1 // SPDX-License-Identifier: GPL-2.0-or-later
3 * Cryptographic API for algorithms (i.e., low-level API).
5 * Copyright (c) 2006 Herbert Xu <herbert@gondor.apana.org.au>
8 #include <crypto/algapi.h>
10 #include <linux/errno.h>
11 #include <linux/fips.h>
12 #include <linux/init.h>
13 #include <linux/kernel.h>
14 #include <linux/list.h>
15 #include <linux/module.h>
16 #include <linux/rtnetlink.h>
17 #include <linux/slab.h>
18 #include <linux/string.h>
22 static LIST_HEAD(crypto_template_list
);
24 static inline void crypto_check_module_sig(struct module
*mod
)
26 if (fips_enabled
&& mod
&& !module_sig_ok(mod
))
27 panic("Module %s signature verification failed in FIPS mode\n",
31 static int crypto_check_alg(struct crypto_alg
*alg
)
33 crypto_check_module_sig(alg
->cra_module
);
35 if (!alg
->cra_name
[0] || !alg
->cra_driver_name
[0])
38 if (alg
->cra_alignmask
& (alg
->cra_alignmask
+ 1))
41 /* General maximums for all algs. */
42 if (alg
->cra_alignmask
> MAX_ALGAPI_ALIGNMASK
)
45 if (alg
->cra_blocksize
> MAX_ALGAPI_BLOCKSIZE
)
48 /* Lower maximums for specific alg types. */
49 if (!alg
->cra_type
&& (alg
->cra_flags
& CRYPTO_ALG_TYPE_MASK
) ==
50 CRYPTO_ALG_TYPE_CIPHER
) {
51 if (alg
->cra_alignmask
> MAX_CIPHER_ALIGNMASK
)
54 if (alg
->cra_blocksize
> MAX_CIPHER_BLOCKSIZE
)
58 if (alg
->cra_priority
< 0)
61 refcount_set(&alg
->cra_refcnt
, 1);
66 static void crypto_free_instance(struct crypto_instance
*inst
)
68 inst
->alg
.cra_type
->free(inst
);
71 static void crypto_destroy_instance(struct crypto_alg
*alg
)
73 struct crypto_instance
*inst
= (void *)alg
;
74 struct crypto_template
*tmpl
= inst
->tmpl
;
76 crypto_free_instance(inst
);
77 crypto_tmpl_put(tmpl
);
81 * This function adds a spawn to the list secondary_spawns which
82 * will be used at the end of crypto_remove_spawns to unregister
83 * instances, unless the spawn happens to be one that is depended
84 * on by the new algorithm (nalg in crypto_remove_spawns).
86 * This function is also responsible for resurrecting any algorithms
87 * in the dependency chain of nalg by unsetting n->dead.
89 static struct list_head
*crypto_more_spawns(struct crypto_alg
*alg
,
90 struct list_head
*stack
,
91 struct list_head
*top
,
92 struct list_head
*secondary_spawns
)
94 struct crypto_spawn
*spawn
, *n
;
96 spawn
= list_first_entry_or_null(stack
, struct crypto_spawn
, list
);
100 n
= list_prev_entry(spawn
, list
);
101 list_move(&spawn
->list
, secondary_spawns
);
103 if (list_is_last(&n
->list
, stack
))
106 n
= list_next_entry(n
, list
);
110 return &n
->inst
->alg
.cra_users
;
113 static void crypto_remove_instance(struct crypto_instance
*inst
,
114 struct list_head
*list
)
116 struct crypto_template
*tmpl
= inst
->tmpl
;
118 if (crypto_is_dead(&inst
->alg
))
121 inst
->alg
.cra_flags
|= CRYPTO_ALG_DEAD
;
123 if (!tmpl
|| !crypto_tmpl_get(tmpl
))
126 list_move(&inst
->alg
.cra_list
, list
);
127 hlist_del(&inst
->list
);
128 inst
->alg
.cra_destroy
= crypto_destroy_instance
;
130 BUG_ON(!list_empty(&inst
->alg
.cra_users
));
134 * Given an algorithm alg, remove all algorithms that depend on it
135 * through spawns. If nalg is not null, then exempt any algorithms
136 * that is depended on by nalg. This is useful when nalg itself
139 void crypto_remove_spawns(struct crypto_alg
*alg
, struct list_head
*list
,
140 struct crypto_alg
*nalg
)
142 u32 new_type
= (nalg
?: alg
)->cra_flags
;
143 struct crypto_spawn
*spawn
, *n
;
144 LIST_HEAD(secondary_spawns
);
145 struct list_head
*spawns
;
149 spawns
= &alg
->cra_users
;
150 list_for_each_entry_safe(spawn
, n
, spawns
, list
) {
151 if ((spawn
->alg
->cra_flags
^ new_type
) & spawn
->mask
)
154 list_move(&spawn
->list
, &top
);
158 * Perform a depth-first walk starting from alg through
159 * the cra_users tree. The list stack records the path
160 * from alg to the current spawn.
