Security Scol plugin
|
CCM block cipher base implementation. More...
#include <ccm.h>
Public Member Functions | |
std::string | AlgorithmName () const |
Provides the name of this algorithm. | |
std::string | AlgorithmProvider () const |
Retrieve the provider of this algorithm. | |
size_t | MinKeyLength () const |
Returns smallest valid key length. | |
size_t | MaxKeyLength () const |
Returns largest valid key length. | |
size_t | DefaultKeyLength () const |
Returns default key length. | |
size_t | GetValidKeyLength (size_t keylength) const |
Returns a valid key length for the algorithm. | |
bool | IsValidKeyLength (size_t keylength) const |
Returns whether keylength is a valid key length. | |
unsigned int | OptimalDataAlignment () const |
Provides input and output data alignment for optimal performance. | |
IV_Requirement | IVRequirement () const |
Minimal requirement for secure IVs. | |
unsigned int | IVSize () const |
Returns length of the IV accepted by this object. | |
unsigned int | MinIVLength () const |
Provides the minimum size of an IV. | |
unsigned int | MaxIVLength () const |
Provides the maximum size of an IV. | |
unsigned int | DigestSize () const |
lword | MaxHeaderLength () const |
Provides the maximum length of AAD that can be input. | |
lword | MaxMessageLength () const |
Provides the maximum length of encrypted data. | |
bool | NeedsPrespecifiedDataLengths () const |
Determines if data lengths must be specified prior to inputting data. | |
void | UncheckedSpecifyDataLengths (lword headerLength, lword messageLength, lword footerLength) |
Public Member Functions inherited from AuthenticatedSymmetricCipherBase | |
bool | IsRandomAccess () const |
Determines whether the cipher supports random access. | |
bool | IsSelfInverting () const |
Determines whether the cipher is self-inverting. | |
void | SetKey (const byte *userKey, size_t keylength, const NameValuePairs ¶ms) |
Sets or reset the key of this object. | |
void | Restart () |
Restart the hash. | |
void | Resynchronize (const byte *iv, int length=-1) |
Resynchronize with an IV. | |
void | Update (const byte *input, size_t length) |
Updates a hash with additional input. | |
void | ProcessData (byte *outString, const byte *inString, size_t length) |
Encrypt or decrypt an array of bytes. | |
void | TruncatedFinal (byte *mac, size_t macSize) |
Computes the hash of the current message. | |
Public Member Functions inherited from AuthenticatedSymmetricCipher | |
virtual lword | MaxFooterLength () const |
Provides the maximum length of AAD. | |
void | SpecifyDataLengths (lword headerLength, lword messageLength, lword footerLength=0) |
Prescribes the data lengths. | |
virtual void | EncryptAndAuthenticate (byte *ciphertext, byte *mac, size_t macSize, const byte *iv, int ivLength, const byte *header, size_t headerLength, const byte *message, size_t messageLength) |
Encrypts and calculates a MAC in one call. | |
virtual bool | DecryptAndVerify (byte *message, const byte *mac, size_t macSize, const byte *iv, int ivLength, const byte *header, size_t headerLength, const byte *ciphertext, size_t ciphertextLength) |
Decrypts and verifies a MAC in one call. | |
Public Member Functions inherited from SimpleKeyingInterface | |
void | SetKeyWithRounds (const byte *key, size_t length, int rounds) |
Sets or reset the key of this object. | |
void | SetKeyWithIV (const byte *key, size_t length, const byte *iv, size_t ivLength) |
Sets or reset the key of this object. | |
void | SetKeyWithIV (const byte *key, size_t length, const byte *iv) |
Sets or reset the key of this object. | |
bool | IsResynchronizable () const |
Determines if the object can be resynchronized. | |
bool | CanUseRandomIVs () const |
Determines if the object can use random IVs. | |
bool | CanUsePredictableIVs () const |
Determines if the object can use random but possibly predictable IVs. | |
bool | CanUseStructuredIVs () const |
Determines if the object can use structured IVs. | |
unsigned int | DefaultIVLength () const |
Provides the default size of an IV. | |
virtual void | GetNextIV (RandomNumberGenerator &rng, byte *iv) |
Retrieves a secure IV for the next message. | |
Public Member Functions inherited from HashTransformation | |
HashTransformation & | Ref () |
Provides a reference to this object. | |
virtual byte * | CreateUpdateSpace (size_t &size) |
Request space which can be written into by the caller. | |
virtual void | Final (byte *digest) |
Computes the hash of the current message. | |
unsigned int | TagSize () const |
virtual unsigned int | BlockSize () const |
Provides the block size of the compression function. | |
virtual unsigned int | OptimalBlockSize () const |
Provides the input block size most efficient for this hash. | |
virtual void | CalculateDigest (byte *digest, const byte *input, size_t length) |
Updates the hash with additional input and computes the hash of the current message. | |
virtual bool | Verify (const byte *digest) |
Verifies the hash of the current message. | |
virtual bool | VerifyDigest (const byte *digest, const byte *input, size_t length) |
Updates the hash with additional input and verifies the hash of the current message. | |
