112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom/* 212cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * Copyright (C) 2010 The Android Open Source Project 312cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * 412cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * Licensed under the Apache License, Version 2.0 (the "License"); 512cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * you may not use this file except in compliance with the License. 612cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * You may obtain a copy of the License at 712cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * 812cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * http://www.apache.org/licenses/LICENSE-2.0 912cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * 1012cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * Unless required by applicable law or agreed to in writing, software 1112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * distributed under the License is distributed on an "AS IS" BASIS, 1212cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 1312cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * See the License for the specific language governing permissions and 1412cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom * limitations under the License. 1512cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom */ 1612cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 1738375a4d0b3d34e2babbd2f6a013976c7c439696Kenny Rootpackage org.conscrypt; 1812cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 1912cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstromimport java.security.Provider; 2012cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 213d1643390a0d624a27b8eccc589b337949657c76Kenny Root/** 223d1643390a0d624a27b8eccc589b337949657c76Kenny Root * Provider that goes through OpenSSL for operations. 233d1643390a0d624a27b8eccc589b337949657c76Kenny Root * <p> 243d1643390a0d624a27b8eccc589b337949657c76Kenny Root * Every algorithm should have its IANA assigned OID as an alias. See the following URLs for each type: 253d1643390a0d624a27b8eccc589b337949657c76Kenny Root * <ul> 263d1643390a0d624a27b8eccc589b337949657c76Kenny Root * <li><a href="http://www.iana.org/assignments/hash-function-text-names/hash-function-text-names.xml">Hash functions</a></li> 273d1643390a0d624a27b8eccc589b337949657c76Kenny Root * <li><a href="http://www.iana.org/assignments/dssc/dssc.xml">Signature algorithms</a></li> 283d1643390a0d624a27b8eccc589b337949657c76Kenny Root * <li><a href="http://csrc.nist.gov/groups/ST/crypto_apps_infra/csor/algorithms.html">NIST cryptographic algorithms</a></li> 293d1643390a0d624a27b8eccc589b337949657c76Kenny Root * </ul> 303d1643390a0d624a27b8eccc589b337949657c76Kenny Root */ 3112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrompublic final class OpenSSLProvider extends Provider { 328a7427fa40d7fec1eb0298e20688c5751111091fKenny Root private static final long serialVersionUID = 2996752495318905136L; 338a7427fa40d7fec1eb0298e20688c5751111091fKenny Root 345b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root public static final String PROVIDER_NAME = "AndroidOpenSSL"; 3512cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 3612cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom public OpenSSLProvider() { 375b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root super(PROVIDER_NAME, 1.0, "Android's OpenSSL-backed security provider"); 3812cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 39b6963ac272834ec5f791ecdc773d17cb156e23f0Kenny Root // Make sure the platform is initialized. 40b6963ac272834ec5f791ecdc773d17cb156e23f0Kenny Root Platform.setup(); 41b6963ac272834ec5f791ecdc773d17cb156e23f0Kenny Root 427e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root final String prefix = getClass().getPackage().getName() + "."; 437e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root 443d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* === SSL Contexts === */ 457e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root final String classOpenSSLContextImpl = prefix + "OpenSSLContextImpl"; 467e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.SSL", classOpenSSLContextImpl); 477e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.SSLv3", classOpenSSLContextImpl); 487e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.TLS", classOpenSSLContextImpl); 497e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.TLSv1", classOpenSSLContextImpl); 