ec.h 29 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722
  1. /* $OpenBSD: ec.h,v 1.46 2023/08/11 04:45:27 tb Exp $ */
  2. /*
  3. * Originally written by Bodo Moeller for the OpenSSL project.
  4. */
  5. /* ====================================================================
  6. * Copyright (c) 1998-2005 The OpenSSL Project. All rights reserved.
  7. *
  8. * Redistribution and use in source and binary forms, with or without
  9. * modification, are permitted provided that the following conditions
  10. * are met:
  11. *
  12. * 1. Redistributions of source code must retain the above copyright
  13. * notice, this list of conditions and the following disclaimer.
  14. *
  15. * 2. Redistributions in binary form must reproduce the above copyright
  16. * notice, this list of conditions and the following disclaimer in
  17. * the documentation and/or other materials provided with the
  18. * distribution.
  19. *
  20. * 3. All advertising materials mentioning features or use of this
  21. * software must display the following acknowledgment:
  22. * "This product includes software developed by the OpenSSL Project
  23. * for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
  24. *
  25. * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
  26. * endorse or promote products derived from this software without
  27. * prior written permission. For written permission, please contact
  28. * [email protected].
  29. *
  30. * 5. Products derived from this software may not be called "OpenSSL"
  31. * nor may "OpenSSL" appear in their names without prior written
  32. * permission of the OpenSSL Project.
  33. *
  34. * 6. Redistributions of any form whatsoever must retain the following
  35. * acknowledgment:
  36. * "This product includes software developed by the OpenSSL Project
  37. * for use in the OpenSSL Toolkit (http://www.openssl.org/)"
  38. *
  39. * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
  40. * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  41. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
  42. * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
  43. * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  44. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  45. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  46. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  47. * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  48. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  49. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
  50. * OF THE POSSIBILITY OF SUCH DAMAGE.
  51. * ====================================================================
  52. *
  53. * This product includes cryptographic software written by Eric Young
  54. * ([email protected]). This product includes software written by Tim
  55. * Hudson ([email protected]).
  56. *
  57. */
  58. /* ====================================================================
  59. * Copyright 2002 Sun Microsystems, Inc. ALL RIGHTS RESERVED.
  60. *
  61. * Portions of the attached software ("Contribution") are developed by
  62. * SUN MICROSYSTEMS, INC., and are contributed to the OpenSSL project.
  63. *
  64. * The Contribution is licensed pursuant to the OpenSSL open source
  65. * license provided above.
  66. *
  67. * The elliptic curve binary polynomial software is originally written by
  68. * Sheueling Chang Shantz and Douglas Stebila of Sun Microsystems Laboratories.
  69. */
  70. #ifndef HEADER_EC_H
  71. #define HEADER_EC_H
  72. #include <openssl/opensslconf.h>
  73. #ifdef OPENSSL_NO_EC
  74. #error EC is disabled.
  75. #endif
  76. #include <openssl/asn1.h>
  77. #include <openssl/bn.h>
  78. #ifdef __cplusplus
  79. extern "C" {
  80. #elif defined(__SUNPRO_C)
  81. # if __SUNPRO_C >= 0x520
  82. # pragma error_messages (off,E_ARRAY_OF_INCOMPLETE_NONAME,E_ARRAY_OF_INCOMPLETE)
  83. # endif
  84. #endif
  85. #ifndef OPENSSL_ECC_MAX_FIELD_BITS
  86. #define OPENSSL_ECC_MAX_FIELD_BITS 661
  87. #endif
  88. /* Elliptic point conversion form as per X9.62, page 4 and section 4.4.2. */
  89. typedef enum {
