4e9cdc5b41e91b4a5a21ca4336a9b562994f667f
[strongswan.git] / Source / charon / config / configuration_manager.c
1 /**
2 * @file configuration_manager.c
3 *
4 * @brief Implementation of configuration_manager_t.
5 *
6 */
7
8 /*
9 * Copyright (C) 2005 Jan Hutter, Martin Willi
10 * Hochschule fuer Technik Rapperswil
11 *
12 * This program is free software; you can redistribute it and/or modify it
13 * under the terms of the GNU General Public License as published by the
14 * Free Software Foundation; either version 2 of the License, or (at your
15 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
16 *
17 * This program is distributed in the hope that it will be useful, but
18 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
19 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
20 * for more details.
21 */
22
23 #include <stdlib.h>
24
25 #include "configuration_manager.h"
26
27 #include <types.h>
28 #include <daemon.h>
29 #include <utils/allocator.h>
30
31
32 typedef struct preshared_secret_entry_t preshared_secret_entry_t;
33
34 /**
35 * A preshared secret entry combines an identifier and a
36 * preshared secret.
37 */
38 struct preshared_secret_entry_t {
39
40 /**
41 * Identification.
42 */
43 identification_t *identification;
44
45 /**
46 * Preshared secret as chunk_t. The NULL termination is not included.
47 */
48 chunk_t preshared_secret;
49 };
50
51
52 typedef struct rsa_private_key_entry_t rsa_private_key_entry_t;
53
54 /**
55 * Entry for a rsa private key.
56 */
57 struct rsa_private_key_entry_t {
58
59 /**
60 * Identification.
61 */
62 identification_t *identification;
63
64 /**
65 * Private key.
66 */
67 rsa_private_key_t* private_key;
68 };
69
70 typedef struct rsa_public_key_entry_t rsa_public_key_entry_t;
71
72 /**
73 * Entry for a rsa private key.
74 */
75 struct rsa_public_key_entry_t {
76
77 /**
78 * Identification.
79 */
80 identification_t *identification;
81
82 /**
83 * Private key.
84 */
85 rsa_public_key_t* public_key;
86 };
87
88 typedef struct configuration_entry_t configuration_entry_t;
89
90 /* A configuration entry combines a configuration name with a init and sa
91 * configuration represented as init_config_t and sa_config_t objects.
92 *
93 * @b Constructors:
94 * - configuration_entry_create()
95 */
96 struct configuration_entry_t {
97
98 /**
99 * Configuration name.
100 *
101 */
102 char *name;
103
104 /**
105 * Configuration for IKE_SA_INIT exchange.
106 */
107 init_config_t *init_config;
108
109 /**
110 * Configuration for all phases after IKE_SA_INIT exchange.
111 */
112 sa_config_t *sa_config;
113
114 /**
115 * Destroys a configuration_entry_t
116 *
117 * @param this calling object
118 */
119 void (*destroy) (configuration_entry_t *this);
120 };
121
122 /**
123 * Implementation of configuration_entry_t.destroy.
124 */
125 static void configuration_entry_destroy (configuration_entry_t *this)
126 {
127 allocator_free(this->name);
128 allocator_free(this);
129 }
130
131 /**
132 * @brief Creates a configuration_entry_t object.
133 *
134 * @param name name of the configuration entry (gets copied)
135 * @param init_config object of type init_config_t
136 * @param sa_config object of type sa_config_t
137 */
138 configuration_entry_t * configuration_entry_create(char * name, init_config_t * init_config, sa_config_t * sa_config)
139 {
140 configuration_entry_t *entry = allocator_alloc_thing(configuration_entry_t);
141
142 /* functions */
143 entry->destroy = configuration_entry_destroy;
144
145 /* private data */
146 entry->init_config = init_config;
147 entry->sa_config = sa_config;
148 entry->name = allocator_alloc(strlen(name) + 1);
149 strcpy(entry->name,name);
150 return entry;
151 }
152
153 typedef struct private_configuration_manager_t private_configuration_manager_t;
154
155 /**
156 * Private data of an configuration_manager_t object.
157 */
158 struct private_configuration_manager_t {
159
160 /**
161 * Public part of configuration_manager_t object.
162 */
163 configuration_manager_t public;
164
165 /**
166 * Holding all configurations.
167 */
168 linked_list_t *configurations;
169
170 /**
171 * Holding all managed init_configs.
172 */
173 linked_list_t *init_configs;
174
175 /**
176 * Holding all managed init_configs.
177 */
178 linked_list_t *sa_configs;
179
180 /**
181 * Holding all managed preshared secrets.
182 */
183 linked_list_t *preshared_secrets;
184
185 /**
186 * Holding all managed private secrets.
187 */
188 linked_list_t *rsa_private_keys;
189
190 /**
191 * Holding all managed public secrets.
192 */
193 linked_list_t *rsa_public_keys;
194
195 /**
196 * Assigned logger_t object.
197 */
198 logger_t *logger;
199
200 /**
201 * Max number of requests to be retransmitted.
202 * 0 for infinite.
203 */
204 u_int32_t max_retransmit_count;
205
206 /**
207 * First retransmit timeout in ms.
208 */
209 u_int32_t first_retransmit_timeout;
210
211 /**
212 * Timeout in ms after that time a IKE_SA gets deleted.
213 */
214 u_int32_t half_open_ike_sa_timeout;
215
216 /**
217 * Adds a new IKE_SA configuration.
