1 // Copyright 2014 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYPTO_H_
6 #define CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYPTO_H_
10 #include "base/basictypes.h"
12 // Implementation of Crypto support for networking private API.
13 // Based on chromeos_public//src/platform/shill/shims/crypto_util.cc
14 class NetworkingPrivateCrypto
{
16 NetworkingPrivateCrypto();
17 ~NetworkingPrivateCrypto();
19 // Verify that credentials described by |certificate| and |signed_data| are
22 // 1) The MAC address listed in the certificate matches |connected_mac|.
23 // 2) The certificate is a valid PEM encoded certificate signed by trusted CA.
24 // 3) |signature| is a valid signature for |data|, using the public key in
26 bool VerifyCredentials(const std::string
& certificate
,
27 const std::string
& signature
,
28 const std::string
& data
,
29 const std::string
& connected_mac
);
31 // Encrypt |data| with |public_key|. |public_key| is a DER-encoded
32 // RSAPublicKey. |data| is some string of bytes that is smaller than the
33 // maximum length permissible for PKCS#1 v1.5 with a key of |public_key| size.
35 // Returns true on success, storing the encrypted result in
36 // |encrypted_output|.
37 bool EncryptByteString(const std::vector
<uint8
>& public_key
,
38 const std::string
& data
,
39 std::vector
<uint8
>* encrypted_output
);
42 friend class NetworkingPrivateCryptoTest
;
44 // Decrypt |encrypted_data| with |private_key_pem|. |private_key_pem| is the
45 // PKCS8 PEM-encoded private key. |encrypted_data| is data encrypted with
46 // EncryptByteString. Used in NetworkingPrivateCryptoTest::EncryptString test.
48 // Returns true on success, storing the decrypted result in
49 // |decrypted_output|.
50 bool DecryptByteString(const std::string
& private_key_pem
,
51 const std::vector
<uint8
>& encrypted_data
,
52 std::string
* decrypted_output
);
54 DISALLOW_COPY_AND_ASSIGN(NetworkingPrivateCrypto
);
57 #endif // CHROME_COMMON_EXTENSIONS_API_NETWORKING_PRIVATE_NETWORKING_PRIVATE_CRYPTO_H_