xref: /linux/include/uapi/linux/pfkeyv2.h (revision 607ca46e97a1b6594b29647d98a32d545c24bdff)
1*607ca46eSDavid Howells /* PF_KEY user interface, this is defined by rfc2367 so
2*607ca46eSDavid Howells  * do not make arbitrary modifications or else this header
3*607ca46eSDavid Howells  * file will not be compliant.
4*607ca46eSDavid Howells  */
5*607ca46eSDavid Howells 
6*607ca46eSDavid Howells #ifndef _LINUX_PFKEY2_H
7*607ca46eSDavid Howells #define _LINUX_PFKEY2_H
8*607ca46eSDavid Howells 
9*607ca46eSDavid Howells #include <linux/types.h>
10*607ca46eSDavid Howells 
11*607ca46eSDavid Howells #define PF_KEY_V2		2
12*607ca46eSDavid Howells #define PFKEYV2_REVISION	199806L
13*607ca46eSDavid Howells 
14*607ca46eSDavid Howells struct sadb_msg {
15*607ca46eSDavid Howells 	__u8		sadb_msg_version;
16*607ca46eSDavid Howells 	__u8		sadb_msg_type;
17*607ca46eSDavid Howells 	__u8		sadb_msg_errno;
18*607ca46eSDavid Howells 	__u8		sadb_msg_satype;
19*607ca46eSDavid Howells 	__u16	sadb_msg_len;
20*607ca46eSDavid Howells 	__u16	sadb_msg_reserved;
21*607ca46eSDavid Howells 	__u32	sadb_msg_seq;
22*607ca46eSDavid Howells 	__u32	sadb_msg_pid;
23*607ca46eSDavid Howells } __attribute__((packed));
24*607ca46eSDavid Howells /* sizeof(struct sadb_msg) == 16 */
25*607ca46eSDavid Howells 
26*607ca46eSDavid Howells struct sadb_ext {
27*607ca46eSDavid Howells 	__u16	sadb_ext_len;
28*607ca46eSDavid Howells 	__u16	sadb_ext_type;
29*607ca46eSDavid Howells } __attribute__((packed));
30*607ca46eSDavid Howells /* sizeof(struct sadb_ext) == 4 */
31*607ca46eSDavid Howells 
32*607ca46eSDavid Howells struct sadb_sa {
33*607ca46eSDavid Howells 	__u16	sadb_sa_len;
34*607ca46eSDavid Howells 	__u16	sadb_sa_exttype;
35*607ca46eSDavid Howells 	__be32		sadb_sa_spi;
36*607ca46eSDavid Howells 	__u8		sadb_sa_replay;
37*607ca46eSDavid Howells 	__u8		sadb_sa_state;
38*607ca46eSDavid Howells 	__u8		sadb_sa_auth;
39*607ca46eSDavid Howells 	__u8		sadb_sa_encrypt;
40*607ca46eSDavid Howells 	__u32	sadb_sa_flags;
41*607ca46eSDavid Howells } __attribute__((packed));
42*607ca46eSDavid Howells /* sizeof(struct sadb_sa) == 16 */
43*607ca46eSDavid Howells 
44*607ca46eSDavid Howells struct sadb_lifetime {
45*607ca46eSDavid Howells 	__u16	sadb_lifetime_len;
46*607ca46eSDavid Howells 	__u16	sadb_lifetime_exttype;
47*607ca46eSDavid Howells 	__u32	sadb_lifetime_allocations;
48*607ca46eSDavid Howells 	__u64	sadb_lifetime_bytes;
49*607ca46eSDavid Howells 	__u64	sadb_lifetime_addtime;
50*607ca46eSDavid Howells 	__u64	sadb_lifetime_usetime;
51*607ca46eSDavid Howells } __attribute__((packed));
52*607ca46eSDavid Howells /* sizeof(struct sadb_lifetime) == 32 */
53*607ca46eSDavid Howells 
54*607ca46eSDavid Howells struct sadb_address {
55*607ca46eSDavid Howells 	__u16	sadb_address_len;
56*607ca46eSDavid Howells 	__u16	sadb_address_exttype;
57*607ca46eSDavid Howells 	__u8		sadb_address_proto;
