2012-04-24 14:02:15 +02:00
|
|
|
#ifndef TLSCLIENT_H
|
|
|
|
#define TLSCLIENT_H
|
|
|
|
|
|
|
|
namespace icinga
|
|
|
|
{
|
|
|
|
|
|
|
|
struct I2_BASE_API VerifyCertificateEventArgs : public EventArgs
|
|
|
|
{
|
|
|
|
bool ValidCertificate;
|
|
|
|
X509_STORE_CTX *Context;
|
2012-04-24 15:56:48 +02:00
|
|
|
shared_ptr<X509> Certificate;
|
2012-04-24 14:02:15 +02:00
|
|
|
};
|
|
|
|
|
|
|
|
class I2_BASE_API TLSClient : public TCPClient
|
|
|
|
{
|
|
|
|
private:
|
|
|
|
shared_ptr<SSL_CTX> m_SSLContext;
|
|
|
|
shared_ptr<SSL> m_SSL;
|
|
|
|
|
2012-04-27 14:15:22 +02:00
|
|
|
bool m_BlockRead;
|
|
|
|
bool m_BlockWrite;
|
|
|
|
|
2012-04-24 14:54:05 +02:00
|
|
|
static int m_SSLIndex;
|
|
|
|
static bool m_SSLIndexInitialized;
|
|
|
|
|
2012-04-24 14:02:15 +02:00
|
|
|
virtual int ReadableEventHandler(const EventArgs& ea);
|
|
|
|
virtual int WritableEventHandler(const EventArgs& ea);
|
|
|
|
|
|
|
|
virtual void CloseInternal(bool from_dtor);
|
|
|
|
|
2012-04-24 15:56:48 +02:00
|
|
|
static void NullCertificateDeleter(X509 *certificate);
|
|
|
|
|
2012-04-24 14:54:05 +02:00
|
|
|
static int SSLVerifyCertificate(int ok, X509_STORE_CTX *x509Context);
|
|
|
|
|
|
|
|
protected:
|
|
|
|
void HandleSSLError(void);
|
|
|
|
|
2012-04-24 14:02:15 +02:00
|
|
|
public:
|
|
|
|
TLSClient(TCPClientRole role, shared_ptr<SSL_CTX> sslContext);
|
|
|
|
|
2012-04-24 15:56:48 +02:00
|
|
|
shared_ptr<X509> GetClientCertificate(void) const;
|
|
|
|
shared_ptr<X509> GetPeerCertificate(void) const;
|
2012-04-24 14:02:15 +02:00
|
|
|
|
|
|
|
virtual void Start(void);
|
|
|
|
|
2012-04-24 16:27:23 +02:00
|
|
|
virtual bool WantsToRead(void) const;
|
2012-04-24 14:02:15 +02:00
|
|
|
virtual bool WantsToWrite(void) const;
|
|
|
|
|
|
|
|
Event<VerifyCertificateEventArgs> OnVerifyCertificate;
|
|
|
|
};
|
|
|
|
|
|
|
|
TCPClient::Ptr TLSClientFactory(TCPClientRole role, shared_ptr<SSL_CTX> sslContext);
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
#endif /* TLSCLIENT_H */
|