Skip to main content

CryptoKeyPair

Struct CryptoKeyPair 

Source
pub struct CryptoKeyPair {
    pub public_key_pem: String,
    pub algorithm_id: String,
    /* private fields */
}
Expand description

Algorithm-agnostic key pair that works with any supported signature algorithm

This struct provides a unified interface for key management across different cryptographic algorithms (RSA, Ed25519, etc.).

The private key is stored in a Zeroizing<String> wrapper that automatically clears memory when dropped, preventing key material from lingering in memory.

Fields§

§public_key_pem: String

The public key in PEM format

§algorithm_id: String

The algorithm identifier (e.g., “RSA-SHA256”, “Ed25519”)

Implementations§

Source§

impl CryptoKeyPair

Source

pub fn private_key_pem(&self) -> &str

Get a reference to the private key PEM

Source

pub fn generate(algorithm_id: &str) -> Result<Self>

Generate a new key pair using the specified algorithm

§Arguments
  • algorithm_id - The algorithm to use (e.g., “RSA-SHA256”, “Ed25519”)
§Example
use licenz_core::keys::CryptoKeyPair;
use licenz_core::crypto::algorithm_ids;

let keypair = CryptoKeyPair::generate(algorithm_ids::ED25519).unwrap();
Source

pub fn from_pem( private_key_pem: String, public_key_pem: String, algorithm_id: &str, ) -> Self

Create from existing PEM keys

§Arguments
  • private_key_pem - The private key in PEM format
  • public_key_pem - The public key in PEM format
  • algorithm_id - The algorithm identifier
Source

pub fn load_from_files( private_path: &Path, public_path: &Path, algorithm_id: &str, ) -> Result<Self>

Load a key pair from files

On Unix, this checks that the private key file is not readable by group/other.

§Arguments
  • private_path - Path to the private key PEM file
  • public_path - Path to the public key PEM file
  • algorithm_id - The algorithm identifier
Source

pub fn save_to_files( &self, private_path: &Path, public_path: &Path, ) -> Result<()>

Save the key pair to files

Source

pub fn sign(&self, data: &[u8]) -> Result<Vec<u8>>

Sign data using this key pair’s private key

Source

pub fn verify(&self, data: &[u8], signature: &[u8]) -> Result<()>

Verify a signature using this key pair’s public key

Source

pub fn get_algorithm(&self) -> Result<&'static dyn SignatureAlgorithm>

Get the signature algorithm for this key pair

Source

pub fn from_rsa_keypair(keypair: &KeyPair) -> Result<Self>

Convert a legacy RSA KeyPair to a CryptoKeyPair

Trait Implementations§

Source§

impl Debug for CryptoKeyPair

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

Source§

fn vzip(self) -> V

Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more