xref: /linux/crypto/ecc_curve_defs.h (revision c771600c6af14749609b49565ffb4cac2959710d)
1b2441318SGreg Kroah-Hartman /* SPDX-License-Identifier: GPL-2.0 */
23c4b2390SSalvatore Benedetto #ifndef _CRYTO_ECC_CURVE_DEFS_H
33c4b2390SSalvatore Benedetto #define _CRYTO_ECC_CURVE_DEFS_H
43c4b2390SSalvatore Benedetto 
5ea169a30SStephan Mueller /* NIST P-192: a = p - 3 */
63c4b2390SSalvatore Benedetto static u64 nist_p192_g_x[] = { 0xF4FF0AFD82FF1012ull, 0x7CBF20EB43A18800ull,
73c4b2390SSalvatore Benedetto 				0x188DA80EB03090F6ull };
83c4b2390SSalvatore Benedetto static u64 nist_p192_g_y[] = { 0x73F977A11E794811ull, 0x631011ED6B24CDD5ull,
93c4b2390SSalvatore Benedetto 				0x07192B95FFC8DA78ull };
103c4b2390SSalvatore Benedetto static u64 nist_p192_p[] = { 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFEull,
113c4b2390SSalvatore Benedetto 				0xFFFFFFFFFFFFFFFFull };
123c4b2390SSalvatore Benedetto static u64 nist_p192_n[] = { 0x146BC9B1B4D22831ull, 0xFFFFFFFF99DEF836ull,
133c4b2390SSalvatore Benedetto 				0xFFFFFFFFFFFFFFFFull };
14ea169a30SStephan Mueller static u64 nist_p192_a[] = { 0xFFFFFFFFFFFFFFFCull, 0xFFFFFFFFFFFFFFFEull,
15aef66587SStephan Mueller 				0xFFFFFFFFFFFFFFFFull };
16ea169a30SStephan Mueller static u64 nist_p192_b[] = { 0xFEB8DEECC146B9B1ull, 0x0FA7E9AB72243049ull,
17ea169a30SStephan Mueller 				0x64210519E59C80E7ull };
183c4b2390SSalvatore Benedetto static struct ecc_curve nist_p192 = {
193c4b2390SSalvatore Benedetto 	.name = "nist_192",
20c0d6bd1fSStefan Berger 	.nbits = 192,
213c4b2390SSalvatore Benedetto 	.g = {
223c4b2390SSalvatore Benedetto 		.x = nist_p192_g_x,
233c4b2390SSalvatore Benedetto 		.y = nist_p192_g_y,
243c4b2390SSalvatore Benedetto 		.ndigits = 3,
253c4b2390SSalvatore Benedetto 	},
263c4b2390SSalvatore Benedetto 	.p = nist_p192_p,
27ea169a30SStephan Mueller 	.n = nist_p192_n,
28ea169a30SStephan Mueller 	.a = nist_p192_a,
29ea169a30SStephan Mueller 	.b = nist_p192_b
303c4b2390SSalvatore Benedetto };
313c4b2390SSalvatore Benedetto 
32ea169a30SStephan Mueller /* NIST P-256: a = p - 3 */
333c4b2390SSalvatore Benedetto static u64 nist_p256_g_x[] = { 0xF4A13945D898C296ull, 0x77037D812DEB33A0ull,
343c4b2390SSalvatore Benedetto 				0xF8BCE6E563A440F2ull, 0x6B17D1F2E12C4247ull };
353c4b2390SSalvatore Benedetto static u64 nist_p256_g_y[] = { 0xCBB6406837BF51F5ull, 0x2BCE33576B315ECEull,
363c4b2390SSalvatore Benedetto 				0x8EE7EB4A7C0F9E16ull, 0x4FE342E2FE1A7F9Bull };
373c4b2390SSalvatore Benedetto static u64 nist_p256_p[] = { 0xFFFFFFFFFFFFFFFFull, 0x00000000FFFFFFFFull,
383c4b2390SSalvatore Benedetto 				0x0000000000000000ull, 0xFFFFFFFF00000001ull };
393c4b2390SSalvatore Benedetto static u64 nist_p256_n[] = { 0xF3B9CAC2FC632551ull, 0xBCE6FAADA7179E84ull,
403c4b2390SSalvatore Benedetto 				0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFF00000000ull };
41ea169a30SStephan Mueller static u64 nist_p256_a[] = { 0xFFFFFFFFFFFFFFFCull, 0x00000000FFFFFFFFull,
42ea169a30SStephan Mueller 				0x0000000000000000ull, 0xFFFFFFFF00000001ull };
43ea169a30SStephan Mueller static u64 nist_p256_b[] = { 0x3BCE3C3E27D2604Bull, 0x651D06B0CC53B0F6ull,
44ea169a30SStephan Mueller 				0xB3EBBD55769886BCull, 0x5AC635D8AA3A93E7ull };
453c4b2390SSalvatore Benedetto static struct ecc_curve nist_p256 = {
