DigestUtilities.cs 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using System.Collections.Generic;
  5. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1;
  6. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.CryptoPro;
  7. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.GM;
  8. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Misc;
  9. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Nist;
  10. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Pkcs;
  11. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Oiw;
  12. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Rosstandart;
  13. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.TeleTrust;
  14. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.UA;
  15. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto;
  16. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Digests;
  17. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities;
  18. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities.Collections;
  19. namespace Best.HTTP.SecureProtocol.Org.BouncyCastle.Security
  20. {
  21. /// <remarks>
  22. /// Utility class for creating IDigest objects from their names/Oids
  23. /// </remarks>
  24. public static class DigestUtilities
  25. {
  26. private enum DigestAlgorithm {
  27. BLAKE2B_160, BLAKE2B_256, BLAKE2B_384, BLAKE2B_512,
  28. BLAKE2S_128, BLAKE2S_160, BLAKE2S_224, BLAKE2S_256,
  29. BLAKE3_256,
  30. DSTU7564_256, DSTU7564_384, DSTU7564_512,
  31. GOST3411,
  32. GOST3411_2012_256, GOST3411_2012_512,
  33. KECCAK_224, KECCAK_256, KECCAK_288, KECCAK_384, KECCAK_512,
  34. MD2, MD4, MD5,
  35. NONE,
  36. RIPEMD128, RIPEMD160, RIPEMD256, RIPEMD320,
  37. SHA_1, SHA_224, SHA_256, SHA_384, SHA_512,
  38. SHA_512_224, SHA_512_256,
  39. SHA3_224, SHA3_256, SHA3_384, SHA3_512,
  40. SHAKE128_256, SHAKE256_512,
  41. SM3,
  42. TIGER,
  43. WHIRLPOOL,
  44. };
  45. private static readonly IDictionary<string, string> Aliases =
  46. new Dictionary<string, string>(StringComparer.OrdinalIgnoreCase);
  47. private static readonly IDictionary<string, DerObjectIdentifier> Oids =
  48. new Dictionary<string, DerObjectIdentifier>(StringComparer.OrdinalIgnoreCase);
  49. static DigestUtilities()
  50. {
  51. // Signal to obfuscation tools not to change enum constants
  52. Enums.GetArbitraryValue<DigestAlgorithm>().ToString();
  53. Aliases[PkcsObjectIdentifiers.MD2.Id] = "MD2";
  54. Aliases[PkcsObjectIdentifiers.MD4.Id] = "MD4";
  55. Aliases[PkcsObjectIdentifiers.MD5.Id] = "MD5";
  56. Aliases["SHA1"] = "SHA-1";
  57. Aliases[OiwObjectIdentifiers.IdSha1.Id] = "SHA-1";
  58. Aliases[PkcsObjectIdentifiers.IdHmacWithSha1.Id] = "SHA-1";
  59. Aliases[MiscObjectIdentifiers.HMAC_SHA1.Id] = "SHA-1";
  60. Aliases["SHA224"] = "SHA-224";
  61. Aliases[NistObjectIdentifiers.IdSha224.Id] = "SHA-224";
  62. Aliases[PkcsObjectIdentifiers.IdHmacWithSha224.Id] = "SHA-224";
