| OLD | NEW |
| (Empty) |
| 1 /* crypto/hmac/hmac.c */ | |
| 2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | |
| 3 * All rights reserved. | |
| 4 * | |
| 5 * This package is an SSL implementation written | |
| 6 * by Eric Young (eay@cryptsoft.com). | |
| 7 * The implementation was written so as to conform with Netscapes SSL. | |
| 8 * | |
| 9 * This library is free for commercial and non-commercial use as long as | |
| 10 * the following conditions are aheared to. The following conditions | |
| 11 * apply to all code found in this distribution, be it the RC4, RSA, | |
| 12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation | |
| 13 * included with this distribution is covered by the same copyright terms | |
| 14 * except that the holder is Tim Hudson (tjh@cryptsoft.com). | |
| 15 * | |
| 16 * Copyright remains Eric Young's, and as such any Copyright notices in | |
| 17 * the code are not to be removed. | |
| 18 * If this package is used in a product, Eric Young should be given attribution | |
| 19 * as the author of the parts of the library used. | |
| 20 * This can be in the form of a textual message at program startup or | |
| 21 * in documentation (online or textual) provided with the package. | |
| 22 * | |
| 23 * Redistribution and use in source and binary forms, with or without | |
| 24 * modification, are permitted provided that the following conditions | |
| 25 * are met: | |
| 26 * 1. Redistributions of source code must retain the copyright | |
| 27 * notice, this list of conditions and the following disclaimer. | |
| 28 * 2. Redistributions in binary form must reproduce the above copyright | |
| 29 * notice, this list of conditions and the following disclaimer in the | |
| 30 * documentation and/or other materials provided with the distribution. | |
| 31 * 3. All advertising materials mentioning features or use of this software | |
| 32 * must display the following acknowledgement: | |
| 33 * "This product includes cryptographic software written by | |
| 34 * Eric Young (eay@cryptsoft.com)" | |
| 35 * The word 'cryptographic' can be left out if the rouines from the library | |
| 36 * being used are not cryptographic related :-). | |
| 37 * 4. If you include any Windows specific code (or a derivative thereof) from | |
| 38 * the apps directory (application code) you must include an acknowledgement: | |
| 39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)" | |
| 40 * | |
| 41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND | |
| 42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE | |
| 43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE | |
| 44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE | |
| 45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL | |
| 46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS | |
| 47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) | |
| 48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT | |
| 49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY | |
| 50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF | |
| 51 * SUCH DAMAGE. | |
| 52 * | |
| 53 * The licence and distribution terms for any publically available version or | |
| 54 * derivative of this code cannot be changed. i.e. this code cannot simply be | |
| 55 * copied and put under another distribution licence | |
| 56 * [including the GNU Public Licence.] | |
| 57 */ | |
| 58 #include <stdio.h> | |
| 59 #include <stdlib.h> | |
| 60 #include <string.h> | |
| 61 #include <openssl/hmac.h> | |
| 62 #include <openssl/fips.h> | |
| 63 | |
| 64 #ifdef OPENSSL_FIPS | |
| 65 | |
| 66 void HMAC_Init_ex(HMAC_CTX *ctx, const void *key, int len, | |
| 67 const EVP_MD *md, ENGINE *impl) | |
| 68 { | |
| 69 int i,j,reset=0; | |
| 70 unsigned char pad[HMAC_MAX_MD_CBLOCK]; | |
| 71 | |
| 72 if (md != NULL) | |
