1*c54f35caSApple OSS Distributions #include <libkern/crypto/crypto_internal.h>
2*c54f35caSApple OSS Distributions #include <libkern/crypto/sha1.h>
3*c54f35caSApple OSS Distributions #include <kern/debug.h>
4*c54f35caSApple OSS Distributions #include <corecrypto/ccdigest.h>
5*c54f35caSApple OSS Distributions
6*c54f35caSApple OSS Distributions
7*c54f35caSApple OSS Distributions static uint64_t
getCount(SHA1_CTX * ctx)8*c54f35caSApple OSS Distributions getCount(SHA1_CTX *ctx)
9*c54f35caSApple OSS Distributions {
10*c54f35caSApple OSS Distributions return ctx->c.b64[0];
11*c54f35caSApple OSS Distributions }
12*c54f35caSApple OSS Distributions
13*c54f35caSApple OSS Distributions static void
setCount(SHA1_CTX * ctx,uint64_t count)14*c54f35caSApple OSS Distributions setCount(SHA1_CTX *ctx, uint64_t count)
15*c54f35caSApple OSS Distributions {
16*c54f35caSApple OSS Distributions ctx->c.b64[0] = count;
17*c54f35caSApple OSS Distributions }
18*c54f35caSApple OSS Distributions
19*c54f35caSApple OSS Distributions /* Copy a ccdigest ctx into a legacy SHA1 context */
20*c54f35caSApple OSS Distributions static void
DiToSHA1(const struct ccdigest_info * di,struct ccdigest_ctx * di_ctx,SHA1_CTX * sha1_ctx)21*c54f35caSApple OSS Distributions DiToSHA1(const struct ccdigest_info *di, struct ccdigest_ctx *di_ctx, SHA1_CTX *sha1_ctx)
22*c54f35caSApple OSS Distributions {
23*c54f35caSApple OSS Distributions setCount(sha1_ctx, ccdigest_nbits(di, di_ctx) / 8 + ccdigest_num(di, di_ctx));
24*c54f35caSApple OSS Distributions memcpy(sha1_ctx->m.b8, ccdigest_data(di, di_ctx), di->block_size);
25*c54f35caSApple OSS Distributions memcpy(sha1_ctx->h.b8, ccdigest_state_ccn(di, di_ctx), di->state_size);
26*c54f35caSApple OSS Distributions }
27*c54f35caSApple OSS Distributions
28*c54f35caSApple OSS Distributions /* Copy a legacy SHA1 context into a ccdigest ctx */
29*c54f35caSApple OSS Distributions static void
SHA1ToDi(const struct ccdigest_info * di,SHA1_CTX * sha1_ctx,struct ccdigest_ctx * di_ctx)30*c54f35caSApple OSS Distributions SHA1ToDi(const struct ccdigest_info *di, SHA1_CTX *sha1_ctx, struct ccdigest_ctx *di_ctx)
31*c54f35caSApple OSS Distributions {
32*c54f35caSApple OSS Distributions uint64_t count = getCount(sha1_ctx);
33*c54f35caSApple OSS Distributions
34*c54f35caSApple OSS Distributions ccdigest_num(di, di_ctx) = (unsigned)(count % di->block_size);
35*c54f35caSApple OSS Distributions ccdigest_nbits(di, di_ctx) = (count - ccdigest_num(di, di_ctx)) * 8;
36*c54f35caSApple OSS Distributions memcpy(ccdigest_data(di, di_ctx), sha1_ctx->m.b8, di->block_size);
37*c54f35caSApple OSS Distributions memcpy(ccdigest_state_ccn(di, di_ctx), sha1_ctx->h.b8, di->state_size);
38*c54f35caSApple OSS Distributions }
39*c54f35caSApple OSS Distributions
40*c54f35caSApple OSS Distributions void
SHA1Init(SHA1_CTX * ctx)41*c54f35caSApple OSS Distributions SHA1Init(SHA1_CTX *ctx)
42*c54f35caSApple OSS Distributions {
43*c54f35caSApple OSS Distributions const struct ccdigest_info *di = g_crypto_funcs->ccsha1_di;
44*c54f35caSApple OSS Distributions ccdigest_di_decl(di, di_ctx);
45*c54f35caSApple OSS Distributions
46*c54f35caSApple OSS Distributions g_crypto_funcs->ccdigest_init_fn(di, di_ctx);
47*c54f35caSApple OSS Distributions
48*c54f35caSApple OSS Distributions DiToSHA1(di, di_ctx, ctx);
49*c54f35caSApple OSS Distributions }
50*c54f35caSApple OSS Distributions
51*c54f35caSApple OSS Distributions void
SHA1Update(SHA1_CTX * ctx,const void * data,size_t len)52*c54f35caSApple OSS Distributions SHA1Update(SHA1_CTX *ctx, const void *data, size_t len)
53*c54f35caSApple OSS Distributions {
54*c54f35caSApple OSS Distributions const struct ccdigest_info *di = g_crypto_funcs->ccsha1_di;
55*c54f35caSApple OSS Distributions ccdigest_di_decl(di, di_ctx);
