1160814Ssimon/* crypto/ec/ec_curve.c */
2160814Ssimon/*
3160814Ssimon * Written by Nils Larsch for the OpenSSL project.
4160814Ssimon */
5160814Ssimon/* ====================================================================
6160814Ssimon * Copyright (c) 1998-2004 The OpenSSL Project.  All rights reserved.
7160814Ssimon *
8160814Ssimon * Redistribution and use in source and binary forms, with or without
9160814Ssimon * modification, are permitted provided that the following conditions
10160814Ssimon * are met:
11160814Ssimon *
12160814Ssimon * 1. Redistributions of source code must retain the above copyright
13296465Sdelphij *    notice, this list of conditions and the following disclaimer.
14160814Ssimon *
15160814Ssimon * 2. Redistributions in binary form must reproduce the above copyright
16160814Ssimon *    notice, this list of conditions and the following disclaimer in
17160814Ssimon *    the documentation and/or other materials provided with the
18160814Ssimon *    distribution.
19160814Ssimon *
20160814Ssimon * 3. All advertising materials mentioning features or use of this
21160814Ssimon *    software must display the following acknowledgment:
22160814Ssimon *    "This product includes software developed by the OpenSSL Project
23160814Ssimon *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
24160814Ssimon *
25160814Ssimon * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
26160814Ssimon *    endorse or promote products derived from this software without
27160814Ssimon *    prior written permission. For written permission, please contact
28160814Ssimon *    openssl-core@openssl.org.
29160814Ssimon *
30160814Ssimon * 5. Products derived from this software may not be called "OpenSSL"
31160814Ssimon *    nor may "OpenSSL" appear in their names without prior written
32160814Ssimon *    permission of the OpenSSL Project.
33160814Ssimon *
34160814Ssimon * 6. Redistributions of any form whatsoever must retain the following
35160814Ssimon *    acknowledgment:
36160814Ssimon *    "This product includes software developed by the OpenSSL Project
37160814Ssimon *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
38160814Ssimon *
39160814Ssimon * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
40160814Ssimon * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
41160814Ssimon * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
42160814Ssimon * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
43160814Ssimon * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
44160814Ssimon * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
45160814Ssimon * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
46160814Ssimon * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47160814Ssimon * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
48160814Ssimon * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
49160814Ssimon * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
50160814Ssimon * OF THE POSSIBILITY OF SUCH DAMAGE.
51160814Ssimon * ====================================================================
52160814Ssimon *
53160814Ssimon * This product includes cryptographic software written by Eric Young
54160814Ssimon * (eay@cryptsoft.com).  This product includes software written by Tim
55160814Ssimon * Hudson (tjh@cryptsoft.com).
56160814Ssimon *
57160814Ssimon */
58160814Ssimon/* ====================================================================
59160814Ssimon * Copyright 2002 Sun Microsystems, Inc. ALL RIGHTS RESERVED.
60160814Ssimon *
61296465Sdelphij * Portions of the attached software ("Contribution") are developed by
62160814Ssimon * SUN MICROSYSTEMS, INC., and are contributed to the OpenSSL project.
63160814Ssimon *
64160814Ssimon * The Contribution is licensed pursuant to the OpenSSL open source
65160814Ssimon * license provided above.
66160814Ssimon *
67296465Sdelphij * The elliptic curve binary polynomial software is originally written by
68160814Ssimon * Sheueling Chang Shantz and Douglas Stebila of Sun Microsystems Laboratories.
69160814Ssimon *
70160814Ssimon */
71160814Ssimon
72160814Ssimon#include "ec_lcl.h"
73160814Ssimon#include <openssl/err.h>
74160814Ssimon#include <openssl/obj_mac.h>
75160814Ssimon
76160814Ssimontypedef struct ec_curve_data_st {
77296465Sdelphij    int field_type;             /* either NID_X9_62_prime_field or
78296465Sdelphij                                 * NID_X9_62_characteristic_two_field */
79296465Sdelphij    const char *p;              /* either a prime number or a polynomial */
80296465Sdelphij    const char *a;
81296465Sdelphij    const char *b;
82296465Sdelphij    const char *x;              /* the x coordinate of the generator */
83296465Sdelphij    const char *y;              /* the y coordinate of the generator */
84296465Sdelphij    const char *order;          /* the order of the group generated by the
85296465Sdelphij                                 * generator */
86296465Sdelphij    const BN_ULONG cofactor;    /* the cofactor */
87296465Sdelphij    const unsigned char *seed;  /* the seed (optional) */
88296465Sdelphij    size_t seed_len;
89296465Sdelphij    const char *comment;        /* a short description of the curve */
90160814Ssimon} EC_CURVE_DATA;
91160814Ssimon
92160814Ssimon/* the nist prime curves */
93160814Ssimonstatic const unsigned char _EC_NIST_PRIME_192_SEED[] = {
94296465Sdelphij    0x30, 0x45, 0xAE, 0x6F, 0xC8, 0x42, 0x2F, 0x64, 0xED, 0x57,
95296465Sdelphij    0x95, 0x28, 0xD3, 0x81, 0x20, 0xEA, 0xE1, 0x21, 0x96, 0xD5
96296465Sdelphij};
97296465Sdelphij
98160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_192 = {
99296465Sdelphij    NID_X9_62_prime_field,
100296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",
101296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",
102296465Sdelphij    "64210519E59C80E70FA7E9AB72243049FEB8DEECC146B9B1",
103296465Sdelphij    "188DA80EB03090F67CBF20EB43A18800F4FF0AFD82FF1012",
104296465Sdelphij    "07192b95ffc8da78631011ed6b24cdd573f977a11e794811",
105296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFF99DEF836146BC9B1B4D22831", 1,
106296465Sdelphij    _EC_NIST_PRIME_192_SEED, 20,
107296465Sdelphij    "NIST/X9.62/SECG curve over a 192 bit prime field"
108296465Sdelphij};
109160814Ssimon
110160814Ssimonstatic const unsigned char _EC_NIST_PRIME_224_SEED[] = {
111296465Sdelphij    0xBD, 0x71, 0x34, 0x47, 0x99, 0xD5, 0xC7, 0xFC, 0xDC, 0x45,
112296465Sdelphij    0xB5, 0x9F, 0xA3, 0xB9, 0xAB, 0x8F, 0x6A, 0x94, 0x8B, 0xC5
113296465Sdelphij};
114296465Sdelphij
115160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_224 = {
116296465Sdelphij    NID_X9_62_prime_field,
117296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001",
118296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE",
119296465Sdelphij    "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4",
120296465Sdelphij    "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21",
121296465Sdelphij    "bd376388b5f723fb4c22dfe6cd4375a05a07476444d5819985007e34",
122296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D", 1,
123296465Sdelphij    _EC_NIST_PRIME_224_SEED, 20,
124296465Sdelphij    "NIST/SECG curve over a 224 bit prime field"
125296465Sdelphij};
126160814Ssimon
127160814Ssimonstatic const unsigned char _EC_NIST_PRIME_384_SEED[] = {
128296465Sdelphij    0xA3, 0x35, 0x92, 0x6A, 0xA3, 0x19, 0xA2, 0x7A, 0x1D, 0x00,
129296465Sdelphij    0x89, 0x6A, 0x67, 0x73, 0xA4, 0x82, 0x7A, 0xCD, 0xAC, 0x73
130296465Sdelphij};
131296465Sdelphij
132160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_384 = {
133296465Sdelphij    NID_X9_62_prime_field,
134296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFF"
135296465Sdelphij        "FFF0000000000000000FFFFFFFF",
136296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFF"
137296465Sdelphij        "FFF0000000000000000FFFFFFFC",
138296465Sdelphij    "B3312FA7E23EE7E4988E056BE3F82D19181D9C6EFE8141120314088F5013875AC6563"
139296465Sdelphij        "98D8A2ED19D2A85C8EDD3EC2AEF",
140296465Sdelphij    "AA87CA22BE8B05378EB1C71EF320AD746E1D3B628BA79B9859F741E082542A385502F"
141296465Sdelphij        "25DBF55296C3A545E3872760AB7",
142296465Sdelphij    "3617de4a96262c6f5d9e98bf9292dc29f8f41dbd289a147ce9da3113b5f0b8c00a60b"
143296465Sdelphij        "1ce1d7e819d7a431d7c90ea0e5f",
144296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC7634D81F4372DDF581A0"
145296465Sdelphij        "DB248B0A77AECEC196ACCC52973", 1,
146296465Sdelphij    _EC_NIST_PRIME_384_SEED, 20,
147296465Sdelphij    "NIST/SECG curve over a 384 bit prime field"
148296465Sdelphij};
149160814Ssimon
150160814Ssimonstatic const unsigned char _EC_NIST_PRIME_521_SEED[] = {
151296465Sdelphij    0xD0, 0x9E, 0x88, 0x00, 0x29, 0x1C, 0xB8, 0x53, 0x96, 0xCC,
152296465Sdelphij    0x67, 0x17, 0x39, 0x32, 0x84, 0xAA, 0xA0, 0xDA, 0x64, 0xBA
153296465Sdelphij};
154296465Sdelphij
155160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_PRIME_521 = {
156296465Sdelphij    NID_X9_62_prime_field,
157296465Sdelphij    "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"
158296465Sdelphij        "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF",
159296465Sdelphij    "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"
160296465Sdelphij        "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC",
161296465Sdelphij    "051953EB9618E1C9A1F929A21A0B68540EEA2DA725B99B315F3B8B489918EF109E156"
162296465Sdelphij        "193951EC7E937B1652C0BD3BB1BF073573DF883D2C34F1EF451FD46B503F00",
163296465Sdelphij    "C6858E06B70404E9CD9E3ECB662395B4429C648139053FB521F828AF606B4D3DBAA14"
164296465Sdelphij        "B5E77EFE75928FE1DC127A2FFA8DE3348B3C1856A429BF97E7E31C2E5BD66",
165296465Sdelphij    "011839296a789a3bc0045c8a5fb42c7d1bd998f54449579b446817afbd17273e662c9"
166296465Sdelphij        "7ee72995ef42640c550b9013fad0761353c7086a272c24088be94769fd16650",
167296465Sdelphij    "1FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFA51"
168296465Sdelphij        "868783BF2F966B7FCC0148F709A5D03BB5C9B8899C47AEBB6FB71E91386409", 1,
169296465Sdelphij    _EC_NIST_PRIME_521_SEED, 20,
170296465Sdelphij    "NIST/SECG curve over a 521 bit prime field"
171296465Sdelphij};
172296465Sdelphij
173160814Ssimon/* the x9.62 prime curves (minus the nist prime curves) */
174160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_192V2_SEED[] = {
175296465Sdelphij    0x31, 0xA9, 0x2E, 0xE2, 0x02, 0x9F, 0xD1, 0x0D, 0x90, 0x1B,
