wolfSSL SSL/TLS library, support up to TLS1.3

Dependents:   CyaSSL-Twitter-OAuth4Tw Example-client-tls-cert TwitterReader TweetTest ... more

Committer:
wolfSSL
Date:
Fri Jun 26 00:39:20 2015 +0000
Revision:
0:d92f9d21154c
wolfSSL 3.6.0

Who changed what in which revision?

UserRevisionLine numberNew contents of line
wolfSSL 0:d92f9d21154c 1 /* md4.c
wolfSSL 0:d92f9d21154c 2 *
wolfSSL 0:d92f9d21154c 3 * Copyright (C) 2006-2015 wolfSSL Inc.
wolfSSL 0:d92f9d21154c 4 *
wolfSSL 0:d92f9d21154c 5 * This file is part of wolfSSL. (formerly known as CyaSSL)
wolfSSL 0:d92f9d21154c 6 *
wolfSSL 0:d92f9d21154c 7 * wolfSSL is free software; you can redistribute it and/or modify
wolfSSL 0:d92f9d21154c 8 * it under the terms of the GNU General Public License as published by
wolfSSL 0:d92f9d21154c 9 * the Free Software Foundation; either version 2 of the License, or
wolfSSL 0:d92f9d21154c 10 * (at your option) any later version.
wolfSSL 0:d92f9d21154c 11 *
wolfSSL 0:d92f9d21154c 12 * wolfSSL is distributed in the hope that it will be useful,
wolfSSL 0:d92f9d21154c 13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
wolfSSL 0:d92f9d21154c 14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
wolfSSL 0:d92f9d21154c 15 * GNU General Public License for more details.
wolfSSL 0:d92f9d21154c 16 *
wolfSSL 0:d92f9d21154c 17 * You should have received a copy of the GNU General Public License
wolfSSL 0:d92f9d21154c 18 * along with this program; if not, write to the Free Software
wolfSSL 0:d92f9d21154c 19 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
wolfSSL 0:d92f9d21154c 20 */
wolfSSL 0:d92f9d21154c 21
wolfSSL 0:d92f9d21154c 22 #ifdef HAVE_CONFIG_H
wolfSSL 0:d92f9d21154c 23 #include <config.h>
wolfSSL 0:d92f9d21154c 24 #endif
wolfSSL 0:d92f9d21154c 25
wolfSSL 0:d92f9d21154c 26 #include <wolfssl/wolfcrypt/settings.h>
wolfSSL 0:d92f9d21154c 27
wolfSSL 0:d92f9d21154c 28 #ifndef NO_MD4
wolfSSL 0:d92f9d21154c 29
wolfSSL 0:d92f9d21154c 30 #include <wolfssl/wolfcrypt/md4.h>
wolfSSL 0:d92f9d21154c 31 #ifdef NO_INLINE
wolfSSL 0:d92f9d21154c 32 #include <wolfssl/wolfcrypt/misc.h>
wolfSSL 0:d92f9d21154c 33 #else
wolfSSL 0:d92f9d21154c 34 #include <wolfcrypt/src/misc.c>
wolfSSL 0:d92f9d21154c 35 #endif
wolfSSL 0:d92f9d21154c 36
wolfSSL 0:d92f9d21154c 37
wolfSSL 0:d92f9d21154c 38 #ifndef WOLFSSL_HAVE_MIN
wolfSSL 0:d92f9d21154c 39 #define WOLFSSL_HAVE_MIN
wolfSSL 0:d92f9d21154c 40
wolfSSL 0:d92f9d21154c 41 static INLINE word32 min(word32 a, word32 b)
wolfSSL 0:d92f9d21154c 42 {
wolfSSL 0:d92f9d21154c 43 return a > b ? b : a;
wolfSSL 0:d92f9d21154c 44 }
wolfSSL 0:d92f9d21154c 45
wolfSSL 0:d92f9d21154c 46 #endif /* WOLFSSL_HAVE_MIN */
wolfSSL 0:d92f9d21154c 47
wolfSSL 0:d92f9d21154c 48
wolfSSL 0:d92f9d21154c 49 void wc_InitMd4(Md4* md4)
wolfSSL 0:d92f9d21154c 50 {
wolfSSL 0:d92f9d21154c 51 md4->digest[0] = 0x67452301L;
