📄 pwdbased_8h-source.html
字号:
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"><html><head><meta http-equiv="Content-Type" content="text/html;charset=UTF-8"><title>Crypto++: pwdbased.h Source File</title><link href="doxygen.css" rel="stylesheet" type="text/css"><link href="tabs.css" rel="stylesheet" type="text/css"></head><body><!-- Generated by Doxygen 1.5.2 --><div class="tabs"> <ul> <li><a href="index.html"><span>Main Page</span></a></li> <li><a href="namespaces.html"><span>Namespaces</span></a></li> <li><a href="classes.html"><span>Classes</span></a></li> <li class="current"><a href="files.html"><span>Files</span></a></li> </ul></div><div class="tabs"> <ul> <li><a href="files.html"><span>File List</span></a></li> <li><a href="globals.html"><span>File Members</span></a></li> </ul></div><h1>pwdbased.h</h1><div class="fragment"><pre class="fragment"><a name="l00001"></a>00001 <span class="comment">// pwdbased.h - written and placed in the public domain by Wei Dai</span><a name="l00002"></a>00002 <a name="l00003"></a>00003 <span class="preprocessor">#ifndef CRYPTOPP_PWDBASED_H</span><a name="l00004"></a>00004 <span class="preprocessor"></span><span class="preprocessor">#define CRYPTOPP_PWDBASED_H</span><a name="l00005"></a>00005 <span class="preprocessor"></span><a name="l00006"></a>00006 <span class="preprocessor">#include "<a class="code" href="cryptlib_8h.html">cryptlib.h</a>"</span><a name="l00007"></a>00007 <span class="preprocessor">#include "hmac.h"</span><a name="l00008"></a>00008 <span class="preprocessor">#include "hrtimer.h"</span><a name="l00009"></a>00009 <a name="l00010"></a>00010 NAMESPACE_BEGIN(CryptoPP)<a name="l00011"></a>00011 <a name="l00012"></a>00012 <span class="comment">//! abstract base class for password based key derivation function</span><a name="l00013"></a><a class="code" href="class_password_based_key_derivation_function.html">00013</a> <span class="comment"></span>class <a class="code" href="class_password_based_key_derivation_function.html" title="abstract base class for password based key derivation function">PasswordBasedKeyDerivationFunction</a><a name="l00014"></a>00014 {<a name="l00015"></a>00015 <span class="keyword">public</span>:<a name="l00016"></a>00016 <span class="keyword">virtual</span> <span class="keywordtype">size_t</span> MaxDerivedKeyLength() <span class="keyword">const</span> =0;<a name="l00017"></a>00017 <span class="keyword">virtual</span> <span class="keywordtype">bool</span> UsesPurposeByte() <span class="keyword">const</span> =0;<span class="comment"></span><a name="l00018"></a>00018 <span class="comment"> //! derive key from password</span><a name="l00019"></a>00019 <span class="comment"></span><span class="comment"> /*! If timeInSeconds != 0, will iterate until time elapsed, as measured by ThreadUserTimer</span><a name="l00020"></a>00020 <span class="comment"> Returns actual iteration count, which is equal to iterations if timeInSeconds == 0, and not less than iterations otherwise. */</span><a name="l00021"></a>00021 <span class="keyword">virtual</span> <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> DeriveKey(byte *derived, <span class="keywordtype">size_t</span> derivedLen, byte purpose, <span class="keyword">const</span> byte *password, <span class="keywordtype">size_t</span> passwordLen, <span class="keyword">const</span> byte *salt, <span class="keywordtype">size_t</span> saltLen, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> iterations, <span class="keywordtype">double</span> timeInSeconds=0) <span class="keyword">const</span> =0;<a name="l00022"></a>00022 };<a name="l00023"></a>00023 <span class="comment"></span><a name="l00024"></a>00024 <span class="comment">//! PBKDF1 from PKCS #5, T should be a HashTransformation class</span><a name="l00025"></a>00025 <span class="comment"></span><span class="keyword">template</span> <<span class="keyword">class</span> T><a name="l00026"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html">00026</a> <span class="keyword">class </span><a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html" title="PBKDF1 from PKCS #5, T should be a HashTransformation class.">PKCS5_PBKDF1</a> : <span class="keyword">public</span> <a class="code" href="class_password_based_key_derivation_function.html" title="abstract base class for password based key derivation function">PasswordBasedKeyDerivationFunction</a><a name="l00027"></a>00027 {<a name="l00028"></a>00028 <span class="keyword">public</span>:<a name="l00029"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#0bc9ad385d4d07d27c63d3f81599ad20">00029</a> <span class="keywordtype">size_t</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#0bc9ad385d4d07d27c63d3f81599ad20">MaxDerivedKeyLength</a>()<span class="keyword"> const </span>{<span class="keywordflow">return</span> T::DIGESTSIZE;}<a name="l00030"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#1763b887048f1da77bccdb6ee55899b3">00030</a> <span class="keywordtype">bool</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#1763b887048f1da77bccdb6ee55899b3">UsesPurposeByte</a>()<span class="keyword"> const </span>{<span class="keywordflow">return</span> <span class="keyword">false</span>;}<a name="l00031"></a>00031 <span class="comment">// PKCS #5 says PBKDF1 should only take 8-byte salts. This implementation allows salts of any length.