sha1_s390.c 4.1 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3
/*
 * Cryptographic API.
 *
4
 * s390 implementation of the SHA1 Secure Hash Algorithm.
L
Linus Torvalds 已提交
5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
 *
 * Derived from cryptoapi implementation, adapted for in-place
 * scatterlist interface.  Originally based on the public domain
 * implementation written by Steve Reid.
 *
 * s390 Version:
 *   Copyright (C) 2003 IBM Deutschland GmbH, IBM Corporation
 *   Author(s): Thomas Spatzier (tspat@de.ibm.com)
 *
 * Derived from "crypto/sha1.c"
 *   Copyright (c) Alan Smithee.
 *   Copyright (c) Andrew McDonald <andrew@mcdonald.org.uk>
 *   Copyright (c) Jean-Francois Dive <jef@linuxbe.org>
 *
 * This program is free software; you can redistribute it and/or modify it
 * under the terms of the GNU General Public License as published by the Free
 * Software Foundation; either version 2 of the License, or (at your option)
 * any later version.
 *
 */
#include <linux/init.h>
#include <linux/module.h>
#include <linux/mm.h>
#include <linux/crypto.h>
#include <asm/scatterlist.h>
#include <asm/byteorder.h>
31
#include "crypt_s390.h"
L
Linus Torvalds 已提交
32 33 34 35

#define SHA1_DIGEST_SIZE	20
#define SHA1_BLOCK_SIZE		64

36 37 38
struct crypt_s390_sha1_ctx {
	u64 count;
	u32 state[5];
L
Linus Torvalds 已提交
39
	u32 buf_len;
40
	u8 buffer[2 * SHA1_BLOCK_SIZE];
L
Linus Torvalds 已提交
41 42
};

43
static void sha1_init(struct crypto_tfm *tfm)
L
Linus Torvalds 已提交
44
{
45
	struct crypt_s390_sha1_ctx *ctx = crypto_tfm_ctx(tfm);
46 47 48 49 50 51
	static const u32 initstate[5] = {
		0x67452301,
		0xEFCDAB89,
		0x98BADCFE,
		0x10325476,
		0xC3D2E1F0
L
Linus Torvalds 已提交
52
	};
53 54 55 56

	ctx->count = 0;
	memcpy(ctx->state, &initstate, sizeof(initstate));
	ctx->buf_len = 0;
L
Linus Torvalds 已提交
57 58
}

59 60
static void sha1_update(struct crypto_tfm *tfm, const u8 *data,
			unsigned int len)
L
Linus Torvalds 已提交
61
{
62
	struct crypt_s390_sha1_ctx *sctx;
L
Linus Torvalds 已提交
63 64
	long imd_len;

65
	sctx = crypto_tfm_ctx(tfm);
L
Linus Torvalds 已提交
66 67 68 69 70 71 72
	sctx->count += len * 8; //message bit length

	//anything in buffer yet? -> must be completed
	if (sctx->buf_len && (sctx->buf_len + len) >= SHA1_BLOCK_SIZE) {
		//complete full block and hash
		memcpy(sctx->buffer + sctx->buf_len, data,
				SHA1_BLOCK_SIZE - sctx->buf_len);
73
		crypt_s390_kimd(KIMD_SHA_1, sctx->state, sctx->buffer,
L
Linus Torvalds 已提交
74 75 76 77 78 79 80 81 82
				SHA1_BLOCK_SIZE);
		data += SHA1_BLOCK_SIZE - sctx->buf_len;
		len -= SHA1_BLOCK_SIZE - sctx->buf_len;
		sctx->buf_len = 0;
	}

	//rest of data contains full blocks?
	imd_len = len & ~0x3ful;
	if (imd_len){
83
		crypt_s390_kimd(KIMD_SHA_1, sctx->state, data, imd_len);
L
Linus Torvalds 已提交
84 85 86 87 88 89 90 91 92 93 94 95
		data += imd_len;
		len -= imd_len;
	}
	//anything left? store in buffer
	if (len){
		memcpy(sctx->buffer + sctx->buf_len , data, len);
		sctx->buf_len += len;
	}
}


static void
96
pad_message(struct crypt_s390_sha1_ctx* sctx)
L
Linus Torvalds 已提交
97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113
{
	int index;

	index = sctx->buf_len;
	sctx->buf_len = (sctx->buf_len < 56)?
		SHA1_BLOCK_SIZE:2 * SHA1_BLOCK_SIZE;
	//start pad with 1
	sctx->buffer[index] = 0x80;
	//pad with zeros
	index++;
	memset(sctx->buffer + index, 0x00, sctx->buf_len - index);
	//append length
	memcpy(sctx->buffer + sctx->buf_len - 8, &sctx->count,
			sizeof sctx->count);
}

/* Add padding and return the message digest. */
114
static void sha1_final(struct crypto_tfm *tfm, u8 *out)
L
Linus Torvalds 已提交
115
{
116
	struct crypt_s390_sha1_ctx *sctx = crypto_tfm_ctx(tfm);
L
Linus Torvalds 已提交
117 118 119

	//must perform manual padding
	pad_message(sctx);
120
	crypt_s390_kimd(KIMD_SHA_1, sctx->state, sctx->buffer, sctx->buf_len);
L
Linus Torvalds 已提交
121 122 123 124 125 126 127 128
	//copy digest to out
	memcpy(out, sctx->state, SHA1_DIGEST_SIZE);
	/* Wipe context */
	memset(sctx, 0, sizeof *sctx);
}

static struct crypto_alg alg = {
	.cra_name	=	"sha1",
129 130
	.cra_driver_name =	"sha1-s390",
	.cra_priority	=	CRYPT_S390_PRIORITY,
L
Linus Torvalds 已提交
131 132
	.cra_flags	=	CRYPTO_ALG_TYPE_DIGEST,
	.cra_blocksize	=	SHA1_BLOCK_SIZE,
133
	.cra_ctxsize	=	sizeof(struct crypt_s390_sha1_ctx),
L
Linus Torvalds 已提交
134 135 136 137 138 139 140 141 142 143 144 145 146 147
	.cra_module	=	THIS_MODULE,
	.cra_list       =       LIST_HEAD_INIT(alg.cra_list),
	.cra_u		=	{ .digest = {
	.dia_digestsize	=	SHA1_DIGEST_SIZE,
	.dia_init   	= 	sha1_init,
	.dia_update 	=	sha1_update,
	.dia_final  	=	sha1_final } }
};

static int
init(void)
{
	int ret = -ENOSYS;

148
	if (crypt_s390_func_available(KIMD_SHA_1)){
L
Linus Torvalds 已提交
149 150
		ret = crypto_register_alg(&alg);
		if (ret == 0){
151
			printk(KERN_INFO "crypt_s390: sha1_s390 loaded.\n");
L
Linus Torvalds 已提交
152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169
		}
	}
	return ret;
}

static void __exit
fini(void)
{
	crypto_unregister_alg(&alg);
}

module_init(init);
module_exit(fini);

MODULE_ALIAS("sha1");

MODULE_LICENSE("GPL");
MODULE_DESCRIPTION("SHA1 Secure Hash Algorithm");