SignerUtilities.cs 38 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using System.Collections.Generic;
  5. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1;
  6. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Bsi;
  7. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.CryptoPro;
  8. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Eac;
  9. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.EdEC;
  10. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.GM;
  11. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Nist;
  12. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Oiw;
  13. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Pkcs;
  14. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.TeleTrust;
  15. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.X509;
  16. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.X9;
  17. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Digests;
  18. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto;
  19. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Engines;
  20. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Signers;
  21. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities;
  22. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities.Collections;
  23. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.Rosstandart;
  24. namespace Best.HTTP.SecureProtocol.Org.BouncyCastle.Security
  25. {
  26. /// <summary>
  27. /// Signer Utility class contains methods that can not be specifically grouped into other classes.
  28. /// </summary>
  29. public static class SignerUtilities
  30. {
  31. internal static readonly IDictionary<string, string> AlgorithmMap =
  32. new Dictionary<string, string>(StringComparer.OrdinalIgnoreCase);
  33. internal static readonly IDictionary<string, DerObjectIdentifier> Oids =
  34. new Dictionary<string, DerObjectIdentifier>(StringComparer.OrdinalIgnoreCase);
  35. static SignerUtilities()
  36. {
  37. AlgorithmMap["MD2WITHRSA"] = "MD2withRSA";
  38. AlgorithmMap["MD2WITHRSAENCRYPTION"] = "MD2withRSA";
  39. AlgorithmMap[PkcsObjectIdentifiers.MD2WithRsaEncryption.Id] = "MD2withRSA";
  40. AlgorithmMap["MD4WITHRSA"] = "MD4withRSA";
  41. AlgorithmMap["MD4WITHRSAENCRYPTION"] = "MD4withRSA";
  42. AlgorithmMap[PkcsObjectIdentifiers.MD4WithRsaEncryption.Id] = "MD4withRSA";
  43. AlgorithmMap[OiwObjectIdentifiers.MD4WithRsa.Id] = "MD4withRSA";
  44. AlgorithmMap[OiwObjectIdentifiers.MD4WithRsaEncryption.Id] = "MD4withRSA";
  45. AlgorithmMap["MD5WITHRSA"] = "MD5withRSA";
  46. AlgorithmMap["MD5WITHRSAENCRYPTION"] = "MD5withRSA";
  47. AlgorithmMap[PkcsObjectIdentifiers.MD5WithRsaEncryption.Id] = "MD5withRSA";
  48. AlgorithmMap[OiwObjectIdentifiers.MD5WithRsa.Id] = "MD5withRSA";
  49. AlgorithmMap["SHA1WITHRSA"] = "SHA-1withRSA";
  50. AlgorithmMap["SHA-1WITHRSA"] = "SHA-1withRSA";
  51. AlgorithmMap["SHA1WITHRSAENCRYPTION"] = "SHA-1withRSA";
  52. AlgorithmMap["SHA-1WITHRSAENCRYPTION"] = "SHA-1withRSA";
  53. AlgorithmMap[PkcsObjectIdentifiers.Sha1WithRsaEncryption.Id] = "SHA-1withRSA";
  54. AlgorithmMap[OiwObjectIdentifiers.Sha1WithRsa.Id] = "SHA-1withRSA";
  55. AlgorithmMap["SHA224WITHRSA"] = "SHA-224withRSA";
  56. AlgorithmMap["SHA-224WITHRSA"] = "SHA-224withRSA";
  57. AlgorithmMap["SHA224WITHRSAENCRYPTION"] = "SHA-224withRSA";
  58. AlgorithmMap["SHA-224WITHRSAENCRYPTION"] = "SHA-224withRSA";
  59. AlgorithmMap[PkcsObjectIdentifiers.Sha224WithRsaEncryption.Id] = "SHA-224withRSA";
  60. AlgorithmMap["SHA256WITHRSA"] = "SHA-256withRSA";
  61. AlgorithmMap["SHA-256WITHRSA"] = "SHA-256withRSA";
  62. AlgorithmMap["SHA256WITHRSAENCRYPTION"] = "SHA-256withRSA";
  63. AlgorithmMap["SHA-256WITHRSAENCRYPTION"] = "SHA-256withRSA";
  64. AlgorithmMap[PkcsObjectIdentifiers.Sha256WithRsaEncryption.Id] = "SHA-256withRSA";
  65. AlgorithmMap["SHA384WITHRSA"] = "SHA-384withRSA";
  66. AlgorithmMap["SHA-384WITHRSA"] = "SHA-384withRSA";
  67. AlgorithmMap["SHA384WITHRSAENCRYPTION"] = "SHA-384withRSA";
  68. AlgorithmMap["SHA-384WITHRSAENCRYPTION"] = "SHA-384withRSA";
  69. AlgorithmMap[PkcsObjectIdentifiers.Sha384WithRsaEncryption.Id] = "SHA-384withRSA";
  70. AlgorithmMap["SHA512WITHRSA"] = "SHA-512withRSA";
