Go to the documentation of this file.
1 /* Copyright (c) 2001, Matej Pfajfar.
2  * Copyright (c) 2001-2004, Roger Dingledine.
3  * Copyright (c) 2004-2006, Roger Dingledine, Nick Mathewson.
4  * Copyright (c) 2007-2019, The Tor Project, Inc. */
5 /* See LICENSE for licensing information */
13 #ifndef TOR_CRYPTO_RSA_H
14 #define TOR_CRYPTO_RSA_H
16 #include "orconfig.h"
19 #include "lib/cc/torint.h"
21 #include "lib/log/log.h"
24 #define PK_BYTES (1024/8)
27 #define PK_PKCS1_OAEP_PADDING 60002
34 #define FINGERPRINT_LEN 49
37 #define TOR_RSA_EXPONENT 65537
40 typedef struct crypto_pk_t crypto_pk_t;
42 /* RSA environment setup */
43 MOCK_DECL(crypto_pk_t *,crypto_pk_new,(void));
44 void crypto_pk_free_(crypto_pk_t *env);
45 #define crypto_pk_free(pk) FREE_AND_NULL(crypto_pk_t, crypto_pk_free_, (pk))
46 int crypto_get_rsa_padding_overhead(int padding);
47 int crypto_get_rsa_padding(int padding);
49 /* public key crypto */
50 MOCK_DECL(int, crypto_pk_generate_key_with_bits,(crypto_pk_t *env, int bits));
51 #define crypto_pk_generate_key(env) \
52  crypto_pk_generate_key_with_bits((env), (PK_BYTES*8))
55  const char *keyfile);
57  char **dest, size_t *len);
59  char **dest, size_t *len);
61  const char *src, size_t len);
63  const char *s, ssize_t len);
65  const char *fname);
68 int crypto_pk_cmp_keys(const crypto_pk_t *a, const crypto_pk_t *b);
69 int crypto_pk_eq_keys(const crypto_pk_t *a, const crypto_pk_t *b);
70 size_t crypto_pk_keysize(const crypto_pk_t *env);
77  size_t tolen,
78  const char *from, size_t fromlen,
79  int padding, int force);
81  size_t tolen,
82  const char *from, size_t fromlen,
83  int padding, int warnOnFailure);
84 int crypto_pk_public_encrypt(crypto_pk_t *env, char *to, size_t tolen,
85  const char *from, size_t fromlen, int padding);
86 int crypto_pk_private_decrypt(crypto_pk_t *env, char *to, size_t tolen,
87  const char *from, size_t fromlen,
88  int padding, int warnOnFailure);
89 MOCK_DECL(int, crypto_pk_public_checksig,(const crypto_pk_t *env,
90  char *to, size_t tolen,
91  const char *from, size_t fromlen));
92 int crypto_pk_private_sign(const crypto_pk_t *env, char *to, size_t tolen,
93  const char *from, size_t fromlen);
94 int crypto_pk_asn1_encode(const crypto_pk_t *pk, char *dest, size_t dest_len);
95 crypto_pk_t *crypto_pk_asn1_decode(const char *str, size_t len);
97  char *dest, size_t dest_len);
98 crypto_pk_t *crypto_pk_asn1_decode_private(const char *str, size_t len);
99 int crypto_pk_get_fingerprint(crypto_pk_t *pk, char *fp_out,int add_space);
100 int crypto_pk_get_hashed_fingerprint(crypto_pk_t *pk, char *fp_out);
101 void crypto_add_spaces_to_fp(char *out, size_t outlen, const char *in);
103 MOCK_DECL(int, crypto_pk_public_checksig_digest,(crypto_pk_t *env,
104  const char *data, size_t datalen, const char *sig, size_t siglen));
105 int crypto_pk_private_sign_digest(crypto_pk_t *env, char *to, size_t tolen,
106  const char *from, size_t fromlen);
107 int crypto_pk_get_digest(const crypto_pk_t *pk, char *digest_out);
109  common_digests_t *digests_out);
110 int crypto_pk_base64_encode_private(const crypto_pk_t *pk, char **priv_out);
111 crypto_pk_t *crypto_pk_base64_decode_private(const char *str, size_t len);
114 /* Prototypes for private functions only used by tortls.c, crypto.c, and the
115  * unit tests. */
116 struct rsa_st;
117 struct evp_pkey_st;
118 struct rsa_st *crypto_pk_get_openssl_rsa_(crypto_pk_t *env);
119 crypto_pk_t *crypto_new_pk_from_openssl_rsa_(struct rsa_st *rsa);
120 MOCK_DECL(struct evp_pkey_st *, crypto_pk_get_openssl_evp_pkey_,(
121  crypto_pk_t *env,int private));
122 #endif
124 #ifdef ENABLE_NSS
125 struct SECKEYPublicKeyStr;
126 struct SECKEYPrivateKeyStr;
127 crypto_pk_t *crypto_pk_new_from_nss_pubkey(struct SECKEYPublicKeyStr *pub);
128 const struct SECKEYPublicKeyStr *crypto_pk_get_nss_pubkey(
129  const crypto_pk_t *key);
130 const struct SECKEYPrivateKeyStr *crypto_pk_get_nss_privkey(
