Daniel Peter / Mbed 2 deprecated cig_httpclient2

Dependencies:   mbed

Committer:
mbed714
Date:
Mon May 30 12:11:59 2011 +0000
Revision:
0:55680e5cc478

        

Who changed what in which revision?

UserRevisionLine numberNew contents of line
mbed714 0:55680e5cc478 1 /*****************************************************************************
mbed714 0:55680e5cc478 2 * pap.c - Network Password Authentication Protocol program file.
mbed714 0:55680e5cc478 3 *
mbed714 0:55680e5cc478 4 * Copyright (c) 2003 by Marc Boucher, Services Informatiques (MBSI) inc.
mbed714 0:55680e5cc478 5 * portions Copyright (c) 1997 by Global Election Systems Inc.
mbed714 0:55680e5cc478 6 *
mbed714 0:55680e5cc478 7 * The authors hereby grant permission to use, copy, modify, distribute,
mbed714 0:55680e5cc478 8 * and license this software and its documentation for any purpose, provided
mbed714 0:55680e5cc478 9 * that existing copyright notices are retained in all copies and that this
mbed714 0:55680e5cc478 10 * notice and the following disclaimer are included verbatim in any
mbed714 0:55680e5cc478 11 * distributions. No written agreement, license, or royalty fee is required
mbed714 0:55680e5cc478 12 * for any of the authorized uses.
mbed714 0:55680e5cc478 13 *
mbed714 0:55680e5cc478 14 * THIS SOFTWARE IS PROVIDED BY THE CONTRIBUTORS *AS IS* AND ANY EXPRESS OR
mbed714 0:55680e5cc478 15 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
mbed714 0:55680e5cc478 16 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
mbed714 0:55680e5cc478 17 * IN NO EVENT SHALL THE CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT,
mbed714 0:55680e5cc478 18 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
mbed714 0:55680e5cc478 19 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
mbed714 0:55680e5cc478 20 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
mbed714 0:55680e5cc478 21 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
mbed714 0:55680e5cc478 22 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
mbed714 0:55680e5cc478 23 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
mbed714 0:55680e5cc478 24 *
mbed714 0:55680e5cc478 25 ******************************************************************************
mbed714 0:55680e5cc478 26 * REVISION HISTORY
mbed714 0:55680e5cc478 27 *
mbed714 0:55680e5cc478 28 * 03-01-01 Marc Boucher <marc@mbsi.ca>
mbed714 0:55680e5cc478 29 * Ported to lwIP.
mbed714 0:55680e5cc478 30 * 97-12-12 Guy Lancaster <lancasterg@acm.org>, Global Election Systems Inc.
mbed714 0:55680e5cc478 31 * Original.
mbed714 0:55680e5cc478 32 *****************************************************************************/
mbed714 0:55680e5cc478 33 /*
mbed714 0:55680e5cc478 34 * upap.c - User/Password Authentication Protocol.
mbed714 0:55680e5cc478 35 *
mbed714 0:55680e5cc478 36 * Copyright (c) 1989 Carnegie Mellon University.
mbed714 0:55680e5cc478 37 * All rights reserved.
mbed714 0:55680e5cc478 38 *
mbed714 0:55680e5cc478 39 * Redistribution and use in source and binary forms are permitted
mbed714 0:55680e5cc478 40 * provided that the above copyright notice and this paragraph are
mbed714 0:55680e5cc478 41 * duplicated in all such forms and that any documentation,
mbed714 0:55680e5cc478 42 * advertising materials, and other materials related to such
mbed714 0:55680e5cc478 43 * distribution and use acknowledge that the software was developed
mbed714 0:55680e5cc478 44 * by Carnegie Mellon University. The name of the
mbed714 0:55680e5cc478 45 * University may not be used to endorse or promote products derived
mbed714 0:55680e5cc478 46 * from this software without specific prior written permission.
mbed714 0:55680e5cc478 47 * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR
mbed714 0:55680e5cc478 48 * IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED
mbed714 0:55680e5cc478 49 * WARRANTIES OF MERCHANTIBILITY AND FITNESS FOR A PARTICULAR PURPOSE.
mbed714 0:55680e5cc478 50 */
mbed714 0:55680e5cc478 51
mbed714 0:55680e5cc478 52 #include "lwip/opt.h"
mbed714 0:55680e5cc478 53
mbed714 0:55680e5cc478 54 #if PPP_SUPPORT /* don't build if not configured for use in lwipopts.h */
mbed714 0:55680e5cc478 55
mbed714 0:55680e5cc478 56 #if PAP_SUPPORT /* don't build if not configured for use in lwipopts.h */
mbed714 0:55680e5cc478 57
mbed714 0:55680e5cc478 58 #include "ppp.h"
mbed714 0:55680e5cc478 59 #include "pppdebug.h"
mbed714 0:55680e5cc478 60
mbed714 0:55680e5cc478 61 #include "auth.h"
mbed714 0:55680e5cc478 62 #include "pap.h"
mbed714 0:55680e5cc478 63
mbed714 0:55680e5cc478 64 #include <string.h>
mbed714 0:55680e5cc478 65
mbed714 0:55680e5cc478 66 #if 0 /* UNUSED */
mbed714 0:55680e5cc478 67 static bool hide_password = 1;
mbed714 0:55680e5cc478 68
mbed714 0:55680e5cc478 69 /*
mbed714 0:55680e5cc478 70 * Command-line options.
