2 /* Copyright (C) 1995-1997 Eric Young (eay@cryptsoft.com)
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
37 * 4. If you include any Windows specific code (or a derivative thereof) from
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
62 #include <openssl/e_os2.h>
63 #ifndef OPENSSL_NO_BIO
64 #include <openssl/bio.h>
66 #ifndef OPENSSL_NO_STACK
67 #include <openssl/stack.h>
69 #include <openssl/evp.h>
70 #include <openssl/x509.h>
71 #include <openssl/pem2.h>
77 #define PEM_BUFSIZE 1024
79 #define PEM_OBJ_UNDEF 0
80 #define PEM_OBJ_X509 1
81 #define PEM_OBJ_X509_REQ 2
83 #define PEM_OBJ_SSL_SESSION 4
84 #define PEM_OBJ_PRIV_KEY 10
85 #define PEM_OBJ_PRIV_RSA 11
86 #define PEM_OBJ_PRIV_DSA 12
87 #define PEM_OBJ_PRIV_DH 13
88 #define PEM_OBJ_PUB_RSA 14
89 #define PEM_OBJ_PUB_DSA 15
90 #define PEM_OBJ_PUB_DH 16
91 #define PEM_OBJ_DHPARAMS 17
92 #define PEM_OBJ_DSAPARAMS 18
93 #define PEM_OBJ_PRIV_RSA_PUBLIC 19
94 #define PEM_OBJ_PRIV_ECDSA 20
95 #define PEM_OBJ_PUB_ECDSA 21
96 #define PEM_OBJ_ECPARAMETERS 22
99 #define PEM_DEK_DES_CBC 40
100 #define PEM_DEK_IDEA_CBC 45
101 #define PEM_DEK_DES_EDE 50
102 #define PEM_DEK_DES_ECB 60
103 #define PEM_DEK_RSA 70
104 #define PEM_DEK_RSA_MD2 80
105 #define PEM_DEK_RSA_MD5 90
107 #define PEM_MD_MD2 NID_md2
108 #define PEM_MD_MD5 NID_md5
109 #define PEM_MD_SHA NID_sha
110 #define PEM_MD_MD2_RSA NID_md2WithRSAEncryption
111 #define PEM_MD_MD5_RSA NID_md5WithRSAEncryption
112 #define PEM_MD_SHA_RSA NID_sha1WithRSAEncryption
114 #define PEM_STRING_X509_OLD "X509 CERTIFICATE"
115 #define PEM_STRING_X509 "CERTIFICATE"
116 #define PEM_STRING_X509_PAIR "CERTIFICATE PAIR"
117 #define PEM_STRING_X509_TRUSTED "TRUSTED CERTIFICATE"
118 #define PEM_STRING_X509_REQ_OLD "NEW CERTIFICATE REQUEST"
119 #define PEM_STRING_X509_REQ "CERTIFICATE REQUEST"
120 #define PEM_STRING_X509_CRL "X509 CRL"
121 #define PEM_STRING_EVP_PKEY "ANY PRIVATE KEY"
122 #define PEM_STRING_PUBLIC "PUBLIC KEY"
123 #define PEM_STRING_RSA "RSA PRIVATE KEY"
124 #define PEM_STRING_RSA_PUBLIC "RSA PUBLIC KEY"
125 #define PEM_STRING_DSA "DSA PRIVATE KEY"
126 #define PEM_STRING_DSA_PUBLIC "DSA PUBLIC KEY"
127 #define PEM_STRING_PKCS7 "PKCS7"
128 #define PEM_STRING_PKCS7_SIGNED "PKCS #7 SIGNED DATA"
129 #define PEM_STRING_PKCS8 "ENCRYPTED PRIVATE KEY"
130 #define PEM_STRING_PKCS8INF "PRIVATE KEY"
131 #define PEM_STRING_DHPARAMS "DH PARAMETERS"
132 #define PEM_STRING_SSL_SESSION "SSL SESSION PARAMETERS"
133 #define PEM_STRING_DSAPARAMS "DSA PARAMETERS"
134 #define PEM_STRING_ECDSA_PUBLIC "ECDSA PUBLIC KEY"
135 #define PEM_STRING_ECPARAMETERS "EC PARAMETERS"
136 #define PEM_STRING_ECPRIVATEKEY "EC PRIVATE KEY"
137 #define PEM_STRING_CMS "CMS"
139 /* Note that this structure is initialised by PEM_SealInit and cleaned up
140 by PEM_SealFinal (at least for now) */
141 typedef struct PEM_Encode_Seal_st
143 EVP_ENCODE_CTX encode;
145 EVP_CIPHER_CTX cipher;
146 } PEM_ENCODE_SEAL_CTX;
148 /* enc_type is one off */
149 #define PEM_TYPE_ENCRYPTED 10
150 #define PEM_TYPE_MIC_ONLY 20
151 #define PEM_TYPE_MIC_CLEAR 30
152 #define PEM_TYPE_CLEAR 40
154 typedef struct pem_recip_st
161 /* char iv[8]; unused and wrong size */
164 typedef struct pem_ctx_st
166 int type; /* what type of object */
178 unused, and wrong size
179 unsigned char iv[8]; */
182 PEM_USER *originator;
185 PEM_USER **recipient;
187 #ifndef OPENSSL_NO_STACK
188 STACK *x509_chain; /* certificate chain */
190 char *x509_chain; /* certificate chain */
192 EVP_MD *md; /* signature type */
194 int md_enc; /* is the md encrypted or not? */
195 int md_len; /* length of md_data */
196 char *md_data; /* message digest, could be pkey encrypted */
198 EVP_CIPHER *dec; /* date encryption cipher */
199 int key_len; /* key length */
200 unsigned char *key; /* key */
202 unused, and wrong size
203 unsigned char iv[8]; */
206 int data_enc; /* is the data encrypted */
211 /* These macros make the PEM_read/PEM_write functions easier to maintain and
212 * write. Now they are all implemented with either:
213 * IMPLEMENT_PEM_rw(...) or IMPLEMENT_PEM_rw_cb(...)
