add support for elliptic curves over binary fields
[oweals/openssl.git] / crypto / ec / ec_curve.c
1 /* crypto/ec/ec_curve.c */
2 /* ====================================================================
3  * Copyright (c) 1998-2002 The OpenSSL Project.  All rights reserved.
4  *
5  * Redistribution and use in source and binary forms, with or without
6  * modification, are permitted provided that the following conditions
7  * are met:
8  *
9  * 1. Redistributions of source code must retain the above copyright
10  *    notice, this list of conditions and the following disclaimer. 
11  *
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in
14  *    the documentation and/or other materials provided with the
15  *    distribution.
16  *
17  * 3. All advertising materials mentioning features or use of this
18  *    software must display the following acknowledgment:
19  *    "This product includes software developed by the OpenSSL Project
20  *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
21  *
22  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
23  *    endorse or promote products derived from this software without
24  *    prior written permission. For written permission, please contact
25  *    openssl-core@openssl.org.
26  *
27  * 5. Products derived from this software may not be called "OpenSSL"
28  *    nor may "OpenSSL" appear in their names without prior written
29  *    permission of the OpenSSL Project.
30  *
31  * 6. Redistributions of any form whatsoever must retain the following
32  *    acknowledgment:
33  *    "This product includes software developed by the OpenSSL Project
34  *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
35  *
36  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
37  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
38  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
39  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
40  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
41  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
42  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
43  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
44  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
45  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
46  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
47  * OF THE POSSIBILITY OF SUCH DAMAGE.
48  * ====================================================================
49  *
50  * This product includes cryptographic software written by Eric Young
51  * (eay@cryptsoft.com).  This product includes software written by Tim
52  * Hudson (tjh@cryptsoft.com).
53  *
54  */
55 /* ====================================================================
56  * Copyright 2002 Sun Microsystems, Inc. ALL RIGHTS RESERVED.
57  *
58  * Portions of the attached software ("Contribution") are developed by 
59  * SUN MICROSYSTEMS, INC., and are contributed to the OpenSSL project.
60  *
61  * The Contribution is licensed pursuant to the OpenSSL open source
62  * license provided above.
63  *
64  * In addition, Sun covenants to all licensees who provide a reciprocal
65  * covenant with respect to their own patents if any, not to sue under
66  * current and future patent claims necessarily infringed by the making,
67  * using, practicing, selling, offering for sale and/or otherwise
68  * disposing of the Contribution as delivered hereunder 
69  * (or portions thereof), provided that such covenant shall not apply:
70  *  1) for code that a licensee deletes from the Contribution;
71  *  2) separates from the Contribution; or
72  *  3) for infringements caused by:
73  *       i) the modification of the Contribution or
74  *      ii) the combination of the Contribution with other software or
75  *          devices where such combination causes the infringement.
76  *
77  * The elliptic curve binary polynomial software is originally written by 
78  * Sheueling Chang Shantz and Douglas Stebila of Sun Microsystems Laboratories.
79  *
80  */
81
82 #include "ec_lcl.h"
83 #include <openssl/err.h>
84 #include <openssl/obj_mac.h>
85 #include <openssl/asn1.h>
86 #include <openssl/asn1t.h>
87
88 /* #define _EC_GROUP_EXAMPLE_PRIME_CURVE        \
89  *              "the prime number p", "a", "b", "the compressed base point", "y-bit", "order", "cofactor"
90  */
91 /* the nist prime curves */
92 #define _EC_GROUP_NIST_PRIME_192        \
93                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",\
94                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",\
95                 "64210519E59C80E70FA7E9AB72243049FEB8DEECC146B9B1",\
96                 "188DA80EB03090F67CBF20EB43A18800F4FF0AFD82FF1012",1,\
97                 "FFFFFFFFFFFFFFFFFFFFFFFF99DEF836146BC9B1B4D22831",1
98 #define _EC_GROUP_NIST_PRIME_224        \
99                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001",\
100                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE",\
101                 "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4",\
102                 "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21",0,\
103                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D",1
104 #define _EC_GROUP_NIST_PRIME_384        \
105                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFF0000000000000000FFFFFFFF",\
106                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFF0000000000000000FFFFFFFC",\
107                 "B3312FA7E23EE7E4988E056BE3F82D19181D9C6EFE8141120314088F5013875AC656398D8A2ED19D2A85C8EDD3EC2AEF",\
108                 "AA87CA22BE8B05378EB1C71EF320AD746E1D3B628BA79B9859F741E082542A385502F25DBF55296C3A545E3872760AB7",1,\
109                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC7634D81F4372DDF581A0DB248B0A77AECEC196ACCC52973",1
110 #define _EC_GROUP_NIST_PRIME_521        \
111                 "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"\
112                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF",\
113                 "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"\
114                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC",\
