15566a3e3SBruce Richardson /* SPDX-License-Identifier: BSD-3-Clause 25566a3e3SBruce Richardson * Copyright(c) 2016-2017 Intel Corporation 38a9867a6SSlawomir Mrozowicz */ 48a9867a6SSlawomir Mrozowicz 58a9867a6SSlawomir Mrozowicz #include <string.h> 68a9867a6SSlawomir Mrozowicz 78a9867a6SSlawomir Mrozowicz #include <rte_common.h> 88a9867a6SSlawomir Mrozowicz #include <rte_malloc.h> 9af668035SAkhil Goyal #include <cryptodev_pmd.h> 108a9867a6SSlawomir Mrozowicz 11b28f28aeSDharmik Thakkar #include "openssl_pmd_private.h" 123e9d6bd4SSunila Sahu #include "compat.h" 13d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 14d7bd42f6SKai Ji #include <openssl/provider.h> 15d7bd42f6SKai Ji #include <openssl/core_names.h> 16d7bd42f6SKai Ji #include <openssl/param_build.h> 17d7bd42f6SKai Ji #endif 188a9867a6SSlawomir Mrozowicz 198a9867a6SSlawomir Mrozowicz static const struct rte_cryptodev_capabilities openssl_pmd_capabilities[] = { 208a9867a6SSlawomir Mrozowicz { /* MD5 HMAC */ 218a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 228a9867a6SSlawomir Mrozowicz {.sym = { 238a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 248a9867a6SSlawomir Mrozowicz {.auth = { 258a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_MD5_HMAC, 268a9867a6SSlawomir Mrozowicz .block_size = 64, 278a9867a6SSlawomir Mrozowicz .key_size = { 28e5e7bc71SPablo de Lara .min = 1, 298a9867a6SSlawomir Mrozowicz .max = 64, 30e5e7bc71SPablo de Lara .increment = 1 318a9867a6SSlawomir Mrozowicz }, 328a9867a6SSlawomir Mrozowicz .digest_size = { 33c3d22a65SDmitry Eremin-Solenikov .min = 1, 348a9867a6SSlawomir Mrozowicz .max = 16, 35c3d22a65SDmitry Eremin-Solenikov .increment = 1 368a9867a6SSlawomir Mrozowicz }, 37acf86169SPablo de Lara .iv_size = { 0 } 388a9867a6SSlawomir Mrozowicz }, } 398a9867a6SSlawomir Mrozowicz }, } 408a9867a6SSlawomir Mrozowicz }, 418a9867a6SSlawomir Mrozowicz { /* MD5 */ 428a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 438a9867a6SSlawomir Mrozowicz {.sym = { 448a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 458a9867a6SSlawomir Mrozowicz {.auth = { 468a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_MD5, 478a9867a6SSlawomir Mrozowicz .block_size = 64, 488a9867a6SSlawomir Mrozowicz .key_size = { 498a9867a6SSlawomir Mrozowicz .min = 0, 508a9867a6SSlawomir Mrozowicz .max = 0, 518a9867a6SSlawomir Mrozowicz .increment = 0 528a9867a6SSlawomir Mrozowicz }, 538a9867a6SSlawomir Mrozowicz .digest_size = { 548a9867a6SSlawomir Mrozowicz .min = 16, 558a9867a6SSlawomir Mrozowicz .max = 16, 568a9867a6SSlawomir Mrozowicz .increment = 0 578a9867a6SSlawomir Mrozowicz }, 58acf86169SPablo de Lara .iv_size = { 0 } 598a9867a6SSlawomir Mrozowicz }, } 608a9867a6SSlawomir Mrozowicz }, } 618a9867a6SSlawomir Mrozowicz }, 628a9867a6SSlawomir Mrozowicz { /* SHA1 HMAC */ 638a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 648a9867a6SSlawomir Mrozowicz {.sym = { 658a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 668a9867a6SSlawomir Mrozowicz {.auth = { 678a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA1_HMAC, 688a9867a6SSlawomir Mrozowicz .block_size = 64, 698a9867a6SSlawomir Mrozowicz .key_size = { 70e5e7bc71SPablo de Lara .min = 1, 718a9867a6SSlawomir Mrozowicz .max = 64, 72e5e7bc71SPablo de Lara .increment = 1 738a9867a6SSlawomir Mrozowicz }, 748a9867a6SSlawomir Mrozowicz .digest_size = { 75c3d22a65SDmitry Eremin-Solenikov .min = 1, 768a9867a6SSlawomir Mrozowicz .max = 20, 77c3d22a65SDmitry Eremin-Solenikov .increment = 1 788a9867a6SSlawomir Mrozowicz }, 79acf86169SPablo de Lara .iv_size = { 0 } 808a9867a6SSlawomir Mrozowicz }, } 818a9867a6SSlawomir Mrozowicz }, } 828a9867a6SSlawomir Mrozowicz }, 838a9867a6SSlawomir Mrozowicz { /* SHA1 */ 848a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 858a9867a6SSlawomir Mrozowicz {.sym = { 868a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 878a9867a6SSlawomir Mrozowicz {.auth = { 888a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA1, 898a9867a6SSlawomir Mrozowicz .block_size = 64, 908a9867a6SSlawomir Mrozowicz .key_size = { 918a9867a6SSlawomir Mrozowicz .min = 0, 928a9867a6SSlawomir Mrozowicz .max = 0, 938a9867a6SSlawomir Mrozowicz .increment = 0 948a9867a6SSlawomir Mrozowicz }, 958a9867a6SSlawomir Mrozowicz .digest_size = { 968a9867a6SSlawomir Mrozowicz .min = 20, 978a9867a6SSlawomir Mrozowicz .max = 20, 988a9867a6SSlawomir Mrozowicz .increment = 0 998a9867a6SSlawomir Mrozowicz }, 100acf86169SPablo de Lara .iv_size = { 0 } 1018a9867a6SSlawomir Mrozowicz }, } 1028a9867a6SSlawomir Mrozowicz }, } 1038a9867a6SSlawomir Mrozowicz }, 1048a9867a6SSlawomir Mrozowicz { /* SHA224 HMAC */ 1058a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1068a9867a6SSlawomir Mrozowicz {.sym = { 1078a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1088a9867a6SSlawomir Mrozowicz {.auth = { 1098a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA224_HMAC, 1108a9867a6SSlawomir Mrozowicz .block_size = 64, 1118a9867a6SSlawomir Mrozowicz .key_size = { 112e5e7bc71SPablo de Lara .min = 1, 1138a9867a6SSlawomir Mrozowicz .max = 64, 114e5e7bc71SPablo de Lara .increment = 1 1158a9867a6SSlawomir Mrozowicz }, 1168a9867a6SSlawomir Mrozowicz .digest_size = { 117c3d22a65SDmitry Eremin-Solenikov .min = 1, 1188a9867a6SSlawomir Mrozowicz .max = 28, 119c3d22a65SDmitry Eremin-Solenikov .increment = 1 1208a9867a6SSlawomir Mrozowicz }, 121acf86169SPablo de Lara .iv_size = { 0 } 1228a9867a6SSlawomir Mrozowicz }, } 1238a9867a6SSlawomir Mrozowicz }, } 1248a9867a6SSlawomir Mrozowicz }, 1258a9867a6SSlawomir Mrozowicz { /* SHA224 */ 1268a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1278a9867a6SSlawomir Mrozowicz {.sym = { 1288a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1298a9867a6SSlawomir Mrozowicz {.auth = { 1308a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA224, 1318a9867a6SSlawomir Mrozowicz .block_size = 64, 1328a9867a6SSlawomir Mrozowicz .key_size = { 1338a9867a6SSlawomir Mrozowicz .min = 0, 1348a9867a6SSlawomir Mrozowicz .max = 0, 1358a9867a6SSlawomir Mrozowicz .increment = 0 1368a9867a6SSlawomir Mrozowicz }, 1378a9867a6SSlawomir Mrozowicz .digest_size = { 138c3d22a65SDmitry Eremin-Solenikov .min = 1, 1398a9867a6SSlawomir Mrozowicz .max = 28, 140c3d22a65SDmitry Eremin-Solenikov .increment = 1 1418a9867a6SSlawomir Mrozowicz }, 142acf86169SPablo de Lara .iv_size = { 0 } 1438a9867a6SSlawomir Mrozowicz }, } 1448a9867a6SSlawomir Mrozowicz }, } 1458a9867a6SSlawomir Mrozowicz }, 1468a9867a6SSlawomir Mrozowicz { /* SHA256 HMAC */ 1478a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1488a9867a6SSlawomir Mrozowicz {.sym = { 1498a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1508a9867a6SSlawomir Mrozowicz {.auth = { 1518a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA256_HMAC, 1528a9867a6SSlawomir Mrozowicz .block_size = 64, 1538a9867a6SSlawomir Mrozowicz .key_size = { 154e5e7bc71SPablo de Lara .min = 1, 1558a9867a6SSlawomir Mrozowicz .max = 64, 156e5e7bc71SPablo de Lara .increment = 1 1578a9867a6SSlawomir Mrozowicz }, 1588a9867a6SSlawomir Mrozowicz .digest_size = { 159c3d22a65SDmitry Eremin-Solenikov .min = 1, 1608a9867a6SSlawomir Mrozowicz .max = 32, 161c3d22a65SDmitry Eremin-Solenikov .increment = 1 1628a9867a6SSlawomir Mrozowicz }, 163acf86169SPablo de Lara .iv_size = { 0 } 1648a9867a6SSlawomir Mrozowicz }, } 1658a9867a6SSlawomir Mrozowicz }, } 1668a9867a6SSlawomir Mrozowicz }, 1678a9867a6SSlawomir Mrozowicz { /* SHA256 */ 1688a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1698a9867a6SSlawomir Mrozowicz {.sym = { 1708a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1718a9867a6SSlawomir Mrozowicz {.auth = { 1728a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA256, 1738a9867a6SSlawomir Mrozowicz .block_size = 64, 1748a9867a6SSlawomir Mrozowicz .key_size = { 1758a9867a6SSlawomir Mrozowicz .min = 0, 1768a9867a6SSlawomir Mrozowicz .max = 0, 1778a9867a6SSlawomir Mrozowicz .increment = 0 1788a9867a6SSlawomir Mrozowicz }, 1798a9867a6SSlawomir Mrozowicz .digest_size = { 1808a9867a6SSlawomir Mrozowicz .min = 32, 1818a9867a6SSlawomir Mrozowicz .max = 32, 1828a9867a6SSlawomir Mrozowicz .increment = 0 1838a9867a6SSlawomir Mrozowicz }, 184acf86169SPablo de Lara .iv_size = { 0 } 1858a9867a6SSlawomir Mrozowicz }, } 1868a9867a6SSlawomir Mrozowicz }, } 1878a9867a6SSlawomir Mrozowicz }, 1888a9867a6SSlawomir Mrozowicz { /* SHA384 HMAC */ 1898a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 1908a9867a6SSlawomir Mrozowicz {.sym = { 1918a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 1928a9867a6SSlawomir Mrozowicz {.auth = { 1938a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA384_HMAC, 1948a9867a6SSlawomir Mrozowicz .block_size = 128, 1958a9867a6SSlawomir Mrozowicz .key_size = { 196e5e7bc71SPablo de Lara .min = 1, 1978a9867a6SSlawomir Mrozowicz .max = 128, 198e5e7bc71SPablo de Lara .increment = 1 1998a9867a6SSlawomir Mrozowicz }, 2008a9867a6SSlawomir Mrozowicz .digest_size = { 201c3d22a65SDmitry Eremin-Solenikov .min = 1, 2028a9867a6SSlawomir Mrozowicz .max = 48, 203c3d22a65SDmitry Eremin-Solenikov .increment = 1 2048a9867a6SSlawomir Mrozowicz }, 205acf86169SPablo de Lara .iv_size = { 0 } 2068a9867a6SSlawomir Mrozowicz }, } 2078a9867a6SSlawomir Mrozowicz }, } 2088a9867a6SSlawomir Mrozowicz }, 2098a9867a6SSlawomir Mrozowicz { /* SHA384 */ 2108a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2118a9867a6SSlawomir Mrozowicz {.sym = { 