216 #ifdef OPENSSL_NO_FP_API
218 #define IMPLEMENT_PEM_read_fp(name, type, str, asn1) /**/
219 #define IMPLEMENT_PEM_write_fp(name, type, str, asn1) /**/
220 #define IMPLEMENT_PEM_write_fp_const(name, type, str, asn1) /**/
221 #define IMPLEMENT_PEM_write_cb_fp(name, type, str, asn1) /**/
222 #define IMPLEMENT_PEM_write_cb_fp_const(name, type, str, asn1) /**/
226 #define IMPLEMENT_PEM_read_fp(name, type, str, asn1) \
227 type *PEM_read_##name(FILE *fp, type **x, pem_password_cb *cb, void *u)\
229 return (type*)PEM_ASN1_read(CHECKED_D2I_OF(type, d2i_##asn1), \
231 CHECKED_PPTR_OF(type, x), \
235 #define IMPLEMENT_PEM_write_fp(name, type, str, asn1) \
236 int PEM_write_##name(FILE *fp, type *x) \
238 return PEM_ASN1_write(CHECKED_I2D_OF(type, i2d_##asn1), \
240 CHECKED_PTR_OF(type, x), \
241 NULL, NULL, 0, NULL, NULL); \
244 #define IMPLEMENT_PEM_write_fp_const(name, type, str, asn1) \
245 int PEM_write_##name(FILE *fp, const type *x) \
247 return PEM_ASN1_write(CHECKED_I2D_OF(const type, i2d_##asn1), \
249 CHECKED_PTR_OF(const type, x), \
250 NULL, NULL, 0, NULL, NULL); \
253 #define IMPLEMENT_PEM_write_cb_fp(name, type, str, asn1) \
254 int PEM_write_##name(FILE *fp, type *x, const EVP_CIPHER *enc, \
255 unsigned char *kstr, int klen, pem_password_cb *cb, \
258 return PEM_ASN1_write(CHECKED_I2D_OF(type, i2d_##asn1), \
260 CHECKED_PTR_OF(type, x), \
261 enc, kstr, klen, cb, u); \
264 #define IMPLEMENT_PEM_write_cb_fp_const(name, type, str, asn1) \
265 int PEM_write_##name(FILE *fp, type *x, const EVP_CIPHER *enc, \
266 unsigned char *kstr, int klen, pem_password_cb *cb, \
269 return PEM_ASN1_write(CHECKED_I2D_OF(const type, i2d_##asn1), \
271 CHECKED_PTR_OF(const type, x), \
272 enc, kstr, klen, cb, u); \
277 #define IMPLEMENT_PEM_read_bio(name, type, str, asn1) \
278 type *PEM_read_bio_##name(BIO *bp, type **x, pem_password_cb *cb, void *u)\
280 return (type*)PEM_ASN1_read_bio(CHECKED_D2I_OF(type, d2i_##asn1), \
282 CHECKED_PPTR_OF(type, x), \
286 #define IMPLEMENT_PEM_write_bio(name, type, str, asn1) \
287 int PEM_write_bio_##name(BIO *bp, type *x) \
289 return PEM_ASN1_write_bio(CHECKED_I2D_OF(type, i2d_##asn1), \
291 CHECKED_PTR_OF(type, x), \
292 NULL, NULL, 0, NULL, NULL); \
295 #define IMPLEMENT_PEM_write_bio_const(name, type, str, asn1) \
296 int PEM_write_bio_##name(BIO *bp, const type *x) \
298 return PEM_ASN1_write_bio(CHECKED_I2D_OF(const type, i2d_##asn1), \
300 CHECKED_PTR_OF(const type, x), \
301 NULL, NULL, 0, NULL, NULL); \
304 #define IMPLEMENT_PEM_write_cb_bio(name, type, str, asn1) \
305 int PEM_write_bio_##name(BIO *bp, type *x, const EVP_CIPHER *enc, \
306 unsigned char *kstr, int klen, pem_password_cb *cb, void *u) \
308 return PEM_ASN1_write_bio(CHECKED_I2D_OF(type, i2d_##asn1), \
310 CHECKED_PTR_OF(type, x), \
311 enc, kstr, klen, cb, u); \
314 #define IMPLEMENT_PEM_write_cb_bio_const(name, type, str, asn1) \
315 int PEM_write_bio_##name(BIO *bp, type *x, const EVP_CIPHER *enc, \
316 unsigned char *kstr, int klen, pem_password_cb *cb, void *u) \
