2 * Author......: Jens Steube <jens.steube@gmail.com>
10 #include "include/constants.h"
11 #include "include/kernel_vendor.h"
18 #include "include/kernel_functions.c"
19 #include "OpenCL/types_ocl.c"
20 #include "OpenCL/common.c"
22 #define COMPARE_S "OpenCL/check_single_comp4.c"
23 #define COMPARE_M "OpenCL/check_multi_comp4.c"
25 void md5_transform_S (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[4])
49 MD5_STEP_S (MD5_Fo, a, b, c, d, w0_t, MD5C00, MD5S00);
50 MD5_STEP_S (MD5_Fo, d, a, b, c, w1_t, MD5C01, MD5S01);
51 MD5_STEP_S (MD5_Fo, c, d, a, b, w2_t, MD5C02, MD5S02);
52 MD5_STEP_S (MD5_Fo, b, c, d, a, w3_t, MD5C03, MD5S03);
53 MD5_STEP_S (MD5_Fo, a, b, c, d, w4_t, MD5C04, MD5S00);
54 MD5_STEP_S (MD5_Fo, d, a, b, c, w5_t, MD5C05, MD5S01);
55 MD5_STEP_S (MD5_Fo, c, d, a, b, w6_t, MD5C06, MD5S02);
56 MD5_STEP_S (MD5_Fo, b, c, d, a, w7_t, MD5C07, MD5S03);
57 MD5_STEP_S (MD5_Fo, a, b, c, d, w8_t, MD5C08, MD5S00);
58 MD5_STEP_S (MD5_Fo, d, a, b, c, w9_t, MD5C09, MD5S01);
59 MD5_STEP_S (MD5_Fo, c, d, a, b, wa_t, MD5C0a, MD5S02);
60 MD5_STEP_S (MD5_Fo, b, c, d, a, wb_t, MD5C0b, MD5S03);
61 MD5_STEP_S (MD5_Fo, a, b, c, d, wc_t, MD5C0c, MD5S00);
62 MD5_STEP_S (MD5_Fo, d, a, b, c, wd_t, MD5C0d, MD5S01);
63 MD5_STEP_S (MD5_Fo, c, d, a, b, we_t, MD5C0e, MD5S02);
64 MD5_STEP_S (MD5_Fo, b, c, d, a, wf_t, MD5C0f, MD5S03);
66 MD5_STEP_S (MD5_Go, a, b, c, d, w1_t, MD5C10, MD5S10);
67 MD5_STEP_S (MD5_Go, d, a, b, c, w6_t, MD5C11, MD5S11);
68 MD5_STEP_S (MD5_Go, c, d, a, b, wb_t, MD5C12, MD5S12);
69 MD5_STEP_S (MD5_Go, b, c, d, a, w0_t, MD5C13, MD5S13);
70 MD5_STEP_S (MD5_Go, a, b, c, d, w5_t, MD5C14, MD5S10);
71 MD5_STEP_S (MD5_Go, d, a, b, c, wa_t, MD5C15, MD5S11);
72 MD5_STEP_S (MD5_Go, c, d, a, b, wf_t, MD5C16, MD5S12);
73 MD5_STEP_S (MD5_Go, b, c, d, a, w4_t, MD5C17, MD5S13);
74 MD5_STEP_S (MD5_Go, a, b, c, d, w9_t, MD5C18, MD5S10);
75 MD5_STEP_S (MD5_Go, d, a, b, c, we_t, MD5C19, MD5S11);
76 MD5_STEP_S (MD5_Go, c, d, a, b, w3_t, MD5C1a, MD5S12);
77 MD5_STEP_S (MD5_Go, b, c, d, a, w8_t, MD5C1b, MD5S13);
78 MD5_STEP_S (MD5_Go, a, b, c, d, wd_t, MD5C1c, MD5S10);
79 MD5_STEP_S (MD5_Go, d, a, b, c, w2_t, MD5C1d, MD5S11);
80 MD5_STEP_S (MD5_Go, c, d, a, b, w7_t, MD5C1e, MD5S12);
81 MD5_STEP_S (MD5_Go, b, c, d, a, wc_t, MD5C1f, MD5S13);
83 MD5_STEP_S (MD5_H , a, b, c, d, w5_t, MD5C20, MD5S20);
84 MD5_STEP_S (MD5_H , d, a, b, c, w8_t, MD5C21, MD5S21);
85 MD5_STEP_S (MD5_H , c, d, a, b, wb_t, MD5C22, MD5S22);
86 MD5_STEP_S (MD5_H , b, c, d, a, we_t, MD5C23, MD5S23);
87 MD5_STEP_S (MD5_H , a, b, c, d, w1_t, MD5C24, MD5S20);
88 MD5_STEP_S (MD5_H , d, a, b, c, w4_t, MD5C25, MD5S21);
89 MD5_STEP_S (MD5_H , c, d, a, b, w7_t, MD5C26, MD5S22);
90 MD5_STEP_S (MD5_H , b, c, d, a, wa_t, MD5C27, MD5S23);
91 MD5_STEP_S (MD5_H , a, b, c, d, wd_t, MD5C28, MD5S20);
92 MD5_STEP_S (MD5_H , d, a, b, c, w0_t, MD5C29, MD5S21);
93 MD5_STEP_S (MD5_H , c, d, a, b, w3_t, MD5C2a, MD5S22);
94 MD5_STEP_S (MD5_H , b, c, d, a, w6_t, MD5C2b, MD5S23);
95 MD5_STEP_S (MD5_H , a, b, c, d, w9_t, MD5C2c, MD5S20);
96 MD5_STEP_S (MD5_H , d, a, b, c, wc_t, MD5C2d, MD5S21);
97 MD5_STEP_S (MD5_H , c, d, a, b, wf_t, MD5C2e, MD5S22);
98 MD5_STEP_S (MD5_H , b, c, d, a, w2_t, MD5C2f, MD5S23);
100 MD5_STEP_S (MD5_I , a, b, c, d, w0_t, MD5C30, MD5S30);
101 MD5_STEP_S (MD5_I , d, a, b, c, w7_t, MD5C31, MD5S31);
102 MD5_STEP_S (MD5_I , c, d, a, b, we_t, MD5C32, MD5S32);
103 MD5_STEP_S (MD5_I , b, c, d, a, w5_t, MD5C33, MD5S33);
104 MD5_STEP_S (MD5_I , a, b, c, d, wc_t, MD5C34, MD5S30);
105 MD5_STEP_S (MD5_I , d, a, b, c, w3_t, MD5C35, MD5S31);
106 MD5_STEP_S (MD5_I , c, d, a, b, wa_t, MD5C36, MD5S32);
107 MD5_STEP_S (MD5_I , b, c, d, a, w1_t, MD5C37, MD5S33);
108 MD5_STEP_S (MD5_I , a, b, c, d, w8_t, MD5C38, MD5S30);
109 MD5_STEP_S (MD5_I , d, a, b, c, wf_t, MD5C39, MD5S31);
110 MD5_STEP_S (MD5_I , c, d, a, b, w6_t, MD5C3a, MD5S32);
111 MD5_STEP_S (MD5_I , b, c, d, a, wd_t, MD5C3b, MD5S33);
112 MD5_STEP_S (MD5_I , a, b, c, d, w4_t, MD5C3c, MD5S30);
113 MD5_STEP_S (MD5_I , d, a, b, c, wb_t, MD5C3d, MD5S31);
114 MD5_STEP_S (MD5_I , c, d, a, b, w2_t, MD5C3e, MD5S32);
115 MD5_STEP_S (MD5_I , b, c, d, a, w9_t, MD5C3f, MD5S33);
123 void hmac_md5_pad_S (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[4], u32 opad[4])
125 w0[0] = w0[0] ^ 0x36363636;
126 w0[1] = w0[1] ^ 0x36363636;
127 w0[2] = w0[2] ^ 0x36363636;
128 w0[3] = w0[3] ^ 0x36363636;
129 w1[0] = w1[0] ^ 0x36363636;
130 w1[1] = w1[1] ^ 0x36363636;
131 w1[2] = w1[2] ^ 0x36363636;
132 w1[3] = w1[3] ^ 0x36363636;
133 w2[0] = w2[0] ^ 0x36363636;
134 w2[1] = w2[1] ^ 0x36363636;
135 w2[2] = w2[2] ^ 0x36363636;
136 w2[3] = w2[3] ^ 0x36363636;
137 w3[0] = w3[0] ^ 0x36363636;
138 w3[1] = w3[1] ^ 0x36363636;
139 w3[2] = w3[2] ^ 0x36363636;
140 w3[3] = w3[3] ^ 0x36363636;
147 md5_transform_S (w0, w1, w2, w3, ipad);
149 w0[0] = w0[0] ^ 0x6a6a6a6a;
150 w0[1] = w0[1] ^ 0x6a6a6a6a;
151 w0[2] = w0[2] ^ 0x6a6a6a6a;
152 w0[3] = w0[3] ^ 0x6a6a6a6a;
153 w1[0] = w1[0] ^ 0x6a6a6a6a;
154 w1[1] = w1[1] ^ 0x6a6a6a6a;
155 w1[2] = w1[2] ^ 0x6a6a6a6a;
156 w1[3] = w1[3] ^ 0x6a6a6a6a;
157 w2[0] = w2[0] ^ 0x6a6a6a6a;
158 w2[1] = w2[1] ^ 0x6a6a6a6a;
159 w2[2] = w2[2] ^ 0x6a6a6a6a;
160 w2[3] = w2[3] ^ 0x6a6a6a6a;
