xref: /openbmc/linux/drivers/crypto/ccree/cc_cipher.c (revision f98f6e21)
163ee04c8SGilad Ben-Yossef // SPDX-License-Identifier: GPL-2.0
263ee04c8SGilad Ben-Yossef /* Copyright (C) 2012-2018 ARM Limited or its affiliates. */
363ee04c8SGilad Ben-Yossef 
463ee04c8SGilad Ben-Yossef #include <linux/kernel.h>
563ee04c8SGilad Ben-Yossef #include <linux/module.h>
663ee04c8SGilad Ben-Yossef #include <crypto/algapi.h>
763ee04c8SGilad Ben-Yossef #include <crypto/internal/skcipher.h>
863ee04c8SGilad Ben-Yossef #include <crypto/des.h>
963ee04c8SGilad Ben-Yossef #include <crypto/xts.h>
109b8d51f8SGilad Ben-Yossef #include <crypto/sm4.h>
1163ee04c8SGilad Ben-Yossef #include <crypto/scatterwalk.h>
1263ee04c8SGilad Ben-Yossef 
1363ee04c8SGilad Ben-Yossef #include "cc_driver.h"
1463ee04c8SGilad Ben-Yossef #include "cc_lli_defs.h"
1563ee04c8SGilad Ben-Yossef #include "cc_buffer_mgr.h"
1663ee04c8SGilad Ben-Yossef #include "cc_cipher.h"
1763ee04c8SGilad Ben-Yossef #include "cc_request_mgr.h"
1863ee04c8SGilad Ben-Yossef 
1963ee04c8SGilad Ben-Yossef #define MAX_ABLKCIPHER_SEQ_LEN 6
2063ee04c8SGilad Ben-Yossef 
2163ee04c8SGilad Ben-Yossef #define template_skcipher	template_u.skcipher
2263ee04c8SGilad Ben-Yossef 
2363ee04c8SGilad Ben-Yossef struct cc_cipher_handle {
2463ee04c8SGilad Ben-Yossef 	struct list_head alg_list;
2563ee04c8SGilad Ben-Yossef };
2663ee04c8SGilad Ben-Yossef 
2763ee04c8SGilad Ben-Yossef struct cc_user_key_info {
2863ee04c8SGilad Ben-Yossef 	u8 *key;
2963ee04c8SGilad Ben-Yossef 	dma_addr_t key_dma_addr;
3063ee04c8SGilad Ben-Yossef };
3163ee04c8SGilad Ben-Yossef 
3263ee04c8SGilad Ben-Yossef struct cc_hw_key_info {
3363ee04c8SGilad Ben-Yossef 	enum cc_hw_crypto_key key1_slot;
3463ee04c8SGilad Ben-Yossef 	enum cc_hw_crypto_key key2_slot;
3563ee04c8SGilad Ben-Yossef };
3663ee04c8SGilad Ben-Yossef 
3763ee04c8SGilad Ben-Yossef struct cc_cipher_ctx {
3863ee04c8SGilad Ben-Yossef 	struct cc_drvdata *drvdata;
3963ee04c8SGilad Ben-Yossef 	int keylen;
4063ee04c8SGilad Ben-Yossef 	int key_round_number;
4163ee04c8SGilad Ben-Yossef 	int cipher_mode;
4263ee04c8SGilad Ben-Yossef 	int flow_mode;
4363ee04c8SGilad Ben-Yossef 	unsigned int flags;
44a794d8d8SGilad Ben-Yossef 	bool hw_key;
4563ee04c8SGilad Ben-Yossef 	struct cc_user_key_info user;
4663ee04c8SGilad Ben-Yossef 	struct cc_hw_key_info hw;
4763ee04c8SGilad Ben-Yossef 	struct crypto_shash *shash_tfm;
4863ee04c8SGilad Ben-Yossef };
4963ee04c8SGilad Ben-Yossef 
5063ee04c8SGilad Ben-Yossef static void cc_cipher_complete(struct device *dev, void *cc_req, int err);
5163ee04c8SGilad Ben-Yossef 
52a794d8d8SGilad Ben-Yossef static inline bool cc_is_hw_key(struct crypto_tfm *tfm)
53a794d8d8SGilad Ben-Yossef {
54a794d8d8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
55a794d8d8SGilad Ben-Yossef 
56a794d8d8SGilad Ben-Yossef 	return ctx_p->hw_key;
57a794d8d8SGilad Ben-Yossef }
58a794d8d8SGilad Ben-Yossef 
5963ee04c8SGilad Ben-Yossef static int validate_keys_sizes(struct cc_cipher_ctx *ctx_p, u32 size)
6063ee04c8SGilad Ben-Yossef {
6163ee04c8SGilad Ben-Yossef 	switch (ctx_p->flow_mode) {
6263ee04c8SGilad Ben-Yossef 	case S_DIN_to_AES:
6363ee04c8SGilad Ben-Yossef 		switch (size) {
6463ee04c8SGilad Ben-Yossef 		case CC_AES_128_BIT_KEY_SIZE:
6563ee04c8SGilad Ben-Yossef 		case CC_AES_192_BIT_KEY_SIZE:
6663ee04c8SGilad Ben-Yossef 			if (ctx_p->cipher_mode != DRV_CIPHER_XTS &&
6763ee04c8SGilad Ben-Yossef 			    ctx_p->cipher_mode != DRV_CIPHER_ESSIV &&
6863ee04c8SGilad Ben-Yossef 			    ctx_p->cipher_mode != DRV_CIPHER_BITLOCKER)
6963ee04c8SGilad Ben-Yossef 				return 0;
7063ee04c8SGilad Ben-Yossef 			break;
7163ee04c8SGilad Ben-Yossef 		case CC_AES_256_BIT_KEY_SIZE:
7263ee04c8SGilad Ben-Yossef 			return 0;
7363ee04c8SGilad Ben-Yossef 		case (CC_AES_192_BIT_KEY_SIZE * 2):
7463ee04c8SGilad Ben-Yossef 		case (CC_AES_256_BIT_KEY_SIZE * 2):
7563ee04c8SGilad Ben-Yossef 			if (ctx_p->cipher_mode == DRV_CIPHER_XTS ||
7663ee04c8SGilad Ben-Yossef 			    ctx_p->cipher_mode == DRV_CIPHER_ESSIV ||
7763ee04c8SGilad Ben-Yossef 			    ctx_p->cipher_mode == DRV_CIPHER_BITLOCKER)
7863ee04c8SGilad Ben-Yossef 				return 0;
7963ee04c8SGilad Ben-Yossef 			break;
8063ee04c8SGilad Ben-Yossef 		default:
8163ee04c8SGilad Ben-Yossef 			break;
8263ee04c8SGilad Ben-Yossef 		}
83b5be8531SGustavo A. R. Silva 		break;
8463ee04c8SGilad Ben-Yossef 	case S_DIN_to_DES:
8563ee04c8SGilad Ben-Yossef 		if (size == DES3_EDE_KEY_SIZE || size == DES_KEY_SIZE)
8663ee04c8SGilad Ben-Yossef 			return 0;
8763ee04c8SGilad Ben-Yossef 		break;
889b8d51f8SGilad Ben-Yossef 	case S_DIN_to_SM4:
899b8d51f8SGilad Ben-Yossef 		if (size == SM4_KEY_SIZE)
909b8d51f8SGilad Ben-Yossef 			return 0;
9163ee04c8SGilad Ben-Yossef 	default:
9263ee04c8SGilad Ben-Yossef 		break;
9363ee04c8SGilad Ben-Yossef 	}
9463ee04c8SGilad Ben-Yossef 	return -EINVAL;
9563ee04c8SGilad Ben-Yossef }
9663ee04c8SGilad Ben-Yossef 
9763ee04c8SGilad Ben-Yossef static int validate_data_size(struct cc_cipher_ctx *ctx_p,
9863ee04c8SGilad Ben-Yossef 			      unsigned int size)
9963ee04c8SGilad Ben-Yossef {
10063ee04c8SGilad Ben-Yossef 	switch (ctx_p->flow_mode) {
10163ee04c8SGilad Ben-Yossef 	case S_DIN_to_AES:
10263ee04c8SGilad Ben-Yossef 		switch (ctx_p->cipher_mode) {
10363ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_XTS:
104f53ad3e1SGilad Ben-Yossef 			if (size >= AES_BLOCK_SIZE &&
10563ee04c8SGilad Ben-Yossef 			    IS_ALIGNED(size, AES_BLOCK_SIZE))
10663ee04c8SGilad Ben-Yossef 				return 0;
10763ee04c8SGilad Ben-Yossef 			break;
10863ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_CBC_CTS:
10963ee04c8SGilad Ben-Yossef 			if (size >= AES_BLOCK_SIZE)
11063ee04c8SGilad Ben-Yossef 				return 0;
11163ee04c8SGilad Ben-Yossef 			break;
11263ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_OFB:
11363ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_CTR:
11463ee04c8SGilad Ben-Yossef 				return 0;
11563ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_ECB:
11663ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_CBC:
11763ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_ESSIV:
11863ee04c8SGilad Ben-Yossef 		case DRV_CIPHER_BITLOCKER:
11963ee04c8SGilad Ben-Yossef 			if (IS_ALIGNED(size, AES_BLOCK_SIZE))
12063ee04c8SGilad Ben-Yossef 				return 0;
12163ee04c8SGilad Ben-Yossef 			break;
12263ee04c8SGilad Ben-Yossef 		default:
12363ee04c8SGilad Ben-Yossef 			break;
12463ee04c8SGilad Ben-Yossef 		}
12563ee04c8SGilad Ben-Yossef 		break;
12663ee04c8SGilad Ben-Yossef 	case S_DIN_to_DES:
12763ee04c8SGilad Ben-Yossef 		if (IS_ALIGNED(size, DES_BLOCK_SIZE))
12863ee04c8SGilad Ben-Yossef 			return 0;
12963ee04c8SGilad Ben-Yossef 		break;
1309b8d51f8SGilad Ben-Yossef 	case S_DIN_to_SM4:
1319b8d51f8SGilad Ben-Yossef 		switch (ctx_p->cipher_mode) {
1329b8d51f8SGilad Ben-Yossef 		case DRV_CIPHER_CTR:
1339b8d51f8SGilad Ben-Yossef 			return 0;
1349b8d51f8SGilad Ben-Yossef 		case DRV_CIPHER_ECB:
1359b8d51f8SGilad Ben-Yossef 		case DRV_CIPHER_CBC:
1369b8d51f8SGilad Ben-Yossef 			if (IS_ALIGNED(size, SM4_BLOCK_SIZE))
1379b8d51f8SGilad Ben-Yossef 				return 0;
1389b8d51f8SGilad Ben-Yossef 		default:
1399b8d51f8SGilad Ben-Yossef 			break;
1409b8d51f8SGilad Ben-Yossef 		}
14163ee04c8SGilad Ben-Yossef 	default:
14263ee04c8SGilad Ben-Yossef 		break;
14363ee04c8SGilad Ben-Yossef 	}
14463ee04c8SGilad Ben-Yossef 	return -EINVAL;
14563ee04c8SGilad Ben-Yossef }
14663ee04c8SGilad Ben-Yossef 
14763ee04c8SGilad Ben-Yossef static int cc_cipher_init(struct crypto_tfm *tfm)
14863ee04c8SGilad Ben-Yossef {
14963ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
15063ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *cc_alg =
15163ee04c8SGilad Ben-Yossef 			container_of(tfm->__crt_alg, struct cc_crypto_alg,
15263ee04c8SGilad Ben-Yossef 				     skcipher_alg.base);
15363ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(cc_alg->drvdata);
15463ee04c8SGilad Ben-Yossef 	unsigned int max_key_buf_size = cc_alg->skcipher_alg.max_keysize;
15563ee04c8SGilad Ben-Yossef 	int rc = 0;
15663ee04c8SGilad Ben-Yossef 
15763ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Initializing context @%p for %s\n", ctx_p,
15863ee04c8SGilad Ben-Yossef 		crypto_tfm_alg_name(tfm));
15963ee04c8SGilad Ben-Yossef 
16063ee04c8SGilad Ben-Yossef 	crypto_skcipher_set_reqsize(__crypto_skcipher_cast(tfm),
16163ee04c8SGilad Ben-Yossef 				    sizeof(struct cipher_req_ctx));
16263ee04c8SGilad Ben-Yossef 
16363ee04c8SGilad Ben-Yossef 	ctx_p->cipher_mode = cc_alg->cipher_mode;
16463ee04c8SGilad Ben-Yossef 	ctx_p->flow_mode = cc_alg->flow_mode;
16563ee04c8SGilad Ben-Yossef 	ctx_p->drvdata = cc_alg->drvdata;
16663ee04c8SGilad Ben-Yossef 
16763ee04c8SGilad Ben-Yossef 	/* Allocate key buffer, cache line aligned */
16863ee04c8SGilad Ben-Yossef 	ctx_p->user.key = kmalloc(max_key_buf_size, GFP_KERNEL);
16963ee04c8SGilad Ben-Yossef 	if (!ctx_p->user.key)
17063ee04c8SGilad Ben-Yossef 		return -ENOMEM;
17163ee04c8SGilad Ben-Yossef 
17263ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Allocated key buffer in context. key=@%p\n",
17363ee04c8SGilad Ben-Yossef 		ctx_p->user.key);
17463ee04c8SGilad Ben-Yossef 
17563ee04c8SGilad Ben-Yossef 	/* Map key buffer */
17663ee04c8SGilad Ben-Yossef 	ctx_p->user.key_dma_addr = dma_map_single(dev, (void *)ctx_p->user.key,
17763ee04c8SGilad Ben-Yossef 						  max_key_buf_size,
17863ee04c8SGilad Ben-Yossef 						  DMA_TO_DEVICE);
17963ee04c8SGilad Ben-Yossef 	if (dma_mapping_error(dev, ctx_p->user.key_dma_addr)) {
18063ee04c8SGilad Ben-Yossef 		dev_err(dev, "Mapping Key %u B at va=%pK for DMA failed\n",
