1 | n/a | /* |
---|
2 | n/a | The Keccak sponge function, designed by Guido Bertoni, Joan Daemen, |
---|
3 | n/a | Michaël Peeters and Gilles Van Assche. For more information, feedback or |
---|
4 | n/a | questions, please refer to our website: http://keccak.noekeon.org/ |
---|
5 | n/a | |
---|
6 | n/a | Implementation by the designers, |
---|
7 | n/a | hereby denoted as "the implementer". |
---|
8 | n/a | |
---|
9 | n/a | To the extent possible under law, the implementer has waived all copyright |
---|
10 | n/a | and related or neighboring rights to the source code in this file. |
---|
11 | n/a | http://creativecommons.org/publicdomain/zero/1.0/ |
---|
12 | n/a | */ |
---|
13 | n/a | |
---|
14 | n/a | #include <string.h> |
---|
15 | n/a | /* #include "brg_endian.h" */ |
---|
16 | n/a | #include "KeccakF-1600-opt64-settings.h" |
---|
17 | n/a | #include "KeccakF-1600-interface.h" |
---|
18 | n/a | |
---|
19 | n/a | typedef unsigned char UINT8; |
---|
20 | n/a | /* typedef unsigned long long int UINT64; */ |
---|
21 | n/a | |
---|
22 | n/a | #if defined(__GNUC__) |
---|
23 | n/a | #define ALIGN __attribute__ ((aligned(32))) |
---|
24 | n/a | #elif defined(_MSC_VER) |
---|
25 | n/a | #define ALIGN __declspec(align(32)) |
---|
26 | n/a | #else |
---|
27 | n/a | #define ALIGN |
---|
28 | n/a | #endif |
---|
29 | n/a | |
---|
30 | n/a | #if defined(UseSSE) |
---|
31 | n/a | #include <x86intrin.h> |
---|
32 | n/a | typedef __m128i V64; |
---|
33 | n/a | typedef __m128i V128; |
---|
34 | n/a | typedef union { |
---|
35 | n/a | V128 v128; |
---|
36 | n/a | UINT64 v64[2]; |
---|
37 | n/a | } V6464; |
---|
38 | n/a | |
---|
39 | n/a | #define ANDnu64(a, b) _mm_andnot_si128(a, b) |
---|
40 | n/a | #define LOAD64(a) _mm_loadl_epi64((const V64 *)&(a)) |
---|
41 | n/a | #define CONST64(a) _mm_loadl_epi64((const V64 *)&(a)) |
---|
42 | n/a | #define ROL64(a, o) _mm_or_si128(_mm_slli_epi64(a, o), _mm_srli_epi64(a, 64-(o))) |
---|
43 | n/a | #define STORE64(a, b) _mm_storel_epi64((V64 *)&(a), b) |
---|
44 | n/a | #define XOR64(a, b) _mm_xor_si128(a, b) |
---|
45 | n/a | #define XOReq64(a, b) a = _mm_xor_si128(a, b) |
---|
46 | n/a | #define SHUFFLEBYTES128(a, b) _mm_shuffle_epi8(a, b) |
---|
47 | n/a | |
---|
48 | n/a | #define ANDnu128(a, b) _mm_andnot_si128(a, b) |
---|
49 | n/a | #define LOAD6464(a, b) _mm_set_epi64((__m64)(a), (__m64)(b)) |
---|
50 | n/a | #define CONST128(a) _mm_load_si128((const V128 *)&(a)) |
---|
51 | n/a | #define LOAD128(a) _mm_load_si128((const V128 *)&(a)) |
---|
52 | n/a | #define LOAD128u(a) _mm_loadu_si128((const V128 *)&(a)) |
---|
53 | n/a | #define ROL64in128(a, o) _mm_or_si128(_mm_slli_epi64(a, o), _mm_srli_epi64(a, 64-(o))) |
---|
54 | n/a | #define STORE128(a, b) _mm_store_si128((V128 *)&(a), b) |
---|
55 | n/a | #define XOR128(a, b) _mm_xor_si128(a, b) |
