2 This file is part of GNUnet.
3 (C) 2012 Christian Grothoff (and other contributing authors)
5 GNUnet is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published
7 by the Free Software Foundation; either version 3, or (at your
8 option) any later version.
10 GNUnet is distributed in the hope that it will be useful, but
11 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with GNUnet; see the file COPYING. If not, write to the
17 Free Software Foundation, Inc., 59 Temple Place - Suite 330,
18 Boston, MA 02111-1307, USA.
22 * @file util/gnunet-rsa.c
23 * @brief tool to manipulate RSA key files
24 * @author Christian Grothoff
27 #include "gnunet_util_lib.h"
32 * Flag for printing public key.
34 static int print_public_key;
37 * Flag for printing hash of public key.
39 static int print_peer_identity;
42 * Flag for printing short hash of public key.
44 static int print_short_identity;
47 * Use weak random number generator for key generation.
49 static int weak_random;
52 * Option set to create a bunch of keys at once.
54 static unsigned int make_keys;
57 * The private information of an RSA key pair.
58 * NOTE: this must match the definition in crypto_ksk.c and crypto_rsa.c!
60 struct GNUNET_CRYPTO_RsaPrivateKey
68 * Create a new private key. Caller must free return value.
70 * @return fresh private key
72 struct GNUNET_CRYPTO_RsaPrivateKey *
73 GNUNET_CRYPTO_rsa_key_create ()
75 struct GNUNET_CRYPTO_RsaPrivateKey *ret;
77 gcry_sexp_t s_keyparam;
80 gcry_sexp_build (&s_keyparam, NULL,
81 "(genkey(rsa(nbits %d)(rsa-use-e 3:257)))",
83 GNUNET_assert (0 == gcry_pk_genkey (&s_key, s_keyparam));
84 gcry_sexp_release (s_keyparam);
86 GNUNET_assert (0 == gcry_pk_testkey (s_key));
88 ret = GNUNET_malloc (sizeof (struct GNUNET_CRYPTO_RsaPrivateKey));
96 * Create a flat file with a large number of key pairs for testing.
99 create_keys (const char *fn)
102 struct GNUNET_HashCode hc;
103 struct GNUNET_HashCode h2;
104 struct GNUNET_HashCode h3;
106 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
107 struct GNUNET_CRYPTO_RsaPrivateKeyBinaryEncoded *enc;
110 GNUNET_CRYPTO_hash (&start, sizeof (start), &hc);
111 if (NULL == (f = fopen (fn, "w+")))
114 _("Failed to open `%s': %s\n"),
120 _("Generating %u keys, please wait"),
122 while (0 < make_keys--)
126 GNUNET_CRYPTO_hash (&make_keys, sizeof (make_keys), &h2);
127 GNUNET_CRYPTO_hash (&hc, sizeof (hc), &h3);
128 GNUNET_CRYPTO_hash_xor (&h2, &h3, &hc);
129 pk = GNUNET_CRYPTO_rsa_key_create_from_hash (&hc);
130 enc = GNUNET_CRYPTO_rsa_encode_key (pk);
131 if (htons (enc->len) != fwrite (enc, 1, htons (enc->len), f))
134 _("\nFailed to write to `%s': %s\n"),
137 GNUNET_CRYPTO_rsa_key_free (pk);
140 GNUNET_CRYPTO_rsa_key_free (pk);
150 * Main function that will be run by the scheduler.
153 * @param args remaining command-line arguments
154 * @param cfgfile name of the configuration file used (for saving, can be NULL!)
155 * @param cfg configuration
158 run (void *cls, char *const *args, const char *cfgfile,
159 const struct GNUNET_CONFIGURATION_Handle *cfg)
161 struct GNUNET_CRYPTO_RsaPrivateKey *pk;
162 struct GNUNET_CRYPTO_RsaPublicKeyBinaryEncoded pub;
163 struct GNUNET_PeerIdentity pid;
167 fprintf (stderr, _("No hostkey file specified on command line\n"));
170 if (0 != weak_random)
171 GNUNET_CRYPTO_random_disable_entropy_gathering ();
174 create_keys (args[0]);
177 pk = GNUNET_CRYPTO_rsa_key_create_from_file (args[0]);
180 if (print_public_key)
184 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
185 s = GNUNET_CRYPTO_rsa_public_key_to_string (&pub);
186 fprintf (stdout, "%s\n", s);
189 if (print_peer_identity)
191 struct GNUNET_CRYPTO_HashAsciiEncoded enc;
193 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
194 GNUNET_CRYPTO_hash (&pub, sizeof (pub), &pid.hashPubKey);
195 GNUNET_CRYPTO_hash_to_enc (&pid.hashPubKey, &enc);
196 fprintf (stdout, "%s\n", enc.encoding);
198 if (print_short_identity)
200 struct GNUNET_CRYPTO_ShortHashAsciiEncoded enc;
201 struct GNUNET_CRYPTO_ShortHashCode sh;
203 GNUNET_CRYPTO_rsa_key_get_public (pk, &pub);
204 GNUNET_CRYPTO_short_hash (&pub, sizeof (pub), &sh);
205 GNUNET_CRYPTO_short_hash_to_enc (&sh, &enc);
206 fprintf (stdout, "%s\n", enc.short_encoding);
208 GNUNET_CRYPTO_rsa_key_free (pk);
213 * Program to manipulate RSA key files.
215 * @param argc number of arguments from the command line
216 * @param argv command line arguments
217 * @return 0 ok, 1 on error
220 main (int argc, char *const *argv)
222 static const struct GNUNET_GETOPT_CommandLineOption options[] = {
223 { 'g', "generate-keys", "COUNT",
224 gettext_noop ("create COUNT public-private key pairs (for testing)"),
225 1, &GNUNET_GETOPT_set_uint, &make_keys },
226 { 'p', "print-public-key", NULL,
227 gettext_noop ("print the public key in ASCII format"),
228 0, &GNUNET_GETOPT_set_one, &print_public_key },
229 { 'P', "print-peer-identity", NULL,
230 gettext_noop ("print the hash of the public key in ASCII format"),
231 0, &GNUNET_GETOPT_set_one, &print_peer_identity },
232 { 's', "print-short-identity", NULL,
233 gettext_noop ("print the short hash of the public key in ASCII format"),
234 0, &GNUNET_GETOPT_set_one, &print_short_identity },
235 { 'w', "weak-random", NULL,
236 gettext_noop ("use insecure, weak random number generator for key generation (for testing only)"),
237 0, &GNUNET_GETOPT_set_one, &weak_random },
238 GNUNET_GETOPT_OPTION_END
241 if (GNUNET_OK != GNUNET_STRINGS_get_utf8_args (argc, argv, &argc, &argv))
245 GNUNET_PROGRAM_run (argc, argv, "gnunet-rsa [OPTIONS] keyfile",
246 gettext_noop ("Manipulate GNUnet private RSA key files"),
247 options, &run, NULL)) ? 0 : 1;
250 /* end of gnunet-rsa.c */