[453] | 1 | /* ec.h
|
---|
| 2 | *
|
---|
| 3 | * Copyright (C) 2006-2020 wolfSSL Inc.
|
---|
| 4 | *
|
---|
| 5 | * This file is part of wolfSSL.
|
---|
| 6 | *
|
---|
| 7 | * wolfSSL is free software; you can redistribute it and/or modify
|
---|
| 8 | * it under the terms of the GNU General Public License as published by
|
---|
| 9 | * the Free Software Foundation; either version 2 of the License, or
|
---|
| 10 | * (at your option) any later version.
|
---|
| 11 | *
|
---|
| 12 | * wolfSSL is distributed in the hope that it will be useful,
|
---|
| 13 | * but WITHOUT ANY WARRANTY; without even the implied warranty of
|
---|
| 14 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
---|
| 15 | * GNU General Public License for more details.
|
---|
| 16 | *
|
---|
| 17 | * You should have received a copy of the GNU General Public License
|
---|
| 18 | * along with this program; if not, write to the Free Software
|
---|
| 19 | * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1335, USA
|
---|
| 20 | */
|
---|
| 21 |
|
---|
| 22 | /* ec.h for openssl */
|
---|
| 23 |
|
---|
| 24 | #ifndef WOLFSSL_EC_H_
|
---|
| 25 | #define WOLFSSL_EC_H_
|
---|
| 26 |
|
---|
| 27 | #include <wolfssl/openssl/bn.h>
|
---|
| 28 | #include <wolfssl/wolfcrypt/ecc.h>
|
---|
| 29 |
|
---|
| 30 | #ifdef __cplusplus
|
---|
| 31 | extern "C" {
|
---|
| 32 | #endif
|
---|
| 33 |
|
---|
| 34 | /* Map OpenSSL NID value */
|
---|
| 35 | enum {
|
---|
| 36 | POINT_CONVERSION_COMPRESSED = 2,
|
---|
| 37 | POINT_CONVERSION_UNCOMPRESSED = 4,
|
---|
| 38 |
|
---|
| 39 | #ifdef HAVE_ECC
|
---|
| 40 | /* Use OpenSSL NIDs. NIDs can be mapped to ecc_curve_id enum values by
|
---|
| 41 | calling NIDToEccEnum() in ssl.c */
|
---|
| 42 | NID_X9_62_prime192v1 = 409,
|
---|
| 43 | NID_X9_62_prime192v2 = 410,
|
---|
| 44 | NID_X9_62_prime192v3 = 411,
|
---|
| 45 | NID_X9_62_prime239v1 = 412,
|
---|
| 46 | NID_X9_62_prime239v2 = 413,
|
---|
| 47 | NID_X9_62_prime239v3 = 414,
|
---|
| 48 | NID_X9_62_prime256v1 = 415,
|
---|
| 49 | NID_secp112r1 = 704,
|
---|
| 50 | NID_secp112r2 = 705,
|
---|
| 51 | NID_secp128r1 = 706,
|
---|
| 52 | NID_secp128r2 = 707,
|
---|
| 53 | NID_secp160r1 = 709,
|
---|
| 54 | NID_secp160r2 = 710,
|
---|
| 55 | NID_secp224r1 = 713,
|
---|
| 56 | NID_secp384r1 = 715,
|
---|
| 57 | NID_secp521r1 = 716,
|
---|
| 58 | NID_secp160k1 = 708,
|
---|
| 59 | NID_secp192k1 = 711,
|
---|
| 60 | NID_secp224k1 = 712,
|
---|
| 61 | NID_secp256k1 = 714,
|
---|
| 62 | NID_brainpoolP160r1 = 921,
|
---|
| 63 | NID_brainpoolP192r1 = 923,
|
