ECGOST3410NamedCurves.cs 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using System.Collections.Generic;
  5. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Rosstandart;
  6. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.X9;
  7. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Math;
  8. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Math.EC;
  9. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Math.EC.Multiplier;
  10. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities.Collections;
  11. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities.Encoders;
  12. namespace Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.CryptoPro
  13. {
  14. /// <summary>Elliptic curve registry for GOST 3410-2001 / 2012.</summary>
  15. public static class ECGost3410NamedCurves
  16. {
  17. private static X9ECPoint ConfigureBasepoint(ECCurve curve, BigInteger x, BigInteger y)
  18. {
  19. ECPoint G = curve.CreatePoint(x, y);
  20. WNafUtilities.ConfigureBasepoint(G);
  21. return new X9ECPoint(G, false);
  22. }
  23. private static ECCurve ConfigureCurve(ECCurve curve)
  24. {
  25. return curve;
  26. }
  27. private static BigInteger FromHex(string hex)
  28. {
  29. return new BigInteger(1, Hex.DecodeStrict(hex));
  30. }
  31. internal class Holder_gostR3410_2001_CryptoPro_A
  32. : X9ECParametersHolder
  33. {
  34. private Holder_gostR3410_2001_CryptoPro_A() {}
  35. internal static readonly X9ECParametersHolder Instance = new Holder_gostR3410_2001_CryptoPro_A();
  36. protected override ECCurve CreateCurve()
  37. {
  38. BigInteger mod_p = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFD97");
  39. BigInteger mod_q = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF6C611070995AD10045841B09B761B893");
  40. return ConfigureCurve(new FpCurve(
  41. mod_p,
  42. FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFD94"),
  43. FromHex("A6"),
  44. mod_q, BigInteger.One, true));
  45. }
  46. protected override X9ECParameters CreateParameters()
  47. {
  48. byte[] S = null;
  49. ECCurve curve = Curve;
  50. X9ECPoint G = ConfigureBasepoint(curve,
  51. BigInteger.One,
  52. FromHex("8D91E471E0989CDA27DF505A453F2B7635294F2DDF23E3B122ACC99C9E9F1E14"));
  53. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  54. }
  55. };
  56. internal class Holder_gostR3410_2001_CryptoPro_B
  57. : X9ECParametersHolder
  58. {
  59. private Holder_gostR3410_2001_CryptoPro_B() {}
  60. internal static readonly X9ECParametersHolder Instance = new Holder_gostR3410_2001_CryptoPro_B();
  61. protected override ECCurve CreateCurve()
  62. {
  63. BigInteger mod_p = FromHex("8000000000000000000000000000000000000000000000000000000000000C99");
  64. BigInteger mod_q = FromHex("800000000000000000000000000000015F700CFFF1A624E5E497161BCC8A198F");
  65. return ConfigureCurve(new FpCurve(
  66. mod_p,
  67. FromHex("8000000000000000000000000000000000000000000000000000000000000C96"),
  68. FromHex("3E1AF419A269A5F866A7D3C25C3DF80AE979259373FF2B182F49D4CE7E1BBC8B"),
  69. mod_q, BigInteger.One, true));
  70. }
  71. protected override X9ECParameters CreateParameters()
  72. {
  73. byte[] S = null;
  74. ECCurve curve = Curve;
  75. X9ECPoint G = ConfigureBasepoint(curve,
