xref: /openbsd/lib/libcrypto/evp/pmeth_gn.c (revision dc7bfa45)
1 /* $OpenBSD: pmeth_gn.c,v 1.19 2024/04/17 08:24:11 tb Exp $ */
2 /* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL
3  * project 2006.
4  */
5 /* ====================================================================
6  * Copyright (c) 2006 The OpenSSL Project.  All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  *
12  * 1. Redistributions of source code must retain the above copyright
13  *    notice, this list of conditions and the following disclaimer.
14  *
15  * 2. Redistributions in binary form must reproduce the above copyright
16  *    notice, this list of conditions and the following disclaimer in
17  *    the documentation and/or other materials provided with the
18  *    distribution.
19  *
20  * 3. All advertising materials mentioning features or use of this
21  *    software must display the following acknowledgment:
22  *    "This product includes software developed by the OpenSSL Project
23  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24  *
25  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26  *    endorse or promote products derived from this software without
27  *    prior written permission. For written permission, please contact
28  *    licensing@OpenSSL.org.
29  *
30  * 5. Products derived from this software may not be called "OpenSSL"
31  *    nor may "OpenSSL" appear in their names without prior written
32  *    permission of the OpenSSL Project.
33  *
34  * 6. Redistributions of any form whatsoever must retain the following
35  *    acknowledgment:
36  *    "This product includes software developed by the OpenSSL Project
37  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38  *
39  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50  * OF THE POSSIBILITY OF SUCH DAMAGE.
51  * ====================================================================
52  *
53  * This product includes cryptographic software written by Eric Young
54  * (eay@cryptsoft.com).  This product includes software written by Tim
55  * Hudson (tjh@cryptsoft.com).
56  *
57  */
58 
59 #include <stdio.h>
60 #include <stdlib.h>
61 
62 #include <openssl/bn.h>
63 #include <openssl/err.h>
64 #include <openssl/evp.h>
65 #include <openssl/objects.h>
66 
67 #include "asn1_local.h"
68 #include "bn_local.h"
69 #include "evp_local.h"
70 
71 int
EVP_PKEY_paramgen_init(EVP_PKEY_CTX * ctx)72 EVP_PKEY_paramgen_init(EVP_PKEY_CTX *ctx)
73 {
74 	if (ctx == NULL || ctx->pmeth == NULL || ctx->pmeth->paramgen == NULL) {
75 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
76 		return -2;
77 	}
78 
79 	ctx->operation = EVP_PKEY_OP_PARAMGEN;
80 
81 	return 1;
82 }
83 LCRYPTO_ALIAS(EVP_PKEY_paramgen_init);
84 
85 int
EVP_PKEY_paramgen(EVP_PKEY_CTX * ctx,EVP_PKEY ** ppkey)86 EVP_PKEY_paramgen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey)
87 {
88 	int ret;
89 
90 	if (ctx == NULL || ctx->pmeth == NULL || ctx->pmeth->paramgen == NULL) {
91 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
92 		return -2;
93 	}
94 
95 	if (ctx->operation != EVP_PKEY_OP_PARAMGEN) {
96 		EVPerror(EVP_R_OPERATON_NOT_INITIALIZED);
97 		return -1;
98 	}
99 
100 	if (ppkey == NULL)
101 		return -1;
102 
103 	if (*ppkey == NULL)
104 		*ppkey = EVP_PKEY_new();
105 	if (*ppkey == NULL)
106 		return -1;
107 
108 	if ((ret = ctx->pmeth->paramgen(ctx, *ppkey)) <= 0) {
109 		EVP_PKEY_free(*ppkey);
110 		*ppkey = NULL;
111 	}
112 
113 	return ret;
114 }
115 LCRYPTO_ALIAS(EVP_PKEY_paramgen);
116 
117 int
EVP_PKEY_keygen_init(EVP_PKEY_CTX * ctx)118 EVP_PKEY_keygen_init(EVP_PKEY_CTX *ctx)
119 {
120 	if (ctx == NULL || ctx->pmeth == NULL || ctx->pmeth->keygen == NULL)  {
121 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
122 		return -2;
123 	}
124 
125 	ctx->operation = EVP_PKEY_OP_KEYGEN;
126 
127 	return 1;
128 }
129 LCRYPTO_ALIAS(EVP_PKEY_keygen_init);
130 
131 int
EVP_PKEY_keygen(EVP_PKEY_CTX * ctx,EVP_PKEY ** ppkey)132 EVP_PKEY_keygen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey)
133 {
134 	int ret;
135 
136 	if (ctx == NULL || ctx->pmeth == NULL || ctx->pmeth->keygen == NULL) {
137 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
138 		return -2;
139 	}
140 	if (ctx->operation != EVP_PKEY_OP_KEYGEN) {
141 		EVPerror(EVP_R_OPERATON_NOT_INITIALIZED);
142 		return -1;
143 	}
144 
145 	if (ppkey == NULL)
146 		return -1;
147 
148 	if (*ppkey == NULL)
149 		*ppkey = EVP_PKEY_new();
150 	if (*ppkey == NULL)
151 		return -1;
152 
153 	if ((ret = ctx->pmeth->keygen(ctx, *ppkey)) <= 0) {
154 		EVP_PKEY_free(*ppkey);
155 		*ppkey = NULL;
156 	}
157 
158 	return ret;
159 }
160 LCRYPTO_ALIAS(EVP_PKEY_keygen);
161 
162 void
EVP_PKEY_CTX_set_cb(EVP_PKEY_CTX * ctx,EVP_PKEY_gen_cb * cb)163 EVP_PKEY_CTX_set_cb(EVP_PKEY_CTX *ctx, EVP_PKEY_gen_cb *cb)
164 {
165 	ctx->pkey_gencb = cb;
166 }
167 LCRYPTO_ALIAS(EVP_PKEY_CTX_set_cb);
168 
169 EVP_PKEY_gen_cb *
EVP_PKEY_CTX_get_cb(EVP_PKEY_CTX * ctx)170 EVP_PKEY_CTX_get_cb(EVP_PKEY_CTX *ctx)
171 {
172 	return ctx->pkey_gencb;
173 }
174 LCRYPTO_ALIAS(EVP_PKEY_CTX_get_cb);
175 
176 /* "translation callback" to call EVP_PKEY_CTX callbacks using BN_GENCB
177  * style callbacks.
