blob: 8aecd39f07e4ef0fb15d5eaa3141806f22fa5113 [file] [log] [blame]
Paul Bakker17373852011-01-06 14:20:01 +00001/**
Gilles Peskine2091f3a2021-02-12 23:34:01 +01002 * \file md.c
Paul Bakker9af723c2014-05-01 13:03:14 +02003 *
Manuel Pégourié-Gonnardb4fe3cb2015-01-22 16:11:05 +00004 * \brief Generic message digest wrapper for mbed TLS
Paul Bakker17373852011-01-06 14:20:01 +00005 *
6 * \author Adriaan de Jong <dejong@fox-it.com>
7 *
Bence Szépkúti1e148272020-08-07 13:07:28 +02008 * Copyright The Mbed TLS Contributors
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02009 * SPDX-License-Identifier: Apache-2.0
10 *
11 * Licensed under the Apache License, Version 2.0 (the "License"); you may
12 * not use this file except in compliance with the License.
13 * You may obtain a copy of the License at
14 *
15 * http://www.apache.org/licenses/LICENSE-2.0
16 *
17 * Unless required by applicable law or agreed to in writing, software
18 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
19 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
20 * See the License for the specific language governing permissions and
21 * limitations under the License.
Paul Bakker17373852011-01-06 14:20:01 +000022 */
23
Gilles Peskinedb09ef62020-06-03 01:43:33 +020024#include "common.h"
Paul Bakker17373852011-01-06 14:20:01 +000025
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +010026#if defined(MBEDTLS_MD_LIGHT)
Paul Bakker17373852011-01-06 14:20:01 +000027
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000028#include "mbedtls/md.h"
Chris Jonesdaacb592021-03-09 17:03:29 +000029#include "md_wrap.h"
Andres Amaya Garcia1f6301b2018-04-17 09:51:09 -050030#include "mbedtls/platform_util.h"
Janos Follath24eed8d2019-11-22 13:21:35 +000031#include "mbedtls/error.h"
Paul Bakker17373852011-01-06 14:20:01 +000032
Gilles Peskine84867cf2019-07-19 15:46:03 +020033#include "mbedtls/md5.h"
34#include "mbedtls/ripemd160.h"
35#include "mbedtls/sha1.h"
36#include "mbedtls/sha256.h"
37#include "mbedtls/sha512.h"
38
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010039#include "mbedtls/platform.h"
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +010040
Rich Evans00ab4702015-02-06 13:43:58 +000041#include <string.h>
Paul Bakker17373852011-01-06 14:20:01 +000042
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +020043#if defined(MBEDTLS_FS_IO)
44#include <stdio.h>
Paul Bakkeraf5c85f2011-04-18 03:47:52 +000045#endif
46
Gilles Peskine84867cf2019-07-19 15:46:03 +020047#if defined(MBEDTLS_MD5_C)
48const mbedtls_md_info_t mbedtls_md5_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020049 "MD5",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020050 MBEDTLS_MD_MD5,
Gilles Peskine84867cf2019-07-19 15:46:03 +020051 16,
52 64,
53};
54#endif
55
56#if defined(MBEDTLS_RIPEMD160_C)
57const mbedtls_md_info_t mbedtls_ripemd160_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020058 "RIPEMD160",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020059 MBEDTLS_MD_RIPEMD160,
Gilles Peskine84867cf2019-07-19 15:46:03 +020060 20,
61 64,
62};
63#endif
64
65#if defined(MBEDTLS_SHA1_C)
66const mbedtls_md_info_t mbedtls_sha1_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020067 "SHA1",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020068 MBEDTLS_MD_SHA1,
Gilles Peskine84867cf2019-07-19 15:46:03 +020069 20,
70 64,
71};
72#endif
73
Mateusz Starzyke3c48b42021-04-19 16:46:28 +020074#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +020075const mbedtls_md_info_t mbedtls_sha224_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020076 "SHA224",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020077 MBEDTLS_MD_SHA224,
Gilles Peskine84867cf2019-07-19 15:46:03 +020078 28,
79 64,
80};
Mateusz Starzyke3c48b42021-04-19 16:46:28 +020081#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +020082
Mateusz Starzyke3c48b42021-04-19 16:46:28 +020083#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +020084const mbedtls_md_info_t mbedtls_sha256_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020085 "SHA256",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020086 MBEDTLS_MD_SHA256,
Gilles Peskine84867cf2019-07-19 15:46:03 +020087 32,
88 64,
89};
90#endif
91
Mateusz Starzyk3352a532021-04-06 14:28:22 +020092#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +020093const mbedtls_md_info_t mbedtls_sha384_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +020094 "SHA384",
Gilles Peskine2838b7b2019-07-19 16:03:39 +020095 MBEDTLS_MD_SHA384,
Gilles Peskine84867cf2019-07-19 15:46:03 +020096 48,
97 128,
98};
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +020099#endif
Gilles Peskine84867cf2019-07-19 15:46:03 +0200100
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200101#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200102const mbedtls_md_info_t mbedtls_sha512_info = {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200103 "SHA512",
Gilles Peskine2838b7b2019-07-19 16:03:39 +0200104 MBEDTLS_MD_SHA512,
Gilles Peskine84867cf2019-07-19 15:46:03 +0200105 64,
106 128,
107};
108#endif
109
Manuel Pégourié-Gonnard88db5da2015-06-15 14:34:59 +0200110/*
Gilles Peskine3a671502020-02-26 19:52:06 +0100111 * Reminder: update profiles in x509_crt.c when adding a new hash!
