created libpts
[strongswan.git] / src / libpts / tcg / tcg_pts_attr_simple_evid_final.c
1 /*
2 * Copyright (C) 2011 Sansar Choinyambuu
3 * HSR Hochschule fuer Technik Rapperswil
4 *
5 * This program is free software; you can redistribute it and/or modify it
6 * under the terms of the GNU General Public License as published by the
7 * Free Software Foundation; either version 2 of the License, or (at your
8 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
9 *
10 * This program is distributed in the hope that it will be useful, but
11 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
12 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
13 * for more details.
14 */
15
16 #include "tcg_pts_attr_simple_evid_final.h"
17
18 #include <pa_tnc/pa_tnc_msg.h>
19 #include <bio/bio_writer.h>
20 #include <bio/bio_reader.h>
21 #include <debug.h>
22
23 typedef struct private_tcg_pts_attr_simple_evid_final_t private_tcg_pts_attr_simple_evid_final_t;
24
25 /**
26 * Simple Evidence Final
27 * see section 3.15.2 of PTS Protocol: Binding to TNC IF-M Specification
28 *
29 * 1 2 3
30 * 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1
31 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
32 * | Flags | Reserved | Optional Composite Hash Alg |
33 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
34 * | Optional TPM PCR Composite Length |
35 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
36 * ~ Optional TPM PCR Composite (Variable Length) ~
37 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
38 * | Optional TPM Quote Signature Length |
39 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
40 * ~ Optional TPM Quote Signature (Variable Length) ~
41 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
42 * ~ Optional Evidence Signature (Variable Length) ~
43 * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
44 */
45
46 #define PTS_SIMPLE_EVID_FINAL_SIZE 4
47 #define PTS_SIMPLE_EVID_FINAL_RESERVED 0x00
48
49 /**
50 * Private data of an tcg_pts_attr_simple_evid_final_t object.
51 */
52 struct private_tcg_pts_attr_simple_evid_final_t {
53
54 /**
55 * Public members of tcg_pts_attr_simple_evid_final_t
56 */
57 tcg_pts_attr_simple_evid_final_t public;
58
59 /**
60 * Attribute vendor ID
61 */
62 pen_t vendor_id;
63
64 /**
65 * Attribute type
66 */
67 u_int32_t type;
68
69 /**
70 * Attribute value
71 */
72 chunk_t value;
73
74 /**
75 * Noskip flag
76 */
77 bool noskip_flag;
78
79 /**
80 * Set of flags for Simple Evidence Final
81 */
82 pts_simple_evid_final_flag_t flags;
83
84 /**
85 * Optional Composite Hash Algorithm
86 */
87 pts_meas_algorithms_t comp_hash_algorithm;
88
89 /**
90 * Optional TPM PCR Composite
91 */
92 chunk_t pcr_comp;
93
94 /**
95 * Optional TPM Quote Signature
96 */
97 chunk_t tpm_quote_sign;
98
99 /**
100 * Optional Evidence Signature
101 */
102 chunk_t evid_sign;
103
104 };
105
106 METHOD(pa_tnc_attr_t, get_vendor_id, pen_t,
107 private_tcg_pts_attr_simple_evid_final_t *this)
108 {
109 return this->vendor_id;
110 }
111
112 METHOD(pa_tnc_attr_t, get_type, u_int32_t,
113 private_tcg_pts_attr_simple_evid_final_t *this)
114 {
115 return this->type;
116 }
117
118 METHOD(pa_tnc_attr_t, get_value, chunk_t,
119 private_tcg_pts_attr_simple_evid_final_t *this)
120 {
121 return this->value;
122 }
123
124 METHOD(pa_tnc_attr_t, get_noskip_flag, bool,
