Small AES_ECB with T-box

Dependents:   BLE_LED_ADC_BBC BLE_BBC_LSM303 BLE_BBC_LSM303_MAG BLE_BBC_LSM303_MAG ... more

Committer:
razueroh
Date:
Thu Oct 11 17:09:23 2012 +0000
Revision:
2:4997f825ee95
Parent:
0:27d3a972ad80
Documentation fixes

Who changed what in which revision?

UserRevisionLine numberNew contents of line
razueroh 0:27d3a972ad80 1 /* small_aes.c
razueroh 0:27d3a972ad80 2 *
razueroh 0:27d3a972ad80 3 * Copyright (c) 2012 Rafael Azuero Hurtado - German Londoño Paez
razueroh 0:27d3a972ad80 4 *
razueroh 0:27d3a972ad80 5 * This program is free software: you can redistribute it and/or modify
razueroh 0:27d3a972ad80 6 * it under the terms of the GNU General Public License as published by
razueroh 0:27d3a972ad80 7 * the Free Software Foundation, either version 3 of the License, or
razueroh 0:27d3a972ad80 8 * (at your option) any later version.
razueroh 0:27d3a972ad80 9 *
razueroh 0:27d3a972ad80 10 * This program is distributed in the hope that it will be useful,
razueroh 0:27d3a972ad80 11 * but WITHOUT ANY WARRANTY; without even the implied warranty of
razueroh 0:27d3a972ad80 12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
razueroh 0:27d3a972ad80 13 * GNU General Public License for more details.
razueroh 0:27d3a972ad80 14 *
razueroh 0:27d3a972ad80 15 * You should have received a copy of the GNU General Public License
razueroh 0:27d3a972ad80 16 * along with this program. If not, see <http://www.gnu.org/licenses/>.
razueroh 0:27d3a972ad80 17 */
razueroh 0:27d3a972ad80 18
razueroh 0:27d3a972ad80 19 #include "small_aes.h"
razueroh 0:27d3a972ad80 20
razueroh 0:27d3a972ad80 21 static const unsigned int rcon[] = {
razueroh 0:27d3a972ad80 22 0x01000000, 0x02000000, 0x04000000, 0x08000000,
razueroh 0:27d3a972ad80 23 0x10000000, 0x20000000, 0x40000000, 0x80000000,
razueroh 0:27d3a972ad80 24 0x1B000000, 0x36000000,
razueroh 0:27d3a972ad80 25 };
razueroh 0:27d3a972ad80 26
razueroh 0:27d3a972ad80 27
razueroh 0:27d3a972ad80 28 static const unsigned int Te[256] = {
razueroh 0:27d3a972ad80 29 0xc66363a5U, 0xf87c7c84U, 0xee777799U, 0xf67b7b8dU,
razueroh 0:27d3a972ad80 30 0xfff2f20dU, 0xd66b6bbdU, 0xde6f6fb1U, 0x91c5c554U,
razueroh 0:27d3a972ad80 31 0x60303050U, 0x02010103U, 0xce6767a9U, 0x562b2b7dU,
razueroh 0:27d3a972ad80 32 0xe7fefe19U, 0xb5d7d762U, 0x4dababe6U, 0xec76769aU,
razueroh 0:27d3a972ad80 33 0x8fcaca45U, 0x1f82829dU, 0x89c9c940U, 0xfa7d7d87U,
razueroh 0:27d3a972ad80 34 0xeffafa15U, 0xb25959ebU, 0x8e4747c9U, 0xfbf0f00bU,
razueroh 0:27d3a972ad80 35 0x41adadecU, 0xb3d4d467U, 0x5fa2a2fdU, 0x45afafeaU,
razueroh 0:27d3a972ad80 36 0x239c9cbfU, 0x53a4a4f7U, 0xe4727296U, 0x9bc0c05bU,
razueroh 0:27d3a972ad80 37 0x75b7b7c2U, 0xe1fdfd1cU, 0x3d9393aeU, 0x4c26266aU,
razueroh 0:27d3a972ad80 38 0x6c36365aU, 0x7e3f3f41U, 0xf5f7f702U, 0x83cccc4fU,
razueroh 0:27d3a972ad80 39 0x6834345cU, 0x51a5a5f4U, 0xd1e5e534U, 0xf9f1f108U,
razueroh 0:27d3a972ad80 40 0xe2717193U, 0xabd8d873U, 0x62313153U, 0x2a15153fU,
razueroh 0:27d3a972ad80 41 0x0804040cU, 0x95c7c752U, 0x46232365U, 0x9dc3c35eU,
razueroh 0:27d3a972ad80 42 0x30181828U, 0x379696a1U, 0x0a05050fU, 0x2f9a9ab5U,
razueroh 0:27d3a972ad80 43 0x0e070709U, 0x24121236U, 0x1b80809bU, 0xdfe2e23dU,
razueroh 0:27d3a972ad80 44 0xcdebeb26U, 0x4e272769U, 0x7fb2b2cdU, 0xea75759fU,
razueroh 0:27d3a972ad80 45 0x1209091bU, 0x1d83839eU, 0x582c2c74U, 0x341a1a2eU,
razueroh 0:27d3a972ad80 46 0x361b1b2dU, 0xdc6e6eb2U, 0xb45a5aeeU, 0x5ba0a0fbU,
razueroh 0:27d3a972ad80 47 0xa45252f6U, 0x763b3b4dU, 0xb7d6d661U, 0x7db3b3ceU,
razueroh 0:27d3a972ad80 48 0x5229297bU, 0xdde3e33eU, 0x5e2f2f71U, 0x13848497U,
razueroh 0:27d3a972ad80 49 0xa65353f5U, 0xb9d1d168U, 0x00000000U, 0xc1eded2cU,
razueroh 0:27d3a972ad80 50 0x40202060U, 0xe3fcfc1fU, 0x79b1b1c8U, 0xb65b5bedU,
razueroh 0:27d3a972ad80 51 0xd46a6abeU, 0x8dcbcb46U, 0x67bebed9U, 0x7239394bU,
razueroh 0:27d3a972ad80 52 0x944a4adeU, 0x984c4cd4U, 0xb05858e8U, 0x85cfcf4aU,
razueroh 0:27d3a972ad80 53 0xbbd0d06bU, 0xc5efef2aU, 0x4faaaae5U, 0xedfbfb16U,
razueroh 0:27d3a972ad80 54 0x864343c5U, 0x9a4d4dd7U, 0x66333355U, 0x11858594U,
razueroh 0:27d3a972ad80 55 0x8a4545cfU, 0xe9f9f910U, 0x04020206U, 0xfe7f7f81U,
razueroh 0:27d3a972ad80 56 0xa05050f0U, 0x783c3c44U, 0x259f9fbaU, 0x4ba8a8e3U,
razueroh 0:27d3a972ad80 57 0xa25151f3U, 0x5da3a3feU, 0x804040c0U, 0x058f8f8aU,
razueroh 0:27d3a972ad80 58 0x3f9292adU, 0x219d9dbcU, 0x70383848U, 0xf1f5f504U,
razueroh 0:27d3a972ad80 59 0x63bcbcdfU, 0x77b6b6c1U, 0xafdada75U, 0x42212163U,
razueroh 0:27d3a972ad80 60 0x20101030U, 0xe5ffff1aU, 0xfdf3f30eU, 0xbfd2d26dU,
razueroh 0:27d3a972ad80 61 0x81cdcd4cU, 0x180c0c14U, 0x26131335U, 0xc3ecec2fU,
razueroh 0:27d3a972ad80 62 0xbe5f5fe1U, 0x359797a2U, 0x884444ccU, 0x2e171739U,
razueroh 0:27d3a972ad80 63 0x93c4c457U, 0x55a7a7f2U, 0xfc7e7e82U, 0x7a3d3d47U,
razueroh 0:27d3a972ad80 64 0xc86464acU, 0xba5d5de7U, 0x3219192bU, 0xe6737395U,
razueroh 0:27d3a972ad80 65 0xc06060a0U, 0x19818198U, 0x9e4f4fd1U, 0xa3dcdc7fU,
razueroh 0:27d3a972ad80 66 0x44222266U, 0x542a2a7eU, 0x3b9090abU, 0x0b888883U,
