blob: fd89aa947a1247f5b26693179c252f7bc67ddf28 [file] [log] [blame]
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +02001/**
Darryl Greena40a1012018-01-05 15:33:17 +00002 * \file pk_internal.h
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +02003 *
4 * \brief Public Key abstraction layer: wrapper functions
Darryl Greena40a1012018-01-05 15:33:17 +00005 */
6/*
Manuel Pégourié-Gonnard6fb81872015-07-27 11:11:48 +02007 * Copyright (C) 2006-2015, ARM Limited, All Rights Reserved
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02008 * SPDX-License-Identifier: Apache-2.0
9 *
10 * Licensed under the Apache License, Version 2.0 (the "License"); you may
11 * not use this file except in compliance with the License.
12 * You may obtain a copy of the License at
13 *
14 * http://www.apache.org/licenses/LICENSE-2.0
15 *
16 * Unless required by applicable law or agreed to in writing, software
17 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
18 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
19 * See the License for the specific language governing permissions and
20 * limitations under the License.
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +020021 *
Manuel Pégourié-Gonnardfe446432015-03-06 13:17:10 +000022 * This file is part of mbed TLS (https://tls.mbed.org)
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +020023 */
24
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020025#ifndef MBEDTLS_PK_WRAP_H
26#define MBEDTLS_PK_WRAP_H
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +020027
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020028#if !defined(MBEDTLS_CONFIG_FILE)
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +020029#include "config.h"
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020030#else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020031#include MBEDTLS_CONFIG_FILE
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020032#endif
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +020033
34#include "pk.h"
35
Manuel Pégourié-Gonnard342cecf2019-09-19 10:45:14 +020036/*
37 * PK information macro definitions
38 */
39
40/*
41 * Each PK type that can be used with MBEDTLS_PK_SINGLE_TYPE needs to have
42 * the following MBEDTLS_PK_INFO_{FIELD} definitions, plus a dummy one for the
43 * base name. For now, only ECKEY with MBEDTLS_USE_TINYCRYPT is defined.
44 */
45
46#if defined(MBEDTLS_USE_TINYCRYPT)
Manuel Pégourié-Gonnard1c1cc0d2019-09-19 10:45:14 +020047/* Dummy definition to keep check-names.sh happy - don't uncomment */
48//#define MBEDTLS_PK_INFO_ECKEY
49
Manuel Pégourié-Gonnard342cecf2019-09-19 10:45:14 +020050#define MBEDTLS_PK_INFO_ECKEY_TYPE MBEDTLS_PK_ECKEY
51#define MBEDTLS_PK_INFO_ECKEY_NAME "EC"
52#define MBEDTLS_PK_INFO_ECKEY_GET_BITLEN uecc_eckey_get_bitlen
53#define MBEDTLS_PK_INFO_ECKEY_CAN_DO uecc_eckey_can_do
54#define MBEDTLS_PK_INFO_ECKEY_VERIFY_FUNC uecc_eckey_verify_wrap
55#define MBEDTLS_PK_INFO_ECKEY_SIGN_FUNC uecc_eckey_sign_wrap
56#define MBEDTLS_PK_INFO_ECKEY_DECRYPT_FUNC NULL
57#define MBEDTLS_PK_INFO_ECKEY_ENCRYPT_FUNC NULL
58#define MBEDTLS_PK_INFO_ECKEY_CHECK_PAIR_FUNC uecc_eckey_check_pair
59#define MBEDTLS_PK_INFO_ECKEY_CTX_ALLOC_FUNC uecc_eckey_alloc_wrap
60#define MBEDTLS_PK_INFO_ECKEY_CTX_FREE_FUNC uecc_eckey_free_wrap
61#define MBEDTLS_PK_INFO_ECKEY_DEBUG_FUNC NULL
62#endif /* MBEDTLS_USE_TINYCRYPT */
63
64/*
65 * Helper macros to extract fields from PK types
66 */
67#define MBEDTLS_PK_INFO_TYPE_T( PK ) PK ## _TYPE
68#define MBEDTLS_PK_INFO_NAME_T( PK ) PK ## _NAME
69#define MBEDTLS_PK_INFO_GET_BITLEN_T( PK ) PK ## _GET_BITLEN
