]> andersk Git - openssh.git/blame - bsd-arc4random.c
- (djm) Periodically rekey arc4random
[openssh.git] / bsd-arc4random.c
CommitLineData
416ed5a7 1/*
2 * Copyright (c) 1999-2000 Damien Miller. All rights reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
6 * are met:
7 * 1. Redistributions of source code must retain the above copyright
8 * notice, this list of conditions and the following disclaimer.
9 * 2. Redistributions in binary form must reproduce the above copyright
10 * notice, this list of conditions and the following disclaimer in the
11 * documentation and/or other materials provided with the distribution.
12 * 3. All advertising materials mentioning features or use of this software
13 * must display the following acknowledgement:
14 * This product includes software developed by Markus Friedl.
15 * 4. The name of the author may not be used to endorse or promote products
16 * derived from this software without specific prior written permission.
17 *
18 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
19 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
21 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
22 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
23 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
24 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
25 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
26 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
27 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
28 */
29
30#include "includes.h"
31#include <openssl/rand.h>
32#include <openssl/rc4.h>
33
34#ifndef HAVE_ARC4RANDOM
35
10fa00c8 36/* Size of key to use */
37#define SEED_SIZE 20
38
39/* Number of bytes to reseed after */
40#define REKEY_BYTES (1 >> 18)
41
416ed5a7 42static int rc4_ready = 0;
43static RC4_KEY rc4;
44
45unsigned int arc4random(void)
46{
47 unsigned int r = 0;
48
10fa00c8 49 if (rc4_ready <= 0)
416ed5a7 50 arc4random_stir();
51
52 RC4(&rc4, sizeof(r), (unsigned char *)&r, (unsigned char *)&r);
10fa00c8 53
54 rc4_ready -= sizeof(r);
416ed5a7 55
56 return(r);
57}
58
59void arc4random_stir(void)
60{
10fa00c8 61 unsigned char rand_buf[SEED_SIZE];
416ed5a7 62
63 memset(&rc4, 0, sizeof(rc4));
64
65 seed_rng();
10fa00c8 66
416ed5a7 67 RAND_bytes(rand_buf, sizeof(rand_buf));
68
69 RC4_set_key(&rc4, sizeof(rand_buf), rand_buf);
70
71 memset(rand_buf, 0, sizeof(rand_buf));
ea788c22 72
10fa00c8 73 rc4_ready = REKEY_BYTES;
416ed5a7 74}
75#endif /* !HAVE_ARC4RANDOM */
This page took 0.136402 seconds and 5 git commands to generate.