xref: /linux/lib/crypto/Makefile (revision 2b1ef7aeeb184ee78523f3d24e221296574c6f2d)
1# SPDX-License-Identifier: GPL-2.0
2
3aflags-thumb2-$(CONFIG_THUMB2_KERNEL)  := -U__thumb2__ -D__thumb2__=1
4
5quiet_cmd_perlasm = PERLASM $@
6      cmd_perlasm = $(PERL) $(<) > $(@)
7
8quiet_cmd_perlasm_with_args = PERLASM $@
9      cmd_perlasm_with_args = $(PERL) $(<) void $(@)
10
11obj-$(CONFIG_KUNIT)				+= tests/
12
13obj-$(CONFIG_CRYPTO_HASH_INFO)			+= hash_info.o
14
15obj-$(CONFIG_CRYPTO_LIB_UTILS)			+= libcryptoutils.o
16libcryptoutils-y				:= memneq.o utils.o
17
18################################################################################
19
20obj-$(CONFIG_CRYPTO_LIB_AES) += libaes.o
21libaes-y := aes.o
22ifeq ($(CONFIG_CRYPTO_LIB_AES_ARCH),y)
23CFLAGS_aes.o += -I$(src)/$(SRCARCH)
24
25libaes-$(CONFIG_ARM) += arm/aes-cipher-core.o
26
27ifeq ($(CONFIG_ARM64),y)
28libaes-y += arm64/aes-cipher-core.o
29libaes-$(CONFIG_KERNEL_MODE_NEON) += arm64/aes-ce-core.o
30endif
31
32endif # CONFIG_CRYPTO_LIB_AES_ARCH
33
34################################################################################
35
36obj-$(CONFIG_CRYPTO_LIB_AESCFB)			+= libaescfb.o
37libaescfb-y					:= aescfb.o
38
39obj-$(CONFIG_CRYPTO_LIB_AESGCM)			+= libaesgcm.o
40libaesgcm-y					:= aesgcm.o
41
42obj-$(CONFIG_CRYPTO_LIB_ARC4)			+= libarc4.o
43libarc4-y					:= arc4.o
44
45obj-$(CONFIG_CRYPTO_LIB_GF128MUL)		+= gf128mul.o
46
47################################################################################
48
49obj-$(CONFIG_CRYPTO_LIB_BLAKE2B) += libblake2b.o
50libblake2b-y := blake2b.o
51ifeq ($(CONFIG_CRYPTO_LIB_BLAKE2B_ARCH),y)
52CFLAGS_blake2b.o += -I$(src)/$(SRCARCH)
53libblake2b-$(CONFIG_ARM) += arm/blake2b-neon-core.o
54endif # CONFIG_CRYPTO_LIB_BLAKE2B_ARCH
55
56################################################################################
57
58# blake2s is used by the /dev/random driver which is always builtin
59obj-y += blake2s.o
60ifeq ($(CONFIG_CRYPTO_LIB_BLAKE2S_ARCH),y)
61CFLAGS_blake2s.o += -I$(src)/$(SRCARCH)
62obj-$(CONFIG_ARM) += arm/blake2s-core.o
63obj-$(CONFIG_X86) += x86/blake2s-core.o
64endif
65
66################################################################################
67
68# chacha20_block() is used by the /dev/random driver which is always builtin
69obj-y += chacha-block-generic.o
70
71obj-$(CONFIG_CRYPTO_LIB_CHACHA) += libchacha.o
72libchacha-y := chacha.o
73
74ifeq ($(CONFIG_CRYPTO_LIB_CHACHA_ARCH),y)
75CFLAGS_chacha.o += -I$(src)/$(SRCARCH)
76
77ifeq ($(CONFIG_ARM),y)
78libchacha-y += arm/chacha-scalar-core.o
79libchacha-$(CONFIG_KERNEL_MODE_NEON) += arm/chacha-neon-core.o
80endif
81
82libchacha-$(CONFIG_ARM64) += arm64/chacha-neon-core.o
83
84ifeq ($(CONFIG_MIPS),y)
85libchacha-y += mips/chacha-core.o
86AFLAGS_mips/chacha-core.o += -O2 # needed to fill branch delay slots
87endif
88
89libchacha-$(CONFIG_PPC) += powerpc/chacha-p10le-8x.o
90libchacha-$(CONFIG_RISCV) += riscv/chacha-riscv64-zvkb.o
91libchacha-$(CONFIG_S390) += s390/chacha-s390.o
92libchacha-$(CONFIG_X86) += x86/chacha-ssse3-x86_64.o \
93			   x86/chacha-avx2-x86_64.o \
94			   x86/chacha-avx512vl-x86_64.o
95endif # CONFIG_CRYPTO_LIB_CHACHA_ARCH
96
97################################################################################
98
99obj-$(CONFIG_CRYPTO_LIB_CHACHA20POLY1305)	+= libchacha20poly1305.o
100libchacha20poly1305-y				+= chacha20poly1305.o
101libchacha20poly1305-$(CONFIG_CRYPTO_SELFTESTS)	+= chacha20poly1305-selftest.o
102