  71. AlgorithmMap["SHA-512WITHRSA"] = "SHA-512withRSA";
  72. AlgorithmMap["SHA512WITHRSAENCRYPTION"] = "SHA-512withRSA";
  73. AlgorithmMap["SHA-512WITHRSAENCRYPTION"] = "SHA-512withRSA";
  74. AlgorithmMap[PkcsObjectIdentifiers.Sha512WithRsaEncryption.Id] = "SHA-512withRSA";
  75. AlgorithmMap["SHA512(224)WITHRSA"] = "SHA-512(224)withRSA";
  76. AlgorithmMap["SHA-512(224)WITHRSA"] = "SHA-512(224)withRSA";
  77. AlgorithmMap["SHA512(224)WITHRSAENCRYPTION"] = "SHA-512(224)withRSA";
  78. AlgorithmMap["SHA-512(224)WITHRSAENCRYPTION"] = "SHA-512(224)withRSA";
  79. AlgorithmMap[PkcsObjectIdentifiers.Sha512_224WithRSAEncryption.Id] = "SHA-512(224)withRSA";
  80. AlgorithmMap["SHA512(256)WITHRSA"] = "SHA-512(256)withRSA";
  81. AlgorithmMap["SHA-512(256)WITHRSA"] = "SHA-512(256)withRSA";
  82. AlgorithmMap["SHA512(256)WITHRSAENCRYPTION"] = "SHA-512(256)withRSA";
  83. AlgorithmMap["SHA-512(256)WITHRSAENCRYPTION"] = "SHA-512(256)withRSA";
  84. AlgorithmMap[PkcsObjectIdentifiers.Sha512_256WithRSAEncryption.Id] = "SHA-512(256)withRSA";
  85. AlgorithmMap["SHA3-224WITHRSA"] = "SHA3-224withRSA";
  86. AlgorithmMap["SHA3-224WITHRSAENCRYPTION"] = "SHA3-224withRSA";
  87. AlgorithmMap[NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_224.Id] = "SHA3-224withRSA";
  88. AlgorithmMap["SHA3-256WITHRSA"] = "SHA3-256withRSA";
  89. AlgorithmMap["SHA3-256WITHRSAENCRYPTION"] = "SHA3-256withRSA";
  90. AlgorithmMap[NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_256.Id] = "SHA3-256withRSA";
  91. AlgorithmMap["SHA3-384WITHRSA"] = "SHA3-384withRSA";
  92. AlgorithmMap["SHA3-384WITHRSAENCRYPTION"] = "SHA3-384withRSA";
  93. AlgorithmMap[NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_384.Id] = "SHA3-384withRSA";
  94. AlgorithmMap["SHA3-512WITHRSA"] = "SHA3-512withRSA";
  95. AlgorithmMap["SHA3-512WITHRSAENCRYPTION"] = "SHA3-512withRSA";
  96. AlgorithmMap[NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_512.Id] = "SHA3-512withRSA";
  97. AlgorithmMap["PSSWITHRSA"] = "PSSwithRSA";
  98. AlgorithmMap["RSASSA-PSS"] = "PSSwithRSA";
  99. AlgorithmMap[PkcsObjectIdentifiers.IdRsassaPss.Id] = "PSSwithRSA";
  100. AlgorithmMap["RSAPSS"] = "PSSwithRSA";
  101. AlgorithmMap["SHA1WITHRSAANDMGF1"] = "SHA-1withRSAandMGF1";
  102. AlgorithmMap["SHA-1WITHRSAANDMGF1"] = "SHA-1withRSAandMGF1";
  103. AlgorithmMap["SHA1WITHRSA/PSS"] = "SHA-1withRSAandMGF1";
  104. AlgorithmMap["SHA-1WITHRSA/PSS"] = "SHA-1withRSAandMGF1";
  105. AlgorithmMap["SHA1WITHRSASSA-PSS"] = "SHA-1withRSAandMGF1";
  106. AlgorithmMap["SHA-1WITHRSASSA-PSS"] = "SHA-1withRSAandMGF1";
  107. AlgorithmMap["SHA224WITHRSAANDMGF1"] = "SHA-224withRSAandMGF1";
  108. AlgorithmMap["SHA-224WITHRSAANDMGF1"] = "SHA-224withRSAandMGF1";
  109. AlgorithmMap["SHA224WITHRSA/PSS"] = "SHA-224withRSAandMGF1";
  110. AlgorithmMap["SHA-224WITHRSA/PSS"] = "SHA-224withRSAandMGF1";
  111. AlgorithmMap["SHA224WITHRSASSA-PSS"] = "SHA-224withRSAandMGF1";
  112. AlgorithmMap["SHA-224WITHRSASSA-PSS"] = "SHA-224withRSAandMGF1";
  113. AlgorithmMap["SHA256WITHRSAANDMGF1"] = "SHA-256withRSAandMGF1";
  114. AlgorithmMap["SHA-256WITHRSAANDMGF1"] = "SHA-256withRSAandMGF1";
  115. AlgorithmMap["SHA256WITHRSA/PSS"] = "SHA-256withRSAandMGF1";
  116. AlgorithmMap["SHA-256WITHRSA/PSS"] = "SHA-256withRSAandMGF1";
  117. AlgorithmMap["SHA256WITHRSASSA-PSS"] = "SHA-256withRSAandMGF1";
  118. AlgorithmMap["SHA-256WITHRSASSA-PSS"] = "SHA-256withRSAandMGF1";
  119. AlgorithmMap["SHA384WITHRSAANDMGF1"] = "SHA-384withRSAandMGF1";
  120. AlgorithmMap["SHA-384WITHRSAANDMGF1"] = "SHA-384withRSAandMGF1";
  121. AlgorithmMap["SHA384WITHRSA/PSS"] = "SHA-384withRSAandMGF1";
  122. AlgorithmMap["SHA-384WITHRSA/PSS"] = "SHA-384withRSAandMGF1";
  123. AlgorithmMap["SHA384WITHRSASSA-PSS"] = "SHA-384withRSAandMGF1";
  124. AlgorithmMap["SHA-384WITHRSASSA-PSS"] = "SHA-384withRSAandMGF1";
  125. AlgorithmMap["SHA512WITHRSAANDMGF1"] = "SHA-512withRSAandMGF1";
  126. AlgorithmMap["SHA-512WITHRSAANDMGF1"] = "SHA-512withRSAandMGF1";
  127. AlgorithmMap["SHA512WITHRSA/PSS"] = "SHA-512withRSAandMGF1";
  128. AlgorithmMap["SHA-512WITHRSA/PSS"] = "SHA-512withRSAandMGF1";
  129. AlgorithmMap["SHA512WITHRSASSA-PSS"] = "SHA-512withRSAandMGF1";
