aes_decryptor.cc revision 58537e28ecd584eab876aee8be7156509866d23a
1ba5b9a6411cb1792fd21f0a078d7a25cd1ceec16Ben Murdoch// Copyright 2013 The Chromium Authors. All rights reserved.
25821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Use of this source code is governed by a BSD-style license that can be
35821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// found in the LICENSE file.
45821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5ba5b9a6411cb1792fd21f0a078d7a25cd1ceec16Ben Murdoch#include "media/cdm/aes_decryptor.h"
65821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
75821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <vector>
85821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)#include "base/base64.h"
1058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)#include "base/json/json_reader.h"
115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/logging.h"
125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/stl_util.h"
13868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)#include "base/strings/string_number_conversions.h"
1458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)#include "base/strings/string_util.h"
1558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)#include "base/values.h"
165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "crypto/encryptor.h"
175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "crypto/symmetric_key.h"
185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "media/base/audio_decoder_config.h"
195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "media/base/decoder_buffer.h"
205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "media/base/decrypt_config.h"
215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "media/base/video_decoder_config.h"
225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "media/base/video_frame.h"
235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace media {
255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)uint32 AesDecryptor::next_session_id_ = 1;
275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)enum ClearBytesBufferSel {
295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  kSrcContainsClearBytes,
305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  kDstContainsClearBytes
315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)};
325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)typedef std::vector<std::pair<std::string, std::string> > JWKKeys;
3458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)static void CopySubsamples(const std::vector<SubsampleEntry>& subsamples,
365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                           const ClearBytesBufferSel sel,
375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                           const uint8* src,
385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                           uint8* dst) {
395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (size_t i = 0; i < subsamples.size(); i++) {
405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const SubsampleEntry& subsample = subsamples[i];
415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (sel == kSrcContainsClearBytes) {
425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      src += subsample.clear_bytes;
435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else {
445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      dst += subsample.clear_bytes;
455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    memcpy(dst, src, subsample.cypher_bytes);
475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    src += subsample.cypher_bytes;
485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    dst += subsample.cypher_bytes;
495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)// Processes a JSON Web Key to extract the key id and key value. Adds the
5358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)// id/value pair to |jwk_keys| and returns true on success.
5458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)static bool ProcessSymmetricKeyJWK(const DictionaryValue& jwk,
5558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)                                   JWKKeys* jwk_keys) {
5658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // A symmetric keys JWK looks like the following in JSON:
5758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  //   { "kty":"oct",
5858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  //     "kid":"AAECAwQFBgcICQoLDA0ODxAREhM=",
5958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  //     "k":"FBUWFxgZGhscHR4fICEiIw==" }
6058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // There may be other properties specified, but they are ignored.
6158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Ref: http://tools.ietf.org/html/draft-ietf-jose-json-web-key-14
6258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // and:
6358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // http://tools.ietf.org/html/draft-jones-jose-json-private-and-symmetric-key-00
6458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
6558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Have found a JWK, start by checking that it is a symmetric key.
6658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string type;
6758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!jwk.GetString("kty", &type) || type != "oct") {
6858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "JWK is not a symmetric key";
6958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
7058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
7158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
7258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Get the key id and actual key parameters.
7358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string encoded_key_id;
7458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string encoded_key;
7558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!jwk.GetString("kid", &encoded_key_id)) {
7658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Missing 'kid' parameter";
7758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
7858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
7958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!jwk.GetString("k", &encoded_key)) {
8058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Missing 'k' parameter";
8158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
8258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
8358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
8458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Key ID and key are base64-encoded strings, so decode them.
8558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // TODO(jrummell): The JWK spec and the EME spec don't say that 'kid' must be
8658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // base64-encoded (they don't say anything at all). Verify with the EME spec.
8758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string decoded_key_id;
8858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string decoded_key;
8958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!base::Base64Decode(encoded_key_id, &decoded_key_id) ||
9058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      decoded_key_id.empty()) {
9158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Invalid 'kid' value";
9258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
9358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
9458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!base::Base64Decode(encoded_key, &decoded_key) ||
9558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      decoded_key.length() !=
9658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)          static_cast<size_t>(DecryptConfig::kDecryptionKeySize)) {
9758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Invalid length of 'k' " << decoded_key.length();
9858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
9958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
10058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
10158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Add the decoded key ID and the decoded key to the list.
