]> git.ipfire.org Git - thirdparty/openssl.git/blame - crypto/hmac/hmac.c
Add HMAC test for invalid key len
[thirdparty/openssl.git] / crypto / hmac / hmac.c
CommitLineData
58964a49
RE
1/* crypto/hmac/hmac.c */
2/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3 * All rights reserved.
4 *
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
0f113f3e 8 *
58964a49
RE
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
0f113f3e 15 *
58964a49
RE
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
0f113f3e 22 *
58964a49
RE
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
25 * are met:
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
0f113f3e 37 * 4. If you include any Windows specific code (or a derivative thereof) from
58964a49
RE
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
0f113f3e 40 *
58964a49
RE
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51 * SUCH DAMAGE.
0f113f3e 52 *
58964a49
RE
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
57 */
6dff52e8 58
58964a49
RE
59#include <stdio.h>
60#include <stdlib.h>
61#include <string.h>
54a656ef 62#include "cryptlib.h"
25a66ee3 63#include <openssl/hmac.h>
58964a49 64
6343829a 65int HMAC_Init_ex(HMAC_CTX *ctx, const void *key, int len,
0f113f3e
MC
66 const EVP_MD *md, ENGINE *impl)
67{
68 int i, j, reset = 0;
69 unsigned char pad[HMAC_MAX_MD_CBLOCK];
70
71 if (md != NULL) {
72 reset = 1;
73 ctx->md = md;
e2095c65 74 } else if(ctx->md) {
0f113f3e 75 md = ctx->md;
e2095c65
MC
76 } else {
77 return 0;
78 }
79
80 if(!ctx->key_init && key == NULL)
81 return 0;
0f113f3e
MC
82
83 if (key != NULL) {
84 reset = 1;
85 j = M_EVP_MD_block_size(md);
86 OPENSSL_assert(j <= (int)sizeof(ctx->key));
87 if (j < len) {
88 if (!EVP_DigestInit_ex(&ctx->md_ctx, md, impl))
89 goto err;
90 if (!EVP_DigestUpdate(&ctx->md_ctx, key, len))
91 goto err;
92 if (!EVP_DigestFinal_ex(&(ctx->md_ctx), ctx->key,
93 &ctx->key_length))
94 goto err;
95 } else {
96 OPENSSL_assert(len >= 0 && len <= (int)sizeof(ctx->key));
97 memcpy(ctx->key, key, len);
98 ctx->key_length = len;
99 }
100 if (ctx->key_length != HMAC_MAX_MD_CBLOCK)
101 memset(&ctx->key[ctx->key_length], 0,
102 HMAC_MAX_MD_CBLOCK - ctx->key_length);
e2095c65 103 ctx->key_init = 1;
0f113f3e
MC
104 }
105
106 if (reset) {
107 for (i = 0; i < HMAC_MAX_MD_CBLOCK; i++)
108 pad[i] = 0x36 ^ ctx->key[i];
109 if (!EVP_DigestInit_ex(&ctx->i_ctx, md, impl))
110 goto err;
111 if (!EVP_DigestUpdate(&ctx->i_ctx, pad, M_EVP_MD_block_size(md)))
112 goto err;
113
114 for (i = 0; i < HMAC_MAX_MD_CBLOCK; i++)
115 pad[i] = 0x5c ^ ctx->key[i];
116 if (!EVP_DigestInit_ex(&ctx->o_ctx, md, impl))
117 goto err;
118 if (!EVP_DigestUpdate(&ctx->o_ctx, pad, M_EVP_MD_block_size(md)))
119 goto err;
120 }
121 if (!EVP_MD_CTX_copy_ex(&ctx->md_ctx, &ctx->i_ctx))
122 goto err;
123 return 1;
124 err:
125 return 0;
126}
58964a49 127
00a5a74b 128#ifndef OPENSSL_NO_DEPRECATED