  63. Aliases["SHA256"] = "SHA-256";
  64. Aliases[NistObjectIdentifiers.IdSha256.Id] = "SHA-256";
  65. Aliases[PkcsObjectIdentifiers.IdHmacWithSha256.Id] = "SHA-256";
  66. Aliases["SHA384"] = "SHA-384";
  67. Aliases[NistObjectIdentifiers.IdSha384.Id] = "SHA-384";
  68. Aliases[PkcsObjectIdentifiers.IdHmacWithSha384.Id] = "SHA-384";
  69. Aliases["SHA512"] = "SHA-512";
  70. Aliases[NistObjectIdentifiers.IdSha512.Id] = "SHA-512";
  71. Aliases[PkcsObjectIdentifiers.IdHmacWithSha512.Id] = "SHA-512";
  72. Aliases["SHA512/224"] = "SHA-512/224";
  73. Aliases["SHA512(224)"] = "SHA-512/224";
  74. Aliases["SHA-512(224)"] = "SHA-512/224";
  75. Aliases[NistObjectIdentifiers.IdSha512_224.Id] = "SHA-512/224";
  76. Aliases["SHA512/256"] = "SHA-512/256";
  77. Aliases["SHA512(256)"] = "SHA-512/256";
  78. Aliases["SHA-512(256)"] = "SHA-512/256";
  79. Aliases[NistObjectIdentifiers.IdSha512_256.Id] = "SHA-512/256";
  80. Aliases["RIPEMD-128"] = "RIPEMD128";
  81. Aliases[TeleTrusTObjectIdentifiers.RipeMD128.Id] = "RIPEMD128";
  82. Aliases["RIPEMD-160"] = "RIPEMD160";
  83. Aliases[TeleTrusTObjectIdentifiers.RipeMD160.Id] = "RIPEMD160";
  84. Aliases["RIPEMD-256"] = "RIPEMD256";
  85. Aliases[TeleTrusTObjectIdentifiers.RipeMD256.Id] = "RIPEMD256";
  86. Aliases["RIPEMD-320"] = "RIPEMD320";
  87. //Aliases[TeleTrusTObjectIdentifiers.RipeMD320.Id] = "RIPEMD320";
  88. Aliases[CryptoProObjectIdentifiers.GostR3411.Id] = "GOST3411";
  89. Aliases["KECCAK224"] = "KECCAK-224";
  90. Aliases["KECCAK256"] = "KECCAK-256";
  91. Aliases["KECCAK288"] = "KECCAK-288";
  92. Aliases["KECCAK384"] = "KECCAK-384";
  93. Aliases["KECCAK512"] = "KECCAK-512";
  94. Aliases[NistObjectIdentifiers.IdSha3_224.Id] = "SHA3-224";
  95. Aliases[NistObjectIdentifiers.IdHMacWithSha3_224.Id] = "SHA3-224";
  96. Aliases[NistObjectIdentifiers.IdSha3_256.Id] = "SHA3-256";
  97. Aliases[NistObjectIdentifiers.IdHMacWithSha3_256.Id] = "SHA3-256";
  98. Aliases[NistObjectIdentifiers.IdSha3_384.Id] = "SHA3-384";
  99. Aliases[NistObjectIdentifiers.IdHMacWithSha3_384.Id] = "SHA3-384";
  100. Aliases[NistObjectIdentifiers.IdSha3_512.Id] = "SHA3-512";
  101. Aliases[NistObjectIdentifiers.IdHMacWithSha3_512.Id] = "SHA3-512";
  102. Aliases["SHAKE128"] = "SHAKE128-256";
  103. Aliases[NistObjectIdentifiers.IdShake128.Id] = "SHAKE128-256";
  104. Aliases["SHAKE256"] = "SHAKE256-512";
  105. Aliases[NistObjectIdentifiers.IdShake256.Id] = "SHAKE256-512";
  106. Aliases[GMObjectIdentifiers.sm3.Id] = "SM3";
  107. Aliases[MiscObjectIdentifiers.id_blake2b160.Id] = "BLAKE2B-160";
  108. Aliases[MiscObjectIdentifiers.id_blake2b256.Id] = "BLAKE2B-256";
  109. Aliases[MiscObjectIdentifiers.id_blake2b384.Id] = "BLAKE2B-384";
  110. Aliases[MiscObjectIdentifiers.id_blake2b512.Id] = "BLAKE2B-512";
  111. Aliases[MiscObjectIdentifiers.id_blake2s128.Id] = "BLAKE2S-128";
  112. Aliases[MiscObjectIdentifiers.id_blake2s160.Id] = "BLAKE2S-160";