218 *
219 * @param this calling object
220 * @param name name for the configuration
221 * @param init_config init_config_t object
222 * @param sa_config sa_config_t object
223 */
224 void (*add_new_configuration) (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config);
225
226 /**
227 * Adds a new preshared secret.
228 *
229 * @param this calling object
230 * @param type type of identification
231 * @param id_string identification as string
232 * @param preshared_secret preshared secret as string
233 */
234 void (*add_new_preshared_secret) (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret);
235
236 /**
237 * Adds a new rsa private key.
238 *
239 * @param this calling object
240 * @param type type of identification
241 * @param id_string identification as string
242 * @param key_pos location of key
243 * @param key_len length of key
244 */
245 void (*add_new_rsa_private_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
246
247 /**
248 * Adds a new rsa public key.
249 *
250 * @param this calling object
251 * @param type type of identification
252 * @param id_string identification as string
253 * @param key_pos location of key
254 * @param key_len length of key
255 */
256 void (*add_new_rsa_public_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
257
258 /**
259 * Load default configuration.
260 *
261 * @param this calling object
262 */
263 void (*load_default_config) (private_configuration_manager_t *this);
264 };
265
266
267 u_int8_t public_key_1[];
268 u_int8_t private_key_1[];
269 u_int8_t public_key_2[];
270 u_int8_t private_key_2[];
271
272 /**
273 * Implementation of private_configuration_manager_t.load_default_config.
274 */
275 static void load_default_config (private_configuration_manager_t *this)
276 {
277 init_config_t *init_config1, *init_config2, *init_config3, *init_config4;
278 ike_proposal_t proposals[4];
279 child_proposal_t child_proposals[1];
280 sa_config_t *sa_config1, *sa_config2, *sa_config3, *sa_config4;
281 traffic_selector_t *ts;
282
283 init_config1 = init_config_create("0.0.0.0","152.96.193.131",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
284 init_config2 = init_config_create("0.0.0.0","152.96.193.130",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
285 init_config3 = init_config_create("0.0.0.0","127.0.0.1",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
286 init_config4 = init_config_create("0.0.0.0","127.0.0.1",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
287 ts = traffic_selector_create_from_string(1, TS_IPV4_ADDR_RANGE, "0.0.0.0", 0, "255.255.255.255", 65535);
288
289
290 proposals[0].encryption_algorithm = ENCR_AES_CBC;
291 proposals[0].encryption_algorithm_key_length = 16;
292 proposals[0].integrity_algorithm = AUTH_HMAC_MD5_96;
293 proposals[0].integrity_algorithm_key_length = 16;
294 proposals[0].pseudo_random_function = PRF_HMAC_MD5;
295 proposals[0].pseudo_random_function_key_length = 16;
296 proposals[0].diffie_hellman_group = MODP_1024_BIT;
297
298 proposals[1] = proposals[0];
299 proposals[1].integrity_algorithm = AUTH_HMAC_SHA1_96;
300 proposals[1].integrity_algorithm_key_length = 20;
301 proposals[1].pseudo_random_function = PRF_HMAC_SHA1;
302 proposals[1].pseudo_random_function_key_length = 20;
303 proposals[1].diffie_hellman_group = MODP_2048_BIT;
304
305
306 proposals[2] = proposals[1];
307 proposals[2].diffie_hellman_group = MODP_4096_BIT;
308 proposals[3] = proposals[1];
309 proposals[3].diffie_hellman_group = MODP_2048_BIT;
310
311 init_config1->add_proposal(init_config1,1,proposals[1]);
312 init_config1->add_proposal(init_config1,1,proposals[0]);
313 init_config2->add_proposal(init_config2,1,proposals[1]);
314 init_config2->add_proposal(init_config2,1,proposals[0]);
315 init_config3->add_proposal(init_config3,1,proposals[1]);
316 init_config3->add_proposal(init_config3,1,proposals[0]);
317 init_config4->add_proposal(init_config4,1,proposals[3]);
318 init_config4->add_proposal(init_config4,1,proposals[2]);
319
320 sa_config1 = sa_config_create(ID_IPV4_ADDR, "152.96.193.130",
321 ID_IPV4_ADDR, "152.96.193.131",
322 SHARED_KEY_MESSAGE_INTEGRITY_CODE,
323 30000);
324
325 sa_config1->add_traffic_selector_initiator(sa_config1,ts);
326 sa_config1->add_traffic_selector_responder(sa_config1,ts);
327
328 sa_config2 = sa_config_create(ID_IPV4_ADDR, "152.96.193.131",
329 ID_IPV4_ADDR, "152.96.193.130",
330 SHARED_KEY_MESSAGE_INTEGRITY_CODE,
331 30000);
332
333 sa_config2->add_traffic_selector_initiator(sa_config2,ts);
334 sa_config2->add_traffic_selector_responder(sa_config2,ts);
335
336 sa_config3 = sa_config_create(ID_IPV4_ADDR, "127.0.0.1",
337 ID_IPV4_ADDR, "127.0.0.1",
338 SHARED_KEY_MESSAGE_INTEGRITY_CODE,
339 30000);
340
341 sa_config3->add_traffic_selector_initiator(sa_config3,ts);
342 sa_config3->add_traffic_selector_responder(sa_config3,ts);
343
