1*96098f01SJens Wiklander // SPDX-License-Identifier: BSD-2-Clause 2*96098f01SJens Wiklander /* 3*96098f01SJens Wiklander * Copyright (c) 2014-2019, Linaro Limited 4*96098f01SJens Wiklander */ 5*96098f01SJens Wiklander 6*96098f01SJens Wiklander #include <assert.h> 7*96098f01SJens Wiklander #include <crypto/crypto.h> 8*96098f01SJens Wiklander #include <crypto/crypto_impl.h> 9*96098f01SJens Wiklander #include <stdlib.h> 10*96098f01SJens Wiklander #include <tee_api_types.h> 11*96098f01SJens Wiklander #include <tomcrypt.h> 12*96098f01SJens Wiklander #include <util.h> 13*96098f01SJens Wiklander 14*96098f01SJens Wiklander #include "des2_key.h" 15*96098f01SJens Wiklander 16*96098f01SJens Wiklander struct ltc_cbc_ctx { 17*96098f01SJens Wiklander struct crypto_cipher_ctx ctx; 18*96098f01SJens Wiklander int cipher_idx; 19*96098f01SJens Wiklander bool des3; 20*96098f01SJens Wiklander int (*update)(const unsigned char *src, unsigned char *dst, 21*96098f01SJens Wiklander unsigned long len, symmetric_CBC *cbc); 22*96098f01SJens Wiklander symmetric_CBC state; 23*96098f01SJens Wiklander }; 24*96098f01SJens Wiklander 25*96098f01SJens Wiklander static const struct crypto_cipher_ops ltc_cbc_ops; 26*96098f01SJens Wiklander 27*96098f01SJens Wiklander static struct ltc_cbc_ctx *to_cbc_ctx(struct crypto_cipher_ctx *ctx) 28*96098f01SJens Wiklander { 29*96098f01SJens Wiklander assert(ctx && ctx->ops == <c_cbc_ops); 30*96098f01SJens Wiklander 31*96098f01SJens Wiklander return container_of(ctx, struct ltc_cbc_ctx, ctx); 32*96098f01SJens Wiklander } 33*96098f01SJens Wiklander 34*96098f01SJens Wiklander static TEE_Result ltc_cbc_init(struct crypto_cipher_ctx *ctx, 35*96098f01SJens Wiklander TEE_OperationMode mode, const uint8_t *key1, 36*96098f01SJens Wiklander size_t key1_len, const uint8_t *key2 __unused, 37*96098f01SJens Wiklander size_t key2_len __unused, 38*96098f01SJens Wiklander const uint8_t *iv, size_t iv_len) 39*96098f01SJens Wiklander { 40*96098f01SJens Wiklander struct ltc_cbc_ctx *c = to_cbc_ctx(ctx); 41*96098f01SJens Wiklander uint8_t tmp[24] = { 0 }; 42*96098f01SJens Wiklander const uint8_t *k = key1; 43*96098f01SJens Wiklander size_t kl = key1_len; 44*96098f01SJens Wiklander 45*96098f01SJens Wiklander if ((int)iv_len != cipher_descriptor[c->cipher_idx]->block_length) 46*96098f01SJens Wiklander return TEE_ERROR_BAD_PARAMETERS; 47*96098f01SJens Wiklander 48*96098f01SJens Wiklander if (mode == TEE_MODE_ENCRYPT) 49*96098f01SJens Wiklander c->update = cbc_encrypt; 50*96098f01SJens Wiklander else 51*96098f01SJens Wiklander c->update = cbc_decrypt; 52*96098f01SJens Wiklander 53*96098f01SJens Wiklander if (c->des3) 54*96098f01SJens Wiklander get_des2_key(&k, &kl, tmp); 55*96098f01SJens Wiklander 56*96098f01SJens Wiklander if (cbc_start(c->cipher_idx, iv, k, kl, 0, &c->state) == CRYPT_OK) 57*96098f01SJens Wiklander return TEE_SUCCESS; 58*96098f01SJens Wiklander else 59*96098f01SJens Wiklander return TEE_ERROR_BAD_STATE; 60*96098f01SJens Wiklander } 61*96098f01SJens Wiklander 62*96098f01SJens Wiklander static TEE_Result ltc_cbc_update(struct crypto_cipher_ctx *ctx, 63*96098f01SJens Wiklander bool last_block __unused, 64*96098f01SJens Wiklander const uint8_t *data, size_t len, uint8_t *dst) 65*96098f01SJens Wiklander { 66*96098f01SJens Wiklander struct ltc_cbc_ctx *c = to_cbc_ctx(ctx); 67*96098f01SJens Wiklander 68*96098f01SJens Wiklander if (c->update && c->update(data, dst, len, &c->state) == CRYPT_OK) 69*96098f01SJens Wiklander return TEE_SUCCESS; 