blob: 26fcf1e9d758cbd1d097f06d3458886e709e598b [file] [log] [blame]
Rich Salz846e33c2016-05-17 14:18:30 -04001/*
2 * Copyright 1995-2016 The OpenSSL Project Authors. All Rights Reserved.
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +00003 *
Rich Salz846e33c2016-05-17 14:18:30 -04004 * Licensed under the OpenSSL license (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +00008 */
9
Rich Salzeffaf4d2016-01-31 13:08:23 -050010#include <openssl/opensslconf.h>
11#ifdef OPENSSL_NO_DSA
12NON_EMPTY_TRANSLATION_UNIT
13#else
Geoff Thorpe5daec7e2002-12-08 05:38:44 +000014
Matt Caswell0f113f32015-01-22 03:40:55 +000015# include <stdio.h>
16# include <stdlib.h>
17# include <time.h>
18# include <string.h>
19# include "apps.h"
20# include <openssl/bio.h>
21# include <openssl/err.h>
22# include <openssl/bn.h>
23# include <openssl/dsa.h>
24# include <openssl/x509.h>
25# include <openssl/pem.h>
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +000026
Rich Salz6d23cf92015-01-12 17:29:26 -050027static int dsa_cb(int p, int n, BN_GENCB *cb);
Ralf S. Engelschall667ac4e2000-02-11 09:47:18 +000028
Rich Salz7e1b7482015-04-24 15:26:15 -040029typedef enum OPTION_choice {
30 OPT_ERR = -1, OPT_EOF = 0, OPT_HELP,
31 OPT_INFORM, OPT_OUTFORM, OPT_IN, OPT_OUT, OPT_TEXT, OPT_C,
Rich Salza2b22cd2017-02-28 12:08:54 -050032 OPT_NOOUT, OPT_GENKEY, OPT_RAND, OPT_ENGINE
Rich Salz7e1b7482015-04-24 15:26:15 -040033} OPTION_CHOICE;
Ralf S. Engelschall667ac4e2000-02-11 09:47:18 +000034
FdaSilvaYY44c83eb2016-03-13 14:07:50 +010035const OPTIONS dsaparam_options[] = {
Rich Salz7e1b7482015-04-24 15:26:15 -040036 {"help", OPT_HELP, '-', "Display this summary"},
37 {"inform", OPT_INFORM, 'F', "Input format - DER or PEM"},
38 {"in", OPT_IN, '<', "Input file"},
39 {"outform", OPT_OUTFORM, 'F', "Output format - DER or PEM"},
40 {"out", OPT_OUT, '>', "Output file"},
41 {"text", OPT_TEXT, '-', "Print as text"},
42 {"C", OPT_C, '-', "Output C code"},
43 {"noout", OPT_NOOUT, '-', "No output"},
44 {"genkey", OPT_GENKEY, '-', "Generate a DSA key"},
45 {"rand", OPT_RAND, 's', "Files to use for random number input"},
Rich Salz9c3bcfa2015-05-15 13:50:38 -040046# ifndef OPENSSL_NO_ENGINE
47 {"engine", OPT_ENGINE, 's', "Use engine e, possibly a hardware device"},
48# endif
Rich Salz7e1b7482015-04-24 15:26:15 -040049 {NULL}
50};
51
52int dsaparam_main(int argc, char **argv)
Matt Caswell0f113f32015-01-22 03:40:55 +000053{
Richard Levittedd1abd42016-09-28 23:39:18 +020054 ENGINE *e = NULL;
Matt Caswell0f113f32015-01-22 03:40:55 +000055 DSA *dsa = NULL;
Matt Caswell0f113f32015-01-22 03:40:55 +000056 BIO *in = NULL, *out = NULL;
Matt Caswell0f113f32015-01-22 03:40:55 +000057 BN_GENCB *cb = NULL;
Rich Salz700b4a42015-12-14 15:24:27 -050058 int numbits = -1, num = 0, genkey = 0, need_rand = 0;
Rich Salz3b061a02015-05-02 10:01:33 -040059 int informat = FORMAT_PEM, outformat = FORMAT_PEM, noout = 0, C = 0;
60 int ret = 1, i, text = 0, private = 0;
Rich Salz333b0702015-04-25 15:41:29 -040061 char *infile = NULL, *outfile = NULL, *prog, *inrand = NULL;