razueroh 0:27d3a972ad80 67 0x8c4646caU, 0xc7eeee29U, 0x6bb8b8d3U, 0x2814143cU,
razueroh 0:27d3a972ad80 68 0xa7dede79U, 0xbc5e5ee2U, 0x160b0b1dU, 0xaddbdb76U,
razueroh 0:27d3a972ad80 69 0xdbe0e03bU, 0x64323256U, 0x743a3a4eU, 0x140a0a1eU,
razueroh 0:27d3a972ad80 70 0x924949dbU, 0x0c06060aU, 0x4824246cU, 0xb85c5ce4U,
razueroh 0:27d3a972ad80 71 0x9fc2c25dU, 0xbdd3d36eU, 0x43acacefU, 0xc46262a6U,
razueroh 0:27d3a972ad80 72 0x399191a8U, 0x319595a4U, 0xd3e4e437U, 0xf279798bU,
razueroh 0:27d3a972ad80 73 0xd5e7e732U, 0x8bc8c843U, 0x6e373759U, 0xda6d6db7U,
razueroh 0:27d3a972ad80 74 0x018d8d8cU, 0xb1d5d564U, 0x9c4e4ed2U, 0x49a9a9e0U,
razueroh 0:27d3a972ad80 75 0xd86c6cb4U, 0xac5656faU, 0xf3f4f407U, 0xcfeaea25U,
razueroh 0:27d3a972ad80 76 0xca6565afU, 0xf47a7a8eU, 0x47aeaee9U, 0x10080818U,
razueroh 0:27d3a972ad80 77 0x6fbabad5U, 0xf0787888U, 0x4a25256fU, 0x5c2e2e72U,
razueroh 0:27d3a972ad80 78 0x381c1c24U, 0x57a6a6f1U, 0x73b4b4c7U, 0x97c6c651U,
razueroh 0:27d3a972ad80 79 0xcbe8e823U, 0xa1dddd7cU, 0xe874749cU, 0x3e1f1f21U,
razueroh 0:27d3a972ad80 80 0x964b4bddU, 0x61bdbddcU, 0x0d8b8b86U, 0x0f8a8a85U,
razueroh 0:27d3a972ad80 81 0xe0707090U, 0x7c3e3e42U, 0x71b5b5c4U, 0xcc6666aaU,
razueroh 0:27d3a972ad80 82 0x904848d8U, 0x06030305U, 0xf7f6f601U, 0x1c0e0e12U,
razueroh 0:27d3a972ad80 83 0xc26161a3U, 0x6a35355fU, 0xae5757f9U, 0x69b9b9d0U,
razueroh 0:27d3a972ad80 84 0x17868691U, 0x99c1c158U, 0x3a1d1d27U, 0x279e9eb9U,
razueroh 0:27d3a972ad80 85 0xd9e1e138U, 0xebf8f813U, 0x2b9898b3U, 0x22111133U,
razueroh 0:27d3a972ad80 86 0xd26969bbU, 0xa9d9d970U, 0x078e8e89U, 0x339494a7U,
razueroh 0:27d3a972ad80 87 0x2d9b9bb6U, 0x3c1e1e22U, 0x15878792U, 0xc9e9e920U,
razueroh 0:27d3a972ad80 88 0x87cece49U, 0xaa5555ffU, 0x50282878U, 0xa5dfdf7aU,
razueroh 0:27d3a972ad80 89 0x038c8c8fU, 0x59a1a1f8U, 0x09898980U, 0x1a0d0d17U,
razueroh 0:27d3a972ad80 90 0x65bfbfdaU, 0xd7e6e631U, 0x844242c6U, 0xd06868b8U,
razueroh 0:27d3a972ad80 91 0x824141c3U, 0x299999b0U, 0x5a2d2d77U, 0x1e0f0f11U,
razueroh 0:27d3a972ad80 92 0x7bb0b0cbU, 0xa85454fcU, 0x6dbbbbd6U, 0x2c16163aU,
razueroh 0:27d3a972ad80 93 };
razueroh 0:27d3a972ad80 94
razueroh 0:27d3a972ad80 95 static const unsigned int Td[2][256] = {
razueroh 0:27d3a972ad80 96 {
razueroh 0:27d3a972ad80 97 0x51f4a750U, 0x7e416553U, 0x1a17a4c3U, 0x3a275e96U,
razueroh 0:27d3a972ad80 98 0x3bab6bcbU, 0x1f9d45f1U, 0xacfa58abU, 0x4be30393U,
razueroh 0:27d3a972ad80 99 0x2030fa55U, 0xad766df6U, 0x88cc7691U, 0xf5024c25U,
razueroh 0:27d3a972ad80 100 0x4fe5d7fcU, 0xc52acbd7U, 0x26354480U, 0xb562a38fU,
razueroh 0:27d3a972ad80 101 0xdeb15a49U, 0x25ba1b67U, 0x45ea0e98U, 0x5dfec0e1U,
razueroh 0:27d3a972ad80 102 0xc32f7502U, 0x814cf012U, 0x8d4697a3U, 0x6bd3f9c6U,
razueroh 0:27d3a972ad80 103 0x038f5fe7U, 0x15929c95U, 0xbf6d7aebU, 0x955259daU,
razueroh 0:27d3a972ad80 104 0xd4be832dU, 0x587421d3U, 0x49e06929U, 0x8ec9c844U,
razueroh 0:27d3a972ad80 105 0x75c2896aU, 0xf48e7978U, 0x99583e6bU, 0x27b971ddU,
razueroh 0:27d3a972ad80 106 0xbee14fb6U, 0xf088ad17U, 0xc920ac66U, 0x7dce3ab4U,
razueroh 0:27d3a972ad80 107 0x63df4a18U, 0xe51a3182U, 0x97513360U, 0x62537f45U,
razueroh 0:27d3a972ad80 108 0xb16477e0U, 0xbb6bae84U, 0xfe81a01cU, 0xf9082b94U,
razueroh 0:27d3a972ad80 109 0x70486858U, 0x8f45fd19U, 0x94de6c87U, 0x527bf8b7U,
razueroh 0:27d3a972ad80 110 0xab73d323U, 0x724b02e2U, 0xe31f8f57U, 0x6655ab2aU,
razueroh 0:27d3a972ad80 111 0xb2eb2807U, 0x2fb5c203U, 0x86c57b9aU, 0xd33708a5U,
razueroh 0:27d3a972ad80 112 0x302887f2U, 0x23bfa5b2U, 0x02036abaU, 0xed16825cU,
razueroh 0:27d3a972ad80 113 0x8acf1c2bU, 0xa779b492U, 0xf307f2f0U, 0x4e69e2a1U,
razueroh 0:27d3a972ad80 114 0x65daf4cdU, 0x0605bed5U, 0xd134621fU, 0xc4a6fe8aU,
razueroh 0:27d3a972ad80 115 0x342e539dU, 0xa2f355a0U, 0x058ae132U, 0xa4f6eb75U,
razueroh 0:27d3a972ad80 116 0x0b83ec39U, 0x4060efaaU, 0x5e719f06U, 0xbd6e1051U,
razueroh 0:27d3a972ad80 117 0x3e218af9U, 0x96dd063dU, 0xdd3e05aeU, 0x4de6bd46U,
razueroh 0:27d3a972ad80 118 0x91548db5U, 0x71c45d05U, 0x0406d46fU, 0x605015ffU,
razueroh 0:27d3a972ad80 119 0x1998fb24U, 0xd6bde997U, 0x894043ccU, 0x67d99e77U,
razueroh 0:27d3a972ad80 120 0xb0e842bdU, 0x07898b88U, 0xe7195b38U, 0x79c8eedbU,
razueroh 0:27d3a972ad80 121 0xa17c0a47U, 0x7c420fe9U, 0xf8841ec9U, 0x00000000U,
razueroh 0:27d3a972ad80 122 0x09808683U, 0x322bed48U, 0x1e1170acU, 0x6c5a724eU,
razueroh 0:27d3a972ad80 123 0xfd0efffbU, 0x0f853856U, 0x3daed51eU, 0x362d3927U,
razueroh 0:27d3a972ad80 124 0x0a0fd964U, 0x685ca621U, 0x9b5b54d1U, 0x24362e3aU,
razueroh 0:27d3a972ad80 125 0x0c0a67b1U, 0x9357e70fU, 0xb4ee96d2U, 0x1b9b919eU,
razueroh 0:27d3a972ad80 126 0x80c0c54fU, 0x61dc20a2U, 0x5a774b69U, 0x1c121a16U,
razueroh 0:27d3a972ad80 127 0xe293ba0aU, 0xc0a02ae5U, 0x3c22e043U, 0x121b171dU,
razueroh 0:27d3a972ad80 128 0x0e090d0bU, 0xf28bc7adU, 0x2db6a8b9U, 0x141ea9c8U,
razueroh 0:27d3a972ad80 129 0x57f11985U, 0xaf75074cU, 0xee99ddbbU, 0xa37f60fdU,
razueroh 0:27d3a972ad80 130 0xf701269fU, 0x5c72f5bcU, 0x44663bc5U, 0x5bfb7e34U,
razueroh 0:27d3a972ad80 131 0x8b432976U, 0xcb23c6dcU, 0xb6edfc68U, 0xb8e4f163U,