70*96098f01SJens Wiklander else 71*96098f01SJens Wiklander return TEE_ERROR_BAD_STATE; 72*96098f01SJens Wiklander } 73*96098f01SJens Wiklander 74*96098f01SJens Wiklander static void ltc_cbc_final(struct crypto_cipher_ctx *ctx) 75*96098f01SJens Wiklander { 76*96098f01SJens Wiklander cbc_done(&to_cbc_ctx(ctx)->state); 77*96098f01SJens Wiklander } 78*96098f01SJens Wiklander 79*96098f01SJens Wiklander static void ltc_cbc_free_ctx(struct crypto_cipher_ctx *ctx) 80*96098f01SJens Wiklander { 81*96098f01SJens Wiklander free(to_cbc_ctx(ctx)); 82*96098f01SJens Wiklander } 83*96098f01SJens Wiklander 84*96098f01SJens Wiklander static void ltc_cbc_copy_state(struct crypto_cipher_ctx *dst_ctx, 85*96098f01SJens Wiklander struct crypto_cipher_ctx *src_ctx) 86*96098f01SJens Wiklander { 87*96098f01SJens Wiklander struct ltc_cbc_ctx *src = to_cbc_ctx(src_ctx); 88*96098f01SJens Wiklander struct ltc_cbc_ctx *dst = to_cbc_ctx(dst_ctx); 89*96098f01SJens Wiklander 90*96098f01SJens Wiklander assert(src->cipher_idx == dst->cipher_idx); 91*96098f01SJens Wiklander dst->update = src->update; 92*96098f01SJens Wiklander dst->state = src->state; 93*96098f01SJens Wiklander } 94*96098f01SJens Wiklander 95*96098f01SJens Wiklander static const struct crypto_cipher_ops ltc_cbc_ops = { 96*96098f01SJens Wiklander .init = ltc_cbc_init, 97*96098f01SJens Wiklander .update = ltc_cbc_update, 98*96098f01SJens Wiklander .final = ltc_cbc_final, 99*96098f01SJens Wiklander .free_ctx = ltc_cbc_free_ctx, 100*96098f01SJens Wiklander .copy_state = ltc_cbc_copy_state, 101*96098f01SJens Wiklander }; 102*96098f01SJens Wiklander 103*96098f01SJens Wiklander static TEE_Result ltc_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx_ret, 104*96098f01SJens Wiklander int cipher_idx, bool des3) 105*96098f01SJens Wiklander { 106*96098f01SJens Wiklander struct ltc_cbc_ctx *c = NULL; 107*96098f01SJens Wiklander 108*96098f01SJens Wiklander if (cipher_idx < 0) 109*96098f01SJens Wiklander return TEE_ERROR_NOT_SUPPORTED; 110*96098f01SJens Wiklander 111*96098f01SJens Wiklander c = calloc(1, sizeof(*c)); 112*96098f01SJens Wiklander if (!c) 113*96098f01SJens Wiklander return TEE_ERROR_OUT_OF_MEMORY; 114*96098f01SJens Wiklander 115*96098f01SJens Wiklander c->ctx.ops = <c_cbc_ops; 116*96098f01SJens Wiklander c->cipher_idx = cipher_idx; 117*96098f01SJens Wiklander c->des3 = des3; 118*96098f01SJens Wiklander *ctx_ret = &c->ctx; 119*96098f01SJens Wiklander 120*96098f01SJens Wiklander return TEE_SUCCESS; 121*96098f01SJens Wiklander } 122*96098f01SJens Wiklander 123*96098f01SJens Wiklander #if defined CFG_CRYPTO_AES 124*96098f01SJens Wiklander TEE_Result crypto_aes_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx) 125*96098f01SJens Wiklander { 126*96098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("aes"), false); 127*96098f01SJens Wiklander } 128*96098f01SJens Wiklander #endif 129*96098f01SJens Wiklander 130*96098f01SJens Wiklander #if defined CFG_CRYPTO_DES 131*96098f01SJens Wiklander TEE_Result crypto_des_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx) 132*96098f01SJens Wiklander { 133*96098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("des"), false); 134*96098f01SJens Wiklander } 135*96098f01SJens Wiklander 136*96098f01SJens Wiklander TEE_Result crypto_des3_cbc_alloc_ctx(struct crypto_cipher_ctx **ctx) 137*96098f01SJens Wiklander { 138*96098f01SJens Wiklander return ltc_cbc_alloc_ctx(ctx, find_cipher("3des"), true); 139*96098f01SJens Wiklander } 140*96098f01SJens Wiklander #endif 141