| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 1 | /** | 
|  | 2 | * \file entropy.h | 
|  | 3 | * | 
|  | 4 | * \brief Entropy accumulator implementation | 
| Darryl Green | a40a101 | 2018-01-05 15:33:17 +0000 | [diff] [blame] | 5 | */ | 
|  | 6 | /* | 
| Bence Szépkúti | 1e14827 | 2020-08-07 13:07:28 +0200 | [diff] [blame] | 7 | *  Copyright The Mbed TLS Contributors | 
| Manuel Pégourié-Gonnard | 37ff140 | 2015-09-04 14:21:07 +0200 | [diff] [blame] | 8 | *  SPDX-License-Identifier: Apache-2.0 | 
|  | 9 | * | 
|  | 10 | *  Licensed under the Apache License, Version 2.0 (the "License"); you may | 
|  | 11 | *  not use this file except in compliance with the License. | 
|  | 12 | *  You may obtain a copy of the License at | 
|  | 13 | * | 
|  | 14 | *  http://www.apache.org/licenses/LICENSE-2.0 | 
|  | 15 | * | 
|  | 16 | *  Unless required by applicable law or agreed to in writing, software | 
|  | 17 | *  distributed under the License is distributed on an "AS IS" BASIS, WITHOUT | 
|  | 18 | *  WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. | 
|  | 19 | *  See the License for the specific language governing permissions and | 
|  | 20 | *  limitations under the License. | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 21 | */ | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 22 | #ifndef MBEDTLS_ENTROPY_H | 
|  | 23 | #define MBEDTLS_ENTROPY_H | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 24 | #include "mbedtls/private_access.h" | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 25 |  | 
| Bence Szépkúti | c662b36 | 2021-05-27 11:25:03 +0200 | [diff] [blame] | 26 | #include "mbedtls/build_info.h" | 
| Paul Bakker | 28c7e7f | 2011-12-15 19:49:30 +0000 | [diff] [blame] | 27 |  | 
| Rich Evans | 00ab470 | 2015-02-06 13:43:58 +0000 | [diff] [blame] | 28 | #include <stddef.h> | 
|  | 29 |  | 
| Manuel Pégourié-Gonnard | 5cd4b64 | 2023-02-02 13:14:59 +0100 | [diff] [blame] | 30 | #include "md.h" | 
|  | 31 |  | 
|  | 32 | #if defined(MBEDTLS_MD_CAN_SHA512) && !defined(MBEDTLS_ENTROPY_FORCE_SHA256) | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 33 | #define MBEDTLS_ENTROPY_SHA512_ACCUMULATOR | 
| Manuel Pégourié-Gonnard | 5cd4b64 | 2023-02-02 13:14:59 +0100 | [diff] [blame] | 34 | #define MBEDTLS_ENTROPY_MD  MBEDTLS_MD_SHA512 | 
|  | 35 | #define MBEDTLS_ENTROPY_BLOCK_SIZE      64      /**< Block size of entropy accumulator (SHA-512) */ | 
| Paul Bakker | fb08fd2 | 2013-08-27 15:06:26 +0200 | [diff] [blame] | 36 | #else | 
| Manuel Pégourié-Gonnard | 5cd4b64 | 2023-02-02 13:14:59 +0100 | [diff] [blame] | 37 | #if defined(MBEDTLS_MD_CAN_SHA256) | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 38 | #define MBEDTLS_ENTROPY_SHA256_ACCUMULATOR | 
| Manuel Pégourié-Gonnard | 5cd4b64 | 2023-02-02 13:14:59 +0100 | [diff] [blame] | 39 | #define MBEDTLS_ENTROPY_MD  MBEDTLS_MD_SHA256 | 
|  | 40 | #define MBEDTLS_ENTROPY_BLOCK_SIZE      32      /**< Block size of entropy accumulator (SHA-256) */ | 
| Paul Bakker | fb08fd2 | 2013-08-27 15:06:26 +0200 | [diff] [blame] | 41 | #endif | 
|  | 42 | #endif | 
|  | 43 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 44 | #if defined(MBEDTLS_THREADING_C) | 
| Jaeden Amero | c49fbbf | 2019-07-04 20:01:14 +0100 | [diff] [blame] | 45 | #include "mbedtls/threading.h" | 
| Paul Bakker | f4e7dc5 | 2013-09-28 15:23:57 +0200 | [diff] [blame] | 46 | #endif | 
|  | 47 |  | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 48 |  | 
| Gilles Peskine | d297157 | 2021-07-26 18:48:10 +0200 | [diff] [blame] | 49 | /** Critical entropy source failure. */ | 
|  | 50 | #define MBEDTLS_ERR_ENTROPY_SOURCE_FAILED                 -0x003C | 
|  | 51 | /** No more sources can be added. */ | 
|  | 52 | #define MBEDTLS_ERR_ENTROPY_MAX_SOURCES                   -0x003E | 
|  | 53 | /** No sources have been added to poll. */ | 
|  | 54 | #define MBEDTLS_ERR_ENTROPY_NO_SOURCES_DEFINED            -0x0040 | 
|  | 55 | /** No strong sources have been added to poll. */ | 
|  | 56 | #define MBEDTLS_ERR_ENTROPY_NO_STRONG_SOURCE              -0x003D | 
|  | 57 | /** Read/write error in file. */ | 
|  | 58 | #define MBEDTLS_ERR_ENTROPY_FILE_IO_ERROR                 -0x003F | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 59 |  | 
