1 /* $OpenBSD: sm3.c,v 1.1 2018/11/11 06:53:31 tb Exp $ */ 2 /* 3 * Copyright (c) 2018, Ribose Inc 4 * 5 * Permission to use, copy, modify, and/or distribute this software for any 6 * purpose with or without fee is hereby granted, provided that the above 7 * copyright notice and this permission notice appear in all copies. 8 * 9 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES 10 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF 11 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR 12 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES 13 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN 14 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF 15 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. 16 */ 17 18 #ifndef OPENSSL_NO_SM3 19 20 #include <openssl/sm3.h> 21 22 #include "sm3_locl.h" 23 24 int 25 SM3_Init(SM3_CTX *c) 26 { 27 memset(c, 0, sizeof(*c)); 28 c->A = SM3_A; 29 c->B = SM3_B; 30 c->C = SM3_C; 31 c->D = SM3_D; 32 c->E = SM3_E; 33 c->F = SM3_F; 34 c->G = SM3_G; 35 c->H = SM3_H; 36 return 1; 37 } 38 39 void 40 SM3_block_data_order(SM3_CTX *ctx, const void *p, size_t num) 41 { 42 const unsigned char *data = p; 43 SM3_WORD A, B, C, D, E, F, G, H; 44 SM3_WORD W00, W01, W02, W03, W04, W05, W06, W07; 45 SM3_WORD W08, W09, W10, W11, W12, W13, W14, W15; 46 47 while (num-- != 0) { 48 A = ctx->A; 49 B = ctx->B; 50 C = ctx->C; 51 D = ctx->D; 52 E = ctx->E; 53 F = ctx->F; 54 G = ctx->G; 55 H = ctx->H; 56 57 /* 58 * We have to load all message bytes immediately since SM3 reads 59 * them slightly out of order. 60 */ 61 HOST_c2l(data, W00); 62 HOST_c2l(data, W01); 63 HOST_c2l(data, W02); 64 HOST_c2l(data, W03); 65 HOST_c2l(data, W04); 66 HOST_c2l(data, W05); 67 HOST_c2l(data, W06); 68 HOST_c2l(data, W07); 69 HOST_c2l(data, W08); 70 HOST_c2l(data, W09); 71 HOST_c2l(data, W10); 72 HOST_c2l(data, W11); 73 HOST_c2l(data, W12); 74 HOST_c2l(data, W13); 75 HOST_c2l(data, W14); 76 HOST_c2l(data, W15); 77 78 R1(A, B, C, D, E, F, G, H, 0x79cc4519, W00, W00 ^ W04); 79 W00 = EXPAND(W00, W07, W13, W03, W10); 80 R1(D, A, B, C, H, E, F, G, 0xf3988a32, W01, W01 ^ W05); 81 W01 = EXPAND(W01, W08, W14, W04, W11); 82 R1(C, D, A, B, G, H, E, F, 0xe7311465, W02, W02 ^ W06); 83 W02 = EXPAND(W02, W09, W15, W05, W12); 84 R1(B, C, D, A, F, G, H, E, 0xce6228cb, W03, W03 ^ W07); 85 W03 = EXPAND(W03, W10, W00, W06, W13); 86 R1(A, B, C, D, E, F, G, H, 0x9cc45197, W04, W04 ^ W08); 87 W04 = EXPAND(W04, W11, W01, W07, W14); 88 R1(D, A, B, C, H, E, F, G, 0x3988a32f, W05, W05 ^ W09); 89 W05 = EXPAND(W05, W12, W02, W08, W15); 90 R1(C, D, A, B, G, H, E, F, 0x7311465e, W06, W06 ^ W10); 91 W06 = EXPAND(W06, W13, W03, W09, W00); 92 R1(B, C, D, A, F, G, H, E, 0xe6228cbc, W07, W07 ^ W11); 93 W07 = EXPAND(W07, W14, W04, W10, W01); 94 R1(A, B, C, D, E, F, G, H, 0xcc451979, W08, W08 ^ W12); 95 W08 = EXPAND(W08, W15, W05, W11, W02); 96 R1(D, A, B, C, H, E, F, G, 0x988a32f3, W09, W09 ^ W13); 97 W09 = EXPAND(W09, W00, W06, W12, W03); 98 R1(C, D, A, B, G, H, E, F, 0x311465e7, W10, W10 ^ W14); 99 W10 = EXPAND(W10, W01, W07, W13, W04); 100 R1(B, C, D, A, F, G, H, E, 0x6228cbce, W11, W11 ^ W15); 101 W11 = EXPAND(W11, W02, W08, W14, W05); 102 R1(A, B, C, D, E, F, G, H, 0xc451979c, W12, W12 ^ W00); 103 W12 = EXPAND(W12, W03, W09, W15, W06); 104 R1(D, A, B, C, H, E, F, G, 0x88a32f39, W13, W13 ^ W01); 105 W13 = EXPAND(W13, W04, W10, W00, W07); 106 R1(C, D, A, B, G, H, E, F, 0x11465e73, W14, W14 ^ W02); 107 W14 = EXPAND(W14, W05, W11, W01, W08); 108 R1(B, C, D, A, F, G, H, E, 0x228cbce6, W15, W15 ^ W03); 109 W15 = EXPAND(W15, W06, W12, W02, W09); 110 R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04); 111 W00 = EXPAND(W00, W07, W13, W03, W10); 112 R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05); 113 W01 = EXPAND(W01, W08, W14, W04, W11); 114 R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06); 115 W02 = EXPAND(W02, W09, W15, W05, W12); 116 R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07); 117 W03 = EXPAND(W03, W10, W00, W06, W13); 118 R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08); 119 W04 = EXPAND(W04, W11, W01, W07, W14); 120 R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09); 