  90. POINT_CONVERSION_COMPRESSED = 2,
  91. POINT_CONVERSION_UNCOMPRESSED = 4,
  92. POINT_CONVERSION_HYBRID = 6
  93. } point_conversion_form_t;
  94. typedef struct ec_method_st EC_METHOD;
  95. typedef struct ec_group_st EC_GROUP;
  96. typedef struct ec_point_st EC_POINT;
  97. const EC_METHOD *EC_GFp_simple_method(void);
  98. const EC_METHOD *EC_GFp_mont_method(void);
  99. EC_GROUP *EC_GROUP_new(const EC_METHOD *meth);
  100. void EC_GROUP_free(EC_GROUP *group);
  101. #ifndef LIBRESSL_INTERNAL
  102. void EC_GROUP_clear_free(EC_GROUP *group);
  103. #endif
  104. int EC_GROUP_copy(EC_GROUP *dst, const EC_GROUP *src);
  105. EC_GROUP *EC_GROUP_dup(const EC_GROUP *src);
  106. const EC_METHOD *EC_GROUP_method_of(const EC_GROUP *group);
  107. int EC_METHOD_get_field_type(const EC_METHOD *meth);
  108. int EC_GROUP_set_generator(EC_GROUP *group, const EC_POINT *generator,
  109. const BIGNUM *order, const BIGNUM *cofactor);
  110. const EC_POINT *EC_GROUP_get0_generator(const EC_GROUP *group);
  111. int EC_GROUP_get_order(const EC_GROUP *group, BIGNUM *order, BN_CTX *ctx);
  112. int EC_GROUP_order_bits(const EC_GROUP *group);
  113. int EC_GROUP_get_cofactor(const EC_GROUP *group, BIGNUM *cofactor, BN_CTX *ctx);
  114. void EC_GROUP_set_curve_name(EC_GROUP *group, int nid);
  115. int EC_GROUP_get_curve_name(const EC_GROUP *group);
  116. void EC_GROUP_set_asn1_flag(EC_GROUP *group, int flag);
  117. int EC_GROUP_get_asn1_flag(const EC_GROUP *group);
  118. void EC_GROUP_set_point_conversion_form(EC_GROUP *group,
  119. point_conversion_form_t form);
  120. point_conversion_form_t EC_GROUP_get_point_conversion_form(const EC_GROUP *);
  121. unsigned char *EC_GROUP_get0_seed(const EC_GROUP *x);
  122. size_t EC_GROUP_get_seed_len(const EC_GROUP *);
  123. size_t EC_GROUP_set_seed(EC_GROUP *, const unsigned char *, size_t len);
  124. int EC_GROUP_set_curve(EC_GROUP *group, const BIGNUM *p, const BIGNUM *a,
  125. const BIGNUM *b, BN_CTX *ctx);
  126. int EC_GROUP_get_curve(const EC_GROUP *group, BIGNUM *p, BIGNUM *a, BIGNUM *b,
  127. BN_CTX *ctx);
  128. #if !defined(LIBRESSL_INTERNAL)
  129. int EC_GROUP_set_curve_GFp(EC_GROUP *group, const BIGNUM *p, const BIGNUM *a,
  130. const BIGNUM *b, BN_CTX *ctx);
  131. int EC_GROUP_get_curve_GFp(const EC_GROUP *group, BIGNUM *p, BIGNUM *a,
  132. BIGNUM *b, BN_CTX *ctx);
  133. #endif
  134. int EC_GROUP_get_degree(const EC_GROUP *group);
  135. int EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx);
  136. int EC_GROUP_check_discriminant(const EC_GROUP *group, BN_CTX *ctx);
  137. /* Compare two EC_GROUPs. Returns 0 if both groups are equal, 1 otherwise. */
  138. int EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx);
  139. EC_GROUP *EC_GROUP_new_curve_GFp(const BIGNUM *p, const BIGNUM *a,
  140. const BIGNUM *b, BN_CTX *ctx);
  141. EC_GROUP *EC_GROUP_new_by_curve_name(int nid);
  142. typedef struct {
  143. int nid;
  144. const char *comment;
  145. } EC_builtin_curve;
  146. size_t EC_get_builtin_curves(EC_builtin_curve *r, size_t nitems);
  147. const char *EC_curve_nid2nist(int nid);
  148. int EC_curve_nist2nid(const char *name);
  149. EC_POINT *EC_POINT_new(const EC_GROUP *group);
  150. void EC_POINT_free(EC_POINT *point);
  151. #ifndef LIBRESSL_INTERNAL
  152. void EC_POINT_clear_free(EC_POINT *point);
  153. #endif
  154. int EC_POINT_copy(EC_POINT *dst, const EC_POINT *src);
  155. EC_POINT *EC_POINT_dup(const EC_POINT *src, const EC_GROUP *group);
  156. const EC_METHOD *EC_POINT_method_of(const EC_POINT *point);
  157. int EC_POINT_set_to_infinity(const EC_GROUP *group, EC_POINT *point);
  158. int EC_POINT_set_affine_coordinates(const EC_GROUP *group, EC_POINT *p,
  159. const BIGNUM *x, const BIGNUM *y, BN_CTX *ctx);
  160. int EC_POINT_get_affine_coordinates(const EC_GROUP *group, const EC_POINT *p,
  161. BIGNUM *x, BIGNUM *y, BN_CTX *ctx);
  162. int EC_POINT_set_compressed_coordinates(const EC_GROUP *group, EC_POINT *p,
  163. const BIGNUM *x, int y_bit, BN_CTX *ctx);
  164. #ifndef LIBRESSL_INTERNAL
  165. int EC_POINT_set_Jprojective_coordinates_GFp(const EC_GROUP *group, EC_POINT *p,
