fips.h 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481
  1. /* ====================================================================
  2. * Copyright (c) 2011 The OpenSSL Project. All rights reserved.
  3. *
  4. * Redistribution and use in source and binary forms, with or without
  5. * modification, are permitted provided that the following conditions
  6. * are met:
  7. *
  8. * 1. Redistributions of source code must retain the above copyright
  9. * notice, this list of conditions and the following disclaimer.
  10. *
  11. * 2. Redistributions in binary form must reproduce the above copyright
  12. * notice, this list of conditions and the following disclaimer in
  13. * the documentation and/or other materials provided with the
  14. * distribution.
  15. *
  16. * 3. All advertising materials mentioning features or use of this
  17. * software must display the following acknowledgment:
  18. * "This product includes software developed by the OpenSSL Project
  19. * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
  20. *
  21. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  22. * endorse or promote products derived from this software without
  23. * prior written permission. For written permission, please contact
  24. * openssl-core@openssl.org.
  25. *
  26. * 5. Products derived from this software may not be called "OpenSSL"
  27. * nor may "OpenSSL" appear in their names without prior written
  28. * permission of the OpenSSL Project.
  29. *
  30. * 6. Redistributions of any form whatsoever must retain the following
  31. * acknowledgment:
  32. * "This product includes software developed by the OpenSSL Project
  33. * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
  34. *
  35. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  36. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  37. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  38. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  39. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  40. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  41. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  42. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  43. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  44. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  45. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  46. * OF THE POSSIBILITY OF SUCH DAMAGE.
  47. *
  48. */
  49. #include <openssl/opensslconf.h>
  50. #include <stdarg.h>
  51. #ifndef OPENSSL_FIPS
  52. #error FIPS is disabled.
  53. #endif
  54. #ifdef OPENSSL_FIPS
  55. #ifdef __cplusplus
  56. extern "C" {
  57. #endif
  58. #ifndef OPENSSL_FIPSCANISTER
  59. #define OPENSSL_FIPSCAPABLE
  60. #endif
  61. struct dsa_st;
  62. struct ec_key_st;
  63. struct rsa_st;
  64. struct evp_pkey_st;
  65. struct env_md_st;
  66. struct env_md_ctx_st;
