- comments and cleanups
[strongswan.git] / Source / charon / config / configuration_manager.c
1 /**
2 * @file configuration_manager.c
3 *
4 * @brief Implementation of configuration_manager_t.
5 *
6 */
7
8 /*
9 * Copyright (C) 2005 Jan Hutter, Martin Willi
10 * Hochschule fuer Technik Rapperswil
11 *
12 * This program is free software; you can redistribute it and/or modify it
13 * under the terms of the GNU General Public License as published by the
14 * Free Software Foundation; either version 2 of the License, or (at your
15 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
16 *
17 * This program is distributed in the hope that it will be useful, but
18 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
19 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
20 * for more details.
21 */
22
23 #include <stdlib.h>
24
25 #include "configuration_manager.h"
26
27 #include <types.h>
28 #include <daemon.h>
29 #include <utils/allocator.h>
30
31
32 typedef struct preshared_secret_entry_t preshared_secret_entry_t;
33
34 /**
35 * A preshared secret entry combines an identifier and a
36 * preshared secret.
37 */
38 struct preshared_secret_entry_t {
39
40 /**
41 * Identification.
42 */
43 identification_t *identification;
44
45 /**
46 * Preshared secret as chunk_t. The NULL termination is not included.
47 */
48 chunk_t preshared_secret;
49 };
50
51
52 typedef struct rsa_private_key_entry_t rsa_private_key_entry_t;
53
54 /**
55 * Entry for a rsa private key.
56 */
57 struct rsa_private_key_entry_t {
58
59 /**
60 * Identification.
61 */
62 identification_t *identification;
63
64 /**
65 * Private key.
66 */
67 rsa_private_key_t* private_key;
68 };
69
70 typedef struct rsa_public_key_entry_t rsa_public_key_entry_t;
71
72 /**
73 * Entry for a rsa private key.
74 */
75 struct rsa_public_key_entry_t {
76
77 /**
78 * Identification.
79 */
80 identification_t *identification;
81
82 /**
83 * Private key.
84 */
85 rsa_public_key_t* public_key;
86 };
87
88 typedef struct configuration_entry_t configuration_entry_t;
89
90 /* A configuration entry combines a configuration name with a init and sa
91 * configuration represented as init_config_t and sa_config_t objects.
92 *
93 * @b Constructors:
94 * - configuration_entry_create()
95 */
96 struct configuration_entry_t {
97
98 /**
99 * Configuration name.
100 *
101 */
102 char *name;
103
104 /**
105 * Configuration for IKE_SA_INIT exchange.
106 */
107 init_config_t *init_config;
108
109 /**
110 * Configuration for all phases after IKE_SA_INIT exchange.
111 */
112 sa_config_t *sa_config;
113
114 /**
115 * Destroys a configuration_entry_t
116 *
117 * @param this calling object
118 */
119 void (*destroy) (configuration_entry_t *this);
120 };
121
122 /**
123 * Implementation of configuration_entry_t.destroy.
124 */
125 static void configuration_entry_destroy (configuration_entry_t *this)
126 {
127 allocator_free(this->name);
128 allocator_free(this);
129 }
130
131 /**
132 * @brief Creates a configuration_entry_t object.
133 *
134 * @param name name of the configuration entry (gets copied)
135 * @param init_config object of type init_config_t
136 * @param sa_config object of type sa_config_t
137 */
138 configuration_entry_t * configuration_entry_create(char * name, init_config_t * init_config, sa_config_t * sa_config)
139 {
140 configuration_entry_t *entry = allocator_alloc_thing(configuration_entry_t);
141
142 /* functions */
143 entry->destroy = configuration_entry_destroy;
144
145 /* private data */
146 entry->init_config = init_config;
147 entry->sa_config = sa_config;
148 entry->name = allocator_alloc(strlen(name) + 1);
149 strcpy(entry->name,name);
150 return entry;
151 }
152
153 typedef struct private_configuration_manager_t private_configuration_manager_t;
154
155 /**
156 * Private data of an configuration_manager_t object.
157 */
158 struct private_configuration_manager_t {
159
160 /**
161 * Public part of configuration_manager_t object.
162 */
163 configuration_manager_t public;
164
165 /**
166 * Holding all configurations.
167 */
168 linked_list_t *configurations;
169
170 /**
171 * Holding all managed init_configs.
172 */
173 linked_list_t *init_configs;
174
175 /**
176 * Holding all managed init_configs.
177 */
178 linked_list_t *sa_configs;
179
180 /**
181 * Holding all managed preshared secrets.
182 */
183 linked_list_t *preshared_secrets;
184
185 /**
186 * Holding all managed private secrets.
187 */
188 linked_list_t *rsa_private_keys;
189
190 /**
191 * Holding all managed public secrets.
192 */
193 linked_list_t *rsa_public_keys;
194
195 /**
196 * Assigned logger_t object.
197 */
198 logger_t *logger;
199
200 /**
201 * Max number of requests to be retransmitted.
202 * 0 for infinite.
203 */
204 u_int32_t max_retransmit_count;
205
206 /**
207 * First retransmit timeout in ms.
208 */
209 u_int32_t first_retransmit_timeout;
210
211 /**
212 * Timeout in ms after that time a IKE_SA gets deleted.
213 */
214 u_int32_t half_open_ike_sa_timeout;
215
216 /**
217 * Adds a new IKE_SA configuration.
218 *
219 * @param this calling object
220 * @param name name for the configuration
221 * @param init_config init_config_t object
222 * @param sa_config sa_config_t object
223 */
224 void (*add_new_configuration) (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config);
225
226 /**
227 * Adds a new preshared secret.