178  */
179 
180 static int
trans_cb(int a,int b,BN_GENCB * gcb)181 trans_cb(int a, int b, BN_GENCB *gcb)
182 {
183 	EVP_PKEY_CTX *ctx = gcb->arg;
184 	ctx->keygen_info[0] = a;
185 	ctx->keygen_info[1] = b;
186 	return ctx->pkey_gencb(ctx);
187 }
188 
189 void
evp_pkey_set_cb_translate(BN_GENCB * cb,EVP_PKEY_CTX * ctx)190 evp_pkey_set_cb_translate(BN_GENCB *cb, EVP_PKEY_CTX *ctx)
191 {
192 	BN_GENCB_set(cb, trans_cb, ctx);
193 }
194 
195 int
EVP_PKEY_CTX_get_keygen_info(EVP_PKEY_CTX * ctx,int idx)196 EVP_PKEY_CTX_get_keygen_info(EVP_PKEY_CTX *ctx, int idx)
197 {
198 	if (idx == -1)
199 		return ctx->keygen_info_count;
200 	if (idx < 0 || idx >= ctx->keygen_info_count)
201 		return 0;
202 	return ctx->keygen_info[idx];
203 }
204 LCRYPTO_ALIAS(EVP_PKEY_CTX_get_keygen_info);
205 
206 EVP_PKEY *
EVP_PKEY_new_mac_key(int type,ENGINE * e,const unsigned char * key,int keylen)207 EVP_PKEY_new_mac_key(int type, ENGINE *e, const unsigned char *key, int keylen)
208 {
209 	EVP_PKEY_CTX *mac_ctx = NULL;
210 	EVP_PKEY *mac_key = NULL;
211 
212 	mac_ctx = EVP_PKEY_CTX_new_id(type, NULL);
213 	if (!mac_ctx)
214 		return NULL;
215 	if (EVP_PKEY_keygen_init(mac_ctx) <= 0)
216 		goto merr;
217 	if (EVP_PKEY_CTX_ctrl(mac_ctx, -1, EVP_PKEY_OP_KEYGEN,
218 	    EVP_PKEY_CTRL_SET_MAC_KEY, keylen, (void *)key) <= 0)
219 		goto merr;
220 	if (EVP_PKEY_keygen(mac_ctx, &mac_key) <= 0)
221 		goto merr;
222 
223 merr:
224 	EVP_PKEY_CTX_free(mac_ctx);
225 	return mac_key;
226 }
227 LCRYPTO_ALIAS(EVP_PKEY_new_mac_key);
228 
229 int
EVP_PKEY_check(EVP_PKEY_CTX * ctx)230 EVP_PKEY_check(EVP_PKEY_CTX *ctx)
231 {
232 	EVP_PKEY *pkey;
233 
234 	if ((pkey = ctx->pkey) == NULL) {
235 		EVPerror(EVP_R_NO_KEY_SET);
236 		return 0;
237 	}
238 
239 	if (ctx->pmeth->check != NULL)
240 		return ctx->pmeth->check(pkey);
241 
242 	if (pkey->ameth == NULL || pkey->ameth->pkey_check == NULL) {
243 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
244 		return -2;
245 	}
246 
247 	return pkey->ameth->pkey_check(pkey);
248 }
249 LCRYPTO_ALIAS(EVP_PKEY_check);
250 
251 int
EVP_PKEY_public_check(EVP_PKEY_CTX * ctx)252 EVP_PKEY_public_check(EVP_PKEY_CTX *ctx)
253 {
254 	EVP_PKEY *pkey;
255 
256 	if ((pkey = ctx->pkey) == NULL) {
257 		EVPerror(EVP_R_NO_KEY_SET);
258 		return 0;
259 	}
260 
261 	if (ctx->pmeth->public_check != NULL)
262 		return ctx->pmeth->public_check(pkey);
263 
264 	if (pkey->ameth == NULL || pkey->ameth->pkey_public_check == NULL) {
265 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
266 		return -2;
267 	}
268 
269 	return pkey->ameth->pkey_public_check(pkey);
270 }
271 LCRYPTO_ALIAS(EVP_PKEY_public_check);
272 
273 int
EVP_PKEY_param_check(EVP_PKEY_CTX * ctx)274 EVP_PKEY_param_check(EVP_PKEY_CTX *ctx)
275 {
276 	EVP_PKEY *pkey;
277 
278 	if ((pkey = ctx->pkey) == NULL) {
279 		EVPerror(EVP_R_NO_KEY_SET);
280 		return 0;
281 	}
282 
283 	if (ctx->pmeth->param_check != NULL)
284 		return ctx->pmeth->param_check(pkey);
285 
286 	if (pkey->ameth == NULL || pkey->ameth->pkey_param_check == NULL) {
287 		EVPerror(EVP_R_OPERATION_NOT_SUPPORTED_FOR_THIS_KEYTYPE);
288 		return -2;
289 	}
290 
291 	return pkey->ameth->pkey_param_check(pkey);
292 }
293 LCRYPTO_ALIAS(EVP_PKEY_param_check);
294