blob: a1a9bc9729c481194659be4dc925c3c334202e6b [file] [log] [blame]
Jens Wiklanderbc420742015-05-05 14:59:15 +02001#!/usr/bin/env python
Jerome Forissier1bb92982017-12-15 14:27:02 +01002# SPDX-License-Identifier: BSD-2-Clause
Jens Wiklanderbc420742015-05-05 14:59:15 +02003#
4# Copyright (c) 2015, Linaro Limited
Jens Wiklanderbc420742015-05-05 14:59:15 +02005#
Jens Wiklanderbc420742015-05-05 14:59:15 +02006
Jerome Forissier049aefa2018-11-14 11:02:49 +01007
Jens Wiklanderbc420742015-05-05 14:59:15 +02008def get_args():
Jerome Forissier049aefa2018-11-14 11:02:49 +01009 import argparse
Jens Wiklanderbc420742015-05-05 14:59:15 +020010
Jerome Forissier049aefa2018-11-14 11:02:49 +010011 parser = argparse.ArgumentParser()
12 parser.add_argument(
13 '--prefix',
14 required=True,
15 help='Prefix for the public key exponent and modulus in c file')
Jens Wiklanderbc420742015-05-05 14:59:15 +020016
Jerome Forissier049aefa2018-11-14 11:02:49 +010017 parser.add_argument('--out', required=True,
18 help='Name of c file for the public key')
Jens Wiklanderbc420742015-05-05 14:59:15 +020019
Jerome Forissier049aefa2018-11-14 11:02:49 +010020 parser.add_argument('--key', required=True, help='Name of key file')
Jens Wiklanderbc420742015-05-05 14:59:15 +020021
Jerome Forissier049aefa2018-11-14 11:02:49 +010022 return parser.parse_args()
23
Jens Wiklanderbc420742015-05-05 14:59:15 +020024
25def main():
Jerome Forissier049aefa2018-11-14 11:02:49 +010026 import array
27 from Crypto.PublicKey import RSA
28 from Crypto.Util.number import long_to_bytes
Jens Wiklanderbc420742015-05-05 14:59:15 +020029
Jerome Forissier049aefa2018-11-14 11:02:49 +010030 args = get_args()
Jens Wiklanderbc420742015-05-05 14:59:15 +020031
Jerome Forissier049aefa2018-11-14 11:02:49 +010032 f = open(args.key, 'r')
33 key = RSA.importKey(f.read())
34 f.close
Jens Wiklanderbc420742015-05-05 14:59:15 +020035
Markus S. Wamser0a6f2bc2019-03-26 11:29:44 +010036 # Refuse public exponent with more than 32 bits. Otherwise the C
37 # compiler may simply truncate the value and proceed.
38 # This will lead to TAs seemingly having invalid signatures with a
39 # possible security issue for any e = k*2^32 + 1 (for any integer k).
40 if key.publickey().e > 0xffffffff:
41 raise ValueError(
42 'Unsupported large public exponent detected. ' +
43 'OP-TEE handles only public exponents up to 2^32 - 1.')
44
Jerome Forissier049aefa2018-11-14 11:02:49 +010045 f = open(args.out, 'w')
Jens Wiklanderbc420742015-05-05 14:59:15 +020046
Jerome Forissier049aefa2018-11-14 11:02:49 +010047 f.write("#include <stdint.h>\n")
48 f.write("#include <stddef.h>\n\n")
Jens Wiklanderbc420742015-05-05 14:59:15 +020049
Jerome Forissier049aefa2018-11-14 11:02:49 +010050 f.write("const uint32_t " + args.prefix + "_exponent = " +
51 str(key.publickey().e) + ";\n\n")
Jens Wiklanderbc420742015-05-05 14:59:15 +020052
Jerome Forissier049aefa2018-11-14 11:02:49 +010053 f.write("const uint8_t " + args.prefix + "_modulus[] = {\n")
54 i = 0
55 for x in array.array("B", long_to_bytes(key.publickey().n)):
56 f.write("0x" + '{0:02x}'.format(x) + ",")
57 i = i + 1
58 if i % 8 == 0:
59 f.write("\n")
60 else:
61 f.write(" ")
62 f.write("};\n")
Jens Wiklanderbc420742015-05-05 14:59:15 +020063
Jerome Forissier049aefa2018-11-14 11:02:49 +010064 f.write("const size_t " + args.prefix + "_modulus_size = sizeof(" +
65 args.prefix + "_modulus);\n")
Jens Wiklanderbc420742015-05-05 14:59:15 +020066
Jerome Forissier049aefa2018-11-14 11:02:49 +010067 f.close()
68
Jens Wiklanderbc420742015-05-05 14:59:15 +020069
70if __name__ == "__main__":
Jerome Forissier049aefa2018-11-14 11:02:49 +010071 main()