razueroh 0:27d3a972ad80 132 0xd731dccaU, 0x42638510U, 0x13972240U, 0x84c61120U,
razueroh 0:27d3a972ad80 133 0x854a247dU, 0xd2bb3df8U, 0xaef93211U, 0xc729a16dU,
razueroh 0:27d3a972ad80 134 0x1d9e2f4bU, 0xdcb230f3U, 0x0d8652ecU, 0x77c1e3d0U,
razueroh 0:27d3a972ad80 135 0x2bb3166cU, 0xa970b999U, 0x119448faU, 0x47e96422U,
razueroh 0:27d3a972ad80 136 0xa8fc8cc4U, 0xa0f03f1aU, 0x567d2cd8U, 0x223390efU,
razueroh 0:27d3a972ad80 137 0x87494ec7U, 0xd938d1c1U, 0x8ccaa2feU, 0x98d40b36U,
razueroh 0:27d3a972ad80 138 0xa6f581cfU, 0xa57ade28U, 0xdab78e26U, 0x3fadbfa4U,
razueroh 0:27d3a972ad80 139 0x2c3a9de4U, 0x5078920dU, 0x6a5fcc9bU, 0x547e4662U,
razueroh 0:27d3a972ad80 140 0xf68d13c2U, 0x90d8b8e8U, 0x2e39f75eU, 0x82c3aff5U,
razueroh 0:27d3a972ad80 141 0x9f5d80beU, 0x69d0937cU, 0x6fd52da9U, 0xcf2512b3U,
razueroh 0:27d3a972ad80 142 0xc8ac993bU, 0x10187da7U, 0xe89c636eU, 0xdb3bbb7bU,
razueroh 0:27d3a972ad80 143 0xcd267809U, 0x6e5918f4U, 0xec9ab701U, 0x834f9aa8U,
razueroh 0:27d3a972ad80 144 0xe6956e65U, 0xaaffe67eU, 0x21bccf08U, 0xef15e8e6U,
razueroh 0:27d3a972ad80 145 0xbae79bd9U, 0x4a6f36ceU, 0xea9f09d4U, 0x29b07cd6U,
razueroh 0:27d3a972ad80 146 0x31a4b2afU, 0x2a3f2331U, 0xc6a59430U, 0x35a266c0U,
razueroh 0:27d3a972ad80 147 0x744ebc37U, 0xfc82caa6U, 0xe090d0b0U, 0x33a7d815U,
razueroh 0:27d3a972ad80 148 0xf104984aU, 0x41ecdaf7U, 0x7fcd500eU, 0x1791f62fU,
razueroh 0:27d3a972ad80 149 0x764dd68dU, 0x43efb04dU, 0xccaa4d54U, 0xe49604dfU,
razueroh 0:27d3a972ad80 150 0x9ed1b5e3U, 0x4c6a881bU, 0xc12c1fb8U, 0x4665517fU,
razueroh 0:27d3a972ad80 151 0x9d5eea04U, 0x018c355dU, 0xfa877473U, 0xfb0b412eU,
razueroh 0:27d3a972ad80 152 0xb3671d5aU, 0x92dbd252U, 0xe9105633U, 0x6dd64713U,
razueroh 0:27d3a972ad80 153 0x9ad7618cU, 0x37a10c7aU, 0x59f8148eU, 0xeb133c89U,
razueroh 0:27d3a972ad80 154 0xcea927eeU, 0xb761c935U, 0xe11ce5edU, 0x7a47b13cU,
razueroh 0:27d3a972ad80 155 0x9cd2df59U, 0x55f2733fU, 0x1814ce79U, 0x73c737bfU,
razueroh 0:27d3a972ad80 156 0x53f7cdeaU, 0x5ffdaa5bU, 0xdf3d6f14U, 0x7844db86U,
razueroh 0:27d3a972ad80 157 0xcaaff381U, 0xb968c43eU, 0x3824342cU, 0xc2a3405fU,
razueroh 0:27d3a972ad80 158 0x161dc372U, 0xbce2250cU, 0x283c498bU, 0xff0d9541U,
razueroh 0:27d3a972ad80 159 0x39a80171U, 0x080cb3deU, 0xd8b4e49cU, 0x6456c190U,
razueroh 0:27d3a972ad80 160 0x7bcb8461U, 0xd532b670U, 0x486c5c74U, 0xd0b85742U,
razueroh 0:27d3a972ad80 161 },
razueroh 0:27d3a972ad80 162 {
razueroh 0:27d3a972ad80 163 0x52525252U, 0x09090909U, 0x6a6a6a6aU, 0xd5d5d5d5U,
razueroh 0:27d3a972ad80 164 0x30303030U, 0x36363636U, 0xa5a5a5a5U, 0x38383838U,
razueroh 0:27d3a972ad80 165 0xbfbfbfbfU, 0x40404040U, 0xa3a3a3a3U, 0x9e9e9e9eU,
razueroh 0:27d3a972ad80 166 0x81818181U, 0xf3f3f3f3U, 0xd7d7d7d7U, 0xfbfbfbfbU,
razueroh 0:27d3a972ad80 167 0x7c7c7c7cU, 0xe3e3e3e3U, 0x39393939U, 0x82828282U,
razueroh 0:27d3a972ad80 168 0x9b9b9b9bU, 0x2f2f2f2fU, 0xffffffffU, 0x87878787U,
razueroh 0:27d3a972ad80 169 0x34343434U, 0x8e8e8e8eU, 0x43434343U, 0x44444444U,
razueroh 0:27d3a972ad80 170 0xc4c4c4c4U, 0xdedededeU, 0xe9e9e9e9U, 0xcbcbcbcbU,
razueroh 0:27d3a972ad80 171 0x54545454U, 0x7b7b7b7bU, 0x94949494U, 0x32323232U,
razueroh 0:27d3a972ad80 172 0xa6a6a6a6U, 0xc2c2c2c2U, 0x23232323U, 0x3d3d3d3dU,
razueroh 0:27d3a972ad80 173 0xeeeeeeeeU, 0x4c4c4c4cU, 0x95959595U, 0x0b0b0b0bU,
razueroh 0:27d3a972ad80 174 0x42424242U, 0xfafafafaU, 0xc3c3c3c3U, 0x4e4e4e4eU,
razueroh 0:27d3a972ad80 175 0x08080808U, 0x2e2e2e2eU, 0xa1a1a1a1U, 0x66666666U,
razueroh 0:27d3a972ad80 176 0x28282828U, 0xd9d9d9d9U, 0x24242424U, 0xb2b2b2b2U,
razueroh 0:27d3a972ad80 177 0x76767676U, 0x5b5b5b5bU, 0xa2a2a2a2U, 0x49494949U,
razueroh 0:27d3a972ad80 178 0x6d6d6d6dU, 0x8b8b8b8bU, 0xd1d1d1d1U, 0x25252525U,
razueroh 0:27d3a972ad80 179 0x72727272U, 0xf8f8f8f8U, 0xf6f6f6f6U, 0x64646464U,
razueroh 0:27d3a972ad80 180 0x86868686U, 0x68686868U, 0x98989898U, 0x16161616U,
razueroh 0:27d3a972ad80 181 0xd4d4d4d4U, 0xa4a4a4a4U, 0x5c5c5c5cU, 0xccccccccU,
razueroh 0:27d3a972ad80 182 0x5d5d5d5dU, 0x65656565U, 0xb6b6b6b6U, 0x92929292U,
razueroh 0:27d3a972ad80 183 0x6c6c6c6cU, 0x70707070U, 0x48484848U, 0x50505050U,
razueroh 0:27d3a972ad80 184 0xfdfdfdfdU, 0xededededU, 0xb9b9b9b9U, 0xdadadadaU,
razueroh 0:27d3a972ad80 185 0x5e5e5e5eU, 0x15151515U, 0x46464646U, 0x57575757U,
razueroh 0:27d3a972ad80 186 0xa7a7a7a7U, 0x8d8d8d8dU, 0x9d9d9d9dU, 0x84848484U,
razueroh 0:27d3a972ad80 187 0x90909090U, 0xd8d8d8d8U, 0xababababU, 0x00000000U,
razueroh 0:27d3a972ad80 188 0x8c8c8c8cU, 0xbcbcbcbcU, 0xd3d3d3d3U, 0x0a0a0a0aU,
razueroh 0:27d3a972ad80 189 0xf7f7f7f7U, 0xe4e4e4e4U, 0x58585858U, 0x05050505U,
razueroh 0:27d3a972ad80 190 0xb8b8b8b8U, 0xb3b3b3b3U, 0x45454545U, 0x06060606U,
razueroh 0:27d3a972ad80 191 0xd0d0d0d0U, 0x2c2c2c2cU, 0x1e1e1e1eU, 0x8f8f8f8fU,
razueroh 0:27d3a972ad80 192 0xcacacacaU, 0x3f3f3f3fU, 0x0f0f0f0fU, 0x02020202U,
razueroh 0:27d3a972ad80 193 0xc1c1c1c1U, 0xafafafafU, 0xbdbdbdbdU, 0x03030303U,
razueroh 0:27d3a972ad80 194 0x01010101U, 0x13131313U, 0x8a8a8a8aU, 0x6b6b6b6bU,