10258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  jwk_keys->push_back(std::make_pair(decoded_key_id, decoded_key));
10358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  return true;
10458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)}
10558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
10658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)// Extracts the JSON Web Keys from a JSON Web Key Set. If |input| looks like
10758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)// a valid JWK Set, then true is returned and |jwk_keys| is updated to contain
10858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)// the list of keys found. Otherwise return false.
10958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)static bool ExtractJWKKeys(const std::string& input, JWKKeys* jwk_keys) {
11058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // TODO(jrummell): The EME spec references a smaller set of allowed ASCII
11158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // values. Verify with spec that the smaller character set is needed.
11258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!IsStringASCII(input))
11358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
11458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
11558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  scoped_ptr<Value> root(base::JSONReader().ReadToValue(input));
11658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!root.get() || root->GetType() != Value::TYPE_DICTIONARY)
11758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
11858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
11958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // A JSON Web Key Set looks like the following in JSON:
12058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  //   { "keys": [ JWK1, JWK2, ... ] }
12158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // (See ProcessSymmetricKeyJWK() for description of JWK.)
12258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // There may be other properties specified, but they are ignored.
12358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Locate the set from the dictionary.
12458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  DictionaryValue* dictionary = static_cast<DictionaryValue*>(root.get());
12558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  ListValue* list_val = NULL;
12658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!dictionary->GetList("keys", &list_val)) {
12758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Missing 'keys' parameter or not a list in JWK Set";
12858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
12958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
13058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
13158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Create a local list of keys, so that |jwk_keys| only gets updated on
13258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // success.
13358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  JWKKeys local_keys;
13458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  for (size_t i = 0; i < list_val->GetSize(); ++i) {
13558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DictionaryValue* jwk = NULL;
13658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (!list_val->GetDictionary(i, &jwk)) {
13758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      DVLOG(1) << "Unable to access 'keys'[" << i << "] in JWK Set";
13858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      return false;
13958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
14058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (!ProcessSymmetricKeyJWK(*jwk, &local_keys)) {
14158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      DVLOG(1) << "Error from 'keys'[" << i << "]";
14258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      return false;
14358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
14458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
14558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
14658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Successfully processed all JWKs in the set.
14758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  jwk_keys->swap(local_keys);
14858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  return true;
14958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)}
15058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
1515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Decrypts |input| using |key|.  Returns a DecoderBuffer with the decrypted
1525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// data if decryption succeeded or NULL if decryption failed.
1535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)static scoped_refptr<DecoderBuffer> DecryptData(const DecoderBuffer& input,
1545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                crypto::SymmetricKey* key) {
155ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  CHECK(input.data_size());
156ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  CHECK(input.decrypt_config());
1575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CHECK(key);
1585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  crypto::Encryptor encryptor;
1605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!encryptor.Init(key, crypto::Encryptor::CTR, "")) {
1615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "Could not initialize decryptor.";
1625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return NULL;
1635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
165ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  DCHECK_EQ(input.decrypt_config()->iv().size(),
1665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)            static_cast<size_t>(DecryptConfig::kDecryptionKeySize));
167ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  if (!encryptor.SetCounter(input.decrypt_config()->iv())) {
1685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "Could not set counter block.";
1695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return NULL;
1705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
172ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  const int data_offset = input.decrypt_config()->data_offset();
1735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  const char* sample =
174ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch      reinterpret_cast<const char*>(input.data() + data_offset);
175ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  int sample_size = input.data_size() - data_offset;
1765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
177a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  DCHECK_GT(sample_size, 0) << "No sample data to be decrypted.";
178a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  if (sample_size <= 0)
179a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)    return NULL;
180a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)
181ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  if (input.decrypt_config()->subsamples().empty()) {
1825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string decrypted_text;
1835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    base::StringPiece encrypted_text(sample, sample_size);
1845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (!encryptor.Decrypt(encrypted_text, &decrypted_text)) {
1855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      DVLOG(1) << "Could not decrypt data.";
1865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      return NULL;
1875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
1885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // TODO(xhwang): Find a way to avoid this data copy.
