Coverage Report

Created: 2025-08-28 06:41

/src/openssl/providers/implementations/ciphers/cipher_chacha20_poly1305.c
Line
Count
Source (jump to first uncovered line)
1
/*
2
 * Copyright 2019-2023 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
11
/* Dispatch functions for chacha20_poly1305 cipher */
12
13
#include <string.h>
14
#include <openssl/proverr.h>
15
#include "cipher_chacha20_poly1305.h"
16
#include "prov/implementations.h"
17
#include "prov/providercommon.h"
18
19
1
#define CHACHA20_POLY1305_KEYLEN CHACHA_KEY_SIZE
20
1
#define CHACHA20_POLY1305_BLKLEN 1
21
0
#define CHACHA20_POLY1305_MAX_IVLEN 12
22
0
#define CHACHA20_POLY1305_MODE 0
23
1
#define CHACHA20_POLY1305_FLAGS (PROV_CIPHER_FLAG_AEAD                         \
24
1
                                 | PROV_CIPHER_FLAG_CUSTOM_IV)
25
26
static OSSL_FUNC_cipher_newctx_fn chacha20_poly1305_newctx;
27
static OSSL_FUNC_cipher_freectx_fn chacha20_poly1305_freectx;
28
static OSSL_FUNC_cipher_dupctx_fn chacha20_poly1305_dupctx;
29
static OSSL_FUNC_cipher_encrypt_init_fn chacha20_poly1305_einit;
30
static OSSL_FUNC_cipher_decrypt_init_fn chacha20_poly1305_dinit;
31
static OSSL_FUNC_cipher_get_params_fn chacha20_poly1305_get_params;
32
static OSSL_FUNC_cipher_get_ctx_params_fn chacha20_poly1305_get_ctx_params;
33
static OSSL_FUNC_cipher_set_ctx_params_fn chacha20_poly1305_set_ctx_params;
34
static OSSL_FUNC_cipher_cipher_fn chacha20_poly1305_cipher;
35
static OSSL_FUNC_cipher_final_fn chacha20_poly1305_final;
36
static OSSL_FUNC_cipher_gettable_ctx_params_fn chacha20_poly1305_gettable_ctx_params;
37
static OSSL_FUNC_cipher_settable_ctx_params_fn chacha20_poly1305_settable_ctx_params;
38
#define chacha20_poly1305_gettable_params ossl_cipher_generic_gettable_params
39
#define chacha20_poly1305_update chacha20_poly1305_cipher
40
41
static void *chacha20_poly1305_newctx(void *provctx)
42
0
{
43
0
    PROV_CHACHA20_POLY1305_CTX *ctx;
44
45
0
    if (!ossl_prov_is_running())
46
0
        return NULL;
47
48
0
    ctx = OPENSSL_zalloc(sizeof(*ctx));
49
0
    if (ctx != NULL) {
50
0
        ossl_cipher_generic_initkey(&ctx->base, CHACHA20_POLY1305_KEYLEN * 8,
51
0
                                    CHACHA20_POLY1305_BLKLEN * 8,
52
0
                                    CHACHA20_POLY1305_IVLEN * 8,
53
0
                                    CHACHA20_POLY1305_MODE,
54
0
                                    CHACHA20_POLY1305_FLAGS,
55
0
                                    ossl_prov_cipher_hw_chacha20_poly1305(
56
0
                                        CHACHA20_POLY1305_KEYLEN * 8),
57
0
                                    NULL);
58
0
        ctx->tls_payload_length = NO_TLS_PAYLOAD_LENGTH;
59
0
        ossl_chacha20_initctx(&ctx->chacha);
60
0
    }
61
0
    return ctx;
62
0
}
63
64
static void *chacha20_poly1305_dupctx(void *provctx)
65
0
{
66
0
    PROV_CHACHA20_POLY1305_CTX *ctx = provctx;
67
0
    PROV_CHACHA20_POLY1305_CTX *dctx = NULL;
68
69
0
    if (ctx == NULL)
70
0
        return NULL;
71
0
    dctx = OPENSSL_memdup(ctx, sizeof(*ctx));
72
0
    if (dctx != NULL && dctx->base.tlsmac != NULL && dctx->base.alloced) {
73
0
        dctx->base.tlsmac = OPENSSL_memdup(dctx->base.tlsmac,
74
0
                                           dctx->base.tlsmacsize);
75
0
        if (dctx->base.tlsmac == NULL) {
76
0
            OPENSSL_free(dctx);
77
0
            dctx = NULL;
78
0
        }
79
0
    }
80
0
    return dctx;
81
0
}
82
83
static void chacha20_poly1305_freectx(void *vctx)
84
0
{
85
0
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
86
87
0
    if (ctx != NULL) {
88
0
        ossl_cipher_generic_reset_ctx((PROV_CIPHER_CTX *)vctx);
89
0
        OPENSSL_clear_free(ctx, sizeof(*ctx));
90
0
    }
91
0
}
92
93
static int chacha20_poly1305_get_params(OSSL_PARAM params[])
94
1
{
95
1
    return ossl_cipher_generic_get_params(params, 0, CHACHA20_POLY1305_FLAGS,