razueroh 0:27d3a972ad80 195 0x3a3a3a3aU, 0x91919191U, 0x11111111U, 0x41414141U,
razueroh 0:27d3a972ad80 196 0x4f4f4f4fU, 0x67676767U, 0xdcdcdcdcU, 0xeaeaeaeaU,
razueroh 0:27d3a972ad80 197 0x97979797U, 0xf2f2f2f2U, 0xcfcfcfcfU, 0xcecececeU,
razueroh 0:27d3a972ad80 198 0xf0f0f0f0U, 0xb4b4b4b4U, 0xe6e6e6e6U, 0x73737373U,
razueroh 0:27d3a972ad80 199 0x96969696U, 0xacacacacU, 0x74747474U, 0x22222222U,
razueroh 0:27d3a972ad80 200 0xe7e7e7e7U, 0xadadadadU, 0x35353535U, 0x85858585U,
razueroh 0:27d3a972ad80 201 0xe2e2e2e2U, 0xf9f9f9f9U, 0x37373737U, 0xe8e8e8e8U,
razueroh 0:27d3a972ad80 202 0x1c1c1c1cU, 0x75757575U, 0xdfdfdfdfU, 0x6e6e6e6eU,
razueroh 0:27d3a972ad80 203 0x47474747U, 0xf1f1f1f1U, 0x1a1a1a1aU, 0x71717171U,
razueroh 0:27d3a972ad80 204 0x1d1d1d1dU, 0x29292929U, 0xc5c5c5c5U, 0x89898989U,
razueroh 0:27d3a972ad80 205 0x6f6f6f6fU, 0xb7b7b7b7U, 0x62626262U, 0x0e0e0e0eU,
razueroh 0:27d3a972ad80 206 0xaaaaaaaaU, 0x18181818U, 0xbebebebeU, 0x1b1b1b1bU,
razueroh 0:27d3a972ad80 207 0xfcfcfcfcU, 0x56565656U, 0x3e3e3e3eU, 0x4b4b4b4bU,
razueroh 0:27d3a972ad80 208 0xc6c6c6c6U, 0xd2d2d2d2U, 0x79797979U, 0x20202020U,
razueroh 0:27d3a972ad80 209 0x9a9a9a9aU, 0xdbdbdbdbU, 0xc0c0c0c0U, 0xfefefefeU,
razueroh 0:27d3a972ad80 210 0x78787878U, 0xcdcdcdcdU, 0x5a5a5a5aU, 0xf4f4f4f4U,
razueroh 0:27d3a972ad80 211 0x1f1f1f1fU, 0xddddddddU, 0xa8a8a8a8U, 0x33333333U,
razueroh 0:27d3a972ad80 212 0x88888888U, 0x07070707U, 0xc7c7c7c7U, 0x31313131U,
razueroh 0:27d3a972ad80 213 0xb1b1b1b1U, 0x12121212U, 0x10101010U, 0x59595959U,
razueroh 0:27d3a972ad80 214 0x27272727U, 0x80808080U, 0xececececU, 0x5f5f5f5fU,
razueroh 0:27d3a972ad80 215 0x60606060U, 0x51515151U, 0x7f7f7f7fU, 0xa9a9a9a9U,
razueroh 0:27d3a972ad80 216 0x19191919U, 0xb5b5b5b5U, 0x4a4a4a4aU, 0x0d0d0d0dU,
razueroh 0:27d3a972ad80 217 0x2d2d2d2dU, 0xe5e5e5e5U, 0x7a7a7a7aU, 0x9f9f9f9fU,
razueroh 0:27d3a972ad80 218 0x93939393U, 0xc9c9c9c9U, 0x9c9c9c9cU, 0xefefefefU,
razueroh 0:27d3a972ad80 219 0xa0a0a0a0U, 0xe0e0e0e0U, 0x3b3b3b3bU, 0x4d4d4d4dU,
razueroh 0:27d3a972ad80 220 0xaeaeaeaeU, 0x2a2a2a2aU, 0xf5f5f5f5U, 0xb0b0b0b0U,
razueroh 0:27d3a972ad80 221 0xc8c8c8c8U, 0xebebebebU, 0xbbbbbbbbU, 0x3c3c3c3cU,
razueroh 0:27d3a972ad80 222 0x83838383U, 0x53535353U, 0x99999999U, 0x61616161U,
razueroh 0:27d3a972ad80 223 0x17171717U, 0x2b2b2b2bU, 0x04040404U, 0x7e7e7e7eU,
razueroh 0:27d3a972ad80 224 0xbabababaU, 0x77777777U, 0xd6d6d6d6U, 0x26262626U,
razueroh 0:27d3a972ad80 225 0xe1e1e1e1U, 0x69696969U, 0x14141414U, 0x63636363U,
razueroh 0:27d3a972ad80 226 0x55555555U, 0x21212121U, 0x0c0c0c0cU, 0x7d7d7d7dU,
razueroh 0:27d3a972ad80 227 }
razueroh 0:27d3a972ad80 228 };
razueroh 0:27d3a972ad80 229
razueroh 0:27d3a972ad80 230 #define GETBYTE(x, y) (unsigned int)((unsigned char)((x) >> (8 * (y))))
razueroh 0:27d3a972ad80 231 #define ROR(x, y) (unsigned int) (rotrFixed((x), 8 * (y)))
razueroh 0:27d3a972ad80 232 #define ROL(x, y) (unsigned int) (rotlFixed((x), 8 * (y)))
razueroh 0:27d3a972ad80 233
razueroh 0:27d3a972ad80 234 int aesSetKey(AES* aes, const unsigned char* userKey, unsigned int keylen, int dir) {
razueroh 0:27d3a972ad80 235 unsigned int temp, *rk = aes->key;
razueroh 0:27d3a972ad80 236 unsigned int i = 0;
razueroh 0:27d3a972ad80 237
razueroh 0:27d3a972ad80 238 if (!((keylen == 16) || (keylen == 24) || (keylen == 32)))
razueroh 0:27d3a972ad80 239 return -1;
razueroh 0:27d3a972ad80 240
razueroh 0:27d3a972ad80 241 aes->rounds = keylen/4 + 6;
razueroh 0:27d3a972ad80 242
razueroh 0:27d3a972ad80 243 memcpy(rk, userKey, keylen);
razueroh 0:27d3a972ad80 244 byteReverseWords(rk, rk, keylen);
razueroh 0:27d3a972ad80 245
razueroh 0:27d3a972ad80 246 switch(keylen)
razueroh 0:27d3a972ad80 247 {
razueroh 0:27d3a972ad80 248 case 16:
razueroh 0:27d3a972ad80 249 while (1)
razueroh 0:27d3a972ad80 250 {
razueroh 0:27d3a972ad80 251 temp = rk[3];
razueroh 0:27d3a972ad80 252 rk[4] = rk[0] ^
razueroh 0:27d3a972ad80 253 (Te[GETBYTE(temp, 2)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 254 (Te[GETBYTE(temp, 1)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 255 (Te[GETBYTE(temp, 0)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 256 (Te[GETBYTE(temp, 3)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 257 rcon[i];
razueroh 0:27d3a972ad80 258 rk[5] = rk[1] ^ rk[4];
razueroh 0:27d3a972ad80 259 rk[6] = rk[2] ^ rk[5];
razueroh 0:27d3a972ad80 260 rk[7] = rk[3] ^ rk[6];
razueroh 0:27d3a972ad80 261 if (++i == 10)
razueroh 0:27d3a972ad80 262 break;
razueroh 0:27d3a972ad80 263 rk += 4;
razueroh 0:27d3a972ad80 264 }
razueroh 0:27d3a972ad80 265 break;
razueroh 0:27d3a972ad80 266
razueroh 0:27d3a972ad80 267 case 24:
razueroh 0:27d3a972ad80 268 while (1)
razueroh 0:27d3a972ad80 269 {
razueroh 0:27d3a972ad80 270 temp = rk[ 5];
razueroh 0:27d3a972ad80 271 rk[ 6] = rk[ 0] ^
razueroh 0:27d3a972ad80 272 (Te[GETBYTE(temp, 2)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 273 (Te[GETBYTE(temp, 1)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 274 (Te[GETBYTE(temp, 0)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 275 (Te[GETBYTE(temp, 3)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 276 rcon[i];