318 return PEM_ASN1_write_bio(CHECKED_I2D_OF(const type, i2d_##asn1), \
320 CHECKED_PTR_OF(const type, x), \
321 enc, kstr, klen, cb, u); \
324 #define IMPLEMENT_PEM_write(name, type, str, asn1) \
325 IMPLEMENT_PEM_write_bio(name, type, str, asn1) \
326 IMPLEMENT_PEM_write_fp(name, type, str, asn1)
328 #define IMPLEMENT_PEM_write_const(name, type, str, asn1) \
329 IMPLEMENT_PEM_write_bio_const(name, type, str, asn1) \
330 IMPLEMENT_PEM_write_fp_const(name, type, str, asn1)
332 #define IMPLEMENT_PEM_write_cb(name, type, str, asn1) \
333 IMPLEMENT_PEM_write_cb_bio(name, type, str, asn1) \
334 IMPLEMENT_PEM_write_cb_fp(name, type, str, asn1)
336 #define IMPLEMENT_PEM_write_cb_const(name, type, str, asn1) \
337 IMPLEMENT_PEM_write_cb_bio_const(name, type, str, asn1) \
338 IMPLEMENT_PEM_write_cb_fp_const(name, type, str, asn1)
340 #define IMPLEMENT_PEM_read(name, type, str, asn1) \
341 IMPLEMENT_PEM_read_bio(name, type, str, asn1) \
342 IMPLEMENT_PEM_read_fp(name, type, str, asn1)
344 #define IMPLEMENT_PEM_rw(name, type, str, asn1) \
345 IMPLEMENT_PEM_read(name, type, str, asn1) \
346 IMPLEMENT_PEM_write(name, type, str, asn1)
348 #define IMPLEMENT_PEM_rw_const(name, type, str, asn1) \
349 IMPLEMENT_PEM_read(name, type, str, asn1) \
350 IMPLEMENT_PEM_write_const(name, type, str, asn1)
352 #define IMPLEMENT_PEM_rw_cb(name, type, str, asn1) \
353 IMPLEMENT_PEM_read(name, type, str, asn1) \
354 IMPLEMENT_PEM_write_cb(name, type, str, asn1)
356 /* These are the same except they are for the declarations */
358 #if defined(OPENSSL_SYS_WIN16) || defined(OPENSSL_NO_FP_API)
360 #define DECLARE_PEM_read_fp(name, type) /**/
361 #define DECLARE_PEM_write_fp(name, type) /**/
362 #define DECLARE_PEM_write_fp_const(name, type) /**/
363 #define DECLARE_PEM_write_cb_fp(name, type) /**/
367 #define DECLARE_PEM_read_fp(name, type) \
368 type *PEM_read_##name(FILE *fp, type **x, pem_password_cb *cb, void *u);
370 #define DECLARE_PEM_write_fp(name, type) \
371 int PEM_write_##name(FILE *fp, type *x);
373 #define DECLARE_PEM_write_fp_const(name, type) \
374 int PEM_write_##name(FILE *fp, const type *x);
376 #define DECLARE_PEM_write_cb_fp(name, type) \
377 int PEM_write_##name(FILE *fp, type *x, const EVP_CIPHER *enc, \
378 unsigned char *kstr, int klen, pem_password_cb *cb, void *u);
382 #ifndef OPENSSL_NO_BIO
383 #define DECLARE_PEM_read_bio(name, type) \
384 type *PEM_read_bio_##name(BIO *bp, type **x, pem_password_cb *cb, void *u);
386 #define DECLARE_PEM_write_bio(name, type) \
387 int PEM_write_bio_##name(BIO *bp, type *x);
389 #define DECLARE_PEM_write_bio_const(name, type) \
390 int PEM_write_bio_##name(BIO *bp, const type *x);
392 #define DECLARE_PEM_write_cb_bio(name, type) \
393 int PEM_write_bio_##name(BIO *bp, type *x, const EVP_CIPHER *enc, \
394 unsigned char *kstr, int klen, pem_password_cb *cb, void *u);
398 #define DECLARE_PEM_read_bio(name, type) /**/
399 #define DECLARE_PEM_write_bio(name, type) /**/
400 #define DECLARE_PEM_write_bio_const(name, type) /**/
