10Sstevel@tonic-gate /*
20Sstevel@tonic-gate * CDDL HEADER START
30Sstevel@tonic-gate *
40Sstevel@tonic-gate * The contents of this file are subject to the terms of the
52909Smcpowers * Common Development and Distribution License (the "License").
62909Smcpowers * You may not use this file except in compliance with the License.
70Sstevel@tonic-gate *
80Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
90Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing.
100Sstevel@tonic-gate * See the License for the specific language governing permissions
110Sstevel@tonic-gate * and limitations under the License.
120Sstevel@tonic-gate *
130Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each
140Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
150Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the
160Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying
170Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner]
180Sstevel@tonic-gate *
190Sstevel@tonic-gate * CDDL HEADER END
200Sstevel@tonic-gate */
210Sstevel@tonic-gate /*
22*9341SAnthony.Scarpino@Sun.COM * Copyright 2009 Sun Microsystems, Inc. All rights reserved.
230Sstevel@tonic-gate * Use is subject to license terms.
240Sstevel@tonic-gate */
250Sstevel@tonic-gate
260Sstevel@tonic-gate /*
270Sstevel@tonic-gate * Convert Algorithm names as strings to PKCS#11 Mech numbers and vice versa.
280Sstevel@tonic-gate */
290Sstevel@tonic-gate
307011Sda73024 #include <limits.h>
310Sstevel@tonic-gate #include <string.h>
320Sstevel@tonic-gate #include <stdlib.h>
330Sstevel@tonic-gate #include <stdio.h>
340Sstevel@tonic-gate #include <security/cryptoki.h>
350Sstevel@tonic-gate #include <security/pkcs11t.h>
360Sstevel@tonic-gate
370Sstevel@tonic-gate #include <cryptoutil.h>
380Sstevel@tonic-gate
390Sstevel@tonic-gate /*
402909Smcpowers * This table is a one-to-one mapping between mechanism names and numbers.
412909Smcpowers * As such, it should not contain deprecated mechanism names (aliases).
420Sstevel@tonic-gate */
437011Sda73024 typedef struct {
447011Sda73024 const char *str;
457011Sda73024 CK_MECHANISM_TYPE mech;
467011Sda73024 } pkcs11_mapping_t;
477011Sda73024
487011Sda73024 /*
497011Sda73024 * Note: elements in this table MUST be in numeric order,
507011Sda73024 * since bsearch(3C) is used to search this table.
517011Sda73024 */
527011Sda73024 static const pkcs11_mapping_t mapping[] = {
530Sstevel@tonic-gate { "CKM_RSA_PKCS_KEY_PAIR_GEN", CKM_RSA_PKCS_KEY_PAIR_GEN },
540Sstevel@tonic-gate { "CKM_RSA_PKCS", CKM_RSA_PKCS },
550Sstevel@tonic-gate { "CKM_RSA_9796", CKM_RSA_9796 },
560Sstevel@tonic-gate { "CKM_RSA_X_509", CKM_RSA_X_509 },
570Sstevel@tonic-gate { "CKM_MD2_RSA_PKCS", CKM_MD2_RSA_PKCS },
580Sstevel@tonic-gate { "CKM_MD5_RSA_PKCS", CKM_MD5_RSA_PKCS },
590Sstevel@tonic-gate { "CKM_SHA1_RSA_PKCS", CKM_SHA1_RSA_PKCS },
600Sstevel@tonic-gate { "CKM_RIPEMD128_RSA_PKCS", CKM_RIPEMD128_RSA_PKCS },
