summaryrefslogtreecommitdiff
path: root/accel-pppd/extra
diff options
context:
space:
mode:
authorAndrii Melnychenko <a.melnychenko@vyos.io>2025-09-29 18:37:29 +0200
committerDenys Fedoryshchenko <denys.f@collabora.com>2025-12-10 19:17:36 +0200
commitb4015f9ec2d58b80155e6691d82b5f3b6023a560 (patch)
tree39f2506d4929cc30bef3f1029c26e5728122ee37 /accel-pppd/extra
parentc912d09018828745e3bcba268cd02a611e324d54 (diff)
downloadaccel-ppp-b4015f9ec2d58b80155e6691d82b5f3b6023a560.tar.gz
accel-ppp-b4015f9ec2d58b80155e6691d82b5f3b6023a560.zip
crypto: Removed CRYPTO_OPENSSL definition.
OpenSSL is now mandatory. Signed-off-by: Andrii Melnychenko <a.melnychenko@vyos.io>
Diffstat (limited to 'accel-pppd/extra')
-rw-r--r--accel-pppd/extra/chap-secrets.c24
1 files changed, 0 insertions, 24 deletions
diff --git a/accel-pppd/extra/chap-secrets.c b/accel-pppd/extra/chap-secrets.c
index 501653be..5fd0102c 100644
--- a/accel-pppd/extra/chap-secrets.c
+++ b/accel-pppd/extra/chap-secrets.c
@@ -6,12 +6,10 @@
#include <netinet/in.h>
#include <arpa/inet.h>
-#ifdef CRYPTO_OPENSSL
#include <openssl/md4.h>
#include <openssl/sha.h>
#include <openssl/des.h>
#include <openssl/evp.h>
-#endif
#include "pwdb.h"
#include "ipdb.h"
@@ -32,13 +30,11 @@ static int conf_netmask = 0;
static void *pd_key;
static struct ipdb_t ipdb;
-#ifdef CRYPTO_OPENSSL
struct hash_chain
{
struct list_head entry;
const EVP_MD *md;
};
-#endif
struct cs_pd_t
{
@@ -49,9 +45,7 @@ struct cs_pd_t
char *pool;
};
-#ifdef CRYPTO_OPENSSL
static LIST_HEAD(hash_chain);
-#endif
static char *skip_word(char *ptr)
{
@@ -129,19 +123,16 @@ static struct cs_pd_t *create_pd(struct ap_session *ses, const char *username)
int n;
struct cs_pd_t *pd;
struct in_addr in;
-#ifdef CRYPTO_OPENSSL
char username_hash[EVP_MAX_MD_SIZE * 2 + 1];
uint8_t hash[EVP_MAX_MD_SIZE];
struct hash_chain *hc;
EVP_MD_CTX *md_ctx = NULL;
char c;
int i;
-#endif
if (!conf_chap_secrets)
return NULL;
-#ifdef CRYPTO_OPENSSL
if (conf_encrypted && !list_empty(&hash_chain)) {
unsigned int size = 0;
list_for_each_entry(hc, &hash_chain, entry) {
@@ -159,7 +150,6 @@ static struct cs_pd_t *create_pd(struct ap_session *ses, const char *username)
username = username_hash;
}
-#endif
f = fopen(conf_chap_secrets, "r");
if (!f) {
@@ -195,10 +185,8 @@ out:
return NULL;
found:
-#ifdef CRYPTO_OPENSSL
if (conf_encrypted && strlen(ptr[1]) != 32)
goto out;
-#endif
pd = _malloc(sizeof(*pd));
if (!pd) {
@@ -208,7 +196,6 @@ found:
memset(pd, 0, sizeof(*pd));
pd->pd.key = &pd_key;
-#ifdef CRYPTO_OPENSSL
if (conf_encrypted) {
pd->passwd = _malloc(16);
if (!pd->passwd) {
@@ -224,7 +211,6 @@ found:
ptr[1][i*2 + 2] = c;
}
} else
-#endif
{
pd->passwd = _strdup(ptr[1]);
if (!pd->passwd) {
@@ -338,10 +324,8 @@ static char* get_passwd(struct pwdb_t *pwdb, struct ap_session *ses, const char
{
struct cs_pd_t *pd = find_pd(ses);
-#ifdef CRYPTO_OPENSSL
if (conf_encrypted)
return NULL;
-#endif
if (!pd)
pd = create_pd(ses, username);
@@ -352,7 +336,6 @@ static char* get_passwd(struct pwdb_t *pwdb, struct ap_session *ses, const char
return _strdup(pd->passwd);
}
-#ifdef CRYPTO_OPENSSL
static void des_encrypt(const uint8_t *input, const uint8_t *key, uint8_t *output)
{
int i, j, parity;
@@ -687,7 +670,6 @@ static int check_passwd(struct pwdb_t *pwdb, struct ap_session *ses, pwdb_callba
return r;
}
-#endif
static struct ipdb_t ipdb = {
.get_ipv4 = get_ip,
@@ -695,12 +677,9 @@ static struct ipdb_t ipdb = {
static struct pwdb_t pwdb = {
.get_passwd = get_passwd,
-#ifdef CRYPTO_OPENSSL
.check = check_passwd,
-#endif
};
-#ifdef CRYPTO_OPENSSL
static void clear_hash_chain(void)
{
struct hash_chain *hc;
@@ -734,7 +713,6 @@ static void parse_hash_chain(const char *opt)
ptr1 = ptr2 + 1;
}
}
-#endif
static void parse_gw_ip_address(const char *opt)
{
@@ -795,12 +773,10 @@ static void load_config(void)
else
conf_encrypted = 0;
-#ifdef CRYPTO_OPENSSL
clear_hash_chain();
opt = conf_get_opt("chap-secrets", "username-hash");
if (opt)
parse_hash_chain(opt);
-#endif
}
static void init(void)