<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/> <meta http-equiv="X-UA-Compatible" content="IE=9"/> <meta name="generator" content="Doxygen 1.8.14"/> <meta name="viewport" content="width=device-width, initial-scale=1"/> <title>Crypto++: aria.cpp Source File</title> <link href="tabs.css" rel="stylesheet" type="text/css"/> <script type="text/javascript" src="jquery.js"></script> <script type="text/javascript" src="dynsections.js"></script> <link href="doxygen.css" rel="stylesheet" type="text/css" /> </head> <body> <div id="top"><!-- do not remove this div, it is closed by doxygen! --> <div id="titlearea"> <table cellspacing="0" cellpadding="0"> <tbody> <tr style="height: 56px;"> <td id="projectalign" style="padding-left: 0.5em;"> <div id="projectname">Crypto++  <span id="projectnumber">7.0</span> </div> <div id="projectbrief">Free C++ class library of cryptographic schemes</div> </td> </tr> </tbody> </table> </div> <!-- end header part --> <!-- Generated by Doxygen 1.8.14 --> <script type="text/javascript" src="menudata.js"></script> <script type="text/javascript" src="menu.js"></script> <script type="text/javascript"> /* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&dn=gpl-2.0.txt GPL-v2 */ $(function() { initMenu('',false,false,'search.php','Search'); }); /* @license-end */</script> <div id="main-nav"></div> </div><!-- top --> <div class="header"> <div class="headertitle"> <div class="title">aria.cpp</div> </div> </div><!--header--> <div class="contents"> <div class="fragment"><div class="line"><a name="l00001"></a><span class="lineno"> 1</span> <span class="comment">// aria.cpp - written and placed in the public domain by Jeffrey Walton</span></div><div class="line"><a name="l00002"></a><span class="lineno"> 2</span> </div><div class="line"><a name="l00003"></a><span class="lineno"> 3</span> <span class="preprocessor">#include "<a class="code" href="pch_8h.html">pch.h</a>"</span></div><div class="line"><a name="l00004"></a><span class="lineno"> 4</span> <span class="preprocessor">#include "<a class="code" href="config_8h.html">config.h</a>"</span></div><div class="line"><a name="l00005"></a><span class="lineno"> 5</span> </div><div class="line"><a name="l00006"></a><span class="lineno"> 6</span> <span class="preprocessor">#include "<a class="code" href="aria_8h.html">aria.h</a>"</span></div><div class="line"><a name="l00007"></a><span class="lineno"> 7</span> <span class="preprocessor">#include "<a class="code" href="misc_8h.html">misc.h</a>"</span></div><div class="line"><a name="l00008"></a><span class="lineno"> 8</span> <span class="preprocessor">#include "<a class="code" href="cpu_8h.html">cpu.h</a>"</span></div><div class="line"><a name="l00009"></a><span class="lineno"> 9</span> </div><div class="line"><a name="l00010"></a><span class="lineno"> 10</span> <span class="preprocessor">#if CRYPTOPP_SSE2_INTRIN_AVAILABLE</span></div><div class="line"><a name="l00011"></a><span class="lineno"> 11</span> <span class="preprocessor"># define CRYPTOPP_ENABLE_ARIA_SSE2_INTRINSICS 1</span></div><div class="line"><a name="l00012"></a><span class="lineno"> 12</span> <span class="preprocessor">#endif</span></div><div class="line"><a name="l00013"></a><span class="lineno"> 13</span> </div><div class="line"><a name="l00014"></a><span class="lineno"> 14</span> <span class="preprocessor">#if CRYPTOPP_SSSE3_AVAILABLE</span></div><div class="line"><a name="l00015"></a><span class="lineno"> 15</span> <span class="preprocessor"># define CRYPTOPP_ENABLE_ARIA_SSSE3_INTRINSICS 1</span></div><div class="line"><a name="l00016"></a><span class="lineno"> 16</span> <span class="preprocessor">#endif</span></div><div class="line"><a name="l00017"></a><span class="lineno"> 17</span> </div><div class="line"><a name="l00018"></a><span class="lineno"> 18</span> <span class="comment">// GCC cast warning. Note: this is used on round key table,</span></div><div class="line"><a name="l00019"></a><span class="lineno"> 19</span> <span class="comment">// which is word32 and naturally aligned.</span></div><div class="line"><a name="l00020"></a><span class="lineno"> 20</span> <span class="preprocessor">#define UINT32_CAST(x) ((word32 *)(void *)(x))</span></div><div class="line"><a name="l00021"></a><span class="lineno"> 21</span> </div><div class="line"><a name="l00022"></a><span class="lineno"> 22</span> NAMESPACE_BEGIN(<a class="code" href="namespace_crypto_p_p.html">CryptoPP</a>)</div><div class="line"><a name="l00023"></a><span class="lineno"> 23</span> NAMESPACE_BEGIN(ARIATab)</div><div class="line"><a name="l00024"></a><span class="lineno"> 24</span> </div><div class="line"><a name="l00025"></a><span class="lineno"> 25</span> <span class="keyword">extern</span> <span class="keyword">const</span> word32 S1[256];</div><div class="line"><a name="l00026"></a><span class="lineno"> 26</span> <span class="keyword">extern</span> <span class="keyword">const</span> word32 S2[256];</div><div class="line"><a name="l00027"></a><span class="lineno"> 27</span> <span class="keyword">extern</span> <span class="keyword">const</span> word32 X1[256];</div><div class="line"><a name="l00028"></a><span class="lineno"> 28</span> <span class="keyword">extern</span> <span class="keyword">const</span> word32 X2[256];</div><div class="line"><a name="l00029"></a><span class="lineno"> 29</span> <span class="keyword">extern</span> <span class="keyword">const</span> word32 KRK[3][4];</div><div class="line"><a name="l00030"></a><span class="lineno"> 30</span> </div><div class="line"><a name="l00031"></a><span class="lineno"> 31</span> NAMESPACE_END</div><div class="line"><a name="l00032"></a><span class="lineno"> 32</span> NAMESPACE_END</div><div class="line"><a name="l00033"></a><span class="lineno"> 33</span> </div><div class="line"><a name="l00034"></a><span class="lineno"> 34</span> NAMESPACE_BEGIN(<a class="code" href="namespace_crypto_p_p.html">CryptoPP</a>)</div><div class="line"><a name="l00035"></a><span class="lineno"> 35</span> </div><div class="line"><a name="l00036"></a><span class="lineno"> 36</span> <span class="keyword">using</span> CryptoPP::ARIATab::S1;</div><div class="line"><a name="l00037"></a><span class="lineno"> 37</span> <span class="keyword">using</span> CryptoPP::ARIATab::S2;</div><div