196098f01SJens Wiklander // SPDX-License-Identifier: BSD-2-Clause
296098f01SJens Wiklander /*
396098f01SJens Wiklander * Copyright (c) 2014-2019, Linaro Limited
496098f01SJens Wiklander */
596098f01SJens Wiklander
696098f01SJens Wiklander #include <assert.h>
796098f01SJens Wiklander #include <crypto/crypto.h>
896098f01SJens Wiklander #include <crypto/crypto_impl.h>
996098f01SJens Wiklander #include <stdlib.h>
1096098f01SJens Wiklander #include <tee_api_types.h>
11*5a913ee7SJerome Forissier #include <tomcrypt_private.h>
1296098f01SJens Wiklander #include <util.h>
1396098f01SJens Wiklander
1496098f01SJens Wiklander #include "des2_key.h"
1596098f01SJens Wiklander
1696098f01SJens Wiklander struct ltc_cbc_ctx {
1796098f01SJens Wiklander struct crypto_cipher_ctx ctx;
1896098f01SJens Wiklander int cipher_idx;
1996098f01SJens Wiklander bool des3;
2096098f01SJens Wiklander int (*update)(const unsigned char *src, unsigned char *dst,
2196098f01SJens Wiklander unsigned long len, symmetric_CBC *cbc);
2296098f01SJens Wiklander symmetric_CBC state;
2396098f01SJens Wiklander };
2496098f01SJens Wiklander
2596098f01SJens Wiklander static const struct crypto_cipher_ops ltc_cbc_ops;
2696098f01SJens Wiklander
to_cbc_ctx(struct crypto_cipher_ctx * ctx)2796098f01SJens Wiklander static struct ltc_cbc_ctx *to_cbc_ctx(struct crypto_cipher_ctx *ctx)
2896098f01SJens Wiklander {
2996098f01SJens Wiklander assert(ctx && ctx->ops == <c_cbc_ops);
3096098f01SJens Wiklander
3196098f01SJens Wiklander return container_of(ctx, struct ltc_cbc_ctx, ctx);
3296098f01SJens Wiklander }
3396098f01SJens Wiklander
ltc_cbc_init(struct crypto_cipher_ctx * ctx,TEE_OperationMode mode,const uint8_t * key1,size_t key1_len,const uint8_t * key2 __unused,size_t key2_len __unused,const uint8_t * iv,size_t iv_len)3496098f01SJens Wiklander static TEE_Result ltc_cbc_init(struct crypto_cipher_ctx *ctx,
3596098f01SJens Wiklander TEE_OperationMode mode, const uint8_t *key1,
3696098f01SJens Wiklander size_t key1_len, const uint8_t *key2 __unused,
3796098f01SJens Wiklander size_t key2_len __unused,
3896098f01SJens Wiklander const uint8_t *iv, size_t iv_len)
3996098f01SJens Wiklander {
4096098f01SJens Wiklander struct ltc_cbc_ctx *c = to_cbc_ctx(ctx);
4196098f01SJens Wiklander uint8_t tmp[24] = { 0 };
4296098f01SJens Wiklander const uint8_t *k = key1;
4396098f01SJens Wiklander size_t kl = key1_len;
4496098f01SJens Wiklander
4596098f01SJens Wiklander if ((int)iv_len != cipher_descriptor[c->cipher_idx]->block_length)
4696098f01SJens Wiklander return TEE_ERROR_BAD_PARAMETERS;
4796098f01SJens Wiklander
4896098f01SJens Wiklander if (mode == TEE_MODE_ENCRYPT)
4996098f01SJens Wiklander c->update = cbc_encrypt;
5096098f01SJens Wiklander else
5196098f01SJens Wiklander c->update = cbc_decrypt;
5296098f01SJens Wiklander
5396098f01SJens Wiklander if (c->des3)
5496098f01SJens Wiklander get_des2_key(&k, &kl, tmp);
5596098f01SJens Wiklander
5696098f01SJens Wiklander if (cbc_start(c->cipher_idx, iv, k, kl, 0, &c->state) == CRYPT_OK)
5796098f01SJens Wiklander return TEE_SUCCESS;
5896098f01SJens Wiklander else
5996098f01SJens Wiklander return TEE_ERROR_BAD_STATE;
6096098f01SJens Wiklander }
6196098f01SJens Wiklander
ltc_cbc_update(struct crypto_cipher_ctx * ctx,bool last_block __unused,const uint8_t * data,size_t len,uint8_t * dst)6296098f01SJens Wiklander static TEE_Result ltc_cbc_update(struct crypto_cipher_ctx *ctx,
6396098f01SJens Wiklander bool last_block __unused,
6496098f01SJens Wiklander const uint8_t *data, size_t len, uint8_t *dst)
6596098f01SJens Wiklander {
6696098f01SJens Wiklander struct ltc_cbc_ctx *c = to_cbc_ctx(ctx);
6796098f01SJens Wiklander
6896098f01SJens Wiklander if (c->update && c->update(data, dst, len, &c->state) == CRYPT_OK)
6996098f01SJens Wiklander return TEE_SUCCESS;
7096098f01SJens Wiklander else
