1 /* crypto/asn1/t_pkey.c */
2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
37 * 4. If you include any Windows specific code (or a derivative thereof) from
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
58 /* ====================================================================
59 * Copyright 2002 Sun Microsystems, Inc. ALL RIGHTS RESERVED.
60 * Binary polynomial ECC support in OpenSSL originally developed by
61 * SUN MICROSYSTEMS, INC., and contributed to the OpenSSL project.
66 #include <openssl/objects.h>
67 #include <openssl/buffer.h>
68 #include <openssl/bn.h>
69 #ifndef OPENSSL_NO_RSA
70 #include <openssl/rsa.h>
73 #include <openssl/dh.h>
75 #ifndef OPENSSL_NO_DSA
76 #include <openssl/dsa.h>
79 #include <openssl/ec.h>
82 static int print(BIO
*fp
,const char *str
, const BIGNUM
*num
,
83 unsigned char *buf
,int off
);
85 static int print_bin(BIO
*fp
, const char *str
, const unsigned char *num
,
88 #ifndef OPENSSL_NO_RSA
89 #ifndef OPENSSL_NO_FP_API
90 int RSA_print_fp(FILE *fp
, const RSA
*x
, int off
)
95 if ((b
=BIO_new(BIO_s_file())) == NULL
)
97 RSAerr(RSA_F_RSA_PRINT_FP
,ERR_R_BUF_LIB
);
100 BIO_set_fp(b
,fp
,BIO_NOCLOSE
);
101 ret
=RSA_print(b
,x
,off
);
107 int RSA_print(BIO
*bp
, const RSA
*x
, int off
)
111 unsigned char *m
=NULL
;
112 int ret
=0, mod_len
= 0;
116 buf_len
= (size_t)BN_num_bytes(x
->n
);
118 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->e
)))
121 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->d
)))
124 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->p
)))
127 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->q
)))
130 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->dmp1
)))
133 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->dmq1
)))
136 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->iqmp
)))
139 m
=(unsigned char *)OPENSSL_malloc(buf_len
+10);
142 RSAerr(RSA_F_RSA_PRINT
,ERR_R_MALLOC_FAILURE
);
147 mod_len
= BN_num_bits(x
->n
);
151 if(!BIO_indent(bp
,off
,128))
153 if (BIO_printf(bp
,"Private-Key: (%d bit)\n", mod_len
)
158 BIO_snprintf(str
,sizeof str
,"Modulus (%d bit):", mod_len
);
160 BUF_strlcpy(str
,"modulus:",sizeof str
);
161 if (!print(bp
,str
,x
->n
,m
,off
)) goto err
;
162 s
=(x
->d
== NULL
)?"Exponent:":"publicExponent:";
163 if ((x
->e
!= NULL
) && !print(bp
,s
,x
->e
,m
,off
))
165 if ((x
->d
!= NULL
) && !print(bp
,"privateExponent:",x
->d
,m
,off
))
167 if ((x
->p
!= NULL
) && !print(bp
,"prime1:",x
->p
,m
,off
))
169 if ((x
->q
!= NULL
) && !print(bp
,"prime2:",x
->q
,m
,off
))
171 if ((x
->dmp1
!= NULL
) && !print(bp
,"exponent1:",x
->dmp1
,m
,off
))
173 if ((x
->dmq1
!= NULL
) && !print(bp
,"exponent2:",x
->dmq1
,m
,off
))
175 if ((x
->iqmp
!= NULL
) && !print(bp
,"coefficient:",x