18163ee04c8SGilad Ben-Yossef 			max_key_buf_size, ctx_p->user.key);
18263ee04c8SGilad Ben-Yossef 		return -ENOMEM;
18363ee04c8SGilad Ben-Yossef 	}
18463ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Mapped key %u B at va=%pK to dma=%pad\n",
18563ee04c8SGilad Ben-Yossef 		max_key_buf_size, ctx_p->user.key, &ctx_p->user.key_dma_addr);
18663ee04c8SGilad Ben-Yossef 
18763ee04c8SGilad Ben-Yossef 	if (ctx_p->cipher_mode == DRV_CIPHER_ESSIV) {
18863ee04c8SGilad Ben-Yossef 		/* Alloc hash tfm for essiv */
18963ee04c8SGilad Ben-Yossef 		ctx_p->shash_tfm = crypto_alloc_shash("sha256-generic", 0, 0);
19063ee04c8SGilad Ben-Yossef 		if (IS_ERR(ctx_p->shash_tfm)) {
19163ee04c8SGilad Ben-Yossef 			dev_err(dev, "Error allocating hash tfm for ESSIV.\n");
19263ee04c8SGilad Ben-Yossef 			return PTR_ERR(ctx_p->shash_tfm);
19363ee04c8SGilad Ben-Yossef 		}
19463ee04c8SGilad Ben-Yossef 	}
19563ee04c8SGilad Ben-Yossef 
19663ee04c8SGilad Ben-Yossef 	return rc;
19763ee04c8SGilad Ben-Yossef }
19863ee04c8SGilad Ben-Yossef 
19963ee04c8SGilad Ben-Yossef static void cc_cipher_exit(struct crypto_tfm *tfm)
20063ee04c8SGilad Ben-Yossef {
20163ee04c8SGilad Ben-Yossef 	struct crypto_alg *alg = tfm->__crt_alg;
20263ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *cc_alg =
20363ee04c8SGilad Ben-Yossef 			container_of(alg, struct cc_crypto_alg,
20463ee04c8SGilad Ben-Yossef 				     skcipher_alg.base);
20563ee04c8SGilad Ben-Yossef 	unsigned int max_key_buf_size = cc_alg->skcipher_alg.max_keysize;
20663ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
20763ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
20863ee04c8SGilad Ben-Yossef 
20963ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Clearing context @%p for %s\n",
21063ee04c8SGilad Ben-Yossef 		crypto_tfm_ctx(tfm), crypto_tfm_alg_name(tfm));
21163ee04c8SGilad Ben-Yossef 
21263ee04c8SGilad Ben-Yossef 	if (ctx_p->cipher_mode == DRV_CIPHER_ESSIV) {
21363ee04c8SGilad Ben-Yossef 		/* Free hash tfm for essiv */
21463ee04c8SGilad Ben-Yossef 		crypto_free_shash(ctx_p->shash_tfm);
21563ee04c8SGilad Ben-Yossef 		ctx_p->shash_tfm = NULL;
21663ee04c8SGilad Ben-Yossef 	}
21763ee04c8SGilad Ben-Yossef 
21863ee04c8SGilad Ben-Yossef 	/* Unmap key buffer */
21963ee04c8SGilad Ben-Yossef 	dma_unmap_single(dev, ctx_p->user.key_dma_addr, max_key_buf_size,
22063ee04c8SGilad Ben-Yossef 			 DMA_TO_DEVICE);
22163ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Unmapped key buffer key_dma_addr=%pad\n",
22263ee04c8SGilad Ben-Yossef 		&ctx_p->user.key_dma_addr);
22363ee04c8SGilad Ben-Yossef 
22463ee04c8SGilad Ben-Yossef 	/* Free key buffer in context */
22563ee04c8SGilad Ben-Yossef 	kzfree(ctx_p->user.key);
22663ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Free key buffer in context. key=@%p\n", ctx_p->user.key);
22763ee04c8SGilad Ben-Yossef }
22863ee04c8SGilad Ben-Yossef 
22963ee04c8SGilad Ben-Yossef struct tdes_keys {
23063ee04c8SGilad Ben-Yossef 	u8	key1[DES_KEY_SIZE];
23163ee04c8SGilad Ben-Yossef 	u8	key2[DES_KEY_SIZE];
23263ee04c8SGilad Ben-Yossef 	u8	key3[DES_KEY_SIZE];
23363ee04c8SGilad Ben-Yossef };
23463ee04c8SGilad Ben-Yossef 
235a794d8d8SGilad Ben-Yossef static enum cc_hw_crypto_key cc_slot_to_hw_key(int slot_num)
23663ee04c8SGilad Ben-Yossef {
23763ee04c8SGilad Ben-Yossef 	switch (slot_num) {
23863ee04c8SGilad Ben-Yossef 	case 0:
23963ee04c8SGilad Ben-Yossef 		return KFDE0_KEY;
24063ee04c8SGilad Ben-Yossef 	case 1:
24163ee04c8SGilad Ben-Yossef 		return KFDE1_KEY;
24263ee04c8SGilad Ben-Yossef 	case 2:
24363ee04c8SGilad Ben-Yossef 		return KFDE2_KEY;
24463ee04c8SGilad Ben-Yossef 	case 3:
24563ee04c8SGilad Ben-Yossef 		return KFDE3_KEY;
24663ee04c8SGilad Ben-Yossef 	}
24763ee04c8SGilad Ben-Yossef 	return END_OF_KEYS;
24863ee04c8SGilad Ben-Yossef }
24963ee04c8SGilad Ben-Yossef 
250a794d8d8SGilad Ben-Yossef static int cc_cipher_sethkey(struct crypto_skcipher *sktfm, const u8 *key,
251a794d8d8SGilad Ben-Yossef 			     unsigned int keylen)
252a794d8d8SGilad Ben-Yossef {
253a794d8d8SGilad Ben-Yossef 	struct crypto_tfm *tfm = crypto_skcipher_tfm(sktfm);
254a794d8d8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
255a794d8d8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
256a794d8d8SGilad Ben-Yossef 	struct cc_hkey_info hki;
257a794d8d8SGilad Ben-Yossef 
258a794d8d8SGilad Ben-Yossef 	dev_dbg(dev, "Setting HW key in context @%p for %s. keylen=%u\n",
259a794d8d8SGilad Ben-Yossef 		ctx_p, crypto_tfm_alg_name(tfm), keylen);
260a794d8d8SGilad Ben-Yossef 	dump_byte_array("key", (u8 *)key, keylen);
261a794d8d8SGilad Ben-Yossef 
262a794d8d8SGilad Ben-Yossef 	/* STAT_PHASE_0: Init and sanity checks */
263a794d8d8SGilad Ben-Yossef 
264a794d8d8SGilad Ben-Yossef 	/* This check the size of the hardware key token */
265a794d8d8SGilad Ben-Yossef 	if (keylen != sizeof(hki)) {
266a794d8d8SGilad Ben-Yossef 		dev_err(dev, "Unsupported HW key size %d.\n", keylen);
267a794d8d8SGilad Ben-Yossef 		crypto_tfm_set_flags(tfm, CRYPTO_TFM_RES_BAD_KEY_LEN);
268a794d8d8SGilad Ben-Yossef 		return -EINVAL;
269a794d8d8SGilad Ben-Yossef 	}
270a794d8d8SGilad Ben-Yossef 
271a794d8d8SGilad Ben-Yossef 	if (ctx_p->flow_mode != S_DIN_to_AES) {
272a794d8d8SGilad Ben-Yossef 		dev_err(dev, "HW key not supported for non-AES flows\n");
273a794d8d8SGilad Ben-Yossef 		return -EINVAL;
274a794d8d8SGilad Ben-Yossef 	}
275a794d8d8SGilad Ben-Yossef 
276a794d8d8SGilad Ben-Yossef 	memcpy(&hki, key, keylen);
277a794d8d8SGilad Ben-Yossef 
278a794d8d8SGilad Ben-Yossef 	/* The real key len for crypto op is the size of the HW key
279a794d8d8SGilad Ben-Yossef 	 * referenced by the HW key slot, not the hardware key token
280a794d8d8SGilad Ben-Yossef 	 */
281a794d8d8SGilad Ben-Yossef 	keylen = hki.keylen;
282a794d8d8SGilad Ben-Yossef 
283a794d8d8SGilad Ben-Yossef 	if (validate_keys_sizes(ctx_p, keylen)) {
284a794d8d8SGilad Ben-Yossef 		dev_err(dev, "Unsupported key size %d.\n", keylen);
285a794d8d8SGilad Ben-Yossef 		crypto_tfm_set_flags(tfm, CRYPTO_TFM_RES_BAD_KEY_LEN);
286a794d8d8SGilad Ben-Yossef 		return -EINVAL;
287a794d8d8SGilad Ben-Yossef 	}
288a794d8d8SGilad Ben-Yossef 
289a794d8d8SGilad Ben-Yossef 	ctx_p->hw.key1_slot = cc_slot_to_hw_key(hki.hw_key1);
290a794d8d8SGilad Ben-Yossef 	if (ctx_p->hw.key1_slot == END_OF_KEYS) {
291a794d8d8SGilad Ben-Yossef 		dev_err(dev, "Unsupported hw key1 number (%d)\n", hki.hw_key1);
292a794d8d8SGilad Ben-Yossef 		return -EINVAL;
293a794d8d8SGilad Ben-Yossef 	}
294a794d8d8SGilad Ben-Yossef 
295a794d8d8SGilad Ben-Yossef 	if (ctx_p->cipher_mode == DRV_CIPHER_XTS ||
296a794d8d8SGilad Ben-Yossef 	    ctx_p->cipher_mode == DRV_CIPHER_ESSIV ||
297a794d8d8SGilad Ben-Yossef 	    ctx_p->cipher_mode == DRV_CIPHER_BITLOCKER) {
298a794d8d8SGilad Ben-Yossef 		if (hki.hw_key1 == hki.hw_key2) {
299a794d8d8SGilad Ben-Yossef 			dev_err(dev, "Illegal hw key numbers (%d,%d)\n",
300a794d8d8SGilad Ben-Yossef 				hki.hw_key1, hki.hw_key2);
301a794d8d8SGilad Ben-Yossef 			return -EINVAL;
302a794d8d8SGilad Ben-Yossef 		}
303a794d8d8SGilad Ben-Yossef 		ctx_p->hw.key2_slot = cc_slot_to_hw_key(hki.hw_key2);
304a794d8d8SGilad Ben-Yossef 		if (ctx_p->hw.key2_slot == END_OF_KEYS) {
305a794d8d8SGilad Ben-Yossef 			dev_err(dev, "Unsupported hw key2 number (%d)\n",
306a794d8d8SGilad Ben-Yossef 				hki.hw_key2);
307a794d8d8SGilad Ben-Yossef 			return -EINVAL;
308a794d8d8SGilad Ben-Yossef 		}
309a794d8d8SGilad Ben-Yossef 	}
310a794d8d8SGilad Ben-Yossef 
311a794d8d8SGilad Ben-Yossef 	ctx_p->keylen = keylen;
312a794d8d8SGilad Ben-Yossef 	ctx_p->hw_key = true;
313a794d8d8SGilad Ben-Yossef 	dev_dbg(dev, "cc_is_hw_key ret 0");
314a794d8d8SGilad Ben-Yossef 
315a794d8d8SGilad Ben-Yossef 	return 0;
316a794d8d8SGilad Ben-Yossef }
317a794d8d8SGilad Ben-Yossef 
31863ee04c8SGilad Ben-Yossef static int cc_cipher_setkey(struct crypto_skcipher *sktfm, const u8 *key,
31963ee04c8SGilad Ben-Yossef 			    unsigned int keylen)
32063ee04c8SGilad Ben-Yossef {
32163ee04c8SGilad Ben-Yossef 	struct crypto_tfm *tfm = crypto_skcipher_tfm(sktfm);
32263ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
32363ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
32463ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *cc_alg =
32563ee04c8SGilad Ben-Yossef 			container_of(tfm->__crt_alg, struct cc_crypto_alg,
32663ee04c8SGilad Ben-Yossef 				     skcipher_alg.base);
32763ee04c8SGilad Ben-Yossef 	unsigned int max_key_buf_size = cc_alg->skcipher_alg.max_keysize;
32863ee04c8SGilad Ben-Yossef 
32963ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Setting key in context @%p for %s. keylen=%u\n",
33063ee04c8SGilad Ben-Yossef 		ctx_p, crypto_tfm_alg_name(tfm), keylen);
33163ee04c8SGilad Ben-Yossef 	dump_byte_array("key", (u8 *)key, keylen);
33263ee04c8SGilad Ben-Yossef 
33363ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_0: Init and sanity checks */
33463ee04c8SGilad Ben-Yossef 
33563ee04c8SGilad Ben-Yossef 	if (validate_keys_sizes(ctx_p, keylen)) {
33663ee04c8SGilad Ben-Yossef 		dev_err(dev, "Unsupported key size %d.\n", keylen);
33763ee04c8SGilad Ben-Yossef 		crypto_tfm_set_flags(tfm, CRYPTO_TFM_RES_BAD_KEY_LEN);
33863ee04c8SGilad Ben-Yossef 		return -EINVAL;
33963ee04c8SGilad Ben-Yossef 	}
34063ee04c8SGilad Ben-Yossef 
341a794d8d8SGilad Ben-Yossef 	ctx_p->hw_key = false;
34263ee04c8SGilad Ben-Yossef 
34363ee04c8SGilad Ben-Yossef 	/*
34463ee04c8SGilad Ben-Yossef 	 * Verify DES weak keys
34563ee04c8SGilad Ben-Yossef 	 * Note that we're dropping the expanded key since the
34663ee04c8SGilad Ben-Yossef 	 * HW does the expansion on its own.
