| OLD | NEW |
| 1 // Copyright (c) 2013 The Chromium Authors. All rights reserved. | 1 // Copyright (c) 2013 The Chromium Authors. All rights reserved. |
| 2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
| 3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
| 4 | 4 |
| 5 #include "net/quic/crypto/aes_128_gcm_12_encrypter.h" | 5 #include "net/quic/crypto/aes_128_gcm_12_encrypter.h" |
| 6 | 6 |
| 7 #include <openssl/evp.h> | 7 #include <openssl/evp.h> |
| 8 #include <string.h> | 8 #include <string.h> |
| 9 | 9 |
| 10 #include "base/memory/scoped_ptr.h" | 10 #include "base/memory/scoped_ptr.h" |
| 11 | 11 |
| 12 using base::StringPiece; | 12 using base::StringPiece; |
| 13 | 13 |
| 14 namespace net { | 14 namespace net { |
| 15 | 15 |
| 16 namespace { | 16 namespace { |
| 17 | 17 |
| 18 const size_t kKeySize = 16; | 18 const size_t kKeySize = 16; |
| 19 const size_t kNoncePrefixSize = 4; | 19 const size_t kNoncePrefixSize = 4; |
| 20 const size_t kAESNonceSize = 12; | 20 const size_t kAESNonceSize = 12; |
| 21 | 21 |
| 22 } // namespace | 22 } // namespace |
| 23 | 23 |
| 24 Aes128Gcm12Encrypter::Aes128Gcm12Encrypter() {} | 24 Aes128Gcm12Encrypter::Aes128Gcm12Encrypter() : last_seq_num_(0) {} |
| 25 | 25 |
| 26 Aes128Gcm12Encrypter::~Aes128Gcm12Encrypter() {} | 26 Aes128Gcm12Encrypter::~Aes128Gcm12Encrypter() {} |
| 27 | 27 |
| 28 // static | 28 // static |
| 29 bool Aes128Gcm12Encrypter::IsSupported() { return true; } | 29 bool Aes128Gcm12Encrypter::IsSupported() { return true; } |
| 30 | 30 |
| 31 bool Aes128Gcm12Encrypter::SetKey(StringPiece key) { | 31 bool Aes128Gcm12Encrypter::SetKey(StringPiece key) { |
| 32 DCHECK_EQ(key.size(), sizeof(key_)); | 32 DCHECK_EQ(key.size(), sizeof(key_)); |
| 33 if (key.size() != sizeof(key_)) { | 33 if (key.size() != sizeof(key_)) { |
| 34 return false; | 34 return false; |
| (...skipping 76 matching lines...) Expand 10 before | Expand all | Expand 10 after Loading... |
| 111 return true; | 111 return true; |
| 112 } | 112 } |
| 113 | 113 |
| 114 QuicData* Aes128Gcm12Encrypter::EncryptPacket( | 114 QuicData* Aes128Gcm12Encrypter::EncryptPacket( |
| 115 QuicPacketSequenceNumber sequence_number, | 115 QuicPacketSequenceNumber sequence_number, |
| 116 StringPiece associated_data, | 116 StringPiece associated_data, |
| 117 StringPiece plaintext) { | 117 StringPiece plaintext) { |
| 118 size_t ciphertext_size = GetCiphertextSize(plaintext.length()); | 118 size_t ciphertext_size = GetCiphertextSize(plaintext.length()); |
| 119 scoped_ptr<char[]> ciphertext(new char[ciphertext_size]); | 119 scoped_ptr<char[]> ciphertext(new char[ciphertext_size]); |
| 120 | 120 |
| 121 if (last_seq_num_ != 0 && sequence_number <= last_seq_num_) { |
| 122 DLOG(FATAL) << "Sequence numbers regressed"; |
| 123 return NULL; |
| 124 } |
| 125 last_seq_num_ = sequence_number; |
| 126 |
| 121 uint8 nonce[kNoncePrefixSize + sizeof(sequence_number)]; | 127 uint8 nonce[kNoncePrefixSize + sizeof(sequence_number)]; |
| 122 COMPILE_ASSERT(sizeof(nonce) == kAESNonceSize, bad_sequence_number_size); | 128 COMPILE_ASSERT(sizeof(nonce) == kAESNonceSize, bad_sequence_number_size); |
| 123 memcpy(nonce, nonce_prefix_, kNoncePrefixSize); | 129 memcpy(nonce, nonce_prefix_, kNoncePrefixSize); |
| 124 memcpy(nonce + kNoncePrefixSize, &sequence_number, sizeof(sequence_number)); | 130 memcpy(nonce + kNoncePrefixSize, &sequence_number, sizeof(sequence_number)); |
| 125 if (!Encrypt(StringPiece(reinterpret_cast<char*>(nonce), sizeof(nonce)), | 131 if (!Encrypt(StringPiece(reinterpret_cast<char*>(nonce), sizeof(nonce)), |
| 126 associated_data, plaintext, | 132 associated_data, plaintext, |
| 127 reinterpret_cast<unsigned char*>(ciphertext.get()))) { | 133 reinterpret_cast<unsigned char*>(ciphertext.get()))) { |
| 128 return NULL; | 134 return NULL; |
| 129 } | 135 } |
| 130 | 136 |
| (...skipping 19 matching lines...) Expand all Loading... |
| 150 StringPiece Aes128Gcm12Encrypter::GetKey() const { | 156 StringPiece Aes128Gcm12Encrypter::GetKey() const { |
| 151 return StringPiece(reinterpret_cast<const char*>(key_), sizeof(key_)); | 157 return StringPiece(reinterpret_cast<const char*>(key_), sizeof(key_)); |
| 152 } | 158 } |
| 153 | 159 |
| 154 StringPiece Aes128Gcm12Encrypter::GetNoncePrefix() const { | 160 StringPiece Aes128Gcm12Encrypter::GetNoncePrefix() const { |
| 155 return StringPiece(reinterpret_cast<const char*>(nonce_prefix_), | 161 return StringPiece(reinterpret_cast<const char*>(nonce_prefix_), |
| 156 kNoncePrefixSize); | 162 kNoncePrefixSize); |
| 157 } | 163 } |
| 158 | 164 |
| 159 } // namespace net | 165 } // namespace net |
| OLD | NEW |