blob: 3129ef487231c0e4fb8c87416c7b35d6d9e89c9d [file] [log] [blame]
Avi Drissman201a9a832022-09-13 19:39:251// Copyright 2012 The Chromium Authors
rch@chromium.orge4c18472012-01-25 00:56:432// Use of this source code is governed by a BSD-style license that can be
3// found in the LICENSE file.
4
mattm@chromium.org6b2e61f2012-02-28 08:06:545#include "crypto/ec_signature_creator_impl.h"
rch@chromium.orge4c18472012-01-25 00:56:436
avidd373b8b2015-12-21 21:34:437#include <stddef.h>
8#include <stdint.h>
digit@chromium.org012c2872013-10-25 17:26:089
digit@chromium.org012c2872013-10-25 17:26:0810#include "crypto/ec_private_key.h"
11#include "crypto/openssl_util.h"
tfarina29a3a1742016-10-28 18:47:3312#include "third_party/boringssl/src/include/openssl/bn.h"
13#include "third_party/boringssl/src/include/openssl/ec.h"
14#include "third_party/boringssl/src/include/openssl/ecdsa.h"
15#include "third_party/boringssl/src/include/openssl/evp.h"
16#include "third_party/boringssl/src/include/openssl/sha.h"
rch@chromium.orge4c18472012-01-25 00:56:4317
18namespace crypto {
19
mattm@chromium.org6b2e61f2012-02-28 08:06:5420ECSignatureCreatorImpl::ECSignatureCreatorImpl(ECPrivateKey* key)
mlamourief55346a2015-10-21 01:23:0921 : key_(key) {
digit@chromium.org012c2872013-10-25 17:26:0822 EnsureOpenSSLInit();
rch@chromium.orge4c18472012-01-25 00:56:4323}
24
Chris Watkinsa850a302017-11-30 03:53:4925ECSignatureCreatorImpl::~ECSignatureCreatorImpl() = default;
rch@chromium.orge4c18472012-01-25 00:56:4326
Hubert Chao7248d5832021-07-21 16:33:2627bool ECSignatureCreatorImpl::Sign(base::span<const uint8_t> data,
avidd373b8b2015-12-21 21:34:4328 std::vector<uint8_t>* signature) {
digit@chromium.org012c2872013-10-25 17:26:0829 OpenSSLErrStackTracer err_tracer(FROM_HERE);
davidben74f67442016-10-01 01:45:2230 bssl::ScopedEVP_MD_CTX ctx;
digit@chromium.org012c2872013-10-25 17:26:0831 size_t sig_len = 0;
32 if (!ctx.get() ||
rsleeviffe5a132016-06-28 01:51:5233 !EVP_DigestSignInit(ctx.get(), nullptr, EVP_sha256(), nullptr,
34 key_->key()) ||
Hubert Chao7248d5832021-07-21 16:33:2635 !EVP_DigestSignUpdate(ctx.get(), data.data(), data.size()) ||
rsleeviffe5a132016-06-28 01:51:5236 !EVP_DigestSignFinal(ctx.get(), nullptr, &sig_len)) {
digit@chromium.org012c2872013-10-25 17:26:0837 return false;
38 }
39
40 signature->resize(sig_len);
41 if (!EVP_DigestSignFinal(ctx.get(), &signature->front(), &sig_len))
42 return false;
43
rsleeviffe5a132016-06-28 01:51:5244 // NOTE: A call to EVP_DigestSignFinal() with a nullptr second parameter
45 // returns a maximum allocation size, while the call without a nullptr
46 // returns the real one, which may be smaller.
digit@chromium.org012c2872013-10-25 17:26:0847 signature->resize(sig_len);
48 return true;
rch@chromium.orge4c18472012-01-25 00:56:4349}
50
avidd373b8b2015-12-21 21:34:4351bool ECSignatureCreatorImpl::DecodeSignature(
52 const std::vector<uint8_t>& der_sig,
53 std::vector<uint8_t>* out_raw_sig) {
digit@chromium.org012c2872013-10-25 17:26:0854 OpenSSLErrStackTracer err_tracer(FROM_HERE);
55 // Create ECDSA_SIG object from DER-encoded data.
davidben74f67442016-10-01 01:45:2256 bssl::UniquePtr<ECDSA_SIG> ecdsa_sig(
davidben7dad2a32016-03-01 23:47:4757 ECDSA_SIG_from_bytes(der_sig.data(), der_sig.size()));
digit@chromium.org012c2872013-10-25 17:26:0858 if (!ecdsa_sig.get())
59 return false;
60
61 // The result is made of two 32-byte vectors.
62 const size_t kMaxBytesPerBN = 32;
avidd373b8b2015-12-21 21:34:4363 std::vector<uint8_t> result(2 * kMaxBytesPerBN);
digit@chromium.org012c2872013-10-25 17:26:0864
eroman0f4b27702014-11-10 23:43:3865 if (!BN_bn2bin_padded(&result[0], kMaxBytesPerBN, ecdsa_sig->r) ||
66 !BN_bn2bin_padded(&result[kMaxBytesPerBN], kMaxBytesPerBN,
67 ecdsa_sig->s)) {
digit@chromium.org012c2872013-10-25 17:26:0868 return false;
69 }
digit@chromium.org012c2872013-10-25 17:26:0870 out_raw_sig->swap(result);
71 return true;
agl@chromium.org7c3090a02012-09-19 15:11:3372}
73
rch@chromium.orge4c18472012-01-25 00:56:4374} // namespace crypto