1# This file is dual licensed under the terms of the Apache License, Version
2# 2.0, and the BSD License. See the LICENSE file in the root of this repository
3# for complete details.
4
5from __future__ import annotations
6
7import abc
8
9from cryptography.exceptions import UnsupportedAlgorithm, _Reasons
10from cryptography.hazmat.bindings._rust import openssl as rust_openssl
11from cryptography.hazmat.primitives import _serialization
12
13
14class Ed448PublicKey(metaclass=abc.ABCMeta):
15 @classmethod
16 def from_public_bytes(cls, data: bytes) -> Ed448PublicKey:
17 from cryptography.hazmat.backends.openssl.backend import backend
18
19 if not backend.ed448_supported():
20 raise UnsupportedAlgorithm(
21 "ed448 is not supported by this version of OpenSSL.",
22 _Reasons.UNSUPPORTED_PUBLIC_KEY_ALGORITHM,
23 )
24
25 return rust_openssl.ed448.from_public_bytes(data)
26
27 @abc.abstractmethod
28 def public_bytes(
29 self,
30 encoding: _serialization.Encoding,
31 format: _serialization.PublicFormat,
32 ) -> bytes:
33 """
34 The serialized bytes of the public key.
35 """
36
37 @abc.abstractmethod
38 def public_bytes_raw(self) -> bytes:
39 """
40 The raw bytes of the public key.
41 Equivalent to public_bytes(Raw, Raw).
42 """
43
44 @abc.abstractmethod
45 def verify(self, signature: bytes, data: bytes) -> None:
46 """
47 Verify the signature.
48 """
49
50 @abc.abstractmethod
51 def __eq__(self, other: object) -> bool:
52 """
53 Checks equality.
54 """
55
56
57if hasattr(rust_openssl, "ed448"):
58 Ed448PublicKey.register(rust_openssl.ed448.Ed448PublicKey)
59
60
61class Ed448PrivateKey(metaclass=abc.ABCMeta):
62 @classmethod
63 def generate(cls) -> Ed448PrivateKey:
64 from cryptography.hazmat.backends.openssl.backend import backend
65
66 if not backend.ed448_supported():
67 raise UnsupportedAlgorithm(
68 "ed448 is not supported by this version of OpenSSL.",
69 _Reasons.UNSUPPORTED_PUBLIC_KEY_ALGORITHM,
70 )
71
72 return rust_openssl.ed448.generate_key()
73
74 @classmethod
75 def from_private_bytes(cls, data: bytes) -> Ed448PrivateKey:
76 from cryptography.hazmat.backends.openssl.backend import backend
77
78 if not backend.ed448_supported():
79 raise UnsupportedAlgorithm(
80 "ed448 is not supported by this version of OpenSSL.",
81 _Reasons.UNSUPPORTED_PUBLIC_KEY_ALGORITHM,
82 )
83
84 return rust_openssl.ed448.from_private_bytes(data)
85
86 @abc.abstractmethod
87 def public_key(self) -> Ed448PublicKey:
88 """
89 The Ed448PublicKey derived from the private key.
90 """
91
92 @abc.abstractmethod
93 def sign(self, data: bytes) -> bytes:
94 """
95 Signs the data.
96 """
97
98 @abc.abstractmethod
99 def private_bytes(
100 self,
101 encoding: _serialization.Encoding,
102 format: _serialization.PrivateFormat,
103 encryption_algorithm: _serialization.KeySerializationEncryption,
104 ) -> bytes:
105 """
106 The serialized bytes of the private key.
107 """
108
109 @abc.abstractmethod
110 def private_bytes_raw(self) -> bytes:
111 """
112 The raw bytes of the private key.
113 Equivalent to private_bytes(Raw, Raw, NoEncryption()).
114 """
115
116
117if hasattr(rust_openssl, "x448"):
118 Ed448PrivateKey.register(rust_openssl.ed448.Ed448PrivateKey)