  67. struct evp_cipher_st;
  68. struct evp_cipher_ctx_st;
  69. struct ec_method_st;
  70. struct ecdsa_method;
  71. struct dh_method;
  72. struct CMAC_CTX_st;
  73. struct hmac_ctx_st;
  74. unsigned long FIPS_module_version(void);
  75. const char *FIPS_module_version_text(void);
  76. int FIPS_module_mode_set(int onoff, const char *auth);
  77. int FIPS_module_mode(void);
  78. const void *FIPS_rand_check(void);
  79. int FIPS_selftest(void);
  80. int FIPS_selftest_failed(void);
  81. void FIPS_selftest_check(void);
  82. int FIPS_selftest_sha1(void);
  83. int FIPS_selftest_aes_ccm(void);
  84. int FIPS_selftest_aes_gcm(void);
  85. int FIPS_selftest_aes_xts(void);
  86. int FIPS_selftest_aes(void);
  87. int FIPS_selftest_des(void);
  88. int FIPS_selftest_rsa(void);
  89. int FIPS_selftest_dsa(void);
  90. int FIPS_selftest_ecdsa(void);
  91. int FIPS_selftest_ecdh(void);
  92. void FIPS_corrupt_drbg(void);
  93. void FIPS_x931_stick(void);
  94. void FIPS_drbg_stick(void);
  95. int FIPS_selftest_x931(void);
  96. int FIPS_selftest_hmac(void);
  97. int FIPS_selftest_drbg(void);
  98. int FIPS_selftest_drbg_all(void);
  99. int FIPS_selftest_cmac(void);
  100. unsigned int FIPS_incore_fingerprint(unsigned char *sig,unsigned int len);
  101. int FIPS_check_incore_fingerprint(void);
  102. void fips_set_selftest_fail(void);
  103. int fips_check_rsa(struct rsa_st *rsa);
  104. int fips_check_rsa_prng(struct rsa_st *rsa, int bits);
  105. int fips_check_dsa_prng(struct dsa_st *dsa, size_t L, size_t N);
  106. int fips_check_ec_prng(struct ec_key_st *ec);
  107. void FIPS_set_locking_callbacks(void (*func)(int mode, int type,
  108. const char *file,int line),
  109. int (*add_cb)(int *pointer, int amount,
  110. int type, const char *file, int line));
  111. void FIPS_set_error_callbacks(
  112. void (*put_cb)(int lib, int func,int reason,const char *file,int line),
  113. void (*add_cb)(int num, va_list args) );
  114. void FIPS_set_malloc_callbacks(
  115. void *(*malloc_cb)(int num, const char *file, int line),
  116. void (*free_cb)(void *));
  117. void FIPS_get_timevec(unsigned char *buf, unsigned long *pctr);
  118. /* POST callback operation value: */
  119. /* All tests started */
  120. #define FIPS_POST_BEGIN 1
  121. /* All tests end: result in id */
  122. #define FIPS_POST_END 2
  123. /* One individual test started */
  124. #define FIPS_POST_STARTED 3
  125. /* Individual test success */
  126. #define FIPS_POST_SUCCESS 4
  127. /* Individual test failure */
  128. #define FIPS_POST_FAIL 5
  129. /* Induce failure in test if zero return */
  130. #define FIPS_POST_CORRUPT 6
  131. /* Test IDs */
  132. /* HMAC integrity test */
  133. #define FIPS_TEST_INTEGRITY 1
  134. /* Digest test */
  135. #define FIPS_TEST_DIGEST 2
  136. /* Symmetric cipher test */
  137. #define FIPS_TEST_CIPHER 3