---|
56 | n/a | #define XOReq128(a, b) a = _mm_xor_si128(a, b) |
---|
57 | n/a | #define GET64LOLO(a, b) _mm_unpacklo_epi64(a, b) |
---|
58 | n/a | #define GET64HIHI(a, b) _mm_unpackhi_epi64(a, b) |
---|
59 | n/a | #define COPY64HI2LO(a) _mm_shuffle_epi32(a, 0xEE) |
---|
60 | n/a | #define COPY64LO2HI(a) _mm_shuffle_epi32(a, 0x44) |
---|
61 | n/a | #define ZERO128() _mm_setzero_si128() |
---|
62 | n/a | |
---|
63 | n/a | #ifdef UseOnlySIMD64 |
---|
64 | n/a | #include "KeccakF-1600-simd64.macros" |
---|
65 | n/a | #else |
---|
66 | n/a | ALIGN const UINT64 rho8_56[2] = {0x0605040302010007, 0x080F0E0D0C0B0A09}; |
---|
67 | n/a | #include "KeccakF-1600-simd128.macros" |
---|
68 | n/a | #endif |
---|
69 | n/a | |
---|
70 | n/a | #ifdef UseBebigokimisa |
---|
71 | n/a | #error "UseBebigokimisa cannot be used in combination with UseSSE" |
---|
72 | n/a | #endif |
---|
73 | n/a | #elif defined(UseXOP) |
---|
74 | n/a | #include <x86intrin.h> |
---|
75 | n/a | typedef __m128i V64; |
---|
76 | n/a | typedef __m128i V128; |
---|
77 | n/a | |
---|
78 | n/a | #define LOAD64(a) _mm_loadl_epi64((const V64 *)&(a)) |
---|
79 | n/a | #define CONST64(a) _mm_loadl_epi64((const V64 *)&(a)) |
---|
80 | n/a | #define STORE64(a, b) _mm_storel_epi64((V64 *)&(a), b) |
---|
81 | n/a | #define XOR64(a, b) _mm_xor_si128(a, b) |
---|
82 | n/a | #define XOReq64(a, b) a = _mm_xor_si128(a, b) |
---|
83 | n/a | |
---|
84 | n/a | #define ANDnu128(a, b) _mm_andnot_si128(a, b) |
---|
85 | n/a | #define LOAD6464(a, b) _mm_set_epi64((__m64)(a), (__m64)(b)) |
---|
86 | n/a | #define CONST128(a) _mm_load_si128((const V128 *)&(a)) |
---|
87 | n/a | #define LOAD128(a) _mm_load_si128((const V128 *)&(a)) |
---|
88 | n/a | #define LOAD128u(a) _mm_loadu_si128((const V128 *)&(a)) |
---|
89 | n/a | #define STORE128(a, b) _mm_store_si128((V128 *)&(a), b) |
---|
90 | n/a | #define XOR128(a, b) _mm_xor_si128(a, b) |
---|
91 | n/a | #define XOReq128(a, b) a = _mm_xor_si128(a, b) |
---|
92 | n/a | #define ZERO128() _mm_setzero_si128() |
---|
93 | n/a | |
---|
94 | n/a | #define SWAP64(a) _mm_shuffle_epi32(a, 0x4E) |
---|
95 | n/a | #define GET64LOLO(a, b) _mm_unpacklo_epi64(a, b) |
---|
96 | n/a | #define GET64HIHI(a, b) _mm_unpackhi_epi64(a, b) |
---|
97 | n/a | #define GET64LOHI(a, b) ((__m128i)_mm_blend_pd((__m128d)a, (__m128d)b, 2)) |
---|
98 | n/a | #define GET64HILO(a, b) SWAP64(GET64LOHI(b, a)) |
---|
99 | n/a | #define COPY64HI2LO(a) _mm_shuffle_epi32(a, 0xEE) |
---|
100 | n/a | #define COPY64LO2HI(a) _mm_shuffle_epi32(a, 0x44) |
---|
101 | n/a | |
---|
102 | n/a | #define ROL6464same(a, o) _mm_roti_epi64(a, o) |
---|
103 | n/a | #define ROL6464(a, r1, r2) _mm_rot_epi64(a, CONST128( rot_##r1##_##r2 )) |
---|
104 | n/a | ALIGN const UINT64 rot_0_20[2] = { 0, 20}; |
---|
105 | n/a | ALIGN const UINT64 rot_44_3[2] = {44, 3}; |
