1 .\" $NetBSD: consttime_memequal.3,v 1.5 2015/03/23 07:41:16 apb Exp $
3 .\" Copyright (c) 2013 The NetBSD Foundation, Inc.
4 .\" All rights reserved.
6 .\" This documentation is derived from text contributed to The NetBSD
7 .\" Foundation by Taylor R. Campbell.
9 .\" Redistribution and use in source and binary forms, with or without
10 .\" modification, are permitted provided that the following conditions
12 .\" 1. Redistributions of source code must retain the above copyright
13 .\" notice, this list of conditions and the following disclaimer.
14 .\" 2. Redistributions in binary form must reproduce the above copyright
15 .\" notice, this list of conditions and the following disclaimer in the
16 .\" documentation and/or other materials provided with the distribution.
18 .\" THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
19 .\" ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
20 .\" TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
21 .\" PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
22 .\" BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
23 .\" CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
24 .\" SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
25 .\" INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
26 .\" CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
27 .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
28 .\" POSSIBILITY OF SUCH DAMAGE.
31 .Dt CONSTTIME_MEMEQUAL 3
34 .Nm consttime_memequal
35 .Nd compare byte strings for equality without timing leaks
41 .Fn consttime_memequal "void *b1" "void *b2" "size_t len"
44 .Fn consttime_memequal
51 for equality, returning 0 if they are distinct and 1 if they are
55 .Fn consttime_memequal
58 but not on the data at
63 .Fn consttime_memequal
64 is appropriate for comparing cryptographic secrets, hashes, message
65 authentication codes, etc., without leaking information about them
66 through a timing side channel.
68 .Fn consttime_memequal
71 meaning time that does not vary depending on the data it processes.
75 .Fn consttime_memequal
76 does not return a lexicographic ordering on the data at
80 it tells only whether they are equal.
84 function, because all known use cases that require
86 memory comparison also require only comparison for equality,
87 not lexicographic ordering.
89 .Xr explicit_memset 3 ,
93 .Fn consttime_memequal