7196098f01SJens Wiklander return TEE_ERROR_BAD_STATE;
7296098f01SJens Wiklander }
7396098f01SJens Wiklander
ltc_cbc_final(struct crypto_cipher_ctx * ctx)7496098f01SJens Wiklander static void ltc_cbc_final(struct crypto_cipher_ctx *ctx)
7596098f01SJens Wiklander {
7696098f01SJens Wiklander cbc_done(&to_cbc_ctx(ctx)->state);
7796098f01SJens Wiklander }
7896098f01SJens Wiklander
ltc_cbc_free_ctx(struct crypto_cipher_ctx * ctx)7996098f01SJens Wiklander static void ltc_cbc_free_ctx(struct crypto_cipher_ctx *ctx)
8096098f01SJens Wiklander {
8196098f01SJens Wiklander free(to_cbc_ctx(ctx));
8296098f01SJens Wiklander }
8396098f01SJens Wiklander
ltc_cbc_copy_state(struct crypto_cipher_ctx * dst_ctx,struct crypto_cipher_ctx * src_ctx)8496098f01SJens Wiklander static void ltc_cbc_copy_state(struct crypto_cipher_ctx *dst_ctx,
8596098f01SJens Wiklander struct crypto_cipher_ctx *src_ctx)
8696098f01SJens Wiklander {
8796098f01SJens Wiklander struct ltc_cbc_ctx *src = to_cbc_ctx(src_ctx);
8896098f01SJens Wiklander struct ltc_cbc_ctx *dst = to_cbc_ctx(dst_ctx);
8996098f01SJens Wiklander
9096098f01SJens Wiklander assert(src->cipher_idx == dst->cipher_idx);
9196098f01SJens Wiklander dst->update = src->update;
9296098f01SJens Wiklander dst->state = src->state;
9396098f01SJens Wiklander }
9496098f01SJens Wiklander
9596098f01SJens Wiklander static const struct crypto_cipher_ops ltc_cbc_ops = {
9696098f01SJens Wiklander .init = ltc_cbc_init,
9796098f01SJens Wiklander .update = ltc_cbc_update,
9896098f01SJens Wiklander .final = ltc_cbc_final,
9996098f01SJens Wiklander .free_ctx = ltc_cbc_free_ctx,
10096098f01SJens Wiklander .copy_state = ltc_cbc_copy_state,
10196098f01SJens Wiklander };
10296098f01SJens Wiklander
ltc_cbc_alloc_ctx(struct crypto_cipher_ctx ** ctx_ret,int cipher_idx,bool des3)10396098f01SJens Wiklander static TEE_Result ltc_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx_ret,
10496098f01SJens Wiklander int cipher_idx, bool des3)
10596098f01SJens Wiklander {
10696098f01SJens Wiklander struct ltc_cbc_ctx *c = NULL;
10796098f01SJens Wiklander
10896098f01SJens Wiklander if (cipher_idx < 0)
10996098f01SJens Wiklander return TEE_ERROR_NOT_SUPPORTED;
11096098f01SJens Wiklander
11196098f01SJens Wiklander c = calloc(1, sizeof(*c));
11296098f01SJens Wiklander if (!c)
11396098f01SJens Wiklander return TEE_ERROR_OUT_OF_MEMORY;
11496098f01SJens Wiklander
11596098f01SJens Wiklander c->ctx.ops = <c_cbc_ops;
11696098f01SJens Wiklander c->cipher_idx = cipher_idx;
11796098f01SJens Wiklander c->des3 = des3;
11896098f01SJens Wiklander *ctx_ret = &c->ctx;
11996098f01SJens Wiklander
12096098f01SJens Wiklander return TEE_SUCCESS;
12196098f01SJens Wiklander }
12296098f01SJens Wiklander
123a1cbb728SJens Wiklander #if defined(_CFG_CORE_LTC_AES)
crypto_aes_cbc_alloc_ctx(struct crypto_cipher_ctx ** ctx)12496098f01SJens Wiklander TEE_Result crypto_aes_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx)
12596098f01SJens Wiklander {
12696098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("aes"), false);
12796098f01SJens Wiklander }
12896098f01SJens Wiklander #endif
12996098f01SJens Wiklander
130a1cbb728SJens Wiklander #if defined(_CFG_CORE_LTC_DES)
crypto_des_cbc_alloc_ctx(struct crypto_cipher_ctx ** ctx)13196098f01SJens Wiklander TEE_Result crypto_des_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx)
13296098f01SJens Wiklander {
13396098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("des"), false);
13496098f01SJens Wiklander }
13596098f01SJens Wiklander
crypto_des3_cbc_alloc_ctx(struct crypto_cipher_ctx ** ctx)13696098f01SJens Wiklander TEE_Result crypto_des3_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx)
13796098f01SJens Wiklander {
13896098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("3des"), true);
13996098f01SJens Wiklander }
14096098f01SJens Wiklander #endif
141