summaryrefslogtreecommitdiff
path: root/src
diff options
context:
space:
mode:
authortb <>2024-10-19 08:26:03 +0000
committertb <>2024-10-19 08:26:03 +0000
commit5d35c7f2de42a80e149efbedc993eed62af76746 (patch)
treefef18004744b150336e49603864f47583b260f13 /src
parente8d9d1cdb37b905cf9c7775e50cac994a4b16be0 (diff)
downloadopenbsd-5d35c7f2de42a80e149efbedc993eed62af76746.tar.gz
openbsd-5d35c7f2de42a80e149efbedc993eed62af76746.tar.bz2
openbsd-5d35c7f2de42a80e149efbedc993eed62af76746.zip
Move EC_GROUP_check() to ec_lib.c
EC_GROUP_check() is quite simple. It doesn't need to use its own file.
Diffstat (limited to 'src')
-rw-r--r--src/lib/libcrypto/Makefile3
-rw-r--r--src/lib/libcrypto/ec/ec_check.c112
-rw-r--r--src/lib/libcrypto/ec/ec_lib.c57
3 files changed, 57 insertions, 115 deletions
diff --git a/src/lib/libcrypto/Makefile b/src/lib/libcrypto/Makefile
index d3be27ade1..6a1d125950 100644
--- a/src/lib/libcrypto/Makefile
+++ b/src/lib/libcrypto/Makefile
@@ -1,4 +1,4 @@
1# $OpenBSD: Makefile,v 1.213 2024/10/18 11:12:10 tb Exp $ 1# $OpenBSD: Makefile,v 1.214 2024/10/19 08:26:03 tb Exp $
2 2
3LIB= crypto 3LIB= crypto
4LIBREBUILD=y 4LIBREBUILD=y
@@ -281,7 +281,6 @@ SRCS+= dsa_prn.c
281# ec/ 281# ec/
282SRCS+= ec_ameth.c 282SRCS+= ec_ameth.c
283SRCS+= ec_asn1.c 283SRCS+= ec_asn1.c
284SRCS+= ec_check.c
285SRCS+= ec_curve.c 284SRCS+= ec_curve.c
286SRCS+= ec_err.c 285SRCS+= ec_err.c
287SRCS+= ec_key.c 286SRCS+= ec_key.c
diff --git a/src/lib/libcrypto/ec/ec_check.c b/src/lib/libcrypto/ec/ec_check.c
deleted file mode 100644
index 0f98ef613c..0000000000
--- a/src/lib/libcrypto/ec/ec_check.c
+++ /dev/null
@@ -1,112 +0,0 @@
1/* $OpenBSD: ec_check.c,v 1.15 2023/07/07 13:54:45 beck Exp $ */
2/* ====================================================================
3 * Copyright (c) 1998-2002 The OpenSSL Project. All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 *
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
11 *
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in
14 * the documentation and/or other materials provided with the
15 * distribution.
16 *
17 * 3. All advertising materials mentioning features or use of this
18 * software must display the following acknowledgment:
19 * "This product includes software developed by the OpenSSL Project
20 * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
21 *
22 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
23 * endorse or promote products derived from this software without
24 * prior written permission. For written permission, please contact
25 * openssl-core@openssl.org.
26 *
27 * 5. Products derived from this software may not be called "OpenSSL"
28 * nor may "OpenSSL" appear in their names without prior written
29 * permission of the OpenSSL Project.
30 *
31 * 6. Redistributions of any form whatsoever must retain the following
32 * acknowledgment:
33 * "This product includes software developed by the OpenSSL Project
34 * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
35 *
36 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
37 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
38 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
39 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
40 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
41 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
42 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
43 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
44 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
45 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
46 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
47 * OF THE POSSIBILITY OF SUCH DAMAGE.
48 * ====================================================================
49 *
50 * This product includes cryptographic software written by Eric Young
51 * (eay@cryptsoft.com). This product includes software written by Tim
52 * Hudson (tjh@cryptsoft.com).