34763ee04c8SGilad Ben-Yossef 	 */
34863ee04c8SGilad Ben-Yossef 	if (ctx_p->flow_mode == S_DIN_to_DES) {
3495db46ac2SArnd Bergmann 		u32 tmp[DES3_EDE_EXPKEY_WORDS];
35063ee04c8SGilad Ben-Yossef 		if (keylen == DES3_EDE_KEY_SIZE &&
35163ee04c8SGilad Ben-Yossef 		    __des3_ede_setkey(tmp, &tfm->crt_flags, key,
35263ee04c8SGilad Ben-Yossef 				      DES3_EDE_KEY_SIZE)) {
35363ee04c8SGilad Ben-Yossef 			dev_dbg(dev, "weak 3DES key");
35463ee04c8SGilad Ben-Yossef 			return -EINVAL;
35563ee04c8SGilad Ben-Yossef 		} else if (!des_ekey(tmp, key) &&
356231baecdSEric Biggers 			   (crypto_tfm_get_flags(tfm) &
357231baecdSEric Biggers 			    CRYPTO_TFM_REQ_FORBID_WEAK_KEYS)) {
35863ee04c8SGilad Ben-Yossef 			tfm->crt_flags |= CRYPTO_TFM_RES_WEAK_KEY;
35963ee04c8SGilad Ben-Yossef 			dev_dbg(dev, "weak DES key");
36063ee04c8SGilad Ben-Yossef 			return -EINVAL;
36163ee04c8SGilad Ben-Yossef 		}
36263ee04c8SGilad Ben-Yossef 	}
36363ee04c8SGilad Ben-Yossef 
36463ee04c8SGilad Ben-Yossef 	if (ctx_p->cipher_mode == DRV_CIPHER_XTS &&
36563ee04c8SGilad Ben-Yossef 	    xts_check_key(tfm, key, keylen)) {
36663ee04c8SGilad Ben-Yossef 		dev_dbg(dev, "weak XTS key");
36763ee04c8SGilad Ben-Yossef 		return -EINVAL;
36863ee04c8SGilad Ben-Yossef 	}
36963ee04c8SGilad Ben-Yossef 
37063ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_1: Copy key to ctx */
37163ee04c8SGilad Ben-Yossef 	dma_sync_single_for_cpu(dev, ctx_p->user.key_dma_addr,
37263ee04c8SGilad Ben-Yossef 				max_key_buf_size, DMA_TO_DEVICE);
37363ee04c8SGilad Ben-Yossef 
37463ee04c8SGilad Ben-Yossef 	memcpy(ctx_p->user.key, key, keylen);
37563ee04c8SGilad Ben-Yossef 	if (keylen == 24)
37663ee04c8SGilad Ben-Yossef 		memset(ctx_p->user.key + 24, 0, CC_AES_KEY_SIZE_MAX - 24);
37763ee04c8SGilad Ben-Yossef 
37863ee04c8SGilad Ben-Yossef 	if (ctx_p->cipher_mode == DRV_CIPHER_ESSIV) {
37963ee04c8SGilad Ben-Yossef 		/* sha256 for key2 - use sw implementation */
38063ee04c8SGilad Ben-Yossef 		int key_len = keylen >> 1;
38163ee04c8SGilad Ben-Yossef 		int err;
38263ee04c8SGilad Ben-Yossef 
38363ee04c8SGilad Ben-Yossef 		SHASH_DESC_ON_STACK(desc, ctx_p->shash_tfm);
38463ee04c8SGilad Ben-Yossef 
38563ee04c8SGilad Ben-Yossef 		desc->tfm = ctx_p->shash_tfm;
38663ee04c8SGilad Ben-Yossef 
38763ee04c8SGilad Ben-Yossef 		err = crypto_shash_digest(desc, ctx_p->user.key, key_len,
38863ee04c8SGilad Ben-Yossef 					  ctx_p->user.key + key_len);
38963ee04c8SGilad Ben-Yossef 		if (err) {
39063ee04c8SGilad Ben-Yossef 			dev_err(dev, "Failed to hash ESSIV key.\n");
39163ee04c8SGilad Ben-Yossef 			return err;
39263ee04c8SGilad Ben-Yossef 		}
39363ee04c8SGilad Ben-Yossef 	}
39463ee04c8SGilad Ben-Yossef 	dma_sync_single_for_device(dev, ctx_p->user.key_dma_addr,
39563ee04c8SGilad Ben-Yossef 				   max_key_buf_size, DMA_TO_DEVICE);
39663ee04c8SGilad Ben-Yossef 	ctx_p->keylen = keylen;
39763ee04c8SGilad Ben-Yossef 
39863ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "return safely");
39963ee04c8SGilad Ben-Yossef 	return 0;
40063ee04c8SGilad Ben-Yossef }
40163ee04c8SGilad Ben-Yossef 
402dd8486c7SGilad Ben-Yossef static void cc_setup_state_desc(struct crypto_tfm *tfm,
40363ee04c8SGilad Ben-Yossef 				 struct cipher_req_ctx *req_ctx,
40463ee04c8SGilad Ben-Yossef 				 unsigned int ivsize, unsigned int nbytes,
40563ee04c8SGilad Ben-Yossef 				 struct cc_hw_desc desc[],
40663ee04c8SGilad Ben-Yossef 				 unsigned int *seq_size)
40763ee04c8SGilad Ben-Yossef {
40863ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
40963ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
41063ee04c8SGilad Ben-Yossef 	int cipher_mode = ctx_p->cipher_mode;
41163ee04c8SGilad Ben-Yossef 	int flow_mode = ctx_p->flow_mode;
41263ee04c8SGilad Ben-Yossef 	int direction = req_ctx->gen_ctx.op_type;
41363ee04c8SGilad Ben-Yossef 	dma_addr_t key_dma_addr = ctx_p->user.key_dma_addr;
41463ee04c8SGilad Ben-Yossef 	unsigned int key_len = ctx_p->keylen;
41563ee04c8SGilad Ben-Yossef 	dma_addr_t iv_dma_addr = req_ctx->gen_ctx.iv_dma_addr;
41663ee04c8SGilad Ben-Yossef 	unsigned int du_size = nbytes;
41763ee04c8SGilad Ben-Yossef 
41863ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *cc_alg =
41963ee04c8SGilad Ben-Yossef 		container_of(tfm->__crt_alg, struct cc_crypto_alg,
42063ee04c8SGilad Ben-Yossef 			     skcipher_alg.base);
42163ee04c8SGilad Ben-Yossef 
42263ee04c8SGilad Ben-Yossef 	if (cc_alg->data_unit)
42363ee04c8SGilad Ben-Yossef 		du_size = cc_alg->data_unit;
42463ee04c8SGilad Ben-Yossef 
42563ee04c8SGilad Ben-Yossef 	switch (cipher_mode) {
426dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_ECB:
427dd8486c7SGilad Ben-Yossef 		break;
42863ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_CBC:
42963ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_CBC_CTS:
43063ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_CTR:
43163ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_OFB:
432dd8486c7SGilad Ben-Yossef 		/* Load IV */
43363ee04c8SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
43463ee04c8SGilad Ben-Yossef 		set_din_type(&desc[*seq_size], DMA_DLLI, iv_dma_addr, ivsize,
43563ee04c8SGilad Ben-Yossef 			     NS_BIT);
43663ee04c8SGilad Ben-Yossef 		set_cipher_config0(&desc[*seq_size], direction);
43763ee04c8SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
43863ee04c8SGilad Ben-Yossef 		set_cipher_mode(&desc[*seq_size], cipher_mode);
43963ee04c8SGilad Ben-Yossef 		if (cipher_mode == DRV_CIPHER_CTR ||
44063ee04c8SGilad Ben-Yossef 		    cipher_mode == DRV_CIPHER_OFB) {
44163ee04c8SGilad Ben-Yossef 			set_setup_mode(&desc[*seq_size], SETUP_LOAD_STATE1);
44263ee04c8SGilad Ben-Yossef 		} else {
44363ee04c8SGilad Ben-Yossef 			set_setup_mode(&desc[*seq_size], SETUP_LOAD_STATE0);
44463ee04c8SGilad Ben-Yossef 		}
44563ee04c8SGilad Ben-Yossef 		(*seq_size)++;
446dd8486c7SGilad Ben-Yossef 		break;
447dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_XTS:
448dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_ESSIV:
449dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_BITLOCKER:
450dd8486c7SGilad Ben-Yossef 		/* load XEX key */
451dd8486c7SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
452dd8486c7SGilad Ben-Yossef 		set_cipher_mode(&desc[*seq_size], cipher_mode);
453dd8486c7SGilad Ben-Yossef 		set_cipher_config0(&desc[*seq_size], direction);
454dd8486c7SGilad Ben-Yossef 		if (cc_is_hw_key(tfm)) {
455dd8486c7SGilad Ben-Yossef 			set_hw_crypto_key(&desc[*seq_size],
456dd8486c7SGilad Ben-Yossef 					  ctx_p->hw.key2_slot);
457dd8486c7SGilad Ben-Yossef 		} else {
458dd8486c7SGilad Ben-Yossef 			set_din_type(&desc[*seq_size], DMA_DLLI,
459dd8486c7SGilad Ben-Yossef 				     (key_dma_addr + (key_len / 2)),
460dd8486c7SGilad Ben-Yossef 				     (key_len / 2), NS_BIT);
461dd8486c7SGilad Ben-Yossef 		}
462dd8486c7SGilad Ben-Yossef 		set_xex_data_unit_size(&desc[*seq_size], du_size);
463dd8486c7SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], S_DIN_to_AES2);
464dd8486c7SGilad Ben-Yossef 		set_key_size_aes(&desc[*seq_size], (key_len / 2));
465dd8486c7SGilad Ben-Yossef 		set_setup_mode(&desc[*seq_size], SETUP_LOAD_XEX_KEY);
466dd8486c7SGilad Ben-Yossef 		(*seq_size)++;
467dd8486c7SGilad Ben-Yossef 
468dd8486c7SGilad Ben-Yossef 		/* Load IV */
469dd8486c7SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
470dd8486c7SGilad Ben-Yossef 		set_setup_mode(&desc[*seq_size], SETUP_LOAD_STATE1);
471dd8486c7SGilad Ben-Yossef 		set_cipher_mode(&desc[*seq_size], cipher_mode);
472dd8486c7SGilad Ben-Yossef 		set_cipher_config0(&desc[*seq_size], direction);
473dd8486c7SGilad Ben-Yossef 		set_key_size_aes(&desc[*seq_size], (key_len / 2));
474dd8486c7SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
475dd8486c7SGilad Ben-Yossef 		set_din_type(&desc[*seq_size], DMA_DLLI, iv_dma_addr,
476dd8486c7SGilad Ben-Yossef 			     CC_AES_BLOCK_SIZE, NS_BIT);
477dd8486c7SGilad Ben-Yossef 		(*seq_size)++;
478dd8486c7SGilad Ben-Yossef 		break;
479dd8486c7SGilad Ben-Yossef 	default:
480dd8486c7SGilad Ben-Yossef 		dev_err(dev, "Unsupported cipher mode (%d)\n", cipher_mode);
481dd8486c7SGilad Ben-Yossef 	}
482dd8486c7SGilad Ben-Yossef }
483dd8486c7SGilad Ben-Yossef 
484dd8486c7SGilad Ben-Yossef 
485dd8486c7SGilad Ben-Yossef static void cc_setup_key_desc(struct crypto_tfm *tfm,
486dd8486c7SGilad Ben-Yossef 			      struct cipher_req_ctx *req_ctx,
487dd8486c7SGilad Ben-Yossef 			      unsigned int nbytes, struct cc_hw_desc desc[],
488dd8486c7SGilad Ben-Yossef 			      unsigned int *seq_size)
489dd8486c7SGilad Ben-Yossef {
490dd8486c7SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
491dd8486c7SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
492dd8486c7SGilad Ben-Yossef 	int cipher_mode = ctx_p->cipher_mode;
493dd8486c7SGilad Ben-Yossef 	int flow_mode = ctx_p->flow_mode;
494dd8486c7SGilad Ben-Yossef 	int direction = req_ctx->gen_ctx.op_type;
495dd8486c7SGilad Ben-Yossef 	dma_addr_t key_dma_addr = ctx_p->user.key_dma_addr;
496dd8486c7SGilad Ben-Yossef 	unsigned int key_len = ctx_p->keylen;
497dd8486c7SGilad Ben-Yossef 	unsigned int du_size = nbytes;
498dd8486c7SGilad Ben-Yossef 
499dd8486c7SGilad Ben-Yossef 	struct cc_crypto_alg *cc_alg =
500dd8486c7SGilad Ben-Yossef 		container_of(tfm->__crt_alg, struct cc_crypto_alg,
501dd8486c7SGilad Ben-Yossef 			     skcipher_alg.base);
502dd8486c7SGilad Ben-Yossef 
503dd8486c7SGilad Ben-Yossef 	if (cc_alg->data_unit)
504dd8486c7SGilad Ben-Yossef 		du_size = cc_alg->data_unit;
505dd8486c7SGilad Ben-Yossef 
506dd8486c7SGilad Ben-Yossef 	switch (cipher_mode) {
507dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_CBC:
508dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_CBC_CTS:
509dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_CTR:
510dd8486c7SGilad Ben-Yossef 	case DRV_CIPHER_OFB:
51163ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_ECB:
51263ee04c8SGilad Ben-Yossef 		/* Load key */
51363ee04c8SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
51463ee04c8SGilad Ben-Yossef 		set_cipher_mode(&desc[*seq_size], cipher_mode);
51563ee04c8SGilad Ben-Yossef 		set_cipher_config0(&desc[*seq_size], direction);
51663ee04c8SGilad Ben-Yossef 		if (flow_mode == S_DIN_to_AES) {
51763ee04c8SGilad Ben-Yossef 			if (cc_is_hw_key(tfm)) {
51863ee04c8SGilad Ben-Yossef 				set_hw_crypto_key(&desc[*seq_size],
51963ee04c8SGilad Ben-Yossef 						  ctx_p->hw.key1_slot);
52063ee04c8SGilad Ben-Yossef 			} else {
52163ee04c8SGilad Ben-Yossef 				set_din_type(&desc[*seq_size], DMA_DLLI,
52263ee04c8SGilad Ben-Yossef 					     key_dma_addr, ((key_len == 24) ?