507e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.TLSv1.1", classOpenSSLContextImpl); 517e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.TLSv1.2", classOpenSSLContextImpl); 527e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SSLContext.Default", prefix + "DefaultSSLContextImpl"); 53059dbc04218144f985b20a228bbe98139d400d0cBrian Carlstrom 543d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* === Message Digests === */ 557e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("MessageDigest.SHA-1", prefix + "OpenSSLMessageDigestJDK$SHA1"); 5612cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.SHA1", "SHA-1"); 5712cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.SHA", "SHA-1"); 5812cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.1.3.14.3.2.26", "SHA-1"); 5912cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 607e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("MessageDigest.SHA-256", prefix + "OpenSSLMessageDigestJDK$SHA256"); 6112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.SHA256", "SHA-256"); 6212cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.2.16.840.1.101.3.4.2.1", "SHA-256"); 6312cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 647e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("MessageDigest.SHA-384", prefix + "OpenSSLMessageDigestJDK$SHA384"); 6512cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.SHA384", "SHA-384"); 6612cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.2.16.840.1.101.3.4.2.2", "SHA-384"); 6712cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 687e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("MessageDigest.SHA-512", prefix + "OpenSSLMessageDigestJDK$SHA512"); 6912cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.SHA512", "SHA-512"); 7012cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.2.16.840.1.101.3.4.2.3", "SHA-512"); 7112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 723d1643390a0d624a27b8eccc589b337949657c76Kenny Root // iso(1) member-body(2) US(840) rsadsi(113549) digestAlgorithm(2) md5(5) 737e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("MessageDigest.MD5", prefix + "OpenSSLMessageDigestJDK$MD5"); 7412cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom put("Alg.Alias.MessageDigest.1.2.840.113549.2.5", "MD5"); 7512cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom 763d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* == KeyPairGenerators == */ 777e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyPairGenerator.RSA", prefix + "OpenSSLRSAKeyPairGenerator"); 78746a236e2be5dee62c482e27f4c682496d071d8bKenny Root put("Alg.Alias.KeyPairGenerator.1.2.840.113549.1.1.1", "RSA"); 79746a236e2be5dee62c482e27f4c682496d071d8bKenny Root 807e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyPairGenerator.DSA", prefix + "OpenSSLDSAKeyPairGenerator"); 81746a236e2be5dee62c482e27f4c682496d071d8bKenny Root 827e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyPairGenerator.EC", prefix + "OpenSSLECKeyPairGenerator"); 839d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root 843d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* == KeyFactory == */ 857e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyFactory.RSA", prefix + "OpenSSLRSAKeyFactory"); 86746a236e2be5dee62c482e27f4c682496d071d8bKenny Root put("Alg.Alias.KeyFactory.1.2.840.113549.1.1.1", "RSA"); 87746a236e2be5dee62c482e27f4c682496d071d8bKenny Root 887e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyFactory.DSA", prefix + "OpenSSLDSAKeyFactory"); 89c9989de40c23c579bc9dc0231fb643436bbf73ccKenny Root 907e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyFactory.EC", prefix + "OpenSSLECKeyFactory"); 91746a236e2be5dee62c482e27f4c682496d071d8bKenny Root 92e741559fd878ee6e3deca9102f7c27e1c1ca70d0Alex Klyubin /* == KeyAgreement == */ 937e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("KeyAgreement.ECDH", prefix + "OpenSSLECDHKeyAgreement"); 94e741559fd878ee6e3deca9102f7c27e1c1ca70d0Alex Klyubin 953d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* == Signatures == */ 967e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.MD5WithRSA", prefix + "OpenSSLSignature$MD5RSA"); 97eef7e9357c272a9154f007e8bee2a09eed66d101Brian Carlstrom put("Alg.Alias.Signature.MD5WithRSAEncryption", "MD5WithRSA"); 98eef7e9357c272a9154f007e8bee2a09eed66d101Brian Carlstrom put("Alg.Alias.Signature.MD5/RSA", "MD5WithRSA"); 99eef7e9357c272a9154f007e8bee2a09eed66d101Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.1.1.4", "MD5WithRSA"); 