23#if COAP_OSCORE_SUPPORT
26#define AAD_BUF_LEN 200
31#if COAP_CLIENT_SUPPORT
39 coap_log_warn(
"OSCORE: Recipient ID must be defined for a client\n");
47 if (id_context ==
NULL) {
58 osc_ctx = coap_oscore_init(session->
context, oscore_conf);
59 if (osc_ctx ==
NULL) {
63 session->oscore_encryption = 1;
153 oscore_conf, app_data, callback, ws_host);
172 app_data, callback, ws_host);
214 oscore_conf, app_data, callback, ws_host);
233 app_data, callback, ws_host);
245#if COAP_SERVER_SUPPORT
264 osc_ctx = coap_oscore_init(context, oscore_conf);
278 uint8_t option_value_buffer[15];
286 memset(&uri, 0,
sizeof(uri));
308 sizeof(option_value_buffer),
310 option_value_buffer))
343#if COAP_MAX_LOGGING_LEVEL < _COAP_LOG_OSCORE
398 uint8_t pdu_code = pdu->
code;
401 uint8_t *ciphertext_buffer =
NULL;
402 size_t ciphertext_len = 0;
403 uint8_t aad_buffer[AAD_BUF_LEN];
404 uint8_t nonce_buffer[13];
410 uint8_t group_flag = 0;
412 int doing_observe = 0;
413 uint32_t observe_value = 0;
416 uint8_t external_aad_buffer[200];
418 uint8_t oscore_option[48];
419 size_t oscore_option_len;
446 rcp_ctx = session->recipient_ctx;
458 if (association ==
NULL)
470 if (coap_request || doing_observe ||
472 uint8_t partial_iv_buffer[8];
473 size_t partial_iv_len;
476 sizeof(partial_iv_buffer),
478 if (snd_ctx->
seq == 0) {
480 partial_iv_buffer[0] =
'\000';
483 partial_iv.
s = partial_iv_buffer;
484 partial_iv.
length = partial_iv_len;
495 if (coap_request || doing_observe ||
506 nonce.
s = nonce_buffer;
576 external_aad.
s = external_aad_buffer;
583 sizeof(external_aad_buffer));
592 assert(aad.
length < AAD_BUF_LEN);
606 if (plain_pdu ==
NULL)
617 switch (opt_iter.
number) {
696 dump_cose(cose,
"Pre encrypt");
699 if (ciphertext_buffer ==
NULL)
704 if ((
int)ciphertext_len <= 0) {
705 coap_log_warn(
"OSCORE: Encryption Failure, result code: %d \n",
706 (
int)ciphertext_len);
709 assert(ciphertext_len < OSCORE_CRYPTO_BUFFER_SIZE);
719 if (!
coap_add_data(osc_pdu, ciphertext_len, ciphertext_buffer))
723 ciphertext_buffer =
NULL;
728 if (association && association->
is_observe == 0)
774 if (doing_observe && observe_value == 1) {
816 if (ciphertext_buffer)
827 const char *diagnostic,
830 int encrypt_oscore) {
833 int oscore_encryption = session->oscore_encryption;
834 unsigned char buf[4];
841 token.length + 2 + 8 +
842 (diagnostic ? strlen(diagnostic) : 0));
848 }
else if (kid_context ==
NULL) {
855 coap_add_data(err_pdu, strlen(diagnostic), (
const uint8_t *)diagnostic);
856 session->oscore_encryption = encrypt_oscore;
858 if ((echo_data || kid_context) && encrypt_oscore) {
866 session->oscore_encryption = 0;
875 session->oscore_encryption = oscore_encryption;
884 if (oscore_ctx ==
NULL) {
907 const uint8_t *osc_value;
913 uint8_t aad_buffer[AAD_BUF_LEN];
914 uint8_t nonce_buffer[13];
918 int got_resp_piv = 0;
919 int doing_resp_observe = 0;
927 uint8_t external_aad_buffer[100];
930#if COAP_CLIENT_SUPPORT
965 if (decrypt_pdu ==
NULL) {
983 switch (opt_iter.
number) {
1022 uint64_t incoming_seq;
1029 coap_log_warn(
"OSCORE: OSCORE Option cannot be decoded.\n");
1030 build_and_send_error_pdu(session,
1033 "Failed to decode COSE",
1052 session->oscore_r2 != 0 ? (uint8_t *)&session->oscore_r2 :
NULL,
1062 if (kid_context.
length > length)
1069 kid_context.
s = ptr;
1072 if (session->oscore_r2 != 0) {
1091 if (osc_ctx ==
NULL)
1111 build_and_send_error_pdu(session,
1114 "Security context not found",
1134 build_and_send_error_pdu(session,
1147 }
else if (session->
context->oscore_update_seq_num_cb !=
NULL) {
1162 coap_log_warn(
"OSCORE: OSCORE Option cannot be decoded.\n");
1175#if COAP_CLIENT_SUPPORT
1186 if (kid_context.
length > length)
1193 kid_context.
s = ptr;
1224 coap_log_crit(
"OSCORE: Security Context association not found\n");
1259 external_aad.
s = external_aad_buffer;
1265 external_aad_buffer,
1266 sizeof(external_aad_buffer));
1274 sizeof(aad_buffer));
1275 assert(aad.
length < AAD_BUF_LEN);
1287 nonce.
s = nonce_buffer;
1298 association->
nonce =
1347 coap_log_warn(
"OSCORE Replay protection, SEQ larger than SEQ_MAX.\n");
1359 nonce.
s = nonce_buffer;
1363#ifdef OSCORE_EXTRA_DEBUG
1364 dump_cose(cose,
"!req post set nonce");
1396#ifdef OSCORE_EXTRA_DEBUG
1397 dump_cose(cose,
"!req pre aad");
1399 external_aad.
s = external_aad_buffer;
1405 external_aad_buffer,
1406 sizeof(external_aad_buffer));
1414 sizeof(aad_buffer));
1415 assert(aad.
length < AAD_BUF_LEN);
1417#ifdef OSCORE_EXTRA_DEBUG
1418 dump_cose(cose,
"!req post set aad");
1433 st_encrypt = pdu->
data;
1435 if (encrypt_len <= 0) {
1449 if (plain_pdu ==
NULL) {
1470 plain_pdu->
used_size = encrypt_len - tag_len;
1472 dump_cose(cose,
"Pre decrypt");
1475 if (pltxt_size <= 0) {
1476 coap_log_warn(
"OSCORE: Decryption Failure, result code: %d \n",
1479 build_and_send_error_pdu(session,
1482 "Decryption failed",
1496 assert((
size_t)pltxt_size < pdu->alloc_size + pdu->
max_hdr_size);
1513 coap_prng_lkd(&session->oscore_r2,
sizeof(session->oscore_r2));
1514 memcpy(kc->
s, &session->oscore_r2,
sizeof(session->oscore_r2));
1515 memcpy(&kc->
s[
sizeof(session->oscore_r2)],
1522 oscore_r2.
length =
sizeof(session->oscore_r2);
1523 oscore_r2.
