8#include <botan/gost_28147.h>
9#include <botan/exceptn.h>
10#include <botan/loadstor.h>
11#include <botan/rotate.h>
17 const uint8_t x = m_sboxes[4 * col + (row / 2)];
18 return (row % 2 == 0) ? (x >> 4) : (x & 0x0F);
23 const uint8_t x = m_sboxes[4 * (col % 16) + row];
24 const uint8_t y = m_sboxes[4 * (col / 16) + row];
25 return (x >> 4) | (y << 4);
33 static const uint8_t GOST_R_3411_TEST_PARAMS[64] = {
34 0x4E, 0x57, 0x64, 0xD1, 0xAB, 0x8D, 0xCB, 0xBF, 0x94, 0x1A, 0x7A,
35 0x4D, 0x2C, 0xD1, 0x10, 0x10, 0xD6, 0xA0, 0x57, 0x35, 0x8D, 0x38,
36 0xF2, 0xF7, 0x0F, 0x49, 0xD1, 0x5A, 0xEA, 0x2F, 0x8D, 0x94, 0x62,
37 0xEE, 0x43, 0x09, 0xB3, 0xF4, 0xA6, 0xA2, 0x18, 0xC6, 0x98, 0xE3,
38 0xC1, 0x7C, 0xE5, 0x7E, 0x70, 0x6B, 0x09, 0x66, 0xF7, 0x02, 0x3C,
39 0x8B, 0x55, 0x95, 0xBF, 0x28, 0x39, 0xB3, 0x2E, 0xCC };
42 static const uint8_t GOST_R_3411_CRYPTOPRO_PARAMS[64] = {
43 0xA5, 0x74, 0x77, 0xD1, 0x4F, 0xFA, 0x66, 0xE3, 0x54, 0xC7, 0x42,
44 0x4A, 0x60, 0xEC, 0xB4, 0x19, 0x82, 0x90, 0x9D, 0x75, 0x1D, 0x4F,
45 0xC9, 0x0B, 0x3B, 0x12, 0x2F, 0x54, 0x79, 0x08, 0xA0, 0xAF, 0xD1,
46 0x3E, 0x1A, 0x38, 0xC7, 0xB1, 0x81, 0xC6, 0xE6, 0x56, 0x05, 0x87,
47 0x03, 0x25, 0xEB, 0xFE, 0x9C, 0x6D, 0xF8, 0x6D, 0x2E, 0xAB, 0xDE,
48 0x20, 0xBA, 0x89, 0x3C, 0x92, 0xF8, 0xD3, 0x53, 0xBC };
50 if(m_name ==
"R3411_94_TestParam")
51 m_sboxes = GOST_R_3411_TEST_PARAMS;
52 else if(m_name ==
"R3411_CryptoPro")
53 m_sboxes = GOST_R_3411_CRYPTOPRO_PARAMS;
65 for(
size_t i = 0; i != 256; ++i)
67 m_SBOX[i ] = rotl<11, uint32_t>(param.
sbox_pair(0, i));
68 m_SBOX[i+256] = rotl<19, uint32_t>(param.
sbox_pair(1, i));
69 m_SBOX[i+512] = rotl<27, uint32_t>(param.
sbox_pair(2, i));
70 m_SBOX[i+768] = rotl< 3, uint32_t>(param.
sbox_pair(3, i));
82 std::string sbox_name =
"";
83 if(m_SBOX[0] == 0x00072000)
84 sbox_name =
"R3411_94_TestParam";
85 else if(m_SBOX[0] == 0x0002D000)
86 sbox_name =
"R3411_CryptoPro";
90 return "GOST-28147-89(" + sbox_name +
")";
96#define GOST_2ROUND(N1, N2, R1, R2) \
98 uint32_t T0 = N1 + m_EK[R1]; \
99 N2 ^= m_SBOX[get_byte(3, T0)] | \
100 m_SBOX[get_byte(2, T0)+256] | \
101 m_SBOX[get_byte(1, T0)+512] | \
102 m_SBOX[get_byte(0, T0)+768]; \
104 uint32_t T1 = N2 + m_EK[R2]; \
105 N1 ^= m_SBOX[get_byte(3, T1)] | \
106 m_SBOX[get_byte(2, T1)+256] | \
107 m_SBOX[get_byte(1, T1)+512] | \
108 m_SBOX[get_byte(0, T1)+768]; \
118 for(
size_t i = 0; i != blocks; ++i)
123 for(
size_t j = 0; j != 3; ++j)
150 for(
size_t i = 0; i != blocks; ++i)
160 for(
size_t j = 0; j != 3; ++j)
177void GOST_28147_89::key_schedule(
const uint8_t key[],
size_t)
180 for(
size_t i = 0; i != 8; ++i)
uint8_t sbox_pair(size_t row, size_t col) const
uint8_t sbox_entry(size_t row, size_t col) const
GOST_28147_89_Params(const std::string &name="R3411_94_TestParam")
void encrypt_n(const uint8_t in[], uint8_t out[], size_t blocks) const override
void decrypt_n(const uint8_t in[], uint8_t out[], size_t blocks) const override
std::string name() const override
GOST_28147_89(const GOST_28147_89_Params ¶ms)
void verify_key_set(bool cond) const
#define GOST_2ROUND(N1, N2, R1, R2)
void zap(std::vector< T, Alloc > &vec)
uint32_t load_le< uint32_t >(const uint8_t in[], size_t off)
void store_le(uint16_t in, uint8_t out[2])