summaryrefslogtreecommitdiff
path: root/cryptfs/nonce.go
blob: f93f59c9ebb3880c67d28f7a56661c611522db34 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
package cryptfs

import (
	"encoding/binary"
	"encoding/hex"
	"sync"
	"crypto/rand"
)

type nonce96 struct {
	lock sync.Mutex
	high32 uint32
	low64 uint64
	ready int
}

var gcmNonce nonce96

func (n *nonce96) randBytes(len int) []byte {
	b := make([]byte, len)
	_, err := rand.Read(b)
	if err != nil {
		panic("Could not get random bytes for nonce")
	}
	return b
}

func (n *nonce96) init() {
	b := n.randBytes(8)
	n.low64 = binary.BigEndian.Uint64(b)
	b = n.randBytes(4)
	n.high32 = binary.BigEndian.Uint32(b)
	n.ready = 1
	return
}

func (n *nonce96) Get() []byte {
	n.lock.Lock()
	if n.ready == 0 {
		n.init()
	}
	n.low64++
	if n.low64 == 0 {
		// Counter has wrapped
		n.high32++
	}
	r := make([]byte, 12)
	binary.BigEndian.PutUint32(r[0:4], n.high32)
	binary.BigEndian.PutUint64(r[4:12], n.low64)
	n.lock.Unlock()

	Debug.Printf("nonce96.Get(): %s\n", hex.EncodeToString(r))

	return r
}