]> git.ipfire.org Git - thirdparty/openssl.git/blame - apps/dsaparam.c
Add PKCS#12 documentation and new option in x509 to add certificate extensions.
[thirdparty/openssl.git] / apps / dsaparam.c
CommitLineData
d02b48c6 1/* apps/dsaparam.c */
58964a49 2/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
d02b48c6
RE
3 * All rights reserved.
4 *
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
8 *
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15 *
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
22 *
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
25 * are met:
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
37 * 4. If you include any Windows specific code (or a derivative thereof) from
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40 *
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51 * SUCH DAMAGE.
52 *
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
57 */
58
59#include <stdio.h>
60#include <stdlib.h>
61#include <time.h>
62#include <string.h>
63#include "apps.h"
ec577822
BM
64#include <openssl/bio.h>
65#include <openssl/err.h>
66#include <openssl/bn.h>
67#include <openssl/rand.h>
68#include <openssl/dsa.h>
69#include <openssl/x509.h>
70#include <openssl/pem.h>
d02b48c6
RE
71
72#undef PROG
73#define PROG dsaparam_main
74
75/* -inform arg - input format - default PEM (one of DER, TXT or PEM)
76 * -outform arg - output format - default PEM
77 * -in arg - input file - default stdin
78 * -out arg - output file - default stdout
79 * -noout
80 * -text
81 * -C
82 * -noout
dfeab068 83 * -genkey
d02b48c6
RE
84 */
85
58964a49 86static void MS_CALLBACK dsa_cb(int p, int n, char *arg);
6b691a5c 87int MAIN(int argc, char **argv)
d02b48c6
RE
88 {
89 DSA *dsa=NULL;
90 int i,badops=0,text=0;
91 BIO *in=NULL,*out=NULL;
92 int informat,outformat,noout=0,C=0,ret=1;
93 char *infile,*outfile,*prog,*inrand=NULL;
dfeab068 94 int numbits= -1,num,genkey=0;
d02b48c6
RE
95 char buffer[200],*randfile=NULL;
96
97 apps_startup();
98
99 if (bio_err == NULL)
100 if ((bio_err=BIO_new(BIO_s_file())) != NULL)
58964a49 101 BIO_set_fp(bio_err,stderr,BIO_NOCLOSE|BIO_FP_TEXT);
d02b48c6
RE
102
103 infile=NULL;
104 outfile=NULL;
105 informat=FORMAT_PEM;
106 outformat=FORMAT_PEM;
107
108 prog=argv[0];
109 argc--;
110 argv++;
111 while (argc >= 1)
112 {
113 if (strcmp(*argv,"-inform") == 0)
114 {
115 if (--argc < 1) goto bad;
116 informat=str2fmt(*(++argv));
117 }
118 else if (strcmp(*argv,"-outform") == 0)
119 {
120 if (--argc < 1) goto bad;
121 outformat=str2fmt(*(++argv));
122 }
123 else if (strcmp(*argv,"-in") == 0)
124 {
125 if (--argc < 1) goto bad;
126 infile= *(++argv);
127 }
128 else if (strcmp(*argv,"-out") == 0)
129 {
130 if (--argc < 1) goto bad;
131 outfile= *(++argv);
132 }
133 else if (strcmp(*argv,"-text") == 0)
134 text=1;
135 else if (strcmp(*argv,"-C") == 0)
136 C=1;
dfeab068
RE
137 else if (strcmp(*argv,"-genkey") == 0)
138 genkey=1;
d02b48c6
RE
139 else if (strcmp(*argv,"-rand") == 0)
140 {
141 if (--argc < 1) goto bad;
142 inrand= *(++argv);
143 }
144 else if (strcmp(*argv,"-noout") == 0)
145 noout=1;
146 else if (sscanf(*argv,"%d",&num) == 1)
147 {
148 /* generate a key */
149 numbits=num;
150 }
151 else
152 {
153 BIO_printf(bio_err,"unknown option %s\n",*argv);
154 badops=1;
155 break;
156 }
157 argc--;
158 argv++;
159 }
160
161 if (badops)
162 {
163bad:
164 BIO_printf(bio_err,"%s [options] [bits] <infile >outfile\n",prog);
165 BIO_printf(bio_err,"where options are\n");
166 BIO_printf(bio_err," -inform arg input format - one of DER TXT PEM\n");
167 BIO_printf(bio_err," -outform arg output format - one of DER TXT PEM\n");
9fe84296 168 BIO_printf(bio_err," -in arg input file\n");
d02b48c6
RE
169 BIO_printf(bio_err," -out arg output file\n");
170 BIO_printf(bio_err," -text check the DSA parameters\n");
171 BIO_printf(bio_err," -C Output C code\n");
172 BIO_printf(bio_err," -noout no output\n");
173 BIO_printf(bio_err," -rand files to use for random number input\n");
174 BIO_printf(bio_err," number number of bits to use for generating private key\n");
175 goto end;
176 }
177
178 ERR_load_crypto_strings();
179
180 in=BIO_new(BIO_s_file());
181 out=BIO_new(BIO_s_file());
