2016-07-23 07:17:51 -04:00
|
|
|
package encoding
|
2016-02-27 10:41:21 -05:00
|
|
|
|
|
|
|
import (
|
2016-12-07 15:43:41 -05:00
|
|
|
"crypto/md5"
|
2017-01-13 17:42:39 -05:00
|
|
|
"hash/fnv"
|
2016-12-13 03:32:29 -05:00
|
|
|
|
2016-12-06 18:31:15 -05:00
|
|
|
"v2ray.com/core/common/crypto"
|
|
|
|
"v2ray.com/core/common/serial"
|
2016-02-27 10:41:21 -05:00
|
|
|
)
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// Authenticate authenticates a byte array using Fnv hash.
|
2016-02-27 10:41:21 -05:00
|
|
|
func Authenticate(b []byte) uint32 {
|
|
|
|
fnv1hash := fnv.New32a()
|
|
|
|
fnv1hash.Write(b)
|
|
|
|
return fnv1hash.Sum32()
|
|
|
|
}
|
2016-12-06 18:31:15 -05:00
|
|
|
|
2017-01-22 14:43:01 -05:00
|
|
|
type NoOpAuthenticator struct{}
|
|
|
|
|
|
|
|
func (NoOpAuthenticator) NonceSize() int {
|
|
|
|
return 0
|
|
|
|
}
|
|
|
|
|
|
|
|
func (NoOpAuthenticator) Overhead() int {
|
|
|
|
return 0
|
|
|
|
}
|
|
|
|
|
|
|
|
// Seal implements AEAD.Seal().
|
|
|
|
func (NoOpAuthenticator) Seal(dst, nonce, plaintext, additionalData []byte) []byte {
|
|
|
|
return append(dst[:0], plaintext...)
|
|
|
|
}
|
|
|
|
|
|
|
|
// Open implements AEAD.Open().
|
|
|
|
func (NoOpAuthenticator) Open(dst, nonce, ciphertext, additionalData []byte) ([]byte, error) {
|
|
|
|
return append(dst[:0], ciphertext...), nil
|
|
|
|
}
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// FnvAuthenticator is an AEAD based on Fnv hash.
|
2016-12-06 18:31:15 -05:00
|
|
|
type FnvAuthenticator struct {
|
|
|
|
}
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// NonceSize implements AEAD.NonceSize().
|
2016-12-06 18:31:15 -05:00
|
|
|
func (v *FnvAuthenticator) NonceSize() int {
|
|
|
|
return 0
|
|
|
|
}
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// Overhead impelements AEAD.Overhead().
|
2016-12-06 18:31:15 -05:00
|
|
|
func (v *FnvAuthenticator) Overhead() int {
|
|
|
|
return 4
|
|
|
|
}
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// Seal implements AEAD.Seal().
|
2016-12-06 18:31:15 -05:00
|
|
|
func (v *FnvAuthenticator) Seal(dst, nonce, plaintext, additionalData []byte) []byte {
|
2016-12-07 16:52:56 -05:00
|
|
|
dst = serial.Uint32ToBytes(Authenticate(plaintext), dst)
|
2016-12-06 18:31:15 -05:00
|
|
|
return append(dst, plaintext...)
|
|
|
|
}
|
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// Open implements AEAD.Open().
|
2016-12-06 18:31:15 -05:00
|
|
|
func (v *FnvAuthenticator) Open(dst, nonce, ciphertext, additionalData []byte) ([]byte, error) {
|
|
|
|
if serial.BytesToUint32(ciphertext[:4]) != Authenticate(ciphertext[4:]) {
|
|
|
|
return dst, crypto.ErrAuthenticationFailed
|
|
|
|
}
|
2016-12-07 16:52:56 -05:00
|
|
|
return append(dst, ciphertext[4:]...), nil
|
2016-12-06 18:31:15 -05:00
|
|
|
}
|
2016-12-07 15:43:41 -05:00
|
|
|
|
2016-12-13 03:32:29 -05:00
|
|
|
// GenerateChacha20Poly1305Key generates a 32-byte key from a given 16-byte array.
|
2016-12-07 15:43:41 -05:00
|
|
|
func GenerateChacha20Poly1305Key(b []byte) []byte {
|
|
|
|
key := make([]byte, 32)
|
|
|
|
t := md5.Sum(b)
|
|
|
|
copy(key, t[:])
|
|
|
|
t = md5.Sum(key[:16])
|
|
|
|
copy(key[16:], t[:])
|
|
|
|
return key
|
|
|
|
}
|