mbed714 0:55680e5cc478 71 */
mbed714 0:55680e5cc478 72 static option_t pap_option_list[] = {
mbed714 0:55680e5cc478 73 { "hide-password", o_bool, &hide_password,
mbed714 0:55680e5cc478 74 "Don't output passwords to log", 1 },
mbed714 0:55680e5cc478 75 { "show-password", o_bool, &hide_password,
mbed714 0:55680e5cc478 76 "Show password string in debug log messages", 0 },
mbed714 0:55680e5cc478 77 { "pap-restart", o_int, &upap[0].us_timeouttime,
mbed714 0:55680e5cc478 78 "Set retransmit timeout for PAP" },
mbed714 0:55680e5cc478 79 { "pap-max-authreq", o_int, &upap[0].us_maxtransmits,
mbed714 0:55680e5cc478 80 "Set max number of transmissions for auth-reqs" },
mbed714 0:55680e5cc478 81 { "pap-timeout", o_int, &upap[0].us_reqtimeout,
mbed714 0:55680e5cc478 82 "Set time limit for peer PAP authentication" },
mbed714 0:55680e5cc478 83 { NULL }
mbed714 0:55680e5cc478 84 };
mbed714 0:55680e5cc478 85 #endif
mbed714 0:55680e5cc478 86
mbed714 0:55680e5cc478 87 /*
mbed714 0:55680e5cc478 88 * Protocol entry points.
mbed714 0:55680e5cc478 89 */
mbed714 0:55680e5cc478 90 static void upap_init (int);
mbed714 0:55680e5cc478 91 static void upap_lowerup (int);
mbed714 0:55680e5cc478 92 static void upap_lowerdown (int);
mbed714 0:55680e5cc478 93 static void upap_input (int, u_char *, int);
mbed714 0:55680e5cc478 94 static void upap_protrej (int);
mbed714 0:55680e5cc478 95 #if PPP_ADDITIONAL_CALLBACKS
mbed714 0:55680e5cc478 96 static int upap_printpkt (u_char *, int, void (*)(void *, char *, ...), void *);
mbed714 0:55680e5cc478 97 #endif /* PPP_ADDITIONAL_CALLBACKS */
mbed714 0:55680e5cc478 98
mbed714 0:55680e5cc478 99 struct protent pap_protent = {
mbed714 0:55680e5cc478 100 PPP_PAP,
mbed714 0:55680e5cc478 101 upap_init,
mbed714 0:55680e5cc478 102 upap_input,
mbed714 0:55680e5cc478 103 upap_protrej,
mbed714 0:55680e5cc478 104 upap_lowerup,
mbed714 0:55680e5cc478 105 upap_lowerdown,
mbed714 0:55680e5cc478 106 NULL,
mbed714 0:55680e5cc478 107 NULL,
mbed714 0:55680e5cc478 108 #if PPP_ADDITIONAL_CALLBACKS
mbed714 0:55680e5cc478 109 upap_printpkt,
mbed714 0:55680e5cc478 110 NULL,
mbed714 0:55680e5cc478 111 #endif /* PPP_ADDITIONAL_CALLBACKS */
mbed714 0:55680e5cc478 112 1,
mbed714 0:55680e5cc478 113 "PAP",
mbed714 0:55680e5cc478 114 #if PPP_ADDITIONAL_CALLBACKS
mbed714 0:55680e5cc478 115 NULL,
mbed714 0:55680e5cc478 116 NULL,
mbed714 0:55680e5cc478 117 NULL
mbed714 0:55680e5cc478 118 #endif /* PPP_ADDITIONAL_CALLBACKS */
mbed714 0:55680e5cc478 119 };
mbed714 0:55680e5cc478 120
mbed714 0:55680e5cc478 121 upap_state upap[NUM_PPP]; /* UPAP state; one for each unit */
mbed714 0:55680e5cc478 122
mbed714 0:55680e5cc478 123 static void upap_timeout (void *);
mbed714 0:55680e5cc478 124 static void upap_reqtimeout(void *);
mbed714 0:55680e5cc478 125 static void upap_rauthreq (upap_state *, u_char *, u_char, int);
mbed714 0:55680e5cc478 126 static void upap_rauthack (upap_state *, u_char *, int, int);
mbed714 0:55680e5cc478 127 static void upap_rauthnak (upap_state *, u_char *, int, int);
mbed714 0:55680e5cc478 128 static void upap_sauthreq (upap_state *);
mbed714 0:55680e5cc478 129 static void upap_sresp (upap_state *, u_char, u_char, char *, int);
mbed714 0:55680e5cc478 130
mbed714 0:55680e5cc478 131
mbed714 0:55680e5cc478 132 /*
mbed714 0:55680e5cc478 133 * upap_init - Initialize a UPAP unit.
mbed714 0:55680e5cc478 134 */
mbed714 0:55680e5cc478 135 static void
mbed714 0:55680e5cc478 136 upap_init(int unit)
mbed714 0:55680e5cc478 137 {
mbed714 0:55680e5cc478 138 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 139
mbed714 0:55680e5cc478 140 UPAPDEBUG(LOG_INFO, ("upap_init: %d\n", unit));
mbed714 0:55680e5cc478 141 u->us_unit = unit;
mbed714 0:55680e5cc478 142 u->us_user = NULL;
mbed714 0:55680e5cc478 143 u->us_userlen = 0;
mbed714 0:55680e5cc478 144 u->us_passwd = NULL;
mbed714 0:55680e5cc478 145 u->us_passwdlen = 0;
mbed714 0:55680e5cc478 146 u->us_clientstate = UPAPCS_INITIAL;
mbed714 0:55680e5cc478 147 u->us_serverstate = UPAPSS_INITIAL;
mbed714 0:55680e5cc478 148 u->us_id = 0;
mbed714 0:55680e5cc478 149 u->us_timeouttime = UPAP_DEFTIMEOUT;
mbed714 0:55680e5cc478 150 u->us_maxtransmits = 10;
mbed714 0:55680e5cc478 151 u->us_reqtimeout = UPAP_DEFREQTIME;
mbed714 0:55680e5cc478 152 }
mbed714 0:55680e5cc478 153
mbed714 0:55680e5cc478 154 /*
mbed714 0:55680e5cc478 155 * upap_authwithpeer - Authenticate us with our peer (start client).
