xref: /netbsd-src/crypto/external/bsd/openssl/dist/crypto/evp/ec_support.c (revision b0d1725196a7921d003d2c66a14f186abda4176b)
1*b0d17251Schristos /*
2*b0d17251Schristos  * Copyright 2020-2022 The OpenSSL Project Authors. All Rights Reserved.
3*b0d17251Schristos  *
4*b0d17251Schristos  * Licensed under the Apache License 2.0 (the "License").  You may not use
5*b0d17251Schristos  * this file except in compliance with the License.  You can obtain a copy
6*b0d17251Schristos  * in the file LICENSE in the source distribution or at
7*b0d17251Schristos  * https://www.openssl.org/source/license.html
8*b0d17251Schristos  */
9*b0d17251Schristos 
10*b0d17251Schristos #include <string.h>
11*b0d17251Schristos #include <openssl/ec.h>
12*b0d17251Schristos #include "crypto/ec.h"
13*b0d17251Schristos #include "internal/nelem.h"
14*b0d17251Schristos 
15*b0d17251Schristos typedef struct ec_name2nid_st {
16*b0d17251Schristos     const char *name;
17*b0d17251Schristos     int nid;
18*b0d17251Schristos } EC_NAME2NID;
19*b0d17251Schristos 
20*b0d17251Schristos static const EC_NAME2NID curve_list[] = {
21*b0d17251Schristos     /* prime field curves */
22*b0d17251Schristos     /* secg curves */
23*b0d17251Schristos     {"secp112r1", NID_secp112r1 },
24*b0d17251Schristos     {"secp112r2", NID_secp112r2 },
25*b0d17251Schristos     {"secp128r1", NID_secp128r1 },
26*b0d17251Schristos     {"secp128r2", NID_secp128r2 },
27*b0d17251Schristos     {"secp160k1", NID_secp160k1 },
28*b0d17251Schristos     {"secp160r1", NID_secp160r1 },
29*b0d17251Schristos     {"secp160r2", NID_secp160r2 },
30*b0d17251Schristos     {"secp192k1", NID_secp192k1 },
31*b0d17251Schristos     {"secp224k1", NID_secp224k1 },
32*b0d17251Schristos     {"secp224r1", NID_secp224r1 },
33*b0d17251Schristos     {"secp256k1", NID_secp256k1 },
34*b0d17251Schristos     {"secp384r1", NID_secp384r1 },
35*b0d17251Schristos     {"secp521r1", NID_secp521r1 },
36*b0d17251Schristos     /* X9.62 curves */
37*b0d17251Schristos     {"prime192v1", NID_X9_62_prime192v1 },
38*b0d17251Schristos     {"prime192v2", NID_X9_62_prime192v2 },
39*b0d17251Schristos     {"prime192v3", NID_X9_62_prime192v3 },
40*b0d17251Schristos     {"prime239v1", NID_X9_62_prime239v1 },
41*b0d17251Schristos     {"prime239v2", NID_X9_62_prime239v2 },
42*b0d17251Schristos     {"prime239v3", NID_X9_62_prime239v3 },
43*b0d17251Schristos     {"prime256v1", NID_X9_62_prime256v1 },
44*b0d17251Schristos     /* characteristic two field curves */
45*b0d17251Schristos     /* NIST/SECG curves */
46*b0d17251Schristos     {"sect113r1", NID_sect113r1 },
47*b0d17251Schristos     {"sect113r2", NID_sect113r2 },
48*b0d17251Schristos     {"sect131r1", NID_sect131r1 },
49*b0d17251Schristos     {"sect131r2", NID_sect131r2 },
50*b0d17251Schristos     {"sect163k1", NID_sect163k1 },
51*b0d17251Schristos     {"sect163r1", NID_sect163r1 },
52*b0d17251Schristos     {"sect163r2", NID_sect163r2 },
53*b0d17251Schristos     {"sect193r1", NID_sect193r1 },
54*b0d17251Schristos     {"sect193r2", NID_sect193r2 },
55*b0d17251Schristos     {"sect233k1", NID_sect233k1 },
56*b0d17251Schristos     {"sect233r1", NID_sect233r1 },
57*b0d17251Schristos     {"sect239k1", NID_sect239k1 },
58*b0d17251Schristos     {"sect283k1", NID_sect283k1 },
59*b0d17251Schristos     {"sect283r1", NID_sect283r1 },
60*b0d17251Schristos     {"sect409k1", NID_sect409k1 },
61*b0d17251Schristos     {"sect409r1", NID_sect409r1 },
62*b0d17251Schristos     {"sect571k1", NID_sect571k1 },
63*b0d17251Schristos     {"sect571r1", NID_sect571r1 },
