/freebsd/contrib/wpa/src/common/ |
H A D | sae.c | 50 tmp->prime_len = crypto_ec_prime_len(tmp->ec); in sae_set_group() 63 tmp->prime_len = tmp->dh->prime_len; in sae_set_group() 64 if (tmp->prime_len > SAE_MAX_PRIME_LEN) { in sae_set_group() 70 tmp->prime_len); in sae_set_group() 162 prime, sae->tmp->prime_len, pwd_value, bits) < 0) in sae_test_pwd_seed_ecc() 165 buf_shift_right(pwd_value, sae->tmp->prime_len, 8 - bits % 8); in sae_test_pwd_seed_ecc() 167 pwd_value, sae->tmp->prime_len); in sae_test_pwd_seed_ecc() 169 cmp_prime = const_time_memcmp(pwd_value, prime, sae->tmp->prime_len); in sae_test_pwd_seed_ecc() 177 x_cand = crypto_bignum_init_set(pwd_value, sae->tmp->prime_len); in sae_test_pwd_seed_ecc() 200 size_t bits = sae->tmp->prime_len * 8; in sae_test_pwd_seed_ffc() [all …]
|
H A D | dragonfly.c | 120 size_t prime_len; in dragonfly_is_quadratic_residue_blind() local 124 prime_len = crypto_ec_prime_len(ec); in dragonfly_is_quadratic_residue_blind() 159 const_time_select_bin(mask, qnr, qr, prime_len, qr_or_qnr_bin); in dragonfly_is_quadratic_residue_blind() 160 qr_or_qnr = crypto_bignum_init_set(qr_or_qnr_bin, prime_len); in dragonfly_is_quadratic_residue_blind() 229 size_t prime_len; in dragonfly_sqrt() local 234 prime_len = crypto_ec_prime_len(ec); in dragonfly_sqrt() 239 prime_len) < 0 || in dragonfly_sqrt() 240 (prime_bin[prime_len - 1] & 0x03) != 3 || in dragonfly_sqrt()
|
H A D | dpp_pkex.c | 86 attr_len += 4 + 2 * curve->prime_len; in dpp_pkex_build_exchange_req() 133 wpabuf_put_le16(msg, 2 * curve->prime_len); in dpp_pkex_build_exchange_req() 144 Mx = wpabuf_put(msg, curve->prime_len); in dpp_pkex_build_exchange_req() 145 My = wpabuf_put(msg, curve->prime_len); in dpp_pkex_build_exchange_req() 149 pkex->enc_key = wpabuf_alloc_copy(Mx, 2 * curve->prime_len); in dpp_pkex_build_exchange_req() 151 os_memcpy(pkex->Mx, Mx, curve->prime_len); in dpp_pkex_build_exchange_req() 233 attr_len += 4 + 2 * curve->prime_len; in dpp_pkex_build_exchange_resp() 285 wpabuf_put_le16(msg, 2 * curve->prime_len); in dpp_pkex_build_exchange_resp() 296 wpabuf_put_data(msg, Nx, curve->prime_len); in dpp_pkex_build_exchange_resp() 297 wpabuf_put_data(msg, Ny, curve->prime_len); in dpp_pkex_build_exchange_resp() [all …]
|
H A D | sae_pk.c | 556 sig_data = wpabuf_alloc(tmp->prime_len * 6 + m_len + pubkey_len + in sae_pk_hash_sig_data() 560 pos = wpabuf_put(sig_data, 2 * tmp->prime_len); in sae_pk_hash_sig_data() 563 pos, pos + tmp->prime_len) < 0) in sae_pk_hash_sig_data() 565 pos = wpabuf_put(sig_data, 2 * tmp->prime_len); in sae_pk_hash_sig_data() 568 pos, pos + tmp->prime_len) < 0) in sae_pk_hash_sig_data() 572 wpabuf_put(sig_data, tmp->prime_len), in sae_pk_hash_sig_data() 573 tmp->prime_len, tmp->prime_len) < 0 || in sae_pk_hash_sig_data() 576 wpabuf_put(sig_data, tmp->prime_len), in sae_pk_hash_sig_data() 577 tmp->prime_len, tmp->prime_len) < 0) in sae_pk_hash_sig_data()
|
