- working policy installation and removal
[strongswan.git] / Source / charon / config / configuration_manager.c
1 /**
2 * @file configuration_manager.c
3 *
4 * @brief Implementation of configuration_manager_t.
5 *
6 */
7
8 /*
9 * Copyright (C) 2005 Jan Hutter, Martin Willi
10 * Hochschule fuer Technik Rapperswil
11 *
12 * This program is free software; you can redistribute it and/or modify it
13 * under the terms of the GNU General Public License as published by the
14 * Free Software Foundation; either version 2 of the License, or (at your
15 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
16 *
17 * This program is distributed in the hope that it will be useful, but
18 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
19 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
20 * for more details.
21 */
22
23 #include <stdlib.h>
24
25 #include "configuration_manager.h"
26
27 #include <types.h>
28 #include <daemon.h>
29 #include <utils/allocator.h>
30
31
32 typedef struct preshared_secret_entry_t preshared_secret_entry_t;
33
34 /**
35 * A preshared secret entry combines an identifier and a
36 * preshared secret.
37 */
38 struct preshared_secret_entry_t {
39
40 /**
41 * Identification.
42 */
43 identification_t *identification;
44
45 /**
46 * Preshared secret as chunk_t. The NULL termination is not included.
47 */
48 chunk_t preshared_secret;
49 };
50
51
52 typedef struct rsa_private_key_entry_t rsa_private_key_entry_t;
53
54 /**
55 * Entry for a rsa private key.
56 */
57 struct rsa_private_key_entry_t {
58
59 /**
60 * Identification.
61 */
62 identification_t *identification;
63
64 /**
65 * Private key.
66 */
67 rsa_private_key_t* private_key;
68 };
69
70 typedef struct rsa_public_key_entry_t rsa_public_key_entry_t;
71
72 /**
73 * Entry for a rsa private key.
74 */
75 struct rsa_public_key_entry_t {
76
77 /**
78 * Identification.
79 */
80 identification_t *identification;
81
82 /**
83 * Private key.
84 */
85 rsa_public_key_t* public_key;
86 };
87
88 typedef struct configuration_entry_t configuration_entry_t;
89
90 /* A configuration entry combines a configuration name with a init and sa
91 * configuration represented as init_config_t and sa_config_t objects.
92 *
93 * @b Constructors:
94 * - configuration_entry_create()
95 */
96 struct configuration_entry_t {
97
98 /**
99 * Configuration name.
100 *
101 */
102 char *name;
103
104 /**
105 * Configuration for IKE_SA_INIT exchange.
106 */
107 init_config_t *init_config;
108
109 /**
110 * Configuration for all phases after IKE_SA_INIT exchange.
111 */
112 sa_config_t *sa_config;
113
114 /**
115 * Destroys a configuration_entry_t
116 *
117 * @param this calling object
118 */
119 void (*destroy) (configuration_entry_t *this);
120 };
121
122 /**
123 * Implementation of configuration_entry_t.destroy.
124 */
125 static void configuration_entry_destroy (configuration_entry_t *this)
126 {
127 allocator_free(this->name);
128 allocator_free(this);
129 }
130
131 /**
132 * @brief Creates a configuration_entry_t object.
133 *
134 * @param name name of the configuration entry (gets copied)
135 * @param init_config object of type init_config_t
136 * @param sa_config object of type sa_config_t
137 */
138 configuration_entry_t * configuration_entry_create(char * name, init_config_t * init_config, sa_config_t * sa_config)
139 {
140 configuration_entry_t *entry = allocator_alloc_thing(configuration_entry_t);
141
142 /* functions */
143 entry->destroy = configuration_entry_destroy;
144
145 /* private data */
146 entry->init_config = init_config;
147 entry->sa_config = sa_config;
148 entry->name = allocator_alloc(strlen(name) + 1);
149 strcpy(entry->name,name);
150 return entry;
151 }
152
153 typedef struct private_configuration_manager_t private_configuration_manager_t;
154
155 /**
156 * Private data of an configuration_manager_t object.
157 */
158 struct private_configuration_manager_t {
159
160 /**
161 * Public part of configuration_manager_t object.
162 */
163 configuration_manager_t public;
164
165 /**
166 * Holding all configurations.
167 */
168 linked_list_t *configurations;
169
170 /**
171 * Holding all managed init_configs.
172 */
173 linked_list_t *init_configs;
174
175 /**
176 * Holding all managed init_configs.
177 */
178 linked_list_t *sa_configs;
179
180 /**
181 * Holding all managed preshared secrets.
182 */
183 linked_list_t *preshared_secrets;
184
185 /**
186 * Holding all managed private secrets.
187 */
188 linked_list_t *rsa_private_keys;
189
190 /**
191 * Holding all managed public secrets.
192 */
193 linked_list_t *rsa_public_keys;
194
195 /**
196 * Assigned logger_t object.
197 */
198 logger_t *logger;
199
200 /**
201 * Max number of requests to be retransmitted.
202 * 0 for infinite.
203 */
204 u_int32_t max_retransmit_count;
205
206 /**
207 * First retransmit timeout in ms.
