use std::{fmt, io};
use rand::{thread_rng, CryptoRng, Rng};
use crate::crypto::sym::SymmetricKeyAlgorithm;
use crate::errors::Result;
use crate::packet::PacketTrait;
use crate::ser::Serialize;
use crate::types::{Tag, Version};
#[derive(Clone, PartialEq, Eq)]
pub struct SymEncryptedProtectedData {
packet_version: Version,
data: Vec<u8>,
}
impl SymEncryptedProtectedData {
pub fn from_slice(packet_version: Version, input: &[u8]) -> Result<Self> {
ensure!(input.len() > 1, "invalid input length");
ensure_eq!(input[0], 0x01, "first bytes must be 0x01");
Ok(SymEncryptedProtectedData {
data: input[1..].to_vec(),
packet_version,
})
}
pub fn encrypt_with_rng<R: CryptoRng + Rng>(
rng: &mut R,
alg: SymmetricKeyAlgorithm,
key: &[u8],
plaintext: &[u8],
) -> Result<Self> {
let data = alg.encrypt_protected_with_rng(rng, key, plaintext)?;
Ok(SymEncryptedProtectedData {
packet_version: Default::default(),
data,
})
}
pub fn encrypt(alg: SymmetricKeyAlgorithm, key: &[u8], plaintext: &[u8]) -> Result<Self> {
Self::encrypt_with_rng(&mut thread_rng(), alg, key, plaintext)
}
pub fn data(&self) -> &[u8] {
&self.data
}
}
impl Serialize for SymEncryptedProtectedData {
fn to_writer<W: io::Write>(&self, writer: &mut W) -> Result<()> {
writer.write_all(&[0x01])?;
writer.write_all(&self.data)?;
Ok(())
}
}
impl PacketTrait for SymEncryptedProtectedData {
fn packet_version(&self) -> Version {
self.packet_version
}
fn tag(&self) -> Tag {
Tag::SymEncryptedProtectedData
}
}
impl fmt::Debug for SymEncryptedProtectedData {
fn fmt(&self, f: &mut fmt::Formatter<'_>) -> fmt::Result {
f.debug_struct("SymEncryptedProtectedData")
.field("packet_version", &self.packet_version)
.field("data", &hex::encode(&self.data))
.finish()
}
}