1 #ifndef _SHA256_H
2 #define _SHA256_H
3 
4 #include <linux/compiler_attributes.h>
5 #include <linux/errno.h>
6 #include <linux/kconfig.h>
7 #include <linux/types.h>
8 
9 #if CONFIG_IS_ENABLED(MBEDTLS_LIB_CRYPTO)
10 #include "mbedtls_options.h"
11 #include <mbedtls/sha256.h>
12 #endif
13 
14 #define SHA224_SUM_LEN	28
15 #define SHA256_SUM_LEN	32
16 #define SHA256_DER_LEN	19
17 
18 extern const uint8_t sha256_der_prefix[];
19 
20 /* Reset watchdog each time we process this many bytes */
21 #define CHUNKSZ_SHA256	(64 * 1024)
22 
23 #if CONFIG_IS_ENABLED(MBEDTLS_LIB_CRYPTO)
24 typedef mbedtls_sha256_context sha256_context;
25 #else
26 typedef struct {
27 	uint32_t total[2];
28 	uint32_t state[8];
29 	uint8_t buffer[64];
30 } sha256_context;
31 #endif
32 
33 void sha256_starts(sha256_context * ctx);
34 void sha256_update(sha256_context *ctx, const uint8_t *input, uint32_t length);
35 void sha256_finish(sha256_context * ctx, uint8_t digest[SHA256_SUM_LEN]);
36 
37 void sha256_csum_wd(const unsigned char *input, unsigned int ilen,
38 		unsigned char *output, unsigned int chunk_sz);
39 
40 int sha256_hmac(const unsigned char *key, int keylen,
41 		const unsigned char *input, unsigned int ilen,
42 		unsigned char *output);
43 
44 #if CONFIG_IS_ENABLED(HKDF_MBEDTLS)
45 int sha256_hkdf(const unsigned char *salt, int saltlen,
46 		const unsigned char *ikm, int ikmlen,
47 		const unsigned char *info, int infolen,
48 		unsigned char *output, int outputlen);
49 #else
sha256_hkdf(const unsigned char __always_unused * salt,int __always_unused saltlen,const unsigned char __always_unused * ikm,int __always_unused ikmlen,const unsigned char __always_unused * info,int __always_unused infolen,unsigned char __always_unused * output,int __always_unused outputlen)50 static inline int sha256_hkdf(const unsigned char __always_unused *salt,
51 			      int __always_unused saltlen,
52 			      const unsigned char __always_unused *ikm,
53 			      int __always_unused ikmlen,
54 			      const unsigned char __always_unused *info,
55 			      int __always_unused infolen,
56 			      unsigned char __always_unused *output,
57 			      int __always_unused outputlen) {
58 	return -EOPNOTSUPP;
59 }
60 #endif
61 
62 #endif /* _SHA256_H */
63