344 sa_config4 = sa_config_create(ID_IPV4_ADDR, "127.0.0.1",
345 ID_IPV4_ADDR, "127.0.0.1",
346 RSA_DIGITAL_SIGNATURE,
347 30000);
348
349 sa_config4->add_traffic_selector_initiator(sa_config4,ts);
350 sa_config4->add_traffic_selector_responder(sa_config4,ts);
351
352 ts->destroy(ts);
353
354 /* ah and esp prop */
355 child_proposals[0].ah.is_set = FALSE;
356 child_proposals[0].ah.integrity_algorithm = AUTH_HMAC_SHA1_96;
357 child_proposals[0].ah.integrity_algorithm_key_size = 20;
358 child_proposals[0].ah.diffie_hellman_group = MODP_1024_BIT;
359 child_proposals[0].ah.extended_sequence_numbers = NO_EXT_SEQ_NUMBERS;
360
361 child_proposals[0].esp.is_set = TRUE;
362 child_proposals[0].esp.diffie_hellman_group = MODP_UNDEFINED;
363 child_proposals[0].esp.encryption_algorithm = ENCR_AES_CBC;
364 child_proposals[0].esp.encryption_algorithm_key_size = 16;
365 child_proposals[0].esp.integrity_algorithm = AUTH_HMAC_SHA1_96;
366 child_proposals[0].esp.integrity_algorithm_key_size = 20;
367 child_proposals[0].esp.extended_sequence_numbers = NO_EXT_SEQ_NUMBERS;
368 child_proposals[0].esp.spi[0] = 2;
369 child_proposals[0].esp.spi[1] = 2;
370 child_proposals[0].esp.spi[2] = 2;
371 child_proposals[0].esp.spi[3] = 2;
372
373 sa_config1->add_proposal(sa_config1, &child_proposals[0]);
374 sa_config2->add_proposal(sa_config2, &child_proposals[0]);
375 sa_config3->add_proposal(sa_config3, &child_proposals[0]);
376
377 this->add_new_configuration(this,"pinflb31",init_config1,sa_config1);
378 this->add_new_configuration(this,"pinflb30",init_config2,sa_config2);
379 this->add_new_configuration(this,"localhost-shared",init_config3,sa_config3);
380 this->add_new_configuration(this,"localhost-rsa",init_config3,sa_config4);
381 this->add_new_configuration(this,"localhost-bad_dh_group",init_config4, sa_config3);
382
383
384 this->add_new_preshared_secret(this,ID_IPV4_ADDR, "152.96.193.130","verschluesselt");
385 this->add_new_preshared_secret(this,ID_IPV4_ADDR, "152.96.193.131","verschluesselt");
386 this->add_new_preshared_secret(this,ID_IPV4_ADDR, "127.0.0.1","verschluesselt");
387
388 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "127.0.0.1", public_key_1, 256);
389 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "152.96.193.131", public_key_2, 256);
390 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "127.0.0.1", private_key_1, 1024);
391 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "152.96.193.131", private_key_2, 1024);
392 }
393
394 /**
395 * Implementation of configuration_manager_t.get_init_config_for_host.
396 */
397 static status_t get_init_config_for_host (private_configuration_manager_t *this, host_t *my_host, host_t *other_host,init_config_t **init_config)
398 {
399 iterator_t *iterator;
400 status_t status = NOT_FOUND;
401
402 iterator = this->configurations->create_iterator(this->configurations,TRUE);
403
404 this->logger->log(this->logger, CONTROL|LEVEL1, "getting config for hosts %s - %s",
405 my_host->get_address(my_host), other_host->get_address(other_host));
406
407 while (iterator->has_next(iterator))
408 {
409 configuration_entry_t *entry;
410 host_t *config_my_host;
411 host_t *config_other_host;
412
413 iterator->current(iterator,(void **) &entry);
414
415 config_my_host = entry->init_config->get_my_host(entry->init_config);
416 config_other_host = entry->init_config->get_other_host(entry->init_config);
417
418 /* first check if ip is equal */
419 if(config_other_host->ip_is_equal(config_other_host,other_host))
420 {
421 this->logger->log(this->logger, CONTROL|LEVEL2, "config entry with remote host %s",
422 config_other_host->get_address(config_other_host));
423 /* could be right one, check my_host for default route*/
424 if (config_my_host->is_default_route(config_my_host))
425 {
426 *init_config = entry->init_config;
427 status = SUCCESS;
428 break;
429 }
430 /* check now if host informations are the same */
431 else if (config_my_host->ip_is_equal(config_my_host,my_host))
432 {
433 *init_config = entry->init_config;
434 status = SUCCESS;
435 break;
436 }
437
438 }
439 /* Then check for wildcard hosts!
440 * TODO
441 * actually its only checked if other host with default route can be found! */
442 else if (config_other_host->is_default_route(config_other_host))
443 {
444 /* could be right one, check my_host for default route*/
445 if (config_my_host->is_default_route(config_my_host))
446 {
447 *init_config = entry->init_config;
448 status = SUCCESS;
449 break;
450 }
451 /* check now if host informations are the same */
452 else if (config_my_host->ip_is_equal(config_my_host,my_host))
453 {
454 *init_config = entry->init_config;
455 status = SUCCESS;
456 break;
457 }
458 }
459 }
460
461 iterator->destroy(iterator);
462
463 return status;
464 }
465
466 /**
467 * Implementation of configuration_manager_t.get_init_config_for_name.
