17c478bd9Sstevel@tonic-gate /* 27c478bd9Sstevel@tonic-gate * CDDL HEADER START 37c478bd9Sstevel@tonic-gate * 47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 5c892ebf1Skrishna * Common Development and Distribution License (the "License"). 6c892ebf1Skrishna * You may not use this file except in compliance with the License. 77c478bd9Sstevel@tonic-gate * 87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 117c478bd9Sstevel@tonic-gate * and limitations under the License. 127c478bd9Sstevel@tonic-gate * 137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 187c478bd9Sstevel@tonic-gate * 197c478bd9Sstevel@tonic-gate * CDDL HEADER END 207c478bd9Sstevel@tonic-gate */ 217c478bd9Sstevel@tonic-gate /* 22*6a1073f8Skrishna * Copyright 2007 Sun Microsystems, Inc. All rights reserved. 237c478bd9Sstevel@tonic-gate * Use is subject to license terms. 247c478bd9Sstevel@tonic-gate */ 257c478bd9Sstevel@tonic-gate 267c478bd9Sstevel@tonic-gate #ifndef _SYS_CRYPTO_COMMON_H 277c478bd9Sstevel@tonic-gate #define _SYS_CRYPTO_COMMON_H 287c478bd9Sstevel@tonic-gate 297c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 307c478bd9Sstevel@tonic-gate 317c478bd9Sstevel@tonic-gate /* 327c478bd9Sstevel@tonic-gate * Header file for the common data structures of the cryptographic framework 337c478bd9Sstevel@tonic-gate */ 347c478bd9Sstevel@tonic-gate 357c478bd9Sstevel@tonic-gate #ifdef __cplusplus 367c478bd9Sstevel@tonic-gate extern "C" { 377c478bd9Sstevel@tonic-gate #endif 387c478bd9Sstevel@tonic-gate 397c478bd9Sstevel@tonic-gate #include <sys/types.h> 407c478bd9Sstevel@tonic-gate #include <sys/uio.h> 417c478bd9Sstevel@tonic-gate #include <sys/stream.h> 427c478bd9Sstevel@tonic-gate #include <sys/mutex.h> 437c478bd9Sstevel@tonic-gate #include <sys/condvar.h> 447c478bd9Sstevel@tonic-gate 457c478bd9Sstevel@tonic-gate 467c478bd9Sstevel@tonic-gate /* Cryptographic Mechanisms */ 477c478bd9Sstevel@tonic-gate 487c478bd9Sstevel@tonic-gate #define CRYPTO_MAX_MECH_NAME 32 497c478bd9Sstevel@tonic-gate typedef char crypto_mech_name_t[CRYPTO_MAX_MECH_NAME]; 507c478bd9Sstevel@tonic-gate 517c478bd9Sstevel@tonic-gate typedef uint64_t crypto_mech_type_t; 527c478bd9Sstevel@tonic-gate 537c478bd9Sstevel@tonic-gate typedef struct crypto_mechanism { 547c478bd9Sstevel@tonic-gate crypto_mech_type_t cm_type; /* mechanism type */ 557c478bd9Sstevel@tonic-gate caddr_t cm_param; /* mech. parameter */ 567c478bd9Sstevel@tonic-gate size_t cm_param_len; /* mech. parameter len */ 577c478bd9Sstevel@tonic-gate } crypto_mechanism_t; 587c478bd9Sstevel@tonic-gate 59f317a3a3Skrishna #ifdef _SYSCALL32 60f317a3a3Skrishna 61f317a3a3Skrishna typedef struct crypto_mechanism32 { 62f317a3a3Skrishna crypto_mech_type_t cm_type; /* mechanism type */ 63f317a3a3Skrishna caddr32_t cm_param; /* mech. parameter */ 64f317a3a3Skrishna size32_t cm_param_len; /* mech. parameter len */ 65f317a3a3Skrishna } crypto_mechanism32_t; 66f317a3a3Skrishna 67f317a3a3Skrishna #endif /* _SYSCALL32 */ 68f317a3a3Skrishna 697c478bd9Sstevel@tonic-gate /* 70*6a1073f8Skrishna * The measurement unit bit flag for a mechanism's minimum or maximum key size. 717c478bd9Sstevel@tonic-gate * The unit are mechanism dependant. It can be in bits or in bytes. 