2128a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2138a9867a6SSlawomir Mrozowicz {.auth = { 2148a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA384, 2158a9867a6SSlawomir Mrozowicz .block_size = 128, 2168a9867a6SSlawomir Mrozowicz .key_size = { 2178a9867a6SSlawomir Mrozowicz .min = 0, 2188a9867a6SSlawomir Mrozowicz .max = 0, 2198a9867a6SSlawomir Mrozowicz .increment = 0 2208a9867a6SSlawomir Mrozowicz }, 2218a9867a6SSlawomir Mrozowicz .digest_size = { 2228a9867a6SSlawomir Mrozowicz .min = 48, 2238a9867a6SSlawomir Mrozowicz .max = 48, 2248a9867a6SSlawomir Mrozowicz .increment = 0 2258a9867a6SSlawomir Mrozowicz }, 226acf86169SPablo de Lara .iv_size = { 0 } 2278a9867a6SSlawomir Mrozowicz }, } 2288a9867a6SSlawomir Mrozowicz }, } 2298a9867a6SSlawomir Mrozowicz }, 2308a9867a6SSlawomir Mrozowicz { /* SHA512 HMAC */ 2318a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2328a9867a6SSlawomir Mrozowicz {.sym = { 2338a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2348a9867a6SSlawomir Mrozowicz {.auth = { 2358a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA512_HMAC, 2368a9867a6SSlawomir Mrozowicz .block_size = 128, 2378a9867a6SSlawomir Mrozowicz .key_size = { 238e5e7bc71SPablo de Lara .min = 1, 2398a9867a6SSlawomir Mrozowicz .max = 128, 240e5e7bc71SPablo de Lara .increment = 1 2418a9867a6SSlawomir Mrozowicz }, 2428a9867a6SSlawomir Mrozowicz .digest_size = { 243c3d22a65SDmitry Eremin-Solenikov .min = 1, 2448a9867a6SSlawomir Mrozowicz .max = 64, 245c3d22a65SDmitry Eremin-Solenikov .increment = 1 2468a9867a6SSlawomir Mrozowicz }, 247acf86169SPablo de Lara .iv_size = { 0 } 2488a9867a6SSlawomir Mrozowicz }, } 2498a9867a6SSlawomir Mrozowicz }, } 2508a9867a6SSlawomir Mrozowicz }, 2518a9867a6SSlawomir Mrozowicz { /* SHA512 */ 2528a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2538a9867a6SSlawomir Mrozowicz {.sym = { 2548a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 2558a9867a6SSlawomir Mrozowicz {.auth = { 2568a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_SHA512, 2578a9867a6SSlawomir Mrozowicz .block_size = 128, 2588a9867a6SSlawomir Mrozowicz .key_size = { 2598a9867a6SSlawomir Mrozowicz .min = 0, 2608a9867a6SSlawomir Mrozowicz .max = 0, 2618a9867a6SSlawomir Mrozowicz .increment = 0 2628a9867a6SSlawomir Mrozowicz }, 2638a9867a6SSlawomir Mrozowicz .digest_size = { 2648a9867a6SSlawomir Mrozowicz .min = 64, 2658a9867a6SSlawomir Mrozowicz .max = 64, 2668a9867a6SSlawomir Mrozowicz .increment = 0 2678a9867a6SSlawomir Mrozowicz }, 268acf86169SPablo de Lara .iv_size = { 0 } 2698a9867a6SSlawomir Mrozowicz }, } 2708a9867a6SSlawomir Mrozowicz }, } 2718a9867a6SSlawomir Mrozowicz }, 2728a9867a6SSlawomir Mrozowicz { /* AES CBC */ 2738a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2748a9867a6SSlawomir Mrozowicz {.sym = { 2758a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 2768a9867a6SSlawomir Mrozowicz {.cipher = { 2778a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_AES_CBC, 2788a9867a6SSlawomir Mrozowicz .block_size = 16, 2798a9867a6SSlawomir Mrozowicz .key_size = { 2808a9867a6SSlawomir Mrozowicz .min = 16, 2818a9867a6SSlawomir Mrozowicz .max = 32, 2828a9867a6SSlawomir Mrozowicz .increment = 8 2838a9867a6SSlawomir Mrozowicz }, 2848a9867a6SSlawomir Mrozowicz .iv_size = { 2858a9867a6SSlawomir Mrozowicz .min = 16, 2868a9867a6SSlawomir Mrozowicz .max = 16, 2878a9867a6SSlawomir Mrozowicz .increment = 0 2888a9867a6SSlawomir Mrozowicz } 2898a9867a6SSlawomir Mrozowicz }, } 2908a9867a6SSlawomir Mrozowicz }, } 2918a9867a6SSlawomir Mrozowicz }, 2928a9867a6SSlawomir Mrozowicz { /* AES CTR */ 2938a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 2948a9867a6SSlawomir Mrozowicz {.sym = { 2958a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 2968a9867a6SSlawomir Mrozowicz {.cipher = { 2978a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_AES_CTR, 2988a9867a6SSlawomir Mrozowicz .block_size = 16, 2998a9867a6SSlawomir Mrozowicz .key_size = { 3008a9867a6SSlawomir Mrozowicz .min = 16, 3018a9867a6SSlawomir Mrozowicz .max = 32, 3028a9867a6SSlawomir Mrozowicz .increment = 8 3038a9867a6SSlawomir Mrozowicz }, 3048a9867a6SSlawomir Mrozowicz .iv_size = { 3058a9867a6SSlawomir Mrozowicz .min = 16, 3068a9867a6SSlawomir Mrozowicz .max = 16, 3078a9867a6SSlawomir Mrozowicz .increment = 0 3088a9867a6SSlawomir Mrozowicz } 3098a9867a6SSlawomir Mrozowicz }, } 3108a9867a6SSlawomir Mrozowicz }, } 3118a9867a6SSlawomir Mrozowicz }, 312b79e4c00SPablo de Lara { /* AES GCM */ 3138a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3148a9867a6SSlawomir Mrozowicz {.sym = { 315b79e4c00SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_AEAD, 316b79e4c00SPablo de Lara {.aead = { 317b79e4c00SPablo de Lara .algo = RTE_CRYPTO_AEAD_AES_GCM, 3188a9867a6SSlawomir Mrozowicz .block_size = 16, 3198a9867a6SSlawomir Mrozowicz .key_size = { 3208a9867a6SSlawomir Mrozowicz .min = 16, 3218a9867a6SSlawomir Mrozowicz .max = 32, 3228a9867a6SSlawomir Mrozowicz .increment = 8 3238a9867a6SSlawomir Mrozowicz }, 3248a9867a6SSlawomir Mrozowicz .digest_size = { 3258a9867a6SSlawomir Mrozowicz .min = 16, 3268a9867a6SSlawomir Mrozowicz .max = 16, 3278a9867a6SSlawomir Mrozowicz .increment = 0 3288a9867a6SSlawomir Mrozowicz }, 3298a9867a6SSlawomir Mrozowicz .aad_size = { 3300625598aSArek Kusztal .min = 0, 3310625598aSArek Kusztal .max = 65535, 3320625598aSArek Kusztal .increment = 1 333acf86169SPablo de Lara }, 3348a9867a6SSlawomir Mrozowicz .iv_size = { 3358a9867a6SSlawomir Mrozowicz .min = 12, 3368a9867a6SSlawomir Mrozowicz .max = 16, 3378a9867a6SSlawomir Mrozowicz .increment = 4 338b79e4c00SPablo de Lara }, 3398a9867a6SSlawomir Mrozowicz }, } 3408a9867a6SSlawomir Mrozowicz }, } 3418a9867a6SSlawomir Mrozowicz }, 3421a4998dcSPablo de Lara { /* AES CCM */ 3431a4998dcSPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3441a4998dcSPablo de Lara {.sym = { 3451a4998dcSPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_AEAD, 3461a4998dcSPablo de Lara {.aead = { 3471a4998dcSPablo de Lara .algo = RTE_CRYPTO_AEAD_AES_CCM, 3481a4998dcSPablo de Lara .block_size = 16, 3491a4998dcSPablo de Lara .key_size = { 3501a4998dcSPablo de Lara .min = 16, 3511a4998dcSPablo de Lara .max = 32, 3521a4998dcSPablo de Lara .increment = 8 3531a4998dcSPablo de Lara }, 3541a4998dcSPablo de Lara .digest_size = { 3551a4998dcSPablo de Lara .min = 4, 3561a4998dcSPablo de Lara .max = 16, 3571a4998dcSPablo de Lara .increment = 2 3581a4998dcSPablo de Lara }, 3591a4998dcSPablo de Lara .aad_size = { 3601a4998dcSPablo de Lara .min = 0, 3611a4998dcSPablo de Lara .max = 65535, 3621a4998dcSPablo de Lara .increment = 1 3631a4998dcSPablo de Lara }, 3641a4998dcSPablo de Lara .iv_size = { 3651a4998dcSPablo de Lara .min = 7, 3661a4998dcSPablo de Lara .max = 13, 3671a4998dcSPablo de Lara .increment = 1 3681a4998dcSPablo de Lara }, 3691a4998dcSPablo de Lara }, } 3701a4998dcSPablo de Lara }, } 3711a4998dcSPablo de Lara }, 3728a9867a6SSlawomir Mrozowicz { /* AES GMAC (AUTH) */ 3738a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3748a9867a6SSlawomir Mrozowicz {.sym = { 3758a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 3768a9867a6SSlawomir Mrozowicz {.auth = { 3778a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_AUTH_AES_GMAC, 3788a9867a6SSlawomir Mrozowicz .block_size = 16, 3798a9867a6SSlawomir Mrozowicz .key_size = { 3808a9867a6SSlawomir Mrozowicz .min = 16, 3818a9867a6SSlawomir Mrozowicz .max = 32, 3828a9867a6SSlawomir Mrozowicz .increment = 8 3838a9867a6SSlawomir Mrozowicz }, 3848a9867a6SSlawomir Mrozowicz .digest_size = { 3858a9867a6SSlawomir Mrozowicz .min = 16, 3868a9867a6SSlawomir Mrozowicz .max = 16, 3878a9867a6SSlawomir Mrozowicz .increment = 0 3888a9867a6SSlawomir Mrozowicz }, 389e32e4fa8SPablo de Lara .iv_size = { 390e32e4fa8SPablo de Lara .min = 12, 391e32e4fa8SPablo de Lara .max = 16, 3928a9867a6SSlawomir Mrozowicz .increment = 4 393e32e4fa8SPablo de Lara } 3948a9867a6SSlawomir Mrozowicz }, } 3958a9867a6SSlawomir Mrozowicz }, } 3968a9867a6SSlawomir Mrozowicz }, 3972b9c693fSAshwin Sekhar T K { /* AES CMAC (AUTH) */ 3982b9c693fSAshwin Sekhar T K .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 3992b9c693fSAshwin Sekhar T K {.sym = { 4002b9c693fSAshwin Sekhar T K .xform_type = RTE_CRYPTO_SYM_XFORM_AUTH, 4012b9c693fSAshwin Sekhar T K {.auth = { 4022b9c693fSAshwin Sekhar T K .algo = RTE_CRYPTO_AUTH_AES_CMAC, 4032b9c693fSAshwin Sekhar T K .block_size = 16, 4042b9c693fSAshwin Sekhar T K .key_size = { 4052b9c693fSAshwin Sekhar T K .min = 16, 4062b9c693fSAshwin Sekhar T K .max = 32, 4072b9c693fSAshwin Sekhar T K .increment = 8 4082b9c693fSAshwin Sekhar T K }, 4092b9c693fSAshwin Sekhar T K .digest_size = { 4102b9c693fSAshwin Sekhar T K .min = 4, 4112b9c693fSAshwin Sekhar T K .max = 16, 4122b9c693fSAshwin Sekhar T K .increment = 4 4132b9c693fSAshwin Sekhar T K }, 4142b9c693fSAshwin Sekhar T K }, } 4152b9c693fSAshwin Sekhar T K }, } 4162b9c693fSAshwin Sekhar T K }, 4178a9867a6SSlawomir Mrozowicz { /* 3DES CBC */ 4188a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4198a9867a6SSlawomir Mrozowicz {.sym = { 4208a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4218a9867a6SSlawomir Mrozowicz {.cipher = { 4228a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_3DES_CBC, 4238a9867a6SSlawomir Mrozowicz .block_size = 8, 4248a9867a6SSlawomir Mrozowicz .key_size = { 4259607e37eSMarko Kovacevic .min = 8, 4268a9867a6SSlawomir Mrozowicz .max = 24, 4278a9867a6SSlawomir Mrozowicz .increment = 8 4288a9867a6SSlawomir Mrozowicz }, 4298a9867a6SSlawomir Mrozowicz .iv_size = { 4308a9867a6SSlawomir Mrozowicz .min = 8, 4318a9867a6SSlawomir Mrozowicz .max = 8, 4328a9867a6SSlawomir Mrozowicz .increment = 0 4338a9867a6SSlawomir Mrozowicz } 4348a9867a6SSlawomir Mrozowicz }, } 4358a9867a6SSlawomir Mrozowicz }, } 4368a9867a6SSlawomir Mrozowicz }, 4378a9867a6SSlawomir Mrozowicz { /* 3DES CTR */ 4388a9867a6SSlawomir Mrozowicz .