mirror of
https://github.com/taigrr/arduinolibs
synced 2025-01-18 04:33:12 -08:00
418 lines
52 KiB
HTML
418 lines
52 KiB
HTML
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
|
<html xmlns="http://www.w3.org/1999/xhtml">
|
|
<head>
|
|
<meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/>
|
|
<meta http-equiv="X-UA-Compatible" content="IE=9"/>
|
|
<meta name="generator" content="Doxygen 1.8.6"/>
|
|
<title>Arduino Cryptography Library: Ascon128.cpp Source File</title>
|
|
<link href="tabs.css" rel="stylesheet" type="text/css"/>
|
|
<script type="text/javascript" src="jquery.js"></script>
|
|
<script type="text/javascript" src="dynsections.js"></script>
|
|
<link href="search/search.css" rel="stylesheet" type="text/css"/>
|
|
<script type="text/javascript" src="search/search.js"></script>
|
|
<script type="text/javascript">
|
|
$(document).ready(function() { searchBox.OnSelectItem(0); });
|
|
</script>
|
|
<link href="doxygen.css" rel="stylesheet" type="text/css" />
|
|
</head>
|
|
<body>
|
|
<div id="top"><!-- do not remove this div, it is closed by doxygen! -->
|
|
<div id="titlearea">
|
|
<table cellspacing="0" cellpadding="0">
|
|
<tbody>
|
|
<tr style="height: 56px;">
|
|
<td style="padding-left: 0.5em;">
|
|
<div id="projectname">Arduino Cryptography Library
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
</div>
|
|
<!-- end header part -->
|
|
<!-- Generated by Doxygen 1.8.6 -->
|
|
<script type="text/javascript">
|
|
var searchBox = new SearchBox("searchBox", "search",false,'Search');
|
|
</script>
|
|
<div id="navrow1" class="tabs">
|
|
<ul class="tablist">
|
|
<li><a href="index.html"><span>Main Page</span></a></li>
|
|
<li><a href="pages.html"><span>Related Pages</span></a></li>
|
|
<li><a href="annotated.html"><span>Classes</span></a></li>
|
|
<li class="current"><a href="files.html"><span>Files</span></a></li>
|
|
<li>
|
|
<div id="MSearchBox" class="MSearchBoxInactive">
|
|
<span class="left">
|
|
<img id="MSearchSelect" src="search/mag_sel.png"
|
|
onmouseover="return searchBox.OnSearchSelectShow()"
|
|
onmouseout="return searchBox.OnSearchSelectHide()"
|
|
alt=""/>
|
|
<input type="text" id="MSearchField" value="Search" accesskey="S"
|
|
onfocus="searchBox.OnSearchFieldFocus(true)"
|
|
onblur="searchBox.OnSearchFieldFocus(false)"
|
|
onkeyup="searchBox.OnSearchFieldChange(event)"/>
|
|
</span><span class="right">
|
|
<a id="MSearchClose" href="javascript:searchBox.CloseResultsWindow()"><img id="MSearchCloseImg" border="0" src="search/close.png" alt=""/></a>
|
|
</span>
|
|
</div>
|
|
</li>
|
|
</ul>
|
|
</div>
|
|
<div id="navrow2" class="tabs2">
|
|
<ul class="tablist">
|
|
<li><a href="files.html"><span>File List</span></a></li>
|
|
</ul>
|
|
</div>
|
|
<!-- window showing the filter options -->
|
|
<div id="MSearchSelectWindow"
|
|
onmouseover="return searchBox.OnSearchSelectShow()"
|
|
onmouseout="return searchBox.OnSearchSelectHide()"
|
|
onkeydown="return searchBox.OnSearchSelectKey(event)">
|
|
<a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(0)"><span class="SelectionMark"> </span>All</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(1)"><span class="SelectionMark"> </span>Classes</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(2)"><span class="SelectionMark"> </span>Files</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(3)"><span class="SelectionMark"> </span>Functions</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(4)"><span class="SelectionMark"> </span>Variables</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(5)"><span class="SelectionMark"> </span>Enumerations</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(6)"><span class="SelectionMark"> </span>Enumerator</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(7)"><span class="SelectionMark"> </span>Pages</a></div>
|
|
|
|
<!-- iframe showing the search results (closed by default) -->
|
|
<div id="MSearchResultsWindow">
|
|
<iframe src="javascript:void(0)" frameborder="0"
|
|
name="MSearchResults" id="MSearchResults">
|
|
</iframe>
|
|
</div>
|
|
|
|
<div id="nav-path" class="navpath">
|
|
<ul>
|
|
<li class="navelem"><a class="el" href="dir_bc0718b08fb2015b8e59c47b2805f60c.html">libraries</a></li><li class="navelem"><a class="el" href="dir_58d2f659e0f0f847cf173d02114010b9.html">CryptoLW</a></li><li class="navelem"><a class="el" href="dir_5317e98f2689b9014cdaec1c78a27590.html">src</a></li> </ul>
|
|
</div>
|
|
</div><!-- top -->
|
|
<div class="header">
|
|
<div class="headertitle">
|
|
<div class="title">Ascon128.cpp</div> </div>
|
|
</div><!--header-->
|
|
<div class="contents">
|
|
<div class="fragment"><div class="line"><a name="l00001"></a><span class="lineno"> 1</span> <span class="comment">/*</span></div>
|
|
<div class="line"><a name="l00002"></a><span class="lineno"> 2</span> <span class="comment"> * Copyright (C) 2018 Southern Storm Software, Pty Ltd.</span></div>
|
|
<div class="line"><a name="l00003"></a><span class="lineno"> 3</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00004"></a><span class="lineno"> 4</span> <span class="comment"> * Permission is hereby granted, free of charge, to any person obtaining a</span></div>
|
|
<div class="line"><a name="l00005"></a><span class="lineno"> 5</span> <span class="comment"> * copy of this software and associated documentation files (the "Software"),</span></div>
|
|
<div class="line"><a name="l00006"></a><span class="lineno"> 6</span> <span class="comment"> * to deal in the Software without restriction, including without limitation</span></div>
|
|
<div class="line"><a name="l00007"></a><span class="lineno"> 7</span> <span class="comment"> * the rights to use, copy, modify, merge, publish, distribute, sublicense,</span></div>
|
|
<div class="line"><a name="l00008"></a><span class="lineno"> 8</span> <span class="comment"> * and/or sell copies of the Software, and to permit persons to whom the</span></div>
|
|
<div class="line"><a name="l00009"></a><span class="lineno"> 9</span> <span class="comment"> * Software is furnished to do so, subject to the following conditions:</span></div>
|
|
