Coverage Report

Created: 2025-12-31 06:58

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/openssl36/providers/implementations/ciphers/cipher_chacha20_poly1305.c
Line
Count
Source
1
/*
2
 * Copyright 2019-2025 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
/* clang-format off */
10
11
/* clang-format on */
12
13
/* Dispatch functions for chacha20_poly1305 cipher */
14
15
#include <string.h>
16
#include <openssl/proverr.h>
17
#include "cipher_chacha20_poly1305.h"
18
#include "prov/implementations.h"
19
#include "prov/providercommon.h"
20
21
141k
#define CHACHA20_POLY1305_KEYLEN CHACHA_KEY_SIZE
22
129k
#define CHACHA20_POLY1305_BLKLEN 1
23
1.42k
#define CHACHA20_POLY1305_MAX_IVLEN 12
24
8.79k
#define CHACHA20_POLY1305_MODE 0
25
129k
#define CHACHA20_POLY1305_FLAGS (PROV_CIPHER_FLAG_AEAD \
26
129k
    | PROV_CIPHER_FLAG_CUSTOM_IV)
27
28
static OSSL_FUNC_cipher_newctx_fn chacha20_poly1305_newctx;
29
static OSSL_FUNC_cipher_freectx_fn chacha20_poly1305_freectx;
30
static OSSL_FUNC_cipher_dupctx_fn chacha20_poly1305_dupctx;
31
static OSSL_FUNC_cipher_encrypt_init_fn chacha20_poly1305_einit;
32
static OSSL_FUNC_cipher_decrypt_init_fn chacha20_poly1305_dinit;
33
static OSSL_FUNC_cipher_get_params_fn chacha20_poly1305_get_params;
34
static OSSL_FUNC_cipher_get_ctx_params_fn chacha20_poly1305_get_ctx_params;
35
static OSSL_FUNC_cipher_set_ctx_params_fn chacha20_poly1305_set_ctx_params;
36
static OSSL_FUNC_cipher_cipher_fn chacha20_poly1305_cipher;
37
static OSSL_FUNC_cipher_final_fn chacha20_poly1305_final;
38
static OSSL_FUNC_cipher_gettable_ctx_params_fn chacha20_poly1305_gettable_ctx_params;
39
static OSSL_FUNC_cipher_settable_ctx_params_fn chacha20_poly1305_settable_ctx_params;
40
#define chacha20_poly1305_gettable_params ossl_cipher_generic_gettable_params
41
#define chacha20_poly1305_update chacha20_poly1305_cipher
42
43
static void *chacha20_poly1305_newctx(void *provctx)
44
8.79k
{
45
8.79k
    PROV_CHACHA20_POLY1305_CTX *ctx;
46
47
8.79k
    if (!ossl_prov_is_running())
48
0
        return NULL;
49
50
8.79k
    ctx = OPENSSL_zalloc(sizeof(*ctx));
51
8.79k
    if (ctx != NULL) {
52
8.79k
        ossl_cipher_generic_initkey(&ctx->base, CHACHA20_POLY1305_KEYLEN * 8,
53
8.79k
            CHACHA20_POLY1305_BLKLEN * 8,
54
8.79k
            CHACHA20_POLY1305_IVLEN * 8,
55
8.79k
            CHACHA20_POLY1305_MODE,
56
8.79k
            CHACHA20_POLY1305_FLAGS,
57
8.79k
            ossl_prov_cipher_hw_chacha20_poly1305(
58
8.79k
                CHACHA20_POLY1305_KEYLEN * 8),
59
8.79k
            NULL);
60
8.79k
        ctx->tls_payload_length = NO_TLS_PAYLOAD_LENGTH;
61
8.79k
        ossl_chacha20_initctx(&ctx->chacha);
62
8.79k
    }
63
8.79k
    return ctx;
64
8.79k
}
65
66
static void *chacha20_poly1305_dupctx(void *provctx)
67
0
{
68
0
    PROV_CHACHA20_POLY1305_CTX *ctx = provctx;
69
0
    PROV_CHACHA20_POLY1305_CTX *dctx = NULL;
70
71
0
    if (ctx == NULL)
72
0
        return NULL;
73
0
    dctx = OPENSSL_memdup(ctx, sizeof(*ctx));
74
0
    if (dctx != NULL && dctx->base.tlsmac != NULL && dctx->base.alloced) {
75
0
        dctx->base.tlsmac = OPENSSL_memdup(dctx->base.tlsmac,
76
0
            dctx->base.tlsmacsize);
77
0
        if (dctx->base.tlsmac == NULL) {
78
0
            OPENSSL_free(dctx);
79
0
            dctx = NULL;
80
0
        }
81
0
    }
82
0
    return dctx;
83
0
}
84
85
static void chacha20_poly1305_freectx(void *vctx)
86
8.79k
{
87
8.79k
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
88
89
8.79k
    if (ctx != NULL) {
90
8.79k
        ossl_cipher_generic_reset_ctx((PROV_CIPHER_CTX *)vctx);
91
8.79k
        OPENSSL_clear_free(ctx, sizeof(*ctx));
92
8.79k
    }
93
8.79k
}
94
95
static int chacha20_poly1305_get_params(OSSL_PARAM params[])
96
120k
{
97
120k
    return ossl_cipher_generic_get_params(params, 0, CHACHA20_POLY1305_FLAGS,
98
120k
        CHACHA20_POLY1305_KEYLEN * 8,
99
120k
        CHACHA20_POLY1305_BLKLEN * 8,