161 w3[0] = w3[0] ^ 0x6a6a6a6a;
162 w3[1] = w3[1] ^ 0x6a6a6a6a;
163 w3[2] = w3[2] ^ 0x6a6a6a6a;
164 w3[3] = w3[3] ^ 0x6a6a6a6a;
171 md5_transform_S (w0, w1, w2, w3, opad);
174 void hmac_md5_run_S (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[4], u32 opad[4], u32 digest[4])
181 md5_transform_S (w0, w1, w2, w3, digest);
197 w3[2] = (64 + 16) * 8;
205 md5_transform_S (w0, w1, w2, w3, digest);
208 void sha1_transform_S (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[5])
236 SHA1_STEP_S (SHA1_F0o, A, B, C, D, E, w0_t);
237 SHA1_STEP_S (SHA1_F0o, E, A, B, C, D, w1_t);
238 SHA1_STEP_S (SHA1_F0o, D, E, A, B, C, w2_t);
239 SHA1_STEP_S (SHA1_F0o, C, D, E, A, B, w3_t);
240 SHA1_STEP_S (SHA1_F0o, B, C, D, E, A, w4_t);
241 SHA1_STEP_S (SHA1_F0o, A, B, C, D, E, w5_t);
242 SHA1_STEP_S (SHA1_F0o, E, A, B, C, D, w6_t);
243 SHA1_STEP_S (SHA1_F0o, D, E, A, B, C, w7_t);
244 SHA1_STEP_S (SHA1_F0o, C, D, E, A, B, w8_t);
245 SHA1_STEP_S (SHA1_F0o, B, C, D, E, A, w9_t);
246 SHA1_STEP_S (SHA1_F0o, A, B, C, D, E, wa_t);
247 SHA1_STEP_S (SHA1_F0o, E, A, B, C, D, wb_t);
248 SHA1_STEP_S (SHA1_F0o, D, E, A, B, C, wc_t);
249 SHA1_STEP_S (SHA1_F0o, C, D, E, A, B, wd_t);
250 SHA1_STEP_S (SHA1_F0o, B, C, D, E, A, we_t);
251 SHA1_STEP_S (SHA1_F0o, A, B, C, D, E, wf_t);
252 w0_t = rotl32_S ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP_S (SHA1_F0o, E, A, B, C, D, w0_t);
253 w1_t = rotl32_S ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP_S (SHA1_F0o, D, E, A, B, C, w1_t);
254 w2_t = rotl32_S ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP_S (SHA1_F0o, C, D, E, A, B, w2_t);
255 w3_t = rotl32_S ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP_S (SHA1_F0o, B, C, D, E, A, w3_t);
260 w4_t = rotl32_S ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, w4_t);
261 w5_t = rotl32_S ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, w5_t);
262 w6_t = rotl32_S ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, w6_t);
263 w7_t = rotl32_S ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, w7_t);
264 w8_t = rotl32_S ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, w8_t);
265 w9_t = rotl32_S ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, w9_t);
266 wa_t = rotl32_S ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, wa_t);
267 wb_t = rotl32_S ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, wb_t);
268 wc_t = rotl32_S ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, wc_t);
269 wd_t = rotl32_S ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, wd_t);
270 we_t = rotl32_S ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, we_t);
271 wf_t = rotl32_S ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, wf_t);
272 w0_t = rotl32_S ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, w0_t);
273 w1_t = rotl32_S ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, w1_t);
274 w2_t = rotl32_S ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, w2_t);
275 w3_t = rotl32_S ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, w3_t);
276 w4_t = rotl32_S ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, w4_t);
277 w5_t = rotl32_S ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, w5_t);
278 w6_t = rotl32_S ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, w6_t);
279 w7_t = rotl32_S ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, w7_t);
284 w8_t = rotl32_S ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP_S (SHA1_F2o, A, B, C, D, E, w8_t);
285 w9_t = rotl32_S ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP_S (SHA1_F2o, E, A, B, C, D, w9_t);
286 wa_t = rotl32_S ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP_S (SHA1_F2o, D, E, A, B, C, wa_t);
287 wb_t = rotl32_S ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP_S (SHA1_F2o, C, D, E, A, B, wb_t);
288 wc_t = rotl32_S ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP_S (SHA1_F2o, B, C, D, E, A, wc_t);
289 wd_t = rotl32_S ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP_S (SHA1_F2o, A, B, C, D, E, wd_t);
290 we_t = rotl32_S ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP_S (SHA1_F2o, E, A, B, C, D, we_t);
291 wf_t = rotl32_S ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP_S (SHA1_F2o, D, E, A, B, C, wf_t);
292 w0_t = rotl32_S ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP_S (SHA1_F2o, C, D, E, A, B, w0_t);
293 w1_t = rotl32_S ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP_S (SHA1_F2o, B, C, D, E, A, w1_t);
294 w2_t = rotl32_S ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP_S (SHA1_F2o, A, B, C, D, E, w2_t);
295 w3_t = rotl32_S ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP_S (SHA1_F2o, E, A, B, C, D, w3_t);
296 w4_t = rotl32_S ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP_S (SHA1_F2o, D, E, A, B, C, w4_t);
297 w5_t = rotl32_S ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP_S (SHA1_F2o, C, D, E, A, B, w5_t);
298 w6_t = rotl32_S ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP_S (SHA1_F2o, B, C, D, E, A, w6_t);
299 w7_t = rotl32_S ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP_S (SHA1_F2o, A, B, C, D, E, w7_t);
300 w8_t = rotl32_S ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP_S (SHA1_F2o, E, A, B, C, D, w8_t);
