28 #if !defined(POLARSSL_CONFIG_FILE)
31 #include POLARSSL_CONFIG_FILE
36 #if defined(POLARSSL_RSA_C)
40 #if defined(POLARSSL_ECP_C)
44 #if defined(POLARSSL_ECDSA_C)
48 #define POLARSSL_ERR_PK_MALLOC_FAILED -0x2F80
49 #define POLARSSL_ERR_PK_TYPE_MISMATCH -0x2F00
50 #define POLARSSL_ERR_PK_BAD_INPUT_DATA -0x2E80
51 #define POLARSSL_ERR_PK_FILE_IO_ERROR -0x2E00
52 #define POLARSSL_ERR_PK_KEY_INVALID_VERSION -0x2D80
53 #define POLARSSL_ERR_PK_KEY_INVALID_FORMAT -0x2D00
54 #define POLARSSL_ERR_PK_UNKNOWN_PK_ALG -0x2C80
55 #define POLARSSL_ERR_PK_PASSWORD_REQUIRED -0x2C00
56 #define POLARSSL_ERR_PK_PASSWORD_MISMATCH -0x2B80
57 #define POLARSSL_ERR_PK_INVALID_PUBKEY -0x2B00
58 #define POLARSSL_ERR_PK_INVALID_ALG -0x2A80
59 #define POLARSSL_ERR_PK_UNKNOWN_NAMED_CURVE -0x2A00
60 #define POLARSSL_ERR_PK_FEATURE_UNAVAILABLE -0x2980
61 #define POLARSSL_ERR_PK_SIG_LEN_MISMATCH -0x2000
64 #if defined(POLARSSL_RSA_C)
71 #define pk_rsa( pk ) ( (rsa_context *) (pk).pk_ctx )
74 #if defined(POLARSSL_ECP_C)
81 #define pk_ec( pk ) ( (ecp_keypair *) (pk).pk_ctx )
134 #define POLARSSL_PK_DEBUG_MAX_ITEMS 3
148 size_t (*get_size)(
const void * );
155 const unsigned char *hash,
size_t hash_len,
156 const unsigned char *sig,
size_t sig_len );
160 const unsigned char *hash,
size_t hash_len,
161 unsigned char *sig,
size_t *sig_len,
162 int (*f_rng)(
void *,
unsigned char *, size_t),
166 int (*decrypt_func)(
void *ctx,
const unsigned char *input,
size_t ilen,
167 unsigned char *output,
size_t *olen,
size_t osize,
168 int (*f_rng)(
void *,
unsigned char *, size_t),
172 int (*encrypt_func)(
void *ctx,
const unsigned char *input,
size_t ilen,
173 unsigned char *output,
size_t *olen,
size_t osize,
174 int (*f_rng)(
void *,
unsigned char *, size_t),
178 int (*check_pair_func)(
const void *pub,
const void *prv );
181 void * (*ctx_alloc_func)( void );
184 void (*ctx_free_func)(
void *ctx );
204 const unsigned char *input,
unsigned char *output,
205 size_t output_max_len );
207 int (*f_rng)(
void *,
unsigned char *, size_t),
void *p_rng,
208 int mode,
md_type_t md_alg,
unsigned int hashlen,
209 const unsigned char *hash,
unsigned char *sig );
322 const unsigned char *hash,
size_t hash_len,
323 const unsigned char *sig,
size_t sig_len );
356 const unsigned char *hash,
size_t hash_len,
357 const unsigned char *sig,
size_t sig_len );
383 const unsigned char *hash,
size_t hash_len,
384 unsigned char *sig,
size_t *sig_len,
385 int (*f_rng)(
void *,
unsigned char *,
size_t),
void *p_rng );
404 const unsigned char *input,
size_t ilen,
405 unsigned char *output,
size_t *olen,
size_t osize,
406 int (*f_rng)(
void *,
unsigned char *,
size_t),
void *p_rng );
425 const unsigned char *input,
size_t ilen,
426 unsigned char *output,
size_t *olen,
size_t osize,
427 int (*f_rng)(
void *,
unsigned char *,
size_t),
void *p_rng );
467 #if defined(POLARSSL_PK_PARSE_C)
487 const unsigned char *key,
size_t keylen,
488 const unsigned char *pwd,
size_t pwdlen );
507 const unsigned char *key,
size_t keylen );
509 #if defined(POLARSSL_FS_IO)
527 const char *path,
const char *password );
548 #if defined(POLARSSL_PK_WRITE_C)
579 #if defined(POLARSSL_PEM_WRITE_C)
609 #if defined(POLARSSL_PK_PARSE_C)
623 #if defined(POLARSSL_PK_WRITE_C)
642 #if defined(POLARSSL_FS_IO)
643 int pk_load_file(
const char *path,
unsigned char **buf,
size_t *n );
static size_t pk_get_len(const pk_context *ctx)
Get the length in bytes of the underlying key.
int pk_write_key_der(pk_context *ctx, unsigned char *buf, size_t size)
Write a private key to a PKCS#1 or SEC1 DER structure Note: data is written at the end of the buffer!...
const pk_info_t * pk_info_from_type(pk_type_t pk_type)
Return information associated with the given PK type.