<div class="line"><a name="l00010"></a><span class="lineno"> 10</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00011"></a><span class="lineno"> 11</span> <span class="comment"> * The above copyright notice and this permission notice shall be included</span></div>
|
|
<div class="line"><a name="l00012"></a><span class="lineno"> 12</span> <span class="comment"> * in all copies or substantial portions of the Software.</span></div>
|
|
<div class="line"><a name="l00013"></a><span class="lineno"> 13</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00014"></a><span class="lineno"> 14</span> <span class="comment"> * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS</span></div>
|
|
<div class="line"><a name="l00015"></a><span class="lineno"> 15</span> <span class="comment"> * OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,</span></div>
|
|
<div class="line"><a name="l00016"></a><span class="lineno"> 16</span> <span class="comment"> * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE</span></div>
|
|
<div class="line"><a name="l00017"></a><span class="lineno"> 17</span> <span class="comment"> * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER</span></div>
|
|
<div class="line"><a name="l00018"></a><span class="lineno"> 18</span> <span class="comment"> * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING</span></div>
|
|
<div class="line"><a name="l00019"></a><span class="lineno"> 19</span> <span class="comment"> * FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER</span></div>
|
|
<div class="line"><a name="l00020"></a><span class="lineno"> 20</span> <span class="comment"> * DEALINGS IN THE SOFTWARE.</span></div>
|
|
<div class="line"><a name="l00021"></a><span class="lineno"> 21</span> <span class="comment"> */</span></div>
|
|
<div class="line"><a name="l00022"></a><span class="lineno"> 22</span> </div>
|
|
<div class="line"><a name="l00023"></a><span class="lineno"> 23</span> <span class="preprocessor">#include "Ascon128.h"</span></div>
|
|
<div class="line"><a name="l00024"></a><span class="lineno"> 24</span> <span class="preprocessor">#include "Crypto.h"</span></div>
|
|
<div class="line"><a name="l00025"></a><span class="lineno"> 25</span> <span class="preprocessor">#include "utility/EndianUtil.h"</span></div>
|
|
<div class="line"><a name="l00026"></a><span class="lineno"> 26</span> <span class="preprocessor">#include "utility/RotateUtil.h"</span></div>
|
|
<div class="line"><a name="l00027"></a><span class="lineno"> 27</span> <span class="preprocessor">#include "utility/ProgMemUtil.h"</span></div>
|
|
<div class="line"><a name="l00028"></a><span class="lineno"> 28</span> <span class="preprocessor">#include <string.h></span></div>
|
|
<div class="line"><a name="l00029"></a><span class="lineno"> 29</span> </div>
|
|
<div class="line"><a name="l00048"></a><span class="lineno"><a class="line" href="classAscon128.html#a024f5cee436c4515a408c20a02603a42"> 48</a></span> <a class="code" href="classAscon128.html#a024f5cee436c4515a408c20a02603a42">Ascon128::Ascon128</a>()</div>
|
|
<div class="line"><a name="l00049"></a><span class="lineno"> 49</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00050"></a><span class="lineno"> 50</span> <span class="preprocessor"></span> : posn(7)</div>
|
|
<div class="line"><a name="l00051"></a><span class="lineno"> 51</span>  , authMode(1)</div>
|
|
<div class="line"><a name="l00052"></a><span class="lineno"> 52</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00053"></a><span class="lineno"> 53</span> <span class="preprocessor"></span> : posn(0)</div>
|
|
<div class="line"><a name="l00054"></a><span class="lineno"> 54</span>  , authMode(1)</div>
|
|
<div class="line"><a name="l00055"></a><span class="lineno"> 55</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00056"></a><span class="lineno"> 56</span> <span class="preprocessor"></span>{</div>
|
|
<div class="line"><a name="l00057"></a><span class="lineno"> 57</span> }</div>
|
|
<div class="line"><a name="l00058"></a><span class="lineno"> 58</span> </div>
|
|
<div class="line"><a name="l00062"></a><span class="lineno"><a class="line" href="classAscon128.html#a8d8e005b56da6a5b08965e0cf5fa8309"> 62</a></span> <a class="code" href="classAscon128.html#a8d8e005b56da6a5b08965e0cf5fa8309">Ascon128::~Ascon128</a>()</div>
|
|
<div class="line"><a name="l00063"></a><span class="lineno"> 63</span> {</div>
|
|
<div class="line"><a name="l00064"></a><span class="lineno"> 64</span>  clean(state);</div>
|
|
<div class="line"><a name="l00065"></a><span class="lineno"> 65</span> }</div>
|
|
<div class="line"><a name="l00066"></a><span class="lineno"> 66</span> </div>
|
|
<div class="line"><a name="l00072"></a><span class="lineno"><a class="line" href="classAscon128.html#aa76a734d4746e73a27688a678c005528"> 72</a></span> <span class="keywordtype">size_t</span> <a class="code" href="classAscon128.html#aa76a734d4746e73a27688a678c005528">Ascon128::keySize</a>()<span class="keyword"> const</span></div>
|
|
<div class="line"><a name="l00073"></a><span class="lineno"> 73</span> <span class="keyword"></span>{</div>
|
|
<div class="line"><a name="l00074"></a><span class="lineno"> 74</span>  <span class="keywordflow">return</span> 16;</div>
|
|
<div class="line"><a name="l00075"></a><span class="lineno"> 75</span> }</div>
|
|
<div class="line"><a name="l00076"></a><span class="lineno"> 76</span> </div>
|
|
<div class="line"><a name="l00085"></a><span class="lineno"><a class="line" href="classAscon128.html#a32a4fe685f92378493ab3f058971228e"> 85</a></span> <span class="keywordtype">size_t</span> <a class="code" href="classAscon128.html#a32a4fe685f92378493ab3f058971228e">Ascon128::ivSize</a>()<span class="keyword"> const</span></div>
|
|
<div class="line"><a name="l00086"></a><span class="lineno"> 86</span> <span class="keyword"></span>{</div>
|
|
<div class="line"><a name="l00087"></a><span class="lineno"> 87</span>  <span class="keywordflow">return</span> 16;</div>
|
|
<div class="line"><a name="l00088"></a><span class="lineno"> 88</span> }</div>
|
|
<div class="line"><a name="l00089"></a><span class="lineno"> 89</span> </div>
|
|
<div class="line"><a name="l00095"></a><span class="lineno"><a class="line" href="classAscon128.html#aae49ea7143e32dcf2081b870edba3843"> 95</a></span> <span class="keywordtype">size_t</span> <a class="code" href="classAscon128.html#aae49ea7143e32dcf2081b870edba3843">Ascon128::tagSize</a>()<span class="keyword"> const</span></div>
