xref: /freebsd/crypto/openssl/apps/pkey.c (revision 41059135ce931c0f1014a999ffabc6bc470ce856)
1 /* apps/pkey.c */
2 /*
3  * Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL project
4  * 2006
5  */
6 /* ====================================================================
7  * Copyright (c) 2006 The OpenSSL Project.  All rights reserved.
8  *
9  * Redistribution and use in source and binary forms, with or without
10  * modification, are permitted provided that the following conditions
11  * are met:
12  *
13  * 1. Redistributions of source code must retain the above copyright
14  *    notice, this list of conditions and the following disclaimer.
15  *
16  * 2. Redistributions in binary form must reproduce the above copyright
17  *    notice, this list of conditions and the following disclaimer in
18  *    the documentation and/or other materials provided with the
19  *    distribution.
20  *
21  * 3. All advertising materials mentioning features or use of this
22  *    software must display the following acknowledgment:
23  *    "This product includes software developed by the OpenSSL Project
24  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
25  *
26  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
27  *    endorse or promote products derived from this software without
28  *    prior written permission. For written permission, please contact
29  *    licensing@OpenSSL.org.
30  *
31  * 5. Products derived from this software may not be called "OpenSSL"
32  *    nor may "OpenSSL" appear in their names without prior written
33  *    permission of the OpenSSL Project.
34  *
35  * 6. Redistributions of any form whatsoever must retain the following
36  *    acknowledgment:
37  *    "This product includes software developed by the OpenSSL Project
38  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
39  *
40  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
41  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
43  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
44  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
45  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
46  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
47  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
49  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
50  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
51  * OF THE POSSIBILITY OF SUCH DAMAGE.
52  * ====================================================================
53  *
54  * This product includes cryptographic software written by Eric Young
55  * (eay@cryptsoft.com).  This product includes software written by Tim
56  * Hudson (tjh@cryptsoft.com).
57  *
58  */
59 #include <stdio.h>
60 #include <string.h>
61 #include "apps.h"
62 #include <openssl/pem.h>
63 #include <openssl/err.h>
64 #include <openssl/evp.h>
65 
66 #define PROG pkey_main
67 
68 int MAIN(int, char **);
69 
70 int MAIN(int argc, char **argv)
71 {
72     ENGINE *e = NULL;
73     char **args, *infile = NULL, *outfile = NULL;
74     char *passargin = NULL, *passargout = NULL;
75     BIO *in = NULL, *out = NULL;
76     const EVP_CIPHER *cipher = NULL;
77     int informat, outformat;
78     int pubin = 0, pubout = 0, pubtext = 0, text = 0, noout = 0;
79     EVP_PKEY *pkey = NULL;
80     char *passin = NULL, *passout = NULL;
81     int badarg = 0;
82     char *engine = NULL;
83     int ret = 1;
84 
85     if (bio_err == NULL)
86         bio_err = BIO_new_fp(stderr, BIO_NOCLOSE);
87 
88     if (!load_config(bio_err, NULL))
89         goto end;
90 
91     informat = FORMAT_PEM;
92     outformat = FORMAT_PEM;
93 
94     ERR_load_crypto_strings();
95     OpenSSL_add_all_algorithms();
96     args = argv + 1;
97     while (!badarg && *args && *args[0] == '-') {
98         if (!strcmp(*args, "-inform")) {
99             if (args[1]) {
100                 args++;
101                 informat = str2fmt(*args);
102             } else
103                 badarg = 1;
104         } else if (!strcmp(*args, "-outform")) {
105             if (args[1]) {
106                 args++;
107                 outformat = str2fmt(*args);
108             } else
109                 badarg = 1;
110         } else if (!strcmp(*args, "-passin")) {
111             if (!args[1])
112                 goto bad;
113             passargin = *(++args);
114         } else if (!strcmp(*args, "-passout")) {
