1*32b31808SJens Wiklander /** 2*32b31808SJens Wiklander * \file pkwrite.h 3*32b31808SJens Wiklander * 4*32b31808SJens Wiklander * \brief Internal defines shared by the PK write module 5*32b31808SJens Wiklander */ 6*32b31808SJens Wiklander /* 7*32b31808SJens Wiklander * Copyright The Mbed TLS Contributors 8*32b31808SJens Wiklander * SPDX-License-Identifier: Apache-2.0 9*32b31808SJens Wiklander * 10*32b31808SJens Wiklander * Licensed under the Apache License, Version 2.0 (the "License"); you may 11*32b31808SJens Wiklander * not use this file except in compliance with the License. 12*32b31808SJens Wiklander * You may obtain a copy of the License at 13*32b31808SJens Wiklander * 14*32b31808SJens Wiklander * http://www.apache.org/licenses/LICENSE-2.0 15*32b31808SJens Wiklander * 16*32b31808SJens Wiklander * Unless required by applicable law or agreed to in writing, software 17*32b31808SJens Wiklander * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT 18*32b31808SJens Wiklander * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 19*32b31808SJens Wiklander * See the License for the specific language governing permissions and 20*32b31808SJens Wiklander * limitations under the License. 21*32b31808SJens Wiklander */ 22*32b31808SJens Wiklander 23*32b31808SJens Wiklander #ifndef MBEDTLS_PK_WRITE_H 24*32b31808SJens Wiklander #define MBEDTLS_PK_WRITE_H 25*32b31808SJens Wiklander 26*32b31808SJens Wiklander #include "mbedtls/build_info.h" 27*32b31808SJens Wiklander 28*32b31808SJens Wiklander #include "mbedtls/pk.h" 29*32b31808SJens Wiklander 30*32b31808SJens Wiklander /* 31*32b31808SJens Wiklander * Max sizes of key per types. Shown as tag + len (+ content). 32*32b31808SJens Wiklander */ 33*32b31808SJens Wiklander 34*32b31808SJens Wiklander #if defined(MBEDTLS_RSA_C) 35*32b31808SJens Wiklander /* 36*32b31808SJens Wiklander * RSA public keys: 37*32b31808SJens Wiklander * SubjectPublicKeyInfo ::= SEQUENCE { 1 + 3 38*32b31808SJens Wiklander * algorithm AlgorithmIdentifier, 1 + 1 (sequence) 39*32b31808SJens Wiklander * + 1 + 1 + 9 (rsa oid) 40*32b31808SJens Wiklander * + 1 + 1 (params null) 41*32b31808SJens Wiklander * subjectPublicKey BIT STRING } 1 + 3 + (1 + below) 42*32b31808SJens Wiklander * RSAPublicKey ::= SEQUENCE { 1 + 3 43*32b31808SJens Wiklander * modulus INTEGER, -- n 1 + 3 + MPI_MAX + 1 44*32b31808SJens Wiklander * publicExponent INTEGER -- e 1 + 3 + MPI_MAX + 1 45*32b31808SJens Wiklander * } 46*32b31808SJens Wiklander */ 47*32b31808SJens Wiklander #define MBEDTLS_PK_RSA_PUB_DER_MAX_BYTES (38 + 2 * MBEDTLS_MPI_MAX_SIZE) 48*32b31808SJens Wiklander 49*32b31808SJens Wiklander /* 50*32b31808SJens Wiklander * RSA private keys: 51*32b31808SJens Wiklander * RSAPrivateKey ::= SEQUENCE { 1 + 3 52*32b31808SJens Wiklander * version Version, 1 + 1 + 1 53*32b31808SJens Wiklander * modulus INTEGER, 1 + 3 + MPI_MAX + 1 54*32b31808SJens Wiklander * publicExponent INTEGER, 1 + 3 + MPI_MAX + 1 55*32b31808SJens Wiklander * privateExponent