  130. AlgorithmMap["SHA-512WITHRSASSA-PSS"] = "SHA-512withRSAandMGF1";
  131. AlgorithmMap["RIPEMD128WITHRSA"] = "RIPEMD128withRSA";
  132. AlgorithmMap["RIPEMD128WITHRSAENCRYPTION"] = "RIPEMD128withRSA";
  133. AlgorithmMap[TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD128.Id] = "RIPEMD128withRSA";
  134. AlgorithmMap["RIPEMD160WITHRSA"] = "RIPEMD160withRSA";
  135. AlgorithmMap["RIPEMD160WITHRSAENCRYPTION"] = "RIPEMD160withRSA";
  136. AlgorithmMap[TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD160.Id] = "RIPEMD160withRSA";
  137. AlgorithmMap["RIPEMD256WITHRSA"] = "RIPEMD256withRSA";
  138. AlgorithmMap["RIPEMD256WITHRSAENCRYPTION"] = "RIPEMD256withRSA";
  139. AlgorithmMap[TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD256.Id] = "RIPEMD256withRSA";
  140. AlgorithmMap["NONEWITHRSA"] = "RSA";
  141. AlgorithmMap["RSAWITHNONE"] = "RSA";
  142. AlgorithmMap["RAWRSA"] = "RSA";
  143. AlgorithmMap["RAWRSAPSS"] = "RAWRSASSA-PSS";
  144. AlgorithmMap["NONEWITHRSAPSS"] = "RAWRSASSA-PSS";
  145. AlgorithmMap["NONEWITHRSASSA-PSS"] = "RAWRSASSA-PSS";
  146. AlgorithmMap["NONEWITHDSA"] = "NONEwithDSA";
  147. AlgorithmMap["DSAWITHNONE"] = "NONEwithDSA";
  148. AlgorithmMap["RAWDSA"] = "NONEwithDSA";
  149. AlgorithmMap["DSA"] = "SHA-1withDSA";
  150. AlgorithmMap["DSAWITHSHA1"] = "SHA-1withDSA";
  151. AlgorithmMap["DSAWITHSHA-1"] = "SHA-1withDSA";
  152. AlgorithmMap["SHA/DSA"] = "SHA-1withDSA";
  153. AlgorithmMap["SHA1/DSA"] = "SHA-1withDSA";
  154. AlgorithmMap["SHA-1/DSA"] = "SHA-1withDSA";
  155. AlgorithmMap["SHA1WITHDSA"] = "SHA-1withDSA";
  156. AlgorithmMap["SHA-1WITHDSA"] = "SHA-1withDSA";
  157. AlgorithmMap[X9ObjectIdentifiers.IdDsaWithSha1.Id] = "SHA-1withDSA";
  158. AlgorithmMap[OiwObjectIdentifiers.DsaWithSha1.Id] = "SHA-1withDSA";
  159. AlgorithmMap["DSAWITHSHA224"] = "SHA-224withDSA";
  160. AlgorithmMap["DSAWITHSHA-224"] = "SHA-224withDSA";
  161. AlgorithmMap["SHA224/DSA"] = "SHA-224withDSA";
  162. AlgorithmMap["SHA-224/DSA"] = "SHA-224withDSA";
  163. AlgorithmMap["SHA224WITHDSA"] = "SHA-224withDSA";
  164. AlgorithmMap["SHA-224WITHDSA"] = "SHA-224withDSA";
  165. AlgorithmMap[NistObjectIdentifiers.DsaWithSha224.Id] = "SHA-224withDSA";
  166. AlgorithmMap["DSAWITHSHA256"] = "SHA-256withDSA";
  167. AlgorithmMap["DSAWITHSHA-256"] = "SHA-256withDSA";
  168. AlgorithmMap["SHA256/DSA"] = "SHA-256withDSA";
  169. AlgorithmMap["SHA-256/DSA"] = "SHA-256withDSA";
  170. AlgorithmMap["SHA256WITHDSA"] = "SHA-256withDSA";
  171. AlgorithmMap["SHA-256WITHDSA"] = "SHA-256withDSA";
  172. AlgorithmMap[NistObjectIdentifiers.DsaWithSha256.Id] = "SHA-256withDSA";
  173. AlgorithmMap["DSAWITHSHA384"] = "SHA-384withDSA";
  174. AlgorithmMap["DSAWITHSHA-384"] = "SHA-384withDSA";
  175. AlgorithmMap["SHA384/DSA"] = "SHA-384withDSA";
  176. AlgorithmMap["SHA-384/DSA"] = "SHA-384withDSA";
  177. AlgorithmMap["SHA384WITHDSA"] = "SHA-384withDSA";
  178. AlgorithmMap["SHA-384WITHDSA"] = "SHA-384withDSA";
  179. AlgorithmMap[NistObjectIdentifiers.DsaWithSha384.Id] = "SHA-384withDSA";
  180. AlgorithmMap["DSAWITHSHA512"] = "SHA-512withDSA";
  181. AlgorithmMap["DSAWITHSHA-512"] = "SHA-512withDSA";
  182. AlgorithmMap["SHA512/DSA"] = "SHA-512withDSA";
  183. AlgorithmMap["SHA-512/DSA"] = "SHA-512withDSA";
  184. AlgorithmMap["SHA512WITHDSA"] = "SHA-512withDSA";
  185. AlgorithmMap["SHA-512WITHDSA"] = "SHA-512withDSA";
  186. AlgorithmMap[NistObjectIdentifiers.DsaWithSha512.Id] = "SHA-512withDSA";
  187. AlgorithmMap["NONEWITHECDSA"] = "NONEwithECDSA";
  188. AlgorithmMap["ECDSAWITHNONE"] = "NONEwithECDSA";
  189. AlgorithmMap["ECDSA"] = "SHA-1withECDSA";
  190. AlgorithmMap["SHA1/ECDSA"] = "SHA-1withECDSA";
  191. AlgorithmMap["SHA-1/ECDSA"] = "SHA-1withECDSA";
  192. AlgorithmMap["ECDSAWITHSHA1"] = "SHA-1withECDSA";
  193. AlgorithmMap["ECDSAWITHSHA-1"] = "SHA-1withECDSA";
  194. AlgorithmMap["SHA1WITHECDSA"] = "SHA-1withECDSA";
  195. AlgorithmMap["SHA-1WITHECDSA"] = "SHA-1withECDSA";
  196. AlgorithmMap[X9ObjectIdentifiers.ECDsaWithSha1.Id] = "SHA-1withECDSA";
  197. AlgorithmMap[TeleTrusTObjectIdentifiers.ECSignWithSha1.Id] = "SHA-1withECDSA";
