xref: /aosp_15_r20/external/boringssl/src/crypto/evp/sign.c (revision 8fb009dc861624b67b6cdb62ea21f0f22d0c584b)
1*8fb009dcSAndroid Build Coastguard Worker /* Copyright (C) 1995-1998 Eric Young ([email protected])
2*8fb009dcSAndroid Build Coastguard Worker  * All rights reserved.
3*8fb009dcSAndroid Build Coastguard Worker  *
4*8fb009dcSAndroid Build Coastguard Worker  * This package is an SSL implementation written
5*8fb009dcSAndroid Build Coastguard Worker  * by Eric Young ([email protected]).
6*8fb009dcSAndroid Build Coastguard Worker  * The implementation was written so as to conform with Netscapes SSL.
7*8fb009dcSAndroid Build Coastguard Worker  *
8*8fb009dcSAndroid Build Coastguard Worker  * This library is free for commercial and non-commercial use as long as
9*8fb009dcSAndroid Build Coastguard Worker  * the following conditions are aheared to.  The following conditions
10*8fb009dcSAndroid Build Coastguard Worker  * apply to all code found in this distribution, be it the RC4, RSA,
11*8fb009dcSAndroid Build Coastguard Worker  * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
12*8fb009dcSAndroid Build Coastguard Worker  * included with this distribution is covered by the same copyright terms
13*8fb009dcSAndroid Build Coastguard Worker  * except that the holder is Tim Hudson ([email protected]).
14*8fb009dcSAndroid Build Coastguard Worker  *
15*8fb009dcSAndroid Build Coastguard Worker  * Copyright remains Eric Young's, and as such any Copyright notices in
16*8fb009dcSAndroid Build Coastguard Worker  * the code are not to be removed.
17*8fb009dcSAndroid Build Coastguard Worker  * If this package is used in a product, Eric Young should be given attribution
18*8fb009dcSAndroid Build Coastguard Worker  * as the author of the parts of the library used.
19*8fb009dcSAndroid Build Coastguard Worker  * This can be in the form of a textual message at program startup or
20*8fb009dcSAndroid Build Coastguard Worker  * in documentation (online or textual) provided with the package.
21*8fb009dcSAndroid Build Coastguard Worker  *
22*8fb009dcSAndroid Build Coastguard Worker  * Redistribution and use in source and binary forms, with or without
23*8fb009dcSAndroid Build Coastguard Worker  * modification, are permitted provided that the following conditions
24*8fb009dcSAndroid Build Coastguard Worker  * are met:
25*8fb009dcSAndroid Build Coastguard Worker  * 1. Redistributions of source code must retain the copyright
26*8fb009dcSAndroid Build Coastguard Worker  *    notice, this list of conditions and the following disclaimer.
27*8fb009dcSAndroid Build Coastguard Worker  * 2. Redistributions in binary form must reproduce the above copyright
28*8fb009dcSAndroid Build Coastguard Worker  *    notice, this list of conditions and the following disclaimer in the
29*8fb009dcSAndroid Build Coastguard Worker  *    documentation and/or other materials provided with the distribution.
30*8fb009dcSAndroid Build Coastguard Worker  * 3. All advertising materials mentioning features or use of this software
31*8fb009dcSAndroid Build Coastguard Worker  *    must display the following acknowledgement:
32*8fb009dcSAndroid Build Coastguard Worker  *    "This product includes cryptographic software written by
33*8fb009dcSAndroid Build Coastguard Worker  *     Eric Young ([email protected])"
34*8fb009dcSAndroid Build Coastguard Worker  *    The word 'cryptographic' can be left out if the rouines from the library
35*8fb009dcSAndroid Build Coastguard Worker  *    being used are not cryptographic related :-).
36*8fb009dcSAndroid Build Coastguard Worker  * 4. If you include any Windows specific code (or a derivative thereof) from
37*8fb009dcSAndroid Build Coastguard Worker  *    the apps directory (application code) you must include an acknowledgement:
38*8fb009dcSAndroid Build Coastguard Worker  *    "This product includes software written by Tim Hudson ([email protected])"
39*8fb009dcSAndroid Build Coastguard Worker  *
40*8fb009dcSAndroid Build Coastguard Worker  * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
41*8fb009dcSAndroid Build Coastguard Worker  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42*8fb009dcSAndroid Build Coastguard Worker  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
43*8fb009dcSAndroid Build Coastguard Worker  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
44*8fb009dcSAndroid Build Coastguard Worker  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
45*8fb009dcSAndroid Build Coastguard Worker  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
46*8fb009dcSAndroid Build Coastguard Worker  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47*8fb009dcSAndroid Build Coastguard Worker  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
48*8fb009dcSAndroid Build Coastguard Worker  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
49*8fb009dcSAndroid Build Coastguard Worker  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
50*8fb009dcSAndroid Build Coastguard Worker  * SUCH DAMAGE.