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4398a9867a6SSlawomir Mrozowicz {.sym = { 4408a9867a6SSlawomir Mrozowicz .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4418a9867a6SSlawomir Mrozowicz {.cipher = { 4428a9867a6SSlawomir Mrozowicz .algo = RTE_CRYPTO_CIPHER_3DES_CTR, 4438a9867a6SSlawomir Mrozowicz .block_size = 8, 4448a9867a6SSlawomir Mrozowicz .key_size = { 4458a9867a6SSlawomir Mrozowicz .min = 16, 4468a9867a6SSlawomir Mrozowicz .max = 24, 4478a9867a6SSlawomir Mrozowicz .increment = 8 4488a9867a6SSlawomir Mrozowicz }, 4498a9867a6SSlawomir Mrozowicz .iv_size = { 4508a9867a6SSlawomir Mrozowicz .min = 8, 4518a9867a6SSlawomir Mrozowicz .max = 8, 4528a9867a6SSlawomir Mrozowicz .increment = 0 4538a9867a6SSlawomir Mrozowicz } 4548a9867a6SSlawomir Mrozowicz }, } 4558a9867a6SSlawomir Mrozowicz }, } 4568a9867a6SSlawomir Mrozowicz }, 457c1734807SPablo de Lara { /* DES CBC */ 458c1734807SPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 459c1734807SPablo de Lara {.sym = { 460c1734807SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 461c1734807SPablo de Lara {.cipher = { 462c1734807SPablo de Lara .algo = RTE_CRYPTO_CIPHER_DES_CBC, 463c1734807SPablo de Lara .block_size = 8, 464c1734807SPablo de Lara .key_size = { 465c1734807SPablo de Lara .min = 8, 466c1734807SPablo de Lara .max = 8, 467c1734807SPablo de Lara .increment = 0 468c1734807SPablo de Lara }, 469c1734807SPablo de Lara .iv_size = { 470c1734807SPablo de Lara .min = 8, 471c1734807SPablo de Lara .max = 8, 472c1734807SPablo de Lara .increment = 0 473c1734807SPablo de Lara } 474c1734807SPablo de Lara }, } 475c1734807SPablo de Lara }, } 476c1734807SPablo de Lara }, 4771dee7bc7SPablo de Lara { /* DES DOCSIS BPI */ 4781dee7bc7SPablo de Lara .op = RTE_CRYPTO_OP_TYPE_SYMMETRIC, 4791dee7bc7SPablo de Lara {.sym = { 4801dee7bc7SPablo de Lara .xform_type = RTE_CRYPTO_SYM_XFORM_CIPHER, 4811dee7bc7SPablo de Lara {.cipher = { 4821dee7bc7SPablo de Lara .algo = RTE_CRYPTO_CIPHER_DES_DOCSISBPI, 4831dee7bc7SPablo de Lara .block_size = 8, 4841dee7bc7SPablo de Lara .key_size = { 4851dee7bc7SPablo de Lara .min = 8, 4861dee7bc7SPablo de Lara .max = 8, 4871dee7bc7SPablo de Lara .increment = 0 4881dee7bc7SPablo de Lara }, 4891dee7bc7SPablo de Lara .iv_size = { 4901dee7bc7SPablo de Lara .min = 8, 4911dee7bc7SPablo de Lara .max = 8, 4921dee7bc7SPablo de Lara .increment = 0 4931dee7bc7SPablo de Lara } 4941dee7bc7SPablo de Lara }, } 4951dee7bc7SPablo de Lara }, } 4961dee7bc7SPablo de Lara }, 4973e9d6bd4SSunila Sahu { /* RSA */ 4983e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 4993e9d6bd4SSunila Sahu {.asym = { 5003e9d6bd4SSunila Sahu .xform_capa = { 5013e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_RSA, 5023e9d6bd4SSunila Sahu .op_types = ((1 << RTE_CRYPTO_ASYM_OP_SIGN) | 5033e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_VERIFY) | 5043e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_ENCRYPT) | 5053e9d6bd4SSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_DECRYPT)), 5063e9d6bd4SSunila Sahu { 5073e9d6bd4SSunila Sahu .modlen = { 5083e9d6bd4SSunila Sahu /* min length is based on openssl rsa keygen */ 5093e9d6bd4SSunila Sahu .min = 30, 5103e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5113e9d6bd4SSunila Sahu .max = 0, 5123e9d6bd4SSunila Sahu .increment = 1 5133e9d6bd4SSunila Sahu }, } 5143e9d6bd4SSunila Sahu } 5153e9d6bd4SSunila Sahu }, 5163e9d6bd4SSunila Sahu } 5173e9d6bd4SSunila Sahu }, 5183e9d6bd4SSunila Sahu { /* modexp */ 5193e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 5203e9d6bd4SSunila Sahu {.asym = { 5213e9d6bd4SSunila Sahu .xform_capa = { 5223e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_MODEX, 5233e9d6bd4SSunila Sahu .op_types = 0, 5243e9d6bd4SSunila Sahu { 5253e9d6bd4SSunila Sahu .modlen = { 5263e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on min length */ 5273e9d6bd4SSunila Sahu .min = 0, 5283e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5293e9d6bd4SSunila Sahu .max = 0, 5303e9d6bd4SSunila Sahu .increment = 1 5313e9d6bd4SSunila Sahu }, } 5323e9d6bd4SSunila Sahu } 5333e9d6bd4SSunila Sahu }, 5343e9d6bd4SSunila Sahu } 5353e9d6bd4SSunila Sahu }, 5363e9d6bd4SSunila Sahu { /* modinv */ 5373e9d6bd4SSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 5383e9d6bd4SSunila Sahu {.asym = { 5393e9d6bd4SSunila Sahu .xform_capa = { 5403e9d6bd4SSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_MODINV, 5413e9d6bd4SSunila Sahu .op_types = 0, 5423e9d6bd4SSunila Sahu { 5433e9d6bd4SSunila Sahu .modlen = { 5443e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on min length */ 5453e9d6bd4SSunila Sahu .min = 0, 5463e9d6bd4SSunila Sahu /* value 0 symbolizes no limit on max length */ 5473e9d6bd4SSunila Sahu .max = 0, 5483e9d6bd4SSunila Sahu .increment = 1 5493e9d6bd4SSunila Sahu }, } 5503e9d6bd4SSunila Sahu } 5513e9d6bd4SSunila Sahu }, 5523e9d6bd4SSunila Sahu } 5533e9d6bd4SSunila Sahu }, 554ac42813aSSunila Sahu { /* dh */ 555ac42813aSSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 556ac42813aSSunila Sahu {.asym = { 557ac42813aSSunila Sahu .xform_capa = { 558ac42813aSSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_DH, 559ac42813aSSunila Sahu .op_types = 5605fa1fb29SArek Kusztal ((1<<RTE_CRYPTO_ASYM_KE_PRIV_KEY_GENERATE) | 5615fa1fb29SArek Kusztal (1 << RTE_CRYPTO_ASYM_KE_PUB_KEY_GENERATE | 562ac42813aSSunila Sahu (1 << 5635fa1fb29SArek Kusztal RTE_CRYPTO_ASYM_KE_SHARED_SECRET_COMPUTE))), 564ac42813aSSunila Sahu { 565ac42813aSSunila Sahu .modlen = { 566ac42813aSSunila Sahu /* value 0 symbolizes no limit on min length */ 567ac42813aSSunila Sahu .min = 0, 568ac42813aSSunila Sahu /* value 0 symbolizes no limit on max length */ 569ac42813aSSunila Sahu .max = 0, 570ac42813aSSunila Sahu .increment = 1 571ac42813aSSunila Sahu }, } 572ac42813aSSunila Sahu } 573ac42813aSSunila Sahu }, 574ac42813aSSunila Sahu } 575ac42813aSSunila Sahu }, 576ac42813aSSunila Sahu { /* dsa */ 577ac42813aSSunila Sahu .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 578ac42813aSSunila Sahu {.asym = { 579ac42813aSSunila Sahu .xform_capa = { 580ac42813aSSunila Sahu .xform_type = RTE_CRYPTO_ASYM_XFORM_DSA, 581ac42813aSSunila Sahu .op_types = 582ac42813aSSunila Sahu ((1<<RTE_CRYPTO_ASYM_OP_SIGN) | 583ac42813aSSunila Sahu (1 << RTE_CRYPTO_ASYM_OP_VERIFY)), 584ac42813aSSunila Sahu { 585ac42813aSSunila Sahu .modlen = { 586ac42813aSSunila Sahu /* value 0 symbolizes no limit on min length */ 587ac42813aSSunila Sahu .min = 0, 588ac42813aSSunila Sahu /* value 0 symbolizes no limit on max length */ 589ac42813aSSunila Sahu .max = 0, 590ac42813aSSunila Sahu .increment = 1 591ac42813aSSunila Sahu }, } 592ac42813aSSunila Sahu } 593ac42813aSSunila Sahu }, 594ac42813aSSunila Sahu } 595ac42813aSSunila Sahu }, 596e8f9c5c8SGowrishankar Muthukrishnan { /* SM2 */ 597e8f9c5c8SGowrishankar Muthukrishnan .op = RTE_CRYPTO_OP_TYPE_ASYMMETRIC, 598e8f9c5c8SGowrishankar Muthukrishnan {.asym = { 599e8f9c5c8SGowrishankar Muthukrishnan .xform_capa = { 600e8f9c5c8SGowrishankar Muthukrishnan .xform_type = RTE_CRYPTO_ASYM_XFORM_SM2, 6016f8ef8b6SGowrishankar Muthukrishnan .hash_algos = (1 << RTE_CRYPTO_AUTH_SM3), 602e8f9c5c8SGowrishankar Muthukrishnan .op_types = 603e8f9c5c8SGowrishankar Muthukrishnan ((1<<RTE_CRYPTO_ASYM_OP_SIGN) | 604e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_VERIFY) | 605e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_ENCRYPT) | 606e8f9c5c8SGowrishankar Muthukrishnan (1 << RTE_CRYPTO_ASYM_OP_DECRYPT)), 6071a0ef807SGowrishankar Muthukrishnan {.internal_rng = 1 6081a0ef807SGowrishankar Muthukrishnan } 609e8f9c5c8SGowrishankar Muthukrishnan } 610e8f9c5c8SGowrishankar Muthukrishnan } 611e8f9c5c8SGowrishankar Muthukrishnan } 612e8f9c5c8SGowrishankar Muthukrishnan }, 6138a9867a6SSlawomir Mrozowicz 6148a9867a6SSlawomir Mrozowicz RTE_CRYPTODEV_END_OF_CAPABILITIES_LIST() 6158a9867a6SSlawomir Mrozowicz }; 6168a9867a6SSlawomir Mrozowicz 6178a9867a6SSlawomir Mrozowicz 6188a9867a6SSlawomir Mrozowicz /** Configure device */ 6198a9867a6SSlawomir Mrozowicz static int 62060e686c2SFan Zhang openssl_pmd_config(__rte_unused struct rte_cryptodev *dev, 62160e686c2SFan Zhang __rte_unused struct rte_cryptodev_config *config) 6228a9867a6SSlawomir Mrozowicz { 6238a9867a6SSlawomir Mrozowicz return 0; 6248a9867a6SSlawomir Mrozowicz } 6258a9867a6SSlawomir Mrozowicz 6268a9867a6SSlawomir Mrozowicz /** Start device */ 6278a9867a6SSlawomir Mrozowicz static int 6288a9867a6SSlawomir Mrozowicz openssl_pmd_start(__rte_unused struct rte_cryptodev *dev) 6298a9867a6SSlawomir Mrozowicz { 6308a9867a6SSlawomir Mrozowicz return 0; 6318a9867a6SSlawomir Mrozowicz } 6328a9867a6SSlawomir Mrozowicz 6338a9867a6SSlawomir Mrozowicz /** Stop device */ 6348a9867a6SSlawomir Mrozowicz static void 6358a9867a6SSlawomir Mrozowicz openssl_pmd_stop(__rte_unused struct rte_cryptodev *dev) 6368a9867a6SSlawomir Mrozowicz { 6378a9867a6SSlawomir Mrozowicz } 6388a9867a6SSlawomir Mrozowicz 6398a9867a6SSlawomir Mrozowicz /** Close device */ 6408a9867a6SSlawomir Mrozowicz static int 6418a9867a6SSlawomir