228 *
229 * @param this calling object
230 * @param type type of identification
231 * @param id_string identification as string
232 * @param preshared_secret preshared secret as string
233 */
234 void (*add_new_preshared_secret) (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret);
235
236 /**
237 * Adds a new rsa private key.
238 *
239 * @param this calling object
240 * @param type type of identification
241 * @param id_string identification as string
242 * @param key_pos location of key
243 * @param key_len length of key
244 */
245 void (*add_new_rsa_private_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
246
247 /**
248 * Adds a new rsa public key.
249 *
250 * @param this calling object
251 * @param type type of identification
252 * @param id_string identification as string
253 * @param key_pos location of key
254 * @param key_len length of key
255 */
256 void (*add_new_rsa_public_key) (private_configuration_manager_t *this,id_type_t type, char *id_string, u_int8_t *key_pos, size_t key_len);
257
258 /**
259 * Load default configuration.
260 *
261 * @param this calling object
262 */
263 void (*load_default_config) (private_configuration_manager_t *this);
264 };
265
266
267 u_int8_t public_key_1[];
268 u_int8_t private_key_1[];
269 u_int8_t public_key_2[];
270 u_int8_t private_key_2[];
271
272 /**
273 * Implementation of private_configuration_manager_t.load_default_config.
274 */
275 static void load_default_config (private_configuration_manager_t *this)
276 {
277 init_config_t *init_config_a, *init_config_b;
278 proposal_t *proposal;
279 sa_config_t *sa_config_a, *sa_config_b;
280 traffic_selector_t *ts;
281
282 init_config_a = init_config_create("192.168.0.1","192.168.0.2",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
283 init_config_b = init_config_create("192.168.0.2","192.168.0.1",IKEV2_UDP_PORT,IKEV2_UDP_PORT);
284
285 /* IKE proposals for alice */
286 proposal = proposal_create(1);
287 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
288 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
289 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
290 proposal->add_algorithm(proposal, IKE, PSEUDO_RANDOM_FUNCTION, PRF_HMAC_MD5, 0);
291 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
292 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
293 init_config_a->add_proposal(init_config_a, proposal);
294
295 /* IKE proposals for bob */
296 proposal = proposal_create(1);
297 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
298 proposal->add_algorithm(proposal, IKE, ENCRYPTION_ALGORITHM, ENCR_3DES, 0);
299 proposal->add_algorithm(proposal, IKE, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
300 proposal->add_algorithm(proposal, IKE, PSEUDO_RANDOM_FUNCTION, PRF_HMAC_MD5, 0);
301 proposal->add_algorithm(proposal, IKE, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
302 init_config_b->add_proposal(init_config_b, proposal);
303
304 sa_config_a = sa_config_create(ID_IPV4_ADDR, "192.168.0.1",
305 ID_IPV4_ADDR, "192.168.0.2",
306 RSA_DIGITAL_SIGNATURE,
307 30000);
308
309 sa_config_b = sa_config_create(ID_IPV4_ADDR, "192.168.0.2",
310 ID_IPV4_ADDR, "192.168.0.1",
311 RSA_DIGITAL_SIGNATURE,
312 30000);
313
314 /* traffic selectors alice */
315 ts = traffic_selector_create_from_string(0, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
316 sa_config_a->add_my_traffic_selector(sa_config_a,ts);
317 ts = traffic_selector_create_from_string(0, TS_IPV4_ADDR_RANGE, "10.2.0.0", 0, "10.2.255.255", 65535);
318 sa_config_a->add_other_traffic_selector(sa_config_a,ts);
319
320 /* traffic selectors bob */
321 ts = traffic_selector_create_from_string(0, TS_IPV4_ADDR_RANGE, "10.2.0.0", 0, "10.2.255.255", 65535);
322 sa_config_b->add_my_traffic_selector(sa_config_b,ts);
323 ts = traffic_selector_create_from_string(0, TS_IPV4_ADDR_RANGE, "10.1.0.0", 0, "10.1.255.255", 65535);
324 sa_config_b->add_other_traffic_selector(sa_config_b,ts);
325
326 /* child proposal for alice */
327 proposal = proposal_create(1);
328
329 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
330 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
331 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
332 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
333 // proposal->add_algorithm(proposal, AH, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
334
335 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
336 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
337 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_MD5_96, 0);
338 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_2048_BIT, 0);
339 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
340 // proposal->add_algorithm(proposal, ESP, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
341
342 sa_config_a->add_proposal(sa_config_a, proposal);
343
344 /* child proposal for bob */
345 proposal = proposal_create(1);
346
347 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
348 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_AES_XCBC_96, 0);
349 // proposal->add_algorithm(proposal, AH, INTEGRITY_ALGORITHM, AUTH_DES_MAC, 0);
350 // proposal->add_algorithm(proposal, AH, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
351 // proposal->add_algorithm(proposal, AH, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
352
353 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_3DES, 0);
354 proposal->add_algorithm(proposal, ESP, ENCRYPTION_ALGORITHM, ENCR_AES_CBC, 16);
355 proposal->add_algorithm(proposal, ESP, INTEGRITY_ALGORITHM, AUTH_HMAC_SHA1_96, 0);
356 // proposal->add_algorithm(proposal, ESP, DIFFIE_HELLMAN_GROUP, MODP_1024_BIT, 0);
357 // proposal->add_algorithm(proposal, ESP, EXTENDED_SEQUENCE_NUMBERS, NO_EXT_SEQ_NUMBERS, 0);
358
359 sa_config_b->add_proposal(sa_config_b, proposal);
360
361
362
363
364 this->add_new_configuration(this,"sun",init_config_a,sa_config_a);
365 this->add_new_configuration(this,"moon",init_config_b,sa_config_b);
366
367
368 //this->add_new_preshared_secret(this,ID_IPV4_ADDR, "192.168.1.2","verschluesselt");
369
370 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "192.168.0.1", public_key_1, 256);
371 this->add_new_rsa_public_key(this,ID_IPV4_ADDR, "192.168.0.2", public_key_2, 256);
372 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "192.168.0.1", private_key_1, 1024);
373 this->add_new_rsa_private_key(this,ID_IPV4_ADDR, "192.168.0.2", private_key_2, 1024);
374 }
375
376 /**
377 * Implementation of configuration_manager_t.get_init_config_for_host.
