mirror of
https://github.com/libp2p/go-openssl.git
synced 2026-08-18 14:43:28 +08:00
- created a uniform shim layer for the Go code to invoke that does the right thing depending on the version of openssl. functions that have yet to be moved can be done so as needed. - fixed the incorrect use of X509_STORE_CTX_get_app_data in verify_cb to pull out the SSL object from the x509 store context, which causes crashes when the SSL object index happens to not be zero. - fix engine not being passed to HMAC_Init_ex - fix HMAC tests not checking for failures with NewHMAC
99 lines
2.3 KiB
Go
99 lines
2.3 KiB
Go
// Copyright (C) 2014 Space Monkey, Inc.
|
|
//
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
// you may not use this file except in compliance with the License.
|
|
// You may obtain a copy of the License at
|
|
//
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
//
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
// See the License for the specific language governing permissions and
|
|
// limitations under the License.
|
|
|
|
// +build cgo
|
|
|
|
package openssl
|
|
|
|
// #include "shim.h"
|
|
import "C"
|
|
|
|
import (
|
|
"errors"
|
|
"runtime"
|
|
"unsafe"
|
|
)
|
|
|
|
type SHA1Hash struct {
|
|
ctx *C.EVP_MD_CTX
|
|
engine *Engine
|
|
}
|
|
|
|
func NewSHA1Hash() (*SHA1Hash, error) { return NewSHA1HashWithEngine(nil) }
|
|
|
|
func NewSHA1HashWithEngine(e *Engine) (*SHA1Hash, error) {
|
|
hash := &SHA1Hash{engine: e}
|
|
hash.ctx = C.X_EVP_MD_CTX_new()
|
|
if hash.ctx == nil {
|
|
return nil, errors.New("openssl: sha1: unable to allocate ctx")
|
|
}
|
|
runtime.SetFinalizer(hash, func(hash *SHA1Hash) { hash.Close() })
|
|
if err := hash.Reset(); err != nil {
|
|
return nil, err
|
|
}
|
|
return hash, nil
|
|
}
|
|
|
|
func (s *SHA1Hash) Close() {
|
|
if s.ctx != nil {
|
|
C.X_EVP_MD_CTX_free(s.ctx)
|
|
s.ctx = nil
|
|
}
|
|
}
|
|
|
|
func engineRef(e *Engine) *C.ENGINE {
|
|
if e == nil {
|
|
return nil
|
|
}
|
|
return e.e
|
|
}
|
|
|
|
func (s *SHA1Hash) Reset() error {
|
|
if 1 != C.X_EVP_DigestInit_ex(s.ctx, C.X_EVP_sha1(), engineRef(s.engine)) {
|
|
return errors.New("openssl: sha1: cannot init digest ctx")
|
|
}
|
|
return nil
|
|
}
|
|
|
|
func (s *SHA1Hash) Write(p []byte) (n int, err error) {
|
|
if len(p) == 0 {
|
|
return 0, nil
|
|
}
|
|
if 1 != C.X_EVP_DigestUpdate(s.ctx, unsafe.Pointer(&p[0]),
|
|
C.size_t(len(p))) {
|
|
return 0, errors.New("openssl: sha1: cannot update digest")
|
|
}
|
|
return len(p), nil
|
|
}
|
|
|
|
func (s *SHA1Hash) Sum() (result [20]byte, err error) {
|
|
if 1 != C.X_EVP_DigestFinal_ex(s.ctx,
|
|
(*C.uchar)(unsafe.Pointer(&result[0])), nil) {
|
|
return result, errors.New("openssl: sha1: cannot finalize ctx")
|
|
}
|
|
return result, s.Reset()
|
|
}
|
|
|
|
func SHA1(data []byte) (result [20]byte, err error) {
|
|
hash, err := NewSHA1Hash()
|
|
if err != nil {
|
|
return result, err
|
|
}
|
|
defer hash.Close()
|
|
if _, err := hash.Write(data); err != nil {
|
|
return result, err
|
|
}
|
|
return hash.Sum()
|
|
}
|