xref: /linux/lib/crypto/Makefile (revision a348fd1f6eee5b8f5bf159c9d95d35cc54d17699)
1# SPDX-License-Identifier: GPL-2.0
2
3aflags-thumb2-$(CONFIG_THUMB2_KERNEL)  := -U__thumb2__ -D__thumb2__=1
4
5quiet_cmd_perlasm = PERLASM $@
6      cmd_perlasm = $(PERL) $(<) > $(@)
7
8quiet_cmd_perlasm_with_args = PERLASM $@
9      cmd_perlasm_with_args = $(PERL) $(<) void $(@)
10
11obj-$(CONFIG_KUNIT)				+= tests/
12
13obj-$(CONFIG_CRYPTO_HASH_INFO)			+= hash_info.o
14
15obj-$(CONFIG_CRYPTO_LIB_UTILS)			+= libcryptoutils.o
16libcryptoutils-y				:= memneq.o utils.o
17
18################################################################################
19
20obj-$(CONFIG_CRYPTO_LIB_AES) += libaes.o
21libaes-y := aes.o
22ifeq ($(CONFIG_CRYPTO_LIB_AES_ARCH),y)
23CFLAGS_aes.o += -I$(src)/$(SRCARCH)
24
25libaes-$(CONFIG_ARM) += arm/aes-cipher-core.o
26
27ifeq ($(CONFIG_ARM64),y)
28libaes-y += arm64/aes-cipher-core.o
29libaes-$(CONFIG_KERNEL_MODE_NEON) += arm64/aes-ce-core.o \
30				     arm64/aes-ce.o \
31				     arm64/aes-neon.o
32endif
33
34ifeq ($(CONFIG_PPC),y)
35ifeq ($(CONFIG_SPE),y)
36libaes-y += powerpc/aes-spe-core.o \
37	    powerpc/aes-spe-keys.o \
38	    powerpc/aes-spe-modes.o \
39	    powerpc/aes-tab-4k.o
40else
41libaes-y += powerpc/aesp8-ppc.o
42aes-perlasm-flavour-y := linux-ppc64
43aes-perlasm-flavour-$(CONFIG_PPC64_ELF_ABI_V2) := linux-ppc64-elfv2
44aes-perlasm-flavour-$(CONFIG_CPU_LITTLE_ENDIAN) := linux-ppc64le
45quiet_cmd_perlasm_aes = PERLASM $@
46      cmd_perlasm_aes = $(PERL) $< $(aes-perlasm-flavour-y) $@
47# Use if_changed instead of cmd, in case the flavour changed.
48$(obj)/powerpc/aesp8-ppc.S: $(src)/powerpc/aesp8-ppc.pl FORCE
49	$(call if_changed,perlasm_aes)
50targets += powerpc/aesp8-ppc.S
51OBJECT_FILES_NON_STANDARD_powerpc/aesp8-ppc.o := y
52endif # !CONFIG_SPE
53endif # CONFIG_PPC
54
55libaes-$(CONFIG_RISCV) += riscv/aes-riscv64-zvkned.o
56libaes-$(CONFIG_SPARC) += sparc/aes_asm.o
57libaes-$(CONFIG_X86) += x86/aes-aesni.o
58endif # CONFIG_CRYPTO_LIB_AES_ARCH
59
60################################################################################
61
62obj-$(CONFIG_CRYPTO_LIB_AESCFB)			+= libaescfb.o
63libaescfb-y					:= aescfb.o
64
65obj-$(CONFIG_CRYPTO_LIB_AESGCM)			+= libaesgcm.o
66libaesgcm-y					:= aesgcm.o
67
68obj-$(CONFIG_CRYPTO_LIB_ARC4)			+= libarc4.o
69libarc4-y					:= arc4.o
70
71obj-$(CONFIG_CRYPTO_LIB_GF128MUL)		+= gf128mul.o
72
73################################################################################
74
75obj-$(CONFIG_CRYPTO_LIB_BLAKE2B) += libblake2b.o
76libblake2b-y := blake2b.o
77ifeq ($(CONFIG_CRYPTO_LIB_BLAKE2B_ARCH),y)
78CFLAGS_blake2b.o += -I$(src)/$(SRCARCH)