Elliptic curves over GF(p)
size_t pk_get_size(const pk_context *ctx)
Get the size in bits of the underlying key.
int pk_write_key_pem(pk_context *ctx, unsigned char *buf, size_t size)
Write a private key to a PKCS#1 or SEC1 PEM string.
Options for RSASSA-PSS signature verification.
int pk_decrypt(pk_context *ctx, const unsigned char *input, size_t ilen, unsigned char *output, size_t *olen, size_t osize, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng)
Decrypt message (including padding if relevant).
int pk_debug(const pk_context *ctx, pk_debug_item *items)
Export debug information.
Configuration options (set of defines)
const pk_info_t * pk_info
Public key informations.
pk_type_t pk_get_type(const pk_context *ctx)
Get the key type.
const char * pk_get_name(const pk_context *ctx)
Access the type name.
int pk_init_ctx_rsa_alt(pk_context *ctx, void *key, pk_rsa_alt_decrypt_func decrypt_func, pk_rsa_alt_sign_func sign_func, pk_rsa_alt_key_len_func key_len_func)
Initialize an RSA-alt context.
int pk_verify_ext(pk_type_t type, const void *options, pk_context *ctx, md_type_t md_alg, const unsigned char *hash, size_t hash_len, const unsigned char *sig, size_t sig_len)
Verify signature, with options.
int(* pk_rsa_alt_sign_func)(void *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
int pk_write_pubkey(unsigned char **p, unsigned char *start, const pk_context *key)
Write a subjectPublicKey to ASN.1 data Note: function works backwards in data buffer.
int pk_check_pair(const pk_context *pub, const pk_context *prv)
Check if a public-private pair of keys matches.
int pk_write_pubkey_der(pk_context *ctx, unsigned char *buf, size_t size)
Write a public key to a SubjectPublicKeyInfo DER structure Note: data is written at the end of the bu...
Item to send to the debug module.
int pk_verify(pk_context *ctx, md_type_t md_alg, const unsigned char *hash, size_t hash_len, const unsigned char *sig, size_t sig_len)
Verify signature (including padding if relevant).
Public key information and operations.
int pk_can_do(pk_context *ctx, pk_type_t type)
Tell if a context can do the operation given by type.
void * pk_ctx
Underlying public key context.
pk_type_t
Public key types.
int pk_parse_public_keyfile(pk_context *ctx, const char *path)
Load and parse a public key.
int pk_parse_subpubkey(unsigned char **p, const unsigned char *end, pk_context *pk)
Parse a SubjectPublicKeyInfo DER structure.
int pk_init_ctx(pk_context *ctx, const pk_info_t *info)
Initialize a PK context with the information given and allocates the type-specific PK subcontext...
int pk_load_file(const char *path, unsigned char **buf, size_t *n)
Generic message digest wrapper.
The RSA public-key cryptosystem.
size_t(* pk_rsa_alt_key_len_func)(void *ctx)
void pk_free(pk_context *ctx)
Free a pk_context.
int pk_sign(pk_context *ctx, md_type_t md_alg, const unsigned char *hash, size_t hash_len, unsigned char *sig, size_t *sig_len, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng)
Make signature, including padding if relevant.
int pk_parse_public_key(pk_context *ctx, const unsigned char *key, size_t keylen)
Parse a public key.
int(* pk_rsa_alt_decrypt_func)(void *ctx, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Types for RSA-alt abstraction.
int pk_encrypt(pk_context *ctx, const unsigned char *input, size_t ilen, unsigned char *output, size_t *olen, size_t osize, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng)
Encrypt message (including padding if relevant).
void pk_init(pk_context *ctx)
Initialize a pk_context (as NONE)
pk_debug_type
Types for interfacing with the debug module.
int pk_parse_key(pk_context *ctx, const unsigned char *key, size_t keylen, const unsigned char *pwd, size_t pwdlen)
Parse a private key.
int pk_write_pubkey_pem(pk_context *ctx, unsigned char *buf, size_t size)
Write a public key to a PEM string.
const char * name
Type name.
pk_type_t type
Public key type.
int pk_parse_keyfile(pk_context *ctx, const char *path, const char *password)
Load and parse a private key.