PageRenderTime 31ms CodeModel.GetById 13ms RepoModel.GetById 0ms app.codeStats 0ms

/mingw-w64-headers/include/schannel.h

https://gitlab.com/ubuntu-trusty/mingw-w64
C Header | 376 lines | 302 code | 69 blank | 5 comment | 0 complexity | b38c81f1d17594f218fdc4dacb7b4b7a MD5 | raw file
  1. /**
  2. * This file has no copyright assigned and is placed in the Public Domain.
  3. * This file is part of the mingw-w64 runtime package.
  4. * No warranty is given; refer to the file DISCLAIMER.PD within this package.
  5. */
  6. #ifndef __SCHANNEL_H__
  7. #define __SCHANNEL_H__
  8. #include <_mingw_unicode.h>
  9. #include <wincrypt.h>
  10. #define UNISP_NAME_A "Microsoft Unified Security Protocol Provider"
  11. #define UNISP_NAME_W L"Microsoft Unified Security Protocol Provider"
  12. #define SSL2SP_NAME_A "Microsoft SSL 2.0"
  13. #define SSL2SP_NAME_W L"Microsoft SSL 2.0"
  14. #define SSL3SP_NAME_A "Microsoft SSL 3.0"
  15. #define SSL3SP_NAME_W L"Microsoft SSL 3.0"
  16. #define TLS1SP_NAME_A "Microsoft TLS 1.0"
  17. #define TLS1SP_NAME_W L"Microsoft TLS 1.0"
  18. #define PCT1SP_NAME_A "Microsoft PCT 1.0"
  19. #define PCT1SP_NAME_W L"Microsoft PCT 1.0"
  20. #define SCHANNEL_NAME_A "Schannel"
  21. #define SCHANNEL_NAME_W L"Schannel"
  22. #define UNISP_NAME __MINGW_NAME_UAW(UNISP_NAME)
  23. #define PCT1SP_NAME __MINGW_NAME_UAW(PCT1SP_NAME)
  24. #define SSL2SP_NAME __MINGW_NAME_UAW(SSL2SP_NAME)
  25. #define SSL3SP_NAME __MINGW_NAME_UAW(SSL3SP_NAME)
  26. #define TLS1SP_NAME __MINGW_NAME_UAW(TLS1SP_NAME)
  27. #define SCHANNEL_NAME __MINGW_NAME_UAW(SCHANNEL_NAME)
  28. #define UNISP_RPC_ID 14
  29. #define SECPKG_ATTR_ISSUER_LIST 0x50
  30. #define SECPKG_ATTR_REMOTE_CRED 0x51
  31. #define SECPKG_ATTR_LOCAL_CRED 0x52
  32. #define SECPKG_ATTR_REMOTE_CERT_CONTEXT 0x53
  33. #define SECPKG_ATTR_LOCAL_CERT_CONTEXT 0x54
  34. #define SECPKG_ATTR_ROOT_STORE 0x55
  35. #define SECPKG_ATTR_SUPPORTED_ALGS 0x56
  36. #define SECPKG_ATTR_CIPHER_STRENGTHS 0x57
  37. #define SECPKG_ATTR_SUPPORTED_PROTOCOLS 0x58
  38. #define SECPKG_ATTR_ISSUER_LIST_EX 0x59
  39. #define SECPKG_ATTR_CONNECTION_INFO 0x5a
  40. #define SECPKG_ATTR_EAP_KEY_BLOCK 0x5b
  41. #define SECPKG_ATTR_MAPPED_CRED_ATTR 0x5c
  42. #define SECPKG_ATTR_SESSION_INFO 0x5d
  43. #define SECPKG_ATTR_APP_DATA 0x5e
  44. typedef struct _SecPkgContext_IssuerListInfo {
  45. DWORD cbIssuerList;
  46. PBYTE pIssuerList;
  47. } SecPkgContext_IssuerListInfo,*PSecPkgContext_IssuerListInfo;
  48. typedef struct _SecPkgContext_RemoteCredentialInfo {
  49. DWORD cbCertificateChain;
  50. PBYTE pbCertificateChain;
  51. DWORD cCertificates;
  52. DWORD fFlags;
  53. DWORD dwBits;
  54. } SecPkgContext_RemoteCredentialInfo,*PSecPkgContext_RemoteCredentialInfo;
  55. typedef SecPkgContext_RemoteCredentialInfo SecPkgContext_RemoteCredenitalInfo,*PSecPkgContext_RemoteCredenitalInfo;
