<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/> <meta http-equiv="X-UA-Compatible" content="IE=9"/> <meta name="generator" content="Doxygen 1.8.14"/> <meta name="viewport" content="width=device-width, initial-scale=1"/> <title>Crypto++: poly1305.cpp Source File</title> <link href="tabs.css" rel="stylesheet" type="text/css"/> <script type="text/javascript" src="jquery.js"></script> <script type="text/javascript" src="dynsections.js"></script> <link href="doxygen.css" rel="stylesheet" type="text/css" /> </head> <body> <div id="top"><!-- do not remove this div, it is closed by doxygen! --> <div id="titlearea"> <table cellspacing="0" cellpadding="0"> <tbody> <tr style="height: 56px;"> <td id="projectalign" style="padding-left: 0.5em;"> <div id="projectname">Crypto++  <span id="projectnumber">7.0</span> </div> <div id="projectbrief">Free C++ class library of cryptographic schemes</div> </td> </tr> </tbody> </table> </div> <!-- end header part --> <!-- Generated by Doxygen 1.8.14 --> <script type="text/javascript" src="menudata.js"></script> <script type="text/javascript" src="menu.js"></script> <script type="text/javascript"> /* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&dn=gpl-2.0.txt GPL-v2 */ $(function() { initMenu('',false,false,'search.php','Search'); }); /* @license-end */</script> <div id="main-nav"></div> </div><!-- top --> <div class="header"> <div class="headertitle"> <div class="title">poly1305.cpp</div> </div> </div><!--header--> <div class="contents"> <div class="fragment"><div class="line"><a name="l00001"></a><span class="lineno"> 1</span> <span class="comment">// poly1305.cpp - written and placed in the public domain by Jeffrey Walton and Jean-Pierre Munch</span></div><div class="line"><a name="l00002"></a><span class="lineno"> 2</span> <span class="comment">// Based on Andy Polyakov's Base-2^26 scalar multiplication implementation for OpenSSL.</span></div><div class="line"><a name="l00003"></a><span class="lineno"> 3</span> </div><div class="line"><a name="l00004"></a><span class="lineno"> 4</span> <span class="preprocessor">#include "<a class="code" href="pch_8h.html">pch.h</a>"</span></div><div class="line"><a name="l00005"></a><span class="lineno"> 5</span> <span class="preprocessor">#include "<a class="code" href="cryptlib_8h.html">cryptlib.h</a>"</span></div><div class="line"><a name="l00006"></a><span class="lineno"> 6</span> <span class="preprocessor">#include "<a class="code" href="aes_8h.html">aes.h</a>"</span></div><div class="line"><a name="l00007"></a><span class="lineno"> 7</span> <span class="preprocessor">#include "<a class="code" href="cpu_8h.html">cpu.h</a>"</span></div><div class="line"><a name="l00008"></a><span class="lineno"> 8</span> <span class="preprocessor">#include "<a class="code" href="poly1305_8h.html">poly1305.h</a>"</span></div><div class="line"><a name="l00009"></a><span class="lineno"> 9</span> </div><div class="line"><a name="l00010"></a><span class="lineno"> 10</span> NAMESPACE_BEGIN(<a class="code" href="namespace_crypto_p_p.html">CryptoPP</a>)</div><div class="line"><a name="l00011"></a><span class="lineno"> 11</span> </div><div class="line"><a name="l00012"></a><span class="lineno"> 12</span> <span class="preprocessor">#define CONSTANT_TIME_CARRY(a,b) ((a ^ ((a ^ b) | ((a - b) ^ b))) >> (sizeof(a) * 8 - 1))</span></div><div class="line"><a name="l00013"></a><span class="lineno"> 13</span> </div><div class="line"><a name="l00014"></a><span class="lineno"> 14</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00015"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#a823d58a924c6c0caa9c731092c3c93f0"> 15</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#a823d58a924c6c0caa9c731092c3c93f0">Poly1305_Base<T>::UncheckedSetKey</a>(<span class="keyword">const</span> byte *key, <span class="keywordtype">unsigned</span> <span class="keywordtype">int</span> length, <span class="keyword">const</span> <a class="code" href="class_name_value_pairs.html">NameValuePairs</a> &params)</div><div class="line"><a name="l00016"></a><span class="lineno"> 16</span> {</div><div class="line"><a name="l00017"></a><span class="lineno"> 17</span>  <span class="keywordflow">if</span> (key && length)</div><div class="line"><a name="l00018"></a><span class="lineno"> 18</span>  {</div><div class="line"><a name="l00019"></a><span class="lineno"> 19</span>  <span class="comment">// key is {k,r} pair, r is 16 bytes</span></div><div class="line"><a name="l00020"></a><span class="lineno"> 20</span>  length = <a class="code" href="misc_8h.html#a30712a90999ad9d9152975f2e92d46b8">SaturatingSubtract</a>(length, (<span class="keywordtype">unsigned</span>)BLOCKSIZE);</div><div class="line"><a name="l00021"></a><span class="lineno"> 21</span>  m_cipher.SetKey(key, length);</div><div class="line"><a name="l00022"></a><span class="lineno"> 22</span>  key += length;</div><div class="line"><a name="l00023"></a><span class="lineno"> 23</span> </div><div class="line"><a name="l00024"></a><span class="lineno"> 24</span>  <span class="comment">// Rbar is clamped and little endian</span></div><div class="line"><a name="l00025"></a><span class="lineno"> 25</span>  m_r[0] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, key + 0) & 0x0fffffff;</div><div class="line"><a name="l00026"></a><span class="lineno"> 26</span>  m_r[1] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, key + 4) & 0x0ffffffc;</div><div class="line"><a name="l00027"></a><span class="lineno"> 27</span>  