// SPDX-License-Identifier: GPL-2.0-or-later /* * SHA-512 and SHA-384 using the RISC-V vector crypto extensions * * Copyright (C) 2023 VRULL GmbH * Author: Heiko Stuebner * * Copyright (C) 2023 SiFive, Inc. * Author: Jerry Shih */ #include #include #include #include #include #include #include /* * Note: the asm function only uses the 'state' field of struct sha512_state. * It is assumed to be the first field. */ asmlinkage void sha512_transform_zvknhb_zvkb( struct sha512_state *state, const u8 *data, int num_blocks); static void sha512_block(struct sha512_state *state, const u8 *data, int num_blocks) { /* * Ensure struct sha512_state begins directly with the SHA-512 * 512-bit internal state, as this is what the asm function expects. */ BUILD_BUG_ON(offsetof(struct sha512_state, state) != 0); if (crypto_simd_usable()) { kernel_vector_begin(); sha512_transform_zvknhb_zvkb(state, data, num_blocks); kernel_vector_end(); } else { sha512_generic_block_fn(state, data, num_blocks); } } static int riscv64_sha512_update(struct shash_desc *desc, const u8 *data, unsigned int len) { return sha512_base_do_update_blocks(desc, data, len, sha512_block); } static int riscv64_sha512_finup(struct shash_desc *desc, const u8 *data, unsigned int len, u8 *out) { sha512_base_do_finup(desc, data, len, sha512_block); return sha512_base_finish(desc, out); } static int riscv64_sha512_digest(struct shash_desc *desc, const u8 *data, unsigned int len, u8 *out) { return sha512_base_init(desc) ?: riscv64_sha512_finup(desc, data, len, out); } static struct shash_alg riscv64_sha512_algs[] = { { .init = sha512_base_init, .update = riscv64_sha512_update, .finup = riscv64_sha512_finup, .digest = riscv64_sha512_digest, .descsize = SHA512_STATE_SIZE, .digestsize = SHA512_DIGEST_SIZE, .base = { .cra_blocksize = SHA512_BLOCK_SIZE, .cra_priority = 300, .cra_flags = CRYPTO_AHASH_ALG_BLOCK_ONLY | CRYPTO_AHASH_ALG_FINUP_MAX, .cra_name = "sha512", .cra_driver_name = "sha512-riscv64-zvknhb-zvkb", .cra_module = THIS_MODULE, }, }, { .init = sha384_base_init, .update = riscv64_sha512_update, .finup = riscv64_sha512_finup, .descsize = SHA512_STATE_SIZE, .digestsize = SHA384_DIGEST_SIZE, .base = { .cra_blocksize = SHA384_BLOCK_SIZE, .cra_priority = 300, .cra_flags = CRYPTO_AHASH_ALG_BLOCK_ONLY | CRYPTO_AHASH_ALG_FINUP_MAX, .cra_name = "sha384", .cra_driver_name = "sha384-riscv64-zvknhb-zvkb", .cra_module = THIS_MODULE, }, }, }; static int __init riscv64_sha512_mod_init(void) { if (riscv_isa_extension_available(NULL, ZVKNHB) && riscv_isa_extension_available(NULL, ZVKB) && riscv_vector_vlen() >= 128) return crypto_register_shashes(riscv64_sha512_algs, ARRAY_SIZE(riscv64_sha512_algs)); return -ENODEV; } static void __exit riscv64_sha512_mod_exit(void) { crypto_unregister_shashes(riscv64_sha512_algs, ARRAY_SIZE(riscv64_sha512_algs)); } module_init(riscv64_sha512_mod_init); module_exit(riscv64_sha512_mod_exit); MODULE_DESCRIPTION("SHA-512 (RISC-V accelerated)"); MODULE_AUTHOR("Heiko Stuebner "); MODULE_LICENSE("GPL"); MODULE_ALIAS_CRYPTO("sha512"); MODULE_ALIAS_CRYPTO("sha384");