26template<
class _Traits,
class _Ax>
27static DWORD
CertGetNameStringA(_In_ PCCERT_CONTEXT pCertContext, _In_ DWORD dwType, _In_ DWORD dwFlags, _In_opt_
void *pvTypePara, _Out_ std::basic_string<char, _Traits, _Ax> &sNameString)
33 std::unique_ptr<char[]> szBuffer(
new char[dwSize]);
34 dwSize =
::CertGetNameStringA(pCertContext, dwType, dwFlags, pvTypePara, szBuffer.get(), dwSize);
35 sNameString.assign(szBuffer.get(), dwSize - 1);
44template<
class _Traits,
class _Ax>
45static DWORD
CertGetNameStringW(_In_ PCCERT_CONTEXT pCertContext, _In_ DWORD dwType, _In_ DWORD dwFlags, _In_opt_
void *pvTypePara, _Out_ std::basic_string<wchar_t, _Traits, _Ax> &sNameString)
51 std::unique_ptr<wchar_t[]> szBuffer(
new wchar_t[dwSize]);
52 dwSize =
::CertGetNameStringW(pCertContext, dwType, dwFlags, pvTypePara, szBuffer.get(), dwSize);
53 sNameString.assign(szBuffer.get(), dwSize - 1);
62template<
class _Ty,
class _Ax>
71 aData.assign((
const _Ty*)buf, (
const _Ty*)buf + (dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
73 }
else if (GetLastError() == ERROR_MORE_DATA) {
74 aData.resize((dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
87template<
class _Ty,
class _Ax>
88static _Success_(
return != 0) BOOL
CryptGetHashParam(_In_ HCRYPTHASH hHash, _In_ DWORD dwParam, _Out_ std::vector<_Ty, _Ax> &aData, _In_ DWORD dwFlags)
96 aData.assign((
const _Ty*)buf, (
const _Ty*)buf + (dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
98 }
else if (GetLastError() == ERROR_MORE_DATA) {
99 aData.resize((dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
113static _Success_(
return != 0) BOOL
CryptGetHashParam(_In_ HCRYPTHASH hHash, _In_ DWORD dwParam, _Out_ T &data, _In_ DWORD dwFlags)
115 DWORD dwSize =
sizeof(T);
124template<
class _Ty,
class _Ax>
125static _Success_(
return != 0) BOOL
CryptGetKeyParam(_In_ HCRYPTKEY hKey, _In_ DWORD dwParam, _Out_ std::vector<_Ty, _Ax> &aData, _In_ DWORD dwFlags)
133 aData.assign((
const _Ty*)buf, (
const _Ty*)buf + (dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
135 }
else if (GetLastError() == ERROR_MORE_DATA) {
136 aData.resize((dwSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
150static BOOL
CryptGetKeyParam(_In_ HCRYPTKEY hKey, _In_ DWORD dwParam, _Out_ T &data, _In_ DWORD dwFlags)
152 DWORD dwSize =
sizeof(T);
161template<
class _Ty,
class _Ax>
162static _Success_(
return != 0) BOOL
CryptExportKey(_In_ HCRYPTKEY hKey, _In_ HCRYPTKEY hExpKey, _In_ DWORD dwBlobType, _In_ DWORD dwFlags, _Out_ std::vector<_Ty, _Ax> &aData)
164 DWORD dwKeyBLOBSize = 0;
166 if (
CryptExportKey(hKey, hExpKey, dwBlobType, dwFlags, NULL, &dwKeyBLOBSize)) {
167 aData.resize((dwKeyBLOBSize +
sizeof(_Ty) - 1) /
sizeof(_Ty));
168 if (
CryptExportKey(hKey, hExpKey, dwBlobType, dwFlags, aData.data(), &dwKeyBLOBSize))
180template<
class _Ty,
class _Ax>
181static _Success_(
return != 0) BOOL
