k5_md5des.c revision 7c478bd95313f5f23a4c958a745db2134aa03244
/*
* Copyright 2004 Sun Microsystems, Inc. All rights reserved.
* Use is subject to license terms.
*/
#pragma ident "%Z%%M% %I% %E% SMI"
/*
* Copyright (C) 1998 by the FundsXpress, INC.
*
* All rights reserved.
*
* Export of this software from the United States of America may require
* a specific license from the United States Government. It is the
* responsibility of any person or organization contemplating export to
* obtain such a license before exporting.
*
* WITHIN THAT CONSTRAINT, permission to use, copy, modify, and
* distribute this software and its documentation for any purpose and
* without fee is hereby granted, provided that the above copyright
* notice appear in all copies and that both that copyright notice and
* this permission notice appear in supporting documentation, and that
* the name of FundsXpress. not be used in advertising or publicity pertaining
* to distribution of the software without specific, written prior
* permission. FundsXpress makes no representations about the suitability of
* this software for any purpose. It is provided "as is" without express
* or implied warranty.
*
* THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR
* IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED
* WARRANTIES OF MERCHANTIBILITY AND FITNESS FOR A PARTICULAR PURPOSE.
*/
#include <k5-int.h>
#include <des_int.h>
#include <keyhash_provider.h>
#define CONFLENGTH 8
/* Force acceptance of krb5-beta5 md5des checksum for now. */
#define KRB5_MD5DES_BETA5_COMPAT
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00},
{0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00} };
static void
{
}
/* des-cbc(xorkey, conf | rsa-md5(conf | data)) */
/* this could be done in terms of the md5 and des providers, but
that's less efficient, and there's no need for this to be generic */
/*ARGSUSED*/
static krb5_error_code
{
krb5_error_code ret = 0;
unsigned char conf[CONFLENGTH];
int i;
return(KRB5_BAD_KEYSIZE);
if (ivec)
return(KRB5_CRYPTO_INTERNAL);
return(KRB5_CRYPTO_INTERNAL);
/* create the confouder */
return(ret);
return(KRB5_CRYPTO_INTERNAL);
goto cleanup;
}
goto cleanup;
}
/* hash the confounder, then the input data */
mechanism.ulParameterLen = 0;
"rv = 0x%x.", rv);
goto cleanup;
}
"rv = 0x%x", rv);
goto cleanup;
}
"rv = 0x%x", rv);
return(PKCS_ERR);
}
"rv = 0x%x", rv);
goto cleanup;
}
/* construct the buffer to be encrypted */
/* encrypt it, in place. this has a return value, but it's
always zero. */
return(ret);
}
/*ARGSUSED*/
static krb5_error_code
{
krb5_error_code ret = 0;
unsigned char digest[MD5_CKSUM_LENGTH];
int i;
int compathash = 0;
return(KRB5_BAD_KEYSIZE);
if (ivec)
return(KRB5_CRYPTO_INTERNAL);
#ifdef KRB5_MD5DES_BETA5_COMPAT
return(KRB5_CRYPTO_INTERNAL);
else
compathash = 1;
#else
return(KRB5_CRYPTO_INTERNAL);
#endif
}
/* create and the encryption key */
return(KRB5_CRYPTO_INTERNAL);
if (!compathash) {
}
goto cleanup;
}
goto cleanup;
}
/* decrypt it. this has a return value, but it's always zero. */
if (!compathash) {
&xorkey, (unsigned char*) mit_des_zeroblock, 0);
} else {
}
/* hash the confounder, then the input data */
mechanism.ulParameterLen = 0;
"rv = 0x%x.", rv);
goto cleanup;
}
if (!compathash) {
"rv = 0x%x", rv);
goto cleanup;
}
}
"rv = 0x%x", rv);
goto cleanup;
}
"rv = 0x%x", rv);
goto cleanup;
}
/* compare the decrypted hash to the computed one */
if (!compathash) {
} else {
}
return(ret);
}
const struct krb5_keyhash_provider krb5_keyhash_md5des = {
};