58*607ca46eSDavid Howells 	__u8		sadb_address_prefixlen;
59*607ca46eSDavid Howells 	__u16	sadb_address_reserved;
60*607ca46eSDavid Howells } __attribute__((packed));
61*607ca46eSDavid Howells /* sizeof(struct sadb_address) == 8 */
62*607ca46eSDavid Howells 
63*607ca46eSDavid Howells struct sadb_key {
64*607ca46eSDavid Howells 	__u16	sadb_key_len;
65*607ca46eSDavid Howells 	__u16	sadb_key_exttype;
66*607ca46eSDavid Howells 	__u16	sadb_key_bits;
67*607ca46eSDavid Howells 	__u16	sadb_key_reserved;
68*607ca46eSDavid Howells } __attribute__((packed));
69*607ca46eSDavid Howells /* sizeof(struct sadb_key) == 8 */
70*607ca46eSDavid Howells 
71*607ca46eSDavid Howells struct sadb_ident {
72*607ca46eSDavid Howells 	__u16	sadb_ident_len;
73*607ca46eSDavid Howells 	__u16	sadb_ident_exttype;
74*607ca46eSDavid Howells 	__u16	sadb_ident_type;
75*607ca46eSDavid Howells 	__u16	sadb_ident_reserved;
76*607ca46eSDavid Howells 	__u64	sadb_ident_id;
77*607ca46eSDavid Howells } __attribute__((packed));
78*607ca46eSDavid Howells /* sizeof(struct sadb_ident) == 16 */
79*607ca46eSDavid Howells 
80*607ca46eSDavid Howells struct sadb_sens {
81*607ca46eSDavid Howells 	__u16	sadb_sens_len;
82*607ca46eSDavid Howells 	__u16	sadb_sens_exttype;
83*607ca46eSDavid Howells 	__u32	sadb_sens_dpd;
84*607ca46eSDavid Howells 	__u8		sadb_sens_sens_level;
85*607ca46eSDavid Howells 	__u8		sadb_sens_sens_len;
86*607ca46eSDavid Howells 	__u8		sadb_sens_integ_level;
87*607ca46eSDavid Howells 	__u8		sadb_sens_integ_len;
88*607ca46eSDavid Howells 	__u32	sadb_sens_reserved;
89*607ca46eSDavid Howells } __attribute__((packed));
90*607ca46eSDavid Howells /* sizeof(struct sadb_sens) == 16 */
91*607ca46eSDavid Howells 
92*607ca46eSDavid Howells /* followed by:
93*607ca46eSDavid Howells 	__u64	sadb_sens_bitmap[sens_len];
94*607ca46eSDavid Howells 	__u64	sadb_integ_bitmap[integ_len];  */
95*607ca46eSDavid Howells 
96*607ca46eSDavid Howells struct sadb_prop {
97*607ca46eSDavid Howells 	__u16	sadb_prop_len;
98*607ca46eSDavid Howells 	__u16	sadb_prop_exttype;
99*607ca46eSDavid Howells 	__u8		sadb_prop_replay;
100*607ca46eSDavid Howells 	__u8		sadb_prop_reserved[3];
101*607ca46eSDavid Howells } __attribute__((packed));
102*607ca46eSDavid Howells /* sizeof(struct sadb_prop) == 8 */
103*607ca46eSDavid Howells 
104*607ca46eSDavid Howells /* followed by:
105*607ca46eSDavid Howells 	struct sadb_comb sadb_combs[(sadb_prop_len +
106*607ca46eSDavid Howells 		sizeof(__u64) - sizeof(struct sadb_prop)) /
107*607ca46eSDavid Howells 		sizeof(struct sadb_comb)]; */
108*607ca46eSDavid Howells 
109*607ca46eSDavid Howells struct sadb_comb {
110*607ca46eSDavid Howells 	__u8		sadb_comb_auth;
111*607ca46eSDavid Howells 	__u8		sadb_comb_encrypt;
112*607ca46eSDavid Howells 	__u16	sadb_comb_flags;
113*607ca46eSDavid Howells 	__u16	sadb_comb_auth_minbits;
114*607ca46eSDavid Howells 	__u16	sadb_comb_auth_maxbits;
