Coverage Report

Created: 2024-07-27 06:39

/src/openssl32/providers/implementations/encode_decode/encode_key2text.c
Line
Count
Source (jump to first uncovered line)
1
/*
2
 * Copyright 2020-2023 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
/*
11
 * Low level APIs are deprecated for public use, but still ok for internal use.
12
 */
13
#include "internal/deprecated.h"
14
15
#include <ctype.h>
16
17
#include <openssl/core.h>
18
#include <openssl/core_dispatch.h>
19
#include <openssl/core_names.h>
20
#include <openssl/bn.h>
21
#include <openssl/err.h>
22
#include <openssl/safestack.h>
23
#include <openssl/proverr.h>
24
#include "internal/ffc.h"
25
#include "crypto/bn.h"           /* bn_get_words() */
26
#include "crypto/dh.h"           /* ossl_dh_get0_params() */
27
#include "crypto/dsa.h"          /* ossl_dsa_get0_params() */
28
#include "crypto/ec.h"           /* ossl_ec_key_get_libctx */
29
#include "crypto/ecx.h"          /* ECX_KEY, etc... */
30
#include "crypto/rsa.h"          /* RSA_PSS_PARAMS_30, etc... */
31
#include "prov/bio.h"
32
#include "prov/implementations.h"
33
#include "endecoder_local.h"
34
35
DEFINE_SPECIAL_STACK_OF_CONST(BIGNUM_const, BIGNUM)
36
37
# ifdef SIXTY_FOUR_BIT_LONG
38
#  define BN_FMTu "%lu"
39
#  define BN_FMTx "%lx"
40
# endif
41
42
# ifdef SIXTY_FOUR_BIT
43
#  define BN_FMTu "%llu"
44
#  define BN_FMTx "%llx"
45
# endif
46
47
# ifdef THIRTY_TWO_BIT
48
#  define BN_FMTu "%u"
49
#  define BN_FMTx "%x"
50
# endif
51
52
static int print_labeled_bignum(BIO *out, const char *label, const BIGNUM *bn)
53
507k
{
54
507k
    int ret = 0, use_sep = 0;
55
507k
    char *hex_str = NULL, *p;
56
507k
    const char spaces[] = "    ";
57
507k
    const char *post_label_spc = " ";
58
59
507k
    const char *neg = "";
60
507k
    int bytes;
61
62
507k
    if (bn == NULL)
63
619
        return 0;
64
506k
    if (label == NULL) {
65
440k
        label = "";
66
440k
        post_label_spc = "";
67
440k
    }
68
69
506k
    if (BN_is_zero(bn))
70
97.9k
        return BIO_printf(out, "%s%s0\n", label, post_label_spc);
71
72
409k
    if (BN_num_bytes(bn) <= BN_BYTES) {
73
372k
        BN_ULONG *words = bn_get_words(bn);
74
75
372k
        if (BN_is_negative(bn))
76
299
            neg = "-";
77
78
372k
        return BIO_printf(out, "%s%s%s" BN_FMTu " (%s0x" BN_FMTx ")\n",
79
372k
                          label, post_label_spc, neg, words[0], neg, words[0]);
80
372k
    }
81
82
36.4k
    hex_str = BN_bn2hex(bn);
83
36.4k
    if (hex_str == NULL)
84
0
        return 0;
85
86
36.4k
    p = hex_str;
87
36.4k
    if (*p == '-') {
88
141
        ++p;
89
141
        neg = " (Negative)";
90
141
    }
91
36.4k
    if (BIO_printf(out, "%s%s\n", label, neg) <= 0)
92
0
        goto err;
93
94
    /* Keep track of how many bytes we have printed out so far */
95
36.4k
    bytes = 0;
96
97
36.4k
    if (BIO_printf(out, "%s", spaces) <= 0)
98
0
        goto err;
99
100
    /* Add a leading 00 if the top bit is set */
101
36.4k
    if (*p >= '8') {
102
19.1k
        if (BIO_printf(out, "%02x", 0) <= 0)
103
0
            goto err;
104
19.1k
        ++bytes;
105
19.1k
        use_sep = 1;
106
19.1k
    }
107
35.5M
    while (*p != '\0') {
108
        /* Do a newline after every 15 hex bytes + add the space indent */
109
35.5M
        if ((bytes % 15) == 0 && bytes > 0) {
110
2.35M
            if (BIO_printf(out, ":\n%s", spaces) <= 0)
111
0
                goto err;
112
2.35M
            use_sep = 0; /* The first byte on the next line doesn't have a : */
113
2.35M
        }
114
35.5M
        if (BIO_printf(out, "%s%c%c", use_sep ? ":" : "",
115
35.5M
                       tolower(p[0]), tolower(p[1])) <= 0)
116
0
            goto err;
117
35.5M
        ++bytes;
118
35.5M
        p += 2;
119
35.5M
        use_sep = 1;
120
35.5M
    }
121
36.4k
    if (BIO_printf(out, "\n") <= 0)
122
0
        goto err;
123
36.4k
    ret = 1;
124
36.4k
err:
125
36.4k
    OPENSSL_free(hex_str);
126
36.4k
    return ret;
127
36.4k
}
128
129
/* Number of octets per line */
130
362k
#define LABELED_BUF_PRINT_WIDTH    15
131
132
#if !defined(OPENSSL_NO_DH) || !defined(OPENSSL_NO_DSA) || !defined(OPENSSL_NO_EC)
133
static int print_labeled_buf(BIO *out, const char *label,
134
                             const unsigned char *buf, size_t buflen)
135
9.31k
{
136
9.31k
    size_t i;
137
138
9.31k
    if (BIO_printf(out, "%s\n", label) <= 0)
139
0
        return 0;
140
141
372k
    for (i = 0; i < buflen; i++) {
142
362k
        if ((i % LABELED_BUF_PRINT_WIDTH) == 0) {
143
27.7k
            if (i > 0 && BIO_printf(out, "\n") <= 0)
144
0
                return 0;
145
27.7k
            if (BIO_printf(out, "    ") <= 0)
146
0
                return 0;
147
27.7k
        }
148
149
362k
        if (BIO_printf(out, "%02x%s", buf[i],
150
362k
                                 (i == buflen - 1) ? "" : ":") <= 0)
151
0
            return 0;
152
362k
    }
153
9.31k
    if (BIO_printf(out, "\n") <= 0)
154
0
        return 0;
155
156
9.31k
    return 1;
157
9.31k
}
158
#endif
159
160
#if !defined(OPENSSL_NO_DH) || !defined(OPENSSL_NO_DSA)
161
static int ffc_params_to_text(BIO *out, const FFC_PARAMS *ffc)
162
9.65k
{
163
9.65k
    if (ffc->nid != NID_undef) {
164
0
#ifndef OPENSSL_NO_DH
