/* rsa_pkcs1v15.c */ /* This file is part of the ARM-Crypto-Lib. Copyright (C) 2006-2015 Daniel Otte (bg@nerilex.org) This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program. If not, see . */ #include #include #include #include "bigint.h" #include "rsa_basic.h" #include "rsaes_pkcs1v15.h" #define DEBUG 0 #if DEBUG #include "bigint_io.h" #include "cli.h" #endif #include "random_dummy.h" uint16_t rsa_pkcs1v15_compute_padlength_B(bigint_t *modulus, uint16_t msg_length_B){ return bigint_get_first_set_bit(modulus) / 8 + 1 - msg_length_B - 3; } uint8_t rsa_encrypt_pkcs1v15(void *dest, uint16_t *out_length, const void *src, uint16_t length_B, rsa_publickey_t *key, const void *pad){ int16_t pad_length; bigint_t x; pad_length = rsa_pkcs1v15_compute_padlength_B(&key->modulus, length_B); if(pad_length<8){ #if DEBUG cli_putstr_P(PSTR("\r\nERROR: pad_length<8; pad_length: ")); cli_hexdump_rev(&pad_length, 2); #endif return 2; /* message to long */ } if(!pad){ #if DEBUG cli_putstr_P(PSTR("\r\nauto-generating pad ...")); #endif uint16_t i; uint8_t c; for(i=0; i=m_length){ return 1; } ++idx; while(((uint8_t*)x.wordv)[idx+pad_length]!=0 && (idx+pad_length)=m_length){ return 2; } *out_length = m_length - idx - pad_length - 1; if(pad){ #if DEBUG cli_putstr_P(PSTR("\r\npadding block:")); cli_hexdump_block(((uint8_t*)x.wordv)+idx, pad_length, 4, 16); cli_putstr_P(PSTR("\r\npad @ 0x")); cli_hexdump_rev(&pad, 2); cli_putstr_P(PSTR("\r\ndst @ 0x")); cli_hexdump_rev(&dest, 2); #endif memcpy(pad, ((uint8_t*)x.wordv)+idx, pad_length); } memmove(dest, ((uint8_t*)x.wordv) + idx + pad_length + 1, m_length - idx - pad_length - 1); return 0; }