evp.h 67.6 KB
Newer Older
R
Rich Salz 已提交
1
/*
2
 * Copyright 1995-2017 The OpenSSL Project Authors. All Rights Reserved.
3
 *
R
Rich Salz 已提交
4 5 6 7
 * Licensed under the OpenSSL license (the "License").  You may not use
 * this file except in compliance with the License.  You can obtain a copy
 * in the file LICENSE in the source distribution or at
 * https://www.openssl.org/source/license.html
8 9 10
 */

#ifndef HEADER_ENVELOPE_H
11 12
# define HEADER_ENVELOPE_H

R
Rich Salz 已提交
13
# include <openssl/opensslconf.h>
14 15
# include <openssl/ossl_typ.h>
# include <openssl/symhacks.h>
16
# include <openssl/bio.h>
17
# include <openssl/evperr.h>
18

19 20 21 22
# define EVP_MAX_MD_SIZE                 64/* longest known is SHA512 */
# define EVP_MAX_KEY_LENGTH              64
# define EVP_MAX_IV_LENGTH               16
# define EVP_MAX_BLOCK_LENGTH            32
23

24
# define PKCS5_SALT_LEN                  8
25
/* Default PKCS#5 iteration count */
26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43
# define PKCS5_DEFAULT_ITER              2048

# include <openssl/objects.h>

# define EVP_PK_RSA      0x0001
# define EVP_PK_DSA      0x0002
# define EVP_PK_DH       0x0004
# define EVP_PK_EC       0x0008
# define EVP_PKT_SIGN    0x0010
# define EVP_PKT_ENC     0x0020
# define EVP_PKT_EXCH    0x0040
# define EVP_PKS_RSA     0x0100
# define EVP_PKS_DSA     0x0200
# define EVP_PKS_EC      0x0400

# define EVP_PKEY_NONE   NID_undef
# define EVP_PKEY_RSA    NID_rsaEncryption
# define EVP_PKEY_RSA2   NID_rsa
D
Dr. Stephen Henson 已提交
44
# define EVP_PKEY_RSA_PSS NID_rsassaPss
45 46 47 48 49 50 51 52 53 54
# define EVP_PKEY_DSA    NID_dsa
# define EVP_PKEY_DSA1   NID_dsa_2
# define EVP_PKEY_DSA2   NID_dsaWithSHA
# define EVP_PKEY_DSA3   NID_dsaWithSHA1
# define EVP_PKEY_DSA4   NID_dsaWithSHA1_2
# define EVP_PKEY_DH     NID_dhKeyAgreement
# define EVP_PKEY_DHX    NID_dhpublicnumber
# define EVP_PKEY_EC     NID_X9_62_id_ecPublicKey
# define EVP_PKEY_HMAC   NID_hmac
# define EVP_PKEY_CMAC   NID_cmac
D
Dr. Stephen Henson 已提交
55
# define EVP_PKEY_TLS1_PRF NID_tls1_prf
A
Alessandro Ghedini 已提交
56
# define EVP_PKEY_HKDF   NID_hkdf
57
# define EVP_PKEY_POLY1305 NID_poly1305
58
# define EVP_PKEY_SIPHASH NID_siphash
59 60

#ifdef  __cplusplus
61 62 63
extern "C" {
#endif

64 65 66 67 68 69
# define EVP_PKEY_MO_SIGN        0x0001
# define EVP_PKEY_MO_VERIFY      0x0002
# define EVP_PKEY_MO_ENCRYPT     0x0004
# define EVP_PKEY_MO_DECRYPT     0x0008

# ifndef EVP_MD
70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104
EVP_MD *EVP_MD_meth_new(int md_type, int pkey_type);
EVP_MD *EVP_MD_meth_dup(const EVP_MD *md);
void EVP_MD_meth_free(EVP_MD *md);

int EVP_MD_meth_set_input_blocksize(EVP_MD *md, int blocksize);
int EVP_MD_meth_set_result_size(EVP_MD *md, int resultsize);
int EVP_MD_meth_set_app_datasize(EVP_MD *md, int datasize);
int EVP_MD_meth_set_flags(EVP_MD *md, unsigned long flags);
int EVP_MD_meth_set_init(EVP_MD *md, int (*init)(EVP_MD_CTX *ctx));
int EVP_MD_meth_set_update(EVP_MD *md, int (*update)(EVP_MD_CTX *ctx,
                                                     const void *data,
                                                     size_t count));
int EVP_MD_meth_set_final(EVP_MD *md, int (*final)(EVP_MD_CTX *ctx,
                                                   unsigned char *md));
int EVP_MD_meth_set_copy(EVP_MD *md, int (*copy)(EVP_MD_CTX *to,
                                                 const EVP_MD_CTX *from));
int EVP_MD_meth_set_cleanup(EVP_MD *md, int (*cleanup)(EVP_MD_CTX *ctx));
int EVP_MD_meth_set_ctrl(EVP_MD *md, int (*ctrl)(EVP_MD_CTX *ctx, int cmd,
                                                 int p1, void *p2));

int EVP_MD_meth_get_input_blocksize(const EVP_MD *md);
int EVP_MD_meth_get_result_size(const EVP_MD *md);
int EVP_MD_meth_get_app_datasize(const EVP_MD *md);
unsigned long EVP_MD_meth_get_flags(const EVP_MD *md);
int (*EVP_MD_meth_get_init(const EVP_MD *md))(EVP_MD_CTX *ctx);
int (*EVP_MD_meth_get_update(const EVP_MD *md))(EVP_MD_CTX *ctx,
                                                const void *data,
                                                size_t count);
int (*EVP_MD_meth_get_final(const EVP_MD *md))(EVP_MD_CTX *ctx,
                                               unsigned char *md);
int (*EVP_MD_meth_get_copy(const EVP_MD *md))(EVP_MD_CTX *to,
                                              const EVP_MD_CTX *from);
int (*EVP_MD_meth_get_cleanup(const EVP_MD *md))(EVP_MD_CTX *ctx);
int (*EVP_MD_meth_get_ctrl(const EVP_MD *md))(EVP_MD_CTX *ctx, int cmd,
                                              int p1, void *p2);
105

106
/* digest can only handle a single block */
107
#  define EVP_MD_FLAG_ONESHOT     0x0001
108

109 110
/* DigestAlgorithmIdentifier flags... */

111
#  define EVP_MD_FLAG_DIGALGID_MASK               0x0018
112 113 114

/* NULL or absent parameter accepted. Use NULL */

115
#  define EVP_MD_FLAG_DIGALGID_NULL               0x0000
116 117 118

/* NULL or absent parameter accepted. Use NULL for PKCS#1 otherwise absent */

119
#  define EVP_MD_FLAG_DIGALGID_ABSENT             0x0008
120 121 122

/* Custom handling via ctrl */

123
#  define EVP_MD_FLAG_DIGALGID_CUSTOM             0x0018
124

125
/* Note if suitable for use in FIPS mode */
126
#  define EVP_MD_FLAG_FIPS        0x0400
D
Dr. Stephen Henson 已提交
127

128 129
/* Digest ctrls */

130 131
#  define EVP_MD_CTRL_DIGALGID                    0x1
#  define EVP_MD_CTRL_MICALG                      0x2
132 133 134

/* Minimum Algorithm specific ctrl value */

135
#  define EVP_MD_CTRL_ALG_CTRL                    0x1000
136

137 138
# endif                         /* !EVP_MD */

139 140
/* values for EVP_MD_CTX flags */

141 142 143 144 145
# define EVP_MD_CTX_FLAG_ONESHOT         0x0001/* digest update will be
                                                * called once only */
# define EVP_MD_CTX_FLAG_CLEANED         0x0002/* context has already been
                                                * cleaned */
# define EVP_MD_CTX_FLAG_REUSE           0x0004/* Don't free up ctx->md_data
146
                                                * in EVP_MD_CTX_reset */
147 148 149
/*
 * FIPS and pad options are ignored in 1.0.0, definitions are here so we
 * don't accidentally reuse the values for other purposes.
150
 */
151

152 153
# define EVP_MD_CTX_FLAG_NON_FIPS_ALLOW  0x0008/* Allow use of non FIPS
                                                * digest in FIPS mode */
154

155 156
/*
 * The following PAD options are also currently ignored in 1.0.0, digest
157 158 159
 * parameters are handled through EVP_DigestSign*() and EVP_DigestVerify*()
 * instead.
 */
160 161 162 163
# define EVP_MD_CTX_FLAG_PAD_MASK        0xF0/* RSA mode to use */
# define EVP_MD_CTX_FLAG_PAD_PKCS1       0x00/* PKCS#1 v1.5 mode */
# define EVP_MD_CTX_FLAG_PAD_X931        0x10/* X9.31 mode */
# define EVP_MD_CTX_FLAG_PAD_PSS         0x20/* PSS mode */
164

165 166 167
# define EVP_MD_CTX_FLAG_NO_INIT         0x0100/* Don't initialize md_data */
/*
 * Some functions such as EVP_DigestSign only finalise copies of internal
168 169 170 171
 * contexts so additional data can be included after the finalisation call.
 * This is inefficient if this functionality is not required: it is disabled
 * if the following flag is set.
 */
172 173
# define EVP_MD_CTX_FLAG_FINALISE        0x0200

174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218
EVP_CIPHER *EVP_CIPHER_meth_new(int cipher_type, int block_size, int key_len);
EVP_CIPHER *EVP_CIPHER_meth_dup(const EVP_CIPHER *cipher);
void EVP_CIPHER_meth_free(EVP_CIPHER *cipher);

int EVP_CIPHER_meth_set_iv_length(EVP_CIPHER *cipher, int iv_len);
int EVP_CIPHER_meth_set_flags(EVP_CIPHER *cipher, unsigned long flags);
int EVP_CIPHER_meth_set_impl_ctx_size(EVP_CIPHER *cipher, int ctx_size);
int EVP_CIPHER_meth_set_init(EVP_CIPHER *cipher,
                             int (*init) (EVP_CIPHER_CTX *ctx,
                                          const unsigned char *key,
                                          const unsigned char *iv,
                                          int enc));
int EVP_CIPHER_meth_set_do_cipher(EVP_CIPHER *cipher,
                                  int (*do_cipher) (EVP_CIPHER_CTX *ctx,
                                                    unsigned char *out,
                                                    const unsigned char *in,
                                                    size_t inl));
int EVP_CIPHER_meth_set_cleanup(EVP_CIPHER *cipher,
                                int (*cleanup) (EVP_CIPHER_CTX *));
int EVP_CIPHER_meth_set_set_asn1_params(EVP_CIPHER *cipher,
                                        int (*set_asn1_parameters) (EVP_CIPHER_CTX *,
                                                                    ASN1_TYPE *));
int EVP_CIPHER_meth_set_get_asn1_params(EVP_CIPHER *cipher,
                                        int (*get_asn1_parameters) (EVP_CIPHER_CTX *,
                                                                    ASN1_TYPE *));
int EVP_CIPHER_meth_set_ctrl(EVP_CIPHER *cipher,
                             int (*ctrl) (EVP_CIPHER_CTX *, int type,
                                          int arg, void *ptr));

int (*EVP_CIPHER_meth_get_init(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *ctx,
                                                          const unsigned char *key,
                                                          const unsigned char *iv,
                                                          int enc);
int (*EVP_CIPHER_meth_get_do_cipher(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *ctx,
                                                               unsigned char *out,
                                                               const unsigned char *in,
                                                               size_t inl);
int (*EVP_CIPHER_meth_get_cleanup(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *);
int (*EVP_CIPHER_meth_get_set_asn1_params(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                                     ASN1_TYPE *);
int (*EVP_CIPHER_meth_get_get_asn1_params(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                               ASN1_TYPE *);
int (*EVP_CIPHER_meth_get_ctrl(const EVP_CIPHER *cipher))(EVP_CIPHER_CTX *,
                                                          int type, int arg,
                                                          void *ptr);
D
 
