Coverage Report

Created: 2026-05-06 06:56

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/botan/src/lib/mac/mac.cpp
Line
Count
Source
1
/*
2
* Message Authentication Code base class
3
* (C) 1999-2008 Jack Lloyd
4
*
5
* Botan is released under the Simplified BSD License (see license.txt)
6
*/
7
8
#include <botan/mac.h>
9
10
#include <botan/exceptn.h>
11
#include <botan/internal/ct_utils.h>
12
#include <botan/internal/scan_name.h>
13
14
#if defined(BOTAN_HAS_CMAC)
15
   #include <botan/internal/cmac.h>
16
#endif
17
18
#if defined(BOTAN_HAS_GMAC)
19
   #include <botan/block_cipher.h>
20
   #include <botan/internal/gmac.h>
21
#endif
22
23
#if defined(BOTAN_HAS_HMAC)
24
   #include <botan/hash.h>
25
   #include <botan/internal/hmac.h>
26
#endif
27
28
#if defined(BOTAN_HAS_POLY1305)
29
   #include <botan/internal/poly1305.h>
30
#endif
31
32
#if defined(BOTAN_HAS_SIPHASH)
33
   #include <botan/internal/siphash.h>
34
#endif
35
36
#if defined(BOTAN_HAS_ANSI_X919_MAC)
37
   #include <botan/internal/x919_mac.h>
38
#endif
39
40
#if defined(BOTAN_HAS_BLAKE2BMAC)
41
   #include <botan/internal/blake2bmac.h>
42
#endif
43
44
#if defined(BOTAN_HAS_KMAC)
45
   #include <botan/internal/kmac.h>
46
#endif
47
48
namespace Botan {
49
50
std::unique_ptr<MessageAuthenticationCode> MessageAuthenticationCode::create(std::string_view algo_spec,
51
10.8k
                                                                             std::string_view provider) {
52
10.8k
   const SCAN_Name req(algo_spec);
53
54
10.8k
#if defined(BOTAN_HAS_BLAKE2BMAC)
55
10.8k
   if(req.algo_name() == "Blake2b" || req.algo_name() == "BLAKE2b") {
56
0
      return std::make_unique<BLAKE2bMAC>(req.arg_as_integer(0, 512));
57
0
   }
58
10.8k
#endif
59
60
10.8k
#if defined(BOTAN_HAS_GMAC)
61
10.8k
   if(req.algo_name() == "GMAC" && req.arg_count() == 1) {
62
0
      if(provider.empty() || provider == "base") {
63
0
         if(auto bc = BlockCipher::create(req.arg(0))) {
64
0
            return std::make_unique<GMAC>(std::move(bc));
65
0
         }
66
0
      }
67
0
   }
68
10.8k
#endif
69
70
10.8k
#if defined(BOTAN_HAS_HMAC)
71
10.8k
   if(req.algo_name() == "HMAC" && req.arg_count() == 1) {
72
10.8k
      if(provider.empty() || provider == "base") {
73
10.8k
         if(auto hash = HashFunction::create(req.arg(0))) {
74
10.8k
            return std::make_unique<HMAC>(std::move(hash));
75
10.8k
         }
76
10.8k
      }
77
10.8k
   }
78
0
#endif
79
80
0
#if defined(BOTAN_HAS_POLY1305)
81
0
   if(req.algo_name() == "Poly1305" && req.arg_count() == 0) {
82
0
      if(provider.empty() || provider == "base") {
83
0
         return std::make_unique<Poly1305>();
84
0
      }
85
0
   }
86
0
#endif
87
88
0
#if defined(BOTAN_HAS_SIPHASH)
89
0
   if(req.algo_name() == "SipHash") {
90
0
      if(provider.empty() || provider == "base") {
91
0
         return std::make_unique<SipHash>(req.arg_as_integer(0, 2), req.arg_as_integer(1, 4));
92
0
      }
93
0
   }
94
0
#endif
95
96
0
#if defined(BOTAN_HAS_CMAC)
97
0
   if((req.algo_name() == "CMAC" || req.algo_name() == "OMAC") && req.arg_count() == 1) {
98
0
      if(provider.empty() || provider == "base") {
99
0
         if(auto bc = BlockCipher::create(req.arg(0))) {
100
0
            return std::make_unique<CMAC>(std::move(bc));
101
0
         }
102
0
      }
103
0
   }
104
0
#endif
105
106
0
#if defined(BOTAN_HAS_ANSI_X919_MAC)
107
0
   if(req.algo_name() == "X9.19-MAC") {
108
0
      if(provider.empty() || provider == "base") {
109
0
         return std::make_unique<ANSI_X919_MAC>();
110
0
      }
111
0
   }
112
0
#endif
113
114
0
#if defined(BOTAN_HAS_KMAC)
115
0
   if(req.algo_name() == "KMAC-128") {
116
0
      if(provider.empty() || provider == "base") {
117
0
         if(req.arg_count() != 1) {
118
0
            throw Invalid_Argument(
119
0
               "invalid algorithm specification for KMAC-128: need exactly one argument for output bit length");
120
0
         }
121
0
         return std::make_unique<KMAC128>(req.arg_as_integer(0));
122
0
      }
123
0
   }
124
125
0
   if(req.algo_name() == "KMAC-256") {
126
0
      if(provider.empty() || provider == "base") {
127
0
         if(req.arg_count() != 1) {
128
0
            throw Invalid_Argument(
129
0
               "invalid algorithm specification for KMAC-256: need exactly one argument for output bit length");
130
0
         }
131
0
         return std::make_unique<KMAC256>(req.arg_as_integer(0));
132
0
      }
133
0
   }
134
0
#endif
135
136
0
   BOTAN_UNUSED(req);
137
0
   BOTAN_UNUSED(provider);
138
139
0
   return nullptr;
140
0
}
141
142
0
std::vector<std::string> MessageAuthenticationCode::providers(std::string_view algo_spec) {
143
0
   return probe_providers_of<MessageAuthenticationCode>(algo_spec);
144
0
}
145
146
//static
147
std::unique_ptr<MessageAuthenticationCode> MessageAuthenticationCode::create_or_throw(std::string_view algo,
148
9.50k
                                                                                      std::string_view provider) {
149
9.50k
   if(auto mac = MessageAuthenticationCode::create(algo, provider)) {
150
9.50k
      return mac;
151
9.50k
   }
152
0
   throw Lookup_Error("MAC", algo, provider);
153
9.50k
}
154
155
0
void MessageAuthenticationCode::start_msg(std::span<const uint8_t> nonce) {
156
0
   BOTAN_UNUSED(nonce);
157
0
   if(!nonce.empty()) {
158
0
      throw Invalid_IV_Length(name(), nonce.size());
159
0
   }
160
0
}
161
162
/*
163
* Default (deterministic) MAC verification operation
164
*/
165
0
bool MessageAuthenticationCode::verify_mac_result(std::span<const uint8_t> mac) {
166
0
   secure_vector<uint8_t> our_mac = final();
167
168
0
   if(our_mac.size() != mac.size()) {
169
0
      return false;
170
0
   }
171
172
0
   return CT::is_equal(our_mac.data(), mac.data(), mac.size()).as_bool();
173
0
}
174
175
}  // namespace Botan