1 /**********************************************************************
3 * Copyright (c) 2005-2006 Cryptocom LTD *
4 * This file is distributed under the same license as OpenSSL *
6 * Main file of GOST engine *
8 * Requires OpenSSL 0.9.9 for compilation *
9 **********************************************************************/
11 #include <openssl/crypto.h>
12 #include <openssl/err.h>
13 #include <openssl/evp.h>
14 #include <openssl/engine.h>
15 #include <openssl/obj_mac.h>
16 #include "e_gost_err.h"
19 #include "gost_grasshopper_cipher.h"
21 static const char* engine_gost_id = "gost";
23 static const char* engine_gost_name =
24 "Reference implementation of GOST engine";
26 /* Symmetric cipher and digest function registrar */
28 static int gost_ciphers(ENGINE* e, const EVP_CIPHER** cipher,
29 const int** nids, int nid);
31 static int gost_digests(ENGINE* e, const EVP_MD** digest,
32 const int** nids, int ind);
34 static int gost_pkey_meths(ENGINE* e, EVP_PKEY_METHOD** pmeth,
35 const int** nids, int nid);
37 static int gost_pkey_asn1_meths(ENGINE* e, EVP_PKEY_ASN1_METHOD** ameth,
38 const int** nids, int nid);
40 static int gost_cipher_nids[] = {
55 static int gost_digest_nids(const int** nids) {
56 static int digest_nids[8] = {0, 0, 0, 0, 0, 0, 0, 0};
62 if ((md = digest_gost()) != NULL)
63 digest_nids[pos++] = EVP_MD_type(md);
64 if ((md = imit_gost_cpa()) != NULL)
65 digest_nids[pos++] = EVP_MD_type(md);
66 if ((md = digest_gost2012_256()) != NULL)
67 digest_nids[pos++] = EVP_MD_type(md);
68 if ((md = digest_gost2012_512()) != NULL)
69 digest_nids[pos++] = EVP_MD_type(md);
70 if ((md = imit_gost_cp_12()) != NULL)
71 digest_nids[pos++] = EVP_MD_type(md);
72 if ((md = magma_omac()) != NULL)
73 digest_nids[pos++] = EVP_MD_type(md);
74 if ((md = grasshopper_omac()) != NULL)
75 digest_nids[pos++] = EVP_MD_type(md);
85 static int gost_pkey_meth_nids[] = {
86 NID_id_GostR3410_2001,
87 NID_id_Gost28147_89_MAC,
88 NID_id_GostR3410_2012_256,
89 NID_id_GostR3410_2012_512,
96 static EVP_PKEY_METHOD* pmeth_GostR3410_2001 = NULL,
97 * pmeth_GostR3410_2012_256 = NULL,
98 * pmeth_GostR3410_2012_512 = NULL,
99 * pmeth_Gost28147_MAC = NULL, * pmeth_Gost28147_MAC_12 = NULL,
100 * pmeth_magma_mac = NULL, * pmeth_grasshopper_mac = NULL;
102 static EVP_PKEY_ASN1_METHOD* ameth_GostR3410_2001 = NULL,
103 * ameth_GostR3410_2012_256 = NULL,
104 * ameth_GostR3410_2012_512 = NULL,
105 * ameth_Gost28147_MAC = NULL, * ameth_Gost28147_MAC_12 = NULL,
106 * ameth_magma_mac = NULL, * ameth_grasshopper_mac = NULL;
108 static int gost_engine_init(ENGINE* e) {
112 static int gost_engine_finish(ENGINE* e) {
116 static int gost_engine_destroy(ENGINE* e) {
117 digest_gost_destroy();
118 digest_gost2012_256_destroy();
119 digest_gost2012_512_destroy();
121 imit_gost_cpa_destroy();
122 imit_gost_cp_12_destroy();
123 magma_omac_destroy();
124 grasshopper_omac_destroy();
126 cipher_gost_destroy();
130 pmeth_GostR3410_2001 = NULL;
131 pmeth_Gost28147_MAC = NULL;
132 pmeth_GostR3410_2012_256 = NULL;
133 pmeth_GostR3410_2012_512 = NULL;
134 pmeth_Gost28147_MAC_12 = NULL;
135 pmeth_magma_mac = NULL;
136 pmeth_grasshopper_mac = NULL;
138 ameth_GostR3410_2001 = NULL;
139 ameth_Gost28147_MAC = NULL;
140 ameth_GostR3410_2012_256 = NULL;
141 ameth_GostR3410_2012_512 = NULL;
142 ameth_Gost28147_MAC_12 = NULL;
143 ameth_magma_mac = NULL;
144 ameth_grasshopper_mac = NULL;
146 ERR_unload_GOST_strings();
151 static int bind_gost(ENGINE* e, const char* id) {
153 if (id != NULL && strcmp(id, engine_gost_id) != 0)
155 if (ameth_GostR3410_2001) {