96
1
                                          CHACHA20_POLY1305_KEYLEN * 8,
97
1
                                          CHACHA20_POLY1305_BLKLEN * 8,
98
1
                                          CHACHA20_POLY1305_IVLEN * 8);
99
1
}
100
101
/* Machine generated by util/perl/OpenSSL/paramnames.pm */
102
#ifndef chacha20_poly1305_get_ctx_params_list
103
static const OSSL_PARAM chacha20_poly1305_get_ctx_params_list[] = {
104
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_KEYLEN, NULL),
105
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_IVLEN, NULL),
106
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_AEAD_TAGLEN, NULL),
107
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TAG, NULL, 0),
108
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_AEAD_TLS1_AAD_PAD, NULL),
109
    OSSL_PARAM_END
110
};
111
#endif
112
113
#ifndef chacha20_poly1305_get_ctx_params_st
114
struct chacha20_poly1305_get_ctx_params_st {
115
    OSSL_PARAM *ivlen;
116
    OSSL_PARAM *keylen;
117
    OSSL_PARAM *pad;
118
    OSSL_PARAM *tag;
119
    OSSL_PARAM *taglen;
120
};
121
#endif
122
123
#ifndef chacha20_poly1305_get_ctx_params_decoder
124
static int chacha20_poly1305_get_ctx_params_decoder
125
    (const OSSL_PARAM *p, struct chacha20_poly1305_get_ctx_params_st *r)
126
0
{
127
0
    const char *s;
128
129
0
    memset(r, 0, sizeof(*r));
130
0
    if (p != NULL)
131
0
        for (; (s = p->key) != NULL; p++)
132
0
            switch(s[0]) {
133
0
            default:
134
0
                break;
135
0
            case 'i':
136
0
                if (ossl_likely(strcmp("vlen", s + 1) == 0)) {
137
                    /* CIPHER_PARAM_IVLEN */
138
0
                    if (ossl_unlikely(r->ivlen != NULL)) {
139
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
140
0
                                       "param %s is repeated", s);
141
0
                        return 0;
142
0
                    }
143
0
                    r->ivlen = (OSSL_PARAM *)p;
144
0
                }
145
0
                break;
146
0
            case 'k':
147
0
                if (ossl_likely(strcmp("eylen", s + 1) == 0)) {
148
                    /* CIPHER_PARAM_KEYLEN */
149
0
                    if (ossl_unlikely(r->keylen != NULL)) {
150
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
151
0
                                       "param %s is repeated", s);
152
0
                        return 0;
153
0
                    }
154
0
                    r->keylen = (OSSL_PARAM *)p;
155
0
                }
156
0
                break;
157
0
            case 't':
158
0
                switch(s[1]) {
159
0
                default:
160
0
                    break;
161
0
                case 'a':
162
0
                    switch(s[2]) {
163
0
                    default:
164
0
                        break;
165
0
                    case 'g':
166
0
                        switch(s[3]) {
167
0
                        default:
168
0
                            break;
169
0
                        case 'l':
170
0
                            if (ossl_likely(strcmp("en", s + 4) == 0)) {
171
                                /* CIPHER_PARAM_AEAD_TAGLEN */
172
0
                                if (ossl_unlikely(r->taglen != NULL)) {
173
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
174
0
                                                   "param %s is repeated", s);
175
0
                                    return 0;
176
0
                                }
177
0
                                r->taglen = (OSSL_PARAM *)p;
178
0
                            }
179
0
                            break;
180
0
                        case '\0':
181
0
                            if (ossl_unlikely(r->tag != NULL)) {
182
0
                                ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