razueroh 0:27d3a972ad80 277 rk[ 7] = rk[ 1] ^ rk[ 6];
razueroh 0:27d3a972ad80 278 rk[ 8] = rk[ 2] ^ rk[ 7];
razueroh 0:27d3a972ad80 279 rk[ 9] = rk[ 3] ^ rk[ 8];
razueroh 0:27d3a972ad80 280 if (++i == 8)
razueroh 0:27d3a972ad80 281 break;
razueroh 0:27d3a972ad80 282 rk[10] = rk[ 4] ^ rk[ 9];
razueroh 0:27d3a972ad80 283 rk[11] = rk[ 5] ^ rk[10];
razueroh 0:27d3a972ad80 284 rk += 6;
razueroh 0:27d3a972ad80 285 }
razueroh 0:27d3a972ad80 286 break;
razueroh 0:27d3a972ad80 287
razueroh 0:27d3a972ad80 288 case 32:
razueroh 0:27d3a972ad80 289 while (1)
razueroh 0:27d3a972ad80 290 {
razueroh 0:27d3a972ad80 291 temp = rk[ 7];
razueroh 0:27d3a972ad80 292 rk[ 8] = rk[ 0] ^
razueroh 0:27d3a972ad80 293 (Te[GETBYTE(temp, 2)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 294 (Te[GETBYTE(temp, 1)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 295 (Te[GETBYTE(temp, 0)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 296 (Te[GETBYTE(temp, 3)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 297 rcon[i];
razueroh 0:27d3a972ad80 298 rk[ 9] = rk[ 1] ^ rk[ 8];
razueroh 0:27d3a972ad80 299 rk[10] = rk[ 2] ^ rk[ 9];
razueroh 0:27d3a972ad80 300 rk[11] = rk[ 3] ^ rk[10];
razueroh 0:27d3a972ad80 301 if (++i == 7)
razueroh 0:27d3a972ad80 302 break;
razueroh 0:27d3a972ad80 303 temp = rk[11];
razueroh 0:27d3a972ad80 304 rk[12] = rk[ 4] ^
razueroh 0:27d3a972ad80 305 (Te[GETBYTE(temp, 3)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 306 (Te[GETBYTE(temp, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 307 (Te[GETBYTE(temp, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 308 (Te[GETBYTE(temp, 0)] & 0x0000ff00) >> 8;
razueroh 0:27d3a972ad80 309 rk[13] = rk[ 5] ^ rk[12];
razueroh 0:27d3a972ad80 310 rk[14] = rk[ 6] ^ rk[13];
razueroh 0:27d3a972ad80 311 rk[15] = rk[ 7] ^ rk[14];
razueroh 0:27d3a972ad80 312 rk += 8;
razueroh 0:27d3a972ad80 313 }
razueroh 0:27d3a972ad80 314 break;
razueroh 0:27d3a972ad80 315 }
razueroh 0:27d3a972ad80 316
razueroh 0:27d3a972ad80 317 if (dir == SMALL_AES_DECRYPTION)
razueroh 0:27d3a972ad80 318 {
razueroh 0:27d3a972ad80 319 unsigned int i, j;
razueroh 0:27d3a972ad80 320 rk = aes->key;
razueroh 0:27d3a972ad80 321
razueroh 0:27d3a972ad80 322 /* invert the order of the round keys: */
razueroh 0:27d3a972ad80 323 for (i = 0, j = 4* aes->rounds; i < j; i += 4, j -= 4) {
razueroh 0:27d3a972ad80 324 temp = rk[i ]; rk[i ] = rk[j ]; rk[j ] = temp;
razueroh 0:27d3a972ad80 325 temp = rk[i + 1]; rk[i + 1] = rk[j + 1]; rk[j + 1] = temp;
razueroh 0:27d3a972ad80 326 temp = rk[i + 2]; rk[i + 2] = rk[j + 2]; rk[j + 2] = temp;
razueroh 0:27d3a972ad80 327 temp = rk[i + 3]; rk[i + 3] = rk[j + 3]; rk[j + 3] = temp;
razueroh 0:27d3a972ad80 328 }
razueroh 0:27d3a972ad80 329 /* apply the inverse MixColumn transform to all round keys but the
razueroh 0:27d3a972ad80 330 first and the last: */
razueroh 0:27d3a972ad80 331 for (i = 1; i < aes->rounds; i++) {
razueroh 0:27d3a972ad80 332 rk += 4;
razueroh 0:27d3a972ad80 333 rk[0] =
razueroh 0:27d3a972ad80 334 Td[0][GETBYTE(Te[GETBYTE(rk[0], 3)], 2)] ^
razueroh 0:27d3a972ad80 335 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[0], 2)], 2)], 1) ^
razueroh 0:27d3a972ad80 336 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[0], 1)], 2)], 2) ^
razueroh 0:27d3a972ad80 337 ROL(Td[0][GETBYTE(Te[GETBYTE(rk[0], 0)], 2)], 1);
razueroh 0:27d3a972ad80 338 rk[1] =
razueroh 0:27d3a972ad80 339 Td[0][GETBYTE(Te[GETBYTE(rk[1], 3)], 2)] ^
razueroh 0:27d3a972ad80 340 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[1], 2)], 2)], 1) ^
razueroh 0:27d3a972ad80 341 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[1], 1)], 2)], 2) ^
razueroh 0:27d3a972ad80 342 ROL(Td[0][GETBYTE(Te[GETBYTE(rk[1], 0)], 2)], 1);
razueroh 0:27d3a972ad80 343 rk[2] =
razueroh 0:27d3a972ad80 344 Td[0][GETBYTE(Te[GETBYTE(rk[2], 3)], 2)] ^
razueroh 0:27d3a972ad80 345 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[2], 2)], 2)], 1) ^
razueroh 0:27d3a972ad80 346 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[2], 1)], 2)], 2) ^
razueroh 0:27d3a972ad80 347 ROL(Td[0][GETBYTE(Te[GETBYTE(rk[2], 0)], 2)], 1);
razueroh 0:27d3a972ad80 348 rk[3] =
razueroh 0:27d3a972ad80 349 Td[0][GETBYTE(Te[GETBYTE(rk[3], 3)], 2)] ^
razueroh 0:27d3a972ad80 350 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[3], 2)], 2)], 1) ^
razueroh 0:27d3a972ad80 351 ROR(Td[0][GETBYTE(Te[GETBYTE(rk[3], 1)], 2)], 2) ^
razueroh 0:27d3a972ad80 352 ROL(Td[0][GETBYTE(Te[GETBYTE(rk[3], 0)], 2)], 1);
razueroh 0:27d3a972ad80 353 }
razueroh 0:27d3a972ad80 354 }
razueroh 0:27d3a972ad80 355
razueroh 0:27d3a972ad80 356 return 0;
razueroh 0:27d3a972ad80 357 }
razueroh 0:27d3a972ad80 358
razueroh 0:27d3a972ad80 359 void aesEncrypt(AES* aes, const unsigned char *inBlock, unsigned char *outBlock) {
razueroh 0:27d3a972ad80 360 unsigned int s0, s1, s2, s3;
razueroh 0:27d3a972ad80 361 unsigned int t0, t1, t2, t3;
