blob: fe54b7b9707e3f977533a0f8f71a778ff4226ff5 [file] [log] [blame]
Steven Cooremancd84cb42020-07-16 20:28:36 +02001/*
2 * Functions to delegate cryptographic operations to an available
3 * and appropriate accelerator.
Steven Cooreman56250fd2020-09-04 13:07:15 +02004 * Warning: This file will be auto-generated in the future.
Steven Cooremancd84cb42020-07-16 20:28:36 +02005 */
Steven Cooreman2c7b2f82020-09-02 13:43:46 +02006/* Copyright The Mbed TLS Contributors
Steven Cooremancd84cb42020-07-16 20:28:36 +02007 * SPDX-License-Identifier: Apache-2.0
8 *
9 * Licensed under the Apache License, Version 2.0 (the "License"); you may
10 * not use this file except in compliance with the License.
11 * You may obtain a copy of the License at
12 *
13 * http://www.apache.org/licenses/LICENSE-2.0
14 *
15 * Unless required by applicable law or agreed to in writing, software
16 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
17 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
18 * See the License for the specific language governing permissions and
19 * limitations under the License.
Steven Cooremancd84cb42020-07-16 20:28:36 +020020 */
21
22#include "psa_crypto_core.h"
23#include "psa_crypto_driver_wrappers.h"
Steven Cooreman2a1664c2020-07-20 15:33:08 +020024#include "mbedtls/platform.h"
25
26#if defined(MBEDTLS_PSA_CRYPTO_DRIVERS)
Steven Cooremancd84cb42020-07-16 20:28:36 +020027
28/* Include test driver definition when running tests */
Steven Cooremanf1720ea2020-07-24 18:41:58 +020029#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman56250fd2020-09-04 13:07:15 +020030#ifndef PSA_CRYPTO_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020031#define PSA_CRYPTO_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020032#endif
33#ifndef PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020034#define PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020035#endif
Steven Cooreman0d7c64d2020-09-07 16:17:55 +020036#include "test/drivers/test_driver.h"
Steven Cooremanf1720ea2020-07-24 18:41:58 +020037#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +020038
Steven Cooreman56250fd2020-09-04 13:07:15 +020039/* Repeat above block for each JSON-declared driver during autogeneration */
40
Steven Cooremanfb81aa52020-09-09 12:01:43 +020041/* Auto-generated values depending on which drivers are registered. ID 0 is
42 * reserved for unallocated operations. */
Steven Cooreman37941cb2020-07-28 18:49:51 +020043#if defined(PSA_CRYPTO_DRIVER_TEST)
44#define PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID (1)
45#define PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID (2)
46#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +020047#endif /* MBEDTLS_PSA_CRYPTO_DRIVERS */
48
49/* Support the 'old' SE interface when asked to */
Steven Cooreman7a250572020-07-17 16:43:05 +020050#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
Steven Cooreman56250fd2020-09-04 13:07:15 +020051/* PSA_CRYPTO_DRIVER_PRESENT is defined when either a new-style or old-style
52 * SE driver is present, to avoid unused argument errors at compile time. */
53#ifndef PSA_CRYPTO_DRIVER_PRESENT
Steven Cooremanf1720ea2020-07-24 18:41:58 +020054#define PSA_CRYPTO_DRIVER_PRESENT
Steven Cooreman56250fd2020-09-04 13:07:15 +020055#endif
Steven Cooreman7a250572020-07-17 16:43:05 +020056#include "psa_crypto_se.h"
57#endif
58
Steven Cooremancd84cb42020-07-16 20:28:36 +020059/* Start delegation functions */
60psa_status_t psa_driver_wrapper_sign_hash( psa_key_slot_t *slot,
61 psa_algorithm_t alg,
62 const uint8_t *hash,
63 size_t hash_length,
64 uint8_t *signature,
65 size_t signature_size,
66 size_t *signature_length )
67{
Steven Cooremanf1720ea2020-07-24 18:41:58 +020068#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman7a250572020-07-17 16:43:05 +020069 /* Try dynamically-registered SE interface first */
70#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
71 const psa_drv_se_t *drv;
72 psa_drv_se_context_t *drv_context;
73
74 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
75 {
76 if( drv->asymmetric == NULL ||
77 drv->asymmetric->p_sign == NULL )
78 {
79 /* Key is defined in SE, but we have no way to exercise it */
Steven Cooreman56250fd2020-09-04 13:07:15 +020080 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman7a250572020-07-17 16:43:05 +020081 }
82 return( drv->asymmetric->p_sign( drv_context,
Ronald Cronea0f8a62020-11-25 17:52:23 +010083 psa_key_slot_get_slot_number( slot ),
Steven Cooreman7a250572020-07-17 16:43:05 +020084 alg,
85 hash, hash_length,
86 signature, signature_size,
87 signature_length ) );
88 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +020089#endif /* PSA_CRYPTO_SE_C */
Steven Cooreman7a250572020-07-17 16:43:05 +020090
91 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +020092#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremancd84cb42020-07-16 20:28:36 +020093 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
94 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
95 psa_key_attributes_t attributes = {
96 .core = slot->attr
97 };
98
99 switch( location )
100 {
101 case PSA_KEY_LOCATION_LOCAL_STORAGE:
102 /* Key is stored in the slot in export representation, so
103 * cycle through all known transparent accelerators */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200104#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremancd84cb42020-07-16 20:28:36 +0200105 status = test_transparent_signature_sign_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100106 slot->key.data,
107 slot->key.bytes,
Steven Cooremancd84cb42020-07-16 20:28:36 +0200108 alg,
109 hash,
110 hash_length,
111 signature,
112 signature_size,
113 signature_length );
114 /* Declared with fallback == true */
115 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200116 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200117#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200118 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200119 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremancd84cb42020-07-16 20:28:36 +0200120 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200121#if defined(PSA_CRYPTO_DRIVER_TEST)
