Blame


1 0fc65b37 2004-03-21 devnull #include "os.h"
2 0fc65b37 2004-03-21 devnull #include <libsec.h>
3 0fc65b37 2004-03-21 devnull
4 0fc65b37 2004-03-21 devnull /*
5 0fc65b37 2004-03-21 devnull * This MD4 is implemented from the description in Stinson's Cryptography,
6 0fc65b37 2004-03-21 devnull * theory and practice. -- presotto
7 0fc65b37 2004-03-21 devnull */
8 0fc65b37 2004-03-21 devnull
9 0fc65b37 2004-03-21 devnull /*
10 0fc65b37 2004-03-21 devnull * Rotate ammounts used in the algorithm
11 0fc65b37 2004-03-21 devnull */
12 0fc65b37 2004-03-21 devnull enum
13 0fc65b37 2004-03-21 devnull {
14 0fc65b37 2004-03-21 devnull S11= 3,
15 0fc65b37 2004-03-21 devnull S12= 7,
16 0fc65b37 2004-03-21 devnull S13= 11,
17 0fc65b37 2004-03-21 devnull S14= 19,
18 0fc65b37 2004-03-21 devnull
19 0fc65b37 2004-03-21 devnull S21= 3,
20 0fc65b37 2004-03-21 devnull S22= 5,
21 0fc65b37 2004-03-21 devnull S23= 9,
22 0fc65b37 2004-03-21 devnull S24= 13,
23 0fc65b37 2004-03-21 devnull
24 0fc65b37 2004-03-21 devnull S31= 3,
25 0fc65b37 2004-03-21 devnull S32= 9,
26 0fc65b37 2004-03-21 devnull S33= 11,
27 cbeb0b26 2006-04-01 devnull S34= 15
28 0fc65b37 2004-03-21 devnull };
29 0fc65b37 2004-03-21 devnull
30 0fc65b37 2004-03-21 devnull typedef struct MD4Table MD4Table;
31 0fc65b37 2004-03-21 devnull struct MD4Table
32 0fc65b37 2004-03-21 devnull {
33 0fc65b37 2004-03-21 devnull uchar x; /* index into data block */
34 0fc65b37 2004-03-21 devnull uchar rot; /* amount to rotate left by */
35 0fc65b37 2004-03-21 devnull };
36 0fc65b37 2004-03-21 devnull
37 0fc65b37 2004-03-21 devnull static MD4Table tab[] =
38 0fc65b37 2004-03-21 devnull {
39 0fc65b37 2004-03-21 devnull /* round 1 */
40 fa325e9b 2020-01-10 cross /*[0]*/ { 0, S11},
41 fa325e9b 2020-01-10 cross { 1, S12},
42 fa325e9b 2020-01-10 cross { 2, S13},
43 fa325e9b 2020-01-10 cross { 3, S14},
44 fa325e9b 2020-01-10 cross { 4, S11},
45 fa325e9b 2020-01-10 cross { 5, S12},
46 fa325e9b 2020-01-10 cross { 6, S13},
47 fa325e9b 2020-01-10 cross { 7, S14},
48 fa325e9b 2020-01-10 cross { 8, S11},
49 fa325e9b 2020-01-10 cross { 9, S12},
50 fa325e9b 2020-01-10 cross { 10, S13},
51 fa325e9b 2020-01-10 cross { 11, S14},
52 fa325e9b 2020-01-10 cross { 12, S11},
53 fa325e9b 2020-01-10 cross { 13, S12},
54 fa325e9b 2020-01-10 cross { 14, S13},
55 0fc65b37 2004-03-21 devnull { 15, S14},
56 0fc65b37 2004-03-21 devnull
57 0fc65b37 2004-03-21 devnull /* round 2 */
58 fa325e9b 2020-01-10 cross /*[16]*/{ 0, S21},
59 fa325e9b 2020-01-10 cross { 4, S22},
60 fa325e9b 2020-01-10 cross { 8, S23},
61 fa325e9b 2020-01-10 cross { 12, S24},
62 fa325e9b 2020-01-10 cross { 1, S21},
63 fa325e9b 2020-01-10 cross { 5, S22},
64 fa325e9b 2020-01-10 cross { 9, S23},
65 fa325e9b 2020-01-10 cross { 13, S24},
66 fa325e9b 2020-01-10 cross { 2, S21},
67 fa325e9b 2020-01-10 cross { 6, S22},
68 fa325e9b 2020-01-10 cross { 10, S23},
69 fa325e9b 2020-01-10 cross { 14, S24},
70 fa325e9b 2020-01-10 cross { 3, S21},
71 fa325e9b 2020-01-10 cross { 7, S22},
72 fa325e9b 2020-01-10 cross { 11, S23},
73 0fc65b37 2004-03-21 devnull { 15, S24},