103################################################################################
104
105obj-$(CONFIG_CRYPTO_LIB_CURVE25519) += libcurve25519.o
106libcurve25519-y := curve25519.o
107
108# Disable GCOV in odd or sensitive code
109GCOV_PROFILE_curve25519.o := n
110
111ifeq ($(CONFIG_ARCH_SUPPORTS_INT128),y)
112libcurve25519-$(CONFIG_CRYPTO_LIB_CURVE25519_GENERIC) += curve25519-hacl64.o
113else
114libcurve25519-$(CONFIG_CRYPTO_LIB_CURVE25519_GENERIC) += curve25519-fiat32.o
115endif
116# clang versions prior to 18 may blow out the stack with KASAN
117ifeq ($(CONFIG_CC_IS_CLANG)_$(call clang-min-version, 180000),y_)
118KASAN_SANITIZE_curve25519-hacl64.o := n
119endif
120
121ifeq ($(CONFIG_CRYPTO_LIB_CURVE25519_ARCH),y)
122CFLAGS_curve25519.o += -I$(src)/$(SRCARCH)
123libcurve25519-$(CONFIG_ARM) += arm/curve25519-core.o
124libcurve25519-$(CONFIG_PPC) += powerpc/curve25519-ppc64le_asm.o
125endif
126
127################################################################################
128
129obj-$(CONFIG_CRYPTO_LIB_DES)			+= libdes.o
130libdes-y					:= des.o
131
132################################################################################
133
134obj-$(CONFIG_CRYPTO_LIB_MD5) += libmd5.o
135libmd5-y := md5.o
136ifeq ($(CONFIG_CRYPTO_LIB_MD5_ARCH),y)
137CFLAGS_md5.o += -I$(src)/$(SRCARCH)
138libmd5-$(CONFIG_PPC) += powerpc/md5-asm.o
139libmd5-$(CONFIG_SPARC) += sparc/md5_asm.o
140endif # CONFIG_CRYPTO_LIB_MD5_ARCH
141
142################################################################################
143
144obj-$(CONFIG_CRYPTO_LIB_MLDSA) += libmldsa.o
145libmldsa-y := mldsa.o
146
147################################################################################
148
149obj-$(CONFIG_CRYPTO_LIB_NH) += libnh.o
150libnh-y := nh.o
151ifeq ($(CONFIG_CRYPTO_LIB_NH_ARCH),y)
152CFLAGS_nh.o += -I$(src)/$(SRCARCH)
153libnh-$(CONFIG_ARM) += arm/nh-neon-core.o
154libnh-$(CONFIG_ARM64) += arm64/nh-neon-core.o
155libnh-$(CONFIG_X86) += x86/nh-sse2.o x86/nh-avx2.o
156endif
157
158################################################################################
159
160obj-$(CONFIG_CRYPTO_LIB_POLY1305) += libpoly1305.o
161libpoly1305-y := poly1305.o
162ifeq ($(CONFIG_ARCH_SUPPORTS_INT128),y)
163libpoly1305-$(CONFIG_CRYPTO_LIB_POLY1305_GENERIC) += poly1305-donna64.o
164else
165libpoly1305-$(CONFIG_CRYPTO_LIB_POLY1305_GENERIC) += poly1305-donna32.o
166endif
167
168ifeq ($(CONFIG_CRYPTO_LIB_POLY1305_ARCH),y)
169CFLAGS_poly1305.o += -I$(src)/$(SRCARCH)
170
171ifeq ($(CONFIG_ARM),y)
172libpoly1305-y += arm/poly1305-core.o
173$(obj)/arm/poly1305-core.S: $(src)/arm/poly1305-armv4.pl
174	$(call cmd,perlasm)
175# massage the perlasm code a bit so we only get the NEON routine if we need it
176poly1305-aflags-$(CONFIG_CPU_V7) := -U__LINUX_ARM_ARCH__ -D__LINUX_ARM_ARCH__=5
177poly1305-aflags-$(CONFIG_KERNEL_MODE_NEON) := -U__LINUX_ARM_ARCH__ -D__LINUX_ARM_ARCH__=7
178AFLAGS_arm/poly1305-core.o += $(poly1305-aflags-y) $(aflags-thumb2-y)
179endif
180
181ifeq ($(CONFIG_ARM64),y)
182libpoly1305-y += arm64/poly1305-core.o
183$(obj)/arm64/poly1305-core.S: $(src)/arm64/poly1305-armv8.pl
184	$(call cmd,perlasm_with_args)
185endif
186
187ifeq ($(CONFIG_MIPS),y)
188libpoly1305-y += mips/poly1305-core.o
189poly1305-perlasm-flavour-$(CONFIG_32BIT) := o32
190poly1305-perlasm-flavour-$(CONFIG_64BIT) := 64
191quiet_cmd_perlasm_poly1305 = PERLASM $@
192      cmd_perlasm_poly1305 = $(PERL) $< $(poly1305-perlasm-flavour-y) $@
193# Use if_changed instead of cmd, in case the flavour changed.
