2020-03-23 12:40:47 +08:00
|
|
|
/*
|
2021-05-20 21:22:33 +08:00
|
|
|
* Copyright 2020-2021 The OpenSSL Project Authors. All Rights Reserved.
|
2020-03-23 12:40:47 +08:00
|
|
|
*
|
|
|
|
* Licensed under the Apache License 2.0 (the "License"). You may not use
|
|
|
|
* this file except in compliance with the License. You can obtain a copy
|
|
|
|
* in the file LICENSE in the source distribution or at
|
|
|
|
* https://www.openssl.org/source/license.html
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include <openssl/core_names.h>
|
|
|
|
#include "internal/ffc.h"
|
2020-04-15 19:02:52 +08:00
|
|
|
#include "internal/sizes.h"
|
2020-03-23 12:40:47 +08:00
|
|
|
|
|
|
|
/*
|
|
|
|
* The intention with the "backend" source file is to offer backend support
|
|
|
|
* for legacy backends (EVP_PKEY_ASN1_METHOD and EVP_PKEY_METHOD) and provider
|
|
|
|
* implementations alike.
|
|
|
|
*/
|
|
|
|
|
ffc: add _ossl to exported but internal functions
The functions updated are:
ffc_generate_private_key, ffc_named_group_from_uid,
ffc_named_group_to_uid, ffc_params_FIPS186_2_gen_verify,
ffc_params_FIPS186_2_generate, ffc_params_FIPS186_2_validate,
ffc_params_FIPS186_4_gen_verify, ffc_params_FIPS186_4_generate,
ffc_params_FIPS186_4_validate, ffc_params_cleanup, ffc_params_cmp,
ffc_params_copy, ffc_params_enable_flags, ffc_params_flags_from_name,
ffc_params_flags_to_name, ffc_params_fromdata,
ffc_params_get0_pqg, ffc_params_get_validate_params,
ffc_params_init, ffc_params_print, ffc_params_set0_j,
ffc_params_set0_pqg, ffc_params_set_flags, ffc_params_set_gindex,
ffc_params_set_h, ffc_params_set_pcounter, ffc_params_set_seed,
ffc_params_set_validate_params, ffc_params_simple_validate,
ffc_params_todata, ffc_params_validate_unverifiable_g, ffc_set_digest,
ffc_set_group_pqg, ffc_validate_private_key, ffc_validate_public_key
and ffc_validate_public_key_partial.
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/13041)
2020-09-30 13:07:24 +08:00
|
|
|
int ossl_ffc_params_fromdata(FFC_PARAMS *ffc, const OSSL_PARAM params[])
|
2020-03-23 12:40:47 +08:00
|
|
|
{
|
2020-04-15 19:02:52 +08:00
|
|
|
const OSSL_PARAM *prm;
|
2020-03-23 12:40:47 +08:00
|
|
|
const OSSL_PARAM *param_p, *param_q, *param_g;
|
2020-04-15 19:02:52 +08:00
|
|
|
BIGNUM *p = NULL, *q = NULL, *g = NULL, *j = NULL;
|
|
|
|
int i;
|
2020-03-23 12:40:47 +08:00
|
|
|
|
|
|
|
if (ffc == NULL)
|
|
|
|
return 0;
|
|
|
|
|
2020-05-20 21:46:22 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_GROUP_NAME);
|
2020-04-15 19:02:52 +08:00
|
|
|
if (prm != NULL) {
|
2020-04-20 21:05:23 +08:00
|
|
|
/*
|
|
|
|
* In a no-dh build we just go straight to err because we have no
|
|
|
|
* support for this.