mbed714 0:55680e5cc478 156 *
mbed714 0:55680e5cc478 157 * Set new state and send authenticate's.
mbed714 0:55680e5cc478 158 */
mbed714 0:55680e5cc478 159 void
mbed714 0:55680e5cc478 160 upap_authwithpeer(int unit, char *user, char *password)
mbed714 0:55680e5cc478 161 {
mbed714 0:55680e5cc478 162 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 163
mbed714 0:55680e5cc478 164 UPAPDEBUG(LOG_INFO, ("upap_authwithpeer: %d user=%s password=%s s=%d\n",
mbed714 0:55680e5cc478 165 unit, user, password, u->us_clientstate));
mbed714 0:55680e5cc478 166
mbed714 0:55680e5cc478 167 /* Save the username and password we're given */
mbed714 0:55680e5cc478 168 u->us_user = user;
mbed714 0:55680e5cc478 169 u->us_userlen = (int)strlen(user);
mbed714 0:55680e5cc478 170 u->us_passwd = password;
mbed714 0:55680e5cc478 171 u->us_passwdlen = (int)strlen(password);
mbed714 0:55680e5cc478 172
mbed714 0:55680e5cc478 173 u->us_transmits = 0;
mbed714 0:55680e5cc478 174
mbed714 0:55680e5cc478 175 /* Lower layer up yet? */
mbed714 0:55680e5cc478 176 if (u->us_clientstate == UPAPCS_INITIAL ||
mbed714 0:55680e5cc478 177 u->us_clientstate == UPAPCS_PENDING) {
mbed714 0:55680e5cc478 178 u->us_clientstate = UPAPCS_PENDING;
mbed714 0:55680e5cc478 179 return;
mbed714 0:55680e5cc478 180 }
mbed714 0:55680e5cc478 181
mbed714 0:55680e5cc478 182 upap_sauthreq(u); /* Start protocol */
mbed714 0:55680e5cc478 183 }
mbed714 0:55680e5cc478 184
mbed714 0:55680e5cc478 185
mbed714 0:55680e5cc478 186 /*
mbed714 0:55680e5cc478 187 * upap_authpeer - Authenticate our peer (start server).
mbed714 0:55680e5cc478 188 *
mbed714 0:55680e5cc478 189 * Set new state.
mbed714 0:55680e5cc478 190 */
mbed714 0:55680e5cc478 191 void
mbed714 0:55680e5cc478 192 upap_authpeer(int unit)
mbed714 0:55680e5cc478 193 {
mbed714 0:55680e5cc478 194 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 195
mbed714 0:55680e5cc478 196 /* Lower layer up yet? */
mbed714 0:55680e5cc478 197 if (u->us_serverstate == UPAPSS_INITIAL ||
mbed714 0:55680e5cc478 198 u->us_serverstate == UPAPSS_PENDING) {
mbed714 0:55680e5cc478 199 u->us_serverstate = UPAPSS_PENDING;
mbed714 0:55680e5cc478 200 return;
mbed714 0:55680e5cc478 201 }
mbed714 0:55680e5cc478 202
mbed714 0:55680e5cc478 203 u->us_serverstate = UPAPSS_LISTEN;
mbed714 0:55680e5cc478 204 if (u->us_reqtimeout > 0) {
mbed714 0:55680e5cc478 205 TIMEOUT(upap_reqtimeout, u, u->us_reqtimeout);
mbed714 0:55680e5cc478 206 }
mbed714 0:55680e5cc478 207 }
mbed714 0:55680e5cc478 208
mbed714 0:55680e5cc478 209 /*
mbed714 0:55680e5cc478 210 * upap_timeout - Retransmission timer for sending auth-reqs expired.
mbed714 0:55680e5cc478 211 */
mbed714 0:55680e5cc478 212 static void
mbed714 0:55680e5cc478 213 upap_timeout(void *arg)
mbed714 0:55680e5cc478 214 {
mbed714 0:55680e5cc478 215 upap_state *u = (upap_state *) arg;
mbed714 0:55680e5cc478 216
mbed714 0:55680e5cc478 217 UPAPDEBUG(LOG_INFO, ("upap_timeout: %d timeout %d expired s=%d\n",
mbed714 0:55680e5cc478 218 u->us_unit, u->us_timeouttime, u->us_clientstate));
mbed714 0:55680e5cc478 219
mbed714 0:55680e5cc478 220 if (u->us_clientstate != UPAPCS_AUTHREQ) {
mbed714 0:55680e5cc478 221 UPAPDEBUG(LOG_INFO, ("upap_timeout: not in AUTHREQ state!\n"));
mbed714 0:55680e5cc478 222 return;
mbed714 0:55680e5cc478 223 }
mbed714 0:55680e5cc478 224
mbed714 0:55680e5cc478 225 if (u->us_transmits >= u->us_maxtransmits) {
mbed714 0:55680e5cc478 226 /* give up in disgust */
mbed714 0:55680e5cc478 227 UPAPDEBUG(LOG_ERR, ("No response to PAP authenticate-requests\n"));
mbed714 0:55680e5cc478 228 u->us_clientstate = UPAPCS_BADAUTH;
mbed714 0:55680e5cc478 229 auth_withpeer_fail(u->us_unit, PPP_PAP);
mbed714 0:55680e5cc478 230 return;
mbed714 0:55680e5cc478 231 }
mbed714 0:55680e5cc478 232
mbed714 0:55680e5cc478 233 upap_sauthreq(u); /* Send Authenticate-Request and set upap timeout*/
mbed714 0:55680e5cc478 234 }
mbed714 0:55680e5cc478 235
mbed714 0:55680e5cc478 236
mbed714 0:55680e5cc478 237 /*
mbed714 0:55680e5cc478 238 * upap_reqtimeout - Give up waiting for the peer to send an auth-req.