  166. const BIGNUM *x, const BIGNUM *y, const BIGNUM *z, BN_CTX *ctx);
  167. int EC_POINT_get_Jprojective_coordinates_GFp(const EC_GROUP *group,
  168. const EC_POINT *p, BIGNUM *x, BIGNUM *y, BIGNUM *z, BN_CTX *ctx);
  169. int EC_POINT_set_affine_coordinates_GFp(const EC_GROUP *group, EC_POINT *p,
  170. const BIGNUM *x, const BIGNUM *y, BN_CTX *ctx);
  171. int EC_POINT_get_affine_coordinates_GFp(const EC_GROUP *group,
  172. const EC_POINT *p, BIGNUM *x, BIGNUM *y, BN_CTX *ctx);
  173. int EC_POINT_set_compressed_coordinates_GFp(const EC_GROUP *group, EC_POINT *p,
  174. const BIGNUM *x, int y_bit, BN_CTX *ctx);
  175. #endif /* !LIBRESSL_INTERNAL */
  176. size_t EC_POINT_point2oct(const EC_GROUP *group, const EC_POINT *p,
  177. point_conversion_form_t form, unsigned char *buf, size_t len, BN_CTX *ctx);
  178. int EC_POINT_oct2point(const EC_GROUP *group, EC_POINT *p,
  179. const unsigned char *buf, size_t len, BN_CTX *ctx);
  180. BIGNUM *EC_POINT_point2bn(const EC_GROUP *, const EC_POINT *,
  181. point_conversion_form_t form, BIGNUM *, BN_CTX *);
  182. EC_POINT *EC_POINT_bn2point(const EC_GROUP *, const BIGNUM *, EC_POINT *,
  183. BN_CTX *);
  184. char *EC_POINT_point2hex(const EC_GROUP *, const EC_POINT *,
  185. point_conversion_form_t form, BN_CTX *);
  186. EC_POINT *EC_POINT_hex2point(const EC_GROUP *, const char *, EC_POINT *,
  187. BN_CTX *);
  188. int EC_POINT_add(const EC_GROUP *group, EC_POINT *r, const EC_POINT *a,
  189. const EC_POINT *b, BN_CTX *ctx);
  190. int EC_POINT_dbl(const EC_GROUP *group, EC_POINT *r, const EC_POINT *a,
  191. BN_CTX *ctx);
  192. int EC_POINT_invert(const EC_GROUP *group, EC_POINT *a, BN_CTX *ctx);
  193. int EC_POINT_is_at_infinity(const EC_GROUP *group, const EC_POINT *p);
  194. int EC_POINT_is_on_curve(const EC_GROUP *group, const EC_POINT *point,
  195. BN_CTX *ctx);
  196. int EC_POINT_cmp(const EC_GROUP *group, const EC_POINT *a, const EC_POINT *b,
  197. BN_CTX *ctx);
  198. int EC_POINT_make_affine(const EC_GROUP *group, EC_POINT *point, BN_CTX *ctx);
  199. int EC_POINTs_make_affine(const EC_GROUP *group, size_t num, EC_POINT *points[],
  200. BN_CTX *ctx);
  201. int EC_POINTs_mul(const EC_GROUP *group, EC_POINT *r, const BIGNUM *n,
  202. size_t num, const EC_POINT *p[], const BIGNUM *m[], BN_CTX *ctx);
  203. int EC_POINT_mul(const EC_GROUP *group, EC_POINT *r, const BIGNUM *n,
  204. const EC_POINT *q, const BIGNUM *m, BN_CTX *ctx);
  205. int EC_GROUP_precompute_mult(EC_GROUP *group, BN_CTX *ctx);
  206. int EC_GROUP_have_precompute_mult(const EC_GROUP *group);
  207. int EC_GROUP_get_basis_type(const EC_GROUP *);
  208. #define OPENSSL_EC_EXPLICIT_CURVE 0x000
  209. #define OPENSSL_EC_NAMED_CURVE 0x001
  210. typedef struct ecpk_parameters_st ECPKPARAMETERS;
  211. EC_GROUP *d2i_ECPKParameters(EC_GROUP **, const unsigned char **in, long len);
  212. int i2d_ECPKParameters(const EC_GROUP *, unsigned char **out);
  213. #define d2i_ECPKParameters_bio(bp,x) ASN1_d2i_bio_of(EC_GROUP,NULL,d2i_ECPKParameters,bp,x)
  214. #define i2d_ECPKParameters_bio(bp,x) ASN1_i2d_bio_of_const(EC_GROUP,i2d_ECPKParameters,bp,x)
  215. #define d2i_ECPKParameters_fp(fp,x) (EC_GROUP *)ASN1_d2i_fp(NULL, \
  216. (char *(*)())d2i_ECPKParameters,(fp),(unsigned char **)(x))
  217. #define i2d_ECPKParameters_fp(fp,x) ASN1_i2d_fp(i2d_ECPKParameters,(fp), \
  218. (unsigned char *)(x))
  219. #ifndef OPENSSL_NO_BIO
  220. int ECPKParameters_print(BIO *bp, const EC_GROUP *x, int off);
  221. #endif
  222. int ECPKParameters_print_fp(FILE *fp, const EC_GROUP *x, int off);
  223. #define EC_PKEY_NO_PARAMETERS 0x001
  224. #define EC_PKEY_NO_PUBKEY 0x002
  225. #define EC_FLAG_NON_FIPS_ALLOW 0x1
  226. #define EC_FLAG_FIPS_CHECKED 0x2
  227. #define EC_FLAG_COFACTOR_ECDH 0x1000
  228. EC_KEY *EC_KEY_new(void);
  229. int EC_KEY_get_flags(const EC_KEY *key);
  230. void EC_KEY_set_flags(EC_KEY *key, int flags);
  231. void EC_KEY_clear_flags(EC_KEY *key, int flags);
  232. EC_KEY *EC_KEY_new_by_curve_name(int nid);
  233. void EC_KEY_free(EC_KEY *key);
  234. EC_KEY *EC_KEY_copy(EC_KEY *dst, const EC_KEY *src);
