18c2ecf20Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0 28c2ecf20Sopenharmony_ci/* Copyright (C) 2012-2019 ARM Limited (or its affiliates). */ 38c2ecf20Sopenharmony_ci 48c2ecf20Sopenharmony_ci#include <linux/kernel.h> 58c2ecf20Sopenharmony_ci#include <linux/module.h> 68c2ecf20Sopenharmony_ci#include <crypto/algapi.h> 78c2ecf20Sopenharmony_ci#include <crypto/internal/aead.h> 88c2ecf20Sopenharmony_ci#include <crypto/authenc.h> 98c2ecf20Sopenharmony_ci#include <crypto/gcm.h> 108c2ecf20Sopenharmony_ci#include <linux/rtnetlink.h> 118c2ecf20Sopenharmony_ci#include <crypto/internal/des.h> 128c2ecf20Sopenharmony_ci#include "cc_driver.h" 138c2ecf20Sopenharmony_ci#include "cc_buffer_mgr.h" 148c2ecf20Sopenharmony_ci#include "cc_aead.h" 158c2ecf20Sopenharmony_ci#include "cc_request_mgr.h" 168c2ecf20Sopenharmony_ci#include "cc_hash.h" 178c2ecf20Sopenharmony_ci#include "cc_sram_mgr.h" 188c2ecf20Sopenharmony_ci 198c2ecf20Sopenharmony_ci#define template_aead template_u.aead 208c2ecf20Sopenharmony_ci 218c2ecf20Sopenharmony_ci#define MAX_AEAD_SETKEY_SEQ 12 228c2ecf20Sopenharmony_ci#define MAX_AEAD_PROCESS_SEQ 23 238c2ecf20Sopenharmony_ci 248c2ecf20Sopenharmony_ci#define MAX_HMAC_DIGEST_SIZE (SHA256_DIGEST_SIZE) 258c2ecf20Sopenharmony_ci#define MAX_HMAC_BLOCK_SIZE (SHA256_BLOCK_SIZE) 268c2ecf20Sopenharmony_ci 278c2ecf20Sopenharmony_ci#define MAX_NONCE_SIZE CTR_RFC3686_NONCE_SIZE 288c2ecf20Sopenharmony_ci 298c2ecf20Sopenharmony_cistruct cc_aead_handle { 308c2ecf20Sopenharmony_ci u32 sram_workspace_addr; 318c2ecf20Sopenharmony_ci struct list_head aead_list; 328c2ecf20Sopenharmony_ci}; 338c2ecf20Sopenharmony_ci 348c2ecf20Sopenharmony_cistruct cc_hmac_s { 358c2ecf20Sopenharmony_ci u8 *padded_authkey; 368c2ecf20Sopenharmony_ci u8 *ipad_opad; /* IPAD, OPAD*/ 378c2ecf20Sopenharmony_ci dma_addr_t padded_authkey_dma_addr; 388c2ecf20Sopenharmony_ci dma_addr_t ipad_opad_dma_addr; 398c2ecf20Sopenharmony_ci}; 408c2ecf20Sopenharmony_ci 418c2ecf20Sopenharmony_cistruct cc_xcbc_s { 428c2ecf20Sopenharmony_ci u8 *xcbc_keys; /* K1,K2,K3 */ 438c2ecf20Sopenharmony_ci dma_addr_t xcbc_keys_dma_addr; 448c2ecf20Sopenharmony_ci}; 458c2ecf20Sopenharmony_ci 468c2ecf20Sopenharmony_cistruct cc_aead_ctx { 478c2ecf20Sopenharmony_ci struct cc_drvdata *drvdata; 488c2ecf20Sopenharmony_ci u8 ctr_nonce[MAX_NONCE_SIZE]; /* used for ctr3686 iv and aes ccm */ 498c2ecf20Sopenharmony_ci u8 *enckey; 508c2ecf20Sopenharmony_ci dma_addr_t enckey_dma_addr; 518c2ecf20Sopenharmony_ci union { 528c2ecf20Sopenharmony_ci struct cc_hmac_s hmac; 538c2ecf20Sopenharmony_ci struct cc_xcbc_s xcbc; 548c2ecf20Sopenharmony_ci } auth_state; 558c2ecf20Sopenharmony_ci unsigned int enc_keylen; 568c2ecf20Sopenharmony_ci unsigned int auth_keylen; 578c2ecf20Sopenharmony_ci unsigned int authsize; /* Actual (reduced?) size of the MAC/ICv */ 588c2ecf20Sopenharmony_ci unsigned int hash_len; 598c2ecf20Sopenharmony_ci enum drv_cipher_mode cipher_mode; 608c2ecf20Sopenharmony_ci enum cc_flow_mode flow_mode; 618c2ecf20Sopenharmony_ci enum drv_hash_mode auth_mode; 628c2ecf20Sopenharmony_ci}; 638c2ecf20Sopenharmony_ci 648c2ecf20Sopenharmony_cistatic void cc_aead_exit(struct crypto_aead *tfm) 658c2ecf20Sopenharmony_ci{ 668c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 678c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 688c2ecf20Sopenharmony_ci 698c2ecf20Sopenharmony_ci dev_dbg(dev, "Clearing context @%p for %s\n", crypto_aead_ctx(tfm), 708c2ecf20Sopenharmony_ci crypto_tfm_alg_name(&tfm->base)); 718c2ecf20Sopenharmony_ci 728c2ecf20Sopenharmony_ci /* Unmap enckey buffer */ 738c2ecf20Sopenharmony_ci if (ctx->enckey) { 748c2ecf20Sopenharmony_ci dma_free_coherent(dev, AES_MAX_KEY_SIZE, ctx->enckey, 758c2ecf20Sopenharmony_ci ctx->enckey_dma_addr); 768c2ecf20Sopenharmony_ci dev_dbg(dev, "Freed enckey DMA buffer enckey_dma_addr=%pad\n", 778c2ecf20Sopenharmony_ci &ctx->enckey_dma_addr); 788c2ecf20Sopenharmony_ci ctx->enckey_dma_addr = 0; 798c2ecf20Sopenharmony_ci ctx->enckey = NULL; 808c2ecf20Sopenharmony_ci } 818c2ecf20Sopenharmony_ci 828c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC) { /* XCBC authetication */ 838c2ecf20Sopenharmony_ci struct cc_xcbc_s *xcbc = &ctx->auth_state.xcbc; 848c2ecf20Sopenharmony_ci 858c2ecf20Sopenharmony_ci if (xcbc->xcbc_keys) { 868c2ecf20Sopenharmony_ci dma_free_coherent(dev, CC_AES_128_BIT_KEY_SIZE * 3, 878c2ecf20Sopenharmony_ci xcbc->xcbc_keys, 888c2ecf20Sopenharmony_ci xcbc->xcbc_keys_dma_addr); 898c2ecf20Sopenharmony_ci } 908c2ecf20Sopenharmony_ci dev_dbg(dev, "Freed xcbc_keys DMA buffer xcbc_keys_dma_addr=%pad\n", 918c2ecf20Sopenharmony_ci &xcbc->xcbc_keys_dma_addr); 928c2ecf20Sopenharmony_ci xcbc->xcbc_keys_dma_addr = 0; 938c2ecf20Sopenharmony_ci xcbc->xcbc_keys = NULL; 948c2ecf20Sopenharmony_ci } else if (ctx->auth_mode != DRV_HASH_NULL) { /* HMAC auth. */ 958c2ecf20Sopenharmony_ci struct cc_hmac_s *hmac = &ctx->auth_state.hmac; 968c2ecf20Sopenharmony_ci 978c2ecf20Sopenharmony_ci if (hmac->ipad_opad) { 988c2ecf20Sopenharmony_ci dma_free_coherent(dev, 2 * MAX_HMAC_DIGEST_SIZE, 998c2ecf20Sopenharmony_ci hmac->ipad_opad, 1008c2ecf20Sopenharmony_ci hmac->ipad_opad_dma_addr); 1018c2ecf20Sopenharmony_ci dev_dbg(dev, "Freed ipad_opad DMA buffer ipad_opad_dma_addr=%pad\n", 1028c2ecf20Sopenharmony_ci &hmac->ipad_opad_dma_addr); 1038c2ecf20Sopenharmony_ci hmac->ipad_opad_dma_addr = 0; 1048c2ecf20Sopenharmony_ci hmac->ipad_opad = NULL; 1058c2ecf20Sopenharmony_ci } 1068c2ecf20Sopenharmony_ci if (hmac->padded_authkey) { 1078c2ecf20Sopenharmony_ci dma_free_coherent(dev, MAX_HMAC_BLOCK_SIZE, 1088c2ecf20Sopenharmony_ci hmac->padded_authkey, 1098c2ecf20Sopenharmony_ci hmac->padded_authkey_dma_addr); 1108c2ecf20Sopenharmony_ci dev_dbg(dev, "Freed padded_authkey DMA buffer padded_authkey_dma_addr=%pad\n", 1118c2ecf20Sopenharmony_ci &hmac->padded_authkey_dma_addr); 1128c2ecf20Sopenharmony_ci hmac->padded_authkey_dma_addr = 0; 1138c2ecf20Sopenharmony_ci hmac->padded_authkey = NULL; 1148c2ecf20Sopenharmony_ci } 1158c2ecf20Sopenharmony_ci } 1168c2ecf20Sopenharmony_ci} 1178c2ecf20Sopenharmony_ci 1188c2ecf20Sopenharmony_cistatic unsigned int cc_get_aead_hash_len(struct crypto_aead *tfm) 1198c2ecf20Sopenharmony_ci{ 1208c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 1218c2ecf20Sopenharmony_ci 1228c2ecf20Sopenharmony_ci return cc_get_default_hash_len(ctx->drvdata); 1238c2ecf20Sopenharmony_ci} 1248c2ecf20Sopenharmony_ci 1258c2ecf20Sopenharmony_cistatic int cc_aead_init(struct crypto_aead *tfm) 1268c2ecf20Sopenharmony_ci{ 1278c2ecf20Sopenharmony_ci struct aead_alg *alg = crypto_aead_alg(tfm); 1288c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 1298c2ecf20Sopenharmony_ci struct cc_crypto_alg *cc_alg = 1308c2ecf20Sopenharmony_ci container_of(alg, struct cc_crypto_alg, aead_alg); 1318c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(cc_alg->drvdata); 1328c2ecf20Sopenharmony_ci 1338c2ecf20Sopenharmony_ci dev_dbg(dev, "Initializing context @%p for %s\n", ctx, 1348c2ecf20Sopenharmony_ci crypto_tfm_alg_name(&tfm->base)); 1358c2ecf20Sopenharmony_ci 1368c2ecf20Sopenharmony_ci /* Initialize modes in instance */ 1378c2ecf20Sopenharmony_ci ctx->cipher_mode = cc_alg->cipher_mode; 1388c2ecf20Sopenharmony_ci ctx->flow_mode = cc_alg->flow_mode; 1398c2ecf20Sopenharmony_ci ctx->auth_mode = cc_alg->auth_mode; 1408c2ecf20Sopenharmony_ci ctx->drvdata = cc_alg->drvdata; 1418c2ecf20Sopenharmony_ci crypto_aead_set_reqsize(tfm, sizeof(struct aead_req_ctx)); 1428c2ecf20Sopenharmony_ci 1438c2ecf20Sopenharmony_ci /* Allocate key buffer, cache line aligned */ 1448c2ecf20Sopenharmony_ci ctx->enckey = dma_alloc_coherent(dev, AES_MAX_KEY_SIZE, 1458c2ecf20Sopenharmony_ci &ctx->enckey_dma_addr, GFP_KERNEL); 1468c2ecf20Sopenharmony_ci if (!ctx->enckey) { 1478c2ecf20Sopenharmony_ci dev_err(dev, "Failed allocating key buffer\n"); 1488c2ecf20Sopenharmony_ci goto init_failed; 1498c2ecf20Sopenharmony_ci } 1508c2ecf20Sopenharmony_ci dev_dbg(dev, "Allocated enckey buffer in context ctx->enckey=@%p\n", 1518c2ecf20Sopenharmony_ci ctx->enckey); 1528c2ecf20Sopenharmony_ci 1538c2ecf20Sopenharmony_ci /* Set default authlen value */ 1548c2ecf20Sopenharmony_ci 1558c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC) { /* XCBC authetication */ 1568c2ecf20Sopenharmony_ci struct cc_xcbc_s *xcbc = &ctx->auth_state.xcbc; 1578c2ecf20Sopenharmony_ci const unsigned int key_size = CC_AES_128_BIT_KEY_SIZE * 3; 1588c2ecf20Sopenharmony_ci 1598c2ecf20Sopenharmony_ci /* Allocate dma-coherent buffer for XCBC's K1+K2+K3 */ 1608c2ecf20Sopenharmony_ci /* (and temporary for user key - up to 256b) */ 1618c2ecf20Sopenharmony_ci xcbc->xcbc_keys = dma_alloc_coherent(dev, key_size, 1628c2ecf20Sopenharmony_ci &xcbc->xcbc_keys_dma_addr, 1638c2ecf20Sopenharmony_ci GFP_KERNEL); 1648c2ecf20Sopenharmony_ci if (!xcbc->xcbc_keys) { 1658c2ecf20Sopenharmony_ci dev_err(dev, "Failed allocating buffer for XCBC keys\n"); 1668c2ecf20Sopenharmony_ci goto init_failed; 1678c2ecf20Sopenharmony_ci } 1688c2ecf20Sopenharmony_ci } else if (ctx->auth_mode != DRV_HASH_NULL) { /* HMAC authentication */ 1698c2ecf20Sopenharmony_ci struct cc_hmac_s *hmac = &ctx->auth_state.hmac; 1708c2ecf20Sopenharmony_ci const unsigned int digest_size = 2 * MAX_HMAC_DIGEST_SIZE; 1718c2ecf20Sopenharmony_ci dma_addr_t *pkey_dma = &hmac->padded_authkey_dma_addr; 1728c2ecf20Sopenharmony_ci 1738c2ecf20Sopenharmony_ci /* Allocate dma-coherent buffer for IPAD + OPAD */ 1748c2ecf20Sopenharmony_ci hmac->ipad_opad = dma_alloc_coherent(dev, digest_size, 1758c2ecf20Sopenharmony_ci &hmac->ipad_opad_dma_addr, 1768c2ecf20Sopenharmony_ci GFP_KERNEL); 1778c2ecf20Sopenharmony_ci 1788c2ecf20Sopenharmony_ci if (!hmac->ipad_opad) { 1798c2ecf20Sopenharmony_ci dev_err(dev, "Failed allocating IPAD/OPAD buffer\n"); 1808c2ecf20Sopenharmony_ci goto init_failed; 1818c2ecf20Sopenharmony_ci } 1828c2ecf20Sopenharmony_ci 1838c2ecf20Sopenharmony_ci dev_dbg(dev, "Allocated authkey buffer in context ctx->authkey=@%p\n", 1848c2ecf20Sopenharmony_ci hmac->ipad_opad); 1858c2ecf20Sopenharmony_ci 1868c2ecf20Sopenharmony_ci hmac->padded_authkey = dma_alloc_coherent(dev, 1878c2ecf20Sopenharmony_ci MAX_HMAC_BLOCK_SIZE, 1888c2ecf20Sopenharmony_ci pkey_dma, 1898c2ecf20Sopenharmony_ci GFP_KERNEL); 1908c2ecf20Sopenharmony_ci 1918c2ecf20Sopenharmony_ci if (!hmac->padded_authkey) { 1928c2ecf20Sopenharmony_ci dev_err(dev, "failed to allocate padded_authkey\n"); 1938c2ecf20Sopenharmony_ci goto init_failed; 1948c2ecf20Sopenharmony_ci } 1958c2ecf20Sopenharmony_ci } else { 1968c2ecf20Sopenharmony_ci ctx->auth_state.hmac.ipad_opad = NULL; 1978c2ecf20Sopenharmony_ci ctx->auth_state.hmac.padded_authkey = NULL; 1988c2ecf20Sopenharmony_ci } 1998c2ecf20Sopenharmony_ci ctx->hash_len = cc_get_aead_hash_len(tfm); 2008c2ecf20Sopenharmony_ci 2018c2ecf20Sopenharmony_ci return 0; 2028c2ecf20Sopenharmony_ci 2038c2ecf20Sopenharmony_ciinit_failed: 2048c2ecf20Sopenharmony_ci cc_aead_exit(tfm); 2058c2ecf20Sopenharmony_ci return -ENOMEM; 2068c2ecf20Sopenharmony_ci} 2078c2ecf20Sopenharmony_ci 2088c2ecf20Sopenharmony_cistatic void cc_aead_complete(struct device *dev, void *cc_req, int err) 2098c2ecf20Sopenharmony_ci{ 2108c2ecf20Sopenharmony_ci struct aead_request *areq = (struct aead_request *)cc_req; 2118c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(areq); 2128c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(cc_req); 2138c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 2148c2ecf20Sopenharmony_ci 2158c2ecf20Sopenharmony_ci /* BACKLOG notification */ 2168c2ecf20Sopenharmony_ci if (err == -EINPROGRESS) 2178c2ecf20Sopenharmony_ci goto done; 2188c2ecf20Sopenharmony_ci 2198c2ecf20Sopenharmony_ci cc_unmap_aead_request(dev, areq); 2208c2ecf20Sopenharmony_ci 2218c2ecf20Sopenharmony_ci /* Restore ordinary iv pointer */ 2228c2ecf20Sopenharmony_ci areq->iv = areq_ctx->backup_iv; 2238c2ecf20Sopenharmony_ci 2248c2ecf20Sopenharmony_ci if (err) 2258c2ecf20Sopenharmony_ci goto done; 2268c2ecf20Sopenharmony_ci 2278c2ecf20Sopenharmony_ci if (areq_ctx->gen_ctx.op_type == DRV_CRYPTO_DIRECTION_DECRYPT) { 2288c2ecf20Sopenharmony_ci if (memcmp(areq_ctx->mac_buf, areq_ctx->icv_virt_addr, 2298c2ecf20Sopenharmony_ci ctx->authsize) != 0) { 2308c2ecf20Sopenharmony_ci dev_dbg(dev, "Payload authentication failure, (auth-size=%d, cipher=%d)\n", 2318c2ecf20Sopenharmony_ci ctx->authsize, ctx->cipher_mode); 2328c2ecf20Sopenharmony_ci /* In case of payload authentication failure, MUST NOT 2338c2ecf20Sopenharmony_ci * revealed the decrypted message --> zero its memory. 2348c2ecf20Sopenharmony_ci */ 2358c2ecf20Sopenharmony_ci sg_zero_buffer(areq->dst, sg_nents(areq->dst), 2368c2ecf20Sopenharmony_ci areq->cryptlen, areq->assoclen); 2378c2ecf20Sopenharmony_ci err = -EBADMSG; 2388c2ecf20Sopenharmony_ci } 2398c2ecf20Sopenharmony_ci /*ENCRYPT*/ 2408c2ecf20Sopenharmony_ci } else if (areq_ctx->is_icv_fragmented) { 2418c2ecf20Sopenharmony_ci u32 skip = areq->cryptlen + areq_ctx->dst_offset; 2428c2ecf20Sopenharmony_ci 2438c2ecf20Sopenharmony_ci cc_copy_sg_portion(dev, areq_ctx->mac_buf, areq_ctx->dst_sgl, 2448c2ecf20Sopenharmony_ci skip, (skip + ctx->authsize), 2458c2ecf20Sopenharmony_ci CC_SG_FROM_BUF); 2468c2ecf20Sopenharmony_ci } 2478c2ecf20Sopenharmony_cidone: 2488c2ecf20Sopenharmony_ci aead_request_complete(areq, err); 2498c2ecf20Sopenharmony_ci} 2508c2ecf20Sopenharmony_ci 2518c2ecf20Sopenharmony_cistatic unsigned int xcbc_setkey(struct cc_hw_desc *desc, 2528c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx) 2538c2ecf20Sopenharmony_ci{ 2548c2ecf20Sopenharmony_ci /* Load the AES key */ 2558c2ecf20Sopenharmony_ci hw_desc_init(&desc[0]); 2568c2ecf20Sopenharmony_ci /* We are using for the source/user key the same buffer 2578c2ecf20Sopenharmony_ci * as for the output keys, * because after this key loading it 2588c2ecf20Sopenharmony_ci * is not needed anymore 2598c2ecf20Sopenharmony_ci */ 2608c2ecf20Sopenharmony_ci set_din_type(&desc[0], DMA_DLLI, 2618c2ecf20Sopenharmony_ci ctx->auth_state.xcbc.xcbc_keys_dma_addr, ctx->auth_keylen, 2628c2ecf20Sopenharmony_ci NS_BIT); 2638c2ecf20Sopenharmony_ci set_cipher_mode(&desc[0], DRV_CIPHER_ECB); 2648c2ecf20Sopenharmony_ci set_cipher_config0(&desc[0], DRV_CRYPTO_DIRECTION_ENCRYPT); 2658c2ecf20Sopenharmony_ci set_key_size_aes(&desc[0], ctx->auth_keylen); 2668c2ecf20Sopenharmony_ci set_flow_mode(&desc[0], S_DIN_to_AES); 2678c2ecf20Sopenharmony_ci set_setup_mode(&desc[0], SETUP_LOAD_KEY0); 2688c2ecf20Sopenharmony_ci 2698c2ecf20Sopenharmony_ci hw_desc_init(&desc[1]); 2708c2ecf20Sopenharmony_ci set_din_const(&desc[1], 0x01010101, CC_AES_128_BIT_KEY_SIZE); 2718c2ecf20Sopenharmony_ci set_flow_mode(&desc[1], DIN_AES_DOUT); 2728c2ecf20Sopenharmony_ci set_dout_dlli(&desc[1], ctx->auth_state.xcbc.xcbc_keys_dma_addr, 2738c2ecf20Sopenharmony_ci AES_KEYSIZE_128, NS_BIT, 0); 2748c2ecf20Sopenharmony_ci 2758c2ecf20Sopenharmony_ci hw_desc_init(&desc[2]); 2768c2ecf20Sopenharmony_ci set_din_const(&desc[2], 0x02020202, CC_AES_128_BIT_KEY_SIZE); 2778c2ecf20Sopenharmony_ci set_flow_mode(&desc[2], DIN_AES_DOUT); 2788c2ecf20Sopenharmony_ci set_dout_dlli(&desc[2], (ctx->auth_state.xcbc.xcbc_keys_dma_addr 2798c2ecf20Sopenharmony_ci + AES_KEYSIZE_128), 2808c2ecf20Sopenharmony_ci AES_KEYSIZE_128, NS_BIT, 0); 2818c2ecf20Sopenharmony_ci 2828c2ecf20Sopenharmony_ci hw_desc_init(&desc[3]); 2838c2ecf20Sopenharmony_ci set_din_const(&desc[3], 0x03030303, CC_AES_128_BIT_KEY_SIZE); 2848c2ecf20Sopenharmony_ci set_flow_mode(&desc[3], DIN_AES_DOUT); 2858c2ecf20Sopenharmony_ci set_dout_dlli(&desc[3], (ctx->auth_state.xcbc.xcbc_keys_dma_addr 2868c2ecf20Sopenharmony_ci + 2 * AES_KEYSIZE_128), 2878c2ecf20Sopenharmony_ci AES_KEYSIZE_128, NS_BIT, 0); 2888c2ecf20Sopenharmony_ci 2898c2ecf20Sopenharmony_ci return 4; 2908c2ecf20Sopenharmony_ci} 2918c2ecf20Sopenharmony_ci 2928c2ecf20Sopenharmony_cistatic unsigned int hmac_setkey(struct cc_hw_desc *desc, 2938c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx) 2948c2ecf20Sopenharmony_ci{ 2958c2ecf20Sopenharmony_ci unsigned int hmac_pad_const[2] = { HMAC_IPAD_CONST, HMAC_OPAD_CONST }; 2968c2ecf20Sopenharmony_ci unsigned int digest_ofs = 0; 2978c2ecf20Sopenharmony_ci unsigned int hash_mode = (ctx->auth_mode == DRV_HASH_SHA1) ? 2988c2ecf20Sopenharmony_ci DRV_HASH_HW_SHA1 : DRV_HASH_HW_SHA256; 2998c2ecf20Sopenharmony_ci unsigned int digest_size = (ctx->auth_mode == DRV_HASH_SHA1) ? 