1 /* $OpenBSD: dh.h,v 1.15 2016/05/02 10:26:04 djm Exp $ */ 2 3 /* 4 * Copyright (c) 2000 Niels Provos. All rights reserved. 5 * 6 * Redistribution and use in source and binary forms, with or without 7 * modification, are permitted provided that the following conditions 8 * are met: 9 * 1. Redistributions of source code must retain the above copyright 10 * notice, this list of conditions and the following disclaimer. 11 * 2. Redistributions in binary form must reproduce the above copyright 12 * notice, this list of conditions and the following disclaimer in the 13 * documentation and/or other materials provided with the distribution. 14 * 15 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 16 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 17 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 18 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, 19 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 20 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, 21 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY 22 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 23 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF 24 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 25 */ 26 #ifndef DH_H 27 #define DH_H 28 29 struct dhgroup { 30 int size; 31 BIGNUM *g; 32 BIGNUM *p; 33 }; 34 35 DH *choose_dh(int, int, int); 36 DH *dh_new_group_asc(const char *, const char *); 37 DH *dh_new_group(BIGNUM *, BIGNUM *); 38 DH *dh_new_group1(void); 39 DH *dh_new_group14(void); 40 DH *dh_new_group16(void); 41 DH *dh_new_group18(void); 42 DH *dh_new_group_fallback(int); 43 44 int dh_gen_key(DH *, int); 45 int dh_pub_is_valid(DH *, BIGNUM *); 46 47 u_int dh_estimate(int); 48 49 /* 50 * Max value from RFC4419. 51 * Miniumum increased in light of DH precomputation attacks. 52 */ 53 #define DH_GRP_MIN 2048 54 #define DH_GRP_MAX 8192 55 56 /* 57 * Values for "type" field of moduli(5) 58 * Specifies the internal structure of the prime modulus. 59 */ 60 #define MODULI_TYPE_UNKNOWN (0) 61 #define MODULI_TYPE_UNSTRUCTURED (1) 62 #define MODULI_TYPE_SAFE (2) 63 #define MODULI_TYPE_SCHNORR (3) 64 #define MODULI_TYPE_SOPHIE_GERMAIN (4) 65 #define MODULI_TYPE_STRONG (5) 66 67 /* 68 * Values for "tests" field of moduli(5) 69 * Specifies the methods used in checking for primality. 70 * Usually, more than one test is used. 71 */ 72 #define MODULI_TESTS_UNTESTED (0x00) 73 #define MODULI_TESTS_COMPOSITE (0x01) 74 #define MODULI_TESTS_SIEVE (0x02) 75 #define MODULI_TESTS_MILLER_RABIN (0x04) 76 #define MODULI_TESTS_JACOBI (0x08) 77 #define MODULI_TESTS_ELLIPTIC (0x10) 78 79 80 #endif 81