class="line"><a name="l00038"></a><span class="lineno"> 38</span> <span class="keyword">using</span> CryptoPP::ARIATab::X1;</div><div class="line"><a name="l00039"></a><span class="lineno"> 39</span> <span class="keyword">using</span> CryptoPP::ARIATab::X2;</div><div class="line"><a name="l00040"></a><span class="lineno"> 40</span> <span class="keyword">using</span> CryptoPP::ARIATab::KRK;</div><div class="line"><a name="l00041"></a><span class="lineno"> 41</span> </div><div class="line"><a name="l00042"></a><span class="lineno"> 42</span> <span class="keyword">inline</span> byte ARIA_BRF(<span class="keyword">const</span> word32 x, <span class="keyword">const</span> <span class="keywordtype">int</span> y) {</div><div class="line"><a name="l00043"></a><span class="lineno"> 43</span>  <span class="keywordflow">return</span> GETBYTE(x, y);</div><div class="line"><a name="l00044"></a><span class="lineno"> 44</span> }</div><div class="line"><a name="l00045"></a><span class="lineno"> 45</span> </div><div class="line"><a name="l00046"></a><span class="lineno"> 46</span> <span class="comment">// Key XOR Layer</span></div><div class="line"><a name="l00047"></a><span class="lineno"> 47</span> <span class="preprocessor">#define ARIA_KXL { \</span></div><div class="line"><a name="l00048"></a><span class="lineno"> 48</span> <span class="preprocessor"> typedef BlockGetAndPut<word32, NativeByteOrder, true, true> NativeBlock; \</span></div><div class="line"><a name="l00049"></a><span class="lineno"> 49</span> <span class="preprocessor"> NativeBlock::Put(rk, t)(t[0])(t[1])(t[2])(t[3]); \</span></div><div class="line"><a name="l00050"></a><span class="lineno"> 50</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00051"></a><span class="lineno"> 51</span> </div><div class="line"><a name="l00052"></a><span class="lineno"> 52</span> <span class="comment">// S-Box Layer 1 + M</span></div><div class="line"><a name="l00053"></a><span class="lineno"> 53</span> <span class="preprocessor">#define SBL1_M(T0,T1,T2,T3) { \</span></div><div class="line"><a name="l00054"></a><span class="lineno"> 54</span> <span class="preprocessor"> T0=S1[ARIA_BRF(T0,3)]^S2[ARIA_BRF(T0,2)]^X1[ARIA_BRF(T0,1)]^X2[ARIA_BRF(T0,0)]; \</span></div><div class="line"><a name="l00055"></a><span class="lineno"> 55</span> <span class="preprocessor"> T1=S1[ARIA_BRF(T1,3)]^S2[ARIA_BRF(T1,2)]^X1[ARIA_BRF(T1,1)]^X2[ARIA_BRF(T1,0)]; \</span></div><div class="line"><a name="l00056"></a><span class="lineno"> 56</span> <span class="preprocessor"> T2=S1[ARIA_BRF(T2,3)]^S2[ARIA_BRF(T2,2)]^X1[ARIA_BRF(T2,1)]^X2[ARIA_BRF(T2,0)]; \</span></div><div class="line"><a name="l00057"></a><span class="lineno"> 57</span> <span class="preprocessor"> T3=S1[ARIA_BRF(T3,3)]^S2[ARIA_BRF(T3,2)]^X1[ARIA_BRF(T3,1)]^X2[ARIA_BRF(T3,0)]; \</span></div><div class="line"><a name="l00058"></a><span class="lineno"> 58</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00059"></a><span class="lineno"> 59</span> </div><div class="line"><a name="l00060"></a><span class="lineno"> 60</span> <span class="comment">// S-Box Layer 2 + M</span></div><div class="line"><a name="l00061"></a><span class="lineno"> 61</span> <span class="preprocessor">#define SBL2_M(T0,T1,T2,T3) { \</span></div><div class="line"><a name="l00062"></a><span class="lineno"> 62</span> <span class="preprocessor"> T0=X1[ARIA_BRF(T0,3)]^X2[ARIA_BRF(T0,2)]^S1[ARIA_BRF(T0,1)]^S2[ARIA_BRF(T0,0)]; \</span></div><div class="line"><a name="l00063"></a><span class="lineno"> 63</span> <span class="preprocessor"> T1=X1[ARIA_BRF(T1,3)]^X2[ARIA_BRF(T1,2)]^S1[ARIA_BRF(T1,1)]^S2[ARIA_BRF(T1,0)]; \</span></div><div class="line"><a name="l00064"></a><span class="lineno"> 64</span> <span class="preprocessor"> T2=X1[ARIA_BRF(T2,3)]^X2[ARIA_BRF(T2,2)]^S1[ARIA_BRF(T2,1)]^S2[ARIA_BRF(T2,0)]; \</span></div><div class="line"><a name="l00065"></a><span class="lineno"> 65</span> <span class="preprocessor"> T3=X1[ARIA_BRF(T3,3)]^X2[ARIA_BRF(T3,2)]^S1[ARIA_BRF(T3,1)]^S2[ARIA_BRF(T3,0)]; \</span></div><div class="line"><a name="l00066"></a><span class="lineno"> 66</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00067"></a><span class="lineno"> 67</span> </div><div class="line"><a name="l00068"></a><span class="lineno"> 68</span> <span class="preprocessor">#define ARIA_P(T0,T1,T2,T3) { \</span></div><div class="line"><a name="l00069"></a><span class="lineno"> 69</span> <span class="preprocessor"> (T1) = (((T1)<< 8)&0xff00ff00) ^ (((T1)>> 8)&0x00ff00ff); \</span></div><div class="line"><a name="l00070"></a><span class="lineno"> 70</span> <span class="preprocessor"> (T2) = rotrConstant<16>(T2); \</span></div><div class="line"><a name="l00071"></a><span class="lineno"> 71</span> <span class="preprocessor"> (T3) = ByteReverse((T3)); \</span></div><div class="line"><a name="l00072"></a><span class="lineno"> 72</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00073"></a><span class="lineno"> 73</span> </div><div class="line"><a name="l00074"></a><span class="lineno"> 74</span> <span class="preprocessor">#define ARIA_M(X,Y) { \</span></div><div class="line"><a name="l00075"></a><span class="lineno"> 75</span> <span class="preprocessor"> Y=(X)<<8 ^ (X)>>8 ^ (X)<<16 ^ (X)>>16 ^ (X)<<24 ^ (X)>>24; \</span></div><div class="line"><a name="l00076"></a><span class="lineno"> 76</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00077"></a><span class="lineno"> 77</span> </div><div class="line"><a name="l00078"></a><span class="lineno"> 78</span> <span class="preprocessor">#define ARIA_MM(T0,T1,T2,T3) { \</span></div><div class="line"><a name="l00079"></a><span class="lineno"> 79</span> <span class="preprocessor"> (T1)^=(T2); (T2)^=(T3); (T0)^=(T1); \</span></div><div class="line"><a name="l00080"></a><span class="lineno"> 80</span> <span class="preprocessor"> (T3)^=(T1); (T2)^=(T0); (T1)^=(T2); \</span></div><div class="line"><a name="l00081"></a><span class="lineno"> 81</span> <span class="preprocessor"> }</span></div><div class="line"><a name="l00082"></a><span class="lineno"> 82</span> </div><div class="line"><a name="l00083"></a><span class="lineno"> 83</span> <span class="preprocessor">#define ARIA_FO {SBL1_M(t[0],t[1],t[2],t[3]) ARIA_MM(t[0],t[1],t[2],t[3]) ARIA_P(t[0],t[1],t[2],t[3]) ARIA_MM(t[0],t[1],t[2],t[3])}</span></div><div