125 private_tcg_pts_attr_simple_evid_final_t *this)
126 {
127 return this->noskip_flag;
128 }
129
130 METHOD(pa_tnc_attr_t, set_noskip_flag,void,
131 private_tcg_pts_attr_simple_evid_final_t *this, bool noskip)
132 {
133 this->noskip_flag = noskip;
134 }
135
136 METHOD(pa_tnc_attr_t, build, void,
137 private_tcg_pts_attr_simple_evid_final_t *this)
138 {
139 bio_writer_t *writer;
140 u_int8_t flags = 0;
141
142 writer = bio_writer_create(PTS_SIMPLE_EVID_FINAL_SIZE);
143
144 /* Determine the flags to set*/
145 if (this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO)
146 {
147 flags += 64;
148 }
149 else if (this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO2)
150 {
151 flags += 128;
152 }
153 else if (this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO2_CAP_VER)
154 {
155 flags += 192;
156 }
157 if (this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_EVID)
158 {
159 flags += 32;
160 }
161 writer->write_uint8 (writer, flags);
162 writer->write_uint8 (writer, PTS_SIMPLE_EVID_FINAL_RESERVED);
163 writer->write_uint16(writer, this->comp_hash_algorithm);
164
165 /* Optional fields */
166 if (this->pcr_comp.ptr && this->pcr_comp.len > 0)
167 {
168 writer->write_uint32 (writer, this->pcr_comp.len);
169 writer->write_data (writer, this->pcr_comp);
170 }
171 if (this->tpm_quote_sign.ptr && this->tpm_quote_sign.len > 0)
172 {
173 writer->write_uint32 (writer, this->tpm_quote_sign.len);
174 writer->write_data (writer, this->tpm_quote_sign);
175 }
176 if (this->evid_sign.ptr && this->evid_sign.len > 0)
177 {
178 writer->write_data (writer, this->evid_sign);
179 }
180
181 this->value = chunk_clone(writer->get_buf(writer));
182 writer->destroy(writer);
183 }
184
185 METHOD(pa_tnc_attr_t, process, status_t,
186 private_tcg_pts_attr_simple_evid_final_t *this, u_int32_t *offset)
187 {
188 bio_reader_t *reader;
189 u_int8_t flags;
190 u_int8_t reserved;
191 u_int16_t algorithm;
192
193 if (this->value.len < PTS_SIMPLE_EVID_FINAL_SIZE)
194 {
195 DBG1(DBG_TNC, "insufficient data for Simple Evidence Final");
196 *offset = 0;
197 return FAILED;
198 }
199 reader = bio_reader_create(this->value);
200
201 reader->read_uint8(reader, &flags);
202
203 /* Determine the flags to set*/
204 if (!((flags >> 7) & 1) && !((flags >> 6) & 1))
205 {
206 this->flags |= PTS_SIMPLE_EVID_FINAL_FLAG_NO;
207 }
208 else if (!((flags >> 7) & 1) && ((flags >> 6) & 1))
209 {
210 this->flags |= PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO;
211 }
212 else if (((flags >> 7) & 1) && !((flags >> 6) & 1))
213 {
214 this->flags |= PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO2;
215 }
216 else if (((flags >> 7) & 1) && ((flags >> 6) & 1))
217 {
218 this->flags |= PTS_SIMPLE_EVID_FINAL_FLAG_TPM_QUOTE_INFO2_CAP_VER;
219 }
220 if ((flags >> 5) & 1)
221 {
222 this->flags |= PTS_SIMPLE_EVID_FINAL_FLAG_EVID;
223 }
224
225 reader->read_uint8(reader, &reserved);
226 reader->read_uint16(reader, &algorithm);
227 this->comp_hash_algorithm = algorithm;
228
229 /* Optional TPM PCR Composite field is included */
230 if (!(this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_NO))
231 {
232 u_int32_t pcr_comp_len;
233 u_int32_t tpm_quote_sign_len;
234 reader->read_uint32(reader, &pcr_comp_len);
235 reader->read_data(reader, pcr_comp_len, &this->pcr_comp);