m_r[2] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, key + 8) & 0x0ffffffc;</div><div class="line"><a name="l00028"></a><span class="lineno"> 28</span>  m_r[3] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, key + 12) & 0x0ffffffc;</div><div class="line"><a name="l00029"></a><span class="lineno"> 29</span> </div><div class="line"><a name="l00030"></a><span class="lineno"> 30</span>  m_used = <span class="keyword">false</span>;</div><div class="line"><a name="l00031"></a><span class="lineno"> 31</span>  }</div><div class="line"><a name="l00032"></a><span class="lineno"> 32</span> </div><div class="line"><a name="l00033"></a><span class="lineno"> 33</span>  <a class="code" href="class_const_byte_array_parameter.html">ConstByteArrayParameter</a> t;</div><div class="line"><a name="l00034"></a><span class="lineno"> 34</span>  <span class="keywordflow">if</span> (params.<a class="code" href="class_name_value_pairs.html#a5357c3a09602e44671d1e42cb9a9408d">GetValue</a>(<a class="code" href="namespace_name.html#a9b6839240a8bdf1f5bcbebf1866f4733">Name::IV</a>(), t) && t.<a class="code" href="class_const_byte_array_parameter.html#ab89acc8dae383f2663dd3864651e8ef1">begin</a>() && t.<a class="code" href="class_const_byte_array_parameter.html#ab83dbf7e4d80c0304917a3cc1d3cf144">size</a>())</div><div class="line"><a name="l00035"></a><span class="lineno"> 35</span>  {</div><div class="line"><a name="l00036"></a><span class="lineno"> 36</span>  <span class="comment">// Nonce key is a class member to avoid the zeroizer on a temporary</span></div><div class="line"><a name="l00037"></a><span class="lineno"> 37</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>(t.<a class="code" href="class_const_byte_array_parameter.html#ab83dbf7e4d80c0304917a3cc1d3cf144">size</a>() == m_nk.size());</div><div class="line"><a name="l00038"></a><span class="lineno"> 38</span>  std::memcpy(m_nk.begin(), t.<a class="code" href="class_const_byte_array_parameter.html#ab89acc8dae383f2663dd3864651e8ef1">begin</a>(), m_nk.size());</div><div class="line"><a name="l00039"></a><span class="lineno"> 39</span>  m_cipher.ProcessBlock(m_nk.begin());</div><div class="line"><a name="l00040"></a><span class="lineno"> 40</span> </div><div class="line"><a name="l00041"></a><span class="lineno"> 41</span>  m_n[0] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m_nk + 0);</div><div class="line"><a name="l00042"></a><span class="lineno"> 42</span>  m_n[1] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m_nk + 4);</div><div class="line"><a name="l00043"></a><span class="lineno"> 43</span>  m_n[2] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m_nk + 8);</div><div class="line"><a name="l00044"></a><span class="lineno"> 44</span>  m_n[3] = GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m_nk + 12);</div><div class="line"><a name="l00045"></a><span class="lineno"> 45</span> </div><div class="line"><a name="l00046"></a><span class="lineno"> 46</span>  m_used = <span class="keyword">false</span>;</div><div class="line"><a name="l00047"></a><span class="lineno"> 47</span>  }</div><div class="line"><a name="l00048"></a><span class="lineno"> 48</span> </div><div class="line"><a name="l00049"></a><span class="lineno"> 49</span>  Restart();</div><div class="line"><a name="l00050"></a><span class="lineno"> 50</span> }</div><div class="line"><a name="l00051"></a><span class="lineno"> 51</span> </div><div class="line"><a name="l00052"></a><span class="lineno"> 52</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00053"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#a13640c0e9edc4bd6783ef9c7abd694ea"> 53</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#a13640c0e9edc4bd6783ef9c7abd694ea">Poly1305_Base<T>::Update</a>(<span class="keyword">const</span> byte *input, <span class="keywordtype">size_t</span> length)</div><div class="line"><a name="l00054"></a><span class="lineno"> 54</span> {</div><div class="line"><a name="l00055"></a><span class="lineno"> 55</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>((input && length) || !length);</div><div class="line"><a name="l00056"></a><span class="lineno"> 56</span>  <span class="keywordflow">if</span> (!length) <span class="keywordflow">return</span>;</div><div class="line"><a name="l00057"></a><span class="lineno"> 57</span> </div><div class="line"><a name="l00058"></a><span class="lineno"> 58</span>  <span class="keywordtype">size_t</span> rem, num = m_idx;</div><div class="line"><a name="l00059"></a><span class="lineno"> 59</span>  <span class="keywordflow">if</span> (num)</div><div class="line"><a name="l00060"></a><span class="lineno"> 60</span>  {</div><div class="line"><a name="l00061"></a><span class="lineno"> 61</span>  rem = BLOCKSIZE - num;</div><div class="line"><a name="l00062"></a><span class="lineno"> 62</span>  <span class="keywordflow">if</span> (length >= rem)</div><div class="line"><a name="l00063"></a><span class="lineno"> 63</span>  {</div><div class="line"><a name="l00064"></a><span class="lineno"> 64</span>  <span class="comment">// Process</span></div><div class="line"><a name="l00065"></a><span class="lineno"> 65</span>  <a class="code" href="misc_8h.html#a5f6fcbaaf6f72fe46a6d911b033dfea0">memcpy_s</a>(m_acc + num, BLOCKSIZE - num, input, rem);</div><div class="line"><a name="l00066"></a><span class="lineno"> 66</span>  HashBlocks(m_acc, BLOCKSIZE, 1);</div><div class="line"><a name="l00067"></a><span class="lineno"> 67</span>  input += rem;</div><div class="line"><a name="l00068"></a><span