3008c2ecf20Sopenharmony_ci CC_SHA1_DIGEST_SIZE : CC_SHA256_DIGEST_SIZE; 3018c2ecf20Sopenharmony_ci struct cc_hmac_s *hmac = &ctx->auth_state.hmac; 3028c2ecf20Sopenharmony_ci 3038c2ecf20Sopenharmony_ci unsigned int idx = 0; 3048c2ecf20Sopenharmony_ci int i; 3058c2ecf20Sopenharmony_ci 3068c2ecf20Sopenharmony_ci /* calc derived HMAC key */ 3078c2ecf20Sopenharmony_ci for (i = 0; i < 2; i++) { 3088c2ecf20Sopenharmony_ci /* Load hash initial state */ 3098c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 3108c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 3118c2ecf20Sopenharmony_ci set_din_sram(&desc[idx], 3128c2ecf20Sopenharmony_ci cc_larval_digest_addr(ctx->drvdata, 3138c2ecf20Sopenharmony_ci ctx->auth_mode), 3148c2ecf20Sopenharmony_ci digest_size); 3158c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 3168c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 3178c2ecf20Sopenharmony_ci idx++; 3188c2ecf20Sopenharmony_ci 3198c2ecf20Sopenharmony_ci /* Load the hash current length*/ 3208c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 3218c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 3228c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, ctx->hash_len); 3238c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 3248c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 3258c2ecf20Sopenharmony_ci idx++; 3268c2ecf20Sopenharmony_ci 3278c2ecf20Sopenharmony_ci /* Prepare ipad key */ 3288c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 3298c2ecf20Sopenharmony_ci set_xor_val(&desc[idx], hmac_pad_const[i]); 3308c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 3318c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 3328c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 3338c2ecf20Sopenharmony_ci idx++; 3348c2ecf20Sopenharmony_ci 3358c2ecf20Sopenharmony_ci /* Perform HASH update */ 3368c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 3378c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 3388c2ecf20Sopenharmony_ci hmac->padded_authkey_dma_addr, 3398c2ecf20Sopenharmony_ci SHA256_BLOCK_SIZE, NS_BIT); 3408c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 3418c2ecf20Sopenharmony_ci set_xor_active(&desc[idx]); 3428c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_HASH); 3438c2ecf20Sopenharmony_ci idx++; 3448c2ecf20Sopenharmony_ci 3458c2ecf20Sopenharmony_ci /* Get the digset */ 3468c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 3478c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 3488c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], 3498c2ecf20Sopenharmony_ci (hmac->ipad_opad_dma_addr + digest_ofs), 3508c2ecf20Sopenharmony_ci digest_size, NS_BIT, 0); 3518c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 3528c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 3538c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_DISABLED); 3548c2ecf20Sopenharmony_ci idx++; 3558c2ecf20Sopenharmony_ci 3568c2ecf20Sopenharmony_ci digest_ofs += digest_size; 3578c2ecf20Sopenharmony_ci } 3588c2ecf20Sopenharmony_ci 3598c2ecf20Sopenharmony_ci return idx; 3608c2ecf20Sopenharmony_ci} 3618c2ecf20Sopenharmony_ci 3628c2ecf20Sopenharmony_cistatic int validate_keys_sizes(struct cc_aead_ctx *ctx) 3638c2ecf20Sopenharmony_ci{ 3648c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 3658c2ecf20Sopenharmony_ci 3668c2ecf20Sopenharmony_ci dev_dbg(dev, "enc_keylen=%u authkeylen=%u\n", 3678c2ecf20Sopenharmony_ci ctx->enc_keylen, ctx->auth_keylen); 3688c2ecf20Sopenharmony_ci 3698c2ecf20Sopenharmony_ci switch (ctx->auth_mode) { 3708c2ecf20Sopenharmony_ci case DRV_HASH_SHA1: 3718c2ecf20Sopenharmony_ci case DRV_HASH_SHA256: 3728c2ecf20Sopenharmony_ci break; 3738c2ecf20Sopenharmony_ci case DRV_HASH_XCBC_MAC: 3748c2ecf20Sopenharmony_ci if (ctx->auth_keylen != AES_KEYSIZE_128 && 3758c2ecf20Sopenharmony_ci ctx->auth_keylen != AES_KEYSIZE_192 && 3768c2ecf20Sopenharmony_ci ctx->auth_keylen != AES_KEYSIZE_256) 3778c2ecf20Sopenharmony_ci return -ENOTSUPP; 3788c2ecf20Sopenharmony_ci break; 3798c2ecf20Sopenharmony_ci case DRV_HASH_NULL: /* Not authenc (e.g., CCM) - no auth_key) */ 3808c2ecf20Sopenharmony_ci if (ctx->auth_keylen > 0) 3818c2ecf20Sopenharmony_ci return -EINVAL; 3828c2ecf20Sopenharmony_ci break; 3838c2ecf20Sopenharmony_ci default: 3848c2ecf20Sopenharmony_ci dev_dbg(dev, "Invalid auth_mode=%d\n", ctx->auth_mode); 3858c2ecf20Sopenharmony_ci return -EINVAL; 3868c2ecf20Sopenharmony_ci } 3878c2ecf20Sopenharmony_ci /* Check cipher key size */ 3888c2ecf20Sopenharmony_ci if (ctx->flow_mode == S_DIN_to_DES) { 3898c2ecf20Sopenharmony_ci if (ctx->enc_keylen != DES3_EDE_KEY_SIZE) { 3908c2ecf20Sopenharmony_ci dev_dbg(dev, "Invalid cipher(3DES) key size: %u\n", 3918c2ecf20Sopenharmony_ci ctx->enc_keylen); 3928c2ecf20Sopenharmony_ci return -EINVAL; 3938c2ecf20Sopenharmony_ci } 3948c2ecf20Sopenharmony_ci } else { /* Default assumed to be AES ciphers */ 3958c2ecf20Sopenharmony_ci if (ctx->enc_keylen != AES_KEYSIZE_128 && 3968c2ecf20Sopenharmony_ci ctx->enc_keylen != AES_KEYSIZE_192 && 3978c2ecf20Sopenharmony_ci ctx->enc_keylen != AES_KEYSIZE_256) { 3988c2ecf20Sopenharmony_ci dev_dbg(dev, "Invalid cipher(AES) key size: %u\n", 3998c2ecf20Sopenharmony_ci ctx->enc_keylen); 4008c2ecf20Sopenharmony_ci return -EINVAL; 4018c2ecf20Sopenharmony_ci } 4028c2ecf20Sopenharmony_ci } 4038c2ecf20Sopenharmony_ci 4048c2ecf20Sopenharmony_ci return 0; /* All tests of keys sizes passed */ 4058c2ecf20Sopenharmony_ci} 4068c2ecf20Sopenharmony_ci 4078c2ecf20Sopenharmony_ci/* This function prepers the user key so it can pass to the hmac processing 4088c2ecf20Sopenharmony_ci * (copy to intenral buffer or hash in case of key longer than block 4098c2ecf20Sopenharmony_ci */ 4108c2ecf20Sopenharmony_cistatic int cc_get_plain_hmac_key(struct crypto_aead *tfm, const u8 *authkey, 4118c2ecf20Sopenharmony_ci unsigned int keylen) 4128c2ecf20Sopenharmony_ci{ 4138c2ecf20Sopenharmony_ci dma_addr_t key_dma_addr = 0; 4148c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 4158c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 4168c2ecf20Sopenharmony_ci u32 larval_addr; 4178c2ecf20Sopenharmony_ci struct cc_crypto_req cc_req = {}; 4188c2ecf20Sopenharmony_ci unsigned int blocksize; 4198c2ecf20Sopenharmony_ci unsigned int digestsize; 4208c2ecf20Sopenharmony_ci unsigned int hashmode; 4218c2ecf20Sopenharmony_ci unsigned int idx = 0; 4228c2ecf20Sopenharmony_ci int rc = 0; 4238c2ecf20Sopenharmony_ci u8 *key = NULL; 4248c2ecf20Sopenharmony_ci struct cc_hw_desc desc[MAX_AEAD_SETKEY_SEQ]; 4258c2ecf20Sopenharmony_ci dma_addr_t padded_authkey_dma_addr = 4268c2ecf20Sopenharmony_ci ctx->auth_state.hmac.padded_authkey_dma_addr; 4278c2ecf20Sopenharmony_ci 4288c2ecf20Sopenharmony_ci switch (ctx->auth_mode) { /* auth_key required and >0 */ 4298c2ecf20Sopenharmony_ci case DRV_HASH_SHA1: 4308c2ecf20Sopenharmony_ci blocksize = SHA1_BLOCK_SIZE; 4318c2ecf20Sopenharmony_ci digestsize = SHA1_DIGEST_SIZE; 4328c2ecf20Sopenharmony_ci hashmode = DRV_HASH_HW_SHA1; 4338c2ecf20Sopenharmony_ci break; 4348c2ecf20Sopenharmony_ci case DRV_HASH_SHA256: 4358c2ecf20Sopenharmony_ci default: 4368c2ecf20Sopenharmony_ci blocksize = SHA256_BLOCK_SIZE; 4378c2ecf20Sopenharmony_ci digestsize = SHA256_DIGEST_SIZE; 4388c2ecf20Sopenharmony_ci hashmode = DRV_HASH_HW_SHA256; 4398c2ecf20Sopenharmony_ci } 4408c2ecf20Sopenharmony_ci 4418c2ecf20Sopenharmony_ci if (keylen != 0) { 4428c2ecf20Sopenharmony_ci 4438c2ecf20Sopenharmony_ci key = kmemdup(authkey, keylen, GFP_KERNEL); 4448c2ecf20Sopenharmony_ci if (!key) 4458c2ecf20Sopenharmony_ci return -ENOMEM; 4468c2ecf20Sopenharmony_ci 4478c2ecf20Sopenharmony_ci key_dma_addr = dma_map_single(dev, key, keylen, DMA_TO_DEVICE); 4488c2ecf20Sopenharmony_ci if (dma_mapping_error(dev, key_dma_addr)) { 4498c2ecf20Sopenharmony_ci dev_err(dev, "Mapping key va=0x%p len=%u for DMA failed\n", 4508c2ecf20Sopenharmony_ci key, keylen); 4518c2ecf20Sopenharmony_ci kfree_sensitive(key); 4528c2ecf20Sopenharmony_ci return -ENOMEM; 4538c2ecf20Sopenharmony_ci } 4548c2ecf20Sopenharmony_ci if (keylen > blocksize) { 4558c2ecf20Sopenharmony_ci /* Load hash initial state */ 4568c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 4578c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hashmode); 4588c2ecf20Sopenharmony_ci larval_addr = cc_larval_digest_addr(ctx->drvdata, 4598c2ecf20Sopenharmony_ci ctx->auth_mode); 4608c2ecf20Sopenharmony_ci set_din_sram(&desc[idx], larval_addr, digestsize); 4618c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 4628c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 4638c2ecf20Sopenharmony_ci idx++; 4648c2ecf20Sopenharmony_ci 4658c2ecf20Sopenharmony_ci /* Load the hash current length*/ 4668c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 4678c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hashmode); 4688c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, ctx->hash_len); 4698c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_ENABLED); 4708c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 4718c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 4728c2ecf20Sopenharmony_ci idx++; 4738c2ecf20Sopenharmony_ci 4748c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 4758c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 4768c2ecf20Sopenharmony_ci key_dma_addr, keylen, NS_BIT); 4778c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_HASH); 4788c2ecf20Sopenharmony_ci idx++; 4798c2ecf20Sopenharmony_ci 4808c2ecf20Sopenharmony_ci /* Get hashed key */ 4818c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 4828c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hashmode); 4838c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], padded_authkey_dma_addr, 4848c2ecf20Sopenharmony_ci digestsize, NS_BIT, 0); 4858c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 4868c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 4878c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_DISABLED); 4888c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], 4898c2ecf20Sopenharmony_ci HASH_DIGEST_RESULT_LITTLE_ENDIAN); 4908c2ecf20Sopenharmony_ci idx++; 4918c2ecf20Sopenharmony_ci 4928c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 4938c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, (blocksize - digestsize)); 4948c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], BYPASS); 4958c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], (padded_authkey_dma_addr + 4968c2ecf20Sopenharmony_ci digestsize), (blocksize - digestsize), 4978c2ecf20Sopenharmony_ci NS_BIT, 0); 4988c2ecf20Sopenharmony_ci idx++; 4998c2ecf20Sopenharmony_ci } else { 5008c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 5018c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, key_dma_addr, 5028c2ecf20Sopenharmony_ci keylen, NS_BIT); 5038c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], BYPASS); 5048c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], padded_authkey_dma_addr, 5058c2ecf20Sopenharmony_ci keylen, NS_BIT, 0); 5068c2ecf20Sopenharmony_ci idx++; 5078c2ecf20Sopenharmony_ci 5088c2ecf20Sopenharmony_ci if ((blocksize - keylen) != 0) { 5098c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 5108c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, 5118c2ecf20Sopenharmony_ci (blocksize - keylen)); 5128c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], BYPASS); 5138c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], 5148c2ecf20Sopenharmony_ci (padded_authkey_dma_addr + 5158c2ecf20Sopenharmony_ci keylen), 5168c2ecf20Sopenharmony_ci (blocksize - keylen), NS_BIT, 0); 5178c2ecf20Sopenharmony_ci idx++; 5188c2ecf20Sopenharmony_ci } 5198c2ecf20Sopenharmony_ci } 5208c2ecf20Sopenharmony_ci } else { 5218c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 5228c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, (blocksize - keylen)); 5238c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], BYPASS); 5248c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], padded_authkey_dma_addr, 5258c2ecf20Sopenharmony_ci blocksize, NS_BIT, 0); 5268c2ecf20Sopenharmony_ci idx++; 5278c2ecf20Sopenharmony_ci } 5288c2ecf20Sopenharmony_ci 5298c2ecf20Sopenharmony_ci rc = cc_send_sync_request(ctx->drvdata, &cc_req, desc, idx); 5308c2ecf20Sopenharmony_ci if (rc) 5318c2ecf20Sopenharmony_ci dev_err(dev, "send_request() failed (rc=%d)\n", rc); 5328c2ecf20Sopenharmony_ci 5338c2ecf20Sopenharmony_ci if (key_dma_addr) 5348c2ecf20Sopenharmony_ci dma_unmap_single(dev, key_dma_addr, keylen, DMA_TO_DEVICE); 5358c2ecf20Sopenharmony_ci 5368c2ecf20Sopenharmony_ci kfree_sensitive(key); 5378c2ecf20Sopenharmony_ci 5388c2ecf20Sopenharmony_ci return rc; 5398c2ecf20Sopenharmony_ci} 5408c2ecf20Sopenharmony_ci 5418c2ecf20Sopenharmony_cistatic int cc_aead_setkey(struct crypto_aead *tfm, const u8 *key, 5428c2ecf20Sopenharmony_ci unsigned int keylen) 5438c2ecf20Sopenharmony_ci{ 5448c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 5458c2ecf20Sopenharmony_ci struct cc_crypto_req cc_req = {}; 5468c2ecf20Sopenharmony_ci struct cc_hw_desc desc[MAX_AEAD_SETKEY_SEQ]; 5478c2ecf20Sopenharmony_ci unsigned int seq_len = 0; 5488c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 5498c2ecf20Sopenharmony_ci const u8 *enckey, *authkey; 5508c2ecf20Sopenharmony_ci int rc; 5518c2ecf20Sopenharmony_ci 5528c2ecf20Sopenharmony_ci dev_dbg(dev, "Setting key in context @%p for %s. key=%p keylen=%u\n", 5538c2ecf20Sopenharmony_ci ctx, crypto_tfm_alg_name(crypto_aead_tfm(tfm)), key, keylen); 5548c2ecf20Sopenharmony_ci 5558c2ecf20Sopenharmony_ci /* STAT_PHASE_0: Init and sanity checks */ 5568c2ecf20Sopenharmony_ci 5578c2ecf20Sopenharmony_ci if (ctx->auth_mode != DRV_HASH_NULL) { /* authenc() alg. */ 5588c2ecf20Sopenharmony_ci struct crypto_authenc_keys keys; 5598c2ecf20Sopenharmony_ci 5608c2ecf20Sopenharmony_ci rc = crypto_authenc_extractkeys(&keys, key, keylen); 5618c2ecf20Sopenharmony_ci if (rc) 5628c2ecf20Sopenharmony_ci return rc; 5638c2ecf20Sopenharmony_ci enckey = keys.enckey; 5648c2ecf20Sopenharmony_ci authkey = keys.authkey; 5658c2ecf20Sopenharmony_ci ctx->enc_keylen = keys.enckeylen; 5668c2ecf20Sopenharmony_ci ctx->auth_keylen = keys.authkeylen; 5678c2ecf20Sopenharmony_ci 5688c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CTR) { 5698c2ecf20Sopenharmony_ci /* the nonce is stored in bytes at end of key */ 5708c2ecf20Sopenharmony_ci if (ctx->enc_keylen < 5718c2ecf20Sopenharmony_ci (AES_MIN_KEY_SIZE + CTR_RFC3686_NONCE_SIZE)) 5728c2ecf20Sopenharmony_ci return -EINVAL; 5738c2ecf20Sopenharmony_ci /* Copy nonce from last 4 bytes in CTR key to 5748c2ecf20Sopenharmony_ci * first 4 bytes in CTR IV 5758c2ecf20Sopenharmony_ci */ 5768c2ecf20Sopenharmony_ci memcpy(ctx->ctr_nonce, enckey + ctx->enc_keylen - 5778c2ecf20Sopenharmony_ci CTR_RFC3686_NONCE_SIZE, CTR_RFC3686_NONCE_SIZE); 5788c2ecf20Sopenharmony_ci /* Set CTR key size */ 5798c2ecf20Sopenharmony_ci ctx->enc_keylen -= CTR_RFC3686_NONCE_SIZE; 5808c2ecf20Sopenharmony_ci } 5818c2ecf20Sopenharmony_ci } else { /* non-authenc - has just one key */ 5828c2ecf20Sopenharmony_ci enckey = key; 5838c2ecf20Sopenharmony_ci authkey = NULL; 5848c2ecf20Sopenharmony_ci ctx->enc_keylen = keylen; 5858c2ecf20Sopenharmony_ci ctx->auth_keylen = 0; 5868c2ecf20Sopenharmony_ci } 5878c2ecf20Sopenharmony_ci 5888c2ecf20Sopenharmony_ci rc = validate_keys_sizes(ctx); 5898c2ecf20Sopenharmony_ci if (rc) 5908c2ecf20Sopenharmony_ci return rc; 5918c2ecf20Sopenharmony_ci 5928c2ecf20Sopenharmony_ci /* STAT_PHASE_1: Copy key to ctx */ 5938c2ecf20Sopenharmony_ci 5948c2ecf20Sopenharmony_ci /* Get key material */ 5958c2ecf20Sopenharmony_ci memcpy(ctx->enckey, enckey, ctx->enc_keylen); 5968c2ecf20Sopenharmony_ci if (ctx->enc_keylen == 24) 5978c2ecf20Sopenharmony_ci memset(ctx->enckey + 24, 0, CC_AES_KEY_SIZE_MAX - 24); 5988c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC) { 5998c2ecf20Sopenharmony_ci memcpy(ctx->auth_state.xcbc.xcbc_keys, authkey, 6008c2ecf20Sopenharmony_ci ctx->auth_keylen); 6018c2ecf20Sopenharmony_ci } else if (ctx->auth_mode != DRV_HASH_NULL) { /* HMAC */ 6028c2ecf20Sopenharmony_ci rc = cc_get_plain_hmac_key(tfm, authkey, ctx->auth_keylen); 6038c2ecf20Sopenharmony_ci if (rc) 6048c2ecf20Sopenharmony_ci return rc; 6058c2ecf20Sopenharmony_ci } 6068c2ecf20Sopenharmony_ci 6078c2ecf20Sopenharmony_ci /* STAT_PHASE_2: Create sequence */ 6088c2ecf20Sopenharmony_ci 6098c2ecf20Sopenharmony_ci switch (ctx->auth_mode) { 6108c2ecf20Sopenharmony_ci case DRV_HASH_SHA1: 6118c2ecf20Sopenharmony_ci case DRV_HASH_SHA256: 6128c2ecf20Sopenharmony_ci seq_len = hmac_setkey(desc, ctx); 6138c2ecf20Sopenharmony_ci break; 6148c2ecf20Sopenharmony_ci case DRV_HASH_XCBC_MAC: 6158c2ecf20Sopenharmony_ci seq_len = xcbc_setkey(desc, ctx); 6168c2ecf20Sopenharmony_ci break; 6178c2ecf20Sopenharmony_ci case DRV_HASH_NULL: /* non-authenc modes, e.g., CCM */ 6188c2ecf20Sopenharmony_ci break; /* No auth. key setup */ 6198c2ecf20Sopenharmony_ci default: 6208c2ecf20Sopenharmony_ci dev_err(dev, "Unsupported authenc (%d)\n", ctx->auth_mode); 6218c2ecf20Sopenharmony_ci return -ENOTSUPP; 6228c2ecf20Sopenharmony_ci } 6238c2ecf20Sopenharmony_ci 6248c2ecf20Sopenharmony_ci /* STAT_PHASE_3: Submit sequence to HW */ 6258c2ecf20Sopenharmony_ci 6268c2ecf20Sopenharmony_ci if (seq_len > 0) { /* For CCM there is no sequence to setup the key */ 6278c2ecf20Sopenharmony_ci rc = cc_send_sync_request(ctx->drvdata, &cc_req, desc, seq_len); 6288c2ecf20Sopenharmony_ci if (rc) { 6298c2ecf20Sopenharmony_ci dev_err(dev, "send_request() failed (rc=%d)\n", rc); 6308c2ecf20Sopenharmony_ci return rc; 6318c2ecf20Sopenharmony_ci } 6328c2ecf20Sopenharmony_ci } 6338c2ecf20Sopenharmony_ci 6348c2ecf20Sopenharmony_ci /* Update STAT_PHASE_3 */ 6358c2ecf20Sopenharmony_ci return rc; 6368c2ecf20Sopenharmony_ci} 6378c2ecf20Sopenharmony_ci 6388c2ecf20Sopenharmony_cistatic int cc_des3_aead_setkey(struct crypto_aead *aead, const u8 *key, 6398c2ecf20Sopenharmony_ci unsigned int keylen) 6408c2ecf20Sopenharmony_ci{ 6418c2ecf20Sopenharmony_ci struct crypto_authenc_keys keys; 6428c2ecf20Sopenharmony_ci int err; 6438c2ecf20Sopenharmony_ci 6448c2ecf20Sopenharmony_ci err = crypto_authenc_extractkeys(&keys, key, keylen); 6458c2ecf20Sopenharmony_ci if (unlikely(err)) 6468c2ecf20Sopenharmony_ci return err; 6478c2ecf20Sopenharmony_ci 6488c2ecf20Sopenharmony_ci err = verify_aead_des3_key(aead, keys.enckey, keys.enckeylen) ?: 6498c2ecf20Sopenharmony_ci cc_aead_setkey(aead, key, keylen); 6508c2ecf20Sopenharmony_ci 6518c2ecf20Sopenharmony_ci memzero_explicit(&keys, sizeof(keys)); 6528c2ecf20Sopenharmony_ci return err; 6538c2ecf20Sopenharmony_ci} 6548c2ecf20Sopenharmony_ci 6558c2ecf20Sopenharmony_cistatic int cc_rfc4309_ccm_setkey(struct crypto_aead *tfm, const u8 *key, 6568c2ecf20Sopenharmony_ci unsigned int keylen) 6578c2ecf20Sopenharmony_ci{ 6588c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 6598c2ecf20Sopenharmony_ci 6608c2ecf20Sopenharmony_ci if (keylen < 3) 6618c2ecf20Sopenharmony_ci return -EINVAL; 6628c2ecf20Sopenharmony_ci 6638c2ecf20Sopenharmony_ci keylen -= 3; 6648c2ecf20Sopenharmony_ci memcpy(ctx->ctr_nonce, key + keylen, 3); 6658c2ecf20Sopenharmony_ci 6668c2ecf20Sopenharmony_ci return cc_aead_setkey(tfm, key, keylen); 6678c2ecf20Sopenharmony_ci} 6688c2ecf20Sopenharmony_ci 6698c2ecf20Sopenharmony_cistatic int cc_aead_setauthsize(struct crypto_aead *authenc, 6708c2ecf20Sopenharmony_ci unsigned int authsize) 6718c2ecf20Sopenharmony_ci{ 