blob: 17201e63b90e00dc24ee8fc3e3fa11ac2d15c085 [file] [log] [blame]
Shawn Willdend67afae2014-08-19 12:36:27 -06001/*
2 * Copyright 2014 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#ifndef SYSTEM_KEYMASTER_ASYMMETRIC_KEY_H
18#define SYSTEM_KEYMASTER_ASYMMETRIC_KEY_H
19
20#include <openssl/rsa.h>
21#include <openssl/dsa.h>
22#include <openssl/ecdsa.h>
23#include <openssl/evp.h>
24
25#include "key.h"
26
27namespace keymaster {
28
29class AsymmetricKey : public Key {
30 public:
31 protected:
Shawn Willden2f3be362014-08-25 11:31:39 -060032 AsymmetricKey(const KeyBlob& blob, const Logger& logger) : Key(blob, logger) {}
Shawn Willdend67afae2014-08-19 12:36:27 -060033 keymaster_error_t LoadKey(const KeyBlob& blob);
34
35 /**
36 * Return a copy of raw key material, in the key's preferred binary format.
37 */
38 virtual keymaster_error_t key_material(UniquePtr<uint8_t[]>* material, size_t* size) const;
39
40 /**
41 * Return a copy of raw key material, in the specified format.
42 */
Shawn Willdenf268d742014-08-19 15:36:26 -060043 virtual keymaster_error_t formatted_key_material(keymaster_key_format_t format,
44 UniquePtr<uint8_t[]>* material,
Shawn Willdend67afae2014-08-19 12:36:27 -060045 size_t* size) const;
46
47 virtual Operation* CreateOperation(keymaster_purpose_t purpose, keymaster_error_t* error);
48
49 protected:
Shawn Willden2f3be362014-08-25 11:31:39 -060050 AsymmetricKey(const AuthorizationSet& auths, const Logger& logger) : Key(auths, logger) {}
Shawn Willdend67afae2014-08-19 12:36:27 -060051
52 private:
53 virtual int evp_key_type() = 0;
54 virtual bool InternalToEvp(EVP_PKEY* pkey) const = 0;
55 virtual bool EvpToInternal(const EVP_PKEY* pkey) = 0;
56 virtual Operation* CreateOperation(keymaster_purpose_t purpose, keymaster_digest_t digest,
57 keymaster_padding_t padding, keymaster_error_t* error) = 0;
58};
59
60class RsaKey : public AsymmetricKey {
61 public:
Shawn Willden2f3be362014-08-25 11:31:39 -060062 static RsaKey* GenerateKey(const AuthorizationSet& key_description, const Logger& logger,
63 keymaster_error_t* error);
Shawn Willden437fbd12014-08-20 11:59:49 -060064 static RsaKey* ImportKey(const AuthorizationSet& key_description, EVP_PKEY* pkey,
Shawn Willden2f3be362014-08-25 11:31:39 -060065 const Logger& logger, keymaster_error_t* error);
66 RsaKey(const KeyBlob& blob, const Logger& logger, keymaster_error_t* error);
Shawn Willdend67afae2014-08-19 12:36:27 -060067
68 virtual Operation* CreateOperation(keymaster_purpose_t purpose, keymaster_digest_t digest,
69 keymaster_padding_t padding, keymaster_error_t* error);
70
71 private:
Shawn Willden2f3be362014-08-25 11:31:39 -060072 RsaKey(RSA* rsa_key, const AuthorizationSet& auths, const Logger& logger)
73 : AsymmetricKey(auths, logger), rsa_key_(rsa_key) {}
Shawn Willdend67afae2014-08-19 12:36:27 -060074
75 virtual int evp_key_type() { return EVP_PKEY_RSA; }
76 virtual bool InternalToEvp(EVP_PKEY* pkey) const;
77 virtual bool EvpToInternal(const EVP_PKEY* pkey);
78
79 struct RSA_Delete {
80 void operator()(RSA* p) { RSA_free(p); }
81 };
82
83 UniquePtr<RSA, RSA_Delete> rsa_key_;
84};
85
86class DsaKey : public AsymmetricKey {
87 public:
Shawn Willden2f3be362014-08-25 11:31:39 -060088 static DsaKey* GenerateKey(const AuthorizationSet& key_description, const Logger& logger,
89 keymaster_error_t* error);
90 DsaKey(const KeyBlob& blob, const Logger& logger, keymaster_error_t* error);
Shawn Willdend67afae2014-08-19 12:36:27 -060091
92 virtual Operation* CreateOperation(keymaster_purpose_t purpose, keymaster_digest_t digest,
93 keymaster_padding_t padding, keymaster_error_t* error);
94
95 private:
Shawn Willden2f3be362014-08-25 11:31:39 -060096 DsaKey(DSA* dsa_key, const AuthorizationSet auths, const Logger& logger)
97 : AsymmetricKey(auths, logger), dsa_key_(dsa_key) {}
Shawn Willdend67afae2014-08-19 12:36:27 -060098
99 virtual int evp_key_type() { return EVP_PKEY_DSA; }
100 virtual bool InternalToEvp(EVP_PKEY* pkey) const;
101 virtual bool EvpToInternal(const EVP_PKEY* pkey);
102
103 struct DSA_Delete {
104 void operator()(DSA* p) { DSA_free(p); }
105 };
106
107 UniquePtr<DSA, DSA_Delete> dsa_key_;
108};
109
110class EcdsaKey : public AsymmetricKey {
111 public:
Shawn Willden2f3be362014-08-25 11:31:39 -0600112 static EcdsaKey* GenerateKey(const AuthorizationSet& key_description, const Logger& logger,
113 keymaster_error_t* error);
114 EcdsaKey(const KeyBlob& blob, const Logger& logger, keymaster_error_t* error);
Shawn Willdend67afae2014-08-19 12:36:27 -0600115
116 virtual Operation* CreateOperation(keymaster_purpose_t purpose, keymaster_digest_t digest,
117 keymaster_padding_t padding, keymaster_error_t* error);
118
119 private:
Shawn Willden2f3be362014-08-25 11:31:39 -0600120 EcdsaKey(EC_KEY* ecdsa_key, const AuthorizationSet auths, const Logger& logger)
121 : AsymmetricKey(auths, logger), ecdsa_key_(ecdsa_key) {}
Shawn Willdend67afae2014-08-19 12:36:27 -0600122
123 static EC_GROUP* choose_group(size_t key_size_bits);
124
125 virtual int evp_key_type() { return EVP_PKEY_EC; }
126 virtual bool InternalToEvp(EVP_PKEY* pkey) const;
127 virtual bool EvpToInternal(const EVP_PKEY* pkey);
128
129 struct ECDSA_Delete {
130 void operator()(EC_KEY* p) { EC_KEY_free(p); }
131 };
132
133 struct EC_GROUP_Delete {
134 void operator()(EC_GROUP* p) { EC_GROUP_free(p); }
135 };
136
137 UniquePtr<EC_KEY, ECDSA_Delete> ecdsa_key_;
138};
139
140} // namespace keymaster
141
142#endif // SYSTEM_KEYMASTER_ASYMMETRIC_KEY_H