diff options
author | Eric Biggers <ebiggers@google.com> | 2018-11-17 04:26:18 +0300 |
---|---|---|
committer | Herbert Xu <herbert@gondor.apana.org.au> | 2018-11-20 09:26:55 +0300 |
commit | dd333449d0fb667c5250c42488a7e90470e16c77 (patch) | |
tree | 4377def3ee5095c9d866430d20cffcabbe7f90fd /crypto/chacha20_generic.c | |
parent | 3d234b3313cd12157946522fe35f5a4574f31169 (diff) | |
download | linux-dd333449d0fb667c5250c42488a7e90470e16c77.tar.xz |
crypto: chacha20-generic - add HChaCha20 library function
Refactor the unkeyed permutation part of chacha20_block() into its own
function, then add hchacha20_block() which is the ChaCha equivalent of
HSalsa20 and is an intermediate step towards XChaCha20 (see
https://cr.yp.to/snuffle/xsalsa-20081128.pdf). HChaCha20 skips the
final addition of the initial state, and outputs only certain words of
the state. It should not be used for streaming directly.
Reviewed-by: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Acked-by: Martin Willi <martin@strongswan.org>
Signed-off-by: Eric Biggers <ebiggers@google.com>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
Diffstat (limited to 'crypto/chacha20_generic.c')
0 files changed, 0 insertions, 0 deletions