236 this->pcr_comp = chunk_clone(this->pcr_comp);
237 reader->read_uint32(reader, &tpm_quote_sign_len);
238 reader->read_data(reader, tpm_quote_sign_len, &this->tpm_quote_sign);
239 this->tpm_quote_sign = chunk_clone(this->tpm_quote_sign);
240 }
241
242 /* Optional Evidence Signature field is included */
243 if (this->flags & PTS_SIMPLE_EVID_FINAL_FLAG_EVID)
244 {
245 u_int32_t evid_sign_len = reader->remaining(reader);
246 reader->read_data(reader, evid_sign_len, &this->evid_sign);
247 this->evid_sign = chunk_clone(this->evid_sign);
248 }
249
250 reader->destroy(reader);
251 return SUCCESS;
252 }
253
254 METHOD(pa_tnc_attr_t, destroy, void,
255 private_tcg_pts_attr_simple_evid_final_t *this)
256 {
257 free(this->value.ptr);
258 free(this->pcr_comp.ptr);
259 free(this->tpm_quote_sign.ptr);
260 free(this->evid_sign.ptr);
261 free(this);
262 }
263
264 METHOD(tcg_pts_attr_simple_evid_final_t, get_flags, pts_simple_evid_final_flag_t,
265 private_tcg_pts_attr_simple_evid_final_t *this)
266 {
267 return this->flags;
268 }
269
270 METHOD(tcg_pts_attr_simple_evid_final_t, set_flags, void,
271 private_tcg_pts_attr_simple_evid_final_t *this, pts_simple_evid_final_flag_t flags)
272 {
273 this->flags = flags;
274 }
275
276 METHOD(tcg_pts_attr_simple_evid_final_t, get_comp_hash_algorithm, pts_meas_algorithms_t,
277 private_tcg_pts_attr_simple_evid_final_t *this)
278 {
279 return this->comp_hash_algorithm;
280 }
281
282 METHOD(tcg_pts_attr_simple_evid_final_t, set_comp_hash_algorithm, void,
283 private_tcg_pts_attr_simple_evid_final_t *this, pts_meas_algorithms_t comp_hash_algorithm)
284 {
285 this->comp_hash_algorithm = comp_hash_algorithm;
286 }
287
288 METHOD(tcg_pts_attr_simple_evid_final_t, get_comp_pcr_len, u_int32_t,
289 private_tcg_pts_attr_simple_evid_final_t *this)
290 {
291 if (this->pcr_comp.ptr && this->pcr_comp.len > 0)
292 {
293 return this->pcr_comp.len;
294 }
295 return 0;
296 }
297
298 METHOD(tcg_pts_attr_simple_evid_final_t, get_pcr_comp, chunk_t,
299 private_tcg_pts_attr_simple_evid_final_t *this)
300 {
301 return this->pcr_comp;
302 }
303
304 METHOD(tcg_pts_attr_simple_evid_final_t, set_pcr_comp, void,
305 private_tcg_pts_attr_simple_evid_final_t *this, chunk_t pcr_comp)
306 {
307 this->pcr_comp = pcr_comp;
308 }
309
310 METHOD(tcg_pts_attr_simple_evid_final_t, get_tpm_quote_sign_len, u_int32_t,
311 private_tcg_pts_attr_simple_evid_final_t *this)
312 {
313 if (this->tpm_quote_sign.ptr && this->tpm_quote_sign.len > 0)
314 {
315 return this->tpm_quote_sign.len;
316 }
317 return 0;
318 }
319
320 METHOD(tcg_pts_attr_simple_evid_final_t, get_tpm_quote_sign, chunk_t,
321 private_tcg_pts_attr_simple_evid_final_t *this)
322 {
323 return this->tpm_quote_sign;
324 }
325
326 METHOD(tcg_pts_attr_simple_evid_final_t, set_tpm_quote_sign, void,
327 private_tcg_pts_attr_simple_evid_final_t *this, chunk_t tpm_quote_sign)
328 {
329 this->tpm_quote_sign = tpm_quote_sign;
330 }
331
332 METHOD(tcg_pts_attr_simple_evid_final_t, get_evid_sign, chunk_t,
333 private_tcg_pts_attr_simple_evid_final_t *this)
334 {
335 return this->evid_sign;
336 }
337
338 METHOD(tcg_pts_attr_simple_evid_final_t, set_evid_sign, void,
339 private_tcg_pts_attr_simple_evid_final_t *this, chunk_t evid_sign)
340 {
341 this->evid_sign = evid_sign;
342 }
343
344 /**
345 * Described in header.
