mbed TLS v2.6.0
rsa.h
Go to the documentation of this file.
1 
25 #ifndef MBEDTLS_RSA_H
26 #define MBEDTLS_RSA_H
27 
28 #if !defined(MBEDTLS_CONFIG_FILE)
29 #include "config.h"
30 #else
31 #include MBEDTLS_CONFIG_FILE
32 #endif
33 
34 #include "bignum.h"
35 #include "md.h"
36 
37 #if defined(MBEDTLS_THREADING_C)
38 #include "threading.h"
39 #endif
40 
41 /*
42  * RSA Error codes
43  */
44 #define MBEDTLS_ERR_RSA_BAD_INPUT_DATA -0x4080
45 #define MBEDTLS_ERR_RSA_INVALID_PADDING -0x4100
46 #define MBEDTLS_ERR_RSA_KEY_GEN_FAILED -0x4180
47 #define MBEDTLS_ERR_RSA_KEY_CHECK_FAILED -0x4200
48 #define MBEDTLS_ERR_RSA_PUBLIC_FAILED -0x4280
49 #define MBEDTLS_ERR_RSA_PRIVATE_FAILED -0x4300
50 #define MBEDTLS_ERR_RSA_VERIFY_FAILED -0x4380
51 #define MBEDTLS_ERR_RSA_OUTPUT_TOO_LARGE -0x4400
52 #define MBEDTLS_ERR_RSA_RNG_FAILED -0x4480
54 /*
55  * RSA constants
56  */
57 #define MBEDTLS_RSA_PUBLIC 0
58 #define MBEDTLS_RSA_PRIVATE 1
59 
60 #define MBEDTLS_RSA_PKCS_V15 0
61 #define MBEDTLS_RSA_PKCS_V21 1
62 
63 #define MBEDTLS_RSA_SIGN 1
64 #define MBEDTLS_RSA_CRYPT 2
65 
66 #define MBEDTLS_RSA_SALT_LEN_ANY -1
67 
68 /*
69  * The above constants may be used even if the RSA module is compile out,
70  * eg for alternative (PKCS#11) RSA implemenations in the PK layers.
71  */
72 #if defined(MBEDTLS_RSA_C)
73 
74 #ifdef __cplusplus
75 extern "C" {
76 #endif
77 
81 typedef struct
82 {
83  int ver;
84  size_t len;
103  int padding;
105  int hash_id;
109 #if defined(MBEDTLS_THREADING_C)
110  mbedtls_threading_mutex_t mutex;
111 #endif
112 }
114 
140  int padding,
141  int hash_id);
142 
151 void mbedtls_rsa_set_padding( mbedtls_rsa_context *ctx, int padding, int hash_id);
152 
168  int (*f_rng)(void *, unsigned char *, size_t),
169  void *p_rng,
170  unsigned int nbits, int exponent );
171 
180 
189 
200 
218  const unsigned char *input,
219  unsigned char *output );
220 
236  int (*f_rng)(void *, unsigned char *, size_t),
237  void *p_rng,
238  const unsigned char *input,
239  unsigned char *output );
240 
261  int (*f_rng)(void *, unsigned char *, size_t),
262  void *p_rng,
263  int mode, size_t ilen,
264  const unsigned char *input,
265  unsigned char *output );
266 
284  int (*f_rng)(void *, unsigned char *, size_t),
285  void *p_rng,
286  int mode, size_t ilen,
287  const unsigned char *input,
288  unsigned char *output );
289 
310  int (*f_rng)(void *, unsigned char *, size_t),
311  void *p_rng,
312  int mode,
313  const unsigned char *label, size_t label_len,
314  size_t ilen,
315  const unsigned char *input,
316  unsigned char *output );
317 
345  int (*f_rng)(void *, unsigned char *, size_t),
346  void *p_rng,
347  int mode, size_t *olen,
348  const unsigned char *input,
349  unsigned char *output,
350  size_t output_max_len );
351 
377  int (*f_rng)(void *, unsigned char *, size_t),
378  void *p_rng,
379  int mode, size_t *olen,
380  const unsigned char *input,
381  unsigned char *output,
382  size_t output_max_len );
383 
411  int (*f_rng)(void *, unsigned char *, size_t),
412  void *p_rng,
413  int mode,
414  const unsigned char *label, size_t label_len,
415  size_t *olen,
416  const unsigned char *input,
417  unsigned char *output,
418  size_t output_max_len );
419 
445  int (*f_rng)(void *, unsigned char *, size_t),
446  void *p_rng,
447  int mode,
448  mbedtls_md_type_t md_alg,
449  unsigned int hashlen,
450  const unsigned char *hash,
451  unsigned char *sig );
452 
472  int (*f_rng)(void *, unsigned char *, size_t),
473  void *p_rng,
474  int mode,
475  mbedtls_md_type_t md_alg,
476  unsigned int hashlen,
477  const unsigned char *hash,
478  unsigned char *sig );
479 
505  int (*f_rng)(void *, unsigned char *, size_t),
506  void *p_rng,
507  int mode,
508  mbedtls_md_type_t md_alg,
509  unsigned int hashlen,
510  const unsigned char *hash,
511  unsigned char *sig );
512 
537  int (*f_rng)(void *, unsigned char *, size_t),
538  void *p_rng,
539  int mode,
540  mbedtls_md_type_t md_alg,
541  unsigned int hashlen,
542  const unsigned char *hash,
543  const unsigned char *sig );
544 
564  int (*f_rng)(void *, unsigned char *, size_t),
565  void *p_rng,
566  int mode,
567  mbedtls_md_type_t md_alg,
568  unsigned int hashlen,
569  const unsigned char *hash,
570  const unsigned char *sig );
571 
598  int (*f_rng)(void *, unsigned char *, size_t),
599  void *p_rng,
600  int mode,
601  mbedtls_md_type_t md_alg,
602  unsigned int hashlen,
603  const unsigned char *hash,
604  const unsigned char *sig );
605 
631  int (*f_rng)(void *, unsigned char *, size_t),
632  void *p_rng,
633  int mode,
634  mbedtls_md_type_t md_alg,
635  unsigned int hashlen,
636  const unsigned char *hash,
637  mbedtls_md_type_t mgf1_hash_id,
638  int expected_salt_len,
639  const unsigned char *sig );
640 
651 
658 
664 int mbedtls_rsa_self_test( int verbose );
665 
666 #ifdef __cplusplus
667 }
668 #endif
669 
670 #endif /* MBEDTLS_RSA_C */
671 
672 #endif /* rsa.h */
int mbedtls_rsa_self_test(int verbose)
Checkup routine.