class="lineno"> 68</span>  length -= rem;</div><div class="line"><a name="l00069"></a><span class="lineno"> 69</span>  }</div><div class="line"><a name="l00070"></a><span class="lineno"> 70</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00071"></a><span class="lineno"> 71</span>  {</div><div class="line"><a name="l00072"></a><span class="lineno"> 72</span>  <span class="comment">// Accumulate</span></div><div class="line"><a name="l00073"></a><span class="lineno"> 73</span>  <a class="code" href="misc_8h.html#a5f6fcbaaf6f72fe46a6d911b033dfea0">memcpy_s</a>(m_acc + num, BLOCKSIZE - num, input, length);</div><div class="line"><a name="l00074"></a><span class="lineno"> 74</span>  m_idx = num + length;</div><div class="line"><a name="l00075"></a><span class="lineno"> 75</span>  <span class="keywordflow">return</span>;</div><div class="line"><a name="l00076"></a><span class="lineno"> 76</span>  }</div><div class="line"><a name="l00077"></a><span class="lineno"> 77</span>  }</div><div class="line"><a name="l00078"></a><span class="lineno"> 78</span> </div><div class="line"><a name="l00079"></a><span class="lineno"> 79</span>  rem = length % BLOCKSIZE;</div><div class="line"><a name="l00080"></a><span class="lineno"> 80</span>  length -= rem;</div><div class="line"><a name="l00081"></a><span class="lineno"> 81</span> </div><div class="line"><a name="l00082"></a><span class="lineno"> 82</span>  <span class="keywordflow">if</span> (length >= BLOCKSIZE) {</div><div class="line"><a name="l00083"></a><span class="lineno"> 83</span>  HashBlocks(input, length, 1);</div><div class="line"><a name="l00084"></a><span class="lineno"> 84</span>  input += length;</div><div class="line"><a name="l00085"></a><span class="lineno"> 85</span>  }</div><div class="line"><a name="l00086"></a><span class="lineno"> 86</span> </div><div class="line"><a name="l00087"></a><span class="lineno"> 87</span>  <span class="keywordflow">if</span> (rem)</div><div class="line"><a name="l00088"></a><span class="lineno"> 88</span>  memcpy(m_acc, input, rem);</div><div class="line"><a name="l00089"></a><span class="lineno"> 89</span> </div><div class="line"><a name="l00090"></a><span class="lineno"> 90</span>  m_idx = rem;</div><div class="line"><a name="l00091"></a><span class="lineno"> 91</span> }</div><div class="line"><a name="l00092"></a><span class="lineno"> 92</span> </div><div class="line"><a name="l00093"></a><span class="lineno"> 93</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00094"></a><span class="lineno"> 94</span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html">Poly1305_Base<T>::HashBlocks</a>(<span class="keyword">const</span> byte *input, <span class="keywordtype">size_t</span> length, word32 padbit)</div><div class="line"><a name="l00095"></a><span class="lineno"> 95</span> {</div><div class="line"><a name="l00096"></a><span class="lineno"> 96</span>  word32 r0, r1, r2, r3;</div><div class="line"><a name="l00097"></a><span class="lineno"> 97</span>  word32 s1, s2, s3;</div><div class="line"><a name="l00098"></a><span class="lineno"> 98</span>  word32 h0, h1, h2, h3, h4, c;</div><div class="line"><a name="l00099"></a><span class="lineno"> 99</span>  word64 d0, d1, d2, d3;</div><div class="line"><a name="l00100"></a><span class="lineno"> 100</span> </div><div class="line"><a name="l00101"></a><span class="lineno"> 101</span>  r0 = m_r[0]; r1 = m_r[1];</div><div class="line"><a name="l00102"></a><span class="lineno"> 102</span>  r2 = m_r[2]; r3 = m_r[3];</div><div class="line"><a name="l00103"></a><span class="lineno"> 103</span> </div><div class="line"><a name="l00104"></a><span class="lineno"> 104</span>  s1 = r1 + (r1 >> 2);</div><div class="line"><a name="l00105"></a><span class="lineno"> 105</span>  s2 = r2 + (r2 >> 2);</div><div class="line"><a name="l00106"></a><span class="lineno"> 106</span>  s3 = r3 + (r3 >> 2);</div><div class="line"><a name="l00107"></a><span class="lineno"> 107</span> </div><div class="line"><a name="l00108"></a><span class="lineno"> 108</span>  h0 = m_h[0]; h1 = m_h[1]; h2 = m_h[2];</div><div class="line"><a name="l00109"></a><span class="lineno"> 109</span>  h3 = m_h[3]; h4 = m_h[4];</div><div class="line"><a name="l00110"></a><span class="lineno"> 110</span> </div><div class="line"><a name="l00111"></a><span class="lineno"> 111</span>  <span class="keywordflow">while</span> (length >= BLOCKSIZE)</div><div class="line"><a name="l00112"></a><span class="lineno"> 112</span>  {</div><div class="line"><a name="l00113"></a><span class="lineno"> 113</span>  <span class="comment">// h += m[i]</span></div><div class="line"><a name="l00114"></a><span class="lineno"> 114</span>  h0 = (word32)(d0 = (word64)h0 + GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, input + 0));</div><div class="line"><a name="l00115"></a><span class="lineno"> 115</span>  h1 = (word32)(d1 = (word64)h1 + (d0 >> 32) + GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, input + 4));</div><div class="line"><a name="l00116"></a><span class="lineno"> 116</span>  h2 = (word32)(d2 = (word64)h2 + (d1 >> 32) + GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, input + 8));</div><div class="line"><a name="l00117"></a><span class="lineno"> 117</span>  h3 = (word32)(d3 = (word64)h3 + (d2 >> 32) + GetWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, input + 12));</div><div class="line"><a name="l00118"></a><span class="lineno"> 118</span>  h4 += (word32)(d3 >> 32) + padbit;</div><div class="line"><a name="l00119"></a><span