2 * Copyright (c) 1997-2002 Kungliga Tekniska Högskolan
3 * (Royal Institute of Technology, Stockholm, Sweden).
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
17 * 3. Neither the name of the Institute nor the names of its contributors
18 * may be used to endorse or promote products derived from this software
19 * without specific prior written permission.
21 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
22 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
24 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
25 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
26 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
27 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
29 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
35 * $Id: kdc_locl.h,v 1.54 2002/08/19 12:18:07 joda Exp $
38 #ifndef __KDC_LOCL_H__
39 #define __KDC_LOCL_H__
43 extern krb5_context context;
45 extern int require_preauth;
46 extern sig_atomic_t exit_flag;
47 extern size_t max_request;
48 extern time_t kdc_warn_pwexpire;
49 extern struct dbinfo {
57 extern const char *port_str;
58 extern krb5_addresses explicit_addresses;
60 extern int enable_http;
61 extern krb5_boolean encode_as_rep_as_tgs_rep;
62 extern krb5_boolean check_ticket_addresses;
63 extern krb5_boolean allow_null_ticket_addresses;
64 extern krb5_boolean allow_anonymous;
67 extern char *v4_realm;
69 extern int enable_524;
70 extern krb5_boolean enable_kaserver;
73 #define _PATH_KDC_CONF HDB_DB_DIR "/kdc.conf"
74 #define DEFAULT_LOG_DEST "0-1/FILE:" HDB_DB_DIR "/kdc.log"
76 extern struct timeval now;
77 #define kdc_time (now.tv_sec)
79 krb5_error_code as_rep (KDC_REQ*, krb5_data*, const char*, struct sockaddr*);
80 void configure (int, char**);
81 krb5_error_code db_fetch (krb5_principal, hdb_entry**);
82 void free_ent(hdb_entry *);
83 void kdc_log (int, const char*, ...)
84 __attribute__ ((format (printf, 2,3)));
86 char* kdc_log_msg (int, const char*, ...)
87 __attribute__ ((format (printf, 2,3)));
88 char* kdc_log_msg_va (int, const char*, va_list)
89 __attribute__ ((format (printf, 2,0)));
90 void kdc_openlog (void);
92 void set_master_key (EncryptionKey);
93 krb5_error_code tgs_rep (KDC_REQ*, krb5_data*, const char*, struct sockaddr *);
94 Key* unseal_key (Key*);
95 krb5_error_code check_flags(hdb_entry *client, const char *client_name,
96 hdb_entry *server, const char *server_name,
97 krb5_boolean is_as_req);
100 krb5_error_code db_fetch4 (const char*, const char*, const char*, hdb_entry**);
101 krb5_error_code do_524 (const Ticket*, krb5_data*, const char*, struct sockaddr*);
102 krb5_error_code do_version4 (unsigned char*, size_t, krb5_data*, const char*,
103 struct sockaddr_in*);
104 krb5_error_code encode_v4_ticket (void*, size_t, const EncTicketPart*,
105 const PrincipalName*, size_t*);
106 krb5_error_code encrypt_v4_ticket (void*, size_t, des_cblock*, EncryptedData*);
107 krb5_error_code get_des_key(hdb_entry*, krb5_boolean, krb5_boolean, Key**);
108 int maybe_version4 (unsigned char*, int);
112 krb5_error_code do_kaserver (unsigned char*, size_t, krb5_data*, const char*,
113 struct sockaddr_in*);
117 #define des_new_random_key des_random_key
120 #endif /* __KDC_LOCL_H__ */