mbed TLS v2.0.0
rsa.h
Go to the documentation of this file.
1 
24 #ifndef MBEDTLS_RSA_H
25 #define MBEDTLS_RSA_H
26 
27 #if !defined(MBEDTLS_CONFIG_FILE)
28 #include "config.h"
29 #else
30 #include MBEDTLS_CONFIG_FILE
31 #endif
32 
33 #include "bignum.h"
34 #include "md.h"
35 
36 #if defined(MBEDTLS_THREADING_C)
37 #include "threading.h"
38 #endif
39 
40 /*
41  * RSA Error codes
42  */
43 #define MBEDTLS_ERR_RSA_BAD_INPUT_DATA -0x4080
44 #define MBEDTLS_ERR_RSA_INVALID_PADDING -0x4100
45 #define MBEDTLS_ERR_RSA_KEY_GEN_FAILED -0x4180
46 #define MBEDTLS_ERR_RSA_KEY_CHECK_FAILED -0x4200
47 #define MBEDTLS_ERR_RSA_PUBLIC_FAILED -0x4280
48 #define MBEDTLS_ERR_RSA_PRIVATE_FAILED -0x4300
49 #define MBEDTLS_ERR_RSA_VERIFY_FAILED -0x4380
50 #define MBEDTLS_ERR_RSA_OUTPUT_TOO_LARGE -0x4400
51 #define MBEDTLS_ERR_RSA_RNG_FAILED -0x4480
53 /*
54  * RSA constants
55  */
56 #define MBEDTLS_RSA_PUBLIC 0
57 #define MBEDTLS_RSA_PRIVATE 1
58 
59 #define MBEDTLS_RSA_PKCS_V15 0
60 #define MBEDTLS_RSA_PKCS_V21 1
61 
62 #define MBEDTLS_RSA_SIGN 1
63 #define MBEDTLS_RSA_CRYPT 2
64 
65 #define MBEDTLS_RSA_SALT_LEN_ANY -1
66 
67 /*
68  * The above constants may be used even if the RSA module is compile out,
69  * eg for alternative (PKCS#11) RSA implemenations in the PK layers.
70  */
71 #if defined(MBEDTLS_RSA_C)
72 
73 #ifdef __cplusplus
74 extern "C" {
75 #endif
76 
80 typedef struct
81 {
82  int ver;
83  size_t len;
102  int padding;
104  int hash_id;
108 #if defined(MBEDTLS_THREADING_C)
109  mbedtls_threading_mutex_t mutex;
110 #endif
111 }
113 
139  int padding,
140  int hash_id);
141 
150 void mbedtls_rsa_set_padding( mbedtls_rsa_context *ctx, int padding, int hash_id);
151 
167  int (*f_rng)(void *, unsigned char *, size_t),
168  void *p_rng,
169  unsigned int nbits, int exponent );
170 
179 
188 
199 
217  const unsigned char *input,
218  unsigned char *output );
219 
235  int (*f_rng)(void *, unsigned char *, size_t),
236  void *p_rng,
237  const unsigned char *input,
238  unsigned char *output );
239 
260  int (*f_rng)(void *, unsigned char *, size_t),
261  void *p_rng,
262  int mode, size_t ilen,
263  const unsigned char *input,
264  unsigned char *output );
265 
283  int (*f_rng)(void *, unsigned char *, size_t),
284  void *p_rng,
285  int mode, size_t ilen,
286  const unsigned char *input,
287  unsigned char *output );
288 
309  int (*f_rng)(void *, unsigned char *, size_t),
310  void *p_rng,
311  int mode,
312  const unsigned char *label, size_t label_len,
313  size_t ilen,
314  const unsigned char *input,
315  unsigned char *output );
316 
338  int (*f_rng)(void *, unsigned char *, size_t),
339  void *p_rng,
340  int mode, size_t *olen,
341  const unsigned char *input,
342  unsigned char *output,
343  size_t output_max_len );
344 
364  int (*f_rng)(void *, unsigned char *, size_t),
365  void *p_rng,
366  int mode, size_t *olen,
367  const unsigned char *input,
368  unsigned char *output,
369  size_t output_max_len );
370 
392  int (*f_rng)(void *, unsigned char *, size_t),
393  void *p_rng,
394  int mode,
395  const unsigned char *label, size_t label_len,
396  size_t *olen,
397  const unsigned char *input,
398  unsigned char *output,
399  size_t output_max_len );
400 
426  int (*f_rng)(void *, unsigned char *, size_t),
427  void *p_rng,
428  int mode,
429  mbedtls_md_type_t md_alg,
430  unsigned int hashlen,
431  const unsigned char *hash,
432  unsigned char *sig );
433 
453  int (*f_rng)(void *, unsigned char *, size_t),
454  void *p_rng,
455  int mode,
456  mbedtls_md_type_t md_alg,
457  unsigned int hashlen,
458  const unsigned char *hash,
459  unsigned char *sig );
460 
486  int (*f_rng)(void *, unsigned char *, size_t),
487  void *p_rng,
488  int mode,
489  mbedtls_md_type_t md_alg,
490  unsigned int hashlen,
491  const unsigned char *hash,
492  unsigned char *sig );
493 
518  int (*f_rng)(void *, unsigned char *, size_t),
519  void *p_rng,
520  int mode,
521  mbedtls_md_type_t md_alg,
522  unsigned int hashlen,
523  const unsigned char *hash,
524  const unsigned char *sig );
525 
545  int (*f_rng)(void *, unsigned char *, size_t),
546  void *p_rng,
547  int mode,
548  mbedtls_md_type_t md_alg,
549  unsigned int hashlen,
550  const unsigned char *hash,
551  const unsigned char *sig );
552 
579  int (*f_rng)(void *, unsigned char *, size_t),
580  void *p_rng,
581  int mode,
582  mbedtls_md_type_t md_alg,
583  unsigned int hashlen,
584  const unsigned char *hash,
585  const unsigned char *sig );
586 
612  int (*f_rng)(void *, unsigned char *, size_t),
613  void *p_rng,
614  int mode,
615  mbedtls_md_type_t md_alg,
616  unsigned int hashlen,
617  const unsigned char *hash,
618  mbedtls_md_type_t mgf1_hash_id,
619  int expected_salt_len,
620  const unsigned char *sig );
621 
632 
639 
645 int mbedtls_rsa_self_test( int verbose );
646 
647 #ifdef __cplusplus
648 }
649 #endif
650 
651 #endif /* MBEDTLS_RSA_C */
652 
653 #endif /* rsa.h */
int mbedtls_rsa_self_test(int verbose)
Checkup routine.