  198. AlgorithmMap["SHA224/ECDSA"] = "SHA-224withECDSA";
  199. AlgorithmMap["SHA-224/ECDSA"] = "SHA-224withECDSA";
  200. AlgorithmMap["ECDSAWITHSHA224"] = "SHA-224withECDSA";
  201. AlgorithmMap["ECDSAWITHSHA-224"] = "SHA-224withECDSA";
  202. AlgorithmMap["SHA224WITHECDSA"] = "SHA-224withECDSA";
  203. AlgorithmMap["SHA-224WITHECDSA"] = "SHA-224withECDSA";
  204. AlgorithmMap[X9ObjectIdentifiers.ECDsaWithSha224.Id] = "SHA-224withECDSA";
  205. AlgorithmMap["SHA256/ECDSA"] = "SHA-256withECDSA";
  206. AlgorithmMap["SHA-256/ECDSA"] = "SHA-256withECDSA";
  207. AlgorithmMap["ECDSAWITHSHA256"] = "SHA-256withECDSA";
  208. AlgorithmMap["ECDSAWITHSHA-256"] = "SHA-256withECDSA";
  209. AlgorithmMap["SHA256WITHECDSA"] = "SHA-256withECDSA";
  210. AlgorithmMap["SHA-256WITHECDSA"] = "SHA-256withECDSA";
  211. AlgorithmMap[X9ObjectIdentifiers.ECDsaWithSha256.Id] = "SHA-256withECDSA";
  212. AlgorithmMap["SHA384/ECDSA"] = "SHA-384withECDSA";
  213. AlgorithmMap["SHA-384/ECDSA"] = "SHA-384withECDSA";
  214. AlgorithmMap["ECDSAWITHSHA384"] = "SHA-384withECDSA";
  215. AlgorithmMap["ECDSAWITHSHA-384"] = "SHA-384withECDSA";
  216. AlgorithmMap["SHA384WITHECDSA"] = "SHA-384withECDSA";
  217. AlgorithmMap["SHA-384WITHECDSA"] = "SHA-384withECDSA";
  218. AlgorithmMap[X9ObjectIdentifiers.ECDsaWithSha384.Id] = "SHA-384withECDSA";
  219. AlgorithmMap["SHA512/ECDSA"] = "SHA-512withECDSA";
  220. AlgorithmMap["SHA-512/ECDSA"] = "SHA-512withECDSA";
  221. AlgorithmMap["ECDSAWITHSHA512"] = "SHA-512withECDSA";
  222. AlgorithmMap["ECDSAWITHSHA-512"] = "SHA-512withECDSA";
  223. AlgorithmMap["SHA512WITHECDSA"] = "SHA-512withECDSA";
  224. AlgorithmMap["SHA-512WITHECDSA"] = "SHA-512withECDSA";
  225. AlgorithmMap[X9ObjectIdentifiers.ECDsaWithSha512.Id] = "SHA-512withECDSA";
  226. AlgorithmMap["RIPEMD160/ECDSA"] = "RIPEMD160withECDSA";
  227. AlgorithmMap["ECDSAWITHRIPEMD160"] = "RIPEMD160withECDSA";
  228. AlgorithmMap["RIPEMD160WITHECDSA"] = "RIPEMD160withECDSA";
  229. AlgorithmMap[TeleTrusTObjectIdentifiers.ECSignWithRipeMD160.Id] = "RIPEMD160withECDSA";
  230. AlgorithmMap["NONEWITHCVC-ECDSA"] = "NONEwithCVC-ECDSA";
  231. AlgorithmMap["CVC-ECDSAWITHNONE"] = "NONEwithCVC-ECDSA";
  232. AlgorithmMap["SHA1/CVC-ECDSA"] = "SHA-1withCVC-ECDSA";
  233. AlgorithmMap["SHA-1/CVC-ECDSA"] = "SHA-1withCVC-ECDSA";
  234. AlgorithmMap["CVC-ECDSAWITHSHA1"] = "SHA-1withCVC-ECDSA";
  235. AlgorithmMap["CVC-ECDSAWITHSHA-1"] = "SHA-1withCVC-ECDSA";
  236. AlgorithmMap["SHA1WITHCVC-ECDSA"] = "SHA-1withCVC-ECDSA";
  237. AlgorithmMap["SHA-1WITHCVC-ECDSA"] = "SHA-1withCVC-ECDSA";
  238. AlgorithmMap[EacObjectIdentifiers.id_TA_ECDSA_SHA_1.Id] = "SHA-1withCVC-ECDSA";
  239. AlgorithmMap["SHA224/CVC-ECDSA"] = "SHA-224withCVC-ECDSA";
  240. AlgorithmMap["SHA-224/CVC-ECDSA"] = "SHA-224withCVC-ECDSA";
  241. AlgorithmMap["CVC-ECDSAWITHSHA224"] = "SHA-224withCVC-ECDSA";
  242. AlgorithmMap["CVC-ECDSAWITHSHA-224"] = "SHA-224withCVC-ECDSA";
  243. AlgorithmMap["SHA224WITHCVC-ECDSA"] = "SHA-224withCVC-ECDSA";
  244. AlgorithmMap["SHA-224WITHCVC-ECDSA"] = "SHA-224withCVC-ECDSA";
  245. AlgorithmMap[EacObjectIdentifiers.id_TA_ECDSA_SHA_224.Id] = "SHA-224withCVC-ECDSA";
  246. AlgorithmMap["SHA256/CVC-ECDSA"] = "SHA-256withCVC-ECDSA";
  247. AlgorithmMap["SHA-256/CVC-ECDSA"] = "SHA-256withCVC-ECDSA";
  248. AlgorithmMap["CVC-ECDSAWITHSHA256"] = "SHA-256withCVC-ECDSA";
  249. AlgorithmMap["CVC-ECDSAWITHSHA-256"] = "SHA-256withCVC-ECDSA";
  250. AlgorithmMap["SHA256WITHCVC-ECDSA"] = "SHA-256withCVC-ECDSA";
  251. AlgorithmMap["SHA-256WITHCVC-ECDSA"] = "SHA-256withCVC-ECDSA";
  252. AlgorithmMap[EacObjectIdentifiers.id_TA_ECDSA_SHA_256.Id] = "SHA-256withCVC-ECDSA";
  253. AlgorithmMap["SHA384/CVC-ECDSA"] = "SHA-384withCVC-ECDSA";
  254. AlgorithmMap["SHA-384/CVC-ECDSA"] = "SHA-384withCVC-ECDSA";
  255. AlgorithmMap["CVC-ECDSAWITHSHA384"] = "SHA-384withCVC-ECDSA";
  256. AlgorithmMap["CVC-ECDSAWITHSHA-384"] = "SHA-384withCVC-ECDSA";
  257. AlgorithmMap["SHA384WITHCVC-ECDSA"] = "SHA-384withCVC-ECDSA";
  258. AlgorithmMap["SHA-384WITHCVC-ECDSA"] = "SHA-384withCVC-ECDSA";
  259. AlgorithmMap[EacObjectIdentifiers.id_TA_ECDSA_SHA_384.Id] = "SHA-384withCVC-ECDSA";
  260. AlgorithmMap["SHA512/CVC-ECDSA"] = "SHA-512withCVC-ECDSA";
