Blame view

crypto/tea.c 6.49 KB
2874c5fd2   Thomas Gleixner   treewide: Replace...
1
  // SPDX-License-Identifier: GPL-2.0-or-later
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
2
3
4
  /* 
   * Cryptographic API.
   *
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
5
   * TEA, XTEA, and XETA crypto alogrithms
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
6
7
8
9
   *
   * The TEA and Xtended TEA algorithms were developed by David Wheeler 
   * and Roger Needham at the Computer Laboratory of Cambridge University.
   *
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
10
11
12
13
   * Due to the order of evaluation in XTEA many people have incorrectly
   * implemented it.  XETA (XTEA in the wrong order), exists for
   * compatibility with these implementations.
   *
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
14
   * Copyright (c) 2004 Aaron Grothe ajgrothe@yahoo.com
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
15
16
17
18
19
   */
  
  #include <linux/init.h>
  #include <linux/module.h>
  #include <linux/mm.h>
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
20
  #include <asm/byteorder.h>
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
21
  #include <linux/crypto.h>
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
22
  #include <linux/types.h>
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
23
24
25
26
27
28
29
30
31
32
  
  #define TEA_KEY_SIZE		16
  #define TEA_BLOCK_SIZE		8
  #define TEA_ROUNDS		32
  #define TEA_DELTA		0x9e3779b9
  
  #define XTEA_KEY_SIZE		16
  #define XTEA_BLOCK_SIZE		8
  #define XTEA_ROUNDS		32
  #define XTEA_DELTA		0x9e3779b9
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
33
34
35
36
37
38
39
  struct tea_ctx {
  	u32 KEY[4];
  };
  
  struct xtea_ctx {
  	u32 KEY[4];
  };
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
40
  static int tea_setkey(struct crypto_tfm *tfm, const u8 *in_key,
560c06ae1   Herbert Xu   [CRYPTO] api: Get...
41
  		      unsigned int key_len)
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
42
43
  {
  	struct tea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
44
  	const __le32 *key = (const __le32 *)in_key;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
45

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
46
47
48
49
  	ctx->KEY[0] = le32_to_cpu(key[0]);
  	ctx->KEY[1] = le32_to_cpu(key[1]);
  	ctx->KEY[2] = le32_to_cpu(key[2]);
  	ctx->KEY[3] = le32_to_cpu(key[3]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
50
51
52
53
  
  	return 0; 
  
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
54
55
  static void tea_encrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
56
57
  	u32 y, z, n, sum = 0;
  	u32 k0, k1, k2, k3;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
58
  	struct tea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
59
60
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
61

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
62
63
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
64
65
66
67
68
69
70
71
72
73
74
75
76
77
  
  	k0 = ctx->KEY[0];
  	k1 = ctx->KEY[1];
  	k2 = ctx->KEY[2];
  	k3 = ctx->KEY[3];
  
  	n = TEA_ROUNDS;
  
  	while (n-- > 0) {
  		sum += TEA_DELTA;
  		y += ((z << 4) + k0) ^ (z + sum) ^ ((z >> 5) + k1);
  		z += ((y << 4) + k2) ^ (y + sum) ^ ((y >> 5) + k3);
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
78
79
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
80
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
81
82
  static void tea_decrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
83
84
  	u32 y, z, n, sum;
  	u32 k0, k1, k2, k3;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
85
  	struct tea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
86
87
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
88

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
89
90
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
  
  	k0 = ctx->KEY[0];
  	k1 = ctx->KEY[1];
  	k2 = ctx->KEY[2];
  	k3 = ctx->KEY[3];
  
  	sum = TEA_DELTA << 5;
  
  	n = TEA_ROUNDS;
  
  	while (n-- > 0) {
  		z -= ((y << 4) + k2) ^ (y + sum) ^ ((y >> 5) + k3);
  		y -= ((z << 4) + k0) ^ (z + sum) ^ ((z >> 5) + k1);
  		sum -= TEA_DELTA;
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
107
108
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
109
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
110
  static int xtea_setkey(struct crypto_tfm *tfm, const u8 *in_key,
560c06ae1   Herbert Xu   [CRYPTO] api: Get...
111
  		       unsigned int key_len)
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
112
113
  {
  	struct xtea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
114
  	const __le32 *key = (const __le32 *)in_key;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
115

