1b2441318SGreg Kroah-Hartman /* SPDX-License-Identifier: GPL-2.0 */ 23c4b2390SSalvatore Benedetto #ifndef _CRYTO_ECC_CURVE_DEFS_H 33c4b2390SSalvatore Benedetto #define _CRYTO_ECC_CURVE_DEFS_H 43c4b2390SSalvatore Benedetto 5ea169a30SStephan Mueller /* NIST P-192: a = p - 3 */ 63c4b2390SSalvatore Benedetto static u64 nist_p192_g_x[] = { 0xF4FF0AFD82FF1012ull, 0x7CBF20EB43A18800ull, 73c4b2390SSalvatore Benedetto 0x188DA80EB03090F6ull }; 83c4b2390SSalvatore Benedetto static u64 nist_p192_g_y[] = { 0x73F977A11E794811ull, 0x631011ED6B24CDD5ull, 93c4b2390SSalvatore Benedetto 0x07192B95FFC8DA78ull }; 103c4b2390SSalvatore Benedetto static u64 nist_p192_p[] = { 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFEull, 113c4b2390SSalvatore Benedetto 0xFFFFFFFFFFFFFFFFull }; 123c4b2390SSalvatore Benedetto static u64 nist_p192_n[] = { 0x146BC9B1B4D22831ull, 0xFFFFFFFF99DEF836ull, 133c4b2390SSalvatore Benedetto 0xFFFFFFFFFFFFFFFFull }; 14ea169a30SStephan Mueller static u64 nist_p192_a[] = { 0xFFFFFFFFFFFFFFFCull, 0xFFFFFFFFFFFFFFFEull, 15aef66587SStephan Mueller 0xFFFFFFFFFFFFFFFFull }; 16ea169a30SStephan Mueller static u64 nist_p192_b[] = { 0xFEB8DEECC146B9B1ull, 0x0FA7E9AB72243049ull, 17ea169a30SStephan Mueller 0x64210519E59C80E7ull }; 183c4b2390SSalvatore Benedetto static struct ecc_curve nist_p192 = { 193c4b2390SSalvatore Benedetto .name = "nist_192", 20c0d6bd1fSStefan Berger .nbits = 192, 213c4b2390SSalvatore Benedetto .g = { 223c4b2390SSalvatore Benedetto .x = nist_p192_g_x, 233c4b2390SSalvatore Benedetto .y = nist_p192_g_y, 243c4b2390SSalvatore Benedetto .ndigits = 3, 253c4b2390SSalvatore Benedetto }, 263c4b2390SSalvatore Benedetto .p = nist_p192_p, 27ea169a30SStephan Mueller .n = nist_p192_n, 28ea169a30SStephan Mueller .a = nist_p192_a, 29ea169a30SStephan Mueller .b = nist_p192_b 303c4b2390SSalvatore Benedetto }; 313c4b2390SSalvatore Benedetto 32ea169a30SStephan Mueller /* NIST P-256: a = p - 3 */ 333c4b2390SSalvatore Benedetto static u64 nist_p256_g_x[] = { 0xF4A13945D898C296ull, 0x77037D812DEB33A0ull, 343c4b2390SSalvatore Benedetto 0xF8BCE6E563A440F2ull, 0x6B17D1F2E12C4247ull }; 353c4b2390SSalvatore Benedetto static u64 nist_p256_g_y[] = { 0xCBB6406837BF51F5ull, 0x2BCE33576B315ECEull, 363c4b2390SSalvatore Benedetto 0x8EE7EB4A7C0F9E16ull, 0x4FE342E2FE1A7F9Bull }; 373c4b2390SSalvatore Benedetto static u64 nist_p256_p[] = { 0xFFFFFFFFFFFFFFFFull, 0x00000000FFFFFFFFull, 383c4b2390SSalvatore Benedetto 0x0000000000000000ull, 0xFFFFFFFF00000001ull }; 393c4b2390SSalvatore Benedetto static u64 nist_p256_n[] = { 0xF3B9CAC2FC632551ull, 0xBCE6FAADA7179E84ull, 403c4b2390SSalvatore Benedetto 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFF00000000ull }; 41ea169a30SStephan Mueller static u64 nist_p256_a[] = { 0xFFFFFFFFFFFFFFFCull, 0x00000000FFFFFFFFull, 42ea169a30SStephan Mueller 0x0000000000000000ull, 0xFFFFFFFF00000001ull }; 43ea169a30SStephan Mueller static u64 nist_p256_b[] = { 0x3BCE3C3E27D2604Bull, 0x651D06B0CC53B0F6ull, 44ea169a30SStephan Mueller 0xB3EBBD55769886BCull, 0x5AC635D8AA3A93E7ull }; 453c4b2390SSalvatore Benedetto static struct ecc_curve nist_p256 = { 463c4b2390SSalvatore Benedetto .name = "nist_256", 