---|
| 64 | NID_brainpoolP224r1 = 925,
|
---|
| 65 | NID_brainpoolP256r1 = 927,
|
---|
| 66 | NID_brainpoolP320r1 = 929,
|
---|
| 67 | NID_brainpoolP384r1 = 931,
|
---|
| 68 | NID_brainpoolP512r1 = 933,
|
---|
| 69 | #endif
|
---|
| 70 |
|
---|
| 71 | OPENSSL_EC_NAMED_CURVE = 0x001
|
---|
| 72 | };
|
---|
| 73 |
|
---|
| 74 | #ifndef WOLFSSL_EC_TYPE_DEFINED /* guard on redeclaration */
|
---|
| 75 | typedef struct WOLFSSL_EC_KEY WOLFSSL_EC_KEY;
|
---|
| 76 | typedef struct WOLFSSL_EC_POINT WOLFSSL_EC_POINT;
|
---|
| 77 | typedef struct WOLFSSL_EC_GROUP WOLFSSL_EC_GROUP;
|
---|
| 78 | typedef struct WOLFSSL_EC_BUILTIN_CURVE WOLFSSL_EC_BUILTIN_CURVE;
|
---|
| 79 | /* WOLFSSL_EC_METHOD is just an alias of WOLFSSL_EC_GROUP for now */
|
---|
| 80 | typedef struct WOLFSSL_EC_GROUP WOLFSSL_EC_METHOD;
|
---|
| 81 | #define WOLFSSL_EC_TYPE_DEFINED
|
---|
| 82 | #endif
|
---|
| 83 |
|
---|
| 84 | typedef WOLFSSL_EC_KEY EC_KEY;
|
---|
| 85 | typedef WOLFSSL_EC_GROUP EC_GROUP;
|
---|
| 86 | typedef WOLFSSL_EC_GROUP EC_METHOD;
|
---|
| 87 | typedef WOLFSSL_EC_POINT EC_POINT;
|
---|
| 88 | typedef WOLFSSL_EC_BUILTIN_CURVE EC_builtin_curve;
|
---|
| 89 |
|
---|
| 90 | struct WOLFSSL_EC_POINT {
|
---|
| 91 | WOLFSSL_BIGNUM *X;
|
---|
| 92 | WOLFSSL_BIGNUM *Y;
|
---|
| 93 | WOLFSSL_BIGNUM *Z;
|
---|
| 94 |
|
---|
| 95 | void* internal; /* our ECC point */
|
---|
| 96 | char inSet; /* internal set from external ? */
|
---|
| 97 | char exSet; /* external set from internal ? */
|
---|
| 98 | };
|
---|
| 99 |
|
---|
| 100 | struct WOLFSSL_EC_GROUP {
|
---|
| 101 | int curve_idx; /* index of curve, used by WolfSSL as reference */
|
---|
| 102 | int curve_nid; /* NID of curve, used by OpenSSL/OpenSSH as reference */
|
---|
| 103 | int curve_oid; /* OID of curve, used by OpenSSL/OpenSSH as reference */
|
---|
| 104 | };
|
---|
| 105 |
|
---|
| 106 | struct WOLFSSL_EC_KEY {
|
---|
| 107 | WOLFSSL_EC_GROUP *group;
|
---|
| 108 | WOLFSSL_EC_POINT *pub_key;
|
---|
| 109 | WOLFSSL_BIGNUM *priv_key;
|
---|
| 110 |
|
---|
| 111 | void* internal; /* our ECC Key */
|
---|
| 112 | char inSet; /* internal set from external ? */
|
---|
| 113 | char exSet; /* external set from internal ? */
|
---|
| 114 | char form; /* Either POINT_CONVERSION_UNCOMPRESSED or
|
---|
| 115 | * POINT_CONVERSION_COMPRESSED */
|
---|
| 116 | };
|
---|
| 117 |
|
---|
| 118 | struct WOLFSSL_EC_BUILTIN_CURVE {
|
---|
| 119 | int nid;
|
---|
| 120 | const char *comment;
|
---|
| 121 | };
|
---|
| 122 |
|
---|
| 123 | #define WOLFSSL_EC_KEY_LOAD_PRIVATE 1
|
---|
