Qt
Internal/Contributor docs for the Qt SDK. Note: These are NOT official API docs; those are found at https://doc.qt.io/
Loading...
Searching...
No Matches
qtlskey_openssl_p.h
Go to the documentation of this file.
1// Copyright (C) 2021 The Qt Company Ltd.
2// SPDX-License-Identifier: LicenseRef-Qt-Commercial OR LGPL-3.0-only OR GPL-2.0-only OR GPL-3.0-only
3// Qt-Security score:significant reason:default
4
5#ifndef QTLSKEY_OPENSSL_H
6#define QTLSKEY_OPENSSL_H
7
8//
9// W A R N I N G
10// -------------
11//
12// This file is not part of the Qt API. It exists purely as an
13// implementation detail. This header file may change from version to
14// version without notice, or even be removed.
15//
16// We mean it.
17//
18
19#include <QtNetwork/private/qtnetworkglobal_p.h>
20
21#include "../shared/qtlskey_base_p.h"
22
23#include <QtNetwork/private/qtlsbackend_p.h>
24#include <QtNetwork/private/qsslkey_p.h>
25
26#include <QtNetwork/qssl.h>
27
28#include <QtCore/qbytearray.h>
29#include <QtCore/qglobal.h>
30
31#include <openssl/rsa.h>
32#include <openssl/dsa.h>
33#include <openssl/dh.h>
34
35#ifdef OPENSSL_NO_DEPRECATED_3_0
36typedef struct evp_pkey_st EVP_PKEY;
37typedef struct dsa_st DSA;
38typedef struct rsa_st RSA;
39typedef struct dh_st DH;
40typedef struct ec_key_st EC_KEY;
41#endif // OPENSSL_NO_DEPRECATED_3_0
42
44
45QT_REQUIRE_CONFIG(ssl);
46
47namespace QTlsPrivate {
48
49class TlsKeyOpenSSL final : public TlsKeyBase
50{
51public:
53 : opaque(nullptr)
54 {
55 clear(false);
56 }
58 {
59 clear(true);
60 }
61
62 void decodeDer(KeyType type, KeyAlgorithm algorithm, const QByteArray &der,
63 const QByteArray &passPhrase, bool deepClear) override;
64 void decodePem(KeyType type, KeyAlgorithm algorithm, const QByteArray &pem,
65 const QByteArray &passPhrase, bool deepClear) override;
66
67 QByteArray toPem(const QByteArray &passPhrase) const override;
68 QByteArray derFromPem(const QByteArray &pem, QMap<QByteArray, QByteArray> *headers) const override;
69
70 void fromHandle(Qt::HANDLE opaque, KeyType expectedType) override;
71
72 void clear(bool deep) override;
73 Qt::HANDLE handle() const override;
74 int length() const override;
75
76 QByteArray decrypt(Cipher cipher, const QByteArray &data,
77 const QByteArray &key, const QByteArray &iv) const override;
78 QByteArray encrypt(Cipher cipher, const QByteArray &data,
79 const QByteArray &key, const QByteArray &iv) const override;
80
81 static TlsKeyOpenSSL *publicKeyFromX509(X509 *x);
82
83 union {
84 EVP_PKEY *opaque;
85 RSA *rsa;
86 DSA *dsa;
87 DH *dh;
88#ifndef OPENSSL_NO_EC
89 EC_KEY *ec;
90#endif
91 EVP_PKEY *genericKey;
92 };
93
94 bool fromEVP_PKEY(EVP_PKEY *pkey);
95
96private:
97 void readGenericKey(BIO *bio, void *phrase, QSsl::KeyType keyType);
98};
99
100} // namespace QTlsPrivate
101
102QT_END_NAMESPACE
103
104#endif // QTLSKEY_OPENSSL_H
QByteArray sessionASN1() const
int sessionTicketLifeTimeHint() const
NPNContext npnContext() const
QString errorString() const
static void forceAutoTestSecurityLevel()
void setSessionASN1(const QByteArray &sessionASN1)
bool cacheSession(SSL *)
QSslError::SslError error() const
void decodePem(KeyType type, KeyAlgorithm algorithm, const QByteArray &pem, const QByteArray &passPhrase, bool deepClear) override
void fromHandle(Qt::HANDLE opaque, KeyType expectedType) override
void clear(bool deep) override
bool fromEVP_PKEY(EVP_PKEY *pkey)
QByteArray derFromPem(const QByteArray &pem, QMap< QByteArray, QByteArray > *headers) const override
void decodeDer(KeyType type, KeyAlgorithm algorithm, const QByteArray &der, const QByteArray &passPhrase, bool deepClear) override
QByteArray decrypt(Cipher cipher, const QByteArray &data, const QByteArray &key, const QByteArray &iv) const override
QByteArray toPem(const QByteArray &passPhrase) const override
int length() const override
Qt::HANDLE handle() const override
QByteArray encrypt(Cipher cipher, const QByteArray &data, const QByteArray &key, const QByteArray &iv) const override
static TlsKeyOpenSSL * publicKeyFromX509(X509 *x)
Namespace containing onternal types that TLS backends implement.
