2 * Copyright (c) 2000-2001,2011-2012,2014 Apple Inc. All Rights Reserved.
4 * The contents of this file constitute Original Code as defined in and are
5 * subject to the Apple Public Source License Version 1.2 (the 'License').
6 * You may not use this file except in compliance with the License. Please obtain
7 * a copy of the License at http://www.apple.com/publicsource and read it before
10 * This Original Code and all software distributed under the License are
11 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESS
12 * OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES, INCLUDING WITHOUT
13 * LIMITATION, ANY WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR
14 * PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT. Please see the License for the
15 * specific language governing rights and limitations under the License.
20 // cryptoclient - client interface to CSSM CSP encryption/decryption operations
22 #include <security_cdsa_client/cryptoclient.h>
24 using namespace CssmClient
;
27 Crypt::Crypt(const CSP
&csp
, CSSM_ALGORITHMS alg
)
28 : Context(csp
, alg
), mMode(CSSM_ALGMODE_NONE
), mInitVector(NULL
),
29 mPadding(CSSM_PADDING_NONE
)
33 void Crypt::key(const Key
&key
)
36 set(CSSM_ATTRIBUTE_KEY
, static_cast<const CssmKey
&>(key
));
43 StLock
<Mutex
> _(mActivateMutex
);
46 // Key is required unless we have a NULL algorithm (cleartext wrap/unwrap),
47 // in which case we'll make a symmetric context (it shouldn't matter then).
48 if (!mKey
&& mAlgorithm
!= CSSM_ALGID_NONE
)
49 CssmError::throwMe(CSSMERR_CSP_MISSING_ATTR_KEY
);
50 if (!mKey
|| mKey
->keyClass() == CSSM_KEYCLASS_SESSION_KEY
)
52 check(CSSM_CSP_CreateSymmetricContext(attachment()->handle(), mAlgorithm
,
53 mMode
, neededCred(), mKey
, mInitVector
, mPadding
, NULL
,
58 check(CSSM_CSP_CreateAsymmetricContext(attachment()->handle(), mAlgorithm
,
59 neededCred(), mKey
, mPadding
, &mHandle
));
60 //@@@ stick mode and initVector explicitly into the context?
68 // Manage encryption contexts
71 Encrypt::encrypt(const CssmData
*in
, uint32 inCount
,
72 CssmData
*out
, uint32 outCount
, CssmData
&remData
)
76 check(CSSM_EncryptData(handle(), in
, inCount
, out
, outCount
, &total
, &remData
));
83 check(CSSM_EncryptDataInit(handle()));
88 Encrypt::encrypt(const CssmData
*in
, uint32 inCount
,
89 CssmData
*out
, uint32 outCount
)
93 check(CSSM_EncryptDataUpdate(handle(), in
, inCount
, out
, outCount
, &total
));
98 Encrypt::final(CssmData
&remData
)
101 check(CSSM_EncryptDataFinal(handle(), &remData
));
107 // Manage Decryption contexts
111 Decrypt::decrypt(const CssmData
*in
, uint32 inCount
,
112 CssmData
*out
, uint32 outCount
, CssmData
&remData
)
116 check(CSSM_DecryptData(handle(), in
, inCount
, out
, outCount
, &total
, &remData
));
123 check(CSSM_DecryptDataInit(handle()));
128 Decrypt::decrypt(const CssmData
*in
, uint32 inCount
,
129 CssmData
*out
, uint32 outCount
)
133 check(CSSM_DecryptDataUpdate(handle(), in
, inCount
, out
, outCount
, &total
));
138 Decrypt::final(CssmData
&remData
)
141 check(CSSM_DecryptDataFinal(handle(), &remData
));