->iqmp
,m
,off
))
179 if (m
!= NULL
) OPENSSL_free(m
);
182 #endif /* OPENSSL_NO_RSA */
184 #ifndef OPENSSL_NO_DSA
185 #ifndef OPENSSL_NO_FP_API
186 int DSA_print_fp(FILE *fp
, const DSA
*x
, int off
)
191 if ((b
=BIO_new(BIO_s_file())) == NULL
)
193 DSAerr(DSA_F_DSA_PRINT_FP
,ERR_R_BUF_LIB
);
196 BIO_set_fp(b
,fp
,BIO_NOCLOSE
);
197 ret
=DSA_print(b
,x
,off
);
203 int DSA_print(BIO
*bp
, const DSA
*x
, int off
)
205 unsigned char *m
=NULL
;
210 buf_len
= (size_t)BN_num_bytes(x
->p
);
213 DSAerr(DSA_F_DSA_PRINT
,DSA_R_MISSING_PARAMETERS
);
217 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->q
)))
220 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->g
)))
223 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->priv_key
)))
226 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->pub_key
)))
229 m
=(unsigned char *)OPENSSL_malloc(buf_len
+10);
232 DSAerr(DSA_F_DSA_PRINT
,ERR_R_MALLOC_FAILURE
);
236 if (x
->priv_key
!= NULL
)
238 if(!BIO_indent(bp
,off
,128))
240 if (BIO_printf(bp
,"Private-Key: (%d bit)\n",BN_num_bits(x
->p
))
244 if ((x
->priv_key
!= NULL
) && !print(bp
,"priv:",x
->priv_key
,m
,off
))
246 if ((x
->pub_key
!= NULL
) && !print(bp
,"pub: ",x
->pub_key
,m
,off
))
248 if ((x
->p
!= NULL
) && !print(bp
,"P: ",x
->p
,m
,off
)) goto err
;
249 if ((x
->q
!= NULL
) && !print(bp
,"Q: ",x
->q
,m
,off
)) goto err
;
250 if ((x
->g
!= NULL
) && !print(bp
,"G: ",x
->g
,m
,off
)) goto err
;
253 if (m
!= NULL
) OPENSSL_free(m
);
256 #endif /* !OPENSSL_NO_DSA */
258 #ifndef OPENSSL_NO_EC
259 #ifndef OPENSSL_NO_FP_API
260 int ECPKParameters_print_fp(FILE *fp
, const EC_GROUP
*x
, int off
)
265 if ((b
=BIO_new(BIO_s_file())) == NULL
)
267 ECerr(EC_F_ECPKPARAMETERS_PRINT_FP
,ERR_R_BUF_LIB
);
270 BIO_set_fp(b
, fp
, BIO_NOCLOSE
);
271 ret
= ECPKParameters_print(b
, x
, off
);
276 int EC_KEY_print_fp(FILE *fp
, const EC_KEY
*x
, int off
)
281 if ((b
=BIO_new(BIO_s_file())) == NULL
)
283 ECerr(EC_F_EC_KEY_PRINT_FP
, ERR_R_BIO_LIB
);
286 BIO_set_fp(b
, fp
, BIO_NOCLOSE
);
287 ret
= EC_KEY_print(b
, x
, off
);
293 int ECPKParameters_print(BIO
*bp
, const EC_GROUP
*x
, int off
)
295 unsigned char *buffer
=NULL
;
297 int ret
=0, reason
=ERR_R_BIO_LIB
;
299 const EC_POINT
*point
=NULL
;
300 BIGNUM
*p
=NULL
, *a
=NULL
, *b
=NULL
, *gen
=NULL
,
301 *order
=NULL
, *cofactor
=NULL
;
302 const unsigned char *seed
;
305 static const char *gen_compressed
= "Generator (compressed):";
306 static const char *gen_uncompressed
= "Generator (uncompressed):";
307 static const char *gen_hybrid
= "Generator (hybrid):";
311 reason
= ERR_R_PASSED_NULL_PARAMETER
;
315 if (EC_GROUP_get_asn1_flag(x
))
317 /* the curve parameter are given by an asn1 OID */
320 if (!BIO_indent(bp
, off
, 128))
323 nid
