threefish512_enc.c 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. /* threefish512_enc.c */
  2. /*
  3. This file is part of the ARM-Crypto-Lib.
  4. Copyright (C) 2006-2010 Daniel Otte (daniel.otte@rub.de)
  5. This program is free software: you can redistribute it and/or modify
  6. it under the terms of the GNU General Public License as published by
  7. the Free Software Foundation, either version 3 of the License, or
  8. (at your option) any later version.
  9. This program is distributed in the hope that it will be useful,
  10. but WITHOUT ANY WARRANTY; without even the implied warranty of
  11. MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  12. GNU General Public License for more details.
  13. You should have received a copy of the GNU General Public License
  14. along with this program. If not, see <http://www.gnu.org/licenses/>.
  15. */
  16. /*
  17. * \author Daniel Otte
  18. * \email daniel.otte@rub.de
  19. * \date 2009-03-12
  20. * \license GPLv3 or later
  21. *
  22. *
  23. *
  24. */
  25. #include <stdint.h>
  26. #include <string.h>
  27. #include <crypto/threefish.h>
  28. #define X(a) (((uint64_t*)data)[(a)])
  29. static
  30. void permute_8(void* data){
  31. uint64_t t;
  32. t = X(0);
  33. X(0) = X(2);
  34. X(2) = X(4);
  35. X(4) = X(6);
  36. X(6) = t;
  37. t = X(3);
  38. X(3) = X(7);
  39. X(7) = t;
  40. }
  41. /*
  42. static
  43. void permute_inv8(void* data){
  44. uint64_t t;
  45. t = X(6);
  46. X(6) = X(4);
  47. X(4) = X(2);
  48. X(2) = X(0);
  49. X(0) = t;
  50. t = X(7);
  51. X(7) = X(3);
  52. X(3) = t;
  53. }
  54. */
  55. //#define THREEFISH_KEY_CONST 0x5555555555555555LL /* 2**64/3 */
  56. #define THREEFISH_KEY_CONST 0x1BD11BDAA9FC1A22LL
  57. #define K(s) (((uint64_t*)key)[(s)])
  58. #define T(s) (((uint64_t*)tweak)[(s)])
  59. void threefish512_init(const void* key, const void* tweak, threefish512_ctx_t* ctx){
  60. memcpy(ctx->k, key, 8*8);
  61. if(tweak){
  62. memcpy(ctx->t, tweak, 2*8);
  63. ctx->t[2] = T(0) ^ T(1);
  64. }else{
  65. memset(ctx->t, 0, 3*8);
  66. }
  67. uint8_t i;
  68. ctx->k[8] = THREEFISH_KEY_CONST;
  69. for(i=0; i<8; ++i){
  70. ctx->k[8] ^= K(i);
  71. }
  72. }
  73. static
  74. void add_key_8(void* data, const threefish512_ctx_t* ctx, uint8_t s){
  75. uint8_t i;
  76. for(i=0; i<5; ++i){
  77. X(i) += ctx->k[(s+i)%9];
  78. }
  79. X(5) += ctx->k[(s+5)%9] + ctx->t[s%3];
  80. X(6) += ctx->k[(s+6)%9] + ctx->t[(s+1)%3];
  81. X(7) += ctx->k[(s+7)%9] + s;
  82. }
  83. void threefish512_enc(void* data, const threefish512_ctx_t* ctx){
  84. uint8_t i=0,s=0;
  85. /* old constans, changed at round 2 of the SHA-3 contest
  86. uint8_t r0[8] = {38, 48, 34, 26, 33, 39, 29, 33};
  87. uint8_t r1[8] = {30, 20, 14, 12, 49, 27, 26, 51};
  88. uint8_t r2[8] = {50, 43, 15, 58, 8, 41, 11, 39};
  89. uint8_t r3[8] = {53, 31, 27, 7, 42, 14, 9, 35};
  90. */
  91. uint8_t r0[8] = {46, 33, 17, 44, 39, 13, 25, 8};
  92. uint8_t r1[8] = {36, 27, 49, 9, 30, 50, 29, 35};
  93. uint8_t r2[8] = {19, 14, 36, 54, 34, 10, 39, 56};
  94. uint8_t r3[8] = {37, 42, 39, 56, 24, 17, 43, 22};
  95. do{
  96. if(i%4==0){
  97. add_key_8(data, ctx, s);
  98. ++s;
  99. }
  100. threefish_mix((uint8_t*)data + 0, r0[i%8]);
  101. threefish_mix((uint8_t*)data + 16, r1[i%8]);
  102. threefish_mix((uint8_t*)data + 32, r2[i%8]);
  103. threefish_mix((uint8_t*)data + 48, r3[i%8]);
  104. permute_8(data);
  105. ++i;
  106. }while(i!=72);
  107. add_key_8(data, ctx, s);
  108. }