463c4b2390SSalvatore Benedetto 	.name = "nist_256",
47c0d6bd1fSStefan Berger 	.nbits = 256,
483c4b2390SSalvatore Benedetto 	.g = {
493c4b2390SSalvatore Benedetto 		.x = nist_p256_g_x,
503c4b2390SSalvatore Benedetto 		.y = nist_p256_g_y,
513c4b2390SSalvatore Benedetto 		.ndigits = 4,
523c4b2390SSalvatore Benedetto 	},
533c4b2390SSalvatore Benedetto 	.p = nist_p256_p,
54ea169a30SStephan Mueller 	.n = nist_p256_n,
55ea169a30SStephan Mueller 	.a = nist_p256_a,
56ea169a30SStephan Mueller 	.b = nist_p256_b
573c4b2390SSalvatore Benedetto };
583c4b2390SSalvatore Benedetto 
59703c748dSSaulo Alessandre /* NIST P-384 */
60703c748dSSaulo Alessandre static u64 nist_p384_g_x[] = { 0x3A545E3872760AB7ull, 0x5502F25DBF55296Cull,
61703c748dSSaulo Alessandre 				0x59F741E082542A38ull, 0x6E1D3B628BA79B98ull,
62703c748dSSaulo Alessandre 				0x8Eb1C71EF320AD74ull, 0xAA87CA22BE8B0537ull };
63703c748dSSaulo Alessandre static u64 nist_p384_g_y[] = { 0x7A431D7C90EA0E5Full, 0x0A60B1CE1D7E819Dull,
64703c748dSSaulo Alessandre 				0xE9DA3113B5F0B8C0ull, 0xF8F41DBD289A147Cull,
65703c748dSSaulo Alessandre 				0x5D9E98BF9292DC29ull, 0x3617DE4A96262C6Full };
66703c748dSSaulo Alessandre static u64 nist_p384_p[] = { 0x00000000FFFFFFFFull, 0xFFFFFFFF00000000ull,
67703c748dSSaulo Alessandre 				0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull,
68703c748dSSaulo Alessandre 				0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
69703c748dSSaulo Alessandre static u64 nist_p384_n[] = { 0xECEC196ACCC52973ull, 0x581A0DB248B0A77Aull,
70703c748dSSaulo Alessandre 				0xC7634D81F4372DDFull, 0xFFFFFFFFFFFFFFFFull,
71703c748dSSaulo Alessandre 				0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
72703c748dSSaulo Alessandre static u64 nist_p384_a[] = { 0x00000000FFFFFFFCull, 0xFFFFFFFF00000000ull,
73703c748dSSaulo Alessandre 				0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull,
74703c748dSSaulo Alessandre 				0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
75703c748dSSaulo Alessandre static u64 nist_p384_b[] = { 0x2a85c8edd3ec2aefull, 0xc656398d8a2ed19dull,
76703c748dSSaulo Alessandre 				0x0314088f5013875aull, 0x181d9c6efe814112ull,
77703c748dSSaulo Alessandre 				0x988e056be3f82d19ull, 0xb3312fa7e23ee7e4ull };
78703c748dSSaulo Alessandre static struct ecc_curve nist_p384 = {
79703c748dSSaulo Alessandre 	.name = "nist_384",
80c0d6bd1fSStefan Berger 	.nbits = 384,
81703c748dSSaulo Alessandre 	.g = {
82703c748dSSaulo Alessandre 		.x = nist_p384_g_x,
83703c748dSSaulo Alessandre 		.y = nist_p384_g_y,
84703c748dSSaulo Alessandre 		.ndigits = 6,
85703c748dSSaulo Alessandre 	},
86703c748dSSaulo Alessandre 	.p = nist_p384_p,
87703c748dSSaulo Alessandre 	.n = nist_p384_n,
88703c748dSSaulo Alessandre 	.a = nist_p384_a,
89703c748dSSaulo Alessandre 	.b = nist_p384_b
90703c748dSSaulo Alessandre };
91703c748dSSaulo Alessandre 
92*288b46c5SStefan Berger /* NIST P-521 */
93*288b46c5SStefan Berger static u64 nist_p521_g_x[] = { 0xf97e7e31c2e5bd66ull, 0x3348b3c1856a429bull,
94*288b46c5SStefan Berger 				0xfe1dc127a2ffa8deull, 0xa14b5e77efe75928ull,
95*288b46c5SStefan Berger 				0xf828af606b4d3dbaull, 0x9c648139053fb521ull,
96*288b46c5SStefan Berger 				0x9e3ecb662395b442ull, 0x858e06b70404e9cdull,
97*288b46c5SStefan Berger 				0xc6ull };
