2015-01-22 03:40:55 +00:00
|
|
|
/*
|
2016-05-17 19:38:09 +00:00
|
|
|
* Copyright 2000-2016 The OpenSSL Project Authors. All Rights Reserved.
|
1999-12-22 01:39:23 +00:00
|
|
|
*
|
2016-05-17 19:38:09 +00:00
|
|
|
* Licensed under the OpenSSL license (the "License"). You may not use
|
|
|
|
* this file except in compliance with the License. You can obtain a copy
|
|
|
|
* in the file LICENSE in the source distribution or at
|
|
|
|
* https://www.openssl.org/source/license.html
|
1999-12-22 01:39:23 +00:00
|
|
|
*/
|
|
|
|
|
|
|
|
#include <stdio.h>
|
2015-05-14 14:56:48 +00:00
|
|
|
#include "internal/cryptlib.h"
|
2000-12-08 19:09:35 +00:00
|
|
|
#include <openssl/bn.h>
|
2019-09-27 21:58:06 +00:00
|
|
|
#include "dh_local.h"
|
2000-12-08 19:09:35 +00:00
|
|
|
#include <openssl/objects.h>
|
|
|
|
#include <openssl/asn1t.h>
|
1999-12-22 01:39:23 +00:00
|
|
|
|
2000-12-08 19:09:35 +00:00
|
|
|
/* Override the default free and new methods */
|
2005-09-01 20:42:52 +00:00
|
|
|
static int dh_cb(int operation, ASN1_VALUE **pval, const ASN1_ITEM *it,
|
2015-01-22 03:40:55 +00:00
|
|
|
void *exarg)
|
1999-12-22 01:39:23 +00:00
|
|
|
{
|
2015-01-22 03:40:55 +00:00
|
|
|
if (operation == ASN1_OP_NEW_PRE) {
|
|
|
|
*pval = (ASN1_VALUE *)DH_new();
|
2015-10-30 11:12:26 +00:00
|
|
|
if (*pval != NULL)
|
2015-01-22 03:40:55 +00:00
|
|
|
return 2;
|
|
|
|
return 0;
|
|
|
|
} else if (operation == ASN1_OP_FREE_PRE) {
|
|
|
|
DH_free((DH *)*pval);
|
|
|
|
*pval = NULL;
|
|
|
|
return 2;
|
|
|
|
}
|
|
|
|
return 1;
|
1999-12-22 01:39:23 +00:00
|
|
|
}
|
|
|
|
|
2000-12-08 19:09:35 +00:00
|
|
|
ASN1_SEQUENCE_cb(DHparams, dh_cb) = {
|
2015-01-22 03:40:55 +00:00
|
|
|
ASN1_SIMPLE(DH, p, BIGNUM),
|
|
|
|
ASN1_SIMPLE(DH, g, BIGNUM),
|
2017-04-12 09:52:52 +00:00
|
|
|
ASN1_OPT_EMBED(DH, length, ZINT32),
|
2016-03-10 01:56:43 +00:00
|
|
|
} ASN1_SEQUENCE_END_cb(DH, DHparams)
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
IMPLEMENT_ASN1_ENCODE_FUNCTIONS_const_fname(DH, DHparams, DHparams)
|
2009-09-06 15:49:46 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Internal only structures for handling X9.42 DH: this gets translated to or
|
|
|
|
* from a DH structure straight away.