---|
106 | n/a | ALIGN const UINT64 rot_43_45[2] = {43, 45}; |
---|
107 | n/a | ALIGN const UINT64 rot_21_61[2] = {21, 61}; |
---|
108 | n/a | ALIGN const UINT64 rot_14_28[2] = {14, 28}; |
---|
109 | n/a | ALIGN const UINT64 rot_1_36[2] = { 1, 36}; |
---|
110 | n/a | ALIGN const UINT64 rot_6_10[2] = { 6, 10}; |
---|
111 | n/a | ALIGN const UINT64 rot_25_15[2] = {25, 15}; |
---|
112 | n/a | ALIGN const UINT64 rot_8_56[2] = { 8, 56}; |
---|
113 | n/a | ALIGN const UINT64 rot_18_27[2] = {18, 27}; |
---|
114 | n/a | ALIGN const UINT64 rot_62_55[2] = {62, 55}; |
---|
115 | n/a | ALIGN const UINT64 rot_39_41[2] = {39, 41}; |
---|
116 | n/a | |
---|
117 | n/a | #if defined(UseSimulatedXOP) |
---|
118 | n/a | /* For debugging purposes, when XOP is not available */ |
---|
119 | n/a | #undef ROL6464 |
---|
120 | n/a | #undef ROL6464same |
---|
121 | n/a | #define ROL6464same(a, o) _mm_or_si128(_mm_slli_epi64(a, o), _mm_srli_epi64(a, 64-(o))) |
---|
122 | n/a | V128 ROL6464(V128 a, int r0, int r1) |
---|
123 | n/a | { |
---|
124 | n/a | V128 a0 = ROL64(a, r0); |
---|
125 | n/a | V128 a1 = COPY64HI2LO(ROL64(a, r1)); |
---|
126 | n/a | return GET64LOLO(a0, a1); |
---|
127 | n/a | } |
---|
128 | n/a | #endif |
---|
129 | n/a | |
---|
130 | n/a | #include "KeccakF-1600-xop.macros" |
---|
131 | n/a | |
---|
132 | n/a | #ifdef UseBebigokimisa |
---|
133 | n/a | #error "UseBebigokimisa cannot be used in combination with UseXOP" |
---|
134 | n/a | #endif |
---|
135 | n/a | #elif defined(UseMMX) |
---|
136 | n/a | #include <mmintrin.h> |
---|
137 | n/a | typedef __m64 V64; |
---|
138 | n/a | #define ANDnu64(a, b) _mm_andnot_si64(a, b) |
---|
139 | n/a | |
---|
140 | n/a | #if (defined(_MSC_VER) || defined (__INTEL_COMPILER)) |
---|
141 | n/a | #define LOAD64(a) *(V64*)&(a) |
---|
142 | n/a | #define CONST64(a) *(V64*)&(a) |
---|
143 | n/a | #define STORE64(a, b) *(V64*)&(a) = b |
---|
144 | n/a | #else |
---|
145 | n/a | #define LOAD64(a) (V64)a |
---|
146 | n/a | #define CONST64(a) (V64)a |
---|
147 | n/a | #define STORE64(a, b) a = (UINT64)b |
---|
148 | n/a | #endif |
---|
149 | n/a | #define ROL64(a, o) _mm_or_si64(_mm_slli_si64(a, o), _mm_srli_si64(a, 64-(o))) |
---|
150 | n/a | #define XOR64(a, b) _mm_xor_si64(a, b) |
---|
151 | n/a | #define XOReq64(a, b) a = _mm_xor_si64(a, b) |
---|
152 | n/a | |
---|
153 | n/a | #include "KeccakF-1600-simd64.macros" |
---|
154 | n/a | |
---|
155 | n/a | #ifdef UseBebigokimisa |
---|
156 | n/a | #error "UseBebigokimisa cannot be used in combination with UseMMX" |
---|
157 | n/a | #endif |
---|
158 | n/a | #else |
---|
159 | n/a | #if defined(_MSC_VER) |
---|
160 | n/a | #define ROL64(a, offset) _rotl64(a, offset) |
---|
161 | n/a | #elif defined(UseSHLD) |
---|
162 | n/a | #define ROL64(x,N) ({ \ |
---|
163 | n/a | register UINT64 __out; \ |