165
0
        const DH_NAMED_GROUP *group = ossl_ffc_uid_to_dh_named_group(ffc->nid);
166
0
        const char *name = ossl_ffc_named_group_get_name(group);
167
168
0
        if (name == NULL)
169
0
            goto err;
170
0
        if (BIO_printf(out, "GROUP: %s\n", name) <= 0)
171
0
            goto err;
172
0
        return 1;
173
#else
174
        /* How could this be? We should not have a nid in a no-dh build. */
175
        goto err;
176
#endif
177
0
    }
178
179
9.65k
    if (!print_labeled_bignum(out, "P:   ", ffc->p))
180
0
        goto err;
181
9.65k
    if (ffc->q != NULL) {
182
7.62k
        if (!print_labeled_bignum(out, "Q:   ", ffc->q))
183
0
            goto err;
184
7.62k
    }
185
9.65k
    if (!print_labeled_bignum(out, "G:   ", ffc->g))
186
0
        goto err;
187
9.65k
    if (ffc->j != NULL) {
188
152
        if (!print_labeled_bignum(out, "J:   ", ffc->j))
189
0
            goto err;
190
152
    }
191
9.65k
    if (ffc->seed != NULL) {
192
66
        if (!print_labeled_buf(out, "SEED:", ffc->seed, ffc->seedlen))
193
0
            goto err;
194
66
    }
195
9.65k
    if (ffc->gindex != -1) {
196
0
        if (BIO_printf(out, "gindex: %d\n", ffc->gindex) <= 0)
197
0
            goto err;
198
0
    }
199
9.65k
    if (ffc->pcounter != -1) {
200
118
        if (BIO_printf(out, "pcounter: %d\n", ffc->pcounter) <= 0)
201
0
            goto err;
202
118
    }
203
9.65k
    if (ffc->h != 0) {
204
0
        if (BIO_printf(out, "h: %d\n", ffc->h) <= 0)
205
0
            goto err;
206
0
    }
207
9.65k
    return 1;
208
0
err:
209
0
    return 0;
210
9.65k
}
211
#endif
212
213
/* ---------------------------------------------------------------------- */
214
215
#ifndef OPENSSL_NO_DH
216
static int dh_to_text(BIO *out, const void *key, int selection)
217
14.1k
{
218
14.1k
    const DH *dh = key;
219
14.1k
    const char *type_label = NULL;
220
14.1k
    const BIGNUM *priv_key = NULL, *pub_key = NULL;
221
14.1k
    const FFC_PARAMS *params = NULL;
222
14.1k
    const BIGNUM *p = NULL;
223
14.1k
    long length;
224
225
14.1k
    if (out == NULL || dh == NULL) {
226
0
        ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_NULL_PARAMETER);
227
0
        return 0;
228
0
    }
229
230
14.1k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0)
231
4.57k
        type_label = "DH Private-Key";
232
9.58k
    else if ((selection & OSSL_KEYMGMT_SELECT_PUBLIC_KEY) != 0)
233
5.06k
        type_label = "DH Public-Key";
234
4.51k
    else if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0)
235
4.51k
        type_label = "DH Parameters";
236
237
14.1k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
238
4.57k
        priv_key = DH_get0_priv_key(dh);
239
4.57k
        if (priv_key == NULL) {
240
4.50k
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PRIVATE_KEY);
241
4.50k
            return 0;
242
4.50k
        }
243
4.57k
    }
244
9.65k
    if ((selection & OSSL_KEYMGMT_SELECT_KEYPAIR) != 0) {
245
5.14k
        pub_key = DH_get0_pub_key(dh);
246
5.14k
        if (pub_key == NULL) {
247
4.28k
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PUBLIC_KEY);
248
4.28k
            return 0;
249
4.28k
        }
250
5.14k
    }
251
5.37k
    if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0) {
252
5.37k
        params = ossl_dh_get0_params((DH *)dh);
253
5.37k
        if (params == NULL) {
254
0
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_PARAMETERS);
255
0
            return 0;
256
0
        }
257
5.37k
    }
258
259
5.37k
    p = DH_get0_p(dh);
260
5.37k
    if (p == NULL) {
261
0
        ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_KEY);
262
0
        return 0;
263
0
    }
264
265
5.37k
    if (BIO_printf(out, "%s: (%d bit)\n", type_label, BN_num_bits(p)) <= 0)
266
0
        return 0;
267
5.37k
    if (priv_key != NULL
268
5.37k
        && !print_labeled_bignum(out, "private-key:", priv_key))
269
0
        return 0;
270
5.37k
    if (pub_key != NULL
271
5.37k
        && !print_labeled_bignum(out, "public-key:", pub_key))
272
0
        return 0;
273
5.37k
    if (params != NULL
274
5.37k
        && !ffc_params_to_text(out, params))
275
0
        return 0;
276
5.37k
    length = DH_get_length(dh);
277
5.37k
    if (length > 0
278
5.37k
        && BIO_printf(out, "recommended-private-length: %ld bits\n",
279
272
                      length) <= 0)
280
0
        return 0;
281
282
5.37k
    return 1;
283
5.37k
}
284
285
# define dh_input_type          "DH"
286
# define dhx_input_type         "DHX"
287
#endif
288
289
/* ---------------------------------------------------------------------- */
290
291
#ifndef OPENSSL_NO_DSA
292
static int dsa_to_text(BIO *out, const void *key, int selection)
293
4.35k
{
294
4.35k
    const DSA *dsa = key;
295
4.35k
    const char *type_label = NULL;
296
4.35k
    const BIGNUM *priv_key = NULL, *pub_key = NULL;
297
4.35k
    const FFC_PARAMS *params = NULL;
298
4.35k
    const BIGNUM *p = NULL;
299
300
4.35k
    if (out == NULL || dsa == NULL) {
301
0
        ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_NULL_PARAMETER);
302
0
        return 0;
303
0
    }
304
305
4.35k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0)
306
2.59k
        type_label = "Private-Key";
