blob: 1bfb86c6f59ceaac7fe11b8854bb34c5fd2a2bcc [file] [log] [blame]
aliguori2f9606b2009-03-06 20:27:28 +00001/*
2 * QEMU VNC display driver: SASL auth protocol
3 *
4 * Copyright (C) 2009 Red Hat, Inc
5 *
6 * Permission is hereby granted, free of charge, to any person obtaining a copy
7 * of this software and associated documentation files (the "Software"), to deal
8 * in the Software without restriction, including without limitation the rights
9 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
10 * copies of the Software, and to permit persons to whom the Software is
11 * furnished to do so, subject to the following conditions:
12 *
13 * The above copyright notice and this permission notice shall be included in
14 * all copies or substantial portions of the Software.
15 *
16 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
17 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
18 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
19 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
20 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
21 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
22 * THE SOFTWARE.
23 */
24
Markus Armbruster2a6a4072016-06-29 13:47:03 +020025#ifndef QEMU_VNC_AUTH_SASL_H
26#define QEMU_VNC_AUTH_SASL_H
aliguori2f9606b2009-03-06 20:27:28 +000027
28#include <sasl/sasl.h>
29
30typedef struct VncStateSASL VncStateSASL;
aliguori76655d62009-03-06 20:27:37 +000031typedef struct VncDisplaySASL VncDisplaySASL;
32
Daniel P. Berrangeb76806d2016-02-18 18:40:24 +000033#include "authz/base.h"
aliguori2f9606b2009-03-06 20:27:28 +000034
35struct VncStateSASL {
36 sasl_conn_t *conn;
37 /* If we want to negotiate an SSF layer with client */
Stefan Weilee032ca2012-03-08 22:58:06 +010038 bool wantSSF;
aliguori2f9606b2009-03-06 20:27:28 +000039 /* If we are now running the SSF layer */
Stefan Weilee032ca2012-03-08 22:58:06 +010040 bool runSSF;
aliguori2f9606b2009-03-06 20:27:28 +000041 /*
42 * If this is non-zero, then wait for that many bytes
43 * to be written plain, before switching to SSF encoding
44 * This allows the VNC auth result to finish being
45 * written in plain.
46 */
47 unsigned int waitWriteSSF;
48
49 /*
50 * Buffering encoded data to allow more clear data
51 * to be stuffed onto the output buffer
52 */
53 const uint8_t *encoded;
54 unsigned int encodedLength;
Daniel P. Berrange8f61f1c2017-12-18 19:12:20 +000055 unsigned int encodedRawLength;
aliguori2f9606b2009-03-06 20:27:28 +000056 unsigned int encodedOffset;
57 char *username;
58 char *mechlist;
59};
60
aliguori76655d62009-03-06 20:27:37 +000061struct VncDisplaySASL {
Daniel P. Berrangeb76806d2016-02-18 18:40:24 +000062 QAuthZ *authz;
63 char *authzid;
aliguori76655d62009-03-06 20:27:37 +000064};
65
aliguori2f9606b2009-03-06 20:27:28 +000066void vnc_sasl_client_cleanup(VncState *vs);
67
Daniel P. Berrange30b80fd2017-12-18 19:12:28 +000068size_t vnc_client_read_sasl(VncState *vs);
69size_t vnc_client_write_sasl(VncState *vs);
aliguori2f9606b2009-03-06 20:27:28 +000070
71void start_auth_sasl(VncState *vs);
72
Markus Armbruster2a6a4072016-06-29 13:47:03 +020073#endif /* QEMU_VNC_AUTH_SASL_H */