122 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremancd84cb42020-07-16 20:28:36 +0200123 return( test_opaque_signature_sign_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100124 slot->key.data,
125 slot->key.bytes,
Steven Cooremancd84cb42020-07-16 20:28:36 +0200126 alg,
127 hash,
128 hash_length,
129 signature,
130 signature_size,
131 signature_length ) );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200132#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200133 default:
134 /* Key is declared with a lifetime not known to us */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200135 return( status );
Steven Cooremancd84cb42020-07-16 20:28:36 +0200136 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200137#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200138 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200139#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
140#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200141 (void)slot;
142 (void)alg;
143 (void)hash;
144 (void)hash_length;
145 (void)signature;
146 (void)signature_size;
147 (void)signature_length;
148
Steven Cooreman56250fd2020-09-04 13:07:15 +0200149 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200150#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooremancd84cb42020-07-16 20:28:36 +0200151}
152
Steven Cooreman55ae2172020-07-17 19:46:15 +0200153psa_status_t psa_driver_wrapper_verify_hash( psa_key_slot_t *slot,
154 psa_algorithm_t alg,
155 const uint8_t *hash,
156 size_t hash_length,
157 const uint8_t *signature,
158 size_t signature_length )
159{
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200160#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200161 /* Try dynamically-registered SE interface first */
162#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
163 const psa_drv_se_t *drv;
164 psa_drv_se_context_t *drv_context;
165
166 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
167 {
168 if( drv->asymmetric == NULL ||
169 drv->asymmetric->p_verify == NULL )
170 {
171 /* Key is defined in SE, but we have no way to exercise it */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200172 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200173 }
174 return( drv->asymmetric->p_verify( drv_context,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100175 psa_key_slot_get_slot_number( slot ),
Steven Cooreman55ae2172020-07-17 19:46:15 +0200176 alg,
177 hash, hash_length,
178 signature, signature_length ) );
179 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200180#endif /* PSA_CRYPTO_SE_C */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200181
182 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200183#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200184 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
185 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
186 psa_key_attributes_t attributes = {
187 .core = slot->attr
188 };
189
190 switch( location )
191 {
192 case PSA_KEY_LOCATION_LOCAL_STORAGE:
193 /* Key is stored in the slot in export representation, so
194 * cycle through all known transparent accelerators */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200195#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman55ae2172020-07-17 19:46:15 +0200196 status = test_transparent_signature_verify_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100197 slot->key.data,
198 slot->key.bytes,
Steven Cooreman55ae2172020-07-17 19:46:15 +0200199 alg,
200 hash,
201 hash_length,
202 signature,
203 signature_length );
204 /* Declared with fallback == true */
205 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200206 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200207#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200208 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200209 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200210 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200211#if defined(PSA_CRYPTO_DRIVER_TEST)
212 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooreman55ae2172020-07-17 19:46:15 +0200213 return( test_opaque_signature_verify_hash( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100214 slot->key.data,
215 slot->key.bytes,
Steven Cooreman55ae2172020-07-17 19:46:15 +0200216 alg,
217 hash,
218 hash_length,
219 signature,
220 signature_length ) );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200221#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200222 default:
223 /* Key is declared with a lifetime not known to us */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200224 return( status );
Steven Cooreman55ae2172020-07-17 19:46:15 +0200225 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200226#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200227 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200228#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
229#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200230 (void)slot;
231 (void)alg;
232 (void)hash;
233 (void)hash_length;
234 (void)signature;
235 (void)signature_length;
236
Steven Cooreman56250fd2020-09-04 13:07:15 +0200237 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200238#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200239}
240
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200241#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman56250fd2020-09-04 13:07:15 +0200242/** Calculate the size to allocate for buffering a key with given attributes.
243 *
244 * This function provides a way to get the expected size for storing a key with
245 * the given attributes. This will be the size of the export representation for
246 * cleartext keys, and a driver-defined size for keys stored by opaque drivers.
247 *
248 * \param[in] attributes The key attribute structure of the key to store.
249 * \param[out] expected_size On success, a byte size large enough to contain
250 * the declared key.
