authorization_set.cpp revision 28f2e72909a73788cf636b637f7403984ede3b74
15ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* 25ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Copyright (C) 2014 The Android Open Source Project 35ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 45ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Licensed under the Apache License, Version 2.0 (the "License"); 55ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * you may not use this file except in compliance with the License. 65ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * You may obtain a copy of the License at 75ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 85ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * http://www.apache.org/licenses/LICENSE-2.0 95ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Unless required by applicable law or agreed to in writing, software 115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * distributed under the License is distributed on an "AS IS" BASIS, 125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * See the License for the specific language governing permissions and 145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * limitations under the License. 155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden */ 165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 170f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <keymaster/authorization_set.h> 180f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden 190f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <assert.h> 205ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <stdlib.h> 215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <string.h> 225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <stddef.h> 235ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 240f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <new> 255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 26b6837e7a62a1192e33beef586282812239ee8b28Shawn Willden#include <keymaster/android_keymaster_utils.h> 27f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden#include <keymaster/logger.h> 285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdennamespace keymaster { 305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenstatic inline bool is_blob_tag(keymaster_tag_t tag) { 325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return (keymaster_tag_get_type(tag) == KM_BYTES || keymaster_tag_get_type(tag) == KM_BIGNUM); 335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenconst size_t STARTING_ELEMS_CAPACITY = 8; 365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 372c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn WilldenAuthorizationSet::AuthorizationSet(AuthorizationSetBuilder& builder) { 382c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_ = builder.set.elems_; 392c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_ = NULL; 402c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 412c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ = builder.set.elems_size_; 422c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_size_ = 0; 432c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 442c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_capacity_ = builder.set.elems_capacity_; 452c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_capacity_ = 0; 462c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 472c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_ = builder.set.indirect_data_; 482c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_ = NULL; 492c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_capacity_ = builder.set.indirect_data_capacity_; 512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_capacity_ = 0; 522c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 532c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_size_ = builder.set.indirect_data_size_; 542c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_size_ = 0; 552c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden error_ = builder.set.error_; 572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.error_ = OK; 582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 592c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 608d336ae10df66da4c0433f17c2d42e85baea32c5Shawn WilldenAuthorizationSet::~AuthorizationSet() { 618d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden FreeData(); 628d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 6358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 64370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_elems(size_t count) { 65437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 66437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 67437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 68370121346777e13437c275fbe7a975d899cc325cShawn Willden if (count >= elems_capacity_) { 690f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden keymaster_key_param_t* new_elems = new (std::nothrow) keymaster_key_param_t[count]; 70370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_elems == NULL) { 71370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 72370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 73370121346777e13437c275fbe7a975d899cc325cShawn Willden } 74370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_elems, elems_, sizeof(*elems_) * elems_size_); 75370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] elems_; 76370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_ = new_elems; 77370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_capacity_ = count; 78370121346777e13437c275fbe7a975d899cc325cShawn Willden } 79370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 80370121346777e13437c275fbe7a975d899cc325cShawn Willden} 81370121346777e13437c275fbe7a975d899cc325cShawn Willden 82370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_indirect(size_t length) { 83437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 84437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 85437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 86370121346777e13437c275fbe7a975d899cc325cShawn Willden if (length > indirect_data_capacity_) { 87c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden uint8_t* new_data = new (std::nothrow) uint8_t[length]; 88370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_data == NULL) { 89370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 90370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 91370121346777e13437c275fbe7a975d899cc325cShawn Willden } 92370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_data, indirect_data_, indirect_data_size_); 93370121346777e13437c275fbe7a975d899cc325cShawn Willden 94370121346777e13437c275fbe7a975d899cc325cShawn Willden // Fix up the data pointers to point into the new region. 95370121346777e13437c275fbe7a975d899cc325cShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 96370121346777e13437c275fbe7a975d899cc325cShawn Willden if (is_blob_tag(elems_[i].tag)) 97370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_[i].blob.data = new_data + (elems_[i].blob.data - indirect_data_); 98370121346777e13437c275fbe7a975d899cc325cShawn Willden } 99370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] indirect_data_; 100370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_ = new_data; 101370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_capacity_ = length; 102370121346777e13437c275fbe7a975d899cc325cShawn Willden } 103370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 104370121346777e13437c275fbe7a975d899cc325cShawn Willden} 105370121346777e13437c275fbe7a975d899cc325cShawn Willden 1065ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::Reinitialize(const keymaster_key_param_t* elems, const size_t count) { 1075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 1085ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 109b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden if (elems == NULL || count == 0) { 110b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden error_ = OK; 111b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden return true; 112b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden } 113b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden 114370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(count)) 