Xuyi Wang / wolfSSL

Dependents:   OS

Committer:
wolfSSL
Date:
Tue Aug 22 10:48:22 2017 +0000
Revision:
13:f67a6c6013ca
wolfSSL3.12.0 with TLS1.3

Who changed what in which revision?

UserRevisionLine numberNew contents of line
wolfSSL 13:f67a6c6013ca 1 /* ripemd.c
wolfSSL 13:f67a6c6013ca 2 *
wolfSSL 13:f67a6c6013ca 3 * Copyright (C) 2006-2016 wolfSSL Inc.
wolfSSL 13:f67a6c6013ca 4 *
wolfSSL 13:f67a6c6013ca 5 * This file is part of wolfSSL.
wolfSSL 13:f67a6c6013ca 6 *
wolfSSL 13:f67a6c6013ca 7 * wolfSSL is free software; you can redistribute it and/or modify
wolfSSL 13:f67a6c6013ca 8 * it under the terms of the GNU General Public License as published by
wolfSSL 13:f67a6c6013ca 9 * the Free Software Foundation; either version 2 of the License, or
wolfSSL 13:f67a6c6013ca 10 * (at your option) any later version.
wolfSSL 13:f67a6c6013ca 11 *
wolfSSL 13:f67a6c6013ca 12 * wolfSSL is distributed in the hope that it will be useful,
wolfSSL 13:f67a6c6013ca 13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
wolfSSL 13:f67a6c6013ca 14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
wolfSSL 13:f67a6c6013ca 15 * GNU General Public License for more details.
wolfSSL 13:f67a6c6013ca 16 *
wolfSSL 13:f67a6c6013ca 17 * You should have received a copy of the GNU General Public License
wolfSSL 13:f67a6c6013ca 18 * along with this program; if not, write to the Free Software
wolfSSL 13:f67a6c6013ca 19 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1335, USA
wolfSSL 13:f67a6c6013ca 20 */
wolfSSL 13:f67a6c6013ca 21
wolfSSL 13:f67a6c6013ca 22
wolfSSL 13:f67a6c6013ca 23
wolfSSL 13:f67a6c6013ca 24 #ifdef HAVE_CONFIG_H
wolfSSL 13:f67a6c6013ca 25 #include <config.h>
wolfSSL 13:f67a6c6013ca 26 #endif
wolfSSL 13:f67a6c6013ca 27
wolfSSL 13:f67a6c6013ca 28 #include <wolfssl/wolfcrypt/settings.h>
wolfSSL 13:f67a6c6013ca 29
wolfSSL 13:f67a6c6013ca 30 #ifdef WOLFSSL_RIPEMD
wolfSSL 13:f67a6c6013ca 31
wolfSSL 13:f67a6c6013ca 32 #include <wolfssl/wolfcrypt/ripemd.h>
wolfSSL 13:f67a6c6013ca 33 #ifdef NO_INLINE
wolfSSL 13:f67a6c6013ca 34 #include <wolfssl/wolfcrypt/misc.h>
wolfSSL 13:f67a6c6013ca 35 #else
wolfSSL 13:f67a6c6013ca 36 #define WOLFSSL_MISC_INCLUDED
wolfSSL 13:f67a6c6013ca 37 #include <wolfcrypt/src/misc.c>
wolfSSL 13:f67a6c6013ca 38 #endif
wolfSSL 13:f67a6c6013ca 39
wolfSSL 13:f67a6c6013ca 40 #include <wolfssl/wolfcrypt/error-crypt.h>
wolfSSL 13:f67a6c6013ca 41
wolfSSL 13:f67a6c6013ca 42 int wc_InitRipeMd(RipeMd* ripemd)
wolfSSL 13:f67a6c6013ca 43 {
wolfSSL 13:f67a6c6013ca 44 if (ripemd == NULL) {
wolfSSL 13:f67a6c6013ca 45 return BAD_FUNC_ARG;
wolfSSL 13:f67a6c6013ca 46 }
wolfSSL 13:f67a6c6013ca 47
wolfSSL 13:f67a6c6013ca 48 ripemd->digest[0] = 0x67452301L;
wolfSSL 13:f67a6c6013ca 49 ripemd->digest[1] = 0xEFCDAB89L;
wolfSSL 13:f67a6c6013ca 50 ripemd->digest[2] = 0x98BADCFEL;
wolfSSL 13:f67a6c6013ca 51 ripemd->digest[3] = 0x10325476L;
wolfSSL 13:f67a6c6013ca 52 ripemd->digest[4] = 0xC3D2E1F0L;
wolfSSL 13:f67a6c6013ca 53
wolfSSL 13:f67a6c6013ca 54 ripemd->buffLen = 0;
wolfSSL 13:f67a6c6013ca 55 ripemd->loLen = 0;
wolfSSL 13:f67a6c6013ca 56 ripemd->hiLen = 0;
