d1_srtp.cc
Go to the documentation of this file.
1 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
2  * All rights reserved.
3  *
4  * This package is an SSL implementation written
5  * by Eric Young (eay@cryptsoft.com).
6  * The implementation was written so as to conform with Netscapes SSL.
7  *
8  * This library is free for commercial and non-commercial use as long as
9  * the following conditions are aheared to. The following conditions
10  * apply to all code found in this distribution, be it the RC4, RSA,
11  * lhash, DES, etc., code; not just the SSL code. The SSL documentation
12  * included with this distribution is covered by the same copyright terms
13  * except that the holder is Tim Hudson (tjh@cryptsoft.com).
14  *
15  * Copyright remains Eric Young's, and as such any Copyright notices in
16  * the code are not to be removed.
17  * If this package is used in a product, Eric Young should be given attribution
18  * as the author of the parts of the library used.
19  * This can be in the form of a textual message at program startup or
20  * in documentation (online or textual) provided with the package.
21  *
22  * Redistribution and use in source and binary forms, with or without
23  * modification, are permitted provided that the following conditions
24  * are met:
25  * 1. Redistributions of source code must retain the copyright
26  * notice, this list of conditions and the following disclaimer.
27  * 2. Redistributions in binary form must reproduce the above copyright
28  * notice, this list of conditions and the following disclaimer in the
29  * documentation and/or other materials provided with the distribution.
30  * 3. All advertising materials mentioning features or use of this software
31  * must display the following acknowledgement:
32  * "This product includes cryptographic software written by
33  * Eric Young (eay@cryptsoft.com)"
34  * The word 'cryptographic' can be left out if the rouines from the library
35  * being used are not cryptographic related :-).
36  * 4. If you include any Windows specific code (or a derivative thereof) from
37  * the apps directory (application code) you must include an acknowledgement:
38  * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
39  *
40  * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
41  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
43  * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
44  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
45  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
46  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
48  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
49  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
50  * SUCH DAMAGE.
51  *
52  * The licence and distribution terms for any publically available version or
53  * derivative of this code cannot be changed. i.e. this code cannot simply be
54  * copied and put under another distribution licence
55  * [including the GNU Public Licence.]
56  */
57 /* ====================================================================
58  * Copyright (c) 1998-2006 The OpenSSL Project. All rights reserved.
59  *
60  * Redistribution and use in source and binary forms, with or without
61  * modification, are permitted provided that the following conditions
62  * are met:
63  *
64  * 1. Redistributions of source code must retain the above copyright
65  * notice, this list of conditions and the following disclaimer.
66  *
67  * 2. Redistributions in binary form must reproduce the above copyright
68  * notice, this list of conditions and the following disclaimer in
69  * the documentation and/or other materials provided with the
70  * distribution.
71  *
72  * 3. All advertising materials mentioning features or use of this
73  * software must display the following acknowledgment:
74  * "This product includes software developed by the OpenSSL Project
75  * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
76  *
77  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
78  * endorse or promote products derived from this software without
79  * prior written permission. For written permission, please contact
80  * openssl-core@openssl.org.
81  *
82  * 5. Products derived from this software may not be called "OpenSSL"
83  * nor may "OpenSSL" appear in their names without prior written
84  * permission of the OpenSSL Project.
85  *
86  * 6. Redistributions of any form whatsoever must retain the following
87  * acknowledgment:
88  * "This product includes software developed by the OpenSSL Project
89  * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
90  *
91  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
92  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
93  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
94  * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
95  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
96  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
97  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
98  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
99  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
100  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
101  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
102  * OF THE POSSIBILITY OF SUCH DAMAGE.
103  * ====================================================================
104  *
105  * This product includes cryptographic software written by Eric Young
106  * (eay@cryptsoft.com). This product includes software written by Tim
107  * Hudson (tjh@cryptsoft.com).