176296465Sdelphij    0x11, 0x3E, 0x99, 0x07, 0x10, 0xF0, 0xD2, 0x1A, 0xC6, 0xB6
177296465Sdelphij};
178296465Sdelphij
179160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_192V2 = {
180296465Sdelphij    NID_X9_62_prime_field,
181296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",
182296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",
183296465Sdelphij    "CC22D6DFB95C6B25E49C0D6364A4E5980C393AA21668D953",
184296465Sdelphij    "EEA2BAE7E1497842F2DE7769CFE9C989C072AD696F48034A",
185296465Sdelphij    "6574d11d69b6ec7a672bb82a083df2f2b0847de970b2de15",
186296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFE5FB1A724DC80418648D8DD31", 1,
187296465Sdelphij    _EC_X9_62_PRIME_192V2_SEED, 20,
188296465Sdelphij    "X9.62 curve over a 192 bit prime field"
189296465Sdelphij};
190160814Ssimon
191160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_192V3_SEED[] = {
192296465Sdelphij    0xC4, 0x69, 0x68, 0x44, 0x35, 0xDE, 0xB3, 0x78, 0xC4, 0xB6,
193296465Sdelphij    0x5C, 0xA9, 0x59, 0x1E, 0x2A, 0x57, 0x63, 0x05, 0x9A, 0x2E
194296465Sdelphij};
195296465Sdelphij
196160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_192V3 = {
197296465Sdelphij    NID_X9_62_prime_field,
198296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFF",
199296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFC",
200296465Sdelphij    "22123DC2395A05CAA7423DAECCC94760A7D462256BD56916",
201296465Sdelphij    "7D29778100C65A1DA1783716588DCE2B8B4AEE8E228F1896",
202296465Sdelphij    "38a90f22637337334b49dcb66a6dc8f9978aca7648a943b0",
203296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFF7A62D031C83F4294F640EC13", 1,
204296465Sdelphij    _EC_X9_62_PRIME_192V3_SEED, 20,
205296465Sdelphij    "X9.62 curve over a 192 bit prime field"
206296465Sdelphij};
207160814Ssimon
208160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V1_SEED[] = {
209296465Sdelphij    0xE4, 0x3B, 0xB4, 0x60, 0xF0, 0xB8, 0x0C, 0xC0, 0xC0, 0xB0,
210296465Sdelphij    0x75, 0x79, 0x8E, 0x94, 0x80, 0x60, 0xF8, 0x32, 0x1B, 0x7D
211296465Sdelphij};
212296465Sdelphij
213160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V1 = {
214296465Sdelphij    NID_X9_62_prime_field,
215296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",
216296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",
217296465Sdelphij    "6B016C3BDCF18941D0D654921475CA71A9DB2FB27D1D37796185C2942C0A",
218296465Sdelphij    "0FFA963CDCA8816CCC33B8642BEDF905C3D358573D3F27FBBD3B3CB9AAAF",
219296465Sdelphij    "7debe8e4e90a5dae6e4054ca530ba04654b36818ce226b39fccb7b02f1ae",
220296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF9E5E9A9F5D9071FBD1522688909D0B", 1,
221296465Sdelphij    _EC_X9_62_PRIME_239V1_SEED, 20,
222296465Sdelphij    "X9.62 curve over a 239 bit prime field"
223296465Sdelphij};
224160814Ssimon
225160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V2_SEED[] = {
226296465Sdelphij    0xE8, 0xB4, 0x01, 0x16, 0x04, 0x09, 0x53, 0x03, 0xCA, 0x3B,
227296465Sdelphij    0x80, 0x99, 0x98, 0x2B, 0xE0, 0x9F, 0xCB, 0x9A, 0xE6, 0x16
228296465Sdelphij};
229296465Sdelphij
230160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V2 = {
231296465Sdelphij    NID_X9_62_prime_field,
232296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",
233296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",
234296465Sdelphij    "617FAB6832576CBBFED50D99F0249C3FEE58B94BA0038C7AE84C8C832F2C",
235296465Sdelphij    "38AF09D98727705120C921BB5E9E26296A3CDCF2F35757A0EAFD87B830E7",
236296465Sdelphij    "5b0125e4dbea0ec7206da0fc01d9b081329fb555de6ef460237dff8be4ba",
237296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF800000CFA7E8594377D414C03821BC582063", 1,
238296465Sdelphij    _EC_X9_62_PRIME_239V2_SEED, 20,
239296465Sdelphij    "X9.62 curve over a 239 bit prime field"
240296465Sdelphij};
241160814Ssimon
242160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_239V3_SEED[] = {
243296465Sdelphij    0x7D, 0x73, 0x74, 0x16, 0x8F, 0xFE, 0x34, 0x71, 0xB6, 0x0A,
244296465Sdelphij    0x85, 0x76, 0x86, 0xA1, 0x94, 0x75, 0xD3, 0xBF, 0xA2, 0xFF
245296465Sdelphij};
246296465Sdelphij
247160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_239V3 = {
248296465Sdelphij    NID_X9_62_prime_field,
249296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFF",
250296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFFFFFFFF8000000000007FFFFFFFFFFC",
251296465Sdelphij    "255705FA2A306654B1F4CB03D6A750A30C250102D4988717D9BA15AB6D3E",
252296465Sdelphij    "6768AE8E18BB92CFCF005C949AA2C6D94853D0E660BBF854B1C9505FE95A",
253296465Sdelphij    "1607e6898f390c06bc1d552bad226f3b6fcfe48b6e818499af18e3ed6cf3",
254296465Sdelphij    "7FFFFFFFFFFFFFFFFFFFFFFF7FFFFF975DEB41B3A6057C3C432146526551", 1,
255296465Sdelphij    _EC_X9_62_PRIME_239V3_SEED, 20,
256296465Sdelphij    "X9.62 curve over a 239 bit prime field"
257296465Sdelphij};
258160814Ssimon
259160814Ssimonstatic const unsigned char _EC_X9_62_PRIME_256V1_SEED[] = {
260296465Sdelphij    0xC4, 0x9D, 0x36, 0x08, 0x86, 0xE7, 0x04, 0x93, 0x6A, 0x66,
261296465Sdelphij    0x78, 0xE1, 0x13, 0x9D, 0x26, 0xB7, 0x81, 0x9F, 0x7E, 0x90
262296465Sdelphij};
263296465Sdelphij
264160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_PRIME_256V1 = {
265296465Sdelphij    NID_X9_62_prime_field,
266296465Sdelphij    "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFF",
267296465Sdelphij    "FFFFFFFF00000001000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFC",
268296465Sdelphij    "5AC635D8AA3A93E7B3EBBD55769886BC651D06B0CC53B0F63BCE3C3E27D2604B",
269296465Sdelphij    "6B17D1F2E12C4247F8BCE6E563A440F277037D812DEB33A0F4A13945D898C296",
270296465Sdelphij    "4fe342e2fe1a7f9b8ee7eb4a7c0f9e162bce33576b315ececbb6406837bf51f5",
271296465Sdelphij    "FFFFFFFF00000000FFFFFFFFFFFFFFFFBCE6FAADA7179E84F3B9CAC2FC632551", 1,
272296465Sdelphij    _EC_X9_62_PRIME_256V1_SEED, 20,
273296465Sdelphij    "X9.62/SECG curve over a 256 bit prime field"
274296465Sdelphij};
275296465Sdelphij
276160814Ssimon/* the secg prime curves (minus the nist and x9.62 prime curves) */
277160814Ssimonstatic const unsigned char _EC_SECG_PRIME_112R1_SEED[] = {
278296465Sdelphij    0x00, 0xF5, 0x0B, 0x02, 0x8E, 0x4D, 0x69, 0x6E, 0x67, 0x68,
279296465Sdelphij    0x75, 0x61, 0x51, 0x75, 0x29, 0x04, 0x72, 0x78, 0x3F, 0xB1
280296465Sdelphij};
281296465Sdelphij
282160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_112R1 = {
283296465Sdelphij    NID_X9_62_prime_field,
284296465Sdelphij    "DB7C2ABF62E35E668076BEAD208B",
285296465Sdelphij    "DB7C2ABF62E35E668076BEAD2088",
286296465Sdelphij    "659EF8BA043916EEDE8911702B22",
287296465Sdelphij    "09487239995A5EE76B55F9C2F098",
288296465Sdelphij    "a89ce5af8724c0a23e0e0ff77500",
289296465Sdelphij    "DB7C2ABF62E35E7628DFAC6561C5", 1,
290296465Sdelphij    _EC_SECG_PRIME_112R1_SEED, 20,
291296465Sdelphij    "SECG/WTLS curve over a 112 bit prime field"
292296465Sdelphij};
293160814Ssimon
294160814Ssimonstatic const unsigned char _EC_SECG_PRIME_112R2_SEED[] = {
295296465Sdelphij    0x00, 0x27, 0x57, 0xA1, 0x11, 0x4D, 0x69, 0x6E, 0x67, 0x68,
296296465Sdelphij    0x75, 0x61, 0x51, 0x75, 0x53, 0x16, 0xC0, 0x5E, 0x0B, 0xD4
297296465Sdelphij};
298296465Sdelphij
299160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_112R2 = {
300296465Sdelphij    NID_X9_62_prime_field,
301296465Sdelphij    "DB7C2ABF62E35E668076BEAD208B",
302296465Sdelphij    "6127C24C05F38A0AAAF65C0EF02C",
303296465Sdelphij    "51DEF1815DB5ED74FCC34C85D709",
304296465Sdelphij    "4BA30AB5E892B4E1649DD0928643",
305296465Sdelphij    "adcd46f5882e3747def36e956e97",
306296465Sdelphij    "36DF0AAFD8B8D7597CA10520D04B", 4,
307296465Sdelphij    _EC_SECG_PRIME_112R2_SEED, 20,
308296465Sdelphij    "SECG curve over a 112 bit prime field"
309296465Sdelphij};
310160814Ssimon
311160814Ssimonstatic const unsigned char _EC_SECG_PRIME_128R1_SEED[] = {
312296465Sdelphij    0x00, 0x0E, 0x0D, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61,
313296465Sdelphij    0x51, 0x75, 0x0C, 0xC0, 0x3A, 0x44, 0x73, 0xD0, 0x36, 0x79
314296465Sdelphij};
315296465Sdelphij
316160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_128R1 = {
317296465Sdelphij    NID_X9_62_prime_field,
318296465Sdelphij    "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF",
319296465Sdelphij    "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFC",
320296465Sdelphij    "E87579C11079F43DD824993C2CEE5ED3",
321296465Sdelphij    "161FF7528B899B2D0C28607CA52C5B86",
322296465Sdelphij    "cf5ac8395bafeb13c02da292dded7a83",
323296465Sdelphij    "FFFFFFFE0000000075A30D1B9038A115", 1,
324296465Sdelphij    _EC_SECG_PRIME_128R1_SEED, 20,
325296465Sdelphij    "SECG curve over a 128 bit prime field"
326296465Sdelphij};
327160814Ssimon
328160814Ssimonstatic const unsigned char _EC_SECG_PRIME_128R2_SEED[] = {
329296465Sdelphij    0x00, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 0x51, 0x75,
330296465Sdelphij    0x12, 0xD8, 0xF0, 0x34, 0x31, 0xFC, 0xE6, 0x3B, 0x88, 0xF4
331296465Sdelphij};
332296465Sdelphij
333160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_128R2 = {
334296465Sdelphij    NID_X9_62_prime_field,
335296465Sdelphij    "FFFFFFFDFFFFFFFFFFFFFFFFFFFFFFFF",
336296465Sdelphij    "D6031998D1B3BBFEBF59CC9BBFF9AEE1",
337296465Sdelphij    "5EEEFCA380D02919DC2C6558BB6D8A5D",
338296465Sdelphij    "7B6AA5D85E572983E6FB32A7CDEBC140",
339296465Sdelphij    "27b6916a894d3aee7106fe805fc34b44",
340296465Sdelphij    "3FFFFFFF7FFFFFFFBE0024720613B5A3", 4,
341296465Sdelphij    _EC_SECG_PRIME_128R2_SEED, 20,
342296465Sdelphij    "SECG curve over a 128 bit prime field"
343296465Sdelphij};
344160814Ssimon
345160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160K1 = {
346296465Sdelphij    NID_X9_62_prime_field,
347296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73",
348296465Sdelphij    "0",
349296465Sdelphij    "7",
350296465Sdelphij    "3B4C382CE37AA192A4019E763036F4F5DD4D7EBB",
351296465Sdelphij    "938cf935318fdced6bc28286531733c3f03c4fee",
352296465Sdelphij    "0100000000000000000001B8FA16DFAB9ACA16B6B3", 1,
353296465Sdelphij    NULL, 0,
354296465Sdelphij    "SECG curve over a 160 bit prime field"
355296465Sdelphij};
356160814Ssimon
357160814Ssimonstatic const unsigned char _EC_SECG_PRIME_160R1_SEED[] = {
358296465Sdelphij    0x10, 0x53, 0xCD, 0xE4, 0x2C, 0x14, 0xD6, 0x96, 0xE6, 0x76,
359296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x53, 0x3B, 0xF3, 0xF8, 0x33, 0x45
360296465Sdelphij};
361296465Sdelphij
362160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160R1 = {
