blob: b77ce9f77611ada6986b612786a812be5ad986d5 [file] [log] [blame]
Paul Bakker17373852011-01-06 14:20:01 +00001/**
Gilles Peskine2091f3a2021-02-12 23:34:01 +01002 * \file md.c
Paul Bakker9af723c2014-05-01 13:03:14 +02003 *
Manuel Pégourié-Gonnardb4fe3cb2015-01-22 16:11:05 +00004 * \brief Generic message digest wrapper for mbed TLS
Paul Bakker17373852011-01-06 14:20:01 +00005 *
6 * \author Adriaan de Jong <dejong@fox-it.com>
7 *
Bence Szépkúti1e148272020-08-07 13:07:28 +02008 * Copyright The Mbed TLS Contributors
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02009 * SPDX-License-Identifier: Apache-2.0
10 *
11 * Licensed under the Apache License, Version 2.0 (the "License"); you may
12 * not use this file except in compliance with the License.
13 * You may obtain a copy of the License at
14 *
15 * http://www.apache.org/licenses/LICENSE-2.0
16 *
17 * Unless required by applicable law or agreed to in writing, software
18 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
19 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
20 * See the License for the specific language governing permissions and
21 * limitations under the License.
Paul Bakker17373852011-01-06 14:20:01 +000022 */
23
Gilles Peskinedb09ef62020-06-03 01:43:33 +020024#include "common.h"
Paul Bakker17373852011-01-06 14:20:01 +000025
Manuel Pégourié-Gonnard0d415212023-02-23 13:02:13 +010026/*
27 * Availability of functions in this module is controlled by two
28 * feature macros:
29 * - MBEDTLS_MD_C enables the whole module;
30 * - MBEDTLS_MD_LIGHT enables only functions for hashing and accessing
31 * most hash metadata (everything except string names); is it
32 * automatically set whenever MBEDTLS_MD_C is defined.
33 *
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +010034 * In this file, functions from MD_LIGHT are at the top, MD_C at the end.
35 *
Manuel Pégourié-Gonnard0d415212023-02-23 13:02:13 +010036 * In the future we may want to change the contract of some functions
37 * (behaviour with NULL arguments) depending on whether MD_C is defined or
38 * only MD_LIGHT. Also, the exact scope of MD_LIGHT might vary.
39 *
40 * For these reasons, we're keeping MD_LIGHT internal for now.
41 */
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +010042#if defined(MBEDTLS_MD_LIGHT)
Paul Bakker17373852011-01-06 14:20:01 +000043
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000044#include "mbedtls/md.h"
Chris Jonesdaacb592021-03-09 17:03:29 +000045#include "md_wrap.h"
Andres Amaya Garcia1f6301b2018-04-17 09:51:09 -050046#include "mbedtls/platform_util.h"
Janos Follath24eed8d2019-11-22 13:21:35 +000047#include "mbedtls/error.h"
Paul Bakker17373852011-01-06 14:20:01 +000048
Gilles Peskine84867cf2019-07-19 15:46:03 +020049#include "mbedtls/md5.h"
50#include "mbedtls/ripemd160.h"
51#include "mbedtls/sha1.h"
52#include "mbedtls/sha256.h"
53#include "mbedtls/sha512.h"
54
Manuel Pégourié-Gonnard36fb12e2023-03-28 11:33:23 +020055#if defined(MBEDTLS_PSA_CRYPTO_C)
Gilles Peskine12612e52022-10-22 20:07:28 +020056#include <psa/crypto.h>
Manuel Pégourié-Gonnard36fb12e2023-03-28 11:33:23 +020057#include "md_psa.h"
Manuel Pégourié-Gonnardddbf61a2023-03-28 12:14:01 +020058#include "mbedtls/psa_util.h"
Manuel Pégourié-Gonnard36fb12e2023-03-28 11:33:23 +020059#endif
60
61#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnard9b146392023-03-09 15:56:14 +010062#include "psa_crypto_core.h"
Gilles Peskine12612e52022-10-22 20:07:28 +020063#endif
64
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010065#include "mbedtls/platform.h"
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010066
Rich Evans00ab4702015-02-06 13:43:58 +000067#include <string.h>
Paul Bakker17373852011-01-06 14:20:01 +000068
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +020069#if defined(MBEDTLS_FS_IO)
70#include <stdio.h>
Paul Bakkeraf5c85f2011-04-18 03:47:52 +000071#endif
72
Gilles Peskine83d9e092022-10-22 18:32:43 +020073#if defined(MBEDTLS_MD_CAN_MD5)
Gilles Peskine84867cf2019-07-19 15:46:03 +020074const mbedtls_md_info_t mbedtls_md5_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020075 "MD5",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020076 MBEDTLS_MD_MD5,
Gilles Peskine84867cf2019-07-19 15:46:03 +020077 16,
78 64,
79};
80#endif
81
Gilles Peskine83d9e092022-10-22 18:32:43 +020082#if defined(MBEDTLS_MD_CAN_RIPEMD160)
Gilles Peskine84867cf2019-07-19 15:46:03 +020083const mbedtls_md_info_t mbedtls_ripemd160_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020084 "RIPEMD160",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020085 MBEDTLS_MD_RIPEMD160,
Gilles Peskine84867cf2019-07-19 15:46:03 +020086 20,
87 64,
88};
89#endif
90
Gilles Peskine83d9e092022-10-22 18:32:43 +020091#if defined(MBEDTLS_MD_CAN_SHA1)
Gilles Peskine84867cf2019-07-19 15:46:03 +020092const mbedtls_md_info_t mbedtls_sha1_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020093 "SHA1",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020094 MBEDTLS_MD_SHA1,
Gilles Peskine84867cf2019-07-19 15:46:03 +020095 20,
96 64,
97};
98#endif
99
Gilles Peskine83d9e092022-10-22 18:32:43 +0200100#if defined(MBEDTLS_MD_CAN_SHA224)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200101const mbedtls_md_info_t mbedtls_sha224_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200102 "SHA224",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200103 MBEDTLS_MD_SHA224,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200104 28,
105 64,
106};
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200107#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200108
Gilles Peskine83d9e092022-10-22 18:32:43 +0200109#if defined(MBEDTLS_MD_CAN_SHA256)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200110const mbedtls_md_info_t mbedtls_sha256_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200111 "SHA256",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200112 MBEDTLS_MD_SHA256,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200113 32,
114 64,
115};
116#endif
117
Gilles Peskine83d9e092022-10-22 18:32:43 +0200118#if defined(MBEDTLS_MD_CAN_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200119const mbedtls_md_info_t mbedtls_sha384_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200120 "SHA384",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200121 MBEDTLS_MD_SHA384,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200122 48,
