2 /* $OpenBSD: xform.h,v 1.8 2001/08/28 12:20:43 ben Exp $ */
5 * The author of this code is Angelos D. Keromytis (angelos@cis.upenn.edu)
7 * This code was written by Angelos D. Keromytis in Athens, Greece, in
8 * February 2000. Network Security Technologies Inc. (NSTI) kindly
9 * supported the development of this code.
11 * Copyright (c) 2000 Angelos D. Keromytis
12 * Copyright (c) 2014 The FreeBSD Foundation
13 * All rights reserved.
15 * Portions of this software were developed by John-Mark Gurney
16 * under sponsorship of the FreeBSD Foundation and
17 * Rubicon Communications, LLC (Netgate).
19 * Permission to use, copy, and modify this software without fee
20 * is hereby granted, provided that this entire notice is included in
21 * all source code copies of any software which is or includes a copy or
22 * modification of this software.
24 * THIS SOFTWARE IS BEING PROVIDED "AS IS", WITHOUT ANY EXPRESS OR
25 * IMPLIED WARRANTY. IN PARTICULAR, NONE OF THE AUTHORS MAKES ANY
26 * REPRESENTATION OR WARRANTY OF ANY KIND CONCERNING THE
27 * MERCHANTABILITY OF THIS SOFTWARE OR ITS FITNESS FOR ANY PARTICULAR
31 #ifndef _CRYPTO_XFORM_ENC_H_
32 #define _CRYPTO_XFORM_ENC_H_
34 #include <sys/malloc.h>
35 #include <sys/errno.h>
36 #include <crypto/rijndael/rijndael.h>
37 #include <crypto/camellia/camellia.h>
38 #include <opencrypto/cryptodev.h>
43 #define AESICM_BLOCKSIZE AES_BLOCK_LEN
44 #define AES_XTS_BLOCKSIZE 16
45 #define AES_XTS_IVSIZE 8
46 #define AES_XTS_ALPHA 0x87 /* GF(2^128) generator polynomial */
53 u_int16_t blocksize; /* Required input block size -- 1 for stream ciphers. */
55 u_int16_t minkey, maxkey;
56 void (*encrypt) (void *, const uint8_t *, uint8_t *);
57 void (*decrypt) (void *, const uint8_t *, uint8_t *);
58 int (*setkey) (void *, const uint8_t *, int len);
59 void (*reinit) (void *, const u_int8_t *);
61 * Encrypt/decrypt 1+ blocks of input -- total size is 'len' bytes.
62 * Len is guaranteed to be a multiple of the defined 'blocksize'.
63 * Optional interface -- most useful for stream ciphers with a small
66 void (*encrypt_multi) (void *, const uint8_t *, uint8_t *, size_t len);
67 void (*decrypt_multi) (void *, const uint8_t *, uint8_t *, size_t len);
71 extern struct enc_xform enc_xform_null;
72 extern struct enc_xform enc_xform_rijndael128;
73 extern struct enc_xform enc_xform_aes_icm;
74 extern struct enc_xform enc_xform_aes_nist_gcm;
75 extern struct enc_xform enc_xform_aes_nist_gmac;
76 extern struct enc_xform enc_xform_aes_xts;
77 extern struct enc_xform enc_xform_camellia;
78 extern struct enc_xform enc_xform_chacha20;
79 extern struct enc_xform enc_xform_ccm;
82 u_int32_t ac_ek[4*(RIJNDAEL_MAXNR + 1)];
83 /* ac_block is initialized to IV */
84 u_int8_t ac_block[AESICM_BLOCKSIZE];
91 u_int8_t tweak[AES_XTS_BLOCKSIZE];
94 #endif /* _CRYPTO_XFORM_ENC_H_ */