174664626SKris Kennaway /* apps/dsa.c */ 274664626SKris Kennaway /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) 374664626SKris Kennaway * All rights reserved. 474664626SKris Kennaway * 574664626SKris Kennaway * This package is an SSL implementation written 674664626SKris Kennaway * by Eric Young (eay@cryptsoft.com). 774664626SKris Kennaway * The implementation was written so as to conform with Netscapes SSL. 874664626SKris Kennaway * 974664626SKris Kennaway * This library is free for commercial and non-commercial use as long as 1074664626SKris Kennaway * the following conditions are aheared to. The following conditions 1174664626SKris Kennaway * apply to all code found in this distribution, be it the RC4, RSA, 1274664626SKris Kennaway * lhash, DES, etc., code; not just the SSL code. The SSL documentation 1374664626SKris Kennaway * included with this distribution is covered by the same copyright terms 1474664626SKris Kennaway * except that the holder is Tim Hudson (tjh@cryptsoft.com). 1574664626SKris Kennaway * 1674664626SKris Kennaway * Copyright remains Eric Young's, and as such any Copyright notices in 1774664626SKris Kennaway * the code are not to be removed. 1874664626SKris Kennaway * If this package is used in a product, Eric Young should be given attribution 1974664626SKris Kennaway * as the author of the parts of the library used. 2074664626SKris Kennaway * This can be in the form of a textual message at program startup or 2174664626SKris Kennaway * in documentation (online or textual) provided with the package. 2274664626SKris Kennaway * 2374664626SKris Kennaway * Redistribution and use in source and binary forms, with or without 2474664626SKris Kennaway * modification, are permitted provided that the following conditions 2574664626SKris Kennaway * are met: 2674664626SKris Kennaway * 1. Redistributions of source code must retain the copyright 2774664626SKris Kennaway * notice, this list of conditions and the following disclaimer. 2874664626SKris Kennaway * 2. Redistributions in binary form must reproduce the above copyright 2974664626SKris Kennaway * notice, this list of conditions and the following disclaimer in the 3074664626SKris Kennaway * documentation and/or other materials provided with the distribution. 3174664626SKris Kennaway * 3. All advertising materials mentioning features or use of this software 3274664626SKris Kennaway * must display the following acknowledgement: 3374664626SKris Kennaway * "This product includes cryptographic software written by 3474664626SKris Kennaway * Eric Young (eay@cryptsoft.com)" 3574664626SKris Kennaway * The word 'cryptographic' can be left out if the rouines from the library 3674664626SKris Kennaway * being used are not cryptographic related :-). 3774664626SKris Kennaway * 4. If you include any Windows specific code (or a derivative thereof) from 3874664626SKris Kennaway * the apps directory (application code) you must include an acknowledgement: 3974664626SKris Kennaway * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)" 4074664626SKris Kennaway * 4174664626SKris Kennaway * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND 4274664626SKris Kennaway * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 4374664626SKris Kennaway * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 4474664626SKris Kennaway * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE 4574664626SKris Kennaway * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 4674664626SKris Kennaway * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 4774664626SKris Kennaway * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 4874664626SKris Kennaway * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 4974664626SKris Kennaway * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 5074664626SKris Kennaway * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 5174664626SKris Kennaway * SUCH DAMAGE. 