1160814Ssimon/* crypto/ec/ec_curve.c */ 2160814Ssimon/* 3160814Ssimon * Written by Nils Larsch for the OpenSSL project. 4160814Ssimon */ 5160814Ssimon/* ==================================================================== 6160814Ssimon * Copyright (c) 1998-2004 The OpenSSL Project. All rights reserved. 7160814Ssimon * 8160814Ssimon * Redistribution and use in source and binary forms, with or without 9160814Ssimon * modification, are permitted provided that the following conditions 10160814Ssimon * are met: 11160814Ssimon * 12160814Ssimon * 1. Redistributions of source code must retain the above copyright 13296465Sdelphij * notice, this list of conditions and the following disclaimer. 14160814Ssimon * 15160814Ssimon * 2. Redistributions in binary form must reproduce the above copyright 16160814Ssimon * notice, this list of conditions and the following disclaimer in 17160814Ssimon * the documentation and/or other materials provided with the 18160814Ssimon * distribution. 19160814Ssimon * 20160814Ssimon * 3. All advertising materials mentioning features or use of this 21160814Ssimon * software must display the following acknowledgment: 22160814Ssimon * "This product includes software developed by the OpenSSL Project 23160814Ssimon * for use in the OpenSSL Toolkit. (http://www.openssl.org/)" 24160814Ssimon * 25160814Ssimon * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to 26160814Ssimon * endorse or promote products derived from this software without 27160814Ssimon * prior written permission. For written permission, please contact 28160814Ssimon * openssl-core@openssl.org. 29160814Ssimon * 30160814Ssimon * 5. Products derived from this software may not be called "OpenSSL" 31160814Ssimon * nor may "OpenSSL" appear in their names without prior written 32160814Ssimon * permission of the OpenSSL Project. 33160814Ssimon * 34160814Ssimon * 6. Redistributions of any form whatsoever must retain the following 35160814Ssimon * acknowledgment: 36160814Ssimon * "This product includes software developed by the OpenSSL Project 37160814Ssimon * for use in the OpenSSL Toolkit (http://www.openssl.org/)" 38160814Ssimon * 39160814Ssimon * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY 40160814Ssimon * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 41160814Ssimon * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 42160814Ssimon * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR 43160814Ssimon * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 44160814Ssimon * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 45160814Ssimon * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 46160814Ssimon * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 47160814Ssimon * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 48160814Ssimon * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 49160814Ssimon * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 50160814Ssimon * OF THE POSSIBILITY OF SUCH DAMAGE. 51160814Ssimon * ==================================================================== 52160814Ssimon * 53160814Ssimon * This product includes cryptographic software written by Eric Young 54160814Ssimon * (eay@cryptsoft.com). This product includes software written by Tim 55160814Ssimon * Hudson (tjh@cryptsoft.com). 56160814Ssimon * 57160814Ssimon */ 58160814Ssimon/* ==================================================================== 59160814Ssimon * Copyright 2002 Sun Microsystems, Inc. ALL RIGHTS RESERVED. 60160814Ssimon * 61296465Sdelphij * Portions of the attached software ("Contribution") are developed by 62160814Ssimon * SUN MICROSYSTEMS, INC., and are contributed to the OpenSSL project. 63160814Ssimon * 64160814Ssimon * The Contribution is licensed pursuant to the OpenSSL open source 65160814Ssimon * license provided above. 66160814Ssimon * 67296465Sdelphij * The elliptic curve binary polynomial software is originally written by 68160814Ssimon * Sheueling Chang Shantz and Douglas Stebila of Sun Microsystems Laboratories. 69160814Ssimon * 70160814Ssimon */ 71160814Ssimon 72160814Ssimon#include "ec_lcl.h" 73160814Ssimon#include <openssl/err.h> 74160814Ssimon#include <openssl/obj_mac.h> 75160814Ssimon 76160814Ssimontypedef struct ec_curve_data_st { 77296465Sdelphij int field_type; /* either NID_X9_62_prime_field or 78296465Sdelphij * NID_X9_62_characteristic_two_field */ 79296465Sdelphij const char *p; /* either a prime number or a polynomial */ 80296465Sdelphij const char *a; 81296465Sdelphij const char *b; 82296465Sdelphij const char *x; /* the x coordinate of the generator */ 83296465Sdelphij const char *y; /* the y coordinate of the generator */ 84296465Sdelphij const char *order; /* the order of the group generated by the 85296465Sdelphij * generator */ 86296465Sdelphij const BN_ULONG cofactor; /* the cofactor */ 87296465Sdelphij const unsigned char *seed; /* the seed (optional) */ 88296465Sdelphij size_t seed_len; 89296465Sdelphij const char *comment; /* a short description of the curve */ 90160814Ssimon} EC_CURVE_DATA; 91160814Ssimon 92160814Ssimon/* the nist prime curves */ 93160814Ssimonstatic const unsigned char _EC_NIST_PRIME_192_SEED[] = { 94296465Sdelphij 0x30, 0x45, 0xAE, 0x6F, 0xC8, 0x42, 0x2F, 0x64, 0xED, 0x57, 95296465Sdelphij 0x95, 0x28, 0xD3, 0x81, 0x20, 0xEA, 0xE1, 0x21, 0x96, 0xD5 96296465Sdelphij}; 97296465Sdelphij 98160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_192 = { 99296465Sdelphij NID_X9_62_prime_field, 100296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF", 101296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC", 102296465Sdelphij "64210519E59C80E70FA7E9AB72243049FEB8DEECC146B9B1", 103296465Sdelphij "188DA80EB03090F67CBF20EB43A18800F4FF0AFD82FF1012", 104296465Sdelphij "07192b95ffc8da78631011ed6b24cdd573f977a11e794811", 105296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFF99DEF836146BC9B1B4D22831", 1, 106296465Sdelphij _EC_NIST_PRIME_192_SEED, 20, 107296465Sdelphij "NIST/X9.62/SECG curve over a 192 bit prime field" 108296465Sdelphij}; 109160814Ssimon 110160814Ssimonstatic const unsigned char _EC_NIST_PRIME_224_SEED[] = { 111296465Sdelphij 0xBD, 0x71, 0x34, 0x47, 0x99, 0xD5, 0xC7, 0xFC, 0xDC, 0x45, 112296465Sdelphij 0xB5, 0x9F, 0xA3, 0xB9, 0xAB, 0x8F, 0x6A, 0x94, 0x8B, 0xC5 113296465Sdelphij}; 114296465Sdelphij 115160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_224 = { 116296465Sdelphij NID_X9_62_prime_field, 117296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001", 118296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE", 119296465Sdelphij "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4", 120296465Sdelphij "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21", 121296465Sdelphij "bd376388b5f723fb4c22dfe6cd4375a05a07476444d5819985007e34", 122296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D", 1, 123296465Sdelphij _EC_NIST_PRIME_224_SEED, 20, 124296465Sdelphij "NIST/SECG curve over a 224 bit prime field" 125296465Sdelphij}; 126160814Ssimon 127160814Ssimonstatic const unsigned char _EC_NIST_PRIME_384_SEED[] = { 128296465Sdelphij 0xA3, 0x35, 0x92, 0x6A, 0xA3, 0x19, 0xA2, 0x7A, 0x1D, 0x00, 129296465Sdelphij 0x89, 0x6A, 0x67, 0x73, 0xA4, 0x82, 0x7A, 0xCD, 0xAC, 0x73 130296465Sdelphij}; 131296465Sdelphij 132160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_384 = { 133296465Sdelphij NID_X9_62_prime_field, 134296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFF" 135296465Sdelphij "FFF0000000000000000FFFFFFFF", 136296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFF" 137296465Sdelphij "FFF0000000000000000FFFFFFFC", 138296465Sdelphij "B3312FA7E23EE7E4988E056BE3F82D19181D9C6EFE8141120314088F5013875AC6563" 139296465Sdelphij "98D8A2ED19D2A85C8EDD3EC2AEF", 140296465Sdelphij "AA87CA22BE8B05378EB1C71EF320AD746E1D3B628BA79B9859F741E082542A385502F" 141296465Sdelphij "25DBF55296C3A545E3872760AB7", 142296465Sdelphij "3617de4a96262c6f5d9e98bf9292dc29f8f41dbd289a147ce9da3113b5f0b8c00a60b" 143296465Sdelphij "1ce1d7e819d7a431d7c90ea0e5f", 144296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC7634D81F4372DDF581A0" 145296465Sdelphij "DB248B0A77AECEC196ACCC52973", 1, 146296465Sdelphij _EC_NIST_PRIME_384_SEED, 20, 147296465Sdelphij "NIST/SECG curve over a 384 bit prime field" 148296465Sdelphij}; 149160814Ssimon 150160814Ssimonstatic const unsigned char _EC_NIST_PRIME_521_SEED[] = { 151296465Sdelphij 0xD0, 0x9E, 0x88, 0x00, 0x29, 0x1C, 0xB8, 0x53, 0x96, 0xCC, 152296465Sdelphij 0x67, 0x17, 0x39, 0x32, 0x84, 0xAA, 0xA0, 0xDA, 0x64, 0xBA 153296465Sdelphij}; 154296465Sdelphij 155160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_521 = { 156296465Sdelphij NID_X9_62_prime_field, 157296465Sdelphij "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF" 158296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF", 159296465Sdelphij "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF" 160296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC", 