#ifndef _CACKEYHANDLE_H_
#define _CACKEYHANDLE_H_
#include "KeyHandle.h"
class CACToken;
class CACKeyRecord;
class CACKeyHandle: public Tokend::KeyHandle
{
NOCOPY(CACKeyHandle)
public:
CACKeyHandle(CACToken &cacToken, const Tokend::MetaRecord &metaRecord,
CACKeyRecord &cacKey);
~CACKeyHandle();
virtual void getKeySize(CSSM_KEY_SIZE &keySize);
virtual uint32 getOutputSize(const Context &context, uint32 inputSize,
bool encrypting);
virtual void generateSignature(const Context &context,
CSSM_ALGORITHMS signOnly, const CssmData &input, CssmData &signature);
virtual void verifySignature(const Context &context,
CSSM_ALGORITHMS signOnly, const CssmData &input,
const CssmData &signature);
virtual void generateMac(const Context &context, const CssmData &input,
CssmData &output);
virtual void verifyMac(const Context &context, const CssmData &input,
const CssmData &compare);
virtual void encrypt(const Context &context, const CssmData &clear,
CssmData &cipher);
virtual void decrypt(const Context &context, const CssmData &cipher,
CssmData &clear);
virtual void exportKey(const Context &context,
const AccessCredentials *cred, CssmKey &wrappedKey);
private:
CACToken &mToken;
CACKeyRecord &mKey;
};
class CACKeyHandleFactory : public Tokend::KeyHandleFactory
{
NOCOPY(CACKeyHandleFactory)
public:
CACKeyHandleFactory() {}
virtual ~CACKeyHandleFactory();
virtual Tokend::KeyHandle *keyHandle(Tokend::TokenContext *tokenContext,
const Tokend::MetaRecord &metaRecord, Tokend::Record &record) const;
};
#endif