5274664626SKris Kennaway * 5374664626SKris Kennaway * The licence and distribution terms for any publically available version or 5474664626SKris Kennaway * derivative of this code cannot be changed. i.e. this code cannot simply be 5574664626SKris Kennaway * copied and put under another distribution licence 5674664626SKris Kennaway * [including the GNU Public Licence.] 5774664626SKris Kennaway */ 5874664626SKris Kennaway 593b4e3dcbSSimon L. B. Nielsen #include <openssl/opensslconf.h> /* for OPENSSL_NO_DSA */ 605c87c606SMark Murray #ifndef OPENSSL_NO_DSA 6174664626SKris Kennaway #include <stdio.h> 6274664626SKris Kennaway #include <stdlib.h> 6374664626SKris Kennaway #include <string.h> 6474664626SKris Kennaway #include <time.h> 6574664626SKris Kennaway #include "apps.h" 6674664626SKris Kennaway #include <openssl/bio.h> 6774664626SKris Kennaway #include <openssl/err.h> 6874664626SKris Kennaway #include <openssl/dsa.h> 6974664626SKris Kennaway #include <openssl/evp.h> 7074664626SKris Kennaway #include <openssl/x509.h> 7174664626SKris Kennaway #include <openssl/pem.h> 723b4e3dcbSSimon L. B. Nielsen #include <openssl/bn.h> 7374664626SKris Kennaway 7474664626SKris Kennaway #undef PROG 7574664626SKris Kennaway #define PROG dsa_main 7674664626SKris Kennaway 7774664626SKris Kennaway /* -inform arg - input format - default PEM (one of DER, NET or PEM) 7874664626SKris Kennaway * -outform arg - output format - default PEM 7974664626SKris Kennaway * -in arg - input file - default stdin 8074664626SKris Kennaway * -out arg - output file - default stdout 8174664626SKris Kennaway * -des - encrypt output if PEM format with DES in cbc mode 8274664626SKris Kennaway * -des3 - encrypt output if PEM format 8374664626SKris Kennaway * -idea - encrypt output if PEM format 845c87c606SMark Murray * -aes128 - encrypt output if PEM format 855c87c606SMark Murray * -aes192 - encrypt output if PEM format 865c87c606SMark Murray * -aes256 - encrypt output if PEM format 87ed5d4f9aSSimon L. B. Nielsen * -camellia128 - encrypt output if PEM format 88ed5d4f9aSSimon L. B. Nielsen * -camellia192 - encrypt output if PEM format 89ed5d4f9aSSimon L. B. Nielsen * -camellia256 - encrypt output if PEM format 90db522d3aSSimon L. B. Nielsen * -seed - encrypt output if PEM format 9174664626SKris Kennaway * -text - print a text version 9274664626SKris Kennaway * -modulus - print the DSA public key 9374664626SKris Kennaway */ 9474664626SKris Kennaway 95f579bf8eSKris Kennaway int MAIN(int, char **); 96f579bf8eSKris Kennaway 9774664626SKris Kennaway int MAIN(int argc, char **argv) 9874664626SKris Kennaway { 995c87c606SMark Murray ENGINE *e = NULL; 10074664626SKris Kennaway int ret=1; 10174664626SKris Kennaway DSA *dsa=NULL; 10274664626SKris Kennaway int i,badops=0; 10374664626SKris Kennaway const EVP_CIPHER *enc=NULL; 10474664626SKris Kennaway BIO *in=NULL,*out=NULL; 10574664626SKris Kennaway int informat,outformat,text=0,noout=0; 106f579bf8eSKris Kennaway int pubin = 0, pubout = 0; 107fceca8a3SJacques Vidrine char *infile,*outfile,*prog; 108fceca8a3SJacques Vidrine #ifndef OPENSSL_NO_ENGINE 109fceca8a3SJacques Vidrine char *engine; 110fceca8a3SJacques Vidrine #endif 111f579bf8eSKris Kennaway char *passargin = NULL, *passargout = NULL; 112f579bf8eSKris Kennaway char *passin = NULL, *passout = NULL; 11374664626SKris Kennaway int modulus=0; 11474664626SKris Kennaway 11574664626SKris Kennaway apps_startup(); 11674664626SKris Kennaway 11774664626SKris Kennaway if (bio_err == NULL) 11874664626SKris Kennaway if ((bio_err=BIO_new(BIO_s_file())) != NULL) 11974664626SKris Kennaway BIO_set_fp(bio_err,stderr,BIO_NOCLOSE|BIO_FP_TEXT); 12074664626SKris Kennaway 1215c87c606SMark Murray if (!load_config(bio_err, NULL)) 1225c87c606SMark Murray goto end; 1235c87c606SMark Murray 124fceca8a3SJacques Vidrine #ifndef OPENSSL_NO_ENGINE 1255c87c606SMark Murray engine=NULL; 126fceca8a3SJacques Vidrine #endif 12774664626SKris Kennaway infile=NULL; 12874664626SKris Kennaway outfile=NULL; 12974664626SKris Kennaway informat=FORMAT_PEM; 13074664626SKris Kennaway outformat=FORMAT_PEM; 13174664626SKris Kennaway 13274664626SKris Kennaway prog=argv[0]; 13374664626SKris Kennaway argc--; 13474664626SKris Kennaway argv++; 13574664626SKris Kennaway while (argc >= 1) 13674664626SKris Kennaway { 13774664626SKris Kennaway if (strcmp(*argv,"-inform") == 0) 13874664626SKris Kennaway { 13974664626SKris Kennaway if (--argc < 1) goto bad; 14074664626SKris Kennaway informat=str2fmt(*(++argv)); 14174664626SKris Kennaway } 14274664626SKris Kennaway else if (strcmp(*argv,"-outform") == 0) 14374664626SKris Kennaway { 14474664626SKris Kennaway if (--argc < 1) goto bad; 14574664626SKris Kennaway outformat=str2fmt(*(++argv)); 14674664626SKris Kennaway } 14774664626SKris Kennaway else if (strcmp(*argv,"-in") == 0) 14874664626SKris Kennaway { 14974664626SKris Kennaway if (--argc < 1) goto bad; 15074664626SKris Kennaway infile= *(++argv); 15174664626SKris Kennaway } 15274664626SKris Kennaway else if (strcmp(*argv,"-out") == 0) 15374664626SKris Kennaway { 15474664626SKris Kennaway if (--argc < 1) goto bad; 15574664626SKris Kennaway outfile= *(++argv); 15674664626SKris Kennaway } 157f579bf8eSKris Kennaway else if (strcmp(*argv,"-passin") == 0) 158f579bf8eSKris Kennaway { 159f579bf8eSKris Kennaway if (--argc < 1) goto bad; 160f579bf8eSKris Kennaway passargin= *(++argv); 161f579bf8eSKris Kennaway } 162f579bf8eSKris Kennaway else if (strcmp(*argv,"-passout") == 0) 163f579bf8eSKris Kennaway { 164f579bf8eSKris Kennaway if (--argc < 1) goto bad; 165f579bf8eSKris Kennaway passargout= *(++argv); 166f579bf8eSKris Kennaway } 167fceca8a3SJacques Vidrine #ifndef OPENSSL_NO_ENGINE 1685c87c606SMark Murray else if (strcmp(*argv,"-engine") == 0) 1695c87c606SMark Murray { 1705c87c606SMark Murray if (--argc < 1) goto bad; 1715c87c606SMark Murray engine= *(++argv); 1725c87c606SMark Murray } 173fceca8a3SJacques Vidrine #endif 17474664626SKris Kennaway else if (strcmp(*argv,"-noout") == 0) 17574664626SKris Kennaway noout=1; 17674664626SKris Kennaway else if (strcmp(*argv,"-text") == 0) 17774664626SKris Kennaway text=1; 17874664626SKris Kennaway else if (strcmp(*argv,"-modulus") == 0) 17974664626SKris Kennaway modulus=1; 180f579bf8eSKris Kennaway else if (strcmp(*argv,"-pubin") == 0) 181f579bf8eSKris Kennaway pubin=1; 182f579bf8eSKris Kennaway else if (strcmp(*argv,"-pubout") == 0) 183f579bf8eSKris Kennaway pubout=1; 18474664626SKris Kennaway else if ((enc=EVP_get_cipherbyname(&(argv[0][1]))) == NULL) 18574664626SKris Kennaway { 18674664626SKris Kennaway BIO_printf(bio_err,"unknown option %s\n",*argv); 18774664626SKris Kennaway badops=1; 18874664626SKris Kennaway break; 18974664626SKris Kennaway } 19074664626SKris Kennaway argc--; 19174664626SKris Kennaway argv++; 19274664626SKris