28 #if !defined(MBEDTLS_CONFIG_FILE)
31 #include MBEDTLS_CONFIG_FILE
37 #if defined(MBEDTLS_THREADING_C)
44 #define MBEDTLS_ERR_RSA_BAD_INPUT_DATA -0x4080
45 #define MBEDTLS_ERR_RSA_INVALID_PADDING -0x4100
46 #define MBEDTLS_ERR_RSA_KEY_GEN_FAILED -0x4180
47 #define MBEDTLS_ERR_RSA_KEY_CHECK_FAILED -0x4200
48 #define MBEDTLS_ERR_RSA_PUBLIC_FAILED -0x4280
49 #define MBEDTLS_ERR_RSA_PRIVATE_FAILED -0x4300
50 #define MBEDTLS_ERR_RSA_VERIFY_FAILED -0x4380
51 #define MBEDTLS_ERR_RSA_OUTPUT_TOO_LARGE -0x4400
52 #define MBEDTLS_ERR_RSA_RNG_FAILED -0x4480
57 #define MBEDTLS_RSA_PUBLIC 0
58 #define MBEDTLS_RSA_PRIVATE 1
60 #define MBEDTLS_RSA_PKCS_V15 0
61 #define MBEDTLS_RSA_PKCS_V21 1
63 #define MBEDTLS_RSA_SIGN 1
64 #define MBEDTLS_RSA_CRYPT 2
66 #define MBEDTLS_RSA_SALT_LEN_ANY -1
72 #if defined(MBEDTLS_RSA_C)
109 #if defined(MBEDTLS_THREADING_C)
110 mbedtls_threading_mutex_t mutex;
168 int (*f_rng)(
void *,
unsigned char *,
size_t),
170 unsigned int nbits,
int exponent );
218 const unsigned char *input,
219 unsigned char *output );
236 int (*f_rng)(
void *,
unsigned char *,
size_t),
238 const unsigned char *input,
239 unsigned char *output );
261 int (*f_rng)(
void *,
unsigned char *,
size_t),
263 int mode,
size_t ilen,
264 const unsigned char *input,
265 unsigned char *output );
284 int (*f_rng)(
void *,
unsigned char *,
size_t),
286 int mode,
size_t ilen,
287 const unsigned char *input,
288 unsigned char *output );
310 int (*f_rng)(
void *,
unsigned char *,
size_t),
313 const unsigned char *label,
size_t label_len,
315 const unsigned char *input,
316 unsigned char *output );
345 int (*f_rng)(
void *,
unsigned char *,
size_t),
347 int mode,
size_t *olen,
348 const unsigned char *input,
349 unsigned char *output,
350 size_t output_max_len );
377 int (*f_rng)(
void *,
unsigned char *,
size_t),
379 int mode,
size_t *olen,
380 const unsigned char *input,
381 unsigned char *output,
382 size_t output_max_len );
411 int (*f_rng)(
void *,
unsigned char *,
size_t),
414 const unsigned char *label,
size_t label_len,
416 const unsigned char *input,
417 unsigned char *output,
418 size_t output_max_len );
445 int (*f_rng)(
void *,
unsigned char *,
size_t),
449 unsigned int hashlen,
450 const unsigned char *hash,
451 unsigned char *sig );
472 int (*f_rng)(
void *,
unsigned char *,
size_t),
476 unsigned int hashlen,
477 const unsigned char *hash,
478 unsigned char *sig );
505 int (*f_rng)(
void *,
unsigned char *,
size_t),
509 unsigned int hashlen,
510 const unsigned char *hash,
511 unsigned char *sig );
537 int (*f_rng)(
void *,
unsigned char *,
size_t),
541 unsigned int hashlen,
542 const unsigned char *hash,
543 const unsigned char *sig );
564 int (*f_rng)(
void *,
unsigned char *,
size_t),
568 unsigned int hashlen,
569 const unsigned char *hash,
570 const unsigned char *sig );
598 int (*f_rng)(
void *,
unsigned char *,
size_t),
602 unsigned int hashlen,
603 const unsigned char *hash,
604 const unsigned char *sig );
631 int (*f_rng)(
void *,
unsigned char *,
size_t),
635 unsigned int hashlen,
636 const unsigned char *hash,
638 int expected_salt_len,
639 const unsigned char *sig );
int mbedtls_rsa_self_test(int verbose)
Checkup routine.