610Sstevel@tonic-gate { "CKM_RIPEMD160_RSA_PKCS", CKM_RIPEMD160_RSA_PKCS },
620Sstevel@tonic-gate { "CKM_RSA_PKCS_OAEP", CKM_RSA_PKCS_OAEP },
630Sstevel@tonic-gate { "CKM_RSA_X9_31_KEY_PAIR_GEN", CKM_RSA_X9_31_KEY_PAIR_GEN },
640Sstevel@tonic-gate { "CKM_RSA_X9_31", CKM_RSA_X9_31 },
650Sstevel@tonic-gate { "CKM_SHA1_RSA_X9_31", CKM_SHA1_RSA_X9_31 },
660Sstevel@tonic-gate { "CKM_RSA_PKCS_PSS", CKM_RSA_PKCS_PSS },
670Sstevel@tonic-gate { "CKM_SHA1_RSA_PKCS_PSS", CKM_SHA1_RSA_PKCS_PSS },
680Sstevel@tonic-gate { "CKM_DSA_KEY_PAIR_GEN", CKM_DSA_KEY_PAIR_GEN },
690Sstevel@tonic-gate { "CKM_DSA", CKM_DSA },
700Sstevel@tonic-gate { "CKM_DSA_SHA1", CKM_DSA_SHA1 },
710Sstevel@tonic-gate { "CKM_DH_PKCS_KEY_PAIR_GEN", CKM_DH_PKCS_KEY_PAIR_GEN },
720Sstevel@tonic-gate { "CKM_DH_PKCS_DERIVE", CKM_DH_PKCS_DERIVE },
730Sstevel@tonic-gate { "CKM_X9_42_DH_KEY_PAIR_GEN", CKM_X9_42_DH_KEY_PAIR_GEN },
740Sstevel@tonic-gate { "CKM_X9_42_DH_DERIVE", CKM_X9_42_DH_DERIVE },
750Sstevel@tonic-gate { "CKM_X9_42_DH_HYBRID_DERIVE", CKM_X9_42_DH_HYBRID_DERIVE },
760Sstevel@tonic-gate { "CKM_X9_42_MQV_DERIVE", CKM_X9_42_MQV_DERIVE },
77676Sizick { "CKM_SHA256_RSA_PKCS", CKM_SHA256_RSA_PKCS },
78676Sizick { "CKM_SHA384_RSA_PKCS", CKM_SHA384_RSA_PKCS },
79676Sizick { "CKM_SHA512_RSA_PKCS", CKM_SHA512_RSA_PKCS },
80676Sizick { "CKM_SHA256_RSA_PKCS_PSS", CKM_SHA256_RSA_PKCS_PSS },
81676Sizick { "CKM_SHA384_RSA_PKCS_PSS", CKM_SHA384_RSA_PKCS_PSS },
82676Sizick { "CKM_SHA512_RSA_PKCS_PSS", CKM_SHA512_RSA_PKCS_PSS },
835818Smcpowers { "CKM_SHA224_RSA_PKCS", CKM_SHA224_RSA_PKCS },
845818Smcpowers { "CKM_SHA224_RSA_PKCS_PSS", CKM_SHA224_RSA_PKCS_PSS },
850Sstevel@tonic-gate { "CKM_RC2_KEY_GEN", CKM_RC2_KEY_GEN },
860Sstevel@tonic-gate { "CKM_RC2_ECB", CKM_RC2_ECB },
870Sstevel@tonic-gate { "CKM_RC2_CBC", CKM_RC2_CBC },
880Sstevel@tonic-gate { "CKM_RC2_MAC", CKM_RC2_MAC },
890Sstevel@tonic-gate { "CKM_RC2_MAC_GENERAL", CKM_RC2_MAC_GENERAL },
900Sstevel@tonic-gate { "CKM_RC2_CBC_PAD", CKM_RC2_CBC_PAD },
910Sstevel@tonic-gate { "CKM_RC4_KEY_GEN", CKM_RC4_KEY_GEN },
920Sstevel@tonic-gate { "CKM_RC4", CKM_RC4 },
930Sstevel@tonic-gate { "CKM_DES_KEY_GEN", CKM_DES_KEY_GEN },
940Sstevel@tonic-gate { "CKM_DES_ECB", CKM_DES_ECB },
950Sstevel@tonic-gate { "CKM_DES_CBC", CKM_DES_CBC },
960Sstevel@tonic-gate { "CKM_DES_MAC", CKM_DES_MAC },
970Sstevel@tonic-gate { "CKM_DES_MAC_GENERAL", CKM_DES_MAC_GENERAL },
980Sstevel@tonic-gate { "CKM_DES_CBC_PAD", CKM_DES_CBC_PAD },
990Sstevel@tonic-gate { "CKM_DES2_KEY_GEN", CKM_DES2_KEY_GEN },
1000Sstevel@tonic-gate { "CKM_DES3_KEY_GEN", CKM_DES3_KEY_GEN },
1010Sstevel@tonic-gate { "CKM_DES3_ECB", CKM_DES3_ECB },
1020Sstevel@tonic-gate { "CKM_DES3_CBC", CKM_DES3_CBC },
1030Sstevel@tonic-gate { "CKM_DES3_MAC", CKM_DES3_MAC },
1040Sstevel@tonic-gate { "CKM_DES3_MAC_GENERAL", CKM_DES3_MAC_GENERAL },
