/* * TLS Server * (C) 2004-2010 Jack Lloyd * * Released under the terms of the Botan license */ #ifndef BOTAN_TLS_SERVER_H__ #define BOTAN_TLS_SERVER_H__ #include #include #include #include #include namespace Botan { /** * TLS Server */ class BOTAN_DLL TLS_Server : public TLS_Connection { public: u32bit read(byte buf[], u32bit buf_len); void write(const byte buf[], u32bit buf_len); std::vector peer_cert_chain() const; std::string requested_hostname() const { return client_requested_hostname; } void close(); bool is_closed() const; // FIXME: support cert chains (!) // FIXME: support anonymous servers TLS_Server(const TLS_Policy& policy, RandomNumberGenerator& rng, Socket& peer, const X509_Certificate& cert, const Private_Key& cert_key); ~TLS_Server(); private: void close(Alert_Level, Alert_Type); void do_handshake(); void state_machine(); void read_handshake(byte, const MemoryRegion&); void process_handshake_msg(Handshake_Type, const MemoryRegion&); const TLS_Policy& policy; RandomNumberGenerator& rng; Socket& peer; Record_Writer writer; Record_Reader reader; // FIXME: rename to match TLS_Client std::vector cert_chain, peer_certs; Private_Key* private_key; class Handshake_State* state; SecureVector session_id; SecureQueue read_buf; std::string client_requested_hostname; bool active; }; } #endif