100
120k
        CHACHA20_POLY1305_IVLEN * 8);
101
120k
}
102
103
/* clang-format off */
104
/* Machine generated by util/perl/OpenSSL/paramnames.pm */
105
#ifndef chacha20_poly1305_get_ctx_params_list
106
static const OSSL_PARAM chacha20_poly1305_get_ctx_params_list[] = {
107
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_KEYLEN, NULL),
108
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_IVLEN, NULL),
109
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_AEAD_TAGLEN, NULL),
110
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TAG, NULL, 0),
111
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_AEAD_TLS1_AAD_PAD, NULL),
112
    OSSL_PARAM_END
113
};
114
#endif
115
116
#ifndef chacha20_poly1305_get_ctx_params_st
117
struct chacha20_poly1305_get_ctx_params_st {
118
    OSSL_PARAM *ivlen;
119
    OSSL_PARAM *keylen;
120
    OSSL_PARAM *pad;
121
    OSSL_PARAM *tag;
122
    OSSL_PARAM *taglen;
123
};
124
#endif
125
126
#ifndef chacha20_poly1305_get_ctx_params_decoder
127
static int chacha20_poly1305_get_ctx_params_decoder
128
    (const OSSL_PARAM *p, struct chacha20_poly1305_get_ctx_params_st *r)
129
42.6k
{
130
42.6k
    const char *s;
131
132
42.6k
    memset(r, 0, sizeof(*r));
133
42.6k
    if (p != NULL)
134
85.3k
        for (; (s = p->key) != NULL; p++)
135
42.6k
            switch(s[0]) {
136
0
            default:
137
0
                break;
138
2.73k
            case 'i':
139
2.73k
                if (ossl_likely(strcmp("vlen", s + 1) == 0)) {
140
                    /* OSSL_CIPHER_PARAM_IVLEN */
141
2.73k
                    if (ossl_unlikely(r->ivlen != NULL)) {
142
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
143
0
                                       "param %s is repeated", s);
144
0
                        return 0;
145
0
                    }
146
2.73k
                    r->ivlen = (OSSL_PARAM *)p;
147
2.73k
                }
148
2.73k
                break;
149
3.02k
            case 'k':
150
3.02k
                if (ossl_likely(strcmp("eylen", s + 1) == 0)) {
151
                    /* OSSL_CIPHER_PARAM_KEYLEN */
152
3.02k
                    if (ossl_unlikely(r->keylen != NULL)) {
153
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
154
0
                                       "param %s is repeated", s);
155
0
                        return 0;
156
0
                    }
157
3.02k
                    r->keylen = (OSSL_PARAM *)p;
158
3.02k
                }
159
3.02k
                break;
160
36.9k
            case 't':
161
36.9k
                switch(s[1]) {
162
0
                default:
163
0
                    break;
164
35.3k
                case 'a':
165
35.3k
                    switch(s[2]) {
166
0
                    default:
167
0
                        break;
168
35.3k
                    case 'g':
169
35.3k
                        switch(s[3]) {
170
0
                        default:
171
0
                            break;
172
0
                        case 'l':
173
0
                            if (ossl_likely(strcmp("en", s + 4) == 0)) {
174
                                /* OSSL_CIPHER_PARAM_AEAD_TAGLEN */
175
0
                                if (ossl_unlikely(r->taglen != NULL)) {
176
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
177
0
                                                   "param %s is repeated", s);
178
0
                                    return 0;
179
0
                                }
180
0
                                r->taglen = (OSSL_PARAM *)p;
181
0
                            }
182
0
                            break;
183
35.3k
                        case '\0':
184
35.3k
                            if (ossl_unlikely(r->tag != NULL)) {
185
0
                                ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
186
0
                                               "param %s is repeated", s);
187
0
                                return 0;