1050Sstevel@tonic-gate { "CKM_DES3_CBC_PAD", CKM_DES3_CBC_PAD },
1060Sstevel@tonic-gate { "CKM_CDMF_KEY_GEN", CKM_CDMF_KEY_GEN },
1070Sstevel@tonic-gate { "CKM_CDMF_ECB", CKM_CDMF_ECB },
1080Sstevel@tonic-gate { "CKM_CDMF_CBC", CKM_CDMF_CBC },
1090Sstevel@tonic-gate { "CKM_CDMF_MAC", CKM_CDMF_MAC },
1100Sstevel@tonic-gate { "CKM_CDMF_MAC_GENERAL", CKM_CDMF_MAC_GENERAL },
1110Sstevel@tonic-gate { "CKM_CDMF_CBC_PAD", CKM_CDMF_CBC_PAD },
112676Sizick { "CKM_DES_OFB64", CKM_DES_OFB64 },
113676Sizick { "CKM_DES_OFB8", CKM_DES_OFB8 },
114676Sizick { "CKM_DES_CFB64", CKM_DES_CFB64 },
115676Sizick { "CKM_DES_CFB8", CKM_DES_CFB8 },
1160Sstevel@tonic-gate { "CKM_MD2", CKM_MD2 },
1170Sstevel@tonic-gate { "CKM_MD2_HMAC", CKM_MD2_HMAC },
1180Sstevel@tonic-gate { "CKM_MD2_HMAC_GENERAL", CKM_MD2_HMAC_GENERAL },
1190Sstevel@tonic-gate { "CKM_MD5", CKM_MD5 },
1200Sstevel@tonic-gate { "CKM_MD5_HMAC", CKM_MD5_HMAC },
1210Sstevel@tonic-gate { "CKM_MD5_HMAC_GENERAL", CKM_MD5_HMAC_GENERAL },
1220Sstevel@tonic-gate { "CKM_SHA_1", CKM_SHA_1 },
1230Sstevel@tonic-gate { "CKM_SHA_1_HMAC", CKM_SHA_1_HMAC },
1240Sstevel@tonic-gate { "CKM_SHA_1_HMAC_GENERAL", CKM_SHA_1_HMAC_GENERAL },
1250Sstevel@tonic-gate { "CKM_RIPEMD128", CKM_RIPEMD128 },
1260Sstevel@tonic-gate { "CKM_RIPEMD128_HMAC", CKM_RIPEMD128_HMAC },
1270Sstevel@tonic-gate { "CKM_RIPEMD128_HMAC_GENERAL", CKM_RIPEMD128_HMAC_GENERAL },
1280Sstevel@tonic-gate { "CKM_RIPEMD160", CKM_RIPEMD160 },
1290Sstevel@tonic-gate { "CKM_RIPEMD160_HMAC", CKM_RIPEMD160_HMAC },
1300Sstevel@tonic-gate { "CKM_RIPEMD160_HMAC_GENERAL", CKM_RIPEMD160_HMAC_GENERAL },
131676Sizick { "CKM_SHA256", CKM_SHA256 },
132676Sizick { "CKM_SHA256_HMAC", CKM_SHA256_HMAC },
133676Sizick { "CKM_SHA256_HMAC_GENERAL", CKM_SHA256_HMAC_GENERAL },
1345818Smcpowers { "CKM_SHA224", CKM_SHA224 },
1355818Smcpowers { "CKM_SHA224_HMAC", CKM_SHA224_HMAC },
1365818Smcpowers { "CKM_SHA224_HMAC_GENERAL", CKM_SHA224_HMAC_GENERAL },
137676Sizick { "CKM_SHA384", CKM_SHA384 },
138676Sizick { "CKM_SHA384_HMAC", CKM_SHA384_HMAC },
139676Sizick { "CKM_SHA384_HMAC_GENERAL", CKM_SHA384_HMAC_GENERAL },
140676Sizick { "CKM_SHA512", CKM_SHA512 },
141676Sizick { "CKM_SHA512_HMAC", CKM_SHA512_HMAC },
142676Sizick { "CKM_SHA512_HMAC_GENERAL", CKM_SHA512_HMAC_GENERAL },
1435818Smcpowers { "CKM_SECURID_KEY_GEN", CKM_SECURID_KEY_GEN },
1445818Smcpowers { "CKM_SECURID", CKM_SECURID },
1455818Smcpowers { "CKM_HOTP_KEY_GEN", CKM_HOTP_KEY_GEN },
1465818Smcpowers { "CKM_HOTP", CKM_HOTP },
1475818Smcpowers { "CKM_ACTI", CKM_ACTI },
1485818Smcpowers { "CKM_ACTI_KEY_GEN", CKM_ACTI_KEY_GEN },
1490Sstevel@tonic-gate { "CKM_CAST_KEY_GEN", CKM_CAST_KEY_GEN },
1500Sstevel@tonic-gate { "CKM_CAST_ECB", CKM_CAST_ECB },
1510Sstevel@tonic-gate { "CKM_CAST_CBC", CKM_CAST_CBC },
1520Sstevel@tonic-gate { "CKM_CAST_MAC", CKM_CAST_MAC },
1530Sstevel@tonic-gate { "CKM_CAST_MAC_GENERAL", CKM_CAST_MAC_GENERAL },
