xref: /OK3568_Linux_fs/kernel/arch/x86/crypto/blowfish_glue.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-or-later
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun  * Glue Code for assembler optimized version of Blowfish
4*4882a593Smuzhiyun  *
5*4882a593Smuzhiyun  * Copyright (c) 2011 Jussi Kivilinna <jussi.kivilinna@mbnet.fi>
6*4882a593Smuzhiyun  *
7*4882a593Smuzhiyun  * CBC & ECB parts based on code (crypto/cbc.c,ecb.c) by:
8*4882a593Smuzhiyun  *   Copyright (c) 2006 Herbert Xu <herbert@gondor.apana.org.au>
9*4882a593Smuzhiyun  * CTR part based on code (crypto/ctr.c) by:
10*4882a593Smuzhiyun  *   (C) Copyright IBM Corp. 2007 - Joy Latten <latten@us.ibm.com>
11*4882a593Smuzhiyun  */
12*4882a593Smuzhiyun 
13*4882a593Smuzhiyun #include <crypto/algapi.h>
14*4882a593Smuzhiyun #include <crypto/blowfish.h>
15*4882a593Smuzhiyun #include <crypto/internal/skcipher.h>
16*4882a593Smuzhiyun #include <linux/crypto.h>
17*4882a593Smuzhiyun #include <linux/init.h>
18*4882a593Smuzhiyun #include <linux/module.h>
19*4882a593Smuzhiyun #include <linux/types.h>
20*4882a593Smuzhiyun 
21*4882a593Smuzhiyun /* regular block cipher functions */
22*4882a593Smuzhiyun asmlinkage void __blowfish_enc_blk(struct bf_ctx *ctx, u8 *dst, const u8 *src,
23*4882a593Smuzhiyun 				   bool xor);
24*4882a593Smuzhiyun asmlinkage void blowfish_dec_blk(struct bf_ctx *ctx, u8 *dst, const u8 *src);
25*4882a593Smuzhiyun 
26*4882a593Smuzhiyun /* 4-way parallel cipher functions */
27*4882a593Smuzhiyun asmlinkage void __blowfish_enc_blk_4way(struct bf_ctx *ctx, u8 *dst,
28*4882a593Smuzhiyun 					const u8 *src, bool xor);
29*4882a593Smuzhiyun asmlinkage void blowfish_dec_blk_4way(struct bf_ctx *ctx, u8 *dst,
30*4882a593Smuzhiyun 				      const u8 *src);
31*4882a593Smuzhiyun 
blowfish_enc_blk(struct bf_ctx * ctx,u8 * dst,const u8 * src)32*4882a593Smuzhiyun static inline void blowfish_enc_blk(struct bf_ctx *ctx, u8 *dst, const u8 *src)
33*4882a593Smuzhiyun {
34*4882a593Smuzhiyun 	__blowfish_enc_blk(ctx, dst, src, false);
35*4882a593Smuzhiyun }
36*4882a593Smuzhiyun 
blowfish_enc_blk_xor(struct bf_ctx * ctx,u8 * dst,const u8 * src)37*4882a593Smuzhiyun static inline void blowfish_enc_blk_xor(struct bf_ctx *ctx, u8 *dst,
38*4882a593Smuzhiyun 					const u8 *src)
39*4882a593Smuzhiyun {
40*4882a593Smuzhiyun 	__blowfish_enc_blk(ctx, dst, src, true);
41*4882a593Smuzhiyun }
42*4882a593Smuzhiyun 
blowfish_enc_blk_4way(struct bf_ctx * ctx,u8 * dst,const u8 * src)43*4882a593Smuzhiyun static inline void blowfish_enc_blk_4way(struct bf_ctx *ctx, u8 *dst,
44*4882a593Smuzhiyun 					 const u8 *src)
45*4882a593Smuzhiyun {
46*4882a593Smuzhiyun 	__blowfish_enc_blk_4way(ctx, dst, src, false);
47*4882a593Smuzhiyun }
48*4882a593Smuzhiyun 
blowfish_enc_blk_xor_4way(struct bf_ctx * ctx,u8 * dst,const u8 * src)49*4882a593Smuzhiyun static inline void blowfish_enc_blk_xor_4way(struct bf_ctx *ctx, u8 *dst,