|
|
<div class="line"><a name="l00096"></a><span class="lineno"> 96</span> <span class="keyword"></span>{</div>
|
|
<div class="line"><a name="l00097"></a><span class="lineno"> 97</span>  <span class="keywordflow">return</span> 16;</div>
|
|
<div class="line"><a name="l00098"></a><span class="lineno"> 98</span> }</div>
|
|
<div class="line"><a name="l00099"></a><span class="lineno"> 99</span> </div>
|
|
<div class="line"><a name="l00100"></a><span class="lineno"><a class="line" href="classAscon128.html#afbf59ccc30d6c3452b10a571bbe623e0"> 100</a></span> <span class="keywordtype">bool</span> <a class="code" href="classAscon128.html#afbf59ccc30d6c3452b10a571bbe623e0">Ascon128::setKey</a>(<span class="keyword">const</span> uint8_t *key, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00101"></a><span class="lineno"> 101</span> {</div>
|
|
<div class="line"><a name="l00102"></a><span class="lineno"> 102</span>  <span class="keywordflow">if</span> (len != 16)</div>
|
|
<div class="line"><a name="l00103"></a><span class="lineno"> 103</span>  <span class="keywordflow">return</span> <span class="keyword">false</span>;</div>
|
|
<div class="line"><a name="l00104"></a><span class="lineno"> 104</span>  memcpy(state.K, key, 16);</div>
|
|
<div class="line"><a name="l00105"></a><span class="lineno"> 105</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00106"></a><span class="lineno"> 106</span> <span class="preprocessor"></span> state.K[0] = be64toh(state.K[0]);</div>
|
|
<div class="line"><a name="l00107"></a><span class="lineno"> 107</span>  state.K[1] = be64toh(state.K[1]);</div>
|
|
<div class="line"><a name="l00108"></a><span class="lineno"> 108</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00109"></a><span class="lineno"> 109</span> <span class="preprocessor"></span> <span class="keywordflow">return</span> <span class="keyword">true</span>;</div>
|
|
<div class="line"><a name="l00110"></a><span class="lineno"> 110</span> }</div>
|
|
<div class="line"><a name="l00111"></a><span class="lineno"> 111</span> </div>
|
|
<div class="line"><a name="l00112"></a><span class="lineno"><a class="line" href="classAscon128.html#a7fa16c1ee860b2f76011d7852dc8ec96"> 112</a></span> <span class="keywordtype">bool</span> <a class="code" href="classAscon128.html#a7fa16c1ee860b2f76011d7852dc8ec96">Ascon128::setIV</a>(<span class="keyword">const</span> uint8_t *iv, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00113"></a><span class="lineno"> 113</span> {</div>
|
|
<div class="line"><a name="l00114"></a><span class="lineno"> 114</span>  <span class="comment">// Validate the length of the IV.</span></div>
|
|
<div class="line"><a name="l00115"></a><span class="lineno"> 115</span>  <span class="keywordflow">if</span> (len != 16)</div>
|
|
<div class="line"><a name="l00116"></a><span class="lineno"> 116</span>  <span class="keywordflow">return</span> <span class="keyword">false</span>;</div>
|
|
<div class="line"><a name="l00117"></a><span class="lineno"> 117</span> </div>
|
|
<div class="line"><a name="l00118"></a><span class="lineno"> 118</span>  <span class="comment">// Set up the initial state.</span></div>
|
|
<div class="line"><a name="l00119"></a><span class="lineno"> 119</span>  state.S[0] = 0x80400C0600000000ULL;</div>
|
|
<div class="line"><a name="l00120"></a><span class="lineno"> 120</span>  state.S[1] = state.K[0];</div>
|
|
<div class="line"><a name="l00121"></a><span class="lineno"> 121</span>  state.S[2] = state.K[1];</div>
|
|
<div class="line"><a name="l00122"></a><span class="lineno"> 122</span>  memcpy(state.S + 3, iv, 16);</div>
|
|
<div class="line"><a name="l00123"></a><span class="lineno"> 123</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00124"></a><span class="lineno"> 124</span> <span class="preprocessor"></span> state.S[3] = be64toh(state.S[3]);</div>
|
|
<div class="line"><a name="l00125"></a><span class="lineno"> 125</span>  state.S[4] = be64toh(state.S[4]);</div>
|
|
<div class="line"><a name="l00126"></a><span class="lineno"> 126</span>  posn = 7;</div>
|
|
<div class="line"><a name="l00127"></a><span class="lineno"> 127</span>  authMode = 1;</div>
|
|
<div class="line"><a name="l00128"></a><span class="lineno"> 128</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00129"></a><span class="lineno"> 129</span> <span class="preprocessor"></span> posn = 0;</div>
|
|
<div class="line"><a name="l00130"></a><span class="lineno"> 130</span>  authMode = 1;</div>
|
|
<div class="line"><a name="l00131"></a><span class="lineno"> 131</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00132"></a><span class="lineno"> 132</span> <span class="preprocessor"></span></div>
|
|
<div class="line"><a name="l00133"></a><span class="lineno"> 133</span>  <span class="comment">// Permute the state with 12 rounds starting at round 0.</span></div>
|
|
<div class="line"><a name="l00134"></a><span class="lineno"> 134</span>  permute(0);</div>
|
|
<div class="line"><a name="l00135"></a><span class="lineno"> 135</span> </div>
|
|
<div class="line"><a name="l00136"></a><span class="lineno"> 136</span>  <span class="comment">// XOR the end of the state with the original key.</span></div>
|
|
<div class="line"><a name="l00137"></a><span class="lineno"> 137</span>  state.S[3] ^= state.K[0];</div>
|
|
<div class="line"><a name="l00138"></a><span class="lineno"> 138</span>  state.S[4] ^= state.K[1];</div>
|
|
<div class="line"><a name="l00139"></a><span class="lineno"> 139</span>  <span class="keywordflow">return</span> <span class="keyword">true</span>;</div>
|
|
<div class="line"><a name="l00140"></a><span class="lineno"> 140</span> }</div>
|
|
<div class="line"><a name="l00141"></a><span class="lineno"> 141</span> </div>
|
|
<div class="line"><a name="l00142"></a><span class="lineno"><a class="line" href="classAscon128.html#a6922df692c23b793c7a453bea7cbfe7f"> 142</a></span> <span class="keywordtype">void</span> <a class="code" href="classAscon128.html#a6922df692c23b793c7a453bea7cbfe7f">Ascon128::encrypt</a>(uint8_t *output, <span class="keyword">const</span> uint8_t *input, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00143"></a><span class="lineno"> 143</span> {</div>
