Blame doc/man3/EC_KEY_new.pod

Packit c4476c
=pod
Packit c4476c
Packit c4476c
=head1 NAME
Packit c4476c
Packit c4476c
EC_KEY_get_method, EC_KEY_set_method,
Packit c4476c
EC_KEY_new, EC_KEY_get_flags, EC_KEY_set_flags, EC_KEY_clear_flags,
Packit c4476c
EC_KEY_new_by_curve_name, EC_KEY_free, EC_KEY_copy, EC_KEY_dup, EC_KEY_up_ref,
Packit c4476c
EC_KEY_get0_engine,
Packit c4476c
EC_KEY_get0_group, EC_KEY_set_group, EC_KEY_get0_private_key,
Packit c4476c
EC_KEY_set_private_key, EC_KEY_get0_public_key, EC_KEY_set_public_key,
Packit c4476c
EC_KEY_get_conv_form,
Packit Service f3830c
EC_KEY_set_conv_form, EC_KEY_set_asn1_flag,
Packit Service f3830c
EC_KEY_decoded_from_explicit_params, EC_KEY_precompute_mult,
Packit c4476c
EC_KEY_generate_key, EC_KEY_check_key, EC_KEY_set_public_key_affine_coordinates,
Packit c4476c
EC_KEY_oct2key, EC_KEY_key2buf, EC_KEY_oct2priv, EC_KEY_priv2oct,
Packit c4476c
EC_KEY_priv2buf - Functions for creating, destroying and manipulating
Packit c4476c
EC_KEY objects
Packit c4476c
Packit c4476c
=head1 SYNOPSIS
Packit c4476c
Packit c4476c
 #include <openssl/ec.h>
Packit c4476c
Packit c4476c
 EC_KEY *EC_KEY_new(void);
Packit c4476c
 int EC_KEY_get_flags(const EC_KEY *key);
Packit c4476c
 void EC_KEY_set_flags(EC_KEY *key, int flags);
Packit c4476c
 void EC_KEY_clear_flags(EC_KEY *key, int flags);
Packit c4476c
 EC_KEY *EC_KEY_new_by_curve_name(int nid);
Packit c4476c
 void EC_KEY_free(EC_KEY *key);
Packit c4476c
 EC_KEY *EC_KEY_copy(EC_KEY *dst, const EC_KEY *src);
Packit c4476c
 EC_KEY *EC_KEY_dup(const EC_KEY *src);
Packit c4476c
 int EC_KEY_up_ref(EC_KEY *key);
Packit c4476c
 ENGINE *EC_KEY_get0_engine(const EC_KEY *eckey);
Packit c4476c
 const EC_GROUP *EC_KEY_get0_group(const EC_KEY *key);
Packit c4476c
 int EC_KEY_set_group(EC_KEY *key, const EC_GROUP *group);
Packit c4476c
 const BIGNUM *EC_KEY_get0_private_key(const EC_KEY *key);
Packit c4476c
 int EC_KEY_set_private_key(EC_KEY *key, const BIGNUM *prv);
Packit c4476c
 const EC_POINT *EC_KEY_get0_public_key(const EC_KEY *key);
Packit c4476c
 int EC_KEY_set_public_key(EC_KEY *key, const EC_POINT *pub);
Packit c4476c
 point_conversion_form_t EC_KEY_get_conv_form(const EC_KEY *key);
Packit c4476c
 void EC_KEY_set_conv_form(EC_KEY *eckey, point_conversion_form_t cform);
Packit c4476c
 void EC_KEY_set_asn1_flag(EC_KEY *eckey, int asn1_flag);
Packit Service f3830c
 int EC_KEY_decoded_from_explicit_params(const EC_KEY *key);
Packit c4476c
 int EC_KEY_precompute_mult(EC_KEY *key, BN_CTX *ctx);
Packit c4476c
 int EC_KEY_generate_key(EC_KEY *key);
Packit c4476c
 int EC_KEY_check_key(const EC_KEY *key);
Packit c4476c
 int EC_KEY_set_public_key_affine_coordinates(EC_KEY *key, BIGNUM *x, BIGNUM *y);
Packit c4476c
 const EC_KEY_METHOD *EC_KEY_get_method(const EC_KEY *key);
Packit c4476c
 int EC_KEY_set_method(EC_KEY *key, const EC_KEY_METHOD *meth);
Packit c4476c
Packit c4476c
 int EC_KEY_oct2key(EC_KEY *eckey, const unsigned char *buf, size_t len, BN_CTX *ctx);
Packit c4476c
 size_t EC_KEY_key2buf(const EC_KEY *eckey, point_conversion_form_t form,
Packit c4476c
                       unsigned char **pbuf, BN_CTX *ctx);
Packit c4476c
Packit c4476c
 int EC_KEY_oct2priv(EC_KEY *eckey, const unsigned char *buf, size_t len);
Packit c4476c
 size_t EC_KEY_priv2oct(const EC_KEY *eckey, unsigned char *buf, size_t len);
Packit c4476c
Packit c4476c
 size_t EC_KEY_priv2buf(const EC_KEY *eckey, unsigned char **pbuf);
Packit c4476c
Packit c4476c
=head1 DESCRIPTION
Packit c4476c
Packit c4476c
An EC_KEY represents a public key and, optionally, the associated private
Packit c4476c
key. A new EC_KEY with no associated curve can be constructed by calling
Packit c4476c
EC_KEY_new(). The reference count for the newly created EC_KEY is initially
Packit c4476c
set to 1. A curve can be associated with the EC_KEY by calling
Packit c4476c
EC_KEY_set_group().
