2 * Copyright (C) 2004, 2005, 2007, 2009, 2011, 2012, 2014 Internet Systems Consortium, Inc. ("ISC")
3 * Copyright (C) 2003 Internet Software Consortium.
5 * Permission to use, copy, modify, and/or distribute this software for any
6 * purpose with or without fee is hereby granted, provided that the above
7 * copyright notice and this permission notice appear in all copies.
9 * THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
10 * REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
11 * AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
12 * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
13 * LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
14 * OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
15 * PERFORMANCE OF THIS SOFTWARE.
20 /* Reviewed: Fri Mar 17 09:05:02 PST 2000 by gson */
24 #ifndef RDATA_GENERIC_RRSIG_46_C
25 #define RDATA_GENERIC_RRSIG_46_C
27 #define RRTYPE_RRSIG_ATTRIBUTES (DNS_RDATATYPEATTR_DNSSEC)
29 static inline isc_result_t
30 fromtext_rrsig(ARGS_FROMTEXT) {
34 dns_rdatatype_t covered;
39 isc_uint32_t time_signed, time_expire;
50 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
52 result = dns_rdatatype_fromtext(&covered, &token.value.as_textregion);
53 if (result != ISC_R_SUCCESS && result != ISC_R_NOTIMPLEMENTED) {
54 i = strtol(DNS_AS_STR(token), &e, 10);
55 if (i < 0 || i > 65535)
59 covered = (dns_rdatatype_t)i;
61 RETERR(uint16_tobuffer(covered, target));
66 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
68 RETTOK(dns_secalg_fromtext(&c, &token.value.as_textregion));
69 RETERR(mem_tobuffer(target, &c, 1));
74 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_number,
76 if (token.value.as_ulong > 0xffU)
78 c = (unsigned char)token.value.as_ulong;
79 RETERR(mem_tobuffer(target, &c, 1));
84 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_number,
86 RETERR(uint32_tobuffer(token.value.as_ulong, target));
89 * Signature expiration.
91 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
93 if (strlen(DNS_AS_STR(token)) <= 10U &&
94 *DNS_AS_STR(token) != '-' && *DNS_AS_STR(token) != '+') {
99 u64 = u = strtoul(DNS_AS_STR(token), &end, 10);
100 if (u == ULONG_MAX || *end != 0)
101 RETTOK(DNS_R_SYNTAX);
102 if (u64 > 0xffffffffUL)
106 RETTOK(dns_time32_fromtext(DNS_AS_STR(token), &time_expire));
107 RETERR(uint32_tobuffer(time_expire, target));
112 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
114 if (strlen(DNS_AS_STR(token)) <= 10U &&
115 *DNS_AS_STR(token) != '-' && *DNS_AS_STR(token) != '+') {
120 u64 = u = strtoul(DNS_AS_STR(token), &end, 10);
121 if (u == ULONG_MAX || *end != 0)
122 RETTOK(DNS_R_SYNTAX);
123 if (u64 > 0xffffffffUL)
127 RETTOK(dns_time32_fromtext(DNS_AS_STR(token), &time_signed));
128 RETERR(uint32_tobuffer(time_signed, target));
133 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_number,
135 RETERR(uint16_tobuffer(token.value.as_ulong, target));
140 RETERR(isc_lex_getmastertoken(lexer, &token, isc_tokentype_string,
142 dns_name_init(&name, NULL);
143 buffer_fromregion(&buffer, &token.value.as_region);
144 origin = (origin != NULL) ? origin : dns_rootname;
145 RETTOK(dns_name_fromtext(&name, &buffer, origin, options, target));
150 return (isc_base64_tobuffer(lexer, target, -1));
153 static inline isc_result_t
154 totext_rrsig(ARGS_TOTEXT) {
156 char buf[sizeof("4294967295")];
157 dns_rdatatype_t covered;
164 REQUIRE(rdata->type == 46);
165 REQUIRE(rdata->length != 0);
167 dns_rdata_toregion(rdata, &sr);
172 covered = uint16_fromregion(&sr);
173 isc_region_consume(&sr, 2);
175 * XXXAG We should have something like dns_rdatatype_isknown()
176 * that does the right thing with type 0.