Manuel Pégourié-Gonnard88db5da2015-06-15 14:34:59 +0200112 */
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100113#if defined(MBEDTLS_MD_C)
Paul Bakker72f62662011-01-16 21:27:44 +0000114static const int supported_digests[] = {
115
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200116#if defined(MBEDTLS_SHA512_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100117 MBEDTLS_MD_SHA512,
Paul Bakker72f62662011-01-16 21:27:44 +0000118#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200119
120#if defined(MBEDTLS_SHA384_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100121 MBEDTLS_MD_SHA384,
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200122#endif
Paul Bakker72f62662011-01-16 21:27:44 +0000123
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200124#if defined(MBEDTLS_SHA256_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100125 MBEDTLS_MD_SHA256,
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200126#endif
127#if defined(MBEDTLS_SHA224_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100128 MBEDTLS_MD_SHA224,
Paul Bakker72f62662011-01-16 21:27:44 +0000129#endif
130
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200131#if defined(MBEDTLS_SHA1_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100132 MBEDTLS_MD_SHA1,
Paul Bakker72f62662011-01-16 21:27:44 +0000133#endif
134
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200135#if defined(MBEDTLS_RIPEMD160_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100136 MBEDTLS_MD_RIPEMD160,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200137#endif
138
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200139#if defined(MBEDTLS_MD5_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100140 MBEDTLS_MD_MD5,
Manuel Pégourié-Gonnardbd772542014-07-07 14:02:33 +0200141#endif
142
Gilles Peskine449bd832023-01-11 14:50:10 +0100143 MBEDTLS_MD_NONE
Paul Bakker72f62662011-01-16 21:27:44 +0000144};
145
Gilles Peskine449bd832023-01-11 14:50:10 +0100146const int *mbedtls_md_list(void)
Paul Bakker72f62662011-01-16 21:27:44 +0000147{
Gilles Peskine449bd832023-01-11 14:50:10 +0100148 return supported_digests;
Paul Bakker72f62662011-01-16 21:27:44 +0000149}
150
Gilles Peskine449bd832023-01-11 14:50:10 +0100151const mbedtls_md_info_t *mbedtls_md_info_from_string(const char *md_name)
Paul Bakker17373852011-01-06 14:20:01 +0000152{
Gilles Peskine449bd832023-01-11 14:50:10 +0100153 if (NULL == md_name) {
154 return NULL;
155 }
Paul Bakker17373852011-01-06 14:20:01 +0000156
157 /* Get the appropriate digest information */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200158#if defined(MBEDTLS_MD5_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100159 if (!strcmp("MD5", md_name)) {
160 return mbedtls_md_info_from_type(MBEDTLS_MD_MD5);
161 }
Paul Bakker17373852011-01-06 14:20:01 +0000162#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200163#if defined(MBEDTLS_RIPEMD160_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100164 if (!strcmp("RIPEMD160", md_name)) {
165 return mbedtls_md_info_from_type(MBEDTLS_MD_RIPEMD160);
166 }
Manuel Pégourié-Gonnarde4d47a62014-01-17 20:41:32 +0100167#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200168#if defined(MBEDTLS_SHA1_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100169 if (!strcmp("SHA1", md_name) || !strcmp("SHA", md_name)) {
170 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA1);
171 }
Paul Bakker17373852011-01-06 14:20:01 +0000172#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200173#if defined(MBEDTLS_SHA224_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100174 if (!strcmp("SHA224", md_name)) {
175 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA224);
176 }
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200177#endif
178#if defined(MBEDTLS_SHA256_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100179 if (!strcmp("SHA256", md_name)) {
180 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA256);
181 }
Paul Bakker17373852011-01-06 14:20:01 +0000182#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200183#if defined(MBEDTLS_SHA384_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100184 if (!strcmp("SHA384", md_name)) {
185 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA384);
186 }
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200187#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200188#if defined(MBEDTLS_SHA512_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100189 if (!strcmp("SHA512", md_name)) {
190 return mbedtls_md_info_from_type(MBEDTLS_MD_SHA512);
191 }
Paul Bakker17373852011-01-06 14:20:01 +0000192#endif
Gilles Peskine449bd832023-01-11 14:50:10 +0100193 return NULL;
Paul Bakker17373852011-01-06 14:20:01 +0000194}
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100195#endif /* MBEDTLS_MD_C */
Paul Bakker17373852011-01-06 14:20:01 +0000196
Gilles Peskine449bd832023-01-11 14:50:10 +0100197const mbedtls_md_info_t *mbedtls_md_info_from_type(mbedtls_md_type_t md_type)
Paul Bakker17373852011-01-06 14:20:01 +0000198{
Gilles Peskine449bd832023-01-11 14:50:10 +0100199 switch (md_type) {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200200#if defined(MBEDTLS_MD5_C)
201 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100202 return &mbedtls_md5_info;
Paul Bakker17373852011-01-06 14:20:01 +0000203#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200204#if defined(MBEDTLS_RIPEMD160_C)