  261. AlgorithmMap["SHA-512/CVC-ECDSA"] = "SHA-512withCVC-ECDSA";
  262. AlgorithmMap["CVC-ECDSAWITHSHA512"] = "SHA-512withCVC-ECDSA";
  263. AlgorithmMap["CVC-ECDSAWITHSHA-512"] = "SHA-512withCVC-ECDSA";
  264. AlgorithmMap["SHA512WITHCVC-ECDSA"] = "SHA-512withCVC-ECDSA";
  265. AlgorithmMap["SHA-512WITHCVC-ECDSA"] = "SHA-512withCVC-ECDSA";
  266. AlgorithmMap[EacObjectIdentifiers.id_TA_ECDSA_SHA_512.Id] = "SHA-512withCVC-ECDSA";
  267. AlgorithmMap["NONEWITHPLAIN-ECDSA"] = "NONEwithPLAIN-ECDSA";
  268. AlgorithmMap["PLAIN-ECDSAWITHNONE"] = "NONEwithPLAIN-ECDSA";
  269. AlgorithmMap["SHA1/PLAIN-ECDSA"] = "SHA-1withPLAIN-ECDSA";
  270. AlgorithmMap["SHA-1/PLAIN-ECDSA"] = "SHA-1withPLAIN-ECDSA";
  271. AlgorithmMap["PLAIN-ECDSAWITHSHA1"] = "SHA-1withPLAIN-ECDSA";
  272. AlgorithmMap["PLAIN-ECDSAWITHSHA-1"] = "SHA-1withPLAIN-ECDSA";
  273. AlgorithmMap["SHA1WITHPLAIN-ECDSA"] = "SHA-1withPLAIN-ECDSA";
  274. AlgorithmMap["SHA-1WITHPLAIN-ECDSA"] = "SHA-1withPLAIN-ECDSA";
  275. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_SHA1.Id] = "SHA-1withPLAIN-ECDSA";
  276. AlgorithmMap["SHA224/PLAIN-ECDSA"] = "SHA-224withPLAIN-ECDSA";
  277. AlgorithmMap["SHA-224/PLAIN-ECDSA"] = "SHA-224withPLAIN-ECDSA";
  278. AlgorithmMap["PLAIN-ECDSAWITHSHA224"] = "SHA-224withPLAIN-ECDSA";
  279. AlgorithmMap["PLAIN-ECDSAWITHSHA-224"] = "SHA-224withPLAIN-ECDSA";
  280. AlgorithmMap["SHA224WITHPLAIN-ECDSA"] = "SHA-224withPLAIN-ECDSA";
  281. AlgorithmMap["SHA-224WITHPLAIN-ECDSA"] = "SHA-224withPLAIN-ECDSA";
  282. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_SHA224.Id] = "SHA-224withPLAIN-ECDSA";
  283. AlgorithmMap["SHA256/PLAIN-ECDSA"] = "SHA-256withPLAIN-ECDSA";
  284. AlgorithmMap["SHA-256/PLAIN-ECDSA"] = "SHA-256withPLAIN-ECDSA";
  285. AlgorithmMap["PLAIN-ECDSAWITHSHA256"] = "SHA-256withPLAIN-ECDSA";
  286. AlgorithmMap["PLAIN-ECDSAWITHSHA-256"] = "SHA-256withPLAIN-ECDSA";
  287. AlgorithmMap["SHA256WITHPLAIN-ECDSA"] = "SHA-256withPLAIN-ECDSA";
  288. AlgorithmMap["SHA-256WITHPLAIN-ECDSA"] = "SHA-256withPLAIN-ECDSA";
  289. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_SHA256.Id] = "SHA-256withPLAIN-ECDSA";
  290. AlgorithmMap["SHA384/PLAIN-ECDSA"] = "SHA-384withPLAIN-ECDSA";
  291. AlgorithmMap["SHA-384/PLAIN-ECDSA"] = "SHA-384withPLAIN-ECDSA";
  292. AlgorithmMap["PLAIN-ECDSAWITHSHA384"] = "SHA-384withPLAIN-ECDSA";
  293. AlgorithmMap["PLAIN-ECDSAWITHSHA-384"] = "SHA-384withPLAIN-ECDSA";
  294. AlgorithmMap["SHA384WITHPLAIN-ECDSA"] = "SHA-384withPLAIN-ECDSA";
  295. AlgorithmMap["SHA-384WITHPLAIN-ECDSA"] = "SHA-384withPLAIN-ECDSA";
  296. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_SHA384.Id] = "SHA-384withPLAIN-ECDSA";
  297. AlgorithmMap["SHA512/PLAIN-ECDSA"] = "SHA-512withPLAIN-ECDSA";
  298. AlgorithmMap["SHA-512/PLAIN-ECDSA"] = "SHA-512withPLAIN-ECDSA";
  299. AlgorithmMap["PLAIN-ECDSAWITHSHA512"] = "SHA-512withPLAIN-ECDSA";
  300. AlgorithmMap["PLAIN-ECDSAWITHSHA-512"] = "SHA-512withPLAIN-ECDSA";
  301. AlgorithmMap["SHA512WITHPLAIN-ECDSA"] = "SHA-512withPLAIN-ECDSA";
  302. AlgorithmMap["SHA-512WITHPLAIN-ECDSA"] = "SHA-512withPLAIN-ECDSA";
  303. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_SHA512.Id] = "SHA-512withPLAIN-ECDSA";
  304. AlgorithmMap["RIPEMD160/PLAIN-ECDSA"] = "RIPEMD160withPLAIN-ECDSA";
  305. AlgorithmMap["PLAIN-ECDSAWITHRIPEMD160"] = "RIPEMD160withPLAIN-ECDSA";
  306. AlgorithmMap["RIPEMD160WITHPLAIN-ECDSA"] = "RIPEMD160withPLAIN-ECDSA";
  307. AlgorithmMap[BsiObjectIdentifiers.ecdsa_plain_RIPEMD160.Id] = "RIPEMD160withPLAIN-ECDSA";
  308. AlgorithmMap["SHA1WITHECNR"] = "SHA-1withECNR";
  309. AlgorithmMap["SHA-1WITHECNR"] = "SHA-1withECNR";
  310. AlgorithmMap["SHA224WITHECNR"] = "SHA-224withECNR";
  311. AlgorithmMap["SHA-224WITHECNR"] = "SHA-224withECNR";
  312. AlgorithmMap["SHA256WITHECNR"] = "SHA-256withECNR";
  313. AlgorithmMap["SHA-256WITHECNR"] = "SHA-256withECNR";
  314. AlgorithmMap["SHA384WITHECNR"] = "SHA-384withECNR";
  315. AlgorithmMap["SHA-384WITHECNR"] = "SHA-384withECNR";
  316. AlgorithmMap["SHA512WITHECNR"] = "SHA-512withECNR";
  317. AlgorithmMap["SHA-512WITHECNR"] = "SHA-512withECNR";
  318. AlgorithmMap["GOST-3410"] = "GOST3410";