194$(obj)/mips/poly1305-core.S: $(src)/mips/poly1305-mips.pl FORCE
195	$(call if_changed,perlasm_poly1305)
196targets += mips/poly1305-core.S
197endif
198
199libpoly1305-$(CONFIG_PPC) += powerpc/poly1305-p10le_64.o
200
201ifeq ($(CONFIG_RISCV),y)
202libpoly1305-y += riscv/poly1305-core.o
203poly1305-perlasm-flavour-$(CONFIG_32BIT) := 32
204poly1305-perlasm-flavour-$(CONFIG_64BIT) := 64
205quiet_cmd_perlasm_poly1305 = PERLASM $@
206      cmd_perlasm_poly1305 = $(PERL) $< $(poly1305-perlasm-flavour-y) $@
207# Use if_changed instead of cmd, in case the flavour changed.
208$(obj)/riscv/poly1305-core.S: $(src)/riscv/poly1305-riscv.pl FORCE
209	$(call if_changed,perlasm_poly1305)
210targets += riscv/poly1305-core.S
211AFLAGS_riscv/poly1305-core.o += -Dpoly1305_init=poly1305_block_init
212endif
213
214ifeq ($(CONFIG_X86),y)
215libpoly1305-y += x86/poly1305-x86_64-cryptogams.o
216$(obj)/x86/poly1305-x86_64-cryptogams.S: $(src)/x86/poly1305-x86_64-cryptogams.pl
217	$(call cmd,perlasm)
218endif
219
220endif # CONFIG_CRYPTO_LIB_POLY1305_ARCH
221
222# clean-files must be defined unconditionally
223clean-files += arm/poly1305-core.S \
224	       arm64/poly1305-core.S \
225	       mips/poly1305-core.S \
226	       riscv/poly1305-core.S \
227	       x86/poly1305-x86_64-cryptogams.S
228
229################################################################################
230
231obj-$(CONFIG_CRYPTO_LIB_POLYVAL) += libpolyval.o
232libpolyval-y := polyval.o
233ifeq ($(CONFIG_CRYPTO_LIB_POLYVAL_ARCH),y)
234CFLAGS_polyval.o += -I$(src)/$(SRCARCH)
235libpolyval-$(CONFIG_ARM64) += arm64/polyval-ce-core.o
236libpolyval-$(CONFIG_X86) += x86/polyval-pclmul-avx.o
237endif
238
239################################################################################
240
241obj-$(CONFIG_CRYPTO_LIB_SHA1) += libsha1.o
242libsha1-y := sha1.o
243ifeq ($(CONFIG_CRYPTO_LIB_SHA1_ARCH),y)
244CFLAGS_sha1.o += -I$(src)/$(SRCARCH)
245ifeq ($(CONFIG_ARM),y)
246libsha1-y += arm/sha1-armv4-large.o
247libsha1-$(CONFIG_KERNEL_MODE_NEON) += arm/sha1-armv7-neon.o \
248				      arm/sha1-ce-core.o
249endif
250libsha1-$(CONFIG_ARM64) += arm64/sha1-ce-core.o
251ifeq ($(CONFIG_PPC),y)
252libsha1-y += powerpc/sha1-powerpc-asm.o
253libsha1-$(CONFIG_SPE) += powerpc/sha1-spe-asm.o
254endif
255libsha1-$(CONFIG_SPARC) += sparc/sha1_asm.o
256libsha1-$(CONFIG_X86) += x86/sha1-ssse3-and-avx.o \
257			 x86/sha1-avx2-asm.o \
258			 x86/sha1-ni-asm.o
259endif # CONFIG_CRYPTO_LIB_SHA1_ARCH
260
261################################################################################
262
263obj-$(CONFIG_CRYPTO_LIB_SHA256) += libsha256.o
264libsha256-y := sha256.o