164 while (!list_empty(spawns
)) {
165 struct crypto_instance
*inst
;
167 spawn
= list_first_entry(spawns
, struct crypto_spawn
,
171 list_move(&spawn
->list
, &stack
);
172 spawn
->dead
= !spawn
->registered
|| &inst
->alg
!= nalg
;
174 if (!spawn
->registered
)
177 BUG_ON(&inst
->alg
== alg
);
179 if (&inst
->alg
== nalg
)
182 spawns
= &inst
->alg
.cra_users
;
185 * Even if spawn->registered is true, the
186 * instance itself may still be unregistered.
187 * This is because it may have failed during
188 * registration. Therefore we still need to
189 * make the following test.
191 * We may encounter an unregistered instance here, since
192 * an instance's spawns are set up prior to the instance
193 * being registered. An unregistered instance will have
194 * NULL ->cra_users.next, since ->cra_users isn't
195 * properly initialized until registration. But an
196 * unregistered instance cannot have any users, so treat
197 * it the same as ->cra_users being empty.
199 if (spawns
->next
== NULL
)
202 } while ((spawns
= crypto_more_spawns(alg
, &stack
, &top
,
203 &secondary_spawns
)));
206 * Remove all instances that are marked as dead. Also
207 * complete the resurrection of the others by moving them
208 * back to the cra_users list.
210 list_for_each_entry_safe(spawn
, n
, &secondary_spawns
, list
) {
212 list_move(&spawn
->list
, &spawn
->alg
->cra_users
);
213 else if (spawn
->registered
)
214 crypto_remove_instance(spawn
->inst
, list
);
217 EXPORT_SYMBOL_GPL(crypto_remove_spawns
);
219 static struct crypto_larval
*__crypto_register_alg(struct crypto_alg
*alg
)
221 struct crypto_alg
*q
;
222 struct crypto_larval
*larval
;
225 if (crypto_is_dead(alg
))
228 INIT_LIST_HEAD(&alg
->cra_users
);
231 alg
->cra_flags
&= ~CRYPTO_ALG_TESTED
;
235 list_for_each_entry(q
, &crypto_alg_list
, cra_list
) {
239 if (crypto_is_moribund(q
))
242 if (crypto_is_larval(q
)) {
243 if (!strcmp(alg
->cra_driver_name
, q
->cra_driver_name
))
248 if (!strcmp(q
->cra_driver_name
, alg
->cra_name
) ||
249 !strcmp(q
->cra_name
, alg
->cra_driver_name
))
253 larval
= crypto_larval_alloc(alg
->cra_name
,
254 alg
->cra_flags
| CRYPTO_ALG_TESTED
, 0);
259 larval
->adult
= crypto_mod_get(alg
);
263 refcount_set(&larval
->alg
.cra_refcnt
, 1);
264 memcpy(larval
->alg
.cra_driver_name
, alg
->cra_driver_name
,
265 CRYPTO_MAX_ALG_NAME
);
266 larval
->alg
.cra_priority
= alg
->cra_priority
;
268 list_add(&alg
->cra_list
, &crypto_alg_list
);
269 list_add(&larval
->alg
.cra_list
, &crypto_alg_list
);
271 crypto_stats_init(alg
);
279 larval
= ERR_PTR(ret
);
283 void crypto_alg_tested(const char *name
, int err
)
285 struct crypto_larval
*test
;
286 struct crypto_alg
*alg
;
287 struct crypto_alg
*q
;
291 down_write(&crypto_alg_sem
);
292 list_for_each_entry(q
, &crypto_alg_list
, cra_list
) {
293 if (crypto_is_moribund(q
) || !crypto_is_larval(q
))
296 test
= (struct crypto_larval
*)q
;
298 if (!strcmp(q
->cra_driver_name
, name
))
302 pr_err("alg: Unexpected test result for %s: %d\n", name
, err
);
306 q
->cra_flags
|= CRYPTO_ALG_DEAD
;
308 if (err
|| list_empty(&alg
->cra_list
))
311 alg
->cra_flags
|= CRYPTO_ALG_TESTED
;
313 /* Only satisfy larval waiters if we are the best. */
315 list_for_each_entry(q
, &crypto_alg_list
, cra_list
) {
316 if (crypto_is_moribund(q
) || !crypto_is_larval(q
))
319 if (strcmp(alg
->cra_name
, q
->cra_name
))
322 if (q
->cra_priority
> alg
->cra_priority
) {
328 list_for_each_entry(q
, &crypto_alg_list
, cra_list
) {
332 if (crypto_is_moribund(q
))
335 if (crypto_is_larval(q
)) {
336 struct crypto_larval
*larval
= (void *)q
;
339 * Check to see if either our generic name or
340 * specific name can satisfy the name requested
341 * by the larval entry q.