s = (
const uint8_t *)&session->oscore_r2;
1525 build_and_send_error_pdu(session,
1534#if COAP_CLIENT_SUPPORT
1541 coap_log_warn(
"OSCORE Appendix B.2: Expected 4.01 response\n");
1579 if (!session->b_2_retransmit_token) {
1583 if (coap_retransmit_oscore_pdu(session, sent_pdu,
NULL) ==
1591#if COAP_SERVER_SUPPORT
1603 build_and_send_error_pdu(session,
1612 if (session->
context->oscore_update_seq_num_cb !=
NULL) {
1632 build_and_send_error_pdu(session,
1652 decrypt_pdu->
code = plain_pdu->
token[0];
1660 switch (opt_iter.
number) {
1664 if (!coap_request) {
1678 doing_resp_observe = 1;
1701 if (!coap_request && !doing_resp_observe) {
1736 if (session->b_2_retransmit_token) {
1738 session->b_2_retransmit_token->s);
1740 session->b_2_retransmit_token =
NULL;
1743#if COAP_CLIENT_SUPPORT
1756 sent_pdu = lg_crcv->sent_pdu;
1764 if (coap_retransmit_oscore_pdu(session, sent_pdu, opt) !=
COAP_INVALID_MID) {
1765 session->doing_b_1_2 = 1;
1769 }
else if (session->doing_b_1_2) {
1774 coap_update_token(decrypt_pdu, lg_crcv->app_token->length, lg_crcv->app_token->s);
1777 session->doing_b_1_2 = 0;
1780 if (association && association->
is_observe == 0)
1787 if (association && association->
is_observe == 0)
1795 COAP_ENC_ASCII = 0x001,
1796 COAP_ENC_HEX = 0x002,
1797 COAP_ENC_CONFIG = 0x0200,
1798 COAP_ENC_INTEGER = 0x400,
1799 COAP_ENC_TEXT = 0x800,
1800 COAP_ENC_BOOL = 0x1000,
1801 COAP_ENC_UNSIGNED64 = 0x2000,
1803} coap_oscore_coding_t;
1806#define TEXT_MAPPING(t, v) \
1807 { { sizeof(#t)-1, (const uint8_t *)#t }, v }
1809static struct coap_oscore_encoding_t {
1811 coap_oscore_coding_t encoding;
1812} oscore_encoding[] = {
1813 TEXT_MAPPING(ascii, COAP_ENC_ASCII),
1814 TEXT_MAPPING(hex, COAP_ENC_HEX),
1815 TEXT_MAPPING(config, COAP_ENC_CONFIG),
1816 TEXT_MAPPING(integer, COAP_ENC_INTEGER),
1817 TEXT_MAPPING(unsigned64, COAP_ENC_UNSIGNED64),
1818 TEXT_MAPPING(text, COAP_ENC_TEXT),
1819 TEXT_MAPPING(
bool, COAP_ENC_BOOL),
1820 {{0,
NULL}, COAP_ENC_LAST}
1824 coap_oscore_coding_t encoding;
1825 const char *encoding_name;
1828 uint64_t value_int64;
1839hex_to_char(
char c, uint8_t *value) {
1840 if (
'a' <= c && c <=
'f') {
1841 *value = c -
'a' + 10;
1842 }
else if (
'A' <= c && c <=
'F') {
1843 *value = c -
'A' + 10;
1844 }
else if (
'0' <= c && c <=
'9') {
1855parse_hex_bin(
const char *begin,
const char *end) {
1863 for (i = 0; (i < (size_t)(end - begin)); i++) {
1864 while ((i < (
size_t)(end - begin)) &&
1865 (begin[i] ==
'\r' || begin[i] ==
'\n' || begin[i] ==
' ')) {
1868 if (i == (
size_t)(end - begin))
1870 if (isxdigit((uint8_t)begin[i])) {
1873 if (!hex_to_char(begin[i], &value)) {
1876 binary->
s[o] = value << 4;
1878 while ((i < (
size_t)(end - begin)) &&
1879 (begin[i] ==
'\r' || begin[i] ==
'\n' || begin[i] ==
' ')) {
1882 if (i == (
size_t)(end - begin))
1884 if (!hex_to_char(begin[i], &value)) {
1887 binary->
s[o++] += value;
1892 if (i != (
size_t)(end - begin))
1908get_split_entry(
const char **start,
1911 oscore_value_t *value,
1913 const char *begin = *start;
1914 const char *keep_start = *start;
1924 kend = end = memchr(begin,
'\n', size);
1929 if ((tend = memchr(begin,
'"', end - begin))) {
1931 if (!memchr(tend + 1,
'"', end - tend -1)) {
1933 kend = end = memchr(end,
'"', size - (end - begin));
1936 kend = end = memchr(kend,
'\n', size - (kend - begin));
1944 if (end > begin && end[-1] ==
'\r')
1947 if (begin[0] ==
'#' || (end - begin) == 0) {
1949 size -= kend - begin + 1;
1951 keep_start = *start;
1956 split = memchr(begin,
',', end - begin);
1960 keyword->
s = (
const uint8_t *)begin;
1961 keyword->
length = split - begin;
1964 if ((end - begin) == 0)
1967 split = memchr(begin,
',', end - begin);
1971 for (i = 0; oscore_encoding[i].name.s; i++) {
1975 value->encoding = oscore_encoding[i].encoding;
1976 value->encoding_name = (
const char *)oscore_encoding[i].name.