class="line"><a name="l00084"></a><span class="lineno"> 84</span> <span class="preprocessor">#define ARIA_FE {SBL2_M(t[0],t[1],t[2],t[3]) ARIA_MM(t[0],t[1],t[2],t[3]) ARIA_P(t[2],t[3],t[0],t[1]) ARIA_MM(t[0],t[1],t[2],t[3])}</span></div><div class="line"><a name="l00085"></a><span class="lineno"> 85</span> </div><div class="line"><a name="l00086"></a><span class="lineno"> 86</span> <span class="preprocessor">#if (CRYPTOPP_ARM_NEON_AVAILABLE)</span></div><div class="line"><a name="l00087"></a><span class="lineno"> 87</span> <span class="keyword">extern</span> <span class="keywordtype">void</span> ARIA_UncheckedSetKey_Schedule_NEON(byte* rk, word32* ws, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> keylen);</div><div class="line"><a name="l00088"></a><span class="lineno"> 88</span> <span class="keyword">extern</span> <span class="keywordtype">void</span> ARIA_ProcessAndXorBlock_Xor_NEON(<span class="keyword">const</span> byte* xorBlock, byte* outblock);</div><div class="line"><a name="l00089"></a><span class="lineno"> 89</span> <span class="preprocessor">#endif</span></div><div class="line"><a name="l00090"></a><span class="lineno"> 90</span> </div><div class="line"><a name="l00091"></a><span class="lineno"> 91</span> <span class="preprocessor">#if (CRYPTOPP_SSSE3_AVAILABLE)</span></div><div class="line"><a name="l00092"></a><span class="lineno"> 92</span> <span class="keyword">extern</span> <span class="keywordtype">void</span> ARIA_ProcessAndXorBlock_Xor_SSSE3(<span class="keyword">const</span> byte* xorBlock, byte* outBlock, <span class="keyword">const</span> byte *rk, word32 *t);</div><div class="line"><a name="l00093"></a><span class="lineno"> 93</span> <span class="preprocessor">#endif</span></div><div class="line"><a name="l00094"></a><span class="lineno"> 94</span> </div><div class="line"><a name="l00095"></a><span class="lineno"> 95</span> <span class="comment">// n-bit right shift of Y XORed to X</span></div><div class="line"><a name="l00096"></a><span class="lineno"> 96</span> <span class="keyword">template</span> <<span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> N></div><div class="line"><a name="l00097"></a><span class="lineno"> 97</span> <span class="keyword">inline</span> <span class="keywordtype">void</span> ARIA_GSRK(<span class="keyword">const</span> word32 X[4], <span class="keyword">const</span> word32 Y[4], byte RK[16])</div><div class="line"><a name="l00098"></a><span class="lineno"> 98</span> {</div><div class="line"><a name="l00099"></a><span class="lineno"> 99</span>  <span class="comment">// MSVC is not generating a "rotate immediate". Constify to help it along.</span></div><div class="line"><a name="l00100"></a><span class="lineno"> 100</span>  <span class="keyword">static</span> <span class="keyword">const</span> <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> Q = 4-(N/32);</div><div class="line"><a name="l00101"></a><span class="lineno"> 101</span>  <span class="keyword">static</span> <span class="keyword">const</span> <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> R = N % 32;</div><div class="line"><a name="l00102"></a><span class="lineno"> 102</span>  UINT32_CAST(RK)[0] = (X[0]) ^ ((Y[(Q )%4])>>R) ^ ((Y[(Q+3)%4])<<(32-R));</div><div class="line"><a name="l00103"></a><span class="lineno"> 103</span>  UINT32_CAST(RK)[1] = (X[1]) ^ ((Y[(Q+1)%4])>>R) ^ ((Y[(Q )%4])<<(32-R));</div><div class="line"><a name="l00104"></a><span class="lineno"> 104</span>  UINT32_CAST(RK)[2] = (X[2]) ^ ((Y[(Q+2)%4])>>R) ^ ((Y[(Q+1)%4])<<(32-R));</div><div class="line"><a name="l00105"></a><span class="lineno"> 105</span>  UINT32_CAST(RK)[3] = (X[3]) ^ ((Y[(Q+3)%4])>>R) ^ ((Y[(Q+2)%4])<<(32-R));</div><div class="line"><a name="l00106"></a><span class="lineno"> 106</span> }</div><div class="line"><a name="l00107"></a><span class="lineno"> 107</span> </div><div class="line"><a name="l00108"></a><span class="lineno"> 108</span> <span class="keywordtype">void</span> ARIA::Base::UncheckedSetKey(<span class="keyword">const</span> byte *key, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> keylen, <span class="keyword">const</span> <a class="code" href="class_name_value_pairs.html">NameValuePairs</a> &params)</div><div class="line"><a name="l00109"></a><span class="lineno"> 109</span> {</div><div class="line"><a name="l00110"></a><span class="lineno"> 110</span>  CRYPTOPP_UNUSED(params);</div><div class="line"><a name="l00111"></a><span class="lineno"> 111</span> </div><div class="line"><a name="l00112"></a><span class="lineno"> 112</span>  m_rk.<a class="code" href="class_sec_block.html#a90d46e577c951d81a2d25a4742a3e979">New</a>(16*17); <span class="comment">// round keys</span></div><div class="line"><a name="l00113"></a><span class="lineno"> 113</span>  m_w.<a class="code" href="class_sec_block.html#a90d46e577c951d81a2d25a4742a3e979">New</a>(4*7); <span class="comment">// w0, w1, w2, w3, t and u</span></div><div class="line"><a name="l00114"></a><span class="lineno"> 114</span> </div><div class="line"><a name="l00115"></a><span class="lineno"> 115</span>  <span class="keyword">const</span> byte *mk = key;</div><div class="line"><a name="l00116"></a><span class="lineno"> 116</span>  byte *rk = m_rk.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>();</div><div class="line"><a name="l00117"></a><span class="lineno"> 117</span>  <span class="keywordtype">int</span> Q, q, R, r;</div><div class="line"><a name="l00118"></a><span class="lineno"> 118</span> </div><div class="line"><a name="l00119"></a><span class="lineno"> 119</span>  <span class="keywordflow">switch</span> (keylen)</div><div class="line"><a name="l00120"></a><span class="lineno"> 120</span>  {</div><div class="line"><a name="l00121"></a><span class="lineno"> 121</span>  <span class="keywordflow">case</span> 16:</div><div class="line"><a name="l00122"></a><span class="lineno"> 122</span>  R = r = m_rounds = 12;</div><div class="line"><a name="l00123"></a><span class="lineno"> 123</span>  Q = q = 0;</div><div class="line"><a name="l00124"></a><span class="lineno"> 124</span>  <span class="keywordflow">break</span>;</div><div class="line"><a name="l00125"></a><span class="lineno"> 125</span>  <span class="keywordflow">case</span> 