Mrozowicz openssl_pmd_close(__rte_unused struct rte_cryptodev *dev) 6428a9867a6SSlawomir Mrozowicz { 6438a9867a6SSlawomir Mrozowicz return 0; 6448a9867a6SSlawomir Mrozowicz } 6458a9867a6SSlawomir Mrozowicz 6468a9867a6SSlawomir Mrozowicz 6478a9867a6SSlawomir Mrozowicz /** Get device statistics */ 6488a9867a6SSlawomir Mrozowicz static void 6498a9867a6SSlawomir Mrozowicz openssl_pmd_stats_get(struct rte_cryptodev *dev, 6508a9867a6SSlawomir Mrozowicz struct rte_cryptodev_stats *stats) 6518a9867a6SSlawomir Mrozowicz { 6528a9867a6SSlawomir Mrozowicz int qp_id; 6538a9867a6SSlawomir Mrozowicz 6548a9867a6SSlawomir Mrozowicz for (qp_id = 0; qp_id < dev->data->nb_queue_pairs; qp_id++) { 6558a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 6568a9867a6SSlawomir Mrozowicz 6578a9867a6SSlawomir Mrozowicz stats->enqueued_count += qp->stats.enqueued_count; 6588a9867a6SSlawomir Mrozowicz stats->dequeued_count += qp->stats.dequeued_count; 6598a9867a6SSlawomir Mrozowicz 6608a9867a6SSlawomir Mrozowicz stats->enqueue_err_count += qp->stats.enqueue_err_count; 6618a9867a6SSlawomir Mrozowicz stats->dequeue_err_count += qp->stats.dequeue_err_count; 6628a9867a6SSlawomir Mrozowicz } 6638a9867a6SSlawomir Mrozowicz } 6648a9867a6SSlawomir Mrozowicz 6658a9867a6SSlawomir Mrozowicz /** Reset device statistics */ 6668a9867a6SSlawomir Mrozowicz static void 6678a9867a6SSlawomir Mrozowicz openssl_pmd_stats_reset(struct rte_cryptodev *dev) 6688a9867a6SSlawomir Mrozowicz { 6698a9867a6SSlawomir Mrozowicz int qp_id; 6708a9867a6SSlawomir Mrozowicz 6718a9867a6SSlawomir Mrozowicz for (qp_id = 0; qp_id < dev->data->nb_queue_pairs; qp_id++) { 6728a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 6738a9867a6SSlawomir Mrozowicz 6748a9867a6SSlawomir Mrozowicz memset(&qp->stats, 0, sizeof(qp->stats)); 6758a9867a6SSlawomir Mrozowicz } 6768a9867a6SSlawomir Mrozowicz } 6778a9867a6SSlawomir Mrozowicz 6788a9867a6SSlawomir Mrozowicz 6798a9867a6SSlawomir Mrozowicz /** Get device info */ 6808a9867a6SSlawomir Mrozowicz static void 6818a9867a6SSlawomir Mrozowicz openssl_pmd_info_get(struct rte_cryptodev *dev, 6828a9867a6SSlawomir Mrozowicz struct rte_cryptodev_info *dev_info) 6838a9867a6SSlawomir Mrozowicz { 6848a9867a6SSlawomir Mrozowicz struct openssl_private *internals = dev->data->dev_private; 6858a9867a6SSlawomir Mrozowicz 6868a9867a6SSlawomir Mrozowicz if (dev_info != NULL) { 6877a364faeSSlawomir Mrozowicz dev_info->driver_id = dev->driver_id; 6888a9867a6SSlawomir Mrozowicz dev_info->feature_flags = dev->feature_flags; 6898a9867a6SSlawomir Mrozowicz dev_info->capabilities = openssl_pmd_capabilities; 6908a9867a6SSlawomir Mrozowicz dev_info->max_nb_queue_pairs = internals->max_nb_qpairs; 691e1fc5b76SPablo de Lara /* No limit of number of sessions */ 692e1fc5b76SPablo de Lara dev_info->sym.max_nb_sessions = 0; 6938a9867a6SSlawomir Mrozowicz } 6948a9867a6SSlawomir Mrozowicz } 6958a9867a6SSlawomir Mrozowicz 6968a9867a6SSlawomir Mrozowicz /** Release queue pair */ 6978a9867a6SSlawomir Mrozowicz static int 6988a9867a6SSlawomir Mrozowicz openssl_pmd_qp_release(struct rte_cryptodev *dev, uint16_t qp_id) 6998a9867a6SSlawomir Mrozowicz { 7008a9867a6SSlawomir Mrozowicz if (dev->data->queue_pairs[qp_id] != NULL) { 701a4d69a51SFan Zhang struct openssl_qp *qp = dev->data->queue_pairs[qp_id]; 702a4d69a51SFan Zhang 703a4d69a51SFan Zhang rte_ring_free(qp->processed_ops); 704a4d69a51SFan Zhang 7058a9867a6SSlawomir Mrozowicz rte_free(dev->data->queue_pairs[qp_id]); 7068a9867a6SSlawomir Mrozowicz dev->data->queue_pairs[qp_id] = NULL; 7078a9867a6SSlawomir Mrozowicz } 7088a9867a6SSlawomir Mrozowicz return 0; 7098a9867a6SSlawomir Mrozowicz } 7108a9867a6SSlawomir Mrozowicz 7118a9867a6SSlawomir Mrozowicz /** set a unique name for the queue pair based on it's name, dev_id and qp_id */ 7128a9867a6SSlawomir Mrozowicz static int 7138a9867a6SSlawomir Mrozowicz openssl_pmd_qp_set_unique_name(struct rte_cryptodev *dev, 7148a9867a6SSlawomir Mrozowicz struct openssl_qp *qp) 7158a9867a6SSlawomir Mrozowicz { 7168a9867a6SSlawomir Mrozowicz unsigned int n = snprintf(qp->name, sizeof(qp->name), 7178a9867a6SSlawomir Mrozowicz "openssl_pmd_%u_qp_%u", 7188a9867a6SSlawomir Mrozowicz dev->data->dev_id, qp->id); 7198a9867a6SSlawomir Mrozowicz 7206ab25e63STomasz Duszynski if (n >= sizeof(qp->name)) 7218a9867a6SSlawomir Mrozowicz return -1; 7228a9867a6SSlawomir Mrozowicz 7238a9867a6SSlawomir Mrozowicz return 0; 7248a9867a6SSlawomir Mrozowicz } 7258a9867a6SSlawomir Mrozowicz 7268a9867a6SSlawomir Mrozowicz 7278a9867a6SSlawomir Mrozowicz /** Create a ring to place processed operations on */ 7288a9867a6SSlawomir Mrozowicz static struct rte_ring * 7298a9867a6SSlawomir Mrozowicz openssl_pmd_qp_create_processed_ops_ring(struct openssl_qp *qp, 7308a9867a6SSlawomir Mrozowicz unsigned int ring_size, int socket_id) 7318a9867a6SSlawomir Mrozowicz { 7328a9867a6SSlawomir Mrozowicz struct rte_ring *r; 7338a9867a6SSlawomir Mrozowicz 7348a9867a6SSlawomir Mrozowicz r = rte_ring_lookup(qp->name); 7358a9867a6SSlawomir Mrozowicz if (r) { 736636e7392SBruce Richardson if (rte_ring_get_size(r) >= ring_size) { 737094b2386SNaga Suresh Somarowthu OPENSSL_LOG(INFO, 7388a9867a6SSlawomir Mrozowicz "Reusing existing ring %s for processed ops", 7398a9867a6SSlawomir Mrozowicz qp->name); 7408a9867a6SSlawomir Mrozowicz return r; 7418a9867a6SSlawomir Mrozowicz } 7428a9867a6SSlawomir Mrozowicz 743094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, 7448a9867a6SSlawomir Mrozowicz "Unable to reuse existing ring %s for processed ops", 7458a9867a6SSlawomir Mrozowicz qp->name); 7468a9867a6SSlawomir Mrozowicz return NULL; 7478a9867a6SSlawomir Mrozowicz } 7488a9867a6SSlawomir Mrozowicz 7498a9867a6SSlawomir Mrozowicz return rte_ring_create(qp->name, ring_size, socket_id, 7508a9867a6SSlawomir Mrozowicz RING_F_SP_ENQ | RING_F_SC_DEQ); 7518a9867a6SSlawomir Mrozowicz } 7528a9867a6SSlawomir Mrozowicz 7538a9867a6SSlawomir Mrozowicz 7548a9867a6SSlawomir Mrozowicz /** Setup a queue pair */ 7558a9867a6SSlawomir Mrozowicz static int 7568a9867a6SSlawomir Mrozowicz openssl_pmd_qp_setup(struct rte_cryptodev *dev, uint16_t qp_id, 7578a9867a6SSlawomir Mrozowicz const struct rte_cryptodev_qp_conf *qp_conf, 758725d2a7fSFan Zhang int socket_id) 7598a9867a6SSlawomir Mrozowicz { 7608a9867a6SSlawomir Mrozowicz struct openssl_qp *qp = NULL; 7618a9867a6SSlawomir Mrozowicz 7628a9867a6SSlawomir Mrozowicz /* Free memory prior to re-allocation if needed. */ 7638a9867a6SSlawomir Mrozowicz if (dev->data->queue_pairs[qp_id] != NULL) 7648a9867a6SSlawomir Mrozowicz openssl_pmd_qp_release(dev, qp_id); 7658a9867a6SSlawomir Mrozowicz 7668a9867a6SSlawomir Mrozowicz /* Allocate the queue pair data structure. */ 7678a9867a6SSlawomir Mrozowicz qp = rte_zmalloc_socket("OPENSSL PMD Queue Pair", sizeof(*qp), 7688a9867a6SSlawomir Mrozowicz RTE_CACHE_LINE_SIZE, socket_id); 7698a9867a6SSlawomir Mrozowicz if (qp == NULL) 7708a9867a6SSlawomir Mrozowicz return -ENOMEM; 7718a9867a6SSlawomir Mrozowicz 7728a9867a6SSlawomir Mrozowicz qp->id = qp_id; 7738a9867a6SSlawomir Mrozowicz dev->data->queue_pairs[qp_id] = qp; 7748a9867a6SSlawomir Mrozowicz 7758a9867a6SSlawomir Mrozowicz if (openssl_pmd_qp_set_unique_name(dev, qp)) 7768a9867a6SSlawomir Mrozowicz goto qp_setup_cleanup; 7778a9867a6SSlawomir Mrozowicz 7788a9867a6SSlawomir Mrozowicz qp->processed_ops = openssl_pmd_qp_create_processed_ops_ring(qp, 7798a9867a6SSlawomir Mrozowicz qp_conf->nb_descriptors, socket_id); 7808a9867a6SSlawomir Mrozowicz if (qp->processed_ops == NULL) 7818a9867a6SSlawomir Mrozowicz goto qp_setup_cleanup; 7828a9867a6SSlawomir Mrozowicz 783725d2a7fSFan Zhang qp->sess_mp = qp_conf->mp_session; 7848a9867a6SSlawomir Mrozowicz 7858a9867a6SSlawomir Mrozowicz memset(&qp->stats, 0, sizeof(qp->stats)); 7868a9867a6SSlawomir Mrozowicz 7878a9867a6SSlawomir Mrozowicz return 0; 7888a9867a6SSlawomir Mrozowicz 7898a9867a6SSlawomir Mrozowicz qp_setup_cleanup: 7908a9867a6SSlawomir Mrozowicz rte_free(qp); 7918a9867a6SSlawomir Mrozowicz 7928a9867a6SSlawomir Mrozowicz return -1; 7938a9867a6SSlawomir Mrozowicz } 7948a9867a6SSlawomir Mrozowicz 7953e9d6bd4SSunila Sahu /** Returns the size of the symmetric session structure */ 7968a9867a6SSlawomir Mrozowicz static unsigned 797b1d71126SJack Bond-Preston openssl_pmd_sym_session_get_size(struct rte_cryptodev *dev) 7988a9867a6SSlawomir Mrozowicz { 799b1d71126SJack Bond-Preston /* 800b1d71126SJack Bond-Preston * For 0 qps, return the max size of the session - this is necessary if 801b1d71126SJack Bond-Preston * the user calls into this function to create the session mempool, 802b1d71126SJack Bond-Preston * without first configuring the number of qps for the cryptodev. 803b1d71126SJack Bond-Preston */ 804b1d71126SJack Bond-Preston if (dev->data->nb_queue_pairs == 0) { 805b1d71126SJack Bond-Preston unsigned int max_nb_qps = ((struct openssl_private *) 806b1d71126SJack Bond-Preston dev->data->dev_private)->max_nb_qpairs; 807b1d71126SJack Bond-Preston return sizeof(struct openssl_session) + 80817d5bc61SJack Bond-Preston (sizeof(struct evp_ctx_pair) * max_nb_qps); 809b1d71126SJack Bond-Preston } 810b1d71126SJack Bond-Preston 811b1d71126SJack Bond-Preston /* 812b1d71126SJack Bond-Preston * With only one queue pair, the thread safety of multiple context 813b1d71126SJack Bond-Preston * copies is not necessary, so don't allocate extra memory for the 814b1d71126SJack Bond-Preston * array. 