50*4882a593Smuzhiyun 				      const u8 *src)
51*4882a593Smuzhiyun {
52*4882a593Smuzhiyun 	__blowfish_enc_blk_4way(ctx, dst, src, true);
53*4882a593Smuzhiyun }
54*4882a593Smuzhiyun 
blowfish_encrypt(struct crypto_tfm * tfm,u8 * dst,const u8 * src)55*4882a593Smuzhiyun static void blowfish_encrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
56*4882a593Smuzhiyun {
57*4882a593Smuzhiyun 	blowfish_enc_blk(crypto_tfm_ctx(tfm), dst, src);
58*4882a593Smuzhiyun }
59*4882a593Smuzhiyun 
blowfish_decrypt(struct crypto_tfm * tfm,u8 * dst,const u8 * src)60*4882a593Smuzhiyun static void blowfish_decrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
61*4882a593Smuzhiyun {
62*4882a593Smuzhiyun 	blowfish_dec_blk(crypto_tfm_ctx(tfm), dst, src);
63*4882a593Smuzhiyun }
64*4882a593Smuzhiyun 
blowfish_setkey_skcipher(struct crypto_skcipher * tfm,const u8 * key,unsigned int keylen)65*4882a593Smuzhiyun static int blowfish_setkey_skcipher(struct crypto_skcipher *tfm,
66*4882a593Smuzhiyun 				    const u8 *key, unsigned int keylen)
67*4882a593Smuzhiyun {
68*4882a593Smuzhiyun 	return blowfish_setkey(&tfm->base, key, keylen);
69*4882a593Smuzhiyun }
70*4882a593Smuzhiyun 
ecb_crypt(struct skcipher_request * req,void (* fn)(struct bf_ctx *,u8 *,const u8 *),void (* fn_4way)(struct bf_ctx *,u8 *,const u8 *))71*4882a593Smuzhiyun static int ecb_crypt(struct skcipher_request *req,
72*4882a593Smuzhiyun 		     void (*fn)(struct bf_ctx *, u8 *, const u8 *),
73*4882a593Smuzhiyun 		     void (*fn_4way)(struct bf_ctx *, u8 *, const u8 *))
74*4882a593Smuzhiyun {
75*4882a593Smuzhiyun 	unsigned int bsize = BF_BLOCK_SIZE;
76*4882a593Smuzhiyun 	struct crypto_skcipher *tfm = crypto_skcipher_reqtfm(req);
77*4882a593Smuzhiyun 	struct bf_ctx *ctx = crypto_skcipher_ctx(tfm);
78*4882a593Smuzhiyun 	struct skcipher_walk walk;
79*4882a593Smuzhiyun 	unsigned int nbytes;
80*4882a593Smuzhiyun 	int err;
81*4882a593Smuzhiyun 
82*4882a593Smuzhiyun 	err = skcipher_walk_virt(&walk, req, false);
83*4882a593Smuzhiyun 
84*4882a593Smuzhiyun 	while ((nbytes = walk.nbytes)) {
85*4882a593Smuzhiyun 		u8 *wsrc = walk.src.virt.addr;
86*4882a593Smuzhiyun 		u8 *wdst = walk.dst.virt.addr;
87*4882a593Smuzhiyun 
88*4882a593Smuzhiyun 		/* Process four block batch */
89*4882a593Smuzhiyun 		if (nbytes >= bsize * 4) {
90*4882a593Smuzhiyun 			do {
91*4882a593Smuzhiyun 				fn_4way(ctx, wdst, wsrc);
92*4882a593Smuzhiyun 
93*4882a593Smuzhiyun 				wsrc += bsize * 4;
94*4882a593Smuzhiyun 				wdst += bsize * 4;
95*4882a593Smuzhiyun 				nbytes -= bsize * 4;
96*4882a593Smuzhiyun 			} while (nbytes >= bsize * 4);
97*4882a593Smuzhiyun 
98*4882a593Smuzhiyun 			if (nbytes < bsize)
99*4882a593Smuzhiyun 				goto done;
100*4882a593Smuzhiyun 		}
101*4882a593Smuzhiyun 
102*4882a593Smuzhiyun 		/* Handle leftovers */
103*4882a593Smuzhiyun 		do {
104*4882a593Smuzhiyun 			fn(ctx, wdst, wsrc);
