blob: ae123b6200cfceca83c7f49102f034912dc14937 [file] [log] [blame]
Paul Bakker15b9b3a2013-09-23 12:05:44 +02001/*
2 * Key generation application
3 *
Manuel Pégourié-Gonnard6fb81872015-07-27 11:11:48 +02004 * Copyright (C) 2006-2015, ARM Limited, All Rights Reserved
Bence Szépkútif744bd72020-06-05 13:02:18 +02005 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
6 *
7 * This file is provided under the Apache License 2.0, or the
8 * GNU General Public License v2.0 or later.
9 *
10 * **********
11 * Apache License 2.0:
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +020012 *
13 * Licensed under the Apache License, Version 2.0 (the "License"); you may
14 * not use this file except in compliance with the License.
15 * You may obtain a copy of the License at
16 *
17 * http://www.apache.org/licenses/LICENSE-2.0
18 *
19 * Unless required by applicable law or agreed to in writing, software
20 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
21 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
22 * See the License for the specific language governing permissions and
23 * limitations under the License.
Paul Bakker15b9b3a2013-09-23 12:05:44 +020024 *
Bence Szépkútif744bd72020-06-05 13:02:18 +020025 * **********
26 *
27 * **********
28 * GNU General Public License v2.0 or later:
29 *
30 * This program is free software; you can redistribute it and/or modify
31 * it under the terms of the GNU General Public License as published by
32 * the Free Software Foundation; either version 2 of the License, or
33 * (at your option) any later version.
34 *
35 * This program is distributed in the hope that it will be useful,
36 * but WITHOUT ANY WARRANTY; without even the implied warranty of
37 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
38 * GNU General Public License for more details.
39 *
40 * You should have received a copy of the GNU General Public License along
41 * with this program; if not, write to the Free Software Foundation, Inc.,
42 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
43 *
44 * **********
45 *
Manuel Pégourié-Gonnardfe446432015-03-06 13:17:10 +000046 * This file is part of mbed TLS (https://tls.mbed.org)
Paul Bakker15b9b3a2013-09-23 12:05:44 +020047 */
48
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020049#if !defined(MBEDTLS_CONFIG_FILE)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000050#include "mbedtls/config.h"
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020051#else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020052#include MBEDTLS_CONFIG_FILE
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020053#endif
Paul Bakker15b9b3a2013-09-23 12:05:44 +020054
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020055#if defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000056#include "mbedtls/platform.h"
Rich Evansf90016a2015-01-19 14:26:37 +000057#else
Rich Evans18b78c72015-02-11 14:06:19 +000058#include <stdio.h>
Andres Amaya Garcia208c2172018-04-29 19:51:56 +010059#include <stdlib.h>
60#define mbedtls_printf printf
Manuel Pégourié-Gonnard3ef6a6d2018-12-10 14:31:45 +010061#define mbedtls_exit exit
Andres Amaya Garcia7d429652018-04-30 22:42:33 +010062#define MBEDTLS_EXIT_SUCCESS EXIT_SUCCESS
Andres Amaya Garcia208c2172018-04-29 19:51:56 +010063#define MBEDTLS_EXIT_FAILURE EXIT_FAILURE
64#endif /* MBEDTLS_PLATFORM_C */
Rich Evansf90016a2015-01-19 14:26:37 +000065
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020066#if defined(MBEDTLS_PK_WRITE_C) && defined(MBEDTLS_FS_IO) && \
67 defined(MBEDTLS_ENTROPY_C) && defined(MBEDTLS_CTR_DRBG_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000068#include "mbedtls/error.h"
69#include "mbedtls/pk.h"
70#include "mbedtls/ecdsa.h"
71#include "mbedtls/rsa.h"
72#include "mbedtls/error.h"
73#include "mbedtls/entropy.h"
74#include "mbedtls/ctr_drbg.h"