815b1d71126SJack Bond-Preston */ 816b1d71126SJack Bond-Preston if (dev->data->nb_queue_pairs == 1) 8178a9867a6SSlawomir Mrozowicz return sizeof(struct openssl_session); 818b1d71126SJack Bond-Preston 819b1d71126SJack Bond-Preston /* 820b1d71126SJack Bond-Preston * Otherwise, the size of the flexible array member should be enough to 82117d5bc61SJack Bond-Preston * fit pointers to per-qp contexts. This is twice the number of queue 82217d5bc61SJack Bond-Preston * pairs, to allow for auth and cipher contexts. 823b1d71126SJack Bond-Preston */ 824b1d71126SJack Bond-Preston return sizeof(struct openssl_session) + 82517d5bc61SJack Bond-Preston (sizeof(struct evp_ctx_pair) * dev->data->nb_queue_pairs); 8268a9867a6SSlawomir Mrozowicz } 8278a9867a6SSlawomir Mrozowicz 8283e9d6bd4SSunila Sahu /** Returns the size of the asymmetric session structure */ 8293e9d6bd4SSunila Sahu static unsigned 8303e9d6bd4SSunila Sahu openssl_pmd_asym_session_get_size(struct rte_cryptodev *dev __rte_unused) 8313e9d6bd4SSunila Sahu { 8323e9d6bd4SSunila Sahu return sizeof(struct openssl_asym_session); 8333e9d6bd4SSunila Sahu } 8343e9d6bd4SSunila Sahu 8358a9867a6SSlawomir Mrozowicz /** Configure the session from a crypto xform chain */ 836b3bbd9e5SSlawomir Mrozowicz static int 837b1d71126SJack Bond-Preston openssl_pmd_sym_session_configure(struct rte_cryptodev *dev, 838b3bbd9e5SSlawomir Mrozowicz struct rte_crypto_sym_xform *xform, 839bdce2564SAkhil Goyal struct rte_cryptodev_sym_session *sess) 8408a9867a6SSlawomir Mrozowicz { 8412a440d6aSAkhil Goyal void *sess_private_data = CRYPTODEV_GET_SYM_SESS_PRIV(sess); 84227391b53SPablo de Lara int ret; 843b3bbd9e5SSlawomir Mrozowicz 8448a9867a6SSlawomir Mrozowicz if (unlikely(sess == NULL)) { 845094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, "invalid session struct"); 84627391b53SPablo de Lara return -EINVAL; 847b3bbd9e5SSlawomir Mrozowicz } 848b3bbd9e5SSlawomir Mrozowicz 849b1d71126SJack Bond-Preston ret = openssl_set_session_parameters(sess_private_data, xform, 850b1d71126SJack Bond-Preston dev->data->nb_queue_pairs); 85127391b53SPablo de Lara if (ret != 0) { 852094b2386SNaga Suresh Somarowthu OPENSSL_LOG(ERR, "failed configure session parameters"); 853b3bbd9e5SSlawomir Mrozowicz 854b3bbd9e5SSlawomir Mrozowicz /* Return session to mempool */ 85527391b53SPablo de Lara return ret; 8568a9867a6SSlawomir Mrozowicz } 8578a9867a6SSlawomir Mrozowicz 858b3bbd9e5SSlawomir Mrozowicz return 0; 8598a9867a6SSlawomir Mrozowicz } 8608a9867a6SSlawomir Mrozowicz 8613e9d6bd4SSunila Sahu static int openssl_set_asym_session_parameters( 8623e9d6bd4SSunila Sahu struct openssl_asym_session *asym_session, 8633e9d6bd4SSunila Sahu struct rte_crypto_asym_xform *xform) 8643e9d6bd4SSunila Sahu { 8654c7ae22fSKai Ji int ret = -1; 8663e9d6bd4SSunila Sahu 867ac42813aSSunila Sahu if ((xform->xform_type != RTE_CRYPTO_ASYM_XFORM_DH) && 868ac42813aSSunila Sahu (xform->next != NULL)) { 8693e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "chained xfrms are not supported on %s", 8707e1e1277SAkhil Goyal rte_cryptodev_asym_get_xform_string(xform->xform_type)); 8714c7ae22fSKai Ji return ret; 8723e9d6bd4SSunila Sahu } 8733e9d6bd4SSunila Sahu 8743e9d6bd4SSunila Sahu switch (xform->xform_type) { 8753e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_RSA: 8763e9d6bd4SSunila Sahu { 8773e9d6bd4SSunila Sahu BIGNUM *n = NULL; 8783e9d6bd4SSunila Sahu BIGNUM *e = NULL; 8793e9d6bd4SSunila Sahu BIGNUM *d = NULL; 8803e9d6bd4SSunila Sahu BIGNUM *p = NULL, *q = NULL, *dmp1 = NULL; 8813e9d6bd4SSunila Sahu BIGNUM *iqmp = NULL, *dmq1 = NULL; 8823e9d6bd4SSunila Sahu 8833e9d6bd4SSunila Sahu /* copy xfrm data into rsa struct */ 8843e9d6bd4SSunila Sahu n = BN_bin2bn((const unsigned char *)xform->rsa.n.data, 8853e9d6bd4SSunila Sahu xform->rsa.n.length, n); 8863e9d6bd4SSunila Sahu e = BN_bin2bn((const unsigned char *)xform->rsa.e.data, 8873e9d6bd4SSunila Sahu xform->rsa.e.length, e); 8883e9d6bd4SSunila Sahu 8893e9d6bd4SSunila Sahu if (!n || !e) 8903e9d6bd4SSunila Sahu goto err_rsa; 8913e9d6bd4SSunila Sahu 892d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 893d7bd42f6SKai Ji OSSL_PARAM_BLD * param_bld = OSSL_PARAM_BLD_new(); 894d7bd42f6SKai Ji if (!param_bld) { 895*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 896d7bd42f6SKai Ji goto err_rsa; 897d7bd42f6SKai Ji } 898d7bd42f6SKai Ji 899d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_N, n) 900d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 901d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_E, e)) { 902d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 903*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 904d7bd42f6SKai Ji goto err_rsa; 905d7bd42f6SKai Ji } 906d7bd42f6SKai Ji 907d7bd42f6SKai Ji if (xform->rsa.key_type == RTE_RSA_KEY_TYPE_EXP) { 908d7bd42f6SKai Ji d = BN_bin2bn( 909d7bd42f6SKai Ji (const unsigned char *)xform->rsa.d.data, 910d7bd42f6SKai Ji xform->rsa.d.length, 911d7bd42f6SKai Ji d); 912d7bd42f6SKai Ji if (!d) { 913d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 914d7bd42f6SKai Ji goto err_rsa; 915d7bd42f6SKai Ji } 916d7bd42f6SKai Ji } else { 917d7bd42f6SKai Ji p = BN_bin2bn((const unsigned char *) 918d7bd42f6SKai Ji xform->rsa.qt.p.data, 919d7bd42f6SKai Ji xform->rsa.qt.p.length, 920d7bd42f6SKai Ji p); 921d7bd42f6SKai Ji q = BN_bin2bn((const unsigned char *) 922d7bd42f6SKai Ji xform->rsa.qt.q.data, 923d7bd42f6SKai Ji xform->rsa.qt.q.length, 924d7bd42f6SKai Ji q); 925d7bd42f6SKai Ji dmp1 = BN_bin2bn((const unsigned char *) 926d7bd42f6SKai Ji xform->rsa.qt.dP.data, 927d7bd42f6SKai Ji xform->rsa.qt.dP.length, 928d7bd42f6SKai Ji dmp1); 929d7bd42f6SKai Ji dmq1 = BN_bin2bn((const unsigned char *) 930d7bd42f6SKai Ji xform->rsa.qt.dQ.data, 931d7bd42f6SKai Ji xform->rsa.qt.dQ.length, 932d7bd42f6SKai Ji dmq1); 933d7bd42f6SKai Ji iqmp = BN_bin2bn((const unsigned char *) 934d7bd42f6SKai Ji xform->rsa.qt.qInv.data, 935d7bd42f6SKai Ji xform->rsa.qt.qInv.length, 936d7bd42f6SKai Ji iqmp); 937d7bd42f6SKai Ji 938d7bd42f6SKai Ji if (!p || !q || !dmp1 || !dmq1 || !iqmp) { 939d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 940d7bd42f6SKai Ji goto err_rsa; 941d7bd42f6SKai Ji } 942d7bd42f6SKai Ji 943d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, 944d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_FACTOR1, p) 945d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 946d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_FACTOR2, q) 947d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 948d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_EXPONENT1, dmp1) 949d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 950d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_EXPONENT2, dmq1) 951d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 952d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_COEFFICIENT1, iqmp)) { 953d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 954d7bd42f6SKai Ji goto err_rsa; 955d7bd42f6SKai Ji } 956d7bd42f6SKai Ji } 957d7bd42f6SKai Ji 958d7bd42f6SKai Ji if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_N, n) 959d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_RSA_E, e) 960d7bd42f6SKai Ji || !OSSL_PARAM_BLD_push_BN(param_bld, 961d7bd42f6SKai Ji OSSL_PKEY_PARAM_RSA_D, d)) { 962d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 963d7bd42f6SKai Ji goto err_rsa; 964d7bd42f6SKai Ji } 965d7bd42f6SKai Ji 966d7bd42f6SKai Ji EVP_PKEY_CTX *key_ctx = EVP_PKEY_CTX_new_from_name(NULL, "RSA", NULL); 967d7bd42f6SKai Ji EVP_PKEY *pkey = NULL; 968d7bd42f6SKai Ji EVP_PKEY_CTX *rsa_ctx = NULL; 969d7bd42f6SKai Ji OSSL_PARAM *params = NULL; 970d7bd42f6SKai Ji 971d7bd42f6SKai Ji params = OSSL_PARAM_BLD_to_param(param_bld); 972d7bd42f6SKai Ji if (!params) { 973d7bd42f6SKai Ji OSSL_PARAM_BLD_free(param_bld); 974d7bd42f6SKai Ji goto err_rsa; 975d7bd42f6SKai Ji } 976d7bd42f6SKai Ji 977d7bd42f6SKai Ji if (key_ctx == NULL 978d7bd42f6SKai Ji || EVP_PKEY_fromdata_init(key_ctx) <= 0 979d7bd42f6SKai Ji || EVP_PKEY_fromdata(key_ctx, &pkey, 980d7bd42f6SKai Ji EVP_PKEY_KEYPAIR, params) <= 0) { 981d7bd42f6SKai Ji OSSL_PARAM_free(params); 982d7bd42f6SKai Ji goto err_rsa; 983d7bd42f6SKai Ji } 984d7bd42f6SKai Ji 985d7bd42f6SKai Ji rsa_ctx = EVP_PKEY_CTX_new(pkey, NULL); 986d7bd42f6SKai Ji asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_RSA; 987d7bd42f6SKai Ji asym_session->u.r.ctx = rsa_ctx; 9889d91c304SGowrishankar Muthukrishnan EVP_PKEY_free(pkey); 989d7bd42f6SKai Ji EVP_PKEY_CTX_free(key_ctx); 9909d91c304SGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(param_bld); 991d7bd42f6SKai Ji OSSL_PARAM_free(params); 9929d91c304SGowrishankar Muthukrishnan ret = 0; 993d7bd42f6SKai Ji #else 9943e9d6bd4SSunila Sahu RSA *rsa = RSA_new(); 9953e9d6bd4SSunila Sahu if (rsa == NULL) 9963e9d6bd4SSunila Sahu goto err_rsa; 9973e9d6bd4SSunila Sahu 9983e9d6bd4SSunila Sahu if (xform->rsa.key_type == RTE_RSA_KEY_TYPE_EXP) { 9993e9d6bd4SSunila Sahu d = BN_bin2bn( 10003e9d6bd4SSunila Sahu (const unsigned char *)xform->rsa.d.data, 10013e9d6bd4SSunila Sahu xform->rsa.d.length, 10023e9d6bd4SSunila Sahu d); 10033e9d6bd4SSunila Sahu if (!d) { 10043e9d6bd4SSunila Sahu RSA_free(rsa); 10053e9d6bd4SSunila Sahu goto err_rsa; 10063e9d6bd4SSunila Sahu } 10073e9d6bd4SSunila Sahu } else { 10083e9d6bd4SSunila Sahu p = BN_bin2bn((const unsigned char *) 10093e9d6bd4SSunila Sahu xform->rsa.qt.p.data, 10103e9d6bd4SSunila Sahu xform->rsa.qt.p.length, 10113e9d6bd4SSunila Sahu p); 10123e9d6bd4SSunila Sahu q = BN_bin2bn((const