  56. #define RCRED_STATUS_NOCRED 0x00000000
  57. #define RCRED_CRED_EXISTS 0x00000001
  58. #define RCRED_STATUS_UNKNOWN_ISSUER 0x00000002
  59. typedef struct _SecPkgContext_LocalCredentialInfo {
  60. DWORD cbCertificateChain;
  61. PBYTE pbCertificateChain;
  62. DWORD cCertificates;
  63. DWORD fFlags;
  64. DWORD dwBits;
  65. } SecPkgContext_LocalCredentialInfo,*PSecPkgContext_LocalCredentialInfo;
  66. typedef SecPkgContext_LocalCredentialInfo SecPkgContext_LocalCredenitalInfo,*PSecPkgContext_LocalCredenitalInfo;
  67. #define LCRED_STATUS_NOCRED 0x00000000
  68. #define LCRED_CRED_EXISTS 0x00000001
  69. #define LCRED_STATUS_UNKNOWN_ISSUER 0x00000002
  70. typedef struct _SecPkgCred_SupportedAlgs {
  71. DWORD cSupportedAlgs;
  72. ALG_ID *palgSupportedAlgs;
  73. } SecPkgCred_SupportedAlgs,*PSecPkgCred_SupportedAlgs;
  74. typedef struct _SecPkgCred_CipherStrengths {
  75. DWORD dwMinimumCipherStrength;
  76. DWORD dwMaximumCipherStrength;
  77. } SecPkgCred_CipherStrengths,*PSecPkgCred_CipherStrengths;
  78. typedef struct _SecPkgCred_SupportedProtocols {
  79. DWORD grbitProtocol;
  80. } SecPkgCred_SupportedProtocols,*PSecPkgCred_SupportedProtocols;
  81. typedef struct _SecPkgContext_IssuerListInfoEx {
  82. PCERT_NAME_BLOB aIssuers;
  83. DWORD cIssuers;
  84. } SecPkgContext_IssuerListInfoEx,*PSecPkgContext_IssuerListInfoEx;
  85. typedef struct _SecPkgContext_ConnectionInfo {
  86. DWORD dwProtocol;
  87. ALG_ID aiCipher;
  88. DWORD dwCipherStrength;
  89. ALG_ID aiHash;
  90. DWORD dwHashStrength;
  91. ALG_ID aiExch;
  92. DWORD dwExchStrength;
  93. } SecPkgContext_ConnectionInfo,*PSecPkgContext_ConnectionInfo;
  94. typedef struct _SecPkgContext_EapKeyBlock {
  95. BYTE rgbKeys[128];
  96. BYTE rgbIVs[64];
  97. } SecPkgContext_EapKeyBlock,*PSecPkgContext_EapKeyBlock;
  98. typedef struct _SecPkgContext_MappedCredAttr {
  99. DWORD dwAttribute;
  100. PVOID pvBuffer;
  101. } SecPkgContext_MappedCredAttr,*PSecPkgContext_MappedCredAttr;
  102. #define SSL_SESSION_RECONNECT 1
  103. typedef struct _SecPkgContext_SessionInfo {
  104. DWORD dwFlags;
  105. DWORD cbSessionId;
  106. BYTE rgbSessionId[32];
  107. } SecPkgContext_SessionInfo,*PSecPkgContext_SessionInfo;
  108. typedef struct _SecPkgContext_SessionAppData {
  109. DWORD dwFlags;
  110. DWORD cbAppData;
  111. PBYTE pbAppData;
  112. } SecPkgContext_SessionAppData,*PSecPkgContext_SessionAppData;
  113. #define SCH_CRED_V1 0x00000001
  114. #define SCH_CRED_V2 0x00000002
  115. #define SCH_CRED_VERSION 0x00000002
  116. #define SCH_CRED_V3 0x00000003
  117. #define SCHANNEL_CRED_VERSION 0x00000004
  118. struct _HMAPPER;
  119. typedef struct _SCHANNEL_CRED {
  120. DWORD dwVersion;
  121. DWORD cCreds;
  122. PCCERT_CONTEXT *paCred;
  123. HCERTSTORE hRootStore;
  124. DWORD cMappers;