52363ee04c8SGilad Ben-Yossef 							    AES_MAX_KEY_SIZE :
52463ee04c8SGilad Ben-Yossef 							    key_len), NS_BIT);
52563ee04c8SGilad Ben-Yossef 			}
52663ee04c8SGilad Ben-Yossef 			set_key_size_aes(&desc[*seq_size], key_len);
52763ee04c8SGilad Ben-Yossef 		} else {
52863ee04c8SGilad Ben-Yossef 			/*des*/
52963ee04c8SGilad Ben-Yossef 			set_din_type(&desc[*seq_size], DMA_DLLI, key_dma_addr,
53063ee04c8SGilad Ben-Yossef 				     key_len, NS_BIT);
53163ee04c8SGilad Ben-Yossef 			set_key_size_des(&desc[*seq_size], key_len);
53263ee04c8SGilad Ben-Yossef 		}
53363ee04c8SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
53463ee04c8SGilad Ben-Yossef 		set_setup_mode(&desc[*seq_size], SETUP_LOAD_KEY0);
53563ee04c8SGilad Ben-Yossef 		(*seq_size)++;
53663ee04c8SGilad Ben-Yossef 		break;
53763ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_XTS:
53863ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_ESSIV:
53963ee04c8SGilad Ben-Yossef 	case DRV_CIPHER_BITLOCKER:
54063ee04c8SGilad Ben-Yossef 		/* Load AES key */
54163ee04c8SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
54263ee04c8SGilad Ben-Yossef 		set_cipher_mode(&desc[*seq_size], cipher_mode);
54363ee04c8SGilad Ben-Yossef 		set_cipher_config0(&desc[*seq_size], direction);
54463ee04c8SGilad Ben-Yossef 		if (cc_is_hw_key(tfm)) {
54563ee04c8SGilad Ben-Yossef 			set_hw_crypto_key(&desc[*seq_size],
54663ee04c8SGilad Ben-Yossef 					  ctx_p->hw.key1_slot);
54763ee04c8SGilad Ben-Yossef 		} else {
54863ee04c8SGilad Ben-Yossef 			set_din_type(&desc[*seq_size], DMA_DLLI, key_dma_addr,
54963ee04c8SGilad Ben-Yossef 				     (key_len / 2), NS_BIT);
55063ee04c8SGilad Ben-Yossef 		}
55163ee04c8SGilad Ben-Yossef 		set_key_size_aes(&desc[*seq_size], (key_len / 2));
55263ee04c8SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
55363ee04c8SGilad Ben-Yossef 		set_setup_mode(&desc[*seq_size], SETUP_LOAD_KEY0);
55463ee04c8SGilad Ben-Yossef 		(*seq_size)++;
55563ee04c8SGilad Ben-Yossef 		break;
55663ee04c8SGilad Ben-Yossef 	default:
55763ee04c8SGilad Ben-Yossef 		dev_err(dev, "Unsupported cipher mode (%d)\n", cipher_mode);
55863ee04c8SGilad Ben-Yossef 	}
55963ee04c8SGilad Ben-Yossef }
56063ee04c8SGilad Ben-Yossef 
5614b1d7debSGilad Ben-Yossef static void cc_setup_mlli_desc(struct crypto_tfm *tfm,
56263ee04c8SGilad Ben-Yossef 			       struct cipher_req_ctx *req_ctx,
5634b1d7debSGilad Ben-Yossef 			       struct scatterlist *dst, struct scatterlist *src,
5644b1d7debSGilad Ben-Yossef 			       unsigned int nbytes, void *areq,
5654b1d7debSGilad Ben-Yossef 			       struct cc_hw_desc desc[], unsigned int *seq_size)
5664b1d7debSGilad Ben-Yossef {
5674b1d7debSGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
5684b1d7debSGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
5694b1d7debSGilad Ben-Yossef 
5704b1d7debSGilad Ben-Yossef 	if (req_ctx->dma_buf_type == CC_DMA_BUF_MLLI) {
5714b1d7debSGilad Ben-Yossef 		/* bypass */
5724b1d7debSGilad Ben-Yossef 		dev_dbg(dev, " bypass params addr %pad length 0x%X addr 0x%08X\n",
5734b1d7debSGilad Ben-Yossef 			&req_ctx->mlli_params.mlli_dma_addr,
5744b1d7debSGilad Ben-Yossef 			req_ctx->mlli_params.mlli_len,
5754b1d7debSGilad Ben-Yossef 			(unsigned int)ctx_p->drvdata->mlli_sram_addr);
5764b1d7debSGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
5774b1d7debSGilad Ben-Yossef 		set_din_type(&desc[*seq_size], DMA_DLLI,
5784b1d7debSGilad Ben-Yossef 			     req_ctx->mlli_params.mlli_dma_addr,
5794b1d7debSGilad Ben-Yossef 			     req_ctx->mlli_params.mlli_len, NS_BIT);
5804b1d7debSGilad Ben-Yossef 		set_dout_sram(&desc[*seq_size],
5814b1d7debSGilad Ben-Yossef 			      ctx_p->drvdata->mlli_sram_addr,
5824b1d7debSGilad Ben-Yossef 			      req_ctx->mlli_params.mlli_len);
5834b1d7debSGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], BYPASS);
5844b1d7debSGilad Ben-Yossef 		(*seq_size)++;
5854b1d7debSGilad Ben-Yossef 	}
5864b1d7debSGilad Ben-Yossef }
5874b1d7debSGilad Ben-Yossef 
5884b1d7debSGilad Ben-Yossef static void cc_setup_flow_desc(struct crypto_tfm *tfm,
5894b1d7debSGilad Ben-Yossef 			       struct cipher_req_ctx *req_ctx,
5904b1d7debSGilad Ben-Yossef 			       struct scatterlist *dst, struct scatterlist *src,
5914b1d7debSGilad Ben-Yossef 			       unsigned int nbytes, void *areq,
5924b1d7debSGilad Ben-Yossef 			       struct cc_hw_desc desc[], unsigned int *seq_size)
59363ee04c8SGilad Ben-Yossef {
59463ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
59563ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
59663ee04c8SGilad Ben-Yossef 	unsigned int flow_mode = ctx_p->flow_mode;
59763ee04c8SGilad Ben-Yossef 
59863ee04c8SGilad Ben-Yossef 	switch (ctx_p->flow_mode) {
59963ee04c8SGilad Ben-Yossef 	case S_DIN_to_AES:
60063ee04c8SGilad Ben-Yossef 		flow_mode = DIN_AES_DOUT;
60163ee04c8SGilad Ben-Yossef 		break;
60263ee04c8SGilad Ben-Yossef 	case S_DIN_to_DES:
60363ee04c8SGilad Ben-Yossef 		flow_mode = DIN_DES_DOUT;
60463ee04c8SGilad Ben-Yossef 		break;
6059b8d51f8SGilad Ben-Yossef 	case S_DIN_to_SM4:
6069b8d51f8SGilad Ben-Yossef 		flow_mode = DIN_SM4_DOUT;
6079b8d51f8SGilad Ben-Yossef 		break;
60863ee04c8SGilad Ben-Yossef 	default:
60963ee04c8SGilad Ben-Yossef 		dev_err(dev, "invalid flow mode, flow_mode = %d\n", flow_mode);
61063ee04c8SGilad Ben-Yossef 		return;
61163ee04c8SGilad Ben-Yossef 	}
61263ee04c8SGilad Ben-Yossef 	/* Process */
61363ee04c8SGilad Ben-Yossef 	if (req_ctx->dma_buf_type == CC_DMA_BUF_DLLI) {
61463ee04c8SGilad Ben-Yossef 		dev_dbg(dev, " data params addr %pad length 0x%X\n",
61563ee04c8SGilad Ben-Yossef 			&sg_dma_address(src), nbytes);
61663ee04c8SGilad Ben-Yossef 		dev_dbg(dev, " data params addr %pad length 0x%X\n",
61763ee04c8SGilad Ben-Yossef 			&sg_dma_address(dst), nbytes);
61863ee04c8SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
61963ee04c8SGilad Ben-Yossef 		set_din_type(&desc[*seq_size], DMA_DLLI, sg_dma_address(src),
62063ee04c8SGilad Ben-Yossef 			     nbytes, NS_BIT);
62163ee04c8SGilad Ben-Yossef 		set_dout_dlli(&desc[*seq_size], sg_dma_address(dst),
62263ee04c8SGilad Ben-Yossef 			      nbytes, NS_BIT, (!areq ? 0 : 1));
62363ee04c8SGilad Ben-Yossef 		if (areq)
62427b3b22dSGilad Ben-Yossef 			set_queue_last_ind(ctx_p->drvdata, &desc[*seq_size]);
62563ee04c8SGilad Ben-Yossef 
62663ee04c8SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
62763ee04c8SGilad Ben-Yossef 		(*seq_size)++;
62863ee04c8SGilad Ben-Yossef 	} else {
62963ee04c8SGilad Ben-Yossef 		hw_desc_init(&desc[*seq_size]);
63063ee04c8SGilad Ben-Yossef 		set_din_type(&desc[*seq_size], DMA_MLLI,
63163ee04c8SGilad Ben-Yossef 			     ctx_p->drvdata->mlli_sram_addr,
63263ee04c8SGilad Ben-Yossef 			     req_ctx->in_mlli_nents, NS_BIT);
63363ee04c8SGilad Ben-Yossef 		if (req_ctx->out_nents == 0) {
63463ee04c8SGilad Ben-Yossef 			dev_dbg(dev, " din/dout params addr 0x%08X addr 0x%08X\n",
63563ee04c8SGilad Ben-Yossef 				(unsigned int)ctx_p->drvdata->mlli_sram_addr,
63663ee04c8SGilad Ben-Yossef 				(unsigned int)ctx_p->drvdata->mlli_sram_addr);
63763ee04c8SGilad Ben-Yossef 			set_dout_mlli(&desc[*seq_size],
63863ee04c8SGilad Ben-Yossef 				      ctx_p->drvdata->mlli_sram_addr,
63963ee04c8SGilad Ben-Yossef 				      req_ctx->in_mlli_nents, NS_BIT,
64063ee04c8SGilad Ben-Yossef 				      (!areq ? 0 : 1));
64163ee04c8SGilad Ben-Yossef 		} else {
64263ee04c8SGilad Ben-Yossef 			dev_dbg(dev, " din/dout params addr 0x%08X addr 0x%08X\n",
64363ee04c8SGilad Ben-Yossef 				(unsigned int)ctx_p->drvdata->mlli_sram_addr,
64463ee04c8SGilad Ben-Yossef 				(unsigned int)ctx_p->drvdata->mlli_sram_addr +
64563ee04c8SGilad Ben-Yossef 				(u32)LLI_ENTRY_BYTE_SIZE * req_ctx->in_nents);
64663ee04c8SGilad Ben-Yossef 			set_dout_mlli(&desc[*seq_size],
64763ee04c8SGilad Ben-Yossef 				      (ctx_p->drvdata->mlli_sram_addr +