115370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 1165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 117370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(ComputeIndirectDataSize(elems, count))) 1185ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 1195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 120370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(elems_, elems, sizeof(keymaster_key_param_t) * count); 121370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = count; 1225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden CopyIndirectData(); 123370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 1245ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 1255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::set_invalid(Error error) { 1285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 129370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = error; 1305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1322c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willdenvoid AuthorizationSet::Deduplicate() { 1332c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden qsort(elems_, elems_size_, sizeof(*elems_), 1342c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden reinterpret_cast<int (*)(const void*, const void*)>(keymaster_param_compare)); 1352c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1362c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden size_t invalid_count = 0; 1372c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden for (size_t i = 1; i < size(); ++i) { 1382c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (elems_[i - 1].tag == KM_TAG_INVALID) 1392c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1402c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden else if (keymaster_param_compare(elems_ + i - 1, elems_ + i) == 0) { 1412c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Mark dups as invalid. Note that this "leaks" the data referenced by KM_BYTES and 1422c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // KM_BIGNUM entries, but those are just pointers into indirect_data_, so it will all 1432c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // get cleaned up. 1442c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_[i - 1].tag = KM_TAG_INVALID; 1452c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1462c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1472c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1482c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (size() > 0 && elems_[size() - 1].tag == KM_TAG_INVALID) 1492c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (invalid_count == 0) 1522c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden return; 1532c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1542c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Since KM_TAG_INVALID == 0, all of the invalid entries are first. 1552c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ -= invalid_count; 1562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden memmove(elems_, elems_ + invalid_count, size() * sizeof(*elems_)); 1572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 1582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 159cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willdenvoid AuthorizationSet::CopyToParamSet(keymaster_key_param_set_t* set) const { 160cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden assert(set); 161cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 162cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->length = size(); 163cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->params = 164cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden reinterpret_cast<keymaster_key_param_t*>(malloc(sizeof(keymaster_key_param_t) * size())); 165cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 166cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden for (size_t i = 0; i < size(); ++i) { 167cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden const keymaster_key_param_t src = (*this)[i]; 168cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_key_param_t& dst(set->params[i]); 169cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 170cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst = src; 171cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_tag_type_t type = keymaster_tag_get_type(src.tag); 172cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden if (type == KM_BIGNUM || type == KM_BYTES) { 173cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden void* tmp = malloc(src.blob.data_length); 174cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden memcpy(tmp, src.blob.data, src.blob.data_length); 175cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst.blob.data = reinterpret_cast<uint8_t*>(tmp); 176cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 177cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 178cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden} 179cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 1805ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenint AuthorizationSet::find(keymaster_tag_t tag, int begin) const { 181437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 182437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return -1; 183437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 1845ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int i = ++begin; 1858d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden while (i < (int)elems_size_ && elems_[i].tag != tag) 1868d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden ++i; 1875ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (i == (int)elems_size_) 1885ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return -1; 1895ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden else 1905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return i; 1915ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1935ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenkeymaster_key_param_t empty; 1945ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenkeymaster_key_param_t AuthorizationSet::operator[](int at) const { 195437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() == OK && at < (int)elems_size_) { 1968d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return elems_[at]; 1975ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 1985ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memset(&empty, 0, sizeof(empty)); 1995ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return empty; 2005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 202b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willdenbool AuthorizationSet::push_back(const keymaster_key_param_set_t& set) { 203437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 204437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 205437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 206b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!reserve_elems(elems_size_ + set.length)) 207370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 208370121346777e13437c275fbe7a975d899cc325cShawn Willden 209b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!reserve_indirect(indirect_data_size_ + ComputeIndirectDataSize(set.params, set.length))) 210370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 211370121346777e13437c275fbe7a975d899cc325cShawn Willden 212b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden for (size_t i = 0; i < set.length; ++i) 213b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!push_back(set.params[i])) 214370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 215370121346777e13437c275fbe7a975d899cc325cShawn Willden 216370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 217370121346777e13437c275fbe7a975d899cc325cShawn Willden} 218370121346777e13437c275fbe7a975d899cc325cShawn Willden 2195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::push_back(keymaster_key_param_t elem) { 220437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 221437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 222437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 223370121346777e13437c275fbe7a975d899cc325cShawn Willden if (elems_size_ >= elems_capacity_) 224370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elems_capacity_ ? elems_capacity_ * 2 : STARTING_ELEMS_CAPACITY)) 2255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 2265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elem.tag)) { 228370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_capacity_ - indirect_data_size_ < elem.blob.data_length) 229370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(2 * (indirect_data_capacity_ + elem.blob.data_length))) 2305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 23158e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 2325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_ + indirect_data_size_, elem.blob.data, elem.blob.data_length); 2338d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden elem.blob.data = indirect_data_ + indirect_data_size_; 2345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_size_ += elem.blob.data_length; 2355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 2365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2375ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[elems_size_++] = elem; 2385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 2395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2418d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic size_t serialized_size(const keymaster_key_param_t& param) { 2428d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 2438d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 2448d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t); 2458d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 2468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 247c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 248c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 2498d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 2; 250c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 251c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 2528d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 2538d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + sizeof(uint64_t); 2548d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 2558d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + 1; 2568d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 2578d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 2588d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 3; 2598d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 26082114e7cbf97f65348d32b2685dd52427525146dShawn Willden 26182114e7cbf97f65348d32b2685dd52427525146dShawn Willden return sizeof(uint32_t); 2628d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 2638d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 2648d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic uint8_t* serialize(const keymaster_key_param_t& param, uint8_t* buf, const uint8_t* end, 2658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base) { 266172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.tag); 2678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 2688d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 2698d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2708d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 2718d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 272172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.enumerated); 2738d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 274c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 275c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 276172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.integer); 2778d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 278c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 279c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 280172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.long_integer); 2818d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2828d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 283172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.date_time); 2848d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2858d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 2868d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden if (buf < end) 2878d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden *buf = static_cast<uint8_t>(param.boolean); 2888d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf++; 2898d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2908d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 2918d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 292172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data_length); 293172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data - indirect_base); 2948d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2958d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 2968d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 2978d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 2988d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 299172f8c9be706e27f43022063bbc7f4b0177583acShawn Willdenstatic bool deserialize(keymaster_key_param_t* param, const uint8_t** buf_ptr, const uint8_t* end, 3008d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base, const uint8_t* indirect_end) { 301172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->tag)) 3028d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3038d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3048d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param->tag)) { 3058d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 3068d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3078d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 3088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 309172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->enumerated); 310c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 311c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 312172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->integer); 313c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 314c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 315172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->long_integer); 3168d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 317172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->date_time); 3188d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3198d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 320172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (*buf_ptr < end) { 321172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden param->boolean = static_cast<bool>(**buf_ptr); 322172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden (*buf_ptr)++; 3238d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3248d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3258d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3268d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3278d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 3288d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: { 3298d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t offset; 330172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->blob.data_length) || 331172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &offset)) 3328d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 33328f2e72909a73788cf636b637f7403984ede3b74Shawn Willden if (param->blob.data_length + offset < param->blob.data_length || // Overflow check 33428f2e72909a73788cf636b637f7403984ede3b74Shawn Willden static_cast<ptrdiff_t>(offset) > indirect_end - indirect_base || 335172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden static_cast<ptrdiff_t>(offset + param->blob.data_length) > indirect_end - indirect_base) 3368d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3378d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden param->blob.data = indirect_base + offset; 3388d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3398d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3408d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 34182114e7cbf97f65348d32b2685dd52427525146dShawn Willden 34282114e7cbf97f65348d32b2685dd52427525146dShawn Willden return false; 3438d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3448d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3458d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdensize_t