265ifeq ($(CONFIG_CRYPTO_LIB_SHA256_ARCH),y)
266CFLAGS_sha256.o += -I$(src)/$(SRCARCH)
267
268ifeq ($(CONFIG_ARM),y)
269libsha256-y += arm/sha256-ce.o arm/sha256-core.o
270$(obj)/arm/sha256-core.S: $(src)/arm/sha256-armv4.pl
271	$(call cmd,perlasm)
272AFLAGS_arm/sha256-core.o += $(aflags-thumb2-y)
273endif
274
275ifeq ($(CONFIG_ARM64),y)
276libsha256-y += arm64/sha256-core.o
277$(obj)/arm64/sha256-core.S: $(src)/arm64/sha2-armv8.pl
278	$(call cmd,perlasm_with_args)
279libsha256-$(CONFIG_KERNEL_MODE_NEON) += arm64/sha256-ce.o
280endif
281
282libsha256-$(CONFIG_PPC) += powerpc/sha256-spe-asm.o
283libsha256-$(CONFIG_RISCV) += riscv/sha256-riscv64-zvknha_or_zvknhb-zvkb.o
284libsha256-$(CONFIG_SPARC) += sparc/sha256_asm.o
285libsha256-$(CONFIG_X86) += x86/sha256-ssse3-asm.o \
286			   x86/sha256-avx-asm.o \
287			   x86/sha256-avx2-asm.o \
288			   x86/sha256-ni-asm.o
289endif # CONFIG_CRYPTO_LIB_SHA256_ARCH
290
291################################################################################
292
293obj-$(CONFIG_CRYPTO_LIB_SHA512) += libsha512.o
294libsha512-y := sha512.o
295ifeq ($(CONFIG_CRYPTO_LIB_SHA512_ARCH),y)
296CFLAGS_sha512.o += -I$(src)/$(SRCARCH)
297
298ifeq ($(CONFIG_ARM),y)
299libsha512-y += arm/sha512-core.o
300$(obj)/arm/sha512-core.S: $(src)/arm/sha512-armv4.pl
301	$(call cmd,perlasm)
302AFLAGS_arm/sha512-core.o += $(aflags-thumb2-y)
303endif
304
305ifeq ($(CONFIG_ARM64),y)
306libsha512-y += arm64/sha512-core.o
307$(obj)/arm64/sha512-core.S: $(src)/arm64/sha2-armv8.pl
308	$(call cmd,perlasm_with_args)
309libsha512-$(CONFIG_KERNEL_MODE_NEON) += arm64/sha512-ce-core.o
310endif
311
312libsha512-$(CONFIG_RISCV) += riscv/sha512-riscv64-zvknhb-zvkb.o
313libsha512-$(CONFIG_SPARC) += sparc/sha512_asm.o
314libsha512-$(CONFIG_X86) += x86/sha512-ssse3-asm.o \
315			   x86/sha512-avx-asm.o \
316			   x86/sha512-avx2-asm.o
317endif # CONFIG_CRYPTO_LIB_SHA512_ARCH
318
319################################################################################
320
321obj-$(CONFIG_CRYPTO_LIB_SHA3) += libsha3.o
322libsha3-y := sha3.o
323
324ifeq ($(CONFIG_CRYPTO_LIB_SHA3_ARCH),y)
325CFLAGS_sha3.o += -I$(src)/$(SRCARCH)
326libsha3-$(CONFIG_ARM64) += arm64/sha3-ce-core.o
327endif # CONFIG_CRYPTO_LIB_SHA3_ARCH
328
329################################################################################
330
331obj-$(CONFIG_MPILIB) += mpi/
332
333obj-$(CONFIG_CRYPTO_SELFTESTS_FULL)		+= simd.o
334
335obj-$(CONFIG_CRYPTO_LIB_SM3)			+= libsm3.o
336libsm3-y					:= sm3.o
337
338# clean-files must be defined unconditionally
339clean-files += arm/sha256-core.S arm/sha512-core.S
340clean-files += arm64/sha256-core.S arm64/sha512-core.S
341