53 *
54 */
55
56#include "ec_local.h"
57#include <openssl/err.h>
58
59int
60EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in)
61{
62 BN_CTX *ctx;
63 EC_POINT *point = NULL;
64 const BIGNUM *order;
65 int ret = 0;
66
67 if ((ctx = ctx_in) == NULL)
68 ctx = BN_CTX_new();
69 if (ctx == NULL)
70 goto err;
71
72 /* check the discriminant */
73 if (!EC_GROUP_check_discriminant(group, ctx)) {
74 ECerror(EC_R_DISCRIMINANT_IS_ZERO);
75 goto err;
76 }
77 /* check the generator */
78 if (group->generator == NULL) {
79 ECerror(EC_R_UNDEFINED_GENERATOR);
80 goto err;
81 }
82 if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) {
83 ECerror(EC_R_POINT_IS_NOT_ON_CURVE);
84 goto err;
85 }
86 /* check the order of the generator */
87 if ((point = EC_POINT_new(group)) == NULL)
88 goto err;
89 if ((order = EC_GROUP_get0_order(group)) == NULL)
90 goto err;
91 if (BN_is_zero(order)) {
92 ECerror(EC_R_UNDEFINED_ORDER);
93 goto err;
94 }
95 if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx))
96 goto err;
97 if (EC_POINT_is_at_infinity(group, point) <= 0) {
98 ECerror(EC_R_INVALID_GROUP_ORDER);
99 goto err;
100 }
101
102 ret = 1;
103
104 err:
105 if (ctx != ctx_in)
106 BN_CTX_free(ctx);
107
108 EC_POINT_free(point);
109
110 return ret;
111}
112LCRYPTO_ALIAS(EC_GROUP_check);
diff --git a/src/lib/libcrypto/ec/ec_lib.c b/src/lib/libcrypto/ec/ec_lib.c
index 0e5897da9d..e17c4396f7 100644
--- a/src/lib/libcrypto/ec/ec_lib.c
+++ b/src/lib/libcrypto/ec/ec_lib.c
@@ -1,4 +1,4 @@
1/* $OpenBSD: ec_lib.c,v 1.70 2024/10/18 10:57:26 tb Exp $ */ 1/* $OpenBSD: ec_lib.c,v 1.71 2024/10/19 08:26:03 tb Exp $ */
2/* 2/*
3 * Originally written by Bodo Moeller for the OpenSSL project. 3 * Originally written by Bodo Moeller for the OpenSSL project.
4 */ 4 */
@@ -602,6 +602,61 @@ EC_GROUP_check_discriminant(const EC_GROUP *group, BN_CTX *ctx_in)
602LCRYPTO_ALIAS(EC_GROUP_check_discriminant); 602LCRYPTO_ALIAS(EC_GROUP_check_discriminant);
603 603
604int 604int
605EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in)
606{
607 BN_CTX *ctx;
608 EC_POINT *point = NULL;
609 const BIGNUM *order;
610 int ret = 0;
611
612 if ((ctx = ctx_in) == NULL)
613 ctx = BN_CTX_new();
614 if (ctx == NULL)
615 goto err;
616
617 /* check the discriminant */
618 if (!EC_GROUP_check_discriminant(group, ctx)) {
619 ECerror(EC_R_DISCRIMINANT_IS_ZERO);
620 goto err;
621 }
622 /* check the generator */
623 if (group->generator == NULL) {
624 ECerror(EC_R_UNDEFINED_GENERATOR);
625 goto err;
626 }
627 if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) {
628 ECerror(EC_R_POINT_IS_NOT_ON_CURVE);
629 goto err;
630 }
631 /* check the order of the generator */
632 if ((point = EC_POINT_new(group)) == NULL)
633 goto err;
634 if ((order = EC_GROUP_get0_order(group)) == NULL)
635 goto err;
636 if (BN_is_zero(order)) {
637 ECerror(EC_R_UNDEFINED_ORDER);
638 goto err;
639 }
640 if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx))
641 goto err;
642 if (EC_POINT_is_at_infinity(group, point) <= 0) {
643 ECerror(EC_R_INVALID_GROUP_ORDER);
644 goto err;
645 }
646
647 ret = 1;
648
649 err:
650 if (ctx != ctx_in)
651 BN_CTX_free(ctx);
652
653 EC_POINT_free(point);
654
655 return ret;
656}
657LCRYPTO_ALIAS(EC_GROUP_check);
658
659int
605EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx) 660EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx)
606{ 661{
607 int r = 0; 662 int r = 0;