  138. /* Public key signature test */
  139. #define FIPS_TEST_SIGNATURE 4
  140. /* HMAC test */
  141. #define FIPS_TEST_HMAC 5
  142. /* CMAC test */
  143. #define FIPS_TEST_CMAC 6
  144. /* GCM test */
  145. #define FIPS_TEST_GCM 7
  146. /* CCM test */
  147. #define FIPS_TEST_CCM 8
  148. /* XTS test */
  149. #define FIPS_TEST_XTS 9
  150. /* X9.31 PRNG */
  151. #define FIPS_TEST_X931 10
  152. /* DRNB */
  153. #define FIPS_TEST_DRBG 11
  154. /* Keygen pairwise consistency test */
  155. #define FIPS_TEST_PAIRWISE 12
  156. /* Continuous PRNG test */
  157. #define FIPS_TEST_CONTINUOUS 13
  158. /* ECDH test */
  159. #define FIPS_TEST_ECDH 14
  160. /* Minimum authorisation string length */
  161. #define FIPS_AUTH_MIN_LEN 16
  162. void FIPS_post_set_callback(
  163. int (*post_cb)(int op, int id, int subid, void *ex));
  164. #define FIPS_ERROR_IGNORED(alg) OpenSSLDie(__FILE__, __LINE__, \
  165. alg " previous FIPS forbidden algorithm error ignored");
  166. int fips_pkey_signature_test(int id, struct evp_pkey_st *pkey,
  167. const unsigned char *tbs, size_t tbslen,
  168. const unsigned char *kat, size_t katlen,
  169. const struct env_md_st *digest, int pad_mode,
  170. const char *fail_str);
  171. int fips_cipher_test(int id, struct evp_cipher_ctx_st *ctx,
  172. const struct evp_cipher_st *cipher,
  173. const unsigned char *key,
  174. const unsigned char *iv,
  175. const unsigned char *plaintext,
  176. const unsigned char *ciphertext,
  177. int len);
  178. const struct env_md_st *FIPS_get_digestbynid(int nid);
  179. const struct evp_cipher_st *FIPS_get_cipherbynid(int nid);
  180. struct rsa_st *FIPS_rsa_new(void);
  181. void FIPS_rsa_free(struct rsa_st *r);
  182. int FIPS_rsa_sign_ctx(struct rsa_st *rsa, struct env_md_ctx_st *ctx,
  183. int rsa_pad_mode, int saltlen,
  184. const struct env_md_st *mgf1Hash,
  185. unsigned char *sigret, unsigned int *siglen);
  186. int FIPS_rsa_sign_digest(struct rsa_st *rsa,
  187. const unsigned char *md, int md_len,
  188. const struct env_md_st *mhash,
  189. int rsa_pad_mode, int saltlen,
  190. const struct env_md_st *mgf1Hash,
  191. unsigned char *sigret, unsigned int *siglen);
  192. int FIPS_rsa_verify_ctx(struct rsa_st *rsa, struct env_md_ctx_st *ctx,
  193. int rsa_pad_mode, int saltlen,
  194. const struct env_md_st *mgf1Hash,
  195. const unsigned char *sigbuf, unsigned int siglen);
  196. int FIPS_rsa_verify_digest(struct rsa_st *rsa,
  197. const unsigned char *dig, int diglen,
  198. const struct env_md_st *mhash,
  199. int rsa_pad_mode, int saltlen,
  200. const struct env_md_st *mgf1Hash,
  201. const unsigned char *sigbuf, unsigned int siglen);
  202. int FIPS_rsa_sign(struct rsa_st *rsa, const unsigned char *msg, int msglen,
  203. const struct env_md_st *mhash, int rsa_pad_mode,
  204. int saltlen, const struct env_md_st *mgf1Hash,