---|
164 | n/a | register UINT64 __in = x; \ |
---|
165 | n/a | __asm__ ("shld %2,%0,%0" : "=r"(__out) : "0"(__in), "i"(N)); \ |
---|
166 | n/a | __out; \ |
---|
167 | n/a | }) |
---|
168 | n/a | #else |
---|
169 | n/a | #define ROL64(a, offset) ((((UINT64)a) << offset) ^ (((UINT64)a) >> (64-offset))) |
---|
170 | n/a | #endif |
---|
171 | n/a | |
---|
172 | n/a | #include "KeccakF-1600-64.macros" |
---|
173 | n/a | #endif |
---|
174 | n/a | |
---|
175 | n/a | #include "KeccakF-1600-unrolling.macros" |
---|
176 | n/a | |
---|
177 | n/a | static void KeccakPermutationOnWords(UINT64 *state) |
---|
178 | n/a | { |
---|
179 | n/a | declareABCDE |
---|
180 | n/a | #if (Unrolling != 24) |
---|
181 | n/a | unsigned int i; |
---|
182 | n/a | #endif |
---|
183 | n/a | |
---|
184 | n/a | copyFromState(A, state) |
---|
185 | n/a | rounds |
---|
186 | n/a | #if defined(UseMMX) |
---|
187 | n/a | _mm_empty(); |
---|
188 | n/a | #endif |
---|
189 | n/a | } |
---|
190 | n/a | |
---|
191 | n/a | static void KeccakPermutationOnWordsAfterXoring(UINT64 *state, const UINT64 *input, unsigned int laneCount) |
---|
192 | n/a | { |
---|
193 | n/a | declareABCDE |
---|
194 | n/a | #if (Unrolling != 24) |
---|
195 | n/a | unsigned int i; |
---|
196 | n/a | #endif |
---|
197 | n/a | unsigned int j; |
---|
198 | n/a | |
---|
199 | n/a | for(j=0; j<laneCount; j++) |
---|
200 | n/a | state[j] ^= input[j]; |
---|
201 | n/a | copyFromState(A, state) |
---|
202 | n/a | rounds |
---|
203 | n/a | #if defined(UseMMX) |
---|
204 | n/a | _mm_empty(); |
---|
205 | n/a | #endif |
---|
206 | n/a | } |
---|
207 | n/a | |
---|
208 | n/a | #ifdef ProvideFast576 |
---|
209 | n/a | static void KeccakPermutationOnWordsAfterXoring576bits(UINT64 *state, const UINT64 *input) |
---|
210 | n/a | { |
---|
211 | n/a | declareABCDE |
---|
212 | n/a | #if (Unrolling != 24) |
---|
213 | n/a | unsigned int i; |
---|
214 | n/a | #endif |
---|
215 | n/a | |
---|
216 | n/a | copyFromStateAndXor576bits(A, state, input) |
---|
217 | n/a | rounds |
---|
218 | n/a | #if defined(UseMMX) |
---|
219 | n/a | _mm_empty(); |
---|
220 | n/a | #endif |
---|
221 | n/a | } |
---|
222 | n/a | #endif |
---|
223 | n/a | |
---|
224 | n/a | #ifdef ProvideFast832 |
---|
225 | n/a | static void KeccakPermutationOnWordsAfterXoring832bits(UINT64 *state, const UINT64 *input) |
---|
226 | n/a | { |
---|
227 | n/a | declareABCDE |
---|
228 | n/a | #if (Unrolling != 24) |
---|
229 | n/a | unsigned int i; |
---|
230 | n/a | #endif |
---|
231 | n/a | |
---|
232 | n/a | copyFromStateAndXor832bits(A, state, input) |
---|
233 | n/a | rounds |
---|
234 | n/a | #if defined(UseMMX) |
---|
235 | n/a | _mm_empty(); |
---|
236 | n/a | #endif |
---|
237 | n/a | } |
---|
238 | n/a | #endif |
---|
239 | n/a | |
---|
240 | n/a | #ifdef ProvideFast1024 |
---|
