1 /* $OpenBSD: sm3.c,v 1.1 2018/11/11 06:53:31 tb Exp $ */
3 * Copyright (c) 2018, Ribose Inc
5 * Permission to use, copy, modify, and/or distribute this software for any
6 * purpose with or without fee is hereby granted, provided that the above
7 * copyright notice and this permission notice appear in all copies.
9 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
10 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
11 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
12 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
13 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
14 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
15 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
18 #ifndef OPENSSL_NO_SM3
20 #include <openssl/sm3.h>
27 memset(c, 0, sizeof(*c));
40 SM3_block_data_order(SM3_CTX *ctx, const void *p, size_t num)
42 const unsigned char *data = p;
43 SM3_WORD A, B, C, D, E, F, G, H;
44 SM3_WORD W00, W01, W02, W03, W04, W05, W06, W07;
45 SM3_WORD W08, W09, W10, W11, W12, W13, W14, W15;
58 * We have to load all message bytes immediately since SM3 reads
59 * them slightly out of order.
78 R1(A, B, C, D, E, F, G, H, 0x79cc4519, W00, W00 ^ W04);
79 W00 = EXPAND(W00, W07, W13, W03, W10);
80 R1(D, A, B, C, H, E, F, G, 0xf3988a32, W01, W01 ^ W05);
81 W01 = EXPAND(W01, W08, W14, W04, W11);
82 R1(C, D, A, B, G, H, E, F, 0xe7311465, W02, W02 ^ W06);
83 W02 = EXPAND(W02, W09, W15, W05, W12);
84 R1(B, C, D, A, F, G, H, E, 0xce6228cb, W03, W03 ^ W07);
85 W03 = EXPAND(W03, W10, W00, W06, W13);
86 R1(A, B, C, D, E, F, G, H, 0x9cc45197, W04, W04 ^ W08);
87 W04 = EXPAND(W04, W11, W01, W07, W14);
88 R1(D, A, B, C, H, E, F, G, 0x3988a32f, W05, W05 ^ W09);
89 W05 = EXPAND(W05, W12, W02, W08, W15);
90 R1(C, D, A, B, G, H, E, F, 0x7311465e, W06, W06 ^ W10);
91 W06 = EXPAND(W06, W13, W03, W09, W00);
92 R1(B, C, D, A, F, G, H, E, 0xe6228cbc, W07, W07 ^ W11);
93 W07 = EXPAND(W07, W14, W04, W10, W01);
94 R1(A, B, C, D, E, F, G, H, 0xcc451979, W08, W08 ^ W12);
95 W08 = EXPAND(W08, W15, W05, W11, W02);
96 R1(D, A, B, C, H, E, F, G, 0x988a32f3, W09, W09 ^ W13);
97 W09 = EXPAND(W09, W00, W06, W12, W03);
98 R1(C, D, A, B, G, H, E, F, 0x311465e7, W10, W10 ^ W14);
99 W10 = EXPAND(W10, W01, W07, W13, W04);
100 R1(B, C, D, A, F, G, H, E, 0x6228cbce, W11, W11 ^ W15);
101 W11 = EXPAND(W11, W02, W08, W14, W05);
102 R1(A, B, C, D, E, F, G, H, 0xc451979c, W12, W12 ^ W00);
103 W12 = EXPAND(W12, W03, W09, W15, W06);
104 R1(D, A, B, C, H, E, F, G, 0x88a32f39, W13, W13 ^ W01);
105 W13 = EXPAND(W13, W04, W10, W00, W07);
106 R1(C, D, A, B, G, H, E, F, 0x11465e73, W14, W14 ^ W02);
107 W14 = EXPAND(W14, W05, W11, W01, W08);
108 R1(B, C, D, A, F, G, H, E, 0x228cbce6, W15, W15 ^ W03);
109 W15 = EXPAND(W15, W06, W12, W02, W09);
110 R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04);
111 W00 = EXPAND(W00, W07, W13, W03, W10);
112 R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05);
113 W01 = EXPAND(W01, W08, W14, W04, W11);
114 R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06);
115 W02 = EXPAND(W02, W09, W15, W05, W12);
116 R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07);
117 W03 = EXPAND(W03, W10, W00, W06, W13);
118 R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08);
119 W04 = EXPAND(W04, W11, W01, W07, W14);
120 R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09);
121 W05 = EXPAND(W05, W12, W02, W08, W15);
122 R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10);
123 W06 = EXPAND(W06, W13, W03, W09, W00);
124 R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11);
125 W07 = EXPAND(W07, W14, W04, W10, W01);
126 R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12);