| 124 | #define WOLFSSL_EC_KEY_LOAD_PUBLIC 2
|
---|
| 125 |
|
---|
| 126 | WOLFSSL_API
|
---|
| 127 | size_t wolfSSL_EC_get_builtin_curves(WOLFSSL_EC_BUILTIN_CURVE *r,size_t nitems);
|
---|
| 128 |
|
---|
| 129 | WOLFSSL_API
|
---|
| 130 | WOLFSSL_EC_KEY *wolfSSL_EC_KEY_dup(const WOLFSSL_EC_KEY *src);
|
---|
| 131 |
|
---|
| 132 | WOLFSSL_API
|
---|
| 133 | int wolfSSL_ECPoint_i2d(const WOLFSSL_EC_GROUP *curve,
|
---|
| 134 | const WOLFSSL_EC_POINT *p,
|
---|
| 135 | unsigned char *out, unsigned int *len);
|
---|
| 136 | WOLFSSL_API
|
---|
| 137 | int wolfSSL_ECPoint_d2i(unsigned char *in, unsigned int len,
|
---|
| 138 | const WOLFSSL_EC_GROUP *curve, WOLFSSL_EC_POINT *p);
|
---|
| 139 | WOLFSSL_API
|
---|
| 140 | size_t wolfSSL_EC_POINT_point2oct(const WOLFSSL_EC_GROUP *group,
|
---|
| 141 | const WOLFSSL_EC_POINT *p,
|
---|
| 142 | char form,
|
---|
| 143 | byte *buf, size_t len, WOLFSSL_BN_CTX *ctx);
|
---|
| 144 | WOLFSSL_API
|
---|
| 145 | int wolfSSL_EC_POINT_oct2point(const WOLFSSL_EC_GROUP *group,
|
---|
| 146 | WOLFSSL_EC_POINT *p, const unsigned char *buf,
|
---|
| 147 | size_t len, WOLFSSL_BN_CTX *ctx);
|
---|
| 148 | WOLFSSL_API
|
---|
| 149 | int wolfSSL_i2o_ECPublicKey(const WOLFSSL_EC_KEY *in, unsigned char **out);
|
---|
| 150 | WOLFSSL_API
|
---|
| 151 | void wolfSSL_EC_KEY_set_conv_form(WOLFSSL_EC_KEY *eckey, char form);
|
---|
| 152 | WOLFSSL_API
|
---|
| 153 | WOLFSSL_BIGNUM *wolfSSL_EC_POINT_point2bn(const WOLFSSL_EC_GROUP *group,
|
---|
| 154 | const WOLFSSL_EC_POINT *p,
|
---|
| 155 | char form,
|
---|
| 156 | WOLFSSL_BIGNUM *in, WOLFSSL_BN_CTX *ctx);
|
---|
| 157 |
|
---|
| 158 | WOLFSSL_API
|
---|
| 159 | int wolfSSL_EC_KEY_LoadDer(WOLFSSL_EC_KEY* key,
|
---|
| 160 | const unsigned char* der, int derSz);
|
---|
| 161 | WOLFSSL_API
|
---|
| 162 | int wolfSSL_EC_KEY_LoadDer_ex(WOLFSSL_EC_KEY* key,
|
---|
| 163 | const unsigned char* der, int derSz, int opt);
|
---|
| 164 | WOLFSSL_API
|
---|
| 165 | void wolfSSL_EC_KEY_free(WOLFSSL_EC_KEY *key);
|
---|
| 166 | WOLFSSL_API
|
---|
| 167 | WOLFSSL_EC_POINT *wolfSSL_EC_KEY_get0_public_key(const WOLFSSL_EC_KEY *key);
|
---|
| 168 | WOLFSSL_API
|
---|
| 169 | const WOLFSSL_EC_GROUP *wolfSSL_EC_KEY_get0_group(const WOLFSSL_EC_KEY *key);
|
---|
| 170 | WOLFSSL_API
|
---|
| 171 | int wolfSSL_EC_KEY_set_private_key(WOLFSSL_EC_KEY *key,
|
---|
| 172 | const WOLFSSL_BIGNUM *priv_key);
|
---|
| 173 | WOLFSSL_API
|
---|
| 174 | WOLFSSL_BIGNUM *wolfSSL_EC_KEY_get0_private_key(const WOLFSSL_EC_KEY *key);
|
---|
| 175 | WOLFSSL_API
|
---|