64*b0d17251Schristos     /* X9.62 curves */
65*b0d17251Schristos     {"c2pnb163v1", NID_X9_62_c2pnb163v1 },
66*b0d17251Schristos     {"c2pnb163v2", NID_X9_62_c2pnb163v2 },
67*b0d17251Schristos     {"c2pnb163v3", NID_X9_62_c2pnb163v3 },
68*b0d17251Schristos     {"c2pnb176v1", NID_X9_62_c2pnb176v1 },
69*b0d17251Schristos     {"c2tnb191v1", NID_X9_62_c2tnb191v1 },
70*b0d17251Schristos     {"c2tnb191v2", NID_X9_62_c2tnb191v2 },
71*b0d17251Schristos     {"c2tnb191v3", NID_X9_62_c2tnb191v3 },
72*b0d17251Schristos     {"c2pnb208w1", NID_X9_62_c2pnb208w1 },
73*b0d17251Schristos     {"c2tnb239v1", NID_X9_62_c2tnb239v1 },
74*b0d17251Schristos     {"c2tnb239v2", NID_X9_62_c2tnb239v2 },
75*b0d17251Schristos     {"c2tnb239v3", NID_X9_62_c2tnb239v3 },
76*b0d17251Schristos     {"c2pnb272w1", NID_X9_62_c2pnb272w1 },
77*b0d17251Schristos     {"c2pnb304w1", NID_X9_62_c2pnb304w1 },
78*b0d17251Schristos     {"c2tnb359v1", NID_X9_62_c2tnb359v1 },
79*b0d17251Schristos     {"c2pnb368w1", NID_X9_62_c2pnb368w1 },
80*b0d17251Schristos     {"c2tnb431r1", NID_X9_62_c2tnb431r1 },
81*b0d17251Schristos     /*
82*b0d17251Schristos      * the WAP/WTLS curves [unlike SECG, spec has its own OIDs for curves
83*b0d17251Schristos      * from X9.62]
84*b0d17251Schristos      */
85*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls1", NID_wap_wsg_idm_ecid_wtls1 },
86*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls3", NID_wap_wsg_idm_ecid_wtls3 },
87*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls4", NID_wap_wsg_idm_ecid_wtls4 },
88*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls5", NID_wap_wsg_idm_ecid_wtls5 },
89*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls6", NID_wap_wsg_idm_ecid_wtls6 },
90*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls7", NID_wap_wsg_idm_ecid_wtls7 },
91*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls8", NID_wap_wsg_idm_ecid_wtls8 },
92*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls9", NID_wap_wsg_idm_ecid_wtls9 },
93*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls10", NID_wap_wsg_idm_ecid_wtls10 },
94*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls11", NID_wap_wsg_idm_ecid_wtls11 },
95*b0d17251Schristos     {"wap-wsg-idm-ecid-wtls12", NID_wap_wsg_idm_ecid_wtls12 },
96*b0d17251Schristos     /* IPSec curves */
97*b0d17251Schristos     {"Oakley-EC2N-3", NID_ipsec3 },
98*b0d17251Schristos     {"Oakley-EC2N-4", NID_ipsec4 },
99*b0d17251Schristos     /* brainpool curves */
100*b0d17251Schristos     {"brainpoolP160r1", NID_brainpoolP160r1 },
101*b0d17251Schristos     {"brainpoolP160t1", NID_brainpoolP160t1 },
102*b0d17251Schristos     {"brainpoolP192r1", NID_brainpoolP192r1 },
103*b0d17251Schristos     {"brainpoolP192t1", NID_brainpoolP192t1 },
104*b0d17251Schristos     {"brainpoolP224r1", NID_brainpoolP224r1 },
105*b0d17251Schristos     {"brainpoolP224t1", NID_brainpoolP224t1 },
106*b0d17251Schristos     {"brainpoolP256r1", NID_brainpoolP256r1 },
107*b0d17251Schristos     {"brainpoolP256t1", NID_brainpoolP256t1 },
108*b0d17251Schristos     {"brainpoolP320r1", NID_brainpoolP320r1 },
109*b0d17251Schristos     {"brainpoolP320t1", NID_brainpoolP320t1 },
110*b0d17251Schristos     {"brainpoolP384r1", NID_brainpoolP384r1 },
111*b0d17251Schristos     {"brainpoolP384t1", NID_brainpoolP384t1 },
112*b0d17251Schristos     {"brainpoolP512r1", NID_brainpoolP512r1 },
113*b0d17251Schristos     {"brainpoolP512t1", NID_brainpoolP512t1 },
114*b0d17251Schristos     /* SM2 curve */
