15566a3e3SBruce Richardson /* SPDX-License-Identifier: BSD-3-Clause 25566a3e3SBruce Richardson * Copyright(c) 2016-2017 Intel Corporation 38a9867a6SSlawomir Mrozowicz */ 48a9867a6SSlawomir Mrozowicz 58a9867a6SSlawomir Mrozowicz #include <string.h> 68a9867a6SSlawomir Mrozowicz 78a9867a6SSlawomir Mrozowicz #include <rte_common.h> 88a9867a6SSlawomir Mrozowicz #include <rte_malloc.h> 9af668035SAkhil Goyal #include <cryptodev_pmd.h> 108a9867a6SSlawomir Mrozowicz 11b28f28aeSDharmik Thakkar #include "openssl_pmd_private.h" 123e9d6bd4SSunila Sahu #include "compat.h" 13d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 14d7bd42f6SKai Ji #include <openssl/provider.h> 15d7bd42f6SKai Ji #include <openssl/core_names.h> 16d7bd42f6SKai Ji #include <openssl/param_build.h> 17d7bd42f6SKai Ji #endif 188a9867a6SSlawomir Mrozowicz 198a9867a6SSlawomir Mrozowicz static const struct rte_cryptodev_capabilities openssl_pmd_capabilities[] = { 208a9867a6SSlawomir Mrozowicz { /* MD5 HMAC */ 218a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 228a9867a6SSlawomir Mrozowicz {.sym = { 238a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 248a9867a6SSlawomir Mrozowicz {.auth = { 258a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_MD5_HMAC, 268a9867a6SSlawomir Mrozowicz .block_size = 64, 278a9867a6SSlawomir Mrozowicz .key_size = { 28e5e7bc71SPablo de Lara .min = 1, 298a9867a6SSlawomir Mrozowicz .max = 64, 30e5e7bc71SPablo de Lara .increment = 1 318a9867a6SSlawomir Mrozowicz }, 328a9867a6SSlawomir Mrozowicz .digest_size = { 33c3d22a65SDmitry Eremin-Solenikov .min = 1, 348a9867a6SSlawomir Mrozowicz .max = 16, 35c3d22a65SDmitry Eremin-Solenikov .increment = 1 368a9867a6SSlawomir Mrozowicz }, 37acf86169SPablo de Lara .iv_size = { 0 } 388a9867a6SSlawomir Mrozowicz }, } 398a9867a6SSlawomir Mrozowicz }, } 408a9867a6SSlawomir Mrozowicz }, 418a9867a6SSlawomir Mrozowicz { /* MD5 */ 428a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 438a9867a6SSlawomir Mrozowicz {.sym = { 448a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 458a9867a6SSlawomir Mrozowicz {.auth = { 468a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_MD5, 478a9867a6SSlawomir Mrozowicz .block_size = 64, 488a9867a6SSlawomir Mrozowicz .key_size = { 498a9867a6SSlawomir Mrozowicz .min = 0, 508a9867a6SSlawomir Mrozowicz .max = 0, 518a9867a6SSlawomir Mrozowicz .increment = 0 528a9867a6SSlawomir Mrozowicz }, 538a9867a6SSlawomir Mrozowicz .digest_size = { 548a9867a6SSlawomir Mrozowicz .min = 16, 558a9867a6SSlawomir Mrozowicz .max = 16, 568a9867a6SSlawomir Mrozowicz .increment = 0 578a9867a6SSlawomir Mrozowicz }, 58acf86169SPablo de Lara .iv_size = { 0 } 598a9867a6SSlawomir Mrozowicz }, } 608a9867a6SSlawomir Mrozowicz }, } 618a9867a6SSlawomir Mrozowicz }, 628a9867a6SSlawomir Mrozowicz { /* SHA1 HMAC */ 638a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 648a9867a6SSlawomir Mrozowicz {.sym = { 658a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 668a9867a6SSlawomir Mrozowicz {.auth = { 678a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA1_HMAC, 688a9867a6SSlawomir Mrozowicz .block_size = 64, 698a9867a6SSlawomir Mrozowicz .key_size = { 70e5e7bc71SPablo de Lara .min = 1, 718a9867a6SSlawomir Mrozowicz .max = 64, 72e5e7bc71SPablo de Lara .increment = 1 738a9867a6SSlawomir Mrozowicz }, 748a9867a6SSlawomir Mrozowicz .digest_size = { 75c3d22a65SDmitry Eremin-Solenikov .min = 1, 768a9867a6SSlawomir Mrozowicz .max = 20, 77c3d22a65SDmitry Eremin-Solenikov .increment = 1 788a9867a6SSlawomir Mrozowicz }, 79acf86169SPablo de Lara .iv_size = { 0 } 808a9867a6SSlawomir Mrozowicz }, } 818a9867a6SSlawomir Mrozowicz }, } 828a9867a6SSlawomir Mrozowicz }, 838a9867a6SSlawomir Mrozowicz { /* SHA1 */ 848a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 858a9867a6SSlawomir Mrozowicz {.sym = { 868a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 878a9867a6SSlawomir Mrozowicz {.auth = { 888a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA1, 898a9867a6SSlawomir Mrozowicz .block_size = 64, 908a9867a6SSlawomir Mrozowicz .key_size = { 918a9867a6SSlawomir Mrozowicz .min = 0, 928a9867a6SSlawomir Mrozowicz .max = 0, 938a9867a6SSlawomir Mrozowicz .increment = 0 948a9867a6SSlawomir Mrozowicz }, 958a9867a6SSlawomir Mrozowicz .digest_size = { 968a9867a6SSlawomir Mrozowicz .min = 20, 978a9867a6SSlawomir Mrozowicz .max = 20, 988a9867a6SSlawomir Mrozowicz .increment = 0 998a9867a6SSlawomir Mrozowicz }, 100acf86169SPablo de Lara .iv_size = { 0 } 1018a9867a6SSlawomir Mrozowicz }, } 1028a9867a6SSlawomir Mrozowicz }, } 1038a9867a6SSlawomir Mrozowicz }, 1048a9867a6SSlawomir Mrozowicz { /* SHA224 HMAC */ 1058a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1068a9867a6SSlawomir Mrozowicz {.sym = { 1078a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1088a9867a6SSlawomir Mrozowicz {.auth = { 1098a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA224_HMAC, 1108a9867a6SSlawomir Mrozowicz .block_size = 64, 1118a9867a6SSlawomir Mrozowicz .key_size = { 112e5e7bc71SPablo de Lara .min = 1, 1138a9867a6SSlawomir Mrozowicz .max = 64, 114e5e7bc71SPablo de Lara .increment = 1 1158a9867a6SSlawomir Mrozowicz }, 1168a9867a6SSlawomir Mrozowicz .digest_size = { 117c3d22a65SDmitry Eremin-Solenikov .min = 1, 1188a9867a6SSlawomir Mrozowicz .max = 28, 119c3d22a65SDmitry Eremin-Solenikov .increment = 1 1208a9867a6SSlawomir Mrozowicz }, 121acf86169SPablo de Lara .iv_size = { 0 } 1228a9867a6SSlawomir Mrozowicz }, } 1238a9867a6SSlawomir Mrozowicz }, } 1248a9867a6SSlawomir Mrozowicz }, 1258a9867a6SSlawomir Mrozowicz { /* SHA224 */ 1268a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1278a9867a6SSlawomir Mrozowicz {.sym = { 1288a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1298a9867a6SSlawomir Mrozowicz {.auth = { 1308a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA224, 1318a9867a6SSlawomir Mrozowicz .block_size = 64, 1328a9867a6SSlawomir Mrozowicz .key_size = { 1338a9867a6SSlawomir Mrozowicz .min = 0, 1348a9867a6SSlawomir Mrozowicz .max = 0, 1358a9867a6SSlawomir Mrozowicz .increment = 0 1368a9867a6SSlawomir Mrozowicz }, 1378a9867a6SSlawomir Mrozowicz .digest_size = { 138c3d22a65SDmitry Eremin-Solenikov .min = 1, 1398a9867a6SSlawomir Mrozowicz .max = 28, 140c3d22a65SDmitry Eremin-Solenikov .increment = 1 1418a9867a6SSlawomir Mrozowicz }, 142acf86169SPablo de Lara .iv_size = { 0 } 1438a9867a6SSlawomir Mrozowicz }, } 1448a9867a6SSlawomir Mrozowicz }, } 1458a9867a6SSlawomir Mrozowicz }, 1468a9867a6SSlawomir Mrozowicz { /* SHA256 HMAC */ 1478a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1488a9867a6SSlawomir Mrozowicz {.sym = { 1498a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1508a9867a6SSlawomir Mrozowicz {.auth = { 1518a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA256_HMAC, 1528a9867a6SSlawomir Mrozowicz .block_size = 64, 1538a9867a6SSlawomir Mrozowicz .key_size = { 154e5e7bc71SPablo de Lara .min = 1, 1558a9867a6SSlawomir Mrozowicz .max = 64, 156e5e7bc71SPablo de Lara .increment = 1 1578a9867a6SSlawomir Mrozowicz }, 1588a9867a6SSlawomir Mrozowicz .digest_size = { 159c3d22a65SDmitry Eremin-Solenikov .min = 1, 1608a9867a6SSlawomir Mrozowicz .max = 32, 161c3d22a65SDmitry Eremin-Solenikov .increment = 1 1628a9867a6SSlawomir Mrozowicz }, 163acf86169SPablo de Lara .iv_size = { 0 } 1648a9867a6SSlawomir Mrozowicz }, } 1658a9867a6SSlawomir Mrozowicz }, } 1668a9867a6SSlawomir Mrozowicz }, 1678a9867a6SSlawomir Mrozowicz { /* SHA256 */ 1688a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1698a9867a6SSlawomir Mrozowicz {.sym = { 1708a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1718a9867a6SSlawomir Mrozowicz {.auth = { 1728a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA256, 1738a9867a6SSlawomir Mrozowicz .block_size = 64, 1748a9867a6SSlawomir Mrozowicz .key_size = { 1758a9867a6SSlawomir Mrozowicz .min = 0, 1768a9867a6SSlawomir Mrozowicz .max = 0, 1778a9867a6SSlawomir Mrozowicz .increment = 0 1788a9867a6SSlawomir Mrozowicz }, 1798a9867a6SSlawomir Mrozowicz .digest_size = { 1808a9867a6SSlawomir Mrozowicz .min = 32, 1818a9867a6SSlawomir Mrozowicz .max = 32, 1828a9867a6SSlawomir Mrozowicz .increment = 0 1838a9867a6SSlawomir Mrozowicz }, 184acf86169SPablo de Lara .iv_size = { 0 } 1858a9867a6SSlawomir Mrozowicz }, } 1868a9867a6SSlawomir Mrozowicz }, } 1878a9867a6SSlawomir Mrozowicz }, 1888a9867a6SSlawomir Mrozowicz { /* SHA384 HMAC */ 1898a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1908a9867a6SSlawomir Mrozowicz {.sym = { 1918a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1928a9867a6SSlawomir Mrozowicz {.auth = { 1938a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA384_HMAC, 1948a9867a6SSlawomir Mrozowicz .block_size = 128, 1958a9867a6SSlawomir Mrozowicz .key_size = { 196e5e7bc71SPablo de Lara .min = 1, 1978a9867a6SSlawomir Mrozowicz .max = 128, 198e5e7bc71SPablo de Lara .increment = 1 1998a9867a6SSlawomir Mrozowicz }, 2008a9867a6SSlawomir Mrozowicz .digest_size = { 