rand_unix.c 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391
  1. /* crypto/rand/rand_unix.c */
  2. /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
  3. * All rights reserved.
  4. *
  5. * This package is an SSL implementation written
  6. * by Eric Young (eay@cryptsoft.com).
  7. * The implementation was written so as to conform with Netscapes SSL.
  8. *
  9. * This library is free for commercial and non-commercial use as long as
  10. * the following conditions are aheared to. The following conditions
  11. * apply to all code found in this distribution, be it the RC4, RSA,
  12. * lhash, DES, etc., code; not just the SSL code. The SSL documentation
  13. * included with this distribution is covered by the same copyright terms
  14. * except that the holder is Tim Hudson (tjh@cryptsoft.com).
  15. *
  16. * Copyright remains Eric Young's, and as such any Copyright notices in
  17. * the code are not to be removed.
  18. * If this package is used in a product, Eric Young should be given attribution
  19. * as the author of the parts of the library used.
  20. * This can be in the form of a textual message at program startup or
  21. * in documentation (online or textual) provided with the package.
  22. *
  23. * Redistribution and use in source and binary forms, with or without
  24. * modification, are permitted provided that the following conditions
  25. * are met:
  26. * 1. Redistributions of source code must retain the copyright
  27. * notice, this list of conditions and the following disclaimer.
  28. * 2. Redistributions in binary form must reproduce the above copyright
  29. * notice, this list of conditions and the following disclaimer in the
  30. * documentation and/or other materials provided with the distribution.
  31. * 3. All advertising materials mentioning features or use of this software
  32. * must display the following acknowledgement:
  33. * "This product includes cryptographic software written by
  34. * Eric Young (eay@cryptsoft.com)"
  35. * The word 'cryptographic' can be left out if the rouines from the library
  36. * being used are not cryptographic related :-).
  37. * 4. If you include any Windows specific code (or a derivative thereof) from
  38. * the apps directory (application code) you must include an acknowledgement:
  39. * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
  40. *
  41. * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
  42. * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  43. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  44. * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
  45. * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
  46. * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
  47. * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  48. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
  49. * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
  50. * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
  51. * SUCH DAMAGE.
  52. *
  53. * The licence and distribution terms for any publically available version or
  54. * derivative of this code cannot be changed. i.e. this code cannot simply be
  55. * copied and put under another distribution licence
  56. * [including the GNU Public Licence.]
  57. */
  58. /* ====================================================================
  59. * Copyright (c) 1998-2006 The OpenSSL Project. All rights reserved.
  60. *
  61. * Redistribution and use in source and binary forms, with or without
  62. * modification, are permitted provided that the following conditions
  63. * are met:
  64. *
  65. * 1. Redistributions of source code must retain the above copyright
  66. * notice, this list of conditions and the following disclaimer.
  67. *
  68. * 2. Redistributions in binary form must reproduce the above copyright
  69. * notice, this list of conditions and the following disclaimer in
  70. * the documentation and/or other materials provided with the
  71. * distribution.
  72. *
  73. * 3. All advertising materials mentioning features or use of this
  74. * software must display the following acknowledgment:
  75. * "This product includes software developed by the OpenSSL Project
  76. * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
  77. *
  78. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  79. * endorse or promote products derived from this software without
  80. * prior written permission. For written permission, please contact
  81. * openssl-core@openssl.org.
  82. *
  83. * 5. Products derived from this software may not be called "OpenSSL"
  84. * nor may "OpenSSL" appear in their names without prior written
  85. * permission of the OpenSSL Project.
  86. *
  87. * 6. Redistributions of any form whatsoever must retain the following
  88. * acknowledgment:
  89. * "This product includes software developed by the OpenSSL Project
  90. * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
  91. *
  92. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  93. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  94. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  95. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  96. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  97. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  98. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  99. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  100. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  101. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  102. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  103. * OF THE POSSIBILITY OF SUCH DAMAGE.
  104. * ====================================================================
  105. *
  106. * This product includes cryptographic software written by Eric Young
  107. * (eay@cryptsoft.com). This product includes software written by Tim
  108. * Hudson (tjh@cryptsoft.com).
