summaryrefslogtreecommitdiff
path: root/sbin/isakmpd/dnssec.h
diff options
context:
space:
mode:
authorHakan Olsson <ho@cvs.openbsd.org>2001-01-26 21:49:38 +0000
committerHakan Olsson <ho@cvs.openbsd.org>2001-01-26 21:49:38 +0000
commit5ebd079b39b241cfc9ca571cf5225308222771f5 (patch)
tree95f0c10c99913628118baa6362a5794d9a0ecd2d /sbin/isakmpd/dnssec.h
parent6b4dba46dd554999806ae4409eeae7190c0f6b68 (diff)
Preliminary but working code to permit IKE authentication using DNSSEC
validated KEY records. Uses lwresd from the bind-9.1.0 port. Enable by adding 'dnssec' to FEATURES.
Diffstat (limited to 'sbin/isakmpd/dnssec.h')
-rw-r--r--sbin/isakmpd/dnssec.h31
1 files changed, 31 insertions, 0 deletions
diff --git a/sbin/isakmpd/dnssec.h b/sbin/isakmpd/dnssec.h
new file mode 100644
index 00000000000..22c59ce4af6
--- /dev/null
+++ b/sbin/isakmpd/dnssec.h
@@ -0,0 +1,31 @@
+/* $OpenBSD: dnssec.h,v 1.1 2001/01/26 21:49:37 ho Exp $ */
+
+/*
+ * Copyright (c) 2000 Håkan Olsson. All rights reserved.
+ *
+ * Redistribution and use in source and binary forms, with or without
+ * modification, are permitted provided that the following conditions
+ * are met:
+ * 1. Redistributions of source code must retain the above copyright
+ * notice, this list of conditions and the following disclaimer.
+ * 2. Redistributions in binary form must reproduce the above copyright
+ * notice, this list of conditions and the following disclaimer in the
+ * documentation and/or other materials provided with the distribution.
+ * 3. The name of the author may not be used to endorse or promote products
+ * derived from this software without specific prior written permission.
+ *
+ * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
+ * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
+ * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
+ * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
+ * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
+ * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
+ * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
+ * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
+ * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
+ * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
+ */
+
+void *dns_get_key (int, struct message *, int *);
+int dns_RSA_dns_to_x509 (u_int8_t *, int, RSA **);
+