2 * Author......: Jens Steube <jens.steube@gmail.com>
8 #include "include/constants.h"
9 #include "include/kernel_vendor.h"
16 #include "include/kernel_functions.c"
17 #include "OpenCL/types_ocl.c"
18 #include "OpenCL/common.c"
20 #define COMPARE_S "OpenCL/check_single_comp4.c"
21 #define COMPARE_M "OpenCL/check_multi_comp4.c"
23 static void md5_transform (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[4])
49 MD5_STEP (MD5_Fo, a, b, c, d, w0_t, MD5C00, MD5S00);
50 MD5_STEP (MD5_Fo, d, a, b, c, w1_t, MD5C01, MD5S01);
51 MD5_STEP (MD5_Fo, c, d, a, b, w2_t, MD5C02, MD5S02);
52 MD5_STEP (MD5_Fo, b, c, d, a, w3_t, MD5C03, MD5S03);
53 MD5_STEP (MD5_Fo, a, b, c, d, w4_t, MD5C04, MD5S00);
54 MD5_STEP (MD5_Fo, d, a, b, c, w5_t, MD5C05, MD5S01);
55 MD5_STEP (MD5_Fo, c, d, a, b, w6_t, MD5C06, MD5S02);
56 MD5_STEP (MD5_Fo, b, c, d, a, w7_t, MD5C07, MD5S03);
57 MD5_STEP (MD5_Fo, a, b, c, d, w8_t, MD5C08, MD5S00);
58 MD5_STEP (MD5_Fo, d, a, b, c, w9_t, MD5C09, MD5S01);
59 MD5_STEP (MD5_Fo, c, d, a, b, wa_t, MD5C0a, MD5S02);
60 MD5_STEP (MD5_Fo, b, c, d, a, wb_t, MD5C0b, MD5S03);
61 MD5_STEP (MD5_Fo, a, b, c, d, wc_t, MD5C0c, MD5S00);
62 MD5_STEP (MD5_Fo, d, a, b, c, wd_t, MD5C0d, MD5S01);
63 MD5_STEP (MD5_Fo, c, d, a, b, we_t, MD5C0e, MD5S02);
64 MD5_STEP (MD5_Fo, b, c, d, a, wf_t, MD5C0f, MD5S03);
66 MD5_STEP (MD5_Go, a, b, c, d, w1_t, MD5C10, MD5S10);
67 MD5_STEP (MD5_Go, d, a, b, c, w6_t, MD5C11, MD5S11);
68 MD5_STEP (MD5_Go, c, d, a, b, wb_t, MD5C12, MD5S12);
69 MD5_STEP (MD5_Go, b, c, d, a, w0_t, MD5C13, MD5S13);
70 MD5_STEP (MD5_Go, a, b, c, d, w5_t, MD5C14, MD5S10);
71 MD5_STEP (MD5_Go, d, a, b, c, wa_t, MD5C15, MD5S11);
72 MD5_STEP (MD5_Go, c, d, a, b, wf_t, MD5C16, MD5S12);
73 MD5_STEP (MD5_Go, b, c, d, a, w4_t, MD5C17, MD5S13);
74 MD5_STEP (MD5_Go, a, b, c, d, w9_t, MD5C18, MD5S10);
75 MD5_STEP (MD5_Go, d, a, b, c, we_t, MD5C19, MD5S11);
76 MD5_STEP (MD5_Go, c, d, a, b, w3_t, MD5C1a, MD5S12);
77 MD5_STEP (MD5_Go, b, c, d, a, w8_t, MD5C1b, MD5S13);
78 MD5_STEP (MD5_Go, a, b, c, d, wd_t, MD5C1c, MD5S10);
79 MD5_STEP (MD5_Go, d, a, b, c, w2_t, MD5C1d, MD5S11);
80 MD5_STEP (MD5_Go, c, d, a, b, w7_t, MD5C1e, MD5S12);
81 MD5_STEP (MD5_Go, b, c, d, a, wc_t, MD5C1f, MD5S13);
83 MD5_STEP (MD5_H1, a, b, c, d, w5_t, MD5C20, MD5S20);
84 MD5_STEP (MD5_H2, d, a, b, c, w8_t, MD5C21, MD5S21);
85 MD5_STEP (MD5_H1, c, d, a, b, wb_t, MD5C22, MD5S22);
86 MD5_STEP (MD5_H2, b, c, d, a, we_t, MD5C23, MD5S23);
87 MD5_STEP (MD5_H1, a, b, c, d, w1_t, MD5C24, MD5S20);
88 MD5_STEP (MD5_H2, d, a, b, c, w4_t, MD5C25, MD5S21);
89 MD5_STEP (MD5_H1, c, d, a, b, w7_t, MD5C26, MD5S22);
90 MD5_STEP (MD5_H2, b, c, d, a, wa_t, MD5C27, MD5S23);
91 MD5_STEP (MD5_H1, a, b, c, d, wd_t, MD5C28, MD5S20);
92 MD5_STEP (MD5_H2, d, a, b, c, w0_t, MD5C29, MD5S21);
93 MD5_STEP (MD5_H1, c, d, a, b, w3_t, MD5C2a, MD5S22);
94 MD5_STEP (MD5_H2, b, c, d, a, w6_t, MD5C2b, MD5S23);
95 MD5_STEP (MD5_H1, a, b, c, d, w9_t, MD5C2c, MD5S20);
96 MD5_STEP (MD5_H2, d, a, b, c, wc_t, MD5C2d, MD5S21);
97 MD5_STEP (MD5_H1, c, d, a, b, wf_t, MD5C2e, MD5S22);
98 MD5_STEP (MD5_H2, b, c, d, a, w2_t, MD5C2f, MD5S23);
100 MD5_STEP (MD5_I , a, b, c, d, w0_t, MD5C30, MD5S30);
101 MD5_STEP (MD5_I , d, a, b, c, w7_t, MD5C31, MD5S31);
102 MD5_STEP (MD5_I , c, d, a, b, we_t, MD5C32, MD5S32);