64863ee04c8SGilad Ben-Yossef 				       (LLI_ENTRY_BYTE_SIZE *
64963ee04c8SGilad Ben-Yossef 					req_ctx->in_mlli_nents)),
65063ee04c8SGilad Ben-Yossef 				      req_ctx->out_mlli_nents, NS_BIT,
65163ee04c8SGilad Ben-Yossef 				      (!areq ? 0 : 1));
65263ee04c8SGilad Ben-Yossef 		}
65363ee04c8SGilad Ben-Yossef 		if (areq)
65427b3b22dSGilad Ben-Yossef 			set_queue_last_ind(ctx_p->drvdata, &desc[*seq_size]);
65563ee04c8SGilad Ben-Yossef 
65663ee04c8SGilad Ben-Yossef 		set_flow_mode(&desc[*seq_size], flow_mode);
65763ee04c8SGilad Ben-Yossef 		(*seq_size)++;
65863ee04c8SGilad Ben-Yossef 	}
65963ee04c8SGilad Ben-Yossef }
66063ee04c8SGilad Ben-Yossef 
66100904aa0SGilad Ben-Yossef /*
66200904aa0SGilad Ben-Yossef  * Update a CTR-AES 128 bit counter
66300904aa0SGilad Ben-Yossef  */
66400904aa0SGilad Ben-Yossef static void cc_update_ctr(u8 *ctr, unsigned int increment)
66500904aa0SGilad Ben-Yossef {
66600904aa0SGilad Ben-Yossef 	if (IS_ENABLED(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) ||
66700904aa0SGilad Ben-Yossef 	    IS_ALIGNED((unsigned long)ctr, 8)) {
66800904aa0SGilad Ben-Yossef 
66900904aa0SGilad Ben-Yossef 		__be64 *high_be = (__be64 *)ctr;
67000904aa0SGilad Ben-Yossef 		__be64 *low_be = high_be + 1;
67100904aa0SGilad Ben-Yossef 		u64 orig_low = __be64_to_cpu(*low_be);
67200904aa0SGilad Ben-Yossef 		u64 new_low = orig_low + (u64)increment;
67300904aa0SGilad Ben-Yossef 
67400904aa0SGilad Ben-Yossef 		*low_be = __cpu_to_be64(new_low);
67500904aa0SGilad Ben-Yossef 
67600904aa0SGilad Ben-Yossef 		if (new_low < orig_low)
67700904aa0SGilad Ben-Yossef 			*high_be = __cpu_to_be64(__be64_to_cpu(*high_be) + 1);
67800904aa0SGilad Ben-Yossef 	} else {
67900904aa0SGilad Ben-Yossef 		u8 *pos = (ctr + AES_BLOCK_SIZE);
68000904aa0SGilad Ben-Yossef 		u8 val;
68100904aa0SGilad Ben-Yossef 		unsigned int size;
68200904aa0SGilad Ben-Yossef 
68300904aa0SGilad Ben-Yossef 		for (; increment; increment--)
68400904aa0SGilad Ben-Yossef 			for (size = AES_BLOCK_SIZE; size; size--) {
68500904aa0SGilad Ben-Yossef 				val = *--pos + 1;
68600904aa0SGilad Ben-Yossef 				*pos = val;
68700904aa0SGilad Ben-Yossef 				if (val)
68800904aa0SGilad Ben-Yossef 					break;
68900904aa0SGilad Ben-Yossef 			}
69000904aa0SGilad Ben-Yossef 	}
69100904aa0SGilad Ben-Yossef }
69200904aa0SGilad Ben-Yossef 
69363ee04c8SGilad Ben-Yossef static void cc_cipher_complete(struct device *dev, void *cc_req, int err)
69463ee04c8SGilad Ben-Yossef {
69563ee04c8SGilad Ben-Yossef 	struct skcipher_request *req = (struct skcipher_request *)cc_req;
69663ee04c8SGilad Ben-Yossef 	struct scatterlist *dst = req->dst;
69763ee04c8SGilad Ben-Yossef 	struct scatterlist *src = req->src;
69863ee04c8SGilad Ben-Yossef 	struct cipher_req_ctx *req_ctx = skcipher_request_ctx(req);
69900904aa0SGilad Ben-Yossef 	struct crypto_skcipher *sk_tfm = crypto_skcipher_reqtfm(req);
70000904aa0SGilad Ben-Yossef 	struct crypto_tfm *tfm = crypto_skcipher_tfm(sk_tfm);
70100904aa0SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
70200904aa0SGilad Ben-Yossef 	unsigned int ivsize = crypto_skcipher_ivsize(sk_tfm);
70300904aa0SGilad Ben-Yossef 	unsigned int len;
70463ee04c8SGilad Ben-Yossef 
705c139c72eSGilad Ben-Yossef 	cc_unmap_cipher_request(dev, req_ctx, ivsize, src, dst);
706c139c72eSGilad Ben-Yossef 
70700904aa0SGilad Ben-Yossef 	switch (ctx_p->cipher_mode) {
70800904aa0SGilad Ben-Yossef 	case DRV_CIPHER_CBC:
70963ee04c8SGilad Ben-Yossef 		/*
71063ee04c8SGilad Ben-Yossef 		 * The crypto API expects us to set the req->iv to the last
71163ee04c8SGilad Ben-Yossef 		 * ciphertext block. For encrypt, simply copy from the result.
71263ee04c8SGilad Ben-Yossef 		 * For decrypt, we must copy from a saved buffer since this
71363ee04c8SGilad Ben-Yossef 		 * could be an in-place decryption operation and the src is
71463ee04c8SGilad Ben-Yossef 		 * lost by this point.
71563ee04c8SGilad Ben-Yossef 		 */
71663ee04c8SGilad Ben-Yossef 		if (req_ctx->gen_ctx.op_type == DRV_CRYPTO_DIRECTION_DECRYPT)  {
71763ee04c8SGilad Ben-Yossef 			memcpy(req->iv, req_ctx->backup_info, ivsize);
71863ee04c8SGilad Ben-Yossef 			kzfree(req_ctx->backup_info);
71963ee04c8SGilad Ben-Yossef 		} else if (!err) {
72000904aa0SGilad Ben-Yossef 			len = req->cryptlen - ivsize;
72100904aa0SGilad Ben-Yossef 			scatterwalk_map_and_copy(req->iv, req->dst, len,
72263ee04c8SGilad Ben-Yossef 						 ivsize, 0);
72363ee04c8SGilad Ben-Yossef 		}
72400904aa0SGilad Ben-Yossef 		break;
72500904aa0SGilad Ben-Yossef 
72600904aa0SGilad Ben-Yossef 	case DRV_CIPHER_CTR:
72700904aa0SGilad Ben-Yossef 		/* Compute the counter of the last block */
72800904aa0SGilad Ben-Yossef 		len = ALIGN(req->cryptlen, AES_BLOCK_SIZE) / AES_BLOCK_SIZE;
72900904aa0SGilad Ben-Yossef 		cc_update_ctr((u8 *)req->iv, len);
73000904aa0SGilad Ben-Yossef 		break;
73100904aa0SGilad Ben-Yossef 
73200904aa0SGilad Ben-Yossef 	default:
73300904aa0SGilad Ben-Yossef 		break;
73400904aa0SGilad Ben-Yossef 	}
73500904aa0SGilad Ben-Yossef 
73600904aa0SGilad Ben-Yossef 	kzfree(req_ctx->iv);
73763ee04c8SGilad Ben-Yossef 
73863ee04c8SGilad Ben-Yossef 	skcipher_request_complete(req, err);
73963ee04c8SGilad Ben-Yossef }
74063ee04c8SGilad Ben-Yossef 
74163ee04c8SGilad Ben-Yossef static int cc_cipher_process(struct skcipher_request *req,
74263ee04c8SGilad Ben-Yossef 			     enum drv_crypto_direction direction)
74363ee04c8SGilad Ben-Yossef {
74463ee04c8SGilad Ben-Yossef 	struct crypto_skcipher *sk_tfm = crypto_skcipher_reqtfm(req);
74563ee04c8SGilad Ben-Yossef 	struct crypto_tfm *tfm = crypto_skcipher_tfm(sk_tfm);
74663ee04c8SGilad Ben-Yossef 	struct cipher_req_ctx *req_ctx = skcipher_request_ctx(req);
74763ee04c8SGilad Ben-Yossef 	unsigned int ivsize = crypto_skcipher_ivsize(sk_tfm);
74863ee04c8SGilad Ben-Yossef 	struct scatterlist *dst = req->dst;
74963ee04c8SGilad Ben-Yossef 	struct scatterlist *src = req->src;
75063ee04c8SGilad Ben-Yossef 	unsigned int nbytes = req->cryptlen;
75163ee04c8SGilad Ben-Yossef 	void *iv = req->iv;
75263ee04c8SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
75363ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(ctx_p->drvdata);
75463ee04c8SGilad Ben-Yossef 	struct cc_hw_desc desc[MAX_ABLKCIPHER_SEQ_LEN];
75563ee04c8SGilad Ben-Yossef 	struct cc_crypto_req cc_req = {};
75684f366daSGilad Ben-Yossef 	int rc;
75763ee04c8SGilad Ben-Yossef 	unsigned int seq_len = 0;
75863ee04c8SGilad Ben-Yossef 	gfp_t flags = cc_gfp_flags(&req->base);
75963ee04c8SGilad Ben-Yossef 
76063ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "%s req=%p iv=%p nbytes=%d\n",
76163ee04c8SGilad Ben-Yossef 		((direction == DRV_CRYPTO_DIRECTION_ENCRYPT) ?
76263ee04c8SGilad Ben-Yossef 		"Encrypt" : "Decrypt"), req, iv, nbytes);
76363ee04c8SGilad Ben-Yossef 
76463ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_0: Init and sanity checks */
76563ee04c8SGilad Ben-Yossef 
76663ee04c8SGilad Ben-Yossef 	/* TODO: check data length according to mode */
76763ee04c8SGilad Ben-Yossef 	if (validate_data_size(ctx_p, nbytes)) {
76863ee04c8SGilad Ben-Yossef 		dev_err(dev, "Unsupported data size %d.\n", nbytes);
76963ee04c8SGilad Ben-Yossef 		crypto_tfm_set_flags(tfm, CRYPTO_TFM_RES_BAD_BLOCK_LEN);
77063ee04c8SGilad Ben-Yossef 		rc = -EINVAL;
77163ee04c8SGilad Ben-Yossef 		goto exit_process;
77263ee04c8SGilad Ben-Yossef 	}
77363ee04c8SGilad Ben-Yossef 	if (nbytes == 0) {
77463ee04c8SGilad Ben-Yossef 		/* No data to process is valid */
77563ee04c8SGilad Ben-Yossef 		rc = 0;
77663ee04c8SGilad Ben-Yossef 		goto exit_process;
77763ee04c8SGilad Ben-Yossef 	}
77863ee04c8SGilad Ben-Yossef 
77963ee04c8SGilad Ben-Yossef 	/* The IV we are handed may be allocted from the stack so
78063ee04c8SGilad Ben-Yossef 	 * we must copy it to a DMAable buffer before use.
