24 #include "libssh/priv.h" 25 #ifdef HAVE_OPENSSL_EC_H 26 #include <openssl/ec.h> 28 #ifdef HAVE_OPENSSL_ECDSA_H 29 #include <openssl/ecdsa.h> 32 #include "libssh/crypto.h" 33 #include "libssh/ed25519.h" 35 #define MAX_PUBKEY_SIZE 0x100000 36 #define MAX_PRIVKEY_SIZE 0x400000 38 #define SSH_KEY_FLAG_EMPTY 0x0 39 #define SSH_KEY_FLAG_PUBLIC 0x0001 40 #define SSH_KEY_FLAG_PRIVATE 0x0002 42 struct ssh_key_struct {
43 enum ssh_keytypes_e type;
51 #elif HAVE_LIBMBEDCRYPTO 52 mbedtls_pk_context *rsa;
53 mbedtls_ecdsa_context *ecdsa;
58 #ifdef HAVE_OPENSSL_ECC 64 ed25519_pubkey *ed25519_pubkey;
65 ed25519_privkey *ed25519_privkey;
67 enum ssh_keytypes_e cert_type;
70 struct ssh_signature_struct {
71 enum ssh_keytypes_e type;
76 gcry_sexp_t ecdsa_sig;
77 #elif defined HAVE_LIBCRYPTO 80 # ifdef HAVE_OPENSSL_ECC 85 #elif defined HAVE_LIBMBEDCRYPTO 87 struct mbedtls_ecdsa_sig ecdsa_sig;
89 ed25519_signature *ed25519_sig;
92 typedef struct ssh_signature_struct *ssh_signature;
95 ssh_key ssh_key_dup(
const ssh_key key);
99 ssh_signature ssh_signature_new(
void);
100 void ssh_signature_free(ssh_signature sign);
102 int ssh_pki_export_signature_blob(
const ssh_signature sign,
103 ssh_string *sign_blob);
104 int ssh_pki_import_signature_blob(
const ssh_string sig_blob,
105 const ssh_key pubkey,
106 ssh_signature *psig);
107 int ssh_pki_signature_verify_blob(ssh_session session,
110 unsigned char *digest,
114 int ssh_pki_export_pubkey_blob(
const ssh_key key,
116 int ssh_pki_import_pubkey_blob(
const ssh_string key_blob,
119 int ssh_pki_import_cert_blob(
const ssh_string cert_blob,
124 ssh_string ssh_pki_do_sign(ssh_session session, ssh_buffer sigbuf,
125 const ssh_key privatekey);
126 ssh_string ssh_pki_do_sign_agent(ssh_session session,
127 struct ssh_buffer_struct *buf,
128 const ssh_key pubkey);
129 ssh_string ssh_srv_pki_do_sign_sessionid(ssh_session session,
130 const ssh_key privkey);
133 ssh_public_key ssh_pki_convert_key_to_publickey(
const ssh_key key);
134 ssh_private_key ssh_pki_convert_key_to_privatekey(
const ssh_key key);
void ssh_key_clean(ssh_key key)
clean up the key and deallocate all existing keys
Definition: pki.c:128