1540Sstevel@tonic-gate { "CKM_CAST_CBC_PAD", CKM_CAST_CBC_PAD },
1550Sstevel@tonic-gate { "CKM_CAST3_KEY_GEN", CKM_CAST3_KEY_GEN },
1560Sstevel@tonic-gate { "CKM_CAST3_ECB", CKM_CAST3_ECB },
1570Sstevel@tonic-gate { "CKM_CAST3_CBC", CKM_CAST3_CBC },
1580Sstevel@tonic-gate { "CKM_CAST3_MAC", CKM_CAST3_MAC },
1590Sstevel@tonic-gate { "CKM_CAST3_MAC_GENERAL", CKM_CAST3_MAC_GENERAL },
1600Sstevel@tonic-gate { "CKM_CAST3_CBC_PAD", CKM_CAST3_CBC_PAD },
1610Sstevel@tonic-gate { "CKM_CAST5_KEY_GEN", CKM_CAST5_KEY_GEN },
1620Sstevel@tonic-gate { "CKM_CAST128_KEY_GEN", CKM_CAST128_KEY_GEN },
1630Sstevel@tonic-gate { "CKM_CAST5_ECB", CKM_CAST5_ECB },
1640Sstevel@tonic-gate { "CKM_CAST128_ECB", CKM_CAST128_ECB },
1650Sstevel@tonic-gate { "CKM_CAST5_CBC", CKM_CAST5_CBC },
1660Sstevel@tonic-gate { "CKM_CAST128_CBC", CKM_CAST128_CBC },
1670Sstevel@tonic-gate { "CKM_CAST5_MAC", CKM_CAST5_MAC },
1680Sstevel@tonic-gate { "CKM_CAST128_MAC", CKM_CAST128_MAC },
1690Sstevel@tonic-gate { "CKM_CAST5_MAC_GENERAL", CKM_CAST5_MAC_GENERAL },
1700Sstevel@tonic-gate { "CKM_CAST128_MAC_GENERAL", CKM_CAST128_MAC_GENERAL },
1710Sstevel@tonic-gate { "CKM_CAST5_CBC_PAD", CKM_CAST5_CBC_PAD },
1720Sstevel@tonic-gate { "CKM_CAST128_CBC_PAD", CKM_CAST128_CBC_PAD },
1730Sstevel@tonic-gate { "CKM_RC5_KEY_GEN", CKM_RC5_KEY_GEN },
1740Sstevel@tonic-gate { "CKM_RC5_ECB", CKM_RC5_ECB },
1750Sstevel@tonic-gate { "CKM_RC5_CBC", CKM_RC5_CBC },
1760Sstevel@tonic-gate { "CKM_RC5_MAC", CKM_RC5_MAC },
1770Sstevel@tonic-gate { "CKM_RC5_MAC_GENERAL", CKM_RC5_MAC_GENERAL },
1780Sstevel@tonic-gate { "CKM_RC5_CBC_PAD", CKM_RC5_CBC_PAD },
1790Sstevel@tonic-gate { "CKM_IDEA_KEY_GEN", CKM_IDEA_KEY_GEN },
1800Sstevel@tonic-gate { "CKM_IDEA_ECB", CKM_IDEA_ECB },
1810Sstevel@tonic-gate { "CKM_IDEA_CBC", CKM_IDEA_CBC },
1820Sstevel@tonic-gate { "CKM_IDEA_MAC", CKM_IDEA_MAC },
1830Sstevel@tonic-gate { "CKM_IDEA_MAC_GENERAL", CKM_IDEA_MAC_GENERAL },
1840Sstevel@tonic-gate { "CKM_IDEA_CBC_PAD", CKM_IDEA_CBC_PAD },
1850Sstevel@tonic-gate { "CKM_GENERIC_SECRET_KEY_GEN", CKM_GENERIC_SECRET_KEY_GEN },
1860Sstevel@tonic-gate { "CKM_CONCATENATE_BASE_AND_KEY", CKM_CONCATENATE_BASE_AND_KEY },
1870Sstevel@tonic-gate { "CKM_CONCATENATE_BASE_AND_DATA", CKM_CONCATENATE_BASE_AND_DATA },
1880Sstevel@tonic-gate { "CKM_CONCATENATE_DATA_AND_BASE", CKM_CONCATENATE_DATA_AND_BASE },
1890Sstevel@tonic-gate { "CKM_XOR_BASE_AND_DATA", CKM_XOR_BASE_AND_DATA },
1900Sstevel@tonic-gate { "CKM_EXTRACT_KEY_FROM_KEY", CKM_EXTRACT_KEY_FROM_KEY },
1910Sstevel@tonic-gate { "CKM_SSL3_PRE_MASTER_KEY_GEN", CKM_SSL3_PRE_MASTER_KEY_GEN },
1920Sstevel@tonic-gate { "CKM_SSL3_MASTER_KEY_DERIVE", CKM_SSL3_MASTER_KEY_DERIVE },
1930Sstevel@tonic-gate { "CKM_SSL3_KEY_AND_MAC_DERIVE", CKM_SSL3_KEY_AND_MAC_DERIVE },
1940Sstevel@tonic-gate { "CKM_SSL3_MASTER_KEY_DERIVE_DH", CKM_SSL3_MASTER_KEY_DERIVE_DH },
