4
* key usage limits enforcement
11
* Copyright (c) 2001-2006 Cisco Systems, Inc.
12
* All rights reserved.
14
* Redistribution and use in source and binary forms, with or without
15
* modification, are permitted provided that the following conditions
18
* Redistributions of source code must retain the above copyright
19
* notice, this list of conditions and the following disclaimer.
21
* Redistributions in binary form must reproduce the above
22
* copyright notice, this list of conditions and the following
23
* disclaimer in the documentation and/or other materials provided
24
* with the distribution.
26
* Neither the name of the Cisco Systems, Inc. nor the names of its
27
* contributors may be used to endorse or promote products derived
28
* from this software without specific prior written permission.
30
* THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
31
* "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
32
* LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
33
* FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
34
* COPYRIGHT HOLDERS OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
35
* INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
36
* (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
37
* SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
38
* HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
39
* STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
40
* ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
41
* OF THE POSSIBILITY OF SUCH DAMAGE.
47
#define soft_limit 0x10000
50
key_limit_set(key_limit_t key, const xtd_seq_num_t s) {
52
if (high32(s) == 0 && low32(s) < soft_limit)
53
return err_status_bad_param;
56
return err_status_bad_param;
59
key->state = key_state_normal;
64
key_limit_clone(key_limit_t original, key_limit_t *new_key) {
66
return err_status_bad_param;
72
key_limit_check(const key_limit_t key) {
73
if (key->state == key_state_expired)
74
return err_status_key_expired;
79
key_limit_update(key_limit_t key) {
81
if (low32(key->num_left) == 0)
84
key->num_left = make64(high32(key->num_left)-1,low32(key->num_left) - 1);
89
key->num_left = make64(high32(key->num_left),low32(key->num_left) - 1);
91
if (high32(key->num_left) != 0 || low32(key->num_left) >= soft_limit) {
92
return key_event_normal; /* we're above the soft limit */
96
if (key->num_left >= soft_limit) {
97
return key_event_normal; /* we're above the soft limit */
100
if (key->state == key_state_normal) {
101
/* we just passed the soft limit, so change the state */
102
key->state = key_state_past_soft_limit;
105
if (low32(key->num_left) == 0 && high32(key->num_left == 0))
107
if (key->num_left < 1)
109
{ /* we just hit the hard limit */
110
key->state = key_state_expired;
111
return key_event_hard_limit;
113
return key_event_soft_limit;