1cca6fc52SDaniel Fojt /* $OpenBSD: genpkey.c,v 1.13 2019/07/14 03:30:46 guenther Exp $ */
2f5b1c8a1SJohn Marino /* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL
3f5b1c8a1SJohn Marino  * project 2006
4f5b1c8a1SJohn Marino  */
5f5b1c8a1SJohn Marino /* ====================================================================
6f5b1c8a1SJohn Marino  * Copyright (c) 2006 The OpenSSL Project.  All rights reserved.
7f5b1c8a1SJohn Marino  *
8f5b1c8a1SJohn Marino  * Redistribution and use in source and binary forms, with or without
9f5b1c8a1SJohn Marino  * modification, are permitted provided that the following conditions
10f5b1c8a1SJohn Marino  * are met:
11f5b1c8a1SJohn Marino  *
12f5b1c8a1SJohn Marino  * 1. Redistributions of source code must retain the above copyright
13f5b1c8a1SJohn Marino  *    notice, this list of conditions and the following disclaimer.
14f5b1c8a1SJohn Marino  *
15f5b1c8a1SJohn Marino  * 2. Redistributions in binary form must reproduce the above copyright
16f5b1c8a1SJohn Marino  *    notice, this list of conditions and the following disclaimer in
17f5b1c8a1SJohn Marino  *    the documentation and/or other materials provided with the
18f5b1c8a1SJohn Marino  *    distribution.
19f5b1c8a1SJohn Marino  *
20f5b1c8a1SJohn Marino  * 3. All advertising materials mentioning features or use of this
21f5b1c8a1SJohn Marino  *    software must display the following acknowledgment:
22f5b1c8a1SJohn Marino  *    "This product includes software developed by the OpenSSL Project
23f5b1c8a1SJohn Marino  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24f5b1c8a1SJohn Marino  *
25f5b1c8a1SJohn Marino  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26f5b1c8a1SJohn Marino  *    endorse or promote products derived from this software without
27f5b1c8a1SJohn Marino  *    prior written permission. For written permission, please contact
28f5b1c8a1SJohn Marino  *    licensing@OpenSSL.org.
29f5b1c8a1SJohn Marino  *
30f5b1c8a1SJohn Marino  * 5. Products derived from this software may not be called "OpenSSL"
31f5b1c8a1SJohn Marino  *    nor may "OpenSSL" appear in their names without prior written
32f5b1c8a1SJohn Marino  *    permission of the OpenSSL Project.
33f5b1c8a1SJohn Marino  *
34f5b1c8a1SJohn Marino  * 6. Redistributions of any form whatsoever must retain the following
35f5b1c8a1SJohn Marino  *    acknowledgment:
36f5b1c8a1SJohn Marino  *    "This product includes software developed by the OpenSSL Project
37f5b1c8a1SJohn Marino  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38f5b1c8a1SJohn Marino  *
39f5b1c8a1SJohn Marino  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40f5b1c8a1SJohn Marino  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41f5b1c8a1SJohn Marino  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42f5b1c8a1SJohn Marino  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43f5b1c8a1SJohn Marino  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44f5b1c8a1SJohn Marino  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45f5b1c8a1SJohn Marino  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46f5b1c8a1SJohn Marino  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47f5b1c8a1SJohn Marino  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48f5b1c8a1SJohn Marino  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49f5b1c8a1SJohn Marino  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50f5b1c8a1SJohn Marino  * OF THE POSSIBILITY OF SUCH DAMAGE.
51f5b1c8a1SJohn Marino  * ====================================================================
52f5b1c8a1SJohn Marino  *
53f5b1c8a1SJohn Marino  * This product includes cryptographic software written by Eric Young
54f5b1c8a1SJohn Marino  * (eay@cryptsoft.com).  This product includes software written by Tim
55f5b1c8a1SJohn Marino  * Hudson (tjh@cryptsoft.com).
