12c956a60SJason A. Donenfeld /* Copyright (C) 2016 Jason A. Donenfeld <Jason@zx2c4.com>. All Rights Reserved. 22c956a60SJason A. Donenfeld * 32c956a60SJason A. Donenfeld * This file is provided under a dual BSD/GPLv2 license. 42c956a60SJason A. Donenfeld * 52c956a60SJason A. Donenfeld * SipHash: a fast short-input PRF 62c956a60SJason A. Donenfeld * https://131002.net/siphash/ 72c956a60SJason A. Donenfeld * 81ae2324fSJason A. Donenfeld * This implementation is specifically for SipHash2-4 for a secure PRF 91ae2324fSJason A. Donenfeld * and HalfSipHash1-3/SipHash1-3 for an insecure PRF only suitable for 101ae2324fSJason A. Donenfeld * hashtables. 112c956a60SJason A. Donenfeld */ 122c956a60SJason A. Donenfeld 132c956a60SJason A. Donenfeld #ifndef _LINUX_SIPHASH_H 142c956a60SJason A. Donenfeld #define _LINUX_SIPHASH_H 152c956a60SJason A. Donenfeld 162c956a60SJason A. Donenfeld #include <linux/types.h> 172c956a60SJason A. Donenfeld #include <linux/kernel.h> 182c956a60SJason A. Donenfeld 192c956a60SJason A. Donenfeld #define SIPHASH_ALIGNMENT __alignof__(u64) 202c956a60SJason A. Donenfeld typedef struct { 212c956a60SJason A. Donenfeld u64 key[2]; 222c956a60SJason A. Donenfeld } siphash_key_t; 232c956a60SJason A. Donenfeld 24df453700SEric Dumazet static inline bool siphash_key_is_zero(const siphash_key_t *key) 25df453700SEric Dumazet { 26df453700SEric Dumazet return !(key->key[0] | key->key[1]); 27df453700SEric Dumazet } 28df453700SEric Dumazet 292c956a60SJason A. Donenfeld u64 __siphash_aligned(const void *data, size_t len, const siphash_key_t *key); 302c956a60SJason A. Donenfeld u64 __siphash_unaligned(const void *data, size_t len, const siphash_key_t *key); 312c956a60SJason A. Donenfeld 322c956a60SJason A. Donenfeld u64 siphash_1u64(const u64 a, const siphash_key_t *key); 332c956a60SJason A. Donenfeld u64 siphash_2u64(const u64 a, const u64 b, const siphash_key_t *key); 342c956a60SJason A. Donenfeld u64 siphash_3u64(const u64 a, const u64 b, const u64 c, 352c956a60SJason A. Donenfeld const siphash_key_t *key); 362c956a60SJason A. Donenfeld u64 siphash_4u64(const u64 a, const u64 b, const u64 c, const u64 d, 372c956a60SJason A. Donenfeld const siphash_key_t *key); 382c956a60SJason A. Donenfeld u64 siphash_1u32(const u32 a, const siphash_key_t *key); 392c956a60SJason A. Donenfeld u64 siphash_3u32(const u32 a, const u32 b, const u32 c, 402c956a60SJason A. Donenfeld const siphash_key_t *key); 412c956a60SJason A. Donenfeld 422c956a60SJason A. Donenfeld static inline u64 siphash_2u32(const u32 a, const u32 b, 432c956a60SJason A. Donenfeld const siphash_key_t *key) 442c956a60SJason A. Donenfeld { 452c956a60SJason A. Donenfeld return siphash_1u64((u64)b << 32 | a, key); 462c956a60SJason A. Donenfeld } 472c956a60SJason A. Donenfeld static inline u64 siphash_4u32(const u32 a, const u32 b, const u32 c, 482c956a60SJason A. Donenfeld const u32 d, const siphash_key_t *key) 492c956a60SJason A. Donenfeld { 502c956a60SJason A. Donenfeld return siphash_2u64((u64)b << 32 | a, (u64)d << 32 | c, key); 512c956a60SJason A. Donenfeld } 522c956a60SJason A. Donenfeld 532c956a60SJason A. Donenfeld 542c956a60SJason A. Donenfeld static inline u64 ___siphash_aligned(const __le64 *data, size_t len, 552c956a60SJason A. Donenfeld const siphash_key_t *key) 562c956a60SJason A. Donenfeld { 572c956a60SJason A. Donenfeld if (__builtin_constant_p(len) && len == 4) 582c956a60SJason A. Donenfeld return siphash_1u32(le32_to_cpup((const __le32 *)data), key); 592c956a60SJason A. Donenfeld if (__builtin_constant_p(len) && len == 8) 602c956a60SJason A. Donenfeld return siphash_1u64(le64_to_cpu(data[0]), key); 612c956a60SJason A. Donenfeld if (__builtin_constant_p(len) && len == 16) 622c956a60SJason A. Donenfeld return siphash_2u64(le64_to_cpu(data[0]), le64_to_cpu(data[1]), 632c956a60SJason A. Donenfeld key); 642c956a60SJason A. Donenfeld if (__builtin_constant_p(len) && len == 24) 652c956a60SJason A. Donenfeld return siphash_3u64(le64_to_cpu(data[0]), le64_to_cpu(data[1]), 662c956a60SJason A. Donenfeld le64_to_cpu(data[2]), key); 672c956a60SJason A. Donenfeld if (__builtin_constant_p(len) && len == 32) 682c956a60SJason A. Donenfeld return siphash_4u64(le64_to_cpu(data[0]), le64_to_cpu(data[1]), 692c956a60SJason A. Donenfeld le64_to_cpu(data[2]), le64_to_cpu(data[3]), 