196098f01SJens Wiklander // SPDX-License-Identifier: BSD-2-Clause
296098f01SJens Wiklander /*
396098f01SJens Wiklander * Copyright (c) 2014-2019, Linaro Limited
496098f01SJens Wiklander */
596098f01SJens Wiklander
696098f01SJens Wiklander #include <assert.h>
796098f01SJens Wiklander #include <crypto/crypto.h>
896098f01SJens Wiklander #include <crypto/crypto_impl.h>
996098f01SJens Wiklander #include <stdlib.h>
1096098f01SJens Wiklander #include <tee_api_types.h>
11*5a913ee7SJerome Forissier #include <tomcrypt_private.h>
1296098f01SJens Wiklander #include <util.h>
1396098f01SJens Wiklander
1496098f01SJens Wiklander struct ltc_ctr_ctx {
1596098f01SJens Wiklander struct crypto_cipher_ctx ctx;
1696098f01SJens Wiklander int cipher_idx;
1796098f01SJens Wiklander int (*update)(const unsigned char *src, unsigned char *dst,
1896098f01SJens Wiklander unsigned long len, symmetric_CTR *ctr);
1996098f01SJens Wiklander symmetric_CTR state;
2096098f01SJens Wiklander };
2196098f01SJens Wiklander
2296098f01SJens Wiklander static const struct crypto_cipher_ops ltc_ctr_ops;
2396098f01SJens Wiklander
to_ctr_ctx(struct crypto_cipher_ctx * ctx)2496098f01SJens Wiklander static struct ltc_ctr_ctx *to_ctr_ctx(struct crypto_cipher_ctx *ctx)
2596098f01SJens Wiklander {
2696098f01SJens Wiklander assert(ctx && ctx->ops == <c_ctr_ops);
2796098f01SJens Wiklander
2896098f01SJens Wiklander return container_of(ctx, struct ltc_ctr_ctx, ctx);
2996098f01SJens Wiklander }
3096098f01SJens Wiklander
ltc_ctr_init(struct crypto_cipher_ctx * ctx,TEE_OperationMode mode,const uint8_t * key1,size_t key1_len,const uint8_t * key2 __unused,size_t key2_len __unused,const uint8_t * iv __unused,size_t iv_len __unused)3196098f01SJens Wiklander static TEE_Result ltc_ctr_init(struct crypto_cipher_ctx *ctx,
3296098f01SJens Wiklander TEE_OperationMode mode, const uint8_t *key1,
3396098f01SJens Wiklander size_t key1_len, const uint8_t *key2 __unused,
3496098f01SJens Wiklander size_t key2_len __unused,
3596098f01SJens Wiklander const uint8_t *iv __unused,
3696098f01SJens Wiklander size_t iv_len __unused)
3796098f01SJens Wiklander {
3896098f01SJens Wiklander struct ltc_ctr_ctx *c = to_ctr_ctx(ctx);
3996098f01SJens Wiklander
4096098f01SJens Wiklander if ((int)iv_len != cipher_descriptor[c->cipher_idx]->block_length)
4196098f01SJens Wiklander return TEE_ERROR_BAD_PARAMETERS;
4296098f01SJens Wiklander
4396098f01SJens Wiklander if (mode == TEE_MODE_ENCRYPT)
4496098f01SJens Wiklander c->update = ctr_encrypt;
4596098f01SJens Wiklander else
4696098f01SJens Wiklander c->update = ctr_decrypt;
4796098f01SJens Wiklander
4896098f01SJens Wiklander if (ctr_start(c->cipher_idx, iv, key1, key1_len, 0,
4996098f01SJens Wiklander CTR_COUNTER_BIG_ENDIAN, &c->state) == CRYPT_OK)
5096098f01SJens Wiklander return TEE_SUCCESS;
5196098f01SJens Wiklander else
5296098f01SJens Wiklander return TEE_ERROR_BAD_STATE;
5396098f01SJens Wiklander }
5496098f01SJens Wiklander
ltc_ctr_update(struct crypto_cipher_ctx * ctx,bool last_block __unused,const uint8_t * data,size_t len,uint8_t * dst)5596098f01SJens Wiklander static TEE_Result ltc_ctr_update(struct crypto_cipher_ctx *ctx,