123 128,
124};
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200125#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200126
Gilles Peskine83d9e092022-10-22 18:32:43 +0200127#if defined(MBEDTLS_MD_CAN_SHA512)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200128const mbedtls_md_info_t mbedtls_sha512_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200129 "SHA512",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200130 MBEDTLS_MD_SHA512,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200131 64,
132 128,
133};
134#endif
135
Gilles Peskine449bd832023-01-11 14:50:10 +0100136const mbedtls_md_info_t *mbedtls_md_info_from_type(mbedtls_md_type_t md_type)
Paul Bakker17373852011-01-06 14:20:01 +0000137{
Gilles Peskine449bd832023-01-11 14:50:10 +0100138 switch (md_type) {
Gilles Peskine83d9e092022-10-22 18:32:43 +0200139#if defined(MBEDTLS_MD_CAN_MD5)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200140 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100141 return &mbedtls_md5_info;
Paul Bakker17373852011-01-06 14:20:01 +0000142#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200143#if defined(MBEDTLS_MD_CAN_RIPEMD160)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200144 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100145 return &mbedtls_ripemd160_info;
Manuel Pégourié-Gonnarde4d47a62014-01-17 20:41:32 +0100146#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200147#if defined(MBEDTLS_MD_CAN_SHA1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200148 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100149 return &mbedtls_sha1_info;
Paul Bakker17373852011-01-06 14:20:01 +0000150#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200151#if defined(MBEDTLS_MD_CAN_SHA224)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200152 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100153 return &mbedtls_sha224_info;
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200154#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200155#if defined(MBEDTLS_MD_CAN_SHA256)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200156 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100157 return &mbedtls_sha256_info;
Paul Bakker17373852011-01-06 14:20:01 +0000158#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200159#if defined(MBEDTLS_MD_CAN_SHA384)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200160 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100161 return &mbedtls_sha384_info;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200162#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200163#if defined(MBEDTLS_MD_CAN_SHA512)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200164 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100165 return &mbedtls_sha512_info;
Paul Bakker17373852011-01-06 14:20:01 +0000166#endif
167 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100168 return NULL;
Paul Bakker17373852011-01-06 14:20:01 +0000169 }
170}
171
Gilles Peskine12612e52022-10-22 20:07:28 +0200172#if defined(MBEDTLS_MD_SOME_PSA)
173static psa_algorithm_t psa_alg_of_md(const mbedtls_md_info_t *info)
174{
175 switch (info->type) {
176#if defined(MBEDTLS_MD_MD5_VIA_PSA)
177 case MBEDTLS_MD_MD5:
178 return PSA_ALG_MD5;
179#endif
180#if defined(MBEDTLS_MD_RIPEMD160_VIA_PSA)
181 case MBEDTLS_MD_RIPEMD160:
182 return PSA_ALG_RIPEMD160;
183#endif
184#if defined(MBEDTLS_MD_SHA1_VIA_PSA)
185 case MBEDTLS_MD_SHA1:
186 return PSA_ALG_SHA_1;
187#endif
188#if defined(MBEDTLS_MD_SHA224_VIA_PSA)
189 case MBEDTLS_MD_SHA224:
190 return PSA_ALG_SHA_224;
191#endif
192#if defined(MBEDTLS_MD_SHA256_VIA_PSA)
193 case MBEDTLS_MD_SHA256:
194 return PSA_ALG_SHA_256;
195#endif
196#if defined(MBEDTLS_MD_SHA384_VIA_PSA)
197 case MBEDTLS_MD_SHA384:
198 return PSA_ALG_SHA_384;
199#endif
200#if defined(MBEDTLS_MD_SHA512_VIA_PSA)
201 case MBEDTLS_MD_SHA512:
202 return PSA_ALG_SHA_512;
203#endif
204 default:
205 return PSA_ALG_NONE;
206 }
207}
208
Manuel Pégourié-Gonnardf48b1f82023-03-14 10:50:52 +0100209static int md_can_use_psa(const mbedtls_md_info_t *info)
Gilles Peskine12612e52022-10-22 20:07:28 +0200210{
Manuel Pégourié-Gonnard9b146392023-03-09 15:56:14 +0100211 psa_algorithm_t alg = psa_alg_of_md(info);
212 if (alg == PSA_ALG_NONE) {
213 return 0;
214 }
215
216 return psa_can_do_hash(alg);
Gilles Peskine12612e52022-10-22 20:07:28 +0200217}
Gilles Peskine12612e52022-10-22 20:07:28 +0200218#endif /* MBEDTLS_MD_SOME_PSA */
219
Gilles Peskine449bd832023-01-11 14:50:10 +0100220void mbedtls_md_init(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200221{
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100222 /* Note: this sets engine (if present) to MBEDTLS_MD_ENGINE_LEGACY */
Gilles Peskine449bd832023-01-11 14:50:10 +0100223 memset(ctx, 0, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200224}
225
Gilles Peskine449bd832023-01-11 14:50:10 +0100226void mbedtls_md_free(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200227{
Gilles Peskine449bd832023-01-11 14:50:10 +0100228 if (ctx == NULL || ctx->md_info == NULL) {
Paul Bakker84bbeb52014-07-01 14:53:22 +0200229 return;
Gilles Peskine449bd832023-01-11 14:50:10 +0100230 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200231
Gilles Peskine449bd832023-01-11 14:50:10 +0100232 if (ctx->md_ctx != NULL) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200233#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100234 if (ctx->engine == MBEDTLS_MD_ENGINE_PSA) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200235 psa_hash_abort(ctx->md_ctx);
236 } else
237#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100238 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200239#if defined(MBEDTLS_MD5_C)
240 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100241 mbedtls_md5_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200242 break;
243#endif
244#if defined(MBEDTLS_RIPEMD160_C)
245 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100246 mbedtls_ripemd160_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200247 break;
248#endif
249#if defined(MBEDTLS_SHA1_C)
250 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100251 mbedtls_sha1_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200252 break;