  205. unsigned char *sigret, unsigned int *siglen);
  206. int FIPS_rsa_verify(struct rsa_st *rsa, const unsigned char *msg, int msglen,
  207. const struct env_md_st *mhash, int rsa_pad_mode,
  208. int saltlen, const struct env_md_st *mgf1Hash,
  209. const unsigned char *sigbuf, unsigned int siglen);
  210. #ifdef OPENSSL_FIPSCAPABLE
  211. int FIPS_digestinit(EVP_MD_CTX *ctx, const EVP_MD *type);
  212. int FIPS_digestupdate(EVP_MD_CTX *ctx, const void *data, size_t count);
  213. int FIPS_digestfinal(EVP_MD_CTX *ctx, unsigned char *md, unsigned int *size);
  214. int FIPS_md_ctx_cleanup(EVP_MD_CTX *ctx);
  215. int FIPS_cipherinit(EVP_CIPHER_CTX *ctx, const EVP_CIPHER *cipher,
  216. const unsigned char *key, const unsigned char *iv, int enc);
  217. int FIPS_cipher(EVP_CIPHER_CTX *ctx, unsigned char *out,
  218. const unsigned char *in, unsigned int inl);
  219. int FIPS_cipher_ctx_cleanup(EVP_CIPHER_CTX *c);
  220. const EVP_CIPHER *FIPS_evp_aes_128_cbc(void);
  221. const EVP_CIPHER *FIPS_evp_aes_128_ccm(void);
  222. const EVP_CIPHER *FIPS_evp_aes_128_cfb1(void);
  223. const EVP_CIPHER *FIPS_evp_aes_128_cfb128(void);
  224. const EVP_CIPHER *FIPS_evp_aes_128_cfb8(void);
  225. const EVP_CIPHER *FIPS_evp_aes_128_ctr(void);
  226. const EVP_CIPHER *FIPS_evp_aes_128_ecb(void);
  227. const EVP_CIPHER *FIPS_evp_aes_128_gcm(void);
  228. const EVP_CIPHER *FIPS_evp_aes_128_ofb(void);
  229. const EVP_CIPHER *FIPS_evp_aes_128_xts(void);
  230. const EVP_CIPHER *FIPS_evp_aes_192_cbc(void);
  231. const EVP_CIPHER *FIPS_evp_aes_192_ccm(void);
  232. const EVP_CIPHER *FIPS_evp_aes_192_cfb1(void);
  233. const EVP_CIPHER *FIPS_evp_aes_192_cfb128(void);
  234. const EVP_CIPHER *FIPS_evp_aes_192_cfb8(void);
  235. const EVP_CIPHER *FIPS_evp_aes_192_ctr(void);
  236. const EVP_CIPHER *FIPS_evp_aes_192_ecb(void);
  237. const EVP_CIPHER *FIPS_evp_aes_192_gcm(void);
  238. const EVP_CIPHER *FIPS_evp_aes_192_ofb(void);
  239. const EVP_CIPHER *FIPS_evp_aes_256_cbc(void);
  240. const EVP_CIPHER *FIPS_evp_aes_256_ccm(void);
  241. const EVP_CIPHER *FIPS_evp_aes_256_cfb1(void);
  242. const EVP_CIPHER *FIPS_evp_aes_256_cfb128(void);
  243. const EVP_CIPHER *FIPS_evp_aes_256_cfb8(void);
  244. const EVP_CIPHER *FIPS_evp_aes_256_ctr(void);
  245. const EVP_CIPHER *FIPS_evp_aes_256_ecb(void);
  246. const EVP_CIPHER *FIPS_evp_aes_256_gcm(void);
  247. const EVP_CIPHER *FIPS_evp_aes_256_ofb(void);
  248. const EVP_CIPHER *FIPS_evp_aes_256_xts(void);
  249. const EVP_CIPHER *FIPS_evp_des_ede(void);
  250. const EVP_CIPHER *FIPS_evp_des_ede3(void);
  251. const EVP_CIPHER *FIPS_evp_des_ede3_cbc(void);
  252. const EVP_CIPHER *FIPS_evp_des_ede3_cfb1(void);
  253. const EVP_CIPHER *FIPS_evp_des_ede3_cfb64(void);
  254. const EVP_CIPHER *FIPS_evp_des_ede3_cfb8(void);
  255. const EVP_CIPHER *FIPS_evp_des_ede3_ecb(void);