mbedtls_mpi DP
Definition: rsa.h:92
int mbedtls_rsa_rsassa_pkcs1_v15_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v1.5 signature (RSASSA-PKCS1-v1_5-SIGN)
int mbedtls_rsa_public(mbedtls_rsa_context *ctx, const unsigned char *input, unsigned char *output)
Do an RSA public key operation.
int mbedtls_rsa_rsaes_oaep_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v2.1 OAEP decryption (RSAES-OAEP-DECRYPT)
int mbedtls_rsa_pkcs1_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Generic wrapper to perform a PKCS#1 verification using the mode from the context. ...
Configuration options (set of defines)
mbedtls_mpi DQ
Definition: rsa.h:93
int mbedtls_rsa_pkcs1_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Generic wrapper to perform a PKCS#1 signature using the mode from the context.
void mbedtls_rsa_set_padding(mbedtls_rsa_context *ctx, int padding, int hash_id)
Set padding for an already initialized RSA context See mbedtls_rsa_init() for details.
Multi-precision integer library.
int mbedtls_rsa_rsassa_pss_verify_ext(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, mbedtls_md_type_t mgf1_hash_id, int expected_salt_len, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the version with "full" options...
int mbedtls_rsa_pkcs1_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Generic wrapper to perform a PKCS#1 decryption using the mode from the context.
int mbedtls_rsa_rsassa_pss_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v2.1 PSS signature (RSASSA-PSS-SIGN)
mbedtls_mpi RP
Definition: rsa.h:97
int mbedtls_rsa_check_pub_priv(const mbedtls_rsa_context *pub, const mbedtls_rsa_context *prv)
Check a public-private RSA key pair.
Threading abstraction layer.
mbedtls_mpi P
Definition: rsa.h:90
int mbedtls_rsa_private(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, const unsigned char *input, unsigned char *output)
Do an RSA private key operation.
int mbedtls_rsa_rsaes_pkcs1_v15_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v1.5 decryption (RSAES-PKCS1-v1_5-DECRYPT)
int mbedtls_rsa_rsassa_pkcs1_v15_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v1.5 verification (RSASSA-PKCS1-v1_5-VERIFY)
mbedtls_mpi E
Definition: rsa.h:87
size_t len
Definition: rsa.h:84
mbedtls_mpi Vf
Definition: rsa.h:101
int mbedtls_rsa_pkcs1_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Generic wrapper to perform a PKCS#1 encryption using the mode from the context.
mbedtls_mpi QP
Definition: rsa.h:94
mbedtls_mpi D
Definition: rsa.h:89
Generic message digest wrapper.
int mbedtls_rsa_rsassa_pss_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the "simple" version.)
int mbedtls_rsa_rsaes_pkcs1_v15_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v1.5 encryption (RSAES-PKCS1-v1_5-ENCRYPT)
MPI structure.
Definition: bignum.h:181
mbedtls_mpi N
Definition: rsa.h:86
int mbedtls_rsa_check_pubkey(const mbedtls_rsa_context *ctx)
Check a public RSA key.
mbedtls_mpi RN
Definition: rsa.h:96
void mbedtls_rsa_free(mbedtls_rsa_context *ctx)
Free the components of an RSA key.
mbedtls_mpi RQ
Definition: rsa.h:98
int mbedtls_rsa_gen_key(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, unsigned int nbits, int exponent)
Generate an RSA keypair.
int mbedtls_rsa_copy(mbedtls_rsa_context *dst, const mbedtls_rsa_context *src)
Copy the components of an RSA context.
int mbedtls_rsa_check_privkey(const mbedtls_rsa_context *ctx)
Check a private RSA key.
mbedtls_mpi Vi
Definition: rsa.h:100
mbedtls_md_type_t
Definition: md.h:41
mbedtls_mpi Q
Definition: rsa.h:91
RSA context structure.
Definition: rsa.h:81
int mbedtls_rsa_rsaes_oaep_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v2.1 OAEP encryption (RSAES-OAEP-ENCRYPT)
void mbedtls_rsa_init(mbedtls_rsa_context *ctx, int padding, int hash_id)
Initialize an RSA context.