208 */
209 u_int32_t first_retransmit_timeout;
210
211 /**
212 * Timeout in ms after that time a IKE_SA gets deleted.
213 */
214 u_int32_t half_open_ike_sa_timeout;
215
216 /**
217 * Adds a new IKE_SA configuration.
218 *
219 * @param this calling object
220 * @param name name for the configuration
221 * @param init_config init_config_t object
222 * @param sa_config sa_config_t object
223 */
224 void (*add_new_configuration) (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config);
225
226 /**
227 * Adds a new preshared secret.
228 *
229 * @param this calling object
230 * @param type type of identification
231 * @param id_string identification as string
232 * @param preshared_secret preshared secret as string
233 */
234 void (*add_new_preshared_secret) (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret);
235
236 /**
237 * Adds a new rsa private key.
238 *
239 * @param this calling object
240 * @param type type of identification
241 * @param id_string identification as string
242 * @param key_pos location of key
243 * @param key_len length of key
244 */
245 void (*add_new_rsa_private_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
246
247 /**
248 * Adds a new rsa public key.
249 *
250 * @param this calling object
251 * @param type type of identification
252 * @param id_string identification as string
253 * @param key_pos location of key
254 * @param key_len length of key
255 */
256 void (*add_new_rsa_public_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
257
258 /**
259 * Load default configuration.
260 *
261 * @param this calling object
262 */
263 void (*load_default_config) (private_configuration_manager_t *this);
264 };
265
266
267 u_int8_t public_key_1[];
268 u_int8_t private_key_1[];
269 u_int8_t public_key_2[];
270 u_int8_t private_key_2[];
271
272 /**
273 * Implementation of private_configuration_manager_t.load_default_config.
274 */
275 static void load_default_config (private_configuration_manager_t *this)
276 {
277 init_config_t *init_config_a, *init_config_b;
278 proposal_t *proposal;
279 sa_config_t *sa_config_a, *sa_config_b;
280 traffic_selector_t *ts;
281
282 init_config_a = init_config_create("192.168.0.1","192.168.0.2",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
283 init_config_b = init_config_create("192.168.0.2","192.168.0.1",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
284
285 /* IKE proposals for alice */
286 proposal = proposal_create(1);
287 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
288 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
289 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
290 proposal->add_algorithm(proposal, IKE, PSEUDO_RANDOM_FUNCTION, PRF_HMAC_MD5, 0);
291 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
292 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
293 init_config_a->add_proposal(init_config_a, proposal);
294
295 /* IKE proposals for bob */
296 proposal = proposal_create(1);
297 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
298 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_3DES, 0);
299 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
300 proposal->add_algorithm(proposal, IKE, PSEUDO_RANDOM_FUNCTION, PRF_HMAC_MD5, 0);
301 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
302 init_config_b->add_proposal(init_config_b, proposal);
303
304 sa_config_a = sa_config_create(ID_IPV4_ADDR, "192.168.0.1",
305 ID_IPV4_ADDR, "192.168.0.2",
306 RSA_DIGITAL_SIGNATURE,
307 30000);
308
309 sa_config_b = sa_config_create(ID_IPV4_ADDR, "192.168.0.2",
310 ID_IPV4_ADDR, "192.168.0.1",
311 RSA_DIGITAL_SIGNATURE,
312 30000);
313
314 /* traffic selectors alice */
315 ts = traffic_selector_create_from_string(1, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
316 sa_config_a->add_my_traffic_selector(sa_config_a,ts);
317 ts = traffic_selector_create_from_string(1, TS_IPV4_ADDR_RANGE, "10.2.0.0", 0, "10.2.255.255", 65535);
318 sa_config_a->add_other_traffic_selector(sa_config_a,ts);
319 ts = traffic_selector_create_from_string(6, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
320 sa_config_a->add_my_traffic_selector(sa_config_a,ts);
321 ts = traffic_selector_create_from_string(6, TS_IPV4_ADDR_RANGE, "10.2.0.1", 22, "10.2.0.1", 22);
322 sa_config_a->add_other_traffic_selector(sa_config_a,ts);
323
324 /* traffic selectors bob */
325 ts = traffic_selector_create_from_string(1, TS_IPV4_ADDR_RANGE, "10.2.0.0", 0, "10.2.255.255", 65535);
326 sa_config_b->add_my_traffic_selector(sa_config_b,ts);
327 ts = traffic_selector_create_from_string(1, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
328 sa_config_b->add_other_traffic_selector(sa_config_b,ts);
329 ts = traffic_selector_create_from_string(6, TS_IPV4_ADDR_RANGE, "10.2.0.0", 0, "10.2.255.255", 65535);
330 sa_config_b->add_my_traffic_selector(sa_config_b,ts);
331 ts = traffic_selector_create_from_string(6, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
332 sa_config_b->add_other_traffic_selector(sa_config_b,ts);
333
334 /* child proposal for alice */
335 proposal = proposal_create(1);
336
337 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
338 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
339 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
340 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
341 // proposal->add_algorithm(proposal, AH, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
342
343 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
344 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
345 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
346 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
347 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
348 // proposal->add_algorithm(proposal, ESP, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
349
350 sa_config_a->add_proposal(sa_config_a, proposal);
351
352 /* child proposal for bob */
353 proposal = proposal_create(1);
354
355 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
356 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_AES_XCBC_96, 0);
357 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_DES_MAC, 0);
358 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
359 // proposal->add_algorithm(proposal, AH, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
360
361 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_3DES, 0);
362 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
363 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
364 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
365 // proposal->add_algorithm(proposal, ESP, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
366
367 sa_config_b->add_proposal(sa_config_b, proposal);
368
369
370
371
372 this->add_new_configuration(this,"bob",init_config_a,sa_config_a);
373 this->add_new_configuration(this,"alice",init_config_b,sa_config_b);
374
375
376 //this->add_new_preshared_secret(this,ID_IPV4_ADDR, "192.168.1.2","verschluesselt");
377
378 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "192.168.0.1", public_key_1, 256);
379 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "192.168.0.2", public_key_2, 256);
380 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "192.168.0.1", private_key_1, 1024);
381 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "192.168.0.2", private_key_2, 1024);
382 }
383
384 /**
385 * Implementation of configuration_manager_t.get_init_config_for_host.
