xref: /aosp_15_r20/external/ot-br-posix/src/utils/pskc.cpp (revision 4a64e381480ef79f0532b2421e44e6ee336b8e0d)
1*4a64e381SAndroid Build Coastguard Worker /*
2*4a64e381SAndroid Build Coastguard Worker  *  Copyright (c) 2017, The OpenThread Authors.
3*4a64e381SAndroid Build Coastguard Worker  *  All rights reserved.
4*4a64e381SAndroid Build Coastguard Worker  *
5*4a64e381SAndroid Build Coastguard Worker  *  Redistribution and use in source and binary forms, with or without
6*4a64e381SAndroid Build Coastguard Worker  *  modification, are permitted provided that the following conditions are met:
7*4a64e381SAndroid Build Coastguard Worker  *  1. Redistributions of source code must retain the above copyright
8*4a64e381SAndroid Build Coastguard Worker  *     notice, this list of conditions and the following disclaimer.
9*4a64e381SAndroid Build Coastguard Worker  *  2. Redistributions in binary form must reproduce the above copyright
10*4a64e381SAndroid Build Coastguard Worker  *     notice, this list of conditions and the following disclaimer in the
11*4a64e381SAndroid Build Coastguard Worker  *     documentation and/or other materials provided with the distribution.
12*4a64e381SAndroid Build Coastguard Worker  *  3. Neither the name of the copyright holder nor the
13*4a64e381SAndroid Build Coastguard Worker  *     names of its contributors may be used to endorse or promote products
14*4a64e381SAndroid Build Coastguard Worker  *     derived from this software without specific prior written permission.
15*4a64e381SAndroid Build Coastguard Worker  *
16*4a64e381SAndroid Build Coastguard Worker  *  THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
17*4a64e381SAndroid Build Coastguard Worker  *  AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18*4a64e381SAndroid Build Coastguard Worker  *  IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19*4a64e381SAndroid Build Coastguard Worker  *  ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE
20*4a64e381SAndroid Build Coastguard Worker  *  LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
21*4a64e381SAndroid Build Coastguard Worker  *  CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
22*4a64e381SAndroid Build Coastguard Worker  *  SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
23*4a64e381SAndroid Build Coastguard Worker  *  INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
24*4a64e381SAndroid Build Coastguard Worker  *  CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
25*4a64e381SAndroid Build Coastguard Worker  *  ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
26*4a64e381SAndroid Build Coastguard Worker  *  POSSIBILITY OF SUCH DAMAGE.
27*4a64e381SAndroid Build Coastguard Worker  */
28*4a64e381SAndroid Build Coastguard Worker 
29*4a64e381SAndroid Build Coastguard Worker /**
30*4a64e381SAndroid Build Coastguard Worker  * @file
31*4a64e381SAndroid Build Coastguard Worker  *   This file implements the generating pskc function.
32*4a64e381SAndroid Build Coastguard Worker  */
33*4a64e381SAndroid Build Coastguard Worker 
34*4a64e381SAndroid Build Coastguard Worker #include "utils/pskc.hpp"
35*4a64e381SAndroid Build Coastguard Worker 
36*4a64e381SAndroid Build Coastguard Worker #include "common/code_utils.hpp"
37*4a64e381SAndroid Build Coastguard Worker #include "common/logging.hpp"
38*4a64e381SAndroid Build Coastguard Worker 
39*4a64e381SAndroid Build Coastguard Worker namespace otbr {
40*4a64e381SAndroid Build Coastguard Worker namespace Psk {
41*4a64e381SAndroid Build Coastguard Worker 