5696098f01SJens Wiklander bool last_block __unused,
5796098f01SJens Wiklander const uint8_t *data, size_t len, uint8_t *dst)
5896098f01SJens Wiklander {
5996098f01SJens Wiklander struct ltc_ctr_ctx *c = to_ctr_ctx(ctx);
6096098f01SJens Wiklander
6196098f01SJens Wiklander if (c->update && c->update(data, dst, len, &c->state) == CRYPT_OK)
6296098f01SJens Wiklander return TEE_SUCCESS;
6396098f01SJens Wiklander else
6496098f01SJens Wiklander return TEE_ERROR_BAD_STATE;
6596098f01SJens Wiklander }
6696098f01SJens Wiklander
ltc_ctr_final(struct crypto_cipher_ctx * ctx)6796098f01SJens Wiklander static void ltc_ctr_final(struct crypto_cipher_ctx *ctx)
6896098f01SJens Wiklander {
6996098f01SJens Wiklander ctr_done(&to_ctr_ctx(ctx)->state);
7096098f01SJens Wiklander }
7196098f01SJens Wiklander
ltc_ctr_free_ctx(struct crypto_cipher_ctx * ctx)7296098f01SJens Wiklander static void ltc_ctr_free_ctx(struct crypto_cipher_ctx *ctx)
7396098f01SJens Wiklander {
7496098f01SJens Wiklander free(to_ctr_ctx(ctx));
7596098f01SJens Wiklander }
7696098f01SJens Wiklander
ltc_ctr_copy_state(struct crypto_cipher_ctx * dst_ctx,struct crypto_cipher_ctx * src_ctx)7796098f01SJens Wiklander static void ltc_ctr_copy_state(struct crypto_cipher_ctx *dst_ctx,
7896098f01SJens Wiklander struct crypto_cipher_ctx *src_ctx)
7996098f01SJens Wiklander {
8096098f01SJens Wiklander struct ltc_ctr_ctx *src = to_ctr_ctx(src_ctx);
8196098f01SJens Wiklander struct ltc_ctr_ctx *dst = to_ctr_ctx(dst_ctx);
8296098f01SJens Wiklander
8396098f01SJens Wiklander assert(src->cipher_idx == dst->cipher_idx);
8496098f01SJens Wiklander dst->update = src->update;
8596098f01SJens Wiklander dst->state = src->state;
8696098f01SJens Wiklander }
8796098f01SJens Wiklander
8896098f01SJens Wiklander static const struct crypto_cipher_ops ltc_ctr_ops = {
8996098f01SJens Wiklander .init = ltc_ctr_init,
9096098f01SJens Wiklander .update = ltc_ctr_update,
9196098f01SJens Wiklander .final = ltc_ctr_final,
9296098f01SJens Wiklander .free_ctx = ltc_ctr_free_ctx,
9396098f01SJens Wiklander .copy_state = ltc_ctr_copy_state,
9496098f01SJens Wiklander };
9596098f01SJens Wiklander
crypto_aes_ctr_alloc_ctx(struct crypto_cipher_ctx ** ctx_ret)9696098f01SJens Wiklander TEE_Result crypto_aes_ctr_alloc_ctx(struct crypto_cipher_ctx **ctx_ret)
9796098f01SJens Wiklander {
9896098f01SJens Wiklander struct ltc_ctr_ctx *c = NULL;
9996098f01SJens Wiklander int cipher_idx = find_cipher("aes");
10096098f01SJens Wiklander
10196098f01SJens Wiklander if (cipher_idx < 0)
10296098f01SJens Wiklander return TEE_ERROR_NOT_SUPPORTED;
10396098f01SJens Wiklander
10496098f01SJens Wiklander c = calloc(1, sizeof(*c));
10596098f01SJens Wiklander if (!c)
10696098f01SJens Wiklander return TEE_ERROR_OUT_OF_MEMORY;
10796098f01SJens Wiklander
10896098f01SJens Wiklander c->ctx.ops = <c_ctr_ops;
10996098f01SJens Wiklander c->cipher_idx = cipher_idx;
11096098f01SJens Wiklander *ctx_ret = &c->ctx;
11196098f01SJens Wiklander
11296098f01SJens Wiklander return TEE_SUCCESS;
11396098f01SJens Wiklander }
114