32:</div><div class="line"><a name="l00126"></a><span class="lineno"> 126</span>  R = r = m_rounds = 16;</div><div class="line"><a name="l00127"></a><span class="lineno"> 127</span>  Q = q = 2;</div><div class="line"><a name="l00128"></a><span class="lineno"> 128</span>  <span class="keywordflow">break</span>;</div><div class="line"><a name="l00129"></a><span class="lineno"> 129</span>  <span class="keywordflow">case</span> 24:</div><div class="line"><a name="l00130"></a><span class="lineno"> 130</span>  R = r = m_rounds = 14;</div><div class="line"><a name="l00131"></a><span class="lineno"> 131</span>  Q = q = 1;</div><div class="line"><a name="l00132"></a><span class="lineno"> 132</span>  <span class="keywordflow">break</span>;</div><div class="line"><a name="l00133"></a><span class="lineno"> 133</span>  <span class="keywordflow">default</span>:</div><div class="line"><a name="l00134"></a><span class="lineno"> 134</span>  Q = q = R = r = m_rounds = 0;</div><div class="line"><a name="l00135"></a><span class="lineno"> 135</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>(0);</div><div class="line"><a name="l00136"></a><span class="lineno"> 136</span>  }</div><div class="line"><a name="l00137"></a><span class="lineno"> 137</span> </div><div class="line"><a name="l00138"></a><span class="lineno"> 138</span>  <span class="comment">// w0 has room for 32 bytes. w1-w3 each has room for 16 bytes. t and u are 16 byte temp areas.</span></div><div class="line"><a name="l00139"></a><span class="lineno"> 139</span>  word32 *w0 = m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>(), *w1 = m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>()+8, *w2 = m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>()+12, *w3 = m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>()+16, *t = m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>()+20;</div><div class="line"><a name="l00140"></a><span class="lineno"> 140</span> </div><div class="line"><a name="l00141"></a><span class="lineno"> 141</span>  <a class="code" href="class_get_block.html">GetBlock<word32, BigEndian, false></a>block(key);</div><div class="line"><a name="l00142"></a><span class="lineno"> 142</span>  block(w0[0])(w0[1])(w0[2])(w0[3]);</div><div class="line"><a name="l00143"></a><span class="lineno"> 143</span> </div><div class="line"><a name="l00144"></a><span class="lineno"> 144</span>  t[0]=w0[0]^KRK[q][0]; t[1]=w0[1]^KRK[q][1];</div><div class="line"><a name="l00145"></a><span class="lineno"> 145</span>  t[2]=w0[2]^KRK[q][2]; t[3]=w0[3]^KRK[q][3];</div><div class="line"><a name="l00146"></a><span class="lineno"> 146</span> </div><div class="line"><a name="l00147"></a><span class="lineno"> 147</span>  ARIA_FO;</div><div class="line"><a name="l00148"></a><span class="lineno"> 148</span> </div><div class="line"><a name="l00149"></a><span class="lineno"> 149</span>  <span class="keywordflow">if</span> (keylen == 32)</div><div class="line"><a name="l00150"></a><span class="lineno"> 150</span>  {</div><div class="line"><a name="l00151"></a><span class="lineno"> 151</span>  <a class="code" href="class_get_block.html">GetBlock<word32, BigEndian, false></a>block(mk+16);</div><div class="line"><a name="l00152"></a><span class="lineno"> 152</span>  block(w1[0])(w1[1])(w1[2])(w1[3]);</div><div class="line"><a name="l00153"></a><span class="lineno"> 153</span>  }</div><div class="line"><a name="l00154"></a><span class="lineno"> 154</span>  <span class="keywordflow">else</span> <span class="keywordflow">if</span> (keylen == 24)</div><div class="line"><a name="l00155"></a><span class="lineno"> 155</span>  {</div><div class="line"><a name="l00156"></a><span class="lineno"> 156</span>  <a class="code" href="class_get_block.html">GetBlock<word32, BigEndian, false></a>block(mk+16);</div><div class="line"><a name="l00157"></a><span class="lineno"> 157</span>  block(w1[0])(w1[1]); w1[2] = w1[3] = 0;</div><div class="line"><a name="l00158"></a><span class="lineno"> 158</span>  }</div><div class="line"><a name="l00159"></a><span class="lineno"> 159</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00160"></a><span class="lineno"> 160</span>  {</div><div class="line"><a name="l00161"></a><span class="lineno"> 161</span>  w1[0]=w1[1]=w1[2]=w1[3]=0;</div><div class="line"><a name="l00162"></a><span class="lineno"> 162</span>  }</div><div class="line"><a name="l00163"></a><span class="lineno"> 163</span> </div><div class="line"><a name="l00164"></a><span class="lineno"> 164</span>  w1[0]^=t[0]; w1[1]^=t[1]; w1[2]^=t[2]; w1[3]^=t[3];</div><div class="line"><a name="l00165"></a><span class="lineno"> 165</span>  ::memcpy(t, w1, 16);</div><div class="line"><a name="l00166"></a><span class="lineno"> 166</span> </div><div class="line"><a name="l00167"></a><span class="lineno"> 167</span>  q = (q==2) ? 0 : (q+1);</div><div class="line"><a name="l00168"></a><span class="lineno"> 168</span>  t[0]^=KRK[q][0]; t[1]^=KRK[q][1]; t[2]^=KRK[q][2]; t[3]^=KRK[q][3];</div><div class="line"><a name="l00169"></a><span class="lineno"> 169</span> </div><div class="line"><a name="l00170"></a><span class="lineno"> 170</span>  ARIA_FE;</div><div class="line"><a name="l00171"></a><span class="lineno"> 171</span> </div><div class="line"><a name="l00172"></a><span class="lineno"> 172</span>  t[0]^=w0[0]; t[1]^=w0[1]; t[2]^=w0[2]; t[3]^=w0[3];</div><div class="line"><a name="l00173"></a><span class="lineno"> 173</span>  ::memcpy(w2, t, 16);</div><div class="line"><a name="l00174"></a><span class="lineno"> 174</span> </div><div class="line"><a name="l00175"></a><span class="lineno"> 175</span>  q = (q==2) ? 