78163ee04c8SGilad Ben-Yossef 	 */
78201745706SFengguang Wu 	req_ctx->iv = kmemdup(iv, ivsize, flags);
78363ee04c8SGilad Ben-Yossef 	if (!req_ctx->iv) {
78463ee04c8SGilad Ben-Yossef 		rc = -ENOMEM;
78563ee04c8SGilad Ben-Yossef 		goto exit_process;
78663ee04c8SGilad Ben-Yossef 	}
78763ee04c8SGilad Ben-Yossef 
78863ee04c8SGilad Ben-Yossef 	/* Setup request structure */
78963ee04c8SGilad Ben-Yossef 	cc_req.user_cb = (void *)cc_cipher_complete;
79063ee04c8SGilad Ben-Yossef 	cc_req.user_arg = (void *)req;
79163ee04c8SGilad Ben-Yossef 
79263ee04c8SGilad Ben-Yossef 	/* Setup request context */
79363ee04c8SGilad Ben-Yossef 	req_ctx->gen_ctx.op_type = direction;
79463ee04c8SGilad Ben-Yossef 
79563ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_1: Map buffers */
79663ee04c8SGilad Ben-Yossef 
79763ee04c8SGilad Ben-Yossef 	rc = cc_map_cipher_request(ctx_p->drvdata, req_ctx, ivsize, nbytes,
79863ee04c8SGilad Ben-Yossef 				      req_ctx->iv, src, dst, flags);
79963ee04c8SGilad Ben-Yossef 	if (rc) {
80063ee04c8SGilad Ben-Yossef 		dev_err(dev, "map_request() failed\n");
80163ee04c8SGilad Ben-Yossef 		goto exit_process;
80263ee04c8SGilad Ben-Yossef 	}
80363ee04c8SGilad Ben-Yossef 
80463ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_2: Create sequence */
80563ee04c8SGilad Ben-Yossef 
806dd8486c7SGilad Ben-Yossef 	/* Setup IV and XEX key used */
807dd8486c7SGilad Ben-Yossef 	cc_setup_state_desc(tfm, req_ctx, ivsize, nbytes, desc, &seq_len);
8084b1d7debSGilad Ben-Yossef 	/* Setup MLLI line, if needed */
8094b1d7debSGilad Ben-Yossef 	cc_setup_mlli_desc(tfm, req_ctx, dst, src, nbytes, req, desc, &seq_len);
810dd8486c7SGilad Ben-Yossef 	/* Setup key */
811dd8486c7SGilad Ben-Yossef 	cc_setup_key_desc(tfm, req_ctx, nbytes, desc, &seq_len);
81263ee04c8SGilad Ben-Yossef 	/* Data processing */
8134b1d7debSGilad Ben-Yossef 	cc_setup_flow_desc(tfm, req_ctx, dst, src, nbytes, req, desc, &seq_len);
81463ee04c8SGilad Ben-Yossef 
81563ee04c8SGilad Ben-Yossef 	/* STAT_PHASE_3: Lock HW and push sequence */
81663ee04c8SGilad Ben-Yossef 
81763ee04c8SGilad Ben-Yossef 	rc = cc_send_request(ctx_p->drvdata, &cc_req, desc, seq_len,
81863ee04c8SGilad Ben-Yossef 			     &req->base);
81963ee04c8SGilad Ben-Yossef 	if (rc != -EINPROGRESS && rc != -EBUSY) {
82063ee04c8SGilad Ben-Yossef 		/* Failed to send the request or request completed
82163ee04c8SGilad Ben-Yossef 		 * synchronously
82263ee04c8SGilad Ben-Yossef 		 */
82363ee04c8SGilad Ben-Yossef 		cc_unmap_cipher_request(dev, req_ctx, ivsize, src, dst);
82463ee04c8SGilad Ben-Yossef 	}
82563ee04c8SGilad Ben-Yossef 
82663ee04c8SGilad Ben-Yossef exit_process:
82763ee04c8SGilad Ben-Yossef 	if (rc != -EINPROGRESS && rc != -EBUSY) {
82863ee04c8SGilad Ben-Yossef 		kzfree(req_ctx->backup_info);
82963ee04c8SGilad Ben-Yossef 		kzfree(req_ctx->iv);
83063ee04c8SGilad Ben-Yossef 	}
83163ee04c8SGilad Ben-Yossef 
83263ee04c8SGilad Ben-Yossef 	return rc;
83363ee04c8SGilad Ben-Yossef }
83463ee04c8SGilad Ben-Yossef 
83563ee04c8SGilad Ben-Yossef static int cc_cipher_encrypt(struct skcipher_request *req)
83663ee04c8SGilad Ben-Yossef {
83763ee04c8SGilad Ben-Yossef 	struct cipher_req_ctx *req_ctx = skcipher_request_ctx(req);
83863ee04c8SGilad Ben-Yossef 
839e30368f3SGilad Ben-Yossef 	memset(req_ctx, 0, sizeof(*req_ctx));
84063ee04c8SGilad Ben-Yossef 
84163ee04c8SGilad Ben-Yossef 	return cc_cipher_process(req, DRV_CRYPTO_DIRECTION_ENCRYPT);
84263ee04c8SGilad Ben-Yossef }
84363ee04c8SGilad Ben-Yossef 
84463ee04c8SGilad Ben-Yossef static int cc_cipher_decrypt(struct skcipher_request *req)
84563ee04c8SGilad Ben-Yossef {
84663ee04c8SGilad Ben-Yossef 	struct crypto_skcipher *sk_tfm = crypto_skcipher_reqtfm(req);
84700904aa0SGilad Ben-Yossef 	struct crypto_tfm *tfm = crypto_skcipher_tfm(sk_tfm);
84800904aa0SGilad Ben-Yossef 	struct cc_cipher_ctx *ctx_p = crypto_tfm_ctx(tfm);
84963ee04c8SGilad Ben-Yossef 	struct cipher_req_ctx *req_ctx = skcipher_request_ctx(req);
85063ee04c8SGilad Ben-Yossef 	unsigned int ivsize = crypto_skcipher_ivsize(sk_tfm);
85163ee04c8SGilad Ben-Yossef 	gfp_t flags = cc_gfp_flags(&req->base);
85200904aa0SGilad Ben-Yossef 	unsigned int len;
85363ee04c8SGilad Ben-Yossef 
854e30368f3SGilad Ben-Yossef 	memset(req_ctx, 0, sizeof(*req_ctx));
855e30368f3SGilad Ben-Yossef 
8562b5ac174SGilad Ben-Yossef 	if ((ctx_p->cipher_mode == DRV_CIPHER_CBC) &&
8572b5ac174SGilad Ben-Yossef 	    (req->cryptlen >= ivsize)) {
85800904aa0SGilad Ben-Yossef 
85900904aa0SGilad Ben-Yossef 		/* Allocate and save the last IV sized bytes of the source,
86000904aa0SGilad Ben-Yossef 		 * which will be lost in case of in-place decryption.
86163ee04c8SGilad Ben-Yossef 		 */
86200904aa0SGilad Ben-Yossef 		req_ctx->backup_info = kzalloc(ivsize, flags);
86363ee04c8SGilad Ben-Yossef 		if (!req_ctx->backup_info)
86463ee04c8SGilad Ben-Yossef 			return -ENOMEM;
86563ee04c8SGilad Ben-Yossef 
86600904aa0SGilad Ben-Yossef 		len = req->cryptlen - ivsize;
86700904aa0SGilad Ben-Yossef 		scatterwalk_map_and_copy(req_ctx->backup_info, req->src, len,
86800904aa0SGilad Ben-Yossef 					 ivsize, 0);
86900904aa0SGilad Ben-Yossef 	}
87000904aa0SGilad Ben-Yossef 
87163ee04c8SGilad Ben-Yossef 	return cc_cipher_process(req, DRV_CRYPTO_DIRECTION_DECRYPT);
87263ee04c8SGilad Ben-Yossef }
87363ee04c8SGilad Ben-Yossef 
87463ee04c8SGilad Ben-Yossef /* Block cipher alg */
87563ee04c8SGilad Ben-Yossef static const struct cc_alg_template skcipher_algs[] = {
87663ee04c8SGilad Ben-Yossef 	{
877a794d8d8SGilad Ben-Yossef 		.name = "xts(paes)",
878a794d8d8SGilad Ben-Yossef 		.driver_name = "xts-paes-ccree",
879a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
880a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
881a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
882a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
883a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
884a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
885a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
886a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
887a794d8d8SGilad Ben-Yossef 			},
888a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
889a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
890a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
8911c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
892f98f6e21SGilad Ben-Yossef 		.sec_func = true,
893a794d8d8SGilad Ben-Yossef 	},
894a794d8d8SGilad Ben-Yossef 	{
895a794d8d8SGilad Ben-Yossef 		.name = "xts512(paes)",
896a794d8d8SGilad Ben-Yossef 		.driver_name = "xts-paes-du512-ccree",
897a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
898a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
899a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
900a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
901a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
902a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
903a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
904a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
905a794d8d8SGilad Ben-Yossef 			},
906a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
907a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
908a794d8d8SGilad Ben-Yossef 		.data_unit = 512,
909a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
9101c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
911f98f6e21SGilad Ben-Yossef 		.sec_func = true,
912a794d8d8SGilad Ben-Yossef 	},
913a794d8d8SGilad Ben-Yossef 	{
914a794d8d8SGilad Ben-Yossef 		.name = "xts4096(paes)",
915a794d8d8SGilad Ben-Yossef 		.driver_name = "xts-paes-du4096-ccree",
916a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
917a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
918a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
919a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
920a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
921a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
922a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
923a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
924a794d8d8SGilad Ben-Yossef 			},
925a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
926a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
927a794d8d8SGilad Ben-Yossef 		.data_unit = 4096,
928a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
9291c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
930f98f6e21SGilad Ben-Yossef 		.sec_func = true,
931a794d8d8SGilad Ben-Yossef 	},
932a794d8d8SGilad Ben-Yossef 	{
933a794d8d8SGilad Ben-Yossef 		.name = "essiv(paes)",
934a794d8d8SGilad Ben-Yossef 		.driver_name = "essiv-paes-ccree",
935a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
936a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
937a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
938a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
939a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
940a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
941a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
942a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
943a794d8d8SGilad Ben-Yossef 			},
944a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
945a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
946a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
9471c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
948f98f6e21SGilad Ben-Yossef 		.sec_func = true,
949a794d8d8SGilad Ben-Yossef 	},
950a794d8d8SGilad Ben-Yossef 	{
951a794d8d8SGilad Ben-Yossef 		.name = "essiv512(paes)",
952a794d8d8SGilad Ben-Yossef 		.driver_name = "essiv-paes-du512-ccree",
953a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
954a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
955a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
956a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
957a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
958a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
959a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
960a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
961a794d8d8SGilad Ben-Yossef 			},
962a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
963a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
964a794d8d8SGilad Ben-Yossef 		.data_unit = 512,
965a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
9661c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
967f98f6e21SGilad Ben-Yossef 		.sec_func = true,
968a794d8d8SGilad Ben-Yossef 	},
969a794d8d8SGilad Ben-Yossef 	{
970a794d8d8SGilad Ben-Yossef 		.name = "essiv4096(paes)",
971a794d8d8SGilad Ben-Yossef 		.driver_name = "essiv-paes-du4096-ccree",
972a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
973a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
974a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
975a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
976a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
977a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
978a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
979a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
980a794d8d8SGilad Ben-Yossef 			},
981a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
982a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
983a794d8d8SGilad Ben-Yossef 		.data_unit = 4096,
984a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
9851c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
986f98f6e21SGilad Ben-Yossef 		.sec_func = true,
987a794d8d8SGilad Ben-Yossef 	},
988a794d8d8SGilad Ben-Yossef 	{
989a794d8d8SGilad Ben-Yossef 		.name = "bitlocker(paes)",
990a794d8d8SGilad Ben-Yossef 		.driver_name = "bitlocker-paes-ccree",
991a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
992a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
993a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
994a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
995a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
996a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
997a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
998a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
999a794d8d8SGilad Ben-Yossef 			},
1000a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
1001a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1002a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10031c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1004f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1005a794d8d8SGilad Ben-Yossef 	},
1006a794d8d8SGilad Ben-Yossef 	{
1007a794d8d8SGilad Ben-Yossef 		.name = "bitlocker512(paes)",
1008a794d8d8SGilad Ben-Yossef 		.driver_name = "bitlocker-paes-du512-ccree",
1009a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1010a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1011a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1012a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1013a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1014a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1015a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1016a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1017a794d8d8SGilad Ben-Yossef 			},
1018a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
1019a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1020a794d8d8SGilad Ben-Yossef 		.data_unit = 512,
1021a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10221c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1023f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1024a794d8d8SGilad Ben-Yossef 	},
1025a794d8d8SGilad Ben-Yossef 	{
1026a794d8d8SGilad Ben-Yossef 		.name = "bitlocker4096(paes)",
1027a794d8d8SGilad Ben-Yossef 		.driver_name = "bitlocker-paes-du4096-ccree",
1028a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1029a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1030a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1031a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1032a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1033a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1034a794d8d8SGilad Ben-Yossef 			.max_keysize =  CC_HW_KEY_SIZE,
1035a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1036a794d8d8SGilad Ben-Yossef 			},
1037a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
1038a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1039a794d8d8SGilad Ben-Yossef 		.data_unit = 4096,
1040a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10411c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1042f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1043a794d8d8SGilad Ben-Yossef 	},
1044a794d8d8SGilad Ben-Yossef 	{
1045a794d8d8SGilad Ben-Yossef 		.name = "ecb(paes)",
1046a794d8d8SGilad Ben-Yossef 		.driver_name = "ecb-paes-ccree",
1047a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1048a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1049a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1050a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1051a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1052a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1053a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1054a794d8d8SGilad Ben-Yossef 			.ivsize = 0,
1055a794d8d8SGilad Ben-Yossef 			},
1056a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ECB,
1057a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1058a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10591c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1060f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1061a794d8d8SGilad Ben-Yossef 	},