251 *
252 * \retval #PSA_SUCCESS
253 * \retval #PSA_ERROR_NOT_SUPPORTED
254 */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200255static psa_status_t get_expected_key_size( const psa_key_attributes_t *attributes,
256 size_t *expected_size )
257{
Steven Cooreman56250fd2020-09-04 13:07:15 +0200258 size_t buffer_size = 0;
John Durkop2c618352020-09-22 06:54:01 -0700259 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION( attributes->core.lifetime );
260 psa_key_type_t key_type = attributes->core.type;
261 size_t key_bits = attributes->core.bits;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200262
John Durkop2c618352020-09-22 06:54:01 -0700263 switch( location )
264 {
265 case PSA_KEY_LOCATION_LOCAL_STORAGE:
gabor-mezei-armcbcec212020-12-18 14:23:51 +0100266 buffer_size = PSA_EXPORT_KEY_OUTPUT_SIZE( key_type, key_bits );
John Durkop2c618352020-09-22 06:54:01 -0700267
268 if( buffer_size == 0 )
269 return( PSA_ERROR_NOT_SUPPORTED );
270
271 *expected_size = buffer_size;
272 return( PSA_SUCCESS );
273
274#if defined(PSA_CRYPTO_DRIVER_TEST)
275 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
John Durkopac93e3b2020-10-16 06:48:55 -0700276#ifdef TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION
John Durkop2c618352020-09-22 06:54:01 -0700277 *expected_size = test_size_function( key_type, key_bits );
278 return( PSA_SUCCESS );
279#else /* TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION */
280 if( PSA_KEY_TYPE_IS_KEY_PAIR( key_type ) )
281 {
John Durkop135ce692020-10-19 07:12:28 -0700282 int public_key_overhead = ( ( TEST_DRIVER_KEY_CONTEXT_STORE_PUBLIC_KEY == 1 ) ?
gabor-mezei-armcbcec212020-12-18 14:23:51 +0100283 PSA_EXPORT_KEY_OUTPUT_SIZE( key_type, key_bits ) : 0 );
John Durkop135ce692020-10-19 07:12:28 -0700284 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
285 + TEST_DRIVER_KEY_CONTEXT_PUBLIC_KEY_SIZE
286 + public_key_overhead;
287 }
288 else if( PSA_KEY_TYPE_IS_PUBLIC_KEY( attributes->core.type ) )
289 {
John Durkop2c618352020-09-22 06:54:01 -0700290 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
291 + TEST_DRIVER_KEY_CONTEXT_PUBLIC_KEY_SIZE;
292 }
John Durkop135ce692020-10-19 07:12:28 -0700293 else if ( !PSA_KEY_TYPE_IS_KEY_PAIR( key_type ) &&
294 !PSA_KEY_TYPE_IS_PUBLIC_KEY ( attributes->core.type ) )
John Durkop2c618352020-09-22 06:54:01 -0700295 {
296 *expected_size = TEST_DRIVER_KEY_CONTEXT_BASE_SIZE
297 + TEST_DRIVER_KEY_CONTEXT_SYMMETRIC_FACTOR
298 * ( ( key_bits + 7 ) / 8 );
299 }
300 else
301 {
302 return( PSA_ERROR_NOT_SUPPORTED );
303 }
304 return( PSA_SUCCESS );
305#endif /* TEST_DRIVER_KEY_CONTEXT_SIZE_FUNCTION */
306#endif /* PSA_CRYPTO_DRIVER_TEST */
307
308 default:
Steven Cooreman56250fd2020-09-04 13:07:15 +0200309 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200310 }
311}
John Durkop135ce692020-10-19 07:12:28 -0700312#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200313
Steven Cooreman55ae2172020-07-17 19:46:15 +0200314psa_status_t psa_driver_wrapper_generate_key( const psa_key_attributes_t *attributes,
315 psa_key_slot_t *slot )
316{
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200317#if defined(PSA_CRYPTO_DRIVER_PRESENT)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200318 /* Try dynamically-registered SE interface first */
319#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
320 const psa_drv_se_t *drv;
321 psa_drv_se_context_t *drv_context;
322
323 if( psa_get_se_driver( slot->attr.lifetime, &drv, &drv_context ) )
324 {
325 size_t pubkey_length = 0; /* We don't support this feature yet */
326 if( drv->key_management == NULL ||
327 drv->key_management->p_generate == NULL )
328 {
329 /* Key is defined as being in SE, but we have no way to generate it */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200330 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200331 }
332 return( drv->key_management->p_generate(
Ronald Cronea0f8a62020-11-25 17:52:23 +0100333 drv_context, psa_key_slot_get_slot_number( slot ),
334 attributes, NULL, 0, &pubkey_length ) );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200335 }
336#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
337
338 /* Then try accelerator API */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200339#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200340 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
341 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
342 size_t export_size = 0;
343
344 status = get_expected_key_size( attributes, &export_size );
345 if( status != PSA_SUCCESS )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200346 return( status );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200347
Ronald Cronea0f8a62020-11-25 17:52:23 +0100348 slot->key.data = mbedtls_calloc(1, export_size);
349 if( slot->key.data == NULL )
Steven Cooreman56250fd2020-09-04 13:07:15 +0200350 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Ronald Cronea0f8a62020-11-25 17:52:23 +0100351 slot->key.bytes = export_size;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200352
353 switch( location )
354 {
355 case PSA_KEY_LOCATION_LOCAL_STORAGE:
356 /* Key is stored in the slot in export representation, so
357 * cycle through all known transparent accelerators */
358
359 /* Transparent drivers are limited to generating asymmetric keys */
360 if( ! PSA_KEY_TYPE_IS_ASYMMETRIC( slot->attr.type ) )
361 {
362 status = PSA_ERROR_NOT_SUPPORTED;
363 break;
364 }
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200365#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200366 status = test_transparent_generate_key( attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100367 slot->key.data,
368 slot->key.bytes,
369 &slot->key.bytes );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200370 /* Declared with fallback == true */
371 if( status != PSA_ERROR_NOT_SUPPORTED )
372 break;
