162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0-or-later
262306a36Sopenharmony_ci/*
362306a36Sopenharmony_ci * Glue code for the SHA256 Secure Hash Algorithm assembly implementation
462306a36Sopenharmony_ci * using optimized ARM assembler and NEON instructions.
562306a36Sopenharmony_ci *
662306a36Sopenharmony_ci * Copyright © 2015 Google Inc.
762306a36Sopenharmony_ci *
862306a36Sopenharmony_ci * This file is based on sha256_ssse3_glue.c:
962306a36Sopenharmony_ci *   Copyright (C) 2013 Intel Corporation
1062306a36Sopenharmony_ci *   Author: Tim Chen <tim.c.chen@linux.intel.com>
1162306a36Sopenharmony_ci */
1262306a36Sopenharmony_ci
1362306a36Sopenharmony_ci#include <crypto/internal/hash.h>
1462306a36Sopenharmony_ci#include <linux/crypto.h>
1562306a36Sopenharmony_ci#include <linux/init.h>
1662306a36Sopenharmony_ci#include <linux/module.h>
1762306a36Sopenharmony_ci#include <linux/mm.h>
1862306a36Sopenharmony_ci#include <linux/types.h>
1962306a36Sopenharmony_ci#include <linux/string.h>
2062306a36Sopenharmony_ci#include <crypto/sha2.h>
2162306a36Sopenharmony_ci#include <crypto/sha256_base.h>
2262306a36Sopenharmony_ci#include <asm/simd.h>
2362306a36Sopenharmony_ci#include <asm/neon.h>
2462306a36Sopenharmony_ci
2562306a36Sopenharmony_ci#include "sha256_glue.h"
2662306a36Sopenharmony_ci
2762306a36Sopenharmony_ciasmlinkage void sha256_block_data_order(struct sha256_state *state,
2862306a36Sopenharmony_ci					const u8 *data, int num_blks);
2962306a36Sopenharmony_ci
3062306a36Sopenharmony_ciint crypto_sha256_arm_update(struct shash_desc *desc, const u8 *data,
3162306a36Sopenharmony_ci			     unsigned int len)
3262306a36Sopenharmony_ci{
3362306a36Sopenharmony_ci	/* make sure casting to sha256_block_fn() is safe */
3462306a36Sopenharmony_ci	BUILD_BUG_ON(offsetof(struct sha256_state, state) != 0);
3562306a36Sopenharmony_ci
3662306a36Sopenharmony_ci	return sha256_base_do_update(desc, data, len, sha256_block_data_order);
3762306a36Sopenharmony_ci}
3862306a36Sopenharmony_ciEXPORT_SYMBOL(crypto_sha256_arm_update);
3962306a36Sopenharmony_ci
4062306a36Sopenharmony_cistatic int crypto_sha256_arm_final(struct shash_desc *desc, u8 *out)
4162306a36Sopenharmony_ci{
4262306a36Sopenharmony_ci	sha256_base_do_finalize(desc, sha256_block_data_order);
4362306a36Sopenharmony_ci	return sha256_base_finish(desc, out);
4462306a36Sopenharmony_ci}
4562306a36Sopenharmony_ci
4662306a36Sopenharmony_ciint crypto_sha256_arm_finup(struct shash_desc *desc, const u8 *data,
4762306a36Sopenharmony_ci			    unsigned int len, u8 *out)
4862306a36Sopenharmony_ci{
4962306a36Sopenharmony_ci	sha256_base_do_update(desc, data, len, sha256_block_data_order);
5062306a36Sopenharmony_ci	return crypto_sha256_arm_final(desc, out);
5162306a36Sopenharmony_ci}
5262306a36Sopenharmony_ciEXPORT_SYMBOL(crypto_sha256_arm_finup);
5362306a36Sopenharmony_ci
5462306a36Sopenharmony_cistatic struct shash_alg algs[] = { {
5562306a36Sopenharmony_ci	.digestsize	=	SHA256_DIGEST_SIZE,
5662306a36Sopenharmony_ci	.init		=	sha256_base_init,
