18212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrompackage org.bouncycastle.asn1.x9;
28212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
38212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1Encodable;
48212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1EncodableVector;
58212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1OctetString;
68212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.ASN1Sequence;
78212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERInteger;
88212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERObject;
98212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.asn1.DERSequence;
108212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.math.ec.ECCurve;
118212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport org.bouncycastle.math.ec.ECPoint;
128212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
138212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstromimport java.math.BigInteger;
148212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
158212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom/**
168212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * ASN.1 def for Elliptic-Curve ECParameters structure. See
178212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom * X9.62, for further details.
188212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom */
198212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrompublic class X9ECParameters
208212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    extends ASN1Encodable
218212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    implements X9ObjectIdentifiers
228212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom{
238212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private static final BigInteger   ONE = BigInteger.valueOf(1);
248212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
258212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private X9FieldID           fieldID;
268212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private ECCurve             curve;
278212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private ECPoint             g;
288212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private BigInteger          n;
298212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private BigInteger          h;
308212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    private byte[]              seed;
318212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
328212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public X9ECParameters(
338212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ASN1Sequence  seq)
348212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
358212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        if (!(seq.getObjectAt(0) instanceof DERInteger)
368212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom           || !((DERInteger)seq.getObjectAt(0)).getValue().equals(ONE))
378212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
388212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            throw new IllegalArgumentException("bad version in X9ECParameters");
398212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
408212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
418212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        X9Curve     x9c = new X9Curve(
428212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom                        new X9FieldID((ASN1Sequence)seq.getObjectAt(1)),
438212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom                        (ASN1Sequence)seq.getObjectAt(2));
448212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
458212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.curve = x9c.getCurve();
468212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.g = new X9ECPoint(curve, (ASN1OctetString)seq.getObjectAt(3)).getPoint();
478212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.n = ((DERInteger)seq.getObjectAt(4)).getValue();
488212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.seed = x9c.getSeed();
498212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
508212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        if (seq.size() == 6)
518212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
528212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            this.h = ((DERInteger)seq.getObjectAt(5)).getValue();
538212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
548212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
558212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
568212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public X9ECParameters(
578212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECCurve     curve,
588212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECPoint     g,
598212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        BigInteger  n)
608212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
618212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this(curve, g, n, ONE, null);
628212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
638212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
648212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public X9ECParameters(
658212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECCurve     curve,
668212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECPoint     g,
678212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        BigInteger  n,
688212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        BigInteger  h)
698212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
708212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this(curve, g, n, h, null);
718212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
728212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
738212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public X9ECParameters(
748212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECCurve     curve,
758212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ECPoint     g,
768212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        BigInteger  n,
778212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        BigInteger  h,
788212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        byte[]      seed)
798212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
808212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.curve = curve;
818212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.g = g;
828212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.n = n;
838212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.h = h;
848212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        this.seed = seed;
858212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
868212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        if (curve instanceof ECCurve.Fp)
878212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
888212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            this.fieldID = new X9FieldID(((ECCurve.Fp)curve).getQ());
898212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
908212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        else
918212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
928212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            if (curve instanceof ECCurve.F2m)
938212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            {
948212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom                ECCurve.F2m curveF2m = (ECCurve.F2m)curve;
958212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom                this.fieldID = new X9FieldID(curveF2m.getM(), curveF2m.getK1(),
968212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom                    curveF2m.getK2(), curveF2m.getK3());
978212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            }
988212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
998212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1008212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1018212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public ECCurve getCurve()
1028212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1038212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return curve;
1048212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1058212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1068212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public ECPoint getG()
1078212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1088212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return g;
1098212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1108212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1118212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public BigInteger getN()
1128212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1138212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return n;
1148212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1158212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1168212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public BigInteger getH()
1178212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1188212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        if (h == null)
1198212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
1208212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            return ONE;        // TODO - this should be calculated, it will cause issues with custom curves.
1218212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
1228212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1238212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return h;
1248212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1258212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1268212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public byte[] getSeed()
1278212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1288212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return seed;
1298212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1308212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1318212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    /**
1328212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     * Produce an object suitable for an ASN1OutputStream.
1338212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     * <pre>
1348212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *  ECParameters ::= SEQUENCE {
1358212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      version         INTEGER { ecpVer1(1) } (ecpVer1),
1368212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      fieldID         FieldID {{FieldTypes}},
1378212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      curve           X9Curve,
1388212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      base            X9ECPoint,
1398212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      order           INTEGER,
1408212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *      cofactor        INTEGER OPTIONAL
1418212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     *  }
1428212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     * </pre>
1438212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom     */
1448212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    public DERObject toASN1Object()
1458212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    {
1468212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        ASN1EncodableVector v = new ASN1EncodableVector();
1478212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1488212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        v.add(new DERInteger(1));
1498212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        v.add(fieldID);
1508212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        v.add(new X9Curve(curve, seed));
1518212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        v.add(new X9ECPoint(g));
1528212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        v.add(new DERInteger(n));
1538212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1548212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        if (h != null)
1558212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        {
1568212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom            v.add(new DERInteger(h));
1578212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        }
1588212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom
1598212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom        return new DERSequence(v);
1608212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom    }
1618212855a312dc8ebe081a3e08b1d2d8f8757af02Brian Carlstrom}
162