#ifndef NETLOGON_NETLOGON_H
#define NETLOGON_NETLOGON_H
#include <config.h>
#include <stdio.h>
#include <stdlib.h>
#include <assert.h>
#include <string.h>
#include <errno.h>
#include <gssapi.h>
#include <gssapi_mech.h>
#include <gssapi_netlogon.h>
#include <krb5.h>
#include <roken.h>
#include <heim_threads.h>
#define HC_DEPRECATED_CRYPTO
#include "crypto-headers.h"
typedef struct {
#define NL_NEGOTIATE_REQUEST_MESSAGE 0x00000000
#define NL_NEGOTIATE_RESPONSE_MESSAGE 0x00000001
uint32_t MessageType;
#define NL_FLAG_NETBIOS_DOMAIN_NAME 0x00000001
#define NL_FLAG_NETBIOS_COMPUTER_NAME 0x00000002
#define NL_FLAG_DNS_DOMAIN_NAME 0x00000004
#define NL_FLAG_DNS_HOST_NAME 0x00000008
#define NL_FLAG_UTF8_COMPUTER_NAME 0x00000010
uint32_t Flags;
char *Buffer[0];
} NL_AUTH_MESSAGE;
#define NL_AUTH_MESSAGE_LENGTH 8
#define NL_SIGN_ALG_HMAC_MD5 0x0077
#define NL_SIGN_ALG_SHA256 0x0013
#define NL_SEAL_ALG_RC4 0x007A
#define NL_SEAL_ALG_AES128 0x001A
#define NL_SEAL_ALG_NONE 0xFFFF
typedef struct {
uint16_t SignatureAlgorithm;
uint16_t SealAlgorithm;
uint16_t Pad;
uint16_t Flags;
uint8_t SequenceNumber[8];
uint8_t Checksum[8];
uint8_t Confounder[8];
} NL_AUTH_SIGNATURE;
#define NL_AUTH_SIGNATURE_HEADER_LENGTH 8
#define NL_AUTH_SIGNATURE_COMMON_LENGTH 16
#define NL_AUTH_SIGNATURE_LENGTH 32
typedef struct {
uint16_t SignatureAlgorithm;
uint16_t SealAlgorithm;
uint16_t Pad;
uint16_t Flags;
uint8_t SequenceNumber[8];
uint8_t Checksum[32];
uint8_t Confounder[8];
} NL_AUTH_SHA2_SIGNATURE;
#define NL_AUTH_SHA2_SIGNATURE_LENGTH 56
typedef union {
NL_AUTH_SIGNATURE Signature;
NL_AUTH_SHA2_SIGNATURE SHA2Signature;
} NL_AUTH_SIGNATURE_U;
#define NL_AUTH_SIGNATURE_P(_u) (&(_u)->Signature)
typedef struct gssnetlogon_name {
gss_buffer_desc NetbiosName;
gss_buffer_desc DnsName;
} *gssnetlogon_name;
typedef struct gssnetlogon_cred {
gssnetlogon_name *Name;
uint16_t SignatureAlgorithm;
uint16_t SealAlgorithm;
uint8_t SessionKey[16];
} *gssnetlogon_cred;
typedef struct gssnetlogon_ctx {
HEIMDAL_MUTEX Mutex;
enum { NL_AUTH_NEGOTIATE, NL_AUTH_ESTABLISHED } State;
OM_uint32 GssFlags;
uint8_t LocallyInitiated;
uint32_t MessageBlockSize;
uint16_t SignatureAlgorithm;
uint16_t SealAlgorithm;
uint64_t SequenceNumber;
gssnetlogon_name SourceName;
gssnetlogon_name TargetName;
uint8_t SessionKey[16];
} *gssnetlogon_ctx;
#include <netlogon-private.h>
#endif