5762306a36Sopenharmony_ci	.update		=	crypto_sha256_arm_update,
5862306a36Sopenharmony_ci	.final		=	crypto_sha256_arm_final,
5962306a36Sopenharmony_ci	.finup		=	crypto_sha256_arm_finup,
6062306a36Sopenharmony_ci	.descsize	=	sizeof(struct sha256_state),
6162306a36Sopenharmony_ci	.base		=	{
6262306a36Sopenharmony_ci		.cra_name	=	"sha256",
6362306a36Sopenharmony_ci		.cra_driver_name =	"sha256-asm",
6462306a36Sopenharmony_ci		.cra_priority	=	150,
6562306a36Sopenharmony_ci		.cra_blocksize	=	SHA256_BLOCK_SIZE,
6662306a36Sopenharmony_ci		.cra_module	=	THIS_MODULE,
6762306a36Sopenharmony_ci	}
6862306a36Sopenharmony_ci}, {
6962306a36Sopenharmony_ci	.digestsize	=	SHA224_DIGEST_SIZE,
7062306a36Sopenharmony_ci	.init		=	sha224_base_init,
7162306a36Sopenharmony_ci	.update		=	crypto_sha256_arm_update,
7262306a36Sopenharmony_ci	.final		=	crypto_sha256_arm_final,
7362306a36Sopenharmony_ci	.finup		=	crypto_sha256_arm_finup,
7462306a36Sopenharmony_ci	.descsize	=	sizeof(struct sha256_state),
7562306a36Sopenharmony_ci	.base		=	{
7662306a36Sopenharmony_ci		.cra_name	=	"sha224",
7762306a36Sopenharmony_ci		.cra_driver_name =	"sha224-asm",
7862306a36Sopenharmony_ci		.cra_priority	=	150,
7962306a36Sopenharmony_ci		.cra_blocksize	=	SHA224_BLOCK_SIZE,
8062306a36Sopenharmony_ci		.cra_module	=	THIS_MODULE,
8162306a36Sopenharmony_ci	}
8262306a36Sopenharmony_ci} };
8362306a36Sopenharmony_ci
8462306a36Sopenharmony_cistatic int __init sha256_mod_init(void)
8562306a36Sopenharmony_ci{
8662306a36Sopenharmony_ci	int res = crypto_register_shashes(algs, ARRAY_SIZE(algs));
8762306a36Sopenharmony_ci
8862306a36Sopenharmony_ci	if (res < 0)
8962306a36Sopenharmony_ci		return res;
9062306a36Sopenharmony_ci
9162306a36Sopenharmony_ci	if (IS_ENABLED(CONFIG_KERNEL_MODE_NEON) && cpu_has_neon()) {
9262306a36Sopenharmony_ci		res = crypto_register_shashes(sha256_neon_algs,
9362306a36Sopenharmony_ci					      ARRAY_SIZE(sha256_neon_algs));
9462306a36Sopenharmony_ci
9562306a36Sopenharmony_ci		if (res < 0)
9662306a36Sopenharmony_ci			crypto_unregister_shashes(algs, ARRAY_SIZE(algs));
9762306a36Sopenharmony_ci	}
9862306a36Sopenharmony_ci
9962306a36Sopenharmony_ci	return res;
10062306a36Sopenharmony_ci}
10162306a36Sopenharmony_ci
10262306a36Sopenharmony_cistatic void __exit sha256_mod_fini(void)
10362306a36Sopenharmony_ci{
10462306a36Sopenharmony_ci	crypto_unregister_shashes(algs, ARRAY_SIZE(algs));
10562306a36Sopenharmony_ci
10662306a36Sopenharmony_ci	if (IS_ENABLED(CONFIG_KERNEL_MODE_NEON) && cpu_has_neon())
10762306a36Sopenharmony_ci		crypto_unregister_shashes(sha256_neon_algs,
10862306a36Sopenharmony_ci					  ARRAY_SIZE(sha256_neon_algs));
10962306a36Sopenharmony_ci}
11062306a36Sopenharmony_ci
11162306a36Sopenharmony_cimodule_init(sha256_mod_init);
11262306a36Sopenharmony_cimodule_exit(sha256_mod_fini);
11362306a36Sopenharmony_ci
11462306a36Sopenharmony_ciMODULE_LICENSE("GPL");
11562306a36Sopenharmony_ciMODULE_DESCRIPTION("SHA256 Secure Hash Algorithm (ARM), including NEON");
11662306a36Sopenharmony_ci
11762306a36Sopenharmony_ciMODULE_ALIAS_CRYPTO("sha256");
118