301 w9_t = rotl32_S ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP_S (SHA1_F2o, D, E, A, B, C, w9_t);
302 wa_t = rotl32_S ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP_S (SHA1_F2o, C, D, E, A, B, wa_t);
303 wb_t = rotl32_S ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP_S (SHA1_F2o, B, C, D, E, A, wb_t);
308 wc_t = rotl32_S ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, wc_t);
309 wd_t = rotl32_S ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, wd_t);
310 we_t = rotl32_S ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, we_t);
311 wf_t = rotl32_S ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, wf_t);
312 w0_t = rotl32_S ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, w0_t);
313 w1_t = rotl32_S ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, w1_t);
314 w2_t = rotl32_S ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, w2_t);
315 w3_t = rotl32_S ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, w3_t);
316 w4_t = rotl32_S ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, w4_t);
317 w5_t = rotl32_S ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, w5_t);
318 w6_t = rotl32_S ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, w6_t);
319 w7_t = rotl32_S ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, w7_t);
320 w8_t = rotl32_S ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, w8_t);
321 w9_t = rotl32_S ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, w9_t);
322 wa_t = rotl32_S ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, wa_t);
323 wb_t = rotl32_S ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP_S (SHA1_F1, A, B, C, D, E, wb_t);
324 wc_t = rotl32_S ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP_S (SHA1_F1, E, A, B, C, D, wc_t);
325 wd_t = rotl32_S ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP_S (SHA1_F1, D, E, A, B, C, wd_t);
326 we_t = rotl32_S ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP_S (SHA1_F1, C, D, E, A, B, we_t);
327 wf_t = rotl32_S ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP_S (SHA1_F1, B, C, D, E, A, wf_t);
336 void hmac_sha1_pad_S (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[5], u32 opad[5])
338 w0[0] = w0[0] ^ 0x36363636;
339 w0[1] = w0[1] ^ 0x36363636;
340 w0[2] = w0[2] ^ 0x36363636;
341 w0[3] = w0[3] ^ 0x36363636;
342 w1[0] = w1[0] ^ 0x36363636;
343 w1[1] = w1[1] ^ 0x36363636;
344 w1[2] = w1[2] ^ 0x36363636;
345 w1[3] = w1[3] ^ 0x36363636;
346 w2[0] = w2[0] ^ 0x36363636;
347 w2[1] = w2[1] ^ 0x36363636;
348 w2[2] = w2[2] ^ 0x36363636;
349 w2[3] = w2[3] ^ 0x36363636;
350 w3[0] = w3[0] ^ 0x36363636;
351 w3[1] = w3[1] ^ 0x36363636;
352 w3[2] = w3[2] ^ 0x36363636;
353 w3[3] = w3[3] ^ 0x36363636;
361 sha1_transform_S (w0, w1, w2, w3, ipad);
363 w0[0] = w0[0] ^ 0x6a6a6a6a;
364 w0[1] = w0[1] ^ 0x6a6a6a6a;
365 w0[2] = w0[2] ^ 0x6a6a6a6a;
366 w0[3] = w0[3] ^ 0x6a6a6a6a;
367 w1[0] = w1[0] ^ 0x6a6a6a6a;
368 w1[1] = w1[1] ^ 0x6a6a6a6a;
369 w1[2] = w1[2] ^ 0x6a6a6a6a;
370 w1[3] = w1[3] ^ 0x6a6a6a6a;
371 w2[0] = w2[0] ^ 0x6a6a6a6a;
372 w2[1] = w2[1] ^ 0x6a6a6a6a;
373 w2[2] = w2[2] ^ 0x6a6a6a6a;
374 w2[3] = w2[3] ^ 0x6a6a6a6a;
375 w3[0] = w3[0] ^ 0x6a6a6a6a;
376 w3[1] = w3[1] ^ 0x6a6a6a6a;
377 w3[2] = w3[2] ^ 0x6a6a6a6a;
378 w3[3] = w3[3] ^ 0x6a6a6a6a;
386 sha1_transform_S (w0, w1, w2, w3, opad);
389 void hmac_sha1_run_S (u32 w0[4], u32 w1[4], u32 w2[4], u32 w3[4], u32 ipad[5], u32 opad[5], u32 digest[5])
397 sha1_transform_S (w0, w1, w2, w3, digest);
414 w3[3] = (64 + 20) * 8;
422 sha1_transform_S (w0, w1, w2, w3, digest);
425 void sha1_transform_V (const u32x w0[4], const u32x w1[4], const u32x w2[4], const u32x w3[4], u32x digest[5])
453 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w0_t);
454 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w1_t);
455 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w2_t);
456 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w3_t);
457 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w4_t);
458 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w5_t);
459 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w6_t);
460 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w7_t);
461 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w8_t);
462 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w9_t);
463 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wa_t);
464 SHA1_STEP (SHA1_F0o, E, A, B, C, D, wb_t);
465 SHA1_STEP (SHA1_F0o, D, E, A, B, C, wc_t);
466 SHA1_STEP (SHA1_F0o, C, D, E, A, B, wd_t);
467 SHA1_STEP (SHA1_F0o, B, C, D, E, A, we_t);
468 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wf_t);
469 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F0o, E, A, B, C, D, w0_t);
470 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F0o, D, E, A, B, C, w1_t);
471 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F0o, C, D, E, A, B, w2_t);
472 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F0o, B, C, D, E, A, w3_t);
477 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w4_t);
478 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w5_t);
479 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w6_t);
