1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
|
/* Copyright (C) 2022 CZ.NIC, z.s.p.o. <knot-dns@labs.nic.cz>
This program is free software: you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation, either version 3 of the License, or
(at your option) any later version.
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License
along with this program. If not, see <https://www.gnu.org/licenses/>.
*/
#pragma once
#include <gnutls/gnutls.h>
#include <gnutls/abstract.h>
#include "libdnssec/binary.h"
#include "libdnssec/key.h"
#include "libdnssec/keystore.h"
typedef struct keystore_functions {
// construction of internal context
int (*ctx_new)(void **ctx_ptr);
void (*ctx_free)(void *ctx);
// keystore init/open/close
int (*init)(void *ctx, const char *config);
int (*open)(void *ctx, const char *config);
int (*close)(void *ctx);
// keystore access
int (*generate_key)(void *ctx, gnutls_pk_algorithm_t algorithm,
unsigned bits, const char *label, char **id_ptr);
int (*import_key)(void *ctx, const dnssec_binary_t *pem, char **id_ptr);
int (*remove_key)(void *ctx, const char *id);
// private key access
int (*get_private)(void *ctx, const char *id, gnutls_privkey_t *key_ptr);
int (*set_private)(void *ctx, gnutls_privkey_t key);
} keystore_functions_t;
struct dnssec_keystore {
const keystore_functions_t *functions;
void *ctx;
};
int keystore_create(dnssec_keystore_t **store_ptr,
const keystore_functions_t *functions);
|