H A D | common_module_tests.c | 460 size_t prime_len = sizeof(pwe_19_x); in sae_tests() local 468 bin + prime_len) < 0 || in sae_tests() 469 os_memcmp(pwe_19_x, bin, prime_len) != 0 || in sae_tests() 470 os_memcmp(pwe_19_y, bin + prime_len, in sae_tests() 471 prime_len) != 0) { in sae_tests() 484 size_t prime_len = sizeof(pwe_15); in sae_tests() local 492 prime_len) < 0 || in sae_tests() 493 os_memcmp(pwe_15, bin, prime_len) != 0) { in sae_tests()
|
H A D | sae.h | 53 int prime_len; member 147 size_t sae_ecc_prime_len_2_hash_len(size_t prime_len); 148 size_t sae_ffc_prime_len_2_hash_len(size_t prime_len);
|
H A D | dpp_crypto.c | 1455 return crypto_ec_key_set_pub(curve->ike_group, x, y, curve->prime_len); in dpp_pkex_get_role_elem() 1746 wpa_hexdump_key(MSG_DEBUG, "DPP: M.x", Mx, curve->prime_len); in dpp_reconfig_derive_ke_responder() 1754 Mx, curve->prime_len, prk) < 0) in dpp_reconfig_derive_ke_responder() 1839 wpa_hexdump_key(MSG_DEBUG, "DPP: M.x", Mx, curve->prime_len); in dpp_reconfig_derive_ke_initiator() 1847 Mx, curve->prime_len, prk) < 0) in dpp_reconfig_derive_ke_initiator() 2025 pub = wpabuf_zeropad(pub, pfs->curve->prime_len); in dpp_pfs_init() 2060 pfs->secret = wpabuf_zeropad(pfs->secret, pfs->curve->prime_len); in dpp_pfs_process() 2535 x = wpabuf_put(msg, curve->prime_len); in dpp_test_gen_invalid_key() 2536 y = wpabuf_put(msg, curve->prime_len); in dpp_test_gen_invalid_key() 2552 y[curve->prime_len - 1] ^= 0x01; in dpp_test_gen_invalid_key()
|
/freebsd/contrib/wpa/src/crypto/ |
H A D | crypto_internal-modexp.c | 16 int crypto_dh_init(u8 generator, const u8 *prime, size_t prime_len, u8 *privkey, in crypto_dh_init() argument 21 if (os_get_random(privkey, prime_len) < 0) in crypto_dh_init() 23 if (os_memcmp(privkey, prime, prime_len) > 0) { in crypto_dh_init() 28 pubkey_len = prime_len; in crypto_dh_init() 29 if (crypto_mod_exp(&generator, 1, privkey, prime_len, prime, prime_len, in crypto_dh_init() 32 if (pubkey_len < prime_len) { in crypto_dh_init() 33 pad = prime_len - pubkey_len; in crypto_dh_init() 42 int crypto_dh_derive_secret(u8 generator, const u8 *prime, size_t prime_len, in crypto_dh_derive_secret() argument 51 if (pubkey_len > prime_len || in crypto_dh_derive_secret() 52 (pubkey_len == prime_len && in crypto_dh_derive_secret() [all …]
|
H A D | dh_groups.c | 1202 *priv = wpabuf_alloc(dh->prime_len); in dh_init() 1206 pv_len = dh->prime_len; in dh_init() 1213 if (crypto_dh_init(*dh->generator, dh->prime, dh->prime_len, in dh_init() 1221 wpabuf_put(*priv, dh->prime_len); in dh_init() 1222 wpabuf_put(pv, dh->prime_len); in dh_init() 1247 shared_len = dh->prime_len; in dh_derive_shared() 1251 if (crypto_dh_derive_secret(*dh->generator, dh->prime, dh->prime_len, in dh_derive_shared()
|
