Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
OpenHarmony
Third Party Openssl
提交
1b76fac5
T
Third Party Openssl
项目概览
OpenHarmony
/
Third Party Openssl
大约 1 年 前同步成功
通知
9
Star
18
Fork
1
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
T
Third Party Openssl
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
体验新版 GitCode,发现更多精彩内容 >>
提交
1b76fac5
编写于
3月 11, 2011
作者:
D
Dr. Stephen Henson
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
Check requested security strength in DRBG. Add function to retrieve the
security strength.
上级
329c744f
变更
5
隐藏空白更改
内联
并排
Showing
5 changed file
with
26 addition
and
5 deletion
+26
-5
crypto/fips_err.h
crypto/fips_err.h
+1
-0
fips/fips.h
fips/fips.h
+1
-0
fips/rand/fips_drbg_lib.c
fips/rand/fips_drbg_lib.c
+19
-1
fips/rand/fips_drbgvs.c
fips/rand/fips_drbgvs.c
+3
-3
fips/rand/fips_rand.h
fips/rand/fips_rand.h
+2
-1
未找到文件。
crypto/fips_err.h
浏览文件 @
1b76fac5
...
...
@@ -128,6 +128,7 @@ static ERR_STRING_DATA FIPS_str_reasons[]=
{
ERR_REASON
(
FIPS_R_FIPS_SELFTEST_FAILED
)
,
"fips selftest failed"
},
{
ERR_REASON
(
FIPS_R_GENERATE_ERROR
)
,
"generate error"
},
{
ERR_REASON
(
FIPS_R_INSTANTIATE_ERROR
)
,
"instantiate error"
},
{
ERR_REASON
(
FIPS_R_INSUFFICIENT_SECURITY_STRENGTH
),
"insufficient security strength"
},
{
ERR_REASON
(
FIPS_R_INVALID_KEY_LENGTH
)
,
"invalid key length"
},
{
ERR_REASON
(
FIPS_R_IN_ERROR_STATE
)
,
"in error state"
},
{
ERR_REASON
(
FIPS_R_KEY_TOO_SHORT
)
,
"key too short"
},
...
...
fips/fips.h
浏览文件 @
1b76fac5
...
...
@@ -233,6 +233,7 @@ void ERR_load_FIPS_strings(void);
#define FIPS_R_FIPS_SELFTEST_FAILED 106
#define FIPS_R_GENERATE_ERROR 124
#define FIPS_R_INSTANTIATE_ERROR 125
#define FIPS_R_INSUFFICIENT_SECURITY_STRENGTH 132
#define FIPS_R_INVALID_KEY_LENGTH 109
#define FIPS_R_IN_ERROR_STATE 126
#define FIPS_R_KEY_TOO_SHORT 108
...
...
fips/rand/fips_drbg_lib.c
浏览文件 @
1b76fac5
...
...
@@ -145,6 +145,12 @@ int FIPS_drbg_instantiate(DRBG_CTX *dctx,
goto
end
;
}
if
(
strength
>
dctx
->
strength
)
{
r
=
FIPS_R_INSUFFICIENT_SECURITY_STRENGTH
;
goto
end
;
}
dctx
->
status
=
DRBG_STATUS_ERROR
;
entlen
=
dctx
->
get_entropy
(
dctx
,
dctx
->
entropy
,
dctx
->
strength
,
...
...
@@ -261,7 +267,7 @@ int FIPS_drbg_reseed(DRBG_CTX *dctx,
int
FIPS_drbg_generate
(
DRBG_CTX
*
dctx
,
unsigned
char
*
out
,
size_t
outlen
,
int
prediction_resistance
,
int
strength
,
int
prediction_resistance
,
const
unsigned
char
*
adin
,
size_t
adinlen
)
{
int
r
=
0
;
...
...
@@ -270,6 +276,13 @@ int FIPS_drbg_generate(DRBG_CTX *dctx, unsigned char *out, size_t outlen,
r
=
FIPS_R_REQUEST_TOO_LARGE_FOR_DRBG
;
return
0
;
}
if
(
strength
>
dctx
->
strength
)
{
r
=
FIPS_R_INSUFFICIENT_SECURITY_STRENGTH
;
goto
end
;
}
if
(
dctx
->
status
==
DRBG_STATUS_RESEED
||
prediction_resistance
)
{
if
(
!
FIPS_drbg_reseed
(
dctx
,
adin
,
adinlen
))
...
...
@@ -351,3 +364,8 @@ size_t FIPS_drbg_get_blocklength(DRBG_CTX *dctx)
{
return
dctx
->
blocklength
;
}
int
FIPS_drbg_get_strength
(
DRBG_CTX
*
dctx
)
{
return
dctx
->
strength
;
}
fips/rand/fips_drbgvs.c
浏览文件 @
1b76fac5
...
...
@@ -269,7 +269,7 @@ int main(int argc,char **argv)
adin
=
hex2bin_m
(
value
,
&
adinlen
);
if
(
pr
)
continue
;
r
=
FIPS_drbg_generate
(
dctx
,
randout
,
randoutlen
,
0
,
r
=
FIPS_drbg_generate
(
dctx
,
randout
,
randoutlen
,
0
,
0
,
adin
,
adinlen
);
if
(
!
r
)
{
...
...
@@ -291,8 +291,8 @@ int main(int argc,char **argv)
t
.
ent
=
ent
;
t
.
entlen
=
entlen
;
r
=
FIPS_drbg_generate
(
dctx
,
randout
,
randoutlen
,
1
,
adin
,
adinlen
);
randout
,
randoutlen
,
0
,
1
,
adin
,
adinlen
);
if
(
!
r
)
{
fprintf
(
stderr
,
...
...
fips/rand/fips_rand.h
浏览文件 @
1b76fac5
...
...
@@ -80,7 +80,7 @@ int FIPS_drbg_instantiate(DRBG_CTX *dctx, int strength,
const
unsigned
char
*
pers
,
size_t
perslen
);
int
FIPS_drbg_reseed
(
DRBG_CTX
*
dctx
,
const
unsigned
char
*
adin
,
size_t
adinlen
);
int
FIPS_drbg_generate
(
DRBG_CTX
*
dctx
,
unsigned
char
*
out
,
size_t
outlen
,
int
prediction_resistance
,
int
strength
,
int
prediction_resistance
,
const
unsigned
char
*
adin
,
size_t
adinlen
);
int
FIPS_drbg_uninstantiate
(
DRBG_CTX
*
dctx
);
...
...
@@ -95,6 +95,7 @@ int FIPS_drbg_set_test_mode(DRBG_CTX *dctx,
void
*
FIPS_drbg_get_app_data
(
DRBG_CTX
*
ctx
);
void
FIPS_drbg_set_app_data
(
DRBG_CTX
*
ctx
,
void
*
app_data
);
size_t
FIPS_drbg_get_blocklength
(
DRBG_CTX
*
dctx
);
int
FIPS_drbg_get_strength
(
DRBG_CTX
*
dctx
);
#ifdef __cplusplus
}
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录