blob: 0cc89fe7fbd30ee7008b81e62fb2f8f78a92af0b [file] [log] [blame]
Steven Cooremancd84cb42020-07-16 20:28:36 +02001/*
2 * Functions to delegate cryptographic operations to an available
3 * and appropriate accelerator.
Steven Cooreman56250fd2020-09-04 13:07:15 +02004 * Warning: This file will be auto-generated in the future.
Steven Cooremancd84cb42020-07-16 20:28:36 +02005 */
Steven Cooreman2c7b2f82020-09-02 13:43:46 +02006/* Copyright The Mbed TLS Contributors
Steven Cooremancd84cb42020-07-16 20:28:36 +02007 * SPDX-License-Identifier: Apache-2.0
8 *
9 * Licensed under the Apache License, Version 2.0 (the "License"); you may
10 * not use this file except in compliance with the License.
11 * You may obtain a copy of the License at
12 *
13 * http://www.apache.org/licenses/LICENSE-2.0
14 *
15 * Unless required by applicable law or agreed to in writing, software
16 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
17 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
18 * See the License for the specific language governing permissions and
19 * limitations under the License.
Steven Cooremancd84cb42020-07-16 20:28:36 +020020 */
21
22#include "psa_crypto_core.h"
23#include "psa_crypto_driver_wrappers.h"
Steven Cooreman2a1664c2020-07-20 15:33:08 +020024#include "mbedtls/platform.h"
25
26#if defined(MBEDTLS_PSA_CRYPTO_DRIVERS)
Steven Cooremancd84cb42020-07-16 20:28:36 +020027
28/* Include test driver definition when running tests */
Steven Cooremanf1720ea2020-07-24 18:41:58 +020029#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman56250fd2020-09-04 13:07:15 +020030#ifndef PSA_CRYPTO_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020031#define PSA_CRYPTO_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020032#endif
33#ifndef PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020034#define PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020035#endif
Steven Cooreman0d7c64d2020-09-07 16:17:55 +020036#include "test/drivers/test_driver.h"
Steven Cooremanf1720ea2020-07-24 18:41:58 +020037#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +020038
Steven Cooreman56250fd2020-09-04 13:07:15 +020039/* Repeat above block for each JSON-declared driver during autogeneration */
40
Steven Cooremanfb81aa52020-09-09 12:01:43 +020041/* Auto-generated values depending on which drivers are registered. ID 0 is
42 * reserved for unallocated operations. */
Steven Cooreman37941cb2020-07-28 18:49:51 +020043#if defined(PSA_CRYPTO_DRIVER_TEST)
44#define PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID (1)
45#define PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID (2)
46#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +020047#endif /* MBEDTLS_PSA_CRYPTO_DRIVERS */
48
49/* Support the 'old' SE interface when asked to */
Steven Cooreman7a250572020-07-17 16:43:05 +020050#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
Steven Cooreman56250fd2020-09-04 13:07:15 +020051/* PSA_CRYPTO_DRIVER_PRESENT is defined when either a new-style or old-style
52 * SE driver is present, to avoid unused argument errors at compile time. */
53#ifndef PSA_CRYPTO_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020054#define PSA_CRYPTO_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020055#endif
Steven Cooreman7a250572020-07-17 16:43:05 +020056#include "psa_crypto_se.h"
57#endif
58
Steven Cooremancd84cb42020-07-16 20:28:36 +020059/* Start delegation functions */
60psa_status_t psa_driver_wrapper_sign_hash( psa_key_slot_t *slot,
61 psa_algorithm_t alg,
62 const uint8_t *hash,
63 size_t hash_length,
64 uint8_t *signature,
65 size_t signature_size,
66 size_t *signature_length )
67{
Steven Cooremanf1720ea2020-07-24 18:41:58 +020068#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman7a250572020-07-17 16:43:05 +020069 /* Try dynamically-registered SE interface first */
70#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
71 const psa_drv_se_t *drv;
72 psa_drv_se_context_t *drv_context;
73
74 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
75 {
76 if( drv->asymmetric == NULL ||
77 drv->asymmetric->p_sign == NULL )
78 {
79 /* Key is defined in SE, but we have no way to exercise it */
Steven Cooreman56250fd2020-09-04 13:07:15 +020080 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman7a250572020-07-17 16:43:05 +020081 }
82 return( drv->asymmetric->p_sign( drv_context,
Ronald Cronea0f8a62020-11-25 17:52:23 +010083 psa_key_slot_get_slot_number( slot ),
Steven Cooreman7a250572020-07-17 16:43:05 +020084 alg,
85 hash, hash_length,
86 signature, signature_size,
87 signature_length ) );
88 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +020089#endif /* PSA_CRYPTO_SE_C */
Steven Cooreman7a250572020-07-17 16:43:05 +020090
91 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +020092#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremancd84cb42020-07-16 20:28:36 +020093 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
94 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
95 psa_key_attributes_t attributes = {
96 .core = slot->attr
97 };
98
99 switch( location )
100 {
101 case PSA_KEY_LOCATION_LOCAL_STORAGE:
102 /* Key is stored in the slot in export representation, so
103 * cycle through all known transparent accelerators */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200104#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremancd84cb42020-07-16 20:28:36 +0200105 status = test_transparent_signature_sign_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100106 slot->key.data,
107 slot->key.bytes,
Steven Cooremancd84cb42020-07-16 20:28:36 +0200108 alg,
109 hash,
110 hash_length,
111 signature,
112 signature_size,
113 signature_length );
114 /* Declared with fallback == true */
115 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200116 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200117#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200118 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200119 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremancd84cb42020-07-16 20:28:36 +0200120 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200121#if defined(PSA_CRYPTO_DRIVER_TEST)
