2017-01-27 12:05:45 +00:00
|
|
|
// emsa2.h - originally written and placed in the public domain by Wei Dai
|
2015-11-23 00:17:15 +00:00
|
|
|
|
2017-11-29 15:54:33 +00:00
|
|
|
/// \file emsa2.h
|
|
|
|
/// \brief Classes and functions for various padding schemes used in public key algorithms
|
2015-11-23 00:17:15 +00:00
|
|
|
|
2015-11-05 06:59:46 +00:00
|
|
|
#ifndef CRYPTOPP_EMSA2_H
|
|
|
|
#define CRYPTOPP_EMSA2_H
|
|
|
|
|
|
|
|
#include "cryptlib.h"
|
|
|
|
#include "pubkey.h"
|
|
|
|
#include "misc.h"
|
|
|
|
|
|
|
|
#ifdef CRYPTOPP_IS_DLL
|
2016-09-23 03:57:57 +00:00
|
|
|
# include "sha.h"
|
2015-11-05 06:59:46 +00:00
|
|
|
#endif
|
|
|
|
|
|
|
|
NAMESPACE_BEGIN(CryptoPP)
|
|
|
|
|
2017-12-25 02:07:18 +00:00
|
|
|
/// \class EMSA2HashId
|
|
|
|
/// \brief EMSA2 hash identifier
|
|
|
|
/// \tparam H HashTransformation derived class
|
|
|
|
/// \since Crypto++ 5.0
|
2015-11-05 06:59:46 +00:00
|
|
|
template <class H> class EMSA2HashId
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
static const byte id;
|
|
|
|
};
|
|
|
|
|
2017-12-25 02:07:18 +00:00
|
|
|
/// \class EMSA2Pad
|
|
|
|
/// \brief EMSA2 padding method
|
|
|
|
/// \tparam BASE Message encoding method
|
|
|
|
/// \since Crypto++ 5.0
|
2015-11-05 06:59:46 +00:00
|
|
|
template <class BASE>
|
|
|
|
class EMSA2HashIdLookup : public BASE
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
struct HashIdentifierLookup
|
|
|
|
{
|
|
|
|
template <class H> struct HashIdentifierLookup2
|
|
|
|
{
|
|
|
|
static HashIdentifier Lookup()
|
|
|
|
{
|
|
|
|
return HashIdentifier(&EMSA2HashId<H>::id, 1);
|
|
|
|
}
|
|
|
|
};
|
|
|
|
};
|
|
|
|
};
|
|
|
|
|
|
|
|
// EMSA2HashId can be instantiated with the following classes.
|
|
|
|
class SHA1;
|
2016-09-23 03:57:57 +00:00
|
|
|
class SHA224;
|
2015-11-05 06:59:46 +00:00
|
|
|
class SHA256;
|
|
|
|
class SHA384;
|
|
|
|
class SHA512;
|
2016-09-23 03:57:57 +00:00
|
|
|
class RIPEMD128;
|
|
|
|
class RIPEMD160;
|
2015-11-05 06:59:46 +00:00
|
|
|
class Whirlpool;
|
|
|
|
// end of list
|
|
|
|
|
|
|
|
#ifdef CRYPTOPP_IS_DLL
|
|
|
|
CRYPTOPP_DLL_TEMPLATE_CLASS EMSA2HashId<SHA1>;
|
|
|
|
CRYPTOPP_DLL_TEMPLATE_CLASS EMSA2HashId<SHA224>;
|
|
|
|
CRYPTOPP_DLL_TEMPLATE_CLASS EMSA2HashId<SHA256>;
|
|
|
|
CRYPTOPP_DLL_TEMPLATE_CLASS EMSA2HashId<SHA384>;
|
|
|
|
CRYPTOPP_DLL_TEMPLATE_CLASS EMSA2HashId<SHA512>;
|
|
|
|
#endif
|
|
|
|
|
2017-12-25 02:07:18 +00:00
|
|
|
/// \class EMSA2Pad
|
|
|
|
/// \brief EMSA2 padding method
|
|
|
|
/// \since Crypto++ 5.0
|
2015-11-05 06:59:46 +00:00
|
|
|
class CRYPTOPP_DLL EMSA2Pad : public EMSA2HashIdLookup<PK_DeterministicSignatureMessageEncodingMethod>
|
|
|
|
{
|
|
|
|
public:
|
2016-12-01 14:37:04 +00:00
|
|
|
CRYPTOPP_STATIC_CONSTEXPR const char* CRYPTOPP_API StaticAlgorithmName() {return "EMSA2";}
|
2016-09-10 08:57:48 +00:00
|
|
|
|
2015-11-05 06:59:46 +00:00
|
|
|
size_t MinRepresentativeBitLength(size_t hashIdentifierLength, size_t digestLength) const
|
|
|
|
{CRYPTOPP_UNUSED(hashIdentifierLength); return 8*digestLength + 31;}
|
|
|
|
|
2016-09-10 08:57:48 +00:00
|
|
|
void ComputeMessageRepresentative(RandomNumberGenerator &rng,
|
2015-11-05 06:59:46 +00:00
|
|
|
const byte *recoverableMessage, size_t recoverableMessageLength,
|
|
|
|
HashTransformation &hash, HashIdentifier hashIdentifier, bool messageEmpty,
|
|
|
|
byte *representative, size_t representativeBitLength) const;
|
|
|
|
};
|
|
|
|
|
2017-12-25 02:07:18 +00:00
|
|
|
// EMSA2, for use with RWSS and RSA_ISO
|
|
|
|
// Only the following hash functions are supported by this signature standard:
|
|
|
|
// \dontinclude emsa2.h
|
|
|
|
// \skip EMSA2HashId can be instantiated
|
|
|
|
// \until end of list
|
|
|
|
|
|
|
|
/// \class P1363_EMSA2
|
|
|
|
/// \brief EMSA2/P1363 padding method
|
|
|
|
/// \details Use with RWSS and RSA_ISO
|
|
|
|
/// \since Crypto++ 5.0
|
2015-11-05 06:59:46 +00:00
|
|
|
struct P1363_EMSA2 : public SignatureStandard
|
|
|
|
{
|
|
|
|
typedef EMSA2Pad SignatureMessageEncodingMethod;
|
|
|
|
};
|
|
|
|
|
|
|
|
NAMESPACE_END
|
|
|
|
|
|
|
|
#endif
|