188
0
                            }
189
35.3k
                            r->tag = (OSSL_PARAM *)p;
190
35.3k
                        }
191
35.3k
                    }
192
35.3k
                    break;
193
35.3k
                case 'l':
194
1.55k
                    if (ossl_likely(strcmp("saadpad", s + 2) == 0)) {
195
                        /* OSSL_CIPHER_PARAM_AEAD_TLS1_AAD_PAD */
196
1.54k
                        if (ossl_unlikely(r->pad != NULL)) {
197
0
                            ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
198
0
                                           "param %s is repeated", s);
199
0
                            return 0;
200
0
                        }
201
1.54k
                        r->pad = (OSSL_PARAM *)p;
202
1.54k
                    }
203
36.9k
                }
204
42.6k
            }
205
42.6k
    return 1;
206
42.6k
}
207
#endif
208
/* End of machine generated */
209
/* clang-format on */
210
211
static int chacha20_poly1305_get_ctx_params(void *vctx, OSSL_PARAM params[])
212
42.6k
{
213
42.6k
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
214
42.6k
    struct chacha20_poly1305_get_ctx_params_st p;
215
216
42.6k
    if (ctx == NULL || !chacha20_poly1305_get_ctx_params_decoder(params, &p))
217
0
        return 0;
218
219
42.6k
    if (p.ivlen != NULL
220
2.73k
        && !OSSL_PARAM_set_size_t(p.ivlen, CHACHA20_POLY1305_IVLEN)) {
221
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
222
0
        return 0;
223
0
    }
224
225
42.6k
    if (p.keylen != NULL
226
3.02k
        && !OSSL_PARAM_set_size_t(p.keylen, CHACHA20_POLY1305_KEYLEN)) {
227
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
228
0
        return 0;
229
0
    }
230
231
42.6k
    if (p.taglen != NULL
232
0
        && !OSSL_PARAM_set_size_t(p.taglen, ctx->tag_len)) {
233
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
234
0
        return 0;
235
0
    }
236
237
42.6k
    if (p.pad != NULL
238
1.54k
        && !OSSL_PARAM_set_size_t(p.pad, ctx->tls_aad_pad_sz)) {
239
0
        ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
240
0
        return 0;
241
0
    }
242
243
42.6k
    if (p.tag != NULL) {
244
35.3k
        if (p.tag->data_type != OSSL_PARAM_OCTET_STRING) {
245
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_SET_PARAMETER);
246
0
            return 0;
247
0
        }
248
35.3k
        if (!ctx->base.enc) {
249
0
            ERR_raise(ERR_LIB_PROV, PROV_R_TAG_NOT_SET);
250
0
            return 0;
251
0
        }
252
35.3k
        if (p.tag->data_size == 0 || p.tag->data_size > POLY1305_BLOCK_SIZE) {
253
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_TAG_LENGTH);
254
0
            return 0;
255
0
        }
256
35.3k
        memcpy(p.tag->data, ctx->tag, p.tag->data_size);
257
35.3k
    }
258
42.6k
    return 1;
259
42.6k
}
260
261
static const OSSL_PARAM *chacha20_poly1305_gettable_ctx_params(ossl_unused void *cctx, ossl_unused void *provctx)
262
64
{
263
64
    return chacha20_poly1305_get_ctx_params_list;
264
64
}
265
266
/* clang-format off */
267
/* Machine generated by util/perl/OpenSSL/paramnames.pm */
268
#ifndef chacha20_poly1305_set_ctx_params_list
269
static const OSSL_PARAM chacha20_poly1305_set_ctx_params_list[] = {
270
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_KEYLEN, NULL),
271
    OSSL_PARAM_size_t(OSSL_CIPHER_PARAM_IVLEN, NULL),
272
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TAG, NULL, 0),
273
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TLS1_AAD, NULL, 0),
274
    OSSL_PARAM_octet_string(OSSL_CIPHER_PARAM_AEAD_TLS1_IV_FIXED, NULL, 0),
275
    OSSL_PARAM_END
276
};
277
#endif
278
279
#ifndef chacha20_poly1305_set_ctx_params_st
280
struct chacha20_poly1305_set_ctx_params_st {
281
    OSSL_PARAM *aad;
282
    OSSL_PARAM *fixed;
283
    OSSL_PARAM *ivlen;
284
    OSSL_PARAM *keylen;
285
    OSSL_PARAM *tag;
286
};
287
#endif
288
289