| 176 | WOLFSSL_EC_KEY *wolfSSL_EC_KEY_new_by_curve_name(int nid);
|
---|
| 177 | WOLFSSL_API const char* wolfSSL_EC_curve_nid2nist(int nid);
|
---|
| 178 | WOLFSSL_API
|
---|
| 179 | WOLFSSL_EC_KEY *wolfSSL_EC_KEY_new(void);
|
---|
| 180 | WOLFSSL_API
|
---|
| 181 | int wolfSSL_EC_KEY_set_group(WOLFSSL_EC_KEY *key, WOLFSSL_EC_GROUP *group);
|
---|
| 182 | WOLFSSL_API
|
---|
| 183 | int wolfSSL_EC_KEY_generate_key(WOLFSSL_EC_KEY *key);
|
---|
| 184 | WOLFSSL_API
|
---|
| 185 | void wolfSSL_EC_KEY_set_asn1_flag(WOLFSSL_EC_KEY *key, int asn1_flag);
|
---|
| 186 | WOLFSSL_API
|
---|
| 187 | int wolfSSL_EC_KEY_set_public_key(WOLFSSL_EC_KEY *key,
|
---|
| 188 | const WOLFSSL_EC_POINT *pub);
|
---|
| 189 | WOLFSSL_API int wolfSSL_ECDSA_size(const WOLFSSL_EC_KEY *key);
|
---|
| 190 | WOLFSSL_API int wolfSSL_ECDSA_sign(int type, const unsigned char *digest,
|
---|
| 191 | int digestSz, unsigned char *sig,
|
---|
| 192 | unsigned int *sigSz, WOLFSSL_EC_KEY *key);
|
---|
| 193 | WOLFSSL_API
|
---|
| 194 | void wolfSSL_EC_GROUP_set_asn1_flag(WOLFSSL_EC_GROUP *group, int flag);
|
---|
| 195 | WOLFSSL_API
|
---|
| 196 | WOLFSSL_EC_GROUP *wolfSSL_EC_GROUP_new_by_curve_name(int nid);
|
---|
| 197 | WOLFSSL_API
|
---|
| 198 | int wolfSSL_EC_GROUP_cmp(const WOLFSSL_EC_GROUP *a, const WOLFSSL_EC_GROUP *b,
|
---|
| 199 | WOLFSSL_BN_CTX *ctx);
|
---|
| 200 | WOLFSSL_API
|
---|
| 201 | int wolfSSL_EC_GROUP_get_curve_name(const WOLFSSL_EC_GROUP *group);
|
---|
| 202 | WOLFSSL_API
|
---|
| 203 | int wolfSSL_EC_GROUP_get_degree(const WOLFSSL_EC_GROUP *group);
|
---|
| 204 | WOLFSSL_API
|
---|
| 205 | int wolfSSL_EC_GROUP_get_order(const WOLFSSL_EC_GROUP *group,
|
---|
| 206 | WOLFSSL_BIGNUM *order, WOLFSSL_BN_CTX *ctx);
|
---|
| 207 | WOLFSSL_API
|
---|
| 208 | int wolfSSL_EC_GROUP_order_bits(const WOLFSSL_EC_GROUP *group);
|
---|
| 209 | WOLFSSL_API
|
---|
| 210 | void wolfSSL_EC_GROUP_free(WOLFSSL_EC_GROUP *group);
|
---|
| 211 | WOLFSSL_API
|
---|
| 212 | const WOLFSSL_EC_METHOD* wolfSSL_EC_GROUP_method_of(
|
---|
| 213 | const WOLFSSL_EC_GROUP *group);
|
---|
| 214 | WOLFSSL_API
|
---|
| 215 | int wolfSSL_EC_METHOD_get_field_type(const WOLFSSL_EC_METHOD *meth);
|
---|
| 216 | WOLFSSL_API
|
---|
| 217 | WOLFSSL_EC_POINT *wolfSSL_EC_POINT_new(const WOLFSSL_EC_GROUP *group);
|
---|
| 218 | WOLFSSL_API
|
---|
| 219 | int wolfSSL_EC_POINT_get_affine_coordinates_GFp(const WOLFSSL_EC_GROUP *group,
|
---|
| 220 | const WOLFSSL_EC_POINT *p,
|
---|
| 221 | WOLFSSL_BIGNUM *x,
|
---|
| 222 | WOLFSSL_BIGNUM *y,
|
---|
| 223 | WOLFSSL_BN_CTX *ctx);
