diff options
author | tb <> | 2024-10-19 08:26:03 +0000 |
---|---|---|
committer | tb <> | 2024-10-19 08:26:03 +0000 |
commit | 5d35c7f2de42a80e149efbedc993eed62af76746 (patch) | |
tree | fef18004744b150336e49603864f47583b260f13 /src | |
parent | e8d9d1cdb37b905cf9c7775e50cac994a4b16be0 (diff) | |
download | openbsd-5d35c7f2de42a80e149efbedc993eed62af76746.tar.gz openbsd-5d35c7f2de42a80e149efbedc993eed62af76746.tar.bz2 openbsd-5d35c7f2de42a80e149efbedc993eed62af76746.zip |
Move EC_GROUP_check() to ec_lib.c
EC_GROUP_check() is quite simple. It doesn't need to use its own file.
Diffstat (limited to 'src')
-rw-r--r-- | src/lib/libcrypto/Makefile | 3 | ||||
-rw-r--r-- | src/lib/libcrypto/ec/ec_check.c | 112 | ||||
-rw-r--r-- | src/lib/libcrypto/ec/ec_lib.c | 57 |
3 files changed, 57 insertions, 115 deletions
diff --git a/src/lib/libcrypto/Makefile b/src/lib/libcrypto/Makefile index d3be27ade1..6a1d125950 100644 --- a/src/lib/libcrypto/Makefile +++ b/src/lib/libcrypto/Makefile | |||
@@ -1,4 +1,4 @@ | |||
1 | # $OpenBSD: Makefile,v 1.213 2024/10/18 11:12:10 tb Exp $ | 1 | # $OpenBSD: Makefile,v 1.214 2024/10/19 08:26:03 tb Exp $ |
2 | 2 | ||
3 | LIB= crypto | 3 | LIB= crypto |
4 | LIBREBUILD=y | 4 | LIBREBUILD=y |
@@ -281,7 +281,6 @@ SRCS+= dsa_prn.c | |||
281 | # ec/ | 281 | # ec/ |
282 | SRCS+= ec_ameth.c | 282 | SRCS+= ec_ameth.c |
283 | SRCS+= ec_asn1.c | 283 | SRCS+= ec_asn1.c |
284 | SRCS+= ec_check.c | ||
285 | SRCS+= ec_curve.c | 284 | SRCS+= ec_curve.c |
286 | SRCS+= ec_err.c | 285 | SRCS+= ec_err.c |
287 | SRCS+= ec_key.c | 286 | SRCS+= ec_key.c |
diff --git a/src/lib/libcrypto/ec/ec_check.c b/src/lib/libcrypto/ec/ec_check.c deleted file mode 100644 index 0f98ef613c..0000000000 --- a/src/lib/libcrypto/ec/ec_check.c +++ /dev/null | |||
@@ -1,112 +0,0 @@ | |||
1 | /* $OpenBSD: ec_check.c,v 1.15 2023/07/07 13:54:45 beck Exp $ */ | ||
2 | /* ==================================================================== | ||
3 | * Copyright (c) 1998-2002 The OpenSSL Project. All rights reserved. | ||
4 | * | ||
5 | * Redistribution and use in source and binary forms, with or without | ||
6 | * modification, are permitted provided that the following conditions | ||
7 | * are met: | ||
8 | * | ||
9 | * 1. Redistributions of source code must retain the above copyright | ||
10 | * notice, this list of conditions and the following disclaimer. | ||
11 | * | ||
12 | * 2. Redistributions in binary form must reproduce the above copyright | ||
13 | * notice, this list of conditions and the following disclaimer in | ||
14 | * the documentation and/or other materials provided with the | ||
15 | * distribution. | ||
16 | * | ||
17 | * 3. All advertising materials mentioning features or use of this | ||
18 | * software must display the following acknowledgment: | ||
19 | * "This product includes software developed by the OpenSSL Project | ||
20 | * for use in the OpenSSL Toolkit. (http://www.openssl.org/)" | ||
21 | * | ||
22 | * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to | ||
23 | * endorse or promote products derived from this software without | ||
24 | * prior written permission. For written permission, please contact | ||
25 | * openssl-core@openssl.org. | ||
26 | * | ||
27 | * 5. Products derived from this software may not be called "OpenSSL" | ||
28 | * nor may "OpenSSL" appear in their names without prior written | ||
29 | * permission of the OpenSSL Project. | ||
30 | * | ||
31 | * 6. Redistributions of any form whatsoever must retain the following | ||
32 | * acknowledgment: | ||
33 | * "This product includes software developed by the OpenSSL Project | ||
34 | * for use in the OpenSSL Toolkit (http://www.openssl.org/)" | ||
35 | * | ||
36 | * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY | ||
37 | * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE | ||
38 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR | ||
39 | * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR | ||
40 | * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, | ||
41 | * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT | ||
42 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; | ||
43 | * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) | ||
44 | * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, | ||
45 | * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) | ||
46 | * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | ||
47 | * OF THE POSSIBILITY OF SUCH DAMAGE. | ||
48 | * ==================================================================== | ||