480 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w7_t);
481 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w8_t);
482 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w9_t);
483 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wa_t);
484 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wb_t);
485 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wc_t);
486 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wd_t);
487 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, we_t);
488 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wf_t);
489 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w0_t);
490 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w1_t);
491 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w2_t);
492 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w3_t);
493 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w4_t);
494 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w5_t);
495 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w6_t);
496 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w7_t);
501 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w8_t);
502 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w9_t);
503 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wa_t);
504 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wb_t);
505 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wc_t);
506 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, wd_t);
507 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, we_t);
508 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wf_t);
509 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w0_t);
510 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w1_t);
511 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w2_t);
512 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w3_t);
513 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w4_t);
514 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w5_t);
515 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w6_t);
516 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w7_t);
517 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w8_t);
518 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w9_t);
519 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wa_t);
520 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wb_t);
525 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wc_t);
526 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wd_t);
527 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, we_t);
528 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wf_t);
529 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w0_t);
530 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w1_t);
531 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w2_t);
532 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w3_t);
533 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w4_t);
534 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w5_t);
535 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w6_t);
536 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w7_t);
537 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w8_t);
538 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w9_t);
539 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wa_t);
540 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wb_t);
541 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wc_t);
542 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wd_t);
543 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, we_t);
544 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wf_t);
553 void hmac_sha1_run_V (u32x w0[4], u32x w1[4], u32x w2[4], u32x w3[4], u32x ipad[5], u32x opad[5], u32x digest[5])
561 sha1_transform_V (w0, w1, w2, w3, digest);
578 w3[3] = (64 + 20) * 8;
586 sha1_transform_V (w0, w1, w2, w3, digest);
589 __kernel void m02500_init (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
595 const u32 gid = get_global_id (0);
597 if (gid >= gid_max) return;
601 w0[0] = pws[gid].i[ 0];
602 w0[1] = pws[gid].i[ 1];
603 w0[2] = pws[gid].i[ 2];
604 w0[3] = pws[gid].i[ 3];
608 w1[0] = pws[gid].i[ 4];
609 w1[1] = pws[gid].i[ 5];
610 w1[2] = pws[gid].i[ 6];
611 w1[3] = pws[gid].i[ 7];
615 w2[0] = pws[gid].i[ 8];
616 w2[1] = pws[gid].i[ 9];
617 w2[2] = pws[gid].i[10];
618 w2[3] = pws[gid].i[11];
622 w3[0] = pws[gid].i[12];
623 w3[1] = pws[gid].i[13];
624 w3[2] = pws[gid].i[14];
625 w3[3] = pws[gid].i[15];
631 u32 salt_len = salt_bufs[salt_pos].salt_len;
636 salt_buf0[0] = salt_bufs[salt_pos].salt_buf[0];
637 salt_buf0[1] = salt_bufs[salt_pos].salt_buf[1];
638 salt_buf0[2] = salt_bufs[salt_pos].salt_buf[2];
639 salt_buf0[3] = salt_bufs[salt_pos].salt_buf[3];
640 salt_buf1[0] = salt_bufs[salt_pos].salt_buf[4];
641 salt_buf1[1] = salt_bufs[salt_pos].salt_buf[5];
642 salt_buf1[2] = salt_bufs[salt_pos].salt_buf[6];
643 salt_buf1[3] = salt_bufs[salt_pos].salt_buf[7];
649 w0[0] = swap32_S (w0[0]);
650 w0[1] = swap32_S (w0[1]);
651 w0[2] = swap32_S (w0[2]);
652 w0[3] = swap32_S (w0[3]);
653 w1[0] = swap32_S (w1[0]);
654 w1[1] = swap32_S (w1[1]);
655 w1[2] = swap32_S (w1[2]);
656 w1[3] = swap32_S (w1[3]);