103 MD5_STEP (MD5_I , b, c, d, a, w5_t, MD5C33, MD5S33);
104 MD5_STEP (MD5_I , a, b, c, d, wc_t, MD5C34, MD5S30);
105 MD5_STEP (MD5_I , d, a, b, c, w3_t, MD5C35, MD5S31);
106 MD5_STEP (MD5_I , c, d, a, b, wa_t, MD5C36, MD5S32);
107 MD5_STEP (MD5_I , b, c, d, a, w1_t, MD5C37, MD5S33);
108 MD5_STEP (MD5_I , a, b, c, d, w8_t, MD5C38, MD5S30);
109 MD5_STEP (MD5_I , d, a, b, c, wf_t, MD5C39, MD5S31);
110 MD5_STEP (MD5_I , c, d, a, b, w6_t, MD5C3a, MD5S32);
111 MD5_STEP (MD5_I , b, c, d, a, wd_t, MD5C3b, MD5S33);
112 MD5_STEP (MD5_I , a, b, c, d, w4_t, MD5C3c, MD5S30);
113 MD5_STEP (MD5_I , d, a, b, c, wb_t, MD5C3d, MD5S31);
114 MD5_STEP (MD5_I , c, d, a, b, w2_t, MD5C3e, MD5S32);
115 MD5_STEP (MD5_I , b, c, d, a, w9_t, MD5C3f, MD5S33);
123 static void hmac_md5_pad (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[4], u32 opad[4])
125 w0[0] = w0[0] ^ 0x36363636;
126 w0[1] = w0[1] ^ 0x36363636;
127 w0[2] = w0[2] ^ 0x36363636;
128 w0[3] = w0[3] ^ 0x36363636;
129 w1[0] = w1[0] ^ 0x36363636;
130 w1[1] = w1[1] ^ 0x36363636;
131 w1[2] = w1[2] ^ 0x36363636;
132 w1[3] = w1[3] ^ 0x36363636;
133 w2[0] = w2[0] ^ 0x36363636;
134 w2[1] = w2[1] ^ 0x36363636;
135 w2[2] = w2[2] ^ 0x36363636;
136 w2[3] = w2[3] ^ 0x36363636;
137 w3[0] = w3[0] ^ 0x36363636;
138 w3[1] = w3[1] ^ 0x36363636;
139 w3[2] = w3[2] ^ 0x36363636;
140 w3[3] = w3[3] ^ 0x36363636;
147 md5_transform (w0, w1, w2, w3, ipad);
149 w0[0] = w0[0] ^ 0x6a6a6a6a;
150 w0[1] = w0[1] ^ 0x6a6a6a6a;
151 w0[2] = w0[2] ^ 0x6a6a6a6a;
152 w0[3] = w0[3] ^ 0x6a6a6a6a;
153 w1[0] = w1[0] ^ 0x6a6a6a6a;
154 w1[1] = w1[1] ^ 0x6a6a6a6a;
155 w1[2] = w1[2] ^ 0x6a6a6a6a;
156 w1[3] = w1[3] ^ 0x6a6a6a6a;
157 w2[0] = w2[0] ^ 0x6a6a6a6a;
158 w2[1] = w2[1] ^ 0x6a6a6a6a;
159 w2[2] = w2[2] ^ 0x6a6a6a6a;
160 w2[3] = w2[3] ^ 0x6a6a6a6a;
161 w3[0] = w3[0] ^ 0x6a6a6a6a;
162 w3[1] = w3[1] ^ 0x6a6a6a6a;
163 w3[2] = w3[2] ^ 0x6a6a6a6a;
164 w3[3] = w3[3] ^ 0x6a6a6a6a;
171 md5_transform (w0, w1, w2, w3, opad);
174 static void hmac_md5_run (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[4], u32 opad[4], u32 digest[4])
181 md5_transform (w0, w1, w2, w3, digest);
197 w3[2] = (64 + 16) * 8;
205 md5_transform (w0, w1, w2, w3, digest);
208 static void sha1_transform (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[5])
236 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w0_t);
237 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w1_t);
238 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w2_t);
239 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w3_t);
240 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w4_t);
241 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w5_t);
242 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w6_t);
243 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w7_t);
244 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w8_t);
245 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w9_t);
246 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wa_t);
247 SHA1_STEP (SHA1_F0o, E, A, B, C, D, wb_t);
248 SHA1_STEP (SHA1_F0o, D, E, A, B, C, wc_t);
249 SHA1_STEP (SHA1_F0o, C, D, E, A, B, wd_t);
250 SHA1_STEP (SHA1_F0o, B, C, D, E, A, we_t);
251 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wf_t);