205 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100206 return &mbedtls_ripemd160_info;
Manuel Pégourié-Gonnarde4d47a62014-01-17 20:41:32 +0100207#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200208#if defined(MBEDTLS_SHA1_C)
209 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100210 return &mbedtls_sha1_info;
Paul Bakker17373852011-01-06 14:20:01 +0000211#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200212#if defined(MBEDTLS_SHA224_C)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200213 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100214 return &mbedtls_sha224_info;
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200215#endif
216#if defined(MBEDTLS_SHA256_C)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200217 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100218 return &mbedtls_sha256_info;
Paul Bakker17373852011-01-06 14:20:01 +0000219#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200220#if defined(MBEDTLS_SHA384_C)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200221 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100222 return &mbedtls_sha384_info;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200223#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200224#if defined(MBEDTLS_SHA512_C)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200225 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100226 return &mbedtls_sha512_info;
Paul Bakker17373852011-01-06 14:20:01 +0000227#endif
228 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100229 return NULL;
Paul Bakker17373852011-01-06 14:20:01 +0000230 }
231}
232
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100233#if defined(MBEDTLS_MD_C)
Max Fillinger0bb38332021-12-28 16:32:00 +0100234const mbedtls_md_info_t *mbedtls_md_info_from_ctx(
Gilles Peskine449bd832023-01-11 14:50:10 +0100235 const mbedtls_md_context_t *ctx)
Max Fillinger0bb38332021-12-28 16:32:00 +0100236{
Gilles Peskine449bd832023-01-11 14:50:10 +0100237 if (ctx == NULL) {
Max Fillinger0bb38332021-12-28 16:32:00 +0100238 return NULL;
Gilles Peskine449bd832023-01-11 14:50:10 +0100239 }
Max Fillinger0bb38332021-12-28 16:32:00 +0100240
Gilles Peskine449bd832023-01-11 14:50:10 +0100241 return ctx->MBEDTLS_PRIVATE(md_info);
Max Fillinger0bb38332021-12-28 16:32:00 +0100242}
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100243#endif /* MBEDTLS_MD_C */
Max Fillinger0bb38332021-12-28 16:32:00 +0100244
Gilles Peskine449bd832023-01-11 14:50:10 +0100245void mbedtls_md_init(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200246{
Gilles Peskine449bd832023-01-11 14:50:10 +0100247 memset(ctx, 0, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200248}
249
Gilles Peskine449bd832023-01-11 14:50:10 +0100250void mbedtls_md_free(mbedtls_md_context_t *ctx)
Paul Bakker84bbeb52014-07-01 14:53:22 +0200251{
Gilles Peskine449bd832023-01-11 14:50:10 +0100252 if (ctx == NULL || ctx->md_info == NULL) {
Paul Bakker84bbeb52014-07-01 14:53:22 +0200253 return;
Gilles Peskine449bd832023-01-11 14:50:10 +0100254 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200255
Gilles Peskine449bd832023-01-11 14:50:10 +0100256 if (ctx->md_ctx != NULL) {
257 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200258#if defined(MBEDTLS_MD5_C)
259 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100260 mbedtls_md5_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200261 break;
262#endif
263#if defined(MBEDTLS_RIPEMD160_C)
264 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100265 mbedtls_ripemd160_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200266 break;
267#endif
268#if defined(MBEDTLS_SHA1_C)
269 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100270 mbedtls_sha1_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200271 break;
272#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200273#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200274 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100275 mbedtls_sha256_free(ctx->md_ctx);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200276 break;
277#endif
278#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200279 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100280 mbedtls_sha256_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200281 break;
282#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200283#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200284 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100285 mbedtls_sha512_free(ctx->md_ctx);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200286 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200287#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200288#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200289 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100290 mbedtls_sha512_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200291 break;
292#endif
293 default:
294 /* Shouldn't happen */
295 break;
296 }
Gilles Peskine449bd832023-01-11 14:50:10 +0100297 mbedtls_free(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200298 }
Paul Bakker84bbeb52014-07-01 14:53:22 +0200299
Gilles Peskine449bd832023-01-11 14:50:10 +0100300 if (ctx->hmac_ctx != NULL) {
301 mbedtls_platform_zeroize(ctx->hmac_ctx,
302 2 * ctx->md_info->block_size);
303 mbedtls_free(ctx->hmac_ctx);
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100304 }
305
Gilles Peskine449bd832023-01-11 14:50:10 +0100306 mbedtls_platform_zeroize(ctx, sizeof(mbedtls_md_context_t));