108  *
109  */
110 /*
111  DTLS code by Eric Rescorla <ekr@rtfm.com>
112 
113  Copyright (C) 2006, Network Resonance, Inc.
114  Copyright (C) 2011, RTFM, Inc.
115 */
116 
117 #include <openssl/ssl.h>
118 
119 #include <string.h>
120 
121 #include <openssl/bytestring.h>
122 #include <openssl/err.h>
123 
124 #include "internal.h"
125 
126 
127 using namespace bssl;
128 
130  {
131  "SRTP_AES128_CM_SHA1_80", SRTP_AES128_CM_SHA1_80,
132  },
133  {
134  "SRTP_AES128_CM_SHA1_32", SRTP_AES128_CM_SHA1_32,
135  },
136  {
137  "SRTP_AEAD_AES_128_GCM", SRTP_AEAD_AES_128_GCM,
138  },
139  {
140  "SRTP_AEAD_AES_256_GCM", SRTP_AEAD_AES_256_GCM,
141  },
142  {0, 0},
143 };
144 
145 static int find_profile_by_name(const char *profile_name,
146  const SRTP_PROTECTION_PROFILE **pptr,
147  size_t len) {
149  while (p->name) {
150  if (len == strlen(p->name) && !strncmp(p->name, profile_name, len)) {
151  *pptr = p;
152  return 1;
153  }
154 
155  p++;
156  }
157 
158  return 0;
159 }
160 
162  const char *profiles_string,
166  if (profiles == nullptr) {
168  return 0;
169  }
170 
171  const char *col;
172  const char *ptr = profiles_string;
173  do {
174  col = strchr(ptr, ':');
175 
178  col ? (size_t)(col - ptr) : strlen(ptr))) {
180  return 0;
181  }
182 
183  if (!sk_SRTP_PROTECTION_PROFILE_push(profiles.get(), profile)) {
184  return 0;
185  }
186 
187  if (col) {
188  ptr = col + 1;
189  }
190  } while (col);
191 
192  *out = std::move(profiles);
193  return 1;
194 }
195 
196 int SSL_CTX_set_srtp_profiles(SSL_CTX *ctx, const char *profiles) {
197  return ssl_ctx_make_profiles(profiles, &ctx->srtp_profiles);
198 }
199 
200 int SSL_set_srtp_profiles(SSL *ssl, const char *profiles) {
201  return ssl->config != nullptr &&
202  ssl_ctx_make_profiles(profiles, &ssl->config->srtp_profiles);
203 }
204 
206  if (ssl == nullptr) {
207  return nullptr;
208  }
209 
210  if (ssl->config == nullptr) {
211  assert(0);
212  return nullptr;
213  }
214 
215  return ssl->config->srtp_profiles != nullptr
216  ? ssl->config->srtp_profiles.get()
217  : ssl->ctx->srtp_profiles.get();
218 }
219 
221  return ssl->s3->srtp_profile;
222 }
223 
224 int SSL_CTX_set_tlsext_use_srtp(SSL_CTX *ctx, const char *profiles) {
225  // This API inverts its return value.
226  return !SSL_CTX_set_srtp_profiles(ctx, profiles);
227 }
228 
229 int SSL_set_tlsext_use_srtp(SSL *ssl, const char *profiles) {
230  // This API inverts its return value.
