authorization_set.cpp revision f01329d8692edde9a9ffb88f29f5d684eab481e2
15ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* 25ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Copyright (C) 2014 The Android Open Source Project 35ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 45ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Licensed under the Apache License, Version 2.0 (the "License"); 55ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * you may not use this file except in compliance with the License. 65ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * You may obtain a copy of the License at 75ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 85ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * http://www.apache.org/licenses/LICENSE-2.0 95ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Unless required by applicable law or agreed to in writing, software 115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * distributed under the License is distributed on an "AS IS" BASIS, 125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * See the License for the specific language governing permissions and 145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * limitations under the License. 155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden */ 165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 175ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <stdlib.h> 185ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <string.h> 195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <stddef.h> 205ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <assert.h> 225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2398d9b92547a9a7553b99e3e941a4175926f95b62Shawn Willden#include <keymaster/authorization_set.h> 2498d9b92547a9a7553b99e3e941a4175926f95b62Shawn Willden#include <keymaster/google_keymaster_utils.h> 25f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden#include <keymaster/logger.h> 265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdennamespace keymaster { 285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenstatic inline bool is_blob_tag(keymaster_tag_t tag) { 305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return (keymaster_tag_get_type(tag) == KM_BYTES || keymaster_tag_get_type(tag) == KM_BIGNUM); 315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenconst size_t STARTING_ELEMS_CAPACITY = 8; 345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 3558e1a5486219a1be9264d4e863a9dd3e393906c3Shawn WilldenAuthorizationSet::AuthorizationSet(const AuthorizationSet& set) 3662de26672193373972f2ce968b51cf8335f118f9Shawn Willden : Serializable(), elems_(NULL), indirect_data_(NULL) { 377636471bd1c553ac179f0dddc17133491d0e1fafShawn Willden Reinitialize(set.elems_, set.elems_size_); 385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 402c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn WilldenAuthorizationSet::AuthorizationSet(AuthorizationSetBuilder& builder) { 412c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_ = builder.set.elems_; 422c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_ = NULL; 432c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 442c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ = builder.set.elems_size_; 452c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_size_ = 0; 462c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 472c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_capacity_ = builder.set.elems_capacity_; 482c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_capacity_ = 0; 492c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_ = builder.set.indirect_data_; 512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_ = NULL; 522c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 532c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_capacity_ = builder.set.indirect_data_capacity_; 542c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_capacity_ = 0; 552c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_size_ = builder.set.indirect_data_size_; 572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_size_ = 0; 582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 592c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden error_ = builder.set.error_; 602c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.error_ = OK; 612c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 622c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 638d336ae10df66da4c0433f17c2d42e85baea32c5Shawn WilldenAuthorizationSet::~AuthorizationSet() { 648d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden FreeData(); 658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 6658e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 67370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_elems(size_t count) { 68437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 69437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 70437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 71370121346777e13437c275fbe7a975d899cc325cShawn Willden if (count >= elems_capacity_) { 72370121346777e13437c275fbe7a975d899cc325cShawn Willden keymaster_key_param_t* new_elems = new keymaster_key_param_t[count]; 73370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_elems == NULL) { 74370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 75370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 76370121346777e13437c275fbe7a975d899cc325cShawn Willden } 77370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_elems, elems_, sizeof(*elems_) * elems_size_); 78370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] elems_; 79370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_ = new_elems; 80370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_capacity_ = count; 81370121346777e13437c275fbe7a975d899cc325cShawn Willden } 82370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 83370121346777e13437c275fbe7a975d899cc325cShawn Willden} 84370121346777e13437c275fbe7a975d899cc325cShawn Willden 85370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_indirect(size_t length) { 86437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 87437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 88437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 89370121346777e13437c275fbe7a975d899cc325cShawn Willden if (length > indirect_data_capacity_) { 90370121346777e13437c275fbe7a975d899cc325cShawn Willden uint8_t* new_data = new uint8_t[length]; 91370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_data == NULL) { 92370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 93370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 94370121346777e13437c275fbe7a975d899cc325cShawn Willden } 95370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_data, indirect_data_, indirect_data_size_); 96370121346777e13437c275fbe7a975d899cc325cShawn Willden 97370121346777e13437c275fbe7a975d899cc325cShawn Willden // Fix up the data pointers to point into the new region. 