1fe869cdbSHerbert Xu /* 2fe869cdbSHerbert Xu * algif_hash: User-space interface for hash algorithms 3fe869cdbSHerbert Xu * 4fe869cdbSHerbert Xu * This file provides the user-space API for hash algorithms. 5fe869cdbSHerbert Xu * 6fe869cdbSHerbert Xu * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au> 7fe869cdbSHerbert Xu * 8fe869cdbSHerbert Xu * This program is free software; you can redistribute it and/or modify it 9fe869cdbSHerbert Xu * under the terms of the GNU General Public License as published by the Free 10fe869cdbSHerbert Xu * Software Foundation; either version 2 of the License, or (at your option) 11fe869cdbSHerbert Xu * any later version. 12fe869cdbSHerbert Xu * 13fe869cdbSHerbert Xu */ 14fe869cdbSHerbert Xu 15fe869cdbSHerbert Xu #include <crypto/hash.h> 16fe869cdbSHerbert Xu #include <crypto/if_alg.h> 17fe869cdbSHerbert Xu #include <linux/init.h> 18fe869cdbSHerbert Xu #include <linux/kernel.h> 19fe869cdbSHerbert Xu #include <linux/mm.h> 20fe869cdbSHerbert Xu #include <linux/module.h> 21fe869cdbSHerbert Xu #include <linux/net.h> 22fe869cdbSHerbert Xu #include <net/sock.h> 23fe869cdbSHerbert Xu 24fe869cdbSHerbert Xu struct hash_ctx { 25fe869cdbSHerbert Xu struct af_alg_sgl sgl; 26fe869cdbSHerbert Xu 27fe869cdbSHerbert Xu u8 *result; 28fe869cdbSHerbert Xu 29fe869cdbSHerbert Xu struct af_alg_completion completion; 30fe869cdbSHerbert Xu 31fe869cdbSHerbert Xu unsigned int len; 32fe869cdbSHerbert Xu bool more; 33fe869cdbSHerbert Xu 34fe869cdbSHerbert Xu struct ahash_request req; 35fe869cdbSHerbert Xu }; 36fe869cdbSHerbert Xu 37fe869cdbSHerbert Xu static int hash_sendmsg(struct kiocb *unused, struct socket *sock, 38fe869cdbSHerbert Xu struct msghdr *msg, size_t ignored) 39fe869cdbSHerbert Xu { 40fe869cdbSHerbert Xu int limit = ALG_MAX_PAGES * PAGE_SIZE; 41fe869cdbSHerbert Xu struct sock *sk = sock->sk; 42fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 43fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 44fe869cdbSHerbert Xu unsigned long iovlen; 45fe869cdbSHerbert Xu struct iovec *iov; 46fe869cdbSHerbert Xu long copied = 0; 47fe869cdbSHerbert Xu int err; 48fe869cdbSHerbert Xu 49fe869cdbSHerbert Xu if (limit > sk->sk_sndbuf) 50fe869cdbSHerbert Xu limit = sk->sk_sndbuf; 51fe869cdbSHerbert Xu 52fe869cdbSHerbert Xu lock_sock(sk); 53fe869cdbSHerbert Xu if (!ctx->more) { 54fe869cdbSHerbert Xu err = crypto_ahash_init(&ctx->req); 55fe869cdbSHerbert Xu if (err) 56fe869cdbSHerbert Xu goto unlock; 57fe869cdbSHerbert Xu } 58fe869cdbSHerbert Xu 59fe869cdbSHerbert Xu ctx->more = 0; 60fe869cdbSHerbert Xu 61fe869cdbSHerbert Xu for (iov = msg->msg_iov, iovlen = msg->msg_iovlen; iovlen > 0; 62fe869cdbSHerbert Xu iovlen--, iov++) { 63fe869cdbSHerbert Xu unsigned long seglen = iov->iov_len; 64fe869cdbSHerbert Xu char __user *from = iov->iov_base; 65fe869cdbSHerbert Xu 66fe869cdbSHerbert Xu while (seglen) { 67fe869cdbSHerbert Xu int len = min_t(unsigned long, seglen, limit); 68fe869cdbSHerbert Xu int newlen; 69fe869cdbSHerbert Xu 70fe869cdbSHerbert Xu newlen = af_alg_make_sg(&ctx->sgl, from, len, 0); 71269230e7SHerbert Xu if (newlen < 0) { 72269230e7SHerbert Xu err = copied ? 