343 if (strcmp(alg
->cra_name
, q
->cra_name
) &&
344 strcmp(alg
->cra_driver_name
, q
->cra_name
))
349 if ((q
->cra_flags
^ alg
->cra_flags
) & larval
->mask
)
352 if (best
&& crypto_mod_get(alg
))
355 larval
->adult
= ERR_PTR(-EAGAIN
);
360 if (strcmp(alg
->cra_name
, q
->cra_name
))
363 if (strcmp(alg
->cra_driver_name
, q
->cra_driver_name
) &&
364 q
->cra_priority
> alg
->cra_priority
)
367 crypto_remove_spawns(q
, &list
, alg
);
371 complete_all(&test
->completion
);
374 up_write(&crypto_alg_sem
);
376 crypto_remove_final(&list
);
378 EXPORT_SYMBOL_GPL(crypto_alg_tested
);
380 void crypto_remove_final(struct list_head
*list
)
382 struct crypto_alg
*alg
;
383 struct crypto_alg
*n
;
385 list_for_each_entry_safe(alg
, n
, list
, cra_list
) {
386 list_del_init(&alg
->cra_list
);
390 EXPORT_SYMBOL_GPL(crypto_remove_final
);
392 static void crypto_wait_for_test(struct crypto_larval
*larval
)
396 err
= crypto_probing_notify(CRYPTO_MSG_ALG_REGISTER
, larval
->adult
);
397 if (err
!= NOTIFY_STOP
) {
398 if (WARN_ON(err
!= NOTIFY_DONE
))
400 crypto_alg_tested(larval
->alg
.cra_driver_name
, 0);
403 err
= wait_for_completion_killable(&larval
->completion
);
406 crypto_probing_notify(CRYPTO_MSG_ALG_LOADED
, larval
);
409 crypto_larval_kill(&larval
->alg
);
412 int crypto_register_alg(struct crypto_alg
*alg
)
414 struct crypto_larval
*larval
;
417 alg
->cra_flags
&= ~CRYPTO_ALG_DEAD
;
418 err
= crypto_check_alg(alg
);
422 down_write(&crypto_alg_sem
);
423 larval
= __crypto_register_alg(alg
);
424 up_write(&crypto_alg_sem
);
427 return PTR_ERR(larval
);
429 crypto_wait_for_test(larval
);
432 EXPORT_SYMBOL_GPL(crypto_register_alg
);
434 static int crypto_remove_alg(struct crypto_alg
*alg
, struct list_head
*list
)
436 if (unlikely(list_empty(&alg
->cra_list
)))
439 alg
->cra_flags
|= CRYPTO_ALG_DEAD
;
441 list_del_init(&alg
->cra_list
);
442 crypto_remove_spawns(alg
, list
, NULL
);
447 void crypto_unregister_alg(struct crypto_alg
*alg
)
452 down_write(&crypto_alg_sem
);
453 ret
= crypto_remove_alg(alg
, &list
);
454 up_write(&crypto_alg_sem
);
456 if (WARN(ret
, "Algorithm %s is not registered", alg
->cra_driver_name
))
459 BUG_ON(refcount_read(&alg
->cra_refcnt
) != 1);
460 if (alg
->cra_destroy
)
461 alg
->cra_destroy(alg
);
463 crypto_remove_final(&list
);
465 EXPORT_SYMBOL_GPL(crypto_unregister_alg
);
467 int crypto_register_algs(struct crypto_alg
*algs
, int count
)
471 for (i
= 0; i
< count
; i
++) {
472 ret
= crypto_register_alg(&algs
[i
]);
480 for (--i
; i
>= 0; --i
)
481 crypto_unregister_alg(&algs
[i
]);
485 EXPORT_SYMBOL_GPL(crypto_register_algs
);
487 void crypto_unregister_algs(struct crypto_alg
*algs
, int count
)
491 for (i
= 0; i
< count
; i
++)
492 crypto_unregister_alg(&algs
[i
]);
494 EXPORT_SYMBOL_GPL(crypto_unregister_algs
);
496 int crypto_register_template(struct crypto_template
*tmpl
)
498 struct crypto_template
*q
;
501 down_write(&crypto_alg_sem
);
503 crypto_check_module_sig(tmpl
->module
);
505 list_for_each_entry(q
, &crypto_template_list