6728c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(authenc); 6738c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 6748c2ecf20Sopenharmony_ci 6758c2ecf20Sopenharmony_ci /* Unsupported auth. sizes */ 6768c2ecf20Sopenharmony_ci if (authsize == 0 || 6778c2ecf20Sopenharmony_ci authsize > crypto_aead_maxauthsize(authenc)) { 6788c2ecf20Sopenharmony_ci return -ENOTSUPP; 6798c2ecf20Sopenharmony_ci } 6808c2ecf20Sopenharmony_ci 6818c2ecf20Sopenharmony_ci ctx->authsize = authsize; 6828c2ecf20Sopenharmony_ci dev_dbg(dev, "authlen=%d\n", ctx->authsize); 6838c2ecf20Sopenharmony_ci 6848c2ecf20Sopenharmony_ci return 0; 6858c2ecf20Sopenharmony_ci} 6868c2ecf20Sopenharmony_ci 6878c2ecf20Sopenharmony_cistatic int cc_rfc4309_ccm_setauthsize(struct crypto_aead *authenc, 6888c2ecf20Sopenharmony_ci unsigned int authsize) 6898c2ecf20Sopenharmony_ci{ 6908c2ecf20Sopenharmony_ci switch (authsize) { 6918c2ecf20Sopenharmony_ci case 8: 6928c2ecf20Sopenharmony_ci case 12: 6938c2ecf20Sopenharmony_ci case 16: 6948c2ecf20Sopenharmony_ci break; 6958c2ecf20Sopenharmony_ci default: 6968c2ecf20Sopenharmony_ci return -EINVAL; 6978c2ecf20Sopenharmony_ci } 6988c2ecf20Sopenharmony_ci 6998c2ecf20Sopenharmony_ci return cc_aead_setauthsize(authenc, authsize); 7008c2ecf20Sopenharmony_ci} 7018c2ecf20Sopenharmony_ci 7028c2ecf20Sopenharmony_cistatic int cc_ccm_setauthsize(struct crypto_aead *authenc, 7038c2ecf20Sopenharmony_ci unsigned int authsize) 7048c2ecf20Sopenharmony_ci{ 7058c2ecf20Sopenharmony_ci switch (authsize) { 7068c2ecf20Sopenharmony_ci case 4: 7078c2ecf20Sopenharmony_ci case 6: 7088c2ecf20Sopenharmony_ci case 8: 7098c2ecf20Sopenharmony_ci case 10: 7108c2ecf20Sopenharmony_ci case 12: 7118c2ecf20Sopenharmony_ci case 14: 7128c2ecf20Sopenharmony_ci case 16: 7138c2ecf20Sopenharmony_ci break; 7148c2ecf20Sopenharmony_ci default: 7158c2ecf20Sopenharmony_ci return -EINVAL; 7168c2ecf20Sopenharmony_ci } 7178c2ecf20Sopenharmony_ci 7188c2ecf20Sopenharmony_ci return cc_aead_setauthsize(authenc, authsize); 7198c2ecf20Sopenharmony_ci} 7208c2ecf20Sopenharmony_ci 7218c2ecf20Sopenharmony_cistatic void cc_set_assoc_desc(struct aead_request *areq, unsigned int flow_mode, 7228c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], unsigned int *seq_size) 7238c2ecf20Sopenharmony_ci{ 7248c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(areq); 7258c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 7268c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(areq); 7278c2ecf20Sopenharmony_ci enum cc_req_dma_buf_type assoc_dma_type = areq_ctx->assoc_buff_type; 7288c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 7298c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 7308c2ecf20Sopenharmony_ci 7318c2ecf20Sopenharmony_ci switch (assoc_dma_type) { 7328c2ecf20Sopenharmony_ci case CC_DMA_BUF_DLLI: 7338c2ecf20Sopenharmony_ci dev_dbg(dev, "ASSOC buffer type DLLI\n"); 7348c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 7358c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, sg_dma_address(areq->src), 7368c2ecf20Sopenharmony_ci areq_ctx->assoclen, NS_BIT); 7378c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 7388c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC && 7398c2ecf20Sopenharmony_ci areq_ctx->cryptlen > 0) 7408c2ecf20Sopenharmony_ci set_din_not_last_indication(&desc[idx]); 7418c2ecf20Sopenharmony_ci break; 7428c2ecf20Sopenharmony_ci case CC_DMA_BUF_MLLI: 7438c2ecf20Sopenharmony_ci dev_dbg(dev, "ASSOC buffer type MLLI\n"); 7448c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 7458c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_MLLI, areq_ctx->assoc.sram_addr, 7468c2ecf20Sopenharmony_ci areq_ctx->assoc.mlli_nents, NS_BIT); 7478c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 7488c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC && 7498c2ecf20Sopenharmony_ci areq_ctx->cryptlen > 0) 7508c2ecf20Sopenharmony_ci set_din_not_last_indication(&desc[idx]); 7518c2ecf20Sopenharmony_ci break; 7528c2ecf20Sopenharmony_ci case CC_DMA_BUF_NULL: 7538c2ecf20Sopenharmony_ci default: 7548c2ecf20Sopenharmony_ci dev_err(dev, "Invalid ASSOC buffer type\n"); 7558c2ecf20Sopenharmony_ci } 7568c2ecf20Sopenharmony_ci 7578c2ecf20Sopenharmony_ci *seq_size = (++idx); 7588c2ecf20Sopenharmony_ci} 7598c2ecf20Sopenharmony_ci 7608c2ecf20Sopenharmony_cistatic void cc_proc_authen_desc(struct aead_request *areq, 7618c2ecf20Sopenharmony_ci unsigned int flow_mode, 7628c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 7638c2ecf20Sopenharmony_ci unsigned int *seq_size, int direct) 7648c2ecf20Sopenharmony_ci{ 7658c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(areq); 7668c2ecf20Sopenharmony_ci enum cc_req_dma_buf_type data_dma_type = areq_ctx->data_buff_type; 7678c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 7688c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(areq); 7698c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 7708c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 7718c2ecf20Sopenharmony_ci 7728c2ecf20Sopenharmony_ci switch (data_dma_type) { 7738c2ecf20Sopenharmony_ci case CC_DMA_BUF_DLLI: 7748c2ecf20Sopenharmony_ci { 7758c2ecf20Sopenharmony_ci struct scatterlist *cipher = 7768c2ecf20Sopenharmony_ci (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) ? 7778c2ecf20Sopenharmony_ci areq_ctx->dst_sgl : areq_ctx->src_sgl; 7788c2ecf20Sopenharmony_ci 7798c2ecf20Sopenharmony_ci unsigned int offset = 7808c2ecf20Sopenharmony_ci (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) ? 7818c2ecf20Sopenharmony_ci areq_ctx->dst_offset : areq_ctx->src_offset; 7828c2ecf20Sopenharmony_ci dev_dbg(dev, "AUTHENC: SRC/DST buffer type DLLI\n"); 7838c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 7848c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 7858c2ecf20Sopenharmony_ci (sg_dma_address(cipher) + offset), 7868c2ecf20Sopenharmony_ci areq_ctx->cryptlen, NS_BIT); 7878c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 7888c2ecf20Sopenharmony_ci break; 7898c2ecf20Sopenharmony_ci } 7908c2ecf20Sopenharmony_ci case CC_DMA_BUF_MLLI: 7918c2ecf20Sopenharmony_ci { 7928c2ecf20Sopenharmony_ci /* DOUBLE-PASS flow (as default) 7938c2ecf20Sopenharmony_ci * assoc. + iv + data -compact in one table 7948c2ecf20Sopenharmony_ci * if assoclen is ZERO only IV perform 7958c2ecf20Sopenharmony_ci */ 7968c2ecf20Sopenharmony_ci u32 mlli_addr = areq_ctx->assoc.sram_addr; 7978c2ecf20Sopenharmony_ci u32 mlli_nents = areq_ctx->assoc.mlli_nents; 7988c2ecf20Sopenharmony_ci 7998c2ecf20Sopenharmony_ci if (areq_ctx->is_single_pass) { 8008c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 8018c2ecf20Sopenharmony_ci mlli_addr = areq_ctx->dst.sram_addr; 8028c2ecf20Sopenharmony_ci mlli_nents = areq_ctx->dst.mlli_nents; 8038c2ecf20Sopenharmony_ci } else { 8048c2ecf20Sopenharmony_ci mlli_addr = areq_ctx->src.sram_addr; 8058c2ecf20Sopenharmony_ci mlli_nents = areq_ctx->src.mlli_nents; 8068c2ecf20Sopenharmony_ci } 8078c2ecf20Sopenharmony_ci } 8088c2ecf20Sopenharmony_ci 8098c2ecf20Sopenharmony_ci dev_dbg(dev, "AUTHENC: SRC/DST buffer type MLLI\n"); 8108c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 8118c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_MLLI, mlli_addr, mlli_nents, 8128c2ecf20Sopenharmony_ci NS_BIT); 8138c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 8148c2ecf20Sopenharmony_ci break; 8158c2ecf20Sopenharmony_ci } 8168c2ecf20Sopenharmony_ci case CC_DMA_BUF_NULL: 8178c2ecf20Sopenharmony_ci default: 8188c2ecf20Sopenharmony_ci dev_err(dev, "AUTHENC: Invalid SRC/DST buffer type\n"); 8198c2ecf20Sopenharmony_ci } 8208c2ecf20Sopenharmony_ci 8218c2ecf20Sopenharmony_ci *seq_size = (++idx); 8228c2ecf20Sopenharmony_ci} 8238c2ecf20Sopenharmony_ci 8248c2ecf20Sopenharmony_cistatic void cc_proc_cipher_desc(struct aead_request *areq, 8258c2ecf20Sopenharmony_ci unsigned int flow_mode, 8268c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 8278c2ecf20Sopenharmony_ci unsigned int *seq_size) 8288c2ecf20Sopenharmony_ci{ 8298c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 8308c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(areq); 8318c2ecf20Sopenharmony_ci enum cc_req_dma_buf_type data_dma_type = areq_ctx->data_buff_type; 8328c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(areq); 8338c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 8348c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 8358c2ecf20Sopenharmony_ci 8368c2ecf20Sopenharmony_ci if (areq_ctx->cryptlen == 0) 8378c2ecf20Sopenharmony_ci return; /*null processing*/ 8388c2ecf20Sopenharmony_ci 8398c2ecf20Sopenharmony_ci switch (data_dma_type) { 8408c2ecf20Sopenharmony_ci case CC_DMA_BUF_DLLI: 8418c2ecf20Sopenharmony_ci dev_dbg(dev, "CIPHER: SRC/DST buffer type DLLI\n"); 8428c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 8438c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 8448c2ecf20Sopenharmony_ci (sg_dma_address(areq_ctx->src_sgl) + 8458c2ecf20Sopenharmony_ci areq_ctx->src_offset), areq_ctx->cryptlen, 8468c2ecf20Sopenharmony_ci NS_BIT); 8478c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], 8488c2ecf20Sopenharmony_ci (sg_dma_address(areq_ctx->dst_sgl) + 8498c2ecf20Sopenharmony_ci areq_ctx->dst_offset), 8508c2ecf20Sopenharmony_ci areq_ctx->cryptlen, NS_BIT, 0); 8518c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 8528c2ecf20Sopenharmony_ci break; 8538c2ecf20Sopenharmony_ci case CC_DMA_BUF_MLLI: 8548c2ecf20Sopenharmony_ci dev_dbg(dev, "CIPHER: SRC/DST buffer type MLLI\n"); 8558c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 8568c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_MLLI, areq_ctx->src.sram_addr, 8578c2ecf20Sopenharmony_ci areq_ctx->src.mlli_nents, NS_BIT); 8588c2ecf20Sopenharmony_ci set_dout_mlli(&desc[idx], areq_ctx->dst.sram_addr, 8598c2ecf20Sopenharmony_ci areq_ctx->dst.mlli_nents, NS_BIT, 0); 8608c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], flow_mode); 8618c2ecf20Sopenharmony_ci break; 8628c2ecf20Sopenharmony_ci case CC_DMA_BUF_NULL: 8638c2ecf20Sopenharmony_ci default: 8648c2ecf20Sopenharmony_ci dev_err(dev, "CIPHER: Invalid SRC/DST buffer type\n"); 8658c2ecf20Sopenharmony_ci } 8668c2ecf20Sopenharmony_ci 8678c2ecf20Sopenharmony_ci *seq_size = (++idx); 8688c2ecf20Sopenharmony_ci} 8698c2ecf20Sopenharmony_ci 8708c2ecf20Sopenharmony_cistatic void cc_proc_digest_desc(struct aead_request *req, 8718c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 8728c2ecf20Sopenharmony_ci unsigned int *seq_size) 8738c2ecf20Sopenharmony_ci{ 8748c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 8758c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 8768c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 8778c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 8788c2ecf20Sopenharmony_ci unsigned int hash_mode = (ctx->auth_mode == DRV_HASH_SHA1) ? 8798c2ecf20Sopenharmony_ci DRV_HASH_HW_SHA1 : DRV_HASH_HW_SHA256; 8808c2ecf20Sopenharmony_ci int direct = req_ctx->gen_ctx.op_type; 8818c2ecf20Sopenharmony_ci 8828c2ecf20Sopenharmony_ci /* Get final ICV result */ 8838c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 8848c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 8858c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 8868c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 8878c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], req_ctx->icv_dma_addr, ctx->authsize, 8888c2ecf20Sopenharmony_ci NS_BIT, 1); 8898c2ecf20Sopenharmony_ci set_queue_last_ind(ctx->drvdata, &desc[idx]); 8908c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC) { 8918c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 8928c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 8938c2ecf20Sopenharmony_ci } else { 8948c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], 8958c2ecf20Sopenharmony_ci HASH_DIGEST_RESULT_LITTLE_ENDIAN); 8968c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 8978c2ecf20Sopenharmony_ci } 8988c2ecf20Sopenharmony_ci } else { /*Decrypt*/ 8998c2ecf20Sopenharmony_ci /* Get ICV out from hardware */ 9008c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 9018c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 9028c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 9038c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], req_ctx->mac_buf_dma_addr, 9048c2ecf20Sopenharmony_ci ctx->authsize, NS_BIT, 1); 9058c2ecf20Sopenharmony_ci set_queue_last_ind(ctx->drvdata, &desc[idx]); 9068c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], 9078c2ecf20Sopenharmony_ci HASH_DIGEST_RESULT_LITTLE_ENDIAN); 9088c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_DISABLED); 9098c2ecf20Sopenharmony_ci if (ctx->auth_mode == DRV_HASH_XCBC_MAC) { 9108c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 9118c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 9128c2ecf20Sopenharmony_ci } else { 9138c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 9148c2ecf20Sopenharmony_ci } 9158c2ecf20Sopenharmony_ci } 9168c2ecf20Sopenharmony_ci 9178c2ecf20Sopenharmony_ci *seq_size = (++idx); 9188c2ecf20Sopenharmony_ci} 9198c2ecf20Sopenharmony_ci 9208c2ecf20Sopenharmony_cistatic void cc_set_cipher_desc(struct aead_request *req, 9218c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 9228c2ecf20Sopenharmony_ci unsigned int *seq_size) 9238c2ecf20Sopenharmony_ci{ 9248c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 9258c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 9268c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 9278c2ecf20Sopenharmony_ci unsigned int hw_iv_size = req_ctx->hw_iv_size; 9288c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 9298c2ecf20Sopenharmony_ci int direct = req_ctx->gen_ctx.op_type; 9308c2ecf20Sopenharmony_ci 9318c2ecf20Sopenharmony_ci /* Setup cipher state */ 9328c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 9338c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], direct); 9348c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], ctx->flow_mode); 9358c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->gen_ctx.iv_dma_addr, 9368c2ecf20Sopenharmony_ci hw_iv_size, NS_BIT); 9378c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CTR) 9388c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 9398c2ecf20Sopenharmony_ci else 9408c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 9418c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], ctx->cipher_mode); 9428c2ecf20Sopenharmony_ci idx++; 9438c2ecf20Sopenharmony_ci 9448c2ecf20Sopenharmony_ci /* Setup enc. key */ 9458c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 9468c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], direct); 9478c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 9488c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], ctx->flow_mode); 9498c2ecf20Sopenharmony_ci if (ctx->flow_mode == S_DIN_to_AES) { 9508c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 9518c2ecf20Sopenharmony_ci ((ctx->enc_keylen == 24) ? CC_AES_KEY_SIZE_MAX : 9528c2ecf20Sopenharmony_ci ctx->enc_keylen), NS_BIT); 9538c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 9548c2ecf20Sopenharmony_ci } else { 9558c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 9568c2ecf20Sopenharmony_ci ctx->enc_keylen, NS_BIT); 9578c2ecf20Sopenharmony_ci set_key_size_des(&desc[idx], ctx->enc_keylen); 9588c2ecf20Sopenharmony_ci } 9598c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], ctx->cipher_mode); 9608c2ecf20Sopenharmony_ci idx++; 9618c2ecf20Sopenharmony_ci 9628c2ecf20Sopenharmony_ci *seq_size = idx; 9638c2ecf20Sopenharmony_ci} 9648c2ecf20Sopenharmony_ci 9658c2ecf20Sopenharmony_cistatic void cc_proc_cipher(struct aead_request *req, struct cc_hw_desc desc[], 9668c2ecf20Sopenharmony_ci unsigned int *seq_size, unsigned int data_flow_mode) 9678c2ecf20Sopenharmony_ci{ 9688c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 9698c2ecf20Sopenharmony_ci int direct = req_ctx->gen_ctx.op_type; 9708c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 9718c2ecf20Sopenharmony_ci 9728c2ecf20Sopenharmony_ci if (req_ctx->cryptlen == 0) 9738c2ecf20Sopenharmony_ci return; /*null processing*/ 9748c2ecf20Sopenharmony_ci 9758c2ecf20Sopenharmony_ci cc_set_cipher_desc(req, desc, &idx); 9768c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, data_flow_mode, desc, &idx); 9778c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 9788c2ecf20Sopenharmony_ci /* We must wait for DMA to write all cipher */ 9798c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 9808c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 9818c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 9828c2ecf20Sopenharmony_ci idx++; 9838c2ecf20Sopenharmony_ci } 9848c2ecf20Sopenharmony_ci 9858c2ecf20Sopenharmony_ci *seq_size = idx; 9868c2ecf20Sopenharmony_ci} 9878c2ecf20Sopenharmony_ci 9888c2ecf20Sopenharmony_cistatic void cc_set_hmac_desc(struct aead_request *req, struct cc_hw_desc desc[], 9898c2ecf20Sopenharmony_ci unsigned int *seq_size) 9908c2ecf20Sopenharmony_ci{ 9918c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 9928c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 9938c2ecf20Sopenharmony_ci unsigned int hash_mode = (ctx->auth_mode == DRV_HASH_SHA1) ? 9948c2ecf20Sopenharmony_ci DRV_HASH_HW_SHA1 : DRV_HASH_HW_SHA256; 9958c2ecf20Sopenharmony_ci unsigned int digest_size = (ctx->auth_mode == DRV_HASH_SHA1) ? 