252 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F0o, E, A, B, C, D, w0_t);
253 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F0o, D, E, A, B, C, w1_t);
254 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F0o, C, D, E, A, B, w2_t);
255 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F0o, B, C, D, E, A, w3_t);
260 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w4_t);
261 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w5_t);
262 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w6_t);
263 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w7_t);
264 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w8_t);
265 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w9_t);
266 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wa_t);
267 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wb_t);
268 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wc_t);
269 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wd_t);
270 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, we_t);
271 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wf_t);
272 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w0_t);
273 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w1_t);
274 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w2_t);
275 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w3_t);
276 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w4_t);
277 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w5_t);
278 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w6_t);
279 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w7_t);
284 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w8_t);
285 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w9_t);
286 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wa_t);
287 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wb_t);
288 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wc_t);
289 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, wd_t);
290 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, we_t);
291 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wf_t);
292 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w0_t);
293 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w1_t);
294 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w2_t);
295 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w3_t);
296 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w4_t);
297 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w5_t);
298 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w6_t);
299 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w7_t);
300 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w8_t);
301 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w9_t);
302 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wa_t);
303 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wb_t);
308 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wc_t);
309 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wd_t);
310 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, we_t);
311 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wf_t);
312 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w0_t);
313 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w1_t);
314 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w2_t);
315 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w3_t);
316 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w4_t);
317 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w5_t);
318 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w6_t);
319 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w7_t);
320 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w8_t);
321 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w9_t);
322 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wa_t);
323 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wb_t);
324 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wc_t);
325 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wd_t);
326 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, we_t);
327 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wf_t);
336 static void hmac_sha1_pad (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[5], u32 opad[5])
338 w0[0] = w0[0] ^ 0x36363636;
339 w0[1] = w0[1] ^ 0x36363636;
340 w0[2] = w0[2] ^ 0x36363636;
341 w0[3] = w0[3] ^ 0x36363636;
342 w1[0] = w1[0] ^ 0x36363636;
343 w1[1] = w1[1] ^ 0x36363636;
344 w1[2] = w1[2] ^ 0x36363636;
345 w1[3] = w1[3] ^ 0x36363636;
346 w2[0] = w2[0] ^ 0x36363636;
347 w2[1] = w2[1] ^ 0x36363636;
348 w2[2] = w2[2] ^ 0x36363636;
349 w2[3] = w2[3] ^ 0x36363636;
350 w3[0] = w3[0] ^ 0x36363636;
351 w3[1] = w3[1] ^ 0x36363636;
352 w3[2] = w3[2] ^ 0x36363636;
353 w3[3] = w3[3] ^ 0x36363636;
361 sha1_transform (w0, w1, w2, w3, ipad);
363 w0[0] = w0[0] ^ 0x6a6a6a6a;
364 w0[1] = w0[1] ^ 0x6a6a6a6a;
365 w0[2] = w0[2] ^ 0x6a6a6a6a;
366 w0[3] = w0[3] ^ 0x6a6a6a6a;
367 w1[0] = w1[0] ^ 0x6a6a6a6a;
368 w1[1] = w1[1] ^ 0x6a6a6a6a;
369 w1[2] = w1[2] ^ 0x6a6a6a6a;
370 w1[3] = w1[3] ^ 0x6a6a6a6a;
371 w2[0] = w2[0] ^ 0x6a6a6a6a;
372 w2[1] = w2[1] ^ 0x6a6a6a6a;
373 w2[2] = w2[2] ^ 0x6a6a6a6a;
374 w2[3] = w2[3] ^ 0x6a6a6a6a;
375 w3[0] = w3[0] ^ 0x6a6a6a6a;
376 w3[1] = w3[1] ^ 0x6a6a6a6a;
377 w3[2] = w3[2] ^ 0x6a6a6a6a;
378 w3[3] = w3[3] ^ 0x6a6a6a6a;
386 sha1_transform (w0, w1, w2, w3, opad);
389 static void hmac_sha1_run (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[5], u32 opad[5], u32 digest[5])
397 sha1_transform (w0, w1, w2, w3, digest);
414 w3[3] = (64 + 20) * 8;
422 sha1_transform (w0, w1, w2, w3, digest);
425 __kernel void m02500_init (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 rules_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
431 const u32 gid = get_global_id (0);
433 if (gid >= gid_max) return;
437 w0[0] = pws[gid].i[ 0];
438 w0[1] = pws[gid].i[ 1];
439 w0[2] = pws[gid].i[ 2];
440 w0[3] = pws[gid].i[ 3];
444 w1[0] = pws[gid].i[ 4];
445 w1[1] = pws[gid].i[ 5];
446 w1[2] = pws[gid].i[ 6];
447 w1[3] = pws[gid].i[ 7];
451 w2[0] = pws[gid].i[ 8];
452 w2[1] = pws[gid].i[ 9];
453 w2[2] = pws[gid].i[10];
454 w2[3] = pws[gid].i[11];
458 w3[0] = pws[gid].i[12];
459 w3[1] = pws[gid].i[13];
460 w3[2] = pws[gid].i[14];
461 w3[3] = pws[gid].i[15];
467 u32 salt_len = salt_bufs[salt_pos].salt_len;
472 salt_buf0[0] = salt_bufs[salt_pos].salt_buf[0];
473 salt_buf0[1] = salt_bufs[salt_pos].salt_buf[1];
474 salt_buf0[2] = salt_bufs[salt_pos].salt_buf[2];
475 salt_buf0[3] = salt_bufs[salt_pos].salt_buf[3];