  235. EC_KEY *EC_KEY_dup(const EC_KEY *src);
  236. int EC_KEY_up_ref(EC_KEY *key);
  237. const EC_GROUP *EC_KEY_get0_group(const EC_KEY *key);
  238. int EC_KEY_set_group(EC_KEY *key, const EC_GROUP *group);
  239. const BIGNUM *EC_KEY_get0_private_key(const EC_KEY *key);
  240. int EC_KEY_set_private_key(EC_KEY *key, const BIGNUM *prv);
  241. const EC_POINT *EC_KEY_get0_public_key(const EC_KEY *key);
  242. int EC_KEY_set_public_key(EC_KEY *key, const EC_POINT *pub);
  243. unsigned EC_KEY_get_enc_flags(const EC_KEY *key);
  244. void EC_KEY_set_enc_flags(EC_KEY *eckey, unsigned int flags);
  245. point_conversion_form_t EC_KEY_get_conv_form(const EC_KEY *key);
  246. void EC_KEY_set_conv_form(EC_KEY *eckey, point_conversion_form_t cform);
  247. void EC_KEY_set_asn1_flag(EC_KEY *eckey, int asn1_flag);
  248. int EC_KEY_precompute_mult(EC_KEY *key, BN_CTX *ctx);
  249. int EC_KEY_generate_key(EC_KEY *key);
  250. int EC_KEY_check_key(const EC_KEY *key);
  251. int EC_KEY_set_public_key_affine_coordinates(EC_KEY *key, BIGNUM *x, BIGNUM *y);
  252. EC_KEY *d2i_ECPrivateKey(EC_KEY **key, const unsigned char **in, long len);
  253. int i2d_ECPrivateKey(EC_KEY *key, unsigned char **out);
  254. EC_KEY *d2i_ECParameters(EC_KEY **key, const unsigned char **in, long len);
  255. int i2d_ECParameters(EC_KEY *key, unsigned char **out);
  256. EC_KEY *o2i_ECPublicKey(EC_KEY **key, const unsigned char **in, long len);
  257. int i2o_ECPublicKey(const EC_KEY *key, unsigned char **out);
  258. #ifndef OPENSSL_NO_BIO
  259. int ECParameters_print(BIO *bp, const EC_KEY *key);
  260. int EC_KEY_print(BIO *bp, const EC_KEY *key, int off);
  261. #endif
  262. int ECParameters_print_fp(FILE *fp, const EC_KEY *key);
  263. int EC_KEY_print_fp(FILE *fp, const EC_KEY *key, int off);
  264. #define EC_KEY_get_ex_new_index(l, p, newf, dupf, freef) \
  265. CRYPTO_get_ex_new_index(CRYPTO_EX_INDEX_EC_KEY, l, p, newf, dupf, freef)
  266. int EC_KEY_set_ex_data(EC_KEY *key, int idx, void *arg);
  267. void *EC_KEY_get_ex_data(const EC_KEY *key, int idx);
  268. const EC_KEY_METHOD *EC_KEY_OpenSSL(void);
  269. const EC_KEY_METHOD *EC_KEY_get_default_method(void);
  270. void EC_KEY_set_default_method(const EC_KEY_METHOD *meth);
  271. const EC_KEY_METHOD *EC_KEY_get_method(const EC_KEY *key);
  272. int EC_KEY_set_method(EC_KEY *key, const EC_KEY_METHOD *meth);
  273. EC_KEY *EC_KEY_new_method(ENGINE *engine);
  274. int ECDH_size(const EC_KEY *ecdh);
  275. int ECDH_compute_key(void *out, size_t outlen, const EC_POINT *pub_key,
  276. EC_KEY *ecdh,
  277. void *(*KDF)(const void *in, size_t inlen, void *out, size_t *outlen));
  278. typedef struct ECDSA_SIG_st ECDSA_SIG;
  279. ECDSA_SIG *ECDSA_SIG_new(void);
  280. void ECDSA_SIG_free(ECDSA_SIG *sig);
  281. int i2d_ECDSA_SIG(const ECDSA_SIG *sig, unsigned char **pp);
  282. ECDSA_SIG *d2i_ECDSA_SIG(ECDSA_SIG **sig, const unsigned char **pp, long len);
  283. const BIGNUM *ECDSA_SIG_get0_r(const ECDSA_SIG *sig);
  284. const BIGNUM *ECDSA_SIG_get0_s(const ECDSA_SIG *sig);
  285. void ECDSA_SIG_get0(const ECDSA_SIG *sig, const BIGNUM **pr, const BIGNUM **ps);
  286. int ECDSA_SIG_set0(ECDSA_SIG *sig, BIGNUM *r, BIGNUM *s);
  287. int ECDSA_size(const EC_KEY *eckey);
  288. ECDSA_SIG *ECDSA_do_sign(const unsigned char *digest, int digest_len,
  289. EC_KEY *eckey);
  290. int ECDSA_do_verify(const unsigned char *digest, int digest_len,
  291. const ECDSA_SIG *sig, EC_KEY *eckey);
  292. int ECDSA_sign(int type, const unsigned char *digest, int digest_len,
  293. unsigned char *signature, unsigned int *signature_len, EC_KEY *eckey);
  294. int ECDSA_verify(int type, const unsigned char *digest, int digest_len,
  295. const unsigned char *signature, int signature_len, EC_KEY *eckey);
  296. EC_KEY_METHOD *EC_KEY_METHOD_new(const EC_KEY_METHOD *meth);
  297. void EC_KEY_METHOD_free(EC_KEY_METHOD *meth);
  298. void EC_KEY_METHOD_set_init(EC_KEY_METHOD *meth,
  299. int (*init)(EC_KEY *key),
  300. void (*finish)(EC_KEY *key),
  301. int (*copy)(EC_KEY *dest, const EC_KEY *src),
  302. int (*set_group)(EC_KEY *key, const EC_GROUP *grp),