105*4882a593Smuzhiyun 
106*4882a593Smuzhiyun 			wsrc += bsize;
107*4882a593Smuzhiyun 			wdst += bsize;
108*4882a593Smuzhiyun 			nbytes -= bsize;
109*4882a593Smuzhiyun 		} while (nbytes >= bsize);
110*4882a593Smuzhiyun 
111*4882a593Smuzhiyun done:
112*4882a593Smuzhiyun 		err = skcipher_walk_done(&walk, nbytes);
113*4882a593Smuzhiyun 	}
114*4882a593Smuzhiyun 
115*4882a593Smuzhiyun 	return err;
116*4882a593Smuzhiyun }
117*4882a593Smuzhiyun 
ecb_encrypt(struct skcipher_request * req)118*4882a593Smuzhiyun static int ecb_encrypt(struct skcipher_request *req)
119*4882a593Smuzhiyun {
120*4882a593Smuzhiyun 	return ecb_crypt(req, blowfish_enc_blk, blowfish_enc_blk_4way);
121*4882a593Smuzhiyun }
122*4882a593Smuzhiyun 
ecb_decrypt(struct skcipher_request * req)123*4882a593Smuzhiyun static int ecb_decrypt(struct skcipher_request *req)
124*4882a593Smuzhiyun {
125*4882a593Smuzhiyun 	return ecb_crypt(req, blowfish_dec_blk, blowfish_dec_blk_4way);
126*4882a593Smuzhiyun }
127*4882a593Smuzhiyun 
__cbc_encrypt(struct bf_ctx * ctx,struct skcipher_walk * walk)128*4882a593Smuzhiyun static unsigned int __cbc_encrypt(struct bf_ctx *ctx,
129*4882a593Smuzhiyun 				  struct skcipher_walk *walk)
130*4882a593Smuzhiyun {
131*4882a593Smuzhiyun 	unsigned int bsize = BF_BLOCK_SIZE;
132*4882a593Smuzhiyun 	unsigned int nbytes = walk->nbytes;
133*4882a593Smuzhiyun 	u64 *src = (u64 *)walk->src.virt.addr;
134*4882a593Smuzhiyun 	u64 *dst = (u64 *)walk->dst.virt.addr;
135*4882a593Smuzhiyun 	u64 *iv = (u64 *)walk->iv;
136*4882a593Smuzhiyun 
137*4882a593Smuzhiyun 	do {
138*4882a593Smuzhiyun 		*dst = *src ^ *iv;
139*4882a593Smuzhiyun 		blowfish_enc_blk(ctx, (u8 *)dst, (u8 *)dst);
140*4882a593Smuzhiyun 		iv = dst;
141*4882a593Smuzhiyun 
142*4882a593Smuzhiyun 		src += 1;
143*4882a593Smuzhiyun 		dst += 1;
144*4882a593Smuzhiyun 		nbytes -= bsize;
145*4882a593Smuzhiyun 	} while (nbytes >= bsize);
146*4882a593Smuzhiyun 
147*4882a593Smuzhiyun 	*(u64 *)walk->iv = *iv;
148*4882a593Smuzhiyun 	return nbytes;
149*4882a593Smuzhiyun }
150*4882a593Smuzhiyun 
cbc_encrypt(struct skcipher_request * req)151*4882a593Smuzhiyun static int cbc_encrypt(struct skcipher_request *req)
152*4882a593Smuzhiyun {
153*4882a593Smuzhiyun 	struct crypto_skcipher *tfm = crypto_skcipher_reqtfm(req);
154*4882a593Smuzhiyun 	struct bf_ctx *ctx = crypto_skcipher_ctx(tfm);
155*4882a593Smuzhiyun 	struct skcipher_walk walk;
156*4882a593Smuzhiyun 	unsigned int nbytes;
157*4882a593Smuzhiyun 	int err;
158*4882a593Smuzhiyun 
159*4882a593Smuzhiyun 	err = skcipher_walk_virt(&walk, req, false);
160*4882a593Smuzhiyun 
161*4882a593Smuzhiyun 	while ((nbytes = walk.nbytes)) {
162*4882a593Smuzhiyun 		nbytes = __cbc_encrypt(ctx, &walk);
163*4882a593Smuzhiyun 		err = skcipher_walk_done(&walk, nbytes);
164*4882a593Smuzhiyun 	}
165*4882a593Smuzhiyun 
166*4882a593Smuzhiyun 	return err;
