Back to home page

OSCL-LXR

 
 

    


0001 /* SPDX-License-Identifier: ((GPL-2.0 WITH Linux-syscall-note) OR Linux-OpenIB) */
0002 /*
0003  * Copyright (c) 2016-2017, Mellanox Technologies. All rights reserved.
0004  *
0005  * This software is available to you under a choice of one of two
0006  * licenses.  You may choose to be licensed under the terms of the GNU
0007  * General Public License (GPL) Version 2, available from the file
0008  * COPYING in the main directory of this source tree, or the
0009  * OpenIB.org BSD license below:
0010  *
0011  *     Redistribution and use in source and binary forms, with or
0012  *     without modification, are permitted provided that the following
0013  *     conditions are met:
0014  *
0015  *      - Redistributions of source code must retain the above
0016  *        copyright notice, this list of conditions and the following
0017  *        disclaimer.
0018  *
0019  *      - Redistributions in binary form must reproduce the above
0020  *        copyright notice, this list of conditions and the following
0021  *        disclaimer in the documentation and/or other materials
0022  *        provided with the distribution.
0023  *
0024  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
0025  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
0026  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
0027  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
0028  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
0029  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
0030  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
0031  * SOFTWARE.
0032  */
0033 
0034 #ifndef _UAPI_LINUX_TLS_H
0035 #define _UAPI_LINUX_TLS_H
0036 
0037 #include <linux/types.h>
0038 
0039 /* TLS socket options */
0040 #define TLS_TX          1   /* Set transmit parameters */
0041 #define TLS_RX          2   /* Set receive parameters */
0042 #define TLS_TX_ZEROCOPY_RO  3   /* TX zerocopy (only sendfile now) */
0043 #define TLS_RX_EXPECT_NO_PAD    4   /* Attempt opportunistic zero-copy */
0044 
0045 /* Supported versions */
0046 #define TLS_VERSION_MINOR(ver)  ((ver) & 0xFF)
0047 #define TLS_VERSION_MAJOR(ver)  (((ver) >> 8) & 0xFF)
0048 
0049 #define TLS_VERSION_NUMBER(id)  ((((id##_VERSION_MAJOR) & 0xFF) << 8) | \
0050                  ((id##_VERSION_MINOR) & 0xFF))
0051 
0052 #define TLS_1_2_VERSION_MAJOR   0x3
0053 #define TLS_1_2_VERSION_MINOR   0x3
0054 #define TLS_1_2_VERSION     TLS_VERSION_NUMBER(TLS_1_2)
0055 
0056 #define TLS_1_3_VERSION_MAJOR   0x3
0057 #define TLS_1_3_VERSION_MINOR   0x4
0058 #define TLS_1_3_VERSION     TLS_VERSION_NUMBER(TLS_1_3)
0059 
0060 /* Supported ciphers */
0061 #define TLS_CIPHER_AES_GCM_128              51
0062 #define TLS_CIPHER_AES_GCM_128_IV_SIZE          8
0063 #define TLS_CIPHER_AES_GCM_128_KEY_SIZE     16
0064 #define TLS_CIPHER_AES_GCM_128_SALT_SIZE        4
0065 #define TLS_CIPHER_AES_GCM_128_TAG_SIZE     16
0066 #define TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE     8
0067 
0068 #define TLS_CIPHER_AES_GCM_256              52
0069 #define TLS_CIPHER_AES_GCM_256_IV_SIZE          8
0070 #define TLS_CIPHER_AES_GCM_256_KEY_SIZE     32
0071 #define TLS_CIPHER_AES_GCM_256_SALT_SIZE        4
0072 #define TLS_CIPHER_AES_GCM_256_TAG_SIZE     16
0073 #define TLS_CIPHER_AES_GCM_256_REC_SEQ_SIZE     8
0074 
0075 #define TLS_CIPHER_AES_CCM_128              53
0076 #define TLS_CIPHER_AES_CCM_128_IV_SIZE          8
0077 #define TLS_CIPHER_AES_CCM_128_KEY_SIZE     16
0078 #define TLS_CIPHER_AES_CCM_128_SALT_SIZE        4
0079 #define TLS_CIPHER_AES_CCM_128_TAG_SIZE     16
0080 #define TLS_CIPHER_AES_CCM_128_REC_SEQ_SIZE     8
0081 