INTEGER, 1 + 3 + MPI_MAX + 1 56*32b31808SJens Wiklander * prime1 INTEGER, 1 + 3 + MPI_MAX / 2 + 1 57*32b31808SJens Wiklander * prime2 INTEGER, 1 + 3 + MPI_MAX / 2 + 1 58*32b31808SJens Wiklander * exponent1 INTEGER, 1 + 3 + MPI_MAX / 2 + 1 59*32b31808SJens Wiklander * exponent2 INTEGER, 1 + 3 + MPI_MAX / 2 + 1 60*32b31808SJens Wiklander * coefficient INTEGER, 1 + 3 + MPI_MAX / 2 + 1 61*32b31808SJens Wiklander * otherPrimeInfos OtherPrimeInfos OPTIONAL 0 (not supported) 62*32b31808SJens Wiklander * } 63*32b31808SJens Wiklander */ 64*32b31808SJens Wiklander #define MBEDTLS_MPI_MAX_SIZE_2 (MBEDTLS_MPI_MAX_SIZE / 2 + \ 65*32b31808SJens Wiklander MBEDTLS_MPI_MAX_SIZE % 2) 66*32b31808SJens Wiklander #define MBEDTLS_PK_RSA_PRV_DER_MAX_BYTES (47 + 3 * MBEDTLS_MPI_MAX_SIZE \ 67*32b31808SJens Wiklander + 5 * MBEDTLS_MPI_MAX_SIZE_2) 68*32b31808SJens Wiklander 69*32b31808SJens Wiklander #else /* MBEDTLS_RSA_C */ 70*32b31808SJens Wiklander 71*32b31808SJens Wiklander #define MBEDTLS_PK_RSA_PUB_DER_MAX_BYTES 0 72*32b31808SJens Wiklander #define MBEDTLS_PK_RSA_PRV_DER_MAX_BYTES 0 73*32b31808SJens Wiklander 74*32b31808SJens Wiklander #endif /* MBEDTLS_RSA_C */ 75*32b31808SJens Wiklander 76*32b31808SJens Wiklander #if defined(MBEDTLS_ECP_C) 77*32b31808SJens Wiklander /* 78*32b31808SJens Wiklander * EC public keys: 79*32b31808SJens Wiklander * SubjectPublicKeyInfo ::= SEQUENCE { 1 + 2 80*32b31808SJens Wiklander * algorithm AlgorithmIdentifier, 1 + 1 (sequence) 81*32b31808SJens Wiklander * + 1 + 1 + 7 (ec oid) 82*32b31808SJens Wiklander * + 1 + 1 + 9 (namedCurve oid) 83*32b31808SJens Wiklander * subjectPublicKey BIT STRING 1 + 2 + 1 [1] 84*32b31808SJens Wiklander * + 1 (point format) [1] 85*32b31808SJens Wiklander * + 2 * ECP_MAX (coords) [1] 86*32b31808SJens Wiklander * } 87*32b31808SJens Wiklander */ 88*32b31808SJens Wiklander #define MBEDTLS_PK_ECP_PUB_DER_MAX_BYTES (30 + 2 * MBEDTLS_ECP_MAX_BYTES) 89*32b31808SJens Wiklander 90*32b31808SJens Wiklander /* 91*32b31808SJens Wiklander * EC private keys: 92*32b31808SJens Wiklander * ECPrivateKey ::= SEQUENCE { 1 + 2 93*32b31808SJens Wiklander * version INTEGER , 1 + 1 + 1 94*32b31808SJens Wiklander * privateKey OCTET STRING, 1 + 1 + ECP_MAX 95*32b31808SJens Wiklander * parameters [0] ECParameters OPTIONAL, 1 + 1 + (1 + 1 + 9) 96*32b31808SJens Wiklander * publicKey [1] BIT STRING OPTIONAL 1 + 2 + [1] above 97*32b31808SJens Wiklander * } 98*32b31808SJens Wiklander */ 99*32b31808SJens Wiklander #define MBEDTLS_PK_ECP_PRV_DER_MAX_BYTES (29 + 3 * MBEDTLS_ECP_MAX_BYTES) 100*32b31808SJens Wiklander 101*32b31808SJens Wiklander #else /* MBEDTLS_ECP_C */ 102*32b31808SJens Wiklander 103*32b31808SJens Wiklander #define MBEDTLS_PK_ECP_PUB_DER_MAX_BYTES 0 104*32b31808SJens Wiklander #define MBEDTLS_PK_ECP_PRV_DER_MAX_BYTES 0 105*32b31808SJens Wiklander 106*32b31808SJens Wiklander #endif /* MBEDTLS_ECP_C */ 107*32b31808SJens Wiklander 108*32b31808SJens Wiklander #endif /* MBEDTLS_PK_WRITE_H */ 109