s;
1980 if (oscore_encoding[i].name.s ==
NULL)
1984 if ((end - begin) == 0)
1987 if (value->encoding == COAP_ENC_CONFIG && begin[0] ==
'\'') {
1988 split = memchr(&begin[1],
'\'', size - (begin - keep_start) - 1);
1991 end = memchr(split,
'\n', size - (split - keep_start));
1998 if (begin[0] ==
'"') {
1999 split = memchr(&begin[1],
'"', end - split - 1);
2006 switch (value->encoding) {
2007 case COAP_ENC_CONFIG:
2008 case COAP_ENC_ASCII:
2009 value->u.value_bin =
2011 if (value->u.value_bin ==
NULL)
2016 value->u.value_bin = parse_hex_bin(begin, end);
2017 if (value->u.value_bin ==
NULL)
2020 case COAP_ENC_INTEGER:
2021 value->u.value_int = atoi(begin);
2023 case COAP_ENC_UNSIGNED64: {
2024 value->u.value_int64 = strtoull(begin,
NULL, 10);
2028 value->u.value_str.s = (
const uint8_t *)begin;
2029 value->u.value_str.length = end - begin;
2032 len = (size_t)(end - begin);
2033 if (len == 4 && memcmp(
"true", begin, len) == 0)
2034 value->u.value_int = 1;
2035 else if (len == 5 && memcmp(
"false", begin, len) == 0)
2036 value->u.value_int = 0;
2047 coap_log_warn(
"oscore_conf: Unrecognized configuration entry '%.*s'\n",
2055#define CONFIG_ENTRY(n, e, t) \
2056 { { sizeof(#n)-1, (const uint8_t *)#n }, e, \
2057 offsetof(coap_oscore_conf_t, n), t }
2059#undef CONFIG_SND_ENTRY
2060#define CONFIG_SND_ENTRY(n, e, t) \
2061 { { sizeof(#n)-1, (const uint8_t *)#n }, e, \
2062 offsetof(coap_oscore_snd_conf_t, n), t }
2064#undef CONFIG_RCP_ENTRY
2065#define CONFIG_RCP_ENTRY(n, e, t) \
2066 { { sizeof(#n)-1, (const uint8_t *)#n }, e, \
2067 offsetof(coap_oscore_rcp_conf_t, n), t }
2069#undef CONFIG_DUMMY_ENTRY
2070#define CONFIG_DUMMY_ENTRY(n, e, t) \
2071 { { sizeof(#n)-1, (const uint8_t *)#n }, e, 0, t }
2073typedef struct oscore_text_mapping_t {
2076} oscore_text_mapping_t;
2079static oscore_text_mapping_t text_aead_alg[] = {
2085static oscore_text_mapping_t text_hkdf_alg[] = {
2090typedef struct oscore_config_t {
2092 coap_oscore_coding_t encoding;
2094 oscore_text_mapping_t *text_mapping;
2097static oscore_config_t oscore_config[] = {
2098 CONFIG_ENTRY(aead_alg, COAP_ENC_INTEGER | COAP_ENC_TEXT, text_aead_alg),
2099 CONFIG_ENTRY(hkdf_alg, COAP_ENC_INTEGER | COAP_ENC_TEXT, text_hkdf_alg),
2100 CONFIG_ENTRY(master_secret, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2101 CONFIG_ENTRY(master_salt, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2102 CONFIG_ENTRY(id_context, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2104 CONFIG_DUMMY_ENTRY(sender_id, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2106 CONFIG_DUMMY_ENTRY(recipient_id, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2108 CONFIG_ENTRY(replay_window, COAP_ENC_INTEGER,
NULL),
2109 CONFIG_ENTRY(ssn_freq, COAP_ENC_INTEGER,
NULL),
2110 CONFIG_ENTRY(rfc8613_b_1_2, COAP_ENC_BOOL,
NULL),
2111 CONFIG_ENTRY(rfc8613_b_2, COAP_ENC_BOOL,
NULL),
2112 CONFIG_ENTRY(break_sender_key, COAP_ENC_BOOL,
NULL),
2113 CONFIG_ENTRY(break_recipient_key, COAP_ENC_BOOL,
NULL),
2114 CONFIG_DUMMY_ENTRY(complex_sender, COAP_ENC_CONFIG,
NULL),
2115 CONFIG_DUMMY_ENTRY(complex_recipient, COAP_ENC_CONFIG,
NULL),
2118static oscore_config_t oscore_snd_config[] = {
2119 CONFIG_SND_ENTRY(sender_id, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2122static oscore_config_t oscore_rcp_config[] = {
2123 CONFIG_RCP_ENTRY(recipient_id, COAP_ENC_HEX | COAP_ENC_ASCII,
NULL),
2124 CONFIG_RCP_ENTRY(silent_server, COAP_ENC_BOOL,
NULL),
2125 CONFIG_DUMMY_ENTRY(last_seq, COAP_ENC_UNSIGNED64,
NULL),
2126 CONFIG_DUMMY_ENTRY(sliding_window, COAP_ENC_UNSIGNED64,
NULL),
2132 if (snd_conf ==
NULL)
2142 if (rcp_conf ==
NULL)
2153 if (oscore_conf ==
NULL)
2166 rcp_conf = rcp_next;
2175 const char *start = (
const char *)conf_mem.
s;
2176 const char *end = start + conf_mem.length;
2178 oscore_value_t value;
2182 if (snd_conf ==
NULL)
2186 memset(&value, 0,
sizeof(value));
2188 while (end > start &&
2189 get_split_entry(&start, end - start, &keyword, &value, 0) > 0) {
2193 for (i = 0; i <
sizeof(oscore_snd_config) /
sizeof(oscore_snd_config[0]); i++) {
2195 value.encoding & oscore_snd_config[i].encoding) {
2198 switch (value.encoding) {
2200 case COAP_ENC_ASCII:
2201 memcpy(&unused_check,
2202 &(((
char *)snd_conf)[oscore_snd_config[i].offset]),
2203 sizeof(unused_check));
2204 if (unused_check !=
NULL) {
2205 coap_log_warn(
"oscore_snd_conf: Keyword '%.*s' duplicated\n",
2207 (
const char *)keyword.
s);
2211 memcpy(&(((
char *)snd_conf)[oscore_snd_config[i].offset]),
2213 sizeof(value.u.value_bin));
2215 case COAP_ENC_INTEGER:
2217 memcpy(&(((
char *)snd_conf)[oscore_snd_config[i].offset]),
2219 sizeof(value.u.value_int));
2222 for (j = 0; oscore_snd_config[i].text_mapping[j].text.s !=
NULL; j++) {
2223 if (memcmp(value.u.value_str.s,
2224 oscore_snd_config[i].text_mapping[j].text.s,
2225 value.u.value_str.length) == 0) {
2226 memcpy(&(((
char *)snd_conf)[oscore_snd_config[i].offset]),
2227 &oscore_snd_config[i].text_mapping[j].value,
2228 sizeof(oscore_snd_config[i].text_mapping[j].value));
2232 if (oscore_snd_config[i].text_mapping[j].text.s ==
NULL) {
2233 coap_log_warn(
"oscore_snd_conf: Keyword '%.*s': value '%.*s' unknown\n",
2235 (
const char *)keyword.
s,
2236 (
int)value.u.value_str.length,
2237 (
const char *)value.u.value_str.s);
2241 case COAP_ENC_CONFIG:
2242 case COAP_ENC_UNSIGNED64:
2251 if (i ==
sizeof(oscore_snd_config) /
sizeof(oscore_snd_config[0])) {
2252 coap_log_warn(
"oscore_snd_conf: Keyword '%.*s', type '%s' unknown\n",
2254 (
const char *)keyword.
s,
2255 value.encoding_name);
2256 if (value.encoding == COAP_ENC_HEX || value.encoding == COAP_ENC_ASCII ||
2257 value.encoding == COAP_ENC_CONFIG)
2262 if (!snd_conf->sender_id) {
2266 if (snd_conf->sender_id->length > 7) {
2267 coap_log_warn(
"oscore_snd_conf: Maximum size of sender_id is 7 bytes\n");
2279 const char *start = (
const char *)conf_mem.
s;
2280 const char *end = start + conf_mem.length;
2282 oscore_value_t value;
2286 if (rcp_conf ==
NULL)
2290 memset(&value, 0,
sizeof(value));
2292 while (end > start &&
2293 get_split_entry(&start, end - start, &keyword, &value, 0) > 0) {
2297 for (i = 0; i <
sizeof(oscore_rcp_config) /
sizeof(oscore_rcp_config[0]); i++) {
2299 value.encoding & oscore_rcp_config[i].encoding) {
2301 rcp_conf->
last_seq = value.u.value_int64;
2309 switch (value.encoding) {
2311 case COAP_ENC_ASCII:
2312 memcpy(&unused_check,
2313 &(((
char *)rcp_conf)[oscore_rcp_config[i].offset]),
2314 sizeof(unused_check));
2315 if (unused_check !=
NULL) {
2316 coap_log_warn(
"oscore_rcp_conf: Keyword '%.*s' duplicated\n",
2318 (
const char *)keyword.