wolfSSL 13:f67a6c6013ca 57
wolfSSL 13:f67a6c6013ca 58 return 0;
wolfSSL 13:f67a6c6013ca 59 }
wolfSSL 13:f67a6c6013ca 60
wolfSSL 13:f67a6c6013ca 61
wolfSSL 13:f67a6c6013ca 62 /* for all */
wolfSSL 13:f67a6c6013ca 63 #define F(x, y, z) (x ^ y ^ z)
wolfSSL 13:f67a6c6013ca 64 #define G(x, y, z) (z ^ (x & (y^z)))
wolfSSL 13:f67a6c6013ca 65 #define H(x, y, z) (z ^ (x | ~y))
wolfSSL 13:f67a6c6013ca 66 #define I(x, y, z) (y ^ (z & (x^y)))
wolfSSL 13:f67a6c6013ca 67 #define J(x, y, z) (x ^ (y | ~z))
wolfSSL 13:f67a6c6013ca 68
wolfSSL 13:f67a6c6013ca 69 #define k0 0
wolfSSL 13:f67a6c6013ca 70 #define k1 0x5a827999
wolfSSL 13:f67a6c6013ca 71 #define k2 0x6ed9eba1
wolfSSL 13:f67a6c6013ca 72 #define k3 0x8f1bbcdc
wolfSSL 13:f67a6c6013ca 73 #define k4 0xa953fd4e
wolfSSL 13:f67a6c6013ca 74 #define k5 0x50a28be6
wolfSSL 13:f67a6c6013ca 75 #define k6 0x5c4dd124
wolfSSL 13:f67a6c6013ca 76 #define k7 0x6d703ef3
wolfSSL 13:f67a6c6013ca 77 #define k8 0x7a6d76e9
wolfSSL 13:f67a6c6013ca 78 #define k9 0
wolfSSL 13:f67a6c6013ca 79
wolfSSL 13:f67a6c6013ca 80 /* for 160 and 320 */
wolfSSL 13:f67a6c6013ca 81 #define Subround(f, a, b, c, d, e, x, s, k) \
wolfSSL 13:f67a6c6013ca 82 a += f(b, c, d) + x + k;\
wolfSSL 13:f67a6c6013ca 83 a = rotlFixed((word32)a, s) + e;\
wolfSSL 13:f67a6c6013ca 84 c = rotlFixed((word32)c, 10U)
wolfSSL 13:f67a6c6013ca 85
wolfSSL 13:f67a6c6013ca 86 static void Transform(RipeMd* ripemd)
wolfSSL 13:f67a6c6013ca 87 {
wolfSSL 13:f67a6c6013ca 88 word32 a1, b1, c1, d1, e1, a2, b2, c2, d2, e2;
wolfSSL 13:f67a6c6013ca 89 a1 = a2 = ripemd->digest[0];
wolfSSL 13:f67a6c6013ca 90 b1 = b2 = ripemd->digest[1];
wolfSSL 13:f67a6c6013ca 91 c1 = c2 = ripemd->digest[2];
wolfSSL 13:f67a6c6013ca 92 d1 = d2 = ripemd->digest[3];
wolfSSL 13:f67a6c6013ca 93 e1 = e2 = ripemd->digest[4];
wolfSSL 13:f67a6c6013ca 94
wolfSSL 13:f67a6c6013ca 95 Subround(F, a1, b1, c1, d1, e1, ripemd->buffer[ 0], 11, k0);
wolfSSL 13:f67a6c6013ca 96 Subround(F, e1, a1, b1, c1, d1, ripemd->buffer[ 1], 14, k0);
wolfSSL 13:f67a6c6013ca 97 Subround(F, d1, e1, a1, b1, c1, ripemd->buffer[ 2], 15, k0);
wolfSSL 13:f67a6c6013ca 98 Subround(F, c1, d1, e1, a1, b1, ripemd->buffer[ 3], 12, k0);
wolfSSL 13:f67a6c6013ca 99 Subround(F, b1, c1, d1, e1, a1, ripemd->buffer[ 4], 5, k0);
wolfSSL 13:f67a6c6013ca 100 Subround(F, a1, b1, c1, d1, e1, ripemd->buffer[ 5], 8, k0);
wolfSSL 13:f67a6c6013ca 101 Subround(F, e1, a1, b1, c1, d1, ripemd->buffer[ 6], 7, k0);
wolfSSL 13:f67a6c6013ca 102 Subround(F, d1, e1, a1, b1, c1, ripemd->buffer[ 7], 9, k0);
wolfSSL 13:f67a6c6013ca 103 Subround(F, c1, d1, e1, a1, b1, ripemd->buffer[ 8], 11, k0);
wolfSSL 13:f67a6c6013ca 104 Subround(F, b1, c1, d1, e1, a1, ripemd->buffer[ 9], 13, k0);
wolfSSL 13:f67a6c6013ca 105 Subround(F, a1, b1, c1, d1, e1, ripemd->buffer[10], 14, k0);
wolfSSL 13:f67a6c6013ca 106 Subround(F, e1, a1, b1, c1, d1, ripemd->buffer[11], 15, k0);
wolfSSL 13:f67a6c6013ca 107 Subround(F, d1, e1, a1, b1, c1, ripemd->buffer[12], 6, k0);
wolfSSL 13:f67a6c6013ca 108 Subround(F, c1, d1, e1, a1, b1, ripemd->buffer[13], 7, k0);