727c478bd9Sstevel@tonic-gate */ 737c478bd9Sstevel@tonic-gate typedef uint32_t crypto_keysize_unit_t; 747c478bd9Sstevel@tonic-gate 75*6a1073f8Skrishna /* 76*6a1073f8Skrishna * The following bit flags are valid in cm_mech_flags field in 77*6a1073f8Skrishna * the crypto_mech_info_t structure of the SPI. 78*6a1073f8Skrishna * 79*6a1073f8Skrishna * Only the first two bit flags are valid in mi_keysize_unit 80*6a1073f8Skrishna * field in the crypto_mechanism_info_t structure of the API. 81*6a1073f8Skrishna */ 827c478bd9Sstevel@tonic-gate #define CRYPTO_KEYSIZE_UNIT_IN_BITS 0x00000001 837c478bd9Sstevel@tonic-gate #define CRYPTO_KEYSIZE_UNIT_IN_BYTES 0x00000002 84*6a1073f8Skrishna #define CRYPTO_CAN_SHARE_OPSTATE 0x00000004 /* supports sharing */ 857c478bd9Sstevel@tonic-gate 867c478bd9Sstevel@tonic-gate 877c478bd9Sstevel@tonic-gate /* Mechanisms supported out-of-the-box */ 887c478bd9Sstevel@tonic-gate #define SUN_CKM_MD5 "CKM_MD5" 897c478bd9Sstevel@tonic-gate #define SUN_CKM_MD5_HMAC "CKM_MD5_HMAC" 907c478bd9Sstevel@tonic-gate #define SUN_CKM_MD5_HMAC_GENERAL "CKM_MD5_HMAC_GENERAL" 917c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA1 "CKM_SHA_1" 927c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA1_HMAC "CKM_SHA_1_HMAC" 937c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA1_HMAC_GENERAL "CKM_SHA_1_HMAC_GENERAL" 947c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA256 "CKM_SHA256" 957c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA256_HMAC "CKM_SHA256_HMAC" 967c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA256_HMAC_GENERAL "CKM_SHA256_HMAC_GENERAL" 977c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA384 "CKM_SHA384" 987c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA384_HMAC "CKM_SHA384_HMAC" 997c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA384_HMAC_GENERAL "CKM_SHA384_HMAC_GENERAL" 1007c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA512 "CKM_SHA512" 1017c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA512_HMAC "CKM_SHA512_HMAC" 1027c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA512_HMAC_GENERAL "CKM_SHA512_HMAC_GENERAL" 1037c478bd9Sstevel@tonic-gate #define SUN_CKM_DES_CBC "CKM_DES_CBC" 1047c478bd9Sstevel@tonic-gate #define SUN_CKM_DES3_CBC "CKM_DES3_CBC" 1057c478bd9Sstevel@tonic-gate #define SUN_CKM_DES_ECB "CKM_DES_ECB" 1067c478bd9Sstevel@tonic-gate #define SUN_CKM_DES3_ECB "CKM_DES3_ECB" 107f66d273dSizick #define SUN_CKM_BLOWFISH_CBC "CKM_BLOWFISH_CBC" 108f66d273dSizick #define SUN_CKM_BLOWFISH_ECB "CKM_BLOWFISH_ECB" 1097c478bd9Sstevel@tonic-gate #define SUN_CKM_AES_CBC "CKM_AES_CBC" 1107c478bd9Sstevel@tonic-gate #define SUN_CKM_AES_ECB "CKM_AES_ECB" 111894b2776Smcpowers #define SUN_CKM_AES_CTR "CKM_AES_CTR" 1127c478bd9Sstevel@tonic-gate #define SUN_CKM_RC4 "CKM_RC4" 1137c478bd9Sstevel@tonic-gate #define SUN_CKM_RSA_PKCS "CKM_RSA_PKCS" 1147c478bd9Sstevel@tonic-gate #define SUN_CKM_RSA_X_509 "CKM_RSA_X_509" 1157c478bd9Sstevel@tonic-gate #define SUN_CKM_MD5_RSA_PKCS "CKM_MD5_RSA_PKCS" 1167c478bd9Sstevel@tonic-gate #define SUN_CKM_SHA1_RSA_PKCS "CKM_SHA1_RSA_PKCS" 117f66d273dSizick #define SUN_CKM_SHA256_RSA_PKCS "CKM_SHA256_RSA_PKCS" 118f66d273dSizick #define SUN_CKM_SHA384_RSA_PKCS "CKM_SHA384_RSA_PKCS" 