1905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return DecoderBuffer::CopyFrom(
1915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        reinterpret_cast<const uint8*>(decrypted_text.data()),
1925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        decrypted_text.size());
1935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  const std::vector<SubsampleEntry>& subsamples =
196ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch      input.decrypt_config()->subsamples();
1975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  int total_clear_size = 0;
1995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  int total_encrypted_size = 0;
2005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (size_t i = 0; i < subsamples.size(); i++) {
2015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    total_clear_size += subsamples[i].clear_bytes;
2025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    total_encrypted_size += subsamples[i].cypher_bytes;
2035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (total_clear_size + total_encrypted_size != sample_size) {
2055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "Subsample sizes do not equal input size";
2065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return NULL;
2075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
209a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  // No need to decrypt if there is no encrypted data.
210a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  if (total_encrypted_size <= 0) {
211a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)    return DecoderBuffer::CopyFrom(reinterpret_cast<const uint8*>(sample),
212a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)                                   sample_size);
213a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  }
214a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)
2155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // The encrypted portions of all subsamples must form a contiguous block,
2165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // such that an encrypted subsample that ends away from a block boundary is
2175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // immediately followed by the start of the next encrypted subsample. We
2185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // copy all encrypted subsamples to a contiguous buffer, decrypt them, then
2195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // copy the decrypted bytes over the encrypted bytes in the output.
2205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // TODO(strobe): attempt to reduce number of memory copies
221c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  scoped_ptr<uint8[]> encrypted_bytes(new uint8[total_encrypted_size]);
2225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CopySubsamples(subsamples, kSrcContainsClearBytes,
2235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                 reinterpret_cast<const uint8*>(sample), encrypted_bytes.get());
2245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::StringPiece encrypted_text(
2265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      reinterpret_cast<const char*>(encrypted_bytes.get()),
2275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      total_encrypted_size);
2285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string decrypted_text;
2295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!encryptor.Decrypt(encrypted_text, &decrypted_text)) {
2305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "Could not decrypt data.";
2315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return NULL;
2325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
233a36e5920737c6adbddd3e43b760e5de8431db6e0Torne (Richard Coles)  DCHECK_EQ(decrypted_text.size(), encrypted_text.size());
2345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  scoped_refptr<DecoderBuffer> output = DecoderBuffer::CopyFrom(
2365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      reinterpret_cast<const uint8*>(sample), sample_size);
2375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CopySubsamples(subsamples, kDstContainsClearBytes,
2385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                 reinterpret_cast<const uint8*>(decrypted_text.data()),
239ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch                 output->writable_data());
2405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return output;
2415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2432a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)AesDecryptor::AesDecryptor(const KeyAddedCB& key_added_cb,
2442a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                           const KeyErrorCB& key_error_cb,
245eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch                           const KeyMessageCB& key_message_cb)
2462a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    : key_added_cb_(key_added_cb),
2472a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      key_error_cb_(key_error_cb),
248eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch      key_message_cb_(key_message_cb) {
2495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)AesDecryptor::~AesDecryptor() {
2525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  STLDeleteValues(&key_map_);
2535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2557d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)bool AesDecryptor::GenerateKeyRequest(const std::string& type,
2565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      const uint8* init_data,
2575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      int init_data_length) {
2585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string session_id_string(base::UintToString(next_session_id_++));
2595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2607d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)  // For now, the AesDecryptor does not care about |type|;
2615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // just fire the event with the |init_data| as the request.
262eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch  std::vector<uint8> message;
263eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch  if (init_data && init_data_length)
264eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch    message.assign(init_data, init_data + init_data_length);
2655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2667d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)  key_message_cb_.Run(session_id_string, message, std::string());
2675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return true;
2685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2707d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)void AesDecryptor::AddKey(const uint8* key,
2715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                          int key_length,
2725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                          const uint8* init_data,
2735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                          int init_data_length,
2745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                          const std::string& session_id) {
2755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CHECK(key);
2765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CHECK_GT(key_length, 0);
2775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
27858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // AddKey() is called from update(), where the key(s) are passed as a JSON
27958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // Web Key (JWK) set. Each JWK needs to be a symmetric key ('kty' = "oct"),
28058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // with 'kid' being the base64-encoded key id, and 'k' being the
28158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // base64-encoded key.
28258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  //
28358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // For backwards compatibility with v0.1b of the spec (where |key| is the raw
28458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // key and |init_data| is the key id), if |key| is not valid JSON, then
28558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  // attempt to process it as a raw key.