74 0fc65b37 2004-03-21 devnull
75 0fc65b37 2004-03-21 devnull /* round 3 */
76 fa325e9b 2020-01-10 cross /*[32]*/{ 0, S31},
77 fa325e9b 2020-01-10 cross { 8, S32},
78 fa325e9b 2020-01-10 cross { 4, S33},
79 fa325e9b 2020-01-10 cross { 12, S34},
80 fa325e9b 2020-01-10 cross { 2, S31},
81 fa325e9b 2020-01-10 cross { 10, S32},
82 fa325e9b 2020-01-10 cross { 6, S33},
83 fa325e9b 2020-01-10 cross { 14, S34},
84 fa325e9b 2020-01-10 cross { 1, S31},
85 fa325e9b 2020-01-10 cross { 9, S32},
86 fa325e9b 2020-01-10 cross { 5, S33},
87 fa325e9b 2020-01-10 cross { 13, S34},
88 fa325e9b 2020-01-10 cross { 3, S31},
89 fa325e9b 2020-01-10 cross { 11, S32},
90 fa325e9b 2020-01-10 cross { 7, S33},
91 fa325e9b 2020-01-10 cross { 15, S34},
92 0fc65b37 2004-03-21 devnull };
93 0fc65b37 2004-03-21 devnull
94 0fc65b37 2004-03-21 devnull static void encode(uchar*, u32int*, ulong);
95 0fc65b37 2004-03-21 devnull static void decode(u32int*, uchar*, ulong);
96 0fc65b37 2004-03-21 devnull
97 0fc65b37 2004-03-21 devnull static void
98 0fc65b37 2004-03-21 devnull md4block(uchar *p, ulong len, MD4state *s)
99 0fc65b37 2004-03-21 devnull {
100 0fc65b37 2004-03-21 devnull int i;
101 0fc65b37 2004-03-21 devnull u32int a, b, c, d, tmp;
102 0fc65b37 2004-03-21 devnull MD4Table *t;
103 0fc65b37 2004-03-21 devnull uchar *end;
104 0fc65b37 2004-03-21 devnull u32int x[16];
105 0fc65b37 2004-03-21 devnull
106 0fc65b37 2004-03-21 devnull for(end = p+len; p < end; p += 64){
107 0fc65b37 2004-03-21 devnull a = s->state[0];
108 0fc65b37 2004-03-21 devnull b = s->state[1];
109 0fc65b37 2004-03-21 devnull c = s->state[2];
110 0fc65b37 2004-03-21 devnull d = s->state[3];
111 0fc65b37 2004-03-21 devnull
112 0fc65b37 2004-03-21 devnull decode(x, p, 64);
113 fa325e9b 2020-01-10 cross
114 0fc65b37 2004-03-21 devnull for(i = 0; i < 48; i++){
115 0fc65b37 2004-03-21 devnull t = tab + i;
116 0fc65b37 2004-03-21 devnull switch(i>>4){
117 0fc65b37 2004-03-21 devnull case 0:
118 0fc65b37 2004-03-21 devnull a += (b & c) | (~b & d);
119 0fc65b37 2004-03-21 devnull break;
120 0fc65b37 2004-03-21 devnull case 1:
121 0fc65b37 2004-03-21 devnull a += ((b & c) | (b & d) | (c & d)) + 0x5A827999;
122 0fc65b37 2004-03-21 devnull break;
123 0fc65b37 2004-03-21 devnull case 2:
124 0fc65b37 2004-03-21 devnull a += (b ^ c ^ d) + 0x6ED9EBA1;
125 0fc65b37 2004-03-21 devnull break;
126 0fc65b37 2004-03-21 devnull }
127 0fc65b37 2004-03-21 devnull a += x[t->x];
128 0fc65b37 2004-03-21 devnull a = (a << t->rot) | (a >> (32 - t->rot));
129 fa325e9b 2020-01-10 cross
130 0fc65b37 2004-03-21 devnull /* rotate variables */
131 0fc65b37 2004-03-21 devnull tmp = d;
132 0fc65b37 2004-03-21 devnull d = c;
133 0fc65b37 2004-03-21 devnull c = b;
134 0fc65b37 2004-03-21 devnull b = a;
135 0fc65b37 2004-03-21 devnull a = tmp;
136 0fc65b37 2004-03-21 devnull }
137 0fc65b37 2004-03-21 devnull
138 0fc65b37 2004-03-21 devnull s->state[0] += a;
139 0fc65b37 2004-03-21 devnull s->state[1] += b;
140 0fc65b37 2004-03-21 devnull s->state[2] += c;
141 0fc65b37 2004-03-21 devnull s->state[3] += d;
142 0fc65b37 2004-03-21 devnull