6343829a 129int HMAC_Init(HMAC_CTX *ctx, const void *key, int len, const EVP_MD *md)
0f113f3e
MC
130{
131 if (key && md)
132 HMAC_CTX_init(ctx);
133 return HMAC_Init_ex(ctx, key, len, md, NULL);
134}
00a5a74b 135#endif
ff3fa48f 136
87d52468 137int HMAC_Update(HMAC_CTX *ctx, const unsigned char *data, size_t len)
0f113f3e 138{
e2095c65
MC
139 if(!ctx->key_init)
140 return 0;
0f113f3e
MC
141 return EVP_DigestUpdate(&ctx->md_ctx, data, len);
142}
58964a49 143
87d52468 144int HMAC_Final(HMAC_CTX *ctx, unsigned char *md, unsigned int *len)
0f113f3e
MC
145{
146 unsigned int i;
147 unsigned char buf[EVP_MAX_MD_SIZE];
148
e2095c65
MC
149 if(!ctx->key_init)
150 goto err;
151
0f113f3e
MC
152 if (!EVP_DigestFinal_ex(&ctx->md_ctx, buf, &i))
153 goto err;
154 if (!EVP_MD_CTX_copy_ex(&ctx->md_ctx, &ctx->o_ctx))
155 goto err;
156 if (!EVP_DigestUpdate(&ctx->md_ctx, buf, i))
157 goto err;
158 if (!EVP_DigestFinal_ex(&ctx->md_ctx, md, len))
159 goto err;
160 return 1;
161 err:
162 return 0;
163}
dbad1690
BL
164
165void HMAC_CTX_init(HMAC_CTX *ctx)
0f113f3e
MC
166{
167 EVP_MD_CTX_init(&ctx->i_ctx);
168 EVP_MD_CTX_init(&ctx->o_ctx);
169 EVP_MD_CTX_init(&ctx->md_ctx);
e2095c65
MC
170 ctx->key_init = 0;
171 ctx->md = NULL;
0f113f3e 172}
58964a49 173
87d52468 174int HMAC_CTX_copy(HMAC_CTX *dctx, HMAC_CTX *sctx)
0f113f3e
MC
175{
176 HMAC_CTX_init(dctx);
177 if (!EVP_MD_CTX_copy_ex(&dctx->i_ctx, &sctx->i_ctx))
178 goto err;
179 if (!EVP_MD_CTX_copy_ex(&dctx->o_ctx, &sctx->o_ctx))
180 goto err;
181 if (!EVP_MD_CTX_copy_ex(&dctx->md_ctx, &sctx->md_ctx))
182 goto err;
e2095c65
MC
183 dctx->key_init = sctx->key_init;
184 if(sctx->key_init) {
185 memcpy(dctx->key, sctx->key, HMAC_MAX_MD_CBLOCK);
186 dctx->key_length = sctx->key_length;
187 }
0f113f3e
MC
188 dctx->md = sctx->md;
189 return 1;
190 err:
191 return 0;
192}
74633553 193
dbad1690 194void HMAC_CTX_cleanup(HMAC_CTX *ctx)
0f113f3e
MC
195{
196 EVP_MD_CTX_cleanup(&ctx->i_ctx);
197 EVP_MD_CTX_cleanup(&ctx->o_ctx);
198 EVP_MD_CTX_cleanup(&ctx->md_ctx);
199 memset(ctx, 0, sizeof *ctx);
200}
58964a49 201
6343829a 202unsigned char *HMAC(const EVP_MD *evp_md, const void *key, int key_len,
0f113f3e
MC
203 const unsigned char *d, size_t n, unsigned char *md,
204 unsigned int *md_len)
205{
206 HMAC_CTX c;
207 static unsigned char m[EVP_MAX_MD_SIZE];
208
209 if (md == NULL)
210 md = m;
211 HMAC_CTX_init(&c);
00a5a74b 212 if (!HMAC_Init_ex(&c, key, key_len, evp_md, NULL))
0f113f3e
MC
213 goto err;
214 if (!HMAC_Update(&c, d, n))
215 goto err;
216 if (!HMAC_Final(&c, md, md_len))
217 goto err;
218 HMAC_CTX_cleanup(&c);
219 return md;
220 err:
221 return NULL;
222}
58964a49 223
e92f9f45 224void HMAC_CTX_set_flags(HMAC_CTX *ctx, unsigned long flags)
0f113f3e
MC
225{
226 M_EVP_MD_CTX_set_flags(&ctx->i_ctx, flags);
227 M_EVP_MD_CTX_set_flags(&ctx->o_ctx, flags);
228 M_EVP_MD_CTX_set_flags(&ctx->md_ctx, flags);
229}