blob: 3e4a1c10a35ee7daaf03eb5a2bd8d2cb47ea30e4 [file] [log] [blame]
Paul Bakker17373852011-01-06 14:20:01 +00001/**
Gilles Peskine2091f3a2021-02-12 23:34:01 +01002 * \file md.c
Paul Bakker9af723c2014-05-01 13:03:14 +02003 *
Gilles Peskinef08ca832023-09-12 19:21:54 +02004 * \brief Generic message digest wrapper for Mbed TLS
Paul Bakker17373852011-01-06 14:20:01 +00005 *
6 * \author Adriaan de Jong <dejong@fox-it.com>
7 *
Bence Szépkúti1e148272020-08-07 13:07:28 +02008 * Copyright The Mbed TLS Contributors
Dave Rodgman7ff79652023-11-03 12:04:52 +00009 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Paul Bakker17373852011-01-06 14:20:01 +000010 */
11
Gilles Peskinedb09ef62020-06-03 01:43:33 +020012#include "common.h"
Paul Bakker17373852011-01-06 14:20:01 +000013
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020014#if defined(MBEDTLS_MD_C)
Paul Bakker17373852011-01-06 14:20:01 +000015
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000016#include "mbedtls/md.h"
Manuel Pégourié-Gonnard50518f42015-05-26 11:04:15 +020017#include "mbedtls/md_internal.h"
Andres Amaya Garcia1f6301b2018-04-17 09:51:09 -050018#include "mbedtls/platform_util.h"
Janos Follath24eed8d2019-11-22 13:21:35 +000019#include "mbedtls/error.h"
Paul Bakker17373852011-01-06 14:20:01 +000020
Gilles Peskine84867cf2019-07-19 15:46:03 +020021#include "mbedtls/md2.h"
22#include "mbedtls/md4.h"
23#include "mbedtls/md5.h"
24#include "mbedtls/ripemd160.h"
25#include "mbedtls/sha1.h"
26#include "mbedtls/sha256.h"
27#include "mbedtls/sha512.h"
28
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010029#include "mbedtls/platform.h"
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010030
Rich Evans00ab4702015-02-06 13:43:58 +000031#include <string.h>
Paul Bakker17373852011-01-06 14:20:01 +000032
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +020033#if defined(MBEDTLS_FS_IO)
34#include <stdio.h>
Paul Bakkeraf5c85f2011-04-18 03:47:52 +000035#endif
36
Gilles Peskine84867cf2019-07-19 15:46:03 +020037#if defined(MBEDTLS_MD2_C)
38const mbedtls_md_info_t mbedtls_md2_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020039 "MD2",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020040 MBEDTLS_MD_MD2,
Gilles Peskine84867cf2019-07-19 15:46:03 +020041 16,
42 16,
43};
44#endif
45
46#if defined(MBEDTLS_MD4_C)
47const mbedtls_md_info_t mbedtls_md4_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020048 "MD4",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020049 MBEDTLS_MD_MD4,
Gilles Peskine84867cf2019-07-19 15:46:03 +020050 16,
51 64,
52};
53#endif
54
55#if defined(MBEDTLS_MD5_C)
56const mbedtls_md_info_t mbedtls_md5_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020057 "MD5",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020058 MBEDTLS_MD_MD5,
Gilles Peskine84867cf2019-07-19 15:46:03 +020059 16,
60 64,
61};
62#endif
63
64#if defined(MBEDTLS_RIPEMD160_C)
65const mbedtls_md_info_t mbedtls_ripemd160_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020066 "RIPEMD160",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020067 MBEDTLS_MD_RIPEMD160,
Gilles Peskine84867cf2019-07-19 15:46:03 +020068 20,
69 64,
70};
71#endif
72
73#if defined(MBEDTLS_SHA1_C)
74const mbedtls_md_info_t mbedtls_sha1_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020075 "SHA1",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020076 MBEDTLS_MD_SHA1,
Gilles Peskine84867cf2019-07-19 15:46:03 +020077 20,
78 64,
79};
80#endif
81
82#if defined(MBEDTLS_SHA256_C)
83const mbedtls_md_info_t mbedtls_sha224_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020084 "SHA224",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020085 MBEDTLS_MD_SHA224,
Gilles Peskine84867cf2019-07-19 15:46:03 +020086 28,
87 64,
88};
89
90const mbedtls_md_info_t mbedtls_sha256_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020091 "SHA256",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020092 MBEDTLS_MD_SHA256,
Gilles Peskine84867cf2019-07-19 15:46:03 +020093 32,
94 64,
95};
96#endif
97
98#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +020099#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200100const mbedtls_md_info_t mbedtls_sha384_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200101 "SHA384",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200102 MBEDTLS_MD_SHA384,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200103 48,
104 128,
105};
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200106#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200107
108const mbedtls_md_info_t mbedtls_sha512_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200109 "SHA512",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200110 MBEDTLS_MD_SHA512,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200111 64,
112 128,
113};
114#endif
115
Manuel Pégourié-Gonnard88db5da2015-06-15 14:34:59 +0200116/*
Gilles Peskine3a671502020-02-26 19:52:06 +0100117 * Reminder: update profiles in x509_crt.c when adding a new hash!