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
116
117
118
119
  	ctx->KEY[0] = le32_to_cpu(key[0]);
  	ctx->KEY[1] = le32_to_cpu(key[1]);
  	ctx->KEY[2] = le32_to_cpu(key[2]);
  	ctx->KEY[3] = le32_to_cpu(key[3]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
120
121
122
123
  
  	return 0; 
  
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
124
125
  static void xtea_encrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
126
127
  	u32 y, z, sum = 0;
  	u32 limit = XTEA_DELTA * XTEA_ROUNDS;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
128
  	struct xtea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
129
130
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
131

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
132
133
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
134
135
  
  	while (sum != limit) {
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
136
  		y += ((z << 4 ^ z >> 5) + z) ^ (sum + ctx->KEY[sum&3]); 
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
137
  		sum += XTEA_DELTA;
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
138
  		z += ((y << 4 ^ y >> 5) + y) ^ (sum + ctx->KEY[sum>>11 &3]); 
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
139
140
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
141
142
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
143
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
144
145
  static void xtea_decrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
146
  	u32 y, z, sum;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
147
  	struct tea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
148
149
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
150

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
151
152
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
153
154
155
156
  
  	sum = XTEA_DELTA * XTEA_ROUNDS;
  
  	while (sum) {
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
157
158
159
160
161
  		z -= ((y << 4 ^ y >> 5) + y) ^ (sum + ctx->KEY[sum>>11 & 3]);
  		sum -= XTEA_DELTA;
  		y -= ((z << 4 ^ z >> 5) + z) ^ (sum + ctx->KEY[sum & 3]);
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
162
163
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
164
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
165
166
  static void xeta_encrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
167
168
  	u32 y, z, sum = 0;
  	u32 limit = XTEA_DELTA * XTEA_ROUNDS;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
169
  	struct xtea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
170
171
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
172

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
173
174
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
175
176
177
178
179
180
181
  
  	while (sum != limit) {
  		y += (z << 4 ^ z >> 5) + (z ^ sum) + ctx->KEY[sum&3];
  		sum += XTEA_DELTA;
  		z += (y << 4 ^ y >> 5) + (y ^ sum) + ctx->KEY[sum>>11 &3];
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
182
183
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
184
  }
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
185
186
  static void xeta_decrypt(struct crypto_tfm *tfm, u8 *dst, const u8 *src)
  {
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
187
  	u32 y, z, sum;
6c2bb98bc   Herbert Xu   [CRYPTO] all: Pas...
188
  	struct tea_ctx *ctx = crypto_tfm_ctx(tfm);
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
189
190
  	const __le32 *in = (const __le32 *)src;
  	__le32 *out = (__le32 *)dst;
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
191

06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
192
193
  	y = le32_to_cpu(in[0]);
  	z = le32_to_cpu(in[1]);
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
194
195
196
197
  
  	sum = XTEA_DELTA * XTEA_ROUNDS;
  
  	while (sum) {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
198
199
200
201
202
  		z -= (y << 4 ^ y >> 5) + (y ^ sum) + ctx->KEY[sum>>11 & 3];
  		sum -= XTEA_DELTA;
  		y -= (z << 4 ^ z >> 5) + (z ^ sum) + ctx->KEY[sum & 3];
  	}
  	