|
---|
| 224 | WOLFSSL_API
|
---|
| 225 | int wolfSSL_EC_POINT_set_affine_coordinates_GFp(const WOLFSSL_EC_GROUP *group,
|
---|
| 226 | WOLFSSL_EC_POINT *point,
|
---|
| 227 | const WOLFSSL_BIGNUM *x,
|
---|
| 228 | const WOLFSSL_BIGNUM *y,
|
---|
| 229 | WOLFSSL_BN_CTX *ctx);
|
---|
| 230 | WOLFSSL_API
|
---|
| 231 | int wolfSSL_EC_POINT_mul(const WOLFSSL_EC_GROUP *group, WOLFSSL_EC_POINT *r,
|
---|
| 232 | const WOLFSSL_BIGNUM *n,
|
---|
| 233 | const WOLFSSL_EC_POINT *q, const WOLFSSL_BIGNUM *m,
|
---|
| 234 | WOLFSSL_BN_CTX *ctx);
|
---|
| 235 | WOLFSSL_API
|
---|
| 236 | void wolfSSL_EC_POINT_clear_free(WOLFSSL_EC_POINT *point);
|
---|
| 237 | WOLFSSL_API
|
---|
| 238 | int wolfSSL_EC_POINT_cmp(const WOLFSSL_EC_GROUP *group,
|
---|
| 239 | const WOLFSSL_EC_POINT *a, const WOLFSSL_EC_POINT *b,
|
---|
| 240 | WOLFSSL_BN_CTX *ctx);
|
---|
| 241 | WOLFSSL_API int wolfSSL_EC_POINT_copy(WOLFSSL_EC_POINT *dest,
|
---|
| 242 | const WOLFSSL_EC_POINT *src);
|
---|
| 243 | WOLFSSL_API
|
---|
| 244 | void wolfSSL_EC_POINT_free(WOLFSSL_EC_POINT *point);
|
---|
| 245 | WOLFSSL_API
|
---|
| 246 | int wolfSSL_EC_POINT_is_at_infinity(const WOLFSSL_EC_GROUP *group,
|
---|
| 247 | const WOLFSSL_EC_POINT *a);
|
---|
| 248 |
|
---|
| 249 | #ifndef HAVE_SELFTEST
|
---|
| 250 | WOLFSSL_API
|
---|
| 251 | char* wolfSSL_EC_POINT_point2hex(const WOLFSSL_EC_GROUP* group,
|
---|
| 252 | const WOLFSSL_EC_POINT* point, int form,
|
---|
| 253 | WOLFSSL_BN_CTX* ctx);
|
---|
| 254 | #endif
|
---|
| 255 |
|
---|
| 256 | #ifndef HAVE_ECC
|
---|
| 257 | #define OPENSSL_NO_EC
|
---|
| 258 | #endif
|
---|
| 259 |
|
---|
| 260 | #define EC_KEY_new wolfSSL_EC_KEY_new
|
---|
| 261 | #define EC_KEY_free wolfSSL_EC_KEY_free
|
---|
| 262 | #define EC_KEY_dup wolfSSL_EC_KEY_dup
|
---|
| 263 | #define EC_KEY_get0_public_key wolfSSL_EC_KEY_get0_public_key
|
---|
| 264 | #define EC_KEY_get0_group wolfSSL_EC_KEY_get0_group
|
---|
| 265 | #define EC_KEY_set_private_key wolfSSL_EC_KEY_set_private_key
|
---|
| 266 | #define EC_KEY_get0_private_key wolfSSL_EC_KEY_get0_private_key
|
---|
| 267 | #define EC_KEY_new_by_curve_name wolfSSL_EC_KEY_new_by_curve_name
|
---|
| 268 | #define EC_KEY_set_group wolfSSL_EC_KEY_set_group
|
---|
| 269 | #define EC_KEY_generate_key wolfSSL_EC_KEY_generate_key
|
---|
| 270 | #define EC_KEY_set_asn1_flag wolfSSL_EC_KEY_set_asn1_flag
|
---|
| 271 | #define EC_KEY_set_public_key wolfSSL_EC_KEY_set_public_key
|
---|
| 272 |
|
---|
| 273 | #define ECDSA_size wolfSSL_ECDSA_size
|
---|
| 274 | #define ECDSA_sign wolfSSL_ECDSA_sign