Paul Bakker84bbeb52014-07-01 14:53:22 +0200307}
308
Gilles Peskine449bd832023-01-11 14:50:10 +0100309int mbedtls_md_clone(mbedtls_md_context_t *dst,
310 const mbedtls_md_context_t *src)
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200311{
Gilles Peskine449bd832023-01-11 14:50:10 +0100312 if (dst == NULL || dst->md_info == NULL ||
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200313 src == NULL || src->md_info == NULL ||
Gilles Peskine449bd832023-01-11 14:50:10 +0100314 dst->md_info != src->md_info) {
315 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200316 }
317
Gilles Peskine449bd832023-01-11 14:50:10 +0100318 switch (src->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200319#if defined(MBEDTLS_MD5_C)
320 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100321 mbedtls_md5_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200322 break;
323#endif
324#if defined(MBEDTLS_RIPEMD160_C)
325 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100326 mbedtls_ripemd160_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200327 break;
328#endif
329#if defined(MBEDTLS_SHA1_C)
330 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100331 mbedtls_sha1_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200332 break;
333#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200334#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200335 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100336 mbedtls_sha256_clone(dst->md_ctx, src->md_ctx);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200337 break;
338#endif
339#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200340 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100341 mbedtls_sha256_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200342 break;
343#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200344#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200345 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100346 mbedtls_sha512_clone(dst->md_ctx, src->md_ctx);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200347 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200348#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200349#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200350 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100351 mbedtls_sha512_clone(dst->md_ctx, src->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200352 break;
353#endif
354 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100355 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200356 }
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200357
Gilles Peskine449bd832023-01-11 14:50:10 +0100358 return 0;
Manuel Pégourié-Gonnard052a6c92015-07-06 16:06:02 +0200359}
360
Gilles Peskine449bd832023-01-11 14:50:10 +0100361#define ALLOC(type) \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200362 do { \
Gilles Peskine449bd832023-01-11 14:50:10 +0100363 ctx->md_ctx = mbedtls_calloc(1, sizeof(mbedtls_##type##_context)); \
364 if (ctx->md_ctx == NULL) \
365 return MBEDTLS_ERR_MD_ALLOC_FAILED; \
366 mbedtls_##type##_init(ctx->md_ctx); \
Gilles Peskine84867cf2019-07-19 15:46:03 +0200367 } \
Gilles Peskine449bd832023-01-11 14:50:10 +0100368 while (0)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200369
Gilles Peskine449bd832023-01-11 14:50:10 +0100370int mbedtls_md_setup(mbedtls_md_context_t *ctx, const mbedtls_md_info_t *md_info, int hmac)
Paul Bakker17373852011-01-06 14:20:01 +0000371{
Gilles Peskine449bd832023-01-11 14:50:10 +0100372 if (md_info == NULL || ctx == NULL) {
373 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
374 }
Paul Bakker17373852011-01-06 14:20:01 +0000375
Gilles Peskined15c7402020-08-19 12:03:11 +0200376 ctx->md_info = md_info;
377 ctx->md_ctx = NULL;
378 ctx->hmac_ctx = NULL;
379
Gilles Peskine449bd832023-01-11 14:50:10 +0100380 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200381#if defined(MBEDTLS_MD5_C)
382 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100383 ALLOC(md5);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200384 break;
385#endif
386#if defined(MBEDTLS_RIPEMD160_C)
387 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100388 ALLOC(ripemd160);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200389 break;
390#endif
391#if defined(MBEDTLS_SHA1_C)
392 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100393 ALLOC(sha1);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200394 break;
395#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200396#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200397 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100398 ALLOC(sha256);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200399 break;
400#endif
401#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200402 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100403 ALLOC(sha256);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200404 break;
405#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200406#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200407 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100408 ALLOC(sha512);
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200409 break;
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200410#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200411#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200412 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100413 ALLOC(sha512);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200414 break;