Rich Salz7e1b7482015-04-24 15:26:15 -040062 OPTION_CHOICE o;
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +000063
Rich Salz7e1b7482015-04-24 15:26:15 -040064 prog = opt_init(argc, argv, dsaparam_options);
65 while ((o = opt_next()) != OPT_EOF) {
66 switch (o) {
67 case OPT_EOF:
68 case OPT_ERR:
69 opthelp:
70 BIO_printf(bio_err, "%s: Use -help for summary.\n", prog);
71 goto end;
72 case OPT_HELP:
73 opt_help(dsaparam_options);
74 ret = 0;
75 goto end;
76 case OPT_INFORM:
77 if (!opt_format(opt_arg(), OPT_FMT_PEMDER, &informat))
78 goto opthelp;
79 break;
80 case OPT_IN:
81 infile = opt_arg();
82 break;
83 case OPT_OUTFORM:
84 if (!opt_format(opt_arg(), OPT_FMT_PEMDER, &outformat))
85 goto opthelp;
86 break;
87 case OPT_OUT:
88 outfile = opt_arg();
89 break;
90 case OPT_ENGINE:
Richard Levittedd1abd42016-09-28 23:39:18 +020091 e = setup_engine(opt_arg(), 0);
Rich Salz7e1b7482015-04-24 15:26:15 -040092 break;
Rich Salz7e1b7482015-04-24 15:26:15 -040093 case OPT_TEXT:
Matt Caswell0f113f32015-01-22 03:40:55 +000094 text = 1;
Rich Salz7e1b7482015-04-24 15:26:15 -040095 break;
96 case OPT_C:
Matt Caswell0f113f32015-01-22 03:40:55 +000097 C = 1;
Rich Salz7e1b7482015-04-24 15:26:15 -040098 break;
99 case OPT_GENKEY:
100 genkey = need_rand = 1;
101 break;
102 case OPT_RAND:
103 inrand = opt_arg();
Matt Caswell0f113f32015-01-22 03:40:55 +0000104 need_rand = 1;
Rich Salz7e1b7482015-04-24 15:26:15 -0400105 break;
106 case OPT_NOOUT:
Matt Caswell0f113f32015-01-22 03:40:55 +0000107 noout = 1;
Rich Salz7e1b7482015-04-24 15:26:15 -0400108 break;
Matt Caswell0f113f32015-01-22 03:40:55 +0000109 }
Matt Caswell0f113f32015-01-22 03:40:55 +0000110 }
Rich Salz7e1b7482015-04-24 15:26:15 -0400111 argc = opt_num_rest();
112 argv = opt_rest();
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000113
Rich Salz7e1b7482015-04-24 15:26:15 -0400114 if (argc == 1) {
Rich Salzbd4850d2016-01-11 20:40:38 -0500115 if (!opt_int(argv[0], &num) || num < 0)
Matt Caswell0f113f32015-01-22 03:40:55 +0000116 goto end;
Rich Salz7e1b7482015-04-24 15:26:15 -0400117 /* generate a key */
118 numbits = num;
119 need_rand = 1;
Matt Caswell0f113f32015-01-22 03:40:55 +0000120 }
Rich Salz3b061a02015-05-02 10:01:33 -0400121 private = genkey ? 1 : 0;
Rich Salz7e1b7482015-04-24 15:26:15 -0400122
Richard Levittebdd58d92015-09-04 12:49:06 +0200123 in = bio_open_default(infile, 'r', informat);
Rich Salz7e1b7482015-04-24 15:26:15 -0400124 if (in == NULL)
125 goto end;
Richard Levittebdd58d92015-09-04 12:49:06 +0200126 out = bio_open_owner(outfile, outformat, private);
Rich Salz7e1b7482015-04-24 15:26:15 -0400127 if (out == NULL)
128 goto end;
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000129
Matt Caswell0f113f32015-01-22 03:40:55 +0000130 if (need_rand) {
Rich Salz7e1b7482015-04-24 15:26:15 -0400131 app_RAND_load_file(NULL, (inrand != NULL));
Matt Caswell0f113f32015-01-22 03:40:55 +0000132 if (inrand != NULL)
133 BIO_printf(bio_err, "%ld semi-random bytes loaded\n",
