summaryrefslogtreecommitdiff
path: root/src/libstrongswan/fips/fips.h
blob: decf73bfd531533e070e82678510c3a08fc485dc (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
/**
 * @file fips.h
 * 
 * @brief Interface of the libstrongswan integrity test
 *
 * @ingroup fips
 */

/*
 * Copyright (C) 2007 Bruno Krieg, Daniel Wydler
 * Hochschule fuer Technik Rapperswil
 *
 * This program is free software; you can redistribute it and/or modify it
 * under the terms of the GNU General Public License as published by the
 * Free Software Foundation; either version 2 of the License, or (at your
 * option) any later version.  See <http://www.fsf.org/copyleft/gpl.txt>.
 *
 * This program is distributed in the hope that it will be useful, but
 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
 * or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
 * for more details.
 */

#ifndef FIPS_H_
#define FIPS_H_

#include <library.h>

/**
 * @brief compute HMAC signature over RODATA and TEXT sections of libstrongswan
 *
 * @param  key		key used for HMAC signature in ASCII string format
 * @param  signature	HMAC signature in HEX string format
 * @return 		TRUE if HMAC signature computation was successful
 */
bool fips_compute_hmac_signature(const char *key, char *signature);

/**
 * @brief verify HMAC signature over RODATA and TEXT sections of libstrongswan
 *
 * @param  key		key used for HMAC signature in ASCII string format
 * @param  signature	signature value from fips_signature.h in HEX string format
 * @return		TRUE if signatures agree
 */
bool fips_verify_hmac_signature(const char *key, const char *signature);

#endif /*FIPS_H_*/