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200373#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200374 /* Fell through, meaning no accelerator supports this operation */
375 status = PSA_ERROR_NOT_SUPPORTED;
376 break;
377 /* Add cases for opaque driver here */
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200378#if defined(PSA_CRYPTO_DRIVER_TEST)
379 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200380 status = test_opaque_generate_key( attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100381 slot->key.data,
382 slot->key.bytes,
383 &slot->key.bytes );
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200384 break;
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200385#endif /* PSA_CRYPTO_DRIVER_TEST */
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200386 default:
387 /* Key is declared with a lifetime not known to us */
388 status = PSA_ERROR_INVALID_ARGUMENT;
389 break;
390 }
391
392 if( status != PSA_SUCCESS )
393 {
394 /* free allocated buffer */
Ronald Cronea0f8a62020-11-25 17:52:23 +0100395 mbedtls_free( slot->key.data );
396 slot->key.data = NULL;
397 slot->key.bytes = 0;
Steven Cooreman2a1664c2020-07-20 15:33:08 +0200398 }
399
400 return( status );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200401#else /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooreman56250fd2020-09-04 13:07:15 +0200402 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200403#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
404#else /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200405 (void) attributes;
406 (void) slot;
407
Steven Cooreman56250fd2020-09-04 13:07:15 +0200408 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooremanf1720ea2020-07-24 18:41:58 +0200409#endif /* PSA_CRYPTO_DRIVER_PRESENT */
Steven Cooreman55ae2172020-07-17 19:46:15 +0200410}
411
Ronald Cron83282872020-11-22 14:02:39 +0100412psa_status_t psa_driver_wrapper_import_key(
413 const psa_key_attributes_t *attributes,
414 const uint8_t *data,
415 size_t data_length,
416 uint8_t *key_buffer,
417 size_t key_buffer_size,
418 size_t *key_buffer_length,
419 size_t *bits )
Steven Cooreman04524762020-10-13 17:43:44 +0200420{
Steven Cooreman04524762020-10-13 17:43:44 +0200421 psa_status_t status = PSA_ERROR_CORRUPTION_DETECTED;
Ronald Cronbf33c932020-11-28 18:06:53 +0100422 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(
423 psa_get_key_lifetime( attributes ) );
Steven Cooreman04524762020-10-13 17:43:44 +0200424
Ronald Cronbf33c932020-11-28 18:06:53 +0100425 switch( location )
426 {
427 case PSA_KEY_LOCATION_LOCAL_STORAGE:
428 /* Key is stored in the slot in export representation, so
429 * cycle through all known transparent accelerators */
430#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
431#if defined(PSA_CRYPTO_DRIVER_TEST)
432 status = test_transparent_import_key( attributes,
433 data, data_length,
434 key_buffer, key_buffer_size,
435 key_buffer_length, bits );
436 /* Declared with fallback == true */
437 if( status != PSA_ERROR_NOT_SUPPORTED )
438 return( status );
439#endif /* PSA_CRYPTO_DRIVER_TEST */
440#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
441 /* Fell through, meaning no accelerator supports this operation */
442 return( psa_import_key_into_slot( attributes,
443 data, data_length,
444 key_buffer, key_buffer_size,
445 key_buffer_length, bits ) );
446
447 default:
448 /* Key is declared with a lifetime not known to us */
449 (void)status;
450 return( PSA_ERROR_NOT_SUPPORTED );
451 }
452
Steven Cooreman04524762020-10-13 17:43:44 +0200453}
454
Ronald Cron67227982020-11-26 15:16:05 +0100455psa_status_t psa_driver_wrapper_export_key(
456 const psa_key_attributes_t *attributes,
457 const uint8_t *key_buffer, size_t key_buffer_size,
458 uint8_t *data, size_t data_size, size_t *data_length )
459
460{
461 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
462 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(
463 psa_get_key_lifetime( attributes ) );
464
Ronald Cron152e3f82020-11-26 16:06:41 +0100465 /* Try dynamically-registered SE interface first */
466#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
467 const psa_drv_se_t *drv;
468 psa_drv_se_context_t *drv_context;
469
470 if( psa_get_se_driver( attributes->core.lifetime, &drv, &drv_context ) )
471 {
472 if( ( drv->key_management == NULL ) ||
473 ( drv->key_management->p_export == NULL ) )
474 return( PSA_ERROR_NOT_SUPPORTED );
475
476 return( drv->key_management->p_export(
477 drv_context,
478 *( (psa_key_slot_number_t *)key_buffer ),
479 data, data_size, data_length ) );
480 }
481#endif /* PSA_CRYPTO_SE_C */
482
Ronald Cron67227982020-11-26 15:16:05 +0100483 switch( location )
484 {
485 case PSA_KEY_LOCATION_LOCAL_STORAGE:
486 return( psa_export_key_internal( attributes,
487 key_buffer,
488 key_buffer_size,
489 data,
490 data_size,
491 data_length ) );
492
493 /* Add cases for opaque driver here */
494#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
495#if defined(PSA_CRYPTO_DRIVER_TEST)
496 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
497 return( test_opaque_export_key( attributes,
498 key_buffer,
499 key_buffer_size,
500 data,
501 data_size,
502 data_length ) );
503#endif /* PSA_CRYPTO_DRIVER_TEST */
504#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
505 default:
506 /* Key is declared with a lifetime not known to us */
507 return( status );
508 }
509}
510
Ronald Cron84cc9942020-11-25 14:30:05 +0100511psa_status_t psa_driver_wrapper_export_public_key(
512 const psa_key_attributes_t *attributes,
513 const uint8_t *key_buffer, size_t key_buffer_size,
514 uint8_t *data, size_t data_size, size_t *data_length )
515
Steven Cooremanb9b84422020-10-14 14:39:20 +0200516{
Steven Cooremanb9b84422020-10-14 14:39:20 +0200517 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
Ronald Cron84cc9942020-11-25 14:30:05 +0100518 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(
519 psa_get_key_lifetime( attributes ) );