253#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200254#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200255 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100256 mbedtls_sha256_free(ctx->md_ctx);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200257 break;
258#endif
259#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200260 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100261 mbedtls_sha256_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200262 break;
263#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200264#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200265 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100266 mbedtls_sha512_free(ctx->md_ctx);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200267 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200268#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200269#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200270 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100271 mbedtls_sha512_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200272 break;
273#endif
274 default:
275 /* Shouldn't happen */
276 break;
277 }
Gilles Peskine449bd832023-01-11 14:50:10 +0100278 mbedtls_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200279 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200280
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100281#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100282 if (ctx->hmac_ctx != NULL) {
283 mbedtls_platform_zeroize(ctx->hmac_ctx,
284 2 * ctx->md_info->block_size);
285 mbedtls_free(ctx->hmac_ctx);
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100286 }
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100287#endif
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100288
Gilles Peskine449bd832023-01-11 14:50:10 +0100289 mbedtls_platform_zeroize(ctx, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200290}
291
Gilles Peskine449bd832023-01-11 14:50:10 +0100292int mbedtls_md_clone(mbedtls_md_context_t *dst,
293 const mbedtls_md_context_t *src)
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200294{
Gilles Peskine449bd832023-01-11 14:50:10 +0100295 if (dst == NULL || dst->md_info == NULL ||
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200296 src == NULL || src->md_info == NULL ||
Gilles Peskine449bd832023-01-11 14:50:10 +0100297 dst->md_info != src->md_info) {
298 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200299 }
300
Gilles Peskine12612e52022-10-22 20:07:28 +0200301#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100302 if (src->engine != dst->engine) {
303 /* This can happen with src set to legacy because PSA wasn't ready
304 * yet, and dst to PSA because it became ready in the meantime.
305 * We currently don't support that case (we'd need to re-allocate
306 * md_ctx to the size of the appropriate MD context). */
307 return MBEDTLS_ERR_MD_FEATURE_UNAVAILABLE;
308 }
309
310 if (src->engine == MBEDTLS_MD_ENGINE_PSA) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200311 psa_status_t status = psa_hash_clone(src->md_ctx, dst->md_ctx);
312 return mbedtls_md_error_from_psa(status);
313 }
314#endif
315
Gilles Peskine449bd832023-01-11 14:50:10 +0100316 switch (src->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200317#if defined(MBEDTLS_MD5_C)
318 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100319 mbedtls_md5_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200320 break;
321#endif
322#if defined(MBEDTLS_RIPEMD160_C)
323 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100324 mbedtls_ripemd160_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200325 break;
326#endif
327#if defined(MBEDTLS_SHA1_C)
328 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100329 mbedtls_sha1_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200330 break;
331#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200332#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200333 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100334 mbedtls_sha256_clone(dst->md_ctx, src->md_ctx);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200335 break;
336#endif
337#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200338 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100339 mbedtls_sha256_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200340 break;
341#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200342#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200343 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100344 mbedtls_sha512_clone(dst->md_ctx, src->md_ctx);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200345 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200346#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200347#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200348 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100349 mbedtls_sha512_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200350 break;
351#endif
352 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100353 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200354 }
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200355
Gilles Peskine449bd832023-01-11 14:50:10 +0100356 return 0;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200357}
358
Gilles Peskine449bd832023-01-11 14:50:10 +0100359#define ALLOC(type) \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200360 do { \
Gilles Peskine449bd832023-01-11 14:50:10 +0100361 ctx->md_ctx = mbedtls_calloc(1, sizeof(mbedtls_##type##_context)); \
362 if (ctx->md_ctx == NULL) \
363 return MBEDTLS_ERR_MD_ALLOC_FAILED; \
364 mbedtls_##type##_init(ctx->md_ctx); \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200365 } \
Gilles Peskine449bd832023-01-11 14:50:10 +0100366 while (0)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200367
Gilles Peskine449bd832023-01-11 14:50:10 +0100368int mbedtls_md_setup(mbedtls_md_context_t *ctx, const mbedtls_md_info_t *md_info, int hmac)
Paul Bakker17373852011-01-06 14:20:01 +0000369{
Thomas Daubney73cfde82023-05-30 15:34:28 +0100370#if defined(MBEDTLS_MD_C)
371 if (ctx == NULL) {
372 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
373 }
374#endif
375 if (md_info == NULL) {
Gilles Peskine449bd832023-01-11 14:50:10 +0100376 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
377 }
Paul Bakker17373852011-01-06 14:20:01 +0000378
Gilles Peskined15c7402020-08-19 12:03:11 +0200379 ctx->md_info = md_info;