Paul Bakker15b9b3a2013-09-23 12:05:44 +020075
Rich Evans18b78c72015-02-11 14:06:19 +000076#include <stdio.h>
77#include <stdlib.h>
78#include <string.h>
Paul Bakker15b9b3a2013-09-23 12:05:44 +020079
Rich Evans18b78c72015-02-11 14:06:19 +000080#if !defined(_WIN32)
81#include <unistd.h>
Paul Bakker1cfc4582014-04-09 15:25:13 +020082
83#define DEV_RANDOM_THRESHOLD 32
84
85int dev_random_entropy_poll( void *data, unsigned char *output,
86 size_t len, size_t *olen )
87{
88 FILE *file;
89 size_t ret, left = len;
90 unsigned char *p = output;
91 ((void) data);
92
93 *olen = 0;
94
95 file = fopen( "/dev/random", "rb" );
96 if( file == NULL )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020097 return( MBEDTLS_ERR_ENTROPY_SOURCE_FAILED );
Paul Bakker1cfc4582014-04-09 15:25:13 +020098
99 while( left > 0 )
100 {
101 /* /dev/random can return much less than requested. If so, try again */
102 ret = fread( p, 1, left, file );
103 if( ret == 0 && ferror( file ) )
104 {
105 fclose( file );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200106 return( MBEDTLS_ERR_ENTROPY_SOURCE_FAILED );
Paul Bakker1cfc4582014-04-09 15:25:13 +0200107 }
108
109 p += ret;
110 left -= ret;
111 sleep( 1 );
112 }
113 fclose( file );
114 *olen = len;
115
116 return( 0 );
117}
Rich Evans18b78c72015-02-11 14:06:19 +0000118#endif /* !_WIN32 */
119#endif
120
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200121#if defined(MBEDTLS_ECP_C)
122#define DFL_EC_CURVE mbedtls_ecp_curve_list()->grp_id
Rich Evans18b78c72015-02-11 14:06:19 +0000123#else
124#define DFL_EC_CURVE 0
125#endif
126
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200127#if !defined(_WIN32) && defined(MBEDTLS_FS_IO)
Rich Evans18b78c72015-02-11 14:06:19 +0000128#define USAGE_DEV_RANDOM \
129 " use_dev_random=0|1 default: 0\n"
130#else
131#define USAGE_DEV_RANDOM ""
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200132#endif /* !_WIN32 && MBEDTLS_FS_IO */
Paul Bakker1cfc4582014-04-09 15:25:13 +0200133
Rich Evans18b78c72015-02-11 14:06:19 +0000134#define FORMAT_PEM 0
135#define FORMAT_DER 1
136
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200137#define DFL_TYPE MBEDTLS_PK_RSA
Rich Evans18b78c72015-02-11 14:06:19 +0000138#define DFL_RSA_KEYSIZE 4096
139#define DFL_FILENAME "keyfile.key"
140#define DFL_FORMAT FORMAT_PEM
141#define DFL_USE_DEV_RANDOM 0
142
143#define USAGE \
144 "\n usage: gen_key param=<>...\n" \
145 "\n acceptable parameters:\n" \
146 " type=rsa|ec default: rsa\n" \
147 " rsa_keysize=%%d default: 4096\n" \
148 " ec_curve=%%s see below\n" \
149 " filename=%%s default: keyfile.key\n" \
150 " format=pem|der default: pem\n" \
151 USAGE_DEV_RANDOM \
152 "\n"
153
Simon Butcher604d3992016-10-06 19:02:49 +0100154#if !defined(MBEDTLS_PK_WRITE_C) || !defined(MBEDTLS_PEM_WRITE_C) || \
155 !defined(MBEDTLS_FS_IO) || !defined(MBEDTLS_ENTROPY_C) || \
156 !defined(MBEDTLS_CTR_DRBG_C)
Rich Evans85b05ec2015-02-12 11:37:29 +0000157int main( void )
Rich Evans18b78c72015-02-11 14:06:19 +0000158{
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200159 mbedtls_printf( "MBEDTLS_PK_WRITE_C and/or MBEDTLS_FS_IO and/or "
Simon Butcher604d3992016-10-06 19:02:49 +0100160 "MBEDTLS_ENTROPY_C and/or MBEDTLS_CTR_DRBG_C and/or "
161 "MBEDTLS_PEM_WRITE_C"
Rich Evans18b78c72015-02-11 14:06:19 +0000162 "not defined.\n" );
Krzysztof Stachowiak3b0c4302019-04-24 14:24:46 +0200163 mbedtls_exit( 0 );
Rich Evans18b78c72015-02-11 14:06:19 +0000164}
165#else
Simon Butcher63cb97e2018-12-06 17:43:31 +0000166
Simon Butcher63cb97e2018-12-06 17:43:31 +0000167
Rich Evans18b78c72015-02-11 14:06:19 +0000168/*
169 * global options
170 */
171struct options
172{
173 int type; /* the type of key to generate */
174 int rsa_keysize; /* length of key in bits */
175 int ec_curve; /* curve identifier for EC keys */
176 const char *filename; /* filename of the key file */