Dr. Stephen Henson 已提交
219 220 221

/* Values for cipher flags */

222
/* Modes for ciphers */
D
 
Dr. Stephen Henson 已提交
223

224 225 226 227 228 229 230 231 232 233 234 235
# define         EVP_CIPH_STREAM_CIPHER          0x0
# define         EVP_CIPH_ECB_MODE               0x1
# define         EVP_CIPH_CBC_MODE               0x2
# define         EVP_CIPH_CFB_MODE               0x3
# define         EVP_CIPH_OFB_MODE               0x4
# define         EVP_CIPH_CTR_MODE               0x5
# define         EVP_CIPH_GCM_MODE               0x6
# define         EVP_CIPH_CCM_MODE               0x7
# define         EVP_CIPH_XTS_MODE               0x10001
# define         EVP_CIPH_WRAP_MODE              0x10002
# define         EVP_CIPH_OCB_MODE               0x10003
# define         EVP_CIPH_MODE                   0xF0007
D
 
Dr. Stephen Henson 已提交
236
/* Set if variable length cipher */
237
# define         EVP_CIPH_VARIABLE_LENGTH        0x8
238
/* Set if the iv handling should be done by the cipher itself */
239
# define         EVP_CIPH_CUSTOM_IV              0x10
240
/* Set if the cipher's init() function should be called if key is NULL */
241
# define         EVP_CIPH_ALWAYS_CALL_INIT       0x20
D
Dr. Stephen Henson 已提交
242
/* Call ctrl() to init cipher parameters */
243
# define         EVP_CIPH_CTRL_INIT              0x40
D
Dr. Stephen Henson 已提交
244
/* Don't use standard key length function */
245
# define         EVP_CIPH_CUSTOM_KEY_LENGTH      0x80
246
/* Don't use standard block padding */
247
# define         EVP_CIPH_NO_PADDING             0x100
248
/* cipher handles random key generation */
249
# define         EVP_CIPH_RAND_KEY               0x200
250
/* cipher has its own additional copying logic */
251
# define         EVP_CIPH_CUSTOM_COPY            0x400
252
/* Allow use default ASN1 get/set iv */
253
# define         EVP_CIPH_FLAG_DEFAULT_ASN1      0x1000
254
/* Buffer length in bits not bytes: CFB1 mode only */
255
# define         EVP_CIPH_FLAG_LENGTH_BITS       0x2000
D
Dr. Stephen Henson 已提交
256
/* Note if suitable for use in FIPS mode */
257
# define         EVP_CIPH_FLAG_FIPS              0x4000
D
Dr. Stephen Henson 已提交
258
/* Allow non FIPS cipher in FIPS mode */
259 260 261
# define         EVP_CIPH_FLAG_NON_FIPS_ALLOW    0x8000
/*
 * Cipher handles any and all padding logic as well as finalisation.
262
 */
263 264 265
# define         EVP_CIPH_FLAG_CUSTOM_CIPHER     0x100000
# define         EVP_CIPH_FLAG_AEAD_CIPHER       0x200000
# define         EVP_CIPH_FLAG_TLS1_1_MULTIBLOCK 0x400000
266 267
/* Cipher can handle pipeline operations */
# define         EVP_CIPH_FLAG_PIPELINE          0X800000
D
 
Dr. Stephen Henson 已提交
268

269 270 271
/*
 * Cipher context flag to indicate we can handle wrap mode: if allowed in
 * older applications it could overflow buffers.
272 273
 */

274
# define         EVP_CIPHER_CTX_FLAG_WRAP_ALLOW  0x1
275

D
Dr. Stephen Henson 已提交
276 277
/* ctrl() values */

278 279 280 281 282 283 284 285 286
# define         EVP_CTRL_INIT                   0x0
# define         EVP_CTRL_SET_KEY_LENGTH         0x1
# define         EVP_CTRL_GET_RC2_KEY_BITS       0x2
# define         EVP_CTRL_SET_RC2_KEY_BITS       0x3
# define         EVP_CTRL_GET_RC5_ROUNDS         0x4
# define         EVP_CTRL_SET_RC5_ROUNDS         0x5
# define         EVP_CTRL_RAND_KEY               0x6
# define         EVP_CTRL_PBE_PRF_NID            0x7
# define         EVP_CTRL_COPY                   0x8
287 288 289
# define         EVP_CTRL_AEAD_SET_IVLEN         0x9
# define         EVP_CTRL_AEAD_GET_TAG           0x10
# define         EVP_CTRL_AEAD_SET_TAG           0x11
D
Dr. Stephen Henson 已提交
290
# define         EVP_CTRL_AEAD_SET_IV_FIXED      0x12
291 292 293
# define         EVP_CTRL_GCM_SET_IVLEN          EVP_CTRL_AEAD_SET_IVLEN
# define         EVP_CTRL_GCM_GET_TAG            EVP_CTRL_AEAD_GET_TAG
# define         EVP_CTRL_GCM_SET_TAG            EVP_CTRL_AEAD_SET_TAG
D
Dr. Stephen Henson 已提交
294
# define         EVP_CTRL_GCM_SET_IV_FIXED       EVP_CTRL_AEAD_SET_IV_FIXED
295
# define         EVP_CTRL_GCM_IV_GEN             0x13
296 297 298
# define         EVP_CTRL_CCM_SET_IVLEN          EVP_CTRL_AEAD_SET_IVLEN
# define         EVP_CTRL_CCM_GET_TAG            EVP_CTRL_AEAD_GET_TAG
# define         EVP_CTRL_CCM_SET_TAG            EVP_CTRL_AEAD_SET_TAG
D
Dr. Stephen Henson 已提交
299
# define         EVP_CTRL_CCM_SET_IV_FIXED       EVP_CTRL_AEAD_SET_IV_FIXED
300 301 302 303 304 305
# define         EVP_CTRL_CCM_SET_L              0x14
# define         EVP_CTRL_CCM_SET_MSGLEN         0x15
/*
 * AEAD cipher deduces payload length and returns number of bytes required to
 * store MAC and eventual padding. Subsequent call to EVP_Cipher even
 * appends/verifies MAC.
306
 */
307
# define         EVP_CTRL_AEAD_TLS1_AAD          0x16
308
/* Used by composite AEAD ciphers, no-op in GCM, CCM... */
309
# define         EVP_CTRL_AEAD_SET_MAC_KEY       0x17
310
/* Set the GCM invocation field, decrypt only */
311
# define         EVP_CTRL_GCM_SET_IV_INV         0x18
312

313 314 315 316
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_AAD  0x19
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_ENCRYPT      0x1a
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_DECRYPT      0x1b
# define         EVP_CTRL_TLS1_1_MULTIBLOCK_MAX_BUFSIZE  0x1c
317

318 319
# define         EVP_CTRL_SSL3_MASTER_SECRET             0x1d

320
/* EVP_CTRL_SET_SBOX takes the char * specifying S-boxes */
M
Matt Caswell 已提交
321
# define         EVP_CTRL_SET_SBOX                       0x1e
322 323 324 325
/*
 * EVP_CTRL_SBOX_USED takes a 'size_t' and 'char *', pointing at a
 * pre-allocated buffer with specified size
 */
M
Matt Caswell 已提交
326
# define         EVP_CTRL_SBOX_USED                      0x1f
327 328 329
/* EVP_CTRL_KEY_MESH takes 'size_t' number of bytes to mesh the key after,
 * 0 switches meshing off
 */
M
Matt Caswell 已提交
330
# define         EVP_CTRL_KEY_MESH                       0x20
331
/* EVP_CTRL_BLOCK_PADDING_MODE takes the padding mode */
M
Matt Caswell 已提交
332
# define         EVP_CTRL_BLOCK_PADDING_MODE             0x21
333

334 335 336 337 338 339 340
/* Set the output buffers to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_OUTPUT_BUFS       0x22
/* Set the input buffers to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_INPUT_BUFS        0x23
/* Set the input buffer lengths to use for a pipelined operation */
# define         EVP_CTRL_SET_PIPELINE_INPUT_LENS        0x24

341 342 343 344 345 346 347
/* Padding modes */
#define EVP_PADDING_PKCS7       1
#define EVP_PADDING_ISO7816_4   2
#define EVP_PADDING_ANSI923     3
#define EVP_PADDING_ISO10126    4
#define EVP_PADDING_ZERO        5

348 349 350
/* RFC 5246 defines additional data to be 13 bytes in length */
# define         EVP_AEAD_TLS1_AAD_LEN           13

351
typedef struct {
352 353 354 355
    unsigned char *out;
    const unsigned char *inp;
    size_t len;
    unsigned int interleave;
356 357
} EVP_CTRL_TLS1_1_MULTIBLOCK_PARAM;

358 359
/* GCM TLS constants */
/* Length of fixed part of IV derived from PRF */
360
# define EVP_GCM_TLS_FIXED_IV_LEN                        4
361
/* Length of explicit part of IV part of TLS records */
362
# define EVP_GCM_TLS_EXPLICIT_IV_LEN                     8
363
/* Length of tag for TLS */
364 365
# define EVP_GCM_TLS_TAG_LEN                             16

D
Dr. Stephen Henson 已提交
366 367 368 369 370
/* CCM TLS constants */
/* Length of fixed part of IV derived from PRF */
# define EVP_CCM_TLS_FIXED_IV_LEN                        4
/* Length of explicit part of IV part of TLS records */
# define EVP_CCM_TLS_EXPLICIT_IV_LEN                     8
371 372 373 374 375 376
/* Total length of CCM IV length for TLS */
# define EVP_CCM_TLS_IV_LEN                              12
/* Length of tag for TLS */
# define EVP_CCM_TLS_TAG_LEN                             16
/* Length of CCM8 tag for TLS */
# define EVP_CCM8_TLS_TAG_LEN                            8
D
Dr. Stephen Henson 已提交
377

378 379 380
/* Length of tag for TLS */
# define EVP_CHACHAPOLY_TLS_TAG_LEN                      16

381 382 383 384 385 386
typedef struct evp_cipher_info_st {
    const EVP_CIPHER *cipher;
    unsigned char iv[EVP_MAX_IV_LENGTH];
} EVP_CIPHER_INFO;


387
/* Password based encryption function */
388 389 390 391 392 393 394 395 396
typedef int (EVP_PBE_KEYGEN) (EVP_CIPHER_CTX *ctx, const char *pass,
                              int passlen, ASN1_TYPE *param,
                              const EVP_CIPHER *cipher, const EVP_MD *md,
                              int en_de);

# ifndef OPENSSL_NO_RSA
#  define EVP_PKEY_assign_RSA(pkey,rsa) EVP_PKEY_assign((pkey),EVP_PKEY_RSA,\
                                        (char *)(rsa))
# endif
397

398 399 400 401
# ifndef OPENSSL_NO_DSA
#  define EVP_PKEY_assign_DSA(pkey,dsa) EVP_PKEY_assign((pkey),EVP_PKEY_DSA,\
                                        (char *)(dsa))
# endif
402

403 404 405 406
# ifndef OPENSSL_NO_DH
#  define EVP_PKEY_assign_DH(pkey,dh) EVP_PKEY_assign((pkey),EVP_PKEY_DH,\
                                        (char *)(dh))
# endif
407

408 409
# ifndef OPENSSL_NO_EC
#  define EVP_PKEY_assign_EC_KEY(pkey,eckey) EVP_PKEY_assign((pkey),EVP_PKEY_EC,\
410
                                        (char *)(eckey))
411
# endif
412 413 414 415
# ifndef OPENSSL_NO_SIPHASH
#  define EVP_PKEY_assign_SIPHASH(pkey,shkey) EVP_PKEY_assign((pkey),EVP_PKEY_SIPHASH,\
                                        (char *)(shkey))
# endif
B
Bodo Möller 已提交
416