122 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremancd84cb42020-07-16 20:28:36 +0200123 return( test_opaque_signature_sign_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100124 slot->key.data,
125 slot->key.bytes,
Steven Cooremancd84cb42020-07-16 20:28:36 +0200126 alg,
127 hash,
128 hash_length,
129 signature,
130 signature_size,
131 signature_length ) );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200132#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200133 default:
134 /* Key is declared with a lifetime not known to us */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200135 return( status );
Steven Cooremancd84cb42020-07-16 20:28:36 +0200136 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200137#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200138 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200139#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
140#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200141 (void)slot;
142 (void)alg;
143 (void)hash;
144 (void)hash_length;
145 (void)signature;
146 (void)signature_size;
147 (void)signature_length;
148
Steven Cooreman56250fd2020-09-04 13:07:15 +0200149 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200150#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200151}
152
Steven Cooreman55ae2172020-07-17 19:46:15 +0200153psa_status_t psa_driver_wrapper_verify_hash( psa_key_slot_t *slot,
154 psa_algorithm_t alg,
155 const uint8_t *hash,
156 size_t hash_length,
157 const uint8_t *signature,
158 size_t signature_length )
159{
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200160#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200161 /* Try dynamically-registered SE interface first */
162#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
163 const psa_drv_se_t *drv;
164 psa_drv_se_context_t *drv_context;
165
166 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
167 {
168 if( drv->asymmetric == NULL ||
169 drv->asymmetric->p_verify == NULL )
170 {
171 /* Key is defined in SE, but we have no way to exercise it */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200172 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200173 }
174 return( drv->asymmetric->p_verify( drv_context,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100175 psa_key_slot_get_slot_number( slot ),
Steven Cooreman55ae2172020-07-17 19:46:15 +0200176 alg,
177 hash, hash_length,
178 signature, signature_length ) );
179 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200180#endif /* PSA_CRYPTO_SE_C */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200181
182 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200183#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200184 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
185 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
186 psa_key_attributes_t attributes = {
187 .core = slot->attr
188 };
189
190 switch( location )
191 {
192 case PSA_KEY_LOCATION_LOCAL_STORAGE:
193 /* Key is stored in the slot in export representation, so
194 * cycle through all known transparent accelerators */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200195#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200196 status = test_transparent_signature_verify_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100197 slot->key.data,
198 slot->key.bytes,
Steven Cooreman55ae2172020-07-17 19:46:15 +0200199 alg,
200 hash,
201 hash_length,
202 signature,
203 signature_length );
204 /* Declared with fallback == true */
205 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200206 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200207#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200208 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200209 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200210 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200211#if defined(PSA_CRYPTO_DRIVER_TEST)
212 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooreman55ae2172020-07-17 19:46:15 +0200213 return( test_opaque_signature_verify_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100214 slot->key.data,
215 slot->key.bytes,
Steven Cooreman55ae2172020-07-17 19:46:15 +0200216 alg,
217 hash,
218 hash_length,
219 signature,
220 signature_length ) );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200221#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200222 default:
223 /* Key is declared with a lifetime not known to us */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200224 return( status );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200225 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200226#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200227 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200228#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
229#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200230 (void)slot;
231 (void)alg;
232 (void)hash;
233 (void)hash_length;
234 (void)signature;
235 (void)signature_length;
236
Steven Cooreman56250fd2020-09-04 13:07:15 +0200237 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200238#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200239}
240
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200241#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman56250fd2020-09-04 13:07:15 +0200242/** Calculate the size to allocate for buffering a key with given attributes.
243 *
244 * This function provides a way to get the expected size for storing a key with
245 * the given attributes. This will be the size of the export representation for
246 * cleartext keys, and a driver-defined size for keys stored by opaque drivers.
247 *
248 * \param[in] attributes The key attribute structure of the key to store.
249 * \param[out] expected_size On success, a byte size large enough to contain
250 * the declared key.