  256. const EVP_CIPHER *FIPS_evp_des_ede3_ofb(void);
  257. const EVP_CIPHER *FIPS_evp_des_ede_cbc(void);
  258. const EVP_CIPHER *FIPS_evp_des_ede_cfb64(void);
  259. const EVP_CIPHER *FIPS_evp_des_ede_ecb(void);
  260. const EVP_CIPHER *FIPS_evp_des_ede_ofb(void);
  261. const EVP_CIPHER *FIPS_evp_enc_null(void);
  262. const EVP_MD *FIPS_evp_sha1(void);
  263. const EVP_MD *FIPS_evp_sha224(void);
  264. const EVP_MD *FIPS_evp_sha256(void);
  265. const EVP_MD *FIPS_evp_sha384(void);
  266. const EVP_MD *FIPS_evp_sha512(void);
  267. const EVP_MD *FIPS_evp_dss1(void);
  268. const EVP_MD *FIPS_evp_dss(void);
  269. const EVP_MD *FIPS_evp_ecdsa(void);
  270. const RSA_METHOD *FIPS_rsa_pkcs1_ssleay(void);
  271. int FIPS_rsa_generate_key_ex(RSA *rsa, int bits, BIGNUM *e, BN_GENCB *cb);
  272. const struct dsa_method *FIPS_dsa_openssl(void);
  273. int FIPS_dsa_generate_key(DSA *dsa);
  274. int FIPS_dsa_generate_parameters_ex(DSA *dsa, int bits,
  275. const unsigned char *seed,int seed_len,
  276. int *counter_ret, unsigned long *h_ret, BN_GENCB *cb);
  277. int fips_dsa_builtin_paramgen2(DSA *ret, size_t L, size_t N,
  278. const EVP_MD *evpmd, const unsigned char *seed_in, size_t seed_len,
  279. unsigned char *seed_out,
  280. int *counter_ret, unsigned long *h_ret, BN_GENCB *cb);
  281. const struct ec_method_st *fips_ec_gf2m_simple_method(void);
  282. const struct ec_method_st *fips_ec_gfp_simple_method(void);
  283. const struct ec_method_st *fips_ec_gfp_mont_method(void);
  284. const struct ec_method_st *fips_ec_gfp_nist_method(void);
  285. const struct ecdsa_method *FIPS_ecdsa_openssl(void);
  286. const struct ecdh_method *FIPS_ecdh_openssl(void);
  287. int FIPS_ec_key_generate_key(struct ec_key_st *key);
  288. const struct dh_method *FIPS_dh_openssl(void);
  289. int FIPS_dh_generate_parameters_ex(DH *dh, int prime_len,
  290. int generator, BN_GENCB *cb);
  291. int FIPS_cmac_init(struct CMAC_CTX_st *ctx, const void *key, size_t keylen,
  292. const EVP_CIPHER *cipher, ENGINE *impl);
  293. int FIPS_cmac_update(struct CMAC_CTX_st *ctx, const void *in, size_t dlen);
  294. int FIPS_cmac_final(struct CMAC_CTX_st *ctx, unsigned char *out,
  295. size_t *poutlen);
  296. void FIPS_cmac_ctx_cleanup(struct CMAC_CTX_st *ctx);
  297. void FIPS_hmac_ctx_cleanup(struct hmac_ctx_st *ctx);
  298. int FIPS_hmac_init_ex(struct hmac_ctx_st *ctx, const void *key, int len,
  299. const EVP_MD *md, ENGINE *impl);
  300. int FIPS_hmac_update(struct hmac_ctx_st *ctx,
  301. const unsigned char *data, size_t len);
  302. int FIPS_hmac_final(struct hmac_ctx_st *ctx,
  303. unsigned char *md, unsigned int *len);
  304. #endif
  305. /* BEGIN ERROR CODES */
  306. /* The following lines are auto generated by the script mkerr.pl. Any changes
  307. * made after this point may be overwritten when the script is next run.
  308. */
  309. void ERR_load_FIPS_strings(void);
