cipher.c 6.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234
  1. /*
  2. * QEMU Crypto cipher algorithms
  3. *
  4. * Copyright (c) 2015 Red Hat, Inc.
  5. *
  6. * This library is free software; you can redistribute it and/or
  7. * modify it under the terms of the GNU Lesser General Public
  8. * License as published by the Free Software Foundation; either
  9. * version 2.1 of the License, or (at your option) any later version.
  10. *
  11. * This library is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  14. * Lesser General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU Lesser General Public
  17. * License along with this library; if not, see <http://www.gnu.org/licenses/>.
  18. *
  19. */
  20. #include "qemu/osdep.h"
  21. #include "qapi/error.h"
  22. #include "crypto/cipher.h"
  23. #include "cipherpriv.h"
  24. static size_t alg_key_len[QCRYPTO_CIPHER_ALG__MAX] = {
  25. [QCRYPTO_CIPHER_ALG_AES_128] = 16,
  26. [QCRYPTO_CIPHER_ALG_AES_192] = 24,
  27. [QCRYPTO_CIPHER_ALG_AES_256] = 32,
  28. [QCRYPTO_CIPHER_ALG_DES_RFB] = 8,
  29. [QCRYPTO_CIPHER_ALG_3DES] = 24,
  30. [QCRYPTO_CIPHER_ALG_CAST5_128] = 16,
  31. [QCRYPTO_CIPHER_ALG_SERPENT_128] = 16,
  32. [QCRYPTO_CIPHER_ALG_SERPENT_192] = 24,
  33. [QCRYPTO_CIPHER_ALG_SERPENT_256] = 32,
  34. [QCRYPTO_CIPHER_ALG_TWOFISH_128] = 16,
  35. [QCRYPTO_CIPHER_ALG_TWOFISH_192] = 24,
  36. [QCRYPTO_CIPHER_ALG_TWOFISH_256] = 32,
  37. };
  38. static size_t alg_block_len[QCRYPTO_CIPHER_ALG__MAX] = {
  39. [QCRYPTO_CIPHER_ALG_AES_128] = 16,
  40. [QCRYPTO_CIPHER_ALG_AES_192] = 16,
  41. [QCRYPTO_CIPHER_ALG_AES_256] = 16,
  42. [QCRYPTO_CIPHER_ALG_DES_RFB] = 8,
  43. [QCRYPTO_CIPHER_ALG_3DES] = 8,
  44. [QCRYPTO_CIPHER_ALG_CAST5_128] = 8,
  45. [QCRYPTO_CIPHER_ALG_SERPENT_128] = 16,
  46. [QCRYPTO_CIPHER_ALG_SERPENT_192] = 16,
  47. [QCRYPTO_CIPHER_ALG_SERPENT_256] = 16,
  48. [QCRYPTO_CIPHER_ALG_TWOFISH_128] = 16,
  49. [QCRYPTO_CIPHER_ALG_TWOFISH_192] = 16,
  50. [QCRYPTO_CIPHER_ALG_TWOFISH_256] = 16,
  51. };
  52. static bool mode_need_iv[QCRYPTO_CIPHER_MODE__MAX] = {
  53. [QCRYPTO_CIPHER_MODE_ECB] = false,
  54. [QCRYPTO_CIPHER_MODE_CBC] = true,
  55. [QCRYPTO_CIPHER_MODE_XTS] = true,
  56. [QCRYPTO_CIPHER_MODE_CTR] = true,
  57. };
  58. size_t qcrypto_cipher_get_block_len(QCryptoCipherAlgorithm alg)
  59. {
  60. assert(alg < G_N_ELEMENTS(alg_key_len));
  61. return alg_block_len[alg];
  62. }
  63. size_t qcrypto_cipher_get_key_len(QCryptoCipherAlgorithm alg)
  64. {
  65. assert(alg < G_N_ELEMENTS(alg_key_len));
  66. return alg_key_len[alg];
  67. }
  68. size_t qcrypto_cipher_get_iv_len(QCryptoCipherAlgorithm alg,
  69. QCryptoCipherMode mode)
  70. {
  71. if (alg >= G_N_ELEMENTS(alg_block_len)) {
  72. return 0;
  73. }
  74. if (mode >= G_N_ELEMENTS(mode_need_iv)) {
  75. return 0;
  76. }
  77. if (mode_need_iv[mode]) {
  78. return alg_block_len[alg];
  79. }
  80. return 0;
  81. }
  82. static bool
  83. qcrypto_cipher_validate_key_length(QCryptoCipherAlgorithm alg,
  84. QCryptoCipherMode mode,
  85. size_t nkey,
  86. Error **errp)
  87. {
  88. if ((unsigned)alg >= QCRYPTO_CIPHER_ALG__MAX) {
  89. error_setg(errp, "Cipher algorithm %d out of range",
  90. alg);
  91. return false;
  92. }
  93. if (mode == QCRYPTO_CIPHER_MODE_XTS) {
