p_verify.c 1.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263
  1. /*
  2. * Copyright 1995-2021 The OpenSSL Project Authors. All Rights Reserved.
  3. *
  4. * Licensed under the Apache License 2.0 (the "License"). You may not use
  5. * this file except in compliance with the License. You can obtain a copy
  6. * in the file LICENSE in the source distribution or at
  7. * https://www.openssl.org/source/license.html
  8. */
  9. #include <stdio.h>
  10. #include "internal/cryptlib.h"
  11. #include <openssl/evp.h>
  12. #include <openssl/objects.h>
  13. #include <openssl/x509.h>
  14. #include "crypto/evp.h"
  15. int EVP_VerifyFinal_ex(EVP_MD_CTX *ctx, const unsigned char *sigbuf,
  16. unsigned int siglen, EVP_PKEY *pkey, OSSL_LIB_CTX *libctx,
  17. const char *propq)
  18. {
  19. unsigned char m[EVP_MAX_MD_SIZE];
  20. unsigned int m_len = 0;
  21. int i = 0;
  22. EVP_PKEY_CTX *pkctx = NULL;
  23. if (EVP_MD_CTX_test_flags(ctx, EVP_MD_CTX_FLAG_FINALISE)) {
  24. if (!EVP_DigestFinal_ex(ctx, m, &m_len))
  25. goto err;
  26. } else {
  27. int rv = 0;
  28. EVP_MD_CTX *tmp_ctx = EVP_MD_CTX_new();
  29. if (tmp_ctx == NULL) {
  30. ERR_raise(ERR_LIB_EVP, ERR_R_MALLOC_FAILURE);
  31. return 0;
  32. }
  33. rv = EVP_MD_CTX_copy_ex(tmp_ctx, ctx);
  34. if (rv)
  35. rv = EVP_DigestFinal_ex(tmp_ctx, m, &m_len);
  36. EVP_MD_CTX_free(tmp_ctx);
  37. if (!rv)
  38. return 0;
  39. }
  40. i = -1;
  41. pkctx = EVP_PKEY_CTX_new_from_pkey(libctx, pkey, propq);
  42. if (pkctx == NULL)
  43. goto err;
  44. if (EVP_PKEY_verify_init(pkctx) <= 0)
  45. goto err;
  46. if (EVP_PKEY_CTX_set_signature_md(pkctx, EVP_MD_CTX_get0_md(ctx)) <= 0)
  47. goto err;
  48. i = EVP_PKEY_verify(pkctx, sigbuf, siglen, m, m_len);
  49. err:
  50. EVP_PKEY_CTX_free(pkctx);
  51. return i;
  52. }
  53. int EVP_VerifyFinal(EVP_MD_CTX *ctx, const unsigned char *sigbuf,
  54. unsigned int siglen, EVP_PKEY *pkey)
  55. {
  56. return EVP_VerifyFinal_ex(ctx, sigbuf, siglen, pkey, NULL, NULL);
  57. }