201c3d22a65SDmitry Eremin-Solenikov .min = 1, 2028a9867a6SSlawomir Mrozowicz .max = 48, 203c3d22a65SDmitry Eremin-Solenikov .increment = 1 2048a9867a6SSlawomir Mrozowicz }, 205acf86169SPablo de Lara .iv_size = { 0 } 2068a9867a6SSlawomir Mrozowicz }, } 2078a9867a6SSlawomir Mrozowicz }, } 2088a9867a6SSlawomir Mrozowicz }, 2098a9867a6SSlawomir Mrozowicz { /* SHA384 */ 2108a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2118a9867a6SSlawomir Mrozowicz {.sym = { 2128a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2138a9867a6SSlawomir Mrozowicz {.auth = { 2148a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA384, 2158a9867a6SSlawomir Mrozowicz .block_size = 128, 2168a9867a6SSlawomir Mrozowicz .key_size = { 2178a9867a6SSlawomir Mrozowicz .min = 0, 2188a9867a6SSlawomir Mrozowicz .max = 0, 2198a9867a6SSlawomir Mrozowicz .increment = 0 2208a9867a6SSlawomir Mrozowicz }, 2218a9867a6SSlawomir Mrozowicz .digest_size = { 2228a9867a6SSlawomir Mrozowicz .min = 48, 2238a9867a6SSlawomir Mrozowicz .max = 48, 2248a9867a6SSlawomir Mrozowicz .increment = 0 2258a9867a6SSlawomir Mrozowicz }, 226acf86169SPablo de Lara .iv_size = { 0 } 2278a9867a6SSlawomir Mrozowicz }, } 2288a9867a6SSlawomir Mrozowicz }, } 2298a9867a6SSlawomir Mrozowicz }, 2308a9867a6SSlawomir Mrozowicz { /* SHA512 HMAC */ 2318a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2328a9867a6SSlawomir Mrozowicz {.sym = { 2338a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2348a9867a6SSlawomir Mrozowicz {.auth = { 2358a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA512_HMAC, 2368a9867a6SSlawomir Mrozowicz .block_size = 128, 2378a9867a6SSlawomir Mrozowicz .key_size = { 238e5e7bc71SPablo de Lara .min = 1, 2398a9867a6SSlawomir Mrozowicz .max = 128, 240e5e7bc71SPablo de Lara .increment = 1 2418a9867a6SSlawomir Mrozowicz }, 2428a9867a6SSlawomir Mrozowicz .digest_size = { 243c3d22a65SDmitry Eremin-Solenikov .min = 1, 2448a9867a6SSlawomir Mrozowicz .max = 64, 245c3d22a65SDmitry Eremin-Solenikov .increment = 1 2468a9867a6SSlawomir Mrozowicz }, 247acf86169SPablo de Lara .iv_size = { 0 } 2488a9867a6SSlawomir Mrozowicz }, } 2498a9867a6SSlawomir Mrozowicz }, } 2508a9867a6SSlawomir Mrozowicz }, 2518a9867a6SSlawomir Mrozowicz { /* SHA512 */ 2528a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2538a9867a6SSlawomir Mrozowicz {.sym = { 2548a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2558a9867a6SSlawomir Mrozowicz {.auth = { 2568a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA512, 2578a9867a6SSlawomir Mrozowicz .block_size = 128, 2588a9867a6SSlawomir Mrozowicz .key_size = { 2598a9867a6SSlawomir Mrozowicz .min = 0, 2608a9867a6SSlawomir Mrozowicz .max = 0, 2618a9867a6SSlawomir Mrozowicz .increment = 0 2628a9867a6SSlawomir Mrozowicz }, 2638a9867a6SSlawomir Mrozowicz .digest_size = { 2648a9867a6SSlawomir Mrozowicz .min = 64, 2658a9867a6SSlawomir Mrozowicz .max = 64, 2668a9867a6SSlawomir Mrozowicz .increment = 0 2678a9867a6SSlawomir Mrozowicz }, 268acf86169SPablo de Lara .iv_size = { 0 } 2698a9867a6SSlawomir Mrozowicz }, } 2708a9867a6SSlawomir Mrozowicz }, } 2718a9867a6SSlawomir Mrozowicz }, 2728a9867a6SSlawomir Mrozowicz { /* AES CBC */ 2738a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2748a9867a6SSlawomir Mrozowicz {.sym = { 2758a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 2768a9867a6SSlawomir Mrozowicz {.cipher = { 2778a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_AES_CBC, 2788a9867a6SSlawomir Mrozowicz .block_size = 16, 2798a9867a6SSlawomir Mrozowicz .key_size = { 2808a9867a6SSlawomir Mrozowicz .min = 16, 2818a9867a6SSlawomir Mrozowicz .max = 32, 2828a9867a6SSlawomir Mrozowicz .increment = 8 2838a9867a6SSlawomir Mrozowicz }, 2848a9867a6SSlawomir Mrozowicz .iv_size = { 2858a9867a6SSlawomir Mrozowicz .min = 16, 2868a9867a6SSlawomir Mrozowicz .max = 16, 2878a9867a6SSlawomir Mrozowicz .increment = 0 2888a9867a6SSlawomir Mrozowicz } 2898a9867a6SSlawomir Mrozowicz }, } 2908a9867a6SSlawomir Mrozowicz }, } 2918a9867a6SSlawomir Mrozowicz }, 2928a9867a6SSlawomir Mrozowicz { /* AES CTR */ 2938a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2948a9867a6SSlawomir Mrozowicz {.sym = { 2958a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 2968a9867a6SSlawomir Mrozowicz {.cipher = { 2978a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_AES_CTR, 2988a9867a6SSlawomir Mrozowicz .block_size = 16, 2998a9867a6SSlawomir Mrozowicz .key_size = { 3008a9867a6SSlawomir Mrozowicz .min = 16, 3018a9867a6SSlawomir Mrozowicz .max = 32, 3028a9867a6SSlawomir Mrozowicz .increment = 8 3038a9867a6SSlawomir Mrozowicz }, 3048a9867a6SSlawomir Mrozowicz .iv_size = { 3058a9867a6SSlawomir Mrozowicz .min = 16, 3068a9867a6SSlawomir Mrozowicz .max = 16, 3078a9867a6SSlawomir Mrozowicz .increment = 0 3088a9867a6SSlawomir Mrozowicz } 3098a9867a6SSlawomir Mrozowicz }, } 3108a9867a6SSlawomir Mrozowicz }, } 3118a9867a6SSlawomir Mrozowicz }, 312b79e4c00SPablo de Lara { /* AES GCM */ 3138a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3148a9867a6SSlawomir Mrozowicz {.sym = { 315b79e4c00SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_AEAD, 316b79e4c00SPablo de Lara {.aead = { 317b79e4c00SPablo de Lara .algo = RTE_CRYPTO_AEAD_AES_GCM, 3188a9867a6SSlawomir Mrozowicz .block_size = 16, 3198a9867a6SSlawomir Mrozowicz .key_size = { 3208a9867a6SSlawomir Mrozowicz .min = 16, 3218a9867a6SSlawomir Mrozowicz .max = 32, 3228a9867a6SSlawomir Mrozowicz .increment = 8 3238a9867a6SSlawomir Mrozowicz }, 3248a9867a6SSlawomir Mrozowicz .digest_size = { 3258a9867a6SSlawomir Mrozowicz .min = 16, 3268a9867a6SSlawomir Mrozowicz .max = 16, 3278a9867a6SSlawomir Mrozowicz .increment = 0 3288a9867a6SSlawomir Mrozowicz }, 3298a9867a6SSlawomir Mrozowicz .aad_size = { 3300625598aSArek Kusztal .min = 0, 3310625598aSArek Kusztal .max = 65535, 3320625598aSArek Kusztal .increment = 1 333acf86169SPablo de Lara }, 3348a9867a6SSlawomir Mrozowicz .iv_size = { 3358a9867a6SSlawomir Mrozowicz .min = 12, 3368a9867a6SSlawomir Mrozowicz .max = 16, 3378a9867a6SSlawomir Mrozowicz .increment = 4 338b79e4c00SPablo de Lara }, 3398a9867a6SSlawomir Mrozowicz }, } 3408a9867a6SSlawomir Mrozowicz }, } 3418a9867a6SSlawomir Mrozowicz }, 3421a4998dcSPablo de Lara { /* AES CCM */ 3431a4998dcSPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3441a4998dcSPablo de Lara {.sym = { 3451a4998dcSPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_AEAD, 3461a4998dcSPablo de Lara {.aead = { 3471a4998dcSPablo de Lara .algo = RTE_CRYPTO_AEAD_AES_CCM, 3481a4998dcSPablo de Lara .block_size = 16, 3491a4998dcSPablo de Lara .key_size = { 3501a4998dcSPablo de Lara .min = 16, 3511a4998dcSPablo de Lara .max = 32, 3521a4998dcSPablo de Lara .increment = 8 3531a4998dcSPablo de Lara }, 3541a4998dcSPablo de Lara .digest_size = { 3551a4998dcSPablo de Lara .min = 4, 3561a4998dcSPablo de Lara .max = 16, 3571a4998dcSPablo de Lara .increment = 2 3581a4998dcSPablo de Lara }, 3591a4998dcSPablo de Lara .aad_size = { 3601a4998dcSPablo de Lara .min = 0, 3611a4998dcSPablo de Lara .max = 65535, 3621a4998dcSPablo de Lara .increment = 1 3631a4998dcSPablo de Lara }, 3641a4998dcSPablo de Lara .iv_size = { 3651a4998dcSPablo de Lara .min = 7, 3661a4998dcSPablo de Lara .max = 13, 3671a4998dcSPablo de Lara .increment = 1 3681a4998dcSPablo de Lara }, 3691a4998dcSPablo de Lara }, } 3701a4998dcSPablo de Lara }, } 3711a4998dcSPablo de Lara }, 3728a9867a6SSlawomir Mrozowicz { /* AES GMAC (AUTH) */ 3738a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3748a9867a6SSlawomir Mrozowicz {.sym = { 3758a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 3768a9867a6SSlawomir Mrozowicz {.auth = { 3778a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_AES_GMAC, 3788a9867a6SSlawomir Mrozowicz .block_size = 16, 3798a9867a6SSlawomir Mrozowicz .key_size = { 3808a9867a6SSlawomir Mrozowicz .min = 16, 3818a9867a6SSlawomir Mrozowicz .max = 32, 3828a9867a6SSlawomir Mrozowicz .increment = 8 3838a9867a6SSlawomir Mrozowicz }, 3848a9867a6SSlawomir Mrozowicz .digest_size = { 3858a9867a6SSlawomir Mrozowicz .min = 16, 3868a9867a6SSlawomir Mrozowicz .max = 16, 3878a9867a6SSlawomir Mrozowicz .increment = 0 3888a9867a6SSlawomir Mrozowicz }, 389e32e4fa8SPablo de Lara .iv_size = { 390e32e4fa8SPablo de Lara .min = 12, 391e32e4fa8SPablo de Lara .max = 16, 3928a9867a6SSlawomir Mrozowicz .increment = 4 393e32e4fa8SPablo de Lara } 3948a9867a6SSlawomir Mrozowicz }, } 3958a9867a6SSlawomir Mrozowicz }, } 3968a9867a6SSlawomir Mrozowicz }, 3972b9c693fSAshwin Sekhar T K { /* AES CMAC (AUTH) */ 3982b9c693fSAshwin Sekhar T K .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3992b9c693fSAshwin Sekhar T K {.sym = { 4002b9c693fSAshwin Sekhar T K .