Packit c4476c
Packit c4476c
Alternatively a new EC_KEY can be constructed by calling
Packit c4476c
EC_KEY_new_by_curve_name() and supplying the nid of the associated curve. See
Packit c4476c
L<EC_GROUP_new(3)> for a description of curve names. This function simply
Packit c4476c
wraps calls to EC_KEY_new() and EC_GROUP_new_by_curve_name().
Packit c4476c
Packit c4476c
Calling EC_KEY_free() decrements the reference count for the EC_KEY object,
Packit c4476c
and if it has dropped to zero then frees the memory associated with it.  If
Packit c4476c
B<key> is NULL nothing is done.
Packit c4476c
Packit c4476c
EC_KEY_copy() copies the contents of the EC_KEY in B<src> into B<dest>.
Packit c4476c
Packit c4476c
EC_KEY_dup() creates a new EC_KEY object and copies B<ec_key> into it.
Packit c4476c
Packit c4476c
EC_KEY_up_ref() increments the reference count associated with the EC_KEY
Packit c4476c
object.
Packit c4476c
Packit c4476c
EC_KEY_get0_engine() returns a handle to the ENGINE that has been set for
Packit c4476c
this EC_KEY object.
Packit c4476c
Packit c4476c
EC_KEY_generate_key() generates a new public and private key for the supplied
Packit c4476c
B<eckey> object. B<eckey> must have an EC_GROUP object associated with it
Packit c4476c
before calling this function. The private key is a random integer (0 < priv_key
Packit c4476c
< order, where I<order> is the order of the EC_GROUP object). The public key is
Packit c4476c
an EC_POINT on the curve calculated by multiplying the generator for the
Packit c4476c
curve by the private key.
Packit c4476c
Packit c4476c
EC_KEY_check_key() performs various sanity checks on the EC_KEY object to
Packit c4476c
confirm that it is valid.
Packit c4476c
Packit c4476c
EC_KEY_set_public_key_affine_coordinates() sets the public key for B<key> based
Packit c4476c
on its affine co-ordinates; i.e., it constructs an EC_POINT object based on
Packit c4476c
the supplied B<x> and B<y> values and sets the public key to be this
Packit c4476c
EC_POINT. It also performs certain sanity checks on the key to confirm
Packit c4476c
that it is valid.
Packit c4476c
Packit c4476c
The functions EC_KEY_get0_group(), EC_KEY_set_group(),
Packit c4476c
EC_KEY_get0_private_key(), EC_KEY_set_private_key(), EC_KEY_get0_public_key(),
Packit c4476c
and EC_KEY_set_public_key() get and set the EC_GROUP object, the private key,
Packit c4476c
and the EC_POINT public key for the B<key> respectively.
Packit c4476c
Packit c4476c
The functions EC_KEY_get_conv_form() and EC_KEY_set_conv_form() get and set the
Packit c4476c
point_conversion_form for the B<key>. For a description of
Packit c4476c
point_conversion_forms please see L<EC_POINT_new(3)>.
Packit c4476c
Packit c4476c
EC_KEY_set_flags() sets the flags in the B<flags> parameter on the EC_KEY
Packit c4476c
object. Any flags that are already set are left set. The flags currently
Packit c4476c
defined are EC_FLAG_NON_FIPS_ALLOW and EC_FLAG_FIPS_CHECKED. In
Packit c4476c
addition there is the flag EC_FLAG_COFACTOR_ECDH which is specific to ECDH.
Packit c4476c
EC_KEY_get_flags() returns the current flags that are set for this EC_KEY.
Packit c4476c
EC_KEY_clear_flags() clears the flags indicated by the B<flags> parameter; all
Packit c4476c
other flags are left in their existing state.
Packit c4476c
Packit c4476c
EC_KEY_set_asn1_flag() sets the asn1_flag on the underlying EC_GROUP object
Packit c4476c
(if set). Refer to L<EC_GROUP_copy(3)> for further information on the
Packit c4476c
asn1_flag.