| Paul Bakker | 088c5c5 | 2014-04-25 11:11:10 +0200 | [diff] [blame] | 60 | /** | 
|  | 61 | * \name SECTION: Module settings | 
|  | 62 | * | 
|  | 63 | * The configuration options you can set for this module are in this section. | 
| Bence Szépkúti | bb0cfeb | 2021-05-28 09:42:25 +0200 | [diff] [blame] | 64 | * Either change them in mbedtls_config.h or define them on the compiler command line. | 
| Paul Bakker | 088c5c5 | 2014-04-25 11:11:10 +0200 | [diff] [blame] | 65 | * \{ | 
|  | 66 | */ | 
|  | 67 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 68 | #if !defined(MBEDTLS_ENTROPY_MAX_SOURCES) | 
|  | 69 | #define MBEDTLS_ENTROPY_MAX_SOURCES     20      /**< Maximum number of sources supported */ | 
| Paul Bakker | 088c5c5 | 2014-04-25 11:11:10 +0200 | [diff] [blame] | 70 | #endif | 
|  | 71 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 72 | #if !defined(MBEDTLS_ENTROPY_MAX_GATHER) | 
|  | 73 | #define MBEDTLS_ENTROPY_MAX_GATHER      128     /**< Maximum amount requested from entropy sources */ | 
| Paul Bakker | 088c5c5 | 2014-04-25 11:11:10 +0200 | [diff] [blame] | 74 | #endif | 
|  | 75 |  | 
| Andrzej Kurek | 38d4fdd | 2021-12-28 16:22:52 +0100 | [diff] [blame] | 76 | /** \} name SECTION: Module settings */ | 
| Paul Bakker | 9bcf16c | 2013-06-24 19:31:17 +0200 | [diff] [blame] | 77 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 78 | #define MBEDTLS_ENTROPY_MAX_SEED_SIZE   1024    /**< Maximum size of seed we read from seed file */ | 
|  | 79 | #define MBEDTLS_ENTROPY_SOURCE_MANUAL   MBEDTLS_ENTROPY_MAX_SOURCES | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 80 |  | 
| Manuel Pégourié-Gonnard | 7580ba4 | 2015-06-19 10:26:32 +0200 | [diff] [blame] | 81 | #define MBEDTLS_ENTROPY_SOURCE_STRONG   1       /**< Entropy source is strong   */ | 
|  | 82 | #define MBEDTLS_ENTROPY_SOURCE_WEAK     0       /**< Entropy source is weak     */ | 
|  | 83 |  | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 84 | #ifdef __cplusplus | 
|  | 85 | extern "C" { | 
|  | 86 | #endif | 
|  | 87 |  | 
|  | 88 | /** | 
|  | 89 | * \brief           Entropy poll callback pointer | 
|  | 90 | * | 
|  | 91 | * \param data      Callback-specific data pointer | 
|  | 92 | * \param output    Data to fill | 
|  | 93 | * \param len       Maximum size to provide | 
|  | 94 | * \param olen      The actual amount of bytes put into the buffer (Can be 0) | 
|  | 95 | * | 
|  | 96 | * \return          0 if no critical failures occurred, | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 97 | *                  MBEDTLS_ERR_ENTROPY_SOURCE_FAILED otherwise | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 98 | */ | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 99 | typedef int (*mbedtls_entropy_f_source_ptr)(void *data, unsigned char *output, size_t len, | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 100 | size_t *olen); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 101 |  | 
|  | 102 | /** | 
| Paul Bakker | bd4a9d0 | 2011-12-10 17:02:19 +0000 | [diff] [blame] | 103 | * \brief           Entropy source state | 
|  | 104 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 105 | typedef struct mbedtls_entropy_source_state { | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 106 | mbedtls_entropy_f_source_ptr    MBEDTLS_PRIVATE(f_source);   /**< The entropy source callback */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 107 | void *MBEDTLS_PRIVATE(p_source);             /**< The callback data pointer */ | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 108 | size_t          MBEDTLS_PRIVATE(size);       /**< Amount received in bytes */ | 
|  | 109 | size_t          MBEDTLS_PRIVATE(threshold);  /**< Minimum bytes required before release */ | 
|  | 110 | int             MBEDTLS_PRIVATE(strong);     /**< Is the source strong? */ | 
| Paul Bakker | bd4a9d0 | 2011-12-10 17:02:19 +0000 | [diff] [blame] | 111 | } | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 112 | mbedtls_entropy_source_state; | 
| Paul Bakker | bd4a9d0 | 2011-12-10 17:02:19 +0000 | [diff] [blame] | 113 |  | 
|  | 114 | /** | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 115 | * \brief           Entropy context structure | 