</span><a name="l00032"></a>00032 <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#e0d2eab2aaf14d0478d1bbd72e5f3e5a" title="derive key from password">DeriveKey</a>(byte *derived, <span class="keywordtype">size_t</span> derivedLen, byte purpose, <span class="keyword">const</span> byte *password, <span class="keywordtype">size_t</span> passwordLen, <span class="keyword">const</span> byte *salt, <span class="keywordtype">size_t</span> saltLen, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> iterations, <span class="keywordtype">double</span> timeInSeconds=0) <span class="keyword">const</span>;<a name="l00033"></a>00033 };<a name="l00034"></a>00034 <span class="comment"></span><a name="l00035"></a>00035 <span class="comment">//! PBKDF2 from PKCS #5, T should be a HashTransformation class</span><a name="l00036"></a>00036 <span class="comment"></span><span class="keyword">template</span> <<span class="keyword">class</span> T><a name="l00037"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html">00037</a> <span class="keyword">class </span><a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html" title="PBKDF2 from PKCS #5, T should be a HashTransformation class.">PKCS5_PBKDF2_HMAC</a> : <span class="keyword">public</span> <a class="code" href="class_password_based_key_derivation_function.html" title="abstract base class for password based key derivation function">PasswordBasedKeyDerivationFunction</a><a name="l00038"></a>00038 {<a name="l00039"></a>00039 <span class="keyword">public</span>:<a name="l00040"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#28431120ba04fedfcf0b8fb53e826854">00040</a> <span class="keywordtype">size_t</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#28431120ba04fedfcf0b8fb53e826854">MaxDerivedKeyLength</a>()<span class="keyword"> const </span>{<span class="keywordflow">return</span> 0xffffffffU;} <span class="comment">// should multiply by T::DIGESTSIZE, but gets overflow that way</span><a name="l00041"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#8e823e1fd1287aaab5d0f1519f94df45">00041</a> <span class="keywordtype">bool</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#8e823e1fd1287aaab5d0f1519f94df45">UsesPurposeByte</a>()<span class="keyword"> const </span>{<span class="keywordflow">return</span> <span class="keyword">false</span>;}<a name="l00042"></a>00042 <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#570d711d2a840cdcca4b574b6c20f368" title="derive key from password">DeriveKey</a>(byte *derived, <span class="keywordtype">size_t</span> derivedLen, byte purpose, <span class="keyword">const</span> byte *password, <span class="keywordtype">size_t</span> passwordLen, <span class="keyword">const</span> byte *salt, <span class="keywordtype">size_t</span> saltLen, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> iterations, <span class="keywordtype">double</span> timeInSeconds=0) <span class="keyword">const</span>;<a name="l00043"></a>00043 };<a name="l00044"></a>00044 <a name="l00045"></a>00045 <span class="comment">/*</span><a name="l00046"></a>00046 <span class="comment">class PBKDF2Params</span><a name="l00047"></a>00047 <span class="comment">{</span><a name="l00048"></a>00048 <span class="comment">public:</span><a name="l00049"></a>00049 <span class="comment"> SecByteBlock m_salt;</span><a name="l00050"></a>00050 <span class="comment"> unsigned int m_interationCount;</span><a name="l00051"></a>00051 <span class="comment"> ASNOptional<ASNUnsignedWrapper<word32> > m_keyLength;</span><a name="l00052"></a>00052 <span class="comment">};</span><a name="l00053"></a>00053 <span class="comment">*/</span><a name="l00054"></a>00054 <a name="l00055"></a>00055 <span class="keyword">template</span> <<span class="keyword">class</span> T><a name="l00056"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#e0d2eab2aaf14d0478d1bbd72e5f3e5a">00056</a> <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#e0d2eab2aaf14d0478d1bbd72e5f3e5a" title="derive key