/
usr
/
include
/
isc
/
/usr/include/isc
mkdir
upload
Name
Size
Mode
Actions
app.h
10535
0644
edit
dl
rm
assertions.h
3314
0644
edit
dl
rm
atomic.h
4258
0644
edit
dl
rm
base64.h
2967
0644
edit
dl
rm
bind9.h
1185
0644
edit
dl
rm
bitstring.h
4478
0644
edit
dl
rm
boolean.h
1212
0644
edit
dl
rm
buffer.h
22941
0644
edit
dl
rm
bufferlist.h
1979
0644
edit
dl
rm
commandline.h
1823
0644
edit
dl
rm
condition.h
2011
0644
edit
dl
rm
counter.h
2328
0644
edit
dl
rm
dir.h
2569
0644
edit
dl
rm
entropy.h
9444
0644
edit
dl
rm
error.h
1871
0644
edit
dl
rm
event.h
3360
0644
edit
dl
rm
eventclass.h
1915
0644
edit
dl
rm
file.h
9259
0644
edit
dl
rm
formatcheck.h
1423
0644
edit
dl
rm
fsaccess.h
7954
0644
edit
dl
rm
hash.h
5973
0644
edit
dl
rm
heap.h
5754
0644
edit
dl
rm
hex.h
2911
0644
edit
dl
rm
hmacmd5.h
1964
0644
edit
dl
rm
httpd.h
2029
0644
edit
dl
rm
int.h
1873
0644
edit
dl
rm
interfaceiter.h
3631
0644
edit
dl
rm
iterated_hash.h
1512
0644
edit
dl
rm
keyboard.h
1510
0644
edit
dl
rm
lang.h
1158
0644
edit
dl
rm
lex.h
9653
0644
edit
dl
rm
lfsr.h
3480
0644
edit
dl
rm
lib.h
1594
0644
edit
dl
rm
list.h
5887
0644
edit
dl
rm
log.h
28964
0644
edit
dl
rm
magic.h
1471
0644
edit
dl
rm
md5.h
2527
0644
edit
dl
rm
mem.h
21767
0644
edit
dl
rm
msgcat.h
3256
0644
edit
dl
rm
msgs.h
8862
0644
edit
dl
rm
mutex.h
4061
0644
edit
dl
rm
mutexblock.h
1902
0644
edit
dl
rm
namespace.h
7184
0644
edit
dl
rm
net.h
9269
0644
edit
dl
rm
netaddr.h
4917
0644
edit
dl
rm
netdb.h
1392
0644
edit
dl
rm
offset.h
1898
0644
edit
dl
rm
once.h
1510
0644
edit
dl
rm
ondestroy.h
3327
0644
edit
dl
rm
os.h
1191
0644
edit
dl
rm
parseint.h
2058
0644
edit
dl
rm
platform.h
8623
0644
edit
dl
rm
print.h
2449
0644
edit
dl
rm
quota.h
2873
0644
edit
dl
rm
radix.h
7058
0644
edit
dl
rm
random.h
1826
0644
edit
dl
rm
ratelimiter.h
3564
0644
edit
dl
rm
refcount.h
6203
0644
edit
dl
rm
region.h
2497
0644
edit
dl
rm
resource.h
3396
0644
edit
dl
rm
result.h
4814
0644
edit
dl
rm
resultclass.h
2077
0644
edit
dl
rm
rwlock.h
3843
0644
edit
dl
rm
serial.h
1959
0644
edit
dl
rm
sha1.h
1806
0644
edit
dl
rm
sha2.h
5861
0644
edit
dl
rm
sockaddr.h
6578
0644
edit
dl
rm
socket.h
32969
0644
edit
dl
rm
stdio.h
2243
0644
edit
dl
rm
stdlib.h
1221
0644
edit
dl
rm
stdtime.h
1880
0644
edit
dl
rm
string.h
6404
0644
edit
dl
rm
symtab.h
4748
0644
edit
dl
rm
syslog.h
1373
0644
edit
dl
rm
task.h
19753
0644
edit
dl
rm
taskpool.h
3787
0644
edit
dl
rm
thread.h
1878
0644
edit
dl
rm
time.h
8045
0644
edit
dl
rm
timer.h
11285
0644
edit
dl
rm
types.h
5929
0644
edit
dl
rm
util.h
7934
0644
edit
dl
rm
version.h
1207
0644
edit
dl
rm
xml.h
1556
0644
edit
dl
rm
Edit:
/usr/include/isc/entropy.h
(9444B)
/* * Copyright (C) 2004-2007, 2009 Internet Systems Consortium, Inc. ("ISC") * Copyright (C) 2000, 2001 Internet Software Consortium. * * Permission to use, copy, modify, and/or distribute this software for any * purpose with or without fee is hereby granted, provided that the above * copyright notice and this permission notice appear in all copies. * * THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH * REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY * AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT, * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM * LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE * OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR * PERFORMANCE OF THIS SOFTWARE. */ /* $Id: entropy.h,v 1.35 2009-10-19 02:37:08 marka Exp $ */ #ifndef ISC_ENTROPY_H #define ISC_ENTROPY_H 1 /***** ***** Module Info *****/ /*! \file isc/entropy.h * \brief The entropy API * * \li MP: * The entropy object is locked internally. All callbacks into * application-provided functions (for setup, gathering, and * shutdown of sources) are guaranteed to be called with the * entropy API lock held. This means these functions are * not permitted to call back into the entropy API. * * \li Reliability: * No anticipated