| OLD | NEW |
| 1 // Copyright 2013 The Chromium Authors. All rights reserved. | 1 // Copyright 2013 The Chromium Authors. All rights reserved. |
| 2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
| 3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
| 4 | 4 |
| 5 #ifndef NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ | 5 #ifndef NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
| 6 #define NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ | 6 #define NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
| 7 | 7 |
| 8 #include <string> | 8 #include <string> |
| 9 #include <vector> | 9 #include <vector> |
| 10 | 10 |
| (...skipping 21 matching lines...) Expand all Loading... |
| 32 | 32 |
| 33 // ProofVerifierChromium implements the QUIC ProofVerifier interface. | 33 // ProofVerifierChromium implements the QUIC ProofVerifier interface. |
| 34 // TODO(rtenneti): Add support for multiple requests for one ProofVerifier. | 34 // TODO(rtenneti): Add support for multiple requests for one ProofVerifier. |
| 35 class NET_EXPORT_PRIVATE ProofVerifierChromium : public ProofVerifier { | 35 class NET_EXPORT_PRIVATE ProofVerifierChromium : public ProofVerifier { |
| 36 public: | 36 public: |
| 37 ProofVerifierChromium(CertVerifier* cert_verifier, | 37 ProofVerifierChromium(CertVerifier* cert_verifier, |
| 38 const BoundNetLog& net_log); | 38 const BoundNetLog& net_log); |
| 39 virtual ~ProofVerifierChromium(); | 39 virtual ~ProofVerifierChromium(); |
| 40 | 40 |
| 41 // ProofVerifier interface | 41 // ProofVerifier interface |
| 42 virtual Status VerifyProof(const std::string& hostname, | 42 virtual Status VerifyProof(QuicVersion version, |
| 43 const std::string& hostname, |
| 43 const std::string& server_config, | 44 const std::string& server_config, |
| 44 const std::vector<std::string>& certs, | 45 const std::vector<std::string>& certs, |
| 45 const std::string& signature, | 46 const std::string& signature, |
| 46 std::string* error_details, | 47 std::string* error_details, |
| 47 scoped_ptr<ProofVerifyDetails>* details, | 48 scoped_ptr<ProofVerifyDetails>* details, |
| 48 ProofVerifierCallback* callback) OVERRIDE; | 49 ProofVerifierCallback* callback) OVERRIDE; |
| 49 | 50 |
| 50 private: | 51 private: |
| 51 enum State { | 52 enum State { |
| 52 STATE_NONE, | 53 STATE_NONE, |
| 53 STATE_VERIFY_CERT, | 54 STATE_VERIFY_CERT, |
| 54 STATE_VERIFY_CERT_COMPLETE, | 55 STATE_VERIFY_CERT_COMPLETE, |
| 55 }; | 56 }; |
| 56 | 57 |
| 57 int DoLoop(int last_io_result); | 58 int DoLoop(int last_io_result); |
| 58 void OnIOComplete(int result); | 59 void OnIOComplete(int result); |
| 59 int DoVerifyCert(int result); | 60 int DoVerifyCert(int result); |
| 60 int DoVerifyCertComplete(int result); | 61 int DoVerifyCertComplete(int result); |
| 61 | 62 |
| 62 bool VerifySignature(const std::string& signed_data, | 63 bool VerifySignature(QuicVersion version, |
| 64 const std::string& signed_data, |
| 63 const std::string& signature, | 65 const std::string& signature, |
| 64 const std::string& cert); | 66 const std::string& cert); |
| 65 | 67 |
| 66 // |cert_verifier_| and |verifier_| are used for verifying certificates. | 68 // |cert_verifier_| and |verifier_| are used for verifying certificates. |
| 67 CertVerifier* const cert_verifier_; | 69 CertVerifier* const cert_verifier_; |
| 68 scoped_ptr<SingleRequestCertVerifier> verifier_; | 70 scoped_ptr<SingleRequestCertVerifier> verifier_; |
| 69 | 71 |
| 70 // |hostname| specifies the hostname for which |certs| is a valid chain. | 72 // |hostname| specifies the hostname for which |certs| is a valid chain. |
| 71 std::string hostname_; | 73 std::string hostname_; |
| 72 | 74 |
| 73 scoped_ptr<ProofVerifierCallback> callback_; | 75 scoped_ptr<ProofVerifierCallback> callback_; |
| 74 scoped_ptr<ProofVerifyDetailsChromium> verify_details_; | 76 scoped_ptr<ProofVerifyDetailsChromium> verify_details_; |
| 75 std::string error_details_; | 77 std::string error_details_; |
| 76 | 78 |
| 77 // X509Certificate from a chain of DER encoded certificates. | 79 // X509Certificate from a chain of DER encoded certificates. |
| 78 scoped_refptr<X509Certificate> cert_; | 80 scoped_refptr<X509Certificate> cert_; |
| 79 | 81 |
| 80 State next_state_; | 82 State next_state_; |
| 81 | 83 |
| 82 BoundNetLog net_log_; | 84 BoundNetLog net_log_; |
| 83 | 85 |
| 84 DISALLOW_COPY_AND_ASSIGN(ProofVerifierChromium); | 86 DISALLOW_COPY_AND_ASSIGN(ProofVerifierChromium); |
| 85 }; | 87 }; |
| 86 | 88 |
| 87 } // namespace net | 89 } // namespace net |
| 88 | 90 |
| 89 #endif // NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ | 91 #endif // NET_QUIC_CRYPTO_PROOF_VERIFIER_CHROMIUM_H_ |
| OLD | NEW |