47c0d6bd1fSStefan Berger .nbits = 256, 483c4b2390SSalvatore Benedetto .g = { 493c4b2390SSalvatore Benedetto .x = nist_p256_g_x, 503c4b2390SSalvatore Benedetto .y = nist_p256_g_y, 513c4b2390SSalvatore Benedetto .ndigits = 4, 523c4b2390SSalvatore Benedetto }, 533c4b2390SSalvatore Benedetto .p = nist_p256_p, 54ea169a30SStephan Mueller .n = nist_p256_n, 55ea169a30SStephan Mueller .a = nist_p256_a, 56ea169a30SStephan Mueller .b = nist_p256_b 573c4b2390SSalvatore Benedetto }; 583c4b2390SSalvatore Benedetto 59703c748dSSaulo Alessandre /* NIST P-384 */ 60703c748dSSaulo Alessandre static u64 nist_p384_g_x[] = { 0x3A545E3872760AB7ull, 0x5502F25DBF55296Cull, 61703c748dSSaulo Alessandre 0x59F741E082542A38ull, 0x6E1D3B628BA79B98ull, 62703c748dSSaulo Alessandre 0x8Eb1C71EF320AD74ull, 0xAA87CA22BE8B0537ull }; 63703c748dSSaulo Alessandre static u64 nist_p384_g_y[] = { 0x7A431D7C90EA0E5Full, 0x0A60B1CE1D7E819Dull, 64703c748dSSaulo Alessandre 0xE9DA3113B5F0B8C0ull, 0xF8F41DBD289A147Cull, 65703c748dSSaulo Alessandre 0x5D9E98BF9292DC29ull, 0x3617DE4A96262C6Full }; 66703c748dSSaulo Alessandre static u64 nist_p384_p[] = { 0x00000000FFFFFFFFull, 0xFFFFFFFF00000000ull, 67703c748dSSaulo Alessandre 0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull, 68703c748dSSaulo Alessandre 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull }; 69703c748dSSaulo Alessandre static u64 nist_p384_n[] = { 0xECEC196ACCC52973ull, 0x581A0DB248B0A77Aull, 70703c748dSSaulo Alessandre 0xC7634D81F4372DDFull, 0xFFFFFFFFFFFFFFFFull, 71703c748dSSaulo Alessandre 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull }; 72703c748dSSaulo Alessandre static u64 nist_p384_a[] = { 0x00000000FFFFFFFCull, 0xFFFFFFFF00000000ull, 73703c748dSSaulo Alessandre 0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull, 74703c748dSSaulo Alessandre 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull }; 75703c748dSSaulo Alessandre static u64 nist_p384_b[] = { 0x2a85c8edd3ec2aefull, 0xc656398d8a2ed19dull, 76703c748dSSaulo Alessandre 0x0314088f5013875aull, 0x181d9c6efe814112ull, 77703c748dSSaulo Alessandre 0x988e056be3f82d19ull, 0xb3312fa7e23ee7e4ull }; 78703c748dSSaulo Alessandre static struct ecc_curve nist_p384 = { 79703c748dSSaulo Alessandre .name = "nist_384", 80c0d6bd1fSStefan Berger .nbits = 384, 81703c748dSSaulo Alessandre .g = { 82703c748dSSaulo Alessandre .x = nist_p384_g_x, 83703c748dSSaulo Alessandre .y = nist_p384_g_y, 84703c748dSSaulo Alessandre .ndigits = 6, 85703c748dSSaulo Alessandre }, 86703c748dSSaulo Alessandre .p = nist_p384_p, 87703c748dSSaulo Alessandre .n = nist_p384_n, 88703c748dSSaulo Alessandre .a = nist_p384_a, 89703c748dSSaulo Alessandre .b = nist_p384_b 90703c748dSSaulo Alessandre }; 91703c748dSSaulo Alessandre 92*288b46c5SStefan Berger /* NIST P-521 */ 93*288b46c5SStefan Berger static u64 nist_p521_g_x[] = { 0xf97e7e31c2e5bd66ull, 0x3348b3c1856a429bull, 94*288b46c5SStefan Berger 0xfe1dc127a2ffa8deull, 0xa14b5e77efe75928ull, 95*288b46c5SStefan Berger 0xf828af606b4d3dbaull, 0x9c648139053fb521ull, 96*288b46c5SStefan Berger 0x9e3ecb662395b442ull, 0x858e06b70404e9cdull, 97*288b46c5SStefan Berger 0xc6ull }; 98*288b46c5SStefan Berger static u64 nist_p521_g_y[] = { 