1*4882a593Smuzhiyun /* 2*4882a593Smuzhiyun * Extensible Authentication Protocol (EAP) definitions 3*4882a593Smuzhiyun * 4*4882a593Smuzhiyun * See 5*4882a593Smuzhiyun * RFC 2284: PPP Extensible Authentication Protocol (EAP) 6*4882a593Smuzhiyun * 7*4882a593Smuzhiyun * Copyright (C) 2020, Broadcom. 8*4882a593Smuzhiyun * 9*4882a593Smuzhiyun * Unless you and Broadcom execute a separate written software license 10*4882a593Smuzhiyun * agreement governing use of this software, this software is licensed to you 11*4882a593Smuzhiyun * under the terms of the GNU General Public License version 2 (the "GPL"), 12*4882a593Smuzhiyun * available at http://www.broadcom.com/licenses/GPLv2.php, with the 13*4882a593Smuzhiyun * following added to such license: 14*4882a593Smuzhiyun * 15*4882a593Smuzhiyun * As a special exception, the copyright holders of this software give you 16*4882a593Smuzhiyun * permission to link this software with independent modules, and to copy and 17*4882a593Smuzhiyun * distribute the resulting executable under terms of your choice, provided that 18*4882a593Smuzhiyun * you also meet, for each linked independent module, the terms and conditions of 19*4882a593Smuzhiyun * the license of that module. An independent module is a module which is not 20*4882a593Smuzhiyun * derived from this software. The special exception does not apply to any 21*4882a593Smuzhiyun * modifications of the software. 22*4882a593Smuzhiyun * 23*4882a593Smuzhiyun * 24*4882a593Smuzhiyun * <<Broadcom-WL-IPTag/Dual:>> 25*4882a593Smuzhiyun */ 26*4882a593Smuzhiyun 27*4882a593Smuzhiyun #ifndef _eap_h_ 28*4882a593Smuzhiyun #define _eap_h_ 29*4882a593Smuzhiyun 30*4882a593Smuzhiyun /* This marks the start of a packed structure section. */ 31*4882a593Smuzhiyun #include <packed_section_start.h> 32*4882a593Smuzhiyun 33*4882a593Smuzhiyun /* EAP packet format */ 34*4882a593Smuzhiyun typedef BWL_PRE_PACKED_STRUCT struct { 35*4882a593Smuzhiyun unsigned char code; /* EAP code */ 36*4882a593Smuzhiyun unsigned char id; /* Current request ID */ 37*4882a593Smuzhiyun unsigned short length; /* Length including header */ 38*4882a593Smuzhiyun unsigned char type; /* EAP type (optional) */ 39*4882a593Smuzhiyun unsigned char data[1]; /* Type data (optional) */ 40*4882a593Smuzhiyun } BWL_POST_PACKED_STRUCT eap_header_t; 41*4882a593Smuzhiyun 42*4882a593Smuzhiyun #define EAP_HEADER_LEN 4u 43*4882a593Smuzhiyun #define EAP_HEADER_LEN_WITH_TYPE 5u 44*4882a593Smuzhiyun #define ERP_FLAGS_LEN 1u 45*4882a593Smuzhiyun #define ERP_SEQ_LEN 2u 46*4882a593Smuzhiyun #define ERP_KEYNAMENAI_HEADER_LEN 2u 47*4882a593Smuzhiyun #define ERP_CRYPTOSUITE_LEN 1u 48*4882a593Smuzhiyun 49*4882a593Smuzhiyun /* EAP codes */ 50*4882a593Smuzhiyun #define EAP_REQUEST 1u 51*4882a593Smuzhiyun #define EAP_RESPONSE 2u 52*4882a593Smuzhiyun #define EAP_SUCCESS 3u 53*4882a593Smuzhiyun #define EAP_FAILURE 4u 54*4882a593Smuzhiyun #define EAP_INITIATE 5u 55*4882a593Smuzhiyun #define EAP_FINISH 6u 56*4882a593Smuzhiyun 57*4882a593Smuzhiyun /* EAP types */ 58*4882a593Smuzhiyun #define