OpenSSLECPublicKey.java revision cac9de82cc0c50ff1a20d1290339776c125fc63e
18b7521eb38878822be3817270cc074ee1e22095dKenny Root/* 28b7521eb38878822be3817270cc074ee1e22095dKenny Root * Copyright (C) 2012 The Android Open Source Project 38b7521eb38878822be3817270cc074ee1e22095dKenny Root * 48b7521eb38878822be3817270cc074ee1e22095dKenny Root * Licensed under the Apache License, Version 2.0 (the "License"); 58b7521eb38878822be3817270cc074ee1e22095dKenny Root * you may not use this file except in compliance with the License. 68b7521eb38878822be3817270cc074ee1e22095dKenny Root * You may obtain a copy of the License at 78b7521eb38878822be3817270cc074ee1e22095dKenny Root * 88b7521eb38878822be3817270cc074ee1e22095dKenny Root * http://www.apache.org/licenses/LICENSE-2.0 98b7521eb38878822be3817270cc074ee1e22095dKenny Root * 108b7521eb38878822be3817270cc074ee1e22095dKenny Root * Unless required by applicable law or agreed to in writing, software 118b7521eb38878822be3817270cc074ee1e22095dKenny Root * distributed under the License is distributed on an "AS IS" BASIS, 128b7521eb38878822be3817270cc074ee1e22095dKenny Root * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 138b7521eb38878822be3817270cc074ee1e22095dKenny Root * See the License for the specific language governing permissions and 148b7521eb38878822be3817270cc074ee1e22095dKenny Root * limitations under the License. 158b7521eb38878822be3817270cc074ee1e22095dKenny Root */ 168b7521eb38878822be3817270cc074ee1e22095dKenny Root 17860d2707ce126ef8f66e3eac7ceeab6d24218cd8Kenny Rootpackage org.conscrypt; 188b7521eb38878822be3817270cc074ee1e22095dKenny Root 198b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.io.IOException; 208b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.io.NotSerializableException; 218b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.io.ObjectInputStream; 228b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.io.ObjectOutputStream; 238b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.security.InvalidKeyException; 248b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.security.interfaces.ECPublicKey; 258b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.security.spec.ECParameterSpec; 268b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.security.spec.ECPoint; 2711b3e7025853f061e2f0e0ce1e248e730eca721eKenny Rootimport java.security.spec.ECPublicKeySpec; 2811b3e7025853f061e2f0e0ce1e248e730eca721eKenny Rootimport java.security.spec.InvalidKeySpecException; 298b7521eb38878822be3817270cc074ee1e22095dKenny Rootimport java.util.Arrays; 308b7521eb38878822be3817270cc074ee1e22095dKenny Root 3147cc520bd63c1eabfdef23cbab10457701f2a395Kenny Rootpublic final class OpenSSLECPublicKey implements ECPublicKey, OpenSSLKeyHolder { 328b7521eb38878822be3817270cc074ee1e22095dKenny Root private static final long serialVersionUID = 3215842926808298020L; 338b7521eb38878822be3817270cc074ee1e22095dKenny Root 348b7521eb38878822be3817270cc074ee1e22095dKenny Root private static final String ALGORITHM = "EC"; 358b7521eb38878822be3817270cc074ee1e22095dKenny Root 368b7521eb38878822be3817270cc074ee1e22095dKenny Root protected transient OpenSSLKey key; 378b7521eb38878822be3817270cc074ee1e22095dKenny Root 388b7521eb38878822be3817270cc074ee1e22095dKenny Root protected transient OpenSSLECGroupContext group; 398b7521eb38878822be3817270cc074ee1e22095dKenny Root 408b7521eb38878822be3817270cc074ee1e22095dKenny Root public OpenSSLECPublicKey(OpenSSLECGroupContext group, OpenSSLKey key) { 418b7521eb38878822be3817270cc074ee1e22095dKenny Root this.group = group; 428b7521eb38878822be3817270cc074ee1e22095dKenny Root this.key = key; 438b7521eb38878822be3817270cc074ee1e22095dKenny Root } 448b7521eb38878822be3817270cc074ee1e22095dKenny Root 4547cc520bd63c1eabfdef23cbab10457701f2a395Kenny Root public OpenSSLECPublicKey(OpenSSLKey key) { 467dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root this.group = new OpenSSLECGroupContext(new NativeRef.EC_GROUP( 477dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root NativeCrypto.EC_KEY_get1_group(key.getNativeRef()))); 4847cc520bd63c1eabfdef23cbab10457701f2a395Kenny Root this.key = key; 4947cc520bd63c1eabfdef23cbab10457701f2a395Kenny Root } 5047cc520bd63c1eabfdef23cbab10457701f2a395Kenny Root 5111b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root public OpenSSLECPublicKey(ECPublicKeySpec ecKeySpec) throws InvalidKeySpecException { 5211b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root try { 53d4600d69dba0f1df24e8df7328fa473632c32822Kenny Root group = OpenSSLECGroupContext.getInstance(ecKeySpec.getParams()); 5411b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root