307
1.76k
    else if ((selection & OSSL_KEYMGMT_SELECT_PUBLIC_KEY) != 0)
308
940
        type_label = "Public-Key";
309
826
    else if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0)
310
826
        type_label = "DSA-Parameters";
311
312
4.35k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
313
2.59k
        priv_key = DSA_get0_priv_key(dsa);
314
2.59k
        if (priv_key == NULL) {
315
79
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PRIVATE_KEY);
316
79
            return 0;
317
79
        }
318
2.59k
    }
319
4.28k
    if ((selection & OSSL_KEYMGMT_SELECT_KEYPAIR) != 0) {
320
3.45k
        pub_key = DSA_get0_pub_key(dsa);
321
3.45k
        if (pub_key == NULL) {
322
0
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PUBLIC_KEY);
323
0
            return 0;
324
0
        }
325
3.45k
    }
326
4.28k
    if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0) {
327
4.28k
        params = ossl_dsa_get0_params((DSA *)dsa);
328
4.28k
        if (params == NULL) {
329
0
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_PARAMETERS);
330
0
            return 0;
331
0
        }
332
4.28k
    }
333
334
4.28k
    p = DSA_get0_p(dsa);
335
4.28k
    if (p == NULL) {
336
0
        ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_KEY);
337
0
        return 0;
338
0
    }
339
340
4.28k
    if (BIO_printf(out, "%s: (%d bit)\n", type_label, BN_num_bits(p)) <= 0)
341
0
        return 0;
342
4.28k
    if (priv_key != NULL
343
4.28k
        && !print_labeled_bignum(out, "priv:", priv_key))
344
0
        return 0;
345
4.28k
    if (pub_key != NULL
346
4.28k
        && !print_labeled_bignum(out, "pub: ", pub_key))
347
0
        return 0;
348
4.28k
    if (params != NULL
349
4.28k
        && !ffc_params_to_text(out, params))
350
0
        return 0;
351
352
4.28k
    return 1;
353
4.28k
}
354
355
# define dsa_input_type         "DSA"
356
#endif
357
358
/* ---------------------------------------------------------------------- */
359
360
#ifndef OPENSSL_NO_EC
361
static int ec_param_explicit_curve_to_text(BIO *out, const EC_GROUP *group,
362
                                           BN_CTX *ctx)
363
717
{
364
717
    const char *plabel = "Prime:";
365
717
    BIGNUM *p = NULL, *a = NULL, *b = NULL;
366
367
717
    p = BN_CTX_get(ctx);
368
717
    a = BN_CTX_get(ctx);
369
717
    b = BN_CTX_get(ctx);
370
717
    if (b == NULL
371
717
        || !EC_GROUP_get_curve(group, p, a, b, ctx))
372
0
        return 0;
373
374
717
    if (EC_GROUP_get_field_type(group) == NID_X9_62_characteristic_two_field) {
375
0
        int basis_type = EC_GROUP_get_basis_type(group);
376
377
        /* print the 'short name' of the base type OID */
378
0
        if (basis_type == NID_undef
379
0
            || BIO_printf(out, "Basis Type: %s\n", OBJ_nid2sn(basis_type)) <= 0)
380
0
            return 0;
381
0
        plabel = "Polynomial:";
382
0
    }
383
717
    return print_labeled_bignum(out, plabel, p)
384
717
        && print_labeled_bignum(out, "A:   ", a)
385
717
        && print_labeled_bignum(out, "B:   ", b);
386
717
}
387
388
static int ec_param_explicit_gen_to_text(BIO *out, const EC_GROUP *group,
389
                                         BN_CTX *ctx)
390
717
{
391
717
    int ret;
392
717
    size_t buflen;
393
717
    point_conversion_form_t form;
394
717
    const EC_POINT *point = NULL;
395
717
    const char *glabel = NULL;
396
717
    unsigned char *buf = NULL;
397
398
717
    form = EC_GROUP_get_point_conversion_form(group);
399
717
    point = EC_GROUP_get0_generator(group);
400
401
717
    if (point == NULL)
402
0
        return 0;
403
404
717
    switch (form) {
405
613
    case POINT_CONVERSION_COMPRESSED:
406
613
       glabel = "Generator (compressed):";
407
613
       break;
408
64
    case POINT_CONVERSION_UNCOMPRESSED:
409
64
        glabel = "Generator (uncompressed):";
410
64
        break;
411
40
    case POINT_CONVERSION_HYBRID:
412
40
        glabel = "Generator (hybrid):";
413
40
        break;
414
0
    default:
415
0
        return 0;
416
717
    }
417
418
717
    buflen = EC_POINT_point2buf(group, point, form, &buf, ctx);
419
717
    if (buflen == 0)
420
0
        return 0;
421
422
717
    ret = print_labeled_buf(out, glabel, buf, buflen);
423
717
    OPENSSL_clear_free(buf, buflen);
424
717
    return ret;
425
717
}
426
427
/* Print explicit parameters */
428
static int ec_param_explicit_to_text(BIO *out, const EC_GROUP *group,
429
                                     OSSL_LIB_CTX *libctx)
430
717
{
431
717
    int ret = 0, tmp_nid;
432
717
    BN_CTX *ctx = NULL;
433
717
    const BIGNUM *order = NULL, *cofactor = NULL;
434
717
    const unsigned char *seed;
435
717
    size_t seed_len = 0;
436
437
717
    ctx = BN_CTX_new_ex(libctx);
438
717
    if (ctx == NULL)
439
0
        return 0;
440
717
    BN_CTX_start(ctx);
441
442
717
    tmp_nid = EC_GROUP_get_field_type(group);
443
717
    order = EC_GROUP_get0_order(group);
444
717
    if (order == NULL)
445
0
        goto err;
446
447
717
    seed = EC_GROUP_get0_seed(group);
448
717
    if (seed != NULL)
449
389
        seed_len = EC_GROUP_get_seed_len(group);
450
717
    cofactor = EC_GROUP_get0_cofactor(group);
451
452
    /* print the 'short name' of the field type */