Manuel Pégourié-Gonnard88db5da2015-06-15 14:34:59 +0200118 */
Paul Bakker72f62662011-01-16 21:27:44 +0000119static const int supported_digests[] = {
120
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200121#if defined(MBEDTLS_SHA512_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100122 MBEDTLS_MD_SHA512,
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200123#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100124 MBEDTLS_MD_SHA384,
Paul Bakker72f62662011-01-16 21:27:44 +0000125#endif
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200126#endif
Paul Bakker72f62662011-01-16 21:27:44 +0000127
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200128#if defined(MBEDTLS_SHA256_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100129 MBEDTLS_MD_SHA256,
130 MBEDTLS_MD_SHA224,
Paul Bakker72f62662011-01-16 21:27:44 +0000131#endif
132
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200133#if defined(MBEDTLS_SHA1_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100134 MBEDTLS_MD_SHA1,
Paul Bakker72f62662011-01-16 21:27:44 +0000135#endif
136
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200137#if defined(MBEDTLS_RIPEMD160_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100138 MBEDTLS_MD_RIPEMD160,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200139#endif
140
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200141#if defined(MBEDTLS_MD5_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100142 MBEDTLS_MD_MD5,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200143#endif
144
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200145#if defined(MBEDTLS_MD4_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100146 MBEDTLS_MD_MD4,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200147#endif
148
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200149#if defined(MBEDTLS_MD2_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100150 MBEDTLS_MD_MD2,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200151#endif
152
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100153 MBEDTLS_MD_NONE
Paul Bakker72f62662011-01-16 21:27:44 +0000154};
155
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100156const int *mbedtls_md_list(void)
Paul Bakker72f62662011-01-16 21:27:44 +0000157{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100158 return supported_digests;
Paul Bakker72f62662011-01-16 21:27:44 +0000159}
160
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100161const mbedtls_md_info_t *mbedtls_md_info_from_string(const char *md_name)
Paul Bakker17373852011-01-06 14:20:01 +0000162{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100163 if (NULL == md_name) {
164 return NULL;
165 }
Paul Bakker17373852011-01-06 14:20:01 +0000166
167 /* Get the appropriate digest information */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200168#if defined(MBEDTLS_MD2_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100169 if (!strcmp("MD2", md_name)) {
170 return mbedtls_md_info_from_type(MBEDTLS_MD_MD2);
171 }
Paul Bakker17373852011-01-06 14:20:01 +0000172#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200173#if defined(MBEDTLS_MD4_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100174 if (!strcmp("MD4", md_name)) {
175 return mbedtls_md_info_from_type(MBEDTLS_MD_MD4);
176 }
Paul Bakker17373852011-01-06 14:20:01 +0000177#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200178#if defined(MBEDTLS_MD5_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100179 if (!strcmp("MD5", md_name)) {
180 return mbedtls_md_info_from_type(MBEDTLS_MD_MD5);
181 }
Paul Bakker17373852011-01-06 14:20:01 +0000182#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200183#if defined(MBEDTLS_RIPEMD160_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100184 if (!strcmp("RIPEMD160", md_name)) {
185 return mbedtls_md_info_from_type(MBEDTLS_MD_RIPEMD160);
186 }
Manuel Pégourié-Gonnarde4d47a62014-01-17 20:41:32 +0100187#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200188#if defined(MBEDTLS_SHA1_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100189 if (!strcmp("SHA1", md_name) || !strcmp("SHA", md_name)) {
190 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA1);
191 }
Paul Bakker17373852011-01-06 14:20:01 +0000192#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200193#if defined(MBEDTLS_SHA256_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100194 if (!strcmp("SHA224", md_name)) {
195 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA224);
196 }
197 if (!strcmp("SHA256", md_name)) {
198 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA256);
199 }
Paul Bakker17373852011-01-06 14:20:01 +0000200#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200201#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200202#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100203 if (!strcmp("SHA384", md_name)) {
204 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA384);
205 }
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200206#endif
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100207 if (!strcmp("SHA512", md_name)) {
208 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA512);
209 }
Paul Bakker17373852011-01-06 14:20:01 +0000210#endif
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100211 return NULL;
Paul Bakker17373852011-01-06 14:20:01 +0000212}
213
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100214const mbedtls_md_info_t *mbedtls_md_info_from_type(mbedtls_md_type_t md_type)
Paul Bakker17373852011-01-06 14:20:01 +0000215{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100216 switch (md_type) {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200217#if defined(MBEDTLS_MD2_C)
218 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100219 return &mbedtls_md2_info;
