blob: 5b9c26753e465aaf5ea40e0b346f60196e6e443a [file] [log] [blame]
Jason Gunthorped50e14a2018-04-20 09:49:10 -06001/* SPDX-License-Identifier: ((GPL-2.0 WITH Linux-syscall-note) OR Linux-OpenIB) */
Dave Watson3c4d7552017-06-14 11:37:39 -07002/*
3 * Copyright (c) 2016-2017, Mellanox Technologies. All rights reserved.
4 *
5 * This software is available to you under a choice of one of two
6 * licenses. You may choose to be licensed under the terms of the GNU
7 * General Public License (GPL) Version 2, available from the file
8 * COPYING in the main directory of this source tree, or the
9 * OpenIB.org BSD license below:
10 *
11 * Redistribution and use in source and binary forms, with or
12 * without modification, are permitted provided that the following
13 * conditions are met:
14 *
15 * - Redistributions of source code must retain the above
16 * copyright notice, this list of conditions and the following
17 * disclaimer.
18 *
19 * - Redistributions in binary form must reproduce the above
20 * copyright notice, this list of conditions and the following
21 * disclaimer in the documentation and/or other materials
22 * provided with the distribution.
23 *
24 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
25 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
26 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
27 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
28 * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
29 * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
30 * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
31 * SOFTWARE.
32 */
33
34#ifndef _UAPI_LINUX_TLS_H
35#define _UAPI_LINUX_TLS_H
36
37#include <linux/types.h>
Dave Watson3c4d7552017-06-14 11:37:39 -070038
39/* TLS socket options */
40#define TLS_TX 1 /* Set transmit parameters */
Dave Watsonc46234e2018-03-22 10:10:35 -070041#define TLS_RX 2 /* Set receive parameters */
Dave Watson3c4d7552017-06-14 11:37:39 -070042
43/* Supported versions */
44#define TLS_VERSION_MINOR(ver) ((ver) & 0xFF)
45#define TLS_VERSION_MAJOR(ver) (((ver) >> 8) & 0xFF)
46
47#define TLS_VERSION_NUMBER(id) ((((id##_VERSION_MAJOR) & 0xFF) << 8) | \
48 ((id##_VERSION_MINOR) & 0xFF))
49
50#define TLS_1_2_VERSION_MAJOR 0x3
51#define TLS_1_2_VERSION_MINOR 0x3
52#define TLS_1_2_VERSION TLS_VERSION_NUMBER(TLS_1_2)
53
Dave Watson130b3922019-01-30 21:58:31 +000054#define TLS_1_3_VERSION_MAJOR 0x3
55#define TLS_1_3_VERSION_MINOR 0x4
56#define TLS_1_3_VERSION TLS_VERSION_NUMBER(TLS_1_3)
57
Dave Watson3c4d7552017-06-14 11:37:39 -070058/* Supported ciphers */
59#define TLS_CIPHER_AES_GCM_128 51
60#define TLS_CIPHER_AES_GCM_128_IV_SIZE 8
61#define TLS_CIPHER_AES_GCM_128_KEY_SIZE 16
62#define TLS_CIPHER_AES_GCM_128_SALT_SIZE 4
63#define TLS_CIPHER_AES_GCM_128_TAG_SIZE 16
64#define TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE 8
65
Dave Watsonfb99bce2019-01-30 21:58:05 +000066#define TLS_CIPHER_AES_GCM_256 52
67#define TLS_CIPHER_AES_GCM_256_IV_SIZE 8
68#define TLS_CIPHER_AES_GCM_256_KEY_SIZE 32
69#define TLS_CIPHER_AES_GCM_256_SALT_SIZE 4
70#define TLS_CIPHER_AES_GCM_256_TAG_SIZE 16
71#define TLS_CIPHER_AES_GCM_256_REC_SEQ_SIZE 8
72
Vakul Gargf295b3a2019-03-20 02:03:36 +000073#define TLS_CIPHER_AES_CCM_128 53
74#define TLS_CIPHER_AES_CCM_128_IV_SIZE 8
75#define TLS_CIPHER_AES_CCM_128_KEY_SIZE 16
76#define TLS_CIPHER_AES_CCM_128_SALT_SIZE 4
77#define TLS_CIPHER_AES_CCM_128_TAG_SIZE 16
78#define TLS_CIPHER_AES_CCM_128_REC_SEQ_SIZE 8
79
Dave Watson3c4d7552017-06-14 11:37:39 -070080#define TLS_SET_RECORD_TYPE 1
Dave Watsonc46234e2018-03-22 10:10:35 -070081#define TLS_GET_RECORD_TYPE 2
Dave Watson3c4d7552017-06-14 11:37:39 -070082
83struct tls_crypto_info {
84 __u16 version;
85 __u16 cipher_type;
86};
87
88struct tls12_crypto_info_aes_gcm_128 {
89 struct tls_crypto_info info;
90 unsigned char iv[TLS_CIPHER_AES_GCM_128_IV_SIZE];
91 unsigned char key[TLS_CIPHER_AES_GCM_128_KEY_SIZE];
92 unsigned char salt[TLS_CIPHER_AES_GCM_128_SALT_SIZE];
93 unsigned char rec_seq[TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE];
94};
95
Dave Watsonfb99bce2019-01-30 21:58:05 +000096struct tls12_crypto_info_aes_gcm_256 {
97 struct tls_crypto_info info;
98 unsigned char iv[TLS_CIPHER_AES_GCM_256_IV_SIZE];
99 unsigned char key[TLS_CIPHER_AES_GCM_256_KEY_SIZE];
100 unsigned char salt[TLS_CIPHER_AES_GCM_256_SALT_SIZE];
101 unsigned char rec_seq[TLS_CIPHER_AES_GCM_256_REC_SEQ_SIZE];
102};
103
Vakul Gargf295b3a2019-03-20 02:03:36 +0000104struct tls12_crypto_info_aes_ccm_128 {
105 struct tls_crypto_info info;
106 unsigned char iv[TLS_CIPHER_AES_CCM_128_IV_SIZE];
107 unsigned char key[TLS_CIPHER_AES_CCM_128_KEY_SIZE];
108 unsigned char salt[TLS_CIPHER_AES_CCM_128_SALT_SIZE];
109 unsigned char rec_seq[TLS_CIPHER_AES_CCM_128_REC_SEQ_SIZE];
110};
111
Dave Watson3c4d7552017-06-14 11:37:39 -0700112#endif /* _UAPI_LINUX_TLS_H */