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 4012b9c693fSAshwin Sekhar T K {.auth = { 4022b9c693fSAshwin Sekhar T K .algo = RTE_CRYPTO_AUTH_AES_CMAC, 4032b9c693fSAshwin Sekhar T K .block_size = 16, 4042b9c693fSAshwin Sekhar T K .key_size = { 4052b9c693fSAshwin Sekhar T K .min = 16, 4062b9c693fSAshwin Sekhar T K .max = 32, 4072b9c693fSAshwin Sekhar T K .increment = 8 4082b9c693fSAshwin Sekhar T K }, 4092b9c693fSAshwin Sekhar T K .digest_size = { 4102b9c693fSAshwin Sekhar T K .min = 4, 4112b9c693fSAshwin Sekhar T K .max = 16, 4122b9c693fSAshwin Sekhar T K .increment = 4 4132b9c693fSAshwin Sekhar T K }, 4142b9c693fSAshwin Sekhar T K }, } 4152b9c693fSAshwin Sekhar T K }, } 4162b9c693fSAshwin Sekhar T K }, 4178a9867a6SSlawomir Mrozowicz { /* 3DES CBC */ 4188a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4198a9867a6SSlawomir Mrozowicz {.sym = { 4208a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4218a9867a6SSlawomir Mrozowicz {.cipher = { 4228a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_3DES_CBC, 4238a9867a6SSlawomir Mrozowicz .block_size = 8, 4248a9867a6SSlawomir Mrozowicz .key_size = { 4259607e37eSMarko Kovacevic .min = 8, 4268a9867a6SSlawomir Mrozowicz .max = 24, 4278a9867a6SSlawomir Mrozowicz .increment = 8 4288a9867a6SSlawomir Mrozowicz }, 4298a9867a6SSlawomir Mrozowicz .iv_size = { 4308a9867a6SSlawomir Mrozowicz .min = 8, 4318a9867a6SSlawomir Mrozowicz .max = 8, 4328a9867a6SSlawomir Mrozowicz .increment = 0 4338a9867a6SSlawomir Mrozowicz } 4348a9867a6SSlawomir Mrozowicz }, } 4358a9867a6SSlawomir Mrozowicz }, } 4368a9867a6SSlawomir Mrozowicz }, 4378a9867a6SSlawomir Mrozowicz { /* 3DES CTR */ 4388a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4398a9867a6SSlawomir Mrozowicz {.sym = { 4408a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4418a9867a6SSlawomir Mrozowicz {.cipher = { 4428a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_3DES_CTR, 4438a9867a6SSlawomir Mrozowicz .block_size = 8, 4448a9867a6SSlawomir Mrozowicz .key_size = { 4458a9867a6SSlawomir Mrozowicz .min = 16, 4468a9867a6SSlawomir Mrozowicz .max = 24, 4478a9867a6SSlawomir Mrozowicz .increment = 8 4488a9867a6SSlawomir Mrozowicz }, 4498a9867a6SSlawomir Mrozowicz .iv_size = { 4508a9867a6SSlawomir Mrozowicz .min = 8, 4518a9867a6SSlawomir Mrozowicz .max = 8, 4528a9867a6SSlawomir Mrozowicz .increment = 0 4538a9867a6SSlawomir Mrozowicz } 4548a9867a6SSlawomir Mrozowicz }, } 4558a9867a6SSlawomir Mrozowicz }, } 4568a9867a6SSlawomir Mrozowicz }, 457c1734807SPablo de Lara { /* DES CBC */ 458c1734807SPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 459c1734807SPablo de Lara {.sym = { 460c1734807SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 461c1734807SPablo de Lara {.cipher = { 462c1734807SPablo de Lara .algo = RTE_CRYPTO_CIPHER_DES_CBC, 463c1734807SPablo de Lara .block_size = 8, 464c1734807SPablo de Lara .key_size = { 465c1734807SPablo de Lara .min = 8, 466c1734807SPablo de Lara .max = 8, 467c1734807SPablo de Lara .increment = 0 468c1734807SPablo de Lara }, 469c1734807SPablo de Lara .iv_size = { 470c1734807SPablo de Lara .min = 8, 471c1734807SPablo de Lara .max = 8, 472c1734807SPablo de Lara .increment = 0 473c1734807SPablo de Lara } 474c1734807SPablo de Lara }, } 475c1734807SPablo de Lara }, } 476c1734807SPablo de Lara }, 4771dee7bc7SPablo de Lara { /* DES DOCSIS BPI */ 4781dee7bc7SPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4791dee7bc7SPablo de Lara {.sym = { 4801dee7bc7SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4811dee7bc7SPablo de Lara {.cipher = { 4821dee7bc7SPablo de Lara .algo = RTE_CRYPTO_CIPHER_DES_DOCSISBPI, 4831dee7bc7SPablo de Lara .block_size = 8, 4841dee7bc7SPablo de Lara .key_size = { 4851dee7bc7SPablo de Lara .min = 8, 4861dee7bc7SPablo de Lara .max = 8, 4871dee7bc7SPablo de Lara .increment = 0 4881dee7bc7SPablo de Lara }, 4891dee7bc7SPablo de Lara .iv_size = { 4901dee7bc7SPablo de Lara .min = 8, 4911dee7bc7SPablo de Lara .max = 8, 4921dee7bc7SPablo de Lara .increment = 0 4931dee7bc7SPablo de Lara } 4941dee7bc7SPablo de Lara }, } 4951dee7bc7SPablo de Lara }, } 4961dee7bc7SPablo de Lara }, 4973e9d6bd4SSunila Sahu { /* RSA */ 4983e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 4993e9d6bd4SSunila Sahu {.asym = { 5003e9d6bd4SSunila Sahu .xform_capa = { 5013e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_RSA, 5023e9d6bd4SSunila Sahu .op_types = ((1 << RTE_CRYPTO_ASYM_OP_SIGN) | 5033e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_VERIFY) | 5043e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_ENCRYPT) | 5053e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_DECRYPT)), 5063e9d6bd4SSunila Sahu { 5073e9d6bd4SSunila Sahu .modlen = { 5083e9d6bd4SSunila Sahu /* min length is based on openssl rsa keygen */ 5093e9d6bd4SSunila Sahu .min = 30, 5103e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5113e9d6bd4SSunila Sahu .max = 0, 5123e9d6bd4SSunila Sahu .increment = 1 5133e9d6bd4SSunila Sahu }, } 5143e9d6bd4SSunila Sahu } 5153e9d6bd4SSunila Sahu }, 5163e9d6bd4SSunila Sahu } 5173e9d6bd4SSunila Sahu }, 5183e9d6bd4SSunila Sahu { /* modexp */ 5193e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 5203e9d6bd4SSunila Sahu {.asym = { 5213e9d6bd4SSunila Sahu .xform_capa = { 5223e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_MODEX, 5233e9d6bd4SSunila Sahu .op_types = 0, 5243e9d6bd4SSunila Sahu { 5253e9d6bd4SSunila Sahu .modlen = { 5263e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on min length */ 5273e9d6bd4SSunila Sahu .min = 0, 5283e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5293e9d6bd4SSunila Sahu .max = 0, 5303e9d6bd4SSunila Sahu .increment = 1 5313e9d6bd4SSunila Sahu }, } 5323e9d6bd4SSunila Sahu } 5333e9d6bd4SSunila Sahu }, 5343e9d6bd4SSunila Sahu } 5353e9d6bd4SSunila Sahu }, 5363e9d6bd4SSunila Sahu { /* modinv */ 5373e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 5383e9d6bd4SSunila Sahu {.asym = { 5393e9d6bd4SSunila Sahu .xform_capa = { 5403e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_MODINV, 5413e9d6bd4SSunila Sahu .op_types = 0, 5423e9d6bd4SSunila Sahu { 5433e9d6bd4SSunila Sahu .modlen = { 5443e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on min length */ 5453e9d6bd4SSunila Sahu .min = 0, 5463e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5473e9d6bd4SSunila Sahu .max = 0, 5483e9d6bd4SSunila Sahu .increment = 1 5493e9d6bd4SSunila Sahu }, } 5503e9d6bd4SSunila Sahu } 5513e9d6bd4SSunila Sahu }, 5523e9d6bd4SSunila Sahu } 5533e9d6bd4SSunila Sahu }, 554ac42813aSSunila Sahu { /* dh */ 555ac42813aSSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 556ac42813aSSunila Sahu {.asym = { 557ac42813aSSunila Sahu .xform_capa = { 558ac42813aSSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_DH, 559ac42813aSSunila Sahu .op_types = 5605fa1fb29SArek Kusztal ((1<<RTE_CRYPTO_ASYM_KE_PRIV_KEY_GENERATE) | 5615fa1fb29SArek Kusztal (1 << RTE_CRYPTO_ASYM_KE_PUB_KEY_GENERATE | 562ac42813aSSunila Sahu (1 << 5635fa1fb29SArek Kusztal RTE_CRYPTO_ASYM_KE_SHARED_SECRET_COMPUTE))), 564ac42813aSSunila Sahu { 565ac42813aSSunila Sahu .modlen = { 566ac42813aSSunila Sahu /* value 0 symbolizes no limit on min length */ 567ac42813aSSunila Sahu .min = 0, 568ac42813aSSunila Sahu /* value 0 symbolizes no limit on max length */ 569ac42813aSSunila Sahu .max = 0, 570ac42813aSSunila Sahu .increment = 1 571ac42813aSSunila Sahu }, } 572ac42813aSSunila Sahu } 573ac42813aSSunila Sahu }, 574ac42813aSSunila Sahu } 575ac42813aSSunila Sahu }, 576ac42813aSSunila Sahu { /* dsa */ 577ac42813aSSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 578ac42813aSSunila Sahu {.asym = { 579ac42813aSSunila Sahu .xform_capa = { 580ac42813aSSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_DSA, 581ac42813aSSunila Sahu .op_types = 582ac42813aSSunila Sahu ((1<<RTE_CRYPTO_ASYM_OP_SIGN) | 583ac42813aSSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_VERIFY)), 584ac42813aSSunila Sahu { 585ac42813aSSunila Sahu .modlen = { 586ac42813aSSunila Sahu /* value 0 symbolizes no limit on min length */ 587ac42813aSSunila Sahu .min = 0, 588ac42813aSSunila Sahu /* value 0 symbolizes no limit on max length */ 589ac42813aSSunila Sahu .max = 0, 590ac42813aSSunila Sahu .increment = 1 591ac42813aSSunila Sahu }, } 592ac42813aSSunila Sahu } 593ac42813aSSunila Sahu }, 594ac42813aSSunila Sahu } 595ac42813aSSunila Sahu }, 596e8f9c5c8SGowrishankar Muthukrishnan { /* SM2 */ 597e8f9c5c8SGowrishankar Muthukrishnan .