Path: blob/main/crypto/openssl/providers/implementations/ciphers/cipher_aes_hw.c
108585 views
/*1* Copyright 2001-2024 The OpenSSL Project Authors. All Rights Reserved.2*3* Licensed under the Apache License 2.0 (the "License"). You may not use4* this file except in compliance with the License. You can obtain a copy5* in the file LICENSE in the source distribution or at6* https://www.openssl.org/source/license.html7*/89/*10* This file uses the low level AES functions (which are deprecated for11* non-internal use) in order to implement provider AES ciphers.12*/13#include "internal/deprecated.h"1415#include <openssl/proverr.h>16#include "cipher_aes.h"1718static int cipher_hw_aes_initkey(PROV_CIPHER_CTX *dat,19const unsigned char *key, size_t keylen)20{21int ret;22PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;23AES_KEY *ks = &adat->ks.ks;2425dat->ks = ks;2627if ((dat->mode == EVP_CIPH_ECB_MODE || dat->mode == EVP_CIPH_CBC_MODE)28&& !dat->enc) {29#ifdef HWAES_CAPABLE30if (HWAES_CAPABLE) {31ret = HWAES_set_decrypt_key(key, keylen * 8, ks);32dat->block = (block128_f)HWAES_decrypt;33dat->stream.cbc = NULL;34#ifdef HWAES_cbc_encrypt35if (dat->mode == EVP_CIPH_CBC_MODE)36dat->stream.cbc = (cbc128_f)HWAES_cbc_encrypt;37#endif38#ifdef HWAES_ecb_encrypt39if (dat->mode == EVP_CIPH_ECB_MODE)40dat->stream.ecb = (ecb128_f)HWAES_ecb_encrypt;41#endif42} else43#endif44#ifdef BSAES_CAPABLE45if (BSAES_CAPABLE && dat->mode == EVP_CIPH_CBC_MODE) {46ret = AES_set_decrypt_key(key, keylen * 8, ks);47dat->block = (block128_f)AES_decrypt;48dat->stream.cbc = (cbc128_f)ossl_bsaes_cbc_encrypt;49} else50#endif51#ifdef VPAES_CAPABLE52if (VPAES_CAPABLE) {53ret = vpaes_set_decrypt_key(key, keylen * 8, ks);54dat->block = (block128_f)vpaes_decrypt;55dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)56? (cbc128_f)vpaes_cbc_encrypt57: NULL;58} else59#endif60{61ret = AES_set_decrypt_key(key, keylen * 8, ks);62dat->block = (block128_f)AES_decrypt;63dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)64? (cbc128_f)AES_cbc_encrypt65: NULL;66}67} else68#ifdef HWAES_CAPABLE69if (HWAES_CAPABLE) {70ret = HWAES_set_encrypt_key(key, keylen * 8, ks);71dat->block = (block128_f)HWAES_encrypt;72dat->stream.cbc = NULL;73#ifdef HWAES_cbc_encrypt74if (dat->mode == EVP_CIPH_CBC_MODE)75dat->stream.cbc = (cbc128_f)HWAES_cbc_encrypt;76else77#endif78#ifdef HWAES_ecb_encrypt79if (dat->mode == EVP_CIPH_ECB_MODE)80dat->stream.ecb = (ecb128_f)HWAES_ecb_encrypt;81else82#endif83#ifdef HWAES_ctr32_encrypt_blocks84if (dat->mode == EVP_CIPH_CTR_MODE)85dat->stream.ctr = (ctr128_f)HWAES_ctr32_encrypt_blocks;86else87#endif88(void)0; /* terminate potentially open 'else' */89} else90#endif91#ifdef BSAES_CAPABLE92if (BSAES_CAPABLE && dat->mode == EVP_CIPH_CTR_MODE) {93ret = AES_set_encrypt_key(key, keylen * 8, ks);94dat->block = (block128_f)AES_encrypt;95dat->stream.ctr = (ctr128_f)ossl_bsaes_ctr32_encrypt_blocks;96} else97#endif98#ifdef VPAES_CAPABLE99if (VPAES_CAPABLE) {100ret = vpaes_set_encrypt_key(key, keylen * 8, ks);101dat->block = (block128_f)vpaes_encrypt;102dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)103? (cbc128_f)vpaes_cbc_encrypt104: NULL;105} else106#endif107{108ret = AES_set_encrypt_key(key, keylen * 8, ks);109dat->block = (block128_f)AES_encrypt;110dat->stream.cbc = (dat->mode == EVP_CIPH_CBC_MODE)111? (cbc128_f)AES_cbc_encrypt112: NULL;113#ifdef AES_CTR_ASM114if (dat->mode == EVP_CIPH_CTR_MODE)115dat->stream.ctr = (ctr128_f)AES_ctr32_encrypt;116#endif117}118119if (ret < 0) {120ERR_raise(ERR_LIB_PROV, PROV_R_KEY_SETUP_FAILED);121return 0;122}123124return 1;125}126127IMPLEMENT_CIPHER_HW_COPYCTX(cipher_hw_aes_copyctx, PROV_AES_CTX)128129#define PROV_CIPHER_HW_aes_mode(mode) \130static const PROV_CIPHER_HW aes_##mode = { \131cipher_hw_aes_initkey, \132ossl_cipher_hw_generic_##mode, \133cipher_hw_aes_copyctx \134}; \135PROV_CIPHER_HW_declare(mode) \136const PROV_CIPHER_HW * \137ossl_prov_cipher_hw_aes_##mode(size_t keybits) \138{ \139PROV_CIPHER_HW_select(mode) return &aes_##mode; \140}141142#if defined(AESNI_CAPABLE)143#include "cipher_aes_hw_aesni.inc"144#elif defined(SPARC_AES_CAPABLE)145#include "cipher_aes_hw_t4.inc"146#elif defined(S390X_aes_128_CAPABLE)147#include "cipher_aes_hw_s390x.inc"148#elif defined(OPENSSL_CPUID_OBJ) && defined(__riscv) && __riscv_xlen == 64149#include "cipher_aes_hw_rv64i.inc"150#elif defined(OPENSSL_CPUID_OBJ) && defined(__riscv) && __riscv_xlen == 32151#include "cipher_aes_hw_rv32i.inc"152#elif defined(ARMv8_HWAES_CAPABLE)153#include "cipher_aes_hw_armv8.inc"154#else155/* The generic case */156#define PROV_CIPHER_HW_declare(mode)157#define PROV_CIPHER_HW_select(mode)158#endif159160PROV_CIPHER_HW_aes_mode(cbc)161PROV_CIPHER_HW_aes_mode(ecb)162PROV_CIPHER_HW_aes_mode(ofb128)163PROV_CIPHER_HW_aes_mode(cfb128)164PROV_CIPHER_HW_aes_mode(cfb1)165PROV_CIPHER_HW_aes_mode(cfb8)166PROV_CIPHER_HW_aes_mode(ctr)167168169