From 2b20026dd755706934f8f8e1a192bffdfc3d717c Mon Sep 17 00:00:00 2001 From: Amaury Pouly Date: Sun, 1 Jan 2017 20:48:05 +0100 Subject: imxtools/sbtools: rework cryptography It was a mess, a mix of crypto_* and cbc_mac calls. I made everything call crypto functions, and also separate key setup from cryptographic operations, this will be useful to speed up the code in the upcoming commits. Drop support for "usbotp" key, since the crypto code for that was never mainlined and we can always get the keys from a device as long as we have code execution (using the DCP debug registers). Change-Id: I7aa24d12207ffb744225d1b9cc7cb1dc7281dd22 --- utils/imxtools/sbtools/crypto.cpp | 55 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 55 insertions(+) create mode 100644 utils/imxtools/sbtools/crypto.cpp (limited to 'utils/imxtools/sbtools/crypto.cpp') diff --git a/utils/imxtools/sbtools/crypto.cpp b/utils/imxtools/sbtools/crypto.cpp new file mode 100644 index 0000000..35068c3 --- /dev/null +++ b/utils/imxtools/sbtools/crypto.cpp @@ -0,0 +1,55 @@ +/*************************************************************************** + * __________ __ ___. + * Open \______ \ ____ ____ | | _\_ |__ _______ ___ + * Source | _// _ \_/ ___\| |/ /| __ \ / _ \ \/ / + * Jukebox | | ( <_> ) \___| < | \_\ ( <_> > < < + * Firmware |____|_ /\____/ \___ >__|_ \|___ /\____/__/\_ \ + * \/ \/ \/ \/ \/ + * $Id$ + * + * Copyright (C) 2016 Amaury Pouly + * + * This program is free software; you can redistribute it and/or + * modify it under the terms of the GNU General Public License + * as published by the Free Software Foundation; either version 2 + * of the License, or (at your option) any later version. + * + * This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY + * KIND, either express or implied. + * + ****************************************************************************/ +#include "crypto.h" +#include "misc.h" + +static enum crypto_method_t g_cur_method = CRYPTO_NONE; +static byte g_key[16]; + +int crypto_setup(struct crypto_key_t *key) +{ + g_cur_method = key->method; + switch(g_cur_method) + { + case CRYPTO_KEY: + memcpy(g_key, key->u.key, 16); + return CRYPTO_ERROR_SUCCESS; + default: + return CRYPTO_ERROR_BADSETUP; + } +} + +int crypto_apply( + byte *in_data, /* Input data */ + byte *out_data, /* Output data (or NULL) */ + int nr_blocks, /* Number of blocks (one block=16 bytes) */ + byte iv[16], /* Key */ + byte (*out_cbc_mac)[16], /* CBC-MAC of the result (or NULL) */ + bool encrypt) +{ + if(g_cur_method == CRYPTO_KEY) + { + cbc_mac(in_data, out_data, nr_blocks, g_key, iv, out_cbc_mac, encrypt); + return CRYPTO_ERROR_SUCCESS; + } + else + return CRYPTO_ERROR_BADSETUP; +} -- cgit v1.1