468 */
469 static status_t get_init_config_for_name (private_configuration_manager_t *this, char *name, init_config_t **init_config)
470 {
471 iterator_t *iterator;
472 status_t status = NOT_FOUND;
473
474 iterator = this->configurations->create_iterator(this->configurations,TRUE);
475
476 while (iterator->has_next(iterator))
477 {
478 configuration_entry_t *entry;
479 iterator->current(iterator,(void **) &entry);
480
481 if (strcmp(entry->name,name) == 0)
482 {
483
484 /* found configuration */
485 *init_config = entry->init_config;
486 status = SUCCESS;
487 break;
488 }
489 }
490
491 iterator->destroy(iterator);
492
493 return status;
494 }
495
496 /**
497 * Implementation of configuration_manager_t.get_sa_config_for_name.
498 */
499 static status_t get_sa_config_for_name (private_configuration_manager_t *this, char *name, sa_config_t **sa_config)
500 {
501 iterator_t *iterator;
502 status_t status = NOT_FOUND;
503
504 iterator = this->configurations->create_iterator(this->configurations,TRUE);
505
506 while (iterator->has_next(iterator))
507 {
508 configuration_entry_t *entry;
509 iterator->current(iterator,(void **) &entry);
510
511 if (strcmp(entry->name,name) == 0)
512 {
513 /* found configuration */
514 *sa_config = entry->sa_config;
515 status = SUCCESS;
516 break;
517 }
518 }
519
520 iterator->destroy(iterator);
521
522 return status;
523 }
524
525 /**
526 * Implementation of configuration_manager_t.get_sa_config_for_init_config_and_id.
527 */
528 static status_t get_sa_config_for_init_config_and_id (private_configuration_manager_t *this, init_config_t *init_config, identification_t *other_id, identification_t *my_id,sa_config_t **sa_config)
529 {
530 iterator_t *iterator;
531 status_t status = NOT_FOUND;
532
533 iterator = this->configurations->create_iterator(this->configurations,TRUE);
534
535 while (iterator->has_next(iterator))
536 {
537 configuration_entry_t *entry;
538 iterator->current(iterator,(void **) &entry);
539
540 if (entry->init_config == init_config)
541 {
542 identification_t *config_my_id = entry->sa_config->get_my_id(entry->sa_config);
543 identification_t *config_other_id = entry->sa_config->get_other_id(entry->sa_config);
544
545 /* host informations seem to be the same */
546 if (config_other_id->equals(config_other_id,other_id))
547 {
548 /* other ids seems to match */
549
550 if (my_id == NULL)
551 {
552 /* first matching one is selected */
553
554 /* TODO priorize found entries */
555 *sa_config = entry->sa_config;
556 status = SUCCESS;
557 break;
558 }
559
560 if (config_my_id->equals(config_my_id,my_id))
561 {
562 *sa_config = entry->sa_config;
563 status = SUCCESS;
564 break;
565 }
566
567 }
568 }
569 }
570
571 iterator->destroy(iterator);
572
573 return status;
574 }
575
576 /**
577 * Implementation of private_configuration_manager_t.add_new_configuration.
578 */
579 static void add_new_configuration (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config)
580 {
581 iterator_t *iterator;
582 bool found;
583
584 iterator = this->init_configs->create_iterator(this->init_configs,TRUE);
585 found = FALSE;
586 while (iterator->has_next(iterator))
587 {
588 init_config_t *found_init_config;
589 iterator->current(iterator,(void **) &found_init_config);
590 if (init_config == found_init_config)
591 {
592 found = TRUE;
593 break;
594 }
595 }
596 iterator->destroy(iterator);
597 if (!found)
598 {
599 this->init_configs->insert_first(this->init_configs,init_config);
600 }
601
602 iterator = this->sa_configs->create_iterator(this->sa_configs,TRUE);
603 found = FALSE;
604 while (iterator->has_next(iterator))
605 {
606 sa_config_t *found_sa_config;
607 iterator->current(iterator,(void **) &found_sa_config);
608 if (sa_config == found_sa_config)
609 {
610 found = TRUE;
611 break;
612 }
613 }
614 iterator->destroy(iterator);
615 if (!found)
616 {
617 this->sa_configs->insert_first(this->sa_configs,sa_config);
618 }
619
620 this->configurations->insert_last(this->configurations,configuration_entry_create(name,init_config,sa_config));
621 }
622
623 /**
624 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
625 */
626 static void add_new_preshared_secret (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret)
627 {
628 preshared_secret_entry_t *entry = allocator_alloc_thing(preshared_secret_entry_t);
629
630 entry->identification = identification_create_from_string(type,id_string);
631 entry->preshared_secret.len = strlen(preshared_secret) + 1;
632 entry->preshared_secret.ptr = allocator_alloc(entry->preshared_secret.len);
633 memcpy(entry->preshared_secret.ptr,preshared_secret,entry->preshared_secret.len);
634
635 this->preshared_secrets->insert_last(this->preshared_secrets,entry);
636 }
637
638 /**
639 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
640 */
641 static void add_new_rsa_public_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
642 {
643 chunk_t key;
644 key.ptr = key_pos;
645 key.len = key_len;
646
647 rsa_public_key_entry_t *entry = allocator_alloc_thing(rsa_public_key_entry_t);
648
649 entry->identification = identification_create_from_string(type,id_string);
650 entry->public_key = rsa_public_key_create();
651 entry->public_key->set_key(entry->public_key, key);
652
653 this->rsa_public_keys->insert_last(this->rsa_public_keys, entry);
654 }
655
656 /**
657 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
658 */
659 static void add_new_rsa_private_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
660 {
661 chunk_t key;
662 key.ptr = key_pos;
663 key.len = key_len;
664
665 rsa_private_key_entry_t *entry = allocator_alloc_thing(rsa_private_key_entry_t);
666
667 entry->identification = identification_create_from_string(type,id_string);
668 entry->private_key = rsa_private_key_create();
669 entry->private_key->set_key(entry->private_key, key);
670
671 this->rsa_private_keys->insert_last(this->rsa_private_keys, entry);
672 }
673
674 /**
675 * Implementation of configuration_manager_t.get_shared_secret.
