xref: /freebsd/sys/dev/random/hash.h (revision cddbc3b40812213ff00041f79174cac0be360a2a)
1 /*-
2  * Copyright (c) 2000-2015 Mark R V Murray
3  * All rights reserved.
4  *
5  * Redistribution and use in source and binary forms, with or without
6  * modification, are permitted provided that the following conditions
7  * are met:
8  * 1. Redistributions of source code must retain the above copyright
9  *    notice, this list of conditions and the following disclaimer
10  *    in this position and unchanged.
11  * 2. Redistributions in binary form must reproduce the above copyright
12  *    notice, this list of conditions and the following disclaimer in the
13  *    documentation and/or other materials provided with the distribution.
14  *
15  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
16  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
17  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
18  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
19  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
20  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
21  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
22  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
23  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
24  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
25  *
26  * $FreeBSD$
27  */
28 
29 #ifndef SYS_DEV_RANDOM_HASH_H_INCLUDED
30 #define	SYS_DEV_RANDOM_HASH_H_INCLUDED
31 
32 #include <crypto/chacha20/_chacha.h>
33 #include <dev/random/uint128.h>
34 
35 /* Keys are formed from cipher blocks */
36 #define	RANDOM_KEYSIZE		32	/* (in bytes) == 256 bits */
37 #define	RANDOM_KEYSIZE_WORDS	(RANDOM_KEYSIZE/sizeof(uint32_t))
38 #define	RANDOM_BLOCKSIZE	16	/* (in bytes) == 128 bits */
39 #define	RANDOM_BLOCKSIZE_WORDS	(RANDOM_BLOCKSIZE/sizeof(uint32_t))
40 #define	RANDOM_KEYS_PER_BLOCK	(RANDOM_KEYSIZE/RANDOM_BLOCKSIZE)
41 
42 /* The size of the zero block portion used to form H_d(m) */
43 #define	RANDOM_ZERO_BLOCKSIZE	64	/* (in bytes) == 512 zero bits */
44 
45 struct randomdev_hash {
46 	SHA256_CTX	sha;
47 };
48 
49 union randomdev_key {
50 	struct {
51 		keyInstance key;	/* Key schedule */
52 		cipherInstance cipher;	/* Rijndael internal */
53 	};
54 	struct chacha_ctx chacha;
55 };
56 
57 extern bool fortuna_chachamode;
58 
59 void randomdev_hash_init(struct randomdev_hash *);
60 void randomdev_hash_iterate(struct randomdev_hash *, const void *, size_t);
61 void randomdev_hash_finish(struct randomdev_hash *, void *);
62 
63 void randomdev_encrypt_init(union randomdev_key *, const void *);
64 void randomdev_keystream(union randomdev_key *context, uint128_t *, void *, u_int);
65 void randomdev_getkey(union randomdev_key *, const void **, size_t *);
66 
67 #endif /* SYS_DEV_RANDOM_HASH_H_INCLUDED */
68