diff options
author | Jason A. Donenfeld <Jason@zx2c4.com> | 2019-02-03 21:50:54 +0100 |
---|---|---|
committer | Jason A. Donenfeld <Jason@zx2c4.com> | 2019-02-03 21:51:18 +0100 |
commit | 897548e927fc90d13a19e1b1f29a549e7f885621 (patch) | |
tree | d27bc7200af21ab98724973011b5a78de6dcdba8 /src/crypto/zinc/curve25519/curve25519-x86_64.c | |
parent | chacha20poly1305: permit unaligned strides on certain platforms (diff) | |
download | wireguard-monolithic-historical-897548e927fc90d13a19e1b1f29a549e7f885621.tar.xz wireguard-monolithic-historical-897548e927fc90d13a19e1b1f29a549e7f885621.zip |
noise: store clamped key instead of raw key
Diffstat (limited to 'src/crypto/zinc/curve25519/curve25519-x86_64.c')
-rw-r--r-- | src/crypto/zinc/curve25519/curve25519-x86_64.c | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/src/crypto/zinc/curve25519/curve25519-x86_64.c b/src/crypto/zinc/curve25519/curve25519-x86_64.c index 81ef575..3d1806f 100644 --- a/src/crypto/zinc/curve25519/curve25519-x86_64.c +++ b/src/crypto/zinc/curve25519/curve25519-x86_64.c @@ -1975,7 +1975,7 @@ static void curve25519_adx(u8 shared[CURVE25519_KEY_SIZE], memcpy(m.private, private_key, sizeof(m.private)); memcpy(m.session, session_key, sizeof(m.session)); - clamp_secret(m.private); + curve25519_clamp_secret(m.private); /* As in the draft: * When receiving such an array, implementations of curve25519 @@ -2072,7 +2072,7 @@ static void curve25519_adx_base(u8 session_key[CURVE25519_KEY_SIZE], memcpy(m.private, private_key, sizeof(m.private)); - clamp_secret(m.private); + curve25519_clamp_secret(m.private); setzero_eltfp25519_1w(Ur1); setzero_eltfp25519_1w(Zr1); @@ -2170,7 +2170,7 @@ static void curve25519_bmi2(u8 shared[CURVE25519_KEY_SIZE], memcpy(m.private, private_key, sizeof(m.private)); memcpy(m.session, session_key, sizeof(m.session)); - clamp_secret(m.private); + curve25519_clamp_secret(m.private); /* As in the draft: * When receiving such an array, implementations of curve25519 @@ -2267,7 +2267,7 @@ static void curve25519_bmi2_base(u8 session_key[CURVE25519_KEY_SIZE], memcpy(m.private, private_key, sizeof(m.private)); - clamp_secret(m.private); + curve25519_clamp_secret(m.private); setzero_eltfp25519_1w(Ur1); setzero_eltfp25519_1w(Zr1); |