  76. BigInteger.One,
  77. FromHex("3FA8124359F96680B83D1C3EB2C070E5C545C9858D03ECFB744BF8D717717EFC"));
  78. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  79. }
  80. };
  81. internal class Holder_gostR3410_2001_CryptoPro_C
  82. : X9ECParametersHolder
  83. {
  84. private Holder_gostR3410_2001_CryptoPro_C() {}
  85. internal static readonly X9ECParametersHolder Instance = new Holder_gostR3410_2001_CryptoPro_C();
  86. protected override ECCurve CreateCurve()
  87. {
  88. BigInteger mod_p = FromHex("9B9F605F5A858107AB1EC85E6B41C8AACF846E86789051D37998F7B9022D759B");
  89. BigInteger mod_q = FromHex("9B9F605F5A858107AB1EC85E6B41C8AA582CA3511EDDFB74F02F3A6598980BB9");
  90. return ConfigureCurve(new FpCurve(
  91. mod_p,
  92. FromHex("9B9F605F5A858107AB1EC85E6B41C8AACF846E86789051D37998F7B9022D7598"),
  93. FromHex("805A"),
  94. mod_q, BigInteger.One, true));
  95. }
  96. protected override X9ECParameters CreateParameters()
  97. {
  98. byte[] S = null;
  99. ECCurve curve = Curve;
  100. X9ECPoint G = ConfigureBasepoint(curve,
  101. BigInteger.Zero,
  102. FromHex("41ECE55743711A8C3CBF3783CD08C0EE4D4DC440D4641A8F366E550DFDB3BB67"));
  103. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  104. }
  105. };
  106. internal class Holder_gostR3410_2001_CryptoPro_XchB
  107. : X9ECParametersHolder
  108. {
  109. private Holder_gostR3410_2001_CryptoPro_XchB() {}
  110. internal static readonly X9ECParametersHolder Instance = new Holder_gostR3410_2001_CryptoPro_XchB();
  111. protected override ECCurve CreateCurve()
  112. {
  113. BigInteger mod_p = FromHex("9B9F605F5A858107AB1EC85E6B41C8AACF846E86789051D37998F7B9022D759B");
  114. BigInteger mod_q = FromHex("9B9F605F5A858107AB1EC85E6B41C8AA582CA3511EDDFB74F02F3A6598980BB9");
  115. return ConfigureCurve(new FpCurve(
  116. mod_p,
  117. FromHex("9B9F605F5A858107AB1EC85E6B41C8AACF846E86789051D37998F7B9022D7598"),
  118. FromHex("805A"),
  119. mod_q, BigInteger.One, true));
  120. }
  121. protected override X9ECParameters CreateParameters()
  122. {
  123. byte[] S = null;
  124. ECCurve curve = Curve;
  125. X9ECPoint G = ConfigureBasepoint(curve,
  126. BigInteger.Zero,
  127. FromHex("41ECE55743711A8C3CBF3783CD08C0EE4D4DC440D4641A8F366E550DFDB3BB67"));
  128. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  129. }
  130. };
  131. internal class Holder_id_tc26_gost_3410_12_256_paramSetA
  132. : X9ECParametersHolder
  133. {
  134. private Holder_id_tc26_gost_3410_12_256_paramSetA() {}
  135. internal static readonly X9ECParametersHolder Instance = new Holder_id_tc26_gost_3410_12_256_paramSetA();
  136. protected override ECCurve CreateCurve()
  137. {
  138. BigInteger mod_p = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFD97");
  139. BigInteger mod_q = FromHex("400000000000000000000000000000000FD8CDDFC87B6635C115AF556C360C67");
  140. return ConfigureCurve(new FpCurve(
  141. mod_p,
  142. FromHex("C2173F1513981673AF4892C23035A27CE25E2013BF95AA33B22C656F277E7335"),
  143. FromHex("295F9BAE7428ED9CCC20E7C359A9D41A22FCCD9108E17BF7BA9337A6F8AE9513"),
  144. mod_q, BigInteger.Four, true));
  145. }
  146. protected override X9ECParameters CreateParameters()
  147. {
  148. byte[] S = null;