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 598e8f9c5c8SGowrishankar Muthukrishnan {.asym = { 599e8f9c5c8SGowrishankar Muthukrishnan .xform_capa = { 600e8f9c5c8SGowrishankar Muthukrishnan .xform_type = RTE_CRYPTO_ASYM_XFORM_SM2, 6016f8ef8b6SGowrishankar Muthukrishnan .hash_algos = (1 << RTE_CRYPTO_AUTH_SM3), 602e8f9c5c8SGowrishankar Muthukrishnan .op_types = 603e8f9c5c8SGowrishankar Muthukrishnan ((1<<RTE_CRYPTO_ASYM_OP_SIGN) | 604e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_VERIFY) | 605e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_ENCRYPT) | 606e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_DECRYPT)), 607*1a0ef807SGowrishankar Muthukrishnan {.internal_rng = 1 608*1a0ef807SGowrishankar Muthukrishnan } 609e8f9c5c8SGowrishankar Muthukrishnan } 610e8f9c5c8SGowrishankar Muthukrishnan } 611e8f9c5c8SGowrishankar Muthukrishnan } 612e8f9c5c8SGowrishankar Muthukrishnan }, 6138a9867a6SSlawomir Mrozowicz 6148a9867a6SSlawomir Mrozowicz RTE_CRYPTODEV_END_OF_CAPABILITIES_LIST() 6158a9867a6SSlawomir Mrozowicz }; 6168a9867a6SSlawomir Mrozowicz 6178a9867a6SSlawomir Mrozowicz 6188a9867a6SSlawomir Mrozowicz /** Configure device */ 6198a9867a6SSlawomir Mrozowicz static int 62060e686c2SFan Zhang openssl_pmd_config(__rte_unused struct rte_cryptodev *dev, 62160e686c2SFan Zhang __rte_unused struct rte_cryptodev_config *config) 6228a9867a6SSlawomir Mrozowicz { 6238a9867a6SSlawomir Mrozowicz return 0; 6248a9867a6SSlawomir Mrozowicz } 6258a9867a6SSlawomir Mrozowicz 6268a9867a6SSlawomir Mrozowicz /** Start device */ 6278a9867a6SSlawomir Mrozowicz static int 6288a9867a6SSlawomir Mrozowicz openssl_pmd_start(__rte_unused struct rte_cryptodev *dev) 6298a9867a6SSlawomir Mrozowicz { 6308a9867a6SSlawomir Mrozowicz return 0; 6318a9867a6SSlawomir Mrozowicz } 6328a9867a6SSlawomir Mrozowicz 6338a9867a6SSlawomir Mrozowicz /** Stop device */ 6348a9867a6SSlawomir Mrozowicz static void 6358a9867a6SSlawomir Mrozowicz openssl_pmd_stop(__rte_unused struct rte_cryptodev *dev) 6368a9867a6SSlawomir Mrozowicz { 6378a9867a6SSlawomir Mrozowicz } 6388a9867a6SSlawomir Mrozowicz 6398a9867a6SSlawomir Mrozowicz /** Close device */ 6408a9867a6SSlawomir Mrozowicz static int 6418a9867a6SSlawomir Mrozowicz openssl_pmd_close(__rte_unused struct rte_cryptodev *dev) 6428a9867a6SSlawomir Mrozowicz { 6438a9867a6SSlawomir Mrozowicz return 0; 6448a9867a6SSlawomir Mrozowicz } 6458a9867a6SSlawomir Mrozowicz 6468a9867a6SSlawomir Mrozowicz 6478a9867a6SSlawomir Mrozowicz /** Get device statistics */ 6488a9867a6SSlawomir Mrozowicz static void 6498a9867a6SSlawomir Mrozowicz openssl_pmd_stats_get(struct rte_cryptodev *dev, 6508a9867a6SSlawomir Mrozowicz struct rte_cryptodev_stats *stats) 6518a9867a6SSlawomir Mrozowicz { 6528a9867a6SSlawomir Mrozowicz int qp_id; 6538a9867a6SSlawomir Mrozowicz 6548a9867a6SSlawomir Mrozowicz for (qp_id = 0; qp_id < dev->data->nb_queue_pairs; qp_id++) { 6558a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 6568a9867a6SSlawomir Mrozowicz 6578a9867a6SSlawomir Mrozowicz stats->enqueued_count += qp->stats.enqueued_count; 6588a9867a6SSlawomir Mrozowicz stats->dequeued_count += qp->stats.dequeued_count; 6598a9867a6SSlawomir Mrozowicz 6608a9867a6SSlawomir Mrozowicz stats->enqueue_err_count += qp->stats.enqueue_err_count; 6618a9867a6SSlawomir Mrozowicz stats->dequeue_err_count += qp->stats.dequeue_err_count; 6628a9867a6SSlawomir Mrozowicz } 6638a9867a6SSlawomir Mrozowicz } 6648a9867a6SSlawomir Mrozowicz 6658a9867a6SSlawomir Mrozowicz /** Reset device statistics */ 6668a9867a6SSlawomir Mrozowicz static void 6678a9867a6SSlawomir Mrozowicz openssl_pmd_stats_reset(struct rte_cryptodev *dev) 6688a9867a6SSlawomir Mrozowicz { 6698a9867a6SSlawomir Mrozowicz int qp_id; 6708a9867a6SSlawomir Mrozowicz 6718a9867a6SSlawomir Mrozowicz for (qp_id = 0; qp_id < dev->data->nb_queue_pairs; qp_id++) { 6728a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 6738a9867a6SSlawomir Mrozowicz 6748a9867a6SSlawomir Mrozowicz memset(&qp->stats, 0, sizeof(qp->stats)); 6758a9867a6SSlawomir Mrozowicz } 6768a9867a6SSlawomir Mrozowicz } 6778a9867a6SSlawomir Mrozowicz 6788a9867a6SSlawomir Mrozowicz 6798a9867a6SSlawomir Mrozowicz /** Get device info */ 6808a9867a6SSlawomir Mrozowicz static void 6818a9867a6SSlawomir Mrozowicz openssl_pmd_info_get(struct rte_cryptodev *dev, 6828a9867a6SSlawomir Mrozowicz struct rte_cryptodev_info *dev_info) 6838a9867a6SSlawomir Mrozowicz { 6848a9867a6SSlawomir Mrozowicz struct openssl_private *internals = dev->data->dev_private; 6858a9867a6SSlawomir Mrozowicz 6868a9867a6SSlawomir Mrozowicz if (dev_info != NULL) { 6877a364faeSSlawomir Mrozowicz dev_info->driver_id = dev->driver_id; 6888a9867a6SSlawomir Mrozowicz dev_info->feature_flags = dev->feature_flags; 6898a9867a6SSlawomir Mrozowicz dev_info->capabilities = openssl_pmd_capabilities; 6908a9867a6SSlawomir Mrozowicz dev_info->max_nb_queue_pairs = internals->max_nb_qpairs; 691e1fc5b76SPablo de Lara /* No limit of number of sessions */ 692e1fc5b76SPablo de Lara dev_info->sym.max_nb_sessions = 0; 6938a9867a6SSlawomir Mrozowicz } 6948a9867a6SSlawomir Mrozowicz } 6958a9867a6SSlawomir Mrozowicz 6968a9867a6SSlawomir Mrozowicz /** Release queue pair */ 6978a9867a6SSlawomir Mrozowicz static int 6988a9867a6SSlawomir Mrozowicz openssl_pmd_qp_release(struct rte_cryptodev *dev, uint16_t qp_id) 6998a9867a6SSlawomir Mrozowicz { 7008a9867a6SSlawomir Mrozowicz if (dev->data->queue_pairs[qp_id] != NULL) { 701a4d69a51SFan Zhang struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 702a4d69a51SFan Zhang 703a4d69a51SFan Zhang rte_ring_free(qp->processed_ops); 704a4d69a51SFan Zhang 7058a9867a6SSlawomir Mrozowicz rte_free(dev->data->queue_pairs[qp_id]); 7068a9867a6SSlawomir Mrozowicz dev->data->queue_pairs[qp_id] = NULL; 7078a9867a6SSlawomir Mrozowicz } 7088a9867a6SSlawomir Mrozowicz return 0; 7098a9867a6SSlawomir Mrozowicz } 7108a9867a6SSlawomir Mrozowicz 7118a9867a6SSlawomir Mrozowicz /** set a unique name for the queue pair based on it's name, dev_id and qp_id */ 7128a9867a6SSlawomir Mrozowicz static int 7138a9867a6SSlawomir Mrozowicz openssl_pmd_qp_set_unique_name(struct rte_cryptodev *dev, 7148a9867a6SSlawomir Mrozowicz struct openssl_qp *qp) 7158a9867a6SSlawomir Mrozowicz { 7168a9867a6SSlawomir Mrozowicz unsigned int n = snprintf(qp->name, sizeof(qp->name), 7178a9867a6SSlawomir Mrozowicz "openssl_pmd_%u_qp_%u", 7188a9867a6SSlawomir Mrozowicz dev->data->dev_id, qp->id); 7198a9867a6SSlawomir Mrozowicz 7206ab25e63STomasz Duszynski if (n >= sizeof(qp->name)) 7218a9867a6SSlawomir Mrozowicz return -1; 7228a9867a6SSlawomir Mrozowicz 7238a9867a6SSlawomir Mrozowicz return 0; 7248a9867a6SSlawomir Mrozowicz } 7258a9867a6SSlawomir Mrozowicz 7268a9867a6SSlawomir Mrozowicz 7278a9867a6SSlawomir Mrozowicz /** Create a ring to place processed operations on */ 7288a9867a6SSlawomir Mrozowicz static struct rte_ring * 7298a9867a6SSlawomir Mrozowicz openssl_pmd_qp_create_processed_ops_ring(struct openssl_qp *qp, 7308a9867a6SSlawomir Mrozowicz unsigned int ring_size, int socket_id) 7318a9867a6SSlawomir Mrozowicz { 7328a9867a6SSlawomir Mrozowicz struct rte_ring *r; 7338a9867a6SSlawomir Mrozowicz 7348a9867a6SSlawomir Mrozowicz r = rte_ring_lookup(qp->name); 7358a9867a6SSlawomir Mrozowicz if (r) { 736636e7392SBruce Richardson if (rte_ring_get_size(r) >= ring_size) { 737094b2386SNaga Suresh Somarowthu OPENSSL_LOG(INFO, 7388a9867a6SSlawomir Mrozowicz "Reusing existing ring %s for processed ops", 7398a9867a6SSlawomir Mrozowicz qp->name); 7408a9867a6SSlawomir Mrozowicz return r; 7418a9867a6SSlawomir Mrozowicz } 7428a9867a6SSlawomir Mrozowicz 743094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, 7448a9867a6SSlawomir Mrozowicz "Unable to reuse existing ring %s for processed ops", 7458a9867a6SSlawomir Mrozowicz qp->name); 7468a9867a6SSlawomir Mrozowicz return NULL; 7478a9867a6SSlawomir Mrozowicz } 7488a9867a6SSlawomir Mrozowicz 7498a9867a6SSlawomir Mrozowicz return rte_ring_create(qp->name, ring_size, socket_id, 7508a9867a6SSlawomir Mrozowicz RING_F_SP_ENQ | RING_F_SC_DEQ); 7518a9867a6SSlawomir Mrozowicz } 7528a9867a6SSlawomir Mrozowicz 7538a9867a6SSlawomir Mrozowicz 7548a9867a6SSlawomir Mrozowicz /** Setup a queue pair */ 7558a9867a6SSlawomir Mrozowicz static int 7568a9867a6SSlawomir Mrozowicz openssl_pmd_qp_setup(struct rte_cryptodev *dev, uint16_t qp_id, 7578a9867a6SSlawomir Mrozowicz const struct rte_cryptodev_qp_conf *qp_conf, 758725d2a7fSFan Zhang int socket_id) 7598a9867a6SSlawomir Mrozowicz { 7608a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = NULL; 7618a9867a6SSlawomir Mrozowicz 7628a9867a6SSlawomir Mrozowicz /* Free memory prior to re-allocation if needed. */ 7638a9867a6SSlawomir Mrozowicz if (dev->data->queue_pairs[qp_id] != NULL) 7648a9867a6SSlawomir Mrozowicz openssl_pmd_qp_release(dev, qp_id); 7658a9867a6SSlawomir Mrozowicz 7668a9867a6SSlawomir Mrozowicz /* Allocate the queue pair data structure. */ 7678a9867a6SSlawomir Mrozowicz qp = rte_zmalloc_socket("OPENSSL PMD Queue Pair", sizeof(*qp), 7688a9867a6SSlawomir Mrozowicz RTE_CACHE_LINE_SIZE, socket_id); 7698a9867a6SSlawomir Mrozowicz if (qp == NULL) 7708a9867a6SSlawomir Mrozowicz return -ENOMEM; 7718a9867a6SSlawomir Mrozowicz 7728a9867a6SSlawomir Mrozowicz qp->id = qp_id; 7738a9867a6SSlawomir Mrozowicz dev->data->queue_pairs[qp_id] = qp; 7748a9867a6SSlawomir Mrozowicz 7758a9867a6SSlawomir Mrozowicz if (openssl_pmd_qp_set_unique_name(dev, qp)) 7768a9867a6SSlawomir Mrozowicz goto qp_setup_cleanup; 7778a9867a6SSlawomir Mrozowicz 7788a9867a6SSlawomir Mrozowicz qp->processed_ops = openssl_pmd_qp_create_processed_ops_ring(qp, 7798a9867a6SSlawomir Mrozowicz qp_conf->nb_descriptors, socket_id); 7808a9867a6SSlawomir Mrozowicz if (qp->processed_ops == NULL) 