241 | n/a | static void KeccakPermutationOnWordsAfterXoring1024bits(UINT64 *state, const UINT64 *input) |
---|
242 | n/a | { |
---|
243 | n/a | declareABCDE |
---|
244 | n/a | #if (Unrolling != 24) |
---|
245 | n/a | unsigned int i; |
---|
246 | n/a | #endif |
---|
247 | n/a | |
---|
248 | n/a | copyFromStateAndXor1024bits(A, state, input) |
---|
249 | n/a | rounds |
---|
250 | n/a | #if defined(UseMMX) |
---|
251 | n/a | _mm_empty(); |
---|
252 | n/a | #endif |
---|
253 | n/a | } |
---|
254 | n/a | #endif |
---|
255 | n/a | |
---|
256 | n/a | #ifdef ProvideFast1088 |
---|
257 | n/a | static void KeccakPermutationOnWordsAfterXoring1088bits(UINT64 *state, const UINT64 *input) |
---|
258 | n/a | { |
---|
259 | n/a | declareABCDE |
---|
260 | n/a | #if (Unrolling != 24) |
---|
261 | n/a | unsigned int i; |
---|
262 | n/a | #endif |
---|
263 | n/a | |
---|
264 | n/a | copyFromStateAndXor1088bits(A, state, input) |
---|
265 | n/a | rounds |
---|
266 | n/a | #if defined(UseMMX) |
---|
267 | n/a | _mm_empty(); |
---|
268 | n/a | #endif |
---|
269 | n/a | } |
---|
270 | n/a | #endif |
---|
271 | n/a | |
---|
272 | n/a | #ifdef ProvideFast1152 |
---|
273 | n/a | static void KeccakPermutationOnWordsAfterXoring1152bits(UINT64 *state, const UINT64 *input) |
---|
274 | n/a | { |
---|
275 | n/a | declareABCDE |
---|
276 | n/a | #if (Unrolling != 24) |
---|
277 | n/a | unsigned int i; |
---|
278 | n/a | #endif |
---|
279 | n/a | |
---|
280 | n/a | copyFromStateAndXor1152bits(A, state, input) |
---|
281 | n/a | rounds |
---|
282 | n/a | #if defined(UseMMX) |
---|
283 | n/a | _mm_empty(); |
---|
284 | n/a | #endif |
---|
285 | n/a | } |
---|
286 | n/a | #endif |
---|
287 | n/a | |
---|
288 | n/a | #ifdef ProvideFast1344 |
---|
289 | n/a | static void KeccakPermutationOnWordsAfterXoring1344bits(UINT64 *state, const UINT64 *input) |
---|
290 | n/a | { |
---|
291 | n/a | declareABCDE |
---|
292 | n/a | #if (Unrolling != 24) |
---|
293 | n/a | unsigned int i; |
---|
294 | n/a | #endif |
---|
295 | n/a | |
---|
296 | n/a | copyFromStateAndXor1344bits(A, state, input) |
---|
297 | n/a | rounds |
---|
298 | n/a | #if defined(UseMMX) |
---|
299 | n/a | _mm_empty(); |
---|
300 | n/a | #endif |
---|
301 | n/a | } |
---|
302 | n/a | #endif |
---|
303 | n/a | |
---|
304 | n/a | static void KeccakInitialize() |
---|
305 | n/a | { |
---|
306 | n/a | } |
---|
307 | n/a | |
---|
308 | n/a | static void KeccakInitializeState(unsigned char *state) |
---|
309 | n/a | { |
---|
310 | n/a | memset(state, 0, 200); |
---|
311 | n/a | #ifdef UseBebigokimisa |
---|
312 | n/a | ((UINT64*)state)[ 1] = ~(UINT64)0; |
---|
313 | n/a | ((UINT64*)state)[ 2] = ~(UINT64)0; |
---|
314 | n/a | ((UINT64*)state)[ 8] = ~(UINT64)0; |
---|
315 | n/a | ((UINT64*)state)[12] = ~(UINT64)0; |
---|
316 | n/a | ((UINT64*)state)[17] = ~(UINT64)0; |