657 w2[0] = swap32_S (w2[0]);
658 w2[1] = swap32_S (w2[1]);
659 w2[2] = swap32_S (w2[2]);
660 w2[3] = swap32_S (w2[3]);
661 w3[0] = swap32_S (w3[0]);
662 w3[1] = swap32_S (w3[1]);
663 w3[2] = swap32_S (w3[2]);
664 w3[3] = swap32_S (w3[3]);
669 hmac_sha1_pad_S (w0, w1, w2, w3, ipad, opad);
671 tmps[gid].ipad[0] = ipad[0];
672 tmps[gid].ipad[1] = ipad[1];
673 tmps[gid].ipad[2] = ipad[2];
674 tmps[gid].ipad[3] = ipad[3];
675 tmps[gid].ipad[4] = ipad[4];
677 tmps[gid].opad[0] = opad[0];
678 tmps[gid].opad[1] = opad[1];
679 tmps[gid].opad[2] = opad[2];
680 tmps[gid].opad[3] = opad[3];
681 tmps[gid].opad[4] = opad[4];
683 for (u32 i = 0, j = 1; i < 8; i += 5, j += 1)
685 w0[0] = salt_buf0[0];
686 w0[1] = salt_buf0[1];
687 w0[2] = salt_buf0[2];
688 w0[3] = salt_buf0[3];
689 w1[0] = salt_buf1[0];
690 w1[1] = salt_buf1[1];
691 w1[2] = salt_buf1[2];
692 w1[3] = salt_buf1[3];
703 append_0x01_3x4_S (w0, w1, w2, salt_len + 3);
705 append_0x02_3x4_S (w0, w1, w2, salt_len + 3);
707 append_0x80_3x4_S (w0, w1, w2, salt_len + 4);
709 w0[0] = swap32_S (w0[0]);
710 w0[1] = swap32_S (w0[1]);
711 w0[2] = swap32_S (w0[2]);
712 w0[3] = swap32_S (w0[3]);
713 w1[0] = swap32_S (w1[0]);
714 w1[1] = swap32_S (w1[1]);
715 w1[2] = swap32_S (w1[2]);
716 w1[3] = swap32_S (w1[3]);
717 w2[0] = swap32_S (w2[0]);
718 w2[1] = swap32_S (w2[1]);
724 w3[3] = (64 + salt_len + 4) * 8;
728 hmac_sha1_run_S (w0, w1, w2, w3, ipad, opad, dgst);
730 tmps[gid].dgst[i + 0] = dgst[0];
731 tmps[gid].dgst[i + 1] = dgst[1];
732 tmps[gid].dgst[i + 2] = dgst[2];
733 tmps[gid].dgst[i + 3] = dgst[3];
734 tmps[gid].dgst[i + 4] = dgst[4];
736 tmps[gid].out[i + 0] = dgst[0];
737 tmps[gid].out[i + 1] = dgst[1];
738 tmps[gid].out[i + 2] = dgst[2];
739 tmps[gid].out[i + 3] = dgst[3];
740 tmps[gid].out[i + 4] = dgst[4];
744 __kernel void m02500_loop (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
746 const u32 gid = get_global_id (0);
748 if (gid >= gid_max) return;
755 ipad[0] = tmps[gid].ipad[0];
756 ipad[1] = tmps[gid].ipad[1];
757 ipad[2] = tmps[gid].ipad[2];
758 ipad[3] = tmps[gid].ipad[3];
759 ipad[4] = tmps[gid].ipad[4];
761 opad[0] = tmps[gid].opad[0];
762 opad[1] = tmps[gid].opad[1];
763 opad[2] = tmps[gid].opad[2];
764 opad[3] = tmps[gid].opad[3];
765 opad[4] = tmps[gid].opad[4];
769 const u32 gidx = gid * VECT_SIZE;
773 if ((gidx + 0) < gid_max)
775 ipad[0].s0 = tmps[gidx + 0].ipad[0];
776 ipad[1].s0 = tmps[gidx + 0].ipad[1];
777 ipad[2].s0 = tmps[gidx + 0].ipad[2];
778 ipad[3].s0 = tmps[gidx + 0].ipad[3];
779 ipad[4].s0 = tmps[gidx + 0].ipad[4];
781 opad[0].s0 = tmps[gidx + 0].opad[0];
782 opad[1].s0 = tmps[gidx + 0].opad[1];
783 opad[2].s0 = tmps[gidx + 0].opad[2];
784 opad[3].s0 = tmps[gidx + 0].opad[3];
785 opad[4].s0 = tmps[gidx + 0].opad[4];
788 if ((gidx + 1) < gid_max)
790 ipad[0].s1 = tmps[gidx + 1].ipad[0];
791 ipad[1].s1 = tmps[gidx + 1].ipad[1];
792 ipad[2].s1 = tmps[gidx + 1].ipad[2];
793 ipad[3].s1 = tmps[gidx + 1].ipad[3];
794 ipad[4].s1 = tmps[gidx + 1].ipad[4];
796 opad[0].s1 = tmps[gidx + 1].opad[0];
797 opad[1].s1 = tmps[gidx + 1].opad[1];
798 opad[2].s1 = tmps[gidx + 1].opad[2];
799 opad[3].s1 = tmps[gidx + 1].opad[3];
800 opad[4].s1 = tmps[gidx + 1].opad[4];
807 if ((gidx + 2) < gid_max)
809 ipad[0].s2 = tmps[gidx + 2].ipad[0];
810 ipad[1].s2 = tmps[gidx + 2].ipad[1];
811 ipad[2].s2 = tmps[gidx + 2].ipad[2];
812 ipad[3].s2 = tmps[gidx + 2].ipad[3];
813 ipad[4].s2 = tmps[gidx + 2].ipad[4];
815 opad[0].s2 = tmps[gidx + 2].opad[0];
816 opad[1].s2 = tmps[gidx + 2].opad[1];
817 opad[2].s2 = tmps[gidx + 2].opad[2];
818 opad[3].s2 = tmps[gidx + 2].opad[3];
819 opad[4].s2 = tmps[gidx + 2].opad[4];
822 if ((gidx + 3) < gid_max)
824 ipad[0].s3 = tmps[gidx + 3].ipad[0];
825 ipad[1].s3 = tmps[gidx + 3].ipad[1];
826 ipad[2].s3 = tmps[gidx + 3].ipad[2];
827 ipad[3].s3 = tmps[gidx + 3].ipad[3];
828 ipad[4].s3 = tmps[gidx + 3].ipad[4];
830 opad[0].s3 = tmps[gidx + 3].opad[0];
831 opad[1].s3 = tmps[gidx + 3].opad[1];
832 opad[2].s3 = tmps[gidx + 3].opad[2];
833 opad[3].s3 = tmps[gidx + 3].opad[3];
834 opad[4].s3 = tmps[gidx + 3].opad[4];
841 if ((gidx + 4) < gid_max)
843 ipad[0].s4 = tmps[gidx + 4].ipad[0];
844 ipad[1].s4 = tmps[gidx + 4].ipad[1];
845 ipad[2].s4 = tmps[gidx + 4].ipad[2];
846 ipad[3].s4 = tmps[gidx + 4].ipad[3];
847 ipad[4].s4 = tmps[gidx + 4].ipad[4];
849 opad[0].s4 = tmps[gidx + 4].opad[0];
850 opad[1].s4 = tmps[gidx + 4].opad[1];
851 opad[2].s4 = tmps[gidx + 4].opad[2];
852 opad[3].s4 = tmps[gidx + 4].opad[3];
853 opad[4].s4 = tmps[gidx + 4].opad[4];
856 if ((gidx + 5) < gid_max)
858 ipad[0].s5 = tmps[gidx + 5].ipad[0];
859 ipad[1].s5 = tmps[gidx + 5].ipad[1];
860 ipad[2].s5 = tmps[gidx + 5].ipad[2];
861 ipad[3].s5 = tmps[gidx + 5].ipad[3];
862 ipad[4].s5 = tmps[gidx + 5].ipad[4];
864 opad[0].s5 = tmps[gidx + 5].opad[0];
865 opad[1].s5 = tmps[gidx + 5].opad[1];
866 opad[2].s5 = tmps[gidx + 5].opad[2];
867 opad[3].s5 = tmps[gidx + 5].opad[3];
868 opad[4].s5 = tmps[gidx + 5].opad[4];
871 if ((gidx + 6) < gid_max)
873 ipad[0].s6 = tmps[gidx + 6].ipad[0];
874 ipad[1].s6 = tmps[gidx + 6].ipad[1];
875 ipad[2].s6 = tmps[gidx + 6].ipad[2];
876 ipad[3].s6 = tmps[gidx + 6].ipad[3];
877 ipad[4].s6 = tmps[gidx + 6].ipad[4];