380 ctx->md_ctx = NULL;
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100381#if defined(MBEDTLS_MD_C)
Gilles Peskined15c7402020-08-19 12:03:11 +0200382 ctx->hmac_ctx = NULL;
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100383#else
384 if (hmac != 0) {
385 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
386 }
387#endif
Gilles Peskined15c7402020-08-19 12:03:11 +0200388
Gilles Peskine12612e52022-10-22 20:07:28 +0200389#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardf48b1f82023-03-14 10:50:52 +0100390 if (md_can_use_psa(ctx->md_info)) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200391 ctx->md_ctx = mbedtls_calloc(1, sizeof(psa_hash_operation_t));
392 if (ctx->md_ctx == NULL) {
393 return MBEDTLS_ERR_MD_ALLOC_FAILED;
394 }
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100395 ctx->engine = MBEDTLS_MD_ENGINE_PSA;
Gilles Peskine12612e52022-10-22 20:07:28 +0200396 } else
397#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100398 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200399#if defined(MBEDTLS_MD5_C)
400 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100401 ALLOC(md5);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200402 break;
403#endif
404#if defined(MBEDTLS_RIPEMD160_C)
405 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100406 ALLOC(ripemd160);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200407 break;
408#endif
409#if defined(MBEDTLS_SHA1_C)
410 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100411 ALLOC(sha1);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200412 break;
413#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200414#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200415 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100416 ALLOC(sha256);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200417 break;
418#endif
419#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200420 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100421 ALLOC(sha256);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200422 break;
423#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200424#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200425 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100426 ALLOC(sha512);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200427 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200428#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200429#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200430 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100431 ALLOC(sha512);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200432 break;
433#endif
434 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100435 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200436 }
Paul Bakker17373852011-01-06 14:20:01 +0000437
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100438#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100439 if (hmac != 0) {
440 ctx->hmac_ctx = mbedtls_calloc(2, md_info->block_size);
441 if (ctx->hmac_ctx == NULL) {
442 mbedtls_md_free(ctx);
443 return MBEDTLS_ERR_MD_ALLOC_FAILED;
Manuel Pégourié-Gonnard4063ceb2015-03-25 16:08:53 +0100444 }
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100445 }
Manuel Pégourié-Gonnard39a376a2023-03-09 17:21:40 +0100446#endif
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100447
Gilles Peskine449bd832023-01-11 14:50:10 +0100448 return 0;
Paul Bakker17373852011-01-06 14:20:01 +0000449}
Gilles Peskine84867cf2019-07-19 15:46:03 +0200450#undef ALLOC
Paul Bakker17373852011-01-06 14:20:01 +0000451
Gilles Peskine449bd832023-01-11 14:50:10 +0100452int mbedtls_md_starts(mbedtls_md_context_t *ctx)
Paul Bakker562535d2011-01-20 16:42:01 +0000453{
Thomas Daubney73cfde82023-05-30 15:34:28 +0100454#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100455 if (ctx == NULL || ctx->md_info == NULL) {
456 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
457 }
Thomas Daubney73cfde82023-05-30 15:34:28 +0100458#endif
Paul Bakker562535d2011-01-20 16:42:01 +0000459
Gilles Peskine12612e52022-10-22 20:07:28 +0200460#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100461 if (ctx->engine == MBEDTLS_MD_ENGINE_PSA) {
462 psa_algorithm_t alg = psa_alg_of_md(ctx->md_info);
Gilles Peskine12612e52022-10-22 20:07:28 +0200463 psa_hash_abort(ctx->md_ctx);
464 psa_status_t status = psa_hash_setup(ctx->md_ctx, alg);
465 return mbedtls_md_error_from_psa(status);
466 }
467#endif
468
Gilles Peskine449bd832023-01-11 14:50:10 +0100469 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200470#if defined(MBEDTLS_MD5_C)
471 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100472 return mbedtls_md5_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200473#endif
474#if defined(MBEDTLS_RIPEMD160_C)
475 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100476 return mbedtls_ripemd160_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200477#endif
478#if defined(MBEDTLS_SHA1_C)
479 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100480 return mbedtls_sha1_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200481#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200482#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200483 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100484 return mbedtls_sha256_starts(ctx->md_ctx, 1);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200485#endif
486#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200487 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100488 return mbedtls_sha256_starts(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200489#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200490#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200491 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100492 return mbedtls_sha512_starts(ctx->md_ctx, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200493#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200494#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200495 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100496 return mbedtls_sha512_starts(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200497#endif
498 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100499 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200500 }
Paul Bakker562535d2011-01-20 16:42:01 +0000501}
