package org.bouncycastle.pqc.jcajce.provider.sphincs; import java.io.IOException; import java.security.PrivateKey; import org.bouncycastle.asn1.ASN1ObjectIdentifier; import org.bouncycastle.asn1.ASN1OctetString; import org.bouncycastle.asn1.DEROctetString; import org.bouncycastle.asn1.pkcs.PrivateKeyInfo; import org.bouncycastle.asn1.x509.AlgorithmIdentifier; import org.bouncycastle.crypto.CipherParameters; import org.bouncycastle.pqc.asn1.PQCObjectIdentifiers; import org.bouncycastle.pqc.asn1.SPHINCS256KeyParams; import org.bouncycastle.pqc.crypto.sphincs.SPHINCSPrivateKeyParameters; import org.bouncycastle.pqc.jcajce.interfaces.SPHINCSKey; import org.bouncycastle.util.Arrays; public class BCSphincs256PrivateKey implements PrivateKey, SPHINCSKey { private static final long serialVersionUID = 1L; private final ASN1ObjectIdentifier treeDigest; private final SPHINCSPrivateKeyParameters params; public BCSphincs256PrivateKey( ASN1ObjectIdentifier treeDigest, SPHINCSPrivateKeyParameters params) { this.treeDigest = treeDigest; this.params = params; } public BCSphincs256PrivateKey(PrivateKeyInfo keyInfo) throws IOException { this.treeDigest = SPHINCS256KeyParams.getInstance(keyInfo.getPrivateKeyAlgorithm().getParameters()).getTreeDigest().getAlgorithm(); this.params = new SPHINCSPrivateKeyParameters(ASN1OctetString.getInstance(keyInfo.parsePrivateKey()).getOctets()); } /** * Compare this SPHINCS-256 private key with another object. * * @param o the other object * @return the result of the comparison */ public boolean equals(Object o) { if (o == null || !(o instanceof BCSphincs256PrivateKey)) { return false; } BCSphincs256PrivateKey otherKey = (BCSphincs256PrivateKey)o; return treeDigest.equals(otherKey.treeDigest) && Arrays.areEqual(params.getKeyData(), otherKey.params.getKeyData()); } public int hashCode() { return treeDigest.hashCode() + 37 * Arrays.hashCode(params.getKeyData()); } /** * @return name of the algorithm - "SPHINCS-256" */ public final String getAlgorithm() { return "SPHINCS-256"; } public byte[] getEncoded() { PrivateKeyInfo pki; try { AlgorithmIdentifier algorithmIdentifier = new AlgorithmIdentifier(PQCObjectIdentifiers.sphincs256, new SPHINCS256KeyParams(new AlgorithmIdentifier(treeDigest))); pki = new PrivateKeyInfo(algorithmIdentifier, new DEROctetString(params.getKeyData())); return pki.getEncoded(); } catch (IOException e) { return null; } } public String getFormat() { return "PKCS#8"; } public byte[] getKeyData() { return params.getKeyData(); } CipherParameters getKeyParams() { return params; } }