|
|
|
|
*/
|
2020-12-02 02:11:59 +08:00
|
|
|
#ifndef OPENSSL_NO_DH
|
|
|
|
const DH_NAMED_GROUP *group = NULL;
|
|
|
|
|
|
|
|
if (prm->data_type != OSSL_PARAM_UTF8_STRING
|
|
|
|
|| (group = ossl_ffc_name_to_dh_named_group(prm->data)) == NULL
|
|
|
|
|| !ossl_ffc_named_group_set_pqg(ffc, group))
|
2020-04-20 21:05:23 +08:00
|
|
|
#endif
|
2020-04-15 19:02:52 +08:00
|
|
|
goto err;
|
|
|
|
}
|
2020-04-15 23:14:00 +08:00
|
|
|
|
2020-03-23 12:40:47 +08:00
|
|
|
param_p = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_P);
|
|
|
|
param_g = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_G);
|
2020-04-15 19:02:52 +08:00
|
|
|
param_q = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_Q);
|
2020-03-23 12:40:47 +08:00
|
|
|
|
|
|
|
if ((param_p != NULL && !OSSL_PARAM_get_BN(param_p, &p))
|
|
|
|
|| (param_q != NULL && !OSSL_PARAM_get_BN(param_q, &q))
|
|
|
|
|| (param_g != NULL && !OSSL_PARAM_get_BN(param_g, &g)))
|
|
|
|
goto err;
|
|
|
|
|
2020-04-15 19:02:52 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_GINDEX);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
|
|
|
goto err;
|
|
|
|
ffc->gindex = i;
|
|
|
|
}
|
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_PCOUNTER);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
|
|
|
goto err;
|
|
|
|
ffc->pcounter = i;
|
|
|
|
}
|
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_COFACTOR);
|
2020-04-27 06:30:49 +08:00
|
|
|
if (prm != NULL && !OSSL_PARAM_get_BN(prm, &j))
|
|
|
|
goto err;
|
2020-04-15 19:02:52 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_H);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
|
|
|
goto err;
|
|
|
|
ffc->h = i;
|
|
|
|
}
|
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_SEED);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (prm->data_type != OSSL_PARAM_OCTET_STRING)
|
|
|
|
goto err;
|
ffc: add _ossl to exported but internal functions
The functions updated are:
ffc_generate_private_key, ffc_named_group_from_uid,
ffc_named_group_to_uid, ffc_params_FIPS186_2_gen_verify,
ffc_params_FIPS186_2_generate, ffc_params_FIPS186_2_validate,
ffc_params_FIPS186_4_gen_verify, ffc_params_FIPS186_4_generate,
ffc_params_FIPS186_4_validate, ffc_params_cleanup, ffc_params_cmp,
ffc_params_copy, ffc_params_enable_flags, ffc_params_flags_from_name,
ffc_params_flags_to_name, ffc_params_fromdata,
ffc_params_get0_pqg, ffc_params_get_validate_params,
ffc_params_init, ffc_params_print, ffc_params_set0_j,
ffc_params_set0_pqg, ffc_params_set_flags, ffc_params_set_gindex,
ffc_params_set_h, ffc_params_set_pcounter, ffc_params_set_seed,
ffc_params_set_validate_params, ffc_params_simple_validate,
ffc_params_todata, ffc_params_validate_unverifiable_g, ffc_set_digest,
ffc_set_group_pqg, ffc_validate_private_key, ffc_validate_public_key
and ffc_validate_public_key_partial.
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/13041)
2020-09-30 13:07:24 +08:00
|
|
|
if (!ossl_ffc_params_set_seed(ffc, prm->data, prm->data_size))
|
2020-04-15 19:02:52 +08:00
|
|
|
goto err;
|
|
|
|
}
|
2021-05-10 08:27:42 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_VALIDATE_PQ);
|
2020-06-17 09:33:16 +08:00
|
|
|
if (prm != NULL) {
|
2021-05-10 08:27:42 +08:00
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
|
|
|
goto err;
|
|
|
|
ossl_ffc_params_enable_flags(ffc, FFC_PARAM_FLAG_VALIDATE_PQ, i);
|
|
|
|
}
|
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_VALIDATE_G);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