401 #define DECLARE_PEM_write_cb_bio(name, type) /**/
405 #define DECLARE_PEM_write(name, type) \
406 DECLARE_PEM_write_bio(name, type) \
407 DECLARE_PEM_write_fp(name, type)
409 #define DECLARE_PEM_write_const(name, type) \
410 DECLARE_PEM_write_bio_const(name, type) \
411 DECLARE_PEM_write_fp_const(name, type)
413 #define DECLARE_PEM_write_cb(name, type) \
414 DECLARE_PEM_write_cb_bio(name, type) \
415 DECLARE_PEM_write_cb_fp(name, type)
417 #define DECLARE_PEM_read(name, type) \
418 DECLARE_PEM_read_bio(name, type) \
419 DECLARE_PEM_read_fp(name, type)
421 #define DECLARE_PEM_rw(name, type) \
422 DECLARE_PEM_read(name, type) \
423 DECLARE_PEM_write(name, type)
425 #define DECLARE_PEM_rw_const(name, type) \
426 DECLARE_PEM_read(name, type) \
427 DECLARE_PEM_write_const(name, type)
429 #define DECLARE_PEM_rw_cb(name, type) \
430 DECLARE_PEM_read(name, type) \
431 DECLARE_PEM_write_cb(name, type)
435 #define PEM_write_SSL_SESSION(fp,x) \
436 PEM_ASN1_write((int (*)())i2d_SSL_SESSION, \
437 PEM_STRING_SSL_SESSION,fp, (char *)x, NULL,NULL,0,NULL,NULL)
438 #define PEM_write_X509(fp,x) \
439 PEM_ASN1_write((int (*)())i2d_X509,PEM_STRING_X509,fp, \
440 (char *)x, NULL,NULL,0,NULL,NULL)
441 #define PEM_write_X509_REQ(fp,x) PEM_ASN1_write( \
442 (int (*)())i2d_X509_REQ,PEM_STRING_X509_REQ,fp,(char *)x, \
443 NULL,NULL,0,NULL,NULL)
444 #define PEM_write_X509_CRL(fp,x) \
445 PEM_ASN1_write((int (*)())i2d_X509_CRL,PEM_STRING_X509_CRL, \
446 fp,(char *)x, NULL,NULL,0,NULL,NULL)
447 #define PEM_write_RSAPrivateKey(fp,x,enc,kstr,klen,cb,u) \
448 PEM_ASN1_write((int (*)())i2d_RSAPrivateKey,PEM_STRING_RSA,fp,\
449 (char *)x,enc,kstr,klen,cb,u)
450 #define PEM_write_RSAPublicKey(fp,x) \
451 PEM_ASN1_write((int (*)())i2d_RSAPublicKey,\
452 PEM_STRING_RSA_PUBLIC,fp,(char *)x,NULL,NULL,0,NULL,NULL)
453 #define PEM_write_DSAPrivateKey(fp,x,enc,kstr,klen,cb,u) \
454 PEM_ASN1_write((int (*)())i2d_DSAPrivateKey,PEM_STRING_DSA,fp,\
455 (char *)x,enc,kstr,klen,cb,u)
456 #define PEM_write_PrivateKey(bp,x,enc,kstr,klen,cb,u) \
457 PEM_ASN1_write((int (*)())i2d_PrivateKey,\
458 (((x)->type == EVP_PKEY_DSA)?PEM_STRING_DSA:PEM_STRING_RSA),\
459 bp,(char *)x,enc,kstr,klen,cb,u)
460 #define PEM_write_PKCS7(fp,x) \
461 PEM_ASN1_write((int (*)())i2d_PKCS7,PEM_STRING_PKCS7,fp, \
462 (char *)x, NULL,NULL,0,NULL,NULL)
463 #define PEM_write_DHparams(fp,x) \
464 PEM_ASN1_write((int (*)())i2d_DHparams,PEM_STRING_DHPARAMS,fp,\
465 (char *)x,NULL,NULL,0,NULL,NULL)
467 #define PEM_write_NETSCAPE_CERT_SEQUENCE(fp,x) \
468 PEM_ASN1_write((int (*)())i2d_NETSCAPE_CERT_SEQUENCE, \
469 PEM_STRING_X509,fp, \
470 (char *)x, NULL,NULL,0,NULL,NULL)
472 #define PEM_read_SSL_SESSION(fp,x,cb,u) (SSL_SESSION *)PEM_ASN1_read( \
473 (char *(*)())d2i_SSL_SESSION,PEM_STRING_SSL_SESSION,fp,(char **)x,cb,u)
474 #define PEM_read_X509(fp,x,cb,u) (X509 *)PEM_ASN1_read( \
475 (char *(*)())d2i_X509,PEM_STRING_X509,fp,(char **)x,cb,u)
476 #define PEM_read_X509_REQ(fp,x,cb,u) (X509_REQ *)PEM_ASN1_read( \