363296465Sdelphij    NID_X9_62_prime_field,
364296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFF",
365296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF7FFFFFFC",
366296465Sdelphij    "1C97BEFC54BD7A8B65ACF89F81D4D4ADC565FA45",
367296465Sdelphij    "4A96B5688EF573284664698968C38BB913CBFC82",
368296465Sdelphij    "23a628553168947d59dcc912042351377ac5fb32",
369296465Sdelphij    "0100000000000000000001F4C8F927AED3CA752257", 1,
370296465Sdelphij    _EC_SECG_PRIME_160R1_SEED, 20,
371296465Sdelphij    "SECG curve over a 160 bit prime field"
372296465Sdelphij};
373160814Ssimon
374160814Ssimonstatic const unsigned char _EC_SECG_PRIME_160R2_SEED[] = {
375296465Sdelphij    0xB9, 0x9B, 0x99, 0xB0, 0x99, 0xB3, 0x23, 0xE0, 0x27, 0x09,
376296465Sdelphij    0xA4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x51
377296465Sdelphij};
378296465Sdelphij
379160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_160R2 = {
380296465Sdelphij    NID_X9_62_prime_field,
381296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC73",
382296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFAC70",
383296465Sdelphij    "B4E134D3FB59EB8BAB57274904664D5AF50388BA",
384296465Sdelphij    "52DCB034293A117E1F4FF11B30F7199D3144CE6D",
385296465Sdelphij    "feaffef2e331f296e071fa0df9982cfea7d43f2e",
386296465Sdelphij    "0100000000000000000000351EE786A818F3A1A16B", 1,
387296465Sdelphij    _EC_SECG_PRIME_160R2_SEED, 20,
388296465Sdelphij    "SECG/WTLS curve over a 160 bit prime field"
389296465Sdelphij};
390160814Ssimon
391160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_192K1 = {
392296465Sdelphij    NID_X9_62_prime_field,
393296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFEE37",
394296465Sdelphij    "0",
395296465Sdelphij    "3",
396296465Sdelphij    "DB4FF10EC057E9AE26B07D0280B7F4341DA5D1B1EAE06C7D",
397296465Sdelphij    "9b2f2f6d9c5628a7844163d015be86344082aa88d95e2f9d",
398296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFE26F2FC170F69466A74DEFD8D", 1,
399296465Sdelphij    NULL, 20,
400296465Sdelphij    "SECG curve over a 192 bit prime field"
401296465Sdelphij};
402160814Ssimon
403160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_224K1 = {
404296465Sdelphij    NID_X9_62_prime_field,
405296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFE56D",
406296465Sdelphij    "0",
407296465Sdelphij    "5",
408296465Sdelphij    "A1455B334DF099DF30FC28A169A467E9E47075A90F7E650EB6B7A45C",
409296465Sdelphij    "7e089fed7fba344282cafbd6f7e319f7c0b0bd59e2ca4bdb556d61a5",
410296465Sdelphij    "010000000000000000000000000001DCE8D2EC6184CAF0A971769FB1F7", 1,
411296465Sdelphij    NULL, 20,
412296465Sdelphij    "SECG curve over a 224 bit prime field"
413296465Sdelphij};
414160814Ssimon
415160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_PRIME_256K1 = {
416296465Sdelphij    NID_X9_62_prime_field,
417296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFC2F",
418296465Sdelphij    "0",
419296465Sdelphij    "7",
420296465Sdelphij    "79BE667EF9DCBBAC55A06295CE870B07029BFCDB2DCE28D959F2815B16F81798",
421296465Sdelphij    "483ada7726a3c4655da4fbfc0e1108a8fd17b448a68554199c47d08ffb10d4b8",
422296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEBAAEDCE6AF48A03BBFD25E8CD0364141", 1,
423296465Sdelphij    NULL, 20,
424296465Sdelphij    "SECG curve over a 256 bit prime field"
425296465Sdelphij};
426160814Ssimon
427160814Ssimon/* some wap/wtls curves */
428160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_8 = {
429296465Sdelphij    NID_X9_62_prime_field,
430296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFDE7",
431296465Sdelphij    "0",
432296465Sdelphij    "3",
433296465Sdelphij    "1",
434296465Sdelphij    "2",
435296465Sdelphij    "0100000000000001ECEA551AD837E9", 1,
436296465Sdelphij    NULL, 20,
437296465Sdelphij    "WTLS curve over a 112 bit prime field"
438296465Sdelphij};
439160814Ssimon
440160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_9 = {
441296465Sdelphij    NID_X9_62_prime_field,
442296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC808F",
443296465Sdelphij    "0",
444296465Sdelphij    "3",
445296465Sdelphij    "1",
446296465Sdelphij    "2",
447296465Sdelphij    "0100000000000000000001CDC98AE0E2DE574ABF33", 1,
448296465Sdelphij    NULL, 20,
449296465Sdelphij    "WTLS curve over a 160 bit prime field"
450296465Sdelphij};
451160814Ssimon
452160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_12 = {
453296465Sdelphij    NID_X9_62_prime_field,
454296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF000000000000000000000001",
455296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEFFFFFFFFFFFFFFFFFFFFFFFE",
456296465Sdelphij    "B4050A850C04B3ABF54132565044B0B7D7BFD8BA270B39432355FFB4",
457296465Sdelphij    "B70E0CBD6BB4BF7F321390B94A03C1D356C21122343280D6115C1D21",
458296465Sdelphij    "bd376388b5f723fb4c22dfe6cd4375a05a07476444d5819985007e34",
459296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFFFFFFF16A2E0B8F03E13DD29455C5C2A3D", 1,
460296465Sdelphij    NULL, 0,
461296465Sdelphij    "WTLS curvs over a 224 bit prime field"
462296465Sdelphij};
463160814Ssimon
464160814Ssimon/* characteristic two curves */
465160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_113R1_SEED[] = {
466296465Sdelphij    0x10, 0xE7, 0x23, 0xAB, 0x14, 0xD6, 0x96, 0xE6, 0x76, 0x87,
467296465Sdelphij    0x56, 0x15, 0x17, 0x56, 0xFE, 0xBF, 0x8F, 0xCB, 0x49, 0xA9
468296465Sdelphij};
469296465Sdelphij
470160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_113R1 = {
471296465Sdelphij    NID_X9_62_characteristic_two_field,
472296465Sdelphij    "020000000000000000000000000201",
473296465Sdelphij    "003088250CA6E7C7FE649CE85820F7",
474296465Sdelphij    "00E8BEE4D3E2260744188BE0E9C723",
475296465Sdelphij    "009D73616F35F4AB1407D73562C10F",
476296465Sdelphij    "00A52830277958EE84D1315ED31886",
477296465Sdelphij    "0100000000000000D9CCEC8A39E56F", 2,
478296465Sdelphij    _EC_SECG_CHAR2_113R1_SEED, 20,
479296465Sdelphij    "SECG curve over a 113 bit binary field"
480296465Sdelphij};
481160814Ssimon
482160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_113R2_SEED[] = {
483296465Sdelphij    0x10, 0xC0, 0xFB, 0x15, 0x76, 0x08, 0x60, 0xDE, 0xF1, 0xEE,
484296465Sdelphij    0xF4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x5D
485296465Sdelphij};
486296465Sdelphij
487160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_113R2 = {
488296465Sdelphij    NID_X9_62_characteristic_two_field,
489296465Sdelphij    "020000000000000000000000000201",
490296465Sdelphij    "00689918DBEC7E5A0DD6DFC0AA55C7",
491296465Sdelphij    "0095E9A9EC9B297BD4BF36E059184F",
492296465Sdelphij    "01A57A6A7B26CA5EF52FCDB8164797",
493296465Sdelphij    "00B3ADC94ED1FE674C06E695BABA1D",
494296465Sdelphij    "010000000000000108789B2496AF93", 2,
495296465Sdelphij    _EC_SECG_CHAR2_113R2_SEED, 20,
496296465Sdelphij    "SECG curve over a 113 bit binary field"
497296465Sdelphij};
498160814Ssimon
499160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_131R1_SEED[] = {
500296465Sdelphij    0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61, 0x51, 0x75, 0x98,
501296465Sdelphij    0x5B, 0xD3, 0xAD, 0xBA, 0xDA, 0x21, 0xB4, 0x3A, 0x97, 0xE2
502296465Sdelphij};
503296465Sdelphij
504160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_131R1 = {
505296465Sdelphij    NID_X9_62_characteristic_two_field,
506296465Sdelphij    "080000000000000000000000000000010D",
507296465Sdelphij    "07A11B09A76B562144418FF3FF8C2570B8",
508296465Sdelphij    "0217C05610884B63B9C6C7291678F9D341",
509296465Sdelphij    "0081BAF91FDF9833C40F9C181343638399",
510296465Sdelphij    "078C6E7EA38C001F73C8134B1B4EF9E150",
511296465Sdelphij    "0400000000000000023123953A9464B54D", 2,
512296465Sdelphij    _EC_SECG_CHAR2_131R1_SEED, 20,
513296465Sdelphij    "SECG/WTLS curve over a 131 bit binary field"
514296465Sdelphij};
515160814Ssimon
516160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_131R2_SEED[] = {
517296465Sdelphij    0x98, 0x5B, 0xD3, 0xAD, 0xBA, 0xD4, 0xD6, 0x96, 0xE6, 0x76,
518296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x5A, 0x21, 0xB4, 0x3A, 0x97, 0xE3
519296465Sdelphij};
520296465Sdelphij
521160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_131R2 = {
522296465Sdelphij    NID_X9_62_characteristic_two_field,
523296465Sdelphij    "080000000000000000000000000000010D",
524296465Sdelphij    "03E5A88919D7CAFCBF415F07C2176573B2",
525296465Sdelphij    "04B8266A46C55657AC734CE38F018F2192",
526296465Sdelphij    "0356DCD8F2F95031AD652D23951BB366A8",
527296465Sdelphij    "0648F06D867940A5366D9E265DE9EB240F",
528296465Sdelphij    "0400000000000000016954A233049BA98F", 2,
529296465Sdelphij    _EC_SECG_CHAR2_131R2_SEED, 20,
530296465Sdelphij    "SECG curve over a 131 bit binary field"
531296465Sdelphij};
532160814Ssimon
533160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_163K = {
534296465Sdelphij    NID_X9_62_characteristic_two_field,
535296465Sdelphij    "0800000000000000000000000000000000000000C9",
536296465Sdelphij    "1",
537296465Sdelphij    "1",
538296465Sdelphij    "02FE13C0537BBC11ACAA07D793DE4E6D5E5C94EEE8",
539296465Sdelphij    "0289070FB05D38FF58321F2E800536D538CCDAA3D9",
540296465Sdelphij    "04000000000000000000020108A2E0CC0D99F8A5EF", 2,
541296465Sdelphij    NULL, 0,
542296465Sdelphij    "NIST/SECG/WTLS curve over a 163 bit binary field"
543296465Sdelphij};
544160814Ssimon
545160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_163R1_SEED[] = {
546296465Sdelphij    0x24, 0xB7, 0xB1, 0x37, 0xC8, 0xA1, 0x4D, 0x69, 0x6E, 0x67,
547296465Sdelphij    0x68, 0x75, 0x61, 0x51, 0x75, 0x6F, 0xD0, 0xDA, 0x2E, 0x5C
548296465Sdelphij};
549296465Sdelphij
550160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_163R1 = {
551296465Sdelphij    NID_X9_62_characteristic_two_field,
552296465Sdelphij    "0800000000000000000000000000000000000000C9",
553296465Sdelphij    "07B6882CAAEFA84F9554FF8428BD88E246D2782AE2",
554296465Sdelphij    "0713612DCDDCB40AAB946BDA29CA91F73AF958AFD9",
555296465Sdelphij    "0369979697AB43897789566789567F787A7876A654",
556296465Sdelphij    "00435EDB42EFAFB2989D51FEFCE3C80988F41FF883",
557296465Sdelphij    "03FFFFFFFFFFFFFFFFFFFF48AAB689C29CA710279B", 2,
558296465Sdelphij    /*
559296465Sdelphij     * The algorithm used to derive the curve parameters from the seed used
560296465Sdelphij     * here is slightly different than the algorithm described in X9.62 .