1950Sstevel@tonic-gate { "CKM_TLS_PRE_MASTER_KEY_GEN", CKM_TLS_PRE_MASTER_KEY_GEN },
1960Sstevel@tonic-gate { "CKM_TLS_MASTER_KEY_DERIVE", CKM_TLS_MASTER_KEY_DERIVE },
1970Sstevel@tonic-gate { "CKM_TLS_KEY_AND_MAC_DERIVE", CKM_TLS_KEY_AND_MAC_DERIVE },
1980Sstevel@tonic-gate { "CKM_TLS_MASTER_KEY_DERIVE_DH", CKM_TLS_MASTER_KEY_DERIVE_DH },
199676Sizick { "CKM_TLS_PRF", CKM_TLS_PRF },
2000Sstevel@tonic-gate { "CKM_SSL3_MD5_MAC", CKM_SSL3_MD5_MAC },
2010Sstevel@tonic-gate { "CKM_SSL3_SHA1_MAC", CKM_SSL3_SHA1_MAC },
2020Sstevel@tonic-gate { "CKM_MD5_KEY_DERIVATION", CKM_MD5_KEY_DERIVATION },
2030Sstevel@tonic-gate { "CKM_MD2_KEY_DERIVATION", CKM_MD2_KEY_DERIVATION },
2040Sstevel@tonic-gate { "CKM_SHA1_KEY_DERIVATION", CKM_SHA1_KEY_DERIVATION },
205676Sizick { "CKM_SHA256_KEY_DERIVATION", CKM_SHA256_KEY_DERIVATION },
206676Sizick { "CKM_SHA384_KEY_DERIVATION", CKM_SHA384_KEY_DERIVATION },
207676Sizick { "CKM_SHA512_KEY_DERIVATION", CKM_SHA512_KEY_DERIVATION },
2085818Smcpowers { "CKM_SHA224_KEY_DERIVATION", CKM_SHA224_KEY_DERIVATION },
2090Sstevel@tonic-gate { "CKM_PBE_MD2_DES_CBC", CKM_PBE_MD2_DES_CBC },
2100Sstevel@tonic-gate { "CKM_PBE_MD5_DES_CBC", CKM_PBE_MD5_DES_CBC },
2110Sstevel@tonic-gate { "CKM_PBE_MD5_CAST_CBC", CKM_PBE_MD5_CAST_CBC },
2120Sstevel@tonic-gate { "CKM_PBE_MD5_CAST3_CBC", CKM_PBE_MD5_CAST3_CBC },
2130Sstevel@tonic-gate { "CKM_PBE_MD5_CAST5_CBC", CKM_PBE_MD5_CAST5_CBC },
2140Sstevel@tonic-gate { "CKM_PBE_MD5_CAST128_CBC", CKM_PBE_MD5_CAST128_CBC },
2150Sstevel@tonic-gate { "CKM_PBE_SHA1_CAST5_CBC", CKM_PBE_SHA1_CAST5_CBC },
2160Sstevel@tonic-gate { "CKM_PBE_SHA1_CAST128_CBC", CKM_PBE_SHA1_CAST128_CBC },
2170Sstevel@tonic-gate { "CKM_PBE_SHA1_RC4_128", CKM_PBE_SHA1_RC4_128 },
2180Sstevel@tonic-gate { "CKM_PBE_SHA1_RC4_40", CKM_PBE_SHA1_RC4_40 },
2190Sstevel@tonic-gate { "CKM_PBE_SHA1_DES3_EDE_CBC", CKM_PBE_SHA1_DES3_EDE_CBC },
2200Sstevel@tonic-gate { "CKM_PBE_SHA1_DES2_EDE_CBC", CKM_PBE_SHA1_DES2_EDE_CBC },
2210Sstevel@tonic-gate { "CKM_PBE_SHA1_RC2_128_CBC", CKM_PBE_SHA1_RC2_128_CBC },
2220Sstevel@tonic-gate { "CKM_PBE_SHA1_RC2_40_CBC", CKM_PBE_SHA1_RC2_40_CBC },
2230Sstevel@tonic-gate { "CKM_PKCS5_PBKD2", CKM_PKCS5_PBKD2 },
2240Sstevel@tonic-gate { "CKM_PBA_SHA1_WITH_SHA1_HMAC", CKM_PBA_SHA1_WITH_SHA1_HMAC },
225*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_PRE_MASTER_KEY_GEN", CKM_WTLS_PRE_MASTER_KEY_GEN },
226*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_MASTER_KEY_DERIVE", CKM_WTLS_MASTER_KEY_DERIVE },
227*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_MASTER_KEY_DERIVE_DH_ECC",
228*9341SAnthony.Scarpino@Sun.COM CKM_WTLS_MASTER_KEY_DERIVE_DH_ECC },
229*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_PRF", CKM_WTLS_PRF },
230*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_SERVER_KEY_AND_MAC_DERIVE",
231*9341SAnthony.Scarpino@Sun.COM CKM_WTLS_SERVER_KEY_AND_MAC_DERIVE },
