Home | History | Annotate | Line # | Download | only in nist_hash_drbg
      1  1.1  riastrad /*	$NetBSD: nist_hash_drbg.h,v 1.1 2019/09/02 20:09:29 riastradh Exp $	*/
      2  1.1  riastrad 
      3  1.1  riastrad /*-
      4  1.1  riastrad  * Copyright (c) 2019 The NetBSD Foundation, Inc.
      5  1.1  riastrad  * All rights reserved.
      6  1.1  riastrad  *
      7  1.1  riastrad  * This code is derived from software contributed to The NetBSD Foundation
      8  1.1  riastrad  * by Taylor R. Campbell.
      9  1.1  riastrad  *
     10  1.1  riastrad  * Redistribution and use in source and binary forms, with or without
     11  1.1  riastrad  * modification, are permitted provided that the following conditions
     12  1.1  riastrad  * are met:
     13  1.1  riastrad  * 1. Redistributions of source code must retain the above copyright
     14  1.1  riastrad  *    notice, this list of conditions and the following disclaimer.
     15  1.1  riastrad  * 2. Redistributions in binary form must reproduce the above copyright
     16  1.1  riastrad  *    notice, this list of conditions and the following disclaimer in the
     17  1.1  riastrad  *    documentation and/or other materials provided with the distribution.
     18  1.1  riastrad  *
     19  1.1  riastrad  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     20  1.1  riastrad  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     21  1.1  riastrad  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     22  1.1  riastrad  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     23  1.1  riastrad  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     24  1.1  riastrad  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     25  1.1  riastrad  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     26  1.1  riastrad  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     27  1.1  riastrad  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     28  1.1  riastrad  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     29  1.1  riastrad  * POSSIBILITY OF SUCH DAMAGE.
     30  1.1  riastrad  */
     31  1.1  riastrad 
     32  1.1  riastrad #ifndef	NIST_HASH_DRBG_H
     33  1.1  riastrad #define	NIST_HASH_DRBG_H
     34  1.1  riastrad 
     35  1.1  riastrad #include <sys/types.h>
     36  1.1  riastrad 
     37  1.1  riastrad /* Instantiation: SHA-256 */
     38  1.1  riastrad 
     39  1.1  riastrad /* 10.1 DRBG Mechanisms Based on Hash Functions, Table 2, SHA-256 column */
     40  1.1  riastrad #define	NIST_SHA256_HASH_DRBG_SEEDLEN		440u
     41  1.1  riastrad 
     42  1.1  riastrad #define	NIST_HASH_DRBG_SEEDLEN		NIST_SHA256_HASH_DRBG_SEEDLEN
     43  1.1  riastrad #define	nist_hash_drbg			nist_sha256_hash_drbg
     44  1.1  riastrad #define	nist_hash_drbg_destroy		nist_sha256_hash_drbg_destroy
     45  1.1  riastrad #define	nist_hash_drbg_generate		nist_sha256_hash_drbg_generate
     46  1.1  riastrad #define	nist_hash_drbg_initialize	nist_sha256_hash_drbg_initialize
     47  1.1  riastrad #define	nist_hash_drbg_instantiate	nist_sha256_hash_drbg_instantiate
     48  1.1  riastrad #define	nist_hash_drbg_reseed		nist_sha256_hash_drbg_reseed
     49  1.1  riastrad 
     50  1.1  riastrad /*
     51  1.1  riastrad  * By 10.1 DRBG Mechanisms Based on Hash Functions, Table 2, the limit
     52  1.1  riastrad  * is <2^48 requests between reseeds.  We truncate this to fit in
     53  1.1  riastrad  * 32-bit signed integer instead for hysterical raisins.
     54  1.1  riastrad  */
     55  1.1  riastrad #define	NIST_HASH_DRBG_RESEED_INTERVAL	0x7fffffff
     56  1.1  riastrad 
     57  1.1  riastrad /* 10.1 DRBG Mechanisms Based on Hash Functions, Table 2 */
     58  1.1  riastrad #define	NIST_HASH_DRBG_MAX_REQUEST	0x80000
     59  1.1  riastrad #define	NIST_HASH_DRBG_MAX_REQUEST_BYTES (NIST_HASH_DRBG_MAX_REQUEST/8)
     60  1.1  riastrad 
     61  1.1  riastrad #define	NIST_HASH_DRBG_SEEDLEN_BYTES	(NIST_HASH_DRBG_SEEDLEN/8)
     62  1.1  riastrad 
     63  1.1  riastrad #define	NIST_HASH_DRBG_MIN_SEEDLEN_BYTES				      \
     64  1.1  riastrad 	MIN(32, NIST_HASH_DRBG_SEEDLEN_BYTES)
     65  1.1  riastrad 
     66  1.1  riastrad /* 10.1.1.1 Hash_DRBG Internal State */
     67  1.1  riastrad 
     68  1.1  riastrad struct nist_hash_drbg {
     69  1.1  riastrad 	uint8_t		V[NIST_HASH_DRBG_SEEDLEN_BYTES];
     70  1.1  riastrad 	uint8_t		C[NIST_HASH_DRBG_SEEDLEN_BYTES];
     71  1.1  riastrad 	unsigned	reseed_counter;
     72  1.1  riastrad };
     73  1.1  riastrad 
     74  1.1  riastrad typedef struct nist_hash_drbg	NIST_HASH_DRBG;
     75  1.1  riastrad 
     76  1.1  riastrad int	nist_hash_drbg_initialize(void); /* self-test */
     77  1.1  riastrad int	nist_hash_drbg_instantiate(struct nist_hash_drbg *,
     78  1.1  riastrad 	    const void *, size_t, const void *, size_t, const void *, size_t);
     79  1.1  riastrad int	nist_hash_drbg_reseed(struct nist_hash_drbg *,
     80  1.1  riastrad 	    const void *, size_t, const void *, size_t);
     81  1.1  riastrad int	nist_hash_drbg_generate(struct nist_hash_drbg *, void *, size_t,
     82  1.1  riastrad 	    const void *, size_t);
     83  1.1  riastrad int	nist_hash_drbg_destroy(struct nist_hash_drbg *);
     84  1.1  riastrad 
     85  1.1  riastrad #endif	/* NIST_HASH_DRBG_H */
     86