CryptEncrypt(_In_ HCRYPTKEY hKey, _In_opt_ HCRYPTHASH hHash, _In_ BOOL Final, _In_ DWORD dwFlags, _Inout_ std::vector<_Ty, _Ax> &aData)
184 dwDataLen = (DWORD)(aData.size() *
sizeof(_Ty)),
185 dwBufLen = (DWORD)(aData.capacity() *
sizeof(_Ty)),
186 dwEncLen = dwDataLen,
190 aData.resize(dwBufLen);
191 if (
CryptEncrypt(hKey, hHash, Final, dwFlags, (BYTE*)aData.data(), &dwEncLen, dwBufLen)) {
193 assert(dwEncLen <= dwBufLen);
194 if (dwEncLen < dwBufLen)
195 aData.resize((dwEncLen +
sizeof(_Ty) - 1) /
sizeof(_Ty));
198 dwResult = GetLastError();
199 }
else if (
CryptEncrypt(hKey, NULL, Final, dwFlags, NULL, &dwEncLen, 0)) {
202 dwResult = ERROR_MORE_DATA;
204 dwResult = GetLastError();
206 if (dwResult == ERROR_MORE_DATA) {
208 aData.resize(((dwBufLen = dwEncLen) +
sizeof(_Ty) - 1) /
sizeof(_Ty));
209 dwEncLen = dwDataLen;
210 if (
CryptEncrypt(hKey, hHash, Final, dwFlags, (BYTE*)aData.data(), &dwEncLen, dwBufLen)) {
212 assert(dwEncLen <= dwBufLen);
213 if (dwEncLen < dwBufLen)
214 aData.resize((dwEncLen +
sizeof(_Ty) - 1) /
sizeof(_Ty));
219 aData.resize((dwDataLen +
sizeof(_Ty) - 1) /
sizeof(_Ty));
230template<
class _Ty,
class _Ax>
231static _Success_(
return != 0) BOOL
CryptDecrypt(_In_ HCRYPTKEY hKey, _In_opt_ HCRYPTHASH hHash, _In_ BOOL Final, _In_ DWORD dwFlags, _Inout_ std::vector<_Ty, _Ax> &aData)
233 DWORD dwDataLen = (DWORD)(aData.size() *
sizeof(_Ty));
235 if (
CryptDecrypt(hKey, hHash, Final, dwFlags, (BYTE*)aData.data(), &dwDataLen)) {
237 aData.resize((dwDataLen +
sizeof(_Ty) - 1) /
sizeof(_Ty));
285 m_h->cbCertEncoded == other->cbCertEncoded && memcmp(
m_h->pbCertEncoded, other->pbCertEncoded,
m_h->cbCertEncoded) == 0;
312 const int r = memcmp(
m_h->pbCertEncoded, other->pbCertEncoded, std::min<DWORD>(
m_h->cbCertEncoded, other->cbCertEncoded));
313 return r < 0 || r == 0 &&
m_h->cbCertEncoded < other->cbCertEncoded;
327 const int r = memcmp(
m_h->pbCertEncoded, other->pbCertEncoded, std::min<DWORD>(
m_h->cbCertEncoded, other->cbCertEncoded));
328 return r > 0 || r == 0 &&
m_h->cbCertEncoded > other->cbCertEncoded;
365 CertFreeCertificateContext(
m_h);
379 return CertDuplicateCertificateContext(h);
412 CertFreeCertificateChain(
m_h);
426 return CertDuplicateCertificateChain(h);
460 CertCloseStore(
m_h, 0);
493 CryptReleaseContext(
m_h, 0);
526 CryptDestroyHash(
m_h);
541 return CryptDuplicateHash(h, NULL, 0, &hNew) ? hNew :
invalid;
579 if (dwKeySpec != AT_KEYEXCHANGE && dwKeySpec != AT_SIGNATURE) {
580 SetLastError(ERROR_INVALID_PARAMETER);
586 if (
CryptGenKey(hProv, dwKeySpec, CRYPT_EXPORTABLE, &h)) {
588 std::vector<BYTE, sanitizing_allocator<BYTE>> key_blob;
594 size_key = *
reinterpret_cast<DWORD*
>(&key_blob[12])/8,
595 size_prime = size_key/2;
601 LPBYTE ptr = &key_blob[16];
602 *
reinterpret_cast<DWORD*
>(ptr) = 1;
603 ptr +=
sizeof(DWORD);
612 memset(ptr + 1, 0, size_prime - 1);
617 memset(ptr + 1, 0, size_prime - 1);
625 memset(ptr + 1, 0, size_key - 1);
628 if (
