1fe869cdbSHerbert Xu /* 2fe869cdbSHerbert Xu * algif_hash: User-space interface for hash algorithms 3fe869cdbSHerbert Xu * 4fe869cdbSHerbert Xu * This file provides the user-space API for hash algorithms. 5fe869cdbSHerbert Xu * 6fe869cdbSHerbert Xu * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au> 7fe869cdbSHerbert Xu * 8fe869cdbSHerbert Xu * This program is free software; you can redistribute it and/or modify it 9fe869cdbSHerbert Xu * under the terms of the GNU General Public License as published by the Free 10fe869cdbSHerbert Xu * Software Foundation; either version 2 of the License, or (at your option) 11fe869cdbSHerbert Xu * any later version. 12fe869cdbSHerbert Xu * 13fe869cdbSHerbert Xu */ 14fe869cdbSHerbert Xu 15fe869cdbSHerbert Xu #include <crypto/hash.h> 16fe869cdbSHerbert Xu #include <crypto/if_alg.h> 17fe869cdbSHerbert Xu #include <linux/init.h> 18fe869cdbSHerbert Xu #include <linux/kernel.h> 19fe869cdbSHerbert Xu #include <linux/mm.h> 20fe869cdbSHerbert Xu #include <linux/module.h> 21fe869cdbSHerbert Xu #include <linux/net.h> 22fe869cdbSHerbert Xu #include <net/sock.h> 23fe869cdbSHerbert Xu 24fe869cdbSHerbert Xu struct hash_ctx { 25fe869cdbSHerbert Xu struct af_alg_sgl sgl; 26fe869cdbSHerbert Xu 27fe869cdbSHerbert Xu u8 *result; 28fe869cdbSHerbert Xu 29fe869cdbSHerbert Xu struct af_alg_completion completion; 30fe869cdbSHerbert Xu 31fe869cdbSHerbert Xu unsigned int len; 32fe869cdbSHerbert Xu bool more; 33fe869cdbSHerbert Xu 34fe869cdbSHerbert Xu struct ahash_request req; 35fe869cdbSHerbert Xu }; 36fe869cdbSHerbert Xu 371b784140SYing Xue static int hash_sendmsg(struct socket *sock, struct msghdr *msg, 381b784140SYing Xue size_t ignored) 39fe869cdbSHerbert Xu { 40fe869cdbSHerbert Xu int limit = ALG_MAX_PAGES * PAGE_SIZE; 41fe869cdbSHerbert Xu struct sock *sk = sock->sk; 42fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 43fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 44fe869cdbSHerbert Xu long copied = 0; 45fe869cdbSHerbert Xu int err; 46fe869cdbSHerbert Xu 47fe869cdbSHerbert Xu if (limit > sk->sk_sndbuf) 48fe869cdbSHerbert Xu limit = sk->sk_sndbuf; 49fe869cdbSHerbert Xu 50fe869cdbSHerbert Xu lock_sock(sk); 51fe869cdbSHerbert Xu if (!ctx->more) { 52fe869cdbSHerbert Xu err = crypto_ahash_init(&ctx->req); 53fe869cdbSHerbert Xu if (err) 54fe869cdbSHerbert Xu goto unlock; 55fe869cdbSHerbert Xu } 56fe869cdbSHerbert Xu 57fe869cdbSHerbert Xu ctx->more = 0; 58fe869cdbSHerbert Xu 5901e97e65SAl Viro while (msg_data_left(msg)) { 6001e97e65SAl Viro int len = msg_data_left(msg); 61fe869cdbSHerbert Xu 621d10eb2fSAl Viro if (len > limit) 631d10eb2fSAl Viro len = limit; 64fe869cdbSHerbert Xu 651d10eb2fSAl Viro len = af_alg_make_sg(&ctx->sgl, &msg->msg_iter, len); 661d10eb2fSAl Viro if (len < 0) { 671d10eb2fSAl Viro err = copied ? 