unsigned char *) 10133e9d6bd4SSunila Sahu xform->rsa.qt.q.data, 10143e9d6bd4SSunila Sahu xform->rsa.qt.q.length, 10153e9d6bd4SSunila Sahu q); 10163e9d6bd4SSunila Sahu dmp1 = BN_bin2bn((const unsigned char *) 10173e9d6bd4SSunila Sahu xform->rsa.qt.dP.data, 10183e9d6bd4SSunila Sahu xform->rsa.qt.dP.length, 10193e9d6bd4SSunila Sahu dmp1); 10203e9d6bd4SSunila Sahu dmq1 = BN_bin2bn((const unsigned char *) 10213e9d6bd4SSunila Sahu xform->rsa.qt.dQ.data, 10223e9d6bd4SSunila Sahu xform->rsa.qt.dQ.length, 10233e9d6bd4SSunila Sahu dmq1); 10243e9d6bd4SSunila Sahu iqmp = BN_bin2bn((const unsigned char *) 10253e9d6bd4SSunila Sahu xform->rsa.qt.qInv.data, 10263e9d6bd4SSunila Sahu xform->rsa.qt.qInv.length, 10273e9d6bd4SSunila Sahu iqmp); 10283e9d6bd4SSunila Sahu 10293e9d6bd4SSunila Sahu if (!p || !q || !dmp1 || !dmq1 || !iqmp) { 10303e9d6bd4SSunila Sahu RSA_free(rsa); 10313e9d6bd4SSunila Sahu goto err_rsa; 10323e9d6bd4SSunila Sahu } 10330b5284adSAshish Gupta ret = set_rsa_params(rsa, p, q); 10343e9d6bd4SSunila Sahu if (ret) { 10353e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 1036*f665790aSDavid Marchand "failed to set rsa params"); 10373e9d6bd4SSunila Sahu RSA_free(rsa); 10383e9d6bd4SSunila Sahu goto err_rsa; 10393e9d6bd4SSunila Sahu } 10400b5284adSAshish Gupta ret = set_rsa_crt_params(rsa, dmp1, dmq1, iqmp); 10413e9d6bd4SSunila Sahu if (ret) { 10423e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 1043*f665790aSDavid Marchand "failed to set crt params"); 10443e9d6bd4SSunila Sahu RSA_free(rsa); 10453e9d6bd4SSunila Sahu /* 10463e9d6bd4SSunila Sahu * set already populated params to NULL 10473e9d6bd4SSunila Sahu * as its freed by call to RSA_free 10483e9d6bd4SSunila Sahu */ 10493e9d6bd4SSunila Sahu p = q = NULL; 10503e9d6bd4SSunila Sahu goto err_rsa; 10513e9d6bd4SSunila Sahu } 10523e9d6bd4SSunila Sahu } 10533e9d6bd4SSunila Sahu 10540b5284adSAshish Gupta ret = set_rsa_keys(rsa, n, e, d); 10553e9d6bd4SSunila Sahu if (ret) { 1056*f665790aSDavid Marchand OPENSSL_LOG(ERR, "Failed to load rsa keys"); 10573e9d6bd4SSunila Sahu RSA_free(rsa); 10584c7ae22fSKai Ji return ret; 10593e9d6bd4SSunila Sahu } 10603e9d6bd4SSunila Sahu asym_session->u.r.rsa = rsa; 10613e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_RSA; 106247a85ddaSCiara Power break; 1063d7bd42f6SKai Ji #endif 10643e9d6bd4SSunila Sahu err_rsa: 106577411bd6SArek Kusztal BN_clear_free(n); 106677411bd6SArek Kusztal BN_clear_free(e); 106777411bd6SArek Kusztal BN_clear_free(d); 106877411bd6SArek Kusztal BN_clear_free(p); 106977411bd6SArek Kusztal BN_clear_free(q); 107077411bd6SArek Kusztal BN_clear_free(dmp1); 107177411bd6SArek Kusztal BN_clear_free(dmq1); 107277411bd6SArek Kusztal BN_clear_free(iqmp); 10733e9d6bd4SSunila Sahu 10749d91c304SGowrishankar Muthukrishnan return ret; 10753e9d6bd4SSunila Sahu } 10763e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODEX: 10773e9d6bd4SSunila Sahu { 10783e9d6bd4SSunila Sahu struct rte_crypto_modex_xform *xfrm = &(xform->modex); 10793e9d6bd4SSunila Sahu 10803e9d6bd4SSunila Sahu BN_CTX *ctx = BN_CTX_new(); 10813e9d6bd4SSunila Sahu if (ctx == NULL) { 10823e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 1083*f665790aSDavid Marchand " failed to allocate resources"); 10844c7ae22fSKai Ji return ret; 10853e9d6bd4SSunila Sahu } 10863e9d6bd4SSunila Sahu BN_CTX_start(ctx); 10873e9d6bd4SSunila Sahu BIGNUM *mod = BN_CTX_get(ctx); 10883e9d6bd4SSunila Sahu BIGNUM *exp = BN_CTX_get(ctx); 10893e9d6bd4SSunila Sahu if (mod == NULL || exp == NULL) { 10903e9d6bd4SSunila Sahu BN_CTX_end(ctx); 10913e9d6bd4SSunila Sahu BN_CTX_free(ctx); 10924c7ae22fSKai Ji return ret; 10933e9d6bd4SSunila Sahu } 10943e9d6bd4SSunila Sahu 10953e9d6bd4SSunila Sahu mod = BN_bin2bn((const unsigned char *) 10963e9d6bd4SSunila Sahu xfrm->modulus.data, 10973e9d6bd4SSunila Sahu xfrm->modulus.length, mod); 10983e9d6bd4SSunila Sahu exp = BN_bin2bn((const unsigned char *) 10993e9d6bd4SSunila Sahu xfrm->exponent.data, 11003e9d6bd4SSunila Sahu xfrm->exponent.length, exp); 11013e9d6bd4SSunila Sahu asym_session->u.e.ctx = ctx; 11023e9d6bd4SSunila Sahu asym_session->u.e.mod = mod; 11033e9d6bd4SSunila Sahu asym_session->u.e.exp = exp; 11043e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_MODEX; 11053e9d6bd4SSunila Sahu break; 11063e9d6bd4SSunila Sahu } 11073e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODINV: 11083e9d6bd4SSunila Sahu { 11093e9d6bd4SSunila Sahu struct rte_crypto_modinv_xform *xfrm = &(xform->modinv); 11103e9d6bd4SSunila Sahu 11113e9d6bd4SSunila Sahu BN_CTX *ctx = BN_CTX_new(); 11123e9d6bd4SSunila Sahu if (ctx == NULL) { 11133e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, 1114*f665790aSDavid Marchand " failed to allocate resources"); 11154c7ae22fSKai Ji return ret; 11163e9d6bd4SSunila Sahu } 11173e9d6bd4SSunila Sahu BN_CTX_start(ctx); 11183e9d6bd4SSunila Sahu BIGNUM *mod = BN_CTX_get(ctx); 11193e9d6bd4SSunila Sahu if (mod == NULL) { 11203e9d6bd4SSunila Sahu BN_CTX_end(ctx); 11213e9d6bd4SSunila Sahu BN_CTX_free(ctx); 11224c7ae22fSKai Ji return ret; 11233e9d6bd4SSunila Sahu } 11243e9d6bd4SSunila Sahu 11253e9d6bd4SSunila Sahu mod = BN_bin2bn((const unsigned char *) 11263e9d6bd4SSunila Sahu xfrm->modulus.data, 11273e9d6bd4SSunila Sahu xfrm->modulus.length, 11283e9d6bd4SSunila Sahu mod); 11293e9d6bd4SSunila Sahu asym_session->u.m.ctx = ctx; 11303e9d6bd4SSunila Sahu asym_session->u.m.modulus = mod; 11313e9d6bd4SSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_MODINV; 11323e9d6bd4SSunila Sahu break; 11333e9d6bd4SSunila Sahu } 1134ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DH: 1135ac42813aSSunila Sahu { 1136c794b40cSKai Ji DH *dh = NULL; 1137c794b40cSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 113847a85ddaSCiara Power BIGNUM **p = &asym_session->u.dh.p; 113947a85ddaSCiara Power BIGNUM **g = &asym_session->u.dh.g; 114047a85ddaSCiara Power 114147a85ddaSCiara Power *p = BN_bin2bn((const unsigned char *) 114247a85ddaSCiara Power xform->dh.p.data, 114347a85ddaSCiara Power xform->dh.p.length, 114447a85ddaSCiara Power *p); 114547a85ddaSCiara Power *g = BN_bin2bn((const unsigned char *) 114647a85ddaSCiara Power xform->dh.g.data, 114747a85ddaSCiara Power xform->dh.g.length, 114847a85ddaSCiara Power *g); 114947a85ddaSCiara Power if (!*p || !*g) 115047a85ddaSCiara Power goto err_dh; 115147a85ddaSCiara Power 1152c794b40cSKai Ji OSSL_PARAM_BLD *param_bld = NULL; 1153c794b40cSKai Ji param_bld = OSSL_PARAM_BLD_new(); 1154c794b40cSKai Ji if (!param_bld) { 1155*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 1156c794b40cSKai Ji goto err_dh; 1157c794b40cSKai Ji } 1158c794b40cSKai Ji if ((!OSSL_PARAM_BLD_push_utf8_string(param_bld, 1159c794b40cSKai Ji "group", "ffdhe2048", 0)) 1160c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld, 116147a85ddaSCiara Power OSSL_PKEY_PARAM_FFC_P, *p)) 1162c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld, 116347a85ddaSCiara Power OSSL_PKEY_PARAM_FFC_G, *g))) { 1164c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1165c794b40cSKai Ji goto err_dh; 1166c794b40cSKai Ji } 1167c794b40cSKai Ji 1168c794b40cSKai Ji OSSL_PARAM_BLD *param_bld_peer = NULL; 1169c794b40cSKai Ji param_bld_peer = OSSL_PARAM_BLD_new(); 1170c794b40cSKai Ji if (!param_bld_peer) { 1171*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 1172c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1173c794b40cSKai Ji goto err_dh; 1174c794b40cSKai Ji } 1175c794b40cSKai Ji if ((!OSSL_PARAM_BLD_push_utf8_string(param_bld_peer, 1176c794b40cSKai Ji "group", "ffdhe2048", 0)) 1177c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld_peer, 117847a85ddaSCiara Power OSSL_PKEY_PARAM_FFC_P, *p)) 1179c794b40cSKai Ji || (!OSSL_PARAM_BLD_push_BN(param_bld_peer, 118047a85ddaSCiara Power OSSL_PKEY_PARAM_FFC_G, *g))) { 1181c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld); 1182c794b40cSKai Ji OSSL_PARAM_BLD_free(param_bld_peer); 1183c794b40cSKai Ji goto err_dh; 1184c794b40cSKai Ji } 1185c794b40cSKai Ji 1186c794b40cSKai Ji asym_session->u.dh.param_bld = param_bld; 1187c794b40cSKai Ji asym_session->u.dh.param_bld_peer = param_bld_peer; 1188c794b40cSKai Ji #else 118947a85ddaSCiara Power BIGNUM *p = NULL; 119047a85ddaSCiara Power BIGNUM *g = NULL; 119147a85ddaSCiara Power 119247a85ddaSCiara Power p = BN_bin2bn((const unsigned char *) 119347a85ddaSCiara Power xform->dh.p.data, 119447a85ddaSCiara Power xform->dh.p.length, 119547a85ddaSCiara Power p); 119647a85ddaSCiara Power g = BN_bin2bn((const unsigned char *) 119747a85ddaSCiara Power xform->dh.g.data, 119847a85ddaSCiara Power xform->dh.g.length, 119947a85ddaSCiara Power g); 120047a85ddaSCiara Power if (!p || !g) 120147a85ddaSCiara Power goto err_dh; 120247a85ddaSCiara Power 1203c794b40cSKai Ji dh = DH_new(); 1204ac42813aSSunila Sahu if (dh == NULL) { 1205ac42813aSSunila Sahu OPENSSL_LOG(ERR, 1206*f665790aSDavid Marchand "failed to allocate resources"); 1207ac42813aSSunila Sahu goto err_dh; 1208ac42813aSSunila Sahu } 12090b5284adSAshish Gupta ret = set_dh_params(dh, p, g); 1210ac42813aSSunila Sahu if (ret) { 1211ac42813aSSunila Sahu DH_free(dh); 1212ac42813aSSunila Sahu goto err_dh; 1213ac42813aSSunila Sahu } 1214c794b40cSKai Ji #endif 1215ac42813aSSunila Sahu asym_session->u.dh.dh_key = dh; 1216ac42813aSSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DH; 1217ac42813aSSunila Sahu break; 1218ac42813aSSunila Sahu 1219ac42813aSSunila Sahu err_dh: 1220*f665790aSDavid Marchand OPENSSL_LOG(ERR, " failed