0x88be94769fd16650ull, 0x353c7086a272c240ull, 99*288b46c5SStefan Berger 0xc550b9013fad0761ull, 0x97ee72995ef42640ull, 100*288b46c5SStefan Berger 0x17afbd17273e662cull, 0x98f54449579b4468ull, 101*288b46c5SStefan Berger 0x5c8a5fb42c7d1bd9ull, 0x39296a789a3bc004ull, 102*288b46c5SStefan Berger 0x118ull }; 103*288b46c5SStefan Berger static u64 nist_p521_p[] = { 0xffffffffffffffffull, 0xffffffffffffffffull, 104*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 105*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 106*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 107*288b46c5SStefan Berger 0x1ffull }; 108*288b46c5SStefan Berger static u64 nist_p521_n[] = { 0xbb6fb71e91386409ull, 0x3bb5c9b8899c47aeull, 109*288b46c5SStefan Berger 0x7fcc0148f709a5d0ull, 0x51868783bf2f966bull, 110*288b46c5SStefan Berger 0xfffffffffffffffaull, 0xffffffffffffffffull, 111*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 112*288b46c5SStefan Berger 0x1ffull }; 113*288b46c5SStefan Berger static u64 nist_p521_a[] = { 0xfffffffffffffffcull, 0xffffffffffffffffull, 114*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 115*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 116*288b46c5SStefan Berger 0xffffffffffffffffull, 0xffffffffffffffffull, 117*288b46c5SStefan Berger 0x1ffull }; 118*288b46c5SStefan Berger static u64 nist_p521_b[] = { 0xef451fd46b503f00ull, 0x3573df883d2c34f1ull, 119*288b46c5SStefan Berger 0x1652c0bd3bb1bf07ull, 0x56193951ec7e937bull, 120*288b46c5SStefan Berger 0xb8b489918ef109e1ull, 0xa2da725b99b315f3ull, 121*288b46c5SStefan Berger 0x929a21a0b68540eeull, 0x953eb9618e1c9a1full, 122*288b46c5SStefan Berger 0x051ull }; 123*288b46c5SStefan Berger static struct ecc_curve nist_p521 = { 124*288b46c5SStefan Berger .name = "nist_521", 125*288b46c5SStefan Berger .nbits = 521, 126*288b46c5SStefan Berger .g = { 127*288b46c5SStefan Berger .x = nist_p521_g_x, 128*288b46c5SStefan Berger .y = nist_p521_g_y, 129*288b46c5SStefan Berger .ndigits = 9, 130*288b46c5SStefan Berger }, 131*288b46c5SStefan Berger .p = nist_p521_p, 132*288b46c5SStefan Berger .n = nist_p521_n, 133*288b46c5SStefan Berger .a = nist_p521_a, 134*288b46c5SStefan Berger .b = nist_p521_b 135*288b46c5SStefan Berger }; 136*288b46c5SStefan Berger 1378fb9340eSMeng Yu /* curve25519 */ 1388fb9340eSMeng Yu static u64 curve25519_g_x[] = { 0x0000000000000009, 0x0000000000000000, 1398fb9340eSMeng Yu 0x0000000000000000, 0x0000000000000000 }; 1408fb9340eSMeng Yu static u64 curve25519_p[] = { 0xffffffffffffffed, 0xffffffffffffffff, 1418fb9340eSMeng Yu 0xffffffffffffffff, 0x7fffffffffffffff }; 1428fb9340eSMeng Yu static u64 curve25519_a[] = { 0x000000000001DB41, 0x0000000000000000, 1438fb9340eSMeng Yu 0x0000000000000000, 0x0000000000000000 }; 1448fb9340eSMeng Yu static const struct ecc_curve ecc_25519 = { 1458fb9340eSMeng Yu .name = "curve25519", 146c0d6bd1fSStefan Berger .nbits = 255, 1478fb9340eSMeng Yu .g = { 1488fb9340eSMeng Yu .x = curve25519_g_x, 1498fb9340eSMeng Yu .ndigits = 4, 1508fb9340eSMeng Yu }, 1518fb9340eSMeng Yu .p = curve25519_p, 1528fb9340eSMeng Yu .a = curve25519_a, 1538fb9340eSMeng Yu }; 1548fb9340eSMeng Yu 1553c4b2390SSalvatore Benedetto #endif 156