b34974b8d12c808595019b8fa9b729f7ddc151c4
[openssl.git] / apps / pkey.c
1 /* pkey.c */
2 /* Written by Dr Stephen N Henson (shenson@bigfoot.com) for the OpenSSL
3  * project 2006
4  */
5 /* ====================================================================
6  * Copyright (c) 2006 The OpenSSL Project.  All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  *
12  * 1. Redistributions of source code must retain the above copyright
13  *    notice, this list of conditions and the following disclaimer. 
14  *
15  * 2. Redistributions in binary form must reproduce the above copyright
16  *    notice, this list of conditions and the following disclaimer in
17  *    the documentation and/or other materials provided with the
18  *    distribution.
19  *
20  * 3. All advertising materials mentioning features or use of this
21  *    software must display the following acknowledgment:
22  *    "This product includes software developed by the OpenSSL Project
23  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
24  *
25  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26  *    endorse or promote products derived from this software without
27  *    prior written permission. For written permission, please contact
28  *    licensing@OpenSSL.org.
29  *
30  * 5. Products derived from this software may not be called "OpenSSL"
31  *    nor may "OpenSSL" appear in their names without prior written
32  *    permission of the OpenSSL Project.
33  *
34  * 6. Redistributions of any form whatsoever must retain the following
35  *    acknowledgment:
36  *    "This product includes software developed by the OpenSSL Project
37  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
38  *
39  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50  * OF THE POSSIBILITY OF SUCH DAMAGE.
51  * ====================================================================
52  *
53  * This product includes cryptographic software written by Eric Young
54  * (eay@cryptsoft.com).  This product includes software written by Tim
55  * Hudson (tjh@cryptsoft.com).
56  *
57  */
58 #include <stdio.h>
59 #include <string.h>
60 #include "apps.h"
61 #include <openssl/pem.h>
62 #include <openssl/err.h>
63 #include <openssl/evp.h>
64
65 #define PROG pkey_main
66
67 int MAIN(int, char **);
68
69 int MAIN(int argc, char **argv)
70         {
71         ENGINE *e = NULL;
72         char **args, *infile = NULL, *outfile = NULL;
73         char *passargin = NULL, *passargout = NULL;
74         BIO *in = NULL, *out = NULL;
75         const EVP_CIPHER *cipher = NULL;
76         int informat, outformat;
77         int pubin = 0, pubout = 0, pubtext = 0, text = 0, noout = 0;
78         EVP_PKEY *pkey=NULL;
79         char *passin = NULL, *passout = NULL;
80         int badarg = 0;
81 #ifndef OPENSSL_NO_ENGINE
82         char *engine=NULL;
83 #endif
84
85         if (bio_err == NULL)
86                 bio_err = BIO_new_fp (stderr, BIO_NOCLOSE);
87
88         if (!load_config(bio_err, NULL))
89                 goto end;
90
91         informat=FORMAT_PEM;
92         outformat=FORMAT_PEM;
93
94         ERR_load_crypto_strings();
95         OpenSSL_add_all_algorithms();
96         args = argv + 1;
97         while (!badarg && *args && *args[0] == '-')
98                 {
99                 if (!strcmp(*args,"-inform"))
100                         {
101                         if (args[1])
102                                 {
103                                 args++;
104                                 informat=str2fmt(*args);
105                                 }
106                         else badarg = 1;
107                         }
108                 else if (!strcmp(*args,"-outform"))
109                         {
110                         if (args[1])
111                                 {
112                                 args++;
113                                 outformat=str2fmt(*args);
114                                 }
115                         else badarg = 1;
116                         }
117                 else if (!strcmp(*args,"-passin"))
118                         {
119                         if (!args[1]) goto bad;
120                         passargin= *(++args);
121                         }
122                 else if (!strcmp(*args,"-passout"))
123                         {
124                         if (!args[1]) goto bad;
125                         passargout= *(++args);
126                         }
127 #ifndef OPENSSL_NO_ENGINE
128                 else if (strcmp(*args,"-engine") == 0)
129                         {
130                         if (!args[1]) goto bad;
131                         engine= *(++args);
132                         }
133 #endif
134                 else if (!strcmp (*args, "-in"))
135                         {
136                         if (args[1])
137                                 {
138                                 args++;
139                                 infile = *args;
140                                 }
141                         else badarg = 1;
142                         }
143                 else if (!strcmp (*args, "-out"))
144                         {
145                         if (args[1])
146                                 {
147                                 args++;