, list
) {
510 list_add(&tmpl
->list
, &crypto_template_list
);
513 up_write(&crypto_alg_sem
);
516 EXPORT_SYMBOL_GPL(crypto_register_template
);
518 int crypto_register_templates(struct crypto_template
*tmpls
, int count
)
522 for (i
= 0; i
< count
; i
++) {
523 err
= crypto_register_template(&tmpls
[i
]);
530 for (--i
; i
>= 0; --i
)
531 crypto_unregister_template(&tmpls
[i
]);
534 EXPORT_SYMBOL_GPL(crypto_register_templates
);
536 void crypto_unregister_template(struct crypto_template
*tmpl
)
538 struct crypto_instance
*inst
;
539 struct hlist_node
*n
;
540 struct hlist_head
*list
;
543 down_write(&crypto_alg_sem
);
545 BUG_ON(list_empty(&tmpl
->list
));
546 list_del_init(&tmpl
->list
);
548 list
= &tmpl
->instances
;
549 hlist_for_each_entry(inst
, list
, list
) {
550 int err
= crypto_remove_alg(&inst
->alg
, &users
);
555 up_write(&crypto_alg_sem
);
557 hlist_for_each_entry_safe(inst
, n
, list
, list
) {
558 BUG_ON(refcount_read(&inst
->alg
.cra_refcnt
) != 1);
559 crypto_free_instance(inst
);
561 crypto_remove_final(&users
);
563 EXPORT_SYMBOL_GPL(crypto_unregister_template
);
565 void crypto_unregister_templates(struct crypto_template
*tmpls
, int count
)
569 for (i
= count
- 1; i
>= 0; --i
)
570 crypto_unregister_template(&tmpls
[i
]);
572 EXPORT_SYMBOL_GPL(crypto_unregister_templates
);
574 static struct crypto_template
*__crypto_lookup_template(const char *name
)
576 struct crypto_template
*q
, *tmpl
= NULL
;
578 down_read(&crypto_alg_sem
);
579 list_for_each_entry(q
, &crypto_template_list
, list
) {
580 if (strcmp(q
->name
, name
))
582 if (unlikely(!crypto_tmpl_get(q
)))
588 up_read(&crypto_alg_sem
);
593 struct crypto_template
*crypto_lookup_template(const char *name
)
595 return try_then_request_module(__crypto_lookup_template(name
),
598 EXPORT_SYMBOL_GPL(crypto_lookup_template
);
600 int crypto_register_instance(struct crypto_template
*tmpl
,
601 struct crypto_instance
*inst
)
603 struct crypto_larval
*larval
;
604 struct crypto_spawn
*spawn
;
607 err
= crypto_check_alg(&inst
->alg
);
611 inst
->alg
.cra_module
= tmpl
->module
;
612 inst
->alg
.cra_flags
|= CRYPTO_ALG_INSTANCE
;
614 down_write(&crypto_alg_sem
);
616 larval
= ERR_PTR(-EAGAIN
);
617 for (spawn
= inst
->spawns
; spawn
;) {
618 struct crypto_spawn
*next
;
625 spawn
->registered
= true;
627 crypto_mod_put(spawn
->alg
);
632 larval
= __crypto_register_alg(&inst
->alg
);
636 hlist_add_head(&inst
->list
, &tmpl
->instances
);
640 up_write(&crypto_alg_sem
);
642 err
= PTR_ERR(larval
);
646 crypto_wait_for_test(larval
);
652 EXPORT_SYMBOL_GPL(crypto_register_instance
);
654 void crypto_unregister_instance(struct crypto_instance
*inst
)
658 down_write(&crypto_alg_sem
);
660 crypto_remove_spawns(&inst
->alg
, &list
, NULL
);
661 crypto_remove_instance(inst
, &list
);
663 up_write(&crypto_alg_sem
);
665 crypto_remove_final(&list
);
667 EXPORT_SYMBOL_GPL(crypto_unregister_instance
);
669 int crypto_grab_spawn(struct crypto_spawn
*spawn
, struct crypto_instance
*inst
,