06ace7a9b   Herbert Xu   [CRYPTO] Use stan...
203
204
  	out[0] = cpu_to_le32(y);
  	out[1] = cpu_to_le32(z);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
205
  }
738206d32   Jussi Kivilinna   crypto: tea - use...
206
  static struct crypto_alg tea_algs[3] = { {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
207
  	.cra_name		=	"tea",
d6ebf5286   Eric Biggers   crypto: make all ...
208
  	.cra_driver_name	=	"tea-generic",
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
209
210
211
  	.cra_flags		=	CRYPTO_ALG_TYPE_CIPHER,
  	.cra_blocksize		=	TEA_BLOCK_SIZE,
  	.cra_ctxsize		=	sizeof (struct tea_ctx),
a429d2609   Herbert Xu   [CRYPTO] cipher: ...
212
  	.cra_alignmask		=	3,
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
213
  	.cra_module		=	THIS_MODULE,
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
214
215
216
217
218
219
  	.cra_u			=	{ .cipher = {
  	.cia_min_keysize	=	TEA_KEY_SIZE,
  	.cia_max_keysize	=	TEA_KEY_SIZE,
  	.cia_setkey		= 	tea_setkey,
  	.cia_encrypt		=	tea_encrypt,
  	.cia_decrypt		=	tea_decrypt } }
738206d32   Jussi Kivilinna   crypto: tea - use...
220
  }, {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
221
  	.cra_name		=	"xtea",
d6ebf5286   Eric Biggers   crypto: make all ...
222
  	.cra_driver_name	=	"xtea-generic",
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
223
224
225
  	.cra_flags		=	CRYPTO_ALG_TYPE_CIPHER,
  	.cra_blocksize		=	XTEA_BLOCK_SIZE,
  	.cra_ctxsize		=	sizeof (struct xtea_ctx),
a429d2609   Herbert Xu   [CRYPTO] cipher: ...
226
  	.cra_alignmask		=	3,
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
227
  	.cra_module		=	THIS_MODULE,
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
228
229
230
231
232
233
  	.cra_u			=	{ .cipher = {
  	.cia_min_keysize	=	XTEA_KEY_SIZE,
  	.cia_max_keysize	=	XTEA_KEY_SIZE,
  	.cia_setkey		= 	xtea_setkey,
  	.cia_encrypt		=	xtea_encrypt,
  	.cia_decrypt		=	xtea_decrypt } }
738206d32   Jussi Kivilinna   crypto: tea - use...
234
  }, {
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
235
  	.cra_name		=	"xeta",
d6ebf5286   Eric Biggers   crypto: make all ...
236
  	.cra_driver_name	=	"xeta-generic",
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
237
238
239
  	.cra_flags		=	CRYPTO_ALG_TYPE_CIPHER,
  	.cra_blocksize		=	XTEA_BLOCK_SIZE,
  	.cra_ctxsize		=	sizeof (struct xtea_ctx),
a429d2609   Herbert Xu   [CRYPTO] cipher: ...
240
  	.cra_alignmask		=	3,
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
241
  	.cra_module		=	THIS_MODULE,
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
242
243
244
245
246
247
  	.cra_u			=	{ .cipher = {
  	.cia_min_keysize	=	XTEA_KEY_SIZE,
  	.cia_max_keysize	=	XTEA_KEY_SIZE,
  	.cia_setkey		= 	xtea_setkey,
  	.cia_encrypt		=	xeta_encrypt,
  	.cia_decrypt		=	xeta_decrypt } }
738206d32   Jussi Kivilinna   crypto: tea - use...
248
  } };
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
249

3af5b90bd   Kamalesh Babulal   [CRYPTO] all: Cle...
250
  static int __init tea_mod_init(void)
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
251
  {
738206d32   Jussi Kivilinna   crypto: tea - use...
252
  	return crypto_register_algs(tea_algs, ARRAY_SIZE(tea_algs));
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
253
  }
3af5b90bd   Kamalesh Babulal   [CRYPTO] all: Cle...
254
  static void __exit tea_mod_fini(void)
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
255
  {
738206d32   Jussi Kivilinna   crypto: tea - use...
256
  	crypto_unregister_algs(tea_algs, ARRAY_SIZE(tea_algs));
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
257
  }
3e14dcf7c   Mathias Krause   crypto: add missi...
258
  MODULE_ALIAS_CRYPTO("tea");
5d26a105b   Kees Cook   crypto: prefix mo...
259
260
  MODULE_ALIAS_CRYPTO("xtea");
  MODULE_ALIAS_CRYPTO("xeta");
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
261

c4741b230   Eric Biggers   crypto: run initc...
262
  subsys_initcall(tea_mod_init);
3af5b90bd   Kamalesh Babulal   [CRYPTO] all: Cle...
263
  module_exit(tea_mod_fini);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
264
265
  
  MODULE_LICENSE("GPL");
fb4f10ed5   Aaron Grothe   [CRYPTO]: Fix XTE...
266
  MODULE_DESCRIPTION("TEA, XTEA & XETA Cryptographic Algorithms");