1*8fb009dcSAndroid Build Coastguard Worker /* Copyright (c) 2015, Google Inc. 2*8fb009dcSAndroid Build Coastguard Worker * 3*8fb009dcSAndroid Build Coastguard Worker * Permission to use, copy, modify, and/or distribute this software for any 4*8fb009dcSAndroid Build Coastguard Worker * purpose with or without fee is hereby granted, provided that the above 5*8fb009dcSAndroid Build Coastguard Worker * copyright notice and this permission notice appear in all copies. 6*8fb009dcSAndroid Build Coastguard Worker * 7*8fb009dcSAndroid Build Coastguard Worker * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES 8*8fb009dcSAndroid Build Coastguard Worker * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF 9*8fb009dcSAndroid Build Coastguard Worker * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY 10*8fb009dcSAndroid Build Coastguard Worker * SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES 11*8fb009dcSAndroid Build Coastguard Worker * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION 12*8fb009dcSAndroid Build Coastguard Worker * OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN 13*8fb009dcSAndroid Build Coastguard Worker * CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. */ 14*8fb009dcSAndroid Build Coastguard Worker 15*8fb009dcSAndroid Build Coastguard Worker #ifndef OPENSSL_HEADER_CMAC_H 16*8fb009dcSAndroid Build Coastguard Worker #define OPENSSL_HEADER_CMAC_H 17*8fb009dcSAndroid Build Coastguard Worker 18*8fb009dcSAndroid Build Coastguard Worker #include <openssl/base.h> 19*8fb009dcSAndroid Build Coastguard Worker 20*8fb009dcSAndroid Build Coastguard Worker #if defined(__cplusplus) 21*8fb009dcSAndroid Build Coastguard Worker extern "C" { 22*8fb009dcSAndroid Build Coastguard Worker #endif 23*8fb009dcSAndroid Build Coastguard Worker 24*8fb009dcSAndroid Build Coastguard Worker 25*8fb009dcSAndroid Build Coastguard Worker // CMAC. 26*8fb009dcSAndroid Build Coastguard Worker // 27*8fb009dcSAndroid Build Coastguard Worker // CMAC is a MAC based on AES-CBC and defined in 28*8fb009dcSAndroid Build Coastguard Worker // https://tools.ietf.org/html/rfc4493#section-2.3. 29*8fb009dcSAndroid Build Coastguard Worker 30*8fb009dcSAndroid Build Coastguard Worker 31*8fb009dcSAndroid Build Coastguard Worker // One-shot functions. 32*8fb009dcSAndroid Build Coastguard Worker 33*8fb009dcSAndroid Build Coastguard Worker // AES_CMAC calculates the 16-byte, CMAC authenticator of |in_len| bytes of 34*8fb009dcSAndroid Build Coastguard Worker // |in| and writes it to |out|. The |key_len| may be 16 or 32 bytes to select 35*8fb009dcSAndroid Build Coastguard Worker // between AES-128 and AES-256. It returns one on success or zero on error. 36*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int AES_CMAC(uint8_t out[16], const uint8_t *key, size_t key_len, 37*8fb009dcSAndroid Build Coastguard Worker const uint8_t *in, size_t in_len); 38*8fb009dcSAndroid Build Coastguard Worker 39*8fb009dcSAndroid Build Coastguard Worker 40*8fb009dcSAndroid Build Coastguard Worker // Incremental interface. 41*8fb009dcSAndroid Build Coastguard Worker 42*8fb009dcSAndroid Build Coastguard Worker // CMAC_CTX_new allocates a fresh |CMAC_CTX| and returns it, or NULL on 43*8fb009dcSAndroid Build Coastguard Worker // error. 44*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT CMAC_CTX *CMAC_CTX_new(void); 45*8fb009dcSAndroid Build Coastguard Worker 46*8fb009dcSAndroid Build Coastguard Worker // CMAC_CTX_free frees a |CMAC_CTX|. 