Add support for TrustZone backend data storage
[platform/core/security/key-manager.git] / src / manager / crypto / tz-backend / internals.h
1 /*
2  *  Copyright (c) 2017 Samsung Electronics Co., Ltd All Rights Reserved
3  *
4  *  Licensed under the Apache License, Version 2.0 (the "License");
5  *  you may not use this file except in compliance with the License.
6  *  You may obtain a copy of the License at
7  *
8  *      http://www.apache.org/licenses/LICENSE-2.0
9  *
10  *  Unless required by applicable law or agreed to in writing, software
11  *  distributed under the License is distributed on an "AS IS" BASIS,
12  *  WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  *  See the License for the specific language governing permissions and
14  *  limitations under the License
15  */
16 /*
17  * @file       internals.h
18  * @author     Krzysztof Dynowski (k.dynowski@samsung.com)
19  * @author     Lukasz Kostyra (l.kostyra@samsung.com)
20  * @version    1.0
21  */
22 #pragma once
23
24 #include <ckm/ckm-type.h>
25 #include <data-type.h>
26 #include <tz-backend/obj.h>
27 #include <generic-backend/gstore.h>
28
29 namespace CKM {
30 namespace Crypto {
31 namespace TZ {
32 namespace Internals {
33
34 using DataPair = std::pair<Data, Data>;
35 using BufferPair = std::pair<RawBuffer, RawBuffer>;
36
37 // encryption schema + buffer pair
38 using KeyIdPair = std::pair<int, RawBuffer>;
39
40 RawBuffer generateIV();
41 DataPair generateAKey(const CryptoAlgorithm &alg,
42                                         const Password &pwd,
43                                         const RawBuffer &iv);
44 Data generateSKey(const CryptoAlgorithm &alg,
45                                 const Password &pwd,
46                                 const RawBuffer &iv,
47                                 RawBuffer &tag);
48 RawBuffer importKey(const Data &key,
49                                         const Password &pwd,
50                                         const RawBuffer &iv,
51                                         RawBuffer &tag);
52
53 RawBuffer importData(const Data &data,
54                                         const Password &pwd,
55                                         const RawBuffer &iv,
56                                         RawBuffer &tag);
57
58 RawBuffer getData(const RawBuffer &dataId,
59                                   const Pwd &pwd);
60
61 void destroyData(const RawBuffer &dataId);
62
63 void destroyKey(const RawBuffer &key);
64
65 RawBuffer symmetricEncrypt(
66         const RawBuffer &key,
67         const Pwd &pwd,
68         const CryptoAlgorithm &alg,
69         const RawBuffer &data);
70 RawBuffer symmetricDecrypt(
71         const RawBuffer &key,
72         const Pwd &pwd,
73         const CryptoAlgorithm &alg,
74         const RawBuffer &cipher);
75
76 RawBuffer asymmetricEncrypt(
77         const RawBuffer &key,
78         const Pwd &pwd,
79         const CryptoAlgorithm &alg,
80         const RawBuffer &data);
81 RawBuffer asymmetricDecrypt(
82         const RawBuffer &key,
83         const Pwd &pwd,
84         const CryptoAlgorithm &alg,
85         const RawBuffer &cipher);
86
87 BufferPair encryptDataAesGcm(const RawBuffer &key,
88                                                         const Pwd &pwd,
89                                                         const RawBuffer &iv,
90                                                         int tagSize,
91                                                         const RawBuffer &data,
92                                                         const RawBuffer &aad = RawBuffer());
93
94 RawBuffer decryptDataAesGcm(const RawBuffer &key,
95                                                         const Pwd &pwd,
96                                                         const RawBuffer &iv,
97                                                         const RawBuffer &tag,
98                                                         const RawBuffer &data,
99                                                         const RawBuffer &aad = RawBuffer());
100
101 RawBuffer sign(const RawBuffer &pkey,
102                         const Pwd &pwd,
103                         const CryptoAlgorithm &alg,
104                         const RawBuffer &message);
105
106 int verify(const RawBuffer &pkey,
107                 const Pwd &pwd,
108                 const CryptoAlgorithm &alg,
109                 const RawBuffer &message,
110                 const RawBuffer &signature);
111
112 } // namespace Internals
113 } // namespace TZ
114 } // namespace Crypto
115 } // namespace CKM