mbed714 0:55680e5cc478 239 */
mbed714 0:55680e5cc478 240 static void
mbed714 0:55680e5cc478 241 upap_reqtimeout(void *arg)
mbed714 0:55680e5cc478 242 {
mbed714 0:55680e5cc478 243 upap_state *u = (upap_state *) arg;
mbed714 0:55680e5cc478 244
mbed714 0:55680e5cc478 245 if (u->us_serverstate != UPAPSS_LISTEN) {
mbed714 0:55680e5cc478 246 return; /* huh?? */
mbed714 0:55680e5cc478 247 }
mbed714 0:55680e5cc478 248
mbed714 0:55680e5cc478 249 auth_peer_fail(u->us_unit, PPP_PAP);
mbed714 0:55680e5cc478 250 u->us_serverstate = UPAPSS_BADAUTH;
mbed714 0:55680e5cc478 251 }
mbed714 0:55680e5cc478 252
mbed714 0:55680e5cc478 253
mbed714 0:55680e5cc478 254 /*
mbed714 0:55680e5cc478 255 * upap_lowerup - The lower layer is up.
mbed714 0:55680e5cc478 256 *
mbed714 0:55680e5cc478 257 * Start authenticating if pending.
mbed714 0:55680e5cc478 258 */
mbed714 0:55680e5cc478 259 static void
mbed714 0:55680e5cc478 260 upap_lowerup(int unit)
mbed714 0:55680e5cc478 261 {
mbed714 0:55680e5cc478 262 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 263
mbed714 0:55680e5cc478 264 UPAPDEBUG(LOG_INFO, ("upap_lowerup: init %d clientstate s=%d\n", unit, u->us_clientstate));
mbed714 0:55680e5cc478 265
mbed714 0:55680e5cc478 266 if (u->us_clientstate == UPAPCS_INITIAL) {
mbed714 0:55680e5cc478 267 u->us_clientstate = UPAPCS_CLOSED;
mbed714 0:55680e5cc478 268 } else if (u->us_clientstate == UPAPCS_PENDING) {
mbed714 0:55680e5cc478 269 upap_sauthreq(u); /* send an auth-request */
mbed714 0:55680e5cc478 270 /* now client state is UPAPCS__AUTHREQ */
mbed714 0:55680e5cc478 271 }
mbed714 0:55680e5cc478 272
mbed714 0:55680e5cc478 273 if (u->us_serverstate == UPAPSS_INITIAL) {
mbed714 0:55680e5cc478 274 u->us_serverstate = UPAPSS_CLOSED;
mbed714 0:55680e5cc478 275 } else if (u->us_serverstate == UPAPSS_PENDING) {
mbed714 0:55680e5cc478 276 u->us_serverstate = UPAPSS_LISTEN;
mbed714 0:55680e5cc478 277 if (u->us_reqtimeout > 0) {
mbed714 0:55680e5cc478 278 TIMEOUT(upap_reqtimeout, u, u->us_reqtimeout);
mbed714 0:55680e5cc478 279 }
mbed714 0:55680e5cc478 280 }
mbed714 0:55680e5cc478 281 }
mbed714 0:55680e5cc478 282
mbed714 0:55680e5cc478 283
mbed714 0:55680e5cc478 284 /*
mbed714 0:55680e5cc478 285 * upap_lowerdown - The lower layer is down.
mbed714 0:55680e5cc478 286 *
mbed714 0:55680e5cc478 287 * Cancel all timeouts.
mbed714 0:55680e5cc478 288 */
mbed714 0:55680e5cc478 289 static void
mbed714 0:55680e5cc478 290 upap_lowerdown(int unit)
mbed714 0:55680e5cc478 291 {
mbed714 0:55680e5cc478 292 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 293
mbed714 0:55680e5cc478 294 UPAPDEBUG(LOG_INFO, ("upap_lowerdown: %d s=%d\n", unit, u->us_clientstate));
mbed714 0:55680e5cc478 295
mbed714 0:55680e5cc478 296 if (u->us_clientstate == UPAPCS_AUTHREQ) { /* Timeout pending? */
mbed714 0:55680e5cc478 297 UNTIMEOUT(upap_timeout, u); /* Cancel timeout */
mbed714 0:55680e5cc478 298 }
mbed714 0:55680e5cc478 299 if (u->us_serverstate == UPAPSS_LISTEN && u->us_reqtimeout > 0) {
mbed714 0:55680e5cc478 300 UNTIMEOUT(upap_reqtimeout, u);
mbed714 0:55680e5cc478 301 }
mbed714 0:55680e5cc478 302
mbed714 0:55680e5cc478 303 u->us_clientstate = UPAPCS_INITIAL;
mbed714 0:55680e5cc478 304 u->us_serverstate = UPAPSS_INITIAL;
mbed714 0:55680e5cc478 305 }
mbed714 0:55680e5cc478 306
mbed714 0:55680e5cc478 307
mbed714 0:55680e5cc478 308 /*
mbed714 0:55680e5cc478 309 * upap_protrej - Peer doesn't speak this protocol.
mbed714 0:55680e5cc478 310 *
mbed714 0:55680e5cc478 311 * This shouldn't happen. In any case, pretend lower layer went down.