AuthorizationSet::SerializedSizeOfElements() const { 3468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size_t size = 0; 3478d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 3488d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size += serialized_size(elems_[i]); 3498d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3508d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return size; 3518d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3528d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 35358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willdensize_t AuthorizationSet::SerializedSize() const { 3548d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + // Size of indirect_data_ 3558d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden indirect_data_size_ + // indirect_data_ 3568d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Number of elems_ 3578d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Size of elems_ 3588d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden SerializedSizeOfElements(); // elems_ 3595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 3605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 3618d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenuint8_t* AuthorizationSet::Serialize(uint8_t* buf, const uint8_t* end) const { 3628d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = append_size_and_data_to_buf(buf, end, indirect_data_, indirect_data_size_); 363172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, elems_size_); 364172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, SerializedSizeOfElements()); 3658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 3668d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = serialize(elems_[i], buf, end, indirect_data_); 3678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3688d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 3695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 3705ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 371370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeIndirectData(const uint8_t** buf_ptr, const uint8_t* end) { 372f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden UniquePtr<uint8_t[]> indirect_buf; 373f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden if (!copy_size_and_data_from_buf(buf_ptr, end, &indirect_data_size_, &indirect_buf)) { 374f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 375370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(MALFORMED_DATA); 376370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 377370121346777e13437c275fbe7a975d899cc325cShawn Willden } 378f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden indirect_data_ = indirect_buf.release(); 379370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 380370121346777e13437c275fbe7a975d899cc325cShawn Willden} 3815ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 382370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeElementsData(const uint8_t** buf_ptr, const uint8_t* end) { 3838d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_count; 3848d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_size; 385370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, &elements_count) || 386172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &elements_size)) { 387f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 38858e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden set_invalid(MALFORMED_DATA); 3895ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 3905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 3915ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 392834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // Note that the following validation of elements_count is weak, but it prevents allocation of 393834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // elems_ arrays which are clearly too large to be reasonable. 39462de26672193373972f2ce968b51cf8335f118f9Shawn Willden if (static_cast<ptrdiff_t>(elements_size) > end - *buf_ptr || 3950f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden elements_count * sizeof(uint32_t) > elements_size || 3960f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden *buf_ptr + (elements_count * sizeof(*elems_)) < *buf_ptr) { 397f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 398834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden set_invalid(MALFORMED_DATA); 399834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden return false; 400834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden } 401834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden 402370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elements_count)) 4035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4045ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4058d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint8_t* indirect_end = indirect_data_ + indirect_data_size_; 406172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden const uint8_t* elements_end = *buf_ptr + elements_size; 4078d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elements_count; ++i) { 408172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!deserialize(elems_ + i, buf_ptr, elements_end, indirect_data_, indirect_end)) { 409f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4108d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4118d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 4128d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 41358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden } 414370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = elements_count; 415370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 416370121346777e13437c275fbe7a975d899cc325cShawn Willden} 4175ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 418370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::Deserialize(const uint8_t** buf_ptr, const uint8_t* end) { 419370121346777e13437c275fbe7a975d899cc325cShawn Willden FreeData(); 420370121346777e13437c275fbe7a975d899cc325cShawn Willden 421370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!DeserializeIndirectData(buf_ptr, end) || !DeserializeElementsData(buf_ptr, end)) 422370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 423370121346777e13437c275fbe7a975d899cc325cShawn Willden 424370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_size_ != ComputeIndirectDataSize(elems_, elems_size_)) { 425f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4268d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4298d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 4305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 432941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::Clear() { 4331834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(elems_, 0, elems_size_ * sizeof(keymaster_key_param_t)); 4341834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(indirect_data_, 0, indirect_data_size_); 435941d1c4ad4422a796d90010191c11aef0580295eShawn Willden elems_size_ = 0; 436941d1c4ad4422a796d90010191c11aef0580295eShawn Willden indirect_data_size_ = 0; 437941d1c4ad4422a796d90010191c11aef0580295eShawn Willden} 438941d1c4ad4422a796d90010191c11aef0580295eShawn Willden 439941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::FreeData() { 440941d1c4ad4422a796d90010191c11aef0580295eShawn Willden Clear(); 44158e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 44258e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] elems_; 44358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] indirect_data_; 44458e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 4455ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_ = NULL; 4465ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_ = NULL; 4475ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_capacity_ = 0; 4485ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_capacity_ = 0; 449370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 4505ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4515ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4525ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* static */ 4535ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdensize_t AuthorizationSet::ComputeIndirectDataSize(const keymaster_key_param_t* elems, size_t