2 * Copyright 2019-2020 The OpenSSL Project Authors. All Rights Reserved.
4 * Licensed under the Apache License 2.0 (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
10 /* We need to use some engine deprecated APIs */
11 #define OPENSSL_SUPPRESS_DEPRECATED
13 #include <openssl/crypto.h>
14 #include <openssl/evp.h>
15 #include <openssl/core_dispatch.h>
16 #include <openssl/core_names.h>
17 #include <openssl/params.h>
18 #include <openssl/err.h>
19 #include "prov/implementations.h"
20 #include "prov/provider_ctx.h"
21 #include "prov/macsignature.h"
23 static OSSL_FUNC_signature_newctx_fn mac_hmac_newctx
;
24 static OSSL_FUNC_signature_newctx_fn mac_siphash_newctx
;
25 static OSSL_FUNC_signature_newctx_fn mac_poly1305_newctx
;
26 static OSSL_FUNC_signature_newctx_fn mac_cmac_newctx
;
27 static OSSL_FUNC_signature_digest_sign_init_fn mac_digest_sign_init
;
28 static OSSL_FUNC_signature_digest_sign_update_fn mac_digest_sign_update
;
29 static OSSL_FUNC_signature_digest_sign_final_fn mac_digest_sign_final
;
30 static OSSL_FUNC_signature_freectx_fn mac_freectx
;
31 static OSSL_FUNC_signature_dupctx_fn mac_dupctx
;
32 static OSSL_FUNC_signature_set_ctx_params_fn mac_set_ctx_params
;
33 static OSSL_FUNC_signature_settable_ctx_params_fn mac_hmac_settable_ctx_params
;
34 static OSSL_FUNC_signature_settable_ctx_params_fn mac_siphash_settable_ctx_params
;
35 static OSSL_FUNC_signature_settable_ctx_params_fn mac_poly1305_settable_ctx_params
;
36 static OSSL_FUNC_signature_settable_ctx_params_fn mac_cmac_settable_ctx_params
;
45 static void *mac_newctx(void *provctx
, const char *propq
, const char *macname
)
47 PROV_MAC_CTX
*pmacctx
= OPENSSL_zalloc(sizeof(PROV_MAC_CTX
));
53 pmacctx
->libctx
= PROV_LIBRARY_CONTEXT_OF(provctx
);
54 if (propq
!= NULL
&& (pmacctx
->propq
= OPENSSL_strdup(propq
)) == NULL
) {
55 ERR_raise(ERR_LIB_PROV
, ERR_R_MALLOC_FAILURE
);
59 mac
= EVP_MAC_fetch(pmacctx
->libctx
, macname
, propq
);
63 pmacctx
->macctx
= EVP_MAC_CTX_new(mac
);
64 if (pmacctx
->macctx
== NULL
)
72 OPENSSL_free(pmacctx
);
77 #define MAC_NEWCTX(funcname, macname) \
78 static void *mac_##funcname##_newctx(void *provctx, const char *propq) \
80 return mac_newctx(provctx, propq, macname); \
83 MAC_NEWCTX(hmac
, "HMAC")
84 MAC_NEWCTX(siphash
, "SIPHASH")
85 MAC_NEWCTX(poly1305
, "POLY1305")
86 MAC_NEWCTX(cmac
, "CMAC")
88 static int mac_digest_sign_init(void *vpmacctx
, const char *mdname
, void *vkey
)
90 PROV_MAC_CTX
*pmacctx
= (PROV_MAC_CTX
*)vpmacctx
;
91 const char *ciphername
= NULL
, *engine
= NULL
;
93 if (pmacctx
== NULL
|| vkey
== NULL
|| !mac_key_up_ref(vkey
))
96 mac_key_free(pmacctx
->key
);
99 if (pmacctx
->key
->cipher
.cipher
!= NULL
)
100 ciphername
= (char *)EVP_CIPHER_name(pmacctx
->key
->cipher
.cipher
);
101 #if !defined(OPENSSL_NO_ENGINE) && !defined(FIPS_MODULE)
102 if (pmacctx
->key
->cipher
.engine
!= NULL
)
103 engine
= (char *)ENGINE_get_id(pmacctx
->key
->cipher
.engine
);
106 if (!ossl_prov_set_macctx(pmacctx
->macctx
, NULL
,
110 pmacctx
->key