879 opad[0].s6 = tmps[gidx + 6].opad[0];
880 opad[1].s6 = tmps[gidx + 6].opad[1];
881 opad[2].s6 = tmps[gidx + 6].opad[2];
882 opad[3].s6 = tmps[gidx + 6].opad[3];
883 opad[4].s6 = tmps[gidx + 6].opad[4];
886 if ((gidx + 7) < gid_max)
888 ipad[0].s7 = tmps[gidx + 7].ipad[0];
889 ipad[1].s7 = tmps[gidx + 7].ipad[1];
890 ipad[2].s7 = tmps[gidx + 7].ipad[2];
891 ipad[3].s7 = tmps[gidx + 7].ipad[3];
892 ipad[4].s7 = tmps[gidx + 7].ipad[4];
894 opad[0].s7 = tmps[gidx + 7].opad[0];
895 opad[1].s7 = tmps[gidx + 7].opad[1];
896 opad[2].s7 = tmps[gidx + 7].opad[2];
897 opad[3].s7 = tmps[gidx + 7].opad[3];
898 opad[4].s7 = tmps[gidx + 7].opad[4];
905 for (u32 i = 0; i < 8; i += 5)
912 dgst[0] = tmps[gid].dgst[i + 0];
913 dgst[1] = tmps[gid].dgst[i + 1];
914 dgst[2] = tmps[gid].dgst[i + 2];
915 dgst[3] = tmps[gid].dgst[i + 3];
916 dgst[4] = tmps[gid].dgst[i + 4];
918 out[0] = tmps[gid].out[i + 0];
919 out[1] = tmps[gid].out[i + 1];
920 out[2] = tmps[gid].out[i + 2];
921 out[3] = tmps[gid].out[i + 3];
922 out[4] = tmps[gid].out[i + 4];
928 if ((gidx + 0) < gid_max)
930 dgst[0].s0 = tmps[gidx + 0].dgst[i + 0];
931 dgst[1].s0 = tmps[gidx + 0].dgst[i + 1];
932 dgst[2].s0 = tmps[gidx + 0].dgst[i + 2];
933 dgst[3].s0 = tmps[gidx + 0].dgst[i + 3];
934 dgst[4].s0 = tmps[gidx + 0].dgst[i + 4];
936 out[0].s0 = tmps[gidx + 0].out[i + 0];
937 out[1].s0 = tmps[gidx + 0].out[i + 1];
938 out[2].s0 = tmps[gidx + 0].out[i + 2];
939 out[3].s0 = tmps[gidx + 0].out[i + 3];
940 out[4].s0 = tmps[gidx + 0].out[i + 4];
943 if ((gidx + 1) < gid_max)
945 dgst[0].s1 = tmps[gidx + 1].dgst[i + 0];
946 dgst[1].s1 = tmps[gidx + 1].dgst[i + 1];
947 dgst[2].s1 = tmps[gidx + 1].dgst[i + 2];
948 dgst[3].s1 = tmps[gidx + 1].dgst[i + 3];
949 dgst[4].s1 = tmps[gidx + 1].dgst[i + 4];
951 out[0].s1 = tmps[gidx + 1].out[i + 0];
952 out[1].s1 = tmps[gidx + 1].out[i + 1];
953 out[2].s1 = tmps[gidx + 1].out[i + 2];
954 out[3].s1 = tmps[gidx + 1].out[i + 3];
955 out[4].s1 = tmps[gidx + 1].out[i + 4];
962 if ((gidx + 2) < gid_max)
964 dgst[0].s2 = tmps[gidx + 2].dgst[i + 0];
965 dgst[1].s2 = tmps[gidx + 2].dgst[i + 1];
966 dgst[2].s2 = tmps[gidx + 2].dgst[i + 2];
967 dgst[3].s2 = tmps[gidx + 2].dgst[i + 3];
968 dgst[4].s2 = tmps[gidx + 2].dgst[i + 4];
970 out[0].s2 = tmps[gidx + 2].out[i + 0];
971 out[1].s2 = tmps[gidx + 2].out[i + 1];
972 out[2].s2 = tmps[gidx + 2].out[i + 2];
973 out[3].s2 = tmps[gidx + 2].out[i + 3];
974 out[4].s2 = tmps[gidx + 2].out[i + 4];
977 if ((gidx + 3) < gid_max)
979 dgst[0].s3 = tmps[gidx + 3].dgst[i + 0];
980 dgst[1].s3 = tmps[gidx + 3].dgst[i + 1];
981 dgst[2].s3 = tmps[gidx + 3].dgst[i + 2];
982 dgst[3].s3 = tmps[gidx + 3].dgst[i + 3];
983 dgst[4].s3 = tmps[gidx + 3].dgst[i + 4];
985 out[0].s3 = tmps[gidx + 3].out[i + 0];
986 out[1].s3 = tmps[gidx + 3].out[i + 1];
987 out[2].s3 = tmps[gidx + 3].out[i + 2];
988 out[3].s3 = tmps[gidx + 3].out[i + 3];
989 out[4].s3 = tmps[gidx + 3].out[i + 4];
996 if ((gidx + 4) < gid_max)
998 dgst[0].s4 = tmps[gidx + 4].dgst[i + 0];
999 dgst[1].s4 = tmps[gidx + 4].dgst[i + 1];
1000 dgst[2].s4 = tmps[gidx + 4].dgst[i + 2];
1001 dgst[3].s4 = tmps[gidx + 4].dgst[i + 3];
1002 dgst[4].s4 = tmps[gidx + 4].dgst[i + 4];
1004 out[0].s4 = tmps[gidx + 4].out[i + 0];
1005 out[1].s4 = tmps[gidx + 4].out[i + 1];
1006 out[2].s4 = tmps[gidx + 4].out[i + 2];
1007 out[3].s4 = tmps[gidx + 4].out[i + 3];
1008 out[4].s4 = tmps[gidx + 4].out[i + 4];
1011 if ((gidx + 5) < gid_max)
1013 dgst[0].s5 = tmps[gidx + 5].dgst[i + 0];
1014 dgst[1].s5 = tmps[gidx + 5].dgst[i + 1];
1015 dgst[2].s5 = tmps[gidx + 5].dgst[i + 2];
1016 dgst[3].s5 = tmps[gidx + 5].dgst[i + 3];
1017 dgst[4].s5 = tmps[gidx + 5].dgst[i + 4];
1019 out[0].s5 = tmps[gidx + 5].out[i + 0];
1020 out[1].s5 = tmps[gidx + 5].out[i + 1];
1021 out[2].s5 = tmps[gidx + 5].out[i + 2];
1022 out[3].s5 = tmps[gidx + 5].out[i + 3];
1023 out[4].s5 = tmps[gidx + 5].out[i + 4];
1026 if ((gidx + 6) < gid_max)
1028 dgst[0].s6 = tmps[gidx + 6].dgst[i + 0];
1029 dgst[1].s6 = tmps[gidx + 6].dgst[i + 1];
1030 dgst[2].s6 = tmps[gidx + 6].dgst[i + 2];
1031 dgst[3].s6 = tmps[gidx + 6].dgst[i + 3];
1032 dgst[4].s6 = tmps[gidx + 6].dgst[i + 4];
1034 out[0].s6 = tmps[gidx + 6].out[i + 0];
1035 out[1].s6 = tmps[gidx + 6].out[i + 1];
1036 out[2].s6 = tmps[gidx + 6].out[i + 2];
1037 out[3].s6 = tmps[gidx + 6].out[i + 3];
1038 out[4].s6 = tmps[gidx + 6].out[i + 4];
1041 if ((gidx + 7) < gid_max)
1043 dgst[0].s7 = tmps[gidx + 7].dgst[i + 0];
1044 dgst[1].s7 = tmps[gidx + 7].dgst[i + 1];
1045 dgst[2].s7 = tmps[gidx + 7].dgst[i + 2];
1046 dgst[3].s7 = tmps[gidx + 7].dgst[i + 3];
1047 dgst[4].s7 = tmps[gidx + 7].dgst[i + 4];
1049 out[0].s7 = tmps[gidx + 7].out[i + 0];
1050 out[1].s7 = tmps[gidx + 7].out[i + 1];
1051 out[2].s7 = tmps[gidx + 7].out[i + 2];
1052 out[3].s7 = tmps[gidx + 7].out[i + 3];
1053 out[4].s7 = tmps[gidx + 7].out[i + 4];
1060 for (u32 j = 0; j < loop_cnt; j++)
1082 w3[3] = (64 + 20) * 8;
1084 hmac_sha1_run_V (w0, w1, w2, w3, ipad, opad, dgst);
1095 tmps[gid].dgst[i + 0] = dgst[0];
1096 tmps[gid].dgst[i + 1] = dgst[1];
1097 tmps[gid].dgst[i + 2] = dgst[2];
1098 tmps[gid].dgst[i + 3] = dgst[3];
1099 tmps[gid].dgst[i + 4] = dgst[4];
1101 tmps[gid].out[i + 0] = out[0];