OpenSSLECPointContext pubKey = OpenSSLECPointContext.getInstance( 557dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root NativeCrypto.get_EC_GROUP_type(group.getNativeRef()), group, ecKeySpec.getW()); 567dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root key = new OpenSSLKey(NativeCrypto.EVP_PKEY_new_EC_KEY(group.getNativeRef(), 577dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root pubKey.getNativeRef(), null)); 5811b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root } catch (Exception e) { 5911b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root throw new InvalidKeySpecException(e); 6011b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root } 6111b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root } 6211b3e7025853f061e2f0e0ce1e248e730eca721eKenny Root 638b7521eb38878822be3817270cc074ee1e22095dKenny Root public static OpenSSLKey getInstance(ECPublicKey ecPublicKey) throws InvalidKeyException { 648b7521eb38878822be3817270cc074ee1e22095dKenny Root try { 658b7521eb38878822be3817270cc074ee1e22095dKenny Root OpenSSLECGroupContext group = OpenSSLECGroupContext 668b7521eb38878822be3817270cc074ee1e22095dKenny Root .getInstance(ecPublicKey.getParams()); 678b7521eb38878822be3817270cc074ee1e22095dKenny Root OpenSSLECPointContext pubKey = OpenSSLECPointContext.getInstance( 687dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root NativeCrypto.get_EC_GROUP_type(group.getNativeRef()), group, 697dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root ecPublicKey.getW()); 707dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root return new OpenSSLKey(NativeCrypto.EVP_PKEY_new_EC_KEY(group.getNativeRef(), 717dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root pubKey.getNativeRef(), null)); 728b7521eb38878822be3817270cc074ee1e22095dKenny Root } catch (Exception e) { 738b7521eb38878822be3817270cc074ee1e22095dKenny Root throw new InvalidKeyException(e); 748b7521eb38878822be3817270cc074ee1e22095dKenny Root } 758b7521eb38878822be3817270cc074ee1e22095dKenny Root } 768b7521eb38878822be3817270cc074ee1e22095dKenny Root 778b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 788b7521eb38878822be3817270cc074ee1e22095dKenny Root public String getAlgorithm() { 798b7521eb38878822be3817270cc074ee1e22095dKenny Root return ALGORITHM; 808b7521eb38878822be3817270cc074ee1e22095dKenny Root } 818b7521eb38878822be3817270cc074ee1e22095dKenny Root 828b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 838b7521eb38878822be3817270cc074ee1e22095dKenny Root public String getFormat() { 848b7521eb38878822be3817270cc074ee1e22095dKenny Root return "X.509"; 858b7521eb38878822be3817270cc074ee1e22095dKenny Root } 868b7521eb38878822be3817270cc074ee1e22095dKenny Root 878b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 888b7521eb38878822be3817270cc074ee1e22095dKenny Root public byte[] getEncoded() { 8937e58bbef60b18389074d8ef8a8c470e47f3d7eeKenny Root return NativeCrypto.i2d_PUBKEY(key.getNativeRef()); 908b7521eb38878822be3817270cc074ee1e22095dKenny Root } 918b7521eb38878822be3817270cc074ee1e22095dKenny Root 928b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 938b7521eb38878822be3817270cc074ee1e22095dKenny Root public ECParameterSpec getParams() { 948b7521eb38878822be3817270cc074ee1e22095dKenny Root return group.getECParameterSpec(); 958b7521eb38878822be3817270cc074ee1e22095dKenny Root } 968b7521eb38878822be3817270cc074ee1e22095dKenny Root 978b7521eb38878822be3817270cc074ee1e22095dKenny Root private ECPoint getPublicKey() { 988b7521eb38878822be3817270cc074ee1e22095dKenny Root final OpenSSLECPointContext pubKey = new OpenSSLECPointContext(group, 997dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root new NativeRef.EC_POINT(NativeCrypto.EC_KEY_get_public_key(key.getNativeRef()))); 1008b7521eb38878822be3817270cc074ee1e22095dKenny Root 1018b7521eb38878822be3817270cc074ee1e22095dKenny Root return pubKey.getECPoint(); 1028b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1038b7521eb38878822be3817270cc074ee1e22095dKenny Root 1048b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 1058b7521eb38878822be3817270cc074ee1e22095dKenny Root public ECPoint getW() { 1068b7521eb38878822be3817270cc074ee1e22095dKenny Root return getPublicKey(); 1078b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1088b7521eb38878822be3817270cc074ee1e22095dKenny Root 10947cc520bd63c1eabfdef23cbab10457701f2a395Kenny Root @Override 1108b7521eb38878822be3817270cc074ee1e22095dKenny Root public OpenSSLKey getOpenSSLKey() { 1118b7521eb38878822be3817270cc074ee1e22095dKenny Root return key; 1128b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1138b7521eb38878822be3817270cc074ee1e22095dKenny