156 printf("GOST engine already loaded\n");
159 if (!ENGINE_set_id(e, engine_gost_id)) {
160 printf("ENGINE_set_id failed\n");
163 if (!ENGINE_set_name(e, engine_gost_name)) {
164 printf("ENGINE_set_name failed\n");
167 if (!ENGINE_set_digests(e, gost_digests)) {
168 printf("ENGINE_set_digests failed\n");
171 if (!ENGINE_set_ciphers(e, gost_ciphers)) {
172 printf("ENGINE_set_ciphers failed\n");
175 if (!ENGINE_set_pkey_meths(e, gost_pkey_meths)) {
176 printf("ENGINE_set_pkey_meths failed\n");
179 if (!ENGINE_set_pkey_asn1_meths(e, gost_pkey_asn1_meths)) {
180 printf("ENGINE_set_pkey_asn1_meths failed\n");
183 /* Control function and commands */
184 if (!ENGINE_set_cmd_defns(e, gost_cmds)) {
185 fprintf(stderr, "ENGINE_set_cmd_defns failed\n");
188 if (!ENGINE_set_ctrl_function(e, gost_control_func)) {
189 fprintf(stderr, "ENGINE_set_ctrl_func failed\n");
192 if (!ENGINE_set_destroy_function(e, gost_engine_destroy)
193 || !ENGINE_set_init_function(e, gost_engine_init)
194 || !ENGINE_set_finish_function(e, gost_engine_finish)) {
198 if (!register_ameth_gost
199 (NID_id_GostR3410_2001, &ameth_GostR3410_2001, "GOST2001",
200 "GOST R 34.10-2001"))
202 if (!register_ameth_gost
203 (NID_id_GostR3410_2012_256, &ameth_GostR3410_2012_256, "GOST2012_256",
204 "GOST R 34.10-2012 with 256 bit key"))
206 if (!register_ameth_gost
207 (NID_id_GostR3410_2012_512, &ameth_GostR3410_2012_512, "GOST2012_512",
208 "GOST R 34.10-2012 with 512 bit key"))
210 if (!register_ameth_gost(NID_id_Gost28147_89_MAC, &ameth_Gost28147_MAC,
211 "GOST-MAC", "GOST 28147-89 MAC"))
213 if (!register_ameth_gost(NID_gost_mac_12, &ameth_Gost28147_MAC_12,
215 "GOST 28147-89 MAC with 2012 params"))
217 if (!register_ameth_gost(NID_magma_mac, &ameth_magma_mac,
218 "MAGMA-MAC", "GOST R 34.13-2015 Magma MAC"))
220 if (!register_ameth_gost(NID_grasshopper_mac, &ameth_grasshopper_mac,
221 "GRASSHOPPER-MAC", "GOST R 34.13-2015 Grasshopper MAC"))
224 if (!register_pmeth_gost(NID_id_GostR3410_2001, &pmeth_GostR3410_2001, 0))
227 if (!register_pmeth_gost
228 (NID_id_GostR3410_2012_256, &pmeth_GostR3410_2012_256, 0))
230 if (!register_pmeth_gost
231 (NID_id_GostR3410_2012_512, &pmeth_GostR3410_2012_512, 0))
233 if (!register_pmeth_gost
234 (NID_id_Gost28147_89_MAC, &pmeth_Gost28147_MAC, 0))
236 if (!register_pmeth_gost(NID_gost_mac_12, &pmeth_Gost28147_MAC_12, 0))
238 if (!register_pmeth_gost(NID_magma_mac, &pmeth_magma_mac, 0))
240 if (!register_pmeth_gost(NID_grasshopper_mac, &pmeth_grasshopper_mac, 0))
242 if (!ENGINE_register_ciphers(e)
243 || !ENGINE_register_digests(e)
244 || !ENGINE_register_pkey_meths(e)
245 /* These two actually should go in LIST_ADD command */
246 || !EVP_add_cipher(cipher_gost())
247 || !EVP_add_cipher(cipher_gost_cbc())
248 || !EVP_add_cipher(cipher_gost_cpacnt())
249 || !EVP_add_cipher(cipher_gost_cpcnt_12())
250 || !EVP_add_cipher(cipher_gost_grasshopper_ecb())
251 || !EVP_add_cipher(cipher_gost_grasshopper_cbc())
252 || !EVP_add_cipher(cipher_gost_grasshopper_cfb())
253 || !EVP_add_cipher(cipher_gost_grasshopper_ofb())
254 || !EVP_add_cipher(cipher_gost_grasshopper_ctr())
255 || !EVP_add_cipher(cipher_magma_cbc())
256 || !EVP_add_cipher(cipher_magma_ctr())
257 || !EVP_add_digest(digest_gost())
258 || !EVP_add_digest(digest_gost2012_512())
259 || !EVP_add_digest(digest_gost2012_256())
260 || !EVP_add_digest(imit_gost_cpa())
261 || !EVP_add_digest(imit_gost_cp_12())
262 || !EVP_add_digest(magma_omac())
263 || !EVP_add_digest(grasshopper_omac())
268 ENGINE_register_all_complete();
270 ERR_load_GOST_strings();