51*8fb009dcSAndroid Build Coastguard Worker  *
52*8fb009dcSAndroid Build Coastguard Worker  * The licence and distribution terms for any publically available version or
53*8fb009dcSAndroid Build Coastguard Worker  * derivative of this code cannot be changed.  i.e. this code cannot simply be
54*8fb009dcSAndroid Build Coastguard Worker  * copied and put under another distribution licence
55*8fb009dcSAndroid Build Coastguard Worker  * [including the GNU Public Licence.] */
56*8fb009dcSAndroid Build Coastguard Worker 
57*8fb009dcSAndroid Build Coastguard Worker #include <openssl/evp.h>
58*8fb009dcSAndroid Build Coastguard Worker 
59*8fb009dcSAndroid Build Coastguard Worker #include <limits.h>
60*8fb009dcSAndroid Build Coastguard Worker 
61*8fb009dcSAndroid Build Coastguard Worker #include <openssl/digest.h>
62*8fb009dcSAndroid Build Coastguard Worker #include <openssl/err.h>
63*8fb009dcSAndroid Build Coastguard Worker 
64*8fb009dcSAndroid Build Coastguard Worker #include "internal.h"
65*8fb009dcSAndroid Build Coastguard Worker 
66*8fb009dcSAndroid Build Coastguard Worker 
EVP_SignInit_ex(EVP_MD_CTX * ctx,const EVP_MD * type,ENGINE * impl)67*8fb009dcSAndroid Build Coastguard Worker int EVP_SignInit_ex(EVP_MD_CTX *ctx, const EVP_MD *type, ENGINE *impl) {
68*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestInit_ex(ctx, type, impl);
69*8fb009dcSAndroid Build Coastguard Worker }
70*8fb009dcSAndroid Build Coastguard Worker 
EVP_SignInit(EVP_MD_CTX * ctx,const EVP_MD * type)71*8fb009dcSAndroid Build Coastguard Worker int EVP_SignInit(EVP_MD_CTX *ctx, const EVP_MD *type) {
72*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestInit(ctx, type);
73*8fb009dcSAndroid Build Coastguard Worker }
74*8fb009dcSAndroid Build Coastguard Worker 
EVP_SignUpdate(EVP_MD_CTX * ctx,const void * data,size_t len)75*8fb009dcSAndroid Build Coastguard Worker int EVP_SignUpdate(EVP_MD_CTX *ctx, const void *data, size_t len) {
76*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestUpdate(ctx, data, len);
77*8fb009dcSAndroid Build Coastguard Worker }
78*8fb009dcSAndroid Build Coastguard Worker 
EVP_SignFinal(const EVP_MD_CTX * ctx,uint8_t * sig,unsigned * out_sig_len,EVP_PKEY * pkey)79*8fb009dcSAndroid Build Coastguard Worker int EVP_SignFinal(const EVP_MD_CTX *ctx, uint8_t *sig, unsigned *out_sig_len,
80*8fb009dcSAndroid Build Coastguard Worker                   EVP_PKEY *pkey) {
81*8fb009dcSAndroid Build Coastguard Worker   uint8_t m[EVP_MAX_MD_SIZE];
82*8fb009dcSAndroid Build Coastguard Worker   unsigned m_len;
83*8fb009dcSAndroid Build Coastguard Worker   int ret = 0;
84*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX tmp_ctx;
85*8fb009dcSAndroid Build Coastguard Worker   EVP_PKEY_CTX *pkctx = NULL;
86*8fb009dcSAndroid Build Coastguard Worker   size_t sig_len = EVP_PKEY_size(pkey);
87*8fb009dcSAndroid Build Coastguard Worker 
88*8fb009dcSAndroid Build Coastguard Worker   // Ensure the final result will fit in |unsigned|.
89*8fb009dcSAndroid Build Coastguard Worker   if (sig_len > UINT_MAX) {
90*8fb009dcSAndroid Build Coastguard Worker     sig_len = UINT_MAX;
91*8fb009dcSAndroid Build Coastguard Worker   }
92*8fb009dcSAndroid Build Coastguard Worker 
93*8fb009dcSAndroid Build Coastguard Worker   *out_sig_len = 0;
94*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX_init(&tmp_ctx);
95*8fb009dcSAndroid Build Coastguard Worker   if (!EVP_MD_CTX_copy_ex(&tmp_ctx, ctx) ||
96*8fb009dcSAndroid Build Coastguard Worker       !EVP_DigestFinal_ex(&tmp_ctx, m, &m_len)) {
97*8fb009dcSAndroid Build Coastguard Worker     goto out;
98*8fb009dcSAndroid Build Coastguard Worker   }
99*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX_cleanup(&tmp_ctx);
100*8fb009dcSAndroid Build Coastguard Worker 
101*8fb009dcSAndroid Build Coastguard Worker   pkctx = EVP_PKEY_CTX_new(pkey, NULL);
102*8fb009dcSAndroid Build Coastguard Worker   if (!pkctx ||  //
103*8fb009dcSAndroid Build Coastguard Worker       !EVP_PKEY_sign_init(pkctx) ||
