1
0
mirror of git://git.gnupg.org/gnupg.git synced 2025-01-05 12:31:50 +01:00

common: Extend the openpgp_curve_to_oid function.

* common/openpgp-oid.c (openpgp_curve_to_oid): Add optional arg R_NBITS.
Change all callers.
--

In particular for ed25519 and cv25519 it is quite useful to have an
ability to get the required algorithm.
This commit is contained in:
Werner Koch 2020-02-11 14:38:03 +01:00
parent 113a8288b8
commit 24095101a5
No known key found for this signature in database
GPG Key ID: E3FDFF218E45B72B
9 changed files with 27 additions and 16 deletions

View File

@ -351,13 +351,17 @@ openpgp_oid_is_cv25519 (gcry_mpi_t a)
/* Map the Libgcrypt ECC curve NAME to an OID. If R_NBITS is not NULL /* Map the Libgcrypt ECC curve NAME to an OID. If R_NBITS is not NULL
store the bit size of the curve there. Returns NULL for unknown store the bit size of the curve there. Returns NULL for unknown
curve names. */ curve names. If R_ALGO is not NULL and a specific ECC algorithm is
required for this curve its OpenPGP algorithm number is stored
there; otherwise 0 is stored which indicates that ECDSA or ECDH can
be used. */
const char * const char *
openpgp_curve_to_oid (const char *name, unsigned int *r_nbits) openpgp_curve_to_oid (const char *name, unsigned int *r_nbits, int *r_algo)
{ {
int i; int i;
unsigned int nbits = 0; unsigned int nbits = 0;
const char *oidstr = NULL; const char *oidstr = NULL;
int algo = 0;
if (name) if (name)
{ {
@ -367,6 +371,7 @@ openpgp_curve_to_oid (const char *name, unsigned int *r_nbits)
{ {
oidstr = oidtable[i].oidstr; oidstr = oidtable[i].oidstr;
nbits = oidtable[i].nbits; nbits = oidtable[i].nbits;
algo = oidtable[i].pubkey_algo;
break; break;
} }
if (!oidtable[i].name) if (!oidtable[i].name)
@ -378,6 +383,7 @@ openpgp_curve_to_oid (const char *name, unsigned int *r_nbits)
{ {
oidstr = oidtable[i].oidstr; oidstr = oidtable[i].oidstr;
nbits = oidtable[i].nbits; nbits = oidtable[i].nbits;
algo = oidtable[i].pubkey_algo;
break; break;
} }
} }
@ -385,6 +391,8 @@ openpgp_curve_to_oid (const char *name, unsigned int *r_nbits)
if (r_nbits) if (r_nbits)
*r_nbits = nbits; *r_nbits = nbits;
if (r_algo)
*r_algo = algo;
return oidstr; return oidstr;
} }

View File

@ -623,7 +623,7 @@ pubkey_algo_string (gcry_sexp_t s_pkey, enum gcry_pk_algos *r_algoid)
{ {
const char *curve = gcry_pk_get_curve (s_pkey, 0, NULL); const char *curve = gcry_pk_get_curve (s_pkey, 0, NULL);
const char *name = openpgp_oid_to_curve const char *name = openpgp_oid_to_curve
(openpgp_curve_to_oid (curve, NULL), 0); (openpgp_curve_to_oid (curve, NULL, NULL), 0);
if (name) if (name)
result = xtrystrdup (name); result = xtrystrdup (name);

View File

@ -238,7 +238,8 @@ int openpgp_oidbuf_is_ed25519 (const void *buf, size_t len);
int openpgp_oid_is_ed25519 (gcry_mpi_t a); int openpgp_oid_is_ed25519 (gcry_mpi_t a);
int openpgp_oidbuf_is_cv25519 (const void *buf, size_t len); int openpgp_oidbuf_is_cv25519 (const void *buf, size_t len);
int openpgp_oid_is_cv25519 (gcry_mpi_t a); int openpgp_oid_is_cv25519 (gcry_mpi_t a);
const char *openpgp_curve_to_oid (const char *name, unsigned int *r_nbits); const char *openpgp_curve_to_oid (const char *name,
unsigned int *r_nbits, int *r_algo);
const char *openpgp_oid_to_curve (const char *oid, int canon); const char *openpgp_oid_to_curve (const char *oid, int canon);
const char *openpgp_oid_or_name_to_curve (const char *oidname, int canon); const char *openpgp_oid_or_name_to_curve (const char *oidname, int canon);
const char *openpgp_enum_curves (int *idxp); const char *openpgp_enum_curves (int *idxp);

View File

@ -632,7 +632,8 @@ current_card_status (ctrl_t ctrl, estream_t fp,
if (info.key_attr[i].curve) if (info.key_attr[i].curve)
{ {
const char *oid; const char *oid;
oid = openpgp_curve_to_oid (info.key_attr[i].curve, NULL); oid = openpgp_curve_to_oid (info.key_attr[i].curve,
NULL, NULL);
if (oid) if (oid)
curve_for_print = openpgp_oid_to_curve (oid, 0); curve_for_print = openpgp_oid_to_curve (oid, 0);
} }
@ -1545,7 +1546,7 @@ ask_card_keyattr (int keyno, const struct key_attr *current)
if (curve) if (curve)
{ {
key_attr->algo = algo; key_attr->algo = algo;
oid_str = openpgp_curve_to_oid (curve, NULL); oid_str = openpgp_curve_to_oid (curve, NULL, NULL);
key_attr->curve = openpgp_oid_to_curve (oid_str, 0); key_attr->curve = openpgp_oid_to_curve (oid_str, 0);
} }
else else