wolfSSL 13:f67a6c6013ca 109 Subround(F, b1, c1, d1, e1, a1, ripemd->buffer[14], 9, k0);
wolfSSL 13:f67a6c6013ca 110 Subround(F, a1, b1, c1, d1, e1, ripemd->buffer[15], 8, k0);
wolfSSL 13:f67a6c6013ca 111
wolfSSL 13:f67a6c6013ca 112 Subround(G, e1, a1, b1, c1, d1, ripemd->buffer[ 7], 7, k1);
wolfSSL 13:f67a6c6013ca 113 Subround(G, d1, e1, a1, b1, c1, ripemd->buffer[ 4], 6, k1);
wolfSSL 13:f67a6c6013ca 114 Subround(G, c1, d1, e1, a1, b1, ripemd->buffer[13], 8, k1);
wolfSSL 13:f67a6c6013ca 115 Subround(G, b1, c1, d1, e1, a1, ripemd->buffer[ 1], 13, k1);
wolfSSL 13:f67a6c6013ca 116 Subround(G, a1, b1, c1, d1, e1, ripemd->buffer[10], 11, k1);
wolfSSL 13:f67a6c6013ca 117 Subround(G, e1, a1, b1, c1, d1, ripemd->buffer[ 6], 9, k1);
wolfSSL 13:f67a6c6013ca 118 Subround(G, d1, e1, a1, b1, c1, ripemd->buffer[15], 7, k1);
wolfSSL 13:f67a6c6013ca 119 Subround(G, c1, d1, e1, a1, b1, ripemd->buffer[ 3], 15, k1);
wolfSSL 13:f67a6c6013ca 120 Subround(G, b1, c1, d1, e1, a1, ripemd->buffer[12], 7, k1);
wolfSSL 13:f67a6c6013ca 121 Subround(G, a1, b1, c1, d1, e1, ripemd->buffer[ 0], 12, k1);
wolfSSL 13:f67a6c6013ca 122 Subround(G, e1, a1, b1, c1, d1, ripemd->buffer[ 9], 15, k1);
wolfSSL 13:f67a6c6013ca 123 Subround(G, d1, e1, a1, b1, c1, ripemd->buffer[ 5], 9, k1);
wolfSSL 13:f67a6c6013ca 124 Subround(G, c1, d1, e1, a1, b1, ripemd->buffer[ 2], 11, k1);
wolfSSL 13:f67a6c6013ca 125 Subround(G, b1, c1, d1, e1, a1, ripemd->buffer[14], 7, k1);
wolfSSL 13:f67a6c6013ca 126 Subround(G, a1, b1, c1, d1, e1, ripemd->buffer[11], 13, k1);
wolfSSL 13:f67a6c6013ca 127 Subround(G, e1, a1, b1, c1, d1, ripemd->buffer[ 8], 12, k1);
wolfSSL 13:f67a6c6013ca 128
wolfSSL 13:f67a6c6013ca 129 Subround(H, d1, e1, a1, b1, c1, ripemd->buffer[ 3], 11, k2);
wolfSSL 13:f67a6c6013ca 130 Subround(H, c1, d1, e1, a1, b1, ripemd->buffer[10], 13, k2);
wolfSSL 13:f67a6c6013ca 131 Subround(H, b1, c1, d1, e1, a1, ripemd->buffer[14], 6, k2);
wolfSSL 13:f67a6c6013ca 132 Subround(H, a1, b1, c1, d1, e1, ripemd->buffer[ 4], 7, k2);
wolfSSL 13:f67a6c6013ca 133 Subround(H, e1, a1, b1, c1, d1, ripemd->buffer[ 9], 14, k2);
wolfSSL 13:f67a6c6013ca 134 Subround(H, d1, e1, a1, b1, c1, ripemd->buffer[15], 9, k2);
wolfSSL 13:f67a6c6013ca 135 Subround(H, c1, d1, e1, a1, b1, ripemd->buffer[ 8], 13, k2);
wolfSSL 13:f67a6c6013ca 136 Subround(H, b1, c1, d1, e1, a1, ripemd->buffer[ 1], 15, k2);
wolfSSL 13:f67a6c6013ca 137 Subround(H, a1, b1, c1, d1, e1, ripemd->buffer[ 2], 14, k2);
wolfSSL 13:f67a6c6013ca 138 Subround(H, e1, a1, b1, c1, d1, ripemd->buffer[ 7], 8, k2);
wolfSSL 13:f67a6c6013ca 139 Subround(H, d1, e1, a1, b1, c1, ripemd->buffer[ 0], 13, k2);
wolfSSL 13:f67a6c6013ca 140 Subround(H, c1, d1, e1, a1, b1, ripemd->buffer[ 6], 6, k2);
wolfSSL 13:f67a6c6013ca 141 Subround(H, b1, c1, d1, e1, a1, ripemd->buffer[13], 5, k2);
wolfSSL 13:f67a6c6013ca 142 Subround(H, a1, b1, c1, d1, e1, ripemd->buffer[11], 12, k2);
wolfSSL 13:f67a6c6013ca 143 Subround(H, e1, a1, b1, c1, d1, ripemd->buffer[ 5], 7, k2);
wolfSSL 13:f67a6c6013ca 144 Subround(H, d1, e1, a1, b1, c1, ripemd->buffer[12], 5, k2);
wolfSSL 13:f67a6c6013ca 145