int q_X509Callback(int ok, X509_STORE_CTX *ctx)
int q_X509CallbackDirect(int ok, X509_STORE_CTX *ctx)
static int next_proto_cb(SSL *, unsigned char **out, unsigned char *outlen, const unsigned char *in, unsigned int inlen, void *arg)
static QString msgErrorSettingEllipticCurves(const QString &why)
static QString msgErrorSettingBackendConfig(const QString &why)
void q_SSL_CTX_free(SSL_CTX *a)
const SSL_METHOD * q_TLS_server_method()
int q_EVP_PKEY_set1_DSA(EVP_PKEY *a, DSA *b)
int q_SSL_CTX_get_security_level(const SSL_CTX *ctx)
void q_SSL_SESSION_free(SSL_SESSION *ses)
int q_SSL_set_session(SSL *to, SSL_SESSION *session)
int q_EVP_PKEY_set1_RSA(EVP_PKEY *a, RSA *b)
int q_SSL_select_next_proto(unsigned char **out, unsigned char *outlen, const unsigned char *in, unsigned int inlen, const unsigned char *client, unsigned int client_len)
void q_DH_free(DH *dh)
int q_EVP_PKEY_set1_EC_KEY(EVP_PKEY *a, EC_KEY *b)
int q_SSL_clear(SSL *a)
SSL_CTX * q_SSL_CTX_new(const SSL_METHOD *a)
int q_SSL_CTX_use_certificate(SSL_CTX *a, X509 *b)
EVP_PKEY * q_EVP_PKEY_new()
void q_EVP_PKEY_free(EVP_PKEY *a)
#define q_SSL_CTX_set_min_proto_version(ctx, version)
int q_SSL_CTX_check_private_key(const SSL_CTX *a)
unsigned long q_SSL_SESSION_get_ticket_lifetime_hint(const SSL_SESSION *session)
int q_i2d_SSL_SESSION(SSL_SESSION *in, unsigned char **pp)
int q_EVP_PKEY_up_ref(EVP_PKEY *a)
SSL_SESSION * q_SSL_get_session(const SSL *ssl)
void q_SSL_CTX_set_security_level(SSL_CTX *ctx, int level)
const SSL_METHOD * q_TLS_client_method()
SSL * q_SSL_new(SSL_CTX *a)
#define q_SSL_CTX_set_tmp_dh(ctx, dh)
#define q_SSL_CTX_set_dh_auto(ctx, onoff)
SSL_SESSION * q_SSL_get1_session(SSL *ssl)
int q_SSL_CTX_use_PrivateKey(SSL_CTX *a, EVP_PKEY *b)
void q_SSL_CTX_set_verify(SSL_CTX *a, int b, int(*c)(int, X509_STORE_CTX *))
#define q_SSL_CTX_set_mode(ctx, op)
qssloptions q_SSL_CTX_set_options(SSL_CTX *ctx, qssloptions op)
int q_OPENSSL_init_ssl(uint64_t opts, const OPENSSL_INIT_SETTINGS *settings)
#define q_SSL_CTX_set_max_proto_version(ctx, version)