blob: 7b23581ed0590dfd17a494ffc725519518394829 [file] [log] [blame]
Thai Duongf862a762015-03-18 14:10:56 -07001/*
2 * Copyright 2014 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#ifndef SYSTEM_KEYMASTER_EC_KEY_H_
18#define SYSTEM_KEYMASTER_EC_KEY_H_
19
20#include <openssl/ec.h>
21
22#include "asymmetric_key.h"
23
24namespace keymaster {
25
26class EcKeyFactory : public AsymmetricKeyFactory {
27 public:
28 virtual Key* GenerateKey(const AuthorizationSet& key_description, keymaster_error_t* error);
29 virtual Key* ImportKey(const AuthorizationSet& key_description,
30 keymaster_key_format_t key_format, const uint8_t* key_data,
31 size_t key_data_length, keymaster_error_t* error);
32 virtual Key* LoadKey(const UnencryptedKeyBlob& blob, keymaster_error_t* error);
33 virtual Key* RescopeKey(const UnencryptedKeyBlob& blob,
34 const AuthorizationSet& new_authorizations, keymaster_error_t* error);
35
36 private:
37 static EC_GROUP* choose_group(size_t key_size_bits);
38 static keymaster_error_t get_group_size(const EC_GROUP& group, size_t* key_size_bits);
39
40 struct EC_GROUP_Delete {
41 void operator()(EC_GROUP* p) { EC_GROUP_free(p); }
42 };
43};
44
45class EcdsaKeyFactory : public EcKeyFactory {
46 public:
Shawn Willden9c65b2b2015-04-07 17:01:10 -060047 virtual keymaster_algorithm_t registry_key() const { return KM_ALGORITHM_EC; }
Thai Duongf862a762015-03-18 14:10:56 -070048};
49
Shawn Willden13e29e02015-05-08 11:02:46 -060050class EcdsaOperationFactory;
Thai Duongf862a762015-03-18 14:10:56 -070051
52class EcKey : public AsymmetricKey {
53 private:
54 friend EcKeyFactory;
55 friend EcdsaKeyFactory;
Shawn Willden13e29e02015-05-08 11:02:46 -060056 friend EcdsaOperationFactory;
Thai Duongf862a762015-03-18 14:10:56 -070057
58 EcKey(const UnencryptedKeyBlob& blob, keymaster_error_t* error);
59 EcKey(EC_KEY* ec_key, const AuthorizationSet auths) : AsymmetricKey(auths), ec_key_(ec_key) {}
60
61 virtual int evp_key_type() { return EVP_PKEY_EC; }
62 virtual bool InternalToEvp(EVP_PKEY* pkey) const;
63 virtual bool EvpToInternal(const EVP_PKEY* pkey);
64
65 struct EC_Delete {
66 void operator()(EC_KEY* p) { EC_KEY_free(p); }
67 };
68
69 EC_KEY* key() const { return EC_KEY_dup(ec_key_.get()); }
70
71 UniquePtr<EC_KEY, EC_Delete> ec_key_;
72};
73
74} // namespace keymaster
75
76#endif // SYSTEM_KEYMASTER_EC_KEY_H_