2 * Sun RPC is a product of Sun Microsystems, Inc. and is provided for
3 * unrestricted use provided that this legend is included on all tape
4 * media and as a part of the software program in whole or part. Users
5 * may copy or modify Sun RPC without charge, but are not authorized
6 * to license or distribute it to anyone else except as part of a product or
7 * program developed by the user or with the express written consent of
8 * Sun Microsystems, Inc.
10 * SUN RPC IS PROVIDED AS IS WITH NO WARRANTIES OF ANY KIND INCLUDING THE
11 * WARRANTIES OF DESIGN, MERCHANTIBILITY AND FITNESS FOR A PARTICULAR
12 * PURPOSE, OR ARISING FROM A COURSE OF DEALING, USAGE OR TRADE PRACTICE.
14 * Sun RPC is provided with no support and without any obligation on the
15 * part of Sun Microsystems, Inc. to assist in its use, correction,
16 * modification or enhancement.
18 * SUN MICROSYSTEMS, INC. SHALL HAVE NO LIABILITY WITH RESPECT TO THE
19 * INFRINGEMENT OF COPYRIGHTS, TRADE SECRETS OR ANY PATENTS BY SUN RPC
20 * OR ANY PART THEREOF.
22 * In no event will Sun Microsystems, Inc. be liable for any lost revenue
23 * or profits or other special, indirect and consequential damages, even if
24 * Sun has been advised of the possibility of such damages.
26 * Sun Microsystems, Inc.
28 * Mountain View, California 94043
30 * @(#)generic.c 1.2 91/03/11 Copyr 1986 Sun Micro
31 * $FreeBSD: src/usr.bin/newkey/generic.c,v 1.3.2.1 2001/07/04 22:32:20 kris Exp $
32 * $DragonFly: src/usr.bin/newkey/generic.c,v 1.7 2005/01/11 13:08:35 joerg Exp $
36 * Copyright (C) 1986, Sun Microsystems, Inc.
45 #include <openssl/bn.h>
46 #include <openssl/crypto.h>
47 #include <openssl/err.h>
50 #include <rpc/key_prot.h>
54 static void adjust(char[], char *);
55 static BIGNUM *itobn(long i);
61 getseed(char *seed, int seedsize, unsigned char *pass)
65 for (i = 0; i < seedsize; i++) {
66 seed[i] = (arc4random() & 0xff) ^ pass[i % 8];
75 if ((n = BN_new()) == NULL)
76 errx(1, "could not create BIGNUM: %s",
77 ERR_error_string(ERR_get_error(), 0));
80 BN_add_word(n, (u_long)i);
82 BN_sub_word(n, (u_long)(-i));
87 * Generate a random public/secret key pair
90 genkeys(char *public, char *secret, char *pass)
92 #define BASEBITS (8*sizeof (short) - 1)
93 #define BASE (short)(1 << BASEBITS)
97 unsigned short seed[KEYSIZE/BASEBITS + 1];
101 BIGNUM *pk, *sk, *tmp, *base, *root, *modulus;
109 if (BN_hex2bn(&modulus, HEXMODULUS) == NULL)
110 errx(1, "could not convert modulus to BIGNUM: %s",
111 ERR_error_string(ERR_get_error(), 0));
113 if ((ctx = BN_CTX_new()) == NULL)
114 errx(1, "could not create BN_CTX: %s",
115 ERR_error_string(ERR_get_error(), 0));
117 getseed((char *)seed, sizeof (seed), (u_char *)pass);
118 for (i = 0; i < KEYSIZE/BASEBITS + 1; i++) {
122 BN_mul(sk, base, sk, ctx);
126 BN_div(tmp, sk, sk, modulus, ctx);
127 BN_mod_exp(pk, root, sk, modulus, ctx);
129 if ((xkey = BN_bn2hex(sk)) == NULL)
130 errx(1, "could convert sk to hex: %s",
131 ERR_error_string(ERR_get_error(), 0));
132 adjust(secret, xkey);
135 if ((xkey = BN_bn2hex(pk)) == NULL)
136 errx(1, "could convert pk to hex: %s",
137 ERR_error_string(ERR_get_error(), 0));
138 adjust(public, xkey);
150 * Adjust the input key so that it is 0-filled on the left
153 adjust(char keyout[HEXKEYBYTES+1], char *keyin)
158 for (p = keyin; *p; p++)
160 for (s = keyout + HEXKEYBYTES; p >= keyin; p--, s--) {
163 while (s >= keyout) {