1 1.1 riastrad /* $NetBSD: nist_hash_drbg.h,v 1.1 2019/09/02 20:09:29 riastradh Exp $ */ 2 1.1 riastrad 3 1.1 riastrad /*- 4 1.1 riastrad * Copyright (c) 2019 The NetBSD Foundation, Inc. 5 1.1 riastrad * All rights reserved. 6 1.1 riastrad * 7 1.1 riastrad * This code is derived from software contributed to The NetBSD Foundation 8 1.1 riastrad * by Taylor R. Campbell. 9 1.1 riastrad * 10 1.1 riastrad * Redistribution and use in source and binary forms, with or without 11 1.1 riastrad * modification, are permitted provided that the following conditions 12 1.1 riastrad * are met: 13 1.1 riastrad * 1. Redistributions of source code must retain the above copyright 14 1.1 riastrad * notice, this list of conditions and the following disclaimer. 15 1.1 riastrad * 2. Redistributions in binary form must reproduce the above copyright 16 1.1 riastrad * notice, this list of conditions and the following disclaimer in the 17 1.1 riastrad * documentation and/or other materials provided with the distribution. 18 1.1 riastrad * 19 1.1 riastrad * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS 20 1.1 riastrad * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED 21 1.1 riastrad * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 22 1.1 riastrad * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS 23 1.1 riastrad * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 24 1.1 riastrad * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 25 1.1 riastrad * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 26 1.1 riastrad * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 27 1.1 riastrad * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 28 1.1 riastrad * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 29 1.1 riastrad * POSSIBILITY OF SUCH DAMAGE. 30 1.1 riastrad */ 31 1.1 riastrad 32 1.1 riastrad #ifndef NIST_HASH_DRBG_H 33 1.1 riastrad #define NIST_HASH_DRBG_H 34 1.1 riastrad 35 1.1 riastrad #include <sys/types.h> 36 1.1 riastrad 37 1.1 riastrad /* Instantiation: SHA-256 */ 38 1.1 riastrad 39 1.1 riastrad /* 10.1 DRBG Mechanisms Based on Hash Functions, Table 2, SHA-256 column */ 40 1.1 riastrad #define NIST_SHA256_HASH_DRBG_SEEDLEN 440u 41 1.1 riastrad 42 1.1 riastrad #define NIST_HASH_DRBG_SEEDLEN NIST_SHA256_HASH_DRBG_SEEDLEN 43 1.1 riastrad #define nist_hash_drbg nist_sha256_hash_drbg 44 1.1 riastrad #define nist_hash_drbg_destroy nist_sha256_hash_drbg_destroy 45 1.1 riastrad #define nist_hash_drbg_generate nist_sha256_hash_drbg_generate 46 1.1 riastrad #define nist_hash_drbg_initialize nist_sha256_hash_drbg_initialize 47 1.1 riastrad #define nist_hash_drbg_instantiate nist_sha256_hash_drbg_instantiate 48 1.1 riastrad #define nist_hash_drbg_reseed nist_sha256_hash_drbg_reseed 49 1.1 riastrad 50 1.1 riastrad /* 51 1.1 riastrad * By 10.1 DRBG Mechanisms Based on Hash Functions, Table 2, the limit 52 1.1 riastrad * is <2^48 requests between reseeds. We truncate this to fit in 53 1.1 riastrad * 32-bit signed integer instead for hysterical raisins. 54 1.1 riastrad */ 55 1.1 riastrad #define NIST_HASH_DRBG_RESEED_INTERVAL 0x7fffffff 56 1.1 riastrad 57 1.1 riastrad /* 10.1 DRBG Mechanisms Based on Hash Functions, Table 2 */ 58 1.1 riastrad #define NIST_HASH_DRBG_MAX_REQUEST 0x80000 59 1.1 riastrad #define NIST_HASH_DRBG_MAX_REQUEST_BYTES (NIST_HASH_DRBG_MAX_REQUEST/8) 60 1.1 riastrad 61 1.1 riastrad #define NIST_HASH_DRBG_SEEDLEN_BYTES (NIST_HASH_DRBG_SEEDLEN/8) 62 1.1 riastrad 63 1.1 riastrad #define NIST_HASH_DRBG_MIN_SEEDLEN_BYTES \ 64 1.1 riastrad MIN(32, NIST_HASH_DRBG_SEEDLEN_BYTES) 65 1.1 riastrad 66 1.1 riastrad /* 10.1.1.1 Hash_DRBG Internal State */ 67 1.1 riastrad 68 1.1 riastrad struct nist_hash_drbg { 69 1.1 riastrad uint8_t V[NIST_HASH_DRBG_SEEDLEN_BYTES]; 70 1.1 riastrad uint8_t C[NIST_HASH_DRBG_SEEDLEN_BYTES]; 71 1.1 riastrad unsigned reseed_counter; 72 1.1 riastrad }; 73 1.1 riastrad 74 1.1 riastrad typedef struct nist_hash_drbg NIST_HASH_DRBG; 75 1.1 riastrad 76 1.1 riastrad int nist_hash_drbg_initialize(void); /* self-test */ 77 1.1 riastrad int nist_hash_drbg_instantiate(struct nist_hash_drbg *, 78 1.1 riastrad const void *, size_t, const void *, size_t, const void *, size_t); 79 1.1 riastrad int nist_hash_drbg_reseed(struct nist_hash_drbg *, 80 1.1 riastrad const void *, size_t, const void *, size_t); 81 1.1 riastrad int nist_hash_drbg_generate(struct nist_hash_drbg *, void *, size_t, 82 1.1 riastrad const void *, size_t); 83 1.1 riastrad int nist_hash_drbg_destroy(struct nist_hash_drbg *); 84 1.1 riastrad 85 1.1 riastrad #endif /* NIST_HASH_DRBG_H */ 86