Files
OpenCellular/host/lib/include/util_misc.h
Bill Richardson 3855e2e948 futility: show sha1sums for private keys too
Because all of our private key structs carry around the openssl
struct rsa_st data blobs, we can use those blobs to extract the
corresponding public key and generate a digest of it.

This lets us match our public and private keys without having to
rely on the filenames. There's no crypto verification without
actually *using* them, of course, but it's handy for quick reference.

BUG=chromium:231574
BRANCH=none
TEST=make runtests

This also adds a test to ensure that all the public and private
keys generated from the same .pem file have the same sha1sums.

Change-Id: If83492437e3ef37f7c4ebca4675336b75f631901
Signed-off-by: Bill Richardson <wfrichar@chromium.org>
Reviewed-on: https://chromium-review.googlesource.com/246768
Reviewed-by: Randall Spangler <rspangler@chromium.org>
2015-03-10 23:45:26 +00:00

46 lines
1.6 KiB
C

/* Copyright (c) 2014 The Chromium OS Authors. All rights reserved.
* Use of this source code is governed by a BSD-style license that can be
* found in the LICENSE file.
*
* Host-side misc functions for verified boot.
*/
#ifndef VBOOT_REFERENCE_UTIL_MISC_H_
#define VBOOT_REFERENCE_UTIL_MISC_H_
#include "host_key.h"
#include "vboot_struct.h"
struct rsa_st;
/* Prints the sha1sum of a VbPublicKey to stdout. */
void PrintPubKeySha1Sum(VbPublicKey *key);
/* Prints the sha1sum of a VbPrivateKey to stdout. */
void PrintPrivKeySha1Sum(VbPrivateKey *key);
/*
* Our packed RSBPublicKey buffer (historically in files ending with ".keyb",
* but also the part of VbPublicKey and struct vb2_packed_key that is
* referenced by .key_offset) has this binary format:
*
* struct {
* uint32_t nwords; // size of RSA key in 32-bit words
* uint32_t N0inv; // -1 / N[0] mod 2^32
* uint32_t modulus[nwords]; // modulus as a little endian array
* uint32_t R2[nwords]; // R^2 as little endian array
* };
*
* This function allocates and extracts that binary structure directly
* from the RSA private key, rather than from a file.
*
* @param rsa_private_key RSA private key (duh)
* @param keyb_data Pointer to newly allocated binary blob
* @param keyb_size Size of newly allocated binary blob
*
* @return 0 on success, non-zero if unable to allocate enough memory.
*/
int vb_keyb_from_rsa(struct rsa_st *rsa_private_key,
uint8_t **keyb_data, uint32_t *keyb_size);
#endif /* VBOOT_REFERENCE_UTIL_MISC_H_ */