2
* IKEv2 responder (RFC 4306) for EAP-IKEV2
3
* Copyright (c) 2007, Jouni Malinen <j@w1.fi>
5
* This program is free software; you can redistribute it and/or modify
6
* it under the terms of the GNU General Public License version 2 as
7
* published by the Free Software Foundation.
9
* Alternatively, this software may be distributed under the terms of BSD
12
* See README and COPYING for more details.
18
#include "eap_common/ikev2_common.h"
20
struct ikev2_proposal_data {
29
struct ikev2_responder_data {
30
enum { SA_INIT, SA_AUTH, CHILD_SA, NOTIFY, IKEV2_DONE, IKEV2_FAILED }
32
u8 i_spi[IKEV2_SPI_LEN];
33
u8 r_spi[IKEV2_SPI_LEN];
34
u8 i_nonce[IKEV2_NONCE_MAX_LEN];
36
u8 r_nonce[IKEV2_NONCE_MAX_LEN];
38
struct wpabuf *i_dh_public;
39
struct wpabuf *r_dh_private;
40
struct ikev2_proposal_data proposal;
41
const struct dh_group *dh;
42
struct ikev2_keys keys;
48
struct wpabuf *r_sign_msg;
49
struct wpabuf *i_sign_msg;
51
size_t shared_secret_len;
52
enum { PEER_AUTH_CERT, PEER_AUTH_SECRET } peer_auth;
56
enum { LAST_MSG_SA_INIT, LAST_MSG_SA_AUTH } last_msg;
60
void ikev2_responder_deinit(struct ikev2_responder_data *data);
61
int ikev2_responder_process(struct ikev2_responder_data *data,
62
const struct wpabuf *buf);
63
struct wpabuf * ikev2_responder_build(struct ikev2_responder_data *data);