|
2011-12-07 00:32:34 +00:00
|
|
|
*/
|
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
typedef struct {
|
|
|
|
ASN1_BIT_STRING *seed;
|
|
|
|
BIGNUM *counter;
|
|
|
|
} int_dhvparams;
|
|
|
|
|
|
|
|
typedef struct {
|
|
|
|
BIGNUM *p;
|
|
|
|
BIGNUM *q;
|
|
|
|
BIGNUM *g;
|
|
|
|
BIGNUM *j;
|
|
|
|
int_dhvparams *vparams;
|
|
|
|
} int_dhx942_dh;
|
2011-12-07 00:32:34 +00:00
|
|
|
|
|
|
|
ASN1_SEQUENCE(DHvparams) = {
|
2015-01-22 03:40:55 +00:00
|
|
|
ASN1_SIMPLE(int_dhvparams, seed, ASN1_BIT_STRING),
|
|
|
|
ASN1_SIMPLE(int_dhvparams, counter, BIGNUM)
|
2015-09-05 12:32:58 +00:00
|
|
|
} static_ASN1_SEQUENCE_END_name(int_dhvparams, DHvparams)
|
2011-12-07 00:32:34 +00:00
|
|
|
|
|
|
|
ASN1_SEQUENCE(DHxparams) = {
|
2015-01-22 03:40:55 +00:00
|
|
|
ASN1_SIMPLE(int_dhx942_dh, p, BIGNUM),
|
|
|
|
ASN1_SIMPLE(int_dhx942_dh, g, BIGNUM),
|
|
|
|
ASN1_SIMPLE(int_dhx942_dh, q, BIGNUM),
|
|
|
|
ASN1_OPT(int_dhx942_dh, j, BIGNUM),
|
|
|
|
ASN1_OPT(int_dhx942_dh, vparams, DHvparams),
|
2015-09-05 12:32:58 +00:00
|
|
|
} static_ASN1_SEQUENCE_END_name(int_dhx942_dh, DHxparams)
|
2011-12-07 00:32:34 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
int_dhx942_dh *d2i_int_dhx(int_dhx942_dh **a,
|
|
|
|
const unsigned char **pp, long length);
|
|
|
|
int i2d_int_dhx(const int_dhx942_dh *a, unsigned char **pp);
|
2011-12-07 00:32:34 +00:00
|
|
|
|
|
|
|
IMPLEMENT_ASN1_ENCODE_FUNCTIONS_const_fname(int_dhx942_dh, DHxparams, int_dhx)
|
|
|
|
|
2016-02-05 20:23:54 +00:00
|
|
|
/* Application public function: read in X9.42 DH parameters into DH structure */
|
2011-12-07 00:32:34 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
DH *d2i_DHxparams(DH **a, const unsigned char **pp, long length)
|
|
|
|
{
|
|
|
|
int_dhx942_dh *dhx = NULL;
|
|
|
|
DH *dh = NULL;
|
|
|
|
dh = DH_new();
|
2015-10-30 11:12:26 +00:00
|
|
|
if (dh == NULL)
|
2015-01-22 03:40:55 +00:00
|
|
|
return NULL;
|
|
|
|
dhx = d2i_int_dhx(NULL, pp, length);
|
2015-10-30 11:12:26 +00:00
|
|
|
if (dhx == NULL) {
|
2015-01-22 03:40:55 +00:00
|
|
|
DH_free(dh);
|
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (a) {
|
2015-03-24 14:17:37 +00:00
|
|
|
DH_free(*a);
|
2015-01-22 03:40:55 +00:00
|
|
|
*a = dh;
|
|
|
|
}
|
|
|
|
|
|
|
|
dh->p = dhx->p;
|
|
|
|
dh->q = dhx->q;
|
|
|
|
dh->g = dhx->g;
|
|
|
|
dh->j = dhx->j;
|
|
|
|
|
|
|
|
if (dhx->vparams) {
|
|
|
|
dh->seed = dhx->vparams->seed->data;
|
|
|
|
dh->seedlen = dhx->vparams->seed->length;
|
|
|
|
dh->counter = dhx->vparams->counter;
|
|
|
|
dhx->vparams->seed->data = NULL;
|
|
|
|
ASN1_BIT_STRING_free(dhx->vparams->seed);
|
|
|
|
OPENSSL_free(dhx->vparams);
|
|
|
|
dhx->vparams = NULL;
|
|
|
|
}
|
|
|
|
|
|
|
|
OPENSSL_free(dhx);
|
|
|
|
return dh;
|
|
|
|
}
|
|
|
|
|
|
|
|
int i2d_DHxparams(const DH *dh, unsigned char **pp)
|
|
|
|
{
|
|
|
|
int_dhx942_dh dhx;
|
|
|
|
int_dhvparams dhv;
|
|
|
|
ASN1_BIT_STRING bs;
|
|
|
|
dhx.p = dh->p;
|
|
|
|
dhx.g = dh->g;
|
|
|
|
dhx.q = dh->q;
|
|
|
|
dhx.j = dh->j;
|
|
|
|
if (dh->counter && dh->seed && dh->seedlen > 0) {
|
|
|
|
bs.flags = ASN1_STRING_FLAG_BITS_LEFT;
|
|
|
|
bs.data = dh->seed;
|
|
|
|
bs.length = dh->seedlen;
|
|
|
|
dhv.seed = &bs;
|
|
|
|
dhv.counter = dh->counter;
|
|
|
|
dhx.vparams = &dhv;
|
|
|
|
} else
|
|
|
|
dhx.vparams = NULL;
|
|
|
|
|
|
|
|
return i2d_int_dhx(&dhx, pp);
|
|
|
|
}
|