= EC_GROUP_get_curve_name(x
);
327 if (BIO_printf(bp
, "ASN1 OID: %s", OBJ_nid2sn(nid
)) <= 0)
329 if (BIO_printf(bp
, "\n") <= 0)
334 /* explicit parameters */
336 point_conversion_form_t form
;
337 int tmp_nid
= EC_METHOD_get_field_type(EC_GROUP_method_of(x
));
339 if (tmp_nid
== NID_X9_62_characteristic_two_field
)
342 if ((p
= BN_new()) == NULL
|| (a
= BN_new()) == NULL
||
343 (b
= BN_new()) == NULL
|| (order
= BN_new()) == NULL
||
344 (cofactor
= BN_new()) == NULL
)
346 reason
= ERR_R_MALLOC_FAILURE
;
352 if (!EC_GROUP_get_curve_GF2m(x
, p
, a
, b
, ctx
))
354 reason
= ERR_R_EC_LIB
;
358 else /* prime field */
360 if (!EC_GROUP_get_curve_GFp(x
, p
, a
, b
, ctx
))
362 reason
= ERR_R_EC_LIB
;
367 if ((point
= EC_GROUP_get0_generator(x
)) == NULL
)
369 reason
= ERR_R_EC_LIB
;
372 if (!EC_GROUP_get_order(x
, order
, NULL
) ||
373 !EC_GROUP_get_cofactor(x
, cofactor
, NULL
))
375 reason
= ERR_R_EC_LIB
;
379 form
= EC_GROUP_get_point_conversion_form(x
);
381 if ((gen
= EC_POINT_point2bn(x
, point
,
382 form
, NULL
, ctx
)) == NULL
)
384 reason
= ERR_R_EC_LIB
;
388 buf_len
= (size_t)BN_num_bytes(p
);
389 if (buf_len
< (i
= (size_t)BN_num_bytes(a
)))
391 if (buf_len
< (i
= (size_t)BN_num_bytes(b
)))
393 if (buf_len
< (i
= (size_t)BN_num_bytes(gen
)))
395 if (buf_len
< (i
= (size_t)BN_num_bytes(order
)))
397 if (buf_len
< (i
= (size_t)BN_num_bytes(cofactor
)))
400 if ((seed
= EC_GROUP_get0_seed(x
)) != NULL
)
401 seed_len
= EC_GROUP_get_seed_len(x
);
404 if ((buffer
= OPENSSL_malloc(buf_len
)) == NULL
)
406 reason
= ERR_R_MALLOC_FAILURE
;
410 if (!BIO_indent(bp
, off
, 128))
413 /* print the 'short name' of the field type */
414 if (BIO_printf(bp
, "Field Type: %s\n", OBJ_nid2sn(tmp_nid
))
420 /* print the 'short name' of the base type OID */
421 int basis_type
= EC_GROUP_get_basis_type(x
);
425 if (!BIO_indent(bp
, off
, 128))
428 if (BIO_printf(bp
, "Basis Type: %s\n",
429 OBJ_nid2sn(basis_type
)) <= 0)
432 /* print the polynomial */
433 if ((p
!= NULL
) && !print(bp
, "Polynomial:", p
, buffer
,
439 if ((p
!= NULL
) && !print(bp
, "Prime:", p
, buffer
,off
))
442 if ((a
!= NULL
) && !print(bp
, "A: ", a
, buffer
, off
))
444 if ((b
!= NULL
) && !print(bp
, "B: ", b
, buffer
, off
))
446 if (form
== POINT_CONVERSION_COMPRESSED
)
448 if ((gen
!= NULL
) && !print(bp
, gen_compressed
, gen
,
452 else if (form
== POINT_CONVERSION_UNCOMPRESSED
)
454 if ((gen
!= NULL
) && !print(bp
, gen_uncompressed
, gen
,
458 else /* form == POINT_CONVERSION_HYBRID */
460 if ((gen
!= NULL
) && !print(bp
, gen_hybrid
, gen
,
464 if ((order
!= NULL
) && !print(bp
, "Order: ", order
,
465 buffer
, off
)) goto err
;
466 if ((cofactor
!= NULL
) && !print(bp
, "Cofactor: ", cofactor
,
467 buffer
, off
)) goto err
;
468 if (seed