79libblake2b-$(CONFIG_ARM) += arm/blake2b-neon-core.o
80endif # CONFIG_CRYPTO_LIB_BLAKE2B_ARCH
81
82################################################################################
83
84# blake2s is used by the /dev/random driver which is always builtin
85obj-y += blake2s.o
86ifeq ($(CONFIG_CRYPTO_LIB_BLAKE2S_ARCH),y)
87CFLAGS_blake2s.o += -I$(src)/$(SRCARCH)
88obj-$(CONFIG_ARM) += arm/blake2s-core.o
89obj-$(CONFIG_X86) += x86/blake2s-core.o
90endif
91
92################################################################################
93
94# chacha20_block() is used by the /dev/random driver which is always builtin
95obj-y += chacha-block-generic.o
96
97obj-$(CONFIG_CRYPTO_LIB_CHACHA) += libchacha.o
98libchacha-y := chacha.o
99
100ifeq ($(CONFIG_CRYPTO_LIB_CHACHA_ARCH),y)
101CFLAGS_chacha.o += -I$(src)/$(SRCARCH)
102
103ifeq ($(CONFIG_ARM),y)
104libchacha-y += arm/chacha-scalar-core.o
105libchacha-$(CONFIG_KERNEL_MODE_NEON) += arm/chacha-neon-core.o
106endif
107
108libchacha-$(CONFIG_ARM64) += arm64/chacha-neon-core.o
109
110ifeq ($(CONFIG_MIPS),y)
111libchacha-y += mips/chacha-core.o
112AFLAGS_mips/chacha-core.o += -O2 # needed to fill branch delay slots
113endif
114
115libchacha-$(CONFIG_PPC) += powerpc/chacha-p10le-8x.o
116libchacha-$(CONFIG_RISCV) += riscv/chacha-riscv64-zvkb.o
117libchacha-$(CONFIG_S390) += s390/chacha-s390.o
118libchacha-$(CONFIG_X86) += x86/chacha-ssse3-x86_64.o \
119			   x86/chacha-avx2-x86_64.o \
120			   x86/chacha-avx512vl-x86_64.o
121endif # CONFIG_CRYPTO_LIB_CHACHA_ARCH
122
123################################################################################
124
125obj-$(CONFIG_CRYPTO_LIB_CHACHA20POLY1305)	+= libchacha20poly1305.o
126libchacha20poly1305-y				+= chacha20poly1305.o
127libchacha20poly1305-$(CONFIG_CRYPTO_SELFTESTS)	+= chacha20poly1305-selftest.o
128
129################################################################################
130
131obj-$(CONFIG_CRYPTO_LIB_CURVE25519) += libcurve25519.o
132libcurve25519-y := curve25519.o
133
134# Disable GCOV in odd or sensitive code
135GCOV_PROFILE_curve25519.o := n
136
137ifeq ($(CONFIG_ARCH_SUPPORTS_INT128),y)
138libcurve25519-$(CONFIG_CRYPTO_LIB_CURVE25519_GENERIC) += curve25519-hacl64.o
139else
140libcurve25519-$(CONFIG_CRYPTO_LIB_CURVE25519_GENERIC) += curve25519-fiat32.o
141endif
142# clang versions prior to 18 may blow out the stack with KASAN
143ifeq ($(CONFIG_CC_IS_CLANG)_$(call clang-min-version, 180000),y_)
144KASAN_SANITIZE_curve25519-hacl64.o := n
145endif
146
147ifeq ($(CONFIG_CRYPTO_LIB_CURVE25519_ARCH),y)
148CFLAGS_curve25519.o += -I$(src)/$(SRCARCH)
149libcurve25519-$(CONFIG_ARM) += arm/curve25519-core.o