virtual void | CalculateTruncatedDigest (byte *digest, size_t digestSize, const byte *input, size_t length) |
Updates the hash with additional input and computes the hash of the current message. | |
virtual bool | TruncatedVerify (const byte *digest, size_t digestLength) |
Verifies the hash of the current message. | |
virtual bool | VerifyTruncatedDigest (const byte *digest, size_t digestLength, const byte *input, size_t length) |
Updates the hash with additional input and verifies the hash of the current message. | |
Public Member Functions inherited from Algorithm | |
Algorithm (bool checkSelfTestStatus=true) | |
Interface for all crypto algorithms. | |
Public Member Functions inherited from Clonable | |
virtual Clonable * | Clone () const |
Copies this object. | |
Public Member Functions inherited from StreamTransformation | |
StreamTransformation & | Ref () |
Provides a reference to this object. | |
virtual unsigned int | MandatoryBlockSize () const |
Provides the mandatory block size of the cipher. | |
virtual unsigned int | OptimalBlockSize () const |
Provides the input block size most efficient for this cipher. | |
virtual unsigned int | GetOptimalBlockSizeUsed () const |
Provides the number of bytes used in the current block when processing at optimal block size. | |
virtual size_t | ProcessLastBlock (byte *outString, size_t outLength, const byte *inString, size_t inLength) |
Encrypt or decrypt the last block of data. | |
virtual unsigned int | MinLastBlockSize () const |
Provides the size of the last block. | |
virtual bool | IsLastBlockSpecial () const |
Determines if the last block receives special processing. | |
void | ProcessString (byte *inoutString, size_t length) |
Encrypt or decrypt a string of bytes. | |
void | ProcessString (byte *outString, const byte *inString, size_t length) |
Encrypt or decrypt a string of bytes. | |
byte | ProcessByte (byte input) |
Encrypt or decrypt a byte. | |
virtual void | Seek (lword pos) |
Seek to an absolute position. | |
virtual bool | IsForwardTransformation () const =0 |
Determines if the cipher is being operated in its forward direction. | |
Protected Types | |
enum | { REQUIRED_BLOCKSIZE = 16 } |
Protected Types inherited from AuthenticatedSymmetricCipherBase | |
enum | State { State_Start , State_KeySet , State_IVSet , State_AuthUntransformed , State_AuthTransformed , State_AuthFooter } |
Protected Member Functions | |
bool | AuthenticationIsOnPlaintext () const |
unsigned int | AuthenticationBlockSize () const |
void | SetKeyWithoutResync (const byte *userKey, size_t keylength, const NameValuePairs ¶ms) |
void | Resync (const byte *iv, size_t len) |
size_t | AuthenticateBlocks (const byte *data, size_t len) |
void | AuthenticateLastHeaderBlock () |
void | AuthenticateLastConfidentialBlock () |
void | AuthenticateLastFooterBlock (byte *mac, size_t macSize) |
SymmetricCipher & | AccessSymmetricCipher () |
virtual BlockCipher & | AccessBlockCipher ()=0 |
virtual int | DefaultDigestSize () const =0 |
const BlockCipher & | GetBlockCipher () const |
byte * | CBC_Buffer () |
Protected Member Functions inherited from AuthenticatedSymmetricCipherBase | |
void | UncheckedSetKey (const byte *key, unsigned int length, const CryptoPP::NameValuePairs ¶ms) |
void | AuthenticateData (const byte *data, size_t len) |
const SymmetricCipher & | GetSymmetricCipher () const |
Protected Member Functions inherited from AuthenticatedSymmetricCipher | |
const Algorithm & | GetAlgorithm () const |
Returns the base class Algorithm. | |
Protected Member Functions inherited from SimpleKeyingInterface | |
virtual void | UncheckedSetKey (const byte *key, unsigned int length, const NameValuePairs ¶ms)=0 |
Sets the key for this object without performing parameter validation. | |
void | ThrowIfInvalidKeyLength (size_t length) |
Validates the key length. | |
void | ThrowIfResynchronizable () |
Validates the object. | |
void | ThrowIfInvalidIV (const byte *iv) |
Validates the IV. | |
size_t | ThrowIfInvalidIVLength (int length) |
Validates the IV length. | |
const byte * | GetIVAndThrowIfInvalid (const NameValuePairs ¶ms, size_t &size) |
Retrieves and validates the IV. | |
void | AssertValidKeyLength (size_t length) const |
Validates the key length. | |
Protected Member Functions inherited from HashTransformation | |
void | ThrowIfInvalidTruncatedSize (size_t size) const |
Validates a truncated digest size. | |
Protected Attributes | |
int | m_digestSize |
int | m_L |
word64 | m_messageLength |
word64 | m_aadLength |
CTR_Mode_ExternalCipher::Encryption | m_ctr |
Protected Attributes inherited from AuthenticatedSymmetricCipherBase | |
AlignedSecByteBlock | m_buffer |
lword | m_totalHeaderLength |
lword | m_totalMessageLength |
lword | m_totalFooterLength |
unsigned int | m_bufferedDataLength |
State | m_state |
Additional Inherited Members | |
Public Types inherited from SimpleKeyingInterface | |
enum | IV_Requirement { UNIQUE_IV = 0 , RANDOM_IV , UNPREDICTABLE_RANDOM_IV , INTERNALLY_GENERATED_IV , NOT_RESYNCHRONIZABLE } |
Secure IVs requirements as enumerated values. More... | |
CCM block cipher base implementation.