|
|
<div class="line"><a name="l00144"></a><span class="lineno"> 144</span>  <span class="keywordflow">if</span> (authMode)</div>
|
|
<div class="line"><a name="l00145"></a><span class="lineno"> 145</span>  endAuth();</div>
|
|
<div class="line"><a name="l00146"></a><span class="lineno"> 146</span>  <span class="keyword">const</span> uint8_t *in = (<span class="keyword">const</span> uint8_t *)input;</div>
|
|
<div class="line"><a name="l00147"></a><span class="lineno"> 147</span>  uint8_t *out = (uint8_t *)output;</div>
|
|
<div class="line"><a name="l00148"></a><span class="lineno"> 148</span>  <span class="keywordflow">while</span> (len > 0) {</div>
|
|
<div class="line"><a name="l00149"></a><span class="lineno"> 149</span>  <span class="comment">// Encrypt the next byte using the first 64-bit word in the state.</span></div>
|
|
<div class="line"><a name="l00150"></a><span class="lineno"> 150</span>  ((uint8_t *)(state.S))[posn] ^= *in++;</div>
|
|
<div class="line"><a name="l00151"></a><span class="lineno"> 151</span>  *out++ = ((<span class="keyword">const</span> uint8_t *)(state.S))[posn];</div>
|
|
<div class="line"><a name="l00152"></a><span class="lineno"> 152</span>  --len;</div>
|
|
<div class="line"><a name="l00153"></a><span class="lineno"> 153</span> </div>
|
|
<div class="line"><a name="l00154"></a><span class="lineno"> 154</span>  <span class="comment">// Permute the state for b = 6 rounds at the end of each block.</span></div>
|
|
<div class="line"><a name="l00155"></a><span class="lineno"> 155</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00156"></a><span class="lineno"> 156</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> (posn > 0) {</div>
|
|
<div class="line"><a name="l00157"></a><span class="lineno"> 157</span>  --posn;</div>
|
|
<div class="line"><a name="l00158"></a><span class="lineno"> 158</span>  } <span class="keywordflow">else</span> {</div>
|
|
<div class="line"><a name="l00159"></a><span class="lineno"> 159</span>  permute(6);</div>
|
|
<div class="line"><a name="l00160"></a><span class="lineno"> 160</span>  posn = 7;</div>
|
|
<div class="line"><a name="l00161"></a><span class="lineno"> 161</span>  }</div>
|
|
<div class="line"><a name="l00162"></a><span class="lineno"> 162</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00163"></a><span class="lineno"> 163</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> ((++posn) == 8) {</div>
|
|
<div class="line"><a name="l00164"></a><span class="lineno"> 164</span>  permute(6);</div>
|
|
<div class="line"><a name="l00165"></a><span class="lineno"> 165</span>  posn = 0;</div>
|
|
<div class="line"><a name="l00166"></a><span class="lineno"> 166</span>  }</div>
|
|
<div class="line"><a name="l00167"></a><span class="lineno"> 167</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00168"></a><span class="lineno"> 168</span> <span class="preprocessor"></span> }</div>
|
|
<div class="line"><a name="l00169"></a><span class="lineno"> 169</span> }</div>
|
|
<div class="line"><a name="l00170"></a><span class="lineno"> 170</span> </div>
|
|
<div class="line"><a name="l00171"></a><span class="lineno"><a class="line" href="classAscon128.html#a65fa85aa7f8aab1d8bc67b48f2c3abbb"> 171</a></span> <span class="keywordtype">void</span> <a class="code" href="classAscon128.html#a65fa85aa7f8aab1d8bc67b48f2c3abbb">Ascon128::decrypt</a>(uint8_t *output, <span class="keyword">const</span> uint8_t *input, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00172"></a><span class="lineno"> 172</span> {</div>
|
|
<div class="line"><a name="l00173"></a><span class="lineno"> 173</span>  <span class="keywordflow">if</span> (authMode)</div>
|
|
<div class="line"><a name="l00174"></a><span class="lineno"> 174</span>  endAuth();</div>
|
|
<div class="line"><a name="l00175"></a><span class="lineno"> 175</span>  <span class="keyword">const</span> uint8_t *in = (<span class="keyword">const</span> uint8_t *)input;</div>
|
|
<div class="line"><a name="l00176"></a><span class="lineno"> 176</span>  uint8_t *out = (uint8_t *)output;</div>
|
|
<div class="line"><a name="l00177"></a><span class="lineno"> 177</span>  <span class="keywordflow">while</span> (len > 0) {</div>
|
|
<div class="line"><a name="l00178"></a><span class="lineno"> 178</span>  <span class="comment">// Decrypt the next byte using the first 64-bit word in the state.</span></div>
|
|
<div class="line"><a name="l00179"></a><span class="lineno"> 179</span>  *out++ = ((<span class="keyword">const</span> uint8_t *)(state.S))[posn] ^ *in;</div>
|
|
<div class="line"><a name="l00180"></a><span class="lineno"> 180</span>  ((uint8_t *)(state.S))[posn] = *in++;</div>
|
|
<div class="line"><a name="l00181"></a><span class="lineno"> 181</span>  --len;</div>
|
|
<div class="line"><a name="l00182"></a><span class="lineno"> 182</span> </div>
|
|
<div class="line"><a name="l00183"></a><span class="lineno"> 183</span>  <span class="comment">// Permute the state for b = 6 rounds at the end of each block.</span></div>
|
|
<div class="line"><a name="l00184"></a><span class="lineno"> 184</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00185"></a><span class="lineno"> 185</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> (posn > 0) {</div>
|
|
<div class="line"><a name="l00186"></a><span class="lineno"> 186</span>  --posn;</div>
|
|
<div class="line"><a name="l00187"></a><span class="lineno"> 187</span>  } <span class="keywordflow">else</span> {</div>
|
|
<div class="line"><a name="l00188"></a><span class="lineno"> 188</span>  permute(6);</div>
|
|
<div class="line"><a name="l00189"></a><span class="lineno"> 189</span>  posn = 7;</div>
|
|
<div class="line"><a name="l00190"></a><span class="lineno"> 190</span>  }</div>
|
|
<div class="line"><a name="l00191"></a><span class="lineno"> 191</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00192"></a><span class="lineno"> 192</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> ((++posn) == 8) {</div>
|
|
<div class="line"><a name="l00193"></a><span class="lineno"> 193</span>  permute(6);</div>
|
|
<div class="line"><a name="l00194"></a><span class="lineno"> 194</span>  posn = 0;</div>