251 *
252 * \retval #PSA_SUCCESS
253 * \retval #PSA_ERROR_NOT_SUPPORTED
254 */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200255static psa_status_t get_expected_key_size( const psa_key_attributes_t *attributes,
256 size_t *expected_size )
257{
Steven Cooreman56250fd2020-09-04 13:07:15 +0200258 size_t buffer_size = 0;
John Durkop2c618352020-09-22 06:54:01 -0700259 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION( attributes->core.lifetime );
260 psa_key_type_t key_type = attributes->core.type;
261 size_t key_bits = attributes->core.bits;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200262
John Durkop2c618352020-09-22 06:54:01 -0700263 switch( location )
264 {
265 case PSA_KEY_LOCATION_LOCAL_STORAGE:
gabor-mezei-armcbcec212020-12-18 14:23:51 +0100266 buffer_size = PSA_EXPORT_KEY_OUTPUT_SIZE( key_type, key_bits );
John Durkop2c618352020-09-22 06:54:01 -0700267
268 if( buffer_size == 0 )
269 return( PSA_ERROR_NOT_SUPPORTED );
270
271 *expected_size = buffer_size;
272 return( PSA_SUCCESS );
273
274#if defined(PSA_CRYPTO_DRIVER_TEST)
275 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
John Durkopac93e3b2020-10-16 06:48:55 -0700276#ifdef TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION
John Durkop2c618352020-09-22 06:54:01 -0700277 *expected_size = test_size_function( key_type, key_bits );
278 return( PSA_SUCCESS );
279#else /* TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION */
280 if( PSA_KEY_TYPE_IS_KEY_PAIR( key_type ) )
281 {
John Durkop135ce692020-10-19 07:12:28 -0700282 int public_key_overhead = ( ( TEST_DRIVER_KEY_CONTEXT_STORE_PUBLIC_KEY == 1 ) ?
gabor-mezei-armcbcec212020-12-18 14:23:51 +0100283 PSA_EXPORT_KEY_OUTPUT_SIZE( key_type, key_bits ) : 0 );
John Durkop135ce692020-10-19 07:12:28 -0700284 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
285 + TEST_DRIVER_KEY_CONTEXT_PUBLIC_KEY_SIZE
286 + public_key_overhead;
287 }
288 else if( PSA_KEY_TYPE_IS_PUBLIC_KEY( attributes->core.type ) )
289 {
John Durkop2c618352020-09-22 06:54:01 -0700290 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
291 + TEST_DRIVER_KEY_CONTEXT_PUBLIC_KEY_SIZE;
292 }
John Durkop135ce692020-10-19 07:12:28 -0700293 else if ( !PSA_KEY_TYPE_IS_KEY_PAIR( key_type ) &&
294 !PSA_KEY_TYPE_IS_PUBLIC_KEY ( attributes->core.type ) )
John Durkop2c618352020-09-22 06:54:01 -0700295 {
296 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
297 + TEST_DRIVER_KEY_CONTEXT_SYMMETRIC_FACTOR
298 * ( ( key_bits + 7 ) / 8 );
299 }
300 else
301 {
302 return( PSA_ERROR_NOT_SUPPORTED );
303 }
304 return( PSA_SUCCESS );
305#endif /* TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION */
306#endif /* PSA_CRYPTO_DRIVER_TEST */
307
308 default:
Steven Cooreman56250fd2020-09-04 13:07:15 +0200309 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200310 }
311}
John Durkop135ce692020-10-19 07:12:28 -0700312#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200313
Steven Cooreman55ae2172020-07-17 19:46:15 +0200314psa_status_t psa_driver_wrapper_generate_key( const psa_key_attributes_t *attributes,
315 psa_key_slot_t *slot )
316{
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200317#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200318 /* Try dynamically-registered SE interface first */
319#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
320 const psa_drv_se_t *drv;
321 psa_drv_se_context_t *drv_context;
322
323 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
324 {
325 size_t pubkey_length = 0; /* We don't support this feature yet */
326 if( drv->key_management == NULL ||
327 drv->key_management->p_generate == NULL )
328 {
329 /* Key is defined as being in SE, but we have no way to generate it */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200330 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200331 }
332 return( drv->key_management->p_generate(
Ronald Cronea0f8a62020-11-25 17:52:23 +0100333 drv_context, psa_key_slot_get_slot_number( slot ),
334 attributes, NULL, 0, &pubkey_length ) );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200335 }
336#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
337
338 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200339#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200340 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
341 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
342 size_t export_size = 0;
343
344 status = get_expected_key_size( attributes, &export_size );
345 if( status != PSA_SUCCESS )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200346 return( status );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200347
Ronald Cronea0f8a62020-11-25 17:52:23 +0100348 slot->key.data = mbedtls_calloc(1, export_size);
349 if( slot->key.data == NULL )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200350 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Ronald Cronea0f8a62020-11-25 17:52:23 +0100351 slot->key.bytes = export_size;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200352
353 switch( location )
354 {
355 case PSA_KEY_LOCATION_LOCAL_STORAGE:
356 /* Key is stored in the slot in export representation, so
357 * cycle through all known transparent accelerators */
358
359 /* Transparent drivers are limited to generating asymmetric keys */
360 if( ! PSA_KEY_TYPE_IS_ASYMMETRIC( slot->attr.type ) )
361 {
362 status = PSA_ERROR_NOT_SUPPORTED;
363 break;
364 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200365#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200366 status = test_transparent_generate_key( attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100367 slot->key.data,
368 slot->key.bytes,