  113. Aliases[MiscObjectIdentifiers.id_blake2s224.Id] = "BLAKE2S-224";
  114. Aliases[MiscObjectIdentifiers.id_blake2s256.Id] = "BLAKE2S-256";
  115. Aliases[MiscObjectIdentifiers.blake3_256.Id] = "BLAKE3-256";
  116. Aliases[RosstandartObjectIdentifiers.id_tc26_gost_3411_12_256.Id] = "GOST3411-2012-256";
  117. Aliases[RosstandartObjectIdentifiers.id_tc26_gost_3411_12_512.Id] = "GOST3411-2012-512";
  118. Aliases[UAObjectIdentifiers.dstu7564digest_256.Id] = "DSTU7564-256";
  119. Aliases[UAObjectIdentifiers.dstu7564digest_384.Id] = "DSTU7564-384";
  120. Aliases[UAObjectIdentifiers.dstu7564digest_512.Id] = "DSTU7564-512";
  121. Oids["MD2"] = PkcsObjectIdentifiers.MD2;
  122. Oids["MD4"] = PkcsObjectIdentifiers.MD4;
  123. Oids["MD5"] = PkcsObjectIdentifiers.MD5;
  124. Oids["SHA-1"] = OiwObjectIdentifiers.IdSha1;
  125. Oids["SHA-224"] = NistObjectIdentifiers.IdSha224;
  126. Oids["SHA-256"] = NistObjectIdentifiers.IdSha256;
  127. Oids["SHA-384"] = NistObjectIdentifiers.IdSha384;
  128. Oids["SHA-512"] = NistObjectIdentifiers.IdSha512;
  129. Oids["SHA-512/224"] = NistObjectIdentifiers.IdSha512_224;
  130. Oids["SHA-512/256"] = NistObjectIdentifiers.IdSha512_256;
  131. Oids["SHA3-224"] = NistObjectIdentifiers.IdSha3_224;
  132. Oids["SHA3-256"] = NistObjectIdentifiers.IdSha3_256;
  133. Oids["SHA3-384"] = NistObjectIdentifiers.IdSha3_384;
  134. Oids["SHA3-512"] = NistObjectIdentifiers.IdSha3_512;
  135. Oids["SHAKE128-256"] = NistObjectIdentifiers.IdShake128;
  136. Oids["SHAKE256-512"] = NistObjectIdentifiers.IdShake256;
  137. Oids["RIPEMD128"] = TeleTrusTObjectIdentifiers.RipeMD128;
  138. Oids["RIPEMD160"] = TeleTrusTObjectIdentifiers.RipeMD160;
  139. Oids["RIPEMD256"] = TeleTrusTObjectIdentifiers.RipeMD256;
  140. Oids["GOST3411"] = CryptoProObjectIdentifiers.GostR3411;
  141. Oids["SM3"] = GMObjectIdentifiers.sm3;
  142. Oids["BLAKE2B-160"] = MiscObjectIdentifiers.id_blake2b160;
  143. Oids["BLAKE2B-256"] = MiscObjectIdentifiers.id_blake2b256;
  144. Oids["BLAKE2B-384"] = MiscObjectIdentifiers.id_blake2b384;
  145. Oids["BLAKE2B-512"] = MiscObjectIdentifiers.id_blake2b512;
  146. Oids["BLAKE2S-128"] = MiscObjectIdentifiers.id_blake2s128;
  147. Oids["BLAKE2S-160"] = MiscObjectIdentifiers.id_blake2s160;
  148. Oids["BLAKE2S-224"] = MiscObjectIdentifiers.id_blake2s224;
  149. Oids["BLAKE2S-256"] = MiscObjectIdentifiers.id_blake2s256;
  150. Oids["BLAKE3-256"] = MiscObjectIdentifiers.blake3_256;
  151. Oids["GOST3411-2012-256"] = RosstandartObjectIdentifiers.id_tc26_gost_3411_12_256;
  152. Oids["GOST3411-2012-512"] = RosstandartObjectIdentifiers.id_tc26_gost_3411_12_512;
  153. Oids["DSTU7564-256"] = UAObjectIdentifiers.dstu7564digest_256;
  154. Oids["DSTU7564-384"] = UAObjectIdentifiers.dstu7564digest_384;
  155. Oids["DSTU7564-512"] = UAObjectIdentifiers.dstu7564digest_512;
  156. }
  157. /// <summary>
  158. /// Returns a ObjectIdentifier for a given digest mechanism.
