2
0

key.c 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. /*
  2. * key.c
  3. *
  4. * key usage limits enforcement
  5. *
  6. * David A. Mcgrew
  7. * Cisco Systems, Inc.
  8. */
  9. /*
  10. *
  11. * Copyright (c) 2001-2017 Cisco Systems, Inc.
  12. * All rights reserved.
  13. *
  14. * Redistribution and use in source and binary forms, with or without
  15. * modification, are permitted provided that the following conditions
  16. * are met:
  17. *
  18. * Redistributions of source code must retain the above copyright
  19. * notice, this list of conditions and the following disclaimer.
  20. *
  21. * Redistributions in binary form must reproduce the above
  22. * copyright notice, this list of conditions and the following
  23. * disclaimer in the documentation and/or other materials provided
  24. * with the distribution.
  25. *
  26. * Neither the name of the Cisco Systems, Inc. nor the names of its
  27. * contributors may be used to endorse or promote products derived
  28. * from this software without specific prior written permission.
  29. *
  30. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
  31. * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
  32. * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
  33. * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
  34. * COPYRIGHT HOLDERS OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
  35. * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
  36. * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
  37. * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  38. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  39. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  40. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  41. * OF THE POSSIBILITY OF SUCH DAMAGE.
  42. *
  43. */
  44. #ifdef HAVE_CONFIG_H
  45. #include <config.h>
  46. #endif
  47. #include "key.h"
  48. #define soft_limit 0x10000
  49. srtp_err_status_t srtp_key_limit_set(srtp_key_limit_t key,
  50. const srtp_xtd_seq_num_t s)
  51. {
  52. #ifdef NO_64BIT_MATH
  53. if (high32(s) == 0 && low32(s) < soft_limit) {
  54. return srtp_err_status_bad_param;
  55. }
  56. #else
  57. if (s < soft_limit) {
  58. return srtp_err_status_bad_param;
  59. }
  60. #endif
  61. key->num_left = s;
  62. key->state = srtp_key_state_normal;
  63. return srtp_err_status_ok;
  64. }
  65. srtp_err_status_t srtp_key_limit_clone(srtp_key_limit_t original,
  66. srtp_key_limit_t *new_key)
  67. {
  68. if (original == NULL) {
  69. return srtp_err_status_bad_param;
  70. }
  71. *new_key = original;
  72. return srtp_err_status_ok;
  73. }
  74. srtp_err_status_t srtp_key_limit_check(const srtp_key_limit_t key)
  75. {
  76. if (key->state == srtp_key_state_expired) {
  77. return srtp_err_status_key_expired;
  78. }
  79. return srtp_err_status_ok;
  80. }
  81. srtp_key_event_t srtp_key_limit_update(srtp_key_limit_t key)
  82. {
  83. #ifdef NO_64BIT_MATH
  84. if (low32(key->num_left) == 0) {
  85. // carry
  86. key->num_left =
  87. make64(high32(key->num_left) - 1, low32(key->num_left) - 1);
  88. } else {
  89. // no carry
  90. key->num_left = make64(high32(key->num_left), low32(key->num_left) - 1);
  91. }
  92. if (high32(key->num_left) != 0 || low32(key->num_left) >= soft_limit) {
  93. return srtp_key_event_normal; /* we're above the soft limit */
  94. }
  95. #else
  96. key->num_left--;
  97. if (key->num_left >= soft_limit) {
  98. return srtp_key_event_normal; /* we're above the soft limit */
  99. }
  100. #endif
  101. if (key->state == srtp_key_state_normal) {
  102. /* we just passed the soft limit, so change the state */
  103. key->state = srtp_key_state_past_soft_limit;
  104. }
  105. #ifdef NO_64BIT_MATH
  106. if (low32(key->num_left) == 0 && high32(key->num_left == 0))
  107. #else
  108. if (key->num_left < 1)
  109. #endif
  110. { /* we just hit the hard limit */
  111. key->state = srtp_key_state_expired;
  112. return srtp_key_event_hard_limit;
  113. }
  114. return srtp_key_event_soft_limit;
  115. }