177 int format; /* the output format to use */
178 int use_dev_random; /* use /dev/random as entropy source */
179} opt;
180
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200181static int write_private_key( mbedtls_pk_context *key, const char *output_file )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200182{
183 int ret;
184 FILE *f;
185 unsigned char output_buf[16000];
186 unsigned char *c = output_buf;
187 size_t len = 0;
188
189 memset(output_buf, 0, 16000);
190 if( opt.format == FORMAT_PEM )
191 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200192 if( ( ret = mbedtls_pk_write_key_pem( key, output_buf, 16000 ) ) != 0 )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200193 return( ret );
194
195 len = strlen( (char *) output_buf );
196 }
197 else
198 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200199 if( ( ret = mbedtls_pk_write_key_der( key, output_buf, 16000 ) ) < 0 )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200200 return( ret );
201
202 len = ret;
Paul Bakker3c38f292014-06-13 17:37:46 +0200203 c = output_buf + sizeof(output_buf) - len;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200204 }
205
Paul Bakker3966d712014-07-10 12:03:09 +0200206 if( ( f = fopen( output_file, "wb" ) ) == NULL )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200207 return( -1 );
208
209 if( fwrite( c, 1, len, f ) != len )
Paul Bakker0c226102014-04-17 16:02:36 +0200210 {
211 fclose( f );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200212 return( -1 );
Paul Bakker0c226102014-04-17 16:02:36 +0200213 }
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200214
Paul Bakker0c226102014-04-17 16:02:36 +0200215 fclose( f );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200216
217 return( 0 );
218}
219
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200220int main( int argc, char *argv[] )
221{
Andres Amaya Garcia208c2172018-04-29 19:51:56 +0100222 int ret = 1;
223 int exit_code = MBEDTLS_EXIT_FAILURE;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200224 mbedtls_pk_context key;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200225 char buf[1024];
226 int i;
227 char *p, *q;
Hanno Becker83aad1f2017-08-23 06:45:10 +0100228 mbedtls_mpi N, P, Q, D, E, DP, DQ, QP;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200229 mbedtls_entropy_context entropy;
230 mbedtls_ctr_drbg_context ctr_drbg;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200231 const char *pers = "gen_key";
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200232#if defined(MBEDTLS_ECP_C)
233 const mbedtls_ecp_curve_info *curve_info;
Manuel Pégourié-Gonnard6e16cdb2013-11-30 15:32:47 +0100234#endif
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200235
236 /*
237 * Set to sane values
238 */
Hanno Becker83aad1f2017-08-23 06:45:10 +0100239
240 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &P ); mbedtls_mpi_init( &Q );
241 mbedtls_mpi_init( &D ); mbedtls_mpi_init( &E ); mbedtls_mpi_init( &DP );
242 mbedtls_mpi_init( &DQ ); mbedtls_mpi_init( &QP );
243
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200244 mbedtls_pk_init( &key );
Manuel Pégourié-Gonnardec160c02015-04-28 22:52:30 +0200245 mbedtls_ctr_drbg_init( &ctr_drbg );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200246 memset( buf, 0, sizeof( buf ) );
247
248 if( argc == 0 )
249 {
250 usage:
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200251 mbedtls_printf( USAGE );
252#if defined(MBEDTLS_ECP_C)
James Cowgill07a92d72015-10-09 00:28:14 +0100253 mbedtls_printf( " available ec_curve values:\n" );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200254 curve_info = mbedtls_ecp_curve_list();
255 mbedtls_printf( " %s (default)\n", curve_info->name );