0 : newlen; 73fe869cdbSHerbert Xu goto unlock; 74269230e7SHerbert Xu } 75fe869cdbSHerbert Xu 76fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, ctx->sgl.sg, NULL, 77fe869cdbSHerbert Xu newlen); 78fe869cdbSHerbert Xu 79fe869cdbSHerbert Xu err = af_alg_wait_for_completion( 80fe869cdbSHerbert Xu crypto_ahash_update(&ctx->req), 81fe869cdbSHerbert Xu &ctx->completion); 82fe869cdbSHerbert Xu 83fe869cdbSHerbert Xu af_alg_free_sg(&ctx->sgl); 84fe869cdbSHerbert Xu 85fe869cdbSHerbert Xu if (err) 86fe869cdbSHerbert Xu goto unlock; 87fe869cdbSHerbert Xu 88fe869cdbSHerbert Xu seglen -= newlen; 89fe869cdbSHerbert Xu from += newlen; 90fe869cdbSHerbert Xu copied += newlen; 91fe869cdbSHerbert Xu } 92fe869cdbSHerbert Xu } 93fe869cdbSHerbert Xu 94fe869cdbSHerbert Xu err = 0; 95fe869cdbSHerbert Xu 96fe869cdbSHerbert Xu ctx->more = msg->msg_flags & MSG_MORE; 97fe869cdbSHerbert Xu if (!ctx->more) { 98fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, NULL, ctx->result, 0); 99fe869cdbSHerbert Xu err = af_alg_wait_for_completion(crypto_ahash_final(&ctx->req), 100fe869cdbSHerbert Xu &ctx->completion); 101fe869cdbSHerbert Xu } 102fe869cdbSHerbert Xu 103fe869cdbSHerbert Xu unlock: 104fe869cdbSHerbert Xu release_sock(sk); 105fe869cdbSHerbert Xu 106fe869cdbSHerbert Xu return err ?: copied; 107fe869cdbSHerbert Xu } 108fe869cdbSHerbert Xu 109fe869cdbSHerbert Xu static ssize_t hash_sendpage(struct socket *sock, struct page *page, 110fe869cdbSHerbert Xu int offset, size_t size, int flags) 111fe869cdbSHerbert Xu { 112fe869cdbSHerbert Xu struct sock *sk = sock->sk; 113fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 114fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 115fe869cdbSHerbert Xu int err; 116fe869cdbSHerbert Xu 117*d3f7d56aSShawn Landden if (flags & MSG_SENDPAGE_NOTLAST) 118*d3f7d56aSShawn Landden flags |= MSG_MORE; 119*d3f7d56aSShawn Landden 120fe869cdbSHerbert Xu lock_sock(sk); 121fe869cdbSHerbert Xu sg_init_table(ctx->sgl.sg, 1); 122fe869cdbSHerbert Xu sg_set_page(ctx->sgl.sg, page, size, offset); 123fe869cdbSHerbert Xu 124fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, ctx->sgl.sg, ctx->result, size); 125fe869cdbSHerbert Xu 126fe869cdbSHerbert Xu if (!