167*4882a593Smuzhiyun }
168*4882a593Smuzhiyun 
__cbc_decrypt(struct bf_ctx * ctx,struct skcipher_walk * walk)169*4882a593Smuzhiyun static unsigned int __cbc_decrypt(struct bf_ctx *ctx,
170*4882a593Smuzhiyun 				  struct skcipher_walk *walk)
171*4882a593Smuzhiyun {
172*4882a593Smuzhiyun 	unsigned int bsize = BF_BLOCK_SIZE;
173*4882a593Smuzhiyun 	unsigned int nbytes = walk->nbytes;
174*4882a593Smuzhiyun 	u64 *src = (u64 *)walk->src.virt.addr;
175*4882a593Smuzhiyun 	u64 *dst = (u64 *)walk->dst.virt.addr;
176*4882a593Smuzhiyun 	u64 ivs[4 - 1];
177*4882a593Smuzhiyun 	u64 last_iv;
178*4882a593Smuzhiyun 
179*4882a593Smuzhiyun 	/* Start of the last block. */
180*4882a593Smuzhiyun 	src += nbytes / bsize - 1;
181*4882a593Smuzhiyun 	dst += nbytes / bsize - 1;
182*4882a593Smuzhiyun 
183*4882a593Smuzhiyun 	last_iv = *src;
184*4882a593Smuzhiyun 
185*4882a593Smuzhiyun 	/* Process four block batch */
186*4882a593Smuzhiyun 	if (nbytes >= bsize * 4) {
187*4882a593Smuzhiyun 		do {
188*4882a593Smuzhiyun 			nbytes -= bsize * 4 - bsize;
189*4882a593Smuzhiyun 			src -= 4 - 1;
190*4882a593Smuzhiyun 			dst -= 4 - 1;
191*4882a593Smuzhiyun 
192*4882a593Smuzhiyun 			ivs[0] = src[0];
193*4882a593Smuzhiyun 			ivs[1] = src[1];
194*4882a593Smuzhiyun 			ivs[2] = src[2];
195*4882a593Smuzhiyun 
196*4882a593Smuzhiyun 			blowfish_dec_blk_4way(ctx, (u8 *)dst, (u8 *)src);
197*4882a593Smuzhiyun 
198*4882a593Smuzhiyun 			dst[1] ^= ivs[0];
199*4882a593Smuzhiyun 			dst[2] ^= ivs[1];
200*4882a593Smuzhiyun 			dst[3] ^= ivs[2];
201*4882a593Smuzhiyun 
202*4882a593Smuzhiyun 			nbytes -= bsize;
203*4882a593Smuzhiyun 			if (nbytes < bsize)
204*4882a593Smuzhiyun 				goto done;
205*4882a593Smuzhiyun 
206*4882a593Smuzhiyun 			*dst ^= *(src - 1);
207*4882a593Smuzhiyun 			src -= 1;
208*4882a593Smuzhiyun 			dst -= 1;
209*4882a593Smuzhiyun 		} while (nbytes >= bsize * 4);
210*4882a593Smuzhiyun 	}
211*4882a593Smuzhiyun 
212*4882a593Smuzhiyun 	/* Handle leftovers */
213*4882a593Smuzhiyun 	for (;;) {
214*4882a593Smuzhiyun 		blowfish_dec_blk(ctx, (u8 *)dst, (u8 *)src);
215*4882a593Smuzhiyun 
216*4882a593Smuzhiyun 		nbytes -= bsize;
217*4882a593Smuzhiyun 		if (nbytes < bsize)
218*4882a593Smuzhiyun 			break;
219*4882a593Smuzhiyun 
220*4882a593Smuzhiyun 		*dst ^= *(src - 1);
221*4882a593Smuzhiyun 		src -= 1;
222*4882a593Smuzhiyun 		dst -= 1;
223*4882a593Smuzhiyun 	}
224*4882a593Smuzhiyun 
225*4882a593Smuzhiyun done:
226*4882a593Smuzhiyun 	*dst ^= *(u64 *)walk->iv;
227*4882a593Smuzhiyun 	*(u64 *)walk->iv = last_iv;
228*4882a593Smuzhiyun 
229*4882a593Smuzhiyun 	return nbytes;
230*4882a593Smuzhiyun }
231*4882a593Smuzhiyun 
cbc_decrypt(struct skcipher_request * req)232*4882a593Smuzhiyun static int cbc_decrypt(struct skcipher_request *req)
233*4882a593Smuzhiyun {
234*4882a593Smuzhiyun 	struct crypto_skcipher *tfm = crypto_skcipher_reqtfm(req);
235*4882a593Smuzhiyun 	struct bf_ctx *ctx = crypto_skcipher_ctx(tfm);