70#define MBEDTLS_PK_INFO_CAN_DO_T( PK ) PK ## _CAN_DO
71#define MBEDTLS_PK_INFO_VERIFY_FUNC_T( PK ) PK ## _VERIFY_FUNC
72#define MBEDTLS_PK_INFO_SIGN_FUNC_T( PK ) PK ## _SIGN_FUNC
73#define MBEDTLS_PK_INFO_DECRYPT_FUNC_T( PK ) PK ## _DECRYPT_FUNC
74#define MBEDTLS_PK_INFO_ENCRYPT_FUNC_T( PK ) PK ## _ENCRYPT_FUNC
75#define MBEDTLS_PK_INFO_CHECK_PAIR_FUNC_T( PK ) PK ## _CHECK_PAIR_FUNC
76#define MBEDTLS_PK_INFO_CTX_ALLOC_FUNC_T( PK ) PK ## _CTX_ALLOC_FUNC
77#define MBEDTLS_PK_INFO_CTX_FREE_FUNC_T( PK ) PK ## _CTX_FREE_FUNC
78#define MBEDTLS_PK_INFO_DEBUG_FUNC_T( PK ) PK ## _DEBUG_FUNC
79
80/* Wrappers around MBEDTLS_PK_INFO_{FIELD}_T() which makes sure that
81 * the argument is macro-expanded before concatenated with the
82 * field name. This allows to call these macros as
83 * MBEDTLS_PK_INFO_{FIELD}( MBEDTLS_PK_SINGLE_TYPE ).
84 * where MBEDTLS_PK_SINGLE_TYPE expands to MBEDTLS_PK_INFO_{TYPE}. */
85#define MBEDTLS_PK_INFO_TYPE( PK ) MBEDTLS_PK_INFO_TYPE_T( PK )
86#define MBEDTLS_PK_INFO_NAME( PK ) MBEDTLS_PK_INFO_NAME_T( PK )
87#define MBEDTLS_PK_INFO_GET_BITLEN( PK ) MBEDTLS_PK_INFO_GET_BITLEN_T( PK )
88#define MBEDTLS_PK_INFO_CAN_DO( PK ) MBEDTLS_PK_INFO_CAN_DO_T( PK )
89#define MBEDTLS_PK_INFO_VERIFY_FUNC( PK ) MBEDTLS_PK_INFO_VERIFY_FUNC_T( PK )
90#define MBEDTLS_PK_INFO_SIGN_FUNC( PK ) MBEDTLS_PK_INFO_SIGN_FUNC_T( PK )
91#define MBEDTLS_PK_INFO_DECRYPT_FUNC( PK ) MBEDTLS_PK_INFO_DECRYPT_FUNC_T( PK )
92#define MBEDTLS_PK_INFO_ENCRYPT_FUNC( PK ) MBEDTLS_PK_INFO_ENCRYPT_FUNC_T( PK )
93#define MBEDTLS_PK_INFO_CHECK_PAIR_FUNC( PK ) MBEDTLS_PK_INFO_CHECK_PAIR_FUNC_T( PK )
94#define MBEDTLS_PK_INFO_CTX_ALLOC_FUNC( PK ) MBEDTLS_PK_INFO_CTX_ALLOC_FUNC_T( PK )
95#define MBEDTLS_PK_INFO_CTX_FREE_FUNC( PK ) MBEDTLS_PK_INFO_CTX_FREE_FUNC_T( PK )
96#define MBEDTLS_PK_INFO_DEBUG_FUNC( PK ) MBEDTLS_PK_INFO_DEBUG_FUNC_T( PK )
97
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020098struct mbedtls_pk_info_t
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +020099{
100 /** Public key type */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200101 mbedtls_pk_type_t type;
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200102
103 /** Type name */
104 const char *name;
105
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200106 /** Get key size in bits (must be valid)*/
Manuel Pégourié-Gonnard39a48f42015-06-18 16:06:55 +0200107 size_t (*get_bitlen)( const void * );
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200108
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200109 /** Tell if the context implements this type (e.g. ECKEY can do ECDSA)
110 * (must be valid) */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200111 int (*can_do)( mbedtls_pk_type_t type );
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200112
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200113 /** Verify signature (may be NULL) */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200114 int (*verify_func)( void *ctx, mbedtls_md_type_t md_alg,
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200115 const unsigned char *hash, size_t hash_len,
116 const unsigned char *sig, size_t sig_len );
117
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200118 /** Make signature (may be NULL)*/
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200119 int (*sign_func)( void *ctx, mbedtls_md_type_t md_alg,
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200120 const unsigned char *hash, size_t hash_len,
121 unsigned char *sig, size_t *sig_len,
122 int (*f_rng)(void *, unsigned char *, size_t),
123 void *p_rng );
124
