mirror of
https://github.com/taigrr/arduinolibs
synced 2025-01-18 04:33:12 -08:00
248 lines
27 KiB
HTML
248 lines
27 KiB
HTML
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
|
<html xmlns="http://www.w3.org/1999/xhtml">
|
|
<head>
|
|
<meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/>
|
|
<meta http-equiv="X-UA-Compatible" content="IE=9"/>
|
|
<meta name="generator" content="Doxygen 1.8.6"/>
|
|
<title>ArduinoLibs: GHASH.cpp Source File</title>
|
|
<link href="tabs.css" rel="stylesheet" type="text/css"/>
|
|
<script type="text/javascript" src="jquery.js"></script>
|
|
<script type="text/javascript" src="dynsections.js"></script>
|
|
<link href="search/search.css" rel="stylesheet" type="text/css"/>
|
|
<script type="text/javascript" src="search/search.js"></script>
|
|
<script type="text/javascript">
|
|
$(document).ready(function() { searchBox.OnSelectItem(0); });
|
|
</script>
|
|
<link href="doxygen.css" rel="stylesheet" type="text/css" />
|
|
</head>
|
|
<body>
|
|
<div id="top"><!-- do not remove this div, it is closed by doxygen! -->
|
|
<div id="titlearea">
|
|
<table cellspacing="0" cellpadding="0">
|
|
<tbody>
|
|
<tr style="height: 56px;">
|
|
<td style="padding-left: 0.5em;">
|
|
<div id="projectname">ArduinoLibs
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
</div>
|
|
<!-- end header part -->
|
|
<!-- Generated by Doxygen 1.8.6 -->
|
|
<script type="text/javascript">
|
|
var searchBox = new SearchBox("searchBox", "search",false,'Search');
|
|
</script>
|
|
<div id="navrow1" class="tabs">
|
|
<ul class="tablist">
|
|
<li><a href="index.html"><span>Main Page</span></a></li>
|
|
<li><a href="pages.html"><span>Related Pages</span></a></li>
|
|
<li><a href="modules.html"><span>Modules</span></a></li>
|
|
<li><a href="annotated.html"><span>Classes</span></a></li>
|
|
<li class="current"><a href="files.html"><span>Files</span></a></li>
|
|
<li>
|
|
<div id="MSearchBox" class="MSearchBoxInactive">
|
|
<span class="left">
|
|
<img id="MSearchSelect" src="search/mag_sel.png"
|
|
onmouseover="return searchBox.OnSearchSelectShow()"
|
|
onmouseout="return searchBox.OnSearchSelectHide()"
|
|
alt=""/>
|
|
<input type="text" id="MSearchField" value="Search" accesskey="S"
|
|
onfocus="searchBox.OnSearchFieldFocus(true)"
|
|
onblur="searchBox.OnSearchFieldFocus(false)"
|
|
onkeyup="searchBox.OnSearchFieldChange(event)"/>
|
|
</span><span class="right">
|
|
<a id="MSearchClose" href="javascript:searchBox.CloseResultsWindow()"><img id="MSearchCloseImg" border="0" src="search/close.png" alt=""/></a>
|
|
</span>
|
|
</div>
|
|
</li>
|
|
</ul>
|
|
</div>
|
|
<div id="navrow2" class="tabs2">
|
|
<ul class="tablist">
|
|
<li><a href="files.html"><span>File List</span></a></li>
|
|
</ul>
|
|
</div>
|
|
<!-- window showing the filter options -->
|
|
<div id="MSearchSelectWindow"
|
|
onmouseover="return searchBox.OnSearchSelectShow()"
|
|
onmouseout="return searchBox.OnSearchSelectHide()"
|
|
onkeydown="return searchBox.OnSearchSelectKey(event)">
|
|
<a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(0)"><span class="SelectionMark"> </span>All</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(1)"><span class="SelectionMark"> </span>Classes</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(2)"><span class="SelectionMark"> </span>Files</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(3)"><span class="SelectionMark"> </span>Functions</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(4)"><span class="SelectionMark"> </span>Variables</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(5)"><span class="SelectionMark"> </span>Typedefs</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(6)"><span class="SelectionMark"> </span>Enumerations</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(7)"><span class="SelectionMark"> </span>Enumerator</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(8)"><span class="SelectionMark"> </span>Groups</a><a class="SelectItem" href="javascript:void(0)" onclick="searchBox.OnSelectItem(9)"><span class="SelectionMark"> </span>Pages</a></div>