Paul Bakker17373852011-01-06 14:20:01 +0000220#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200221#if defined(MBEDTLS_MD4_C)
222 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100223 return &mbedtls_md4_info;
Paul Bakker17373852011-01-06 14:20:01 +0000224#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200225#if defined(MBEDTLS_MD5_C)
226 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100227 return &mbedtls_md5_info;
Paul Bakker17373852011-01-06 14:20:01 +0000228#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200229#if defined(MBEDTLS_RIPEMD160_C)
230 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100231 return &mbedtls_ripemd160_info;
Manuel Pégourié-Gonnarde4d47a62014-01-17 20:41:32 +0100232#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200233#if defined(MBEDTLS_SHA1_C)
234 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100235 return &mbedtls_sha1_info;
Paul Bakker17373852011-01-06 14:20:01 +0000236#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200237#if defined(MBEDTLS_SHA256_C)
238 case MBEDTLS_MD_SHA224:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100239 return &mbedtls_sha224_info;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200240 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100241 return &mbedtls_sha256_info;
Paul Bakker17373852011-01-06 14:20:01 +0000242#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200243#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200244#if !defined(MBEDTLS_SHA512_NO_SHA384)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200245 case MBEDTLS_MD_SHA384:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100246 return &mbedtls_sha384_info;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200247#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200248 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100249 return &mbedtls_sha512_info;
Paul Bakker17373852011-01-06 14:20:01 +0000250#endif
251 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100252 return NULL;
Paul Bakker17373852011-01-06 14:20:01 +0000253 }
254}
255
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100256void mbedtls_md_init(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200257{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100258 memset(ctx, 0, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200259}
260
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100261void mbedtls_md_free(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200262{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100263 if (ctx == NULL || ctx->md_info == NULL) {
Paul Bakker84bbeb52014-07-01 14:53:22 +0200264 return;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100265 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200266
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100267 if (ctx->md_ctx != NULL) {
268 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200269#if defined(MBEDTLS_MD2_C)
270 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100271 mbedtls_md2_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200272 break;
273#endif
274#if defined(MBEDTLS_MD4_C)
275 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100276 mbedtls_md4_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200277 break;
278#endif
279#if defined(MBEDTLS_MD5_C)
280 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100281 mbedtls_md5_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200282 break;
283#endif
284#if defined(MBEDTLS_RIPEMD160_C)
285 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100286 mbedtls_ripemd160_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200287 break;
288#endif
289#if defined(MBEDTLS_SHA1_C)
290 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100291 mbedtls_sha1_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200292 break;
293#endif
294#if defined(MBEDTLS_SHA256_C)
295 case MBEDTLS_MD_SHA224:
296 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100297 mbedtls_sha256_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200298 break;
299#endif
300#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200301#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200302 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200303#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200304 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100305 mbedtls_sha512_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200306 break;
307#endif
308 default:
309 /* Shouldn't happen */
310 break;
311 }
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100312 mbedtls_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200313 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200314
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100315 if (ctx->hmac_ctx != NULL) {
316 mbedtls_platform_zeroize(ctx->hmac_ctx,
317 2 * ctx->md_info->block_size);
318 mbedtls_free(ctx->hmac_ctx);
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100319 }
320
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100321 mbedtls_platform_zeroize(ctx, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200322}
323
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100324int mbedtls_md_clone(mbedtls_md_context_t *dst,
325 const mbedtls_md_context_t *src)
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200326{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100327 if (dst == NULL || dst->md_info == NULL ||
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200328 src == NULL || src->md_info == NULL ||
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100329 dst->md_info != src->md_info) {
330 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200331 }
332
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100333 switch (src->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200334#if defined(MBEDTLS_MD2_C)