|
|
<div class="line"><a name="l00195"></a><span class="lineno"> 195</span>  }</div>
|
|
<div class="line"><a name="l00196"></a><span class="lineno"> 196</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00197"></a><span class="lineno"> 197</span> <span class="preprocessor"></span> }</div>
|
|
<div class="line"><a name="l00198"></a><span class="lineno"> 198</span> }</div>
|
|
<div class="line"><a name="l00199"></a><span class="lineno"> 199</span> </div>
|
|
<div class="line"><a name="l00200"></a><span class="lineno"><a class="line" href="classAscon128.html#aa8377235ad18215ac8a38e2638b52aa3"> 200</a></span> <span class="keywordtype">void</span> <a class="code" href="classAscon128.html#aa8377235ad18215ac8a38e2638b52aa3">Ascon128::addAuthData</a>(<span class="keyword">const</span> <span class="keywordtype">void</span> *data, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00201"></a><span class="lineno"> 201</span> {</div>
|
|
<div class="line"><a name="l00202"></a><span class="lineno"> 202</span>  <span class="keywordflow">if</span> (!authMode)</div>
|
|
<div class="line"><a name="l00203"></a><span class="lineno"> 203</span>  <span class="keywordflow">return</span>;</div>
|
|
<div class="line"><a name="l00204"></a><span class="lineno"> 204</span>  <span class="keyword">const</span> uint8_t *in = (<span class="keyword">const</span> uint8_t *)data;</div>
|
|
<div class="line"><a name="l00205"></a><span class="lineno"> 205</span>  <span class="keywordflow">while</span> (len > 0) {</div>
|
|
<div class="line"><a name="l00206"></a><span class="lineno"> 206</span>  <span class="comment">// Incorporate the next byte of auth data into the internal state.</span></div>
|
|
<div class="line"><a name="l00207"></a><span class="lineno"> 207</span>  ((uint8_t *)(state.S))[posn] ^= *in++;</div>
|
|
<div class="line"><a name="l00208"></a><span class="lineno"> 208</span>  --len;</div>
|
|
<div class="line"><a name="l00209"></a><span class="lineno"> 209</span> </div>
|
|
<div class="line"><a name="l00210"></a><span class="lineno"> 210</span>  <span class="comment">// Permute the state for b = 6 rounds at the end of each block.</span></div>
|
|
<div class="line"><a name="l00211"></a><span class="lineno"> 211</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00212"></a><span class="lineno"> 212</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> (posn > 0) {</div>
|
|
<div class="line"><a name="l00213"></a><span class="lineno"> 213</span>  --posn;</div>
|
|
<div class="line"><a name="l00214"></a><span class="lineno"> 214</span>  } <span class="keywordflow">else</span> {</div>
|
|
<div class="line"><a name="l00215"></a><span class="lineno"> 215</span>  permute(6);</div>
|
|
<div class="line"><a name="l00216"></a><span class="lineno"> 216</span>  posn = 7;</div>
|
|
<div class="line"><a name="l00217"></a><span class="lineno"> 217</span>  }</div>
|
|
<div class="line"><a name="l00218"></a><span class="lineno"> 218</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00219"></a><span class="lineno"> 219</span> <span class="preprocessor"></span> <span class="keywordflow">if</span> ((++posn) == 8) {</div>
|
|
<div class="line"><a name="l00220"></a><span class="lineno"> 220</span>  permute(6);</div>
|
|
<div class="line"><a name="l00221"></a><span class="lineno"> 221</span>  posn = 0;</div>
|
|
<div class="line"><a name="l00222"></a><span class="lineno"> 222</span>  }</div>
|
|
<div class="line"><a name="l00223"></a><span class="lineno"> 223</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00224"></a><span class="lineno"> 224</span> <span class="preprocessor"></span> }</div>
|
|
<div class="line"><a name="l00225"></a><span class="lineno"> 225</span>  authMode = 2; <span class="comment">// We have some auth data now.</span></div>
|
|
<div class="line"><a name="l00226"></a><span class="lineno"> 226</span> }</div>
|
|
<div class="line"><a name="l00227"></a><span class="lineno"> 227</span> </div>
|
|
<div class="line"><a name="l00228"></a><span class="lineno"><a class="line" href="classAscon128.html#aca6f3d22d2beda9abc0a7ee1a4fb1ee6"> 228</a></span> <span class="keywordtype">void</span> <a class="code" href="classAscon128.html#aca6f3d22d2beda9abc0a7ee1a4fb1ee6">Ascon128::computeTag</a>(<span class="keywordtype">void</span> *tag, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00229"></a><span class="lineno"> 229</span> {</div>
|
|
<div class="line"><a name="l00230"></a><span class="lineno"> 230</span>  <span class="comment">// End authentication mode if there was no plaintext/ciphertext.</span></div>
|
|
<div class="line"><a name="l00231"></a><span class="lineno"> 231</span>  <span class="keywordflow">if</span> (authMode)</div>
|
|
<div class="line"><a name="l00232"></a><span class="lineno"> 232</span>  endAuth();</div>
|
|
<div class="line"><a name="l00233"></a><span class="lineno"> 233</span> </div>
|
|
<div class="line"><a name="l00234"></a><span class="lineno"> 234</span>  <span class="comment">// Pad the last block, add the original key, and permute the state.</span></div>
|
|
<div class="line"><a name="l00235"></a><span class="lineno"> 235</span>  ((uint8_t *)(state.S))[posn] ^= 0x80;</div>
|
|
<div class="line"><a name="l00236"></a><span class="lineno"> 236</span>  state.S[1] ^= state.K[0];</div>
|
|
<div class="line"><a name="l00237"></a><span class="lineno"> 237</span>  state.S[2] ^= state.K[1];</div>
|
|
<div class="line"><a name="l00238"></a><span class="lineno"> 238</span>  permute(0);</div>
|
|
<div class="line"><a name="l00239"></a><span class="lineno"> 239</span> </div>
|
|
<div class="line"><a name="l00240"></a><span class="lineno"> 240</span>  <span class="comment">// Compute the tag and convert it into big-endian in the return buffer.</span></div>
|
|
<div class="line"><a name="l00241"></a><span class="lineno"> 241</span>  uint64_t T[2];</div>
|
|
<div class="line"><a name="l00242"></a><span class="lineno"> 242</span>  T[0] = htobe64(state.S[3] ^ state.K[0]);</div>
|
|
<div class="line"><a name="l00243"></a><span class="lineno"> 243</span>  T[1] = htobe64(state.S[4] ^ state.K[1]);</div>
|
|
<div class="line"><a name="l00244"></a><span class="lineno"> 244</span>  <span class="keywordflow">if</span> (len > 16)</div>