  109. *
  110. */
  111. #include <stdio.h>
  112. #define USE_SOCKETS
  113. #include "e_os.h"
  114. #include "cryptlib.h"
  115. #include <openssl/rand.h>
  116. #include "rand_lcl.h"
  117. #if !(defined(OPENSSL_SYS_WINDOWS) || defined(OPENSSL_SYS_WIN32) || defined(OPENSSL_SYS_VMS) || defined(OPENSSL_SYS_OS2) || defined(OPENSSL_SYS_VXWORKS) || defined(OPENSSL_SYS_NETWARE))
  118. #include <sys/types.h>
  119. #include <sys/time.h>
  120. #include <sys/times.h>
  121. #include <sys/stat.h>
  122. #include <fcntl.h>
  123. #include <unistd.h>
  124. #include <time.h>
  125. #if defined(OPENSSL_SYS_LINUX) /* should actually be available virtually everywhere */
  126. # include <poll.h>
  127. #endif
  128. #include <limits.h>
  129. #ifndef FD_SETSIZE
  130. # define FD_SETSIZE (8*sizeof(fd_set))
  131. #endif
  132. #ifdef __VOS__
  133. int RAND_poll(void)
  134. {
  135. unsigned char buf[ENTROPY_NEEDED];
  136. pid_t curr_pid;
  137. uid_t curr_uid;
  138. static int first=1;
  139. int i;
  140. long rnd = 0;
  141. struct timespec ts;
  142. unsigned seed;
  143. /* The VOS random() function starts from a static seed so its
  144. initial value is predictable. If random() returns the
  145. initial value, reseed it with dynamic data. The VOS
  146. real-time clock has a granularity of 1 nsec so it should be
  147. reasonably difficult to predict its exact value. Do not
  148. gratuitously reseed the PRNG because other code in this
  149. process or thread may be using it. */
  150. if (first) {
  151. first = 0;
  152. rnd = random ();
  153. if (rnd == 1804289383) {
  154. clock_gettime (CLOCK_REALTIME, &ts);
  155. curr_pid = getpid();
  156. curr_uid = getuid();
  157. seed = ts.tv_sec ^ ts.tv_nsec ^ curr_pid ^ curr_uid;
  158. srandom (seed);
  159. }
  160. }
  161. for (i = 0; i < sizeof(buf); i++) {
  162. if (i % 4 == 0)
  163. rnd = random();
  164. buf[i] = rnd;
  165. rnd >>= 8;
  166. }
  167. RAND_add(buf, sizeof(buf), ENTROPY_NEEDED);
  168. memset(buf, 0, sizeof(buf));
  169. return 1;
  170. }
  171. #elif defined __OpenBSD__
  172. int RAND_poll(void)
  173. {
  174. u_int32_t rnd = 0, i;
  175. unsigned char buf[ENTROPY_NEEDED];
  176. for (i = 0; i < sizeof(buf); i++) {
  177. if (i % 4 == 0)
  178. rnd = arc4random();
  179. buf[i] = rnd;
  180. rnd >>= 8;
  181. }
  182. RAND_add(buf, sizeof(buf), ENTROPY_NEEDED);
  183. memset(buf, 0, sizeof(buf));
  184. return 1;
  185. }
  186. #else /* !defined(__OpenBSD__) */
  187. int RAND_poll(void)
  188. {
  189. unsigned long l;
  190. pid_t curr_pid = getpid();
  191. #if defined(DEVRANDOM) || defined(DEVRANDOM_EGD)
  192. unsigned char tmpbuf[ENTROPY_NEEDED];
  193. int n = 0;
  194. #endif
  195. #ifdef DEVRANDOM
  196. static const char *randomfiles[] = { DEVRANDOM };
  197. struct stat randomstats[sizeof(randomfiles)/sizeof(randomfiles[0])];
  198. int fd;
  199. unsigned int i;
  200. #endif
  201. #ifdef DEVRANDOM_EGD
  202. static const char *egdsockets[] = { DEVRANDOM_EGD, NULL };
  203. const char **egdsocket = NULL;
  204. #endif
  205. #ifdef DEVRANDOM
  206. memset(randomstats,0,sizeof(randomstats));
  207. /* Use a random entropy pool device. Linux, FreeBSD and OpenBSD
  208. * have this. Use /dev/urandom if you can as /dev/random may block
  209. * if it runs out of random entries. */
  210. for (i = 0; (i < sizeof(randomfiles)/sizeof(randomfiles[0])) &&
  211. (n < ENTROPY_NEEDED); i++)
  212. {
  213. if ((fd = open(randomfiles[i], O_RDONLY
  214. #ifdef O_NONBLOCK
  215. |O_NONBLOCK
  216. #endif
  217. #ifdef O_BINARY
  218. |O_BINARY
  219. #endif
  220. #ifdef O_NOCTTY /* If it happens to be a TTY (god forbid), do not make it
  221. our controlling tty */
  222. |O_NOCTTY
  223. #endif
  224. )) >= 0)
  225. {