134 app_RAND_load_files(inrand));
135 }
Bodo Möllera31011e1999-10-26 01:56:29 +0000136
Matt Caswell0f113f32015-01-22 03:40:55 +0000137 if (numbits > 0) {
138 cb = BN_GENCB_new();
Matt Caswell96487cd2015-10-30 11:18:04 +0000139 if (cb == NULL) {
Matt Caswell0f113f32015-01-22 03:40:55 +0000140 BIO_printf(bio_err, "Error allocating BN_GENCB object\n");
141 goto end;
142 }
143 BN_GENCB_set(cb, dsa_cb, bio_err);
144 assert(need_rand);
145 dsa = DSA_new();
Matt Caswell96487cd2015-10-30 11:18:04 +0000146 if (dsa == NULL) {
Matt Caswell0f113f32015-01-22 03:40:55 +0000147 BIO_printf(bio_err, "Error allocating DSA object\n");
148 goto end;
149 }
Matt Caswell0f113f32015-01-22 03:40:55 +0000150 BIO_printf(bio_err, "Generating DSA parameters, %d bit long prime\n",
151 num);
152 BIO_printf(bio_err, "This could take some time\n");
Matt Caswell0f113f32015-01-22 03:40:55 +0000153 if (!DSA_generate_parameters_ex(dsa, num, NULL, 0, NULL, NULL, cb)) {
Matt Caswell0f113f32015-01-22 03:40:55 +0000154 ERR_print_errors(bio_err);
155 BIO_printf(bio_err, "Error, DSA key generation failed\n");
156 goto end;
157 }
158 } else if (informat == FORMAT_ASN1)
159 dsa = d2i_DSAparams_bio(in, NULL);
Rich Salz7e1b7482015-04-24 15:26:15 -0400160 else
Matt Caswell0f113f32015-01-22 03:40:55 +0000161 dsa = PEM_read_bio_DSAparams(in, NULL, NULL, NULL);
Matt Caswell0f113f32015-01-22 03:40:55 +0000162 if (dsa == NULL) {
163 BIO_printf(bio_err, "unable to load DSA parameters\n");
164 ERR_print_errors(bio_err);
165 goto end;
166 }
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000167
Matt Caswell0f113f32015-01-22 03:40:55 +0000168 if (text) {
169 DSAparams_print(out, dsa);
170 }
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000171
Matt Caswell0f113f32015-01-22 03:40:55 +0000172 if (C) {
Richard Levitte2ac61152016-06-14 15:49:05 +0200173 const BIGNUM *p = NULL, *q = NULL, *g = NULL;
Viktor Dukhovniae6c5532016-04-03 20:58:09 -0400174 unsigned char *data;
Matt Caswell6e9fa572016-03-30 17:18:55 +0100175 int len, bits_p;
176
177 DSA_get0_pqg(dsa, &p, &q, &g);
178 len = BN_num_bytes(p);
179 bits_p = BN_num_bits(p);
180
Viktor Dukhovniae6c5532016-04-03 20:58:09 -0400181 data = app_malloc(len + 20, "BN space");
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000182
Rich Salz7e1b7482015-04-24 15:26:15 -0400183 BIO_printf(bio_out, "DSA *get_dsa%d()\n{\n", bits_p);
Matt Caswell6e9fa572016-03-30 17:18:55 +0100184 print_bignum_var(bio_out, p, "dsap", len, data);
185 print_bignum_var(bio_out, q, "dsaq", len, data);
186 print_bignum_var(bio_out, g, "dsag", len, data);
Rich Salz7e1b7482015-04-24 15:26:15 -0400187 BIO_printf(bio_out, " DSA *dsa = DSA_new();\n"
188 "\n");
189 BIO_printf(bio_out, " if (dsa == NULL)\n"
190 " return NULL;\n");
191 BIO_printf(bio_out, " dsa->p = BN_bin2bn(dsap_%d, sizeof (dsap_%d), NULL);\n",
Matt Caswell0f113f32015-01-22 03:40:55 +0000192 bits_p, bits_p);
Rich Salz7e1b7482015-04-24 15:26:15 -0400193 BIO_printf(bio_out, " dsa->q = BN_bin2bn(dsaq_%d, sizeof (dsaq_%d), NULL);\n",
