1 /*****************************************************************************
2 * update.h: VLC PGP update private API
3 *****************************************************************************
4 * Copyright © 2007-2008 the VideoLAN team
6 * Authors: Rafaël Carré <funman@videolanorg>
8 * This program is free software; you can redistribute it and/or modify
9 * it under the terms of the GNU General Public License as published by
10 * the Free Software Foundation; either release 2 of the License, or
11 * (at your option) any later release.
13 * This program is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
16 * GNU General Public License for more details.
18 * You should have received a copy of the GNU General Public License
19 * along with this program; if not, write to the Free Software
20 * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111, USA.
21 *****************************************************************************/
23 /* Go reading the rfc 4880 ! NOW !! */
27 * When PGP-signing a file, we only sign a SHA-1 hash of this file
28 * The DSA key size requires that we use an algorithm which produce
29 * a 160 bits long hash
30 * An alternative is RIPEMD160 , which you can use by giving the option
31 * --digest-algo RIPEMD160 to GnuPG
33 * As soon as SHA-1 is broken, this method is not secure anymore, because an
34 * attacker could generate a file with the same SHA-1 hash.
36 * Whenever this happens, we need to use another algorithm / type of key.
40 enum /* Public key algorithms */
42 /* we will only use DSA public keys */
43 PUBLIC_KEY_ALGO_DSA = 0x11
46 enum /* Digest algorithms */
48 /* and DSA use SHA-1 digest */
49 DIGEST_ALGO_SHA1 = 0x02
52 enum /* Packet types */
54 SIGNATURE_PACKET = 0x02,
55 PUBLIC_KEY_PACKET = 0x06,
59 enum /* Signature types */
61 BINARY_SIGNATURE = 0x00,
62 TEXT_SIGNATURE = 0x01,
64 /* Public keys signatures */
65 GENERIC_KEY_SIGNATURE = 0x10, /* No assumption of verification */
66 PERSONA_KEY_SIGNATURE = 0x11, /* No verification has been made */
67 CASUAL_KEY_SIGNATURE = 0x12, /* Some casual verification */
68 POSITIVE_KEY_SIGNATURE = 0x13 /* Substantial verification */
71 enum /* Signature subpacket types */
73 ISSUER_SUBPACKET = 0x10
76 struct public_key_packet_t
77 { /* a public key packet (DSA/SHA-1) is 418 bytes */
79 uint8_t version; /* we use only version 4 */
80 uint8_t timestamp[4]; /* creation time of the key */
81 uint8_t algo; /* we only use DSA */
82 /* the multi precision integers, with their 2 bytes length header */
89 /* used for public key and file signatures */
90 struct signature_packet_t
92 uint8_t version; /* 3 or 4 */
95 uint8_t public_key_algo; /* DSA only */
96 uint8_t digest_algo; /* SHA-1 only */
98 uint8_t hash_verification[2];
99 uint8_t issuer_longid[8];
101 union /* version specific data */
105 uint8_t hashed_data_len[2]; /* scalar number */
106 uint8_t *hashed_data; /* hashed_data_len bytes */
107 uint8_t unhashed_data_len[2]; /* scalar number */
108 uint8_t *unhashed_data; /* unhashed_data_len bytes */
112 uint8_t hashed_data_len; /* MUST be 5 */
113 uint8_t timestamp[4]; /* 4 bytes scalar number */
117 /* The part below is made of consecutive MPIs, their number and size being
118 * public-key-algorithm dependent.
120 * Since we use DSA signatures only, there is 2 integers, r & s, made of:
121 * 2 bytes for the integer length (scalar number)
122 * 160 bits (20 bytes) for the integer itself
124 * Note: the integers may be less than 160 significant bits
130 typedef struct public_key_packet_t public_key_packet_t;
131 typedef struct signature_packet_t signature_packet_t;
135 uint8_t longid[8]; /* Long id */
136 uint8_t *psz_username; /* USER ID */
138 public_key_packet_t key; /* Public key packet */
140 signature_packet_t sig; /* Signature packet, by the embedded key */
143 typedef struct public_key_t public_key_t;
146 * Non blocking binary download
153 } update_download_thread_t;
156 * Non blocking update availability verification
162 void (*pf_callback)( void *, bool );
164 } update_check_thread_t;
166 * The update object. Stores (and caches) all information relative to updates
170 libvlc_int_t *p_libvlc;
172 struct update_release_t release; ///< Release (version)
173 public_key_t *p_pkey;
174 update_download_thread_t *p_download;
175 update_check_thread_t *p_check;