0 : (q+1);</div><div class="line"><a name="l00176"></a><span class="lineno"> 176</span>  t[0]^=KRK[q][0]; t[1]^=KRK[q][1]; t[2]^=KRK[q][2]; t[3]^=KRK[q][3];</div><div class="line"><a name="l00177"></a><span class="lineno"> 177</span> </div><div class="line"><a name="l00178"></a><span class="lineno"> 178</span>  ARIA_FO;</div><div class="line"><a name="l00179"></a><span class="lineno"> 179</span> </div><div class="line"><a name="l00180"></a><span class="lineno"> 180</span>  w3[0]=t[0]^w1[0]; w3[1]=t[1]^w1[1]; w3[2]=t[2]^w1[2]; w3[3]=t[3]^w1[3];</div><div class="line"><a name="l00181"></a><span class="lineno"> 181</span> </div><div class="line"><a name="l00182"></a><span class="lineno"> 182</span> <span class="preprocessor">#if CRYPTOPP_ARM_NEON_AVAILABLE</span></div><div class="line"><a name="l00183"></a><span class="lineno"> 183</span>  <span class="keywordflow">if</span> (<a class="code" href="cpu_8h.html#a1bc02803e38ce67dd68d23600f59f71f">HasNEON</a>())</div><div class="line"><a name="l00184"></a><span class="lineno"> 184</span>  {</div><div class="line"><a name="l00185"></a><span class="lineno"> 185</span>  ARIA_UncheckedSetKey_Schedule_NEON(rk, m_w, keylen);</div><div class="line"><a name="l00186"></a><span class="lineno"> 186</span>  }</div><div class="line"><a name="l00187"></a><span class="lineno"> 187</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00188"></a><span class="lineno"> 188</span> <span class="preprocessor">#endif // CRYPTOPP_ARM_NEON_AVAILABLE</span></div><div class="line"><a name="l00189"></a><span class="lineno"> 189</span>  {</div><div class="line"><a name="l00190"></a><span class="lineno"> 190</span>  ARIA_GSRK<19>(w0, w1, rk + 0);</div><div class="line"><a name="l00191"></a><span class="lineno"> 191</span>  ARIA_GSRK<19>(w1, w2, rk + 16);</div><div class="line"><a name="l00192"></a><span class="lineno"> 192</span>  ARIA_GSRK<19>(w2, w3, rk + 32);</div><div class="line"><a name="l00193"></a><span class="lineno"> 193</span>  ARIA_GSRK<19>(w3, w0, rk + 48);</div><div class="line"><a name="l00194"></a><span class="lineno"> 194</span>  ARIA_GSRK<31>(w0, w1, rk + 64);</div><div class="line"><a name="l00195"></a><span class="lineno"> 195</span>  ARIA_GSRK<31>(w1, w2, rk + 80);</div><div class="line"><a name="l00196"></a><span class="lineno"> 196</span>  ARIA_GSRK<31>(w2, w3, rk + 96);</div><div class="line"><a name="l00197"></a><span class="lineno"> 197</span>  ARIA_GSRK<31>(w3, w0, rk + 112);</div><div class="line"><a name="l00198"></a><span class="lineno"> 198</span>  ARIA_GSRK<67>(w0, w1, rk + 128);</div><div class="line"><a name="l00199"></a><span class="lineno"> 199</span>  ARIA_GSRK<67>(w1, w2, rk + 144);</div><div class="line"><a name="l00200"></a><span class="lineno"> 200</span>  ARIA_GSRK<67>(w2, w3, rk + 160);</div><div class="line"><a name="l00201"></a><span class="lineno"> 201</span>  ARIA_GSRK<67>(w3, w0, rk + 176);</div><div class="line"><a name="l00202"></a><span class="lineno"> 202</span>  ARIA_GSRK<97>(w0, w1, rk + 192);</div><div class="line"><a name="l00203"></a><span class="lineno"> 203</span> </div><div class="line"><a name="l00204"></a><span class="lineno"> 204</span>  <span class="keywordflow">if</span> (keylen > 16)</div><div class="line"><a name="l00205"></a><span class="lineno"> 205</span>  {</div><div class="line"><a name="l00206"></a><span class="lineno"> 206</span>  ARIA_GSRK<97>(w1, w2, rk + 208);</div><div class="line"><a name="l00207"></a><span class="lineno"> 207</span>  ARIA_GSRK<97>(w2, w3, rk + 224);</div><div class="line"><a name="l00208"></a><span class="lineno"> 208</span> </div><div class="line"><a name="l00209"></a><span class="lineno"> 209</span>  <span class="keywordflow">if</span> (keylen > 24)</div><div class="line"><a name="l00210"></a><span class="lineno"> 210</span>  {</div><div class="line"><a name="l00211"></a><span class="lineno"> 211</span>  ARIA_GSRK< 97>(w3, w0, rk + 240);</div><div class="line"><a name="l00212"></a><span class="lineno"> 212</span>  ARIA_GSRK<109>(w0, w1, rk + 256);</div><div class="line"><a name="l00213"></a><span class="lineno"> 213</span>  }</div><div class="line"><a name="l00214"></a><span class="lineno"> 214</span>  }</div><div class="line"><a name="l00215"></a><span class="lineno"> 215</span>  }</div><div class="line"><a name="l00216"></a><span class="lineno"> 216</span> </div><div class="line"><a name="l00217"></a><span class="lineno"> 217</span>  <span class="comment">// Decryption operation</span></div><div class="line"><a name="l00218"></a><span class="lineno"> 218</span>  <span class="keywordflow">if</span> (!IsForwardTransformation())</div><div class="line"><a name="l00219"></a><span class="lineno"> 219</span>  {</div><div class="line"><a name="l00220"></a><span class="lineno"> 220</span>  word32 *a, *z, *s;</div><div class="line"><a name="l00221"></a><span class="lineno"> 221</span>  rk = m_rk.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>();</div><div class="line"><a name="l00222"></a><span class="lineno"> 222</span>  r = R; q = Q;</div><div class="line"><a name="l00223"></a><span class="lineno"> 223</span> </div><div class="line"><a name="l00224"></a><span class="lineno"> 224</span>  a=UINT32_CAST(rk); s=m_w.<a class="code" href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">data</a>()+24; z=a+r*4;</div><div class="line"><a name="l00225"></a><span class="lineno"> 225</span>  ::memcpy(t, a, 16); ::memcpy(a, z, 16); ::memcpy(z, t, 16);</div><div class="line"><a name="l00226"></a><span class="lineno"> 226</span> </div><div class="line"><a name="l00227"></a><span class="lineno"> 227</span>  a+=4; z-=4;</div><div class="line"><a name="l00228"></a><span class="lineno"> 228</span>  <span class="keywordflow">for</span> (; a<z; a+=4, z-=4)</div><div class="line"><a name="l00229"></a><span class="lineno"> 229</span>  {</div><div class="line"><a name="l00230"></a><span class="lineno"> 230</span>  ARIA_M(a[0],t[0]); ARIA_M(a[1],t[1]); ARIA_M(a[2],t[2]); ARIA_M(a[3],t[3]);</div><div class="line"><a name="l00231"></a><span class="lineno"> 231</span>  ARIA_MM(t[0],t[1],t[2],t[3]); ARIA_P(t[0],t[1],t[2],t[3]); ARIA_MM(t[0],t[1],t[2],t[3]);</div><div class="line"><a name="l00232"></a><span class="lineno"> 232</span>  ::memcpy(s, t, 16);</div><div class="line"><a name="l00233"></a><span class="lineno"> 233</span> </div><div class="line"><a name="l00234"></a><span class="lineno"> 234</span>  ARIA_M(z[0],t[0]); ARIA_M(z[1],t[1]); ARIA_M(z[2],t[2]); ARIA_M(z[3],t[3]);</div><div class="line"><a name="l00235"></a><span class="lineno"> 235</span>  ARIA_MM(t[0],t[1],t[2],t[3]); ARIA_P(t[0],t[1],t[2],t[3]); ARIA_MM(t[0],t[1],t[2],t[3]);</div><div class="line"><a name="l00236"></a><span class="lineno"> 236</span>  ::memcpy(a, t, 16); ::memcpy(z, s, 16);</div><div class="line"><a name="l00237"></a><span class="lineno"> 237</span>  }</div><div class="line"><a name="l00238"></a><span class="lineno"> 