SetSalt(const uint8_t * aExtPanId,const char * aNetworkName)42*4a64e381SAndroid Build Coastguard Worker void Pskc::SetSalt(const uint8_t *aExtPanId, const char *aNetworkName)
43*4a64e381SAndroid Build Coastguard Worker {
44*4a64e381SAndroid Build Coastguard Worker     const char *saltPrefix     = "Thread";
45*4a64e381SAndroid Build Coastguard Worker     int         cur            = 0;
46*4a64e381SAndroid Build Coastguard Worker     int         ret            = kPskcStatus_Ok;
47*4a64e381SAndroid Build Coastguard Worker     int         remainingSpace = 0;
48*4a64e381SAndroid Build Coastguard Worker     int         networkNameLen = 0;
49*4a64e381SAndroid Build Coastguard Worker 
50*4a64e381SAndroid Build Coastguard Worker     if (strlen(saltPrefix) + OT_EXTENDED_PAN_ID_LENGTH + strlen(aNetworkName) >= sizeof(mSalt))
51*4a64e381SAndroid Build Coastguard Worker     {
52*4a64e381SAndroid Build Coastguard Worker         otbrLogWarning("Network name too long; will be truncated.");
53*4a64e381SAndroid Build Coastguard Worker     }
54*4a64e381SAndroid Build Coastguard Worker 
55*4a64e381SAndroid Build Coastguard Worker     memset(mSalt, 0, sizeof(mSalt));
56*4a64e381SAndroid Build Coastguard Worker     memcpy(mSalt, saltPrefix, strlen(saltPrefix));
57*4a64e381SAndroid Build Coastguard Worker     cur += strlen(saltPrefix);
58*4a64e381SAndroid Build Coastguard Worker 
59*4a64e381SAndroid Build Coastguard Worker     memcpy(mSalt + cur, aExtPanId, OT_EXTENDED_PAN_ID_LENGTH);
60*4a64e381SAndroid Build Coastguard Worker     cur += OT_EXTENDED_PAN_ID_LENGTH;
61*4a64e381SAndroid Build Coastguard Worker 
62*4a64e381SAndroid Build Coastguard Worker     VerifyOrExit(strlen(aNetworkName) > 0, ret = kPskcStatus_InvalidArgument);
63*4a64e381SAndroid Build Coastguard Worker 
64*4a64e381SAndroid Build Coastguard Worker     remainingSpace = sizeof(mSalt) - cur;
65*4a64e381SAndroid Build Coastguard Worker     if (remainingSpace > 0)
66*4a64e381SAndroid Build Coastguard Worker     {
67*4a64e381SAndroid Build Coastguard Worker         networkNameLen = std::min(static_cast<int>(strlen(aNetworkName)), remainingSpace);
68*4a64e381SAndroid Build Coastguard Worker         memcpy(mSalt + cur, aNetworkName, networkNameLen);
69*4a64e381SAndroid Build Coastguard Worker         cur += networkNameLen;
70*4a64e381SAndroid Build Coastguard Worker     }
71*4a64e381SAndroid Build Coastguard Worker 
72*4a64e381SAndroid Build Coastguard Worker     mSaltLen = static_cast<uint16_t>(cur);
73*4a64e381SAndroid Build Coastguard Worker 
74*4a64e381SAndroid Build Coastguard Worker exit:
75*4a64e381SAndroid Build Coastguard Worker     if (ret != kPskcStatus_Ok)
76*4a64e381SAndroid Build Coastguard Worker     {
77*4a64e381SAndroid Build Coastguard Worker         otbrLogErr("ExtPanId or NetworkName is nullptr");
78*4a64e381SAndroid Build Coastguard Worker     }
79*4a64e381SAndroid Build Coastguard Worker     return;
80*4a64e381SAndroid Build Coastguard Worker }
81*4a64e381SAndroid Build Coastguard Worker 
ComputePskc(const uint8_t * aExtPanId,const char * aNetworkName,const char * aPassphrase)82*4a64e381SAndroid Build Coastguard Worker const uint8_t *Pskc::ComputePskc(const uint8_t *aExtPanId, const char *aNetworkName, const char *aPassphrase)
83*4a64e381SAndroid Build Coastguard Worker {
84*4a64e381SAndroid Build Coastguard Worker     uint32_t blockCounter = 0;
85*4a64e381SAndroid Build Coastguard Worker     uint16_t useLen       = 0;
86*4a64e381SAndroid Build Coastguard Worker     uint16_t prfBlockLen  = MBEDTLS_CIPHER_BLKSIZE_MAX;
87*4a64e381SAndroid Build Coastguard Worker     uint8_t  prfInput[OT_PBKDF2_SALT_MAX_LENGTH + 4];