1062a794d8d8SGilad Ben-Yossef 	{
1063a794d8d8SGilad Ben-Yossef 		.name = "cbc(paes)",
1064a794d8d8SGilad Ben-Yossef 		.driver_name = "cbc-paes-ccree",
1065a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1066a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1067a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1068a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1069a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1070a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1071a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1072a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1073a794d8d8SGilad Ben-Yossef 		},
1074a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC,
1075a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1076a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10771c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1078f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1079a794d8d8SGilad Ben-Yossef 	},
1080a794d8d8SGilad Ben-Yossef 	{
1081a794d8d8SGilad Ben-Yossef 		.name = "ofb(paes)",
1082a794d8d8SGilad Ben-Yossef 		.driver_name = "ofb-paes-ccree",
1083a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1084a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1085a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1086a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1087a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1088a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1089a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1090a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1091a794d8d8SGilad Ben-Yossef 			},
1092a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_OFB,
1093a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1094a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
10951c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1096f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1097a794d8d8SGilad Ben-Yossef 	},
1098a794d8d8SGilad Ben-Yossef 	{
109984f366daSGilad Ben-Yossef 		.name = "cts(cbc(paes))",
110084f366daSGilad Ben-Yossef 		.driver_name = "cts-cbc-paes-ccree",
1101a794d8d8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
1102a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1103a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1104a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1105a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1106a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1107a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1108a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1109a794d8d8SGilad Ben-Yossef 			},
1110a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC_CTS,
1111a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1112a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
11131c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1114f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1115a794d8d8SGilad Ben-Yossef 	},
1116a794d8d8SGilad Ben-Yossef 	{
1117a794d8d8SGilad Ben-Yossef 		.name = "ctr(paes)",
1118a794d8d8SGilad Ben-Yossef 		.driver_name = "ctr-paes-ccree",
1119a794d8d8SGilad Ben-Yossef 		.blocksize = 1,
1120a794d8d8SGilad Ben-Yossef 		.template_skcipher = {
1121a794d8d8SGilad Ben-Yossef 			.setkey = cc_cipher_sethkey,
1122a794d8d8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
1123a794d8d8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
1124a794d8d8SGilad Ben-Yossef 			.min_keysize = CC_HW_KEY_SIZE,
1125a794d8d8SGilad Ben-Yossef 			.max_keysize = CC_HW_KEY_SIZE,
1126a794d8d8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
1127a794d8d8SGilad Ben-Yossef 			},
1128a794d8d8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CTR,
1129a794d8d8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
1130a794d8d8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
11311c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
1132f98f6e21SGilad Ben-Yossef 		.sec_func = true,
1133a794d8d8SGilad Ben-Yossef 	},
1134a794d8d8SGilad Ben-Yossef 	{
113563ee04c8SGilad Ben-Yossef 		.name = "xts(aes)",
113663ee04c8SGilad Ben-Yossef 		.driver_name = "xts-aes-ccree",
113763ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
113863ee04c8SGilad Ben-Yossef 		.template_skcipher = {
113963ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
114063ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
114163ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
114263ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
114363ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
114463ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
114563ee04c8SGilad Ben-Yossef 			},
114663ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
114763ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
114827b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
11491c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
115063ee04c8SGilad Ben-Yossef 	},
115163ee04c8SGilad Ben-Yossef 	{
115263ee04c8SGilad Ben-Yossef 		.name = "xts512(aes)",
115363ee04c8SGilad Ben-Yossef 		.driver_name = "xts-aes-du512-ccree",
115463ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
115563ee04c8SGilad Ben-Yossef 		.template_skcipher = {
115663ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
115763ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
115863ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
115963ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
116063ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
116163ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
116263ee04c8SGilad Ben-Yossef 			},
116363ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
116463ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
116563ee04c8SGilad Ben-Yossef 		.data_unit = 512,
116627b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
11671c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
116863ee04c8SGilad Ben-Yossef 	},
116963ee04c8SGilad Ben-Yossef 	{
117063ee04c8SGilad Ben-Yossef 		.name = "xts4096(aes)",
117163ee04c8SGilad Ben-Yossef 		.driver_name = "xts-aes-du4096-ccree",
117263ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
117363ee04c8SGilad Ben-Yossef 		.template_skcipher = {
117463ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
117563ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
117663ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
117763ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
117863ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
117963ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
118063ee04c8SGilad Ben-Yossef 			},
118163ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_XTS,
118263ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
118363ee04c8SGilad Ben-Yossef 		.data_unit = 4096,
118427b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
11851c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
118663ee04c8SGilad Ben-Yossef 	},
118763ee04c8SGilad Ben-Yossef 	{
118863ee04c8SGilad Ben-Yossef 		.name = "essiv(aes)",
118963ee04c8SGilad Ben-Yossef 		.driver_name = "essiv-aes-ccree",
119063ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
119163ee04c8SGilad Ben-Yossef 		.template_skcipher = {
119263ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
119363ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
119463ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
119563ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
119663ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
119763ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
119863ee04c8SGilad Ben-Yossef 			},
119963ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
120063ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
120127b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12021c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
120363ee04c8SGilad Ben-Yossef 	},
120463ee04c8SGilad Ben-Yossef 	{
120563ee04c8SGilad Ben-Yossef 		.name = "essiv512(aes)",
120663ee04c8SGilad Ben-Yossef 		.driver_name = "essiv-aes-du512-ccree",
120763ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
120863ee04c8SGilad Ben-Yossef 		.template_skcipher = {
120963ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
121063ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
121163ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
121263ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
121363ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
121463ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
121563ee04c8SGilad Ben-Yossef 			},
121663ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
121763ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
121863ee04c8SGilad Ben-Yossef 		.data_unit = 512,
121927b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12201c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
122163ee04c8SGilad Ben-Yossef 	},
122263ee04c8SGilad Ben-Yossef 	{
122363ee04c8SGilad Ben-Yossef 		.name = "essiv4096(aes)",
122463ee04c8SGilad Ben-Yossef 		.driver_name = "essiv-aes-du4096-ccree",
122563ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
122663ee04c8SGilad Ben-Yossef 		.template_skcipher = {
122763ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
122863ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
122963ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
123063ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
123163ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
123263ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
123363ee04c8SGilad Ben-Yossef 			},
123463ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ESSIV,
123563ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
123663ee04c8SGilad Ben-Yossef 		.data_unit = 4096,
123727b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12381c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
123963ee04c8SGilad Ben-Yossef 	},
124063ee04c8SGilad Ben-Yossef 	{
124163ee04c8SGilad Ben-Yossef 		.name = "bitlocker(aes)",
124263ee04c8SGilad Ben-Yossef 		.driver_name = "bitlocker-aes-ccree",
124363ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
124463ee04c8SGilad Ben-Yossef 		.template_skcipher = {
124563ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
124663ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
124763ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
124863ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
124963ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
125063ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
125163ee04c8SGilad Ben-Yossef 			},
125263ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
125363ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
125427b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12551c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
125663ee04c8SGilad Ben-Yossef 	},
125763ee04c8SGilad Ben-Yossef 	{
125863ee04c8SGilad Ben-Yossef 		.name = "bitlocker512(aes)",
125963ee04c8SGilad Ben-Yossef 		.driver_name = "bitlocker-aes-du512-ccree",
126063ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
126163ee04c8SGilad Ben-Yossef 		.template_skcipher = {
126263ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
126363ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
126463ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
126563ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
126663ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
126763ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
126863ee04c8SGilad Ben-Yossef 			},
126963ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
127063ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
127163ee04c8SGilad Ben-Yossef 		.data_unit = 512,
127227b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12731c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
127463ee04c8SGilad Ben-Yossef 	},
127563ee04c8SGilad Ben-Yossef 	{
127663ee04c8SGilad Ben-Yossef 		.name = "bitlocker4096(aes)",
127763ee04c8SGilad Ben-Yossef 		.driver_name = "bitlocker-aes-du4096-ccree",
127863ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
127963ee04c8SGilad Ben-Yossef 		.template_skcipher = {
128063ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
128163ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
128263ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
128363ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE * 2,
128463ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE * 2,
128563ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
128663ee04c8SGilad Ben-Yossef 			},
128763ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_BITLOCKER,
128863ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
128963ee04c8SGilad Ben-Yossef 		.data_unit = 4096,
129027b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_712,
12911c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
129263ee04c8SGilad Ben-Yossef 	},
129363ee04c8SGilad Ben-Yossef 	{
129463ee04c8SGilad Ben-Yossef 		.name = "ecb(aes)",
129563ee04c8SGilad Ben-Yossef 		.driver_name = "ecb-aes-ccree",
129663ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
129763ee04c8SGilad Ben-Yossef 		.template_skcipher = {
129863ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
129963ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
130063ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
130163ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE,
130263ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE,
130363ee04c8SGilad Ben-Yossef 			.ivsize = 0,
130463ee04c8SGilad Ben-Yossef 			},
130563ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ECB,
130663ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
130727b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13081c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
130963ee04c8SGilad Ben-Yossef 	},
131063ee04c8SGilad Ben-Yossef 	{
131163ee04c8SGilad Ben-Yossef 		.name = "cbc(aes)",
131263ee04c8SGilad Ben-Yossef 		.driver_name = "cbc-aes-ccree",
131363ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
131463ee04c8SGilad Ben-Yossef 		.template_skcipher = {
131563ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
131663ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
131763ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
131863ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE,
131963ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE,
132063ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
132163ee04c8SGilad Ben-Yossef 		},
132263ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC,
132363ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
132427b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13251c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
132663ee04c8SGilad Ben-Yossef 	},
132763ee04c8SGilad Ben-Yossef 	{
132863ee04c8SGilad Ben-Yossef 		.name = "ofb(aes)",
132963ee04c8SGilad Ben-Yossef 		.driver_name = "ofb-aes-ccree",
133063ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
133163ee04c8SGilad Ben-Yossef 		.template_skcipher = {
133263ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
133363ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
133463ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
133563ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE,
133663ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE,
133763ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
