]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/shared/pkcs11-util.h
shared: add pkcs11-util.[ch]
[thirdparty/systemd.git] / src / shared / pkcs11-util.h
CommitLineData
839fddbe
LP
1/* SPDX-License-Identifier: LGPL-2.1+ */
2#pragma once
3
4#include <stdbool.h>
5
6#if HAVE_P11KIT
7#include <p11-kit/p11-kit.h>
8#include <p11-kit/uri.h>
9
10#if HAVE_OPENSSL
11#include <openssl/pem.h>
12#endif
13#endif
14
15#include "macro.h"
16#include "time-util.h"
17
18bool pkcs11_uri_valid(const char *uri);
19
20#if HAVE_P11KIT
21int uri_from_string(const char *p, P11KitUri **ret);
22
23P11KitUri *uri_from_module_info(const CK_INFO *info);
24P11KitUri *uri_from_slot_info(const CK_SLOT_INFO *slot_info);
25P11KitUri *uri_from_token_info(const CK_TOKEN_INFO *token_info);
26
27DEFINE_TRIVIAL_CLEANUP_FUNC(P11KitUri*, p11_kit_uri_free);
28DEFINE_TRIVIAL_CLEANUP_FUNC(CK_FUNCTION_LIST**, p11_kit_modules_finalize_and_release);
29
30CK_RV pkcs11_get_slot_list_malloc(CK_FUNCTION_LIST *m, CK_SLOT_ID **ret_slotids, CK_ULONG *ret_n_slotids);
31
32char *pkcs11_token_label(const CK_TOKEN_INFO *token_info);
33
34int pkcs11_token_login(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, CK_SLOT_ID slotid, const CK_TOKEN_INFO *token_info, const char *friendly_name, const char *icon_name, const char *keyname, usec_t until, char **ret_used_pin);
35
36int pkcs11_token_find_x509_certificate(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, P11KitUri *search_uri, CK_OBJECT_HANDLE *ret_object);
37#if HAVE_OPENSSL
38int pkcs11_token_read_x509_certificate(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, CK_OBJECT_HANDLE object, X509 **ret_cert);
39#endif
40
41int pkcs11_token_find_private_key(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, P11KitUri *search_uri, CK_OBJECT_HANDLE *ret_object);
42int pkcs11_token_decrypt_data(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, CK_OBJECT_HANDLE object, const void *encrypted_data, size_t encrypted_data_size, void **ret_decrypted_data, size_t *ret_decrypted_data_size);
43
44int pkcs11_token_acquire_rng(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session);
45
46typedef int (*pkcs11_find_token_callback_t)(CK_FUNCTION_LIST *m, CK_SESSION_HANDLE session, CK_SLOT_ID slotid, const CK_SLOT_INFO *slot_info, const CK_TOKEN_INFO *token_info, P11KitUri *uri, void *userdata);
47int pkcs11_find_token(const char *pkcs11_uri, pkcs11_find_token_callback_t callback, void *userdata);
48#endif