Rich Salz | 440e5d8 | 2016-05-17 14:20:24 -0400 | [diff] [blame] | 1 | /* |
| 2 | * Copyright 1995-2016 The OpenSSL Project Authors. All Rights Reserved. |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 3 | * |
Rich Salz | 440e5d8 | 2016-05-17 14:20:24 -0400 | [diff] [blame] | 4 | * Licensed under the OpenSSL license (the "License"). You may not use |
| 5 | * this file except in compliance with the License. You can obtain a copy |
| 6 | * in the file LICENSE in the source distribution or at |
| 7 | * https://www.openssl.org/source/license.html |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 8 | */ |
| 9 | |
| 10 | #include <stdio.h> |
| 11 | #include <stdlib.h> |
| 12 | #include <string.h> |
| 13 | #include <sys/types.h> |
| 14 | #include <sys/stat.h> |
Richard Levitte | 55f78ba | 2002-11-28 18:54:30 +0000 | [diff] [blame] | 15 | |
| 16 | #include "../e_os.h" |
| 17 | |
Bodo Möller | ec57782 | 1999-04-23 22:13:45 +0000 | [diff] [blame] | 18 | #include <openssl/crypto.h> |
| 19 | #include <openssl/rand.h> |
| 20 | #include <openssl/bio.h> |
| 21 | #include <openssl/err.h> |
Nils Larsch | 3eeaab4 | 2005-07-16 12:37:36 +0000 | [diff] [blame] | 22 | #include <openssl/bn.h> |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 23 | |
Richard Levitte | cf1b7d9 | 2001-02-19 16:06:34 +0000 | [diff] [blame] | 24 | #ifdef OPENSSL_NO_DSA |
Ulf Möller | f5d7a03 | 1999-04-27 01:14:46 +0000 | [diff] [blame] | 25 | int main(int argc, char *argv[]) |
| 26 | { |
| 27 | printf("No DSA support\n"); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 28 | return (0); |
Ulf Möller | f5d7a03 | 1999-04-27 01:14:46 +0000 | [diff] [blame] | 29 | } |
| 30 | #else |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 31 | # include <openssl/dsa.h> |
Ulf Möller | f5d7a03 | 1999-04-27 01:14:46 +0000 | [diff] [blame] | 32 | |
Rich Salz | 6d23cf9 | 2015-01-12 17:29:26 -0500 | [diff] [blame] | 33 | static int dsa_cb(int p, int n, BN_GENCB *arg); |
Bodo Möller | a87030a | 2000-01-30 02:23:03 +0000 | [diff] [blame] | 34 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 35 | /* |
| 36 | * seed, out_p, out_q, out_g are taken from the updated Appendix 5 to FIPS |
| 37 | * PUB 186 and also appear in Appendix 5 to FIPS PIB 186-1 |
| 38 | */ |
| 39 | static unsigned char seed[20] = { |
| 40 | 0xd5, 0x01, 0x4e, 0x4b, 0x60, 0xef, 0x2b, 0xa8, 0xb6, 0x21, 0x1b, 0x40, |
| 41 | 0x62, 0xba, 0x32, 0x24, 0xe0, 0x42, 0x7d, 0xd3, |
| 42 | }; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 43 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 44 | static unsigned char out_p[] = { |
| 45 | 0x8d, 0xf2, 0xa4, 0x94, 0x49, 0x22, 0x76, 0xaa, |
| 46 | 0x3d, 0x25, 0x75, 0x9b, 0xb0, 0x68, 0x69, 0xcb, |
| 47 | 0xea, 0xc0, 0xd8, 0x3a, 0xfb, 0x8d, 0x0c, 0xf7, |
| 48 | 0xcb, 0xb8, 0x32, 0x4f, 0x0d, 0x78, 0x82, 0xe5, |
| 49 | 0xd0, 0x76, 0x2f, 0xc5, 0xb7, 0x21, 0x0e, 0xaf, |
| 50 | 0xc2, 0xe9, 0xad, 0xac, 0x32, 0xab, 0x7a, 0xac, |
| 51 | 0x49, 0x69, 0x3d, 0xfb, 0xf8, 0x37, 0x24, 0xc2, |
| 52 | 0xec, 0x07, 0x36, 0xee, 0x31, 0xc8, 0x02, 0x91, |
| 53 | }; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 54 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 55 | static unsigned char out_q[] = { |
| 56 | 0xc7, 0x73, 0x21, 0x8c, 0x73, 0x7e, 0xc8, 0xee, |
| 57 | 0x99, 0x3b, 0x4f, 0x2d, 0xed, 0x30, 0xf4, 0x8e, |
| 58 | 0xda, 0xce, 0x91, 0x5f, |
| 59 | }; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 60 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 61 | static unsigned char out_g[] = { |
| 62 | 0x62, 0x6d, 0x02, 0x78, 0x39, 0xea, 0x0a, 0x13, |
| 63 | 0x41, 0x31, 0x63, 0xa5, 0x5b, 0x4c, 0xb5, 0x00, |
