Frank Denis
65fbe15fa3
Slightly faster verify_{16,32,64}
2015-11-25 12:19:17 +01:00
Frank Denis
d5fd75dcc7
Make crypto_stream_chacha20 modular like the rest
...
In preparation for optimized implementations
2015-11-25 01:17:37 +01:00
Frank Denis
82b41835c5
Support the IBM compiler
2015-11-23 17:06:33 +01:00
Frank Denis
9bfa30ae6a
api.h -> stream_chacha20_ref.h
2015-11-22 00:02:00 +01:00
Frank Denis
e60139c17f
Add missing headers
2015-11-21 13:32:07 +01:00
Frank Denis
28244907a1
Don't force inline
2015-11-21 13:14:48 +01:00
Frank Denis
f95a79065b
api.h removal
2015-11-21 12:56:46 +01:00
Frank Denis
3a4cdb9c3d
More api.h removal
2015-11-21 12:45:27 +01:00
Frank Denis
e33a505823
api.h removal
2015-11-21 12:36:42 +01:00
Frank Denis
16f12c1af3
More api.h removal
2015-11-21 12:35:02 +01:00
Frank Denis
fd0c47025f
More api.h removal
2015-11-21 12:24:59 +01:00
Frank Denis
e5a6057724
Remove api.h reference
2015-11-21 12:17:46 +01:00
Frank Denis
db5eda696e
crypto_hash/sha{256,512}/cp/api.h removal
2015-11-21 12:16:30 +01:00
Frank Denis
b7fdeb5ed3
Stop hiding function names with macros in salsa20
2015-11-21 09:07:52 +01:00
Frank Denis
68917b01cf
Limit safe_read() to SSIZE_MAX bytes
2015-11-21 08:33:08 +01:00
Frank Denis
a39ab96afa
Use __uint128_t only if HAVE_TI_MODE is defined
2015-11-21 08:03:14 +01:00
Frank Denis
271f1fba41
Remove CVS $Id
2015-11-20 22:39:09 +01:00
Frank Denis
d8eacd3260
Mark randombytes_implementation functions static
2015-11-19 16:04:42 +01:00
Frank Denis
b71254275e
Revert "Use SSSE3 instructions even on Visual Studio with a 32-bit target"
...
This reverts commit 7371f0dca4 .
2015-11-17 18:23:22 +01:00
Frank Denis
2bc5874874
Check that the output of X25519 is not the all-zero value
...
Return -1 if this happens, and mark crypto_scalarmult() as warn_unused_result
Mark dependent functions with warn_unused_result as well
2015-11-17 11:07:33 +01:00
Frank Denis
bdd2cdb3ac
Consistency
2015-11-17 00:38:17 +01:00
Frank Denis
55f6eb83f8
Keep it simple
2015-11-16 23:47:33 +01:00
Frank Denis
27466ded16
Indent
2015-11-16 23:19:24 +01:00
Frank Denis
07c42492e5
Repair sodium_is_zero()
2015-11-16 23:17:42 +01:00
Frank Denis
397d50664a
Faster sodium_is_zero() and sodium_increment() helpers
...
Also add sodium_add(), since people tend to reimplement this in order to
add constants to nonces.
2015-11-16 22:14:27 +01:00
Frank Denis
7371f0dca4
Use SSSE3 instructions even on Visual Studio with a 32-bit target
2015-11-16 16:26:02 +01:00
Frank Denis
0ad21a218c
Return CPU features in Visual Studio builds
...
Please note that on other platforms, we keep checking if intrinsics are available.
has_*() means that not only a CPU feature is present, but also that Sodium can
use it.
2015-11-16 16:16:54 +01:00
Frank Denis
f9169ac55b
Add a compile-time size check
2015-11-14 16:56:47 +01:00
Frank Denis
cf3064b08f
More explicit casts. Unaligned accesses are fine on these architectures.
2015-11-14 16:22:28 +01:00
Frank Denis
27048b06aa
Clear the state after poly1305_finish()
2015-11-14 16:22:28 +01:00
Frank Denis
e4167d66fe
Do not require assembly code to increment with carry
2015-11-14 16:22:24 +01:00
Frank Denis
0af177d1bf
Indent
2015-11-14 15:28:29 +01:00
Frank Denis
096ea8a91d
Handle partial blocks in poly1305_sse2
2015-11-14 15:23:25 +01:00
Frank Denis
2742547a27
Link poly1305_sse2
...
Breakage is expected as partial blocks are not handled yet
2015-11-14 14:34:34 +01:00
Frank Denis
a964055487
Make the poly1305_sse2 code more consistent with the other implementation
2015-11-14 13:57:25 +01:00
Frank Denis
6b7811471b
Import vanilla poly1305_sse2
2015-11-14 13:55:40 +01:00
Frank Denis
121978e2c3
Different ways to avoid inlining
2015-11-14 10:27:08 +01:00
Frank Denis
bd4c5c0d17
Remove crypto_onetimeauth_poly1305_donna_implementation_name() prototype
2015-11-14 01:57:46 +01:00
Frank Denis
c179651c62
auth_poly1305_donna.c -> poly1305_donna.c for consistency
2015-11-14 01:40:09 +01:00
Frank Denis
985d3891f9
Use poly1305_state_internal_t for the state of poly1305 internal functions
2015-11-14 01:04:28 +01:00
Frank Denis
2550fd8f1c
Indent
2015-11-14 00:38:07 +01:00
Frank Denis
75cc7123da
ctx -> state for consistency with the high-level functions
2015-11-14 00:30:08 +01:00
Frank Denis
580c22fd21
Get rid of poly1305_state to reduce the number of indirections
2015-11-14 00:19:18 +01:00
Frank Denis
8bced53601
Add compilation-time poly1305 structure size checks
2015-11-13 23:12:20 +01:00
Frank Denis
7561a25d5a
Add a is_zero() helper
2015-11-13 01:48:34 +01:00
Frank Denis
1f18cf383a
Always include <stdint.h> and <limits.h> for SIZE_MAX
2015-11-10 19:01:39 +01:00
Frank Denis
ceb9c566fb
Implement the old edwards25519sha512batch construction on top of ref10
...
Only for backward compatibility; not compiled in minimal mode.
2015-11-10 11:06:13 +01:00
Frank Denis
2ff0ec3aa1
Move the legacy edwards25519sha512batch code to the attic
2015-11-10 07:48:11 +01:00
Frank Denis
7e995780a8
Remove useless sodium_memzero()
2015-11-10 07:39:37 +01:00
Frank Denis
49e160a165
In blake2b_final() the leftover shouldn't exceed two blocks
2015-11-08 23:17:57 +01:00