670 const char *name
, u32 type
, u32 mask
)
672 struct crypto_alg
*alg
;
675 if (WARN_ON_ONCE(inst
== NULL
))
678 /* Allow the result of crypto_attr_alg_name() to be passed directly */
680 return PTR_ERR(name
);
682 alg
= crypto_find_alg(name
, spawn
->frontend
, type
, mask
);
686 down_write(&crypto_alg_sem
);
687 if (!crypto_is_moribund(alg
)) {
688 list_add(&spawn
->list
, &alg
->cra_users
);
691 spawn
->next
= inst
->spawns
;
692 inst
->spawns
= spawn
;
695 up_write(&crypto_alg_sem
);
700 EXPORT_SYMBOL_GPL(crypto_grab_spawn
);
702 void crypto_drop_spawn(struct crypto_spawn
*spawn
)
704 if (!spawn
->alg
) /* not yet initialized? */
707 down_write(&crypto_alg_sem
);
709 list_del(&spawn
->list
);
710 up_write(&crypto_alg_sem
);
712 if (!spawn
->registered
)
713 crypto_mod_put(spawn
->alg
);
715 EXPORT_SYMBOL_GPL(crypto_drop_spawn
);
717 static struct crypto_alg
*crypto_spawn_alg(struct crypto_spawn
*spawn
)
719 struct crypto_alg
*alg
;
721 down_read(&crypto_alg_sem
);
723 if (!spawn
->dead
&& !crypto_mod_get(alg
)) {
724 alg
->cra_flags
|= CRYPTO_ALG_DYING
;
727 up_read(&crypto_alg_sem
);
729 return alg
?: ERR_PTR(-EAGAIN
);
732 struct crypto_tfm
*crypto_spawn_tfm(struct crypto_spawn
*spawn
, u32 type
,
735 struct crypto_alg
*alg
;
736 struct crypto_tfm
*tfm
;
738 alg
= crypto_spawn_alg(spawn
);
740 return ERR_CAST(alg
);
742 tfm
= ERR_PTR(-EINVAL
);
743 if (unlikely((alg
->cra_flags
^ type
) & mask
))
746 tfm
= __crypto_alloc_tfm(alg
, type
, mask
);
756 EXPORT_SYMBOL_GPL(crypto_spawn_tfm
);
758 void *crypto_spawn_tfm2(struct crypto_spawn
*spawn
)
760 struct crypto_alg
*alg
;
761 struct crypto_tfm
*tfm
;
763 alg
= crypto_spawn_alg(spawn
);
765 return ERR_CAST(alg
);
767 tfm
= crypto_create_tfm(alg
, spawn
->frontend
);
777 EXPORT_SYMBOL_GPL(crypto_spawn_tfm2
);
779 int crypto_register_notifier(struct notifier_block
*nb
)
781 return blocking_notifier_chain_register(&crypto_chain
, nb
);
783 EXPORT_SYMBOL_GPL(crypto_register_notifier
);
785 int crypto_unregister_notifier(struct notifier_block
*nb
)
787 return blocking_notifier_chain_unregister(&crypto_chain
, nb
);
789 EXPORT_SYMBOL_GPL(crypto_unregister_notifier
);
791 struct crypto_attr_type
*crypto_get_attr_type(struct rtattr
**tb
)
793 struct rtattr
*rta
= tb
[0];
794 struct crypto_attr_type
*algt
;
797 return ERR_PTR(-ENOENT
);
798 if (RTA_PAYLOAD(rta
) < sizeof(*algt
))
799 return ERR_PTR(-EINVAL
);
800 if (rta
->rta_type
!= CRYPTOA_TYPE
)
801 return ERR_PTR(-EINVAL
);
803 algt
= RTA_DATA(rta
);
807 EXPORT_SYMBOL_GPL(crypto_get_attr_type
);
809 int crypto_check_attr_type(struct rtattr
**tb
, u32 type
)
811 struct crypto_attr_type
*algt
;
813 algt
= crypto_get_attr_type(tb
);
815 return PTR_ERR(algt
);
817 if ((algt
->type
^ type
) & algt
->mask
)
822 EXPORT_SYMBOL_GPL(crypto_check_attr_type
);
824 const char *crypto_attr_alg_name(struct rtattr
*rta
)
826 struct crypto_attr_alg
*alga
;
829 return ERR_PTR(-ENOENT
);
830 if (RTA_PAYLOAD(rta
) < sizeof(*alga
))
831 return ERR_PTR(-EINVAL
);
832 if (rta
