1 /* 2 * QEMU crypto TLS credential support 3 * 4 * Copyright (c) 2015 Red Hat, Inc. 5 * 6 * This library is free software; you can redistribute it and/or 7 * modify it under the terms of the GNU Lesser General Public 8 * License as published by the Free Software Foundation; either 9 * version 2.1 of the License, or (at your option) any later version. 10 * 11 * This library is distributed in the hope that it will be useful, 12 * but WITHOUT ANY WARRANTY; without even the implied warranty of 13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 14 * Lesser General Public License for more details. 15 * 16 * You should have received a copy of the GNU Lesser General Public 17 * License along with this library; if not, see <http://www.gnu.org/licenses/>. 18 * 19 */ 20 21 #ifndef QCRYPTO_TLSCREDS_H 22 #define QCRYPTO_TLSCREDS_H 23 24 #include "qapi/qapi-types-crypto.h" 25 #include "qom/object.h" 26 27 #ifdef CONFIG_GNUTLS 28 #include <gnutls/gnutls.h> 29 #endif 30 31 #define TYPE_QCRYPTO_TLS_CREDS "tls-creds" 32 typedef struct QCryptoTLSCreds QCryptoTLSCreds; 33 typedef struct QCryptoTLSCredsClass QCryptoTLSCredsClass; 34 DECLARE_OBJ_CHECKERS(QCryptoTLSCreds, QCryptoTLSCredsClass, QCRYPTO_TLS_CREDS, 35 TYPE_QCRYPTO_TLS_CREDS) 36 37 38 #define QCRYPTO_TLS_CREDS_DH_PARAMS "dh-params.pem" 39 40 41 typedef bool (*CryptoTLSCredsReload)(QCryptoTLSCreds *, Error **); 42 /** 43 * QCryptoTLSCreds: 44 * 45 * The QCryptoTLSCreds object is an abstract base for different 46 * types of TLS handshake credentials. Most commonly the 47 * QCryptoTLSCredsX509 subclass will be used to provide x509 48 * certificate credentials. 49 */ 50 51 struct QCryptoTLSCreds { 52 Object parent_obj; 53 char *dir; 54 QCryptoTLSCredsEndpoint endpoint; 55 #ifdef CONFIG_GNUTLS 56 gnutls_dh_params_t dh_params; 57 #endif 58 bool verifyPeer; 59 char *priority; 60 }; 61 62 63 struct QCryptoTLSCredsClass { 64 ObjectClass parent_class; 65 CryptoTLSCredsReload reload; 66 }; 67 68 69 #endif /* QCRYPTO_TLSCREDS_H */ 70