238</span> </div><div class="line"><a name="l00239"></a><span class="lineno"> 239</span>  ARIA_M(a[0],t[0]); ARIA_M(a[1],t[1]); ARIA_M(a[2],t[2]); ARIA_M(a[3],t[3]);</div><div class="line"><a name="l00240"></a><span class="lineno"> 240</span>  ARIA_MM(t[0],t[1],t[2],t[3]); ARIA_P(t[0],t[1],t[2],t[3]); ARIA_MM(t[0],t[1],t[2],t[3]);</div><div class="line"><a name="l00241"></a><span class="lineno"> 241</span>  ::memcpy(z, t, 16);</div><div class="line"><a name="l00242"></a><span class="lineno"> 242</span>  }</div><div class="line"><a name="l00243"></a><span class="lineno"> 243</span> </div><div class="line"><a name="l00244"></a><span class="lineno"> 244</span>  <span class="comment">// Silence warnings</span></div><div class="line"><a name="l00245"></a><span class="lineno"> 245</span>  CRYPTOPP_UNUSED(Q); CRYPTOPP_UNUSED(R);</div><div class="line"><a name="l00246"></a><span class="lineno"> 246</span>  CRYPTOPP_UNUSED(q); CRYPTOPP_UNUSED(r);</div><div class="line"><a name="l00247"></a><span class="lineno"> 247</span> }</div><div class="line"><a name="l00248"></a><span class="lineno"> 248</span> </div><div class="line"><a name="l00249"></a><span class="lineno"> 249</span> <span class="keywordtype">void</span> ARIA::Base::ProcessAndXorBlock(<span class="keyword">const</span> byte *inBlock, <span class="keyword">const</span> byte *xorBlock, byte *outBlock)<span class="keyword"> const</span></div><div class="line"><a name="l00250"></a><span class="lineno"> 250</span> <span class="keyword"></span>{</div><div class="line"><a name="l00251"></a><span class="lineno"> 251</span>  <span class="keyword">const</span> byte *rk = <span class="keyword">reinterpret_cast<</span><span class="keyword">const </span>byte*<span class="keyword">></span>(m_rk.data());</div><div class="line"><a name="l00252"></a><span class="lineno"> 252</span>  word32 *t = <span class="keyword">const_cast<</span>word32*<span class="keyword">></span>(m_w.data()+20);</div><div class="line"><a name="l00253"></a><span class="lineno"> 253</span> </div><div class="line"><a name="l00254"></a><span class="lineno"> 254</span>  <span class="comment">// Timing attack countermeasure. See comments in Rijndael for more details.</span></div><div class="line"><a name="l00255"></a><span class="lineno"> 255</span>  <span class="comment">// We used Yun's 32-bit implementation, so we use words rather than bytes.</span></div><div class="line"><a name="l00256"></a><span class="lineno"> 256</span>  <span class="keyword">const</span> <span class="keywordtype">int</span> cacheLineSize = <a class="code" href="cpu_8h.html#a7c008779986afa9c0463b2bc8fe17042">GetCacheLineSize</a>();</div><div class="line"><a name="l00257"></a><span class="lineno"> 257</span>  <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> i;</div><div class="line"><a name="l00258"></a><span class="lineno"> 258</span>  <span class="keyword">volatile</span> word32 _u = 0;</div><div class="line"><a name="l00259"></a><span class="lineno"> 259</span>  word32 u = _u;</div><div class="line"><a name="l00260"></a><span class="lineno"> 260</span> </div><div class="line"><a name="l00261"></a><span class="lineno"> 261</span>  <span class="keywordflow">for</span> (i=0; i<<a class="code" href="misc_8h.html#a2d7e4464ea73d6393ebe78f952253426">COUNTOF</a>(S1); i+=cacheLineSize/(<span class="keyword">sizeof</span>(S1[0])))</div><div class="line"><a name="l00262"></a><span class="lineno"> 262</span>  u |= *(S1+i);</div><div class="line"><a name="l00263"></a><span class="lineno"> 263</span>  t[0] |= u;</div><div class="line"><a name="l00264"></a><span class="lineno"> 264</span> </div><div class="line"><a name="l00265"></a><span class="lineno"> 265</span>  <a class="code" href="class_get_block.html">GetBlock<word32, BigEndian></a>block(inBlock);</div><div class="line"><a name="l00266"></a><span class="lineno"> 266</span>  block(t[0])(t[1])(t[2])(t[3]);</div><div class="line"><a name="l00267"></a><span class="lineno"> 267</span> </div><div class="line"><a name="l00268"></a><span class="lineno"> 268</span>  <span class="keywordflow">if</span> (m_rounds > 12) {</div><div class="line"><a name="l00269"></a><span class="lineno"> 269</span>  ARIA_KXL; rk+= 16; ARIA_FO;</div><div class="line"><a name="l00270"></a><span class="lineno"> 270</span>  ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00271"></a><span class="lineno"> 271</span>  }</div><div class="line"><a name="l00272"></a><span class="lineno"> 272</span> </div><div class="line"><a name="l00273"></a><span class="lineno"> 273</span>  <span class="keywordflow">if</span> (m_rounds > 14) {</div><div class="line"><a name="l00274"></a><span class="lineno"> 274</span>  ARIA_KXL; rk+= 16; ARIA_FO;</div><div class="line"><a name="l00275"></a><span class="lineno"> 275</span>  ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00276"></a><span class="lineno"> 276</span>  }</div><div class="line"><a name="l00277"></a><span class="lineno"> 277</span> </div><div class="line"><a name="l00278"></a><span class="lineno"> 278</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00279"></a><span class="lineno"> 279</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00280"></a><span class="lineno"> 280</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00281"></a><span class="lineno"> 281</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00282"></a><span class="lineno"> 282</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16; ARIA_FE;</div><div class="line"><a name="l00283"></a><span class="lineno"> 283</span>  ARIA_KXL; rk+= 16; ARIA_FO; ARIA_KXL; rk+= 16;</div><div class="line"><a name="l00284"></a><span class="lineno"> 284</span> </div><div class="line"><a name="l00285"></a><span class="lineno"> 285</span> <span class="preprocessor">#if CRYPTOPP_ENABLE_ARIA_SSSE3_INTRINSICS</span></div><div class="line"><a name="l00286"></a><span class="lineno"> 286</span>  <span class="keywordflow">if</span> (<a class="code" href="cpu_8h.html#a3a513219c66d57b18cc0a6e0ff28f20c">HasSSSE3</a>())</div><div class="line"><a name="l00287"></a><span class="lineno"> 287</span>  {</div><div class="line"><a name="l00288"></a><span class="lineno"> 288</span>  ARIA_ProcessAndXorBlock_Xor_SSSE3(xorBlock, outBlock, rk, t);</div><div class="line"><a name="l00289"></a><span