permutations.h 2.17 KB
Newer Older
Christoph Dobraunig committed
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66
#ifndef PERMUTATIONS_H_
#define PERMUTATIONS_H_

typedef unsigned char u8;
typedef unsigned long long u64;

typedef struct {
  u64 x0, x1, x2, x3, x4;
} state;

#define EXT_BYTE64(x, n) ((u8)((u64)(x) >> (8 * (7 - (n)))))
#define INS_BYTE64(x, n) ((u64)(x) << (8 * (7 - (n))))
#define ROTR64(x, n) (((x) >> (n)) | ((x) << (64 - (n))))
#define START_CONSTANT(x) (((0xf - (12 - (x))) << 4) | (12 - (x)))

#define ROUND(C)                    \
  do {                              \
    state t;                        \
    s.x2 ^= C;                      \
    s.x0 ^= s.x4;                   \
    s.x4 ^= s.x3;                   \
    s.x2 ^= s.x1;                   \
    t.x0 = s.x0;                    \
    t.x4 = s.x4;                    \
    t.x3 = s.x3;                    \
    t.x1 = s.x1;                    \
    t.x2 = s.x2;                    \
    s.x0 = t.x0 ^ ((~t.x1) & t.x2); \
    s.x2 = t.x2 ^ ((~t.x3) & t.x4); \
    s.x4 = t.x4 ^ ((~t.x0) & t.x1); \
    s.x1 = t.x1 ^ ((~t.x2) & t.x3); \
    s.x3 = t.x3 ^ ((~t.x4) & t.x0); \
    s.x1 ^= s.x0;                   \
    t.x1 = s.x1;                    \
    s.x1 = ROTR64(s.x1, 39);        \
    s.x3 ^= s.x2;                   \
    t.x2 = s.x2;                    \
    s.x2 = ROTR64(s.x2, 1);         \
    t.x4 = s.x4;                    \
    t.x2 ^= s.x2;                   \
    s.x2 = ROTR64(s.x2, 6 - 1);     \
    t.x3 = s.x3;                    \
    t.x1 ^= s.x1;                   \
    s.x3 = ROTR64(s.x3, 10);        \
    s.x0 ^= s.x4;                   \
    s.x4 = ROTR64(s.x4, 7);         \
    t.x3 ^= s.x3;                   \
    s.x2 ^= t.x2;                   \
    s.x1 = ROTR64(s.x1, 61 - 39);   \
    t.x0 = s.x0;                    \
    s.x2 = ~s.x2;                   \
    s.x3 = ROTR64(s.x3, 17 - 10);   \
    t.x4 ^= s.x4;                   \
    s.x4 = ROTR64(s.x4, 41 - 7);    \
    s.x3 ^= t.x3;                   \
    s.x1 ^= t.x1;                   \
    s.x0 = ROTR64(s.x0, 19);        \
    s.x4 ^= t.x4;                   \
    t.x0 ^= s.x0;                   \
    s.x0 = ROTR64(s.x0, 28 - 19);   \
    s.x0 ^= t.x0;                   \
  } while (0)

void P(state *p, u8 rounds);

#endif  // PERMUTATIONS_H_