blob: 2090729701ab6d7a0d71861c7bd2cf4fb926b38e [file] [log] [blame]
Greg Kroah-Hartmanb2441312017-11-01 15:07:57 +01001/* SPDX-License-Identifier: GPL-2.0 */
Sebastian Siewior89e12652007-10-17 23:18:57 +08002/*
3 * Common values for AES algorithms
4 */
5
6#ifndef _CRYPTO_AES_H
7#define _CRYPTO_AES_H
8
Sebastian Siewior96e82e452007-11-08 21:20:30 +08009#include <linux/types.h>
10#include <linux/crypto.h>
11
Sebastian Siewior89e12652007-10-17 23:18:57 +080012#define AES_MIN_KEY_SIZE 16
13#define AES_MAX_KEY_SIZE 32
14#define AES_KEYSIZE_128 16
15#define AES_KEYSIZE_192 24
16#define AES_KEYSIZE_256 32
17#define AES_BLOCK_SIZE 16
Sebastian Siewior54276632008-04-01 20:58:51 +080018#define AES_MAX_KEYLENGTH (15 * 16)
19#define AES_MAX_KEYLENGTH_U32 (AES_MAX_KEYLENGTH / sizeof(u32))
Sebastian Siewior89e12652007-10-17 23:18:57 +080020
Huang Ying109568e2009-01-09 16:49:30 +110021/*
22 * Please ensure that the first two fields are 16-byte aligned
23 * relative to the start of the structure, i.e., don't move them!
24 */
Sebastian Siewior96e82e452007-11-08 21:20:30 +080025struct crypto_aes_ctx {
Sebastian Siewior54276632008-04-01 20:58:51 +080026 u32 key_enc[AES_MAX_KEYLENGTH_U32];
27 u32 key_dec[AES_MAX_KEYLENGTH_U32];
Huang Ying109568e2009-01-09 16:49:30 +110028 u32 key_length;
Sebastian Siewior96e82e452007-11-08 21:20:30 +080029};
30
Andi Kleen61abc352019-03-29 17:46:29 -070031extern const u32 crypto_ft_tab[4][256] ____cacheline_aligned;
Andi Kleen61abc352019-03-29 17:46:29 -070032extern const u32 crypto_it_tab[4][256] ____cacheline_aligned;
Sebastian Siewior96e82e452007-11-08 21:20:30 +080033
Iuliana Prodanbc67d042019-07-31 16:05:55 +030034/*
35 * validate key length for AES algorithms
36 */
37static inline int aes_check_keylen(unsigned int keylen)
38{
39 switch (keylen) {
40 case AES_KEYSIZE_128:
41 case AES_KEYSIZE_192:
42 case AES_KEYSIZE_256:
43 break;
44 default:
45 return -EINVAL;
46 }
47
48 return 0;
49}
50
Sebastian Siewior96e82e452007-11-08 21:20:30 +080051int crypto_aes_set_key(struct crypto_tfm *tfm, const u8 *in_key,
52 unsigned int key_len);
Ard Biesheuvele59c1c92019-07-02 21:41:22 +020053
54/**
55 * aes_expandkey - Expands the AES key as described in FIPS-197
56 * @ctx: The location where the computed key will be stored.
57 * @in_key: The supplied key.
58 * @key_len: The length of the supplied key.
59 *
60 * Returns 0 on success. The function fails only if an invalid key size (or
61 * pointer) is supplied.
62 * The expanded key size is 240 bytes (max of 14 rounds with a unique 16 bytes
63 * key schedule plus a 16 bytes key which is used before the first round).
64 * The decryption key is prepared for the "Equivalent Inverse Cipher" as
65 * described in FIPS-197. The first slot (16 bytes) of each key (enc or dec) is
66 * for the initial combination, the second slot for the first round and so on.
67 */
68int aes_expandkey(struct crypto_aes_ctx *ctx, const u8 *in_key,
69 unsigned int key_len);
70
71/**
72 * aes_encrypt - Encrypt a single AES block
73 * @ctx: Context struct containing the key schedule
74 * @out: Buffer to store the ciphertext
75 * @in: Buffer containing the plaintext
76 */
77void aes_encrypt(const struct crypto_aes_ctx *ctx, u8 *out, const u8 *in);
78
79/**
80 * aes_decrypt - Decrypt a single AES block
81 * @ctx: Context struct containing the key schedule
82 * @out: Buffer to store the plaintext
83 * @in: Buffer containing the ciphertext
84 */
85void aes_decrypt(const struct crypto_aes_ctx *ctx, u8 *out, const u8 *in);
86
Ard Biesheuvel9467a312019-07-02 21:41:46 +020087extern const u8 crypto_aes_sbox[];
88extern const u8 crypto_aes_inv_sbox[];
89
Sebastian Siewior89e12652007-10-17 23:18:57 +080090#endif