summaryrefslogtreecommitdiff
path: root/src/charon/network/socket.h
blob: b76a9b0c3545e23ffbf52c0b06427a4dc041bfe0 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
/*
 * Copyright (C) 2006 Tobias Brunner, Daniel Roethlisberger
 * Copyright (C) 2005-2006 Martin Willi
 * Copyright (C) 2005 Jan Hutter
 * Hochschule fuer Technik Rapperswil
 *
 * This program is free software; you can redistribute it and/or modify it
 * under the terms of the GNU General Public License as published by the
 * Free Software Foundation; either version 2 of the License, or (at your
 * option) any later version.  See <http://www.fsf.org/copyleft/gpl.txt>.
 *
 * This program is distributed in the hope that it will be useful, but
 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
 * or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
 * for more details.
 *
 * $Id: socket.h 4355 2008-09-25 07:56:58Z tobias $
 */

/**
 * @defgroup socket socket
 * @{ @ingroup network
 */

#ifndef SOCKET_H_
#define SOCKET_H_

typedef struct socket_t socket_t;

#include <library.h>
#include <network/packet.h>
#include <utils/host.h>
#include <utils/linked_list.h>

/**
 * Maximum size of a packet.
 *
 * 3000 Bytes should be sufficient, see IKEv2 RFC. However, we currently
 * do not support HASH_AND_URL certificates, so we require to transmit
 * the full certificates. To run our multi-CA test with 2 intermediate CAs,
 * 5000 bytes is sufficient.
 */
#define MAX_PACKET 5000

/**
 * Abstraction of all sockets (IPv4/IPv6 send/receive).
 *
 * All available sockets are bound and the receive function
 * reads from them. There are actually two implementations:
 * The first uses raw sockets to allow binding of other daemons (pluto) to
 * UDP/500. An installed "Linux socket filter" filters out all non-IKEv2 
 * traffic and handles just IKEv2 messages. An other daemon (pluto) must 
 * handle all traffic separately, e.g. ignore IKEv2 traffic, since charon 
 * handles that.
 * The other implementation uses normal sockets and is built if
 * --disable-pluto is given to the configure script.
 */
struct socket_t {
	
	/**
	 * Receive a packet.
	 * 
	 * Reads a packet from the socket and sets source/dest
	 * appropriately.
	 * 
	 * @param packet		pinter gets address from allocated packet_t
	 * @return 				
	 * 						- SUCCESS when packet successfully received
	 * 						- FAILED when unable to receive
	 */
	status_t (*receive) (socket_t *this, packet_t **packet);
	
	/**
	 * Send a packet.
	 * 
	 * Sends a packet to the net using destination from the packet.
	 * Packet is sent using default routing mechanisms, thus the 
	 * source address in packet is ignored.
	 * 
	 * @param packet		packet_t to send
	 * @return 				
	 * 						- SUCCESS when packet successfully sent
	 * 						- FAILED when unable to send
	 */
	status_t (*send) (socket_t *this, packet_t *packet);
	
	/**
	 * Destroy socket.
	 */
	void (*destroy) (socket_t *this);
};

/**
 * Create a socket_t, which binds multiple sockets.
 *
 * @return  				socket_t object
 */
socket_t *socket_create();

#endif /*SOCKET_H_ @} */