Packit c4476c
Packit Service f3830c
EC_KEY_decoded_from_explicit_params() returns 1 if the group of the I<key> was
Packit Service f3830c
decoded from data with explicitly encoded group parameters, -1 if the I<key>
Packit Service f3830c
is NULL or the group parameters are missing, and 0 otherwise.
Packit Service f3830c
Packit c4476c
EC_KEY_precompute_mult() stores multiples of the underlying EC_GROUP generator
Packit c4476c
for faster point multiplication. See also L<EC_POINT_add(3)>.
Packit c4476c
Packit c4476c
EC_KEY_oct2key() and EC_KEY_key2buf() are identical to the functions
Packit c4476c
EC_POINT_oct2point() and EC_KEY_point2buf() except they use the public key
Packit c4476c
EC_POINT in B<eckey>.
Packit c4476c
Packit c4476c
EC_KEY_oct2priv() and EC_KEY_priv2oct() convert between the private key
Packit c4476c
component of B<eckey> and octet form. The octet form consists of the content
Packit c4476c
octets of the B<privateKey> OCTET STRING in an B<ECPrivateKey> ASN.1 structure.
Packit c4476c
Packit c4476c
The function EC_KEY_priv2oct() must be supplied with a buffer long enough to
Packit c4476c
store the octet form. The return value provides the number of octets stored.
Packit c4476c
Calling the function with a NULL buffer will not perform the conversion but
Packit c4476c
will just return the required buffer length.
Packit c4476c
Packit c4476c
The function EC_KEY_priv2buf() allocates a buffer of suitable length and writes
Packit c4476c
an EC_KEY to it in octet format. The allocated buffer is written to B<*pbuf>
Packit c4476c
and its length is returned. The caller must free up the allocated buffer with a
Packit c4476c
call to OPENSSL_free(). Since the allocated buffer value is written to B<*pbuf>
Packit c4476c
the B<pbuf> parameter B<MUST NOT> be B<NULL>.
Packit c4476c
Packit c4476c
EC_KEY_priv2buf() converts an EC_KEY private key into an allocated buffer.
Packit c4476c
Packit c4476c
=head1 RETURN VALUES
Packit c4476c
Packit c4476c
EC_KEY_new(), EC_KEY_new_by_curve_name() and EC_KEY_dup() return a pointer to
Packit c4476c
the newly created EC_KEY object, or NULL on error.
Packit c4476c
Packit c4476c
EC_KEY_get_flags() returns the flags associated with the EC_KEY object as an
Packit c4476c
integer.
Packit c4476c
Packit c4476c
EC_KEY_copy() returns a pointer to the destination key, or NULL on error.
Packit c4476c
Packit c4476c
EC_KEY_get0_engine() returns a pointer to an ENGINE, or NULL if it wasn't set.
Packit c4476c
Packit c4476c
EC_KEY_up_ref(), EC_KEY_set_group(), EC_KEY_set_private_key(),
Packit c4476c
EC_KEY_set_public_key(), EC_KEY_precompute_mult(), EC_KEY_generate_key(),
Packit c4476c
EC_KEY_check_key(), EC_KEY_set_public_key_affine_coordinates(),
Packit c4476c
EC_KEY_oct2key() and EC_KEY_oct2priv() return 1 on success or 0 on error.
Packit c4476c
Packit c4476c
EC_KEY_get0_group() returns the EC_GROUP associated with the EC_KEY.
Packit c4476c
Packit c4476c
EC_KEY_get0_private_key() returns the private key associated with the EC_KEY.
Packit c4476c
Packit c4476c
EC_KEY_get_conv_form() return the point_conversion_form for the EC_KEY.
Packit c4476c
Packit c4476c
EC_KEY_key2buf(), EC_KEY_priv2oct() and EC_KEY_priv2buf() return the length
Packit c4476c
of the buffer or 0 on error.
Packit c4476c
Packit c4476c
=head1 SEE ALSO
Packit c4476c
Packit c4476c
L<crypto(7)>, L<EC_GROUP_new(3)>,
Packit c4476c
L<EC_GROUP_copy(3)>, L<EC_POINT_new(3)>,
Packit c4476c
L<EC_POINT_add(3)>,
Packit c4476c
L<EC_GFp_simple_method(3)>,
Packit c4476c
L<d2i_ECPKParameters(3)>
Packit c4476c
Packit c4476c
=head1 COPYRIGHT
Packit c4476c
Packit c4476c
Copyright 2013-2017 The OpenSSL Project Authors. All Rights Reserved.
Packit c4476c
Packit c4476c
Licensed under the OpenSSL license (the "License").  You may not use
Packit c4476c
this file except in compliance with the License.  You can obtain a copy
Packit c4476c
in the file LICENSE in the source distribution or at
Packit c4476c
L<https://www.openssl.org/source/license.html>.
Packit c4476c
Packit c4476c
=cut