150libcurve25519-$(CONFIG_PPC) += powerpc/curve25519-ppc64le_asm.o
151endif
152
153################################################################################
154
155obj-$(CONFIG_CRYPTO_LIB_DES)			+= libdes.o
156libdes-y					:= des.o
157
158################################################################################
159
160obj-$(CONFIG_CRYPTO_LIB_MD5) += libmd5.o
161libmd5-y := md5.o
162ifeq ($(CONFIG_CRYPTO_LIB_MD5_ARCH),y)
163CFLAGS_md5.o += -I$(src)/$(SRCARCH)
164libmd5-$(CONFIG_PPC) += powerpc/md5-asm.o
165libmd5-$(CONFIG_SPARC) += sparc/md5_asm.o
166endif # CONFIG_CRYPTO_LIB_MD5_ARCH
167
168################################################################################
169
170obj-$(CONFIG_CRYPTO_LIB_MLDSA) += libmldsa.o
171libmldsa-y := mldsa.o
172
173################################################################################
174
175obj-$(CONFIG_CRYPTO_LIB_NH) += libnh.o
176libnh-y := nh.o
177ifeq ($(CONFIG_CRYPTO_LIB_NH_ARCH),y)
178CFLAGS_nh.o += -I$(src)/$(SRCARCH)
179libnh-$(CONFIG_ARM) += arm/nh-neon-core.o
180libnh-$(CONFIG_ARM64) += arm64/nh-neon-core.o
181libnh-$(CONFIG_X86) += x86/nh-sse2.o x86/nh-avx2.o
182endif
183
184################################################################################
185
186obj-$(CONFIG_CRYPTO_LIB_POLY1305) += libpoly1305.o
187libpoly1305-y := poly1305.o
188ifeq ($(CONFIG_ARCH_SUPPORTS_INT128),y)
189libpoly1305-$(CONFIG_CRYPTO_LIB_POLY1305_GENERIC) += poly1305-donna64.o
190else
191libpoly1305-$(CONFIG_CRYPTO_LIB_POLY1305_GENERIC) += poly1305-donna32.o
192endif
193
194ifeq ($(CONFIG_CRYPTO_LIB_POLY1305_ARCH),y)
195CFLAGS_poly1305.o += -I$(src)/$(SRCARCH)
196
197ifeq ($(CONFIG_ARM),y)
198libpoly1305-y += arm/poly1305-core.o
199$(obj)/arm/poly1305-core.S: $(src)/arm/poly1305-armv4.pl
200	$(call cmd,perlasm)
201# massage the perlasm code a bit so we only get the NEON routine if we need it
202poly1305-aflags-$(CONFIG_CPU_V7) := -U__LINUX_ARM_ARCH__ -D__LINUX_ARM_ARCH__=5
203poly1305-aflags-$(CONFIG_KERNEL_MODE_NEON) := -U__LINUX_ARM_ARCH__ -D__LINUX_ARM_ARCH__=7
204AFLAGS_arm/poly1305-core.o += $(poly1305-aflags-y) $(aflags-thumb2-y)
205endif
206
207ifeq ($(CONFIG_ARM64),y)
208libpoly1305-y += arm64/poly1305-core.o
209$(obj)/arm64/poly1305-core.S: $(src)/arm64/poly1305-armv8.pl
210	$(call cmd,perlasm_with_args)
211endif
212
213ifeq ($(CONFIG_MIPS),y)
214libpoly1305-y += mips/poly1305-core.o
215poly1305-perlasm-flavour-$(CONFIG_32BIT) := o32
216poly1305-perlasm-flavour-$(CONFIG_64BIT) := 64
217quiet_cmd_perlasm_poly1305 = PERLASM $@
218      cmd_perlasm_poly1305 = $(PERL) $< $(poly1305-perlasm-flavour-y) $@
219# Use if_changed instead of cmd, in case the flavour changed.