476 salt_buf1[0] = salt_bufs[salt_pos].salt_buf[4];
477 salt_buf1[1] = salt_bufs[salt_pos].salt_buf[5];
478 salt_buf1[2] = salt_bufs[salt_pos].salt_buf[6];
479 salt_buf1[3] = salt_bufs[salt_pos].salt_buf[7];
485 w0[0] = swap32 (w0[0]);
486 w0[1] = swap32 (w0[1]);
487 w0[2] = swap32 (w0[2]);
488 w0[3] = swap32 (w0[3]);
489 w1[0] = swap32 (w1[0]);
490 w1[1] = swap32 (w1[1]);
491 w1[2] = swap32 (w1[2]);
492 w1[3] = swap32 (w1[3]);
493 w2[0] = swap32 (w2[0]);
494 w2[1] = swap32 (w2[1]);
495 w2[2] = swap32 (w2[2]);
496 w2[3] = swap32 (w2[3]);
497 w3[0] = swap32 (w3[0]);
498 w3[1] = swap32 (w3[1]);
499 w3[2] = swap32 (w3[2]);
500 w3[3] = swap32 (w3[3]);
505 hmac_sha1_pad (w0, w1, w2, w3, ipad, opad);
507 tmps[gid].ipad[0] = ipad[0];
508 tmps[gid].ipad[1] = ipad[1];
509 tmps[gid].ipad[2] = ipad[2];
510 tmps[gid].ipad[3] = ipad[3];
511 tmps[gid].ipad[4] = ipad[4];
513 tmps[gid].opad[0] = opad[0];
514 tmps[gid].opad[1] = opad[1];
515 tmps[gid].opad[2] = opad[2];
516 tmps[gid].opad[3] = opad[3];
517 tmps[gid].opad[4] = opad[4];
519 for (u32 i = 0, j = 1; i < 8; i += 5, j += 1)
521 w0[0] = salt_buf0[0];
522 w0[1] = salt_buf0[1];
523 w0[2] = salt_buf0[2];
524 w0[3] = salt_buf0[3];
525 w1[0] = salt_buf1[0];
526 w1[1] = salt_buf1[1];
527 w1[2] = salt_buf1[2];
528 w1[3] = salt_buf1[3];
539 append_0x01_3x4 (w0, w1, w2, salt_len + 3);
541 append_0x02_3x4 (w0, w1, w2, salt_len + 3);
543 append_0x80_3x4 (w0, w1, w2, salt_len + 4);
545 w0[0] = swap32 (w0[0]);
546 w0[1] = swap32 (w0[1]);
547 w0[2] = swap32 (w0[2]);
548 w0[3] = swap32 (w0[3]);
549 w1[0] = swap32 (w1[0]);
550 w1[1] = swap32 (w1[1]);
551 w1[2] = swap32 (w1[2]);
552 w1[3] = swap32 (w1[3]);
553 w2[0] = swap32 (w2[0]);
554 w2[1] = swap32 (w2[1]);
560 w3[3] = (64 + salt_len + 4) * 8;
564 hmac_sha1_run (w0, w1, w2, w3, ipad, opad, dgst);
566 tmps[gid].dgst[i + 0] = dgst[0];
567 tmps[gid].dgst[i + 1] = dgst[1];
568 tmps[gid].dgst[i + 2] = dgst[2];
569 tmps[gid].dgst[i + 3] = dgst[3];
570 tmps[gid].dgst[i + 4] = dgst[4];
572 tmps[gid].out[i + 0] = dgst[0];
573 tmps[gid].out[i + 1] = dgst[1];
574 tmps[gid].out[i + 2] = dgst[2];
575 tmps[gid].out[i + 3] = dgst[3];
576 tmps[gid].out[i + 4] = dgst[4];
580 __kernel void m02500_loop (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 rules_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
582 const u32 gid = get_global_id (0);
584 if (gid >= gid_max) return;
589 ipad[0] = tmps[gid].ipad[0];
590 ipad[1] = tmps[gid].ipad[1];
591 ipad[2] = tmps[gid].ipad[2];
592 ipad[3] = tmps[gid].ipad[3];
593 ipad[4] = tmps[gid].ipad[4];
595 opad[0] = tmps[gid].opad[0];
596 opad[1] = tmps[gid].opad[1];
597 opad[2] = tmps[gid].opad[2];
598 opad[3] = tmps[gid].opad[3];
599 opad[4] = tmps[gid].opad[4];
601 for (u32 i = 0; i < 8; i += 5)
606 dgst[0] = tmps[gid].dgst[i + 0];
607 dgst[1] = tmps[gid].dgst[i + 1];
608 dgst[2] = tmps[gid].dgst[i + 2];
609 dgst[3] = tmps[gid].dgst[i + 3];
610 dgst[4] = tmps[gid].dgst[i + 4];
612 out[0] = tmps[gid].out[i + 0];
613 out[1] = tmps[gid].out[i + 1];
614 out[2] = tmps[gid].out[i + 2];
615 out[3] = tmps[gid].out[i + 3];
616 out[4] = tmps[gid].out[i + 4];
618 for (u32 j = 0; j < loop_cnt; j++)
640 w3[3] = (64 + 20) * 8;
642 hmac_sha1_run (w0, w1, w2, w3, ipad, opad, dgst);
651 tmps[gid].dgst[i + 0] = dgst[0];
