fips_rand.h 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146
  1. /* ====================================================================
  2. * Copyright (c) 2003 The OpenSSL Project. All rights reserved.
  3. *
  4. * Redistribution and use in source and binary forms, with or without
  5. * modification, are permitted provided that the following conditions
  6. * are met:
  7. *
  8. * 1. Redistributions of source code must retain the above copyright
  9. * notice, this list of conditions and the following disclaimer.
  10. *
  11. * 2. Redistributions in binary form must reproduce the above copyright
  12. * notice, this list of conditions and the following disclaimer in
  13. * the documentation and/or other materials provided with the
  14. * distribution.
  15. *
  16. * 3. All advertising materials mentioning features or use of this
  17. * software must display the following acknowledgment:
  18. * "This product includes software developed by the OpenSSL Project
  19. * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
  20. *
  21. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  22. * endorse or promote products derived from this software without
  23. * prior written permission. For written permission, please contact
  24. * openssl-core@openssl.org.
  25. *
  26. * 5. Products derived from this software may not be called "OpenSSL"
  27. * nor may "OpenSSL" appear in their names without prior written
  28. * permission of the OpenSSL Project.
  29. *
  30. * 6. Redistributions of any form whatsoever must retain the following
  31. * acknowledgment:
  32. * "This product includes software developed by the OpenSSL Project
  33. * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
  34. *
  35. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  36. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  37. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  38. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  39. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  40. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  41. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  42. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  43. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  44. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  45. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  46. * OF THE POSSIBILITY OF SUCH DAMAGE.
  47. *
  48. */
  49. #ifndef HEADER_FIPS_RAND_H
  50. #define HEADER_FIPS_RAND_H
  51. #include <openssl/aes.h>
  52. #include <openssl/evp.h>
  53. #include <openssl/hmac.h>
  54. #include <openssl/rand.h>
  55. #ifdef OPENSSL_FIPS
  56. #ifdef __cplusplus
  57. extern "C" {
  58. #endif
  59. int FIPS_x931_set_key(const unsigned char *key, int keylen);
  60. int FIPS_x931_seed(const void *buf, int num);
  61. int FIPS_x931_bytes(unsigned char *out, int outlen);
  62. int FIPS_x931_test_mode(void);
  63. void FIPS_x931_reset(void);
  64. int FIPS_x931_set_dt(unsigned char *dt);
  65. int FIPS_x931_status(void);
  66. const RAND_METHOD *FIPS_x931_method(void);
  67. typedef struct drbg_ctx_st DRBG_CTX;
  68. /* DRBG external flags */
  69. /* Flag for CTR mode only: use derivation function ctr_df */
  70. #define DRBG_FLAG_CTR_USE_DF 0x1
  71. /* PRNG is in test state */
  72. #define DRBG_FLAG_TEST 0x2
  73. DRBG_CTX *FIPS_drbg_new(int type, unsigned int flags);
  74. int FIPS_drbg_init(DRBG_CTX *dctx, int type, unsigned int flags);
  75. int FIPS_drbg_instantiate(DRBG_CTX *dctx,
  76. const unsigned char *pers, size_t perslen);
  77. int FIPS_drbg_reseed(DRBG_CTX *dctx, const unsigned char *adin, size_t adinlen);
  78. int FIPS_drbg_generate(DRBG_CTX *dctx, unsigned char *out, size_t outlen,
  79. int prediction_resistance,
  80. const unsigned char *adin, size_t adinlen);
  81. int FIPS_drbg_uninstantiate(DRBG_CTX *dctx);
  82. void FIPS_drbg_free(DRBG_CTX *dctx);
  83. int FIPS_drbg_set_callbacks(DRBG_CTX *dctx,
  84. size_t (*get_entropy)(DRBG_CTX *ctx, unsigned char **pout,
  85. int entropy, size_t min_len, size_t max_len),
  86. void (*cleanup_entropy)(DRBG_CTX *ctx, unsigned char *out, size_t olen),
  87. size_t entropy_blocklen,
  88. size_t (*get_nonce)(DRBG_CTX *ctx, unsigned char **pout,
  89. int entropy, size_t min_len, size_t max_len),
  90. void (*cleanup_nonce)(DRBG_CTX *ctx, unsigned char *out, size_t olen));
  91. int FIPS_drbg_set_rand_callbacks(DRBG_CTX *dctx,
  92. size_t (*get_adin)(DRBG_CTX *ctx, unsigned char **pout),
  93. void (*cleanup_adin)(DRBG_CTX *ctx, unsigned char *out, size_t olen),
  94. int (*rand_seed_cb)(DRBG_CTX *ctx, const void *buf, int num),
  95. int (*rand_add_cb)(DRBG_CTX *ctx,
  96. const void *buf, int num, double entropy));
  97. void *FIPS_drbg_get_app_data(DRBG_CTX *ctx);
  98. void FIPS_drbg_set_app_data(DRBG_CTX *ctx, void *app_data);
  99. size_t FIPS_drbg_get_blocklength(DRBG_CTX *dctx);
  100. int FIPS_drbg_get_strength(DRBG_CTX *dctx);
  101. void FIPS_drbg_set_check_interval(DRBG_CTX *dctx, int interval);
  102. void FIPS_drbg_set_reseed_interval(DRBG_CTX *dctx, int interval);
  103. int FIPS_drbg_health_check(DRBG_CTX *dctx);
  104. DRBG_CTX *FIPS_get_default_drbg(void);
  105. const RAND_METHOD *FIPS_drbg_method(void);
  106. int FIPS_rand_set_method(const RAND_METHOD *meth);
  107. const RAND_METHOD *FIPS_rand_get_method(void);
  108. void FIPS_rand_set_bits(int nbits);
  109. int FIPS_rand_strength(void);
  110. /* 1.0.0 compat functions */
  111. int FIPS_rand_set_key(const unsigned char *key, FIPS_RAND_SIZE_T keylen);
  112. int FIPS_rand_seed(const void *buf, FIPS_RAND_SIZE_T num);
  113. int FIPS_rand_bytes(unsigned char *out, FIPS_RAND_SIZE_T outlen);
  114. int FIPS_rand_test_mode(void);
  115. void FIPS_rand_reset(void);
  116. int FIPS_rand_set_dt(unsigned char *dt);
  117. int FIPS_rand_status(void);
  118. const RAND_METHOD *FIPS_rand_method(void);
  119. #ifdef __cplusplus
  120. }
  121. #endif
  122. #endif
  123. #endif