s);
2322 memcpy(&(((
char *)rcp_conf)[oscore_rcp_config[i].offset]),
2324 sizeof(value.u.value_bin));
2326 case COAP_ENC_INTEGER:
2328 memcpy(&(((
char *)rcp_conf)[oscore_rcp_config[i].offset]),
2330 sizeof(value.u.value_int));
2333 for (j = 0; oscore_rcp_config[i].text_mapping[j].text.s !=
NULL; j++) {
2334 if (memcmp(value.u.value_str.s,
2335 oscore_rcp_config[i].text_mapping[j].text.s,
2336 value.u.value_str.length) == 0) {
2337 memcpy(&(((
char *)rcp_conf)[oscore_rcp_config[i].offset]),
2338 &oscore_rcp_config[i].text_mapping[j].value,
2339 sizeof(oscore_rcp_config[i].text_mapping[j].value));
2343 if (oscore_rcp_config[i].text_mapping[j].text.s ==
NULL) {
2344 coap_log_warn(
"oscore_rcp_conf: Keyword '%.*s': value '%.*s' unknown\n",
2346 (
const char *)keyword.
s,
2347 (
int)value.u.value_str.length,
2348 (
const char *)value.u.value_str.s);
2352 case COAP_ENC_CONFIG:
2353 case COAP_ENC_UNSIGNED64:
2363 if (i ==
sizeof(oscore_rcp_config) /
sizeof(oscore_rcp_config[0])) {
2364 coap_log_warn(
"oscore_rcp_conf: Keyword '%.*s', type '%s' unknown\n",
2366 (
const char *)keyword.
s,
2367 value.encoding_name);
2368 if (value.encoding == COAP_ENC_HEX || value.encoding == COAP_ENC_ASCII ||
2369 value.encoding == COAP_ENC_CONFIG)
2374 if (!rcp_conf->recipient_id) {
2375 coap_log_warn(
"oscore_rcp_conf: recipient_id not defined\n");
2378 if (rcp_conf->recipient_id->length > 7) {
2379 coap_log_warn(
"oscore_rcp_conf: Maximum size of recipient_id is 7 bytes\n");
2391 const char *start = (
const char *)conf_mem.
s;
2392 const char *end = start + conf_mem.length;
2394 oscore_value_t value;
2399 if (oscore_conf ==
NULL)
2403 memset(&value, 0,
sizeof(value));
2416 while (end > start &&
2417 (split_ok = get_split_entry(&start, end - start, &keyword, &value, 0)) > 0) {
2421 for (i = 0; i <
sizeof(oscore_config) /
sizeof(oscore_config[0]); i++) {
2423 value.encoding & oscore_config[i].encoding) {
2425 if (value.u.value_bin->length > 7) {
2426 coap_log_warn(
"oscore_conf: Maximum size of sender_id is 7 bytes\n");
2427 goto error_free_value_bin;
2429 if (oscore_conf->
sender) {
2431 goto error_free_value_bin;
2434 if (!oscore_conf->
sender)
2435 goto error_free_value_bin;
2442 if (value.u.value_bin->length > 7) {
2443 coap_log_warn(
"oscore_conf: Maximum size of recipient_id is 7 bytes\n");
2444 goto error_free_value_bin;
2449 goto error_free_value_bin;
2458 switch (value.encoding) {
2459 case COAP_ENC_CONFIG:
2460 if (keyword.
length ==
sizeof(
"complex_sender") - 1 &&
2461 memcmp(keyword.
s,
"complex_sender", keyword.
length) == 0) {
2463 coap_parse_oscore_snd_conf_mem(*value.u.value_bin);
2468 (
const char *)keyword.
s);
2469 goto error_free_value_bin;
2471 if (oscore_conf->
sender) {
2474 goto error_free_value_bin;
2476 oscore_conf->
sender = snd_conf;
2480 if (keyword.
length ==
sizeof(
"complex_recipient") - 1 &&
2481 memcmp(keyword.
s,
"complex_recipient", keyword.
length) == 0) {
2483 coap_parse_oscore_rcp_conf_mem(*value.u.value_bin);
2488 (
const char *)keyword.
s);
2489 goto error_free_value_bin;
2496 case COAP_ENC_ASCII:
2498 memcpy(&unused_check,
2499 &(((
char *)oscore_conf)[oscore_config[i].offset]),
2500 sizeof(unused_check));
2501 if (unused_check !=
NULL) {
2504 (
const char *)keyword.
s);
2505 goto error_free_value_bin;
2507 memcpy(&(((
char *)oscore_conf)[oscore_config[i].offset]),
2509 sizeof(value.u.value_bin));
2511 case COAP_ENC_INTEGER:
2513 memcpy(&(((
char *)oscore_conf)[oscore_config[i].offset]),
2515 sizeof(value.u.value_int));
2518 for (j = 0; oscore_config[i].text_mapping[j].text.s !=
NULL; j++) {
2520 &oscore_config[i].text_mapping[j].text)) {
2521 memcpy(&(((
char *)oscore_conf)[oscore_config[i].offset]),
2522 &oscore_config[i].text_mapping[j].value,
2523 sizeof(oscore_config[i].text_mapping[j].value));
2527 if (oscore_config[i].text_mapping[j].text.s ==
NULL) {
2528 coap_log_warn(
"oscore_conf: Keyword '%.*s': value '%.*s' unknown\n",
2530 (
const char *)keyword.
s,
2531 (
int)value.u.value_str.length,
2532 (
const char *)value.u.value_str.s);
2536 case COAP_ENC_UNSIGNED64:
2546 if (i ==
sizeof(oscore_config) /
sizeof(oscore_config[0])) {
2547 coap_log_warn(
"oscore_conf: Keyword '%.*s', type '%s' unknown\n",
2549 (
const char *)keyword.
s,
2550 value.encoding_name);
2551 if (value.encoding == COAP_ENC_HEX || value.encoding == COAP_ENC_ASCII ||
2552 value.encoding == COAP_ENC_CONFIG) {
2560 if (!oscore_conf->master_secret) {
2564 if (!oscore_conf->sender) {
2570error_free_value_bin:
2594 coap_log_crit(
"OSCORE: Could not create Security Context!\n");
2628 if (session ==
NULL || recipient_ctx ==
NULL)
2631 if (session->recipient_ctx == recipient_ctx) {
2636 old_ctx = session->recipient_ctx;
2639 session->recipient_ctx = recipient_ctx;
2640 session->recipient_ctx->
ref++;
2642 if (old_ctx !=
NULL) {
2650 if (association ==
NULL)
2667 void *save_seq_num_func_param,
2668 uint64_t start_seq_num) {
2671 if (oscore_conf ==
NULL)
2686 size_t overhead = 0;
2692 if (osc_ctx ==
NULL)
2745 if (context->p_osc_ctx ==
NULL) {
2750 if (rcp_conf ==
NULL) {
2758 if (rcp_ctx ==
NULL)
2768 if (!context || !recipient_id)
2780 if (context->p_osc_ctx ==
NULL)
2789 if (context ==
NULL)
2793 context->oscore_find_cb = find_handler;
2794 context->oscore_update_seq_num_cb = update_seq_num_handler;
2816 uint64_t last_seq, uint64_t seq_window) {
2829 uint64_t last_seq, uint64_t seq_window) {
2832 rcp_conf = coap_oscore_get_recipient_conf(oscore_conf, recipient_id);
2970 void *save_seq_num_func_param,
2971 uint64_t start_seq_num) {
2973 (void)save_seq_num_func;
2974 (void)save_seq_num_func_param;
2975 (void)start_seq_num;
3007 (void)update_seq_num_handler;
3013 uint64_t last_seq) {
3023 uint64_t seq_window) {
struct coap_lg_crcv_t coap_lg_crcv_t
Library specific build wrapper for coap_internal.h.
void * coap_malloc_type(coap_memory_tag_t type, size_t size)
Allocates a chunk of size bytes and returns a pointer to the newly allocated memory.
void coap_free_type(coap_memory_tag_t type, void *p)
Releases the memory that was allocated by coap_malloc_type().
uint8_t coap_opt_t
Use byte-oriented access methods here because sliding a complex struct coap_opt_t over the data buffe...