  125. struct _HMAPPER **aphMappers;
  126. DWORD cSupportedAlgs;
  127. ALG_ID *palgSupportedAlgs;
  128. DWORD grbitEnabledProtocols;
  129. DWORD dwMinimumCipherStrength;
  130. DWORD dwMaximumCipherStrength;
  131. DWORD dwSessionLifespan;
  132. DWORD dwFlags;
  133. DWORD dwCredFormat;
  134. } SCHANNEL_CRED,*PSCHANNEL_CRED;
  135. #define SCH_CRED_FORMAT_CERT_HASH 0x00000001
  136. #define SCH_CRED_MAX_SUPPORTED_ALGS 256
  137. #define SCH_CRED_MAX_SUPPORTED_CERTS 100
  138. typedef struct _SCHANNEL_CERT_HASH {
  139. DWORD dwLength;
  140. DWORD dwFlags;
  141. HCRYPTPROV hProv;
  142. BYTE ShaHash[20];
  143. } SCHANNEL_CERT_HASH,*PSCHANNEL_CERT_HASH;
  144. #define SCH_MACHINE_CERT_HASH 0x00000001
  145. #define SCH_CRED_NO_SYSTEM_MAPPER 0x00000002
  146. #define SCH_CRED_NO_SERVERNAME_CHECK 0x00000004
  147. #define SCH_CRED_MANUAL_CRED_VALIDATION 0x00000008
  148. #define SCH_CRED_NO_DEFAULT_CREDS 0x00000010
  149. #define SCH_CRED_AUTO_CRED_VALIDATION 0x00000020
  150. #define SCH_CRED_USE_DEFAULT_CREDS 0x00000040
  151. #define SCH_CRED_DISABLE_RECONNECTS 0x00000080
  152. #define SCH_CRED_REVOCATION_CHECK_END_CERT 0x00000100
  153. #define SCH_CRED_REVOCATION_CHECK_CHAIN 0x00000200
  154. #define SCH_CRED_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT 0x00000400
  155. #define SCH_CRED_IGNORE_NO_REVOCATION_CHECK 0x00000800
  156. #define SCH_CRED_IGNORE_REVOCATION_OFFLINE 0x00001000
  157. #define SCH_CRED_REVOCATION_CHECK_CACHE_ONLY 0x00004000
  158. #define SCH_CRED_CACHE_ONLY_URL_RETRIEVAL 0x00008000
  159. #define SCHANNEL_RENEGOTIATE 0
  160. #define SCHANNEL_SHUTDOWN 1
  161. #define SCHANNEL_ALERT 2
  162. #define SCHANNEL_SESSION 3
  163. typedef struct _SCHANNEL_ALERT_TOKEN {
  164. DWORD dwTokenType;
  165. DWORD dwAlertType;
  166. DWORD dwAlertNumber;
  167. } SCHANNEL_ALERT_TOKEN;
  168. #define TLS1_ALERT_WARNING 1
  169. #define TLS1_ALERT_FATAL 2
  170. #define TLS1_ALERT_CLOSE_NOTIFY 0
  171. #define TLS1_ALERT_UNEXPECTED_MESSAGE 10
  172. #define TLS1_ALERT_BAD_RECORD_MAC 20
  173. #define TLS1_ALERT_DECRYPTION_FAILED 21
  174. #define TLS1_ALERT_RECORD_OVERFLOW 22
  175. #define TLS1_ALERT_DECOMPRESSION_FAIL 30
  176. #define TLS1_ALERT_HANDSHAKE_FAILURE 40
  177. #define TLS1_ALERT_BAD_CERTIFICATE 42
  178. #define TLS1_ALERT_UNSUPPORTED_CERT 43
  179. #define TLS1_ALERT_CERTIFICATE_REVOKED 44
  180. #define TLS1_ALERT_CERTIFICATE_EXPIRED 45
  181. #define TLS1_ALERT_CERTIFICATE_UNKNOWN 46
  182. #define TLS1_ALERT_ILLEGAL_PARAMETER 47
  183. #define TLS1_ALERT_UNKNOWN_CA 48
  184. #define TLS1_ALERT_ACCESS_DENIED 49
  185. #define TLS1_ALERT_DECODE_ERROR 50
  186. #define TLS1_ALERT_DECRYPT_ERROR 51
  187. #define TLS1_ALERT_EXPORT_RESTRICTION 60
  188. #define TLS1_ALERT_PROTOCOL_VERSION 70
  189. #define TLS1_ALERT_INSUFFIENT_SECURITY 71