  149. ECCurve curve = Curve;
  150. X9ECPoint G = ConfigureBasepoint(curve,
  151. FromHex("91E38443A5E82C0D880923425712B2BB658B9196932E02C78B2582FE742DAA28"),
  152. FromHex("32879423AB1A0375895786C4BB46E9565FDE0B5344766740AF268ADB32322E5C"));
  153. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  154. }
  155. };
  156. internal class Holder_id_tc26_gost_3410_12_512_paramSetA
  157. : X9ECParametersHolder
  158. {
  159. private Holder_id_tc26_gost_3410_12_512_paramSetA() {}
  160. internal static readonly X9ECParametersHolder Instance = new Holder_id_tc26_gost_3410_12_512_paramSetA();
  161. protected override ECCurve CreateCurve()
  162. {
  163. BigInteger mod_p = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFDC7");
  164. BigInteger mod_q = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF27E69532F48D89116FF22B8D4E0560609B4B38ABFAD2B85DCACDB1411F10B275");
  165. return ConfigureCurve(new FpCurve(
  166. mod_p,
  167. FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFDC4"),
  168. FromHex("E8C2505DEDFC86DDC1BD0B2B6667F1DA34B82574761CB0E879BD081CFD0B6265EE3CB090F30D27614CB4574010DA90DD862EF9D4EBEE4761503190785A71C760"),
  169. mod_q, BigInteger.One, true));
  170. }
  171. protected override X9ECParameters CreateParameters()
  172. {
  173. byte[] S = null;
  174. ECCurve curve = Curve;
  175. X9ECPoint G = ConfigureBasepoint(curve,
  176. BigInteger.Three,
  177. FromHex("7503CFE87A836AE3A61B8816E25450E6CE5E1C93ACF1ABC1778064FDCBEFA921DF1626BE4FD036E93D75E6A50E3A41E98028FE5FC235F5B889A589CB5215F2A4"));
  178. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  179. }
  180. };
  181. internal class Holder_id_tc26_gost_3410_12_512_paramSetB
  182. : X9ECParametersHolder
  183. {
  184. private Holder_id_tc26_gost_3410_12_512_paramSetB() {}
  185. internal static readonly X9ECParametersHolder Instance = new Holder_id_tc26_gost_3410_12_512_paramSetB();
  186. protected override ECCurve CreateCurve()
  187. {
  188. BigInteger mod_p = FromHex("8000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000006F");
  189. BigInteger mod_q = FromHex("800000000000000000000000000000000000000000000000000000000000000149A1EC142565A545ACFDB77BD9D40CFA8B996712101BEA0EC6346C54374F25BD");
  190. return ConfigureCurve(new FpCurve(
  191. mod_p,
  192. FromHex("8000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000006C"),
  193. FromHex("687D1B459DC841457E3E06CF6F5E2517B97C7D614AF138BCBF85DC806C4B289F3E965D2DB1416D217F8B276FAD1AB69C50F78BEE1FA3106EFB8CCBC7C5140116"),
  194. mod_q, BigInteger.One, true));
  195. }
  196. protected override X9ECParameters CreateParameters()
  197. {
  198. byte[] S = null;
  199. ECCurve curve = Curve;
  200. X9ECPoint G = ConfigureBasepoint(curve,
  201. BigInteger.Two,
  202. FromHex("1A8F7EDA389B094C2C071E3647A8940F3C123B697578C213BE6DD9E6C8EC7335DCB228FD1EDF4A39152CBCAAF8C0398828041055F94CEEEC7E21340780FE41BD"));
  203. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  204. }
  205. };
  206. internal class Holder_id_tc26_gost_3410_12_512_paramSetC
  207. : X9ECParametersHolder
  208. {
  209. private Holder_id_tc26_gost_3410_12_512_paramSetC() {}
  210. internal static readonly X9ECParametersHolder Instance = new Holder_id_tc26_gost_3410_12_512_paramSetC();