676 */
677 static status_t get_shared_secret(private_configuration_manager_t *this, identification_t *identification, chunk_t *preshared_secret)
678 {
679 iterator_t *iterator;
680
681 iterator = this->preshared_secrets->create_iterator(this->preshared_secrets,TRUE);
682 while (iterator->has_next(iterator))
683 {
684 preshared_secret_entry_t *entry;
685 iterator->current(iterator,(void **) &entry);
686 if (entry->identification->equals(entry->identification,identification))
687 {
688 *preshared_secret = entry->preshared_secret;
689 iterator->destroy(iterator);
690 return SUCCESS;
691 }
692 }
693 iterator->destroy(iterator);
694 return NOT_FOUND;
695 }
696
697 /**
698 * Implementation of configuration_manager_t.get_shared_secret.
699 */
700 static status_t get_rsa_public_key(private_configuration_manager_t *this, identification_t *identification, rsa_public_key_t **public_key)
701 {
702 iterator_t *iterator;
703
704 iterator = this->rsa_public_keys->create_iterator(this->rsa_public_keys,TRUE);
705 while (iterator->has_next(iterator))
706 {
707 rsa_public_key_entry_t *entry;
708 iterator->current(iterator,(void **) &entry);
709 if (entry->identification->equals(entry->identification,identification))
710 {
711 *public_key = entry->public_key;
712 iterator->destroy(iterator);
713 return SUCCESS;
714 }
715 }
716 iterator->destroy(iterator);
717 return NOT_FOUND;
718 }
719
720 /**
721 * Implementation of configuration_manager_t.get_shared_secret.
722 */
723 static status_t get_rsa_private_key(private_configuration_manager_t *this, identification_t *identification, rsa_private_key_t **private_key)
724 {
725 iterator_t *iterator;
726
727 iterator = this->rsa_private_keys->create_iterator(this->rsa_private_keys,TRUE);
728 while (iterator->has_next(iterator))
729 {
730 rsa_private_key_entry_t *entry;
731 iterator->current(iterator,(void **) &entry);
732 if (entry->identification->equals(entry->identification,identification))
733 {
734 *private_key = entry->private_key;
735 iterator->destroy(iterator);
736 return SUCCESS;
737 }
738 }
739 iterator->destroy(iterator);
740 return NOT_FOUND;
741 }
742
743 /**
744 * Implementation of configuration_manager_t.get_retransmit_timeout.
745 */
746 static status_t get_retransmit_timeout (private_configuration_manager_t *this, u_int32_t retransmit_count, u_int32_t *timeout)
747 {
748 int new_timeout = this->first_retransmit_timeout, i;
749 if ((retransmit_count > this->max_retransmit_count) && (this->max_retransmit_count != 0))
750 {
751 return FAILED;
752 }
753
754
755 for (i = 0; i < retransmit_count; i++)
756 {
757 new_timeout *= 2;
758 }
759
760 *timeout = new_timeout;
761
762 return SUCCESS;
763 }
764
765 /**
766 * Implementation of configuration_manager_t.get_half_open_ike_sa_timeout.
767 */
768 static u_int32_t get_half_open_ike_sa_timeout (private_configuration_manager_t *this)
769 {
770 return this->half_open_ike_sa_timeout;
771 }
772
773 /**
774 * Implementation of configuration_manager_t.destroy.
