|
Lightweight Cryptography Primitives
|
ACE authenticated encryption algorithm. More...
#include "aead-common.h"Go to the source code of this file.
Data Structures | |
| union | ace_hash_state_t |
| State information for the ACE-HASH incremental hash mode. More... | |
Macros | |
| #define | ACE_KEY_SIZE 16 |
| Size of the key for ACE. | |
| #define | ACE_TAG_SIZE 16 |
| Size of the authentication tag for ACE. | |
| #define | ACE_NONCE_SIZE 16 |
| Size of the nonce for ACE. | |
| #define | ACE_HASH_SIZE 32 |
| Size of the hash output for ACE-HASH. | |
Functions | |
| int | ace_aead_encrypt (unsigned char *c, unsigned long long *clen, const unsigned char *m, unsigned long long mlen, const unsigned char *ad, unsigned long long adlen, const unsigned char *nsec, const unsigned char *npub, const unsigned char *k) |
| Encrypts and authenticates a packet with ACE. More... | |
| int | ace_aead_decrypt (unsigned char *m, unsigned long long *mlen, unsigned char *nsec, const unsigned char *c, unsigned long long clen, const unsigned char *ad, unsigned long long adlen, const unsigned char *npub, const unsigned char *k) |
| Decrypts and authenticates a packet with ACE. More... | |
| int | ace_hash (unsigned char *out, const unsigned char *in, unsigned long long inlen) |
| Hashes a block of input data with ACE-HASH to generate a hash value. More... | |
| void | ace_hash_init (ace_hash_state_t *state) |
| Initializes the state for an ACE-HASH hashing operation. More... | |
| void | ace_hash_update (ace_hash_state_t *state, const unsigned char *in, unsigned long long inlen) |
| Updates the ACE-HASH state with more input data. More... | |
| void | ace_hash_finalize (ace_hash_state_t *state, unsigned char *out) |
| Returns the final hash value from an ACE-HASH hashing operation. More... | |
Variables | |
| aead_cipher_t const | ace_cipher |
| Meta-information block for the ACE cipher. | |
| aead_hash_algorithm_t const | ace_hash_algorithm |
| Meta-information block for the ACE-HASH hash algorithm. | |
ACE authenticated encryption algorithm.
ACE is an authenticated encryption algorithm with a 128-bit key, a 128-bit nonce, and a 128-bit tag. It uses a duplex construction on top of a 320-bit permutation. The permutation is a generalised version of sLiSCP-light, extended from 256 bits to 320 bits. ACE also has a companion hash algorithm with a 256-bit output.
References: https://uwaterloo.ca/communications-security-lab/lwc/ace
| int ace_aead_decrypt | ( | unsigned char * | m, |
| unsigned long long * | mlen, | ||
| unsigned char * | nsec, | ||
| const unsigned char * | c, | ||
| unsigned long long | clen, | ||
| const unsigned char * | ad, | ||
| unsigned long long | adlen, | ||
| const unsigned char * | npub, | ||
| const unsigned char * | k | ||
| ) |
Decrypts and authenticates a packet with ACE.
| m | Buffer to receive the plaintext message on output. |
| mlen | Receives the length of the plaintext message on output. |
| nsec | Secret nonce - not used by this algorithm. |
| c | Buffer that contains the ciphertext and authentication tag to decrypt. |
| clen | Length of the input data in bytes, which includes the ciphertext and the 16 byte authentication tag. |
| ad | Buffer that contains associated data to authenticate along with the packet but which does not need to be encrypted. |
| adlen | Length of the associated data in bytes. |
| npub | Points to the public nonce for the packet which must be 16 bytes in length. |
| k | Points to the 16 bytes of the key to use to decrypt the packet. |
| int ace_aead_encrypt | ( | unsigned char * | c, |
| unsigned long long * | clen, | ||
| const unsigned char * | m, | ||
| unsigned long long | mlen, | ||
| const unsigned char * | ad, | ||
| unsigned long long | adlen, | ||
| const unsigned char * | nsec, | ||
| const unsigned char * | npub, | ||
| const unsigned char * | k | ||
| ) |
Encrypts and authenticates a packet with ACE.
| c | Buffer to receive the output. |
| clen | On exit, set to the length of the output which includes the ciphertext and the 16 byte authentication tag. |
| m | Buffer that contains the plaintext message to encrypt. |
| mlen | Length of the plaintext message in bytes. |
| ad | Buffer that contains associated data to authenticate along with the packet but which does not need to be encrypted. |
| adlen | Length of the associated data in bytes. |
| nsec | Secret nonce - not used by this algorithm. |
| npub | Points to the public nonce for the packet which must be 16 bytes in length. |
| k | Points to the 16 bytes of the key to use to encrypt the packet. |
| int ace_hash | ( | unsigned char * | out, |
| const unsigned char * | in, | ||
| unsigned long long | inlen | ||
| ) |
Hashes a block of input data with ACE-HASH to generate a hash value.
| out | Buffer to receive the hash output which must be at least ACE_HASH_SIZE bytes in length. |
| in | Points to the input data to be hashed. |
| inlen | Length of the input data in bytes. |
| void ace_hash_finalize | ( | ace_hash_state_t * | state, |
| unsigned char * | out | ||
| ) |
Returns the final hash value from an ACE-HASH hashing operation.
| state | Hash state to be finalized. |
| out | Points to the output buffer to receive the 32-byte hash value. |
| void ace_hash_init | ( | ace_hash_state_t * | state | ) |
Initializes the state for an ACE-HASH hashing operation.
| state | Hash state to be initialized. |
| void ace_hash_update | ( | ace_hash_state_t * | state, |
| const unsigned char * | in, | ||
| unsigned long long | inlen | ||
| ) |
Updates the ACE-HASH state with more input data.
| state | Hash state to be updated. |
| in | Points to the input data to be incorporated into the state. |
| inlen | Length of the input data to be incorporated into the state. |
1.8.6