TlsECDHanonKeyExchange.cs 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using System.IO;
  5. using BestHTTP.SecureProtocol.Org.BouncyCastle.Tls.Crypto;
  6. namespace BestHTTP.SecureProtocol.Org.BouncyCastle.Tls
  7. {
  8. /// <summary>(D)TLS ECDH_anon key exchange (see RFC 4492).</summary>
  9. public class TlsECDHanonKeyExchange
  10. : AbstractTlsKeyExchange
  11. {
  12. private static int CheckKeyExchange(int keyExchange)
  13. {
  14. switch (keyExchange)
  15. {
  16. case KeyExchangeAlgorithm.ECDH_anon:
  17. return keyExchange;
  18. default:
  19. throw new ArgumentException("unsupported key exchange algorithm", "keyExchange");
  20. }
  21. }
  22. protected TlsECConfig m_ecConfig;
  23. protected TlsAgreement m_agreement;
  24. public TlsECDHanonKeyExchange(int keyExchange)
  25. : this(keyExchange, null)
  26. {
  27. }
  28. public TlsECDHanonKeyExchange(int keyExchange, TlsECConfig ecConfig)
  29. : base(CheckKeyExchange(keyExchange))
  30. {
  31. this.m_ecConfig = ecConfig;
  32. }
  33. public override void SkipServerCredentials()
  34. {
  35. }
  36. public override void ProcessServerCredentials(TlsCredentials serverCredentials)
  37. {
  38. throw new TlsFatalAlert(AlertDescription.internal_error);
  39. }
  40. public override void ProcessServerCertificate(Certificate serverCertificate)
  41. {
  42. throw new TlsFatalAlert(AlertDescription.unexpected_message);
  43. }
  44. public override bool RequiresServerKeyExchange
  45. {
  46. get { return true; }
  47. }
  48. public override byte[] GenerateServerKeyExchange()
  49. {
  50. MemoryStream buf = new MemoryStream();
  51. TlsEccUtilities.WriteECConfig(m_ecConfig, buf);
  52. this.m_agreement = m_context.Crypto.CreateECDomain(m_ecConfig).CreateECDH();
  53. GenerateEphemeral(buf);
  54. return buf.ToArray();
  55. }
  56. public override void ProcessServerKeyExchange(Stream input)
  57. {
  58. this.m_ecConfig = TlsEccUtilities.ReceiveECDHConfig(m_context, input);
  59. byte[] point = TlsUtilities.ReadOpaque8(input, 1);
  60. this.m_agreement = m_context.Crypto.CreateECDomain(m_ecConfig).CreateECDH();
  61. ProcessEphemeral(point);
  62. }
  63. public override short[] GetClientCertificateTypes()
  64. {
  65. return null;
  66. }
  67. public override void ProcessClientCredentials(TlsCredentials clientCredentials)
  68. {
  69. throw new TlsFatalAlert(AlertDescription.internal_error);
  70. }
  71. public override void GenerateClientKeyExchange(Stream output)
  72. {
  73. GenerateEphemeral(output);
  74. }
  75. public override void ProcessClientCertificate(Certificate clientCertificate)
  76. {
  77. throw new TlsFatalAlert(AlertDescription.unexpected_message);
  78. }
  79. public override void ProcessClientKeyExchange(Stream input)
  80. {
  81. byte[] point = TlsUtilities.ReadOpaque8(input, 1);
  82. ProcessEphemeral(point);
  83. }
  84. public override TlsSecret GeneratePreMasterSecret()
  85. {
  86. return m_agreement.CalculateSecret();
  87. }
  88. protected virtual void GenerateEphemeral(Stream output)
  89. {
  90. byte[] point = m_agreement.GenerateEphemeral();
  91. TlsUtilities.WriteOpaque8(point, output);
  92. }
  93. protected virtual void ProcessEphemeral(byte[] point)
  94. {
  95. TlsEccUtilities.CheckPointEncoding(m_ecConfig.NamedGroup, point);
  96. this.m_agreement.ReceivePeerValue(point);
  97. }
  98. }
  99. }
  100. #pragma warning restore
  101. #endif