OLD | NEW |
(Empty) | |
| 1 // Copyright 2013 The Chromium Authors. All rights reserved. |
| 2 // Use of this source code is governed by a BSD-style license that can be |
| 3 // found in the LICENSE file. |
| 4 |
| 5 #ifndef CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYP
TO_H_ |
| 6 #define CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYP
TO_H_ |
| 7 |
| 8 #include <string> |
| 9 #include "base/basictypes.h" |
| 10 |
| 11 // Implementation of Crypto support for networking private API. |
| 12 // Based on chromeos_public//src/platform/shill/shims/crypto_util.cc |
| 13 class NetworkingPrivateCrypto { |
| 14 public: |
| 15 NetworkingPrivateCrypto(); |
| 16 ~NetworkingPrivateCrypto(); |
| 17 |
| 18 // Verify that credentials described by |certificate| and |signed_data| are |
| 19 // valid. |
| 20 // |
| 21 // 1) The MAC address listed in the certificate matches |connected_mac|. |
| 22 // 2) The certificate is a valid PEM encoded certificate signed by trusted CA. |
| 23 // 3) |signature| is a valid signature for |data|, using the public key in |
| 24 // |certificate| |
| 25 bool VerifyCredentials(const std::string& certificate, |
| 26 const std::string& signature, |
| 27 const std::string& data, |
| 28 const std::string& connected_mac); |
| 29 |
| 30 // Encrypt |data| with |public_key|. |public_key| is a DER-encoded |
| 31 // RSAPublicKey. |data| is some string of bytes at smaller than the |
| 32 // maximum length permissable for encryption with a key of |public_key| size. |
| 33 // |
| 34 // Returns true on success, storing the encrypted result in |
| 35 // |encrypted_output|. |
| 36 bool EncryptByteString(const std::string& public_key, |
| 37 const std::string& data, |
| 38 std::string* encrypted_output); |
| 39 |
| 40 private: |
| 41 friend class NetworkingPrivateCryptoTest; |
| 42 |
| 43 // Decrypt |encrypted_data| with |private_key_pem|. |private_key_pem| is the |
| 44 // PKCS8 PEM-encoded private key. |encrypted_data| is data encrypted with |
| 45 // EncryptByteString. Used in NetworkingPrivateCryptoTest::EncryptString test. |
| 46 // |
| 47 // Returns true on success, storing the decrypted result in |
| 48 // |decrypted_output|. |
| 49 bool DecryptByteString(const std::string& private_key_pem, |
| 50 const std::string& encrypted_data, |
| 51 std::string* decrypted_output); |
| 52 |
| 53 DISALLOW_COPY_AND_ASSIGN(NetworkingPrivateCrypto); |
| 54 }; |
| 55 |
| 56 #endif // CHROME_BROWSER_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_C
RYPTO_H_ |
OLD | NEW |