Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 1 | /* |
| 2 | * Example RSA key generation program |
| 3 | * |
Bence Szépkúti | 1e14827 | 2020-08-07 13:07:28 +0200 | [diff] [blame] | 4 | * Copyright The Mbed TLS Contributors |
Dave Rodgman | 16799db | 2023-11-02 19:47:20 +0000 | [diff] [blame] | 5 | * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 6 | */ |
| 7 | |
Felix Conway | 998760a | 2025-03-24 11:37:33 +0000 | [diff] [blame] | 8 | #define MBEDTLS_DECLARE_PRIVATE_IDENTIFIERS |
| 9 | |
Bence Szépkúti | c662b36 | 2021-05-27 11:25:03 +0200 | [diff] [blame] | 10 | #include "mbedtls/build_info.h" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 11 | |
Manuel Pégourié-Gonnard | 7f80997 | 2015-03-09 17:05:11 +0000 | [diff] [blame] | 12 | #include "mbedtls/platform.h" |
Rich Evans | f90016a | 2015-01-19 14:26:37 +0000 | [diff] [blame] | 13 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 14 | #if defined(MBEDTLS_BIGNUM_C) && defined(MBEDTLS_ENTROPY_C) && \ |
| 15 | defined(MBEDTLS_RSA_C) && defined(MBEDTLS_GENPRIME) && \ |
| 16 | defined(MBEDTLS_FS_IO) && defined(MBEDTLS_CTR_DRBG_C) |
Manuel Pégourié-Gonnard | 7f80997 | 2015-03-09 17:05:11 +0000 | [diff] [blame] | 17 | #include "mbedtls/entropy.h" |
| 18 | #include "mbedtls/ctr_drbg.h" |
| 19 | #include "mbedtls/bignum.h" |
Manuel Pégourié-Gonnard | 7f80997 | 2015-03-09 17:05:11 +0000 | [diff] [blame] | 20 | #include "mbedtls/rsa.h" |
Manuel Pégourié-Gonnard | 6c5abfa | 2015-02-13 14:12:07 +0000 | [diff] [blame] | 21 | |
Rich Evans | 18b78c7 | 2015-02-11 14:06:19 +0000 | [diff] [blame] | 22 | #include <stdio.h> |
| 23 | #include <string.h> |
| 24 | #endif |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 25 | |
Manuel Pégourié-Gonnard | d224ff1 | 2015-08-27 21:42:49 +0200 | [diff] [blame] | 26 | #define KEY_SIZE 2048 |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 27 | #define EXPONENT 65537 |
| 28 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 29 | #if !defined(MBEDTLS_BIGNUM_C) || !defined(MBEDTLS_ENTROPY_C) || \ |
| 30 | !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_GENPRIME) || \ |
| 31 | !defined(MBEDTLS_FS_IO) || !defined(MBEDTLS_CTR_DRBG_C) |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 32 | int main(void) |
Paul Bakker | 5690efc | 2011-05-26 13:16:06 +0000 | [diff] [blame] | 33 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 34 | mbedtls_printf("MBEDTLS_BIGNUM_C and/or MBEDTLS_ENTROPY_C and/or " |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 35 | "MBEDTLS_RSA_C and/or MBEDTLS_GENPRIME and/or " |
| 36 | "MBEDTLS_FS_IO and/or MBEDTLS_CTR_DRBG_C not defined.\n"); |
| 37 | mbedtls_exit(0); |
Paul Bakker | 5690efc | 2011-05-26 13:16:06 +0000 | [diff] [blame] | 38 | } |
| 39 | #else |
Simon Butcher | 63cb97e | 2018-12-06 17:43:31 +0000 | [diff] [blame] | 40 | |
Simon Butcher | 63cb97e | 2018-12-06 17:43:31 +0000 | [diff] [blame] | 41 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 42 | int main(void) |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 43 | { |
Andres Amaya Garcia | 70e1ffd | 2018-04-29 20:12:43 +0100 | [diff] [blame] | 44 | int ret = 1; |
| 45 | int exit_code = MBEDTLS_EXIT_FAILURE; |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 46 | mbedtls_rsa_context rsa; |
| 47 | mbedtls_entropy_context entropy; |
| 48 | mbedtls_ctr_drbg_context ctr_drbg; |
Hanno Becker | f073de0 | 2017-08-23 07:42:28 +0100 | [diff] [blame] | 49 | mbedtls_mpi N, P, Q, D, E, DP, DQ, QP; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 50 | FILE *fpub = NULL; |
| 51 | FILE *fpriv = NULL; |
Paul Bakker | ef3f8c7 | 2013-06-24 13:01:08 +0200 | [diff] [blame] | 52 | const char *pers = "rsa_genkey"; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 53 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 54 | mbedtls_ctr_drbg_init(&ctr_drbg); |
| 55 | mbedtls_rsa_init(&rsa); |
| 56 | mbedtls_mpi_init(&N); mbedtls_mpi_init(&P); mbedtls_mpi_init(&Q); |
| 57 | mbedtls_mpi_init(&D); mbedtls_mpi_init(&E); mbedtls_mpi_init(&DP); |
| 58 | mbedtls_mpi_init(&DQ); mbedtls_mpi_init(&QP); |
Manuel Pégourié-Gonnard | ec160c0 | 2015-04-28 22:52:30 +0200 | [diff] [blame] | 59 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 60 | mbedtls_printf("\n . Seeding the random number generator..."); |
| 61 | fflush(stdout); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 62 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 63 | mbedtls_entropy_init(&entropy); |
| 64 | if ((ret = mbedtls_ctr_drbg_seed(&ctr_drbg, mbedtls_entropy_func, &entropy, |
| 65 | (const unsigned char *) pers, |
| 66 | strlen(pers))) != 0) { |
| 67 | mbedtls_printf(" failed\n ! mbedtls_ctr_drbg_seed returned %d\n", ret); |