wolfSSL 13:f67a6c6013ca 146 Subround(I, c1, d1, e1, a1, b1, ripemd->buffer[ 1], 11, k3);
wolfSSL 13:f67a6c6013ca 147 Subround(I, b1, c1, d1, e1, a1, ripemd->buffer[ 9], 12, k3);
wolfSSL 13:f67a6c6013ca 148 Subround(I, a1, b1, c1, d1, e1, ripemd->buffer[11], 14, k3);
wolfSSL 13:f67a6c6013ca 149 Subround(I, e1, a1, b1, c1, d1, ripemd->buffer[10], 15, k3);
wolfSSL 13:f67a6c6013ca 150 Subround(I, d1, e1, a1, b1, c1, ripemd->buffer[ 0], 14, k3);
wolfSSL 13:f67a6c6013ca 151 Subround(I, c1, d1, e1, a1, b1, ripemd->buffer[ 8], 15, k3);
wolfSSL 13:f67a6c6013ca 152 Subround(I, b1, c1, d1, e1, a1, ripemd->buffer[12], 9, k3);
wolfSSL 13:f67a6c6013ca 153 Subround(I, a1, b1, c1, d1, e1, ripemd->buffer[ 4], 8, k3);
wolfSSL 13:f67a6c6013ca 154 Subround(I, e1, a1, b1, c1, d1, ripemd->buffer[13], 9, k3);
wolfSSL 13:f67a6c6013ca 155 Subround(I, d1, e1, a1, b1, c1, ripemd->buffer[ 3], 14, k3);
wolfSSL 13:f67a6c6013ca 156 Subround(I, c1, d1, e1, a1, b1, ripemd->buffer[ 7], 5, k3);
wolfSSL 13:f67a6c6013ca 157 Subround(I, b1, c1, d1, e1, a1, ripemd->buffer[15], 6, k3);
wolfSSL 13:f67a6c6013ca 158 Subround(I, a1, b1, c1, d1, e1, ripemd->buffer[14], 8, k3);
wolfSSL 13:f67a6c6013ca 159 Subround(I, e1, a1, b1, c1, d1, ripemd->buffer[ 5], 6, k3);
wolfSSL 13:f67a6c6013ca 160 Subround(I, d1, e1, a1, b1, c1, ripemd->buffer[ 6], 5, k3);
wolfSSL 13:f67a6c6013ca 161 Subround(I, c1, d1, e1, a1, b1, ripemd->buffer[ 2], 12, k3);
wolfSSL 13:f67a6c6013ca 162
wolfSSL 13:f67a6c6013ca 163 Subround(J, b1, c1, d1, e1, a1, ripemd->buffer[ 4], 9, k4);
wolfSSL 13:f67a6c6013ca 164 Subround(J, a1, b1, c1, d1, e1, ripemd->buffer[ 0], 15, k4);
wolfSSL 13:f67a6c6013ca 165 Subround(J, e1, a1, b1, c1, d1, ripemd->buffer[ 5], 5, k4);
wolfSSL 13:f67a6c6013ca 166 Subround(J, d1, e1, a1, b1, c1, ripemd->buffer[ 9], 11, k4);
wolfSSL 13:f67a6c6013ca 167 Subround(J, c1, d1, e1, a1, b1, ripemd->buffer[ 7], 6, k4);
wolfSSL 13:f67a6c6013ca 168 Subround(J, b1, c1, d1, e1, a1, ripemd->buffer[12], 8, k4);
wolfSSL 13:f67a6c6013ca 169 Subround(J, a1, b1, c1, d1, e1, ripemd->buffer[ 2], 13, k4);
wolfSSL 13:f67a6c6013ca 170 Subround(J, e1, a1, b1, c1, d1, ripemd->buffer[10], 12, k4);
wolfSSL 13:f67a6c6013ca 171 Subround(J, d1, e1, a1, b1, c1, ripemd->buffer[14], 5, k4);
wolfSSL 13:f67a6c6013ca 172 Subround(J, c1, d1, e1, a1, b1, ripemd->buffer[ 1], 12, k4);
wolfSSL 13:f67a6c6013ca 173 Subround(J, b1, c1, d1, e1, a1, ripemd->buffer[ 3], 13, k4);
wolfSSL 13:f67a6c6013ca 174 Subround(J, a1, b1, c1, d1, e1, ripemd->buffer[ 8], 14, k4);
wolfSSL 13:f67a6c6013ca 175 Subround(J, e1, a1, b1, c1, d1, ripemd->buffer[11], 11, k4);
wolfSSL 13:f67a6c6013ca 176 Subround(J, d1, e1, a1, b1, c1, ripemd->buffer[ 6], 8, k4);
wolfSSL 13:f67a6c6013ca 177 Subround(J, c1, d1, e1, a1, b1, ripemd->buffer[15], 5, k4);
wolfSSL 13:f67a6c6013ca 178 Subround(J, b1, c1, d1, e1, a1, ripemd->buffer[13], 6, k4);
wolfSSL 13:f67a6c6013ca 179
wolfSSL 13:f67a6c6013ca 180 Subround(J, a2, b2, c2, d2, e2, ripemd->buffer[ 5], 8, k5);
wolfSSL 13:f67a6c6013ca 181 Subround(J, e2, a2, b2, c2, d2, ripemd->buffer[14], 9, k5);
