1 /* 2 * QEMU crypto TLS credential support 3 * 4 * Copyright (c) 2015 Red Hat, Inc. 5 * 6 * This library is free software; you can redistribute it and/or 7 * modify it under the terms of the GNU Lesser General Public 8 * License as published by the Free Software Foundation; either 9 * version 2 of the License, or (at your option) any later version. 10 * 11 * This library is distributed in the hope that it will be useful, 12 * but WITHOUT ANY WARRANTY; without even the implied warranty of 13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 14 * Lesser General Public License for more details. 15 * 16 * You should have received a copy of the GNU Lesser General Public 17 * License along with this library; if not, see <http://www.gnu.org/licenses/>. 18 * 19 */ 20 21 #ifndef QCRYPTO_TLSCRED_H__ 22 #define QCRYPTO_TLSCRED_H__ 23 24 #include "qemu-common.h" 25 #include "qapi/error.h" 26 #include "qom/object.h" 27 28 #ifdef CONFIG_GNUTLS 29 #include <gnutls/gnutls.h> 30 #endif 31 32 #define TYPE_QCRYPTO_TLS_CREDS "tls-creds" 33 #define QCRYPTO_TLS_CREDS(obj) \ 34 OBJECT_CHECK(QCryptoTLSCreds, (obj), TYPE_QCRYPTO_TLS_CREDS) 35 36 typedef struct QCryptoTLSCreds QCryptoTLSCreds; 37 typedef struct QCryptoTLSCredsClass QCryptoTLSCredsClass; 38 39 #define QCRYPTO_TLS_CREDS_DH_PARAMS "dh-params.pem" 40 41 42 /** 43 * QCryptoTLSCreds: 44 * 45 * The QCryptoTLSCreds object is an abstract base for different 46 * types of TLS handshake credentials. Most commonly the 47 * QCryptoTLSCredsX509 subclass will be used to provide x509 48 * certificate credentials. 49 */ 50 51 struct QCryptoTLSCreds { 52 Object parent_obj; 53 char *dir; 54 QCryptoTLSCredsEndpoint endpoint; 55 #ifdef CONFIG_GNUTLS 56 gnutls_dh_params_t dh_params; 57 #endif 58 bool verifyPeer; 59 }; 60 61 62 struct QCryptoTLSCredsClass { 63 ObjectClass parent_class; 64 }; 65 66 67 #endif /* QCRYPTO_TLSCRED_H__ */ 68 69