417 418 419 420 421
# ifndef OPENSSL_NO_POLY1305
#  define EVP_PKEY_assign_POLY1305(pkey,polykey) EVP_PKEY_assign((pkey),EVP_PKEY_POLY1305,\
                                        (char *)(polykey))
# endif

422
/* Add some extra combinations */
423 424 425 426
# define EVP_get_digestbynid(a) EVP_get_digestbyname(OBJ_nid2sn(a))
# define EVP_get_digestbyobj(a) EVP_get_digestbynid(OBJ_obj2nid(a))
# define EVP_get_cipherbynid(a) EVP_get_cipherbyname(OBJ_nid2sn(a))
# define EVP_get_cipherbyobj(a) EVP_get_cipherbynid(OBJ_obj2nid(a))
427

N
Nils Larsch 已提交
428
int EVP_MD_type(const EVP_MD *md);
429 430 431
# define EVP_MD_nid(e)                   EVP_MD_type(e)
# define EVP_MD_name(e)                  OBJ_nid2sn(EVP_MD_nid(e))
int EVP_MD_pkey_type(const EVP_MD *md);
432 433
int EVP_MD_size(const EVP_MD *md);
int EVP_MD_block_size(const EVP_MD *md);
D
Dr. Stephen Henson 已提交
434
unsigned long EVP_MD_flags(const EVP_MD *md);
435

N
Nils Larsch 已提交
436
const EVP_MD *EVP_MD_CTX_md(const EVP_MD_CTX *ctx);
437 438 439 440 441
int (*EVP_MD_CTX_update_fn(EVP_MD_CTX *ctx))(EVP_MD_CTX *ctx,
                                             const void *data, size_t count);
void EVP_MD_CTX_set_update_fn(EVP_MD_CTX *ctx,
                              int (*update) (EVP_MD_CTX *ctx,
                                             const void *data, size_t count));
442 443 444
# define EVP_MD_CTX_size(e)              EVP_MD_size(EVP_MD_CTX_md(e))
# define EVP_MD_CTX_block_size(e)        EVP_MD_block_size(EVP_MD_CTX_md(e))
# define EVP_MD_CTX_type(e)              EVP_MD_type(EVP_MD_CTX_md(e))
445 446
EVP_PKEY_CTX *EVP_MD_CTX_pkey_ctx(const EVP_MD_CTX *ctx);
void *EVP_MD_CTX_md_data(const EVP_MD_CTX *ctx);
447

N
Nils Larsch 已提交
448
int EVP_CIPHER_nid(const EVP_CIPHER *cipher);
449
# define EVP_CIPHER_name(e)              OBJ_nid2sn(EVP_CIPHER_nid(e))
450
int EVP_CIPHER_block_size(const EVP_CIPHER *cipher);
451
int EVP_CIPHER_impl_ctx_size(const EVP_CIPHER *cipher);
452 453
int EVP_CIPHER_key_length(const EVP_CIPHER *cipher);
int EVP_CIPHER_iv_length(const EVP_CIPHER *cipher);
N
Nils Larsch 已提交
454
unsigned long EVP_CIPHER_flags(const EVP_CIPHER *cipher);
455
# define EVP_CIPHER_mode(e)              (EVP_CIPHER_flags(e) & EVP_CIPH_MODE)
N
Nils Larsch 已提交
456

457
const EVP_CIPHER *EVP_CIPHER_CTX_cipher(const EVP_CIPHER_CTX *ctx);
458
int EVP_CIPHER_CTX_encrypting(const EVP_CIPHER_CTX *ctx);
N
Nils Larsch 已提交
459
int EVP_CIPHER_CTX_nid(const EVP_CIPHER_CTX *ctx);
460 461 462
int EVP_CIPHER_CTX_block_size(const EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_key_length(const EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_iv_length(const EVP_CIPHER_CTX *ctx);
463 464 465 466 467 468
const unsigned char *EVP_CIPHER_CTX_iv(const EVP_CIPHER_CTX *ctx);
const unsigned char *EVP_CIPHER_CTX_original_iv(const EVP_CIPHER_CTX *ctx);
unsigned char *EVP_CIPHER_CTX_iv_noconst(EVP_CIPHER_CTX *ctx);
unsigned char *EVP_CIPHER_CTX_buf_noconst(EVP_CIPHER_CTX *ctx);
int EVP_CIPHER_CTX_num(const EVP_CIPHER_CTX *ctx);
void EVP_CIPHER_CTX_set_num(EVP_CIPHER_CTX *ctx, int num);
469
int EVP_CIPHER_CTX_copy(EVP_CIPHER_CTX *out, const EVP_CIPHER_CTX *in);
470
void *EVP_CIPHER_CTX_get_app_data(const EVP_CIPHER_CTX *ctx);
N
Nils Larsch 已提交
471
void EVP_CIPHER_CTX_set_app_data(EVP_CIPHER_CTX *ctx, void *data);
472
void *EVP_CIPHER_CTX_get_cipher_data(const EVP_CIPHER_CTX *ctx);
473
void *EVP_CIPHER_CTX_set_cipher_data(EVP_CIPHER_CTX *ctx, void *cipher_data);
474
# define EVP_CIPHER_CTX_type(c)         EVP_CIPHER_type(EVP_CIPHER_CTX_cipher(c))
475 476 477
# if OPENSSL_API_COMPAT < 0x10100000L
#  define EVP_CIPHER_CTX_flags(c)       EVP_CIPHER_flags(EVP_CIPHER_CTX_cipher(c))
# endif
478
# define EVP_CIPHER_CTX_mode(c)         EVP_CIPHER_mode(EVP_CIPHER_CTX_cipher(c))
479

480 481
# define EVP_ENCODE_LENGTH(l)    ((((l)+2)/3*4)+((l)/48+1)*2+80)
# define EVP_DECODE_LENGTH(l)    (((l)+3)/4*3+80)
482 483 484 485 486 487 488 489 490 491 492 493 494 495 496

# define EVP_SignInit_ex(a,b,c)          EVP_DigestInit_ex(a,b,c)
# define EVP_SignInit(a,b)               EVP_DigestInit(a,b)
# define EVP_SignUpdate(a,b,c)           EVP_DigestUpdate(a,b,c)
# define EVP_VerifyInit_ex(a,b,c)        EVP_DigestInit_ex(a,b,c)
# define EVP_VerifyInit(a,b)             EVP_DigestInit(a,b)
# define EVP_VerifyUpdate(a,b,c)         EVP_DigestUpdate(a,b,c)
# define EVP_OpenUpdate(a,b,c,d,e)       EVP_DecryptUpdate(a,b,c,d,e)
# define EVP_SealUpdate(a,b,c,d,e)       EVP_EncryptUpdate(a,b,c,d,e)
# define EVP_DigestSignUpdate(a,b,c)     EVP_DigestUpdate(a,b,c)
# define EVP_DigestVerifyUpdate(a,b,c)   EVP_DigestUpdate(a,b,c)

# ifdef CONST_STRICT
void BIO_set_md(BIO *, const EVP_MD *md);
# else
497
#  define BIO_set_md(b,md)          BIO_ctrl(b,BIO_C_SET_MD,0,(char *)(md))
498
# endif
499 500 501 502 503 504 505 506
# define BIO_get_md(b,mdp)          BIO_ctrl(b,BIO_C_GET_MD,0,(char *)(mdp))
# define BIO_get_md_ctx(b,mdcp)     BIO_ctrl(b,BIO_C_GET_MD_CTX,0, \
                                             (char *)(mdcp))
# define BIO_set_md_ctx(b,mdcp)     BIO_ctrl(b,BIO_C_SET_MD_CTX,0, \
                                             (char *)(mdcp))
# define BIO_get_cipher_status(b)   BIO_ctrl(b,BIO_C_GET_CIPHER_STATUS,0,NULL)
# define BIO_get_cipher_ctx(b,c_pp) BIO_ctrl(b,BIO_C_GET_CIPHER_CTX,0, \
                                             (char *)(c_pp))
507

508
/*__owur*/ int EVP_Cipher(EVP_CIPHER_CTX *c,
509 510 511 512 513 514 515 516 517 518 519 520
                          unsigned char *out,
                          const unsigned char *in, unsigned int inl);

# define EVP_add_cipher_alias(n,alias) \
        OBJ_NAME_add((alias),OBJ_NAME_TYPE_CIPHER_METH|OBJ_NAME_ALIAS,(n))
# define EVP_add_digest_alias(n,alias) \
        OBJ_NAME_add((alias),OBJ_NAME_TYPE_MD_METH|OBJ_NAME_ALIAS,(n))
# define EVP_delete_cipher_alias(alias) \
        OBJ_NAME_remove(alias,OBJ_NAME_TYPE_CIPHER_METH|OBJ_NAME_ALIAS);
# define EVP_delete_digest_alias(alias) \
        OBJ_NAME_remove(alias,OBJ_NAME_TYPE_MD_METH|OBJ_NAME_ALIAS);

D
Dr. Stephen Henson 已提交
521
int EVP_MD_CTX_ctrl(EVP_MD_CTX *ctx, int cmd, int p1, void *p2);
522 523 524
EVP_MD_CTX *EVP_MD_CTX_new(void);
int EVP_MD_CTX_reset(EVP_MD_CTX *ctx);
void EVP_MD_CTX_free(EVP_MD_CTX *ctx);
525 526 527
# define EVP_MD_CTX_create()     EVP_MD_CTX_new()
# define EVP_MD_CTX_init(ctx)    EVP_MD_CTX_reset((ctx))
# define EVP_MD_CTX_destroy(ctx) EVP_MD_CTX_free((ctx))
528
__owur int EVP_MD_CTX_copy_ex(EVP_MD_CTX *out, const EVP_MD_CTX *in);
529 530 531
void EVP_MD_CTX_set_flags(EVP_MD_CTX *ctx, int flags);
void EVP_MD_CTX_clear_flags(EVP_MD_CTX *ctx, int flags);
int EVP_MD_CTX_test_flags(const EVP_MD_CTX *ctx, int flags);
532
__owur int EVP_DigestInit_ex(EVP_MD_CTX *ctx, const EVP_MD *type,
533
                                 ENGINE *impl);
534
__owur int EVP_DigestUpdate(EVP_MD_CTX *ctx, const void *d,
535
                                size_t cnt);
536
__owur int EVP_DigestFinal_ex(EVP_MD_CTX *ctx, unsigned char *md,
537
                                  unsigned int *s);
538
__owur int EVP_Digest(const void *data, size_t count,
539 540 541
                          unsigned char *md, unsigned int *size,
                          const EVP_MD *type, ENGINE *impl);

542 543
__owur int EVP_MD_CTX_copy(EVP_MD_CTX *out, const EVP_MD_CTX *in);
__owur int EVP_DigestInit(EVP_MD_CTX *ctx, const EVP_MD *type);
544 545 546
__owur int EVP_DigestFinal(EVP_MD_CTX *ctx, unsigned char *md,
                           unsigned int *s);

547
#ifndef OPENSSL_NO_UI
548 549 550 551 552
int EVP_read_pw_string(char *buf, int length, const char *prompt, int verify);
int EVP_read_pw_string_min(char *buf, int minlen, int maxlen,
                           const char *prompt, int verify);
void EVP_set_pw_prompt(const char *prompt);
char *EVP_get_pw_prompt(void);
553
#endif
554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606

__owur int EVP_BytesToKey(const EVP_CIPHER *type, const EVP_MD *md,
                          const unsigned char *salt,
                          const unsigned char *data, int datal, int count,
                          unsigned char *key, unsigned char *iv);

void EVP_CIPHER_CTX_set_flags(EVP_CIPHER_CTX *ctx, int flags);
void EVP_CIPHER_CTX_clear_flags(EVP_CIPHER_CTX *ctx, int flags);
int EVP_CIPHER_CTX_test_flags(const EVP_CIPHER_CTX *ctx, int flags);

