libwebsockets
Lightweight C library for HTML5 websockets
lws-genaes.h
1 /*
2  * libwebsockets - small server side websockets and web server implementation
3  *
4  * Copyright (C) 2010 - 2020 Andy Green <andy@warmcat.com>
5  *
6  * Permission is hereby granted, free of charge, to any person obtaining a copy
7  * of this software and associated documentation files (the "Software"), to
8  * deal in the Software without restriction, including without limitation the
9  * rights to use, copy, modify, merge, publish, distribute, sublicense, and/or
10  * sell copies of the Software, and to permit persons to whom the Software is
11  * furnished to do so, subject to the following conditions:
12  *
13  * The above copyright notice and this permission notice shall be included in
14  * all copies or substantial portions of the Software.
15  *
16  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
17  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
18  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
19  * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
20  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
21  * FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS
22  * IN THE SOFTWARE.
23  */
24 
35 
36 #if defined(LWS_WITH_MBEDTLS)
37 #include <mbedtls/aes.h>
38 #include <mbedtls/gcm.h>
39 #endif
40 
41 enum enum_aes_modes {
42  LWS_GAESM_CBC,
43  LWS_GAESM_CFB128,
44  LWS_GAESM_CFB8,
45  LWS_GAESM_CTR,
46  LWS_GAESM_ECB,
47  LWS_GAESM_OFB,
48  LWS_GAESM_XTS, /* care... requires double-length key */
49  LWS_GAESM_GCM,
50  LWS_GAESM_KW,
51 };
52 
53 enum enum_aes_operation {
54  LWS_GAESO_ENC,
55  LWS_GAESO_DEC
56 };
57 
58 enum enum_aes_padding {
59  LWS_GAESP_NO_PADDING,
60  LWS_GAESP_WITH_PADDING
61 };
62 
63 /* include/libwebsockets/lws-jwk.h must be included before this */
64 
65 #define LWS_AES_BLOCKSIZE 128
66 #define LWS_AES_CBC_BLOCKLEN 16
67 
69 #if defined(LWS_WITH_MBEDTLS)
70  union {
71  mbedtls_aes_context ctx;
72 #if defined(MBEDTLS_CIPHER_MODE_XTS)
73  mbedtls_aes_xts_context ctx_xts;
74 #endif
75  mbedtls_gcm_context ctx_gcm;
76  } u;
77 #else
78  EVP_CIPHER_CTX *ctx;
79  const EVP_CIPHER *cipher;
80  ENGINE *engine;
81  char init;
82 #endif
83  unsigned char tag[16];
84  struct lws_gencrypto_keyelem *k;
85  enum enum_aes_operation op;
86  enum enum_aes_modes mode;
87  enum enum_aes_padding padding;
88  int taglen;
89  char underway;
90 };
91 
108 LWS_VISIBLE LWS_EXTERN int
109 lws_genaes_create(struct lws_genaes_ctx *ctx, enum enum_aes_operation op,
110  enum enum_aes_modes mode, struct lws_gencrypto_keyelem *el,
111  enum enum_aes_padding padding, void *engine);
112 
125 LWS_VISIBLE LWS_EXTERN int
126 lws_genaes_destroy(struct lws_genaes_ctx *ctx, unsigned char *tag, size_t tlen);
127 
163 LWS_VISIBLE LWS_EXTERN int
164 lws_genaes_crypt(struct lws_genaes_ctx *ctx, const uint8_t *in, size_t len,
165  uint8_t *out,
166  uint8_t *iv_or_nonce_ctr_or_data_unit_16,
167  uint8_t *stream_block_16,
168  size_t *nc_or_iv_off, int taglen);
169 
LWS_VISIBLE LWS_EXTERN int lws_genaes_crypt(struct lws_genaes_ctx *ctx, const uint8_t *in, size_t len, uint8_t *out, uint8_t *iv_or_nonce_ctr_or_data_unit_16, uint8_t *stream_block_16, size_t *nc_or_iv_off, int taglen)
LWS_VISIBLE LWS_EXTERN int lws_genaes_destroy(struct lws_genaes_ctx *ctx, unsigned char *tag, size_t tlen)
LWS_VISIBLE LWS_EXTERN int lws_genaes_create(struct lws_genaes_ctx *ctx, enum enum_aes_operation op, enum enum_aes_modes mode, struct lws_gencrypto_keyelem *el, enum enum_aes_padding padding, void *engine)
Definition: lws-genaes.h:68
Definition: lws-gencrypto.h:99