Kennaway } 19374664626SKris Kennaway 19474664626SKris Kennaway if (badops) 19574664626SKris Kennaway { 19674664626SKris Kennaway bad: 19774664626SKris Kennaway BIO_printf(bio_err,"%s [options] <infile >outfile\n",prog); 19874664626SKris Kennaway BIO_printf(bio_err,"where options are\n"); 199f579bf8eSKris Kennaway BIO_printf(bio_err," -inform arg input format - DER or PEM\n"); 200f579bf8eSKris Kennaway BIO_printf(bio_err," -outform arg output format - DER or PEM\n"); 20174664626SKris Kennaway BIO_printf(bio_err," -in arg input file\n"); 202f579bf8eSKris Kennaway BIO_printf(bio_err," -passin arg input file pass phrase source\n"); 20374664626SKris Kennaway BIO_printf(bio_err," -out arg output file\n"); 204f579bf8eSKris Kennaway BIO_printf(bio_err," -passout arg output file pass phrase source\n"); 205fceca8a3SJacques Vidrine #ifndef OPENSSL_NO_ENGINE 2065c87c606SMark Murray BIO_printf(bio_err," -engine e use engine e, possibly a hardware device.\n"); 207fceca8a3SJacques Vidrine #endif 20874664626SKris Kennaway BIO_printf(bio_err," -des encrypt PEM output with cbc des\n"); 20974664626SKris Kennaway BIO_printf(bio_err," -des3 encrypt PEM output with ede cbc des using 168 bit key\n"); 2105c87c606SMark Murray #ifndef OPENSSL_NO_IDEA 21174664626SKris Kennaway BIO_printf(bio_err," -idea encrypt PEM output with cbc idea\n"); 21274664626SKris Kennaway #endif 2135c87c606SMark Murray #ifndef OPENSSL_NO_AES 2145c87c606SMark Murray BIO_printf(bio_err," -aes128, -aes192, -aes256\n"); 2155c87c606SMark Murray BIO_printf(bio_err," encrypt PEM output with cbc aes\n"); 2165c87c606SMark Murray #endif 217ed5d4f9aSSimon L. B. Nielsen #ifndef OPENSSL_NO_CAMELLIA 218ed5d4f9aSSimon L. B. Nielsen BIO_printf(bio_err," -camellia128, -camellia192, -camellia256\n"); 219ed5d4f9aSSimon L. B. Nielsen BIO_printf(bio_err," encrypt PEM output with cbc camellia\n"); 220ed5d4f9aSSimon L. B. Nielsen #endif 221db522d3aSSimon L. B. Nielsen #ifndef OPENSSL_NO_SEED 222db522d3aSSimon L. B. Nielsen BIO_printf(bio_err," -seed encrypt PEM output with cbc seed\n"); 223db522d3aSSimon L. B. Nielsen #endif 22474664626SKris Kennaway BIO_printf(bio_err," -text print the key in text\n"); 22574664626SKris Kennaway BIO_printf(bio_err," -noout don't print key out\n"); 22674664626SKris Kennaway BIO_printf(bio_err," -modulus print the DSA public value\n"); 22774664626SKris Kennaway goto end; 22874664626SKris Kennaway } 22974664626SKris Kennaway 23074664626SKris Kennaway ERR_load_crypto_strings(); 23174664626SKris Kennaway 232fceca8a3SJacques Vidrine #ifndef OPENSSL_NO_ENGINE 2335c87c606SMark Murray e = setup_engine(bio_err, engine, 0); 234fceca8a3SJacques Vidrine #endif 2355c87c606SMark Murray 236f579bf8eSKris Kennaway if(!app_passwd(bio_err, passargin, passargout, &passin, &passout)) { 237f579bf8eSKris Kennaway BIO_printf(bio_err, "Error getting passwords\n"); 238f579bf8eSKris Kennaway goto end; 239f579bf8eSKris Kennaway } 240f579bf8eSKris Kennaway 24174664626SKris Kennaway out=BIO_new(BIO_s_file()); 242db522d3aSSimon L. B. Nielsen if (out == NULL) 24374664626SKris Kennaway { 24474664626SKris Kennaway ERR_print_errors(bio_err); 24574664626SKris Kennaway goto end; 24674664626SKris Kennaway } 24774664626SKris Kennaway 248f579bf8eSKris Kennaway BIO_printf(bio_err,"read DSA key\n"); 24974664626SKris Kennaway { 250db522d3aSSimon L. B. Nielsen EVP_PKEY *pkey; 251db522d3aSSimon L. B. Nielsen if (pubin) 252db522d3aSSimon L. B. Nielsen pkey = load_pubkey(bio_err, infile, informat, 1, 253db522d3aSSimon L. B. Nielsen passin, e, "Public Key"); 254db522d3aSSimon L. B. Nielsen