561296465Sdelphij     */
562160814Ssimon#if 0
563296465Sdelphij    _EC_SECG_CHAR2_163R1_SEED, 20,
564160814Ssimon#else
565296465Sdelphij    NULL, 0,
566160814Ssimon#endif
567296465Sdelphij    "SECG curve over a 163 bit binary field"
568296465Sdelphij};
569160814Ssimon
570160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_163B_SEED[] = {
571296465Sdelphij    0x85, 0xE2, 0x5B, 0xFE, 0x5C, 0x86, 0x22, 0x6C, 0xDB, 0x12,
572296465Sdelphij    0x01, 0x6F, 0x75, 0x53, 0xF9, 0xD0, 0xE6, 0x93, 0xA2, 0x68
573296465Sdelphij};
574296465Sdelphij
575296465Sdelphijstatic const EC_CURVE_DATA _EC_NIST_CHAR2_163B = {
576296465Sdelphij    NID_X9_62_characteristic_two_field,
577296465Sdelphij    "0800000000000000000000000000000000000000C9",
578296465Sdelphij    "1",
579296465Sdelphij    "020A601907B8C953CA1481EB10512F78744A3205FD",
580296465Sdelphij    "03F0EBA16286A2D57EA0991168D4994637E8343E36",
581296465Sdelphij    "00D51FBC6C71A0094FA2CDD545B11C5C0C797324F1",
582296465Sdelphij    "040000000000000000000292FE77E70C12A4234C33", 2,
583296465Sdelphij    /*
584296465Sdelphij     * The seed here was used to created the curve parameters in normal basis
585296465Sdelphij     * representation (and not the polynomial representation used here)
586296465Sdelphij     */
587160814Ssimon#if 0
588296465Sdelphij    _EC_NIST_CHAR2_163B_SEED, 20,
589160814Ssimon#else
590296465Sdelphij    NULL, 0,
591160814Ssimon#endif
592296465Sdelphij    "NIST/SECG curve over a 163 bit binary field"
593296465Sdelphij};
594160814Ssimon
595160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_193R1_SEED[] = {
596296465Sdelphij    0x10, 0x3F, 0xAE, 0xC7, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75,
597296465Sdelphij    0x61, 0x51, 0x75, 0x77, 0x7F, 0xC5, 0xB1, 0x91, 0xEF, 0x30
598296465Sdelphij};
599296465Sdelphij
600160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_193R1 = {
601296465Sdelphij    NID_X9_62_characteristic_two_field,
602296465Sdelphij    "02000000000000000000000000000000000000000000008001",
603296465Sdelphij    "0017858FEB7A98975169E171F77B4087DE098AC8A911DF7B01",
604296465Sdelphij    "00FDFB49BFE6C3A89FACADAA7A1E5BBC7CC1C2E5D831478814",
605296465Sdelphij    "01F481BC5F0FF84A74AD6CDF6FDEF4BF6179625372D8C0C5E1",
606296465Sdelphij    "0025E399F2903712CCF3EA9E3A1AD17FB0B3201B6AF7CE1B05",
607296465Sdelphij    "01000000000000000000000000C7F34A778F443ACC920EBA49", 2,
608296465Sdelphij    _EC_SECG_CHAR2_193R1_SEED, 20,
609296465Sdelphij    "SECG curve over a 193 bit binary field"
610296465Sdelphij};
611160814Ssimon
612160814Ssimonstatic const unsigned char _EC_SECG_CHAR2_193R2_SEED[] = {
613296465Sdelphij    0x10, 0xB7, 0xB4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15,
614296465Sdelphij    0x17, 0x51, 0x37, 0xC8, 0xA1, 0x6F, 0xD0, 0xDA, 0x22, 0x11
615296465Sdelphij};
616296465Sdelphij
617160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_193R2 = {
618296465Sdelphij    NID_X9_62_characteristic_two_field,
619296465Sdelphij    "02000000000000000000000000000000000000000000008001",
620296465Sdelphij    "0163F35A5137C2CE3EA6ED8667190B0BC43ECD69977702709B",
621296465Sdelphij    "00C9BB9E8927D4D64C377E2AB2856A5B16E3EFB7F61D4316AE",
622296465Sdelphij    "00D9B67D192E0367C803F39E1A7E82CA14A651350AAE617E8F",
623296465Sdelphij    "01CE94335607C304AC29E7DEFBD9CA01F596F927224CDECF6C",
624296465Sdelphij    "010000000000000000000000015AAB561B005413CCD4EE99D5", 2,
625296465Sdelphij    _EC_SECG_CHAR2_193R2_SEED, 20,
626296465Sdelphij    "SECG curve over a 193 bit binary field"
627296465Sdelphij};
628160814Ssimon
629160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_233K = {
630296465Sdelphij    NID_X9_62_characteristic_two_field,
631296465Sdelphij    "020000000000000000000000000000000000000004000000000000000001",
632296465Sdelphij    "0",
633296465Sdelphij    "1",
634296465Sdelphij    "017232BA853A7E731AF129F22FF4149563A419C26BF50A4C9D6EEFAD6126",
635296465Sdelphij    "01DB537DECE819B7F70F555A67C427A8CD9BF18AEB9B56E0C11056FAE6A3",
636296465Sdelphij    "008000000000000000000000000000069D5BB915BCD46EFB1AD5F173ABDF", 4,
637296465Sdelphij    NULL, 0,
638296465Sdelphij    "NIST/SECG/WTLS curve over a 233 bit binary field"
639296465Sdelphij};
640160814Ssimon
641160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_233B_SEED[] = {
642296465Sdelphij    0x74, 0xD5, 0x9F, 0xF0, 0x7F, 0x6B, 0x41, 0x3D, 0x0E, 0xA1,
643296465Sdelphij    0x4B, 0x34, 0x4B, 0x20, 0xA2, 0xDB, 0x04, 0x9B, 0x50, 0xC3
644296465Sdelphij};
645296465Sdelphij
646160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_233B = {
647296465Sdelphij    NID_X9_62_characteristic_two_field,
648296465Sdelphij    "020000000000000000000000000000000000000004000000000000000001",
649296465Sdelphij    "000000000000000000000000000000000000000000000000000000000001",
650296465Sdelphij    "0066647EDE6C332C7F8C0923BB58213B333B20E9CE4281FE115F7D8F90AD",
651296465Sdelphij    "00FAC9DFCBAC8313BB2139F1BB755FEF65BC391F8B36F8F8EB7371FD558B",
652296465Sdelphij    "01006A08A41903350678E58528BEBF8A0BEFF867A7CA36716F7E01F81052",
653296465Sdelphij    "01000000000000000000000000000013E974E72F8A6922031D2603CFE0D7", 2,
654296465Sdelphij    _EC_NIST_CHAR2_233B_SEED, 20,
655296465Sdelphij    "NIST/SECG/WTLS curve over a 233 bit binary field"
656296465Sdelphij};
657160814Ssimon
658160814Ssimonstatic const EC_CURVE_DATA _EC_SECG_CHAR2_239K1 = {
659296465Sdelphij    NID_X9_62_characteristic_two_field,
660296465Sdelphij    "800000000000000000004000000000000000000000000000000000000001",
661296465Sdelphij    "0",
662296465Sdelphij    "1",
663296465Sdelphij    "29A0B6A887A983E9730988A68727A8B2D126C44CC2CC7B2A6555193035DC",
664296465Sdelphij    "76310804F12E549BDB011C103089E73510ACB275FC312A5DC6B76553F0CA",
665296465Sdelphij    "2000000000000000000000000000005A79FEC67CB6E91F1C1DA800E478A5", 4,
666296465Sdelphij    NULL, 0,
667296465Sdelphij    "SECG curve over a 239 bit binary field"
668296465Sdelphij};
669160814Ssimon
670160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_283K = {
671296465Sdelphij    NID_X9_62_characteristic_two_field,
672296465Sdelphij    "080000000000000000000000000000000000000000000000000000000000000000001"
673296465Sdelphij        "0A1",
674296465Sdelphij    "0",
675296465Sdelphij    "1",
676296465Sdelphij    "0503213F78CA44883F1A3B8162F188E553CD265F23C1567A16876913B0C2AC2458492"
677296465Sdelphij        "836",
678296465Sdelphij    "01CCDA380F1C9E318D90F95D07E5426FE87E45C0E8184698E45962364E34116177DD2"
679296465Sdelphij        "259",
680296465Sdelphij    "01FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE9AE2ED07577265DFF7F94451E061E163"
681296465Sdelphij        "C61", 4,
682296465Sdelphij    NULL, 20,
683296465Sdelphij    "NIST/SECG curve over a 283 bit binary field"
684296465Sdelphij};
685160814Ssimon
686160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_283B_SEED[] = {
687296465Sdelphij    0x77, 0xE2, 0xB0, 0x73, 0x70, 0xEB, 0x0F, 0x83, 0x2A, 0x6D,
688296465Sdelphij    0xD5, 0xB6, 0x2D, 0xFC, 0x88, 0xCD, 0x06, 0xBB, 0x84, 0xBE
689296465Sdelphij};
690296465Sdelphij
691160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_283B = {
692296465Sdelphij    NID_X9_62_characteristic_two_field,
693296465Sdelphij    "080000000000000000000000000000000000000000000000000000000000000000001"
694296465Sdelphij        "0A1",
695296465Sdelphij    "000000000000000000000000000000000000000000000000000000000000000000000"
696296465Sdelphij        "001",
697296465Sdelphij    "027B680AC8B8596DA5A4AF8A19A0303FCA97FD7645309FA2A581485AF6263E313B79A"
698296465Sdelphij        "2F5",
699296465Sdelphij    "05F939258DB7DD90E1934F8C70B0DFEC2EED25B8557EAC9C80E2E198F8CDBECD86B12"
700296465Sdelphij        "053",
701296465Sdelphij    "03676854FE24141CB98FE6D4B20D02B4516FF702350EDDB0826779C813F0DF45BE811"
702296465Sdelphij        "2F4",
703296465Sdelphij    "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEF90399660FC938A90165B042A7CEFADB"
704296465Sdelphij        "307", 2,
705296465Sdelphij    _EC_NIST_CHAR2_283B_SEED, 20,
706296465Sdelphij    "NIST/SECG curve over a 283 bit binary field"