161296465Sdelphij "051953EB9618E1C9A1F929A21A0B68540EEA2DA725B99B315F3B8B489918EF109E156" 162296465Sdelphij "193951EC7E937B1652C0BD3BB1BF073573DF883D2C34F1EF451FD46B503F00", 163296465Sdelphij "C6858E06B70404E9CD9E3ECB662395B4429C648139053FB521F828AF606B4D3DBAA14" 164296465Sdelphij "B5E77EFE75928FE1DC127A2FFA8DE3348B3C1856A429BF97E7E31C2E5BD66", 165296465Sdelphij "011839296a789a3bc0045c8a5fb42c7d1bd998f54449579b446817afbd17273e662c9" 166296465Sdelphij "7ee72995ef42640c550b9013fad0761353c7086a272c24088be94769fd16650", 167296465Sdelphij "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFA51" 168296465Sdelphij "868783BF2F966B7FCC0148F709A5D03BB5C9B8899C47AEBB6FB71E91386409", 1, 169296465Sdelphij _EC_NIST_PRIME_521_SEED, 20, 170296465Sdelphij "NIST/SECG curve over a 521 bit prime field" 171296465Sdelphij}; 172296465Sdelphij 173160814Ssimon/* the x9.62 prime curves (minus the nist prime curves) */ 174160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_192V2_SEED[] = { 175296465Sdelphij 0x31, 0xA9, 0x2E, 0xE2, 0x02, 0x9F, 0xD1, 0x0D, 0x90, 0x1B, 176296465Sdelphij 0x11, 0x3E, 0x99, 0x07, 0x10, 0xF0, 0xD2, 0x1A, 0xC6, 0xB6 177296465Sdelphij}; 178296465Sdelphij 179160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_192V2 = { 180296465Sdelphij NID_X9_62_prime_field, 181296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF", 182296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC", 183296465Sdelphij "CC22D6DFB95C6B25E49C0D6364A4E5980C393AA21668D953", 184296465Sdelphij "EEA2BAE7E1497842F2DE7769CFE9C989C072AD696F48034A", 185296465Sdelphij "6574d11d69b6ec7a672bb82a083df2f2b0847de970b2de15", 186296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFE5FB1A724DC80418648D8DD31", 1, 187296465Sdelphij _EC_X9_62_PRIME_192V2_SEED, 20, 188296465Sdelphij "X9.62 curve over a 192 bit prime field" 189296465Sdelphij}; 190160814Ssimon 191160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_192V3_SEED[] = { 192296465Sdelphij 0xC4, 0x69, 0x68, 0x44, 0x35, 0xDE, 0xB3, 0x78, 0xC4, 0xB6, 193296465Sdelphij 0x5C, 0xA9, 0x59, 0x1E, 0x2A, 0x57, 0x63, 0x05, 0x9A, 0x2E 194296465Sdelphij}; 195296465Sdelphij 196160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_192V3 = { 197296465Sdelphij NID_X9_62_prime_field, 198296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF", 199296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC", 200296465Sdelphij "22123DC2395A05CAA7423DAECCC94760A7D462256BD56916", 201296465Sdelphij "7D29778100C65A1DA1783716588DCE2B8B4AEE8E228F1896", 202296465Sdelphij "38a90f22637337334b49dcb66a6dc8f9978aca7648a943b0", 203296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFF7A62D031C83F4294F640EC13", 1, 204296465Sdelphij _EC_X9_62_PRIME_192V3_SEED, 20, 205296465Sdelphij "X9.62 curve over a 192 bit prime field" 206296465Sdelphij}; 207160814Ssimon 208160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V1_SEED[] = { 209296465Sdelphij 0xE4, 0x3B, 0xB4, 0x60, 0xF0, 0xB8, 0x0C, 0xC0, 0xC0, 0xB0, 210296465Sdelphij 0x75, 0x79, 0x8E, 0x94, 0x80, 0x60, 0xF8, 0x32, 0x1B, 0x7D 211296465Sdelphij}; 212296465Sdelphij 213160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V1 = { 214296465Sdelphij NID_X9_62_prime_field, 215296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF", 216296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC", 217296465Sdelphij "6B016C3BDCF18941D0D654921475CA71A9DB2FB27D1D37796185C2942C0A", 218296465Sdelphij "0FFA963CDCA8816CCC33B8642BEDF905C3D358573D3F27FBBD3B3CB9AAAF", 219296465Sdelphij "7debe8e4e90a5dae6e4054ca530ba04654b36818ce226b39fccb7b02f1ae", 220296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF9E5E9A9F5D9071FBD1522688909D0B", 1, 221296465Sdelphij _EC_X9_62_PRIME_239V1_SEED, 20, 222296465Sdelphij "X9.62 curve over a 239 bit prime field" 223296465Sdelphij}; 224160814Ssimon 225160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V2_SEED[] = { 226296465Sdelphij 0xE8, 0xB4, 0x01, 0x16, 0x04, 0x09, 0x53, 0x03, 0xCA, 0x3B, 227296465Sdelphij 0x80, 0x99, 0x98, 0x2B, 0xE0, 0x9F, 0xCB, 0x9A, 0xE6, 0x16 228296465Sdelphij}; 229296465Sdelphij 230160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V2 = { 231296465Sdelphij NID_X9_62_prime_field, 232296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF", 233296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC", 234296465Sdelphij "617FAB6832576CBBFED50D99F0249C3FEE58B94BA0038C7AE84C8C832F2C", 235296465Sdelphij "38AF09D98727705120C921BB5E9E26296A3CDCF2F35757A0EAFD87B830E7", 236296465Sdelphij "5b0125e4dbea0ec7206da0fc01d9b081329fb555de6ef460237dff8be4ba", 237296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF800000CFA7E8594377D414C03821BC582063", 1, 238296465Sdelphij _EC_X9_62_PRIME_239V2_SEED, 20, 239296465Sdelphij "X9.62 curve over a 239 bit prime field" 240296465Sdelphij}; 241160814Ssimon 242160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V3_SEED[] = { 243296465Sdelphij 0x7D, 0x73, 0x74, 0x16, 0x8F, 0xFE, 0x34, 0x71, 0xB6, 0x0A, 244296465Sdelphij 0x85, 0x76, 0x86, 0xA1, 0x94, 0x75, 0xD3, 0xBF, 0xA2, 0xFF 245296465Sdelphij}; 246296465Sdelphij 247160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V3 = { 248296465Sdelphij NID_X9_62_prime_field, 249296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF", 250296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC", 251296465Sdelphij "255705FA2A306654B1F4CB03D6A750A30C250102D4988717D9BA15AB6D3E", 252296465Sdelphij "6768AE8E18BB92CFCF005C949AA2C6D94853D0E660BBF854B1C9505FE95A", 253296465Sdelphij "1607e6898f390c06bc1d552bad226f3b6fcfe48b6e818499af18e3ed6cf3", 254296465Sdelphij "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF975DEB41B3A6057C3C432146526551", 1, 255296465Sdelphij _EC_X9_62_PRIME_239V3_SEED, 20, 256296465Sdelphij "X9.62 curve over a 239 bit prime field" 257296465Sdelphij}; 258160814Ssimon 259160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_256V1_SEED[] = { 260296465Sdelphij 0xC4, 0x9D, 0x36, 0x08, 0x86, 0xE7, 0x04, 0x93, 0x6A, 0x66, 261296465Sdelphij 0x78, 0xE1, 0x13, 0x9D, 0x26, 0xB7, 0x81, 0x9F, 0x7E, 0x90 262296465Sdelphij}; 263296465Sdelphij 264160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_256V1 = { 265296465Sdelphij NID_X9_62_prime_field, 266296465Sdelphij "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFF", 267296465Sdelphij "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFC", 268296465Sdelphij "5AC635D8AA3A93E7B3EBBD55769886BC651D06B0CC53B0F63BCE3C3E27D2604B", 269296465Sdelphij "6B17D1F2E12C4247F8BCE6E563A440F277037D812DEB33A0F4A13945D898C296", 270296465Sdelphij "4fe342e2fe1a7f9b8ee7eb4a7c0f9e162bce33576b315ececbb6406837bf51f5", 271296465Sdelphij "FFFFFFFF00000000FFFFFFFFFFFFFFFFBCE6FAADA7179E84F3B9CAC2FC632551", 1, 272296465Sdelphij _EC_X9_62_PRIME_256V1_SEED, 20, 273296465Sdelphij "X9.62/SECG curve over a 256 bit prime field" 274296465Sdelphij}; 275296465Sdelphij 276160814Ssimon/* the secg prime curves (minus the nist and x9.62 prime curves) */ 277160814Ssimonstatic const unsigned char _EC_SECG_PRIME_112R1_SEED[] = { 278296465Sdelphij 0x00, 0xF5, 0x0B, 0x02, 0x8E, 0x4D, 0x69, 0x6E, 0x67, 0x68, 279296465Sdelphij 0x75, 0x61, 0x51, 0x75, 0x29, 0x04, 0x72, 0x78, 0x3F, 0xB1 280296465Sdelphij}; 281296465Sdelphij 282160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_112R1 = { 283296465Sdelphij NID_X9_62_prime_field, 284296465Sdelphij "DB7C2ABF62E35E668076BEAD208B", 285296465Sdelphij "DB7C2ABF62E35E668076BEAD2088", 286296465Sdelphij "659EF8BA043916EEDE8911702B22", 287296465Sdelphij "09487239995A5EE76B55F9C2F098", 288296465Sdelphij "a89ce5af8724c0a23e0e0ff77500", 289296465Sdelphij "DB7C2ABF62E35E7628DFAC6561C5", 1, 290296465Sdelphij _EC_SECG_PRIME_112R1_SEED, 20, 291296465Sdelphij "SECG/WTLS curve over a 112 bit prime field" 292296465Sdelphij}; 293160814Ssimon 294160814Ssimonstatic const unsigned char _EC_SECG_PRIME_112R2_SEED[] = { 295296465Sdelphij 0x00, 0x27, 0x57, 0xA1, 0x11, 0x4D, 0x69, 0x6E, 0x67, 0x68, 296296465Sdelphij 0x75, 0x61, 0x51, 0x75, 0x53, 0x16, 0xC0, 0x5E, 0x0B, 0xD4 297296465Sdelphij}; 298296465Sdelphij 299160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_112R2 = { 300296465Sdelphij NID_X9_62_prime_field, 301296465Sdelphij "DB7C2ABF62E35E668076BEAD208B", 302296465Sdelphij "6127C24C05F38A0AAAF65C0EF02C", 303296465Sdelphij "51DEF1815DB5ED74FCC34C85D709", 304296465Sdelphij "4BA30AB5E892B4E1649DD0928643", 305296465Sdelphij "adcd46f5882e3747def36e956e97", 306296465Sdelphij "36DF0AAFD8B8D7597CA10520D04B", 4, 307296465Sdelphij _EC_SECG_PRIME_112R2_SEED, 20, 308296465Sdelphij "SECG curve over a 112 bit prime field" 309296465Sdelphij}; 310160814Ssimon 311160814Ssimonstatic const unsigned char _EC_SECG_PRIME_128R1_SEED[] = { 312296465Sdelphij 0x00, 0x0E, 0x0D, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 313296465Sdelphij 0x51, 0x75, 0x0C, 0xC0, 0x3A, 0x44, 0x73, 0xD0, 0x36, 0x79 314296465Sdelphij}; 315296465Sdelphij 316160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_128R1 = { 317296465Sdelphij NID_X9_62_prime_field, 318296465Sdelphij "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF", 319296465Sdelphij "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFC", 320296465Sdelphij "E87579C11079F43DD824993C2CEE5ED3", 321296465Sdelphij "161FF7528B899B2D0C28607CA52C5B86", 322296465Sdelphij "cf5ac8395bafeb13c02da292dded7a83", 323296465Sdelphij "FFFFFFFE0000000075A30D1B9038A115", 1, 324296465Sdelphij _EC_SECG_PRIME_128R1_SEED, 20, 325296465Sdelphij "SECG curve over a 128 bit prime field" 326296465Sdelphij}; 327160814Ssimon 328160814Ssimonstatic const unsigned char _EC_SECG_PRIME_128R2_SEED[] = { 329296465Sdelphij 0x00, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 0x51, 0x75, 330296465Sdelphij 0x12, 0xD8, 0xF0, 0x34, 0x31, 0xFC, 0xE6, 0x3B, 0x88, 0xF4 331296465Sdelphij}; 332296465Sdelphij 333160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_128R2 = { 334296465Sdelphij NID_X9_62_prime_field, 335296465Sdelphij "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF", 336296465Sdelphij "D6031998D1B3BBFEBF59CC9BBFF9AEE1", 337296465Sdelphij "5EEEFCA380D02919DC2C6558BB6D8A5D", 338296465Sdelphij "7B6AA5D85E572983E6FB32A7CDEBC140", 339296465Sdelphij "27b6916a894d3aee7106fe805fc34b44", 340296465Sdelphij "3FFFFFFF7FFFFFFFBE0024720613B5A3", 4, 341296465Sdelphij _EC_SECG_PRIME_128R2_SEED, 20, 342296465Sdelphij "SECG curve over a 128 bit prime field" 343296465Sdelphij}; 344160814Ssimon 345160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160K1 = { 346296465Sdelphij NID_X9_62_prime_field, 347296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73", 348296465Sdelphij "0", 349296465Sdelphij "7", 350296465Sdelphij "3B4C382CE37AA192A4019E763036F4F5DD4D7EBB", 351296465Sdelphij "938cf935318fdced6bc28286531733c3f03c4fee", 352296465Sdelphij "0100000000000000000001B8FA16DFAB9ACA16B6B3", 1, 353296465Sdelphij NULL, 0, 354296465Sdelphij "SECG curve over a 160 bit prime field" 355296465Sdelphij}; 356160814Ssimon 357160814Ssimonstatic const unsigned char _EC_SECG_PRIME_160R1_SEED[] = { 358296465Sdelphij 0x10, 0x53, 0xCD, 0xE4, 0x2C, 0x14, 0xD6, 0x96, 0xE6, 0x76, 359296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x53, 0x3B, 0xF3, 0xF8, 0x33, 0x45 360296465Sdelphij}; 361296465Sdelphij 362160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160R1 = { 363296465Sdelphij NID_X9_62_prime_field, 364296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFF", 365296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFC", 366296465Sdelphij "1C97BEFC54BD7A8B65ACF89F81D4D4ADC565FA45", 367296465Sdelphij "4A96B5688EF573284664698968C38BB913CBFC82", 368296465Sdelphij "23a628553168947d59dcc912042351377ac5fb32", 369296465Sdelphij "0100000000000000000001F4C8F927AED3CA752257", 1, 370296465Sdelphij _EC_SECG_PRIME_160R1_SEED, 20, 371296465Sdelphij "SECG curve over a 160 bit prime field" 372296465Sdelphij}; 373160814Ssimon 374160814Ssimonstatic const unsigned char _EC_SECG_PRIME_160R2_SEED[] = { 375296465Sdelphij 0xB9, 0x9B, 0x99, 0xB0, 0x99, 0xB3, 0x23, 0xE0, 0x27, 0x09, 376296465Sdelphij 0xA4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x51 377296465Sdelphij}; 378296465Sdelphij 379160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160R2 = { 380296465Sdelphij NID_X9_62_prime_field, 381296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73", 382296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC70", 383296465Sdelphij "B4E134D3FB59EB8BAB57274904664D5AF50388BA", 384296465Sdelphij "52DCB034293A117E1F4FF11B30F7199D3144CE6D", 385296465Sdelphij "feaffef2e331f296e071fa0df9982cfea7d43f2e", 386296465Sdelphij "0100000000000000000000351EE786A818F3A1A16B", 1, 387296465Sdelphij _EC_SECG_PRIME_160R2_SEED, 20, 388296465Sdelphij "SECG/WTLS curve over a 160 bit prime field" 389296465Sdelphij}; 390160814Ssimon 391160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_192K1 = { 392296465Sdelphij NID_X9_62_prime_field, 393296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFEE37", 394296465Sdelphij "0", 395296465Sdelphij "3", 396296465Sdelphij "DB4FF10EC057E9AE26B07D0280B7F4341DA5D1B1EAE06C7D", 397296465Sdelphij "9b2f2f6d9c5628a7844163d015be86344082aa88d95e2f9d", 398296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFE26F2FC170F69466A74DEFD8D", 1, 399296465Sdelphij NULL, 20, 400296465Sdelphij "SECG curve over a 192 bit prime field" 401296465Sdelphij}; 402160814Ssimon 403160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_224K1 = { 404296465Sdelphij NID_X9_62_prime_field, 405296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFE56D", 406296465Sdelphij "0", 407296465Sdelphij "5", 408296465Sdelphij "A1455B334DF099DF30FC28A169A467E9E47075A90F7E650EB6B7A45C", 409296465Sdelphij "7e089fed7fba344282cafbd6f7e319f7c0b0bd59e2ca4bdb556d61a5", 410296465Sdelphij "010000000000000000000000000001DCE8D2EC6184CAF0A971769FB1F7", 1, 411296465Sdelphij NULL, 20, 412296465Sdelphij "SECG curve over a 224 bit prime field" 413296465Sdelphij}; 414160814Ssimon 415160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_256K1 = { 416296465Sdelphij NID_X9_62_prime_field, 417296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFC2F", 418296465Sdelphij "0", 419296465Sdelphij "7", 420296465Sdelphij "79BE667EF9DCBBAC55A06295CE870B07029BFCDB2DCE28D959F2815B16F81798", 421296465Sdelphij "483ada7726a3c4655da4fbfc0e1108a8fd17b448a68554199c47d08ffb10d4b8", 422296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEBAAEDCE6AF48A03BBFD25E8CD0364141", 1, 423296465Sdelphij NULL, 20, 424296465Sdelphij "SECG curve over a 256 bit prime field" 425296465Sdelphij}; 426160814Ssimon 427160814Ssimon/* some wap/wtls curves */ 428160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_8 = { 429296465Sdelphij NID_X9_62_prime_field, 430296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFDE7", 431296465Sdelphij "0", 432296465Sdelphij "3", 433296465Sdelphij "1", 434296465Sdelphij "2", 435296465Sdelphij "0100000000000001ECEA551AD837E9", 1, 436296465Sdelphij NULL, 20, 437296465Sdelphij "WTLS curve over a 112 bit prime field" 438296465Sdelphij}; 439160814Ssimon 440160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_9 = { 441296465Sdelphij NID_X9_62_prime_field, 442296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC808F", 443296465Sdelphij "0", 444296465Sdelphij "3", 445296465Sdelphij "1", 446296465Sdelphij "2", 447296465Sdelphij "0100000000000000000001CDC98AE0E2DE574ABF33", 1, 448296465Sdelphij NULL, 20, 449296465Sdelphij "WTLS curve over a 160 bit prime field" 450296465Sdelphij}; 451160814Ssimon 452160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_12 = { 453296465Sdelphij NID_X9_62_prime_field, 454296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001", 455296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE", 456296465Sdelphij "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4", 457296465Sdelphij "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21", 458296465Sdelphij "bd376388b5f723fb4c22dfe6cd4375a05a07476444d5819985007e34", 459296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D", 1, 460296465Sdelphij NULL, 0, 461296465Sdelphij "WTLS curvs over a 224 bit prime field" 462296465Sdelphij}; 463160814Ssimon 464160814Ssimon/* characteristic two curves */ 465160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_113R1_SEED[] = { 466296465Sdelphij 0x10, 0xE7, 0x23, 0xAB, 0x14, 0xD6, 0x96, 0xE6, 0x76, 0x87, 467296465Sdelphij 0x56, 0x15, 0x17, 0x56, 0xFE, 0xBF, 0x8F, 0xCB, 0x49, 0xA9 468296465Sdelphij}; 469296465Sdelphij 470160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_113R1 = { 471296465Sdelphij NID_X9_62_characteristic_two_field, 472296465Sdelphij "020000000000000000000000000201", 473296465Sdelphij "003088250CA6E7C7FE649CE85820F7", 474296465Sdelphij "00E8BEE4D3E2260744188BE0E9C723", 475296465Sdelphij "009D73616F35F4AB1407D73562C10F", 476296465Sdelphij "00A52830277958EE84D1315ED31886", 477296465Sdelphij "0100000000000000D9CCEC8A39E56F", 2, 478296465Sdelphij _EC_SECG_CHAR2_113R1_SEED, 20, 479296465Sdelphij "SECG curve over a 113 bit binary field" 480296465Sdelphij}; 481160814Ssimon 482160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_113R2_SEED[] = { 483296465Sdelphij 0x10, 0xC0, 0xFB, 0x15, 0x76, 0x08, 0x60, 0xDE, 0xF1, 0xEE, 484296465Sdelphij 0xF4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x5D 485296465Sdelphij}; 486296465Sdelphij 487160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_113R2 = { 488296465Sdelphij NID_X9_62_characteristic_two_field, 489296465Sdelphij "020000000000000000000000000201", 490296465Sdelphij "00689918DBEC7E5A0DD6DFC0AA55C7", 491296465Sdelphij "0095E9A9EC9B297BD4BF36E059184F", 492296465Sdelphij "01A57A6A7B26CA5EF52FCDB8164797", 493296465Sdelphij "00B3ADC94ED1FE674C06E695BABA1D", 494296465Sdelphij "010000000000000108789B2496AF93", 2, 495296465Sdelphij _EC_SECG_CHAR2_113R2_SEED, 20, 496296465Sdelphij "SECG curve over a 113 