119f66d273dSizick #define SUN_CKM_SHA512_RSA_PKCS "CKM_SHA512_RSA_PKCS" 1207c478bd9Sstevel@tonic-gate 121*6a1073f8Skrishna /* Shared operation context format for CKM_RC4 */ 122*6a1073f8Skrishna typedef struct { 123*6a1073f8Skrishna uchar_t arr[256]; 124*6a1073f8Skrishna uchar_t i, j; 125*6a1073f8Skrishna uint64_t pad; /* For 64-bit alignment */ 126*6a1073f8Skrishna } arcfour_state_t; 127*6a1073f8Skrishna 1287c478bd9Sstevel@tonic-gate 1297c478bd9Sstevel@tonic-gate /* Data arguments of cryptographic operations */ 1307c478bd9Sstevel@tonic-gate 1317c478bd9Sstevel@tonic-gate typedef enum crypto_data_format { 1327c478bd9Sstevel@tonic-gate CRYPTO_DATA_RAW = 1, 1337c478bd9Sstevel@tonic-gate CRYPTO_DATA_UIO, 1347c478bd9Sstevel@tonic-gate CRYPTO_DATA_MBLK 1357c478bd9Sstevel@tonic-gate } crypto_data_format_t; 1367c478bd9Sstevel@tonic-gate 1377c478bd9Sstevel@tonic-gate typedef struct crypto_data { 1387c478bd9Sstevel@tonic-gate crypto_data_format_t cd_format; /* Format identifier */ 1397c478bd9Sstevel@tonic-gate off_t cd_offset; /* Offset from the beginning */ 1407c478bd9Sstevel@tonic-gate size_t cd_length; /* # of bytes in use */ 1417c478bd9Sstevel@tonic-gate caddr_t cd_miscdata; /* ancillary data */ 1427c478bd9Sstevel@tonic-gate union { 1437c478bd9Sstevel@tonic-gate /* Raw format */ 1447c478bd9Sstevel@tonic-gate iovec_t cdu_raw; /* Pointer and length */ 1457c478bd9Sstevel@tonic-gate 1467c478bd9Sstevel@tonic-gate /* uio scatter-gather format */ 1477c478bd9Sstevel@tonic-gate uio_t *cdu_uio; 1487c478bd9Sstevel@tonic-gate 1497c478bd9Sstevel@tonic-gate /* mblk scatter-gather format */ 1507c478bd9Sstevel@tonic-gate mblk_t *cdu_mp; /* The mblk chain */ 1517c478bd9Sstevel@tonic-gate 1527c478bd9Sstevel@tonic-gate } cdu; /* Crypto Data Union */ 1537c478bd9Sstevel@tonic-gate } crypto_data_t; 1547c478bd9Sstevel@tonic-gate 1557c478bd9Sstevel@tonic-gate #define cd_raw cdu.cdu_raw 1567c478bd9Sstevel@tonic-gate #define cd_uio cdu.cdu_uio 1577c478bd9Sstevel@tonic-gate #define cd_mp cdu.cdu_mp 1587c478bd9Sstevel@tonic-gate 1597c478bd9Sstevel@tonic-gate typedef struct crypto_dual_data { 1607c478bd9Sstevel@tonic-gate crypto_data_t dd_data; /* The data */ 1617c478bd9Sstevel@tonic-gate off_t dd_offset2; /* Used by dual operation */ 1627c478bd9Sstevel@tonic-gate size_t dd_len2; /* # of bytes to take */ 1637c478bd9Sstevel@tonic-gate } crypto_dual_data_t; 1647c478bd9Sstevel@tonic-gate 1657c478bd9Sstevel@tonic-gate #define dd_format dd_data.cd_format 1667c478bd9Sstevel@tonic-gate #define dd_offset1 dd_data.cd_offset 1677c478bd9Sstevel@tonic-gate #define dd_len1 dd_data.cd_length 1687c478bd9Sstevel@tonic-gate #define dd_miscdata dd_data.cd_miscdata 1697c478bd9Sstevel@tonic-gate #define dd_raw dd_data.cd_raw 1707c478bd9Sstevel@tonic-gate #define dd_uio dd_data.cd_uio 1717c478bd9Sstevel@tonic-gate #define dd_mp dd_data.cd_mp 1727c478bd9Sstevel@tonic-gate 1737c478bd9Sstevel@tonic-gate /* The keys, and their contents */ 1747c478bd9Sstevel@tonic-gate 1757c478bd9Sstevel@tonic-gate typedef enum { 1767c478bd9Sstevel@tonic-gate CRYPTO_KEY_RAW = 1, /* ck_data is a cleartext key */ 1777c478bd9Sstevel@tonic-gate CRYPTO_KEY_REFERENCE, /* ck_obj_id is an opaque reference */ 1787c478bd9Sstevel@tonic-gate