  94. if (alg == QCRYPTO_CIPHER_ALG_DES_RFB
  95. || alg == QCRYPTO_CIPHER_ALG_3DES) {
  96. error_setg(errp, "XTS mode not compatible with DES-RFB/3DES");
  97. return false;
  98. }
  99. if (nkey % 2) {
  100. error_setg(errp, "XTS cipher key length should be a multiple of 2");
  101. return false;
  102. }
  103. if (alg_key_len[alg] != (nkey / 2)) {
  104. error_setg(errp, "Cipher key length %zu should be %zu",
  105. nkey, alg_key_len[alg] * 2);
  106. return false;
  107. }
  108. } else {
  109. if (alg_key_len[alg] != nkey) {
  110. error_setg(errp, "Cipher key length %zu should be %zu",
  111. nkey, alg_key_len[alg]);
  112. return false;
  113. }
  114. }
  115. return true;
  116. }
  117. #if defined(CONFIG_GCRYPT) || defined(CONFIG_NETTLE)
  118. static uint8_t *
  119. qcrypto_cipher_munge_des_rfb_key(const uint8_t *key,
  120. size_t nkey)
  121. {
  122. uint8_t *ret = g_new0(uint8_t, nkey);
  123. size_t i;
  124. for (i = 0; i < nkey; i++) {
  125. uint8_t r = key[i];
  126. r = (r & 0xf0) >> 4 | (r & 0x0f) << 4;
  127. r = (r & 0xcc) >> 2 | (r & 0x33) << 2;
  128. r = (r & 0xaa) >> 1 | (r & 0x55) << 1;
  129. ret[i] = r;
  130. }
  131. return ret;
  132. }
  133. #endif /* CONFIG_GCRYPT || CONFIG_NETTLE */
  134. #ifdef CONFIG_GCRYPT
  135. #include "cipher-gcrypt.c"
  136. #elif defined CONFIG_NETTLE
  137. #include "cipher-nettle.c"
  138. #else
  139. #include "cipher-builtin.c"
  140. #endif
  141. QCryptoCipher *qcrypto_cipher_new(QCryptoCipherAlgorithm alg,
  142. QCryptoCipherMode mode,
  143. const uint8_t *key, size_t nkey,
  144. Error **errp)
  145. {
  146. QCryptoCipher *cipher;
  147. void *ctx = NULL;
  148. QCryptoCipherDriver *drv = NULL;
  149. #ifdef CONFIG_AF_ALG
  150. ctx = qcrypto_afalg_cipher_ctx_new(alg, mode, key, nkey, NULL);
  151. if (ctx) {
  152. drv = &qcrypto_cipher_afalg_driver;
  153. }
  154. #endif
  155. if (!ctx) {
  156. ctx = qcrypto_cipher_ctx_new(alg, mode, key, nkey, errp);
  157. if (!ctx) {
  158. return NULL;
  159. }
  160. drv = &qcrypto_cipher_lib_driver;
  161. }
  162. cipher = g_new0(QCryptoCipher, 1);
  163. cipher->alg = alg;
  164. cipher->mode = mode;
  165. cipher->opaque = ctx;
  166. cipher->driver = (void *)drv;
  167. return cipher;
  168. }
  169. int qcrypto_cipher_encrypt(QCryptoCipher *cipher,
  170. const void *in,
  171. void *out,
  172. size_t len,
  173. Error **errp)
  174. {
  175. QCryptoCipherDriver *drv = cipher->driver;
  176. return drv->cipher_encrypt(cipher, in, out, len, errp);
  177. }
  178. int qcrypto_cipher_decrypt(QCryptoCipher *cipher,
  179. const void *in,
  180. void *out,
  181. size_t len,
  182. Error **errp)
  183. {
  184. QCryptoCipherDriver *drv = cipher->driver;
  185. return drv->cipher_decrypt(cipher, in, out, len, errp);
  186. }
  187. int qcrypto_cipher_setiv(QCryptoCipher *cipher,
  188. const uint8_t *iv, size_t niv,
  189. Error **errp)
  190. {
  191. QCryptoCipherDriver *drv = cipher->driver;
  192. return drv->cipher_setiv(cipher, iv, niv, errp);
  193. }
  194. void qcrypto_cipher_free(QCryptoCipher *cipher)
  195. {
  196. QCryptoCipherDriver *drv;
  197. if (cipher) {
  198. drv = cipher->driver;
  199. drv->cipher_free(cipher);
  200. g_free(cipher);
  201. }
  202. }