9968c2ecf20Sopenharmony_ci CC_SHA1_DIGEST_SIZE : CC_SHA256_DIGEST_SIZE; 9978c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 9988c2ecf20Sopenharmony_ci 9998c2ecf20Sopenharmony_ci /* Loading hash ipad xor key state */ 10008c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10018c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 10028c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 10038c2ecf20Sopenharmony_ci ctx->auth_state.hmac.ipad_opad_dma_addr, digest_size, 10048c2ecf20Sopenharmony_ci NS_BIT); 10058c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10068c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 10078c2ecf20Sopenharmony_ci idx++; 10088c2ecf20Sopenharmony_ci 10098c2ecf20Sopenharmony_ci /* Load init. digest len (64 bytes) */ 10108c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10118c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 10128c2ecf20Sopenharmony_ci set_din_sram(&desc[idx], cc_digest_len_addr(ctx->drvdata, hash_mode), 10138c2ecf20Sopenharmony_ci ctx->hash_len); 10148c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10158c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 10168c2ecf20Sopenharmony_ci idx++; 10178c2ecf20Sopenharmony_ci 10188c2ecf20Sopenharmony_ci *seq_size = idx; 10198c2ecf20Sopenharmony_ci} 10208c2ecf20Sopenharmony_ci 10218c2ecf20Sopenharmony_cistatic void cc_set_xcbc_desc(struct aead_request *req, struct cc_hw_desc desc[], 10228c2ecf20Sopenharmony_ci unsigned int *seq_size) 10238c2ecf20Sopenharmony_ci{ 10248c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 10258c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 10268c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 10278c2ecf20Sopenharmony_ci 10288c2ecf20Sopenharmony_ci /* Loading MAC state */ 10298c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10308c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0, CC_AES_BLOCK_SIZE); 10318c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 10328c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 10338c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 10348c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], CC_AES_128_BIT_KEY_SIZE); 10358c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10368c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 10378c2ecf20Sopenharmony_ci idx++; 10388c2ecf20Sopenharmony_ci 10398c2ecf20Sopenharmony_ci /* Setup XCBC MAC K1 */ 10408c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10418c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 10428c2ecf20Sopenharmony_ci ctx->auth_state.xcbc.xcbc_keys_dma_addr, 10438c2ecf20Sopenharmony_ci AES_KEYSIZE_128, NS_BIT); 10448c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 10458c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 10468c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 10478c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], CC_AES_128_BIT_KEY_SIZE); 10488c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10498c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 10508c2ecf20Sopenharmony_ci idx++; 10518c2ecf20Sopenharmony_ci 10528c2ecf20Sopenharmony_ci /* Setup XCBC MAC K2 */ 10538c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10548c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 10558c2ecf20Sopenharmony_ci (ctx->auth_state.xcbc.xcbc_keys_dma_addr + 10568c2ecf20Sopenharmony_ci AES_KEYSIZE_128), AES_KEYSIZE_128, NS_BIT); 10578c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 10588c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 10598c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 10608c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], CC_AES_128_BIT_KEY_SIZE); 10618c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10628c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 10638c2ecf20Sopenharmony_ci idx++; 10648c2ecf20Sopenharmony_ci 10658c2ecf20Sopenharmony_ci /* Setup XCBC MAC K3 */ 10668c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 10678c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 10688c2ecf20Sopenharmony_ci (ctx->auth_state.xcbc.xcbc_keys_dma_addr + 10698c2ecf20Sopenharmony_ci 2 * AES_KEYSIZE_128), AES_KEYSIZE_128, NS_BIT); 10708c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE2); 10718c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_XCBC_MAC); 10728c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 10738c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], CC_AES_128_BIT_KEY_SIZE); 10748c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 10758c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 10768c2ecf20Sopenharmony_ci idx++; 10778c2ecf20Sopenharmony_ci 10788c2ecf20Sopenharmony_ci *seq_size = idx; 10798c2ecf20Sopenharmony_ci} 10808c2ecf20Sopenharmony_ci 10818c2ecf20Sopenharmony_cistatic void cc_proc_header_desc(struct aead_request *req, 10828c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 10838c2ecf20Sopenharmony_ci unsigned int *seq_size) 10848c2ecf20Sopenharmony_ci{ 10858c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 10868c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 10878c2ecf20Sopenharmony_ci 10888c2ecf20Sopenharmony_ci /* Hash associated data */ 10898c2ecf20Sopenharmony_ci if (areq_ctx->assoclen > 0) 10908c2ecf20Sopenharmony_ci cc_set_assoc_desc(req, DIN_HASH, desc, &idx); 10918c2ecf20Sopenharmony_ci 10928c2ecf20Sopenharmony_ci /* Hash IV */ 10938c2ecf20Sopenharmony_ci *seq_size = idx; 10948c2ecf20Sopenharmony_ci} 10958c2ecf20Sopenharmony_ci 10968c2ecf20Sopenharmony_cistatic void cc_proc_scheme_desc(struct aead_request *req, 10978c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 10988c2ecf20Sopenharmony_ci unsigned int *seq_size) 10998c2ecf20Sopenharmony_ci{ 11008c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 11018c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 11028c2ecf20Sopenharmony_ci struct cc_aead_handle *aead_handle = ctx->drvdata->aead_handle; 11038c2ecf20Sopenharmony_ci unsigned int hash_mode = (ctx->auth_mode == DRV_HASH_SHA1) ? 11048c2ecf20Sopenharmony_ci DRV_HASH_HW_SHA1 : DRV_HASH_HW_SHA256; 11058c2ecf20Sopenharmony_ci unsigned int digest_size = (ctx->auth_mode == DRV_HASH_SHA1) ? 11068c2ecf20Sopenharmony_ci CC_SHA1_DIGEST_SIZE : CC_SHA256_DIGEST_SIZE; 11078c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 11088c2ecf20Sopenharmony_ci 11098c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 11108c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 11118c2ecf20Sopenharmony_ci set_dout_sram(&desc[idx], aead_handle->sram_workspace_addr, 11128c2ecf20Sopenharmony_ci ctx->hash_len); 11138c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 11148c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE1); 11158c2ecf20Sopenharmony_ci set_cipher_do(&desc[idx], DO_PAD); 11168c2ecf20Sopenharmony_ci idx++; 11178c2ecf20Sopenharmony_ci 11188c2ecf20Sopenharmony_ci /* Get final ICV result */ 11198c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 11208c2ecf20Sopenharmony_ci set_dout_sram(&desc[idx], aead_handle->sram_workspace_addr, 11218c2ecf20Sopenharmony_ci digest_size); 11228c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 11238c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 11248c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], HASH_DIGEST_RESULT_LITTLE_ENDIAN); 11258c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 11268c2ecf20Sopenharmony_ci idx++; 11278c2ecf20Sopenharmony_ci 11288c2ecf20Sopenharmony_ci /* Loading hash opad xor key state */ 11298c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 11308c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 11318c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 11328c2ecf20Sopenharmony_ci (ctx->auth_state.hmac.ipad_opad_dma_addr + digest_size), 11338c2ecf20Sopenharmony_ci digest_size, NS_BIT); 11348c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 11358c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 11368c2ecf20Sopenharmony_ci idx++; 11378c2ecf20Sopenharmony_ci 11388c2ecf20Sopenharmony_ci /* Load init. digest len (64 bytes) */ 11398c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 11408c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], hash_mode); 11418c2ecf20Sopenharmony_ci set_din_sram(&desc[idx], cc_digest_len_addr(ctx->drvdata, hash_mode), 11428c2ecf20Sopenharmony_ci ctx->hash_len); 11438c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_ENABLED); 11448c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 11458c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 11468c2ecf20Sopenharmony_ci idx++; 11478c2ecf20Sopenharmony_ci 11488c2ecf20Sopenharmony_ci /* Perform HASH update */ 11498c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 11508c2ecf20Sopenharmony_ci set_din_sram(&desc[idx], aead_handle->sram_workspace_addr, 11518c2ecf20Sopenharmony_ci digest_size); 11528c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_HASH); 11538c2ecf20Sopenharmony_ci idx++; 11548c2ecf20Sopenharmony_ci 11558c2ecf20Sopenharmony_ci *seq_size = idx; 11568c2ecf20Sopenharmony_ci} 11578c2ecf20Sopenharmony_ci 11588c2ecf20Sopenharmony_cistatic void cc_mlli_to_sram(struct aead_request *req, 11598c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], unsigned int *seq_size) 11608c2ecf20Sopenharmony_ci{ 11618c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 11628c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 11638c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 11648c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 11658c2ecf20Sopenharmony_ci 11668c2ecf20Sopenharmony_ci if ((req_ctx->assoc_buff_type == CC_DMA_BUF_MLLI || 11678c2ecf20Sopenharmony_ci req_ctx->data_buff_type == CC_DMA_BUF_MLLI || 11688c2ecf20Sopenharmony_ci !req_ctx->is_single_pass) && req_ctx->mlli_params.mlli_len) { 11698c2ecf20Sopenharmony_ci dev_dbg(dev, "Copy-to-sram: mlli_dma=%08x, mlli_size=%u\n", 11708c2ecf20Sopenharmony_ci ctx->drvdata->mlli_sram_addr, 11718c2ecf20Sopenharmony_ci req_ctx->mlli_params.mlli_len); 11728c2ecf20Sopenharmony_ci /* Copy MLLI table host-to-sram */ 11738c2ecf20Sopenharmony_ci hw_desc_init(&desc[*seq_size]); 11748c2ecf20Sopenharmony_ci set_din_type(&desc[*seq_size], DMA_DLLI, 11758c2ecf20Sopenharmony_ci req_ctx->mlli_params.mlli_dma_addr, 11768c2ecf20Sopenharmony_ci req_ctx->mlli_params.mlli_len, NS_BIT); 11778c2ecf20Sopenharmony_ci set_dout_sram(&desc[*seq_size], 11788c2ecf20Sopenharmony_ci ctx->drvdata->mlli_sram_addr, 11798c2ecf20Sopenharmony_ci req_ctx->mlli_params.mlli_len); 11808c2ecf20Sopenharmony_ci set_flow_mode(&desc[*seq_size], BYPASS); 11818c2ecf20Sopenharmony_ci (*seq_size)++; 11828c2ecf20Sopenharmony_ci } 11838c2ecf20Sopenharmony_ci} 11848c2ecf20Sopenharmony_ci 11858c2ecf20Sopenharmony_cistatic enum cc_flow_mode cc_get_data_flow(enum drv_crypto_direction direct, 11868c2ecf20Sopenharmony_ci enum cc_flow_mode setup_flow_mode, 11878c2ecf20Sopenharmony_ci bool is_single_pass) 11888c2ecf20Sopenharmony_ci{ 11898c2ecf20Sopenharmony_ci enum cc_flow_mode data_flow_mode; 11908c2ecf20Sopenharmony_ci 11918c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 11928c2ecf20Sopenharmony_ci if (setup_flow_mode == S_DIN_to_AES) 11938c2ecf20Sopenharmony_ci data_flow_mode = is_single_pass ? 11948c2ecf20Sopenharmony_ci AES_to_HASH_and_DOUT : DIN_AES_DOUT; 11958c2ecf20Sopenharmony_ci else 11968c2ecf20Sopenharmony_ci data_flow_mode = is_single_pass ? 11978c2ecf20Sopenharmony_ci DES_to_HASH_and_DOUT : DIN_DES_DOUT; 11988c2ecf20Sopenharmony_ci } else { /* Decrypt */ 11998c2ecf20Sopenharmony_ci if (setup_flow_mode == S_DIN_to_AES) 12008c2ecf20Sopenharmony_ci data_flow_mode = is_single_pass ? 12018c2ecf20Sopenharmony_ci AES_and_HASH : DIN_AES_DOUT; 12028c2ecf20Sopenharmony_ci else 12038c2ecf20Sopenharmony_ci data_flow_mode = is_single_pass ? 12048c2ecf20Sopenharmony_ci DES_and_HASH : DIN_DES_DOUT; 12058c2ecf20Sopenharmony_ci } 12068c2ecf20Sopenharmony_ci 12078c2ecf20Sopenharmony_ci return data_flow_mode; 12088c2ecf20Sopenharmony_ci} 12098c2ecf20Sopenharmony_ci 12108c2ecf20Sopenharmony_cistatic void cc_hmac_authenc(struct aead_request *req, struct cc_hw_desc desc[], 12118c2ecf20Sopenharmony_ci unsigned int *seq_size) 12128c2ecf20Sopenharmony_ci{ 12138c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 12148c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 12158c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 12168c2ecf20Sopenharmony_ci int direct = req_ctx->gen_ctx.op_type; 12178c2ecf20Sopenharmony_ci unsigned int data_flow_mode = 12188c2ecf20Sopenharmony_ci cc_get_data_flow(direct, ctx->flow_mode, 12198c2ecf20Sopenharmony_ci req_ctx->is_single_pass); 12208c2ecf20Sopenharmony_ci 12218c2ecf20Sopenharmony_ci if (req_ctx->is_single_pass) { 12228c2ecf20Sopenharmony_ci /* 12238c2ecf20Sopenharmony_ci * Single-pass flow 12248c2ecf20Sopenharmony_ci */ 12258c2ecf20Sopenharmony_ci cc_set_hmac_desc(req, desc, seq_size); 12268c2ecf20Sopenharmony_ci cc_set_cipher_desc(req, desc, seq_size); 12278c2ecf20Sopenharmony_ci cc_proc_header_desc(req, desc, seq_size); 12288c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, data_flow_mode, desc, seq_size); 12298c2ecf20Sopenharmony_ci cc_proc_scheme_desc(req, desc, seq_size); 12308c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 12318c2ecf20Sopenharmony_ci return; 12328c2ecf20Sopenharmony_ci } 12338c2ecf20Sopenharmony_ci 12348c2ecf20Sopenharmony_ci /* 12358c2ecf20Sopenharmony_ci * Double-pass flow 12368c2ecf20Sopenharmony_ci * Fallback for unsupported single-pass modes, 12378c2ecf20Sopenharmony_ci * i.e. using assoc. data of non-word-multiple 12388c2ecf20Sopenharmony_ci */ 12398c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 12408c2ecf20Sopenharmony_ci /* encrypt first.. */ 12418c2ecf20Sopenharmony_ci cc_proc_cipher(req, desc, seq_size, data_flow_mode); 12428c2ecf20Sopenharmony_ci /* authenc after..*/ 12438c2ecf20Sopenharmony_ci cc_set_hmac_desc(req, desc, seq_size); 12448c2ecf20Sopenharmony_ci cc_proc_authen_desc(req, DIN_HASH, desc, seq_size, direct); 12458c2ecf20Sopenharmony_ci cc_proc_scheme_desc(req, desc, seq_size); 12468c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 12478c2ecf20Sopenharmony_ci 12488c2ecf20Sopenharmony_ci } else { /*DECRYPT*/ 12498c2ecf20Sopenharmony_ci /* authenc first..*/ 12508c2ecf20Sopenharmony_ci cc_set_hmac_desc(req, desc, seq_size); 12518c2ecf20Sopenharmony_ci cc_proc_authen_desc(req, DIN_HASH, desc, seq_size, direct); 12528c2ecf20Sopenharmony_ci cc_proc_scheme_desc(req, desc, seq_size); 12538c2ecf20Sopenharmony_ci /* decrypt after.. */ 12548c2ecf20Sopenharmony_ci cc_proc_cipher(req, desc, seq_size, data_flow_mode); 12558c2ecf20Sopenharmony_ci /* read the digest result with setting the completion bit 12568c2ecf20Sopenharmony_ci * must be after the cipher operation 12578c2ecf20Sopenharmony_ci */ 12588c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 12598c2ecf20Sopenharmony_ci } 12608c2ecf20Sopenharmony_ci} 12618c2ecf20Sopenharmony_ci 12628c2ecf20Sopenharmony_cistatic void 12638c2ecf20Sopenharmony_cicc_xcbc_authenc(struct aead_request *req, struct cc_hw_desc desc[], 12648c2ecf20Sopenharmony_ci unsigned int *seq_size) 12658c2ecf20Sopenharmony_ci{ 12668c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 12678c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 12688c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 12698c2ecf20Sopenharmony_ci int direct = req_ctx->gen_ctx.op_type; 12708c2ecf20Sopenharmony_ci unsigned int data_flow_mode = 12718c2ecf20Sopenharmony_ci cc_get_data_flow(direct, ctx->flow_mode, 12728c2ecf20Sopenharmony_ci req_ctx->is_single_pass); 12738c2ecf20Sopenharmony_ci 12748c2ecf20Sopenharmony_ci if (req_ctx->is_single_pass) { 12758c2ecf20Sopenharmony_ci /* 12768c2ecf20Sopenharmony_ci * Single-pass flow 12778c2ecf20Sopenharmony_ci */ 12788c2ecf20Sopenharmony_ci cc_set_xcbc_desc(req, desc, seq_size); 12798c2ecf20Sopenharmony_ci cc_set_cipher_desc(req, desc, seq_size); 12808c2ecf20Sopenharmony_ci cc_proc_header_desc(req, desc, seq_size); 12818c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, data_flow_mode, desc, seq_size); 12828c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 12838c2ecf20Sopenharmony_ci return; 12848c2ecf20Sopenharmony_ci } 12858c2ecf20Sopenharmony_ci 12868c2ecf20Sopenharmony_ci /* 12878c2ecf20Sopenharmony_ci * Double-pass flow 12888c2ecf20Sopenharmony_ci * Fallback for unsupported single-pass modes, 12898c2ecf20Sopenharmony_ci * i.e. using assoc. data of non-word-multiple 12908c2ecf20Sopenharmony_ci */ 12918c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_ENCRYPT) { 12928c2ecf20Sopenharmony_ci /* encrypt first.. */ 12938c2ecf20Sopenharmony_ci cc_proc_cipher(req, desc, seq_size, data_flow_mode); 12948c2ecf20Sopenharmony_ci /* authenc after.. */ 12958c2ecf20Sopenharmony_ci cc_set_xcbc_desc(req, desc, seq_size); 12968c2ecf20Sopenharmony_ci cc_proc_authen_desc(req, DIN_HASH, desc, seq_size, direct); 12978c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 12988c2ecf20Sopenharmony_ci } else { /*DECRYPT*/ 12998c2ecf20Sopenharmony_ci /* authenc first.. */ 13008c2ecf20Sopenharmony_ci cc_set_xcbc_desc(req, desc, seq_size); 13018c2ecf20Sopenharmony_ci cc_proc_authen_desc(req, DIN_HASH, desc, seq_size, direct); 13028c2ecf20Sopenharmony_ci /* decrypt after..*/ 13038c2ecf20Sopenharmony_ci cc_proc_cipher(req, desc, seq_size, data_flow_mode); 13048c2ecf20Sopenharmony_ci /* read the digest result with setting the completion bit 13058c2ecf20Sopenharmony_ci * must be after the cipher operation 13068c2ecf20Sopenharmony_ci */ 13078c2ecf20Sopenharmony_ci cc_proc_digest_desc(req, desc, seq_size); 13088c2ecf20Sopenharmony_ci } 13098c2ecf20Sopenharmony_ci} 13108c2ecf20Sopenharmony_ci 13118c2ecf20Sopenharmony_cistatic int validate_data_size(struct cc_aead_ctx *ctx, 13128c2ecf20Sopenharmony_ci enum drv_crypto_direction direct, 13138c2ecf20Sopenharmony_ci struct aead_request *req) 13148c2ecf20Sopenharmony_ci{ 13158c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 13168c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 13178c2ecf20Sopenharmony_ci unsigned int assoclen = areq_ctx->assoclen; 13188c2ecf20Sopenharmony_ci unsigned int cipherlen = (direct == DRV_CRYPTO_DIRECTION_DECRYPT) ? 