mbed714 0:55680e5cc478 312 */
mbed714 0:55680e5cc478 313 static void
mbed714 0:55680e5cc478 314 upap_protrej(int unit)
mbed714 0:55680e5cc478 315 {
mbed714 0:55680e5cc478 316 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 317
mbed714 0:55680e5cc478 318 if (u->us_clientstate == UPAPCS_AUTHREQ) {
mbed714 0:55680e5cc478 319 UPAPDEBUG(LOG_ERR, ("PAP authentication failed due to protocol-reject\n"));
mbed714 0:55680e5cc478 320 auth_withpeer_fail(unit, PPP_PAP);
mbed714 0:55680e5cc478 321 }
mbed714 0:55680e5cc478 322 if (u->us_serverstate == UPAPSS_LISTEN) {
mbed714 0:55680e5cc478 323 UPAPDEBUG(LOG_ERR, ("PAP authentication of peer failed (protocol-reject)\n"));
mbed714 0:55680e5cc478 324 auth_peer_fail(unit, PPP_PAP);
mbed714 0:55680e5cc478 325 }
mbed714 0:55680e5cc478 326 upap_lowerdown(unit);
mbed714 0:55680e5cc478 327 }
mbed714 0:55680e5cc478 328
mbed714 0:55680e5cc478 329
mbed714 0:55680e5cc478 330 /*
mbed714 0:55680e5cc478 331 * upap_input - Input UPAP packet.
mbed714 0:55680e5cc478 332 */
mbed714 0:55680e5cc478 333 static void
mbed714 0:55680e5cc478 334 upap_input(int unit, u_char *inpacket, int l)
mbed714 0:55680e5cc478 335 {
mbed714 0:55680e5cc478 336 upap_state *u = &upap[unit];
mbed714 0:55680e5cc478 337 u_char *inp;
mbed714 0:55680e5cc478 338 u_char code, id;
mbed714 0:55680e5cc478 339 int len;
mbed714 0:55680e5cc478 340
mbed714 0:55680e5cc478 341 /*
mbed714 0:55680e5cc478 342 * Parse header (code, id and length).
mbed714 0:55680e5cc478 343 * If packet too short, drop it.
mbed714 0:55680e5cc478 344 */
mbed714 0:55680e5cc478 345 inp = inpacket;
mbed714 0:55680e5cc478 346 if (l < (int)UPAP_HEADERLEN) {
mbed714 0:55680e5cc478 347 UPAPDEBUG(LOG_INFO, ("pap_input: rcvd short header.\n"));
mbed714 0:55680e5cc478 348 return;
mbed714 0:55680e5cc478 349 }
mbed714 0:55680e5cc478 350 GETCHAR(code, inp);
mbed714 0:55680e5cc478 351 GETCHAR(id, inp);
mbed714 0:55680e5cc478 352 GETSHORT(len, inp);
mbed714 0:55680e5cc478 353 if (len < (int)UPAP_HEADERLEN) {
mbed714 0:55680e5cc478 354 UPAPDEBUG(LOG_INFO, ("pap_input: rcvd illegal length.\n"));
mbed714 0:55680e5cc478 355 return;
mbed714 0:55680e5cc478 356 }
mbed714 0:55680e5cc478 357 if (len > l) {
mbed714 0:55680e5cc478 358 UPAPDEBUG(LOG_INFO, ("pap_input: rcvd short packet.\n"));
mbed714 0:55680e5cc478 359 return;
mbed714 0:55680e5cc478 360 }
mbed714 0:55680e5cc478 361 len -= UPAP_HEADERLEN;
mbed714 0:55680e5cc478 362
mbed714 0:55680e5cc478 363 /*
mbed714 0:55680e5cc478 364 * Action depends on code.
mbed714 0:55680e5cc478 365 */
mbed714 0:55680e5cc478 366 switch (code) {
mbed714 0:55680e5cc478 367 case UPAP_AUTHREQ:
mbed714 0:55680e5cc478 368 upap_rauthreq(u, inp, id, len);
mbed714 0:55680e5cc478 369 break;
mbed714 0:55680e5cc478 370
mbed714 0:55680e5cc478 371 case UPAP_AUTHACK:
mbed714 0:55680e5cc478 372 upap_rauthack(u, inp, id, len);
mbed714 0:55680e5cc478 373 break;
mbed714 0:55680e5cc478 374
mbed714 0:55680e5cc478 375 case UPAP_AUTHNAK:
mbed714 0:55680e5cc478 376 upap_rauthnak(u, inp, id, len);
mbed714 0:55680e5cc478 377 break;
mbed714 0:55680e5cc478 378
mbed714 0:55680e5cc478 379 default: /* XXX Need code reject */
mbed714 0:55680e5cc478 380 UPAPDEBUG(LOG_INFO, ("pap_input: UNHANDLED default: code: %d, id: %d, len: %d.\n", code, id, len));
mbed714 0:55680e5cc478 381 break;
mbed714 0:55680e5cc478 382 }
mbed714 0:55680e5cc478 383 }
mbed714 0:55680e5cc478 384
mbed714 0:55680e5cc478 385
mbed714 0:55680e5cc478 386 /*
mbed714 0:55680e5cc478 387 * upap_rauth - Receive Authenticate.
mbed714 0:55680e5cc478 388 */
mbed714 0:55680e5cc478 389 static void
mbed714 0:55680e5cc478 390 upap_rauthreq(upap_state *u, u_char *inp, u_char id, int len)
mbed714 0:55680e5cc478 391 {
mbed714 0:55680e5cc478 392 u_char ruserlen, rpasswdlen;
mbed714 0:55680e5cc478 393 char *ruser, *rpasswd;
mbed714 0:55680e5cc478 394 u_char retcode;
mbed714 0:55680e5cc478 395 char *msg;
mbed714 0:55680e5cc478 396 int msglen;
mbed714 0:55680e5cc478 397
mbed714 0:55680e5cc478 398 UPAPDEBUG(LOG_INFO, ("pap_rauth: Rcvd id %d.\n", id));
mbed714 0:55680e5cc478 399
mbed714 0:55680e5cc478 400 if (u->us_serverstate < UPAPSS_LISTEN) {
mbed714 0:55680e5cc478 401 return;
mbed714 0:55680e5cc478 402 }
mbed714 0:55680e5cc478 403
mbed714 0:55680e5cc478 404 /*
mbed714 0:55680e5cc478 405 * If we receive a duplicate authenticate-request, we are
mbed714 0:55680e5cc478 406 * supposed to return the same status as for the first request.