CRYPTO_KEY_ATTR_LIST /* ck_attrs is a list of object attributes */ 1797c478bd9Sstevel@tonic-gate } crypto_key_format_t; 1807c478bd9Sstevel@tonic-gate 1817c478bd9Sstevel@tonic-gate typedef uint64_t crypto_attr_type_t; 1827c478bd9Sstevel@tonic-gate 1837c478bd9Sstevel@tonic-gate /* Attribute types to use for passing a RSA public key or a private key. */ 1847c478bd9Sstevel@tonic-gate #define SUN_CKA_MODULUS 0x00000120 1857c478bd9Sstevel@tonic-gate #define SUN_CKA_MODULUS_BITS 0x00000121 1867c478bd9Sstevel@tonic-gate #define SUN_CKA_PUBLIC_EXPONENT 0x00000122 1877c478bd9Sstevel@tonic-gate #define SUN_CKA_PRIVATE_EXPONENT 0x00000123 1887c478bd9Sstevel@tonic-gate #define SUN_CKA_PRIME_1 0x00000124 1897c478bd9Sstevel@tonic-gate #define SUN_CKA_PRIME_2 0x00000125 1907c478bd9Sstevel@tonic-gate #define SUN_CKA_EXPONENT_1 0x00000126 1917c478bd9Sstevel@tonic-gate #define SUN_CKA_EXPONENT_2 0x00000127 1927c478bd9Sstevel@tonic-gate #define SUN_CKA_COEFFICIENT 0x00000128 1937c478bd9Sstevel@tonic-gate #define SUN_CKA_PRIME 0x00000130 1947c478bd9Sstevel@tonic-gate #define SUN_CKA_SUBPRIME 0x00000131 1957c478bd9Sstevel@tonic-gate #define SUN_CKA_BASE 0x00000132 1967c478bd9Sstevel@tonic-gate 1977c478bd9Sstevel@tonic-gate typedef uint32_t crypto_object_id_t; 1987c478bd9Sstevel@tonic-gate 1997c478bd9Sstevel@tonic-gate typedef struct crypto_object_attribute { 2007c478bd9Sstevel@tonic-gate crypto_attr_type_t oa_type; /* attribute type */ 2017c478bd9Sstevel@tonic-gate caddr_t oa_value; /* attribute value */ 2027c478bd9Sstevel@tonic-gate ssize_t oa_value_len; /* length of attribute value */ 2037c478bd9Sstevel@tonic-gate } crypto_object_attribute_t; 2047c478bd9Sstevel@tonic-gate 2057c478bd9Sstevel@tonic-gate typedef struct crypto_key { 2067c478bd9Sstevel@tonic-gate crypto_key_format_t ck_format; /* format identifier */ 2077c478bd9Sstevel@tonic-gate union { 2087c478bd9Sstevel@tonic-gate /* for CRYPTO_KEY_RAW ck_format */ 2097c478bd9Sstevel@tonic-gate struct { 2107c478bd9Sstevel@tonic-gate uint_t cku_v_length; /* # of bits in ck_data */ 2117c478bd9Sstevel@tonic-gate void *cku_v_data; /* ptr to key value */ 2127c478bd9Sstevel@tonic-gate } cku_key_value; 2137c478bd9Sstevel@tonic-gate 2147c478bd9Sstevel@tonic-gate /* for CRYPTO_KEY_REFERENCE ck_format */ 2157c478bd9Sstevel@tonic-gate crypto_object_id_t cku_key_id; /* reference to object key */ 2167c478bd9Sstevel@tonic-gate 2177c478bd9Sstevel@tonic-gate /* for CRYPTO_KEY_ATTR_LIST ck_format */ 2187c478bd9Sstevel@tonic-gate struct { 2197c478bd9Sstevel@tonic-gate uint_t cku_a_count; /* number of attributes */ 2207c478bd9Sstevel@tonic-gate crypto_object_attribute_t *cku_a_oattr; 2217c478bd9Sstevel@tonic-gate } cku_key_attrs; 2227c478bd9Sstevel@tonic-gate } cku_data; /* Crypto Key union */ 2237c478bd9Sstevel@tonic-gate } crypto_key_t; 2247c478bd9Sstevel@tonic-gate 225f317a3a3Skrishna #ifdef _SYSCALL32 226f317a3a3Skrishna 227f317a3a3Skrishna typedef struct crypto_object_attribute32 { 228f317a3a3Skrishna uint64_t oa_type; /* attribute type */ 229f317a3a3Skrishna caddr32_t oa_value; /* attribute value */ 230f317a3a3Skrishna ssize32_t oa_value_len; /* length of attribute value */ 231f317a3a3Skrishna } crypto_object_attribute32_t; 232f317a3a3Skrishna 