502
Gilles Peskine449bd832023-01-11 14:50:10 +0100503int mbedtls_md_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000504{
Thomas Daubney73cfde82023-05-30 15:34:28 +0100505#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100506 if (ctx == NULL || ctx->md_info == NULL) {
507 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
508 }
Thomas Daubney73cfde82023-05-30 15:34:28 +0100509#endif
Paul Bakker17373852011-01-06 14:20:01 +0000510
Gilles Peskine12612e52022-10-22 20:07:28 +0200511#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100512 if (ctx->engine == MBEDTLS_MD_ENGINE_PSA) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200513 psa_status_t status = psa_hash_update(ctx->md_ctx, input, ilen);
514 return mbedtls_md_error_from_psa(status);
515 }
516#endif
517
Gilles Peskine449bd832023-01-11 14:50:10 +0100518 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200519#if defined(MBEDTLS_MD5_C)
520 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100521 return mbedtls_md5_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200522#endif
523#if defined(MBEDTLS_RIPEMD160_C)
524 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100525 return mbedtls_ripemd160_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200526#endif
527#if defined(MBEDTLS_SHA1_C)
528 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100529 return mbedtls_sha1_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200530#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200531#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200532 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100533 return mbedtls_sha256_update(ctx->md_ctx, input, ilen);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200534#endif
535#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200536 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100537 return mbedtls_sha256_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200538#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200539#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200540 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100541 return mbedtls_sha512_update(ctx->md_ctx, input, ilen);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200542#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200543#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200544 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100545 return mbedtls_sha512_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200546#endif
547 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100548 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200549 }
Paul Bakker17373852011-01-06 14:20:01 +0000550}
551
Gilles Peskine449bd832023-01-11 14:50:10 +0100552int mbedtls_md_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000553{
Thomas Daubney73cfde82023-05-30 15:34:28 +0100554#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100555 if (ctx == NULL || ctx->md_info == NULL) {
556 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
557 }
Thomas Daubney73cfde82023-05-30 15:34:28 +0100558#endif
Paul Bakker17373852011-01-06 14:20:01 +0000559
Gilles Peskine12612e52022-10-22 20:07:28 +0200560#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100561 if (ctx->engine == MBEDTLS_MD_ENGINE_PSA) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200562 size_t size = ctx->md_info->size;
563 psa_status_t status = psa_hash_finish(ctx->md_ctx,
564 output, size, &size);
565 return mbedtls_md_error_from_psa(status);
566 }
567#endif
568
Gilles Peskine449bd832023-01-11 14:50:10 +0100569 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200570#if defined(MBEDTLS_MD5_C)
571 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100572 return mbedtls_md5_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200573#endif
574#if defined(MBEDTLS_RIPEMD160_C)
575 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100576 return mbedtls_ripemd160_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200577#endif
578#if defined(MBEDTLS_SHA1_C)
579 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100580 return mbedtls_sha1_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200581#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200582#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200583 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100584 return mbedtls_sha256_finish(ctx->md_ctx, output);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200585#endif
586#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200587 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100588 return mbedtls_sha256_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200589#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200590#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200591 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100592 return mbedtls_sha512_finish(ctx->md_ctx, output);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200593#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200594#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200595 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100596 return mbedtls_sha512_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200597#endif
598 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100599 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200600 }
Paul Bakker17373852011-01-06 14:20:01 +0000601}
602
Gilles Peskine449bd832023-01-11 14:50:10 +0100603int mbedtls_md(const mbedtls_md_info_t *md_info, const unsigned char *input, size_t ilen,
604 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000605{
Gilles Peskine449bd832023-01-11 14:50:10 +0100606 if (md_info == NULL) {
607 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
608 }
Paul Bakker17373852011-01-06 14:20:01 +0000609
Gilles Peskine12612e52022-10-22 20:07:28 +0200610#if defined(MBEDTLS_MD_SOME_PSA)
Manuel Pégourié-Gonnardf48b1f82023-03-14 10:50:52 +0100611 if (md_can_use_psa(md_info)) {
Gilles Peskine12612e52022-10-22 20:07:28 +0200612 size_t size = md_info->size;
Manuel Pégourié-Gonnardd8ea37f2023-03-09 10:46:22 +0100613 psa_status_t status = psa_hash_compute(psa_alg_of_md(md_info),
Gilles Peskine12612e52022-10-22 20:07:28 +0200614 input, ilen,
615 output, size, &size);
616 return mbedtls_md_error_from_psa(status);
617 }
618#endif
619