class="lineno"> 119</span> </div><div class="line"><a name="l00120"></a><span class="lineno"> 120</span>  <span class="comment">// h *= r "%" p</span></div><div class="line"><a name="l00121"></a><span class="lineno"> 121</span>  d0 = ((word64)h0 * r0) +</div><div class="line"><a name="l00122"></a><span class="lineno"> 122</span>  ((word64)h1 * s3) +</div><div class="line"><a name="l00123"></a><span class="lineno"> 123</span>  ((word64)h2 * s2) +</div><div class="line"><a name="l00124"></a><span class="lineno"> 124</span>  ((word64)h3 * s1);</div><div class="line"><a name="l00125"></a><span class="lineno"> 125</span>  d1 = ((word64)h0 * r1) +</div><div class="line"><a name="l00126"></a><span class="lineno"> 126</span>  ((word64)h1 * r0) +</div><div class="line"><a name="l00127"></a><span class="lineno"> 127</span>  ((word64)h2 * s3) +</div><div class="line"><a name="l00128"></a><span class="lineno"> 128</span>  ((word64)h3 * s2) +</div><div class="line"><a name="l00129"></a><span class="lineno"> 129</span>  (h4 * s1);</div><div class="line"><a name="l00130"></a><span class="lineno"> 130</span>  d2 = ((word64)h0 * r2) +</div><div class="line"><a name="l00131"></a><span class="lineno"> 131</span>  ((word64)h1 * r1) +</div><div class="line"><a name="l00132"></a><span class="lineno"> 132</span>  ((word64)h2 * r0) +</div><div class="line"><a name="l00133"></a><span class="lineno"> 133</span>  ((word64)h3 * s3) +</div><div class="line"><a name="l00134"></a><span class="lineno"> 134</span>  (h4 * s2);</div><div class="line"><a name="l00135"></a><span class="lineno"> 135</span>  d3 = ((word64)h0 * r3) +</div><div class="line"><a name="l00136"></a><span class="lineno"> 136</span>  ((word64)h1 * r2) +</div><div class="line"><a name="l00137"></a><span class="lineno"> 137</span>  ((word64)h2 * r1) +</div><div class="line"><a name="l00138"></a><span class="lineno"> 138</span>  ((word64)h3 * r0) +</div><div class="line"><a name="l00139"></a><span class="lineno"> 139</span>  (h4 * s3);</div><div class="line"><a name="l00140"></a><span class="lineno"> 140</span>  h4 = (h4 * r0);</div><div class="line"><a name="l00141"></a><span class="lineno"> 141</span> </div><div class="line"><a name="l00142"></a><span class="lineno"> 142</span>  <span class="comment">// a) h4:h0 = h4<<128 + d3<<96 + d2<<64 + d1<<32 + d0</span></div><div class="line"><a name="l00143"></a><span class="lineno"> 143</span>  h0 = (word32)d0;</div><div class="line"><a name="l00144"></a><span class="lineno"> 144</span>  h1 = (word32)(d1 += d0 >> 32);</div><div class="line"><a name="l00145"></a><span class="lineno"> 145</span>  h2 = (word32)(d2 += d1 >> 32);</div><div class="line"><a name="l00146"></a><span class="lineno"> 146</span>  h3 = (word32)(d3 += d2 >> 32);</div><div class="line"><a name="l00147"></a><span class="lineno"> 147</span>  h4 += (word32)(d3 >> 32);</div><div class="line"><a name="l00148"></a><span class="lineno"> 148</span> </div><div class="line"><a name="l00149"></a><span class="lineno"> 149</span>  <span class="comment">// b) (h4:h0 += (h4:h0>>130) * 5) %= 2^130</span></div><div class="line"><a name="l00150"></a><span class="lineno"> 150</span>  c = (h4 >> 2) + (h4 & ~3U);</div><div class="line"><a name="l00151"></a><span class="lineno"> 151</span>  h4 &= 3;</div><div class="line"><a name="l00152"></a><span class="lineno"> 152</span>  h0 += c;</div><div class="line"><a name="l00153"></a><span class="lineno"> 153</span>  h1 += (c = CONSTANT_TIME_CARRY(h0,c));</div><div class="line"><a name="l00154"></a><span class="lineno"> 154</span>  h2 += (c = CONSTANT_TIME_CARRY(h1,c));</div><div class="line"><a name="l00155"></a><span class="lineno"> 155</span>  h3 += (c = CONSTANT_TIME_CARRY(h2,c));</div><div class="line"><a name="l00156"></a><span class="lineno"> 156</span>  h4 += CONSTANT_TIME_CARRY(h3,c);</div><div class="line"><a name="l00157"></a><span class="lineno"> 157</span> </div><div class="line"><a name="l00158"></a><span class="lineno"> 158</span>  input += BLOCKSIZE;</div><div class="line"><a name="l00159"></a><span class="lineno"> 159</span>  length -= BLOCKSIZE;</div><div class="line"><a name="l00160"></a><span class="lineno"> 160</span>  }</div><div class="line"><a name="l00161"></a><span class="lineno"> 161</span> </div><div class="line"><a name="l00162"></a><span class="lineno"> 162</span>  m_h[0] = h0; m_h[1] = h1; m_h[2] = h2;</div><div class="line"><a name="l00163"></a><span class="lineno"> 163</span>  m_h[3] = h3; m_h[4] = h4;</div><div class="line"><a name="l00164"></a><span class="lineno"> 164</span> }</div><div class="line"><a name="l00165"></a><span class="lineno"> 165</span> </div><div class="line"><a name="l00166"></a><span class="lineno"> 166</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00167"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#a350554631a23d196217b483843a4e6b0"> 167</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#a350554631a23d196217b483843a4e6b0">Poly1305_Base<T>::TruncatedFinal</a>(byte *mac, <span class="keywordtype">size_t</span> size)</div><div class="line"><a name="l00168"></a><span class="lineno"> 168</span> {</div><div class="line"><a name="l00169"></a><span class="lineno"> 169</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>(mac); <span class="comment">// Pointer is valid</span></div><div class="line"><a name="l00170"></a><span class="lineno"> 170</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>(!m_used); <span class="comment">// Nonce is fresh</span></div><div class="line"><a