1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-or-later
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * Cryptographic API.
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * RNG operations.
6*4882a593Smuzhiyun *
7*4882a593Smuzhiyun * Copyright (c) 2008 Neil Horman <nhorman@tuxdriver.com>
8*4882a593Smuzhiyun * Copyright (c) 2015 Herbert Xu <herbert@gondor.apana.org.au>
9*4882a593Smuzhiyun */
10*4882a593Smuzhiyun
11*4882a593Smuzhiyun #include <linux/atomic.h>
12*4882a593Smuzhiyun #include <crypto/internal/rng.h>
13*4882a593Smuzhiyun #include <linux/err.h>
14*4882a593Smuzhiyun #include <linux/module.h>
15*4882a593Smuzhiyun #include <linux/mutex.h>
16*4882a593Smuzhiyun #include <linux/random.h>
17*4882a593Smuzhiyun #include <linux/seq_file.h>
18*4882a593Smuzhiyun #include <linux/slab.h>
19*4882a593Smuzhiyun #include <linux/string.h>
20*4882a593Smuzhiyun #include <linux/cryptouser.h>
21*4882a593Smuzhiyun #include <linux/compiler.h>
22*4882a593Smuzhiyun #include <net/netlink.h>
23*4882a593Smuzhiyun
24*4882a593Smuzhiyun #include "internal.h"
25*4882a593Smuzhiyun
26*4882a593Smuzhiyun static DEFINE_MUTEX(crypto_default_rng_lock);
27*4882a593Smuzhiyun struct crypto_rng *crypto_default_rng;
28*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_default_rng);
29*4882a593Smuzhiyun static int crypto_default_rng_refcnt;
30*4882a593Smuzhiyun
crypto_rng_reset(struct crypto_rng * tfm,const u8 * seed,unsigned int slen)31*4882a593Smuzhiyun int crypto_rng_reset(struct crypto_rng *tfm, const u8 *seed, unsigned int slen)
32*4882a593Smuzhiyun {
33*4882a593Smuzhiyun struct crypto_alg *alg = tfm->base.__crt_alg;
34*4882a593Smuzhiyun u8 *buf = NULL;
35*4882a593Smuzhiyun int err;
36*4882a593Smuzhiyun
37*4882a593Smuzhiyun if (!seed && slen) {
38*4882a593Smuzhiyun buf = kmalloc(slen, GFP_KERNEL);
39*4882a593Smuzhiyun if (!buf)
40*4882a593Smuzhiyun return -ENOMEM;
41*4882a593Smuzhiyun
42*4882a593Smuzhiyun err = get_random_bytes_wait(buf, slen);
43*4882a593Smuzhiyun if (err)
44*4882a593Smuzhiyun goto out;
45*4882a593Smuzhiyun seed = buf;
46*4882a593Smuzhiyun }
47*4882a593Smuzhiyun
48*4882a593Smuzhiyun crypto_stats_get(alg);
49*4882a593Smuzhiyun err = crypto_rng_alg(tfm)->seed(tfm, seed, slen);
50*4882a593Smuzhiyun crypto_stats_rng_seed(alg, err);
51*4882a593Smuzhiyun out:
52*4882a593Smuzhiyun kfree_sensitive(buf);
53*4882a593Smuzhiyun return err;
54*4882a593Smuzhiyun }
55*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_rng_reset);
56*4882a593Smuzhiyun
crypto_rng_init_tfm(struct crypto_tfm * tfm)57*4882a593Smuzhiyun static int crypto_rng_init_tfm(struct crypto_tfm *tfm)
58*4882a593Smuzhiyun {
59*4882a593Smuzhiyun return 0;
60*4882a593Smuzhiyun }
61*4882a593Smuzhiyun
seedsize(struct crypto_alg * alg)62*4882a593Smuzhiyun static unsigned int seedsize(struct crypto_alg *alg)
63*4882a593Smuzhiyun {
64*4882a593Smuzhiyun struct rng_alg *ralg = container_of(alg, struct rng_alg, base);
65*4882a593Smuzhiyun
66*4882a593Smuzhiyun return ralg->seedsize;
67*4882a593Smuzhiyun }
68*4882a593Smuzhiyun
69*4882a593Smuzhiyun #ifdef CONFIG_NET
crypto_rng_report(struct sk_buff * skb,struct crypto_alg * alg)70*4882a593Smuzhiyun static int crypto_rng_report(struct sk_buff *skb, struct crypto_alg *alg)
71*4882a593Smuzhiyun {
72*4882a593Smuzhiyun struct crypto_report_rng rrng;
73*4882a593Smuzhiyun
74*4882a593Smuzhiyun memset(&rrng, 0, sizeof(rrng));
75*4882a593Smuzhiyun
76*4882a593Smuzhiyun strscpy(rrng.type, "rng", sizeof(rrng.type));