56f5b1c8a1SJohn Marino  *
57f5b1c8a1SJohn Marino  */
58f5b1c8a1SJohn Marino 
59f5b1c8a1SJohn Marino #include <stdio.h>
60f5b1c8a1SJohn Marino #include <string.h>
61f5b1c8a1SJohn Marino 
62f5b1c8a1SJohn Marino #include "apps.h"
63f5b1c8a1SJohn Marino 
64f5b1c8a1SJohn Marino #include <openssl/err.h>
65f5b1c8a1SJohn Marino #include <openssl/evp.h>
66f5b1c8a1SJohn Marino #include <openssl/pem.h>
67f5b1c8a1SJohn Marino 
6872c33676SMaxim Ag static int init_keygen_file(BIO * err, EVP_PKEY_CTX **pctx, const char *file);
69f5b1c8a1SJohn Marino static int genpkey_cb(EVP_PKEY_CTX * ctx);
70f5b1c8a1SJohn Marino 
7172c33676SMaxim Ag struct {
7272c33676SMaxim Ag 	const EVP_CIPHER *cipher;
7372c33676SMaxim Ag 	EVP_PKEY_CTX **ctx;
7472c33676SMaxim Ag 	int do_param;
7572c33676SMaxim Ag 	char *outfile;
7672c33676SMaxim Ag 	int outformat;
7772c33676SMaxim Ag 	char *passarg;
7872c33676SMaxim Ag 	int text;
7972c33676SMaxim Ag } genpkey_config;
8072c33676SMaxim Ag 
8172c33676SMaxim Ag static int
genpkey_opt_algorithm(char * arg)8272c33676SMaxim Ag genpkey_opt_algorithm(char *arg)
8372c33676SMaxim Ag {
8472c33676SMaxim Ag 	if (!init_gen_str(bio_err, genpkey_config.ctx, arg,
8572c33676SMaxim Ag 	    genpkey_config.do_param))
8672c33676SMaxim Ag 		return (1);
8772c33676SMaxim Ag 
8872c33676SMaxim Ag 	return (0);
8972c33676SMaxim Ag }
9072c33676SMaxim Ag 
9172c33676SMaxim Ag static int
genpkey_opt_cipher(int argc,char ** argv,int * argsused)9272c33676SMaxim Ag genpkey_opt_cipher(int argc, char **argv, int *argsused)
9372c33676SMaxim Ag {
9472c33676SMaxim Ag 	char *name = argv[0];
9572c33676SMaxim Ag 
9672c33676SMaxim Ag 	if (*name++ != '-')
9772c33676SMaxim Ag 		return (1);
9872c33676SMaxim Ag 
9972c33676SMaxim Ag 	if (genpkey_config.do_param == 1)
10072c33676SMaxim Ag 		return (1);
10172c33676SMaxim Ag 
10272c33676SMaxim Ag 	if (strcmp(name, "none") == 0) {
10372c33676SMaxim Ag 		genpkey_config.cipher = NULL;
10472c33676SMaxim Ag 		*argsused = 1;
10572c33676SMaxim Ag 		return (0);
10672c33676SMaxim Ag 	}
10772c33676SMaxim Ag 
10872c33676SMaxim Ag 	if ((genpkey_config.cipher = EVP_get_cipherbyname(name)) != NULL) {
10972c33676SMaxim Ag 		*argsused = 1;
11072c33676SMaxim Ag 		return (0);
11172c33676SMaxim Ag 	}
11272c33676SMaxim Ag 
11372c33676SMaxim Ag 	return (1);
11472c33676SMaxim Ag }
11572c33676SMaxim Ag 
11672c33676SMaxim Ag static int
genpkey_opt_paramfile(char * arg)11772c33676SMaxim Ag genpkey_opt_paramfile(char *arg)
11872c33676SMaxim Ag {
11972c33676SMaxim Ag 	if (genpkey_config.do_param == 1)
12072c33676SMaxim Ag 		return (1);
12172c33676SMaxim Ag 	if (!init_keygen_file(bio_err, genpkey_config.ctx, arg))
12272c33676SMaxim Ag 		return (1);
