mirror of
https://github.com/nodemcu/nodemcu-firmware.git
synced 2025-01-30 21:12:55 +08:00
863dfb59ed
* Remove stale putative MD2 support This hasn't worked in a while, presumably since one of our upstream merges. Don't bother making it work, since MD2 is generally considered insecure. * Land mbedtls 2.16.3-77-gf02988e57 * TLS: remove some dead code from espconn_mbedtls There was some... frankly kind of scary buffer and data shuffling if ESP8266_PLATFORM was defined. Since we don't, in fact, define that preprocessor symbol, just drop the code lest anyone (possibly future-me) be scared. * TLS: espconn_mbedtls: run through astyle No functional changes * TLS: espconn_mbedtls: put the file_params on the stack There's no need to malloc a structure that's used only locally. * TLS: Further minor tidying of mbedtls glue What an absolute shitshow this is. mbedtls should absolutely not be mentioned inside sys/socket.h and app/mbedtls/app/lwIPSocket.c is not so much glue as it as a complete copy of a random subset of lwIP; it should go, but we aren't there yet. Get rid of the mysterious "mbedlts_record" struct, which housed merely a length of bytes sent solely for gating the "record sent" callback. Remove spurious __attribute__((weak)) from symbols not otherwise defined and rename them to emphasize that they are not actually part of mbedtls proper. * TLS: Rampage esp mbedtls glue and delete unused code This at least makes the shitshow smaller * TLS: lwip: fix some memp definitions I presume these also need the new arguments * TLS: Remove more non-NodeMCU code from our mbedtls * TLS: drop support for 1.1 Depending on who you ask it's either EOL already or EOL soon, so we may as well get rid of it now.
202 lines
4.5 KiB
C
202 lines
4.5 KiB
C
/*
|
|
* An implementation of the ARCFOUR algorithm
|
|
*
|
|
* Copyright (C) 2006-2015, ARM Limited, All Rights Reserved
|
|
* SPDX-License-Identifier: Apache-2.0
|
|
*
|
|
* Licensed under the Apache License, Version 2.0 (the "License"); you may
|
|
* not use this file except in compliance with the License.
|
|
* You may obtain a copy of the License at
|
|
*
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
*
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
* distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
|
|
* WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
* See the License for the specific language governing permissions and
|
|
* limitations under the License.
|
|
*
|
|
* This file is part of mbed TLS (https://tls.mbed.org)
|
|
*/
|
|
/*
|
|
* The ARCFOUR algorithm was publicly disclosed on 94/09.
|
|
*
|
|
* http://groups.google.com/group/sci.crypt/msg/10a300c9d21afca0
|
|
*/
|
|
|
|
#if !defined(MBEDTLS_CONFIG_FILE)
|
|
#include "mbedtls/config.h"
|
|
#else
|
|
#include MBEDTLS_CONFIG_FILE
|
|
#endif
|
|
|
|
#if defined(MBEDTLS_ARC4_C)
|
|
|
|
#include "mbedtls/arc4.h"
|
|
#include "mbedtls/platform_util.h"
|
|
|
|
#include <string.h>
|
|
|
|
#if defined(MBEDTLS_SELF_TEST)
|
|
#if defined(MBEDTLS_PLATFORM_C)
|
|
#include "mbedtls/platform.h"
|
|
#else
|
|
#include <stdio.h>
|
|
#define mbedtls_printf printf
|
|
#endif /* MBEDTLS_PLATFORM_C */
|
|
#endif /* MBEDTLS_SELF_TEST */
|
|
|
|
#if !defined(MBEDTLS_ARC4_ALT)
|
|
|
|
void mbedtls_arc4_init( mbedtls_arc4_context *ctx )