__owur int EVP_EncryptInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                           const unsigned char *key, const unsigned char *iv);
/*__owur*/ int EVP_EncryptInit_ex(EVP_CIPHER_CTX *ctx,
                                  const EVP_CIPHER *cipher, ENGINE *impl,
                                  const unsigned char *key,
                                  const unsigned char *iv);
/*__owur*/ int EVP_EncryptUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                 int *outl, const unsigned char *in, int inl);
/*__owur*/ int EVP_EncryptFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                   int *outl);
/*__owur*/ int EVP_EncryptFinal(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                int *outl);

__owur int EVP_DecryptInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                           const unsigned char *key, const unsigned char *iv);
/*__owur*/ int EVP_DecryptInit_ex(EVP_CIPHER_CTX *ctx,
                                  const EVP_CIPHER *cipher, ENGINE *impl,
                                  const unsigned char *key,
                                  const unsigned char *iv);
/*__owur*/ int EVP_DecryptUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                                 int *outl, const unsigned char *in, int inl);
__owur int EVP_DecryptFinal(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                            int *outl);
/*__owur*/ int EVP_DecryptFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                                   int *outl);

__owur int EVP_CipherInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
                          const unsigned char *key, const unsigned char *iv,
                          int enc);
/*__owur*/ int EVP_CipherInit_ex(EVP_CIPHER_CTX *ctx,
                                 const EVP_CIPHER *cipher, ENGINE *impl,
                                 const unsigned char *key,
                                 const unsigned char *iv, int enc);
__owur int EVP_CipherUpdate(EVP_CIPHER_CTX *ctx, unsigned char *out,
                            int *outl, const unsigned char *in, int inl);
__owur int EVP_CipherFinal(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                           int *outl);
__owur int EVP_CipherFinal_ex(EVP_CIPHER_CTX *ctx, unsigned char *outm,
                              int *outl);

__owur int EVP_SignFinal(EVP_MD_CTX *ctx, unsigned char *md, unsigned int *s,
                         EVP_PKEY *pkey);

607 608 609 610
__owur int EVP_DigestSign(EVP_MD_CTX *ctx, unsigned char *sigret,
                          size_t *siglen, const unsigned char *tbs,
                          size_t tbslen);

611 612 613
__owur int EVP_VerifyFinal(EVP_MD_CTX *ctx, const unsigned char *sigbuf,
                           unsigned int siglen, EVP_PKEY *pkey);

614 615 616 617
__owur int EVP_DigestVerify(EVP_MD_CTX *ctx, const unsigned char *sigret,
                            size_t siglen, const unsigned char *tbs,
                            size_t tbslen);

618 619 620 621 622 623 624 625 626 627 628 629
/*__owur*/ int EVP_DigestSignInit(EVP_MD_CTX *ctx, EVP_PKEY_CTX **pctx,
                                  const EVP_MD *type, ENGINE *e,
                                  EVP_PKEY *pkey);
__owur int EVP_DigestSignFinal(EVP_MD_CTX *ctx, unsigned char *sigret,
                               size_t *siglen);

__owur int EVP_DigestVerifyInit(EVP_MD_CTX *ctx, EVP_PKEY_CTX **pctx,
                                const EVP_MD *type, ENGINE *e,
                                EVP_PKEY *pkey);
__owur int EVP_DigestVerifyFinal(EVP_MD_CTX *ctx, const unsigned char *sig,
                                 size_t siglen);

D
Dr. Stephen Henson 已提交
630
# ifndef OPENSSL_NO_RSA
631 632 633 634 635 636 637 638 639
__owur int EVP_OpenInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *type,
                        const unsigned char *ek, int ekl,
                        const unsigned char *iv, EVP_PKEY *priv);
__owur int EVP_OpenFinal(EVP_CIPHER_CTX *ctx, unsigned char *out, int *outl);

__owur int EVP_SealInit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *type,
                        unsigned char **ek, int *ekl, unsigned char *iv,
                        EVP_PKEY **pubk, int npubk);
__owur int EVP_SealFinal(EVP_CIPHER_CTX *ctx, unsigned char *out, int *outl);
D
Dr. Stephen Henson 已提交
640
# endif
641

R
Richard Levitte 已提交
642 643
EVP_ENCODE_CTX *EVP_ENCODE_CTX_new(void);
void EVP_ENCODE_CTX_free(EVP_ENCODE_CTX *ctx);
J
Jakub Zelenka 已提交
644
int EVP_ENCODE_CTX_copy(EVP_ENCODE_CTX *dctx, EVP_ENCODE_CTX *sctx);
R
Richard Levitte 已提交
645
int EVP_ENCODE_CTX_num(EVP_ENCODE_CTX *ctx);
646
void EVP_EncodeInit(EVP_ENCODE_CTX *ctx);
647 648
int EVP_EncodeUpdate(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl,
                     const unsigned char *in, int inl);
649 650 651 652 653 654 655 656 657
void EVP_EncodeFinal(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl);
int EVP_EncodeBlock(unsigned char *t, const unsigned char *f, int n);

void EVP_DecodeInit(EVP_ENCODE_CTX *ctx);
int EVP_DecodeUpdate(EVP_ENCODE_CTX *ctx, unsigned char *out, int *outl,
                     const unsigned char *in, int inl);
int EVP_DecodeFinal(EVP_ENCODE_CTX *ctx, unsigned
                    char *out, int *outl);
int EVP_DecodeBlock(unsigned char *t, const unsigned char *f, int n);
658

659
# if OPENSSL_API_COMPAT < 0x10100000L
R
Richard Levitte 已提交
660 661
#  define EVP_CIPHER_CTX_init(c)      EVP_CIPHER_CTX_reset(c)
#  define EVP_CIPHER_CTX_cleanup(c)   EVP_CIPHER_CTX_reset(c)
662
# endif
663
EVP_CIPHER_CTX *EVP_CIPHER_CTX_new(void);
664 665
int EVP_CIPHER_CTX_reset(EVP_CIPHER_CTX *c);
void EVP_CIPHER_CTX_free(EVP_CIPHER_CTX *c);
666
int EVP_CIPHER_CTX_set_key_length(EVP_CIPHER_CTX *x, int keylen);
667
int EVP_CIPHER_CTX_set_padding(EVP_CIPHER_CTX *c, int pad);
D
 
Dr. Stephen Henson 已提交
668
int EVP_CIPHER_CTX_ctrl(EVP_CIPHER_CTX *ctx, int type, int arg, void *ptr);
669
int EVP_CIPHER_CTX_rand_key(EVP_CIPHER_CTX *ctx, unsigned char *key);
670

671 672 673 674
const BIO_METHOD *BIO_f_md(void);
const BIO_METHOD *BIO_f_base64(void);
const BIO_METHOD *BIO_f_cipher(void);
const BIO_METHOD *BIO_f_reliable(void);
675 676
__owur int BIO_set_cipher(BIO *b, const EVP_CIPHER *c, const unsigned char *k,
                          const unsigned char *i, int enc);
677

D
 
Dr. Stephen Henson 已提交
678
const EVP_MD *EVP_md_null(void);
679
# ifndef OPENSSL_NO_MD2
D
 
Dr. Stephen Henson 已提交
680
const EVP_MD *EVP_md2(void);
681 682
# endif
# ifndef OPENSSL_NO_MD4
D
 
Dr. Stephen Henson 已提交
683
const EVP_MD *EVP_md4(void);
684 685
# endif
# ifndef OPENSSL_NO_MD5
D
 
Dr. Stephen Henson 已提交
686
const EVP_MD *EVP_md5(void);
D
Dr. Stephen Henson 已提交
687
const EVP_MD *EVP_md5_sha1(void);
688
# endif
B
Bill Cox 已提交
689
# ifndef OPENSSL_NO_BLAKE2
K
Kurt Roeckx 已提交
690 691
const EVP_MD *EVP_blake2b512(void);
const EVP_MD *EVP_blake2s256(void);
B
Bill Cox 已提交
692
# endif
D
 
Dr. Stephen Henson 已提交
693
const EVP_MD *EVP_sha1(void);
694 695 696 697
const EVP_MD *EVP_sha224(void);
const EVP_MD *EVP_sha256(void);
const EVP_MD *EVP_sha384(void);
const EVP_MD *EVP_sha512(void);
698
# ifndef OPENSSL_NO_MDC2
D
 
Dr. Stephen Henson 已提交
699
const EVP_MD *EVP_mdc2(void);
700 701
# endif
# ifndef OPENSSL_NO_RMD160
D
 
Dr. Stephen Henson 已提交
702
const EVP_MD *EVP_ripemd160(void);
703 704
# endif
# ifndef OPENSSL_NO_WHIRLPOOL
705
const EVP_MD *EVP_whirlpool(void);
706 707 708
# endif
const EVP_CIPHER *EVP_enc_null(void); /* does nothing :-) */
# ifndef OPENSSL_NO_DES
D
 
Dr. Stephen Henson 已提交
709 710 711
const EVP_CIPHER *EVP_des_ecb(void);
const EVP_CIPHER *EVP_des_ede(void);
const EVP_CIPHER *EVP_des_ede3(void);
L
Lutz Jänicke 已提交
712 713
const EVP_CIPHER *EVP_des_ede_ecb(void);
const EVP_CIPHER *EVP_des_ede3_ecb(void);
714
const EVP_CIPHER *EVP_des_cfb64(void);
715
#  define EVP_des_cfb EVP_des_cfb64
716 717 718
const EVP_CIPHER *EVP_des_cfb1(void);
const EVP_CIPHER *EVP_des_cfb8(void);
const EVP_CIPHER *EVP_des_ede_cfb64(void);
719
#  define EVP_des_ede_cfb EVP_des_ede_cfb64
720
const EVP_CIPHER *EVP_des_ede3_cfb64(void);
721
#  define EVP_des_ede3_cfb EVP_des_ede3_cfb64
722 723
const EVP_CIPHER *EVP_des_ede3_cfb1(void);
const EVP_CIPHER *EVP_des_ede3_cfb8(void);
D
 
Dr. Stephen Henson 已提交
724 725 726 727 728 729 730
const EVP_CIPHER *EVP_des_ofb(void);
const EVP_CIPHER *EVP_des_ede_ofb(void);
const EVP_CIPHER *EVP_des_ede3_ofb(void);
const EVP_CIPHER *EVP_des_cbc(void);
const EVP_CIPHER *EVP_des_ede_cbc(void);
const EVP_CIPHER *EVP_des_ede3_cbc(void);
const EVP_CIPHER *EVP_desx_cbc(void);
731
const EVP_CIPHER *EVP_des_ede3_wrap(void);
732 733 734 735 736
/*
 * This should now be supported through the dev_crypto ENGINE. But also, why
 * are rc4 and md5 declarations made here inside a "NO_DES" precompiler
 * branch?
 */
737
# endif
738
# ifndef OPENSSL_NO_RC4
D
 
Dr. Stephen Henson 已提交
739 740
const EVP_CIPHER *EVP_rc4(void);
const EVP_CIPHER *EVP_rc4_40(void);
741
#  ifndef OPENSSL_NO_MD5
742
const EVP_CIPHER *EVP_rc4_hmac_md5(void);
743 744 745
#  endif
# endif
# ifndef OPENSSL_NO_IDEA
D
 
Dr. Stephen Henson 已提交
746
const EVP_CIPHER *EVP_idea_ecb(void);
747
const EVP_CIPHER *EVP_idea_cfb64(void);
748
#  define EVP_idea_cfb EVP_idea_cfb64
D
 