127 W08 = EXPAND(W08, W15, W05, W11, W02);
128 R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13);
129 W09 = EXPAND(W09, W00, W06, W12, W03);
130 R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14);
131 W10 = EXPAND(W10, W01, W07, W13, W04);
132 R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15);
133 W11 = EXPAND(W11, W02, W08, W14, W05);
134 R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00);
135 W12 = EXPAND(W12, W03, W09, W15, W06);
136 R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01);
137 W13 = EXPAND(W13, W04, W10, W00, W07);
138 R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02);
139 W14 = EXPAND(W14, W05, W11, W01, W08);
140 R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03);
141 W15 = EXPAND(W15, W06, W12, W02, W09);
142 R2(A, B, C, D, E, F, G, H, 0x7a879d8a, W00, W00 ^ W04);
143 W00 = EXPAND(W00, W07, W13, W03, W10);
144 R2(D, A, B, C, H, E, F, G, 0xf50f3b14, W01, W01 ^ W05);
145 W01 = EXPAND(W01, W08, W14, W04, W11);
146 R2(C, D, A, B, G, H, E, F, 0xea1e7629, W02, W02 ^ W06);
147 W02 = EXPAND(W02, W09, W15, W05, W12);
148 R2(B, C, D, A, F, G, H, E, 0xd43cec53, W03, W03 ^ W07);
149 W03 = EXPAND(W03, W10, W00, W06, W13);
150 R2(A, B, C, D, E, F, G, H, 0xa879d8a7, W04, W04 ^ W08);
151 W04 = EXPAND(W04, W11, W01, W07, W14);
152 R2(D, A, B, C, H, E, F, G, 0x50f3b14f, W05, W05 ^ W09);
153 W05 = EXPAND(W05, W12, W02, W08, W15);
154 R2(C, D, A, B, G, H, E, F, 0xa1e7629e, W06, W06 ^ W10);
155 W06 = EXPAND(W06, W13, W03, W09, W00);
156 R2(B, C, D, A, F, G, H, E, 0x43cec53d, W07, W07 ^ W11);
157 W07 = EXPAND(W07, W14, W04, W10, W01);
158 R2(A, B, C, D, E, F, G, H, 0x879d8a7a, W08, W08 ^ W12);
159 W08 = EXPAND(W08, W15, W05, W11, W02);
160 R2(D, A, B, C, H, E, F, G, 0x0f3b14f5, W09, W09 ^ W13);
161 W09 = EXPAND(W09, W00, W06, W12, W03);
162 R2(C, D, A, B, G, H, E, F, 0x1e7629ea, W10, W10 ^ W14);
163 W10 = EXPAND(W10, W01, W07, W13, W04);
164 R2(B, C, D, A, F, G, H, E, 0x3cec53d4, W11, W11 ^ W15);
165 W11 = EXPAND(W11, W02, W08, W14, W05);
166 R2(A, B, C, D, E, F, G, H, 0x79d8a7a8, W12, W12 ^ W00);
167 W12 = EXPAND(W12, W03, W09, W15, W06);
168 R2(D, A, B, C, H, E, F, G, 0xf3b14f50, W13, W13 ^ W01);
169 W13 = EXPAND(W13, W04, W10, W00, W07);
170 R2(C, D, A, B, G, H, E, F, 0xe7629ea1, W14, W14 ^ W02);
171 W14 = EXPAND(W14, W05, W11, W01, W08);
172 R2(B, C, D, A, F, G, H, E, 0xcec53d43, W15, W15 ^ W03);
173 W15 = EXPAND(W15, W06, W12, W02, W09);
174 R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04);
175 W00 = EXPAND(W00, W07, W13, W03, W10);
176 R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05);
177 W01 = EXPAND(W01, W08, W14, W04, W11);
178 R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06);
179 W02 = EXPAND(W02, W09, W15, W05, W12);
180 R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07);
181 W03 = EXPAND(W03, W10, W00, W06, W13);
182 R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08);
183 R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09);
184 R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10);
185 R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11);
186 R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12);
187 R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13);
188 R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14);
189 R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15);
190 R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00);
191 R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01);
192 R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02);
193 R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03);
206 #endif /* !OPENSSL_NO_SM3 */