blob: 46d89b02220166ce58287306a3c4ce7574a7b8df [file] [log] [blame]
Paul Bakker96743fc2011-02-12 14:30:57 +00001/**
2 * \file pem.h
3 *
4 * \brief Privacy Enhanced Mail (PEM) decoding
5 *
Paul Bakker00b28602013-06-24 13:02:41 +02006 * Copyright (C) 2006-2013, Brainspark B.V.
Paul Bakker96743fc2011-02-12 14:30:57 +00007 *
8 * This file is part of PolarSSL (http://www.polarssl.org)
9 * Lead Maintainer: Paul Bakker <polarssl_maintainer at polarssl.org>
10 *
11 * All rights reserved.
12 *
13 * This program is free software; you can redistribute it and/or modify
14 * it under the terms of the GNU General Public License as published by
15 * the Free Software Foundation; either version 2 of the License, or
16 * (at your option) any later version.
17 *
18 * This program is distributed in the hope that it will be useful,
19 * but WITHOUT ANY WARRANTY; without even the implied warranty of
20 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
21 * GNU General Public License for more details.
22 *
23 * You should have received a copy of the GNU General Public License along
24 * with this program; if not, write to the Free Software Foundation, Inc.,
25 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
26 */
27#ifndef POLARSSL_PEM_H
28#define POLARSSL_PEM_H
29
Paul Bakker23986e52011-04-24 08:57:21 +000030#include <string.h>
31
Paul Bakker96743fc2011-02-12 14:30:57 +000032/**
33 * \name PEM Error codes
34 * These error codes are returned in case of errors reading the
35 * PEM data.
36 * \{
37 */
Paul Bakker00b28602013-06-24 13:02:41 +020038#define POLARSSL_ERR_PEM_NO_HEADER_FOOTER_PRESENT -0x1080 /**< No PEM header or footer found. */
Paul Bakker9d781402011-05-09 16:17:09 +000039#define POLARSSL_ERR_PEM_INVALID_DATA -0x1100 /**< PEM string is not as expected. */
40#define POLARSSL_ERR_PEM_MALLOC_FAILED -0x1180 /**< Failed to allocate memory. */
41#define POLARSSL_ERR_PEM_INVALID_ENC_IV -0x1200 /**< RSA IV is not in hex-format. */
42#define POLARSSL_ERR_PEM_UNKNOWN_ENC_ALG -0x1280 /**< Unsupported key encryption algorithm. */
43#define POLARSSL_ERR_PEM_PASSWORD_REQUIRED -0x1300 /**< Private key password can't be empty. */
44#define POLARSSL_ERR_PEM_PASSWORD_MISMATCH -0x1380 /**< Given private key password does not allow for correct decryption. */
45#define POLARSSL_ERR_PEM_FEATURE_UNAVAILABLE -0x1400 /**< Unavailable feature, e.g. hashing/encryption combination. */
Paul Bakker00b28602013-06-24 13:02:41 +020046#define POLARSSL_ERR_PEM_BAD_INPUT_DATA -0x1480 /**< Bad input parameters to function. */
Paul Bakker96743fc2011-02-12 14:30:57 +000047/* \} name */
48
Paul Bakker407a0da2013-06-27 14:29:21 +020049#ifdef __cplusplus
50extern "C" {
51#endif
52
Paul Bakker96743fc2011-02-12 14:30:57 +000053/**
54 * \brief PEM context structure
55 */
56typedef struct
57{
58 unsigned char *buf; /*!< buffer for decoded data */
Paul Bakker23986e52011-04-24 08:57:21 +000059 size_t buflen; /*!< length of the buffer */
Paul Bakker96743fc2011-02-12 14:30:57 +000060 unsigned char *info; /*!< buffer for extra header information */
61}
62pem_context;
63
Paul Bakker96743fc2011-02-12 14:30:57 +000064/**
65 * \brief PEM context setup
66 *
67 * \param ctx context to be initialized
68 */
69void pem_init( pem_context *ctx );
70
71/**
72 * \brief Read a buffer for PEM information and store the resulting
73 * data into the specified context buffers.
74 *
75 * \param ctx context to use
76 * \param header header string to seek and expect
77 * \param footer footer string to seek and expect
78 * \param data source data to look in
79 * \param pwd password for decryption (can be NULL)
80 * \param pwdlen length of password
Paul Bakker00b28602013-06-24 13:02:41 +020081 * \param use_len destination for total length used (set after header is
82 * correctly read, so unless you get
83 * POLARSSL_ERR_PEM_BAD_INPUT_DATA or
84 * POLARSSL_ERR_PEM_NO_HEADER_FOOTER_PRESENT, use_len is
85 * the length to skip)
Paul Bakker96743fc2011-02-12 14:30:57 +000086 *
Manuel Pégourié-Gonnard7d4e5b72013-07-09 16:35:23 +020087 * \note Attempts to check password correctness by verifying if
88 * the decrypted text starts with an ASN.1 sequence of
89 * appropriate length
Manuel Pégourié-Gonnardf8648d52013-07-03 21:01:35 +020090 *
Paul Bakker77e23fb2013-09-15 20:03:26 +020091 * \return 0 on success, or a specific PEM error code
Paul Bakker96743fc2011-02-12 14:30:57 +000092 */
Paul Bakkerb6c5d2e2013-06-25 16:25:17 +020093int pem_read_buffer( pem_context *ctx, const char *header, const char *footer,
Paul Bakker96743fc2011-02-12 14:30:57 +000094 const unsigned char *data,
95 const unsigned char *pwd,
Paul Bakker23986e52011-04-24 08:57:21 +000096 size_t pwdlen, size_t *use_len );
Paul Bakker96743fc2011-02-12 14:30:57 +000097
98/**
Paul Bakker77e23fb2013-09-15 20:03:26 +020099 * \brief Write a buffer of PEM information from a DER encoded
100 * buffer.
101 *
102 * \param header header string to write
103 * \param footer footer string to write
104 * \param der_data DER data to write
105 * \param der_len length of the DER data
106 * \param buf buffer to write to
107 * \param buf_len length of output buffer
108 * \param olen total length written / required (if buf_len is not enough)
109 *
110 * \return 0 on success, or a specific PEM or BASE64 error code. On
111 * POLARSSL_ERR_BASE64_BUFFER_TOO_SMALL olen is the required
112 * size.
113 */
114int pem_write_buffer( const char *header, const char *footer,
115 const unsigned char *der_data, size_t der_len,
116 unsigned char *buf, size_t buf_len, size_t *olen );
117
118/**
Paul Bakker96743fc2011-02-12 14:30:57 +0000119 * \brief PEM context memory freeing
120 *
121 * \param ctx context to be freed
122 */
123void pem_free( pem_context *ctx );
124
125#ifdef __cplusplus
126}
127#endif
128
129#endif /* pem.h */