18212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrompackage org.bouncycastle.asn1.x9; 28212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 38212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1Encodable; 48212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1EncodableVector; 58212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1OctetString; 68212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1Sequence; 78212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERInteger; 88212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERObject; 98212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERSequence; 108212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.math.ec.ECCurve; 118212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.math.ec.ECPoint; 128212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 138212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport java.math.BigInteger; 148212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 158212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom/** 168212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * ASN.1 def for Elliptic-Curve ECParameters structure. See 178212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * X9.62, for further details. 188212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom */ 198212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrompublic class X9ECParameters 208212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom extends ASN1Encodable 218212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom implements X9ObjectIdentifiers 228212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom{ 238212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private static final BigInteger ONE = BigInteger.valueOf(1); 248212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 258212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private X9FieldID fieldID; 268212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private ECCurve curve; 278212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private ECPoint g; 288212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private BigInteger n; 298212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private BigInteger h; 308212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom private byte[] seed; 318212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 328212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public X9ECParameters( 338212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ASN1Sequence seq) 348212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 358212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (!(seq.getObjectAt(0) instanceof DERInteger) 368212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom || !((DERInteger)seq.getObjectAt(0)).getValue().equals(ONE)) 378212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 388212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom throw new IllegalArgumentException("bad version in X9ECParameters"); 398212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 408212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 418212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom X9Curve x9c = new X9Curve( 428212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom new X9FieldID((ASN1Sequence)seq.getObjectAt(1)), 438212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom (ASN1Sequence)seq.getObjectAt(2)); 448212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 458212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.curve = x9c.getCurve(); 468212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.g = new X9ECPoint(curve, (ASN1OctetString)seq.getObjectAt(3)).getPoint(); 478212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.n = ((DERInteger)seq.getObjectAt(4)).getValue(); 488212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.seed = x9c.getSeed(); 498212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 508212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (seq.size() == 6) 518212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 528212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.h = ((DERInteger)seq.getObjectAt(5)).getValue(); 538212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 548212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 558212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 568212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public X9ECParameters( 578212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECCurve curve, 588212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECPoint g, 598212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom BigInteger n) 608212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 618212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this(curve, g, n, ONE, null); 628212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 638212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 648212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public X9ECParameters( 658212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECCurve curve, 668212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECPoint g, 678212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom BigInteger n, 688212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom BigInteger h) 698212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 708212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this(curve, g, n, h, null); 718212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 728212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 738212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public X9ECParameters( 748212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECCurve curve, 758212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECPoint g, 768212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom BigInteger n, 778212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom BigInteger h, 788212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom byte[] seed) 798212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 808212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.curve = curve; 818212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.g = g; 828212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.n = n; 838212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.h = h; 848212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.seed = seed; 858212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 868212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (curve instanceof ECCurve.Fp) 878212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 888212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.fieldID = new X9FieldID(((ECCurve.Fp)curve).getQ()); 898212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 908212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom else 918212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 928212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (curve instanceof ECCurve.F2m) 938212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 948212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ECCurve.F2m curveF2m = (ECCurve.F2m)curve; 958212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom this.fieldID = new X9FieldID(curveF2m.getM(), curveF2m.getK1(), 968212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom curveF2m.getK2(), curveF2m.getK3()); 978212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 988212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 998212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1008212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1018212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public ECCurve getCurve() 1028212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1038212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return curve; 1048212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1058212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1068212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public ECPoint getG() 1078212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1088212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return g; 1098212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1108212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1118212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public BigInteger getN() 1128212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1138212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return n; 1148212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1158212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1168212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public BigInteger getH() 1178212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1188212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (h == null) 1198212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1208212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return ONE; // TODO - this should be calculated, it will cause issues with custom curves. 1218212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1228212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1238212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return h; 1248212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1258212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1268212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public byte[] getSeed() 1278212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1288212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return seed; 1298212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1308212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1318212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom /** 1328212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * Produce an object suitable for an ASN1OutputStream. 1338212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * <pre> 1348212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * ECParameters ::= SEQUENCE { 1358212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * version INTEGER { ecpVer1(1) } (ecpVer1), 1368212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * fieldID FieldID {{FieldTypes}}, 1378212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * curve X9Curve, 1388212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * base X9ECPoint, 1398212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * order INTEGER, 1408212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * cofactor INTEGER OPTIONAL 1418212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * } 1428212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * </pre> 1438212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom */ 1448212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom public DERObject toASN1Object() 1458212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1468212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom ASN1EncodableVector v = new ASN1EncodableVector(); 1478212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1488212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(new DERInteger(1)); 1498212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(fieldID); 1508212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(new X9Curve(curve, seed)); 1518212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(new X9ECPoint(g)); 1528212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(new DERInteger(n)); 1538212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1548212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom if (h != null) 1558212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom { 1568212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom v.add(new DERInteger(h)); 1578212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1588212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom 1598212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom return new DERSequence(v); 1608212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom } 1618212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom} 162