to set dh params"); 122147a85ddaSCiara Power #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 122247a85ddaSCiara Power BN_free(*p); 122347a85ddaSCiara Power BN_free(*g); 122447a85ddaSCiara Power #else 1225ac42813aSSunila Sahu BN_free(p); 1226ac42813aSSunila Sahu BN_free(g); 122747a85ddaSCiara Power #endif 1228ac42813aSSunila Sahu return -1; 1229ac42813aSSunila Sahu } 1230ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DSA: 1231ac42813aSSunila Sahu { 12324c7ae22fSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 123347a85ddaSCiara Power BIGNUM **p = &asym_session->u.s.p; 123447a85ddaSCiara Power BIGNUM **g = &asym_session->u.s.g; 123547a85ddaSCiara Power BIGNUM **q = &asym_session->u.s.q; 123647a85ddaSCiara Power BIGNUM **priv_key = &asym_session->u.s.priv_key; 12379d91c304SGowrishankar Muthukrishnan BIGNUM *pub_key = NULL; 12384c7ae22fSKai Ji OSSL_PARAM_BLD *param_bld = NULL; 12394c7ae22fSKai Ji 124047a85ddaSCiara Power *p = BN_bin2bn((const unsigned char *) 12414c7ae22fSKai Ji xform->dsa.p.data, 12424c7ae22fSKai Ji xform->dsa.p.length, 124347a85ddaSCiara Power *p); 12444c7ae22fSKai Ji 124547a85ddaSCiara Power *g = BN_bin2bn((const unsigned char *) 12464c7ae22fSKai Ji xform->dsa.g.data, 12474c7ae22fSKai Ji xform->dsa.g.length, 124847a85ddaSCiara Power *g); 12494c7ae22fSKai Ji 125047a85ddaSCiara Power *q = BN_bin2bn((const unsigned char *) 12514c7ae22fSKai Ji xform->dsa.q.data, 12524c7ae22fSKai Ji xform->dsa.q.length, 125347a85ddaSCiara Power *q); 125447a85ddaSCiara Power if (!*p || !*q || !*g) 12554c7ae22fSKai Ji goto err_dsa; 12564c7ae22fSKai Ji 125747a85ddaSCiara Power *priv_key = BN_bin2bn((const unsigned char *) 12584c7ae22fSKai Ji xform->dsa.x.data, 12594c7ae22fSKai Ji xform->dsa.x.length, 126047a85ddaSCiara Power *priv_key); 126147a85ddaSCiara Power if (*priv_key == NULL) 12624c7ae22fSKai Ji goto err_dsa; 12634c7ae22fSKai Ji 12644c7ae22fSKai Ji param_bld = OSSL_PARAM_BLD_new(); 12654c7ae22fSKai Ji if (!param_bld) { 1266*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 12674c7ae22fSKai Ji goto err_dsa; 12684c7ae22fSKai Ji } 12694c7ae22fSKai Ji 127047a85ddaSCiara Power if (!OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_P, *p) 127147a85ddaSCiara Power || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_G, *g) 127247a85ddaSCiara Power || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_FFC_Q, *q) 127347a85ddaSCiara Power || !OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_PRIV_KEY, 127447a85ddaSCiara Power *priv_key)) { 12754c7ae22fSKai Ji OSSL_PARAM_BLD_free(param_bld); 1276*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate resources"); 12774c7ae22fSKai Ji goto err_dsa; 12784c7ae22fSKai Ji } 12794c7ae22fSKai Ji asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DSA; 12804c7ae22fSKai Ji asym_session->u.s.param_bld = param_bld; 12814c7ae22fSKai Ji 12824c7ae22fSKai Ji break; 12834c7ae22fSKai Ji #else 1284ac42813aSSunila Sahu BIGNUM *p = NULL, *g = NULL; 1285ac42813aSSunila Sahu BIGNUM *q = NULL, *priv_key = NULL; 1286ac42813aSSunila Sahu BIGNUM *pub_key = BN_new(); 1287ac42813aSSunila Sahu BN_zero(pub_key); 1288ac42813aSSunila Sahu 1289ac42813aSSunila Sahu p = BN_bin2bn((const unsigned char *) 1290ac42813aSSunila Sahu xform->dsa.p.data, 1291ac42813aSSunila Sahu xform->dsa.p.length, 1292ac42813aSSunila Sahu p); 1293ac42813aSSunila Sahu 1294ac42813aSSunila Sahu g = BN_bin2bn((const unsigned char *) 1295ac42813aSSunila Sahu xform->dsa.g.data, 1296ac42813aSSunila Sahu xform->dsa.g.length, 1297ac42813aSSunila Sahu g); 1298ac42813aSSunila Sahu 1299ac42813aSSunila Sahu q = BN_bin2bn((const unsigned char *) 1300ac42813aSSunila Sahu xform->dsa.q.data, 1301ac42813aSSunila Sahu xform->dsa.q.length, 1302ac42813aSSunila Sahu q); 1303ac42813aSSunila Sahu if (!p || !q || !g) 1304ac42813aSSunila Sahu goto err_dsa; 1305ac42813aSSunila Sahu 1306ac42813aSSunila Sahu priv_key = BN_bin2bn((const unsigned char *) 1307ac42813aSSunila Sahu xform->dsa.x.data, 1308ac42813aSSunila Sahu xform->dsa.x.length, 1309ac42813aSSunila Sahu priv_key); 1310ac42813aSSunila Sahu if (priv_key == NULL) 1311ac42813aSSunila Sahu goto err_dsa; 1312ac42813aSSunila Sahu 1313ac42813aSSunila Sahu DSA *dsa = DSA_new(); 1314ac42813aSSunila Sahu if (dsa == NULL) { 1315ac42813aSSunila Sahu OPENSSL_LOG(ERR, 1316*f665790aSDavid Marchand " failed to allocate resources"); 1317ac42813aSSunila Sahu goto err_dsa; 1318ac42813aSSunila Sahu } 1319ac42813aSSunila Sahu 13200b5284adSAshish Gupta ret = set_dsa_params(dsa, p, q, g); 1321ac42813aSSunila Sahu if (ret) { 1322ac42813aSSunila Sahu DSA_free(dsa); 1323*f665790aSDavid Marchand OPENSSL_LOG(ERR, "Failed to dsa params"); 1324ac42813aSSunila Sahu goto err_dsa; 1325ac42813aSSunila Sahu } 1326ac42813aSSunila Sahu 1327ac42813aSSunila Sahu /* 1328ac42813aSSunila Sahu * openssl 1.1.0 mandate that public key can't be 1329ac42813aSSunila Sahu * NULL in very first call. so set a dummy pub key. 1330ac42813aSSunila Sahu * to keep consistency, lets follow same approach for 1331ac42813aSSunila Sahu * both versions 1332ac42813aSSunila Sahu */ 1333ac42813aSSunila Sahu /* just set dummy public for very 1st call */ 13340b5284adSAshish Gupta ret = set_dsa_keys(dsa, pub_key, priv_key); 1335ac42813aSSunila Sahu if (ret) { 1336ac42813aSSunila Sahu DSA_free(dsa); 1337*f665790aSDavid Marchand OPENSSL_LOG(ERR, "Failed to set keys"); 133847a85ddaSCiara Power goto err_dsa; 1339ac42813aSSunila Sahu } 1340ac42813aSSunila Sahu asym_session->u.s.dsa = dsa; 1341ac42813aSSunila Sahu asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_DSA; 1342ac42813aSSunila Sahu break; 13434c7ae22fSKai Ji #endif 1344ac42813aSSunila Sahu err_dsa: 134547a85ddaSCiara Power #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 134647a85ddaSCiara Power BN_free(*p); 134747a85ddaSCiara Power BN_free(*q); 134847a85ddaSCiara Power BN_free(*g); 134947a85ddaSCiara Power BN_free(*priv_key); 135047a85ddaSCiara Power #else 1351ac42813aSSunila Sahu BN_free(p); 1352ac42813aSSunila Sahu BN_free(q); 1353ac42813aSSunila Sahu BN_free(g); 1354ac42813aSSunila Sahu BN_free(priv_key); 135547a85ddaSCiara Power #endif 1356ac42813aSSunila Sahu BN_free(pub_key); 1357ac42813aSSunila Sahu return -1; 1358ac42813aSSunila Sahu } 13593b7d638fSGowrishankar Muthukrishnan case RTE_CRYPTO_ASYM_XFORM_SM2: 13603b7d638fSGowrishankar Muthukrishnan { 13613b7d638fSGowrishankar Muthukrishnan #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 136299218c39SGowrishankar Muthukrishnan #ifndef OPENSSL_NO_SM2 13633b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD *param_bld = NULL; 13643b7d638fSGowrishankar Muthukrishnan OSSL_PARAM *params = NULL; 1365badc0c6fSGowrishankar Muthukrishnan BIGNUM *pkey_bn = NULL; 136647a85ddaSCiara Power uint8_t pubkey[65]; 1367badc0c6fSGowrishankar Muthukrishnan size_t len = 0; 13683b7d638fSGowrishankar Muthukrishnan int ret = -1; 13693b7d638fSGowrishankar Muthukrishnan 13703b7d638fSGowrishankar Muthukrishnan param_bld = OSSL_PARAM_BLD_new(); 13713b7d638fSGowrishankar Muthukrishnan if (!param_bld) { 1372*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to allocate params"); 13733b7d638fSGowrishankar Muthukrishnan goto err_sm2; 13743b7d638fSGowrishankar Muthukrishnan } 13753b7d638fSGowrishankar Muthukrishnan 13763b7d638fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_utf8_string(param_bld, 13773b7d638fSGowrishankar Muthukrishnan OSSL_ASYM_CIPHER_PARAM_DIGEST, "SM3", 0); 13783b7d638fSGowrishankar Muthukrishnan if (!ret) { 1379*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to push params"); 13803b7d638fSGowrishankar Muthukrishnan goto err_sm2; 13813b7d638fSGowrishankar Muthukrishnan } 13823b7d638fSGowrishankar Muthukrishnan 1383badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_utf8_string(param_bld, 1384badc0c6fSGowrishankar Muthukrishnan OSSL_PKEY_PARAM_GROUP_NAME, "SM2", 0); 1385badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1386*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to push params"); 1387badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1388badc0c6fSGowrishankar Muthukrishnan } 1389badc0c6fSGowrishankar Muthukrishnan 1390badc0c6fSGowrishankar Muthukrishnan pkey_bn = BN_bin2bn((const unsigned char *)xform->ec.pkey.data, 1391badc0c6fSGowrishankar Muthukrishnan xform->ec.pkey.length, pkey_bn); 1392badc0c6fSGowrishankar Muthukrishnan 1393badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_BN(param_bld, OSSL_PKEY_PARAM_PRIV_KEY, 1394badc0c6fSGowrishankar Muthukrishnan pkey_bn); 1395badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1396*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to push params"); 1397badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1398badc0c6fSGowrishankar Muthukrishnan } 1399badc0c6fSGowrishankar Muthukrishnan 1400badc0c6fSGowrishankar Muthukrishnan memset(pubkey, 0, sizeof(pubkey)); 1401badc0c6fSGowrishankar Muthukrishnan pubkey[0] = 0x04; 1402badc0c6fSGowrishankar Muthukrishnan len += 1; 1403badc0c6fSGowrishankar Muthukrishnan memcpy(&pubkey[len], xform->ec.q.x.data, xform->ec.q.x.length); 1404badc0c6fSGowrishankar Muthukrishnan len += xform->ec.q.x.length; 1405badc0c6fSGowrishankar Muthukrishnan memcpy(&pubkey[len], xform->ec.q.y.data, xform->ec.q.y.length); 1406badc0c6fSGowrishankar Muthukrishnan len += xform->ec.q.y.length; 1407badc0c6fSGowrishankar Muthukrishnan 1408badc0c6fSGowrishankar Muthukrishnan ret = OSSL_PARAM_BLD_push_octet_string(param_bld, 