Matt Caswell0f113f32015-01-22 03:40:55 +0000194 bits_p, bits_p);
Rich Salz7e1b7482015-04-24 15:26:15 -0400195 BIO_printf(bio_out, " dsa->g = BN_bin2bn(dsag_%d, sizeof (dsag_%d), NULL);\n",
Matt Caswell0f113f32015-01-22 03:40:55 +0000196 bits_p, bits_p);
Rich Salz7e1b7482015-04-24 15:26:15 -0400197 BIO_printf(bio_out, " if (!dsa->p || !dsa->q || !dsa->g) {\n"
198 " DSA_free(dsa);\n"
199 " return NULL;\n"
200 " }\n"
201 " return(dsa);\n}\n");
Matt Caswella855d1a2016-04-27 14:54:58 +0100202 OPENSSL_free(data);
Matt Caswell0f113f32015-01-22 03:40:55 +0000203 }
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000204
Matt Caswell0f113f32015-01-22 03:40:55 +0000205 if (!noout) {
206 if (outformat == FORMAT_ASN1)
207 i = i2d_DSAparams_bio(out, dsa);
Rich Salz7e1b7482015-04-24 15:26:15 -0400208 else
Matt Caswell0f113f32015-01-22 03:40:55 +0000209 i = PEM_write_bio_DSAparams(out, dsa);
Matt Caswell0f113f32015-01-22 03:40:55 +0000210 if (!i) {
211 BIO_printf(bio_err, "unable to write DSA parameters\n");
212 ERR_print_errors(bio_err);
213 goto end;
214 }
215 }
216 if (genkey) {
217 DSA *dsakey;
Ralf S. Engelschalldfeab061998-12-21 11:00:56 +0000218
Matt Caswell0f113f32015-01-22 03:40:55 +0000219 assert(need_rand);
220 if ((dsakey = DSAparams_dup(dsa)) == NULL)
221 goto end;
Matt Caswell0f113f32015-01-22 03:40:55 +0000222 if (!DSA_generate_key(dsakey)) {
223 ERR_print_errors(bio_err);
224 DSA_free(dsakey);
225 goto end;
226 }
Rich Salz3b061a02015-05-02 10:01:33 -0400227 assert(private);
Matt Caswell0f113f32015-01-22 03:40:55 +0000228 if (outformat == FORMAT_ASN1)
229 i = i2d_DSAPrivateKey_bio(out, dsakey);
Rich Salz7e1b7482015-04-24 15:26:15 -0400230 else
Matt Caswell0f113f32015-01-22 03:40:55 +0000231 i = PEM_write_bio_DSAPrivateKey(out, dsakey, NULL, NULL, 0, NULL,
232 NULL);
Matt Caswell0f113f32015-01-22 03:40:55 +0000233 DSA_free(dsakey);
234 }
235 if (need_rand)
Rich Salz7e1b7482015-04-24 15:26:15 -0400236 app_RAND_write_file(NULL);
Matt Caswell0f113f32015-01-22 03:40:55 +0000237 ret = 0;
238 end:
Rich Salz23a1d5e2015-04-30 21:37:06 -0400239 BN_GENCB_free(cb);
Rich Salzca3a82c2015-03-25 11:31:18 -0400240 BIO_free(in);
241 BIO_free_all(out);
Rich Salzd6407082015-03-24 10:17:37 -0400242 DSA_free(dsa);
Richard Levittedd1abd42016-09-28 23:39:18 +0200243 release_engine(e);
Rich Salz7e1b7482015-04-24 15:26:15 -0400244 return (ret);
Matt Caswell0f113f32015-01-22 03:40:55 +0000245}
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000246
Rich Salz6d23cf92015-01-12 17:29:26 -0500247static int dsa_cb(int p, int n, BN_GENCB *cb)
Matt Caswell0f113f32015-01-22 03:40:55 +0000248{
249 char c = '*';
Ralf S. Engelschalld02b48c1998-12-21 10:52:47 +0000250
Matt Caswell0f113f32015-01-22 03:40:55 +0000251 if (p == 0)
252 c = '.';
253 if (p == 1)
254 c = '+';
255 if (p == 2)
256 c = '*';
257 if (p == 3)
258 c = '\n';
259 BIO_write(BN_GENCB_get_arg(cb), &c, 1);
260 (void)BIO_flush(BN_GENCB_get_arg(cb));
Matt Caswell0f113f32015-01-22 03:40:55 +0000261 return 1;
262}
Ulf Möllerf5d7a031999-04-27 01:14:46 +0000263#endif