415#endif
416 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100417 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200418 }
Paul Bakker17373852011-01-06 14:20:01 +0000419
Gilles Peskine449bd832023-01-11 14:50:10 +0100420 if (hmac != 0) {
421 ctx->hmac_ctx = mbedtls_calloc(2, md_info->block_size);
422 if (ctx->hmac_ctx == NULL) {
423 mbedtls_md_free(ctx);
424 return MBEDTLS_ERR_MD_ALLOC_FAILED;
Manuel Pégourié-Gonnard4063ceb2015-03-25 16:08:53 +0100425 }
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100426 }
427
Gilles Peskine449bd832023-01-11 14:50:10 +0100428 return 0;
Paul Bakker17373852011-01-06 14:20:01 +0000429}
Gilles Peskine84867cf2019-07-19 15:46:03 +0200430#undef ALLOC
Paul Bakker17373852011-01-06 14:20:01 +0000431
Gilles Peskine449bd832023-01-11 14:50:10 +0100432int mbedtls_md_starts(mbedtls_md_context_t *ctx)
Paul Bakker562535d2011-01-20 16:42:01 +0000433{
Gilles Peskine449bd832023-01-11 14:50:10 +0100434 if (ctx == NULL || ctx->md_info == NULL) {
435 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
436 }
Paul Bakker562535d2011-01-20 16:42:01 +0000437
Gilles Peskine449bd832023-01-11 14:50:10 +0100438 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200439#if defined(MBEDTLS_MD5_C)
440 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100441 return mbedtls_md5_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200442#endif
443#if defined(MBEDTLS_RIPEMD160_C)
444 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100445 return mbedtls_ripemd160_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200446#endif
447#if defined(MBEDTLS_SHA1_C)
448 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100449 return mbedtls_sha1_starts(ctx->md_ctx);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200450#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200451#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200452 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100453 return mbedtls_sha256_starts(ctx->md_ctx, 1);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200454#endif
455#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200456 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100457 return mbedtls_sha256_starts(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200458#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200459#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200460 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100461 return mbedtls_sha512_starts(ctx->md_ctx, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200462#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200463#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200464 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100465 return mbedtls_sha512_starts(ctx->md_ctx, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200466#endif
467 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100468 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200469 }
Paul Bakker562535d2011-01-20 16:42:01 +0000470}
471
Gilles Peskine449bd832023-01-11 14:50:10 +0100472int mbedtls_md_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000473{
Gilles Peskine449bd832023-01-11 14:50:10 +0100474 if (ctx == NULL || ctx->md_info == NULL) {
475 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
476 }
Paul Bakker17373852011-01-06 14:20:01 +0000477
Gilles Peskine449bd832023-01-11 14:50:10 +0100478 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200479#if defined(MBEDTLS_MD5_C)
480 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100481 return mbedtls_md5_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200482#endif
483#if defined(MBEDTLS_RIPEMD160_C)
484 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100485 return mbedtls_ripemd160_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200486#endif
487#if defined(MBEDTLS_SHA1_C)
488 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100489 return mbedtls_sha1_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200490#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200491#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200492 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100493 return mbedtls_sha256_update(ctx->md_ctx, input, ilen);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200494#endif
495#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200496 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100497 return mbedtls_sha256_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200498#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200499#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200500 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100501 return mbedtls_sha512_update(ctx->md_ctx, input, ilen);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200502#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200503#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200504 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100505 return mbedtls_sha512_update(ctx->md_ctx, input, ilen);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200506#endif
507 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100508 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200509 }
Paul Bakker17373852011-01-06 14:20:01 +0000510}
511
Gilles Peskine449bd832023-01-11 14:50:10 +0100512int mbedtls_md_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000513{