wolfSSL 13:f67a6c6013ca 182 Subround(J, d2, e2, a2, b2, c2, ripemd->buffer[ 7], 9, k5);
wolfSSL 13:f67a6c6013ca 183 Subround(J, c2, d2, e2, a2, b2, ripemd->buffer[ 0], 11, k5);
wolfSSL 13:f67a6c6013ca 184 Subround(J, b2, c2, d2, e2, a2, ripemd->buffer[ 9], 13, k5);
wolfSSL 13:f67a6c6013ca 185 Subround(J, a2, b2, c2, d2, e2, ripemd->buffer[ 2], 15, k5);
wolfSSL 13:f67a6c6013ca 186 Subround(J, e2, a2, b2, c2, d2, ripemd->buffer[11], 15, k5);
wolfSSL 13:f67a6c6013ca 187 Subround(J, d2, e2, a2, b2, c2, ripemd->buffer[ 4], 5, k5);
wolfSSL 13:f67a6c6013ca 188 Subround(J, c2, d2, e2, a2, b2, ripemd->buffer[13], 7, k5);
wolfSSL 13:f67a6c6013ca 189 Subround(J, b2, c2, d2, e2, a2, ripemd->buffer[ 6], 7, k5);
wolfSSL 13:f67a6c6013ca 190 Subround(J, a2, b2, c2, d2, e2, ripemd->buffer[15], 8, k5);
wolfSSL 13:f67a6c6013ca 191 Subround(J, e2, a2, b2, c2, d2, ripemd->buffer[ 8], 11, k5);
wolfSSL 13:f67a6c6013ca 192 Subround(J, d2, e2, a2, b2, c2, ripemd->buffer[ 1], 14, k5);
wolfSSL 13:f67a6c6013ca 193 Subround(J, c2, d2, e2, a2, b2, ripemd->buffer[10], 14, k5);
wolfSSL 13:f67a6c6013ca 194 Subround(J, b2, c2, d2, e2, a2, ripemd->buffer[ 3], 12, k5);
wolfSSL 13:f67a6c6013ca 195 Subround(J, a2, b2, c2, d2, e2, ripemd->buffer[12], 6, k5);
wolfSSL 13:f67a6c6013ca 196
wolfSSL 13:f67a6c6013ca 197 Subround(I, e2, a2, b2, c2, d2, ripemd->buffer[ 6], 9, k6);
wolfSSL 13:f67a6c6013ca 198 Subround(I, d2, e2, a2, b2, c2, ripemd->buffer[11], 13, k6);
wolfSSL 13:f67a6c6013ca 199 Subround(I, c2, d2, e2, a2, b2, ripemd->buffer[ 3], 15, k6);
wolfSSL 13:f67a6c6013ca 200 Subround(I, b2, c2, d2, e2, a2, ripemd->buffer[ 7], 7, k6);
wolfSSL 13:f67a6c6013ca 201 Subround(I, a2, b2, c2, d2, e2, ripemd->buffer[ 0], 12, k6);
wolfSSL 13:f67a6c6013ca 202 Subround(I, e2, a2, b2, c2, d2, ripemd->buffer[13], 8, k6);
wolfSSL 13:f67a6c6013ca 203 Subround(I, d2, e2, a2, b2, c2, ripemd->buffer[ 5], 9, k6);
wolfSSL 13:f67a6c6013ca 204 Subround(I, c2, d2, e2, a2, b2, ripemd->buffer[10], 11, k6);
wolfSSL 13:f67a6c6013ca 205 Subround(I, b2, c2, d2, e2, a2, ripemd->buffer[14], 7, k6);
wolfSSL 13:f67a6c6013ca 206 Subround(I, a2, b2, c2, d2, e2, ripemd->buffer[15], 7, k6);
wolfSSL 13:f67a6c6013ca 207 Subround(I, e2, a2, b2, c2, d2, ripemd->buffer[ 8], 12, k6);
wolfSSL 13:f67a6c6013ca 208 Subround(I, d2, e2, a2, b2, c2, ripemd->buffer[12], 7, k6);
wolfSSL 13:f67a6c6013ca 209 Subround(I, c2, d2, e2, a2, b2, ripemd->buffer[ 4], 6, k6);
wolfSSL 13:f67a6c6013ca 210 Subround(I, b2, c2, d2, e2, a2, ripemd->buffer[ 9], 15, k6);
wolfSSL 13:f67a6c6013ca 211 Subround(I, a2, b2, c2, d2, e2, ripemd->buffer[ 1], 13, k6);
wolfSSL 13:f67a6c6013ca 212 Subround(I, e2, a2, b2, c2, d2, ripemd->buffer[ 2], 11, k6);
wolfSSL 13:f67a6c6013ca 213
wolfSSL 13:f67a6c6013ca 214 Subround(H, d2, e2, a2, b2, c2, ripemd->buffer[15], 9, k7);
wolfSSL 13:f67a6c6013ca 215 Subround(H, c2, d2, e2, a2, b2, ripemd->buffer[ 5], 7, k7);
wolfSSL 13:f67a6c6013ca 216 Subround(H, b2, c2, d2, e2, a2, ripemd->buffer[ 1], 15, k7);
wolfSSL 13:f67a6c6013ca 217 Subround(H, a2, b2, c2, d2, e2, ripemd->buffer[ 3], 11, k7);
wolfSSL 13:f67a6c6013ca 218 Subround(H, e2, a2, b2, c2, d2, ripemd->buffer[ 7], 8, k7);