232*9341SAnthony.Scarpino@Sun.COM { "CKM_WTLS_CLIENT_KEY_AND_MAC_DERIVE",
233*9341SAnthony.Scarpino@Sun.COM CKM_WTLS_CLIENT_KEY_AND_MAC_DERIVE },
2340Sstevel@tonic-gate { "CKM_KEY_WRAP_LYNKS", CKM_KEY_WRAP_LYNKS },
2350Sstevel@tonic-gate { "CKM_KEY_WRAP_SET_OAEP", CKM_KEY_WRAP_SET_OAEP },
2365818Smcpowers { "CKM_KIP_DERIVE", CKM_KIP_DERIVE },
2375818Smcpowers { "CKM_KIP_WRAP", CKM_KIP_WRAP },
2385818Smcpowers { "CKM_KIP_MAC", CKM_KIP_MAC },
2395818Smcpowers { "CKM_CAMELLIA_KEY_GEN", CKM_CAMELLIA_KEY_GEN },
2405818Smcpowers { "CKM_CAMELLIA_ECB", CKM_CAMELLIA_ECB },
2415818Smcpowers { "CKM_CAMELLIA_CBC", CKM_CAMELLIA_CBC },
2425818Smcpowers { "CKM_CAMELLIA_MAC", CKM_CAMELLIA_MAC },
2435818Smcpowers { "CKM_CAMELLIA_MAC_GENERAL", CKM_CAMELLIA_MAC_GENERAL },
2445818Smcpowers { "CKM_CAMELLIA_CBC_PAD", CKM_CAMELLIA_CBC_PAD },
2455818Smcpowers { "CKM_CAMELLIA_ECB_ENCRYPT_DATA", CKM_CAMELLIA_ECB_ENCRYPT_DATA },
2465818Smcpowers { "CKM_CAMELLIA_CBC_ENCRYPT_DATA", CKM_CAMELLIA_CBC_ENCRYPT_DATA },
2475818Smcpowers { "CKM_CAMELLIA_CTR", CKM_CAMELLIA_CTR },
2485818Smcpowers { "CKM_ARIA_KEY_GEN", CKM_ARIA_KEY_GEN },
2495818Smcpowers { "CKM_ARIA_ECB", CKM_ARIA_ECB },
2505818Smcpowers { "CKM_ARIA_CBC", CKM_ARIA_CBC },
2515818Smcpowers { "CKM_ARIA_MAC", CKM_ARIA_MAC },
2525818Smcpowers { "CKM_ARIA_MAC_GENERAL", CKM_ARIA_MAC_GENERAL },
2535818Smcpowers { "CKM_ARIA_CBC_PAD", CKM_ARIA_CBC_PAD },
2545818Smcpowers { "CKM_ARIA_ECB_ENCRYPT_DATA", CKM_ARIA_ECB_ENCRYPT_DATA },
2555818Smcpowers { "CKM_ARIA_CBC_ENCRYPT_DATA", CKM_ARIA_CBC_ENCRYPT_DATA },
256*9341SAnthony.Scarpino@Sun.COM { "CKM_CMS_SIG", CKM_CMS_SIG },
2570Sstevel@tonic-gate { "CKM_SKIPJACK_KEY_GEN", CKM_SKIPJACK_KEY_GEN },
2580Sstevel@tonic-gate { "CKM_SKIPJACK_ECB64", CKM_SKIPJACK_ECB64 },
2590Sstevel@tonic-gate { "CKM_SKIPJACK_CBC64", CKM_SKIPJACK_CBC64 },
2600Sstevel@tonic-gate { "CKM_SKIPJACK_OFB64", CKM_SKIPJACK_OFB64 },
2610Sstevel@tonic-gate { "CKM_SKIPJACK_CFB64", CKM_SKIPJACK_CFB64 },
2620Sstevel@tonic-gate { "CKM_SKIPJACK_CFB32", CKM_SKIPJACK_CFB32 },
2630Sstevel@tonic-gate { "CKM_SKIPJACK_CFB16", CKM_SKIPJACK_CFB16 },
2640Sstevel@tonic-gate { "CKM_SKIPJACK_CFB8", CKM_SKIPJACK_CFB8 },
2650Sstevel@tonic-gate { "CKM_SKIPJACK_WRAP", CKM_SKIPJACK_WRAP },
2660Sstevel@tonic-gate { "CKM_SKIPJACK_PRIVATE_WRAP", CKM_SKIPJACK_PRIVATE_WRAP },
2670Sstevel@tonic-gate { "CKM_SKIPJACK_RELAYX", CKM_SKIPJACK_RELAYX },
2680Sstevel@tonic-gate { "CKM_KEA_KEY_PAIR_GEN", CKM_KEA_KEY_PAIR_GEN },
2690Sstevel@tonic-gate { "CKM_KEA_KEY_DERIVE", CKM_KEA_KEY_DERIVE },
2700Sstevel@tonic-gate { "CKM_FORTEZZA_TIMESTAMP", CKM_FORTEZZA_TIMESTAMP },
2710Sstevel@tonic-gate { "CKM_BATON_KEY_GEN", CKM_BATON_KEY_GEN },
2720Sstevel@tonic-gate { "CKM_BATON_ECB128", CKM_BATON_ECB128 },
2730Sstevel@tonic-gate { "CKM_BATON_ECB96", CKM_BATON_ECB96 },
2740Sstevel@tonic-gate { "CKM_BATON_CBC128", CKM_BATON_CBC128 },
2750Sstevel@tonic-gate { "CKM_BATON_COUNTER", CKM_BATON_COUNTER },