|
|
|
|
<!-- iframe showing the search results (closed by default) -->
|
|
<div id="MSearchResultsWindow">
|
|
<iframe src="javascript:void(0)" frameborder="0"
|
|
name="MSearchResults" id="MSearchResults">
|
|
</iframe>
|
|
</div>
|
|
|
|
<div id="nav-path" class="navpath">
|
|
<ul>
|
|
<li class="navelem"><a class="el" href="dir_bc0718b08fb2015b8e59c47b2805f60c.html">libraries</a></li><li class="navelem"><a class="el" href="dir_e2ce51835550ba18edf07a8311722290.html">Crypto</a></li> </ul>
|
|
</div>
|
|
</div><!-- top -->
|
|
<div class="header">
|
|
<div class="headertitle">
|
|
<div class="title">GHASH.cpp</div> </div>
|
|
</div><!--header-->
|
|
<div class="contents">
|
|
<div class="fragment"><div class="line"><a name="l00001"></a><span class="lineno"> 1</span> <span class="comment">/*</span></div>
|
|
<div class="line"><a name="l00002"></a><span class="lineno"> 2</span> <span class="comment"> * Copyright (C) 2015 Southern Storm Software, Pty Ltd.</span></div>
|
|
<div class="line"><a name="l00003"></a><span class="lineno"> 3</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00004"></a><span class="lineno"> 4</span> <span class="comment"> * Permission is hereby granted, free of charge, to any person obtaining a</span></div>
|
|
<div class="line"><a name="l00005"></a><span class="lineno"> 5</span> <span class="comment"> * copy of this software and associated documentation files (the "Software"),</span></div>
|
|
<div class="line"><a name="l00006"></a><span class="lineno"> 6</span> <span class="comment"> * to deal in the Software without restriction, including without limitation</span></div>
|
|
<div class="line"><a name="l00007"></a><span class="lineno"> 7</span> <span class="comment"> * the rights to use, copy, modify, merge, publish, distribute, sublicense,</span></div>
|
|
<div class="line"><a name="l00008"></a><span class="lineno"> 8</span> <span class="comment"> * and/or sell copies of the Software, and to permit persons to whom the</span></div>
|
|
<div class="line"><a name="l00009"></a><span class="lineno"> 9</span> <span class="comment"> * Software is furnished to do so, subject to the following conditions:</span></div>
|
|
<div class="line"><a name="l00010"></a><span class="lineno"> 10</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00011"></a><span class="lineno"> 11</span> <span class="comment"> * The above copyright notice and this permission notice shall be included</span></div>
|
|
<div class="line"><a name="l00012"></a><span class="lineno"> 12</span> <span class="comment"> * in all copies or substantial portions of the Software.</span></div>
|
|
<div class="line"><a name="l00013"></a><span class="lineno"> 13</span> <span class="comment"> *</span></div>
|
|
<div class="line"><a name="l00014"></a><span class="lineno"> 14</span> <span class="comment"> * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS</span></div>
|
|
<div class="line"><a name="l00015"></a><span class="lineno"> 15</span> <span class="comment"> * OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,</span></div>
|
|
<div class="line"><a name="l00016"></a><span class="lineno"> 16</span> <span class="comment"> * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE</span></div>
|
|
<div class="line"><a name="l00017"></a><span class="lineno"> 17</span> <span class="comment"> * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER</span></div>
|
|