0 : len; 68fe869cdbSHerbert Xu goto unlock; 69269230e7SHerbert Xu } 70fe869cdbSHerbert Xu 711d10eb2fSAl Viro ahash_request_set_crypt(&ctx->req, ctx->sgl.sg, NULL, len); 72fe869cdbSHerbert Xu 731d10eb2fSAl Viro err = af_alg_wait_for_completion(crypto_ahash_update(&ctx->req), 74fe869cdbSHerbert Xu &ctx->completion); 75fe869cdbSHerbert Xu af_alg_free_sg(&ctx->sgl); 76fe869cdbSHerbert Xu if (err) 77fe869cdbSHerbert Xu goto unlock; 78fe869cdbSHerbert Xu 791d10eb2fSAl Viro copied += len; 801d10eb2fSAl Viro iov_iter_advance(&msg->msg_iter, len); 81fe869cdbSHerbert Xu } 82fe869cdbSHerbert Xu 83fe869cdbSHerbert Xu err = 0; 84fe869cdbSHerbert Xu 85fe869cdbSHerbert Xu ctx->more = msg->msg_flags & MSG_MORE; 86fe869cdbSHerbert Xu if (!ctx->more) { 87fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, NULL, ctx->result, 0); 88fe869cdbSHerbert Xu err = af_alg_wait_for_completion(crypto_ahash_final(&ctx->req), 89fe869cdbSHerbert Xu &ctx->completion); 90fe869cdbSHerbert Xu } 91fe869cdbSHerbert Xu 92fe869cdbSHerbert Xu unlock: 93fe869cdbSHerbert Xu release_sock(sk); 94fe869cdbSHerbert Xu 95fe869cdbSHerbert Xu return err ?: copied; 96fe869cdbSHerbert Xu } 97fe869cdbSHerbert Xu 98fe869cdbSHerbert Xu static ssize_t hash_sendpage(struct socket *sock, struct page *page, 99fe869cdbSHerbert Xu int offset, size_t size, int flags) 100fe869cdbSHerbert Xu { 101fe869cdbSHerbert Xu struct sock *sk = sock->sk; 102fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 103fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 104fe869cdbSHerbert Xu int err; 105fe869cdbSHerbert Xu 106d3f7d56aSShawn Landden if (flags & MSG_SENDPAGE_NOTLAST) 107d3f7d56aSShawn Landden flags |= MSG_MORE; 108d3f7d56aSShawn Landden 109fe869cdbSHerbert Xu lock_sock(sk); 110fe869cdbSHerbert Xu sg_init_table(ctx->sgl.sg, 1); 111fe869cdbSHerbert Xu sg_set_page(ctx->sgl.sg, page, size, offset); 112fe869cdbSHerbert Xu 113fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, ctx->sgl.sg, ctx->result, size); 114fe869cdbSHerbert Xu 115fe869cdbSHerbert Xu if (!(flags & MSG_MORE)) { 116fe869cdbSHerbert Xu if (ctx->more) 117fe869cdbSHerbert Xu err = crypto_ahash_finup(&ctx->req); 118fe869cdbSHerbert Xu else 119fe869cdbSHerbert Xu err = crypto_ahash_digest(&ctx->req); 120fe869cdbSHerbert Xu } else { 121fe869cdbSHerbert Xu if (!ctx->more) { 122fe869cdbSHerbert Xu err = crypto_ahash_init(&ctx->req); 123fe869cdbSHerbert Xu if (err) 124fe869cdbSHerbert Xu goto unlock; 125fe869cdbSHerbert Xu } 126fe869cdbSHerbert Xu 127fe869cdbSHerbert Xu err = crypto_ahash_update(&ctx->req); 128fe869cdbSHerbert Xu } 129fe869cdbSHerbert Xu 130fe869cdbSHerbert Xu err = af_alg_wait_for_completion(err, &ctx->completion); 