Gilles Peskine449bd832023-01-11 14:50:10 +0100514 if (ctx == NULL || ctx->md_info == NULL) {
515 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
516 }
Paul Bakker17373852011-01-06 14:20:01 +0000517
Gilles Peskine449bd832023-01-11 14:50:10 +0100518 switch (ctx->md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200519#if defined(MBEDTLS_MD5_C)
520 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100521 return mbedtls_md5_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200522#endif
523#if defined(MBEDTLS_RIPEMD160_C)
524 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100525 return mbedtls_ripemd160_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200526#endif
527#if defined(MBEDTLS_SHA1_C)
528 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100529 return mbedtls_sha1_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200530#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200531#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200532 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100533 return mbedtls_sha256_finish(ctx->md_ctx, output);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200534#endif
535#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200536 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100537 return mbedtls_sha256_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200538#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200539#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200540 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100541 return mbedtls_sha512_finish(ctx->md_ctx, output);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200542#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200543#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200544 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100545 return mbedtls_sha512_finish(ctx->md_ctx, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200546#endif
547 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100548 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200549 }
Paul Bakker17373852011-01-06 14:20:01 +0000550}
551
Gilles Peskine449bd832023-01-11 14:50:10 +0100552int mbedtls_md(const mbedtls_md_info_t *md_info, const unsigned char *input, size_t ilen,
553 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000554{
Gilles Peskine449bd832023-01-11 14:50:10 +0100555 if (md_info == NULL) {
556 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
557 }
Paul Bakker17373852011-01-06 14:20:01 +0000558
Gilles Peskine449bd832023-01-11 14:50:10 +0100559 switch (md_info->type) {
Gilles Peskine84867cf2019-07-19 15:46:03 +0200560#if defined(MBEDTLS_MD5_C)
561 case MBEDTLS_MD_MD5:
Gilles Peskine449bd832023-01-11 14:50:10 +0100562 return mbedtls_md5(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200563#endif
564#if defined(MBEDTLS_RIPEMD160_C)
565 case MBEDTLS_MD_RIPEMD160:
Gilles Peskine449bd832023-01-11 14:50:10 +0100566 return mbedtls_ripemd160(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200567#endif
568#if defined(MBEDTLS_SHA1_C)
569 case MBEDTLS_MD_SHA1:
Gilles Peskine449bd832023-01-11 14:50:10 +0100570 return mbedtls_sha1(input, ilen, output);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200571#endif
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200572#if defined(MBEDTLS_SHA224_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200573 case MBEDTLS_MD_SHA224:
Gilles Peskine449bd832023-01-11 14:50:10 +0100574 return mbedtls_sha256(input, ilen, output, 1);
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200575#endif
576#if defined(MBEDTLS_SHA256_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200577 case MBEDTLS_MD_SHA256:
Gilles Peskine449bd832023-01-11 14:50:10 +0100578 return mbedtls_sha256(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200579#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200580#if defined(MBEDTLS_SHA384_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200581 case MBEDTLS_MD_SHA384:
Gilles Peskine449bd832023-01-11 14:50:10 +0100582 return mbedtls_sha512(input, ilen, output, 1);
Manuel Pégourié-Gonnardd6020842019-07-17 16:28:21 +0200583#endif
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200584#if defined(MBEDTLS_SHA512_C)
Gilles Peskine84867cf2019-07-19 15:46:03 +0200585 case MBEDTLS_MD_SHA512:
Gilles Peskine449bd832023-01-11 14:50:10 +0100586 return mbedtls_sha512(input, ilen, output, 0);
Gilles Peskine84867cf2019-07-19 15:46:03 +0200587#endif
588 default:
Gilles Peskine449bd832023-01-11 14:50:10 +0100589 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
Gilles Peskine84867cf2019-07-19 15:46:03 +0200590 }
Paul Bakker17373852011-01-06 14:20:01 +0000591}
592
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100593#if defined(MBEDTLS_FS_IO) && defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100594int mbedtls_md_file(const mbedtls_md_info_t *md_info, const char *path, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000595{
Janos Follath24eed8d2019-11-22 13:21:35 +0000596 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200597 FILE *f;
598 size_t n;
599 mbedtls_md_context_t ctx;
600 unsigned char buf[1024];
Paul Bakker9c021ad2011-06-09 15:55:11 +0000601
Gilles Peskine449bd832023-01-11 14:50:10 +0100602 if (md_info == NULL) {
603 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
604 }
Paul Bakker17373852011-01-06 14:20:01 +0000605
Gilles Peskine449bd832023-01-11 14:50:10 +0100606 if ((f = fopen(path, "rb")) == NULL) {