name="l00171"></a><span class="lineno"> 171</span> </div><div class="line"><a name="l00172"></a><span class="lineno"> 172</span>  ThrowIfInvalidTruncatedSize(size);</div><div class="line"><a name="l00173"></a><span class="lineno"> 173</span> </div><div class="line"><a name="l00174"></a><span class="lineno"> 174</span>  <span class="keywordtype">size_t</span> num = m_idx;</div><div class="line"><a name="l00175"></a><span class="lineno"> 175</span>  <span class="keywordflow">if</span> (num)</div><div class="line"><a name="l00176"></a><span class="lineno"> 176</span>  {</div><div class="line"><a name="l00177"></a><span class="lineno"> 177</span>  m_acc[num++] = 1; <span class="comment">/* pad bit */</span></div><div class="line"><a name="l00178"></a><span class="lineno"> 178</span>  <span class="keywordflow">while</span> (num < BLOCKSIZE)</div><div class="line"><a name="l00179"></a><span class="lineno"> 179</span>  m_acc[num++] = 0;</div><div class="line"><a name="l00180"></a><span class="lineno"> 180</span>  HashBlocks(m_acc, BLOCKSIZE, 0);</div><div class="line"><a name="l00181"></a><span class="lineno"> 181</span>  }</div><div class="line"><a name="l00182"></a><span class="lineno"> 182</span> </div><div class="line"><a name="l00183"></a><span class="lineno"> 183</span>  HashFinal(mac, size);</div><div class="line"><a name="l00184"></a><span class="lineno"> 184</span> </div><div class="line"><a name="l00185"></a><span class="lineno"> 185</span>  <span class="comment">// Restart</span></div><div class="line"><a name="l00186"></a><span class="lineno"> 186</span>  m_used = <span class="keyword">true</span>;</div><div class="line"><a name="l00187"></a><span class="lineno"> 187</span>  Restart();</div><div class="line"><a name="l00188"></a><span class="lineno"> 188</span> }</div><div class="line"><a name="l00189"></a><span class="lineno"> 189</span> </div><div class="line"><a name="l00190"></a><span class="lineno"> 190</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00191"></a><span class="lineno"> 191</span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html">Poly1305_Base<T>::HashFinal</a>(byte *mac, <span class="keywordtype">size_t</span> size)</div><div class="line"><a name="l00192"></a><span class="lineno"> 192</span> {</div><div class="line"><a name="l00193"></a><span class="lineno"> 193</span>  word32 h0, h1, h2, h3, h4;</div><div class="line"><a name="l00194"></a><span class="lineno"> 194</span>  word32 g0, g1, g2, g3, g4;</div><div class="line"><a name="l00195"></a><span class="lineno"> 195</span>  word32 mask;</div><div class="line"><a name="l00196"></a><span class="lineno"> 196</span>  word64 t;</div><div class="line"><a name="l00197"></a><span class="lineno"> 197</span> </div><div class="line"><a name="l00198"></a><span class="lineno"> 198</span>  h0 = m_h[0];</div><div class="line"><a name="l00199"></a><span class="lineno"> 199</span>  h1 = m_h[1];</div><div class="line"><a name="l00200"></a><span class="lineno"> 200</span>  h2 = m_h[2];</div><div class="line"><a name="l00201"></a><span class="lineno"> 201</span>  h3 = m_h[3];</div><div class="line"><a name="l00202"></a><span class="lineno"> 202</span>  h4 = m_h[4];</div><div class="line"><a name="l00203"></a><span class="lineno"> 203</span> </div><div class="line"><a name="l00204"></a><span class="lineno"> 204</span>  <span class="comment">// compare to modulus by computing h + -p</span></div><div class="line"><a name="l00205"></a><span class="lineno"> 205</span>  g0 = (word32)(t = (word64)h0 + 5);</div><div class="line"><a name="l00206"></a><span class="lineno"> 206</span>  g1 = (word32)(t = (word64)h1 + (t >> 32));</div><div class="line"><a name="l00207"></a><span class="lineno"> 207</span>  g2 = (word32)(t = (word64)h2 + (t >> 32));</div><div class="line"><a name="l00208"></a><span class="lineno"> 208</span>  g3 = (word32)(t = (word64)h3 + (t >> 32));</div><div class="line"><a name="l00209"></a><span class="lineno"> 209</span>  g4 = h4 + (word32)(t >> 32);</div><div class="line"><a name="l00210"></a><span class="lineno"> 210</span> </div><div class="line"><a name="l00211"></a><span class="lineno"> 211</span>  <span class="comment">// if there was carry into 131st bit, h3:h0 = g3:g0</span></div><div class="line"><a name="l00212"></a><span class="lineno"> 212</span>  mask = 0 - (g4 >> 2);</div><div class="line"><a name="l00213"></a><span class="lineno"> 213</span>  g0 &= mask; g1 &= mask;</div><div class="line"><a name="l00214"></a><span class="lineno"> 214</span>  g2 &= mask; g3 &= mask;</div><div class="line"><a name="l00215"></a><span class="lineno"> 215</span>  mask = ~mask;</div><div class="line"><a name="l00216"></a><span class="lineno"> 216</span>  h0 = (h0 & mask) | g0; h1 = (h1 & mask) | g1;</div><div class="line"><a name="l00217"></a><span class="lineno"> 217</span>  h2 = (h2 & mask) | g2; h3 = (h3 & mask) | g3;</div><div class="line"><a name="l00218"></a><span class="lineno"> 218</span> </div><div class="line"><a name="l00219"></a><span class="lineno"> 219</span>  <span class="comment">// mac = (h + nonce) % (2^128)</span></div><div class="line"><a name="l00220"></a><span class="lineno"> 220</span>  h0 = (word32)(t = (word64)h0 + m_n[0]);</div><div class="line"><a name="l00221"></a><span class="lineno"> 221</span>  h1 = (word32)(t = (word64)h1 + (t >> 32) + m_n[1]);</div><div class="line"><a name="l00222"></a><span class="lineno"> 222</span>  h2 = (word32)(t = (word64)h2 + (t >> 32) + m_n[2]);</div><div class="line"><a name="l00223"></a><span