razueroh 0:27d3a972ad80 362 unsigned int r = aes->rounds >> 1;
razueroh 0:27d3a972ad80 363
razueroh 0:27d3a972ad80 364 const unsigned int* rk = aes->key;
razueroh 0:27d3a972ad80 365 /*
razueroh 0:27d3a972ad80 366 * map byte array block to cipher state
razueroh 0:27d3a972ad80 367 * and add initial round key:
razueroh 0:27d3a972ad80 368 */
razueroh 0:27d3a972ad80 369 memcpy(&s0, inBlock, sizeof(s0));
razueroh 0:27d3a972ad80 370 memcpy(&s1, inBlock + sizeof(s0), sizeof(s1));
razueroh 0:27d3a972ad80 371 memcpy(&s2, inBlock + 2 * sizeof(s0), sizeof(s2));
razueroh 0:27d3a972ad80 372 memcpy(&s3, inBlock + 3 * sizeof(s0), sizeof(s3));
razueroh 0:27d3a972ad80 373
razueroh 0:27d3a972ad80 374 s0 = byteReverseWord32(s0);
razueroh 0:27d3a972ad80 375 s1 = byteReverseWord32(s1);
razueroh 0:27d3a972ad80 376 s2 = byteReverseWord32(s2);
razueroh 0:27d3a972ad80 377 s3 = byteReverseWord32(s3);
razueroh 0:27d3a972ad80 378
razueroh 0:27d3a972ad80 379 s0 ^= rk[0];
razueroh 0:27d3a972ad80 380 s1 ^= rk[1];
razueroh 0:27d3a972ad80 381 s2 ^= rk[2];
razueroh 0:27d3a972ad80 382 s3 ^= rk[3];
razueroh 0:27d3a972ad80 383
razueroh 0:27d3a972ad80 384 /*
razueroh 0:27d3a972ad80 385 * Nr - 1 full rounds:
razueroh 0:27d3a972ad80 386 */
razueroh 0:27d3a972ad80 387
razueroh 0:27d3a972ad80 388 for (;;) {
razueroh 0:27d3a972ad80 389 t0 =
razueroh 0:27d3a972ad80 390 Te[GETBYTE(s0, 3)] ^
razueroh 0:27d3a972ad80 391 ROR(Te[GETBYTE(s1, 2)], 1) ^
razueroh 0:27d3a972ad80 392 ROR(Te[GETBYTE(s2, 1)], 2) ^
razueroh 0:27d3a972ad80 393 ROL(Te[GETBYTE(s3, 0)], 1) ^
razueroh 0:27d3a972ad80 394 rk[4];
razueroh 0:27d3a972ad80 395 t1 =
razueroh 0:27d3a972ad80 396 Te[GETBYTE(s1, 3)] ^
razueroh 0:27d3a972ad80 397 ROR(Te[GETBYTE(s2, 2)], 1) ^
razueroh 0:27d3a972ad80 398 ROR(Te[GETBYTE(s3, 1)], 2) ^
razueroh 0:27d3a972ad80 399 ROL(Te[GETBYTE(s0, 0)], 1) ^
razueroh 0:27d3a972ad80 400 rk[5];
razueroh 0:27d3a972ad80 401 t2 =
razueroh 0:27d3a972ad80 402 Te[GETBYTE(s2, 3)] ^
razueroh 0:27d3a972ad80 403 ROR(Te[GETBYTE(s3, 2)], 1) ^
razueroh 0:27d3a972ad80 404 ROR(Te[GETBYTE(s0, 1)], 2) ^
razueroh 0:27d3a972ad80 405 ROL(Te[GETBYTE(s1, 0)], 1) ^
razueroh 0:27d3a972ad80 406 rk[6];
razueroh 0:27d3a972ad80 407 t3 =
razueroh 0:27d3a972ad80 408 Te[GETBYTE(s3, 3)] ^
razueroh 0:27d3a972ad80 409 ROR(Te[GETBYTE(s0, 2)], 1) ^
razueroh 0:27d3a972ad80 410 ROR(Te[GETBYTE(s1, 1)], 2) ^
razueroh 0:27d3a972ad80 411 ROL(Te[GETBYTE(s2, 0)], 1) ^
razueroh 0:27d3a972ad80 412 rk[7];
razueroh 0:27d3a972ad80 413
razueroh 0:27d3a972ad80 414 rk += 8;
razueroh 0:27d3a972ad80 415 if (--r == 0) {
razueroh 0:27d3a972ad80 416 break;
razueroh 0:27d3a972ad80 417 }
razueroh 0:27d3a972ad80 418
razueroh 0:27d3a972ad80 419 s0 =
razueroh 0:27d3a972ad80 420 Te[GETBYTE(t0, 3)] ^
razueroh 0:27d3a972ad80 421 ROR(Te[GETBYTE(t1, 2)], 1) ^
razueroh 0:27d3a972ad80 422 ROR(Te[GETBYTE(t2, 1)], 2) ^
razueroh 0:27d3a972ad80 423 ROL(Te[GETBYTE(t3, 0)], 1) ^
razueroh 0:27d3a972ad80 424 rk[0];
razueroh 0:27d3a972ad80 425 s1 =
razueroh 0:27d3a972ad80 426 Te[GETBYTE(t1, 3)] ^
razueroh 0:27d3a972ad80 427 ROR(Te[GETBYTE(t2, 2)], 1) ^
razueroh 0:27d3a972ad80 428 ROR(Te[GETBYTE(t3, 1)], 2) ^
razueroh 0:27d3a972ad80 429 ROL(Te[GETBYTE(t0, 0)], 1) ^
razueroh 0:27d3a972ad80 430 rk[1];
razueroh 0:27d3a972ad80 431 s2 =
razueroh 0:27d3a972ad80 432 Te[GETBYTE(t2, 3)] ^
razueroh 0:27d3a972ad80 433 ROR(Te[GETBYTE(t3, 2)], 1) ^
razueroh 0:27d3a972ad80 434 ROR(Te[GETBYTE(t0, 1)], 2) ^
razueroh 0:27d3a972ad80 435 ROL(Te[GETBYTE(t1, 0)], 1) ^
razueroh 0:27d3a972ad80 436 rk[2];
razueroh 0:27d3a972ad80 437 s3 =
razueroh 0:27d3a972ad80 438 Te[GETBYTE(t3, 3)] ^
razueroh 0:27d3a972ad80 439 ROR(Te[GETBYTE(t0, 2)], 1) ^
razueroh 0:27d3a972ad80 440 ROR(Te[GETBYTE(t1, 1)], 2) ^
razueroh 0:27d3a972ad80 441 ROL(Te[GETBYTE(t2, 0)], 1) ^
razueroh 0:27d3a972ad80 442 rk[3];
razueroh 0:27d3a972ad80 443 }
razueroh 0:27d3a972ad80 444
razueroh 0:27d3a972ad80 445 /*
razueroh 0:27d3a972ad80 446 * apply last round and
razueroh 0:27d3a972ad80 447 * map cipher state to byte array block:
razueroh 0:27d3a972ad80 448 */
razueroh 0:27d3a972ad80 449
razueroh 0:27d3a972ad80 450 s0 =
razueroh 0:27d3a972ad80 451 (Te[GETBYTE(t0, 3)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 452 (Te[GETBYTE(t1, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 453 (Te[GETBYTE(t2, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 454 (Te[GETBYTE(t3, 0)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 455 rk[0];
razueroh 0:27d3a972ad80 456 s1 =
razueroh 0:27d3a972ad80 457 (Te[GETBYTE(t1, 3)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 458 (Te[GETBYTE(t2, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 459 (Te[GETBYTE(t3, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 460 (Te[GETBYTE(t0, 0)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 461 rk[1];
razueroh 0:27d3a972ad80 462 s2 =
razueroh 0:27d3a972ad80 463 (Te[GETBYTE(t2, 3)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 464 (Te[GETBYTE(t3, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 465 (Te[GETBYTE(t0, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 466 (Te[GETBYTE(t1, 0)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 467 rk[2];
