1 /* SPDX-License-Identifier: GPL-2.0 OR MIT */
3 * Copyright (C) 2015-2019 Jason A. Donenfeld <Jason@zx2c4.com>. All Rights Reserved.
6 #ifndef _CRYPTO_BLAKE2S_H
7 #define _CRYPTO_BLAKE2S_H
10 #include <linux/kconfig.h>
11 #include <linux/types.h>
12 #include <linux/string.h>
14 enum blake2s_lengths
{
15 BLAKE2S_BLOCK_SIZE
= 64,
16 BLAKE2S_HASH_SIZE
= 32,
17 BLAKE2S_KEY_SIZE
= 32,
19 BLAKE2S_128_HASH_SIZE
= 16,
20 BLAKE2S_160_HASH_SIZE
= 20,
21 BLAKE2S_224_HASH_SIZE
= 28,
22 BLAKE2S_256_HASH_SIZE
= 32,
25 struct blake2s_state
{
26 /* 'h', 't', and 'f' are used in assembly code, so keep them as-is. */
30 u8 buf
[BLAKE2S_BLOCK_SIZE
];
36 BLAKE2S_IV0
= 0x6A09E667UL
,
37 BLAKE2S_IV1
= 0xBB67AE85UL
,
38 BLAKE2S_IV2
= 0x3C6EF372UL
,
39 BLAKE2S_IV3
= 0xA54FF53AUL
,
40 BLAKE2S_IV4
= 0x510E527FUL
,
41 BLAKE2S_IV5
= 0x9B05688CUL
,
42 BLAKE2S_IV6
= 0x1F83D9ABUL
,
43 BLAKE2S_IV7
= 0x5BE0CD19UL
,
46 static inline void __blake2s_init(struct blake2s_state
*state
, size_t outlen
,
47 const void *key
, size_t keylen
)
49 state
->h
[0] = BLAKE2S_IV0
^ (0x01010000 | keylen
<< 8 | outlen
);
50 state
->h
[1] = BLAKE2S_IV1
;
51 state
->h
[2] = BLAKE2S_IV2
;
52 state
->h
[3] = BLAKE2S_IV3
;
53 state
->h
[4] = BLAKE2S_IV4
;
54 state
->h
[5] = BLAKE2S_IV5
;
55 state
->h
[6] = BLAKE2S_IV6
;
56 state
->h
[7] = BLAKE2S_IV7
;
62 state
->outlen
= outlen
;
64 memcpy(state
->buf
, key
, keylen
);
65 memset(&state
->buf
[keylen
], 0, BLAKE2S_BLOCK_SIZE
- keylen
);
66 state
->buflen
= BLAKE2S_BLOCK_SIZE
;
70 static inline void blake2s_init(struct blake2s_state
*state
,
73 __blake2s_init(state
, outlen
, NULL
, 0);
76 static inline void blake2s_init_key(struct blake2s_state
*state
,
77 const size_t outlen
, const void *key
,
80 WARN_ON(IS_ENABLED(DEBUG
) && (!outlen
|| outlen
> BLAKE2S_HASH_SIZE
||
81 !key
|| !keylen
|| keylen
> BLAKE2S_KEY_SIZE
));
83 __blake2s_init(state
, outlen
, key
, keylen
);
86 void blake2s_update(struct blake2s_state
*state
, const u8
*in
, size_t inlen
);
87 void blake2s_final(struct blake2s_state
*state
, u8
*out
);
89 static inline void blake2s(u8
*out
, const u8
*in
, const u8
*key
,
90 const size_t outlen
, const size_t inlen
,
93 struct blake2s_state state
;
95 WARN_ON(IS_ENABLED(DEBUG
) && ((!in
&& inlen
> 0) || !out
|| !outlen
||
96 outlen
> BLAKE2S_HASH_SIZE
|| keylen
> BLAKE2S_KEY_SIZE
||
99 __blake2s_init(&state
, outlen
, key
, keylen
);
100 blake2s_update(&state
, in
, inlen
);
101 blake2s_final(&state
, out
);
104 #endif /* _CRYPTO_BLAKE2S_H */