EAP_IDENTITY 1 59*4882a593Smuzhiyun #define EAP_NOTIFICATION 2 60*4882a593Smuzhiyun #define EAP_NAK 3 61*4882a593Smuzhiyun #define EAP_MD5 4 62*4882a593Smuzhiyun #define EAP_OTP 5 63*4882a593Smuzhiyun #define EAP_GTC 6 64*4882a593Smuzhiyun #define EAP_TLS 13 65*4882a593Smuzhiyun #define EAP_EXPANDED 254 66*4882a593Smuzhiyun #define BCM_EAP_SES 10 67*4882a593Smuzhiyun #define BCM_EAP_EXP_LEN 12 /* EAP_LEN 5 + 3 bytes for SMI ID + 4 bytes for ven type */ 68*4882a593Smuzhiyun #define BCM_SMI_ID 0x113d 69*4882a593Smuzhiyun #define WFA_VENDOR_SMI 0x009F68 70*4882a593Smuzhiyun 71*4882a593Smuzhiyun /* ERP types */ 72*4882a593Smuzhiyun #define EAP_ERP_TYPE_REAUTH_START 1u 73*4882a593Smuzhiyun #define EAP_ERP_TYPE_REAUTH 2u 74*4882a593Smuzhiyun 75*4882a593Smuzhiyun /* EAP FLAGS */ 76*4882a593Smuzhiyun #define ERP_R_FLAG 0x80 /* result flag, set = failure */ 77*4882a593Smuzhiyun #define ERP_B_FLAG 0x40 /* bootstrap flag, set = bootstrap */ 78*4882a593Smuzhiyun #define ERP_L_FLAG 0x20 /* rrk lifetime tlv is present */ 79*4882a593Smuzhiyun 80*4882a593Smuzhiyun /* ERP TV/TLV types */ 81*4882a593Smuzhiyun #define EAP_ERP_TLV_KEYNAME_NAI 1u 82*4882a593Smuzhiyun 83*4882a593Smuzhiyun /* ERP Cryptosuite */ 84*4882a593Smuzhiyun #define EAP_ERP_CS_HMAC_SHA256_128 2u 85*4882a593Smuzhiyun 86*4882a593Smuzhiyun #ifdef BCMCCX 87*4882a593Smuzhiyun #define EAP_LEAP 17 88*4882a593Smuzhiyun 89*4882a593Smuzhiyun #define LEAP_VERSION 1 90*4882a593Smuzhiyun #define LEAP_CHALLENGE_LEN 8 91*4882a593Smuzhiyun #define LEAP_RESPONSE_LEN 24 92*4882a593Smuzhiyun 93*4882a593Smuzhiyun /* LEAP challenge */ 94*4882a593Smuzhiyun typedef struct { 95*4882a593Smuzhiyun unsigned char version; /* should be value of LEAP_VERSION */ 96*4882a593Smuzhiyun unsigned char reserved; /* not used */ 97*4882a593Smuzhiyun unsigned char chall_len; /* always value of LEAP_CHALLENGE_LEN */ 98*4882a593Smuzhiyun unsigned char challenge[LEAP_CHALLENGE_LEN]; /* random */ 99*4882a593Smuzhiyun unsigned char username[1]; 100*4882a593Smuzhiyun } leap_challenge_t; 101*4882a593Smuzhiyun 102*4882a593Smuzhiyun #define LEAP_CHALLENGE_HDR_LEN 12 103*4882a593Smuzhiyun 104*4882a593Smuzhiyun /* LEAP challenge reponse */ 105*4882a593Smuzhiyun typedef struct { 106*4882a593Smuzhiyun unsigned char version; /* should be value of LEAP_VERSION */ 107*4882a593Smuzhiyun unsigned char reserved; /* not used */ 108*4882a593Smuzhiyun unsigned char resp_len; /* always value of LEAP_RESPONSE_LEN */ 109*4882a593Smuzhiyun /* MS-CHAP hash of challenge and user's password */ 110*4882a593Smuzhiyun unsigned char response[LEAP_RESPONSE_LEN]; 111*4882a593Smuzhiyun unsigned char username[1]; 112*4882a593Smuzhiyun } leap_response_t; 113*4882a593Smuzhiyun 114*4882a593Smuzhiyun #define LEAP_RESPONSE_HDR_LEN 28 115*4882a593Smuzhiyun 116*4882a593Smuzhiyun #endif /* BCMCCX */ 117*4882a593Smuzhiyun 118*4882a593Smuzhiyun /* This marks the end of a packed structure section. */ 119*4882a593Smuzhiyun #include <packed_section_end.h> 120*4882a593Smuzhiyun 121*4882a593Smuzhiyun #endif /* _eap_h_ */ 122