707296465Sdelphij};
708160814Ssimon
709160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_409K = {
710296465Sdelphij    NID_X9_62_characteristic_two_field,
711296465Sdelphij    "020000000000000000000000000000000000000000000000000000000000000000000"
712296465Sdelphij        "00000000000008000000000000000000001",
713296465Sdelphij    "0",
714296465Sdelphij    "1",
715296465Sdelphij    "0060F05F658F49C1AD3AB1890F7184210EFD0987E307C84C27ACCFB8F9F67CC2C4601"
716296465Sdelphij        "89EB5AAAA62EE222EB1B35540CFE9023746",
717296465Sdelphij    "01E369050B7C4E42ACBA1DACBF04299C3460782F918EA427E6325165E9EA10E3DA5F6"
718296465Sdelphij        "C42E9C55215AA9CA27A5863EC48D8E0286B",
719296465Sdelphij    "007FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFE5F83B2D4EA20400"
720296465Sdelphij        "EC4557D5ED3E3E7CA5B4B5C83B8E01E5FCF", 4,
721296465Sdelphij    NULL, 0,
722296465Sdelphij    "NIST/SECG curve over a 409 bit binary field"
723296465Sdelphij};
724160814Ssimon
725160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_409B_SEED[] = {
726296465Sdelphij    0x40, 0x99, 0xB5, 0xA4, 0x57, 0xF9, 0xD6, 0x9F, 0x79, 0x21,
727296465Sdelphij    0x3D, 0x09, 0x4C, 0x4B, 0xCD, 0x4D, 0x42, 0x62, 0x21, 0x0B
728296465Sdelphij};
729296465Sdelphij
730160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_409B = {
731296465Sdelphij    NID_X9_62_characteristic_two_field,
732296465Sdelphij    "020000000000000000000000000000000000000000000000000000000000000000000"
733296465Sdelphij        "00000000000008000000000000000000001",
734296465Sdelphij    "000000000000000000000000000000000000000000000000000000000000000000000"
735296465Sdelphij        "00000000000000000000000000000000001",
736296465Sdelphij    "0021A5C2C8EE9FEB5C4B9A753B7B476B7FD6422EF1F3DD674761FA99D6AC27C8A9A19"
737296465Sdelphij        "7B272822F6CD57A55AA4F50AE317B13545F",
738296465Sdelphij    "015D4860D088DDB3496B0C6064756260441CDE4AF1771D4DB01FFE5B34E59703DC255"
739296465Sdelphij        "A868A1180515603AEAB60794E54BB7996A7",
740296465Sdelphij    "0061B1CFAB6BE5F32BBFA78324ED106A7636B9C5A7BD198D0158AA4F5488D08F38514"
741296465Sdelphij        "F1FDF4B4F40D2181B3681C364BA0273C706",
742296465Sdelphij    "010000000000000000000000000000000000000000000000000001E2AAD6A612F3330"
743296465Sdelphij        "7BE5FA47C3C9E052F838164CD37D9A21173", 2,
744296465Sdelphij    _EC_NIST_CHAR2_409B_SEED, 20,
745296465Sdelphij    "NIST/SECG curve over a 409 bit binary field"
746296465Sdelphij};
747160814Ssimon
748160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_571K = {
749296465Sdelphij    NID_X9_62_characteristic_two_field,
750296465Sdelphij    "800000000000000000000000000000000000000000000000000000000000000000000"
751296465Sdelphij        "000000000000000000000000000000000000000000000000000000000000000000000"
752296465Sdelphij        "00425",
753296465Sdelphij    "0",
754296465Sdelphij    "1",
755296465Sdelphij    "026EB7A859923FBC82189631F8103FE4AC9CA2970012D5D46024804801841CA443709"
756296465Sdelphij        "58493B205E647DA304DB4CEB08CBBD1BA39494776FB988B47174DCA88C7E2945283A0"
757296465Sdelphij        "1C8972",
758296465Sdelphij    "0349DC807F4FBF374F4AEADE3BCA95314DD58CEC9F307A54FFC61EFC006D8A2C9D497"
759296465Sdelphij        "9C0AC44AEA74FBEBBB9F772AEDCB620B01A7BA7AF1B320430C8591984F601CD4C143E"
760296465Sdelphij        "F1C7A3",
761296465Sdelphij    "020000000000000000000000000000000000000000000000000000000000000000000"
762296465Sdelphij        "000131850E1F19A63E4B391A8DB917F4138B630D84BE5D639381E91DEB45CFE778F63"
763296465Sdelphij        "7C1001", 4,
764296465Sdelphij    NULL, 0,
765296465Sdelphij    "NIST/SECG curve over a 571 bit binary field"
766296465Sdelphij};
767160814Ssimon
768160814Ssimonstatic const unsigned char _EC_NIST_CHAR2_571B_SEED[] = {
769296465Sdelphij    0x2A, 0xA0, 0x58, 0xF7, 0x3A, 0x0E, 0x33, 0xAB, 0x48, 0x6B,
770296465Sdelphij    0x0F, 0x61, 0x04, 0x10, 0xC5, 0x3A, 0x7F, 0x13, 0x23, 0x10
771296465Sdelphij};
772296465Sdelphij
773160814Ssimonstatic const EC_CURVE_DATA _EC_NIST_CHAR2_571B = {
774296465Sdelphij    NID_X9_62_characteristic_two_field,
775296465Sdelphij    "800000000000000000000000000000000000000000000000000000000000000000000"
776296465Sdelphij        "000000000000000000000000000000000000000000000000000000000000000000000"
777296465Sdelphij        "00425",
778296465Sdelphij    "000000000000000000000000000000000000000000000000000000000000000000000"
779296465Sdelphij        "000000000000000000000000000000000000000000000000000000000000000000000"
780296465Sdelphij        "000001",
781296465Sdelphij    "02F40E7E2221F295DE297117B7F3D62F5C6A97FFCB8CEFF1CD6BA8CE4A9A18AD84FFA"
782296465Sdelphij        "BBD8EFA59332BE7AD6756A66E294AFD185A78FF12AA520E4DE739BACA0C7FFEFF7F29"
783296465Sdelphij        "55727A",
784296465Sdelphij    "0303001D34B856296C16C0D40D3CD7750A93D1D2955FA80AA5F40FC8DB7B2ABDBDE53"
785296465Sdelphij        "950F4C0D293CDD711A35B67FB1499AE60038614F1394ABFA3B4C850D927E1E7769C8E"
786296465Sdelphij        "EC2D19",
787296465Sdelphij    "037BF27342DA639B6DCCFFFEB73D69D78C6C27A6009CBBCA1980F8533921E8A684423"
788296465Sdelphij        "E43BAB08A576291AF8F461BB2A8B3531D2F0485C19B16E2F1516E23DD3C1A4827AF1B"
789296465Sdelphij        "8AC15B",
790296465Sdelphij    "03FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF"
791296465Sdelphij        "FFFE661CE18FF55987308059B186823851EC7DD9CA1161DE93D5174D66E8382E9BB2F"
792296465Sdelphij        "E84E47", 2,
793296465Sdelphij    _EC_NIST_CHAR2_571B_SEED, 20,
794296465Sdelphij    "NIST/SECG curve over a 571 bit binary field"
795296465Sdelphij};
796160814Ssimon
797160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V1_SEED[] = {
798296465Sdelphij    0xD2, 0xC0, 0xFB, 0x15, 0x76, 0x08, 0x60, 0xDE, 0xF1, 0xEE,
799296465Sdelphij    0xF4, 0xD6, 0x96, 0xE6, 0x76, 0x87, 0x56, 0x15, 0x17, 0x54
800296465Sdelphij};
801296465Sdelphij
802160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V1 = {
803296465Sdelphij    NID_X9_62_characteristic_two_field,
804296465Sdelphij    "080000000000000000000000000000000000000107",
805296465Sdelphij    "072546B5435234A422E0789675F432C89435DE5242",
806296465Sdelphij    "00C9517D06D5240D3CFF38C74B20B6CD4D6F9DD4D9",
807296465Sdelphij    "07AF69989546103D79329FCC3D74880F33BBE803CB",
808296465Sdelphij    "01EC23211B5966ADEA1D3F87F7EA5848AEF0B7CA9F",
809296465Sdelphij    "0400000000000000000001E60FC8821CC74DAEAFC1", 2,
810296465Sdelphij    _EC_X9_62_CHAR2_163V1_SEED, 20,
811296465Sdelphij    "X9.62 curve over a 163 bit binary field"
812296465Sdelphij};
813160814Ssimon
814160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V2_SEED[] = {
815296465Sdelphij    0x53, 0x81, 0x4C, 0x05, 0x0D, 0x44, 0xD6, 0x96, 0xE6, 0x76,
816296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x58, 0x0C, 0xA4, 0xE2, 0x9F, 0xFD
817296465Sdelphij};
818296465Sdelphij
819160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V2 = {
820296465Sdelphij    NID_X9_62_characteristic_two_field,
821296465Sdelphij    "080000000000000000000000000000000000000107",
822296465Sdelphij    "0108B39E77C4B108BED981ED0E890E117C511CF072",
823296465Sdelphij    "0667ACEB38AF4E488C407433FFAE4F1C811638DF20",
824296465Sdelphij    "0024266E4EB5106D0A964D92C4860E2671DB9B6CC5",
825296465Sdelphij    "079F684DDF6684C5CD258B3890021B2386DFD19FC5",
826296465Sdelphij    "03FFFFFFFFFFFFFFFFFFFDF64DE1151ADBB78F10A7", 2,
827296465Sdelphij    _EC_X9_62_CHAR2_163V2_SEED, 20,
828296465Sdelphij    "X9.62 curve over a 163 bit binary field"
829296465Sdelphij};
830160814Ssimon
831160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_163V3_SEED[] = {
832296465Sdelphij    0x50, 0xCB, 0xF1, 0xD9, 0x5C, 0xA9, 0x4D, 0x69, 0x6E, 0x67,
833296465Sdelphij    0x68, 0x75, 0x61, 0x51, 0x75, 0xF1, 0x6A, 0x36, 0xA3, 0xB8
834296465Sdelphij};
835296465Sdelphij
836160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_163V3 = {
837296465Sdelphij    NID_X9_62_characteristic_two_field,
838296465Sdelphij    "080000000000000000000000000000000000000107",
839296465Sdelphij    "07A526C63D3E25A256A007699F5447E32AE456B50E",