115*607ca46eSDavid Howells 	__u16	sadb_comb_encrypt_minbits;
116*607ca46eSDavid Howells 	__u16	sadb_comb_encrypt_maxbits;
117*607ca46eSDavid Howells 	__u32	sadb_comb_reserved;
118*607ca46eSDavid Howells 	__u32	sadb_comb_soft_allocations;
119*607ca46eSDavid Howells 	__u32	sadb_comb_hard_allocations;
120*607ca46eSDavid Howells 	__u64	sadb_comb_soft_bytes;
121*607ca46eSDavid Howells 	__u64	sadb_comb_hard_bytes;
122*607ca46eSDavid Howells 	__u64	sadb_comb_soft_addtime;
123*607ca46eSDavid Howells 	__u64	sadb_comb_hard_addtime;
124*607ca46eSDavid Howells 	__u64	sadb_comb_soft_usetime;
125*607ca46eSDavid Howells 	__u64	sadb_comb_hard_usetime;
126*607ca46eSDavid Howells } __attribute__((packed));
127*607ca46eSDavid Howells /* sizeof(struct sadb_comb) == 72 */
128*607ca46eSDavid Howells 
129*607ca46eSDavid Howells struct sadb_supported {
130*607ca46eSDavid Howells 	__u16	sadb_supported_len;
131*607ca46eSDavid Howells 	__u16	sadb_supported_exttype;
132*607ca46eSDavid Howells 	__u32	sadb_supported_reserved;
133*607ca46eSDavid Howells } __attribute__((packed));
134*607ca46eSDavid Howells /* sizeof(struct sadb_supported) == 8 */
135*607ca46eSDavid Howells 
136*607ca46eSDavid Howells /* followed by:
137*607ca46eSDavid Howells 	struct sadb_alg sadb_algs[(sadb_supported_len +
138*607ca46eSDavid Howells 		sizeof(__u64) - sizeof(struct sadb_supported)) /
139*607ca46eSDavid Howells 		sizeof(struct sadb_alg)]; */
140*607ca46eSDavid Howells 
141*607ca46eSDavid Howells struct sadb_alg {
142*607ca46eSDavid Howells 	__u8		sadb_alg_id;
143*607ca46eSDavid Howells 	__u8		sadb_alg_ivlen;
144*607ca46eSDavid Howells 	__u16	sadb_alg_minbits;
145*607ca46eSDavid Howells 	__u16	sadb_alg_maxbits;
146*607ca46eSDavid Howells 	__u16	sadb_alg_reserved;
147*607ca46eSDavid Howells } __attribute__((packed));
148*607ca46eSDavid Howells /* sizeof(struct sadb_alg) == 8 */
149*607ca46eSDavid Howells 
150*607ca46eSDavid Howells struct sadb_spirange {
151*607ca46eSDavid Howells 	__u16	sadb_spirange_len;
152*607ca46eSDavid Howells 	__u16	sadb_spirange_exttype;
153*607ca46eSDavid Howells 	__u32	sadb_spirange_min;
154*607ca46eSDavid Howells 	__u32	sadb_spirange_max;
155*607ca46eSDavid Howells 	__u32	sadb_spirange_reserved;
156*607ca46eSDavid Howells } __attribute__((packed));
157*607ca46eSDavid Howells /* sizeof(struct sadb_spirange) == 16 */
158*607ca46eSDavid Howells 
159*607ca46eSDavid Howells struct sadb_x_kmprivate {
160*607ca46eSDavid Howells 	__u16	sadb_x_kmprivate_len;
161*607ca46eSDavid Howells 	__u16	sadb_x_kmprivate_exttype;
162*607ca46eSDavid Howells 	__u32	sadb_x_kmprivate_reserved;
163*607ca46eSDavid Howells } __attribute__((packed));
164*607ca46eSDavid Howells /* sizeof(struct sadb_x_kmprivate) == 8 */
165*607ca46eSDavid Howells 
166*607ca46eSDavid Howells struct sadb_x_sa2 {
167*607ca46eSDavid Howells 	__u16	sadb_x_sa2_len;
168*607ca46eSDavid Howells 	__u16	sadb_x_sa2_exttype;