  211. protected override ECCurve CreateCurve()
  212. {
  213. BigInteger mod_p = FromHex("FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFDC7");
  214. BigInteger mod_q = FromHex("3FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFC98CDBA46506AB004C33A9FF5147502CC8EDA9E7A769A12694623CEF47F023ED");
  215. return ConfigureCurve(new FpCurve(
  216. mod_p,
  217. FromHex("DC9203E514A721875485A529D2C722FB187BC8980EB866644DE41C68E143064546E861C0E2C9EDD92ADE71F46FCF50FF2AD97F951FDA9F2A2EB6546F39689BD3"),
  218. FromHex("B4C4EE28CEBC6C2C8AC12952CF37F16AC7EFB6A9F69F4B57FFDA2E4F0DE5ADE038CBC2FFF719D2C18DE0284B8BFEF3B52B8CC7A5F5BF0A3C8D2319A5312557E1"),
  219. mod_q, BigInteger.Four, true));
  220. }
  221. protected override X9ECParameters CreateParameters()
  222. {
  223. byte[] S = null;
  224. ECCurve curve = Curve;
  225. X9ECPoint G = ConfigureBasepoint(curve,
  226. FromHex("E2E31EDFC23DE7BDEBE241CE593EF5DE2295B7A9CBAEF021D385F7074CEA043AA27272A7AE602BF2A7B9033DB9ED3610C6FB85487EAE97AAC5BC7928C1950148"),
  227. FromHex("F5CE40D95B5EB899ABBCCFF5911CB8577939804D6527378B8C108C3D2090FF9BE18E2D33E3021ED2EF32D85822423B6304F726AA854BAE07D0396E9A9ADDC40F"));
  228. return new X9ECParameters(curve, G, curve.Order, curve.Cofactor, S);
  229. }
  230. };
  231. private static readonly Dictionary<string, DerObjectIdentifier> objIds =
  232. new Dictionary<string, DerObjectIdentifier>(StringComparer.OrdinalIgnoreCase);
  233. private static readonly Dictionary<DerObjectIdentifier, X9ECParametersHolder> curves =
  234. new Dictionary<DerObjectIdentifier, X9ECParametersHolder>();
  235. private static readonly Dictionary<DerObjectIdentifier, string> names =
  236. new Dictionary<DerObjectIdentifier, string>();
  237. private static void DefineCurve(string name, DerObjectIdentifier oid, X9ECParametersHolder holder)
  238. {
  239. objIds.Add(name, oid);
  240. names.Add(oid, name);
  241. curves.Add(oid, holder);
  242. }
  243. static ECGost3410NamedCurves()
  244. {
  245. DefineCurve("GostR3410-2001-CryptoPro-A",
  246. CryptoProObjectIdentifiers.GostR3410x2001CryptoProA,
  247. Holder_gostR3410_2001_CryptoPro_A.Instance);
  248. DefineCurve("GostR3410-2001-CryptoPro-B",
  249. CryptoProObjectIdentifiers.GostR3410x2001CryptoProB,
  250. Holder_gostR3410_2001_CryptoPro_B.Instance);
  251. DefineCurve("GostR3410-2001-CryptoPro-C",
  252. CryptoProObjectIdentifiers.GostR3410x2001CryptoProC,
  253. Holder_gostR3410_2001_CryptoPro_C.Instance);
  254. DefineCurve("GostR3410-2001-CryptoPro-XchA",
  255. CryptoProObjectIdentifiers.GostR3410x2001CryptoProXchA,
  256. Holder_gostR3410_2001_CryptoPro_A.Instance);
  257. DefineCurve("GostR3410-2001-CryptoPro-XchB",
  258. CryptoProObjectIdentifiers.GostR3410x2001CryptoProXchB,
  259. Holder_gostR3410_2001_CryptoPro_XchB.Instance);
  260. DefineCurve("Tc26-Gost-3410-12-256-paramSetA",
  261. RosstandartObjectIdentifiers.id_tc26_gost_3410_12_256_paramSetA,
  262. Holder_id_tc26_gost_3410_12_256_paramSetA.Instance);
  263. DefineCurve("Tc26-Gost-3410-12-512-paramSetA",
  264. RosstandartObjectIdentifiers.id_tc26_gost_3410_12_512_paramSetA,
  265. Holder_id_tc26_gost_3410_12_512_paramSetA.Instance);