115                 "051953EB9618E1C9A1F929A21A0B68540EEA2DA725B99B"\
116                 "315F3B8B489918EF109E156193951EC7E937B1652C0BD3BB1BF073573DF883D2C34F1EF451FD46B503F00",\
117                 "C6858E06B70404E9CD9E3ECB662395B4429C648139053F"\
118                 "B521F828AF606B4D3DBAA14B5E77EFE75928FE1DC127A2FFA8DE3348B3C1856A429BF97E7E31C2E5BD66",0,\
119                 "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"\
120                 "FFFFFFFFFFFFFFFFFFFFA51868783BF2F966B7FCC0148F709A5D03BB5C9B8899C47AEBB6FB71E91386409",1
121 /* the x9.62 prime curves (minus the nist prime curves) */
122 #define _EC_GROUP_X9_62_PRIME_192V2     \
123                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",\
124                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",\
125                 "CC22D6DFB95C6B25E49C0D6364A4E5980C393AA21668D953",\
126                 "EEA2BAE7E1497842F2DE7769CFE9C989C072AD696F48034A",1,\
127                 "FFFFFFFFFFFFFFFFFFFFFFFE5FB1A724DC80418648D8DD31",1
128 #define _EC_GROUP_X9_62_PRIME_192V3     \
129                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",\
130                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",\
131                 "22123DC2395A05CAA7423DAECCC94760A7D462256BD56916",\
132                 "7D29778100C65A1DA1783716588DCE2B8B4AEE8E228F1896",0,\
133                 "FFFFFFFFFFFFFFFFFFFFFFFF7A62D031C83F4294F640EC13",1
134 #define _EC_GROUP_X9_62_PRIME_239V1     \
135                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",\
136                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",\
137                 "6B016C3BDCF18941D0D654921475CA71A9DB2FB27D1D37796185C2942C0A",\
138                 "0FFA963CDCA8816CCC33B8642BEDF905C3D358573D3F27FBBD3B3CB9AAAF",0,\
139                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF9E5E9A9F5D9071FBD1522688909D0B",1
140 #define _EC_GROUP_X9_62_PRIME_239V2     \
141                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",\
142                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",\
143                 "617FAB6832576CBBFED50D99F0249C3FEE58B94BA0038C7AE84C8C832F2C",\
144                 "38AF09D98727705120C921BB5E9E26296A3CDCF2F35757A0EAFD87B830E7",0,\
145                 "7FFFFFFFFFFFFFFFFFFFFFFF800000CFA7E8594377D414C03821BC582063",1
146 #define _EC_GROUP_X9_62_PRIME_239V3     \
147                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",\
148                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",\
149                 "255705FA2A306654B1F4CB03D6A750A30C250102D4988717D9BA15AB6D3E",\
150                 "6768AE8E18BB92CFCF005C949AA2C6D94853D0E660BBF854B1C9505FE95A",1,\
151                 "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF975DEB41B3A6057C3C432146526551",1
152 #define _EC_GROUP_X9_62_PRIME_256V1     \
153                 "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFF",\
154                 "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFC",\
155                 "5AC635D8AA3A93E7B3EBBD55769886BC651D06B0CC53B0F63BCE3C3E27D2604B",\
156                 "6B17D1F2E12C4247F8BCE6E563A440F277037D812DEB33A0F4A13945D898C296",1,\
157                 "FFFFFFFF00000000FFFFFFFFFFFFFFFFBCE6FAADA7179E84F3B9CAC2FC632551",1
158 /* the secg prime curves (minus the nist and x9.62 prime curves) */
159 #define _EC_GROUP_SECG_PRIME_112R1      \
160                 "DB7C2ABF62E35E668076BEAD208B",\
161                 "DB7C2ABF62E35E668076BEAD2088",\
162                 "659EF8BA043916EEDE8911702B22",\
163                 "09487239995A5EE76B55F9C2F098",0,\
164                 "DB7C2ABF62E35E7628DFAC6561C5",1
165 #define _EC_GROUP_SECG_PRIME_112R2      \
166                 "DB7C2ABF62E35E668076BEAD208B",\
167                 "6127C24C05F38A0AAAF65C0EF02C",\
168                 "51DEF1815DB5ED74FCC34C85D709",\
169                 "4BA30AB5E892B4E1649DD0928643",1,\
170                 "36DF0AAFD8B8D7597CA10520D04B",4
171 #define _EC_GROUP_SECG_PRIME_128R1      \
172                 "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF",\
173                 "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFC",\
174                 "E87579C11079F43DD824993C2CEE5ED3",\
175                 "161FF7528B899B2D0C28607CA52C5B86",1,\
176                 "FFFFFFFE0000000075A30D1B9038A115",1
177 #define _EC_GROUP_SECG_PRIME_128R2      \
178                 "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF",\
179                 "D6031998D1B3BBFEBF59CC9BBFF9AEE1",\
180                 "5EEEFCA380D02919DC2C6558BB6D8A5D",\
181                 "7B6AA5D85E572983E6FB32A7CDEBC140",0,\
182                 "3FFFFFFF7FFFFFFFBE0024720613B5A3",4
183 #define _EC_GROUP_SECG_PRIME_160K1      \
184                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73",\
185                 "0",\
186                 "7",\
187                 "3B4C382CE37AA192A4019E763036F4F5DD4D7EBB",0,\
188                 "0100000000000000000001B8FA16DFAB9ACA16B6B3",1
189 #define _EC_GROUP_SECG_PRIME_160R1      \
190                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFF",\
191                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFC",\
192                 "1C97BEFC54BD7A8B65ACF89F81D4D4ADC565FA45",\
193                 "4A96B5688EF573284664698968C38BB913CBFC82",0,\
194                 "0100000000000000000001F4C8F927AED3CA752257",1
195 #define _EC_GROUP_SECG_PRIME_160R2      \
196                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73",\
197                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC70",\
198                 "B4E134D3FB59EB8BAB57274904664D5AF50388BA",\
199                 "52DCB034293A117E1F4FF11B30F7199D3144CE6D",0,\
200                 "0100000000000000000000351EE786A818F3A1A16B",1
201 #define _EC_GROUP_SECG_PRIME_192K1      \
202                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFEE37",\
203                 "0",\
204                 "3",\
205                 "DB4FF10EC057E9AE26B07D0280B7F4341DA5D1B1EAE06C7D",1,\