razueroh 0:27d3a972ad80 468 s3 =
razueroh 0:27d3a972ad80 469 (Te[GETBYTE(t3, 3)] & 0x00ff0000) << 8 ^
razueroh 0:27d3a972ad80 470 (Te[GETBYTE(t0, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 471 (Te[GETBYTE(t1, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 472 (Te[GETBYTE(t2, 0)] & 0x0000ff00) >> 8 ^
razueroh 0:27d3a972ad80 473 rk[3];
razueroh 0:27d3a972ad80 474
razueroh 0:27d3a972ad80 475 s0 = byteReverseWord32(s0);
razueroh 0:27d3a972ad80 476 s1 = byteReverseWord32(s1);
razueroh 0:27d3a972ad80 477 s2 = byteReverseWord32(s2);
razueroh 0:27d3a972ad80 478 s3 = byteReverseWord32(s3);
razueroh 0:27d3a972ad80 479
razueroh 0:27d3a972ad80 480 memcpy(outBlock, &s0, sizeof(s0));
razueroh 0:27d3a972ad80 481 memcpy(outBlock + sizeof(s0), &s1, sizeof(s1));
razueroh 0:27d3a972ad80 482 memcpy(outBlock + 2 * sizeof(s0), &s2, sizeof(s2));
razueroh 0:27d3a972ad80 483 memcpy(outBlock + 3 * sizeof(s0), &s3, sizeof(s3));
razueroh 0:27d3a972ad80 484 }
razueroh 0:27d3a972ad80 485
razueroh 0:27d3a972ad80 486 void aesDecrypt(AES* aes, const unsigned char *inBlock, unsigned char *outBlock) {
razueroh 0:27d3a972ad80 487 unsigned int s0, s1, s2, s3;
razueroh 0:27d3a972ad80 488 unsigned int t0, t1, t2, t3;
razueroh 0:27d3a972ad80 489 unsigned int r = aes->rounds >> 1;
razueroh 0:27d3a972ad80 490
razueroh 0:27d3a972ad80 491 const unsigned int *rk = aes->key;
razueroh 0:27d3a972ad80 492 /*
razueroh 0:27d3a972ad80 493 * map byte array block to cipher state
razueroh 0:27d3a972ad80 494 * and add initial round key:
razueroh 0:27d3a972ad80 495 */
razueroh 0:27d3a972ad80 496 memcpy(&s0, inBlock, sizeof(s0));
razueroh 0:27d3a972ad80 497 memcpy(&s1, inBlock + sizeof(s0), sizeof(s1));
razueroh 0:27d3a972ad80 498 memcpy(&s2, inBlock + 2 * sizeof(s0), sizeof(s2));
razueroh 0:27d3a972ad80 499 memcpy(&s3, inBlock + 3 * sizeof(s0), sizeof(s3));
razueroh 0:27d3a972ad80 500
razueroh 0:27d3a972ad80 501 s0 = byteReverseWord32(s0);
razueroh 0:27d3a972ad80 502 s1 = byteReverseWord32(s1);
razueroh 0:27d3a972ad80 503 s2 = byteReverseWord32(s2);
razueroh 0:27d3a972ad80 504 s3 = byteReverseWord32(s3);
razueroh 0:27d3a972ad80 505
razueroh 0:27d3a972ad80 506 s0 ^= rk[0];
razueroh 0:27d3a972ad80 507 s1 ^= rk[1];
razueroh 0:27d3a972ad80 508 s2 ^= rk[2];
razueroh 0:27d3a972ad80 509 s3 ^= rk[3];
razueroh 0:27d3a972ad80 510
razueroh 0:27d3a972ad80 511 /*
razueroh 0:27d3a972ad80 512 * Nr - 1 full rounds:
razueroh 0:27d3a972ad80 513 */
razueroh 0:27d3a972ad80 514
razueroh 0:27d3a972ad80 515 for (;;) {
razueroh 0:27d3a972ad80 516 t0 =
razueroh 0:27d3a972ad80 517 Td[0][GETBYTE(s0, 3)] ^
razueroh 0:27d3a972ad80 518 ROR(Td[0][GETBYTE(s3, 2)], 1) ^
razueroh 0:27d3a972ad80 519 ROR(Td[0][GETBYTE(s2, 1)], 2) ^
razueroh 0:27d3a972ad80 520 ROL(Td[0][GETBYTE(s1, 0)], 1) ^
razueroh 0:27d3a972ad80 521 rk[4];
razueroh 0:27d3a972ad80 522 t1 =
razueroh 0:27d3a972ad80 523 Td[0][GETBYTE(s1, 3)] ^
razueroh 0:27d3a972ad80 524 ROR(Td[0][GETBYTE(s0, 2)], 1) ^
razueroh 0:27d3a972ad80 525 ROR(Td[0][GETBYTE(s3, 1)], 2) ^
razueroh 0:27d3a972ad80 526 ROL(Td[0][GETBYTE(s2, 0)], 1) ^
razueroh 0:27d3a972ad80 527 rk[5];
razueroh 0:27d3a972ad80 528 t2 =
razueroh 0:27d3a972ad80 529 Td[0][GETBYTE(s2, 3)] ^
razueroh 0:27d3a972ad80 530 ROR(Td[0][GETBYTE(s1, 2)], 1) ^
razueroh 0:27d3a972ad80 531 ROR(Td[0][GETBYTE(s0, 1)], 2) ^
razueroh 0:27d3a972ad80 532 ROL(Td[0][GETBYTE(s3, 0)], 1) ^
razueroh 0:27d3a972ad80 533 rk[6];
razueroh 0:27d3a972ad80 534 t3 =
razueroh 0:27d3a972ad80 535 Td[0][GETBYTE(s3, 3)] ^
razueroh 0:27d3a972ad80 536 ROR(Td[0][GETBYTE(s2, 2)], 1) ^
razueroh 0:27d3a972ad80 537 ROR(Td[0][GETBYTE(s1, 1)], 2) ^
razueroh 0:27d3a972ad80 538 ROL(Td[0][GETBYTE(s0, 0)], 1) ^
razueroh 0:27d3a972ad80 539 rk[7];
razueroh 0:27d3a972ad80 540
razueroh 0:27d3a972ad80 541 rk += 8;
razueroh 0:27d3a972ad80 542 if (--r == 0) {
razueroh 0:27d3a972ad80 543 break;
razueroh 0:27d3a972ad80 544 }
razueroh 0:27d3a972ad80 545
razueroh 0:27d3a972ad80 546 s0 =
razueroh 0:27d3a972ad80 547 Td[0][GETBYTE(t0, 3)] ^
razueroh 0:27d3a972ad80 548 ROR(Td[0][GETBYTE(t3, 2)], 1) ^
razueroh 0:27d3a972ad80 549 ROR(Td[0][GETBYTE(t2, 1)], 2) ^
razueroh 0:27d3a972ad80 550 ROL(Td[0][GETBYTE(t1, 0)], 1) ^
razueroh 0:27d3a972ad80 551 rk[0];
razueroh 0:27d3a972ad80 552 s1 =
razueroh 0:27d3a972ad80 553 Td[0][GETBYTE(t1, 3)] ^
razueroh 0:27d3a972ad80 554 ROR(Td[0][GETBYTE(t0, 2)], 1) ^
razueroh 0:27d3a972ad80 555 ROR(Td[0][GETBYTE(t3, 1)], 2) ^
razueroh 0:27d3a972ad80 556 ROL(Td[0][GETBYTE(t2, 0)], 1) ^
razueroh 0:27d3a972ad80 557 rk[1];
razueroh 0:27d3a972ad80 558 s2 =
razueroh 0:27d3a972ad80 559 Td[0][GETBYTE(t2, 3)] ^
razueroh 0:27d3a972ad80 560 ROR(Td[0][GETBYTE(t1, 2)], 1) ^
razueroh 0:27d3a972ad80 561 ROR(Td[0][GETBYTE(t0, 1)], 2) ^
razueroh 0:27d3a972ad80 562 ROL(Td[0][GETBYTE(t3, 0)], 1) ^
razueroh 0:27d3a972ad80 563 rk[2];
razueroh 0:27d3a972ad80 564 s3 =
