2 * Copyright 2019 The OpenSSL Project Authors. All Rights Reserved.
4 * Licensed under the Apache License 2.0 (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
10 #include <openssl/core_numbers.h>
11 #include <openssl/core_names.h>
12 #include <openssl/bn.h>
13 #include <openssl/params.h>
14 #include "internal/param_build.h"
15 #include "prov/implementations.h"
16 #include "prov/providercommon.h"
17 #include "prov/provider_ctx.h"
18 #include "crypto/dsa.h"
20 static OSSL_OP_keymgmt_importdomparams_fn dsa_importdomparams;
21 static OSSL_OP_keymgmt_exportdomparams_fn dsa_exportdomparams;
22 static OSSL_OP_keymgmt_get_domparam_params_fn dsa_get_domparam_params;
23 static OSSL_OP_keymgmt_importkey_fn dsa_importkey;
24 static OSSL_OP_keymgmt_exportkey_fn dsa_exportkey;
25 static OSSL_OP_keymgmt_get_key_params_fn dsa_get_key_params;
27 #define DSA_DEFAULT_MD "SHA256"
29 static int params_to_domparams(DSA *dsa, const OSSL_PARAM params[])
31 const OSSL_PARAM *param_p, *param_q, *param_g;
32 BIGNUM *p = NULL, *q = NULL, *g = NULL;
37 param_p = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_P);
38 param_q = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_Q);
39 param_g = OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_FFC_G);
41 if ((param_p != NULL && !OSSL_PARAM_get_BN(param_p, &p))
42 || (param_q != NULL && !OSSL_PARAM_get_BN(param_q, &q))
43 || (param_g != NULL && !OSSL_PARAM_get_BN(param_g, &g)))
46 if (!DSA_set0_pqg(dsa, p, q, g))
58 static int domparams_to_params(DSA *dsa, OSSL_PARAM_BLD *tmpl)
60 const BIGNUM *dsa_p = NULL, *dsa_q = NULL, *dsa_g = NULL;
65 DSA_get0_pqg(dsa, &dsa_p, &dsa_q, &dsa_g);
67 && !ossl_param_bld_push_BN(tmpl, OSSL_PKEY_PARAM_FFC_P, dsa_p))
70 && !ossl_param_bld_push_BN(tmpl, OSSL_PKEY_PARAM_FFC_Q, dsa_q))
73 && !ossl_param_bld_push_BN(tmpl, OSSL_PKEY_PARAM_FFC_G, dsa_g))
79 static int params_to_key(DSA *dsa, const OSSL_PARAM params[])
81 const OSSL_PARAM *param_priv_key, *param_pub_key;
82 BIGNUM *priv_key = NULL, *pub_key = NULL;
87 if (!params_to_domparams(dsa, params))
91 OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_DSA_PRIV_KEY);
93 OSSL_PARAM_locate_const(params, OSSL_PKEY_PARAM_DSA_PUB_KEY);
96 * DSA documentation says that a public key must be present if a private key
99 if (param_priv_key != NULL && param_pub_key == NULL)
102 if ((param_priv_key != NULL
103 && !OSSL_PARAM_get_BN(param_priv_key, &priv_key))
104 || (param_pub_key != NULL
105 && !OSSL_PARAM_get_BN(param_pub_key, &pub_key)))
108 if (pub_key != NULL && !DSA_set0_key(dsa, pub_key, priv_key))
119 static int key_to_params(DSA *dsa, OSSL_PARAM_BLD *tmpl)
121 const BIGNUM *priv_key = NULL, *pub_key = NULL;
125 if (!domparams_to_params(dsa, tmpl))
128 DSA_get0_key(dsa, &pub_key, &priv_key);