wolfSSL 13:f67a6c6013ca 219 Subround(H, d2, e2, a2, b2, c2, ripemd->buffer[14], 6, k7);
wolfSSL 13:f67a6c6013ca 220 Subround(H, c2, d2, e2, a2, b2, ripemd->buffer[ 6], 6, k7);
wolfSSL 13:f67a6c6013ca 221 Subround(H, b2, c2, d2, e2, a2, ripemd->buffer[ 9], 14, k7);
wolfSSL 13:f67a6c6013ca 222 Subround(H, a2, b2, c2, d2, e2, ripemd->buffer[11], 12, k7);
wolfSSL 13:f67a6c6013ca 223 Subround(H, e2, a2, b2, c2, d2, ripemd->buffer[ 8], 13, k7);
wolfSSL 13:f67a6c6013ca 224 Subround(H, d2, e2, a2, b2, c2, ripemd->buffer[12], 5, k7);
wolfSSL 13:f67a6c6013ca 225 Subround(H, c2, d2, e2, a2, b2, ripemd->buffer[ 2], 14, k7);
wolfSSL 13:f67a6c6013ca 226 Subround(H, b2, c2, d2, e2, a2, ripemd->buffer[10], 13, k7);
wolfSSL 13:f67a6c6013ca 227 Subround(H, a2, b2, c2, d2, e2, ripemd->buffer[ 0], 13, k7);
wolfSSL 13:f67a6c6013ca 228 Subround(H, e2, a2, b2, c2, d2, ripemd->buffer[ 4], 7, k7);
wolfSSL 13:f67a6c6013ca 229 Subround(H, d2, e2, a2, b2, c2, ripemd->buffer[13], 5, k7);
wolfSSL 13:f67a6c6013ca 230
wolfSSL 13:f67a6c6013ca 231 Subround(G, c2, d2, e2, a2, b2, ripemd->buffer[ 8], 15, k8);
wolfSSL 13:f67a6c6013ca 232 Subround(G, b2, c2, d2, e2, a2, ripemd->buffer[ 6], 5, k8);
wolfSSL 13:f67a6c6013ca 233 Subround(G, a2, b2, c2, d2, e2, ripemd->buffer[ 4], 8, k8);
wolfSSL 13:f67a6c6013ca 234 Subround(G, e2, a2, b2, c2, d2, ripemd->buffer[ 1], 11, k8);
wolfSSL 13:f67a6c6013ca 235 Subround(G, d2, e2, a2, b2, c2, ripemd->buffer[ 3], 14, k8);
wolfSSL 13:f67a6c6013ca 236 Subround(G, c2, d2, e2, a2, b2, ripemd->buffer[11], 14, k8);
wolfSSL 13:f67a6c6013ca 237 Subround(G, b2, c2, d2, e2, a2, ripemd->buffer[15], 6, k8);
wolfSSL 13:f67a6c6013ca 238 Subround(G, a2, b2, c2, d2, e2, ripemd->buffer[ 0], 14, k8);
wolfSSL 13:f67a6c6013ca 239 Subround(G, e2, a2, b2, c2, d2, ripemd->buffer[ 5], 6, k8);
wolfSSL 13:f67a6c6013ca 240 Subround(G, d2, e2, a2, b2, c2, ripemd->buffer[12], 9, k8);
wolfSSL 13:f67a6c6013ca 241 Subround(G, c2, d2, e2, a2, b2, ripemd->buffer[ 2], 12, k8);
wolfSSL 13:f67a6c6013ca 242 Subround(G, b2, c2, d2, e2, a2, ripemd->buffer[13], 9, k8);
wolfSSL 13:f67a6c6013ca 243 Subround(G, a2, b2, c2, d2, e2, ripemd->buffer[ 9], 12, k8);
wolfSSL 13:f67a6c6013ca 244 Subround(G, e2, a2, b2, c2, d2, ripemd->buffer[ 7], 5, k8);
wolfSSL 13:f67a6c6013ca 245 Subround(G, d2, e2, a2, b2, c2, ripemd->buffer[10], 15, k8);
wolfSSL 13:f67a6c6013ca 246 Subround(G, c2, d2, e2, a2, b2, ripemd->buffer[14], 8, k8);
wolfSSL 13:f67a6c6013ca 247
wolfSSL 13:f67a6c6013ca 248 Subround(F, b2, c2, d2, e2, a2, ripemd->buffer[12], 8, k9);
wolfSSL 13:f67a6c6013ca 249 Subround(F, a2, b2, c2, d2, e2, ripemd->buffer[15], 5, k9);
wolfSSL 13:f67a6c6013ca 250 Subround(F, e2, a2, b2, c2, d2, ripemd->buffer[10], 12, k9);
wolfSSL 13:f67a6c6013ca 251 Subround(F, d2, e2, a2, b2, c2, ripemd->buffer[ 4], 9, k9);
wolfSSL 13:f67a6c6013ca 252 Subround(F, c2, d2, e2, a2, b2, ripemd->buffer[ 1], 12, k9);
wolfSSL 13:f67a6c6013ca 253 Subround(F, b2, c2, d2, e2, a2, ripemd->buffer[ 5], 5, k9);
wolfSSL 13:f67a6c6013ca 254 Subround(F, a2, b2, c2, d2, e2, ripemd->buffer[ 8], 14, k9);