Root 1148b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 1158b7521eb38878822be3817270cc074ee1e22095dKenny Root public boolean equals(Object o) { 1168b7521eb38878822be3817270cc074ee1e22095dKenny Root if (o == this) { 1178b7521eb38878822be3817270cc074ee1e22095dKenny Root return true; 1188b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1198b7521eb38878822be3817270cc074ee1e22095dKenny Root 120cac9de82cc0c50ff1a20d1290339776c125fc63eKenny Root if (o instanceof OpenSSLECPublicKey) { 121cac9de82cc0c50ff1a20d1290339776c125fc63eKenny Root OpenSSLECPublicKey other = (OpenSSLECPublicKey) o; 1228b7521eb38878822be3817270cc074ee1e22095dKenny Root return key.equals(other.key); 1238b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1248b7521eb38878822be3817270cc074ee1e22095dKenny Root 1258b7521eb38878822be3817270cc074ee1e22095dKenny Root if (!(o instanceof ECPublicKey)) { 1268b7521eb38878822be3817270cc074ee1e22095dKenny Root return false; 1278b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1288b7521eb38878822be3817270cc074ee1e22095dKenny Root 1298b7521eb38878822be3817270cc074ee1e22095dKenny Root final ECPublicKey other = (ECPublicKey) o; 1308b7521eb38878822be3817270cc074ee1e22095dKenny Root if (!getPublicKey().equals(other.getW())) { 1318b7521eb38878822be3817270cc074ee1e22095dKenny Root return false; 1328b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1338b7521eb38878822be3817270cc074ee1e22095dKenny Root 1348b7521eb38878822be3817270cc074ee1e22095dKenny Root final ECParameterSpec spec = getParams(); 1358b7521eb38878822be3817270cc074ee1e22095dKenny Root final ECParameterSpec otherSpec = other.getParams(); 1368b7521eb38878822be3817270cc074ee1e22095dKenny Root 1378b7521eb38878822be3817270cc074ee1e22095dKenny Root return spec.getCurve().equals(otherSpec.getCurve()) 1388b7521eb38878822be3817270cc074ee1e22095dKenny Root && spec.getGenerator().equals(otherSpec.getGenerator()) 1398b7521eb38878822be3817270cc074ee1e22095dKenny Root && spec.getOrder().equals(otherSpec.getOrder()) 1408b7521eb38878822be3817270cc074ee1e22095dKenny Root && spec.getCofactor() == otherSpec.getCofactor(); 1418b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1428b7521eb38878822be3817270cc074ee1e22095dKenny Root 1438b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 1448b7521eb38878822be3817270cc074ee1e22095dKenny Root public int hashCode() { 14537e58bbef60b18389074d8ef8a8c470e47f3d7eeKenny Root return Arrays.hashCode(NativeCrypto.i2d_PUBKEY(key.getNativeRef())); 1468b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1478b7521eb38878822be3817270cc074ee1e22095dKenny Root 1488b7521eb38878822be3817270cc074ee1e22095dKenny Root @Override 1498b7521eb38878822be3817270cc074ee1e22095dKenny Root public String toString() { 15037e58bbef60b18389074d8ef8a8c470e47f3d7eeKenny Root return NativeCrypto.EVP_PKEY_print_public(key.getNativeRef()); 1518b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1528b7521eb38878822be3817270cc074ee1e22095dKenny Root 1538b7521eb38878822be3817270cc074ee1e22095dKenny Root private void readObject(ObjectInputStream stream) throws IOException, ClassNotFoundException { 1548b7521eb38878822be3817270cc074ee1e22095dKenny Root stream.defaultReadObject(); 1558b7521eb38878822be3817270cc074ee1e22095dKenny Root 1565b36f6cc5f013574dc453e8938fcae13185c7732Kenny Root byte[] encoded = (byte[]) stream.readObject(); 1578b7521eb38878822be3817270cc074ee1e22095dKenny Root 1585b36f6cc5f013574dc453e8938fcae13185c7732Kenny Root key = new OpenSSLKey(NativeCrypto.d2i_PUBKEY(encoded)); 1597dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root group = new OpenSSLECGroupContext(new NativeRef.EC_GROUP( 1607dc06b9e323ba7f227709b5941324f9c3a46fe4fKenny Root NativeCrypto.EC_KEY_get1_group(key.getNativeRef()))); 1618b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1628b7521eb38878822be3817270cc074ee1e22095dKenny Root 1638b7521eb38878822be3817270cc074ee1e22095dKenny Root private void writeObject(ObjectOutputStream stream) throws IOException { 1648b7521eb38878822be3817270cc074ee1e22095dKenny Root if (key.isEngineBased()) { 1658b7521eb38878822be3817270cc074ee1e22095dKenny Root throw new NotSerializableException("engine-based keys can not be serialized"); 1668b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1678b7521eb38878822be3817270cc074ee1e22095dKenny Root 1688b7521eb38878822be3817270cc074ee1e22095dKenny Root stream.defaultWriteObject(); 1695b36f6cc5f013574dc453e8938fcae13185c7732Kenny Root stream.writeObject(getEncoded()); 1708b7521eb38878822be3817270cc074ee1e22095dKenny Root } 1718b7521eb38878822be3817270cc074ee1e22095dKenny Root} 172