blob: eeebbdcd5158d1c352fb8f70923ce2296324d3c3 [file] [log] [blame]
Paul Bakker5121ce52009-01-03 21:22:43 +00001/*
2 * An implementation of the ARCFOUR algorithm
3 *
Manuel Pégourié-Gonnard6fb81872015-07-27 11:11:48 +02004 * Copyright (C) 2006-2015, ARM Limited, All Rights Reserved
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02005 * SPDX-License-Identifier: Apache-2.0
6 *
7 * Licensed under the Apache License, Version 2.0 (the "License"); you may
8 * not use this file except in compliance with the License.
9 * You may obtain a copy of the License at
10 *
11 * http://www.apache.org/licenses/LICENSE-2.0
12 *
13 * Unless required by applicable law or agreed to in writing, software
14 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
15 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16 * See the License for the specific language governing permissions and
17 * limitations under the License.
Paul Bakkerb96f1542010-07-18 20:36:00 +000018 *
Manuel Pégourié-Gonnardfe446432015-03-06 13:17:10 +000019 * This file is part of mbed TLS (https://tls.mbed.org)
Paul Bakker5121ce52009-01-03 21:22:43 +000020 */
21/*
22 * The ARCFOUR algorithm was publicly disclosed on 94/09.
23 *
24 * http://groups.google.com/group/sci.crypt/msg/10a300c9d21afca0
25 */
26
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020027#if !defined(MBEDTLS_CONFIG_FILE)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000028#include "mbedtls/config.h"
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020029#else
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020030#include MBEDTLS_CONFIG_FILE
Manuel Pégourié-Gonnardcef4ad22014-04-29 12:39:06 +020031#endif
Paul Bakker5121ce52009-01-03 21:22:43 +000032
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020033#if defined(MBEDTLS_ARC4_C)
Paul Bakker5121ce52009-01-03 21:22:43 +000034
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000035#include "mbedtls/arc4.h"
Andres Amaya Garcia1f6301b2018-04-17 09:51:09 -050036#include "mbedtls/platform_util.h"
Paul Bakker5121ce52009-01-03 21:22:43 +000037
Rich Evans00ab4702015-02-06 13:43:58 +000038#include <string.h>
39
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020040#if defined(MBEDTLS_SELF_TEST)
41#if defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000042#include "mbedtls/platform.h"
Paul Bakker7dc4c442014-02-01 22:50:26 +010043#else
Rich Evans00ab4702015-02-06 13:43:58 +000044#include <stdio.h>
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020045#define mbedtls_printf printf
46#endif /* MBEDTLS_PLATFORM_C */
47#endif /* MBEDTLS_SELF_TEST */
Paul Bakker7dc4c442014-02-01 22:50:26 +010048
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020049#if !defined(MBEDTLS_ARC4_ALT)
Paul Bakker90995b52013-06-24 19:20:35 +020050
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020051void mbedtls_arc4_init( mbedtls_arc4_context *ctx )
Paul Bakkerc7ea99a2014-06-18 11:12:03 +020052{
Manuel Pégourié-Gonnard7a346b82019-10-02 14:47:01 +020053 mbedtls_platform_memset( ctx, 0, sizeof( mbedtls_arc4_context ) );
Paul Bakkerc7ea99a2014-06-18 11:12:03 +020054}
55
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020056void mbedtls_arc4_free( mbedtls_arc4_context *ctx )
Paul Bakkerc7ea99a2014-06-18 11:12:03 +020057{
58 if( ctx == NULL )
59 return;
60
Andres Amaya Garcia1f6301b2018-04-17 09:51:09 -050061 mbedtls_platform_zeroize( ctx, sizeof( mbedtls_arc4_context ) );
Paul Bakkerc7ea99a2014-06-18 11:12:03 +020062}
63
Paul Bakker5121ce52009-01-03 21:22:43 +000064/*
65 * ARC4 key schedule
66 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020067void mbedtls_arc4_setup( mbedtls_arc4_context *ctx, const unsigned char *key,
Paul Bakkerb9e4e2c2014-05-01 14:18:25 +020068 unsigned int keylen )
Paul Bakker5121ce52009-01-03 21:22:43 +000069{
Paul Bakker23986e52011-04-24 08:57:21 +000070 int i, j, a;
71 unsigned int k;
Paul Bakker5121ce52009-01-03 21:22:43 +000072 unsigned char *m;
73
74 ctx->x = 0;
75 ctx->y = 0;
76 m = ctx->m;
77
78 for( i = 0; i < 256; i++ )
79 m[i] = (unsigned char) i;
80
81 j = k = 0;
82
83 for( i = 0; i < 256; i++, k++ )
84 {
85 if( k >= keylen ) k = 0;
86
87 a = m[i];
88 j = ( j + a + key[k] ) & 0xFF;
89 m[i] = m[j];
90 m[j] = (unsigned char) a;
91 }
92}
93
94/*
95 * ARC4 cipher function
96 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020097int mbedtls_arc4_crypt( mbedtls_arc4_context *ctx, size_t length, const unsigned char *input,
