2 * Copyright (c) 2000-2001 Apple Computer, Inc. All Rights Reserved.
4 * The contents of this file constitute Original Code as defined in and are
5 * subject to the Apple Public Source License Version 1.2 (the 'License').
6 * You may not use this file except in compliance with the License. Please obtain
7 * a copy of the License at http://www.apple.com/publicsource and read it before
10 * This Original Code and all software distributed under the License are
11 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESS
12 * OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES, INCLUDING WITHOUT
13 * LIMITATION, ANY WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR
14 * PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT. Please see the License for the
15 * specific language governing rights and limitations under the License.
20 // cryptoclient - client interface to CSSM CSP encryption/decryption operations
22 #include <Security/cryptoclient.h>
24 using namespace CssmClient
;
27 Crypt::Crypt(const CSP
&csp
, CSSM_ALGORITHMS alg
) : Context(csp
, alg
)
30 mMode
= CSSM_ALGMODE_NONE
;
33 mPadding
= CSSM_PADDING_NONE
;
36 void Crypt::key(const Key
&key
)
39 set(CSSM_ATTRIBUTE_KEY
, static_cast<const CssmKey
&>(key
));
47 // Some crypto operations require a credential.
48 // Use a null credential if none was specified.
50 mCred
= &AccessCredentials::null
;
52 // Key is required unless we have a NULL algorithm (cleartext wrap/unwrap),
53 // in which case we'll make a symmetric context (it shouldn't matter then).
54 if (!mKey
&& mAlgorithm
!= CSSM_ALGID_NONE
)
55 CssmError::throwMe(CSSMERR_CSP_MISSING_ATTR_KEY
);
56 if (!mKey
|| mKey
->keyClass() == CSSM_KEYCLASS_SESSION_KEY
)
58 check(CSSM_CSP_CreateSymmetricContext(attachment()->handle(), mAlgorithm
,
59 mMode
, mCred
, mKey
, mInitVector
, mPadding
, NULL
,
64 check(CSSM_CSP_CreateAsymmetricContext(attachment()->handle(), mAlgorithm
,
65 mCred
, mKey
, mPadding
, &mHandle
));
66 //@@@ stick mode and initVector explicitly into the context?
71 void Crypt::cred(const AccessCredentials
*c
)
74 mCred
= &AccessCredentials::null
;
75 set(CSSM_ATTRIBUTE_ACCESS_CREDENTIALS
, *mCred
);
80 // Manage encryption contexts
84 Encrypt::encrypt(const CssmData
*in
, uint32 inCount
,
85 CssmData
*out
, uint32 outCount
, CssmData
&remData
)
89 check(CSSM_EncryptData(handle(), in
, inCount
, out
, outCount
, &total
, &remData
));
96 check(CSSM_EncryptDataInit(handle()));
101 Encrypt::encrypt(const CssmData
*in
, uint32 inCount
,
102 CssmData
*out
, uint32 outCount
)
106 check(CSSM_EncryptDataUpdate(handle(), in
, inCount
, out
, outCount
, &total
));
111 Encrypt::final(CssmData
&remData
)
114 check(CSSM_EncryptDataFinal(handle(), &remData
));
120 // Manage Decryption contexts
124 Decrypt::decrypt(const CssmData
*in
, uint32 inCount
,
125 CssmData
*out
, uint32 outCount
, CssmData
&remData
)
129 check(CSSM_DecryptData(handle(), in
, inCount
, out
, outCount
, &total
, &remData
));
136 check(CSSM_DecryptDataInit(handle()));
141 Decrypt::decrypt(const CssmData
*in
, uint32 inCount
,
142 CssmData
*out
, uint32 outCount
)
146 check(CSSM_DecryptDataUpdate(handle(), in
, inCount
, out
, outCount
, &total
));
151 Decrypt::final(CssmData
&remData
)
154 check(CSSM_DecryptDataFinal(handle(), &remData
));