182 if ((in == NULL) || (out == NULL))
183 {
184 ERR_print_errors(bio_err);
185 goto end;
186 }
187
188 if (infile == NULL)
189 BIO_set_fp(in,stdin,BIO_NOCLOSE);
190 else
191 {
192 if (BIO_read_filename(in,infile) <= 0)
193 {
194 perror(infile);
195 goto end;
196 }
197 }
198 if (outfile == NULL)
199 BIO_set_fp(out,stdout,BIO_NOCLOSE);
200 else
201 {
202 if (BIO_write_filename(out,outfile) <= 0)
203 {
204 perror(outfile);
205 goto end;
206 }
207 }
208
209 if (numbits > 0)
210 {
211 randfile=RAND_file_name(buffer,200);
212 RAND_load_file(randfile,1024L*1024L);
213
214 BIO_printf(bio_err,"Generating DSA parameters, %d bit long prime\n",num);
215 BIO_printf(bio_err,"This could take some time\n");
58964a49
RE
216 dsa=DSA_generate_parameters(num,NULL,0,NULL,NULL,
217 dsa_cb,(char *)bio_err);
d02b48c6
RE
218 }
219 else if (informat == FORMAT_ASN1)
220 dsa=d2i_DSAparams_bio(in,NULL);
221 else if (informat == FORMAT_PEM)
222 dsa=PEM_read_bio_DSAparams(in,NULL,NULL);
223 else
224 {
225 BIO_printf(bio_err,"bad input format specified\n");
226 goto end;
227 }
228 if (dsa == NULL)
229 {
230 BIO_printf(bio_err,"unable to load DSA parameters\n");
231 ERR_print_errors(bio_err);
232 goto end;
233 }
234
235 if (text)
236 {
237 DSAparams_print(out,dsa);
238 }
239
240 if (C)
241 {
242 unsigned char *data;
243 int l,len,bits_p,bits_q,bits_g;
244
245 len=BN_num_bytes(dsa->p);
246 bits_p=BN_num_bits(dsa->p);
247 bits_q=BN_num_bits(dsa->q);
248 bits_g=BN_num_bits(dsa->g);
249 data=(unsigned char *)Malloc(len+20);
250 if (data == NULL)
251 {
252 perror("Malloc");
253 goto end;
254 }
255 l=BN_bn2bin(dsa->p,data);
256 printf("static unsigned char dsa%d_p[]={",bits_p);
257 for (i=0; i<l; i++)
258 {
259 if ((i%12) == 0) printf("\n\t");
260 printf("0x%02X,",data[i]);
261 }
262 printf("\n\t};\n");
263
264 l=BN_bn2bin(dsa->q,data);
265 printf("static unsigned char dsa%d_q[]={",bits_p);
266 for (i=0; i<l; i++)
267 {
268 if ((i%12) == 0) printf("\n\t");
269 printf("0x%02X,",data[i]);
270 }
271 printf("\n\t};\n");
272
273 l=BN_bn2bin(dsa->g,data);
274 printf("static unsigned char dsa%d_g[]={",bits_p);
275 for (i=0; i<l; i++)
276 {
277 if ((i%12) == 0) printf("\n\t");
278 printf("0x%02X,",data[i]);
279 }
280 printf("\n\t};\n\n");
281
282 printf("DSA *get_dsa%d()\n\t{\n",bits_p);
283 printf("\tDSA *dsa;\n\n");
284 printf("\tif ((dsa=DSA_new()) == NULL) return(NULL);\n");
285 printf("\tdsa->p=BN_bin2bn(dsa%d_p,sizeof(dsa%d_p),NULL);\n",
286 bits_p,bits_p);
287 printf("\tdsa->q=BN_bin2bn(dsa%d_q,sizeof(dsa%d_q),NULL);\n",
288 bits_p,bits_p);
289 printf("\tdsa->g=BN_bin2bn(dsa%d_g,sizeof(dsa%d_g),NULL);\n",
290 bits_p,bits_p);
291 printf("\tif ((dsa->p == NULL) || (dsa->q == NULL) || (dsa->g == NULL))\n");
292 printf("\t\treturn(NULL);\n");
293 printf("\treturn(dsa);\n\t}\n");
294 }
295
296
297 if (!noout)
298 {
299 if (outformat == FORMAT_ASN1)
300 i=i2d_DSAparams_bio(out,dsa);
301 else if (outformat == FORMAT_PEM)
302 i=PEM_write_bio_DSAparams(out,dsa);
303 else {
304 BIO_printf(bio_err,"bad output format specified for outfile\n");
305 goto end;
306 }
307 if (!i)
308 {
309 BIO_printf(bio_err,"unable to write DSA paramaters\n");
310 ERR_print_errors(bio_err);
311 goto end;
312 }
313 }
dfeab068
RE
314 if (genkey)
315 {
316 DSA *dsakey;
317
318 if ((dsakey=DSAparams_dup(dsa)) == NULL) goto end;
319 if (!DSA_generate_key(dsakey)) goto end;
320 if (outformat == FORMAT_ASN1)
321 i=i2d_DSAPrivateKey_bio(out,dsakey);
322 else if (outformat == FORMAT_PEM)
323 i=PEM_write_bio_DSAPrivateKey(out,dsakey,NULL,NULL,0,NULL);
324 else {
325 BIO_printf(bio_err,"bad output format specified for outfile\n");
326 goto end;
327 }
328 DSA_free(dsakey);
329 }
d02b48c6
RE
330 ret=0;
331end:
332 if (in != NULL) BIO_free(in);
333 if (out != NULL) BIO_free(out);
334 if (dsa != NULL) DSA_free(dsa);
335 EXIT(ret);
336 }
337
6b691a5c 338static void MS_CALLBACK dsa_cb(int p, int n, char *arg)
d02b48c6
RE
339 {
340 char c='*';
341
342 if (p == 0) c='.';
343 if (p == 1) c='+';
344 if (p == 2) c='*';
345 if (p == 3) c='\n';
58964a49
RE
346 BIO_write((BIO *)arg,&c,1);
347 BIO_flush((BIO *)arg);
d02b48c6
RE
348#ifdef LINT
349 p=n;
350#endif
351 }