1 /* 2 * QEMU crypto TLS credential support 3 * 4 * Copyright (c) 2015 Red Hat, Inc. 5 * 6 * This library is free software; you can redistribute it and/or 7 * modify it under the terms of the GNU Lesser General Public 8 * License as published by the Free Software Foundation; either 9 * version 2.1 of the License, or (at your option) any later version. 10 * 11 * This library is distributed in the hope that it will be useful, 12 * but WITHOUT ANY WARRANTY; without even the implied warranty of 13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 14 * Lesser General Public License for more details. 15 * 16 * You should have received a copy of the GNU Lesser General Public 17 * License along with this library; if not, see <http://www.gnu.org/licenses/>. 18 * 19 */ 20 21 #ifndef QCRYPTO_TLSCREDS_H 22 #define QCRYPTO_TLSCREDS_H 23 24 #include "qapi/qapi-types-crypto.h" 25 #include "qom/object.h" 26 27 #ifdef CONFIG_GNUTLS 28 #include <gnutls/gnutls.h> 29 #endif 30 31 #define TYPE_QCRYPTO_TLS_CREDS "tls-creds" 32 #define QCRYPTO_TLS_CREDS(obj) \ 33 OBJECT_CHECK(QCryptoTLSCreds, (obj), TYPE_QCRYPTO_TLS_CREDS) 34 35 typedef struct QCryptoTLSCreds QCryptoTLSCreds; 36 typedef struct QCryptoTLSCredsClass QCryptoTLSCredsClass; 37 38 #define QCRYPTO_TLS_CREDS_DH_PARAMS "dh-params.pem" 39 40 41 /** 42 * QCryptoTLSCreds: 43 * 44 * The QCryptoTLSCreds object is an abstract base for different 45 * types of TLS handshake credentials. Most commonly the 46 * QCryptoTLSCredsX509 subclass will be used to provide x509 47 * certificate credentials. 48 */ 49 50 struct QCryptoTLSCreds { 51 Object parent_obj; 52 char *dir; 53 QCryptoTLSCredsEndpoint endpoint; 54 #ifdef CONFIG_GNUTLS 55 gnutls_dh_params_t dh_params; 56 #endif 57 bool verifyPeer; 58 char *priority; 59 }; 60 61 62 struct QCryptoTLSCredsClass { 63 ObjectClass parent_class; 64 }; 65 66 67 #endif /* QCRYPTO_TLSCREDS_H */ 68