summary refs log tree commit diff
path: root/stdlib/arc4random.h
blob: cd39389c198c2710ee08e88b20c2d0f648b5d593 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
/* Arc4random definition used on TLS.
   Copyright (C) 2022 Free Software Foundation, Inc.
   This file is part of the GNU C Library.

   The GNU C Library is free software; you can redistribute it and/or
   modify it under the terms of the GNU Lesser General Public
   License as published by the Free Software Foundation; either
   version 2.1 of the License, or (at your option) any later version.

   The GNU C Library is distributed in the hope that it will be useful,
   but WITHOUT ANY WARRANTY; without even the implied warranty of
   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
   Lesser General Public License for more details.

   You should have received a copy of the GNU Lesser General Public
   License along with the GNU C Library; if not, see
   <https://www.gnu.org/licenses/>.  */

#ifndef _CHACHA20_H
#define _CHACHA20_H

#include <stddef.h>
#include <stdint.h>

/* Internal ChaCha20 state.  */
#define CHACHA20_STATE_LEN	16
#define CHACHA20_BLOCK_SIZE	64

/* Maximum number bytes until reseed (16 MB).  */
#define CHACHA20_RESEED_SIZE	(16 * 1024 * 1024)

/* Internal arc4random buffer, used on each feedback step so offer some
   backtracking protection and to allow better used of vectorized
   chacha20 implementations.  */
#define CHACHA20_BUFSIZE        (8 * CHACHA20_BLOCK_SIZE)

_Static_assert (CHACHA20_BUFSIZE >= CHACHA20_BLOCK_SIZE + CHACHA20_BLOCK_SIZE,
		"CHACHA20_BUFSIZE < CHACHA20_BLOCK_SIZE + CHACHA20_BLOCK_SIZE");

struct arc4random_state_t
{
  uint32_t ctx[CHACHA20_STATE_LEN];
  size_t have;
  size_t count;
  uint8_t buf[CHACHA20_BUFSIZE];
};

#endif