840296465Sdelphij    "03F7061798EB99E238FD6F1BF95B48FEEB4854252B",
841296465Sdelphij    "02F9F87B7C574D0BDECF8A22E6524775F98CDEBDCB",
842296465Sdelphij    "05B935590C155E17EA48EB3FF3718B893DF59A05D0",
843296465Sdelphij    "03FFFFFFFFFFFFFFFFFFFE1AEE140F110AFF961309", 2,
844296465Sdelphij    _EC_X9_62_CHAR2_163V3_SEED, 20,
845296465Sdelphij    "X9.62 curve over a 163 bit binary field"
846296465Sdelphij};
847160814Ssimon
848160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_176V1 = {
849296465Sdelphij    NID_X9_62_characteristic_two_field,
850296465Sdelphij    "0100000000000000000000000000000000080000000007",
851296465Sdelphij    "E4E6DB2995065C407D9D39B8D0967B96704BA8E9C90B",
852296465Sdelphij    "5DDA470ABE6414DE8EC133AE28E9BBD7FCEC0AE0FFF2",
853296465Sdelphij    "8D16C2866798B600F9F08BB4A8E860F3298CE04A5798",
854296465Sdelphij    "6FA4539C2DADDDD6BAB5167D61B436E1D92BB16A562C",
855296465Sdelphij    "00010092537397ECA4F6145799D62B0A19CE06FE26AD", 0xFF6E,
856296465Sdelphij    NULL, 0,
857296465Sdelphij    "X9.62 curve over a 176 bit binary field"
858296465Sdelphij};
859160814Ssimon
860160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V1_SEED[] = {
861296465Sdelphij    0x4E, 0x13, 0xCA, 0x54, 0x27, 0x44, 0xD6, 0x96, 0xE6, 0x76,
862296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x55, 0x2F, 0x27, 0x9A, 0x8C, 0x84
863296465Sdelphij};
864296465Sdelphij
865160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V1 = {
866296465Sdelphij    NID_X9_62_characteristic_two_field,
867296465Sdelphij    "800000000000000000000000000000000000000000000201",
868296465Sdelphij    "2866537B676752636A68F56554E12640276B649EF7526267",
869296465Sdelphij    "2E45EF571F00786F67B0081B9495A3D95462F5DE0AA185EC",
870296465Sdelphij    "36B3DAF8A23206F9C4F299D7B21A9C369137F2C84AE1AA0D",
871296465Sdelphij    "765BE73433B3F95E332932E70EA245CA2418EA0EF98018FB",
872296465Sdelphij    "40000000000000000000000004A20E90C39067C893BBB9A5", 2,
873296465Sdelphij    _EC_X9_62_CHAR2_191V1_SEED, 20,
874296465Sdelphij    "X9.62 curve over a 191 bit binary field"
875296465Sdelphij};
876160814Ssimon
877160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V2_SEED[] = {
878296465Sdelphij    0x08, 0x71, 0xEF, 0x2F, 0xEF, 0x24, 0xD6, 0x96, 0xE6, 0x76,
879296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x58, 0xBE, 0xE0, 0xD9, 0x5C, 0x15
880296465Sdelphij};
881296465Sdelphij
882160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V2 = {
883296465Sdelphij    NID_X9_62_characteristic_two_field,
884296465Sdelphij    "800000000000000000000000000000000000000000000201",
885296465Sdelphij    "401028774D7777C7B7666D1366EA432071274F89FF01E718",
886296465Sdelphij    "0620048D28BCBD03B6249C99182B7C8CD19700C362C46A01",
887296465Sdelphij    "3809B2B7CC1B28CC5A87926AAD83FD28789E81E2C9E3BF10",
888296465Sdelphij    "17434386626D14F3DBF01760D9213A3E1CF37AEC437D668A",
889296465Sdelphij    "20000000000000000000000050508CB89F652824E06B8173", 4,
890296465Sdelphij    _EC_X9_62_CHAR2_191V2_SEED, 20,
891296465Sdelphij    "X9.62 curve over a 191 bit binary field"
892296465Sdelphij};
893160814Ssimon
894160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_191V3_SEED[] = {
895296465Sdelphij    0xE0, 0x53, 0x51, 0x2D, 0xC6, 0x84, 0xD6, 0x96, 0xE6, 0x76,
896296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x50, 0x67, 0xAE, 0x78, 0x6D, 0x1F
897296465Sdelphij};
898296465Sdelphij
899160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_191V3 = {
900296465Sdelphij    NID_X9_62_characteristic_two_field,
901296465Sdelphij    "800000000000000000000000000000000000000000000201",
902296465Sdelphij    "6C01074756099122221056911C77D77E77A777E7E7E77FCB",
903296465Sdelphij    "71FE1AF926CF847989EFEF8DB459F66394D90F32AD3F15E8",
904296465Sdelphij    "375D4CE24FDE434489DE8746E71786015009E66E38A926DD",
905296465Sdelphij    "545A39176196575D985999366E6AD34CE0A77CD7127B06BE",
906296465Sdelphij    "155555555555555555555555610C0B196812BFB6288A3EA3", 6,
907296465Sdelphij    _EC_X9_62_CHAR2_191V3_SEED, 20,
908296465Sdelphij    "X9.62 curve over a 191 bit binary field"
909296465Sdelphij};
910160814Ssimon
911160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_208W1 = {
912296465Sdelphij    NID_X9_62_characteristic_two_field,
913296465Sdelphij    "010000000000000000000000000000000800000000000000000007",
914296465Sdelphij    "0000000000000000000000000000000000000000000000000000",
915296465Sdelphij    "C8619ED45A62E6212E1160349E2BFA844439FAFC2A3FD1638F9E",
916296465Sdelphij    "89FDFBE4ABE193DF9559ECF07AC0CE78554E2784EB8C1ED1A57A",
917296465Sdelphij    "0F55B51A06E78E9AC38A035FF520D8B01781BEB1A6BB08617DE3",
918296465Sdelphij    "000101BAF95C9723C57B6C21DA2EFF2D5ED588BDD5717E212F9D", 0xFE48,
919296465Sdelphij    NULL, 0,
920296465Sdelphij    "X9.62 curve over a 208 bit binary field"
921296465Sdelphij};
922160814Ssimon
923160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V1_SEED[] = {
924296465Sdelphij    0xD3, 0x4B, 0x9A, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61,
925296465Sdelphij    0x51, 0x75, 0xCA, 0x71, 0xB9, 0x20, 0xBF, 0xEF, 0xB0, 0x5D
926296465Sdelphij};
927296465Sdelphij
928160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V1 = {
929296465Sdelphij    NID_X9_62_characteristic_two_field,
930296465Sdelphij    "800000000000000000000000000000000000000000000000001000000001",
931296465Sdelphij    "32010857077C5431123A46B808906756F543423E8D27877578125778AC76",
932296465Sdelphij    "790408F2EEDAF392B012EDEFB3392F30F4327C0CA3F31FC383C422AA8C16",
933296465Sdelphij    "57927098FA932E7C0A96D3FD5B706EF7E5F5C156E16B7E7C86038552E91D",
934296465Sdelphij    "61D8EE5077C33FECF6F1A16B268DE469C3C7744EA9A971649FC7A9616305",
935296465Sdelphij    "2000000000000000000000000000000F4D42FFE1492A4993F1CAD666E447", 4,
936296465Sdelphij    _EC_X9_62_CHAR2_239V1_SEED, 20,
937296465Sdelphij    "X9.62 curve over a 239 bit binary field"
938296465Sdelphij};
939160814Ssimon
940160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V2_SEED[] = {
941296465Sdelphij    0x2A, 0xA6, 0x98, 0x2F, 0xDF, 0xA4, 0xD6, 0x96, 0xE6, 0x76,
942296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x5D, 0x26, 0x67, 0x27, 0x27, 0x7D
943296465Sdelphij};
944296465Sdelphij
945160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V2 = {
946296465Sdelphij    NID_X9_62_characteristic_two_field,
947296465Sdelphij    "800000000000000000000000000000000000000000000000001000000001",
948296465Sdelphij    "4230017757A767FAE42398569B746325D45313AF0766266479B75654E65F",
949296465Sdelphij    "5037EA654196CFF0CD82B2C14A2FCF2E3FF8775285B545722F03EACDB74B",
950296465Sdelphij    "28F9D04E900069C8DC47A08534FE76D2B900B7D7EF31F5709F200C4CA205",
951296465Sdelphij    "5667334C45AFF3B5A03BAD9DD75E2C71A99362567D5453F7FA6E227EC833",
952296465Sdelphij    "1555555555555555555555555555553C6F2885259C31E3FCDF154624522D", 6,
953296465Sdelphij    _EC_X9_62_CHAR2_239V2_SEED, 20,
954296465Sdelphij    "X9.62 curve over a 239 bit binary field"
955296465Sdelphij};
956160814Ssimon
957160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_239V3_SEED[] = {
958296465Sdelphij    0x9E, 0x07, 0x6F, 0x4D, 0x69, 0x6E, 0x67, 0x68, 0x75, 0x61,
959296465Sdelphij    0x51, 0x75, 0xE1, 0x1E, 0x9F, 0xDD, 0x77, 0xF9, 0x20, 0x41
960296465Sdelphij};
961296465Sdelphij
962160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_239V3 = {
963296465Sdelphij    NID_X9_62_characteristic_two_field,
964296465Sdelphij    "800000000000000000000000000000000000000000000000001000000001",
965296465Sdelphij    "01238774666A67766D6676F778E676B66999176666E687666D8766C66A9F",
966296465Sdelphij    "6A941977BA9F6A435199ACFC51067ED587F519C5ECB541B8E44111DE1D40",
967296465Sdelphij    "70F6E9D04D289C4E89913CE3530BFDE903977D42B146D539BF1BDE4E9C92",
968296465Sdelphij    "2E5A0EAF6E5E1305B9004DCE5C0ED7FE59A35608F33837C816D80B79F461",
969296465Sdelphij    "0CCCCCCCCCCCCCCCCCCCCCCCCCCCCCAC4912D2D9DF903EF9888B8A0E4CFF", 0xA,
970296465Sdelphij    _EC_X9_62_CHAR2_239V3_SEED, 20,
971296465Sdelphij    "X9.62 curve over a 239 bit binary field"
972296465Sdelphij};
973160814Ssimon