CryptImportKey(hProv, key_blob.data(),
static_cast<DWORD
>(key_blob.size()), 0, 0, &h)) {
647 CryptDestroyKey(
m_h);
662 return CryptDuplicateKey(h, NULL, 0, &hNew) ? hNew :
invalid;
669 #pragma warning(push)
670 #pragma warning(disable: 26432)
697 cbData = other.cbData;
699 pbData =
static_cast<BYTE*
>(LocalAlloc(LMEM_FIXED, other.cbData));
701 memcpy(pbData, other.pbData, other.cbData);
711 cbData = other.cbData;
712 pbData = other.pbData;
731 if (
this != &other) {
732 cbData = other.cbData;
736 pbData =
static_cast<BYTE*
>(LocalAlloc(LMEM_FIXED, other.cbData));
738 memcpy(pbData, other.pbData, other.cbData);
751 if (
this != &other) {
752 cbData = other.cbData;
755 pbData = other.pbData;
774 const BYTE*
data() const noexcept
796#pragma warning(disable: 4505)
803static BOOL
CertGetCertificateChain(_In_opt_ HCERTCHAINENGINE hChainEngine, _In_ PCCERT_CONTEXT pCertContext, _In_opt_ LPFILETIME pTime, _In_opt_ HCERTSTORE hAdditionalStore, _In_ PCERT_CHAIN_PARA pChainPara, _In_ DWORD dwFlags, _Reserved_ LPVOID pvReserved, _Inout_
winstd::cert_chain_context &ctx)
805 PCCERT_CHAIN_CONTEXT pChainContext;
806 BOOL bResult =
CertGetCertificateChain(hChainEngine, pCertContext, pTime, hAdditionalStore, pChainPara, dwFlags, pvReserved, &pChainContext);
808 ctx.attach(pChainContext);
858 BOOL bResult =
CryptGenKey(hProv, Algid, dwFlags, &h);
869static bool CryptImportKey(_In_ HCRYPTPROV hProv, __in_bcount(dwDataLen) LPCBYTE pbData, _In_ DWORD dwDataLen, _In_ HCRYPTKEY hPubKey, _In_ DWORD dwFlags, _Inout_
winstd::crypt_key &key)
872 BOOL bResult =
CryptImportKey(hProv, pbData, dwDataLen, hPubKey, dwFlags, &h);
900 BOOL bResult =
CryptDeriveKey(hProv, Algid, hBaseData, dwFlags, &h);
PCCERT_CHAIN_CONTEXT wrapper class.
Definition: Crypt.h:389
handle_type duplicate_internal(handle_type h) const noexcept override
Duplicates the certificate chain context.
Definition: Crypt.h:424
virtual ~cert_chain_context()
Destroys the certificate chain context.
Definition: Crypt.h:398
void free_internal() noexcept override
Destroys the certificate chain context.
Definition: Crypt.h:410
PCCERT_CONTEXT wrapper class.
Definition: Crypt.h:257
bool operator<=(const handle_type &other) const noexcept
Is certificate less than or equal?
Definition: Crypt.h:339
void free_internal() noexcept override
Destroys the certificate context.
Definition: Crypt.h:363
bool operator==(const handle_type &other) const noexcept
Is certificate equal to?
Definition: Crypt.h:280
handle_type duplicate_internal(handle_type h) const noexcept override
Duplicates the certificate context.
Definition: Crypt.h:377
bool operator>=(const handle_type &other) const noexcept
Is certificate greater than or equal?
Definition: Crypt.h:352
bool operator>(const handle_type &other) const noexcept
Is certificate greater than?
Definition: Crypt.h:324
bool operator<(const handle_type &other) const noexcept
Is certificate less than?