233f317a3a3Skrishna typedef struct crypto_key32 { 234f317a3a3Skrishna crypto_key_format_t ck_format; /* format identifier */ 235f317a3a3Skrishna union { 236f317a3a3Skrishna /* for CRYPTO_KEY_RAW ck_format */ 237f317a3a3Skrishna struct { 238f317a3a3Skrishna uint32_t cku_v_length; /* # of bytes in ck_data */ 239f317a3a3Skrishna caddr32_t cku_v_data; /* ptr to key value */ 240f317a3a3Skrishna } cku_key_value; 241f317a3a3Skrishna 242f317a3a3Skrishna /* for CRYPTO_KEY_REFERENCE ck_format */ 243f317a3a3Skrishna crypto_object_id_t cku_key_id; /* reference to object key */ 244f317a3a3Skrishna 245f317a3a3Skrishna /* for CRYPTO_KEY_ATTR_LIST ck_format */ 246f317a3a3Skrishna struct { 247f317a3a3Skrishna uint32_t cku_a_count; /* number of attributes */ 248f317a3a3Skrishna caddr32_t cku_a_oattr; 249f317a3a3Skrishna } cku_key_attrs; 250f317a3a3Skrishna } cku_data; /* Crypto Key union */ 251f317a3a3Skrishna } crypto_key32_t; 252f317a3a3Skrishna 253f317a3a3Skrishna #endif /* _SYSCALL32 */ 254f317a3a3Skrishna 2557c478bd9Sstevel@tonic-gate #define ck_data cku_data.cku_key_value.cku_v_data 2567c478bd9Sstevel@tonic-gate #define ck_length cku_data.cku_key_value.cku_v_length 2577c478bd9Sstevel@tonic-gate #define ck_obj_id cku_data.cku_key_id 2587c478bd9Sstevel@tonic-gate #define ck_count cku_data.cku_key_attrs.cku_a_count 2597c478bd9Sstevel@tonic-gate #define ck_attrs cku_data.cku_key_attrs.cku_a_oattr 2607c478bd9Sstevel@tonic-gate 2617c478bd9Sstevel@tonic-gate /* 2627c478bd9Sstevel@tonic-gate * Raw key lengths are expressed in number of bits. 2637c478bd9Sstevel@tonic-gate * The following macro returns the minimum number of 2647c478bd9Sstevel@tonic-gate * bytes that can contain the specified number of bits. 2657c478bd9Sstevel@tonic-gate */ 2667c478bd9Sstevel@tonic-gate #define CRYPTO_BITS2BYTES(n) (((n) + 7) >> 3) 2677c478bd9Sstevel@tonic-gate 2687c478bd9Sstevel@tonic-gate /* Providers */ 2697c478bd9Sstevel@tonic-gate 2707c478bd9Sstevel@tonic-gate typedef enum { 2717c478bd9Sstevel@tonic-gate CRYPTO_HW_PROVIDER = 0, 2727c478bd9Sstevel@tonic-gate CRYPTO_SW_PROVIDER, 2737c478bd9Sstevel@tonic-gate CRYPTO_LOGICAL_PROVIDER 2747c478bd9Sstevel@tonic-gate } crypto_provider_type_t; 2757c478bd9Sstevel@tonic-gate 2767c478bd9Sstevel@tonic-gate typedef uint32_t crypto_provider_id_t; 2777c478bd9Sstevel@tonic-gate #define KCF_PROVID_INVALID ((uint32_t)-1) 2787c478bd9Sstevel@tonic-gate 2797c478bd9Sstevel@tonic-gate typedef struct crypto_provider_entry { 2807c478bd9Sstevel@tonic-gate crypto_provider_id_t pe_provider_id; 2817c478bd9Sstevel@tonic-gate uint_t pe_mechanism_count; 2827c478bd9Sstevel@tonic-gate } crypto_provider_entry_t; 2837c478bd9Sstevel@tonic-gate 2847c478bd9Sstevel@tonic-gate typedef struct crypto_dev_list_entry { 2857c478bd9Sstevel@tonic-gate char le_dev_name[MAXNAMELEN]; 2867c478bd9Sstevel@tonic-gate uint_t le_dev_instance; 2877c478bd9Sstevel@tonic-gate uint_t le_mechanism_count; 2887c478bd9Sstevel@tonic-gate } crypto_dev_list_entry_t; 2897c478bd9Sstevel@tonic-gate 2907c478bd9Sstevel@tonic-gate /* User type for authentication ioctls and SPI entry points */ 2917c478bd9Sstevel@tonic-gate 2927c478bd9Sstevel@tonic-gate typedef enum crypto_user_type { 2937c478bd9Sstevel@tonic-gate