  303. int (*set_private)(EC_KEY *key, const BIGNUM *priv_key),
  304. int (*set_public)(EC_KEY *key, const EC_POINT *pub_key));
  305. void EC_KEY_METHOD_set_keygen(EC_KEY_METHOD *meth,
  306. int (*keygen)(EC_KEY *key));
  307. void EC_KEY_METHOD_set_compute_key(EC_KEY_METHOD *meth,
  308. int (*ckey)(unsigned char **out, size_t *out_len, const EC_POINT *pub_key,
  309. const EC_KEY *ecdh));
  310. void EC_KEY_METHOD_set_sign(EC_KEY_METHOD *meth,
  311. int (*sign)(int type, const unsigned char *digest, int digest_len,
  312. unsigned char *signature, unsigned int *signature_len,
  313. const BIGNUM *kinv, const BIGNUM *r, EC_KEY *eckey),
  314. int (*sign_setup)(EC_KEY *eckey, BN_CTX *ctx_in, BIGNUM **kinvp, BIGNUM **rp),
  315. ECDSA_SIG *(*sign_sig)(const unsigned char *digest, int digest_len,
  316. const BIGNUM *in_kinv, const BIGNUM *in_r, EC_KEY *eckey));
  317. void EC_KEY_METHOD_set_verify(EC_KEY_METHOD *meth,
  318. int (*verify)(int type, const unsigned char *digest, int digest_len,
  319. const unsigned char *signature, int signature_len, EC_KEY *eckey),
  320. int (*verify_sig)(const unsigned char *digest, int digest_len,
  321. const ECDSA_SIG *sig, EC_KEY *eckey));
  322. void EC_KEY_METHOD_get_init(const EC_KEY_METHOD *meth,
  323. int (**pinit)(EC_KEY *key),
  324. void (**pfinish)(EC_KEY *key),
  325. int (**pcopy)(EC_KEY *dest, const EC_KEY *src),
  326. int (**pset_group)(EC_KEY *key, const EC_GROUP *grp),
  327. int (**pset_private)(EC_KEY *key, const BIGNUM *priv_key),
  328. int (**pset_public)(EC_KEY *key, const EC_POINT *pub_key));
  329. void EC_KEY_METHOD_get_keygen(const EC_KEY_METHOD *meth,
  330. int (**pkeygen)(EC_KEY *key));
  331. void EC_KEY_METHOD_get_compute_key(const EC_KEY_METHOD *meth,
  332. int (**pck)(unsigned char **out, size_t *out_len, const EC_POINT *pub_key,
  333. const EC_KEY *ecdh));
  334. void EC_KEY_METHOD_get_sign(const EC_KEY_METHOD *meth,
  335. int (**psign)(int type, const unsigned char *digest, int digest_len,
  336. unsigned char *signature, unsigned int *signature_len,
  337. const BIGNUM *kinv, const BIGNUM *r, EC_KEY *eckey),
  338. int (**psign_setup)(EC_KEY *eckey, BN_CTX *ctx_in, BIGNUM **kinvp, BIGNUM **rp),
  339. ECDSA_SIG *(**psign_sig)(const unsigned char *digest, int digest_len,
  340. const BIGNUM *in_kinv, const BIGNUM *in_r, EC_KEY *eckey));
  341. void EC_KEY_METHOD_get_verify(const EC_KEY_METHOD *meth,
  342. int (**pverify)(int type, const unsigned char *digest, int digest_len,
  343. const unsigned char *signature, int signature_len, EC_KEY *eckey),
  344. int (**pverify_sig)(const unsigned char *digest, int digest_len,
  345. const ECDSA_SIG *sig, EC_KEY *eckey));
  346. EC_KEY *ECParameters_dup(EC_KEY *key);
  347. #ifndef __cplusplus
  348. #if defined(__SUNPRO_C)
  349. # if __SUNPRO_C >= 0x520
  350. # pragma error_messages (default,E_ARRAY_OF_INCOMPLETE_NONAME,E_ARRAY_OF_INCOMPLETE)
  351. # endif
  352. # endif
  353. #endif
  354. #define EVP_PKEY_CTX_set_ec_paramgen_curve_nid(ctx, nid) \
  355. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  356. EVP_PKEY_OP_PARAMGEN|EVP_PKEY_OP_KEYGEN, \
  357. EVP_PKEY_CTRL_EC_PARAMGEN_CURVE_NID, nid, NULL)
  358. #define EVP_PKEY_CTX_set_ec_param_enc(ctx, flag) \
  359. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  360. EVP_PKEY_OP_PARAMGEN|EVP_PKEY_OP_KEYGEN, \
  361. EVP_PKEY_CTRL_EC_PARAM_ENC, flag, NULL)
  362. #define EVP_PKEY_CTX_set_ecdh_cofactor_mode(ctx, flag) \
  363. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  364. EVP_PKEY_OP_DERIVE, \
  365. EVP_PKEY_CTRL_EC_ECDH_COFACTOR, flag, NULL)
  366. #define EVP_PKEY_CTX_get_ecdh_cofactor_mode(ctx) \
  367. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  368. EVP_PKEY_OP_DERIVE, \
  369. EVP_PKEY_CTRL_EC_ECDH_COFACTOR, -2, NULL)
  370. #define EVP_PKEY_CTX_set_ecdh_kdf_type(ctx, kdf) \
  371. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  372. EVP_PKEY_OP_DERIVE, \
  373. EVP_PKEY_CTRL_EC_KDF_TYPE, kdf, NULL)
  374. #define EVP_PKEY_CTX_get_ecdh_kdf_type(ctx) \
  375. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  376. EVP_PKEY_OP_DERIVE, \
