xref: /linux-6.15/tools/include/uapi/linux/tls.h (revision 421f4292)
1*421f4292SDaniel Borkmann /* SPDX-License-Identifier: ((GPL-2.0 WITH Linux-syscall-note) OR Linux-OpenIB) */
2*421f4292SDaniel Borkmann /*
3*421f4292SDaniel Borkmann  * Copyright (c) 2016-2017, Mellanox Technologies. All rights reserved.
4*421f4292SDaniel Borkmann  *
5*421f4292SDaniel Borkmann  * This software is available to you under a choice of one of two
6*421f4292SDaniel Borkmann  * licenses.  You may choose to be licensed under the terms of the GNU
7*421f4292SDaniel Borkmann  * General Public License (GPL) Version 2, available from the file
8*421f4292SDaniel Borkmann  * COPYING in the main directory of this source tree, or the
9*421f4292SDaniel Borkmann  * OpenIB.org BSD license below:
10*421f4292SDaniel Borkmann  *
11*421f4292SDaniel Borkmann  *     Redistribution and use in source and binary forms, with or
12*421f4292SDaniel Borkmann  *     without modification, are permitted provided that the following
13*421f4292SDaniel Borkmann  *     conditions are met:
14*421f4292SDaniel Borkmann  *
15*421f4292SDaniel Borkmann  *      - Redistributions of source code must retain the above
16*421f4292SDaniel Borkmann  *        copyright notice, this list of conditions and the following
17*421f4292SDaniel Borkmann  *        disclaimer.
18*421f4292SDaniel Borkmann  *
19*421f4292SDaniel Borkmann  *      - Redistributions in binary form must reproduce the above
20*421f4292SDaniel Borkmann  *        copyright notice, this list of conditions and the following
21*421f4292SDaniel Borkmann  *        disclaimer in the documentation and/or other materials
22*421f4292SDaniel Borkmann  *        provided with the distribution.
23*421f4292SDaniel Borkmann  *
24*421f4292SDaniel Borkmann  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
25*421f4292SDaniel Borkmann  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
26*421f4292SDaniel Borkmann  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
27*421f4292SDaniel Borkmann  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
28*421f4292SDaniel Borkmann  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
29*421f4292SDaniel Borkmann  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
30*421f4292SDaniel Borkmann  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
31*421f4292SDaniel Borkmann  * SOFTWARE.
32*421f4292SDaniel Borkmann  */
33*421f4292SDaniel Borkmann 
34*421f4292SDaniel Borkmann #ifndef _UAPI_LINUX_TLS_H
35*421f4292SDaniel Borkmann #define _UAPI_LINUX_TLS_H
36*421f4292SDaniel Borkmann 
37*421f4292SDaniel Borkmann #include <linux/types.h>
38*421f4292SDaniel Borkmann 
39*421f4292SDaniel Borkmann /* TLS socket options */
40*421f4292SDaniel Borkmann #define TLS_TX			1	/* Set transmit parameters */
41*421f4292SDaniel Borkmann #define TLS_RX			2	/* Set receive parameters */
42*421f4292SDaniel Borkmann 
43*421f4292SDaniel Borkmann /* Supported versions */
44*421f4292SDaniel Borkmann #define TLS_VERSION_MINOR(ver)	((ver) & 0xFF)
45*421f4292SDaniel Borkmann #define TLS_VERSION_MAJOR(ver)	(((ver) >> 8) & 0xFF)
46*421f4292SDaniel Borkmann 
47*421f4292SDaniel Borkmann #define TLS_VERSION_NUMBER(id)	((((id##_VERSION_MAJOR) & 0xFF) << 8) |	\
48*421f4292SDaniel Borkmann 				 ((id##_VERSION_MINOR) & 0xFF))
49*421f4292SDaniel Borkmann 
50*421f4292SDaniel Borkmann #define TLS_1_2_VERSION_MAJOR	0x3
51*421f4292SDaniel Borkmann #define TLS_1_2_VERSION_MINOR	0x3
52*421f4292SDaniel Borkmann #define TLS_1_2_VERSION		TLS_VERSION_NUMBER(TLS_1_2)
53*421f4292SDaniel Borkmann 
54*421f4292SDaniel Borkmann /* Supported ciphers */
55*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128				51
56*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128_IV_SIZE			8
57*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128_KEY_SIZE		16
58*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128_SALT_SIZE		4
59*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128_TAG_SIZE		16
60*421f4292SDaniel Borkmann #define TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE		8
61*421f4292SDaniel Borkmann 
62*421f4292SDaniel Borkmann #define TLS_SET_RECORD_TYPE	1
63*421f4292SDaniel Borkmann #define TLS_GET_RECORD_TYPE	2
64*421f4292SDaniel Borkmann 
65*421f4292SDaniel Borkmann struct tls_crypto_info {
66*421f4292SDaniel Borkmann 	__u16 version;
67*421f4292SDaniel Borkmann 	__u16 cipher_type;
68*421f4292SDaniel Borkmann };
69*421f4292SDaniel Borkmann 
70*421f4292SDaniel Borkmann struct tls12_crypto_info_aes_gcm_128 {
71*421f4292SDaniel Borkmann 	struct tls_crypto_info info;
72*421f4292SDaniel Borkmann 	unsigned char iv[TLS_CIPHER_AES_GCM_128_IV_SIZE];
73*421f4292SDaniel Borkmann 	unsigned char key[TLS_CIPHER_AES_GCM_128_KEY_SIZE];
74*421f4292SDaniel Borkmann 	unsigned char salt[TLS_CIPHER_AES_GCM_128_SALT_SIZE];
75*421f4292SDaniel Borkmann 	unsigned char rec_seq[TLS_CIPHER_AES_GCM_128_REC_SEQ_SIZE];
76*421f4292SDaniel Borkmann };
77*421f4292SDaniel Borkmann 
78*421f4292SDaniel Borkmann #endif /* _UAPI_LINUX_TLS_H */
79