169*607ca46eSDavid Howells 	__u8		sadb_x_sa2_mode;
170*607ca46eSDavid Howells 	__u8		sadb_x_sa2_reserved1;
171*607ca46eSDavid Howells 	__u16	sadb_x_sa2_reserved2;
172*607ca46eSDavid Howells 	__u32	sadb_x_sa2_sequence;
173*607ca46eSDavid Howells 	__u32	sadb_x_sa2_reqid;
174*607ca46eSDavid Howells } __attribute__((packed));
175*607ca46eSDavid Howells /* sizeof(struct sadb_x_sa2) == 16 */
176*607ca46eSDavid Howells 
177*607ca46eSDavid Howells struct sadb_x_policy {
178*607ca46eSDavid Howells 	__u16	sadb_x_policy_len;
179*607ca46eSDavid Howells 	__u16	sadb_x_policy_exttype;
180*607ca46eSDavid Howells 	__u16	sadb_x_policy_type;
181*607ca46eSDavid Howells 	__u8		sadb_x_policy_dir;
182*607ca46eSDavid Howells 	__u8		sadb_x_policy_reserved;
183*607ca46eSDavid Howells 	__u32	sadb_x_policy_id;
184*607ca46eSDavid Howells 	__u32	sadb_x_policy_priority;
185*607ca46eSDavid Howells } __attribute__((packed));
186*607ca46eSDavid Howells /* sizeof(struct sadb_x_policy) == 16 */
187*607ca46eSDavid Howells 
188*607ca46eSDavid Howells struct sadb_x_ipsecrequest {
189*607ca46eSDavid Howells 	__u16	sadb_x_ipsecrequest_len;
190*607ca46eSDavid Howells 	__u16	sadb_x_ipsecrequest_proto;
191*607ca46eSDavid Howells 	__u8		sadb_x_ipsecrequest_mode;
192*607ca46eSDavid Howells 	__u8		sadb_x_ipsecrequest_level;
193*607ca46eSDavid Howells 	__u16	sadb_x_ipsecrequest_reserved1;
194*607ca46eSDavid Howells 	__u32	sadb_x_ipsecrequest_reqid;
195*607ca46eSDavid Howells 	__u32	sadb_x_ipsecrequest_reserved2;
196*607ca46eSDavid Howells } __attribute__((packed));
197*607ca46eSDavid Howells /* sizeof(struct sadb_x_ipsecrequest) == 16 */
198*607ca46eSDavid Howells 
199*607ca46eSDavid Howells /* This defines the TYPE of Nat Traversal in use.  Currently only one
200*607ca46eSDavid Howells  * type of NAT-T is supported, draft-ietf-ipsec-udp-encaps-06
201*607ca46eSDavid Howells  */
202*607ca46eSDavid Howells struct sadb_x_nat_t_type {
203*607ca46eSDavid Howells 	__u16	sadb_x_nat_t_type_len;
204*607ca46eSDavid Howells 	__u16	sadb_x_nat_t_type_exttype;
205*607ca46eSDavid Howells 	__u8		sadb_x_nat_t_type_type;
206*607ca46eSDavid Howells 	__u8		sadb_x_nat_t_type_reserved[3];
207*607ca46eSDavid Howells } __attribute__((packed));
208*607ca46eSDavid Howells /* sizeof(struct sadb_x_nat_t_type) == 8 */
209*607ca46eSDavid Howells 
210*607ca46eSDavid Howells /* Pass a NAT Traversal port (Source or Dest port) */
211*607ca46eSDavid Howells struct sadb_x_nat_t_port {
212*607ca46eSDavid Howells 	__u16	sadb_x_nat_t_port_len;
213*607ca46eSDavid Howells 	__u16	sadb_x_nat_t_port_exttype;
214*607ca46eSDavid Howells 	__be16		sadb_x_nat_t_port_port;
215*607ca46eSDavid Howells 	__u16	sadb_x_nat_t_port_reserved;
216*607ca46eSDavid Howells } __attribute__((packed));
217*607ca46eSDavid Howells /* sizeof(struct sadb_x_nat_t_port) == 8 */
218*607ca46eSDavid Howells 
