2 * Sun RPC is a product of Sun Microsystems, Inc. and is provided for
3 * unrestricted use provided that this legend is included on all tape
4 * media and as a part of the software program in whole or part. Users
5 * may copy or modify Sun RPC without charge, but are not authorized
6 * to license or distribute it to anyone else except as part of a product or
7 * program developed by the user or with the express written consent of
8 * Sun Microsystems, Inc.
10 * SUN RPC IS PROVIDED AS IS WITH NO WARRANTIES OF ANY KIND INCLUDING THE
11 * WARRANTIES OF DESIGN, MERCHANTIBILITY AND FITNESS FOR A PARTICULAR
12 * PURPOSE, OR ARISING FROM A COURSE OF DEALING, USAGE OR TRADE PRACTICE.
14 * Sun RPC is provided with no support and without any obligation on the
15 * part of Sun Microsystems, Inc. to assist in its use, correction,
16 * modification or enhancement.
18 * SUN MICROSYSTEMS, INC. SHALL HAVE NO LIABILITY WITH RESPECT TO THE
19 * INFRINGEMENT OF COPYRIGHTS, TRADE SECRETS OR ANY PATENTS BY SUN RPC
20 * OR ANY PART THEREOF.
22 * In no event will Sun Microsystems, Inc. be liable for any lost revenue
23 * or profits or other special, indirect and consequential damages, even if
24 * Sun has been advised of the possibility of such damages.
26 * Sun Microsystems, Inc.
28 * Mountain View, California 94043
30 * @(#)generic.c 1.2 91/03/11 Copyr 1986 Sun Micro
31 * $FreeBSD: src/usr.bin/newkey/generic.c,v 1.3.2.1 2001/07/04 22:32:20 kris Exp $
32 * $DragonFly: src/usr.bin/newkey/generic.c,v 1.8 2008/06/05 18:06:33 swildner Exp $
36 * Copyright (C) 1986, Sun Microsystems, Inc.
45 #include <openssl/bn.h>
46 #include <openssl/crypto.h>
47 #include <openssl/err.h>
50 #include <rpc/key_prot.h>
54 static void adjust(char[], char *);
55 static BIGNUM
*itobn(long i
);
61 getseed(char *seed
, int seedsize
, unsigned char *pass
)
65 for (i
= 0; i
< seedsize
; i
++) {
66 seed
[i
] = (arc4random() & 0xff) ^ pass
[i
% 8];
75 if ((n
= BN_new()) == NULL
)
76 errx(1, "could not create BIGNUM: %s",
77 ERR_error_string(ERR_get_error(), 0));
80 BN_add_word(n
, (u_long
)i
);
82 BN_sub_word(n
, (u_long
)(-i
));
87 * Generate a random public/secret key pair
90 genkeys(char *public, char *secret
, char *pass
)
92 #define BASEBITS (8*sizeof (short) - 1)
93 #define BASE (short)(1 << BASEBITS)
97 unsigned short seed
[KEYSIZE
/BASEBITS
+ 1];
101 BIGNUM
*pk
, *sk
, *tmp
, *base
, *root
, *modulus
;
109 if (BN_hex2bn(&modulus
, HEXMODULUS
) == 0)
110 errx(1, "could not convert modulus to BIGNUM: %s",
111 ERR_error_string(ERR_get_error(), 0));
113 if ((ctx
= BN_CTX_new()) == NULL
)
114 errx(1, "could not create BN_CTX: %s",
115 ERR_error_string(ERR_get_error(), 0));
117 getseed((char *)seed
, sizeof (seed
), (u_char
*)pass
);
118 for (i
= 0; i
< KEYSIZE
/BASEBITS
+ 1; i
++) {
122 BN_mul(sk
, base
, sk
, ctx
);
126 BN_div(tmp
, sk
, sk
, modulus
, ctx
);
127 BN_mod_exp(pk
, root
, sk
, modulus
, ctx
);
129 if ((xkey
= BN_bn2hex(sk
)) == NULL
)
130 errx(1, "could convert sk to hex: %s",
131 ERR_error_string(ERR_get_error(), 0));
132 adjust(secret
, xkey
);
135 if ((xkey
= BN_bn2hex(pk
)) == NULL
)
136 errx(1, "could convert pk to hex: %s",
137 ERR_error_string(ERR_get_error(), 0));
138 adjust(public, xkey
);
150 * Adjust the input key so that it is 0-filled on the left
153 adjust(char keyout
[HEXKEYBYTES
+1], char *keyin
)
158 for (p
= keyin
; *p
; p
++)
160 for (s
= keyout
+ HEXKEYBYTES
; p
>= keyin
; p
--, s
--) {
163 while (s
>= keyout
) {