369 &slot->key.bytes );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200370 /* Declared with fallback == true */
371 if( status != PSA_ERROR_NOT_SUPPORTED )
372 break;
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200373#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200374 /* Fell through, meaning no accelerator supports this operation */
375 status = PSA_ERROR_NOT_SUPPORTED;
376 break;
377 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200378#if defined(PSA_CRYPTO_DRIVER_TEST)
379 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200380 status = test_opaque_generate_key( attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100381 slot->key.data,
382 slot->key.bytes,
383 &slot->key.bytes );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200384 break;
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200385#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200386 default:
387 /* Key is declared with a lifetime not known to us */
388 status = PSA_ERROR_INVALID_ARGUMENT;
389 break;
390 }
391
392 if( status != PSA_SUCCESS )
393 {
394 /* free allocated buffer */
Ronald Cronea0f8a62020-11-25 17:52:23 +0100395 mbedtls_free( slot->key.data );
396 slot->key.data = NULL;
397 slot->key.bytes = 0;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200398 }
399
400 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200401#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200402 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200403#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
404#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200405 (void) attributes;
406 (void) slot;
407
Steven Cooreman56250fd2020-09-04 13:07:15 +0200408 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200409#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200410}
411
Ronald Cron83282872020-11-22 14:02:39 +0100412psa_status_t psa_driver_wrapper_import_key(
413 const psa_key_attributes_t *attributes,
414 const uint8_t *data,
415 size_t data_length,
416 uint8_t *key_buffer,
417 size_t key_buffer_size,
418 size_t *key_buffer_length,
419 size_t *bits )
Steven Cooreman04524762020-10-13 17:43:44 +0200420{
421#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
422 psa_status_t status = PSA_ERROR_CORRUPTION_DETECTED;
423 /* Try accelerators in turn */
424#if defined(PSA_CRYPTO_DRIVER_TEST)
Ronald Cron83282872020-11-22 14:02:39 +0100425 status = test_transparent_import_key( attributes,
426 data, data_length,
427 key_buffer, key_buffer_size,
428 key_buffer_length, bits );
Steven Cooreman04524762020-10-13 17:43:44 +0200429 /* Declared with fallback == true */
430 if( status != PSA_ERROR_NOT_SUPPORTED )
431 return( status );
432#endif /* PSA_CRYPTO_DRIVER_TEST */
433
434 return( PSA_ERROR_NOT_SUPPORTED );
435#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
436 (void) attributes;
437 (void) data;
438 (void) data_length;
Ronald Cron83282872020-11-22 14:02:39 +0100439 (void) key_buffer;
440 (void) key_buffer_size;
441 (void) key_buffer_length;
Steven Cooreman04524762020-10-13 17:43:44 +0200442 (void) bits;
443 return( PSA_ERROR_NOT_SUPPORTED );
444#endif /* PSA_CRYPTO_DRIVER_PRESENT */
445}
446
Ronald Cron67227982020-11-26 15:16:05 +0100447psa_status_t psa_driver_wrapper_export_key(
448 const psa_key_attributes_t *attributes,
449 const uint8_t *key_buffer, size_t key_buffer_size,
450 uint8_t *data, size_t data_size, size_t *data_length )
451
452{
453 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
454 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(
455 psa_get_key_lifetime( attributes ) );
456
Ronald Cron152e3f82020-11-26 16:06:41 +0100457 /* Try dynamically-registered SE interface first */
458#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
459 const psa_drv_se_t *drv;
460 psa_drv_se_context_t *drv_context;
461
462 if( psa_get_se_driver( attributes->core.lifetime, &drv, &drv_context ) )
463 {
464 if( ( drv->key_management == NULL ) ||
465 ( drv->key_management->p_export == NULL ) )
466 return( PSA_ERROR_NOT_SUPPORTED );
467
468 return( drv->key_management->p_export(
469 drv_context,
470 *( (psa_key_slot_number_t *)key_buffer ),
471 data, data_size, data_length ) );
472 }
473#endif /* PSA_CRYPTO_SE_C */
474
Ronald Cron67227982020-11-26 15:16:05 +0100475 switch( location )
476 {
477 case PSA_KEY_LOCATION_LOCAL_STORAGE:
478 return( psa_export_key_internal( attributes,
479 key_buffer,
480 key_buffer_size,
481 data,
482 data_size,
483 data_length ) );
484
485 /* Add cases for opaque driver here */
486#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
487#if defined(PSA_CRYPTO_DRIVER_TEST)
488 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
489 return( test_opaque_export_key( attributes,
490 key_buffer,
491 key_buffer_size,
492 data,
493 data_size,
494 data_length ) );
495#endif /* PSA_CRYPTO_DRIVER_TEST */
496#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
497 default:
498 /* Key is declared with a lifetime not known to us */
499 return( status );
500 }
501}
502
Ronald Cron84cc9942020-11-25 14:30:05 +0100503psa_status_t psa_driver_wrapper_export_public_key(
504 const psa_key_attributes_t *attributes,
505 const uint8_t *key_buffer, size_t key_buffer_size,
506 uint8_t *data, size_t data_size, size_t *data_length )
507
Steven Cooremanb9b84422020-10-14 14:39:20 +0200508{
Steven Cooremanb9b84422020-10-14 14:39:20 +0200509 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
Ronald Cron84cc9942020-11-25 14:30:05 +0100510 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(
511 psa_get_key_lifetime( attributes ) );
Steven Cooremanb9b84422020-10-14 14:39:20 +0200512
Ronald Cron152e3f82020-11-26 16:06:41 +0100513 /* Try dynamically-registered SE interface first */
514#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