178 if (dns_rdatatype_isknown(covered) && covered != 0) {
179 RETERR(dns_rdatatype_totext(covered, target));
181 char buf[sizeof("TYPE65535")];
182 sprintf(buf, "TYPE%u", covered);
183 RETERR(str_totext(buf, target));
185 RETERR(str_totext(" ", target));
190 sprintf(buf, "%u", sr.base[0]);
191 isc_region_consume(&sr, 1);
192 RETERR(str_totext(buf, target));
193 RETERR(str_totext(" ", target));
198 sprintf(buf, "%u", sr.base[0]);
199 isc_region_consume(&sr, 1);
200 RETERR(str_totext(buf, target));
201 RETERR(str_totext(" ", target));
206 ttl = uint32_fromregion(&sr);
207 isc_region_consume(&sr, 4);
208 sprintf(buf, "%lu", ttl);
209 RETERR(str_totext(buf, target));
210 RETERR(str_totext(" ", target));
215 exp = uint32_fromregion(&sr);
216 isc_region_consume(&sr, 4);
217 RETERR(dns_time32_totext(exp, target));
219 if ((tctx->flags & DNS_STYLEFLAG_MULTILINE) != 0)
220 RETERR(str_totext(" (", target));
221 RETERR(str_totext(tctx->linebreak, target));
226 when = uint32_fromregion(&sr);
227 isc_region_consume(&sr, 4);
228 RETERR(dns_time32_totext(when, target));
229 RETERR(str_totext(" ", target));
234 foot = uint16_fromregion(&sr);
235 isc_region_consume(&sr, 2);
236 sprintf(buf, "%lu", foot);
237 RETERR(str_totext(buf, target));
238 RETERR(str_totext(" ", target));
243 dns_name_init(&name, NULL);
244 dns_name_fromregion(&name, &sr);
245 isc_region_consume(&sr, name_length(&name));
246 RETERR(dns_name_totext(&name, ISC_FALSE, target));
251 RETERR(str_totext(tctx->linebreak, target));
252 RETERR(isc_base64_totext(&sr, tctx->width - 2,
253 tctx->linebreak, target));
254 if ((tctx->flags & DNS_STYLEFLAG_MULTILINE) != 0)
255 RETERR(str_totext(" )", target));
257 return (ISC_R_SUCCESS);
260 static inline isc_result_t
261 fromwire_rrsig(ARGS_FROMWIRE) {
270 dns_decompress_setmethods(dctx, DNS_COMPRESS_NONE);
272 isc_buffer_activeregion(source, &sr);
278 * signature expiration: 4
283 return (ISC_R_UNEXPECTEDEND);
285 isc_buffer_forward(source, 18);
286 RETERR(mem_tobuffer(target, sr.base, 18));
291 dns_name_init(&name, NULL);
292 RETERR(dns_name_fromwire(&name, source, dctx, options, target));
297 isc_buffer_activeregion(source, &sr);
298 isc_buffer_forward(source, sr.length);
299 return (mem_tobuffer(target, sr.base, sr.length));
302 static inline isc_result_t
303 towire_rrsig(ARGS_TOWIRE) {
306 dns_offsets_t offsets;
308 REQUIRE(rdata->type == 46);
309 REQUIRE(rdata->length != 0);
311 dns_compress_setmethods(cctx, DNS_COMPRESS_NONE);
312 dns_rdata_toregion(rdata, &sr);
318 * signature expiration: 4
322 RETERR(mem_tobuffer(target, sr.base, 18));
323 isc_region_consume(&sr, 18);
328 dns_name_init(&name, offsets);
329 dns_name_fromregion(&name, &sr);
330 isc_region_consume(&sr, name_length(&name));
331 RETERR(dns_name_towire(&name, cctx, target));
336 return (mem_tobuffer(target, sr.base, sr.length));
340 compare_rrsig(ARGS_COMPARE) {
344 REQUIRE(rdata1->type == rdata2->type);
345 REQUIRE(rdata1->rdclass == rdata2->rdclass);
346 REQUIRE(rdata1->type == 46);
347 REQUIRE(rdata1->length != 0);
348 REQUIRE(rdata2->length != 0);
350 dns_rdata_toregion(rdata1, &r1);
351 dns_rdata_toregion(rdata2, &r2);
352 return (isc_region_compare(&r1, &r2));
355 static inline isc_result_t
356 fromstruct_rrsig(ARGS_FROMSTRUCT) {
357 dns_rdata_rrsig_t *sig = source;
360 REQUIRE(source != NULL);
361 REQUIRE(sig->common.rdtype == type);
362 REQUIRE(sig->common.rdclass == rdclass);
363 REQUIRE(sig->signature != NULL || sig->siglen == 0);
371 RETERR(uint16_tobuffer(sig->covered, target));
376 RETERR(uint8_tobuffer(sig->algorithm, target));