115*b0d17251Schristos     {"SM2", NID_sm2 },
116*b0d17251Schristos };
117*b0d17251Schristos 
OSSL_EC_curve_nid2name(int nid)118*b0d17251Schristos const char *OSSL_EC_curve_nid2name(int nid)
119*b0d17251Schristos {
120*b0d17251Schristos     size_t i;
121*b0d17251Schristos 
122*b0d17251Schristos     if (nid <= 0)
123*b0d17251Schristos         return NULL;
124*b0d17251Schristos 
125*b0d17251Schristos     for (i = 0; i < OSSL_NELEM(curve_list); i++) {
126*b0d17251Schristos         if (curve_list[i].nid == nid)
127*b0d17251Schristos             return curve_list[i].name;
128*b0d17251Schristos     }
129*b0d17251Schristos     return NULL;
130*b0d17251Schristos }
131*b0d17251Schristos 
ossl_ec_curve_name2nid(const char * name)132*b0d17251Schristos int ossl_ec_curve_name2nid(const char *name)
133*b0d17251Schristos {
134*b0d17251Schristos     size_t i;
135*b0d17251Schristos     int nid;
136*b0d17251Schristos 
137*b0d17251Schristos     if (name != NULL) {
138*b0d17251Schristos         if ((nid = ossl_ec_curve_nist2nid_int(name)) != NID_undef)
139*b0d17251Schristos             return nid;
140*b0d17251Schristos 
141*b0d17251Schristos         for (i = 0; i < OSSL_NELEM(curve_list); i++) {
142*b0d17251Schristos             if (OPENSSL_strcasecmp(curve_list[i].name, name) == 0)
143*b0d17251Schristos                 return curve_list[i].nid;
144*b0d17251Schristos         }
145*b0d17251Schristos     }
146*b0d17251Schristos 
147*b0d17251Schristos     return NID_undef;
148*b0d17251Schristos }
149*b0d17251Schristos 
150*b0d17251Schristos /* Functions to translate between common NIST curve names and NIDs */
151*b0d17251Schristos 
152*b0d17251Schristos static const EC_NAME2NID nist_curves[] = {
153*b0d17251Schristos     {"B-163", NID_sect163r2},
154*b0d17251Schristos     {"B-233", NID_sect233r1},
155*b0d17251Schristos     {"B-283", NID_sect283r1},
156*b0d17251Schristos     {"B-409", NID_sect409r1},
157*b0d17251Schristos     {"B-571", NID_sect571r1},
158*b0d17251Schristos     {"K-163", NID_sect163k1},
159*b0d17251Schristos     {"K-233", NID_sect233k1},
160*b0d17251Schristos     {"K-283", NID_sect283k1},
161*b0d17251Schristos     {"K-409", NID_sect409k1},
162*b0d17251Schristos     {"K-571", NID_sect571k1},
163*b0d17251Schristos     {"P-192", NID_X9_62_prime192v1},
164*b0d17251Schristos     {"P-224", NID_secp224r1},
165*b0d17251Schristos     {"P-256", NID_X9_62_prime256v1},
166*b0d17251Schristos     {"P-384", NID_secp384r1},
167*b0d17251Schristos     {"P-521", NID_secp521r1}
168*b0d17251Schristos };
169*b0d17251Schristos 
ossl_ec_curve_nid2nist_int(int nid)170*b0d17251Schristos const char *ossl_ec_curve_nid2nist_int(int nid)
171*b0d17251Schristos {
172*b0d17251Schristos     size_t i;
173*b0d17251Schristos     for (i = 0; i < OSSL_NELEM(nist_curves); i++) {
174*b0d17251Schristos         if (nist_curves[i].nid == nid)
175*b0d17251Schristos             return nist_curves[i].name;
176*b0d17251Schristos     }
177*b0d17251Schristos     return NULL;
178*b0d17251Schristos }
179*b0d17251Schristos 
ossl_ec_curve_nist2nid_int(const char * name)180*b0d17251Schristos int ossl_ec_curve_nist2nid_int(const char *name)
181*b0d17251Schristos {
182*b0d17251Schristos     size_t i;
183*b0d17251Schristos     for (i = 0; i < OSSL_NELEM(nist_curves); i++) {
184*b0d17251Schristos         if (strcmp(nist_curves[i].name, name) == 0)
185*b0d17251Schristos             return nist_curves[i].nid;
186*b0d17251Schristos     }
187*b0d17251Schristos     return NID_undef;
188*b0d17251Schristos }
189