Paul Bakker | 508ad5a | 2011-12-04 17:09:26 +0000 | [diff] [blame] | 68 | goto exit; |
| 69 | } |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 70 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 71 | mbedtls_printf(" ok\n . Generating the RSA key [ %d-bit ]...", KEY_SIZE); |
| 72 | fflush(stdout); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 73 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 74 | if ((ret = mbedtls_rsa_gen_key(&rsa, mbedtls_ctr_drbg_random, &ctr_drbg, KEY_SIZE, |
| 75 | EXPONENT)) != 0) { |
| 76 | mbedtls_printf(" failed\n ! mbedtls_rsa_gen_key returned %d\n\n", ret); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 77 | goto exit; |
| 78 | } |
| 79 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 80 | mbedtls_printf(" ok\n . Exporting the public key in rsa_pub.txt...."); |
| 81 | fflush(stdout); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 82 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 83 | if ((ret = mbedtls_rsa_export(&rsa, &N, &P, &Q, &D, &E)) != 0 || |
| 84 | (ret = mbedtls_rsa_export_crt(&rsa, &DP, &DQ, &QP)) != 0) { |
| 85 | mbedtls_printf(" failed\n ! could not export RSA parameters\n\n"); |
Hanno Becker | f073de0 | 2017-08-23 07:42:28 +0100 | [diff] [blame] | 86 | goto exit; |
| 87 | } |
| 88 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 89 | if ((fpub = fopen("rsa_pub.txt", "wb+")) == NULL) { |
| 90 | mbedtls_printf(" failed\n ! could not open rsa_pub.txt for writing\n\n"); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 91 | goto exit; |
| 92 | } |
| 93 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 94 | if ((ret = mbedtls_mpi_write_file("N = ", &N, 16, fpub)) != 0 || |
| 95 | (ret = mbedtls_mpi_write_file("E = ", &E, 16, fpub)) != 0) { |
| 96 | mbedtls_printf(" failed\n ! mbedtls_mpi_write_file returned %d\n\n", ret); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 97 | goto exit; |
| 98 | } |
| 99 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 100 | mbedtls_printf(" ok\n . Exporting the private key in rsa_priv.txt..."); |
| 101 | fflush(stdout); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 102 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 103 | if ((fpriv = fopen("rsa_priv.txt", "wb+")) == NULL) { |
| 104 | mbedtls_printf(" failed\n ! could not open rsa_priv.txt for writing\n"); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 105 | goto exit; |
| 106 | } |
| 107 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 108 | if ((ret = mbedtls_mpi_write_file("N = ", &N, 16, fpriv)) != 0 || |
| 109 | (ret = mbedtls_mpi_write_file("E = ", &E, 16, fpriv)) != 0 || |
| 110 | (ret = mbedtls_mpi_write_file("D = ", &D, 16, fpriv)) != 0 || |
| 111 | (ret = mbedtls_mpi_write_file("P = ", &P, 16, fpriv)) != 0 || |
| 112 | (ret = mbedtls_mpi_write_file("Q = ", &Q, 16, fpriv)) != 0 || |
| 113 | (ret = mbedtls_mpi_write_file("DP = ", &DP, 16, fpriv)) != 0 || |
| 114 | (ret = mbedtls_mpi_write_file("DQ = ", &DQ, 16, fpriv)) != 0 || |
| 115 | (ret = mbedtls_mpi_write_file("QP = ", &QP, 16, fpriv)) != 0) { |
| 116 | mbedtls_printf(" failed\n ! mbedtls_mpi_write_file returned %d\n\n", ret); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 117 | goto exit; |
| 118 | } |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 119 | mbedtls_printf(" ok\n\n"); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 120 | |
Andres Amaya Garcia | 70e1ffd | 2018-04-29 20:12:43 +0100 | [diff] [blame] | 121 | exit_code = MBEDTLS_EXIT_SUCCESS; |
| 122 | |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 123 | exit: |
| 124 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 125 | if (fpub != NULL) { |
| 126 | fclose(fpub); |
| 127 | } |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 128 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 129 | if (fpriv != NULL) { |
| 130 | fclose(fpriv); |
| 131 | } |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 132 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 133 | mbedtls_mpi_free(&N); mbedtls_mpi_free(&P); mbedtls_mpi_free(&Q); |
| 134 | mbedtls_mpi_free(&D); mbedtls_mpi_free(&E); mbedtls_mpi_free(&DP); |
| 135 | mbedtls_mpi_free(&DQ); mbedtls_mpi_free(&QP); |
| 136 | mbedtls_rsa_free(&rsa); |
| 137 | mbedtls_ctr_drbg_free(&ctr_drbg); |
| 138 | mbedtls_entropy_free(&entropy); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 139 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 140 | mbedtls_exit(exit_code); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 141 | } |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 142 | #endif /* MBEDTLS_BIGNUM_C && MBEDTLS_ENTROPY_C && MBEDTLS_RSA_C && |
| 143 | MBEDTLS_GENPRIME && MBEDTLS_FS_IO && MBEDTLS_CTR_DRBG_C */ |