Definition: Crypt.h:309
bool operator!=(const handle_type &other) const noexcept
Is certificate not equal to?
Definition: Crypt.h:296
virtual ~cert_context()
Destroys the certificate context.
Definition: Crypt.h:266
HCERTSTORE wrapper class.
Definition: Crypt.h:437
virtual ~cert_store()
Closes the certificate store.
Definition: Crypt.h:446
void free_internal() noexcept override
Closes the certificate store.
Definition: Crypt.h:458
HCRYPTHASH wrapper class.
Definition: Crypt.h:503
void free_internal() noexcept override
Destroys the hash context.
Definition: Crypt.h:524
virtual ~crypt_hash()
Destroys the hash context.
Definition: Crypt.h:512
handle_type duplicate_internal(handle_type h) const noexcept override
Duplicates the hash context.
Definition: Crypt.h:538
HCRYPTKEY wrapper class.
Definition: Crypt.h:554
virtual ~crypt_key()
Destroys the key.
Definition: Crypt.h:563
bool create_exp1(HCRYPTPROV hProv, DWORD dwKeySpec)
Creates Exponent-of-one key.
Definition: Crypt.h:577
handle_type duplicate_internal(handle_type h) const noexcept override
Duplicates the key.
Definition: Crypt.h:659
void free_internal() noexcept override
Destroys the key.
Definition: Crypt.h:645
HCRYPTPROV wrapper class.
Definition: Crypt.h:470
virtual ~crypt_prov()
Releases the cryptographic context.
Definition: Crypt.h:479
void free_internal() noexcept override
Releases the cryptographic context.
Definition: Crypt.h:491
DATA_BLOB wrapper class.
Definition: Crypt.h:672
data_blob(const DATA_BLOB &other)
Duplicate an existing BLOB.
Definition: Crypt.h:695
virtual ~data_blob()
Destroys the BLOB.
Definition: Crypt.h:720
BYTE * data() noexcept
Get BLOB buffer.
Definition: Crypt.h:782
const BYTE * data() const noexcept
Get BLOB buffer.
Definition: Crypt.h:774
data_blob() noexcept
Initializes an empty BLOB.
Definition: Crypt.h:677
data_blob(data_blob &&other) noexcept
Move an existing BLOB.
Definition: Crypt.h:709
data_blob & operator=(data_blob &&other) noexcept
Move an existing BLOB.
Definition: Crypt.h:749
data_blob(BYTE *data, DWORD size) noexcept
Initializes a BLOB from existing data.
Definition: Crypt.h:686
DWORD size() const noexcept
Get BLOB size.
Definition: Crypt.h:766
data_blob & operator=(const DATA_BLOB &other)
Copy an existing BLOB.
Definition: Crypt.h:729
Base abstract template class to support object handle keeping for objects that support trivial handle...
Definition: Common.h:877
Base abstract template class to support generic object handle keeping.
Definition: Common.h:615
PCCERT_CONTEXT handle_type
Datatype of the object handle this template class handles.
Definition: Common.h:620
handle_type m_h
Object handle.
Definition: Common.h:866
void attach(handle_type h) noexcept
Sets a new object handle for the class.
Definition: Common.h:829
Windows runtime error.
Definition: Common.h:1056
static bool CryptImportPublicKeyInfo(HCRYPTPROV hCryptProv, DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, winstd::crypt_key &key)
Imports the public key.
Definition: Crypt.h:883
static BOOL WINAPI CertGetCertificateContextProperty(PCCERT_CONTEXT pCertContext, DWORD dwPropId, std::vector< _Ty, _Ax > &aData)
Retrieves the information contained in an extended property of a certificate context.
Definition: Crypt.h:63
static BOOL CertGetCertificateChain(HCERTCHAINENGINE hChainEngine, PCCERT_CONTEXT pCertContext, LPFILETIME pTime, HCERTSTORE hAdditionalStore, PCERT_CHAIN_PARA pChainPara, DWORD dwFlags, LPVOID pvReserved, winstd::cert_chain_context &ctx)
The CertGetCertificateChain function builds a certificate chain context starting from an end certific...