131fe869cdbSHerbert Xu if (err) 132fe869cdbSHerbert Xu goto unlock; 133fe869cdbSHerbert Xu 134fe869cdbSHerbert Xu ctx->more = flags & MSG_MORE; 135fe869cdbSHerbert Xu 136fe869cdbSHerbert Xu unlock: 137fe869cdbSHerbert Xu release_sock(sk); 138fe869cdbSHerbert Xu 139fe869cdbSHerbert Xu return err ?: size; 140fe869cdbSHerbert Xu } 141fe869cdbSHerbert Xu 1421b784140SYing Xue static int hash_recvmsg(struct socket *sock, struct msghdr *msg, size_t len, 1431b784140SYing Xue int flags) 144fe869cdbSHerbert Xu { 145fe869cdbSHerbert Xu struct sock *sk = sock->sk; 146fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 147fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 148fe869cdbSHerbert Xu unsigned ds = crypto_ahash_digestsize(crypto_ahash_reqtfm(&ctx->req)); 149fe869cdbSHerbert Xu int err; 150fe869cdbSHerbert Xu 151fe869cdbSHerbert Xu if (len > ds) 152fe869cdbSHerbert Xu len = ds; 153fe869cdbSHerbert Xu else if (len < ds) 154fe869cdbSHerbert Xu msg->msg_flags |= MSG_TRUNC; 155fe869cdbSHerbert Xu 156fe869cdbSHerbert Xu lock_sock(sk); 157fe869cdbSHerbert Xu if (ctx->more) { 158fe869cdbSHerbert Xu ctx->more = 0; 159fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, NULL, ctx->result, 0); 160fe869cdbSHerbert Xu err = af_alg_wait_for_completion(crypto_ahash_final(&ctx->req), 161fe869cdbSHerbert Xu &ctx->completion); 162fe869cdbSHerbert Xu if (err) 163fe869cdbSHerbert Xu goto unlock; 164fe869cdbSHerbert Xu } 165fe869cdbSHerbert Xu 1667eab8d9eSAl Viro err = memcpy_to_msg(msg, ctx->result, len); 167fe869cdbSHerbert Xu 168fe869cdbSHerbert Xu unlock: 169fe869cdbSHerbert Xu release_sock(sk); 170fe869cdbSHerbert Xu 171fe869cdbSHerbert Xu return err ?: len; 172fe869cdbSHerbert Xu } 173fe869cdbSHerbert Xu 174fe869cdbSHerbert Xu static int hash_accept(struct socket *sock, struct socket *newsock, int flags) 175fe869cdbSHerbert Xu { 176fe869cdbSHerbert Xu struct sock *sk = sock->sk; 177fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 178fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 179fe869cdbSHerbert Xu struct ahash_request *req = &ctx->req; 180fe869cdbSHerbert Xu char state[crypto_ahash_statesize(crypto_ahash_reqtfm(req))]; 181fe869cdbSHerbert Xu struct sock *sk2; 182fe869cdbSHerbert Xu struct alg_sock *ask2; 183fe869cdbSHerbert Xu struct hash_ctx *ctx2; 1844afa5f96SHerbert Xu bool more; 185fe869cdbSHerbert Xu int err; 186fe869cdbSHerbert Xu 1874afa5f96SHerbert Xu lock_sock(sk); 1884afa5f96SHerbert Xu more = ctx->more; 1894afa5f96SHerbert Xu err = more ? crypto_ahash_export(req, state) : 0; 1904afa5f96SHerbert Xu release_sock(sk); 1914afa5f96SHerbert Xu 192fe869cdbSHerbert Xu if (err) 193fe869cdbSHerbert Xu return err; 194fe869cdbSHerbert Xu 195fe869cdbSHerbert Xu err = af_alg_accept(ask->parent, newsock); 196fe869cdbSHerbert Xu if (err) 197fe869cdbSHerbert Xu return err; 198fe869cdbSHerbert Xu 199fe869cdbSHerbert Xu sk2 = newsock->sk; 200fe869cdbSHerbert Xu ask2 = alg_sk(sk2); 201fe869cdbSHerbert Xu ctx2 = ask2->private; 2024afa5f96SHerbert Xu ctx2->more = more; 2034afa5f96SHerbert Xu 2044afa5f96SHerbert Xu if (!more) 2054afa5f96SHerbert Xu return err; 206fe869cdbSHerbert Xu 207fe869cdbSHerbert Xu err = crypto_ahash_import(&ctx2->req, state); 208fe869cdbSHerbert Xu if (err) { 209fe869cdbSHerbert Xu sock_orphan(sk2); 210fe869cdbSHerbert Xu sock_put(sk2); 211fe869cdbSHerbert Xu } 212fe869cdbSHerbert Xu 213fe869cdbSHerbert Xu return err; 214fe869cdbSHerbert Xu } 215fe869cdbSHerbert Xu 216fe869cdbSHerbert Xu static struct proto_ops algif_hash_ops = { 217fe869cdbSHerbert Xu .family = PF_ALG, 218fe869cdbSHerbert Xu 219fe869cdbSHerbert Xu .connect = sock_no_connect, 220fe869cdbSHerbert Xu .socketpair = sock_no_socketpair, 221fe869cdbSHerbert Xu .getname = sock_no_getname, 222fe869cdbSHerbert Xu .ioctl = sock_no_ioctl, 223fe869cdbSHerbert Xu .listen = sock_no_listen, 224fe869cdbSHerbert Xu .shutdown = sock_no_shutdown, 225fe869cdbSHerbert Xu .getsockopt = sock_no_getsockopt, 226fe869cdbSHerbert Xu .mmap = sock_no_mmap, 227fe869cdbSHerbert Xu .bind = sock_no_bind, 228fe869cdbSHerbert Xu .setsockopt = sock_no_setsockopt, 229fe869cdbSHerbert Xu .poll = sock_no_poll, 230fe869cdbSHerbert Xu 231fe869cdbSHerbert Xu .release = af_alg_release, 232fe869cdbSHerbert Xu .sendmsg = hash_sendmsg, 233fe869cdbSHerbert Xu .sendpage = hash_sendpage, 234fe869cdbSHerbert Xu .recvmsg = hash_recvmsg, 235fe869cdbSHerbert Xu .accept = hash_accept, 236fe869cdbSHerbert Xu }; 237fe869cdbSHerbert Xu 238fe869cdbSHerbert Xu static void *hash_bind(const char *name, u32 type, u32 mask) 239fe869cdbSHerbert Xu { 240fe869cdbSHerbert Xu return crypto_alloc_ahash(name, type, mask); 241fe869cdbSHerbert Xu } 242fe869cdbSHerbert Xu 243fe869cdbSHerbert Xu static void hash_release(void *private) 244fe869cdbSHerbert Xu { 245fe869cdbSHerbert Xu crypto_free_ahash(private); 246fe869cdbSHerbert Xu } 247fe869cdbSHerbert Xu 248fe869cdbSHerbert Xu static int hash_setkey(void *private, const u8 *key, unsigned int keylen) 249fe869cdbSHerbert Xu { 250fe869cdbSHerbert Xu return crypto_ahash_setkey(private, key, keylen); 251fe869cdbSHerbert Xu } 252fe869cdbSHerbert Xu 253fe869cdbSHerbert Xu static void hash_sock_destruct(struct sock *sk) 254fe869cdbSHerbert Xu { 255fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 256fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 257fe869cdbSHerbert Xu 25879e88659SDaniel Borkmann sock_kzfree_s(sk, ctx->result, 259fe869cdbSHerbert Xu crypto_ahash_digestsize(crypto_ahash_reqtfm(&ctx->req))); 