  310. /* Error codes for the FIPS functions. */
  311. /* Function codes. */
  312. #define FIPS_F_DH_BUILTIN_GENPARAMS 100
  313. #define FIPS_F_DH_INIT 148
  314. #define FIPS_F_DRBG_RESEED 162
  315. #define FIPS_F_DSA_BUILTIN_PARAMGEN 101
  316. #define FIPS_F_DSA_BUILTIN_PARAMGEN2 102
  317. #define FIPS_F_DSA_DO_SIGN 103
  318. #define FIPS_F_DSA_DO_VERIFY 104
  319. #define FIPS_F_ECDH_COMPUTE_KEY 163
  320. #define FIPS_F_ECDSA_DO_SIGN 164
  321. #define FIPS_F_ECDSA_DO_VERIFY 165
  322. #define FIPS_F_EC_KEY_GENERATE_KEY 166
  323. #define FIPS_F_FIPS_CHECK_DSA 105
  324. #define FIPS_F_FIPS_CHECK_DSA_PRNG 151
  325. #define FIPS_F_FIPS_CHECK_EC 106
  326. #define FIPS_F_FIPS_CHECK_EC_PRNG 152
  327. #define FIPS_F_FIPS_CHECK_INCORE_FINGERPRINT 107
  328. #define FIPS_F_FIPS_CHECK_RSA 108
  329. #define FIPS_F_FIPS_CHECK_RSA_PRNG 150
  330. #define FIPS_F_FIPS_CIPHER 160
  331. #define FIPS_F_FIPS_CIPHERINIT 109
  332. #define FIPS_F_FIPS_CIPHER_CTX_CTRL 161
  333. #define FIPS_F_FIPS_DIGESTFINAL 158
  334. #define FIPS_F_FIPS_DIGESTINIT 110
  335. #define FIPS_F_FIPS_DIGESTUPDATE 159
  336. #define FIPS_F_FIPS_DRBG_BYTES 111
  337. #define FIPS_F_FIPS_DRBG_CHECK 146
  338. #define FIPS_F_FIPS_DRBG_CPRNG_TEST 112
  339. #define FIPS_F_FIPS_DRBG_ERROR_CHECK 114
  340. #define FIPS_F_FIPS_DRBG_GENERATE 113
  341. #define FIPS_F_FIPS_DRBG_INIT 115
  342. #define FIPS_F_FIPS_DRBG_INSTANTIATE 116
  343. #define FIPS_F_FIPS_DRBG_NEW 117
  344. #define FIPS_F_FIPS_DRBG_RESEED 118
  345. #define FIPS_F_FIPS_DRBG_SINGLE_KAT 119
  346. #define FIPS_F_FIPS_DSA_SIGN_DIGEST 154
  347. #define FIPS_F_FIPS_DSA_VERIFY_DIGEST 155
  348. #define FIPS_F_FIPS_GET_ENTROPY 147
  349. #define FIPS_F_FIPS_MODULE_MODE_SET 120
  350. #define FIPS_F_FIPS_PKEY_SIGNATURE_TEST 121
  351. #define FIPS_F_FIPS_RAND_ADD 122
  352. #define FIPS_F_FIPS_RAND_BYTES 123
  353. #define FIPS_F_FIPS_RAND_PSEUDO_BYTES 124
  354. #define FIPS_F_FIPS_RAND_SEED 125
  355. #define FIPS_F_FIPS_RAND_SET_METHOD 126
  356. #define FIPS_F_FIPS_RAND_STATUS 127
  357. #define FIPS_F_FIPS_RSA_SIGN_DIGEST 156
  358. #define FIPS_F_FIPS_RSA_VERIFY_DIGEST 157
  359. #define FIPS_F_FIPS_SELFTEST_AES 128
  360. #define FIPS_F_FIPS_SELFTEST_AES_CCM 145
  361. #define FIPS_F_FIPS_SELFTEST_AES_GCM 129
  362. #define FIPS_F_FIPS_SELFTEST_AES_XTS 144
  363. #define FIPS_F_FIPS_SELFTEST_CMAC 130
  364. #define FIPS_F_FIPS_SELFTEST_DES 131
  365. #define FIPS_F_FIPS_SELFTEST_DSA 132
  366. #define FIPS_F_FIPS_SELFTEST_ECDSA 133
  367. #define FIPS_F_FIPS_SELFTEST_HMAC 134
  368. #define FIPS_F_FIPS_SELFTEST_SHA1 135
  369. #define FIPS_F_FIPS_SELFTEST_X931 136
  370. #define FIPS_F_FIPS_SET_PRNG_KEY 153
  371. #define FIPS_F_HASH_FINAL 137
  372. #define FIPS_F_RSA_BUILTIN_KEYGEN 138
  373. #define FIPS_F_RSA_EAY_INIT 149
  374. #define FIPS_F_RSA_EAY_PRIVATE_DECRYPT 139