236*4882a593Smuzhiyun 	struct skcipher_walk walk;
237*4882a593Smuzhiyun 	unsigned int nbytes;
238*4882a593Smuzhiyun 	int err;
239*4882a593Smuzhiyun 
240*4882a593Smuzhiyun 	err = skcipher_walk_virt(&walk, req, false);
241*4882a593Smuzhiyun 
242*4882a593Smuzhiyun 	while ((nbytes = walk.nbytes)) {
243*4882a593Smuzhiyun 		nbytes = __cbc_decrypt(ctx, &walk);
244*4882a593Smuzhiyun 		err = skcipher_walk_done(&walk, nbytes);
245*4882a593Smuzhiyun 	}
246*4882a593Smuzhiyun 
247*4882a593Smuzhiyun 	return err;
248*4882a593Smuzhiyun }
249*4882a593Smuzhiyun 
ctr_crypt_final(struct bf_ctx * ctx,struct skcipher_walk * walk)250*4882a593Smuzhiyun static void ctr_crypt_final(struct bf_ctx *ctx, struct skcipher_walk *walk)
251*4882a593Smuzhiyun {
252*4882a593Smuzhiyun 	u8 *ctrblk = walk->iv;
253*4882a593Smuzhiyun 	u8 keystream[BF_BLOCK_SIZE];
254*4882a593Smuzhiyun 	u8 *src = walk->src.virt.addr;
255*4882a593Smuzhiyun 	u8 *dst = walk->dst.virt.addr;
256*4882a593Smuzhiyun 	unsigned int nbytes = walk->nbytes;
257*4882a593Smuzhiyun 
258*4882a593Smuzhiyun 	blowfish_enc_blk(ctx, keystream, ctrblk);
259*4882a593Smuzhiyun 	crypto_xor_cpy(dst, keystream, src, nbytes);
260*4882a593Smuzhiyun 
261*4882a593Smuzhiyun 	crypto_inc(ctrblk, BF_BLOCK_SIZE);
262*4882a593Smuzhiyun }
263*4882a593Smuzhiyun 
__ctr_crypt(struct bf_ctx * ctx,struct skcipher_walk * walk)264*4882a593Smuzhiyun static unsigned int __ctr_crypt(struct bf_ctx *ctx, struct skcipher_walk *walk)
265*4882a593Smuzhiyun {
266*4882a593Smuzhiyun 	unsigned int bsize = BF_BLOCK_SIZE;
267*4882a593Smuzhiyun 	unsigned int nbytes = walk->nbytes;
268*4882a593Smuzhiyun 	u64 *src = (u64 *)walk->src.virt.addr;
269*4882a593Smuzhiyun 	u64 *dst = (u64 *)walk->dst.virt.addr;
270*4882a593Smuzhiyun 	u64 ctrblk = be64_to_cpu(*(__be64 *)walk->iv);
271*4882a593Smuzhiyun 	__be64 ctrblocks[4];
272*4882a593Smuzhiyun 
273*4882a593Smuzhiyun 	/* Process four block batch */
274*4882a593Smuzhiyun 	if (nbytes >= bsize * 4) {
275*4882a593Smuzhiyun 		do {
276*4882a593Smuzhiyun 			if (dst != src) {
277*4882a593Smuzhiyun 				dst[0] = src[0];
278*4882a593Smuzhiyun 				dst[1] = src[1];
279*4882a593Smuzhiyun 				dst[2] = src[2];
280*4882a593Smuzhiyun 				dst[3] = src[3];
281*4882a593Smuzhiyun 			}
282*4882a593Smuzhiyun 
283*4882a593Smuzhiyun 			/* create ctrblks for parallel encrypt */
284*4882a593Smuzhiyun 			ctrblocks[0] = cpu_to_be64(ctrblk++);
285*4882a593Smuzhiyun 			ctrblocks[1] = cpu_to_be64(ctrblk++);
286*4882a593Smuzhiyun 			ctrblocks[2] = cpu_to_be64(ctrblk++);
287*4882a593Smuzhiyun 			ctrblocks[3] = cpu_to_be64(ctrblk++);
288*4882a593Smuzhiyun 
289*4882a593Smuzhiyun 			blowfish_enc_blk_xor_4way(ctx, (u8 *)dst,
290*4882a593Smuzhiyun 						  (u8 *)ctrblocks);
291*4882a593Smuzhiyun 
292*4882a593Smuzhiyun 			src += 4;
293*4882a593Smuzhiyun 			dst += 4;