Gilles Peskine449bd832023-01-11 14:50:10 +0100620 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200621#if defined(MBEDTLS_MD5_C)
622 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100623 return mbedtls_md5(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200624#endif
625#if defined(MBEDTLS_RIPEMD160_C)
626 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100627 return mbedtls_ripemd160(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200628#endif
629#if defined(MBEDTLS_SHA1_C)
630 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100631 return mbedtls_sha1(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200632#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200633#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200634 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100635 return mbedtls_sha256(input, ilen, output, 1);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200636#endif
637#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200638 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100639 return mbedtls_sha256(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200640#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200641#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200642 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100643 return mbedtls_sha512(input, ilen, output, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200644#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200645#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200646 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100647 return mbedtls_sha512(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200648#endif
649 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100650 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200651 }
Paul Bakker17373852011-01-06 14:20:01 +0000652}
653
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100654unsigned char mbedtls_md_get_size(const mbedtls_md_info_t *md_info)
655{
656 if (md_info == NULL) {
657 return 0;
658 }
659
660 return md_info->size;
661}
662
663mbedtls_md_type_t mbedtls_md_get_type(const mbedtls_md_info_t *md_info)
664{
665 if (md_info == NULL) {
666 return MBEDTLS_MD_NONE;
667 }
668
669 return md_info->type;
670}
671
Manuel Pégourié-Gonnard36fb12e2023-03-28 11:33:23 +0200672#if defined(MBEDTLS_PSA_CRYPTO_C)
673psa_algorithm_t mbedtls_md_psa_alg_from_type(mbedtls_md_type_t md_type)
674{
675 switch (md_type) {
676#if defined(MBEDTLS_MD_CAN_MD5)
677 case MBEDTLS_MD_MD5:
678 return PSA_ALG_MD5;
679#endif
680#if defined(MBEDTLS_MD_CAN_RIPEMD160)
681 case MBEDTLS_MD_RIPEMD160:
682 return PSA_ALG_RIPEMD160;
683#endif
684#if defined(MBEDTLS_MD_CAN_SHA1)
685 case MBEDTLS_MD_SHA1:
686 return PSA_ALG_SHA_1;
687#endif
688#if defined(MBEDTLS_MD_CAN_SHA224)
689 case MBEDTLS_MD_SHA224:
690 return PSA_ALG_SHA_224;
691#endif
692#if defined(MBEDTLS_MD_CAN_SHA256)
693 case MBEDTLS_MD_SHA256:
694 return PSA_ALG_SHA_256;
695#endif
696#if defined(MBEDTLS_MD_CAN_SHA384)
697 case MBEDTLS_MD_SHA384:
698 return PSA_ALG_SHA_384;
699#endif
700#if defined(MBEDTLS_MD_CAN_SHA512)
701 case MBEDTLS_MD_SHA512:
702 return PSA_ALG_SHA_512;
703#endif
704 default:
705 return PSA_ALG_NONE;
706 }
707}
708
709mbedtls_md_type_t mbedtls_md_type_from_psa_alg(psa_algorithm_t psa_alg)
710{
711 switch (psa_alg) {
712#if defined(MBEDTLS_MD_CAN_MD5)
713 case PSA_ALG_MD5:
714 return MBEDTLS_MD_MD5;
715#endif
716#if defined(MBEDTLS_MD_CAN_RIPEMD160)
717 case PSA_ALG_RIPEMD160:
718 return MBEDTLS_MD_RIPEMD160;
719#endif
720#if defined(MBEDTLS_MD_CAN_SHA1)
721 case PSA_ALG_SHA_1:
722 return MBEDTLS_MD_SHA1;
723#endif
724#if defined(MBEDTLS_MD_CAN_SHA224)
725 case PSA_ALG_SHA_224:
726 return MBEDTLS_MD_SHA224;
727#endif
728#if defined(MBEDTLS_MD_CAN_SHA256)
729 case PSA_ALG_SHA_256:
730 return MBEDTLS_MD_SHA256;
731#endif
732#if defined(MBEDTLS_MD_CAN_SHA384)
733 case PSA_ALG_SHA_384:
734 return MBEDTLS_MD_SHA384;
735#endif
736#if defined(MBEDTLS_MD_CAN_SHA512)
737 case PSA_ALG_SHA_512:
738 return MBEDTLS_MD_SHA512;
739#endif
740 default:
741 return MBEDTLS_MD_NONE;
742 }
743}
744
745int mbedtls_md_error_from_psa(psa_status_t status)
746{
Manuel Pégourié-Gonnardb3b54ab2023-03-29 12:36:34 +0200747 return PSA_TO_MBEDTLS_ERR_LIST(status, psa_to_md_errors,
748 psa_generic_status_to_mbedtls);
Manuel Pégourié-Gonnard36fb12e2023-03-28 11:33:23 +0200749}
750#endif /* MBEDTLS_PSA_CRYPTO_C */
751
752
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100753/************************************************************************
754 * Functions above this separator are part of MBEDTLS_MD_LIGHT, *
755 * functions below are only available when MBEDTLS_MD_C is set. *
756 ************************************************************************/
757#if defined(MBEDTLS_MD_C)
758
759/*
760 * Reminder: update profiles in x509_crt.c when adding a new hash!
761 */
762static const int supported_digests[] = {
763
Gilles Peskine83d9e092022-10-22 18:32:43 +0200764#if defined(MBEDTLS_MD_CAN_SHA512)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100765 MBEDTLS_MD_SHA512,
766#endif
767
Gilles Peskine83d9e092022-10-22 18:32:43 +0200768#if defined(MBEDTLS_MD_CAN_SHA384)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100769 MBEDTLS_MD_SHA384,
770#endif
771
Gilles Peskine83d9e092022-10-22 18:32:43 +0200772#if defined(MBEDTLS_MD_CAN_SHA256)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100773 MBEDTLS_MD_SHA256,
774#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200775#if defined(MBEDTLS_MD_CAN_SHA224)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100776 MBEDTLS_MD_SHA224,
777#endif
778
Gilles Peskine83d9e092022-10-22 18:32:43 +0200779#if defined(MBEDTLS_MD_CAN_SHA1)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100780 MBEDTLS_MD_SHA1,
781#endif
782
Gilles Peskine83d9e092022-10-22 18:32:43 +0200783#if defined(MBEDTLS_MD_CAN_RIPEMD160)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100784 MBEDTLS_MD_RIPEMD160,
785#endif
786
Gilles Peskine83d9e092022-10-22 18:32:43 +0200787#if defined(MBEDTLS_MD_CAN_MD5)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100788 MBEDTLS_MD_MD5,
789#endif
790
791 MBEDTLS_MD_NONE
792};
793
794const int *mbedtls_md_list(void)
795{
796 return supported_digests;
797}
798
799const mbedtls_md_info_t *mbedtls_md_info_from_string(const char *md_name)
800{
