Skip to content
Snippets Groups Projects
hmac.c 2.55 KiB
Newer Older
  • Learn to ignore specific revisions
  • Niels Möller's avatar
    Niels Möller committed
    /* hmac.c
     *
    
    Niels Möller's avatar
    Niels Möller committed
     * HMAC message authentication code (RFC-2104).
    
    Niels Möller's avatar
    Niels Möller committed
     */
    
    /* nettle, low-level cryptographics library
     *
     * Copyright (C) 2001 Niels Mller
     *  
     * The nettle library is free software; you can redistribute it and/or modify
     * it under the terms of the GNU Lesser General Public License as published by
     * the Free Software Foundation; either version 2.1 of the License, or (at your
     * option) any later version.
     * 
     * The nettle library is distributed in the hope that it will be useful, but
     * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
     * or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU Lesser General Public
     * License for more details.
     * 
     * You should have received a copy of the GNU Lesser General Public License
     * along with the nettle library; see the file COPYING.LIB.  If not, write to
     * the Free Software Foundation, Inc., 59 Temple Place - Suite 330, Boston,
     * MA 02111-1307, USA.
     */
    
    #include "hmac.h"
    
    #include "memxor.h"
    
    #include <assert.h>
    
    Niels Möller's avatar
    Niels Möller committed
    #include <string.h>
    
    Niels Möller's avatar
    Niels Möller committed
    
    #define IPAD 0x36
    #define OPAD 0x5c
    
    void
    
    Niels Möller's avatar
    Niels Möller committed
    hmac_set_key(void *outer, void *inner, void *state,
    	     const struct nettle_hash *hash,
    	     unsigned key_length, const uint8_t *key)
    
    Niels Möller's avatar
    Niels Möller committed
    {
    
    Niels Möller's avatar
    Niels Möller committed
      uint8_t *pad = alloca(hash->block_size);
    
    Niels Möller's avatar
    Niels Möller committed
      
    
    Niels Möller's avatar
    Niels Möller committed
      hash->init(outer);
      hash->init(inner);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      if (key_length > hash->block_size)
    
    Niels Möller's avatar
    Niels Möller committed
        {
          /* Reduce key to the algorithm's hash size. Use the area pointed
           * to by state for the temporary state. */
    
    
    Niels Möller's avatar
    Niels Möller committed
          uint8_t *digest = alloca(hash->digest_size);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
          hash->init(state);
          hash->update(state, key_length, key);
          hash->digest(state, hash->digest_size, digest);
    
    Niels Möller's avatar
    Niels Möller committed
    
          key = digest;
    
    Niels Möller's avatar
    Niels Möller committed
          key_length = hash->digest_size;
    
    Niels Möller's avatar
    Niels Möller committed
        }
    
    
    Niels Möller's avatar
    Niels Möller committed
      assert(key_length <= hash->block_size);
    
    Niels Möller's avatar
    Niels Möller committed
      
    
    Niels Möller's avatar
    Niels Möller committed
      memset(pad, OPAD, hash->block_size);
    
    Niels Möller's avatar
    Niels Möller committed
      memxor(pad, key, key_length);
    
    
    Niels Möller's avatar
    Niels Möller committed
      hash->update(outer, hash->block_size, pad);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      memset(pad, IPAD, hash->block_size);
    
    Niels Möller's avatar
    Niels Möller committed
      memxor(pad, key, key_length);
    
    
    Niels Möller's avatar
    Niels Möller committed
      hash->update(inner, hash->block_size, pad);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      memcpy(state, inner, hash->context_size);
    
    Niels Möller's avatar
    Niels Möller committed
    }
    
    void
    
    Niels Möller's avatar
    Niels Möller committed
    hmac_update(void *state,
    	    const struct nettle_hash *hash,
    	    unsigned length, const uint8_t *data)
    {
      hash->update(state, length, data);
    }
    
    void
    hmac_digest(const void *outer, const void *inner, void *state,
    	    const struct nettle_hash *hash, 	    
    
    Niels Möller's avatar
    Niels Möller committed
    	    unsigned length, uint8_t *dst)
    {
    
    Niels Möller's avatar
    Niels Möller committed
      uint8_t *digest = alloca(hash->digest_size);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      hash->digest(state, hash->digest_size, digest);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      memcpy(state, outer, hash->context_size);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      hash->update(state, hash->digest_size, digest);
      hash->digest(state, length, dst);
    
    Niels Möller's avatar
    Niels Möller committed
    
    
    Niels Möller's avatar
    Niels Möller committed
      memcpy(state, inner, hash->context_size);
    
    Niels Möller's avatar
    Niels Möller committed
    }