#ifndef chacha20_poly1305_set_ctx_params_decoder
290
static int chacha20_poly1305_set_ctx_params_decoder
291
    (const OSSL_PARAM *p, struct chacha20_poly1305_set_ctx_params_st *r)
292
89.3k
{
293
89.3k
    const char *s;
294
295
89.3k
    memset(r, 0, sizeof(*r));
296
89.3k
    if (p != NULL)
297
52.7k
        for (; (s = p->key) != NULL; p++)
298
26.4k
            switch(s[0]) {
299
0
            default:
300
0
                break;
301
1.42k
            case 'i':
302
1.42k
                if (ossl_likely(strcmp("vlen", s + 1) == 0)) {
303
                    /* OSSL_CIPHER_PARAM_IVLEN */
304
1.42k
                    if (ossl_unlikely(r->ivlen != NULL)) {
305
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
306
0
                                       "param %s is repeated", s);
307
0
                        return 0;
308
0
                    }
309
1.42k
                    r->ivlen = (OSSL_PARAM *)p;
310
1.42k
                }
311
1.42k
                break;
312
1.42k
            case 'k':
313
0
                if (ossl_likely(strcmp("eylen", s + 1) == 0)) {
314
                    /* OSSL_CIPHER_PARAM_KEYLEN */
315
0
                    if (ossl_unlikely(r->keylen != NULL)) {
316
0
                        ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
317
0
                                       "param %s is repeated", s);
318
0
                        return 0;
319
0
                    }
320
0
                    r->keylen = (OSSL_PARAM *)p;
321
0
                }
322
0
                break;
323
25.0k
            case 't':
324
25.0k
                switch(s[1]) {
325
0
                default:
326
0
                    break;
327
23.1k
                case 'a':
328
23.1k
                    if (ossl_likely(strcmp("g", s + 2) == 0)) {
329
                        /* OSSL_CIPHER_PARAM_AEAD_TAG */
330
23.1k
                        if (ossl_unlikely(r->tag != NULL)) {
331
0
                            ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
332
0
                                           "param %s is repeated", s);
333
0
                            return 0;
334
0
                        }
335
23.1k
                        r->tag = (OSSL_PARAM *)p;
336
23.1k
                    }
337
23.1k
                    break;
338
23.1k
                case 'l':
339
1.85k
                    switch(s[2]) {
340
0
                    default:
341
0
                        break;
342
1.85k
                    case 's':
343
1.85k
                        switch(s[3]) {
344
296
                        default:
345
296
                            break;
346
1.56k
                        case 'a':
347
1.56k
                            if (ossl_likely(strcmp("ad", s + 4) == 0)) {
348
                                /* OSSL_CIPHER_PARAM_AEAD_TLS1_AAD */
349
1.56k
                                if (ossl_unlikely(r->aad != NULL)) {
350
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
351
0
                                                   "param %s is repeated", s);
352
0
                                    return 0;
353
0
                                }
354
1.56k
                                r->aad = (OSSL_PARAM *)p;
355
1.56k
                            }
356
1.56k
                            break;
357
1.56k
                        case 'i':
358
0
                            if (ossl_likely(strcmp("vfixed", s + 4) == 0)) {
359
                                /* OSSL_CIPHER_PARAM_AEAD_TLS1_IV_FIXED */
360
0
                                if (ossl_unlikely(r->fixed != NULL)) {
361
0
                                    ERR_raise_data(ERR_LIB_PROV, PROV_R_REPEATED_PARAMETER,
362
0
                                                   "param %s is repeated", s);
363
0
                                    return 0;
364
0
                                }
365
0
                                r->fixed = (OSSL_PARAM *)p;
366
0
                            }
