HMAC.swift 2.7 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798
  1. //
  2. // HMAC.swift
  3. // CryptoSwift
  4. //
  5. // Created by Marcin Krzyzanowski on 13/01/15.
  6. // Copyright (c) 2015 Marcin Krzyzanowski. All rights reserved.
  7. //
  8. final public class HMAC: Authenticator {
  9. public enum Error: Swift.Error {
  10. case authenticateError
  11. }
  12. public enum Variant {
  13. case sha1, sha256, sha384, sha512, md5
  14. var digestSize:Int {
  15. switch (self) {
  16. case .sha1:
  17. return SHA1.digestSize
  18. case .sha256:
  19. return SHA2.Variant.sha256.digestSize
  20. case .sha384:
  21. return SHA2.Variant.sha384.digestSize
  22. case .sha512:
  23. return SHA2.Variant.sha512.digestSize
  24. case .md5:
  25. return MD5.digestSize
  26. }
  27. }
  28. func calculateHash(_ bytes:Array<UInt8>) -> Array<UInt8>? {
  29. switch (self) {
  30. case .sha1:
  31. return Digest.sha1(bytes)
  32. case .sha256:
  33. return Digest.sha256(bytes)
  34. case .sha384:
  35. return Digest.sha384(bytes)
  36. case .sha512:
  37. return Digest.sha512(bytes)
  38. case .md5:
  39. return Digest.md5(bytes)
  40. }
  41. }
  42. func blockSize() -> Int {
  43. switch self {
  44. case .md5:
  45. return MD5.blockSize
  46. case .sha1, .sha256:
  47. return 64
  48. case .sha384, .sha512:
  49. return 128
  50. }
  51. }
  52. }
  53. var key:Array<UInt8>
  54. let variant:Variant
  55. public init (key: Array<UInt8>, variant:HMAC.Variant = .md5) {
  56. self.variant = variant
  57. self.key = key
  58. if (key.count > variant.blockSize()) {
  59. if let hash = variant.calculateHash(key) {
  60. self.key = hash
  61. }
  62. }
  63. //TODO: validate 64 bytes long key
  64. self.key = ZeroPadding().add(to: key, blockSize: variant.blockSize())
  65. }
  66. //MARK: Authenticator
  67. public func authenticate(_ bytes:Array<UInt8>) throws -> Array<UInt8> {
  68. var opad = Array<UInt8>(repeating: 0x5c, count: variant.blockSize())
  69. for idx in key.indices {
  70. opad[idx] = key[idx] ^ opad[idx]
  71. }
  72. var ipad = Array<UInt8>(repeating: 0x36, count: variant.blockSize())
  73. for idx in key.indices {
  74. ipad[idx] = key[idx] ^ ipad[idx]
  75. }
  76. guard let ipadAndMessageHash = variant.calculateHash(ipad + bytes),
  77. let result = variant.calculateHash(opad + ipadAndMessageHash) else
  78. {
  79. throw Error.authenticateError
  80. }
  81. // return Array(result[0..<10]) // 80 bits
  82. return result
  83. }
  84. }