1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137
|
/* ****************************************************************************
* eID Middleware Project.
* Copyright (C) 2008-2009 FedICT.
*
* This is free software; you can redistribute it and/or modify it
* under the terms of the GNU Lesser General Public License version
* 3.0 as published by the Free Software Foundation.
*
* This software is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* Lesser General Public License for more details.
*
* You should have received a copy of the GNU Lesser General Public
* License along with this software; if not, see
* http://www.gnu.org/licenses/.
**************************************************************************** */
#include "BaseProvider.h"
#include "../common/Log.h"
#include "../common/eidErrors.h"
using namespace eIDMW;
CBaseProvider::CBaseProvider()
{
m_bBaseProvHandleOK = false;
}
CBaseProvider::~CBaseProvider()
{
if (m_bBaseProvHandleOK)
CryptReleaseContext(m_hBaseProv, 0);
}
BOOL CBaseProvider::ImportKey(CERT_PUBLIC_KEY_INFO *pPubKeyInfo,
DWORD dwKeySpec, OUT HCRYPTKEY *phUserKey)
{
GetBaseProviderHandle();
return CryptImportPublicKeyInfo(m_hBaseProv,
AT_KEYEXCHANGE, pPubKeyInfo, phUserKey);
}
BOOL CBaseProvider::DestroyKey(HCRYPTKEY hKey)
{
GetBaseProviderHandle();
return CryptDestroyKey(hKey);
}
BOOL CBaseProvider::GetKeyParam(HCRYPTKEY hKey, DWORD dwParam,
LPBYTE pbData, LPDWORD pcbDataLen, DWORD dwFlags)
{
GetBaseProviderHandle();
return CryptGetKeyParam(hKey, dwParam, pbData, pcbDataLen, dwFlags);
}
BOOL CBaseProvider::ExportKey(HCRYPTKEY hKey, HCRYPTKEY hPubKey, DWORD dwBlobType,
DWORD dwFlags, LPBYTE pbData, LPDWORD pcbDataLen)
{
GetBaseProviderHandle();
return CryptExportKey(hKey, hPubKey, dwBlobType, dwFlags, pbData, pcbDataLen);
}
BOOL CBaseProvider::VerifySignature(CProviderHash & oHash,
CONST BYTE *pbSignature, DWORD cbSigLen,
HCRYPTKEY hPubKey, LPCWSTR szDescription, DWORD dwFlags)
{
GetBaseProviderHandle();
CByteArray oHashValue = oHash.GetHashValue();
//printf("algid: 0x%0x, hash: %s\n", oHash.GetAlgid(), oHashValue.ToString().c_str());
//printf("sig: %s\n", CByteArray(pbSignature, cbSigLen).ToString().c_str());
HCRYPTHASH hHash;
BOOL bRet = CryptCreateHash(m_hBaseProv, oHash.GetAlgid(), NULL, 0, &hHash);
if (bRet)
{
bRet = CryptSetHashParam(hHash, HP_HASHVAL, oHashValue.GetBytes(), 0);
if (bRet)
{
bRet = CryptVerifySignature(hHash,
pbSignature, cbSigLen, hPubKey, szDescription, dwFlags);
}
CryptDestroyHash(hHash);
}
return bRet;
}
void CBaseProvider::GetBaseProviderHandle()
{
CAutoMutex oAutoMutex(&m_oBaseProvMutex);
if (!m_bBaseProvHandleOK)
{
// Get the Base CSP name
const char *csKey = "SOFTWARE\\Microsoft\\Cryptography\\Defaults\\Provider Types\\Type 001";
HKEY hKey;
LONG lRet = RegOpenKeyExA(HKEY_LOCAL_MACHINE, csKey, 0, KEY_READ, &hKey);
if (ERROR_SUCCESS != lRet)
{
MWLOG(LEV_ERROR, MOD_CSP, L" Couldn't RegOpenKeyEx(): err = 0x%0x", lRet);
throw CMWEXCEPTION(EIDMW_ERR_CHECK);
}
char csBaseProvName[200];
DWORD dwLen = sizeof(csBaseProvName);
DWORD dwType;
lRet = RegQueryValueExA(hKey, "Name", NULL, &dwType, (LPBYTE) csBaseProvName, &dwLen);
RegCloseKey(hKey);
if (ERROR_SUCCESS != lRet)
{
MWLOG(LEV_ERROR, MOD_CSP, L" Couldn't RegQueryValueEx(): err = 0x%0x", lRet);
throw CMWEXCEPTION(EIDMW_ERR_CHECK);
}
// Call CryptAcquireContext(base CSP name)
m_bBaseProvHandleOK = CryptAcquireContextA(&m_hBaseProv, NULL,
csBaseProvName, PROV_RSA_FULL, CRYPT_VERIFYCONTEXT);
if (!m_bBaseProvHandleOK)
{
MWLOG(LEV_ERROR, MOD_CSP, L" Couldn't CryptAcquireContext(): last error = 0x%0x", GetLastError());
throw CMWEXCEPTION(EIDMW_ERR_CHECK);
}
}
}
|