|  | 116 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 117 | typedef struct mbedtls_entropy_context { | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 118 | int MBEDTLS_PRIVATE(accumulator_started); /* 0 after init. | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 119 | * 1 after the first update. | 
|  | 120 | * -1 after free. */ | 
| Manuel Pégourié-Gonnard | 5cd4b64 | 2023-02-02 13:14:59 +0100 | [diff] [blame] | 121 | mbedtls_md_context_t  MBEDTLS_PRIVATE(accumulator); | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 122 | int             MBEDTLS_PRIVATE(source_count); /* Number of entries used in source. */ | 
|  | 123 | mbedtls_entropy_source_state    MBEDTLS_PRIVATE(source)[MBEDTLS_ENTROPY_MAX_SOURCES]; | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 124 | #if defined(MBEDTLS_THREADING_C) | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 125 | mbedtls_threading_mutex_t MBEDTLS_PRIVATE(mutex);    /*!< mutex                  */ | 
| Paul Bakker | f4e7dc5 | 2013-09-28 15:23:57 +0200 | [diff] [blame] | 126 | #endif | 
| Paul Bakker | 9602923 | 2016-06-01 15:25:50 +0100 | [diff] [blame] | 127 | #if defined(MBEDTLS_ENTROPY_NV_SEED) | 
| Mateusz Starzyk | 846f021 | 2021-05-19 19:44:07 +0200 | [diff] [blame] | 128 | int MBEDTLS_PRIVATE(initial_entropy_run); | 
| Paul Bakker | 9602923 | 2016-06-01 15:25:50 +0100 | [diff] [blame] | 129 | #endif | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 130 | } | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 131 | mbedtls_entropy_context; | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 132 |  | 
| Chris Jones | a1df494 | 2021-03-11 17:44:43 +0000 | [diff] [blame] | 133 | #if !defined(MBEDTLS_NO_PLATFORM_ENTROPY) | 
|  | 134 | /** | 
|  | 135 | * \brief           Platform-specific entropy poll callback | 
|  | 136 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 137 | int mbedtls_platform_entropy_poll(void *data, | 
|  | 138 | unsigned char *output, size_t len, size_t *olen); | 
| Chris Jones | a1df494 | 2021-03-11 17:44:43 +0000 | [diff] [blame] | 139 | #endif | 
|  | 140 |  | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 141 | /** | 
|  | 142 | * \brief           Initialize the context | 
|  | 143 | * | 
|  | 144 | * \param ctx       Entropy context to initialize | 
|  | 145 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 146 | void mbedtls_entropy_init(mbedtls_entropy_context *ctx); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 147 |  | 
|  | 148 | /** | 
| Paul Bakker | 1ffefac | 2013-09-28 15:23:03 +0200 | [diff] [blame] | 149 | * \brief           Free the data in the context | 
|  | 150 | * | 
|  | 151 | * \param ctx       Entropy context to free | 
|  | 152 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 153 | void mbedtls_entropy_free(mbedtls_entropy_context *ctx); | 
| Paul Bakker | 1ffefac | 2013-09-28 15:23:03 +0200 | [diff] [blame] | 154 |  | 
|  | 155 | /** | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 156 | * \brief           Adds an entropy source to poll | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 157 | *                  (Thread-safe if MBEDTLS_THREADING_C is enabled) | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 158 | * | 
|  | 159 | * \param ctx       Entropy context | 
|  | 160 | * \param f_source  Entropy function | 
|  | 161 | * \param p_source  Function data | 
| Paul Bakker | bd4a9d0 | 2011-12-10 17:02:19 +0000 | [diff] [blame] | 162 | * \param threshold Minimum required from source before entropy is released | 
| Manuel Pégourié-Gonnard | bf82ff0 | 2015-06-19 09:40:51 +0200 | [diff] [blame] | 163 | *                  ( with mbedtls_entropy_func() ) (in bytes) | 
| Manuel Pégourié-Gonnard | 7580ba4 | 2015-06-19 10:26:32 +0200 | [diff] [blame] | 164 | * \param strong    MBEDTLS_ENTROPY_SOURCE_STRONG or | 
| Darryl Green | 11999bb | 2018-03-13 15:22:58 +0000 | [diff] [blame] | 165 | *                  MBEDTLS_ENTROPY_SOURCE_WEAK. | 
| Manuel Pégourié-Gonnard | 7580ba4 | 2015-06-19 10:26:32 +0200 | [diff] [blame] | 166 | *                  At least one strong source needs to be added. | 
|  | 167 | *                  Weaker sources (such as the cycle counter) can be used as | 
