1 /* SPDX-License-Identifier: GPL-2.0-only */
3 * sha256_base.h - core logic for SHA-256 implementations
5 * Copyright (C) 2015 Linaro Ltd <ard.biesheuvel@linaro.org>
8 #ifndef _CRYPTO_SHA256_BASE_H
9 #define _CRYPTO_SHA256_BASE_H
11 #include <crypto/internal/hash.h>
12 #include <crypto/sha2.h>
13 #include <linux/crypto.h>
14 #include <linux/module.h>
15 #include <linux/string.h>
17 #include <asm/unaligned.h>
19 typedef void (sha256_block_fn)(struct sha256_state *sst, u8 const *src,
22 static inline int sha224_base_init(struct shash_desc *desc)
24 struct sha256_state *sctx = shash_desc_ctx(desc);
30 static inline int sha256_base_init(struct shash_desc *desc)
32 struct sha256_state *sctx = shash_desc_ctx(desc);
38 static inline int sha256_base_do_update(struct shash_desc *desc,
41 sha256_block_fn *block_fn)
43 struct sha256_state *sctx = shash_desc_ctx(desc);
44 unsigned int partial = sctx->count % SHA256_BLOCK_SIZE;
48 if (unlikely((partial + len) >= SHA256_BLOCK_SIZE)) {
52 int p = SHA256_BLOCK_SIZE - partial;
54 memcpy(sctx->buf + partial, data, p);
58 block_fn(sctx, sctx->buf, 1);
61 blocks = len / SHA256_BLOCK_SIZE;
62 len %= SHA256_BLOCK_SIZE;
65 block_fn(sctx, data, blocks);
66 data += blocks * SHA256_BLOCK_SIZE;
71 memcpy(sctx->buf + partial, data, len);
76 static inline int sha256_base_do_finalize(struct shash_desc *desc,
77 sha256_block_fn *block_fn)
79 const int bit_offset = SHA256_BLOCK_SIZE - sizeof(__be64);
80 struct sha256_state *sctx = shash_desc_ctx(desc);
81 __be64 *bits = (__be64 *)(sctx->buf + bit_offset);
82 unsigned int partial = sctx->count % SHA256_BLOCK_SIZE;
84 sctx->buf[partial++] = 0x80;
85 if (partial > bit_offset) {
86 memset(sctx->buf + partial, 0x0, SHA256_BLOCK_SIZE - partial);
89 block_fn(sctx, sctx->buf, 1);
92 memset(sctx->buf + partial, 0x0, bit_offset - partial);
93 *bits = cpu_to_be64(sctx->count << 3);
94 block_fn(sctx, sctx->buf, 1);
99 static inline int sha256_base_finish(struct shash_desc *desc, u8 *out)
101 unsigned int digest_size = crypto_shash_digestsize(desc->tfm);
102 struct sha256_state *sctx = shash_desc_ctx(desc);
103 __be32 *digest = (__be32 *)out;
106 for (i = 0; digest_size > 0; i++, digest_size -= sizeof(__be32))
107 put_unaligned_be32(sctx->state[i], digest++);
109 memzero_explicit(sctx, sizeof(*sctx));
113 #endif /* _CRYPTO_SHA256_BASE_H */