1 /* $NetBSD: test_soft_pkcs11.c,v 1.1.1.2 2014/04/24 12:45:42 pettai Exp $ */
4 * Copyright (c) 2006 - 2008 Kungliga Tekniska Högskolan
5 * (Royal Institute of Technology, Stockholm, Sweden).
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
12 * 1. Redistributions of source code must retain the above copyright
13 * notice, this list of conditions and the following disclaimer.
15 * 2. Redistributions in binary form must reproduce the above copyright
16 * notice, this list of conditions and the following disclaimer in the
17 * documentation and/or other materials provided with the distribution.
19 * 3. Neither the name of the Institute nor the names of its contributors
20 * may be used to endorse or promote products derived from this software
21 * without specific prior written permission.
23 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
40 static CK_FUNCTION_LIST_PTR func
;
44 find_object(CK_SESSION_HANDLE session
,
46 CK_OBJECT_CLASS key_class
,
47 CK_OBJECT_HANDLE_PTR object
)
49 CK_ULONG object_count
;
51 CK_ATTRIBUTE search_data
[] = {
53 {CKA_CLASS
, &key_class
, sizeof(key_class
)}
55 CK_ULONG num_search_data
= sizeof(search_data
)/sizeof(search_data
[0]);
57 search_data
[0].ulValueLen
= strlen(id
);
59 ret
= (*func
->C_FindObjectsInit
)(session
, search_data
, num_search_data
);
63 ret
= (*func
->C_FindObjects
)(session
, object
, 1, &object_count
);
66 if (object_count
== 0) {
67 printf("found no object\n");
71 ret
= (*func
->C_FindObjectsFinal
)(session
);
78 static char *sighash
= "hej";
79 static char signature
[1024];
83 main(int argc
, char **argv
)
85 CK_SLOT_ID_PTR slot_ids
;
89 CK_SLOT_INFO slot_info
;
90 CK_TOKEN_INFO token_info
;
91 CK_SESSION_HANDLE session
;
92 CK_OBJECT_HANDLE
public, private;
94 ret
= C_GetFunctionList(&func
);
96 errx(1, "C_GetFunctionList failed: %d", (int)ret
);
98 (*func
->C_Initialize
)(NULL_PTR
);
100 ret
= (*func
->C_GetSlotList
)(FALSE
, NULL
, &num_slots
);
102 errx(1, "C_GetSlotList1 failed: %d", (int)ret
);
107 if ((slot_ids
= calloc(1, num_slots
* sizeof(*slot_ids
))) == NULL
)
108 err(1, "alloc slots failed");
110 ret
= (*func
->C_GetSlotList
)(FALSE
, slot_ids
, &num_slots
);
112 errx(1, "C_GetSlotList2 failed: %d", (int)ret
);
117 ret
= (*func
->C_GetSlotInfo
)(slot
, &slot_info
);
119 errx(1, "C_GetSlotInfo failed: %d", (int)ret
);
121 if ((slot_info
.flags
& CKF_TOKEN_PRESENT
) == 0)
122 errx(1, "no token present");
124 ret
= (*func
->C_OpenSession
)(slot
, CKF_SERIAL_SESSION
,
125 NULL
, NULL
, &session
);
127 errx(1, "C_OpenSession failed: %d", (int)ret
);
129 ret
= (*func
->C_GetTokenInfo
)(slot
, &token_info
);
131 errx(1, "C_GetTokenInfo1 failed: %d", (int)ret
);
133 if (token_info
.flags
& CKF_LOGIN_REQUIRED
) {
134 ret
= (*func
->C_Login
)(session
, CKU_USER
,
135 (unsigned char*)"foobar", 6);
137 errx(1, "C_Login failed: %d", (int)ret
);
140 ret
= (*func
->C_GetTokenInfo
)(slot
, &token_info
);
142 errx(1, "C_GetTokenInfo2 failed: %d", (int)ret
);
144 if (token_info
.flags
& CKF_LOGIN_REQUIRED
)
145 errx(1, "login required, even after C_Login");
147 ret
= find_object(session
, "cert", CKO_PUBLIC_KEY
, &public);
149 errx(1, "find cert failed: %d", (int)ret
);
150 ret
= find_object(session
, "cert", CKO_PRIVATE_KEY
, &private);
152 errx(1, "find private key failed: %d", (int)ret
);
156 CK_MECHANISM mechanism
;
158 memset(&mechanism
, 0, sizeof(mechanism
));
159 mechanism
.mechanism
= CKM_RSA_PKCS
;
161 ret
= (*func
->C_SignInit
)(session
, &mechanism
, private);
165 ck_sigsize
= sizeof(signature
);
166 ret
= (*func
->C_Sign
)(session
, (CK_BYTE
*)sighash
, strlen(sighash
),
167 (CK_BYTE
*)signature
, &ck_sigsize
);
169 printf("C_Sign failed with: %d\n", (int)ret
);
173 ret
= (*func
->C_VerifyInit
)(session
, &mechanism
, public);
177 ret
= (*func
->C_Verify
)(session
, (CK_BYTE
*)signature
, ck_sigsize
,
178 (CK_BYTE
*)sighash
, strlen(sighash
));
180 printf("message: %d\n", (int)ret
);
187 CK_ULONG ck_sigsize
, outsize
;
188 CK_MECHANISM mechanism
;
191 memset(&mechanism
, 0, sizeof(mechanism
));
192 mechanism
.mechanism
= CKM_RSA_PKCS
;
194 ret
= (*func
->C_EncryptInit
)(session
, &mechanism
, public);
198 ck_sigsize
= sizeof(signature
);
199 ret
= (*func
->C_Encrypt
)(session
, (CK_BYTE
*)sighash
, strlen(sighash
),
200 (CK_BYTE
*)signature
, &ck_sigsize
);
202 printf("message: %d\n", (int)ret
);
206 ret
= (*func
->C_DecryptInit
)(session
, &mechanism
, private);
210 outsize
= sizeof(outdata
);
211 ret
= (*func
->C_Decrypt
)(session
, (CK_BYTE
*)signature
, ck_sigsize
,
212 (CK_BYTE
*)outdata
, &outsize
);
214 printf("message: %d\n", (int)ret
);
218 if (ct_memcmp(sighash
, outdata
, strlen(sighash
)) != 0)
223 ret
= (*func
->C_CloseSession
)(session
);
227 (*func
->C_Finalize
)(NULL_PTR
);