Dr. Stephen Henson 已提交
749 750
const EVP_CIPHER *EVP_idea_ofb(void);
const EVP_CIPHER *EVP_idea_cbc(void);
751 752
# endif
# ifndef OPENSSL_NO_RC2
D
 
Dr. Stephen Henson 已提交
753 754 755 756
const EVP_CIPHER *EVP_rc2_ecb(void);
const EVP_CIPHER *EVP_rc2_cbc(void);
const EVP_CIPHER *EVP_rc2_40_cbc(void);
const EVP_CIPHER *EVP_rc2_64_cbc(void);
757
const EVP_CIPHER *EVP_rc2_cfb64(void);
758
#  define EVP_rc2_cfb EVP_rc2_cfb64
D
 
Dr. Stephen Henson 已提交
759
const EVP_CIPHER *EVP_rc2_ofb(void);
760 761
# endif
# ifndef OPENSSL_NO_BF
D
 
Dr. Stephen Henson 已提交
762 763
const EVP_CIPHER *EVP_bf_ecb(void);
const EVP_CIPHER *EVP_bf_cbc(void);
764
const EVP_CIPHER *EVP_bf_cfb64(void);
765
#  define EVP_bf_cfb EVP_bf_cfb64
D
 
Dr. Stephen Henson 已提交
766
const EVP_CIPHER *EVP_bf_ofb(void);
767 768
# endif
# ifndef OPENSSL_NO_CAST
D
 
Dr. Stephen Henson 已提交
769 770
const EVP_CIPHER *EVP_cast5_ecb(void);
const EVP_CIPHER *EVP_cast5_cbc(void);
771
const EVP_CIPHER *EVP_cast5_cfb64(void);
772
#  define EVP_cast5_cfb EVP_cast5_cfb64
D
 
Dr. Stephen Henson 已提交
773
const EVP_CIPHER *EVP_cast5_ofb(void);
774 775
# endif
# ifndef OPENSSL_NO_RC5
D
 
Dr. Stephen Henson 已提交
776 777
const EVP_CIPHER *EVP_rc5_32_12_16_cbc(void);
const EVP_CIPHER *EVP_rc5_32_12_16_ecb(void);
778
const EVP_CIPHER *EVP_rc5_32_12_16_cfb64(void);
779
#  define EVP_rc5_32_12_16_cfb EVP_rc5_32_12_16_cfb64
D
 
Dr. Stephen Henson 已提交
780
const EVP_CIPHER *EVP_rc5_32_12_16_ofb(void);
781
# endif
D
 
Dr. Stephen Henson 已提交
782 783
const EVP_CIPHER *EVP_aes_128_ecb(void);
const EVP_CIPHER *EVP_aes_128_cbc(void);
784 785 786
const EVP_CIPHER *EVP_aes_128_cfb1(void);
const EVP_CIPHER *EVP_aes_128_cfb8(void);
const EVP_CIPHER *EVP_aes_128_cfb128(void);
M
Matt Caswell 已提交
787
# define EVP_aes_128_cfb EVP_aes_128_cfb128
788 789
const EVP_CIPHER *EVP_aes_128_ofb(void);
const EVP_CIPHER *EVP_aes_128_ctr(void);
790
const EVP_CIPHER *EVP_aes_128_ccm(void);
791
const EVP_CIPHER *EVP_aes_128_gcm(void);
792
const EVP_CIPHER *EVP_aes_128_xts(void);
793
const EVP_CIPHER *EVP_aes_128_wrap(void);
D
Dr. Stephen Henson 已提交
794
const EVP_CIPHER *EVP_aes_128_wrap_pad(void);
M
Matt Caswell 已提交
795
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
796
const EVP_CIPHER *EVP_aes_128_ocb(void);
M
Matt Caswell 已提交
797
# endif
D
 
Dr. Stephen Henson 已提交
798 799
const EVP_CIPHER *EVP_aes_192_ecb(void);
const EVP_CIPHER *EVP_aes_192_cbc(void);
800 801 802
const EVP_CIPHER *EVP_aes_192_cfb1(void);
const EVP_CIPHER *EVP_aes_192_cfb8(void);
const EVP_CIPHER *EVP_aes_192_cfb128(void);
M
Matt Caswell 已提交
803
# define EVP_aes_192_cfb EVP_aes_192_cfb128
804 805
const EVP_CIPHER *EVP_aes_192_ofb(void);
const EVP_CIPHER *EVP_aes_192_ctr(void);
806
const EVP_CIPHER *EVP_aes_192_ccm(void);
807
const EVP_CIPHER *EVP_aes_192_gcm(void);
808
const EVP_CIPHER *EVP_aes_192_wrap(void);
D
Dr. Stephen Henson 已提交
809
const EVP_CIPHER *EVP_aes_192_wrap_pad(void);
M
Matt Caswell 已提交
810
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
811
const EVP_CIPHER *EVP_aes_192_ocb(void);
M
Matt Caswell 已提交
812
# endif
D
 
Dr. Stephen Henson 已提交
813 814
const EVP_CIPHER *EVP_aes_256_ecb(void);
const EVP_CIPHER *EVP_aes_256_cbc(void);
815 816 817
const EVP_CIPHER *EVP_aes_256_cfb1(void);
const EVP_CIPHER *EVP_aes_256_cfb8(void);
const EVP_CIPHER *EVP_aes_256_cfb128(void);
M
Matt Caswell 已提交
818
# define EVP_aes_256_cfb EVP_aes_256_cfb128
819 820
const EVP_CIPHER *EVP_aes_256_ofb(void);
const EVP_CIPHER *EVP_aes_256_ctr(void);
821
const EVP_CIPHER *EVP_aes_256_ccm(void);
822
const EVP_CIPHER *EVP_aes_256_gcm(void);
823
const EVP_CIPHER *EVP_aes_256_xts(void);
824
const EVP_CIPHER *EVP_aes_256_wrap(void);
D
Dr. Stephen Henson 已提交
825
const EVP_CIPHER *EVP_aes_256_wrap_pad(void);
M
Matt Caswell 已提交
826
# ifndef OPENSSL_NO_OCB
M
Matt Caswell 已提交
827
const EVP_CIPHER *EVP_aes_256_ocb(void);
M
Matt Caswell 已提交
828
# endif
829 830
const EVP_CIPHER *EVP_aes_128_cbc_hmac_sha1(void);
const EVP_CIPHER *EVP_aes_256_cbc_hmac_sha1(void);
B
Ben Laurie 已提交
831 832
const EVP_CIPHER *EVP_aes_128_cbc_hmac_sha256(void);
const EVP_CIPHER *EVP_aes_256_cbc_hmac_sha256(void);
833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858
# ifndef OPENSSL_NO_ARIA
const EVP_CIPHER *EVP_aria_128_ecb(void);
const EVP_CIPHER *EVP_aria_128_cbc(void);
const EVP_CIPHER *EVP_aria_128_cfb1(void);
const EVP_CIPHER *EVP_aria_128_cfb8(void);
const EVP_CIPHER *EVP_aria_128_cfb128(void);
#  define EVP_aria_128_cfb EVP_aria_128_cfb128
const EVP_CIPHER *EVP_aria_128_ctr(void);
const EVP_CIPHER *EVP_aria_128_ofb(void);
const EVP_CIPHER *EVP_aria_192_ecb(void);
const EVP_CIPHER *EVP_aria_192_cbc(void);
const EVP_CIPHER *EVP_aria_192_cfb1(void);
const EVP_CIPHER *EVP_aria_192_cfb8(void);
const EVP_CIPHER *EVP_aria_192_cfb128(void);
#  define EVP_aria_192_cfb EVP_aria_192_cfb128
const EVP_CIPHER *EVP_aria_192_ctr(void);
const EVP_CIPHER *EVP_aria_192_ofb(void);
const EVP_CIPHER *EVP_aria_256_ecb(void);
const EVP_CIPHER *EVP_aria_256_cbc(void);
const EVP_CIPHER *EVP_aria_256_cfb1(void);
const EVP_CIPHER *EVP_aria_256_cfb8(void);
const EVP_CIPHER *EVP_aria_256_cfb128(void);
#  define EVP_aria_256_cfb EVP_aria_256_cfb128
const EVP_CIPHER *EVP_aria_256_ctr(void);
const EVP_CIPHER *EVP_aria_256_ofb(void);
# endif
859
# ifndef OPENSSL_NO_CAMELLIA
860 861 862 863 864
const EVP_CIPHER *EVP_camellia_128_ecb(void);
const EVP_CIPHER *EVP_camellia_128_cbc(void);
const EVP_CIPHER *EVP_camellia_128_cfb1(void);
const EVP_CIPHER *EVP_camellia_128_cfb8(void);
const EVP_CIPHER *EVP_camellia_128_cfb128(void);
865
#  define EVP_camellia_128_cfb EVP_camellia_128_cfb128
866
const EVP_CIPHER *EVP_camellia_128_ofb(void);
867
const EVP_CIPHER *EVP_camellia_128_ctr(void);
868 869 870 871 872
const EVP_CIPHER *EVP_camellia_192_ecb(void);
const EVP_CIPHER *EVP_camellia_192_cbc(void);
const EVP_CIPHER *EVP_camellia_192_cfb1(void);
const EVP_CIPHER *EVP_camellia_192_cfb8(void);
const EVP_CIPHER *EVP_camellia_192_cfb128(void);
873
#  define EVP_camellia_192_cfb EVP_camellia_192_cfb128
874
const EVP_CIPHER *EVP_camellia_192_ofb(void);
875
const EVP_CIPHER *EVP_camellia_192_ctr(void);
876 877 878 879 880
const EVP_CIPHER *EVP_camellia_256_ecb(void);
const EVP_CIPHER *EVP_camellia_256_cbc(void);
const EVP_CIPHER *EVP_camellia_256_cfb1(void);
const EVP_CIPHER *EVP_camellia_256_cfb8(void);
const EVP_CIPHER *EVP_camellia_256_cfb128(void);
881
#  define EVP_camellia_256_cfb EVP_camellia_256_cfb128
882
const EVP_CIPHER *EVP_camellia_256_ofb(void);
883
const EVP_CIPHER *EVP_camellia_256_ctr(void);
884
# endif
885 886 887 888 889 890
# ifndef OPENSSL_NO_CHACHA
const EVP_CIPHER *EVP_chacha20(void);
#  ifndef OPENSSL_NO_POLY1305
const EVP_CIPHER *EVP_chacha20_poly1305(void);
#  endif
# endif
891

892
# ifndef OPENSSL_NO_SEED
B
Bodo Möller 已提交
893 894 895
const EVP_CIPHER *EVP_seed_ecb(void);
const EVP_CIPHER *EVP_seed_cbc(void);
const EVP_CIPHER *EVP_seed_cfb128(void);
896
#  define EVP_seed_cfb EVP_seed_cfb128
B
Bodo Möller 已提交
897
const EVP_CIPHER *EVP_seed_ofb(void);
898
# endif
B
Bodo Möller 已提交
899

900
# if OPENSSL_API_COMPAT < 0x10100000L
901
#  define OPENSSL_add_all_algorithms_conf() \
902 903 904
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS \
                        | OPENSSL_INIT_LOAD_CONFIG, NULL)
905
#  define OPENSSL_add_all_algorithms_noconf() \
906 907 908 909 910 911 912 913 914 915 916 917 918
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)

#  ifdef OPENSSL_LOAD_CONF
#   define OpenSSL_add_all_algorithms() \
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS \
                        | OPENSSL_INIT_LOAD_CONFIG, NULL)
#  else
#   define OpenSSL_add_all_algorithms() \
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS \
                        | OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)
#  endif
919

920
#  define OpenSSL_add_all_ciphers() \
921
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS, NULL)
922
#  define OpenSSL_add_all_digests() \
923
    OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_DIGESTS, NULL)
924

