blob: 2ddf13b4281e14fa0906648f4e0bec0546ac5f29 [file] [log] [blame]
Greg Kroah-Hartmanb2441312017-11-01 15:07:57 +01001/* SPDX-License-Identifier: GPL-2.0 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002/*
3 * include/linux/random.h
4 *
5 * Include file for the random number generator.
6 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07007#ifndef _LINUX_RANDOM_H
8#define _LINUX_RANDOM_H
9
Herbert Xu205a5252015-06-09 18:19:39 +080010#include <linux/list.h>
Daniel Borkmann897ece52015-10-08 01:20:38 +020011#include <linux/once.h>
12
David Howells607ca462012-10-13 10:46:48 +010013#include <uapi/linux/random.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070014
Herbert Xu205a5252015-06-09 18:19:39 +080015struct random_ready_callback {
16 struct list_head list;
17 void (*func)(struct random_ready_callback *rdy);
18 struct module *owner;
19};
20
Linus Torvaldsa2080a62012-07-04 11:16:01 -040021extern void add_device_randomness(const void *, unsigned int);
Emese Revfy38addce2016-06-20 20:41:19 +020022
23#if defined(CONFIG_GCC_PLUGIN_LATENT_ENTROPY) && !defined(__CHECKER__)
24static inline void add_latent_entropy(void)
25{
26 add_device_randomness((const void *)&latent_entropy,
27 sizeof(latent_entropy));
28}
29#else
30static inline void add_latent_entropy(void) {}
31#endif
32
Linus Torvalds1da177e2005-04-16 15:20:36 -070033extern void add_input_randomness(unsigned int type, unsigned int code,
Emese Revfy0766f782016-06-20 20:42:34 +020034 unsigned int value) __latent_entropy;
35extern void add_interrupt_randomness(int irq, int irq_flags) __latent_entropy;
Linus Torvalds1da177e2005-04-16 15:20:36 -070036
37extern void get_random_bytes(void *buf, int nbytes);
Jason A. Donenfelde297a782017-06-07 19:58:56 -040038extern int wait_for_random_bytes(void);
Herbert Xu205a5252015-06-09 18:19:39 +080039extern int add_random_ready_callback(struct random_ready_callback *rdy);
40extern void del_random_ready_callback(struct random_ready_callback *rdy);
Theodore Ts'oc2557a32012-07-05 10:35:23 -040041extern void get_random_bytes_arch(void *buf, int nbytes);
Linus Torvalds1da177e2005-04-16 15:20:36 -070042
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#ifndef MODULE
Arjan van de Ven54047322007-02-12 00:55:28 -080044extern const struct file_operations random_fops, urandom_fops;
Linus Torvalds1da177e2005-04-16 15:20:36 -070045#endif
46
Jason A. Donenfeldc4404082017-01-22 16:34:08 +010047u32 get_random_u32(void);
48u64 get_random_u64(void);
49static inline unsigned int get_random_int(void)
50{
51 return get_random_u32();
52}
53static inline unsigned long get_random_long(void)
54{
55#if BITS_PER_LONG == 64
56 return get_random_u64();
57#else
58 return get_random_u32();
59#endif
60}
61
Rik van Riel022c2042017-07-12 14:36:17 -070062/*
63 * On 64-bit architectures, protect against non-terminated C string overflows
64 * by zeroing out the first byte of the canary; this leaves 56 bits of entropy.
65 */
66#ifdef CONFIG_64BIT
67# ifdef __LITTLE_ENDIAN
68# define CANARY_MASK 0xffffffffffffff00UL
69# else /* big endian, 64 bits: */
70# define CANARY_MASK 0x00ffffffffffffffUL
71# endif
72#else /* 32 bits: */
73# define CANARY_MASK 0xffffffffUL
74#endif
75
76static inline unsigned long get_random_canary(void)
77{
78 unsigned long val = get_random_long();
79
80 return val & CANARY_MASK;
81}
82
Jason A. Donenfeldda9ba562017-06-07 20:05:02 -040083/* Calls wait_for_random_bytes() and then calls get_random_bytes(buf, nbytes).
