xref: /freebsd/crypto/openssh/dns.h (revision 7fdf597e96a02165cfe22ff357b857d5fa15ed8a)
1 /* $OpenBSD: dns.h,v 1.20 2023/02/10 04:56:30 djm Exp $ */
2 
3 /*
4  * Copyright (c) 2003 Wesley Griffin. All rights reserved.
5  * Copyright (c) 2003 Jakob Schlyter. All rights reserved.
6  *
7  * Redistribution and use in source and binary forms, with or without
8  * modification, are permitted provided that the following conditions
9  * are met:
10  * 1. Redistributions of source code must retain the above copyright
11  *    notice, this list of conditions and the following disclaimer.
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in the
14  *    documentation and/or other materials provided with the distribution.
15  *
16  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
17  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
18  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
19  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
20  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
21  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
22  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
23  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
24  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
25  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
26  */
27 
28 #ifndef DNS_H
29 #define DNS_H
30 
31 enum sshfp_types {
32 	SSHFP_KEY_RESERVED = 0,
33 	SSHFP_KEY_RSA = 1,
34 	SSHFP_KEY_DSA = 2,
35 	SSHFP_KEY_ECDSA = 3,
36 	SSHFP_KEY_ED25519 = 4,
37 	SSHFP_KEY_XMSS = 5
38 };
39 
40 enum sshfp_hashes {
41 	SSHFP_HASH_RESERVED = 0,
42 	SSHFP_HASH_SHA1 = 1,
43 	SSHFP_HASH_SHA256 = 2,
44 	SSHFP_HASH_MAX = 3
45 };
46 
47 #define DNS_RDATACLASS_IN	1
48 #define DNS_RDATATYPE_SSHFP	44
49 
50 #define DNS_VERIFY_FOUND	0x00000001
51 #define DNS_VERIFY_MATCH	0x00000002
52 #define DNS_VERIFY_SECURE	0x00000004
53 #define DNS_VERIFY_FAILED	0x00000008
54 
55 int	verify_host_key_dns(const char *, struct sockaddr *,
56     struct sshkey *, int *);
57 int	export_dns_rr(const char *, struct sshkey *, FILE *, int, int);
58 
59 #endif /* DNS_H */
60