974160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_272W1 = {
975296465Sdelphij    NID_X9_62_characteristic_two_field,
976296465Sdelphij    "010000000000000000000000000000000000000000000000000000010000000000000"
977296465Sdelphij        "B",
978296465Sdelphij    "91A091F03B5FBA4AB2CCF49C4EDD220FB028712D42BE752B2C40094DBACDB586FB20",
979296465Sdelphij    "7167EFC92BB2E3CE7C8AAAFF34E12A9C557003D7C73A6FAF003F99F6CC8482E540F7",
980296465Sdelphij    "6108BABB2CEEBCF787058A056CBE0CFE622D7723A289E08A07AE13EF0D10D171DD8D",
981296465Sdelphij    "10C7695716851EEF6BA7F6872E6142FBD241B830FF5EFCACECCAB05E02005DDE9D23",
982296465Sdelphij    "000100FAF51354E0E39E4892DF6E319C72C8161603FA45AA7B998A167B8F1E629521",
983296465Sdelphij    0xFF06,
984296465Sdelphij    NULL, 0,
985296465Sdelphij    "X9.62 curve over a 272 bit binary field"
986296465Sdelphij};
987160814Ssimon
988160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_304W1 = {
989296465Sdelphij    NID_X9_62_characteristic_two_field,
990296465Sdelphij    "010000000000000000000000000000000000000000000000000000000000000000000"
991296465Sdelphij        "000000807",
992296465Sdelphij    "FD0D693149A118F651E6DCE6802085377E5F882D1B510B44160074C1288078365A039"
993296465Sdelphij        "6C8E681",
994296465Sdelphij    "BDDB97E555A50A908E43B01C798EA5DAA6788F1EA2794EFCF57166B8C14039601E558"
995296465Sdelphij        "27340BE",
996296465Sdelphij    "197B07845E9BE2D96ADB0F5F3C7F2CFFBD7A3EB8B6FEC35C7FD67F26DDF6285A644F7"
997296465Sdelphij        "40A2614",
998296465Sdelphij    "E19FBEB76E0DA171517ECF401B50289BF014103288527A9B416A105E80260B549FDC1"
999296465Sdelphij        "B92C03B",
1000296465Sdelphij    "000101D556572AABAC800101D556572AABAC8001022D5C91DD173F8FB561DA6899164"
1001296465Sdelphij        "443051D", 0xFE2E,
1002296465Sdelphij    NULL, 0,
1003296465Sdelphij    "X9.62 curve over a 304 bit binary field"
1004296465Sdelphij};
1005160814Ssimon
1006160814Ssimonstatic const unsigned char _EC_X9_62_CHAR2_359V1_SEED[] = {
1007296465Sdelphij    0x2B, 0x35, 0x49, 0x20, 0xB7, 0x24, 0xD6, 0x96, 0xE6, 0x76,
1008296465Sdelphij    0x87, 0x56, 0x15, 0x17, 0x58, 0x5B, 0xA1, 0x33, 0x2D, 0xC6
1009296465Sdelphij};
1010296465Sdelphij
1011160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_359V1 = {
1012296465Sdelphij    NID_X9_62_characteristic_two_field,
1013296465Sdelphij    "800000000000000000000000000000000000000000000000000000000000000000000"
1014296465Sdelphij        "000100000000000000001",
1015296465Sdelphij    "5667676A654B20754F356EA92017D946567C46675556F19556A04616B567D223A5E05"
1016296465Sdelphij        "656FB549016A96656A557",
1017296465Sdelphij    "2472E2D0197C49363F1FE7F5B6DB075D52B6947D135D8CA445805D39BC34562608968"
1018296465Sdelphij        "7742B6329E70680231988",
1019296465Sdelphij    "3C258EF3047767E7EDE0F1FDAA79DAEE3841366A132E163ACED4ED2401DF9C6BDCDE9"
1020296465Sdelphij        "8E8E707C07A2239B1B097",
1021296465Sdelphij    "53D7E08529547048121E9C95F3791DD804963948F34FAE7BF44EA82365DC7868FE57E"
1022296465Sdelphij        "4AE2DE211305A407104BD",
1023296465Sdelphij    "01AF286BCA1AF286BCA1AF286BCA1AF286BCA1AF286BC9FB8F6B85C556892C20A7EB9"
1024296465Sdelphij        "64FE7719E74F490758D3B", 0x4C,
1025296465Sdelphij    _EC_X9_62_CHAR2_359V1_SEED, 20,
1026296465Sdelphij    "X9.62 curve over a 359 bit binary field"
1027296465Sdelphij};
1028160814Ssimon
1029160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_368W1 = {
1030296465Sdelphij    NID_X9_62_characteristic_two_field,
1031296465Sdelphij    "010000000000000000000000000000000000000000000000000000000000000000000"
1032296465Sdelphij        "0002000000000000000000007",
1033296465Sdelphij    "E0D2EE25095206F5E2A4F9ED229F1F256E79A0E2B455970D8D0D865BD94778C576D62"
1034296465Sdelphij        "F0AB7519CCD2A1A906AE30D",
1035296465Sdelphij    "FC1217D4320A90452C760A58EDCD30C8DD069B3C34453837A34ED50CB54917E1C2112"
1036296465Sdelphij        "D84D164F444F8F74786046A",
1037296465Sdelphij    "1085E2755381DCCCE3C1557AFA10C2F0C0C2825646C5B34A394CBCFA8BC16B22E7E78"
1038296465Sdelphij        "9E927BE216F02E1FB136A5F",
1039296465Sdelphij    "7B3EB1BDDCBA62D5D8B2059B525797FC73822C59059C623A45FF3843CEE8F87CD1855"
1040296465Sdelphij        "ADAA81E2A0750B80FDA2310",
1041296465Sdelphij    "00010090512DA9AF72B08349D98A5DD4C7B0532ECA51CE03E2D10F3B7AC579BD87E90"
1042296465Sdelphij        "9AE40A6F131E9CFCE5BD967", 0xFF70,
1043296465Sdelphij    NULL, 0,
1044296465Sdelphij    "X9.62 curve over a 368 bit binary field"
1045296465Sdelphij};
1046160814Ssimon
1047160814Ssimonstatic const EC_CURVE_DATA _EC_X9_62_CHAR2_431R1 = {
1048296465Sdelphij    NID_X9_62_characteristic_two_field,
1049296465Sdelphij    "800000000000000000000000000000000000000000000000000000000000000000000"
1050296465Sdelphij        "000000001000000000000000000000000000001",
1051296465Sdelphij    "1A827EF00DD6FC0E234CAF046C6A5D8A85395B236CC4AD2CF32A0CADBDC9DDF620B0E"
1052296465Sdelphij        "B9906D0957F6C6FEACD615468DF104DE296CD8F",
1053296465Sdelphij    "10D9B4A3D9047D8B154359ABFB1B7F5485B04CEB868237DDC9DEDA982A679A5A919B6"
1054296465Sdelphij        "26D4E50A8DD731B107A9962381FB5D807BF2618",
1055296465Sdelphij    "120FC05D3C67A99DE161D2F4092622FECA701BE4F50F4758714E8A87BBF2A658EF8C2"
1056296465Sdelphij        "1E7C5EFE965361F6C2999C0C247B0DBD70CE6B7",
1057296465Sdelphij    "20D0AF8903A96F8D5FA2C255745D3C451B302C9346D9B7E485E7BCE41F6B591F3E8F6"
1058296465Sdelphij        "ADDCBB0BC4C2F947A7DE1A89B625D6A598B3760",
1059296465Sdelphij    "0340340340340340340340340340340340340340340340340340340323C313FAB5058"
1060296465Sdelphij        "9703B5EC68D3587FEC60D161CC149C1AD4A91", 0x2760,
1061296465Sdelphij    NULL, 0,
1062296465Sdelphij    "X9.62 curve over a 431 bit binary field"
1063296465Sdelphij};
1064160814Ssimon
1065160814Ssimonstatic const EC_CURVE_DATA _EC_WTLS_1 = {
1066296465Sdelphij    NID_X9_62_characteristic_two_field,
1067296465Sdelphij    "020000000000000000000000000201",
1068296465Sdelphij    "1",
1069296465Sdelphij    "1",
1070296465Sdelphij    "01667979A40BA497E5D5C270780617",
1071296465Sdelphij    "00F44B4AF1ECC2630E08785CEBCC15",
1072296465Sdelphij    "00FFFFFFFFFFFFFFFDBF91AF6DEA73", 2,
1073296465Sdelphij    NULL, 0,
1074296465Sdelphij    "WTLS curve over a 113 bit binary field"
1075296465Sdelphij};
1076160814Ssimon
1077160814Ssimon/* IPSec curves */
1078296465Sdelphij/*
1079296465Sdelphij * NOTE: The of curves over a extension field of non prime degree is not
1080296465Sdelphij * recommended (Weil-descent). As the group order is not a prime this curve
1081296465Sdelphij * is not suitable for ECDSA.
1082160814Ssimon */
1083160814Ssimonstatic const EC_CURVE_DATA _EC_IPSEC_155_ID3 = {
1084296465Sdelphij    NID_X9_62_characteristic_two_field,
1085296465Sdelphij    "0800000000000000000000004000000000000001",
1086296465Sdelphij    "0",
1087296465Sdelphij    "07338f",
1088296465Sdelphij    "7b",
1089296465Sdelphij    "1c8",
1090296465Sdelphij    "2AAAAAAAAAAAAAAAAAAC7F3C7881BD0868FA86C", 3,
1091296465Sdelphij    NULL, 0,
1092296465Sdelphij    "\n\tIPSec/IKE/Oakley curve #3 over a 155 bit binary field.\n"
1093296465Sdelphij        "\tNot suitable for ECDSA.\n\tQuestionable extension field!"
1094296465Sdelphij};
1095160814Ssimon
1096296465Sdelphij/*
1097296465Sdelphij * NOTE: The of curves over a extension field of non prime degree is not
1098296465Sdelphij * recommended (Weil-descent). As the group order is not a prime this curve
1099296465Sdelphij * is not suitable for ECDSA.
1100160814Ssimon */
1101160814Ssimonstatic const EC_CURVE_DATA _EC_IPSEC_185_ID4 = {
1102296465Sdelphij    NID_X9_62_characteristic_two_field,
1103296465Sdelphij    "020000000000000000000000000000200000000000000001",
1104296465Sdelphij    "0",
1105296465Sdelphij    "1ee9",
1106296465Sdelphij    "18",
1107296465Sdelphij    "0d",
1108296465Sdelphij    "FFFFFFFFFFFFFFFFFFFFFFEDF97C44DB9F2420BAFCA75E", 2,
1109296465Sdelphij    NULL, 0,
1110296465Sdelphij    "\n\tIPSec/IKE/Oakley curve #4 over a 185 bit binary field.\n"
1111296465Sdelphij        "\tNot suitable for ECDSA.\n\tQuestionable extension field!"