294*4882a593Smuzhiyun 		} while ((nbytes -= bsize * 4) >= bsize * 4);
295*4882a593Smuzhiyun 
296*4882a593Smuzhiyun 		if (nbytes < bsize)
297*4882a593Smuzhiyun 			goto done;
298*4882a593Smuzhiyun 	}
299*4882a593Smuzhiyun 
300*4882a593Smuzhiyun 	/* Handle leftovers */
301*4882a593Smuzhiyun 	do {
302*4882a593Smuzhiyun 		if (dst != src)
303*4882a593Smuzhiyun 			*dst = *src;
304*4882a593Smuzhiyun 
305*4882a593Smuzhiyun 		ctrblocks[0] = cpu_to_be64(ctrblk++);
306*4882a593Smuzhiyun 
307*4882a593Smuzhiyun 		blowfish_enc_blk_xor(ctx, (u8 *)dst, (u8 *)ctrblocks);
308*4882a593Smuzhiyun 
309*4882a593Smuzhiyun 		src += 1;
310*4882a593Smuzhiyun 		dst += 1;
311*4882a593Smuzhiyun 	} while ((nbytes -= bsize) >= bsize);
312*4882a593Smuzhiyun 
313*4882a593Smuzhiyun done:
314*4882a593Smuzhiyun 	*(__be64 *)walk->iv = cpu_to_be64(ctrblk);
315*4882a593Smuzhiyun 	return nbytes;
316*4882a593Smuzhiyun }
317*4882a593Smuzhiyun 
ctr_crypt(struct skcipher_request * req)318*4882a593Smuzhiyun static int ctr_crypt(struct skcipher_request *req)
319*4882a593Smuzhiyun {
320*4882a593Smuzhiyun 	struct crypto_skcipher *tfm = crypto_skcipher_reqtfm(req);
321*4882a593Smuzhiyun 	struct bf_ctx *ctx = crypto_skcipher_ctx(tfm);
322*4882a593Smuzhiyun 	struct skcipher_walk walk;
323*4882a593Smuzhiyun 	unsigned int nbytes;
324*4882a593Smuzhiyun 	int err;
325*4882a593Smuzhiyun 
326*4882a593Smuzhiyun 	err = skcipher_walk_virt(&walk, req, false);
327*4882a593Smuzhiyun 
328*4882a593Smuzhiyun 	while ((nbytes = walk.nbytes) >= BF_BLOCK_SIZE) {
329*4882a593Smuzhiyun 		nbytes = __ctr_crypt(ctx, &walk);
330*4882a593Smuzhiyun 		err = skcipher_walk_done(&walk, nbytes);
331*4882a593Smuzhiyun 	}
332*4882a593Smuzhiyun 
333*4882a593Smuzhiyun 	if (nbytes) {
334*4882a593Smuzhiyun 		ctr_crypt_final(ctx, &walk);
335*4882a593Smuzhiyun 		err = skcipher_walk_done(&walk, 0);
336*4882a593Smuzhiyun 	}
337*4882a593Smuzhiyun 
338*4882a593Smuzhiyun 	return err;
339*4882a593Smuzhiyun }
340*4882a593Smuzhiyun 
341*4882a593Smuzhiyun static struct crypto_alg bf_cipher_alg = {
342*4882a593Smuzhiyun 	.cra_name		= "blowfish",
343*4882a593Smuzhiyun 	.cra_driver_name	= "blowfish-asm",
344*4882a593Smuzhiyun 	.cra_priority		= 200,
345*4882a593Smuzhiyun 	.cra_flags		= CRYPTO_ALG_TYPE_CIPHER,
346*4882a593Smuzhiyun 	.cra_blocksize		= BF_BLOCK_SIZE,
347*4882a593Smuzhiyun 	.cra_ctxsize		= sizeof(struct bf_ctx),
348*4882a593Smuzhiyun 	.cra_alignmask		= 0,
349*4882a593Smuzhiyun 	.cra_module		= THIS_MODULE,
350*4882a593Smuzhiyun 	.cra_u = {
351*4882a593Smuzhiyun 		.cipher = {
352*4882a593Smuzhiyun 			.cia_min_keysize	= BF_MIN_KEY_SIZE,
353*4882a593Smuzhiyun 			.cia_max_keysize	= BF_MAX_KEY_SIZE,
354*4882a593Smuzhiyun 			.cia_setkey		= blowfish_setkey,
355*4882a593Smuzhiyun 			.cia_encrypt		= blowfish_encrypt,
356*4882a593Smuzhiyun 			.cia_decrypt		= blowfish_decrypt,
357*4882a593Smuzhiyun 		}
358*4882a593Smuzhiyun 	}
359*4882a593Smuzhiyun };