453
717
    if (BIO_printf(out, "Field Type: %s\n", OBJ_nid2sn(tmp_nid)) <= 0
454
717
        || !ec_param_explicit_curve_to_text(out, group, ctx)
455
717
        || !ec_param_explicit_gen_to_text(out, group, ctx)
456
717
        || !print_labeled_bignum(out, "Order: ", order)
457
717
        || (cofactor != NULL
458
717
            && !print_labeled_bignum(out, "Cofactor: ", cofactor))
459
717
        || (seed != NULL
460
717
            && !print_labeled_buf(out, "Seed:", seed, seed_len)))
461
0
        goto err;
462
717
    ret = 1;
463
717
err:
464
717
    BN_CTX_end(ctx);
465
717
    BN_CTX_free(ctx);
466
717
    return ret;
467
717
}
468
469
static int ec_param_to_text(BIO *out, const EC_GROUP *group,
470
                            OSSL_LIB_CTX *libctx)
471
6.76k
{
472
6.76k
    if (EC_GROUP_get_asn1_flag(group) & OPENSSL_EC_NAMED_CURVE) {
473
6.04k
        const char *curve_name;
474
6.04k
        int curve_nid = EC_GROUP_get_curve_name(group);
475
476
        /* Explicit parameters */
477
6.04k
        if (curve_nid == NID_undef)
478
0
            return 0;
479
480
6.04k
        if (BIO_printf(out, "%s: %s\n", "ASN1 OID", OBJ_nid2sn(curve_nid)) <= 0)
481
0
            return 0;
482
483
6.04k
        curve_name = EC_curve_nid2nist(curve_nid);
484
6.04k
        return (curve_name == NULL
485
6.04k
                || BIO_printf(out, "%s: %s\n", "NIST CURVE", curve_name) > 0);
486
6.04k
    } else {
487
717
        return ec_param_explicit_to_text(out, group, libctx);
488
717
    }
489
6.76k
}
490
491
static int ec_to_text(BIO *out, const void *key, int selection)
492
6.57k
{
493
6.57k
    const EC_KEY *ec = key;
494
6.57k
    const char *type_label = NULL;
495
6.57k
    unsigned char *priv = NULL, *pub = NULL;
496
6.57k
    size_t priv_len = 0, pub_len = 0;
497
6.57k
    const EC_GROUP *group;
498
6.57k
    int ret = 0;
499
500
6.57k
    if (out == NULL || ec == NULL) {
501
0
        ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_NULL_PARAMETER);
502
0
        return 0;
503
0
    }
504
505
6.57k
    if ((group = EC_KEY_get0_group(ec)) == NULL) {
506
0
        ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_KEY);
507
0
        return 0;
508
0
    }
509
510
6.57k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0)
511
2.83k
        type_label = "Private-Key";
512
3.74k
    else if ((selection & OSSL_KEYMGMT_SELECT_PUBLIC_KEY) != 0)
513
2.17k
        type_label = "Public-Key";
514
1.56k
    else if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0)
515
1.56k
        if (EC_GROUP_get_curve_name(group) != NID_sm2)
516
1.54k
            type_label = "EC-Parameters";
517
518
6.57k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
519
2.83k
        const BIGNUM *priv_key = EC_KEY_get0_private_key(ec);
520
521
2.83k
        if (priv_key == NULL) {
522
527
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PRIVATE_KEY);
523
527
            goto err;
524
527
        }
525
2.31k
        priv_len = EC_KEY_priv2buf(ec, &priv);
526
2.31k
        if (priv_len == 0)
527
353
            goto err;
528
2.31k
    }
529
5.69k
    if ((selection & OSSL_KEYMGMT_SELECT_KEYPAIR) != 0) {
530
4.13k
        const EC_POINT *pub_pt = EC_KEY_get0_public_key(ec);
531
532
4.13k
        if (pub_pt == NULL) {
533
276
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PUBLIC_KEY);
534
276
            goto err;
535
276
        }
536
537
3.85k
        pub_len = EC_KEY_key2buf(ec, EC_KEY_get_conv_form(ec), &pub, NULL);
538
3.85k
        if (pub_len == 0)
539
102
            goto err;
540
3.85k
    }
541
542
5.32k
    if (type_label != NULL
543
5.32k
        && BIO_printf(out, "%s: (%d bit)\n", type_label,
544
5.30k
                      EC_GROUP_order_bits(group)) <= 0)
545
0
        goto err;
546
5.32k
    if (priv != NULL
547
5.32k
        && !print_labeled_buf(out, "priv:", priv, priv_len))
548
0
        goto err;
549
5.32k
    if (pub != NULL
550
5.32k
        && !print_labeled_buf(out, "pub:", pub, pub_len))
551
0
        goto err;
552
5.32k
    if ((selection & OSSL_KEYMGMT_SELECT_DOMAIN_PARAMETERS) != 0)
553
5.32k
        ret = ec_param_to_text(out, group, ossl_ec_key_get_libctx(ec));
554
6.57k
err:
555
6.57k
    OPENSSL_clear_free(priv, priv_len);
556
6.57k
    OPENSSL_free(pub);
557
6.57k
    return ret;
558
5.32k
}
559
560
# define ec_input_type          "EC"
561
562
# ifndef OPENSSL_NO_SM2
563
#  define sm2_input_type        "SM2"
564
# endif
565
#endif
566
567
/* ---------------------------------------------------------------------- */
568
569
#ifndef OPENSSL_NO_ECX
570
static int ecx_to_text(BIO *out, const void *key, int selection)
571
195
{
572
195
    const ECX_KEY *ecx = key;
573
195
    const char *type_label = NULL;
574
575
195
    if (out == NULL || ecx == NULL) {
576
0
        ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_NULL_PARAMETER);
577
0
        return 0;
578
0
    }
579
580
195
    switch (ecx->type) {
581
42
    case ECX_KEY_TYPE_X25519:
582
42
        type_label = "X25519";
583
42
        break;
584
40
    case ECX_KEY_TYPE_X448:
585
40
        type_label = "X448";
586
40
        break;
587
45
    case ECX_KEY_TYPE_ED25519:
588
45
        type_label = "ED25519";
589
45
        break;
590
68