Definition: Crypt.h:803
static BOOL CryptGetHashParam(HCRYPTHASH hHash, DWORD dwParam, std::vector< _Ty, _Ax > &aData, DWORD dwFlags)
Retrieves data that governs the operations of a hash object. The actual hash value can be retrieved b...
Definition: Crypt.h:88
static DWORD CertGetNameStringW(PCCERT_CONTEXT pCertContext, DWORD dwType, DWORD dwFlags, void *pvTypePara, std::basic_string< wchar_t, _Traits, _Ax > &sNameString)
Obtains the subject or issuer name from a certificate CERT_CONTEXT structure and stores it in a std::...
Definition: Crypt.h:45
static BOOL CryptAcquireContextA(winstd::crypt_prov &prov, LPCSTR szContainer, LPCSTR szProvider, DWORD dwProvType, DWORD dwFlags)
Acquires the cryptographic context.
Definition: Crypt.h:813
static DWORD CertGetNameStringA(PCCERT_CONTEXT pCertContext, DWORD dwType, DWORD dwFlags, void *pvTypePara, std::basic_string< char, _Traits, _Ax > &sNameString)
Obtains the subject or issuer name from a certificate CERT_CONTEXT structure and stores it in a std::...
Definition: Crypt.h:27
static BOOL CryptGenKey(HCRYPTPROV hProv, ALG_ID Algid, DWORD dwFlags, winstd::crypt_key &key)
Generates the key.
Definition: Crypt.h:855
static BOOL CryptExportKey(HCRYPTKEY hKey, HCRYPTKEY hExpKey, DWORD dwBlobType, DWORD dwFlags, std::vector< _Ty, _Ax > &aData)
Exports a cryptographic key or a key pair from a cryptographic service provider (CSP) in a secure man...
Definition: Crypt.h:162
static BOOL CryptGetKeyParam(HCRYPTKEY hKey, DWORD dwParam, std::vector< _Ty, _Ax > &aData, DWORD dwFlags)
Retrieves data that governs the operations of a key.
Definition: Crypt.h:125
static BOOL CryptCreateHash(HCRYPTPROV hProv, ALG_ID Algid, HCRYPTKEY hKey, DWORD dwFlags, winstd::crypt_hash &hash)
Creates the hash context.
Definition: Crypt.h:841
static BOOL CryptAcquireContextW(winstd::crypt_prov &prov, LPCWSTR szContainer, LPCWSTR szProvider, DWORD dwProvType, DWORD dwFlags)
Acquires the cryptographic context.
Definition: Crypt.h:827
static BOOL CryptEncrypt(HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final, DWORD dwFlags, std::vector< _Ty, _Ax > &aData)
Encrypts data.
Definition: Crypt.h:181
static bool CryptDeriveKey(HCRYPTPROV hProv, ALG_ID Algid, HCRYPTHASH hBaseData, DWORD dwFlags, winstd::crypt_key &key)
Generates cryptographic session keys derived from a base data value.
Definition: Crypt.h:897
static BOOL CryptDecrypt(HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final, DWORD dwFlags, std::vector< _Ty, _Ax > &aData)
Decrypts data previously encrypted by using the CryptEncrypt function.
Definition: Crypt.h:231
static bool CryptImportKey(HCRYPTPROV hProv, __in_bcount(dwDataLen) LPCBYTE pbData, DWORD dwDataLen, HCRYPTKEY hPubKey, DWORD dwFlags, winstd::crypt_key &key)
Imports the key.
Definition: Crypt.h:869
#define WINSTD_STACK_BUFFER_BYTES
Size of the stack buffer in bytes used for initial system function call.
Definition: Common.h:101
#define WINSTD_DPLHANDLE_IMPL(C, INVAL)
Implements default constructors and operators to prevent their auto-generation by compiler.
Definition: Common.h:183
#define WINSTD_HANDLE_IMPL(C, INVAL)
Implements default constructors and operators to prevent their auto-generation by compiler.
Definition: Common.h:171
static const PCCERT_CONTEXT invalid
Invalid handle value.
Definition: Common.h:625