1/*
2 * Copyright (C) 2013 Apple Inc. All rights reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
6 * are met:
7 * 1. Redistributions of source code must retain the above copyright
8 *    notice, this list of conditions and the following disclaimer.
9 * 2. Redistributions in binary form must reproduce the above copyright
10 *    notice, this list of conditions and the following disclaimer in the
11 *    documentation and/or other materials provided with the distribution.
12 *
13 * THIS SOFTWARE IS PROVIDED BY APPLE INC. AND ITS CONTRIBUTORS ``AS IS''
14 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
15 * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
16 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL APPLE INC. OR ITS CONTRIBUTORS
17 * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
18 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
19 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
20 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
21 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
22 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
23 * THE POSSIBILITY OF SUCH DAMAGE.
24 */
25
26#include "config.h"
27#include "CryptoAlgorithmRSASSA_PKCS1_v1_5.h"
28
29#if ENABLE(SUBTLE_CRYPTO)
30
31#include "CommonCryptoUtilities.h"
32#include "CryptoAlgorithmRsaSsaParams.h"
33#include "CryptoDigest.h"
34#include "CryptoKeyRSA.h"
35#include "ExceptionCode.h"
36
37namespace WebCore {
38
39void CryptoAlgorithmRSASSA_PKCS1_v1_5::platformSign(const CryptoAlgorithmRsaSsaParams& parameters, const CryptoKeyRSA& key, const CryptoOperationData& data, VectorCallback callback, VoidCallback failureCallback, ExceptionCode& ec)
40{
41    CCDigestAlgorithm digestAlgorithm;
42    if (!getCommonCryptoDigestAlgorithm(parameters.hash, digestAlgorithm)) {
43        ec = NOT_SUPPORTED_ERR;
44        return;
45    }
46
47    std::unique_ptr<CryptoDigest> digest = CryptoDigest::create(parameters.hash);
48    if (!digest) {
49        ec = NOT_SUPPORTED_ERR;
50        return;
51    }
52
53    digest->addBytes(data.first, data.second);
54
55    Vector<uint8_t> digestData = digest->computeHash();
56
57    Vector<uint8_t> signature(512);
58    size_t signatureSize = signature.size();
59
60    CCCryptorStatus status = CCRSACryptorSign(key.platformKey(), ccPKCS1Padding, digestData.data(), digestData.size(), digestAlgorithm, 0, signature.data(), &signatureSize);
61    if (status) {
62        failureCallback();
63        return;
64    }
65
66    signature.resize(signatureSize);
67    callback(signature);
68}
69
70void CryptoAlgorithmRSASSA_PKCS1_v1_5::platformVerify(const CryptoAlgorithmRsaSsaParams& parameters, const CryptoKeyRSA& key, const CryptoOperationData& signature, const CryptoOperationData& data, BoolCallback callback, VoidCallback failureCallback, ExceptionCode& ec)
71{
72    CCDigestAlgorithm digestAlgorithm;
73    if (!getCommonCryptoDigestAlgorithm(parameters.hash, digestAlgorithm)) {
74        ec = NOT_SUPPORTED_ERR;
75        return;
76    }
77
78    std::unique_ptr<CryptoDigest> digest = CryptoDigest::create(parameters.hash);
79    if (!digest) {
80        ec = NOT_SUPPORTED_ERR;
81        return;
82    }
83
84    digest->addBytes(data.first, data.second);
85
86    Vector<uint8_t> digestData = digest->computeHash();
87
88    CCCryptorStatus status = CCRSACryptorVerify(key.platformKey(), ccPKCS1Padding, digestData.data(), digestData.size(), digestAlgorithm, 0, signature.first, signature.second);
89    if (!status)
90        callback(true);
91    else if (status == kCCNotVerified || status == kCCDecodeError) // <rdar://problem/15464982> CCRSACryptorVerify returns kCCDecodeError instead of kCCNotVerified sometimes
92        callback(false);
93    else
94        failureCallback();
95}
96
97} // namespace WebCore
98
99#endif // ENABLE(SUBTLE_CRYPTO)
100