16f971622SJuan Castillo /* 26f971622SJuan Castillo * Copyright (c) 2015, ARM Limited and Contributors. All rights reserved. 36f971622SJuan Castillo * 46f971622SJuan Castillo * Redistribution and use in source and binary forms, with or without 56f971622SJuan Castillo * modification, are permitted provided that the following conditions are met: 66f971622SJuan Castillo * 76f971622SJuan Castillo * Redistributions of source code must retain the above copyright notice, this 86f971622SJuan Castillo * list of conditions and the following disclaimer. 96f971622SJuan Castillo * 106f971622SJuan Castillo * Redistributions in binary form must reproduce the above copyright notice, 116f971622SJuan Castillo * this list of conditions and the following disclaimer in the documentation 126f971622SJuan Castillo * and/or other materials provided with the distribution. 136f971622SJuan Castillo * 146f971622SJuan Castillo * Neither the name of ARM nor the names of its contributors may be used 156f971622SJuan Castillo * to endorse or promote products derived from this software without specific 166f971622SJuan Castillo * prior written permission. 176f971622SJuan Castillo * 186f971622SJuan Castillo * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" 196f971622SJuan Castillo * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 206f971622SJuan Castillo * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 216f971622SJuan Castillo * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE 226f971622SJuan Castillo * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 236f971622SJuan Castillo * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 246f971622SJuan Castillo * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 256f971622SJuan Castillo * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 266f971622SJuan Castillo * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 276f971622SJuan Castillo * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 286f971622SJuan Castillo * POSSIBILITY OF SUCH DAMAGE. 296f971622SJuan Castillo */ 306f971622SJuan Castillo 316f971622SJuan Castillo #ifndef EXT_H_ 326f971622SJuan Castillo #define EXT_H_ 336f971622SJuan Castillo 34*55e291a4SJuan Castillo #include "key.h" 356f971622SJuan Castillo #include <openssl/x509v3.h> 366f971622SJuan Castillo 37*55e291a4SJuan Castillo /* Extension types supported */ 38*55e291a4SJuan Castillo enum { 39*55e291a4SJuan Castillo EXT_TYPE_NVCOUNTER, 40*55e291a4SJuan Castillo EXT_TYPE_PKEY, 41*55e291a4SJuan Castillo EXT_TYPE_HASH 42*55e291a4SJuan Castillo }; 43*55e291a4SJuan Castillo 446f971622SJuan Castillo /* 456f971622SJuan Castillo * This structure contains the relevant information to create the extensions 466f971622SJuan Castillo * to be included in the certificates. This extensions will be used to 476f971622SJuan Castillo * establish the chain of trust. 486f971622SJuan Castillo */ 496f971622SJuan Castillo typedef struct ext_s { 506f971622SJuan Castillo const char *oid; /* OID of the extension */ 516f971622SJuan Castillo const char *sn; /* Short name */ 526f971622SJuan Castillo const char *ln; /* Long description */ 53*55e291a4SJuan Castillo int asn1_type; /* OpenSSL ASN1 type of the extension data. 546f971622SJuan Castillo * Supported types are: 556f971622SJuan Castillo * - V_ASN1_INTEGER 566f971622SJuan Castillo * - V_ASN1_OCTET_STRING 576f971622SJuan Castillo */ 58*55e291a4SJuan Castillo int type; 59*55e291a4SJuan Castillo /* Extension data (depends on extension type) */ 60*55e291a4SJuan Castillo union { 61*55e291a4SJuan Castillo const char *fn; /* File with extension data */ 62*55e291a4SJuan Castillo int nvcounter; /* Non volatile counter */ 63*55e291a4SJuan Castillo int key; /* Public key */ 64*55e291a4SJuan Castillo } data; 65*55e291a4SJuan Castillo 666f971622SJuan Castillo int alias; /* In case OpenSSL provides an standard 676f971622SJuan Castillo * extension of the same type, add the new 686f971622SJuan Castillo * extension as an alias of this one 696f971622SJuan Castillo */ 706f971622SJuan Castillo 716f971622SJuan Castillo X509V3_EXT_METHOD method; /* This field may be used to define a custom 726f971622SJuan Castillo * function to print the contents of the 736f971622SJuan Castillo * extension */ 746f971622SJuan Castillo } ext_t; 756f971622SJuan Castillo 766f971622SJuan Castillo enum { 776f971622SJuan Castillo EXT_NON_CRIT = 0, 786f971622SJuan Castillo EXT_CRIT = !EXT_NON_CRIT, 796f971622SJuan Castillo }; 806f971622SJuan Castillo 81*55e291a4SJuan Castillo /* Exported API */ 82*55e291a4SJuan Castillo int ext_register(ext_t *tbb_ext); 83c3da66b1SJuan Castillo X509_EXTENSION *ext_new_hash(int nid, int crit, const EVP_MD *md, 84c3da66b1SJuan Castillo unsigned char *buf, size_t len); 856f971622SJuan Castillo X509_EXTENSION *ext_new_nvcounter(int nid, int crit, int value); 866f971622SJuan Castillo X509_EXTENSION *ext_new_key(int nid, int crit, EVP_PKEY *k); 876f971622SJuan Castillo 88*55e291a4SJuan Castillo /* Macro to register the extensions used in the CoT */ 89*55e291a4SJuan Castillo #define REGISTER_EXTENSIONS(_ext) \ 90*55e291a4SJuan Castillo ext_t *extensions = &_ext[0]; \ 91*55e291a4SJuan Castillo const unsigned int num_extensions = sizeof(_ext)/sizeof(_ext[0]); 92*55e291a4SJuan Castillo 93*55e291a4SJuan Castillo /* Exported variables */ 94*55e291a4SJuan Castillo extern ext_t *extensions; 95*55e291a4SJuan Castillo extern const unsigned int num_extensions; 96*55e291a4SJuan Castillo 976f971622SJuan Castillo #endif /* EXT_H_ */ 98