0082 #define TLS_CIPHER_CHACHA20_POLY1305            54
0083 #define TLS_CIPHER_CHACHA20_POLY1305_IV_SIZE        12
0084 #define TLS_CIPHER_CHACHA20_POLY1305_KEY_SIZE   32
0085 #define TLS_CIPHER_CHACHA20_POLY1305_SALT_SIZE      0
0086 #define TLS_CIPHER_CHACHA20_POLY1305_TAG_SIZE   16
0087 #define TLS_CIPHER_CHACHA20_POLY1305_REC_SEQ_SIZE   8
0088 
0089 #define TLS_CIPHER_SM4_GCM              55
0090 #define TLS_CIPHER_SM4_GCM_IV_SIZE          8
0091 #define TLS_CIPHER_SM4_GCM_KEY_SIZE     16
0092 #define TLS_CIPHER_SM4_GCM_SALT_SIZE        4
0093 #define TLS_CIPHER_SM4_GCM_TAG_SIZE     16
0094 #define TLS_CIPHER_SM4_GCM_REC_SEQ_SIZE     8
0095 
0096 #define TLS_CIPHER_SM4_CCM              56
0097 #define TLS_CIPHER_SM4_CCM_IV_SIZE          8
0098 #define TLS_CIPHER_SM4_CCM_KEY_SIZE     16
0099 #define TLS_CIPHER_SM4_CCM_SALT_SIZE        4
0100 #define TLS_CIPHER_SM4_CCM_TAG_SIZE     16
0101 #define TLS_CIPHER_SM4_CCM_REC_SEQ_SIZE     8
0102 
0103 #define TLS_SET_RECORD_TYPE 1
0104 #define TLS_GET_RECORD_TYPE 2
0105 
0106 struct tls_crypto_info {
0107     __u16 version;
0108     __u16 cipher_type;
0109 };
0110 
0111 struct tls12_crypto_info_aes_gcm_128 {
0112     struct tls_crypto_info info;
0113     unsigned char iv[TLS_CIPHER_AES_GCM_128_IV_SIZE];
0114     unsigned char key[TLS_CIPHER_AES_GCM_128_KEY_SIZE];
0115     unsigned char salt[TLS_CIPHER_AES_GCM_128_SALT_SIZE];
0116     unsigned char rec_seq[TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE];
0117 };
0118 
0119 struct tls12_crypto_info_aes_gcm_256 {
0120     struct tls_crypto_info info;
0121     unsigned char iv[TLS_CIPHER_AES_GCM_256_IV_SIZE];
0122     unsigned char key[TLS_CIPHER_AES_GCM_256_KEY_SIZE];
0123     unsigned char salt[TLS_CIPHER_AES_GCM_256_SALT_SIZE];
0124     unsigned char rec_seq[TLS_CIPHER_AES_GCM_256_REC_SEQ_SIZE];
0125 };
0126 
0127 struct tls12_crypto_info_aes_ccm_128 {
0128     struct tls_crypto_info info;
0129     unsigned char iv[TLS_CIPHER_AES_CCM_128_IV_SIZE];
0130     unsigned char key[TLS_CIPHER_AES_CCM_128_KEY_SIZE];
0131     unsigned char salt[TLS_CIPHER_AES_CCM_128_SALT_SIZE];
0132     unsigned char rec_seq[TLS_CIPHER_AES_CCM_128_REC_SEQ_SIZE];
0133 };
0134 
0135 struct tls12_crypto_info_chacha20_poly1305 {
0136     struct tls_crypto_info info;
0137     unsigned char iv[TLS_CIPHER_CHACHA20_POLY1305_IV_SIZE];
0138     unsigned char key[TLS_CIPHER_CHACHA20_POLY1305_KEY_SIZE];
0139     unsigned char salt[TLS_CIPHER_CHACHA20_POLY1305_SALT_SIZE];
0140     unsigned char rec_seq[TLS_CIPHER_CHACHA20_POLY1305_REC_SEQ_SIZE];
0141 };
0142 
0143 struct tls12_crypto_info_sm4_gcm {
0144     struct tls_crypto_info info;
0145     unsigned char iv[TLS_CIPHER_SM4_GCM_IV_SIZE];
0146     unsigned char key[TLS_CIPHER_SM4_GCM_KEY_SIZE];
0147     unsigned char salt[TLS_CIPHER_SM4_GCM_SALT_SIZE];
0148     unsigned char rec_seq[TLS_CIPHER_SM4_GCM_REC_SEQ_SIZE];
0149 };
0150 
0151 struct tls12_crypto_info_sm4_ccm {
0152     struct tls_crypto_info info;
0153     unsigned char iv[TLS_CIPHER_SM4_CCM_IV_SIZE];
0154     unsigned char key[TLS_CIPHER_SM4_CCM_KEY_SIZE];
0155     unsigned char salt[TLS_CIPHER_SM4_CCM_SALT_SIZE];
0156     unsigned char rec_seq[TLS_CIPHER_SM4_CCM_REC_SEQ_SIZE];
0157 };
0158 
0159 enum {
0160     TLS_INFO_UNSPEC,
0161     TLS_INFO_VERSION,
0162     TLS_INFO_CIPHER,
0163     TLS_INFO_TXCONF,
0164     TLS_INFO_RXCONF,
0165     TLS_INFO_ZC_RO_TX,
0166     TLS_INFO_RX_NO_PAD,
0167     __TLS_INFO_MAX,
0168 };
0169 #define TLS_INFO_MAX (__TLS_INFO_MAX - 1)
0170 
0171 #define TLS_CONF_BASE 1
0172 #define TLS_CONF_SW 2
0173 #define TLS_CONF_HW 3
0174 #define TLS_CONF_HW_RECORD 4
0175 
0176 #endif /* _UAPI_LINUX_TLS_H */