801 if (NULL == md_name) {
802 return NULL;
803 }
804
805 /* Get the appropriate digest information */
Gilles Peskine83d9e092022-10-22 18:32:43 +0200806#if defined(MBEDTLS_MD_CAN_MD5)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100807 if (!strcmp("MD5", md_name)) {
808 return mbedtls_md_info_from_type(MBEDTLS_MD_MD5);
809 }
810#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200811#if defined(MBEDTLS_MD_CAN_RIPEMD160)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100812 if (!strcmp("RIPEMD160", md_name)) {
813 return mbedtls_md_info_from_type(MBEDTLS_MD_RIPEMD160);
814 }
815#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200816#if defined(MBEDTLS_MD_CAN_SHA1)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100817 if (!strcmp("SHA1", md_name) || !strcmp("SHA", md_name)) {
818 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA1);
819 }
820#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200821#if defined(MBEDTLS_MD_CAN_SHA224)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100822 if (!strcmp("SHA224", md_name)) {
823 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA224);
824 }
825#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200826#if defined(MBEDTLS_MD_CAN_SHA256)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100827 if (!strcmp("SHA256", md_name)) {
828 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA256);
829 }
830#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200831#if defined(MBEDTLS_MD_CAN_SHA384)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100832 if (!strcmp("SHA384", md_name)) {
833 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA384);
834 }
835#endif
Gilles Peskine83d9e092022-10-22 18:32:43 +0200836#if defined(MBEDTLS_MD_CAN_SHA512)
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100837 if (!strcmp("SHA512", md_name)) {
838 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA512);
839 }
840#endif
841 return NULL;
842}
843
844const mbedtls_md_info_t *mbedtls_md_info_from_ctx(
845 const mbedtls_md_context_t *ctx)
846{
847 if (ctx == NULL) {
848 return NULL;
849 }
850
851 return ctx->MBEDTLS_PRIVATE(md_info);
852}
853
854#if defined(MBEDTLS_FS_IO)
Gilles Peskine449bd832023-01-11 14:50:10 +0100855int mbedtls_md_file(const mbedtls_md_info_t *md_info, const char *path, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000856{
Janos Follath24eed8d2019-11-22 13:21:35 +0000857 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200858 FILE *f;
859 size_t n;
860 mbedtls_md_context_t ctx;
861 unsigned char buf[1024];
Paul Bakker9c021ad2011-06-09 15:55:11 +0000862
Gilles Peskine449bd832023-01-11 14:50:10 +0100863 if (md_info == NULL) {
864 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
865 }
Paul Bakker17373852011-01-06 14:20:01 +0000866
Gilles Peskine449bd832023-01-11 14:50:10 +0100867 if ((f = fopen(path, "rb")) == NULL) {
868 return MBEDTLS_ERR_MD_FILE_IO_ERROR;
869 }
Manuel Pégourié-Gonnardbcc03082015-06-24 00:09:29 +0200870
Gilles Peskineda0913b2022-06-30 17:03:40 +0200871 /* Ensure no stdio buffering of secrets, as such buffers cannot be wiped. */
Gilles Peskine449bd832023-01-11 14:50:10 +0100872 mbedtls_setbuf(f, NULL);
Gilles Peskineda0913b2022-06-30 17:03:40 +0200873
Gilles Peskine449bd832023-01-11 14:50:10 +0100874 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200875
Gilles Peskine449bd832023-01-11 14:50:10 +0100876 if ((ret = mbedtls_md_setup(&ctx, md_info, 0)) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200877 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100878 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200879
Gilles Peskine449bd832023-01-11 14:50:10 +0100880 if ((ret = mbedtls_md_starts(&ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100881 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100882 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200883
Gilles Peskine449bd832023-01-11 14:50:10 +0100884 while ((n = fread(buf, 1, sizeof(buf), f)) > 0) {
885 if ((ret = mbedtls_md_update(&ctx, buf, n)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100886 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100887 }
888 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200889
Gilles Peskine449bd832023-01-11 14:50:10 +0100890 if (ferror(f) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200891 ret = MBEDTLS_ERR_MD_FILE_IO_ERROR;
Gilles Peskine449bd832023-01-11 14:50:10 +0100892 } else {
893 ret = mbedtls_md_finish(&ctx, output);
894 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200895
896cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +0100897 mbedtls_platform_zeroize(buf, sizeof(buf));
898 fclose(f);
899 mbedtls_md_free(&ctx);
Paul Bakker9c021ad2011-06-09 15:55:11 +0000900
Gilles Peskine449bd832023-01-11 14:50:10 +0100901 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000902}
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +0100903#endif /* MBEDTLS_FS_IO */
Paul Bakker17373852011-01-06 14:20:01 +0000904
Gilles Peskine449bd832023-01-11 14:50:10 +0100905int mbedtls_md_hmac_starts(mbedtls_md_context_t *ctx, const unsigned char *key, size_t keylen)
Paul Bakker17373852011-01-06 14:20:01 +0000906{
Janos Follath24eed8d2019-11-22 13:21:35 +0000907 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200908 unsigned char sum[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100909 unsigned char *ipad, *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100910
Gilles Peskine449bd832023-01-11 14:50:10 +0100911 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
912 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
913 }
Paul Bakker17373852011-01-06 14:20:01 +0000914
Gilles Peskine449bd832023-01-11 14:50:10 +0100915 if (keylen > (size_t) ctx->md_info->block_size) {
916 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100917 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100918 }
919 if ((ret = mbedtls_md_update(ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100920 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100921 }
922 if ((ret = mbedtls_md_finish(ctx, sum)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100923 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100924 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100925
926 keylen = ctx->md_info->size;
927 key = sum;
928 }
929