12372c33676SMaxim Ag 
12472c33676SMaxim Ag 	return (0);
12572c33676SMaxim Ag }
12672c33676SMaxim Ag 
12772c33676SMaxim Ag static int
genpkey_opt_pkeyopt(char * arg)12872c33676SMaxim Ag genpkey_opt_pkeyopt(char *arg)
12972c33676SMaxim Ag {
13072c33676SMaxim Ag 	if (*genpkey_config.ctx == NULL) {
13172c33676SMaxim Ag 		BIO_puts(bio_err, "No keytype specified\n");
13272c33676SMaxim Ag 		return (1);
13372c33676SMaxim Ag 	}
13472c33676SMaxim Ag 
13572c33676SMaxim Ag 	if (pkey_ctrl_string(*genpkey_config.ctx, arg) <= 0) {
13672c33676SMaxim Ag 		BIO_puts(bio_err, "parameter setting error\n");
13772c33676SMaxim Ag 		ERR_print_errors(bio_err);
13872c33676SMaxim Ag 		return (1);
13972c33676SMaxim Ag 	}
14072c33676SMaxim Ag 
14172c33676SMaxim Ag 	return (0);
14272c33676SMaxim Ag }
14372c33676SMaxim Ag 
144cca6fc52SDaniel Fojt static const struct option genpkey_options[] = {
14572c33676SMaxim Ag 	{
14672c33676SMaxim Ag 		.name = "algorithm",
14772c33676SMaxim Ag 		.argname = "name",
14872c33676SMaxim Ag 		.desc = "Public key algorithm to use (must precede -pkeyopt)",
14972c33676SMaxim Ag 		.type = OPTION_ARG_FUNC,
15072c33676SMaxim Ag 		.opt.argfunc = genpkey_opt_algorithm,
15172c33676SMaxim Ag 	},
15272c33676SMaxim Ag 	{
15372c33676SMaxim Ag 		.name = "genparam",
15472c33676SMaxim Ag 		.desc = "Generate a set of parameters instead of a private key",
15572c33676SMaxim Ag 		.type = OPTION_FLAG,
15672c33676SMaxim Ag 		.opt.flag = &genpkey_config.do_param,
15772c33676SMaxim Ag 	},
15872c33676SMaxim Ag 	{
15972c33676SMaxim Ag 		.name = "out",
16072c33676SMaxim Ag 		.argname = "file",
16172c33676SMaxim Ag 		.desc = "Output file to write to (default stdout)",
16272c33676SMaxim Ag 		.type = OPTION_ARG,
16372c33676SMaxim Ag 		.opt.arg = &genpkey_config.outfile,
16472c33676SMaxim Ag 	},
16572c33676SMaxim Ag 	{
16672c33676SMaxim Ag 		.name = "outform",
16772c33676SMaxim Ag 		.argname = "format",
16872c33676SMaxim Ag 		.desc = "Output format (DER or PEM)",
16972c33676SMaxim Ag 		.type = OPTION_ARG_FORMAT,
17072c33676SMaxim Ag 		.opt.value = &genpkey_config.outformat,
17172c33676SMaxim Ag 	},
17272c33676SMaxim Ag 	{
17372c33676SMaxim Ag 		.name = "paramfile",
17472c33676SMaxim Ag 		.argname = "file",
17572c33676SMaxim Ag 		.desc = "File to load public key algorithm parameters from\n"
17672c33676SMaxim Ag 		    "(must precede -pkeyopt)",
17772c33676SMaxim Ag 		.type = OPTION_ARG_FUNC,
17872c33676SMaxim Ag 		.opt.argfunc = genpkey_opt_paramfile,
17972c33676SMaxim Ag 	},
18072c33676SMaxim Ag 	{
18172c33676SMaxim Ag 		.name = "pass",
18272c33676SMaxim Ag 		.argname = "arg",
18372c33676SMaxim Ag 		.desc = "Output file password source",