razueroh 0:27d3a972ad80 565 Td[0][GETBYTE(t3, 3)] ^
razueroh 0:27d3a972ad80 566 ROR(Td[0][GETBYTE(t2, 2)], 1) ^
razueroh 0:27d3a972ad80 567 ROR(Td[0][GETBYTE(t1, 1)], 2) ^
razueroh 0:27d3a972ad80 568 ROL(Td[0][GETBYTE(t0, 0)], 1) ^
razueroh 0:27d3a972ad80 569 rk[3];
razueroh 0:27d3a972ad80 570 }
razueroh 0:27d3a972ad80 571 /*
razueroh 0:27d3a972ad80 572 * apply last round and
razueroh 0:27d3a972ad80 573 * map cipher state to byte array block:
razueroh 0:27d3a972ad80 574 */
razueroh 0:27d3a972ad80 575 s0 =
razueroh 0:27d3a972ad80 576 (Td[1][GETBYTE(t0, 3)] & 0xff000000) ^
razueroh 0:27d3a972ad80 577 (Td[1][GETBYTE(t3, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 578 (Td[1][GETBYTE(t2, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 579 (Td[1][GETBYTE(t1, 0)] & 0x000000ff) ^
razueroh 0:27d3a972ad80 580 rk[0];
razueroh 0:27d3a972ad80 581 s1 =
razueroh 0:27d3a972ad80 582 (Td[1][GETBYTE(t1, 3)] & 0xff000000) ^
razueroh 0:27d3a972ad80 583 (Td[1][GETBYTE(t0, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 584 (Td[1][GETBYTE(t3, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 585 (Td[1][GETBYTE(t2, 0)] & 0x000000ff) ^
razueroh 0:27d3a972ad80 586 rk[1];
razueroh 0:27d3a972ad80 587 s2 =
razueroh 0:27d3a972ad80 588 (Td[1][GETBYTE(t2, 3)] & 0xff000000) ^
razueroh 0:27d3a972ad80 589 (Td[1][GETBYTE(t1, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 590 (Td[1][GETBYTE(t0, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 591 (Td[1][GETBYTE(t3, 0)] & 0x000000ff) ^
razueroh 0:27d3a972ad80 592 rk[2];
razueroh 0:27d3a972ad80 593 s3 =
razueroh 0:27d3a972ad80 594 (Td[1][GETBYTE(t3, 3)] & 0xff000000) ^
razueroh 0:27d3a972ad80 595 (Td[1][GETBYTE(t2, 2)] & 0x00ff0000) ^
razueroh 0:27d3a972ad80 596 (Td[1][GETBYTE(t1, 1)] & 0x0000ff00) ^
razueroh 0:27d3a972ad80 597 (Td[1][GETBYTE(t0, 0)] & 0x000000ff) ^
razueroh 0:27d3a972ad80 598 rk[3];
razueroh 0:27d3a972ad80 599
razueroh 0:27d3a972ad80 600 s0 = byteReverseWord32(s0);
razueroh 0:27d3a972ad80 601 s1 = byteReverseWord32(s1);
razueroh 0:27d3a972ad80 602 s2 = byteReverseWord32(s2);
razueroh 0:27d3a972ad80 603 s3 = byteReverseWord32(s3);
razueroh 0:27d3a972ad80 604
razueroh 0:27d3a972ad80 605 memcpy(outBlock, &s0, sizeof(s0));
razueroh 0:27d3a972ad80 606 memcpy(outBlock + sizeof(s0), &s1, sizeof(s1));
razueroh 0:27d3a972ad80 607 memcpy(outBlock + 2 * sizeof(s0), &s2, sizeof(s2));
razueroh 0:27d3a972ad80 608 memcpy(outBlock + 3 * sizeof(s0), &s3, sizeof(s3));
razueroh 0:27d3a972ad80 609 }
razueroh 0:27d3a972ad80 610
razueroh 0:27d3a972ad80 611 void aesEcbEncrypt(AES* aes, unsigned char *output, const unsigned char *input, unsigned int inputSize) {
razueroh 0:27d3a972ad80 612 unsigned int blocks = inputSize / SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 613
razueroh 0:27d3a972ad80 614 while (blocks--) {
razueroh 0:27d3a972ad80 615 aesEncrypt(aes, input, (unsigned char *)aes->reg);
razueroh 0:27d3a972ad80 616 memcpy(output, aes->reg, SMALL_AES_BLOCK_SIZE);
razueroh 0:27d3a972ad80 617
razueroh 0:27d3a972ad80 618 output += SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 619 input += SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 620 }
razueroh 0:27d3a972ad80 621 }
razueroh 0:27d3a972ad80 622
razueroh 0:27d3a972ad80 623 void aesEcbDecrypt(AES* aes, unsigned char *output, const unsigned char *input, unsigned int inputSize) {
razueroh 0:27d3a972ad80 624 unsigned int blocks = inputSize / SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 625
razueroh 0:27d3a972ad80 626 while (blocks--) {
razueroh 0:27d3a972ad80 627 aesDecrypt(aes, input, (unsigned char *)aes->reg);
razueroh 0:27d3a972ad80 628 memcpy(output, aes->reg, SMALL_AES_BLOCK_SIZE);
razueroh 0:27d3a972ad80 629
razueroh 0:27d3a972ad80 630 output += SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 631 input += SMALL_AES_BLOCK_SIZE;
razueroh 0:27d3a972ad80 632 }
razueroh 0:27d3a972ad80 633 }
razueroh 0:27d3a972ad80 634
razueroh 0:27d3a972ad80 635 unsigned int byteReverseWord32(unsigned int value) {
razueroh 0:27d3a972ad80 636 return (rotrFixed(value, 8U) & 0xff00ff00) | (rotlFixed(value, 8U) & 0x00ff00ff);
razueroh 0:27d3a972ad80 637 }
razueroh 0:27d3a972ad80 638
razueroh 0:27d3a972ad80 639 void byteReverseWords(unsigned int *out, const unsigned int *in, unsigned int byteCount) {
razueroh 0:27d3a972ad80 640 unsigned int count = byteCount/sizeof(unsigned int), i;
razueroh 0:27d3a972ad80 641
razueroh 0:27d3a972ad80 642 for (i = 0; i < count; i++)
razueroh 0:27d3a972ad80 643 out[i] = byteReverseWord32(in[i]);
razueroh 0:27d3a972ad80 644 }
razueroh 0:27d3a972ad80 645
razueroh 0:27d3a972ad80 646 unsigned int rotlFixed(unsigned int x, unsigned int y) {
razueroh 0:27d3a972ad80 647 return (x << y) | (x >> (sizeof(y) * 8 - y));
razueroh 0:27d3a972ad80 648 }
razueroh 0:27d3a972ad80 649
razueroh 0:27d3a972ad80 650
razueroh 0:27d3a972ad80 651 unsigned int rotrFixed(unsigned int x, unsigned int y) {
razueroh 0:27d3a972ad80 652 return (x >> y) | (x << (sizeof(y) * 8 - y));
razueroh 0:27d3a972ad80 653 }