icinga2/lib/base/tlsstream.hpp

79 lines
2.6 KiB
C++
Raw Normal View History

/******************************************************************************
* Icinga 2 *
* Copyright (C) 2012-2014 Icinga Development Team (http://www.icinga.org) *
* *
* This program is free software; you can redistribute it and/or *
* modify it under the terms of the GNU General Public License *
* as published by the Free Software Foundation; either version 2 *
* of the License, or (at your option) any later version. *
* *
* This program is distributed in the hope that it will be useful, *
* but WITHOUT ANY WARRANTY; without even the implied warranty of *
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
* GNU General Public License for more details. *
* *
* You should have received a copy of the GNU General Public License *
* along with this program; if not, write to the Free Software Foundation *
2012-05-11 13:33:57 +02:00
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA. *
******************************************************************************/
2012-11-22 12:04:32 +01:00
#ifndef TLSSTREAM_H
#define TLSSTREAM_H
2012-04-24 14:02:15 +02:00
2014-05-25 16:23:35 +02:00
#include "base/i2-base.hpp"
#include "base/socket.hpp"
#include "base/stream.hpp"
#include "base/tlsutility.hpp"
2013-03-16 21:18:53 +01:00
2012-04-24 14:02:15 +02:00
namespace icinga
{
/**
2012-11-22 12:04:32 +01:00
* A TLS stream.
2012-05-18 22:21:28 +02:00
*
* @ingroup base
*/
2012-11-22 12:04:32 +01:00
class I2_BASE_API TlsStream : public Stream
2012-04-24 14:02:15 +02:00
{
public:
2014-11-07 12:32:25 +01:00
DECLARE_PTR_TYPEDEFS(TlsStream);
TlsStream(const Socket::Ptr& socket, ConnectionRole role, const boost::shared_ptr<SSL_CTX>& sslContext);
2012-06-24 02:56:48 +02:00
boost::shared_ptr<X509> GetClientCertificate(void) const;
boost::shared_ptr<X509> GetPeerCertificate(void) const;
2013-04-04 16:08:02 +02:00
void Handshake(void);
2012-11-22 12:04:32 +01:00
virtual void Close(void);
2012-11-22 12:04:32 +01:00
virtual size_t Read(void *buffer, size_t count);
virtual void Write(const void *buffer, size_t count);
virtual bool IsEof(void) const;
bool IsVerifyOK(void) const;
2012-04-24 14:02:15 +02:00
private:
boost::shared_ptr<SSL> m_SSL;
bool m_Eof;
mutable boost::mutex m_SSLLock;
2014-09-05 08:19:47 +02:00
mutable boost::mutex m_IOActionLock;
bool m_VerifyOK;
2012-04-24 14:02:15 +02:00
Socket::Ptr m_Socket;
ConnectionRole m_Role;
static int m_SSLIndex;
static bool m_SSLIndexInitialized;
void CloseUnlocked(void);
static int ValidateCertificate(int preverify_ok, X509_STORE_CTX *ctx);
2012-11-23 11:04:08 +01:00
static void NullCertificateDeleter(X509 *certificate);
2012-11-22 12:04:32 +01:00
};
2012-04-24 14:02:15 +02:00
}
2012-11-22 12:04:32 +01:00
#endif /* TLSSTREAM_H */