| 64 | 0x29, 0x9d, 0x55, 0x22, 0x95, 0x6c, 0xef, 0xcb, |
| 65 | 0x3b, 0xff, 0x10, 0xf3, 0x99, 0xce, 0x2c, 0x2e, |
| 66 | 0x71, 0xcb, 0x9d, 0xe5, 0xfa, 0x24, 0xba, 0xbf, |
| 67 | 0x58, 0xe5, 0xb7, 0x95, 0x21, 0x92, 0x5c, 0x9c, |
| 68 | 0xc4, 0x2e, 0x9f, 0x6f, 0x46, 0x4b, 0x08, 0x8c, |
| 69 | 0xc5, 0x72, 0xaf, 0x53, 0xe6, 0xd7, 0x88, 0x02, |
| 70 | }; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 71 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 72 | static const unsigned char str1[] = "12345678901234567890"; |
Ben Laurie | 61f5b6f | 1999-04-23 15:01:15 +0000 | [diff] [blame] | 73 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 74 | static const char rnd_seed[] = |
| 75 | "string to make the random number generator think it has entropy"; |
Bodo Möller | 7d38820 | 2000-01-15 21:48:46 +0000 | [diff] [blame] | 76 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 77 | static BIO *bio_err = NULL; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 78 | |
Ulf Möller | 6b691a5 | 1999-04-19 21:31:43 +0000 | [diff] [blame] | 79 | int main(int argc, char **argv) |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 80 | { |
| 81 | BN_GENCB *cb; |
| 82 | DSA *dsa = NULL; |
| 83 | int counter, ret = 0, i, j; |
| 84 | unsigned char buf[256]; |
| 85 | unsigned long h; |
| 86 | unsigned char sig[256]; |
| 87 | unsigned int siglen; |
Matt Caswell | b84e122 | 2016-06-16 10:07:32 +0100 | [diff] [blame] | 88 | const BIGNUM *p = NULL, *q = NULL, *g = NULL; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 89 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 90 | if (bio_err == NULL) |
Richard Levitte | 0f81f5f | 2015-09-04 14:07:57 +0200 | [diff] [blame] | 91 | bio_err = BIO_new_fp(stderr, BIO_NOCLOSE | BIO_FP_TEXT); |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 92 | |
Rich Salz | bbd86bf | 2016-01-07 15:06:38 -0500 | [diff] [blame] | 93 | CRYPTO_set_mem_debug(1); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 94 | CRYPTO_mem_ctrl(CRYPTO_MEM_CHECK_ON); |
Bodo Möller | 227cd06 | 1999-06-25 13:41:35 +0000 | [diff] [blame] | 95 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 96 | RAND_seed(rnd_seed, sizeof rnd_seed); |
Geoff Thorpe | cb78486 | 2001-09-25 20:23:40 +0000 | [diff] [blame] | 97 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 98 | BIO_printf(bio_err, "test generation of DSA parameters\n"); |
Bodo Möller | a87030a | 2000-01-30 02:23:03 +0000 | [diff] [blame] | 99 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 100 | cb = BN_GENCB_new(); |
| 101 | if (!cb) |
| 102 | goto end; |
Matt Caswell | c0d4390 | 2014-10-28 22:56:18 +0000 | [diff] [blame] | 103 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 104 | BN_GENCB_set(cb, dsa_cb, bio_err); |
| 105 | if (((dsa = DSA_new()) == NULL) || !DSA_generate_parameters_ex(dsa, 512, |
| 106 | seed, 20, |
| 107 | &counter, |
| 108 | &h, cb)) |
| 109 | goto end; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 110 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 111 | BIO_printf(bio_err, "seed\n"); |
| 112 | for (i = 0; i < 20; i += 4) { |
| 113 | BIO_printf(bio_err, "%02X%02X%02X%02X ", |
| 114 | seed[i], seed[i + 1], seed[i + 2], seed[i + 3]); |
| 115 | } |
| 116 | BIO_printf(bio_err, "\ncounter=%d h=%ld\n", counter, h); |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 117 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 118 | DSA_print(bio_err, dsa, 0); |
| 119 | if (counter != 105) { |
| 120 | BIO_printf(bio_err, "counter should be 105\n"); |
| 121 | goto end; |
| 122 | } |
| 123 | if (h != 2) { |
| 124 | BIO_printf(bio_err, "h should be 2\n"); |
| 125 | goto end; |
| 126 | } |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 127 | |