1102 tmps[gid].out[i + 1] = out[1];
1103 tmps[gid].out[i + 2] = out[2];
1104 tmps[gid].out[i + 3] = out[3];
1105 tmps[gid].out[i + 4] = out[4];
1111 if ((gidx + 0) < gid_max)
1113 tmps[gidx + 0].dgst[i + 0] = dgst[0].s0;
1114 tmps[gidx + 0].dgst[i + 1] = dgst[1].s0;
1115 tmps[gidx + 0].dgst[i + 2] = dgst[2].s0;
1116 tmps[gidx + 0].dgst[i + 3] = dgst[3].s0;
1117 tmps[gidx + 0].dgst[i + 4] = dgst[4].s0;
1119 tmps[gidx + 0].out[i + 0] = out[0].s0;
1120 tmps[gidx + 0].out[i + 1] = out[1].s0;
1121 tmps[gidx + 0].out[i + 2] = out[2].s0;
1122 tmps[gidx + 0].out[i + 3] = out[3].s0;
1123 tmps[gidx + 0].out[i + 4] = out[4].s0;
1126 if ((gidx + 1) < gid_max)
1128 tmps[gidx + 1].dgst[i + 0] = dgst[0].s1;
1129 tmps[gidx + 1].dgst[i + 1] = dgst[1].s1;
1130 tmps[gidx + 1].dgst[i + 2] = dgst[2].s1;
1131 tmps[gidx + 1].dgst[i + 3] = dgst[3].s1;
1132 tmps[gidx + 1].dgst[i + 4] = dgst[4].s1;
1134 tmps[gidx + 1].out[i + 0] = out[0].s1;
1135 tmps[gidx + 1].out[i + 1] = out[1].s1;
1136 tmps[gidx + 1].out[i + 2] = out[2].s1;
1137 tmps[gidx + 1].out[i + 3] = out[3].s1;
1138 tmps[gidx + 1].out[i + 4] = out[4].s1;
1145 if ((gidx + 2) < gid_max)
1147 tmps[gidx + 2].dgst[i + 0] = dgst[0].s2;
1148 tmps[gidx + 2].dgst[i + 1] = dgst[1].s2;
1149 tmps[gidx + 2].dgst[i + 2] = dgst[2].s2;
1150 tmps[gidx + 2].dgst[i + 3] = dgst[3].s2;
1151 tmps[gidx + 2].dgst[i + 4] = dgst[4].s2;
1153 tmps[gidx + 2].out[i + 0] = out[0].s2;
1154 tmps[gidx + 2].out[i + 1] = out[1].s2;
1155 tmps[gidx + 2].out[i + 2] = out[2].s2;
1156 tmps[gidx + 2].out[i + 3] = out[3].s2;
1157 tmps[gidx + 2].out[i + 4] = out[4].s2;
1160 if ((gidx + 3) < gid_max)
1162 tmps[gidx + 3].dgst[i + 0] = dgst[0].s3;
1163 tmps[gidx + 3].dgst[i + 1] = dgst[1].s3;
1164 tmps[gidx + 3].dgst[i + 2] = dgst[2].s3;
1165 tmps[gidx + 3].dgst[i + 3] = dgst[3].s3;
1166 tmps[gidx + 3].dgst[i + 4] = dgst[4].s3;
1168 tmps[gidx + 3].out[i + 0] = out[0].s3;
1169 tmps[gidx + 3].out[i + 1] = out[1].s3;
1170 tmps[gidx + 3].out[i + 2] = out[2].s3;
1171 tmps[gidx + 3].out[i + 3] = out[3].s3;
1172 tmps[gidx + 3].out[i + 4] = out[4].s3;
1179 if ((gidx + 4) < gid_max)
1181 tmps[gidx + 4].dgst[i + 0] = dgst[0].s4;
1182 tmps[gidx + 4].dgst[i + 1] = dgst[1].s4;
1183 tmps[gidx + 4].dgst[i + 2] = dgst[2].s4;
1184 tmps[gidx + 4].dgst[i + 3] = dgst[3].s4;
1185 tmps[gidx + 4].dgst[i + 4] = dgst[4].s4;
1187 tmps[gidx + 4].out[i + 0] = out[0].s4;
1188 tmps[gidx + 4].out[i + 1] = out[1].s4;
1189 tmps[gidx + 4].out[i + 2] = out[2].s4;
1190 tmps[gidx + 4].out[i + 3] = out[3].s4;
1191 tmps[gidx + 4].out[i + 4] = out[4].s4;
1194 if ((gidx + 5) < gid_max)
1196 tmps[gidx + 5].dgst[i + 0] = dgst[0].s5;
1197 tmps[gidx + 5].dgst[i + 1] = dgst[1].s5;
1198 tmps[gidx + 5].dgst[i + 2] = dgst[2].s5;
1199 tmps[gidx + 5].dgst[i + 3] = dgst[3].s5;
1200 tmps[gidx + 5].dgst[i + 4] = dgst[4].s5;
1202 tmps[gidx + 5].out[i + 0] = out[0].s5;
1203 tmps[gidx + 5].out[i + 1] = out[1].s5;
1204 tmps[gidx + 5].out[i + 2] = out[2].s5;
1205 tmps[gidx + 5].out[i + 3] = out[3].s5;
1206 tmps[gidx + 5].out[i + 4] = out[4].s5;
1209 if ((gidx + 6) < gid_max)
1211 tmps[gidx + 6].dgst[i + 0] = dgst[0].s6;
1212 tmps[gidx + 6].dgst[i + 1] = dgst[1].s6;
1213 tmps[gidx + 6].dgst[i + 2] = dgst[2].s6;
1214 tmps[gidx + 6].dgst[i + 3] = dgst[3].s6;
1215 tmps[gidx + 6].dgst[i + 4] = dgst[4].s6;
1217 tmps[gidx + 6].out[i + 0] = out[0].s6;
1218 tmps[gidx + 6].out[i + 1] = out[1].s6;
1219 tmps[gidx + 6].out[i + 2] = out[2].s6;
1220 tmps[gidx + 6].out[i + 3] = out[3].s6;
1221 tmps[gidx + 6].out[i + 4] = out[4].s6;
1224 if ((gidx + 7) < gid_max)
1226 tmps[gidx + 7].dgst[i + 0] = dgst[0].s7;
1227 tmps[gidx + 7].dgst[i + 1] = dgst[1].s7;
1228 tmps[gidx + 7].dgst[i + 2] = dgst[2].s7;
1229 tmps[gidx + 7].dgst[i + 3] = dgst[3].s7;
1230 tmps[gidx + 7].dgst[i + 4] = dgst[4].s7;
1232 tmps[gidx + 7].out[i + 0] = out[0].s7;
1233 tmps[gidx + 7].out[i + 1] = out[1].s7;
1234 tmps[gidx + 7].out[i + 2] = out[2].s7;
1235 tmps[gidx + 7].out[i + 3] = out[3].s7;
1236 tmps[gidx + 7].out[i + 4] = out[4].s7;
1245 __kernel void m02500_comp (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global wpa_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global wpa_t *wpa_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
1247 const u32 gid = get_global_id (0);
1249 if (gid >= gid_max) return;
1251 const u32 lid = get_local_id (0);
1258 w0[0] = tmps[gid].out[0];
1259 w0[1] = tmps[gid].out[1];
1260 w0[2] = tmps[gid].out[2];
1261 w0[3] = tmps[gid].out[3];
1262 w1[0] = tmps[gid].out[4];
1263 w1[1] = tmps[gid].out[5];
1264 w1[2] = tmps[gid].out[6];
1265 w1[3] = tmps[gid].out[7];
1278 hmac_sha1_pad_S (w0, w1, w2, w3, ipad, opad);
1280 w0[0] = wpa_bufs[salt_pos].pke[ 0];
1281 w0[1] = wpa_bufs[salt_pos].pke[ 1];
1282 w0[2] = wpa_bufs[salt_pos].pke[ 2];
1283 w0[3] = wpa_bufs[salt_pos].pke[ 3];
1284 w1[0] = wpa_bufs[salt_pos].pke[ 4];
1285 w1[1] = wpa_bufs[salt_pos].pke[ 5];
1286 w1[2] = wpa_bufs[salt_pos].pke[ 6];
1287 w1[3] = wpa_bufs[salt_pos].pke[ 7];
1288 w2[0] = wpa_bufs[salt_pos].pke[ 8];
1289 w2[1] = wpa_bufs[salt_pos].pke[ 9];
1290 w2[2] = wpa_bufs[salt_pos].pke[10];
1291 w2[3] = wpa_bufs[salt_pos].pke[11];
1292 w3[0] = wpa_bufs[salt_pos].pke[12];
1293 w3[1] = wpa_bufs[salt_pos].pke[13];