335 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100336 mbedtls_md2_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200337 break;
338#endif
339#if defined(MBEDTLS_MD4_C)
340 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100341 mbedtls_md4_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200342 break;
343#endif
344#if defined(MBEDTLS_MD5_C)
345 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100346 mbedtls_md5_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200347 break;
348#endif
349#if defined(MBEDTLS_RIPEMD160_C)
350 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100351 mbedtls_ripemd160_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200352 break;
353#endif
354#if defined(MBEDTLS_SHA1_C)
355 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100356 mbedtls_sha1_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200357 break;
358#endif
359#if defined(MBEDTLS_SHA256_C)
360 case MBEDTLS_MD_SHA224:
361 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100362 mbedtls_sha256_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200363 break;
364#endif
365#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200366#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200367 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200368#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200369 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100370 mbedtls_sha512_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200371 break;
372#endif
373 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100374 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200375 }
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200376
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100377 return 0;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200378}
379
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100380#if !defined(MBEDTLS_DEPRECATED_REMOVED)
381int mbedtls_md_init_ctx(mbedtls_md_context_t *ctx, const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnard93c08472021-04-15 12:23:55 +0200382{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100383 return mbedtls_md_setup(ctx, md_info, 1);
Manuel Pégourié-Gonnard93c08472021-04-15 12:23:55 +0200384}
385#endif
386
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100387#define ALLOC(type) \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200388 do { \
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100389 ctx->md_ctx = mbedtls_calloc(1, sizeof(mbedtls_##type##_context)); \
390 if (ctx->md_ctx == NULL) \
391 return MBEDTLS_ERR_MD_ALLOC_FAILED; \
392 mbedtls_##type##_init(ctx->md_ctx); \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200393 } \
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100394 while (0)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200395
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100396int mbedtls_md_setup(mbedtls_md_context_t *ctx, const mbedtls_md_info_t *md_info, int hmac)
Paul Bakker17373852011-01-06 14:20:01 +0000397{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100398 if (md_info == NULL || ctx == NULL) {
399 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
400 }
Paul Bakker17373852011-01-06 14:20:01 +0000401
Gilles Peskined15c7402020-08-19 12:03:11 +0200402 ctx->md_info = md_info;
403 ctx->md_ctx = NULL;
404 ctx->hmac_ctx = NULL;
405
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100406 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200407#if defined(MBEDTLS_MD2_C)
408 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100409 ALLOC(md2);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200410 break;
411#endif
412#if defined(MBEDTLS_MD4_C)
413 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100414 ALLOC(md4);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200415 break;
416#endif
417#if defined(MBEDTLS_MD5_C)
418 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100419 ALLOC(md5);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200420 break;
421#endif
422#if defined(MBEDTLS_RIPEMD160_C)
423 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100424 ALLOC(ripemd160);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200425 break;
426#endif
427#if defined(MBEDTLS_SHA1_C)
428 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100429 ALLOC(sha1);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200430 break;
431#endif
432#if defined(MBEDTLS_SHA256_C)
433 case MBEDTLS_MD_SHA224:
434 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100435 ALLOC(sha256);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200436 break;
437#endif
438#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200439#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200440 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200441#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200442 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100443 ALLOC(sha512);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200444 break;
445#endif
446 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100447 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200448 }
Paul Bakker17373852011-01-06 14:20:01 +0000449
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100450 if (hmac != 0) {
451 ctx->hmac_ctx = mbedtls_calloc(2, md_info->block_size);
452 if (ctx->hmac_ctx == NULL) {
453 mbedtls_md_free(ctx);
454 return MBEDTLS_ERR_MD_ALLOC_FAILED;
Manuel Pégourié-Gonnard4063ceb2015-03-25 16:08:53 +0100455 }
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100456 }
457
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100458 return 0;
Paul Bakker17373852011-01-06 14:20:01 +0000459}
Gilles Peskine84867cf2019-07-19 15:46:03 +0200460#undef ALLOC
Paul Bakker17373852011-01-06 14:20:01 +0000461
