Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 1 | /* |
| 2 | * VIA PadLock support functions |
| 3 | * |
Bence Szépkúti | 1e14827 | 2020-08-07 13:07:28 +0200 | [diff] [blame] | 4 | * Copyright The Mbed TLS Contributors |
Manuel Pégourié-Gonnard | 37ff140 | 2015-09-04 14:21:07 +0200 | [diff] [blame] | 5 | * SPDX-License-Identifier: Apache-2.0 |
| 6 | * |
| 7 | * Licensed under the Apache License, Version 2.0 (the "License"); you may |
| 8 | * not use this file except in compliance with the License. |
| 9 | * You may obtain a copy of the License at |
| 10 | * |
| 11 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 12 | * |
| 13 | * Unless required by applicable law or agreed to in writing, software |
| 14 | * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT |
| 15 | * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 16 | * See the License for the specific language governing permissions and |
| 17 | * limitations under the License. |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 18 | */ |
| 19 | /* |
| 20 | * This implementation is based on the VIA PadLock Programming Guide: |
| 21 | * |
| 22 | * http://www.via.com.tw/en/downloads/whitepapers/initiatives/padlock/ |
| 23 | * programming_guide.pdf |
| 24 | */ |
| 25 | |
Gilles Peskine | db09ef6 | 2020-06-03 01:43:33 +0200 | [diff] [blame] | 26 | #include "common.h" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 27 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 28 | #if defined(MBEDTLS_PADLOCK_C) |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 29 | |
Manuel Pégourié-Gonnard | 7f80997 | 2015-03-09 17:05:11 +0000 | [diff] [blame] | 30 | #include "mbedtls/padlock.h" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 31 | |
Manuel Pégourié-Gonnard | 45ec8da | 2015-02-10 13:50:47 +0000 | [diff] [blame] | 32 | #include <string.h> |
| 33 | |
Manuel Pégourié-Gonnard | ba19432 | 2015-05-29 09:47:57 +0200 | [diff] [blame] | 34 | #ifndef asm |
| 35 | #define asm __asm |
| 36 | #endif |
| 37 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 38 | #if defined(MBEDTLS_HAVE_X86) |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 39 | |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 40 | /* |
| 41 | * PadLock detection routine |
| 42 | */ |
Manuel Pégourié-Gonnard | c730ed3 | 2015-06-02 10:38:50 +0100 | [diff] [blame] | 43 | int mbedtls_padlock_has_support( int feature ) |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 44 | { |
| 45 | static int flags = -1; |
Paul Bakker | 53e1513 | 2013-12-30 20:43:40 +0100 | [diff] [blame] | 46 | int ebx = 0, edx = 0; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 47 | |
| 48 | if( flags == -1 ) |
| 49 | { |
Manuel Pégourié-Gonnard | 87a8ffe | 2014-06-23 12:40:01 +0200 | [diff] [blame] | 50 | asm( "movl %%ebx, %0 \n\t" |
| 51 | "movl $0xC0000000, %%eax \n\t" |
| 52 | "cpuid \n\t" |
| 53 | "cmpl $0xC0000001, %%eax \n\t" |
| 54 | "movl $0, %%edx \n\t" |
okhowang(王沛文) | 0c4bbda | 2020-06-24 16:02:10 +0800 | [diff] [blame] | 55 | "jb 1f \n\t" |
Manuel Pégourié-Gonnard | 87a8ffe | 2014-06-23 12:40:01 +0200 | [diff] [blame] | 56 | "movl $0xC0000001, %%eax \n\t" |
| 57 | "cpuid \n\t" |
okhowang(王沛文) | 0c4bbda | 2020-06-24 16:02:10 +0800 | [diff] [blame] | 58 | "1: \n\t" |
Manuel Pégourié-Gonnard | 87a8ffe | 2014-06-23 12:40:01 +0200 | [diff] [blame] | 59 | "movl %%edx, %1 \n\t" |
| 60 | "movl %2, %%ebx \n\t" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 61 | : "=m" (ebx), "=m" (edx) |
| 62 | : "m" (ebx) |
| 63 | : "eax", "ecx", "edx" ); |
| 64 | |
| 65 | flags = edx; |
| 66 | } |
| 67 | |
| 68 | return( flags & feature ); |
| 69 | } |
| 70 | |
| 71 | /* |
| 72 | * PadLock AES-ECB block en(de)cryption |
| 73 | */ |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 74 | int mbedtls_padlock_xcryptecb( mbedtls_aes_context *ctx, |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 75 | int mode, |
Paul Bakker | ff60ee6 | 2010-03-16 21:09:09 +0000 | [diff] [blame] | 76 | const unsigned char input[16], |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 77 | unsigned char output[16] ) |
| 78 | { |
Paul Bakker | 53e1513 | 2013-12-30 20:43:40 +0100 | [diff] [blame] | 79 | int ebx = 0; |
Paul Bakker | 5c2364c | 2012-10-01 14:41:15 +0000 | [diff] [blame] | 80 | uint32_t *rk; |
