1 // SPDX-License-Identifier: GPL-2.0-or-later
2 /*
3  * Glue code for the SHA256 Secure Hash Algorithm assembly implementation
4  * using NEON instructions.
5  *
6  * Copyright © 2015 Google Inc.
7  *
8  * This file is based on sha512_neon_glue.c:
9  *   Copyright © 2014 Jussi Kivilinna <jussi.kivilinna@iki.fi>
10  */
11 
12 #include <crypto/internal/hash.h>
13 #include <crypto/internal/simd.h>
14 #include <linux/types.h>
15 #include <linux/string.h>
16 #include <crypto/sha2.h>
17 #include <crypto/sha256_base.h>
18 #include <asm/byteorder.h>
19 #include <asm/simd.h>
20 #include <asm/neon.h>
21 
22 #include "sha256_glue.h"
23 
24 asmlinkage void sha256_block_data_order_neon(struct sha256_state *digest,
25 					     const u8 *data, int num_blks);
26 
crypto_sha256_neon_update(struct shash_desc * desc,const u8 * data,unsigned int len)27 static int crypto_sha256_neon_update(struct shash_desc *desc, const u8 *data,
28 				     unsigned int len)
29 {
30 	struct sha256_state *sctx = shash_desc_ctx(desc);
31 
32 	if (!crypto_simd_usable() ||
33 	    (sctx->count % SHA256_BLOCK_SIZE) + len < SHA256_BLOCK_SIZE)
34 		return crypto_sha256_arm_update(desc, data, len);
35 
36 	kernel_neon_begin();
37 	sha256_base_do_update(desc, data, len, sha256_block_data_order_neon);
38 	kernel_neon_end();
39 
40 	return 0;
41 }
42 
crypto_sha256_neon_finup(struct shash_desc * desc,const u8 * data,unsigned int len,u8 * out)43 static int crypto_sha256_neon_finup(struct shash_desc *desc, const u8 *data,
44 				    unsigned int len, u8 *out)
45 {
46 	if (!crypto_simd_usable())
47 		return crypto_sha256_arm_finup(desc, data, len, out);
48 
49 	kernel_neon_begin();
50 	if (len)
51 		sha256_base_do_update(desc, data, len,
52 				      sha256_block_data_order_neon);
53 	sha256_base_do_finalize(desc, sha256_block_data_order_neon);
54 	kernel_neon_end();
55 
56 	return sha256_base_finish(desc, out);
57 }
58 
crypto_sha256_neon_final(struct shash_desc * desc,u8 * out)59 static int crypto_sha256_neon_final(struct shash_desc *desc, u8 *out)
60 {
61 	return crypto_sha256_neon_finup(desc, NULL, 0, out);
62 }
63 
64 struct shash_alg sha256_neon_algs[] = { {
65 	.digestsize	=	SHA256_DIGEST_SIZE,
66 	.init		=	sha256_base_init,
67 	.update		=	crypto_sha256_neon_update,
68 	.final		=	crypto_sha256_neon_final,
69 	.finup		=	crypto_sha256_neon_finup,
70 	.descsize	=	sizeof(struct sha256_state),
71 	.base		=	{
72 		.cra_name	=	"sha256",
73 		.cra_driver_name =	"sha256-neon",
74 		.cra_priority	=	250,
75 		.cra_blocksize	=	SHA256_BLOCK_SIZE,
76 		.cra_module	=	THIS_MODULE,
77 	}
78 }, {
79 	.digestsize	=	SHA224_DIGEST_SIZE,
80 	.init		=	sha224_base_init,
81 	.update		=	crypto_sha256_neon_update,
82 	.final		=	crypto_sha256_neon_final,
83 	.finup		=	crypto_sha256_neon_finup,
84 	.descsize	=	sizeof(struct sha256_state),
85 	.base		=	{
86 		.cra_name	=	"sha224",
87 		.cra_driver_name =	"sha224-neon",
88 		.cra_priority	=	250,
89 		.cra_blocksize	=	SHA224_BLOCK_SIZE,
90 		.cra_module	=	THIS_MODULE,
91 	}
92 } };
93