SimpleProtectedNegotiationTokenInit.cs 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224
  1. /* Copyright (C) 2017 Tal Aloni <tal.aloni.il@gmail.com>. All rights reserved.
  2. *
  3. * You can redistribute this program and/or modify it under the terms of
  4. * the GNU Lesser Public License as published by the Free Software Foundation,
  5. * either version 3 of the License, or (at your option) any later version.
  6. */
  7. using System;
  8. using System.Collections.Generic;
  9. using System.IO;
  10. using Utilities;
  11. namespace SMBLibrary.Authentication.GSSAPI
  12. {
  13. /// <summary>
  14. /// RFC 4178 - negTokenInit
  15. /// </summary>
  16. public class SimpleProtectedNegotiationTokenInit : SimpleProtectedNegotiationToken
  17. {
  18. public const byte NegTokenInitTag = 0xA0;
  19. public const byte MechanismTypeListTag = 0xA0;
  20. public const byte RequiredFlagsTag = 0xA1;
  21. public const byte MechanismTokenTag = 0xA2;
  22. public const byte MechanismListMICTag = 0xA3;
  23. /// <summary>
  24. /// Contains one or more security mechanisms available for the initiator, in decreasing preference order.
  25. /// </summary>
  26. public List<byte[]> MechanismTypeList; // Optional
  27. // reqFlags - Optional, RECOMMENDED to be left out
  28. public byte[] MechanismToken; // Optional
  29. public byte[] MechanismListMIC; // Optional
  30. public SimpleProtectedNegotiationTokenInit()
  31. {
  32. }
  33. /// <param name="offset">The offset following the NegTokenInit tag</param>
  34. public SimpleProtectedNegotiationTokenInit(byte[] buffer, int offset)
  35. {
  36. int constructionLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  37. byte tag = ByteReader.ReadByte(buffer, ref offset);
  38. if (tag != (byte)DerEncodingTag.Sequence)
  39. {
  40. throw new InvalidDataException();
  41. }
  42. int sequenceLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  43. int sequenceEndOffset = offset + sequenceLength;
  44. while (offset < sequenceEndOffset)
  45. {
  46. tag = ByteReader.ReadByte(buffer, ref offset);
  47. if (tag == MechanismTypeListTag)
  48. {
  49. MechanismTypeList = ReadMechanismTypeList(buffer, ref offset);
  50. }
  51. else if (tag == RequiredFlagsTag)
  52. {
  53. throw new NotImplementedException("negTokenInit.ReqFlags is not implemented");
  54. }
  55. else if (tag == MechanismTokenTag)
  56. {
  57. MechanismToken = ReadMechanismToken(buffer, ref offset);
  58. }
  59. else if (tag == MechanismListMICTag)
  60. {
  61. MechanismListMIC = ReadMechanismListMIC(buffer, ref offset);
  62. }
  63. else
  64. {
  65. throw new InvalidDataException("Invalid negTokenInit structure");
  66. }
  67. }
  68. }
  69. public override byte[] GetBytes()
  70. {
  71. int sequenceLength = GetTokenFieldsLength();
  72. int sequenceLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(sequenceLength);
  73. int constructionLength = 1 + sequenceLengthFieldSize + sequenceLength;
  74. int constructionLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(constructionLength);
  75. int bufferSize = 1 + constructionLengthFieldSize + 1 + sequenceLengthFieldSize + sequenceLength;
  76. byte[] buffer = new byte[bufferSize];
  77. int offset = 0;
  78. ByteWriter.WriteByte(buffer, ref offset, NegTokenInitTag);
  79. DerEncodingHelper.WriteLength(buffer, ref offset, constructionLength);
  80. ByteWriter.WriteByte(buffer, ref offset, (byte)DerEncodingTag.Sequence);
  81. DerEncodingHelper.WriteLength(buffer, ref offset, sequenceLength);
  82. if (MechanismTypeList != null)
  83. {
  84. WriteMechanismTypeList(buffer, ref offset, MechanismTypeList);
  85. }
  86. if (MechanismToken != null)
  87. {
  88. WriteMechanismToken(buffer, ref offset, MechanismToken);
  89. }
  90. if (MechanismListMIC != null)
  91. {
  92. WriteMechanismListMIC(buffer, ref offset, MechanismListMIC);
  93. }
  94. return buffer;
  95. }
  96. private int GetTokenFieldsLength()
  97. {
  98. int result = 0;
  99. if (MechanismTypeList != null)
  100. {
  101. int typeListSequenceLength = GetSequenceLength(MechanismTypeList);
  102. int typeListSequenceLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(typeListSequenceLength);
  103. int typeListConstructionLength = 1 + typeListSequenceLengthFieldSize + typeListSequenceLength;
  104. int typeListConstructionLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(typeListConstructionLength);
  105. int typeListLength = 1 + typeListConstructionLengthFieldSize + 1 + typeListSequenceLengthFieldSize + typeListSequenceLength;
  106. result += typeListLength;
  107. }
  108. if (MechanismToken != null)
  109. {
  110. int mechanismTokenBytesFieldSize = DerEncodingHelper.GetLengthFieldSize(MechanismToken.Length);
  111. int mechanismTokenConstructionLength = 1 + mechanismTokenBytesFieldSize + MechanismToken.Length;
  112. int mechanismTokenConstructionLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(mechanismTokenConstructionLength);