wolfSSL 0:d92f9d21154c 52 md4->digest[1] = 0xefcdab89L;
wolfSSL 0:d92f9d21154c 53 md4->digest[2] = 0x98badcfeL;
wolfSSL 0:d92f9d21154c 54 md4->digest[3] = 0x10325476L;
wolfSSL 0:d92f9d21154c 55
wolfSSL 0:d92f9d21154c 56 md4->buffLen = 0;
wolfSSL 0:d92f9d21154c 57 md4->loLen = 0;
wolfSSL 0:d92f9d21154c 58 md4->hiLen = 0;
wolfSSL 0:d92f9d21154c 59 }
wolfSSL 0:d92f9d21154c 60
wolfSSL 0:d92f9d21154c 61
wolfSSL 0:d92f9d21154c 62 static void Transform(Md4* md4)
wolfSSL 0:d92f9d21154c 63 {
wolfSSL 0:d92f9d21154c 64 #define F(x, y, z) ((z) ^ ((x) & ((y) ^ (z))))
wolfSSL 0:d92f9d21154c 65 #define G(x, y, z) (((x) & (y)) | ((x) & (z)) | ((y) & (z)))
wolfSSL 0:d92f9d21154c 66 #define H(x, y, z) ((x) ^ (y) ^ (z))
wolfSSL 0:d92f9d21154c 67
wolfSSL 0:d92f9d21154c 68 /* Copy context->state[] to working vars */
wolfSSL 0:d92f9d21154c 69 word32 A = md4->digest[0];
wolfSSL 0:d92f9d21154c 70 word32 B = md4->digest[1];
wolfSSL 0:d92f9d21154c 71 word32 C = md4->digest[2];
wolfSSL 0:d92f9d21154c 72 word32 D = md4->digest[3];
wolfSSL 0:d92f9d21154c 73
wolfSSL 0:d92f9d21154c 74 #define function(a,b,c,d,k,s) a=rotlFixed(a+F(b,c,d)+md4->buffer[k],s);
wolfSSL 0:d92f9d21154c 75 function(A,B,C,D, 0, 3);
wolfSSL 0:d92f9d21154c 76 function(D,A,B,C, 1, 7);
wolfSSL 0:d92f9d21154c 77 function(C,D,A,B, 2,11);
wolfSSL 0:d92f9d21154c 78 function(B,C,D,A, 3,19);
wolfSSL 0:d92f9d21154c 79 function(A,B,C,D, 4, 3);
wolfSSL 0:d92f9d21154c 80 function(D,A,B,C, 5, 7);
wolfSSL 0:d92f9d21154c 81 function(C,D,A,B, 6,11);
wolfSSL 0:d92f9d21154c 82 function(B,C,D,A, 7,19);
wolfSSL 0:d92f9d21154c 83 function(A,B,C,D, 8, 3);
wolfSSL 0:d92f9d21154c 84 function(D,A,B,C, 9, 7);
wolfSSL 0:d92f9d21154c 85 function(C,D,A,B,10,11);
wolfSSL 0:d92f9d21154c 86 function(B,C,D,A,11,19);
wolfSSL 0:d92f9d21154c 87 function(A,B,C,D,12, 3);
wolfSSL 0:d92f9d21154c 88 function(D,A,B,C,13, 7);
wolfSSL 0:d92f9d21154c 89 function(C,D,A,B,14,11);
wolfSSL 0:d92f9d21154c 90 function(B,C,D,A,15,19);
wolfSSL 0:d92f9d21154c 91
wolfSSL 0:d92f9d21154c 92 #undef function
wolfSSL 0:d92f9d21154c 93 #define function(a,b,c,d,k,s) \
wolfSSL 0:d92f9d21154c 94 a=rotlFixed(a+G(b,c,d)+md4->buffer[k]+0x5a827999,s);
wolfSSL 0:d92f9d21154c 95
wolfSSL 0:d92f9d21154c 96 function(A,B,C,D, 0, 3);
wolfSSL 0:d92f9d21154c 97 function(D,A,B,C, 4, 5);
wolfSSL 0:d92f9d21154c 98 function(C,D,A,B, 8, 9);
wolfSSL 0:d92f9d21154c 99 function(B,C,D,A,12,13);
wolfSSL 0:d92f9d21154c 100 function(A,B,C,D, 1, 3);
wolfSSL 0:d92f9d21154c 101 function(D,A,B,C, 5, 5);
wolfSSL 0:d92f9d21154c 102 function(C,D,A,B, 9, 9);
wolfSSL 0:d92f9d21154c 103 function(B,C,D,A,13,13);
wolfSSL 0:d92f9d21154c 104 function(A,B,C,D, 2, 3);
wolfSSL 0:d92f9d21154c 105 function(D,A,B,C, 6, 5);
wolfSSL 0:d92f9d21154c 106 function(C,D,A,B,10, 9);
wolfSSL 0:d92f9d21154c 107 function(B,C,D,A,14,13);
