eng_pkey.c 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187
  1. /* crypto/engine/eng_pkey.c */
  2. /* ====================================================================
  3. * Copyright (c) 1999-2001 The OpenSSL Project. All rights reserved.
  4. *
  5. * Redistribution and use in source and binary forms, with or without
  6. * modification, are permitted provided that the following conditions
  7. * are met:
  8. *
  9. * 1. Redistributions of source code must retain the above copyright
  10. * notice, this list of conditions and the following disclaimer.
  11. *
  12. * 2. Redistributions in binary form must reproduce the above copyright
  13. * notice, this list of conditions and the following disclaimer in
  14. * the documentation and/or other materials provided with the
  15. * distribution.
  16. *
  17. * 3. All advertising materials mentioning features or use of this
  18. * software must display the following acknowledgment:
  19. * "This product includes software developed by the OpenSSL Project
  20. * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
  21. *
  22. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  23. * endorse or promote products derived from this software without
  24. * prior written permission. For written permission, please contact
  25. * licensing@OpenSSL.org.
  26. *
  27. * 5. Products derived from this software may not be called "OpenSSL"
  28. * nor may "OpenSSL" appear in their names without prior written
  29. * permission of the OpenSSL Project.
  30. *
  31. * 6. Redistributions of any form whatsoever must retain the following
  32. * acknowledgment:
  33. * "This product includes software developed by the OpenSSL Project
  34. * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
  35. *
  36. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  37. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  38. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  39. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  40. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  41. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  42. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  43. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  44. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  45. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  46. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  47. * OF THE POSSIBILITY OF SUCH DAMAGE.
  48. * ====================================================================
  49. *
  50. * This product includes cryptographic software written by Eric Young
  51. * (eay@cryptsoft.com). This product includes software written by Tim
  52. * Hudson (tjh@cryptsoft.com).
  53. *
  54. */
  55. #include "eng_int.h"
  56. /* Basic get/set stuff */
  57. int ENGINE_set_load_privkey_function(ENGINE *e,
  58. ENGINE_LOAD_KEY_PTR loadpriv_f)
  59. {
  60. e->load_privkey = loadpriv_f;
  61. return 1;
  62. }
  63. int ENGINE_set_load_pubkey_function(ENGINE *e, ENGINE_LOAD_KEY_PTR loadpub_f)
  64. {
  65. e->load_pubkey = loadpub_f;
  66. return 1;
  67. }
  68. int ENGINE_set_load_ssl_client_cert_function(ENGINE *e,
  69. ENGINE_SSL_CLIENT_CERT_PTR
  70. loadssl_f)
  71. {
  72. e->load_ssl_client_cert = loadssl_f;
  73. return 1;
  74. }
  75. ENGINE_LOAD_KEY_PTR ENGINE_get_load_privkey_function(const ENGINE *e)
  76. {
  77. return e->load_privkey;
  78. }
  79. ENGINE_LOAD_KEY_PTR ENGINE_get_load_pubkey_function(const ENGINE *e)
  80. {
  81. return e->load_pubkey;
  82. }
  83. ENGINE_SSL_CLIENT_CERT_PTR ENGINE_get_ssl_client_cert_function(const ENGINE
  84. *e)
  85. {
  86. return e->load_ssl_client_cert;
  87. }
  88. /* API functions to load public/private keys */
  89. EVP_PKEY *ENGINE_load_private_key(ENGINE *e, const char *key_id,
  90. UI_METHOD *ui_method, void *callback_data)
  91. {
  92. EVP_PKEY *pkey;
  93. if (e == NULL) {
  94. ENGINEerr(ENGINE_F_ENGINE_LOAD_PRIVATE_KEY,
  95. ERR_R_PASSED_NULL_PARAMETER);
  96. return 0;
  97. }
  98. CRYPTO_w_lock(CRYPTO_LOCK_ENGINE);
  99. if (e->funct_ref == 0) {
  100. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  101. ENGINEerr(ENGINE_F_ENGINE_LOAD_PRIVATE_KEY, ENGINE_R_NOT_INITIALISED);
  102. return 0;
  103. }
  104. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  105. if (!e->load_privkey) {
  106. ENGINEerr(ENGINE_F_ENGINE_LOAD_PRIVATE_KEY,
  107. ENGINE_R_NO_LOAD_FUNCTION);
  108. return 0;
  109. }
  110. pkey = e->load_privkey(e, key_id, ui_method, callback_data);
  111. if (!pkey) {
  112. ENGINEerr(ENGINE_F_ENGINE_LOAD_PRIVATE_KEY,
  113. ENGINE_R_FAILED_LOADING_PRIVATE_KEY);
  114. return 0;
  115. }
  116. return pkey;
  117. }
  118. EVP_PKEY *ENGINE_load_public_key(ENGINE *e, const char *key_id,
  119. UI_METHOD *ui_method, void *callback_data)
  120. {
  121. EVP_PKEY *pkey;
  122. if (e == NULL) {
  123. ENGINEerr(ENGINE_F_ENGINE_LOAD_PUBLIC_KEY,
  124. ERR_R_PASSED_NULL_PARAMETER);
  125. return 0;
  126. }
  127. CRYPTO_w_lock(CRYPTO_LOCK_ENGINE);
  128. if (e->funct_ref == 0) {
  129. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  130. ENGINEerr(ENGINE_F_ENGINE_LOAD_PUBLIC_KEY, ENGINE_R_NOT_INITIALISED);
  131. return 0;
  132. }
  133. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  134. if (!e->load_pubkey) {
  135. ENGINEerr(ENGINE_F_ENGINE_LOAD_PUBLIC_KEY, ENGINE_R_NO_LOAD_FUNCTION);
  136. return 0;
  137. }
  138. pkey = e->load_pubkey(e, key_id, ui_method, callback_data);
  139. if (!pkey) {
  140. ENGINEerr(ENGINE_F_ENGINE_LOAD_PUBLIC_KEY,
  141. ENGINE_R_FAILED_LOADING_PUBLIC_KEY);
  142. return 0;
  143. }
  144. return pkey;
  145. }
  146. int ENGINE_load_ssl_client_cert(ENGINE *e, SSL *s,
  147. STACK_OF(X509_NAME) *ca_dn, X509 **pcert,
  148. EVP_PKEY **ppkey, STACK_OF(X509) **pother,
  149. UI_METHOD *ui_method, void *callback_data)
  150. {
  151. if (e == NULL) {
  152. ENGINEerr(ENGINE_F_ENGINE_LOAD_SSL_CLIENT_CERT,
  153. ERR_R_PASSED_NULL_PARAMETER);
  154. return 0;
  155. }
  156. CRYPTO_w_lock(CRYPTO_LOCK_ENGINE);
  157. if (e->funct_ref == 0) {
  158. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  159. ENGINEerr(ENGINE_F_ENGINE_LOAD_SSL_CLIENT_CERT,
  160. ENGINE_R_NOT_INITIALISED);
  161. return 0;
  162. }
  163. CRYPTO_w_unlock(CRYPTO_LOCK_ENGINE);
  164. if (!e->load_ssl_client_cert) {
  165. ENGINEerr(ENGINE_F_ENGINE_LOAD_SSL_CLIENT_CERT,
  166. ENGINE_R_NO_LOAD_FUNCTION);
  167. return 0;
  168. }
  169. return e->load_ssl_client_cert(e, s, ca_dn, pcert, ppkey, pother,
  170. ui_method, callback_data);
  171. }