1 /* 2 * libjingle 3 * Copyright 2004--2005, Google Inc. 4 * 5 * Redistribution and use in source and binary forms, with or without 6 * modification, are permitted provided that the following conditions are met: 7 * 8 * 1. Redistributions of source code must retain the above copyright notice, 9 * this list of conditions and the following disclaimer. 10 * 2. Redistributions in binary form must reproduce the above copyright notice, 11 * this list of conditions and the following disclaimer in the documentation 12 * and/or other materials provided with the distribution. 13 * 3. The name of the author may not be used to endorse or promote products 14 * derived from this software without specific prior written permission. 15 * 16 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR IMPLIED 17 * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF 18 * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO 19 * EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 20 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, 21 * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; 22 * OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, 23 * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR 24 * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF 25 * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 26 */ 27 28 #ifndef TALK_BASE_SSLADAPTER_H_ 29 #define TALK_BASE_SSLADAPTER_H_ 30 31 #include "talk/base/asyncsocket.h" 32 33 namespace talk_base { 34 35 /////////////////////////////////////////////////////////////////////////////// 36 37 class SSLAdapter : public AsyncSocketAdapter { 38 public: SSLAdapter(AsyncSocket * socket)39 explicit SSLAdapter(AsyncSocket* socket) 40 : AsyncSocketAdapter(socket), ignore_bad_cert_(false) { } 41 ignore_bad_cert()42 bool ignore_bad_cert() const { return ignore_bad_cert_; } set_ignore_bad_cert(bool ignore)43 void set_ignore_bad_cert(bool ignore) { ignore_bad_cert_ = ignore; } 44 45 // StartSSL returns 0 if successful. 46 // If StartSSL is called while the socket is closed or connecting, the SSL 47 // negotiation will begin as soon as the socket connects. 48 virtual int StartSSL(const char* hostname, bool restartable) = 0; 49 50 // Create the default SSL adapter for this platform. On failure, returns NULL 51 // and deletes |socket|. Otherwise, the returned SSLAdapter takes ownership 52 // of |socket|. 53 static SSLAdapter* Create(AsyncSocket* socket); 54 55 private: 56 // If true, the server certificate need not match the configured hostname. 57 bool ignore_bad_cert_; 58 }; 59 60 /////////////////////////////////////////////////////////////////////////////// 61 62 typedef bool (*VerificationCallback)(void* cert); 63 64 // Call this on the main thread, before using SSL. 65 // Call CleanupSSLThread when finished with SSL. 66 bool InitializeSSL(VerificationCallback callback = NULL); 67 68 // Call to initialize additional threads. 69 bool InitializeSSLThread(); 70 71 // Call to cleanup additional threads, and also the main thread. 72 bool CleanupSSL(); 73 74 /////////////////////////////////////////////////////////////////////////////// 75 76 } // namespace talk_base 77 78 #endif // TALK_BASE_SSLADAPTER_H_ 79