104*8fb009dcSAndroid Build Coastguard Worker       !EVP_PKEY_CTX_set_signature_md(pkctx, ctx->digest) ||
105*8fb009dcSAndroid Build Coastguard Worker       !EVP_PKEY_sign(pkctx, sig, &sig_len, m, m_len)) {
106*8fb009dcSAndroid Build Coastguard Worker     goto out;
107*8fb009dcSAndroid Build Coastguard Worker   }
108*8fb009dcSAndroid Build Coastguard Worker   *out_sig_len = (unsigned)sig_len;
109*8fb009dcSAndroid Build Coastguard Worker   ret = 1;
110*8fb009dcSAndroid Build Coastguard Worker 
111*8fb009dcSAndroid Build Coastguard Worker out:
112*8fb009dcSAndroid Build Coastguard Worker   EVP_PKEY_CTX_free(pkctx);
113*8fb009dcSAndroid Build Coastguard Worker   return ret;
114*8fb009dcSAndroid Build Coastguard Worker }
115*8fb009dcSAndroid Build Coastguard Worker 
EVP_VerifyInit_ex(EVP_MD_CTX * ctx,const EVP_MD * type,ENGINE * impl)116*8fb009dcSAndroid Build Coastguard Worker int EVP_VerifyInit_ex(EVP_MD_CTX *ctx, const EVP_MD *type, ENGINE *impl) {
117*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestInit_ex(ctx, type, impl);
118*8fb009dcSAndroid Build Coastguard Worker }
119*8fb009dcSAndroid Build Coastguard Worker 
EVP_VerifyInit(EVP_MD_CTX * ctx,const EVP_MD * type)120*8fb009dcSAndroid Build Coastguard Worker int EVP_VerifyInit(EVP_MD_CTX *ctx, const EVP_MD *type) {
121*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestInit(ctx, type);
122*8fb009dcSAndroid Build Coastguard Worker }
123*8fb009dcSAndroid Build Coastguard Worker 
EVP_VerifyUpdate(EVP_MD_CTX * ctx,const void * data,size_t len)124*8fb009dcSAndroid Build Coastguard Worker int EVP_VerifyUpdate(EVP_MD_CTX *ctx, const void *data, size_t len) {
125*8fb009dcSAndroid Build Coastguard Worker   return EVP_DigestUpdate(ctx, data, len);
126*8fb009dcSAndroid Build Coastguard Worker }
127*8fb009dcSAndroid Build Coastguard Worker 
EVP_VerifyFinal(EVP_MD_CTX * ctx,const uint8_t * sig,size_t sig_len,EVP_PKEY * pkey)128*8fb009dcSAndroid Build Coastguard Worker int EVP_VerifyFinal(EVP_MD_CTX *ctx, const uint8_t *sig, size_t sig_len,
129*8fb009dcSAndroid Build Coastguard Worker                     EVP_PKEY *pkey) {
130*8fb009dcSAndroid Build Coastguard Worker   uint8_t m[EVP_MAX_MD_SIZE];
131*8fb009dcSAndroid Build Coastguard Worker   unsigned m_len;
132*8fb009dcSAndroid Build Coastguard Worker   int ret = 0;
133*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX tmp_ctx;
134*8fb009dcSAndroid Build Coastguard Worker   EVP_PKEY_CTX *pkctx = NULL;
135*8fb009dcSAndroid Build Coastguard Worker 
136*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX_init(&tmp_ctx);
137*8fb009dcSAndroid Build Coastguard Worker   if (!EVP_MD_CTX_copy_ex(&tmp_ctx, ctx) ||
138*8fb009dcSAndroid Build Coastguard Worker       !EVP_DigestFinal_ex(&tmp_ctx, m, &m_len)) {
139*8fb009dcSAndroid Build Coastguard Worker     EVP_MD_CTX_cleanup(&tmp_ctx);
140*8fb009dcSAndroid Build Coastguard Worker     goto out;
141*8fb009dcSAndroid Build Coastguard Worker   }
142*8fb009dcSAndroid Build Coastguard Worker   EVP_MD_CTX_cleanup(&tmp_ctx);
143*8fb009dcSAndroid Build Coastguard Worker 
144*8fb009dcSAndroid Build Coastguard Worker   pkctx = EVP_PKEY_CTX_new(pkey, NULL);
145*8fb009dcSAndroid Build Coastguard Worker   if (!pkctx ||
146*8fb009dcSAndroid Build Coastguard Worker       !EVP_PKEY_verify_init(pkctx) ||
147*8fb009dcSAndroid Build Coastguard Worker       !EVP_PKEY_CTX_set_signature_md(pkctx, ctx->digest)) {
148*8fb009dcSAndroid Build Coastguard Worker     goto out;
149*8fb009dcSAndroid Build Coastguard Worker   }
150*8fb009dcSAndroid Build Coastguard Worker   ret = EVP_PKEY_verify(pkctx, sig, sig_len, m, m_len);
151*8fb009dcSAndroid Build Coastguard Worker 
152*8fb009dcSAndroid Build Coastguard Worker out:
153*8fb009dcSAndroid Build Coastguard Worker   EVP_PKEY_CTX_free(pkctx);
154*8fb009dcSAndroid Build Coastguard Worker   return ret;
155*8fb009dcSAndroid Build Coastguard Worker }
156*8fb009dcSAndroid Build Coastguard Worker 
157