M
Matt Caswell 已提交
925
#  define EVP_cleanup() while(0) continue
926
# endif
927

D
 
Dr. Stephen Henson 已提交
928 929
int EVP_add_cipher(const EVP_CIPHER *cipher);
int EVP_add_digest(const EVP_MD *digest);
930

B
Ben Laurie 已提交
931 932
const EVP_CIPHER *EVP_get_cipherbyname(const char *name);
const EVP_MD *EVP_get_digestbyname(const char *name);
933

934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956
void EVP_CIPHER_do_all(void (*fn) (const EVP_CIPHER *ciph,
                                   const char *from, const char *to, void *x),
                       void *arg);
void EVP_CIPHER_do_all_sorted(void (*fn)
                               (const EVP_CIPHER *ciph, const char *from,
                                const char *to, void *x), void *arg);

void EVP_MD_do_all(void (*fn) (const EVP_MD *ciph,
                               const char *from, const char *to, void *x),
                   void *arg);
void EVP_MD_do_all_sorted(void (*fn)
                           (const EVP_MD *ciph, const char *from,
                            const char *to, void *x), void *arg);

int EVP_PKEY_decrypt_old(unsigned char *dec_key,
                         const unsigned char *enc_key, int enc_key_len,
                         EVP_PKEY *private_key);
int EVP_PKEY_encrypt_old(unsigned char *enc_key,
                         const unsigned char *key, int key_len,
                         EVP_PKEY *pub_key);
int EVP_PKEY_type(int type);
int EVP_PKEY_id(const EVP_PKEY *pkey);
int EVP_PKEY_base_id(const EVP_PKEY *pkey);
957
int EVP_PKEY_bits(const EVP_PKEY *pkey);
958 959 960 961 962
int EVP_PKEY_security_bits(const EVP_PKEY *pkey);
int EVP_PKEY_size(EVP_PKEY *pkey);
int EVP_PKEY_set_type(EVP_PKEY *pkey, int type);
int EVP_PKEY_set_type_str(EVP_PKEY *pkey, const char *str, int len);
int EVP_PKEY_assign(EVP_PKEY *pkey, int type, void *key);
D
Dr. Stephen Henson 已提交
963
void *EVP_PKEY_get0(const EVP_PKEY *pkey);
964
const unsigned char *EVP_PKEY_get0_hmac(const EVP_PKEY *pkey, size_t *len);
965 966 967
# ifndef OPENSSL_NO_POLY1305
const unsigned char *EVP_PKEY_get0_poly1305(const EVP_PKEY *pkey, size_t *len);
# endif
968 969 970
# ifndef OPENSSL_NO_SIPHASH
const unsigned char *EVP_PKEY_get0_siphash(const EVP_PKEY *pkey, size_t *len);
# endif
971 972

# ifndef OPENSSL_NO_RSA
973
struct rsa_st;
974
int EVP_PKEY_set1_RSA(EVP_PKEY *pkey, struct rsa_st *key);
975
struct rsa_st *EVP_PKEY_get0_RSA(EVP_PKEY *pkey);
976
struct rsa_st *EVP_PKEY_get1_RSA(EVP_PKEY *pkey);
977 978
# endif
# ifndef OPENSSL_NO_DSA
979
struct dsa_st;
980
int EVP_PKEY_set1_DSA(EVP_PKEY *pkey, struct dsa_st *key);
981
struct dsa_st *EVP_PKEY_get0_DSA(EVP_PKEY *pkey);
982
struct dsa_st *EVP_PKEY_get1_DSA(EVP_PKEY *pkey);
983 984
# endif
# ifndef OPENSSL_NO_DH
985
struct dh_st;
986
int EVP_PKEY_set1_DH(EVP_PKEY *pkey, struct dh_st *key);
987
struct dh_st *EVP_PKEY_get0_DH(EVP_PKEY *pkey);
988
struct dh_st *EVP_PKEY_get1_DH(EVP_PKEY *pkey);
989 990
# endif
# ifndef OPENSSL_NO_EC
991
struct ec_key_st;
992
int EVP_PKEY_set1_EC_KEY(EVP_PKEY *pkey, struct ec_key_st *key);
993
struct ec_key_st *EVP_PKEY_get0_EC_KEY(EVP_PKEY *pkey);
994
struct ec_key_st *EVP_PKEY_get1_EC_KEY(EVP_PKEY *pkey);
995
# endif
996

997
EVP_PKEY *EVP_PKEY_new(void);
998
int EVP_PKEY_up_ref(EVP_PKEY *pkey);
999
void EVP_PKEY_free(EVP_PKEY *pkey);
1000

1001 1002 1003
EVP_PKEY *d2i_PublicKey(int type, EVP_PKEY **a, const unsigned char **pp,
                        long length);
int i2d_PublicKey(EVP_PKEY *a, unsigned char **pp);
1004

1005 1006 1007 1008 1009
EVP_PKEY *d2i_PrivateKey(int type, EVP_PKEY **a, const unsigned char **pp,
                         long length);
EVP_PKEY *d2i_AutoPrivateKey(EVP_PKEY **a, const unsigned char **pp,
                             long length);
int i2d_PrivateKey(EVP_PKEY *a, unsigned char **pp);
1010

R
Richard Levitte 已提交
1011 1012
int EVP_PKEY_copy_parameters(EVP_PKEY *to, const EVP_PKEY *from);
int EVP_PKEY_missing_parameters(const EVP_PKEY *pkey);
1013
int EVP_PKEY_save_parameters(EVP_PKEY *pkey, int mode);
R
Richard Levitte 已提交
1014
int EVP_PKEY_cmp_parameters(const EVP_PKEY *a, const EVP_PKEY *b);
1015

R
Richard Levitte 已提交
1016
int EVP_PKEY_cmp(const EVP_PKEY *a, const EVP_PKEY *b);
1017

1018
int EVP_PKEY_print_public(BIO *out, const EVP_PKEY *pkey,
1019
                          int indent, ASN1_PCTX *pctx);
1020
int EVP_PKEY_print_private(BIO *out, const EVP_PKEY *pkey,
1021
                           int indent, ASN1_PCTX *pctx);
1022
int EVP_PKEY_print_params(BIO *out, const EVP_PKEY *pkey,
1023
                          int indent, ASN1_PCTX *pctx);
1024

1025 1026
int EVP_PKEY_get_default_digest_nid(EVP_PKEY *pkey, int *pnid);

D
Dr. Stephen Henson 已提交
1027 1028 1029 1030
int EVP_PKEY_set1_tls_encodedpoint(EVP_PKEY *pkey,
                                   const unsigned char *pt, size_t ptlen);
size_t EVP_PKEY_get1_tls_encodedpoint(EVP_PKEY *pkey, unsigned char **ppt);

1031
int EVP_CIPHER_type(const EVP_CIPHER *ctx);
1032

1033 1034 1035 1036 1037
/* calls methods */
int EVP_CIPHER_param_to_asn1(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
int EVP_CIPHER_asn1_to_param(EVP_CIPHER_CTX *c, ASN1_TYPE *type);

/* These are used by EVP_CIPHER methods */
1038 1039
int EVP_CIPHER_set_asn1_iv(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
int EVP_CIPHER_get_asn1_iv(EVP_CIPHER_CTX *c, ASN1_TYPE *type);
1040

1041
/* PKCS5 password based encryption */
1042
int PKCS5_PBE_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass, int passlen,
1043 1044
                       ASN1_TYPE *param, const EVP_CIPHER *cipher,
                       const EVP_MD *md, int en_de);
1045
int PKCS5_PBKDF2_HMAC_SHA1(const char *pass, int passlen,
1046 1047
                           const unsigned char *salt, int saltlen, int iter,
                           int keylen, unsigned char *out);
1048
int PKCS5_PBKDF2_HMAC(const char *pass, int passlen,
1049 1050
                      const unsigned char *salt, int saltlen, int iter,
                      const EVP_MD *digest, int keylen, unsigned char *out);
1051
int PKCS5_v2_PBE_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass, int passlen,
1052 1053
                          ASN1_TYPE *param, const EVP_CIPHER *cipher,
                          const EVP_MD *md, int en_de);
1054

R
Rich Salz 已提交
1055
#ifndef OPENSSL_NO_SCRYPT
D
Dr. Stephen Henson 已提交
1056 1057 1058 1059 1060
int EVP_PBE_scrypt(const char *pass, size_t passlen,
                   const unsigned char *salt, size_t saltlen,
                   uint64_t N, uint64_t r, uint64_t p, uint64_t maxmem,
                   unsigned char *key, size_t keylen);

1061 1062 1063
int PKCS5_v2_scrypt_keyivgen(EVP_CIPHER_CTX *ctx, const char *pass,
                             int passlen, ASN1_TYPE *param,
                             const EVP_CIPHER *c, const EVP_MD *md, int en_de);
R
Rich Salz 已提交
1064
#endif
1065

1066 1067
void PKCS5_PBE_add(void);

1068 1069
int EVP_PBE_CipherInit(ASN1_OBJECT *pbe_obj, const char *pass, int passlen,
                       ASN1_TYPE *param, EVP_CIPHER_CTX *ctx, int en_de);
1070 1071 1072 1073

/* PBE type */

/* Can appear as the outermost AlgorithmIdentifier */
1074
# define EVP_PBE_TYPE_OUTER      0x0
1075
/* Is an PRF type OID */
1076
# define EVP_PBE_TYPE_PRF        0x1
1077 1078
/* Is a PKCS#5 v2.0 KDF */
# define EVP_PBE_TYPE_KDF        0x2
1079

1080 1081
int EVP_PBE_alg_add_type(int pbe_type, int pbe_nid, int cipher_nid,
                         int md_nid, EVP_PBE_KEYGEN *keygen);
D
 
Dr. Stephen Henson 已提交
1082
int EVP_PBE_alg_add(int nid, const EVP_CIPHER *cipher, const EVP_MD *md,
1083 1084 1085
                    EVP_PBE_KEYGEN *keygen);
int EVP_PBE_find(int type, int pbe_nid, int *pcnid, int *pmnid,
                 EVP_PBE_KEYGEN **pkeygen);
1086
void EVP_PBE_cleanup(void);
D
Dr. Stephen Henson 已提交
1087
int EVP_PBE_get(int *ptype, int *ppbe_nid, size_t num);
1088

1089 1090 1091
# define ASN1_PKEY_ALIAS         0x1
# define ASN1_PKEY_DYNAMIC       0x2
# define ASN1_PKEY_SIGPARAM_NULL 0x4
1092

1093 1094 1095 1096 1097 1098
# define ASN1_PKEY_CTRL_PKCS7_SIGN       0x1
# define ASN1_PKEY_CTRL_PKCS7_ENCRYPT    0x2
# define ASN1_PKEY_CTRL_DEFAULT_MD_NID   0x3
# define ASN1_PKEY_CTRL_CMS_SIGN         0x5
# define ASN1_PKEY_CTRL_CMS_ENVELOPE     0x7
# define ASN1_PKEY_CTRL_CMS_RI_TYPE      0x8
1099

D
Dr. Stephen Henson 已提交
1100 1101 1102
# define ASN1_PKEY_CTRL_SET1_TLS_ENCPT   0x9
# define ASN1_PKEY_CTRL_GET1_TLS_ENCPT   0xa

1103 1104
int EVP_PKEY_asn1_get_count(void);
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_get0(int idx);
1105 1106
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_find(ENGINE **pe, int type);
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_find_str(ENGINE **pe,
1107
                                                   const char *str, int len);
1108 1109
int EVP_PKEY_asn1_add0(const EVP_PKEY_ASN1_METHOD *ameth);
int EVP_PKEY_asn1_add_alias(int to, int from);
1110 1111 1112 1113 1114
int EVP_PKEY_asn1_get0_info(int *ppkey_id, int *pkey_base_id,
                            int *ppkey_flags, const char **pinfo,
                            const char **ppem_str,
                            const EVP_PKEY_ASN1_METHOD *ameth);