206                 "FFFFFFFFFFFFFFFFFFFFFFFE26F2FC170F69466A74DEFD8D",1
207 #define _EC_GROUP_SECG_PRIME_224K1      \
208                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFE56D",\
209                 "0",\
210                 "5",\
211                 "A1455B334DF099DF30FC28A169A467E9E47075A90F7E650EB6B7A45C",1,\
212                 "010000000000000000000000000001DCE8D2EC6184CAF0A971769FB1F7",1
213 #define _EC_GROUP_SECG_PRIME_256K1      \
214                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFC2F",\
215                 "0",\
216                 "7",\
217                 "79BE667EF9DCBBAC55A06295CE870B07029BFCDB2DCE28D959F2815B16F81798",0,\
218                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEBAAEDCE6AF48A03BBFD25E8CD0364141",1
219 /* some wap/wtls curves */
220 #define _EC_GROUP_WTLS_8        \
221                 "FFFFFFFFFFFFFFFFFFFFFFFFFDE7",\
222                 "0",\
223                 "3",\
224                 "1",0,\
225                 "0100000000000001ECEA551AD837E9",1
226 #define _EC_GROUP_WTLS_9        \
227                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC808F",\
228                 "0",\
229                 "3",\
230                 "1",0,\
231                 "0100000000000000000001CDC98AE0E2DE574ABF33",1
232 #define _EC_GROUP_WTLS_12       \
233                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001", \
234                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE", \
235                 "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4", \
236                 "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21", 0, \
237                 "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D", 1
238
239 /* #define _EC_GROUP_EXAMPLE_CHAR2_CURVE        \
240  *              "prime polynomial", "a", "b", "base point x-coord", "base point y-coord", "order", "cofactor"
241  */
242 #define _EC_GROUP_SECG_CHAR2_113R1 \
243                 "020000000000000000000000000201", \
244                 "003088250CA6E7C7FE649CE85820F7", \
245                 "00E8BEE4D3E2260744188BE0E9C723", \
246                 "009D73616F35F4AB1407D73562C10F", \
247                 "00A52830277958EE84D1315ED31886", \
248                 "0100000000000000D9CCEC8A39E56F", 2
249 #define _EC_GROUP_SECG_CHAR2_113R2 \
250                 "020000000000000000000000000201", \
251                 "00689918DBEC7E5A0DD6DFC0AA55C7", \
252                 "0095E9A9EC9B297BD4BF36E059184F", \
253                 "01A57A6A7B26CA5EF52FCDB8164797", \
254                 "00B3ADC94ED1FE674C06E695BABA1D", \
255                 "010000000000000108789B2496AF93", 2
256 #define _EC_GROUP_SECG_CHAR2_131R1 \
257                 "080000000000000000000000000000010D", \
258                 "07A11B09A76B562144418FF3FF8C2570B8", \
259                 "0217C05610884B63B9C6C7291678F9D341", \
260                 "0081BAF91FDF9833C40F9C181343638399", \
261                 "078C6E7EA38C001F73C8134B1B4EF9E150", \
262                 "0400000000000000023123953A9464B54D", 2
263 #define _EC_GROUP_SECG_CHAR2_131R2 \
264                 "080000000000000000000000000000010D", \
265                 "03E5A88919D7CAFCBF415F07C2176573B2", \
266                 "04B8266A46C55657AC734CE38F018F2192", \
267                 "0356DCD8F2F95031AD652D23951BB366A8", \
268                 "0648F06D867940A5366D9E265DE9EB240F", \
269                 "0400000000000000016954A233049BA98F", 2
270 #define _EC_GROUP_SECG_CHAR2_163K1 \
271                 "0800000000000000000000000000000000000000C9", \
272                 "1", \
273                 "1", \
274                 "02FE13C0537BBC11ACAA07D793DE4E6D5E5C94EEE8", \
275                 "0289070FB05D38FF58321F2E800536D538CCDAA3D9", \
276                 "04000000000000000000020108A2E0CC0D99F8A5EF", 2
277 #define _EC_GROUP_SECG_CHAR2_163R1 \
278                 "0800000000000000000000000000000000000000C9", \
279                 "07B6882CAAEFA84F9554FF8428BD88E246D2782AE2", \
280                 "0713612DCDDCB40AAB946BDA29CA91F73AF958AFD9", \
281                 "0369979697AB43897789566789567F787A7876A654", \
282                 "00435EDB42EFAFB2989D51FEFCE3C80988F41FF883", \
283                 "03FFFFFFFFFFFFFFFFFFFF48AAB689C29CA710279B", 2
284 #define _EC_GROUP_SECG_CHAR2_163R2 \
285                 "0800000000000000000000000000000000000000C9", \
286                 "1", \
287                 "020A601907B8C953CA1481EB10512F78744A3205FD", \
288                 "03F0EBA16286A2D57EA0991168D4994637E8343E36", \
289                 "00D51FBC6C71A0094FA2CDD545B11C5C0C797324F1", \
290                 "040000000000000000000292FE77E70C12A4234C33", 2
291 #define _EC_GROUP_SECG_CHAR2_193R1 \
292                 "02000000000000000000000000000000000000000000008001", \
293                 "0017858FEB7A98975169E171F77B4087DE098AC8A911DF7B01", \
294                 "00FDFB49BFE6C3A89FACADAA7A1E5BBC7CC1C2E5D831478814", \
295                 "01F481BC5F0FF84A74AD6CDF6FDEF4BF6179625372D8C0C5E1", \
296                 "0025E399F2903712CCF3EA9E3A1AD17FB0B3201B6AF7CE1B05", \
297                 "01000000000000000000000000C7F34A778F443ACC920EBA49", 2
298 #define _EC_GROUP_SECG_CHAR2_193R2 \
299                 "02000000000000000000000000000000000000000000008001", \
300                 "0163F35A5137C2CE3EA6ED8667190B0BC43ECD69977702709B", \
301                 "00C9BB9E8927D4D64C377E2AB2856A5B16E3EFB7F61D4316AE", \
302                 "00D9B67D192E0367C803F39E1A7E82CA14A651350AAE617E8F", \
303                 "01CE94335607C304AC29E7DEFBD9CA01F596F927224CDECF6C", \
304                 "010000000000000000000000015AAB561B005413CCD4EE99D5", 2
305 #define _EC_GROUP_SECG_CHAR2_233K1 \
306                 "020000000000000000000000000000000000000004000000000000000001", \
307                 "0", \
308                 "1", \
309                 "017232BA853A7E731AF129F22FF4149563A419C26BF50A4C9D6EEFAD6126", \
310                 "01DB537DECE819B7F70F555A67C427A8CD9BF18AEB9B56E0C11056FAE6A3", \
311                 "008000000000000000000000000000069D5BB915BCD46EFB1AD5F173ABDF", 4