7818a9867a6SSlawomir Mrozowicz goto qp_setup_cleanup; 7828a9867a6SSlawomir Mrozowicz 783725d2a7fSFan Zhang qp->sess_mp = qp_conf->mp_session; 7848a9867a6SSlawomir Mrozowicz 7858a9867a6SSlawomir Mrozowicz memset(&qp->stats, 0, sizeof(qp->stats)); 7868a9867a6SSlawomir Mrozowicz 7878a9867a6SSlawomir Mrozowicz return 0; 7888a9867a6SSlawomir Mrozowicz 7898a9867a6SSlawomir Mrozowicz qp_setup_cleanup: 7908a9867a6SSlawomir Mrozowicz rte_free(qp); 7918a9867a6SSlawomir Mrozowicz 7928a9867a6SSlawomir Mrozowicz return -1; 7938a9867a6SSlawomir Mrozowicz } 7948a9867a6SSlawomir Mrozowicz 7953e9d6bd4SSunila Sahu /** Returns the size of the symmetric session structure */ 7968a9867a6SSlawomir Mrozowicz static unsigned 797012c5076SPablo de Lara openssl_pmd_sym_session_get_size(struct rte_cryptodev *dev __rte_unused) 7988a9867a6SSlawomir Mrozowicz { 7998a9867a6SSlawomir Mrozowicz return sizeof(struct openssl_session); 8008a9867a6SSlawomir Mrozowicz } 8018a9867a6SSlawomir Mrozowicz 8023e9d6bd4SSunila Sahu /** Returns the size of the asymmetric session structure */ 8033e9d6bd4SSunila Sahu static unsigned 8043e9d6bd4SSunila Sahu openssl_pmd_asym_session_get_size(struct rte_cryptodev *dev __rte_unused) 8053e9d6bd4SSunila Sahu { 8063e9d6bd4SSunila Sahu return sizeof(struct openssl_asym_session); 8073e9d6bd4SSunila Sahu } 8083e9d6bd4SSunila Sahu 8098a9867a6SSlawomir Mrozowicz /** Configure the session from a crypto xform chain */ 810b3bbd9e5SSlawomir Mrozowicz static int 811012c5076SPablo de Lara openssl_pmd_sym_session_configure(struct rte_cryptodev *dev __rte_unused, 812b3bbd9e5SSlawomir Mrozowicz struct rte_crypto_sym_xform *xform, 813bdce2564SAkhil Goyal struct rte_cryptodev_sym_session *sess) 8148a9867a6SSlawomir Mrozowicz { 8152a440d6aSAkhil Goyal void *sess_private_data = CRYPTODEV_GET_SYM_SESS_PRIV(sess); 81627391b53SPablo de Lara int ret; 817b3bbd9e5SSlawomir Mrozowicz 8188a9867a6SSlawomir Mrozowicz if (unlikely(sess == NULL)) { 819094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, "invalid session struct"); 82027391b53SPablo de Lara return -EINVAL; 821b3bbd9e5SSlawomir Mrozowicz } 822b3bbd9e5SSlawomir Mrozowicz 82327391b53SPablo de Lara ret = openssl_set_session_parameters(sess_private_data, xform); 82427391b53SPablo de Lara if (ret != 0) { 825094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, "failed configure session parameters"); 826b3bbd9e5SSlawomir Mrozowicz 827b3bbd9e5SSlawomir Mrozowicz /* Return session to mempool */ 82827391b53SPablo de Lara return ret; 8298a9867a6SSlawomir Mrozowicz } 8308a9867a6SSlawomir Mrozowicz 831b3bbd9e5SSlawomir Mrozowicz return 0; 8328a9867a6SSlawomir Mrozowicz } 8338a9867a6SSlawomir Mrozowicz 8343e9d6bd4SSunila Sahu static int openssl_set_asym_session_parameters( 8353e9d6bd4SSunila Sahu struct openssl_asym_session *asym_session, 8363e9d6bd4SSunila Sahu struct rte_crypto_asym_xform *xform) 8373e9d6bd4SSunila Sahu { 8384c7ae22fSKai Ji int ret = -1; 8393e9d6bd4SSunila Sahu 840ac42813aSSunila Sahu if ((xform->xform_type != RTE_CRYPTO_ASYM_XFORM_DH) && 841ac42813aSSunila Sahu (xform->next != NULL)) { 8423e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "chained xfrms are not supported on %s", 8437e1e1277SAkhil Goyal rte_cryptodev_asym_get_xform_string(xform->xform_type)); 8444c7ae22fSKai Ji return ret; 8453e9d6bd4SSunila Sahu } 8463e9d6bd4SSunila Sahu 8473e9d6bd4SSunila Sahu switch (xform->xform_type) { 8483e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_RSA: 8493e9d6bd4SSunila Sahu { 8503e9d6bd4SSunila Sahu BIGNUM *n = NULL; 8513e9d6bd4SSunila Sahu BIGNUM *e = NULL; 8523e9d6bd4SSunila Sahu BIGNUM *d = NULL; 8533e9d6bd4SSunila Sahu BIGNUM *p = NULL, *q = NULL, *dmp1 = NULL; 8543e9d6bd4SSunila Sahu BIGNUM *iqmp = NULL, *dmq1 = NULL; 8553e9d6bd4SSunila Sahu 8563e9d6bd4SSunila Sahu /* copy xfrm data into rsa struct */ 8573e9d6bd4SSunila Sahu n = BN_bin2bn((const unsigned char *)xform->rsa.n.data, 8583e9d6bd4SSunila Sahu xform->rsa.n.length, n); 8593e9d6bd4SSunila Sahu e = BN_bin2bn((const unsigned char *)xform->rsa.e.data, 8603e9d6bd4SSunila Sahu xform->rsa.e.length, e); 8613e9d6bd4SSunila Sahu 8623e9d6bd4SSunila Sahu if (!n || !e) 8633e9d6bd4SSunila Sahu goto err_rsa; 8643e9d6bd4SSunila Sahu 865d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 866d7bd42f6SKai Ji OSSL_PARAM_BLD * param_bld = OSSL_PARAM_BLD_new(); 867d7bd42f6SKai Ji if (!param_bld) { 868d7bd42f6SKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 869d7bd42f6SKai Ji goto err_rsa; 870d7bd42f6SKai Ji } 871d7bd42f6SKai Ji 872d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_N, n) 873d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 874d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_E, e)) { 875d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 876d7bd42f6SKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 877d7bd42f6SKai Ji goto err_rsa; 878d7bd42f6SKai Ji } 879d7bd42f6SKai Ji 880d7bd42f6SKai Ji if (xform->rsa.key_type == RTE_RSA_KEY_TYPE_EXP) { 881d7bd42f6SKai Ji d = BN_bin2bn( 882d7bd42f6SKai Ji (const unsigned char *)xform->rsa.d.data, 883d7bd42f6SKai Ji xform->rsa.d.length, 884d7bd42f6SKai Ji d); 885d7bd42f6SKai Ji if (!d) { 886d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 887d7bd42f6SKai Ji goto err_rsa; 888d7bd42f6SKai Ji } 889d7bd42f6SKai Ji } else { 890d7bd42f6SKai Ji p = BN_bin2bn((const unsigned char *) 891d7bd42f6SKai Ji xform->rsa.qt.p.data, 892d7bd42f6SKai Ji xform->rsa.qt.p.length, 893d7bd42f6SKai Ji p); 894d7bd42f6SKai Ji q = BN_bin2bn((const unsigned char *) 895d7bd42f6SKai Ji xform->rsa.qt.q.data, 896d7bd42f6SKai Ji xform->rsa.qt.q.length, 897d7bd42f6SKai Ji q); 898d7bd42f6SKai Ji dmp1 = BN_bin2bn((const unsigned char *) 899d7bd42f6SKai Ji xform->rsa.qt.dP.data, 900d7bd42f6SKai Ji xform->rsa.qt.dP.length, 901d7bd42f6SKai Ji dmp1); 902d7bd42f6SKai Ji dmq1 = BN_bin2bn((const unsigned char *) 903d7bd42f6SKai Ji xform->rsa.qt.dQ.data, 904d7bd42f6SKai Ji xform->rsa.qt.dQ.length, 905d7bd42f6SKai Ji dmq1); 906d7bd42f6SKai Ji iqmp = BN_bin2bn((const unsigned char *) 907d7bd42f6SKai Ji xform->rsa.qt.qInv.data, 908d7bd42f6SKai Ji xform->rsa.qt.qInv.length, 909d7bd42f6SKai Ji iqmp); 910d7bd42f6SKai Ji 911d7bd42f6SKai Ji if (!p || !q || !dmp1 || !dmq1 || !iqmp) { 912d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 913d7bd42f6SKai Ji goto err_rsa; 914d7bd42f6SKai Ji } 915d7bd42f6SKai Ji 916d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, 917d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_FACTOR1, p) 918d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 919d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_FACTOR2, q) 920d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 921d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_EXPONENT1, dmp1) 922d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 923d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_EXPONENT2, dmq1) 924d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 925d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_COEFFICIENT1, iqmp)) { 926d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 927d7bd42f6SKai Ji goto err_rsa; 928d7bd42f6SKai Ji } 929d7bd42f6SKai Ji } 930d7bd42f6SKai Ji 931d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_N, n) 932d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_E, e) 933d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 934d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_D, d)) { 935d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 936d7bd42f6SKai Ji goto err_rsa; 937d7bd42f6SKai Ji } 938d7bd42f6SKai Ji 939d7bd42f6SKai Ji EVP_PKEY_CTX *key_ctx = EVP_PKEY_CTX_new_from_name(NULL, "RSA", NULL); 940d7bd42f6SKai Ji EVP_PKEY *pkey = NULL; 941d7bd42f6SKai Ji EVP_PKEY_CTX *rsa_ctx = NULL; 942d7bd42f6SKai Ji OSSL_PARAM *params = NULL; 943d7bd42f6SKai Ji 944d7bd42f6SKai Ji params = OSSL_PARAM_BLD_to_param(param_bld); 945d7bd42f6SKai Ji if (!params) { 946d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 947d7bd42f6SKai Ji goto err_rsa; 948d7bd42f6SKai Ji } 949d7bd42f6SKai Ji 950d7bd42f6SKai Ji if (key_ctx == NULL 951d7bd42f6SKai Ji || EVP_PKEY_fromdata_init(key_ctx) <= 0 952d7bd42f6SKai Ji || EVP_PKEY_fromdata(key_ctx, &pkey, 953d7bd42f6SKai Ji EVP_PKEY_KEYPAIR, params) <= 0) { 954d7bd42f6SKai Ji OSSL_PARAM_free(params); 955d7bd42f6SKai Ji goto err_rsa; 956d7bd42f6SKai Ji } 957d7bd42f6SKai Ji 958d7bd42f6SKai Ji rsa_ctx = EVP_PKEY_CTX_new(pkey, NULL); 959d7bd42f6SKai Ji asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_RSA; 960d7bd42f6SKai Ji asym_session->u.r.ctx = rsa_ctx; 961d7bd42f6SKai Ji EVP_PKEY_CTX_free(key_ctx); 962d7bd42f6SKai Ji OSSL_PARAM_free(params); 963d7bd42f6SKai Ji break; 964d7bd42f6SKai Ji #else 9653e9d6bd4SSunila Sahu RSA *rsa = RSA_new(); 9663e9d6bd4SSunila Sahu if (rsa == NULL) 9673e9d6bd4SSunila Sahu goto err_rsa; 9683e9d6bd4SSunila Sahu 9693e9d6bd4SSunila Sahu if (xform->rsa.key_type == RTE_RSA_KEY_TYPE_EXP) { 