77*4882a593Smuzhiyun
78*4882a593Smuzhiyun rrng.seedsize = seedsize(alg);
79*4882a593Smuzhiyun
80*4882a593Smuzhiyun return nla_put(skb, CRYPTOCFGA_REPORT_RNG, sizeof(rrng), &rrng);
81*4882a593Smuzhiyun }
82*4882a593Smuzhiyun #else
crypto_rng_report(struct sk_buff * skb,struct crypto_alg * alg)83*4882a593Smuzhiyun static int crypto_rng_report(struct sk_buff *skb, struct crypto_alg *alg)
84*4882a593Smuzhiyun {
85*4882a593Smuzhiyun return -ENOSYS;
86*4882a593Smuzhiyun }
87*4882a593Smuzhiyun #endif
88*4882a593Smuzhiyun
89*4882a593Smuzhiyun static void crypto_rng_show(struct seq_file *m, struct crypto_alg *alg)
90*4882a593Smuzhiyun __maybe_unused;
crypto_rng_show(struct seq_file * m,struct crypto_alg * alg)91*4882a593Smuzhiyun static void crypto_rng_show(struct seq_file *m, struct crypto_alg *alg)
92*4882a593Smuzhiyun {
93*4882a593Smuzhiyun seq_printf(m, "type : rng\n");
94*4882a593Smuzhiyun seq_printf(m, "seedsize : %u\n", seedsize(alg));
95*4882a593Smuzhiyun }
96*4882a593Smuzhiyun
97*4882a593Smuzhiyun static const struct crypto_type crypto_rng_type = {
98*4882a593Smuzhiyun .extsize = crypto_alg_extsize,
99*4882a593Smuzhiyun .init_tfm = crypto_rng_init_tfm,
100*4882a593Smuzhiyun #ifdef CONFIG_PROC_FS
101*4882a593Smuzhiyun .show = crypto_rng_show,
102*4882a593Smuzhiyun #endif
103*4882a593Smuzhiyun .report = crypto_rng_report,
104*4882a593Smuzhiyun .maskclear = ~CRYPTO_ALG_TYPE_MASK,
105*4882a593Smuzhiyun .maskset = CRYPTO_ALG_TYPE_MASK,
106*4882a593Smuzhiyun .type = CRYPTO_ALG_TYPE_RNG,
107*4882a593Smuzhiyun .tfmsize = offsetof(struct crypto_rng, base),
108*4882a593Smuzhiyun };
109*4882a593Smuzhiyun
crypto_alloc_rng(const char * alg_name,u32 type,u32 mask)110*4882a593Smuzhiyun struct crypto_rng *crypto_alloc_rng(const char *alg_name, u32 type, u32 mask)
111*4882a593Smuzhiyun {
112*4882a593Smuzhiyun return crypto_alloc_tfm(alg_name, &crypto_rng_type, type, mask);
113*4882a593Smuzhiyun }
114*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_alloc_rng);
115*4882a593Smuzhiyun
crypto_get_default_rng(void)116*4882a593Smuzhiyun int crypto_get_default_rng(void)
117*4882a593Smuzhiyun {
118*4882a593Smuzhiyun struct crypto_rng *rng;
119*4882a593Smuzhiyun int err;
120*4882a593Smuzhiyun
121*4882a593Smuzhiyun mutex_lock(&crypto_default_rng_lock);
122*4882a593Smuzhiyun if (!crypto_default_rng) {
123*4882a593Smuzhiyun rng = crypto_alloc_rng("stdrng", 0, 0);
124*4882a593Smuzhiyun err = PTR_ERR(rng);
125*4882a593Smuzhiyun if (IS_ERR(rng))
126*4882a593Smuzhiyun goto unlock;
127*4882a593Smuzhiyun
128*4882a593Smuzhiyun err = crypto_rng_reset(rng, NULL, crypto_rng_seedsize(rng));
129*4882a593Smuzhiyun if (err) {
130*4882a593Smuzhiyun crypto_free_rng(rng);
131*4882a593Smuzhiyun goto unlock;
132*4882a593Smuzhiyun }
133*4882a593Smuzhiyun
134*4882a593Smuzhiyun crypto_default_rng = rng;
135*4882a593Smuzhiyun }
136*4882a593Smuzhiyun
137*4882a593Smuzhiyun crypto_default_rng_refcnt++;
138*4882a593Smuzhiyun err = 0;
139*4882a593Smuzhiyun
140*4882a593Smuzhiyun unlock:
141*4882a593Smuzhiyun mutex_unlock(&crypto_default_rng_lock);
142*4882a593Smuzhiyun
143*4882a593Smuzhiyun return err;
144*4882a593Smuzhiyun }
145*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_get_default_rng);
146*4882a593Smuzhiyun
crypto_put_default_rng(void)147*4882a593Smuzhiyun void crypto_put_default_rng(void)
148*4882a593Smuzhiyun {
149*4882a593Smuzhiyun mutex_lock(&crypto_default_rng_lock);
150*4882a593Smuzhiyun crypto_default_rng_refcnt--;