312 #define _EC_GROUP_SECG_CHAR2_233R1 \
313                 "020000000000000000000000000000000000000004000000000000000001", \
314                 "000000000000000000000000000000000000000000000000000000000001", \
315                 "0066647EDE6C332C7F8C0923BB58213B333B20E9CE4281FE115F7D8F90AD", \
316                 "00FAC9DFCBAC8313BB2139F1BB755FEF65BC391F8B36F8F8EB7371FD558B", \
317                 "01006A08A41903350678E58528BEBF8A0BEFF867A7CA36716F7E01F81052", \
318                 "01000000000000000000000000000013E974E72F8A6922031D2603CFE0D7", 2
319 #define _EC_GROUP_SECG_CHAR2_239K1 \
320                 "800000000000000000004000000000000000000000000000000000000001", \
321                 "0", \
322                 "1", \
323                 "29A0B6A887A983E9730988A68727A8B2D126C44CC2CC7B2A6555193035DC", \
324                 "76310804F12E549BDB011C103089E73510ACB275FC312A5DC6B76553F0CA", \
325                 "2000000000000000000000000000005A79FEC67CB6E91F1C1DA800E478A5", 4
326 #define _EC_GROUP_SECG_CHAR2_283K1 \
327                 "0800000000000000000000000000000000000000000000000000000000000000000010A1", \
328                 "0", \
329                 "1", \
330                 "0503213F78CA44883F1A3B8162F188E553CD265F23C1567A16876913B0C2AC2458492836", \
331                 "01CCDA380F1C9E318D90F95D07E5426FE87E45C0E8184698E45962364E34116177DD2259", \
332                 "01FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE9AE2ED07577265DFF7F94451E061E163C61", 4
333 #define _EC_GROUP_SECG_CHAR2_283R1 \
334                 "0800000000000000000000000000000000000000000000000000000000000000000010A1", \
335                 "000000000000000000000000000000000000000000000000000000000000000000000001", \
336                 "027B680AC8B8596DA5A4AF8A19A0303FCA97FD7645309FA2A581485AF6263E313B79A2F5", \
337                 "05F939258DB7DD90E1934F8C70B0DFEC2EED25B8557EAC9C80E2E198F8CDBECD86B12053", \
338                 "03676854FE24141CB98FE6D4B20D02B4516FF702350EDDB0826779C813F0DF45BE8112F4", \
339                 "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEF90399660FC938A90165B042A7CEFADB307", 2
340 #define _EC_GROUP_SECG_CHAR2_409K1 \
341                 "02000000000000000000000000000000000000000000000000000000000000000000000000000000008000000000000000000001", \
342                 "0", \
343                 "1", \
344                 "0060F05F658F49C1AD3AB1890F7184210EFD0987E307C84C27ACCFB8F9F67CC2C460189EB5AAAA62EE222EB1B35540CFE9023746", \
345                 "01E369050B7C4E42ACBA1DACBF04299C3460782F918EA427E6325165E9EA10E3DA5F6C42E9C55215AA9CA27A5863EC48D8E0286B", \
346                 "007FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE5F83B2D4EA20400EC4557D5ED3E3E7CA5B4B5C83B8E01E5FCF", 4
347
348 #define _EC_GROUP_SECG_CHAR2_409R1 \
349                 "02000000000000000000000000000000000000000000000000000000000000000000000000000000008000000000000000000001", \
350                 "00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000001", \
351                 "0021A5C2C8EE9FEB5C4B9A753B7B476B7FD6422EF1F3DD674761FA99D6AC27C8A9A197B272822F6CD57A55AA4F50AE317B13545F", \
352                 "015D4860D088DDB3496B0C6064756260441CDE4AF1771D4DB01FFE5B34E59703DC255A868A1180515603AEAB60794E54BB7996A7", \
353                 "0061B1CFAB6BE5F32BBFA78324ED106A7636B9C5A7BD198D0158AA4F5488D08F38514F1FDF4B4F40D2181B3681C364BA0273C706", \
354                 "010000000000000000000000000000000000000000000000000001E2AAD6A612F33307BE5FA47C3C9E052F838164CD37D9A21173", 2
355 #define _EC_GROUP_SECG_CHAR2_571K1 \
356                 "80000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000425", \
357                 "0", \
358                 "1", \
359                 "026EB7A859923FBC82189631F8103FE4AC9CA2970012D5D46024804801841CA44370958493B205E647DA304DB4CEB08CBBD1BA39494776FB988B47174DCA88C7E2945283A01C8972", \
360                 "0349DC807F4FBF374F4AEADE3BCA95314DD58CEC9F307A54FFC61EFC006D8A2C9D4979C0AC44AEA74FBEBBB9F772AEDCB620B01A7BA7AF1B320430C8591984F601CD4C143EF1C7A3", \
361                 "020000000000000000000000000000000000000000000000000000000000000000000000131850E1F19A63E4B391A8DB917F4138B630D84BE5D639381E91DEB45CFE778F637C1001", 4
362 #define _EC_GROUP_SECG_CHAR2_571R1 \
363                 "80000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000425", \
364                 "000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000001", \
365                 "02F40E7E2221F295DE297117B7F3D62F5C6A97FFCB8CEFF1CD6BA8CE4A9A18AD84FFABBD8EFA59332BE7AD6756A66E294AFD185A78FF12AA520E4DE739BACA0C7FFEFF7F2955727A", \
366                 "0303001D34B856296C16C0D40D3CD7750A93D1D2955FA80AA5F40FC8DB7B2ABDBDE53950F4C0D293CDD711A35B67FB1499AE60038614F1394ABFA3B4C850D927E1E7769C8EEC2D19", \
367                 "037BF27342DA639B6DCCFFFEB73D69D78C6C27A6009CBBCA1980F8533921E8A684423E43BAB08A576291AF8F461BB2A8B3531D2F0485C19B16E2F1516E23DD3C1A4827AF1B8AC15B", \
368                 "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE661CE18FF55987308059B186823851EC7DD9CA1161DE93D5174D66E8382E9BB2FE84E47", 2
369
370 #define _EC_GROUP_X9_62_CHAR2_163V1 \
371                 "0800000000000000000000000000000000000000C9", \
372                 "072546B5435234A422E0789675F432C89435DE5242", \
373                 "00C9517D06D5240D3CFF38C74B20B6CD4D6F9DD4D9", \
374                 "07AF69989546103D79329FCC3D74880F33BBE803CB", \
375                 "0190C402D65BCC2B845337BC52352774E879B94B0D", \
376                 "0400000000000000000001E60FC8821CC74DAEAFC1", 2
377 #define _EC_GROUP_X9_62_CHAR2_163V2 \
378                 "0800000000000000000000000000000000000000C9", \
379                 "0108B39E77C4B108BED981ED0E890E117C511CF072", \
380                 "0667ACEB38AF4E488C407433FFAE4F1C811638DF20", \
381                 "0024266E4EB5106D0A964D92C4860E2671DB9B6CC5", \
382                 "01F64F1C0280E19A062003DBAECEAEDEC1CE141D41", \
383                 "03FFFFFFFFFFFFFFFFFFFDF64DE1151ADBB78F10A7", 2
384 #define _EC_GROUP_X9_62_CHAR2_163V3 \
385                 "0800000000000000000000000000000000000000C9", \