  226. int usec = 10*1000; /* spend 10ms on each file */
  227. int r;
  228. unsigned int j;
  229. struct stat *st=&randomstats[i];
  230. /* Avoid using same input... Used to be O_NOFOLLOW
  231. * above, but it's not universally appropriate... */
  232. if (fstat(fd,st) != 0) { close(fd); continue; }
  233. for (j=0;j<i;j++)
  234. {
  235. if (randomstats[j].st_ino==st->st_ino &&
  236. randomstats[j].st_dev==st->st_dev)
  237. break;
  238. }
  239. if (j<i) { close(fd); continue; }
  240. do
  241. {
  242. int try_read = 0;
  243. #if defined(OPENSSL_SYS_BEOS_R5)
  244. /* select() is broken in BeOS R5, so we simply
  245. * try to read something and snooze if we couldn't */
  246. try_read = 1;
  247. #elif defined(OPENSSL_SYS_LINUX)
  248. /* use poll() */
  249. struct pollfd pset;
  250. pset.fd = fd;
  251. pset.events = POLLIN;
  252. pset.revents = 0;
  253. if (poll(&pset, 1, usec / 1000) < 0)
  254. usec = 0;
  255. else
  256. try_read = (pset.revents & POLLIN) != 0;
  257. #else
  258. /* use select() */
  259. fd_set fset;
  260. struct timeval t;
  261. t.tv_sec = 0;
  262. t.tv_usec = usec;
  263. if (FD_SETSIZE > 0 && (unsigned)fd >= FD_SETSIZE)
  264. {
  265. /* can't use select, so just try to read once anyway */
  266. try_read = 1;
  267. }
  268. else
  269. {
  270. FD_ZERO(&fset);
  271. FD_SET(fd, &fset);
  272. if (select(fd+1,&fset,NULL,NULL,&t) >= 0)
  273. {
  274. usec = t.tv_usec;
  275. if (FD_ISSET(fd, &fset))
  276. try_read = 1;
  277. }
  278. else
  279. usec = 0;
  280. }
  281. #endif
  282. if (try_read)
  283. {
  284. r = read(fd,(unsigned char *)tmpbuf+n, ENTROPY_NEEDED-n);
  285. if (r > 0)
  286. n += r;
  287. #if defined(OPENSSL_SYS_BEOS_R5)
  288. if (r == 0)
  289. snooze(t.tv_usec);
  290. #endif
  291. }
  292. else
  293. r = -1;
  294. /* Some Unixen will update t in select(), some
  295. won't. For those who won't, or if we
  296. didn't use select() in the first place,
  297. give up here, otherwise, we will do
  298. this once again for the remaining
  299. time. */
  300. if (usec == 10*1000)
  301. usec = 0;
  302. }
  303. while ((r > 0 ||
  304. (errno == EINTR || errno == EAGAIN)) && usec != 0 && n < ENTROPY_NEEDED);
  305. close(fd);
  306. }
  307. }
  308. #endif /* defined(DEVRANDOM) */
  309. #ifdef DEVRANDOM_EGD
  310. /* Use an EGD socket to read entropy from an EGD or PRNGD entropy
  311. * collecting daemon. */
  312. for (egdsocket = egdsockets; *egdsocket && n < ENTROPY_NEEDED; egdsocket++)
  313. {
  314. int r;
  315. r = RAND_query_egd_bytes(*egdsocket, (unsigned char *)tmpbuf+n,
  316. ENTROPY_NEEDED-n);
  317. if (r > 0)
  318. n += r;
  319. }
  320. #endif /* defined(DEVRANDOM_EGD) */
  321. #if defined(DEVRANDOM) || defined(DEVRANDOM_EGD)
  322. if (n > 0)
  323. {
  324. RAND_add(tmpbuf,sizeof tmpbuf,(double)n);
  325. OPENSSL_cleanse(tmpbuf,n);
  326. }
  327. #endif
  328. /* put in some default random data, we need more than just this */
  329. l=curr_pid;
  330. RAND_add(&l,sizeof(l),0.0);
  331. l=getuid();
  332. RAND_add(&l,sizeof(l),0.0);
  333. l=time(NULL);
  334. RAND_add(&l,sizeof(l),0.0);
  335. #if defined(OPENSSL_SYS_BEOS)
  336. {
  337. system_info sysInfo;
  338. get_system_info(&sysInfo);
  339. RAND_add(&sysInfo,sizeof(sysInfo),0);
  340. }
  341. #endif
  342. #if defined(DEVRANDOM) || defined(DEVRANDOM_EGD)
  343. return 1;
  344. #else
  345. return 0;
  346. #endif
  347. }
  348. #endif /* defined(__OpenBSD__) */
  349. #endif /* !(defined(OPENSSL_SYS_WINDOWS) || defined(OPENSSL_SYS_WIN32) || defined(OPENSSL_SYS_VMS) || defined(OPENSSL_SYS_OS2) || defined(OPENSSL_SYS_VXWORKS) || defined(OPENSSL_SYS_NETWARE)) */
  350. #if defined(OPENSSL_SYS_VXWORKS)
  351. int RAND_poll(void)
  352. {
  353. return 0;
  354. }
  355. #endif