class="lineno"> 223</span>  h3 = (word32)(t = (word64)h3 + (t >> 32) + m_n[3]);</div><div class="line"><a name="l00224"></a><span class="lineno"> 224</span> </div><div class="line"><a name="l00225"></a><span class="lineno"> 225</span>  <span class="keywordflow">if</span> (size >= BLOCKSIZE)</div><div class="line"><a name="l00226"></a><span class="lineno"> 226</span>  {</div><div class="line"><a name="l00227"></a><span class="lineno"> 227</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, mac + 0, h0);</div><div class="line"><a name="l00228"></a><span class="lineno"> 228</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, mac + 4, h1);</div><div class="line"><a name="l00229"></a><span class="lineno"> 229</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, mac + 8, h2);</div><div class="line"><a name="l00230"></a><span class="lineno"> 230</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, mac + 12, h3);</div><div class="line"><a name="l00231"></a><span class="lineno"> 231</span>  }</div><div class="line"><a name="l00232"></a><span class="lineno"> 232</span>  <span class="keywordflow">else</span></div><div class="line"><a name="l00233"></a><span class="lineno"> 233</span>  {</div><div class="line"><a name="l00234"></a><span class="lineno"> 234</span>  <a class="code" href="class_fixed_size_aligned_sec_block.html">FixedSizeAlignedSecBlock<byte, BLOCKSIZE></a> m;</div><div class="line"><a name="l00235"></a><span class="lineno"> 235</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m + 0, h0);</div><div class="line"><a name="l00236"></a><span class="lineno"> 236</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m + 4, h1);</div><div class="line"><a name="l00237"></a><span class="lineno"> 237</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m + 8, h2);</div><div class="line"><a name="l00238"></a><span class="lineno"> 238</span>  PutWord<word32>(<span class="keyword">false</span>, <a class="code" href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a>, m + 12, h3);</div><div class="line"><a name="l00239"></a><span class="lineno"> 239</span>  memcpy(mac, m, size);</div><div class="line"><a name="l00240"></a><span class="lineno"> 240</span>  }</div><div class="line"><a name="l00241"></a><span class="lineno"> 241</span> }</div><div class="line"><a name="l00242"></a><span class="lineno"> 242</span> </div><div class="line"><a name="l00243"></a><span class="lineno"> 243</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00244"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#aebdc8e79fbe6397a25a166a63c199489"> 244</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#aebdc8e79fbe6397a25a166a63c199489">Poly1305_Base<T>::Resynchronize</a>(<span class="keyword">const</span> byte *nonce, <span class="keywordtype">int</span> nonceLength)</div><div class="line"><a name="l00245"></a><span class="lineno"> 245</span> {</div><div class="line"><a name="l00246"></a><span class="lineno"> 246</span>  <a class="code" href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a>(nonceLength == -1 || nonceLength == (<span class="keywordtype">int</span>)BLOCKSIZE);</div><div class="line"><a name="l00247"></a><span class="lineno"> 247</span>  nonceLength == -1 ? nonceLength = BLOCKSIZE : nonceLength;</div><div class="line"><a name="l00248"></a><span class="lineno"> 248</span>  this->UncheckedSetKey(NULLPTR, 0, <a class="code" href="algparam_8h.html#aa13eee74de98cf8aaa7e83f4fae7f28b">MakeParameters</a>(<a class="code" href="namespace_name.html#a9b6839240a8bdf1f5bcbebf1866f4733">Name::IV</a>(), <a class="code" href="class_const_byte_array_parameter.html">ConstByteArrayParameter</a>(nonce, nonceLength)));</div><div class="line"><a name="l00249"></a><span class="lineno"> 249</span> }</div><div class="line"><a name="l00250"></a><span class="lineno"> 250</span> </div><div class="line"><a name="l00251"></a><span class="lineno"> 251</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00252"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#a6b72e58e0916f5cc75055e4c6785fdc6"> 252</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#a6b72e58e0916f5cc75055e4c6785fdc6">Poly1305_Base<T>::GetNextIV</a>(<a class="code" href="class_random_number_generator.html">RandomNumberGenerator</a> &rng, byte *iv)</div><div class="line"><a name="l00253"></a><span class="lineno"> 253</span> {</div><div class="line"><a name="l00254"></a><span class="lineno"> 254</span>  rng.<a class="code" href="class_random_number_generator.html#a497145546d24e6d4abaf10b7e0f1ba17">GenerateBlock</a>(iv, BLOCKSIZE);</div><div class="line"><a name="l00255"></a><span class="lineno"> 255</span> }</div><div class="line"><a name="l00256"></a><span class="lineno"> 256</span> </div><div class="line"><a name="l00257"></a><span class="lineno"> 257</span> <span class="keyword">template</span> <<span class="keyword">class</span> T></div><div class="line"><a name="l00258"></a><span class="lineno"><a class="line" href="class_poly1305___base.html#ad62eb9211cf1d982f69812790502b6ec"> 258</a></span> <span class="keywordtype">void</span> <a class="code" href="class_poly1305___base.html#ad62eb9211cf1d982f69812790502b6ec">Poly1305_Base<T>::Restart</a>()</div><div class="line"><a name="l00259"></a><span class="lineno"> 259</span> {</div><div class="line"><a name="l00260"></a><span class="lineno"> 260</span>  m_h[0] = m_h[1] = m_h[2] = m_h[3] = m_h[4] = 0;</div><div class="line"><a name="l00261"></a><span class="lineno"> 261</span>  <span class="comment">// m_r[0] = m_r[1] = m_r[2] = m_r[3] = 