1*fcf3ce44SJohn Forte /*
2*fcf3ce44SJohn Forte  * CDDL HEADER START
3*fcf3ce44SJohn Forte  *
4*fcf3ce44SJohn Forte  * The contents of this file are subject to the terms of the
5*fcf3ce44SJohn Forte  * Common Development and Distribution License (the "License").
6*fcf3ce44SJohn Forte  * You may not use this file except in compliance with the License.
7*fcf3ce44SJohn Forte  *
8*fcf3ce44SJohn Forte  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
9*fcf3ce44SJohn Forte  * or http://www.opensolaris.org/os/licensing.
10*fcf3ce44SJohn Forte  * See the License for the specific language governing permissions
11*fcf3ce44SJohn Forte  * and limitations under the License.
12*fcf3ce44SJohn Forte  *
13*fcf3ce44SJohn Forte  * When distributing Covered Code, include this CDDL HEADER in each
14*fcf3ce44SJohn Forte  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
15*fcf3ce44SJohn Forte  * If applicable, add the following below this CDDL HEADER, with the
16*fcf3ce44SJohn Forte  * fields enclosed by brackets "[]" replaced with your own identifying
17*fcf3ce44SJohn Forte  * information: Portions Copyright [yyyy] [name of copyright owner]
18*fcf3ce44SJohn Forte  *
19*fcf3ce44SJohn Forte  * CDDL HEADER END
20*fcf3ce44SJohn Forte  */
21*fcf3ce44SJohn Forte /*
22*fcf3ce44SJohn Forte  * Copyright 2008 Sun Microsystems, Inc.  All rights reserved.
23*fcf3ce44SJohn Forte  * Use is subject to license terms.
24*fcf3ce44SJohn Forte  */
25*fcf3ce44SJohn Forte 
26*fcf3ce44SJohn Forte #ifndef	_RADIUS_PROTOCOL_H
27*fcf3ce44SJohn Forte #define	_RADIUS_PROTOCOL_H
28*fcf3ce44SJohn Forte 
29*fcf3ce44SJohn Forte #ifdef __cplusplus
30*fcf3ce44SJohn Forte extern "C" {
31*fcf3ce44SJohn Forte #endif
32*fcf3ce44SJohn Forte 
33*fcf3ce44SJohn Forte /* Packet type. RFC 2865 section 4. */
34*fcf3ce44SJohn Forte #define	RAD_ACCESS_REQ		1	/* Authentication Request */
35*fcf3ce44SJohn Forte #define	RAD_ACCESS_ACPT		2	/* Authentication Accepted */
36*fcf3ce44SJohn Forte #define	RAD_ACCESS_REJ		3	/* Authentication Rejected */
37*fcf3ce44SJohn Forte 
38*fcf3ce44SJohn Forte /* RADIUS Attribute Types. RFC 2865 section 5. */
39*fcf3ce44SJohn Forte #define	RAD_USER_NAME		1
40*fcf3ce44SJohn Forte #define	RAD_CHAP_PASSWORD	3
41*fcf3ce44SJohn Forte #define	RAD_CHAP_CHALLENGE	60
42*fcf3ce44SJohn Forte 
43*fcf3ce44SJohn Forte /* RFC 2865 Section 3. The Identifier field is one octet. */
44*fcf3ce44SJohn Forte #define	RAD_IDENTIFIER_LEN	1
45*fcf3ce44SJohn Forte 
46*fcf3ce44SJohn Forte /* RFC 2865 Section 5.3. The String field is 16 octets. */
47*fcf3ce44SJohn Forte #define	RAD_CHAP_PASSWD_STR_LEN	16
48*fcf3ce44SJohn Forte 
49*fcf3ce44SJohn Forte /* RFC 2865 Section 3. Authenticator field is 16 octets. */
50*fcf3ce44SJohn Forte #define	RAD_AUTHENTICATOR_LEN	16
51*fcf3ce44SJohn Forte 
52*fcf3ce44SJohn Forte /* RFC 2865 Section 5: 1-253 octets */
53*fcf3ce44SJohn Forte #define	MAX_RAD_ATTR_VALUE_LEN	253
54*fcf3ce44SJohn Forte 
55*fcf3ce44SJohn Forte /* RFC 2865 Section 3. Minimum length 20 octets. */
56*fcf3ce44SJohn Forte #define	MIN_RAD_PACKET_LEN	20
57*fcf3ce44SJohn Forte 
58*fcf3ce44SJohn Forte /* RFC 2865 Section 3. Maximum length 4096 octets. */
59*fcf3ce44SJohn Forte #define	MAX_RAD_PACKET_LEN	4096
60*fcf3ce44SJohn Forte 
61*fcf3ce44SJohn Forte /* Maximum RADIUS shared secret length (in fact there is no defined limit) */
62*fcf3ce44SJohn Forte #define	MAX_RAD_SHARED_SECRET_LEN	128
63*fcf3ce44SJohn Forte 
64*fcf3ce44SJohn Forte /* RFC 2865 Section 3. Minimum RADIUS shared secret length */
65*fcf3ce44SJohn Forte #define	MIN_RAD_SHARED_SECRET_LEN	16
66*fcf3ce44SJohn Forte 
67*fcf3ce44SJohn Forte /* Raw RADIUS packet. RFC 2865 section 3. */
68*fcf3ce44SJohn Forte typedef struct radius_packet {
69*fcf3ce44SJohn Forte 	uint8_t	code;		/* RADIUS code, section 3, RFC 2865 */
70*fcf3ce44SJohn Forte 	uint8_t	identifier;	/* 1 octet in length. RFC 2865 section 3 */
71*fcf3ce44SJohn Forte 	uint8_t	length[2];	/* 2 octets, or sizeof (u_short) */
72*fcf3ce44SJohn Forte 	uint8_t	authenticator[RAD_AUTHENTICATOR_LEN];
73*fcf3ce44SJohn Forte 	uint8_t	data[1];
74*fcf3ce44SJohn Forte } radius_packet_t;
75*fcf3ce44SJohn Forte 
76*fcf3ce44SJohn Forte /* Length of a RADIUS packet minus the payload */
77*fcf3ce44SJohn Forte #define	RAD_PACKET_HDR_LEN		20
78*fcf3ce44SJohn Forte 
79*fcf3ce44SJohn Forte #ifdef __cplusplus
80*fcf3ce44SJohn Forte }
81*fcf3ce44SJohn Forte #endif
82*fcf3ce44SJohn Forte 
83*fcf3ce44SJohn Forte #endif /* _RADIUS_PROTOCOL_H */
84