wolfSSL 13:f67a6c6013ca 255 Subround(F, e2, a2, b2, c2, d2, ripemd->buffer[ 7], 6, k9);
wolfSSL 13:f67a6c6013ca 256 Subround(F, d2, e2, a2, b2, c2, ripemd->buffer[ 6], 8, k9);
wolfSSL 13:f67a6c6013ca 257 Subround(F, c2, d2, e2, a2, b2, ripemd->buffer[ 2], 13, k9);
wolfSSL 13:f67a6c6013ca 258 Subround(F, b2, c2, d2, e2, a2, ripemd->buffer[13], 6, k9);
wolfSSL 13:f67a6c6013ca 259 Subround(F, a2, b2, c2, d2, e2, ripemd->buffer[14], 5, k9);
wolfSSL 13:f67a6c6013ca 260 Subround(F, e2, a2, b2, c2, d2, ripemd->buffer[ 0], 15, k9);
wolfSSL 13:f67a6c6013ca 261 Subround(F, d2, e2, a2, b2, c2, ripemd->buffer[ 3], 13, k9);
wolfSSL 13:f67a6c6013ca 262 Subround(F, c2, d2, e2, a2, b2, ripemd->buffer[ 9], 11, k9);
wolfSSL 13:f67a6c6013ca 263 Subround(F, b2, c2, d2, e2, a2, ripemd->buffer[11], 11, k9);
wolfSSL 13:f67a6c6013ca 264
wolfSSL 13:f67a6c6013ca 265 c1 = ripemd->digest[1] + c1 + d2;
wolfSSL 13:f67a6c6013ca 266 ripemd->digest[1] = ripemd->digest[2] + d1 + e2;
wolfSSL 13:f67a6c6013ca 267 ripemd->digest[2] = ripemd->digest[3] + e1 + a2;
wolfSSL 13:f67a6c6013ca 268 ripemd->digest[3] = ripemd->digest[4] + a1 + b2;
wolfSSL 13:f67a6c6013ca 269 ripemd->digest[4] = ripemd->digest[0] + b1 + c2;
wolfSSL 13:f67a6c6013ca 270 ripemd->digest[0] = c1;
wolfSSL 13:f67a6c6013ca 271 }
wolfSSL 13:f67a6c6013ca 272
wolfSSL 13:f67a6c6013ca 273
wolfSSL 13:f67a6c6013ca 274 static INLINE void AddLength(RipeMd* ripemd, word32 len)
wolfSSL 13:f67a6c6013ca 275 {
wolfSSL 13:f67a6c6013ca 276 word32 tmp = ripemd->loLen;
wolfSSL 13:f67a6c6013ca 277 if ( (ripemd->loLen += len) < tmp)
wolfSSL 13:f67a6c6013ca 278 ripemd->hiLen++; /* carry low to high */
wolfSSL 13:f67a6c6013ca 279 }
wolfSSL 13:f67a6c6013ca 280
wolfSSL 13:f67a6c6013ca 281
wolfSSL 13:f67a6c6013ca 282 int wc_RipeMdUpdate(RipeMd* ripemd, const byte* data, word32 len)
wolfSSL 13:f67a6c6013ca 283 {
wolfSSL 13:f67a6c6013ca 284 /* do block size increments */
wolfSSL 13:f67a6c6013ca 285 byte* local;
wolfSSL 13:f67a6c6013ca 286
wolfSSL 13:f67a6c6013ca 287 if (ripemd == NULL || (data == NULL && len > 0)) {
wolfSSL 13:f67a6c6013ca 288 return BAD_FUNC_ARG;
wolfSSL 13:f67a6c6013ca 289 }
wolfSSL 13:f67a6c6013ca 290
wolfSSL 13:f67a6c6013ca 291 local = (byte*)ripemd->buffer;
wolfSSL 13:f67a6c6013ca 292
wolfSSL 13:f67a6c6013ca 293 while (len) {
wolfSSL 13:f67a6c6013ca 294 word32 add = min(len, RIPEMD_BLOCK_SIZE - ripemd->buffLen);
wolfSSL 13:f67a6c6013ca 295 XMEMCPY(&local[ripemd->buffLen], data, add);
wolfSSL 13:f67a6c6013ca 296
wolfSSL 13:f67a6c6013ca 297 ripemd->buffLen += add;
wolfSSL 13:f67a6c6013ca 298 data += add;
wolfSSL 13:f67a6c6013ca 299 len -= add;
wolfSSL 13:f67a6c6013ca 300
wolfSSL 13:f67a6c6013ca 301 if (ripemd->buffLen == RIPEMD_BLOCK_SIZE) {
wolfSSL 13:f67a6c6013ca 302 #ifdef BIG_ENDIAN_ORDER
wolfSSL 13:f67a6c6013ca 303 ByteReverseWords(ripemd->buffer, ripemd->buffer,
wolfSSL 13:f67a6c6013ca 304 RIPEMD_BLOCK_SIZE);
wolfSSL 13:f67a6c6013ca 305 #endif
wolfSSL 13:f67a6c6013ca 306 Transform(ripemd);
wolfSSL 13:f67a6c6013ca 307 AddLength(ripemd, RIPEMD_BLOCK_SIZE);
wolfSSL 13:f67a6c6013ca 308 ripemd->buffLen = 0;