  113. int tokenLength = 1 + mechanismTokenConstructionLengthFieldSize + 1 + mechanismTokenBytesFieldSize + MechanismToken.Length;
  114. result += tokenLength;
  115. }
  116. return result;
  117. }
  118. private static List<byte[]> ReadMechanismTypeList(byte[] buffer, ref int offset)
  119. {
  120. List<byte[]> result = new List<byte[]>();
  121. int constructionLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  122. byte tag = ByteReader.ReadByte(buffer, ref offset);
  123. if (tag != (byte)DerEncodingTag.Sequence)
  124. {
  125. throw new InvalidDataException();
  126. }
  127. int sequenceLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  128. int sequenceEndOffset = offset + sequenceLength;
  129. while (offset < sequenceEndOffset)
  130. {
  131. tag = ByteReader.ReadByte(buffer, ref offset);
  132. if (tag != (byte)DerEncodingTag.ObjectIdentifier)
  133. {
  134. throw new InvalidDataException();
  135. }
  136. int mechanismTypeLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  137. byte[] mechanismType = ByteReader.ReadBytes(buffer, ref offset, mechanismTypeLength);
  138. result.Add(mechanismType);
  139. }
  140. return result;
  141. }
  142. private static byte[] ReadMechanismToken(byte[] buffer, ref int offset)
  143. {
  144. int constructionLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  145. byte tag = ByteReader.ReadByte(buffer, ref offset);
  146. if (tag != (byte)DerEncodingTag.ByteArray)
  147. {
  148. throw new InvalidDataException();
  149. }
  150. int mechanismTokenLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  151. byte[] token = ByteReader.ReadBytes(buffer, ref offset, mechanismTokenLength);
  152. return token;
  153. }
  154. private static byte[] ReadMechanismListMIC(byte[] buffer, ref int offset)
  155. {
  156. int constructionLength = DerEncodingHelper.ReadLength(buffer, ref offset);
  157. byte tag = ByteReader.ReadByte(buffer, ref offset);
  158. if (tag != (byte)DerEncodingTag.ByteArray)
  159. {
  160. throw new InvalidDataException();
  161. }
  162. int length = DerEncodingHelper.ReadLength(buffer, ref offset);
  163. return ByteReader.ReadBytes(buffer, ref offset, length);
  164. }
  165. private static int GetSequenceLength(List<byte[]> mechanismTypeList)
  166. {
  167. int sequenceLength = 0;
  168. foreach (byte[] mechanismType in mechanismTypeList)
  169. {
  170. int lengthFieldSize = DerEncodingHelper.GetLengthFieldSize(mechanismType.Length);
  171. int entryLength = 1 + lengthFieldSize + mechanismType.Length;
  172. sequenceLength += entryLength;
  173. }
  174. return sequenceLength;
  175. }
  176. private static void WriteMechanismTypeList(byte[] buffer, ref int offset, List<byte[]> mechanismTypeList)
  177. {
  178. int sequenceLength = GetSequenceLength(mechanismTypeList);
  179. int sequenceLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(sequenceLength);
  180. int constructionLength = 1 + sequenceLengthFieldSize + sequenceLength;
  181. ByteWriter.WriteByte(buffer, ref offset, MechanismTypeListTag);
  182. DerEncodingHelper.WriteLength(buffer, ref offset, constructionLength);
  183. ByteWriter.WriteByte(buffer, ref offset, (byte)DerEncodingTag.Sequence);
  184. DerEncodingHelper.WriteLength(buffer, ref offset, sequenceLength);
  185. foreach (byte[] mechanismType in mechanismTypeList)
  186. {
  187. ByteWriter.WriteByte(buffer, ref offset, (byte)DerEncodingTag.ObjectIdentifier);
  188. DerEncodingHelper.WriteLength(buffer, ref offset, mechanismType.Length);
  189. ByteWriter.WriteBytes(buffer, ref offset, mechanismType);
  190. }
  191. }
  192. private static void WriteMechanismToken(byte[] buffer, ref int offset, byte[] mechanismToken)
  193. {
  194. int constructionLength = 1 + DerEncodingHelper.GetLengthFieldSize(mechanismToken.Length) + mechanismToken.Length;
  195. ByteWriter.WriteByte(buffer, ref offset, MechanismTokenTag);
  196. DerEncodingHelper.WriteLength(buffer, ref offset, constructionLength);
  197. ByteWriter.WriteByte(buffer, ref offset, (byte)DerEncodingTag.ByteArray);
  198. DerEncodingHelper.WriteLength(buffer, ref offset, mechanismToken.Length);
  199. ByteWriter.WriteBytes(buffer, ref offset, mechanismToken);
  200. }
  201. private static void WriteMechanismListMIC(byte[] buffer, ref int offset, byte[] mechanismListMIC)
  202. {
  203. int mechanismListMICLengthFieldSize = DerEncodingHelper.GetLengthFieldSize(mechanismListMIC.Length);
  204. ByteWriter.WriteByte(buffer, ref offset, MechanismListMICTag);
  205. DerEncodingHelper.WriteLength(buffer, ref offset, 1 + mechanismListMICLengthFieldSize + mechanismListMIC.Length);
  206. ByteWriter.WriteByte(buffer, ref offset, (byte)DerEncodingTag.ByteArray);
  207. DerEncodingHelper.WriteLength(buffer, ref offset, mechanismListMIC.Length);
  208. ByteWriter.WriteBytes(buffer, ref offset, mechanismListMIC);
  209. }
  210. }
  211. }