56*c54f35caSApple OSS Distributions
57*c54f35caSApple OSS Distributions SHA1ToDi(di, ctx, di_ctx);
58*c54f35caSApple OSS Distributions g_crypto_funcs->ccdigest_update_fn(di, di_ctx, len, data);
59*c54f35caSApple OSS Distributions DiToSHA1(di, di_ctx, ctx);
60*c54f35caSApple OSS Distributions }
61*c54f35caSApple OSS Distributions
62*c54f35caSApple OSS Distributions void
SHA1Final(void * digest,SHA1_CTX * ctx)63*c54f35caSApple OSS Distributions SHA1Final(void *digest, SHA1_CTX *ctx)
64*c54f35caSApple OSS Distributions {
65*c54f35caSApple OSS Distributions const struct ccdigest_info *di = g_crypto_funcs->ccsha1_di;
66*c54f35caSApple OSS Distributions ccdigest_di_decl(di, di_ctx);
67*c54f35caSApple OSS Distributions
68*c54f35caSApple OSS Distributions SHA1ToDi(di, ctx, di_ctx);
69*c54f35caSApple OSS Distributions ccdigest_final(di, di_ctx, digest);
70*c54f35caSApple OSS Distributions }
71*c54f35caSApple OSS Distributions
72*c54f35caSApple OSS Distributions /* This is not publicised in header, but exported in libkern.exports */
73*c54f35caSApple OSS Distributions void SHA1Final_r(SHA1_CTX *context, void *digest);
74*c54f35caSApple OSS Distributions void
SHA1Final_r(SHA1_CTX * context,void * digest)75*c54f35caSApple OSS Distributions SHA1Final_r(SHA1_CTX *context, void *digest)
76*c54f35caSApple OSS Distributions {
77*c54f35caSApple OSS Distributions SHA1Final(digest, context);
78*c54f35caSApple OSS Distributions }
79*c54f35caSApple OSS Distributions
80*c54f35caSApple OSS Distributions
81*c54f35caSApple OSS Distributions /*
82*c54f35caSApple OSS Distributions * This function is called by the SHA1 hardware kext during its init.
83*c54f35caSApple OSS Distributions * This will register the function to call to perform SHA1 using hardware.
84*c54f35caSApple OSS Distributions */
85*c54f35caSApple OSS Distributions #include <sys/types.h>
86*c54f35caSApple OSS Distributions #include <libkern/OSAtomic.h>
87*c54f35caSApple OSS Distributions #include <sys/systm.h>
88*c54f35caSApple OSS Distributions
89*c54f35caSApple OSS Distributions typedef kern_return_t (*InKernelPerformSHA1Func)(void *ref, const void *data, size_t dataLen, u_int32_t *inHash, u_int32_t options, u_int32_t *outHash, Boolean usePhysicalAddress);
90*c54f35caSApple OSS Distributions void sha1_hardware_hook(Boolean option, InKernelPerformSHA1Func func, void *ref);
91*c54f35caSApple OSS Distributions static void *SHA1Ref;
92*c54f35caSApple OSS Distributions static InKernelPerformSHA1Func performSHA1WithinKernelOnly;
93*c54f35caSApple OSS Distributions
94*c54f35caSApple OSS Distributions void
sha1_hardware_hook(Boolean option,InKernelPerformSHA1Func func,void * ref)95*c54f35caSApple OSS Distributions sha1_hardware_hook(Boolean option, InKernelPerformSHA1Func func, void *ref)
96*c54f35caSApple OSS Distributions {
97*c54f35caSApple OSS Distributions if (option) {
98*c54f35caSApple OSS Distributions // Establish the hook. The hardware is ready.
99*c54f35caSApple OSS Distributions OSCompareAndSwapPtr((void*)NULL, (void*)ref, (void * volatile*)&SHA1Ref);
100*c54f35caSApple OSS Distributions
101*c54f35caSApple OSS Distributions if (!OSCompareAndSwapPtr((void *)NULL, (void *)func, (void * volatile *)&performSHA1WithinKernelOnly)) {
102*c54f35caSApple OSS Distributions panic("sha1_hardware_hook: Called twice.. Should never happen");
103*c54f35caSApple OSS Distributions }
104*c54f35caSApple OSS Distributions } else {
105*c54f35caSApple OSS Distributions // The hardware is going away. Tear down the hook.
106*c54f35caSApple OSS Distributions performSHA1WithinKernelOnly = NULL;
107*c54f35caSApple OSS Distributions SHA1Ref = NULL;
108*c54f35caSApple OSS Distributions }
109*c54f35caSApple OSS Distributions }
110