260fe869cdbSHerbert Xu sock_kfree_s(sk, ctx, ctx->len); 261fe869cdbSHerbert Xu af_alg_release_parent(sk); 262fe869cdbSHerbert Xu } 263fe869cdbSHerbert Xu 264fe869cdbSHerbert Xu static int hash_accept_parent(void *private, struct sock *sk) 265fe869cdbSHerbert Xu { 266fe869cdbSHerbert Xu struct hash_ctx *ctx; 267fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 268fe869cdbSHerbert Xu unsigned len = sizeof(*ctx) + crypto_ahash_reqsize(private); 269fe869cdbSHerbert Xu unsigned ds = crypto_ahash_digestsize(private); 270fe869cdbSHerbert Xu 271fe869cdbSHerbert Xu ctx = sock_kmalloc(sk, len, GFP_KERNEL); 272fe869cdbSHerbert Xu if (!ctx) 273fe869cdbSHerbert Xu return -ENOMEM; 274fe869cdbSHerbert Xu 275fe869cdbSHerbert Xu ctx->result = sock_kmalloc(sk, ds, GFP_KERNEL); 276fe869cdbSHerbert Xu if (!ctx->result) { 277fe869cdbSHerbert Xu sock_kfree_s(sk, ctx, len); 278fe869cdbSHerbert Xu return -ENOMEM; 279fe869cdbSHerbert Xu } 280fe869cdbSHerbert Xu 281fe869cdbSHerbert Xu memset(ctx->result, 0, ds); 282fe869cdbSHerbert Xu 283fe869cdbSHerbert Xu ctx->len = len; 284fe869cdbSHerbert Xu ctx->more = 0; 285fe869cdbSHerbert Xu af_alg_init_completion(&ctx->completion); 286fe869cdbSHerbert Xu 287fe869cdbSHerbert Xu ask->private = ctx; 288fe869cdbSHerbert Xu 289fe869cdbSHerbert Xu ahash_request_set_tfm(&ctx->req, private); 290fe869cdbSHerbert Xu ahash_request_set_callback(&ctx->req, CRYPTO_TFM_REQ_MAY_BACKLOG, 291fe869cdbSHerbert Xu af_alg_complete, &ctx->completion); 292fe869cdbSHerbert Xu 293fe869cdbSHerbert Xu sk->sk_destruct = hash_sock_destruct; 294fe869cdbSHerbert Xu 295fe869cdbSHerbert Xu return 0; 296fe869cdbSHerbert Xu } 297fe869cdbSHerbert Xu 298fe869cdbSHerbert Xu static const struct af_alg_type algif_type_hash = { 299fe869cdbSHerbert Xu .bind = hash_bind, 300fe869cdbSHerbert Xu .release = hash_release, 301fe869cdbSHerbert Xu .setkey = hash_setkey, 302fe869cdbSHerbert Xu .accept = hash_accept_parent, 303fe869cdbSHerbert Xu .ops = &algif_hash_ops, 304fe869cdbSHerbert Xu .name = "hash", 305fe869cdbSHerbert Xu .owner = THIS_MODULE 306fe869cdbSHerbert Xu }; 307fe869cdbSHerbert Xu 308fe869cdbSHerbert Xu static int __init algif_hash_init(void) 309fe869cdbSHerbert Xu { 310fe869cdbSHerbert Xu return af_alg_register_type(&algif_type_hash); 311fe869cdbSHerbert Xu } 312fe869cdbSHerbert Xu 313fe869cdbSHerbert Xu static void __exit algif_hash_exit(void) 314fe869cdbSHerbert Xu { 315fe869cdbSHerbert Xu int err = af_alg_unregister_type(&algif_type_hash); 316fe869cdbSHerbert Xu BUG_ON(err); 317fe869cdbSHerbert Xu } 318fe869cdbSHerbert Xu 319fe869cdbSHerbert Xu module_init(algif_hash_init); 320fe869cdbSHerbert Xu module_exit(algif_hash_exit); 321fe869cdbSHerbert Xu MODULE_LICENSE("GPL"); 322