grpc
third_party
boringssl-with-bazel
src
crypto
x509
a_verify.c
Go to the documentation of this file.
1
/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
2
* All rights reserved.
3
*
4
* This package is an SSL implementation written
5
* by Eric Young (eay@cryptsoft.com).
6
* The implementation was written so as to conform with Netscapes SSL.
7
*
8
* This library is free for commercial and non-commercial use as long as
9
* the following conditions are aheared to. The following conditions
10
* apply to all code found in this distribution, be it the RC4, RSA,
11
* lhash, DES, etc., code; not just the SSL code. The SSL documentation
12
* included with this distribution is covered by the same copyright terms
13
* except that the holder is Tim Hudson (tjh@cryptsoft.com).
14
*
15
* Copyright remains Eric Young's, and as such any Copyright notices in
16
* the code are not to be removed.
17
* If this package is used in a product, Eric Young should be given attribution
18
* as the author of the parts of the library used.
19
* This can be in the form of a textual message at program startup or
20
* in documentation (online or textual) provided with the package.
21
*
22
* Redistribution and use in source and binary forms, with or without
23
* modification, are permitted provided that the following conditions
24
* are met:
25
* 1. Redistributions of source code must retain the copyright
26
* notice, this list of conditions and the following disclaimer.
27
* 2. Redistributions in binary form must reproduce the above copyright
28
* notice, this list of conditions and the following disclaimer in the
29
* documentation and/or other materials provided with the distribution.
30
* 3. All advertising materials mentioning features or use of this software
31
* must display the following acknowledgement:
32
* "This product includes cryptographic software written by
33
* Eric Young (eay@cryptsoft.com)"
34
* The word 'cryptographic' can be left out if the rouines from the library
35
* being used are not cryptographic related :-).
36
* 4. If you include any Windows specific code (or a derivative thereof) from
37
* the apps directory (application code) you must include an acknowledgement:
38
* "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
39
*
40
* THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
41
* ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42
* IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
43
* ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
44
* FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
45
* DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
46
* OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47
* HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
48
* LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
49
* OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
50
* SUCH DAMAGE.
51
*
52
* The licence and distribution terms for any publically available version or
53
* derivative of this code cannot be changed. i.e. this code cannot simply be
54
* copied and put under another distribution licence
55
* [including the GNU Public Licence.] */
56
57
#include <
openssl/x509.h
>
58
59
#include <stdio.h>
60
#include <time.h>
61
#include <sys/types.h>
62
63
#include <
openssl/bn.h
>
64
#include <
openssl/digest.h
>
65
#include <
openssl/err.h
>
66
#include <
openssl/evp.h
>
67
#include <
openssl/mem.h
>
68
#include <
openssl/obj.h
>
69
70
#include "
internal.h
"
71
72
int
ASN1_item_verify
(
const
ASN1_ITEM
*
it
,
const
X509_ALGOR
*
a
,
73
const
ASN1_BIT_STRING
*signature,
void
*asn,
74
EVP_PKEY
*pkey) {
75
if
(!pkey) {
76
OPENSSL_PUT_ERROR
(
X509
,
ERR_R_PASSED_NULL_PARAMETER
);
77
return
0;
78
}
79
80
size_t
sig_len;
81
if
(signature->
type
==
V_ASN1_BIT_STRING
) {
82
if
(!
ASN1_BIT_STRING_num_bytes
(signature, &sig_len)) {
83
OPENSSL_PUT_ERROR
(
X509
,
X509_R_INVALID_BIT_STRING_BITS_LEFT
);
84
return
0;
85
}
86
}
else
{
87
sig_len = (size_t)
ASN1_STRING_length
(signature);
88
}
89
90
EVP_MD_CTX
ctx
;
91
uint8_t
*buf_in = NULL;
92
int
ret
= 0, inl = 0;
93
EVP_MD_CTX_init
(&
ctx
);
94
95
if
(!
x509_digest_verify_init
(&
ctx
,
a
, pkey)) {
96
goto
err
;
97
}
98
99
inl =
ASN1_item_i2d
(asn, &buf_in,
it
);
100
101
if
(buf_in == NULL) {
102
OPENSSL_PUT_ERROR
(
X509
,
ERR_R_MALLOC_FAILURE
);
103
goto
err
;
104
}
105
106
if
(!