  377. EVP_PKEY_CTRL_EC_KDF_TYPE, -2, NULL)
  378. #define EVP_PKEY_CTX_set_ecdh_kdf_md(ctx, md) \
  379. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  380. EVP_PKEY_OP_DERIVE, \
  381. EVP_PKEY_CTRL_EC_KDF_MD, 0, (void *)(md))
  382. #define EVP_PKEY_CTX_get_ecdh_kdf_md(ctx, pmd) \
  383. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  384. EVP_PKEY_OP_DERIVE, \
  385. EVP_PKEY_CTRL_GET_EC_KDF_MD, 0, (void *)(pmd))
  386. #define EVP_PKEY_CTX_set_ecdh_kdf_outlen(ctx, len) \
  387. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  388. EVP_PKEY_OP_DERIVE, \
  389. EVP_PKEY_CTRL_EC_KDF_OUTLEN, len, NULL)
  390. #define EVP_PKEY_CTX_get_ecdh_kdf_outlen(ctx, plen) \
  391. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  392. EVP_PKEY_OP_DERIVE, \
  393. EVP_PKEY_CTRL_GET_EC_KDF_OUTLEN, 0, \
  394. (void *)(plen))
  395. #define EVP_PKEY_CTX_set0_ecdh_kdf_ukm(ctx, p, plen) \
  396. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  397. EVP_PKEY_OP_DERIVE, \
  398. EVP_PKEY_CTRL_EC_KDF_UKM, plen, (void *)(p))
  399. #define EVP_PKEY_CTX_get0_ecdh_kdf_ukm(ctx, p) \
  400. EVP_PKEY_CTX_ctrl(ctx, EVP_PKEY_EC, \
  401. EVP_PKEY_OP_DERIVE, \
  402. EVP_PKEY_CTRL_GET_EC_KDF_UKM, 0, (void *)(p))
  403. /* SM2 will skip the operation check so no need to pass operation here */
  404. #define EVP_PKEY_CTX_set1_id(ctx, id, id_len) \
  405. EVP_PKEY_CTX_ctrl(ctx, -1, -1, \
  406. EVP_PKEY_CTRL_SET1_ID, (int)id_len, (void*)(id))
  407. #define EVP_PKEY_CTX_get1_id(ctx, id) \
  408. EVP_PKEY_CTX_ctrl(ctx, -1, -1, \
  409. EVP_PKEY_CTRL_GET1_ID, 0, (void*)(id))
  410. #define EVP_PKEY_CTX_get1_id_len(ctx, id_len) \
  411. EVP_PKEY_CTX_ctrl(ctx, -1, -1, \
  412. EVP_PKEY_CTRL_GET1_ID_LEN, 0, (void*)(id_len))
  413. #define EVP_PKEY_CTRL_EC_PARAMGEN_CURVE_NID (EVP_PKEY_ALG_CTRL + 1)
  414. #define EVP_PKEY_CTRL_EC_PARAM_ENC (EVP_PKEY_ALG_CTRL + 2)
  415. #define EVP_PKEY_CTRL_EC_ECDH_COFACTOR (EVP_PKEY_ALG_CTRL + 3)
  416. #define EVP_PKEY_CTRL_EC_KDF_TYPE (EVP_PKEY_ALG_CTRL + 4)
  417. #define EVP_PKEY_CTRL_EC_KDF_MD (EVP_PKEY_ALG_CTRL + 5)
  418. #define EVP_PKEY_CTRL_GET_EC_KDF_MD (EVP_PKEY_ALG_CTRL + 6)
  419. #define EVP_PKEY_CTRL_EC_KDF_OUTLEN (EVP_PKEY_ALG_CTRL + 7)
  420. #define EVP_PKEY_CTRL_GET_EC_KDF_OUTLEN (EVP_PKEY_ALG_CTRL + 8)
  421. #define EVP_PKEY_CTRL_EC_KDF_UKM (EVP_PKEY_ALG_CTRL + 9)
  422. #define EVP_PKEY_CTRL_GET_EC_KDF_UKM (EVP_PKEY_ALG_CTRL + 10)
  423. #define EVP_PKEY_CTRL_SET1_ID (EVP_PKEY_ALG_CTRL + 11)
  424. #define EVP_PKEY_CTRL_GET1_ID (EVP_PKEY_ALG_CTRL + 12)
  425. #define EVP_PKEY_CTRL_GET1_ID_LEN (EVP_PKEY_ALG_CTRL + 13)
  426. /* KDF types */
  427. #define EVP_PKEY_ECDH_KDF_NONE 1
  428. #define EVP_PKEY_ECDH_KDF_X9_63 2
  429. void ERR_load_EC_strings(void);
  430. /* Error codes for the EC functions. */
  431. /* Function codes. */
  432. #define EC_F_BN_TO_FELEM 224
  433. #define EC_F_COMPUTE_WNAF 143
  434. #define EC_F_D2I_ECPARAMETERS 144
  435. #define EC_F_D2I_ECPKPARAMETERS 145
  436. #define EC_F_D2I_ECPRIVATEKEY 146
  437. #define EC_F_DO_EC_KEY_PRINT 221
  438. #define EC_F_ECKEY_PARAM2TYPE 223
  439. #define EC_F_ECKEY_PARAM_DECODE 212
  440. #define EC_F_ECKEY_PRIV_DECODE 213
  441. #define EC_F_ECKEY_PRIV_ENCODE 214
  442. #define EC_F_ECKEY_PUB_DECODE 215
  443. #define EC_F_ECKEY_PUB_ENCODE 216
  444. #define EC_F_ECKEY_TYPE2PARAM 220
  445. #define EC_F_ECPARAMETERS_PRINT 147
  446. #define EC_F_ECPARAMETERS_PRINT_FP 148
  447. #define EC_F_ECPKPARAMETERS_PRINT 149
  448. #define EC_F_ECPKPARAMETERS_PRINT_FP 150
  449. #define EC_F_ECP_NIST_MOD_192 203
  450. #define EC_F_ECP_NIST_MOD_224 204
  451. #define EC_F_ECP_NIST_MOD_256 205
  452. #define EC_F_ECP_NIST_MOD_521 206
  453. #define EC_F_ECP_NISTZ256_GET_AFFINE 240
  454. #define EC_F_ECP_NISTZ256_MULT_PRECOMPUTE 243
  455. #define EC_F_ECP_NISTZ256_POINTS_MUL 241
  456. #define EC_F_ECP_NISTZ256_PRE_COMP_NEW 244
  457. #define EC_F_ECP_NISTZ256_SET_WORDS 245
  458. #define EC_F_ECP_NISTZ256_WINDOWED_MUL 242
  459. #define EC_F_EC_ASN1_GROUP2CURVE 153
  460. #define EC_F_EC_ASN1_GROUP2FIELDID 154
  461. #define EC_F_EC_ASN1_GROUP2PARAMETERS 155
