slitheen.h 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109
  1. #ifndef _SLITHEEN_H_
  2. #define _SLITHEEN_H_
  3. #include <stdlib.h>
  4. #include <netinet/in.h>
  5. #include <pcap.h>
  6. /* Ethernet addresses are 6 bytes */
  7. #define ETHER_ADDR_LEN 6
  8. #define ETHER_HEADER_LEN 2*ETHER_ADDR_LEN + 2
  9. /* Definitions for parsing packet data */
  10. struct ip_header {
  11. u_char versionihl; /* Version >> 4 | IHL & 0x0f */
  12. u_char dscpecn; /* DSCP >> 2 | ECN & 0x03 */
  13. u_short len; /* Total Length */
  14. u_short id; /* Identification */
  15. u_short flagsoff; /* Flags >> 13 | Fragment Offset & 0x1fff */
  16. #define RF 0x8000 /* Reserved; must be zero */
  17. #define DF 0x4000 /* Dont Fragment */
  18. #define MF 0x2000 /* More Fragments */
  19. u_char ttl; /* Time To Live */
  20. u_char proto; /* Protocol */
  21. u_short chksum; /* Header Checksum */
  22. struct in_addr src, dst; /* Source and Destination addresses */
  23. };
  24. #define IP_HEADER_LEN(ip) (((ip)->versionihl) & 0x0f)*4
  25. struct tcp_header {
  26. u_short src_port; /* source port */
  27. u_short dst_port; /* destination port */
  28. u_int sequence_num; /* sequence number */
  29. u_int ack_num; /* acknowledgement number */
  30. u_char offset_res_ns; /*Data offset >> 4 | res >> 1 | NS 0x01 */
  31. u_char flags; /* Flags */
  32. #define FIN 0x01
  33. #define RST 0x04
  34. u_short win_size; /* Window size*/
  35. u_short chksum; /* Checksum */
  36. u_short urg; /* Urgent pointer */
  37. };
  38. #define TCP_HEADER_LEN(tcp) (((tcp)->offset_res_ns) >> 4)*4
  39. struct tls_header {
  40. u_char type; /* Content Type */
  41. #define CCS 0x14
  42. #define ALERT 0x15
  43. #define HS 0x16
  44. #define APP 0x17
  45. #define HB 0x18
  46. u_short version; /* Version */
  47. u_short len; /* Length */
  48. u_char msg; /* Message Type */
  49. #define CLIENT_HELLO 0x01
  50. #define FINISHED 0x14
  51. };
  52. #define RECORD_HEADER_LEN 5
  53. #define CLIENT_HELLO_HEADER_LEN 6
  54. struct packet_info {
  55. const struct ip_header *ip_hdr;
  56. struct tcp_header *tcp_hdr;
  57. const struct tls_header *record_hdr;
  58. uint32_t size_tcp_hdr;
  59. uint32_t size_ip_hdr;
  60. uint8_t *app_data;
  61. uint16_t app_data_len;
  62. };
  63. struct __attribute__((__packed__)) slitheen_header {
  64. uint64_t counter;
  65. uint16_t stream_id; /* determines which stream the data is from */
  66. uint16_t len;
  67. uint16_t garbage;
  68. uint16_t zeros;
  69. };
  70. #define SLITHEEN_HEADER_LEN 16
  71. struct __attribute__((__packed__)) record_header {
  72. u_char type;
  73. #define HS 0x16
  74. u_short version;
  75. u_short len;
  76. };
  77. #define RECORD_LEN(rec) (htons(rec->len))
  78. struct __attribute__((__packed__)) handshake_header {
  79. u_char type; /*Handshake message type */
  80. u_char len1;
  81. u_char len2;
  82. u_char len3;
  83. };
  84. #define HANDSHAKE_MESSAGE_LEN(hs) (((hs)->len1) << 16)+(((hs)->len2) << 8)+ ((hs)->len3)
  85. #define HANDSHAKE_HEADER_LEN 4
  86. struct sniff_args {
  87. char *readdev;
  88. char *writedev;
  89. };
  90. void got_packet(uint8_t *args, const struct pcap_pkthdr *header, const uint8_t *packet);
  91. void *sniff_packets(void *);
  92. void process_packet(struct packet_info *info);
  93. void extract_packet_headers(uint8_t *packet, struct packet_info *info);
  94. struct packet_info *copy_packet_info(struct packet_info *src_info);
  95. #endif /* _SLITHEEN_H_ */