100eef7e9357c272a9154f007e8bee2a09eed66d101Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.2.5with1.2.840.113549.1.1.1", "MD5WithRSA"); 1015b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root 1027e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA1WithRSA", prefix + "OpenSSLSignature$SHA1RSA"); 103b3bc3cd743d06f5fb59a1c950a7634b47f3cafc4Kenny Root put("Alg.Alias.Signature.SHA1WithRSAEncryption", "SHA1WithRSA"); 104fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.SHA1/RSA", "SHA1WithRSA"); 105fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.SHA-1/RSA", "SHA1WithRSA"); 106fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.1.1.5", "SHA1WithRSA"); 107fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.3.14.3.2.26with1.2.840.113549.1.1.1", "SHA1WithRSA"); 108fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.3.14.3.2.26with1.2.840.113549.1.1.5", "SHA1WithRSA"); 109fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.3.14.3.2.29", "SHA1WithRSA"); 110fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom 1117e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA256WithRSA", prefix + "OpenSSLSignature$SHA256RSA"); 112fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.SHA256WithRSAEncryption", "SHA256WithRSA"); 113fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.1.1.11", "SHA256WithRSA"); 1143d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.1with1.2.840.113549.1.1.1", 115b3bc3cd743d06f5fb59a1c950a7634b47f3cafc4Kenny Root "SHA256WithRSA"); 1163d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.1with1.2.840.113549.1.1.11", 117b3bc3cd743d06f5fb59a1c950a7634b47f3cafc4Kenny Root "SHA256WithRSA"); 118fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom 1197e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA384WithRSA", prefix + "OpenSSLSignature$SHA384RSA"); 120fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.SHA384WithRSAEncryption", "SHA384WithRSA"); 121fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.1.1.12", "SHA384WithRSA"); 1223d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.2with1.2.840.113549.1.1.1", 123b3bc3cd743d06f5fb59a1c950a7634b47f3cafc4Kenny Root "SHA384WithRSA"); 124fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom 1257e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA512WithRSA", prefix + "OpenSSLSignature$SHA512RSA"); 126fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.SHA512WithRSAEncryption", "SHA512WithRSA"); 127fe8b870db2b374e21c69c2ff0050e6a34e0d8d94Brian Carlstrom put("Alg.Alias.Signature.1.2.840.113549.1.1.13", "SHA512WithRSA"); 1283d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.3with1.2.840.113549.1.1.1", 129b3bc3cd743d06f5fb59a1c950a7634b47f3cafc4Kenny Root "SHA512WithRSA"); 1305b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root 1317e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA1withDSA", prefix + "OpenSSLSignature$SHA1DSA"); 1325b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.SHA/DSA", "SHA1withDSA"); 1335b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.DSA", "SHA1withDSA"); 1345b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.1.3.14.3.2.26with1.2.840.10040.4.1", "SHA1withDSA"); 1355b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.1.3.14.3.2.26with1.2.840.10040.4.3", "SHA1withDSA"); 1365b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.DSAWithSHA1", "SHA1withDSA"); 1375b57eb538f8da8e97cf88a310d75d14dfc91624cKenny Root put("Alg.Alias.Signature.1.2.840.10040.4.3", "SHA1withDSA"); 13846aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root 1397e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.NONEwithRSA", prefix + "OpenSSLSignatureRawRSA"); 1407501e29e0182accf28cc317870a3bbe1e25f4bfaKenny Root 1417e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.ECDSA", prefix + "OpenSSLSignature$SHA1ECDSA"); 1429d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.SHA1withECDSA", "ECDSA"); 1439d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.ECDSAwithSHA1", "ECDSA"); 1449d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root // iso(1) member-body(2) us(840) ansi-x962(10045) signatures(4) ecdsa-with-SHA1(1) 1459d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.1.2.840.10045.4.1", "ECDSA"); 14652c906b82c75e811284a1788e5ca0b4330a55a36Kenny Root put("Alg.Alias.Signature.1.3.14.3.2.26with1.2.840.10045.2.1", "ECDSA"); 1479d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root 1489d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root // iso(1) member-body(2) us(840) ansi-x962(10045) signatures(4) ecdsa-with-SHA2(3) 1497e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA256withECDSA", prefix + "OpenSSLSignature$SHA256ECDSA"); 1509d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root // ecdsa-with-SHA256(2) 1519d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.1.2.840.10045.4.3.2", "SHA256withECDSA"); 15252c906b82c75e811284a1788e5ca0b4330a55a36Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.1with1.2.840.10045.2.1", "SHA256withECDSA"); 1539d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root 1547e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA384withECDSA", prefix + "OpenSSLSignature$SHA384ECDSA"); 1559d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root // ecdsa-with-SHA384(3) 1569d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.1.2.840.10045.4.3.3", "SHA384withECDSA"); 15752c906b82c75e811284a1788e5ca0b4330a55a36Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.2with1.2.840.10045.2.1", "SHA384withECDSA"); 1589d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root 1597e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Signature.SHA512withECDSA", prefix + "OpenSSLSignature$SHA512ECDSA"); 1609d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root // ecdsa-with-SHA512(4) 1619d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root put("Alg.Alias.Signature.1.2.840.10045.4.3.4", "SHA512withECDSA"); 16252c906b82c75e811284a1788e5ca0b4330a55a36Kenny Root put("Alg.Alias.Signature.2.16.840.1.101.3.4.2.3with1.2.840.10045.2.1", "SHA512withECDSA"); 1639d2fb535e5d43ad34af09195d490da18a7694a48Kenny Root 1643d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* === SecureRandom === */ 16546aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root /* 16646aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root * We have to specify SHA1PRNG because various documentation mentions 16746aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root * that algorithm by name instead of just recommending calling 16846aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root * "new SecureRandom()" 16946aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root */ 1707e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("SecureRandom.SHA1PRNG", prefix + "OpenSSLRandom"); 17146aabcb28b0e3b807f6db8c33173962d6f2cb71fKenny Root put("SecureRandom.SHA1PRNG ImplementedIn", "Software"); 172c5ddc93173f32383ab456c0a24739e7cb2d19c42Kenny Root 1733d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* === Cipher === */ 1747e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.RSA/ECB/NoPadding", prefix + "OpenSSLCipherRSA$Raw"); 175c5ddc93173f32383ab456c0a24739e7cb2d19c42Kenny Root put("Alg.Alias.Cipher.RSA/None/NoPadding", "RSA/ECB/NoPadding"); 1767e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.RSA/ECB/PKCS1Padding", prefix + "OpenSSLCipherRSA$PKCS1"); 1770a156e0126e8015f2791e9a7dd48bbdaeae0c335Brian Carlstrom put("Alg.Alias.Cipher.RSA/None/PKCS1Padding", "RSA/ECB/PKCS1Padding"); 17813cf08b2f06e1f5f0278c449072898f5e147db49Kenny Root 17913cf08b2f06e1f5f0278c449072898f5e147db49Kenny Root /* 18013cf08b2f06e1f5f0278c449072898f5e147db49Kenny Root * OpenSSL only supports a subset of modes, so we'll name them 18113cf08b2f06e1f5f0278c449072898f5e147db49Kenny Root * explicitly here. 18213cf08b2f06e1f5f0278c449072898f5e147db49Kenny Root */ 1837e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/ECB/NoPadding", prefix + "OpenSSLCipher$AES$ECB$NoPadding"); 1847e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/ECB/PKCS5Padding", prefix + "OpenSSLCipher$AES$ECB$PKCS5Padding"); 1857e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CBC/NoPadding", prefix + "OpenSSLCipher$AES$CBC$NoPadding"); 1867e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CBC/PKCS5Padding", prefix + "OpenSSLCipher$AES$CBC$PKCS5Padding"); 1877e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CFB/NoPadding", prefix + "OpenSSLCipher$AES$CFB$NoPadding"); 1887e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CFB/PKCS5Padding", prefix + "OpenSSLCipher$AES$CFB$PKCS5Padding"); 1897e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CTR/NoPadding", prefix + "OpenSSLCipher$AES$CTR$NoPadding"); 1907e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/CTR/PKCS5Padding", prefix + "OpenSSLCipher$AES$CTR$PKCS5Padding"); 1917e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/OFB/NoPadding", prefix + "OpenSSLCipher$AES$OFB$NoPadding"); 