Manuel Pégourié-Gonnardaaa98142017-08-18 17:30:37 +0200125#if defined(MBEDTLS_ECDSA_C) && defined(MBEDTLS_ECP_RESTARTABLE)
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200126 /** Verify signature (restartable) (may be NULL) */
Manuel Pégourié-Gonnard1f596062017-05-09 10:42:40 +0200127 int (*verify_rs_func)( void *ctx, mbedtls_md_type_t md_alg,
128 const unsigned char *hash, size_t hash_len,
129 const unsigned char *sig, size_t sig_len,
130 void *rs_ctx );
131
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200132 /** Make signature (restartable) (may be NULL) */
Manuel Pégourié-Gonnard1f596062017-05-09 10:42:40 +0200133 int (*sign_rs_func)( void *ctx, mbedtls_md_type_t md_alg,
134 const unsigned char *hash, size_t hash_len,
135 unsigned char *sig, size_t *sig_len,
136 int (*f_rng)(void *, unsigned char *, size_t),
137 void *p_rng, void *rs_ctx );
Manuel Pégourié-Gonnardaaa98142017-08-18 17:30:37 +0200138#endif /* MBEDTLS_ECDSA_C && MBEDTLS_ECP_RESTARTABLE */
Manuel Pégourié-Gonnard1f596062017-05-09 10:42:40 +0200139
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200140 /** Decrypt message (may be NULL) */
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200141 int (*decrypt_func)( void *ctx, const unsigned char *input, size_t ilen,
142 unsigned char *output, size_t *olen, size_t osize,
143 int (*f_rng)(void *, unsigned char *, size_t),
144 void *p_rng );
145
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200146 /** Encrypt message (may be NULL ) */
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200147 int (*encrypt_func)( void *ctx, const unsigned char *input, size_t ilen,
148 unsigned char *output, size_t *olen, size_t osize,
149 int (*f_rng)(void *, unsigned char *, size_t),
150 void *p_rng );
151
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200152 /** Check public-private key pair (may be NULL) */
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200153 int (*check_pair_func)( const void *pub, const void *prv );
154
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200155 /** Allocate a new context (must be valid) */
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200156 void * (*ctx_alloc_func)( void );
157
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200158 /** Free the given context (must be valid) */
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200159 void (*ctx_free_func)( void *ctx );
160
Manuel Pégourié-Gonnardaaa98142017-08-18 17:30:37 +0200161#if defined(MBEDTLS_ECDSA_C) && defined(MBEDTLS_ECP_RESTARTABLE)
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200162 /** Allocate the restart context (may be NULL)*/
Manuel Pégourié-Gonnard0bbc66c2017-08-18 16:22:06 +0200163 void * (*rs_alloc_func)( void );
164
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200165 /** Free the restart context (may be NULL) */
Manuel Pégourié-Gonnard0bbc66c2017-08-18 16:22:06 +0200166 void (*rs_free_func)( void *rs_ctx );
Manuel Pégourié-Gonnardaaa98142017-08-18 17:30:37 +0200167#endif /* MBEDTLS_ECDSA_C && MBEDTLS_ECP_RESTARTABLE */
Manuel Pégourié-Gonnard0bbc66c2017-08-18 16:22:06 +0200168
Manuel Pégourié-Gonnard57d96cd2019-09-19 10:45:14 +0200169 /** Interface with the debug module (may be NULL) */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200170 void (*debug_func)( const void *ctx, mbedtls_pk_debug_item *items );
Manuel Pégourié-Gonnardc89d6cf2015-03-31 14:43:19 +0200171
172};
Manuel Pégourié-Gonnard342cecf2019-09-19 10:45:14 +0200173
174/**
175 * \brief This macro builds an instance of ::mbedtls_pk_info_t
176 * from an \c MBEDTLS_PK_INFO_{TYPE} identifier.