1112296465Sdelphij};
1113160814Ssimon
1114160814Ssimontypedef struct _ec_list_element_st {
1115296465Sdelphij    int nid;
1116296465Sdelphij    const EC_CURVE_DATA *data;
1117296465Sdelphij} ec_list_element;
1118160814Ssimon
1119160814Ssimonstatic const ec_list_element curve_list[] = {
1120296465Sdelphij    /* prime field curves */
1121296465Sdelphij    /* secg curves */
1122296465Sdelphij    {NID_secp112r1, &_EC_SECG_PRIME_112R1},
1123296465Sdelphij    {NID_secp112r2, &_EC_SECG_PRIME_112R2},
1124296465Sdelphij    {NID_secp128r1, &_EC_SECG_PRIME_128R1},
1125296465Sdelphij    {NID_secp128r2, &_EC_SECG_PRIME_128R2},
1126296465Sdelphij    {NID_secp160k1, &_EC_SECG_PRIME_160K1},
1127296465Sdelphij    {NID_secp160r1, &_EC_SECG_PRIME_160R1},
1128296465Sdelphij    {NID_secp160r2, &_EC_SECG_PRIME_160R2},
1129296465Sdelphij    /* SECG secp192r1 is the same as X9.62 prime192v1 and hence omitted */
1130296465Sdelphij    {NID_secp192k1, &_EC_SECG_PRIME_192K1},
1131296465Sdelphij    {NID_secp224k1, &_EC_SECG_PRIME_224K1},
1132296465Sdelphij    {NID_secp224r1, &_EC_NIST_PRIME_224},
1133296465Sdelphij    {NID_secp256k1, &_EC_SECG_PRIME_256K1},
1134296465Sdelphij    /* SECG secp256r1 is the same as X9.62 prime256v1 and hence omitted */
1135296465Sdelphij    {NID_secp384r1, &_EC_NIST_PRIME_384},
1136296465Sdelphij    {NID_secp521r1, &_EC_NIST_PRIME_521},
1137296465Sdelphij    /* X9.62 curves */
1138296465Sdelphij    {NID_X9_62_prime192v1, &_EC_NIST_PRIME_192},
1139296465Sdelphij    {NID_X9_62_prime192v2, &_EC_X9_62_PRIME_192V2},
1140296465Sdelphij    {NID_X9_62_prime192v3, &_EC_X9_62_PRIME_192V3},
1141296465Sdelphij    {NID_X9_62_prime239v1, &_EC_X9_62_PRIME_239V1},
1142296465Sdelphij    {NID_X9_62_prime239v2, &_EC_X9_62_PRIME_239V2},
1143296465Sdelphij    {NID_X9_62_prime239v3, &_EC_X9_62_PRIME_239V3},
1144296465Sdelphij    {NID_X9_62_prime256v1, &_EC_X9_62_PRIME_256V1},
1145296465Sdelphij    /* characteristic two field curves */
1146296465Sdelphij    /* NIST/SECG curves */
1147296465Sdelphij    {NID_sect113r1, &_EC_SECG_CHAR2_113R1},
1148296465Sdelphij    {NID_sect113r2, &_EC_SECG_CHAR2_113R2},
1149296465Sdelphij    {NID_sect131r1, &_EC_SECG_CHAR2_131R1},
1150296465Sdelphij    {NID_sect131r2, &_EC_SECG_CHAR2_131R2},
1151296465Sdelphij    {NID_sect163k1, &_EC_NIST_CHAR2_163K},
1152296465Sdelphij    {NID_sect163r1, &_EC_SECG_CHAR2_163R1},
1153296465Sdelphij    {NID_sect163r2, &_EC_NIST_CHAR2_163B},
1154296465Sdelphij    {NID_sect193r1, &_EC_SECG_CHAR2_193R1},
1155296465Sdelphij    {NID_sect193r2, &_EC_SECG_CHAR2_193R2},
1156296465Sdelphij    {NID_sect233k1, &_EC_NIST_CHAR2_233K},
1157296465Sdelphij    {NID_sect233r1, &_EC_NIST_CHAR2_233B},
1158296465Sdelphij    {NID_sect239k1, &_EC_SECG_CHAR2_239K1},
1159296465Sdelphij    {NID_sect283k1, &_EC_NIST_CHAR2_283K},
1160296465Sdelphij    {NID_sect283r1, &_EC_NIST_CHAR2_283B},
1161296465Sdelphij    {NID_sect409k1, &_EC_NIST_CHAR2_409K},
1162296465Sdelphij    {NID_sect409r1, &_EC_NIST_CHAR2_409B},
1163296465Sdelphij    {NID_sect571k1, &_EC_NIST_CHAR2_571K},
1164296465Sdelphij    {NID_sect571r1, &_EC_NIST_CHAR2_571B},
1165296465Sdelphij    /* X9.62 curves */
1166296465Sdelphij    {NID_X9_62_c2pnb163v1, &_EC_X9_62_CHAR2_163V1},
1167296465Sdelphij    {NID_X9_62_c2pnb163v2, &_EC_X9_62_CHAR2_163V2},
1168296465Sdelphij    {NID_X9_62_c2pnb163v3, &_EC_X9_62_CHAR2_163V3},
1169296465Sdelphij    {NID_X9_62_c2pnb176v1, &_EC_X9_62_CHAR2_176V1},
1170296465Sdelphij    {NID_X9_62_c2tnb191v1, &_EC_X9_62_CHAR2_191V1},
1171296465Sdelphij    {NID_X9_62_c2tnb191v2, &_EC_X9_62_CHAR2_191V2},
1172296465Sdelphij    {NID_X9_62_c2tnb191v3, &_EC_X9_62_CHAR2_191V3},
1173296465Sdelphij    {NID_X9_62_c2pnb208w1, &_EC_X9_62_CHAR2_208W1},
1174296465Sdelphij    {NID_X9_62_c2tnb239v1, &_EC_X9_62_CHAR2_239V1},
1175296465Sdelphij    {NID_X9_62_c2tnb239v2, &_EC_X9_62_CHAR2_239V2},
1176296465Sdelphij    {NID_X9_62_c2tnb239v3, &_EC_X9_62_CHAR2_239V3},
1177296465Sdelphij    {NID_X9_62_c2pnb272w1, &_EC_X9_62_CHAR2_272W1},
1178296465Sdelphij    {NID_X9_62_c2pnb304w1, &_EC_X9_62_CHAR2_304W1},
1179296465Sdelphij    {NID_X9_62_c2tnb359v1, &_EC_X9_62_CHAR2_359V1},
1180296465Sdelphij    {NID_X9_62_c2pnb368w1, &_EC_X9_62_CHAR2_368W1},
1181296465Sdelphij    {NID_X9_62_c2tnb431r1, &_EC_X9_62_CHAR2_431R1},
1182296465Sdelphij    /*
1183296465Sdelphij     * the WAP/WTLS curves [unlike SECG, spec has its own OIDs for curves
1184296465Sdelphij     * from X9.62]
1185296465Sdelphij     */
1186296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls1, &_EC_WTLS_1},
1187296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls3, &_EC_NIST_CHAR2_163K},
1188296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls4, &_EC_SECG_CHAR2_113R1},
1189296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls5, &_EC_X9_62_CHAR2_163V1},
1190296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls6, &_EC_SECG_PRIME_112R1},
1191296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls7, &_EC_SECG_PRIME_160R2},
1192296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls8, &_EC_WTLS_8},
1193296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls9, &_EC_WTLS_9},
1194296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls10, &_EC_NIST_CHAR2_233K},
1195296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls11, &_EC_NIST_CHAR2_233B},
1196296465Sdelphij    {NID_wap_wsg_idm_ecid_wtls12, &_EC_WTLS_12},
1197296465Sdelphij    /* IPSec curves */
1198296465Sdelphij    {NID_ipsec3, &_EC_IPSEC_155_ID3},
1199296465Sdelphij    {NID_ipsec4, &_EC_IPSEC_185_ID4},
1200160814Ssimon};
1201160814Ssimon
1202296465Sdelphijstatic size_t curve_list_length =
1203296465Sdelphij    sizeof(curve_list) / sizeof(ec_list_element);
1204160814Ssimon
1205296465Sdelphijstatic EC_GROUP *ec_group_new_from_data(const EC_CURVE_DATA * data)
1206296465Sdelphij{
1207296465Sdelphij    EC_GROUP *group = NULL;
1208296465Sdelphij    EC_POINT *P = NULL;
1209296465Sdelphij    BN_CTX *ctx = NULL;
1210296465Sdelphij    BIGNUM *p = NULL, *a = NULL, *b = NULL, *x = NULL, *y = NULL, *order =
1211296465Sdelphij        NULL;
1212296465Sdelphij    int ok = 0;
1213160814Ssimon
1214296465Sdelphij    if ((ctx = BN_CTX_new()) == NULL) {
1215296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_MALLOC_FAILURE);
1216296465Sdelphij        goto err;
1217296465Sdelphij    }
1218296465Sdelphij    if ((p = BN_new()) == NULL || (a = BN_new()) == NULL ||
1219296465Sdelphij        (b = BN_new()) == NULL || (x = BN_new()) == NULL ||
1220296465Sdelphij        (y = BN_new()) == NULL || (order = BN_new()) == NULL) {
1221296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_MALLOC_FAILURE);
1222296465Sdelphij        goto err;
1223296465Sdelphij    }
1224160814Ssimon
1225296465Sdelphij    if (!BN_hex2bn(&p, data->p) || !BN_hex2bn(&a, data->a)
1226296465Sdelphij        || !BN_hex2bn(&b, data->b)) {
1227296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB);
1228296465Sdelphij        goto err;
1229296465Sdelphij    }
1230160814Ssimon
1231296465Sdelphij    if (data->field_type == NID_X9_62_prime_field) {
1232296465Sdelphij        if ((group = EC_GROUP_new_curve_GFp(p, a, b, ctx)) == NULL) {
1233296465Sdelphij            ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1234296465Sdelphij            goto err;
1235296465Sdelphij        }
1236296465Sdelphij    } else {                    /* field_type ==
1237296465Sdelphij                                 * NID_X9_62_characteristic_two_field */
1238296465Sdelphij        if ((group = EC_GROUP_new_curve_GF2m(p, a, b, ctx)) == NULL) {
1239296465Sdelphij            ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1240296465Sdelphij            goto err;
1241296465Sdelphij        }
1242296465Sdelphij    }
1243160814Ssimon
1244296465Sdelphij    if ((P = EC_POINT_new(group)) == NULL) {
1245296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1246296465Sdelphij        goto err;
1247296465Sdelphij    }
1248296465Sdelphij
1249296465Sdelphij    if (!BN_hex2bn(&x, data->x) || !BN_hex2bn(&y, data->y)) {
1250296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB);
1251296465Sdelphij        goto err;
1252296465Sdelphij    }
1253296465Sdelphij    if (!EC_POINT_set_affine_coordinates_GF2m(group, P, x, y, ctx)) {
1254296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1255296465Sdelphij        goto err;
1256296465Sdelphij    }
1257296465Sdelphij    if (!BN_hex2bn(&order, data->order) || !BN_set_word(x, data->cofactor)) {
1258296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_BN_LIB);
1259296465Sdelphij        goto err;
1260296465Sdelphij    }
1261296465Sdelphij    if (!EC_GROUP_set_generator(group, P, order, x)) {
1262296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1263296465Sdelphij        goto err;
1264296465Sdelphij    }
1265296465Sdelphij    if (data->seed) {
1266296465Sdelphij        if (!EC_GROUP_set_seed(group, data->seed, data->seed_len)) {
1267296465Sdelphij            ECerr(EC_F_EC_GROUP_NEW_FROM_DATA, ERR_R_EC_LIB);
1268296465Sdelphij            goto err;
1269296465Sdelphij        }
1270296465Sdelphij    }
1271296465Sdelphij    ok = 1;
1272296465Sdelphij err:
1273296465Sdelphij    if (!ok) {
1274296465Sdelphij        EC_GROUP_free(group);
1275296465Sdelphij        group = NULL;
1276296465Sdelphij    }
1277296465Sdelphij    if (P)
1278296465Sdelphij        EC_POINT_free(P);
1279296465Sdelphij    if (ctx)
1280296465Sdelphij        BN_CTX_free(ctx);
1281296465Sdelphij    if (p)
1282296465Sdelphij        BN_free(p);
1283296465Sdelphij    if (a)
1284296465Sdelphij        BN_free(a);
1285296465Sdelphij    if (b)
1286296465Sdelphij        BN_free(b);
1287296465Sdelphij    if (order)
1288296465Sdelphij        BN_free(order);
1289296465Sdelphij    if (x)
1290296465Sdelphij        BN_free(x);
1291296465Sdelphij    if (y)
1292296465Sdelphij        BN_free(y);
1293296465Sdelphij    return group;
1294296465Sdelphij}
1295296465Sdelphij
1296160814SsimonEC_GROUP *EC_GROUP_new_by_curve_name(int nid)
1297296465Sdelphij{
1298296465Sdelphij    size_t i;
1299296465Sdelphij    EC_GROUP *ret = NULL;
1300160814Ssimon
1301296465Sdelphij    if (nid <= 0)
1302296465Sdelphij        return NULL;
1303160814Ssimon
1304296465Sdelphij    for (i = 0; i < curve_list_length; i++)
1305296465Sdelphij        if (curve_list[i].nid == nid) {
1306296465Sdelphij            ret = ec_group_new_from_data(curve_list[i].data);
1307296465Sdelphij            break;
1308296465Sdelphij        }
1309160814Ssimon
1310296465Sdelphij    if (ret == NULL) {
1311296465Sdelphij        ECerr(EC_F_EC_GROUP_NEW_BY_CURVE_NAME, EC_R_UNKNOWN_GROUP);
1312296465Sdelphij        return NULL;
1313296465Sdelphij    }
1314160814Ssimon
1315296465Sdelphij    EC_GROUP_set_curve_name(ret, nid);
1316160814Ssimon
1317296465Sdelphij    return ret;
1318296465Sdelphij}
1319160814Ssimon
1320160814Ssimonsize_t EC_get_builtin_curves(EC_builtin_curve *r, size_t nitems)
1321296465Sdelphij{
1322296465Sdelphij    size_t i, min;
1323160814Ssimon
1324296465Sdelphij    if (r == NULL || nitems == 0)
1325296465Sdelphij        return curve_list_length;
1326160814Ssimon
1327296465Sdelphij    min = nitems < curve_list_length ? nitems : curve_list_length;
1328160814Ssimon
1329296465Sdelphij    for (i = 0; i < min; i++) {
1330296465Sdelphij        r[i].nid = curve_list[i].nid;
1331296465Sdelphij        r[i].comment = curve_list[i].data->comment;
1332296465Sdelphij    }
1333160814Ssimon
1334296465Sdelphij    return curve_list_length;
1335296465Sdelphij}
1336