&& !print_bin(bp
, "Seed:", seed
, seed_len
, off
))
474 ECerr(EC_F_ECPKPARAMETERS_PRINT
, reason
);
490 OPENSSL_free(buffer
);
494 int EC_KEY_print(BIO
*bp
, const EC_KEY
*x
, int off
)
496 unsigned char *buffer
=NULL
;
498 int ret
=0, reason
=ERR_R_BIO_LIB
;
499 BIGNUM
*pub_key
=NULL
, *order
=NULL
;
501 const EC_GROUP
*group
;
502 const EC_POINT
*public_key
;
503 const BIGNUM
*priv_key
;
505 if (x
== NULL
|| (group
= EC_KEY_get0_group(x
)) == NULL
)
507 reason
= ERR_R_PASSED_NULL_PARAMETER
;
511 public_key
= EC_KEY_get0_public_key(x
);
512 if ((pub_key
= EC_POINT_point2bn(group
, public_key
,
513 EC_KEY_get_conv_form(x
), NULL
, ctx
)) == NULL
)
515 reason
= ERR_R_EC_LIB
;
519 buf_len
= (size_t)BN_num_bytes(pub_key
);
520 priv_key
= EC_KEY_get0_private_key(x
);
521 if (priv_key
!= NULL
)
523 if ((i
= (size_t)BN_num_bytes(priv_key
)) > buf_len
)
528 if ((buffer
= OPENSSL_malloc(buf_len
)) == NULL
)
530 reason
= ERR_R_MALLOC_FAILURE
;
534 if (priv_key
!= NULL
)
536 if (!BIO_indent(bp
, off
, 128))
538 if ((order
= BN_new()) == NULL
)
540 if (!EC_GROUP_get_order(group
, order
, NULL
))
542 if (BIO_printf(bp
, "Private-Key: (%d bit)\n",
543 BN_num_bits(order
)) <= 0) goto err
;
546 if ((priv_key
!= NULL
) && !print(bp
, "priv:", priv_key
,
549 if ((pub_key
!= NULL
) && !print(bp
, "pub: ", pub_key
,
552 if (!ECPKParameters_print(bp
, group
, off
))
557 ECerr(EC_F_EC_KEY_PRINT
, reason
);
565 OPENSSL_free(buffer
);
568 #endif /* OPENSSL_NO_EC */
570 static int print(BIO
*bp
, const char *number
, const BIGNUM
*num
, unsigned char *buf
,
576 if (num
== NULL
) return(1);
577 neg
= (BN_is_negative(num
))?"-":"";
578 if(!BIO_indent(bp
,off
,128))
582 if (BIO_printf(bp
, "%s 0\n", number
) <= 0)
587 if (BN_num_bytes(num
) <= BN_BYTES
)
589 if (BIO_printf(bp
,"%s %s%lu (%s0x%lx)\n",number
,neg
,
590 (unsigned long)num
->d
[0],neg
,(unsigned long)num
->d
[0])
596 if (BIO_printf(bp
,"%s%s",number
,
597 (neg
[0] == '-')?" (Negative)":"") <= 0)
599 n
=BN_bn2bin(num
,&buf
[1]);
609 if(BIO_puts(bp
,"\n") <= 0
610 || !BIO_indent(bp
,off
+4,128))
613 if (BIO_printf(bp
,"%02x%s",buf
[i
],((i
+1) == n
)?"":":")
616 if (BIO_write(bp
,"\n",1) <= 0) return(0);
621 #ifndef OPENSSL_NO_EC
622 static int print_bin(BIO
*fp
, const char *name
, const unsigned char *buf
,
635 if (BIO_write(fp
, str
, off
) <= 0)
639 if (BIO_printf(fp
,"%s", name
) <= 0)
642 for (i
=0; i
<len
; i
++)
647 memset(&(str
[1]),' ',off
+4);
648 if (BIO_write(fp
, str
, off
+1+4) <= 0)
651 if (BIO_printf(fp
,"%02x%s",buf
[i
],((i
+1) == len
)?"":":") <= 0)
654 if (BIO_write(fp
,"\n",1) <= 0)
661 #ifndef OPENSSL_NO_DH
662 #ifndef OPENSSL_NO_FP_API
663 int DHparams_print_fp(FILE *fp
, const DH
*x
)
668 if ((b
=BIO_new(BIO_s_file())) == NULL
)