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100462int mbedtls_md_starts(mbedtls_md_context_t *ctx)
Paul Bakker562535d2011-01-20 16:42:01 +0000463{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100464 if (ctx == NULL || ctx->md_info == NULL) {
465 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
466 }
Paul Bakker562535d2011-01-20 16:42:01 +0000467
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100468 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200469#if defined(MBEDTLS_MD2_C)
470 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100471 return mbedtls_md2_starts_ret(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200472#endif
473#if defined(MBEDTLS_MD4_C)
474 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100475 return mbedtls_md4_starts_ret(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200476#endif
477#if defined(MBEDTLS_MD5_C)
478 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100479 return mbedtls_md5_starts_ret(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200480#endif
481#if defined(MBEDTLS_RIPEMD160_C)
482 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100483 return mbedtls_ripemd160_starts_ret(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200484#endif
485#if defined(MBEDTLS_SHA1_C)
486 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100487 return mbedtls_sha1_starts_ret(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200488#endif
489#if defined(MBEDTLS_SHA256_C)
490 case MBEDTLS_MD_SHA224:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100491 return mbedtls_sha256_starts_ret(ctx->md_ctx, 1);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200492 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100493 return mbedtls_sha256_starts_ret(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200494#endif
495#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200496#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200497 case MBEDTLS_MD_SHA384:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100498 return mbedtls_sha512_starts_ret(ctx->md_ctx, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200499#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200500 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100501 return mbedtls_sha512_starts_ret(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200502#endif
503 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100504 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200505 }
Paul Bakker562535d2011-01-20 16:42:01 +0000506}
507
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100508int mbedtls_md_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000509{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100510 if (ctx == NULL || ctx->md_info == NULL) {
511 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
512 }
Paul Bakker17373852011-01-06 14:20:01 +0000513
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100514 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200515#if defined(MBEDTLS_MD2_C)
516 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100517 return mbedtls_md2_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200518#endif
519#if defined(MBEDTLS_MD4_C)
520 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100521 return mbedtls_md4_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200522#endif
523#if defined(MBEDTLS_MD5_C)
524 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100525 return mbedtls_md5_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200526#endif
527#if defined(MBEDTLS_RIPEMD160_C)
528 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100529 return mbedtls_ripemd160_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200530#endif
531#if defined(MBEDTLS_SHA1_C)
532 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100533 return mbedtls_sha1_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200534#endif
535#if defined(MBEDTLS_SHA256_C)
536 case MBEDTLS_MD_SHA224:
Gilles Peskine84867cf2019-07-19 15:46:03 +0200537 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100538 return mbedtls_sha256_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200539#endif
540#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200541#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200542 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200543#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200544 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100545 return mbedtls_sha512_update_ret(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200546#endif
547 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100548 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200549 }
Paul Bakker17373852011-01-06 14:20:01 +0000550}
551
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100552int mbedtls_md_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000553{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100554 if (ctx == NULL || ctx->md_info == NULL) {
555 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
556 }
Paul Bakker17373852011-01-06 14:20:01 +0000557
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100558 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200559#if defined(MBEDTLS_MD2_C)
560 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100561 return mbedtls_md2_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200562#endif
563#if defined(MBEDTLS_MD4_C)
564 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100565 return mbedtls_md4_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200566#endif
567#if defined(MBEDTLS_MD5_C)
568 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100569 return mbedtls_md5_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200570#endif
571#if defined(MBEDTLS_RIPEMD160_C)