775 */
776 static void destroy(private_configuration_manager_t *this)
777 {
778 this->logger->log(this->logger,CONTROL | LEVEL1, "Going to destroy configuration manager ");
779
780 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy configuration entries");
781 while (this->configurations->get_count(this->configurations) > 0)
782 {
783 configuration_entry_t *entry;
784 this->configurations->remove_first(this->configurations,(void **) &entry);
785 entry->destroy(entry);
786 }
787 this->configurations->destroy(this->configurations);
788
789 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy sa_config_t objects");
790 while (this->sa_configs->get_count(this->sa_configs) > 0)
791 {
792 sa_config_t *sa_config;
793 this->sa_configs->remove_first(this->sa_configs,(void **) &sa_config);
794 sa_config->destroy(sa_config);
795 }
796
797 this->sa_configs->destroy(this->sa_configs);
798
799 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy init_config_t objects");
800 while (this->init_configs->get_count(this->init_configs) > 0)
801 {
802 init_config_t *init_config;
803 this->init_configs->remove_first(this->init_configs,(void **) &init_config);
804 init_config->destroy(init_config);
805 }
806 this->init_configs->destroy(this->init_configs);
807
808 while (this->preshared_secrets->get_count(this->preshared_secrets) > 0)
809 {
810 preshared_secret_entry_t *entry;
811 this->preshared_secrets->remove_first(this->preshared_secrets,(void **) &entry);
812 entry->identification->destroy(entry->identification);
813 allocator_free_chunk(&(entry->preshared_secret));
814 allocator_free(entry);
815 }
816 this->preshared_secrets->destroy(this->preshared_secrets);
817
818 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa private keys");
819 while (this->rsa_private_keys->get_count(this->rsa_private_keys) > 0)
820 {
821 rsa_private_key_entry_t *entry;
822 this->rsa_private_keys->remove_first(this->rsa_private_keys,(void **) &entry);
823 entry->identification->destroy(entry->identification);
824 entry->private_key->destroy(entry->private_key);
825 allocator_free(entry);
826 }
827 this->rsa_private_keys->destroy(this->rsa_private_keys);
828
829 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa public keys");
830 while (this->rsa_public_keys->get_count(this->rsa_public_keys) > 0)
831 {
832 rsa_public_key_entry_t *entry;
833 this->rsa_public_keys->remove_first(this->rsa_public_keys,(void **) &entry);
834 entry->identification->destroy(entry->identification);
835 entry->public_key->destroy(entry->public_key);
836 allocator_free(entry);
837 }
838 this->rsa_public_keys->destroy(this->rsa_public_keys);
839
840 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy assigned logger");
841 charon->logger_manager->destroy_logger(charon->logger_manager,this->logger);
842 allocator_free(this);
843 }
844
845 /*
846 * Described in header-file
847 */
848 configuration_manager_t *configuration_manager_create(u_int32_t first_retransmit_timeout,u_int32_t max_retransmit_count, u_int32_t half_open_ike_sa_timeout)
849 {
850 private_configuration_manager_t *this = allocator_alloc_thing(private_configuration_manager_t);
851
852 /* public functions */
853 this->public.destroy = (void(*)(configuration_manager_t*))destroy;
854 this->public.get_init_config_for_name = (status_t (*) (configuration_manager_t *, char *, init_config_t **)) get_init_config_for_name;
855 this->public.get_init_config_for_host = (status_t (*) (configuration_manager_t *, host_t *, host_t *,init_config_t **)) get_init_config_for_host;
856 this->public.get_sa_config_for_name =(status_t (*) (configuration_manager_t *, char *, sa_config_t **)) get_sa_config_for_name;
857 this->public.get_sa_config_for_init_config_and_id =(status_t (*) (configuration_manager_t *, init_config_t *, identification_t *, identification_t *,sa_config_t **)) get_sa_config_for_init_config_and_id;
858 this->public.get_retransmit_timeout = (status_t (*) (configuration_manager_t *, u_int32_t retransmit_count, u_int32_t *timeout))get_retransmit_timeout;
859 this->public.get_half_open_ike_sa_timeout = (u_int32_t (*) (configuration_manager_t *)) get_half_open_ike_sa_timeout;
860 this->public.get_shared_secret = (status_t (*) (configuration_manager_t *, identification_t *, chunk_t *))get_shared_secret;
861 this->public.get_rsa_private_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_private_key_t**))get_rsa_private_key;
862 this->public.get_rsa_public_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_public_key_t**))get_rsa_public_key;
863
864 /* private functions */
865 this->load_default_config = load_default_config;
866 this->add_new_configuration = add_new_configuration;
867 this->add_new_preshared_secret = add_new_preshared_secret;
868 this->add_new_rsa_public_key = add_new_rsa_public_key;
869 this->add_new_rsa_private_key = add_new_rsa_private_key;
870
871 /* private variables */
872 this->logger = charon->logger_manager->create_logger(charon->logger_manager,CONFIGURATION_MANAGER,NULL);
873 this->configurations = linked_list_create();
874 this->sa_configs = linked_list_create();
875 this->init_configs = linked_list_create();
876 this->preshared_secrets = linked_list_create();
877 this->rsa_private_keys = linked_list_create();
878 this->rsa_public_keys = linked_list_create();
879 this->max_retransmit_count = max_retransmit_count;
880 this->first_retransmit_timeout = first_retransmit_timeout;
881 this->half_open_ike_sa_timeout = half_open_ike_sa_timeout;
882
883 this->load_default_config(this);