98370121346777e13437c275fbe7a975d899cc325cShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 99370121346777e13437c275fbe7a975d899cc325cShawn Willden if (is_blob_tag(elems_[i].tag)) 100370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_[i].blob.data = new_data + (elems_[i].blob.data - indirect_data_); 101370121346777e13437c275fbe7a975d899cc325cShawn Willden } 102370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] indirect_data_; 103370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_ = new_data; 104370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_capacity_ = length; 105370121346777e13437c275fbe7a975d899cc325cShawn Willden } 106370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 107370121346777e13437c275fbe7a975d899cc325cShawn Willden} 108370121346777e13437c275fbe7a975d899cc325cShawn Willden 1095ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::Reinitialize(const keymaster_key_param_t* elems, const size_t count) { 1105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 1115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 112b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden if (elems == NULL || count == 0) { 113b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden error_ = OK; 114b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden return true; 115b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden } 116b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden 117370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(count)) 118370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 1195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 120370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(ComputeIndirectDataSize(elems, count))) 1215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 1225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 123370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(elems_, elems, sizeof(keymaster_key_param_t) * count); 124370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = count; 1255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden CopyIndirectData(); 126370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 1275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 1285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::set_invalid(Error error) { 1315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 132370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = error; 1335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1352c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willdenvoid AuthorizationSet::Deduplicate() { 1362c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden qsort(elems_, elems_size_, sizeof(*elems_), 1372c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden reinterpret_cast<int (*)(const void*, const void*)>(keymaster_param_compare)); 1382c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1392c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden size_t invalid_count = 0; 1402c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden for (size_t i = 1; i < size(); ++i) { 1412c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (elems_[i - 1].tag == KM_TAG_INVALID) 1422c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1432c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden else if (keymaster_param_compare(elems_ + i - 1, elems_ + i) == 0) { 1442c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Mark dups as invalid. Note that this "leaks" the data referenced by KM_BYTES and 1452c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // KM_BIGNUM entries, but those are just pointers into indirect_data_, so it will all 1462c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // get cleaned up. 1472c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_[i - 1].tag = KM_TAG_INVALID; 1482c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1492c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (size() > 0 && elems_[size() - 1].tag == KM_TAG_INVALID) 1522c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1532c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1542c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (invalid_count == 0) 1552c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden return; 1562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Since KM_TAG_INVALID == 0, all of the invalid entries are first. 1582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ -= invalid_count; 1592c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden memmove(elems_, elems_ + invalid_count, size() * sizeof(*elems_)); 1602c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 1612c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 162cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willdenvoid AuthorizationSet::CopyToParamSet(keymaster_key_param_set_t* set) const { 163cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden assert(set); 164cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 165cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->length = size(); 166cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->params = 167cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden reinterpret_cast<keymaster_key_param_t*>(malloc(sizeof(keymaster_key_param_t) * size())); 168cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 169cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden for (size_t i = 0; i < size(); ++i) { 170cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden const keymaster_key_param_t src = (*this)[i]; 171cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_key_param_t& dst(set->params[i]); 172cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 173cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst = src; 174cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_tag_type_t type = keymaster_tag_get_type(src.tag); 175cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden if (type == KM_BIGNUM || type == KM_BYTES) { 176cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden void* tmp = malloc(src.blob.data_length); 177cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden memcpy(tmp, src.blob.data, src.blob.data_length); 178cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst.blob.data = reinterpret_cast<uint8_t*>(tmp); 179cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 180cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 181cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden} 182cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 1835ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenint AuthorizationSet::find(keymaster_tag_t tag, int begin) const { 184437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 185437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return -1; 186437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 1875ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int i = ++begin; 1888d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden while (i < (int)elems_size_ && elems_[i].tag != tag) 1898d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden ++i; 1905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (i == (int)elems_size_) 1915ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return -1; 1925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden else 1935ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return i; 1945ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1955ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1965ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenkeymaster_key_param_t empty; 1975ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenkeymaster_key_param_t AuthorizationSet::operator[](int at) const { 198437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() == OK && at < (int)elems_size_) { 1998d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return elems_[at]; 2005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 2015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memset(&empty, 0, sizeof(empty)); 2025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return empty; 2035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2045ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 205370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::push_back(const AuthorizationSet& set) { 206437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 207437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 208437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 209370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elems_size_ + set.elems_size_)) 210370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 211370121346777e13437c275fbe7a975d899cc325cShawn Willden 212370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(indirect_data_size_ + set.indirect_data_size_)) 213370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 214370121346777e13437c275fbe7a975d899cc325cShawn Willden 215370121346777e13437c275fbe7a975d899cc325cShawn Willden for (size_t i = 0; i < set.size(); ++i) 216370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!push_back(set[i])) 217370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 