]> git.ipfire.org Git - thirdparty/linux.git/commitdiff
crypto: ahash - Add support for drivers with no fallback
authorHerbert Xu <herbert@gondor.apana.org.au>
Wed, 4 Jun 2025 09:54:41 +0000 (17:54 +0800)
committerHerbert Xu <herbert@gondor.apana.org.au>
Wed, 11 Jun 2025 03:06:06 +0000 (11:06 +0800)
Some drivers cannot have a fallback, e.g., because the key is held
in hardware.  Allow these to be used with ahash by adding the bit
CRYPTO_ALG_NO_FALLBACK.

Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
Tested-by: Harald Freudenberger <freude@linux.ibm.com>
crypto/ahash.c
include/linux/crypto.h

index e10bc2659ae4f559504dbf7cfb7ab258b0bb99d9..bd9e49950201edb27f75ee420df71da95cc460a6 100644 (file)
@@ -347,6 +347,9 @@ static int ahash_do_req_chain(struct ahash_request *req,
        if (crypto_ahash_statesize(tfm) > HASH_MAX_STATESIZE)
                return -ENOSYS;
 
+       if (!crypto_ahash_need_fallback(tfm))
+               return -ENOSYS;
+
        {
                u8 state[HASH_MAX_STATESIZE];
 
@@ -952,6 +955,10 @@ static int ahash_prepare_alg(struct ahash_alg *alg)
            base->cra_reqsize > MAX_SYNC_HASH_REQSIZE)
                return -EINVAL;
 
+       if (base->cra_flags & CRYPTO_ALG_NEED_FALLBACK &&
+           base->cra_flags & CRYPTO_ALG_NO_FALLBACK)
+               return -EINVAL;
+
        err = hash_prepare_alg(&alg->halg);
        if (err)
                return err;
@@ -960,7 +967,8 @@ static int ahash_prepare_alg(struct ahash_alg *alg)
        base->cra_flags |= CRYPTO_ALG_TYPE_AHASH;
 
        if ((base->cra_flags ^ CRYPTO_ALG_REQ_VIRT) &
-           (CRYPTO_ALG_ASYNC | CRYPTO_ALG_REQ_VIRT))
+           (CRYPTO_ALG_ASYNC | CRYPTO_ALG_REQ_VIRT) &&
+           !(base->cra_flags & CRYPTO_ALG_NO_FALLBACK))
                base->cra_flags |= CRYPTO_ALG_NEED_FALLBACK;
 
        if (!alg->setkey)
index b50f1954d1bbad1e6481d9ea8725757af630feeb..a2137e19be7d86846633e6d7acca6dec59e98c77 100644 (file)
 /* Set if the algorithm supports virtual addresses. */
 #define CRYPTO_ALG_REQ_VIRT            0x00040000
 
+/* Set if the algorithm cannot have a fallback (e.g., phmac). */
+#define CRYPTO_ALG_NO_FALLBACK         0x00080000
+
 /* The high bits 0xff000000 are reserved for type-specific flags. */
 
 /*