18472c33676SMaxim Ag 		.type = OPTION_ARG,
18572c33676SMaxim Ag 		.opt.arg = &genpkey_config.passarg,
18672c33676SMaxim Ag 	},
18772c33676SMaxim Ag 	{
18872c33676SMaxim Ag 		.name = "pkeyopt",
18972c33676SMaxim Ag 		.argname = "opt:value",
19072c33676SMaxim Ag 		.desc = "Set public key algorithm option to the given value",
19172c33676SMaxim Ag 		.type = OPTION_ARG_FUNC,
19272c33676SMaxim Ag 		.opt.argfunc = genpkey_opt_pkeyopt,
19372c33676SMaxim Ag 	},
19472c33676SMaxim Ag 	{
19572c33676SMaxim Ag 		.name = "text",
19672c33676SMaxim Ag 		.desc = "Print the private/public key in human readable form",
19772c33676SMaxim Ag 		.type = OPTION_FLAG,
19872c33676SMaxim Ag 		.opt.flag = &genpkey_config.text,
19972c33676SMaxim Ag 	},
20072c33676SMaxim Ag 	{
20172c33676SMaxim Ag 		.name = NULL,
20272c33676SMaxim Ag 		.type = OPTION_ARGV_FUNC,
20372c33676SMaxim Ag 		.opt.argvfunc = genpkey_opt_cipher,
20472c33676SMaxim Ag 	},
20572c33676SMaxim Ag 	{NULL},
20672c33676SMaxim Ag };
20772c33676SMaxim Ag 
20872c33676SMaxim Ag static void
genpkey_usage()20972c33676SMaxim Ag genpkey_usage()
21072c33676SMaxim Ag {
21172c33676SMaxim Ag 	fprintf(stderr,
21272c33676SMaxim Ag 	    "usage: genpkey [-algorithm alg] [cipher] [-genparam] [-out file]\n"
21372c33676SMaxim Ag 	    "    [-outform der | pem] [-paramfile file] [-pass arg]\n"
21472c33676SMaxim Ag 	    "    [-pkeyopt opt:value] [-text]\n\n");
21572c33676SMaxim Ag 	options_usage(genpkey_options);
21672c33676SMaxim Ag }
21772c33676SMaxim Ag 
218f5b1c8a1SJohn Marino int
genpkey_main(int argc,char ** argv)219f5b1c8a1SJohn Marino genpkey_main(int argc, char **argv)
220f5b1c8a1SJohn Marino {
221f5b1c8a1SJohn Marino 	BIO *in = NULL, *out = NULL;
222f5b1c8a1SJohn Marino 	EVP_PKEY_CTX *ctx = NULL;
22372c33676SMaxim Ag 	EVP_PKEY *pkey = NULL;
224f5b1c8a1SJohn Marino 	char *pass = NULL;
225f5b1c8a1SJohn Marino 	int ret = 1, rv;
226f5b1c8a1SJohn Marino 
227f5b1c8a1SJohn Marino 	if (single_execution) {
22872c33676SMaxim Ag 		if (pledge("stdio cpath wpath rpath tty", NULL) == -1) {
229f5b1c8a1SJohn Marino 			perror("pledge");
230f5b1c8a1SJohn Marino 			exit(1);
231f5b1c8a1SJohn Marino 		}
232f5b1c8a1SJohn Marino 	}
233f5b1c8a1SJohn Marino 
23472c33676SMaxim Ag 	memset(&genpkey_config, 0, sizeof(genpkey_config));
23572c33676SMaxim Ag 	genpkey_config.ctx = &ctx;
23672c33676SMaxim Ag 	genpkey_config.outformat = FORMAT_PEM;
237f5b1c8a1SJohn Marino 
23872c33676SMaxim Ag 	if (options_parse(argc, argv, genpkey_options, NULL, NULL) != 0) {
23972c33676SMaxim Ag 		genpkey_usage();
240f5b1c8a1SJohn Marino 		goto end;
241f5b1c8a1SJohn Marino 	}
242f5b1c8a1SJohn Marino 
24372c33676SMaxim Ag 	if (ctx == NULL) {
24472c33676SMaxim Ag 		genpkey_usage();