Base implementation of the AuthenticatedSymmetricCipher interface
|
inlineprotectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
inlinevirtual |
Provides the name of this algorithm.
The standard algorithm name can be a name like AES or AES/GCM. Some algorithms do not have standard names yet. For example, there is no standard algorithm name for Shoup's ECIES.
Reimplemented from AuthenticatedSymmetricCipher.
|
inlinevirtual |
Retrieve the provider of this algorithm.
The algorithm provider can be a name like "C++", "SSE", "NEON", "AESNI", "ARMv8" and "Power8". C++ is standard C++ code. Other labels, like SSE, usually indicate a specialized implementation using instructions from a higher instruction set architecture (ISA). Future labels may include external hardware like a hardware security module (HSM).
Generally speaking Wei Dai's original IA-32 ASM code falls under "SSE2". Labels like "SSSE3" and "SSE4.1" follow after Wei's code and use intrinsics instead of ASM.
Algorithms which combine different instructions or ISAs provide the dominant one. For example on x86 AES/GCM
returns "AESNI" rather than "CLMUL" or "AES+SSE4.1" or "AES+CLMUL" or "AES+SSE4.1+CLMUL".
Reimplemented from AuthenticatedSymmetricCipher.
|
protectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
protectedvirtual |
Reimplemented from AuthenticatedSymmetricCipherBase.
|
protectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
protectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
inlineprotectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
inlineprotectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
inlinevirtual |
Returns default key length.
Implements SimpleKeyingInterface.
|
inlinevirtual |
Provides the digest size of the hash
Implements HashTransformation.
|
inlineprotected |
|
inlinevirtual |
Returns a valid key length for the algorithm.
keylength | the size of the key, in bytes |
keylength is provided in bytes, not bits. If keylength is less than MIN_KEYLENGTH, then the function returns MIN_KEYLENGTH. If keylength is greater than MAX_KEYLENGTH, then the function returns MAX_KEYLENGTH. if If keylength is a multiple of KEYLENGTH_MULTIPLE, then keylength is returned. Otherwise, the function returns a lower multiple of KEYLENGTH_MULTIPLE.
Implements SimpleKeyingInterface.
|
inlinevirtual |
Returns whether keylength is a valid key length.
keylength | the requested keylength |
Internally the function calls GetValidKeyLength()
Reimplemented from SimpleKeyingInterface.
|
inlinevirtual |
Minimal requirement for secure IVs.
Implements SimpleKeyingInterface.
|
inlinevirtual |
Returns length of the IV accepted by this object.
NotImplemented() | if the object does not support resynchronization |
The default implementation throws NotImplemented
Reimplemented from SimpleKeyingInterface.
|
inlinevirtual |
Provides the maximum length of AAD that can be input.
Implements AuthenticatedSymmetricCipher.
|
inlinevirtual |
Provides the maximum size of an IV.
NotImplemented() | if the object does not support resynchronization |
Reimplemented from SimpleKeyingInterface.
|
inlinevirtual |
Returns largest valid key length.
Implements SimpleKeyingInterface.
|
inlinevirtual |
Provides the maximum length of encrypted data.
Implements AuthenticatedSymmetricCipher.
|
inlinevirtual |
Provides the minimum size of an IV.
NotImplemented() | if the object does not support resynchronization |
Reimplemented from SimpleKeyingInterface.
|
inlinevirtual |
Returns smallest valid key length.
Implements SimpleKeyingInterface.
|
inlinevirtual |
Determines if data lengths must be specified prior to inputting data.
if this function returns true, SpecifyDataLengths() must be called before attempting to input data. This is the case for some schemes, such as CCM.
Reimplemented from AuthenticatedSymmetricCipher.
|
inlinevirtual |
Provides input and output data alignment for optimal performance.
Reimplemented from HashTransformation.
|
protectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
protectedvirtual |
Implements AuthenticatedSymmetricCipherBase.
|
virtual |
Reimplemented from AuthenticatedSymmetricCipher.
|
protected |