  319. AlgorithmMap["GOST-3410-94"] = "GOST3410";
  320. AlgorithmMap["GOST3411WITHGOST3410"] = "GOST3410";
  321. AlgorithmMap["GOST3411/GOST3410"] = "GOST3410";
  322. AlgorithmMap[CryptoProObjectIdentifiers.GostR3411x94WithGostR3410x94.Id] = "GOST3410";
  323. AlgorithmMap["ECGOST-3410"] = "ECGOST3410";
  324. AlgorithmMap["GOST-3410-2001"] = "ECGOST3410";
  325. AlgorithmMap["GOST3411WITHECGOST3410"] = "ECGOST3410";
  326. AlgorithmMap["GOST3411/ECGOST3410"] = "ECGOST3410";
  327. AlgorithmMap[CryptoProObjectIdentifiers.GostR3411x94WithGostR3410x2001.Id] = "ECGOST3410";
  328. AlgorithmMap["GOST-3410-2012-256"] = "ECGOST3410-2012-256";
  329. AlgorithmMap["GOST3411WITHECGOST3410-2012-256"] = "ECGOST3410-2012-256";
  330. AlgorithmMap["GOST3411-2012-256WITHECGOST3410"] = "ECGOST3410-2012-256";
  331. AlgorithmMap["GOST3411-2012-256WITHECGOST3410-2012-256"] = "ECGOST3410-2012-256";
  332. AlgorithmMap["GOST3411-2012-256/ECGOST3410"] = "ECGOST3410-2012-256";
  333. AlgorithmMap["GOST3411-2012-256/ECGOST3410-2012-256"] = "ECGOST3410-2012-256";
  334. AlgorithmMap[RosstandartObjectIdentifiers.id_tc26_signwithdigest_gost_3410_12_256.Id] =
  335. "ECGOST3410-2012-256";
  336. AlgorithmMap["GOST-3410-2012-512"] = "ECGOST3410-2012-512";
  337. AlgorithmMap["GOST3411WITHECGOST3410-2012-512"] = "ECGOST3410-2012-512";
  338. AlgorithmMap["GOST3411-2012-512WITHECGOST3410"] = "ECGOST3410-2012-512";
  339. AlgorithmMap["GOST3411-2012-512WITHECGOST3410-2012-512"] = "ECGOST3410-2012-512";
  340. AlgorithmMap["GOST3411-2012-512/ECGOST3410"] = "ECGOST3410-2012-512";
  341. AlgorithmMap["GOST3411-2012-512/ECGOST3410-2012-512"] = "ECGOST3410-2012-512";
  342. AlgorithmMap[RosstandartObjectIdentifiers.id_tc26_signwithdigest_gost_3410_12_512.Id] =
  343. "ECGOST3410-2012-512";
  344. AlgorithmMap["ED25519"] = "Ed25519";
  345. AlgorithmMap[EdECObjectIdentifiers.id_Ed25519.Id] = "Ed25519";
  346. AlgorithmMap["ED25519CTX"] = "Ed25519ctx";
  347. AlgorithmMap["ED25519PH"] = "Ed25519ph";
  348. AlgorithmMap["ED448"] = "Ed448";
  349. AlgorithmMap[EdECObjectIdentifiers.id_Ed448.Id] = "Ed448";
  350. AlgorithmMap["ED448PH"] = "Ed448ph";
  351. AlgorithmMap["SHA256WITHSM2"] = "SHA256withSM2";
  352. AlgorithmMap[GMObjectIdentifiers.sm2sign_with_sha256.Id] = "SHA256withSM2";
  353. AlgorithmMap["SM3WITHSM2"] = "SM3withSM2";
  354. AlgorithmMap[GMObjectIdentifiers.sm2sign_with_sm3.Id] = "SM3withSM2";
  355. Oids["MD2withRSA"] = PkcsObjectIdentifiers.MD2WithRsaEncryption;
  356. Oids["MD4withRSA"] = PkcsObjectIdentifiers.MD4WithRsaEncryption;
  357. Oids["MD5withRSA"] = PkcsObjectIdentifiers.MD5WithRsaEncryption;
  358. Oids["SHA-1withRSA"] = PkcsObjectIdentifiers.Sha1WithRsaEncryption;
  359. Oids["SHA-224withRSA"] = PkcsObjectIdentifiers.Sha224WithRsaEncryption;
  360. Oids["SHA-256withRSA"] = PkcsObjectIdentifiers.Sha256WithRsaEncryption;
  361. Oids["SHA-384withRSA"] = PkcsObjectIdentifiers.Sha384WithRsaEncryption;
  362. Oids["SHA-512withRSA"] = PkcsObjectIdentifiers.Sha512WithRsaEncryption;
  363. Oids["SHA-512(224)withRSA"] = PkcsObjectIdentifiers.Sha512_224WithRSAEncryption;
  364. Oids["SHA-512(256)withRSA"] = PkcsObjectIdentifiers.Sha512_256WithRSAEncryption;
  365. Oids["SHA3-224withRSA"] = NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_224;
  366. Oids["SHA3-256withRSA"] = NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_256;
  367. Oids["SHA3-384withRSA"] = NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_384;
  368. Oids["SHA3-512withRSA"] = NistObjectIdentifiers.IdRsassaPkcs1V15WithSha3_512;
  369. Oids["PSSwithRSA"] = PkcsObjectIdentifiers.IdRsassaPss;
  370. Oids["SHA-1withRSAandMGF1"] = PkcsObjectIdentifiers.IdRsassaPss;
  371. Oids["SHA-224withRSAandMGF1"] = PkcsObjectIdentifiers.IdRsassaPss;
  372. Oids["SHA-256withRSAandMGF1"] = PkcsObjectIdentifiers.IdRsassaPss;
  373. Oids["SHA-384withRSAandMGF1"] = PkcsObjectIdentifiers.IdRsassaPss;
  374. Oids["SHA-512withRSAandMGF1"] = PkcsObjectIdentifiers.IdRsassaPss;
  375. Oids["RIPEMD128withRSA"] = TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD128;
  376. Oids["RIPEMD160withRSA"] = TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD160;