Manuel Pégourié-Gonnard6e16cdb2013-11-30 15:32:47 +0100256 while( ( ++curve_info )->name != NULL )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200257 mbedtls_printf( " %s\n", curve_info->name );
Andres Amaya Garcia208c2172018-04-29 19:51:56 +0100258#endif /* MBEDTLS_ECP_C */
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200259 goto exit;
260 }
261
262 opt.type = DFL_TYPE;
263 opt.rsa_keysize = DFL_RSA_KEYSIZE;
Manuel Pégourié-Gonnard6e16cdb2013-11-30 15:32:47 +0100264 opt.ec_curve = DFL_EC_CURVE;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200265 opt.filename = DFL_FILENAME;
266 opt.format = DFL_FORMAT;
Paul Bakker1cfc4582014-04-09 15:25:13 +0200267 opt.use_dev_random = DFL_USE_DEV_RANDOM;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200268
269 for( i = 1; i < argc; i++ )
270 {
271 p = argv[i];
272 if( ( q = strchr( p, '=' ) ) == NULL )
273 goto usage;
274 *q++ = '\0';
275
276 if( strcmp( p, "type" ) == 0 )
277 {
278 if( strcmp( q, "rsa" ) == 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200279 opt.type = MBEDTLS_PK_RSA;
Paul Bakker247b4872014-02-06 14:33:52 +0100280 else if( strcmp( q, "ec" ) == 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200281 opt.type = MBEDTLS_PK_ECKEY;
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200282 else
283 goto usage;
284 }
285 else if( strcmp( p, "format" ) == 0 )
286 {
287 if( strcmp( q, "pem" ) == 0 )
288 opt.format = FORMAT_PEM;
289 else if( strcmp( q, "der" ) == 0 )
290 opt.format = FORMAT_DER;
291 else
292 goto usage;
293 }
294 else if( strcmp( p, "rsa_keysize" ) == 0 )
295 {
296 opt.rsa_keysize = atoi( q );
Manuel Pégourié-Gonnarda39416f2014-07-21 17:10:16 +0200297 if( opt.rsa_keysize < 1024 ||
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200298 opt.rsa_keysize > MBEDTLS_MPI_MAX_BITS )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200299 goto usage;
300 }
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200301#if defined(MBEDTLS_ECP_C)
Manuel Pégourié-Gonnard6e16cdb2013-11-30 15:32:47 +0100302 else if( strcmp( p, "ec_curve" ) == 0 )
303 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200304 if( ( curve_info = mbedtls_ecp_curve_info_from_name( q ) ) == NULL )
Manuel Pégourié-Gonnard6e16cdb2013-11-30 15:32:47 +0100305 goto usage;
306 opt.ec_curve = curve_info->grp_id;
307 }
Paul Bakkerd153ef32014-08-18 12:00:28 +0200308#endif
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200309 else if( strcmp( p, "filename" ) == 0 )
310 opt.filename = q;
Paul Bakker1cfc4582014-04-09 15:25:13 +0200311 else if( strcmp( p, "use_dev_random" ) == 0 )
312 {
313 opt.use_dev_random = atoi( q );
314 if( opt.use_dev_random < 0 || opt.use_dev_random > 1 )
315 goto usage;
316 }
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200317 else
318 goto usage;
319 }
320
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200321 mbedtls_printf( "\n . Seeding the random number generator..." );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200322 fflush( stdout );
323
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200324 mbedtls_entropy_init( &entropy );
325#if !defined(_WIN32) && defined(MBEDTLS_FS_IO)
Paul Bakker1cfc4582014-04-09 15:25:13 +0200326 if( opt.use_dev_random )
327 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200328 if( ( ret = mbedtls_entropy_add_source( &entropy, dev_random_entropy_poll,
Manuel Pégourié-Gonnard7580ba42015-06-19 10:26:32 +0200329 NULL, DEV_RANDOM_THRESHOLD,
330 MBEDTLS_ENTROPY_SOURCE_STRONG ) ) != 0 )
Paul Bakker1cfc4582014-04-09 15:25:13 +0200331 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200332 mbedtls_printf( " failed\n ! mbedtls_entropy_add_source returned -0x%04x\n", -ret );
Paul Bakker1cfc4582014-04-09 15:25:13 +0200333 goto exit;
334 }
335
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200336 mbedtls_printf("\n Using /dev/random, so can take a long time! " );
Paul Bakker1cfc4582014-04-09 15:25:13 +0200337 fflush( stdout );