1294 w3[2] = wpa_bufs[salt_pos].pke[14];
1295 w3[3] = wpa_bufs[salt_pos].pke[15];
1297 sha1_transform_S (w0, w1, w2, w3, ipad);
1299 w0[0] = wpa_bufs[salt_pos].pke[16];
1300 w0[1] = wpa_bufs[salt_pos].pke[17];
1301 w0[2] = wpa_bufs[salt_pos].pke[18];
1302 w0[3] = wpa_bufs[salt_pos].pke[19];
1303 w1[0] = wpa_bufs[salt_pos].pke[20];
1304 w1[1] = wpa_bufs[salt_pos].pke[21];
1305 w1[2] = wpa_bufs[salt_pos].pke[22];
1306 w1[3] = wpa_bufs[salt_pos].pke[23];
1307 w2[0] = wpa_bufs[salt_pos].pke[24];
1314 w3[3] = (64 + 100) * 8;
1318 hmac_sha1_run_S (w0, w1, w2, w3, ipad, opad, digest);
1321 w0[0] = swap32_S (digest[0]);
1322 w0[1] = swap32_S (digest[1]);
1323 w0[2] = swap32_S (digest[2]);
1324 w0[3] = swap32_S (digest[3]);
1338 hmac_md5_pad_S (w0, w1, w2, w3, ipad, opad);
1340 int eapol_size = wpa_bufs[salt_pos].eapol_size;
1345 for (eapol_left = eapol_size, eapol_off = 0; eapol_left >= 56; eapol_left -= 64, eapol_off += 16)
1347 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
1348 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
1349 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
1350 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
1351 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
1352 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
1353 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
1354 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
1355 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
1356 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
1357 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
1358 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
1359 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
1360 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
1361 w3[2] = wpa_bufs[salt_pos].eapol[eapol_off + 14];
1362 w3[3] = wpa_bufs[salt_pos].eapol[eapol_off + 15];
1364 md5_transform_S (w0, w1, w2, w3, ipad);
1367 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
1368 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
1369 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
1370 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
1371 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
1372 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
1373 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
1374 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
1375 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
1376 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
1377 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
1378 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
1379 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
1380 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
1381 w3[2] = (64 + eapol_size) * 8;
1386 hmac_md5_run_S (w0, w1, w2, w3, ipad, opad, digest1);
1394 const u32 r0 = digest1[DGST_R0];
1395 const u32 r1 = digest1[DGST_R1];
1396 const u32 r2 = digest1[DGST_R2];
1397 const u32 r3 = digest1[DGST_R3];
1420 hmac_sha1_pad_S (w0, w1, w2, w3, ipad, opad);
1422 int eapol_size = wpa_bufs[salt_pos].eapol_size;
1427 for (eapol_left = eapol_size, eapol_off = 0; eapol_left >= 56; eapol_left -= 64, eapol_off += 16)
1429 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
1430 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
1431 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
1432 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
1433 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
1434 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
1435 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
1436 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
1437 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
1438 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
1439 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
1440 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
1441 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
1442 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
1443 w3[2] = wpa_bufs[salt_pos].eapol[eapol_off + 14];
1444 w3[3] = wpa_bufs[salt_pos].eapol[eapol_off + 15];
1446 sha1_transform_S (w0, w1, w2, w3, ipad);
1449 w0[0] = wpa_bufs[salt_pos].eapol[eapol_off + 0];
1450 w0[1] = wpa_bufs[salt_pos].eapol[eapol_off + 1];
1451 w0[2] = wpa_bufs[salt_pos].eapol[eapol_off + 2];
1452 w0[3] = wpa_bufs[salt_pos].eapol[eapol_off + 3];
1453 w1[0] = wpa_bufs[salt_pos].eapol[eapol_off + 4];
1454 w1[1] = wpa_bufs[salt_pos].eapol[eapol_off + 5];
1455 w1[2] = wpa_bufs[salt_pos].eapol[eapol_off + 6];
1456 w1[3] = wpa_bufs[salt_pos].eapol[eapol_off + 7];
1457 w2[0] = wpa_bufs[salt_pos].eapol[eapol_off + 8];
1458 w2[1] = wpa_bufs[salt_pos].eapol[eapol_off + 9];
1459 w2[2] = wpa_bufs[salt_pos].eapol[eapol_off + 10];
1460 w2[3] = wpa_bufs[salt_pos].eapol[eapol_off + 11];
1461 w3[0] = wpa_bufs[salt_pos].eapol[eapol_off + 12];
1462 w3[1] = wpa_bufs[salt_pos].eapol[eapol_off + 13];
1464 w3[3] = (64 + eapol_size) * 8;
1468 hmac_sha1_run_S (w0, w1, w2, w3, ipad, opad, digest2);
1476 const u32 r0 = digest2[DGST_R0];
1477 const u32 r1 = digest2[DGST_R1];
1478 const u32 r2 = digest2[DGST_R2];
1479 const u32 r3 = digest2[DGST_R3];