2014-05-06 18:22:22 +02:00
|
|
|
#ifndef AES_H__
|
|
|
|
#define AES_H__
|
|
|
|
|
|
|
|
#include <inttypes.h>
|
|
|
|
#include <cryptopp/modes.h>
|
|
|
|
#include <cryptopp/aes.h>
|
2014-11-01 19:56:13 +01:00
|
|
|
#include "Identity.h"
|
2014-05-06 18:22:22 +02:00
|
|
|
|
|
|
|
namespace i2p
|
|
|
|
{
|
|
|
|
namespace crypto
|
|
|
|
{
|
|
|
|
union ChipherBlock
|
|
|
|
{
|
|
|
|
uint8_t buf[16];
|
|
|
|
uint64_t ll[2];
|
2014-05-09 17:44:39 +02:00
|
|
|
|
2014-05-09 18:05:04 +02:00
|
|
|
void operator^=(const ChipherBlock& other) // XOR
|
2014-05-09 17:44:39 +02:00
|
|
|
{
|
|
|
|
ll[0] ^= other.ll[0];
|
|
|
|
ll[1] ^= other.ll[1];
|
|
|
|
}
|
2014-05-06 18:22:22 +02:00
|
|
|
};
|
|
|
|
|
2014-11-01 19:56:13 +01:00
|
|
|
typedef i2p::data::Tag<32> AESKey;
|
|
|
|
|
2014-11-18 18:11:45 +01:00
|
|
|
template<size_t sz>
|
|
|
|
class AESAlignedBuffer // 16 bytes alignment
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
|
|
|
AESAlignedBuffer ()
|
|
|
|
{
|
|
|
|
m_Buf = m_UnalignedBuffer;
|
|
|
|
uint8_t rem = ((uint64_t)m_Buf) & 0x0f;
|
|
|
|
if (rem)
|
|
|
|
m_Buf += (16 - rem);
|
|
|
|
}
|
|
|
|
|
|
|
|
operator uint8_t * () { return m_Buf; };
|
|
|
|
operator const uint8_t * () const { return m_Buf; };
|
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
uint8_t m_UnalignedBuffer[sz + 15]; // up to 15 bytes alignment
|
|
|
|
uint8_t * m_Buf;
|
|
|
|
};
|
|
|
|
|
|
|
|
|
2014-06-02 16:05:04 +02:00
|
|
|
#ifdef AESNI
|
2014-05-07 21:40:24 +02:00
|
|
|
class ECBCryptoAESNI
|
2014-05-08 21:11:38 +02:00
|
|
|
{
|
2014-05-09 03:43:08 +02:00
|
|
|
public:
|
|
|
|
|
2014-05-13 04:51:59 +02:00
|
|
|
uint8_t * GetKeySchedule () { return m_KeySchedule; };
|
2014-11-18 18:11:45 +01:00
|
|
|
|
2014-05-08 21:11:38 +02:00
|
|
|
protected:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void ExpandKey (const AESKey& key);
|
2014-05-08 21:11:38 +02:00
|
|
|
|
2014-11-18 18:11:45 +01:00
|
|
|
private:
|
2014-05-08 21:11:38 +02:00
|
|
|
|
2014-11-18 18:11:45 +01:00
|
|
|
AESAlignedBuffer<240> m_KeySchedule; // 14 rounds for AES-256, 240 bytes
|
2014-05-08 21:11:38 +02:00
|
|
|
};
|
|
|
|
|
|
|
|
class ECBEncryptionAESNI: public ECBCryptoAESNI
|
2014-05-07 20:48:37 +02:00
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key) { ExpandKey (key); };
|
2014-05-07 21:39:30 +02:00
|
|
|
void Encrypt (const ChipherBlock * in, ChipherBlock * out);
|
2014-05-08 21:11:38 +02:00
|
|
|
};
|
2014-05-07 20:48:37 +02:00
|
|
|
|
2014-05-08 21:11:38 +02:00
|
|
|
class ECBDecryptionAESNI: public ECBCryptoAESNI
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key);
|
2014-05-08 21:11:38 +02:00
|
|
|
void Decrypt (const ChipherBlock * in, ChipherBlock * out);
|
2014-05-07 20:48:37 +02:00
|
|
|
};
|
|
|
|
|
2014-05-08 22:49:00 +02:00
|
|
|
typedef ECBEncryptionAESNI ECBEncryption;
|
|
|
|
typedef ECBDecryptionAESNI ECBDecryption;
|
|
|
|
|
|
|
|
#else // use crypto++
|
|
|
|
|
|
|
|
class ECBEncryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key)
|
2014-05-08 22:49:00 +02:00
|
|
|
{
|
|
|
|
m_Encryption.SetKey (key, 32);
|
|
|
|
}
|
|
|
|
void Encrypt (const ChipherBlock * in, ChipherBlock * out)
|
|
|
|
{
|
|
|
|
m_Encryption.ProcessData (out->buf, in->buf, 16);
|
|
|
|
}
|
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
CryptoPP::ECB_Mode<CryptoPP::AES>::Encryption m_Encryption;
|
|
|
|
};
|
|
|
|
|
|
|
|
class ECBDecryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key)
|
2014-05-08 22:49:00 +02:00
|
|
|
{
|
|
|
|
m_Decryption.SetKey (key, 32);
|
|
|
|
}
|
|
|
|
void Decrypt (const ChipherBlock * in, ChipherBlock * out)
|
|
|
|
{
|
|
|
|
m_Decryption.ProcessData (out->buf, in->buf, 16);
|
|
|
|