wolfSSL 13:f67a6c6013ca 309 }
wolfSSL 13:f67a6c6013ca 310 }
wolfSSL 13:f67a6c6013ca 311 return 0;
wolfSSL 13:f67a6c6013ca 312 }
wolfSSL 13:f67a6c6013ca 313
wolfSSL 13:f67a6c6013ca 314
wolfSSL 13:f67a6c6013ca 315 int wc_RipeMdFinal(RipeMd* ripemd, byte* hash)
wolfSSL 13:f67a6c6013ca 316 {
wolfSSL 13:f67a6c6013ca 317 byte* local;
wolfSSL 13:f67a6c6013ca 318
wolfSSL 13:f67a6c6013ca 319 if (ripemd == NULL || hash == NULL) {
wolfSSL 13:f67a6c6013ca 320 return BAD_FUNC_ARG;
wolfSSL 13:f67a6c6013ca 321 }
wolfSSL 13:f67a6c6013ca 322
wolfSSL 13:f67a6c6013ca 323 local = (byte*)ripemd->buffer;
wolfSSL 13:f67a6c6013ca 324
wolfSSL 13:f67a6c6013ca 325 AddLength(ripemd, ripemd->buffLen); /* before adding pads */
wolfSSL 13:f67a6c6013ca 326
wolfSSL 13:f67a6c6013ca 327 local[ripemd->buffLen++] = 0x80; /* add 1 */
wolfSSL 13:f67a6c6013ca 328
wolfSSL 13:f67a6c6013ca 329 /* pad with zeros */
wolfSSL 13:f67a6c6013ca 330 if (ripemd->buffLen > RIPEMD_PAD_SIZE) {
wolfSSL 13:f67a6c6013ca 331 XMEMSET(&local[ripemd->buffLen], 0, RIPEMD_BLOCK_SIZE - ripemd->buffLen);
wolfSSL 13:f67a6c6013ca 332 ripemd->buffLen += RIPEMD_BLOCK_SIZE - ripemd->buffLen;
wolfSSL 13:f67a6c6013ca 333
wolfSSL 13:f67a6c6013ca 334 #ifdef BIG_ENDIAN_ORDER
wolfSSL 13:f67a6c6013ca 335 ByteReverseWords(ripemd->buffer, ripemd->buffer, RIPEMD_BLOCK_SIZE);
wolfSSL 13:f67a6c6013ca 336 #endif
wolfSSL 13:f67a6c6013ca 337 Transform(ripemd);
wolfSSL 13:f67a6c6013ca 338 ripemd->buffLen = 0;
wolfSSL 13:f67a6c6013ca 339 }
wolfSSL 13:f67a6c6013ca 340 XMEMSET(&local[ripemd->buffLen], 0, RIPEMD_PAD_SIZE - ripemd->buffLen);
wolfSSL 13:f67a6c6013ca 341
wolfSSL 13:f67a6c6013ca 342 /* put lengths in bits */
wolfSSL 13:f67a6c6013ca 343 ripemd->loLen = ripemd->loLen << 3;
wolfSSL 13:f67a6c6013ca 344 ripemd->hiLen = (ripemd->loLen >> (8*sizeof(ripemd->loLen) - 3)) +
wolfSSL 13:f67a6c6013ca 345 (ripemd->hiLen << 3);
wolfSSL 13:f67a6c6013ca 346
wolfSSL 13:f67a6c6013ca 347 /* store lengths */
wolfSSL 13:f67a6c6013ca 348 #ifdef BIG_ENDIAN_ORDER
wolfSSL 13:f67a6c6013ca 349 ByteReverseWords(ripemd->buffer, ripemd->buffer, RIPEMD_BLOCK_SIZE);
wolfSSL 13:f67a6c6013ca 350 #endif
wolfSSL 13:f67a6c6013ca 351 /* ! length ordering dependent on digest endian type ! */
wolfSSL 13:f67a6c6013ca 352 XMEMCPY(&local[RIPEMD_PAD_SIZE], &ripemd->loLen, sizeof(word32));
wolfSSL 13:f67a6c6013ca 353 XMEMCPY(&local[RIPEMD_PAD_SIZE + sizeof(word32)], &ripemd->hiLen,
wolfSSL 13:f67a6c6013ca 354 sizeof(word32));
wolfSSL 13:f67a6c6013ca 355
wolfSSL 13:f67a6c6013ca 356 Transform(ripemd);
wolfSSL 13:f67a6c6013ca 357 #ifdef BIG_ENDIAN_ORDER
wolfSSL 13:f67a6c6013ca 358 ByteReverseWords(ripemd->digest, ripemd->digest, RIPEMD_DIGEST_SIZE);
wolfSSL 13:f67a6c6013ca 359 #endif
wolfSSL 13:f67a6c6013ca 360 XMEMCPY(hash, ripemd->digest, RIPEMD_DIGEST_SIZE);
wolfSSL 13:f67a6c6013ca 361
wolfSSL 13:f67a6c6013ca 362 return wc_InitRipeMd(ripemd); /* reset state */
wolfSSL 13:f67a6c6013ca 363 }
wolfSSL 13:f67a6c6013ca 364
wolfSSL 13:f67a6c6013ca 365
wolfSSL 13:f67a6c6013ca 366 #endif /* WOLFSSL_RIPEMD */
wolfSSL 13:f67a6c6013ca 367