1115
const EVP_PKEY_ASN1_METHOD *EVP_PKEY_get0_asn1(const EVP_PKEY *pkey);
1116 1117 1118 1119 1120
EVP_PKEY_ASN1_METHOD *EVP_PKEY_asn1_new(int id, int flags,
                                        const char *pem_str,
                                        const char *info);
void EVP_PKEY_asn1_copy(EVP_PKEY_ASN1_METHOD *dst,
                        const EVP_PKEY_ASN1_METHOD *src);
1121
void EVP_PKEY_asn1_free(EVP_PKEY_ASN1_METHOD *ameth);
1122
void EVP_PKEY_asn1_set_public(EVP_PKEY_ASN1_METHOD *ameth,
1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133
                              int (*pub_decode) (EVP_PKEY *pk,
                                                 X509_PUBKEY *pub),
                              int (*pub_encode) (X509_PUBKEY *pub,
                                                 const EVP_PKEY *pk),
                              int (*pub_cmp) (const EVP_PKEY *a,
                                              const EVP_PKEY *b),
                              int (*pub_print) (BIO *out,
                                                const EVP_PKEY *pkey,
                                                int indent, ASN1_PCTX *pctx),
                              int (*pkey_size) (const EVP_PKEY *pk),
                              int (*pkey_bits) (const EVP_PKEY *pk));
1134
void EVP_PKEY_asn1_set_private(EVP_PKEY_ASN1_METHOD *ameth,
1135
                               int (*priv_decode) (EVP_PKEY *pk,
1136
                                                   const PKCS8_PRIV_KEY_INFO
1137 1138 1139 1140 1141 1142 1143
                                                   *p8inf),
                               int (*priv_encode) (PKCS8_PRIV_KEY_INFO *p8,
                                                   const EVP_PKEY *pk),
                               int (*priv_print) (BIO *out,
                                                  const EVP_PKEY *pkey,
                                                  int indent,
                                                  ASN1_PCTX *pctx));
1144
void EVP_PKEY_asn1_set_param(EVP_PKEY_ASN1_METHOD *ameth,
1145 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158
                             int (*param_decode) (EVP_PKEY *pkey,
                                                  const unsigned char **pder,
                                                  int derlen),
                             int (*param_encode) (const EVP_PKEY *pkey,
                                                  unsigned char **pder),
                             int (*param_missing) (const EVP_PKEY *pk),
                             int (*param_copy) (EVP_PKEY *to,
                                                const EVP_PKEY *from),
                             int (*param_cmp) (const EVP_PKEY *a,
                                               const EVP_PKEY *b),
                             int (*param_print) (BIO *out,
                                                 const EVP_PKEY *pkey,
                                                 int indent,
                                                 ASN1_PCTX *pctx));
1159

1160
void EVP_PKEY_asn1_set_free(EVP_PKEY_ASN1_METHOD *ameth,
1161
                            void (*pkey_free) (EVP_PKEY *pkey));
1162
void EVP_PKEY_asn1_set_ctrl(EVP_PKEY_ASN1_METHOD *ameth,
1163 1164
                            int (*pkey_ctrl) (EVP_PKEY *pkey, int op,
                                              long arg1, void *arg2));
1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177
void EVP_PKEY_asn1_set_item(EVP_PKEY_ASN1_METHOD *ameth,
                            int (*item_verify) (EVP_MD_CTX *ctx,
                                                const ASN1_ITEM *it,
                                                void *asn,
                                                X509_ALGOR *a,
                                                ASN1_BIT_STRING *sig,
                                                EVP_PKEY *pkey),
                            int (*item_sign) (EVP_MD_CTX *ctx,
                                              const ASN1_ITEM *it,
                                              void *asn,
                                              X509_ALGOR *alg1,
                                              X509_ALGOR *alg2,
                                              ASN1_BIT_STRING *sig));
1178

1179
void EVP_PKEY_asn1_set_security_bits(EVP_PKEY_ASN1_METHOD *ameth,
1180 1181
                                     int (*pkey_security_bits) (const EVP_PKEY
                                                                *pk));
1182

1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193
# define EVP_PKEY_OP_UNDEFINED           0
# define EVP_PKEY_OP_PARAMGEN            (1<<1)
# define EVP_PKEY_OP_KEYGEN              (1<<2)
# define EVP_PKEY_OP_SIGN                (1<<3)
# define EVP_PKEY_OP_VERIFY              (1<<4)
# define EVP_PKEY_OP_VERIFYRECOVER       (1<<5)
# define EVP_PKEY_OP_SIGNCTX             (1<<6)
# define EVP_PKEY_OP_VERIFYCTX           (1<<7)
# define EVP_PKEY_OP_ENCRYPT             (1<<8)
# define EVP_PKEY_OP_DECRYPT             (1<<9)
# define EVP_PKEY_OP_DERIVE              (1<<10)
1194

1195 1196 1197
# define EVP_PKEY_OP_TYPE_SIG    \
        (EVP_PKEY_OP_SIGN | EVP_PKEY_OP_VERIFY | EVP_PKEY_OP_VERIFYRECOVER \
                | EVP_PKEY_OP_SIGNCTX | EVP_PKEY_OP_VERIFYCTX)
1198

1199 1200
# define EVP_PKEY_OP_TYPE_CRYPT \
        (EVP_PKEY_OP_ENCRYPT | EVP_PKEY_OP_DECRYPT)
1201

1202 1203
# define EVP_PKEY_OP_TYPE_NOGEN \
        (EVP_PKEY_OP_TYPE_SIG | EVP_PKEY_OP_TYPE_CRYPT | EVP_PKEY_OP_DERIVE)
D
Dr. Stephen Henson 已提交
1204

1205 1206
# define EVP_PKEY_OP_TYPE_GEN \
                (EVP_PKEY_OP_PARAMGEN | EVP_PKEY_OP_KEYGEN)
1207

1208 1209
# define  EVP_PKEY_CTX_set_signature_md(ctx, md) \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_TYPE_SIG,  \
1210
                                        EVP_PKEY_CTRL_MD, 0, (void *)(md))
1211

1212 1213
# define  EVP_PKEY_CTX_get_signature_md(ctx, pmd)        \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_TYPE_SIG,  \
1214
                                        EVP_PKEY_CTRL_GET_MD, 0, (void *)(pmd))
1215

D
Dr. Stephen Henson 已提交
1216 1217
# define  EVP_PKEY_CTX_set_mac_key(ctx, key, len)        \
                EVP_PKEY_CTX_ctrl(ctx, -1, EVP_PKEY_OP_KEYGEN,  \
1218
                                  EVP_PKEY_CTRL_SET_MAC_KEY, len, (void *)(key))
D
Dr. Stephen Henson 已提交
1219

1220 1221
# define EVP_PKEY_CTRL_MD                1
# define EVP_PKEY_CTRL_PEER_KEY          2
1222

1223 1224
# define EVP_PKEY_CTRL_PKCS7_ENCRYPT     3
# define EVP_PKEY_CTRL_PKCS7_DECRYPT     4
1225

1226
# define EVP_PKEY_CTRL_PKCS7_SIGN        5
1227

1228
# define EVP_PKEY_CTRL_SET_MAC_KEY       6
1229

1230
# define EVP_PKEY_CTRL_DIGESTINIT        7
1231

1232
/* Used by GOST key encryption in TLS */
1233
# define EVP_PKEY_CTRL_SET_IV            8
1234

1235 1236 1237
# define EVP_PKEY_CTRL_CMS_ENCRYPT       9
# define EVP_PKEY_CTRL_CMS_DECRYPT       10
# define EVP_PKEY_CTRL_CMS_SIGN          11
D
Dr. Stephen Henson 已提交
1238

1239
# define EVP_PKEY_CTRL_CIPHER            12
1240

1241
# define EVP_PKEY_CTRL_GET_MD            13
1242

1243 1244
# define EVP_PKEY_CTRL_SET_DIGEST_SIZE   14

1245
# define EVP_PKEY_ALG_CTRL               0x1000
1246

1247 1248 1249
# define EVP_PKEY_FLAG_AUTOARGLEN        2
/*
 * Method handles all operations: don't assume any digest related defaults.
1250
 */
1251
# define EVP_PKEY_FLAG_SIGCTX_CUSTOM     4
1252

1253
const EVP_PKEY_METHOD *EVP_PKEY_meth_find(int type);
1254
EVP_PKEY_METHOD *EVP_PKEY_meth_new(int id, int flags);
1255
void EVP_PKEY_meth_get0_info(int *ppkey_id, int *pflags,
1256
                             const EVP_PKEY_METHOD *meth);
1257
void EVP_PKEY_meth_copy(EVP_PKEY_METHOD *dst, const EVP_PKEY_METHOD *src);
1258
void EVP_PKEY_meth_free(EVP_PKEY_METHOD *pmeth);
1259 1260
int EVP_PKEY_meth_add0(const EVP_PKEY_METHOD *pmeth);

D
Dr. Stephen Henson 已提交
1261 1262
EVP_PKEY_CTX *EVP_PKEY_CTX_new(EVP_PKEY *pkey, ENGINE *e);
EVP_PKEY_CTX *EVP_PKEY_CTX_new_id(int id, ENGINE *e);
1263
EVP_PKEY_CTX *EVP_PKEY_CTX_dup(EVP_PKEY_CTX *ctx);
1264
void EVP_PKEY_CTX_free(EVP_PKEY_CTX *ctx);
1265

1266
int EVP_PKEY_CTX_ctrl(EVP_PKEY_CTX *ctx, int keytype, int optype,
1267
                      int cmd, int p1, void *p2);
1268
int EVP_PKEY_CTX_ctrl_str(EVP_PKEY_CTX *ctx, const char *type,
1269
                          const char *value);
1270

1271 1272 1273
int EVP_PKEY_CTX_str2ctrl(EVP_PKEY_CTX *ctx, int cmd, const char *str);
int EVP_PKEY_CTX_hex2ctrl(EVP_PKEY_CTX *ctx, int cmd, const char *hex);

1274 1275
int EVP_PKEY_CTX_md(EVP_PKEY_CTX *ctx, int optype, int cmd, const char *md);

1276 1277 1278
int EVP_PKEY_CTX_get_operation(EVP_PKEY_CTX *ctx);
void EVP_PKEY_CTX_set0_keygen_info(EVP_PKEY_CTX *ctx, int *dat, int datlen);

1279
EVP_PKEY *EVP_PKEY_new_mac_key(int type, ENGINE *e,
1280
                               const unsigned char *key, int keylen);
1281

D
Dr. Stephen Henson 已提交
1282 1283
void EVP_PKEY_CTX_set_data(EVP_PKEY_CTX *ctx, void *data);
void *EVP_PKEY_CTX_get_data(EVP_PKEY_CTX *ctx);
1284 1285
EVP_PKEY *EVP_PKEY_CTX_get0_pkey(EVP_PKEY_CTX *ctx);

1286 1287
EVP_PKEY *EVP_PKEY_CTX_get0_peerkey(EVP_PKEY_CTX *ctx);

D
Dr. Stephen Henson 已提交
1288 1289
void EVP_PKEY_CTX_set_app_data(EVP_PKEY_CTX *ctx, void *data);
void *EVP_PKEY_CTX_get_app_data(EVP_PKEY_CTX *ctx);
1290