<div class="line"><a name="l00018"></a><span class="lineno"> 18</span> <span class="comment"> * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING</span></div>
|
|
<div class="line"><a name="l00019"></a><span class="lineno"> 19</span> <span class="comment"> * FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER</span></div>
|
|
<div class="line"><a name="l00020"></a><span class="lineno"> 20</span> <span class="comment"> * DEALINGS IN THE SOFTWARE.</span></div>
|
|
<div class="line"><a name="l00021"></a><span class="lineno"> 21</span> <span class="comment"> */</span></div>
|
|
<div class="line"><a name="l00022"></a><span class="lineno"> 22</span> </div>
|
|
<div class="line"><a name="l00023"></a><span class="lineno"> 23</span> <span class="preprocessor">#include "GHASH.h"</span></div>
|
|
<div class="line"><a name="l00024"></a><span class="lineno"> 24</span> <span class="preprocessor">#include "Crypto.h"</span></div>
|
|
<div class="line"><a name="l00025"></a><span class="lineno"> 25</span> <span class="preprocessor">#include "utility/EndianUtil.h"</span></div>
|
|
<div class="line"><a name="l00026"></a><span class="lineno"> 26</span> <span class="preprocessor">#include <string.h></span></div>
|
|
<div class="line"><a name="l00027"></a><span class="lineno"> 27</span> </div>
|
|
<div class="line"><a name="l00047"></a><span class="lineno"><a class="line" href="classGHASH.html#a3a1abd0f641bccd9b4aa1f40beb8dca3"> 47</a></span> <a class="code" href="classGHASH.html#a3a1abd0f641bccd9b4aa1f40beb8dca3">GHASH::GHASH</a>()</div>
|
|
<div class="line"><a name="l00048"></a><span class="lineno"> 48</span> {</div>
|
|
<div class="line"><a name="l00049"></a><span class="lineno"> 49</span>  state.posn = 0;</div>
|
|
<div class="line"><a name="l00050"></a><span class="lineno"> 50</span> }</div>
|
|
<div class="line"><a name="l00051"></a><span class="lineno"> 51</span> </div>
|
|
<div class="line"><a name="l00055"></a><span class="lineno"><a class="line" href="classGHASH.html#ae7f63a587adf1aa1ffcdc0a6e20584fd"> 55</a></span> <a class="code" href="classGHASH.html#ae7f63a587adf1aa1ffcdc0a6e20584fd">GHASH::~GHASH</a>()</div>
|
|
<div class="line"><a name="l00056"></a><span class="lineno"> 56</span> {</div>
|
|
<div class="line"><a name="l00057"></a><span class="lineno"> 57</span>  clean(state);</div>
|
|
<div class="line"><a name="l00058"></a><span class="lineno"> 58</span> }</div>
|
|
<div class="line"><a name="l00059"></a><span class="lineno"> 59</span> </div>
|
|
<div class="line"><a name="l00067"></a><span class="lineno"><a class="line" href="classGHASH.html#a479a3e8c37e320bf99f54b95bf5f4c55"> 67</a></span> <span class="keywordtype">void</span> <a class="code" href="classGHASH.html#a479a3e8c37e320bf99f54b95bf5f4c55">GHASH::reset</a>(<span class="keyword">const</span> <span class="keywordtype">void</span> *key)</div>
|
|
<div class="line"><a name="l00068"></a><span class="lineno"> 68</span> {</div>
|
|
<div class="line"><a name="l00069"></a><span class="lineno"> 69</span>  <span class="comment">// Copy the key into H and convert from big endian to host order.</span></div>
|
|
<div class="line"><a name="l00070"></a><span class="lineno"> 70</span>  memcpy(state.H, key, 16);</div>
|
|
<div class="line"><a name="l00071"></a><span class="lineno"> 71</span> <span class="preprocessor">#if defined(CRYPTO_LITTLE_ENDIAN)</span></div>
|
|
<div class="line"><a name="l00072"></a><span class="lineno"> 72</span> <span class="preprocessor"></span> state.H[0] = be32toh(state.H[0]);</div>
|
|
<div class="line"><a name="l00073"></a><span class="lineno"> 73</span>  state.H[1] = be32toh(state.H[1]);</div>
|
|
<div class="line"><a name="l00074"></a><span class="lineno"> 74</span>  state.H[2] = be32toh(state.H[2]);</div>
|
|