338 }
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200339#endif /* !_WIN32 && MBEDTLS_FS_IO */
Paul Bakker1cfc4582014-04-09 15:25:13 +0200340
Manuel Pégourié-Gonnardec160c02015-04-28 22:52:30 +0200341 if( ( ret = mbedtls_ctr_drbg_seed( &ctr_drbg, mbedtls_entropy_func, &entropy,
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200342 (const unsigned char *) pers,
343 strlen( pers ) ) ) != 0 )
344 {
Manuel Pégourié-Gonnardec160c02015-04-28 22:52:30 +0200345 mbedtls_printf( " failed\n ! mbedtls_ctr_drbg_seed returned -0x%04x\n", -ret );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200346 goto exit;
347 }
348
349 /*
350 * 1.1. Generate the key
351 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200352 mbedtls_printf( "\n . Generating the private key ..." );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200353 fflush( stdout );
354
Hanno Beckere2dae7e2018-11-05 16:54:40 +0000355 if( ( ret = mbedtls_pk_setup( &key,
356 mbedtls_pk_info_from_type( (mbedtls_pk_type_t) opt.type ) ) ) != 0 )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200357 {
Manuel Pégourié-Gonnardd9e6a3a2015-05-14 19:41:36 +0200358 mbedtls_printf( " failed\n ! mbedtls_pk_setup returned -0x%04x", -ret );
Manuel Pégourié-Gonnard8c237712013-11-30 14:36:54 +0100359 goto exit;
360 }
361
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200362#if defined(MBEDTLS_RSA_C) && defined(MBEDTLS_GENPRIME)
363 if( opt.type == MBEDTLS_PK_RSA )
Manuel Pégourié-Gonnard8c237712013-11-30 14:36:54 +0100364 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200365 ret = mbedtls_rsa_gen_key( mbedtls_pk_rsa( key ), mbedtls_ctr_drbg_random, &ctr_drbg,
Hanno Becker83aad1f2017-08-23 06:45:10 +0100366 opt.rsa_keysize, 65537 );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200367 if( ret != 0 )
368 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200369 mbedtls_printf( " failed\n ! mbedtls_rsa_gen_key returned -0x%04x", -ret );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200370 goto exit;
371 }
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200372 }
373 else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200374#endif /* MBEDTLS_RSA_C */
375#if defined(MBEDTLS_ECP_C)
376 if( opt.type == MBEDTLS_PK_ECKEY )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200377 {
Hanno Beckere2dae7e2018-11-05 16:54:40 +0000378 ret = mbedtls_ecp_gen_key( (mbedtls_ecp_group_id) opt.ec_curve,
379 mbedtls_pk_ec( key ),
Hanno Becker83aad1f2017-08-23 06:45:10 +0100380 mbedtls_ctr_drbg_random, &ctr_drbg );
Manuel Pégourié-Gonnard8c237712013-11-30 14:36:54 +0100381 if( ret != 0 )
382 {
Chris Xue9a51c032017-11-05 19:10:51 +0000383 mbedtls_printf( " failed\n ! mbedtls_ecp_gen_key returned -0x%04x", -ret );
Manuel Pégourié-Gonnard8c237712013-11-30 14:36:54 +0100384 goto exit;
385 }
386 }
387 else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200388#endif /* MBEDTLS_ECP_C */
Manuel Pégourié-Gonnard8c237712013-11-30 14:36:54 +0100389 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200390 mbedtls_printf( " failed\n ! key type not supported\n" );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200391 goto exit;
392 }
393
394 /*
395 * 1.2 Print the key
396 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200397 mbedtls_printf( " ok\n . Key information:\n" );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200398
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200399#if defined(MBEDTLS_RSA_C)
400 if( mbedtls_pk_get_type( &key ) == MBEDTLS_PK_RSA )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200401 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200402 mbedtls_rsa_context *rsa = mbedtls_pk_rsa( key );
Hanno Becker83aad1f2017-08-23 06:45:10 +0100403
404 if( ( ret = mbedtls_rsa_export ( rsa, &N, &P, &Q, &D, &E ) ) != 0 ||