381 RETERR(uint8_tobuffer(sig->labels, target));
386 RETERR(uint32_tobuffer(sig->originalttl, target));
391 RETERR(uint32_tobuffer(sig->timeexpire, target));
396 RETERR(uint32_tobuffer(sig->timesigned, target));
401 RETERR(uint16_tobuffer(sig->keyid, target));
406 RETERR(name_tobuffer(&sig->signer, target));
411 return (mem_tobuffer(target, sig->signature, sig->siglen));
414 static inline isc_result_t
415 tostruct_rrsig(ARGS_TOSTRUCT) {
417 dns_rdata_rrsig_t *sig = target;
420 REQUIRE(rdata->type == 46);
421 REQUIRE(target != NULL);
422 REQUIRE(rdata->length != 0);
424 sig->common.rdclass = rdata->rdclass;
425 sig->common.rdtype = rdata->type;
426 ISC_LINK_INIT(&sig->common, link);
428 dns_rdata_toregion(rdata, &sr);
433 sig->covered = uint16_fromregion(&sr);
434 isc_region_consume(&sr, 2);
439 sig->algorithm = uint8_fromregion(&sr);
440 isc_region_consume(&sr, 1);
445 sig->labels = uint8_fromregion(&sr);
446 isc_region_consume(&sr, 1);
451 sig->originalttl = uint32_fromregion(&sr);
452 isc_region_consume(&sr, 4);
457 sig->timeexpire = uint32_fromregion(&sr);
458 isc_region_consume(&sr, 4);
463 sig->timesigned = uint32_fromregion(&sr);
464 isc_region_consume(&sr, 4);
469 sig->keyid = uint16_fromregion(&sr);
470 isc_region_consume(&sr, 2);
472 dns_name_init(&signer, NULL);
473 dns_name_fromregion(&signer, &sr);
474 dns_name_init(&sig->signer, NULL);
475 RETERR(name_duporclone(&signer, mctx, &sig->signer));
476 isc_region_consume(&sr, name_length(&sig->signer));
481 sig->siglen = sr.length;
482 sig->signature = mem_maybedup(mctx, sr.base, sig->siglen);
483 if (sig->signature == NULL)
488 return (ISC_R_SUCCESS);
492 dns_name_free(&sig->signer, mctx);
493 return (ISC_R_NOMEMORY);
497 freestruct_rrsig(ARGS_FREESTRUCT) {
498 dns_rdata_rrsig_t *sig = (dns_rdata_rrsig_t *) source;
500 REQUIRE(source != NULL);
501 REQUIRE(sig->common.rdtype == 46);
503 if (sig->mctx == NULL)
506 dns_name_free(&sig->signer, sig->mctx);
507 if (sig->signature != NULL)
508 isc_mem_free(sig->mctx, sig->signature);
512 static inline isc_result_t
513 additionaldata_rrsig(ARGS_ADDLDATA) {
514 REQUIRE(rdata->type == 46);
520 return (ISC_R_SUCCESS);
523 static inline isc_result_t
524 digest_rrsig(ARGS_DIGEST) {
526 REQUIRE(rdata->type == 46);
532 return (ISC_R_NOTIMPLEMENTED);
535 static inline dns_rdatatype_t
536 covers_rrsig(dns_rdata_t *rdata) {
537 dns_rdatatype_t type;
540 REQUIRE(rdata->type == 46);
542 dns_rdata_toregion(rdata, &r);
543 type = uint16_fromregion(&r);
548 static inline isc_boolean_t
549 checkowner_rrsig(ARGS_CHECKOWNER) {
561 static inline isc_boolean_t
562 checknames_rrsig(ARGS_CHECKNAMES) {
564 REQUIRE(rdata->type == 46);
574 casecompare_rrsig(ARGS_COMPARE) {
581 REQUIRE(rdata1->type == rdata2->type);
582 REQUIRE(rdata1->rdclass == rdata2->rdclass);
583 REQUIRE(rdata1->type == 46);
584 REQUIRE(rdata1->length != 0);
585 REQUIRE(rdata2->length != 0);
587 dns_rdata_toregion(rdata1, &r1);
588 dns_rdata_toregion(rdata2, &r2);
590 INSIST(r1.length > 18);
591 INSIST(r2.length > 18);
594 order = isc_region_compare(&r1, &r2);
598 dns_name_init(&name1, NULL);
599 dns_name_init(&name2, NULL);
600 dns_rdata_toregion(rdata1, &r1);
601 dns_rdata_toregion(rdata2, &r2);
602 isc_region_consume(&r1, 18);
603 isc_region_consume(&r2, 18);
604 dns_name_fromregion(&name1, &r1);
605 dns_name_fromregion(&name2, &r2);
606 order = dns_name_rdatacompare(&name1, &name2);
610 isc_region_consume(&r1, name_length(&name1));
611 isc_region_consume(&r2, name_length(&name2));
613 return (isc_region_compare(&r1, &r2));
616 #endif /* RDATA_GENERIC_RRSIG_46_C */