515 const psa_drv_se_t *drv;
516 psa_drv_se_context_t *drv_context;
517
518 if( psa_get_se_driver( attributes->core.lifetime, &drv, &drv_context ) )
519 {
520 if( ( drv->key_management == NULL ) ||
521 ( drv->key_management->p_export_public == NULL ) )
522 return( PSA_ERROR_NOT_SUPPORTED );
523
524 return( drv->key_management->p_export_public(
525 drv_context,
526 *( (psa_key_slot_number_t *)key_buffer ),
527 data, data_size, data_length ) );
528 }
529#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
530
Steven Cooremanb9b84422020-10-14 14:39:20 +0200531 switch( location )
532 {
533 case PSA_KEY_LOCATION_LOCAL_STORAGE:
534 /* Key is stored in the slot in export representation, so
535 * cycle through all known transparent accelerators */
Ronald Cron67227982020-11-26 15:16:05 +0100536#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanb9b84422020-10-14 14:39:20 +0200537#if defined(PSA_CRYPTO_DRIVER_TEST)
Ronald Cron84cc9942020-11-25 14:30:05 +0100538 status = test_transparent_export_public_key( attributes,
539 key_buffer,
540 key_buffer_size,
Steven Cooremanb9b84422020-10-14 14:39:20 +0200541 data,
542 data_size,
543 data_length );
544 /* Declared with fallback == true */
545 if( status != PSA_ERROR_NOT_SUPPORTED )
546 return( status );
547#endif /* PSA_CRYPTO_DRIVER_TEST */
Ronald Cron67227982020-11-26 15:16:05 +0100548#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooremanb9b84422020-10-14 14:39:20 +0200549 /* Fell through, meaning no accelerator supports this operation */
Ronald Cron67227982020-11-26 15:16:05 +0100550 return( psa_export_public_key_internal( attributes,
551 key_buffer,
552 key_buffer_size,
553 data,
554 data_size,
555 data_length ) );
556
Steven Cooremanb9b84422020-10-14 14:39:20 +0200557 /* Add cases for opaque driver here */
Ronald Cron67227982020-11-26 15:16:05 +0100558#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanb9b84422020-10-14 14:39:20 +0200559#if defined(PSA_CRYPTO_DRIVER_TEST)
560 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Ronald Cron84cc9942020-11-25 14:30:05 +0100561 return( test_opaque_export_public_key( attributes,
562 key_buffer,
563 key_buffer_size,
Steven Cooremanb9b84422020-10-14 14:39:20 +0200564 data,
565 data_size,
566 data_length ) );
567#endif /* PSA_CRYPTO_DRIVER_TEST */
Ronald Cron67227982020-11-26 15:16:05 +0100568#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooremanb9b84422020-10-14 14:39:20 +0200569 default:
570 /* Key is declared with a lifetime not known to us */
571 return( status );
572 }
Steven Cooremanb9b84422020-10-14 14:39:20 +0200573}
574
Steven Cooreman37941cb2020-07-28 18:49:51 +0200575/*
576 * Cipher functions
577 */
578psa_status_t psa_driver_wrapper_cipher_encrypt(
579 psa_key_slot_t *slot,
580 psa_algorithm_t alg,
581 const uint8_t *input,
582 size_t input_length,
583 uint8_t *output,
584 size_t output_size,
585 size_t *output_length )
586{
587#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
588 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
589 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
590 psa_key_attributes_t attributes = {
591 .core = slot->attr
592 };
593
594 switch( location )
595 {
596 case PSA_KEY_LOCATION_LOCAL_STORAGE:
597 /* Key is stored in the slot in export representation, so
598 * cycle through all known transparent accelerators */
599#if defined(PSA_CRYPTO_DRIVER_TEST)
600 status = test_transparent_cipher_encrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100601 slot->key.data,
602 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200603 alg,
604 input,
605 input_length,
606 output,
607 output_size,
608 output_length );
609 /* Declared with fallback == true */
610 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200611 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200612#endif /* PSA_CRYPTO_DRIVER_TEST */
613 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200614 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200615 /* Add cases for opaque driver here */
616#if defined(PSA_CRYPTO_DRIVER_TEST)
617 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
618 return( test_opaque_cipher_encrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100619 slot->key.data,
620 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200621 alg,
622 input,
623 input_length,
624 output,
625 output_size,
626 output_length ) );
627#endif /* PSA_CRYPTO_DRIVER_TEST */
628 default:
629 /* Key is declared with a lifetime not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200630 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200631 }
632#else /* PSA_CRYPTO_DRIVER_PRESENT */
633 (void) slot;
634 (void) alg;
635 (void) input;
636 (void) input_length;
637 (void) output;
638 (void) output_size;
639 (void) output_length;
640
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200641 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200642#endif /* PSA_CRYPTO_DRIVER_PRESENT */
643}
644
645psa_status_t psa_driver_wrapper_cipher_decrypt(
646 psa_key_slot_t *slot,
647 psa_algorithm_t alg,
648 const uint8_t *input,
649 size_t input_length,
650 uint8_t *output,
651 size_t output_size,
652 size_t *output_length )
653{
654#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
655 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
656 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
657 psa_key_attributes_t attributes = {
658 .core = slot->attr
659 };
660
661 switch( location )
662 {
663 case PSA_KEY_LOCATION_LOCAL_STORAGE:
664 /* Key is stored in the slot in export representation, so
665 * cycle through all known transparent accelerators */
666#if defined(PSA_CRYPTO_DRIVER_TEST)
667 status = test_transparent_cipher_decrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100668 slot->key.data,