(flags & MSG_MORE)) { 127fe869cdbSHerbert Xu if (ctx->more) 128fe869cdbSHerbert Xu err = crypto_ahash_finup(&ctx->req); 129fe869cdbSHerbert Xu else 130fe869cdbSHerbert Xu err = crypto_ahash_digest(&ctx->req); 131fe869cdbSHerbert Xu } else { 132fe869cdbSHerbert Xu if (!ctx->more) { 133fe869cdbSHerbert Xu err = crypto_ahash_init(&ctx->req); 134fe869cdbSHerbert Xu if (err) 135fe869cdbSHerbert Xu goto unlock; 136fe869cdbSHerbert Xu } 137fe869cdbSHerbert Xu 138fe869cdbSHerbert Xu err = crypto_ahash_update(&ctx->req); 139fe869cdbSHerbert Xu } 140fe869cdbSHerbert Xu 141fe869cdbSHerbert Xu err = af_alg_wait_for_completion(err, &ctx->completion); 142fe869cdbSHerbert Xu if (err) 143fe869cdbSHerbert Xu goto unlock; 144fe869cdbSHerbert Xu 145fe869cdbSHerbert Xu ctx->more = flags & MSG_MORE; 146fe869cdbSHerbert Xu 147fe869cdbSHerbert Xu unlock: 148fe869cdbSHerbert Xu release_sock(sk); 149fe869cdbSHerbert Xu 150fe869cdbSHerbert Xu return err ?: size; 151fe869cdbSHerbert Xu } 152fe869cdbSHerbert Xu 153fe869cdbSHerbert Xu static int hash_recvmsg(struct kiocb *unused, struct socket *sock, 154fe869cdbSHerbert Xu struct msghdr *msg, size_t len, int flags) 155fe869cdbSHerbert Xu { 156fe869cdbSHerbert Xu struct sock *sk = sock->sk; 157fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 158fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 159fe869cdbSHerbert Xu unsigned ds = crypto_ahash_digestsize(crypto_ahash_reqtfm(&ctx->req)); 160fe869cdbSHerbert Xu int err; 161fe869cdbSHerbert Xu 162fe869cdbSHerbert Xu if (len > ds) 163fe869cdbSHerbert Xu len = ds; 164fe869cdbSHerbert Xu else if (len < ds) 165fe869cdbSHerbert Xu msg->msg_flags |= MSG_TRUNC; 166fe869cdbSHerbert Xu 167fe869cdbSHerbert Xu lock_sock(sk); 168fe869cdbSHerbert Xu if (ctx->more) { 169fe869cdbSHerbert Xu ctx->more = 0; 170fe869cdbSHerbert Xu ahash_request_set_crypt(&ctx->req, NULL, ctx->result, 0); 171fe869cdbSHerbert Xu err = af_alg_wait_for_completion(crypto_ahash_final(&ctx->req), 172fe869cdbSHerbert Xu &ctx->completion); 173fe869cdbSHerbert Xu if (err) 174fe869cdbSHerbert Xu goto unlock; 175fe869cdbSHerbert Xu } 176fe869cdbSHerbert Xu 177fe869cdbSHerbert Xu err = memcpy_toiovec(msg->msg_iov, ctx->result, len); 178fe869cdbSHerbert Xu 179fe869cdbSHerbert Xu unlock: 180fe869cdbSHerbert Xu release_sock(sk); 181fe869cdbSHerbert Xu 182fe869cdbSHerbert Xu return err ?: len; 183fe869cdbSHerbert Xu } 184fe869cdbSHerbert Xu 185fe869cdbSHerbert Xu static int hash_accept(struct socket *sock, struct socket *newsock, int flags) 186fe869cdbSHerbert Xu { 187fe869cdbSHerbert Xu struct sock *sk = sock->sk; 188fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 189fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 190fe869cdbSHerbert Xu struct ahash_request *req = &ctx->req; 191fe869cdbSHerbert Xu char state[crypto_ahash_statesize(crypto_ahash_reqtfm(req))]; 192fe869cdbSHerbert Xu struct sock *sk2; 193fe869cdbSHerbert Xu struct alg_sock *ask2; 194fe869cdbSHerbert Xu struct hash_ctx *ctx2; 195fe869cdbSHerbert Xu int err; 