245f5b1c8a1SJohn Marino 		goto end;
246f5b1c8a1SJohn Marino 	}
24772c33676SMaxim Ag 
24872c33676SMaxim Ag 	if (!app_passwd(bio_err, genpkey_config.passarg, NULL, &pass, NULL)) {
249f5b1c8a1SJohn Marino 		BIO_puts(bio_err, "Error getting password\n");
250f5b1c8a1SJohn Marino 		goto end;
251f5b1c8a1SJohn Marino 	}
25272c33676SMaxim Ag 	if (genpkey_config.outfile != NULL) {
25372c33676SMaxim Ag 		if ((out = BIO_new_file(genpkey_config.outfile, "wb")) ==
25472c33676SMaxim Ag 		    NULL) {
25572c33676SMaxim Ag 			BIO_printf(bio_err, "Can't open output file %s\n",
25672c33676SMaxim Ag 			    genpkey_config.outfile);
257f5b1c8a1SJohn Marino 			goto end;
258f5b1c8a1SJohn Marino 		}
259f5b1c8a1SJohn Marino 	} else {
260f5b1c8a1SJohn Marino 		out = BIO_new_fp(stdout, BIO_NOCLOSE);
261f5b1c8a1SJohn Marino 	}
262f5b1c8a1SJohn Marino 
263f5b1c8a1SJohn Marino 	EVP_PKEY_CTX_set_cb(ctx, genpkey_cb);
264f5b1c8a1SJohn Marino 	EVP_PKEY_CTX_set_app_data(ctx, bio_err);
265f5b1c8a1SJohn Marino 
26672c33676SMaxim Ag 	if (genpkey_config.do_param) {
267f5b1c8a1SJohn Marino 		if (EVP_PKEY_paramgen(ctx, &pkey) <= 0) {
268f5b1c8a1SJohn Marino 			BIO_puts(bio_err, "Error generating parameters\n");
269f5b1c8a1SJohn Marino 			ERR_print_errors(bio_err);
270f5b1c8a1SJohn Marino 			goto end;
271f5b1c8a1SJohn Marino 		}
272f5b1c8a1SJohn Marino 	} else {
273f5b1c8a1SJohn Marino 		if (EVP_PKEY_keygen(ctx, &pkey) <= 0) {
274f5b1c8a1SJohn Marino 			BIO_puts(bio_err, "Error generating key\n");
275f5b1c8a1SJohn Marino 			ERR_print_errors(bio_err);
276f5b1c8a1SJohn Marino 			goto end;
277f5b1c8a1SJohn Marino 		}
278f5b1c8a1SJohn Marino 	}
279f5b1c8a1SJohn Marino 
28072c33676SMaxim Ag 	if (genpkey_config.do_param)
281f5b1c8a1SJohn Marino 		rv = PEM_write_bio_Parameters(out, pkey);
28272c33676SMaxim Ag 	else if (genpkey_config.outformat == FORMAT_PEM)
28372c33676SMaxim Ag 		rv = PEM_write_bio_PrivateKey(out, pkey, genpkey_config.cipher,
28472c33676SMaxim Ag 		    NULL, 0, NULL, pass);
28572c33676SMaxim Ag 	else if (genpkey_config.outformat == FORMAT_ASN1)
286f5b1c8a1SJohn Marino 		rv = i2d_PrivateKey_bio(out, pkey);
287f5b1c8a1SJohn Marino 	else {
288f5b1c8a1SJohn Marino 		BIO_printf(bio_err, "Bad format specified for key\n");
289f5b1c8a1SJohn Marino 		goto end;
290f5b1c8a1SJohn Marino 	}
291f5b1c8a1SJohn Marino 
292f5b1c8a1SJohn Marino 	if (rv <= 0) {
293f5b1c8a1SJohn Marino 		BIO_puts(bio_err, "Error writing key\n");
294f5b1c8a1SJohn Marino 		ERR_print_errors(bio_err);
295f5b1c8a1SJohn Marino 	}
29672c33676SMaxim Ag 	if (genpkey_config.text) {
29772c33676SMaxim Ag 		if (genpkey_config.do_param)
298f5b1c8a1SJohn Marino 			rv = EVP_PKEY_print_params(out, pkey, 0, NULL);
