1 /* 2 * Copyright 1995-2016 The OpenSSL Project Authors. All Rights Reserved. 3 * 4 * Licensed under the OpenSSL license (the "License"). You may not use 5 * this file except in compliance with the License. You can obtain a copy 6 * in the file LICENSE in the source distribution or at 7 * https://www.openssl.org/source/license.html 8 */ 9 10 #include <stdio.h> 11 #include <stdlib.h> 12 #include <string.h> 13 #include <sys/types.h> 14 #include <sys/stat.h> 15 16 #include "../e_os.h" 17 18 #include <openssl/crypto.h> 19 #include <openssl/rand.h> 20 #include <openssl/bio.h> 21 #include <openssl/err.h> 22 #include <openssl/bn.h> 23 24 #ifdef OPENSSL_NO_DSA 25 int main(int argc, char *argv[]) 26 { 27 printf("No DSA support\n"); 28 return (0); 29 } 30 #else 31 # include <openssl/dsa.h> 32 33 static int dsa_cb(int p, int n, BN_GENCB *arg); 34 35 /* 36 * seed, out_p, out_q, out_g are taken from the updated Appendix 5 to FIPS 37 * PUB 186 and also appear in Appendix 5 to FIPS PIB 186-1 38 */ 39 static unsigned char seed[20] = { 40 0xd5, 0x01, 0x4e, 0x4b, 0x60, 0xef, 0x2b, 0xa8, 0xb6, 0x21, 0x1b, 0x40, 41 0x62, 0xba, 0x32, 0x24, 0xe0, 0x42, 0x7d, 0xd3, 42 }; 43 44 static unsigned char out_p[] = { 45 0x8d, 0xf2, 0xa4, 0x94, 0x49, 0x22, 0x76, 0xaa, 46 0x3d, 0x25, 0x75, 0x9b, 0xb0, 0x68, 0x69, 0xcb, 47 0xea, 0xc0, 0xd8, 0x3a, 0xfb, 0x8d, 0x0c, 0xf7, 48 0xcb, 0xb8, 0x32, 0x4f, 0x0d, 0x78, 0x82, 0xe5, 49 0xd0, 0x76, 0x2f, 0xc5, 0xb7, 0x21, 0x0e, 0xaf, 50 0xc2, 0xe9, 0xad, 0xac, 0x32, 0xab, 0x7a, 0xac, 51 0x49, 0x69, 0x3d, 0xfb, 0xf8, 0x37, 0x24, 0xc2, 52 0xec, 0x07, 0x36, 0xee, 0x31, 0xc8, 0x02, 0x91, 53 }; 54 55 static unsigned char out_q[] = { 56 0xc7, 0x73, 0x21, 0x8c, 0x73, 0x7e, 0xc8, 0xee, 57 0x99, 0x3b, 0x4f, 0x2d, 0xed, 0x30, 0xf4, 0x8e, 58 0xda, 0xce, 0x91, 0x5f, 59 }; 60 61 static unsigned char out_g[] = { 62 0x62, 0x6d, 0x02, 0x78, 0x39, 0xea, 0x0a, 0x13, 63 0x41, 0x31, 0x63, 0xa5, 0x5b, 0x4c, 0xb5, 0x00, 64 0x29, 0x9d, 0x55, 0x22, 0x95, 0x6c, 0xef, 0xcb, 65 0x3b, 0xff, 0x10, 0xf3, 0x99, 0xce, 0x2c, 0x2e, 66 0x71, 0xcb, 0x9d, 0xe5, 0xfa, 0x24, 0xba, 0xbf, 67 0x58, 0xe5, 0xb7, 0x95, 0x21, 0x92, 0x5c, 0x9c, 68 0xc4, 0x2e, 0x9f, 0x6f, 0x46, 0x4b, 0x08, 0x8c, 69 0xc5, 0x72, 0xaf, 0x53, 0xe6, 0xd7, 0x88, 0x02, 70 }; 71 72 static const unsigned char str1[] = "12345678901234567890"; 73 74 static const char rnd_seed[] = 75 "string to make the random number generator think it has entropy"; 76 77 static BIO *bio_err = NULL; 78 79 int main(int argc, char **argv) 80 { 81 BN_GENCB *cb; 82 DSA *dsa = NULL; 83 int counter, ret = 0, i, j; 84 unsigned