13198c2ecf20Sopenharmony_ci (req->cryptlen - ctx->authsize) : req->cryptlen; 13208c2ecf20Sopenharmony_ci 13218c2ecf20Sopenharmony_ci if (direct == DRV_CRYPTO_DIRECTION_DECRYPT && 13228c2ecf20Sopenharmony_ci req->cryptlen < ctx->authsize) 13238c2ecf20Sopenharmony_ci goto data_size_err; 13248c2ecf20Sopenharmony_ci 13258c2ecf20Sopenharmony_ci areq_ctx->is_single_pass = true; /*defaulted to fast flow*/ 13268c2ecf20Sopenharmony_ci 13278c2ecf20Sopenharmony_ci switch (ctx->flow_mode) { 13288c2ecf20Sopenharmony_ci case S_DIN_to_AES: 13298c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CBC && 13308c2ecf20Sopenharmony_ci !IS_ALIGNED(cipherlen, AES_BLOCK_SIZE)) 13318c2ecf20Sopenharmony_ci goto data_size_err; 13328c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CCM) 13338c2ecf20Sopenharmony_ci break; 13348c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_GCTR) { 13358c2ecf20Sopenharmony_ci if (areq_ctx->plaintext_authenticate_only) 13368c2ecf20Sopenharmony_ci areq_ctx->is_single_pass = false; 13378c2ecf20Sopenharmony_ci break; 13388c2ecf20Sopenharmony_ci } 13398c2ecf20Sopenharmony_ci 13408c2ecf20Sopenharmony_ci if (!IS_ALIGNED(assoclen, sizeof(u32))) 13418c2ecf20Sopenharmony_ci areq_ctx->is_single_pass = false; 13428c2ecf20Sopenharmony_ci 13438c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CTR && 13448c2ecf20Sopenharmony_ci !IS_ALIGNED(cipherlen, sizeof(u32))) 13458c2ecf20Sopenharmony_ci areq_ctx->is_single_pass = false; 13468c2ecf20Sopenharmony_ci 13478c2ecf20Sopenharmony_ci break; 13488c2ecf20Sopenharmony_ci case S_DIN_to_DES: 13498c2ecf20Sopenharmony_ci if (!IS_ALIGNED(cipherlen, DES_BLOCK_SIZE)) 13508c2ecf20Sopenharmony_ci goto data_size_err; 13518c2ecf20Sopenharmony_ci if (!IS_ALIGNED(assoclen, DES_BLOCK_SIZE)) 13528c2ecf20Sopenharmony_ci areq_ctx->is_single_pass = false; 13538c2ecf20Sopenharmony_ci break; 13548c2ecf20Sopenharmony_ci default: 13558c2ecf20Sopenharmony_ci dev_err(dev, "Unexpected flow mode (%d)\n", ctx->flow_mode); 13568c2ecf20Sopenharmony_ci goto data_size_err; 13578c2ecf20Sopenharmony_ci } 13588c2ecf20Sopenharmony_ci 13598c2ecf20Sopenharmony_ci return 0; 13608c2ecf20Sopenharmony_ci 13618c2ecf20Sopenharmony_cidata_size_err: 13628c2ecf20Sopenharmony_ci return -EINVAL; 13638c2ecf20Sopenharmony_ci} 13648c2ecf20Sopenharmony_ci 13658c2ecf20Sopenharmony_cistatic unsigned int format_ccm_a0(u8 *pa0_buff, u32 header_size) 13668c2ecf20Sopenharmony_ci{ 13678c2ecf20Sopenharmony_ci unsigned int len = 0; 13688c2ecf20Sopenharmony_ci 13698c2ecf20Sopenharmony_ci if (header_size == 0) 13708c2ecf20Sopenharmony_ci return 0; 13718c2ecf20Sopenharmony_ci 13728c2ecf20Sopenharmony_ci if (header_size < ((1UL << 16) - (1UL << 8))) { 13738c2ecf20Sopenharmony_ci len = 2; 13748c2ecf20Sopenharmony_ci 13758c2ecf20Sopenharmony_ci pa0_buff[0] = (header_size >> 8) & 0xFF; 13768c2ecf20Sopenharmony_ci pa0_buff[1] = header_size & 0xFF; 13778c2ecf20Sopenharmony_ci } else { 13788c2ecf20Sopenharmony_ci len = 6; 13798c2ecf20Sopenharmony_ci 13808c2ecf20Sopenharmony_ci pa0_buff[0] = 0xFF; 13818c2ecf20Sopenharmony_ci pa0_buff[1] = 0xFE; 13828c2ecf20Sopenharmony_ci pa0_buff[2] = (header_size >> 24) & 0xFF; 13838c2ecf20Sopenharmony_ci pa0_buff[3] = (header_size >> 16) & 0xFF; 13848c2ecf20Sopenharmony_ci pa0_buff[4] = (header_size >> 8) & 0xFF; 13858c2ecf20Sopenharmony_ci pa0_buff[5] = header_size & 0xFF; 13868c2ecf20Sopenharmony_ci } 13878c2ecf20Sopenharmony_ci 13888c2ecf20Sopenharmony_ci return len; 13898c2ecf20Sopenharmony_ci} 13908c2ecf20Sopenharmony_ci 13918c2ecf20Sopenharmony_cistatic int set_msg_len(u8 *block, unsigned int msglen, unsigned int csize) 13928c2ecf20Sopenharmony_ci{ 13938c2ecf20Sopenharmony_ci __be32 data; 13948c2ecf20Sopenharmony_ci 13958c2ecf20Sopenharmony_ci memset(block, 0, csize); 13968c2ecf20Sopenharmony_ci block += csize; 13978c2ecf20Sopenharmony_ci 13988c2ecf20Sopenharmony_ci if (csize >= 4) 13998c2ecf20Sopenharmony_ci csize = 4; 14008c2ecf20Sopenharmony_ci else if (msglen > (1 << (8 * csize))) 14018c2ecf20Sopenharmony_ci return -EOVERFLOW; 14028c2ecf20Sopenharmony_ci 14038c2ecf20Sopenharmony_ci data = cpu_to_be32(msglen); 14048c2ecf20Sopenharmony_ci memcpy(block - csize, (u8 *)&data + 4 - csize, csize); 14058c2ecf20Sopenharmony_ci 14068c2ecf20Sopenharmony_ci return 0; 14078c2ecf20Sopenharmony_ci} 14088c2ecf20Sopenharmony_ci 14098c2ecf20Sopenharmony_cistatic int cc_ccm(struct aead_request *req, struct cc_hw_desc desc[], 14108c2ecf20Sopenharmony_ci unsigned int *seq_size) 14118c2ecf20Sopenharmony_ci{ 14128c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 14138c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 14148c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 14158c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 14168c2ecf20Sopenharmony_ci unsigned int cipher_flow_mode; 14178c2ecf20Sopenharmony_ci dma_addr_t mac_result; 14188c2ecf20Sopenharmony_ci 14198c2ecf20Sopenharmony_ci if (req_ctx->gen_ctx.op_type == DRV_CRYPTO_DIRECTION_DECRYPT) { 14208c2ecf20Sopenharmony_ci cipher_flow_mode = AES_to_HASH_and_DOUT; 14218c2ecf20Sopenharmony_ci mac_result = req_ctx->mac_buf_dma_addr; 14228c2ecf20Sopenharmony_ci } else { /* Encrypt */ 14238c2ecf20Sopenharmony_ci cipher_flow_mode = AES_and_HASH; 14248c2ecf20Sopenharmony_ci mac_result = req_ctx->icv_dma_addr; 14258c2ecf20Sopenharmony_ci } 14268c2ecf20Sopenharmony_ci 14278c2ecf20Sopenharmony_ci /* load key */ 14288c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14298c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CTR); 14308c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 14318c2ecf20Sopenharmony_ci ((ctx->enc_keylen == 24) ? CC_AES_KEY_SIZE_MAX : 14328c2ecf20Sopenharmony_ci ctx->enc_keylen), NS_BIT); 14338c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 14348c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 14358c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 14368c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 14378c2ecf20Sopenharmony_ci idx++; 14388c2ecf20Sopenharmony_ci 14398c2ecf20Sopenharmony_ci /* load ctr state */ 14408c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14418c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CTR); 14428c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 14438c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 14448c2ecf20Sopenharmony_ci req_ctx->gen_ctx.iv_dma_addr, AES_BLOCK_SIZE, NS_BIT); 14458c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 14468c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 14478c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 14488c2ecf20Sopenharmony_ci idx++; 14498c2ecf20Sopenharmony_ci 14508c2ecf20Sopenharmony_ci /* load MAC key */ 14518c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14528c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CBC_MAC); 14538c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 14548c2ecf20Sopenharmony_ci ((ctx->enc_keylen == 24) ? CC_AES_KEY_SIZE_MAX : 14558c2ecf20Sopenharmony_ci ctx->enc_keylen), NS_BIT); 14568c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 14578c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 14588c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 14598c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 14608c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 14618c2ecf20Sopenharmony_ci idx++; 14628c2ecf20Sopenharmony_ci 14638c2ecf20Sopenharmony_ci /* load MAC state */ 14648c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14658c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CBC_MAC); 14668c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 14678c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->mac_buf_dma_addr, 14688c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 14698c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DESC_DIRECTION_ENCRYPT_ENCRYPT); 14708c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 14718c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 14728c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 14738c2ecf20Sopenharmony_ci idx++; 14748c2ecf20Sopenharmony_ci 14758c2ecf20Sopenharmony_ci /* process assoc data */ 14768c2ecf20Sopenharmony_ci if (req_ctx->assoclen > 0) { 14778c2ecf20Sopenharmony_ci cc_set_assoc_desc(req, DIN_HASH, desc, &idx); 14788c2ecf20Sopenharmony_ci } else { 14798c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14808c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 14818c2ecf20Sopenharmony_ci sg_dma_address(&req_ctx->ccm_adata_sg), 14828c2ecf20Sopenharmony_ci AES_BLOCK_SIZE + req_ctx->ccm_hdr_size, NS_BIT); 14838c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_HASH); 14848c2ecf20Sopenharmony_ci idx++; 14858c2ecf20Sopenharmony_ci } 14868c2ecf20Sopenharmony_ci 14878c2ecf20Sopenharmony_ci /* process the cipher */ 14888c2ecf20Sopenharmony_ci if (req_ctx->cryptlen) 14898c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, cipher_flow_mode, desc, &idx); 14908c2ecf20Sopenharmony_ci 14918c2ecf20Sopenharmony_ci /* Read temporal MAC */ 14928c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 14938c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CBC_MAC); 14948c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], req_ctx->mac_buf_dma_addr, ctx->authsize, 14958c2ecf20Sopenharmony_ci NS_BIT, 0); 14968c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 14978c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], HASH_DIGEST_RESULT_LITTLE_ENDIAN); 14988c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 14998c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 15008c2ecf20Sopenharmony_ci idx++; 15018c2ecf20Sopenharmony_ci 15028c2ecf20Sopenharmony_ci /* load AES-CTR state (for last MAC calculation)*/ 15038c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 15048c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_CTR); 15058c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 15068c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->ccm_iv0_dma_addr, 15078c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 15088c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 15098c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 15108c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 15118c2ecf20Sopenharmony_ci idx++; 15128c2ecf20Sopenharmony_ci 15138c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 15148c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 15158c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 15168c2ecf20Sopenharmony_ci idx++; 15178c2ecf20Sopenharmony_ci 15188c2ecf20Sopenharmony_ci /* encrypt the "T" value and store MAC in mac_state */ 15198c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 15208c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->mac_buf_dma_addr, 15218c2ecf20Sopenharmony_ci ctx->authsize, NS_BIT); 15228c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], mac_result, ctx->authsize, NS_BIT, 1); 15238c2ecf20Sopenharmony_ci set_queue_last_ind(ctx->drvdata, &desc[idx]); 15248c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_AES_DOUT); 15258c2ecf20Sopenharmony_ci idx++; 15268c2ecf20Sopenharmony_ci 15278c2ecf20Sopenharmony_ci *seq_size = idx; 15288c2ecf20Sopenharmony_ci return 0; 15298c2ecf20Sopenharmony_ci} 15308c2ecf20Sopenharmony_ci 15318c2ecf20Sopenharmony_cistatic int config_ccm_adata(struct aead_request *req) 15328c2ecf20Sopenharmony_ci{ 15338c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 15348c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 15358c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 15368c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 15378c2ecf20Sopenharmony_ci //unsigned int size_of_a = 0, rem_a_size = 0; 15388c2ecf20Sopenharmony_ci unsigned int lp = req->iv[0]; 15398c2ecf20Sopenharmony_ci /* Note: The code assume that req->iv[0] already contains the value 15408c2ecf20Sopenharmony_ci * of L' of RFC3610 15418c2ecf20Sopenharmony_ci */ 15428c2ecf20Sopenharmony_ci unsigned int l = lp + 1; /* This is L' of RFC 3610. */ 15438c2ecf20Sopenharmony_ci unsigned int m = ctx->authsize; /* This is M' of RFC 3610. */ 15448c2ecf20Sopenharmony_ci u8 *b0 = req_ctx->ccm_config + CCM_B0_OFFSET; 15458c2ecf20Sopenharmony_ci u8 *a0 = req_ctx->ccm_config + CCM_A0_OFFSET; 15468c2ecf20Sopenharmony_ci u8 *ctr_count_0 = req_ctx->ccm_config + CCM_CTR_COUNT_0_OFFSET; 15478c2ecf20Sopenharmony_ci unsigned int cryptlen = (req_ctx->gen_ctx.op_type == 15488c2ecf20Sopenharmony_ci DRV_CRYPTO_DIRECTION_ENCRYPT) ? 15498c2ecf20Sopenharmony_ci req->cryptlen : 15508c2ecf20Sopenharmony_ci (req->cryptlen - ctx->authsize); 15518c2ecf20Sopenharmony_ci int rc; 15528c2ecf20Sopenharmony_ci 15538c2ecf20Sopenharmony_ci memset(req_ctx->mac_buf, 0, AES_BLOCK_SIZE); 15548c2ecf20Sopenharmony_ci memset(req_ctx->ccm_config, 0, AES_BLOCK_SIZE * 3); 15558c2ecf20Sopenharmony_ci 15568c2ecf20Sopenharmony_ci /* taken from crypto/ccm.c */ 15578c2ecf20Sopenharmony_ci /* 2 <= L <= 8, so 1 <= L' <= 7. */ 15588c2ecf20Sopenharmony_ci if (l < 2 || l > 8) { 15598c2ecf20Sopenharmony_ci dev_dbg(dev, "illegal iv value %X\n", req->iv[0]); 15608c2ecf20Sopenharmony_ci return -EINVAL; 15618c2ecf20Sopenharmony_ci } 15628c2ecf20Sopenharmony_ci memcpy(b0, req->iv, AES_BLOCK_SIZE); 15638c2ecf20Sopenharmony_ci 15648c2ecf20Sopenharmony_ci /* format control info per RFC 3610 and 15658c2ecf20Sopenharmony_ci * NIST Special Publication 800-38C 15668c2ecf20Sopenharmony_ci */ 15678c2ecf20Sopenharmony_ci *b0 |= (8 * ((m - 2) / 2)); 15688c2ecf20Sopenharmony_ci if (req_ctx->assoclen > 0) 15698c2ecf20Sopenharmony_ci *b0 |= 64; /* Enable bit 6 if Adata exists. */ 15708c2ecf20Sopenharmony_ci 15718c2ecf20Sopenharmony_ci rc = set_msg_len(b0 + 16 - l, cryptlen, l); /* Write L'. */ 15728c2ecf20Sopenharmony_ci if (rc) { 15738c2ecf20Sopenharmony_ci dev_err(dev, "message len overflow detected"); 15748c2ecf20Sopenharmony_ci return rc; 15758c2ecf20Sopenharmony_ci } 15768c2ecf20Sopenharmony_ci /* END of "taken from crypto/ccm.c" */ 15778c2ecf20Sopenharmony_ci 15788c2ecf20Sopenharmony_ci /* l(a) - size of associated data. */ 15798c2ecf20Sopenharmony_ci req_ctx->ccm_hdr_size = format_ccm_a0(a0, req_ctx->assoclen); 15808c2ecf20Sopenharmony_ci 15818c2ecf20Sopenharmony_ci memset(req->iv + 15 - req->iv[0], 0, req->iv[0] + 1); 15828c2ecf20Sopenharmony_ci req->iv[15] = 1; 15838c2ecf20Sopenharmony_ci 15848c2ecf20Sopenharmony_ci memcpy(ctr_count_0, req->iv, AES_BLOCK_SIZE); 15858c2ecf20Sopenharmony_ci ctr_count_0[15] = 0; 15868c2ecf20Sopenharmony_ci 15878c2ecf20Sopenharmony_ci return 0; 15888c2ecf20Sopenharmony_ci} 15898c2ecf20Sopenharmony_ci 15908c2ecf20Sopenharmony_cistatic void cc_proc_rfc4309_ccm(struct aead_request *req) 15918c2ecf20Sopenharmony_ci{ 15928c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 15938c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 15948c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 15958c2ecf20Sopenharmony_ci 15968c2ecf20Sopenharmony_ci /* L' */ 15978c2ecf20Sopenharmony_ci memset(areq_ctx->ctr_iv, 0, AES_BLOCK_SIZE); 15988c2ecf20Sopenharmony_ci /* For RFC 4309, always use 4 bytes for message length 15998c2ecf20Sopenharmony_ci * (at most 2^32-1 bytes). 16008c2ecf20Sopenharmony_ci */ 16018c2ecf20Sopenharmony_ci areq_ctx->ctr_iv[0] = 3; 16028c2ecf20Sopenharmony_ci 16038c2ecf20Sopenharmony_ci /* In RFC 4309 there is an 11-bytes nonce+IV part, 16048c2ecf20Sopenharmony_ci * that we build here. 16058c2ecf20Sopenharmony_ci */ 16068c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv + CCM_BLOCK_NONCE_OFFSET, ctx->ctr_nonce, 16078c2ecf20Sopenharmony_ci CCM_BLOCK_NONCE_SIZE); 16088c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv + CCM_BLOCK_IV_OFFSET, req->iv, 16098c2ecf20Sopenharmony_ci CCM_BLOCK_IV_SIZE); 16108c2ecf20Sopenharmony_ci req->iv = areq_ctx->ctr_iv; 16118c2ecf20Sopenharmony_ci} 16128c2ecf20Sopenharmony_ci 16138c2ecf20Sopenharmony_cistatic void cc_set_ghash_desc(struct aead_request *req, 16148c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], unsigned int *seq_size) 16158c2ecf20Sopenharmony_ci{ 16168c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 16178c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 16188c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 16198c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 16208c2ecf20Sopenharmony_ci 16218c2ecf20Sopenharmony_ci /* load key to AES*/ 16228c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16238c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_ECB); 16248c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 16258c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 16268c2ecf20Sopenharmony_ci ctx->enc_keylen, NS_BIT); 16278c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 16288c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 16298c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 16308c2ecf20Sopenharmony_ci idx++; 16318c2ecf20Sopenharmony_ci 16328c2ecf20Sopenharmony_ci /* process one zero block to generate hkey */ 16338c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16348c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0x0, AES_BLOCK_SIZE); 16358c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], req_ctx->hkey_dma_addr, AES_BLOCK_SIZE, 16368c2ecf20Sopenharmony_ci NS_BIT, 0); 16378c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_AES_DOUT); 16388c2ecf20Sopenharmony_ci idx++; 16398c2ecf20Sopenharmony_ci 16408c2ecf20Sopenharmony_ci /* Memory Barrier */ 16418c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16428c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 16438c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 16448c2ecf20Sopenharmony_ci idx++; 16458c2ecf20Sopenharmony_ci 16468c2ecf20Sopenharmony_ci /* Load GHASH subkey */ 16478c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16488c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->hkey_dma_addr, 16498c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 16508c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 16518c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 16528c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 16538c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_HASH_HW_GHASH); 16548c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_ENABLED); 16558c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 16568c2ecf20Sopenharmony_ci idx++; 16578c2ecf20Sopenharmony_ci 16588c2ecf20Sopenharmony_ci /* Configure Hash Engine to work with GHASH. 