  462. #define EC_F_EC_ASN1_GROUP2PKPARAMETERS 156
  463. #define EC_F_EC_ASN1_PARAMETERS2GROUP 157
  464. #define EC_F_EC_ASN1_PKPARAMETERS2GROUP 158
  465. #define EC_F_EC_EX_DATA_SET_DATA 211
  466. #define EC_F_EC_GF2M_MONTGOMERY_POINT_MULTIPLY 208
  467. #define EC_F_EC_GF2M_SIMPLE_GROUP_CHECK_DISCRIMINANT 159
  468. #define EC_F_EC_GF2M_SIMPLE_GROUP_SET_CURVE 195
  469. #define EC_F_EC_GF2M_SIMPLE_OCT2POINT 160
  470. #define EC_F_EC_GF2M_SIMPLE_POINT2OCT 161
  471. #define EC_F_EC_GF2M_SIMPLE_POINT_GET_AFFINE_COORDINATES 162
  472. #define EC_F_EC_GF2M_SIMPLE_POINT_SET_AFFINE_COORDINATES 163
  473. #define EC_F_EC_GF2M_SIMPLE_SET_COMPRESSED_COORDINATES 164
  474. #define EC_F_EC_GFP_MONT_FIELD_DECODE 133
  475. #define EC_F_EC_GFP_MONT_FIELD_ENCODE 134
  476. #define EC_F_EC_GFP_MONT_FIELD_MUL 131
  477. #define EC_F_EC_GFP_MONT_FIELD_SET_TO_ONE 209
  478. #define EC_F_EC_GFP_MONT_FIELD_SQR 132
  479. #define EC_F_EC_GFP_MONT_GROUP_SET_CURVE 189
  480. #define EC_F_EC_GFP_MONT_GROUP_SET_CURVE_GFP 135
  481. #define EC_F_EC_GFP_NISTP224_GROUP_SET_CURVE 225
  482. #define EC_F_EC_GFP_NISTP224_POINTS_MUL 228
  483. #define EC_F_EC_GFP_NISTP224_POINT_GET_AFFINE_COORDINATES 226
  484. #define EC_F_EC_GFP_NISTP256_GROUP_SET_CURVE 230
  485. #define EC_F_EC_GFP_NISTP256_POINTS_MUL 231
  486. #define EC_F_EC_GFP_NISTP256_POINT_GET_AFFINE_COORDINATES 232
  487. #define EC_F_EC_GFP_NISTP521_GROUP_SET_CURVE 233
  488. #define EC_F_EC_GFP_NISTP521_POINTS_MUL 234
  489. #define EC_F_EC_GFP_NISTP521_POINT_GET_AFFINE_COORDINATES 235
  490. #define EC_F_EC_GFP_NIST_FIELD_MUL 200
  491. #define EC_F_EC_GFP_NIST_FIELD_SQR 201
  492. #define EC_F_EC_GFP_NIST_GROUP_SET_CURVE 202
  493. #define EC_F_EC_GFP_SIMPLE_GROUP_CHECK_DISCRIMINANT 165
  494. #define EC_F_EC_GFP_SIMPLE_GROUP_SET_CURVE 166
  495. #define EC_F_EC_GFP_SIMPLE_GROUP_SET_CURVE_GFP 100
  496. #define EC_F_EC_GFP_SIMPLE_GROUP_SET_GENERATOR 101
  497. #define EC_F_EC_GFP_SIMPLE_MAKE_AFFINE 102
  498. #define EC_F_EC_GFP_SIMPLE_OCT2POINT 103
  499. #define EC_F_EC_GFP_SIMPLE_POINT2OCT 104
  500. #define EC_F_EC_GFP_SIMPLE_POINTS_MAKE_AFFINE 137
  501. #define EC_F_EC_GFP_SIMPLE_POINT_GET_AFFINE_COORDINATES 167
  502. #define EC_F_EC_GFP_SIMPLE_POINT_GET_AFFINE_COORDINATES_GFP 105
  503. #define EC_F_EC_GFP_SIMPLE_POINT_SET_AFFINE_COORDINATES 168
  504. #define EC_F_EC_GFP_SIMPLE_POINT_SET_AFFINE_COORDINATES_GFP 128
  505. #define EC_F_EC_GFP_SIMPLE_SET_COMPRESSED_COORDINATES 169
  506. #define EC_F_EC_GFP_SIMPLE_SET_COMPRESSED_COORDINATES_GFP 129
  507. #define EC_F_EC_GROUP_CHECK 170
  508. #define EC_F_EC_GROUP_CHECK_DISCRIMINANT 171
  509. #define EC_F_EC_GROUP_COPY 106
  510. #define EC_F_EC_GROUP_GET0_GENERATOR 139
  511. #define EC_F_EC_GROUP_GET_COFACTOR 140
  512. #define EC_F_EC_GROUP_GET_CURVE_GF2M 172
  513. #define EC_F_EC_GROUP_GET_CURVE_GFP 130
  514. #define EC_F_EC_GROUP_GET_DEGREE 173
  515. #define EC_F_EC_GROUP_GET_ORDER 141
  516. #define EC_F_EC_GROUP_GET_PENTANOMIAL_BASIS 193
  517. #define EC_F_EC_GROUP_GET_TRINOMIAL_BASIS 194
  518. #define EC_F_EC_GROUP_NEW 108
  519. #define EC_F_EC_GROUP_NEW_BY_CURVE_NAME 174
  520. #define EC_F_EC_GROUP_NEW_FROM_DATA 175
  521. #define EC_F_EC_GROUP_PRECOMPUTE_MULT 142
  522. #define EC_F_EC_GROUP_SET_CURVE_GF2M 176
  523. #define EC_F_EC_GROUP_SET_CURVE_GFP 109
  524. #define EC_F_EC_GROUP_SET_EXTRA_DATA 110
  525. #define EC_F_EC_GROUP_SET_GENERATOR 111
  526. #define EC_F_EC_KEY_CHECK_KEY 177
  527. #define EC_F_EC_KEY_COPY 178
  528. #define EC_F_EC_KEY_GENERATE_KEY 179
  529. #define EC_F_EC_KEY_NEW 182
  530. #define EC_F_EC_KEY_PRINT 180
  531. #define EC_F_EC_KEY_PRINT_FP 181
  532. #define EC_F_EC_KEY_SET_PUBLIC_KEY_AFFINE_COORDINATES 229
  533. #define EC_F_EC_POINTS_MAKE_AFFINE 136
  534. #define EC_F_EC_POINT_ADD 112
  535. #define EC_F_EC_POINT_CMP 113
  536. #define EC_F_EC_POINT_COPY 114
  537. #define EC_F_EC_POINT_DBL 115
  538. #define EC_F_EC_POINT_GET_AFFINE_COORDINATES_GF2M 183
  539. #define EC_F_EC_POINT_GET_AFFINE_COORDINATES_GFP 116
  540. #define EC_F_EC_POINT_GET_JPROJECTIVE_COORDINATES_GFP 117