}
|
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
CryptoPP::ECB_Mode<CryptoPP::AES>::Decryption m_Decryption;
|
|
|
|
};
|
|
|
|
|
|
|
|
|
2014-05-07 20:48:37 +02:00
|
|
|
#endif
|
|
|
|
|
2014-05-06 18:22:22 +02:00
|
|
|
class CBCEncryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
|
|
|
CBCEncryption () { memset (m_LastBlock.buf, 0, 16); };
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key) { m_ECBEncryption.SetKey (key); }; // 32 bytes
|
2014-05-07 04:30:09 +02:00
|
|
|
void SetIV (const uint8_t * iv) { memcpy (m_LastBlock.buf, iv, 16); }; // 16 bytes
|
2014-05-06 18:22:22 +02:00
|
|
|
|
|
|
|
void Encrypt (int numBlocks, const ChipherBlock * in, ChipherBlock * out);
|
2014-06-08 13:56:04 +02:00
|
|
|
void Encrypt (const uint8_t * in, std::size_t len, uint8_t * out);
|
2014-05-14 20:54:01 +02:00
|
|
|
void Encrypt (const uint8_t * in, uint8_t * out); // one block
|
2014-05-06 18:22:22 +02:00
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
ChipherBlock m_LastBlock;
|
2014-05-13 04:51:59 +02:00
|
|
|
|
2014-05-09 03:43:08 +02:00
|
|
|
ECBEncryption m_ECBEncryption;
|
2014-05-06 18:22:22 +02:00
|
|
|
};
|
|
|
|
|
|
|
|
class CBCDecryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
|
|
|
CBCDecryption () { memset (m_IV.buf, 0, 16); };
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKey (const AESKey& key) { m_ECBDecryption.SetKey (key); }; // 32 bytes
|
2014-05-07 04:30:09 +02:00
|
|
|
void SetIV (const uint8_t * iv) { memcpy (m_IV.buf, iv, 16); }; // 16 bytes
|
2014-05-06 18:22:22 +02:00
|
|
|
|
|
|
|
void Decrypt (int numBlocks, const ChipherBlock * in, ChipherBlock * out);
|
2014-06-08 13:56:04 +02:00
|
|
|
void Decrypt (const uint8_t * in, std::size_t len, uint8_t * out);
|
2014-05-14 20:54:01 +02:00
|
|
|
void Decrypt (const uint8_t * in, uint8_t * out); // one block
|
2014-05-06 18:22:22 +02:00
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
ChipherBlock m_IV;
|
2014-05-09 03:43:08 +02:00
|
|
|
ECBDecryption m_ECBDecryption;
|
2014-05-06 18:22:22 +02:00
|
|
|
};
|
2014-05-15 17:21:41 +02:00
|
|
|
|
|
|
|
class TunnelEncryption // with double IV encryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKeys (const AESKey& layerKey, const AESKey& ivKey)
|
2014-05-15 17:21:41 +02:00
|
|
|
{
|
|
|
|
m_LayerEncryption.SetKey (layerKey);
|
|
|
|
m_IVEncryption.SetKey (ivKey);
|
|
|
|
}
|
|
|
|
|
|
|
|
void Encrypt (uint8_t * payload); // 1024 bytes (16 IV + 1008 data)
|
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
ECBEncryption m_IVEncryption;
|
2014-06-02 16:05:04 +02:00
|
|
|
#ifdef AESNI
|
2014-05-15 18:59:07 +02:00
|
|
|
ECBEncryption m_LayerEncryption;
|
|
|
|
#else
|
2014-05-15 17:21:41 +02:00
|
|
|
CBCEncryption m_LayerEncryption;
|
2014-05-15 18:59:07 +02:00
|
|
|
#endif
|
2014-05-15 17:21:41 +02:00
|
|
|
};
|
|
|
|
|
|
|
|
class TunnelDecryption // with double IV encryption
|
|
|
|
{
|
|
|
|
public:
|
|
|
|
|
2014-11-02 02:53:45 +01:00
|
|
|
void SetKeys (const AESKey& layerKey, const AESKey& ivKey)
|
2014-05-15 17:21:41 +02:00
|
|
|
{
|
|
|
|
m_LayerDecryption.SetKey (layerKey);
|
|
|
|
m_IVDecryption.SetKey (ivKey);
|
|
|
|
}
|
|
|
|
|
|
|
|
void Decrypt (uint8_t * payload); // 1024 bytes (16 IV + 1008 data)
|
|
|
|
|
|
|
|
private:
|
|
|
|
|
|
|
|
ECBDecryption m_IVDecryption;
|
2014-06-02 16:05:04 +02:00
|
|
|
#ifdef AESNI
|
2014-05-15 19:10:07 +02:00
|
|
|
ECBDecryption m_LayerDecryption;
|
|
|
|
#else
|
2014-05-15 17:21:41 +02:00
|
|
|
CBCDecryption m_LayerDecryption;
|
2014-05-15 19:10:07 +02:00
|
|
|
#endif
|
2014-05-15 17:21:41 +02:00
|
|
|
};
|
2014-05-06 18:22:22 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
#endif
|
|
|
|
|