378 */
379 static status_t get_init_config_for_host (private_configuration_manager_t *this, host_t *my_host, host_t *other_host,init_config_t **init_config)
380 {
381 iterator_t *iterator;
382 status_t status = NOT_FOUND;
383
384 iterator = this->configurations->create_iterator(this->configurations,TRUE);
385
386 this->logger->log(this->logger, CONTROL|LEVEL1, "getting config for hosts %s - %s",
387 my_host->get_address(my_host), other_host->get_address(other_host));
388
389 while (iterator->has_next(iterator))
390 {
391 configuration_entry_t *entry;
392 host_t *config_my_host;
393 host_t *config_other_host;
394
395 iterator->current(iterator,(void **) &entry);
396
397 config_my_host = entry->init_config->get_my_host(entry->init_config);
398 config_other_host = entry->init_config->get_other_host(entry->init_config);
399
400 /* first check if ip is equal */
401 if(config_other_host->ip_is_equal(config_other_host,other_host))
402 {
403 this->logger->log(this->logger, CONTROL|LEVEL2, "config entry with remote host %s",
404 config_other_host->get_address(config_other_host));
405 /* could be right one, check my_host for default route*/
406 if (config_my_host->is_default_route(config_my_host))
407 {
408 *init_config = entry->init_config;
409 status = SUCCESS;
410 break;
411 }
412 /* check now if host informations are the same */
413 else if (config_my_host->ip_is_equal(config_my_host,my_host))
414 {
415 *init_config = entry->init_config;
416 status = SUCCESS;
417 break;
418 }
419
420 }
421 /* Then check for wildcard hosts!
422 * TODO
423 * actually its only checked if other host with default route can be found! */
424 else if (config_other_host->is_default_route(config_other_host))
425 {
426 /* could be right one, check my_host for default route*/
427 if (config_my_host->is_default_route(config_my_host))
428 {
429 *init_config = entry->init_config;
430 status = SUCCESS;
431 break;
432 }
433 /* check now if host informations are the same */
434 else if (config_my_host->ip_is_equal(config_my_host,my_host))
435 {
436 *init_config = entry->init_config;
437 status = SUCCESS;
438 break;
439 }
440 }
441 }
442
443 iterator->destroy(iterator);
444
445 return status;
446 }
447
448 /**
449 * Implementation of configuration_manager_t.get_init_config_for_name.
450 */
451 static status_t get_init_config_for_name (private_configuration_manager_t *this, char *name, init_config_t **init_config)
452 {
453 iterator_t *iterator;
454 status_t status = NOT_FOUND;
455
456 iterator = this->configurations->create_iterator(this->configurations,TRUE);
457
458 while (iterator->has_next(iterator))
459 {
460 configuration_entry_t *entry;
461 iterator->current(iterator,(void **) &entry);
462
463 if (strcmp(entry->name,name) == 0)
464 {
465
466 /* found configuration */
467 *init_config = entry->init_config;
468 status = SUCCESS;
469 break;
470 }
471 }
472
473 iterator->destroy(iterator);
474
475 return status;
476 }
477
478 /**
479 * Implementation of configuration_manager_t.get_sa_config_for_name.
480 */
481 static status_t get_sa_config_for_name (private_configuration_manager_t *this, char *name, sa_config_t **sa_config)
482 {
483 iterator_t *iterator;
484 status_t status = NOT_FOUND;
485
486 iterator = this->configurations->create_iterator(this->configurations,TRUE);
487
488 while (iterator->has_next(iterator))
489 {
490 configuration_entry_t *entry;
491 iterator->current(iterator,(void **) &entry);
492
493 if (strcmp(entry->name,name) == 0)
494 {
495 /* found configuration */
496 *sa_config = entry->sa_config;
497 status = SUCCESS;
498 break;
499 }
500 }
501
502 iterator->destroy(iterator);
503
504 return status;
505 }
506
507 /**
508 * Implementation of configuration_manager_t.get_sa_config_for_init_config_and_id.
509 */
510 static status_t get_sa_config_for_init_config_and_id (private_configuration_manager_t *this, init_config_t *init_config, identification_t *other_id, identification_t *my_id,sa_config_t **sa_config)
511 {
512 iterator_t *iterator;
513 status_t status = NOT_FOUND;
514
515 iterator = this->configurations->create_iterator(this->configurations,TRUE);
516
517 while (iterator->has_next(iterator))
518 {
519 configuration_entry_t *entry;
520 iterator->current(iterator,(void **) &entry);
521
522 if (entry->init_config == init_config)
523 {
524 identification_t *config_my_id = entry->sa_config->get_my_id(entry->sa_config);
525 identification_t *config_other_id = entry->sa_config->get_other_id(entry->sa_config);
526
527 /* host informations seem to be the same */
528 if (config_other_id->equals(config_other_id,other_id))
529 {
530 /* other ids seems to match */
531
532 if (my_id == NULL)
533 {
534 /* first matching one is selected */
535
536 /* TODO priorize found entries */
537 *sa_config = entry->sa_config;
538 status = SUCCESS;
539 break;
540 }
541
542 if (config_my_id->equals(config_my_id,my_id))
543 {
544 *sa_config = entry->sa_config;
545 status = SUCCESS;
546 break;
547 }
548
549 }
550 }
551 }
552
553 iterator->destroy(iterator);
554
555 return status;
556 }
557
558 /**
559 * Implementation of private_configuration_manager_t.add_new_configuration.