mbed714 0:55680e5cc478 407 */
mbed714 0:55680e5cc478 408 if (u->us_serverstate == UPAPSS_OPEN) {
mbed714 0:55680e5cc478 409 upap_sresp(u, UPAP_AUTHACK, id, "", 0); /* return auth-ack */
mbed714 0:55680e5cc478 410 return;
mbed714 0:55680e5cc478 411 }
mbed714 0:55680e5cc478 412 if (u->us_serverstate == UPAPSS_BADAUTH) {
mbed714 0:55680e5cc478 413 upap_sresp(u, UPAP_AUTHNAK, id, "", 0); /* return auth-nak */
mbed714 0:55680e5cc478 414 return;
mbed714 0:55680e5cc478 415 }
mbed714 0:55680e5cc478 416
mbed714 0:55680e5cc478 417 /*
mbed714 0:55680e5cc478 418 * Parse user/passwd.
mbed714 0:55680e5cc478 419 */
mbed714 0:55680e5cc478 420 if (len < (int)sizeof (u_char)) {
mbed714 0:55680e5cc478 421 UPAPDEBUG(LOG_INFO, ("pap_rauth: rcvd short packet.\n"));
mbed714 0:55680e5cc478 422 return;
mbed714 0:55680e5cc478 423 }
mbed714 0:55680e5cc478 424 GETCHAR(ruserlen, inp);
mbed714 0:55680e5cc478 425 len -= sizeof (u_char) + ruserlen + sizeof (u_char);
mbed714 0:55680e5cc478 426 if (len < 0) {
mbed714 0:55680e5cc478 427 UPAPDEBUG(LOG_INFO, ("pap_rauth: rcvd short packet.\n"));
mbed714 0:55680e5cc478 428 return;
mbed714 0:55680e5cc478 429 }
mbed714 0:55680e5cc478 430 ruser = (char *) inp;
mbed714 0:55680e5cc478 431 INCPTR(ruserlen, inp);
mbed714 0:55680e5cc478 432 GETCHAR(rpasswdlen, inp);
mbed714 0:55680e5cc478 433 if (len < rpasswdlen) {
mbed714 0:55680e5cc478 434 UPAPDEBUG(LOG_INFO, ("pap_rauth: rcvd short packet.\n"));
mbed714 0:55680e5cc478 435 return;
mbed714 0:55680e5cc478 436 }
mbed714 0:55680e5cc478 437 rpasswd = (char *) inp;
mbed714 0:55680e5cc478 438
mbed714 0:55680e5cc478 439 /*
mbed714 0:55680e5cc478 440 * Check the username and password given.
mbed714 0:55680e5cc478 441 */
mbed714 0:55680e5cc478 442 retcode = check_passwd(u->us_unit, ruser, ruserlen, rpasswd, rpasswdlen, &msg, &msglen);
mbed714 0:55680e5cc478 443 /* lwip: currently retcode is always UPAP_AUTHACK */
mbed714 0:55680e5cc478 444 BZERO(rpasswd, rpasswdlen);
mbed714 0:55680e5cc478 445
mbed714 0:55680e5cc478 446 upap_sresp(u, retcode, id, msg, msglen);
mbed714 0:55680e5cc478 447
mbed714 0:55680e5cc478 448 if (retcode == UPAP_AUTHACK) {
mbed714 0:55680e5cc478 449 u->us_serverstate = UPAPSS_OPEN;
mbed714 0:55680e5cc478 450 auth_peer_success(u->us_unit, PPP_PAP, ruser, ruserlen);
mbed714 0:55680e5cc478 451 } else {
mbed714 0:55680e5cc478 452 u->us_serverstate = UPAPSS_BADAUTH;
mbed714 0:55680e5cc478 453 auth_peer_fail(u->us_unit, PPP_PAP);
mbed714 0:55680e5cc478 454 }
mbed714 0:55680e5cc478 455
mbed714 0:55680e5cc478 456 if (u->us_reqtimeout > 0) {
mbed714 0:55680e5cc478 457 UNTIMEOUT(upap_reqtimeout, u);
mbed714 0:55680e5cc478 458 }
mbed714 0:55680e5cc478 459 }
mbed714 0:55680e5cc478 460
mbed714 0:55680e5cc478 461
mbed714 0:55680e5cc478 462 /*
mbed714 0:55680e5cc478 463 * upap_rauthack - Receive Authenticate-Ack.
mbed714 0:55680e5cc478 464 */
mbed714 0:55680e5cc478 465 static void
mbed714 0:55680e5cc478 466 upap_rauthack(upap_state *u, u_char *inp, int id, int len)
mbed714 0:55680e5cc478 467 {
mbed714 0:55680e5cc478 468 u_char msglen;
mbed714 0:55680e5cc478 469 char *msg;
mbed714 0:55680e5cc478 470
mbed714 0:55680e5cc478 471 LWIP_UNUSED_ARG(id);
mbed714 0:55680e5cc478 472
mbed714 0:55680e5cc478 473 UPAPDEBUG(LOG_INFO, ("pap_rauthack: Rcvd id %d s=%d\n", id, u->us_clientstate));
mbed714 0:55680e5cc478 474
mbed714 0:55680e5cc478 475 if (u->us_clientstate != UPAPCS_AUTHREQ) { /* XXX */
mbed714 0:55680e5cc478 476 UPAPDEBUG(LOG_INFO, ("pap_rauthack: us_clientstate != UPAPCS_AUTHREQ\n"));
mbed714 0:55680e5cc478 477 return;
mbed714 0:55680e5cc478 478 }
mbed714 0:55680e5cc478 479
mbed714 0:55680e5cc478 480 /*
mbed714 0:55680e5cc478 481 * Parse message.