84 * Returns the result of the call to wait_for_random_bytes. */
85static inline int get_random_bytes_wait(void *buf, int nbytes)
86{
87 int ret = wait_for_random_bytes();
Jason A. Donenfeldda9ba562017-06-07 20:05:02 -040088 get_random_bytes(buf, nbytes);
Jason A. Donenfeld25e3fca2018-02-04 23:07:46 +010089 return ret;
Jason A. Donenfeldda9ba562017-06-07 20:05:02 -040090}
91
92#define declare_get_random_var_wait(var) \
93 static inline int get_random_ ## var ## _wait(var *out) { \
94 int ret = wait_for_random_bytes(); \
95 if (unlikely(ret)) \
96 return ret; \
97 *out = get_random_ ## var(); \
98 return 0; \
99 }
100declare_get_random_var_wait(u32)
101declare_get_random_var_wait(u64)
102declare_get_random_var_wait(int)
103declare_get_random_var_wait(long)
104#undef declare_get_random_var
105
Jason Cooper99fdafd2016-10-11 13:53:52 -0700106unsigned long randomize_page(unsigned long start, unsigned long range);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107
Akinobu Mita496f2f92012-12-17 16:04:23 -0800108u32 prandom_u32(void);
Daniel Borkmanna98406e2014-08-23 17:03:28 +0200109void prandom_bytes(void *buf, size_t nbytes);
Akinobu Mita496f2f92012-12-17 16:04:23 -0800110void prandom_seed(u32 seed);
Hannes Frederic Sowa4af712e2013-11-11 12:20:34 +0100111void prandom_reseed_late(void);
Stephen Hemmingeraaa248f2006-10-17 00:09:42 -0700112
Daniel Borkmann38e9efc2013-11-11 12:20:35 +0100113struct rnd_state {
Daniel Borkmanna98814c2013-11-11 12:20:36 +0100114 __u32 s1, s2, s3, s4;
Daniel Borkmann38e9efc2013-11-11 12:20:35 +0100115};
116
Daniel Borkmanna98814c2013-11-11 12:20:36 +0100117u32 prandom_u32_state(struct rnd_state *state);
Daniel Borkmanna98406e2014-08-23 17:03:28 +0200118void prandom_bytes_state(struct rnd_state *state, void *buf, size_t nbytes);
Daniel Borkmann897ece52015-10-08 01:20:38 +0200119void prandom_seed_full_state(struct rnd_state __percpu *pcpu_state);
120
121#define prandom_init_once(pcpu_state) \
122 DO_ONCE(prandom_seed_full_state, (pcpu_state))
Joe Eykholt59601642010-05-26 14:44:13 -0700123
Daniel Borkmannf337db62014-01-22 02:29:39 +0100124/**
125 * prandom_u32_max - returns a pseudo-random number in interval [0, ep_ro)
126 * @ep_ro: right open interval endpoint
127 *
128 * Returns a pseudo-random number that is in interval [0, ep_ro). Note
129 * that the result depends on PRNG being well distributed in [0, ~0U]
130 * u32 space. Here we use maximally equidistributed combined Tausworthe
131 * generator, that is, prandom_u32(). This is useful when requesting a
132 * random index of an array containing ep_ro elements, for example.
133 *
134 * Returns: pseudo-random number in interval [0, ep_ro)
135 */
136static inline u32 prandom_u32_max(u32 ep_ro)
137{
138 return (u32)(((u64) prandom_u32() * ep_ro) >> 32);
139}
140
Joe Eykholt59601642010-05-26 14:44:13 -0700141/*
142 * Handle minimum values for seeds
143 */
144static inline u32 __seed(u32 x, u32 m)
145{
146 return (x < m) ? x + m : x;
147}
148
149/**
Akinobu Mita496f2f92012-12-17 16:04:23 -0800150 * prandom_seed_state - set seed for prandom_u32_state().
Joe Eykholt59601642010-05-26 14:44:13 -0700151 * @state: pointer to state structure to receive the seed.
152 * @seed: arbitrary 64-bit value to use as a seed.
153 */
Akinobu Mita496f2f92012-12-17 16:04:23 -0800154static inline void prandom_seed_state(struct rnd_state *state, u64 seed)
Joe Eykholt59601642010-05-26 14:44:13 -0700155{
156 u32 i = (seed >> 32) ^ (seed << 10) ^ seed;
157
Daniel Borkmanna98814c2013-11-11 12:20:36 +0100158 state->s1 = __seed(i, 2U);
159 state->s2 = __seed(i, 8U);
160 state->s3 = __seed(i, 16U);
161 state->s4 = __seed(i, 128U);
Joe Eykholt59601642010-05-26 14:44:13 -0700162}
163
H. Peter Anvin63d77172011-07-31 13:54:50 -0700164#ifdef CONFIG_ARCH_RANDOM
165# include <asm/archrandom.h>
166#else
H. Peter Anvin117780e2016-06-08 12:38:38 -0700167static inline bool arch_get_random_long(unsigned long *v)
H. Peter Anvin63d77172011-07-31 13:54:50 -0700168{
169 return 0;
170}
H. Peter Anvin117780e2016-06-08 12:38:38 -0700171static inline bool arch_get_random_int(unsigned int *v)
H. Peter Anvin63d77172011-07-31 13:54:50 -0700172{
173 return 0;
174}
H. Peter Anvin117780e2016-06-08 12:38:38 -0700175static inline bool arch_has_random(void)
H. Peter Anvin7b878d42014-03-17 16:36:30 -0700176{
177 return 0;
178}
H. Peter Anvin117780e2016-06-08 12:38:38 -0700179static inline bool arch_get_random_seed_long(unsigned long *v)
H. Peter Anvind20f78d2014-03-17 16:36:27 -0700180{
181 return 0;
182}
H. Peter Anvin117780e2016-06-08 12:38:38 -0700183static inline bool arch_get_random_seed_int(unsigned int *v)
H. Peter Anvind20f78d2014-03-17 16:36:27 -0700184{
185 return 0;
186}
H. Peter Anvin117780e2016-06-08 12:38:38 -0700187static inline bool arch_has_random_seed(void)
H. Peter Anvin7b878d42014-03-17 16:36:30 -0700188{
189 return 0;
190}
H. Peter Anvin63d77172011-07-31 13:54:50 -0700191#endif
192
Tom Herbert055dc212013-01-22 09:49:50 +0000193/* Pseudo random number generator from numerical recipes. */
194static inline u32 next_pseudo_random32(u32 seed)
195{
196 return seed * 1664525 + 1013904223;
197}
198
Linus Torvalds1da177e2005-04-16 15:20:36 -0700199#endif /* _LINUX_RANDOM_H */