183
0
                                               "param %s is repeated", s);
184
0
                                return 0;
185
0
                            }
186
0
                            r->tag = (OSSL_PARAM *)p;
187
0
                        }
188
0
                    }
189
0
                    break;
190
0
                case 'l':
191
0
                    if (ossl_likely(strcmp("saadpad", s + 2) == 0)) {
192
                        /* CIPHER_PARAM_AEAD_TLS1_AAD_PAD */
193
0
                        if (ossl_unlikely(r->pad != NULL)) {
194
0
                            ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
195
0
                                           "param %s is repeated", s);
196
0
                            return 0;
197
0
                        }
198
0
                        r->pad = (OSSL_PARAM *)p;
199
0
                    }
200
0
                }
201
0
            }
202
0
    return 1;
203
0
}
204
#endif
205
/* End of machine generated */
206
207
static int chacha20_poly1305_get_ctx_params(void *vctx, OSSL_PARAM params[])
208
0
{
209
0
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
210
0
    struct chacha20_poly1305_get_ctx_params_st p;
211
212
0
    if (ctx == NULL || !chacha20_poly1305_get_ctx_params_decoder(params, &p))
213
0
        return 0;
214
215
0
    if (p.ivlen != NULL
216
0
            && !OSSL_PARAM_set_size_t(p.ivlen, CHACHA20_POLY1305_IVLEN)) {
217
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
218
0
        return 0;
219
0
    }
220
221
0
    if (p.keylen != NULL
222
0
            && !OSSL_PARAM_set_size_t(p.keylen, CHACHA20_POLY1305_KEYLEN)) {
223
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
224
0
        return 0;
225
0
    }
226
227
0
    if (p.taglen != NULL
228
0
            && !OSSL_PARAM_set_size_t(p.taglen, ctx->tag_len)) {
229
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
230
0
        return 0;
231
0
    }
232
233
0
    if (p.pad != NULL
234
0
            && !OSSL_PARAM_set_size_t(p.pad, ctx->tls_aad_pad_sz)) {
235
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
236
0
        return 0;
237
0
    }
238
239
0
    if (p.tag != NULL) {
240
0
        if (p.tag->data_type != OSSL_PARAM_OCTET_STRING) {
241
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
242
0
            return 0;
243
0
        }
244
0
        if (!ctx->base.enc) {
245
0
            ERR_raise(ERR_LIB_PROV, PROV_R_TAG_NOT_SET);
246
0
            return 0;
247
0
        }
248
0
        if (p.tag->data_size == 0 || p.tag->data_size > POLY1305_BLOCK_SIZE) {
249
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_TAG_LENGTH);
250
0
            return 0;
251
0
        }
252
0
        memcpy(p.tag->data, ctx->tag, p.tag->data_size);
253
0
    }
254
0
    return 1;
255
0
}
256
257
static const OSSL_PARAM *chacha20_poly1305_gettable_ctx_params
258
    (ossl_unused void *cctx, ossl_unused void *provctx)
259
1
{
260
1
    return chacha20_poly1305_get_ctx_params_list;
261
1
}
262
263
/* Machine generated by util/perl/OpenSSL/paramnames.pm */
264
#ifndef chacha20_poly1305_set_ctx_params_list
265
static const OSSL_PARAM chacha20_poly1305_set_ctx_params_list[] = {
266
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_KEYLEN, NULL),
267
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_IVLEN, NULL),
268
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TAG, NULL, 0),
269
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TLS1_AAD, NULL, 0),
270
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TLS1_IV_FIXED, NULL, 0),
271
    OSSL_PARAM_END
272
};
273
#endif
274
275
#ifndef chacha20_poly1305_set_ctx_params_st
276
struct chacha20_poly1305_set_ctx_params_st {
277
    OSSL_PARAM *aad;
278
    OSSL_PARAM *fixed;
279
    OSSL_PARAM *ivlen;
280
    OSSL_PARAM *keylen;
281
    OSSL_PARAM *tag;
282
};
283
#endif
284
285