196fe869cdbSHerbert Xu 197fe869cdbSHerbert Xu err = crypto_ahash_export(req, state); 198fe869cdbSHerbert Xu if (err) 199fe869cdbSHerbert Xu return err; 200fe869cdbSHerbert Xu 201fe869cdbSHerbert Xu err = af_alg_accept(ask->parent, newsock); 202fe869cdbSHerbert Xu if (err) 203fe869cdbSHerbert Xu return err; 204fe869cdbSHerbert Xu 205fe869cdbSHerbert Xu sk2 = newsock->sk; 206fe869cdbSHerbert Xu ask2 = alg_sk(sk2); 207fe869cdbSHerbert Xu ctx2 = ask2->private; 208fe869cdbSHerbert Xu ctx2->more = 1; 209fe869cdbSHerbert Xu 210fe869cdbSHerbert Xu err = crypto_ahash_import(&ctx2->req, state); 211fe869cdbSHerbert Xu if (err) { 212fe869cdbSHerbert Xu sock_orphan(sk2); 213fe869cdbSHerbert Xu sock_put(sk2); 214fe869cdbSHerbert Xu } 215fe869cdbSHerbert Xu 216fe869cdbSHerbert Xu return err; 217fe869cdbSHerbert Xu } 218fe869cdbSHerbert Xu 219fe869cdbSHerbert Xu static struct proto_ops algif_hash_ops = { 220fe869cdbSHerbert Xu .family = PF_ALG, 221fe869cdbSHerbert Xu 222fe869cdbSHerbert Xu .connect = sock_no_connect, 223fe869cdbSHerbert Xu .socketpair = sock_no_socketpair, 224fe869cdbSHerbert Xu .getname = sock_no_getname, 225fe869cdbSHerbert Xu .ioctl = sock_no_ioctl, 226fe869cdbSHerbert Xu .listen = sock_no_listen, 227fe869cdbSHerbert Xu .shutdown = sock_no_shutdown, 228fe869cdbSHerbert Xu .getsockopt = sock_no_getsockopt, 229fe869cdbSHerbert Xu .mmap = sock_no_mmap, 230fe869cdbSHerbert Xu .bind = sock_no_bind, 231fe869cdbSHerbert Xu .setsockopt = sock_no_setsockopt, 232fe869cdbSHerbert Xu .poll = sock_no_poll, 233fe869cdbSHerbert Xu 234fe869cdbSHerbert Xu .release = af_alg_release, 235fe869cdbSHerbert Xu .sendmsg = hash_sendmsg, 236fe869cdbSHerbert Xu .sendpage = hash_sendpage, 237fe869cdbSHerbert Xu .recvmsg = hash_recvmsg, 238fe869cdbSHerbert Xu .accept = hash_accept, 239fe869cdbSHerbert Xu }; 240fe869cdbSHerbert Xu 241fe869cdbSHerbert Xu static void *hash_bind(const char *name, u32 type, u32 mask) 242fe869cdbSHerbert Xu { 243fe869cdbSHerbert Xu return crypto_alloc_ahash(name, type, mask); 244fe869cdbSHerbert Xu } 245fe869cdbSHerbert Xu 246fe869cdbSHerbert Xu static void hash_release(void *private) 247fe869cdbSHerbert Xu { 248fe869cdbSHerbert Xu crypto_free_ahash(private); 249fe869cdbSHerbert Xu } 250fe869cdbSHerbert Xu 251fe869cdbSHerbert Xu static int hash_setkey(void *private, const u8 *key, unsigned int keylen) 252fe869cdbSHerbert Xu { 253fe869cdbSHerbert Xu return crypto_ahash_setkey(private, key, keylen); 254fe869cdbSHerbert Xu } 255fe869cdbSHerbert Xu 256fe869cdbSHerbert Xu static void hash_sock_destruct(struct sock *sk) 257fe869cdbSHerbert Xu { 258fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 259fe869cdbSHerbert Xu struct hash_ctx *ctx = ask->private; 260fe869cdbSHerbert Xu 261fe869cdbSHerbert Xu sock_kfree_s(sk, ctx->result, 262fe869cdbSHerbert