386 */
387 static status_t get_init_config_for_host (private_configuration_manager_t *this, host_t *my_host, host_t *other_host,init_config_t **init_config)
388 {
389 iterator_t *iterator;
390 status_t status = NOT_FOUND;
391
392 iterator = this->configurations->create_iterator(this->configurations,TRUE);
393
394 this->logger->log(this->logger, CONTROL|LEVEL1, "getting config for hosts %s - %s",
395 my_host->get_address(my_host), other_host->get_address(other_host));
396
397 while (iterator->has_next(iterator))
398 {
399 configuration_entry_t *entry;
400 host_t *config_my_host;
401 host_t *config_other_host;
402
403 iterator->current(iterator,(void **) &entry);
404
405 config_my_host = entry->init_config->get_my_host(entry->init_config);
406 config_other_host = entry->init_config->get_other_host(entry->init_config);
407
408 /* first check if ip is equal */
409 if(config_other_host->ip_is_equal(config_other_host,other_host))
410 {
411 this->logger->log(this->logger, CONTROL|LEVEL2, "config entry with remote host %s",
412 config_other_host->get_address(config_other_host));
413 /* could be right one, check my_host for default route*/
414 if (config_my_host->is_default_route(config_my_host))
415 {
416 *init_config = entry->init_config;
417 status = SUCCESS;
418 break;
419 }
420 /* check now if host informations are the same */
421 else if (config_my_host->ip_is_equal(config_my_host,my_host))
422 {
423 *init_config = entry->init_config;
424 status = SUCCESS;
425 break;
426 }
427
428 }
429 /* Then check for wildcard hosts!
430 * TODO
431 * actually its only checked if other host with default route can be found! */
432 else if (config_other_host->is_default_route(config_other_host))
433 {
434 /* could be right one, check my_host for default route*/
435 if (config_my_host->is_default_route(config_my_host))
436 {
437 *init_config = entry->init_config;
438 status = SUCCESS;
439 break;
440 }
441 /* check now if host informations are the same */
442 else if (config_my_host->ip_is_equal(config_my_host,my_host))
443 {
444 *init_config = entry->init_config;
445 status = SUCCESS;
446 break;
447 }
448 }
449 }
450
451 iterator->destroy(iterator);
452
453 return status;
454 }
455
456 /**
457 * Implementation of configuration_manager_t.get_init_config_for_name.
458 */
459 static status_t get_init_config_for_name (private_configuration_manager_t *this, char *name, init_config_t **init_config)
460 {
461 iterator_t *iterator;
462 status_t status = NOT_FOUND;
463
464 iterator = this->configurations->create_iterator(this->configurations,TRUE);
465
466 while (iterator->has_next(iterator))
467 {
468 configuration_entry_t *entry;
469 iterator->current(iterator,(void **) &entry);
470
471 if (strcmp(entry->name,name) == 0)
472 {
473
474 /* found configuration */
475 *init_config = entry->init_config;
476 status = SUCCESS;
477 break;
478 }
479 }
480
481 iterator->destroy(iterator);
482
483 return status;
484 }
485
486 /**
487 * Implementation of configuration_manager_t.get_sa_config_for_name.
488 */
489 static status_t get_sa_config_for_name (private_configuration_manager_t *this, char *name, sa_config_t **sa_config)
490 {
491 iterator_t *iterator;
492 status_t status = NOT_FOUND;
493
494 iterator = this->configurations->create_iterator(this->configurations,TRUE);
495
496 while (iterator->has_next(iterator))
497 {
498 configuration_entry_t *entry;
499 iterator->current(iterator,(void **) &entry);
500
501 if (strcmp(entry->name,name) == 0)
502 {
503 /* found configuration */
504 *sa_config = entry->sa_config;
505 status = SUCCESS;
506 break;
507 }
508 }
509
510 iterator->destroy(iterator);
511
512 return status;
513 }
514
515 /**
516 * Implementation of configuration_manager_t.get_sa_config_for_init_config_and_id.