COAP_API int coap_oscore_recipient_set_seq_window(coap_oscore_conf_t *oscore_conf, const coap_bin_const_t *recipient_id, uint64_t seq_window)
COAP_API int coap_oscore_recipient_set_last_seq(coap_oscore_conf_t *oscore_conf, const coap_bin_const_t *recipient_id, uint64_t last_seq)
static int coap_uri_scheme_is_secure(const coap_uri_t *uri)
coap_mid_t coap_send_ack_lkd(coap_session_t *session, const coap_pdu_t *request)
Sends an ACK message with code 0 for the specified request to dst.
#define COAP_BLOCK_CACHE_RESPONSE
int coap_prng_lkd(void *buf, size_t len)
Fills buf with len random bytes using the default pseudo random number generator.
int coap_handle_event_lkd(coap_context_t *context, coap_event_t event, coap_session_t *session)
Invokes the event handler of context for the given event and data.
uint16_t coap_new_message_id_lkd(coap_session_t *session)
Returns a new message id and updates session->tx_mid accordingly.
coap_mid_t coap_send_internal(coap_session_t *session, coap_pdu_t *pdu, coap_pdu_t *request_pdu)
Sends a CoAP message to given peer.
void coap_cancel_all_messages(coap_context_t *context, coap_session_t *session, coap_bin_const_t *token)
Cancels all outstanding messages for session session that have the specified token.
#define COAP_OSCORE_DEFAULT_REPLAY_WINDOW
int coap_crypto_check_hkdf_alg(cose_hkdf_alg_t hkdf_alg)
Check whether the defined hkdf algorithm is supported by the underlying crypto library.
int coap_crypto_check_cipher_alg(cose_alg_t alg)
Check whether the defined cipher algorithm is supported by the underlying crypto library.
unsigned int coap_encode_var_safe(uint8_t *buf, size_t length, unsigned int val)
Encodes multiple-length byte sequences.
unsigned int coap_decode_var_bytes(const uint8_t *buf, size_t len)
Decodes multiple-length byte sequences.
uint64_t coap_decode_var_bytes8(const uint8_t *buf, size_t len)
Decodes multiple-length byte sequences.
unsigned int coap_encode_var_safe8(uint8_t *buf, size_t length, uint64_t val)
Encodes multiple-length byte sequences.
@ COAP_EVENT_OSCORE_DECODE_ERROR
Triggered when there is an OSCORE decode of OSCORE option failure.
@ COAP_EVENT_OSCORE_INTERNAL_ERROR
Triggered when there is an OSCORE internal error i.e malloc failed.
@ COAP_EVENT_OSCORE_NOT_ENABLED
Triggered when trying to use OSCORE to decrypt, but it is not enabled.
@ COAP_EVENT_OSCORE_NO_SECURITY
Triggered when there is no OSCORE security definition found.
@ COAP_EVENT_OSCORE_NO_PROTECTED_PAYLOAD
Triggered when there is no OSCORE encrypted payload provided.
@ COAP_EVENT_OSCORE_DECRYPTION_FAILURE
Triggered when there is an OSCORE decryption failure.
#define coap_lock_callback(func)
Dummy for no thread-safe code.
#define coap_lock_unlock()
Dummy for no thread-safe code.
#define coap_lock_check_locked()
Dummy for no thread-safe code.
#define coap_lock_lock(failed)
Dummy for no thread-safe code.
#define coap_log_debug(...)
coap_log_t coap_get_log_level(void)
Get the current logging level.
void coap_show_pdu(coap_log_t level, const coap_pdu_t *pdu)
Display the contents of the specified pdu.
#define coap_log_oscore(...)
#define coap_log_warn(...)
#define coap_log_err(...)
#define coap_log_crit(...)
coap_opt_t * coap_option_next(coap_opt_iterator_t *oi)
Updates the iterator oi to point to the next option.
uint32_t coap_opt_length(const coap_opt_t *opt)
Returns the length of the given option.
coap_opt_iterator_t * coap_option_iterator_init(const coap_pdu_t *pdu, coap_opt_iterator_t *oi, const coap_opt_filter_t *filter)
Initializes the given option iterator oi to point to the beginning of the pdu's option list.
void coap_delete_optlist(coap_optlist_t *queue)
Removes all entries from the optlist_chain, freeing off their memory usage.
#define COAP_OPT_ALL
Pre-defined filter that includes all options.
int coap_add_optlist_pdu(coap_pdu_t *pdu, coap_optlist_t **options)
The current optlist of optlist_chain is first sorted (as per RFC7272 ordering requirements) and then ...
coap_opt_t * coap_check_option(const coap_pdu_t *pdu, coap_option_num_t number, coap_opt_iterator_t *oi)
Retrieves the first option of number number from pdu.
const uint8_t * coap_opt_value(const coap_opt_t *opt)
Returns a pointer to the value of the given option.
size_t oscore_cbor_get_element_size(const uint8_t **buffer, size_t *buf_size)
void cose_encrypt0_set_plaintext(cose_encrypt0_t *ptr, uint8_t *buffer, size_t size)
int cose_encrypt0_set_key(cose_encrypt0_t *ptr, coap_bin_const_t *key)
void cose_encrypt0_set_kid_context(cose_encrypt0_t *ptr, coap_bin_const_t *kid_context)
const char * cose_get_alg_name(cose_alg_t id, char *buffer, size_t buflen)
void cose_encrypt0_set_ciphertext(cose_encrypt0_t *ptr, uint8_t *buffer, size_t size)
int cose_encrypt0_decrypt(cose_encrypt0_t *ptr, uint8_t *plaintext_buffer, size_t plaintext_len)
size_t cose_tag_len(cose_alg_t cose_alg)
void cose_encrypt0_set_aad(cose_encrypt0_t *ptr, coap_bin_const_t *aad)
int cose_encrypt0_encrypt(cose_encrypt0_t *ptr, uint8_t *ciphertext_buffer, size_t ciphertext_len)
void cose_encrypt0_set_partial_iv(cose_encrypt0_t *ptr, coap_bin_const_t *partial_iv)
void cose_encrypt0_set_external_aad(cose_encrypt0_t *ptr, coap_bin_const_t *external_aad)
void cose_encrypt0_init(cose_encrypt0_t *ptr)
void cose_encrypt0_set_alg(cose_encrypt0_t *ptr, uint8_t alg)
void cose_encrypt0_set_key_id(cose_encrypt0_t *ptr, coap_bin_const_t *key_id)
void cose_encrypt0_set_nonce(cose_encrypt0_t *ptr, coap_bin_const_t *nonce)
@ COSE_HKDF_ALG_HKDF_SHA_256
@ COSE_ALGORITHM_AES_CCM_16_64_128
@ COSE_ALGORITHM_AES_CCM_16_64_256
size_t oscore_prepare_aad(const uint8_t *external_aad_buffer, size_t external_aad_len, uint8_t *aad_buffer, size_t aad_size)
size_t oscore_encode_option_value(uint8_t *option_buffer, size_t option_buf_len, cose_encrypt0_t *cose, uint8_t group, uint8_t appendix_b_2)
void coap_oscore_association_set_recipient_ctx(oscore_association_t *association, oscore_recipient_ctx_t *recipient_ctx)
Set the recipient context of an association.