560 */
561 static void add_new_configuration (private_configuration_manager_t *this, char *name, init_config_t *init_config, sa_config_t *sa_config)
562 {
563 iterator_t *iterator;
564 bool found;
565
566 iterator = this->init_configs->create_iterator(this->init_configs,TRUE);
567 found = FALSE;
568 while (iterator->has_next(iterator))
569 {
570 init_config_t *found_init_config;
571 iterator->current(iterator,(void **) &found_init_config);
572 if (init_config == found_init_config)
573 {
574 found = TRUE;
575 break;
576 }
577 }
578 iterator->destroy(iterator);
579 if (!found)
580 {
581 this->init_configs->insert_first(this->init_configs,init_config);
582 }
583
584 iterator = this->sa_configs->create_iterator(this->sa_configs,TRUE);
585 found = FALSE;
586 while (iterator->has_next(iterator))
587 {
588 sa_config_t *found_sa_config;
589 iterator->current(iterator,(void **) &found_sa_config);
590 if (sa_config == found_sa_config)
591 {
592 found = TRUE;
593 break;
594 }
595 }
596 iterator->destroy(iterator);
597 if (!found)
598 {
599 this->sa_configs->insert_first(this->sa_configs,sa_config);
600 }
601
602 this->configurations->insert_last(this->configurations,configuration_entry_create(name,init_config,sa_config));
603 }
604
605 /**
606 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
607 */
608 static void add_new_preshared_secret (private_configuration_manager_t *this,id_type_t type, char *id_string, char *preshared_secret)
609 {
610 preshared_secret_entry_t *entry = allocator_alloc_thing(preshared_secret_entry_t);
611
612 entry->identification = identification_create_from_string(type,id_string);
613 entry->preshared_secret.len = strlen(preshared_secret) + 1;
614 entry->preshared_secret.ptr = allocator_alloc(entry->preshared_secret.len);
615 memcpy(entry->preshared_secret.ptr,preshared_secret,entry->preshared_secret.len);
616
617 this->preshared_secrets->insert_last(this->preshared_secrets,entry);
618 }
619
620 /**
621 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
622 */
623 static void add_new_rsa_public_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
624 {
625 chunk_t key;
626 key.ptr = key_pos;
627 key.len = key_len;
628
629 rsa_public_key_entry_t *entry = allocator_alloc_thing(rsa_public_key_entry_t);
630
631 entry->identification = identification_create_from_string(type,id_string);
632 entry->public_key = rsa_public_key_create();
633 entry->public_key->set_key(entry->public_key, key);
634
635 this->rsa_public_keys->insert_last(this->rsa_public_keys, entry);
636 }
637
638 /**
639 * Implementation of private_configuration_manager_t.add_new_preshared_secret.
640 */
641 static void add_new_rsa_private_key (private_configuration_manager_t *this, id_type_t type, char *id_string, u_int8_t* key_pos, size_t key_len)
642 {
643 chunk_t key;
644 key.ptr = key_pos;
645 key.len = key_len;
646
647 rsa_private_key_entry_t *entry = allocator_alloc_thing(rsa_private_key_entry_t);
648
649 entry->identification = identification_create_from_string(type,id_string);
650 entry->private_key = rsa_private_key_create();
651 entry->private_key->set_key(entry->private_key, key);
652
653 this->rsa_private_keys->insert_last(this->rsa_private_keys, entry);
654 }
655
656 /**
657 * Implementation of configuration_manager_t.get_shared_secret.
658 */
659 static status_t get_shared_secret(private_configuration_manager_t *this, identification_t *identification, chunk_t *preshared_secret)
660 {
661 iterator_t *iterator;
662
663 iterator = this->preshared_secrets->create_iterator(this->preshared_secrets,TRUE);
664 while (iterator->has_next(iterator))
665 {
666 preshared_secret_entry_t *entry;
667 iterator->current(iterator,(void **) &entry);
668 if (entry->identification->equals(entry->identification,identification))
669 {
670 *preshared_secret = entry->preshared_secret;
671 iterator->destroy(iterator);
672 return SUCCESS;
673 }
674 }
675 iterator->destroy(iterator);
676 return NOT_FOUND;
677 }
678
679 /**
680 * Implementation of configuration_manager_t.get_shared_secret.
681 */
682 static status_t get_rsa_public_key(private_configuration_manager_t *this, identification_t *identification, rsa_public_key_t **public_key)
683 {
684 iterator_t *iterator;
685
686 iterator = this->rsa_public_keys->create_iterator(this->rsa_public_keys,TRUE);
687 while (iterator->has_next(iterator))
688 {
689 rsa_public_key_entry_t *entry;
690 iterator->current(iterator,(void **) &entry);
691 if (entry->identification->equals(entry->identification,identification))
692 {
693 *public_key = entry->public_key;
694 iterator->destroy(iterator);
695 return SUCCESS;
696 }
697 }
698 iterator->destroy(iterator);
699 return NOT_FOUND;
700 }
701
702 /**
703 * Implementation of configuration_manager_t.get_shared_secret.