0;</span></div><div class="line"><a name="l00262"></a><span class="lineno"> 262</span>  m_idx = 0;</div><div class="line"><a name="l00263"></a><span class="lineno"> 263</span> }</div><div class="line"><a name="l00264"></a><span class="lineno"> 264</span> </div><div class="line"><a name="l00265"></a><span class="lineno"> 265</span> <span class="keyword">template</span> <span class="keyword">class </span><a class="code" href="class_poly1305___base.html">Poly1305_Base<AES></a>;</div><div class="line"><a name="l00266"></a><span class="lineno"> 266</span> <span class="keyword">template</span> <span class="keyword">class </span><a class="code" href="class_poly1305.html">Poly1305<AES></a>;</div><div class="line"><a name="l00267"></a><span class="lineno"> 267</span> </div><div class="line"><a name="l00268"></a><span class="lineno"> 268</span> NAMESPACE_END</div><div class="ttc" id="class_const_byte_array_parameter_html"><div class="ttname"><a href="class_const_byte_array_parameter.html">ConstByteArrayParameter</a></div><div class="ttdoc">Used to pass byte array input as part of a NameValuePairs object. </div><div class="ttdef"><b>Definition:</b> <a href="algparam_8h_source.html#l00020">algparam.h:20</a></div></div> <div class="ttc" id="class_poly1305___base_html"><div class="ttname"><a href="class_poly1305___base.html">Poly1305_Base</a></div><div class="ttdoc">Poly1305 message authentication code base class. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8h_source.html#l00059">poly1305.h:59</a></div></div> <div class="ttc" id="class_random_number_generator_html_a497145546d24e6d4abaf10b7e0f1ba17"><div class="ttname"><a href="class_random_number_generator.html#a497145546d24e6d4abaf10b7e0f1ba17">RandomNumberGenerator::GenerateBlock</a></div><div class="ttdeci">virtual void GenerateBlock(byte *output, size_t size)</div><div class="ttdoc">Generate random array of bytes. </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8cpp_source.html#l00317">cryptlib.cpp:317</a></div></div> <div class="ttc" id="class_const_byte_array_parameter_html_ab83dbf7e4d80c0304917a3cc1d3cf144"><div class="ttname"><a href="class_const_byte_array_parameter.html#ab83dbf7e4d80c0304917a3cc1d3cf144">ConstByteArrayParameter::size</a></div><div class="ttdeci">size_t size() const</div><div class="ttdoc">Length of the memory block. </div><div class="ttdef"><b>Definition:</b> <a href="algparam_8h_source.html#l00084">algparam.h:84</a></div></div> <div class="ttc" id="cryptlib_8h_html"><div class="ttname"><a href="cryptlib_8h.html">cryptlib.h</a></div><div class="ttdoc">Abstract base classes that provide a uniform interface to this library. </div></div> <div class="ttc" id="misc_8h_html_a5f6fcbaaf6f72fe46a6d911b033dfea0"><div class="ttname"><a href="misc_8h.html#a5f6fcbaaf6f72fe46a6d911b033dfea0">memcpy_s</a></div><div class="ttdeci">void memcpy_s(void *dest, size_t sizeInBytes, const void *src, size_t count)</div><div class="ttdoc">Bounds checking replacement for memcpy() </div><div class="ttdef"><b>Definition:</b> <a href="misc_8h_source.html#l00383">misc.h:383</a></div></div> <div class="ttc" id="class_poly1305___base_html_a823d58a924c6c0caa9c731092c3c93f0"><div class="ttname"><a href="class_poly1305___base.html#a823d58a924c6c0caa9c731092c3c93f0">Poly1305_Base::UncheckedSetKey</a></div><div class="ttdeci">void UncheckedSetKey(const byte *key, unsigned int length, const NameValuePairs &params)</div><div class="ttdoc">Sets the key for this object without performing parameter validation. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00015">poly1305.cpp:15</a></div></div> <div class="ttc" id="class_random_number_generator_html"><div class="ttname"><a href="class_random_number_generator.html">RandomNumberGenerator</a></div><div class="ttdoc">Interface for random number generators. </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8h_source.html#l01330">cryptlib.h:1330</a></div></div> <div class="ttc" id="cryptlib_8h_html_aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2"><div class="ttname"><a href="cryptlib_8h.html#aaeb92d42f5a6e27b8ba19f18d69d142baccd5b3585bd07d6bdae383aa8271b9d2">LITTLE_ENDIAN_ORDER</a></div><div class="ttdoc">byte order is little-endian </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8h_source.html#l00142">cryptlib.h:142</a></div></div> <div class="ttc" id="class_poly1305___base_html_a350554631a23d196217b483843a4e6b0"><div class="ttname"><a href="class_poly1305___base.html#a350554631a23d196217b483843a4e6b0">Poly1305_Base::TruncatedFinal</a></div><div class="ttdeci">void TruncatedFinal(byte *mac, size_t size)</div><div class="ttdoc">Computes the hash of the current message. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00167">poly1305.cpp:167</a></div></div> <div class="ttc" id="class_const_byte_array_parameter_html_ab89acc8dae383f2663dd3864651e8ef1"><div class="ttname"><a href="class_const_byte_array_parameter.html#ab89acc8dae383f2663dd3864651e8ef1">ConstByteArrayParameter::begin</a></div><div class="ttdeci">const byte * begin() const</div><div class="ttdoc">Pointer to the first byte in the memory block. </div><div class="ttdef"><b>Definition:</b> <a href="algparam_8h_source.html#l00080">algparam.h:80</a></div></div> <div class="ttc" id="algparam_8h_html_aa13eee74de98cf8aaa7e83f4fae7f28b"><div class="ttname"><a href="algparam_8h.html#aa13eee74de98cf8aaa7e83f4fae7f28b">MakeParameters</a></div><div class="ttdeci">AlgorithmParameters MakeParameters(const char *name, const T &value, bool