133863ee04c8SGilad Ben-Yossef 			},
133963ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_OFB,
134063ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
134127b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13421c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
134363ee04c8SGilad Ben-Yossef 	},
134463ee04c8SGilad Ben-Yossef 	{
134584f366daSGilad Ben-Yossef 		.name = "cts(cbc(aes))",
134684f366daSGilad Ben-Yossef 		.driver_name = "cts-cbc-aes-ccree",
134763ee04c8SGilad Ben-Yossef 		.blocksize = AES_BLOCK_SIZE,
134863ee04c8SGilad Ben-Yossef 		.template_skcipher = {
134963ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
135063ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
135163ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
135263ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE,
135363ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE,
135463ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
135563ee04c8SGilad Ben-Yossef 			},
135663ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC_CTS,
135763ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
135827b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13591c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
136063ee04c8SGilad Ben-Yossef 	},
136163ee04c8SGilad Ben-Yossef 	{
136263ee04c8SGilad Ben-Yossef 		.name = "ctr(aes)",
136363ee04c8SGilad Ben-Yossef 		.driver_name = "ctr-aes-ccree",
136463ee04c8SGilad Ben-Yossef 		.blocksize = 1,
136563ee04c8SGilad Ben-Yossef 		.template_skcipher = {
136663ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
136763ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
136863ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
136963ee04c8SGilad Ben-Yossef 			.min_keysize = AES_MIN_KEY_SIZE,
137063ee04c8SGilad Ben-Yossef 			.max_keysize = AES_MAX_KEY_SIZE,
137163ee04c8SGilad Ben-Yossef 			.ivsize = AES_BLOCK_SIZE,
137263ee04c8SGilad Ben-Yossef 			},
137363ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CTR,
137463ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_AES,
137527b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13761c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
137763ee04c8SGilad Ben-Yossef 	},
137863ee04c8SGilad Ben-Yossef 	{
137963ee04c8SGilad Ben-Yossef 		.name = "cbc(des3_ede)",
138063ee04c8SGilad Ben-Yossef 		.driver_name = "cbc-3des-ccree",
138163ee04c8SGilad Ben-Yossef 		.blocksize = DES3_EDE_BLOCK_SIZE,
138263ee04c8SGilad Ben-Yossef 		.template_skcipher = {
138363ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
138463ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
138563ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
138663ee04c8SGilad Ben-Yossef 			.min_keysize = DES3_EDE_KEY_SIZE,
138763ee04c8SGilad Ben-Yossef 			.max_keysize = DES3_EDE_KEY_SIZE,
138863ee04c8SGilad Ben-Yossef 			.ivsize = DES3_EDE_BLOCK_SIZE,
138963ee04c8SGilad Ben-Yossef 			},
139063ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC,
139163ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_DES,
139227b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
13931c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
139463ee04c8SGilad Ben-Yossef 	},
139563ee04c8SGilad Ben-Yossef 	{
139663ee04c8SGilad Ben-Yossef 		.name = "ecb(des3_ede)",
139763ee04c8SGilad Ben-Yossef 		.driver_name = "ecb-3des-ccree",
139863ee04c8SGilad Ben-Yossef 		.blocksize = DES3_EDE_BLOCK_SIZE,
139963ee04c8SGilad Ben-Yossef 		.template_skcipher = {
140063ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
140163ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
140263ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
140363ee04c8SGilad Ben-Yossef 			.min_keysize = DES3_EDE_KEY_SIZE,
140463ee04c8SGilad Ben-Yossef 			.max_keysize = DES3_EDE_KEY_SIZE,
140563ee04c8SGilad Ben-Yossef 			.ivsize = 0,
140663ee04c8SGilad Ben-Yossef 			},
140763ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ECB,
140863ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_DES,
140927b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
14101c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
141163ee04c8SGilad Ben-Yossef 	},
141263ee04c8SGilad Ben-Yossef 	{
141363ee04c8SGilad Ben-Yossef 		.name = "cbc(des)",
141463ee04c8SGilad Ben-Yossef 		.driver_name = "cbc-des-ccree",
141563ee04c8SGilad Ben-Yossef 		.blocksize = DES_BLOCK_SIZE,
141663ee04c8SGilad Ben-Yossef 		.template_skcipher = {
141763ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
141863ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
141963ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
142063ee04c8SGilad Ben-Yossef 			.min_keysize = DES_KEY_SIZE,
142163ee04c8SGilad Ben-Yossef 			.max_keysize = DES_KEY_SIZE,
142263ee04c8SGilad Ben-Yossef 			.ivsize = DES_BLOCK_SIZE,
142363ee04c8SGilad Ben-Yossef 			},
142463ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC,
142563ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_DES,
142627b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
14271c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
142863ee04c8SGilad Ben-Yossef 	},
142963ee04c8SGilad Ben-Yossef 	{
143063ee04c8SGilad Ben-Yossef 		.name = "ecb(des)",
143163ee04c8SGilad Ben-Yossef 		.driver_name = "ecb-des-ccree",
143263ee04c8SGilad Ben-Yossef 		.blocksize = DES_BLOCK_SIZE,
143363ee04c8SGilad Ben-Yossef 		.template_skcipher = {
143463ee04c8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
143563ee04c8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
143663ee04c8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
143763ee04c8SGilad Ben-Yossef 			.min_keysize = DES_KEY_SIZE,
143863ee04c8SGilad Ben-Yossef 			.max_keysize = DES_KEY_SIZE,
143963ee04c8SGilad Ben-Yossef 			.ivsize = 0,
144063ee04c8SGilad Ben-Yossef 			},
144163ee04c8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ECB,
144263ee04c8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_DES,
144327b3b22dSGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_630,
14441c876a90SGilad Ben-Yossef 		.std_body = CC_STD_NIST,
144563ee04c8SGilad Ben-Yossef 	},
14469b8d51f8SGilad Ben-Yossef 	{
14479b8d51f8SGilad Ben-Yossef 		.name = "cbc(sm4)",
14489b8d51f8SGilad Ben-Yossef 		.driver_name = "cbc-sm4-ccree",
14499b8d51f8SGilad Ben-Yossef 		.blocksize = SM4_BLOCK_SIZE,
14509b8d51f8SGilad Ben-Yossef 		.template_skcipher = {
14519b8d51f8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
14529b8d51f8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
14539b8d51f8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
14549b8d51f8SGilad Ben-Yossef 			.min_keysize = SM4_KEY_SIZE,
14559b8d51f8SGilad Ben-Yossef 			.max_keysize = SM4_KEY_SIZE,
14569b8d51f8SGilad Ben-Yossef 			.ivsize = SM4_BLOCK_SIZE,
14579b8d51f8SGilad Ben-Yossef 			},
14589b8d51f8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CBC,
14599b8d51f8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_SM4,
14609b8d51f8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_713,
14611c876a90SGilad Ben-Yossef 		.std_body = CC_STD_OSCCA,
14629b8d51f8SGilad Ben-Yossef 	},
14639b8d51f8SGilad Ben-Yossef 	{
14649b8d51f8SGilad Ben-Yossef 		.name = "ecb(sm4)",
14659b8d51f8SGilad Ben-Yossef 		.driver_name = "ecb-sm4-ccree",
14669b8d51f8SGilad Ben-Yossef 		.blocksize = SM4_BLOCK_SIZE,
14679b8d51f8SGilad Ben-Yossef 		.template_skcipher = {
14689b8d51f8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
14699b8d51f8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
14709b8d51f8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
14719b8d51f8SGilad Ben-Yossef 			.min_keysize = SM4_KEY_SIZE,
14729b8d51f8SGilad Ben-Yossef 			.max_keysize = SM4_KEY_SIZE,
14739b8d51f8SGilad Ben-Yossef 			.ivsize = 0,
14749b8d51f8SGilad Ben-Yossef 			},
14759b8d51f8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_ECB,
14769b8d51f8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_SM4,
14779b8d51f8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_713,
14781c876a90SGilad Ben-Yossef 		.std_body = CC_STD_OSCCA,
14799b8d51f8SGilad Ben-Yossef 	},
14809b8d51f8SGilad Ben-Yossef 	{
14819b8d51f8SGilad Ben-Yossef 		.name = "ctr(sm4)",
14829b8d51f8SGilad Ben-Yossef 		.driver_name = "ctr-sm4-ccree",
14839b8d51f8SGilad Ben-Yossef 		.blocksize = SM4_BLOCK_SIZE,
14849b8d51f8SGilad Ben-Yossef 		.template_skcipher = {
14859b8d51f8SGilad Ben-Yossef 			.setkey = cc_cipher_setkey,
14869b8d51f8SGilad Ben-Yossef 			.encrypt = cc_cipher_encrypt,
14879b8d51f8SGilad Ben-Yossef 			.decrypt = cc_cipher_decrypt,
14889b8d51f8SGilad Ben-Yossef 			.min_keysize = SM4_KEY_SIZE,
14899b8d51f8SGilad Ben-Yossef 			.max_keysize = SM4_KEY_SIZE,
14909b8d51f8SGilad Ben-Yossef 			.ivsize = SM4_BLOCK_SIZE,
14919b8d51f8SGilad Ben-Yossef 			},
14929b8d51f8SGilad Ben-Yossef 		.cipher_mode = DRV_CIPHER_CTR,
14939b8d51f8SGilad Ben-Yossef 		.flow_mode = S_DIN_to_SM4,
14949b8d51f8SGilad Ben-Yossef 		.min_hw_rev = CC_HW_REV_713,
14951c876a90SGilad Ben-Yossef 		.std_body = CC_STD_OSCCA,
14969b8d51f8SGilad Ben-Yossef 	},
149763ee04c8SGilad Ben-Yossef };
149863ee04c8SGilad Ben-Yossef 
149963ee04c8SGilad Ben-Yossef static struct cc_crypto_alg *cc_create_alg(const struct cc_alg_template *tmpl,
150063ee04c8SGilad Ben-Yossef 					   struct device *dev)
150163ee04c8SGilad Ben-Yossef {
150263ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *t_alg;
150363ee04c8SGilad Ben-Yossef 	struct skcipher_alg *alg;
150463ee04c8SGilad Ben-Yossef 
150563ee04c8SGilad Ben-Yossef 	t_alg = kzalloc(sizeof(*t_alg), GFP_KERNEL);
150663ee04c8SGilad Ben-Yossef 	if (!t_alg)
150763ee04c8SGilad Ben-Yossef 		return ERR_PTR(-ENOMEM);
150863ee04c8SGilad Ben-Yossef 
150963ee04c8SGilad Ben-Yossef 	alg = &t_alg->skcipher_alg;
151063ee04c8SGilad Ben-Yossef 
151163ee04c8SGilad Ben-Yossef 	memcpy(alg, &tmpl->template_skcipher, sizeof(*alg));
151263ee04c8SGilad Ben-Yossef 
151363ee04c8SGilad Ben-Yossef 	snprintf(alg->base.cra_name, CRYPTO_MAX_ALG_NAME, "%s", tmpl->name);
151463ee04c8SGilad Ben-Yossef 	snprintf(alg->base.cra_driver_name, CRYPTO_MAX_ALG_NAME, "%s",
151563ee04c8SGilad Ben-Yossef 		 tmpl->driver_name);
151663ee04c8SGilad Ben-Yossef 	alg->base.cra_module = THIS_MODULE;
151763ee04c8SGilad Ben-Yossef 	alg->base.cra_priority = CC_CRA_PRIO;
151863ee04c8SGilad Ben-Yossef 	alg->base.cra_blocksize = tmpl->blocksize;
151963ee04c8SGilad Ben-Yossef 	alg->base.cra_alignmask = 0;
152063ee04c8SGilad Ben-Yossef 	alg->base.cra_ctxsize = sizeof(struct cc_cipher_ctx);
152163ee04c8SGilad Ben-Yossef 
152263ee04c8SGilad Ben-Yossef 	alg->base.cra_init = cc_cipher_init;
152363ee04c8SGilad Ben-Yossef 	alg->base.cra_exit = cc_cipher_exit;
15242c95e6d9SEric Biggers 	alg->base.cra_flags = CRYPTO_ALG_ASYNC | CRYPTO_ALG_KERN_DRIVER_ONLY;
152563ee04c8SGilad Ben-Yossef 
152663ee04c8SGilad Ben-Yossef 	t_alg->cipher_mode = tmpl->cipher_mode;
152763ee04c8SGilad Ben-Yossef 	t_alg->flow_mode = tmpl->flow_mode;
152863ee04c8SGilad Ben-Yossef 	t_alg->data_unit = tmpl->data_unit;
152963ee04c8SGilad Ben-Yossef 
153063ee04c8SGilad Ben-Yossef 	return t_alg;
153163ee04c8SGilad Ben-Yossef }
153263ee04c8SGilad Ben-Yossef 
153363ee04c8SGilad Ben-Yossef int cc_cipher_free(struct cc_drvdata *drvdata)
153463ee04c8SGilad Ben-Yossef {
153563ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *t_alg, *n;
153663ee04c8SGilad Ben-Yossef 	struct cc_cipher_handle *cipher_handle = drvdata->cipher_handle;
153763ee04c8SGilad Ben-Yossef 
153863ee04c8SGilad Ben-Yossef 	if (cipher_handle) {
153963ee04c8SGilad Ben-Yossef 		/* Remove registered algs */
154063ee04c8SGilad Ben-Yossef 		list_for_each_entry_safe(t_alg, n, &cipher_handle->alg_list,
154163ee04c8SGilad Ben-Yossef 					 entry) {
154263ee04c8SGilad Ben-Yossef 			crypto_unregister_skcipher(&t_alg->skcipher_alg);
154363ee04c8SGilad Ben-Yossef 			list_del(&t_alg->entry);
154463ee04c8SGilad Ben-Yossef 			kfree(t_alg);
154563ee04c8SGilad Ben-Yossef 		}
154663ee04c8SGilad Ben-Yossef 		kfree(cipher_handle);
154763ee04c8SGilad Ben-Yossef 		drvdata->cipher_handle = NULL;
154863ee04c8SGilad Ben-Yossef 	}
154963ee04c8SGilad Ben-Yossef 	return 0;
155063ee04c8SGilad Ben-Yossef }
155163ee04c8SGilad Ben-Yossef 
155263ee04c8SGilad Ben-Yossef int cc_cipher_alloc(struct cc_drvdata *drvdata)
155363ee04c8SGilad Ben-Yossef {
155463ee04c8SGilad Ben-Yossef 	struct cc_cipher_handle *cipher_handle;
155563ee04c8SGilad Ben-Yossef 	struct cc_crypto_alg *t_alg;
155663ee04c8SGilad Ben-Yossef 	struct device *dev = drvdata_to_dev(drvdata);
155763ee04c8SGilad Ben-Yossef 	int rc = -ENOMEM;
155863ee04c8SGilad Ben-Yossef 	int alg;
155963ee04c8SGilad Ben-Yossef 
156063ee04c8SGilad Ben-Yossef 	cipher_handle = kmalloc(sizeof(*cipher_handle), GFP_KERNEL);
156163ee04c8SGilad Ben-Yossef 	if (!cipher_handle)
156263ee04c8SGilad Ben-Yossef 		return -ENOMEM;
156363ee04c8SGilad Ben-Yossef 
156463ee04c8SGilad Ben-Yossef 	INIT_LIST_HEAD(&cipher_handle->alg_list);
156563ee04c8SGilad Ben-Yossef 	drvdata->cipher_handle = cipher_handle;
156663ee04c8SGilad Ben-Yossef 
156763ee04c8SGilad Ben-Yossef 	/* Linux crypto */
156863ee04c8SGilad Ben-Yossef 	dev_dbg(dev, "Number of algorithms = %zu\n",
156963ee04c8SGilad Ben-Yossef 		ARRAY_SIZE(skcipher_algs));
157063ee04c8SGilad Ben-Yossef 	for (alg = 0; alg < ARRAY_SIZE(skcipher_algs); alg++) {
15711c876a90SGilad Ben-Yossef 		if ((skcipher_algs[alg].min_hw_rev > drvdata->hw_rev) ||
1572f98f6e21SGilad Ben-Yossef 		    !(drvdata->std_bodies & skcipher_algs[alg].std_body) ||
1573f98f6e21SGilad Ben-Yossef 		    (drvdata->sec_disabled && skcipher_algs[alg].sec_func))
157427b3b22dSGilad Ben-Yossef 			continue;
157527b3b22dSGilad Ben-Yossef 
157663ee04c8SGilad Ben-Yossef 		dev_dbg(dev, "creating %s\n", skcipher_algs[alg].driver_name);
157763ee04c8SGilad Ben-Yossef 		t_alg = cc_create_alg(&skcipher_algs[alg], dev);
157863ee04c8SGilad Ben-Yossef 		if (IS_ERR(t_alg)) {
157963ee04c8SGilad Ben-Yossef 			rc = PTR_ERR(t_alg);
158063ee04c8SGilad Ben-Yossef 			dev_err(dev, "%s alg allocation failed\n",
158163ee04c8SGilad Ben-Yossef 				skcipher_algs[alg].driver_name);
158263ee04c8SGilad Ben-Yossef 			goto fail0;
158363ee04c8SGilad Ben-Yossef 		}
158463ee04c8SGilad Ben-Yossef 		t_alg->drvdata = drvdata;
158563ee04c8SGilad Ben-Yossef 
158663ee04c8SGilad Ben-Yossef 		dev_dbg(dev, "registering %s\n",
158763ee04c8SGilad Ben-Yossef 			skcipher_algs[alg].driver_name);
158863ee04c8SGilad Ben-Yossef 		rc = crypto_register_skcipher(&t_alg->skcipher_alg);
158963ee04c8SGilad Ben-Yossef 		dev_dbg(dev, "%s alg registration rc = %x\n",
159063ee04c8SGilad Ben-Yossef 			t_alg->skcipher_alg.base.cra_driver_name, rc);
159163ee04c8SGilad Ben-Yossef 		if (rc) {
159263ee04c8SGilad Ben-Yossef 			dev_err(dev, "%s alg registration failed\n",
159363ee04c8SGilad Ben-Yossef 				t_alg->skcipher_alg.base.cra_driver_name);
159463ee04c8SGilad Ben-Yossef 			kfree(t_alg);
159563ee04c8SGilad Ben-Yossef 			goto fail0;
159663ee04c8SGilad Ben-Yossef 		} else {
159763ee04c8SGilad Ben-Yossef 			list_add_tail(&t_alg->entry,
159863ee04c8SGilad Ben-Yossef 				      &cipher_handle->alg_list);
159963ee04c8SGilad Ben-Yossef 			dev_dbg(dev, "Registered %s\n",
160063ee04c8SGilad Ben-Yossef 				t_alg->skcipher_alg.base.cra_driver_name);
160163ee04c8SGilad Ben-Yossef 		}
160263ee04c8SGilad Ben-Yossef 	}
160363ee04c8SGilad Ben-Yossef 	return 0;
160463ee04c8SGilad Ben-Yossef 
160563ee04c8SGilad Ben-Yossef fail0:
160663ee04c8SGilad Ben-Yossef 	cc_cipher_free(drvdata);
160763ee04c8SGilad Ben-Yossef 	return rc;
160863ee04c8SGilad Ben-Yossef }
1609