220$(obj)/mips/poly1305-core.S: $(src)/mips/poly1305-mips.pl FORCE
221	$(call if_changed,perlasm_poly1305)
222targets += mips/poly1305-core.S
223endif
224
225libpoly1305-$(CONFIG_PPC) += powerpc/poly1305-p10le_64.o
226
227ifeq ($(CONFIG_RISCV),y)
228libpoly1305-y += riscv/poly1305-core.o
229poly1305-perlasm-flavour-$(CONFIG_32BIT) := 32
230poly1305-perlasm-flavour-$(CONFIG_64BIT) := 64
231quiet_cmd_perlasm_poly1305 = PERLASM $@
232      cmd_perlasm_poly1305 = $(PERL) $< $(poly1305-perlasm-flavour-y) $@
233# Use if_changed instead of cmd, in case the flavour changed.
234$(obj)/riscv/poly1305-core.S: $(src)/riscv/poly1305-riscv.pl FORCE
235	$(call if_changed,perlasm_poly1305)
236targets += riscv/poly1305-core.S
237AFLAGS_riscv/poly1305-core.o += -Dpoly1305_init=poly1305_block_init
238endif
239
240ifeq ($(CONFIG_X86),y)
241libpoly1305-y += x86/poly1305-x86_64-cryptogams.o
242$(obj)/x86/poly1305-x86_64-cryptogams.S: $(src)/x86/poly1305-x86_64-cryptogams.pl
243	$(call cmd,perlasm)
244endif
245
246endif # CONFIG_CRYPTO_LIB_POLY1305_ARCH
247
248# clean-files must be defined unconditionally
249clean-files += arm/poly1305-core.S \
250	       arm64/poly1305-core.S \
251	       mips/poly1305-core.S \
252	       riscv/poly1305-core.S \
253	       x86/poly1305-x86_64-cryptogams.S
254
255################################################################################
256
257obj-$(CONFIG_CRYPTO_LIB_POLYVAL) += libpolyval.o
258libpolyval-y := polyval.o
259ifeq ($(CONFIG_CRYPTO_LIB_POLYVAL_ARCH),y)
260CFLAGS_polyval.o += -I$(src)/$(SRCARCH)
261libpolyval-$(CONFIG_ARM64) += arm64/polyval-ce-core.o
262libpolyval-$(CONFIG_X86) += x86/polyval-pclmul-avx.o
263endif
264
265################################################################################
266
267obj-$(CONFIG_CRYPTO_LIB_SHA1) += libsha1.o
268libsha1-y := sha1.o
269ifeq ($(CONFIG_CRYPTO_LIB_SHA1_ARCH),y)
270CFLAGS_sha1.o += -I$(src)/$(SRCARCH)
271ifeq ($(CONFIG_ARM),y)
272libsha1-y += arm/sha1-armv4-large.o
273libsha1-$(CONFIG_KERNEL_MODE_NEON) += arm/sha1-armv7-neon.o \
274				      arm/sha1-ce-core.o
275endif
276libsha1-$(CONFIG_ARM64) += arm64/sha1-ce-core.o
277ifeq ($(CONFIG_PPC),y)
278libsha1-y += powerpc/sha1-powerpc-asm.o
279libsha1-$(CONFIG_SPE) += powerpc/sha1-spe-asm.o
280endif
281libsha1-$(CONFIG_SPARC) += sparc/sha1_asm.o
282libsha1-$(CONFIG_X86) += x86/sha1-ssse3-and-avx.o \
283			 x86/sha1-avx2-asm.o \
284			 x86/sha1-ni-asm.o
285endif # CONFIG_CRYPTO_LIB_SHA1_ARCH
286
287################################################################################
288
289obj-$(CONFIG_CRYPTO_LIB_SHA256) += libsha256.o
290libsha256-y := sha256.o