|
|
{
|
|
memset( ctx, 0, sizeof( mbedtls_arc4_context ) );
|
|
}
|
|
|
|
void mbedtls_arc4_free( mbedtls_arc4_context *ctx )
|
|
{
|
|
if( ctx == NULL )
|
|
return;
|
|
|
|
mbedtls_platform_zeroize( ctx, sizeof( mbedtls_arc4_context ) );
|
|
}
|
|
|
|
/*
|
|
* ARC4 key schedule
|
|
*/
|
|
void mbedtls_arc4_setup( mbedtls_arc4_context *ctx, const unsigned char *key,
|
|
unsigned int keylen )
|
|
{
|
|
int i, j, a;
|
|
unsigned int k;
|
|
unsigned char *m;
|
|
|
|
ctx->x = 0;
|
|
ctx->y = 0;
|
|
m = ctx->m;
|
|
|
|
for( i = 0; i < 256; i++ )
|
|
m[i] = (unsigned char) i;
|
|
|
|
j = k = 0;
|
|
|
|
for( i = 0; i < 256; i++, k++ )
|
|
{
|
|
if( k >= keylen ) k = 0;
|
|
|
|
a = m[i];
|
|
j = ( j + a + key[k] ) & 0xFF;
|
|
m[i] = m[j];
|
|
m[j] = (unsigned char) a;
|
|
}
|
|
}
|
|
|
|
/*
|
|
* ARC4 cipher function
|
|
*/
|
|
int mbedtls_arc4_crypt( mbedtls_arc4_context *ctx, size_t length, const unsigned char *input,
|
|
unsigned char *output )
|
|
{
|
|
int x, y, a, b;
|
|
size_t i;
|
|
unsigned char *m;
|
|
|
|
x = ctx->x;
|
|
y = ctx->y;
|
|
m = ctx->m;
|
|
|
|
for( i = 0; i < length; i++ )
|
|
{
|
|
x = ( x + 1 ) & 0xFF; a = m[x];
|
|
y = ( y + a ) & 0xFF; b = m[y];
|
|
|
|
m[x] = (unsigned char) b;
|
|
m[y] = (unsigned char) a;
|
|
|
|
output[i] = (unsigned char)
|
|
( input[i] ^ m[(unsigned char)( a + b )] );
|
|
}
|
|
|
|
ctx->x = x;
|
|
ctx->y = y;
|
|
|
|
return( 0 );
|
|
}
|
|
|
|
#endif /* !MBEDTLS_ARC4_ALT */
|
|
|
|
#if defined(MBEDTLS_SELF_TEST)
|
|
/*
|
|
* ARC4 tests vectors as posted by Eric Rescorla in sep. 1994:
|
|
*
|
|
* http://groups.google.com/group/comp.security.misc/msg/10a300c9d21afca0
|
|
*/
|
|
static const unsigned char arc4_test_key[3][8] =
|
|
{
|
|
{ 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
|
|
{ 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
|
|
{ 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 }
|
|
};
|
|
|
|
static const unsigned char arc4_test_pt[3][8] =
|
|
{
|
|
{ 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
|
|
{ 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
|
|
{ 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 }
|
|
};
|
|
|
|
static const unsigned char arc4_test_ct[3][8] =
|
|
{
|
|
{ 0x75, 0xB7, 0x87, 0x80, 0x99, 0xE0, 0xC5, 0x96 },
|
|
{ 0x74, 0x94, 0xC2, 0xE7, 0x10, 0x4B, 0x08, 0x79 },
|
|
{ 0xDE, 0x18, 0x89, 0x41, 0xA3, 0x37, 0x5D, 0x3A }
|
|
};
|
|
|
|
/*
|
|
* Checkup routine
|
|
*/
|
|
int mbedtls_arc4_self_test( int verbose )
|
|
{
|
|
int i, ret = 0;
|
|
unsigned char ibuf[8];
|
|
unsigned char obuf[8];
|
|
mbedtls_arc4_context ctx;
|
|
|
|
mbedtls_arc4_init( &ctx );
|
|
|
|
for( i = 0; i < 3; i++ )
|
|
{
|
|
if( verbose != 0 )
|
|
mbedtls_printf( " ARC4 test #%d: ", i + 1 );
|
|
|
|
memcpy( ibuf, arc4_test_pt[i], 8 );
|
|
|
|
mbedtls_arc4_setup( &ctx, arc4_test_key[i], 8 );
|
|
mbedtls_arc4_crypt( &ctx, 8, ibuf, obuf );
|
|
|
|
if( memcmp( obuf, arc4_test_ct[i], 8 ) != 0 )
|
|
{
|
|
if( verbose != 0 )
|
|
mbedtls_printf( "failed\n" );
|
|
|
|
ret = 1;
|
|
goto exit;
|
|
}
|
|
|
|
if( verbose != 0 )
|
|
mbedtls_printf( "passed\n" );
|
|
}
|
|
|
|
if( verbose != 0 )
|
|
mbedtls_printf( "\n" );
|
|
|
|
exit:
|
|
mbedtls_arc4_free( &ctx );
|
|
|
|
return( ret );
|
|
}
|
|
|
|
#endif /* MBEDTLS_SELF_TEST */
|
|
|
|
#endif /* MBEDTLS_ARC4_C */
|