670 DHerr(DH_F_DHPARAMS_PRINT_FP
,ERR_R_BUF_LIB
);
673 BIO_set_fp(b
,fp
,BIO_NOCLOSE
);
674 ret
=DHparams_print(b
, x
);
680 int DHparams_print(BIO
*bp
, const DH
*x
)
682 unsigned char *m
=NULL
;
683 int reason
=ERR_R_BUF_LIB
,ret
=0;
687 buf_len
= (size_t)BN_num_bytes(x
->p
);
690 reason
= ERR_R_PASSED_NULL_PARAMETER
;
694 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->g
)))
696 m
=(unsigned char *)OPENSSL_malloc(buf_len
+10);
699 reason
=ERR_R_MALLOC_FAILURE
;
703 if (BIO_printf(bp
,"Diffie-Hellman-Parameters: (%d bit)\n",
704 BN_num_bits(x
->p
)) <= 0)
706 if (!print(bp
,"prime:",x
->p
,m
,4)) goto err
;
707 if (!print(bp
,"generator:",x
->g
,m
,4)) goto err
;
710 if (BIO_printf(bp
," recommended-private-length: %d bits\n",
711 (int)x
->length
) <= 0) goto err
;
717 DHerr(DH_F_DHPARAMS_PRINT
,reason
);
719 if (m
!= NULL
) OPENSSL_free(m
);
724 #ifndef OPENSSL_NO_DSA
725 #ifndef OPENSSL_NO_FP_API
726 int DSAparams_print_fp(FILE *fp
, const DSA
*x
)
731 if ((b
=BIO_new(BIO_s_file())) == NULL
)
733 DSAerr(DSA_F_DSAPARAMS_PRINT_FP
,ERR_R_BUF_LIB
);
736 BIO_set_fp(b
,fp
,BIO_NOCLOSE
);
737 ret
=DSAparams_print(b
, x
);
743 int DSAparams_print(BIO
*bp
, const DSA
*x
)
745 unsigned char *m
=NULL
;
750 buf_len
= (size_t)BN_num_bytes(x
->p
);
753 DSAerr(DSA_F_DSAPARAMS_PRINT
,DSA_R_MISSING_PARAMETERS
);
757 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->q
)))
760 if (buf_len
< (i
= (size_t)BN_num_bytes(x
->g
)))
762 m
=(unsigned char *)OPENSSL_malloc(buf_len
+10);
765 DSAerr(DSA_F_DSAPARAMS_PRINT
,ERR_R_MALLOC_FAILURE
);
769 if (BIO_printf(bp
,"DSA-Parameters: (%d bit)\n",
770 BN_num_bits(x
->p
)) <= 0)
772 if (!print(bp
,"p:",x
->p
,m
,4)) goto err
;
773 if ((x
->q
!= NULL
) && !print(bp
,"q:",x
->q
,m
,4)) goto err
;
774 if ((x
->g
!= NULL
) && !print(bp
,"g:",x
->g
,m
,4)) goto err
;
777 if (m
!= NULL
) OPENSSL_free(m
);
781 #endif /* !OPENSSL_NO_DSA */
783 #ifndef OPENSSL_NO_EC
784 #ifndef OPENSSL_NO_FP_API
785 int ECParameters_print_fp(FILE *fp
, const EC_KEY
*x
)
790 if ((b
=BIO_new(BIO_s_file())) == NULL
)
792 ECerr(EC_F_ECPARAMETERS_PRINT_FP
, ERR_R_BIO_LIB
);
795 BIO_set_fp(b
, fp
, BIO_NOCLOSE
);
796 ret
= ECParameters_print(b
, x
);
802 int ECParameters_print(BIO
*bp
, const EC_KEY
*x
)
804 int reason
=ERR_R_EC_LIB
, ret
=0;
806 const EC_GROUP
*group
;
808 if (x
== NULL
|| (group
= EC_KEY_get0_group(x
)) == NULL
)
810 reason
= ERR_R_PASSED_NULL_PARAMETER
;;
814 if ((order
= BN_new()) == NULL
)
816 reason
= ERR_R_MALLOC_FAILURE
;
820 if (!EC_GROUP_get_order(group
, order
, NULL
))
822 reason
= ERR_R_EC_LIB
;
826 if (BIO_printf(bp
, "ECDSA-Parameters: (%d bit)\n",
827 BN_num_bits(order
)) <= 0)
829 if (!ECPKParameters_print(bp
, group
, 4))
835 ECerr(EC_F_ECPARAMETERS_PRINT
, reason
);