H A D | crypto_nettle.c | 307 int crypto_dh_init(u8 generator, const u8 *prime, size_t prime_len, u8 *privkey, in crypto_dh_init() argument 312 if (os_get_random(privkey, prime_len) < 0) in crypto_dh_init() 314 if (os_memcmp(privkey, prime, prime_len) > 0) { in crypto_dh_init() 319 pubkey_len = prime_len; in crypto_dh_init() 320 if (crypto_mod_exp(&generator, 1, privkey, prime_len, prime, prime_len, in crypto_dh_init() 323 if (pubkey_len < prime_len) { in crypto_dh_init() 324 pad = prime_len - pubkey_len; in crypto_dh_init() 333 int crypto_dh_derive_secret(u8 generator, const u8 *prime, size_t prime_len, in crypto_dh_derive_secret() argument 342 if (pubkey_len > prime_len || in crypto_dh_derive_secret() 343 (pubkey_len == prime_len && in crypto_dh_derive_secret() [all …]
|
H A D | crypto_gnutls.c | 286 int crypto_dh_init(u8 generator, const u8 *prime, size_t prime_len, u8 *privkey, in crypto_dh_init() argument 291 if (os_get_random(privkey, prime_len) < 0) in crypto_dh_init() 293 if (os_memcmp(privkey, prime, prime_len) > 0) { in crypto_dh_init() 298 pubkey_len = prime_len; in crypto_dh_init() 299 if (crypto_mod_exp(&generator, 1, privkey, prime_len, prime, prime_len, in crypto_dh_init() 302 if (pubkey_len < prime_len) { in crypto_dh_init() 303 pad = prime_len - pubkey_len; in crypto_dh_init() 312 int crypto_dh_derive_secret(u8 generator, const u8 *prime, size_t prime_len, in crypto_dh_derive_secret() argument 321 if (pubkey_len > prime_len || in crypto_dh_derive_secret() 322 (pubkey_len == prime_len && in crypto_dh_derive_secret() [all …]
|
H A D | crypto_libtomcrypt.c | 700 int crypto_dh_init(u8 generator, const u8 *prime, size_t prime_len, u8 *privkey, in crypto_dh_init() argument 705 if (os_get_random(privkey, prime_len) < 0) in crypto_dh_init() 707 if (os_memcmp(privkey, prime, prime_len) > 0) { in crypto_dh_init() 712 pubkey_len = prime_len; in crypto_dh_init() 713 if (crypto_mod_exp(&generator, 1, privkey, prime_len, prime, prime_len, in crypto_dh_init() 716 if (pubkey_len < prime_len) { in crypto_dh_init() 717 pad = prime_len - pubkey_len; in crypto_dh_init() 726 int crypto_dh_derive_secret(u8 generator, const u8 *prime, size_t prime_len, in crypto_dh_derive_secret() argument 734 prime, prime_len, secret, len); in crypto_dh_derive_secret()
|
H A D | dh_groups.h | 17 size_t prime_len; member
|
H A D | crypto_openssl.c | 740 int crypto_dh_init(u8 generator, const u8 *prime, size_t prime_len, u8 *privkey, in crypto_dh_init() argument 745 if (os_get_random(privkey, prime_len) < 0) in crypto_dh_init() 747 if (os_memcmp(privkey, prime, prime_len) > 0) { in crypto_dh_init() 752 pubkey_len = prime_len; in crypto_dh_init() 753 if (crypto_mod_exp(&generator, 1, privkey, prime_len, prime, prime_len, in crypto_dh_init() 756 if (pubkey_len < prime_len) { in crypto_dh_init() 757 pad = prime_len - pubkey_len; in crypto_dh_init() 766 int crypto_dh_derive_secret(u8 generator, const u8 *prime, size_t prime_len, in crypto_dh_derive_secret() argument 776 p = BN_bin2bn(prime, prime_len, NULL); in crypto_dh_derive_secret() 801 prime, prime_len, secret, len); in crypto_dh_derive_secret() [all …]
|
/freebsd/crypto/openssl/crypto/dh/ |