2760Sstevel@tonic-gate { "CKM_BATON_SHUFFLE", CKM_BATON_SHUFFLE },
2770Sstevel@tonic-gate { "CKM_BATON_WRAP", CKM_BATON_WRAP },
2780Sstevel@tonic-gate { "CKM_EC_KEY_PAIR_GEN", CKM_EC_KEY_PAIR_GEN },
2790Sstevel@tonic-gate { "CKM_ECDSA", CKM_ECDSA },
2800Sstevel@tonic-gate { "CKM_ECDSA_SHA1", CKM_ECDSA_SHA1 },
2810Sstevel@tonic-gate { "CKM_ECDH1_DERIVE", CKM_ECDH1_DERIVE },
2820Sstevel@tonic-gate { "CKM_ECDH1_COFACTOR_DERIVE", CKM_ECDH1_COFACTOR_DERIVE },
2830Sstevel@tonic-gate { "CKM_ECMQV_DERIVE", CKM_ECMQV_DERIVE },
2840Sstevel@tonic-gate { "CKM_JUNIPER_KEY_GEN", CKM_JUNIPER_KEY_GEN },
2850Sstevel@tonic-gate { "CKM_JUNIPER_ECB128", CKM_JUNIPER_ECB128 },
2860Sstevel@tonic-gate { "CKM_JUNIPER_CBC128", CKM_JUNIPER_CBC128 },
2870Sstevel@tonic-gate { "CKM_JUNIPER_COUNTER", CKM_JUNIPER_COUNTER },
2880Sstevel@tonic-gate { "CKM_JUNIPER_SHUFFLE", CKM_JUNIPER_SHUFFLE },
2890Sstevel@tonic-gate { "CKM_JUNIPER_WRAP", CKM_JUNIPER_WRAP },
2900Sstevel@tonic-gate { "CKM_FASTHASH", CKM_FASTHASH },
2910Sstevel@tonic-gate { "CKM_AES_KEY_GEN", CKM_AES_KEY_GEN },
2920Sstevel@tonic-gate { "CKM_AES_ECB", CKM_AES_ECB },
2930Sstevel@tonic-gate { "CKM_AES_CBC", CKM_AES_CBC },
2940Sstevel@tonic-gate { "CKM_AES_MAC", CKM_AES_MAC },
2950Sstevel@tonic-gate { "CKM_AES_MAC_GENERAL", CKM_AES_MAC_GENERAL },
2960Sstevel@tonic-gate { "CKM_AES_CBC_PAD", CKM_AES_CBC_PAD },
2975818Smcpowers { "CKM_AES_CTR", CKM_AES_CTR },
298676Sizick { "CKM_BLOWFISH_KEY_GEN", CKM_BLOWFISH_KEY_GEN },
299676Sizick { "CKM_BLOWFISH_CBC", CKM_BLOWFISH_CBC },
300676Sizick { "CKM_TWOFISH_KEY_GEN", CKM_TWOFISH_KEY_GEN },
301676Sizick { "CKM_TWOFISH_CBC", CKM_TWOFISH_CBC },
302676Sizick { "CKM_DES_ECB_ENCRYPT_DATA", CKM_DES_ECB_ENCRYPT_DATA },
303676Sizick { "CKM_DES_CBC_ENCRYPT_DATA", CKM_DES_CBC_ENCRYPT_DATA },
304676Sizick { "CKM_DES3_ECB_ENCRYPT_DATA", CKM_DES3_ECB_ENCRYPT_DATA },
305676Sizick { "CKM_DES3_CBC_ENCRYPT_DATA", CKM_DES3_CBC_ENCRYPT_DATA },
306676Sizick { "CKM_AES_ECB_ENCRYPT_DATA", CKM_AES_ECB_ENCRYPT_DATA },
307676Sizick { "CKM_AES_CBC_ENCRYPT_DATA", CKM_AES_CBC_ENCRYPT_DATA },
3080Sstevel@tonic-gate { "CKM_DSA_PARAMETER_GEN", CKM_DSA_PARAMETER_GEN },
3090Sstevel@tonic-gate { "CKM_DH_PKCS_PARAMETER_GEN", CKM_DH_PKCS_PARAMETER_GEN },
3100Sstevel@tonic-gate { "CKM_X9_42_DH_PARAMETER_GEN", CKM_X9_42_DH_PARAMETER_GEN },
3117011Sda73024 /*
3127106Sda73024 * Values >= 0x8000000 (CKM_VENDOR_DEFINED) are represented
3137011Sda73024 * as strings with hexadecimal numbers (e.g., "0x8123456").
3147011Sda73024 */
3150Sstevel@tonic-gate { NULL, 0 }
3160Sstevel@tonic-gate };
3170Sstevel@tonic-gate
3187011Sda73024
3197011Sda73024 /*
3207011Sda73024 * pkcs11_mech_comp - compare two pkcs11_mapping_t structures
3217011Sda73024 *
3227011Sda73024 * Return a strcmp-like result (positive, zero, or negative).
3237011Sda73024 * For use with bsearch(3C) in pkcs11_mech2str().