652 tmps[gid].dgst[i + 1] = dgst[1];
653 tmps[gid].dgst[i + 2] = dgst[2];
654 tmps[gid].dgst[i + 3] = dgst[3];
655 tmps[gid].dgst[i + 4] = dgst[4];
657 tmps[gid].out[i + 0] = out[0];
658 tmps[gid].out[i + 1] = out[1];
659 tmps[gid].out[i + 2] = out[2];
660 tmps[gid].out[i + 3] = out[3];
661 tmps[gid].out[i + 4] = out[4];
665 __kernel void m02500_comp (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 rules_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
667 const u32 gid = get_global_id (0);
669 if (gid >= gid_max) return;
671 const u32 lid = get_local_id (0);
678 w0[0] = tmps[gid].out[0];
679 w0[1] = tmps[gid].out[1];
680 w0[2] = tmps[gid].out[2];
681 w0[3] = tmps[gid].out[3];
682 w1[0] = tmps[gid].out[4];
683 w1[1] = tmps[gid].out[5];
684 w1[2] = tmps[gid].out[6];
685 w1[3] = tmps[gid].out[7];
698 hmac_sha1_pad (w0, w1, w2, w3, ipad, opad);
700 w0[0] = wpa_bufs[salt_pos].pke[ 0];
701 w0[1] = wpa_bufs[salt_pos].pke[ 1];
702 w0[2] = wpa_bufs[salt_pos].pke[ 2];
703 w0[3] = wpa_bufs[salt_pos].pke[ 3];
704 w1[0] = wpa_bufs[salt_pos].pke[ 4];
705 w1[1] = wpa_bufs[salt_pos].pke[ 5];
706 w1[2] = wpa_bufs[salt_pos].pke[ 6];
707 w1[3] = wpa_bufs[salt_pos].pke[ 7];
708 w2[0] = wpa_bufs[salt_pos].pke[ 8];
709 w2[1] = wpa_bufs[salt_pos].pke[ 9];
710 w2[2] = wpa_bufs[salt_pos].pke[10];
711 w2[3] = wpa_bufs[salt_pos].pke[11];
712 w3[0] = wpa_bufs[salt_pos].pke[12];
713 w3[1] = wpa_bufs[salt_pos].pke[13];
714 w3[2] = wpa_bufs[salt_pos].pke[14];
715 w3[3] = wpa_bufs[salt_pos].pke[15];
717 sha1_transform (w0, w1, w2, w3, ipad);
719 w0[0] = wpa_bufs[salt_pos].pke[16];
720 w0[1] = wpa_bufs[salt_pos].pke[17];
721 w0[2] = wpa_bufs[salt_pos].pke[18];
722 w0[3] = wpa_bufs[salt_pos].pke[19];
723 w1[0] = wpa_bufs[salt_pos].pke[20];
724 w1[1] = wpa_bufs[salt_pos].pke[21];
725 w1[2] = wpa_bufs[salt_pos].pke[22];
726 w1[3] = wpa_bufs[salt_pos].pke[23];
727 w2[0] = wpa_bufs[salt_pos].pke[24];
734 w3[3] = (64 + 100) * 8;
738 hmac_sha1_run (w0, w1, w2, w3, ipad, opad, digest);
741 w0[0] = swap32 (digest[0]);
742 w0[1] = swap32 (digest[1]);
743 w0[2] = swap32 (digest[2]);
744 w0[3] = swap32 (digest[3]);
758 hmac_md5_pad (w0, w1, w2, w3, ipad, opad);
760 int eapol_size = wpa_bufs[salt_pos].eapol_size;
765 for (eapol_left = eapol_size, eapol_off = 0; eapol_left >= 56; eapol_left -= 64, eapol_off += 16)
767 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
768 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
769 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
770 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
771 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
772 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
773 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
774 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
775 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
776 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
777 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
778 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
779 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
780 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
781 w3[2] = wpa_bufs[salt_pos].eapol[eapol_off + 14];
782 w3[3] = wpa_bufs[salt_pos].eapol[eapol_off + 15];
784 md5_transform (w0, w1, w2, w3, ipad);