1409badc0c6fSGowrishankar Muthukrishnan OSSL_PKEY_PARAM_PUB_KEY, pubkey, len); 1410badc0c6fSGowrishankar Muthukrishnan if (!ret) { 1411*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to push params"); 1412badc0c6fSGowrishankar Muthukrishnan goto err_sm2; 1413badc0c6fSGowrishankar Muthukrishnan } 1414badc0c6fSGowrishankar Muthukrishnan 14153b7d638fSGowrishankar Muthukrishnan params = OSSL_PARAM_BLD_to_param(param_bld); 14163b7d638fSGowrishankar Muthukrishnan if (!params) { 1417*f665790aSDavid Marchand OPENSSL_LOG(ERR, "failed to push params"); 14183b7d638fSGowrishankar Muthukrishnan goto err_sm2; 14193b7d638fSGowrishankar Muthukrishnan } 14203b7d638fSGowrishankar Muthukrishnan 14213b7d638fSGowrishankar Muthukrishnan asym_session->u.sm2.params = params; 14223b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(param_bld); 14239d91c304SGowrishankar Muthukrishnan BN_free(pkey_bn); 14243b7d638fSGowrishankar Muthukrishnan 14253b7d638fSGowrishankar Muthukrishnan asym_session->xfrm_type = RTE_CRYPTO_ASYM_XFORM_SM2; 14263b7d638fSGowrishankar Muthukrishnan break; 14273b7d638fSGowrishankar Muthukrishnan err_sm2: 14283b7d638fSGowrishankar Muthukrishnan if (param_bld) 14293b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(param_bld); 14303b7d638fSGowrishankar Muthukrishnan 14313b7d638fSGowrishankar Muthukrishnan if (asym_session->u.sm2.params) 14323b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_free(asym_session->u.sm2.params); 14333b7d638fSGowrishankar Muthukrishnan 14349d91c304SGowrishankar Muthukrishnan BN_free(pkey_bn); 14353b7d638fSGowrishankar Muthukrishnan return -1; 14366e892f5aSCiara Power #else 143799218c39SGowrishankar Muthukrishnan OPENSSL_LOG(WARNING, "SM2 unsupported in current OpenSSL Version"); 143899218c39SGowrishankar Muthukrishnan return -ENOTSUP; 143999218c39SGowrishankar Muthukrishnan #endif 144099218c39SGowrishankar Muthukrishnan #else 14416e892f5aSCiara Power OPENSSL_LOG(WARNING, "SM2 unsupported for OpenSSL Version < 3.0"); 14426e892f5aSCiara Power return -ENOTSUP; 14433b7d638fSGowrishankar Muthukrishnan #endif 14443b7d638fSGowrishankar Muthukrishnan } 14453e9d6bd4SSunila Sahu default: 14464c7ae22fSKai Ji return ret; 14473e9d6bd4SSunila Sahu } 14483e9d6bd4SSunila Sahu 14493e9d6bd4SSunila Sahu return 0; 14503e9d6bd4SSunila Sahu } 14513e9d6bd4SSunila Sahu 14523e9d6bd4SSunila Sahu /** Configure the session from a crypto xform chain */ 14533e9d6bd4SSunila Sahu static int 14543e9d6bd4SSunila Sahu openssl_pmd_asym_session_configure(struct rte_cryptodev *dev __rte_unused, 14553e9d6bd4SSunila Sahu struct rte_crypto_asym_xform *xform, 14561f1e4b7cSCiara Power struct rte_cryptodev_asym_session *sess) 14573e9d6bd4SSunila Sahu { 14583e9d6bd4SSunila Sahu void *asym_sess_private_data; 14593e9d6bd4SSunila Sahu int ret; 14603e9d6bd4SSunila Sahu 14613e9d6bd4SSunila Sahu if (unlikely(sess == NULL)) { 14623e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "invalid asymmetric session struct"); 14633e9d6bd4SSunila Sahu return -EINVAL; 14643e9d6bd4SSunila Sahu } 14653e9d6bd4SSunila Sahu 14661f1e4b7cSCiara Power asym_sess_private_data = sess->sess_private_data; 14673e9d6bd4SSunila Sahu ret = openssl_set_asym_session_parameters(asym_sess_private_data, 14683e9d6bd4SSunila Sahu xform); 14693e9d6bd4SSunila Sahu if (ret != 0) { 14703e9d6bd4SSunila Sahu OPENSSL_LOG(ERR, "failed configure session parameters"); 14713e9d6bd4SSunila Sahu return ret; 14723e9d6bd4SSunila Sahu } 14733e9d6bd4SSunila Sahu 14743e9d6bd4SSunila Sahu return 0; 14753e9d6bd4SSunila Sahu } 14768a9867a6SSlawomir Mrozowicz 14778a9867a6SSlawomir Mrozowicz /** Clear the memory of session so it doesn't leave key material behind */ 14788a9867a6SSlawomir Mrozowicz static void 1479bdce2564SAkhil Goyal openssl_pmd_sym_session_clear(struct rte_cryptodev *dev __rte_unused, 1480b3bbd9e5SSlawomir Mrozowicz struct rte_cryptodev_sym_session *sess) 14818a9867a6SSlawomir Mrozowicz { 14822a440d6aSAkhil Goyal void *sess_priv = CRYPTODEV_GET_SYM_SESS_PRIV(sess); 1483b3bbd9e5SSlawomir Mrozowicz 1484b3bbd9e5SSlawomir Mrozowicz /* Zero out the whole structure */ 1485b3bbd9e5SSlawomir Mrozowicz openssl_reset_session(sess_priv); 14868a9867a6SSlawomir Mrozowicz } 14878a9867a6SSlawomir Mrozowicz 14883e9d6bd4SSunila Sahu static void openssl_reset_asym_session(struct openssl_asym_session *sess) 14893e9d6bd4SSunila Sahu { 14903e9d6bd4SSunila Sahu switch (sess->xfrm_type) { 14913e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_RSA: 1492d7bd42f6SKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 1493d7bd42f6SKai Ji EVP_PKEY_CTX_free(sess->u.r.ctx); 1494d7bd42f6SKai Ji #else 14953e9d6bd4SSunila Sahu if (sess->u.r.rsa) 14963e9d6bd4SSunila Sahu RSA_free(sess->u.r.rsa); 1497d7bd42f6SKai Ji #endif 14983e9d6bd4SSunila Sahu break; 14993e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODEX: 15003e9d6bd4SSunila Sahu if (sess->u.e.ctx) { 15013e9d6bd4SSunila Sahu BN_CTX_end(sess->u.e.ctx); 15023e9d6bd4SSunila Sahu BN_CTX_free(sess->u.e.ctx); 15033e9d6bd4SSunila Sahu } 15043e9d6bd4SSunila Sahu break; 15053e9d6bd4SSunila Sahu case RTE_CRYPTO_ASYM_XFORM_MODINV: 15063e9d6bd4SSunila Sahu if (sess->u.m.ctx) { 15073e9d6bd4SSunila Sahu BN_CTX_end(sess->u.m.ctx); 15083e9d6bd4SSunila Sahu BN_CTX_free(sess->u.m.ctx); 15093e9d6bd4SSunila Sahu } 15103e9d6bd4SSunila Sahu break; 1511ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DH: 1512c794b40cSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 15139d91c304SGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(sess->u.dh.param_bld); 15149d91c304SGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(sess->u.dh.param_bld_peer); 1515c794b40cSKai Ji sess->u.dh.param_bld = NULL; 1516c794b40cSKai Ji sess->u.dh.param_bld_peer = NULL; 1517c794b40cSKai Ji #else 1518ac42813aSSunila Sahu if (sess->u.dh.dh_key) 1519ac42813aSSunila Sahu DH_free(sess->u.dh.dh_key); 1520c794b40cSKai Ji #endif 152147a85ddaSCiara Power BN_clear_free(sess->u.dh.p); 152247a85ddaSCiara Power BN_clear_free(sess->u.dh.g); 1523ac42813aSSunila Sahu break; 1524ac42813aSSunila Sahu case RTE_CRYPTO_ASYM_XFORM_DSA: 15254c7ae22fSKai Ji #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 15269d91c304SGowrishankar Muthukrishnan OSSL_PARAM_BLD_free(sess->u.s.param_bld); 15274c7ae22fSKai Ji sess->u.s.param_bld = NULL; 152847a85ddaSCiara Power BN_clear_free(sess->u.s.p); 152947a85ddaSCiara Power BN_clear_free(sess->u.s.q); 153047a85ddaSCiara Power BN_clear_free(sess->u.s.g); 153147a85ddaSCiara Power BN_clear_free(sess->u.s.priv_key); 15324c7ae22fSKai Ji #else 1533ac42813aSSunila Sahu if (sess->u.s.dsa) 1534ac42813aSSunila Sahu DSA_free(sess->u.s.dsa); 15354c7ae22fSKai Ji #endif 1536ac42813aSSunila Sahu break; 15373b7d638fSGowrishankar Muthukrishnan case RTE_CRYPTO_ASYM_XFORM_SM2: 15383b7d638fSGowrishankar Muthukrishnan #if (OPENSSL_VERSION_NUMBER >= 0x30000000L) 15393b7d638fSGowrishankar Muthukrishnan OSSL_PARAM_free(sess->u.sm2.params); 15403b7d638fSGowrishankar Muthukrishnan #endif 15413e9d6bd4SSunila Sahu default: 15423e9d6bd4SSunila Sahu break; 15433e9d6bd4SSunila Sahu } 15443e9d6bd4SSunila Sahu } 15453e9d6bd4SSunila Sahu 15463e9d6bd4SSunila Sahu /** Clear the memory of asymmetric session 15473e9d6bd4SSunila Sahu * so it doesn't leave key material behind 15483e9d6bd4SSunila Sahu */ 15493e9d6bd4SSunila Sahu static void 15501f1e4b7cSCiara Power openssl_pmd_asym_session_clear(struct rte_cryptodev *dev __rte_unused, 15513e9d6bd4SSunila Sahu struct rte_cryptodev_asym_session *sess) 15523e9d6bd4SSunila Sahu { 15531f1e4b7cSCiara Power void *sess_priv = sess->sess_private_data; 15543e9d6bd4SSunila Sahu 15553e9d6bd4SSunila Sahu /* Zero out the whole structure */ 15563e9d6bd4SSunila Sahu if (sess_priv) { 15573e9d6bd4SSunila Sahu openssl_reset_asym_session(sess_priv); 15583e9d6bd4SSunila Sahu memset(sess_priv, 0, sizeof(struct openssl_asym_session)); 15593e9d6bd4SSunila Sahu } 15603e9d6bd4SSunila Sahu } 15613e9d6bd4SSunila Sahu 15628a9867a6SSlawomir Mrozowicz struct rte_cryptodev_ops openssl_pmd_ops = { 15638a9867a6SSlawomir Mrozowicz .dev_configure = openssl_pmd_config, 15648a9867a6SSlawomir Mrozowicz .dev_start = openssl_pmd_start, 15658a9867a6SSlawomir Mrozowicz .dev_stop = openssl_pmd_stop, 15668a9867a6SSlawomir Mrozowicz .dev_close = openssl_pmd_close, 15678a9867a6SSlawomir Mrozowicz 15688a9867a6SSlawomir Mrozowicz .stats_get = openssl_pmd_stats_get, 15698a9867a6SSlawomir Mrozowicz .stats_reset = openssl_pmd_stats_reset, 15708a9867a6SSlawomir Mrozowicz 15718a9867a6SSlawomir Mrozowicz .dev_infos_get = openssl_pmd_info_get, 15728a9867a6SSlawomir Mrozowicz 15738a9867a6SSlawomir Mrozowicz .queue_pair_setup = openssl_pmd_qp_setup, 15748a9867a6SSlawomir Mrozowicz .queue_pair_release = openssl_pmd_qp_release, 15758a9867a6SSlawomir Mrozowicz 1576012c5076SPablo de Lara .sym_session_get_size = openssl_pmd_sym_session_get_size, 15773e9d6bd4SSunila Sahu .asym_session_get_size = openssl_pmd_asym_session_get_size, 1578012c5076SPablo de Lara .sym_session_configure = openssl_pmd_sym_session_configure, 15793e9d6bd4SSunila Sahu .asym_session_configure = openssl_pmd_asym_session_configure, 15803e9d6bd4SSunila Sahu .sym_session_clear = openssl_pmd_sym_session_clear, 15813e9d6bd4SSunila Sahu .asym_session_clear = openssl_pmd_asym_session_clear 15828a9867a6SSlawomir Mrozowicz }; 15838a9867a6SSlawomir Mrozowicz 15848a9867a6SSlawomir Mrozowicz struct rte_cryptodev_ops *rte_openssl_pmd_ops = &openssl_pmd_ops; 1585