OLD | NEW |
(Empty) | |
| 1 // Copyright 2013 The Chromium Authors. All rights reserved. |
| 2 // Use of this source code is governed by a BSD-style license that can be |
| 3 // found in the LICENSE file. |
| 4 |
| 5 #ifndef NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
| 6 #define NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
| 7 |
| 8 #include <string> |
| 9 #include <vector> |
| 10 |
| 11 #include "base/basictypes.h" |
| 12 #include "base/compiler_specific.h" |
| 13 #include "base/memory/scoped_ptr.h" |
| 14 #include "net/base/completion_callback.h" |
| 15 #include "net/base/net_export.h" |
| 16 #include "net/base/net_log.h" |
| 17 #include "net/cert/cert_verify_result.h" |
| 18 #include "net/cert/x509_certificate.h" |
| 19 #include "net/quic/crypto/proof_verifier.h" |
| 20 |
| 21 namespace net { |
| 22 |
| 23 class BoundNetLog; |
| 24 class CertVerifier; |
| 25 class CertVerifyResult; |
| 26 class SingleRequestCertVerifier; |
| 27 class X509Certificate; |
| 28 |
| 29 // ProofVerifierChromium implements the QUIC ProofVerifier interface. |
| 30 // TODO(rtenneti): Add support for multiple requests for one ProofVerifier. |
| 31 class NET_EXPORT_PRIVATE ProofVerifierChromium : public ProofVerifier { |
| 32 public: |
| 33 explicit ProofVerifierChromium(CertVerifier* cert_verifier, |
| 34 const BoundNetLog& net_log); |
| 35 virtual ~ProofVerifierChromium(); |
| 36 |
| 37 // ProofVerifier interface |
| 38 virtual int VerifyProof(const std::string& hostname, |
| 39 const std::string& server_config, |
| 40 const std::vector<std::string>& certs, |
| 41 const std::string& signature, |
| 42 uint64 generation_counter, |
| 43 const CompletionCallback& callback) OVERRIDE; |
| 44 virtual std::string error_details() const OVERRIDE; |
| 45 virtual uint64 generation_counter() const OVERRIDE; |
| 46 |
| 47 private: |
| 48 enum State { |
| 49 STATE_NONE, |
| 50 STATE_VERIFY_CERT, |
| 51 STATE_VERIFY_CERT_COMPLETE, |
| 52 }; |
| 53 |
| 54 int DoLoop(int last_io_result); |
| 55 void OnIOComplete(int result); |
| 56 int DoVerifyCert(int result); |
| 57 int DoVerifyCertComplete(int result); |
| 58 |
| 59 bool VerifySignature(const std::string& signed_data, |
| 60 const std::string& signature, |
| 61 const std::string& cert); |
| 62 |
| 63 // |cert_verifier_| and |verifier_| are used for verifying certificates. |
| 64 CertVerifier* const cert_verifier_; |
| 65 scoped_ptr<SingleRequestCertVerifier> verifier_; |
| 66 |
| 67 // |hostname| specifies the hostname for which |certs| is a valid chain. |
| 68 std::string hostname_; |
| 69 |
| 70 CompletionCallback callback_; |
| 71 |
| 72 // The result of certificate verification. |
| 73 CertVerifyResult cert_verify_result_; |
| 74 std::string error_details_; |
| 75 |
| 76 // X509Certificate from a chain of DER encoded certificates. |
| 77 scoped_refptr<X509Certificate> cert_; |
| 78 |
| 79 // |generation_counter| passed to VerifyProof call. |
| 80 uint64 generation_counter_; |
| 81 |
| 82 State next_state_; |
| 83 |
| 84 BoundNetLog net_log_; |
| 85 |
| 86 DISALLOW_COPY_AND_ASSIGN(ProofVerifierChromium); |
| 87 }; |
| 88 |
| 89 } // namespace net |
| 90 |
| 91 #endif // NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
OLD | NEW |