  159. /// </summary>
  160. /// <param name="mechanism">A string representation of the digest meanism.</param>
  161. /// <returns>A DerObjectIdentifier, null if the Oid is not available.</returns>
  162. public static DerObjectIdentifier GetObjectIdentifier(string mechanism)
  163. {
  164. if (mechanism == null)
  165. throw new ArgumentNullException(nameof(mechanism));
  166. mechanism = CollectionUtilities.GetValueOrKey(Aliases, mechanism).ToUpperInvariant();
  167. return CollectionUtilities.GetValueOrNull(Oids, mechanism);
  168. }
  169. public static IDigest GetDigest(DerObjectIdentifier id)
  170. {
  171. return GetDigest(id.Id);
  172. }
  173. public static IDigest GetDigest(string algorithm)
  174. {
  175. if (algorithm == null)
  176. throw new ArgumentNullException(nameof(algorithm));
  177. string mechanism = CollectionUtilities.GetValueOrKey(Aliases, algorithm).ToUpperInvariant();
  178. try
  179. {
  180. DigestAlgorithm digestAlgorithm = Enums.GetEnumValue<DigestAlgorithm>(mechanism);
  181. switch (digestAlgorithm)
  182. {
  183. case DigestAlgorithm.BLAKE2B_160: return new Blake2bDigest(160);
  184. case DigestAlgorithm.BLAKE2B_256: return new Blake2bDigest(256);
  185. case DigestAlgorithm.BLAKE2B_384: return new Blake2bDigest(384);
  186. case DigestAlgorithm.BLAKE2B_512: return new Blake2bDigest(512);
  187. case DigestAlgorithm.BLAKE2S_128: return new Blake2sDigest(128);
  188. case DigestAlgorithm.BLAKE2S_160: return new Blake2sDigest(160);
  189. case DigestAlgorithm.BLAKE2S_224: return new Blake2sDigest(224);
  190. case DigestAlgorithm.BLAKE2S_256: return new Blake2sDigest(256);
  191. case DigestAlgorithm.BLAKE3_256: return new Blake3Digest(256);
  192. case DigestAlgorithm.DSTU7564_256: return new Dstu7564Digest(256);
  193. case DigestAlgorithm.DSTU7564_384: return new Dstu7564Digest(384);
  194. case DigestAlgorithm.DSTU7564_512: return new Dstu7564Digest(512);
  195. case DigestAlgorithm.GOST3411: return new Gost3411Digest();
  196. case DigestAlgorithm.GOST3411_2012_256: return new Gost3411_2012_256Digest();
  197. case DigestAlgorithm.GOST3411_2012_512: return new Gost3411_2012_512Digest();
  198. case DigestAlgorithm.KECCAK_224: return new KeccakDigest(224);
  199. case DigestAlgorithm.KECCAK_256: return new KeccakDigest(256);
  200. case DigestAlgorithm.KECCAK_288: return new KeccakDigest(288);
  201. case DigestAlgorithm.KECCAK_384: return new KeccakDigest(384);
  202. case DigestAlgorithm.KECCAK_512: return new KeccakDigest(512);
  203. case DigestAlgorithm.MD2: return new MD2Digest();
  204. case DigestAlgorithm.MD4: return new MD4Digest();
  205. case DigestAlgorithm.MD5: return new MD5Digest();
  206. case DigestAlgorithm.NONE: return new NullDigest();
  207. case DigestAlgorithm.RIPEMD128: return new RipeMD128Digest();
  208. case DigestAlgorithm.RIPEMD160: return new RipeMD160Digest();
  209. case DigestAlgorithm.RIPEMD256: return new RipeMD256Digest();
  210. case DigestAlgorithm.RIPEMD320: return new RipeMD320Digest();