1291 1292
int EVP_PKEY_sign_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_sign(EVP_PKEY_CTX *ctx,
1293 1294
                  unsigned char *sig, size_t *siglen,
                  const unsigned char *tbs, size_t tbslen);
1295 1296
int EVP_PKEY_verify_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_verify(EVP_PKEY_CTX *ctx,
1297 1298
                    const unsigned char *sig, size_t siglen,
                    const unsigned char *tbs, size_t tbslen);
1299 1300
int EVP_PKEY_verify_recover_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_verify_recover(EVP_PKEY_CTX *ctx,
1301 1302
                            unsigned char *rout, size_t *routlen,
                            const unsigned char *sig, size_t siglen);
1303 1304
int EVP_PKEY_encrypt_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_encrypt(EVP_PKEY_CTX *ctx,
1305 1306
                     unsigned char *out, size_t *outlen,
                     const unsigned char *in, size_t inlen);
1307 1308
int EVP_PKEY_decrypt_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_decrypt(EVP_PKEY_CTX *ctx,
1309 1310
                     unsigned char *out, size_t *outlen,
                     const unsigned char *in, size_t inlen);
1311

1312 1313
int EVP_PKEY_derive_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_derive_set_peer(EVP_PKEY_CTX *ctx, EVP_PKEY *peer);
1314
int EVP_PKEY_derive(EVP_PKEY_CTX *ctx, unsigned char *key, size_t *keylen);
1315

B
Ben Laurie 已提交
1316
typedef int EVP_PKEY_gen_cb(EVP_PKEY_CTX *ctx);
D
Dr. Stephen Henson 已提交
1317 1318 1319 1320 1321 1322 1323

int EVP_PKEY_paramgen_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_paramgen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey);
int EVP_PKEY_keygen_init(EVP_PKEY_CTX *ctx);
int EVP_PKEY_keygen(EVP_PKEY_CTX *ctx, EVP_PKEY **ppkey);

void EVP_PKEY_CTX_set_cb(EVP_PKEY_CTX *ctx, EVP_PKEY_gen_cb *cb);
1324 1325
EVP_PKEY_gen_cb *EVP_PKEY_CTX_get_cb(EVP_PKEY_CTX *ctx);

D
Dr. Stephen Henson 已提交
1326 1327
int EVP_PKEY_CTX_get_keygen_info(EVP_PKEY_CTX *ctx, int idx);

1328
void EVP_PKEY_meth_set_init(EVP_PKEY_METHOD *pmeth,
1329
                            int (*init) (EVP_PKEY_CTX *ctx));
1330

1331
void EVP_PKEY_meth_set_copy(EVP_PKEY_METHOD *pmeth,
1332 1333
                            int (*copy) (EVP_PKEY_CTX *dst,
                                         EVP_PKEY_CTX *src));
1334

1335
void EVP_PKEY_meth_set_cleanup(EVP_PKEY_METHOD *pmeth,
1336
                               void (*cleanup) (EVP_PKEY_CTX *ctx));
1337 1338

void EVP_PKEY_meth_set_paramgen(EVP_PKEY_METHOD *pmeth,
1339 1340 1341
                                int (*paramgen_init) (EVP_PKEY_CTX *ctx),
                                int (*paramgen) (EVP_PKEY_CTX *ctx,
                                                 EVP_PKEY *pkey));
1342 1343

void EVP_PKEY_meth_set_keygen(EVP_PKEY_METHOD *pmeth,
1344 1345 1346
                              int (*keygen_init) (EVP_PKEY_CTX *ctx),
                              int (*keygen) (EVP_PKEY_CTX *ctx,
                                             EVP_PKEY *pkey));
1347 1348

void EVP_PKEY_meth_set_sign(EVP_PKEY_METHOD *pmeth,
1349 1350 1351 1352 1353
                            int (*sign_init) (EVP_PKEY_CTX *ctx),
                            int (*sign) (EVP_PKEY_CTX *ctx,
                                         unsigned char *sig, size_t *siglen,
                                         const unsigned char *tbs,
                                         size_t tbslen));
1354 1355

void EVP_PKEY_meth_set_verify(EVP_PKEY_METHOD *pmeth,
1356 1357 1358 1359 1360 1361
                              int (*verify_init) (EVP_PKEY_CTX *ctx),
                              int (*verify) (EVP_PKEY_CTX *ctx,
                                             const unsigned char *sig,
                                             size_t siglen,
                                             const unsigned char *tbs,
                                             size_t tbslen));
1362 1363

void EVP_PKEY_meth_set_verify_recover(EVP_PKEY_METHOD *pmeth,
1364 1365 1366 1367 1368 1369 1370 1371 1372 1373
                                      int (*verify_recover_init) (EVP_PKEY_CTX
                                                                  *ctx),
                                      int (*verify_recover) (EVP_PKEY_CTX
                                                             *ctx,
                                                             unsigned char
                                                             *sig,
                                                             size_t *siglen,
                                                             const unsigned
                                                             char *tbs,
                                                             size_t tbslen));
1374 1375

void EVP_PKEY_meth_set_signctx(EVP_PKEY_METHOD *pmeth,
1376 1377 1378 1379 1380 1381
                               int (*signctx_init) (EVP_PKEY_CTX *ctx,
                                                    EVP_MD_CTX *mctx),
                               int (*signctx) (EVP_PKEY_CTX *ctx,
                                               unsigned char *sig,
                                               size_t *siglen,
                                               EVP_MD_CTX *mctx));
1382 1383

void EVP_PKEY_meth_set_verifyctx(EVP_PKEY_METHOD *pmeth,
1384 1385 1386 1387 1388 1389
                                 int (*verifyctx_init) (EVP_PKEY_CTX *ctx,
                                                        EVP_MD_CTX *mctx),
                                 int (*verifyctx) (EVP_PKEY_CTX *ctx,
                                                   const unsigned char *sig,
                                                   int siglen,
                                                   EVP_MD_CTX *mctx));
1390 1391

void EVP_PKEY_meth_set_encrypt(EVP_PKEY_METHOD *pmeth,
1392 1393 1394 1395 1396 1397
                               int (*encrypt_init) (EVP_PKEY_CTX *ctx),
                               int (*encryptfn) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *out,
                                                 size_t *outlen,
                                                 const unsigned char *in,
                                                 size_t inlen));
1398 1399

void EVP_PKEY_meth_set_decrypt(EVP_PKEY_METHOD *pmeth,
1400 1401 1402 1403 1404 1405
                               int (*decrypt_init) (EVP_PKEY_CTX *ctx),
                               int (*decrypt) (EVP_PKEY_CTX *ctx,
                                               unsigned char *out,
                                               size_t *outlen,
                                               const unsigned char *in,
                                               size_t inlen));
1406 1407

void EVP_PKEY_meth_set_derive(EVP_PKEY_METHOD *pmeth,
1408 1409 1410 1411
                              int (*derive_init) (EVP_PKEY_CTX *ctx),
                              int (*derive) (EVP_PKEY_CTX *ctx,
                                             unsigned char *key,
                                             size_t *keylen));
1412 1413

void EVP_PKEY_meth_set_ctrl(EVP_PKEY_METHOD *pmeth,
1414 1415 1416 1417 1418
                            int (*ctrl) (EVP_PKEY_CTX *ctx, int type, int p1,
                                         void *p2),
                            int (*ctrl_str) (EVP_PKEY_CTX *ctx,
                                             const char *type,
                                             const char *value));
1419

1420 1421 1422 1423 1424 1425 1426 1427 1428 1429 1430 1431 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511
void EVP_PKEY_meth_get_init(EVP_PKEY_METHOD *pmeth,
                            int (**pinit) (EVP_PKEY_CTX *ctx));

void EVP_PKEY_meth_get_copy(EVP_PKEY_METHOD *pmeth,
                            int (**pcopy) (EVP_PKEY_CTX *dst,
                                           EVP_PKEY_CTX *src));

void EVP_PKEY_meth_get_cleanup(EVP_PKEY_METHOD *pmeth,
                               void (**pcleanup) (EVP_PKEY_CTX *ctx));

void EVP_PKEY_meth_get_paramgen(EVP_PKEY_METHOD *pmeth,
                                int (**pparamgen_init) (EVP_PKEY_CTX *ctx),
                                int (**pparamgen) (EVP_PKEY_CTX *ctx,
                                                   EVP_PKEY *pkey));

void EVP_PKEY_meth_get_keygen(EVP_PKEY_METHOD *pmeth,
                              int (**pkeygen_init) (EVP_PKEY_CTX *ctx),
                              int (**pkeygen) (EVP_PKEY_CTX *ctx,
                                               EVP_PKEY *pkey));

void EVP_PKEY_meth_get_sign(EVP_PKEY_METHOD *pmeth,
                            int (**psign_init) (EVP_PKEY_CTX *ctx),
                            int (**psign) (EVP_PKEY_CTX *ctx,
                                           unsigned char *sig, size_t *siglen,
                                           const unsigned char *tbs,
                                           size_t tbslen));

void EVP_PKEY_meth_get_verify(EVP_PKEY_METHOD *pmeth,
                              int (**pverify_init) (EVP_PKEY_CTX *ctx),
                              int (**pverify) (EVP_PKEY_CTX *ctx,
                                               const unsigned char *sig,
                                               size_t siglen,
                                               const unsigned char *tbs,
                                               size_t tbslen));

void EVP_PKEY_meth_get_verify_recover(EVP_PKEY_METHOD *pmeth,
                                      int (**pverify_recover_init) (EVP_PKEY_CTX
                                                                    *ctx),
                                      int (**pverify_recover) (EVP_PKEY_CTX
                                                               *ctx,
                                                               unsigned char
                                                               *sig,
                                                               size_t *siglen,
                                                               const unsigned
                                                               char *tbs,
                                                               size_t tbslen));

void EVP_PKEY_meth_get_signctx(EVP_PKEY_METHOD *pmeth,
                               int (**psignctx_init) (EVP_PKEY_CTX *ctx,
                                                      EVP_MD_CTX *mctx),
                               int (**psignctx) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *sig,
                                                 size_t *siglen,
                                                 EVP_MD_CTX *mctx));

void EVP_PKEY_meth_get_verifyctx(EVP_PKEY_METHOD *pmeth,
                                 int (**pverifyctx_init) (EVP_PKEY_CTX *ctx,
                                                          EVP_MD_CTX *mctx),
                                 int (**pverifyctx) (EVP_PKEY_CTX *ctx,
                                                     const unsigned char *sig,
                                                     int siglen,
                                                     EVP_MD_CTX *mctx));

void EVP_PKEY_meth_get_encrypt(EVP_PKEY_METHOD *pmeth,
                               int (**pencrypt_init) (EVP_PKEY_CTX *ctx),
                               int (**pencryptfn) (EVP_PKEY_CTX *ctx,
                                                   unsigned char *out,
                                                   size_t *outlen,
                                                   const unsigned char *in,
                                                   size_t inlen));

void EVP_PKEY_meth_get_decrypt(EVP_PKEY_METHOD *pmeth,
                               int (**pdecrypt_init) (EVP_PKEY_CTX *ctx),
                               int (**pdecrypt) (EVP_PKEY_CTX *ctx,
                                                 unsigned char *out,
                                                 size_t *outlen,
                                                 const unsigned char *in,
                                                 size_t inlen));

void EVP_PKEY_meth_get_derive(EVP_PKEY_METHOD *pmeth,
                              int (**pderive_init) (EVP_PKEY_CTX *ctx),
                              int (**pderive) (EVP_PKEY_CTX *ctx,
                                               unsigned char *key,
                                               size_t *keylen));

void EVP_PKEY_meth_get_ctrl(EVP_PKEY_METHOD *pmeth,
                            int (**pctrl) (EVP_PKEY_CTX *ctx, int type, int p1,
                                           void *p2),
                            int (**pctrl_str) (EVP_PKEY_CTX *ctx,
                                               const char *type,
                                               const char *value));

D
Dr. Stephen Henson 已提交
1512 1513
void EVP_add_alg_module(void);

1514
int ERR_load_EVP_strings(void);
1515

R
Rich Salz 已提交
1516
# ifdef  __cplusplus
1517
}
R
Rich Salz 已提交
1518
# endif
1519
#endif