299f5b1c8a1SJohn Marino 		else
300f5b1c8a1SJohn Marino 			rv = EVP_PKEY_print_private(out, pkey, 0, NULL);
301f5b1c8a1SJohn Marino 
302f5b1c8a1SJohn Marino 		if (rv <= 0) {
303f5b1c8a1SJohn Marino 			BIO_puts(bio_err, "Error printing key\n");
304f5b1c8a1SJohn Marino 			ERR_print_errors(bio_err);
305f5b1c8a1SJohn Marino 		}
306f5b1c8a1SJohn Marino 	}
307f5b1c8a1SJohn Marino 	ret = 0;
308f5b1c8a1SJohn Marino 
309f5b1c8a1SJohn Marino  end:
310f5b1c8a1SJohn Marino 	EVP_PKEY_free(pkey);
311f5b1c8a1SJohn Marino 	EVP_PKEY_CTX_free(ctx);
312f5b1c8a1SJohn Marino 	BIO_free_all(out);
313f5b1c8a1SJohn Marino 	BIO_free(in);
314f5b1c8a1SJohn Marino 	free(pass);
315f5b1c8a1SJohn Marino 
316f5b1c8a1SJohn Marino 	return ret;
317f5b1c8a1SJohn Marino }
318f5b1c8a1SJohn Marino 
319f5b1c8a1SJohn Marino static int
init_keygen_file(BIO * err,EVP_PKEY_CTX ** pctx,const char * file)32072c33676SMaxim Ag init_keygen_file(BIO * err, EVP_PKEY_CTX ** pctx, const char *file)
321f5b1c8a1SJohn Marino {
322f5b1c8a1SJohn Marino 	BIO *pbio;
323f5b1c8a1SJohn Marino 	EVP_PKEY *pkey = NULL;
324f5b1c8a1SJohn Marino 	EVP_PKEY_CTX *ctx = NULL;
325f5b1c8a1SJohn Marino 	if (*pctx) {
326f5b1c8a1SJohn Marino 		BIO_puts(err, "Parameters already set!\n");
327f5b1c8a1SJohn Marino 		return 0;
328f5b1c8a1SJohn Marino 	}
329f5b1c8a1SJohn Marino 	pbio = BIO_new_file(file, "r");
330f5b1c8a1SJohn Marino 	if (!pbio) {
331f5b1c8a1SJohn Marino 		BIO_printf(err, "Can't open parameter file %s\n", file);
332f5b1c8a1SJohn Marino 		return 0;
333f5b1c8a1SJohn Marino 	}
334f5b1c8a1SJohn Marino 	pkey = PEM_read_bio_Parameters(pbio, NULL);
335f5b1c8a1SJohn Marino 	BIO_free(pbio);
336f5b1c8a1SJohn Marino 
337f5b1c8a1SJohn Marino 	if (!pkey) {
338f5b1c8a1SJohn Marino 		BIO_printf(bio_err, "Error reading parameter file %s\n", file);
339f5b1c8a1SJohn Marino 		return 0;
340f5b1c8a1SJohn Marino 	}
341f5b1c8a1SJohn Marino 	ctx = EVP_PKEY_CTX_new(pkey, NULL);
342f5b1c8a1SJohn Marino 	if (!ctx)
343f5b1c8a1SJohn Marino 		goto err;
344f5b1c8a1SJohn Marino 	if (EVP_PKEY_keygen_init(ctx) <= 0)
345f5b1c8a1SJohn Marino 		goto err;
346f5b1c8a1SJohn Marino 	EVP_PKEY_free(pkey);
347f5b1c8a1SJohn Marino 	*pctx = ctx;
348f5b1c8a1SJohn Marino 	return 1;
349f5b1c8a1SJohn Marino 
350f5b1c8a1SJohn Marino  err:
351f5b1c8a1SJohn Marino 	BIO_puts(err, "Error initializing context\n");
352f5b1c8a1SJohn Marino 	ERR_print_errors(err);
353f5b1c8a1SJohn Marino 	EVP_PKEY_CTX_free(ctx);
354f5b1c8a1SJohn Marino 	EVP_PKEY_free(pkey);
355f5b1c8a1SJohn Marino 	return 0;
356f5b1c8a1SJohn Marino 
357f5b1c8a1SJohn Marino }
358f5b1c8a1SJohn Marino 
359f5b1c8a1SJohn Marino int