884
885 return (&this->public);
886 }
887
888
889 u_int8_t public_key_1[] = {
890 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
891 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
892 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
893 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
894 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
895 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
896 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
897 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
898 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
899 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
900 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
901 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
902 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
903 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
904 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
905 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
906 };
907
908 u_int8_t private_key_1[] = {
909 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
910 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
911 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
912 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
913 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
914 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
915 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
916 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
917 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
918 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
919 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
920 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
921 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
922 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
923 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
924 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
925 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
926 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
927 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
928 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
929 0xEE,0xF2,0x37,0xF2,0x98,0xEB,0x33,0xC6,0x84,0xE8,0xB9,0xD1,0x18,0xB5,0x29,0x00,
930 0xAC,0x6B,0x78,0xBC,0x9E,0xB6,0x01,0x21,0x29,0xEE,0x4A,0x99,0xFB,0x3D,0x07,0x23,
931 0x77,0x84,0x93,0x4B,0x53,0x49,0xB0,0xA4,0x6F,0xB0,0xF5,0x50,0xDB,0x35,0xDD,0xDF,
932 0x41,0x6F,0x7B,0xA9,0x88,0x3D,0x0B,0x1C,0x2E,0x2B,0x44,0x35,0x24,0x72,0x66,0xC1,
933 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
934 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
935 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
936 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
937 0xE3,0xB8,0xC8,0x30,0x67,0xD0,0x5D,0xF1,0x32,0x64,0xDC,0x4B,0xB3,0x7E,0xE3,0x1A,
938 0xC5,0xBC,0xAC,0xC9,0x95,0x5C,0x96,0x0D,0x5A,0x52,0x90,0xE0,0x08,0x3F,0xA6,0x71,
939 0xC7,0x18,0xC5,0x64,0xA2,0xE4,0xB8,0x43,0x5A,0x8A,0x7A,0x9B,0xDF,0xDA,0x81,0x85,
940 0x6C,0x0F,0xA4,0xC9,0xAC,0x25,0x19,0x54,0xFE,0x75,0xAA,0x1D,0x22,0xB8,0xF4,0xCD,
941 0x1A,0x91,0xC2,0xA3,0x65,0x3F,0xD7,0xFC,0x7E,0xE1,0x92,0x29,0xC5,0x85,0x6E,0x44,
942 0xC8,0x4D,0xBD,0x7A,0x2C,0x2D,0x47,0xE2,0x24,0x24,0xDF,0xC2,0x31,0x65,0x8F,0xD4,
943 0xBA,0x28,0x7C,0x4A,0xCA,0xAE,0x79,0xBE,0xC1,0x6C,0xFC,0x09,0x45,0xF7,0x87,0x17,
944 0xB4,0x55,0x92,0x15,0xC5,0xFA,0x8F,0xB0,0x56,0x96,0xC1,0x87,0x12,0xFE,0xDF,0xF0,
945 0x3A,0xE1,0xB1,0x83,0x19,0x74,0xF0,0x7D,0x37,0x41,0x3E,0x6A,0xFE,0x33,0x3E,0x74,
946 0x01,0x45,0xE4,0x65,0xAE,0xC9,0xAE,0x64,0xE3,0xF1,0x90,0xFD,0x1A,0x30,0x44,0x82,
947 0xEE,0x34,0x94,0xF2,0x68,0x3D,0x61,0x90,0xFB,0xEB,0xD8,0x18,0xE6,0x7C,0xEC,0x69,
948 0x70,0xD0,0xEB,0x2F,0xC1,0x3D,0x9C,0x6A,0x4B,0x89,0x50,0x6B,0x3F,0xA5,0x38,0x41,
949 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
950 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
951 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
952 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
953 0x65,0xEE,0x34,0x09,0xAC,0x4C,0x21,0x71,0x1D,0x3F,0x7E,0x0D,0x01,0xC2,0x3E,0x34,
954 0x88,0x58,0xEC,0x4F,0x62,0x50,0xF7,0xD8,0x62,0xDF,0xC1,0x39,0x40,0xA0,0xBF,0x0B,
955 0xD5,0x2F,0x5B,0xFA,0x35,0x14,0x69,0x63,0x2C,0x36,0x4B,0xDF,0xEB,0x33,0x66,0x6B,
956 0x97,0xA9,0x6C,0x12,0x5D,0x08,0xD5,0x55,0x77,0x28,0x83,0xD7,0x3B,0xAE,0x05,0xC1,
957 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
958 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
959 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
960 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
961 0x9F,0x96,0x17,0x75,0x14,0xCB,0xC9,0x8A,0x06,0xAE,0xF8,0x53,0x74,0xEF,0x2F,0x68,
962 0xCB,0xBA,0x75,0xBC,0xAF,0x97,0xBA,0xF0,0x90,0xA3,0xDC,0x33,0xA4,0x94,0x36,0xA8,
963 0xF5,0xC6,0x3E,0x4F,0x50,0x78,0xC9,0x49,0x2A,0x62,0x71,0x9A,0x5B,0x3E,0x5E,0x16,
964 0x8A,0xAC,0x4B,0xE7,0xA9,0x64,0x36,0x64,0x82,0x0F,0x23,0xB0,0x57,0x6D,0x16,0xE1,
965 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
966 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
967 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
968 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
969 0x25,0xF1,0x40,0x05,0x58,0x19,0x37,0x61,0x34,0x98,0xBB,0x29,0x1B,0x44,0x08,0x1A,
970 0xD3,0x66,0x62,0x4C,0x9C,0x47,0xD2,0x91,0x60,0x46,0x6F,0x8E,0xA6,0xE7,0x80,0x7B,
971 0x17,0x77,0x9A,0xB5,0x18,0x8A,0x15,0x8F,0x77,0xA1,0x55,0x3E,0x96,0x66,0x86,0x57,
972 0x75,0x73,0xF5,0x57,0x50,0x28,0xEA,0x83,0x14,0xB1,0x55,0xA3,0x82,0xCD,0x36,0xF8