9703e9d6bd4SSunila Sahu d = BN_bin2bn( 9713e9d6bd4SSunila Sahu (const unsigned char *)xform->rsa.d.data, 9723e9d6bd4SSunila Sahu xform->rsa.d.length, 9733e9d6bd4SSunila Sahu d); 9743e9d6bd4SSunila Sahu if (!d) { 9753e9d6bd4SSunila Sahu RSA_free(rsa); 9763e9d6bd4SSunila Sahu goto err_rsa; 9773e9d6bd4SSunila Sahu } 9783e9d6bd4SSunila Sahu } else { 9793e9d6bd4SSunila Sahu p = BN_bin2bn((const unsigned char *) 9803e9d6bd4SSunila Sahu xform->rsa.qt.p.data, 9813e9d6bd4SSunila Sahu xform->rsa.qt.p.length, 9823e9d6bd4SSunila Sahu p); 9833e9d6bd4SSunila Sahu q = BN_bin2bn((const unsigned char *) 9843e9d6bd4SSunila Sahu xform->rsa.qt.q.data, 9853e9d6bd4SSunila Sahu xform->rsa.qt.q.length, 9863e9d6bd4SSunila Sahu q); 9873e9d6bd4SSunila Sahu dmp1 = BN_bin2bn((const unsigned char *) 9883e9d6bd4SSunila Sahu xform->rsa.qt.dP.data, 9893e9d6bd4SSunila Sahu xform->rsa.qt.dP.length, 9903e9d6bd4SSunila Sahu dmp1); 9913e9d6bd4SSunila Sahu dmq1 = BN_bin2bn((const unsigned char *) 9923e9d6bd4SSunila Sahu xform->rsa.qt.dQ.data, 9933e9d6bd4SSunila Sahu xform->rsa.qt.dQ.length, 9943e9d6bd4SSunila Sahu dmq1); 9953e9d6bd4SSunila Sahu iqmp = BN_bin2bn((const unsigned char *) 9963e9d6bd4SSunila Sahu xform->rsa.qt.qInv.data, 9973e9d6bd4SSunila Sahu xform->rsa.qt.qInv.length, 9983e9d6bd4SSunila Sahu iqmp); 9993e9d6bd4SSunila Sahu 10003e9d6bd4SSunila Sahu if (!p || !q || !dmp1 || !dmq1 || !iqmp) { 10013e9d6bd4SSunila Sahu RSA_free(rsa); 10023e9d6bd4SSunila Sahu goto err_rsa; 10033e9d6bd4SSunila Sahu } 10040b5284adSAshish Gupta ret = set_rsa_params(rsa, p, q); 10053e9d6bd4SSunila Sahu if (ret) { 10063e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 10073e9d6bd4SSunila Sahu "failed to set rsa params\n"); 10083e9d6bd4SSunila Sahu RSA_free(rsa); 10093e9d6bd4SSunila Sahu goto err_rsa; 10103e9d6bd4SSunila Sahu } 10110b5284adSAshish Gupta ret = set_rsa_crt_params(rsa, dmp1, dmq1, iqmp); 10123e9d6bd4SSunila Sahu if (ret) { 10133e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 10143e9d6bd4SSunila Sahu "failed to set crt params\n"); 10153e9d6bd4SSunila Sahu RSA_free(rsa); 10163e9d6bd4SSunila Sahu /* 10173e9d6bd4SSunila Sahu * set already populated params to NULL 10183e9d6bd4SSunila Sahu * as its freed by call to RSA_free 10193e9d6bd4SSunila Sahu */ 10203e9d6bd4SSunila Sahu p = q = NULL; 10213e9d6bd4SSunila Sahu goto err_rsa; 10223e9d6bd4SSunila Sahu } 10233e9d6bd4SSunila Sahu } 10243e9d6bd4SSunila Sahu 10250b5284adSAshish Gupta ret = set_rsa_keys(rsa, n, e, d); 10263e9d6bd4SSunila Sahu if (ret) { 10273e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "Failed to load rsa keys\n"); 10283e9d6bd4SSunila Sahu RSA_free(rsa); 10294c7ae22fSKai Ji return ret; 10303e9d6bd4SSunila Sahu } 10313e9d6bd4SSunila Sahu asym_session->u.r.rsa = rsa; 10323e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_RSA; 10333e9d6bd4SSunila Sahu break; 1034d7bd42f6SKai Ji #endif 10353e9d6bd4SSunila Sahu err_rsa: 103677411bd6SArek Kusztal BN_clear_free(n); 103777411bd6SArek Kusztal BN_clear_free(e); 103877411bd6SArek Kusztal BN_clear_free(d); 103977411bd6SArek Kusztal BN_clear_free(p); 104077411bd6SArek Kusztal BN_clear_free(q); 104177411bd6SArek Kusztal BN_clear_free(dmp1); 104277411bd6SArek Kusztal BN_clear_free(dmq1); 104377411bd6SArek Kusztal BN_clear_free(iqmp); 10443e9d6bd4SSunila Sahu 10453e9d6bd4SSunila Sahu return -1; 10463e9d6bd4SSunila Sahu } 10473e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODEX: 10483e9d6bd4SSunila Sahu { 10493e9d6bd4SSunila Sahu struct rte_crypto_modex_xform *xfrm = &(xform->modex); 10503e9d6bd4SSunila Sahu 10513e9d6bd4SSunila Sahu BN_CTX *ctx = BN_CTX_new(); 10523e9d6bd4SSunila Sahu if (ctx == NULL) { 10533e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 10543e9d6bd4SSunila Sahu " failed to allocate resources\n"); 10554c7ae22fSKai Ji return ret; 10563e9d6bd4SSunila Sahu } 10573e9d6bd4SSunila Sahu BN_CTX_start(ctx); 10583e9d6bd4SSunila Sahu BIGNUM *mod = BN_CTX_get(ctx); 10593e9d6bd4SSunila Sahu BIGNUM *exp = BN_CTX_get(ctx); 10603e9d6bd4SSunila Sahu if (mod == NULL || exp == NULL) { 10613e9d6bd4SSunila Sahu BN_CTX_end(ctx); 10623e9d6bd4SSunila Sahu BN_CTX_free(ctx); 10634c7ae22fSKai Ji return ret; 10643e9d6bd4SSunila Sahu } 10653e9d6bd4SSunila Sahu 10663e9d6bd4SSunila Sahu mod = BN_bin2bn((const unsigned char *) 10673e9d6bd4SSunila Sahu xfrm->modulus.data, 10683e9d6bd4SSunila Sahu xfrm->modulus.length, mod); 10693e9d6bd4SSunila Sahu exp = BN_bin2bn((const unsigned char *) 10703e9d6bd4SSunila Sahu xfrm->exponent.data, 10713e9d6bd4SSunila Sahu xfrm->exponent.length, exp); 10723e9d6bd4SSunila Sahu asym_session->u.e.ctx = ctx; 10733e9d6bd4SSunila Sahu asym_session->u.e.mod = mod; 10743e9d6bd4SSunila Sahu asym_session->u.e.exp = exp; 10753e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_MODEX; 10763e9d6bd4SSunila Sahu break; 10773e9d6bd4SSunila Sahu } 10783e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODINV: 10793e9d6bd4SSunila Sahu { 10803e9d6bd4SSunila Sahu struct rte_crypto_modinv_xform *xfrm = &(xform->modinv); 10813e9d6bd4SSunila Sahu 10823e9d6bd4SSunila Sahu BN_CTX *ctx = BN_CTX_new(); 10833e9d6bd4SSunila Sahu if (ctx == NULL) { 10843e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 10853e9d6bd4SSunila Sahu " failed to allocate resources\n"); 10864c7ae22fSKai Ji return ret; 10873e9d6bd4SSunila Sahu } 10883e9d6bd4SSunila Sahu BN_CTX_start(ctx); 10893e9d6bd4SSunila Sahu BIGNUM *mod = BN_CTX_get(ctx); 10903e9d6bd4SSunila Sahu if (mod == NULL) { 10913e9d6bd4SSunila Sahu BN_CTX_end(ctx); 10923e9d6bd4SSunila Sahu BN_CTX_free(ctx); 10934c7ae22fSKai Ji return ret; 10943e9d6bd4SSunila Sahu } 10953e9d6bd4SSunila Sahu 10963e9d6bd4SSunila Sahu mod = BN_bin2bn((const unsigned char *) 10973e9d6bd4SSunila Sahu xfrm->modulus.data, 10983e9d6bd4SSunila Sahu xfrm->modulus.length, 10993e9d6bd4SSunila Sahu mod); 11003e9d6bd4SSunila Sahu asym_session->u.m.ctx = ctx; 11013e9d6bd4SSunila Sahu asym_session->u.m.modulus = mod; 11023e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_MODINV; 11033e9d6bd4SSunila Sahu break; 11043e9d6bd4SSunila Sahu } 1105ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DH: 1106ac42813aSSunila Sahu { 1107ac42813aSSunila Sahu BIGNUM *p = NULL; 1108ac42813aSSunila Sahu BIGNUM *g = NULL; 1109ac42813aSSunila Sahu 1110ac42813aSSunila Sahu p = BN_bin2bn((const unsigned char *) 1111ac42813aSSunila Sahu xform->dh.p.data, 1112ac42813aSSunila Sahu xform->dh.p.length, 1113ac42813aSSunila Sahu p); 1114ac42813aSSunila Sahu g = BN_bin2bn((const unsigned char *) 1115ac42813aSSunila Sahu xform->dh.g.data, 1116ac42813aSSunila Sahu xform->dh.g.length, 1117ac42813aSSunila Sahu g); 1118ac42813aSSunila Sahu if (!p || !g) 1119ac42813aSSunila Sahu goto err_dh; 1120ac42813aSSunila Sahu 1121c794b40cSKai Ji DH *dh = NULL; 1122c794b40cSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 1123c794b40cSKai Ji OSSL_PARAM_BLD *param_bld = NULL; 1124c794b40cSKai Ji param_bld = OSSL_PARAM_BLD_new(); 1125c794b40cSKai Ji if (!param_bld) { 1126c794b40cSKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 1127c794b40cSKai Ji goto err_dh; 1128c794b40cSKai Ji } 1129c794b40cSKai Ji if ((!OSSL_PARAM_BLD_push_utf8_string(param_bld, 1130c794b40cSKai Ji "group", "ffdhe2048", 0)) 1131c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld, 1132c794b40cSKai Ji OSSL_PKEY_PARAM_FFC_P, p)) 1133c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld, 1134c794b40cSKai Ji OSSL_PKEY_PARAM_FFC_G, g))) { 1135c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1136c794b40cSKai Ji goto err_dh; 1137c794b40cSKai Ji } 1138c794b40cSKai Ji 1139c794b40cSKai Ji OSSL_PARAM_BLD *param_bld_peer = NULL; 1140c794b40cSKai Ji param_bld_peer = OSSL_PARAM_BLD_new(); 1141c794b40cSKai Ji if (!param_bld_peer) { 1142c794b40cSKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 1143c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1144c794b40cSKai Ji goto err_dh; 1145c794b40cSKai Ji } 1146c794b40cSKai Ji if ((!OSSL_PARAM_BLD_push_utf8_string(param_bld_peer, 1147c794b40cSKai Ji "group", "ffdhe2048", 0)) 1148c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld_peer, 1149c794b40cSKai Ji OSSL_PKEY_PARAM_FFC_P, p)) 1150c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld_peer, 1151c794b40cSKai Ji OSSL_PKEY_PARAM_FFC_G, g))) { 1152c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1153c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld_peer); 1154c794b40cSKai Ji goto err_dh; 1155c794b40cSKai Ji } 1156c794b40cSKai Ji 1157c794b40cSKai Ji asym_session->u.dh.param_bld = param_bld; 1158c794b40cSKai Ji asym_session->u.dh.param_bld_peer = param_bld_peer; 1159c794b40cSKai Ji #else 1160c794b40cSKai Ji dh = DH_new(); 1161ac42813aSSunila Sahu if (dh == NULL) { 1162ac42813aSSunila Sahu OPENSSL_LOG(ERR, 1163ac42813aSSunila Sahu "failed to allocate resources\n"); 1164ac42813aSSunila Sahu goto err_dh; 1165ac42813aSSunila Sahu } 11660b5284adSAshish Gupta ret = set_dh_params(dh, p, g); 1167ac42813aSSunila Sahu