477 (char *(*)())d2i_X509_REQ,PEM_STRING_X509_REQ,fp,(char **)x,cb,u)
478 #define PEM_read_X509_CRL(fp,x,cb,u) (X509_CRL *)PEM_ASN1_read( \
479 (char *(*)())d2i_X509_CRL,PEM_STRING_X509_CRL,fp,(char **)x,cb,u)
480 #define PEM_read_RSAPrivateKey(fp,x,cb,u) (RSA *)PEM_ASN1_read( \
481 (char *(*)())d2i_RSAPrivateKey,PEM_STRING_RSA,fp,(char **)x,cb,u)
482 #define PEM_read_RSAPublicKey(fp,x,cb,u) (RSA *)PEM_ASN1_read( \
483 (char *(*)())d2i_RSAPublicKey,PEM_STRING_RSA_PUBLIC,fp,(char **)x,cb,u)
484 #define PEM_read_DSAPrivateKey(fp,x,cb,u) (DSA *)PEM_ASN1_read( \
485 (char *(*)())d2i_DSAPrivateKey,PEM_STRING_DSA,fp,(char **)x,cb,u)
486 #define PEM_read_PrivateKey(fp,x,cb,u) (EVP_PKEY *)PEM_ASN1_read( \
487 (char *(*)())d2i_PrivateKey,PEM_STRING_EVP_PKEY,fp,(char **)x,cb,u)
488 #define PEM_read_PKCS7(fp,x,cb,u) (PKCS7 *)PEM_ASN1_read( \
489 (char *(*)())d2i_PKCS7,PEM_STRING_PKCS7,fp,(char **)x,cb,u)
490 #define PEM_read_DHparams(fp,x,cb,u) (DH *)PEM_ASN1_read( \
491 (char *(*)())d2i_DHparams,PEM_STRING_DHPARAMS,fp,(char **)x,cb,u)
493 #define PEM_read_NETSCAPE_CERT_SEQUENCE(fp,x,cb,u) \
494 (NETSCAPE_CERT_SEQUENCE *)PEM_ASN1_read( \
495 (char *(*)())d2i_NETSCAPE_CERT_SEQUENCE,PEM_STRING_X509,fp,\
498 #define PEM_write_bio_X509(bp,x) \
499 PEM_ASN1_write_bio((int (*)())i2d_X509,PEM_STRING_X509,bp, \
500 (char *)x, NULL,NULL,0,NULL,NULL)
501 #define PEM_write_bio_X509_REQ(bp,x) PEM_ASN1_write_bio( \
502 (int (*)())i2d_X509_REQ,PEM_STRING_X509_REQ,bp,(char *)x, \
503 NULL,NULL,0,NULL,NULL)
504 #define PEM_write_bio_X509_CRL(bp,x) \
505 PEM_ASN1_write_bio((int (*)())i2d_X509_CRL,PEM_STRING_X509_CRL,\
506 bp,(char *)x, NULL,NULL,0,NULL,NULL)
507 #define PEM_write_bio_RSAPrivateKey(bp,x,enc,kstr,klen,cb,u) \
508 PEM_ASN1_write_bio((int (*)())i2d_RSAPrivateKey,PEM_STRING_RSA,\
509 bp,(char *)x,enc,kstr,klen,cb,u)
510 #define PEM_write_bio_RSAPublicKey(bp,x) \
511 PEM_ASN1_write_bio((int (*)())i2d_RSAPublicKey, \
512 PEM_STRING_RSA_PUBLIC,\
513 bp,(char *)x,NULL,NULL,0,NULL,NULL)
514 #define PEM_write_bio_DSAPrivateKey(bp,x,enc,kstr,klen,cb,u) \
515 PEM_ASN1_write_bio((int (*)())i2d_DSAPrivateKey,PEM_STRING_DSA,\
516 bp,(char *)x,enc,kstr,klen,cb,u)
517 #define PEM_write_bio_PrivateKey(bp,x,enc,kstr,klen,cb,u) \
518 PEM_ASN1_write_bio((int (*)())i2d_PrivateKey,\
519 (((x)->type == EVP_PKEY_DSA)?PEM_STRING_DSA:PEM_STRING_RSA),\
520 bp,(char *)x,enc,kstr,klen,cb,u)
521 #define PEM_write_bio_PKCS7(bp,x) \
522 PEM_ASN1_write_bio((int (*)())i2d_PKCS7,PEM_STRING_PKCS7,bp, \
523 (char *)x, NULL,NULL,0,NULL,NULL)
524 #define PEM_write_bio_DHparams(bp,x) \
525 PEM_ASN1_write_bio((int (*)())i2d_DHparams,PEM_STRING_DHPARAMS,\
526 bp,(char *)x,NULL,NULL,0,NULL,NULL)
527 #define PEM_write_bio_DSAparams(bp,x) \
528 PEM_ASN1_write_bio((int (*)())i2d_DSAparams, \
529 PEM_STRING_DSAPARAMS,bp,(char *)x,NULL,NULL,0,NULL,NULL)
531 #define PEM_write_bio_NETSCAPE_CERT_SEQUENCE(bp,x) \
532 PEM_ASN1_write_bio((int (*)())i2d_NETSCAPE_CERT_SEQUENCE, \
533 PEM_STRING_X509,bp, \
534 (char *)x, NULL,NULL,0,NULL,NULL)
536 #define PEM_read_bio_X509(bp,x,cb,u) (X509 *)PEM_ASN1_read_bio( \
537 (char *(*)())d2i_X509,PEM_STRING_X509,bp,(char **)x,cb,u)
538 #define PEM_read_bio_X509_REQ(bp,x,cb,u) (X509_REQ *)PEM_ASN1_read_bio( \
539 (char *(*)())d2i_X509_REQ,PEM_STRING_X509_REQ,bp,(char **)x,cb,u)
540 #define PEM_read_bio_X509_CRL(bp,x,cb,u) (X509_CRL *)PEM_ASN1_read_bio( \
541 (char *(*)())d2i_X509_CRL,PEM_STRING_X509_CRL,bp,(char **)x,cb,u)
542 #define PEM_read_bio_RSAPrivateKey(bp,x,cb,u) (RSA *)PEM_ASN1_read_bio( \
543 (char *(*)())d2i_RSAPrivateKey,PEM_STRING_RSA,bp,(char **)x,cb,u)
544 #define PEM_read_bio_RSAPublicKey(bp,x,cb,u) (RSA *)PEM_ASN1_read_bio( \
545 (char *(*)())d2i_RSAPublicKey,PEM_STRING_RSA_PUBLIC,bp,(char **)x,cb,u)
546 #define PEM_read_bio_DSAPrivateKey(bp,x,cb,u) (DSA *)PEM_ASN1_read_bio( \
547 (char *(*)())d2i_DSAPrivateKey,PEM_STRING_DSA,bp,(char **)x,cb,u)
548 #define PEM_read_bio_PrivateKey(bp,x,cb,u) (EVP_PKEY *)PEM_ASN1_read_bio( \
549 (char *(*)())d2i_PrivateKey,PEM_STRING_EVP_PKEY,bp,(char **)x,cb,u)
551 #define PEM_read_bio_PKCS7(bp,x,cb,u) (PKCS7 *)PEM_ASN1_read_bio( \
552 (char *(*)())d2i_PKCS7,PEM_STRING_PKCS7,bp,(char **)x,cb,u)
553 #define PEM_read_bio_DHparams(bp,x,cb,u) (DH *)PEM_ASN1_read_bio( \
554 (char *(*)())d2i_DHparams,PEM_STRING_DHPARAMS,bp,(char **)x,cb,u)
555 #define PEM_read_bio_DSAparams(bp,x,cb,u) (DSA *)PEM_ASN1_read_bio( \
556 (char *(*)())d2i_DSAparams,PEM_STRING_DSAPARAMS,bp,(char **)x,cb,u)
558 #define PEM_read_bio_NETSCAPE_CERT_SEQUENCE(bp,x,cb,u) \
559 (NETSCAPE_CERT_SEQUENCE *)PEM_ASN1_read_bio( \
560 (char *(*)())d2i_NETSCAPE_CERT_SEQUENCE,PEM_STRING_X509,bp,\
566 /* "userdata": new with OpenSSL 0.9.4 */
567 typedef int pem_password_cb(char *buf, int size, int rwflag, void *userdata);
569 /* OpenSSL 0.9.3, 0.9.3a */
570 typedef int pem_password_cb(char *buf, int size, int rwflag);
573 int PEM_get_EVP_CIPHER_INFO(char *header, EVP_CIPHER_INFO *cipher);
574 int PEM_do_header (EVP_CIPHER_INFO *cipher, unsigned char *data,long *len,
575 pem_password_cb *callback,void *u);
577 #ifndef OPENSSL_NO_BIO
578 int PEM_read_bio(BIO *bp, char **name, char **header,
579 unsigned char **data,long *len);
580 int PEM_write_bio(BIO *bp,const char *name,char *hdr,unsigned char *data,
582 int PEM_bytes_read_bio(unsigned char **pdata, long *plen, char **pnm, const char *name, BIO *bp,
583 pem_password_cb *cb, void *u);
584 void * PEM_ASN1_read_bio(d2i_of_void *d2i, const char *name, BIO *bp,
585 void **x, pem_password_cb *cb, void *u);
587 #define PEM_ASN1_read_bio_of(type,d2i,name,bp,x,cb,u) \
588 ((type*)PEM_ASN1_read_bio(CHECKED_D2I_OF(type, d2i), \
590 CHECKED_PPTR_OF(type, x), \
593 int PEM_ASN1_write_bio(i2d_of_void *i2d,const char *name,BIO *bp,char *x,
594 const EVP_CIPHER *enc,unsigned char *kstr,int klen,
595 pem_password_cb *cb, void *u);
597 #define PEM_ASN1_write_bio_of(type,i2d,name,bp,x,enc,kstr,klen,cb,u) \
598 (PEM_ASN1_write_bio(CHECKED_I2D_OF(type, i2d), \
600 CHECKED_PTR_OF(type, x), \