mbed714 0:55680e5cc478 482 */
mbed714 0:55680e5cc478 483 if (len < (int)sizeof (u_char)) {
mbed714 0:55680e5cc478 484 UPAPDEBUG(LOG_INFO, ("pap_rauthack: ignoring missing msg-length.\n"));
mbed714 0:55680e5cc478 485 } else {
mbed714 0:55680e5cc478 486 GETCHAR(msglen, inp);
mbed714 0:55680e5cc478 487 if (msglen > 0) {
mbed714 0:55680e5cc478 488 len -= sizeof (u_char);
mbed714 0:55680e5cc478 489 if (len < msglen) {
mbed714 0:55680e5cc478 490 UPAPDEBUG(LOG_INFO, ("pap_rauthack: rcvd short packet.\n"));
mbed714 0:55680e5cc478 491 return;
mbed714 0:55680e5cc478 492 }
mbed714 0:55680e5cc478 493 msg = (char *) inp;
mbed714 0:55680e5cc478 494 PRINTMSG(msg, msglen);
mbed714 0:55680e5cc478 495 }
mbed714 0:55680e5cc478 496 }
mbed714 0:55680e5cc478 497 UNTIMEOUT(upap_timeout, u); /* Cancel timeout */
mbed714 0:55680e5cc478 498 u->us_clientstate = UPAPCS_OPEN;
mbed714 0:55680e5cc478 499
mbed714 0:55680e5cc478 500 auth_withpeer_success(u->us_unit, PPP_PAP);
mbed714 0:55680e5cc478 501 }
mbed714 0:55680e5cc478 502
mbed714 0:55680e5cc478 503
mbed714 0:55680e5cc478 504 /*
mbed714 0:55680e5cc478 505 * upap_rauthnak - Receive Authenticate-Nak.
mbed714 0:55680e5cc478 506 */
mbed714 0:55680e5cc478 507 static void
mbed714 0:55680e5cc478 508 upap_rauthnak(upap_state *u, u_char *inp, int id, int len)
mbed714 0:55680e5cc478 509 {
mbed714 0:55680e5cc478 510 u_char msglen;
mbed714 0:55680e5cc478 511 char *msg;
mbed714 0:55680e5cc478 512
mbed714 0:55680e5cc478 513 LWIP_UNUSED_ARG(id);
mbed714 0:55680e5cc478 514
mbed714 0:55680e5cc478 515 UPAPDEBUG(LOG_INFO, ("pap_rauthnak: Rcvd id %d s=%d\n", id, u->us_clientstate));
mbed714 0:55680e5cc478 516
mbed714 0:55680e5cc478 517 if (u->us_clientstate != UPAPCS_AUTHREQ) { /* XXX */
mbed714 0:55680e5cc478 518 return;
mbed714 0:55680e5cc478 519 }
mbed714 0:55680e5cc478 520
mbed714 0:55680e5cc478 521 /*
mbed714 0:55680e5cc478 522 * Parse message.
mbed714 0:55680e5cc478 523 */
mbed714 0:55680e5cc478 524 if (len < sizeof (u_char)) {
mbed714 0:55680e5cc478 525 UPAPDEBUG(LOG_INFO, ("pap_rauthnak: ignoring missing msg-length.\n"));
mbed714 0:55680e5cc478 526 } else {
mbed714 0:55680e5cc478 527 GETCHAR(msglen, inp);
mbed714 0:55680e5cc478 528 if(msglen > 0) {
mbed714 0:55680e5cc478 529 len -= sizeof (u_char);
mbed714 0:55680e5cc478 530 if (len < msglen) {
mbed714 0:55680e5cc478 531 UPAPDEBUG(LOG_INFO, ("pap_rauthnak: rcvd short packet.\n"));
mbed714 0:55680e5cc478 532 return;
mbed714 0:55680e5cc478 533 }
mbed714 0:55680e5cc478 534 msg = (char *) inp;
mbed714 0:55680e5cc478 535 PRINTMSG(msg, msglen);
mbed714 0:55680e5cc478 536 }
mbed714 0:55680e5cc478 537 }
mbed714 0:55680e5cc478 538
mbed714 0:55680e5cc478 539 u->us_clientstate = UPAPCS_BADAUTH;
mbed714 0:55680e5cc478 540
mbed714 0:55680e5cc478 541 UPAPDEBUG(LOG_ERR, ("PAP authentication failed\n"));
mbed714 0:55680e5cc478 542 auth_withpeer_fail(u->us_unit, PPP_PAP);
mbed714 0:55680e5cc478 543 }
mbed714 0:55680e5cc478 544
mbed714 0:55680e5cc478 545
mbed714 0:55680e5cc478 546 /*
mbed714 0:55680e5cc478 547 * upap_sauthreq - Send an Authenticate-Request.