386                 "07A526C63D3E25A256A007699F5447E32AE456B50E", \
387                 "03F7061798EB99E238FD6F1BF95B48FEEB4854252B", \
388                 "02F9F87B7C574D0BDECF8A22E6524775F98CDEBDCB", \
389                 "01D42417D750A363F61E455807D047059CA039ACFE", \
390                 "03FFFFFFFFFFFFFFFFFFFE1AEE140F110AFF961309", 2
391 #define _EC_GROUP_X9_62_CHAR2_176V1 \
392                 "0100000000000000000000000000000000080000000007", \
393                 "E4E6DB2995065C407D9D39B8D0967B96704BA8E9C90B", \
394                 "5DDA470ABE6414DE8EC133AE28E9BBD7FCEC0AE0FFF2", \
395                 "8D16C2866798B600F9F08BB4A8E860F3298CE04A5798", \
396                 "6FA4539C2DADDDD6BAB5167D61B436E1D92BB16A562C", \
397                 "00010092537397ECA4F6145799D62B0A19CE06FE26AD", 0xFF6E
398 #define _EC_GROUP_X9_62_CHAR2_191V1 \
399                 "800000000000000000000000000000000000000000000201", \
400                 "2866537B676752636A68F56554E12640276B649EF7526267", \
401                 "2E45EF571F00786F67B0081B9495A3D95462F5DE0AA185EC", \
402                 "36B3DAF8A23206F9C4F299D7B21A9C369137F2C84AE1AA0D", \
403                 "765BE73433B3F95E332932E70EA245CA2418EA0EF98018FB", \
404                 "40000000000000000000000004A20E90C39067C893BBB9A5", 2
405 #define _EC_GROUP_X9_62_CHAR2_191V2 \
406                 "800000000000000000000000000000000000000000000201", \
407                 "401028774D7777C7B7666D1366EA432071274F89FF01E718", \
408                 "0620048D28BCBD03B6249C99182B7C8CD19700C362C46A01", \
409                 "3809B2B7CC1B28CC5A87926AAD83FD28789E81E2C9E3BF10", \
410                 "17434386626D14F3DBF01760D9213A3E1CF37AEC437D668A", \
411                 "20000000000000000000000050508CB89F652824E06B8173", 4
412 #define _EC_GROUP_X9_62_CHAR2_191V3 \
413                 "800000000000000000000000000000000000000000000201", \
414                 "6C01074756099122221056911C77D77E77A777E7E7E77FCB", \
415                 "71FE1AF926CF847989EFEF8DB459F66394D90F32AD3F15E8", \
416                 "375D4CE24FDE434489DE8746E71786015009E66E38A926DD", \
417                 "545A39176196575D985999366E6AD34CE0A77CD7127B06BE", \
418                 "155555555555555555555555610C0B196812BFB6288A3EA3", 6
419 #define _EC_GROUP_X9_62_CHAR2_208W1 \
420                 "010000000000000000000000000000000800000000000000000007", \
421                 "0000000000000000000000000000000000000000000000000000", \
422                 "C8619ED45A62E6212E1160349E2BFA844439FAFC2A3FD1638F9E", \
423                 "89FDFBE4ABE193DF9559ECF07AC0CE78554E2784EB8C1ED1A57A", \
424                 "0F55B51A06E78E9AC38A035FF520D8B01781BEB1A6BB08617DE3", \
425                 "000101BAF95C9723C57B6C21DA2EFF2D5ED588BDD5717E212F9D", 0xFE48
426 #define _EC_GROUP_X9_62_CHAR2_239V1 \
427                 "800000000000000000000000000000000000000000000000001000000001", \
428                 "32010857077C5431123A46B808906756F543423E8D27877578125778AC76", \
429                 "790408F2EEDAF392B012EDEFB3392F30F4327C0CA3F31FC383C422AA8C16", \
430                 "57927098FA932E7C0A96D3FD5B706EF7E5F5C156E16B7E7C86038552E91D", \
431                 "61D8EE5077C33FECF6F1A16B268DE469C3C7744EA9A971649FC7A9616305", \
432                 "2000000000000000000000000000000F4D42FFE1492A4993F1CAD666E447", 4
433 #define _EC_GROUP_X9_62_CHAR2_239V2 \
434                 "800000000000000000000000000000000000000000000000001000000001", \
435                 "4230017757A767FAE42398569B746325D45313AF0766266479B75654E65F", \
436                 "5037EA654196CFF0CD82B2C14A2FCF2E3FF8775285B545722F03EACDB74B", \
437                 "28F9D04E900069C8DC47A08534FE76D2B900B7D7EF31F5709F200C4CA205", \
438                 "5667334C45AFF3B5A03BAD9DD75E2C71A99362567D5453F7FA6E227EC833", \
439                 "1555555555555555555555555555553C6F2885259C31E3FCDF154624522D", 6
440 #define _EC_GROUP_X9_62_CHAR2_239V3 \
441                 "800000000000000000000000000000000000000000000000001000000001", \
442                 "01238774666A67766D6676F778E676B66999176666E687666D8766C66A9F", \
443                 "6A941977BA9F6A435199ACFC51067ED587F519C5ECB541B8E44111DE1D40", \
444                 "70F6E9D04D289C4E89913CE3530BFDE903977D42B146D539BF1BDE4E9C92", \
445                 "2E5A0EAF6E5E1305B9004DCE5C0ED7FE59A35608F33837C816D80B79F461", \
446                 "0CCCCCCCCCCCCCCCCCCCCCCCCCCCCCAC4912D2D9DF903EF9888B8A0E4CFF", 0xA
447 #define _EC_GROUP_X9_62_CHAR2_272W1 \
448                 "010000000000000000000000000000000000000000000000000000010000000000000B", \
449                 "91A091F03B5FBA4AB2CCF49C4EDD220FB028712D42BE752B2C40094DBACDB586FB20", \
450                 "7167EFC92BB2E3CE7C8AAAFF34E12A9C557003D7C73A6FAF003F99F6CC8482E540F7", \
451                 "6108BABB2CEEBCF787058A056CBE0CFE622D7723A289E08A07AE13EF0D10D171DD8D", \
452                 "10C7695716851EEF6BA7F6872E6142FBD241B830FF5EFCACECCAB05E02005DDE9D23", \
453                 "000100FAF51354E0E39E4892DF6E319C72C8161603FA45AA7B998A167B8F1E629521", 0xFF06
454 #define _EC_GROUP_X9_62_CHAR2_304W1 \
455                 "010000000000000000000000000000000000000000000000000000000000000000000000000807", \
456                 "FD0D693149A118F651E6DCE6802085377E5F882D1B510B44160074C1288078365A0396C8E681", \
457                 "BDDB97E555A50A908E43B01C798EA5DAA6788F1EA2794EFCF57166B8C14039601E55827340BE", \
458                 "197B07845E9BE2D96ADB0F5F3C7F2CFFBD7A3EB8B6FEC35C7FD67F26DDF6285A644F740A2614", \
459                 "E19FBEB76E0DA171517ECF401B50289BF014103288527A9B416A105E80260B549FDC1B92C03B", \
460                 "000101D556572AABAC800101D556572AABAC8001022D5C91DD173F8FB561DA6899164443051D", 0xFE2E
461 #define _EC_GROUP_X9_62_CHAR2_359V1 \
462                 "800000000000000000000000000000000000000000000000000000000000000000000000100000000000000001", \
463                 "5667676A654B20754F356EA92017D946567C46675556F19556A04616B567D223A5E05656FB549016A96656A557", \
464                 "2472E2D0197C49363F1FE7F5B6DB075D52B6947D135D8CA445805D39BC345626089687742B6329E70680231988", \
465                 "3C258EF3047767E7EDE0F1FDAA79DAEE3841366A132E163ACED4ED2401DF9C6BDCDE98E8E707C07A2239B1B097", \