<div class="line"><a name="l00075"></a><span class="lineno"> 75</span>  state.H[3] = be32toh(state.H[3]);</div>
|
|
<div class="line"><a name="l00076"></a><span class="lineno"> 76</span> <span class="preprocessor">#endif</span></div>
|
|
<div class="line"><a name="l00077"></a><span class="lineno"> 77</span> <span class="preprocessor"></span></div>
|
|
<div class="line"><a name="l00078"></a><span class="lineno"> 78</span>  <span class="comment">// Reset the hash.</span></div>
|
|
<div class="line"><a name="l00079"></a><span class="lineno"> 79</span>  memset(state.Y, 0, <span class="keyword">sizeof</span>(state.Y));</div>
|
|
<div class="line"><a name="l00080"></a><span class="lineno"> 80</span>  state.posn = 0;</div>
|
|
<div class="line"><a name="l00081"></a><span class="lineno"> 81</span> }</div>
|
|
<div class="line"><a name="l00082"></a><span class="lineno"> 82</span> </div>
|
|
<div class="line"><a name="l00094"></a><span class="lineno"><a class="line" href="classGHASH.html#a235edb14c6ed1ec55ddda595816ef1c7"> 94</a></span> <span class="keywordtype">void</span> <a class="code" href="classGHASH.html#a235edb14c6ed1ec55ddda595816ef1c7">GHASH::update</a>(<span class="keyword">const</span> <span class="keywordtype">void</span> *data, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00095"></a><span class="lineno"> 95</span> {</div>
|
|
<div class="line"><a name="l00096"></a><span class="lineno"> 96</span>  <span class="comment">// XOR the input with state.Y in 128-bit chunks and process them.</span></div>
|
|
<div class="line"><a name="l00097"></a><span class="lineno"> 97</span>  <span class="keyword">const</span> uint8_t *d = (<span class="keyword">const</span> uint8_t *)data;</div>
|
|
<div class="line"><a name="l00098"></a><span class="lineno"> 98</span>  <span class="keywordflow">while</span> (len > 0) {</div>
|
|
<div class="line"><a name="l00099"></a><span class="lineno"> 99</span>  uint8_t size = 16 - state.posn;</div>
|
|
<div class="line"><a name="l00100"></a><span class="lineno"> 100</span>  <span class="keywordflow">if</span> (size > len)</div>
|
|
<div class="line"><a name="l00101"></a><span class="lineno"> 101</span>  size = len;</div>
|
|
<div class="line"><a name="l00102"></a><span class="lineno"> 102</span>  uint8_t *y = ((uint8_t *)state.Y) + state.posn;</div>
|
|
<div class="line"><a name="l00103"></a><span class="lineno"> 103</span>  <span class="keywordflow">for</span> (uint8_t i = 0; i < size; ++i)</div>
|
|
<div class="line"><a name="l00104"></a><span class="lineno"> 104</span>  y[i] ^= d[i];</div>
|
|
<div class="line"><a name="l00105"></a><span class="lineno"> 105</span>  state.posn += size;</div>
|
|
<div class="line"><a name="l00106"></a><span class="lineno"> 106</span>  len -= size;</div>
|
|
<div class="line"><a name="l00107"></a><span class="lineno"> 107</span>  d += size;</div>
|
|
<div class="line"><a name="l00108"></a><span class="lineno"> 108</span>  <span class="keywordflow">if</span> (state.posn == 16) {</div>
|
|
<div class="line"><a name="l00109"></a><span class="lineno"> 109</span>  processChunk();</div>
|
|
<div class="line"><a name="l00110"></a><span class="lineno"> 110</span>  state.posn = 0;</div>
|
|
<div class="line"><a name="l00111"></a><span class="lineno"> 111</span>  }</div>
|
|
<div class="line"><a name="l00112"></a><span class="lineno"> 112</span>  }</div>
|
|
<div class="line"><a name="l00113"></a><span class="lineno"> 113</span> }</div>
|
|
<div class="line"><a name="l00114"></a><span class="lineno"> 114</span> </div>
|
|
<div class="line"><a name="l00130"></a><span class="lineno"><a class="line" href="classGHASH.html#ab221298ca69c9612bfbfd3dedcb28307"> 130</a></span> <span class="keywordtype">void</span> <a class="code" href="classGHASH.html#ab221298ca69c9612bfbfd3dedcb28307">GHASH::finalize</a>(<span class="keywordtype">void</span> *token, <span class="keywordtype">size_t</span> len)</div>