669 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200670 alg,
671 input,
672 input_length,
673 output,
674 output_size,
675 output_length );
676 /* Declared with fallback == true */
677 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200678 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200679#endif /* PSA_CRYPTO_DRIVER_TEST */
680 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200681 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200682 /* Add cases for opaque driver here */
683#if defined(PSA_CRYPTO_DRIVER_TEST)
684 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
685 return( test_opaque_cipher_decrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100686 slot->key.data,
687 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200688 alg,
689 input,
690 input_length,
691 output,
692 output_size,
693 output_length ) );
694#endif /* PSA_CRYPTO_DRIVER_TEST */
695 default:
696 /* Key is declared with a lifetime not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200697 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200698 }
699#else /* PSA_CRYPTO_DRIVER_PRESENT */
700 (void) slot;
701 (void) alg;
702 (void) input;
703 (void) input_length;
704 (void) output;
705 (void) output_size;
706 (void) output_length;
707
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200708 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200709#endif /* PSA_CRYPTO_DRIVER_PRESENT */
710}
711
712psa_status_t psa_driver_wrapper_cipher_encrypt_setup(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200713 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200714 psa_key_slot_t *slot,
715 psa_algorithm_t alg )
716{
717#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
718 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
719 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
720 psa_key_attributes_t attributes = {
721 .core = slot->attr
722 };
723
Steven Cooreman37941cb2020-07-28 18:49:51 +0200724 switch( location )
725 {
726 case PSA_KEY_LOCATION_LOCAL_STORAGE:
727 /* Key is stored in the slot in export representation, so
728 * cycle through all known transparent accelerators */
729#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200730 operation->ctx = mbedtls_calloc( 1, sizeof(test_transparent_cipher_operation_t) );
731 if( operation->ctx == NULL )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200732 return PSA_ERROR_INSUFFICIENT_MEMORY;
733
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200734 status = test_transparent_cipher_encrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200735 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100736 slot->key.data,
737 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200738 alg );
739 /* Declared with fallback == true */
Steven Cooreman150c99b2020-09-09 14:32:44 +0200740 if( status == PSA_SUCCESS )
741 operation->id = PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200742 else
743 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200744 mbedtls_platform_zeroize(
745 operation->ctx,
746 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200747 mbedtls_free( operation->ctx );
748 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200749 }
Steven Cooreman150c99b2020-09-09 14:32:44 +0200750
751 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200752#endif /* PSA_CRYPTO_DRIVER_TEST */
753 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200754 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200755 /* Add cases for opaque driver here */
756#if defined(PSA_CRYPTO_DRIVER_TEST)
757 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200758 operation->ctx = mbedtls_calloc( 1, sizeof(test_opaque_cipher_operation_t) );
759 if( operation->ctx == NULL )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200760 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200761
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200762 status = test_opaque_cipher_encrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200763 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100764 slot->key.data,
765 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200766 alg );
767 if( status == PSA_SUCCESS )
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200768 operation->id = PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200769 else
770 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200771 mbedtls_platform_zeroize(
772 operation->ctx,
773 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200774 mbedtls_free( operation->ctx );
775 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200776 }
777
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200778 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200779#endif /* PSA_CRYPTO_DRIVER_TEST */
780 default:
781 /* Key is declared with a lifetime not known to us */
John Durkop714e3a12020-09-29 22:07:04 -0700782 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200783 }
784#else /* PSA_CRYPTO_DRIVER_PRESENT */
785 (void)slot;
786 (void)alg;
787 (void)operation;
788
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200789 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200790#endif /* PSA_CRYPTO_DRIVER_PRESENT */
791}
792
793psa_status_t psa_driver_wrapper_cipher_decrypt_setup(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200794 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200795 psa_key_slot_t *slot,
796 psa_algorithm_t alg )
797{
798#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
799 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
800 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
801 psa_key_attributes_t attributes = {
