1 | /* |
2 | Copyright (c) 2007-2016 Contributors as noted in the AUTHORS file |
3 | |
4 | This file is part of libzmq, the ZeroMQ core engine in C++. |
5 | |
6 | libzmq is free software; you can redistribute it and/or modify it under |
7 | the terms of the GNU Lesser General Public License (LGPL) as published |
8 | by the Free Software Foundation; either version 3 of the License, or |
9 | (at your option) any later version. |
10 | |
11 | As a special exception, the Contributors give you permission to link |
12 | this library with independent modules to produce an executable, |
13 | regardless of the license terms of these independent modules, and to |
14 | copy and distribute the resulting executable under terms of your choice, |
15 | provided that you also meet, for each linked independent module, the |
16 | terms and conditions of the license of that module. An independent |
17 | module is a module which is not derived from or based on this library. |
18 | If you modify this library, you must extend this exception to your |
19 | version of the library. |
20 | |
21 | libzmq is distributed in the hope that it will be useful, but WITHOUT |
22 | ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or |
23 | FITNESS FOR A PARTICULAR PURPOSE. See the GNU Lesser General Public |
24 | License for more details. |
25 | |
26 | You should have received a copy of the GNU Lesser General Public License |
27 | along with this program. If not, see <http://www.gnu.org/licenses/>. |
28 | */ |
29 | |
30 | #ifndef __ZMQ_GSSAPI_SERVER_HPP_INCLUDED__ |
31 | #define __ZMQ_GSSAPI_SERVER_HPP_INCLUDED__ |
32 | |
33 | #ifdef HAVE_LIBGSSAPI_KRB5 |
34 | |
35 | #include "gssapi_mechanism_base.hpp" |
36 | #include "zap_client.hpp" |
37 | |
38 | namespace zmq |
39 | { |
40 | class msg_t; |
41 | class session_base_t; |
42 | |
43 | class gssapi_server_t : public gssapi_mechanism_base_t, public zap_client_t |
44 | { |
45 | public: |
46 | gssapi_server_t (session_base_t *session_, |
47 | const std::string &peer_address, |
48 | const options_t &options_); |
49 | virtual ~gssapi_server_t (); |
50 | |
51 | // mechanism implementation |
52 | virtual int next_handshake_command (msg_t *msg_); |
53 | virtual int process_handshake_command (msg_t *msg_); |
54 | virtual int encode (msg_t *msg_); |
55 | virtual int decode (msg_t *msg_); |
56 | virtual int zap_msg_available (); |
57 | virtual status_t status () const; |
58 | |
59 | private: |
60 | enum state_t |
61 | { |
62 | send_next_token, |
63 | recv_next_token, |
64 | expect_zap_reply, |
65 | send_ready, |
66 | recv_ready, |
67 | connected |
68 | }; |
69 | |
70 | session_base_t *const session; |
71 | |
72 | const std::string peer_address; |
73 | |
74 | // Current FSM state |
75 | state_t state; |
76 | |
77 | // True iff server considers the client authenticated |
78 | bool security_context_established; |
79 | |
80 | // The underlying mechanism type (ignored) |
81 | gss_OID doid; |
82 | |
83 | void accept_context (); |
84 | int produce_next_token (msg_t *msg_); |
85 | int process_next_token (msg_t *msg_); |
86 | void send_zap_request (); |
87 | }; |
88 | } |
89 | |
90 | #endif |
91 | |
92 | #endif |
93 | |