973 };
974 u_int8_t public_key_2[] = {
975 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
976 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
977 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
978 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
979 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
980 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
981 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
982 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
983 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
984 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
985 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
986 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
987 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
988 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
989 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
990 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
991 };
992 u_int8_t private_key_2[] = {
993 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
994 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
995 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
996 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
997 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
998 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
999 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
1000 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
1001 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1002 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1003 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1004 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1005 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1006 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1007 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1008 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
1009 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1010 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1011 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1012 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1013 0xE8,0x37,0xB6,0x08,0xD8,0x9C,0x72,0xC5,0x34,0xDB,0x3A,0xA2,0xF9,0x24,0xE1,0x44,
1014 0x23,0x3B,0x72,0x70,0x5D,0xCC,0xC3,0xBA,0x3D,0xCE,0x82,0xAC,0x6A,0x71,0x72,0x90,
1015 0xC7,0x94,0xB3,0x8B,0x85,0xE0,0xEF,0x39,0xF0,0xE4,0x08,0x31,0xEA,0xE6,0x3B,0x7D,
1016 0xB0,0x36,0xFA,0x71,0x6E,0xA3,0xF9,0x4C,0x39,0x05,0x8C,0xB7,0x8C,0x99,0x94,0x85,
1017 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1018 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1019 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1020 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1021 0x96,0x32,0xF9,0xD9,0xA8,0xC0,0x84,0xFD,0xE5,0x6B,0xA6,0xC2,0x85,0x85,0x68,0x17,
1022 0x7E,0x98,0xD0,0x6A,0xDC,0xD8,0x4C,0x46,0xCB,0x6D,0x4C,0x25,0xE5,0xF9,0x58,0xB2,
1023 0x17,0xE4,0x20,0x8A,0x87,0x0D,0xD7,0x4C,0x79,0xA3,0xB3,0x69,0x98,0x7F,0x5D,0x08,
1024 0x33,0x5B,0xAD,0xA3,0x34,0xE8,0x55,0x5E,0x09,0x60,0x70,0xA8,0x11,0xFD,0x70,0x67,
1025 0x00,0xE1,0xA7,0x44,0xF5,0x85,0x14,0x43,0xD5,0x45,0x1A,0x87,0x65,0x30,0xA8,0x24,
1026 0x2C,0xF8,0xAF,0x97,0xFF,0x9A,0x7E,0xF4,0x3B,0xE7,0xD3,0x79,0x88,0xEC,0x66,0xF6,
1027 0xE0,0xAA,0xF4,0x88,0x0A,0xE2,0x4C,0x31,0x4A,0xA6,0xF3,0x91,0x9A,0x4A,0xBE,0xF0,
1028 0x85,0xEF,0xCE,0x55,0xB6,0x35,0x2B,0x38,0xD5,0xF5,0x5A,0x35,0x7B,0xCF,0x4D,0xF8,
1029 0x5D,0x1E,0x57,0x99,0xAF,0xED,0x33,0x6F,0xD5,0xA7,0x49,0x5B,0x14,0x4C,0x7D,0x17,
1030 0x81,0xAE,0x1E,0xDA,0x9D,0xFB,0xA9,0xC3,0x00,0x4C,0x17,0x37,0x30,0x96,0x60,0xE1,
1031 0x6A,0xCC,0xD3,0xDB,0x40,0xCE,0x96,0x96,0x0D,0x95,0x0D,0x84,0x38,0xBD,0xDA,0x2F,
1032 0xEC,0xED,0x22,0x39,0x8E,0x8C,0xDF,0xCD,0x07,0xCF,0x0F,0xB0,0x2B,0x76,0xDB,0xC1,
1033 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1034 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1035 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1036 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1037 0xA5,0x37,0x9E,0x08,0x45,0x35,0x6A,0x62,0xEC,0xEC,0x5D,0x97,0xBE,0x73,0x82,0xE2,
1038 0x9B,0xBE,0x9B,0xF9,0x5E,0x83,0x65,0x6E,0x88,0xB2,0xF9,0x3D,0xFA,0xAD,0xA4,0xB9,
1039 0x65,0x86,0x63,0x08,0x0D,0xC4,0xAF,0xF0,0x25,0x77,0xD8,0x6C,0xCB,0x97,0xEB,0x13,
1040 0xCD,0xE0,0x0F,0xE7,0xCC,0xB4,0x55,0x96,0xE9,0xAB,0x0D,0x27,0x3A,0x9D,0xBA,0x91,
1041 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1042 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1043 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1044 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1045 0x44,0xA3,0x44,0xF4,0x47,0x9E,0xBA,0xE7,0xBF,0xF8,0xC2,0xFB,0x2F,0xC3,0x38,0x3F,
1046 0x4C,0x56,0x0F,0x20,0x56,0x8D,0xED,0xC5,0x88,0x5F,0x09,0x26,0x64,0x82,0xDF,0x1A,
1047 0x7B,0xBA,0x7F,0x78,0x6E,0xA1,0x4F,0x9B,0x1E,0x17,0x45,0xFC,0xE2,0x78,0x89,0x8E,
1048 0x1E,0xD2,0x2D,0x76,0x60,0xCE,0x2F,0x7C,0xCA,0xB2,0x2C,0xA9,0x51,0x97,0x4C,0xCF,
1049 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1050 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1051 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1052 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1053 0x01,0x40,0x4B,0x7D,0xAB,0x8A,0xB9,0x5E,0xEE,0xA1,0x81,0xED,0x27,0x89,0xF6,0x4C,
1054 0x59,0x8C,0x23,0x14,0x3B,0x1B,0xBA,0xC3,0xB2,0x00,0x9A,0x9E,0xDF,0x54,0x82,0xA7,
1055 0x3E,0xC9,0x23,0x85,0x4D,0xD3,0x80,0xA7,0x89,0x11,0xBA,0x76,0xF5,0xC1,0x55,0x37,
1056 0x0A,0x0D,0x8C,0x07,0x0A,0xC8,0xC5,0x11,0x74,0x9C,0xB6,0x80,0x3B,0x0A,0x9A,0xA2
1057 };