130 && !ossl_param_bld_push_BN(tmpl, OSSL_PKEY_PARAM_DSA_PRIV_KEY, priv_key))
133 && !ossl_param_bld_push_BN(tmpl, OSSL_PKEY_PARAM_DSA_PUB_KEY, pub_key))
139 static void *dsa_importdomparams(void *provctx, const OSSL_PARAM params[])
143 if ((dsa = DSA_new()) == NULL
144 || !params_to_domparams(dsa, params)) {
151 static int dsa_exportdomparams(void *domparams,
152 OSSL_CALLBACK *param_cb, void *cbarg)
154 DSA *dsa = domparams;
156 OSSL_PARAM *params = NULL;
159 ossl_param_bld_init(&tmpl);
161 || !domparams_to_params(dsa, &tmpl)
162 || (params = ossl_param_bld_to_param(&tmpl)) == NULL)
164 ret = param_cb(params, cbarg);
165 ossl_param_bld_free(params);
169 static void *dsa_importkey(void *provctx, const OSSL_PARAM params[])
173 if ((dsa = DSA_new()) == NULL
174 || !params_to_key(dsa, params)) {
181 static int dsa_exportkey(void *key, OSSL_CALLBACK *param_cb, void *cbarg)
185 OSSL_PARAM *params = NULL;
188 ossl_param_bld_init(&tmpl);
190 || !key_to_params(dsa, &tmpl)
191 || (params = ossl_param_bld_to_param(&tmpl)) == NULL)
193 ret = param_cb(params, cbarg);
194 ossl_param_bld_free(params);
199 * Same function for domain parameters and for keys.
200 * "dpk" = "domain parameters & keys"
202 static ossl_inline int dsa_get_dpk_params(void *key, OSSL_PARAM params[])
207 if ((p = OSSL_PARAM_locate(params, OSSL_PKEY_PARAM_BITS)) != NULL
208 && !OSSL_PARAM_set_int(p, DSA_bits(dsa)))
210 if ((p = OSSL_PARAM_locate(params, OSSL_PKEY_PARAM_SECURITY_BITS)) != NULL
211 && !OSSL_PARAM_set_int(p, DSA_security_bits(dsa)))
213 if ((p = OSSL_PARAM_locate(params, OSSL_PKEY_PARAM_MAX_SIZE)) != NULL
214 && !OSSL_PARAM_set_int(p, DSA_size(dsa)))
216 if ((p = OSSL_PARAM_locate(params, OSSL_PKEY_PARAM_DEFAULT_DIGEST)) != NULL
217 && !OSSL_PARAM_set_utf8_string(p, DSA_DEFAULT_MD))
223 * We have wrapper functions to make sure we get signatures right, see
224 * the forward declarations at the beginning of this file.
226 static int dsa_get_domparam_params(void *domparams, OSSL_PARAM params[])
228 return dsa_get_dpk_params(domparams, params);
231 static int dsa_get_key_params(void *key, OSSL_PARAM params[])
233 return dsa_get_dpk_params(key, params);
236 const OSSL_DISPATCH dsa_keymgmt_functions[] = {
237 { OSSL_FUNC_KEYMGMT_IMPORTDOMPARAMS, (void (*)(void))dsa_importdomparams },
238 { OSSL_FUNC_KEYMGMT_EXPORTDOMPARAMS, (void (*)(void))dsa_exportdomparams },
239 { OSSL_FUNC_KEYMGMT_FREEDOMPARAMS, (void (*)(void))DSA_free },
240 { OSSL_FUNC_KEYMGMT_GET_DOMPARAM_PARAMS,
241 (void (*) (void))dsa_get_domparam_params },
242 { OSSL_FUNC_KEYMGMT_IMPORTKEY, (void (*)(void))dsa_importkey },
243 { OSSL_FUNC_KEYMGMT_EXPORTKEY, (void (*)(void))dsa_exportkey },
244 { OSSL_FUNC_KEYMGMT_FREEKEY, (void (*)(void))DSA_free },
245 { OSSL_FUNC_KEYMGMT_GET_KEY_PARAMS, (void (*) (void))dsa_get_key_params },