if (ret) { 1168ac42813aSSunila Sahu DH_free(dh); 1169ac42813aSSunila Sahu goto err_dh; 1170ac42813aSSunila Sahu } 1171c794b40cSKai Ji #endif 1172ac42813aSSunila Sahu asym_session->u.dh.dh_key = dh; 1173ac42813aSSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DH; 1174ac42813aSSunila Sahu break; 1175ac42813aSSunila Sahu 1176ac42813aSSunila Sahu err_dh: 1177ac42813aSSunila Sahu OPENSSL_LOG(ERR, " failed to set dh params\n"); 1178ac42813aSSunila Sahu BN_free(p); 1179ac42813aSSunila Sahu BN_free(g); 1180ac42813aSSunila Sahu return -1; 1181ac42813aSSunila Sahu } 1182ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DSA: 1183ac42813aSSunila Sahu { 11844c7ae22fSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 11854c7ae22fSKai Ji BIGNUM *p = NULL, *g = NULL; 11864c7ae22fSKai Ji BIGNUM *q = NULL, *priv_key = NULL; 11874c7ae22fSKai Ji BIGNUM *pub_key = BN_new(); 11884c7ae22fSKai Ji BN_zero(pub_key); 11894c7ae22fSKai Ji OSSL_PARAM_BLD *param_bld = NULL; 11904c7ae22fSKai Ji 11914c7ae22fSKai Ji p = BN_bin2bn((const unsigned char *) 11924c7ae22fSKai Ji xform->dsa.p.data, 11934c7ae22fSKai Ji xform->dsa.p.length, 11944c7ae22fSKai Ji p); 11954c7ae22fSKai Ji 11964c7ae22fSKai Ji g = BN_bin2bn((const unsigned char *) 11974c7ae22fSKai Ji xform->dsa.g.data, 11984c7ae22fSKai Ji xform->dsa.g.length, 11994c7ae22fSKai Ji g); 12004c7ae22fSKai Ji 12014c7ae22fSKai Ji q = BN_bin2bn((const unsigned char *) 12024c7ae22fSKai Ji xform->dsa.q.data, 12034c7ae22fSKai Ji xform->dsa.q.length, 12044c7ae22fSKai Ji q); 12054c7ae22fSKai Ji if (!p || !q || !g) 12064c7ae22fSKai Ji goto err_dsa; 12074c7ae22fSKai Ji 12084c7ae22fSKai Ji priv_key = BN_bin2bn((const unsigned char *) 12094c7ae22fSKai Ji xform->dsa.x.data, 12104c7ae22fSKai Ji xform->dsa.x.length, 12114c7ae22fSKai Ji priv_key); 12124c7ae22fSKai Ji if (priv_key == NULL) 12134c7ae22fSKai Ji goto err_dsa; 12144c7ae22fSKai Ji 12154c7ae22fSKai Ji param_bld = OSSL_PARAM_BLD_new(); 12164c7ae22fSKai Ji if (!param_bld) { 12174c7ae22fSKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 12184c7ae22fSKai Ji goto err_dsa; 12194c7ae22fSKai Ji } 12204c7ae22fSKai Ji 12214c7ae22fSKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_P, p) 12224c7ae22fSKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_G, g) 12234c7ae22fSKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_Q, q) 12244c7ae22fSKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_PRIV_KEY, priv_key)) { 12254c7ae22fSKai Ji OSSL_PARAM_BLD_free(param_bld); 12264c7ae22fSKai Ji OPENSSL_LOG(ERR, "failed to allocate resources\n"); 12274c7ae22fSKai Ji goto err_dsa; 12284c7ae22fSKai Ji } 12294c7ae22fSKai Ji asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DSA; 12304c7ae22fSKai Ji asym_session->u.s.param_bld = param_bld; 12314c7ae22fSKai Ji 12324c7ae22fSKai Ji break; 12334c7ae22fSKai Ji #else 1234ac42813aSSunila Sahu BIGNUM *p = NULL, *g = NULL; 1235ac42813aSSunila Sahu BIGNUM *q = NULL, *priv_key = NULL; 1236ac42813aSSunila Sahu BIGNUM *pub_key = BN_new(); 1237ac42813aSSunila Sahu BN_zero(pub_key); 1238ac42813aSSunila Sahu 1239ac42813aSSunila Sahu p = BN_bin2bn((const unsigned char *) 1240ac42813aSSunila Sahu xform->dsa.p.data, 1241ac42813aSSunila Sahu xform->dsa.p.length, 1242ac42813aSSunila Sahu p); 1243ac42813aSSunila Sahu 1244ac42813aSSunila Sahu g = BN_bin2bn((const unsigned char *) 1245ac42813aSSunila Sahu xform->dsa.g.data, 1246ac42813aSSunila Sahu xform->dsa.g.length, 1247ac42813aSSunila Sahu g); 1248ac42813aSSunila Sahu 1249ac42813aSSunila Sahu q = BN_bin2bn((const unsigned char *) 1250ac42813aSSunila Sahu xform->dsa.q.data, 1251ac42813aSSunila Sahu xform->dsa.q.length, 1252ac42813aSSunila Sahu q); 1253ac42813aSSunila Sahu if (!p || !q || !g) 1254ac42813aSSunila Sahu goto err_dsa; 1255ac42813aSSunila Sahu 1256ac42813aSSunila Sahu priv_key = BN_bin2bn((const unsigned char *) 1257ac42813aSSunila Sahu xform->dsa.x.data, 1258ac42813aSSunila Sahu xform->dsa.x.length, 1259ac42813aSSunila Sahu priv_key); 1260ac42813aSSunila Sahu if (priv_key == NULL) 1261ac42813aSSunila Sahu goto err_dsa; 1262ac42813aSSunila Sahu 1263ac42813aSSunila Sahu DSA *dsa = DSA_new(); 1264ac42813aSSunila Sahu if (dsa == NULL) { 1265ac42813aSSunila Sahu OPENSSL_LOG(ERR, 1266ac42813aSSunila Sahu " failed to allocate resources\n"); 1267ac42813aSSunila Sahu goto err_dsa; 1268ac42813aSSunila Sahu } 1269ac42813aSSunila Sahu 12700b5284adSAshish Gupta ret = set_dsa_params(dsa, p, q, g); 1271ac42813aSSunila Sahu if (ret) { 1272ac42813aSSunila Sahu DSA_free(dsa); 1273ac42813aSSunila Sahu OPENSSL_LOG(ERR, "Failed to dsa params\n"); 1274ac42813aSSunila Sahu goto err_dsa; 1275ac42813aSSunila Sahu } 1276ac42813aSSunila Sahu 1277ac42813aSSunila Sahu /* 1278ac42813aSSunila Sahu * openssl 1.1.0 mandate that public key can't be 1279ac42813aSSunila Sahu * NULL in very first call. so set a dummy pub key. 1280ac42813aSSunila Sahu * to keep consistency, lets follow same approach for 1281ac42813aSSunila Sahu * both versions 1282ac42813aSSunila Sahu */ 1283ac42813aSSunila Sahu /* just set dummy public for very 1st call */ 12840b5284adSAshish Gupta ret = set_dsa_keys(dsa, pub_key, priv_key); 1285ac42813aSSunila Sahu if (ret) { 1286ac42813aSSunila Sahu DSA_free(dsa); 1287ac42813aSSunila Sahu OPENSSL_LOG(ERR, "Failed to set keys\n"); 1288ac42813aSSunila Sahu return -1; 1289ac42813aSSunila Sahu } 1290ac42813aSSunila Sahu asym_session->u.s.dsa = dsa; 1291ac42813aSSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DSA; 1292ac42813aSSunila Sahu break; 12934c7ae22fSKai Ji #endif 1294ac42813aSSunila Sahu err_dsa: 1295ac42813aSSunila Sahu BN_free(p); 1296ac42813aSSunila Sahu BN_free(q); 1297ac42813aSSunila Sahu BN_free(g); 1298ac42813aSSunila Sahu BN_free(priv_key); 1299ac42813aSSunila Sahu BN_free(pub_key); 1300ac42813aSSunila Sahu return -1; 1301ac42813aSSunila Sahu } 13023b7d638fSGowrishankar Muthukrishnan case RTE_CRYPTO_ASYM_XFORM_SM2: 13033b7d638fSGowrishankar Muthukrishnan { 13043b7d638fSGowrishankar Muthukrishnan #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 130599218c39SGowrishankar Muthukrishnan #ifndef OPENSSL_NO_SM2 13063b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD *param_bld = NULL; 13073b7d638fSGowrishankar Muthukrishnan OSSL_PARAM *params = NULL; 1308badc0c6fSGowrishankar Muthukrishnan BIGNUM *pkey_bn = NULL; 1309badc0c6fSGowrishankar Muthukrishnan uint8_t pubkey[64]; 1310badc0c6fSGowrishankar Muthukrishnan size_t len = 0; 13113b7d638fSGowrishankar Muthukrishnan int ret = -1; 13123b7d638fSGowrishankar Muthukrishnan 13133b7d638fSGowrishankar Muthukrishnan param_bld = OSSL_PARAM_BLD_new(); 13143b7d638fSGowrishankar Muthukrishnan if (!param_bld) { 13153b7d638fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to allocate params\n"); 13163b7d638fSGowrishankar Muthukrishnan goto err_sm2; 13173b7d638fSGowrishankar Muthukrishnan } 13183b7d638fSGowrishankar Muthukrishnan 13193b7d638fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_utf8_string(param_bld, 13203b7d638fSGowrishankar Muthukrishnan OSSL_ASYM_CIPHER_PARAM_DIGEST, "SM3", 0); 13213b7d638fSGowrishankar Muthukrishnan if (!ret) { 13223b7d638fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to push params\n"); 13233b7d638fSGowrishankar Muthukrishnan goto err_sm2; 13243b7d638fSGowrishankar Muthukrishnan } 13253b7d638fSGowrishankar Muthukrishnan 1326badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_utf8_string(param_bld, 1327badc0c6fSGowrishankar Muthukrishnan OSSL_PKEY_PARAM_GROUP_NAME, "SM2", 0); 1328badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1329badc0c6fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to push params\n"); 1330badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1331badc0c6fSGowrishankar Muthukrishnan } 1332badc0c6fSGowrishankar Muthukrishnan 1333badc0c6fSGowrishankar Muthukrishnan pkey_bn = BN_bin2bn((const unsigned char *)xform->ec.pkey.data, 1334badc0c6fSGowrishankar Muthukrishnan xform->ec.pkey.length, pkey_bn); 1335badc0c6fSGowrishankar Muthukrishnan 1336badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_PRIV_KEY, 1337badc0c6fSGowrishankar Muthukrishnan pkey_bn); 1338badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1339badc0c6fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to push params\n"); 1340badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1341badc0c6fSGowrishankar Muthukrishnan } 1342badc0c6fSGowrishankar Muthukrishnan 1343badc0c6fSGowrishankar Muthukrishnan memset(pubkey, 0, sizeof(pubkey)); 1344badc0c6fSGowrishankar Muthukrishnan pubkey[0] = 0x04; 1345badc0c6fSGowrishankar Muthukrishnan len += 1; 1346badc0c6fSGowrishankar Muthukrishnan memcpy(&pubkey[len], xform->ec.q.x.data, xform->ec.q.x.length); 1347badc0c6fSGowrishankar Muthukrishnan len += xform->ec.q.x.length; 1348badc0c6fSGowrishankar Muthukrishnan memcpy(&pubkey[len], xform->ec.q.y.data, xform->ec.q.y.length); 1349badc0c6fSGowrishankar Muthukrishnan len += xform->ec.q.y.length; 1350badc0c6fSGowrishankar