16598c2ecf20Sopenharmony_ci * Since it was not possible to extend HASH submodes to add GHASH, 16608c2ecf20Sopenharmony_ci * The following command is necessary in order to 16618c2ecf20Sopenharmony_ci * select GHASH (according to HW designers) 16628c2ecf20Sopenharmony_ci */ 16638c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16648c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 16658c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 16668c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 16678c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 16688c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_HASH_HW_GHASH); 16698c2ecf20Sopenharmony_ci set_cipher_do(&desc[idx], 1); //1=AES_SK RKEK 16708c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 16718c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_ENABLED); 16728c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 16738c2ecf20Sopenharmony_ci idx++; 16748c2ecf20Sopenharmony_ci 16758c2ecf20Sopenharmony_ci /* Load GHASH initial STATE (which is 0). (for any hash there is an 16768c2ecf20Sopenharmony_ci * initial state) 16778c2ecf20Sopenharmony_ci */ 16788c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 16798c2ecf20Sopenharmony_ci set_din_const(&desc[idx], 0x0, AES_BLOCK_SIZE); 16808c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 16818c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_HASH); 16828c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 16838c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_HASH_HW_GHASH); 16848c2ecf20Sopenharmony_ci set_cipher_config1(&desc[idx], HASH_PADDING_ENABLED); 16858c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE0); 16868c2ecf20Sopenharmony_ci idx++; 16878c2ecf20Sopenharmony_ci 16888c2ecf20Sopenharmony_ci *seq_size = idx; 16898c2ecf20Sopenharmony_ci} 16908c2ecf20Sopenharmony_ci 16918c2ecf20Sopenharmony_cistatic void cc_set_gctr_desc(struct aead_request *req, struct cc_hw_desc desc[], 16928c2ecf20Sopenharmony_ci unsigned int *seq_size) 16938c2ecf20Sopenharmony_ci{ 16948c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 16958c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 16968c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 16978c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 16988c2ecf20Sopenharmony_ci 16998c2ecf20Sopenharmony_ci /* load key to AES*/ 17008c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17018c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_GCTR); 17028c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 17038c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, ctx->enckey_dma_addr, 17048c2ecf20Sopenharmony_ci ctx->enc_keylen, NS_BIT); 17058c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 17068c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_KEY0); 17078c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 17088c2ecf20Sopenharmony_ci idx++; 17098c2ecf20Sopenharmony_ci 17108c2ecf20Sopenharmony_ci if (req_ctx->cryptlen && !req_ctx->plaintext_authenticate_only) { 17118c2ecf20Sopenharmony_ci /* load AES/CTR initial CTR value inc by 2*/ 17128c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17138c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_GCTR); 17148c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 17158c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, 17168c2ecf20Sopenharmony_ci req_ctx->gcm_iv_inc2_dma_addr, AES_BLOCK_SIZE, 17178c2ecf20Sopenharmony_ci NS_BIT); 17188c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 17198c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 17208c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 17218c2ecf20Sopenharmony_ci idx++; 17228c2ecf20Sopenharmony_ci } 17238c2ecf20Sopenharmony_ci 17248c2ecf20Sopenharmony_ci *seq_size = idx; 17258c2ecf20Sopenharmony_ci} 17268c2ecf20Sopenharmony_ci 17278c2ecf20Sopenharmony_cistatic void cc_proc_gcm_result(struct aead_request *req, 17288c2ecf20Sopenharmony_ci struct cc_hw_desc desc[], 17298c2ecf20Sopenharmony_ci unsigned int *seq_size) 17308c2ecf20Sopenharmony_ci{ 17318c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 17328c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 17338c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 17348c2ecf20Sopenharmony_ci dma_addr_t mac_result; 17358c2ecf20Sopenharmony_ci unsigned int idx = *seq_size; 17368c2ecf20Sopenharmony_ci 17378c2ecf20Sopenharmony_ci if (req_ctx->gen_ctx.op_type == DRV_CRYPTO_DIRECTION_DECRYPT) { 17388c2ecf20Sopenharmony_ci mac_result = req_ctx->mac_buf_dma_addr; 17398c2ecf20Sopenharmony_ci } else { /* Encrypt */ 17408c2ecf20Sopenharmony_ci mac_result = req_ctx->icv_dma_addr; 17418c2ecf20Sopenharmony_ci } 17428c2ecf20Sopenharmony_ci 17438c2ecf20Sopenharmony_ci /* process(ghash) gcm_block_len */ 17448c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17458c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->gcm_block_len_dma_addr, 17468c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 17478c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_HASH); 17488c2ecf20Sopenharmony_ci idx++; 17498c2ecf20Sopenharmony_ci 17508c2ecf20Sopenharmony_ci /* Store GHASH state after GHASH(Associated Data + Cipher +LenBlock) */ 17518c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17528c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_HASH_HW_GHASH); 17538c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 17548c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], req_ctx->mac_buf_dma_addr, AES_BLOCK_SIZE, 17558c2ecf20Sopenharmony_ci NS_BIT, 0); 17568c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_WRITE_STATE0); 17578c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_HASH_to_DOUT); 17588c2ecf20Sopenharmony_ci set_aes_not_hash_mode(&desc[idx]); 17598c2ecf20Sopenharmony_ci 17608c2ecf20Sopenharmony_ci idx++; 17618c2ecf20Sopenharmony_ci 17628c2ecf20Sopenharmony_ci /* load AES/CTR initial CTR value inc by 1*/ 17638c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17648c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_GCTR); 17658c2ecf20Sopenharmony_ci set_key_size_aes(&desc[idx], ctx->enc_keylen); 17668c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->gcm_iv_inc1_dma_addr, 17678c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 17688c2ecf20Sopenharmony_ci set_cipher_config0(&desc[idx], DRV_CRYPTO_DIRECTION_ENCRYPT); 17698c2ecf20Sopenharmony_ci set_setup_mode(&desc[idx], SETUP_LOAD_STATE1); 17708c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], S_DIN_to_AES); 17718c2ecf20Sopenharmony_ci idx++; 17728c2ecf20Sopenharmony_ci 17738c2ecf20Sopenharmony_ci /* Memory Barrier */ 17748c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17758c2ecf20Sopenharmony_ci set_din_no_dma(&desc[idx], 0, 0xfffff0); 17768c2ecf20Sopenharmony_ci set_dout_no_dma(&desc[idx], 0, 0, 1); 17778c2ecf20Sopenharmony_ci idx++; 17788c2ecf20Sopenharmony_ci 17798c2ecf20Sopenharmony_ci /* process GCTR on stored GHASH and store MAC in mac_state*/ 17808c2ecf20Sopenharmony_ci hw_desc_init(&desc[idx]); 17818c2ecf20Sopenharmony_ci set_cipher_mode(&desc[idx], DRV_CIPHER_GCTR); 17828c2ecf20Sopenharmony_ci set_din_type(&desc[idx], DMA_DLLI, req_ctx->mac_buf_dma_addr, 17838c2ecf20Sopenharmony_ci AES_BLOCK_SIZE, NS_BIT); 17848c2ecf20Sopenharmony_ci set_dout_dlli(&desc[idx], mac_result, ctx->authsize, NS_BIT, 1); 17858c2ecf20Sopenharmony_ci set_queue_last_ind(ctx->drvdata, &desc[idx]); 17868c2ecf20Sopenharmony_ci set_flow_mode(&desc[idx], DIN_AES_DOUT); 17878c2ecf20Sopenharmony_ci idx++; 17888c2ecf20Sopenharmony_ci 17898c2ecf20Sopenharmony_ci *seq_size = idx; 17908c2ecf20Sopenharmony_ci} 17918c2ecf20Sopenharmony_ci 17928c2ecf20Sopenharmony_cistatic int cc_gcm(struct aead_request *req, struct cc_hw_desc desc[], 17938c2ecf20Sopenharmony_ci unsigned int *seq_size) 17948c2ecf20Sopenharmony_ci{ 17958c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 17968c2ecf20Sopenharmony_ci unsigned int cipher_flow_mode; 17978c2ecf20Sopenharmony_ci 17988c2ecf20Sopenharmony_ci //in RFC4543 no data to encrypt. just copy data from src to dest. 17998c2ecf20Sopenharmony_ci if (req_ctx->plaintext_authenticate_only) { 18008c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, BYPASS, desc, seq_size); 18018c2ecf20Sopenharmony_ci cc_set_ghash_desc(req, desc, seq_size); 18028c2ecf20Sopenharmony_ci /* process(ghash) assoc data */ 18038c2ecf20Sopenharmony_ci cc_set_assoc_desc(req, DIN_HASH, desc, seq_size); 18048c2ecf20Sopenharmony_ci cc_set_gctr_desc(req, desc, seq_size); 18058c2ecf20Sopenharmony_ci cc_proc_gcm_result(req, desc, seq_size); 18068c2ecf20Sopenharmony_ci return 0; 18078c2ecf20Sopenharmony_ci } 18088c2ecf20Sopenharmony_ci 18098c2ecf20Sopenharmony_ci if (req_ctx->gen_ctx.op_type == DRV_CRYPTO_DIRECTION_DECRYPT) { 18108c2ecf20Sopenharmony_ci cipher_flow_mode = AES_and_HASH; 18118c2ecf20Sopenharmony_ci } else { /* Encrypt */ 18128c2ecf20Sopenharmony_ci cipher_flow_mode = AES_to_HASH_and_DOUT; 18138c2ecf20Sopenharmony_ci } 18148c2ecf20Sopenharmony_ci 18158c2ecf20Sopenharmony_ci // for gcm and rfc4106. 18168c2ecf20Sopenharmony_ci cc_set_ghash_desc(req, desc, seq_size); 18178c2ecf20Sopenharmony_ci /* process(ghash) assoc data */ 18188c2ecf20Sopenharmony_ci if (req_ctx->assoclen > 0) 18198c2ecf20Sopenharmony_ci cc_set_assoc_desc(req, DIN_HASH, desc, seq_size); 18208c2ecf20Sopenharmony_ci cc_set_gctr_desc(req, desc, seq_size); 18218c2ecf20Sopenharmony_ci /* process(gctr+ghash) */ 18228c2ecf20Sopenharmony_ci if (req_ctx->cryptlen) 18238c2ecf20Sopenharmony_ci cc_proc_cipher_desc(req, cipher_flow_mode, desc, seq_size); 18248c2ecf20Sopenharmony_ci cc_proc_gcm_result(req, desc, seq_size); 18258c2ecf20Sopenharmony_ci 18268c2ecf20Sopenharmony_ci return 0; 18278c2ecf20Sopenharmony_ci} 18288c2ecf20Sopenharmony_ci 18298c2ecf20Sopenharmony_cistatic int config_gcm_context(struct aead_request *req) 18308c2ecf20Sopenharmony_ci{ 18318c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 18328c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 18338c2ecf20Sopenharmony_ci struct aead_req_ctx *req_ctx = aead_request_ctx(req); 18348c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 18358c2ecf20Sopenharmony_ci 18368c2ecf20Sopenharmony_ci unsigned int cryptlen = (req_ctx->gen_ctx.op_type == 18378c2ecf20Sopenharmony_ci DRV_CRYPTO_DIRECTION_ENCRYPT) ? 18388c2ecf20Sopenharmony_ci req->cryptlen : 18398c2ecf20Sopenharmony_ci (req->cryptlen - ctx->authsize); 18408c2ecf20Sopenharmony_ci __be32 counter = cpu_to_be32(2); 18418c2ecf20Sopenharmony_ci 18428c2ecf20Sopenharmony_ci dev_dbg(dev, "%s() cryptlen = %d, req_ctx->assoclen = %d ctx->authsize = %d\n", 18438c2ecf20Sopenharmony_ci __func__, cryptlen, req_ctx->assoclen, ctx->authsize); 18448c2ecf20Sopenharmony_ci 18458c2ecf20Sopenharmony_ci memset(req_ctx->hkey, 0, AES_BLOCK_SIZE); 18468c2ecf20Sopenharmony_ci 18478c2ecf20Sopenharmony_ci memset(req_ctx->mac_buf, 0, AES_BLOCK_SIZE); 18488c2ecf20Sopenharmony_ci 18498c2ecf20Sopenharmony_ci memcpy(req->iv + 12, &counter, 4); 18508c2ecf20Sopenharmony_ci memcpy(req_ctx->gcm_iv_inc2, req->iv, 16); 18518c2ecf20Sopenharmony_ci 18528c2ecf20Sopenharmony_ci counter = cpu_to_be32(1); 18538c2ecf20Sopenharmony_ci memcpy(req->iv + 12, &counter, 4); 18548c2ecf20Sopenharmony_ci memcpy(req_ctx->gcm_iv_inc1, req->iv, 16); 18558c2ecf20Sopenharmony_ci 18568c2ecf20Sopenharmony_ci if (!req_ctx->plaintext_authenticate_only) { 18578c2ecf20Sopenharmony_ci __be64 temp64; 18588c2ecf20Sopenharmony_ci 18598c2ecf20Sopenharmony_ci temp64 = cpu_to_be64(req_ctx->assoclen * 8); 18608c2ecf20Sopenharmony_ci memcpy(&req_ctx->gcm_len_block.len_a, &temp64, sizeof(temp64)); 18618c2ecf20Sopenharmony_ci temp64 = cpu_to_be64(cryptlen * 8); 18628c2ecf20Sopenharmony_ci memcpy(&req_ctx->gcm_len_block.len_c, &temp64, 8); 18638c2ecf20Sopenharmony_ci } else { 18648c2ecf20Sopenharmony_ci /* rfc4543=> all data(AAD,IV,Plain) are considered additional 18658c2ecf20Sopenharmony_ci * data that is nothing is encrypted. 18668c2ecf20Sopenharmony_ci */ 18678c2ecf20Sopenharmony_ci __be64 temp64; 18688c2ecf20Sopenharmony_ci 18698c2ecf20Sopenharmony_ci temp64 = cpu_to_be64((req_ctx->assoclen + cryptlen) * 8); 18708c2ecf20Sopenharmony_ci memcpy(&req_ctx->gcm_len_block.len_a, &temp64, sizeof(temp64)); 18718c2ecf20Sopenharmony_ci temp64 = 0; 18728c2ecf20Sopenharmony_ci memcpy(&req_ctx->gcm_len_block.len_c, &temp64, 8); 18738c2ecf20Sopenharmony_ci } 18748c2ecf20Sopenharmony_ci 18758c2ecf20Sopenharmony_ci return 0; 18768c2ecf20Sopenharmony_ci} 18778c2ecf20Sopenharmony_ci 18788c2ecf20Sopenharmony_cistatic void cc_proc_rfc4_gcm(struct aead_request *req) 18798c2ecf20Sopenharmony_ci{ 18808c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 18818c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 18828c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 18838c2ecf20Sopenharmony_ci 18848c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv + GCM_BLOCK_RFC4_NONCE_OFFSET, 18858c2ecf20Sopenharmony_ci ctx->ctr_nonce, GCM_BLOCK_RFC4_NONCE_SIZE); 18868c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv + GCM_BLOCK_RFC4_IV_OFFSET, req->iv, 18878c2ecf20Sopenharmony_ci GCM_BLOCK_RFC4_IV_SIZE); 18888c2ecf20Sopenharmony_ci req->iv = areq_ctx->ctr_iv; 18898c2ecf20Sopenharmony_ci} 18908c2ecf20Sopenharmony_ci 18918c2ecf20Sopenharmony_cistatic int cc_proc_aead(struct aead_request *req, 18928c2ecf20Sopenharmony_ci enum drv_crypto_direction direct) 18938c2ecf20Sopenharmony_ci{ 18948c2ecf20Sopenharmony_ci int rc = 0; 18958c2ecf20Sopenharmony_ci int seq_len = 0; 18968c2ecf20Sopenharmony_ci struct cc_hw_desc desc[MAX_AEAD_PROCESS_SEQ]; 18978c2ecf20Sopenharmony_ci struct crypto_aead *tfm = crypto_aead_reqtfm(req); 18988c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 18998c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 19008c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 19018c2ecf20Sopenharmony_ci struct cc_crypto_req cc_req = {}; 19028c2ecf20Sopenharmony_ci 19038c2ecf20Sopenharmony_ci dev_dbg(dev, "%s context=%p req=%p iv=%p src=%p src_ofs=%d dst=%p dst_ofs=%d cryptolen=%d\n", 19048c2ecf20Sopenharmony_ci ((direct == DRV_CRYPTO_DIRECTION_ENCRYPT) ? "Enc" : "Dec"), 19058c2ecf20Sopenharmony_ci ctx, req, req->iv, sg_virt(req->src), req->src->offset, 19068c2ecf20Sopenharmony_ci sg_virt(req->dst), req->dst->offset, req->cryptlen); 19078c2ecf20Sopenharmony_ci 19088c2ecf20Sopenharmony_ci /* STAT_PHASE_0: Init and sanity checks */ 19098c2ecf20Sopenharmony_ci 19108c2ecf20Sopenharmony_ci /* Check data length according to mode */ 19118c2ecf20Sopenharmony_ci if (validate_data_size(ctx, direct, req)) { 19128c2ecf20Sopenharmony_ci dev_err(dev, "Unsupported crypt/assoc len %d/%d.\n", 19138c2ecf20Sopenharmony_ci req->cryptlen, areq_ctx->assoclen); 19148c2ecf20Sopenharmony_ci return -EINVAL; 19158c2ecf20Sopenharmony_ci } 19168c2ecf20Sopenharmony_ci 19178c2ecf20Sopenharmony_ci /* Setup request structure */ 19188c2ecf20Sopenharmony_ci cc_req.user_cb = cc_aead_complete; 19198c2ecf20Sopenharmony_ci cc_req.user_arg = req; 19208c2ecf20Sopenharmony_ci 19218c2ecf20Sopenharmony_ci /* Setup request context */ 19228c2ecf20Sopenharmony_ci areq_ctx->gen_ctx.op_type = direct; 19238c2ecf20Sopenharmony_ci areq_ctx->req_authsize = ctx->authsize; 19248c2ecf20Sopenharmony_ci areq_ctx->cipher_mode = ctx->cipher_mode; 19258c2ecf20Sopenharmony_ci 19268c2ecf20Sopenharmony_ci /* STAT_PHASE_1: Map buffers */ 19278c2ecf20Sopenharmony_ci 19288c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CTR) { 19298c2ecf20Sopenharmony_ci /* Build CTR IV - Copy nonce from last 4 bytes in 19308c2ecf20Sopenharmony_ci * CTR key to first 4 bytes in CTR IV 19318c2ecf20Sopenharmony_ci */ 19328c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv, ctx->ctr_nonce, 19338c2ecf20Sopenharmony_ci CTR_RFC3686_NONCE_SIZE); 19348c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv + CTR_RFC3686_NONCE_SIZE, req->iv, 19358c2ecf20Sopenharmony_ci CTR_RFC3686_IV_SIZE); 19368c2ecf20Sopenharmony_ci /* Initialize counter portion of counter block */ 19378c2ecf20Sopenharmony_ci *(__be32 *)(areq_ctx->ctr_iv + CTR_RFC3686_NONCE_SIZE + 19388c2ecf20Sopenharmony_ci CTR_RFC3686_IV_SIZE) = cpu_to_be32(1); 19398c2ecf20Sopenharmony_ci 19408c2ecf20Sopenharmony_ci /* Replace with counter iv */ 19418c2ecf20Sopenharmony_ci req->iv = areq_ctx->ctr_iv; 19428c2ecf20Sopenharmony_ci areq_ctx->hw_iv_size = CTR_RFC3686_BLOCK_SIZE; 19438c2ecf20Sopenharmony_ci } else if ((ctx->cipher_mode == DRV_CIPHER_CCM) || 19448c2ecf20Sopenharmony_ci (ctx->cipher_mode == DRV_CIPHER_GCTR)) { 19458c2ecf20Sopenharmony_ci areq_ctx->hw_iv_size = AES_BLOCK_SIZE; 19468c2ecf20Sopenharmony_ci if (areq_ctx->ctr_iv != req->iv) { 19478c2ecf20Sopenharmony_ci memcpy(areq_ctx->ctr_iv, req->iv, 19488c2ecf20Sopenharmony_ci crypto_aead_ivsize(tfm)); 19498c2ecf20Sopenharmony_ci req->iv = areq_ctx->ctr_iv; 19508c2ecf20Sopenharmony_ci } 19518c2ecf20Sopenharmony_ci } else { 19528c2ecf20Sopenharmony_ci areq_ctx->hw_iv_size = crypto_aead_ivsize(tfm); 19538c2ecf20Sopenharmony_ci } 19548c2ecf20Sopenharmony_ci 19558c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CCM) { 19568c2ecf20Sopenharmony_ci rc = config_ccm_adata(req); 19578c2ecf20Sopenharmony_ci if (rc) { 19588c2ecf20Sopenharmony_ci dev_dbg(dev, "config_ccm_adata() returned with a failure %d!", 19598c2ecf20Sopenharmony_ci rc); 19608c2ecf20Sopenharmony_ci goto exit; 19618c2ecf20Sopenharmony_ci } 19628c2ecf20Sopenharmony_ci } else { 19638c2ecf20Sopenharmony_ci areq_ctx->ccm_hdr_size = ccm_header_size_null; 19648c2ecf20Sopenharmony_ci } 