CRYPTO_SO = 0, 2947c478bd9Sstevel@tonic-gate CRYPTO_USER 2957c478bd9Sstevel@tonic-gate } crypto_user_type_t; 2967c478bd9Sstevel@tonic-gate 2977c478bd9Sstevel@tonic-gate /* Version for provider management ioctls and SPI entry points */ 2987c478bd9Sstevel@tonic-gate 2997c478bd9Sstevel@tonic-gate typedef struct crypto_version { 3007c478bd9Sstevel@tonic-gate uchar_t cv_major; 3017c478bd9Sstevel@tonic-gate uchar_t cv_minor; 3027c478bd9Sstevel@tonic-gate } crypto_version_t; 3037c478bd9Sstevel@tonic-gate 3047c478bd9Sstevel@tonic-gate /* session data structure opaque to the consumer */ 3057c478bd9Sstevel@tonic-gate typedef void *crypto_session_t; 3067c478bd9Sstevel@tonic-gate 307c892ebf1Skrishna /* provider data structure opaque to the consumer */ 308894b2776Smcpowers typedef void *crypto_provider_t; 309894b2776Smcpowers 310c892ebf1Skrishna /* Limits used by both consumers and providers */ 311c892ebf1Skrishna #define CRYPTO_EXT_SIZE_LABEL 32 312c892ebf1Skrishna #define CRYPTO_EXT_SIZE_MANUF 32 313c892ebf1Skrishna #define CRYPTO_EXT_SIZE_MODEL 16 314c892ebf1Skrishna #define CRYPTO_EXT_SIZE_SERIAL 16 315c892ebf1Skrishna #define CRYPTO_EXT_SIZE_TIME 16 316c892ebf1Skrishna 317c892ebf1Skrishna typedef struct crypto_provider_ext_info { 318c892ebf1Skrishna uchar_t ei_label[CRYPTO_EXT_SIZE_LABEL]; 319c892ebf1Skrishna uchar_t ei_manufacturerID[CRYPTO_EXT_SIZE_MANUF]; 320c892ebf1Skrishna uchar_t ei_model[CRYPTO_EXT_SIZE_MODEL]; 321c892ebf1Skrishna uchar_t ei_serial_number[CRYPTO_EXT_SIZE_SERIAL]; 322c892ebf1Skrishna ulong_t ei_flags; 323c892ebf1Skrishna ulong_t ei_max_session_count; 324c892ebf1Skrishna ulong_t ei_max_pin_len; 325c892ebf1Skrishna ulong_t ei_min_pin_len; 326c892ebf1Skrishna ulong_t ei_total_public_memory; 327c892ebf1Skrishna ulong_t ei_free_public_memory; 328c892ebf1Skrishna ulong_t ei_total_private_memory; 329c892ebf1Skrishna ulong_t ei_free_private_memory; 330c892ebf1Skrishna crypto_version_t ei_hardware_version; 331c892ebf1Skrishna crypto_version_t ei_firmware_version; 332c892ebf1Skrishna uchar_t ei_time[CRYPTO_EXT_SIZE_TIME]; 333c892ebf1Skrishna } crypto_provider_ext_info_t; 334c892ebf1Skrishna 3357c478bd9Sstevel@tonic-gate typedef uint_t crypto_session_id_t; 3367c478bd9Sstevel@tonic-gate 3377c478bd9Sstevel@tonic-gate /* 3387c478bd9Sstevel@tonic-gate * Common cryptographic status and error codes. 3397c478bd9Sstevel@tonic-gate */ 3407c478bd9Sstevel@tonic-gate #define CRYPTO_SUCCESS 0x00000000 3417c478bd9Sstevel@tonic-gate #define CRYPTO_CANCEL 0x00000001 3427c478bd9Sstevel@tonic-gate #define CRYPTO_HOST_MEMORY 0x00000002 3437c478bd9Sstevel@tonic-gate #define CRYPTO_GENERAL_ERROR 0x00000003 3447c478bd9Sstevel@tonic-gate #define CRYPTO_FAILED 0x00000004 3457c478bd9Sstevel@tonic-gate #define CRYPTO_ARGUMENTS_BAD 0x00000005 3467c478bd9Sstevel@tonic-gate #define CRYPTO_ATTRIBUTE_READ_ONLY 0x00000006 3477c478bd9Sstevel@tonic-gate #define CRYPTO_ATTRIBUTE_SENSITIVE 0x00000007 3487c478bd9Sstevel@tonic-gate #define CRYPTO_ATTRIBUTE_TYPE_INVALID 0x00000008 3497c478bd9Sstevel@tonic-gate #define CRYPTO_ATTRIBUTE_VALUE_INVALID 0x00000009 3507c478bd9Sstevel@tonic-gate #define CRYPTO_CANCELED 0x0000000A 3517c478bd9Sstevel@tonic-gate #define CRYPTO_DATA_INVALID 0x0000000B 