impact. * * \li Resources: * A buffer, used as an entropy pool. * * \li Security: * While this code is believed to implement good entropy gathering * and distribution, it has not been reviewed by a cryptographic * expert. * Since the added entropy is only as good as the sources used, * this module could hand out bad data and never know it. * * \li Standards: * None. */ /*** *** Imports ***/ #include <stdio.h> #include <isc/lang.h> #include <isc/types.h> /*@{*/ /*% Entropy callback function. */ typedef isc_result_t (*isc_entropystart_t)(isc_entropysource_t *source, void *arg, isc_boolean_t blocking); typedef isc_result_t (*isc_entropyget_t)(isc_entropysource_t *source, void *arg, isc_boolean_t blocking); typedef void (*isc_entropystop_t)(isc_entropysource_t *source, void *arg); /*@}*/ /*** *** Flags. ***/ /*! * \brief * Extract only "good" data; return failure if there is not enough * data available and there are no sources which we can poll to get * data, or those sources are empty. * * */ #define ISC_ENTROPY_GOODONLY 0x00000001U /*! * \brief * Extract as much good data as possible, but if there isn't enough * at hand, return what is available. This flag only makes sense * when used with _GOODONLY. */ #define ISC_ENTROPY_PARTIAL 0x00000002U /*! * \brief * Block the task until data is available. This is contrary to the * ISC task system, where tasks should never block. However, if * this is a special purpose application where blocking a task is * acceptable (say, an offline zone signer) this flag may be set. * This flag only makes sense when used with _GOODONLY, and will * block regardless of the setting for _PARTIAL. */ #define ISC_ENTROPY_BLOCKING 0x00000004U /*! * \brief * Estimate the amount of entropy contained in the sample pool. * If this is not set, the source will be gathered and periodically * mixed into the entropy pool, but no increment in contained entropy * will be assumed. This flag only makes sense on sample sources. */ #define ISC_ENTROPYSOURCE_ESTIMATE 0x00000001U /* * For use with isc_entropy_usebestsource(). */ /*! * \brief * Use the keyboard as the only entropy source. */ #define ISC_ENTROPY_KEYBOARDYES 1 /*! * \brief * Never use the keyboard as an entropy source. */ #define ISC_ENTROPY_KEYBOARDNO 2 /*! * \brief * Use the keyboard as an entropy source only if opening the * random device fails. */ #define ISC_ENTROPY_KEYBOARDMAYBE 3 ISC_LANG_BEGINDECLS /*** *** Functions ***/ isc_result_t isc_entropy_create(isc_mem_t *mctx, isc_entropy_t **entp); /*!< * \brief Create a new entropy object. */ void isc_entropy_attach(isc_entropy_t *ent, isc_entropy_t **entp); /*!< * Attaches to an entropy object. */ void isc_entropy_detach(isc_entropy_t **entp); /*!< * \brief Detaches from an entropy object. */ isc_result_t isc_entropy_createfilesource(isc_entropy_t *ent, const char *fname); /*!< * \brief Create a new entropy source from a file. * * The file is assumed to contain good randomness, and will be mixed directly * into the pool with every byte adding 8 bits of entropy. * * The file will be put into non-blocking mode, so it may be a device file, * such as /dev/random. /dev/urandom should not be used here if it can * be avoided, since it will always provide data even if it isn't good. * We will make as much pseudorandom data as we need internally if our * caller asks for it. * * If we hit end-of-file, we will stop reading from this source. Callers * who require strong random data will get failure when our pool drains. * The file will never be opened/read again once EOF is reached. */ void isc_entropy_destroysource(isc_entropysource_t **sourcep); /*!< * \brief Removes an entropy source from the entropy system. */ isc_result_t isc_entropy_createsamplesource(isc_entropy_t *ent, isc_entropysource_t **sourcep); /*!