mbed714 0:55680e5cc478 548 */
mbed714 0:55680e5cc478 549 static void
mbed714 0:55680e5cc478 550 upap_sauthreq(upap_state *u)
mbed714 0:55680e5cc478 551 {
mbed714 0:55680e5cc478 552 u_char *outp;
mbed714 0:55680e5cc478 553 int outlen;
mbed714 0:55680e5cc478 554
mbed714 0:55680e5cc478 555 outlen = UPAP_HEADERLEN + 2 * sizeof (u_char)
mbed714 0:55680e5cc478 556 + u->us_userlen + u->us_passwdlen;
mbed714 0:55680e5cc478 557 outp = outpacket_buf[u->us_unit];
mbed714 0:55680e5cc478 558
mbed714 0:55680e5cc478 559 MAKEHEADER(outp, PPP_PAP);
mbed714 0:55680e5cc478 560
mbed714 0:55680e5cc478 561 PUTCHAR(UPAP_AUTHREQ, outp);
mbed714 0:55680e5cc478 562 PUTCHAR(++u->us_id, outp);
mbed714 0:55680e5cc478 563 PUTSHORT(outlen, outp);
mbed714 0:55680e5cc478 564 PUTCHAR(u->us_userlen, outp);
mbed714 0:55680e5cc478 565 BCOPY(u->us_user, outp, u->us_userlen);
mbed714 0:55680e5cc478 566 INCPTR(u->us_userlen, outp);
mbed714 0:55680e5cc478 567 PUTCHAR(u->us_passwdlen, outp);
mbed714 0:55680e5cc478 568 BCOPY(u->us_passwd, outp, u->us_passwdlen);
mbed714 0:55680e5cc478 569
mbed714 0:55680e5cc478 570 pppWrite(u->us_unit, outpacket_buf[u->us_unit], outlen + PPP_HDRLEN);
mbed714 0:55680e5cc478 571
mbed714 0:55680e5cc478 572 UPAPDEBUG(LOG_INFO, ("pap_sauth: Sent id %d\n", u->us_id));
mbed714 0:55680e5cc478 573
mbed714 0:55680e5cc478 574 TIMEOUT(upap_timeout, u, u->us_timeouttime);
mbed714 0:55680e5cc478 575 ++u->us_transmits;
mbed714 0:55680e5cc478 576 u->us_clientstate = UPAPCS_AUTHREQ;
mbed714 0:55680e5cc478 577 }
mbed714 0:55680e5cc478 578
mbed714 0:55680e5cc478 579
mbed714 0:55680e5cc478 580 /*
mbed714 0:55680e5cc478 581 * upap_sresp - Send a response (ack or nak).
mbed714 0:55680e5cc478 582 */
mbed714 0:55680e5cc478 583 static void
mbed714 0:55680e5cc478 584 upap_sresp(upap_state *u, u_char code, u_char id, char *msg, int msglen)
mbed714 0:55680e5cc478 585 {
mbed714 0:55680e5cc478 586 u_char *outp;
mbed714 0:55680e5cc478 587 int outlen;
mbed714 0:55680e5cc478 588
mbed714 0:55680e5cc478 589 outlen = UPAP_HEADERLEN + sizeof (u_char) + msglen;
mbed714 0:55680e5cc478 590 outp = outpacket_buf[u->us_unit];
mbed714 0:55680e5cc478 591 MAKEHEADER(outp, PPP_PAP);
mbed714 0:55680e5cc478 592
mbed714 0:55680e5cc478 593 PUTCHAR(code, outp);
mbed714 0:55680e5cc478 594 PUTCHAR(id, outp);
mbed714 0:55680e5cc478 595 PUTSHORT(outlen, outp);
mbed714 0:55680e5cc478 596 PUTCHAR(msglen, outp);
mbed714 0:55680e5cc478 597 BCOPY(msg, outp, msglen);
mbed714 0:55680e5cc478 598 pppWrite(u->us_unit, outpacket_buf[u->us_unit], outlen + PPP_HDRLEN);
mbed714 0:55680e5cc478 599
mbed714 0:55680e5cc478 600 UPAPDEBUG(LOG_INFO, ("pap_sresp: Sent code %d, id %d s=%d\n", code, id, u->us_clientstate));
mbed714 0:55680e5cc478 601 }
mbed714 0:55680e5cc478 602
mbed714 0:55680e5cc478 603 #if PPP_ADDITIONAL_CALLBACKS
mbed714 0:55680e5cc478 604 static char *upap_codenames[] = {
mbed714 0:55680e5cc478 605 "AuthReq", "AuthAck", "AuthNak"
mbed714 0:55680e5cc478 606 };
mbed714 0:55680e5cc478 607
mbed714 0:55680e5cc478 608 /*
mbed714 0:55680e5cc478 609 * upap_printpkt - print the contents of a PAP packet.
mbed714 0:55680e5cc478 610 */
mbed714 0:55680e5cc478 611 static int upap_printpkt(
mbed714 0:55680e5cc478 612 u_char *p,
mbed714 0:55680e5cc478 613 int plen,
mbed714 0:55680e5cc478 614 void (*printer) (void *, char *, ...),
mbed714 0:55680e5cc478 615 void *arg
mbed714 0:55680e5cc478 616 )
mbed714 0:55680e5cc478 617 {
mbed714 0:55680e5cc478 618 LWIP_UNUSED_ARG(p);
mbed714 0:55680e5cc478 619 LWIP_UNUSED_ARG(plen);
mbed714 0:55680e5cc478 620 LWIP_UNUSED_ARG(printer);
mbed714 0:55680e5cc478 621 LWIP_UNUSED_ARG(arg);
mbed714 0:55680e5cc478 622 return 0;
mbed714 0:55680e5cc478 623 }
mbed714 0:55680e5cc478 624 #endif /* PPP_ADDITIONAL_CALLBACKS */
mbed714 0:55680e5cc478 625
mbed714 0:55680e5cc478 626 #endif /* PAP_SUPPORT */
mbed714 0:55680e5cc478 627
mbed714 0:55680e5cc478 628 #endif /* PPP_SUPPORT */