131  const crypto_pk_t *key);
132 #endif
134 void crypto_pk_assign_public(crypto_pk_t *dest, const crypto_pk_t *src);
135 void crypto_pk_assign_private(crypto_pk_t *dest, const crypto_pk_t *src);
137 #ifdef TOR_UNIT_TESTS
138 #ifdef ENABLE_NSS
139 struct SECItemStr;
140 STATIC int secitem_uint_cmp(const struct SECItemStr *a,
141  const struct SECItemStr *b);
142 #endif
143 #endif
145 #endif
int crypto_pk_write_private_key_to_filename(crypto_pk_t *env, const char *fname)
Definition: crypto_rsa.c:595
int crypto_pk_eq_keys(const crypto_pk_t *a, const crypto_pk_t *b)
Definition: crypto_rsa.c:71
int crypto_pk_private_sign(const crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen)
int crypto_pk_write_public_key_to_string(crypto_pk_t *env, char **dest, size_t *len)
Definition: crypto_rsa.c:466
int crypto_pk_get_fingerprint(crypto_pk_t *pk, char *fp_out, int add_space)
Definition: crypto_rsa.c:229
int crypto_pk_obsolete_private_hybrid_decrypt(crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen, int padding, int warnOnFailure)
Definition: crypto_rsa.c:163
int crypto_pk_cmp_keys(const crypto_pk_t *a, const crypto_pk_t *b)
int crypto_pk_read_private_key_from_string(crypto_pk_t *env, const char *s, ssize_t len)
Definition: crypto_rsa.c:550
int crypto_pk_base64_encode_private(const crypto_pk_t *pk, char **priv_out)
Definition: crypto_rsa.c:618
int crypto_pk_get_common_digests(crypto_pk_t *pk, common_digests_t *digests_out)
Definition: crypto_rsa.c:381
int crypto_pk_obsolete_public_hybrid_encrypt(crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen, int padding, int force)
Definition: crypto_rsa.c:94
void crypto_pk_free_(crypto_pk_t *env)
Integer definitions used throughout Tor.
crypto_pk_t * crypto_pk_asn1_decode_private(const char *str, size_t len)
int crypto_get_rsa_padding_overhead(int padding)
Definition: crypto_rsa.c:41
void crypto_add_spaces_to_fp(char *out, size_t outlen, const char *in)
Definition: crypto_rsa.c:270
int crypto_pk_private_sign_digest(crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen)
Definition: crypto_rsa.c:339
int crypto_pk_write_private_key_to_string(crypto_pk_t *env, char **dest, size_t *len)
Definition: crypto_rsa.c:478
crypto_pk_t * crypto_pk_asn1_decode(const char *str, size_t len)
void crypto_pk_assign_public(crypto_pk_t *dest, const crypto_pk_t *src)
int crypto_pk_key_is_private(const crypto_pk_t *key)
int crypto_pk_public_encrypt(crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen, int padding)
void crypto_pk_assign_private(crypto_pk_t *dest, const crypto_pk_t *src)
crypto_pk_t * crypto_pk_base64_decode_private(const char *str, size_t len)
Definition: crypto_rsa.c:654
int crypto_pk_private_decrypt(crypto_pk_t *env, char *to, size_t tolen, const char *from, size_t fromlen, int padding, int warnOnFailure)
crypto_pk_t * crypto_pk_dup_key(crypto_pk_t *orig)
int crypto_pk_public_exponent_ok(const crypto_pk_t *env)
Headers for crypto_digest.c.
int crypto_pk_get_hashed_fingerprint(crypto_pk_t *pk, char *fp_out)
Definition: crypto_rsa.c:254
int crypto_pk_asn1_encode_private(const crypto_pk_t *pk, char *dest, size_t dest_len)
size_t crypto_pk_keysize(const crypto_pk_t *env)
Macros to implement mocking and selective exposure for the test code.
#define MOCK_DECL(rv, funcname, arglist)
Definition: testsupport.h:94
crypto_pk_t * crypto_pk_copy_full(crypto_pk_t *orig)
int crypto_pk_is_valid_private_key(const crypto_pk_t *env)
int crypto_pk_read_private_key_from_filename(crypto_pk_t *env, const char *keyfile)
Definition: crypto_rsa.c:563
Headers for log.c.
int crypto_pk_num_bits(crypto_pk_t *env)
int crypto_pk_asn1_encode(const crypto_pk_t *pk, char *dest, size_t dest_len)
int crypto_pk_read_public_key_from_string(crypto_pk_t *env, const char *src, size_t len)
Definition: crypto_rsa.c:539
int crypto_pk_get_digest(const crypto_pk_t *pk, char *digest_out)
Definition: crypto_rsa.c:356