Paul Bakkerbaad6502010-03-21 15:42:15 +000098 unsigned char *output )
Paul Bakker5121ce52009-01-03 21:22:43 +000099{
Paul Bakker23986e52011-04-24 08:57:21 +0000100 int x, y, a, b;
101 size_t i;
Paul Bakker5121ce52009-01-03 21:22:43 +0000102 unsigned char *m;
103
104 x = ctx->x;
105 y = ctx->y;
106 m = ctx->m;
107
Paul Bakkerbaad6502010-03-21 15:42:15 +0000108 for( i = 0; i < length; i++ )
Paul Bakker5121ce52009-01-03 21:22:43 +0000109 {
110 x = ( x + 1 ) & 0xFF; a = m[x];
111 y = ( y + a ) & 0xFF; b = m[y];
112
113 m[x] = (unsigned char) b;
114 m[y] = (unsigned char) a;
115
Paul Bakkerbaad6502010-03-21 15:42:15 +0000116 output[i] = (unsigned char)
117 ( input[i] ^ m[(unsigned char)( a + b )] );
Paul Bakker5121ce52009-01-03 21:22:43 +0000118 }
119
120 ctx->x = x;
121 ctx->y = y;
Paul Bakkerf3ccc682010-03-18 21:21:02 +0000122
123 return( 0 );
Paul Bakker5121ce52009-01-03 21:22:43 +0000124}
125
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200126#endif /* !MBEDTLS_ARC4_ALT */
Paul Bakker90995b52013-06-24 19:20:35 +0200127
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200128#if defined(MBEDTLS_SELF_TEST)
Paul Bakker5121ce52009-01-03 21:22:43 +0000129/*
130 * ARC4 tests vectors as posted by Eric Rescorla in sep. 1994:
131 *
132 * http://groups.google.com/group/comp.security.misc/msg/10a300c9d21afca0
133 */
134static const unsigned char arc4_test_key[3][8] =
135{
136 { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
137 { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
138 { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 }
139};
140
141static const unsigned char arc4_test_pt[3][8] =
142{
143 { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
144 { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
145 { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 }
146};
147
148static const unsigned char arc4_test_ct[3][8] =
149{
150 { 0x75, 0xB7, 0x87, 0x80, 0x99, 0xE0, 0xC5, 0x96 },
151 { 0x74, 0x94, 0xC2, 0xE7, 0x10, 0x4B, 0x08, 0x79 },
152 { 0xDE, 0x18, 0x89, 0x41, 0xA3, 0x37, 0x5D, 0x3A }
153};
154
155/*
156 * Checkup routine
157 */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200158int mbedtls_arc4_self_test( int verbose )
Paul Bakker5121ce52009-01-03 21:22:43 +0000159{
Paul Bakkerc7ea99a2014-06-18 11:12:03 +0200160 int i, ret = 0;
Paul Bakkerbaad6502010-03-21 15:42:15 +0000161 unsigned char ibuf[8];
162 unsigned char obuf[8];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200163 mbedtls_arc4_context ctx;
Paul Bakker5121ce52009-01-03 21:22:43 +0000164
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200165 mbedtls_arc4_init( &ctx );
Paul Bakkerc7ea99a2014-06-18 11:12:03 +0200166
Paul Bakker5121ce52009-01-03 21:22:43 +0000167 for( i = 0; i < 3; i++ )
168 {
169 if( verbose != 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200170 mbedtls_printf( " ARC4 test #%d: ", i + 1 );
Paul Bakker5121ce52009-01-03 21:22:43 +0000171
Paul Bakkerbaad6502010-03-21 15:42:15 +0000172 memcpy( ibuf, arc4_test_pt[i], 8 );
Paul Bakker5121ce52009-01-03 21:22:43 +0000173
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200174 mbedtls_arc4_setup( &ctx, arc4_test_key[i], 8 );
175 mbedtls_arc4_crypt( &ctx, 8, ibuf, obuf );
Paul Bakker5121ce52009-01-03 21:22:43 +0000176
Paul Bakkerbaad6502010-03-21 15:42:15 +0000177 if( memcmp( obuf, arc4_test_ct[i], 8 ) != 0 )
Paul Bakker5121ce52009-01-03 21:22:43 +0000178 {
179 if( verbose != 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200180 mbedtls_printf( "failed\n" );
Paul Bakker5121ce52009-01-03 21:22:43 +0000181
Paul Bakkerc7ea99a2014-06-18 11:12:03 +0200182 ret = 1;
183 goto exit;
Paul Bakker5121ce52009-01-03 21:22:43 +0000184 }
185
186 if( verbose != 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200187 mbedtls_printf( "passed\n" );
Paul Bakker5121ce52009-01-03 21:22:43 +0000188 }
189
190 if( verbose != 0 )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200191 mbedtls_printf( "\n" );
Paul Bakker5121ce52009-01-03 21:22:43 +0000192
Paul Bakkerc7ea99a2014-06-18 11:12:03 +0200193exit:
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200194 mbedtls_arc4_free( &ctx );
Paul Bakkerc7ea99a2014-06-18 11:12:03 +0200195
196 return( ret );
Paul Bakker5121ce52009-01-03 21:22:43 +0000197}
198
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200199#endif /* MBEDTLS_SELF_TEST */
Paul Bakker5121ce52009-01-03 21:22:43 +0000200
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200201#endif /* MBEDTLS_ARC4_C */