517 */
518 static status_t get_sa_config_for_init_config_and_id (private_configuration_manager_t *this, init_config_t *init_config, identification_t *other_id, identification_t *my_id,sa_config_t **sa_config)
519 {
520 iterator_t *iterator;
521 status_t status = NOT_FOUND;
522
523 iterator = this->configurations->create_iterator(this->configurations,TRUE);
524
525 while (iterator->has_next(iterator))
526 {
527 configuration_entry_t *entry;
528 iterator->current(iterator,(void **) &entry);
529
530 if (entry->init_config == init_config)
531 {
532 identification_t *config_my_id = entry->sa_config->get_my_id(entry->sa_config);
533 identification_t *config_other_id = entry->sa_config->get_other_id(entry->sa_config);
534
535 /* host informations seem to be the same */
536 if (config_other_id->equals(config_other_id,other_id))
537 {
538 /* other ids seems to match */
539
540 if (my_id == NULL)
541 {
542 /* first matching one is selected */
543
544 /* TODO priorize found entries */
545 *sa_config = entry->sa_config;
546 status = SUCCESS;
547 break;
548 }
549
550 if (config_my_id->equals(config_my_id,my_id))
551 {
552 *sa_config = entry->sa_config;
553 status = SUCCESS;
554 break;
555 }
556
557 }
558 }
559 }
560
561 iterator->destroy(iterator);
562
563 return status;
564 }
565
566 /**
567 * Implementation of private_configuration_manager_t.add_new_configuration.
568 */
569 static void add_new_configuration (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config)
570 {
571 iterator_t *iterator;
572 bool found;
573
574 iterator = this->init_configs->create_iterator(this->init_configs,TRUE);
575 found = FALSE;
576 while (iterator->has_next(iterator))
577 {
578 init_config_t *found_init_config;
579 iterator->current(iterator,(void **) &found_init_config);
580 if (init_config == found_init_config)
581 {
582 found = TRUE;
583 break;
584 }
585 }
586 iterator->destroy(iterator);
587 if (!found)
588 {
589 this->init_configs->insert_first(this->init_configs,init_config);
590 }
591
592 iterator = this->sa_configs->create_iterator(this->sa_configs,TRUE);
593 found = FALSE;
594 while (iterator->has_next(iterator))
595 {
596 sa_config_t *found_sa_config;
597 iterator->current(iterator,(void **) &found_sa_config);
598 if (sa_config == found_sa_config)
599 {
600 found = TRUE;
601 break;
602 }
603 }
604 iterator->destroy(iterator);
605 if (!found)
606 {
607 this->sa_configs->insert_first(this->sa_configs,sa_config);
608 }
609
610 this->configurations->insert_last(this->configurations,configuration_entry_create(name,init_config,sa_config));
611 }
612
613 /**
614 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
615 */
616 static void add_new_preshared_secret (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret)
617 {
618 preshared_secret_entry_t *entry = allocator_alloc_thing(preshared_secret_entry_t);
619
620 entry->identification = identification_create_from_string(type,id_string);
621 entry->preshared_secret.len = strlen(preshared_secret) + 1;
622 entry->preshared_secret.ptr = allocator_alloc(entry->preshared_secret.len);
623 memcpy(entry->preshared_secret.ptr,preshared_secret,entry->preshared_secret.len);
624
625 this->preshared_secrets->insert_last(this->preshared_secrets,entry);
626 }
627
628 /**
629 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
630 */
631 static void add_new_rsa_public_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
632 {
633 chunk_t key;
634 key.ptr = key_pos;
635 key.len = key_len;
636
637 rsa_public_key_entry_t *entry = allocator_alloc_thing(rsa_public_key_entry_t);
638
639 entry->identification = identification_create_from_string(type,id_string);
640 entry->public_key = rsa_public_key_create();
641 entry->public_key->set_key(entry->public_key, key);
642
643 this->rsa_public_keys->insert_last(this->rsa_public_keys, entry);
644 }
645
646 /**
647 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
648 */
649 static void add_new_rsa_private_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
650 {
651 chunk_t key;
652 key.ptr = key_pos;
653 key.len = key_len;
654
655 rsa_private_key_entry_t *entry = allocator_alloc_thing(rsa_private_key_entry_t);
656
657 entry->identification = identification_create_from_string(type,id_string);
658 entry->private_key = rsa_private_key_create();
659 entry->private_key->set_key(entry->private_key, key);
660
661 this->rsa_private_keys->insert_last(this->rsa_private_keys, entry);
662 }
663
664 /**
665 * Implementation of configuration_manager_t.get_shared_secret.
666 */
667 static status_t get_shared_secret(private_configuration_manager_t *this, identification_t *identification, chunk_t *preshared_secret)
668 {
669 iterator_t *iterator;
670
671 iterator = this->preshared_secrets->create_iterator(this->preshared_secrets,TRUE);
672 while (iterator->has_next(iterator))
673 {
674 preshared_secret_entry_t *entry;
675 iterator->current(iterator,(void **) &entry);
676 if (entry->identification->equals(entry->identification,identification))
677 {
678 *preshared_secret = entry->preshared_secret;
679 iterator->destroy(iterator);
680 return SUCCESS;
681 }
682 }
683 iterator->destroy(iterator);
684 return NOT_FOUND;
685 }
686
687 /**
688 * Implementation of configuration_manager_t.get_shared_secret.
