crypto/weakcrypto/source/pkcs12kdf/Pkcs12Pbe.java
author hgs
Thu, 24 Jun 2010 15:39:07 +0530
changeset 72 de46a57f75fb
permissions -rw-r--r--
201023_02
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
72
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     1
/*
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     2
* Copyright (c) 2006-2009 Nokia Corporation and/or its subsidiary(-ies).
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     3
* All rights reserved.
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     4
* This component and the accompanying materials are made available
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     5
* under the terms of the License "Eclipse Public License v1.0"
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     6
* which accompanies this distribution, and is available
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     7
* at the URL "http://www.eclipse.org/legal/epl-v10.html".
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     8
*
de46a57f75fb 201023_02
hgs
parents:
diff changeset
     9
* Initial Contributors:
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    10
* Nokia Corporation - initial contribution.
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    11
*
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    12
* Contributors:
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    13
*
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    14
* Description: 
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    15
* This program uses the Bouncy Castle APIs PKCS#12 KDF to generate encryption keys + ivs 
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    16
* and mac keys for use with compatibility testing.
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    17
*
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    18
*/
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    19
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    20
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    21
package com.symbian.security;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    22
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    23
import java.math.BigInteger;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    24
import java.security.SecureRandom;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    25
import org.bouncycastle.crypto.PBEParametersGenerator;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    26
import org.bouncycastle.crypto.digests.SHA1Digest;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    27
import org.bouncycastle.crypto.generators.PKCS12ParametersGenerator;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    28
import org.bouncycastle.crypto.CipherParameters;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    29
import org.bouncycastle.crypto.params.KeyParameter;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    30
import org.bouncycastle.crypto.params.ParametersWithIV;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    31
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    32
public class Pkcs12Pbe {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    33
	private PKCS12ParametersGenerator pgen;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    34
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    35
	public Pkcs12Pbe() {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    36
		pgen = new PKCS12ParametersGenerator(new SHA1Digest());
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    37
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    38
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    39
	public static void main(String args[]) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    40
		try {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    41
			if (args.length < 5) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    42
				usage();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    43
				System.exit(-1);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    44
				
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    45
			}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    46
			int keyLength = Integer.parseInt(args[0]);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    47
			int blockSize = Integer.parseInt(args[1]);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    48
			int iterations = Integer.parseInt(args[2]);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    49
			String salt = args[3];
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    50
			String password = args[4];		
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    51
			byte[] saltBytes = hexToByteArray(salt);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    52
	
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    53
			Pkcs12Pbe pbe = new Pkcs12Pbe();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    54
			pbe.getKey(keyLength, blockSize, iterations, password, saltBytes);			
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    55
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    56
		catch (Exception e) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    57
			System.exit(-1);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    58
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    59
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    60
	
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    61
	private static byte[] hexToByteArray(String hex) throws Exception {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    62
		if (hex.length() % 2 != 0) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    63
			throw new Exception("hexToByteArray: odd number of nibbles");
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    64
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    65
		StringBuffer hexBuffer = new StringBuffer(hex);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    66
		
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    67
		byte[] byteBuffer = new byte[hexBuffer.length() / 2];
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    68
		for (int i = 0; i < hexBuffer.length(); i+=2) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    69
			try {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    70
				byteBuffer[i / 2] = (byte) Integer.parseInt(hexBuffer.substring(i, i+2), 16);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    71
			}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    72
			catch (NumberFormatException e) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    73
				System.err.println("hexToByteArray: invalid hex string: " + hex);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    74
				throw e;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    75
			}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    76
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    77
		return byteBuffer;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    78
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    79
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    80
	private static void usage() {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    81
		System.err
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    82
				.println("Usage: pkcs12pbe <key length> <block_size> <iterations> <salt> <password>\n");
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    83
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    84
	
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    85
	private void getKey(int keyLen, int ivLen, int iterCount, String password,
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    86
			byte[] salt) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    87
		System.out.print("key len = " + keyLen + ", iter count = "
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    88
				+ iterCount + ", password = \"" + password + "\", salt = ");		
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    89
		printUnformattedByteArray(salt);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    90
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    91
		char[] pwChars = password.toCharArray();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    92
		byte[] pwBytes = PBEParametersGenerator.PKCS12PasswordToBytes(pwChars);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    93
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    94
		pgen.init(pwBytes, salt, iterCount);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    95
		CipherParameters cp = pgen.generateDerivedParameters(keyLen, ivLen);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    96
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    97
		ParametersWithIV ivp = (ParametersWithIV) cp;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    98
		KeyParameter kp = (KeyParameter) ivp.getParameters();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
    99
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   100
		System.out.print("key ");
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   101
		printUnformattedByteArray((kp.getKey()));
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   102
		System.out.print("iv ");
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   103
		printUnformattedByteArray(ivp.getIV());
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   104
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   105
		kp = (KeyParameter) pgen.generateDerivedMacParameters(160);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   106
		System.out.print("160bit hmac key ");
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   107
		printUnformattedByteArray((kp.getKey()));
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   108
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   109
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   110
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   111
	// unformatted hex strings that can be passed as arguments to openssl
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   112
	private void printUnformattedByteArray(byte[] a) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   113
		StringBuffer line = new StringBuffer();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   114
		
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   115
		for (int i = 0; i < a.length; i++) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   116
			line.append(hexStr(a[i], 2));
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   117
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   118
		System.out.println(line);
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   119
	}	
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   120
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   121
	private String hexStr(int val, int width) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   122
		StringBuffer result = new StringBuffer();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   123
		while (--width >= 0) {
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   124
			int bitPos = 4 * width;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   125
			int nybble = (val & (0xf << bitPos)) >> bitPos;
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   126
			result.append(Integer.toHexString(nybble));
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   127
		}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   128
		return result.toString();
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   129
	}
de46a57f75fb 201023_02
hgs
parents:
diff changeset
   130
}