|
|
<div class="line"><a name="l00245"></a><span class="lineno"> 245</span>  len = 16;</div>
|
|
<div class="line"><a name="l00246"></a><span class="lineno"> 246</span>  memcpy(tag, T, len);</div>
|
|
<div class="line"><a name="l00247"></a><span class="lineno"> 247</span>  clean(T);</div>
|
|
<div class="line"><a name="l00248"></a><span class="lineno"> 248</span> }</div>
|
|
<div class="line"><a name="l00249"></a><span class="lineno"> 249</span> </div>
|
|
<div class="line"><a name="l00250"></a><span class="lineno"><a class="line" href="classAscon128.html#a877fd3bf568963d1712479a747ff619e"> 250</a></span> <span class="keywordtype">bool</span> <a class="code" href="classAscon128.html#a877fd3bf568963d1712479a747ff619e">Ascon128::checkTag</a>(<span class="keyword">const</span> <span class="keywordtype">void</span> *tag, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00251"></a><span class="lineno"> 251</span> {</div>
|
|
<div class="line"><a name="l00252"></a><span class="lineno"> 252</span>  <span class="comment">// The tag can never match if it is larger than the maximum allowed size.</span></div>
|
|
<div class="line"><a name="l00253"></a><span class="lineno"> 253</span>  <span class="keywordflow">if</span> (len > 16)</div>
|
|
<div class="line"><a name="l00254"></a><span class="lineno"> 254</span>  <span class="keywordflow">return</span> <span class="keyword">false</span>;</div>
|
|
<div class="line"><a name="l00255"></a><span class="lineno"> 255</span> </div>
|
|
<div class="line"><a name="l00256"></a><span class="lineno"> 256</span>  <span class="comment">// End authentication mode if there was no plaintext/ciphertext.</span></div>
|
|
<div class="line"><a name="l00257"></a><span class="lineno"> 257</span>  <span class="keywordflow">if</span> (authMode)</div>
|
|
<div class="line"><a name="l00258"></a><span class="lineno"> 258</span>  endAuth();</div>
|
|
<div class="line"><a name="l00259"></a><span class="lineno"> 259</span> </div>
|
|
<div class="line"><a name="l00260"></a><span class="lineno"> 260</span>  <span class="comment">// Pad the last block, add the original key, and permute the state.</span></div>
|
|
<div class="line"><a name="l00261"></a><span class="lineno"> 261</span>  ((uint8_t *)(state.S))[posn] ^= 0x80;</div>
|
|
<div class="line"><a name="l00262"></a><span class="lineno"> 262</span>  state.S[1] ^= state.K[0];</div>
|
|
<div class="line"><a name="l00263"></a><span class="lineno"> 263</span>  state.S[2] ^= state.K[1];</div>
|
|
<div class="line"><a name="l00264"></a><span class="lineno"> 264</span>  permute(0);</div>
|
|
<div class="line"><a name="l00265"></a><span class="lineno"> 265</span> </div>
|
|
<div class="line"><a name="l00266"></a><span class="lineno"> 266</span>  <span class="comment">// Compute the tag and convert it into big-endian.</span></div>
|
|
<div class="line"><a name="l00267"></a><span class="lineno"> 267</span>  uint64_t T[2];</div>
|
|
<div class="line"><a name="l00268"></a><span class="lineno"> 268</span>  T[0] = htobe64(state.S[3] ^ state.K[0]);</div>
|
|
<div class="line"><a name="l00269"></a><span class="lineno"> 269</span>  T[1] = htobe64(state.S[4] ^ state.K[1]);</div>
|
|
<div class="line"><a name="l00270"></a><span class="lineno"> 270</span>  <span class="keywordflow">if</span> (len > 16)</div>
|
|
<div class="line"><a name="l00271"></a><span class="lineno"> 271</span>  len = 16;</div>
|
|
<div class="line"><a name="l00272"></a><span class="lineno"> 272</span>  <span class="keywordtype">bool</span> ok = secure_compare(T, tag, len);</div>
|
|
<div class="line"><a name="l00273"></a><span class="lineno"> 273</span>  clean(T);</div>
|
|
<div class="line"><a name="l00274"></a><span class="lineno"> 274</span>  <span class="keywordflow">return</span> ok;</div>
|
|
<div class="line"><a name="l00275"></a><span class="lineno"> 275</span> }</div>
|
|
<div class="line"><a name="l00276"></a><span class="lineno"> 276</span> </div>
|
|
<div class="line"><a name="l00280"></a><span class="lineno"><a class="line" href="classAscon128.html#a865d4c163401a78144d2dd339e7981bd"> 280</a></span> <span class="keywordtype">void</span> <a class="code" href="classAscon128.html#a865d4c163401a78144d2dd339e7981bd">Ascon128::clear</a>()</div>
|
|
<div class="line"><a name="l00281"></a><span class="lineno"> 281</span> {</div>
|
|
<div class="line"><a name="l00282"></a><span class="lineno"> 282</span>  clean(state);</div>
|
|
<div class="line"><a name="l00283"></a><span class="lineno"> 283</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00284"></a><span class="lineno"> 284</span> <span class="preprocessor"></span> posn = 7;</div>
|
|
<div class="line"><a name="l00285"></a><span class="lineno"> 285</span>  authMode = 1;</div>
|
|
<div class="line"><a name="l00286"></a><span class="lineno"> 286</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00287"></a><span class="lineno"> 287</span> <span class="preprocessor"></span> posn = 0;</div>
|
|
<div class="line"><a name="l00288"></a><span class="lineno"> 288</span>  authMode = 1;</div>
|
|
<div class="line"><a name="l00289"></a><span class="lineno"> 289</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00290"></a><span class="lineno"> 290</span> <span class="preprocessor"></span>}</div>
|
|
<div class="line"><a name="l00291"></a><span class="lineno"> 291</span> </div>
|
|
<div class="line"><a name="l00292"></a><span class="lineno"> 292</span> <span class="preprocessor">#if !defined(__AVR__) || defined(CRYPTO_DOC)</span></div>
|
|
<div class="line"><a name="l00293"></a><span class="lineno"> 293</span> <span class="preprocessor"></span></div>
|
|
<div class="line"><a name="l00299"></a><span class="lineno"> 299</span> <span class="keywordtype">void</span> Ascon128::permute(uint8_t first)</div>
|
|
<div class="line"><a name="l00300"></a><span class="lineno"> 300</span> {</div>
|
|
<div class="line"><a name="l00301"></a><span class="lineno"> 301</span>  uint64_t t0, t1, t2, t3, t4;</div>
|
|
<div class="line"><a name="l00302"></a><span class="lineno"> 302</span> <span class="preprocessor"> #define x0 state.S[0]</span></div>
|
|