---|
317 | n/a | ((UINT64*)state)[20] = ~(UINT64)0; |
---|
318 | n/a | #endif |
---|
319 | n/a | } |
---|
320 | n/a | |
---|
321 | n/a | static void KeccakPermutation(unsigned char *state) |
---|
322 | n/a | { |
---|
323 | n/a | /* We assume the state is always stored as words */ |
---|
324 | n/a | KeccakPermutationOnWords((UINT64*)state); |
---|
325 | n/a | } |
---|
326 | n/a | |
---|
327 | n/a | #if (PLATFORM_BYTE_ORDER == IS_BIG_ENDIAN) |
---|
328 | n/a | static void fromBytesToWord(UINT64 *word, const UINT8 *bytes) |
---|
329 | n/a | { |
---|
330 | n/a | unsigned int i; |
---|
331 | n/a | |
---|
332 | n/a | *word = 0; |
---|
333 | n/a | for(i=0; i<(64/8); i++) |
---|
334 | n/a | *word |= (UINT64)(bytes[i]) << (8*i); |
---|
335 | n/a | } |
---|
336 | n/a | #endif |
---|
337 | n/a | |
---|
338 | n/a | |
---|
339 | n/a | #ifdef ProvideFast576 |
---|
340 | n/a | static void KeccakAbsorb576bits(unsigned char *state, const unsigned char *data) |
---|
341 | n/a | { |
---|
342 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
343 | n/a | KeccakPermutationOnWordsAfterXoring576bits((UINT64*)state, (const UINT64*)data); |
---|
344 | n/a | #else |
---|
345 | n/a | UINT64 dataAsWords[9]; |
---|
346 | n/a | unsigned int i; |
---|
347 | n/a | |
---|
348 | n/a | for(i=0; i<9; i++) |
---|
349 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
350 | n/a | KeccakPermutationOnWordsAfterXoring576bits((UINT64*)state, dataAsWords); |
---|
351 | n/a | #endif |
---|
352 | n/a | } |
---|
353 | n/a | #endif |
---|
354 | n/a | |
---|
355 | n/a | #ifdef ProvideFast832 |
---|
356 | n/a | static void KeccakAbsorb832bits(unsigned char *state, const unsigned char *data) |
---|
357 | n/a | { |
---|
358 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
359 | n/a | KeccakPermutationOnWordsAfterXoring832bits((UINT64*)state, (const UINT64*)data); |
---|
360 | n/a | #else |
---|
361 | n/a | UINT64 dataAsWords[13]; |
---|
362 | n/a | unsigned int i; |
---|
363 | n/a | |
---|
364 | n/a | for(i=0; i<13; i++) |
---|
365 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
366 | n/a | KeccakPermutationOnWordsAfterXoring832bits((UINT64*)state, dataAsWords); |
---|
367 | n/a | #endif |
---|
368 | n/a | } |
---|
369 | n/a | #endif |
---|
370 | n/a | |
---|
371 | n/a | #ifdef ProvideFast1024 |
---|
372 | n/a | static void KeccakAbsorb1024bits(unsigned char *state, const unsigned char *data) |
---|
373 | n/a | { |
---|
374 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
375 | n/a | KeccakPermutationOnWordsAfterXoring1024bits((UINT64*)state, (const UINT64*)data); |
---|
376 | n/a | #else |
---|
377 | n/a | UINT64 dataAsWords[16]; |
---|
378 | n/a | unsigned int i; |
---|
379 | n/a | |
---|
380 | n/a | for(i=0; i<16; i++) |
---|
381 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