689 */
690 static status_t get_rsa_public_key(private_configuration_manager_t *this, identification_t *identification, rsa_public_key_t **public_key)
691 {
692 iterator_t *iterator;
693
694 iterator = this->rsa_public_keys->create_iterator(this->rsa_public_keys,TRUE);
695 while (iterator->has_next(iterator))
696 {
697 rsa_public_key_entry_t *entry;
698 iterator->current(iterator,(void **) &entry);
699 if (entry->identification->equals(entry->identification,identification))
700 {
701 *public_key = entry->public_key;
702 iterator->destroy(iterator);
703 return SUCCESS;
704 }
705 }
706 iterator->destroy(iterator);
707 return NOT_FOUND;
708 }
709
710 /**
711 * Implementation of configuration_manager_t.get_shared_secret.
712 */
713 static status_t get_rsa_private_key(private_configuration_manager_t *this, identification_t *identification, rsa_private_key_t **private_key)
714 {
715 iterator_t *iterator;
716
717 iterator = this->rsa_private_keys->create_iterator(this->rsa_private_keys,TRUE);
718 while (iterator->has_next(iterator))
719 {
720 rsa_private_key_entry_t *entry;
721 iterator->current(iterator,(void **) &entry);
722 if (entry->identification->equals(entry->identification,identification))
723 {
724 *private_key = entry->private_key;
725 iterator->destroy(iterator);
726 return SUCCESS;
727 }
728 }
729 iterator->destroy(iterator);
730 return NOT_FOUND;
731 }
732
733 /**
734 * Implementation of configuration_manager_t.get_retransmit_timeout.
735 */
736 static status_t get_retransmit_timeout (private_configuration_manager_t *this, u_int32_t retransmit_count, u_int32_t *timeout)
737 {
738 int new_timeout = this->first_retransmit_timeout, i;
739 if ((retransmit_count > this->max_retransmit_count) && (this->max_retransmit_count != 0))
740 {
741 return FAILED;
742 }
743
744
745 for (i = 0; i < retransmit_count; i++)
746 {
747 new_timeout *= 2;
748 }
749
750 *timeout = new_timeout;
751
752 return SUCCESS;
753 }
754
755 /**
756 * Implementation of configuration_manager_t.get_half_open_ike_sa_timeout.
757 */
758 static u_int32_t get_half_open_ike_sa_timeout (private_configuration_manager_t *this)
759 {
760 return this->half_open_ike_sa_timeout;
761 }
762
763 /**
764 * Implementation of configuration_manager_t.destroy.
765 */
766 static void destroy(private_configuration_manager_t *this)
767 {
768 this->logger->log(this->logger,CONTROL | LEVEL1, "Going to destroy configuration manager ");
769
770 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy configuration entries");
771 while (this->configurations->get_count(this->configurations) > 0)
772 {
773 configuration_entry_t *entry;
774 this->configurations->remove_first(this->configurations,(void **) &entry);
775 entry->destroy(entry);
776 }
777 this->configurations->destroy(this->configurations);
778
779 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy sa_config_t objects");
780 while (this->sa_configs->get_count(this->sa_configs) > 0)
781 {
782 sa_config_t *sa_config;
783 this->sa_configs->remove_first(this->sa_configs,(void **) &sa_config);
784 sa_config->destroy(sa_config);
785 }
786
787 this->sa_configs->destroy(this->sa_configs);
788
789 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy init_config_t objects");
790 while (this->init_configs->get_count(this->init_configs) > 0)
791 {
792 init_config_t *init_config;
793 this->init_configs->remove_first(this->init_configs,(void **) &init_config);
794 init_config->destroy(init_config);
795 }
796 this->init_configs->destroy(this->init_configs);
797
798 while (this->preshared_secrets->get_count(this->preshared_secrets) > 0)
799 {
800 preshared_secret_entry_t *entry;
801 this->preshared_secrets->remove_first(this->preshared_secrets,(void **) &entry);
802 entry->identification->destroy(entry->identification);
803 allocator_free_chunk(&(entry->preshared_secret));
804 allocator_free(entry);
805 }
806 this->preshared_secrets->destroy(this->preshared_secrets);
807
808 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa private keys");
809 while (this->rsa_private_keys->get_count(this->rsa_private_keys) > 0)
810 {
811 rsa_private_key_entry_t *entry;
812 this->rsa_private_keys->remove_first(this->rsa_private_keys,(void **) &entry);
813 entry->identification->destroy(entry->identification);
814 entry->private_key->destroy(entry->private_key);
815 allocator_free(entry);
816 }
817 this->rsa_private_keys->destroy(this->rsa_private_keys);
818
819 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa public keys");
820 while (this->rsa_public_keys->get_count(this->rsa_public_keys) > 0)
821 {
822 rsa_public_key_entry_t *entry;
823 this->rsa_public_keys->remove_first(this->rsa_public_keys,(void **) &entry);