->rta_type
!= CRYPTOA_ALG
)
833 return ERR_PTR(-EINVAL
);
835 alga
= RTA_DATA(rta
);
836 alga
->name
[CRYPTO_MAX_ALG_NAME
- 1] = 0;
840 EXPORT_SYMBOL_GPL(crypto_attr_alg_name
);
842 int crypto_attr_u32(struct rtattr
*rta
, u32
*num
)
844 struct crypto_attr_u32
*nu32
;
848 if (RTA_PAYLOAD(rta
) < sizeof(*nu32
))
850 if (rta
->rta_type
!= CRYPTOA_U32
)
853 nu32
= RTA_DATA(rta
);
858 EXPORT_SYMBOL_GPL(crypto_attr_u32
);
860 int crypto_inst_setname(struct crypto_instance
*inst
, const char *name
,
861 struct crypto_alg
*alg
)
863 if (snprintf(inst
->alg
.cra_name
, CRYPTO_MAX_ALG_NAME
, "%s(%s)", name
,
864 alg
->cra_name
) >= CRYPTO_MAX_ALG_NAME
)
865 return -ENAMETOOLONG
;
867 if (snprintf(inst
->alg
.cra_driver_name
, CRYPTO_MAX_ALG_NAME
, "%s(%s)",
868 name
, alg
->cra_driver_name
) >= CRYPTO_MAX_ALG_NAME
)
869 return -ENAMETOOLONG
;
873 EXPORT_SYMBOL_GPL(crypto_inst_setname
);
875 void crypto_init_queue(struct crypto_queue
*queue
, unsigned int max_qlen
)
877 INIT_LIST_HEAD(&queue
->list
);
878 queue
->backlog
= &queue
->list
;
880 queue
->max_qlen
= max_qlen
;
882 EXPORT_SYMBOL_GPL(crypto_init_queue
);
884 int crypto_enqueue_request(struct crypto_queue
*queue
,
885 struct crypto_async_request
*request
)
887 int err
= -EINPROGRESS
;
889 if (unlikely(queue
->qlen
>= queue
->max_qlen
)) {
890 if (!(request
->flags
& CRYPTO_TFM_REQ_MAY_BACKLOG
)) {
895 if (queue
->backlog
== &queue
->list
)
896 queue
->backlog
= &request
->list
;
900 list_add_tail(&request
->list
, &queue
->list
);
905 EXPORT_SYMBOL_GPL(crypto_enqueue_request
);
907 struct crypto_async_request
*crypto_dequeue_request(struct crypto_queue
*queue
)
909 struct list_head
*request
;
911 if (unlikely(!queue
->qlen
))
916 if (queue
->backlog
!= &queue
->list
)
917 queue
->backlog
= queue
->backlog
->next
;
919 request
= queue
->list
.next
;
922 return list_entry(request
, struct crypto_async_request
, list
);
924 EXPORT_SYMBOL_GPL(crypto_dequeue_request
);
926 static inline void crypto_inc_byte(u8
*a
, unsigned int size
)
931 for (; size
; size
--) {
939 void crypto_inc(u8
*a
, unsigned int size
)
941 __be32
*b
= (__be32
*)(a
+ size
);
944 if (IS_ENABLED(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS
) ||
945 IS_ALIGNED((unsigned long)b
, __alignof__(*b
)))
946 for (; size
>= 4; size
-= 4) {
947 c
= be32_to_cpu(*--b
) + 1;
953 crypto_inc_byte(a
, size
);
955 EXPORT_SYMBOL_GPL(crypto_inc
);
957 void __crypto_xor(u8
*dst
, const u8
*src1
, const u8
*src2
, unsigned int len
)
961 if (!IS_ENABLED(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS
)) {
962 int size
= sizeof(unsigned long);
963 int d
= (((unsigned long)dst
^ (unsigned long)src1
) |
964 ((unsigned long)dst
^ (unsigned long)src2
)) &
967 relalign
= d
? 1 << __ffs(d
) : size
;
970 * If we care about alignment, process as many bytes as
971 * needed to advance dst and src to values whose alignments
972 * equal their relative alignment. This will allow us to
973 * process the remainder of the input using optimal strides.