121 W05 = EXPAND(W05, W12, W02, W08, W15); 122 R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10); 123 W06 = EXPAND(W06, W13, W03, W09, W00); 124 R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11); 125 W07 = EXPAND(W07, W14, W04, W10, W01); 126 R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12); 127 W08 = EXPAND(W08, W15, W05, W11, W02); 128 R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13); 129 W09 = EXPAND(W09, W00, W06, W12, W03); 130 R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14); 131 W10 = EXPAND(W10, W01, W07, W13, W04); 132 R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15); 133 W11 = EXPAND(W11, W02, W08, W14, W05); 134 R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00); 135 W12 = EXPAND(W12, W03, W09, W15, W06); 136 R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01); 137 W13 = EXPAND(W13, W04, W10, W00, W07); 138 R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02); 139 W14 = EXPAND(W14, W05, W11, W01, W08); 140 R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03); 141 W15 = EXPAND(W15, W06, W12, W02, W09); 142 R2(A, B, C, D, E, F, G, H, 0x7a879d8a, W00, W00 ^ W04); 143 W00 = EXPAND(W00, W07, W13, W03, W10); 144 R2(D, A, B, C, H, E, F, G, 0xf50f3b14, W01, W01 ^ W05); 145 W01 = EXPAND(W01, W08, W14, W04, W11); 146 R2(C, D, A, B, G, H, E, F, 0xea1e7629, W02, W02 ^ W06); 147 W02 = EXPAND(W02, W09, W15, W05, W12); 148 R2(B, C, D, A, F, G, H, E, 0xd43cec53, W03, W03 ^ W07); 149 W03 = EXPAND(W03, W10, W00, W06, W13); 150 R2(A, B, C, D, E, F, G, H, 0xa879d8a7, W04, W04 ^ W08); 151 W04 = EXPAND(W04, W11, W01, W07, W14); 152 R2(D, A, B, C, H, E, F, G, 0x50f3b14f, W05, W05 ^ W09); 153 W05 = EXPAND(W05, W12, W02, W08, W15); 154 R2(C, D, A, B, G, H, E, F, 0xa1e7629e, W06, W06 ^ W10); 155 W06 = EXPAND(W06, W13, W03, W09, W00); 156 R2(B, C, D, A, F, G, H, E, 0x43cec53d, W07, W07 ^ W11); 157 W07 = EXPAND(W07, W14, W04, W10, W01); 158 R2(A, B, C, D, E, F, G, H, 0x879d8a7a, W08, W08 ^ W12); 159 W08 = EXPAND(W08, W15, W05, W11, W02); 160 R2(D, A, B, C, H, E, F, G, 0x0f3b14f5, W09, W09 ^ W13); 161 W09 = EXPAND(W09, W00, W06, W12, W03); 162 R2(C, D, A, B, G, H, E, F, 0x1e7629ea, W10, W10 ^ W14); 163 W10 = EXPAND(W10, W01, W07, W13, W04); 164 R2(B, C, D, A, F, G, H, E, 0x3cec53d4, W11, W11 ^ W15); 165 W11 = EXPAND(W11, W02, W08, W14, W05); 166 R2(A, B, C, D, E, F, G, H, 0x79d8a7a8, W12, W12 ^ W00); 167 W12 = EXPAND(W12, W03, W09, W15, W06); 168 R2(D, A, B, C, H, E, F, G, 0xf3b14f50, W13, W13 ^ W01); 169 W13 = EXPAND(W13, W04, W10, W00, W07); 170 R2(C, D, A, B, G, H, E, F, 0xe7629ea1, W14, W14 ^ W02); 171 W14 = EXPAND(W14, W05, W11, W01, W08); 172 R2(B, C, D, A, F, G, H, E, 0xcec53d43, W15, W15 ^ W03); 173 W15 = EXPAND(W15, W06, W12, W02, W09); 174 R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04); 175 W00 = EXPAND(W00, W07, W13, W03, W10); 176 R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05); 177 W01 = EXPAND(W01, W08, W14, W04, W11); 178 R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06); 179 W02 = EXPAND(W02, W09, W15, W05, W12); 180 R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07); 181 W03 = EXPAND(W03, W10, W00, W06, W13); 182 R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08); 183 R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09); 184 R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10); 185 R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11); 186 R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12); 187 R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13); 188 R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14); 189 R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15); 190 R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00); 191 R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01); 192 R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02); 193 R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03); 194 195 ctx->A ^= A; 196 ctx->B ^= B; 197 ctx->C ^= C; 198 ctx->D ^= D; 199 ctx->E ^= E; 200 ctx->F ^= F; 201 ctx->G ^= G; 202 ctx->H ^= H; 203 } 204 } 205 206 #endif /* !OPENSSL_NO_SM3 */ 207