    case ECX_KEY_TYPE_ED448:
591
68
        type_label = "ED448";
592
68
        break;
593
195
    }
594
595
195
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
596
60
        if (ecx->privkey == NULL) {
597
8
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PRIVATE_KEY);
598
8
            return 0;
599
8
        }
600
601
52
        if (BIO_printf(out, "%s Private-Key:\n", type_label) <= 0)
602
0
            return 0;
603
52
        if (!print_labeled_buf(out, "priv:", ecx->privkey, ecx->keylen))
604
0
            return 0;
605
135
    } else if ((selection & OSSL_KEYMGMT_SELECT_PUBLIC_KEY) != 0) {
606
        /* ecx->pubkey is an array, not a pointer... */
607
102
        if (!ecx->haspubkey) {
608
0
            ERR_raise(ERR_LIB_PROV, PROV_R_NOT_A_PUBLIC_KEY);
609
0
            return 0;
610
0
        }
611
612
102
        if (BIO_printf(out, "%s Public-Key:\n", type_label) <= 0)
613
0
            return 0;
614
102
    }
615
616
187
    if (!print_labeled_buf(out, "pub:", ecx->pubkey, ecx->keylen))
617
0
        return 0;
618
619
187
    return 1;
620
187
}
621
622
# define ed25519_input_type     "ED25519"
623
# define ed448_input_type       "ED448"
624
# define x25519_input_type      "X25519"
625
# define x448_input_type        "X448"
626
#endif
627
628
/* ---------------------------------------------------------------------- */
629
630
static int rsa_to_text(BIO *out, const void *key, int selection)
631
8.96k
{
632
8.96k
    const RSA *rsa = key;
633
8.96k
    const char *type_label = "RSA key";
634
8.96k
    const char *modulus_label = NULL;
635
8.96k
    const char *exponent_label = NULL;
636
8.96k
    const BIGNUM *rsa_d = NULL, *rsa_n = NULL, *rsa_e = NULL;
637
8.96k
    STACK_OF(BIGNUM_const) *factors = NULL;
638
8.96k
    STACK_OF(BIGNUM_const) *exps = NULL;
639
8.96k
    STACK_OF(BIGNUM_const) *coeffs = NULL;
640
8.96k
    int primes;
641
8.96k
    const RSA_PSS_PARAMS_30 *pss_params = ossl_rsa_get0_pss_params_30((RSA *)rsa);
642
8.96k
    int ret = 0;
643
644
8.96k
    if (out == NULL || rsa == NULL) {
645
0
        ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_NULL_PARAMETER);
646
0
        goto err;
647
0
    }
648
649
8.96k
    factors = sk_BIGNUM_const_new_null();
650
8.96k
    exps = sk_BIGNUM_const_new_null();
651
8.96k
    coeffs = sk_BIGNUM_const_new_null();
652
653
8.96k
    if (factors == NULL || exps == NULL || coeffs == NULL) {
654
0
        ERR_raise(ERR_LIB_PROV, ERR_R_CRYPTO_LIB);
655
0
        goto err;
656
0
    }
657
658
8.96k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
659
2.87k
        type_label = "Private-Key";
660
2.87k
        modulus_label = "modulus:";
661
2.87k
        exponent_label = "publicExponent:";
662
6.09k
    } else if ((selection & OSSL_KEYMGMT_SELECT_PUBLIC_KEY) != 0) {
663
4.59k
        type_label = "Public-Key";
664
4.59k
        modulus_label = "Modulus:";
665
4.59k
        exponent_label = "Exponent:";
666
4.59k
    }
667
668
8.96k
    RSA_get0_key(rsa, &rsa_n, &rsa_e, &rsa_d);
669
8.96k
    ossl_rsa_get0_all_params((RSA *)rsa, factors, exps, coeffs);
670
8.96k
    primes = sk_BIGNUM_const_num(factors);
671
672
8.96k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
673
2.87k
        if (BIO_printf(out, "%s: (%d bit, %d primes)\n",
674
2.87k
                       type_label, BN_num_bits(rsa_n), primes) <= 0)
675
0
            goto err;
676
6.09k
    } else {
677
6.09k
        if (BIO_printf(out, "%s: (%d bit)\n",
678
6.09k
                       type_label, BN_num_bits(rsa_n)) <= 0)
679
0
            goto err;
680
6.09k
    }
681
682
8.96k
    if (!print_labeled_bignum(out, modulus_label, rsa_n))
683
0
        goto err;
684
8.96k
    if (!print_labeled_bignum(out, exponent_label, rsa_e))
685
0
        goto err;
686
8.96k
    if ((selection & OSSL_KEYMGMT_SELECT_PRIVATE_KEY) != 0) {
687
2.87k
        int i;
688
689
2.87k
        if (!print_labeled_bignum(out, "privateExponent:", rsa_d))
690
619
            goto err;
691
2.25k
        if (!print_labeled_bignum(out, "prime1:",
692
2.25k
                                  sk_BIGNUM_const_value(factors, 0)))
693
0
            goto err;
694
2.25k
        if (!print_labeled_bignum(out, "prime2:",
695
2.25k
                                  sk_BIGNUM_const_value(factors, 1)))
696
0
            goto err;
697
2.25k
        if (!print_labeled_bignum(out, "exponent1:",
698
2.25k
                                  sk_BIGNUM_const_value(exps, 0)))
699
0
            goto err;
700
2.25k
        if (!print_labeled_bignum(out, "exponent2:",
701
2.25k
                                  sk_BIGNUM_const_value(exps, 1)))
702
0
            goto err;
703
2.25k
        if (!print_labeled_bignum(out, "coefficient:",
704
2.25k
                                  sk_BIGNUM_const_value(coeffs, 0)))
705
0
            goto err;
706
148k
        for (i = 2; i < sk_BIGNUM_const_num(factors); i++) {
707
145k
            if (BIO_printf(out, "prime%d:", i + 1) <= 0)
708
0
                goto err;
709
145k
            if (!print_labeled_bignum(out, NULL,
710
145k
                                      sk_BIGNUM_const_value(factors, i)))
711
0
                goto err;
712
145k
            if (BIO_printf(out, "exponent%d:", i + 1) <= 0)
713
0
                goto err;