219*607ca46eSDavid Howells /* Generic LSM security context */
220*607ca46eSDavid Howells struct sadb_x_sec_ctx {
221*607ca46eSDavid Howells 	__u16	sadb_x_sec_len;
222*607ca46eSDavid Howells 	__u16	sadb_x_sec_exttype;
223*607ca46eSDavid Howells 	__u8		sadb_x_ctx_alg;  /* LSMs: e.g., selinux == 1 */
224*607ca46eSDavid Howells 	__u8		sadb_x_ctx_doi;
225*607ca46eSDavid Howells 	__u16	sadb_x_ctx_len;
226*607ca46eSDavid Howells } __attribute__((packed));
227*607ca46eSDavid Howells /* sizeof(struct sadb_sec_ctx) = 8 */
228*607ca46eSDavid Howells 
229*607ca46eSDavid Howells /* Used by MIGRATE to pass addresses IKE will use to perform
230*607ca46eSDavid Howells  * negotiation with the peer */
231*607ca46eSDavid Howells struct sadb_x_kmaddress {
232*607ca46eSDavid Howells 	__u16	sadb_x_kmaddress_len;
233*607ca46eSDavid Howells 	__u16	sadb_x_kmaddress_exttype;
234*607ca46eSDavid Howells 	__u32	sadb_x_kmaddress_reserved;
235*607ca46eSDavid Howells } __attribute__((packed));
236*607ca46eSDavid Howells /* sizeof(struct sadb_x_kmaddress) == 8 */
237*607ca46eSDavid Howells 
238*607ca46eSDavid Howells /* Message types */
239*607ca46eSDavid Howells #define SADB_RESERVED		0
240*607ca46eSDavid Howells #define SADB_GETSPI		1
241*607ca46eSDavid Howells #define SADB_UPDATE		2
242*607ca46eSDavid Howells #define SADB_ADD		3
243*607ca46eSDavid Howells #define SADB_DELETE		4
244*607ca46eSDavid Howells #define SADB_GET		5
245*607ca46eSDavid Howells #define SADB_ACQUIRE		6
246*607ca46eSDavid Howells #define SADB_REGISTER		7
247*607ca46eSDavid Howells #define SADB_EXPIRE		8
248*607ca46eSDavid Howells #define SADB_FLUSH		9
249*607ca46eSDavid Howells #define SADB_DUMP		10
250*607ca46eSDavid Howells #define SADB_X_PROMISC		11
251*607ca46eSDavid Howells #define SADB_X_PCHANGE		12
252*607ca46eSDavid Howells #define SADB_X_SPDUPDATE	13
253*607ca46eSDavid Howells #define SADB_X_SPDADD		14
254*607ca46eSDavid Howells #define SADB_X_SPDDELETE	15
255*607ca46eSDavid Howells #define SADB_X_SPDGET		16
256*607ca46eSDavid Howells #define SADB_X_SPDACQUIRE	17
257*607ca46eSDavid Howells #define SADB_X_SPDDUMP		18
258*607ca46eSDavid Howells #define SADB_X_SPDFLUSH		19
259*607ca46eSDavid Howells #define SADB_X_SPDSETIDX	20
260*607ca46eSDavid Howells #define SADB_X_SPDEXPIRE	21
261*607ca46eSDavid Howells #define SADB_X_SPDDELETE2	22
262*607ca46eSDavid Howells #define SADB_X_NAT_T_NEW_MAPPING	23
263*607ca46eSDavid Howells #define SADB_X_MIGRATE		24
264*607ca46eSDavid Howells #define SADB_MAX		24
265*607ca46eSDavid Howells 
266*607ca46eSDavid Howells /* Security Association flags */
267*607ca46eSDavid Howells #define SADB_SAFLAGS_PFS	1
268*607ca46eSDavid Howells #define SADB_SAFLAGS_NOPMTUDISC	0x20000000
269*607ca46eSDavid Howells #define SADB_SAFLAGS_DECAP_DSCP	0x40000000
270*607ca46eSDavid Howells #define SADB_SAFLAGS_NOECN	0x80000000
271*607ca46eSDavid Howells 
272*607ca46eSDavid Howells /* Security Association states */