|
|
<div class="line"><a name="l00131"></a><span class="lineno"> 131</span> {</div>
|
|
<div class="line"><a name="l00132"></a><span class="lineno"> 132</span>  <span class="comment">// Pad with zeroes to a multiple of 16 bytes.</span></div>
|
|
<div class="line"><a name="l00133"></a><span class="lineno"> 133</span>  <a class="code" href="classGHASH.html#a8c38ee9313605f1d8b12dca7cd43e4ad">pad</a>();</div>
|
|
<div class="line"><a name="l00134"></a><span class="lineno"> 134</span> </div>
|
|
<div class="line"><a name="l00135"></a><span class="lineno"> 135</span>  <span class="comment">// The token is the current value of Y.</span></div>
|
|
<div class="line"><a name="l00136"></a><span class="lineno"> 136</span>  <span class="keywordflow">if</span> (len > 16)</div>
|
|
<div class="line"><a name="l00137"></a><span class="lineno"> 137</span>  len = 16;</div>
|
|
<div class="line"><a name="l00138"></a><span class="lineno"> 138</span>  memcpy(token, state.Y, len);</div>
|
|
<div class="line"><a name="l00139"></a><span class="lineno"> 139</span> }</div>
|
|
<div class="line"><a name="l00140"></a><span class="lineno"> 140</span> </div>
|
|
<div class="line"><a name="l00146"></a><span class="lineno"><a class="line" href="classGHASH.html#a8c38ee9313605f1d8b12dca7cd43e4ad"> 146</a></span> <span class="keywordtype">void</span> <a class="code" href="classGHASH.html#a8c38ee9313605f1d8b12dca7cd43e4ad">GHASH::pad</a>()</div>
|
|
<div class="line"><a name="l00147"></a><span class="lineno"> 147</span> {</div>
|
|
<div class="line"><a name="l00148"></a><span class="lineno"> 148</span>  <span class="keywordflow">if</span> (state.posn != 0) {</div>
|
|
<div class="line"><a name="l00149"></a><span class="lineno"> 149</span>  <span class="comment">// Padding involves XOR'ing the rest of state.Y with zeroes,</span></div>
|
|
<div class="line"><a name="l00150"></a><span class="lineno"> 150</span>  <span class="comment">// which does nothing. Immediately process the next chunk.</span></div>
|
|
<div class="line"><a name="l00151"></a><span class="lineno"> 151</span>  processChunk();</div>
|
|
<div class="line"><a name="l00152"></a><span class="lineno"> 152</span>  state.posn = 0;</div>
|
|
<div class="line"><a name="l00153"></a><span class="lineno"> 153</span>  }</div>
|
|
<div class="line"><a name="l00154"></a><span class="lineno"> 154</span> }</div>
|
|
<div class="line"><a name="l00155"></a><span class="lineno"> 155</span> </div>
|
|
<div class="line"><a name="l00159"></a><span class="lineno"><a class="line" href="classGHASH.html#a4b1ee789debf56f7f24807960ef0556e"> 159</a></span> <span class="keywordtype">void</span> <a class="code" href="classGHASH.html#a4b1ee789debf56f7f24807960ef0556e">GHASH::clear</a>()</div>
|
|
<div class="line"><a name="l00160"></a><span class="lineno"> 160</span> {</div>
|
|
<div class="line"><a name="l00161"></a><span class="lineno"> 161</span>  clean(state);</div>
|
|
<div class="line"><a name="l00162"></a><span class="lineno"> 162</span> }</div>
|
|
<div class="line"><a name="l00163"></a><span class="lineno"> 163</span> </div>
|
|
<div class="line"><a name="l00164"></a><span class="lineno"> 164</span> <span class="keywordtype">void</span> GHASH::processChunk()</div>
|
|
<div class="line"><a name="l00165"></a><span class="lineno"> 165</span> {</div>
|
|
<div class="line"><a name="l00166"></a><span class="lineno"> 166</span>  uint32_t Z0 = 0; <span class="comment">// Z = 0</span></div>
|
|
<div class="line"><a name="l00167"></a><span class="lineno"> 167</span>  uint32_t Z1 = 0;</div>
|
|