19658c2ecf20Sopenharmony_ci 19668c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_GCTR) { 19678c2ecf20Sopenharmony_ci rc = config_gcm_context(req); 19688c2ecf20Sopenharmony_ci if (rc) { 19698c2ecf20Sopenharmony_ci dev_dbg(dev, "config_gcm_context() returned with a failure %d!", 19708c2ecf20Sopenharmony_ci rc); 19718c2ecf20Sopenharmony_ci goto exit; 19728c2ecf20Sopenharmony_ci } 19738c2ecf20Sopenharmony_ci } 19748c2ecf20Sopenharmony_ci 19758c2ecf20Sopenharmony_ci rc = cc_map_aead_request(ctx->drvdata, req); 19768c2ecf20Sopenharmony_ci if (rc) { 19778c2ecf20Sopenharmony_ci dev_err(dev, "map_request() failed\n"); 19788c2ecf20Sopenharmony_ci goto exit; 19798c2ecf20Sopenharmony_ci } 19808c2ecf20Sopenharmony_ci 19818c2ecf20Sopenharmony_ci /* STAT_PHASE_2: Create sequence */ 19828c2ecf20Sopenharmony_ci 19838c2ecf20Sopenharmony_ci /* Load MLLI tables to SRAM if necessary */ 19848c2ecf20Sopenharmony_ci cc_mlli_to_sram(req, desc, &seq_len); 19858c2ecf20Sopenharmony_ci 19868c2ecf20Sopenharmony_ci switch (ctx->auth_mode) { 19878c2ecf20Sopenharmony_ci case DRV_HASH_SHA1: 19888c2ecf20Sopenharmony_ci case DRV_HASH_SHA256: 19898c2ecf20Sopenharmony_ci cc_hmac_authenc(req, desc, &seq_len); 19908c2ecf20Sopenharmony_ci break; 19918c2ecf20Sopenharmony_ci case DRV_HASH_XCBC_MAC: 19928c2ecf20Sopenharmony_ci cc_xcbc_authenc(req, desc, &seq_len); 19938c2ecf20Sopenharmony_ci break; 19948c2ecf20Sopenharmony_ci case DRV_HASH_NULL: 19958c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_CCM) 19968c2ecf20Sopenharmony_ci cc_ccm(req, desc, &seq_len); 19978c2ecf20Sopenharmony_ci if (ctx->cipher_mode == DRV_CIPHER_GCTR) 19988c2ecf20Sopenharmony_ci cc_gcm(req, desc, &seq_len); 19998c2ecf20Sopenharmony_ci break; 20008c2ecf20Sopenharmony_ci default: 20018c2ecf20Sopenharmony_ci dev_err(dev, "Unsupported authenc (%d)\n", ctx->auth_mode); 20028c2ecf20Sopenharmony_ci cc_unmap_aead_request(dev, req); 20038c2ecf20Sopenharmony_ci rc = -ENOTSUPP; 20048c2ecf20Sopenharmony_ci goto exit; 20058c2ecf20Sopenharmony_ci } 20068c2ecf20Sopenharmony_ci 20078c2ecf20Sopenharmony_ci /* STAT_PHASE_3: Lock HW and push sequence */ 20088c2ecf20Sopenharmony_ci 20098c2ecf20Sopenharmony_ci rc = cc_send_request(ctx->drvdata, &cc_req, desc, seq_len, &req->base); 20108c2ecf20Sopenharmony_ci 20118c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) { 20128c2ecf20Sopenharmony_ci dev_err(dev, "send_request() failed (rc=%d)\n", rc); 20138c2ecf20Sopenharmony_ci cc_unmap_aead_request(dev, req); 20148c2ecf20Sopenharmony_ci } 20158c2ecf20Sopenharmony_ci 20168c2ecf20Sopenharmony_ciexit: 20178c2ecf20Sopenharmony_ci return rc; 20188c2ecf20Sopenharmony_ci} 20198c2ecf20Sopenharmony_ci 20208c2ecf20Sopenharmony_cistatic int cc_aead_encrypt(struct aead_request *req) 20218c2ecf20Sopenharmony_ci{ 20228c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 20238c2ecf20Sopenharmony_ci int rc; 20248c2ecf20Sopenharmony_ci 20258c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 20268c2ecf20Sopenharmony_ci 20278c2ecf20Sopenharmony_ci /* No generated IV required */ 20288c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 20298c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen; 20308c2ecf20Sopenharmony_ci 20318c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_ENCRYPT); 20328c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 20338c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 20348c2ecf20Sopenharmony_ci 20358c2ecf20Sopenharmony_ci return rc; 20368c2ecf20Sopenharmony_ci} 20378c2ecf20Sopenharmony_ci 20388c2ecf20Sopenharmony_cistatic int cc_rfc4309_ccm_encrypt(struct aead_request *req) 20398c2ecf20Sopenharmony_ci{ 20408c2ecf20Sopenharmony_ci /* Very similar to cc_aead_encrypt() above. */ 20418c2ecf20Sopenharmony_ci 20428c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 20438c2ecf20Sopenharmony_ci int rc; 20448c2ecf20Sopenharmony_ci 20458c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 20468c2ecf20Sopenharmony_ci if (rc) 20478c2ecf20Sopenharmony_ci goto out; 20488c2ecf20Sopenharmony_ci 20498c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 20508c2ecf20Sopenharmony_ci 20518c2ecf20Sopenharmony_ci /* No generated IV required */ 20528c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 20538c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen - CCM_BLOCK_IV_SIZE; 20548c2ecf20Sopenharmony_ci 20558c2ecf20Sopenharmony_ci cc_proc_rfc4309_ccm(req); 20568c2ecf20Sopenharmony_ci 20578c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_ENCRYPT); 20588c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 20598c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 20608c2ecf20Sopenharmony_ciout: 20618c2ecf20Sopenharmony_ci return rc; 20628c2ecf20Sopenharmony_ci} 20638c2ecf20Sopenharmony_ci 20648c2ecf20Sopenharmony_cistatic int cc_aead_decrypt(struct aead_request *req) 20658c2ecf20Sopenharmony_ci{ 20668c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 20678c2ecf20Sopenharmony_ci int rc; 20688c2ecf20Sopenharmony_ci 20698c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 20708c2ecf20Sopenharmony_ci 20718c2ecf20Sopenharmony_ci /* No generated IV required */ 20728c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 20738c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen; 20748c2ecf20Sopenharmony_ci 20758c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_DECRYPT); 20768c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 20778c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 20788c2ecf20Sopenharmony_ci 20798c2ecf20Sopenharmony_ci return rc; 20808c2ecf20Sopenharmony_ci} 20818c2ecf20Sopenharmony_ci 20828c2ecf20Sopenharmony_cistatic int cc_rfc4309_ccm_decrypt(struct aead_request *req) 20838c2ecf20Sopenharmony_ci{ 20848c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 20858c2ecf20Sopenharmony_ci int rc; 20868c2ecf20Sopenharmony_ci 20878c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 20888c2ecf20Sopenharmony_ci if (rc) 20898c2ecf20Sopenharmony_ci goto out; 20908c2ecf20Sopenharmony_ci 20918c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 20928c2ecf20Sopenharmony_ci 20938c2ecf20Sopenharmony_ci /* No generated IV required */ 20948c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 20958c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen - CCM_BLOCK_IV_SIZE; 20968c2ecf20Sopenharmony_ci 20978c2ecf20Sopenharmony_ci cc_proc_rfc4309_ccm(req); 20988c2ecf20Sopenharmony_ci 20998c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_DECRYPT); 21008c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 21018c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 21028c2ecf20Sopenharmony_ci 21038c2ecf20Sopenharmony_ciout: 21048c2ecf20Sopenharmony_ci return rc; 21058c2ecf20Sopenharmony_ci} 21068c2ecf20Sopenharmony_ci 21078c2ecf20Sopenharmony_cistatic int cc_rfc4106_gcm_setkey(struct crypto_aead *tfm, const u8 *key, 21088c2ecf20Sopenharmony_ci unsigned int keylen) 21098c2ecf20Sopenharmony_ci{ 21108c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 21118c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 21128c2ecf20Sopenharmony_ci 21138c2ecf20Sopenharmony_ci dev_dbg(dev, "%s() keylen %d, key %p\n", __func__, keylen, key); 21148c2ecf20Sopenharmony_ci 21158c2ecf20Sopenharmony_ci if (keylen < 4) 21168c2ecf20Sopenharmony_ci return -EINVAL; 21178c2ecf20Sopenharmony_ci 21188c2ecf20Sopenharmony_ci keylen -= 4; 21198c2ecf20Sopenharmony_ci memcpy(ctx->ctr_nonce, key + keylen, 4); 21208c2ecf20Sopenharmony_ci 21218c2ecf20Sopenharmony_ci return cc_aead_setkey(tfm, key, keylen); 21228c2ecf20Sopenharmony_ci} 21238c2ecf20Sopenharmony_ci 21248c2ecf20Sopenharmony_cistatic int cc_rfc4543_gcm_setkey(struct crypto_aead *tfm, const u8 *key, 21258c2ecf20Sopenharmony_ci unsigned int keylen) 21268c2ecf20Sopenharmony_ci{ 21278c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(tfm); 21288c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 21298c2ecf20Sopenharmony_ci 21308c2ecf20Sopenharmony_ci dev_dbg(dev, "%s() keylen %d, key %p\n", __func__, keylen, key); 21318c2ecf20Sopenharmony_ci 21328c2ecf20Sopenharmony_ci if (keylen < 4) 21338c2ecf20Sopenharmony_ci return -EINVAL; 21348c2ecf20Sopenharmony_ci 21358c2ecf20Sopenharmony_ci keylen -= 4; 21368c2ecf20Sopenharmony_ci memcpy(ctx->ctr_nonce, key + keylen, 4); 21378c2ecf20Sopenharmony_ci 21388c2ecf20Sopenharmony_ci return cc_aead_setkey(tfm, key, keylen); 21398c2ecf20Sopenharmony_ci} 21408c2ecf20Sopenharmony_ci 21418c2ecf20Sopenharmony_cistatic int cc_gcm_setauthsize(struct crypto_aead *authenc, 21428c2ecf20Sopenharmony_ci unsigned int authsize) 21438c2ecf20Sopenharmony_ci{ 21448c2ecf20Sopenharmony_ci switch (authsize) { 21458c2ecf20Sopenharmony_ci case 4: 21468c2ecf20Sopenharmony_ci case 8: 21478c2ecf20Sopenharmony_ci case 12: 21488c2ecf20Sopenharmony_ci case 13: 21498c2ecf20Sopenharmony_ci case 14: 21508c2ecf20Sopenharmony_ci case 15: 21518c2ecf20Sopenharmony_ci case 16: 21528c2ecf20Sopenharmony_ci break; 21538c2ecf20Sopenharmony_ci default: 21548c2ecf20Sopenharmony_ci return -EINVAL; 21558c2ecf20Sopenharmony_ci } 21568c2ecf20Sopenharmony_ci 21578c2ecf20Sopenharmony_ci return cc_aead_setauthsize(authenc, authsize); 21588c2ecf20Sopenharmony_ci} 21598c2ecf20Sopenharmony_ci 21608c2ecf20Sopenharmony_cistatic int cc_rfc4106_gcm_setauthsize(struct crypto_aead *authenc, 21618c2ecf20Sopenharmony_ci unsigned int authsize) 21628c2ecf20Sopenharmony_ci{ 21638c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(authenc); 21648c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 21658c2ecf20Sopenharmony_ci 21668c2ecf20Sopenharmony_ci dev_dbg(dev, "authsize %d\n", authsize); 21678c2ecf20Sopenharmony_ci 21688c2ecf20Sopenharmony_ci switch (authsize) { 21698c2ecf20Sopenharmony_ci case 8: 21708c2ecf20Sopenharmony_ci case 12: 21718c2ecf20Sopenharmony_ci case 16: 21728c2ecf20Sopenharmony_ci break; 21738c2ecf20Sopenharmony_ci default: 21748c2ecf20Sopenharmony_ci return -EINVAL; 21758c2ecf20Sopenharmony_ci } 21768c2ecf20Sopenharmony_ci 21778c2ecf20Sopenharmony_ci return cc_aead_setauthsize(authenc, authsize); 21788c2ecf20Sopenharmony_ci} 21798c2ecf20Sopenharmony_ci 21808c2ecf20Sopenharmony_cistatic int cc_rfc4543_gcm_setauthsize(struct crypto_aead *authenc, 21818c2ecf20Sopenharmony_ci unsigned int authsize) 21828c2ecf20Sopenharmony_ci{ 21838c2ecf20Sopenharmony_ci struct cc_aead_ctx *ctx = crypto_aead_ctx(authenc); 21848c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(ctx->drvdata); 21858c2ecf20Sopenharmony_ci 21868c2ecf20Sopenharmony_ci dev_dbg(dev, "authsize %d\n", authsize); 21878c2ecf20Sopenharmony_ci 21888c2ecf20Sopenharmony_ci if (authsize != 16) 21898c2ecf20Sopenharmony_ci return -EINVAL; 21908c2ecf20Sopenharmony_ci 21918c2ecf20Sopenharmony_ci return cc_aead_setauthsize(authenc, authsize); 21928c2ecf20Sopenharmony_ci} 21938c2ecf20Sopenharmony_ci 21948c2ecf20Sopenharmony_cistatic int cc_rfc4106_gcm_encrypt(struct aead_request *req) 21958c2ecf20Sopenharmony_ci{ 21968c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 21978c2ecf20Sopenharmony_ci int rc; 21988c2ecf20Sopenharmony_ci 21998c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 22008c2ecf20Sopenharmony_ci if (rc) 22018c2ecf20Sopenharmony_ci goto out; 22028c2ecf20Sopenharmony_ci 22038c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 22048c2ecf20Sopenharmony_ci 22058c2ecf20Sopenharmony_ci /* No generated IV required */ 22068c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 22078c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen - GCM_BLOCK_RFC4_IV_SIZE; 22088c2ecf20Sopenharmony_ci 22098c2ecf20Sopenharmony_ci cc_proc_rfc4_gcm(req); 22108c2ecf20Sopenharmony_ci 22118c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_ENCRYPT); 22128c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 22138c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 22148c2ecf20Sopenharmony_ciout: 22158c2ecf20Sopenharmony_ci return rc; 22168c2ecf20Sopenharmony_ci} 22178c2ecf20Sopenharmony_ci 22188c2ecf20Sopenharmony_cistatic int cc_rfc4543_gcm_encrypt(struct aead_request *req) 22198c2ecf20Sopenharmony_ci{ 22208c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 22218c2ecf20Sopenharmony_ci int rc; 22228c2ecf20Sopenharmony_ci 22238c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 22248c2ecf20Sopenharmony_ci if (rc) 22258c2ecf20Sopenharmony_ci goto out; 22268c2ecf20Sopenharmony_ci 22278c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 22288c2ecf20Sopenharmony_ci 22298c2ecf20Sopenharmony_ci //plaintext is not encryped with rfc4543 22308c2ecf20Sopenharmony_ci areq_ctx->plaintext_authenticate_only = true; 22318c2ecf20Sopenharmony_ci 22328c2ecf20Sopenharmony_ci /* No generated IV required */ 22338c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 22348c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen; 22358c2ecf20Sopenharmony_ci 22368c2ecf20Sopenharmony_ci cc_proc_rfc4_gcm(req); 22378c2ecf20Sopenharmony_ci 22388c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_ENCRYPT); 22398c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 22408c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 22418c2ecf20Sopenharmony_ciout: 22428c2ecf20Sopenharmony_ci return rc; 22438c2ecf20Sopenharmony_ci} 22448c2ecf20Sopenharmony_ci 22458c2ecf20Sopenharmony_cistatic int cc_rfc4106_gcm_decrypt(struct aead_request *req) 22468c2ecf20Sopenharmony_ci{ 22478c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 22488c2ecf20Sopenharmony_ci int rc; 22498c2ecf20Sopenharmony_ci 22508c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 22518c2ecf20Sopenharmony_ci if (rc) 22528c2ecf20Sopenharmony_ci goto out; 22538c2ecf20Sopenharmony_ci 22548c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 22558c2ecf20Sopenharmony_ci 22568c2ecf20Sopenharmony_ci /* No generated IV required */ 22578c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 22588c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen - GCM_BLOCK_RFC4_IV_SIZE; 22598c2ecf20Sopenharmony_ci 22608c2ecf20Sopenharmony_ci cc_proc_rfc4_gcm(req); 22618c2ecf20Sopenharmony_ci 22628c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_DECRYPT); 22638c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 22648c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 22658c2ecf20Sopenharmony_ciout: 22668c2ecf20Sopenharmony_ci return rc; 22678c2ecf20Sopenharmony_ci} 22688c2ecf20Sopenharmony_ci 22698c2ecf20Sopenharmony_cistatic int cc_rfc4543_gcm_decrypt(struct aead_request *req) 22708c2ecf20Sopenharmony_ci{ 22718c2ecf20Sopenharmony_ci struct aead_req_ctx *areq_ctx = aead_request_ctx(req); 22728c2ecf20Sopenharmony_ci int rc; 22738c2ecf20Sopenharmony_ci 22748c2ecf20Sopenharmony_ci rc = crypto_ipsec_check_assoclen(req->assoclen); 22758c2ecf20Sopenharmony_ci if (rc) 22768c2ecf20Sopenharmony_ci goto out; 22778c2ecf20Sopenharmony_ci 22788c2ecf20Sopenharmony_ci memset(areq_ctx, 0, sizeof(*areq_ctx)); 22798c2ecf20Sopenharmony_ci 22808c2ecf20Sopenharmony_ci //plaintext is not decryped with rfc4543 22818c2ecf20Sopenharmony_ci areq_ctx->plaintext_authenticate_only = true; 22828c2ecf20Sopenharmony_ci 22838c2ecf20Sopenharmony_ci /* No generated IV required */ 22848c2ecf20Sopenharmony_ci areq_ctx->backup_iv = req->iv; 22858c2ecf20Sopenharmony_ci areq_ctx->assoclen = req->assoclen; 22868c2ecf20Sopenharmony_ci 22878c2ecf20Sopenharmony_ci cc_proc_rfc4_gcm(req); 22888c2ecf20Sopenharmony_ci 22898c2ecf20Sopenharmony_ci rc = cc_proc_aead(req, DRV_CRYPTO_DIRECTION_DECRYPT); 22908c2ecf20Sopenharmony_ci if (rc != -EINPROGRESS && rc != -EBUSY) 22918c2ecf20Sopenharmony_ci req->iv = areq_ctx->backup_iv; 22928c2ecf20Sopenharmony_ciout: 22938c2ecf20Sopenharmony_ci return rc; 22948c2ecf20Sopenharmony_ci} 22958c2ecf20Sopenharmony_ci 22968c2ecf20Sopenharmony_ci/* aead alg */ 22978c2ecf20Sopenharmony_cistatic struct cc_alg_template aead_algs[] = { 22988c2ecf20Sopenharmony_ci { 22998c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha1),cbc(aes))", 23008c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha1-cbc-aes-ccree", 23018c2ecf20Sopenharmony_ci .blocksize = AES_BLOCK_SIZE, 23028c2ecf20Sopenharmony_ci .template_aead = { 23038c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 23048c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 23058c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 23068c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 23078c2ecf20Sopenharmony_ci .init = cc_aead_init, 23088c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 23098c2ecf20Sopenharmony_ci .ivsize = AES_BLOCK_SIZE, 23108c2ecf20Sopenharmony_ci .maxauthsize = SHA1_DIGEST_SIZE, 23118c2ecf20Sopenharmony_ci }, 23128c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CBC, 23138c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 23148c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA1, 23158c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 23168c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 23178c2ecf20Sopenharmony_ci }, 23188c2ecf20Sopenharmony_ci { 23198c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha1),cbc(des3_ede))", 23208c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha1-cbc-des3-ccree", 23218c2ecf20Sopenharmony_ci .blocksize = DES3_EDE_BLOCK_SIZE, 23228c2ecf20Sopenharmony_ci .template_aead = { 23238c2ecf20Sopenharmony_ci .setkey = cc_des3_aead_setkey, 23248c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 23258c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 23268c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 23278c2ecf20Sopenharmony_ci .init = cc_aead_init, 23288c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 23298c2ecf20Sopenharmony_ci .ivsize = DES3_EDE_BLOCK_SIZE, 23308c2ecf20Sopenharmony_ci .maxauthsize = SHA1_DIGEST_SIZE, 23318c2ecf20Sopenharmony_ci }, 23328c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CBC, 23338c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_DES, 23348c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA1, 