47*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void CMAC_CTX_free(CMAC_CTX *ctx); 48*8fb009dcSAndroid Build Coastguard Worker 49*8fb009dcSAndroid Build Coastguard Worker // CMAC_CTX_copy sets |out| to be a duplicate of the current state |in|. It 50*8fb009dcSAndroid Build Coastguard Worker // returns one on success and zero on error. 51*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int CMAC_CTX_copy(CMAC_CTX *out, const CMAC_CTX *in); 52*8fb009dcSAndroid Build Coastguard Worker 53*8fb009dcSAndroid Build Coastguard Worker // CMAC_Init configures |ctx| to use the given |key| and |cipher|. The CMAC RFC 54*8fb009dcSAndroid Build Coastguard Worker // only specifies the use of AES-128 thus |key_len| should be 16 and |cipher| 55*8fb009dcSAndroid Build Coastguard Worker // should be |EVP_aes_128_cbc()|. However, this implementation also supports 56*8fb009dcSAndroid Build Coastguard Worker // AES-256 by setting |key_len| to 32 and |cipher| to |EVP_aes_256_cbc()|. The 57*8fb009dcSAndroid Build Coastguard Worker // |engine| argument is ignored. 58*8fb009dcSAndroid Build Coastguard Worker // 59*8fb009dcSAndroid Build Coastguard Worker // It returns one on success or zero on error. 60*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int CMAC_Init(CMAC_CTX *ctx, const void *key, size_t key_len, 61*8fb009dcSAndroid Build Coastguard Worker const EVP_CIPHER *cipher, ENGINE *engine); 62*8fb009dcSAndroid Build Coastguard Worker 63*8fb009dcSAndroid Build Coastguard Worker 64*8fb009dcSAndroid Build Coastguard Worker // CMAC_Reset resets |ctx| so that a fresh message can be authenticated. 65*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int CMAC_Reset(CMAC_CTX *ctx); 66*8fb009dcSAndroid Build Coastguard Worker 67*8fb009dcSAndroid Build Coastguard Worker // CMAC_Update processes |in_len| bytes of message from |in|. It returns one on 68*8fb009dcSAndroid Build Coastguard Worker // success or zero on error. 69*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int CMAC_Update(CMAC_CTX *ctx, const uint8_t *in, size_t in_len); 70*8fb009dcSAndroid Build Coastguard Worker 71*8fb009dcSAndroid Build Coastguard Worker // CMAC_Final sets |*out_len| to 16 and, if |out| is not NULL, writes 16 bytes 72*8fb009dcSAndroid Build Coastguard Worker // of authenticator to it. It returns one on success or zero on error. 73*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int CMAC_Final(CMAC_CTX *ctx, uint8_t *out, size_t *out_len); 74*8fb009dcSAndroid Build Coastguard Worker 75*8fb009dcSAndroid Build Coastguard Worker 76*8fb009dcSAndroid Build Coastguard Worker #if defined(__cplusplus) 77*8fb009dcSAndroid Build Coastguard Worker } // extern C 78*8fb009dcSAndroid Build Coastguard Worker 79*8fb009dcSAndroid Build Coastguard Worker extern "C++" { 80*8fb009dcSAndroid Build Coastguard Worker 81*8fb009dcSAndroid Build Coastguard Worker BSSL_NAMESPACE_BEGIN 82*8fb009dcSAndroid Build Coastguard Worker 83*8fb009dcSAndroid Build Coastguard Worker BORINGSSL_MAKE_DELETER(CMAC_CTX, CMAC_CTX_free) 84*8fb009dcSAndroid Build Coastguard Worker 85*8fb009dcSAndroid Build Coastguard Worker BSSL_NAMESPACE_END 86*8fb009dcSAndroid Build Coastguard Worker 87*8fb009dcSAndroid Build Coastguard Worker } // extern C++ 88*8fb009dcSAndroid Build Coastguard Worker 89*8fb009dcSAndroid Build Coastguard Worker #endif 90*8fb009dcSAndroid Build Coastguard Worker 91*8fb009dcSAndroid Build Coastguard Worker #endif // OPENSSL_HEADER_CMAC_H 92