mbedtls_mpi DP
Definition: rsa.h:91
int mbedtls_rsa_rsassa_pkcs1_v15_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v1.5 signature (RSASSA-PKCS1-v1_5-SIGN)
int mbedtls_rsa_public(mbedtls_rsa_context *ctx, const unsigned char *input, unsigned char *output)
Do an RSA public key operation.
int mbedtls_rsa_rsaes_oaep_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v2.1 OAEP decryption (RSAES-OAEP-DECRYPT)
int mbedtls_rsa_pkcs1_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Generic wrapper to perform a PKCS#1 verification using the mode from the context. ...
Compatibility names (set of defines)
mbedtls_mpi DQ
Definition: rsa.h:92
int mbedtls_rsa_pkcs1_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Generic wrapper to perform a PKCS#1 signature using the mode from the context.
void mbedtls_rsa_set_padding(mbedtls_rsa_context *ctx, int padding, int hash_id)
Set padding for an already initialized RSA context See mbedtls_rsa_init() for details.
Multi-precision integer library.
int mbedtls_rsa_rsassa_pss_verify_ext(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, mbedtls_md_type_t mgf1_hash_id, int expected_salt_len, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the version with "full" options...
int mbedtls_rsa_pkcs1_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Generic wrapper to perform a PKCS#1 decryption using the mode from the context.
int mbedtls_rsa_rsassa_pss_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v2.1 PSS signature (RSASSA-PSS-SIGN)
mbedtls_mpi RP
Definition: rsa.h:96
int mbedtls_rsa_check_pub_priv(const mbedtls_rsa_context *pub, const mbedtls_rsa_context *prv)
Check a public-private RSA key pair.
Threading abstraction layer.
mbedtls_mpi P
Definition: rsa.h:89
int mbedtls_rsa_private(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, const unsigned char *input, unsigned char *output)
Do an RSA private key operation.
int mbedtls_rsa_rsaes_pkcs1_v15_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v1.5 decryption (RSAES-PKCS1-v1_5-DECRYPT)
int mbedtls_rsa_rsassa_pkcs1_v15_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v1.5 verification (RSASSA-PKCS1-v1_5-VERIFY)
mbedtls_mpi E
Definition: rsa.h:86
size_t len
Definition: rsa.h:83
mbedtls_mpi Vf
Definition: rsa.h:100
int mbedtls_rsa_pkcs1_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Generic wrapper to perform a PKCS#1 encryption using the mode from the context.
mbedtls_mpi QP
Definition: rsa.h:93
mbedtls_mpi D
Definition: rsa.h:88
int mbedtls_rsa_rsassa_pss_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the "simple" version.)
int mbedtls_rsa_rsaes_pkcs1_v15_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v1.5 encryption (RSAES-PKCS1-v1_5-ENCRYPT)
MPI structure.
Definition: bignum.h:144
mbedtls_mpi N
Definition: rsa.h:85
int mbedtls_rsa_check_pubkey(const mbedtls_rsa_context *ctx)
Check a public RSA key.
mbedtls_mpi RN
Definition: rsa.h:95
void mbedtls_rsa_free(mbedtls_rsa_context *ctx)
Free the components of an RSA key.
mbedtls_mpi RQ
Definition: rsa.h:97
int mbedtls_rsa_gen_key(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, unsigned int nbits, int exponent)
Generate an RSA keypair.
int mbedtls_rsa_copy(mbedtls_rsa_context *dst, const mbedtls_rsa_context *src)
Copy the components of an RSA context.
int mbedtls_rsa_check_privkey(const mbedtls_rsa_context *ctx)
Check a private RSA key.
mbedtls_mpi Vi
Definition: rsa.h:99
mbedtls_md_type_t
Definition: md.h:44
mbedtls_mpi Q
Definition: rsa.h:90
RSA context structure.
Definition: rsa.h:80
int mbedtls_rsa_rsaes_oaep_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v2.1 OAEP encryption (RSAES-OAEP-ENCRYPT)
void mbedtls_rsa_init(mbedtls_rsa_context *ctx, int padding, int hash_id)
Initialize an RSA context.