466                 "53D7E08529547048121E9C95F3791DD804963948F34FAE7BF44EA82365DC7868FE57E4AE2DE211305A407104BD", \
467                 "01AF286BCA1AF286BCA1AF286BCA1AF286BCA1AF286BC9FB8F6B85C556892C20A7EB964FE7719E74F490758D3B", 0x4C
468 #define _EC_GROUP_X9_62_CHAR2_368W1 \
469                 "0100000000000000000000000000000000000000000000000000000000000000000000002000000000000000000007", \
470                 "E0D2EE25095206F5E2A4F9ED229F1F256E79A0E2B455970D8D0D865BD94778C576D62F0AB7519CCD2A1A906AE30D", \
471                 "FC1217D4320A90452C760A58EDCD30C8DD069B3C34453837A34ED50CB54917E1C2112D84D164F444F8F74786046A", \
472                 "1085E2755381DCCCE3C1557AFA10C2F0C0C2825646C5B34A394CBCFA8BC16B22E7E789E927BE216F02E1FB136A5F", \
473                 "7B3EB1BDDCBA62D5D8B2059B525797FC73822C59059C623A45FF3843CEE8F87CD1855ADAA81E2A0750B80FDA2310", \
474                 "00010090512DA9AF72B08349D98A5DD4C7B0532ECA51CE03E2D10F3B7AC579BD87E909AE40A6F131E9CFCE5BD967", 0xFF70
475 #define _EC_GROUP_X9_62_CHAR2_431R1 \
476                 "800000000000000000000000000000000000000000000000000000000000000000000000000001000000000000000000000000000001", \
477                 "1A827EF00DD6FC0E234CAF046C6A5D8A85395B236CC4AD2CF32A0CADBDC9DDF620B0EB9906D0957F6C6FEACD615468DF104DE296CD8F", \
478                 "10D9B4A3D9047D8B154359ABFB1B7F5485B04CEB868237DDC9DEDA982A679A5A919B626D4E50A8DD731B107A9962381FB5D807BF2618", \
479                 "120FC05D3C67A99DE161D2F4092622FECA701BE4F50F4758714E8A87BBF2A658EF8C21E7C5EFE965361F6C2999C0C247B0DBD70CE6B7", \
480                 "20D0AF8903A96F8D5FA2C255745D3C451B302C9346D9B7E485E7BCE41F6B591F3E8F6ADDCBB0BC4C2F947A7DE1A89B625D6A598B3760", \
481                 "0340340340340340340340340340340340340340340340340340340323C313FAB50589703B5EC68D3587FEC60D161CC149C1AD4A91", 0x2760
482
483 #define _EC_GROUP_WTLS_1 \
484                 "020000000000000000000000000201", \
485                 "1", \
486                 "1", \
487                 "01667979A40BA497E5D5C270780617", \
488                 "00F44B4AF1ECC2630E08785CEBCC15", \
489                 "00FFFFFFFFFFFFFFFDBF91AF6DEA73", 2
490
491 static EC_GROUP *ec_group_new_GFp_from_hex(const char *prime_in,
492             const char *a_in, const char *b_in,
493             const char *x_in, const int y_bit, const char *order_in, const BN_ULONG cofac_in)
494         {
495         EC_GROUP *group=NULL;
496         EC_POINT *P=NULL;
497         BN_CTX   *ctx=NULL;
498         BIGNUM   *prime=NULL,*a=NULL,*b=NULL,*x=NULL,*order=NULL;
499         int      ok=0;
500
501         if ((ctx = BN_CTX_new()) == NULL) goto bn_err;
502         if ((prime = BN_new()) == NULL || (a = BN_new()) == NULL || (b = BN_new()) == NULL ||
503                 (x = BN_new()) == NULL || (order = BN_new()) == NULL) goto bn_err;
504         
505         if (!BN_hex2bn(&prime, prime_in)) goto bn_err;
506         if (!BN_hex2bn(&a, a_in)) goto bn_err;
507         if (!BN_hex2bn(&b, b_in)) goto bn_err;
508
509         if ((group = EC_GROUP_new_curve_GFp(prime, a, b, ctx)) == NULL) goto err;
510         if ((P = EC_POINT_new(group)) == NULL) goto err;
511         
512         if (!BN_hex2bn(&x, x_in)) goto bn_err;
513         if (!EC_POINT_set_compressed_coordinates_GFp(group, P, x, y_bit, ctx)) goto err;
514         if (!BN_hex2bn(&order, order_in)) goto bn_err;
515         if (!BN_set_word(x, cofac_in)) goto bn_err;
516         if (!EC_GROUP_set_generator(group, P, order, x)) goto err;
517         ok=1;
518 bn_err:
519         if (!ok)
520                 ECerr(EC_F_EC_GROUP_NEW_GFP_FROM_HEX, ERR_R_BN_LIB);
521 err:
522         if (!ok)
523                 {
524                 EC_GROUP_free(group);
525                 group = NULL;
526                 }
527         if (P)     EC_POINT_free(P);
528         if (ctx)   BN_CTX_free(ctx);
529         if (prime) BN_free(prime);
530         if (a)     BN_free(a);
531         if (b)     BN_free(b);
532         if (order) BN_free(order);
533         if (x)     BN_free(x);
534         return(group);
535         }
536
537 static EC_GROUP *ec_group_new_GF2m_from_hex(const char *prime_in,
538             const char *a_in, const char *b_in,
539             const char *x_in, const char *y_in, const char *order_in, const BN_ULONG cofac_in)
540         {
541         EC_GROUP *group=NULL;
542         EC_POINT *P=NULL;
543         BN_CTX   *ctx=NULL;
544         BIGNUM   *prime=NULL,*a=NULL,*b=NULL,*x=NULL,*y=NULL,*order=NULL;
545         int      ok=0;
546
547         if ((ctx = BN_CTX_new()) == NULL) goto bn_err;
548         if ((prime = BN_new()) == NULL || (a = BN_new()) == NULL || (b = BN_new()) == NULL ||
549                 (x = BN_new()) == NULL || (y = BN_new()) == NULL || (order = BN_new()) == NULL) goto bn_err;
550         
551         if (!BN_hex2bn(&prime, prime_in)) goto bn_err;
552         if (!BN_hex2bn(&a, a_in)) goto bn_err;
553         if (!BN_hex2bn(&b, b_in)) goto bn_err;
554
555         if ((group = EC_GROUP_new_curve_GF2m(prime, a, b, ctx)) == NULL) goto err;
556         if ((P = EC_POINT_new(group)) == NULL) goto err;
557         
558         if (!BN_hex2bn(&x, x_in)) goto bn_err;
559         if (!BN_hex2bn(&y, y_in)) goto bn_err;
560         if (!EC_POINT_set_affine_coordinates_GF2m(group, P, x, y, ctx)) goto err;
561         if (!BN_hex2bn(&order, order_in)) goto bn_err;
562         if (!BN_set_word(x, cofac_in)) goto bn_err;
563         if (!EC_GROUP_set_generator(group, P, order, x)) goto err;
564         ok=1;
565 bn_err:
566         if (!ok)
567                 ECerr(EC_F_EC_GROUP_NEW_GF2M_FROM_HEX, ERR_R_BN_LIB);
568 err:
569         if (!ok)
570                 {
571                 EC_GROUP_free(group);
572                 group = NULL;
573                 }
574         if (P)     EC_POINT_free(P);
575         if (ctx)   BN_CTX_free(ctx);
576         if (prime) BN_free(prime);
577         if (a)     BN_free(a);
578         if (b)     BN_free(b);
579         if (order) BN_free(order);
580         if (x)     BN_free(x);
581         if (y)     BN_free(y);
582         return(group);
