1*e7b1675dSTing-Kang Chang // Copyright 2019 Google Inc. 2*e7b1675dSTing-Kang Chang // 3*e7b1675dSTing-Kang Chang // Licensed under the Apache License, Version 2.0 (the "License"); 4*e7b1675dSTing-Kang Chang // you may not use this file except in compliance with the License. 5*e7b1675dSTing-Kang Chang // You may obtain a copy of the License at 6*e7b1675dSTing-Kang Chang // 7*e7b1675dSTing-Kang Chang // http://www.apache.org/licenses/LICENSE-2.0 8*e7b1675dSTing-Kang Chang // 9*e7b1675dSTing-Kang Chang // Unless required by applicable law or agreed to in writing, software 10*e7b1675dSTing-Kang Chang // distributed under the License is distributed on an "AS IS" BASIS, 11*e7b1675dSTing-Kang Chang // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 12*e7b1675dSTing-Kang Chang // See the License for the specific language governing permissions and 13*e7b1675dSTing-Kang Chang // limitations under the License. 14*e7b1675dSTing-Kang Chang // 15*e7b1675dSTing-Kang Chang /////////////////////////////////////////////////////////////////////////////// 16*e7b1675dSTing-Kang Chang 17*e7b1675dSTing-Kang Chang #ifndef TINK_STREAMINGAEAD_DECRYPTING_INPUT_STREAM_H_ 18*e7b1675dSTing-Kang Chang #define TINK_STREAMINGAEAD_DECRYPTING_INPUT_STREAM_H_ 19*e7b1675dSTing-Kang Chang 20*e7b1675dSTing-Kang Chang #include <memory> 21*e7b1675dSTing-Kang Chang #include <string> 22*e7b1675dSTing-Kang Chang #include <vector> 23*e7b1675dSTing-Kang Chang 24*e7b1675dSTing-Kang Chang #include "tink/input_stream.h" 25*e7b1675dSTing-Kang Chang #include "tink/primitive_set.h" 26*e7b1675dSTing-Kang Chang #include "tink/streaming_aead.h" 27*e7b1675dSTing-Kang Chang #include "tink/streamingaead/buffered_input_stream.h" 28*e7b1675dSTing-Kang Chang #include "tink/util/statusor.h" 29*e7b1675dSTing-Kang Chang 30*e7b1675dSTing-Kang Chang namespace crypto { 31*e7b1675dSTing-Kang Chang namespace tink { 32*e7b1675dSTing-Kang Chang namespace streamingaead { 33*e7b1675dSTing-Kang Chang 34*e7b1675dSTing-Kang Chang // A wrapper around an InputStream that holds a reference to a 35*e7b1675dSTing-Kang Chang // set of StreamingAead-primitives and upon first Next()-call probes the 36*e7b1675dSTing-Kang Chang // initial portion of the wrapped InputStream, to find a matching 37*e7b1675dSTing-Kang Chang // primitive, i.e. the primitive that is able to decrypt the stream. 38*e7b1675dSTing-Kang Chang // Once a match is found, all subsequent calls are forwarded to it. 39*e7b1675dSTing-Kang Chang class DecryptingInputStream : public crypto::tink::InputStream { 40*e7b1675dSTing-Kang Chang public: 41*e7b1675dSTing-Kang Chang // Constructs an InputStream that wraps 'input_stream', and will use 42*e7b1675dSTing-Kang Chang // (one of) provided 'primitives' to decrypt the contents of 'input_stream', 43*e7b1675dSTing-Kang Chang // using 'associated_data' as authenticated associated data 44*e7b1675dSTing-Kang Chang // of the decryption process. 45*e7b1675dSTing-Kang Chang static util::StatusOr<std::unique_ptr<InputStream>> New( 46*e7b1675dSTing-Kang Chang std::shared_ptr< 47*e7b1675dSTing-Kang Chang crypto::tink::PrimitiveSet<crypto::tink::StreamingAead>> primitives, 48*e7b1675dSTing-Kang Chang std::unique_ptr<crypto::tink::InputStream> ciphertext_source, 49*e7b1675dSTing-Kang Chang absl::string_view associated_data); 50*e7b1675dSTing-Kang Chang 51*e7b1675dSTing-Kang Chang ~DecryptingInputStream() override = default; 52*e7b1675dSTing-Kang Chang util::StatusOr<int> Next(const void** data) override; 53*e7b1675dSTing-Kang Chang void BackUp(int count) override; 54*e7b1675dSTing-Kang Chang int64_t Position() const override; 55*e7b1675dSTing-Kang Chang 56*e7b1675dSTing-Kang Chang private: DecryptingInputStream()57*e7b1675dSTing-Kang Chang DecryptingInputStream() {} 58*e7b1675dSTing-Kang Chang std::shared_ptr< 59*e7b1675dSTing-Kang Chang crypto::tink::PrimitiveSet<crypto::tink::StreamingAead>> primitives_; 60*e7b1675dSTing-Kang Chang std::shared_ptr<BufferedInputStream> buffered_ct_source_; 61*e7b1675dSTing-Kang Chang std::string associated_data_; 62*e7b1675dSTing-Kang Chang std::unique_ptr<crypto::tink::InputStream> matching_stream_; 63*e7b1675dSTing-Kang Chang bool attempted_matching_; 64*e7b1675dSTing-Kang Chang }; 65*e7b1675dSTing-Kang Chang 66*e7b1675dSTing-Kang Chang } // namespace streamingaead 67*e7b1675dSTing-Kang Chang } // namespace tink 68*e7b1675dSTing-Kang Chang } // namespace crypto 69*e7b1675dSTing-Kang Chang 70*e7b1675dSTing-Kang Chang #endif // TINK_STREAMINGAEAD_DECRYPTING_INPUT_STREAM_H_ 71