| 73 { | |
| 74 reset=1; | |
| 75 ctx->md=md; | |
| 76 } | |
| 77 else | |
| 78 md=ctx->md; | |
| 79 | |
| 80 if (key != NULL) | |
| 81 { | |
| 82 if (FIPS_mode() && !(md->flags & EVP_MD_FLAG_FIPS) | |
| 83 && (!(ctx->md_ctx.flags & EVP_MD_CTX_FLAG_NON_FIPS_ALLOW) | |
| 84 || !(ctx->i_ctx.flags & EVP_MD_CTX_FLAG_NON_FIPS_ALLOW) | |
| 85 || !(ctx->o_ctx.flags & EVP_MD_CTX_FLAG_NON_FIPS_ALLOW))) | |
| 86 OpenSSLDie(__FILE__,__LINE__, | |
| 87 "HMAC: digest not allowed in FIPS mode"); | |
| 88 | |
| 89 reset=1; | |
| 90 j=M_EVP_MD_block_size(md); | |
| 91 OPENSSL_assert(j <= (int)sizeof ctx->key); | |
| 92 if (j < len) | |
| 93 { | |
| 94 EVP_DigestInit_ex(&ctx->md_ctx,md, impl); | |
| 95 EVP_DigestUpdate(&ctx->md_ctx,key,len); | |
| 96 EVP_DigestFinal_ex(&(ctx->md_ctx),ctx->key, | |
| 97 &ctx->key_length); | |
| 98 } | |
| 99 else | |
| 100 { | |
| 101 OPENSSL_assert(len <= (int)sizeof ctx->key); | |
| 102 memcpy(ctx->key,key,len); | |
| 103 ctx->key_length=len; | |
| 104 } | |
| 105 if(ctx->key_length != HMAC_MAX_MD_CBLOCK) | |
| 106 memset(&ctx->key[ctx->key_length], 0, | |
| 107 HMAC_MAX_MD_CBLOCK - ctx->key_length); | |
| 108 } | |
| 109 | |
| 110 if (reset) | |
| 111 { | |
| 112 for (i=0; i<HMAC_MAX_MD_CBLOCK; i++) | |
| 113 pad[i]=0x36^ctx->key[i]; | |
| 114 EVP_DigestInit_ex(&ctx->i_ctx,md, impl); | |
| 115 EVP_DigestUpdate(&ctx->i_ctx,pad,M_EVP_MD_block_size(md)); | |
| 116 | |
| 117 for (i=0; i<HMAC_MAX_MD_CBLOCK; i++) | |
| 118 pad[i]=0x5c^ctx->key[i]; | |
| 119 EVP_DigestInit_ex(&ctx->o_ctx,md, impl); | |
| 120 EVP_DigestUpdate(&ctx->o_ctx,pad,M_EVP_MD_block_size(md)); | |
| 121 } | |
| 122 EVP_MD_CTX_copy_ex(&ctx->md_ctx,&ctx->i_ctx); | |
| 123 } | |
| 124 | |
| 125 void HMAC_Init(HMAC_CTX *ctx, const void *key, int len, | |
| 126 const EVP_MD *md) | |
| 127 { | |
| 128 if(key && md) | |
| 129 HMAC_CTX_init(ctx); | |
| 130 HMAC_Init_ex(ctx,key,len,md, NULL); | |
| 131 } | |
| 132 | |
| 133 void HMAC_Update(HMAC_CTX *ctx, const unsigned char *data, size_t len) | |
| 134 { | |
| 135 EVP_DigestUpdate(&ctx->md_ctx,data,len); | |
| 136 } | |
| 137 | |
| 138 void HMAC_Final(HMAC_CTX *ctx, unsigned char *md, unsigned int *len) | |
| 139 { | |
| 140 int j; | |
| 141 unsigned int i; | |
| 142 unsigned char buf[EVP_MAX_MD_SIZE]; | |
| 143 | |
| 144 j=M_EVP_MD_block_size(ctx->md); | |
| 145 | |
| 146 EVP_DigestFinal_ex(&ctx->md_ctx,buf,&i); | |
| 147 EVP_MD_CTX_copy_ex(&ctx->md_ctx,&ctx->o_ctx); | |
| 148 EVP_DigestUpdate(&ctx->md_ctx,buf,i); | |
| 149 EVP_DigestFinal_ex(&ctx->md_ctx,md,len); | |
| 150 } | |
| 151 | |
| 152 void HMAC_CTX_init(HMAC_CTX *ctx) | |
| 153 { | |
| 154 EVP_MD_CTX_init(&ctx->i_ctx); | |
| 155 EVP_MD_CTX_init(&ctx->o_ctx); | |
| 156 EVP_MD_CTX_init(&ctx->md_ctx); | |
| 157 } | |
| 158 | |
| 159 void HMAC_CTX_cleanup(HMAC_CTX *ctx) | |
| 160 { | |
| 161 EVP_MD_CTX_cleanup(&ctx->i_ctx); | |
| 162 EVP_MD_CTX_cleanup(&ctx->o_ctx); | |
| 163 EVP_MD_CTX_cleanup(&ctx->md_ctx); | |
| 164 memset(ctx,0,sizeof *ctx); | |
| 165 } | |
| 166 | |
| 167 unsigned char *HMAC(const EVP_MD *evp_md, const void *key, int key_len, | |
| 168 const unsigned char *d, size_t n, unsigned char *md, | |
| 169 unsigned int *md_len) | |
| 170 { | |
| 171 HMAC_CTX c; | |
| 172 static unsigned char m[EVP_MAX_MD_SIZE]; | |
| 173 | |
| 174 if (md == NULL) md=m; | |
| 175 HMAC_CTX_init(&c); | |
| 176 HMAC_Init(&c,key,key_len,evp_md); | |
| 177 HMAC_Update(&c,d,n); | |
| 178 HMAC_Final(&c,md,md_len); | |
| 179 HMAC_CTX_cleanup(&c); | |
| 180 return(md); | |
| 181 } | |
| 182 | |
| 183 void HMAC_CTX_set_flags(HMAC_CTX *ctx, unsigned long flags) | |
| 184 { | |
| 185 M_EVP_MD_CTX_set_flags(&ctx->i_ctx, flags); | |
| 186 M_EVP_MD_CTX_set_flags(&ctx->o_ctx, flags); | |
| 187 M_EVP_MD_CTX_set_flags(&ctx->md_ctx, flags); | |
| 188 } | |
| 189 | |
| 190 #endif | |
| 191 | |
| OLD | NEW |