382 | n/a | KeccakPermutationOnWordsAfterXoring1024bits((UINT64*)state, dataAsWords); |
---|
383 | n/a | #endif |
---|
384 | n/a | } |
---|
385 | n/a | #endif |
---|
386 | n/a | |
---|
387 | n/a | #ifdef ProvideFast1088 |
---|
388 | n/a | static void KeccakAbsorb1088bits(unsigned char *state, const unsigned char *data) |
---|
389 | n/a | { |
---|
390 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
391 | n/a | KeccakPermutationOnWordsAfterXoring1088bits((UINT64*)state, (const UINT64*)data); |
---|
392 | n/a | #else |
---|
393 | n/a | UINT64 dataAsWords[17]; |
---|
394 | n/a | unsigned int i; |
---|
395 | n/a | |
---|
396 | n/a | for(i=0; i<17; i++) |
---|
397 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
398 | n/a | KeccakPermutationOnWordsAfterXoring1088bits((UINT64*)state, dataAsWords); |
---|
399 | n/a | #endif |
---|
400 | n/a | } |
---|
401 | n/a | #endif |
---|
402 | n/a | |
---|
403 | n/a | #ifdef ProvideFast1152 |
---|
404 | n/a | static void KeccakAbsorb1152bits(unsigned char *state, const unsigned char *data) |
---|
405 | n/a | { |
---|
406 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
407 | n/a | KeccakPermutationOnWordsAfterXoring1152bits((UINT64*)state, (const UINT64*)data); |
---|
408 | n/a | #else |
---|
409 | n/a | UINT64 dataAsWords[18]; |
---|
410 | n/a | unsigned int i; |
---|
411 | n/a | |
---|
412 | n/a | for(i=0; i<18; i++) |
---|
413 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
414 | n/a | KeccakPermutationOnWordsAfterXoring1152bits((UINT64*)state, dataAsWords); |
---|
415 | n/a | #endif |
---|
416 | n/a | } |
---|
417 | n/a | #endif |
---|
418 | n/a | |
---|
419 | n/a | #ifdef ProvideFast1344 |
---|
420 | n/a | static void KeccakAbsorb1344bits(unsigned char *state, const unsigned char *data) |
---|
421 | n/a | { |
---|
422 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
423 | n/a | KeccakPermutationOnWordsAfterXoring1344bits((UINT64*)state, (const UINT64*)data); |
---|
424 | n/a | #else |
---|
425 | n/a | UINT64 dataAsWords[21]; |
---|
426 | n/a | unsigned int i; |
---|
427 | n/a | |
---|
428 | n/a | for(i=0; i<21; i++) |
---|
429 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
430 | n/a | KeccakPermutationOnWordsAfterXoring1344bits((UINT64*)state, dataAsWords); |
---|
431 | n/a | #endif |
---|
432 | n/a | } |
---|
433 | n/a | #endif |
---|
434 | n/a | |
---|
435 | n/a | static void KeccakAbsorb(unsigned char *state, const unsigned char *data, unsigned int laneCount) |
---|
436 | n/a | { |
---|
437 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
438 | n/a | KeccakPermutationOnWordsAfterXoring((UINT64*)state, (const UINT64*)data, laneCount); |
---|
439 | n/a | #else |
---|
440 | n/a | UINT64 dataAsWords[25]; |
---|
441 | n/a | unsigned int i; |
---|
442 | n/a | |
---|
443 | n/a | for(i=0; i<laneCount; i++) |