714
145k
            if (!print_labeled_bignum(out, NULL,
715
145k
                                      sk_BIGNUM_const_value(exps, i)))
716
0
                goto err;
717
145k
            if (BIO_printf(out, "coefficient%d:", i + 1) <= 0)
718
0
                goto err;
719
145k
            if (!print_labeled_bignum(out, NULL,
720
145k
                                      sk_BIGNUM_const_value(coeffs, i - 1)))
721
0
                goto err;
722
145k
        }
723
2.25k
    }
724
725
8.34k
    if ((selection & OSSL_KEYMGMT_SELECT_OTHER_PARAMETERS) != 0) {
726
8.34k
        switch (RSA_test_flags(rsa, RSA_FLAG_TYPE_MASK)) {
727
8.23k
        case RSA_FLAG_TYPE_RSA:
728
8.23k
            if (!ossl_rsa_pss_params_30_is_unrestricted(pss_params)) {
729
0
                if (BIO_printf(out, "(INVALID PSS PARAMETERS)\n") <= 0)
730
0
                    goto err;
731
0
            }
732
8.23k
            break;
733
8.23k
        case RSA_FLAG_TYPE_RSASSAPSS:
734
105
            if (ossl_rsa_pss_params_30_is_unrestricted(pss_params)) {
735
19
                if (BIO_printf(out, "No PSS parameter restrictions\n") <= 0)
736
0
                    goto err;
737
86
            } else {
738
86
                int hashalg_nid = ossl_rsa_pss_params_30_hashalg(pss_params);
739
86
                int maskgenalg_nid =
740
86
                    ossl_rsa_pss_params_30_maskgenalg(pss_params);
741
86
                int maskgenhashalg_nid =
742
86
                    ossl_rsa_pss_params_30_maskgenhashalg(pss_params);
743
86
                int saltlen = ossl_rsa_pss_params_30_saltlen(pss_params);
744
86
                int trailerfield =
745
86
                    ossl_rsa_pss_params_30_trailerfield(pss_params);
746
747
86
                if (BIO_printf(out, "PSS parameter restrictions:\n") <= 0)
748
0
                    goto err;
749
86
                if (BIO_printf(out, "  Hash Algorithm: %s%s\n",
750
86
                               ossl_rsa_oaeppss_nid2name(hashalg_nid),
751
86
                               (hashalg_nid == NID_sha1
752
86
                                ? " (default)" : "")) <= 0)
753
0
                    goto err;
754
86
                if (BIO_printf(out, "  Mask Algorithm: %s with %s%s\n",
755
86
                               ossl_rsa_mgf_nid2name(maskgenalg_nid),
756
86
                               ossl_rsa_oaeppss_nid2name(maskgenhashalg_nid),
757
86
                               (maskgenalg_nid == NID_mgf1
758
86
                                && maskgenhashalg_nid == NID_sha1
759
86
                                ? " (default)" : "")) <= 0)
760
0
                    goto err;
761
86
                if (BIO_printf(out, "  Minimum Salt Length: %d%s\n",
762
86
                               saltlen,
763
86
                               (saltlen == 20 ? " (default)" : "")) <= 0)
764
0
                    goto err;
765
86
                if (BIO_printf(out, "  Trailer Field: 0x%x%s\n",
766
86
                               trailerfield,
767
86
                               (trailerfield == 1 ? " (default)" : "")) <= 0)
768
0
                    goto err;
769
86
            }
770
105
            break;
771
8.34k
        }
772
8.34k
    }
773
774
8.34k
    ret = 1;
775
8.96k
 err:
776
8.96k
    sk_BIGNUM_const_free(factors);
777
8.96k
    sk_BIGNUM_const_free(exps);
778
8.96k
    sk_BIGNUM_const_free(coeffs);
779
8.96k
    return ret;
780
8.34k
}
781
782
#define rsa_input_type          "RSA"
783
#define rsapss_input_type       "RSA-PSS"
784
785
/* ---------------------------------------------------------------------- */
786
787
static void *key2text_newctx(void *provctx)
788
42.1k
{
789
42.1k
    return provctx;
790
42.1k
}
791
792
static void key2text_freectx(ossl_unused void *vctx)
793
42.1k
{
794
42.1k
}
795
796
static int key2text_encode(void *vctx, const void *key, int selection,
797
                           OSSL_CORE_BIO *cout,
798
                           int (*key2text)(BIO *out, const void *key,
799
                                           int selection),
800
                           OSSL_PASSPHRASE_CALLBACK *cb, void *cbarg)
801
36.0k
{
802
36.0k
    BIO *out = ossl_bio_new_from_core_bio(vctx, cout);
803
36.0k
    int ret;
804
805
36.0k
    if (out == NULL)
806
0
        return 0;
807
808
36.0k
    ret = key2text(out, key, selection);
809
36.0k
    BIO_free(out);
810
811
36.0k
    return ret;
812
36.0k
}
813
814
#define MAKE_TEXT_ENCODER(impl, type)                                   \
815
    static OSSL_FUNC_encoder_import_object_fn                           \
816
    impl##2text_import_object;                                          \
817
    static OSSL_FUNC_encoder_free_object_fn                             \
818
    impl##2text_free_object;                                            \
819
    static OSSL_FUNC_encoder_encode_fn impl##2text_encode;              \
820
                                                                        \
821
    static void *impl##2text_import_object(void *ctx, int selection,    \
822
                                           const OSSL_PARAM params[])   \
823
0
    {                                                                   \
824
0
