Example of HSM ECDH generation.
#include <string.h>
#include <stdlib.h>
#include <stdio.h>
#define HOST_ADDR "127.0.0.1"
#define USER_ID "master"
#define USER_PWD "12345678"
#define ECDH_KEY_NAME "ecdh_key"
#define ECDH_PAIR_KEY_NAME "ecdh_pair_key"
#define ECDH_NEW_DERIVED_KEY "ecdh_derived_key"
#define ECDH_KEY_ALG (ALG_ECC_BRAINPOOL_P512T1)
int main()
{
int nRet = 0;
BYTE pbPubKey[1024] = {0};
DWORD dwPubKeyLen =
sizeof(pbPubKey);
BYTE pbSecret[1024] = {0};
DWORD dwSecretLen =
sizeof(pbSecret);
if(nRet)
{
printf("Function failure: DInitialize \nError code: %d\n", nRet);
goto clean;
}
printf("Libraries initialized.\n");
strncpy(authPwd.
szAddr, HOST_ADDR,
sizeof(authPwd
.szAddr));
strncpy(authPwd.
szUserId, USER_ID,
sizeof(authPwd
.szUserId));
strncpy(authPwd.
szPassword, USER_PWD,
sizeof(authPwd
.szPassword));
if(nRet)
{
printf("Function failure: DOpenSession \nError code: %d\n", nRet);
goto clean;
}
printf("Session with Dinamo established.\n");
nRet =
DGenerateKey(hSession, ECDH_KEY_NAME, ECDH_KEY_ALG, 0, &hKey);
if(nRet)
{
printf("Failed to generate primary key.\n");
goto clean;
}
printf("Primary key generated successfully.\n");
nRet =
DGenerateKey(hSession, ECDH_PAIR_KEY_NAME, ECDH_KEY_ALG, 0, &hPairKey);
if(nRet)
{
printf("Failed to generate key pair.\n");
goto clean;
}
printf("Pair key generated successfully.\n");
if(nRet)
{
printf("Failed to export public key from pair.\n");
goto clean;
}
printf("Public key of the pair successfully exported.\n");
ECDH_KEY_NAME,
pbPubKey,
dwPubKeyLen,
pbSecret,
&dwSecretLen,
0);
if(nRet)
{
printf("Failed to generate ECDH RAW Secret.\n");
goto clean;
}
printf("ECDH RAW secret successfully generated.\n");
BYTE pbKDFData[] = {0xff,0xff,0xff,0xff,0xff,0xff,0xff,0xff,0x11,0x12,0x13,0x14,0x15,0x16,0x17,0x18};
memset(&stEcdhX963Info, 0, sizeof(stEcdhX963Info));
strncpy(stEcdhX963Info.
szTargetKeyName, ECDH_NEW_DERIVED_KEY,
sizeof(stEcdhX963Info
.szTargetKeyName));
stEcdhX963Info.
dbPubKey.
pvData = pbPubKey;
stEcdhX963Info
.dbPubKey.
dwDataLen = dwPubKeyLen;
stEcdhX963Info.
dbKDFData
.pvData = pbKDFData;
ECDH_KEY_NAME,
&stEcdhX963Info,
sizeof(stEcdhX963Info),
NULL,
NULL,
0);
if(nRet)
{
printf("Failed to generate ECDH X9.63 Secret.\n");
goto clean;
}
printf("ECDH X9.64 key successfully derived.\n");
nRet =
DRemoveObj(hSession, ECDH_NEW_DERIVED_KEY);
if(nRet)
{
printf("Failed to remove derived key.\n");
goto clean;
}
printf("Derived key successfully removed.\n");
clean:
printf("Context keys have been released.\n");
printf("Session closed.\n");
printf("Libraries finished.\n");
return nRet;
}
HSM Application Programming Interface (API) Dinamo.
void * HSESSIONCTX
Definition dinamo.h:68
#define DEFAULT_PORT
Definition dinamo.h:1948
#define PUBLICKEY_BLOB
Definition dinamo.h:1379
#define ALG_AES_256
Definition dinamo.h:1028
#define TEMPORARY_KEY
Definition dinamo.h:1424
#define REMOVE_FROM_HSM
Definition dinamo.h:1462
unsigned char BYTE
Definition dinamo.h:45
unsigned int DWORD
Definition dinamo.h:46
#define DN_GEN_KEY_KDF_RAW_SECRET
Definition dinamo.h:2025
#define DN_GEN_KEY_X9_63_SHA256
Definition dinamo.h:2026
#define ENCRYPTED_CONN
Definition dinamo.h:585
#define SS_USER_PWD
Definition dinamo.h:576
void * HKEYCTX
Definition dinamo.h:70
#define EXPORTABLE_KEY
Definition dinamo.h:1422
int AAP_API DGenEcdhKey(HSESSIONCTX hSession, DWORD dwOP, char *szPriKey, void *pvInData, DWORD dwInDataLen, BYTE *pbOutData, DWORD *pdwOutDataLen, DWORD dwFlags)
int AAP_API DGenerateKey(HSESSIONCTX hSession, char *szKeyId, int nAlgId, DWORD dwFlags, HKEYCTX *phKey)
int AAP_API DDestroyKey(HKEYCTX *phKey, DWORD dwFlags)
int AAP_API DExportKey(HKEYCTX hKey, HKEYCTX hKEKey, DWORD dwBlobType, DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen)
int AAP_API DRemoveObj(HSESSIONCTX hSession, char *szObjId)
int AAP_API DOpenSession(HSESSIONCTX *phSession, DWORD dwParam, BYTE *pbData, DWORD dwDataLen, DWORD dwFlags)
int AAP_API DCloseSession(HSESSIONCTX *phSession, DWORD dwFlags)
int AAP_API DInitialize(DWORD dwReserved)
int nPort
Definition dinamo.h:3091
char szUserId[MAX_USR_LEN]
Definition dinamo.h:3092
char szAddr[MAX_ADDR_LEN]
Definition dinamo.h:3090
char szPassword[MAX_USR_PWD]
Definition dinamo.h:3093
void * pvData
Definition dinamo.h:2319
DWORD dwDataLen
Definition dinamo.h:2320
DWORD dwTargetKeyAlg
Definition dinamo.h:3416
DWORD dwTargetKeyAttributes
Definition dinamo.h:3417
char szTargetKeyName[MAX_OBJ_ID_FQN_LEN]
Definition dinamo.h:3413
DBLOB dbPubKey
Definition dinamo.h:3418
DBLOB dbKDFData
Definition dinamo.h:3419