3247011Sda73024 */
3257011Sda73024 static int
pkcs11_mech_comp(const void * mapping1,const void * mapping2)3267011Sda73024 pkcs11_mech_comp(const void *mapping1, const void *mapping2) {
3277011Sda73024 return (((pkcs11_mapping_t *)mapping1)->mech -
3287011Sda73024 ((pkcs11_mapping_t *)mapping2)->mech);
3297011Sda73024 }
3307011Sda73024
3317011Sda73024
3320Sstevel@tonic-gate /*
3330Sstevel@tonic-gate * pkcs11_mech2str - convert PKCS#11 mech to a string
3340Sstevel@tonic-gate *
3350Sstevel@tonic-gate * Anything below CKM_VENDOR_DEFINED that wasn't in the mapping table
3360Sstevel@tonic-gate * at build time causes NULL to be returned. Anything above it also
3377011Sda73024 * returns NULL since we have no way to know its real name.
3380Sstevel@tonic-gate */
3397011Sda73024 const char
pkcs11_mech2str(CK_MECHANISM_TYPE mech)3400Sstevel@tonic-gate *pkcs11_mech2str(CK_MECHANISM_TYPE mech)
3410Sstevel@tonic-gate {
3427011Sda73024 pkcs11_mapping_t target;
3437011Sda73024 pkcs11_mapping_t *result = NULL;
3440Sstevel@tonic-gate
3457106Sda73024 if (mech >= CKM_VENDOR_DEFINED) {
3467011Sda73024 return (NULL);
3470Sstevel@tonic-gate }
3480Sstevel@tonic-gate
3497011Sda73024 /* Search for the mechanism number using bsearch(3C) */
3507011Sda73024 target.mech = mech;
3517011Sda73024 target.str = NULL;
3527011Sda73024 result = (pkcs11_mapping_t *)bsearch((void *)&target, (void *)mapping,
3537011Sda73024 (sizeof (mapping) / sizeof (pkcs11_mapping_t)) - 1,
3547011Sda73024 sizeof (pkcs11_mapping_t), pkcs11_mech_comp);
3557011Sda73024 if (result != NULL) {
3567011Sda73024 return (result->str);
3570Sstevel@tonic-gate }
3580Sstevel@tonic-gate
3590Sstevel@tonic-gate return (NULL);
3600Sstevel@tonic-gate }
3610Sstevel@tonic-gate
3620Sstevel@tonic-gate /*
3630Sstevel@tonic-gate * pkcs11_str2mech - convert a string into a PKCS#11 mech number.
3640Sstevel@tonic-gate *
3657011Sda73024 * Since there isn't a reserved value for an invalid mech we return
3660Sstevel@tonic-gate * CKR_MECHANISM_INVALID for anything we don't recognise.
3670Sstevel@tonic-gate * The value in mech isn't meaningful in these cases.
3680Sstevel@tonic-gate */
3690Sstevel@tonic-gate CK_RV
pkcs11_str2mech(char * mech_str,CK_MECHANISM_TYPE_PTR mech)3700Sstevel@tonic-gate pkcs11_str2mech(char *mech_str, CK_MECHANISM_TYPE_PTR mech)
3710Sstevel@tonic-gate {
3727011Sda73024 int i;
3737011Sda73024 int compare_off = 0;
3740Sstevel@tonic-gate
3750Sstevel@tonic-gate if (mech_str == NULL)
3760Sstevel@tonic-gate return (CKR_MECHANISM_INVALID);
3770Sstevel@tonic-gate
3787011Sda73024 if (strncasecmp(mech_str, "0x", 2) == 0) {
3797011Sda73024 long long llnum;
3800Sstevel@tonic-gate cryptodebug("pkcs11_str2mech: hex string passed in: %s",
3810Sstevel@tonic-gate mech_str);
3827011Sda73024 llnum = strtoll(mech_str, NULL, 16);
3837011Sda73024 if ((llnum >= CKM_VENDOR_DEFINED) && (llnum <= UINT_MAX)) {
3847011Sda73024 *mech = llnum;
3857011Sda73024 return (CKR_OK);
3867011Sda73024 } else {
3877011Sda73024 return (CKR_MECHANISM_INVALID);
3887011Sda73024 }
3890Sstevel@tonic-gate }
3900Sstevel@tonic-gate
3917011Sda73024 /* If there's no CKM_ prefix, then ignore it in comparisons */
3920Sstevel@tonic-gate if (strncasecmp(mech_str, "CKM_", 4) != 0) {
3930Sstevel@tonic-gate cryptodebug("pkcs11_str2mech: no CKM_ prefix: %s", mech_str);
3947011Sda73024 cryptodebug("pkcs11_str2mech: with prefix: CKM_%s", mech_str);
3957011Sda73024 compare_off = 4;
3960Sstevel@tonic-gate }
3970Sstevel@tonic-gate
3987011Sda73024 /* Linear search for a matching string */
3990Sstevel@tonic-gate for (i = 0; mapping[i].str; i++) {
4007011Sda73024 if (strcasecmp(&mapping[i].str[compare_off], mech_str) == 0) {
4010Sstevel@tonic-gate *mech = mapping[i].mech;
4020Sstevel@tonic-gate return (CKR_OK);
4030Sstevel@tonic-gate }
4040Sstevel@tonic-gate }
4050Sstevel@tonic-gate
4060Sstevel@tonic-gate return (CKR_MECHANISM_INVALID);
4070Sstevel@tonic-gate }
408