231  return !SSL_set_srtp_profiles(ssl, profiles);
232 }
ptr
char * ptr
Definition: abseil-cpp/absl/base/internal/low_level_alloc_test.cc:45
SRTP_AEAD_AES_256_GCM
#define SRTP_AEAD_AES_256_GCM
Definition: ssl.h:3073
gen_build_yaml.out
dictionary out
Definition: src/benchmark/gen_build_yaml.py:24
SRTP_AES128_CM_SHA1_80
#define SRTP_AES128_CM_SHA1_80
Definition: ssl.h:3066
STACK_OF
const STACK_OF(SRTP_PROTECTION_PROFILE) *SSL_get_srtp_profiles(const SSL *ssl)
Definition: d1_srtp.cc:205
ctx
Definition: benchmark-async.c:30
SSL_get_selected_srtp_profile
const SRTP_PROTECTION_PROFILE * SSL_get_selected_srtp_profile(SSL *ssl)
Definition: d1_srtp.cc:220
OPENSSL_PUT_ERROR
#define OPENSSL_PUT_ERROR(library, reason)
Definition: err.h:423
string.h
ssl_st::config
bssl::UniquePtr< bssl::SSL_CONFIG > config
Definition: third_party/boringssl-with-bazel/src/ssl/internal.h:3712
bssl
Definition: hpke_test.cc:37
internal.h
xds_manager.p
p
Definition: xds_manager.py:60
SSL_CTX_set_srtp_profiles
int SSL_CTX_set_srtp_profiles(SSL_CTX *ctx, const char *profiles)
Definition: d1_srtp.cc:196
ssl_ctx_st
Definition: third_party/boringssl-with-bazel/src/ssl/internal.h:3404
sk_SRTP_PROTECTION_PROFILE_push
#define sk_SRTP_PROTECTION_PROFILE_push
Definition: boringssl_prefix_symbols.h:564
bytestring.h
absl::move
constexpr absl::remove_reference_t< T > && move(T &&t) noexcept
Definition: abseil-cpp/absl/utility/utility.h:221
SSL_CTX_set_tlsext_use_srtp
int SSL_CTX_set_tlsext_use_srtp(SSL_CTX *ctx, const char *profiles)
Definition: d1_srtp.cc:224
SRTP_AES128_CM_SHA1_32
#define SRTP_AES128_CM_SHA1_32
Definition: ssl.h:3067
ssl_st
Definition: third_party/boringssl-with-bazel/src/ssl/internal.h:3698
sk_SRTP_PROTECTION_PROFILE_new_null
#define sk_SRTP_PROTECTION_PROFILE_new_null
Definition: boringssl_prefix_symbols.h:562
tests.stress.unary_stream_benchmark.profile
def profile(message_size, response_count)
Definition: unary_stream_benchmark.py:78
err.h
grpc_core::UniquePtr
std::unique_ptr< T, DefaultDeleteChar > UniquePtr
Definition: src/core/lib/gprpp/memory.h:43
SSL_set_srtp_profiles
int SSL_set_srtp_profiles(SSL *ssl, const char *profiles)
Definition: d1_srtp.cc:200
ssl.h
find_profile_by_name
static int find_profile_by_name(const char *profile_name, const SRTP_PROTECTION_PROFILE **pptr, size_t len)
Definition: d1_srtp.cc:145
kSRTPProfiles
static const SRTP_PROTECTION_PROFILE kSRTPProfiles[]
Definition: d1_srtp.cc:129
ssl_st::s3
bssl::SSL3_STATE * s3
Definition: third_party/boringssl-with-bazel/src/ssl/internal.h:3730
SSL_get_srtp_profiles
#define SSL_get_srtp_profiles
Definition: boringssl_prefix_symbols.h:383
SRTP_AEAD_AES_128_GCM
#define SRTP_AEAD_AES_128_GCM
Definition: ssl.h:3072
SSL_R_SRTP_COULD_NOT_ALLOCATE_PROFILES
#define SSL_R_SRTP_COULD_NOT_ALLOCATE_PROFILES
Definition: ssl.h:5478
SSL_set_tlsext_use_srtp
int SSL_set_tlsext_use_srtp(SSL *ssl, const char *profiles)
Definition: d1_srtp.cc:229
srtp_protection_profile_st
Definition: ssl.h:3058
ssl_ctx_make_profiles
static int ssl_ctx_make_profiles(const char *profiles_string, UniquePtr< STACK_OF(SRTP_PROTECTION_PROFILE)> *out)
Definition: d1_srtp.cc:161
len
int len
Definition: abseil-cpp/absl/base/internal/low_level_alloc_test.cc:46
ssl_st::ctx
bssl::UniquePtr< SSL_CTX > ctx
Definition: third_party/boringssl-with-bazel/src/ssl/internal.h:3754
SSL_R_SRTP_UNKNOWN_PROTECTION_PROFILE
#define SSL_R_SRTP_UNKNOWN_PROTECTION_PROFILE
Definition: ssl.h:5479


grpc
Author(s):
autogenerated on Fri May 16 2025 02:58:08