115             if (!args[1])
116                 goto bad;
117             passargout = *(++args);
118         }
119 #ifndef OPENSSL_NO_ENGINE
120         else if (strcmp(*args, "-engine") == 0) {
121             if (!args[1])
122                 goto bad;
123             engine = *(++args);
124         }
125 #endif
126         else if (!strcmp(*args, "-in")) {
127             if (args[1]) {
128                 args++;
129                 infile = *args;
130             } else
131                 badarg = 1;
132         } else if (!strcmp(*args, "-out")) {
133             if (args[1]) {
134                 args++;
135                 outfile = *args;
136             } else
137                 badarg = 1;
138         } else if (strcmp(*args, "-pubin") == 0) {
139             pubin = 1;
140             pubout = 1;
141             pubtext = 1;
142         } else if (strcmp(*args, "-pubout") == 0)
143             pubout = 1;
144         else if (strcmp(*args, "-text_pub") == 0) {
145             pubtext = 1;
146             text = 1;
147         } else if (strcmp(*args, "-text") == 0)
148             text = 1;
149         else if (strcmp(*args, "-noout") == 0)
150             noout = 1;
151         else {
152             cipher = EVP_get_cipherbyname(*args + 1);
153             if (!cipher) {
154                 BIO_printf(bio_err, "Unknown cipher %s\n", *args + 1);
155                 badarg = 1;
156             }
157         }
158         args++;
159     }
160 
161     if (badarg) {
162  bad:
163         BIO_printf(bio_err, "Usage pkey [options]\n");
164         BIO_printf(bio_err, "where options are\n");
165         BIO_printf(bio_err, "-in file        input file\n");
166         BIO_printf(bio_err, "-inform X       input format (DER or PEM)\n");
167         BIO_printf(bio_err,
168                    "-passin arg     input file pass phrase source\n");
169         BIO_printf(bio_err, "-outform X      output format (DER or PEM)\n");
170         BIO_printf(bio_err, "-out file       output file\n");
171         BIO_printf(bio_err,
172                    "-passout arg    output file pass phrase source\n");
173 #ifndef OPENSSL_NO_ENGINE
174         BIO_printf(bio_err,
175                    "-engine e       use engine e, possibly a hardware device.\n");
176 #endif
177         return 1;
178     }
179     e = setup_engine(bio_err, engine, 0);
180 
181     if (!app_passwd(bio_err, passargin, passargout, &passin, &passout)) {
182         BIO_printf(bio_err, "Error getting passwords\n");
183         goto end;
184     }
185 
186     if (outfile) {
187         if (!(out = BIO_new_file(outfile, "wb"))) {
188             BIO_printf(bio_err, "Can't open output file %s\n", outfile);
189             goto end;
190         }
191     } else {
192         out = BIO_new_fp(stdout, BIO_NOCLOSE);
193 #ifdef OPENSSL_SYS_VMS
194         {
195             BIO *tmpbio = BIO_new(BIO_f_linebuffer());
196             out = BIO_push(tmpbio, out);
197         }
198 #endif
199     }
200 
201     if (pubin)
202         pkey = load_pubkey(bio_err, infile, informat, 1,
203                            passin, e, "Public Key");
204     else
205         pkey = load_key(bio_err, infile, informat, 1, passin, e, "key");
206     if (!pkey)
207         goto end;
208 
209     if (!noout) {
210         if (outformat == FORMAT_PEM) {
211             if (pubout)
212                 PEM_write_bio_PUBKEY(out, pkey);
213             else
214                 PEM_write_bio_PrivateKey(out, pkey, cipher,
215                                          NULL, 0, NULL, passout);
216         } else if (outformat == FORMAT_ASN1) {
217             if (pubout)
218                 i2d_PUBKEY_bio(out, pkey);
219             else
220                 i2d_PrivateKey_bio(out, pkey);
221         } else {
222             BIO_printf(bio_err, "Bad format specified for key\n");
223             goto end;
224         }
225 
226     }
227 
228     if (text) {
229         if (pubtext)
230             EVP_PKEY_print_public(out, pkey, 0, NULL);
231         else
232             EVP_PKEY_print_private(out, pkey, 0, NULL);
233     }
234 
235     ret = 0;
236 
237  end:
238     EVP_PKEY_free(pkey);
239     release_engine(e);
240     BIO_free_all(out);
241     BIO_free(in);
242     if (passin)
243         OPENSSL_free(passin);
244     if (passout)
245         OPENSSL_free(passout);
246 
247     return ret;
248 }
249