405 ( ret = mbedtls_rsa_export_crt( rsa, &DP, &DQ, &QP ) ) != 0 )
406 {
407 mbedtls_printf( " failed\n ! could not export RSA parameters\n\n" );
408 goto exit;
409 }
410
411 mbedtls_mpi_write_file( "N: ", &N, 16, NULL );
412 mbedtls_mpi_write_file( "E: ", &E, 16, NULL );
413 mbedtls_mpi_write_file( "D: ", &D, 16, NULL );
414 mbedtls_mpi_write_file( "P: ", &P, 16, NULL );
415 mbedtls_mpi_write_file( "Q: ", &Q, 16, NULL );
416 mbedtls_mpi_write_file( "DP: ", &DP, 16, NULL );
417 mbedtls_mpi_write_file( "DQ: ", &DQ, 16, NULL );
418 mbedtls_mpi_write_file( "QP: ", &QP, 16, NULL );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200419 }
420 else
421#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200422#if defined(MBEDTLS_ECP_C)
423 if( mbedtls_pk_get_type( &key ) == MBEDTLS_PK_ECKEY )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200424 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200425 mbedtls_ecp_keypair *ecp = mbedtls_pk_ec( key );
426 mbedtls_printf( "curve: %s\n",
427 mbedtls_ecp_curve_info_from_grp_id( ecp->grp.id )->name );
428 mbedtls_mpi_write_file( "X_Q: ", &ecp->Q.X, 16, NULL );
429 mbedtls_mpi_write_file( "Y_Q: ", &ecp->Q.Y, 16, NULL );
430 mbedtls_mpi_write_file( "D: ", &ecp->d , 16, NULL );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200431 }
432 else
433#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200434 mbedtls_printf(" ! key type not supported\n");
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200435
Manuel Pégourié-Gonnarda39416f2014-07-21 17:10:16 +0200436 /*
437 * 1.3 Export key
438 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200439 mbedtls_printf( " . Writing key to file..." );
Manuel Pégourié-Gonnarda39416f2014-07-21 17:10:16 +0200440
441 if( ( ret = write_private_key( &key, opt.filename ) ) != 0 )
442 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200443 mbedtls_printf( " failed\n" );
Manuel Pégourié-Gonnarda39416f2014-07-21 17:10:16 +0200444 goto exit;
445 }
446
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200447 mbedtls_printf( " ok\n" );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200448
Andres Amaya Garcia208c2172018-04-29 19:51:56 +0100449 exit_code = MBEDTLS_EXIT_SUCCESS;
450
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200451exit:
452
Andres Amaya Garcia208c2172018-04-29 19:51:56 +0100453 if( exit_code != MBEDTLS_EXIT_SUCCESS )
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200454 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200455#ifdef MBEDTLS_ERROR_C
456 mbedtls_strerror( ret, buf, sizeof( buf ) );
457 mbedtls_printf( " - %s\n", buf );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200458#else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200459 mbedtls_printf("\n");
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200460#endif
461 }
462
Hanno Becker83aad1f2017-08-23 06:45:10 +0100463 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &P ); mbedtls_mpi_free( &Q );
464 mbedtls_mpi_free( &D ); mbedtls_mpi_free( &E ); mbedtls_mpi_free( &DP );
465 mbedtls_mpi_free( &DQ ); mbedtls_mpi_free( &QP );
466
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200467 mbedtls_pk_free( &key );
468 mbedtls_ctr_drbg_free( &ctr_drbg );
469 mbedtls_entropy_free( &entropy );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200470
471#if defined(_WIN32)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200472 mbedtls_printf( " + Press Enter to exit this program.\n" );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200473 fflush( stdout ); getchar();
474#endif
475
Krzysztof Stachowiak3b0c4302019-04-24 14:24:46 +0200476 mbedtls_exit( exit_code );
Paul Bakker15b9b3a2013-09-23 12:05:44 +0200477}
Simon Butcher604d3992016-10-06 19:02:49 +0100478#endif /* MBEDTLS_PK_WRITE_C && MBEDTLS_PEM_WRITE_C && MBEDTLS_FS_IO &&
479 * MBEDTLS_ENTROPY_C && MBEDTLS_CTR_DRBG_C */