Steven Cooremanb9b84422020-10-14 14:39:20 +0200520
Ronald Cron152e3f82020-11-26 16:06:41 +0100521 /* Try dynamically-registered SE interface first */
522#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
523 const psa_drv_se_t *drv;
524 psa_drv_se_context_t *drv_context;
525
526 if( psa_get_se_driver( attributes->core.lifetime, &drv, &drv_context ) )
527 {
528 if( ( drv->key_management == NULL ) ||
529 ( drv->key_management->p_export_public == NULL ) )
530 return( PSA_ERROR_NOT_SUPPORTED );
531
532 return( drv->key_management->p_export_public(
533 drv_context,
534 *( (psa_key_slot_number_t *)key_buffer ),
535 data, data_size, data_length ) );
536 }
537#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
538
Steven Cooremanb9b84422020-10-14 14:39:20 +0200539 switch( location )
540 {
541 case PSA_KEY_LOCATION_LOCAL_STORAGE:
542 /* Key is stored in the slot in export representation, so
543 * cycle through all known transparent accelerators */
Ronald Cron67227982020-11-26 15:16:05 +0100544#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanb9b84422020-10-14 14:39:20 +0200545#if defined(PSA_CRYPTO_DRIVER_TEST)
Ronald Cron84cc9942020-11-25 14:30:05 +0100546 status = test_transparent_export_public_key( attributes,
547 key_buffer,
548 key_buffer_size,
Steven Cooremanb9b84422020-10-14 14:39:20 +0200549 data,
550 data_size,
551 data_length );
552 /* Declared with fallback == true */
553 if( status != PSA_ERROR_NOT_SUPPORTED )
554 return( status );
555#endif /* PSA_CRYPTO_DRIVER_TEST */
Ronald Cron67227982020-11-26 15:16:05 +0100556#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooremanb9b84422020-10-14 14:39:20 +0200557 /* Fell through, meaning no accelerator supports this operation */
Ronald Cron67227982020-11-26 15:16:05 +0100558 return( psa_export_public_key_internal( attributes,
559 key_buffer,
560 key_buffer_size,
561 data,
562 data_size,
563 data_length ) );
564
Steven Cooremanb9b84422020-10-14 14:39:20 +0200565 /* Add cases for opaque driver here */
Ronald Cron67227982020-11-26 15:16:05 +0100566#if defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanb9b84422020-10-14 14:39:20 +0200567#if defined(PSA_CRYPTO_DRIVER_TEST)
568 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Ronald Cron84cc9942020-11-25 14:30:05 +0100569 return( test_opaque_export_public_key( attributes,
570 key_buffer,
571 key_buffer_size,
Steven Cooremanb9b84422020-10-14 14:39:20 +0200572 data,
573 data_size,
574 data_length ) );
575#endif /* PSA_CRYPTO_DRIVER_TEST */
Ronald Cron67227982020-11-26 15:16:05 +0100576#endif /* PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT */
Steven Cooremanb9b84422020-10-14 14:39:20 +0200577 default:
578 /* Key is declared with a lifetime not known to us */
579 return( status );
580 }
Steven Cooremanb9b84422020-10-14 14:39:20 +0200581}
582
Steven Cooreman37941cb2020-07-28 18:49:51 +0200583/*
584 * Cipher functions
585 */
586psa_status_t psa_driver_wrapper_cipher_encrypt(
587 psa_key_slot_t *slot,
588 psa_algorithm_t alg,
589 const uint8_t *input,
590 size_t input_length,
591 uint8_t *output,
592 size_t output_size,
593 size_t *output_length )
594{
595#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
596 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
597 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
598 psa_key_attributes_t attributes = {
599 .core = slot->attr
600 };
601
602 switch( location )
603 {
604 case PSA_KEY_LOCATION_LOCAL_STORAGE:
605 /* Key is stored in the slot in export representation, so
606 * cycle through all known transparent accelerators */
607#if defined(PSA_CRYPTO_DRIVER_TEST)
608 status = test_transparent_cipher_encrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100609 slot->key.data,
610 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200611 alg,
612 input,
613 input_length,
614 output,
615 output_size,
616 output_length );
617 /* Declared with fallback == true */
618 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200619 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200620#endif /* PSA_CRYPTO_DRIVER_TEST */
621 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200622 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200623 /* Add cases for opaque driver here */
624#if defined(PSA_CRYPTO_DRIVER_TEST)
625 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
626 return( test_opaque_cipher_encrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100627 slot->key.data,
628 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200629 alg,
630 input,
631 input_length,
632 output,
633 output_size,
634 output_length ) );
635#endif /* PSA_CRYPTO_DRIVER_TEST */
636 default:
637 /* Key is declared with a lifetime not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200638 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200639 }
640#else /* PSA_CRYPTO_DRIVER_PRESENT */
641 (void) slot;
642 (void) alg;
643 (void) input;
644 (void) input_length;
645 (void) output;
646 (void) output_size;
647 (void) output_length;
648
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200649 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200650#endif /* PSA_CRYPTO_DRIVER_PRESENT */
651}
652
653psa_status_t psa_driver_wrapper_cipher_decrypt(
654 psa_key_slot_t *slot,
655 psa_algorithm_t alg,
656 const uint8_t *input,
657 size_t input_length,
658 uint8_t *output,
659 size_t output_size,
660 size_t *output_length )
661{
662#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
663 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
664 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
665 psa_key_attributes_t attributes = {
666 .core = slot->attr
667 };
668
669 switch( location )
670 {
671 case PSA_KEY_LOCATION_LOCAL_STORAGE:
672 /* Key is stored in the slot in export representation, so
673 * cycle through all known transparent accelerators */
674#if defined(PSA_CRYPTO_DRIVER_TEST)
675 status = test_transparent_cipher_decrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100676 slot->key.data,