init_gen_str(BIO * err,EVP_PKEY_CTX ** pctx,const char * algname,int do_param)36072c33676SMaxim Ag init_gen_str(BIO * err, EVP_PKEY_CTX ** pctx, const char *algname, int do_param)
361f5b1c8a1SJohn Marino {
362f5b1c8a1SJohn Marino 	const EVP_PKEY_ASN1_METHOD *ameth;
36372c33676SMaxim Ag 	EVP_PKEY_CTX *ctx = NULL;
364f5b1c8a1SJohn Marino 	int pkey_id;
365f5b1c8a1SJohn Marino 
366f5b1c8a1SJohn Marino 	if (*pctx) {
367f5b1c8a1SJohn Marino 		BIO_puts(err, "Algorithm already set!\n");
368f5b1c8a1SJohn Marino 		return 0;
369f5b1c8a1SJohn Marino 	}
370f5b1c8a1SJohn Marino 	ameth = EVP_PKEY_asn1_find_str(NULL, algname, -1);
371f5b1c8a1SJohn Marino 
372f5b1c8a1SJohn Marino 	if (!ameth) {
373f5b1c8a1SJohn Marino 		BIO_printf(bio_err, "Algorithm %s not found\n", algname);
374f5b1c8a1SJohn Marino 		return 0;
375f5b1c8a1SJohn Marino 	}
376f5b1c8a1SJohn Marino 	ERR_clear_error();
377f5b1c8a1SJohn Marino 
378f5b1c8a1SJohn Marino 	EVP_PKEY_asn1_get0_info(&pkey_id, NULL, NULL, NULL, NULL, ameth);
379f5b1c8a1SJohn Marino 	ctx = EVP_PKEY_CTX_new_id(pkey_id, NULL);
380f5b1c8a1SJohn Marino 
381f5b1c8a1SJohn Marino 	if (!ctx)
382f5b1c8a1SJohn Marino 		goto err;
383f5b1c8a1SJohn Marino 	if (do_param) {
384f5b1c8a1SJohn Marino 		if (EVP_PKEY_paramgen_init(ctx) <= 0)
385f5b1c8a1SJohn Marino 			goto err;
386f5b1c8a1SJohn Marino 	} else {
387f5b1c8a1SJohn Marino 		if (EVP_PKEY_keygen_init(ctx) <= 0)
388f5b1c8a1SJohn Marino 			goto err;
389f5b1c8a1SJohn Marino 	}
390f5b1c8a1SJohn Marino 
391f5b1c8a1SJohn Marino 	*pctx = ctx;
392f5b1c8a1SJohn Marino 	return 1;
393f5b1c8a1SJohn Marino 
394f5b1c8a1SJohn Marino  err:
395f5b1c8a1SJohn Marino 	BIO_printf(err, "Error initializing %s context\n", algname);
396f5b1c8a1SJohn Marino 	ERR_print_errors(err);
397f5b1c8a1SJohn Marino 	EVP_PKEY_CTX_free(ctx);
398f5b1c8a1SJohn Marino 	return 0;
399f5b1c8a1SJohn Marino 
400f5b1c8a1SJohn Marino }
401f5b1c8a1SJohn Marino 
402f5b1c8a1SJohn Marino static int
genpkey_cb(EVP_PKEY_CTX * ctx)403f5b1c8a1SJohn Marino genpkey_cb(EVP_PKEY_CTX * ctx)
404f5b1c8a1SJohn Marino {
405f5b1c8a1SJohn Marino 	char c = '*';
406f5b1c8a1SJohn Marino 	BIO *b = EVP_PKEY_CTX_get_app_data(ctx);
407f5b1c8a1SJohn Marino 	int p;
408f5b1c8a1SJohn Marino 	p = EVP_PKEY_CTX_get_keygen_info(ctx, 0);
409f5b1c8a1SJohn Marino 	if (p == 0)
410f5b1c8a1SJohn Marino 		c = '.';
411f5b1c8a1SJohn Marino 	if (p == 1)
412f5b1c8a1SJohn Marino 		c = '+';
413f5b1c8a1SJohn Marino 	if (p == 2)
414f5b1c8a1SJohn Marino 		c = '*';
415f5b1c8a1SJohn Marino 	if (p == 3)
416f5b1c8a1SJohn Marino 		c = '\n';
417f5b1c8a1SJohn Marino 	BIO_write(b, &c, 1);
418f5b1c8a1SJohn Marino 	(void) BIO_flush(b);
419f5b1c8a1SJohn Marino 	return 1;
420f5b1c8a1SJohn Marino }
421