Muthukrishnan 1351badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_octet_string(param_bld, 1352badc0c6fSGowrishankar Muthukrishnan OSSL_PKEY_PARAM_PUB_KEY, pubkey, len); 1353badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1354badc0c6fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to push params\n"); 1355badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1356badc0c6fSGowrishankar Muthukrishnan } 1357badc0c6fSGowrishankar Muthukrishnan 13583b7d638fSGowrishankar Muthukrishnan params = OSSL_PARAM_BLD_to_param(param_bld); 13593b7d638fSGowrishankar Muthukrishnan if (!params) { 13603b7d638fSGowrishankar Muthukrishnan OPENSSL_LOG(ERR, "failed to push params\n"); 13613b7d638fSGowrishankar Muthukrishnan goto err_sm2; 13623b7d638fSGowrishankar Muthukrishnan } 13633b7d638fSGowrishankar Muthukrishnan 13643b7d638fSGowrishankar Muthukrishnan asym_session->u.sm2.params = params; 13653b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(param_bld); 13663b7d638fSGowrishankar Muthukrishnan 13673b7d638fSGowrishankar Muthukrishnan asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_SM2; 13683b7d638fSGowrishankar Muthukrishnan break; 13693b7d638fSGowrishankar Muthukrishnan err_sm2: 13703b7d638fSGowrishankar Muthukrishnan if (param_bld) 13713b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(param_bld); 13723b7d638fSGowrishankar Muthukrishnan 13733b7d638fSGowrishankar Muthukrishnan if (asym_session->u.sm2.params) 13743b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_free(asym_session->u.sm2.params); 13753b7d638fSGowrishankar Muthukrishnan 13763b7d638fSGowrishankar Muthukrishnan return -1; 13776e892f5aSCiara Power #else 137899218c39SGowrishankar Muthukrishnan OPENSSL_LOG(WARNING, "SM2 unsupported in current OpenSSL Version"); 137999218c39SGowrishankar Muthukrishnan return -ENOTSUP; 138099218c39SGowrishankar Muthukrishnan #endif 138199218c39SGowrishankar Muthukrishnan #else 13826e892f5aSCiara Power OPENSSL_LOG(WARNING, "SM2 unsupported for OpenSSL Version < 3.0"); 13836e892f5aSCiara Power return -ENOTSUP; 13843b7d638fSGowrishankar Muthukrishnan #endif 13853b7d638fSGowrishankar Muthukrishnan } 13863e9d6bd4SSunila Sahu default: 13874c7ae22fSKai Ji return ret; 13883e9d6bd4SSunila Sahu } 13893e9d6bd4SSunila Sahu 13903e9d6bd4SSunila Sahu return 0; 13913e9d6bd4SSunila Sahu } 13923e9d6bd4SSunila Sahu 13933e9d6bd4SSunila Sahu /** Configure the session from a crypto xform chain */ 13943e9d6bd4SSunila Sahu static int 13953e9d6bd4SSunila Sahu openssl_pmd_asym_session_configure(struct rte_cryptodev *dev __rte_unused, 13963e9d6bd4SSunila Sahu struct rte_crypto_asym_xform *xform, 13971f1e4b7cSCiara Power struct rte_cryptodev_asym_session *sess) 13983e9d6bd4SSunila Sahu { 13993e9d6bd4SSunila Sahu void *asym_sess_private_data; 14003e9d6bd4SSunila Sahu int ret; 14013e9d6bd4SSunila Sahu 14023e9d6bd4SSunila Sahu if (unlikely(sess == NULL)) { 14033e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "invalid asymmetric session struct"); 14043e9d6bd4SSunila Sahu return -EINVAL; 14053e9d6bd4SSunila Sahu } 14063e9d6bd4SSunila Sahu 14071f1e4b7cSCiara Power asym_sess_private_data = sess->sess_private_data; 14083e9d6bd4SSunila Sahu ret = openssl_set_asym_session_parameters(asym_sess_private_data, 14093e9d6bd4SSunila Sahu xform); 14103e9d6bd4SSunila Sahu if (ret != 0) { 14113e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "failed configure session parameters"); 14123e9d6bd4SSunila Sahu return ret; 14133e9d6bd4SSunila Sahu } 14143e9d6bd4SSunila Sahu 14153e9d6bd4SSunila Sahu return 0; 14163e9d6bd4SSunila Sahu } 14178a9867a6SSlawomir Mrozowicz 14188a9867a6SSlawomir Mrozowicz /** Clear the memory of session so it doesn't leave key material behind */ 14198a9867a6SSlawomir Mrozowicz static void 1420bdce2564SAkhil Goyal openssl_pmd_sym_session_clear(struct rte_cryptodev *dev __rte_unused, 1421b3bbd9e5SSlawomir Mrozowicz struct rte_cryptodev_sym_session *sess) 14228a9867a6SSlawomir Mrozowicz { 14232a440d6aSAkhil Goyal void *sess_priv = CRYPTODEV_GET_SYM_SESS_PRIV(sess); 1424b3bbd9e5SSlawomir Mrozowicz 1425b3bbd9e5SSlawomir Mrozowicz /* Zero out the whole structure */ 1426b3bbd9e5SSlawomir Mrozowicz openssl_reset_session(sess_priv); 14278a9867a6SSlawomir Mrozowicz } 14288a9867a6SSlawomir Mrozowicz 14293e9d6bd4SSunila Sahu static void openssl_reset_asym_session(struct openssl_asym_session *sess) 14303e9d6bd4SSunila Sahu { 14313e9d6bd4SSunila Sahu switch (sess->xfrm_type) { 14323e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_RSA: 1433d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 1434d7bd42f6SKai Ji if (sess->u.r.ctx) 1435d7bd42f6SKai Ji EVP_PKEY_CTX_free(sess->u.r.ctx); 1436d7bd42f6SKai Ji #else 14373e9d6bd4SSunila Sahu if (sess->u.r.rsa) 14383e9d6bd4SSunila Sahu RSA_free(sess->u.r.rsa); 1439d7bd42f6SKai Ji #endif 14403e9d6bd4SSunila Sahu break; 14413e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODEX: 14423e9d6bd4SSunila Sahu if (sess->u.e.ctx) { 14433e9d6bd4SSunila Sahu BN_CTX_end(sess->u.e.ctx); 14443e9d6bd4SSunila Sahu BN_CTX_free(sess->u.e.ctx); 14453e9d6bd4SSunila Sahu } 14463e9d6bd4SSunila Sahu break; 14473e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODINV: 14483e9d6bd4SSunila Sahu if (sess->u.m.ctx) { 14493e9d6bd4SSunila Sahu BN_CTX_end(sess->u.m.ctx); 14503e9d6bd4SSunila Sahu BN_CTX_free(sess->u.m.ctx); 14513e9d6bd4SSunila Sahu } 14523e9d6bd4SSunila Sahu break; 1453ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DH: 1454c794b40cSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 1455c794b40cSKai Ji sess->u.dh.param_bld = NULL; 1456c794b40cSKai Ji sess->u.dh.param_bld_peer = NULL; 1457c794b40cSKai Ji #else 1458ac42813aSSunila Sahu if (sess->u.dh.dh_key) 1459ac42813aSSunila Sahu DH_free(sess->u.dh.dh_key); 1460c794b40cSKai Ji #endif 1461ac42813aSSunila Sahu break; 1462ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DSA: 14634c7ae22fSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 14644c7ae22fSKai Ji sess->u.s.param_bld = NULL; 14654c7ae22fSKai Ji #else 1466ac42813aSSunila Sahu if (sess->u.s.dsa) 1467ac42813aSSunila Sahu DSA_free(sess->u.s.dsa); 14684c7ae22fSKai Ji #endif 1469ac42813aSSunila Sahu break; 14703b7d638fSGowrishankar Muthukrishnan case RTE_CRYPTO_ASYM_XFORM_SM2: 14713b7d638fSGowrishankar Muthukrishnan #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 14723b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_free(sess->u.sm2.params); 14733b7d638fSGowrishankar Muthukrishnan #endif 14743e9d6bd4SSunila Sahu default: 14753e9d6bd4SSunila Sahu break; 14763e9d6bd4SSunila Sahu } 14773e9d6bd4SSunila Sahu } 14783e9d6bd4SSunila Sahu 14793e9d6bd4SSunila Sahu /** Clear the memory of asymmetric session 14803e9d6bd4SSunila Sahu * so it doesn't leave key material behind 14813e9d6bd4SSunila Sahu */ 14823e9d6bd4SSunila Sahu static void 14831f1e4b7cSCiara Power openssl_pmd_asym_session_clear(struct rte_cryptodev *dev __rte_unused, 14843e9d6bd4SSunila Sahu struct rte_cryptodev_asym_session *sess) 14853e9d6bd4SSunila Sahu { 14861f1e4b7cSCiara Power void *sess_priv = sess->sess_private_data; 14873e9d6bd4SSunila Sahu 14883e9d6bd4SSunila Sahu /* Zero out the whole structure */ 14893e9d6bd4SSunila Sahu if (sess_priv) { 14903e9d6bd4SSunila Sahu openssl_reset_asym_session(sess_priv); 14913e9d6bd4SSunila Sahu memset(sess_priv, 0, sizeof(struct openssl_asym_session)); 14923e9d6bd4SSunila Sahu } 14933e9d6bd4SSunila Sahu } 14943e9d6bd4SSunila Sahu 14958a9867a6SSlawomir Mrozowicz struct rte_cryptodev_ops openssl_pmd_ops = { 14968a9867a6SSlawomir Mrozowicz .dev_configure = openssl_pmd_config, 14978a9867a6SSlawomir Mrozowicz .dev_start = openssl_pmd_start, 14988a9867a6SSlawomir Mrozowicz .dev_stop = openssl_pmd_stop, 14998a9867a6SSlawomir Mrozowicz .dev_close = openssl_pmd_close, 15008a9867a6SSlawomir Mrozowicz 15018a9867a6SSlawomir Mrozowicz .stats_get = openssl_pmd_stats_get, 15028a9867a6SSlawomir Mrozowicz .stats_reset = openssl_pmd_stats_reset, 15038a9867a6SSlawomir Mrozowicz 15048a9867a6SSlawomir Mrozowicz .dev_infos_get = openssl_pmd_info_get, 15058a9867a6SSlawomir Mrozowicz 15068a9867a6SSlawomir Mrozowicz .queue_pair_setup = openssl_pmd_qp_setup, 15078a9867a6SSlawomir Mrozowicz .queue_pair_release = openssl_pmd_qp_release, 15088a9867a6SSlawomir Mrozowicz 1509012c5076SPablo de Lara .sym_session_get_size = openssl_pmd_sym_session_get_size, 15103e9d6bd4SSunila Sahu .asym_session_get_size = openssl_pmd_asym_session_get_size, 1511012c5076SPablo de Lara .sym_session_configure = openssl_pmd_sym_session_configure, 15123e9d6bd4SSunila Sahu .asym_session_configure = openssl_pmd_asym_session_configure, 15133e9d6bd4SSunila Sahu .sym_session_clear = openssl_pmd_sym_session_clear, 15143e9d6bd4SSunila Sahu .asym_session_clear = openssl_pmd_asym_session_clear 15158a9867a6SSlawomir Mrozowicz }; 15168a9867a6SSlawomir Mrozowicz 15178a9867a6SSlawomir Mrozowicz struct rte_cryptodev_ops *rte_openssl_pmd_ops = &openssl_pmd_ops; 1518