704 */
705 static status_t get_rsa_private_key(private_configuration_manager_t *this, identification_t *identification, rsa_private_key_t **private_key)
706 {
707 iterator_t *iterator;
708
709 iterator = this->rsa_private_keys->create_iterator(this->rsa_private_keys,TRUE);
710 while (iterator->has_next(iterator))
711 {
712 rsa_private_key_entry_t *entry;
713 iterator->current(iterator,(void **) &entry);
714 if (entry->identification->equals(entry->identification,identification))
715 {
716 *private_key = entry->private_key;
717 iterator->destroy(iterator);
718 return SUCCESS;
719 }
720 }
721 iterator->destroy(iterator);
722 return NOT_FOUND;
723 }
724
725 /**
726 * Implementation of configuration_manager_t.get_retransmit_timeout.
727 */
728 static status_t get_retransmit_timeout (private_configuration_manager_t *this, u_int32_t retransmit_count, u_int32_t *timeout)
729 {
730 int new_timeout = this->first_retransmit_timeout, i;
731 if ((retransmit_count > this->max_retransmit_count) && (this->max_retransmit_count != 0))
732 {
733 return FAILED;
734 }
735
736
737 for (i = 0; i < retransmit_count; i++)
738 {
739 new_timeout *= 2;
740 }
741
742 *timeout = new_timeout;
743
744 return SUCCESS;
745 }
746
747 /**
748 * Implementation of configuration_manager_t.get_half_open_ike_sa_timeout.
749 */
750 static u_int32_t get_half_open_ike_sa_timeout (private_configuration_manager_t *this)
751 {
752 return this->half_open_ike_sa_timeout;
753 }
754
755 /**
756 * Implementation of configuration_manager_t.destroy.
757 */
758 static void destroy(private_configuration_manager_t *this)
759 {
760 this->logger->log(this->logger,CONTROL | LEVEL1, "Going to destroy configuration manager ");
761
762 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy configuration entries");
763 while (this->configurations->get_count(this->configurations) > 0)
764 {
765 configuration_entry_t *entry;
766 this->configurations->remove_first(this->configurations,(void **) &entry);
767 entry->destroy(entry);
768 }
769 this->configurations->destroy(this->configurations);
770
771 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy sa_config_t objects");
772 while (this->sa_configs->get_count(this->sa_configs) > 0)
773 {
774 sa_config_t *sa_config;
775 this->sa_configs->remove_first(this->sa_configs,(void **) &sa_config);
776 sa_config->destroy(sa_config);
777 }
778
779 this->sa_configs->destroy(this->sa_configs);
780
781 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy init_config_t objects");
782 while (this->init_configs->get_count(this->init_configs) > 0)
783 {
784 init_config_t *init_config;
785 this->init_configs->remove_first(this->init_configs,(void **) &init_config);
786 init_config->destroy(init_config);
787 }
788 this->init_configs->destroy(this->init_configs);
789
790 while (this->preshared_secrets->get_count(this->preshared_secrets) > 0)
791 {
792 preshared_secret_entry_t *entry;
793 this->preshared_secrets->remove_first(this->preshared_secrets,(void **) &entry);
794 entry->identification->destroy(entry->identification);
795 allocator_free_chunk(&(entry->preshared_secret));
796 allocator_free(entry);
797 }
798 this->preshared_secrets->destroy(this->preshared_secrets);
799
800 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa private keys");
801 while (this->rsa_private_keys->get_count(this->rsa_private_keys) > 0)
802 {
803 rsa_private_key_entry_t *entry;
804 this->rsa_private_keys->remove_first(this->rsa_private_keys,(void **) &entry);
805 entry->identification->destroy(entry->identification);
806 entry->private_key->destroy(entry->private_key);
807 allocator_free(entry);
808 }
809 this->rsa_private_keys->destroy(this->rsa_private_keys);
810
811 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy rsa public keys");
812 while (this->rsa_public_keys->get_count(this->rsa_public_keys) > 0)
813 {
814 rsa_public_key_entry_t *entry;
815 this->rsa_public_keys->remove_first(this->rsa_public_keys,(void **) &entry);
816 entry->identification->destroy(entry->identification);
817 entry->public_key->destroy(entry->public_key);
818 allocator_free(entry);
819 }
820 this->rsa_public_keys->destroy(this->rsa_public_keys);
821
822 this->logger->log(this->logger,CONTROL | LEVEL2, "Destroy assigned logger");
823 charon->logger_manager->destroy_logger(charon->logger_manager,this->logger);
824 allocator_free(this);
825 }
826
827 /*
828 * Described in header-file
829 */
830 configuration_manager_t *configuration_manager_create(u_int32_t first_retransmit_timeout,u_int32_t max_retransmit_count, u_int32_t half_open_ike_sa_timeout)
831 {
832 private_configuration_manager_t *this = allocator_alloc_thing(private_configuration_manager_t);
