Tables4kGcmMultiplier.cs 2.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Utilities;
  5. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities;
  6. namespace Best.HTTP.SecureProtocol.Org.BouncyCastle.Crypto.Modes.Gcm
  7. {
  8. public class Tables4kGcmMultiplier
  9. : IGcmMultiplier
  10. {
  11. private byte[] H;
  12. private GcmUtilities.FieldElement[] T;
  13. public void Init(byte[] H)
  14. {
  15. if (T == null)
  16. {
  17. T = new GcmUtilities.FieldElement[256];
  18. }
  19. else if (Arrays.AreEqual(this.H, H))
  20. {
  21. return;
  22. }
  23. this.H = Arrays.Clone(H);
  24. // T[0] = 0
  25. // T[1] = H.p^7
  26. GcmUtilities.AsFieldElement(this.H, out T[1]);
  27. GcmUtilities.MultiplyP7(ref T[1]);
  28. for (int n = 1; n < 128; ++n)
  29. {
  30. // T[2.n] = T[n].p^-1
  31. GcmUtilities.DivideP(ref T[n], out T[n << 1]);
  32. // T[2.n + 1] = T[2.n] + T[1]
  33. GcmUtilities.Xor(ref T[n << 1], ref T[1], out T[(n << 1) + 1]);
  34. }
  35. }
  36. public void MultiplyH(byte[] x)
  37. {
  38. //GcmUtilities.FieldElement z = T[x[15]];
  39. //for (int i = 14; i >= 0; --i)
  40. //{
  41. // GcmUtilities.MultiplyP8(ref z);
  42. // GcmUtilities.Xor(ref z, ref T[x[i]]);
  43. //}
  44. //GcmUtilities.AsBytes(ref z, x);
  45. int pos = x[15];
  46. ulong z0 = T[pos].n0, z1 = T[pos].n1;
  47. for (int i = 14; i >= 0; --i)
  48. {
  49. pos = x[i];
  50. ulong c = z1 << 56;
  51. z1 = T[pos].n1 ^ ((z1 >> 8) | (z0 << 56));
  52. z0 = T[pos].n0 ^ (z0 >> 8) ^ c ^ (c >> 1) ^ (c >> 2) ^ (c >> 7);
  53. }
  54. GcmUtilities.AsBytes(z0, z1, x);
  55. }
  56. }
  57. }
  58. #pragma warning restore
  59. #endif