int mbedtls_rsa_rsassa_pkcs1_v15_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v1.5 signature (RSASSA-PKCS1-v1_5-SIGN)
int mbedtls_rsa_public(mbedtls_rsa_context *ctx, const unsigned char *input, unsigned char *output)
Do an RSA public key operation.
int mbedtls_rsa_rsaes_oaep_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v2.1 OAEP decryption (RSAES-OAEP-DECRYPT)
int mbedtls_rsa_pkcs1_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Generic wrapper to perform a PKCS#1 verification using the mode from the context. ...
Configuration options (set of defines)
int mbedtls_rsa_pkcs1_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Generic wrapper to perform a PKCS#1 signature using the mode from the context.
void mbedtls_rsa_set_padding(mbedtls_rsa_context *ctx, int padding, int hash_id)
Set padding for an already initialized RSA context See mbedtls_rsa_init() for details.
Multi-precision integer library.
int mbedtls_rsa_rsassa_pss_verify_ext(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, mbedtls_md_type_t mgf1_hash_id, int expected_salt_len, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the version with "full" options...
int mbedtls_rsa_pkcs1_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Generic wrapper to perform a PKCS#1 decryption using the mode from the context.
int mbedtls_rsa_rsassa_pss_sign(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, unsigned char *sig)
Perform a PKCS#1 v2.1 PSS signature (RSASSA-PSS-SIGN)
int mbedtls_rsa_check_pub_priv(const mbedtls_rsa_context *pub, const mbedtls_rsa_context *prv)
Check a public-private RSA key pair.
Threading abstraction layer.
int mbedtls_rsa_private(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, const unsigned char *input, unsigned char *output)
Do an RSA private key operation.
int mbedtls_rsa_rsaes_pkcs1_v15_decrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t *olen, const unsigned char *input, unsigned char *output, size_t output_max_len)
Perform a PKCS#1 v1.5 decryption (RSAES-PKCS1-v1_5-DECRYPT)
int mbedtls_rsa_rsassa_pkcs1_v15_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v1.5 verification (RSASSA-PKCS1-v1_5-VERIFY)
int mbedtls_rsa_pkcs1_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Generic wrapper to perform a PKCS#1 encryption using the mode from the context.
Generic message digest wrapper.
int mbedtls_rsa_rsassa_pss_verify(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, mbedtls_md_type_t md_alg, unsigned int hashlen, const unsigned char *hash, const unsigned char *sig)
Perform a PKCS#1 v2.1 PSS verification (RSASSA-PSS-VERIFY) (This is the "simple" version.)
int mbedtls_rsa_rsaes_pkcs1_v15_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v1.5 encryption (RSAES-PKCS1-v1_5-ENCRYPT)
int mbedtls_rsa_check_pubkey(const mbedtls_rsa_context *ctx)
Check a public RSA key.
void mbedtls_rsa_free(mbedtls_rsa_context *ctx)
Free the components of an RSA key.
int mbedtls_rsa_gen_key(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, unsigned int nbits, int exponent)
Generate an RSA keypair.
int mbedtls_rsa_copy(mbedtls_rsa_context *dst, const mbedtls_rsa_context *src)
Copy the components of an RSA context.
int mbedtls_rsa_check_privkey(const mbedtls_rsa_context *ctx)
Check a private RSA key.
int mbedtls_rsa_rsaes_oaep_encrypt(mbedtls_rsa_context *ctx, int(*f_rng)(void *, unsigned char *, size_t), void *p_rng, int mode, const unsigned char *label, size_t label_len, size_t ilen, const unsigned char *input, unsigned char *output)
Perform a PKCS#1 v2.1 OAEP encryption (RSAES-OAEP-ENCRYPT)
void mbedtls_rsa_init(mbedtls_rsa_context *ctx, int padding, int hash_id)
Initialize an RSA context.