---|
444 | n/a | fromBytesToWord(dataAsWords+i, data+(i*8)); |
---|
445 | n/a | KeccakPermutationOnWordsAfterXoring((UINT64*)state, dataAsWords, laneCount); |
---|
446 | n/a | #endif |
---|
447 | n/a | } |
---|
448 | n/a | |
---|
449 | n/a | #if (PLATFORM_BYTE_ORDER == IS_BIG_ENDIAN) |
---|
450 | n/a | static void fromWordToBytes(UINT8 *bytes, const UINT64 word) |
---|
451 | n/a | { |
---|
452 | n/a | unsigned int i; |
---|
453 | n/a | |
---|
454 | n/a | for(i=0; i<(64/8); i++) |
---|
455 | n/a | bytes[i] = (word >> (8*i)) & 0xFF; |
---|
456 | n/a | } |
---|
457 | n/a | #endif |
---|
458 | n/a | |
---|
459 | n/a | |
---|
460 | n/a | #ifdef ProvideFast1024 |
---|
461 | n/a | static void KeccakExtract1024bits(const unsigned char *state, unsigned char *data) |
---|
462 | n/a | { |
---|
463 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
464 | n/a | memcpy(data, state, 128); |
---|
465 | n/a | #else |
---|
466 | n/a | unsigned int i; |
---|
467 | n/a | |
---|
468 | n/a | for(i=0; i<16; i++) |
---|
469 | n/a | fromWordToBytes(data+(i*8), ((const UINT64*)state)[i]); |
---|
470 | n/a | #endif |
---|
471 | n/a | #ifdef UseBebigokimisa |
---|
472 | n/a | ((UINT64*)data)[ 1] = ~((UINT64*)data)[ 1]; |
---|
473 | n/a | ((UINT64*)data)[ 2] = ~((UINT64*)data)[ 2]; |
---|
474 | n/a | ((UINT64*)data)[ 8] = ~((UINT64*)data)[ 8]; |
---|
475 | n/a | ((UINT64*)data)[12] = ~((UINT64*)data)[12]; |
---|
476 | n/a | #endif |
---|
477 | n/a | } |
---|
478 | n/a | #endif |
---|
479 | n/a | |
---|
480 | n/a | static void KeccakExtract(const unsigned char *state, unsigned char *data, unsigned int laneCount) |
---|
481 | n/a | { |
---|
482 | n/a | #if (PLATFORM_BYTE_ORDER == IS_LITTLE_ENDIAN) |
---|
483 | n/a | memcpy(data, state, laneCount*8); |
---|
484 | n/a | #else |
---|
485 | n/a | unsigned int i; |
---|
486 | n/a | |
---|
487 | n/a | for(i=0; i<laneCount; i++) |
---|
488 | n/a | fromWordToBytes(data+(i*8), ((const UINT64*)state)[i]); |
---|
489 | n/a | #endif |
---|
490 | n/a | #ifdef UseBebigokimisa |
---|
491 | n/a | if (laneCount > 1) { |
---|
492 | n/a | ((UINT64*)data)[ 1] = ~((UINT64*)data)[ 1]; |
---|
493 | n/a | if (laneCount > 2) { |
---|
494 | n/a | ((UINT64*)data)[ 2] = ~((UINT64*)data)[ 2]; |
---|
495 | n/a | if (laneCount > 8) { |
---|
496 | n/a | ((UINT64*)data)[ 8] = ~((UINT64*)data)[ 8]; |
---|
497 | n/a | if (laneCount > 12) { |
---|
498 | n/a | ((UINT64*)data)[12] = ~((UINT64*)data)[12]; |
---|
499 | n/a | if (laneCount > 17) { |
---|
500 | n/a | ((UINT64*)data)[17] = ~((UINT64*)data)[17]; |
---|
501 | n/a | if (laneCount > 20) { |
---|
502 | n/a | ((UINT64*)data)[20] = ~((UINT64*)data)[20]; |
---|
503 | n/a | } |
---|
504 | n/a | } |
---|
505 | n/a | } |
---|
506 | n/a | } |
---|
507 | n/a | } |
---|
508 | n/a | } |
---|
509 | n/a | #endif |
---|
510 | n/a | } |
---|