H A D | dh_gen.c | 34 static int dh_builtin_genparams(DH *ret, int prime_len, int generator, 94 static int dh_gen_named_group(OSSL_LIB_CTX *libctx, DH *ret, int prime_len) in dh_gen_named_group() argument 98 int nid = ossl_dh_get_named_group_uid_from_size(prime_len); in dh_gen_named_group() 114 int DH_generate_parameters_ex(DH *ret, int prime_len, int generator, in DH_generate_parameters_ex() argument 120 return dh_gen_named_group(ret->libctx, ret, prime_len); in DH_generate_parameters_ex() 123 return ret->meth->generate_params(ret, prime_len, generator, cb); in DH_generate_parameters_ex() 124 return dh_builtin_genparams(ret, prime_len, generator, cb); in DH_generate_parameters_ex() 155 static int dh_builtin_genparams(DH *ret, int prime_len, int generator, in dh_builtin_genparams() argument 162 if (prime_len > OPENSSL_DH_MAX_MODULUS_BITS) { in dh_builtin_genparams() 167 if (prime_len < DH_MIN_MODULUS_BITS) { in dh_builtin_genparams() [all …]
|
H A D | dh_pmeth.c | 31 int prime_len; member 62 dctx->prime_len = 2048; in pkey_dh_init() 94 dctx->prime_len = sctx->prime_len; in pkey_dh_copy() 124 dctx->prime_len = p1; in pkey_dh_ctrl() 282 int prime_len = dctx->prime_len; in ffc_params_generate() local 292 if (prime_len >= 2048) in ffc_params_generate() 305 prime_len, subprime_len, &res, in ffc_params_generate() 313 prime_len, subprime_len, &res, in ffc_params_generate() 367 dctx->prime_len, dctx->generator, pcb); in pkey_dh_paramgen()
|
H A D | dh_depr.c | 25 DH *DH_generate_parameters(int prime_len, int generator, in DH_generate_parameters() argument 41 if (DH_generate_parameters_ex(ret, prime_len, generator, cb)) { in DH_generate_parameters()
|
H A D | dh_local.h | 58 int (*generate_params) (DH *dh, int prime_len, int generator,
|
/freebsd/contrib/wpa/src/eap_server/ |
H A D | eap_server_pwd.c | 240 size_t prime_len, order_len; in eap_pwd_build_commit_req() local 250 prime_len = crypto_ec_prime_len(data->grp->group); in eap_pwd_build_commit_req() 282 data->outbuf = wpabuf_alloc(2 * prime_len + order_len + in eap_pwd_build_commit_req() 294 element = wpabuf_put(data->outbuf, 2 * prime_len); in eap_pwd_build_commit_req() 301 element + prime_len) < 0) { in eap_pwd_build_commit_req() 320 size_t prime_len, order_len; in eap_pwd_build_confirm_req() local 330 prime_len = crypto_ec_prime_len(data->grp->group); in eap_pwd_build_confirm_req() 334 cruft = os_malloc(prime_len * 2); in eap_pwd_build_confirm_req() 355 if (crypto_bignum_to_bin(data->k, cruft, prime_len, prime_len) < 0) in eap_pwd_build_confirm_req() 358 eap_pwd_h_update(hash, cruft, prime_len); in eap_pwd_build_confirm_req() [all …]
|
/freebsd/contrib/wpa/src/eap_peer/ |