EVP_DigestVerify
(&
ctx
,
ASN1_STRING_get0_data
(signature), sig_len,
107
buf_in, inl)) {
108
OPENSSL_PUT_ERROR
(
X509
,
ERR_R_EVP_LIB
);
109
goto
err
;
110
}
111
112
ret
= 1;
113
114
err
:
115
OPENSSL_free
(buf_in);
116
EVP_MD_CTX_cleanup
(&
ctx
);
117
return
ret
;
118
}
bn.h
regen-readme.it
it
Definition:
regen-readme.py:15
ctx
Definition:
benchmark-async.c:30
evp.h
OPENSSL_PUT_ERROR
#define OPENSSL_PUT_ERROR(library, reason)
Definition:
err.h:423
error_ref_leak.err
err
Definition:
error_ref_leak.py:35
ctx
static struct test_ctx ctx
Definition:
test-ipc-send-recv.c:65
a
int a
Definition:
abseil-cpp/absl/container/internal/hash_policy_traits_test.cc:88
ASN1_item_verify
int ASN1_item_verify(const ASN1_ITEM *it, const X509_ALGOR *a, const ASN1_BIT_STRING *signature, void *asn, EVP_PKEY *pkey)
Definition:
a_verify.c:72
uint8_t
unsigned char uint8_t
Definition:
stdint-msvc2008.h:78
env_md_ctx_st
Definition:
digest.h:306
ASN1_ITEM_st
Definition:
asn1t.h:459
evp_pkey_st
Definition:
evp.h:1046
ERR_R_PASSED_NULL_PARAMETER
#define ERR_R_PASSED_NULL_PARAMETER
Definition:
err.h:373
ASN1_STRING_length
#define ASN1_STRING_length
Definition:
boringssl_prefix_symbols.h:683
err.h
EVP_MD_CTX_init
#define EVP_MD_CTX_init
Definition:
boringssl_prefix_symbols.h:1567
V_ASN1_BIT_STRING
#define V_ASN1_BIT_STRING
Definition:
asn1.h:127
internal.h
ASN1_BIT_STRING_num_bytes
#define ASN1_BIT_STRING_num_bytes
Definition:
boringssl_prefix_symbols.h:614
EVP_DigestVerify
#define EVP_DigestVerify
Definition:
boringssl_prefix_symbols.h:1517
X509_algor_st
Definition:
x509.h:113
ASN1_item_i2d
#define ASN1_item_i2d
Definition:
boringssl_prefix_symbols.h:747
x509_digest_verify_init
#define x509_digest_verify_init
Definition:
boringssl_prefix_symbols.h:3453
digest.h
x509_st
Definition:
third_party/boringssl-with-bazel/src/crypto/x509/internal.h:139
ret
UniquePtr< SSL_SESSION > ret
Definition:
ssl_x509.cc:1029
ASN1_STRING_get0_data
#define ASN1_STRING_get0_data
Definition:
boringssl_prefix_symbols.h:681
asn1_string_st::type
int type
Definition:
asn1.h:545
ERR_R_EVP_LIB
#define ERR_R_EVP_LIB
Definition:
err.h:334
obj.h
mem.h
EVP_MD_CTX_cleanup
#define EVP_MD_CTX_cleanup
Definition:
boringssl_prefix_symbols.h:1561
X509_R_INVALID_BIT_STRING_BITS_LEFT
#define X509_R_INVALID_BIT_STRING_BITS_LEFT
Definition:
x509.h:2386
OPENSSL_free
#define OPENSSL_free
Definition:
boringssl_prefix_symbols.h:1869
asn1_string_st
Definition:
asn1.h:543
ERR_R_MALLOC_FAILURE
#define ERR_R_MALLOC_FAILURE
Definition:
err.h:371
x509.h
grpc
Author(s):
autogenerated on Fri May 16 2025 02:57:39