49 | * | ||
50 | * This product includes cryptographic software written by Eric Young | ||
51 | * (eay@cryptsoft.com). This product includes software written by Tim | ||
52 | * Hudson (tjh@cryptsoft.com). | ||
53 | * | ||
54 | */ | ||
55 | |||
56 | #include "ec_local.h" | ||
57 | #include <openssl/err.h> | ||
58 | |||
59 | int | ||
60 | EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in) | ||
61 | { | ||
62 | BN_CTX *ctx; | ||
63 | EC_POINT *point = NULL; | ||
64 | const BIGNUM *order; | ||
65 | int ret = 0; | ||
66 | |||
67 | if ((ctx = ctx_in) == NULL) | ||
68 | ctx = BN_CTX_new(); | ||
69 | if (ctx == NULL) | ||
70 | goto err; | ||
71 | |||
72 | /* check the discriminant */ | ||
73 | if (!EC_GROUP_check_discriminant(group, ctx)) { | ||
74 | ECerror(EC_R_DISCRIMINANT_IS_ZERO); | ||
75 | goto err; | ||
76 | } | ||
77 | /* check the generator */ | ||
78 | if (group->generator == NULL) { | ||
79 | ECerror(EC_R_UNDEFINED_GENERATOR); | ||
80 | goto err; | ||
81 | } | ||
82 | if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) { | ||
83 | ECerror(EC_R_POINT_IS_NOT_ON_CURVE); | ||
84 | goto err; | ||
85 | } | ||
86 | /* check the order of the generator */ | ||
87 | if ((point = EC_POINT_new(group)) == NULL) | ||
88 | goto err; | ||
89 | if ((order = EC_GROUP_get0_order(group)) == NULL) | ||
90 | goto err; | ||
91 | if (BN_is_zero(order)) { | ||
92 | ECerror(EC_R_UNDEFINED_ORDER); | ||
93 | goto err; | ||
94 | } | ||
95 | if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx)) | ||
96 | goto err; | ||
97 | if (EC_POINT_is_at_infinity(group, point) <= 0) { | ||
98 | ECerror(EC_R_INVALID_GROUP_ORDER); | ||
99 | goto err; | ||
100 | } | ||
101 | |||
102 | ret = 1; | ||
103 | |||
104 | err: | ||
105 | if (ctx != ctx_in) | ||
106 | BN_CTX_free(ctx); | ||
107 | |||
108 | EC_POINT_free(point); | ||
109 | |||
110 | return ret; | ||
111 | } | ||
112 | LCRYPTO_ALIAS(EC_GROUP_check); | ||
diff --git a/src/lib/libcrypto/ec/ec_lib.c b/src/lib/libcrypto/ec/ec_lib.c index 0e5897da9d..e17c4396f7 100644 --- a/src/lib/libcrypto/ec/ec_lib.c +++ b/src/lib/libcrypto/ec/ec_lib.c | |||
@@ -1,4 +1,4 @@ | |||
1 | /* $OpenBSD: ec_lib.c,v 1.70 2024/10/18 10:57:26 tb Exp $ */ | 1 | /* $OpenBSD: ec_lib.c,v 1.71 2024/10/19 08:26:03 tb Exp $ */ |
2 | /* | 2 | /* |
3 | * Originally written by Bodo Moeller for the OpenSSL project. | 3 | * Originally written by Bodo Moeller for the OpenSSL project. |
4 | */ | 4 | */ |
@@ -602,6 +602,61 @@ EC_GROUP_check_discriminant(const EC_GROUP *group, BN_CTX *ctx_in) | |||
602 | LCRYPTO_ALIAS(EC_GROUP_check_discriminant); | 602 | LCRYPTO_ALIAS(EC_GROUP_check_discriminant); |
603 | 603 | ||
604 | int | 604 | int |
605 | EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in) | ||
606 | { | ||
607 | BN_CTX *ctx; | ||
608 | EC_POINT *point = NULL; | ||
609 | const BIGNUM *order; | ||
610 | int ret = 0; | ||
611 | |||
612 | if ((ctx = ctx_in) == NULL) | ||
613 | ctx = BN_CTX_new(); | ||
614 | if (ctx == NULL) | ||
615 | goto err; | ||
616 | |||
617 | /* check the discriminant */ | ||
618 | if (!EC_GROUP_check_discriminant(group, ctx)) { | ||
619 | ECerror(EC_R_DISCRIMINANT_IS_ZERO); | ||
620 | goto err; | ||
621 | } | ||
622 | /* check the generator */ | ||
623 | if (group->generator == NULL) { | ||
624 | ECerror(EC_R_UNDEFINED_GENERATOR); | ||
625 | goto err; | ||
626 | } | ||
627 | if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) { | ||
628 | ECerror(EC_R_POINT_IS_NOT_ON_CURVE); | ||
629 | goto err; | ||
630 | } | ||
631 | /* check the order of the generator */ | ||
632 | if ((point = EC_POINT_new(group)) == NULL) | ||
633 | goto err; | ||
634 | if ((order = EC_GROUP_get0_order(group)) == NULL) | ||
635 | goto err; | ||
636 | if (BN_is_zero(order)) { | ||
637 | ECerror(EC_R_UNDEFINED_ORDER); | ||
638 | goto err; | ||
639 | } | ||
640 | if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx)) | ||
641 | goto err; | ||
642 | if (EC_POINT_is_at_infinity(group, point) <= 0) { | ||
643 | ECerror(EC_R_INVALID_GROUP_ORDER); | ||
644 | goto err; | ||
645 | } | ||
646 | |||
647 | ret = 1; | ||
648 | |||
649 | err: | ||
650 | if (ctx != ctx_in) | ||
651 | BN_CTX_free(ctx); | ||
652 | |||
653 | EC_POINT_free(point); | ||
654 | |||
655 | return ret; | ||
656 | } | ||
657 | LCRYPTO_ALIAS(EC_GROUP_check); | ||
658 | |||
659 | int | ||
605 | EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx) | 660 | EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx) |
606 | { | 661 | { |
607 | int r = 0; | 662 | int r = 0; |