2 This file is part of GNUnet.
3 (C) 2012 Christian Grothoff (and other contributing authors)
5 GNUnet is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published
7 by the Free Software Foundation; either version 3, or (at your
8 option) any later version.
10 GNUnet is distributed in the hope that it will be useful, but
11 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with GNUnet; see the file COPYING. If not, write to the
17 Free Software Foundation, Inc., 59 Temple Place - Suite 330,
18 Boston, MA 02111-1307, USA.
22 * @file util/gnunet-rsa.c
23 * @brief tool to manipulate RSA key files
24 * @author Christian Grothoff
27 #include "gnunet_util_lib.h"
32 * Flag for printing public key.
34 static int print_public_key;
37 * Flag for printing hash of public key.
39 static int print_peer_identity;
42 * Flag for printing short hash of public key.
44 static int print_short_identity;
47 * Use weak random number generator for key generation.
49 static int weak_random;
52 * Option set to create a bunch of keys at once.
54 static unsigned int make_keys;
57 * The private information of an RSA key pair.
58 * NOTE: this must match the definition in crypto_ksk.c and crypto_rsa.c!
60 struct GNUNET_CRYPTO_RsaPrivateKey
67 * Create a new private key. Caller must free return value.
69 * @return fresh private key
71 static struct GNUNET_CRYPTO_RsaPrivateKey *
74 struct GNUNET_CRYPTO_RsaPrivateKey *ret;
76 gcry_sexp_t s_keyparam;
79 gcry_sexp_build (&s_keyparam, NULL,
80 "(genkey(rsa(nbits %d)(rsa-use-e 3:257)))",
82 GNUNET_assert (0 == gcry_pk_genkey (&s_key, s_keyparam));
83 gcry_sexp_release (s_keyparam);
85 GNUNET_assert (0 == gcry_pk_testkey (s_key));
87 ret = GNUNET_malloc (sizeof (struct GNUNET_CRYPTO_RsaPrivateKey));
94 * Create a flat file with a large number of key pairs for testing.
97 create_keys (const char *fn)
100 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
101 struct GNUNET_CRYPTO_RsaPrivateKeyBinaryEncoded *enc;
103 if (NULL == (f = fopen (fn, "w+")))
106 _("Failed to open `%s': %s\n"),
112 _("Generating %u keys, please wait"),
114 while (0 < make_keys--)
118 if (NULL == (pk = rsa_key_create ()))
123 enc = GNUNET_CRYPTO_rsa_encode_key (pk);
124 if (htons (enc->len) != fwrite (enc, 1, htons (enc->len), f))
127 _("\nFailed to write to `%s': %s\n"),
130 GNUNET_CRYPTO_rsa_key_free (pk);
134 GNUNET_CRYPTO_rsa_key_free (pk);
145 * Main function that will be run by the scheduler.
148 * @param args remaining command-line arguments
149 * @param cfgfile name of the configuration file used (for saving, can be NULL!)
150 * @param cfg configuration
153 run (void *cls, char *const *args, const char *cfgfile,
154 const struct GNUNET_CONFIGURATION_Handle *cfg)
156 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
157 struct GNUNET_CRYPTO_RsaPublicKeyBinaryEncoded pub;
158 struct GNUNET_PeerIdentity pid;
162 fprintf (stderr, _("No hostkey file specified on command line\n"));
165 if (0 != weak_random)
166 GNUNET_CRYPTO_random_disable_entropy_gathering ();
169 create_keys (args[0]);
172 pk = GNUNET_CRYPTO_rsa_key_create_from_file (args[0]);
175 if (print_public_key)
179 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
180 s = GNUNET_CRYPTO_rsa_public_key_to_string (&pub);
181 fprintf (stdout, "%s\n", s);
184 if (print_peer_identity)
186 struct GNUNET_CRYPTO_HashAsciiEncoded enc;
188 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
189 GNUNET_CRYPTO_hash (&pub, sizeof (pub), &pid.hashPubKey);
190 GNUNET_CRYPTO_hash_to_enc (&pid.hashPubKey, &enc);
191 fprintf (stdout, "%s\n", enc.encoding);
193 if (print_short_identity)
195 struct GNUNET_CRYPTO_ShortHashAsciiEncoded enc;
196 struct GNUNET_CRYPTO_ShortHashCode sh;
198 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
199 GNUNET_CRYPTO_short_hash (&pub, sizeof (pub), &sh);
200 GNUNET_CRYPTO_short_hash_to_enc (&sh, &enc);
201 fprintf (stdout, "%s\n", enc.short_encoding);
203 GNUNET_CRYPTO_rsa_key_free (pk);
208 * Program to manipulate RSA key files.
210 * @param argc number of arguments from the command line
211 * @param argv command line arguments
212 * @return 0 ok, 1 on error
215 main (int argc, char *const *argv)
217 static const struct GNUNET_GETOPT_CommandLineOption options[] = {
218 { 'g', "generate-keys", "COUNT",
219 gettext_noop ("create COUNT public-private key pairs (for testing)"),
220 1, &GNUNET_GETOPT_set_uint, &make_keys },
221 { 'p', "print-public-key", NULL,
222 gettext_noop ("print the public key in ASCII format"),
223 0, &GNUNET_GETOPT_set_one, &print_public_key },
224 { 'P', "print-peer-identity", NULL,
225 gettext_noop ("print the hash of the public key in ASCII format"),
226 0, &GNUNET_GETOPT_set_one, &print_peer_identity },
227 { 's', "print-short-identity", NULL,
228 gettext_noop ("print the short hash of the public key in ASCII format"),
229 0, &GNUNET_GETOPT_set_one, &print_short_identity },
230 { 'w', "weak-random", NULL,
231 gettext_noop ("use insecure, weak random number generator for key generation (for testing only)"),
232 0, &GNUNET_GETOPT_set_one, &weak_random },
233 GNUNET_GETOPT_OPTION_END
236 if (GNUNET_OK != GNUNET_STRINGS_get_utf8_args (argc, argv, &argc, &argv))
240 GNUNET_PROGRAM_run (argc, argv, "gnunet-rsa [OPTIONS] keyfile",
241 gettext_noop ("Manipulate GNUnet private RSA key files"),
242 options, &run, NULL)) ? 0 : 1;
245 /* end of gnunet-rsa.c */