_IkeChildSaEntry Struct Reference

Child Security Association entry. More...

#include <ike.h>

Data Fields

IkeChildSaState state
 Child SA state. More...
 
IkeContext * context
 IKE context. More...
 
IkeSaEntry * sa
 IKE SA entry. More...
 
IkeChildSaEntry * oldChildSa
 Old Child SA. More...
 
IpAddr remoteIpAddr
 IP address of the peer. More...
 
IpsecMode mode
 IPsec mode (tunnel or transport) More...
 
IpsecProtocol protocol
 Security protocol (AH or ESP) More...
 
bool_t initiator
 Initiator of the CREATE_CHILD_SA exchange. More...
 
systime_t lifetimeStart
 
uint8_t localSpi [4]
 Initiator SPI. More...
 
uint8_t remoteSpi [4]
 Responder SPI. More...
 
uint8_t initiatorNonce [IKE_MAX_NONCE_SIZE]
 Initiator nonce. More...
 
size_t initiatorNonceLen
 Length of the initiator nonce. More...
 
uint8_t responderNonce [IKE_MAX_NONCE_SIZE]
 Responder nonce. More...
 
size_t responderNonceLen
 Length of the responder nonce. More...
 
uint16_t encAlgoId
 Encryption algorithm. More...
 
uint16_t authAlgoId
 Integrity algorithm. More...
 
uint16_t esn
 Extended sequence numbers. More...
 
uint8_t acceptedProposalNum
 Number of the accepted proposal. More...
 
bool_t pfs
 Perfect forward secrecy. More...
 
IkeKeContext keContext
 Key exchange context. More...
 
uint8_t sharedSecret [IKE_MAX_SHARED_SECRET_LEN]
 Shared secret. More...
 
size_t sharedSecretLen
 Length of the shared secret, in bytes. More...
 
uint8_t keyMaterial [IKE_MAX_CHILD_SA_KEY_MAT_LEN]
 Keying material. More...
 
const uint8_t * skai
 Integrity protection key (initiator) More...
 
const uint8_t * skar
 Integrity protection key (responder) More...
 
const uint8_t * skei
 Encryption key (initiator) More...
 
const uint8_t * sker
 Encryption key (responder) More...
 
CipherMode cipherMode
 Cipher mode of operation. More...
 
const CipherAlgo * cipherAlgo
 Cipher algorithm. More...
 
MacAlgo authMacAlgo
 MAC algorithm for integrity calculations. More...
 
const HashAlgo * authHashAlgo
 Hash algorithm for HMAC-based integrity calculations. More...
 
const CipherAlgo * authCipherAlgo
 Cipher algorithm for CMAC-based integrity calculations. More...
 
size_t encKeyLen
 Length of the encryption key, in bytes. More...
 
size_t authKeyLen
 Length of the integrity protection key, in bytes. More...
 
size_t saltLen
 Length of the salt, in bytes. More...
 
size_t ivLen
 Length of the initialization vector, in bytes. More...
 
size_t icvLen
 Length of the ICV tag, in bytes. More...
 
uint8_t iv [8]
 Initialization vector. More...
 
IpsecPacketInfo packetInfo
 Triggering packet. More...
 
IpsecSelector selector
 Selector parameters. More...
 
bool_t rekeyRequest
 Child SA rekey request. More...
 
bool_t deleteRequest
 Child SA delete request. More...
 
bool_t deleteReceived
 
int_t inboundSa
 Inbound SAD entry. More...
 
int_t outboundSa
 Outbound SAD entry. More...
 

Detailed Description

Child Security Association entry.

Definition at line 1955 of file ike.h.

Field Documentation

◆ acceptedProposalNum

uint8_t acceptedProposalNum

Number of the accepted proposal.

Definition at line 1978 of file ike.h.

◆ authAlgoId

uint16_t authAlgoId

Integrity algorithm.

Definition at line 1976 of file ike.h.

◆ authCipherAlgo

const CipherAlgo* authCipherAlgo

Cipher algorithm for CMAC-based integrity calculations.

Definition at line 1997 of file ike.h.

◆ authHashAlgo

const HashAlgo* authHashAlgo

Hash algorithm for HMAC-based integrity calculations.

Definition at line 1996 of file ike.h.

◆ authKeyLen

size_t authKeyLen

Length of the integrity protection key, in bytes.

Definition at line 1999 of file ike.h.

◆ authMacAlgo

MacAlgo authMacAlgo

MAC algorithm for integrity calculations.

Definition at line 1995 of file ike.h.

◆ cipherAlgo

const CipherAlgo* cipherAlgo

Cipher algorithm.

Definition at line 1994 of file ike.h.

◆ cipherMode

CipherMode cipherMode

Cipher mode of operation.