360*4882a593Smuzhiyun 
361*4882a593Smuzhiyun static struct skcipher_alg bf_skcipher_algs[] = {
362*4882a593Smuzhiyun 	{
363*4882a593Smuzhiyun 		.base.cra_name		= "ecb(blowfish)",
364*4882a593Smuzhiyun 		.base.cra_driver_name	= "ecb-blowfish-asm",
365*4882a593Smuzhiyun 		.base.cra_priority	= 300,
366*4882a593Smuzhiyun 		.base.cra_blocksize	= BF_BLOCK_SIZE,
367*4882a593Smuzhiyun 		.base.cra_ctxsize	= sizeof(struct bf_ctx),
368*4882a593Smuzhiyun 		.base.cra_module	= THIS_MODULE,
369*4882a593Smuzhiyun 		.min_keysize		= BF_MIN_KEY_SIZE,
370*4882a593Smuzhiyun 		.max_keysize		= BF_MAX_KEY_SIZE,
371*4882a593Smuzhiyun 		.setkey			= blowfish_setkey_skcipher,
372*4882a593Smuzhiyun 		.encrypt		= ecb_encrypt,
373*4882a593Smuzhiyun 		.decrypt		= ecb_decrypt,
374*4882a593Smuzhiyun 	}, {
375*4882a593Smuzhiyun 		.base.cra_name		= "cbc(blowfish)",
376*4882a593Smuzhiyun 		.base.cra_driver_name	= "cbc-blowfish-asm",
377*4882a593Smuzhiyun 		.base.cra_priority	= 300,
378*4882a593Smuzhiyun 		.base.cra_blocksize	= BF_BLOCK_SIZE,
379*4882a593Smuzhiyun 		.base.cra_ctxsize	= sizeof(struct bf_ctx),
380*4882a593Smuzhiyun 		.base.cra_module	= THIS_MODULE,
381*4882a593Smuzhiyun 		.min_keysize		= BF_MIN_KEY_SIZE,
382*4882a593Smuzhiyun 		.max_keysize		= BF_MAX_KEY_SIZE,
383*4882a593Smuzhiyun 		.ivsize			= BF_BLOCK_SIZE,
384*4882a593Smuzhiyun 		.setkey			= blowfish_setkey_skcipher,
385*4882a593Smuzhiyun 		.encrypt		= cbc_encrypt,
386*4882a593Smuzhiyun 		.decrypt		= cbc_decrypt,
387*4882a593Smuzhiyun 	}, {
388*4882a593Smuzhiyun 		.base.cra_name		= "ctr(blowfish)",
389*4882a593Smuzhiyun 		.base.cra_driver_name	= "ctr-blowfish-asm",
390*4882a593Smuzhiyun 		.base.cra_priority	= 300,
391*4882a593Smuzhiyun 		.base.cra_blocksize	= 1,
392*4882a593Smuzhiyun 		.base.cra_ctxsize	= sizeof(struct bf_ctx),
393*4882a593Smuzhiyun 		.base.cra_module	= THIS_MODULE,
394*4882a593Smuzhiyun 		.min_keysize		= BF_MIN_KEY_SIZE,
395*4882a593Smuzhiyun 		.max_keysize		= BF_MAX_KEY_SIZE,
396*4882a593Smuzhiyun 		.ivsize			= BF_BLOCK_SIZE,
397*4882a593Smuzhiyun 		.chunksize		= BF_BLOCK_SIZE,
398*4882a593Smuzhiyun 		.setkey			= blowfish_setkey_skcipher,
399*4882a593Smuzhiyun 		.encrypt		= ctr_crypt,
400*4882a593Smuzhiyun 		.decrypt		= ctr_crypt,
401*4882a593Smuzhiyun 	},
402*4882a593Smuzhiyun };
403*4882a593Smuzhiyun 
is_blacklisted_cpu(void)404*4882a593Smuzhiyun static bool is_blacklisted_cpu(void)
405*4882a593Smuzhiyun {
406*4882a593Smuzhiyun 	if (boot_cpu_data.x86_vendor != X86_VENDOR_INTEL)
407*4882a593Smuzhiyun 		return false;
408*4882a593Smuzhiyun 
409*4882a593Smuzhiyun 	if (boot_cpu_data.x86 == 0x0f) {
410*4882a593Smuzhiyun 		/*
411*4882a593Smuzhiyun 		 * On Pentium 4, blowfish-x86_64 is slower than generic C
412*4882a593Smuzhiyun 		 * implementation because use of 64bit rotates (which are really
413*4882a593Smuzhiyun 		 * slow on P4). Therefore blacklist P4s.
