aboutsummaryrefslogtreecommitdiffstats
path: root/cryptography/primitives/block/base.py
blob: 650e39c1d6035a9f29ad65502451c3760b732a22 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
#    http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or
# implied.
# See the License for the specific language governing permissions and
# limitations under the License.

from __future__ import absolute_import, division, print_function

from enum import Enum

from cryptography.bindings import _default_api


class _Operation(Enum):
    encrypt = 0
    decrypt = 1


class BlockCipher(object):
    def __init__(self, cipher, mode, api=None):
        super(BlockCipher, self).__init__()

        if api is None:
            api = _default_api

        self.cipher = cipher
        self.mode = mode
        self._api = api

    def encryptor(self):
        return _BlockCipherContext(self.cipher, self.mode, self._api,
                                   _Operation.encrypt)

    def decryptor(self):
        return _BlockCipherContext(self.cipher, self.mode, self._api,
                                   _Operation.decrypt)


class _BlockCipherContext(object):
    def __init__(self, cipher, mode, api, operation):
        super(_BlockCipherContext, self).__init__()
        self._api = api
        self._operation = operation
        args = (cipher, mode)
        if self._operation == _Operation.encrypt:
            self._ctx = self._api.create_block_cipher_encrypt_context(*args)
        else:
            self._ctx = self._api.create_block_cipher_decrypt_context(*args)

    def update(self, data):
        if self._ctx is None:
            raise ValueError("Context was already finalized")
        if self._operation == _Operation.encrypt:
            return self._api.update_encrypt_context(self._ctx, data)
        else:
            return self._api.update_decrypt_context(self._ctx, data)

    def finalize(self):
        if self._ctx is None:
            raise ValueError("Context was already finalized")
        if self._operation == _Operation.encrypt:
            data = self._api.finalize_encrypt_context(self._ctx)
        else:
            data = self._api.finalize_decrypt_context(self._ctx)
        self._ctx = None
        return data