833
834 /* public functions */
835 this->public.destroy = (void(*)(configuration_manager_t*))destroy;
836 this->public.get_init_config_for_name = (status_t (*) (configuration_manager_t *, char *, init_config_t **)) get_init_config_for_name;
837 this->public.get_init_config_for_host = (status_t (*) (configuration_manager_t *, host_t *, host_t *,init_config_t **)) get_init_config_for_host;
838 this->public.get_sa_config_for_name =(status_t (*) (configuration_manager_t *, char *, sa_config_t **)) get_sa_config_for_name;
839 this->public.get_sa_config_for_init_config_and_id =(status_t (*) (configuration_manager_t *, init_config_t *, identification_t *, identification_t *,sa_config_t **)) get_sa_config_for_init_config_and_id;
840 this->public.get_retransmit_timeout = (status_t (*) (configuration_manager_t *, u_int32_t retransmit_count, u_int32_t *timeout))get_retransmit_timeout;
841 this->public.get_half_open_ike_sa_timeout = (u_int32_t (*) (configuration_manager_t *)) get_half_open_ike_sa_timeout;
842 this->public.get_shared_secret = (status_t (*) (configuration_manager_t *, identification_t *, chunk_t *))get_shared_secret;
843 this->public.get_rsa_private_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_private_key_t**))get_rsa_private_key;
844 this->public.get_rsa_public_key = (status_t (*) (configuration_manager_t *, identification_t *, rsa_public_key_t**))get_rsa_public_key;
845
846 /* private functions */
847 this->load_default_config = load_default_config;
848 this->add_new_configuration = add_new_configuration;
849 this->add_new_preshared_secret = add_new_preshared_secret;
850 this->add_new_rsa_public_key = add_new_rsa_public_key;
851 this->add_new_rsa_private_key = add_new_rsa_private_key;
852
853 /* private variables */
854 this->logger = charon->logger_manager->create_logger(charon->logger_manager,CONFIGURATION_MANAGER,NULL);
855 this->configurations = linked_list_create();
856 this->sa_configs = linked_list_create();
857 this->init_configs = linked_list_create();
858 this->preshared_secrets = linked_list_create();
859 this->rsa_private_keys = linked_list_create();
860 this->rsa_public_keys = linked_list_create();
861 this->max_retransmit_count = max_retransmit_count;
862 this->first_retransmit_timeout = first_retransmit_timeout;
863 this->half_open_ike_sa_timeout = half_open_ike_sa_timeout;
864
865 this->load_default_config(this);
866
867 return (&this->public);
868 }
869
870
871 u_int8_t public_key_1[] = {
872 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
873 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
874 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
875 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
876 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
877 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
878 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
879 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
880 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
881 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
882 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
883 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
884 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
885 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
886 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
887 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
888 };
889
890 u_int8_t private_key_1[] = {
891 0xD4,0x8D,0x40,0x8E,0xBD,0xFC,0x6D,0xE9,0xDB,0x1C,0xD2,0x21,0x19,0x37,0x6B,0xE2,
892 0xDC,0xCE,0x74,0xA2,0x63,0xF6,0xD8,0x8D,0xAF,0x1C,0xC0,0xFF,0x07,0x3F,0xFB,0x52,
893 0x59,0x45,0x01,0x10,0x35,0xA9,0xB8,0x16,0x69,0x31,0x19,0x4F,0xDD,0x66,0xAD,0xAC,
894 0x80,0x11,0x33,0x38,0x5A,0x11,0xF9,0x33,0x3F,0xD2,0x41,0x4A,0x21,0x9B,0x54,0x44,
895 0x00,0xB6,0x07,0x33,0x4A,0x5B,0x4E,0x09,0x7C,0x9D,0xB8,0xDE,0x6B,0xA2,0xB2,0x78,
896 0x23,0x3D,0xF0,0xB7,0x37,0x2B,0x7A,0x71,0x50,0x6E,0xEA,0x93,0x3E,0xB5,0x2C,0xBD,
897 0xD6,0x08,0x43,0x12,0x0A,0xE8,0x8D,0xE6,0x6C,0x24,0xCC,0x3F,0xF7,0x18,0x7E,0x87,
898 0x59,0x0C,0xA9,0x5D,0x85,0xF8,0x6E,0x83,0xD8,0x18,0x77,0x07,0xB6,0x44,0x3C,0x8D,
899 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
900 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
901 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
902 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
903 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
904 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
905 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
906 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