#ifndef chacha20_poly1305_set_ctx_params_decoder
286
static int chacha20_poly1305_set_ctx_params_decoder
287
    (const OSSL_PARAM *p, struct chacha20_poly1305_set_ctx_params_st *r)
288
0
{
289
0
    const char *s;
290
291
0
    memset(r, 0, sizeof(*r));
292
0
    if (p != NULL)
293
0
        for (; (s = p->key) != NULL; p++)
294
0
            switch(s[0]) {
295
0
            default:
296
0
                break;
297
0
            case 'i':
298
0
                if (ossl_likely(strcmp("vlen", s + 1) == 0)) {
299
                    /* CIPHER_PARAM_IVLEN */
300
0
                    if (ossl_unlikely(r->ivlen != NULL)) {
301
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
302
0
                                       "param %s is repeated", s);
303
0
                        return 0;
304
0
                    }
305
0
                    r->ivlen = (OSSL_PARAM *)p;
306
0
                }
307
0
                break;
308
0
            case 'k':
309
0
                if (ossl_likely(strcmp("eylen", s + 1) == 0)) {
310
                    /* CIPHER_PARAM_KEYLEN */
311
0
                    if (ossl_unlikely(r->keylen != NULL)) {
312
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
313
0
                                       "param %s is repeated", s);
314
0
                        return 0;
315
0
                    }
316
0
                    r->keylen = (OSSL_PARAM *)p;
317
0
                }
318
0
                break;
319
0
            case 't':
320
0
                switch(s[1]) {
321
0
                default:
322
0
                    break;
323
0
                case 'a':
324
0
                    if (ossl_likely(strcmp("g", s + 2) == 0)) {
325
                        /* CIPHER_PARAM_AEAD_TAG */
326
0
                        if (ossl_unlikely(r->tag != NULL)) {
327
0
                            ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
328
0
                                           "param %s is repeated", s);
329
0
                            return 0;
330
0
                        }
331
0
                        r->tag = (OSSL_PARAM *)p;
332
0
                    }
333
0
                    break;
334
0
                case 'l':
335
0
                    switch(s[2]) {
336
0
                    default:
337
0
                        break;
338
0
                    case 's':
339
0
                        switch(s[3]) {
340
0
                        default:
341
0
                            break;
342
0
                        case 'a':
343
0
                            if (ossl_likely(strcmp("ad", s + 4) == 0)) {
344
                                /* CIPHER_PARAM_AEAD_TLS1_AAD */
345
0
                                if (ossl_unlikely(r->aad != NULL)) {
346
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
347
0
                                                   "param %s is repeated", s);
348
0
                                    return 0;
349
0
                                }
350
0
                                r->aad = (OSSL_PARAM *)p;
351
0
                            }
352
0
                            break;
353
0
                        case 'i':
354
0
                            if (ossl_likely(strcmp("vfixed", s + 4) == 0)) {
355
                                /* CIPHER_PARAM_AEAD_TLS1_IV_FIXED */
356
0
                                if (ossl_unlikely(r->fixed != NULL)) {
357
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
358
0
                                                   "param %s is repeated", s);
359
0
                                    return 0;
360
0
                                }
361
0
                                r->fixed = (OSSL_PARAM *)p;
362
0
                            }
363
0
                        }
364
0
                    }
365
0
                }
366
0
            }
367
0
    return 1;
368
0
}
369
#endif
370