98*288b46c5SStefan Berger static u64 nist_p521_g_y[] = { 0x88be94769fd16650ull, 0x353c7086a272c240ull,
99*288b46c5SStefan Berger 				0xc550b9013fad0761ull, 0x97ee72995ef42640ull,
100*288b46c5SStefan Berger 				0x17afbd17273e662cull, 0x98f54449579b4468ull,
101*288b46c5SStefan Berger 				0x5c8a5fb42c7d1bd9ull, 0x39296a789a3bc004ull,
102*288b46c5SStefan Berger 				0x118ull };
103*288b46c5SStefan Berger static u64 nist_p521_p[] = { 0xffffffffffffffffull, 0xffffffffffffffffull,
104*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
105*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
106*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
107*288b46c5SStefan Berger 				0x1ffull };
108*288b46c5SStefan Berger static u64 nist_p521_n[] = { 0xbb6fb71e91386409ull, 0x3bb5c9b8899c47aeull,
109*288b46c5SStefan Berger 				0x7fcc0148f709a5d0ull, 0x51868783bf2f966bull,
110*288b46c5SStefan Berger 				0xfffffffffffffffaull, 0xffffffffffffffffull,
111*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
112*288b46c5SStefan Berger 				0x1ffull };
113*288b46c5SStefan Berger static u64 nist_p521_a[] = { 0xfffffffffffffffcull, 0xffffffffffffffffull,
114*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
115*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
116*288b46c5SStefan Berger 				0xffffffffffffffffull, 0xffffffffffffffffull,
117*288b46c5SStefan Berger 				0x1ffull };
118*288b46c5SStefan Berger static u64 nist_p521_b[] = { 0xef451fd46b503f00ull, 0x3573df883d2c34f1ull,
119*288b46c5SStefan Berger 				0x1652c0bd3bb1bf07ull, 0x56193951ec7e937bull,
120*288b46c5SStefan Berger 				0xb8b489918ef109e1ull, 0xa2da725b99b315f3ull,
121*288b46c5SStefan Berger 				0x929a21a0b68540eeull, 0x953eb9618e1c9a1full,
122*288b46c5SStefan Berger 				0x051ull };
123*288b46c5SStefan Berger static struct ecc_curve nist_p521 = {
124*288b46c5SStefan Berger 	.name = "nist_521",
125*288b46c5SStefan Berger 	.nbits = 521,
126*288b46c5SStefan Berger 	.g = {
127*288b46c5SStefan Berger 		.x = nist_p521_g_x,
128*288b46c5SStefan Berger 		.y = nist_p521_g_y,
129*288b46c5SStefan Berger 		.ndigits = 9,
130*288b46c5SStefan Berger 	},
131*288b46c5SStefan Berger 	.p = nist_p521_p,
132*288b46c5SStefan Berger 	.n = nist_p521_n,
133*288b46c5SStefan Berger 	.a = nist_p521_a,
134*288b46c5SStefan Berger 	.b = nist_p521_b
135*288b46c5SStefan Berger };
136*288b46c5SStefan Berger 
1378fb9340eSMeng Yu /* curve25519 */
1388fb9340eSMeng Yu static u64 curve25519_g_x[] = { 0x0000000000000009, 0x0000000000000000,
1398fb9340eSMeng Yu 				0x0000000000000000, 0x0000000000000000 };
1408fb9340eSMeng Yu static u64 curve25519_p[] = { 0xffffffffffffffed, 0xffffffffffffffff,
1418fb9340eSMeng Yu 				0xffffffffffffffff, 0x7fffffffffffffff };
1428fb9340eSMeng Yu static u64 curve25519_a[] = { 0x000000000001DB41, 0x0000000000000000,
1438fb9340eSMeng Yu 				0x0000000000000000, 0x0000000000000000 };
1448fb9340eSMeng Yu static const struct ecc_curve ecc_25519 = {
1458fb9340eSMeng Yu 	.name = "curve25519",
146c0d6bd1fSStefan Berger 	.nbits = 255,
1478fb9340eSMeng Yu 	.g = {
1488fb9340eSMeng Yu 		.x = curve25519_g_x,
1498fb9340eSMeng Yu 		.ndigits = 4,
1508fb9340eSMeng Yu 	},
1518fb9340eSMeng Yu 	.p = curve25519_p,
1528fb9340eSMeng Yu 	.a = curve25519_a,
1538fb9340eSMeng Yu };
1548fb9340eSMeng Yu 
1553c4b2390SSalvatore Benedetto #endif
156