583         }
584
585 EC_GROUP *EC_GROUP_new_by_name(int name)
586         {
587         EC_GROUP *ret = NULL;
588         switch (name)
589                 {
590         case EC_GROUP_NO_CURVE:
591                 return NULL;
592
593         /* prime field curves */        
594         /* prime field curves of degree 112 */
595         case EC_GROUP_SECG_PRIME_112R1:
596         case EC_GROUP_WTLS_6:
597                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_112R1);
598                 break;
599                 
600         case EC_GROUP_SECG_PRIME_112R2:
601                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_112R2);
602                 break;
603                 
604         case EC_GROUP_WTLS_8:
605                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_WTLS_8);
606                 break;
607                 
608         /* prime field curves of degree 128 */
609         case EC_GROUP_SECG_PRIME_128R1:
610                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_128R1);
611                 break;
612                 
613         case EC_GROUP_SECG_PRIME_128R2:
614                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_128R2);
615                 break;
616                 
617         /* prime field curves of degree 160 */
618         case EC_GROUP_SECG_PRIME_160K1:
619                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_160K1);
620                 break;
621                 
622         case EC_GROUP_SECG_PRIME_160R1:
623                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_160R1);
624                 break;
625                 
626         case EC_GROUP_SECG_PRIME_160R2:
627         case EC_GROUP_WTLS_7:
628                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_160R2);
629                 break;
630                 
631         case EC_GROUP_WTLS_9:
632                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_WTLS_9);
633                 break;
634                 
635         /* prime field curves of degree 192 */
636         case EC_GROUP_SECG_PRIME_192K1:
637                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_192K1);
638                 break;
639                 
640         case EC_GROUP_X9_62_PRIME_192V1: /* == EC_GROUP_NIST_PRIME_192 == EC_GROUP_SECG_PRIME_192R1 */
641                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_NIST_PRIME_192);
642                 break;
643                 
644         case EC_GROUP_X9_62_PRIME_192V2:
645                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_192V2);
646                 break;
647                 
648         case EC_GROUP_X9_62_PRIME_192V3:
649                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_192V3);
650                 break;
651                 
652         /* prime field curves of degree 224 */
653         case EC_GROUP_SECG_PRIME_224K1:
654                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_224K1);
655                 break;
656                 
657         case EC_GROUP_SECG_PRIME_224R1: /* == EC_GROUP_NIST_PRIME_224 */
658                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_NIST_PRIME_224);
659                 break;
660                 
661         case EC_GROUP_WTLS_12:
662                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_WTLS_12);
663                 break;
664         
665         /* prime field curves of degree 239 */
666         case EC_GROUP_X9_62_PRIME_239V1:
667                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_239V1);
668                 break;
669                 
670         case EC_GROUP_X9_62_PRIME_239V2:
671                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_239V2);
672                 break;
673                 
674         case EC_GROUP_X9_62_PRIME_239V3:
675                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_239V3);
676                 break;
677                 
678         /* prime field curves of degree 256 */
679         case EC_GROUP_SECG_PRIME_256K1:
680                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_SECG_PRIME_256K1);
681                 break;
682                 
683         case EC_GROUP_SECG_PRIME_256R1: /* == EC_GROUP_NIST_PRIME_256 == EC_GROUP_X9_62_PRIME_256V1 */
684                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_X9_62_PRIME_256V1);
685                 break;
686                 
687         /* prime field curves of degree 384 */
688         case EC_GROUP_SECG_PRIME_384R1: /* == EC_GROUP_NIST_PRIME_384 */
689                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_NIST_PRIME_384);
690                 break;
691                 
692         /* prime field curves of degree 521 */
693         case EC_GROUP_SECG_PRIME_521R1: /* == EC_GROUP_NIST_PRIME_521 */
694                 ret = ec_group_new_GFp_from_hex(_EC_GROUP_NIST_PRIME_521);
695                 break;
696         
697         /* characteristic two field curves */
698         /* binary curves of degree 113 */
699         case EC_GROUP_SECG_CHAR2_113R1:
700         case EC_GROUP_WTLS_4:
701                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_113R1);
702                 break;
703         
704         case EC_GROUP_SECG_CHAR2_113R2:
705                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_113R2);
706                 break;
707         
708         case EC_GROUP_WTLS_1:
709                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_WTLS_1);
710                 break;
711
712         /* binary curves of degree 131 */
713         case EC_GROUP_SECG_CHAR2_131R1:
714                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_131R1);
715                 break;
716         
717         case EC_GROUP_SECG_CHAR2_131R2:
718                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_131R2);
719                 break;
720
721         /* binary curves of degree 163 */
722         case EC_GROUP_SECG_CHAR2_163K1: /* == EC_GROUP_NIST_CHAR2_K163 */
723         case EC_GROUP_WTLS_3:
