1 /* $FreeBSD$ */
2 /* $KAME: esp_rijndael.c,v 1.4 2001/03/02 05:53:05 itojun Exp $ */
3
4 /*
5 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
6 * All rights reserved.
7 *
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
10 * are met:
11 * 1. Redistributions of source code must retain the above copyright
12 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of the project nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 * SUCH DAMAGE.
31 */
32
33 #include "opt_inet.h"
34 #include "opt_inet6.h"
35
36 #include <sys/param.h>
37 #include <sys/systm.h>
38 #include <sys/socket.h>
39 #include <sys/queue.h>
40
41 #include <net/if.h>
42 #include <net/route.h>
43 #include <netinet/in.h>
44
45 #include <netinet6/ipsec.h>
46 #include <netinet6/esp.h>
47 #include <netinet6/esp_rijndael.h>
48
49 #include <crypto/rijndael/rijndael.h>
50
51 #include <net/net_osdep.h>
52
53 /* as rijndael uses assymetric scheduled keys, we need to do it twice. */
54 int
55 esp_rijndael_schedlen(algo)
56 const struct esp_algorithm *algo;
57 {
58
59 return sizeof(keyInstance) * 2;
60 }
61
62 int
63 esp_rijndael_schedule(algo, sav)
64 const struct esp_algorithm *algo;
65 struct secasvar *sav;
66 {
67 keyInstance *k;
68
69 k = (keyInstance *)sav->sched;
70 if (rijndael_makeKey(&k[0], DIR_DECRYPT, _KEYLEN(sav->key_enc) * 8,
71 _KEYBUF(sav->key_enc)) < 0)
72 return -1;
73 if (rijndael_makeKey(&k[1], DIR_ENCRYPT, _KEYLEN(sav->key_enc) * 8,
74 _KEYBUF(sav->key_enc)) < 0)
75 return -1;
76 return 0;
77 }
78
79 int
80 esp_rijndael_blockdecrypt(algo, sav, s, d)
81 const struct esp_algorithm *algo;
82 struct secasvar *sav;
83 u_int8_t *s;
84 u_int8_t *d;
85 {
86 cipherInstance c;
87 keyInstance *p;
88
89 /* does not take advantage of CBC mode support */
90 bzero(&c, sizeof(c));
91 if (rijndael_cipherInit(&c, MODE_ECB, NULL) < 0)
92 return -1;
93 p = (keyInstance *)sav->sched;
94 if (rijndael_blockDecrypt(&c, &p[0], s, algo->padbound * 8, d) < 0)
95 return -1;
96 return 0;
97 }
98
99 int
100 esp_rijndael_blockencrypt(algo, sav, s, d)
101 const struct esp_algorithm *algo;
102 struct secasvar *sav;
103 u_int8_t *s;
104 u_int8_t *d;
105 {
106 cipherInstance c;
107 keyInstance *p;
108
109 /* does not take advantage of CBC mode support */
110 bzero(&c, sizeof(c));
111 if (rijndael_cipherInit(&c, MODE_ECB, NULL) < 0)
112 return -1;
113 p = (keyInstance *)sav->sched;
114 if (rijndael_blockEncrypt(&c, &p[1], s, algo->padbound * 8, d) < 0)
115 return -1;
116 return 0;
117 }
Cache object: f70d74c12497139e955160051292ecab
|