H A D | eap_pwd.c | 362 size_t prime_len, order_len; in eap_pwd_perform_commit_exchange() local 383 prime_len = crypto_ec_prime_len(data->grp->group); in eap_pwd_perform_commit_exchange() 396 if (payload_len != 2 * prime_len + order_len) { in eap_pwd_perform_commit_exchange() 400 (unsigned int) (2 * prime_len + order_len)); in eap_pwd_perform_commit_exchange() 432 exp_len = 1 + salt_len + 2 * prime_len + order_len; in eap_pwd_perform_commit_exchange() 469 exp_len = 1 + salt_len + 2 * prime_len + order_len; in eap_pwd_perform_commit_exchange() 504 exp_len = 1 + salt_len + 2 * prime_len + order_len; in eap_pwd_perform_commit_exchange() 540 if (payload_len != 2 * prime_len + order_len) { in eap_pwd_perform_commit_exchange() 544 (unsigned int) (2 * prime_len + order_len)); in eap_pwd_perform_commit_exchange() 618 ptr += prime_len * 2; in eap_pwd_perform_commit_exchange() [all …]
|
/freebsd/contrib/wpa/src/eap_common/ |
H A D | eap_pwd_common.c | 339 size_t prime_len, order_len; in compute_keys() local 341 prime_len = crypto_ec_prime_len(grp->group); in compute_keys() 344 cruft = os_malloc(prime_len); in compute_keys() 382 if (crypto_bignum_to_bin(k, cruft, prime_len, prime_len) < 0) { in compute_keys() 387 eap_pwd_h_update(hash, cruft, prime_len); in compute_keys() 427 size_t prime_len; in eap_pwd_get_element() local 430 prime_len = crypto_ec_prime_len(group->group); in eap_pwd_get_element() 433 if (!eap_pwd_element_coord_ok(prime, buf, prime_len) || in eap_pwd_get_element() 434 !eap_pwd_element_coord_ok(prime, buf + prime_len, prime_len)) { in eap_pwd_get_element()
|
H A D | eap_eke_common.c | 171 if (crypto_dh_init(gen, dh->prime, dh->prime_len, ret_priv, in eap_eke_dh_init() 175 ret_priv, dh->prime_len); in eap_eke_dh_init() 177 ret_pub, dh->prime_len); in eap_eke_dh_init() 391 os_memcpy(peer_pub, peer_dhcomp + AES_BLOCK_SIZE, dh->prime_len); in eap_eke_shared_secret() 392 if (aes_128_cbc_decrypt(key, peer_dhcomp, peer_pub, dh->prime_len) < 0) { in eap_eke_shared_secret() 397 peer_pub, dh->prime_len); in eap_eke_shared_secret() 400 len = dh->prime_len; in eap_eke_shared_secret() 401 if (crypto_dh_derive_secret(*dh->generator, dh->prime, dh->prime_len, in eap_eke_shared_secret() 402 NULL, 0, dhpriv, dh->prime_len, peer_pub, in eap_eke_shared_secret() 403 dh->prime_len, modexp, &len) < 0) in eap_eke_shared_secret() [all …]
|
/freebsd/contrib/wpa/src/ap/ |
H A D | ieee802_11_eht.c | 840 size_t prime_len; in sae_commit_skip_fixed_fields() local 867 prime_len = dh->prime_len; in sae_commit_skip_fixed_fields() 869 prime_len = crypto_ec_prime_len(ec); in sae_commit_skip_fixed_fields() 872 wpa_printf(MSG_DEBUG, "EHT: SAE scalar length is %zu", prime_len); in sae_commit_skip_fixed_fields() 875 pos += prime_len; in sae_commit_skip_fixed_fields() 878 pos += prime_len * 2; in sae_commit_skip_fixed_fields() 881 pos += prime_len; in sae_commit_skip_fixed_fields()
|
/freebsd/crypto/openssl/doc/man3/ |
H A D | DH_generate_parameters.pod | 19 int DH_generate_parameters_ex(DH *dh, int prime_len, int generator, BN_GENCB *cb); 32 DH *DH_generate_parameters(int prime_len, int generator, 49 B<prime_len> is the length in bits of the safe prime to be generated.
|
/freebsd/crypto/openssl/include/openssl/ |
H A D | dh.h | 216 OSSL_DEPRECATEDIN_3_0 int DH_generate_parameters_ex(DH *dh, int prime_len, 322 OSSL_DEPRECATEDIN_0_9_8 DH *DH_generate_parameters(int prime_len, int generator,
|