824 entry->identification->destroy(entry->identification);
825 entry->public_key->destroy(entry->public_key);
826 allocator_free(entry);
827 }
828 this->rsa_public_keys->destroy(this->rsa_public_keys);
829
830 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy assigned logger");
831 charon->logger_manager->destroy_logger(charon->logger_manager,this->logger);
832 allocator_free(this);
833 }
834
835 /*
836 * Described in header-file
837 */
838 configuration_manager_t *configuration_manager_create(u_int32_t first_retransmit_timeout,u_int32_t max_retransmit_count, u_int32_t half_open_ike_sa_timeout)
839 {
840 private_configuration_manager_t *this = allocator_alloc_thing(private_configuration_manager_t);
841
842 /* public functions */
843 this->public.destroy = (void(*)(configuration_manager_t*))destroy;
844 this->public.get_init_config_for_name = (status_t (*) (configuration_manager_t *, char *, init_config_t **)) get_init_config_for_name;
845 this->public.get_init_config_for_host = (status_t (*) (configuration_manager_t *, host_t *, host_t *,init_config_t **)) get_init_config_for_host;
846 this->public.get_sa_config_for_name =(status_t (*) (configuration_manager_t *, char *, sa_config_t **)) get_sa_config_for_name;
847 this->public.get_sa_config_for_init_config_and_id =(status_t (*) (configuration_manager_t *, init_config_t *, identification_t *, identification_t *,sa_config_t **)) get_sa_config_for_init_config_and_id;
848 this->public.get_retransmit_timeout = (status_t (*) (configuration_manager_t *, u_int32_t retransmit_count, u_int32_t *timeout))get_retransmit_timeout;
849 this->public.get_half_open_ike_sa_timeout = (u_int32_t (*) (configuration_manager_t *)) get_half_open_ike_sa_timeout;
850 this->public.get_shared_secret = (status_t (*) (configuration_manager_t *, identification_t *, chunk_t *))get_shared_secret;
851 this->public.get_rsa_private_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_private_key_t**))get_rsa_private_key;
852 this->public.get_rsa_public_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_public_key_t**))get_rsa_public_key;
853
854 /* private functions */
855 this->load_default_config = load_default_config;
856 this->add_new_configuration = add_new_configuration;
857 this->add_new_preshared_secret = add_new_preshared_secret;
858 this->add_new_rsa_public_key = add_new_rsa_public_key;
859 this->add_new_rsa_private_key = add_new_rsa_private_key;
860
861 /* private variables */
862 this->logger = charon->logger_manager->create_logger(charon->logger_manager,CONFIGURATION_MANAGER,NULL);
863 this->configurations = linked_list_create();
864 this->sa_configs = linked_list_create();
865 this->init_configs = linked_list_create();
866 this->preshared_secrets = linked_list_create();
867 this->rsa_private_keys = linked_list_create();
868 this->rsa_public_keys = linked_list_create();
869 this->max_retransmit_count = max_retransmit_count;
870 this->first_retransmit_timeout = first_retransmit_timeout;
871 this->half_open_ike_sa_timeout = half_open_ike_sa_timeout;
872
873 this->load_default_config(this);
874
875 return (&this->public);
876 }
877
878
879 u_int8_t public_key_1[] = {
880 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
881 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
882 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
883 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
884 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
885 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
886 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
887 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
888 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
889 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
890 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
891 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
892 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
893 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
894 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
895 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
896 };
897
898 u_int8_t private_key_1[] = {
899 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
900 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
901 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
902 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
903 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
904 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
905 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
906 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
907 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
908 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