Xu crypto_ahash_digestsize(crypto_ahash_reqtfm(&ctx->req))); 263fe869cdbSHerbert Xu sock_kfree_s(sk, ctx, ctx->len); 264fe869cdbSHerbert Xu af_alg_release_parent(sk); 265fe869cdbSHerbert Xu } 266fe869cdbSHerbert Xu 267fe869cdbSHerbert Xu static int hash_accept_parent(void *private, struct sock *sk) 268fe869cdbSHerbert Xu { 269fe869cdbSHerbert Xu struct hash_ctx *ctx; 270fe869cdbSHerbert Xu struct alg_sock *ask = alg_sk(sk); 271fe869cdbSHerbert Xu unsigned len = sizeof(*ctx) + crypto_ahash_reqsize(private); 272fe869cdbSHerbert Xu unsigned ds = crypto_ahash_digestsize(private); 273fe869cdbSHerbert Xu 274fe869cdbSHerbert Xu ctx = sock_kmalloc(sk, len, GFP_KERNEL); 275fe869cdbSHerbert Xu if (!ctx) 276fe869cdbSHerbert Xu return -ENOMEM; 277fe869cdbSHerbert Xu 278fe869cdbSHerbert Xu ctx->result = sock_kmalloc(sk, ds, GFP_KERNEL); 279fe869cdbSHerbert Xu if (!ctx->result) { 280fe869cdbSHerbert Xu sock_kfree_s(sk, ctx, len); 281fe869cdbSHerbert Xu return -ENOMEM; 282fe869cdbSHerbert Xu } 283fe869cdbSHerbert Xu 284fe869cdbSHerbert Xu memset(ctx->result, 0, ds); 285fe869cdbSHerbert Xu 286fe869cdbSHerbert Xu ctx->len = len; 287fe869cdbSHerbert Xu ctx->more = 0; 288fe869cdbSHerbert Xu af_alg_init_completion(&ctx->completion); 289fe869cdbSHerbert Xu 290fe869cdbSHerbert Xu ask->private = ctx; 291fe869cdbSHerbert Xu 292fe869cdbSHerbert Xu ahash_request_set_tfm(&ctx->req, private); 293fe869cdbSHerbert Xu ahash_request_set_callback(&ctx->req, CRYPTO_TFM_REQ_MAY_BACKLOG, 294fe869cdbSHerbert Xu af_alg_complete, &ctx->completion); 295fe869cdbSHerbert Xu 296fe869cdbSHerbert Xu sk->sk_destruct = hash_sock_destruct; 297fe869cdbSHerbert Xu 298fe869cdbSHerbert Xu return 0; 299fe869cdbSHerbert Xu } 300fe869cdbSHerbert Xu 301fe869cdbSHerbert Xu static const struct af_alg_type algif_type_hash = { 302fe869cdbSHerbert Xu .bind = hash_bind, 303fe869cdbSHerbert Xu .release = hash_release, 304fe869cdbSHerbert Xu .setkey = hash_setkey, 305fe869cdbSHerbert Xu .accept = hash_accept_parent, 306fe869cdbSHerbert Xu .ops = &algif_hash_ops, 307fe869cdbSHerbert Xu .name = "hash", 308fe869cdbSHerbert Xu .owner = THIS_MODULE 309fe869cdbSHerbert Xu }; 310fe869cdbSHerbert Xu 311fe869cdbSHerbert Xu static int __init algif_hash_init(void) 312fe869cdbSHerbert Xu { 313fe869cdbSHerbert Xu return af_alg_register_type(&algif_type_hash); 314fe869cdbSHerbert Xu } 315fe869cdbSHerbert Xu 316fe869cdbSHerbert Xu static void __exit algif_hash_exit(void) 317fe869cdbSHerbert Xu { 318fe869cdbSHerbert Xu int err = af_alg_unregister_type(&algif_type_hash); 319fe869cdbSHerbert Xu BUG_ON(err); 320fe869cdbSHerbert Xu } 321fe869cdbSHerbert Xu 322fe869cdbSHerbert Xu module_init(algif_hash_init); 323fe869cdbSHerbert Xu module_exit(algif_hash_exit); 324fe869cdbSHerbert Xu MODULE_LICENSE("GPL"); 325