Matt Caswell | 6e9fa57 | 2016-03-30 17:18:55 +0100 | [diff] [blame] | 128 | DSA_get0_pqg(dsa, &p, &q, &g); |
| 129 | i = BN_bn2bin(q, buf); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 130 | j = sizeof(out_q); |
| 131 | if ((i != j) || (memcmp(buf, out_q, i) != 0)) { |
| 132 | BIO_printf(bio_err, "q value is wrong\n"); |
| 133 | goto end; |
| 134 | } |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 135 | |
Matt Caswell | 6e9fa57 | 2016-03-30 17:18:55 +0100 | [diff] [blame] | 136 | i = BN_bn2bin(p, buf); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 137 | j = sizeof(out_p); |
| 138 | if ((i != j) || (memcmp(buf, out_p, i) != 0)) { |
| 139 | BIO_printf(bio_err, "p value is wrong\n"); |
| 140 | goto end; |
| 141 | } |
Bodo Möller | 46a6437 | 2005-05-16 01:43:31 +0000 | [diff] [blame] | 142 | |
Matt Caswell | 6e9fa57 | 2016-03-30 17:18:55 +0100 | [diff] [blame] | 143 | i = BN_bn2bin(g, buf); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 144 | j = sizeof(out_g); |
| 145 | if ((i != j) || (memcmp(buf, out_g, i) != 0)) { |
| 146 | BIO_printf(bio_err, "g value is wrong\n"); |
| 147 | goto end; |
| 148 | } |
Bodo Möller | 46a6437 | 2005-05-16 01:43:31 +0000 | [diff] [blame] | 149 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 150 | DSA_generate_key(dsa); |
| 151 | DSA_sign(0, str1, 20, sig, &siglen, dsa); |
| 152 | if (DSA_verify(0, str1, 20, sig, siglen, dsa) == 1) |
| 153 | ret = 1; |
| 154 | |
| 155 | end: |
| 156 | if (!ret) |
| 157 | ERR_print_errors(bio_err); |
Rich Salz | d640708 | 2015-03-24 10:17:37 -0400 | [diff] [blame] | 158 | DSA_free(dsa); |
Rich Salz | 23a1d5e | 2015-04-30 21:37:06 -0400 | [diff] [blame] | 159 | BN_GENCB_free(cb); |
Matt Caswell | 8793f01 | 2016-02-08 16:45:35 +0000 | [diff] [blame] | 160 | |
Viktor Dukhovni | c2e2731 | 2016-01-10 14:42:10 -0500 | [diff] [blame] | 161 | #ifndef OPENSSL_NO_CRYPTO_MDEBUG |
Dr. Stephen Henson | 541e956 | 2016-01-14 22:00:03 +0000 | [diff] [blame] | 162 | if (CRYPTO_mem_leaks(bio_err) <= 0) |
| 163 | ret = 0; |
Rich Salz | bbd86bf | 2016-01-07 15:06:38 -0500 | [diff] [blame] | 164 | #endif |
Rich Salz | ca3a82c | 2015-03-25 11:31:18 -0400 | [diff] [blame] | 165 | BIO_free(bio_err); |
| 166 | bio_err = NULL; |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 167 | EXIT(!ret); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 168 | } |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 169 | |
Rich Salz | 6d23cf9 | 2015-01-12 17:29:26 -0500 | [diff] [blame] | 170 | static int dsa_cb(int p, int n, BN_GENCB *arg) |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 171 | { |
| 172 | char c = '*'; |
| 173 | static int ok = 0, num = 0; |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 174 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 175 | if (p == 0) { |
| 176 | c = '.'; |
| 177 | num++; |
| 178 | }; |
| 179 | if (p == 1) |
| 180 | c = '+'; |
| 181 | if (p == 2) { |
| 182 | c = '*'; |
| 183 | ok++; |
| 184 | } |
| 185 | if (p == 3) |
| 186 | c = '\n'; |
| 187 | BIO_write(BN_GENCB_get_arg(arg), &c, 1); |
| 188 | (void)BIO_flush(BN_GENCB_get_arg(arg)); |
Ralf S. Engelschall | d02b48c | 1998-12-21 10:52:47 +0000 | [diff] [blame] | 189 | |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 190 | if (!ok && (p == 0) && (num > 1)) { |
Marcus Meissner | 70c9f1c | 2015-12-03 15:19:53 +0100 | [diff] [blame] | 191 | BIO_printf(BN_GENCB_get_arg(arg), "error in dsatest\n"); |
Matt Caswell | 0f113f3 | 2015-01-22 03:40:55 +0000 | [diff] [blame] | 192 | return 0; |
| 193 | } |
| 194 | return 1; |
| 195 | } |
Ulf Möller | f5d7a03 | 1999-04-27 01:14:46 +0000 | [diff] [blame] | 196 | #endif |