148                                 outfile = *args;
149                                 }
150                         else badarg = 1;
151                         }
152                 else if (strcmp(*args,"-pubin") == 0)
153                         {
154                         pubin=1;
155                         pubout=1;
156                         pubtext=1;
157                         }
158                 else if (strcmp(*args,"-pubout") == 0)
159                         pubout=1;
160                 else if (strcmp(*args,"-text_pub") == 0)
161                         {
162                         pubtext=1;
163                         text=1;
164                         }
165                 else if (strcmp(*args,"-text") == 0)
166                         text=1;
167                 else if (strcmp(*args,"-noout") == 0)
168                         noout=1;
169                 else
170                         {
171                         cipher = EVP_get_cipherbyname(*args + 1);
172                         if (!cipher)
173                                 {
174                                 BIO_printf(bio_err, "Unknown cipher %s\n",
175                                                                 *args + 1);
176                                 badarg = 1;
177                                 }
178                         }
179                 args++;
180                 }
181
182         if (badarg)
183                 {
184                 bad:
185                 BIO_printf(bio_err, "Usage pkey [options]\n");
186                 BIO_printf(bio_err, "where options are\n");
187                 BIO_printf(bio_err, "-in file        input file\n");
188                 BIO_printf(bio_err, "-inform X       input format (DER or PEM)\n");
189                 BIO_printf(bio_err, "-passin arg     input file pass phrase source\n");
190                 BIO_printf(bio_err, "-outform X      output format (DER or PEM)\n");
191                 BIO_printf(bio_err, "-out file       output file\n");
192                 BIO_printf(bio_err, "-passout arg    output file pass phrase source\n");
193 #ifndef OPENSSL_NO_ENGINE
194                 BIO_printf(bio_err, "-engine e       use engine e, possibly a hardware device.\n");
195 #endif
196                 return 1;
197                 }
198
199 #ifndef OPENSSL_NO_ENGINE
200         e = setup_engine(bio_err, engine, 0);
201 #endif
202
203         if (!app_passwd(bio_err, passargin, passargout, &passin, &passout))
204                 {
205                 BIO_printf(bio_err, "Error getting passwords\n");
206                 return 1;
207                 }
208
209         if (outfile)
210                 {
211                 if (!(out = BIO_new_file (outfile, "wb")))
212                         {
213                         BIO_printf(bio_err,
214                                  "Can't open output file %s\n", outfile);
215                         return (1);
216                         }
217                 }
218         else
219                 {
220                 out = BIO_new_fp (stdout, BIO_NOCLOSE);
221 #ifdef OPENSSL_SYS_VMS
222                         {
223                         BIO *tmpbio = BIO_new(BIO_f_linebuffer());
224                         out = BIO_push(tmpbio, out);
225                         }
226 #endif
227                 }
228
229         if (pubin)
230                 pkey = load_pubkey(bio_err, infile, informat, 1,
231                         passin, e, "Public Key");
232         else
233                 pkey = load_key(bio_err, infile, informat, 1,
234                         passin, e, "key");
235         if (!pkey)
236                 {
237                 BIO_free_all(out);
238                 return 1;
239                 }
240
241         if (!noout)
242                 {
243                 if (outformat == FORMAT_PEM) 
244                         {
245                         if (pubout)
246                                 PEM_write_bio_PUBKEY(out,pkey);
247                         else
248                                 PEM_write_bio_PrivateKey(out, pkey, cipher,
249                                                         NULL, 0, NULL, passout);
250                         }
251                 else if (outformat == FORMAT_ASN1)
252                         {
253                         if (pubout)
254                                 i2d_PUBKEY_bio(out, pkey);
255                         else
256                                 i2d_PrivateKey_bio(out, pkey);
257                         }
258                 else
259                         {
260                         BIO_printf(bio_err, "Bad format specified for key\n");
261                                 return (1);
262                         }
263
264                 }
265
266         if (text)
267                 {
268                 if (pubtext)
269                         EVP_PKEY_print_public(out, pkey, 0, NULL);
270                 else
271                         EVP_PKEY_print_private(out, pkey, 0, NULL);
272                 }
273
274         end:
275         EVP_PKEY_free(pkey);
276         BIO_free_all(out);
277         BIO_free(in);
278         if (passin)
279                 OPENSSL_free(passin);
280         if (passout)
281                 OPENSSL_free(passout);
282
283         return (0);
284         }