f05cddf9SRui Paulo  * This software may be distributed under the terms of the BSD license.
6f05cddf9SRui Paulo  * See README for more details.
739beb93cSSam Leffler  */
839beb93cSSam Leffler 
939beb93cSSam Leffler #ifndef EAP_SIM_DB_H
1039beb93cSSam Leffler #define EAP_SIM_DB_H
1139beb93cSSam Leffler 
1239beb93cSSam Leffler #include "eap_common/eap_sim_common.h"
1339beb93cSSam Leffler 
1439beb93cSSam Leffler /* Identity prefixes */
1539beb93cSSam Leffler #define EAP_SIM_PERMANENT_PREFIX '1'
1639beb93cSSam Leffler #define EAP_SIM_PSEUDONYM_PREFIX '3'
1739beb93cSSam Leffler #define EAP_SIM_REAUTH_ID_PREFIX '5'
1839beb93cSSam Leffler #define EAP_AKA_PERMANENT_PREFIX '0'
1939beb93cSSam Leffler #define EAP_AKA_PSEUDONYM_PREFIX '2'
2039beb93cSSam Leffler #define EAP_AKA_REAUTH_ID_PREFIX '4'
21f05cddf9SRui Paulo #define EAP_AKA_PRIME_PERMANENT_PREFIX '6'
22f05cddf9SRui Paulo #define EAP_AKA_PRIME_PSEUDONYM_PREFIX '7'
23f05cddf9SRui Paulo #define EAP_AKA_PRIME_REAUTH_ID_PREFIX '8'
2439beb93cSSam Leffler 
25f05cddf9SRui Paulo enum eap_sim_db_method {
26f05cddf9SRui Paulo 	EAP_SIM_DB_SIM,
27f05cddf9SRui Paulo 	EAP_SIM_DB_AKA,
28f05cddf9SRui Paulo 	EAP_SIM_DB_AKA_PRIME
29f05cddf9SRui Paulo };
30f05cddf9SRui Paulo 
31f05cddf9SRui Paulo struct eap_sim_db_data;
32f05cddf9SRui Paulo 
33f05cddf9SRui Paulo struct eap_sim_db_data *
34*780fb4a2SCy Schubert eap_sim_db_init(const char *config, unsigned int db_timeout,
3539beb93cSSam Leffler 		void (*get_complete_cb)(void *ctx, void *session_ctx),
3639beb93cSSam Leffler 		void *ctx);
3739beb93cSSam Leffler 
3839beb93cSSam Leffler void eap_sim_db_deinit(void *priv);
3939beb93cSSam Leffler 
40f05cddf9SRui Paulo int eap_sim_db_get_gsm_triplets(struct eap_sim_db_data *data,
41f05cddf9SRui Paulo 				const char *username, int max_chal,
4239beb93cSSam Leffler 				u8 *_rand, u8 *kc, u8 *sres,
4339beb93cSSam Leffler 				void *cb_session_ctx);
4439beb93cSSam Leffler 
4539beb93cSSam Leffler #define EAP_SIM_DB_FAILURE -1
4639beb93cSSam Leffler #define EAP_SIM_DB_PENDING -2
4739beb93cSSam Leffler 
48f05cddf9SRui Paulo char * eap_sim_db_get_next_pseudonym(struct eap_sim_db_data *data,
49f05cddf9SRui Paulo 				     enum eap_sim_db_method method);
5039beb93cSSam Leffler 
51f05cddf9SRui Paulo char * eap_sim_db_get_next_reauth_id(struct eap_sim_db_data *data,
52f05cddf9SRui Paulo 				     enum eap_sim_db_method method);
5339beb93cSSam Leffler 
54f05cddf9SRui Paulo int eap_sim_db_add_pseudonym(struct eap_sim_db_data *data,
55f05cddf9SRui Paulo 			     const char *permanent, char *pseudonym);
5639beb93cSSam Leffler 
57f05cddf9SRui Paulo int eap_sim_db_add_reauth(struct eap_sim_db_data *data, const char *permanent,
58f05cddf9SRui Paulo 			  char *reauth_id, u16 counter, const u8 *mk);
59f05cddf9SRui Paulo int eap_sim_db_add_reauth_prime(struct eap_sim_db_data *data,
60f05cddf9SRui Paulo 				const char *permanent,
61f05cddf9SRui Paulo 				char *reauth_id, u16 counter, const u8 *k_encr,
62f05cddf9SRui Paulo 				const u8 *k_aut, const u8 *k_re);
6339beb93cSSam Leffler 
64f05cddf9SRui Paulo const char * eap_sim_db_get_permanent(struct eap_sim_db_data *data,
65f05cddf9SRui Paulo 				      const char *pseudonym);
6639beb93cSSam Leffler 
6739beb93cSSam Leffler struct eap_sim_reauth {
6839beb93cSSam Leffler 	struct eap_sim_reauth *next;
69f05cddf9SRui Paulo 	char *permanent; /* Permanent username */
70f05cddf9SRui Paulo 	char *reauth_id; /* Fast re-authentication username */
7139beb93cSSam Leffler 	u16 counter;
7239beb93cSSam Leffler 	u8 mk[EAP_SIM_MK_LEN];
7339beb93cSSam Leffler 	u8 k_encr[EAP_SIM_K_ENCR_LEN];
7439beb93cSSam Leffler 	u8 k_aut[EAP_AKA_PRIME_K_AUT_LEN];
7539beb93cSSam Leffler 	u8 k_re[EAP_AKA_PRIME_K_RE_LEN];
7639beb93cSSam Leffler };
7739beb93cSSam Leffler 
7839beb93cSSam Leffler struct eap_sim_reauth *
79f05cddf9SRui Paulo eap_sim_db_get_reauth_entry(struct eap_sim_db_data *data,
80f05cddf9SRui Paulo 			    const char *reauth_id);
8139beb93cSSam Leffler 
82f05cddf9SRui Paulo void eap_sim_db_remove_reauth(struct eap_sim_db_data *data,
83f05cddf9SRui Paulo 			      struct eap_sim_reauth *reauth);
8439beb93cSSam Leffler 
85f05cddf9SRui Paulo int eap_sim_db_get_aka_auth(struct eap_sim_db_data *data, const char *username,
86f05cddf9SRui Paulo 			    u8 *_rand, u8 *autn, u8 *ik, u8 *ck,
87f05cddf9SRui Paulo 			    u8 *res, size_t *res_len, void *cb_session_ctx);
8839beb93cSSam Leffler 
89f05cddf9SRui Paulo int eap_sim_db_resynchronize(struct eap_sim_db_data *data,
90f05cddf9SRui Paulo 			     const char *username, const u8 *auts,
9139beb93cSSam Leffler 			     const u8 *_rand);
9239beb93cSSam Leffler 
93f05cddf9SRui Paulo char * sim_get_username(const u8 *identity, size_t identity_len);
94f05cddf9SRui Paulo 
9539beb93cSSam Leffler #endif /* EAP_SIM_DB_H */
96