Skip to content

New protocol - #2

Open
nwct wants to merge 120 commits into
masterfrom
new_protocol
Open

New protocol#2
nwct wants to merge 120 commits into
masterfrom
new_protocol

Conversation

@nwct

@nwct nwct commented Dec 14, 2016

Copy link
Copy Markdown
Collaborator

No description provided.

wintsco and others added 30 commits August 5, 2011 15:42
- introduce new crypto layer
- introduce security association (key, context) into peer_info
- set up dummy keys until we have key negotiation and derivation

You need to install gnutls >2.99 into n2nv2/gnutls, if you don't have it
installed on your system.
- introduce symmetric p2p packet encryption and authentication
- key are constant zero
Conflicts:
	n2n_v2/crypto.c
	n2n_v2/crypto.h
	n2n_v2/edge.c
	n2n_v2/n2n.c
	n2n_v2/n2n.h
- AES256 in GCM mode seems not to be supported by gnutls right now
- improved debug output
- fix peer lookup for SA lookup
- fix sending non-encrypted packets
traffic encryption seems to provied basic functionality
Conflicts:
	.gitignore
	n2n_v2/crypto.c
	n2n_v2/crypto.h
	n2n_v2/edge.c
	n2n_v2/n2n.c
	n2n_v2/n2n.h
- we use HKDF, a scheme based on HMAC
- added some references
- introduce a session key derivation scheme called HKDF, which is
  designed for derivation of symmetric keys out of DH shared secrets
- changed overhead defines to prefix AEAD_
lukas227 and others added 30 commits August 21, 2011 20:58
finished outline of packet decoding
replaced underscores in packet types with hyphens for consistency
- removed obsolete hanshake syn-ack section
- changed 0 denotes handshake to 0 denotes non-payload
- removed duplicate packet code definitions
- use acknowledge-flag instead of too many packet types
(there is no large enough common part to justify this type)
- The first parameters to the decode_* functions are now base, idx, rem
  (so they reassemble the encode_* functions more closely)
- encode_supernode_register and decode_supernode_register added
(this is a temporary fix; a proper benchmark needs to be created once
the implementation is done)
(these values are encoded and checked automatically in the encode/decode
funtions)
and: libgcrypt version check improved, few comments added/changed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants