2 This file is part of GNUnet.
3 (C) 2012 Christian Grothoff (and other contributing authors)
5 GNUnet is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published
7 by the Free Software Foundation; either version 3, or (at your
8 option) any later version.
10 GNUnet is distributed in the hope that it will be useful, but
11 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with GNUnet; see the file COPYING. If not, write to the
17 Free Software Foundation, Inc., 59 Temple Place - Suite 330,
18 Boston, MA 02111-1307, USA.
22 * @file util/gnunet-rsa.c
23 * @brief tool to manipulate RSA key files
24 * @author Christian Grothoff
27 #include "gnunet_util_lib.h"
32 * Flag for printing public key.
34 static int print_public_key;
37 * Flag for printing hash of public key.
39 static int print_peer_identity;
42 * Flag for printing short hash of public key.
44 static int print_short_identity;
47 * Use weak random number generator for key generation.
49 static int weak_random;
52 * Option set to create a bunch of keys at once.
54 static unsigned int make_keys;
57 * The private information of an RSA key pair.
58 * NOTE: this must match the definition in crypto_ksk.c and crypto_rsa.c!
60 struct GNUNET_CRYPTO_RsaPrivateKey
68 * Create a new private key. Caller must free return value.
70 * @return fresh private key
72 struct GNUNET_CRYPTO_RsaPrivateKey *
73 GNUNET_CRYPTO_rsa_key_create ()
75 struct GNUNET_CRYPTO_RsaPrivateKey *ret;
77 gcry_sexp_t s_keyparam;
80 gcry_sexp_build (&s_keyparam, NULL,
81 "(genkey(rsa(nbits %d)(rsa-use-e 3:257)))",
83 GNUNET_assert (0 == gcry_pk_genkey (&s_key, s_keyparam));
84 gcry_sexp_release (s_keyparam);
86 GNUNET_assert (0 == gcry_pk_testkey (s_key));
88 ret = GNUNET_malloc (sizeof (struct GNUNET_CRYPTO_RsaPrivateKey));
96 * Create a flat file with a large number of key pairs for testing.
99 create_keys (const char *fn)
102 struct GNUNET_HashCode hc;
103 struct GNUNET_HashCode h2;
104 struct GNUNET_HashCode h3;
106 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
107 struct GNUNET_CRYPTO_RsaPrivateKeyBinaryEncoded *enc;
110 GNUNET_CRYPTO_hash (&start, sizeof (start), &hc);
111 if (NULL == (f = fopen (fn, "w+")))
114 _("Failed to open `%s': %s\n"),
120 _("Generating %u keys, please wait"),
122 while (0 < make_keys--)
126 GNUNET_CRYPTO_hash (&make_keys, sizeof (make_keys), &h2);
127 GNUNET_CRYPTO_hash (&hc, sizeof (hc), &h3);
128 GNUNET_CRYPTO_hash_xor (&h2, &h3, &hc);
129 if (NULL == (pk = GNUNET_CRYPTO_rsa_key_create_from_hash (&hc)))
134 enc = GNUNET_CRYPTO_rsa_encode_key (pk);
135 if (htons (enc->len) != fwrite (enc, 1, htons (enc->len), f))
138 _("\nFailed to write to `%s': %s\n"),
141 GNUNET_CRYPTO_rsa_key_free (pk);
145 GNUNET_CRYPTO_rsa_key_free (pk);
156 * Main function that will be run by the scheduler.
159 * @param args remaining command-line arguments
160 * @param cfgfile name of the configuration file used (for saving, can be NULL!)
161 * @param cfg configuration
164 run (void *cls, char *const *args, const char *cfgfile,
165 const struct GNUNET_CONFIGURATION_Handle *cfg)
167 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
168 struct GNUNET_CRYPTO_RsaPublicKeyBinaryEncoded pub;
169 struct GNUNET_PeerIdentity pid;
173 fprintf (stderr, _("No hostkey file specified on command line\n"));
176 if (0 != weak_random)
177 GNUNET_CRYPTO_random_disable_entropy_gathering ();
180 create_keys (args[0]);
183 pk = GNUNET_CRYPTO_rsa_key_create_from_file (args[0]);
186 if (print_public_key)
190 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
191 s = GNUNET_CRYPTO_rsa_public_key_to_string (&pub);
192 fprintf (stdout, "%s\n", s);
195 if (print_peer_identity)
197 struct GNUNET_CRYPTO_HashAsciiEncoded enc;
199 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
200 GNUNET_CRYPTO_hash (&pub, sizeof (pub), &pid.hashPubKey);
201 GNUNET_CRYPTO_hash_to_enc (&pid.hashPubKey, &enc);
202 fprintf (stdout, "%s\n", enc.encoding);
204 if (print_short_identity)
206 struct GNUNET_CRYPTO_ShortHashAsciiEncoded enc;
207 struct GNUNET_CRYPTO_ShortHashCode sh;
209 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
210 GNUNET_CRYPTO_short_hash (&pub, sizeof (pub), &sh);
211 GNUNET_CRYPTO_short_hash_to_enc (&sh, &enc);
212 fprintf (stdout, "%s\n", enc.short_encoding);
214 GNUNET_CRYPTO_rsa_key_free (pk);
219 * Program to manipulate RSA key files.
221 * @param argc number of arguments from the command line
222 * @param argv command line arguments
223 * @return 0 ok, 1 on error
226 main (int argc, char *const *argv)
228 static const struct GNUNET_GETOPT_CommandLineOption options[] = {
229 { 'g', "generate-keys", "COUNT",
230 gettext_noop ("create COUNT public-private key pairs (for testing)"),
231 1, &GNUNET_GETOPT_set_uint, &make_keys },
232 { 'p', "print-public-key", NULL,
233 gettext_noop ("print the public key in ASCII format"),
234 0, &GNUNET_GETOPT_set_one, &print_public_key },
235 { 'P', "print-peer-identity", NULL,
236 gettext_noop ("print the hash of the public key in ASCII format"),
237 0, &GNUNET_GETOPT_set_one, &print_peer_identity },
238 { 's', "print-short-identity", NULL,
239 gettext_noop ("print the short hash of the public key in ASCII format"),
240 0, &GNUNET_GETOPT_set_one, &print_short_identity },
241 { 'w', "weak-random", NULL,
242 gettext_noop ("use insecure, weak random number generator for key generation (for testing only)"),
243 0, &GNUNET_GETOPT_set_one, &weak_random },
244 GNUNET_GETOPT_OPTION_END
247 if (GNUNET_OK != GNUNET_STRINGS_get_utf8_args (argc, argv, &argc, &argv))
251 GNUNET_PROGRAM_run (argc, argv, "gnunet-rsa [OPTIONS] keyfile",
252 gettext_noop ("Manipulate GNUnet private RSA key files"),
253 options, &run, NULL)) ? 0 : 1;
256 /* end of gnunet-rsa.c */