]> git.saurik.com Git - apple/security.git/blob - keychain/ot/OTBottledPeerRecord.m
Security-59306.11.20.tar.gz
[apple/security.git] / keychain / ot / OTBottledPeerRecord.m
1 /*
2 * Copyright (c) 2017 Apple Inc. All Rights Reserved.
3 *
4 * @APPLE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
11 * file.
12 *
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
20 *
21 * @APPLE_LICENSE_HEADER_END@
22 */
23
24 #if OCTAGON
25 #import "OTBottledPeerRecord.h"
26 #import <corecrypto/cchkdf.h>
27 #import <corecrypto/ccsha2.h>
28 #import <corecrypto/ccec.h>
29
30 static NSString* OTCKRecordName = @"bp-";
31
32 @implementation OTBottledPeerRecord
33
34 -(NSString*) recordName
35 {
36 return [OTBottledPeerRecord constructRecordID:self.escrowRecordID escrowSigningSPKI:self.escrowedSigningSPKI];
37 }
38
39 + (NSString*) constructRecordID:(NSString*)escrowRecordID escrowSigningSPKI:(NSData*)escrowSigningSPKI
40 {
41 const struct ccdigest_info *di = ccsha384_di();
42 NSMutableData* result = [[NSMutableData alloc] initWithLength:ccsha384_di()->output_size];
43
44 ccdigest(di, [escrowSigningSPKI length], [escrowSigningSPKI bytes], [result mutableBytes]);
45
46 NSString* hash = [result base64EncodedStringWithOptions:0];
47
48 return [NSString stringWithFormat:@"%@-spid:%@-%@", OTCKRecordName, escrowRecordID, hash];
49 }
50
51 @end
52 #endif