class="lineno"> 289</span>  <span class="keywordflow">return</span>;</div><div class="line"><a name="l00290"></a><span class="lineno"> 290</span>  }</div><div class="line"><a name="l00291"></a><span class="lineno"> 291</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00292"></a><span class="lineno"> 292</span> <span class="preprocessor">#endif // CRYPTOPP_ENABLE_ARIA_SSSE3_INTRINSICS</span></div><div class="line"><a name="l00293"></a><span class="lineno"> 293</span> </div><div class="line"><a name="l00294"></a><span class="lineno"> 294</span> <span class="preprocessor">#ifdef CRYPTOPP_LITTLE_ENDIAN</span></div><div class="line"><a name="l00295"></a><span class="lineno"> 295</span>  {</div><div class="line"><a name="l00296"></a><span class="lineno"> 296</span>  outBlock[ 0] = (byte)(X1[ARIA_BRF(t[0],3)] ) ^ rk[ 3];</div><div class="line"><a name="l00297"></a><span class="lineno"> 297</span>  outBlock[ 1] = (byte)(X2[ARIA_BRF(t[0],2)]>>8) ^ rk[ 2];</div><div class="line"><a name="l00298"></a><span class="lineno"> 298</span>  outBlock[ 2] = (byte)(S1[ARIA_BRF(t[0],1)] ) ^ rk[ 1];</div><div class="line"><a name="l00299"></a><span class="lineno"> 299</span>  outBlock[ 3] = (byte)(S2[ARIA_BRF(t[0],0)] ) ^ rk[ 0];</div><div class="line"><a name="l00300"></a><span class="lineno"> 300</span>  outBlock[ 4] = (byte)(X1[ARIA_BRF(t[1],3)] ) ^ rk[ 7];</div><div class="line"><a name="l00301"></a><span class="lineno"> 301</span>  outBlock[ 5] = (byte)(X2[ARIA_BRF(t[1],2)]>>8) ^ rk[ 6];</div><div class="line"><a name="l00302"></a><span class="lineno"> 302</span>  outBlock[ 6] = (byte)(S1[ARIA_BRF(t[1],1)] ) ^ rk[ 5];</div><div class="line"><a name="l00303"></a><span class="lineno"> 303</span>  outBlock[ 7] = (byte)(S2[ARIA_BRF(t[1],0)] ) ^ rk[ 4];</div><div class="line"><a name="l00304"></a><span class="lineno"> 304</span>  outBlock[ 8] = (byte)(X1[ARIA_BRF(t[2],3)] ) ^ rk[11];</div><div class="line"><a name="l00305"></a><span class="lineno"> 305</span>  outBlock[ 9] = (byte)(X2[ARIA_BRF(t[2],2)]>>8) ^ rk[10];</div><div class="line"><a name="l00306"></a><span class="lineno"> 306</span>  outBlock[10] = (byte)(S1[ARIA_BRF(t[2],1)] ) ^ rk[ 9];</div><div class="line"><a name="l00307"></a><span class="lineno"> 307</span>  outBlock[11] = (byte)(S2[ARIA_BRF(t[2],0)] ) ^ rk[ 8];</div><div class="line"><a name="l00308"></a><span class="lineno"> 308</span>  outBlock[12] = (byte)(X1[ARIA_BRF(t[3],3)] ) ^ rk[15];</div><div class="line"><a name="l00309"></a><span class="lineno"> 309</span>  outBlock[13] = (byte)(X2[ARIA_BRF(t[3],2)]>>8) ^ rk[14];</div><div class="line"><a name="l00310"></a><span class="lineno"> 310</span>  outBlock[14] = (byte)(S1[ARIA_BRF(t[3],1)] ) ^ rk[13];</div><div class="line"><a name="l00311"></a><span class="lineno"> 311</span>  outBlock[15] = (byte)(S2[ARIA_BRF(t[3],0)] ) ^ rk[12];</div><div class="line"><a name="l00312"></a><span class="lineno"> 312</span>  }</div><div class="line"><a name="l00313"></a><span class="lineno"> 313</span> <span class="preprocessor">#else</span></div><div class="line"><a name="l00314"></a><span class="lineno"> 314</span>  {</div><div class="line"><a name="l00315"></a><span class="lineno"> 315</span>  outBlock[ 0] = (byte)(X1[ARIA_BRF(t[0],3)] ) ^ rk[ 0];</div><div class="line"><a name="l00316"></a><span class="lineno"> 316</span>  outBlock[ 1] = (byte)(X2[ARIA_BRF(t[0],2)]>>8) ^ rk[ 1];</div><div class="line"><a name="l00317"></a><span class="lineno"> 317</span>  outBlock[ 2] = (byte)(S1[ARIA_BRF(t[0],1)] ) ^ rk[ 2];</div><div class="line"><a name="l00318"></a><span class="lineno"> 318</span>  outBlock[ 3] = (byte)(S2[ARIA_BRF(t[0],0)] ) ^ rk[ 3];</div><div class="line"><a name="l00319"></a><span class="lineno"> 319</span>  outBlock[ 4] = (byte)(X1[ARIA_BRF(t[1],3)] ) ^ rk[ 4];</div><div class="line"><a name="l00320"></a><span class="lineno"> 320</span>  outBlock[ 5] = (byte)(X2[ARIA_BRF(t[1],2)]>>8) ^ rk[ 5];</div><div class="line"><a name="l00321"></a><span class="lineno"> 321</span>  outBlock[ 6] = (byte)(S1[ARIA_BRF(t[1],1)] ) ^ rk[ 6];</div><div class="line"><a name="l00322"></a><span class="lineno"> 322</span>  outBlock[ 7] = (byte)(S2[ARIA_BRF(t[1],0)] ) ^ rk[ 7];</div><div class="line"><a name="l00323"></a><span class="lineno"> 323</span>  outBlock[ 8] = (byte)(X1[ARIA_BRF(t[2],3)] ) ^ rk[ 8];</div><div class="line"><a name="l00324"></a><span class="lineno"> 324</span>  outBlock[ 9] = (byte)(X2[ARIA_BRF(t[2],2)]>>8) ^ rk[ 9];</div><div class="line"><a name="l00325"></a><span class="lineno"> 325</span>  outBlock[10] = (byte)(S1[ARIA_BRF(t[2],1)] ) ^ rk[10];</div><div class="line"><a name="l00326"></a><span class="lineno"> 326</span>  outBlock[11] = (byte)(S2[ARIA_BRF(t[2],0)] ) ^ rk[11];</div><div class="line"><a name="l00327"></a><span class="lineno"> 327</span>  outBlock[12] = (byte)(X1[ARIA_BRF(t[3],3)] ) ^ rk[12];</div><div class="line"><a name="l00328"></a><span class="lineno"> 328</span>  outBlock[13] = (byte)(X2[ARIA_BRF(t[3],2)]>>8) ^ rk[13];</div><div class="line"><a name="l00329"></a><span class="lineno"> 329</span>  outBlock[14] = (byte)(S1[ARIA_BRF(t[3],1)] ) ^ rk[14];</div><div class="line"><a name="l00330"></a><span class="lineno"> 330</span>  outBlock[15] = (byte)(S2[ARIA_BRF(t[3],0)] ) ^ rk[15];</div><div class="line"><a name="l00331"></a><span class="lineno"> 331</span>  }</div><div class="line"><a name="l00332"></a><span class="lineno"> 332</span> <span class="preprocessor">#endif // CRYPTOPP_LITTLE_ENDIAN</span></div><div class="line"><a name="l00333"></a><span class="lineno"> 333</span> </div><div class="line"><a name="l00334"></a><span class="lineno"> 334</span> <span class="preprocessor">#if CRYPTOPP_ARM_NEON_AVAILABLE</span></div><div class="line"><a name="l00335"></a><span class="lineno"> 335</span>  <span class="keywordflow">if</span> (<a class="code" href="cpu_8h.html#a1bc02803e38ce67dd68d23600f59f71f">HasNEON</a>())</div><div class="line"><a name="l00336"></a><span class="lineno"> 336</span>  {</div><div class="line"><a name="l00337"></a><span class="lineno"> 337</span>  <span class="keywordflow">if</span> (xorBlock != NULLPTR)</div><div class="line"><a name="l00338"></a><span class="lineno"> 338</span>  ARIA_ProcessAndXorBlock_Xor_NEON(xorBlock, outBlock);</div><div class="line"><a