< * \brief Create an entropy source that consists of samples. Each sample is * added to the source via isc_entropy_addsamples(), below. */ isc_result_t isc_entropy_createcallbacksource(isc_entropy_t *ent, isc_entropystart_t start, isc_entropyget_t get, isc_entropystop_t stop, void *arg, isc_entropysource_t **sourcep); /*!< * \brief Create an entropy source that is polled via a callback. * * This would * be used when keyboard input is used, or a GUI input method. It can * also be used to hook in any external entropy source. * * Samples are added via isc_entropy_addcallbacksample(), below. * _addcallbacksample() is the only function which may be called from * within an entropy API callback function. */ void isc_entropy_stopcallbacksources(isc_entropy_t *ent); /*!< * \brief Call the stop functions for callback sources that have had their * start functions called. */ /*@{*/ isc_result_t isc_entropy_addcallbacksample(isc_entropysource_t *source, isc_uint32_t sample, isc_uint32_t extra); isc_result_t isc_entropy_addsample(isc_entropysource_t *source, isc_uint32_t sample, isc_uint32_t extra); /*!< * \brief Add a sample to the sample source. * * The sample MUST be a timestamp * that increases over time, with the exception of wrap-around for * extremely high resolution timers which will quickly wrap-around * a 32-bit integer. * * The "extra" parameter is used only to add a bit more unpredictable * data. It is not used other than included in the hash of samples. * * When in an entropy API callback function, _addcallbacksource() must be * used. At all other times, _addsample() must be used. */ /*@}*/ isc_result_t isc_entropy_getdata(isc_entropy_t *ent, void *data, unsigned int length, unsigned int *returned, unsigned int flags); /*!< * \brief Extract data from the entropy pool. This may load the pool from various * sources. * * Do this by stiring the pool and returning a part of hash as randomness. * Note that no secrets are given away here since parts of the hash are * xored together before returned. * * Honor the request from the caller to only return good data, any data, * etc. */ void isc_entropy_putdata(isc_entropy_t *ent, void *data, unsigned int length, isc_uint32_t entropy); /*!< * \brief Add "length" bytes in "data" to the entropy pool, incrementing the * pool's entropy count by "entropy." * * These bytes will prime the pseudorandom portion even if no entropy is * actually added. */ void isc_entropy_stats(isc_entropy_t *ent, FILE *out); /*!< * \brief Dump some (trivial) stats to the stdio stream "out". */ unsigned int isc_entropy_status(isc_entropy_t *end); /* * Returns the number of bits the pool currently contains. This is just * an estimate. */ isc_result_t isc_entropy_usebestsource(isc_entropy_t *ectx, isc_entropysource_t **source, const char *randomfile, int use_keyboard); /*!< * \brief Use whatever source of entropy is best. * * Notes: *\li If "randomfile" is not NULL, open it with * isc_entropy_createfilesource(). * *\li If "randomfile" is NULL and the system's random device was detected * when the program was configured and built, open that device with * isc_entropy_createfilesource(). * *\li If "use_keyboard" is #ISC_ENTROPY_KEYBOARDYES, then always open * the keyboard as an entropy source (possibly in addition to * "randomfile" or the random device). * *\li If "use_keyboard" is #ISC_ENTROPY_KEYBOARDMAYBE, open the keyboard only * if opening the random file/device fails. A message will be * printed describing the need for keyboard input. * *\li If "use_keyboard" is #ISC_ENTROPY_KEYBOARDNO, the keyboard will * never be opened. * * Returns: *\li #ISC_R_SUCCESS if at least one source of entropy could be started. * *\li #ISC_R_NOENTROPY if use_keyboard is #ISC_ENTROPY_KEYBOARDNO and * there is no random device pathname compiled into the program. * *\li A return code from isc_entropy_createfilesource() or * isc_entropy_createcallbacksource(). */ ISC_LANG_ENDDECLS #endif /* ISC_ENTROPY_H */
Save
cmd:
run