xref: /freebsd/crypto/openssh/dns.h (revision d8a0fe102c0cfdfcd5b818f850eff09d8536c9bc)
1 /* $OpenBSD: dns.h,v 1.15 2015/05/08 06:45:13 djm Exp $ */
2 
3 /*
4  * Copyright (c) 2003 Wesley Griffin. All rights reserved.
5  * Copyright (c) 2003 Jakob Schlyter. All rights reserved.
6  *
7  * Redistribution and use in source and binary forms, with or without
8  * modification, are permitted provided that the following conditions
9  * are met:
10  * 1. Redistributions of source code must retain the above copyright
11  *    notice, this list of conditions and the following disclaimer.
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in the
14  *    documentation and/or other materials provided with the distribution.
15  *
16  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
17  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
18  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
19  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
20  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
21  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
22  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
23  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
24  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
25  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
26  */
27 
28 #ifndef DNS_H
29 #define DNS_H
30 
31 enum sshfp_types {
32 	SSHFP_KEY_RESERVED = 0,
33 	SSHFP_KEY_RSA = 1,
34 	SSHFP_KEY_DSA = 2,
35 	SSHFP_KEY_ECDSA = 3,
36 	SSHFP_KEY_ED25519 = 4
37 };
38 
39 enum sshfp_hashes {
40 	SSHFP_HASH_RESERVED = 0,
41 	SSHFP_HASH_SHA1 = 1,
42 	SSHFP_HASH_SHA256 = 2,
43 	SSHFP_HASH_MAX = 3
44 };
45 
46 #define DNS_RDATACLASS_IN	1
47 #define DNS_RDATATYPE_SSHFP	44
48 
49 #define DNS_VERIFY_FOUND	0x00000001
50 #define DNS_VERIFY_MATCH	0x00000002
51 #define DNS_VERIFY_SECURE	0x00000004
52 
53 int	verify_host_key_dns(const char *, struct sockaddr *,
54     struct sshkey *, int *);
55 int	export_dns_rr(const char *, struct sshkey *, FILE *, int);
56 
57 #endif /* DNS_H */
58