276 #ifndef OPENSSL_NO_DYNAMIC_ENGINE
277 IMPLEMENT_DYNAMIC_BIND_FN(bind_gost)
278 IMPLEMENT_DYNAMIC_CHECK_FN()
279 #endif /* ndef OPENSSL_NO_DYNAMIC_ENGINE */
281 static int gost_digests(ENGINE* e, const EVP_MD** digest,
282 const int** nids, int nid) {
284 if (digest == NULL) {
285 return gost_digest_nids(nids);
287 if (nid == NID_id_GostR3411_94) {
288 *digest = digest_gost();
289 } else if (nid == NID_id_Gost28147_89_MAC) {
290 *digest = imit_gost_cpa();
291 } else if (nid == NID_id_GostR3411_2012_256) {
292 *digest = digest_gost2012_256();
293 } else if (nid == NID_id_GostR3411_2012_512) {
294 *digest = digest_gost2012_512();
295 } else if (nid == NID_gost_mac_12) {
296 *digest = imit_gost_cp_12();
297 } else if (nid == NID_magma_mac) {
298 *digest = magma_omac();
299 } else if (nid == NID_grasshopper_mac) {
300 *digest = grasshopper_omac();
308 static int gost_ciphers(ENGINE* e, const EVP_CIPHER** cipher,
309 const int** nids, int nid) {
311 if (cipher == NULL) {
312 *nids = gost_cipher_nids;
313 return sizeof(gost_cipher_nids) / sizeof(gost_cipher_nids[0]) - 1;
316 if (nid == NID_id_Gost28147_89) {
317 *cipher = cipher_gost();
318 } else if (nid == NID_gost89_cnt) {
319 *cipher = cipher_gost_cpacnt();
320 } else if (nid == NID_gost89_cnt_12) {
321 *cipher = cipher_gost_cpcnt_12();
322 } else if (nid == NID_gost89_cbc) {
323 *cipher = cipher_gost_cbc();
324 } else if (nid == NID_grasshopper_ecb) {
325 *cipher = cipher_gost_grasshopper_ecb();
326 } else if (nid == NID_grasshopper_cbc) {
327 *cipher = cipher_gost_grasshopper_cbc();
328 } else if (nid == NID_grasshopper_cfb) {
329 *cipher = cipher_gost_grasshopper_cfb();
330 } else if (nid == NID_grasshopper_ofb) {
331 *cipher = cipher_gost_grasshopper_ofb();
332 } else if (nid == NID_grasshopper_ctr) {
333 *cipher = cipher_gost_grasshopper_ctr();
334 } else if (nid == NID_magma_cbc) {
335 *cipher = cipher_magma_cbc();
336 } else if (nid == NID_magma_ctr) {
337 *cipher = cipher_magma_ctr();
345 static int gost_pkey_meths(ENGINE* e, EVP_PKEY_METHOD** pmeth,
346 const int** nids, int nid) {
348 *nids = gost_pkey_meth_nids;
349 return sizeof(gost_pkey_meth_nids) / sizeof(gost_pkey_meth_nids[0]) - 1;
353 case NID_id_GostR3410_2001:
354 *pmeth = pmeth_GostR3410_2001;
356 case NID_id_GostR3410_2012_256:
357 *pmeth = pmeth_GostR3410_2012_256;
359 case NID_id_GostR3410_2012_512:
360 *pmeth = pmeth_GostR3410_2012_512;
362 case NID_id_Gost28147_89_MAC:
363 *pmeth = pmeth_Gost28147_MAC;
365 case NID_gost_mac_12:
366 *pmeth = pmeth_Gost28147_MAC_12;
369 *pmeth = pmeth_magma_mac;
371 case NID_grasshopper_mac:
372 *pmeth = pmeth_grasshopper_mac;
382 static int gost_pkey_asn1_meths(ENGINE* e, EVP_PKEY_ASN1_METHOD** ameth,
383 const int** nids, int nid) {
385 *nids = gost_pkey_meth_nids;
386 return sizeof(gost_pkey_meth_nids) / sizeof(gost_pkey_meth_nids[0]) - 1;
390 case NID_id_GostR3410_2001:
391 *ameth = ameth_GostR3410_2001;
393 case NID_id_GostR3410_2012_256:
394 *ameth = ameth_GostR3410_2012_256;
396 case NID_id_GostR3410_2012_512:
397 *ameth = ameth_GostR3410_2012_512;
399 case NID_id_Gost28147_89_MAC:
400 *ameth = ameth_Gost28147_MAC;
402 case NID_gost_mac_12:
403 *ameth = ameth_Gost28147_MAC_12;
406 *ameth = ameth_magma_mac;
408 case NID_grasshopper_mac:
409 *ameth = ameth_grasshopper_mac;
419 #ifdef OPENSSL_NO_DYNAMIC_ENGINE
421 static ENGINE* engine_gost(void) {
422 ENGINE* ret = ENGINE_new();
425 if (!bind_gost(ret, engine_gost_id)) {
432 void ENGINE_load_gost(void) {
434 if (pmeth_GostR3410_2001)
436 toadd = engine_gost();