  377. Oids["RIPEMD256withRSA"] = TeleTrusTObjectIdentifiers.RsaSignatureWithRipeMD256;
  378. Oids["SHA-1withDSA"] = X9ObjectIdentifiers.IdDsaWithSha1;
  379. Oids["SHA-1withECDSA"] = X9ObjectIdentifiers.ECDsaWithSha1;
  380. Oids["SHA-224withECDSA"] = X9ObjectIdentifiers.ECDsaWithSha224;
  381. Oids["SHA-256withECDSA"] = X9ObjectIdentifiers.ECDsaWithSha256;
  382. Oids["SHA-384withECDSA"] = X9ObjectIdentifiers.ECDsaWithSha384;
  383. Oids["SHA-512withECDSA"] = X9ObjectIdentifiers.ECDsaWithSha512;
  384. Oids["RIPEMD160withECDSA"] = TeleTrusTObjectIdentifiers.ECSignWithRipeMD160;
  385. Oids["SHA-1withCVC-ECDSA"] = EacObjectIdentifiers.id_TA_ECDSA_SHA_1;
  386. Oids["SHA-224withCVC-ECDSA"] = EacObjectIdentifiers.id_TA_ECDSA_SHA_224;
  387. Oids["SHA-256withCVC-ECDSA"] = EacObjectIdentifiers.id_TA_ECDSA_SHA_256;
  388. Oids["SHA-384withCVC-ECDSA"] = EacObjectIdentifiers.id_TA_ECDSA_SHA_384;
  389. Oids["SHA-512withCVC-ECDSA"] = EacObjectIdentifiers.id_TA_ECDSA_SHA_512;
  390. Oids["SHA-1withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_SHA1;
  391. Oids["SHA-224withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_SHA224;
  392. Oids["SHA-256withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_SHA256;
  393. Oids["SHA-384withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_SHA384;
  394. Oids["SHA-512withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_SHA512;
  395. Oids["RIPEMD160withPLAIN-ECDSA"] = BsiObjectIdentifiers.ecdsa_plain_RIPEMD160;
  396. Oids["GOST3410"] = CryptoProObjectIdentifiers.GostR3411x94WithGostR3410x94;
  397. Oids["ECGOST3410"] = CryptoProObjectIdentifiers.GostR3411x94WithGostR3410x2001;
  398. Oids["ECGOST3410-2012-256"] = RosstandartObjectIdentifiers.id_tc26_signwithdigest_gost_3410_12_256;
  399. Oids["ECGOST3410-2012-512"] = RosstandartObjectIdentifiers.id_tc26_signwithdigest_gost_3410_12_512;
  400. Oids["Ed25519"] = EdECObjectIdentifiers.id_Ed25519;
  401. Oids["Ed448"] = EdECObjectIdentifiers.id_Ed448;
  402. Oids["SHA256withSM2"] = GMObjectIdentifiers.sm2sign_with_sha256;
  403. Oids["SM3withSM2"] = GMObjectIdentifiers.sm2sign_with_sm3;
  404. }
  405. /// <summary>
  406. /// Returns an ObjectIdentifier for a given encoding.
  407. /// </summary>
  408. /// <param name="mechanism">A string representation of the encoding.</param>
  409. /// <returns>A DerObjectIdentifier, null if the OID is not available.</returns>
  410. // TODO Don't really want to support this
  411. public static DerObjectIdentifier GetObjectIdentifier(string mechanism)
  412. {
  413. if (mechanism == null)
  414. throw new ArgumentNullException(nameof(mechanism));
  415. string algorithm = CollectionUtilities.GetValueOrKey(AlgorithmMap, mechanism);
  416. return CollectionUtilities.GetValueOrNull(Oids, algorithm);
  417. }
  418. public static ICollection<string> Algorithms
  419. {
  420. get { return CollectionUtilities.ReadOnly(Oids.Keys); }
  421. }
  422. public static Asn1Encodable GetDefaultX509Parameters(DerObjectIdentifier id)
  423. {
  424. return GetDefaultX509Parameters(id.Id);
  425. }
  426. public static Asn1Encodable GetDefaultX509Parameters(string algorithm)
  427. {
  428. if (algorithm == null)
  429. throw new ArgumentNullException(nameof(algorithm));
  430. string mechanism = CollectionUtilities.GetValueOrKey(AlgorithmMap, algorithm);
  431. if (mechanism == "PSSwithRSA")
  432. {
  433. // TODO The Sha1Digest here is a default. In JCE version, the actual digest
  434. // to be used can be overridden by subsequent parameter settings.
  435. return GetPssX509Parameters("SHA-1");
  436. }
  437. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withRSAandMGF1"))
  438. {
  439. string digestName = mechanism.Substring(0, mechanism.Length - "withRSAandMGF1".Length);
  440. return GetPssX509Parameters(digestName);
  441. }
  442. return DerNull.Instance;
  443. }
  444. private static Asn1Encodable GetPssX509Parameters(
  445. string digestName)
  446. {
  447. AlgorithmIdentifier hashAlgorithm = new AlgorithmIdentifier(
  448. DigestUtilities.GetObjectIdentifier(digestName), DerNull.Instance);
  449. // TODO Is it possible for the MGF hash alg to be different from the PSS one?