|
---|
| 275 |
|
---|
| 276 | #define EC_GROUP_free wolfSSL_EC_GROUP_free
|
---|
| 277 | #define EC_GROUP_set_asn1_flag wolfSSL_EC_GROUP_set_asn1_flag
|
---|
| 278 | #define EC_GROUP_new_by_curve_name wolfSSL_EC_GROUP_new_by_curve_name
|
---|
| 279 | #define EC_GROUP_cmp wolfSSL_EC_GROUP_cmp
|
---|
| 280 | #define EC_GROUP_get_curve_name wolfSSL_EC_GROUP_get_curve_name
|
---|
| 281 | #define EC_GROUP_get_degree wolfSSL_EC_GROUP_get_degree
|
---|
| 282 | #define EC_GROUP_get_order wolfSSL_EC_GROUP_get_order
|
---|
| 283 | #define EC_GROUP_order_bits wolfSSL_EC_GROUP_order_bits
|
---|
| 284 | #define EC_GROUP_method_of wolfSSL_EC_GROUP_method_of
|
---|
| 285 |
|
---|
| 286 | #define EC_METHOD_get_field_type wolfSSL_EC_METHOD_get_field_type
|
---|
| 287 |
|
---|
| 288 | #define EC_POINT_new wolfSSL_EC_POINT_new
|
---|
| 289 | #define EC_POINT_free wolfSSL_EC_POINT_free
|
---|
| 290 | #define EC_POINT_get_affine_coordinates_GFp \
|
---|
| 291 | wolfSSL_EC_POINT_get_affine_coordinates_GFp
|
---|
| 292 | #define EC_POINT_set_affine_coordinates_GFp \
|
---|
| 293 | wolfSSL_EC_POINT_set_affine_coordinates_GFp
|
---|
| 294 | #define EC_POINT_mul wolfSSL_EC_POINT_mul
|
---|
| 295 | #define EC_POINT_clear_free wolfSSL_EC_POINT_clear_free
|
---|
| 296 | #define EC_POINT_cmp wolfSSL_EC_POINT_cmp
|
---|
| 297 | #define EC_POINT_copy wolfSSL_EC_POINT_copy
|
---|
| 298 | #define EC_POINT_is_at_infinity wolfSSL_EC_POINT_is_at_infinity
|
---|
| 299 |
|
---|
| 300 | #define EC_get_builtin_curves wolfSSL_EC_get_builtin_curves
|
---|
| 301 |
|
---|
| 302 | #define ECPoint_i2d wolfSSL_ECPoint_i2d
|
---|
| 303 | #define ECPoint_d2i wolfSSL_ECPoint_d2i
|
---|
| 304 | #define EC_POINT_point2oct wolfSSL_EC_POINT_point2oct
|
---|
| 305 | #define EC_POINT_oct2point wolfSSL_EC_POINT_oct2point
|
---|
| 306 | #define EC_POINT_point2bn wolfSSL_EC_POINT_point2bn
|
---|
| 307 | #define i2o_ECPublicKey wolfSSL_i2o_ECPublicKey
|
---|
| 308 | #define EC_KEY_set_conv_form wolfSSL_EC_KEY_set_conv_form
|
---|
| 309 |
|
---|
| 310 | #ifndef HAVE_SELFTEST
|
---|
| 311 | #define EC_POINT_point2hex wolfSSL_EC_POINT_point2hex
|
---|
| 312 | #endif
|
---|
| 313 |
|
---|
| 314 | #define EC_POINT_dump wolfSSL_EC_POINT_dump
|
---|
| 315 | #define EC_get_builtin_curves wolfSSL_EC_get_builtin_curves
|
---|
| 316 |
|
---|
| 317 | #define EC_curve_nid2nist wolfSSL_EC_curve_nid2nist
|
---|
| 318 |
|
---|
| 319 | #ifdef __cplusplus
|
---|
| 320 | } /* extern "C" */
|
---|
| 321 | #endif
|
---|
| 322 |
|
---|
| 323 | #endif /* header */
|
---|