1 /*- 2 * Copyright (c) 2000-2015 Mark R V Murray 3 * All rights reserved. 4 * 5 * Redistribution and use in source and binary forms, with or without 6 * modification, are permitted provided that the following conditions 7 * are met: 8 * 1. Redistributions of source code must retain the above copyright 9 * notice, this list of conditions and the following disclaimer 10 * in this position and unchanged. 11 * 2. Redistributions in binary form must reproduce the above copyright 12 * notice, this list of conditions and the following disclaimer in the 13 * documentation and/or other materials provided with the distribution. 14 * 15 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 16 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 17 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 18 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, 19 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 20 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, 21 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY 22 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 23 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF 24 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 25 * 26 * $FreeBSD$ 27 */ 28 29 #ifndef SYS_DEV_RANDOM_HASH_H_INCLUDED 30 #define SYS_DEV_RANDOM_HASH_H_INCLUDED 31 32 #include <crypto/chacha20/_chacha.h> 33 #include <dev/random/uint128.h> 34 35 #ifndef _KERNEL 36 #define __read_frequently 37 #endif 38 39 /* Keys are formed from cipher blocks */ 40 #define RANDOM_KEYSIZE 32 /* (in bytes) == 256 bits */ 41 #define RANDOM_KEYSIZE_WORDS (RANDOM_KEYSIZE/sizeof(uint32_t)) 42 #define RANDOM_BLOCKSIZE 16 /* (in bytes) == 128 bits */ 43 #define RANDOM_BLOCKSIZE_WORDS (RANDOM_BLOCKSIZE/sizeof(uint32_t)) 44 #define RANDOM_KEYS_PER_BLOCK (RANDOM_KEYSIZE/RANDOM_BLOCKSIZE) 45 46 /* The size of the zero block portion used to form H_d(m) */ 47 #define RANDOM_ZERO_BLOCKSIZE 64 /* (in bytes) == 512 zero bits */ 48 49 struct randomdev_hash { 50 SHA256_CTX sha; 51 }; 52 53 union randomdev_key { 54 struct { 55 keyInstance key; /* Key schedule */ 56 cipherInstance cipher; /* Rijndael internal */ 57 }; 58 struct chacha_ctx chacha; 59 }; 60 61 extern bool random_chachamode; 62 63 void randomdev_hash_init(struct randomdev_hash *); 64 void randomdev_hash_iterate(struct randomdev_hash *, const void *, size_t); 65 void randomdev_hash_finish(struct randomdev_hash *, void *); 66 67 void randomdev_encrypt_init(union randomdev_key *, const void *); 68 void randomdev_keystream(union randomdev_key *context, uint128_t *, void *, size_t); 69 void randomdev_getkey(union randomdev_key *, const void **, size_t *); 70 71 #endif /* SYS_DEV_RANDOM_HASH_H_INCLUDED */ 72