601 enc, kstr, klen, cb, u))
603 STACK_OF(X509_INFO) * PEM_X509_INFO_read_bio(BIO *bp, STACK_OF(X509_INFO) *sk, pem_password_cb *cb, void *u);
604 int PEM_X509_INFO_write_bio(BIO *bp,X509_INFO *xi, EVP_CIPHER *enc,
605 unsigned char *kstr, int klen, pem_password_cb *cd, void *u);
608 #ifndef OPENSSL_SYS_WIN16
609 int PEM_read(FILE *fp, char **name, char **header,
610 unsigned char **data,long *len);
611 int PEM_write(FILE *fp,char *name,char *hdr,unsigned char *data,long len);
612 void * PEM_ASN1_read(d2i_of_void *d2i, const char *name, FILE *fp, void **x,
613 pem_password_cb *cb, void *u);
614 int PEM_ASN1_write(i2d_of_void *i2d,const char *name,FILE *fp,
615 char *x,const EVP_CIPHER *enc,unsigned char *kstr,
616 int klen,pem_password_cb *callback, void *u);
617 STACK_OF(X509_INFO) * PEM_X509_INFO_read(FILE *fp, STACK_OF(X509_INFO) *sk,
618 pem_password_cb *cb, void *u);
621 int PEM_SealInit(PEM_ENCODE_SEAL_CTX *ctx, EVP_CIPHER *type,
622 EVP_MD *md_type, unsigned char **ek, int *ekl,
623 unsigned char *iv, EVP_PKEY **pubk, int npubk);
624 void PEM_SealUpdate(PEM_ENCODE_SEAL_CTX *ctx, unsigned char *out, int *outl,
625 unsigned char *in, int inl);
626 int PEM_SealFinal(PEM_ENCODE_SEAL_CTX *ctx, unsigned char *sig,int *sigl,
627 unsigned char *out, int *outl, EVP_PKEY *priv);
629 void PEM_SignInit(EVP_MD_CTX *ctx, EVP_MD *type);
630 void PEM_SignUpdate(EVP_MD_CTX *ctx,unsigned char *d,unsigned int cnt);
631 int PEM_SignFinal(EVP_MD_CTX *ctx, unsigned char *sigret,
632 unsigned int *siglen, EVP_PKEY *pkey);
634 int PEM_def_callback(char *buf, int num, int w, void *key);
635 void PEM_proc_type(char *buf, int type);
636 void PEM_dek_info(char *buf, const char *type, int len, char *str);
638 #ifndef SSLEAY_MACROS
640 #include <openssl/symhacks.h>
642 DECLARE_PEM_rw(X509, X509)
644 DECLARE_PEM_rw(X509_AUX, X509)
646 DECLARE_PEM_rw(X509_CERT_PAIR, X509_CERT_PAIR)
648 DECLARE_PEM_rw(X509_REQ, X509_REQ)
649 DECLARE_PEM_write(X509_REQ_NEW, X509_REQ)
651 DECLARE_PEM_rw(X509_CRL, X509_CRL)
653 DECLARE_PEM_rw(PKCS7, PKCS7)
655 DECLARE_PEM_rw(NETSCAPE_CERT_SEQUENCE, NETSCAPE_CERT_SEQUENCE)
657 DECLARE_PEM_rw(PKCS8, X509_SIG)
659 DECLARE_PEM_rw(PKCS8_PRIV_KEY_INFO, PKCS8_PRIV_KEY_INFO)
661 #ifndef OPENSSL_NO_RSA
663 DECLARE_PEM_rw_cb(RSAPrivateKey, RSA)
665 DECLARE_PEM_rw_const(RSAPublicKey, RSA)
666 DECLARE_PEM_rw(RSA_PUBKEY, RSA)
670 #ifndef OPENSSL_NO_DSA
672 DECLARE_PEM_rw_cb(DSAPrivateKey, DSA)
674 DECLARE_PEM_rw(DSA_PUBKEY, DSA)
676 DECLARE_PEM_rw_const(DSAparams, DSA)
680 #ifndef OPENSSL_NO_EC
681 DECLARE_PEM_rw_const(ECPKParameters, EC_GROUP)
682 DECLARE_PEM_rw_cb(ECPrivateKey, EC_KEY)
683 DECLARE_PEM_rw(EC_PUBKEY, EC_KEY)
686 #ifndef OPENSSL_NO_DH
688 DECLARE_PEM_rw_const(DHparams, DH)
692 DECLARE_PEM_rw_cb(PrivateKey, EVP_PKEY)
694 DECLARE_PEM_rw(PUBKEY, EVP_PKEY)
696 int PEM_write_bio_PKCS8PrivateKey_nid(BIO *bp, EVP_PKEY *x, int nid,
697 char *kstr, int klen,
698 pem_password_cb *cb, void *u);
699 int PEM_write_bio_PKCS8PrivateKey(BIO *, EVP_PKEY *, const EVP_CIPHER *,
