U
    h                     @   s   d dl mZ d dlmZ d dlmZmZ d dlmZm	Z	 d dl
mZ d dlmZ G dd de	ZG d	d
 d
eZG dd deZG dd deZG dd deZG dd deZdS )    )default_backend)hashes)ecutils)CryptographyPrivateKeyCryptographyPublicKey)	Algorithm)DNSKEYc                   @   sv   e Zd ZU ejed< ejZeed< ej	ed< ej
ed< eed< eedddd	Zed
ddZeed dddZdS )PublicECDSAkey	algorithmchosen_hashcurveoctetsN)	signaturedatareturnc                 C   sT   |d| j  }|| j d  }tt|dt|d}| j||t| j	 d S )Nr   big)
r   r   Zencode_dss_signatureint
from_bytesr   verifyr   ECDSAr   )selfr   r   Zsig_rZsig_sZsig r   :./venv/lib/python3.8/site-packages/dns/dnssecalgs/ecdsa.pyr      s    
 
zPublicECDSA.verifyr   c                 C   s*   | j  }|j| jd|j| jd S )z,Encode a public key per RFC 6605, section 4.r   )r   Zpublic_numbersxto_bytesr   y)r   Zpnr   r   r   encode_key_bytes   s    
zPublicECDSA.encode_key_bytes)r   r   c                 C   s`   |  | |jd| j }|j| j| jd  }| tj| jt|dt|ddt	 dS )Nr      r   )r   r   r   r   )
Z!_ensure_algorithm_key_combinationr   r   r   ZEllipticCurvePublicNumbersr   r   r   
public_keyr   )clsr   Zecdsa_xZecdsa_yr   r   r   from_dnskey   s    


zPublicECDSA.from_dnskey)__name__
__module____qualname__r   ZEllipticCurvePublicKey__annotations__key_clsr   r   ZHashAlgorithmZEllipticCurver   bytesr   r   classmethodr	   r$   r   r   r   r   r
   
   s   



r
   c                   @   sH   e Zd ZU ejed< ejZeZd
e	e
e	dddZed dddZd	S )PrivateECDSAr   F)r   r   r   c                 C   sf   | j |t| jj}t|\}}tj	|| jj
ddtj	|| jj
dd }|rb|  || |S )z1Sign using a private key per RFC 6605, section 4.r   )length	byteorder)r   signr   r   
public_clsr   r   Zdecode_dss_signaturer   r   r   r"   r   )r   r   r   Zder_signatureZdsa_rZdsa_sr   r   r   r   r/   2   s      zPrivateECDSA.signr   c                 C   s   | t j| jjt ddS )N)r   Zbackendr!   )r   Zgenerate_private_keyr0   r   r   )r#   r   r   r   generate=   s     zPrivateECDSA.generateN)F)r%   r&   r'   r   ZEllipticCurvePrivateKeyr(   r)   r
   r0   r*   boolr/   r+   r1   r   r   r   r   r,   -   s   

r,   c                   @   s&   e Zd ZejZe Ze	
 ZdZdS )PublicECDSAP256SHA256    N)r%   r&   r'   r   ZECDSAP256SHA256r   r   ZSHA256r   r   Z	SECP256R1r   r   r   r   r   r   r3   F   s   r3   c                   @   s   e Zd ZeZdS )PrivateECDSAP256SHA256N)r%   r&   r'   r3   r0   r   r   r   r   r5   M   s   r5   c                   @   s&   e Zd ZejZe Ze	
 ZdZdS )PublicECDSAP384SHA3840   N)r%   r&   r'   r   ZECDSAP384SHA384r   r   ZSHA384r   r   Z	SECP384R1r   r   r   r   r   r   r6   Q   s   r6   c                   @   s   e Zd ZeZdS )PrivateECDSAP384SHA384N)r%   r&   r'   r6   r0   r   r   r   r   r8   X   s   r8   N)Zcryptography.hazmat.backendsr   Zcryptography.hazmat.primitivesr   Z)cryptography.hazmat.primitives.asymmetricr   r   Zdns.dnssecalgs.cryptographyr   r   Zdns.dnssectypesr   Zdns.rdtypes.ANY.DNSKEYr	   r
   r,   r3   r5   r6   r8   r   r   r   r   <module>   s   #