<div class="line"><a name="l00168"></a><span class="lineno"> 168</span>  uint32_t Z2 = 0;</div>
|
|
<div class="line"><a name="l00169"></a><span class="lineno"> 169</span>  uint32_t Z3 = 0;</div>
|
|
<div class="line"><a name="l00170"></a><span class="lineno"> 170</span>  uint32_t V0 = state.H[0]; <span class="comment">// V = H</span></div>
|
|
<div class="line"><a name="l00171"></a><span class="lineno"> 171</span>  uint32_t V1 = state.H[1];</div>
|
|
<div class="line"><a name="l00172"></a><span class="lineno"> 172</span>  uint32_t V2 = state.H[2];</div>
|
|
<div class="line"><a name="l00173"></a><span class="lineno"> 173</span>  uint32_t V3 = state.H[3];</div>
|
|
<div class="line"><a name="l00174"></a><span class="lineno"> 174</span> </div>
|
|
<div class="line"><a name="l00175"></a><span class="lineno"> 175</span>  <span class="comment">// Multiply Z by V for the set bits in Y, starting at the top.</span></div>
|
|
<div class="line"><a name="l00176"></a><span class="lineno"> 176</span>  <span class="comment">// This is a very simple bit by bit version that may not be very</span></div>
|
|
<div class="line"><a name="l00177"></a><span class="lineno"> 177</span>  <span class="comment">// fast but it should be resistant to cache timing attacks.</span></div>
|
|
<div class="line"><a name="l00178"></a><span class="lineno"> 178</span>  <span class="keywordflow">for</span> (uint8_t posn = 0; posn < 16; ++posn) {</div>
|
|
<div class="line"><a name="l00179"></a><span class="lineno"> 179</span>  uint8_t value = ((<span class="keyword">const</span> uint8_t *)state.Y)[posn];</div>
|
|
<div class="line"><a name="l00180"></a><span class="lineno"> 180</span>  <span class="keywordflow">for</span> (uint8_t bit = 0; bit < 8; ++bit, value <<= 1) {</div>
|
|
<div class="line"><a name="l00181"></a><span class="lineno"> 181</span>  <span class="comment">// Extract the high bit of "value" and turn it into a mask.</span></div>
|
|
<div class="line"><a name="l00182"></a><span class="lineno"> 182</span>  uint32_t mask = (~((uint32_t)(value >> 7))) + 1;</div>
|
|
<div class="line"><a name="l00183"></a><span class="lineno"> 183</span> </div>
|
|
<div class="line"><a name="l00184"></a><span class="lineno"> 184</span>  <span class="comment">// XOR V with Z if the bit is 1.</span></div>
|
|
<div class="line"><a name="l00185"></a><span class="lineno"> 185</span>  Z0 ^= (V0 & mask);</div>
|
|
<div class="line"><a name="l00186"></a><span class="lineno"> 186</span>  Z1 ^= (V1 & mask);</div>
|
|
<div class="line"><a name="l00187"></a><span class="lineno"> 187</span>  Z2 ^= (V2 & mask);</div>
|
|
<div class="line"><a name="l00188"></a><span class="lineno"> 188</span>  Z3 ^= (V3 & mask);</div>
|
|
<div class="line"><a name="l00189"></a><span class="lineno"> 189</span> </div>
|
|
<div class="line"><a name="l00190"></a><span class="lineno"> 190</span>  <span class="comment">// Rotate V right by 1 bit.</span></div>
|
|
<div class="line"><a name="l00191"></a><span class="lineno"> 191</span>  mask = ((~(V3 & 0x01)) + 1) & 0xE1000000;</div>
|
|
<div class="line"><a name="l00192"></a><span class="lineno"> 192</span>  V3 = (V3 >> 1) | (V2 << 31);</div>
|
|
<div class="line"><a name="l00193"></a><span class="lineno"> 193</span>  V2 = (V2 >> 1) | (V1 << 31);</div>
|
|
<div class="line"><a name="l00194"></a><span class="lineno"> 194</span>  V1 = (V1 >> 1) | (V0 << 31);</div>
|
|
<div class="line"><a name="l00195"></a><span class="lineno"> 195</span>  V0 = (V0 >> 1) ^ mask;</div>
|
|
<div class="line"><a name="l00196"></a><span class="lineno"> 196</span>  }</div>
|
|
<div class="line"><a name="l00197"></a><span class="lineno"> 197</span>  }</div>
|
|
<div class="line"><a name="l00198"></a><span class="lineno"> 198</span> </div>
|
|