| 81 | uint32_t *blk; |
| 82 | uint32_t *ctrl; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 83 | unsigned char buf[256]; |
| 84 | |
| 85 | rk = ctx->rk; |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 86 | blk = MBEDTLS_PADLOCK_ALIGN16( buf ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 87 | memcpy( blk, input, 16 ); |
| 88 | |
| 89 | ctrl = blk + 4; |
| 90 | *ctrl = 0x80 | ctx->nr | ( ( ctx->nr + ( mode^1 ) - 10 ) << 9 ); |
| 91 | |
Manuel Pégourié-Gonnard | 87a8ffe | 2014-06-23 12:40:01 +0200 | [diff] [blame] | 92 | asm( "pushfl \n\t" |
| 93 | "popfl \n\t" |
| 94 | "movl %%ebx, %0 \n\t" |
| 95 | "movl $1, %%ecx \n\t" |
| 96 | "movl %2, %%edx \n\t" |
| 97 | "movl %3, %%ebx \n\t" |
| 98 | "movl %4, %%esi \n\t" |
| 99 | "movl %4, %%edi \n\t" |
| 100 | ".byte 0xf3,0x0f,0xa7,0xc8 \n\t" |
| 101 | "movl %1, %%ebx \n\t" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 102 | : "=m" (ebx) |
| 103 | : "m" (ebx), "m" (ctrl), "m" (rk), "m" (blk) |
Manuel Pégourié-Gonnard | cf20120 | 2015-04-02 10:46:55 +0100 | [diff] [blame] | 104 | : "memory", "ecx", "edx", "esi", "edi" ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 105 | |
| 106 | memcpy( output, blk, 16 ); |
| 107 | |
| 108 | return( 0 ); |
| 109 | } |
| 110 | |
| 111 | /* |
| 112 | * PadLock AES-CBC buffer en(de)cryption |
| 113 | */ |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 114 | int mbedtls_padlock_xcryptcbc( mbedtls_aes_context *ctx, |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 115 | int mode, |
Paul Bakker | 23986e5 | 2011-04-24 08:57:21 +0000 | [diff] [blame] | 116 | size_t length, |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 117 | unsigned char iv[16], |
Paul Bakker | ff60ee6 | 2010-03-16 21:09:09 +0000 | [diff] [blame] | 118 | const unsigned char *input, |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 119 | unsigned char *output ) |
| 120 | { |
Paul Bakker | 53e1513 | 2013-12-30 20:43:40 +0100 | [diff] [blame] | 121 | int ebx = 0; |
Paul Bakker | 23986e5 | 2011-04-24 08:57:21 +0000 | [diff] [blame] | 122 | size_t count; |
Paul Bakker | 5c2364c | 2012-10-01 14:41:15 +0000 | [diff] [blame] | 123 | uint32_t *rk; |
| 124 | uint32_t *iw; |
| 125 | uint32_t *ctrl; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 126 | unsigned char buf[256]; |
| 127 | |
| 128 | if( ( (long) input & 15 ) != 0 || |
| 129 | ( (long) output & 15 ) != 0 ) |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 130 | return( MBEDTLS_ERR_PADLOCK_DATA_MISALIGNED ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 131 | |
| 132 | rk = ctx->rk; |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 133 | iw = MBEDTLS_PADLOCK_ALIGN16( buf ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 134 | memcpy( iw, iv, 16 ); |
| 135 | |
| 136 | ctrl = iw + 4; |
Paul Bakker | 66d5d07 | 2014-06-17 16:39:18 +0200 | [diff] [blame] | 137 | *ctrl = 0x80 | ctx->nr | ( ( ctx->nr + ( mode ^ 1 ) - 10 ) << 9 ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 138 | |
Paul Bakker | 66d5d07 | 2014-06-17 16:39:18 +0200 | [diff] [blame] | 139 | count = ( length + 15 ) >> 4; |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 140 | |
Manuel Pégourié-Gonnard | 87a8ffe | 2014-06-23 12:40:01 +0200 | [diff] [blame] | 141 | asm( "pushfl \n\t" |
| 142 | "popfl \n\t" |
| 143 | "movl %%ebx, %0 \n\t" |
| 144 | "movl %2, %%ecx \n\t" |
| 145 | "movl %3, %%edx \n\t" |
| 146 | "movl %4, %%ebx \n\t" |
| 147 | "movl %5, %%esi \n\t" |
| 148 | "movl %6, %%edi \n\t" |
| 149 | "movl %7, %%eax \n\t" |
| 150 | ".byte 0xf3,0x0f,0xa7,0xd0 \n\t" |
| 151 | "movl %1, %%ebx \n\t" |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 152 | : "=m" (ebx) |
| 153 | : "m" (ebx), "m" (count), "m" (ctrl), |
| 154 | "m" (rk), "m" (input), "m" (output), "m" (iw) |
Manuel Pégourié-Gonnard | cf20120 | 2015-04-02 10:46:55 +0100 | [diff] [blame] | 155 | : "memory", "eax", "ecx", "edx", "esi", "edi" ); |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 156 | |
| 157 | memcpy( iv, iw, 16 ); |
| 158 | |
| 159 | return( 0 ); |
| 160 | } |
| 161 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 162 | #endif /* MBEDTLS_HAVE_X86 */ |
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 163 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 164 | #endif /* MBEDTLS_PADLOCK_C */ |