1ad5d2789SSebastian Siewior /* 2ad5d2789SSebastian Siewior * Cryptographic API. 3ad5d2789SSebastian Siewior * 4ad5d2789SSebastian Siewior * SHA1 Secure Hash Algorithm. 5ad5d2789SSebastian Siewior * 6ad5d2789SSebastian Siewior * Derived from cryptoapi implementation, adapted for in-place 7ad5d2789SSebastian Siewior * scatterlist interface. 8ad5d2789SSebastian Siewior * 9ad5d2789SSebastian Siewior * Copyright (c) Alan Smithee. 10ad5d2789SSebastian Siewior * Copyright (c) Andrew McDonald <andrew@mcdonald.org.uk> 11ad5d2789SSebastian Siewior * Copyright (c) Jean-Francois Dive <jef@linuxbe.org> 12ad5d2789SSebastian Siewior * 13ad5d2789SSebastian Siewior * This program is free software; you can redistribute it and/or modify it 14ad5d2789SSebastian Siewior * under the terms of the GNU General Public License as published by the Free 15ad5d2789SSebastian Siewior * Software Foundation; either version 2 of the License, or (at your option) 16ad5d2789SSebastian Siewior * any later version. 17ad5d2789SSebastian Siewior * 18ad5d2789SSebastian Siewior */ 19ad5d2789SSebastian Siewior #include <linux/init.h> 20ad5d2789SSebastian Siewior #include <linux/module.h> 21ad5d2789SSebastian Siewior #include <linux/mm.h> 22ad5d2789SSebastian Siewior #include <linux/crypto.h> 23ad5d2789SSebastian Siewior #include <linux/cryptohash.h> 24ad5d2789SSebastian Siewior #include <linux/types.h> 255265eeb2SJan Glauber #include <crypto/sha.h> 26ad5d2789SSebastian Siewior #include <asm/byteorder.h> 27ad5d2789SSebastian Siewior 28ad5d2789SSebastian Siewior struct sha1_ctx { 29ad5d2789SSebastian Siewior u64 count; 30ad5d2789SSebastian Siewior u32 state[5]; 31ad5d2789SSebastian Siewior u8 buffer[64]; 32ad5d2789SSebastian Siewior }; 33ad5d2789SSebastian Siewior 34ad5d2789SSebastian Siewior static void sha1_init(struct crypto_tfm *tfm) 35ad5d2789SSebastian Siewior { 36ad5d2789SSebastian Siewior struct sha1_ctx *sctx = crypto_tfm_ctx(tfm); 37ad5d2789SSebastian Siewior static const struct sha1_ctx initstate = { 38ad5d2789SSebastian Siewior 0, 395265eeb2SJan Glauber { SHA1_H0, SHA1_H1, SHA1_H2, SHA1_H3, SHA1_H4 }, 40ad5d2789SSebastian Siewior { 0, } 41ad5d2789SSebastian Siewior }; 42ad5d2789SSebastian Siewior 43ad5d2789SSebastian Siewior *sctx = initstate; 44ad5d2789SSebastian Siewior } 45ad5d2789SSebastian Siewior 46ad5d2789SSebastian Siewior static void sha1_update(struct crypto_tfm *tfm, const u8 *data, 47ad5d2789SSebastian Siewior unsigned int len) 48ad5d2789SSebastian Siewior { 49ad5d2789SSebastian Siewior struct sha1_ctx *sctx = crypto_tfm_ctx(tfm); 50ad5d2789SSebastian Siewior unsigned int partial, done; 51ad5d2789SSebastian Siewior const u8 *src; 52ad5d2789SSebastian Siewior 53ad5d2789SSebastian Siewior partial = sctx->count & 0x3f; 54ad5d2789SSebastian Siewior sctx->count += len; 55ad5d2789SSebastian Siewior done = 0; 56ad5d2789SSebastian Siewior src = data; 57ad5d2789SSebastian Siewior 58ad5d2789SSebastian Siewior if ((partial + len) > 63) { 59ad5d2789SSebastian Siewior u32 temp[SHA_WORKSPACE_WORDS]; 60ad5d2789SSebastian Siewior 61ad5d2789SSebastian Siewior if (partial) { 62ad5d2789SSebastian Siewior done = -partial; 63ad5d2789SSebastian Siewior memcpy(sctx->buffer + partial, data, done + 64); 64ad5d2789SSebastian Siewior src = sctx->buffer; 65ad5d2789SSebastian Siewior } 66ad5d2789SSebastian Siewior 67ad5d2789SSebastian Siewior do { 68ad5d2789SSebastian Siewior sha_transform(sctx->state, src, temp); 69ad5d2789SSebastian Siewior done += 64; 70ad5d2789SSebastian Siewior src = data + done; 71ad5d2789SSebastian Siewior } while (done + 63 < len); 72ad5d2789SSebastian Siewior 73ad5d2789SSebastian Siewior memset(temp, 0, sizeof(temp)); 74ad5d2789SSebastian Siewior partial = 0; 75ad5d2789SSebastian Siewior } 76ad5d2789SSebastian Siewior memcpy(sctx->buffer + partial, src, len - done); 77ad5d2789SSebastian Siewior } 78ad5d2789SSebastian Siewior 79ad5d2789SSebastian Siewior 80ad5d2789SSebastian Siewior /* Add padding and return the message digest. */ 81ad5d2789SSebastian Siewior static void sha1_final(struct crypto_tfm *tfm, u8 *out) 82ad5d2789SSebastian Siewior { 83ad5d2789SSebastian Siewior struct sha1_ctx *sctx = crypto_tfm_ctx(tfm); 84ad5d2789SSebastian Siewior __be32 *dst = (__be32 *)out; 85ad5d2789SSebastian Siewior u32 i, index, padlen; 86ad5d2789SSebastian Siewior __be64 bits; 87ad5d2789SSebastian Siewior static const u8 padding[64] = { 0x80, }; 88ad5d2789SSebastian Siewior 89ad5d2789SSebastian Siewior bits = cpu_to_be64(sctx->count << 3); 90ad5d2789SSebastian Siewior 91ad5d2789SSebastian Siewior /* Pad out to 56 mod 64 */ 92ad5d2789SSebastian Siewior index = sctx->count & 0x3f; 93ad5d2789SSebastian Siewior padlen = (index < 56) ? (56 - index) : ((64+56) - index); 94ad5d2789SSebastian Siewior sha1_update(tfm, padding, padlen); 95ad5d2789SSebastian Siewior 96ad5d2789SSebastian Siewior /* Append length */ 97ad5d2789SSebastian Siewior sha1_update(tfm, (const u8 *)&bits, sizeof(bits)); 98ad5d2789SSebastian Siewior 99ad5d2789SSebastian Siewior /* Store state in digest */ 100ad5d2789SSebastian Siewior for (i = 0; i < 5; i++) 101ad5d2789SSebastian Siewior dst[i] = cpu_to_be32(sctx->state[i]); 102ad5d2789SSebastian Siewior 103ad5d2789SSebastian Siewior /* Wipe context */ 104ad5d2789SSebastian Siewior memset(sctx, 0, sizeof *sctx); 105ad5d2789SSebastian Siewior } 106ad5d2789SSebastian Siewior 107ad5d2789SSebastian Siewior static struct crypto_alg alg = { 108ad5d2789SSebastian Siewior .cra_name = "sha1", 109ad5d2789SSebastian Siewior .cra_driver_name= "sha1-generic", 110ad5d2789SSebastian Siewior .cra_flags = CRYPTO_ALG_TYPE_DIGEST, 1115265eeb2SJan Glauber .cra_blocksize = SHA1_BLOCK_SIZE, 112ad5d2789SSebastian Siewior .cra_ctxsize = sizeof(struct sha1_ctx), 113ad5d2789SSebastian Siewior .cra_module = THIS_MODULE, 114ad5d2789SSebastian Siewior .cra_alignmask = 3, 115ad5d2789SSebastian Siewior .cra_list = LIST_HEAD_INIT(alg.cra_list), 116ad5d2789SSebastian Siewior .cra_u = { .digest = { 117ad5d2789SSebastian Siewior .dia_digestsize = SHA1_DIGEST_SIZE, 118ad5d2789SSebastian Siewior .dia_init = sha1_init, 119ad5d2789SSebastian Siewior .dia_update = sha1_update, 120ad5d2789SSebastian Siewior .dia_final = sha1_final } } 121ad5d2789SSebastian Siewior }; 122ad5d2789SSebastian Siewior 123*3af5b90bSKamalesh Babulal static int __init sha1_generic_mod_init(void) 124ad5d2789SSebastian Siewior { 125ad5d2789SSebastian Siewior return crypto_register_alg(&alg); 126ad5d2789SSebastian Siewior } 127ad5d2789SSebastian Siewior 128*3af5b90bSKamalesh Babulal static void __exit sha1_generic_mod_fini(void) 129ad5d2789SSebastian Siewior { 130ad5d2789SSebastian Siewior crypto_unregister_alg(&alg); 131ad5d2789SSebastian Siewior } 132ad5d2789SSebastian Siewior 133*3af5b90bSKamalesh Babulal module_init(sha1_generic_mod_init); 134*3af5b90bSKamalesh Babulal module_exit(sha1_generic_mod_fini); 135ad5d2789SSebastian Siewior 136ad5d2789SSebastian Siewior MODULE_LICENSE("GPL"); 137ad5d2789SSebastian Siewior MODULE_DESCRIPTION("SHA1 Secure Hash Algorithm"); 138ad5d2789SSebastian Siewior 139ad5d2789SSebastian Siewior MODULE_ALIAS("sha1"); 140