|  | 168 | *                  a complement. | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 169 | * | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 170 | * \return          0 if successful or MBEDTLS_ERR_ENTROPY_MAX_SOURCES | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 171 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 172 | int mbedtls_entropy_add_source(mbedtls_entropy_context *ctx, | 
|  | 173 | mbedtls_entropy_f_source_ptr f_source, void *p_source, | 
|  | 174 | size_t threshold, int strong); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 175 |  | 
|  | 176 | /** | 
|  | 177 | * \brief           Trigger an extra gather poll for the accumulator | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 178 | *                  (Thread-safe if MBEDTLS_THREADING_C is enabled) | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 179 | * | 
|  | 180 | * \param ctx       Entropy context | 
|  | 181 | * | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 182 | * \return          0 if successful, or MBEDTLS_ERR_ENTROPY_SOURCE_FAILED | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 183 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 184 | int mbedtls_entropy_gather(mbedtls_entropy_context *ctx); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 185 |  | 
|  | 186 | /** | 
| Paul Bakker | b9e4e2c | 2014-05-01 14:18:25 +0200 | [diff] [blame] | 187 | * \brief           Retrieve entropy from the accumulator | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 188 | *                  (Maximum length: MBEDTLS_ENTROPY_BLOCK_SIZE) | 
|  | 189 | *                  (Thread-safe if MBEDTLS_THREADING_C is enabled) | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 190 | * | 
|  | 191 | * \param data      Entropy context | 
|  | 192 | * \param output    Buffer to fill | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 193 | * \param len       Number of bytes desired, must be at most MBEDTLS_ENTROPY_BLOCK_SIZE | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 194 | * | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 195 | * \return          0 if successful, or MBEDTLS_ERR_ENTROPY_SOURCE_FAILED | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 196 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 197 | int mbedtls_entropy_func(void *data, unsigned char *output, size_t len); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 198 |  | 
|  | 199 | /** | 
|  | 200 | * \brief           Add data to the accumulator manually | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 201 | *                  (Thread-safe if MBEDTLS_THREADING_C is enabled) | 
| Paul Bakker | 9af723c | 2014-05-01 13:03:14 +0200 | [diff] [blame] | 202 | * | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 203 | * \param ctx       Entropy context | 
|  | 204 | * \param data      Data to add | 
|  | 205 | * \param len       Length of data | 
|  | 206 | * | 
|  | 207 | * \return          0 if successful | 
|  | 208 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 209 | int mbedtls_entropy_update_manual(mbedtls_entropy_context *ctx, | 
|  | 210 | const unsigned char *data, size_t len); | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 211 |  | 
| Paul Bakker | 7da3071 | 2016-06-01 11:30:54 +0100 | [diff] [blame] | 212 | #if defined(MBEDTLS_ENTROPY_NV_SEED) | 
|  | 213 | /** | 
|  | 214 | * \brief           Trigger an update of the seed file in NV by using the | 
|  | 215 | *                  current entropy pool. | 
|  | 216 | * | 
|  | 217 | * \param ctx       Entropy context | 
|  | 218 | * | 
|  | 219 | * \return          0 if successful | 
|  | 220 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 221 | int mbedtls_entropy_update_nv_seed(mbedtls_entropy_context *ctx); | 
| Paul Bakker | 7da3071 | 2016-06-01 11:30:54 +0100 | [diff] [blame] | 222 | #endif /* MBEDTLS_ENTROPY_NV_SEED */ | 
|  | 223 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 224 | #if defined(MBEDTLS_FS_IO) | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 225 | /** | 
|  | 226 | * \brief               Write a seed file | 
|  | 227 | * | 
|  | 228 | * \param ctx           Entropy context | 