572 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100573 return mbedtls_ripemd160_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200574#endif
575#if defined(MBEDTLS_SHA1_C)
576 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100577 return mbedtls_sha1_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200578#endif
579#if defined(MBEDTLS_SHA256_C)
580 case MBEDTLS_MD_SHA224:
Gilles Peskine84867cf2019-07-19 15:46:03 +0200581 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100582 return mbedtls_sha256_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200583#endif
584#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200585#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200586 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200587#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200588 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100589 return mbedtls_sha512_finish_ret(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200590#endif
591 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100592 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200593 }
Paul Bakker17373852011-01-06 14:20:01 +0000594}
595
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100596int mbedtls_md(const mbedtls_md_info_t *md_info, const unsigned char *input, size_t ilen,
597 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000598{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100599 if (md_info == NULL) {
600 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
601 }
Paul Bakker17373852011-01-06 14:20:01 +0000602
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100603 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200604#if defined(MBEDTLS_MD2_C)
605 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100606 return mbedtls_md2_ret(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200607#endif
608#if defined(MBEDTLS_MD4_C)
609 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100610 return mbedtls_md4_ret(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200611#endif
612#if defined(MBEDTLS_MD5_C)
613 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100614 return mbedtls_md5_ret(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200615#endif
616#if defined(MBEDTLS_RIPEMD160_C)
617 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100618 return mbedtls_ripemd160_ret(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200619#endif
620#if defined(MBEDTLS_SHA1_C)
621 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100622 return mbedtls_sha1_ret(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200623#endif
624#if defined(MBEDTLS_SHA256_C)
625 case MBEDTLS_MD_SHA224:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100626 return mbedtls_sha256_ret(input, ilen, output, 1);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200627 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100628 return mbedtls_sha256_ret(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200629#endif
630#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200631#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200632 case MBEDTLS_MD_SHA384:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100633 return mbedtls_sha512_ret(input, ilen, output, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200634#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200635 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100636 return mbedtls_sha512_ret(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200637#endif
638 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100639 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200640 }
Paul Bakker17373852011-01-06 14:20:01 +0000641}
642
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200643#if defined(MBEDTLS_FS_IO)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100644int mbedtls_md_file(const mbedtls_md_info_t *md_info, const char *path, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000645{
Janos Follath24eed8d2019-11-22 13:21:35 +0000646 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200647 FILE *f;
648 size_t n;
649 mbedtls_md_context_t ctx;
650 unsigned char buf[1024];
Paul Bakker9c021ad2011-06-09 15:55:11 +0000651
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100652 if (md_info == NULL) {
653 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
654 }
Paul Bakker17373852011-01-06 14:20:01 +0000655
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100656 if ((f = fopen(path, "rb")) == NULL) {
657 return MBEDTLS_ERR_MD_FILE_IO_ERROR;
658 }
Manuel Pégourié-Gonnardbcc03082015-06-24 00:09:29 +0200659
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100660 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200661
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100662 if ((ret = mbedtls_md_setup(&ctx, md_info, 0)) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200663 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100664 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200665
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100666 if ((ret = mbedtls_md_starts(&ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100667 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100668 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200669
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100670 while ((n = fread(buf, 1, sizeof(buf), f)) > 0) {
671 if ((ret = mbedtls_md_update(&ctx, buf, n)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100672 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100673 }
674 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200675
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100676 if (ferror(f) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200677 ret = MBEDTLS_ERR_MD_FILE_IO_ERROR;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100678 } else {