367
1.85k
                        }
368
1.85k
                    }
369
25.0k
                }
370
26.4k
            }
371
89.3k
    return 1;
372
89.3k
}
373
#endif
374
/* End of machine generated */
375
/* clang-format on */
376
377
static const OSSL_PARAM *chacha20_poly1305_settable_ctx_params(
378
    ossl_unused void *cctx, ossl_unused void *provctx)
379
4
{
380
4
    return chacha20_poly1305_set_ctx_params_list;
381
4
}
382
383
static int chacha20_poly1305_set_ctx_params(void *vctx,
384
    const OSSL_PARAM params[])
385
89.3k
{
386
89.3k
    size_t len;
387
89.3k
    PROV_CHACHA20_POLY1305_CTX *ctx = (PROV_CHACHA20_POLY1305_CTX *)vctx;
388
89.3k
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw = (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->base.hw;
389
89.3k
    struct chacha20_poly1305_set_ctx_params_st p;
390
391
89.3k
    if (!chacha20_poly1305_set_ctx_params_decoder(params, &p))
392
0
        return 0;
393
394
89.3k
    if (p.keylen != NULL) {
395
0
        if (!OSSL_PARAM_get_size_t(p.keylen, &len)) {
396
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
397
0
            return 0;
398
0
        }
399
0
        if (len != CHACHA20_POLY1305_KEYLEN) {
400
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_KEY_LENGTH);
401
0
            return 0;
402
0
        }
403
0
    }
404
405
89.3k
    if (p.ivlen != NULL) {
406
1.42k
        if (!OSSL_PARAM_get_size_t(p.ivlen, &len)) {
407
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
408
0
            return 0;
409
0
        }
410
1.42k
        if (len != CHACHA20_POLY1305_MAX_IVLEN) {
411
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_IV_LENGTH);
412
0
            return 0;
413
0
        }
414
1.42k
    }
415
416
89.3k
    if (p.tag != NULL) {
417
23.1k
        if (p.tag->data_type != OSSL_PARAM_OCTET_STRING) {
418
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
419
0
            return 0;
420
0
        }
421
23.1k
        if (p.tag->data_size == 0 || p.tag->data_size > POLY1305_BLOCK_SIZE) {
422
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_TAG_LENGTH);
423
0
            return 0;
424
0
        }
425
23.1k
        if (p.tag->data != NULL) {
426
23.1k
            if (ctx->base.enc) {
427
0
                ERR_raise(ERR_LIB_PROV, PROV_R_TAG_NOT_NEEDED);
428
0
                return 0;
429
0
            }
430
23.1k
            memcpy(ctx->tag, p.tag->data, p.tag->data_size);
431
23.1k
        }
432
23.1k
        ctx->tag_len = p.tag->data_size;
433
23.1k
    }
434
435
89.3k
    if (p.aad != NULL) {
436
1.56k
        if (p.aad->data_type != OSSL_PARAM_OCTET_STRING) {
437
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
438
0
            return 0;
439
0
        }
440
1.56k
        len = hw->tls_init(&ctx->base, p.aad->data, p.aad->data_size);
441
1.56k
        if (len == 0) {
442
17
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_DATA);
443
17
            return 0;
444
17
        }
445
1.54k
        ctx->tls_aad_pad_sz = len;
446
1.54k
    }
447
448
89.3k
    if (p.fixed != NULL) {
449
0
        if (p.fixed->data_type != OSSL_PARAM_OCTET_STRING) {
450
0
            ERR_raise(ERR_LIB_PROV, PROV_R_FAILED_TO_GET_PARAMETER);
451
0
            return 0;
452
0
        }
453
0
        if (hw->tls_iv_set_fixed(&ctx->base, p.fixed->data,
454
0
                p.fixed->data_size)
455
0
            == 0) {
456
0
            ERR_raise(ERR_LIB_PROV, PROV_R_INVALID_IV_LENGTH);
457
0
            return 0;
458
0
        }
459
0
    }
460
89.3k
    return 1;
461
89.3k
}
462
463
static int chacha20_poly1305_einit(void *vctx, const unsigned char *key,
464
    size_t keylen, const unsigned char *iv,
465
    size_t ivlen, const OSSL_PARAM params[])
466
99.4k
{
467
99.4k
    int ret;
468
469
    /* The generic function checks for ossl_prov_is_running() */
470
99.4k
    ret = ossl_cipher_generic_einit(vctx, key, keylen, iv, ivlen, NULL);
471
99.4k
    if (ret && iv != NULL) {