->properties
,
111 pmacctx
->key
->priv_key
,
112 pmacctx
->key
->priv_key_len
))
115 if (!EVP_MAC_init(pmacctx
->macctx
))
121 int mac_digest_sign_update(void *vpmacctx
, const unsigned char *data
,
124 PROV_MAC_CTX
*pmacctx
= (PROV_MAC_CTX
*)vpmacctx
;
126 if (pmacctx
== NULL
|| pmacctx
->macctx
== NULL
)
129 return EVP_MAC_update(pmacctx
->macctx
, data
, datalen
);
132 int mac_digest_sign_final(void *vpmacctx
, unsigned char *mac
, size_t *maclen
,
135 PROV_MAC_CTX
*pmacctx
= (PROV_MAC_CTX
*)vpmacctx
;
137 if (pmacctx
== NULL
|| pmacctx
->macctx
== NULL
)
140 return EVP_MAC_final(pmacctx
->macctx
, mac
, maclen
, macsize
);
143 static void mac_freectx(void *vpmacctx
)
145 PROV_MAC_CTX
*ctx
= (PROV_MAC_CTX
*)vpmacctx
;
147 OPENSSL_free(ctx
->propq
);
148 EVP_MAC_CTX_free(ctx
->macctx
);
149 mac_key_free(ctx
->key
);
153 static void *mac_dupctx(void *vpmacctx
)
155 PROV_MAC_CTX
*srcctx
= (PROV_MAC_CTX
*)vpmacctx
;
156 PROV_MAC_CTX
*dstctx
;
158 dstctx
= OPENSSL_zalloc(sizeof(*srcctx
));
164 dstctx
->macctx
= NULL
;
166 if (srcctx
->key
!= NULL
&& !mac_key_up_ref(srcctx
->key
))
168 dstctx
->key
= srcctx
->key
;
170 if (srcctx
->macctx
!= NULL
) {
171 dstctx
->macctx
= EVP_MAC_CTX_dup(srcctx
->macctx
);
172 if (dstctx
->macctx
== NULL
)
182 static int mac_set_ctx_params(void *vpmacctx
, const OSSL_PARAM params
[])
184 PROV_MAC_CTX
*ctx
= (PROV_MAC_CTX
*)vpmacctx
;
186 return EVP_MAC_CTX_set_params(ctx
->macctx
, params
);
189 static const OSSL_PARAM
*mac_settable_ctx_params(void *provctx
,
192 EVP_MAC
*mac
= EVP_MAC_fetch(PROV_LIBRARY_CONTEXT_OF(provctx
), macname
,
194 const OSSL_PARAM
*params
;
199 params
= EVP_MAC_settable_ctx_params(mac
);
205 #define MAC_SETTABLE_CTX_PARAMS(funcname, macname) \
206 static const OSSL_PARAM *mac_##funcname##_settable_ctx_params(void *provctx) \
208 return mac_settable_ctx_params(provctx, macname); \
211 MAC_SETTABLE_CTX_PARAMS(hmac
, "HMAC")
212 MAC_SETTABLE_CTX_PARAMS(siphash
, "SIPHASH")
213 MAC_SETTABLE_CTX_PARAMS(poly1305
, "POLY1305")
214 MAC_SETTABLE_CTX_PARAMS(cmac
, "CMAC")
216 #define MAC_SIGNATURE_FUNCTIONS(funcname) \
217 const OSSL_DISPATCH mac_legacy_##funcname##_signature_functions[] = { \
218 { OSSL_FUNC_SIGNATURE_NEWCTX, (void (*)(void))mac_##funcname##_newctx }, \
219 { OSSL_FUNC_SIGNATURE_DIGEST_SIGN_INIT, \
220 (void (*)(void))mac_digest_sign_init }, \
221 { OSSL_FUNC_SIGNATURE_DIGEST_SIGN_UPDATE, \
222 (void (*)(void))mac_digest_sign_update }, \
223 { OSSL_FUNC_SIGNATURE_DIGEST_SIGN_FINAL, \
224 (void (*)(void))mac_digest_sign_final }, \
225 { OSSL_FUNC_SIGNATURE_FREECTX, (void (*)(void))mac_freectx }, \
226 { OSSL_FUNC_SIGNATURE_DUPCTX, (void (*)(void))mac_dupctx }, \
227 { OSSL_FUNC_SIGNATURE_SET_CTX_PARAMS, \
228 (void (*)(void))mac_set_ctx_params }, \
229 { OSSL_FUNC_SIGNATURE_SETTABLE_CTX_PARAMS, \
230 (void (*)(void))mac_##funcname##_settable_ctx_params }, \
234 MAC_SIGNATURE_FUNCTIONS(hmac
)
235 MAC_SIGNATURE_FUNCTIONS(siphash
)
236 MAC_SIGNATURE_FUNCTIONS(poly1305
)
237 MAC_SIGNATURE_FUNCTIONS(cmac
)