oscore_ctx_t * oscore_derive_ctx_from_conf(coap_oscore_conf_t *oscore_conf)
oscore_derive_ctx_from_conf - derive a osc_ctx from oscore_conf information
int coap_delete_oscore_recipient_lkd(coap_context_t *context, coap_bin_const_t *recipient_id)
Release all the information associated for the specific Recipient ID (and hence and stop any further ...
int oscore_delete_association(coap_session_t *session, oscore_association_t *association)
coap_session_t * coap_new_client_session_oscore3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, protecting the data using OSCORE,...
uint8_t oscore_validate_sender_seq(oscore_recipient_ctx_t *ctx, cose_encrypt0_t *cose)
oscore_recipient_ctx_t * oscore_add_recipient(oscore_ctx_t *ctx, coap_oscore_rcp_conf_t *rcp_conf, uint32_t break_key)
oscore_add_recipient - add in recipient information
oscore_ctx_t * coap_init_oscore_context_from_conf(coap_oscore_conf_t *oscore_conf)
Initializes an OSCORE context from the given configuration.
void coap_oscore_session_set_recipient_ctx(coap_session_t *session, oscore_recipient_ctx_t *recipient_ctx)
Attach the OSCORE recipient context information to the session.
int oscore_decode_option_value(const uint8_t *option_value, size_t option_len, cose_encrypt0_t *cose)
int coap_delete_oscore_snd_conf(coap_oscore_snd_conf_t *oscore_snd_conf)
Release all the information associated with the OSCORE complex Sender configuration.
coap_pdu_t * coap_oscore_new_pdu_encrypted_lkd(coap_session_t *session, coap_pdu_t *pdu, coap_bin_const_t *kid_context, oscore_partial_iv_t send_partial_iv)
Encrypts the specified pdu when OSCORE encryption is required on session.
int oscore_delete_recipient(oscore_ctx_t *osc_ctx, coap_bin_const_t *rid)
uint8_t oscore_increment_sender_seq(oscore_ctx_t *ctx)
void oscore_update_ctx(oscore_ctx_t *osc_ctx, coap_bin_const_t *id_context)
oscore_update_ctx - update a osc_ctx with a new id_context
coap_session_t * coap_new_client_session_oscore_psk3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_cpsk_t *psk_data, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PSK credentials protecting the data using...
oscore_ctx_t * oscore_derive_ctx(coap_context_t *c_context, coap_oscore_conf_t *oscore_conf)
oscore_derive_ctx - derive a osc_ctx from oscore_conf information
COAP_API coap_pdu_t * coap_oscore_new_pdu_encrypted(coap_session_t *session, coap_pdu_t *pdu, coap_bin_const_t *kid_context, oscore_partial_iv_t send_partial_iv)
Encrypts the specified pdu when OSCORE encryption is required on session.
void oscore_roll_back_seq(oscore_recipient_ctx_t *ctx)
int oscore_new_association(coap_session_t *session, coap_pdu_t *sent_pdu, coap_bin_const_t *token, oscore_recipient_ctx_t *recipient_ctx, coap_bin_const_t *aad, coap_bin_const_t *nonce, coap_bin_const_t *partial_iv, int is_observe)
size_t oscore_prepare_e_aad(oscore_ctx_t *ctx, cose_encrypt0_t *cose, const uint8_t *oscore_option, size_t oscore_option_len, coap_bin_const_t *sender_public_key, uint8_t *external_aad_ptr, size_t external_aad_size)
void oscore_delete_server_associations(coap_session_t *session)
void oscore_log_char_value(coap_log_t level, const char *name, const char *value)
oscore_ctx_t * oscore_find_context(coap_session_t *session, const coap_bin_const_t rcpkey_id, const coap_bin_const_t *ctxkey_id, uint8_t *oscore_r2, oscore_recipient_ctx_t **recipient_ctx)
oscore_find_context - Locate recipient context (and hence OSCORE context)
struct coap_pdu_t * coap_oscore_decrypt_pdu(coap_session_t *session, coap_pdu_t *pdu)
Decrypts the OSCORE-encrypted parts of pdu when OSCORE is used.
int coap_oscore_recipient_set_latest_seq_lkd(coap_oscore_conf_t *oscore_conf, const coap_bin_const_t *recipient_id, uint64_t last_seq, uint64_t seq_window)
Set the latest sequence number and sliding window for the specified recipient id in the compiled conf...
int coap_rebuild_pdu_for_proxy(coap_pdu_t *pdu)
Convert PDU to use Proxy-Scheme option if Proxy-Uri option is present.
void oscore_free_contexts(coap_context_t *c_context)
void oscore_log_hex_value(coap_log_t level, const char *name, coap_bin_const_t *value)
void coap_delete_oscore_associations(coap_session_t *session)
Cleanup all allocated OSCORE association information.
int coap_oscore_initiate(coap_session_t *session, coap_oscore_conf_t *oscore_conf)
Initiate an OSCORE session.
int coap_new_oscore_recipient_lkd(coap_context_t *context, coap_bin_const_t *recipient_id)
Add in the specific Recipient ID into the OSCORE context (server only).
oscore_ctx_t * oscore_duplicate_ctx(coap_context_t *c_context, oscore_ctx_t *o_osc_ctx, coap_bin_const_t *sender_id, coap_bin_const_t *recipient_id, coap_bin_const_t *id_context)
oscore_duplicate_ctx - duplicate a osc_ctx
void coap_delete_all_oscore(coap_context_t *context)
Cleanup all allocated OSCORE information.
void oscore_generate_nonce(cose_encrypt0_t *ptr, oscore_ctx_t *ctx, uint8_t *buffer, uint8_t size)
int oscore_remove_context(coap_context_t *c_context, oscore_ctx_t *osc_ctx)
oscore_association_t * oscore_find_association(coap_session_t *session, coap_bin_const_t *token)
int coap_context_oscore_server_lkd(coap_context_t *context, coap_oscore_conf_t *oscore_conf)
Set the context's default OSCORE configuration for a server.
int coap_delete_oscore_rcp_conf(coap_oscore_rcp_conf_t *oscore_rcp_conf)
Release all the information associated with the OSCORE complex Recipient configuration.
void oscore_release_recipient_ctx(oscore_recipient_ctx_t **recipient_ctx)
Cleanup recipient context, including releasing the oscore context if the oscore context referenced is...
coap_session_t * coap_new_client_session_oscore_pki3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_pki_t *pki_data, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PKI credentials protecting the data using...
size_t coap_oscore_overhead(coap_session_t *session, coap_pdu_t *pdu)
Determine the additional data size requirements for adding in OSCORE.