177 */
178#if defined(MBEDTLS_ECDSA_C) && defined(MBEDTLS_ECP_RESTARTABLE)
179#define MBEDTLS_PK_INFO( PK ) \
180{ \
181 MBEDTLS_PK_INFO_TYPE( PK ), \
182 MBEDTLS_PK_INFO_NAME( PK ), \
183 MBEDTLS_PK_INFO_GET_BITLEN( PK ), \
184 MBEDTLS_PK_INFO_CAN_DO( PK ), \
185 MBEDTLS_PK_INFO_VERIFY_FUNC( PK ), \
186 MBEDTLS_PK_INFO_SIGN_FUNC( PK ), \
187 NULL, \
188 NULL, \
189 MBEDTLS_PK_INFO_DECRYPT_FUNC( PK ), \
190 MBEDTLS_PK_INFO_ENCRYPT_FUNC( PK ), \
191 MBEDTLS_PK_INFO_CHECK_PAIR_FUNC( PK ), \
192 MBEDTLS_PK_INFO_CTX_ALLOC_FUNC( PK ), \
193 MBEDTLS_PK_INFO_CTX_FREE_FUNC( PK ), \
194 NULL, \
195 NULL, \
196 MBEDTLS_PK_INFO_DEBUG_FUNC( PK ), \
197}
198#else /* MBEDTLS_ECDSA_C && MBEDTLS_ECP_RESTARTABLE */
199#define MBEDTLS_PK_INFO( PK ) \
200{ \
201 MBEDTLS_PK_INFO_TYPE( PK ), \
202 MBEDTLS_PK_INFO_NAME( PK ), \
203 MBEDTLS_PK_INFO_GET_BITLEN( PK ), \
204 MBEDTLS_PK_INFO_CAN_DO( PK ), \
205 MBEDTLS_PK_INFO_VERIFY_FUNC( PK ), \
206 MBEDTLS_PK_INFO_SIGN_FUNC( PK ), \
207 MBEDTLS_PK_INFO_DECRYPT_FUNC( PK ), \
208 MBEDTLS_PK_INFO_ENCRYPT_FUNC( PK ), \
209 MBEDTLS_PK_INFO_CHECK_PAIR_FUNC( PK ), \
210 MBEDTLS_PK_INFO_CTX_ALLOC_FUNC( PK ), \
211 MBEDTLS_PK_INFO_CTX_FREE_FUNC( PK ), \
212 MBEDTLS_PK_INFO_DEBUG_FUNC( PK ), \
213}
214#endif /* MBEDTLS_ECDSA_C && MBEDTLS_ECP_RESTARTABLE */
215
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200216#if defined(MBEDTLS_PK_RSA_ALT_SUPPORT)
Manuel Pégourié-Gonnard12c1ff02013-08-21 12:28:31 +0200217/* Container for RSA-alt */
218typedef struct
219{
220 void *key;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200221 mbedtls_pk_rsa_alt_decrypt_func decrypt_func;
222 mbedtls_pk_rsa_alt_sign_func sign_func;
223 mbedtls_pk_rsa_alt_key_len_func key_len_func;
224} mbedtls_rsa_alt_context;
Manuel Pégourié-Gonnard348bcb32015-03-31 14:01:33 +0200225#endif
Manuel Pégourié-Gonnard12c1ff02013-08-21 12:28:31 +0200226
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200227#if defined(MBEDTLS_RSA_C)
228extern const mbedtls_pk_info_t mbedtls_rsa_info;
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +0200229#endif
230
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200231#if defined(MBEDTLS_ECP_C)
232extern const mbedtls_pk_info_t mbedtls_eckey_info;
233extern const mbedtls_pk_info_t mbedtls_eckeydh_info;
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +0200234#endif
235
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200236#if defined(MBEDTLS_ECDSA_C)
237extern const mbedtls_pk_info_t mbedtls_ecdsa_info;
Manuel Pégourié-Gonnardd73b3c12013-08-12 17:06:05 +0200238#endif
239
Jarno Lamsa42b83db2019-04-16 16:48:22 +0300240#if defined(MBEDTLS_USE_TINYCRYPT)
Hanno Beckeradf11e12019-08-21 13:03:44 +0100241extern const mbedtls_pk_info_t mbedtls_uecc_eckey_info;
Jarno Lamsa42b83db2019-04-16 16:48:22 +0300242#endif
243
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200244#if defined(MBEDTLS_PK_RSA_ALT_SUPPORT)
245extern const mbedtls_pk_info_t mbedtls_rsa_alt_info;
Manuel Pégourié-Gonnard348bcb32015-03-31 14:01:33 +0200246#endif
Manuel Pégourié-Gonnard12c1ff02013-08-21 12:28:31 +0200247
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200248#endif /* MBEDTLS_PK_WRAP_H */