151*4882a593Smuzhiyun mutex_unlock(&crypto_default_rng_lock);
152*4882a593Smuzhiyun }
153*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_put_default_rng);
154*4882a593Smuzhiyun
155*4882a593Smuzhiyun #if defined(CONFIG_CRYPTO_RNG) || defined(CONFIG_CRYPTO_RNG_MODULE)
crypto_del_default_rng(void)156*4882a593Smuzhiyun int crypto_del_default_rng(void)
157*4882a593Smuzhiyun {
158*4882a593Smuzhiyun int err = -EBUSY;
159*4882a593Smuzhiyun
160*4882a593Smuzhiyun mutex_lock(&crypto_default_rng_lock);
161*4882a593Smuzhiyun if (crypto_default_rng_refcnt)
162*4882a593Smuzhiyun goto out;
163*4882a593Smuzhiyun
164*4882a593Smuzhiyun crypto_free_rng(crypto_default_rng);
165*4882a593Smuzhiyun crypto_default_rng = NULL;
166*4882a593Smuzhiyun
167*4882a593Smuzhiyun err = 0;
168*4882a593Smuzhiyun
169*4882a593Smuzhiyun out:
170*4882a593Smuzhiyun mutex_unlock(&crypto_default_rng_lock);
171*4882a593Smuzhiyun
172*4882a593Smuzhiyun return err;
173*4882a593Smuzhiyun }
174*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_del_default_rng);
175*4882a593Smuzhiyun #endif
176*4882a593Smuzhiyun
crypto_register_rng(struct rng_alg * alg)177*4882a593Smuzhiyun int crypto_register_rng(struct rng_alg *alg)
178*4882a593Smuzhiyun {
179*4882a593Smuzhiyun struct crypto_alg *base = &alg->base;
180*4882a593Smuzhiyun
181*4882a593Smuzhiyun if (alg->seedsize > PAGE_SIZE / 8)
182*4882a593Smuzhiyun return -EINVAL;
183*4882a593Smuzhiyun
184*4882a593Smuzhiyun base->cra_type = &crypto_rng_type;
185*4882a593Smuzhiyun base->cra_flags &= ~CRYPTO_ALG_TYPE_MASK;
186*4882a593Smuzhiyun base->cra_flags |= CRYPTO_ALG_TYPE_RNG;
187*4882a593Smuzhiyun
188*4882a593Smuzhiyun return crypto_register_alg(base);
189*4882a593Smuzhiyun }
190*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_register_rng);
191*4882a593Smuzhiyun
crypto_unregister_rng(struct rng_alg * alg)192*4882a593Smuzhiyun void crypto_unregister_rng(struct rng_alg *alg)
193*4882a593Smuzhiyun {
194*4882a593Smuzhiyun crypto_unregister_alg(&alg->base);
195*4882a593Smuzhiyun }
196*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_unregister_rng);
197*4882a593Smuzhiyun
crypto_register_rngs(struct rng_alg * algs,int count)198*4882a593Smuzhiyun int crypto_register_rngs(struct rng_alg *algs, int count)
199*4882a593Smuzhiyun {
200*4882a593Smuzhiyun int i, ret;
201*4882a593Smuzhiyun
202*4882a593Smuzhiyun for (i = 0; i < count; i++) {
203*4882a593Smuzhiyun ret = crypto_register_rng(algs + i);
204*4882a593Smuzhiyun if (ret)
205*4882a593Smuzhiyun goto err;
206*4882a593Smuzhiyun }
207*4882a593Smuzhiyun
208*4882a593Smuzhiyun return 0;
209*4882a593Smuzhiyun
210*4882a593Smuzhiyun err:
211*4882a593Smuzhiyun for (--i; i >= 0; --i)
212*4882a593Smuzhiyun crypto_unregister_rng(algs + i);
213*4882a593Smuzhiyun
214*4882a593Smuzhiyun return ret;
215*4882a593Smuzhiyun }
216*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_register_rngs);
217*4882a593Smuzhiyun
crypto_unregister_rngs(struct rng_alg * algs,int count)218*4882a593Smuzhiyun void crypto_unregister_rngs(struct rng_alg *algs, int count)
219*4882a593Smuzhiyun {
220*4882a593Smuzhiyun int i;
221*4882a593Smuzhiyun
222*4882a593Smuzhiyun for (i = count - 1; i >= 0; --i)
223*4882a593Smuzhiyun crypto_unregister_rng(algs + i);
224*4882a593Smuzhiyun }
225*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(crypto_unregister_rngs);
226*4882a593Smuzhiyun
227*4882a593Smuzhiyun MODULE_LICENSE("GPL");
228*4882a593Smuzhiyun MODULE_DESCRIPTION("Random Number Generator");
229