143 0fc65b37 2004-03-21 devnull s->len += 64;
144 0fc65b37 2004-03-21 devnull }
145 0fc65b37 2004-03-21 devnull }
146 0fc65b37 2004-03-21 devnull
147 0fc65b37 2004-03-21 devnull MD4state*
148 0fc65b37 2004-03-21 devnull md4(uchar *p, ulong len, uchar *digest, MD4state *s)
149 0fc65b37 2004-03-21 devnull {
150 0fc65b37 2004-03-21 devnull u32int x[16];
151 0fc65b37 2004-03-21 devnull uchar buf[128];
152 0fc65b37 2004-03-21 devnull int i;
153 0fc65b37 2004-03-21 devnull uchar *e;
154 0fc65b37 2004-03-21 devnull
155 0fc65b37 2004-03-21 devnull if(s == nil){
156 0fc65b37 2004-03-21 devnull s = malloc(sizeof(*s));
157 0fc65b37 2004-03-21 devnull if(s == nil)
158 0fc65b37 2004-03-21 devnull return nil;
159 0fc65b37 2004-03-21 devnull memset(s, 0, sizeof(*s));
160 0fc65b37 2004-03-21 devnull s->malloced = 1;
161 0fc65b37 2004-03-21 devnull }
162 0fc65b37 2004-03-21 devnull
163 0fc65b37 2004-03-21 devnull if(s->seeded == 0){
164 0fc65b37 2004-03-21 devnull /* seed the state, these constants would look nicer big-endian */
165 0fc65b37 2004-03-21 devnull s->state[0] = 0x67452301;
166 0fc65b37 2004-03-21 devnull s->state[1] = 0xefcdab89;
167 0fc65b37 2004-03-21 devnull s->state[2] = 0x98badcfe;
168 0fc65b37 2004-03-21 devnull s->state[3] = 0x10325476;
169 0fc65b37 2004-03-21 devnull s->seeded = 1;
170 0fc65b37 2004-03-21 devnull }
171 0fc65b37 2004-03-21 devnull
172 0fc65b37 2004-03-21 devnull /* fill out the partial 64 byte block from previous calls */
173 0fc65b37 2004-03-21 devnull if(s->blen){
174 0fc65b37 2004-03-21 devnull i = 64 - s->blen;
175 0fc65b37 2004-03-21 devnull if(len < i)
176 0fc65b37 2004-03-21 devnull i = len;
177 0fc65b37 2004-03-21 devnull memmove(s->buf + s->blen, p, i);
178 0fc65b37 2004-03-21 devnull len -= i;
179 0fc65b37 2004-03-21 devnull s->blen += i;
180 0fc65b37 2004-03-21 devnull p += i;
181 0fc65b37 2004-03-21 devnull if(s->blen == 64){
182 0fc65b37 2004-03-21 devnull md4block(s->buf, s->blen, s);
183 0fc65b37 2004-03-21 devnull s->blen = 0;
184 0fc65b37 2004-03-21 devnull }
185 0fc65b37 2004-03-21 devnull }
186 0fc65b37 2004-03-21 devnull
187 0fc65b37 2004-03-21 devnull /* do 64 byte blocks */
188 0fc65b37 2004-03-21 devnull i = len & ~0x3f;
189 0fc65b37 2004-03-21 devnull if(i){
190 0fc65b37 2004-03-21 devnull md4block(p, i, s);
191 0fc65b37 2004-03-21 devnull len -= i;
192 0fc65b37 2004-03-21 devnull p += i;
193 0fc65b37 2004-03-21 devnull }
194 0fc65b37 2004-03-21 devnull
195 0fc65b37 2004-03-21 devnull /* save the left overs if not last call */
196 0fc65b37 2004-03-21 devnull if(digest == 0){
197 0fc65b37 2004-03-21 devnull if(len){
198 0fc65b37 2004-03-21 devnull memmove(s->buf, p, len);
199 0fc65b37 2004-03-21 devnull s->blen += len;
200 0fc65b37 2004-03-21 devnull }
201 0fc65b37 2004-03-21 devnull return s;
202 0fc65b37 2004-03-21 devnull }
203 0fc65b37 2004-03-21 devnull
204 0fc65b37 2004-03-21 devnull /*
205 0fc65b37 2004-03-21 devnull * this is the last time through, pad what's left with 0x80,
206 0fc65b37 2004-03-21 devnull * 0's, and the input count to create a multiple of 64 bytes
207 0fc65b37 2004-03-21 devnull */