414*4882a593Smuzhiyun 		 */
415*4882a593Smuzhiyun 		return true;
416*4882a593Smuzhiyun 	}
417*4882a593Smuzhiyun 
418*4882a593Smuzhiyun 	return false;
419*4882a593Smuzhiyun }
420*4882a593Smuzhiyun 
421*4882a593Smuzhiyun static int force;
422*4882a593Smuzhiyun module_param(force, int, 0);
423*4882a593Smuzhiyun MODULE_PARM_DESC(force, "Force module load, ignore CPU blacklist");
424*4882a593Smuzhiyun 
init(void)425*4882a593Smuzhiyun static int __init init(void)
426*4882a593Smuzhiyun {
427*4882a593Smuzhiyun 	int err;
428*4882a593Smuzhiyun 
429*4882a593Smuzhiyun 	if (!force && is_blacklisted_cpu()) {
430*4882a593Smuzhiyun 		printk(KERN_INFO
431*4882a593Smuzhiyun 			"blowfish-x86_64: performance on this CPU "
432*4882a593Smuzhiyun 			"would be suboptimal: disabling "
433*4882a593Smuzhiyun 			"blowfish-x86_64.\n");
434*4882a593Smuzhiyun 		return -ENODEV;
435*4882a593Smuzhiyun 	}
436*4882a593Smuzhiyun 
437*4882a593Smuzhiyun 	err = crypto_register_alg(&bf_cipher_alg);
438*4882a593Smuzhiyun 	if (err)
439*4882a593Smuzhiyun 		return err;
440*4882a593Smuzhiyun 
441*4882a593Smuzhiyun 	err = crypto_register_skciphers(bf_skcipher_algs,
442*4882a593Smuzhiyun 					ARRAY_SIZE(bf_skcipher_algs));
443*4882a593Smuzhiyun 	if (err)
444*4882a593Smuzhiyun 		crypto_unregister_alg(&bf_cipher_alg);
445*4882a593Smuzhiyun 
446*4882a593Smuzhiyun 	return err;
447*4882a593Smuzhiyun }
448*4882a593Smuzhiyun 
fini(void)449*4882a593Smuzhiyun static void __exit fini(void)
450*4882a593Smuzhiyun {
451*4882a593Smuzhiyun 	crypto_unregister_alg(&bf_cipher_alg);
452*4882a593Smuzhiyun 	crypto_unregister_skciphers(bf_skcipher_algs,
453*4882a593Smuzhiyun 				    ARRAY_SIZE(bf_skcipher_algs));
454*4882a593Smuzhiyun }
455*4882a593Smuzhiyun 
456*4882a593Smuzhiyun module_init(init);
457*4882a593Smuzhiyun module_exit(fini);
458*4882a593Smuzhiyun 
459*4882a593Smuzhiyun MODULE_LICENSE("GPL");
460*4882a593Smuzhiyun MODULE_DESCRIPTION("Blowfish Cipher Algorithm, asm optimized");
461*4882a593Smuzhiyun MODULE_ALIAS_CRYPTO("blowfish");
462*4882a593Smuzhiyun MODULE_ALIAS_CRYPTO("blowfish-asm");
463