wolfSSL 0:d92f9d21154c 108 function(A,B,C,D, 3, 3);
wolfSSL 0:d92f9d21154c 109 function(D,A,B,C, 7, 5);
wolfSSL 0:d92f9d21154c 110 function(C,D,A,B,11, 9);
wolfSSL 0:d92f9d21154c 111 function(B,C,D,A,15,13);
wolfSSL 0:d92f9d21154c 112
wolfSSL 0:d92f9d21154c 113 #undef function
wolfSSL 0:d92f9d21154c 114 #define function(a,b,c,d,k,s) \
wolfSSL 0:d92f9d21154c 115 a=rotlFixed(a+H(b,c,d)+md4->buffer[k]+0x6ed9eba1,s);
wolfSSL 0:d92f9d21154c 116
wolfSSL 0:d92f9d21154c 117 function(A,B,C,D, 0, 3);
wolfSSL 0:d92f9d21154c 118 function(D,A,B,C, 8, 9);
wolfSSL 0:d92f9d21154c 119 function(C,D,A,B, 4,11);
wolfSSL 0:d92f9d21154c 120 function(B,C,D,A,12,15);
wolfSSL 0:d92f9d21154c 121 function(A,B,C,D, 2, 3);
wolfSSL 0:d92f9d21154c 122 function(D,A,B,C,10, 9);
wolfSSL 0:d92f9d21154c 123 function(C,D,A,B, 6,11);
wolfSSL 0:d92f9d21154c 124 function(B,C,D,A,14,15);
wolfSSL 0:d92f9d21154c 125 function(A,B,C,D, 1, 3);
wolfSSL 0:d92f9d21154c 126 function(D,A,B,C, 9, 9);
wolfSSL 0:d92f9d21154c 127 function(C,D,A,B, 5,11);
wolfSSL 0:d92f9d21154c 128 function(B,C,D,A,13,15);
wolfSSL 0:d92f9d21154c 129 function(A,B,C,D, 3, 3);
wolfSSL 0:d92f9d21154c 130 function(D,A,B,C,11, 9);
wolfSSL 0:d92f9d21154c 131 function(C,D,A,B, 7,11);
wolfSSL 0:d92f9d21154c 132 function(B,C,D,A,15,15);
wolfSSL 0:d92f9d21154c 133
wolfSSL 0:d92f9d21154c 134 /* Add the working vars back into digest state[] */
wolfSSL 0:d92f9d21154c 135 md4->digest[0] += A;
wolfSSL 0:d92f9d21154c 136 md4->digest[1] += B;
wolfSSL 0:d92f9d21154c 137 md4->digest[2] += C;
wolfSSL 0:d92f9d21154c 138 md4->digest[3] += D;
wolfSSL 0:d92f9d21154c 139 }
wolfSSL 0:d92f9d21154c 140
wolfSSL 0:d92f9d21154c 141
wolfSSL 0:d92f9d21154c 142 static INLINE void AddLength(Md4* md4, word32 len)
wolfSSL 0:d92f9d21154c 143 {
wolfSSL 0:d92f9d21154c 144 word32 tmp = md4->loLen;
wolfSSL 0:d92f9d21154c 145 if ( (md4->loLen += len) < tmp)
wolfSSL 0:d92f9d21154c 146 md4->hiLen++; /* carry low to high */
wolfSSL 0:d92f9d21154c 147 }
wolfSSL 0:d92f9d21154c 148
wolfSSL 0:d92f9d21154c 149
wolfSSL 0:d92f9d21154c 150 void wc_Md4Update(Md4* md4, const byte* data, word32 len)
wolfSSL 0:d92f9d21154c 151 {
wolfSSL 0:d92f9d21154c 152 /* do block size increments */
wolfSSL 0:d92f9d21154c 153 byte* local = (byte*)md4->buffer;
wolfSSL 0:d92f9d21154c 154
wolfSSL 0:d92f9d21154c 155 while (len) {
wolfSSL 0:d92f9d21154c 156 word32 add = min(len, MD4_BLOCK_SIZE - md4->buffLen);
wolfSSL 0:d92f9d21154c 157 XMEMCPY(&local[md4->buffLen], data, add);
wolfSSL 0:d92f9d21154c 158
wolfSSL 0:d92f9d21154c 159 md4->buffLen += add;
wolfSSL 0:d92f9d21154c 160 data += add;
wolfSSL 0:d92f9d21154c 161 len -= add;
wolfSSL 0:d92f9d21154c 162
wolfSSL 0:d92f9d21154c 163 if (md4->buffLen == MD4_BLOCK_SIZE) {
wolfSSL 0:d92f9d21154c 164 #ifdef BIG_ENDIAN_ORDER