291ifeq ($(CONFIG_CRYPTO_LIB_SHA256_ARCH),y)
292CFLAGS_sha256.o += -I$(src)/$(SRCARCH)
293
294ifeq ($(CONFIG_ARM),y)
295libsha256-y += arm/sha256-ce.o arm/sha256-core.o
296$(obj)/arm/sha256-core.S: $(src)/arm/sha256-armv4.pl
297	$(call cmd,perlasm)
298AFLAGS_arm/sha256-core.o += $(aflags-thumb2-y)
299endif
300
301ifeq ($(CONFIG_ARM64),y)
302libsha256-y += arm64/sha256-core.o
303$(obj)/arm64/sha256-core.S: $(src)/arm64/sha2-armv8.pl
304	$(call cmd,perlasm_with_args)
305libsha256-$(CONFIG_KERNEL_MODE_NEON) += arm64/sha256-ce.o
306endif
307
308libsha256-$(CONFIG_PPC) += powerpc/sha256-spe-asm.o
309libsha256-$(CONFIG_RISCV) += riscv/sha256-riscv64-zvknha_or_zvknhb-zvkb.o
310libsha256-$(CONFIG_SPARC) += sparc/sha256_asm.o
311libsha256-$(CONFIG_X86) += x86/sha256-ssse3-asm.o \
312			   x86/sha256-avx-asm.o \
313			   x86/sha256-avx2-asm.o \
314			   x86/sha256-ni-asm.o
315endif # CONFIG_CRYPTO_LIB_SHA256_ARCH
316
317################################################################################
318
319obj-$(CONFIG_CRYPTO_LIB_SHA512) += libsha512.o
320libsha512-y := sha512.o
321ifeq ($(CONFIG_CRYPTO_LIB_SHA512_ARCH),y)
322CFLAGS_sha512.o += -I$(src)/$(SRCARCH)
323
324ifeq ($(CONFIG_ARM),y)
325libsha512-y += arm/sha512-core.o
326$(obj)/arm/sha512-core.S: $(src)/arm/sha512-armv4.pl
327	$(call cmd,perlasm)
328AFLAGS_arm/sha512-core.o += $(aflags-thumb2-y)
329endif
330
331ifeq ($(CONFIG_ARM64),y)
332libsha512-y += arm64/sha512-core.o
333$(obj)/arm64/sha512-core.S: $(src)/arm64/sha2-armv8.pl
334	$(call cmd,perlasm_with_args)
335libsha512-$(CONFIG_KERNEL_MODE_NEON) += arm64/sha512-ce-core.o
336endif
337
338libsha512-$(CONFIG_RISCV) += riscv/sha512-riscv64-zvknhb-zvkb.o
339libsha512-$(CONFIG_SPARC) += sparc/sha512_asm.o
340libsha512-$(CONFIG_X86) += x86/sha512-ssse3-asm.o \
341			   x86/sha512-avx-asm.o \
342			   x86/sha512-avx2-asm.o
343endif # CONFIG_CRYPTO_LIB_SHA512_ARCH
344
345################################################################################
346
347obj-$(CONFIG_CRYPTO_LIB_SHA3) += libsha3.o
348libsha3-y := sha3.o
349
350ifeq ($(CONFIG_CRYPTO_LIB_SHA3_ARCH),y)
351CFLAGS_sha3.o += -I$(src)/$(SRCARCH)
352libsha3-$(CONFIG_ARM64) += arm64/sha3-ce-core.o
353endif # CONFIG_CRYPTO_LIB_SHA3_ARCH
354
355################################################################################
356
357obj-$(CONFIG_MPILIB) += mpi/
358
359obj-$(CONFIG_CRYPTO_SELFTESTS_FULL)		+= simd.o
360
361obj-$(CONFIG_CRYPTO_LIB_SM3)			+= libsm3.o
362libsm3-y					:= sm3.o
363
364# clean-files must be defined unconditionally
365clean-files += arm/sha256-core.S arm/sha512-core.S
366clean-files += arm64/sha256-core.S arm64/sha512-core.S
367