346 */
347 pa_tnc_attr_t *tcg_pts_attr_simple_evid_final_create(
348 pts_simple_evid_final_flag_t flags,
349 pts_meas_algorithms_t comp_hash_algorithm,
350 chunk_t pcr_comp,
351 chunk_t tpm_quote_sign,
352 chunk_t evid_sign)
353 {
354 private_tcg_pts_attr_simple_evid_final_t *this;
355
356 INIT(this,
357 .public = {
358 .pa_tnc_attribute = {
359 .get_vendor_id = _get_vendor_id,
360 .get_type = _get_type,
361 .get_value = _get_value,
362 .get_noskip_flag = _get_noskip_flag,
363 .set_noskip_flag = _set_noskip_flag,
364 .build = _build,
365 .process = _process,
366 .destroy = _destroy,
367 },
368 .get_flags= _get_flags,
369 .set_flags= _set_flags,
370 .get_comp_hash_algorithm = _get_comp_hash_algorithm,
371 .set_comp_hash_algorithm = _set_comp_hash_algorithm,
372 .get_comp_pcr_len = _get_comp_pcr_len,
373 .get_pcr_comp = _get_pcr_comp,
374 .set_pcr_comp = _set_pcr_comp,
375 .get_tpm_quote_sign_len = _get_tpm_quote_sign_len,
376 .get_tpm_quote_sign = _get_tpm_quote_sign,
377 .set_tpm_quote_sign = _set_tpm_quote_sign,
378 .get_evid_sign = _get_evid_sign,
379 .set_evid_sign = _set_evid_sign,
380 },
381 .vendor_id = PEN_TCG,
382 .type = TCG_PTS_SIMPLE_EVID_FINAL,
383 .flags = flags,
384 .comp_hash_algorithm = comp_hash_algorithm,
385 .pcr_comp = pcr_comp,
386 .tpm_quote_sign = tpm_quote_sign,
387 .evid_sign = evid_sign,
388 );
389
390 return &this->public.pa_tnc_attribute;
391 }
392
393
394 /**
395 * Described in header.
396 */
397 pa_tnc_attr_t *tcg_pts_attr_simple_evid_final_create_from_data(chunk_t data)
398 {
399 private_tcg_pts_attr_simple_evid_final_t *this;
400
401 INIT(this,
402 .public = {
403 .pa_tnc_attribute = {
404 .get_vendor_id = _get_vendor_id,
405 .get_type = _get_type,
406 .get_value = _get_value,
407 .get_noskip_flag = _get_noskip_flag,
408 .set_noskip_flag = _set_noskip_flag,
409 .build = _build,
410 .process = _process,
411 .destroy = _destroy,
412 },
413 .get_flags= _get_flags,
414 .set_flags= _set_flags,
415 .get_comp_hash_algorithm = _get_comp_hash_algorithm,
416 .set_comp_hash_algorithm = _set_comp_hash_algorithm,
417 .get_comp_pcr_len = _get_comp_pcr_len,
418 .get_pcr_comp = _get_pcr_comp,
419 .set_pcr_comp = _set_pcr_comp,
420 .get_tpm_quote_sign_len = _get_tpm_quote_sign_len,
421 .get_tpm_quote_sign = _get_tpm_quote_sign,
422 .set_tpm_quote_sign = _set_tpm_quote_sign,
423 .get_evid_sign = _get_evid_sign,
424 .set_evid_sign = _set_evid_sign,
425 },
426 .vendor_id = PEN_TCG,
427 .type = TCG_PTS_SIMPLE_EVID_FINAL,
428 .value = chunk_clone(data),
429 );
430
431 return &this->public.pa_tnc_attribute;
432 }