wolfSSL 0:d92f9d21154c 165 ByteReverseWords(md4->buffer, md4->buffer, MD4_BLOCK_SIZE);
wolfSSL 0:d92f9d21154c 166 #endif
wolfSSL 0:d92f9d21154c 167 Transform(md4);
wolfSSL 0:d92f9d21154c 168 AddLength(md4, MD4_BLOCK_SIZE);
wolfSSL 0:d92f9d21154c 169 md4->buffLen = 0;
wolfSSL 0:d92f9d21154c 170 }
wolfSSL 0:d92f9d21154c 171 }
wolfSSL 0:d92f9d21154c 172 }
wolfSSL 0:d92f9d21154c 173
wolfSSL 0:d92f9d21154c 174
wolfSSL 0:d92f9d21154c 175 void wc_Md4Final(Md4* md4, byte* hash)
wolfSSL 0:d92f9d21154c 176 {
wolfSSL 0:d92f9d21154c 177 byte* local = (byte*)md4->buffer;
wolfSSL 0:d92f9d21154c 178
wolfSSL 0:d92f9d21154c 179 AddLength(md4, md4->buffLen); /* before adding pads */
wolfSSL 0:d92f9d21154c 180
wolfSSL 0:d92f9d21154c 181 local[md4->buffLen++] = 0x80; /* add 1 */
wolfSSL 0:d92f9d21154c 182
wolfSSL 0:d92f9d21154c 183 /* pad with zeros */
wolfSSL 0:d92f9d21154c 184 if (md4->buffLen > MD4_PAD_SIZE) {
wolfSSL 0:d92f9d21154c 185 XMEMSET(&local[md4->buffLen], 0, MD4_BLOCK_SIZE - md4->buffLen);
wolfSSL 0:d92f9d21154c 186 md4->buffLen += MD4_BLOCK_SIZE - md4->buffLen;
wolfSSL 0:d92f9d21154c 187
wolfSSL 0:d92f9d21154c 188 #ifdef BIG_ENDIAN_ORDER
wolfSSL 0:d92f9d21154c 189 ByteReverseWords(md4->buffer, md4->buffer, MD4_BLOCK_SIZE);
wolfSSL 0:d92f9d21154c 190 #endif
wolfSSL 0:d92f9d21154c 191 Transform(md4);
wolfSSL 0:d92f9d21154c 192 md4->buffLen = 0;
wolfSSL 0:d92f9d21154c 193 }
wolfSSL 0:d92f9d21154c 194 XMEMSET(&local[md4->buffLen], 0, MD4_PAD_SIZE - md4->buffLen);
wolfSSL 0:d92f9d21154c 195
wolfSSL 0:d92f9d21154c 196 /* put lengths in bits */
wolfSSL 0:d92f9d21154c 197 md4->hiLen = (md4->loLen >> (8*sizeof(md4->loLen) - 3)) +
wolfSSL 0:d92f9d21154c 198 (md4->hiLen << 3);
wolfSSL 0:d92f9d21154c 199 md4->loLen = md4->loLen << 3;
wolfSSL 0:d92f9d21154c 200
wolfSSL 0:d92f9d21154c 201 /* store lengths */
wolfSSL 0:d92f9d21154c 202 #ifdef BIG_ENDIAN_ORDER
wolfSSL 0:d92f9d21154c 203 ByteReverseWords(md4->buffer, md4->buffer, MD4_BLOCK_SIZE);
wolfSSL 0:d92f9d21154c 204 #endif
wolfSSL 0:d92f9d21154c 205 /* ! length ordering dependent on digest endian type ! */
wolfSSL 0:d92f9d21154c 206 XMEMCPY(&local[MD4_PAD_SIZE], &md4->loLen, sizeof(word32));
wolfSSL 0:d92f9d21154c 207 XMEMCPY(&local[MD4_PAD_SIZE + sizeof(word32)], &md4->hiLen, sizeof(word32));
wolfSSL 0:d92f9d21154c 208
wolfSSL 0:d92f9d21154c 209 Transform(md4);
wolfSSL 0:d92f9d21154c 210 #ifdef BIG_ENDIAN_ORDER
wolfSSL 0:d92f9d21154c 211 ByteReverseWords(md4->digest, md4->digest, MD4_DIGEST_SIZE);
wolfSSL 0:d92f9d21154c 212 #endif
wolfSSL 0:d92f9d21154c 213 XMEMCPY(hash, md4->digest, MD4_DIGEST_SIZE);
wolfSSL 0:d92f9d21154c 214
wolfSSL 0:d92f9d21154c 215 wc_InitMd4(md4); /* reset state */
wolfSSL 0:d92f9d21154c 216 }
wolfSSL 0:d92f9d21154c 217
wolfSSL 0:d92f9d21154c 218
wolfSSL 0:d92f9d21154c 219 #endif /* NO_MD4 */
wolfSSL 0:d92f9d21154c 220
wolfSSL 0:d92f9d21154c 221