787 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
788 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
789 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
790 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
791 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
792 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
793 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
794 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
795 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
796 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
797 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
798 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
799 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
800 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
801 w3[2] = (64 + eapol_size) * 8;
806 hmac_md5_run (w0, w1, w2, w3, ipad, opad, digest1);
814 const u32 r0 = digest1[DGST_R0];
815 const u32 r1 = digest1[DGST_R1];
816 const u32 r2 = digest1[DGST_R2];
817 const u32 r3 = digest1[DGST_R3];
840 hmac_sha1_pad (w0, w1, w2, w3, ipad, opad);
842 int eapol_size = wpa_bufs[salt_pos].eapol_size;
847 for (eapol_left = eapol_size, eapol_off = 0; eapol_left >= 56; eapol_left -= 64, eapol_off += 16)
849 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
850 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
851 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
852 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
853 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
854 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
855 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
856 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
857 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
858 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
859 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
860 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
861 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
862 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
863 w3[2] = wpa_bufs[salt_pos].eapol[eapol_off + 14];
864 w3[3] = wpa_bufs[salt_pos].eapol[eapol_off + 15];
866 sha1_transform (w0, w1, w2, w3, ipad);
869 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
870 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
871 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
872 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
873 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
874 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
875 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
876 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
877 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
878 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
879 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
880 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
881 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
882 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
884 w3[3] = (64 + eapol_size) * 8;
888 hmac_sha1_run (w0, w1, w2, w3, ipad, opad, digest2);
896 const u32 r0 = digest2[DGST_R0];
897 const u32 r1 = digest2[DGST_R1];
898 const u32 r2 = digest2[DGST_R2];
899 const u32 r3 = digest2[DGST_R3];