2 * Copyright 2001-2024 The OpenSSL Project Authors. All Rights Reserved.
4 * Licensed under the Apache License 2.0 (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
11 * IBM S390X support for AES modes ecb, cbc, ofb, cfb, ctr.
12 * This file is included by cipher_aes_hw.c
15 #include "s390x_arch.h"
19 #define s390x_aes_cbc_initkey cipher_hw_aes_initkey
20 #define s390x_aes_cfb1_initkey cipher_hw_aes_initkey
21 #define s390x_aes_ctr_initkey cipher_hw_aes_initkey
22 #define s390x_aes_cbc_cipher_hw ossl_cipher_hw_generic_cbc
23 #define s390x_aes_cfb1_cipher_hw ossl_cipher_hw_generic_cfb1
24 #define s390x_aes_ctr_cipher_hw ossl_cipher_hw_generic_ctr
26 #define S390X_aes_128_ofb128_CAPABLE S390X_aes_128_ofb_CAPABLE
27 #define S390X_aes_192_ofb128_CAPABLE S390X_aes_192_ofb_CAPABLE
28 #define S390X_aes_256_ofb128_CAPABLE S390X_aes_256_ofb_CAPABLE
29 #define S390X_aes_128_cfb128_CAPABLE S390X_aes_128_cfb_CAPABLE
30 #define S390X_aes_192_cfb128_CAPABLE S390X_aes_192_cfb_CAPABLE
31 #define S390X_aes_256_cfb128_CAPABLE S390X_aes_256_cfb_CAPABLE
33 static int s390x_aes_ecb_initkey(PROV_CIPHER_CTX *dat,
34 const unsigned char *key, size_t keylen)
36 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
38 adat->plat.s390x.fc = S390X_AES_FC(keylen);
39 memcpy(adat->plat.s390x.param.km.k, key, keylen);
43 static int s390x_aes_ecb_cipher_hw(PROV_CIPHER_CTX *dat, unsigned char *out,
44 const unsigned char *in, size_t len)
46 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
47 unsigned int modifier = adat->base.enc ? 0 : S390X_DECRYPT;
49 s390x_km(in, len, out, adat->plat.s390x.fc | modifier,
50 &adat->plat.s390x.param.km);
54 static int s390x_aes_ofb128_initkey(PROV_CIPHER_CTX *dat,
55 const unsigned char *key, size_t keylen)
57 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
59 memcpy(adat->plat.s390x.param.kmo_kmf.k, key, keylen);
60 adat->plat.s390x.fc = S390X_AES_FC(keylen);
64 static int s390x_aes_ofb128_cipher_hw(PROV_CIPHER_CTX *dat, unsigned char *out,
65 const unsigned char *in, size_t len)
67 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
71 memcpy(adat->plat.s390x.param.kmo_kmf.cv, dat->iv, dat->ivlen);
73 *out = *in ^ adat->plat.s390x.param.kmo_kmf.cv[n];
84 s390x_kmo(in, len, out, adat->plat.s390x.fc,
85 &adat->plat.s390x.param.kmo_kmf);
92 s390x_km(adat->plat.s390x.param.kmo_kmf.cv, 16,
93 adat->plat.s390x.param.kmo_kmf.cv,
95 adat->plat.s390x.param.kmo_kmf.k);
98 out[n] = in[n] ^ adat->plat.s390x.param.kmo_kmf.cv[n];
103 memcpy(dat->iv, adat->plat.s390x.param.kmo_kmf.cv, dat->ivlen);
108 static int s390x_aes_cfb128_initkey(PROV_CIPHER_CTX *dat,
109 const unsigned char *key, size_t keylen)
111 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
113 adat->plat.s390x.fc = S390X_AES_FC(keylen);
114 adat->plat.s390x.fc |= 16 << 24; /* 16 bytes cipher feedback */
115 memcpy(adat->plat.s390x.param.kmo_kmf.k, key, keylen);
119 static int s390x_aes_cfb128_cipher_hw(PROV_CIPHER_CTX *dat, unsigned char *out,
120 const unsigned char *in, size_t len)
122 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
123 unsigned int modifier = adat->base.enc ? 0 : S390X_DECRYPT;
128 memcpy(adat->plat.s390x.param.kmo_kmf.cv, dat->iv, dat->ivlen);
131 *out = adat->plat.s390x.param.kmo_kmf.cv[n] ^ tmp;
132 adat->plat.s390x.param.kmo_kmf.cv[n] = dat->enc ? *out : tmp;
143 s390x_kmf(in, len, out, adat->plat.s390x.fc | modifier,
144 &adat->plat.s390x.param.kmo_kmf);
151 s390x_km(adat->plat.s390x.param.kmo_kmf.cv, 16,
152 adat->plat.s390x.param.kmo_kmf.cv,
153 S390X_AES_FC(dat->keylen),
154 adat->plat.s390x.param.kmo_kmf.k);
158 out[n] = adat->plat.s390x.param.kmo_kmf.cv[n] ^ tmp;
159 adat->plat.s390x.param.kmo_kmf.cv[n] = dat->enc ? out[n] : tmp;
164 memcpy(dat->iv, adat->plat.s390x.param.kmo_kmf.cv, dat->ivlen);
169 static int s390x_aes_cfb8_initkey(PROV_CIPHER_CTX *dat,
170 const unsigned char *key, size_t keylen)
172 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
174 adat->plat.s390x.fc = S390X_AES_FC(keylen);
175 adat->plat.s390x.fc |= 1 << 24; /* 1 byte cipher feedback */
176 memcpy(adat->plat.s390x.param.kmo_kmf.k, key, keylen);
180 static int s390x_aes_cfb8_cipher_hw(PROV_CIPHER_CTX *dat, unsigned char *out,
181 const unsigned char *in, size_t len)
183 PROV_AES_CTX *adat = (PROV_AES_CTX *)dat;
184 unsigned int modifier = adat->base.enc ? 0 : S390X_DECRYPT;
186 memcpy(adat->plat.s390x.param.kmo_kmf.cv, dat->iv, dat->ivlen);
187 s390x_kmf(in, len, out, adat->plat.s390x.fc | modifier,
188 &adat->plat.s390x.param.kmo_kmf);
189 memcpy(dat->iv, adat->plat.s390x.param.kmo_kmf.cv, dat->ivlen);
193 #define PROV_CIPHER_HW_declare(mode) \
194 static const PROV_CIPHER_HW s390x_aes_##mode = { \
195 s390x_aes_##mode##_initkey, \
196 s390x_aes_##mode##_cipher_hw, \
197 cipher_hw_aes_copyctx \
199 #define PROV_CIPHER_HW_select(mode) \
200 if ((keybits == 128 && S390X_aes_128_##mode##_CAPABLE) \
201 || (keybits == 192 && S390X_aes_192_##mode##_CAPABLE) \
202 || (keybits == 256 && S390X_aes_256_##mode##_CAPABLE)) \
203 return &s390x_aes_##mode;