273*607ca46eSDavid Howells #define SADB_SASTATE_LARVAL	0
274*607ca46eSDavid Howells #define SADB_SASTATE_MATURE	1
275*607ca46eSDavid Howells #define SADB_SASTATE_DYING	2
276*607ca46eSDavid Howells #define SADB_SASTATE_DEAD	3
277*607ca46eSDavid Howells #define SADB_SASTATE_MAX	3
278*607ca46eSDavid Howells 
279*607ca46eSDavid Howells /* Security Association types */
280*607ca46eSDavid Howells #define SADB_SATYPE_UNSPEC	0
281*607ca46eSDavid Howells #define SADB_SATYPE_AH		2
282*607ca46eSDavid Howells #define SADB_SATYPE_ESP		3
283*607ca46eSDavid Howells #define SADB_SATYPE_RSVP	5
284*607ca46eSDavid Howells #define SADB_SATYPE_OSPFV2	6
285*607ca46eSDavid Howells #define SADB_SATYPE_RIPV2	7
286*607ca46eSDavid Howells #define SADB_SATYPE_MIP		8
287*607ca46eSDavid Howells #define SADB_X_SATYPE_IPCOMP	9
288*607ca46eSDavid Howells #define SADB_SATYPE_MAX		9
289*607ca46eSDavid Howells 
290*607ca46eSDavid Howells /* Authentication algorithms */
291*607ca46eSDavid Howells #define SADB_AALG_NONE			0
292*607ca46eSDavid Howells #define SADB_AALG_MD5HMAC		2
293*607ca46eSDavid Howells #define SADB_AALG_SHA1HMAC		3
294*607ca46eSDavid Howells #define SADB_X_AALG_SHA2_256HMAC	5
295*607ca46eSDavid Howells #define SADB_X_AALG_SHA2_384HMAC	6
296*607ca46eSDavid Howells #define SADB_X_AALG_SHA2_512HMAC	7
297*607ca46eSDavid Howells #define SADB_X_AALG_RIPEMD160HMAC	8
298*607ca46eSDavid Howells #define SADB_X_AALG_AES_XCBC_MAC	9
299*607ca46eSDavid Howells #define SADB_X_AALG_NULL		251	/* kame */
300*607ca46eSDavid Howells #define SADB_AALG_MAX			251
301*607ca46eSDavid Howells 
302*607ca46eSDavid Howells /* Encryption algorithms */
303*607ca46eSDavid Howells #define SADB_EALG_NONE			0
304*607ca46eSDavid Howells #define SADB_EALG_DESCBC		2
305*607ca46eSDavid Howells #define SADB_EALG_3DESCBC		3
306*607ca46eSDavid Howells #define SADB_X_EALG_CASTCBC		6
307*607ca46eSDavid Howells #define SADB_X_EALG_BLOWFISHCBC		7
308*607ca46eSDavid Howells #define SADB_EALG_NULL			11
309*607ca46eSDavid Howells #define SADB_X_EALG_AESCBC		12
310*607ca46eSDavid Howells #define SADB_X_EALG_AESCTR		13
311*607ca46eSDavid Howells #define SADB_X_EALG_AES_CCM_ICV8	14
312*607ca46eSDavid Howells #define SADB_X_EALG_AES_CCM_ICV12	15
313*607ca46eSDavid Howells #define SADB_X_EALG_AES_CCM_ICV16	16
314*607ca46eSDavid Howells #define SADB_X_EALG_AES_GCM_ICV8	18
315*607ca46eSDavid Howells #define SADB_X_EALG_AES_GCM_ICV12	19
316*607ca46eSDavid Howells #define SADB_X_EALG_AES_GCM_ICV16	20
317*607ca46eSDavid Howells #define SADB_X_EALG_CAMELLIACBC		22
318*607ca46eSDavid Howells #define SADB_X_EALG_NULL_AES_GMAC	23
319*607ca46eSDavid Howells #define SADB_EALG_MAX                   253 /* last EALG */
320*607ca46eSDavid Howells /* private allocations should use 249-255 (RFC2407) */
321*607ca46eSDavid Howells #define SADB_X_EALG_SERPENTCBC  252     /* draft-ietf-ipsec-ciph-aes-cbc-00 */
