2 BLAKE2 reference source code package - reference C implementations
4 Copyright 2012, Samuel Neves <sneves@dei.uc.pt>. You may use this under the
5 terms of the CC0, the OpenSSL Licence, or the Apache Public License 2.0, at
6 your option. The terms of these licenses can be found at:
8 - CC0 1.0 Universal : http://creativecommons.org/publicdomain/zero/1.0
9 - OpenSSL license : https://www.openssl.org/source/license.html
10 - Apache 2.0 : http://www.apache.org/licenses/LICENSE-2.0
12 More information about the BLAKE2 hash function can be found at
21 #if !defined(__cplusplus) && (!defined(__STDC_VERSION__) || __STDC_VERSION__ < 199901L)
23 #define BLAKE2_INLINE __inline
24 #elif defined(__GNUC__)
25 #define BLAKE2_INLINE __inline__
30 #define BLAKE2_INLINE inline
33 static BLAKE2_INLINE uint32_t load32( const void *src )
35 #if defined(NATIVE_LITTLE_ENDIAN)
37 memcpy(&w, src, sizeof w);
40 const uint8_t *p = ( const uint8_t * )src;
41 return (( uint32_t )( p[0] ) << 0) |
42 (( uint32_t )( p[1] ) << 8) |
43 (( uint32_t )( p[2] ) << 16) |
44 (( uint32_t )( p[3] ) << 24) ;
48 static BLAKE2_INLINE uint64_t load64( const void *src )
50 #if defined(NATIVE_LITTLE_ENDIAN)
52 memcpy(&w, src, sizeof w);
55 const uint8_t *p = ( const uint8_t * )src;
56 return (( uint64_t )( p[0] ) << 0) |
57 (( uint64_t )( p[1] ) << 8) |
58 (( uint64_t )( p[2] ) << 16) |
59 (( uint64_t )( p[3] ) << 24) |
60 (( uint64_t )( p[4] ) << 32) |
61 (( uint64_t )( p[5] ) << 40) |
62 (( uint64_t )( p[6] ) << 48) |
63 (( uint64_t )( p[7] ) << 56) ;
67 static BLAKE2_INLINE uint16_t load16( const void *src )
69 #if defined(NATIVE_LITTLE_ENDIAN)
71 memcpy(&w, src, sizeof w);
74 const uint8_t *p = ( const uint8_t * )src;
75 return ( uint16_t )((( uint32_t )( p[0] ) << 0) |
76 (( uint32_t )( p[1] ) << 8));
80 static BLAKE2_INLINE void store16( void *dst, uint16_t w )
82 #if defined(NATIVE_LITTLE_ENDIAN)
83 memcpy(dst, &w, sizeof w);
85 uint8_t *p = ( uint8_t * )dst;
86 *p++ = ( uint8_t )w; w >>= 8;
91 static BLAKE2_INLINE void store32( void *dst, uint32_t w )
93 #if defined(NATIVE_LITTLE_ENDIAN)
94 memcpy(dst, &w, sizeof w);
96 uint8_t *p = ( uint8_t * )dst;
97 p[0] = (uint8_t)(w >> 0);
98 p[1] = (uint8_t)(w >> 8);
99 p[2] = (uint8_t)(w >> 16);
100 p[3] = (uint8_t)(w >> 24);
104 static BLAKE2_INLINE void store64( void *dst, uint64_t w )
106 #if defined(NATIVE_LITTLE_ENDIAN)
107 memcpy(dst, &w, sizeof w);
109 uint8_t *p = ( uint8_t * )dst;
110 p[0] = (uint8_t)(w >> 0);
111 p[1] = (uint8_t)(w >> 8);
112 p[2] = (uint8_t)(w >> 16);
113 p[3] = (uint8_t)(w >> 24);
114 p[4] = (uint8_t)(w >> 32);
115 p[5] = (uint8_t)(w >> 40);
116 p[6] = (uint8_t)(w >> 48);
117 p[7] = (uint8_t)(w >> 56);
121 static BLAKE2_INLINE uint64_t load48( const void *src )
123 const uint8_t *p = ( const uint8_t * )src;
124 return (( uint64_t )( p[0] ) << 0) |
125 (( uint64_t )( p[1] ) << 8) |
126 (( uint64_t )( p[2] ) << 16) |
127 (( uint64_t )( p[3] ) << 24) |
128 (( uint64_t )( p[4] ) << 32) |
129 (( uint64_t )( p[5] ) << 40) ;
132 static BLAKE2_INLINE void store48( void *dst, uint64_t w )
134 uint8_t *p = ( uint8_t * )dst;
135 p[0] = (uint8_t)(w >> 0);
136 p[1] = (uint8_t)(w >> 8);
137 p[2] = (uint8_t)(w >> 16);
138 p[3] = (uint8_t)(w >> 24);
139 p[4] = (uint8_t)(w >> 32);
140 p[5] = (uint8_t)(w >> 40);
143 static BLAKE2_INLINE uint32_t rotr32( const uint32_t w, const unsigned c )
145 return ( w >> c ) | ( w << ( 32 - c ) );
148 static BLAKE2_INLINE uint64_t rotr64( const uint64_t w, const unsigned c )
150 return ( w >> c ) | ( w << ( 64 - c ) );
153 /* prevents compiler optimizing out memset() */
154 static BLAKE2_INLINE void secure_zero_memory(void *v, size_t n)
156 static void *(*const volatile memset_v)(void *, int, size_t) = &memset;