  190. #define TLS1_ALERT_INTERNAL_ERROR 80
  191. #define TLS1_ALERT_USER_CANCELED 90
  192. #define TLS1_ALERT_NO_RENEGOTIATATION 100
  193. #define SSL_SESSION_ENABLE_RECONNECTS 1
  194. #define SSL_SESSION_DISABLE_RECONNECTS 2
  195. typedef struct _SCHANNEL_SESSION_TOKEN {
  196. DWORD dwTokenType;
  197. DWORD dwFlags;
  198. } SCHANNEL_SESSION_TOKEN;
  199. #define CERT_SCHANNEL_IIS_PRIVATE_KEY_PROP_ID (CERT_FIRST_USER_PROP_ID + 0)
  200. #define CERT_SCHANNEL_IIS_PASSWORD_PROP_ID (CERT_FIRST_USER_PROP_ID + 1)
  201. #define CERT_SCHANNEL_SGC_CERTIFICATE_PROP_ID (CERT_FIRST_USER_PROP_ID + 2)
  202. #define SP_PROT_PCT1_SERVER 0x00000001
  203. #define SP_PROT_PCT1_CLIENT 0x00000002
  204. #define SP_PROT_PCT1 (SP_PROT_PCT1_SERVER | SP_PROT_PCT1_CLIENT)
  205. #define SP_PROT_SSL2_SERVER 0x00000004
  206. #define SP_PROT_SSL2_CLIENT 0x00000008
  207. #define SP_PROT_SSL2 (SP_PROT_SSL2_SERVER | SP_PROT_SSL2_CLIENT)
  208. #define SP_PROT_SSL3_SERVER 0x00000010
  209. #define SP_PROT_SSL3_CLIENT 0x00000020
  210. #define SP_PROT_SSL3 (SP_PROT_SSL3_SERVER | SP_PROT_SSL3_CLIENT)
  211. #define SP_PROT_TLS1_SERVER 0x00000040
  212. #define SP_PROT_TLS1_CLIENT 0x00000080
  213. #define SP_PROT_TLS1 (SP_PROT_TLS1_SERVER | SP_PROT_TLS1_CLIENT)
  214. #define SP_PROT_SSL3TLS1_CLIENTS (SP_PROT_TLS1_CLIENT | SP_PROT_SSL3_CLIENT)
  215. #define SP_PROT_SSL3TLS1_SERVERS (SP_PROT_TLS1_SERVER | SP_PROT_SSL3_SERVER)
  216. #define SP_PROT_SSL3TLS1 (SP_PROT_SSL3 | SP_PROT_TLS1)
  217. #define SP_PROT_UNI_SERVER 0x40000000
  218. #define SP_PROT_UNI_CLIENT 0x80000000
  219. #define SP_PROT_UNI (SP_PROT_UNI_SERVER | SP_PROT_UNI_CLIENT)
  220. #define SP_PROT_ALL 0xffffffff
  221. #define SP_PROT_NONE 0
  222. #define SP_PROT_CLIENTS (SP_PROT_PCT1_CLIENT | SP_PROT_SSL2_CLIENT | SP_PROT_SSL3_CLIENT | SP_PROT_UNI_CLIENT | SP_PROT_TLS1_CLIENT)
  223. #define SP_PROT_SERVERS (SP_PROT_PCT1_SERVER | SP_PROT_SSL2_SERVER | SP_PROT_SSL3_SERVER | SP_PROT_UNI_SERVER | SP_PROT_TLS1_SERVER)
  224. typedef WINBOOL (*SSL_EMPTY_CACHE_FN_A)(LPSTR pszTargetName,DWORD dwFlags);
  225. WINBOOL SslEmptyCacheA(LPSTR pszTargetName,DWORD dwFlags);
  226. typedef WINBOOL (*SSL_EMPTY_CACHE_FN_W)(LPWSTR pszTargetName,DWORD dwFlags);
  227. WINBOOL SslEmptyCacheW(LPWSTR pszTargetName,DWORD dwFlags);
  228. #define SSL_EMPTY_CACHE_FN __MINGW_NAME_UAW(SSL_EMPTY_CACHE_FN)
  229. #define SslEmptyCache __MINGW_NAME_AW(SslEmptyCache)
  230. typedef struct _SSL_CREDENTIAL_CERTIFICATE {
  231. DWORD cbPrivateKey;
  232. PBYTE pPrivateKey;
  233. DWORD cbCertificate;
  234. PBYTE pCertificate;
  235. PSTR pszPassword;
  236. } SSL_CREDENTIAL_CERTIFICATE,*PSSL_CREDENTIAL_CERTIFICATE;
  237. #define SCHANNEL_SECRET_TYPE_CAPI 0x00000001
  238. #define SCHANNEL_SECRET_PRIVKEY 0x00000002
  239. #define SCH_CRED_X509_CERTCHAIN 0x00000001
  240. #define SCH_CRED_X509_CAPI 0x00000002