907 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
908 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
909 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
910 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
911 0xEE,0xF2,0x37,0xF2,0x98,0xEB,0x33,0xC6,0x84,0xE8,0xB9,0xD1,0x18,0xB5,0x29,0x00,
912 0xAC,0x6B,0x78,0xBC,0x9E,0xB6,0x01,0x21,0x29,0xEE,0x4A,0x99,0xFB,0x3D,0x07,0x23,
913 0x77,0x84,0x93,0x4B,0x53,0x49,0xB0,0xA4,0x6F,0xB0,0xF5,0x50,0xDB,0x35,0xDD,0xDF,
914 0x41,0x6F,0x7B,0xA9,0x88,0x3D,0x0B,0x1C,0x2E,0x2B,0x44,0x35,0x24,0x72,0x66,0xC1,
915 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
916 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
917 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
918 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
919 0xE3,0xB8,0xC8,0x30,0x67,0xD0,0x5D,0xF1,0x32,0x64,0xDC,0x4B,0xB3,0x7E,0xE3,0x1A,
920 0xC5,0xBC,0xAC,0xC9,0x95,0x5C,0x96,0x0D,0x5A,0x52,0x90,0xE0,0x08,0x3F,0xA6,0x71,
921 0xC7,0x18,0xC5,0x64,0xA2,0xE4,0xB8,0x43,0x5A,0x8A,0x7A,0x9B,0xDF,0xDA,0x81,0x85,
922 0x6C,0x0F,0xA4,0xC9,0xAC,0x25,0x19,0x54,0xFE,0x75,0xAA,0x1D,0x22,0xB8,0xF4,0xCD,
923 0x1A,0x91,0xC2,0xA3,0x65,0x3F,0xD7,0xFC,0x7E,0xE1,0x92,0x29,0xC5,0x85,0x6E,0x44,
924 0xC8,0x4D,0xBD,0x7A,0x2C,0x2D,0x47,0xE2,0x24,0x24,0xDF,0xC2,0x31,0x65,0x8F,0xD4,
925 0xBA,0x28,0x7C,0x4A,0xCA,0xAE,0x79,0xBE,0xC1,0x6C,0xFC,0x09,0x45,0xF7,0x87,0x17,
926 0xB4,0x55,0x92,0x15,0xC5,0xFA,0x8F,0xB0,0x56,0x96,0xC1,0x87,0x12,0xFE,0xDF,0xF0,
927 0x3A,0xE1,0xB1,0x83,0x19,0x74,0xF0,0x7D,0x37,0x41,0x3E,0x6A,0xFE,0x33,0x3E,0x74,
928 0x01,0x45,0xE4,0x65,0xAE,0xC9,0xAE,0x64,0xE3,0xF1,0x90,0xFD,0x1A,0x30,0x44,0x82,
929 0xEE,0x34,0x94,0xF2,0x68,0x3D,0x61,0x90,0xFB,0xEB,0xD8,0x18,0xE6,0x7C,0xEC,0x69,
930 0x70,0xD0,0xEB,0x2F,0xC1,0x3D,0x9C,0x6A,0x4B,0x89,0x50,0x6B,0x3F,0xA5,0x38,0x41,
931 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
932 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
933 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
934 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
935 0x65,0xEE,0x34,0x09,0xAC,0x4C,0x21,0x71,0x1D,0x3F,0x7E,0x0D,0x01,0xC2,0x3E,0x34,
936 0x88,0x58,0xEC,0x4F,0x62,0x50,0xF7,0xD8,0x62,0xDF,0xC1,0x39,0x40,0xA0,0xBF,0x0B,
937 0xD5,0x2F,0x5B,0xFA,0x35,0x14,0x69,0x63,0x2C,0x36,0x4B,0xDF,0xEB,0x33,0x66,0x6B,
938 0x97,0xA9,0x6C,0x12,0x5D,0x08,0xD5,0x55,0x77,0x28,0x83,0xD7,0x3B,0xAE,0x05,0xC1,
939 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
940 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
941 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
942 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
943 0x9F,0x96,0x17,0x75,0x14,0xCB,0xC9,0x8A,0x06,0xAE,0xF8,0x53,0x74,0xEF,0x2F,0x68,
944 0xCB,0xBA,0x75,0xBC,0xAF,0x97,0xBA,0xF0,0x90,0xA3,0xDC,0x33,0xA4,0x94,0x36,0xA8,
945 0xF5,0xC6,0x3E,0x4F,0x50,0x78,0xC9,0x49,0x2A,0x62,0x71,0x9A,0x5B,0x3E,0x5E,0x16,
946 0x8A,0xAC,0x4B,0xE7,0xA9,0x64,0x36,0x64,0x82,0x0F,0x23,0xB0,0x57,0x6D,0x16,0xE1,
947 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
948 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
949 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
950 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
951 0x25,0xF1,0x40,0x05,0x58,0x19,0x37,0x61,0x34,0x98,0xBB,0x29,0x1B,0x44,0x08,0x1A,
952 0xD3,0x66,0x62,0x4C,0x9C,0x47,0xD2,0x91,0x60,0x46,0x6F,0x8E,0xA6,0xE7,0x80,0x7B,
953 0x17,0x77,0x9A,0xB5,0x18,0x8A,0x15,0x8F,0x77,0xA1,0x55,0x3E,0x96,0x66,0x86,0x57,
954 0x75,0x73,0xF5,0x57,0x50,0x28,0xEA,0x83,0x14,0xB1,0x55,0xA3,0x82,0xCD,0x36,0xF8
955 };
956 u_int8_t public_key_2[] = {
957 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
958 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
959 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
960 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
961 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
962 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
963 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
964 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
965 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
966 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
967 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
968 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
969 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
970 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
971 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
972 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01
973 };
974 u_int8_t private_key_2[] = {
975 0x88,0x3E,0xE2,0x2E,0x5D,0x01,0x13,0xDF,0x1D,0x8B,0xF4,0x39,0xCA,0xE6,0x3C,0xE1,