  541. #define EC_F_EC_POINT_INVERT 210
  542. #define EC_F_EC_POINT_IS_AT_INFINITY 118
  543. #define EC_F_EC_POINT_IS_ON_CURVE 119
  544. #define EC_F_EC_POINT_MAKE_AFFINE 120
  545. #define EC_F_EC_POINT_MUL 184
  546. #define EC_F_EC_POINT_NEW 121
  547. #define EC_F_EC_POINT_OCT2POINT 122
  548. #define EC_F_EC_POINT_POINT2OCT 123
  549. #define EC_F_EC_POINT_SET_AFFINE_COORDINATES_GF2M 185
  550. #define EC_F_EC_POINT_SET_AFFINE_COORDINATES_GFP 124
  551. #define EC_F_EC_POINT_SET_COMPRESSED_COORDINATES_GF2M 186
  552. #define EC_F_EC_POINT_SET_COMPRESSED_COORDINATES_GFP 125
  553. #define EC_F_EC_POINT_SET_JPROJECTIVE_COORDINATES_GFP 126
  554. #define EC_F_EC_POINT_SET_TO_INFINITY 127
  555. #define EC_F_EC_PRE_COMP_DUP 207
  556. #define EC_F_EC_PRE_COMP_NEW 196
  557. #define EC_F_EC_WNAF_MUL 187
  558. #define EC_F_EC_WNAF_PRECOMPUTE_MULT 188
  559. #define EC_F_I2D_ECPARAMETERS 190
  560. #define EC_F_I2D_ECPKPARAMETERS 191
  561. #define EC_F_I2D_ECPRIVATEKEY 192
  562. #define EC_F_I2O_ECPUBLICKEY 151
  563. #define EC_F_NISTP224_PRE_COMP_NEW 227
  564. #define EC_F_NISTP256_PRE_COMP_NEW 236
  565. #define EC_F_NISTP521_PRE_COMP_NEW 237
  566. #define EC_F_O2I_ECPUBLICKEY 152
  567. #define EC_F_OLD_EC_PRIV_DECODE 222
  568. #define EC_F_PKEY_EC_CTRL 197
  569. #define EC_F_PKEY_EC_CTRL_STR 198
  570. #define EC_F_PKEY_EC_DERIVE 217
  571. #define EC_F_PKEY_EC_KEYGEN 199
  572. #define EC_F_PKEY_EC_PARAMGEN 219
  573. #define EC_F_PKEY_EC_SIGN 218
  574. /* Reason codes. */
  575. #define EC_R_ASN1_ERROR 115
  576. #define EC_R_ASN1_UNKNOWN_FIELD 116
  577. #define EC_R_BAD_SIGNATURE 166
  578. #define EC_R_BIGNUM_OUT_OF_RANGE 144
  579. #define EC_R_BUFFER_TOO_SMALL 100
  580. #define EC_R_COORDINATES_OUT_OF_RANGE 146
  581. #define EC_R_D2I_ECPKPARAMETERS_FAILURE 117
  582. #define EC_R_DECODE_ERROR 142
  583. #define EC_R_DISCRIMINANT_IS_ZERO 118
  584. #define EC_R_EC_GROUP_NEW_BY_NAME_FAILURE 119
  585. #define EC_R_FIELD_TOO_LARGE 143
  586. #define EC_R_GF2M_NOT_SUPPORTED 147
  587. #define EC_R_GROUP2PKPARAMETERS_FAILURE 120
  588. #define EC_R_I2D_ECPKPARAMETERS_FAILURE 121
  589. #define EC_R_INCOMPATIBLE_OBJECTS 101
  590. #define EC_R_INVALID_ARGUMENT 112
  591. #define EC_R_INVALID_COMPRESSED_POINT 110
  592. #define EC_R_INVALID_COMPRESSION_BIT 109
  593. #define EC_R_INVALID_CURVE 141
  594. #define EC_R_INVALID_DIGEST 151
  595. #define EC_R_INVALID_DIGEST_TYPE 138
  596. #define EC_R_INVALID_ENCODING 102
  597. #define EC_R_INVALID_FIELD 103
  598. #define EC_R_INVALID_FORM 104
  599. #define EC_R_INVALID_GROUP_ORDER 122
  600. #define EC_R_INVALID_KEY 165
  601. #define EC_R_INVALID_OUTPUT_LENGTH 171
  602. #define EC_R_INVALID_PEER_KEY 152
  603. #define EC_R_INVALID_PENTANOMIAL_BASIS 132
  604. #define EC_R_INVALID_PRIVATE_KEY 123
  605. #define EC_R_INVALID_TRINOMIAL_BASIS 137
  606. #define EC_R_KDF_FAILED 167
  607. #define EC_R_KDF_PARAMETER_ERROR 148
  608. #define EC_R_KEY_TRUNCATION 168
  609. #define EC_R_KEYS_NOT_SET 140
  610. #define EC_R_MISSING_PARAMETERS 124
  611. #define EC_R_MISSING_PRIVATE_KEY 125
  612. #define EC_R_NEED_NEW_SETUP_VALUES 170
  613. #define EC_R_NOT_A_NIST_PRIME 135
  614. #define EC_R_NOT_A_SUPPORTED_NIST_PRIME 136
  615. #define EC_R_NOT_IMPLEMENTED 126
  616. #define EC_R_NOT_INITIALIZED 111
  617. #define EC_R_NO_FIELD_MOD 133
  618. #define EC_R_NO_PARAMETERS_SET 139
  619. #define EC_R_PASSED_NULL_PARAMETER 134
  620. #define EC_R_PEER_KEY_ERROR 149
  621. #define EC_R_PKPARAMETERS2GROUP_FAILURE 127
  622. #define EC_R_POINT_AT_INFINITY 106
  623. #define EC_R_POINT_ARITHMETIC_FAILURE 169
  624. #define EC_R_POINT_IS_NOT_ON_CURVE 107
  625. #define EC_R_SHARED_INFO_ERROR 150
  626. #define EC_R_SLOT_FULL 108
  627. #define EC_R_UNDEFINED_GENERATOR 113
  628. #define EC_R_UNDEFINED_ORDER 128
  629. #define EC_R_UNKNOWN_COFACTOR 164
  630. #define EC_R_UNKNOWN_GROUP 129
  631. #define EC_R_UNKNOWN_ORDER 114
  632. #define EC_R_UNSUPPORTED_FIELD 131
  633. #define EC_R_WRONG_CURVE_PARAMETERS 145
  634. #define EC_R_WRONG_ORDER 130
  635. #ifdef __cplusplus
  636. }
  637. #endif
  638. #endif