bit binary field" 497296465Sdelphij}; 498160814Ssimon 499160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_131R1_SEED[] = { 500296465Sdelphij 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 0x51, 0x75, 0x98, 501296465Sdelphij 0x5B, 0xD3, 0xAD, 0xBA, 0xDA, 0x21, 0xB4, 0x3A, 0x97, 0xE2 502296465Sdelphij}; 503296465Sdelphij 504160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_131R1 = { 505296465Sdelphij NID_X9_62_characteristic_two_field, 506296465Sdelphij "080000000000000000000000000000010D", 507296465Sdelphij "07A11B09A76B562144418FF3FF8C2570B8", 508296465Sdelphij "0217C05610884B63B9C6C7291678F9D341", 509296465Sdelphij "0081BAF91FDF9833C40F9C181343638399", 510296465Sdelphij "078C6E7EA38C001F73C8134B1B4EF9E150", 511296465Sdelphij "0400000000000000023123953A9464B54D", 2, 512296465Sdelphij _EC_SECG_CHAR2_131R1_SEED, 20, 513296465Sdelphij "SECG/WTLS curve over a 131 bit binary field" 514296465Sdelphij}; 515160814Ssimon 516160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_131R2_SEED[] = { 517296465Sdelphij 0x98, 0x5B, 0xD3, 0xAD, 0xBA, 0xD4, 0xD6, 0x96, 0xE6, 0x76, 518296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x5A, 0x21, 0xB4, 0x3A, 0x97, 0xE3 519296465Sdelphij}; 520296465Sdelphij 521160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_131R2 = { 522296465Sdelphij NID_X9_62_characteristic_two_field, 523296465Sdelphij "080000000000000000000000000000010D", 524296465Sdelphij "03E5A88919D7CAFCBF415F07C2176573B2", 525296465Sdelphij "04B8266A46C55657AC734CE38F018F2192", 526296465Sdelphij "0356DCD8F2F95031AD652D23951BB366A8", 527296465Sdelphij "0648F06D867940A5366D9E265DE9EB240F", 528296465Sdelphij "0400000000000000016954A233049BA98F", 2, 529296465Sdelphij _EC_SECG_CHAR2_131R2_SEED, 20, 530296465Sdelphij "SECG curve over a 131 bit binary field" 531296465Sdelphij}; 532160814Ssimon 533160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_163K = { 534296465Sdelphij NID_X9_62_characteristic_two_field, 535296465Sdelphij "0800000000000000000000000000000000000000C9", 536296465Sdelphij "1", 537296465Sdelphij "1", 538296465Sdelphij "02FE13C0537BBC11ACAA07D793DE4E6D5E5C94EEE8", 539296465Sdelphij "0289070FB05D38FF58321F2E800536D538CCDAA3D9", 540296465Sdelphij "04000000000000000000020108A2E0CC0D99F8A5EF", 2, 541296465Sdelphij NULL, 0, 542296465Sdelphij "NIST/SECG/WTLS curve over a 163 bit binary field" 543296465Sdelphij}; 544160814Ssimon 545160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_163R1_SEED[] = { 546296465Sdelphij 0x24, 0xB7, 0xB1, 0x37, 0xC8, 0xA1, 0x4D, 0x69, 0x6E, 0x67, 547296465Sdelphij 0x68, 0x75, 0x61, 0x51, 0x75, 0x6F, 0xD0, 0xDA, 0x2E, 0x5C 548296465Sdelphij}; 549296465Sdelphij 550160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_163R1 = { 551296465Sdelphij NID_X9_62_characteristic_two_field, 552296465Sdelphij "0800000000000000000000000000000000000000C9", 553296465Sdelphij "07B6882CAAEFA84F9554FF8428BD88E246D2782AE2", 554296465Sdelphij "0713612DCDDCB40AAB946BDA29CA91F73AF958AFD9", 555296465Sdelphij "0369979697AB43897789566789567F787A7876A654", 556296465Sdelphij "00435EDB42EFAFB2989D51FEFCE3C80988F41FF883", 557296465Sdelphij "03FFFFFFFFFFFFFFFFFFFF48AAB689C29CA710279B", 2, 558296465Sdelphij /* 559296465Sdelphij * The algorithm used to derive the curve parameters from the seed used 560296465Sdelphij * here is slightly different than the algorithm described in X9.62 . 561296465Sdelphij */ 562160814Ssimon#if 0 563296465Sdelphij _EC_SECG_CHAR2_163R1_SEED, 20, 564160814Ssimon#else 565296465Sdelphij NULL, 0, 566160814Ssimon#endif 567296465Sdelphij "SECG curve over a 163 bit binary field" 568296465Sdelphij}; 569160814Ssimon 570160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_163B_SEED[] = { 571296465Sdelphij 0x85, 0xE2, 0x5B, 0xFE, 0x5C, 0x86, 0x22, 0x6C, 0xDB, 0x12, 572296465Sdelphij 0x01, 0x6F, 0x75, 0x53, 0xF9, 0xD0, 0xE6, 0x93, 0xA2, 0x68 573296465Sdelphij}; 574296465Sdelphij 575296465Sdelphijstatic const EC_CURVE_DATA _EC_NIST_CHAR2_163B = { 576296465Sdelphij NID_X9_62_characteristic_two_field, 577296465Sdelphij "0800000000000000000000000000000000000000C9", 578296465Sdelphij "1", 579296465Sdelphij "020A601907B8C953CA1481EB10512F78744A3205FD", 580296465Sdelphij "03F0EBA16286A2D57EA0991168D4994637E8343E36", 581296465Sdelphij "00D51FBC6C71A0094FA2CDD545B11C5C0C797324F1", 582296465Sdelphij "040000000000000000000292FE77E70C12A4234C33", 2, 583296465Sdelphij /* 584296465Sdelphij * The seed here was used to created the curve parameters in normal basis 585296465Sdelphij * representation (and not the polynomial representation used here) 586296465Sdelphij */ 587160814Ssimon#if 0 588296465Sdelphij _EC_NIST_CHAR2_163B_SEED, 20, 589160814Ssimon#else 590296465Sdelphij NULL, 0, 591160814Ssimon#endif 592296465Sdelphij "NIST/SECG curve over a 163 bit binary field" 593296465Sdelphij}; 594160814Ssimon 595160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_193R1_SEED[] = { 596296465Sdelphij 0x10, 0x3F, 0xAE, 0xC7, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 597296465Sdelphij 0x61, 0x51, 0x75, 0x77, 0x7F, 0xC5, 0xB1, 0x91, 0xEF, 0x30 598296465Sdelphij}; 599296465Sdelphij 600160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_193R1 = { 601296465Sdelphij NID_X9_62_characteristic_two_field, 602296465Sdelphij "02000000000000000000000000000000000000000000008001", 603296465Sdelphij "0017858FEB7A98975169E171F77B4087DE098AC8A911DF7B01", 604296465Sdelphij "00FDFB49BFE6C3A89FACADAA7A1E5BBC7CC1C2E5D831478814", 605296465Sdelphij "01F481BC5F0FF84A74AD6CDF6FDEF4BF6179625372D8C0C5E1", 606296465Sdelphij "0025E399F2903712CCF3EA9E3A1AD17FB0B3201B6AF7CE1B05", 607296465Sdelphij "01000000000000000000000000C7F34A778F443ACC920EBA49", 2, 608296465Sdelphij _EC_SECG_CHAR2_193R1_SEED, 20, 609296465Sdelphij "SECG curve over a 193 bit binary field" 610296465Sdelphij}; 611160814Ssimon 612160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_193R2_SEED[] = { 613296465Sdelphij 0x10, 0xB7, 0xB4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 614296465Sdelphij 0x17, 0x51, 0x37, 0xC8, 0xA1, 0x6F, 0xD0, 0xDA, 0x22, 0x11 615296465Sdelphij}; 616296465Sdelphij 617160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_193R2 = { 618296465Sdelphij NID_X9_62_characteristic_two_field, 619296465Sdelphij "02000000000000000000000000000000000000000000008001", 620296465Sdelphij "0163F35A5137C2CE3EA6ED8667190B0BC43ECD69977702709B", 621296465Sdelphij "00C9BB9E8927D4D64C377E2AB2856A5B16E3EFB7F61D4316AE", 622296465Sdelphij "00D9B67D192E0367C803F39E1A7E82CA14A651350AAE617E8F", 623296465Sdelphij "01CE94335607C304AC29E7DEFBD9CA01F596F927224CDECF6C", 624296465Sdelphij "010000000000000000000000015AAB561B005413CCD4EE99D5", 2, 625296465Sdelphij _EC_SECG_CHAR2_193R2_SEED, 20, 626296465Sdelphij "SECG curve over a 193 bit binary field" 627296465Sdelphij}; 628160814Ssimon 629160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_233K = { 630296465Sdelphij NID_X9_62_characteristic_two_field, 631296465Sdelphij "020000000000000000000000000000000000000004000000000000000001", 632296465Sdelphij "0", 633296465Sdelphij "1", 634296465Sdelphij "017232BA853A7E731AF129F22FF4149563A419C26BF50A4C9D6EEFAD6126", 635296465Sdelphij "01DB537DECE819B7F70F555A67C427A8CD9BF18AEB9B56E0C11056FAE6A3", 636296465Sdelphij "008000000000000000000000000000069D5BB915BCD46EFB1AD5F173ABDF", 4, 637296465Sdelphij NULL, 0, 638296465Sdelphij "NIST/SECG/WTLS curve over a 233 bit binary field" 639296465Sdelphij}; 640160814Ssimon 641160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_233B_SEED[] = { 642296465Sdelphij 0x74, 0xD5, 0x9F, 0xF0, 0x7F, 0x6B, 0x41, 0x3D, 0x0E, 0xA1, 643296465Sdelphij 0x4B, 0x34, 0x4B, 0x20, 0xA2, 0xDB, 0x04, 0x9B, 0x50, 0xC3 644296465Sdelphij}; 645296465Sdelphij 646160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_233B = { 647296465Sdelphij NID_X9_62_characteristic_two_field, 648296465Sdelphij "020000000000000000000000000000000000000004000000000000000001", 649296465Sdelphij "000000000000000000000000000000000000000000000000000000000001", 650296465Sdelphij "0066647EDE6C332C7F8C0923BB58213B333B20E9CE4281FE115F7D8F90AD", 651296465Sdelphij "00FAC9DFCBAC8313BB2139F1BB755FEF65BC391F8B36F8F8EB7371FD558B", 652296465Sdelphij "01006A08A41903350678E58528BEBF8A0BEFF867A7CA36716F7E01F81052", 653296465Sdelphij "01000000000000000000000000000013E974E72F8A6922031D2603CFE0D7", 2, 654296465Sdelphij _EC_NIST_CHAR2_233B_SEED, 20, 655296465Sdelphij "NIST/SECG/WTLS curve over a 233 bit binary field" 656296465Sdelphij}; 657160814Ssimon 658160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_239K1 = { 659296465Sdelphij NID_X9_62_characteristic_two_field, 660296465Sdelphij "800000000000000000004000000000000000000000000000000000000001", 661296465Sdelphij "0", 662296465Sdelphij "1", 663296465Sdelphij "29A0B6A887A983E9730988A68727A8B2D126C44CC2CC7B2A6555193035DC", 664296465Sdelphij "76310804F12E549BDB011C103089E73510ACB275FC312A5DC6B76553F0CA", 665296465Sdelphij "2000000000000000000000000000005A79FEC67CB6E91F1C1DA800E478A5", 4, 666296465Sdelphij NULL, 0, 667296465Sdelphij "SECG curve over a 239 bit binary field" 668296465Sdelphij}; 669160814Ssimon 670160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_283K = { 671296465Sdelphij NID_X9_62_characteristic_two_field, 672296465Sdelphij "080000000000000000000000000000000000000000000000000000000000000000001" 673296465Sdelphij "0A1", 674296465Sdelphij "0", 675296465Sdelphij "1", 676296465Sdelphij "0503213F78CA44883F1A3B8162F188E553CD265F23C1567A16876913B0C2AC2458492" 677296465Sdelphij "836", 678296465Sdelphij "01CCDA380F1C9E318D90F95D07E5426FE87E45C0E8184698E45962364E34116177DD2" 679296465Sdelphij "259", 680296465Sdelphij "01FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE9AE2ED07577265DFF7F94451E061E163" 681296465Sdelphij "C61", 4, 682296465Sdelphij NULL, 20, 683296465Sdelphij "NIST/SECG curve over a 283 bit binary field" 684296465Sdelphij}; 685160814Ssimon 686160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_283B_SEED[] = { 687296465Sdelphij 0x77, 0xE2, 0xB0, 0x73, 0x70, 0xEB, 0x0F, 0x83, 0x2A, 0x6D, 688296465Sdelphij 0xD5, 0xB6, 0x2D, 0xFC, 0x88, 0xCD, 0x06, 0xBB, 0x84, 0xBE 689296465Sdelphij}; 690296465Sdelphij 691160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_283B = { 692296465Sdelphij NID_X9_62_characteristic_two_field, 693296465Sdelphij "080000000000000000000000000000000000000000000000000000000000000000001" 694296465Sdelphij "0A1", 695296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 696296465Sdelphij "001", 697296465Sdelphij "027B680AC8B8596DA5A4AF8A19A0303FCA97FD7645309FA2A581485AF6263E313B79A" 698296465Sdelphij "2F5", 699296465Sdelphij "05F939258DB7DD90E1934F8C70B0DFEC2EED25B8557EAC9C80E2E198F8CDBECD86B12" 700296465Sdelphij "053", 701296465Sdelphij "03676854FE24141CB98FE6D4B20D02B4516FF702350EDDB0826779C813F0DF45BE811" 702296465Sdelphij "2F4", 703296465Sdelphij "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEF90399660FC938A90165B042A7CEFADB" 704296465Sdelphij "307", 2, 705296465Sdelphij _EC_NIST_CHAR2_283B_SEED, 20, 706296465Sdelphij "NIST/SECG curve over a 283 bit binary field" 707296465Sdelphij}; 708160814Ssimon 709160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_409K = { 710296465Sdelphij NID_X9_62_characteristic_two_field, 711296465Sdelphij "020000000000000000000000000000000000000000000000000000000000000000000" 712296465Sdelphij "00000000000008000000000000000000001", 713296465Sdelphij "0", 714296465Sdelphij "1", 715296465Sdelphij "0060F05F658F49C1AD3AB1890F7184210EFD0987E307C84C27ACCFB8F9F67CC2C4601" 716296465Sdelphij "89EB5AAAA62EE222EB1B35540CFE9023746", 717296465Sdelphij "01E369050B7C4E42ACBA1DACBF04299C3460782F918EA427E6325165E9EA10E3DA5F6" 718296465Sdelphij "C42E9C55215AA9CA27A5863EC48D8E0286B", 719296465Sdelphij "007FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE5F83B2D4EA20400" 720296465Sdelphij "EC4557D5ED3E3E7CA5B4B5C83B8E01E5FCF", 4, 721296465Sdelphij NULL, 0, 722296465Sdelphij "NIST/SECG curve over a 409 bit binary field" 723296465Sdelphij}; 724160814Ssimon 725160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_409B_SEED[] = { 726296465Sdelphij 0x40, 0x99, 0xB5, 0xA4, 0x57, 0xF9, 0xD6, 0x9F, 0x79, 0x21, 727296465Sdelphij 0x3D, 0x09, 0x4C, 0x4B, 0xCD, 0x4D, 0x42, 0x62, 0x21, 0x0B 728296465Sdelphij}; 729296465Sdelphij 730160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_409B = { 731296465Sdelphij NID_X9_62_characteristic_two_field, 732296465Sdelphij "020000000000000000000000000000000000000000000000000000000000000000000" 733296465Sdelphij "00000000000008000000000000000000001", 734296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 735296465Sdelphij "00000000000000000000000000000000001", 736296465Sdelphij "0021A5C2C8EE9FEB5C4B9A753B7B476B7FD6422EF1F3DD674761FA99D6AC27C8A9A19" 737296465Sdelphij "7B272822F6CD57A55AA4F50AE317B13545F", 738296465Sdelphij "015D4860D088DDB3496B0C6064756260441CDE4AF1771D4DB01FFE5B34E59703DC255" 739296465Sdelphij "A868A1180515603AEAB60794E54BB7996A7", 740296465Sdelphij "0061B1CFAB6BE5F32BBFA78324ED106A7636B9C5A7BD198D0158AA4F5488D08F38514" 741296465Sdelphij "F1FDF4B4F40D2181B3681C364BA0273C706", 742296465Sdelphij "010000000000000000000000000000000000000000000000000001E2AAD6A612F3330" 743296465Sdelphij "7BE5FA47C3C9E052F838164CD37D9A21173", 2, 744296465Sdelphij _EC_NIST_CHAR2_409B_SEED, 20, 745296465Sdelphij "NIST/SECG curve over a 409 bit binary field" 746296465Sdelphij}; 747160814Ssimon 748160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_571K = { 749296465Sdelphij NID_X9_62_characteristic_two_field, 750296465Sdelphij "800000000000000000000000000000000000000000000000000000000000000000000" 751296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 752296465Sdelphij "00425", 753296465Sdelphij "0", 754296465Sdelphij "1", 755296465Sdelphij "026EB7A859923FBC82189631F8103FE4AC9CA2970012D5D46024804801841CA443709" 756296465Sdelphij "58493B205E647DA304DB4CEB08CBBD1BA39494776FB988B47174DCA88C7E2945283A0" 757296465Sdelphij "1C8972", 758296465Sdelphij "0349DC807F4FBF374F4AEADE3BCA95314DD58CEC9F307A54FFC61EFC006D8A2C9D497" 759296465Sdelphij "9C0AC44AEA74FBEBBB9F772AEDCB620B01A7BA7AF1B320430C8591984F601CD4C143E" 760296465Sdelphij "F1C7A3", 761296465Sdelphij "020000000000000000000000000000000000000000000000000000000000000000000" 762296465Sdelphij "000131850E1F19A63E4B391A8DB917F4138B630D84BE5D639381E91DEB45CFE778F63" 763296465Sdelphij "7C1001", 4, 764296465Sdelphij NULL, 0, 765296465Sdelphij "NIST/SECG curve over a 571 bit binary field" 766296465Sdelphij}; 767160814Ssimon 768160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_571B_SEED[] = { 769296465Sdelphij 0x2A, 0xA0, 0x58, 0xF7, 0x3A, 0x0E, 0x33, 0xAB, 0x48, 0x6B, 770296465Sdelphij 0x0F, 0x61, 0x04, 0x10, 0xC5, 0x3A, 0x7F, 0x13, 0x23, 0x10 771296465Sdelphij}; 772296465Sdelphij 773160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_571B = { 774296465Sdelphij NID_X9_62_characteristic_two_field, 775296465Sdelphij "800000000000000000000000000000000000000000000000000000000000000000000" 776296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 777296465Sdelphij "00425", 778296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 779296465Sdelphij "000000000000000000000000000000000000000000000000000000000000000000000" 780296465Sdelphij "000001", 781296465Sdelphij "02F40E7E2221F295DE297117B7F3D62F5C6A97FFCB8CEFF1CD6BA8CE4A9A18AD84FFA" 782296465Sdelphij "BBD8EFA59332BE7AD6756A66E294AFD185A78FF12AA520E4DE739BACA0C7FFEFF7F29" 783296465Sdelphij "55727A", 784296465Sdelphij "0303001D34B856296C16C0D40D3CD7750A93D1D2955FA80AA5F40FC8DB7B2ABDBDE53" 785296465Sdelphij "950F4C0D293CDD711A35B67FB1499AE60038614F1394ABFA3B4C850D927E1E7769C8E" 786296465Sdelphij "EC2D19", 787296465Sdelphij "037BF27342DA639B6DCCFFFEB73D69D78C6C27A6009CBBCA1980F8533921E8A684423" 788296465Sdelphij "E43BAB08A576291AF8F461BB2A8B3531D2F0485C19B16E2F1516E23DD3C1A4827AF1B" 789296465Sdelphij "8AC15B", 790296465Sdelphij "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF" 791296465Sdelphij "FFFE661CE18FF55987308059B186823851EC7DD9CA1161DE93D5174D66E8382E9BB2F" 792296465Sdelphij "E84E47", 2, 793296465Sdelphij _EC_NIST_CHAR2_571B_SEED, 20, 794296465Sdelphij "NIST/SECG curve over a 571 bit binary field" 795296465Sdelphij}; 796160814Ssimon 797160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V1_SEED[] = { 798296465Sdelphij 0xD2, 0xC0, 0xFB, 0x15, 0x76, 0x08, 0x60, 0xDE, 0xF1, 0xEE, 799296465Sdelphij 0xF4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x54 800296465Sdelphij}; 801296465Sdelphij 802160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V1 = { 803296465Sdelphij NID_X9_62_characteristic_two_field, 804296465Sdelphij "080000000000000000000000000000000000000107", 805296465Sdelphij "072546B5435234A422E0789675F432C89435DE5242", 806296465Sdelphij "00C9517D06D5240D3CFF38C74B20B6CD4D6F9DD4D9", 807296465Sdelphij "07AF69989546103D79329FCC3D74880F33BBE803CB", 808296465Sdelphij "01EC23211B5966ADEA1D3F87F7EA5848AEF0B7CA9F", 809296465Sdelphij "0400000000000000000001E60FC8821CC74DAEAFC1", 2, 810296465Sdelphij _EC_X9_62_CHAR2_163V1_SEED, 20, 811296465Sdelphij "X9.62 curve over a 163 bit binary field" 812296465Sdelphij}; 813160814Ssimon 814160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V2_SEED[] = { 815296465Sdelphij 0x53, 0x81, 0x4C, 0x05, 0x0D, 0x44, 0xD6, 0x96, 0xE6, 0x76, 816296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x58, 0x0C, 0xA4, 0xE2, 0x9F, 0xFD 817296465Sdelphij}; 818296465Sdelphij 819160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V2 = { 820296465Sdelphij NID_X9_62_characteristic_two_field, 821296465Sdelphij "080000000000000000000000000000000000000107", 822296465Sdelphij "0108B39E77C4B108BED981ED0E890E117C511CF072", 823296465Sdelphij "0667ACEB38AF4E488C407433FFAE4F1C811638DF20", 824296465Sdelphij "0024266E4EB5106D0A964D92C4860E2671DB9B6CC5", 825296465Sdelphij "079F684DDF6684C5CD258B3890021B2386DFD19FC5", 826296465Sdelphij "03FFFFFFFFFFFFFFFFFFFDF64DE1151ADBB78F10A7", 2, 827296465Sdelphij _EC_X9_62_CHAR2_163V2_SEED, 20, 828296465Sdelphij "X9.62 curve over a 163 bit binary field" 829296465Sdelphij}; 830160814Ssimon 831160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V3_SEED[] = { 832296465Sdelphij 0x50, 0xCB, 0xF1, 0xD9, 0x5C, 0xA9, 0x4D, 0x69, 0x6E, 0x67, 833296465Sdelphij 0x68, 0x75, 0x61, 0x51, 0x75, 0xF1, 0x6A, 0x36, 0xA3, 0xB8 834296465Sdelphij}; 835296465Sdelphij 836160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V3 = { 837296465Sdelphij NID_X9_62_characteristic_two_field, 838296465Sdelphij "080000000000000000000000000000000000000107", 839296465Sdelphij "07A526C63D3E25A256A007699F5447E32AE456B50E", 840296465Sdelphij "03F7061798EB99E238FD6F1BF95B48FEEB4854252B", 841296465Sdelphij "02F9F87B7C574D0BDECF8A22E6524775F98CDEBDCB", 842296465Sdelphij "05B935590C155E17EA48EB3FF3718B893DF59A05D0", 843296465Sdelphij "03FFFFFFFFFFFFFFFFFFFE1AEE140F110AFF961309", 2, 844296465Sdelphij _EC_X9_62_CHAR2_163V3_SEED, 20, 845296465Sdelphij "X9.62 curve over a 163 bit binary field" 846296465Sdelphij}; 847160814Ssimon 848160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_176V1 = { 849296465Sdelphij NID_X9_62_characteristic_two_field, 850296465Sdelphij "0100000000000000000000000000000000080000000007", 851296465Sdelphij "E4E6DB2995065C407D9D39B8D0967B96704BA8E9C90B", 852296465Sdelphij "5DDA470ABE6414DE8EC133AE28E9BBD7FCEC0AE0FFF2", 853296465Sdelphij "8D16C2866798B600F9F08BB4A8E860F3298CE04A5798", 854296465Sdelphij "6FA4539C2DADDDD6BAB5167D61B436E1D92BB16A562C", 855296465Sdelphij "00010092537397ECA4F6145799D62B0A19CE06FE26AD", 0xFF6E, 856296465Sdelphij NULL, 0, 857296465Sdelphij "X9.62 curve over a 176 bit binary field" 858296465Sdelphij}; 859160814Ssimon 860160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V1_SEED[] = { 861296465Sdelphij 0x4E, 0x13, 0xCA, 0x54, 0x27, 0x44, 0xD6, 0x96, 0xE6, 0x76, 862296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x55, 0x2F, 0x27, 0x9A, 0x8C, 0x84 863296465Sdelphij}; 864296465Sdelphij 865160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V1 = { 866296465Sdelphij NID_X9_62_characteristic_two_field, 867296465Sdelphij "800000000000000000000000000000000000000000000201", 868296465Sdelphij "2866537B676752636A68F56554E12640276B649EF7526267", 869296465Sdelphij "2E45EF571F00786F67B0081B9495A3D95462F5DE0AA185EC", 870296465Sdelphij "36B3DAF8A23206F9C4F299D7B21A9C369137F2C84AE1AA0D", 871296465Sdelphij "765BE73433B3F95E332932E70EA245CA2418EA0EF98018FB", 872296465Sdelphij "40000000000000000000000004A20E90C39067C893BBB9A5", 2, 873296465Sdelphij _EC_X9_62_CHAR2_191V1_SEED, 20, 874296465Sdelphij "X9.62 curve over a 191 bit binary field" 875296465Sdelphij}; 876160814Ssimon 877160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V2_SEED[] = { 878296465Sdelphij 0x08, 0x71, 0xEF, 0x2F, 0xEF, 0x24, 0xD6, 0x96, 0xE6, 0x76, 879296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x58, 0xBE, 0xE0, 0xD9, 0x5C, 0x15 880296465Sdelphij}; 881296465Sdelphij 882160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V2 = { 883296465Sdelphij NID_X9_62_characteristic_two_field, 884296465Sdelphij "800000000000000000000000000000000000000000000201", 885296465Sdelphij "401028774D7777C7B7666D1366EA432071274F89FF01E718", 886296465Sdelphij "0620048D28BCBD03B6249C99182B7C8CD19700C362C46A01", 887296465Sdelphij "3809B2B7CC1B28CC5A87926AAD83FD28789E81E2C9E3BF10", 888296465Sdelphij "17434386626D14F3DBF01760D9213A3E1CF37AEC437D668A", 889296465Sdelphij "20000000000000000000000050508CB89F652824E06B8173", 4, 890296465Sdelphij _EC_X9_62_CHAR2_191V2_SEED, 20, 891296465Sdelphij "X9.62 curve over a 191 bit binary field" 892296465Sdelphij}; 893160814Ssimon 894160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V3_SEED[] = { 895296465Sdelphij 0xE0, 0x53, 0x51, 0x2D, 0xC6, 0x84, 0xD6, 0x96, 0xE6, 0x76, 896296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x50, 0x67, 0xAE, 0x78, 0x6D, 0x1F 897296465Sdelphij}; 898296465Sdelphij 899160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V3 = { 900296465Sdelphij NID_X9_62_characteristic_two_field, 901296465Sdelphij "800000000000000000000000000000000000000000000201", 902296465Sdelphij "6C01074756099122221056911C77D77E77A777E7E7E77FCB", 903296465Sdelphij "71FE1AF926CF847989EFEF8DB459F66394D90F32AD3F15E8", 904296465Sdelphij "375D4CE24FDE434489DE8746E71786015009E66E38A926DD", 905296465Sdelphij "545A39176196575D985999366E6AD34CE0A77CD7127B06BE", 906296465Sdelphij "155555555555555555555555610C0B196812BFB6288A3EA3", 6, 907296465Sdelphij _EC_X9_62_CHAR2_191V3_SEED, 20, 908296465Sdelphij "X9.62 curve over a 191 bit binary field" 909296465Sdelphij}; 910160814Ssimon 911160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_208W1 = { 912296465Sdelphij NID_X9_62_characteristic_two_field, 913296465Sdelphij "010000000000000000000000000000000800000000000000000007", 914296465Sdelphij "0000000000000000000000000000000000000000000000000000", 915296465Sdelphij "C8619ED45A62E6212E1160349E2BFA844439FAFC2A3FD1638F9E", 916296465Sdelphij "89FDFBE4ABE193DF9559ECF07AC0CE78554E2784EB8C1ED1A57A", 917296465Sdelphij "0F55B51A06E78E9AC38A035FF520D8B01781BEB1A6BB08617DE3", 918296465Sdelphij "000101BAF95C9723C57B6C21DA2EFF2D5ED588BDD5717E212F9D", 0xFE48, 919296465Sdelphij NULL, 0, 920296465Sdelphij "X9.62 curve over a 208 bit binary field" 921296465Sdelphij}; 922160814Ssimon 923160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V1_SEED[] = { 924296465Sdelphij 0xD3, 0x4B, 0x9A, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 925296465Sdelphij 0x51, 0x75, 0xCA, 0x71, 0xB9, 0x20, 0xBF, 0xEF, 0xB0, 0x5D 926296465Sdelphij}; 927296465Sdelphij 928160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V1 = { 929296465Sdelphij NID_X9_62_characteristic_two_field, 930296465Sdelphij "800000000000000000000000000000000000000000000000001000000001", 931296465Sdelphij "32010857077C5431123A46B808906756F543423E8D27877578125778AC76", 932296465Sdelphij "790408F2EEDAF392B012EDEFB3392F30F4327C0CA3F31FC383C422AA8C16", 933296465Sdelphij "57927098FA932E7C0A96D3FD5B706EF7E5F5C156E16B7E7C86038552E91D", 934296465Sdelphij "61D8EE5077C33FECF6F1A16B268DE469C3C7744EA9A971649FC7A9616305", 935296465Sdelphij "2000000000000000000000000000000F4D42FFE1492A4993F1CAD666E447", 4, 936296465Sdelphij _EC_X9_62_CHAR2_239V1_SEED, 20, 937296465Sdelphij "X9.62 curve over a 239 bit binary field" 938296465Sdelphij}; 939160814Ssimon 940160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V2_SEED[] = { 941296465Sdelphij 0x2A, 0xA6, 0x98, 0x2F, 0xDF, 0xA4, 0xD6, 0x96, 0xE6, 0x76, 942296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x5D, 0x26, 0x67, 0x27, 0x27, 0x7D 943296465Sdelphij}; 944296465Sdelphij 945160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V2 = { 946296465Sdelphij NID_X9_62_characteristic_two_field, 947296465Sdelphij "800000000000000000000000000000000000000000000000001000000001", 948296465Sdelphij "4230017757A767FAE42398569B746325D45313AF0766266479B75654E65F", 949296465Sdelphij "5037EA654196CFF0CD82B2C14A2FCF2E3FF8775285B545722F03EACDB74B", 950296465Sdelphij "28F9D04E900069C8DC47A08534FE76D2B900B7D7EF31F5709F200C4CA205", 951296465Sdelphij "5667334C45AFF3B5A03BAD9DD75E2C71A99362567D5453F7FA6E227EC833", 952296465Sdelphij "1555555555555555555555555555553C6F2885259C31E3FCDF154624522D", 6, 953296465Sdelphij _EC_X9_62_CHAR2_239V2_SEED, 20, 954296465Sdelphij "X9.62 curve over a 239 bit binary field" 955296465Sdelphij}; 956160814Ssimon 957160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V3_SEED[] = { 958296465Sdelphij 0x9E, 0x07, 0x6F, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 959296465Sdelphij 0x51, 0x75, 0xE1, 0x1E, 0x9F, 0xDD, 0x77, 0xF9, 0x20, 0x41 960296465Sdelphij}; 961296465Sdelphij 962160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V3 = { 963296465Sdelphij NID_X9_62_characteristic_two_field, 964296465Sdelphij "800000000000000000000000000000000000000000000000001000000001", 965296465Sdelphij "01238774666A67766D6676F778E676B66999176666E687666D8766C66A9F", 966296465Sdelphij "6A941977BA9F6A435199ACFC51067ED587F519C5ECB541B8E44111DE1D40", 967296465Sdelphij "70F6E9D04D289C4E89913CE3530BFDE903977D42B146D539BF1BDE4E9C92", 968296465Sdelphij "2E5A0EAF6E5E1305B9004DCE5C0ED7FE59A35608F33837C816D80B79F461", 969296465Sdelphij "0CCCCCCCCCCCCCCCCCCCCCCCCCCCCCAC4912D2D9DF903EF9888B8A0E4CFF", 0xA, 970296465Sdelphij _EC_X9_62_CHAR2_239V3_SEED, 20, 971296465Sdelphij "X9.62 curve over a 239 bit binary field" 972296465Sdelphij}; 973160814Ssimon 974160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_272W1 = { 975296465Sdelphij NID_X9_62_characteristic_two_field, 976296465Sdelphij "010000000000000000000000000000000000000000000000000000010000000000000" 977296465Sdelphij "B", 978296465Sdelphij "91A091F03B5FBA4AB2CCF49C4EDD220FB028712D42BE752B2C40094DBACDB586FB20", 979296465Sdelphij "7167EFC92BB2E3CE7C8AAAFF34E12A9C557003D7C73A6FAF003F99F6CC8482E540F7", 980296465Sdelphij "6108BABB2CEEBCF787058A056CBE0CFE622D7723A289E08A07AE13EF0D10D171DD8D", 981296465Sdelphij "10C7695716851EEF6BA7F6872E6142FBD241B830FF5EFCACECCAB05E02005DDE9D23", 982296465Sdelphij "000100FAF51354E0E39E4892DF6E319C72C8161603FA45AA7B998A167B8F1E629521", 983296465Sdelphij 0xFF06, 984296465Sdelphij NULL, 0, 985296465Sdelphij "X9.62 curve over a 272 bit binary field" 986296465Sdelphij}; 987160814Ssimon 988160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_304W1 = { 989296465Sdelphij NID_X9_62_characteristic_two_field, 990296465Sdelphij "010000000000000000000000000000000000000000000000000000000000000000000" 991296465Sdelphij "000000807", 992296465Sdelphij "FD0D693149A118F651E6DCE6802085377E5F882D1B510B44160074C1288078365A039" 993296465Sdelphij "6C8E681", 994296465Sdelphij "BDDB97E555A50A908E43B01C798EA5DAA6788F1EA2794EFCF57166B8C14039601E558" 995296465Sdelphij "27340BE", 996296465Sdelphij "197B07845E9BE2D96ADB0F5F3C7F2CFFBD7A3EB8B6FEC35C7FD67F26DDF6285A644F7" 997296465Sdelphij "40A2614", 998296465Sdelphij "E19FBEB76E0DA171517ECF401B50289BF014103288527A9B416A105E80260B549FDC1" 999296465Sdelphij "B92C03B", 1000296465Sdelphij "000101D556572AABAC800101D556572AABAC8001022D5C91DD173F8FB561DA6899164" 1001296465Sdelphij "443051D", 0xFE2E, 1002296465Sdelphij NULL, 0, 1003296465Sdelphij "X9.62 curve over a 304 bit binary field" 1004296465Sdelphij}; 1005160814Ssimon 1006160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_359V1_SEED[] = { 1007296465Sdelphij 0x2B, 0x35, 0x49, 0x20, 0xB7, 0x24, 0xD6, 0x96, 0xE6, 0x76, 1008296465Sdelphij 0x87, 0x56, 0x15, 0x17, 0x58, 0x5B, 0xA1, 0x33, 0x2D, 0xC6 1009296465Sdelphij}; 1010296465Sdelphij 1011160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_359V1 = { 1012296465Sdelphij NID_X9_62_characteristic_two_field, 1013296465Sdelphij "800000000000000000000000000000000000000000000000000000000000000000000" 1014296465Sdelphij "000100000000000000001", 1015296465Sdelphij "5667676A654B20754F356EA92017D946567C46675556F19556A04616B567D223A5E05" 1016296465Sdelphij "656FB549016A96656A557", 1017296465Sdelphij "2472E2D0197C49363F1FE7F5B6DB075D52B6947D135D8CA445805D39BC34562608968" 1018296465Sdelphij "7742B6329E70680231988", 1019296465Sdelphij "3C258EF3047767E7EDE0F1FDAA79DAEE3841366A132E163ACED4ED2401DF9C6BDCDE9" 1020296465Sdelphij "8E8E707C07A2239B1B097", 1021296465Sdelphij "53D7E08529547048121E9C95F3791DD804963948F34FAE7BF44EA82365DC7868FE57E" 1022296465Sdelphij "4AE2DE211305A407104BD", 1023296465Sdelphij "01AF286BCA1AF286BCA1AF286BCA1AF286BCA1AF286BC9FB8F6B85C556892C20A7EB9" 1024296465Sdelphij "64FE7719E74F490758D3B", 0x4C, 1025296465Sdelphij _EC_X9_62_CHAR2_359V1_SEED, 20, 1026296465Sdelphij "X9.62 curve over a 359 bit binary field" 1027296465Sdelphij}; 1028160814Ssimon 1029160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_368W1 = { 1030296465Sdelphij NID_X9_62_characteristic_two_field, 1031296465Sdelphij "010000000000000000000000000000000000000000000000000000000000000000000" 1032296465Sdelphij "0002000000000000000000007", 1033296465Sdelphij "E0D2EE25095206F5E2A4F9ED229F1F256E79A0E2B455970D8D0D865BD94778C576D62" 1034296465Sdelphij "F0AB7519CCD2A1A906AE30D", 1035296465Sdelphij "FC1217D4320A90452C760A58EDCD30C8DD069B3C34453837A34ED50CB54917E1C2112" 1036296465Sdelphij "D84D164F444F8F74786046A", 1037296465Sdelphij "1085E2755381DCCCE3C1557AFA10C2F0C0C2825646C5B34A394CBCFA8BC16B22E7E78" 1038296465Sdelphij "9E927BE216F02E1FB136A5F", 1039296465Sdelphij "7B3EB1BDDCBA62D5D8B2059B525797FC73822C59059C623A45FF3843CEE8F87CD1855" 1040296465Sdelphij "ADAA81E2A0750B80FDA2310", 1041296465Sdelphij "00010090512DA9AF72B08349D98A5DD4C7B0532ECA51CE03E2D10F3B7AC579BD87E90" 1042296465Sdelphij "9AE40A6F131E9CFCE5BD967", 0xFF70, 1043296465Sdelphij NULL, 0, 1044296465Sdelphij "X9.62 curve over a 368 bit binary field" 1045296465Sdelphij}; 1046160814Ssimon 1047160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_431R1 = { 1048296465Sdelphij NID_X9_62_characteristic_two_field, 1049296465Sdelphij "800000000000000000000000000000000000000000000000000000000000000000000" 1050296465Sdelphij "000000001000000000000000000000000000001", 1051296465Sdelphij "1A827EF00DD6FC0E234CAF046C6A5D8A85395B236CC4AD2CF32A0CADBDC9DDF620B0E" 1052296465Sdelphij "B9906D0957F6C6FEACD615468DF104DE296CD8F", 1053296465Sdelphij "10D9B4A3D9047D8B154359ABFB1B7F5485B04CEB868237DDC9DEDA982A679A5A919B6" 1054296465Sdelphij "26D4E50A8DD731B107A9962381FB5D807BF2618", 1055296465Sdelphij "120FC05D3C67A99DE161D2F4092622FECA701BE4F50F4758714E8A87BBF2A658EF8C2" 1056296465Sdelphij "1E7C5EFE965361F6C2999C0C247B0DBD70CE6B7", 1057296465Sdelphij "20D0AF8903A96F8D5FA2C255745D3C451B302C9346D9B7E485E7BCE41F6B591F3E8F6" 1058296465Sdelphij "ADDCBB0BC4C2F947A7DE1A89B625D6A598B3760", 1059296465Sdelphij "0340340340340340340340340340340340340340340340340340340323C313FAB5058" 1060296465Sdelphij "9703B5EC68D3587FEC60D161CC149C1AD4A91", 0x2760, 1061296465Sdelphij NULL, 0, 1062296465Sdelphij "X9.62 curve over a 431 bit binary field" 1063296465Sdelphij}; 1064160814Ssimon 1065160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_1 = { 1066296465Sdelphij NID_X9_62_characteristic_two_field, 1067296465Sdelphij "020000000000000000000000000201", 1068296465Sdelphij "1", 1069296465Sdelphij "1", 1070296465Sdelphij "01667979A40BA497E5D5C270780617", 1071296465Sdelphij "00F44B4AF1ECC2630E08785CEBCC15", 1072296465Sdelphij "00FFFFFFFFFFFFFFFDBF91AF6DEA73", 2, 1073296465Sdelphij NULL, 0, 1074296465Sdelphij "WTLS curve over a 113 bit binary field" 1075296465Sdelphij}; 1076160814Ssimon 1077160814Ssimon/* IPSec curves */ 1078296465Sdelphij/* 1079296465Sdelphij * NOTE: The of curves over a extension field of non prime degree is not 1080296465Sdelphij * recommended (Weil-descent). As the group order is not a prime this curve 1081296465Sdelphij * is not suitable for ECDSA. 1082160814Ssimon */ 1083160814Ssimonstatic const EC_CURVE_DATA _EC_IPSEC_155_ID3 = { 1084296465Sdelphij NID_X9_62_characteristic_two_field, 1085296465Sdelphij "0800000000000000000000004000000000000001", 1086296465Sdelphij "0", 1087296465Sdelphij "07338f", 1088296465Sdelphij "7b", 1089296465Sdelphij "1c8", 1090296465Sdelphij "2AAAAAAAAAAAAAAAAAAC7F3C7881BD0868FA86C", 3, 1091296465Sdelphij NULL, 0, 1092296465Sdelphij "\n\tIPSec/IKE/Oakley curve #3 over a 155 bit binary field.\n" 1093296465Sdelphij "\tNot suitable for ECDSA.\n\tQuestionable extension field!" 1094296465Sdelphij}; 1095160814Ssimon 1096296465Sdelphij/* 1097296465Sdelphij * NOTE: The of curves over a extension field of non prime degree is not 1098296465Sdelphij * recommended (Weil-descent). As the group order is not a prime this curve 1099296465Sdelphij * is not suitable for ECDSA. 1100160814Ssimon */ 1101160814Ssimonstatic const EC_CURVE_DATA _EC_IPSEC_185_ID4 = { 1102296465Sdelphij NID_X9_62_characteristic_two_field, 1103296465Sdelphij "020000000000000000000000000000200000000000000001", 1104296465Sdelphij "0", 1105296465Sdelphij "1ee9", 1106296465Sdelphij "18", 1107296465Sdelphij "0d", 1108296465Sdelphij "FFFFFFFFFFFFFFFFFFFFFFEDF97C44DB9F2420BAFCA75E", 2, 1109296465Sdelphij NULL, 0, 1110296465Sdelphij "\n\tIPSec/IKE/Oakley curve #4 over a 185 bit binary field.\n" 1111296465Sdelphij "\tNot suitable for ECDSA.\n\tQuestionable extension field!" 1112296465Sdelphij}; 1113160814Ssimon 1114160814Ssimontypedef struct _ec_list_element_st { 1115296465Sdelphij int nid; 1116296465Sdelphij const EC_CURVE_DATA *data; 1117296465Sdelphij} ec_list_element; 1118160814Ssimon 1119160814Ssimonstatic const ec_list_element curve_list[] = { 1120296465Sdelphij /* prime field curves */ 1121296465Sdelphij /* secg curves */ 1122296465Sdelphij {NID_secp112r1, &_EC_SECG_PRIME_112R1}, 1123296465Sdelphij {NID_secp112r2, &_EC_SECG_PRIME_112R2}, 1124296465Sdelphij {NID_secp128r1, &_EC_SECG_PRIME_128R1}, 1125296465Sdelphij {NID_secp128r2, &_EC_SECG_PRIME_128R2}, 1126296465Sdelphij {NID_secp160k1, &_EC_SECG_PRIME_160K1}, 1127296465Sdelphij {NID_secp160r1, &_EC_SECG_PRIME_160R1}, 1128296465Sdelphij {NID_secp160r2, &_EC_SECG_PRIME_160R2}, 1129296465Sdelphij /* SECG secp192r1 is the same as X9.62 prime192v1 and hence omitted */ 1130296465Sdelphij {NID_secp192k1, &_EC_SECG_PRIME_192K1}, 1131296465Sdelphij {NID_secp224k1, &_EC_SECG_PRIME_224K1}, 1132296465Sdelphij {NID_secp224r1, &_EC_NIST_PRIME_224}, 1133296465Sdelphij {NID_secp256k1, &_EC_SECG_PRIME_256K1}, 1134296465Sdelphij /* SECG secp256r1 is the same as X9.62 prime256v1 and hence omitted */ 1135296465Sdelphij {NID_secp384r1, &_EC_NIST_PRIME_384}, 1136296465Sdelphij {NID_secp521r1, &_EC_NIST_PRIME_521}, 1137296465Sdelphij /* X9.62 curves */ 1138296465Sdelphij {NID_X9_62_prime192v1, &_EC_NIST_PRIME_192}, 1139296465Sdelphij {NID_X9_62_prime192v2, &_EC_X9_62_PRIME_192V2}, 1140296465Sdelphij {NID_X9_62_prime192v3, &_EC_X9_62_PRIME_192V3}, 1141296465Sdelphij {NID_X9_62_prime239v1, &_EC_X9_62_PRIME_239V1}, 1142296465Sdelphij {NID_X9_62_prime239v2, &_EC_X9_62_PRIME_239V2}, 1143296465Sdelphij {NID_X9_62_prime239v3, &_EC_X9_62_PRIME_239V3}, 1144296465Sdelphij {NID_X9_62_prime256v1, &_EC_X9_62_PRIME_256V1}, 1145296465Sdelphij /* characteristic two field curves */ 1146296465Sdelphij /* NIST/SECG curves */ 1147296465Sdelphij {NID_sect113r1, &_EC_SECG_CHAR2_113R1}, 1148296465Sdelphij {NID_sect113r2, &_EC_SECG_CHAR2_113R2}, 1149296465Sdelphij {NID_sect131r1, &_EC_SECG_CHAR2_131R1}, 1150296465Sdelphij {NID_sect131r2, &_EC_SECG_CHAR2_131R2}, 1151296465Sdelphij {NID_sect163k1, &_EC_NIST_CHAR2_163K}, 1152296465Sdelphij {NID_sect163r1, &_EC_SECG_CHAR2_163R1}, 1153296465Sdelphij {NID_sect163r2, &_EC_NIST_CHAR2_163B}, 1154296465Sdelphij {NID_sect193r1, &_EC_SECG_CHAR2_193R1}, 1155296465Sdelphij {NID_sect193r2, &_EC_SECG_CHAR2_193R2}, 1156296465Sdelphij {NID_sect233k1, &_EC_NIST_CHAR2_233K}, 1157296465Sdelphij {NID_sect233r1, &_EC_NIST_CHAR2_233B}, 1158296465Sdelphij {NID_sect239k1, &_EC_SECG_CHAR2_239K1}, 1159296465Sdelphij {NID_sect283k1, &_EC_NIST_CHAR2_283K}, 1160296465Sdelphij {NID_sect283r1, &_EC_NIST_CHAR2_283B}, 1161296465Sdelphij {NID_sect409k1, &_EC_NIST_CHAR2_409K}, 1162296465Sdelphij {NID_sect409r1, &_EC_NIST_CHAR2_409B}, 1163296465Sdelphij {NID_sect571k1, &_EC_NIST_CHAR2_571K}, 1164296465Sdelphij {NID_sect571r1, &_EC_NIST_CHAR2_571B}, 1165296465Sdelphij /* X9.62 curves */ 1166296465Sdelphij {NID_X9_62_c2pnb163v1, &_EC_X9_62_CHAR2_163V1}, 1167296465Sdelphij {NID_X9_62_c2pnb163v2, &_EC_X9_62_CHAR2_163V2}, 1168296465Sdelphij {NID_X9_62_c2pnb163v3, &_EC_X9_62_CHAR2_163V3}, 1169296465Sdelphij {NID_X9_62_c2pnb176v1, &_EC_X9_62_CHAR2_176V1}, 1170296465Sdelphij {NID_X9_62_c2tnb191v1, &_EC_X9_62_CHAR2_191V1}, 1171296465Sdelphij {NID_X9_62_c2tnb191v2, &_EC_X9_62_CHAR2_191V2}, 1172296465Sdelphij {NID_X9_62_c2tnb191v3, &_EC_X9_62_CHAR2_191V3}, 1173296465Sdelphij {NID_X9_62_c2pnb208w1, &_EC_X9_62_CHAR2_208W1}, 1174296465Sdelphij {NID_X9_62_c2tnb239v1, &_EC_X9_62_CHAR2_239V1}, 1175296465Sdelphij {NID_X9_62_c2tnb239v2, &_EC_X9_62_CHAR2_239V2}, 1176296465Sdelphij {NID_X9_62_c2tnb239v3, &_EC_X9_62_CHAR2_239V3}, 1177296465Sdelphij {NID_X9_62_c2pnb272w1, &_EC_X9_62_CHAR2_272W1}, 1178296465Sdelphij {NID_X9_62_c2pnb304w1, &_EC_X9_62_CHAR2_304W1}, 1179296465Sdelphij {NID_X9_62_c2tnb359v1, &_EC_X9_62_CHAR2_359V1}, 1180296465Sdelphij {NID_X9_62_c2pnb368w1, &_EC_X9_62_CHAR2_368W1}, 1181296465Sdelphij {NID_X9_62_c2tnb431r1, &_EC_X9_62_CHAR2_431R1}, 1182296465Sdelphij /* 1183296465Sdelphij * the WAP/WTLS curves [unlike SECG, spec has its own OIDs for curves 1184296465Sdelphij * from X9.62] 1185296465Sdelphij */ 1186296465Sdelphij {NID_wap_wsg_idm_ecid_wtls1, &_EC_WTLS_1}, 1187296465Sdelphij {NID_wap_wsg_idm_ecid_wtls3, &_EC_NIST_CHAR2_163K}, 1188296465Sdelphij {NID_wap_wsg_idm_ecid_wtls4, &_EC_SECG_CHAR2_113R1}, 1189296465Sdelphij {NID_wap_wsg_idm_ecid_wtls5, &_EC_X9_62_CHAR2_163V1}, 1190296465Sdelphij {NID_wap_wsg_idm_ecid_wtls6, &_EC_SECG_PRIME_112R1}, 1191296465Sdelphij {NID_wap_wsg_idm_ecid_wtls7, &_EC_SECG_PRIME_160R2}, 1192296465Sdelphij {NID_wap_wsg_idm_ecid_wtls8, &_EC_WTLS_8}, 1193296465Sdelphij {NID_wap_wsg_idm_ecid_wtls9, &_EC_WTLS_9}, 1194296465Sdelphij {NID_wap_wsg_idm_ecid_wtls10, &_EC_NIST_CHAR2_233K}, 1195296465Sdelphij {NID_wap_wsg_idm_ecid_wtls11, &_EC_NIST_CHAR2_233B}, 1196296465Sdelphij {NID_wap_wsg_idm_ecid_wtls12, &_EC_WTLS_12}, 1197296465Sdelphij /* IPSec curves */ 1198296465Sdelphij {NID_ipsec3, &_EC_IPSEC_155_ID3}, 1199296465Sdelphij {NID_ipsec4, &_EC_IPSEC_185_ID4}, 1200160814Ssimon}; 1201160814Ssimon 1202296465Sdelphijstatic size_t curve_list_length = 1203296465Sdelphij sizeof(curve_list) / sizeof(ec_list_element); 1204160814Ssimon 1205296465Sdelphijstatic EC_GROUP *ec_group_new_from_data(const EC_CURVE_DATA * data) 1206296465Sdelphij{ 1207296465Sdelphij EC_GROUP *group = NULL; 1208296465Sdelphij EC_POINT *P = NULL; 1209296465Sdelphij BN_CTX *ctx = NULL; 1210296465Sdelphij BIGNUM *p = NULL, *a = NULL, *b = NULL, *x = NULL, *y = NULL, *order = 1211296465Sdelphij NULL; 1212296465Sdelphij int ok = 0; 1213160814Ssimon 1214296465Sdelphij if ((ctx = BN_CTX_new()) == NULL) { 1215296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_MALLOC_FAILURE); 1216296465Sdelphij goto err; 1217296465Sdelphij } 1218296465Sdelphij if ((p = BN_new()) == NULL || (a = BN_new()) == NULL || 1219296465Sdelphij (b = BN_new()) == NULL || (x = BN_new()) == NULL || 1220296465Sdelphij (y = BN_new()) == NULL || (order = BN_new()) == NULL) { 1221296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_MALLOC_FAILURE); 1222296465Sdelphij goto err; 1223296465Sdelphij } 1224160814Ssimon 1225296465Sdelphij if (!BN_hex2bn(&p, data->p) || !BN_hex2bn(&a, data->a) 1226296465Sdelphij || !BN_hex2bn(&b, data->b)) { 1227296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB); 1228296465Sdelphij goto err; 1229296465Sdelphij } 1230160814Ssimon 1231296465Sdelphij if (data->field_type == NID_X9_62_prime_field) { 1232296465Sdelphij if ((group = EC_GROUP_new_curve_GFp(p, a, b, ctx)) == NULL) { 1233296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1234296465Sdelphij goto err; 1235296465Sdelphij } 1236296465Sdelphij } else { /* field_type == 1237296465Sdelphij * NID_X9_62_characteristic_two_field */ 1238296465Sdelphij if ((group = EC_GROUP_new_curve_GF2m(p, a, b, ctx)) == NULL) { 1239296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1240296465Sdelphij goto err; 1241296465Sdelphij } 1242296465Sdelphij } 1243160814Ssimon 1244296465Sdelphij if ((P = EC_POINT_new(group)) == NULL) { 1245296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1246296465Sdelphij goto err; 1247296465Sdelphij } 1248296465Sdelphij 1249296465Sdelphij if (!BN_hex2bn(&x, data->x) || !BN_hex2bn(&y, data->y)) { 1250296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB); 1251296465Sdelphij goto err; 1252296465Sdelphij } 1253296465Sdelphij if (!EC_POINT_set_affine_coordinates_GF2m(group, P, x, y, ctx)) { 1254296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1255296465Sdelphij goto err; 1256296465Sdelphij } 1257296465Sdelphij if (!BN_hex2bn(&order, data->order) || !BN_set_word(x, data->cofactor)) { 1258296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB); 1259296465Sdelphij goto err; 1260296465Sdelphij } 1261296465Sdelphij if (!EC_GROUP_set_generator(group, P, order, x)) { 1262296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1263296465Sdelphij goto err; 1264296465Sdelphij } 1265296465Sdelphij if (data->seed) { 1266296465Sdelphij if (!EC_GROUP_set_seed(group, data->seed, data->seed_len)) { 1267296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB); 1268296465Sdelphij goto err; 1269296465Sdelphij } 1270296465Sdelphij } 1271296465Sdelphij ok = 1; 1272296465Sdelphij err: 1273296465Sdelphij if (!ok) { 1274296465Sdelphij EC_GROUP_free(group); 1275296465Sdelphij group = NULL; 1276296465Sdelphij } 1277296465Sdelphij if (P) 1278296465Sdelphij EC_POINT_free(P); 1279296465Sdelphij if (ctx) 1280296465Sdelphij BN_CTX_free(ctx); 1281296465Sdelphij if (p) 1282296465Sdelphij BN_free(p); 1283296465Sdelphij if (a) 1284296465Sdelphij BN_free(a); 1285296465Sdelphij if (b) 1286296465Sdelphij BN_free(b); 1287296465Sdelphij if (order) 1288296465Sdelphij BN_free(order); 1289296465Sdelphij if (x) 1290296465Sdelphij BN_free(x); 1291296465Sdelphij if (y) 1292296465Sdelphij BN_free(y); 1293296465Sdelphij return group; 1294296465Sdelphij} 1295296465Sdelphij 1296160814SsimonEC_GROUP *EC_GROUP_new_by_curve_name(int nid) 1297296465Sdelphij{ 1298296465Sdelphij size_t i; 1299296465Sdelphij EC_GROUP *ret = NULL; 1300160814Ssimon 1301296465Sdelphij if (nid <= 0) 1302296465Sdelphij return NULL; 1303160814Ssimon 1304296465Sdelphij for (i = 0; i < curve_list_length; i++) 1305296465Sdelphij if (curve_list[i].nid == nid) { 1306296465Sdelphij ret = ec_group_new_from_data(curve_list[i].data); 1307296465Sdelphij break; 1308296465Sdelphij } 1309160814Ssimon 1310296465Sdelphij if (ret == NULL) { 1311296465Sdelphij ECerr(EC_F_EC_GROUP_NEW_BY_CURVE_NAME, EC_R_UNKNOWN_GROUP); 1312296465Sdelphij return NULL; 1313296465Sdelphij } 1314160814Ssimon 1315296465Sdelphij EC_GROUP_set_curve_name(ret, nid); 1316160814Ssimon 1317296465Sdelphij return ret; 1318296465Sdelphij} 1319160814Ssimon 1320160814Ssimonsize_t EC_get_builtin_curves(EC_builtin_curve *r, size_t nitems) 1321296465Sdelphij{ 1322296465Sdelphij size_t i, min; 1323160814Ssimon 1324296465Sdelphij if (r == NULL || nitems == 0) 1325296465Sdelphij return curve_list_length; 1326160814Ssimon 1327296465Sdelphij min = nitems < curve_list_length ? nitems : curve_list_length; 1328160814Ssimon 1329296465Sdelphij for (i = 0; i < min; i++) { 1330296465Sdelphij r[i].nid = curve_list[i].nid; 1331296465Sdelphij r[i].comment = curve_list[i].data->comment; 1332296465Sdelphij } 1333160814Ssimon 1334296465Sdelphij return curve_list_length; 1335296465Sdelphij} 1336