677 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200678 alg,
679 input,
680 input_length,
681 output,
682 output_size,
683 output_length );
684 /* Declared with fallback == true */
685 if( status != PSA_ERROR_NOT_SUPPORTED )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200686 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200687#endif /* PSA_CRYPTO_DRIVER_TEST */
688 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200689 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200690 /* Add cases for opaque driver here */
691#if defined(PSA_CRYPTO_DRIVER_TEST)
692 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
693 return( test_opaque_cipher_decrypt( &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100694 slot->key.data,
695 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200696 alg,
697 input,
698 input_length,
699 output,
700 output_size,
701 output_length ) );
702#endif /* PSA_CRYPTO_DRIVER_TEST */
703 default:
704 /* Key is declared with a lifetime not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200705 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200706 }
707#else /* PSA_CRYPTO_DRIVER_PRESENT */
708 (void) slot;
709 (void) alg;
710 (void) input;
711 (void) input_length;
712 (void) output;
713 (void) output_size;
714 (void) output_length;
715
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200716 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200717#endif /* PSA_CRYPTO_DRIVER_PRESENT */
718}
719
720psa_status_t psa_driver_wrapper_cipher_encrypt_setup(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200721 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200722 psa_key_slot_t *slot,
723 psa_algorithm_t alg )
724{
725#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
726 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
727 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
728 psa_key_attributes_t attributes = {
729 .core = slot->attr
730 };
731
Steven Cooreman37941cb2020-07-28 18:49:51 +0200732 switch( location )
733 {
734 case PSA_KEY_LOCATION_LOCAL_STORAGE:
735 /* Key is stored in the slot in export representation, so
736 * cycle through all known transparent accelerators */
737#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200738 operation->ctx = mbedtls_calloc( 1, sizeof(test_transparent_cipher_operation_t) );
739 if( operation->ctx == NULL )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200740 return PSA_ERROR_INSUFFICIENT_MEMORY;
741
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200742 status = test_transparent_cipher_encrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200743 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100744 slot->key.data,
745 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200746 alg );
747 /* Declared with fallback == true */
Steven Cooreman150c99b2020-09-09 14:32:44 +0200748 if( status == PSA_SUCCESS )
749 operation->id = PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200750 else
751 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200752 mbedtls_platform_zeroize(
753 operation->ctx,
754 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200755 mbedtls_free( operation->ctx );
756 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200757 }
Steven Cooreman150c99b2020-09-09 14:32:44 +0200758
759 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200760#endif /* PSA_CRYPTO_DRIVER_TEST */
761 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200762 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200763 /* Add cases for opaque driver here */
764#if defined(PSA_CRYPTO_DRIVER_TEST)
765 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200766 operation->ctx = mbedtls_calloc( 1, sizeof(test_opaque_cipher_operation_t) );
767 if( operation->ctx == NULL )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200768 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200769
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200770 status = test_opaque_cipher_encrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200771 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100772 slot->key.data,
773 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200774 alg );
775 if( status == PSA_SUCCESS )
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200776 operation->id = PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200777 else
778 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200779 mbedtls_platform_zeroize(
780 operation->ctx,
781 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200782 mbedtls_free( operation->ctx );
783 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200784 }
785
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200786 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200787#endif /* PSA_CRYPTO_DRIVER_TEST */
788 default:
789 /* Key is declared with a lifetime not known to us */
John Durkop714e3a12020-09-29 22:07:04 -0700790 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200791 }
792#else /* PSA_CRYPTO_DRIVER_PRESENT */
793 (void)slot;
794 (void)alg;
795 (void)operation;
796
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200797 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200798#endif /* PSA_CRYPTO_DRIVER_PRESENT */
799}
800
801psa_status_t psa_driver_wrapper_cipher_decrypt_setup(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200802 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200803 psa_key_slot_t *slot,
804 psa_algorithm_t alg )
805{
806#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
807 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
808 psa_key_location_t location = PSA_KEY_LIFETIME_GET_LOCATION(slot->attr.lifetime);
809 psa_key_attributes_t attributes = {
810 .core = slot->attr
811 };
812
Steven Cooreman37941cb2020-07-28 18:49:51 +0200813 switch( location )
814 {
815 case PSA_KEY_LOCATION_LOCAL_STORAGE:
816 /* Key is stored in the slot in export representation, so
817 * cycle through all known transparent accelerators */
818#if defined(PSA_CRYPTO_DRIVER_TEST)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200819 operation->ctx = mbedtls_calloc( 1, sizeof(test_transparent_cipher_operation_t) );
820 if( operation->ctx == NULL )
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200821 return( PSA_ERROR_INSUFFICIENT_MEMORY );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200822
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200823 status = test_transparent_cipher_decrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200824 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100825 slot->key.data,
826 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200827 alg );
828 /* Declared with fallback == true */
Steven Cooreman150c99b2020-09-09 14:32:44 +0200829 if( status == PSA_SUCCESS )
830 operation->id = PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200831 else
832 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200833 mbedtls_platform_zeroize(
834 operation->ctx,
835 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200836 mbedtls_free( operation->ctx );
837 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200838 }
Steven Cooreman150c99b2020-09-09 14:32:44 +0200839
840 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200841#endif /* PSA_CRYPTO_DRIVER_TEST */
842 /* Fell through, meaning no accelerator supports this operation */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200843 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200844 /* Add cases for opaque driver here */
845#if defined(PSA_CRYPTO_DRIVER_TEST)
846 case PSA_CRYPTO_TEST_DRIVER_LIFETIME:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200847 operation->ctx = mbedtls_calloc( 1, sizeof(test_opaque_cipher_operation_t) );
848 if( operation->ctx == NULL )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200849 return PSA_ERROR_INSUFFICIENT_MEMORY;
850
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200851 status = test_opaque_cipher_decrypt_setup( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200852 &attributes,
Ronald Cronea0f8a62020-11-25 17:52:23 +0100853 slot->key.data,
854 slot->key.bytes,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200855 alg );
856 if( status == PSA_SUCCESS )
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200857 operation->id = PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200858 else
859 {
Steven Cooremancfeea8f2020-09-09 15:09:18 +0200860 mbedtls_platform_zeroize(
861 operation->ctx,
862 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200863 mbedtls_free( operation->ctx );
864 operation->ctx = NULL;
Steven Cooreman37941cb2020-07-28 18:49:51 +0200865 }
866
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200867 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200868#endif /* PSA_CRYPTO_DRIVER_TEST */
869 default:
870 /* Key is declared with a lifetime not known to us */
John Durkop814dca72020-10-05 06:31:12 -0700871 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200872 }
873#else /* PSA_CRYPTO_DRIVER_PRESENT */
874 (void)slot;
875 (void)alg;
876 (void)operation;
877
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200878 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200879#endif /* PSA_CRYPTO_DRIVER_PRESENT */
880}
881
882psa_status_t psa_driver_wrapper_cipher_generate_iv(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200883 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200884 uint8_t *iv,
885 size_t iv_size,
886 size_t *iv_length )
887{
888#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200889 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200890 {
891#if defined(PSA_CRYPTO_DRIVER_TEST)
892 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200893 return( test_transparent_cipher_generate_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200894 iv,
895 iv_size,
896 iv_length ) );
897#endif /* PSA_CRYPTO_DRIVER_TEST */
898#if defined(PSA_CRYPTO_DRIVER_TEST)
899 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200900 return( test_opaque_cipher_generate_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200901 iv,
902 iv_size,
903 iv_length ) );
904#endif /* PSA_CRYPTO_DRIVER_TEST */
905 default:
906 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200907 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200908 }
909#else /* PSA_CRYPTO_DRIVER_PRESENT */
910 (void) operation;
911 (void) iv;
912 (void) iv_size;
913 (void) iv_length;
914
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200915 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200916#endif /* PSA_CRYPTO_DRIVER_PRESENT */
917}
918
919psa_status_t psa_driver_wrapper_cipher_set_iv(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200920 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200921 const uint8_t *iv,
922 size_t iv_length )
923{
924#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200925 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200926 {
927#if defined(PSA_CRYPTO_DRIVER_TEST)
928 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200929 return( test_transparent_cipher_set_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200930 iv,
931 iv_length ) );
932#endif /* PSA_CRYPTO_DRIVER_TEST */
933#if defined(PSA_CRYPTO_DRIVER_TEST)
934 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200935 return( test_opaque_cipher_set_iv( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200936 iv,
937 iv_length ) );
938#endif /* PSA_CRYPTO_DRIVER_TEST */
939 default:
940 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200941 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200942 }
943#else /* PSA_CRYPTO_DRIVER_PRESENT */
944 (void) operation;
945 (void) iv;
946 (void) iv_length;
947
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200948 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200949#endif /* PSA_CRYPTO_DRIVER_PRESENT */