  211. case DigestAlgorithm.SHA_1: return new Sha1Digest();
  212. case DigestAlgorithm.SHA_224: return new Sha224Digest();
  213. case DigestAlgorithm.SHA_256: return new Sha256Digest();
  214. case DigestAlgorithm.SHA_384: return new Sha384Digest();
  215. case DigestAlgorithm.SHA_512: return new Sha512Digest();
  216. case DigestAlgorithm.SHA_512_224: return new Sha512tDigest(224);
  217. case DigestAlgorithm.SHA_512_256: return new Sha512tDigest(256);
  218. case DigestAlgorithm.SHA3_224: return new Sha3Digest(224);
  219. case DigestAlgorithm.SHA3_256: return new Sha3Digest(256);
  220. case DigestAlgorithm.SHA3_384: return new Sha3Digest(384);
  221. case DigestAlgorithm.SHA3_512: return new Sha3Digest(512);
  222. case DigestAlgorithm.SHAKE128_256: return new ShakeDigest(128);
  223. case DigestAlgorithm.SHAKE256_512: return new ShakeDigest(256);
  224. case DigestAlgorithm.SM3: return new SM3Digest();
  225. case DigestAlgorithm.TIGER: return new TigerDigest();
  226. case DigestAlgorithm.WHIRLPOOL: return new WhirlpoolDigest();
  227. }
  228. }
  229. catch (ArgumentException)
  230. {
  231. }
  232. throw new SecurityUtilityException("Digest " + mechanism + " not recognised.");
  233. }
  234. public static string GetAlgorithmName(DerObjectIdentifier oid)
  235. {
  236. return CollectionUtilities.GetValueOrNull(Aliases, oid.Id);
  237. }
  238. public static byte[] CalculateDigest(DerObjectIdentifier id, byte[] input)
  239. {
  240. return CalculateDigest(id.Id, input);
  241. }
  242. public static byte[] CalculateDigest(string algorithm, byte[] input)
  243. {
  244. IDigest digest = GetDigest(algorithm);
  245. return DoFinal(digest, input);
  246. }
  247. public static byte[] CalculateDigest(string algorithm, byte[] buf, int off, int len)
  248. {
  249. IDigest digest = GetDigest(algorithm);
  250. return DoFinal(digest, buf, off, len);
  251. }
  252. #if NETCOREAPP2_1_OR_GREATER || NETSTANDARD2_1_OR_GREATER || UNITY_2021_2_OR_NEWER
  253. public static byte[] CalculateDigest(string algorithm, ReadOnlySpan<byte> buffer)
  254. {
  255. IDigest digest = GetDigest(algorithm);
  256. return DoFinal(digest, buffer);
  257. }
  258. #endif
  259. public static byte[] DoFinal(IDigest digest)
  260. {
  261. byte[] b = new byte[digest.GetDigestSize()];
  262. digest.DoFinal(b, 0);
  263. return b;
  264. }
  265. public static byte[] DoFinal(IDigest digest, byte[] input)
  266. {
  267. digest.BlockUpdate(input, 0, input.Length);
  268. return DoFinal(digest);
  269. }
  270. public static byte[] DoFinal(IDigest digest, byte[] buf, int off, int len)
  271. {
  272. digest.BlockUpdate(buf, off, len);
  273. return DoFinal(digest);
  274. }
  275. #if NETCOREAPP2_1_OR_GREATER || NETSTANDARD2_1_OR_GREATER || UNITY_2021_2_OR_NEWER
  276. public static byte[] DoFinal(IDigest digest, ReadOnlySpan<byte> buffer)
  277. {
  278. digest.BlockUpdate(buffer);
  279. return DoFinal(digest);
  280. }
  281. #endif
  282. }
  283. }
  284. #pragma warning restore
  285. #endif