679 ret = mbedtls_md_finish(&ctx, output);
680 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200681
682cleanup:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100683 mbedtls_platform_zeroize(buf, sizeof(buf));
684 fclose(f);
685 mbedtls_md_free(&ctx);
Paul Bakker9c021ad2011-06-09 15:55:11 +0000686
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100687 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000688}
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200689#endif /* MBEDTLS_FS_IO */
Paul Bakker17373852011-01-06 14:20:01 +0000690
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100691int mbedtls_md_hmac_starts(mbedtls_md_context_t *ctx, const unsigned char *key, size_t keylen)
Paul Bakker17373852011-01-06 14:20:01 +0000692{
Janos Follath24eed8d2019-11-22 13:21:35 +0000693 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200694 unsigned char sum[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100695 unsigned char *ipad, *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100696 size_t i;
697
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100698 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
699 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
700 }
Paul Bakker17373852011-01-06 14:20:01 +0000701
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100702 if (keylen > (size_t) ctx->md_info->block_size) {
703 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100704 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100705 }
706 if ((ret = mbedtls_md_update(ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100707 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100708 }
709 if ((ret = mbedtls_md_finish(ctx, sum)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100710 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100711 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100712
713 keylen = ctx->md_info->size;
714 key = sum;
715 }
716
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100717 ipad = (unsigned char *) ctx->hmac_ctx;
718 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
719
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100720 memset(ipad, 0x36, ctx->md_info->block_size);
721 memset(opad, 0x5C, ctx->md_info->block_size);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100722
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100723 for (i = 0; i < keylen; i++) {
724 ipad[i] = (unsigned char) (ipad[i] ^ key[i]);
725 opad[i] = (unsigned char) (opad[i] ^ key[i]);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100726 }
727
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100728 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100729 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100730 }
731 if ((ret = mbedtls_md_update(ctx, ipad,
732 ctx->md_info->block_size)) != 0) {
Andres Amaya Garcia42e5e102017-07-20 16:27:03 +0100733 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100734 }
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100735
736cleanup:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100737 mbedtls_platform_zeroize(sum, sizeof(sum));
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100738
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100739 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000740}
741
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100742int mbedtls_md_hmac_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000743{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100744 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
745 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
746 }
Paul Bakker17373852011-01-06 14:20:01 +0000747
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100748 return mbedtls_md_update(ctx, input, ilen);
Paul Bakker17373852011-01-06 14:20:01 +0000749}
750
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100751int mbedtls_md_hmac_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000752{
Janos Follath24eed8d2019-11-22 13:21:35 +0000753 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200754 unsigned char tmp[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100755 unsigned char *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100756
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100757 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
758 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
759 }
Paul Bakker17373852011-01-06 14:20:01 +0000760
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100761 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
762
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100763 if ((ret = mbedtls_md_finish(ctx, tmp)) != 0) {
764 return ret;
765 }
766 if ((ret = mbedtls_md_starts(ctx)) != 0) {
767 return ret;
768 }
769 if ((ret = mbedtls_md_update(ctx, opad,
770 ctx->md_info->block_size)) != 0) {
771 return ret;
772 }
773 if ((ret = mbedtls_md_update(ctx, tmp,
774 ctx->md_info->size)) != 0) {
775 return ret;
776 }
777 return mbedtls_md_finish(ctx, output);
Paul Bakker17373852011-01-06 14:20:01 +0000778}
779
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100780int mbedtls_md_hmac_reset(mbedtls_md_context_t *ctx)
Paul Bakker17373852011-01-06 14:20:01 +0000781{
Janos Follath24eed8d2019-11-22 13:21:35 +0000782 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100783 unsigned char *ipad;
784
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100785 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
786 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
787 }
Paul Bakker17373852011-01-06 14:20:01 +0000788
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100789 ipad = (unsigned char *) ctx->hmac_ctx;
790
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100791 if ((ret = mbedtls_md_starts(ctx)) != 0) {
792 return ret;
793 }