char buf[256]; 85 unsigned long h; 86 unsigned char sig[256]; 87 unsigned int siglen; 88 const BIGNUM *p = NULL, *q = NULL, *g = NULL; 89 90 if (bio_err == NULL) 91 bio_err = BIO_new_fp(stderr, BIO_NOCLOSE | BIO_FP_TEXT); 92 93 CRYPTO_set_mem_debug(1); 94 CRYPTO_mem_ctrl(CRYPTO_MEM_CHECK_ON); 95 96 RAND_seed(rnd_seed, sizeof(rnd_seed)); 97 98 BIO_printf(bio_err, "test generation of DSA parameters\n"); 99 100 cb = BN_GENCB_new(); 101 if (!cb) 102 goto end; 103 104 BN_GENCB_set(cb, dsa_cb, bio_err); 105 if (((dsa = DSA_new()) == NULL) || !DSA_generate_parameters_ex(dsa, 512, 106 seed, 20, 107 &counter, 108 &h, cb)) 109 goto end; 110 111 BIO_printf(bio_err, "seed\n"); 112 for (i = 0; i < 20; i += 4) { 113 BIO_printf(bio_err, "%02X%02X%02X%02X ", 114 seed[i], seed[i + 1], seed[i + 2], seed[i + 3]); 115 } 116 BIO_printf(bio_err, "\ncounter=%d h=%ld\n", counter, h); 117 118 DSA_print(bio_err, dsa, 0); 119 if (counter != 105) { 120 BIO_printf(bio_err, "counter should be 105\n"); 121 goto end; 122 } 123 if (h != 2) { 124 BIO_printf(bio_err, "h should be 2\n"); 125 goto end; 126 } 127 128 DSA_get0_pqg(dsa, &p, &q, &g); 129 i = BN_bn2bin(q, buf); 130 j = sizeof(out_q); 131 if ((i != j) || (memcmp(buf, out_q, i) != 0)) { 132 BIO_printf(bio_err, "q value is wrong\n"); 133 goto end; 134 } 135 136 i = BN_bn2bin(p, buf); 137 j = sizeof(out_p); 138 if ((i != j) || (memcmp(buf, out_p, i) != 0)) { 139 BIO_printf(bio_err, "p value is wrong\n"); 140 goto end; 141 } 142 143 i = BN_bn2bin(g, buf); 144 j = sizeof(out_g); 145 if ((i != j) || (memcmp(buf, out_g, i) != 0)) { 146 BIO_printf(bio_err, "g value is wrong\n"); 147 goto end; 148 } 149 150 DSA_generate_key(dsa); 151 DSA_sign(0, str1, 20, sig, &siglen, dsa); 152 if (DSA_verify(0, str1, 20, sig, siglen, dsa) == 1) 153 ret = 1; 154 155 end: 156 if (!ret) 157 ERR_print_errors(bio_err); 158 DSA_free(dsa); 159 BN_GENCB_free(cb); 160 161 #ifndef OPENSSL_NO_CRYPTO_MDEBUG 162 if (CRYPTO_mem_leaks(bio_err) <= 0) 163 ret = 0; 164 #endif 165 BIO_free(bio_err); 166 bio_err = NULL; 167 EXIT(!ret); 168 } 169 170 static int dsa_cb(int p, int n, BN_GENCB *arg) 171 { 172 char c = '*'; 173 static int ok = 0, num = 0; 174 175 if (p == 0) { 176 c = '.'; 177 num++; 178 }; 179 if (p == 1) 180 c = '+'; 181 if (p == 2) { 182 c = '*'; 183 ok++; 184 } 185 if (p == 3) 186 c = '\n'; 187 BIO_write(BN_GENCB_get_arg(arg), &c, 1); 188 (void)BIO_flush(BN_GENCB_get_arg(arg)); 189 190 if (!ok && (p == 0) && (num > 1)) { 191 BIO_printf(BN_GENCB_get_arg(arg), "error in dsatest\n"); 192 return 0; 193 } 194 return 1; 195 } 196 #endif 197