OLD | NEW |
1 // Copyright (c) 2013 The Chromium Authors. All rights reserved. | 1 // Copyright (c) 2013 The Chromium Authors. All rights reserved. |
2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
4 | 4 |
5 #ifndef NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ | 5 #ifndef NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ |
6 #define NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ | 6 #define NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ |
7 | 7 |
8 #include <string> | 8 #include <string> |
9 | 9 |
10 #include "base/strings/string_piece.h" | 10 #include "base/strings/string_piece.h" |
11 #include "net/base/net_export.h" | 11 #include "net/base/net_export.h" |
12 #include "net/quic/crypto/crypto_protocol.h" | 12 #include "net/quic/crypto/crypto_protocol.h" |
13 | 13 |
14 namespace net { | 14 namespace net { |
15 | 15 |
| 16 class QuicRandom; |
| 17 |
16 // KeyExchange is an abstract class that provides an interface to a | 18 // KeyExchange is an abstract class that provides an interface to a |
17 // key-exchange primitive. | 19 // key-exchange primitive. |
18 class NET_EXPORT_PRIVATE KeyExchange { | 20 class NET_EXPORT_PRIVATE KeyExchange { |
19 public: | 21 public: |
20 virtual ~KeyExchange() { } | 22 virtual ~KeyExchange() {} |
| 23 |
| 24 // NewKeyPair generates a new public, private key pair. The caller takes |
| 25 // ownership of the return value. (This is intended for servers that need to |
| 26 // generate forward-secure keys.) |
| 27 virtual KeyExchange* NewKeyPair(QuicRandom* rand) const = 0; |
21 | 28 |
22 // CalculateSharedKey computes the shared key between the local private key | 29 // CalculateSharedKey computes the shared key between the local private key |
23 // (which is implicitly known by a KeyExchange object) and a public value | 30 // (which is implicitly known by a KeyExchange object) and a public value |
24 // from the peer. | 31 // from the peer. |
25 virtual bool CalculateSharedKey(const base::StringPiece& peer_public_value, | 32 virtual bool CalculateSharedKey(const base::StringPiece& peer_public_value, |
26 std::string* shared_key) const = 0; | 33 std::string* shared_key) const = 0; |
27 | 34 |
28 // public_value returns the local public key which can be sent to a peer in | 35 // public_value returns the local public key which can be sent to a peer in |
29 // order to complete a key exchange. The returned StringPiece is a reference | 36 // order to complete a key exchange. The returned StringPiece is a reference |
30 // to a member of the KeyExchange and is only valid for as long as the | 37 // to a member of the KeyExchange and is only valid for as long as the |
31 // KeyExchange exists. | 38 // KeyExchange exists. |
32 virtual base::StringPiece public_value() const = 0; | 39 virtual base::StringPiece public_value() const = 0; |
33 | 40 |
34 // tag returns the tag value that identifies this key exchange function. | 41 // tag returns the tag value that identifies this key exchange function. |
35 virtual CryptoTag tag() const = 0; | 42 virtual QuicTag tag() const = 0; |
36 }; | 43 }; |
37 | 44 |
38 } // namespace net | 45 } // namespace net |
39 | 46 |
40 #endif // NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ | 47 #endif // NET_QUIC_CRYPTO_KEY_EXCHANGE_H_ |
OLD | NEW |