sha512_256_ext_mbedtls.c (5384B)
1 /* SPDX-License-Identifier: LGPL-2.1-or-later OR (GPL-2.0-or-later WITH eCos-exception-2.0) */ 2 /* 3 This file is part of GNU libmicrohttpd. 4 Copyright (C) 2025 Christian Grothoff 5 6 GNU libmicrohttpd is free software; you can redistribute it and/or 7 modify it under the terms of the GNU Lesser General Public 8 License as published by the Free Software Foundation; either 9 version 2.1 of the License, or (at your option) any later version. 10 11 GNU libmicrohttpd is distributed in the hope that it will be useful, 12 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 14 Lesser General Public License for more details. 15 16 Alternatively, you can redistribute GNU libmicrohttpd and/or 17 modify it under the terms of the GNU General Public License as 18 published by the Free Software Foundation; either version 2 of 19 the License, or (at your option) any later version, together 20 with the eCos exception, as follows: 21 22 As a special exception, if other files instantiate templates or 23 use macros or inline functions from this file, or you compile this 24 file and link it with other works to produce a work based on this 25 file, this file does not by itself cause the resulting work to be 26 covered by the GNU General Public License. However the source code 27 for this file must still be made available in accordance with 28 section (3) of the GNU General Public License v2. 29 30 This exception does not invalidate any other reasons why a work 31 based on this file might be covered by the GNU General Public 32 License. 33 34 You should have received copies of the GNU Lesser General Public 35 License and the GNU General Public License along with this library; 36 if not, see <https://www.gnu.org/licenses/>. 37 */ 38 39 /** 40 * @file microhttpd/sha512_256_ext_mbedtls.c 41 * @brief Wrapper for SHA-512/256 calculation performed by mbedTLS library 42 * @author Christian Grothoff 43 */ 44 45 #include <mbedtls/sha512.h> 46 #define MHD_SHA512_256_Context mbedtls_sha512_context 47 #include "sha512_256_ext.h" 48 #include "mhd_assert.h" 49 50 51 /** 52 * Initialize mbedtls context for SHA-512/256. 53 * Since SHA-512/256 is not natively supported by 54 * mbedTLS, we initialize for SHA-512 and then 55 * override the state with the SHA-512/256 IV. 56 * 57 * @param[in,out] ctx hash context to initialize 58 */ 59 static void 60 init512_256 (struct mhd_Sha512_256CtxExt *ctx) 61 { 62 static const uint64_t iv_sha512_256[8] = { 63 0x22312194FC2BF72CULL, 0x9F555FA3C84C64C2ULL, 64 0x2393B86B6F53B151ULL, 0x963877195940EABDULL, 65 0x96283EE2A88EFFE3ULL, 0xBE5E1E2553863992ULL, 66 0x2B0199FC2C85B8AAULL, 0x0EB72DDC81C52CA2ULL 67 }; 68 69 mbedtls_sha512_init (ctx->handle); 70 /* is384=0 for SHA-512 */ 71 ctx->ext_error = mbedtls_sha512_starts_ret (ctx->handle, 72 0); 73 if (0 != ctx->ext_error) 74 { 75 mbedtls_sha512_free (ctx->handle); 76 free (ctx->handle); 77 ctx->handle = NULL; 78 return; 79 } 80 mhd_assert (sizeof (ctx->handle.state) == 81 sizeof (iv_sha512_256)); 82 memcpy (ctx->handle.state, 83 iv_sha512_256, 84 sizeof (iv_sha512_256)); 85 } 86 87 88 /** 89 * Initialise structure for SHA-512/256 calculation, allocate resources. 90 * 91 * This function must not be called more than one time for @a ctx. 92 * 93 * @param ctx the calculation context 94 */ 95 void 96 mhd_SHA512_256_init_one_time (struct mhd_Sha512_256CtxExt *ctx) 97 { 98 ctx->ext_error = 0; 99 ctx->handle = (mbedtls_sha512_context *) malloc ( 100 sizeof (mbedtls_sha512_context)); 101 if (NULL == ctx->handle) 102 { 103 ctx->ext_error = 1; /* Allocation failure */ 104 return; 105 } 106 107 init512_256 (ctx); 108 109 /* If handle is NULL, the error must be set */ 110 mhd_assert ((NULL != ctx->handle) || (0 != ctx->ext_error)); 111 /* If error is set, the handle must be NULL */ 112 mhd_assert ((0 == ctx->ext_error) || (NULL == ctx->handle)); 113 } 114 115 116 /** 117 * Process portion of bytes. 118 * 119 * @param ctx the calculation context 120 * @param data bytes to add to hash 121 * @param length number of bytes in @a data 122 */ 123 void 124 mhd_SHA512_256_update (struct mhd_Sha512_256CtxExt *ctx, 125 size_t size, 126 const uint8_t *data) 127 { 128 mhd_assert (0 != size); 129 130 if (0 == ctx->ext_error) 131 ctx->ext_error = mbedtls_sha512_update_ret (ctx->handle, data, size); 132 } 133 134 135 /** 136 * Finalise SHA-512/256 calculation, return digest, reset hash calculation. 137 * 138 * @param ctx the calculation context 139 * @param[out] digest set to the hash, must be #mhd_SHA512_256_DIGEST_SIZE bytes 140 */ 141 void 142 mhd_SHA512_256_finish_reset (struct mhd_Sha512_256CtxExt *ctx, 143 uint8_t digest[mhd_SHA512_256_DIGEST_SIZE]) 144 { 145 uint8_t full_digest[64]; /* SHA-512 produces 64 bytes */ 146 147 if (0 == ctx->ext_error) 148 { 149 ctx->ext_error = mbedtls_sha512_finish_ret (ctx->handle, 150 full_digest); 151 152 if (0 == ctx->ext_error) 153 { 154 /* SHA-512/256 uses first 32 bytes of SHA-512 with different IV */ 155 memcpy (digest, 156 full_digest, 157 mhd_SHA512_256_DIGEST_SIZE); 158 159 /* Reset for potential reuse */ 160 init512_256 (ctx); 161 } 162 } 163 } 164 165 166 /** 167 * Free allocated resources. 168 * 169 * @param ctx the calculation context 170 */ 171 void 172 mhd_SHA512_256_deinit (struct mhd_Sha512_256CtxExt *ctx) 173 { 174 if (NULL != ctx->handle) 175 { 176 mbedtls_sha512_free (ctx->handle); 177 free (ctx->handle); 178 } 179 }