blob: 2653e24b73306ac615029c7ebc38774da0bfb350 [file] [log] [blame]
Shawn Willdend67afae2014-08-19 12:36:27 -06001/*
2 * Copyright 2014 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#ifndef SYSTEM_KEYMASTER_KEY_H_
18#define SYSTEM_KEYMASTER_KEY_H_
19
T.J. Mercieraed61b12022-07-26 23:20:07 +000020#include <utility>
21
Janis Danisevskiseba6c562017-02-10 14:49:53 +000022#include <assert.h>
Shawn Willden06298102015-05-25 23:12:48 -060023
Shawn Willdenb9d584d2015-01-22 16:35:00 -070024#include <hardware/keymaster_defs.h>
Janis Danisevskiseba6c562017-02-10 14:49:53 +000025#include <keymaster/UniquePtr.h>
Janis Danisevskis59c6af82017-05-31 15:05:53 -070026#include <keymaster/android_keymaster_utils.h>
Shawn Willdendeffcb72018-01-07 23:34:58 -070027#include <keymaster/authorization_set.h>
Shawn Willdena278f612014-12-23 11:22:21 -070028
Shawn Willdend67afae2014-08-19 12:36:27 -060029namespace keymaster {
30
Janis Danisevskis59c6af82017-05-31 15:05:53 -070031class KeyFactory;
32
Shawn Willdend67afae2014-08-19 12:36:27 -060033class Key {
34 public:
Shawn Willdend67afae2014-08-19 12:36:27 -060035 virtual ~Key() {}
Shawn Willdendeffcb72018-01-07 23:34:58 -070036 Key(const Key&) = delete;
37 void operator=(const Key&) = delete;
Shawn Willdend67afae2014-08-19 12:36:27 -060038
39 /**
Shawn Willdend67afae2014-08-19 12:36:27 -060040 * Return a copy of raw key material, in the specified format.
41 */
Shawn Willdenf268d742014-08-19 15:36:26 -060042 virtual keymaster_error_t formatted_key_material(keymaster_key_format_t format,
43 UniquePtr<uint8_t[]>* material,
Shawn Willdend67afae2014-08-19 12:36:27 -060044 size_t* size) const = 0;
45
Shawn Willdendeffcb72018-01-07 23:34:58 -070046 AuthProxy authorizations() const { return AuthProxy(hw_enforced_, sw_enforced_); }
Janis Danisevskis59c6af82017-05-31 15:05:53 -070047 const AuthorizationSet& hw_enforced() const { return hw_enforced_; }
48 const AuthorizationSet& sw_enforced() const { return sw_enforced_; }
49 AuthorizationSet& hw_enforced() { return hw_enforced_; }
50 AuthorizationSet& sw_enforced() { return sw_enforced_; }
51
52 const KeymasterKeyBlob& key_material() const { return key_material_; }
53 KeymasterKeyBlob& key_material() { return key_material_; }
54
Shawn Willdendeffcb72018-01-07 23:34:58 -070055 // Methods to move data out of the key. These could be overloads of the methods above, with ref
56 // qualifiers, but naming them differently makes it harder to accidentally make a temporary copy
57 // when we mean to move.
T.J. Mercieraed61b12022-07-26 23:20:07 +000058 AuthorizationSet&& hw_enforced_move() { return std::move(hw_enforced_); }
59 AuthorizationSet&& sw_enforced_move() { return std::move(sw_enforced_); }
60 KeymasterKeyBlob&& key_material_move() { return std::move(key_material_); }
Shawn Willdendeffcb72018-01-07 23:34:58 -070061
Janis Danisevskis59c6af82017-05-31 15:05:53 -070062 const KeyFactory* key_factory() const { return key_factory_; }
63 const KeyFactory*& key_factory() { return key_factory_; }
Shawn Willdendeffcb72018-01-07 23:34:58 -070064
Shawn Willden2865c252021-07-31 15:34:12 -060065 void set_secure_deletion_slot(uint32_t slot) { secure_deletion_slot_ = slot; }
66 uint32_t secure_deletion_slot() const { return secure_deletion_slot_; }
67
Janis Danisevskis59c6af82017-05-31 15:05:53 -070068 protected:
69 Key(AuthorizationSet&& hw_enforced, AuthorizationSet&& sw_enforced,
70 const KeyFactory* key_factory)
T.J. Mercieraed61b12022-07-26 23:20:07 +000071 : hw_enforced_(std::move(hw_enforced)), sw_enforced_(std::move(sw_enforced)),
Shawn Willdendeffcb72018-01-07 23:34:58 -070072 key_factory_(key_factory) {}
Shawn Willdend67afae2014-08-19 12:36:27 -060073
74 protected:
Janis Danisevskis59c6af82017-05-31 15:05:53 -070075 AuthorizationSet hw_enforced_;
76 AuthorizationSet sw_enforced_;
77 KeymasterKeyBlob key_material_;
78 const KeyFactory* key_factory_;
Shawn Willden2865c252021-07-31 15:34:12 -060079 uint32_t secure_deletion_slot_ = 0;
Shawn Willdend67afae2014-08-19 12:36:27 -060080};
81
82} // namespace keymaster
83
84#endif // SYSTEM_KEYMASTER_KEY_H_