3527c478bd9Sstevel@tonic-gate #define CRYPTO_DATA_LEN_RANGE 0x0000000C 3537c478bd9Sstevel@tonic-gate #define CRYPTO_DEVICE_ERROR 0x0000000D 3547c478bd9Sstevel@tonic-gate #define CRYPTO_DEVICE_MEMORY 0x0000000E 3557c478bd9Sstevel@tonic-gate #define CRYPTO_DEVICE_REMOVED 0x0000000F 3567c478bd9Sstevel@tonic-gate #define CRYPTO_ENCRYPTED_DATA_INVALID 0x00000010 3577c478bd9Sstevel@tonic-gate #define CRYPTO_ENCRYPTED_DATA_LEN_RANGE 0x00000011 3587c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_HANDLE_INVALID 0x00000012 3597c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_SIZE_RANGE 0x00000013 3607c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_TYPE_INCONSISTENT 0x00000014 3617c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_NOT_NEEDED 0x00000015 3627c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_CHANGED 0x00000016 3637c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_NEEDED 0x00000017 3647c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_INDIGESTIBLE 0x00000018 3657c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_FUNCTION_NOT_PERMITTED 0x00000019 3667c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_NOT_WRAPPABLE 0x0000001A 3677c478bd9Sstevel@tonic-gate #define CRYPTO_KEY_UNEXTRACTABLE 0x0000001B 3687c478bd9Sstevel@tonic-gate #define CRYPTO_MECHANISM_INVALID 0x0000001C 3697c478bd9Sstevel@tonic-gate #define CRYPTO_MECHANISM_PARAM_INVALID 0x0000001D 3707c478bd9Sstevel@tonic-gate #define CRYPTO_OBJECT_HANDLE_INVALID 0x0000001E 3717c478bd9Sstevel@tonic-gate #define CRYPTO_OPERATION_IS_ACTIVE 0x0000001F 3727c478bd9Sstevel@tonic-gate #define CRYPTO_OPERATION_NOT_INITIALIZED 0x00000020 3737c478bd9Sstevel@tonic-gate #define CRYPTO_PIN_INCORRECT 0x00000021 3747c478bd9Sstevel@tonic-gate #define CRYPTO_PIN_INVALID 0x00000022 3757c478bd9Sstevel@tonic-gate #define CRYPTO_PIN_LEN_RANGE 0x00000023 3767c478bd9Sstevel@tonic-gate #define CRYPTO_PIN_EXPIRED 0x00000024 3777c478bd9Sstevel@tonic-gate #define CRYPTO_PIN_LOCKED 0x00000025 3787c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_CLOSED 0x00000026 3797c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_COUNT 0x00000027 3807c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_HANDLE_INVALID 0x00000028 3817c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_READ_ONLY 0x00000029 3827c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_EXISTS 0x0000002A 3837c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_READ_ONLY_EXISTS 0x0000002B 3847c478bd9Sstevel@tonic-gate #define CRYPTO_SESSION_READ_WRITE_SO_EXISTS 0x0000002C 3857c478bd9Sstevel@tonic-gate #define CRYPTO_SIGNATURE_INVALID 0x0000002D 3867c478bd9Sstevel@tonic-gate #define CRYPTO_SIGNATURE_LEN_RANGE 0x0000002E 3877c478bd9Sstevel@tonic-gate #define CRYPTO_TEMPLATE_INCOMPLETE 0x0000002F 3887c478bd9Sstevel@tonic-gate #define CRYPTO_TEMPLATE_INCONSISTENT 0x00000030 3897c478bd9Sstevel@tonic-gate #define CRYPTO_UNWRAPPING_KEY_HANDLE_INVALID 0x00000031 3907c478bd9Sstevel@tonic-gate #define CRYPTO_UNWRAPPING_KEY_SIZE_RANGE 0x00000032 3917c478bd9Sstevel@tonic-gate #define CRYPTO_UNWRAPPING_KEY_TYPE_INCONSISTENT 0x00000033 3927c478bd9Sstevel@tonic-gate #define CRYPTO_USER_ALREADY_LOGGED_IN 0x00000034 