litep2p/crypto/rsa.rs
1// Copyright 2025 litep2p developers
2//
3// Permission is hereby granted, free of charge, to any person obtaining a
4// copy of this software and associated documentation files (the "Software"),
5// to deal in the Software without restriction, including without limitation
6// the rights to use, copy, modify, merge, publish, distribute, sublicense,
7// and/or sell copies of the Software, and to permit persons to whom the
8// Software is furnished to do so, subject to the following conditions:
9//
10// The above copyright notice and this permission notice shall be included in
11// all copies or substantial portions of the Software.
12//
13// THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
14// OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
15// FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
16// AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
17// LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
18// FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER
19// DEALINGS IN THE SOFTWARE.
20
21//! RSA public key.
22
23use crate::error::ParseError;
24use ring::signature::{UnparsedPublicKey, RSA_PKCS1_2048_8192_SHA256};
25use x509_parser::{prelude::FromDer, x509::SubjectPublicKeyInfo};
26
27/// An RSA public key.
28#[derive(Clone, Debug, PartialEq, Eq)]
29pub struct PublicKey(Vec<u8>);
30
31impl PublicKey {
32 /// Decode an RSA public key from a DER-encoded X.509 SubjectPublicKeyInfo structure.
33 pub fn try_decode_x509(spki: &[u8]) -> Result<Self, ParseError> {
34 SubjectPublicKeyInfo::from_der(spki)
35 .map(|(_, spki)| Self(spki.subject_public_key.as_ref().to_vec()))
36 .map_err(|_| ParseError::InvalidPublicKey)
37 }
38
39 /// Verify the RSA signature on a message using the public key.
40 pub fn verify(&self, msg: &[u8], sig: &[u8]) -> bool {
41 let key = UnparsedPublicKey::new(&RSA_PKCS1_2048_8192_SHA256, &self.0);
42 key.verify(msg, sig).is_ok()
43 }
44}