909 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
910 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
911 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
912 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
913 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
914 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
915 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
916 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
917 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
918 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
919 0xEE,0xF2,0x37,0xF2,0x98,0xEB,0x33,0xC6,0x84,0xE8,0xB9,0xD1,0x18,0xB5,0x29,0x00,
920 0xAC,0x6B,0x78,0xBC,0x9E,0xB6,0x01,0x21,0x29,0xEE,0x4A,0x99,0xFB,0x3D,0x07,0x23,
921 0x77,0x84,0x93,0x4B,0x53,0x49,0xB0,0xA4,0x6F,0xB0,0xF5,0x50,0xDB,0x35,0xDD,0xDF,
922 0x41,0x6F,0x7B,0xA9,0x88,0x3D,0x0B,0x1C,0x2E,0x2B,0x44,0x35,0x24,0x72,0x66,0xC1,
923 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
924 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
925 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
926 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
927 0xE3,0xB8,0xC8,0x30,0x67,0xD0,0x5D,0xF1,0x32,0x64,0xDC,0x4B,0xB3,0x7E,0xE3,0x1A,
928 0xC5,0xBC,0xAC,0xC9,0x95,0x5C,0x96,0x0D,0x5A,0x52,0x90,0xE0,0x08,0x3F,0xA6,0x71,
929 0xC7,0x18,0xC5,0x64,0xA2,0xE4,0xB8,0x43,0x5A,0x8A,0x7A,0x9B,0xDF,0xDA,0x81,0x85,
930 0x6C,0x0F,0xA4,0xC9,0xAC,0x25,0x19,0x54,0xFE,0x75,0xAA,0x1D,0x22,0xB8,0xF4,0xCD,
931 0x1A,0x91,0xC2,0xA3,0x65,0x3F,0xD7,0xFC,0x7E,0xE1,0x92,0x29,0xC5,0x85,0x6E,0x44,
932 0xC8,0x4D,0xBD,0x7A,0x2C,0x2D,0x47,0xE2,0x24,0x24,0xDF,0xC2,0x31,0x65,0x8F,0xD4,
933 0xBA,0x28,0x7C,0x4A,0xCA,0xAE,0x79,0xBE,0xC1,0x6C,0xFC,0x09,0x45,0xF7,0x87,0x17,
934 0xB4,0x55,0x92,0x15,0xC5,0xFA,0x8F,0xB0,0x56,0x96,0xC1,0x87,0x12,0xFE,0xDF,0xF0,
935 0x3A,0xE1,0xB1,0x83,0x19,0x74,0xF0,0x7D,0x37,0x41,0x3E,0x6A,0xFE,0x33,0x3E,0x74,
936 0x01,0x45,0xE4,0x65,0xAE,0xC9,0xAE,0x64,0xE3,0xF1,0x90,0xFD,0x1A,0x30,0x44,0x82,
937 0xEE,0x34,0x94,0xF2,0x68,0x3D,0x61,0x90,0xFB,0xEB,0xD8,0x18,0xE6,0x7C,0xEC,0x69,
938 0x70,0xD0,0xEB,0x2F,0xC1,0x3D,0x9C,0x6A,0x4B,0x89,0x50,0x6B,0x3F,0xA5,0x38,0x41,
939 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
940 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
941 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
942 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
943 0x65,0xEE,0x34,0x09,0xAC,0x4C,0x21,0x71,0x1D,0x3F,0x7E,0x0D,0x01,0xC2,0x3E,0x34,
944 0x88,0x58,0xEC,0x4F,0x62,0x50,0xF7,0xD8,0x62,0xDF,0xC1,0x39,0x40,0xA0,0xBF,0x0B,
945 0xD5,0x2F,0x5B,0xFA,0x35,0x14,0x69,0x63,0x2C,0x36,0x4B,0xDF,0xEB,0x33,0x66,0x6B,
946 0x97,0xA9,0x6C,0x12,0x5D,0x08,0xD5,0x55,0x77,0x28,0x83,0xD7,0x3B,0xAE,0x05,0xC1,
947 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
948 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
949 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
950 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
951 0x9F,0x96,0x17,0x75,0x14,0xCB,0xC9,0x8A,0x06,0xAE,0xF8,0x53,0x74,0xEF,0x2F,0x68,
952 0xCB,0xBA,0x75,0xBC,0xAF,0x97,0xBA,0xF0,0x90,0xA3,0xDC,0x33,0xA4,0x94,0x36,0xA8,
953 0xF5,0xC6,0x3E,0x4F,0x50,0x78,0xC9,0x49,0x2A,0x62,0x71,0x9A,0x5B,0x3E,0x5E,0x16,
954 0x8A,0xAC,0x4B,0xE7,0xA9,0x64,0x36,0x64,0x82,0x0F,0x23,0xB0,0x57,0x6D,0x16,0xE1,
955 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
956 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
957 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
958 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
959 0x25,0xF1,0x40,0x05,0x58,0x19,0x37,0x61,0x34,0x98,0xBB,0x29,0x1B,0x44,0x08,0x1A,
960 0xD3,0x66,0x62,0x4C,0x9C,0x47,0xD2,0x91,0x60,0x46,0x6F,0x8E,0xA6,0xE7,0x80,0x7B,
961 0x17,0x77,0x9A,0xB5,0x18,0x8A,0x15,0x8F,0x77,0xA1,0x55,0x3E,0x96,0x66,0x86,0x57,
962 0x75,0x73,0xF5,0x57,0x50,0x28,0xEA,0x83,0x14,0xB1,0x55,0xA3,0x82,0xCD,0x36,0xF8
963 };
964 u_int8_t public_key_2[] = {
965 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
966 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
967 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
968 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
969 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
970 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
971 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
972 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
973 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
974 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
975 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
976 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
977 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
978 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
979 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
980 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
981 };
982 u_int8_t private_key_2[] = {
983 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
984 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
985 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
986 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
987 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
988 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
989 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
990 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
991 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
992 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
993 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
994 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
995 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
996 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
997 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
998 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
999 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1000 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1001 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1002 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1003 0xE8,0x37,0xB6,0x08,0xD8,0x9C,0x72,0xC5,0x34,0xDB,0x3A,0xA2,0xF9,0x24,0xE1,0x44,
1004 0x23,0x3B,0x72,0x70,0x5D,0xCC,0xC3,0xBA,0x3D,0xCE,0x82,0xAC,0x6A,0x71,0x72,0x90,
1005 0xC7,0x94,0xB3,0x8B,0x85,0xE0,0xEF,0x39,0xF0,0xE4,0x08,0x31,0xEA,0xE6,0x3B,0x7D,
1006 0xB0,0x36,0xFA,0x71,0x6E,0xA3,0xF9,0x4C,0x39,0x05,0x8C,0xB7,0x8C,0x99,0x94,0x85,
1007 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1008 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1009 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1010 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1011 0x96,0x32,0xF9,0xD9,0xA8,0xC0,0x84,0xFD,0xE5,0x6B,0xA6,0xC2,0x85,0x85,0x68,0x17,
1012 0x7E,0x98,0xD0,0x6A,0xDC,0xD8,0x4C,0x46,0xCB,0x6D,0x4C,0x25,0xE5,0xF9,0x58,0xB2,
1013 0x17,0xE4,0x20,0x8A,0x87,0x0D,0xD7,0x4C,0x79,0xA3,0xB3,0x69,0x98,0x7F,0x5D,0x08,
1014 0x33,0x5B,0xAD,0xA3,0x34,0xE8,0x55,0x5E,0x09,0x60,0x70,0xA8,0x11,0xFD,0x70,0x67,
1015 0x00,0xE1,0xA7,0x44,0xF5,0x85,0x14,0x43,0xD5,0x45,0x1A,0x87,0x65,0x30,0xA8,0x24,
1016 0x2C,0xF8,0xAF,0x97,0xFF,0x9A,0x7E,0xF4,0x3B,0xE7,0xD3,0x79,0x88,0xEC,0x66,0xF6,
1017 0xE0,0xAA,0xF4,0x88,0x0A,0xE2,0x4C,0x31,0x4A,0xA6,0xF3,0x91,0x9A,0x4A,0xBE,0xF0,
1018 0x85,0xEF,0xCE,0x55,0xB6,0x35,0x2B,0x38,0xD5,0xF5,0x5A,0x35,0x7B,0xCF,0x4D,0xF8,
1019 0x5D,0x1E,0x57,0x99,0xAF,0xED,0x33,0x6F,0xD5,0xA7,0x49,0x5B,0x14,0x4C,0x7D,0x17,
1020 0x81,0xAE,0x1E,0xDA,0x9D,0xFB,0xA9,0xC3,0x00,0x4C,0x17,0x37,0x30,0x96,0x60,0xE1,
1021 0x6A,0xCC,0xD3,0xDB,0x40,0xCE,0x96,0x96,0x0D,0x95,0x0D,0x84,0x38,0xBD,0xDA,0x2F,
1022 0xEC,0xED,0x22,0x39,0x8E,0x8C,0xDF,0xCD,0x07,0xCF,0x0F,0xB0,0x2B,0x76,0xDB,0xC1,
1023 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1024 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1025 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1026 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1027 0xA5,0x37,0x9E,0x08,0x45,0x35,0x6A,0x62,0xEC,0xEC,0x5D,0x97,0xBE,0x73,0x82,0xE2,
1028 0x9B,0xBE,0x9B,0xF9,0x5E,0x83,0x65,0x6E,0x88,0xB2,0xF9,0x3D,0xFA,0xAD,0xA4,0xB9,
1029 0x65,0x86,0x63,0x08,0x0D,0xC4,0xAF,0xF0,0x25,0x77,0xD8,0x6C,0xCB,0x97,0xEB,0x13,
1030 0xCD,0xE0,0x0F,0xE7,0xCC,0xB4,0x55,0x96,0xE9,0xAB,0x0D,0x27,0x3A,0x9D,0xBA,0x91,
1031 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1032 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1033 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1034 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1035 0x44,0xA3,0x44,0xF4,0x47,0x9E,0xBA,0xE7,0xBF,0xF8,0xC2,0xFB,0x2F,0xC3,0x38,0x3F,
1036 0x4C,0x56,0x0F,0x20,0x56,0x8D,0xED,0xC5,0x88,0x5F,0x09,0x26,0x64,0x82,0xDF,0x1A,
1037 0x7B,0xBA,0x7F,0x78,0x6E,0xA1,0x4F,0x9B,0x1E,0x17,0x45,0xFC,0xE2,0x78,0x89,0x8E,
1038 0x1E,0xD2,0x2D,0x76,0x60,0xCE,0x2F,0x7C,0xCA,0xB2,0x2C,0xA9,0x51,0x97,0x4C,0xCF,
1039 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1040 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1041 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1042 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1043 0x01,0x40,0x4B,0x7D,0xAB,0x8A,0xB9,0x5E,0xEE,0xA1,0x81,0xED,0x27,0x89,0xF6,0x4C,
1044 0x59,0x8C,0x23,0x14,0x3B,0x1B,0xBA,0xC3,0xB2,0x00,0x9A,0x9E,0xDF,0x54,0x82,0xA7,
1045 0x3E,0xC9,0x23,0x85,0x4D,0xD3,0x80,0xA7,0x89,0x11,0xBA,0x76,0xF5,0xC1,0x55,0x37,
1046 0x0A,0x0D,0x8C,0x07,0x0A,0xC8,0xC5,0x11,0x74,0x9C,0xB6,0x80,0x3B,0x0A,0x9A,0xA2
1047 };