name="l00339"></a><span class="lineno"> 339</span>  }</div><div class="line"><a name="l00340"></a><span class="lineno"> 340</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00341"></a><span class="lineno"> 341</span> <span class="preprocessor">#endif // CRYPTOPP_ARM_NEON_AVAILABLE</span></div><div class="line"><a name="l00342"></a><span class="lineno"> 342</span>  {</div><div class="line"><a name="l00343"></a><span class="lineno"> 343</span>  <span class="keywordflow">if</span> (xorBlock != NULLPTR)</div><div class="line"><a name="l00344"></a><span class="lineno"> 344</span>  <span class="keywordflow">for</span> (<span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> n=0; n<<a class="code" href="class_fixed_block_size.html#a2b051f369471fbb83d9b61a90b06e99f">ARIA::BLOCKSIZE</a>; ++n)</div><div class="line"><a name="l00345"></a><span class="lineno"> 345</span>  outBlock[n] ^= xorBlock[n];</div><div class="line"><a name="l00346"></a><span class="lineno"> 346</span>  }</div><div class="line"><a name="l00347"></a><span class="lineno"> 347</span> }</div><div class="line"><a name="l00348"></a><span class="lineno"> 348</span> </div><div class="line"><a name="l00349"></a><span class="lineno"> 349</span> NAMESPACE_END</div><div class="ttc" id="misc_8h_html"><div class="ttname"><a href="misc_8h.html">misc.h</a></div><div class="ttdoc">Utility functions for the Crypto++ library. </div></div> <div class="ttc" id="cpu_8h_html_a3a513219c66d57b18cc0a6e0ff28f20c"><div class="ttname"><a href="cpu_8h.html#a3a513219c66d57b18cc0a6e0ff28f20c">HasSSSE3</a></div><div class="ttdeci">bool HasSSSE3()</div><div class="ttdoc">Determines SSSE3 availability. </div><div class="ttdef"><b>Definition:</b> <a href="cpu_8h_source.html#l00129">cpu.h:129</a></div></div> <div class="ttc" id="config_8h_html"><div class="ttname"><a href="config_8h.html">config.h</a></div><div class="ttdoc">Library configuration file. </div></div> <div class="ttc" id="cpu_8h_html_a7c008779986afa9c0463b2bc8fe17042"><div class="ttname"><a href="cpu_8h.html#a7c008779986afa9c0463b2bc8fe17042">GetCacheLineSize</a></div><div class="ttdeci">int GetCacheLineSize()</div><div class="ttdoc">Provides the cache line size. </div><div class="ttdef"><b>Definition:</b> <a href="cpu_8h_source.html#l00298">cpu.h:298</a></div></div> <div class="ttc" id="class_sec_block_html_a90d46e577c951d81a2d25a4742a3e979"><div class="ttname"><a href="class_sec_block.html#a90d46e577c951d81a2d25a4742a3e979">SecBlock::New</a></div><div class="ttdeci">void New(size_type newSize)</div><div class="ttdoc">Change size without preserving contents. </div><div class="ttdef"><b>Definition:</b> <a href="secblock_8h_source.html#l00729">secblock.h:729</a></div></div> <div class="ttc" id="class_sec_block_html_a42ad7c28810297ca50b2411284876845"><div class="ttname"><a href="class_sec_block.html#a42ad7c28810297ca50b2411284876845">SecBlock::data</a></div><div class="ttdeci">A::pointer data()</div><div class="ttdoc">Provides a pointer to the first element in the memory block. </div><div class="ttdef"><b>Definition:</b> <a href="secblock_8h_source.html#l00553">secblock.h:553</a></div></div> <div class="ttc" id="pch_8h_html"><div class="ttname"><a href="pch_8h.html">pch.h</a></div><div class="ttdoc">Precompiled header file. </div></div> <div class="ttc" id="misc_8h_html_a2d7e4464ea73d6393ebe78f952253426"><div class="ttname"><a href="misc_8h.html#a2d7e4464ea73d6393ebe78f952253426">COUNTOF</a></div><div class="ttdeci">#define COUNTOF(arr)</div><div class="ttdoc">Counts elements in an array. </div><div class="ttdef"><b>Definition:</b> <a href="misc_8h_source.html#l00181">misc.h:181</a></div></div> <div class="ttc" id="aria_8h_html"><div class="ttname"><a href="aria_8h.html">aria.h</a></div><div class="ttdoc">Classes for the ARIA block cipher. </div></div> <div class="ttc" id="trap_8h_html_adf3b392588bc94cbeae9f415a78c7b95"><div class="ttname"><a href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a></div><div class="ttdeci">#define CRYPTOPP_ASSERT(exp)</div><div class="ttdoc">Debugging and diagnostic assertion. </div><div class="ttdef"><b>Definition:</b> <a href="trap_8h_source.html#l00060">trap.h:60</a></div></div> <div class="ttc" id="cpu_8h_html"><div class="ttname"><a href="cpu_8h.html">cpu.h</a></div><div class="ttdoc">Functions for CPU features and intrinsics. </div></div> <div class="ttc" id="class_get_block_html"><div class="ttname"><a href="class_get_block.html">GetBlock</a></div><div class="ttdoc">Access a block of memory. </div><div class="ttdef"><b>Definition:</b> <a href="misc_8h_source.html#l02324">misc.h:2324</a></div></div> <div class="ttc" id="namespace_crypto_p_p_html"><div class="ttname"><a href="namespace_crypto_p_p.html">CryptoPP</a></div><div class="ttdoc">Crypto++ library namespace. </div></div> <div class="ttc" id="class_fixed_block_size_html_a2b051f369471fbb83d9b61a90b06e99f"><div class="ttname"><a href="class_fixed_block_size.html#a2b051f369471fbb83d9b61a90b06e99f">FixedBlockSize< 16 >::BLOCKSIZE</a></div><div class="ttdeci">static const int BLOCKSIZE</div><div class="ttdoc">The block size of the algorithm provided as a constant. </div><div class="ttdef"><b>Definition:</b> <a href="seckey_8h_source.html#l00044">seckey.h:44</a></div></div> <div class="ttc" id="cpu_8h_html_a1bc02803e38ce67dd68d23600f59f71f"><div class="ttname"><a href="cpu_8h.html#a1bc02803e38ce67dd68d23600f59f71f">HasNEON</a></div><div class="ttdeci">bool HasNEON()</div><div class="ttdoc">Determine if an ARM processor has Advanced SIMD available. </div><div class="ttdef"><b>Definition:</b> <a href="cpu_8h_source.html#l00329">cpu.h:329</a></div></div> <div class="ttc" id="class_name_value_pairs_html"><div class="ttname"><a href="class_name_value_pairs.html">NameValuePairs</a></div><div class="ttdoc">Interface for retrieving values given their names. </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8h_source.html#l00290">cryptlib.h:290</a></div></div> </div><!-- fragment --></div><!-- contents --> <!-- start footer part --> <hr class="footer"/><address class="footer"><small> Generated on Sun Sep 16 2018 07:57:45 for Crypto++ by  <a href="http://www.doxygen.org/index.html"> <img class="footer" src="doxygen.png" alt="doxygen"/> </a> 1.8.14 </small></address> </body> </html>