pbkdf2.js 3.7 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091
  1. "use strict";
  2. Object.defineProperty(exports, "__esModule", { value: true });
  3. exports.pbkdf2Async = exports.pbkdf2 = void 0;
  4. const _assert_js_1 = require("./_assert.js");
  5. const hmac_js_1 = require("./hmac.js");
  6. const utils_js_1 = require("./utils.js");
  7. // Common prologue and epilogue for sync/async functions
  8. function pbkdf2Init(hash, _password, _salt, _opts) {
  9. (0, _assert_js_1.hash)(hash);
  10. const opts = (0, utils_js_1.checkOpts)({ dkLen: 32, asyncTick: 10 }, _opts);
  11. const { c, dkLen, asyncTick } = opts;
  12. (0, _assert_js_1.number)(c);
  13. (0, _assert_js_1.number)(dkLen);
  14. (0, _assert_js_1.number)(asyncTick);
  15. if (c < 1)
  16. throw new Error('PBKDF2: iterations (c) should be >= 1');
  17. const password = (0, utils_js_1.toBytes)(_password);
  18. const salt = (0, utils_js_1.toBytes)(_salt);
  19. // DK = PBKDF2(PRF, Password, Salt, c, dkLen);
  20. const DK = new Uint8Array(dkLen);
  21. // U1 = PRF(Password, Salt + INT_32_BE(i))
  22. const PRF = hmac_js_1.hmac.create(hash, password);
  23. const PRFSalt = PRF._cloneInto().update(salt);
  24. return { c, dkLen, asyncTick, DK, PRF, PRFSalt };
  25. }
  26. function pbkdf2Output(PRF, PRFSalt, DK, prfW, u) {
  27. PRF.destroy();
  28. PRFSalt.destroy();
  29. if (prfW)
  30. prfW.destroy();
  31. u.fill(0);
  32. return DK;
  33. }
  34. /**
  35. * PBKDF2-HMAC: RFC 2898 key derivation function
  36. * @param hash - hash function that would be used e.g. sha256
  37. * @param password - password from which a derived key is generated
  38. * @param salt - cryptographic salt
  39. * @param opts - {c, dkLen} where c is work factor and dkLen is output message size
  40. */
  41. function pbkdf2(hash, password, salt, opts) {
  42. const { c, dkLen, DK, PRF, PRFSalt } = pbkdf2Init(hash, password, salt, opts);
  43. let prfW; // Working copy
  44. const arr = new Uint8Array(4);
  45. const view = (0, utils_js_1.createView)(arr);
  46. const u = new Uint8Array(PRF.outputLen);
  47. // DK = T1 + T2 + ⋯ + Tdklen/hlen
  48. for (let ti = 1, pos = 0; pos < dkLen; ti++, pos += PRF.outputLen) {
  49. // Ti = F(Password, Salt, c, i)
  50. const Ti = DK.subarray(pos, pos + PRF.outputLen);
  51. view.setInt32(0, ti, false);
  52. // F(Password, Salt, c, i) = U1 ^ U2 ^ ⋯ ^ Uc
  53. // U1 = PRF(Password, Salt + INT_32_BE(i))
  54. (prfW = PRFSalt._cloneInto(prfW)).update(arr).digestInto(u);
  55. Ti.set(u.subarray(0, Ti.length));
  56. for (let ui = 1; ui < c; ui++) {
  57. // Uc = PRF(Password, Uc−1)
  58. PRF._cloneInto(prfW).update(u).digestInto(u);
  59. for (let i = 0; i < Ti.length; i++)
  60. Ti[i] ^= u[i];
  61. }
  62. }
  63. return pbkdf2Output(PRF, PRFSalt, DK, prfW, u);
  64. }
  65. exports.pbkdf2 = pbkdf2;
  66. async function pbkdf2Async(hash, password, salt, opts) {
  67. const { c, dkLen, asyncTick, DK, PRF, PRFSalt } = pbkdf2Init(hash, password, salt, opts);
  68. let prfW; // Working copy
  69. const arr = new Uint8Array(4);
  70. const view = (0, utils_js_1.createView)(arr);
  71. const u = new Uint8Array(PRF.outputLen);
  72. // DK = T1 + T2 + ⋯ + Tdklen/hlen
  73. for (let ti = 1, pos = 0; pos < dkLen; ti++, pos += PRF.outputLen) {
  74. // Ti = F(Password, Salt, c, i)
  75. const Ti = DK.subarray(pos, pos + PRF.outputLen);
  76. view.setInt32(0, ti, false);
  77. // F(Password, Salt, c, i) = U1 ^ U2 ^ ⋯ ^ Uc
  78. // U1 = PRF(Password, Salt + INT_32_BE(i))
  79. (prfW = PRFSalt._cloneInto(prfW)).update(arr).digestInto(u);
  80. Ti.set(u.subarray(0, Ti.length));
  81. await (0, utils_js_1.asyncLoop)(c - 1, asyncTick, () => {
  82. // Uc = PRF(Password, Uc−1)
  83. PRF._cloneInto(prfW).update(u).digestInto(u);
  84. for (let i = 0; i < Ti.length; i++)
  85. Ti[i] ^= u[i];
  86. });
  87. }
  88. return pbkdf2Output(PRF, PRFSalt, DK, prfW, u);
  89. }
  90. exports.pbkdf2Async = pbkdf2Async;
  91. //# sourceMappingURL=pbkdf2.js.map