Definition at line 1993 of file ike.h.

◆ context

IkeContext* context

IKE context.

Definition at line 1958 of file ike.h.

◆ deleteReceived

bool_t deleteReceived

Definition at line 2012 of file ike.h.

◆ deleteRequest

bool_t deleteRequest

Child SA delete request.

Definition at line 2011 of file ike.h.

◆ encAlgoId

uint16_t encAlgoId

Encryption algorithm.

Definition at line 1975 of file ike.h.

◆ encKeyLen

size_t encKeyLen

Length of the encryption key, in bytes.

Definition at line 1998 of file ike.h.

◆ esn

uint16_t esn

Extended sequence numbers.

Definition at line 1977 of file ike.h.

◆ icvLen

size_t icvLen

Length of the ICV tag, in bytes.

Definition at line 2002 of file ike.h.

◆ inboundSa

int_t inboundSa

Inbound SAD entry.

Definition at line 2014 of file ike.h.

◆ initiator

bool_t initiator

Initiator of the CREATE_CHILD_SA exchange.

Definition at line 1964 of file ike.h.

◆ initiatorNonce

uint8_t initiatorNonce[IKE_MAX_NONCE_SIZE]

Initiator nonce.

Definition at line 1970 of file ike.h.

◆ initiatorNonceLen

size_t initiatorNonceLen

Length of the initiator nonce.

Definition at line 1971 of file ike.h.

◆ iv

uint8_t iv[8]

Initialization vector.

Definition at line 2003 of file ike.h.

◆ ivLen

size_t ivLen

Length of the initialization vector, in bytes.

Definition at line 2001 of file ike.h.

◆ keContext

IkeKeContext keContext

Key exchange context.

Definition at line 1982 of file ike.h.

◆ keyMaterial

uint8_t keyMaterial[IKE_MAX_CHILD_SA_KEY_MAT_LEN]

Keying material.

Definition at line 1987 of file ike.h.

◆ lifetimeStart

systime_t lifetimeStart

Definition at line 1965 of file ike.h.

◆ localSpi

uint8_t localSpi[4]

Initiator SPI.

Definition at line 1967 of file ike.h.

◆ mode

IpsecMode mode

IPsec mode (tunnel or transport)

Definition at line 1962 of file ike.h.

◆ oldChildSa

IkeChildSaEntry* oldChildSa

Old Child SA.

Definition at line 1960 of file ike.h.

◆ outboundSa

int_t outboundSa

Outbound SAD entry.

Definition at line 2015 of file ike.h.

◆ packetInfo

IpsecPacketInfo packetInfo

Triggering packet.

Definition at line 2005 of file ike.h.

◆ pfs

bool_t pfs

Perfect forward secrecy.

Definition at line 1981 of file ike.h.

◆ protocol

IpsecProtocol protocol

Security protocol (AH or ESP)

Definition at line 1963 of file ike.h.

◆ rekeyRequest

bool_t rekeyRequest

Child SA rekey request.

Definition at line 2009 of file ike.h.

◆ remoteIpAddr

IpAddr remoteIpAddr

IP address of the peer.

Definition at line 1961 of file ike.h.

◆ remoteSpi

uint8_t remoteSpi[4]

Responder SPI.

Definition at line 1968 of file ike.h.

◆ responderNonce

uint8_t responderNonce[IKE_MAX_NONCE_SIZE]

Responder nonce.

Definition at line 1972 of file ike.h.

◆ responderNonceLen

size_t responderNonceLen

Length of the responder nonce.

Definition at line 1973 of file ike.h.

◆ sa

IKE SA entry.

Definition at line 1959 of file ike.h.

◆ saltLen

size_t saltLen

Length of the salt, in bytes.

Definition at line 2000 of file ike.h.

◆ selector

IpsecSelector selector

Selector parameters.

Definition at line 2006 of file ike.h.

◆ sharedSecret

uint8_t sharedSecret[IKE_MAX_SHARED_SECRET_LEN]

Shared secret.

Definition at line 1983 of file ike.h.

◆ sharedSecretLen

size_t sharedSecretLen

Length of the shared secret, in bytes.

Definition at line 1984 of file ike.h.

◆ skai

const uint8_t* skai

Integrity protection key (initiator)

Definition at line 1988 of file ike.h.

◆ skar

const uint8_t* skar

Integrity protection key (responder)

Definition at line 1989 of file ike.h.

◆ skei

const uint8_t* skei

Encryption key (initiator)

Definition at line 1990 of file ike.h.

◆ sker

const uint8_t* sker

Encryption key (responder)

Definition at line 1991 of file ike.h.

◆ state

Child SA state.

Definition at line 1957 of file ike.h.


The documentation for this struct was generated from the following file:
  • cyclone_ipsec/ike/ike.h