<div class="line"><a name="l00303"></a><span class="lineno"> 303</span> <span class="preprocessor"></span><span class="preprocessor"> #define x1 state.S[1]</span></div>
|
|
<div class="line"><a name="l00304"></a><span class="lineno"> 304</span> <span class="preprocessor"></span><span class="preprocessor"> #define x2 state.S[2]</span></div>
|
|
<div class="line"><a name="l00305"></a><span class="lineno"> 305</span> <span class="preprocessor"></span><span class="preprocessor"> #define x3 state.S[3]</span></div>
|
|
<div class="line"><a name="l00306"></a><span class="lineno"> 306</span> <span class="preprocessor"></span><span class="preprocessor"> #define x4 state.S[4]</span></div>
|
|
<div class="line"><a name="l00307"></a><span class="lineno"> 307</span> <span class="preprocessor"></span> <span class="keywordflow">while</span> (first < 12) {</div>
|
|
<div class="line"><a name="l00308"></a><span class="lineno"> 308</span>  <span class="comment">// Add the round constant to the state.</span></div>
|
|
<div class="line"><a name="l00309"></a><span class="lineno"> 309</span>  x2 ^= ((0x0F - first) << 4) | first;</div>
|
|
<div class="line"><a name="l00310"></a><span class="lineno"> 310</span> </div>
|
|
<div class="line"><a name="l00311"></a><span class="lineno"> 311</span>  <span class="comment">// Substitution layer - apply the s-box using bit-slicing</span></div>
|
|
<div class="line"><a name="l00312"></a><span class="lineno"> 312</span>  <span class="comment">// according to the algorithm recommended in the specification.</span></div>
|
|
<div class="line"><a name="l00313"></a><span class="lineno"> 313</span>  x0 ^= x4; x4 ^= x3; x2 ^= x1;</div>
|
|
<div class="line"><a name="l00314"></a><span class="lineno"> 314</span>  t0 = ~x0; t1 = ~x1; t2 = ~x2; t3 = ~x3; t4 = ~x4;</div>
|
|
<div class="line"><a name="l00315"></a><span class="lineno"> 315</span>  t0 &= x1; t1 &= x2; t2 &= x3; t3 &= x4; t4 &= x0;</div>
|
|
<div class="line"><a name="l00316"></a><span class="lineno"> 316</span>  x0 ^= t1; x1 ^= t2; x2 ^= t3; x3 ^= t4; x4 ^= t0;</div>
|
|
<div class="line"><a name="l00317"></a><span class="lineno"> 317</span>  x1 ^= x0; x0 ^= x4; x3 ^= x2; x2 = ~x2;</div>
|
|
<div class="line"><a name="l00318"></a><span class="lineno"> 318</span> </div>
|
|
<div class="line"><a name="l00319"></a><span class="lineno"> 319</span>  <span class="comment">// Linear diffusion layer.</span></div>
|
|
<div class="line"><a name="l00320"></a><span class="lineno"> 320</span>  x0 ^= rightRotate19_64(x0) ^ rightRotate28_64(x0);</div>
|
|
<div class="line"><a name="l00321"></a><span class="lineno"> 321</span>  x1 ^= rightRotate61_64(x1) ^ rightRotate39_64(x1);</div>
|
|
<div class="line"><a name="l00322"></a><span class="lineno"> 322</span>  x2 ^= rightRotate1_64(x2) ^ rightRotate6_64(x2);</div>
|
|
<div class="line"><a name="l00323"></a><span class="lineno"> 323</span>  x3 ^= rightRotate10_64(x3) ^ rightRotate17_64(x3);</div>
|
|
<div class="line"><a name="l00324"></a><span class="lineno"> 324</span>  x4 ^= rightRotate7_64(x4) ^ rightRotate41_64(x4);</div>
|
|
<div class="line"><a name="l00325"></a><span class="lineno"> 325</span> </div>
|
|
<div class="line"><a name="l00326"></a><span class="lineno"> 326</span>  <span class="comment">// Move onto the next round.</span></div>
|
|
<div class="line"><a name="l00327"></a><span class="lineno"> 327</span>  ++first;</div>
|
|
<div class="line"><a name="l00328"></a><span class="lineno"> 328</span>  }</div>
|
|
<div class="line"><a name="l00329"></a><span class="lineno"> 329</span> <span class="preprocessor"> #undef x0</span></div>
|
|
<div class="line"><a name="l00330"></a><span class="lineno"> 330</span> <span class="preprocessor"></span><span class="preprocessor"> #undef x1</span></div>
|
|
<div class="line"><a name="l00331"></a><span class="lineno"> 331</span> <span class="preprocessor"></span><span class="preprocessor"> #undef x2</span></div>
|
|
<div class="line"><a name="l00332"></a><span class="lineno"> 332</span> <span class="preprocessor"></span><span class="preprocessor"> #undef x3</span></div>
|
|
<div class="line"><a name="l00333"></a><span class="lineno"> 333</span> <span class="preprocessor"></span><span class="preprocessor"> #undef x4</span></div>
|
|
<div class="line"><a name="l00334"></a><span class="lineno"> 334</span> <span class="preprocessor"></span>}</div>
|
|
<div class="line"><a name="l00335"></a><span class="lineno"> 335</span> </div>
|
|
<div class="line"><a name="l00336"></a><span class="lineno"> 336</span> <span class="preprocessor">#endif // !__AVR__</span></div>
|
|
<div class="line"><a name="l00337"></a><span class="lineno"> 337</span> <span class="preprocessor"></span></div>
|
|
<div class="line"><a name="l00341"></a><span class="lineno"> 341</span> <span class="keywordtype">void</span> Ascon128::endAuth()</div>
|
|
<div class="line"><a name="l00342"></a><span class="lineno"> 342</span> {</div>
|
|
<div class="line"><a name="l00343"></a><span class="lineno"> 343</span>  <span class="keywordflow">if</span> (authMode == 2) {</div>
|
|
<div class="line"><a name="l00344"></a><span class="lineno"> 344</span>  <span class="comment">// We had some auth data, so we need to pad and permute the last block.</span></div>
|
|
<div class="line"><a name="l00345"></a><span class="lineno"> 345</span>  <span class="comment">// There is no need to do this if there were zero bytes of auth data.</span></div>
|
|
<div class="line"><a name="l00346"></a><span class="lineno"> 346</span>  ((uint8_t *)(state.S))[posn] ^= 0x80;</div>
|
|
<div class="line"><a name="l00347"></a><span class="lineno"> 347</span>  permute(6);</div>
|
|
<div class="line"><a name="l00348"></a><span class="lineno"> 348</span>  }</div>
|
|
<div class="line"><a name="l00349"></a><span class="lineno"> 349</span>  state.S[4] ^= 1; <span class="comment">// Domain separation between auth data and payload data.</span></div>
|
|
<div class="line"><a name="l00350"></a><span class="lineno"> 350</span>  authMode = 0;</div>
|
|
<div class="line"><a name="l00351"></a><span class="lineno"> 351</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00352"></a><span class="lineno"> 352</span> <span class="preprocessor"></span> posn = 7;</div>
|
|
<div class="line"><a name="l00353"></a><span class="lineno"> 353</span> <span class="preprocessor">#else</span></div>