View File

@ -517,7 +517,7 @@ match_curve_skey_pk (gcry_sexp_t s_key, PKT_public_key *pk)
log_error ("no curve name\n"); log_error ("no curve name\n");
return gpg_error (GPG_ERR_UNKNOWN_CURVE); return gpg_error (GPG_ERR_UNKNOWN_CURVE);
} }
oidstr = openpgp_curve_to_oid (curve_str, NULL); oidstr = openpgp_curve_to_oid (curve_str, NULL, NULL);
if (!oidstr) if (!oidstr)
{ {
log_error ("no OID known for curve '%s'\n", curve_str); log_error ("no OID known for curve '%s'\n", curve_str);
@ -1023,7 +1023,7 @@ transfer_format_to_openpgp (gcry_sexp_t s_pgp, PKT_public_key *pk)
goto leave; goto leave;
} }
oidstr = openpgp_curve_to_oid (curve, NULL); oidstr = openpgp_curve_to_oid (curve, NULL, NULL);
if (!oidstr) if (!oidstr)
{ {
log_error ("no OID known for curve '%s'\n", curve); log_error ("no OID known for curve '%s'\n", curve);

View File

@ -1879,7 +1879,7 @@ list_config(char *items)
es_printf ("cfg:curveoid:"); es_printf ("cfg:curveoid:");
for (iter=0, first=1; (s = openpgp_enum_curves (&iter)); first = 0) for (iter=0, first=1; (s = openpgp_enum_curves (&iter)); first = 0)
{ {
s = openpgp_curve_to_oid (s, NULL); s = openpgp_curve_to_oid (s, NULL, NULL);
es_printf ("%s%s", first?"":";", s? s:"[?]"); es_printf ("%s%s", first?"":";", s? s:"[?]");
} }
es_printf ("\n"); es_printf ("\n");

View File

@ -1312,7 +1312,7 @@ ecckey_from_sexp (gcry_mpi_t *array, gcry_sexp_t sexp, int algo)
goto leave; goto leave;
} }
gcry_sexp_release (l2); gcry_sexp_release (l2);
oidstr = openpgp_curve_to_oid (curve, &nbits); oidstr = openpgp_curve_to_oid (curve, &nbits, NULL);
if (!oidstr) if (!oidstr)
{ {
/* That can't happen because we used one of the curves /* That can't happen because we used one of the curves

View File

@ -1494,7 +1494,7 @@ ecdh_params (const char *curve)
{ {
unsigned int nbits; unsigned int nbits;
openpgp_curve_to_oid (curve, &nbits); openpgp_curve_to_oid (curve, &nbits, NULL);
/* See RFC-6637 for those constants. /* See RFC-6637 for those constants.
0x03: Number of bytes 0x03: Number of bytes
@ -1535,7 +1535,7 @@ ecc_read_pubkey (app_t app, ctrl_t ctrl, u32 created_at, int keyno,
} }
curve = app->app_local->keyattr[keyno].ecc.curve; curve = app->app_local->keyattr[keyno].ecc.curve;
oidstr = openpgp_curve_to_oid (curve, NULL); oidstr = openpgp_curve_to_oid (curve, NULL, NULL);
err = openpgp_oid_from_str (oidstr, &oid); err = openpgp_oid_from_str (oidstr, &oid);
if (err) if (err)
return err; return err;
@ -3608,7 +3608,7 @@ change_keyattr_from_string (app_t app, ctrl_t ctrl,
const unsigned char *oidbuf; const unsigned char *oidbuf;
size_t oid_len; size_t oid_len;
oidstr = openpgp_curve_to_oid (string+n, NULL); oidstr = openpgp_curve_to_oid (string+n, NULL, NULL);
if (!oidstr) if (!oidstr)
{ {
err = gpg_error (GPG_ERR_INV_DATA); err = gpg_error (GPG_ERR_INV_DATA);
@ -4115,7 +4115,7 @@ ecc_writekey (app_t app, ctrl_t ctrl,
else else
algo = PUBKEY_ALGO_ECDSA; algo = PUBKEY_ALGO_ECDSA;
oidstr = openpgp_curve_to_oid (curve, NULL); oidstr = openpgp_curve_to_oid (curve, NULL, NULL);
err = openpgp_oid_from_str (oidstr, &oid); err = openpgp_oid_from_str (oidstr, &oid);
if (err) if (err)
goto leave; goto leave;

View File

@ -2927,9 +2927,10 @@ writekey_ecc (app_t app, data_object_t dobj, int keyref,
name[toklen] = 0; name[toklen] = 0;
/* Canonicalize the curve name. We use the openpgp /* Canonicalize the curve name. We use the openpgp
* functions here because Libgcrypt has no generic curve * functions here because Libgcrypt has no generic curve
* alias lookup feature and the PIV suppotred curves alre * alias lookup feature and the PIV supported curves are
* also supported by OpenPGP. */ * also supported by OpenPGP. */
xname = openpgp_oid_to_curve (openpgp_curve_to_oid (name, NULL), 0); xname = openpgp_oid_to_curve (openpgp_curve_to_oid (name, NULL, NULL),
0);
xfree (name); xfree (name);
if (xname && !strcmp (xname, "nistp256")) if (xname && !strcmp (xname, "nistp256"))