mirror of
https://github.com/samba-team/samba.git
synced 2024-12-24 21:34:56 +03:00
7e8333dac3
- We avoid variables in order to do a lazy cleanup in aes_ccm_128_digest() via ZERO_STRUCTP(ctx) - We use the optimized aes_block_xor() function - We reuse A_i instead of rebuilding it everything completely. - Align AES_BLOCK_SIZE arrays to 8 bytes BUG: https://bugzilla.samba.org/show_bug.cgi?id=11451 Signed-off-by: Stefan Metzmacher <metze@samba.org> Reviewed-by: Jeremy Allison <jra@samba.org>
59 lines
1.7 KiB
C
59 lines
1.7 KiB
C
/*
|
|
AES-CCM-128 (rfc 3610)
|
|
|
|
Copyright (C) Stefan Metzmacher 2012
|
|
|
|
This program is free software; you can redistribute it and/or modify
|
|
it under the terms of the GNU General Public License as published by
|
|
the Free Software Foundation; either version 3 of the License, or
|
|
(at your option) any later version.
|
|
|
|
This program is distributed in the hope that it will be useful,
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
GNU General Public License for more details.
|
|
|
|
You should have received a copy of the GNU General Public License
|
|
along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
*/
|
|
|
|
#ifndef LIB_CRYPTO_AES_CCM_128_H
|
|
#define LIB_CRYPTO_AES_CCM_128_H
|
|
|
|
#define AES_CCM_128_M 16
|
|
#define AES_CCM_128_L 4
|
|
#define AES_CCM_128_NONCE_SIZE (15 - AES_CCM_128_L)
|
|
|
|
struct aes_ccm_128_context {
|
|
AES_KEY aes_key;
|
|
|
|
uint8_t nonce[AES_CCM_128_NONCE_SIZE];
|
|
|
|
size_t a_remain;
|
|
size_t m_remain;
|
|
|
|
uint64_t __align;
|
|
|
|
uint8_t X_i[AES_BLOCK_SIZE];
|
|
uint8_t B_i[AES_BLOCK_SIZE];
|
|
uint8_t A_i[AES_BLOCK_SIZE];
|
|
uint8_t S_i[AES_BLOCK_SIZE];
|
|
|
|
size_t B_i_ofs;
|
|
size_t S_i_ofs;
|
|
size_t S_i_ctr;
|
|
};
|
|
|
|
void aes_ccm_128_init(struct aes_ccm_128_context *ctx,
|
|
const uint8_t K[AES_BLOCK_SIZE],
|
|
const uint8_t N[AES_CCM_128_NONCE_SIZE],
|
|
size_t a_total, size_t m_total);
|
|
void aes_ccm_128_update(struct aes_ccm_128_context *ctx,
|
|
const uint8_t *v, size_t v_len);
|
|
void aes_ccm_128_crypt(struct aes_ccm_128_context *ctx,
|
|
uint8_t *m, size_t m_len);
|
|
void aes_ccm_128_digest(struct aes_ccm_128_context *ctx,
|
|
uint8_t digest[AES_BLOCK_SIZE]);
|
|
|
|
#endif /* LIB_CRYPTO_AES_CCM_128_H */
|