794 return mbedtls_md_update(ctx, ipad, ctx->md_info->block_size);
Paul Bakker17373852011-01-06 14:20:01 +0000795}
796
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100797int mbedtls_md_hmac(const mbedtls_md_info_t *md_info,
798 const unsigned char *key, size_t keylen,
799 const unsigned char *input, size_t ilen,
800 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000801{
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200802 mbedtls_md_context_t ctx;
Janos Follath24eed8d2019-11-22 13:21:35 +0000803 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100804
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100805 if (md_info == NULL) {
806 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
807 }
Paul Bakker17373852011-01-06 14:20:01 +0000808
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100809 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100810
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100811 if ((ret = mbedtls_md_setup(&ctx, md_info, 1)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100812 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100813 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100814
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100815 if ((ret = mbedtls_md_hmac_starts(&ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100816 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100817 }
818 if ((ret = mbedtls_md_hmac_update(&ctx, input, ilen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100819 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100820 }
821 if ((ret = mbedtls_md_hmac_finish(&ctx, output)) != 0) {
Andres Amaya Garciaaa464ef2017-07-21 14:21:53 +0100822 goto cleanup;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100823 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100824
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100825cleanup:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100826 mbedtls_md_free(&ctx);
Paul Bakker17373852011-01-06 14:20:01 +0000827
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100828 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000829}
830
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100831int mbedtls_md_process(mbedtls_md_context_t *ctx, const unsigned char *data)
Paul Bakker1bd3ae82013-03-13 10:26:44 +0100832{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100833 if (ctx == NULL || ctx->md_info == NULL) {
834 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
835 }
Paul Bakker1bd3ae82013-03-13 10:26:44 +0100836
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100837 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200838#if defined(MBEDTLS_MD2_C)
839 case MBEDTLS_MD_MD2:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100840 return mbedtls_internal_md2_process(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200841#endif
842#if defined(MBEDTLS_MD4_C)
843 case MBEDTLS_MD_MD4:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100844 return mbedtls_internal_md4_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200845#endif
846#if defined(MBEDTLS_MD5_C)
847 case MBEDTLS_MD_MD5:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100848 return mbedtls_internal_md5_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200849#endif
850#if defined(MBEDTLS_RIPEMD160_C)
851 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100852 return mbedtls_internal_ripemd160_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200853#endif
854#if defined(MBEDTLS_SHA1_C)
855 case MBEDTLS_MD_SHA1:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100856 return mbedtls_internal_sha1_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200857#endif
858#if defined(MBEDTLS_SHA256_C)
859 case MBEDTLS_MD_SHA224:
Gilles Peskine84867cf2019-07-19 15:46:03 +0200860 case MBEDTLS_MD_SHA256:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100861 return mbedtls_internal_sha256_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200862#endif
863#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200864#if !defined(MBEDTLS_SHA512_NO_SHA384)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200865 case MBEDTLS_MD_SHA384:
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200866#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200867 case MBEDTLS_MD_SHA512:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100868 return mbedtls_internal_sha512_process(ctx->md_ctx, data);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200869#endif
870 default:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100871 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200872 }
Paul Bakker1bd3ae82013-03-13 10:26:44 +0100873}
874
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100875unsigned char mbedtls_md_get_size(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100876{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100877 if (md_info == NULL) {
878 return 0;
879 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100880
881 return md_info->size;
882}
883
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100884mbedtls_md_type_t mbedtls_md_get_type(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100885{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100886 if (md_info == NULL) {
887 return MBEDTLS_MD_NONE;
888 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100889
890 return md_info->type;
891}
892
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100893const char *mbedtls_md_get_name(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100894{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100895 if (md_info == NULL) {
896 return NULL;
897 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100898
899 return md_info->name;
900}
901
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200902#endif /* MBEDTLS_MD_C */