607 return MBEDTLS_ERR_MD_FILE_IO_ERROR;
608 }
Manuel Pégourié-Gonnardbcc03082015-06-24 00:09:29 +0200609
Gilles Peskineda0913b2022-06-30 17:03:40 +0200610 /* Ensure no stdio buffering of secrets, as such buffers cannot be wiped. */
Gilles Peskine449bd832023-01-11 14:50:10 +0100611 mbedtls_setbuf(f, NULL);
Gilles Peskineda0913b2022-06-30 17:03:40 +0200612
Gilles Peskine449bd832023-01-11 14:50:10 +0100613 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200614
Gilles Peskine449bd832023-01-11 14:50:10 +0100615 if ((ret = mbedtls_md_setup(&ctx, md_info, 0)) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200616 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100617 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200618
Gilles Peskine449bd832023-01-11 14:50:10 +0100619 if ((ret = mbedtls_md_starts(&ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100620 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100621 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200622
Gilles Peskine449bd832023-01-11 14:50:10 +0100623 while ((n = fread(buf, 1, sizeof(buf), f)) > 0) {
624 if ((ret = mbedtls_md_update(&ctx, buf, n)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100625 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100626 }
627 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200628
Gilles Peskine449bd832023-01-11 14:50:10 +0100629 if (ferror(f) != 0) {
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200630 ret = MBEDTLS_ERR_MD_FILE_IO_ERROR;
Gilles Peskine449bd832023-01-11 14:50:10 +0100631 } else {
632 ret = mbedtls_md_finish(&ctx, output);
633 }
Manuel Pégourié-Gonnardbfffa902015-05-28 14:44:00 +0200634
635cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +0100636 mbedtls_platform_zeroize(buf, sizeof(buf));
637 fclose(f);
638 mbedtls_md_free(&ctx);
Paul Bakker9c021ad2011-06-09 15:55:11 +0000639
Gilles Peskine449bd832023-01-11 14:50:10 +0100640 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000641}
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100642#endif /* MBEDTLS_FS_IO && MBEDTLS_MD_C */
Paul Bakker17373852011-01-06 14:20:01 +0000643
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100644#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100645int mbedtls_md_hmac_starts(mbedtls_md_context_t *ctx, const unsigned char *key, size_t keylen)
Paul Bakker17373852011-01-06 14:20:01 +0000646{
Janos Follath24eed8d2019-11-22 13:21:35 +0000647 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200648 unsigned char sum[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100649 unsigned char *ipad, *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100650
Gilles Peskine449bd832023-01-11 14:50:10 +0100651 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
652 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
653 }
Paul Bakker17373852011-01-06 14:20:01 +0000654
Gilles Peskine449bd832023-01-11 14:50:10 +0100655 if (keylen > (size_t) ctx->md_info->block_size) {
656 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100657 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100658 }
659 if ((ret = mbedtls_md_update(ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100660 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100661 }
662 if ((ret = mbedtls_md_finish(ctx, sum)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100663 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100664 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100665
666 keylen = ctx->md_info->size;
667 key = sum;
668 }
669
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100670 ipad = (unsigned char *) ctx->hmac_ctx;
671 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
672
Gilles Peskine449bd832023-01-11 14:50:10 +0100673 memset(ipad, 0x36, ctx->md_info->block_size);
674 memset(opad, 0x5C, ctx->md_info->block_size);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100675
Gilles Peskine449bd832023-01-11 14:50:10 +0100676 mbedtls_xor(ipad, ipad, key, keylen);
677 mbedtls_xor(opad, opad, key, keylen);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100678
Gilles Peskine449bd832023-01-11 14:50:10 +0100679 if ((ret = mbedtls_md_starts(ctx)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100680 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100681 }
682 if ((ret = mbedtls_md_update(ctx, ipad,
683 ctx->md_info->block_size)) != 0) {
Andres Amaya Garcia42e5e102017-07-20 16:27:03 +0100684 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100685 }
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100686
687cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +0100688 mbedtls_platform_zeroize(sum, sizeof(sum));
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100689
Gilles Peskine449bd832023-01-11 14:50:10 +0100690 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000691}
692
Gilles Peskine449bd832023-01-11 14:50:10 +0100693int mbedtls_md_hmac_update(mbedtls_md_context_t *ctx, const unsigned char *input, size_t ilen)
Paul Bakker17373852011-01-06 14:20:01 +0000694{
Gilles Peskine449bd832023-01-11 14:50:10 +0100695 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
696 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
697 }
Paul Bakker17373852011-01-06 14:20:01 +0000698
Gilles Peskine449bd832023-01-11 14:50:10 +0100699 return mbedtls_md_update(ctx, input, ilen);
Paul Bakker17373852011-01-06 14:20:01 +0000700}
701