975 while (((unsigned long)dst
& (relalign
- 1)) && len
> 0) {
976 *dst
++ = *src1
++ ^ *src2
++;
981 while (IS_ENABLED(CONFIG_64BIT
) && len
>= 8 && !(relalign
& 7)) {
982 *(u64
*)dst
= *(u64
*)src1
^ *(u64
*)src2
;
989 while (len
>= 4 && !(relalign
& 3)) {
990 *(u32
*)dst
= *(u32
*)src1
^ *(u32
*)src2
;
997 while (len
>= 2 && !(relalign
& 1)) {
998 *(u16
*)dst
= *(u16
*)src1
^ *(u16
*)src2
;
1006 *dst
++ = *src1
++ ^ *src2
++;
1008 EXPORT_SYMBOL_GPL(__crypto_xor
);
1010 unsigned int crypto_alg_extsize(struct crypto_alg
*alg
)
1012 return alg
->cra_ctxsize
+
1013 (alg
->cra_alignmask
& ~(crypto_tfm_ctx_alignment() - 1));
1015 EXPORT_SYMBOL_GPL(crypto_alg_extsize
);
1017 int crypto_type_has_alg(const char *name
, const struct crypto_type
*frontend
,
1021 struct crypto_alg
*alg
= crypto_find_alg(name
, frontend
, type
, mask
);
1024 crypto_mod_put(alg
);
1030 EXPORT_SYMBOL_GPL(crypto_type_has_alg
);
1032 #ifdef CONFIG_CRYPTO_STATS
1033 void crypto_stats_init(struct crypto_alg
*alg
)
1035 memset(&alg
->stats
, 0, sizeof(alg
->stats
));
1037 EXPORT_SYMBOL_GPL(crypto_stats_init
);
1039 void crypto_stats_get(struct crypto_alg
*alg
)
1041 crypto_alg_get(alg
);
1043 EXPORT_SYMBOL_GPL(crypto_stats_get
);
1045 void crypto_stats_aead_encrypt(unsigned int cryptlen
, struct crypto_alg
*alg
,
1048 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1049 atomic64_inc(&alg
->stats
.aead
.err_cnt
);
1051 atomic64_inc(&alg
->stats
.aead
.encrypt_cnt
);
1052 atomic64_add(cryptlen
, &alg
->stats
.aead
.encrypt_tlen
);
1054 crypto_alg_put(alg
);
1056 EXPORT_SYMBOL_GPL(crypto_stats_aead_encrypt
);
1058 void crypto_stats_aead_decrypt(unsigned int cryptlen
, struct crypto_alg
*alg
,
1061 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1062 atomic64_inc(&alg
->stats
.aead
.err_cnt
);
1064 atomic64_inc(&alg
->stats
.aead
.decrypt_cnt
);
1065 atomic64_add(cryptlen
, &alg
->stats
.aead
.decrypt_tlen
);
1067 crypto_alg_put(alg
);
1069 EXPORT_SYMBOL_GPL(crypto_stats_aead_decrypt
);
1071 void crypto_stats_akcipher_encrypt(unsigned int src_len
, int ret
,
1072 struct crypto_alg
*alg
)
1074 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1075 atomic64_inc(&alg
->stats
.akcipher
.err_cnt
);
1077 atomic64_inc(&alg
->stats
.akcipher
.encrypt_cnt
);
1078 atomic64_add(src_len
, &alg
->stats
.akcipher
.encrypt_tlen
);
1080 crypto_alg_put(alg
);
1082 EXPORT_SYMBOL_GPL(crypto_stats_akcipher_encrypt
);
1084 void crypto_stats_akcipher_decrypt(unsigned int src_len
, int ret
,
1085 struct crypto_alg
*alg
)
1087 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1088 atomic64_inc(&alg
->stats
.akcipher
.err_cnt
);
1090 atomic64_inc(&alg
->stats
.akcipher
.decrypt_cnt
);
1091 atomic64_add(src_len
, &alg
->stats
.akcipher
.decrypt_tlen
);
1093 crypto_alg_put(alg
);
1095 EXPORT_SYMBOL_GPL(crypto_stats_akcipher_decrypt
);
1097 void crypto_stats_akcipher_sign(int ret
, struct crypto_alg
*alg
)
1099 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
)
1100 atomic64_inc(&alg
->stats
.akcipher
.err_cnt
);
1102 atomic64_inc(&alg
->stats
.akcipher
.sign_cnt
);
1103 crypto_alg_put(alg
);
1105 EXPORT_SYMBOL_GPL(crypto_stats_akcipher_sign
);
1107 void crypto_stats_akcipher_verify(int ret
, struct crypto_alg
*alg
)
1109 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
)
1110 atomic64_inc(&alg
->stats
.akcipher
.err_cnt
);
1112 atomic64_inc(&alg
->stats
.akcipher
.verify_cnt
);
1113 crypto_alg_put(alg
);
1115 EXPORT_SYMBOL_GPL(crypto_stats_akcipher_verify
);
1117 void crypto_stats_compress(unsigned int slen
, int ret
, struct crypto_alg
*alg
)
1119 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1120 atomic64_inc(&alg
->stats
.compress
.err_cnt
);
1122 atomic64_inc(&alg
->stats
.compress
.compress_cnt
);
1123 atomic64_add(slen
, &alg
->stats
.compress
.compress_tlen
);