|
|
<div class="line"><a name="l00354"></a><span class="lineno"> 354</span> <span class="preprocessor"></span> posn = 0;</div>
|
|
<div class="line"><a name="l00355"></a><span class="lineno"> 355</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00356"></a><span class="lineno"> 356</span> <span class="preprocessor"></span>}</div>
|
|
<div class="ttc" id="classAscon128_html_a32a4fe685f92378493ab3f058971228e"><div class="ttname"><a href="classAscon128.html#a32a4fe685f92378493ab3f058971228e">Ascon128::ivSize</a></div><div class="ttdeci">size_t ivSize() const </div><div class="ttdoc">Gets the size of the Ascon128 initialization vector in bytes. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00085">Ascon128.cpp:85</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a877fd3bf568963d1712479a747ff619e"><div class="ttname"><a href="classAscon128.html#a877fd3bf568963d1712479a747ff619e">Ascon128::checkTag</a></div><div class="ttdeci">bool checkTag(const void *tag, size_t len)</div><div class="ttdoc">Finalizes the decryption process and checks the authentication tag. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00250">Ascon128.cpp:250</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_aca6f3d22d2beda9abc0a7ee1a4fb1ee6"><div class="ttname"><a href="classAscon128.html#aca6f3d22d2beda9abc0a7ee1a4fb1ee6">Ascon128::computeTag</a></div><div class="ttdeci">void computeTag(void *tag, size_t len)</div><div class="ttdoc">Finalizes the encryption process and computes the authentication tag. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00228">Ascon128.cpp:228</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_aa76a734d4746e73a27688a678c005528"><div class="ttname"><a href="classAscon128.html#aa76a734d4746e73a27688a678c005528">Ascon128::keySize</a></div><div class="ttdeci">size_t keySize() const </div><div class="ttdoc">Gets the size of the Ascon128 key in bytes. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00072">Ascon128.cpp:72</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a65fa85aa7f8aab1d8bc67b48f2c3abbb"><div class="ttname"><a href="classAscon128.html#a65fa85aa7f8aab1d8bc67b48f2c3abbb">Ascon128::decrypt</a></div><div class="ttdeci">void decrypt(uint8_t *output, const uint8_t *input, size_t len)</div><div class="ttdoc">Decrypts an input buffer and writes the plaintext to an output buffer. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00171">Ascon128.cpp:171</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_aa8377235ad18215ac8a38e2638b52aa3"><div class="ttname"><a href="classAscon128.html#aa8377235ad18215ac8a38e2638b52aa3">Ascon128::addAuthData</a></div><div class="ttdeci">void addAuthData(const void *data, size_t len)</div><div class="ttdoc">Adds extra data that will be authenticated but not encrypted. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00200">Ascon128.cpp:200</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a024f5cee436c4515a408c20a02603a42"><div class="ttname"><a href="classAscon128.html#a024f5cee436c4515a408c20a02603a42">Ascon128::Ascon128</a></div><div class="ttdeci">Ascon128()</div><div class="ttdoc">Constructs a new Ascon128 authenticated cipher. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00048">Ascon128.cpp:48</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_afbf59ccc30d6c3452b10a571bbe623e0"><div class="ttname"><a href="classAscon128.html#afbf59ccc30d6c3452b10a571bbe623e0">Ascon128::setKey</a></div><div class="ttdeci">bool setKey(const uint8_t *key, size_t len)</div><div class="ttdoc">Sets the key to use for future encryption and decryption operations. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00100">Ascon128.cpp:100</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a7fa16c1ee860b2f76011d7852dc8ec96"><div class="ttname"><a href="classAscon128.html#a7fa16c1ee860b2f76011d7852dc8ec96">Ascon128::setIV</a></div><div class="ttdeci">bool setIV(const uint8_t *iv, size_t len)</div><div class="ttdoc">Sets the initialization vector to use for future encryption and decryption operations. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00112">Ascon128.cpp:112</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a8d8e005b56da6a5b08965e0cf5fa8309"><div class="ttname"><a href="classAscon128.html#a8d8e005b56da6a5b08965e0cf5fa8309">Ascon128::~Ascon128</a></div><div class="ttdeci">virtual ~Ascon128()</div><div class="ttdoc">Destroys this Ascon128 authenticated cipher. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00062">Ascon128.cpp:62</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_aae49ea7143e32dcf2081b870edba3843"><div class="ttname"><a href="classAscon128.html#aae49ea7143e32dcf2081b870edba3843">Ascon128::tagSize</a></div><div class="ttdeci">size_t tagSize() const </div><div class="ttdoc">Gets the size of the Ascon128 authentication tag in bytes. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00095">Ascon128.cpp:95</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a865d4c163401a78144d2dd339e7981bd"><div class="ttname"><a href="classAscon128.html#a865d4c163401a78144d2dd339e7981bd">Ascon128::clear</a></div><div class="ttdeci">void clear()</div><div class="ttdoc">Clears all security-sensitive state from this cipher object. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00280">Ascon128.cpp:280</a></div></div>
|
|
<div class="ttc" id="classAscon128_html_a6922df692c23b793c7a453bea7cbfe7f"><div class="ttname"><a href="classAscon128.html#a6922df692c23b793c7a453bea7cbfe7f">Ascon128::encrypt</a></div><div class="ttdeci">void encrypt(uint8_t *output, const uint8_t *input, size_t len)</div><div class="ttdoc">Encrypts an input buffer and writes the ciphertext to an output buffer. </div><div class="ttdef"><b>Definition:</b> <a href="Ascon128_8cpp_source.html#l00142">Ascon128.cpp:142</a></div></div>
|
|
</div><!-- fragment --></div><!-- contents -->
|
|
<!-- start footer part -->
|
|
<hr class="footer"/><address class="footer"><small>
|
|
Generated on Fri Apr 27 2018 12:01:32 for Arduino Cryptography Library by  <a href="http://www.doxygen.org/index.html">
|
|
<img class="footer" src="doxygen.png" alt="doxygen"/>
|
|
</a> 1.8.6
|
|
</small></address>
|
|
</body>
|
|
</html>
|