  450. AlgorithmIdentifier maskGenAlgorithm = new AlgorithmIdentifier(
  451. PkcsObjectIdentifiers.IdMgf1, hashAlgorithm);
  452. int saltLen = DigestUtilities.GetDigest(digestName).GetDigestSize();
  453. return new RsassaPssParameters(hashAlgorithm, maskGenAlgorithm,
  454. new DerInteger(saltLen), new DerInteger(1));
  455. }
  456. public static ISigner GetSigner(DerObjectIdentifier id)
  457. {
  458. return GetSigner(id.Id);
  459. }
  460. public static ISigner GetSigner(string algorithm)
  461. {
  462. if (algorithm == null)
  463. throw new ArgumentNullException(nameof(algorithm));
  464. string mechanism = CollectionUtilities.GetValueOrKey(AlgorithmMap, algorithm.ToUpperInvariant());
  465. if (Org.BouncyCastle.Utilities.Platform.StartsWith(mechanism, "Ed"))
  466. {
  467. if (mechanism.Equals("Ed25519"))
  468. {
  469. return new Ed25519Signer();
  470. }
  471. if (mechanism.Equals("Ed25519ctx"))
  472. {
  473. return new Ed25519ctxSigner(Arrays.EmptyBytes);
  474. }
  475. if (mechanism.Equals("Ed25519ph"))
  476. {
  477. return new Ed25519phSigner(Arrays.EmptyBytes);
  478. }
  479. if (mechanism.Equals("Ed448"))
  480. {
  481. return new Ed448Signer(Arrays.EmptyBytes);
  482. }
  483. if (mechanism.Equals("Ed448ph"))
  484. {
  485. return new Ed448phSigner(Arrays.EmptyBytes);
  486. }
  487. }
  488. if (mechanism.Equals("RSA"))
  489. {
  490. return (new RsaDigestSigner(new NullDigest(), (AlgorithmIdentifier)null));
  491. }
  492. if (mechanism.Equals("RAWRSASSA-PSS"))
  493. {
  494. // TODO Add support for other parameter settings
  495. return PssSigner.CreateRawSigner(new RsaBlindedEngine(), new Sha1Digest());
  496. }
  497. if (mechanism.Equals("PSSwithRSA"))
  498. {
  499. // TODO The Sha1Digest here is a default. In JCE version, the actual digest
  500. // to be used can be overridden by subsequent parameter settings.
  501. return new PssSigner(new RsaBlindedEngine(), new Sha1Digest());
  502. }
  503. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withRSA"))
  504. {
  505. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  506. IDigest digest = DigestUtilities.GetDigest(digestName);
  507. return new RsaDigestSigner(digest);
  508. }
  509. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withRSAandMGF1"))
  510. {
  511. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  512. IDigest digest = DigestUtilities.GetDigest(digestName);
  513. return new PssSigner(new RsaBlindedEngine(), digest);
  514. }
  515. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withDSA"))
  516. {
  517. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  518. IDigest digest = DigestUtilities.GetDigest(digestName);
  519. return new DsaDigestSigner(new DsaSigner(), digest);
  520. }
  521. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withECDSA"))
  522. {
  523. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  524. IDigest digest = DigestUtilities.GetDigest(digestName);
  525. return new DsaDigestSigner(new ECDsaSigner(), digest);
  526. }
  527. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withCVC-ECDSA")
  528. || Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withPLAIN-ECDSA"))
  529. {
  530. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  531. IDigest digest = DigestUtilities.GetDigest(digestName);
  532. return new DsaDigestSigner(new ECDsaSigner(), digest, PlainDsaEncoding.Instance);
  533. }
  534. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withECNR"))
  535. {
  536. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  537. IDigest digest = DigestUtilities.GetDigest(digestName);
  538. return new DsaDigestSigner(new ECNRSigner(), digest);
  539. }
  540. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "withSM2"))
  541. {
  542. string digestName = mechanism.Substring(0, mechanism.LastIndexOf("with"));
  543. IDigest digest = DigestUtilities.GetDigest(digestName);
  544. return new SM2Signer(digest);
  545. }
  546. if (mechanism.Equals("GOST3410"))
  547. {
  548. return new Gost3410DigestSigner(new Gost3410Signer(), new Gost3411Digest());
  549. }
  550. if (mechanism.Equals("ECGOST3410"))
  551. {
  552. return new Gost3410DigestSigner(new ECGost3410Signer(), new Gost3411Digest());
  553. }
  554. if (mechanism.Equals("ECGOST3410-2012-256"))
  555. {
  556. return new Gost3410DigestSigner(new ECGost3410Signer(), new Gost3411_2012_256Digest());
  557. }
  558. if (mechanism.Equals("ECGOST3410-2012-512"))
  559. {
  560. return new Gost3410DigestSigner(new ECGost3410Signer(), new Gost3411_2012_512Digest());
  561. }
  562. if (mechanism.Equals("SHA1WITHRSA/ISO9796-2"))
  563. {
  564. return new Iso9796d2Signer(new RsaBlindedEngine(), new Sha1Digest(), true);
  565. }
  566. if (mechanism.Equals("MD5WITHRSA/ISO9796-2"))
  567. {
  568. return new Iso9796d2Signer(new RsaBlindedEngine(), new MD5Digest(), true);
  569. }
  570. if (mechanism.Equals("RIPEMD160WITHRSA/ISO9796-2"))
  571. {
  572. return new Iso9796d2Signer(new RsaBlindedEngine(), new RipeMD160Digest(), true);
  573. }
  574. if (Org.BouncyCastle.Utilities.Platform.EndsWith(mechanism, "/X9.31"))
  575. {
  576. string x931 = mechanism.Substring(0, mechanism.Length - "/X9.31".Length);
  577. int withPos = Org.BouncyCastle.Utilities.Platform.IndexOf(x931, "WITH");
  578. if (withPos > 0)
  579. {
  580. int endPos = withPos + "WITH".Length;
  581. string digestName = x931.Substring(0, withPos);
  582. IDigest digest = DigestUtilities.GetDigest(digestName);
  583. string cipherName = x931.Substring(endPos, x931.Length - endPos);
  584. if (cipherName.Equals("RSA"))
  585. {
  586. IAsymmetricBlockCipher cipher = new RsaBlindedEngine();
  587. return new X931Signer(cipher, digest);
  588. }
  589. }
  590. }
  591. throw new SecurityUtilityException("Signer " + algorithm + " not recognised.");
  592. }
  593. public static string GetEncodingName(DerObjectIdentifier oid)
  594. {
  595. return CollectionUtilities.GetValueOrNull(AlgorithmMap, oid.Id);
  596. }
  597. public static ISigner InitSigner(DerObjectIdentifier algorithmOid, bool forSigning, AsymmetricKeyParameter privateKey, SecureRandom random)
  598. {
  599. return InitSigner(algorithmOid.Id, forSigning, privateKey, random);
  600. }
  601. public static ISigner InitSigner(string algorithm, bool forSigning, AsymmetricKeyParameter privateKey, SecureRandom random)
  602. {
  603. ISigner signer = GetSigner(algorithm);
  604. signer.Init(forSigning, ParameterUtilities.WithRandom(privateKey, random));
  605. return signer;
  606. }
  607. }
  608. }
  609. #pragma warning restore
  610. #endif