802 .core = slot->attr
803 };
804
Steven Cooreman37941cb2020-07-28 18:49:51 +0200805 switch( location )
806 {
807 case PSA_KEY_LOCATION_LOCAL_STORAGE:
808 /* Key is stored in the slot in export representation, so
809 * cycle through all known transparent accelerators */
810#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200811 operation->ctx = mbedtls_calloc( 1, sizeof(test_transparent_cipher_operation_t) );
812 if( operation->ctx == NULL )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200813 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200814
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200815 status = test_transparent_cipher_decrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200816 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100817 slot->key.data,
818 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200819 alg );
820 /* Declared with fallback == true */
Steven Cooreman150c99b2020-09-09 14:32:44 +0200821 if( status == PSA_SUCCESS )
822 operation->id = PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200823 else
824 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200825 mbedtls_platform_zeroize(
826 operation->ctx,
827 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200828 mbedtls_free( operation->ctx );
829 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200830 }
Steven Cooreman150c99b2020-09-09 14:32:44 +0200831
832 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200833#endif /* PSA_CRYPTO_DRIVER_TEST */
834 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200835 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200836 /* Add cases for opaque driver here */
837#if defined(PSA_CRYPTO_DRIVER_TEST)
838 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200839 operation->ctx = mbedtls_calloc( 1, sizeof(test_opaque_cipher_operation_t) );
840 if( operation->ctx == NULL )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200841 return PSA_ERROR_INSUFFICIENT_MEMORY;
842
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200843 status = test_opaque_cipher_decrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200844 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100845 slot->key.data,
846 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200847 alg );
848 if( status == PSA_SUCCESS )
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200849 operation->id = PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200850 else
851 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200852 mbedtls_platform_zeroize(
853 operation->ctx,
854 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200855 mbedtls_free( operation->ctx );
856 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200857 }
858
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200859 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200860#endif /* PSA_CRYPTO_DRIVER_TEST */
861 default:
862 /* Key is declared with a lifetime not known to us */
John Durkop814dca72020-10-05 06:31:12 -0700863 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200864 }
865#else /* PSA_CRYPTO_DRIVER_PRESENT */
866 (void)slot;
867 (void)alg;
868 (void)operation;
869
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200870 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200871#endif /* PSA_CRYPTO_DRIVER_PRESENT */
872}
873
874psa_status_t psa_driver_wrapper_cipher_generate_iv(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200875 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200876 uint8_t *iv,
877 size_t iv_size,
878 size_t *iv_length )
879{
880#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200881 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200882 {
883#if defined(PSA_CRYPTO_DRIVER_TEST)
884 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200885 return( test_transparent_cipher_generate_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200886 iv,
887 iv_size,
888 iv_length ) );
889#endif /* PSA_CRYPTO_DRIVER_TEST */
890#if defined(PSA_CRYPTO_DRIVER_TEST)
891 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200892 return( test_opaque_cipher_generate_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200893 iv,
894 iv_size,
895 iv_length ) );
896#endif /* PSA_CRYPTO_DRIVER_TEST */
897 default:
898 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200899 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200900 }
901#else /* PSA_CRYPTO_DRIVER_PRESENT */
902 (void) operation;
903 (void) iv;
904 (void) iv_size;
905 (void) iv_length;
906
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200907 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200908#endif /* PSA_CRYPTO_DRIVER_PRESENT */
909}
910
911psa_status_t psa_driver_wrapper_cipher_set_iv(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200912 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200913 const uint8_t *iv,
914 size_t iv_length )
915{
916#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200917 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200918 {
919#if defined(PSA_CRYPTO_DRIVER_TEST)
920 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200921 return( test_transparent_cipher_set_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200922 iv,
923 iv_length ) );
924#endif /* PSA_CRYPTO_DRIVER_TEST */
925#if defined(PSA_CRYPTO_DRIVER_TEST)
926 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200927 return( test_opaque_cipher_set_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200928 iv,
929 iv_length ) );
930#endif /* PSA_CRYPTO_DRIVER_TEST */
931 default:
932 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200933 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200934 }
935#else /* PSA_CRYPTO_DRIVER_PRESENT */