throwIfNotUsed=true)</div><div class="ttdoc">Create an object that implements NameValuePairs. </div><div class="ttdef"><b>Definition:</b> <a href="algparam_8h_source.html#l00502">algparam.h:502</a></div></div> <div class="ttc" id="aes_8h_html"><div class="ttname"><a href="aes_8h.html">aes.h</a></div><div class="ttdoc">Class file for the AES cipher (Rijndael) </div></div> <div class="ttc" id="pch_8h_html"><div class="ttname"><a href="pch_8h.html">pch.h</a></div><div class="ttdoc">Precompiled header file. </div></div> <div class="ttc" id="misc_8h_html_a30712a90999ad9d9152975f2e92d46b8"><div class="ttname"><a href="misc_8h.html#a30712a90999ad9d9152975f2e92d46b8">SaturatingSubtract</a></div><div class="ttdeci">T1 SaturatingSubtract(const T1 &a, const T2 &b)</div><div class="ttdoc">Performs a saturating subtract clamped at 0. </div><div class="ttdef"><b>Definition:</b> <a href="misc_8h_source.html#l00890">misc.h:890</a></div></div> <div class="ttc" id="class_fixed_size_aligned_sec_block_html"><div class="ttname"><a href="class_fixed_size_aligned_sec_block.html">FixedSizeAlignedSecBlock< byte, BLOCKSIZE ></a></div></div> <div class="ttc" id="class_poly1305___base_html_aebdc8e79fbe6397a25a166a63c199489"><div class="ttname"><a href="class_poly1305___base.html#aebdc8e79fbe6397a25a166a63c199489">Poly1305_Base::Resynchronize</a></div><div class="ttdeci">void Resynchronize(const byte *iv, int ivLength=-1)</div><div class="ttdoc">Resynchronize with an IV. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00244">poly1305.cpp:244</a></div></div> <div class="ttc" id="class_poly1305_html"><div class="ttname"><a href="class_poly1305.html">Poly1305</a></div><div class="ttdoc">Poly1305 message authentication code. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8h_source.html#l00144">poly1305.h:144</a></div></div> <div class="ttc" id="class_poly1305___base_html_a6b72e58e0916f5cc75055e4c6785fdc6"><div class="ttname"><a href="class_poly1305___base.html#a6b72e58e0916f5cc75055e4c6785fdc6">Poly1305_Base::GetNextIV</a></div><div class="ttdeci">void GetNextIV(RandomNumberGenerator &rng, byte *iv)</div><div class="ttdoc">Retrieves a secure IV for the next message. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00252">poly1305.cpp:252</a></div></div> <div class="ttc" id="trap_8h_html_adf3b392588bc94cbeae9f415a78c7b95"><div class="ttname"><a href="trap_8h.html#adf3b392588bc94cbeae9f415a78c7b95">CRYPTOPP_ASSERT</a></div><div class="ttdeci">#define CRYPTOPP_ASSERT(exp)</div><div class="ttdoc">Debugging and diagnostic assertion. </div><div class="ttdef"><b>Definition:</b> <a href="trap_8h_source.html#l00060">trap.h:60</a></div></div> <div class="ttc" id="cpu_8h_html"><div class="ttname"><a href="cpu_8h.html">cpu.h</a></div><div class="ttdoc">Functions for CPU features and intrinsics. </div></div> <div class="ttc" id="namespace_name_html_a9b6839240a8bdf1f5bcbebf1866f4733"><div class="ttname"><a href="namespace_name.html#a9b6839240a8bdf1f5bcbebf1866f4733">Name::IV</a></div><div class="ttdeci">const char * IV()</div><div class="ttdoc">ConstByteArrayParameter, also accepts const byte * for backwards compatibility. </div><div class="ttdef"><b>Definition:</b> <a href="argnames_8h_source.html#l00021">argnames.h:21</a></div></div> <div class="ttc" id="namespace_crypto_p_p_html"><div class="ttname"><a href="namespace_crypto_p_p.html">CryptoPP</a></div><div class="ttdoc">Crypto++ library namespace. </div></div> <div class="ttc" id="poly1305_8h_html"><div class="ttname"><a href="poly1305_8h.html">poly1305.h</a></div><div class="ttdoc">Classes for Poly1305 message authentication code. </div></div> <div class="ttc" id="class_name_value_pairs_html_a5357c3a09602e44671d1e42cb9a9408d"><div class="ttname"><a href="class_name_value_pairs.html#a5357c3a09602e44671d1e42cb9a9408d">NameValuePairs::GetValue</a></div><div class="ttdeci">bool GetValue(const char *name, T &value) const</div><div class="ttdoc">Get a named value. </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8h_source.html#l00347">cryptlib.h:347</a></div></div> <div class="ttc" id="class_poly1305___base_html_a13640c0e9edc4bd6783ef9c7abd694ea"><div class="ttname"><a href="class_poly1305___base.html#a13640c0e9edc4bd6783ef9c7abd694ea">Poly1305_Base::Update</a></div><div class="ttdeci">void Update(const byte *input, size_t length)</div><div class="ttdoc">Updates a hash with additional input. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00053">poly1305.cpp:53</a></div></div> <div class="ttc" id="class_poly1305___base_html_ad62eb9211cf1d982f69812790502b6ec"><div class="ttname"><a href="class_poly1305___base.html#ad62eb9211cf1d982f69812790502b6ec">Poly1305_Base::Restart</a></div><div class="ttdeci">void Restart()</div><div class="ttdoc">Restart the hash. </div><div class="ttdef"><b>Definition:</b> <a href="poly1305_8cpp_source.html#l00258">poly1305.cpp:258</a></div></div> <div class="ttc" id="class_name_value_pairs_html"><div class="ttname"><a href="class_name_value_pairs.html">NameValuePairs</a></div><div class="ttdoc">Interface for retrieving values given their names. </div><div class="ttdef"><b>Definition:</b> <a href="cryptlib_8h_source.html#l00290">cryptlib.h:290</a></div></div> </div><!-- fragment --></div><!-- contents --> <!-- start footer part --> <hr class="footer"/><address class="footer"><small> Generated on Sun Sep 16 2018 07:57:59 for Crypto++ by  <a href="http://www.doxygen.org/index.html"> <img class="footer" src="doxygen.png" alt="doxygen"/> </a> 1.8.14 </small></address> </body> </html>