|  | 229 | * \param path          Name of the file | 
|  | 230 | * | 
|  | 231 | * \return              0 if successful, | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 232 | *                      MBEDTLS_ERR_ENTROPY_FILE_IO_ERROR on file error, or | 
|  | 233 | *                      MBEDTLS_ERR_ENTROPY_SOURCE_FAILED | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 234 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 235 | int mbedtls_entropy_write_seed_file(mbedtls_entropy_context *ctx, const char *path); | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 236 |  | 
|  | 237 | /** | 
|  | 238 | * \brief               Read and update a seed file. Seed is added to this | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 239 | *                      instance. No more than MBEDTLS_ENTROPY_MAX_SEED_SIZE bytes are | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 240 | *                      read from the seed file. The rest is ignored. | 
|  | 241 | * | 
|  | 242 | * \param ctx           Entropy context | 
|  | 243 | * \param path          Name of the file | 
|  | 244 | * | 
|  | 245 | * \return              0 if successful, | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 246 | *                      MBEDTLS_ERR_ENTROPY_FILE_IO_ERROR on file error, | 
|  | 247 | *                      MBEDTLS_ERR_ENTROPY_SOURCE_FAILED | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 248 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 249 | int mbedtls_entropy_update_seed_file(mbedtls_entropy_context *ctx, const char *path); | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 250 | #endif /* MBEDTLS_FS_IO */ | 
| Paul Bakker | 66ff70d | 2014-03-26 11:54:05 +0100 | [diff] [blame] | 251 |  | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 252 | #if defined(MBEDTLS_SELF_TEST) | 
| Manuel Pégourié-Gonnard | 4dd7392 | 2014-05-30 10:34:15 +0200 | [diff] [blame] | 253 | /** | 
|  | 254 | * \brief          Checkup routine | 
|  | 255 | * | 
| Andres Amaya Garcia | a928e67 | 2016-09-13 13:30:02 +0100 | [diff] [blame] | 256 | *                 This module self-test also calls the entropy self-test, | 
|  | 257 | *                 mbedtls_entropy_source_self_test(); | 
|  | 258 | * | 
| Manuel Pégourié-Gonnard | 4dd7392 | 2014-05-30 10:34:15 +0200 | [diff] [blame] | 259 | * \return         0 if successful, or 1 if a test failed | 
|  | 260 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 261 | int mbedtls_entropy_self_test(int verbose); | 
| Andres AG | b34e42e | 2016-08-22 11:08:50 +0100 | [diff] [blame] | 262 |  | 
| Andres AG | e7723ec | 2016-08-25 10:18:50 +0100 | [diff] [blame] | 263 | #if defined(MBEDTLS_ENTROPY_HARDWARE_ALT) | 
| Andres AG | b34e42e | 2016-08-22 11:08:50 +0100 | [diff] [blame] | 264 | /** | 
|  | 265 | * \brief          Checkup routine | 
|  | 266 | * | 
| Andres Amaya Garcia | a928e67 | 2016-09-13 13:30:02 +0100 | [diff] [blame] | 267 | *                 Verifies the integrity of the hardware entropy source | 
|  | 268 | *                 provided by the function 'mbedtls_hardware_poll()'. | 
|  | 269 | * | 
|  | 270 | *                 Note this is the only hardware entropy source that is known | 
|  | 271 | *                 at link time, and other entropy sources configured | 
|  | 272 | *                 dynamically at runtime by the function | 
|  | 273 | *                 mbedtls_entropy_add_source() will not be tested. | 
|  | 274 | * | 
| Andres AG | b34e42e | 2016-08-22 11:08:50 +0100 | [diff] [blame] | 275 | * \return         0 if successful, or 1 if a test failed | 
|  | 276 | */ | 
| Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 277 | int mbedtls_entropy_source_self_test(int verbose); | 
| Andres AG | e7723ec | 2016-08-25 10:18:50 +0100 | [diff] [blame] | 278 | #endif /* MBEDTLS_ENTROPY_HARDWARE_ALT */ | 
| Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 279 | #endif /* MBEDTLS_SELF_TEST */ | 
| Manuel Pégourié-Gonnard | 4dd7392 | 2014-05-30 10:34:15 +0200 | [diff] [blame] | 280 |  | 
| Paul Bakker | 6083fd2 | 2011-12-03 21:45:14 +0000 | [diff] [blame] | 281 | #ifdef __cplusplus | 
|  | 282 | } | 
|  | 283 | #endif | 
|  | 284 |  | 
|  | 285 | #endif /* entropy.h */ |