936 (void) operation;
937 (void) iv;
938 (void) iv_length;
939
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200940 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200941#endif /* PSA_CRYPTO_DRIVER_PRESENT */
942}
943
944psa_status_t psa_driver_wrapper_cipher_update(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200945 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200946 const uint8_t *input,
947 size_t input_length,
948 uint8_t *output,
949 size_t output_size,
950 size_t *output_length )
951{
952#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200953 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200954 {
955#if defined(PSA_CRYPTO_DRIVER_TEST)
956 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200957 return( test_transparent_cipher_update( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200958 input,
959 input_length,
960 output,
961 output_size,
962 output_length ) );
963#endif /* PSA_CRYPTO_DRIVER_TEST */
964#if defined(PSA_CRYPTO_DRIVER_TEST)
965 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200966 return( test_opaque_cipher_update( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200967 input,
968 input_length,
969 output,
970 output_size,
971 output_length ) );
972#endif /* PSA_CRYPTO_DRIVER_TEST */
973 default:
974 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200975 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200976 }
977#else /* PSA_CRYPTO_DRIVER_PRESENT */
978 (void) operation;
979 (void) input;
980 (void) input_length;
981 (void) output;
982 (void) output_length;
983 (void) output_size;
984
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200985 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200986#endif /* PSA_CRYPTO_DRIVER_PRESENT */
987}
988
989psa_status_t psa_driver_wrapper_cipher_finish(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200990 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200991 uint8_t *output,
992 size_t output_size,
993 size_t *output_length )
994{
995#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200996 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200997 {
998#if defined(PSA_CRYPTO_DRIVER_TEST)
999 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001000 return( test_transparent_cipher_finish( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +02001001 output,
1002 output_size,
1003 output_length ) );
1004#endif /* PSA_CRYPTO_DRIVER_TEST */
1005#if defined(PSA_CRYPTO_DRIVER_TEST)
1006 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001007 return( test_opaque_cipher_finish( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +02001008 output,
1009 output_size,
1010 output_length ) );
1011#endif /* PSA_CRYPTO_DRIVER_TEST */
1012 default:
1013 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001014 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001015 }
1016#else /* PSA_CRYPTO_DRIVER_PRESENT */
1017 (void) operation;
1018 (void) output;
1019 (void) output_size;
1020 (void) output_length;
1021
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001022 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001023#endif /* PSA_CRYPTO_DRIVER_PRESENT */
1024}
1025
1026psa_status_t psa_driver_wrapper_cipher_abort(
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001027 psa_operation_driver_context_t *operation )
Steven Cooreman37941cb2020-07-28 18:49:51 +02001028{
1029#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
1030 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001031
1032 /* The object has (apparently) been initialized but it is not in use. It's
1033 * ok to call abort on such an object, and there's nothing to do. */
1034 if( operation->ctx == NULL && operation->id == 0 )
1035 return( PSA_SUCCESS );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001036
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001037 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +02001038 {
1039#if defined(PSA_CRYPTO_DRIVER_TEST)
1040 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001041 status = test_transparent_cipher_abort( operation->ctx );
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001042 mbedtls_platform_zeroize(
1043 operation->ctx,
1044 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001045 mbedtls_free( operation->ctx );
1046 operation->ctx = NULL;
1047 operation->id = 0;
Steven Cooreman37941cb2020-07-28 18:49:51 +02001048
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001049 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001050#endif /* PSA_CRYPTO_DRIVER_TEST */
1051#if defined(PSA_CRYPTO_DRIVER_TEST)
1052 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001053 status = test_opaque_cipher_abort( operation->ctx );
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001054 mbedtls_platform_zeroize(
1055 operation->ctx,
1056 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001057 mbedtls_free( operation->ctx );
1058 operation->ctx = NULL;
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001059 operation->id = 0;
Steven Cooreman37941cb2020-07-28 18:49:51 +02001060
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001061 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001062#endif /* PSA_CRYPTO_DRIVER_TEST */
1063 default:
1064 /* Operation is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001065 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001066 }
1067#else /* PSA_CRYPTO_DRIVER_PRESENT */
1068 (void)operation;
1069
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001070 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001071#endif /* PSA_CRYPTO_DRIVER_PRESENT */
1072}
1073
Steven Cooremancd84cb42020-07-16 20:28:36 +02001074/* End of automatically generated file. */