700 char *, int, pem_password_cb *, void *);
701 int i2d_PKCS8PrivateKey_bio(BIO *bp, EVP_PKEY *x, const EVP_CIPHER *enc,
702 char *kstr, int klen,
703 pem_password_cb *cb, void *u);
704 int i2d_PKCS8PrivateKey_nid_bio(BIO *bp, EVP_PKEY *x, int nid,
705 char *kstr, int klen,
706 pem_password_cb *cb, void *u);
707 EVP_PKEY *d2i_PKCS8PrivateKey_bio(BIO *bp, EVP_PKEY **x, pem_password_cb *cb, void *u);
709 int i2d_PKCS8PrivateKey_fp(FILE *fp, EVP_PKEY *x, const EVP_CIPHER *enc,
710 char *kstr, int klen,
711 pem_password_cb *cb, void *u);
712 int i2d_PKCS8PrivateKey_nid_fp(FILE *fp, EVP_PKEY *x, int nid,
713 char *kstr, int klen,
714 pem_password_cb *cb, void *u);
715 int PEM_write_PKCS8PrivateKey_nid(FILE *fp, EVP_PKEY *x, int nid,
716 char *kstr, int klen,
717 pem_password_cb *cb, void *u);
719 EVP_PKEY *d2i_PKCS8PrivateKey_fp(FILE *fp, EVP_PKEY **x, pem_password_cb *cb, void *u);
721 int PEM_write_PKCS8PrivateKey(FILE *fp,EVP_PKEY *x,const EVP_CIPHER *enc,
722 char *kstr,int klen, pem_password_cb *cd, void *u);
724 #endif /* SSLEAY_MACROS */
727 /* BEGIN ERROR CODES */
728 /* The following lines are auto generated by the script mkerr.pl. Any changes
729 * made after this point may be overwritten when the script is next run.
731 void ERR_load_PEM_strings(void);
733 /* Error codes for the PEM functions. */
735 /* Function codes. */
736 #define PEM_F_D2I_PKCS8PRIVATEKEY_BIO 120
737 #define PEM_F_D2I_PKCS8PRIVATEKEY_FP 121
738 #define PEM_F_DO_PK8PKEY 126
739 #define PEM_F_DO_PK8PKEY_FP 125
740 #define PEM_F_LOAD_IV 101
741 #define PEM_F_PEM_ASN1_READ 102
742 #define PEM_F_PEM_ASN1_READ_BIO 103
743 #define PEM_F_PEM_ASN1_WRITE 104
744 #define PEM_F_PEM_ASN1_WRITE_BIO 105
745 #define PEM_F_PEM_DEF_CALLBACK 100
746 #define PEM_F_PEM_DO_HEADER 106
747 #define PEM_F_PEM_F_PEM_WRITE_PKCS8PRIVATEKEY 118
748 #define PEM_F_PEM_GET_EVP_CIPHER_INFO 107
749 #define PEM_F_PEM_PK8PKEY 119
750 #define PEM_F_PEM_READ 108
751 #define PEM_F_PEM_READ_BIO 109
752 #define PEM_F_PEM_READ_BIO_PRIVATEKEY 123
753 #define PEM_F_PEM_READ_PRIVATEKEY 124
754 #define PEM_F_PEM_SEALFINAL 110
755 #define PEM_F_PEM_SEALINIT 111
756 #define PEM_F_PEM_SIGNFINAL 112
757 #define PEM_F_PEM_WRITE 113
758 #define PEM_F_PEM_WRITE_BIO 114
759 #define PEM_F_PEM_X509_INFO_READ 115
760 #define PEM_F_PEM_X509_INFO_READ_BIO 116
761 #define PEM_F_PEM_X509_INFO_WRITE_BIO 117
764 #define PEM_R_BAD_BASE64_DECODE 100
765 #define PEM_R_BAD_DECRYPT 101
766 #define PEM_R_BAD_END_LINE 102
767 #define PEM_R_BAD_IV_CHARS 103
768 #define PEM_R_BAD_PASSWORD_READ 104
769 #define PEM_R_ERROR_CONVERTING_PRIVATE_KEY 115
770 #define PEM_R_NOT_DEK_INFO 105
771 #define PEM_R_NOT_ENCRYPTED 106
772 #define PEM_R_NOT_PROC_TYPE 107
773 #define PEM_R_NO_START_LINE 108
774 #define PEM_R_PROBLEMS_GETTING_PASSWORD 109
775 #define PEM_R_PUBLIC_KEY_NO_RSA 110
776 #define PEM_R_READ_KEY 111
777 #define PEM_R_SHORT_HEADER 112
778 #define PEM_R_UNSUPPORTED_CIPHER 113
779 #define PEM_R_UNSUPPORTED_ENCRYPTION 114