3937c478bd9Sstevel@tonic-gate #define CRYPTO_USER_NOT_LOGGED_IN 0x00000035 3947c478bd9Sstevel@tonic-gate #define CRYPTO_USER_PIN_NOT_INITIALIZED 0x00000036 3957c478bd9Sstevel@tonic-gate #define CRYPTO_USER_TYPE_INVALID 0x00000037 3967c478bd9Sstevel@tonic-gate #define CRYPTO_USER_ANOTHER_ALREADY_LOGGED_IN 0x00000038 3977c478bd9Sstevel@tonic-gate #define CRYPTO_USER_TOO_MANY_TYPES 0x00000039 3987c478bd9Sstevel@tonic-gate #define CRYPTO_WRAPPED_KEY_INVALID 0x0000003A 3997c478bd9Sstevel@tonic-gate #define CRYPTO_WRAPPED_KEY_LEN_RANGE 0x0000003B 4007c478bd9Sstevel@tonic-gate #define CRYPTO_WRAPPING_KEY_HANDLE_INVALID 0x0000003C 4017c478bd9Sstevel@tonic-gate #define CRYPTO_WRAPPING_KEY_SIZE_RANGE 0x0000003D 4027c478bd9Sstevel@tonic-gate #define CRYPTO_WRAPPING_KEY_TYPE_INCONSISTENT 0x0000003E 4037c478bd9Sstevel@tonic-gate #define CRYPTO_RANDOM_SEED_NOT_SUPPORTED 0x0000003F 4047c478bd9Sstevel@tonic-gate #define CRYPTO_RANDOM_NO_RNG 0x00000040 4057c478bd9Sstevel@tonic-gate #define CRYPTO_DOMAIN_PARAMS_INVALID 0x00000041 4067c478bd9Sstevel@tonic-gate #define CRYPTO_BUFFER_TOO_SMALL 0x00000042 4077c478bd9Sstevel@tonic-gate #define CRYPTO_INFORMATION_SENSITIVE 0x00000043 4087c478bd9Sstevel@tonic-gate #define CRYPTO_NOT_SUPPORTED 0x00000044 4097c478bd9Sstevel@tonic-gate 4107c478bd9Sstevel@tonic-gate #define CRYPTO_QUEUED 0x00000045 4117c478bd9Sstevel@tonic-gate #define CRYPTO_BUFFER_TOO_BIG 0x00000046 4127c478bd9Sstevel@tonic-gate #define CRYPTO_INVALID_CONTEXT 0x00000047 4137c478bd9Sstevel@tonic-gate #define CRYPTO_INVALID_MAC 0x00000048 4147c478bd9Sstevel@tonic-gate #define CRYPTO_MECH_NOT_SUPPORTED 0x00000049 4157c478bd9Sstevel@tonic-gate #define CRYPTO_INCONSISTENT_ATTRIBUTE 0x0000004A 4167c478bd9Sstevel@tonic-gate #define CRYPTO_NO_PERMISSION 0x0000004B 4177c478bd9Sstevel@tonic-gate #define CRYPTO_INVALID_PROVIDER_ID 0x0000004C 4187c478bd9Sstevel@tonic-gate #define CRYPTO_VERSION_MISMATCH 0x0000004D 4197c478bd9Sstevel@tonic-gate #define CRYPTO_BUSY 0x0000004E 4207c478bd9Sstevel@tonic-gate #define CRYPTO_UNKNOWN_PROVIDER 0x0000004F 4217c478bd9Sstevel@tonic-gate #define CRYPTO_MODVERIFICATION_FAILED 0x00000050 4227c478bd9Sstevel@tonic-gate #define CRYPTO_OLD_CTX_TEMPLATE 0x00000051 4237c478bd9Sstevel@tonic-gate #define CRYPTO_WEAK_KEY 0x00000052 4247c478bd9Sstevel@tonic-gate 4257c478bd9Sstevel@tonic-gate /* 4267c478bd9Sstevel@tonic-gate * Special values that can be used to indicate that information is unavailable 4277c478bd9Sstevel@tonic-gate * or that there is not practical limit. These values can be used 4287c478bd9Sstevel@tonic-gate * by fields of the SPI crypto_provider_ext_info(9S) structure. 4297c478bd9Sstevel@tonic-gate * The value of CRYPTO_UNAVAILABLE_INFO should be the same as 4307c478bd9Sstevel@tonic-gate * CK_UNAVAILABLE_INFO in the PKCS#11 spec. 4317c478bd9Sstevel@tonic-gate */ 4327c478bd9Sstevel@tonic-gate #define CRYPTO_UNAVAILABLE_INFO ((ulong_t)(-1)) 4337c478bd9Sstevel@tonic-gate #define CRYPTO_EFFECTIVELY_INFINITE 0x0 4347c478bd9Sstevel@tonic-gate 4357c478bd9Sstevel@tonic-gate #ifdef __cplusplus 4367c478bd9Sstevel@tonic-gate } 4377c478bd9Sstevel@tonic-gate #endif 4387c478bd9Sstevel@tonic-gate 4397c478bd9Sstevel@tonic-gate #endif /* _SYS_CRYPTO_COMMON_H */ 440