aheinecke@45: #ifndef SSLCONNECTION_H aheinecke@45: #define SSLCONNECTION_H aheinecke@45: aheinecke@45: /** aheinecke@45: * @file sslconnection.h aheinecke@45: * @brief Qt wrapper around polarssl ssl api aheinecke@45: */ aheinecke@45: aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: #include aheinecke@45: aheinecke@45: class SSLConnection aheinecke@45: { aheinecke@45: public: aheinecke@45: enum ErrorCode { aheinecke@45: NoError, aheinecke@45: NoConnection, aheinecke@45: SSLHandshakeFailed, aheinecke@45: InvalidCertificate, aheinecke@45: InvalidPinnedCertificate, aheinecke@45: InvalidResponse, aheinecke@45: ConnectionLost, aheinecke@45: Timeout, aheinecke@45: ErrUnknown aheinecke@45: }; aheinecke@45: aheinecke@45: /** aheinecke@45: * @brief Construct a pinned SSL Connection aheinecke@45: * aheinecke@45: * @param[in] url the Url to connect to aheinecke@45: * @param[in] certificate optional certificate to validate https connection aheinecke@45: */ aheinecke@45: SSLConnection(const QString& url, aheinecke@45: const QByteArray& certificate = QByteArray()); aheinecke@45: aheinecke@45: ~SSLConnection(); aheinecke@45: aheinecke@45: /** @brief write */ aheinecke@45: int write(const QByteArray& request); aheinecke@45: aheinecke@45: /** aheinecke@45: * @brief read at most len bytes aheinecke@45: * and return them as a byte array returns a NULL byte array on error*/ aheinecke@45: QByteArray read(size_t len); aheinecke@45: aheinecke@45: bool initialized() { return mInitialized; } aheinecke@45: bool connected() { return mConnected; } aheinecke@45: aheinecke@45: ErrorCode getLastError() { return mErrorState; } aheinecke@45: aheinecke@45: /** @brief: Establish the connection aheinecke@45: * aheinecke@45: * @returns 0 on success otherwise a polarssl error or -1 is returned aheinecke@45: */ aheinecke@45: int connect(); aheinecke@45: aheinecke@45: private: aheinecke@45: QUrl mUrl; aheinecke@45: QByteArray mPinnedCert; aheinecke@45: x509_crt mX509PinnedCert; aheinecke@45: entropy_context mEntropy; aheinecke@45: ctr_drbg_context mCtr_drbg; aheinecke@45: ssl_context mSSL; aheinecke@45: bool mInitialized; aheinecke@45: bool mConnected; aheinecke@45: int mServerFD; aheinecke@45: SSLConnection::ErrorCode mErrorState; aheinecke@45: /* @brief: Initialize polarssl structures aheinecke@45: * aheinecke@45: * This wraps polarssl initialization functions aheinecke@45: * that can return an error. aheinecke@45: * Sets the error state accordingly. aheinecke@45: * aheinecke@45: * @returns: 0 on success a polarssl error otherwise. aheinecke@45: */ aheinecke@45: int init(); aheinecke@45: }; aheinecke@45: aheinecke@45: #endif