<div class="line"><a name="l00199"></a><span class="lineno"> 199</span>  <span class="comment">// We have finished the block so copy Z into Y and byte-swap.</span></div>
|
|
<div class="line"><a name="l00200"></a><span class="lineno"> 200</span>  state.Y[0] = htobe32(Z0);</div>
|
|
<div class="line"><a name="l00201"></a><span class="lineno"> 201</span>  state.Y[1] = htobe32(Z1);</div>
|
|
<div class="line"><a name="l00202"></a><span class="lineno"> 202</span>  state.Y[2] = htobe32(Z2);</div>
|
|
<div class="line"><a name="l00203"></a><span class="lineno"> 203</span>  state.Y[3] = htobe32(Z3);</div>
|
|
<div class="line"><a name="l00204"></a><span class="lineno"> 204</span> }</div>
|
|
<div class="ttc" id="classGHASH_html_ab221298ca69c9612bfbfd3dedcb28307"><div class="ttname"><a href="classGHASH.html#ab221298ca69c9612bfbfd3dedcb28307">GHASH::finalize</a></div><div class="ttdeci">void finalize(void *token, size_t len)</div><div class="ttdoc">Finalizes the authentication process and returns the token. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00130">GHASH.cpp:130</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_a235edb14c6ed1ec55ddda595816ef1c7"><div class="ttname"><a href="classGHASH.html#a235edb14c6ed1ec55ddda595816ef1c7">GHASH::update</a></div><div class="ttdeci">void update(const void *data, size_t len)</div><div class="ttdoc">Updates the message authenticator with more data. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00094">GHASH.cpp:94</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_ae7f63a587adf1aa1ffcdc0a6e20584fd"><div class="ttname"><a href="classGHASH.html#ae7f63a587adf1aa1ffcdc0a6e20584fd">GHASH::~GHASH</a></div><div class="ttdeci">~GHASH()</div><div class="ttdoc">Destroys this GHASH message authenticator. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00055">GHASH.cpp:55</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_a8c38ee9313605f1d8b12dca7cd43e4ad"><div class="ttname"><a href="classGHASH.html#a8c38ee9313605f1d8b12dca7cd43e4ad">GHASH::pad</a></div><div class="ttdeci">void pad()</div><div class="ttdoc">Pads the input stream with zero bytes to a multiple of 16. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00146">GHASH.cpp:146</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_a4b1ee789debf56f7f24807960ef0556e"><div class="ttname"><a href="classGHASH.html#a4b1ee789debf56f7f24807960ef0556e">GHASH::clear</a></div><div class="ttdeci">void clear()</div><div class="ttdoc">Clears the authenticator's state, removing all sensitive data. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00159">GHASH.cpp:159</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_a3a1abd0f641bccd9b4aa1f40beb8dca3"><div class="ttname"><a href="classGHASH.html#a3a1abd0f641bccd9b4aa1f40beb8dca3">GHASH::GHASH</a></div><div class="ttdeci">GHASH()</div><div class="ttdoc">Constructs a new GHASH message authenticator. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00047">GHASH.cpp:47</a></div></div>
|
|
<div class="ttc" id="classGHASH_html_a479a3e8c37e320bf99f54b95bf5f4c55"><div class="ttname"><a href="classGHASH.html#a479a3e8c37e320bf99f54b95bf5f4c55">GHASH::reset</a></div><div class="ttdeci">void reset(const void *key)</div><div class="ttdoc">Resets the GHASH message authenticator for a new session. </div><div class="ttdef"><b>Definition:</b> <a href="GHASH_8cpp_source.html#l00067">GHASH.cpp:67</a></div></div>
|
|
</div><!-- fragment --></div><!-- contents -->
|
|
<!-- start footer part -->
|
|
<hr class="footer"/><address class="footer"><small>
|
|
Generated on Thu Apr 2 2015 16:36:51 for ArduinoLibs by  <a href="http://www.doxygen.org/index.html">
|
|
<img class="footer" src="doxygen.png" alt="doxygen"/>
|
|
</a> 1.8.6
|
|
</small></address>
|
|
</body>
|
|
</html>
|