summaryrefslogtreecommitdiff
path: root/sbin/ipsec/shahmac
diff options
context:
space:
mode:
authorNiklas Hallqvist <niklas@cvs.openbsd.org>1997-02-21 23:17:57 +0000
committerNiklas Hallqvist <niklas@cvs.openbsd.org>1997-02-21 23:17:57 +0000
commit05d8515ba878b983423bb735abb4be1c9e7dc5c1 (patch)
treeda90f7221edfc6c0ff8022334694aba1cd7686e5 /sbin/ipsec/shahmac
parent8083acdd9a1ea3a77e756e9bfd28adbecc7d2438 (diff)
Integration of IPSEC userland tools, no manpages yet, sorry.
Diffstat (limited to 'sbin/ipsec/shahmac')
-rw-r--r--sbin/ipsec/shahmac/Makefile5
-rw-r--r--sbin/ipsec/shahmac/shahmac.c109
2 files changed, 114 insertions, 0 deletions
diff --git a/sbin/ipsec/shahmac/Makefile b/sbin/ipsec/shahmac/Makefile
new file mode 100644
index 00000000000..e6735e96558
--- /dev/null
+++ b/sbin/ipsec/shahmac/Makefile
@@ -0,0 +1,5 @@
+# $OpenBSD: Makefile,v 1.1 1997/02/21 23:17:51 niklas Exp $
+
+PROG= shahmac
+
+.include <bsd.prog.mk>
diff --git a/sbin/ipsec/shahmac/shahmac.c b/sbin/ipsec/shahmac/shahmac.c
new file mode 100644
index 00000000000..34905546d7e
--- /dev/null
+++ b/sbin/ipsec/shahmac/shahmac.c
@@ -0,0 +1,109 @@
+/*
+ * The author of this code is John Ioannidis, ji@tla.org,
+ * (except when noted otherwise).
+ *
+ * This code was written for BSD/OS in Athens, Greece, in November 1995.
+ *
+ * Ported to NetBSD, with additional transforms, in December 1996,
+ * by Angelos D. Keromytis, kermit@forthnet.gr.
+ *
+ * Copyright (C) 1995, 1996, 1997 by John Ioannidis and Angelos D. Keromytis.
+ *
+ * Permission to use, copy, and modify this software without fee
+ * is hereby granted, provided that this entire notice is included in
+ * all copies of any software which is or includes a copy or
+ * modification of this software.
+ *
+ * THIS SOFTWARE IS BEING PROVIDED "AS IS", WITHOUT ANY EXPRESS OR
+ * IMPLIED WARRANTY. IN PARTICULAR, NEITHER AUTHOR MAKES ANY
+ * REPRESENTATION OR WARRANTY OF ANY KIND CONCERNING THE
+ * MERCHANTABILITY OF THIS SOFTWARE OR ITS FITNESS FOR ANY PARTICULAR
+ * PURPOSE.
+ */
+
+#include <sys/param.h>
+#include <sys/file.h>
+#include <sys/socket.h>
+#include <sys/ioctl.h>
+#include <sys/mbuf.h>
+#include <sys/sysctl.h>
+
+#include <net/if.h>
+#include <net/route.h>
+#include <net/if_dl.h>
+#include <netinet/in.h>
+#include <netns/ns.h>
+#include <netiso/iso.h>
+#include <netccitt/x25.h>
+#include <arpa/inet.h>
+#include <netdb.h>
+
+#include <errno.h>
+#include <unistd.h>
+#include <stdio.h>
+#include <ctype.h>
+#include <stdlib.h>
+#include <string.h>
+#include <paths.h>
+#include "net/encap.h"
+#include "netinet/ip_ipsp.h"
+#include "netinet/ip_ah.h"
+
+
+#define IFT_ENC 0x37
+
+
+char buf[1024];
+
+int x2i(char *s)
+{
+ char ss[3];
+ ss[0] = s[0];
+ ss[1] = s[1];
+ ss[2] = 0;
+
+ return strtol(ss, NULL, 16);
+}
+
+
+main(argc, argv)
+int argc;
+char **argv;
+{
+ int sd, len, klen, i;
+
+ struct encap_msghdr *em;
+ struct ahhmacsha1_xencap *xd;
+ struct sockaddr_encap *dst, *msk, *gw;
+ struct sockaddr_dl *dl;
+ u_char *opts;
+
+ if (argc != 4)
+ fprintf(stderr, "usage: %s dst spi key\n", argv[0]), exit(1);
+ sd = socket(AF_ENCAP, SOCK_RAW, AF_UNSPEC);
+ if (sd < 0)
+ perror("socket"), exit(1);
+
+ klen = strlen(argv[3])/2;
+
+ em = (struct encap_msghdr *)&buf[0];
+
+ em->em_msglen = EMT_SETSPI_FLEN + 4 + AHHMACSHA1_KMAX;
+ em->em_version = 0;
+ em->em_type = EMT_SETSPI;
+ em->em_spi = htonl(strtol(argv[2], NULL, 16));
+ em->em_if = 1;
+ em->em_dst.s_addr = inet_addr(argv[1]);
+ em->em_alg = XF_AHHMACSHA1;
+ xd = (struct ahhmacsha1_xencap *)(em->em_dat);
+
+ xd->amx_alen = 20;
+ xd->amx_wnd = 32;
+
+ bzero(xd->amx_key, AHHMACSHA1_KMAX);
+ for (i = 0; i < klen; i++ )
+ xd->amx_key[i] = x2i(&(argv[3][2*i]));
+
+ if (write(sd, buf, em->em_msglen) != em->em_msglen)
+ perror("write");
+}