blob: 8f257c1599028e94128e2734f3ad2caa2082dd57 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001#ifndef _NET_AH_H
2#define _NET_AH_H
3
Herbert Xu9409f382006-08-06 19:49:12 +10004#include <linux/crypto.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -07005#include <net/xfrm.h>
6
7/* This is the maximum truncated ICV length that we know of. */
8#define MAX_AH_AUTH_LEN 12
9
10struct ah_data
11{
12 u8 *key;
13 int key_len;
14 u8 *work_icv;
15 int icv_full_len;
16 int icv_trunc_len;
17
Herbert Xu07d4ee52006-08-20 14:24:50 +100018 struct crypto_hash *tfm;
Linus Torvalds1da177e2005-04-16 15:20:36 -070019};
20
Herbert Xu07d4ee52006-08-20 14:24:50 +100021static inline int ah_mac_digest(struct ah_data *ahp, struct sk_buff *skb,
22 u8 *auth_data)
Linus Torvalds1da177e2005-04-16 15:20:36 -070023{
Herbert Xu07d4ee52006-08-20 14:24:50 +100024 struct hash_desc desc;
25 int err;
26
27 desc.tfm = ahp->tfm;
28 desc.flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -070029
30 memset(auth_data, 0, ahp->icv_trunc_len);
Herbert Xu07d4ee52006-08-20 14:24:50 +100031 err = crypto_hash_init(&desc);
32 if (unlikely(err))
33 goto out;
34 err = skb_icv_walk(skb, &desc, 0, skb->len, crypto_hash_update);
35 if (unlikely(err))
36 goto out;
37 err = crypto_hash_final(&desc, ahp->work_icv);
38
39out:
40 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -070041}
42
43#endif