23358c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 23368c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 23378c2ecf20Sopenharmony_ci }, 23388c2ecf20Sopenharmony_ci { 23398c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha256),cbc(aes))", 23408c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha256-cbc-aes-ccree", 23418c2ecf20Sopenharmony_ci .blocksize = AES_BLOCK_SIZE, 23428c2ecf20Sopenharmony_ci .template_aead = { 23438c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 23448c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 23458c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 23468c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 23478c2ecf20Sopenharmony_ci .init = cc_aead_init, 23488c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 23498c2ecf20Sopenharmony_ci .ivsize = AES_BLOCK_SIZE, 23508c2ecf20Sopenharmony_ci .maxauthsize = SHA256_DIGEST_SIZE, 23518c2ecf20Sopenharmony_ci }, 23528c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CBC, 23538c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 23548c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA256, 23558c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 23568c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 23578c2ecf20Sopenharmony_ci }, 23588c2ecf20Sopenharmony_ci { 23598c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha256),cbc(des3_ede))", 23608c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha256-cbc-des3-ccree", 23618c2ecf20Sopenharmony_ci .blocksize = DES3_EDE_BLOCK_SIZE, 23628c2ecf20Sopenharmony_ci .template_aead = { 23638c2ecf20Sopenharmony_ci .setkey = cc_des3_aead_setkey, 23648c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 23658c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 23668c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 23678c2ecf20Sopenharmony_ci .init = cc_aead_init, 23688c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 23698c2ecf20Sopenharmony_ci .ivsize = DES3_EDE_BLOCK_SIZE, 23708c2ecf20Sopenharmony_ci .maxauthsize = SHA256_DIGEST_SIZE, 23718c2ecf20Sopenharmony_ci }, 23728c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CBC, 23738c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_DES, 23748c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA256, 23758c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 23768c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 23778c2ecf20Sopenharmony_ci }, 23788c2ecf20Sopenharmony_ci { 23798c2ecf20Sopenharmony_ci .name = "authenc(xcbc(aes),cbc(aes))", 23808c2ecf20Sopenharmony_ci .driver_name = "authenc-xcbc-aes-cbc-aes-ccree", 23818c2ecf20Sopenharmony_ci .blocksize = AES_BLOCK_SIZE, 23828c2ecf20Sopenharmony_ci .template_aead = { 23838c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 23848c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 23858c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 23868c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 23878c2ecf20Sopenharmony_ci .init = cc_aead_init, 23888c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 23898c2ecf20Sopenharmony_ci .ivsize = AES_BLOCK_SIZE, 23908c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 23918c2ecf20Sopenharmony_ci }, 23928c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CBC, 23938c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 23948c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_XCBC_MAC, 23958c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 23968c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 23978c2ecf20Sopenharmony_ci }, 23988c2ecf20Sopenharmony_ci { 23998c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha1),rfc3686(ctr(aes)))", 24008c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha1-rfc3686-ctr-aes-ccree", 24018c2ecf20Sopenharmony_ci .blocksize = 1, 24028c2ecf20Sopenharmony_ci .template_aead = { 24038c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 24048c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 24058c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 24068c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 24078c2ecf20Sopenharmony_ci .init = cc_aead_init, 24088c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 24098c2ecf20Sopenharmony_ci .ivsize = CTR_RFC3686_IV_SIZE, 24108c2ecf20Sopenharmony_ci .maxauthsize = SHA1_DIGEST_SIZE, 24118c2ecf20Sopenharmony_ci }, 24128c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CTR, 24138c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 24148c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA1, 24158c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 24168c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 24178c2ecf20Sopenharmony_ci }, 24188c2ecf20Sopenharmony_ci { 24198c2ecf20Sopenharmony_ci .name = "authenc(hmac(sha256),rfc3686(ctr(aes)))", 24208c2ecf20Sopenharmony_ci .driver_name = "authenc-hmac-sha256-rfc3686-ctr-aes-ccree", 24218c2ecf20Sopenharmony_ci .blocksize = 1, 24228c2ecf20Sopenharmony_ci .template_aead = { 24238c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 24248c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 24258c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 24268c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 24278c2ecf20Sopenharmony_ci .init = cc_aead_init, 24288c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 24298c2ecf20Sopenharmony_ci .ivsize = CTR_RFC3686_IV_SIZE, 24308c2ecf20Sopenharmony_ci .maxauthsize = SHA256_DIGEST_SIZE, 24318c2ecf20Sopenharmony_ci }, 24328c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CTR, 24338c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 24348c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_SHA256, 24358c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 24368c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 24378c2ecf20Sopenharmony_ci }, 24388c2ecf20Sopenharmony_ci { 24398c2ecf20Sopenharmony_ci .name = "authenc(xcbc(aes),rfc3686(ctr(aes)))", 24408c2ecf20Sopenharmony_ci .driver_name = "authenc-xcbc-aes-rfc3686-ctr-aes-ccree", 24418c2ecf20Sopenharmony_ci .blocksize = 1, 24428c2ecf20Sopenharmony_ci .template_aead = { 24438c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 24448c2ecf20Sopenharmony_ci .setauthsize = cc_aead_setauthsize, 24458c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 24468c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 24478c2ecf20Sopenharmony_ci .init = cc_aead_init, 24488c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 24498c2ecf20Sopenharmony_ci .ivsize = CTR_RFC3686_IV_SIZE, 24508c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 24518c2ecf20Sopenharmony_ci }, 24528c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CTR, 24538c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 24548c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_XCBC_MAC, 24558c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 24568c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 24578c2ecf20Sopenharmony_ci }, 24588c2ecf20Sopenharmony_ci { 24598c2ecf20Sopenharmony_ci .name = "ccm(aes)", 24608c2ecf20Sopenharmony_ci .driver_name = "ccm-aes-ccree", 24618c2ecf20Sopenharmony_ci .blocksize = 1, 24628c2ecf20Sopenharmony_ci .template_aead = { 24638c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 24648c2ecf20Sopenharmony_ci .setauthsize = cc_ccm_setauthsize, 24658c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 24668c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 24678c2ecf20Sopenharmony_ci .init = cc_aead_init, 24688c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 24698c2ecf20Sopenharmony_ci .ivsize = AES_BLOCK_SIZE, 24708c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 24718c2ecf20Sopenharmony_ci }, 24728c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CCM, 24738c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 24748c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_NULL, 24758c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 24768c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 24778c2ecf20Sopenharmony_ci }, 24788c2ecf20Sopenharmony_ci { 24798c2ecf20Sopenharmony_ci .name = "rfc4309(ccm(aes))", 24808c2ecf20Sopenharmony_ci .driver_name = "rfc4309-ccm-aes-ccree", 24818c2ecf20Sopenharmony_ci .blocksize = 1, 24828c2ecf20Sopenharmony_ci .template_aead = { 24838c2ecf20Sopenharmony_ci .setkey = cc_rfc4309_ccm_setkey, 24848c2ecf20Sopenharmony_ci .setauthsize = cc_rfc4309_ccm_setauthsize, 24858c2ecf20Sopenharmony_ci .encrypt = cc_rfc4309_ccm_encrypt, 24868c2ecf20Sopenharmony_ci .decrypt = cc_rfc4309_ccm_decrypt, 24878c2ecf20Sopenharmony_ci .init = cc_aead_init, 24888c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 24898c2ecf20Sopenharmony_ci .ivsize = CCM_BLOCK_IV_SIZE, 24908c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 24918c2ecf20Sopenharmony_ci }, 24928c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_CCM, 24938c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 24948c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_NULL, 24958c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 24968c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 24978c2ecf20Sopenharmony_ci }, 24988c2ecf20Sopenharmony_ci { 24998c2ecf20Sopenharmony_ci .name = "gcm(aes)", 25008c2ecf20Sopenharmony_ci .driver_name = "gcm-aes-ccree", 25018c2ecf20Sopenharmony_ci .blocksize = 1, 25028c2ecf20Sopenharmony_ci .template_aead = { 25038c2ecf20Sopenharmony_ci .setkey = cc_aead_setkey, 25048c2ecf20Sopenharmony_ci .setauthsize = cc_gcm_setauthsize, 25058c2ecf20Sopenharmony_ci .encrypt = cc_aead_encrypt, 25068c2ecf20Sopenharmony_ci .decrypt = cc_aead_decrypt, 25078c2ecf20Sopenharmony_ci .init = cc_aead_init, 25088c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 25098c2ecf20Sopenharmony_ci .ivsize = 12, 25108c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 25118c2ecf20Sopenharmony_ci }, 25128c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_GCTR, 25138c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 25148c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_NULL, 25158c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 25168c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 25178c2ecf20Sopenharmony_ci }, 25188c2ecf20Sopenharmony_ci { 25198c2ecf20Sopenharmony_ci .name = "rfc4106(gcm(aes))", 25208c2ecf20Sopenharmony_ci .driver_name = "rfc4106-gcm-aes-ccree", 25218c2ecf20Sopenharmony_ci .blocksize = 1, 25228c2ecf20Sopenharmony_ci .template_aead = { 25238c2ecf20Sopenharmony_ci .setkey = cc_rfc4106_gcm_setkey, 25248c2ecf20Sopenharmony_ci .setauthsize = cc_rfc4106_gcm_setauthsize, 25258c2ecf20Sopenharmony_ci .encrypt = cc_rfc4106_gcm_encrypt, 25268c2ecf20Sopenharmony_ci .decrypt = cc_rfc4106_gcm_decrypt, 25278c2ecf20Sopenharmony_ci .init = cc_aead_init, 25288c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 25298c2ecf20Sopenharmony_ci .ivsize = GCM_BLOCK_RFC4_IV_SIZE, 25308c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 25318c2ecf20Sopenharmony_ci }, 25328c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_GCTR, 25338c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 25348c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_NULL, 25358c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 25368c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 25378c2ecf20Sopenharmony_ci }, 25388c2ecf20Sopenharmony_ci { 25398c2ecf20Sopenharmony_ci .name = "rfc4543(gcm(aes))", 25408c2ecf20Sopenharmony_ci .driver_name = "rfc4543-gcm-aes-ccree", 25418c2ecf20Sopenharmony_ci .blocksize = 1, 25428c2ecf20Sopenharmony_ci .template_aead = { 25438c2ecf20Sopenharmony_ci .setkey = cc_rfc4543_gcm_setkey, 25448c2ecf20Sopenharmony_ci .setauthsize = cc_rfc4543_gcm_setauthsize, 25458c2ecf20Sopenharmony_ci .encrypt = cc_rfc4543_gcm_encrypt, 25468c2ecf20Sopenharmony_ci .decrypt = cc_rfc4543_gcm_decrypt, 25478c2ecf20Sopenharmony_ci .init = cc_aead_init, 25488c2ecf20Sopenharmony_ci .exit = cc_aead_exit, 25498c2ecf20Sopenharmony_ci .ivsize = GCM_BLOCK_RFC4_IV_SIZE, 25508c2ecf20Sopenharmony_ci .maxauthsize = AES_BLOCK_SIZE, 25518c2ecf20Sopenharmony_ci }, 25528c2ecf20Sopenharmony_ci .cipher_mode = DRV_CIPHER_GCTR, 25538c2ecf20Sopenharmony_ci .flow_mode = S_DIN_to_AES, 25548c2ecf20Sopenharmony_ci .auth_mode = DRV_HASH_NULL, 25558c2ecf20Sopenharmony_ci .min_hw_rev = CC_HW_REV_630, 25568c2ecf20Sopenharmony_ci .std_body = CC_STD_NIST, 25578c2ecf20Sopenharmony_ci }, 25588c2ecf20Sopenharmony_ci}; 25598c2ecf20Sopenharmony_ci 25608c2ecf20Sopenharmony_cistatic struct cc_crypto_alg *cc_create_aead_alg(struct cc_alg_template *tmpl, 25618c2ecf20Sopenharmony_ci struct device *dev) 25628c2ecf20Sopenharmony_ci{ 25638c2ecf20Sopenharmony_ci struct cc_crypto_alg *t_alg; 25648c2ecf20Sopenharmony_ci struct aead_alg *alg; 25658c2ecf20Sopenharmony_ci 25668c2ecf20Sopenharmony_ci t_alg = devm_kzalloc(dev, sizeof(*t_alg), GFP_KERNEL); 25678c2ecf20Sopenharmony_ci if (!t_alg) 25688c2ecf20Sopenharmony_ci return ERR_PTR(-ENOMEM); 25698c2ecf20Sopenharmony_ci 25708c2ecf20Sopenharmony_ci alg = &tmpl->template_aead; 25718c2ecf20Sopenharmony_ci 25728c2ecf20Sopenharmony_ci snprintf(alg->base.cra_name, CRYPTO_MAX_ALG_NAME, "%s", tmpl->name); 25738c2ecf20Sopenharmony_ci snprintf(alg->base.cra_driver_name, CRYPTO_MAX_ALG_NAME, "%s", 25748c2ecf20Sopenharmony_ci tmpl->driver_name); 25758c2ecf20Sopenharmony_ci alg->base.cra_module = THIS_MODULE; 25768c2ecf20Sopenharmony_ci alg->base.cra_priority = CC_CRA_PRIO; 25778c2ecf20Sopenharmony_ci 25788c2ecf20Sopenharmony_ci alg->base.cra_ctxsize = sizeof(struct cc_aead_ctx); 25798c2ecf20Sopenharmony_ci alg->base.cra_flags = CRYPTO_ALG_ASYNC | CRYPTO_ALG_KERN_DRIVER_ONLY; 25808c2ecf20Sopenharmony_ci alg->base.cra_blocksize = tmpl->blocksize; 25818c2ecf20Sopenharmony_ci alg->init = cc_aead_init; 25828c2ecf20Sopenharmony_ci alg->exit = cc_aead_exit; 25838c2ecf20Sopenharmony_ci 25848c2ecf20Sopenharmony_ci t_alg->aead_alg = *alg; 25858c2ecf20Sopenharmony_ci 25868c2ecf20Sopenharmony_ci t_alg->cipher_mode = tmpl->cipher_mode; 25878c2ecf20Sopenharmony_ci t_alg->flow_mode = tmpl->flow_mode; 25888c2ecf20Sopenharmony_ci t_alg->auth_mode = tmpl->auth_mode; 25898c2ecf20Sopenharmony_ci 25908c2ecf20Sopenharmony_ci return t_alg; 25918c2ecf20Sopenharmony_ci} 25928c2ecf20Sopenharmony_ci 25938c2ecf20Sopenharmony_ciint cc_aead_free(struct cc_drvdata *drvdata) 25948c2ecf20Sopenharmony_ci{ 25958c2ecf20Sopenharmony_ci struct cc_crypto_alg *t_alg, *n; 25968c2ecf20Sopenharmony_ci struct cc_aead_handle *aead_handle = drvdata->aead_handle; 25978c2ecf20Sopenharmony_ci 25988c2ecf20Sopenharmony_ci /* Remove registered algs */ 25998c2ecf20Sopenharmony_ci list_for_each_entry_safe(t_alg, n, &aead_handle->aead_list, entry) { 26008c2ecf20Sopenharmony_ci crypto_unregister_aead(&t_alg->aead_alg); 26018c2ecf20Sopenharmony_ci list_del(&t_alg->entry); 26028c2ecf20Sopenharmony_ci } 26038c2ecf20Sopenharmony_ci 26048c2ecf20Sopenharmony_ci return 0; 26058c2ecf20Sopenharmony_ci} 26068c2ecf20Sopenharmony_ci 26078c2ecf20Sopenharmony_ciint cc_aead_alloc(struct cc_drvdata *drvdata) 26088c2ecf20Sopenharmony_ci{ 26098c2ecf20Sopenharmony_ci struct cc_aead_handle *aead_handle; 26108c2ecf20Sopenharmony_ci struct cc_crypto_alg *t_alg; 26118c2ecf20Sopenharmony_ci int rc = -ENOMEM; 26128c2ecf20Sopenharmony_ci int alg; 26138c2ecf20Sopenharmony_ci struct device *dev = drvdata_to_dev(drvdata); 26148c2ecf20Sopenharmony_ci 26158c2ecf20Sopenharmony_ci aead_handle = devm_kmalloc(dev, sizeof(*aead_handle), GFP_KERNEL); 26168c2ecf20Sopenharmony_ci if (!aead_handle) { 26178c2ecf20Sopenharmony_ci rc = -ENOMEM; 26188c2ecf20Sopenharmony_ci goto fail0; 26198c2ecf20Sopenharmony_ci } 26208c2ecf20Sopenharmony_ci 26218c2ecf20Sopenharmony_ci INIT_LIST_HEAD(&aead_handle->aead_list); 26228c2ecf20Sopenharmony_ci drvdata->aead_handle = aead_handle; 26238c2ecf20Sopenharmony_ci 26248c2ecf20Sopenharmony_ci aead_handle->sram_workspace_addr = cc_sram_alloc(drvdata, 26258c2ecf20Sopenharmony_ci MAX_HMAC_DIGEST_SIZE); 26268c2ecf20Sopenharmony_ci 26278c2ecf20Sopenharmony_ci if (aead_handle->sram_workspace_addr == NULL_SRAM_ADDR) { 26288c2ecf20Sopenharmony_ci rc = -ENOMEM; 26298c2ecf20Sopenharmony_ci goto fail1; 26308c2ecf20Sopenharmony_ci } 26318c2ecf20Sopenharmony_ci 26328c2ecf20Sopenharmony_ci /* Linux crypto */ 26338c2ecf20Sopenharmony_ci for (alg = 0; alg < ARRAY_SIZE(aead_algs); alg++) { 26348c2ecf20Sopenharmony_ci if ((aead_algs[alg].min_hw_rev > drvdata->hw_rev) || 26358c2ecf20Sopenharmony_ci !(drvdata->std_bodies & aead_algs[alg].std_body)) 26368c2ecf20Sopenharmony_ci continue; 26378c2ecf20Sopenharmony_ci 26388c2ecf20Sopenharmony_ci t_alg = cc_create_aead_alg(&aead_algs[alg], dev); 26398c2ecf20Sopenharmony_ci if (IS_ERR(t_alg)) { 26408c2ecf20Sopenharmony_ci rc = PTR_ERR(t_alg); 26418c2ecf20Sopenharmony_ci dev_err(dev, "%s alg allocation failed\n", 26428c2ecf20Sopenharmony_ci aead_algs[alg].driver_name); 26438c2ecf20Sopenharmony_ci goto fail1; 26448c2ecf20Sopenharmony_ci } 26458c2ecf20Sopenharmony_ci t_alg->drvdata = drvdata; 26468c2ecf20Sopenharmony_ci rc = crypto_register_aead(&t_alg->aead_alg); 26478c2ecf20Sopenharmony_ci if (rc) { 26488c2ecf20Sopenharmony_ci dev_err(dev, "%s alg registration failed\n", 26498c2ecf20Sopenharmony_ci t_alg->aead_alg.base.cra_driver_name); 26508c2ecf20Sopenharmony_ci goto fail1; 26518c2ecf20Sopenharmony_ci } 26528c2ecf20Sopenharmony_ci 26538c2ecf20Sopenharmony_ci list_add_tail(&t_alg->entry, &aead_handle->aead_list); 26548c2ecf20Sopenharmony_ci dev_dbg(dev, "Registered %s\n", 26558c2ecf20Sopenharmony_ci t_alg->aead_alg.base.cra_driver_name); 26568c2ecf20Sopenharmony_ci } 26578c2ecf20Sopenharmony_ci 26588c2ecf20Sopenharmony_ci return 0; 26598c2ecf20Sopenharmony_ci 26608c2ecf20Sopenharmony_cifail1: 26618c2ecf20Sopenharmony_ci cc_aead_free(drvdata); 26628c2ecf20Sopenharmony_cifail0: 26638c2ecf20Sopenharmony_ci return rc; 26648c2ecf20Sopenharmony_ci} 2665