322*607ca46eSDavid Howells #define SADB_X_EALG_TWOFISHCBC  253     /* draft-ietf-ipsec-ciph-aes-cbc-00 */
323*607ca46eSDavid Howells 
324*607ca46eSDavid Howells /* Compression algorithms */
325*607ca46eSDavid Howells #define SADB_X_CALG_NONE		0
326*607ca46eSDavid Howells #define SADB_X_CALG_OUI			1
327*607ca46eSDavid Howells #define SADB_X_CALG_DEFLATE		2
328*607ca46eSDavid Howells #define SADB_X_CALG_LZS			3
329*607ca46eSDavid Howells #define SADB_X_CALG_LZJH		4
330*607ca46eSDavid Howells #define SADB_X_CALG_MAX			4
331*607ca46eSDavid Howells 
332*607ca46eSDavid Howells /* Extension Header values */
333*607ca46eSDavid Howells #define SADB_EXT_RESERVED		0
334*607ca46eSDavid Howells #define SADB_EXT_SA			1
335*607ca46eSDavid Howells #define SADB_EXT_LIFETIME_CURRENT	2
336*607ca46eSDavid Howells #define SADB_EXT_LIFETIME_HARD		3
337*607ca46eSDavid Howells #define SADB_EXT_LIFETIME_SOFT		4
338*607ca46eSDavid Howells #define SADB_EXT_ADDRESS_SRC		5
339*607ca46eSDavid Howells #define SADB_EXT_ADDRESS_DST		6
340*607ca46eSDavid Howells #define SADB_EXT_ADDRESS_PROXY		7
341*607ca46eSDavid Howells #define SADB_EXT_KEY_AUTH		8
342*607ca46eSDavid Howells #define SADB_EXT_KEY_ENCRYPT		9
343*607ca46eSDavid Howells #define SADB_EXT_IDENTITY_SRC		10
344*607ca46eSDavid Howells #define SADB_EXT_IDENTITY_DST		11
345*607ca46eSDavid Howells #define SADB_EXT_SENSITIVITY		12
346*607ca46eSDavid Howells #define SADB_EXT_PROPOSAL		13
347*607ca46eSDavid Howells #define SADB_EXT_SUPPORTED_AUTH		14
348*607ca46eSDavid Howells #define SADB_EXT_SUPPORTED_ENCRYPT	15
349*607ca46eSDavid Howells #define SADB_EXT_SPIRANGE		16
350*607ca46eSDavid Howells #define SADB_X_EXT_KMPRIVATE		17
351*607ca46eSDavid Howells #define SADB_X_EXT_POLICY		18
352*607ca46eSDavid Howells #define SADB_X_EXT_SA2			19
353*607ca46eSDavid Howells /* The next four entries are for setting up NAT Traversal */
354*607ca46eSDavid Howells #define SADB_X_EXT_NAT_T_TYPE		20
355*607ca46eSDavid Howells #define SADB_X_EXT_NAT_T_SPORT		21
356*607ca46eSDavid Howells #define SADB_X_EXT_NAT_T_DPORT		22
357*607ca46eSDavid Howells #define SADB_X_EXT_NAT_T_OA		23
358*607ca46eSDavid Howells #define SADB_X_EXT_SEC_CTX		24
359*607ca46eSDavid Howells /* Used with MIGRATE to pass @ to IKE for negotiation */
360*607ca46eSDavid Howells #define SADB_X_EXT_KMADDRESS		25
361*607ca46eSDavid Howells #define SADB_EXT_MAX			25
362*607ca46eSDavid Howells 
363*607ca46eSDavid Howells /* Identity Extension values */
364*607ca46eSDavid Howells #define SADB_IDENTTYPE_RESERVED	0
365*607ca46eSDavid Howells #define SADB_IDENTTYPE_PREFIX	1
366*607ca46eSDavid Howells #define SADB_IDENTTYPE_FQDN	2
367*607ca46eSDavid Howells #define SADB_IDENTTYPE_USERFQDN	3
368*607ca46eSDavid Howells #define SADB_IDENTTYPE_MAX	3
369*607ca46eSDavid Howells 
370*607ca46eSDavid Howells #endif /* !(_LINUX_PFKEY2_H) */
371