/* End of machine generated */
371
372
static const OSSL_PARAM *chacha20_poly1305_settable_ctx_params(
373
        ossl_unused void *cctx, ossl_unused void *provctx
374
    )
375
0
{
376
0
    return chacha20_poly1305_set_ctx_params_list;
377
0
}
378
379
static int chacha20_poly1305_set_ctx_params(void *vctx,
380
                                            const OSSL_PARAM params[])
381
0
{
382
0
    size_t len;
383
0
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
384
0
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw =
385
0
        (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->base.hw;
386
0
    struct chacha20_poly1305_set_ctx_params_st p;
387
388
0
    if (!chacha20_poly1305_set_ctx_params_decoder(params, &p))
389
0
        return 0;
390
391
392
0
    if (p.keylen != NULL) {
393
0
        if (!OSSL_PARAM_get_size_t(p.keylen, &len)) {
394
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
395
0
            return 0;
396
0
        }
397
0
        if (len != CHACHA20_POLY1305_KEYLEN) {
398
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_KEY_LENGTH);
399
0
            return 0;
400
0
        }
401
0
    }
402
403
0
    if (p.ivlen != NULL) {
404
0
        if (!OSSL_PARAM_get_size_t(p.ivlen, &len)) {
405
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
406
0
            return 0;
407
0
        }
408
0
        if (len != CHACHA20_POLY1305_MAX_IVLEN) {
409
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_IV_LENGTH);
410
0
            return 0;
411
0
        }
412
0
    }
413
414
0
    if (p.tag != NULL) {
415
0
        if (p.tag->data_type != OSSL_PARAM_OCTET_STRING) {
416
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
417
0
            return 0;
418
0
        }
419
0
        if (p.tag->data_size == 0 || p.tag->data_size > POLY1305_BLOCK_SIZE) {
420
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_TAG_LENGTH);
421
0
            return 0;
422
0
        }
423
0
        if (p.tag->data != NULL) {
424
0
            if (ctx->base.enc) {
425
0
                ERR_raise(ERR_LIB_PROV, PROV_R_TAG_NOT_NEEDED);
426
0
                return 0;
427
0
            }
428
0
            memcpy(ctx->tag, p.tag->data, p.tag->data_size);
429
0
        }
430
0
        ctx->tag_len = p.tag->data_size;
431
0
    }
432
433
0
    if (p.aad != NULL) {
434
0
        if (p.aad->data_type != OSSL_PARAM_OCTET_STRING) {
435
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
436
0
            return 0;
437
0
        }
438
0
        len = hw->tls_init(&ctx->base, p.aad->data, p.aad->data_size);
439
0
        if (len == 0) {
440
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_DATA);
441
0
            return 0;
442
0
        }
443
0
        ctx->tls_aad_pad_sz = len;
444
0
    }
445
446
0
    if (p.fixed != NULL) {
447
0
        if (p.fixed->data_type != OSSL_PARAM_OCTET_STRING) {
448
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
449
0
            return 0;
450
0
        }
451
0
        if (hw->tls_iv_set_fixed(&ctx->base, p.fixed->data,
452
0
                                 p.fixed->data_size) == 0) {
453
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_IV_LENGTH);
454
0
            return 0;
455
0
        }
456
0
    }
457
0
    return 1;
458
0
}
459
460
static int chacha20_poly1305_einit(void *vctx, const unsigned char *key,
461
                                  size_t keylen, const unsigned char *iv,
462
                                  size_t ivlen, const OSSL_PARAM params[])
463
0
{
464
0
    int ret;
465
466
    /* The generic function checks for ossl_prov_is_running() */
467
0
    ret = ossl_cipher_generic_einit(vctx, key, keylen, iv, ivlen, NULL);
468
0
    if (ret && iv != NULL) {
469
0
        PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
470
0
        PROV_CIPHER_HW_CHACHA20_POLY1305 *hw =
471
0
            (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