  241. #define SCH_CRED_CERT_CONTEXT 0x00000003
  242. struct _HMAPPER;
  243. typedef struct _SCH_CRED {
  244. DWORD dwVersion;
  245. DWORD cCreds;
  246. PVOID *paSecret;
  247. PVOID *paPublic;
  248. DWORD cMappers;
  249. struct _HMAPPER **aphMappers;
  250. } SCH_CRED,*PSCH_CRED;
  251. typedef struct _SCH_CRED_SECRET_CAPI {
  252. DWORD dwType;
  253. HCRYPTPROV hProv;
  254. } SCH_CRED_SECRET_CAPI,*PSCH_CRED_SECRET_CAPI;
  255. typedef struct _SCH_CRED_SECRET_PRIVKEY {
  256. DWORD dwType;
  257. PBYTE pPrivateKey;
  258. DWORD cbPrivateKey;
  259. PSTR pszPassword;
  260. } SCH_CRED_SECRET_PRIVKEY,*PSCH_CRED_SECRET_PRIVKEY;
  261. typedef struct _SCH_CRED_PUBLIC_CERTCHAIN {
  262. DWORD dwType;
  263. DWORD cbCertChain;
  264. PBYTE pCertChain;
  265. } SCH_CRED_PUBLIC_CERTCHAIN,*PSCH_CRED_PUBLIC_CERTCHAIN;
  266. typedef struct _SCH_CRED_PUBLIC_CAPI {
  267. DWORD dwType;
  268. HCRYPTPROV hProv;
  269. } SCH_CRED_PUBLIC_CAPI,*PSCH_CRED_PUBLIC_CAPI;
  270. typedef struct _PctPublicKey {
  271. DWORD Type;
  272. DWORD cbKey;
  273. UCHAR pKey[1];
  274. } PctPublicKey;
  275. typedef struct _X509Certificate {
  276. DWORD Version;
  277. DWORD SerialNumber[4];
  278. ALG_ID SignatureAlgorithm;
  279. FILETIME ValidFrom;
  280. FILETIME ValidUntil;
  281. PSTR pszIssuer;
  282. PSTR pszSubject;
  283. PctPublicKey *pPublicKey;
  284. } X509Certificate,*PX509Certificate;
  285. WINBOOL SslGenerateKeyPair(PSSL_CREDENTIAL_CERTIFICATE pCerts,PSTR pszDN,PSTR pszPassword,DWORD Bits);
  286. VOID SslGenerateRandomBits(PUCHAR pRandomData,LONG cRandomData);
  287. WINBOOL SslCrackCertificate(PUCHAR pbCertificate,DWORD cbCertificate,DWORD dwFlags,PX509Certificate *ppCertificate);
  288. VOID SslFreeCertificate(PX509Certificate pCertificate);
  289. DWORD WINAPI SslGetMaximumKeySize(DWORD Reserved);
  290. WINBOOL SslGetDefaultIssuers(PBYTE pbIssuers,DWORD *pcbIssuers);
  291. #define SSL_CRACK_CERTIFICATE_NAME TEXT("SslCrackCertificate")
  292. #define SSL_FREE_CERTIFICATE_NAME TEXT("SslFreeCertificate")
  293. typedef WINBOOL (WINAPI *SSL_CRACK_CERTIFICATE_FN)(PUCHAR pbCertificate,DWORD cbCertificate,WINBOOL VerifySignature,PX509Certificate *ppCertificate);
  294. typedef VOID (WINAPI *SSL_FREE_CERTIFICATE_FN)(PX509Certificate pCertificate);
  295. #if (_WIN32_WINNT >= 0x0600)
  296. typedef struct _SecPkgContext_EapPrfInfo {
  297. DWORD dwVersion;
  298. DWORD cbPrfData;
  299. } SecPkgContext_EapPrfInfo, *PSecPkgContext_EapPrfInfo;
  300. #endif /*(_WIN32_WINNT >= 0x0600)*/
  301. #if (_WIN32_WINNT >= 0x0601)
  302. typedef struct _SecPkgContext_SupportedSignatures {
  303. WORD cSignatureAndHashAlgorithms;
  304. WORD *pSignatureAndHashAlgorithms;
  305. } SecPkgContext_SupportedSignatures, *PSecPkgContext_SupportedSignatures;
  306. #endif /*(_WIN32_WINNT >= 0x0601)*/
  307. #endif