xref: /aosp_15_r20/system/keymaster/km_openssl/curve25519_key.cpp (revision 789431f29546679ab5188a97751fb38e3018d44d)
1*789431f2SAndroid Build Coastguard Worker /*
2*789431f2SAndroid Build Coastguard Worker  * Copyright 2021 The Android Open Source Project
3*789431f2SAndroid Build Coastguard Worker  *
4*789431f2SAndroid Build Coastguard Worker  * Licensed under the Apache License, Version 2.0 (the "License");
5*789431f2SAndroid Build Coastguard Worker  * you may not use this file except in compliance with the License.
6*789431f2SAndroid Build Coastguard Worker  * You may obtain a copy of the License at
7*789431f2SAndroid Build Coastguard Worker  *
8*789431f2SAndroid Build Coastguard Worker  *      http://www.apache.org/licenses/LICENSE-2.0
9*789431f2SAndroid Build Coastguard Worker  *
10*789431f2SAndroid Build Coastguard Worker  * Unless required by applicable law or agreed to in writing, software
11*789431f2SAndroid Build Coastguard Worker  * distributed under the License is distributed on an "AS IS" BASIS,
12*789431f2SAndroid Build Coastguard Worker  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13*789431f2SAndroid Build Coastguard Worker  * See the License for the specific language governing permissions and
14*789431f2SAndroid Build Coastguard Worker  * limitations under the License.
15*789431f2SAndroid Build Coastguard Worker  */
16*789431f2SAndroid Build Coastguard Worker 
17*789431f2SAndroid Build Coastguard Worker #include <keymaster/km_openssl/curve25519_key.h>
18*789431f2SAndroid Build Coastguard Worker #include <openssl/curve25519.h>
19*789431f2SAndroid Build Coastguard Worker #include <openssl/evp.h>
20*789431f2SAndroid Build Coastguard Worker 
21*789431f2SAndroid Build Coastguard Worker namespace keymaster {
22*789431f2SAndroid Build Coastguard Worker 
IsEd25519Key(const AuthorizationSet & hw_enforced,const AuthorizationSet & sw_enforced)23*789431f2SAndroid Build Coastguard Worker bool IsEd25519Key(const AuthorizationSet& hw_enforced, const AuthorizationSet& sw_enforced) {
24*789431f2SAndroid Build Coastguard Worker     AuthProxy proxy(hw_enforced, sw_enforced);
25*789431f2SAndroid Build Coastguard Worker     return (proxy.Contains(TAG_ALGORITHM, KM_ALGORITHM_EC) &&
26*789431f2SAndroid Build Coastguard Worker             proxy.Contains(TAG_EC_CURVE, KM_EC_CURVE_CURVE_25519) &&
27*789431f2SAndroid Build Coastguard Worker             (proxy.Contains(TAG_PURPOSE, KM_PURPOSE_SIGN) ||
28*789431f2SAndroid Build Coastguard Worker              proxy.Contains(TAG_PURPOSE, KM_PURPOSE_ATTEST_KEY)));
29*789431f2SAndroid Build Coastguard Worker }
30*789431f2SAndroid Build Coastguard Worker 
IsX25519Key(const AuthorizationSet & hw_enforced,const AuthorizationSet & sw_enforced)31*789431f2SAndroid Build Coastguard Worker bool IsX25519Key(const AuthorizationSet& hw_enforced, const AuthorizationSet& sw_enforced) {
32*789431f2SAndroid Build Coastguard Worker     AuthProxy proxy(hw_enforced, sw_enforced);
33*789431f2SAndroid Build Coastguard Worker     return (proxy.Contains(TAG_ALGORITHM, KM_ALGORITHM_EC) &&
34*789431f2SAndroid Build Coastguard Worker             proxy.Contains(TAG_EC_CURVE, KM_EC_CURVE_CURVE_25519) &&
35*789431f2SAndroid Build Coastguard Worker             proxy.Contains(TAG_PURPOSE, KM_PURPOSE_AGREE_KEY));
36*789431f2SAndroid Build Coastguard Worker }
37*789431f2SAndroid Build Coastguard Worker 
EvpToInternal(const EVP_PKEY * pkey)38*789431f2SAndroid Build Coastguard Worker bool Curve25519Key::EvpToInternal(const EVP_PKEY* pkey) {
39*789431f2SAndroid Build Coastguard Worker     return (EvpKeyToKeyMaterial(pkey, &key_material_) == KM_ERROR_OK);
40*789431f2SAndroid Build Coastguard Worker }
41*789431f2SAndroid Build Coastguard Worker 
InternalToEvp() const42*789431f2SAndroid Build Coastguard Worker EVP_PKEY_Ptr Curve25519Key::InternalToEvp() const {
43*789431f2SAndroid Build Coastguard Worker     const uint8_t* tmp = key_material().key_material;
44*789431f2SAndroid Build Coastguard Worker     return EVP_PKEY_Ptr(
45*789431f2SAndroid Build Coastguard Worker         d2i_PrivateKey(evp_key_type(), nullptr /* pkey */, &tmp, key_material().key_material_size));
46*789431f2SAndroid Build Coastguard Worker }
47*789431f2SAndroid Build Coastguard Worker 
48*789431f2SAndroid Build Coastguard Worker }  // namespace keymaster
49