src/java.base/share/classes/sun/security/util/SecurityProviderConstants.java
author wetmore
Fri, 11 May 2018 15:53:12 -0700
branchJDK-8145252-TLS13-branch
changeset 56542 56aaa6cb3693
parent 48572 1820a65c4e59
permissions -rw-r--r--
Initial TLSv1.3 Implementation
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     1
/*
56542
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
     2
 * Copyright (c) 2017, 2018, Oracle and/or its affiliates. All rights reserved.
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     4
 *
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     7
 * published by the Free Software Foundation.  Oracle designates this
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     8
 * particular file as subject to the "Classpath" exception as provided
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
     9
 * by Oracle in the LICENSE file that accompanied this code.
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    10
 *
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    11
 * This code is distributed in the hope that it will be useful, but WITHOUT
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    12
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    13
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    14
 * version 2 for more details (a copy is included in the LICENSE file that
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    15
 * accompanied this code).
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    16
 *
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    17
 * You should have received a copy of the GNU General Public License version
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    18
 * 2 along with this work; if not, write to the Free Software Foundation,
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    19
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    20
 *
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    21
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    22
 * or visit www.oracle.com if you need additional information or have any
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    23
 * questions.
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    24
 */
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    25
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    26
package sun.security.util;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    27
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    28
import java.util.regex.PatternSyntaxException;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    29
import java.security.InvalidParameterException;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    30
import sun.security.action.GetPropertyAction;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    31
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    32
/**
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    33
 * Various constants such as version number, default key length, used by
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    34
 * the JDK security/crypto providers.
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    35
 */
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    36
public final class SecurityProviderConstants {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    37
    private static final Debug debug =
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    38
        Debug.getInstance("jca", "ProviderConfig");
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    39
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    40
    // Cannot create one of these
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    41
    private SecurityProviderConstants () {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    42
    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    43
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    44
    public static final int getDefDSASubprimeSize(int primeSize) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    45
        if (primeSize <= 1024) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    46
            return 160;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    47
        } else if (primeSize == 2048) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    48
            return 224;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    49
        } else if (primeSize == 3072) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    50
            return 256;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    51
        } else {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    52
            throw new InvalidParameterException("Invalid DSA Prime Size: " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    53
                primeSize);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    54
        }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    55
    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    56
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    57
    public static final int DEF_DSA_KEY_SIZE;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    58
    public static final int DEF_RSA_KEY_SIZE;
56542
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
    59
    public static final int DEF_RSASSA_PSS_KEY_SIZE;
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    60
    public static final int DEF_DH_KEY_SIZE;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    61
    public static final int DEF_EC_KEY_SIZE;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    62
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    63
    private static final String KEY_LENGTH_PROP =
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    64
        "jdk.security.defaultKeySize";
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    65
    static {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    66
        String keyLengthStr = GetPropertyAction.privilegedGetProperty
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    67
            (KEY_LENGTH_PROP);
48572
1820a65c4e59 8178466: Better RSA parameters
valeriep
parents: 47421
diff changeset
    68
        int dsaKeySize = 2048;
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    69
        int rsaKeySize = 2048;
56542
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
    70
        int rsaSsaPssKeySize = rsaKeySize; // default to same value as RSA
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    71
        int dhKeySize = 2048;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    72
        int ecKeySize = 256;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    73
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    74
        if (keyLengthStr != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    75
            try {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    76
                String[] pairs = keyLengthStr.split(",");
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    77
                for (String p : pairs) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    78
                    String[] algoAndValue = p.split(":");
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    79
                    if (algoAndValue.length != 2) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    80
                        // invalid pair, skip to next pair
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    81
                        if (debug != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    82
                            debug.println("Ignoring invalid pair in " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    83
                                KEY_LENGTH_PROP + " property: " + p);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    84
                        }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    85
                        continue;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    86
                    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    87
                    String algoName = algoAndValue[0].trim().toUpperCase();
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    88
                    int value = -1;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    89
                    try {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    90
                        value = Integer.parseInt(algoAndValue[1].trim());
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    91
                    } catch (NumberFormatException nfe) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    92
                        // invalid value, skip to next pair
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    93
                        if (debug != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    94
                            debug.println("Ignoring invalid value in " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    95
                                KEY_LENGTH_PROP + " property: " + p);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    96
                        }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    97
                        continue;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    98
                    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
    99
                    if (algoName.equals("DSA")) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   100
                        dsaKeySize = value;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   101
                    } else if (algoName.equals("RSA")) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   102
                        rsaKeySize = value;
56542
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
   103
                    } else if (algoName.equals("RSASSA-PSS")) {
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
   104
                        rsaSsaPssKeySize = value;
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   105
                    } else if (algoName.equals("DH")) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   106
                        dhKeySize = value;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   107
                    } else if (algoName.equals("EC")) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   108
                        ecKeySize = value;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   109
                    } else {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   110
                        if (debug != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   111
                            debug.println("Ignoring unsupported algo in " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   112
                                KEY_LENGTH_PROP + " property: " + p);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   113
                        }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   114
                        continue;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   115
                    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   116
                    if (debug != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   117
                        debug.println("Overriding default " + algoName +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   118
                            " keysize with value from " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   119
                            KEY_LENGTH_PROP + " property: " + value);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   120
                    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   121
                }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   122
            } catch (PatternSyntaxException pse) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   123
                // if property syntax is not followed correctly
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   124
                if (debug != null) {
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   125
                    debug.println("Unexpected exception while parsing " +
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   126
                        KEY_LENGTH_PROP + " property: " + pse);
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   127
                }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   128
            }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   129
        }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   130
        DEF_DSA_KEY_SIZE = dsaKeySize;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   131
        DEF_RSA_KEY_SIZE = rsaKeySize;
56542
56aaa6cb3693 Initial TLSv1.3 Implementation
wetmore
parents: 48572
diff changeset
   132
        DEF_RSASSA_PSS_KEY_SIZE = rsaSsaPssKeySize;
47421
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   133
        DEF_DH_KEY_SIZE = dhKeySize;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   134
        DEF_EC_KEY_SIZE = ecKeySize;
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   135
    }
f9e03aef3a49 8181048: Refactor existing providers to refer to the same constants for default values for key length
valeriep
parents:
diff changeset
   136
}