218370121346777e13437c275fbe7a975d899cc325cShawn Willden 219370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 220370121346777e13437c275fbe7a975d899cc325cShawn Willden} 221370121346777e13437c275fbe7a975d899cc325cShawn Willden 2225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::push_back(keymaster_key_param_t elem) { 223437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 224437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 225437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 226370121346777e13437c275fbe7a975d899cc325cShawn Willden if (elems_size_ >= elems_capacity_) 227370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elems_capacity_ ? elems_capacity_ * 2 : STARTING_ELEMS_CAPACITY)) 2285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 2295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elem.tag)) { 231370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_capacity_ - indirect_data_size_ < elem.blob.data_length) 232370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(2 * (indirect_data_capacity_ + elem.blob.data_length))) 2335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 23458e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 2355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_ + indirect_data_size_, elem.blob.data, elem.blob.data_length); 2368d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden elem.blob.data = indirect_data_ + indirect_data_size_; 2375ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_size_ += elem.blob.data_length; 2385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 2395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[elems_size_++] = elem; 2415ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 2425ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2435ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2448d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic size_t serialized_size(const keymaster_key_param_t& param) { 2458d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 2468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 2478d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden default: 2488d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t); 2498d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 2508d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 2518d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT: 2528d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT_REP: 2538d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 2; 2548d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_LONG: 2558d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 2568d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + sizeof(uint64_t); 2578d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 2588d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + 1; 2598d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2608d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 2618d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 2628d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 3; 2638d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 2648d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 2658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 2668d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic uint8_t* serialize(const keymaster_key_param_t& param, uint8_t* buf, const uint8_t* end, 2678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base) { 268172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.tag); 2698d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 2708d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 2718d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2728d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 2738d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 274172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.enumerated); 2758d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2768d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT: 2778d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT_REP: 278172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.integer); 2798d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2808d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_LONG: 281eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden case KM_LONG_REP: 282172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.long_integer); 2838d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2848d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 285172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.date_time); 2868d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2878d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 2888d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden if (buf < end) 2898d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden *buf = static_cast<uint8_t>(param.boolean); 2908d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf++; 2918d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2928d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 2938d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 294172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data_length); 295172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data - indirect_base); 2968d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 2978d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 2988d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 2998d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3008d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 301172f8c9be706e27f43022063bbc7f4b0177583acShawn Willdenstatic bool deserialize(keymaster_key_param_t* param, const uint8_t** buf_ptr, const uint8_t* end, 3028d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base, const uint8_t* indirect_end) { 303172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->tag)) 3048d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3058d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3068d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param->tag)) { 3078d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden default: 3088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 3098d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3108d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 3118d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 312172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->enumerated); 3138d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT: 3148d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INT_REP: 315172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->integer); 3168d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_LONG: 317172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->long_integer); 3188d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 319172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->date_time); 3208d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3218d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 322172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (*buf_ptr < end) { 323172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden param->boolean = static_cast<bool>(**buf_ptr); 324172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden (*buf_ptr)++; 3258d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3268d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3278d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3288d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3298d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 3308d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: { 3318d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t offset; 332172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->blob.data_length) || 333172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &offset)) 3348d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3358d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden if (static_cast<ptrdiff_t>(offset) > indirect_end - indirect_base || 336172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden static_cast<ptrdiff_t>(offset + param->blob.data_length) > indirect_end - indirect_base) 3378d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3388d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden param->blob.data = indirect_base + offset; 3398d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3408d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3418d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3428d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3438d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3448d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdensize_t AuthorizationSet::SerializedSizeOfElements() const { 3458d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size_t size = 0; 3468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 3478d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size += serialized_size(elems_[i]); 3488d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3498d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return size; 3508d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3518d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 35258e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willdensize_t AuthorizationSet::SerializedSize() const { 3538d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + // Size of indirect_data_ 3548d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden indirect_data_size_ + // indirect_data_ 3558d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Number of elems_ 3568d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Size of elems_ 3578d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden SerializedSizeOfElements(); // elems_ 3585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 3595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 3608d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenuint8_t* AuthorizationSet::Serialize(uint8_t* buf, const uint8_t* end) const { 3618d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = append_size_and_data_to_buf(buf, end, indirect_data_, indirect_data_size_); 362172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, elems_size_); 363172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, SerializedSizeOfElements()); 3648d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 3658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = serialize(elems_[i], buf, end, indirect_data_); 3668d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 3685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 3695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 370370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeIndirectData(const uint8_t** buf_ptr, const uint8_t* end) { 371f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden UniquePtr<uint8_t[]> indirect_buf; 372f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden if (!copy_size_and_data_from_buf(buf_ptr, end, &indirect_data_size_, &indirect_buf)) { 373f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 374370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(MALFORMED_DATA); 375370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 376370121346777e13437c275fbe7a975d899cc325cShawn Willden } 377f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden indirect_data_ = indirect_buf.release(); 378370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 379370121346777e13437c275fbe7a975d899cc325cShawn Willden} 3805ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 381370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeElementsData(const uint8_t** buf_ptr, const uint8_t* end) { 3828d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_count; 3838d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_size; 384370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, &elements_count) || 385172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &elements_size)) { 386f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 38758e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden set_invalid(MALFORMED_DATA); 3885ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 3895ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 3905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 391834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // Note that the following validation of elements_count is weak, but it prevents allocation of 392834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // elems_ arrays which are clearly too large to be reasonable. 39362de26672193373972f2ce968b51cf8335f118f9Shawn Willden if (static_cast<ptrdiff_t>(elements_size) > end - *buf_ptr || 39462de26672193373972f2ce968b51cf8335f118f9Shawn Willden elements_count * sizeof(uint32_t) > elements_size) { 395f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 396834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden set_invalid(MALFORMED_DATA); 397834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden return false; 398834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden } 399834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden 400370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elements_count)) 4015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4038d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint8_t* indirect_end = indirect_data_ + indirect_data_size_; 404172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden const uint8_t* elements_end = *buf_ptr + elements_size; 4058d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elements_count; ++i) { 406172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!deserialize(elems_ + i, buf_ptr, elements_end, indirect_data_, indirect_end)) { 407f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4098d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 4108d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 41158e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden } 412370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = elements_count; 413370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 414370121346777e13437c275fbe7a975d899cc325cShawn Willden} 4155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 416370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::Deserialize(const uint8_t** buf_ptr, const uint8_t* end) { 417370121346777e13437c275fbe7a975d899cc325cShawn Willden FreeData(); 418370121346777e13437c275fbe7a975d899cc325cShawn Willden 419370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!DeserializeIndirectData(buf_ptr, end) || !DeserializeElementsData(buf_ptr, end)) 420370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 421370121346777e13437c275fbe7a975d899cc325cShawn Willden 422370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_size_ != ComputeIndirectDataSize(elems_, elems_size_)) { 423f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4248d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4278d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 4285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 430941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::Clear() { 4311834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(elems_, 0, elems_size_ * sizeof(keymaster_key_param_t)); 4321834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(indirect_data_, 0, indirect_data_size_); 433941d1c4ad4422a796d90010191c11aef0580295eShawn Willden elems_size_ = 0; 434941d1c4ad4422a796d90010191c11aef0580295eShawn Willden indirect_data_size_ = 0; 435941d1c4ad4422a796d90010191c11aef0580295eShawn Willden} 436941d1c4ad4422a796d90010191c11aef0580295eShawn Willden 437941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::FreeData() { 438941d1c4ad4422a796d90010191c11aef0580295eShawn Willden Clear(); 43958e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 44058e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] elems_; 44158e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] indirect_data_; 44258e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 4435ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_ = NULL; 4445ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_ = NULL; 4455ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_capacity_ = 0; 4465ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_capacity_ = 0; 447370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 4485ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4495ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4505ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* static */ 4515ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdensize_t AuthorizationSet::ComputeIndirectDataSize(const keymaster_key_param_t* elems, size_t count) { 4525ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t size = 0; 4535ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < count; ++i) { 4545ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems[i].tag)) { 4555ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size += elems[i].blob.data_length; 4565ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4575ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return size; 4595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4615ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::CopyIndirectData() { 462370121346777e13437c275fbe7a975d899cc325cShawn Willden memset_s(indirect_data_, 0, indirect_data_capacity_); 4635ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4645ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint8_t* indirect_data_pos = indirect_data_; 4655ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 466370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos <= indirect_data_ + indirect_data_capacity_); 4675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems_[i].tag)) { 4685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_pos, elems_[i].blob.data, elems_[i].blob.data_length); 4695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[i].blob.data = indirect_data_pos; 4705ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_pos += elems_[i].blob.data_length; 4715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4725ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 473370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos == indirect_data_ + indirect_data_capacity_); 474370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_size_ = indirect_data_pos - indirect_data_; 4755ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4765ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4771fa5d591fe6807665092753a5628d8d470888da4Shawn Willdensize_t AuthorizationSet::GetTagCount(keymaster_tag_t tag) const { 4781fa5d591fe6807665092753a5628d8d470888da4Shawn Willden size_t count = 0; 4791fa5d591fe6807665092753a5628d8d470888da4Shawn Willden for (int pos = -1; (pos = find(tag, pos)) != -1;) 4801fa5d591fe6807665092753a5628d8d470888da4Shawn Willden ++count; 4811fa5d591fe6807665092753a5628d8d470888da4Shawn Willden return count; 4821fa5d591fe6807665092753a5628d8d470888da4Shawn Willden} 4831fa5d591fe6807665092753a5628d8d470888da4Shawn Willden 4845ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnum(keymaster_tag_t tag, uint32_t* val) const { 4855ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 4865ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 4875ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4885ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 489ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 4905ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 4915ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4935ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnumRep(keymaster_tag_t tag, size_t instance, 4945ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 4955ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 4965ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 4975ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 4985ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 4995ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 504ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 5055ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5065ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5085ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueInt(keymaster_tag_t tag, uint32_t* val) const { 5095ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 513ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5175ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueIntRep(keymaster_tag_t tag, size_t instance, 5185ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 5195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 5205ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 5215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 5225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 5235ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5245ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5265ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 528ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueLong(keymaster_tag_t tag, uint64_t* val) const { 5335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 537ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].long_integer; 5385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 541eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willdenbool AuthorizationSet::GetTagValueLongRep(keymaster_tag_t tag, size_t instance, 542eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden uint64_t* val) const { 543eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden size_t count = 0; 544eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden int pos = -1; 545eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden while (count <= instance) { 546eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden pos = find(tag, pos); 547eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden if (pos == -1) { 548eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return false; 549eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 550eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden ++count; 551eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 552eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden *val = elems_[pos].long_integer; 553eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return true; 554eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden} 555eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden 5565ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueDate(keymaster_tag_t tag, uint64_t* val) const { 5575ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 561ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].date_time; 5625ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5635ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5645ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5655ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueBlob(keymaster_tag_t tag, keymaster_blob_t* val) const { 5665ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 570ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].blob; 5715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5725ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5735ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 574dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willdenbool AuthorizationSet::GetTagValueBool(keymaster_tag_t tag) const { 575dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden int pos = find(tag); 576dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden if (pos == -1) { 577dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return false; 578dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden } 579dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden assert(elems_[pos].boolean); 580dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return elems_[pos].boolean; 581dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden} 582dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden 5835ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} // namespace keymaster 584