        return ossl_prov_import_key(ossl_##impl##_keymgmt_functions,    \
825
0
                                    ctx, selection, params);            \
826
0
    }                                                                   \
Unexecuted instantiation: encode_key2text.c:dh2text_import_object
Unexecuted instantiation: encode_key2text.c:dhx2text_import_object
Unexecuted instantiation: encode_key2text.c:dsa2text_import_object
Unexecuted instantiation: encode_key2text.c:ec2text_import_object
Unexecuted instantiation: encode_key2text.c:sm22text_import_object
Unexecuted instantiation: encode_key2text.c:ed255192text_import_object
Unexecuted instantiation: encode_key2text.c:ed4482text_import_object
Unexecuted instantiation: encode_key2text.c:x255192text_import_object
Unexecuted instantiation: encode_key2text.c:x4482text_import_object
Unexecuted instantiation: encode_key2text.c:rsa2text_import_object
Unexecuted instantiation: encode_key2text.c:rsapss2text_import_object
827
    static void impl##2text_free_object(void *key)                      \
828
0
    {                                                                   \
829
0
        ossl_prov_free_key(ossl_##impl##_keymgmt_functions, key);       \
830
0
    }                                                                   \
Unexecuted instantiation: encode_key2text.c:dh2text_free_object
Unexecuted instantiation: encode_key2text.c:dhx2text_free_object
Unexecuted instantiation: encode_key2text.c:dsa2text_free_object
Unexecuted instantiation: encode_key2text.c:ec2text_free_object
Unexecuted instantiation: encode_key2text.c:sm22text_free_object
Unexecuted instantiation: encode_key2text.c:ed255192text_free_object
Unexecuted instantiation: encode_key2text.c:ed4482text_free_object
Unexecuted instantiation: encode_key2text.c:x255192text_free_object
Unexecuted instantiation: encode_key2text.c:x4482text_free_object
Unexecuted instantiation: encode_key2text.c:rsa2text_free_object
Unexecuted instantiation: encode_key2text.c:rsapss2text_free_object
831
    static int impl##2text_encode(void *vctx, OSSL_CORE_BIO *cout,      \
832
                                  const void *key,                      \
833
                                  const OSSL_PARAM key_abstract[],      \
834
                                  int selection,                        \
835
                                  OSSL_PASSPHRASE_CALLBACK *cb,         \
836
                                  void *cbarg)                          \
837
36.0k
    {                                                                   \
838
36.0k
        /* We don't deal with abstract objects */                       \
839
36.0k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
36.0k
        return key2text_encode(vctx, key, selection, cout,              \
844
36.0k
                               type##_to_text, cb, cbarg);              \
845
36.0k
    }                                                                   \
encode_key2text.c:dh2text_encode
Line
Count
Source
837
4.59k
    {                                                                   \
838
4.59k
        /* We don't deal with abstract objects */                       \
839
4.59k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
4.59k
        return key2text_encode(vctx, key, selection, cout,              \
844
4.59k
                               type##_to_text, cb, cbarg);              \
845
4.59k
    }                                                                   \
encode_key2text.c:dhx2text_encode
Line
Count
Source
837
9.56k
    {                                                                   \
838
9.56k
        /* We don't deal with abstract objects */                       \
839
9.56k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
9.56k
        return key2text_encode(vctx, key, selection, cout,              \
844
9.56k
                               type##_to_text, cb, cbarg);              \
845
9.56k
    }                                                                   \
encode_key2text.c:dsa2text_encode
Line
Count
Source
837
4.35k
    {                                                                   \
838
4.35k
        /* We don't deal with abstract objects */                       \
839
4.35k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
4.35k
        return key2text_encode(vctx, key, selection, cout,              \
844
4.35k
                               type##_to_text, cb, cbarg);              \
845
4.35k
    }                                                                   \
encode_key2text.c:ec2text_encode
Line
Count
Source
837
8.32k
    {                                                                   \
838
8.32k
        /* We don't deal with abstract objects */                       \
839
8.32k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
8.32k
        return key2text_encode(vctx, key, selection, cout,              \
844
8.32k
                               type##_to_text, cb, cbarg);              \
845
8.32k
    }                                                                   \
encode_key2text.c:sm22text_encode
Line
Count
Source
837
73
    {                                                                   \
838
73