@ OSCORE_SEND_PARTIAL_IV
Send partial IV with encrypted PDU.
@ OSCORE_SEND_NO_IV
Do not send partial IV unless added by a response.
COAP_API int coap_oscore_recipient_set_latest_seq(coap_oscore_conf_t *oscore_conf, const coap_bin_const_t *recipient_id, uint64_t last_seq, uint64_t seq_window)
Set the latest sequence number and sliding window for the specified recipient id in the compiled conf...
coap_oscore_conf_t * coap_new_oscore_conf(coap_str_const_t conf_mem, coap_oscore_save_seq_num_t save_seq_num_func, void *save_seq_num_func_param, uint64_t start_seq_num)
Parse an OSCORE configuration (held in memory) and populate a OSCORE configuration structure.
coap_session_t * coap_new_client_session_oscore_psk(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_cpsk_t *psk_data, coap_oscore_conf_t *oscore_conf)
Creates a new client session to the designated server with PSK credentials as well as protecting the ...
coap_session_t * coap_new_client_session_oscore_psk3(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_cpsk_t *psk_data, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PSK credentials protecting the data using...
int(* coap_oscore_update_seq_num_handler_t)(const coap_session_t *session, const coap_bin_const_t *rcpkey_id, const coap_bin_const_t *ctxkey_id, uint64_t receiver_seq_num, uint64_t seq_num_window)
Callback function type for persisting the OSCORE receiver sequence number and anti-replay sliding win...
int coap_delete_oscore_conf(coap_oscore_conf_t *oscore_conf)
Release all the information associated with the OSCORE configuration.
coap_session_t * coap_new_client_session_oscore(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_oscore_conf_t *oscore_conf)
Creates a new client session to the designated server, protecting the data using OSCORE.
int coap_context_oscore_server(coap_context_t *context, coap_oscore_conf_t *oscore_conf)
Set the context's default OSCORE configuration for a server.
coap_oscore_conf_t *(* coap_oscore_find_handler_t)(const coap_session_t *session, const coap_bin_const_t *rcpkey_id, const coap_bin_const_t *ctxkey_id)
Callback function type for overriding oscore_find_context().
coap_session_t * coap_new_client_session_oscore_pki(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_pki_t *pki_data, coap_oscore_conf_t *oscore_conf)
Creates a new client session to the designated server with PKI credentials as well as protecting the ...
coap_session_t * coap_new_client_session_oscore3(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, protecting the data using OSCORE,...
int coap_new_oscore_recipient(coap_context_t *context, coap_bin_const_t *recipient_id)
Add in the specific Recipient ID into the OSCORE context (server only).
int(* coap_oscore_save_seq_num_t)(uint64_t sender_seq_num, void *param)
Definition of the function used to save the current Sender Sequence Number.
int coap_delete_oscore_recipient(coap_context_t *context, coap_bin_const_t *recipient_id)
Release all the information associated for the specific Recipient ID (and hence stop any further OSCO...
void coap_oscore_register_external_handlers(coap_context_t *context, coap_oscore_find_handler_t find_handler, coap_oscore_update_seq_num_handler_t update_seq_num_handler)
Register external storage handlers for OSCORE session state.
coap_session_t * coap_new_client_session_oscore_pki3(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_pki_t *pki_data, coap_oscore_conf_t *oscore_conf, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PKI credentials protecting the data using...
void coap_delete_pdu_lkd(coap_pdu_t *pdu)
Dispose of an CoAP PDU and free off associated storage.
size_t coap_insert_option(coap_pdu_t *pdu, coap_option_num_t number, size_t len, const uint8_t *data)
Inserts option of given number in the pdu with the appropriate data.
int coap_remove_option(coap_pdu_t *pdu, coap_option_num_t number)
Removes (first) option of given number from the pdu.
int coap_update_token(coap_pdu_t *pdu, size_t len, const uint8_t *data)
Updates token in pdu with length len and data.
#define COAP_PDU_IS_PING(pdu)
coap_pdu_t * coap_pdu_duplicate_lkd(const coap_pdu_t *old_pdu, coap_session_t *session, size_t token_length, const uint8_t *token, coap_opt_filter_t *drop_options, coap_bool_t expand_opt_abb)
Duplicate an existing PDU.
size_t coap_pdu_encode_header(coap_pdu_t *pdu, coap_proto_t proto)
Compose the protocol specific header for the specified PDU.
#define COAP_PAYLOAD_START
int coap_pdu_resize(coap_pdu_t *pdu, size_t new_size)
Dynamically grows the size of pdu to new_size.
#define COAP_PDU_IS_REQUEST(pdu)
size_t coap_add_option_internal(coap_pdu_t *pdu, coap_option_num_t number, size_t len, const uint8_t *data)
Adds option of given number to pdu that is passed as first parameter.
#define COAP_OPTION_HOP_LIMIT
#define COAP_OPTION_NORESPONSE
#define COAP_OPTION_URI_HOST
#define COAP_OPTION_IF_MATCH
#define COAP_OPTION_BLOCK2
#define COAP_OPTION_CONTENT_FORMAT
#define COAP_OPTION_SIZE2
#define COAP_OPTION_BLOCK1
#define COAP_OPTION_PROXY_SCHEME
#define COAP_DEFAULT_PORT
#define COAP_OPTION_URI_QUERY
#define COAP_OPTION_IF_NONE_MATCH
#define COAP_OPTION_LOCATION_PATH
#define COAP_OPTION_URI_PATH
#define COAP_RESPONSE_CODE(N)
#define COAP_RESPONSE_CLASS(C)
coap_proto_t
CoAP protocol types Note: coap_layers_coap[] needs updating if extended.
coap_pdu_code_t
Set of codes available for a PDU.
#define COAP_OPTION_OSCORE
#define COAP_OPTION_SIZE1
int coap_add_token(coap_pdu_t *pdu, size_t len, const uint8_t *data)
Adds token of length len to pdu.
#define COAP_OPTION_LOCATION_QUERY
#define COAPS_DEFAULT_PORT
int coap_get_data(const coap_pdu_t *pdu, size_t *len, const uint8_t **data)
Retrieves the length and data pointer of specified PDU.
#define COAP_OPTION_URI_PORT
coap_pdu_t * coap_pdu_init(coap_pdu_type_t type, coap_pdu_code_t code, coap_mid_t mid, size_t size)
Creates a new CoAP PDU with at least enough storage space for the given size maximum message size.
#define COAP_OPTION_ACCEPT
#define COAP_INVALID_MID
Indicates an invalid message id.
#define COAP_OPTION_MAXAGE
#define COAP_OPTION_PROXY_URI
#define COAP_OPTION_OBSERVE
int coap_add_data(coap_pdu_t *pdu, size_t len, const uint8_t *data)
Adds given data to the pdu that is passed as first parameter.
coap_bin_const_t coap_pdu_get_token(const coap_pdu_t *pdu)
Gets the token associated with pdu.
@ COAP_REQUEST_CODE_FETCH
coap_session_t * coap_new_client_session_pki3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_pki_t *setup_data, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PKI credentials along with app_data infor...
coap_session_t * coap_new_client_session_psk3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, coap_dtls_cpsk_t *setup_data, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PSK credentials along with app_data infor...
void coap_session_release_lkd(coap_session_t *session)
Decrement reference counter on a session.
coap_session_t * coap_new_client_session3_lkd(coap_context_t *ctx, const coap_address_t *local_if, const coap_address_t *server, coap_proto_t proto, void *app_data, coap_app_data_free_callback_t callback, coap_str_const_t *ws_host)
Creates a new client session to the designated server, with PSK credentials along with app_data infor...