1927e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.AES/OFB/PKCS5Padding", prefix + "OpenSSLCipher$AES$OFB$PKCS5Padding"); 1937e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root 1947e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/CBC/NoPadding", prefix + "OpenSSLCipher$DESEDE$CBC$NoPadding"); 1957e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/CBC/PKCS5Padding", prefix + "OpenSSLCipher$DESEDE$CBC$PKCS5Padding"); 1967e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/CFB/NoPadding", prefix + "OpenSSLCipher$DESEDE$CFB$NoPadding"); 1977e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/CFB/PKCS5Padding", prefix + "OpenSSLCipher$DESEDE$CFB$PKCS5Padding"); 1987e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/ECB/NoPadding", prefix + "OpenSSLCipher$DESEDE$ECB$NoPadding"); 1997e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/ECB/PKCS5Padding", prefix + "OpenSSLCipher$DESEDE$ECB$PKCS5Padding"); 2007e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/OFB/NoPadding", prefix + "OpenSSLCipher$DESEDE$OFB$NoPadding"); 2017e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.DESEDE/OFB/PKCS5Padding", prefix + "OpenSSLCipher$DESEDE$OFB$PKCS5Padding"); 2027e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root 2037e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Cipher.ARC4", prefix + "OpenSSLCipher$ARC4"); 204edefa57a822c27f3e9def050fd50e375c5908551Kenny Root 2053d1643390a0d624a27b8eccc589b337949657c76Kenny Root /* === Mac === */ 2063d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2077e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Mac.HmacMD5", prefix + "OpenSSLMac$HmacMD5"); 2083d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2093d1643390a0d624a27b8eccc589b337949657c76Kenny Root // PKCS#2 - iso(1) member-body(2) US(840) rsadsi(113549) digestAlgorithm(2) 2103d1643390a0d624a27b8eccc589b337949657c76Kenny Root // http://www.oid-info.com/get/1.2.840.113549.2 2113d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2123d1643390a0d624a27b8eccc589b337949657c76Kenny Root // HMAC-SHA-1 PRF (7) 2137e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Mac.HmacSHA1", prefix + "OpenSSLMac$HmacSHA1"); 2143d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.1.2.840.113549.2.7", "HmacSHA1"); 2153d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC-SHA1", "HmacSHA1"); 2163d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC/SHA1", "HmacSHA1"); 2173d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2183d1643390a0d624a27b8eccc589b337949657c76Kenny Root // id-hmacWithSHA256 (9) 2197e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Mac.HmacSHA256", prefix + "OpenSSLMac$HmacSHA256"); 2203d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.1.2.840.113549.2.9", "HmacSHA256"); 2213d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC-SHA256", "HmacSHA256"); 2223d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC/SHA256", "HmacSHA256"); 2233d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2243d1643390a0d624a27b8eccc589b337949657c76Kenny Root // id-hmacWithSHA384 (10) 2257e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Mac.HmacSHA384", prefix + "OpenSSLMac$HmacSHA384"); 2263d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.1.2.840.113549.2.10", "HmacSHA384"); 2273d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC-SHA384", "HmacSHA384"); 2283d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC/SHA384", "HmacSHA384"); 2293d1643390a0d624a27b8eccc589b337949657c76Kenny Root 2303d1643390a0d624a27b8eccc589b337949657c76Kenny Root // id-hmacWithSHA384 (11) 2317e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("Mac.HmacSHA512", prefix + "OpenSSLMac$HmacSHA512"); 2323d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.1.2.840.113549.2.11", "HmacSHA512"); 2333d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC-SHA512", "HmacSHA512"); 2343d1643390a0d624a27b8eccc589b337949657c76Kenny Root put("Alg.Alias.Mac.HMAC/SHA512", "HmacSHA512"); 23575dc9601af8ab3c65114e3c8c57d29ce5ac64125Kenny Root 23675dc9601af8ab3c65114e3c8c57d29ce5ac64125Kenny Root /* === Certificate === */ 23775dc9601af8ab3c65114e3c8c57d29ce5ac64125Kenny Root 2387e4ea6b406f5ae8456f719eff76991020fd37948Kenny Root put("CertificateFactory.X509", prefix + "OpenSSLX509CertificateFactory"); 23975dc9601af8ab3c65114e3c8c57d29ce5ac64125Kenny Root put("Alg.Alias.CertificateFactory.X.509", "X509"); 24012cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom } 24112cd1f00c2fa1a7f37bf644cecdf7588bdc0b0a9Brian Carlstrom} 242