mirror of
https://gitlab.com/cryptsetup/cryptsetup.git
synced 2025-12-08 17:30:03 +01:00
The Argon2i/id is a password hashing function that won Password Hashing Competiton. It will be (optionally) used in LUKS2 for passworrd-based key derivation. We have to bundle code for now (similar PBKDF2 years ago) because there is yet no usable implementation in common crypto libraries. (Once there is native implementation, cryptsetup will switch to the crypto library version.) For now, we use reference (not optimized but portable) implementation. This patch contains bundled Argon2 algorithm library copied from https://github.com/P-H-C/phc-winner-argon2 For more info see Password Hashing Competition site: https://password-hashing.net/ and draft of RFC document https://datatracker.ietf.org/doc/draft-irtf-cfrg-argon2/ Signed-off-by: Milan Broz <gmazyland@gmail.com>
92 lines
2.7 KiB
C
92 lines
2.7 KiB
C
/*
|
|
* Argon2 reference source code package - reference C implementations
|
|
*
|
|
* Copyright 2015
|
|
* Daniel Dinu, Dmitry Khovratovich, Jean-Philippe Aumasson, and Samuel Neves
|
|
*
|
|
* You may use this work under the terms of a Creative Commons CC0 1.0
|
|
* License/Waiver or the Apache Public License 2.0, at your option. The terms of
|
|
* these licenses can be found at:
|
|
*
|
|
* - CC0 1.0 Universal : http://creativecommons.org/publicdomain/zero/1.0
|
|
* - Apache 2.0 : http://www.apache.org/licenses/LICENSE-2.0
|
|
*
|
|
* You should have received a copy of both of these licenses along with this
|
|
* software. If not, they may be obtained at the above URLs.
|
|
*/
|
|
|
|
#ifndef PORTABLE_BLAKE2_H
|
|
#define PORTABLE_BLAKE2_H
|
|
|
|
#include <stddef.h>
|
|
#include <stdint.h>
|
|
#include <limits.h>
|
|
|
|
#if defined(__cplusplus)
|
|
extern "C" {
|
|
#endif
|
|
|
|
enum blake2b_constant {
|
|
BLAKE2B_BLOCKBYTES = 128,
|
|
BLAKE2B_OUTBYTES = 64,
|
|
BLAKE2B_KEYBYTES = 64,
|
|
BLAKE2B_SALTBYTES = 16,
|
|
BLAKE2B_PERSONALBYTES = 16
|
|
};
|
|
|
|
#pragma pack(push, 1)
|
|
typedef struct __blake2b_param {
|
|
uint8_t digest_length; /* 1 */
|
|
uint8_t key_length; /* 2 */
|
|
uint8_t fanout; /* 3 */
|
|
uint8_t depth; /* 4 */
|
|
uint32_t leaf_length; /* 8 */
|
|
uint64_t node_offset; /* 16 */
|
|
uint8_t node_depth; /* 17 */
|
|
uint8_t inner_length; /* 18 */
|
|
uint8_t reserved[14]; /* 32 */
|
|
uint8_t salt[BLAKE2B_SALTBYTES]; /* 48 */
|
|
uint8_t personal[BLAKE2B_PERSONALBYTES]; /* 64 */
|
|
} blake2b_param;
|
|
#pragma pack(pop)
|
|
|
|
typedef struct __blake2b_state {
|
|
uint64_t h[8];
|
|
uint64_t t[2];
|
|
uint64_t f[2];
|
|
uint8_t buf[BLAKE2B_BLOCKBYTES];
|
|
unsigned buflen;
|
|
unsigned outlen;
|
|
uint8_t last_node;
|
|
} blake2b_state;
|
|
|
|
/* Ensure param structs have not been wrongly padded */
|
|
/* Poor man's static_assert */
|
|
enum {
|
|
blake2_size_check_0 = 1 / !!(CHAR_BIT == 8),
|
|
blake2_size_check_2 =
|
|
1 / !!(sizeof(blake2b_param) == sizeof(uint64_t) * CHAR_BIT)
|
|
};
|
|
|
|
/* Streaming API */
|
|
int blake2b_init(blake2b_state *S, size_t outlen);
|
|
int blake2b_init_key(blake2b_state *S, size_t outlen, const void *key,
|
|
size_t keylen);
|
|
int blake2b_init_param(blake2b_state *S, const blake2b_param *P);
|
|
int blake2b_update(blake2b_state *S, const void *in, size_t inlen);
|
|
int blake2b_final(blake2b_state *S, void *out, size_t outlen);
|
|
|
|
/* Simple API */
|
|
int blake2b(void *out, size_t outlen, const void *in, size_t inlen,
|
|
const void *key, size_t keylen);
|
|
|
|
/* Argon2 Team - Begin Code */
|
|
int blake2b_long(void *out, size_t outlen, const void *in, size_t inlen);
|
|
/* Argon2 Team - End Code */
|
|
|
|
#if defined(__cplusplus)
|
|
}
|
|
#endif
|
|
|
|
#endif
|