2020-06-17 09:33:16 +08:00
|
|
|
goto err;
|
2021-05-10 08:27:42 +08:00
|
|
|
ossl_ffc_params_enable_flags(ffc, FFC_PARAM_FLAG_VALIDATE_G, i);
|
2020-06-17 09:33:16 +08:00
|
|
|
}
|
2021-05-10 08:27:42 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_VALIDATE_LEGACY);
|
|
|
|
if (prm != NULL) {
|
|
|
|
if (!OSSL_PARAM_get_int(prm, &i))
|
|
|
|
goto err;
|
|
|
|
ossl_ffc_params_enable_flags(ffc, FFC_PARAM_FLAG_VALIDATE_LEGACY, i);
|
|
|
|
}
|
|
|
|
|
2020-06-17 09:33:16 +08:00
|
|
|
prm = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_DIGEST);
|
|
|
|
if (prm != NULL) {
|
|
|
|
const OSSL_PARAM *p1;
|
|
|
|
const char *props = NULL;
|
|
|
|
|
|
|
|
if (prm->data_type != OSSL_PARAM_UTF8_STRING)
|
|
|
|
goto err;
|
|
|
|
p1 = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_DIGEST_PROPS);
|
|
|
|
if (p1 != NULL) {
|
|
|
|
if (p1->data_type != OSSL_PARAM_UTF8_STRING)
|
|
|
|
goto err;
|
|
|
|
}
|
ffc: add _ossl to exported but internal functions
The functions updated are:
ffc_generate_private_key, ffc_named_group_from_uid,
ffc_named_group_to_uid, ffc_params_FIPS186_2_gen_verify,
ffc_params_FIPS186_2_generate, ffc_params_FIPS186_2_validate,
ffc_params_FIPS186_4_gen_verify, ffc_params_FIPS186_4_generate,
ffc_params_FIPS186_4_validate, ffc_params_cleanup, ffc_params_cmp,
ffc_params_copy, ffc_params_enable_flags, ffc_params_flags_from_name,
ffc_params_flags_to_name, ffc_params_fromdata,
ffc_params_get0_pqg, ffc_params_get_validate_params,
ffc_params_init, ffc_params_print, ffc_params_set0_j,
ffc_params_set0_pqg, ffc_params_set_flags, ffc_params_set_gindex,
ffc_params_set_h, ffc_params_set_pcounter, ffc_params_set_seed,
ffc_params_set_validate_params, ffc_params_simple_validate,
ffc_params_todata, ffc_params_validate_unverifiable_g, ffc_set_digest,
ffc_set_group_pqg, ffc_validate_private_key, ffc_validate_public_key
and ffc_validate_public_key_partial.
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/13041)
2020-09-30 13:07:24 +08:00
|
|
|
if (!ossl_ffc_set_digest(ffc, prm->data, props))
|
2020-06-17 09:33:16 +08:00
|
|
|
goto err;
|
|
|
|
}
|
|
|
|
|
ffc: add _ossl to exported but internal functions
The functions updated are:
ffc_generate_private_key, ffc_named_group_from_uid,
ffc_named_group_to_uid, ffc_params_FIPS186_2_gen_verify,
ffc_params_FIPS186_2_generate, ffc_params_FIPS186_2_validate,
ffc_params_FIPS186_4_gen_verify, ffc_params_FIPS186_4_generate,
ffc_params_FIPS186_4_validate, ffc_params_cleanup, ffc_params_cmp,
ffc_params_copy, ffc_params_enable_flags, ffc_params_flags_from_name,
ffc_params_flags_to_name, ffc_params_fromdata,
ffc_params_get0_pqg, ffc_params_get_validate_params,
ffc_params_init, ffc_params_print, ffc_params_set0_j,
ffc_params_set0_pqg, ffc_params_set_flags, ffc_params_set_gindex,
ffc_params_set_h, ffc_params_set_pcounter, ffc_params_set_seed,
ffc_params_set_validate_params, ffc_params_simple_validate,
ffc_params_todata, ffc_params_validate_unverifiable_g, ffc_set_digest,
ffc_set_group_pqg, ffc_validate_private_key, ffc_validate_public_key
and ffc_validate_public_key_partial.
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/13041)
2020-09-30 13:07:24 +08:00
|
|
|
ossl_ffc_params_set0_pqg(ffc, p, q, g);
|
|
|
|
ossl_ffc_params_set0_j(ffc, j);
|
2020-03-23 12:40:47 +08:00
|
|
|
return 1;
|
|
|
|
|
|
|
|
err:
|
2020-04-15 19:02:52 +08:00
|
|
|
BN_free(j);
|
2020-03-23 12:40:47 +08:00
|
|
|
BN_free(p);
|
|
|
|
BN_free(q);
|
|
|
|
BN_free(g);
|
|
|
|
return 0;
|
|
|
|
}
|