bfb6a482f6
Use a shared function to determine the k parameter, i.e., the minimum number of iterations of the PWE derivation loop, for SAE and EAP-pwd. This makes it easier to fine-tune the parameter based on the negotiated group, if desired. Signed-off-by: Jouni Malinen <jouni@codeaurora.org>
31 lines
951 B
C
31 lines
951 B
C
/*
|
|
* Shared Dragonfly functionality
|
|
* Copyright (c) 2012-2016, Jouni Malinen <j@w1.fi>
|
|
* Copyright (c) 2019, The Linux Foundation
|
|
*
|
|
* This software may be distributed under the terms of the BSD license.
|
|
* See README for more details.
|
|
*/
|
|
|
|
#ifndef DRAGONFLY_H
|
|
#define DRAGONFLY_H
|
|
|
|
#define DRAGONFLY_MAX_ECC_PRIME_LEN 66
|
|
|
|
struct crypto_bignum;
|
|
struct crypto_ec;
|
|
|
|
int dragonfly_suitable_group(int group, int ecc_only);
|
|
unsigned int dragonfly_min_pwe_loop_iter(int group);
|
|
int dragonfly_get_random_qr_qnr(const struct crypto_bignum *prime,
|
|
struct crypto_bignum **qr,
|
|
struct crypto_bignum **qnr);
|
|
int dragonfly_is_quadratic_residue_blind(struct crypto_ec *ec,
|
|
const u8 *qr, const u8 *qnr,
|
|
const struct crypto_bignum *val);
|
|
int dragonfly_generate_scalar(const struct crypto_bignum *order,
|
|
struct crypto_bignum *_rand,
|
|
struct crypto_bignum *_mask,
|
|
struct crypto_bignum *scalar);
|
|
|
|
#endif /* DRAGONFLY_H */
|