Editing Keystone
Jump to navigation
Jump to search
The edit can be undone. Please check the comparison below to verify that this is what you want to do, and then publish the changes below to finish undoing the edit.
Latest revision | Your text | ||
Line 1: | Line 1: | ||
This file is generated on app package generation based on the passcode provided. It is then included in every | This file is generated on app package generation based on the passcode provided. It is then included in every savegame created by the app. | ||
It is used to prevent apps from mounting savedata of other apps, as you need to know at least the fingerprint to do it. | |||
== Passcode == | |||
The passcode is a 32 character string used on package generation to create the keystone file. | |||
The keystone file | |||
== Structure == | == Structure == | ||
Size is always 96 bytes. | Size is always 96 (0x60) bytes for both PS4 and PSVita. | ||
{| class="wikitable" | {| class="wikitable" | ||
! Offset !! Size !! Description !! | ! Offset !! Size !! Description !! Example | ||
|- | |- | ||
| 0x0 || | | 0x0 || 0x20 || MAGIC ("keystone") and some constant bytes || 6b 65 79 73 74 6f 6e 65 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 | ||
|- | |- | ||
| | | 0x20 || 0x20 || HMAC-SHA256 (32 bytes) of the bytes of the passcode using keystone_passcode_secret as key || | ||
|- | |- | ||
| | | 0x40 || 0x20 || HMAC-SHA256 (32 bytes) of the previous two sections using keystone_ks_secret as key || | ||
| | |||
|} | |} | ||
== | == Sample keystone file generation == | ||
'''CSharp''' | |||
keystone = | |||
<source lang="csharp"> | <source lang="csharp"> | ||
public static byte [] GenerateKeystoneFile (string passcode) | public static byte [] GenerateKeystoneFile (string passcode) | ||
Line 102: | Line 49: | ||
// 6. Concat the constant bytes from point 1, the fingerprint from point 3 and the hmac from point 5 | // 6. Concat the constant bytes from point 1, the fingerprint from point 3 and the hmac from point 5 | ||
keystone = keystone.Concat(sha256hmac).ToArray(); | keystone = keystone.Concat(sha256hmac).ToArray(); | ||
return keystone; | return keystone; | ||
} | } | ||
</source> | </source> | ||
== | == Sample keystone file == | ||
Sample keystone file created when provided a passcode consisting of all zeros "00000000000000000000000000000000": | |||
<pre> | <pre> | ||
The first 32 are constant: | The first 32 are constant: | ||
00000000 6b 65 79 73 74 6f 6e | 00000000 6b 65 79 73 74 6f 6e 78 02 00 01 00 00 00 00 00 |keystone........| | ||
00000010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................| | 00000010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................| | ||
Fingerprint of the passcode: | Fingerprint of the passcode: | ||
00000020 29 4a 5e | 00000020 29 4a 5e 87 6d b1 70 61 8f 2e ed 8c 42 4b 9d 82 |)J^.m.pa....BK..| | ||
00000030 88 79 c0 80 cc 66 fb c4 86 4f 69 e9 74 de b8 56 |.y...f...Oi.t..V| | 00000030 88 79 c0 80 cc 66 fb c4 86 4f 69 e9 74 de b8 56 |.y...f...Oi.t..V| | ||
SHA256Hmac of the first 64 bytes of the file: | SHA256Hmac of the first 64 bytes of the file: | ||
00000040 fa 0d 0c 2e bd 6a 00 80 63 71 3d e8 81 0d 7e 10 |.....j..cq=...~.| | 00000040 fa 0d 0c 2e bd 6a 00 80 63 71 3d e8 81 0d 7e 10 |.....j..cq=...~.| | ||
00000050 b7 | 00000050 b7 50 98 3b 91 cd 2e 4f ea 2d 20 53 10 6e b7 5d |.2.;...O.- S.n.]| | ||
</pre> | </pre> | ||