208 0fc65b37 2004-03-21 devnull if(s->blen){
209 0fc65b37 2004-03-21 devnull p = s->buf;
210 0fc65b37 2004-03-21 devnull len = s->blen;
211 0fc65b37 2004-03-21 devnull } else {
212 0fc65b37 2004-03-21 devnull memmove(buf, p, len);
213 0fc65b37 2004-03-21 devnull p = buf;
214 0fc65b37 2004-03-21 devnull }
215 0fc65b37 2004-03-21 devnull s->len += len;
216 0fc65b37 2004-03-21 devnull e = p + len;
217 0fc65b37 2004-03-21 devnull if(len < 56)
218 0fc65b37 2004-03-21 devnull i = 56 - len;
219 0fc65b37 2004-03-21 devnull else
220 0fc65b37 2004-03-21 devnull i = 120 - len;
221 0fc65b37 2004-03-21 devnull memset(e, 0, i);
222 0fc65b37 2004-03-21 devnull *e = 0x80;
223 0fc65b37 2004-03-21 devnull len += i;
224 0fc65b37 2004-03-21 devnull
225 0fc65b37 2004-03-21 devnull /* append the count */
226 0fc65b37 2004-03-21 devnull x[0] = s->len<<3;
227 0fc65b37 2004-03-21 devnull x[1] = s->len>>29;
228 0fc65b37 2004-03-21 devnull encode(p+len, x, 8);
229 0fc65b37 2004-03-21 devnull
230 0fc65b37 2004-03-21 devnull /* digest the last part */
231 0fc65b37 2004-03-21 devnull md4block(p, len+8, s);
232 0fc65b37 2004-03-21 devnull
233 0fc65b37 2004-03-21 devnull /* return result and free state */
234 0fc65b37 2004-03-21 devnull encode(digest, s->state, MD4dlen);
235 0fc65b37 2004-03-21 devnull if(s->malloced == 1)
236 0fc65b37 2004-03-21 devnull free(s);
237 0fc65b37 2004-03-21 devnull return nil;
238 0fc65b37 2004-03-21 devnull }
239 0fc65b37 2004-03-21 devnull
240 0fc65b37 2004-03-21 devnull /*
241 0fc65b37 2004-03-21 devnull * encodes input (u32int) into output (uchar). Assumes len is
242 0fc65b37 2004-03-21 devnull * a multiple of 4.
243 0fc65b37 2004-03-21 devnull */
244 0fc65b37 2004-03-21 devnull static void
245 0fc65b37 2004-03-21 devnull encode(uchar *output, u32int *input, ulong len)
246 0fc65b37 2004-03-21 devnull {
247 0fc65b37 2004-03-21 devnull u32int x;
248 0fc65b37 2004-03-21 devnull uchar *e;
249 0fc65b37 2004-03-21 devnull
250 0fc65b37 2004-03-21 devnull for(e = output + len; output < e;) {
251 0fc65b37 2004-03-21 devnull x = *input++;
252 0fc65b37 2004-03-21 devnull *output++ = x;
253 0fc65b37 2004-03-21 devnull *output++ = x >> 8;
254 0fc65b37 2004-03-21 devnull *output++ = x >> 16;
255 0fc65b37 2004-03-21 devnull *output++ = x >> 24;
256 0fc65b37 2004-03-21 devnull }
257 0fc65b37 2004-03-21 devnull }
258 0fc65b37 2004-03-21 devnull
259 0fc65b37 2004-03-21 devnull /*
260 0fc65b37 2004-03-21 devnull * decodes input (uchar) into output (u32int). Assumes len is
261 0fc65b37 2004-03-21 devnull * a multiple of 4.
262 0fc65b37 2004-03-21 devnull */
263 0fc65b37 2004-03-21 devnull static void
264 0fc65b37 2004-03-21 devnull decode(u32int *output, uchar *input, ulong len)
265 0fc65b37 2004-03-21 devnull {
266 0fc65b37 2004-03-21 devnull uchar *e;
267 0fc65b37 2004-03-21 devnull
268 0fc65b37 2004-03-21 devnull for(e = input+len; input < e; input += 4)
269 0fc65b37 2004-03-21 devnull *output++ = input[0] | (input[1] << 8) |
270 0fc65b37 2004-03-21 devnull (input[2] << 16) | (input[3] << 24);
271 0fc65b37 2004-03-21 devnull }