976 0x46,0x8E,0xD4,0xF1,0x06,0x56,0x12,0x8D,0xCD,0x51,0xBD,0x32,0xF5,0x18,0x15,0x4D,
977 0x0F,0x98,0xDF,0xFF,0xA5,0xA3,0xAB,0x39,0x43,0xC4,0xF6,0xAC,0x98,0x5C,0x84,0x63,
978 0x8C,0x46,0x33,0xA2,0x23,0x8C,0xF0,0x4D,0xFE,0xE7,0xF3,0x38,0xC4,0x19,0x39,0xC4,
979 0x90,0xF4,0xC8,0x0D,0xB0,0xFE,0x65,0x11,0x0B,0x41,0x73,0xBB,0x05,0xA6,0x4B,0xC5,
980 0x27,0xA4,0x48,0x21,0xC5,0xAE,0x91,0x9C,0xD8,0x62,0x27,0xBE,0xDF,0xDA,0xC6,0x4E,
981 0xC1,0x6E,0x5B,0x61,0x51,0xAA,0xC9,0x53,0xCD,0x02,0x5B,0xC5,0xEE,0xE9,0xC7,0x7B,
982 0xB1,0x7E,0xD2,0xC2,0xFE,0x5F,0xD7,0x0F,0x75,0x2B,0xB9,0x49,0x5F,0x35,0xF1,0x83,
983 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
984 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
985 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
986 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
987 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
988 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
989 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
990 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x01,0x00,0x01,
991 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
992 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
993 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
994 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
995 0xE8,0x37,0xB6,0x08,0xD8,0x9C,0x72,0xC5,0x34,0xDB,0x3A,0xA2,0xF9,0x24,0xE1,0x44,
996 0x23,0x3B,0x72,0x70,0x5D,0xCC,0xC3,0xBA,0x3D,0xCE,0x82,0xAC,0x6A,0x71,0x72,0x90,
997 0xC7,0x94,0xB3,0x8B,0x85,0xE0,0xEF,0x39,0xF0,0xE4,0x08,0x31,0xEA,0xE6,0x3B,0x7D,
998 0xB0,0x36,0xFA,0x71,0x6E,0xA3,0xF9,0x4C,0x39,0x05,0x8C,0xB7,0x8C,0x99,0x94,0x85,
999 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1000 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1001 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1002 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1003 0x96,0x32,0xF9,0xD9,0xA8,0xC0,0x84,0xFD,0xE5,0x6B,0xA6,0xC2,0x85,0x85,0x68,0x17,
1004 0x7E,0x98,0xD0,0x6A,0xDC,0xD8,0x4C,0x46,0xCB,0x6D,0x4C,0x25,0xE5,0xF9,0x58,0xB2,
1005 0x17,0xE4,0x20,0x8A,0x87,0x0D,0xD7,0x4C,0x79,0xA3,0xB3,0x69,0x98,0x7F,0x5D,0x08,
1006 0x33,0x5B,0xAD,0xA3,0x34,0xE8,0x55,0x5E,0x09,0x60,0x70,0xA8,0x11,0xFD,0x70,0x67,
1007 0x00,0xE1,0xA7,0x44,0xF5,0x85,0x14,0x43,0xD5,0x45,0x1A,0x87,0x65,0x30,0xA8,0x24,
1008 0x2C,0xF8,0xAF,0x97,0xFF,0x9A,0x7E,0xF4,0x3B,0xE7,0xD3,0x79,0x88,0xEC,0x66,0xF6,
1009 0xE0,0xAA,0xF4,0x88,0x0A,0xE2,0x4C,0x31,0x4A,0xA6,0xF3,0x91,0x9A,0x4A,0xBE,0xF0,
1010 0x85,0xEF,0xCE,0x55,0xB6,0x35,0x2B,0x38,0xD5,0xF5,0x5A,0x35,0x7B,0xCF,0x4D,0xF8,
1011 0x5D,0x1E,0x57,0x99,0xAF,0xED,0x33,0x6F,0xD5,0xA7,0x49,0x5B,0x14,0x4C,0x7D,0x17,
1012 0x81,0xAE,0x1E,0xDA,0x9D,0xFB,0xA9,0xC3,0x00,0x4C,0x17,0x37,0x30,0x96,0x60,0xE1,
1013 0x6A,0xCC,0xD3,0xDB,0x40,0xCE,0x96,0x96,0x0D,0x95,0x0D,0x84,0x38,0xBD,0xDA,0x2F,
1014 0xEC,0xED,0x22,0x39,0x8E,0x8C,0xDF,0xCD,0x07,0xCF,0x0F,0xB0,0x2B,0x76,0xDB,0xC1,
1015 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1016 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1017 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1018 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1019 0xA5,0x37,0x9E,0x08,0x45,0x35,0x6A,0x62,0xEC,0xEC,0x5D,0x97,0xBE,0x73,0x82,0xE2,
1020 0x9B,0xBE,0x9B,0xF9,0x5E,0x83,0x65,0x6E,0x88,0xB2,0xF9,0x3D,0xFA,0xAD,0xA4,0xB9,
1021 0x65,0x86,0x63,0x08,0x0D,0xC4,0xAF,0xF0,0x25,0x77,0xD8,0x6C,0xCB,0x97,0xEB,0x13,
1022 0xCD,0xE0,0x0F,0xE7,0xCC,0xB4,0x55,0x96,0xE9,0xAB,0x0D,0x27,0x3A,0x9D,0xBA,0x91,
1023 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1024 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1025 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1026 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1027 0x44,0xA3,0x44,0xF4,0x47,0x9E,0xBA,0xE7,0xBF,0xF8,0xC2,0xFB,0x2F,0xC3,0x38,0x3F,
1028 0x4C,0x56,0x0F,0x20,0x56,0x8D,0xED,0xC5,0x88,0x5F,0x09,0x26,0x64,0x82,0xDF,0x1A,
1029 0x7B,0xBA,0x7F,0x78,0x6E,0xA1,0x4F,0x9B,0x1E,0x17,0x45,0xFC,0xE2,0x78,0x89,0x8E,
1030 0x1E,0xD2,0x2D,0x76,0x60,0xCE,0x2F,0x7C,0xCA,0xB2,0x2C,0xA9,0x51,0x97,0x4C,0xCF,
1031 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1032 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1033 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1034 0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00,
1035 0x01,0x40,0x4B,0x7D,0xAB,0x8A,0xB9,0x5E,0xEE,0xA1,0x81,0xED,0x27,0x89,0xF6,0x4C,
1036 0x59,0x8C,0x23,0x14,0x3B,0x1B,0xBA,0xC3,0xB2,0x00,0x9A,0x9E,0xDF,0x54,0x82,0xA7,
1037 0x3E,0xC9,0x23,0x85,0x4D,0xD3,0x80,0xA7,0x89,0x11,0xBA,0x76,0xF5,0xC1,0x55,0x37,
1038 0x0A,0x0D,0x8C,0x07,0x0A,0xC8,0xC5,0x11,0x74,0x9C,0xB6,0x80,0x3B,0x0A,0x9A,0xA2
1039 };