        /* We don't deal with abstract objects */                       \
839
73
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
73
        return key2text_encode(vctx, key, selection, cout,              \
844
73
                               type##_to_text, cb, cbarg);              \
845
73
    }                                                                   \
encode_key2text.c:ed255192text_encode
Line
Count
Source
837
45
    {                                                                   \
838
45
        /* We don't deal with abstract objects */                       \
839
45
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
45
        return key2text_encode(vctx, key, selection, cout,              \
844
45
                               type##_to_text, cb, cbarg);              \
845
45
    }                                                                   \
encode_key2text.c:ed4482text_encode
Line
Count
Source
837
68
    {                                                                   \
838
68
        /* We don't deal with abstract objects */                       \
839
68
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
68
        return key2text_encode(vctx, key, selection, cout,              \
844
68
                               type##_to_text, cb, cbarg);              \
845
68
    }                                                                   \
encode_key2text.c:x255192text_encode
Line
Count
Source
837
42
    {                                                                   \
838
42
        /* We don't deal with abstract objects */                       \
839
42
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
42
        return key2text_encode(vctx, key, selection, cout,              \
844
42
                               type##_to_text, cb, cbarg);              \
845
42
    }                                                                   \
encode_key2text.c:x4482text_encode
Line
Count
Source
837
40
    {                                                                   \
838
40
        /* We don't deal with abstract objects */                       \
839
40
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
40
        return key2text_encode(vctx, key, selection, cout,              \
844
40
                               type##_to_text, cb, cbarg);              \
845
40
    }                                                                   \
encode_key2text.c:rsa2text_encode
Line
Count
Source
837
8.85k
    {                                                                   \
838
8.85k
        /* We don't deal with abstract objects */                       \
839
8.85k
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
8.85k
        return key2text_encode(vctx, key, selection, cout,              \
844
8.85k
                               type##_to_text, cb, cbarg);              \
845
8.85k
    }                                                                   \
encode_key2text.c:rsapss2text_encode
Line
Count
Source
837
109
    {                                                                   \
838
109
        /* We don't deal with abstract objects */                       \
839
109
        if (key_abstract != NULL) {                                     \
840
0
            ERR_raise(ERR_LIB_PROV, ERR_R_PASSED_INVALID_ARGUMENT);     \
841
0
            return 0;                                                   \
842
0
        }                                                               \
843
109
        return key2text_encode(vctx, key, selection, cout,              \
844
109
                               type##_to_text, cb, cbarg);              \
845
109
    }                                                                   \
846
    const OSSL_DISPATCH ossl_##impl##_to_text_encoder_functions[] = {   \
847
        { OSSL_FUNC_ENCODER_NEWCTX,                                     \
848
          (void (*)(void))key2text_newctx },                            \
849
        { OSSL_FUNC_ENCODER_FREECTX,                                    \
850
          (void (*)(void))key2text_freectx },                           \
851
        { OSSL_FUNC_ENCODER_IMPORT_OBJECT,                              \
852
          (void (*)(void))impl##2text_import_object },                  \
853
        { OSSL_FUNC_ENCODER_FREE_OBJECT,                                \
854
          (void (*)(void))impl##2text_free_object },                    \
855
        { OSSL_FUNC_ENCODER_ENCODE,                                     \
856
          (void (*)(void))impl##2text_encode },                         \
857
        OSSL_DISPATCH_END                                               \
858
    }
859
860
#ifndef OPENSSL_NO_DH
861
MAKE_TEXT_ENCODER(dh, dh);
862
MAKE_TEXT_ENCODER(dhx, dh);
863
#endif
864
#ifndef OPENSSL_NO_DSA
865
MAKE_TEXT_ENCODER(dsa, dsa);
866
#endif
867
#ifndef OPENSSL_NO_EC
868
MAKE_TEXT_ENCODER(ec, ec);
869
# ifndef OPENSSL_NO_SM2
870
MAKE_TEXT_ENCODER(sm2, ec);
871
# endif
872
# ifndef OPENSSL_NO_ECX
873
MAKE_TEXT_ENCODER(ed25519, ecx);
874
MAKE_TEXT_ENCODER(ed448, ecx);
875
MAKE_TEXT_ENCODER(x25519, ecx);
876
MAKE_TEXT_ENCODER(x448, ecx);
877
# endif
878
#endif
879
MAKE_TEXT_ENCODER(rsa, rsa);
880
MAKE_TEXT_ENCODER(rsapss, rsa);