  375. #define FIPS_F_RSA_EAY_PRIVATE_ENCRYPT 140
  376. #define FIPS_F_RSA_EAY_PUBLIC_DECRYPT 141
  377. #define FIPS_F_RSA_EAY_PUBLIC_ENCRYPT 142
  378. #define FIPS_F_RSA_X931_GENERATE_KEY_EX 143
  379. /* Reason codes. */
  380. #define FIPS_R_ADDITIONAL_INPUT_ERROR_UNDETECTED 150
  381. #define FIPS_R_ADDITIONAL_INPUT_TOO_LONG 100
  382. #define FIPS_R_ALREADY_INSTANTIATED 101
  383. #define FIPS_R_AUTHENTICATION_FAILURE 151
  384. #define FIPS_R_CONTRADICTING_EVIDENCE 102
  385. #define FIPS_R_DRBG_NOT_INITIALISED 152
  386. #define FIPS_R_DRBG_STUCK 103
  387. #define FIPS_R_ENTROPY_ERROR_UNDETECTED 104
  388. #define FIPS_R_ENTROPY_NOT_REQUESTED_FOR_RESEED 105
  389. #define FIPS_R_ENTROPY_SOURCE_STUCK 142
  390. #define FIPS_R_ERROR_INITIALISING_DRBG 106
  391. #define FIPS_R_ERROR_INSTANTIATING_DRBG 107
  392. #define FIPS_R_ERROR_RETRIEVING_ADDITIONAL_INPUT 108
  393. #define FIPS_R_ERROR_RETRIEVING_ENTROPY 109
  394. #define FIPS_R_ERROR_RETRIEVING_NONCE 110
  395. #define FIPS_R_FINGERPRINT_DOES_NOT_MATCH 111
  396. #define FIPS_R_FINGERPRINT_DOES_NOT_MATCH_NONPIC_RELOCATED 112
  397. #define FIPS_R_FINGERPRINT_DOES_NOT_MATCH_SEGMENT_ALIASING 113
  398. #define FIPS_R_FIPS_MODE_ALREADY_SET 114
  399. #define FIPS_R_FIPS_SELFTEST_FAILED 115
  400. #define FIPS_R_FUNCTION_ERROR 116
  401. #define FIPS_R_GENERATE_ERROR 117
  402. #define FIPS_R_GENERATE_ERROR_UNDETECTED 118
  403. #define FIPS_R_INSTANTIATE_ERROR 119
  404. #define FIPS_R_INSUFFICIENT_SECURITY_STRENGTH 120
  405. #define FIPS_R_INTERNAL_ERROR 121
  406. #define FIPS_R_INVALID_KEY_LENGTH 122
  407. #define FIPS_R_INVALID_PARAMETERS 144
  408. #define FIPS_R_IN_ERROR_STATE 123
  409. #define FIPS_R_KEY_TOO_SHORT 124
  410. #define FIPS_R_NONCE_ERROR_UNDETECTED 149
  411. #define FIPS_R_NON_FIPS_METHOD 125
  412. #define FIPS_R_NOPR_TEST1_FAILURE 145
  413. #define FIPS_R_NOPR_TEST2_FAILURE 146
  414. #define FIPS_R_NOT_INSTANTIATED 126
  415. #define FIPS_R_PAIRWISE_TEST_FAILED 127
  416. #define FIPS_R_PERSONALISATION_ERROR_UNDETECTED 128
  417. #define FIPS_R_PERSONALISATION_STRING_TOO_LONG 129
  418. #define FIPS_R_PRNG_STRENGTH_TOO_LOW 143
  419. #define FIPS_R_PR_TEST1_FAILURE 147
  420. #define FIPS_R_PR_TEST2_FAILURE 148
  421. #define FIPS_R_REQUEST_LENGTH_ERROR_UNDETECTED 130
  422. #define FIPS_R_REQUEST_TOO_LARGE_FOR_DRBG 131
  423. #define FIPS_R_RESEED_COUNTER_ERROR 132
  424. #define FIPS_R_RESEED_ERROR 133
  425. #define FIPS_R_SELFTEST_FAILED 134
  426. #define FIPS_R_SELFTEST_FAILURE 135
  427. #define FIPS_R_STRENGTH_ERROR_UNDETECTED 136
  428. #define FIPS_R_TEST_FAILURE 137
  429. #define FIPS_R_UNINSTANTIATE_ERROR 141
  430. #define FIPS_R_UNINSTANTIATE_ZEROISE_ERROR 138
  431. #define FIPS_R_UNSUPPORTED_DRBG_TYPE 139
  432. #define FIPS_R_UNSUPPORTED_PLATFORM 140
  433. #ifdef __cplusplus
  434. }
  435. #endif
  436. #endif