1125 crypto_alg_put(alg
);
1127 EXPORT_SYMBOL_GPL(crypto_stats_compress
);
1129 void crypto_stats_decompress(unsigned int slen
, int ret
, struct crypto_alg
*alg
)
1131 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1132 atomic64_inc(&alg
->stats
.compress
.err_cnt
);
1134 atomic64_inc(&alg
->stats
.compress
.decompress_cnt
);
1135 atomic64_add(slen
, &alg
->stats
.compress
.decompress_tlen
);
1137 crypto_alg_put(alg
);
1139 EXPORT_SYMBOL_GPL(crypto_stats_decompress
);
1141 void crypto_stats_ahash_update(unsigned int nbytes
, int ret
,
1142 struct crypto_alg
*alg
)
1144 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
)
1145 atomic64_inc(&alg
->stats
.hash
.err_cnt
);
1147 atomic64_add(nbytes
, &alg
->stats
.hash
.hash_tlen
);
1148 crypto_alg_put(alg
);
1150 EXPORT_SYMBOL_GPL(crypto_stats_ahash_update
);
1152 void crypto_stats_ahash_final(unsigned int nbytes
, int ret
,
1153 struct crypto_alg
*alg
)
1155 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1156 atomic64_inc(&alg
->stats
.hash
.err_cnt
);
1158 atomic64_inc(&alg
->stats
.hash
.hash_cnt
);
1159 atomic64_add(nbytes
, &alg
->stats
.hash
.hash_tlen
);
1161 crypto_alg_put(alg
);
1163 EXPORT_SYMBOL_GPL(crypto_stats_ahash_final
);
1165 void crypto_stats_kpp_set_secret(struct crypto_alg
*alg
, int ret
)
1168 atomic64_inc(&alg
->stats
.kpp
.err_cnt
);
1170 atomic64_inc(&alg
->stats
.kpp
.setsecret_cnt
);
1171 crypto_alg_put(alg
);
1173 EXPORT_SYMBOL_GPL(crypto_stats_kpp_set_secret
);
1175 void crypto_stats_kpp_generate_public_key(struct crypto_alg
*alg
, int ret
)
1178 atomic64_inc(&alg
->stats
.kpp
.err_cnt
);
1180 atomic64_inc(&alg
->stats
.kpp
.generate_public_key_cnt
);
1181 crypto_alg_put(alg
);
1183 EXPORT_SYMBOL_GPL(crypto_stats_kpp_generate_public_key
);
1185 void crypto_stats_kpp_compute_shared_secret(struct crypto_alg
*alg
, int ret
)
1188 atomic64_inc(&alg
->stats
.kpp
.err_cnt
);
1190 atomic64_inc(&alg
->stats
.kpp
.compute_shared_secret_cnt
);
1191 crypto_alg_put(alg
);
1193 EXPORT_SYMBOL_GPL(crypto_stats_kpp_compute_shared_secret
);
1195 void crypto_stats_rng_seed(struct crypto_alg
*alg
, int ret
)
1197 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
)
1198 atomic64_inc(&alg
->stats
.rng
.err_cnt
);
1200 atomic64_inc(&alg
->stats
.rng
.seed_cnt
);
1201 crypto_alg_put(alg
);
1203 EXPORT_SYMBOL_GPL(crypto_stats_rng_seed
);
1205 void crypto_stats_rng_generate(struct crypto_alg
*alg
, unsigned int dlen
,
1208 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1209 atomic64_inc(&alg
->stats
.rng
.err_cnt
);
1211 atomic64_inc(&alg
->stats
.rng
.generate_cnt
);
1212 atomic64_add(dlen
, &alg
->stats
.rng
.generate_tlen
);
1214 crypto_alg_put(alg
);
1216 EXPORT_SYMBOL_GPL(crypto_stats_rng_generate
);
1218 void crypto_stats_skcipher_encrypt(unsigned int cryptlen
, int ret
,
1219 struct crypto_alg
*alg
)
1221 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1222 atomic64_inc(&alg
->stats
.cipher
.err_cnt
);
1224 atomic64_inc(&alg
->stats
.cipher
.encrypt_cnt
);
1225 atomic64_add(cryptlen
, &alg
->stats
.cipher
.encrypt_tlen
);
1227 crypto_alg_put(alg
);
1229 EXPORT_SYMBOL_GPL(crypto_stats_skcipher_encrypt
);
1231 void crypto_stats_skcipher_decrypt(unsigned int cryptlen
, int ret
,
1232 struct crypto_alg
*alg
)
1234 if (ret
&& ret
!= -EINPROGRESS
&& ret
!= -EBUSY
) {
1235 atomic64_inc(&alg
->stats
.cipher
.err_cnt
);
1237 atomic64_inc(&alg
->stats
.cipher
.decrypt_cnt
);
1238 atomic64_add(cryptlen
, &alg
->stats
.cipher
.decrypt_tlen
);
1240 crypto_alg_put(alg
);
1242 EXPORT_SYMBOL_GPL(crypto_stats_skcipher_decrypt
);
1245 static int __init
crypto_algapi_init(void)
1251 static void __exit
crypto_algapi_exit(void)
1256 module_init(crypto_algapi_init
);
1257 module_exit(crypto_algapi_exit
);
1259 MODULE_LICENSE("GPL");
1260 MODULE_DESCRIPTION("Cryptographic algorithms API");