472
93.9k
        PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
473
93.9k
        PROV_CIPHER_HW_CHACHA20_POLY1305 *hw = (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
474
475
93.9k
        hw->initiv(ctx);
476
93.9k
    }
477
99.4k
    if (ret && !chacha20_poly1305_set_ctx_params(vctx, params))
478
0
        ret = 0;
479
99.4k
    return ret;
480
99.4k
}
481
482
static int chacha20_poly1305_dinit(void *vctx, const unsigned char *key,
483
    size_t keylen, const unsigned char *iv,
484
    size_t ivlen, const OSSL_PARAM params[])
485
84.0k
{
486
84.0k
    int ret;
487
488
    /* The generic function checks for ossl_prov_is_running() */
489
84.0k
    ret = ossl_cipher_generic_dinit(vctx, key, keylen, iv, ivlen, NULL);
490
84.0k
    if (ret && iv != NULL) {
491
80.6k
        PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
492
80.6k
        PROV_CIPHER_HW_CHACHA20_POLY1305 *hw = (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
493
494
80.6k
        hw->initiv(ctx);
495
80.6k
    }
496
84.0k
    if (ret && !chacha20_poly1305_set_ctx_params(vctx, params))
497
0
        ret = 0;
498
84.0k
    return ret;
499
84.0k
}
500
501
static int chacha20_poly1305_cipher(void *vctx, unsigned char *out,
502
    size_t *outl, size_t outsize,
503
    const unsigned char *in, size_t inl)
504
348k
{
505
348k
    PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
506
348k
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw = (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
507
508
348k
    if (!ossl_prov_is_running())
509
0
        return 0;
510
511
348k
    if (inl == 0) {
512
0
        *outl = 0;
513
0
        return 1;
514
0
    }
515
516
348k
    if (outsize < inl) {
517
0
        ERR_raise(ERR_LIB_PROV, PROV_R_OUTPUT_BUFFER_TOO_SMALL);
518
0
        return 0;
519
0
    }
520
521
348k
    if (!hw->aead_cipher(ctx, out, outl, in, inl))
522
6.98k
        return 0;
523
524
341k
    return 1;
525
348k
}
526
527
static int chacha20_poly1305_final(void *vctx, unsigned char *out, size_t *outl,
528
    size_t outsize)
529
131k
{
530
131k
    PROV_CIPHER_CTX *ctx = (PROV_CIPHER_CTX *)vctx;
531
131k
    PROV_CIPHER_HW_CHACHA20_POLY1305 *hw = (PROV_CIPHER_HW_CHACHA20_POLY1305 *)ctx->hw;
532
533
131k
    if (!ossl_prov_is_running())
534
0
        return 0;
535
536
131k
    if (hw->aead_cipher(ctx, out, outl, NULL, 0) <= 0)
537
66.5k
        return 0;
538
539
65.2k
    *outl = 0;
540
65.2k
    return 1;
541
131k
}
542
543
/* ossl_chacha20_ossl_poly1305_functions */
544
const OSSL_DISPATCH ossl_chacha20_ossl_poly1305_functions[] = {
545
    { OSSL_FUNC_CIPHER_NEWCTX, (void (*)(void))chacha20_poly1305_newctx },
546
    { OSSL_FUNC_CIPHER_FREECTX, (void (*)(void))chacha20_poly1305_freectx },
547
    { OSSL_FUNC_CIPHER_DUPCTX, (void (*)(void))chacha20_poly1305_dupctx },
548
    { OSSL_FUNC_CIPHER_ENCRYPT_INIT, (void (*)(void))chacha20_poly1305_einit },
549
    { OSSL_FUNC_CIPHER_DECRYPT_INIT, (void (*)(void))chacha20_poly1305_dinit },
550
    { OSSL_FUNC_CIPHER_UPDATE, (void (*)(void))chacha20_poly1305_update },
551
    { OSSL_FUNC_CIPHER_FINAL, (void (*)(void))chacha20_poly1305_final },
552
    { OSSL_FUNC_CIPHER_CIPHER, (void (*)(void))chacha20_poly1305_cipher },
553
    { OSSL_FUNC_CIPHER_GET_PARAMS,
554
        (void (*)(void))chacha20_poly1305_get_params },
555
    { OSSL_FUNC_CIPHER_GETTABLE_PARAMS,
556
        (void (*)(void))chacha20_poly1305_gettable_params },
557
    { OSSL_FUNC_CIPHER_GET_CTX_PARAMS,
558
        (void (*)(void))chacha20_poly1305_get_ctx_params },
559
    { OSSL_FUNC_CIPHER_GETTABLE_CTX_PARAMS,
560
        (void (*)(void))chacha20_poly1305_gettable_ctx_params },
561
    { OSSL_FUNC_CIPHER_SET_CTX_PARAMS,
562
        (void (*)(void))chacha20_poly1305_set_ctx_params },
563
    { OSSL_FUNC_CIPHER_SETTABLE_CTX_PARAMS,
564
        (void (*)(void))chacha20_poly1305_settable_ctx_params },
565
    OSSL_DISPATCH_END
566
};