dh.h revision 1.13
1/*	$NetBSD: dh.h,v 1.13 2021/04/19 14:40:15 christos Exp $	*/
2/* $OpenBSD: dh.h,v 1.19 2021/03/12 04:08:19 dtucker Exp $ */
3
4/*
5 * Copyright (c) 2000 Niels Provos.  All rights reserved.
6 *
7 * Redistribution and use in source and binary forms, with or without
8 * modification, are permitted provided that the following conditions
9 * are met:
10 * 1. Redistributions of source code must retain the above copyright
11 *    notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 *    notice, this list of conditions and the following disclaimer in the
14 *    documentation and/or other materials provided with the distribution.
15 *
16 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
17 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
18 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
19 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
20 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
21 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
22 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
23 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
24 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
25 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
26 */
27#ifndef DH_H
28#define DH_H
29
30#ifdef WITH_OPENSSL
31
32struct dhgroup {
33	int size;
34	BIGNUM *g;
35	BIGNUM *p;
36};
37
38DH	*choose_dh(int, int, int);
39DH	*dh_new_group_asc(const char *, const char *);
40DH	*dh_new_group(BIGNUM *, BIGNUM *);
41DH	*dh_new_group1(void);
42DH	*dh_new_group14(void);
43DH	*dh_new_group16(void);
44DH	*dh_new_group18(void);
45DH	*dh_new_group_fallback(int);
46
47int	 dh_gen_key(DH *, int);
48int	 dh_pub_is_valid(const DH *, const BIGNUM *);
49
50u_int	 dh_estimate(int);
51void	 dh_set_moduli_file(const char *);
52
53/*
54 * Max value from RFC4419.
55 * Min value from RFC8270.
56 */
57#define DH_GRP_MIN	2048
58#define DH_GRP_MAX	8192
59
60/*
61 * Values for "type" field of moduli(5)
62 * Specifies the internal structure of the prime modulus.
63 */
64#define MODULI_TYPE_UNKNOWN		(0)
65#define MODULI_TYPE_UNSTRUCTURED	(1)
66#define MODULI_TYPE_SAFE		(2)
67#define MODULI_TYPE_SCHNORR		(3)
68#define MODULI_TYPE_SOPHIE_GERMAIN	(4)
69#define MODULI_TYPE_STRONG		(5)
70
71/*
72 * Values for "tests" field of moduli(5)
73 * Specifies the methods used in checking for primality.
74 * Usually, more than one test is used.
75 */
76#define MODULI_TESTS_UNTESTED		(0x00)
77#define MODULI_TESTS_COMPOSITE		(0x01)
78#define MODULI_TESTS_SIEVE		(0x02)
79#define MODULI_TESTS_MILLER_RABIN	(0x04)
80#define MODULI_TESTS_JACOBI		(0x08)
81#define MODULI_TESTS_ELLIPTIC		(0x10)
82
83#endif /* WITH_OPENSSL */
84
85#endif /* DH_H */
86