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100930 ipad = (unsigned char *) ctx->hmac_ctx;
931 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
932
Gilles Peskine449bd832023-01-11 14:50:10 +0100933 memset(ipad, 0x36, ctx->md_info->block_size);
934 memset(opad, 0x5C, ctx->md_info->block_size);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100935
Gilles Peskine449bd832023-01-11 14:50:10 +0100936 mbedtls_xor(ipad, ipad, key, keylen);
937 mbedtls_xor(opad, opad, key, keylen);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100938
Gilles Peskine449bd832023-01-11 14:50:10 +0100939 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100940 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100941 }
942 if ((ret = mbedtls_md_update(ctx, ipad,
943 ctx->md_info->block_size)) != 0) {
Andres Amaya Garcia42e5e102017-07-20 16:27:03 +0100944 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100945 }
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100946
947cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +0100948 mbedtls_platform_zeroize(sum, sizeof(sum));
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100949
Gilles Peskine449bd832023-01-11 14:50:10 +0100950 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000951}
952
Gilles Peskine449bd832023-01-11 14:50:10 +0100953int mbedtls_md_hmac_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000954{
Gilles Peskine449bd832023-01-11 14:50:10 +0100955 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
956 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
957 }
Paul Bakker17373852011-01-06 14:20:01 +0000958
Gilles Peskine449bd832023-01-11 14:50:10 +0100959 return mbedtls_md_update(ctx, input, ilen);
Paul Bakker17373852011-01-06 14:20:01 +0000960}
961
Gilles Peskine449bd832023-01-11 14:50:10 +0100962int mbedtls_md_hmac_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000963{
Janos Follath24eed8d2019-11-22 13:21:35 +0000964 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200965 unsigned char tmp[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100966 unsigned char *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100967
Gilles Peskine449bd832023-01-11 14:50:10 +0100968 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
969 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
970 }
Paul Bakker17373852011-01-06 14:20:01 +0000971
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100972 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
973
Gilles Peskine449bd832023-01-11 14:50:10 +0100974 if ((ret = mbedtls_md_finish(ctx, tmp)) != 0) {
975 return ret;
976 }
977 if ((ret = mbedtls_md_starts(ctx)) != 0) {
978 return ret;
979 }
980 if ((ret = mbedtls_md_update(ctx, opad,
981 ctx->md_info->block_size)) != 0) {
982 return ret;
983 }
984 if ((ret = mbedtls_md_update(ctx, tmp,
985 ctx->md_info->size)) != 0) {
986 return ret;
987 }
988 return mbedtls_md_finish(ctx, output);
Paul Bakker17373852011-01-06 14:20:01 +0000989}
990
Gilles Peskine449bd832023-01-11 14:50:10 +0100991int mbedtls_md_hmac_reset(mbedtls_md_context_t *ctx)
Paul Bakker17373852011-01-06 14:20:01 +0000992{
Janos Follath24eed8d2019-11-22 13:21:35 +0000993 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100994 unsigned char *ipad;
995
Gilles Peskine449bd832023-01-11 14:50:10 +0100996 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
997 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
998 }
Paul Bakker17373852011-01-06 14:20:01 +0000999
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +01001000 ipad = (unsigned char *) ctx->hmac_ctx;
1001
Gilles Peskine449bd832023-01-11 14:50:10 +01001002 if ((ret = mbedtls_md_starts(ctx)) != 0) {
1003 return ret;
1004 }
1005 return mbedtls_md_update(ctx, ipad, ctx->md_info->block_size);
Paul Bakker17373852011-01-06 14:20:01 +00001006}
1007
Gilles Peskine449bd832023-01-11 14:50:10 +01001008int mbedtls_md_hmac(const mbedtls_md_info_t *md_info,
1009 const unsigned char *key, size_t keylen,
1010 const unsigned char *input, size_t ilen,
1011 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +00001012{
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001013 mbedtls_md_context_t ctx;
Janos Follath24eed8d2019-11-22 13:21:35 +00001014 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +01001015
Gilles Peskine449bd832023-01-11 14:50:10 +01001016 if (md_info == NULL) {
1017 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
1018 }
Paul Bakker17373852011-01-06 14:20:01 +00001019
Gilles Peskine449bd832023-01-11 14:50:10 +01001020 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +01001021
Gilles Peskine449bd832023-01-11 14:50:10 +01001022 if ((ret = mbedtls_md_setup(&ctx, md_info, 1)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +01001023 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +01001024 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +01001025
Gilles Peskine449bd832023-01-11 14:50:10 +01001026 if ((ret = mbedtls_md_hmac_starts(&ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +01001027 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +01001028 }
1029 if ((ret = mbedtls_md_hmac_update(&ctx, input, ilen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +01001030 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +01001031 }
1032 if ((ret = mbedtls_md_hmac_finish(&ctx, output)) != 0) {
Andres Amaya Garciaaa464ef2017-07-21 14:21:53 +01001033 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +01001034 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +01001035
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +01001036cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +01001037 mbedtls_md_free(&ctx);
Paul Bakker17373852011-01-06 14:20:01 +00001038
Gilles Peskine449bd832023-01-11 14:50:10 +01001039 return ret;
Paul Bakker17373852011-01-06 14:20:01 +00001040}
1041
Gilles Peskine449bd832023-01-11 14:50:10 +01001042const char *mbedtls_md_get_name(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +01001043{
Gilles Peskine449bd832023-01-11 14:50:10 +01001044 if (md_info == NULL) {
1045 return NULL;
1046 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +01001047
1048 return md_info->name;
1049}
Manuel Pégourié-Gonnard1e57abd2023-02-23 20:45:26 +01001050
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001051#endif /* MBEDTLS_MD_C */
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +01001052
1053#endif /* MBEDTLS_MD_LIGHT */