88*4a64e381SAndroid Build Coastguard Worker     uint8_t  prfOutput[MBEDTLS_CIPHER_BLKSIZE_MAX];
89*4a64e381SAndroid Build Coastguard Worker     uint8_t  keyBlock[MBEDTLS_CIPHER_BLKSIZE_MAX];
90*4a64e381SAndroid Build Coastguard Worker     uint16_t keyLen = OT_PSKC_LENGTH;
91*4a64e381SAndroid Build Coastguard Worker     uint8_t *pskc   = mPskc;
92*4a64e381SAndroid Build Coastguard Worker 
93*4a64e381SAndroid Build Coastguard Worker     SetSalt(aExtPanId, aNetworkName);
94*4a64e381SAndroid Build Coastguard Worker 
95*4a64e381SAndroid Build Coastguard Worker     while (keyLen)
96*4a64e381SAndroid Build Coastguard Worker     {
97*4a64e381SAndroid Build Coastguard Worker         memcpy(prfInput, mSalt, mSaltLen);
98*4a64e381SAndroid Build Coastguard Worker 
99*4a64e381SAndroid Build Coastguard Worker         blockCounter++;
100*4a64e381SAndroid Build Coastguard Worker         prfInput[mSaltLen + 0] = (uint8_t)(blockCounter >> 24);
101*4a64e381SAndroid Build Coastguard Worker         prfInput[mSaltLen + 1] = (uint8_t)(blockCounter >> 16);
102*4a64e381SAndroid Build Coastguard Worker         prfInput[mSaltLen + 2] = (uint8_t)(blockCounter >> 8);
103*4a64e381SAndroid Build Coastguard Worker         prfInput[mSaltLen + 3] = (uint8_t)(blockCounter);
104*4a64e381SAndroid Build Coastguard Worker         // Calculate U_1
105*4a64e381SAndroid Build Coastguard Worker         mbedtls_aes_cmac_prf_128(reinterpret_cast<const uint8_t *>(aPassphrase), strlen(aPassphrase), prfInput,
106*4a64e381SAndroid Build Coastguard Worker                                  mSaltLen + 4, prfOutput);
107*4a64e381SAndroid Build Coastguard Worker         memcpy(keyBlock, prfOutput, prfBlockLen);
108*4a64e381SAndroid Build Coastguard Worker 
109*4a64e381SAndroid Build Coastguard Worker         for (uint32_t i = 1; i < OT_ITERATION_COUNTS; i++)
110*4a64e381SAndroid Build Coastguard Worker         {
111*4a64e381SAndroid Build Coastguard Worker             memcpy(prfInput, prfOutput, prfBlockLen);
112*4a64e381SAndroid Build Coastguard Worker 
113*4a64e381SAndroid Build Coastguard Worker             // Calculate U_i
114*4a64e381SAndroid Build Coastguard Worker             mbedtls_aes_cmac_prf_128(reinterpret_cast<const uint8_t *>(aPassphrase), strlen(aPassphrase), prfInput,
115*4a64e381SAndroid Build Coastguard Worker                                      prfBlockLen, prfOutput);
116*4a64e381SAndroid Build Coastguard Worker 
117*4a64e381SAndroid Build Coastguard Worker             // xor
118*4a64e381SAndroid Build Coastguard Worker             for (uint32_t j = 0; j < prfBlockLen; j++)
119*4a64e381SAndroid Build Coastguard Worker             {
120*4a64e381SAndroid Build Coastguard Worker                 keyBlock[j] ^= prfOutput[j];
121*4a64e381SAndroid Build Coastguard Worker             }
122*4a64e381SAndroid Build Coastguard Worker         }
123*4a64e381SAndroid Build Coastguard Worker 
124*4a64e381SAndroid Build Coastguard Worker         useLen = (keyLen < prfBlockLen) ? keyLen : prfBlockLen;
125*4a64e381SAndroid Build Coastguard Worker         memcpy(pskc, keyBlock, useLen);
126*4a64e381SAndroid Build Coastguard Worker         pskc += useLen;
127*4a64e381SAndroid Build Coastguard Worker         keyLen -= useLen;
128*4a64e381SAndroid Build Coastguard Worker     }
129*4a64e381SAndroid Build Coastguard Worker     return mPskc;
130*4a64e381SAndroid Build Coastguard Worker }
131*4a64e381SAndroid Build Coastguard Worker 
132*4a64e381SAndroid Build Coastguard Worker } // namespace Psk
133*4a64e381SAndroid Build Coastguard Worker } // namespace otbr
134