Path: blob/main/crypto/openssl/providers/implementations/ciphers/cipher_aes_hw.c
48383 views
/*1* Copyright 2001-2024 The OpenSSL Project Authors. All Rights Reserved.2*3* Licensed under the Apache License 2.0 (the "License"). You may not use4* this file except in compliance with the License. You can obtain a copy5* in the file LICENSE in the source distribution or at6* https://www.openssl.org/source/license.html7*/89/*10* This file uses the low level AES functions (which are deprecated for11* non-internal use) in order to implement provider AES ciphers.12*/13#include "internal/deprecated.h"1415#include <openssl/proverr.h>16#include "cipher_aes.h"1718static int cipher_hw_aes_initkey(PROV_CIPHER_CTX *dat,19const unsigned char *key, size_t keylen)20{21int ret;22PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;23AES_KEY *ks = &adat->ks.ks;2425dat->ks = ks;2627if ((dat->mode == EVP_CIPH_ECB_MODE || dat->mode == EVP_CIPH_CBC_MODE)28&& !dat->enc) {29#ifdef HWAES_CAPABLE30if (HWAES_CAPABLE) {31ret = HWAES_set_decrypt_key(key, keylen * 8, ks);32dat->block = (block128_f)HWAES_decrypt;33dat->stream.cbc = NULL;34# ifdef HWAES_cbc_encrypt35if (dat->mode == EVP_CIPH_CBC_MODE)36dat->stream.cbc = (cbc128_f)HWAES_cbc_encrypt;37# endif38# ifdef HWAES_ecb_encrypt39if (dat->mode == EVP_CIPH_ECB_MODE)40dat->stream.ecb = (ecb128_f)HWAES_ecb_encrypt;41# endif42} else43#endif44#ifdef BSAES_CAPABLE45if (BSAES_CAPABLE && dat->mode == EVP_CIPH_CBC_MODE) {46ret = AES_set_decrypt_key(key, keylen * 8, ks);47dat->block = (block128_f)AES_decrypt;48dat->stream.cbc = (cbc128_f)ossl_bsaes_cbc_encrypt;49} else50#endif51#ifdef VPAES_CAPABLE52if (VPAES_CAPABLE) {53ret = vpaes_set_decrypt_key(key, keylen * 8, ks);54dat->block = (block128_f)vpaes_decrypt;55dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)56?(cbc128_f)vpaes_cbc_encrypt : NULL;57} else58#endif59{60ret = AES_set_decrypt_key(key, keylen * 8, ks);61dat->block = (block128_f)AES_decrypt;62dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)63? (cbc128_f)AES_cbc_encrypt : NULL;64}65} else66#ifdef HWAES_CAPABLE67if (HWAES_CAPABLE) {68ret = HWAES_set_encrypt_key(key, keylen * 8, ks);69dat->block = (block128_f)HWAES_encrypt;70dat->stream.cbc = NULL;71# ifdef HWAES_cbc_encrypt72if (dat->mode == EVP_CIPH_CBC_MODE)73dat->stream.cbc = (cbc128_f)HWAES_cbc_encrypt;74else75# endif76# ifdef HWAES_ecb_encrypt77if (dat->mode == EVP_CIPH_ECB_MODE)78dat->stream.ecb = (ecb128_f)HWAES_ecb_encrypt;79else80# endif81# ifdef HWAES_ctr32_encrypt_blocks82if (dat->mode == EVP_CIPH_CTR_MODE)83dat->stream.ctr = (ctr128_f)HWAES_ctr32_encrypt_blocks;84else85# endif86(void)0; /* terminate potentially open 'else' */87} else88#endif89#ifdef BSAES_CAPABLE90if (BSAES_CAPABLE && dat->mode == EVP_CIPH_CTR_MODE) {91ret = AES_set_encrypt_key(key, keylen * 8, ks);92dat->block = (block128_f)AES_encrypt;93dat->stream.ctr = (ctr128_f)ossl_bsaes_ctr32_encrypt_blocks;94} else95#endif96#ifdef VPAES_CAPABLE97if (VPAES_CAPABLE) {98ret = vpaes_set_encrypt_key(key, keylen * 8, ks);99dat->block = (block128_f)vpaes_encrypt;100dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)101? (cbc128_f)vpaes_cbc_encrypt : NULL;102} else103#endif104{105ret = AES_set_encrypt_key(key, keylen * 8, ks);106dat->block = (block128_f)AES_encrypt;107dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)108? (cbc128_f)AES_cbc_encrypt : NULL;109#ifdef AES_CTR_ASM110if (dat->mode == EVP_CIPH_CTR_MODE)111dat->stream.ctr = (ctr128_f)AES_ctr32_encrypt;112#endif113}114115if (ret < 0) {116ERR_raise(ERR_LIB_PROV, PROV_R_KEY_SETUP_FAILED);117return 0;118}119120return 1;121}122123IMPLEMENT_CIPHER_HW_COPYCTX(cipher_hw_aes_copyctx, PROV_AES_CTX)124125#define PROV_CIPHER_HW_aes_mode(mode) \126static const PROV_CIPHER_HW aes_##mode = { \127cipher_hw_aes_initkey, \128ossl_cipher_hw_generic_##mode, \129cipher_hw_aes_copyctx \130}; \131PROV_CIPHER_HW_declare(mode) \132const PROV_CIPHER_HW *ossl_prov_cipher_hw_aes_##mode(size_t keybits) \133{ \134PROV_CIPHER_HW_select(mode) \135return &aes_##mode; \136}137138#if defined(AESNI_CAPABLE)139# include "cipher_aes_hw_aesni.inc"140#elif defined(SPARC_AES_CAPABLE)141# include "cipher_aes_hw_t4.inc"142#elif defined(S390X_aes_128_CAPABLE)143# include "cipher_aes_hw_s390x.inc"144#elif defined(OPENSSL_CPUID_OBJ) && defined(__riscv) && __riscv_xlen == 64145# include "cipher_aes_hw_rv64i.inc"146#elif defined(OPENSSL_CPUID_OBJ) && defined(__riscv) && __riscv_xlen == 32147# include "cipher_aes_hw_rv32i.inc"148#elif defined (ARMv8_HWAES_CAPABLE)149# include "cipher_aes_hw_armv8.inc"150#else151/* The generic case */152# define PROV_CIPHER_HW_declare(mode)153# define PROV_CIPHER_HW_select(mode)154#endif155156PROV_CIPHER_HW_aes_mode(cbc)157PROV_CIPHER_HW_aes_mode(ecb)158PROV_CIPHER_HW_aes_mode(ofb128)159PROV_CIPHER_HW_aes_mode(cfb128)160PROV_CIPHER_HW_aes_mode(cfb1)161PROV_CIPHER_HW_aes_mode(cfb8)162PROV_CIPHER_HW_aes_mode(ctr)163164165