#define COAP_PROTO_NOT_RELIABLE(p)
void(* coap_app_data_free_callback_t)(void *data)
Callback to free off the app data when the entry is being deleted / freed off.
void coap_delete_bin_const(coap_bin_const_t *s)
Deletes the given const binary data and releases any memory allocated.
void coap_delete_str_const(coap_str_const_t *s)
Deletes the given const string and releases any memory allocated.
coap_binary_t * coap_new_binary(size_t size)
Returns a new binary object with at least size bytes storage allocated.
coap_str_const_t * coap_make_str_const(const char *string)
Take the specified byte array (text) and create a coap_str_const_t *.
coap_bin_const_t * coap_new_bin_const(const uint8_t *data, size_t size)
Take the specified byte array (text) and create a coap_bin_const_t * Returns a new const binary objec...
void coap_delete_binary(coap_binary_t *s)
Deletes the given coap_binary_t object and releases any memory allocated.
#define coap_binary_equal(binary1, binary2)
Compares the two binary data for equality.
#define coap_string_equal(string1, string2)
Compares the two strings for equality.
coap_str_const_t * coap_new_str_const(const uint8_t *data, size_t size)
Returns a new const string object with at least size+1 bytes storage allocated, and the provided data...
int coap_oscore_is_supported(void)
Check whether OSCORE is available.
int coap_query_into_optlist(const uint8_t *s, size_t length, coap_option_num_t optnum, coap_optlist_t **optlist_chain)
Splits the given URI query into '&' separate segments, and then adds the Uri-Query / Location-Query o...
int coap_path_into_optlist(const uint8_t *s, size_t length, coap_option_num_t optnum, coap_optlist_t **optlist_chain)
Splits the given URI path into '/' separate segments, and then adds the Uri-Path / Location-Path opti...
int coap_split_proxy_uri(const uint8_t *str_var, size_t len, coap_uri_t *uri)
Parses a given string into URI components.
coap_uri_info_t coap_uri_scheme[COAP_URI_SCHEME_LAST]
Multi-purpose address abstraction.
CoAP binary data definition with const data.
size_t length
length of binary data
const uint8_t * s
read-only binary data
CoAP binary data definition.
size_t length
length of binary data
The CoAP stack's global state is stored in a coap_context_t object.
The structure used for defining the Client PSK setup data to be used.
The structure used for defining the PKI setup data to be used.
Iterator to run through PDU options.
coap_opt_t * next_option
pointer to the unparsed next option
size_t length
remaining length of PDU
coap_option_num_t number
decoded option number
Representation of chained list of CoAP options to install.
The structure used to hold the OSCORE configuration information.
void * save_seq_num_func_param
Passed to save_seq_num_func()
uint32_t rfc8613_b_2
1 if rfc8613 B.2 protocol else 0
cose_hkdf_alg_t hkdf_alg
Set to one of COSE_HKDF_ALG_*.
uint32_t break_sender_key
1 if sender key to be broken, else 0
coap_oscore_snd_conf_t * sender
The sender - i.e.
coap_oscore_rcp_conf_t * recipient_chain
The recipients as a chain.
uint32_t ssn_freq
Sender Seq Num update frequency.
coap_oscore_save_seq_num_t save_seq_num_func
Called every seq num change.
uint32_t rfc8613_b_1_2
1 if rfc8613 B.1.2 enabled else 0
uint64_t start_seq_num
Used for ssn_freq updating.
uint32_t break_recipient_key
1 if recipient key to be broken, else 0
coap_bin_const_t * master_secret
Common Master Secret.
cose_alg_t aead_alg
Set to one of COSE_ALGORITHM_AES*.
coap_bin_const_t * master_salt
Common Master Salt.
uint32_t replay_window
Replay window size Use COAP_OSCORE_DEFAULT_REPLAY_WINDOW.
coap_bin_const_t * id_context
Common ID context.
The structure used to hold the OSCORE Recipient configuration.
coap_bin_const_t * recipient_id
Recipient ID (i.e.
uint64_t last_seq
Highest sequence number used for this recipient.
uint8_t window_initialized
Contains if the sliding window is initialized 1 if initialized, 0 otherwise.
struct coap_oscore_rcp_conf_t * next_recipient
Used to maintain the chain.
uint64_t sliding_window
bitfield sequence counter window
The structure used to hold the OSCORE Sender configuration information.
coap_bin_const_t * sender_id
Sender ID (i.e.
uint8_t max_hdr_size
space reserved for protocol-specific header
uint8_t * token
first byte of token (or extended length bytes prefix), if any, or options
coap_pdu_code_t code
request method (value 1–31) or response code (value 64-255)
coap_bin_const_t actual_token
Actual token in pdu.
uint8_t * data
first byte of payload, if any
coap_mid_t mid
message id, if any, in regular host byte order
uint32_t e_token_length
length of Token space (includes leading extended bytes
size_t used_size
used bytes of storage for token, options and payload
coap_pdu_type_t type
message type
Abstraction of virtual session that can be attached to coap_context_t (client) or coap_endpoint_t (se...
uint32_t block_mode
Zero or more COAP_BLOCK_ or'd options.
coap_proto_t proto
protocol used
unsigned ref
reference count from queues
uint8_t con_active
Active CON request sent.
coap_context_t * context
session's context
CoAP string data definition with const data.
const uint8_t * s
read-only string data
size_t length
length of string
const char * name
scheme name
Representation of parsed URI.
enum coap_uri_scheme_t scheme
The parsed scheme specifier.
coap_str_const_t path
The complete path if present or {0, NULL}.
uint16_t port
The port in host byte order.
coap_str_const_t query
The complete query if present or {0, NULL}.
coap_str_const_t host
The host part of the URI.
coap_bin_const_t partial_iv
coap_bin_const_t kid_context
coap_bin_const_t external_aad
coap_bin_const_t oscore_option
coap_bin_const_t * obs_partial_iv
coap_bin_const_t * partial_iv
oscore_recipient_ctx_t * recipient_ctx
uint8_t rfc8613_b_1_2
1 if rfc8613 B.1.2 enabled else 0
void * save_seq_num_func_param
Passed to save_seq_num_func()
oscore_sender_ctx_t * sender_context
cose_alg_t aead_alg
Set to one of COSE_ALGORITHM_AES*.
uint8_t rfc8613_b_2
1 if rfc8613 B.2 protocol else 0
coap_oscore_save_seq_num_t save_seq_num_func
Called every seq num change.
oscore_recipient_ctx_t * recipient_chain
coap_bin_const_t * id_context
contains GID in case of group
uint32_t ssn_freq
Sender Seq Num update frequency.
unsigned ref
Reference counter to keep track of linked associations / active sessions.
coap_bin_const_t * recipient_key
coap_bin_const_t * recipient_id
coap_bin_const_t * sender_id
uint64_t seq
Sender Sequence Number.
coap_bin_const_t * sender_key
uint64_t next_seq
Used for ssn_freq updating.