else 255db522d3aSSimon L. B. Nielsen pkey = load_key(bio_err, infile, informat, 1, 256db522d3aSSimon L. B. Nielsen passin, e, "Private Key"); 257db522d3aSSimon L. B. Nielsen 258db522d3aSSimon L. B. Nielsen if (pkey != NULL) 259db522d3aSSimon L. B. Nielsen dsa = pkey == NULL ? NULL : EVP_PKEY_get1_DSA(pkey); 260db522d3aSSimon L. B. Nielsen EVP_PKEY_free(pkey); 26174664626SKris Kennaway } 26274664626SKris Kennaway if (dsa == NULL) 26374664626SKris Kennaway { 264f579bf8eSKris Kennaway BIO_printf(bio_err,"unable to load Key\n"); 26574664626SKris Kennaway ERR_print_errors(bio_err); 26674664626SKris Kennaway goto end; 26774664626SKris Kennaway } 26874664626SKris Kennaway 26974664626SKris Kennaway if (outfile == NULL) 270ddd58736SKris Kennaway { 27174664626SKris Kennaway BIO_set_fp(out,stdout,BIO_NOCLOSE); 2725c87c606SMark Murray #ifdef OPENSSL_SYS_VMS 273ddd58736SKris Kennaway { 274ddd58736SKris Kennaway BIO *tmpbio = BIO_new(BIO_f_linebuffer()); 275ddd58736SKris Kennaway out = BIO_push(tmpbio, out); 276ddd58736SKris Kennaway } 277ddd58736SKris Kennaway #endif 278ddd58736SKris Kennaway } 27974664626SKris Kennaway else 28074664626SKris Kennaway { 28174664626SKris Kennaway if (BIO_write_filename(out,outfile) <= 0) 28274664626SKris Kennaway { 28374664626SKris Kennaway perror(outfile); 28474664626SKris Kennaway goto end; 28574664626SKris Kennaway } 28674664626SKris Kennaway } 28774664626SKris Kennaway 28874664626SKris Kennaway if (text) 28974664626SKris Kennaway if (!DSA_print(out,dsa,0)) 29074664626SKris Kennaway { 29174664626SKris Kennaway perror(outfile); 29274664626SKris Kennaway ERR_print_errors(bio_err); 29374664626SKris Kennaway goto end; 29474664626SKris Kennaway } 29574664626SKris Kennaway 29674664626SKris Kennaway if (modulus) 29774664626SKris Kennaway { 29874664626SKris Kennaway fprintf(stdout,"Public Key="); 29974664626SKris Kennaway BN_print(out,dsa->pub_key); 30074664626SKris Kennaway fprintf(stdout,"\n"); 30174664626SKris Kennaway } 30274664626SKris Kennaway 30374664626SKris Kennaway if (noout) goto end; 304f579bf8eSKris Kennaway BIO_printf(bio_err,"writing DSA key\n"); 305f579bf8eSKris Kennaway if (outformat == FORMAT_ASN1) { 306f579bf8eSKris Kennaway if(pubin || pubout) i=i2d_DSA_PUBKEY_bio(out,dsa); 307f579bf8eSKris Kennaway else i=i2d_DSAPrivateKey_bio(out,dsa); 308f579bf8eSKris Kennaway } else if (outformat == FORMAT_PEM) { 309f579bf8eSKris Kennaway if(pubin || pubout) 310f579bf8eSKris Kennaway i=PEM_write_bio_DSA_PUBKEY(out,dsa); 311f579bf8eSKris Kennaway else i=PEM_write_bio_DSAPrivateKey(out,dsa,enc, 312f579bf8eSKris Kennaway NULL,0,NULL, passout); 313f579bf8eSKris Kennaway } else { 31474664626SKris Kennaway BIO_printf(bio_err,"bad output format specified for outfile\n"); 31574664626SKris Kennaway goto end; 31674664626SKris Kennaway } 31774664626SKris Kennaway if (!i) 31874664626SKris Kennaway { 31974664626SKris Kennaway BIO_printf(bio_err,"unable to write private key\n"); 32074664626SKris Kennaway ERR_print_errors(bio_err); 32174664626SKris Kennaway } 32274664626SKris Kennaway else 32374664626SKris Kennaway ret=0; 32474664626SKris Kennaway end: 32574664626SKris Kennaway if(in != NULL) BIO_free(in); 326ddd58736SKris Kennaway if(out != NULL) BIO_free_all(out); 32774664626SKris Kennaway if(dsa != NULL) DSA_free(dsa); 328ddd58736SKris Kennaway if(passin) OPENSSL_free(passin); 329ddd58736SKris Kennaway if(passout) OPENSSL_free(passout); 3305c87c606SMark Murray apps_shutdown(); 3315c87c606SMark Murray OPENSSL_EXIT(ret); 33274664626SKris Kennaway } 33374664626SKris Kennaway #endif 334