OLD | NEW |
1 // Copyright 2013 The Chromium Authors. All rights reserved. | 1 // Copyright 2013 The Chromium Authors. All rights reserved. |
2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
4 | 4 |
5 #ifndef CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYP
TO_H_ | 5 #ifndef CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYPT
O_H_ |
6 #define CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYP
TO_H_ | 6 #define CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYPT
O_H_ |
7 | 7 |
8 #include <string> | 8 #include <string> |
| 9 #include <vector> |
9 #include "base/basictypes.h" | 10 #include "base/basictypes.h" |
10 | 11 |
11 // Implementation of Crypto support for networking private API. | 12 // Implementation of Crypto support for networking private API. |
12 // Based on chromeos_public//src/platform/shill/shims/crypto_util.cc | 13 // Based on chromeos_public//src/platform/shill/shims/crypto_util.cc |
13 class NetworkingPrivateCrypto { | 14 class NetworkingPrivateCrypto { |
14 public: | 15 public: |
15 NetworkingPrivateCrypto(); | 16 NetworkingPrivateCrypto(); |
16 ~NetworkingPrivateCrypto(); | 17 ~NetworkingPrivateCrypto(); |
17 | 18 |
18 // Verify that credentials described by |certificate| and |signed_data| are | 19 // Verify that credentials described by |certificate| and |signed_data| are |
19 // valid. | 20 // valid. |
20 // | 21 // |
21 // 1) The MAC address listed in the certificate matches |connected_mac|. | 22 // 1) The MAC address listed in the certificate matches |connected_mac|. |
22 // 2) The certificate is a valid PEM encoded certificate signed by trusted CA. | 23 // 2) The certificate is a valid PEM encoded certificate signed by trusted CA. |
23 // 3) |signature| is a valid signature for |data|, using the public key in | 24 // 3) |signature| is a valid signature for |data|, using the public key in |
24 // |certificate| | 25 // |certificate| |
25 bool VerifyCredentials(const std::string& certificate, | 26 bool VerifyCredentials(const std::string& certificate, |
26 const std::string& signature, | 27 const std::string& signature, |
27 const std::string& data, | 28 const std::string& data, |
28 const std::string& connected_mac); | 29 const std::string& connected_mac); |
29 | 30 |
30 // Encrypt |data| with |public_key|. |public_key| is a DER-encoded | 31 // Encrypt |data| with |public_key|. |public_key| is a DER-encoded |
31 // RSAPublicKey. |data| is some string of bytes that is smaller than the | 32 // RSAPublicKey. |data| is some string of bytes that is smaller than the |
32 // maximum length permissible for PKCS#1 v1.5 with a key of |public_key| size. | 33 // maximum length permissible for PKCS#1 v1.5 with a key of |public_key| size. |
33 // | 34 // |
34 // Returns true on success, storing the encrypted result in | 35 // Returns true on success, storing the encrypted result in |
35 // |encrypted_output|. | 36 // |encrypted_output|. |
36 bool EncryptByteString(const std::string& public_key, | 37 bool EncryptByteString(const std::vector<uint8>& public_key, |
37 const std::string& data, | 38 const std::string& data, |
38 std::string* encrypted_output); | 39 std::vector<uint8>* encrypted_output); |
39 | 40 |
40 private: | 41 private: |
41 friend class NetworkingPrivateCryptoTest; | 42 friend class NetworkingPrivateCryptoTest; |
42 | 43 |
43 // Decrypt |encrypted_data| with |private_key_pem|. |private_key_pem| is the | 44 // Decrypt |encrypted_data| with |private_key_pem|. |private_key_pem| is the |
44 // PKCS8 PEM-encoded private key. |encrypted_data| is data encrypted with | 45 // PKCS8 PEM-encoded private key. |encrypted_data| is data encrypted with |
45 // EncryptByteString. Used in NetworkingPrivateCryptoTest::EncryptString test. | 46 // EncryptByteString. Used in NetworkingPrivateCryptoTest::EncryptString test. |
46 // | 47 // |
47 // Returns true on success, storing the decrypted result in | 48 // Returns true on success, storing the decrypted result in |
48 // |decrypted_output|. | 49 // |decrypted_output|. |
49 bool DecryptByteString(const std::string& private_key_pem, | 50 bool DecryptByteString(const std::string& private_key_pem, |
50 const std::string& encrypted_data, | 51 const std::vector<uint8>& encrypted_data, |
51 std::string* decrypted_output); | 52 std::string* decrypted_output); |
52 | 53 |
53 DISALLOW_COPY_AND_ASSIGN(NetworkingPrivateCrypto); | 54 DISALLOW_COPY_AND_ASSIGN(NetworkingPrivateCrypto); |
54 }; | 55 }; |
55 | 56 |
56 #endif // CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_C
RYPTO_H_ | 57 #endif // CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CR
YPTO_H_ |
57 | |
OLD | NEW |