Gilles Peskine449bd832023-01-11 14:50:10 +0100702int mbedtls_md_hmac_finish(mbedtls_md_context_t *ctx, unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000703{
Janos Follath24eed8d2019-11-22 13:21:35 +0000704 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200705 unsigned char tmp[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100706 unsigned char *opad;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100707
Gilles Peskine449bd832023-01-11 14:50:10 +0100708 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
709 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
710 }
Paul Bakker17373852011-01-06 14:20:01 +0000711
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100712 opad = (unsigned char *) ctx->hmac_ctx + ctx->md_info->block_size;
713
Gilles Peskine449bd832023-01-11 14:50:10 +0100714 if ((ret = mbedtls_md_finish(ctx, tmp)) != 0) {
715 return ret;
716 }
717 if ((ret = mbedtls_md_starts(ctx)) != 0) {
718 return ret;
719 }
720 if ((ret = mbedtls_md_update(ctx, opad,
721 ctx->md_info->block_size)) != 0) {
722 return ret;
723 }
724 if ((ret = mbedtls_md_update(ctx, tmp,
725 ctx->md_info->size)) != 0) {
726 return ret;
727 }
728 return mbedtls_md_finish(ctx, output);
Paul Bakker17373852011-01-06 14:20:01 +0000729}
730
Gilles Peskine449bd832023-01-11 14:50:10 +0100731int mbedtls_md_hmac_reset(mbedtls_md_context_t *ctx)
Paul Bakker17373852011-01-06 14:20:01 +0000732{
Janos Follath24eed8d2019-11-22 13:21:35 +0000733 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100734 unsigned char *ipad;
735
Gilles Peskine449bd832023-01-11 14:50:10 +0100736 if (ctx == NULL || ctx->md_info == NULL || ctx->hmac_ctx == NULL) {
737 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
738 }
Paul Bakker17373852011-01-06 14:20:01 +0000739
Manuel Pégourié-Gonnarddfb3dc82015-03-25 11:49:07 +0100740 ipad = (unsigned char *) ctx->hmac_ctx;
741
Gilles Peskine449bd832023-01-11 14:50:10 +0100742 if ((ret = mbedtls_md_starts(ctx)) != 0) {
743 return ret;
744 }
745 return mbedtls_md_update(ctx, ipad, ctx->md_info->block_size);
Paul Bakker17373852011-01-06 14:20:01 +0000746}
747
Gilles Peskine449bd832023-01-11 14:50:10 +0100748int mbedtls_md_hmac(const mbedtls_md_info_t *md_info,
749 const unsigned char *key, size_t keylen,
750 const unsigned char *input, size_t ilen,
751 unsigned char *output)
Paul Bakker17373852011-01-06 14:20:01 +0000752{
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200753 mbedtls_md_context_t ctx;
Janos Follath24eed8d2019-11-22 13:21:35 +0000754 int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100755
Gilles Peskine449bd832023-01-11 14:50:10 +0100756 if (md_info == NULL) {
757 return MBEDTLS_ERR_MD_BAD_INPUT_DATA;
758 }
Paul Bakker17373852011-01-06 14:20:01 +0000759
Gilles Peskine449bd832023-01-11 14:50:10 +0100760 mbedtls_md_init(&ctx);
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100761
Gilles Peskine449bd832023-01-11 14:50:10 +0100762 if ((ret = mbedtls_md_setup(&ctx, md_info, 1)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100763 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100764 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100765
Gilles Peskine449bd832023-01-11 14:50:10 +0100766 if ((ret = mbedtls_md_hmac_starts(&ctx, key, keylen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100767 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100768 }
769 if ((ret = mbedtls_md_hmac_update(&ctx, input, ilen)) != 0) {
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100770 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100771 }
772 if ((ret = mbedtls_md_hmac_finish(&ctx, output)) != 0) {
Andres Amaya Garciaaa464ef2017-07-21 14:21:53 +0100773 goto cleanup;
Gilles Peskine449bd832023-01-11 14:50:10 +0100774 }
Manuel Pégourié-Gonnard8379a822015-03-24 16:48:22 +0100775
Andres Amaya Garcia0dd4fa02017-06-28 14:16:07 +0100776cleanup:
Gilles Peskine449bd832023-01-11 14:50:10 +0100777 mbedtls_md_free(&ctx);
Paul Bakker17373852011-01-06 14:20:01 +0000778
Gilles Peskine449bd832023-01-11 14:50:10 +0100779 return ret;
Paul Bakker17373852011-01-06 14:20:01 +0000780}
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100781#endif /* MBEDTLS_MD_C */
Paul Bakker17373852011-01-06 14:20:01 +0000782
Gilles Peskine449bd832023-01-11 14:50:10 +0100783unsigned char mbedtls_md_get_size(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100784{
Gilles Peskine449bd832023-01-11 14:50:10 +0100785 if (md_info == NULL) {
786 return 0;
787 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100788
789 return md_info->size;
790}
791
Gilles Peskine449bd832023-01-11 14:50:10 +0100792mbedtls_md_type_t mbedtls_md_get_type(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100793{
Gilles Peskine449bd832023-01-11 14:50:10 +0100794 if (md_info == NULL) {
795 return MBEDTLS_MD_NONE;
796 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100797
798 return md_info->type;
799}
800
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100801#if defined(MBEDTLS_MD_C)
Gilles Peskine449bd832023-01-11 14:50:10 +0100802const char *mbedtls_md_get_name(const mbedtls_md_info_t *md_info)
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100803{
Gilles Peskine449bd832023-01-11 14:50:10 +0100804 if (md_info == NULL) {
805 return NULL;
806 }
Manuel Pégourié-Gonnardca878db2015-03-24 12:13:30 +0100807
808 return md_info->name;
809}
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200810#endif /* MBEDTLS_MD_C */
Manuel Pégourié-Gonnardb9b630d2023-02-16 19:07:31 +0100811
812#endif /* MBEDTLS_MD_LIGHT */