950}
951
952psa_status_t psa_driver_wrapper_cipher_update(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200953 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200954 const uint8_t *input,
955 size_t input_length,
956 uint8_t *output,
957 size_t output_size,
958 size_t *output_length )
959{
960#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200961 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +0200962 {
963#if defined(PSA_CRYPTO_DRIVER_TEST)
964 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200965 return( test_transparent_cipher_update( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200966 input,
967 input_length,
968 output,
969 output_size,
970 output_length ) );
971#endif /* PSA_CRYPTO_DRIVER_TEST */
972#if defined(PSA_CRYPTO_DRIVER_TEST)
973 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200974 return( test_opaque_cipher_update( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200975 input,
976 input_length,
977 output,
978 output_size,
979 output_length ) );
980#endif /* PSA_CRYPTO_DRIVER_TEST */
981 default:
982 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200983 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200984 }
985#else /* PSA_CRYPTO_DRIVER_PRESENT */
986 (void) operation;
987 (void) input;
988 (void) input_length;
989 (void) output;
990 (void) output_length;
991 (void) output_size;
992
Steven Cooreman5240e8b2020-09-09 11:51:45 +0200993 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +0200994#endif /* PSA_CRYPTO_DRIVER_PRESENT */
995}
996
997psa_status_t psa_driver_wrapper_cipher_finish(
Steven Cooremanfb81aa52020-09-09 12:01:43 +0200998 psa_operation_driver_context_t *operation,
Steven Cooreman37941cb2020-07-28 18:49:51 +0200999 uint8_t *output,
1000 size_t output_size,
1001 size_t *output_length )
1002{
1003#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001004 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +02001005 {
1006#if defined(PSA_CRYPTO_DRIVER_TEST)
1007 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001008 return( test_transparent_cipher_finish( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +02001009 output,
1010 output_size,
1011 output_length ) );
1012#endif /* PSA_CRYPTO_DRIVER_TEST */
1013#if defined(PSA_CRYPTO_DRIVER_TEST)
1014 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001015 return( test_opaque_cipher_finish( operation->ctx,
Steven Cooreman37941cb2020-07-28 18:49:51 +02001016 output,
1017 output_size,
1018 output_length ) );
1019#endif /* PSA_CRYPTO_DRIVER_TEST */
1020 default:
1021 /* Key is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001022 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001023 }
1024#else /* PSA_CRYPTO_DRIVER_PRESENT */
1025 (void) operation;
1026 (void) output;
1027 (void) output_size;
1028 (void) output_length;
1029
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001030 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001031#endif /* PSA_CRYPTO_DRIVER_PRESENT */
1032}
1033
1034psa_status_t psa_driver_wrapper_cipher_abort(
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001035 psa_operation_driver_context_t *operation )
Steven Cooreman37941cb2020-07-28 18:49:51 +02001036{
1037#if defined(PSA_CRYPTO_DRIVER_PRESENT) && defined(PSA_CRYPTO_ACCELERATOR_DRIVER_PRESENT)
1038 psa_status_t status = PSA_ERROR_INVALID_ARGUMENT;
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001039
1040 /* The object has (apparently) been initialized but it is not in use. It's
1041 * ok to call abort on such an object, and there's nothing to do. */
1042 if( operation->ctx == NULL && operation->id == 0 )
1043 return( PSA_SUCCESS );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001044
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001045 switch( operation->id )
Steven Cooreman37941cb2020-07-28 18:49:51 +02001046 {
1047#if defined(PSA_CRYPTO_DRIVER_TEST)
1048 case PSA_CRYPTO_TRANSPARENT_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001049 status = test_transparent_cipher_abort( operation->ctx );
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001050 mbedtls_platform_zeroize(
1051 operation->ctx,
1052 sizeof( test_transparent_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001053 mbedtls_free( operation->ctx );
1054 operation->ctx = NULL;
1055 operation->id = 0;
Steven Cooreman37941cb2020-07-28 18:49:51 +02001056
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001057 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001058#endif /* PSA_CRYPTO_DRIVER_TEST */
1059#if defined(PSA_CRYPTO_DRIVER_TEST)
1060 case PSA_CRYPTO_OPAQUE_TEST_DRIVER_ID:
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001061 status = test_opaque_cipher_abort( operation->ctx );
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001062 mbedtls_platform_zeroize(
1063 operation->ctx,
1064 sizeof( test_opaque_cipher_operation_t ) );
Steven Cooremanfb81aa52020-09-09 12:01:43 +02001065 mbedtls_free( operation->ctx );
1066 operation->ctx = NULL;
Steven Cooremancfeea8f2020-09-09 15:09:18 +02001067 operation->id = 0;
Steven Cooreman37941cb2020-07-28 18:49:51 +02001068
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001069 return( status );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001070#endif /* PSA_CRYPTO_DRIVER_TEST */
1071 default:
1072 /* Operation is attached to a driver not known to us */
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001073 return( PSA_ERROR_BAD_STATE );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001074 }
1075#else /* PSA_CRYPTO_DRIVER_PRESENT */
1076 (void)operation;
1077
Steven Cooreman5240e8b2020-09-09 11:51:45 +02001078 return( PSA_ERROR_NOT_SUPPORTED );
Steven Cooreman37941cb2020-07-28 18:49:51 +02001079#endif /* PSA_CRYPTO_DRIVER_PRESENT */
1080}
1081
Steven Cooremancd84cb42020-07-16 20:28:36 +02001082/* End of automatically generated file. */