28658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
2875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // TODO(xhwang): Add |session_id| check after we figure out how:
2885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // https://www.w3.org/Bugs/Public/show_bug.cgi?id=16550
2895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
29058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::string key_string(reinterpret_cast<const char*>(key), key_length);
29158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  JWKKeys jwk_keys;
29258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (ExtractJWKKeys(key_string, &jwk_keys)) {
29358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // Since |key| represents valid JSON, init_data must be empty.
29458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DCHECK(!init_data);
29558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DCHECK_EQ(init_data_length, 0);
2965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
29758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // Make sure that at least one key was extracted.
29858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (jwk_keys.empty()) {
29958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      key_error_cb_.Run(session_id, MediaKeys::kUnknownError, 0);
30058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      return;
30158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
30258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    for (JWKKeys::iterator it = jwk_keys.begin() ; it != jwk_keys.end(); ++it) {
30358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      if (!AddDecryptionKey(it->first, it->second)) {
30458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)        key_error_cb_.Run(session_id, MediaKeys::kUnknownError, 0);
30558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)        return;
30658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      }
30758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
30858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  } else {
30958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // v0.1b backwards compatibility support.
31058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // TODO(jrummell): Remove this code once v0.1b no longer supported.
3115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
31258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (key_string.length() !=
31358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)        static_cast<size_t>(DecryptConfig::kDecryptionKeySize)) {
31458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      DVLOG(1) << "Invalid key length: " << key_string.length();
31558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      key_error_cb_.Run(session_id, MediaKeys::kUnknownError, 0);
31658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      return;
31758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
31858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
31958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // TODO(xhwang): Fix the decryptor to accept no |init_data|. See
32058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // http://crbug.com/123265. Until then, ensure a non-empty value is passed.
32158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    static const uint8 kDummyInitData[1] = {0};
32258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (!init_data) {
32358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      init_data = kDummyInitData;
32458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      init_data_length = arraysize(kDummyInitData);
32558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
3265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
32758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // TODO(xhwang): For now, use |init_data| for key ID. Make this more spec
32858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    // compliant later (http://crbug.com/123262, http://crbug.com/123265).
32958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    std::string key_id_string(reinterpret_cast<const char*>(init_data),
33058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)                              init_data_length);
33158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    if (!AddDecryptionKey(key_id_string, key_string)) {
33258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      // Error logged in AddDecryptionKey()
33358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      key_error_cb_.Run(session_id, MediaKeys::kUnknownError, 0);
33458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)      return;
33558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    }
33658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
3375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3382a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  if (!new_audio_key_cb_.is_null())
3392a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    new_audio_key_cb_.Run();
3405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3412a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  if (!new_video_key_cb_.is_null())
3422a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    new_video_key_cb_.Run();
3435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3447d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)  key_added_cb_.Run(session_id);
3455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3477d4cd473f85ac64c3747c96c277f9e506a0d2246Torne (Richard Coles)void AesDecryptor::CancelKeyRequest(const std::string& session_id) {
3485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
350eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen MurdochDecryptor* AesDecryptor::GetDecryptor() {
351868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)  return this;
352868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)}
353868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)
3542a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void AesDecryptor::RegisterNewKeyCB(StreamType stream_type,
3552a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                                    const NewKeyCB& new_key_cb) {
3565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  switch (stream_type) {
3575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    case kAudio:
3582a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      new_audio_key_cb_ = new_key_cb;
3595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      break;
3605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    case kVideo:
3612a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      new_video_key_cb_ = new_key_cb;
3625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      break;
3635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    default:
3645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      NOTREACHED();
3655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
3665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::Decrypt(StreamType stream_type,
3695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                           const scoped_refptr<DecoderBuffer>& encrypted,
3705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                           const DecryptCB& decrypt_cb) {
371ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  CHECK(encrypted->decrypt_config());
3725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  scoped_refptr<DecoderBuffer> decrypted;
3745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // An empty iv string signals that the frame is unencrypted.
375ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  if (encrypted->decrypt_config()->iv().empty()) {
376ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch    int data_offset = encrypted->decrypt_config()->data_offset();
377ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch    decrypted = DecoderBuffer::CopyFrom(encrypted->data() + data_offset,
378ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch                                        encrypted->data_size() - data_offset);
3795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
380ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch    const std::string& key_id = encrypted->decrypt_config()->key_id();
3812a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    DecryptionKey* key = GetKey(key_id);
3822a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    if (!key) {
3832a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      DVLOG(1) << "Could not find a matching key for the given key ID.";
3842a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      decrypt_cb.Run(kNoKey, NULL);
3852a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      return;
3862a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    }
3872a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)
3885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    crypto::SymmetricKey* decryption_key = key->decryption_key();
389868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)    decrypted = DecryptData(*encrypted.get(), decryption_key);
390868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)    if (!decrypted.get()) {
3915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      DVLOG(1) << "Decryption failed.";
3925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      decrypt_cb.Run(kError, NULL);
3935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      return;
3945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
3955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
3965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
397ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  decrypted->set_timestamp(encrypted->timestamp());
398ca12bfac764ba476d6cd062bf1dde12cc64c3f40Ben Murdoch  decrypted->set_duration(encrypted->duration());
3995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  decrypt_cb.Run(kSuccess, decrypted);
4005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::CancelDecrypt(StreamType stream_type) {
4035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Decrypt() calls the DecryptCB synchronously so there's nothing to cancel.
4045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void AesDecryptor::InitializeAudioDecoder(const AudioDecoderConfig& config,
4075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          const DecoderInitCB& init_cb) {
4085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // AesDecryptor does not support audio decoding.
4095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  init_cb.Run(false);
4105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4122a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void AesDecryptor::InitializeVideoDecoder(const VideoDecoderConfig& config,
4135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          const DecoderInitCB& init_cb) {
4145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // AesDecryptor does not support video decoding.
4155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  init_cb.Run(false);
4165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::DecryptAndDecodeAudio(
4195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const scoped_refptr<DecoderBuffer>& encrypted,
4205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const AudioDecodeCB& audio_decode_cb) {
4215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  NOTREACHED() << "AesDecryptor does not support audio decoding";
4225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::DecryptAndDecodeVideo(
4255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const scoped_refptr<DecoderBuffer>& encrypted,
4265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const VideoDecodeCB& video_decode_cb) {
4275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  NOTREACHED() << "AesDecryptor does not support video decoding";
4285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::ResetDecoder(StreamType stream_type) {
4315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  NOTREACHED() << "AesDecryptor does not support audio/video decoding";
4325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void AesDecryptor::DeinitializeDecoder(StreamType stream_type) {
4355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  NOTREACHED() << "AesDecryptor does not support audio/video decoding";
4365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
43858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)bool AesDecryptor::AddDecryptionKey(const std::string& key_id,
43958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)                                    const std::string& key_string) {
44058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  scoped_ptr<DecryptionKey> decryption_key(new DecryptionKey(key_string));
44158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!decryption_key) {
44258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Could not create key.";
44358537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
44458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
44558537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
44658537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  if (!decryption_key->Init()) {
44758537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    DVLOG(1) << "Could not initialize decryption key.";
44858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    return false;
44958537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  }
45058537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)
4515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::AutoLock auto_lock(key_map_lock_);
4525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  KeyMap::iterator found = key_map_.find(key_id);
4535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (found != key_map_.end()) {
4545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    delete found->second;
4555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    key_map_.erase(found);
4565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
4575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  key_map_[key_id] = decryption_key.release();
45858537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  return true;
4595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)AesDecryptor::DecryptionKey* AesDecryptor::GetKey(
4625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& key_id) const {
4635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::AutoLock auto_lock(key_map_lock_);
4645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  KeyMap::const_iterator found = key_map_.find(key_id);
4655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (found == key_map_.end())
4665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return NULL;
4675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return found->second;
4695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)AesDecryptor::DecryptionKey::DecryptionKey(const std::string& secret)
4725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    : secret_(secret) {
4735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)AesDecryptor::DecryptionKey::~DecryptionKey() {}
4765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool AesDecryptor::DecryptionKey::Init() {
4785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CHECK(!secret_.empty());
4795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  decryption_key_.reset(crypto::SymmetricKey::Import(
4805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      crypto::SymmetricKey::AES, secret_));
481c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  if (!decryption_key_)
4825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return false;
4835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return true;
4845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}  // namespace media
487