724                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_163K1);
725                 break;
726
727         case EC_GROUP_SECG_CHAR2_163R1:
728                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_163R1);
729                 break;
730
731         case EC_GROUP_SECG_CHAR2_163R2: /* == EC_GROUP_NIST_CHAR2_B163 */
732                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_163R2);
733                 break;
734
735         case EC_GROUP_X9_62_CHAR2_163V1:
736         case EC_GROUP_WTLS_5:
737                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_163V1);
738                 break;
739
740         case EC_GROUP_X9_62_CHAR2_163V2:
741                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_163V2);
742                 break;
743
744         case EC_GROUP_X9_62_CHAR2_163V3:
745                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_163V3);
746                 break;
747
748         /* binary curves of degree 176 */
749         case EC_GROUP_X9_62_CHAR2_176V1:
750                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_176V1);
751                 break;
752         
753         /* binary curves of degree 191 */
754         case EC_GROUP_X9_62_CHAR2_191V1:
755                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_191V1);
756                 break;
757         
758         case EC_GROUP_X9_62_CHAR2_191V2:
759                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_191V2);
760                 break;
761         
762         case EC_GROUP_X9_62_CHAR2_191V3:
763                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_191V3);
764                 break;
765
766         /* binary curves of degree 193 */
767         case EC_GROUP_SECG_CHAR2_193R1:
768                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_193R1);
769                 break;
770
771         case EC_GROUP_SECG_CHAR2_193R2:
772                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_193R2);
773                 break;
774
775         /* binary curves of degree 208 */
776         case EC_GROUP_X9_62_CHAR2_208W1:
777                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_208W1);
778                 break;
779
780         /* binary curves of degree 233 */
781         case EC_GROUP_SECG_CHAR2_233K1: /* == EC_GROUP_NIST_CHAR2_K233 */
782         case EC_GROUP_WTLS_10:
783                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_233K1);
784                 break;
785
786         case EC_GROUP_SECG_CHAR2_233R1: /* == EC_GROUP_NIST_CHAR2_B233 */
787         case EC_GROUP_WTLS_11:
788                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_233R1);
789                 break;
790
791         /* binary curves of degree 239 */
792         case EC_GROUP_SECG_CHAR2_239K1:
793                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_239K1);
794                 break;
795
796         case EC_GROUP_X9_62_CHAR2_239V1:
797                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_239V1);
798                 break;
799         
800         case EC_GROUP_X9_62_CHAR2_239V2:
801                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_239V2);
802                 break;
803         
804         case EC_GROUP_X9_62_CHAR2_239V3:
805                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_239V3);
806                 break;
807
808         /* binary curves of degree 272 */
809         case EC_GROUP_X9_62_CHAR2_272W1:
810                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_272W1);
811                 break;
812
813         /* binary curves of degree 283 */
814         case EC_GROUP_SECG_CHAR2_283K1: /* == EC_GROUP_NIST_CHAR2_K283 */
815                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_283K1);
816                 break;
817
818         case EC_GROUP_SECG_CHAR2_283R1: /* == EC_GROUP_NIST_CHAR2_B283 */
819                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_283R1);
820                 break;
821
822         /* binary curves of degree 304 */
823         case EC_GROUP_X9_62_CHAR2_304W1:
824                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_304W1);
825                 break;
826
827         /* binary curves of degree 359 */
828         case EC_GROUP_X9_62_CHAR2_359V1:
829                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_359V1);
830                 break;
831
832         /* binary curves of degree 368 */
833         case EC_GROUP_X9_62_CHAR2_368W1:
834                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_368W1);
835                 break;
836
837         /* binary curves of degree 409 */
838         case EC_GROUP_SECG_CHAR2_409K1: /* == EC_GROUP_NIST_CHAR2_K409 */
839                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_409K1);
840                 break;
841
842         case EC_GROUP_SECG_CHAR2_409R1: /* == EC_GROUP_NIST_CHAR2_B409 */
843                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_409R1);
844                 break;
845
846         /* binary curves of degree 431 */
847         case EC_GROUP_X9_62_CHAR2_431R1:
848                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_X9_62_CHAR2_431R1);
849                 break;
850
851         /* binary curves of degree 571 */
852         case EC_GROUP_SECG_CHAR2_571K1: /* == EC_GROUP_NIST_CHAR2_K571 */
853                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_571K1);
854                 break;
855
856         case EC_GROUP_SECG_CHAR2_571R1: /* == EC_GROUP_NIST_CHAR2_B571 */
857                 ret = ec_group_new_GF2m_from_hex(_EC_GROUP_SECG_CHAR2_571R1);
858                 break;
859
860                 }
861         if (ret == NULL)
862                 {
863                 ECerr(EC_F_EC_GROUP_NEW_BY_NAME, EC_R_UNKNOWN_GROUP);
864                 return NULL;
865                 }
866         EC_GROUP_set_nid(ret, name);
867         return ret;
868         }
869
870
871 EC_GROUP *EC_GROUP_new_by_nid(int nid)
872         {
873         return EC_GROUP_new_by_name(nid);
874         }