702c956a60SJason A. Donenfeld key); 712c956a60SJason A. Donenfeld return __siphash_aligned(data, len, key); 722c956a60SJason A. Donenfeld } 732c956a60SJason A. Donenfeld 742c956a60SJason A. Donenfeld /** 752c956a60SJason A. Donenfeld * siphash - compute 64-bit siphash PRF value 762c956a60SJason A. Donenfeld * @data: buffer to hash 772c956a60SJason A. Donenfeld * @size: size of @data 782c956a60SJason A. Donenfeld * @key: the siphash key 792c956a60SJason A. Donenfeld */ 802c956a60SJason A. Donenfeld static inline u64 siphash(const void *data, size_t len, 812c956a60SJason A. Donenfeld const siphash_key_t *key) 822c956a60SJason A. Donenfeld { 83*f7e5b9bfSArnd Bergmann if (IS_ENABLED(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) || 84*f7e5b9bfSArnd Bergmann !IS_ALIGNED((unsigned long)data, SIPHASH_ALIGNMENT)) 852c956a60SJason A. Donenfeld return __siphash_unaligned(data, len, key); 862c956a60SJason A. Donenfeld return ___siphash_aligned(data, len, key); 872c956a60SJason A. Donenfeld } 882c956a60SJason A. Donenfeld 891ae2324fSJason A. Donenfeld #define HSIPHASH_ALIGNMENT __alignof__(unsigned long) 901ae2324fSJason A. Donenfeld typedef struct { 911ae2324fSJason A. Donenfeld unsigned long key[2]; 921ae2324fSJason A. Donenfeld } hsiphash_key_t; 931ae2324fSJason A. Donenfeld 941ae2324fSJason A. Donenfeld u32 __hsiphash_aligned(const void *data, size_t len, 951ae2324fSJason A. Donenfeld const hsiphash_key_t *key); 961ae2324fSJason A. Donenfeld u32 __hsiphash_unaligned(const void *data, size_t len, 971ae2324fSJason A. Donenfeld const hsiphash_key_t *key); 981ae2324fSJason A. Donenfeld 991ae2324fSJason A. Donenfeld u32 hsiphash_1u32(const u32 a, const hsiphash_key_t *key); 1001ae2324fSJason A. Donenfeld u32 hsiphash_2u32(const u32 a, const u32 b, const hsiphash_key_t *key); 1011ae2324fSJason A. Donenfeld u32 hsiphash_3u32(const u32 a, const u32 b, const u32 c, 1021ae2324fSJason A. Donenfeld const hsiphash_key_t *key); 1031ae2324fSJason A. Donenfeld u32 hsiphash_4u32(const u32 a, const u32 b, const u32 c, const u32 d, 1041ae2324fSJason A. Donenfeld const hsiphash_key_t *key); 1051ae2324fSJason A. Donenfeld 1061ae2324fSJason A. Donenfeld static inline u32 ___hsiphash_aligned(const __le32 *data, size_t len, 1071ae2324fSJason A. Donenfeld const hsiphash_key_t *key) 1081ae2324fSJason A. Donenfeld { 1091ae2324fSJason A. Donenfeld if (__builtin_constant_p(len) && len == 4) 1101ae2324fSJason A. Donenfeld return hsiphash_1u32(le32_to_cpu(data[0]), key); 1111ae2324fSJason A. Donenfeld if (__builtin_constant_p(len) && len == 8) 1121ae2324fSJason A. Donenfeld return hsiphash_2u32(le32_to_cpu(data[0]), le32_to_cpu(data[1]), 1131ae2324fSJason A. Donenfeld key); 1141ae2324fSJason A. Donenfeld if (__builtin_constant_p(len) && len == 12) 1151ae2324fSJason A. Donenfeld return hsiphash_3u32(le32_to_cpu(data[0]), le32_to_cpu(data[1]), 1161ae2324fSJason A. Donenfeld le32_to_cpu(data[2]), key); 1171ae2324fSJason A. Donenfeld if (__builtin_constant_p(len) && len == 16) 1181ae2324fSJason A. Donenfeld return hsiphash_4u32(le32_to_cpu(data[0]), le32_to_cpu(data[1]), 1191ae2324fSJason A. Donenfeld le32_to_cpu(data[2]), le32_to_cpu(data[3]), 1201ae2324fSJason A. Donenfeld key); 1211ae2324fSJason A. Donenfeld return __hsiphash_aligned(data, len, key); 1221ae2324fSJason A. Donenfeld } 1231ae2324fSJason A. Donenfeld 1241ae2324fSJason A. Donenfeld /** 1251ae2324fSJason A. Donenfeld * hsiphash - compute 32-bit hsiphash PRF value 1261ae2324fSJason A. Donenfeld * @data: buffer to hash 1271ae2324fSJason A. Donenfeld * @size: size of @data 1281ae2324fSJason A. Donenfeld * @key: the hsiphash key 1291ae2324fSJason A. Donenfeld */ 1301ae2324fSJason A. Donenfeld static inline u32 hsiphash(const void *data, size_t len, 1311ae2324fSJason A. Donenfeld const hsiphash_key_t *key) 1321ae2324fSJason A. Donenfeld { 133*f7e5b9bfSArnd Bergmann if (IS_ENABLED(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) || 134*f7e5b9bfSArnd Bergmann !IS_ALIGNED((unsigned long)data, HSIPHASH_ALIGNMENT)) 1351ae2324fSJason A. Donenfeld return __hsiphash_unaligned(data, len, key); 1361ae2324fSJason A. Donenfeld return ___hsiphash_aligned(data, len, key); 1371ae2324fSJason A. Donenfeld } 1381ae2324fSJason A. Donenfeld 1392c956a60SJason A. Donenfeld #endif /* _LINUX_SIPHASH_H */ 140