2 * Copyright 2000, International Business Machines Corporation and others.
5 * This software has been released under the terms of the IBM Public
6 * License. For details, see the LICENSE file in the top-level source
7 * directory or online at http://www.openafs.org/dl/license10.html
10 /* The rxkad security object. This contains packet processing routines that
11 * are prohibited from being exported. */
14 #include <afsconfig.h>
16 #include "afs/param.h"
18 #include <afs/param.h>
29 #include "netinet/in.h"
31 #include "afs/sysincludes.h"
36 #include <sys/types.h>
41 #include <netinet/in.h>
45 #include <des/stats.h>
46 #include "private_data.h"
47 #define XPRT_RXKAD_CRYPT
50 rxkad_DecryptPacket(const struct rx_connection *conn,
51 const fc_KeySchedule * schedule,
52 const fc_InitializationVector * ivec, const int inlen,
53 struct rx_packet *packet)
56 struct rx_securityClass *obj;
57 struct rxkad_cprivate *tp; /* s & c have type at same offset */
63 obj = rx_SecurityObjectOf(conn);
64 tp = (struct rxkad_cprivate *)obj->privateData;
65 ADD_RXKAD_STATS(bytesDecrypted[rxkad_TypeIndex(tp->type)],len);
66 memcpy((void *)xor, (void *)ivec, sizeof(xor));
67 for (i = 0; len; i++) {
68 data = rx_data(packet, i, tlen);
71 tlen = MIN(len, tlen);
72 fc_cbc_encrypt(data, data, tlen, schedule, xor, DECRYPT);
75 /* Do this if packet checksums are ever enabled (below), but
76 * current version just passes zero
78 cksum = ntohl(rx_GetInt32(packet, 1));
84 rxkad_EncryptPacket(const struct rx_connection * conn,
85 const fc_KeySchedule * schedule,
86 const fc_InitializationVector * ivec, const int inlen,
87 struct rx_packet * packet)
90 struct rx_securityClass *obj;
91 struct rxkad_cprivate *tp; /* s & c have type at same offset */
97 obj = rx_SecurityObjectOf(conn);
98 tp = (struct rxkad_cprivate *)obj->privateData;
99 ADD_RXKAD_STATS(bytesEncrypted[rxkad_TypeIndex(tp->type)],len);
103 * * Future option to add cksum here, but for now we just put 0
105 rx_PutInt32(packet, 1 * sizeof(afs_int32), 0);
107 memcpy((void *)xor, (void *)ivec, sizeof(xor));
108 for (i = 0; len; i++) {
109 data = rx_data(packet, i, tlen);
112 tlen = MIN(len, tlen);
113 fc_cbc_encrypt(data, data, tlen, schedule, xor, ENCRYPT);