1*7c478bd9Sstevel@tonic-gate /* 2*7c478bd9Sstevel@tonic-gate * CDDL HEADER START 3*7c478bd9Sstevel@tonic-gate * 4*7c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 5*7c478bd9Sstevel@tonic-gate * Common Development and Distribution License, Version 1.0 only 6*7c478bd9Sstevel@tonic-gate * (the "License"). You may not use this file except in compliance 7*7c478bd9Sstevel@tonic-gate * with the License. 8*7c478bd9Sstevel@tonic-gate * 9*7c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 10*7c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 11*7c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 12*7c478bd9Sstevel@tonic-gate * and limitations under the License. 13*7c478bd9Sstevel@tonic-gate * 14*7c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 15*7c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 16*7c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 17*7c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 18*7c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 19*7c478bd9Sstevel@tonic-gate * 20*7c478bd9Sstevel@tonic-gate * CDDL HEADER END 21*7c478bd9Sstevel@tonic-gate */ 22*7c478bd9Sstevel@tonic-gate /* 23*7c478bd9Sstevel@tonic-gate * Copyright 2003 Sun Microsystems, Inc. All rights reserved. 24*7c478bd9Sstevel@tonic-gate * Use is subject to license terms. 25*7c478bd9Sstevel@tonic-gate */ 26*7c478bd9Sstevel@tonic-gate 27*7c478bd9Sstevel@tonic-gate /* #ident "%Z%%M% %I% %E% SMI" */ 28*7c478bd9Sstevel@tonic-gate 29*7c478bd9Sstevel@tonic-gate /* 30*7c478bd9Sstevel@tonic-gate * The formal definition of OIDs comes from ITU-T recommendation X.208 31*7c478bd9Sstevel@tonic-gate */ 32*7c478bd9Sstevel@tonic-gate const WBKU_AES_128_OID = "2.16.840.1.101.3.4.1.2"; 33*7c478bd9Sstevel@tonic-gate const WBKU_DES3_OID = "1.3.6.1.4.1.4929.1.8"; 34*7c478bd9Sstevel@tonic-gate const WBKU_HMAC_SHA1_OID = "1.3.6.1.5.5.8.1.2"; 35*7c478bd9Sstevel@tonic-gate const WBKU_RSA_OID = "1.2.840.113549.1.1.1"; 36*7c478bd9Sstevel@tonic-gate 37*7c478bd9Sstevel@tonic-gate const WBKU_MAX_KEYLEN = 1024; 38*7c478bd9Sstevel@tonic-gate 39*7c478bd9Sstevel@tonic-gate struct wbku_key { 40*7c478bd9Sstevel@tonic-gate bool wk_master; 41*7c478bd9Sstevel@tonic-gate string wk_oid<>; 42*7c478bd9Sstevel@tonic-gate opaque KEYDATA<WBKU_MAX_KEYLEN>; 43*7c478bd9Sstevel@tonic-gate }; 44*7c478bd9Sstevel@tonic-gate 45*7c478bd9Sstevel@tonic-gate #ifdef RPC_HDR 46*7c478bd9Sstevel@tonic-gate %#define wk_key_len KEYDATA.KEYDATA_len 47*7c478bd9Sstevel@tonic-gate %#define wk_key_val KEYDATA.KEYDATA_val 48*7c478bd9Sstevel@tonic-gate #endif /* RPC_HDR */ 49*7c478bd9Sstevel@tonic-gate 50*7c478bd9Sstevel@tonic-gate /* 51*7c478bd9Sstevel@tonic-gate * Allow one entry for each key that can be in a keystore at 52*7c478bd9Sstevel@tonic-gate * the same time. There can be one AES key, one 3DES key, 53*7c478bd9Sstevel@tonic-gate * two HMAC SHA-1 values (one master and one for the client) and one RSA 54*7c478bd9Sstevel@tonic-gate * private key. The master key is a HMAC SHA-1 master key used to 55*7c478bd9Sstevel@tonic-gate * derive a per-client HMAC SHA-1 key as described in RFC 3118, Appendix A. 56*7c478bd9Sstevel@tonic-gate */ 57*7c478bd9Sstevel@tonic-gate typedef struct wbku_key wbku_keystore<5>; 58