  266. DefineCurve("Tc26-Gost-3410-12-512-paramSetB",
  267. RosstandartObjectIdentifiers.id_tc26_gost_3410_12_512_paramSetB,
  268. Holder_id_tc26_gost_3410_12_512_paramSetB.Instance);
  269. DefineCurve("Tc26-Gost-3410-12-512-paramSetC",
  270. RosstandartObjectIdentifiers.id_tc26_gost_3410_12_512_paramSetC,
  271. Holder_id_tc26_gost_3410_12_512_paramSetC.Instance);
  272. }
  273. /// <summary>Look up the <see cref="X9ECParameters"/> for the curve with the given name.</summary>
  274. /// <param name="name">The name of the curve.</param>
  275. public static X9ECParameters GetByName(string name)
  276. {
  277. DerObjectIdentifier oid = GetOid(name);
  278. return oid == null ? null : GetByOid(oid);
  279. }
  280. /// <summary>Look up an <see cref="X9ECParametersHolder"/> for the curve with the given name.</summary>
  281. /// <remarks>
  282. /// Allows accessing the <see cref="ECCurve">curve</see> without necessarily triggering the creation of the
  283. /// full <see cref="X9ECParameters"/>.
  284. /// </remarks>
  285. /// <param name="name">The name of the curve.</param>
  286. public static X9ECParametersHolder GetByNameLazy(string name)
  287. {
  288. DerObjectIdentifier oid = GetOid(name);
  289. return oid == null ? null : GetByOidLazy(oid);
  290. }
  291. /// <summary>Look up the <see cref="X9ECParameters"/> for the curve with the given
  292. /// <see cref="DerObjectIdentifier">OID</see>.</summary>
  293. /// <param name="oid">The <see cref="DerObjectIdentifier">OID</see> for the curve.</param>
  294. public static X9ECParameters GetByOid(DerObjectIdentifier oid)
  295. {
  296. return GetByOidLazy(oid)?.Parameters;
  297. }
  298. /// <summary>Look up an <see cref="X9ECParametersHolder"/> for the curve with the given
  299. /// <see cref="DerObjectIdentifier">OID</see>.</summary>
  300. /// <remarks>
  301. /// Allows accessing the <see cref="ECCurve">curve</see> without necessarily triggering the creation of the
  302. /// full <see cref="X9ECParameters"/>.
  303. /// </remarks>
  304. /// <param name="oid">The <see cref="DerObjectIdentifier">OID</see> for the curve.</param>
  305. public static X9ECParametersHolder GetByOidLazy(DerObjectIdentifier oid)
  306. {
  307. return CollectionUtilities.GetValueOrNull(curves, oid);
  308. }
  309. /// <summary>Look up the name of the curve with the given <see cref="DerObjectIdentifier">OID</see>.</summary>
  310. /// <param name="oid">The <see cref="DerObjectIdentifier">OID</see> for the curve.</param>
  311. public static string GetName(DerObjectIdentifier oid)
  312. {
  313. return CollectionUtilities.GetValueOrNull(names, oid);
  314. }
  315. /// <summary>Look up the <see cref="DerObjectIdentifier">OID</see> of the curve with the given name.</summary>
  316. /// <param name="name">The name of the curve.</param>
  317. public static DerObjectIdentifier GetOid(string name)
  318. {
  319. return CollectionUtilities.GetValueOrNull(objIds, name);
  320. }
  321. /// <summary>Enumerate the available curve names in this registry.</summary>
  322. public static IEnumerable<string> Names
  323. {
  324. get { return CollectionUtilities.Proxy(objIds.Keys); }
  325. }
  326. }
  327. }
  328. #pragma warning restore
  329. #endif