count) { 4545ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t size = 0; 4555ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < count; ++i) { 4565ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems[i].tag)) { 4575ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size += elems[i].blob.data_length; 4585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return size; 4615ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4625ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4635ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::CopyIndirectData() { 464370121346777e13437c275fbe7a975d899cc325cShawn Willden memset_s(indirect_data_, 0, indirect_data_capacity_); 4655ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4665ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint8_t* indirect_data_pos = indirect_data_; 4675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 468370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos <= indirect_data_ + indirect_data_capacity_); 4695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems_[i].tag)) { 4705ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_pos, elems_[i].blob.data, elems_[i].blob.data_length); 4715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[i].blob.data = indirect_data_pos; 4725ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_pos += elems_[i].blob.data_length; 4735ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4745ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 475370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos == indirect_data_ + indirect_data_capacity_); 476370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_size_ = indirect_data_pos - indirect_data_; 4775ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4785ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4791fa5d591fe6807665092753a5628d8d470888da4Shawn Willdensize_t AuthorizationSet::GetTagCount(keymaster_tag_t tag) const { 4801fa5d591fe6807665092753a5628d8d470888da4Shawn Willden size_t count = 0; 4811fa5d591fe6807665092753a5628d8d470888da4Shawn Willden for (int pos = -1; (pos = find(tag, pos)) != -1;) 4821fa5d591fe6807665092753a5628d8d470888da4Shawn Willden ++count; 4831fa5d591fe6807665092753a5628d8d470888da4Shawn Willden return count; 4841fa5d591fe6807665092753a5628d8d470888da4Shawn Willden} 4851fa5d591fe6807665092753a5628d8d470888da4Shawn Willden 4865ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnum(keymaster_tag_t tag, uint32_t* val) const { 4875ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 4885ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 4895ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 491ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 4925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 4935ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4945ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4955ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnumRep(keymaster_tag_t tag, size_t instance, 4965ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 4975ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 4985ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 4995ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 5005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 5015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5045ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5055ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 506ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 5075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5085ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5095ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueInt(keymaster_tag_t tag, uint32_t* val) const { 5115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 515ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5175ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5185ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueIntRep(keymaster_tag_t tag, size_t instance, 5205ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 5215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 5225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 5235ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 5245ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 5255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 530ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueLong(keymaster_tag_t tag, uint64_t* val) const { 5355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5375ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 539ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].long_integer; 5405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5415ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5425ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 543eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willdenbool AuthorizationSet::GetTagValueLongRep(keymaster_tag_t tag, size_t instance, 544eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden uint64_t* val) const { 545eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden size_t count = 0; 546eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden int pos = -1; 547eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden while (count <= instance) { 548eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden pos = find(tag, pos); 549eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden if (pos == -1) { 550eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return false; 551eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 552eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden ++count; 553eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 554eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden *val = elems_[pos].long_integer; 555eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return true; 556eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden} 557eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden 5585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueDate(keymaster_tag_t tag, uint64_t* val) const { 5595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5615ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5625ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 563ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].date_time; 5645ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5655ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5665ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueBlob(keymaster_tag_t tag, keymaster_blob_t* val) const { 5685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5705ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 572ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].blob; 5735ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5745ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5755ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 576dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willdenbool AuthorizationSet::GetTagValueBool(keymaster_tag_t tag) const { 577dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden int pos = find(tag); 578dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden if (pos == -1) { 579dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return false; 580dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden } 581dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden assert(elems_[pos].boolean); 582dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return elems_[pos].boolean; 583dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden} 584dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden 585edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willdenbool AuthorizationSet::ContainsEnumValue(keymaster_tag_t tag, uint32_t value) const { 586edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden for (auto& entry : *this) 587edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden if (entry.tag == tag && entry.enumerated == value) 588edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden return true; 589edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden return false; 590edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden} 591edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden 5925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} // namespace keymaster 593