472
473
0
        hw->initiv(ctx);
474
0
    }
475
0
    if (ret && !chacha20_poly1305_set_ctx_params(vctx, params))
476
0
        ret = 0;
477
0
    return ret;
478
0
}
479
480
static int chacha20_poly1305_dinit(void *vctx, const unsigned char *key,
481
                                  size_t keylen, const unsigned char *iv,
482
                                  size_t ivlen, const OSSL_PARAM params[])
483
0
{
484
0
    int ret;
485
486
    /* The generic function checks for ossl_prov_is_running() */
487
0
    ret = ossl_cipher_generic_dinit(vctx, key, keylen, iv, ivlen, NULL);
488
0
    if (ret && iv != NULL) {
489
0
        PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
490
0
        PROV_CIPHER_HW_CHACHA20_POLY1305 *hw =
491
0
            (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
492
493
0
        hw->initiv(ctx);
494
0
    }
495
0
    if (ret && !chacha20_poly1305_set_ctx_params(vctx, params))
496
0
        ret = 0;
497
0
    return ret;
498
0
}
499
500
static int chacha20_poly1305_cipher(void *vctx, unsigned char *out,
501
                                    size_t *outl, size_t outsize,
502
                                    const unsigned char *in, size_t inl)
503
0
{
504
0
    PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
505
0
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw =
506
0
        (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
507
508
0
    if (!ossl_prov_is_running())
509
0
        return 0;
510
511
0
    if (inl == 0) {
512
0
        *outl = 0;
513
0
        return 1;
514
0
    }
515
516
0
    if (outsize < inl) {
517
0
        ERR_raise(ERR_LIB_PROV, PROV_R_OUTPUT_BUFFER_TOO_SMALL);
518
0
        return 0;
519
0
    }
520
521
0
    if (!hw->aead_cipher(ctx, out, outl, in, inl))
522
0
        return 0;
523
524
0
    return 1;
525
0
}
526
527
static int chacha20_poly1305_final(void *vctx, unsigned char *out, size_t *outl,
528
                                   size_t outsize)
529
0
{
530
0
    PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
531
0
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw =
532
0
        (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
533
534
0
    if (!ossl_prov_is_running())
535
0
        return 0;
536
537
0
    if (hw->aead_cipher(ctx, out, outl, NULL, 0) <= 0)
538
0
        return 0;
539
540
0
    *outl = 0;
541
0
    return 1;
542
0
}
543
544
/* ossl_chacha20_ossl_poly1305_functions */
545
const OSSL_DISPATCH ossl_chacha20_ossl_poly1305_functions[] = {
546
    { OSSL_FUNC_CIPHER_NEWCTX, (void (*)(void))chacha20_poly1305_newctx },
547
    { OSSL_FUNC_CIPHER_FREECTX, (void (*)(void))chacha20_poly1305_freectx },
548
    { OSSL_FUNC_CIPHER_DUPCTX, (void (*)(void))chacha20_poly1305_dupctx },
549
    { OSSL_FUNC_CIPHER_ENCRYPT_INIT, (void (*)(void))chacha20_poly1305_einit },
550
    { OSSL_FUNC_CIPHER_DECRYPT_INIT, (void (*)(void))chacha20_poly1305_dinit },
551
    { OSSL_FUNC_CIPHER_UPDATE, (void (*)(void))chacha20_poly1305_update },
552
    { OSSL_FUNC_CIPHER_FINAL, (void (*)(void))chacha20_poly1305_final },
553
    { OSSL_FUNC_CIPHER_CIPHER, (void (*)(void))chacha20_poly1305_cipher },
554
    { OSSL_FUNC_CIPHER_GET_PARAMS,
555
        (void (*)(void))chacha20_poly1305_get_params },
556
    { OSSL_FUNC_CIPHER_GETTABLE_PARAMS,
557
        (void (*)(void))chacha20_poly1305_gettable_params },
558
    { OSSL_FUNC_CIPHER_GET_CTX_PARAMS,
559
         (void (*)(void))chacha20_poly1305_get_ctx_params },
560
    { OSSL_FUNC_CIPHER_GETTABLE_CTX_PARAMS,
561
        (void (*)(void))chacha20_poly1305_gettable_ctx_params },
562
    { OSSL_FUNC_CIPHER_SET_CTX_PARAMS,
563
        (void (*)(void))chacha20_poly1305_set_ctx_params },
564
    { OSSL_FUNC_CIPHER_SETTABLE_CTX_PARAMS,
565
        (void (*)(void))chacha20_poly1305_settable_ctx_params },
566
    OSSL_DISPATCH_END
567
};
568