from password">PKCS5_PBKDF1<T>::DeriveKey</a>(byte *derived, <span class="keywordtype">size_t</span> derivedLen, byte purpose, <span class="keyword">const</span> byte *password, <span class="keywordtype">size_t</span> passwordLen, <span class="keyword">const</span> byte *salt, <span class="keywordtype">size_t</span> saltLen, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> iterations, <span class="keywordtype">double</span> timeInSeconds)<span class="keyword"> const</span><a name="l00057"></a>00057 <span class="keyword"></span>{<a name="l00058"></a>00058 assert(derivedLen <= <a class="code" href="class_p_k_c_s5___p_b_k_d_f1.html#0bc9ad385d4d07d27c63d3f81599ad20">MaxDerivedKeyLength</a>());<a name="l00059"></a>00059 assert(iterations > 0 || timeInSeconds > 0);<a name="l00060"></a>00060 <a name="l00061"></a>00061 <span class="keywordflow">if</span> (!iterations)<a name="l00062"></a>00062 iterations = 1;<a name="l00063"></a>00063 <a name="l00064"></a>00064 T hash;<a name="l00065"></a>00065 hash.Update(password, passwordLen);<a name="l00066"></a>00066 hash.Update(salt, saltLen);<a name="l00067"></a>00067 <a name="l00068"></a>00068 <a class="code" href="class_sec_block.html" title="a block of memory allocated using A">SecByteBlock</a> buffer(hash.DigestSize());<a name="l00069"></a>00069 hash.Final(buffer);<a name="l00070"></a>00070 <a name="l00071"></a>00071 <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> i;<a name="l00072"></a>00072 <a class="code" href="class_thread_user_timer.html" title="measure CPU time spent executing instructions of this thread (if supported by OS)...">ThreadUserTimer</a> timer;<a name="l00073"></a>00073 <a name="l00074"></a>00074 <span class="keywordflow">if</span> (timeInSeconds)<a name="l00075"></a>00075 timer.<a class="code" href="class_timer_base.html#50804b61c4254f7289c6c67515d5d46d">StartTimer</a>();<a name="l00076"></a>00076 <a name="l00077"></a>00077 <span class="keywordflow">for</span> (i=1; i<iterations || (timeInSeconds && (i%128!=0 || timer.<a class="code" href="class_timer_base.html#3262a9d0815f1899701ee83c3ef8cf43">ElapsedTimeAsDouble</a>() < timeInSeconds)); i++)<a name="l00078"></a>00078 hash.CalculateDigest(buffer, buffer, buffer.size());<a name="l00079"></a>00079 <a name="l00080"></a>00080 memcpy(derived, buffer, derivedLen);<a name="l00081"></a>00081 <span class="keywordflow">return</span> i;<a name="l00082"></a>00082 }<a name="l00083"></a>00083 <a name="l00084"></a>00084 <span class="keyword">template</span> <<span class="keyword">class</span> T><a name="l00085"></a><a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#570d711d2a840cdcca4b574b6c20f368">00085</a> <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> <a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#570d711d2a840cdcca4b574b6c20f368" title="derive key from password">PKCS5_PBKDF2_HMAC<T>::DeriveKey</a>(byte *derived, <span class="keywordtype">size_t</span> derivedLen, byte purpose, <span class="keyword">const</span> byte *password, <span class="keywordtype">size_t</span> passwordLen, <span class="keyword">const</span> byte *salt, <span class="keywordtype">size_t</span> saltLen, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> iterations, <span class="keywordtype">double</span> timeInSeconds)<span class="keyword"> const</span><a name="l00086"></a>00086 <span class="keyword"></span>{<a name="l00087"></a>00087 assert(derivedLen <= <a class="code" href="class_p_k_c_s5___p_b_k_d_f2___h_m_a_c.html#28431120ba04fedfcf0b8fb53e826854">MaxDerivedKeyLength</a>());<a name="l00088"></a>00088 assert(iterations > 0 || timeInSeconds > 0);<a name="l00089"></a>00089 <a name="l00090"></a>00090 <span class="keywordflow">if</span> (!iterations)<a name="l00091"></a>00091 iterations = 1;<a name="l00092"></a>00092 <a name="l00093"></a>00093 <a class="code" href="class_h_m_a_c.html" title="HMAC">HMAC<T></a> hmac(password, passwordLen);<a name="l00094"></a>00094 <a class="code" href="class_sec_block.html" title="a block of memory allocated using A">SecByteBlock</a> buffer(hmac.<a class="code" href="class_h_m_a_c___base.html#c47c7569f590e0a2ff2339d058c3337d" title="size of the hash returned by Final()">DigestSize</a>());<a name="l00095"></a>00095 <a class="code" href="class_thread_user_timer.html" title="measure CPU time spent executing instructions of this thread (if supported by OS)...">ThreadUserTimer</a> timer;<a name="l00096"></a>00096 <a name="l00097"></a>00097 <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> i=1;<a name="l00098"></a>00098 <span class="keywordflow">while</span> (derivedLen > 0)<a name="l00099"></a>00099 {
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -