1 // Copyright 2012-2014 The Rust Project Developers. See the COPYRIGHT
2 // file at the top-level directory of this distribution and at
3 // http://rust-lang.org/COPYRIGHT.
5 // Licensed under the Apache License, Version 2.0 <LICENSE-APACHE or
6 // http://www.apache.org/licenses/LICENSE-2.0> or the MIT license
7 // <LICENSE-MIT or http://opensource.org/licenses/MIT>, at your
8 // option. This file may not be copied, modified, or distributed
9 // except according to those terms.
11 // ignore-lexer-test FIXME #15883
13 //! An implementation of SipHash 2-4.
15 //! See: http://131002.net/siphash/
17 //! Consider this as a main "general-purpose" hash for all hashtables: it
18 //! runs at good speed (competitive with spooky and city) and permits
19 //! strong _keyed_ hashing. Key your hashtables from a strong RNG,
20 //! such as `rand::Rng`.
22 //! Although the SipHash algorithm is considered to be cryptographically
23 //! strong, this implementation has not been reviewed for such purposes.
24 //! As such, all cryptographic uses of this implementation are strongly
29 use core::default::Default;
31 use super::{Hash, Hasher, Writer};
33 /// `SipState` computes a SipHash 2-4 hash over a stream of bytes.
37 length: uint, // how many bytes we've processed
38 v0: u64, // hash state
42 tail: u64, // unprocessed bytes le
43 ntail: uint, // how many bytes in tail are valid
46 impl Copy for SipState {}
48 // sadly, these macro definitions can't appear later,
49 // because they're needed in the following defs;
50 // this design could be improved.
52 macro_rules! u8to64_le (
53 ($buf:expr, $i:expr) =>
55 $buf[1+$i] as u64 << 8 |
56 $buf[2+$i] as u64 << 16 |
57 $buf[3+$i] as u64 << 24 |
58 $buf[4+$i] as u64 << 32 |
59 $buf[5+$i] as u64 << 40 |
60 $buf[6+$i] as u64 << 48 |
61 $buf[7+$i] as u64 << 56);
62 ($buf:expr, $i:expr, $len:expr) =>
67 out |= $buf[t+$i] as u64 << t*8;
76 (($x << $b) | ($x >> (64 - $b)))
79 macro_rules! compress (
80 ($v0:expr, $v1:expr, $v2:expr, $v3:expr) =>
82 $v0 += $v1; $v1 = rotl!($v1, 13); $v1 ^= $v0;
84 $v2 += $v3; $v3 = rotl!($v3, 16); $v3 ^= $v2;
85 $v0 += $v3; $v3 = rotl!($v3, 21); $v3 ^= $v0;
86 $v2 += $v1; $v1 = rotl!($v1, 17); $v1 ^= $v2;
92 /// Creates a `SipState` that is keyed off the provided keys.
94 pub fn new() -> SipState {
95 SipState::new_with_keys(0, 0)
98 /// Creates a `SipState` that is keyed off the provided keys.
100 pub fn new_with_keys(key0: u64, key1: u64) -> SipState {
101 let mut state = SipState {
116 /// Resets the state to its initial state.
118 pub fn reset(&mut self) {
120 self.v0 = self.k0 ^ 0x736f6d6570736575;
121 self.v1 = self.k1 ^ 0x646f72616e646f6d;
122 self.v2 = self.k0 ^ 0x6c7967656e657261;
123 self.v3 = self.k1 ^ 0x7465646279746573;
127 /// Returns the computed hash.
129 pub fn result(&self) -> u64 {
130 let mut v0 = self.v0;
131 let mut v1 = self.v1;
132 let mut v2 = self.v2;
133 let mut v3 = self.v3;
135 let b: u64 = ((self.length as u64 & 0xff) << 56) | self.tail;
138 compress!(v0, v1, v2, v3);
139 compress!(v0, v1, v2, v3);
143 compress!(v0, v1, v2, v3);
144 compress!(v0, v1, v2, v3);
145 compress!(v0, v1, v2, v3);
146 compress!(v0, v1, v2, v3);
152 impl Writer for SipState {
154 fn write(&mut self, msg: &[u8]) {
155 let length = msg.len();
156 self.length += length;
161 needed = 8 - self.ntail;
163 self.tail |= u8to64_le!(msg, 0, length) << 8*self.ntail;
164 self.ntail += length;
168 let m = self.tail | u8to64_le!(msg, 0, needed) << 8*self.ntail;
171 compress!(self.v0, self.v1, self.v2, self.v3);
172 compress!(self.v0, self.v1, self.v2, self.v3);
178 // Buffered tail is now flushed, process new input.
179 let len = length - needed;
180 let end = len & (!0x7);
181 let left = len & 0x7;
185 let mi = u8to64_le!(msg, i);
188 compress!(self.v0, self.v1, self.v2, self.v3);
189 compress!(self.v0, self.v1, self.v2, self.v3);
195 self.tail = u8to64_le!(msg, i, left);
200 impl Clone for SipState {
202 fn clone(&self) -> SipState {
207 impl Default for SipState {
209 fn default() -> SipState {
214 /// `SipHasher` computes the SipHash algorithm from a stream of bytes.
216 #[allow(missing_copy_implementations)]
217 pub struct SipHasher {
225 pub fn new() -> SipHasher {
226 SipHasher::new_with_keys(0, 0)
229 /// Creates a `Sip` that is keyed off the provided keys.
231 pub fn new_with_keys(key0: u64, key1: u64) -> SipHasher {
239 impl Hasher<SipState> for SipHasher {
241 fn hash<Sized? T: Hash<SipState>>(&self, value: &T) -> u64 {
242 let mut state = SipState::new_with_keys(self.k0, self.k1);
243 value.hash(&mut state);
248 impl Default for SipHasher {
250 fn default() -> SipHasher {
255 /// Hashes a value using the SipHash algorithm.
257 pub fn hash<Sized? T: Hash<SipState>>(value: &T) -> u64 {
258 let mut state = SipState::new();
259 value.hash(&mut state);
263 /// Hashes a value with the SipHash algorithm with the provided keys.
265 pub fn hash_with_keys<Sized? T: Hash<SipState>>(k0: u64, k1: u64, value: &T) -> u64 {
266 let mut state = SipState::new_with_keys(k0, k1);
267 value.hash(&mut state);
279 use slice::{AsSlice, SlicePrelude};
282 use super::super::{Hash, Writer};
283 use super::{SipState, hash, hash_with_keys};
285 // Hash just the bytes of the slice, without length prefix
286 struct Bytes<'a>(&'a [u8]);
288 impl<'a, S: Writer> Hash<S> for Bytes<'a> {
289 #[allow(unused_must_use)]
290 fn hash(&self, state: &mut S) {
291 let Bytes(v) = *self;
297 #[allow(unused_must_use)]
299 let vecs : [[u8, ..8], ..64] = [
300 [ 0x31, 0x0e, 0x0e, 0xdd, 0x47, 0xdb, 0x6f, 0x72, ],
301 [ 0xfd, 0x67, 0xdc, 0x93, 0xc5, 0x39, 0xf8, 0x74, ],
302 [ 0x5a, 0x4f, 0xa9, 0xd9, 0x09, 0x80, 0x6c, 0x0d, ],
303 [ 0x2d, 0x7e, 0xfb, 0xd7, 0x96, 0x66, 0x67, 0x85, ],
304 [ 0xb7, 0x87, 0x71, 0x27, 0xe0, 0x94, 0x27, 0xcf, ],
305 [ 0x8d, 0xa6, 0x99, 0xcd, 0x64, 0x55, 0x76, 0x18, ],
306 [ 0xce, 0xe3, 0xfe, 0x58, 0x6e, 0x46, 0xc9, 0xcb, ],
307 [ 0x37, 0xd1, 0x01, 0x8b, 0xf5, 0x00, 0x02, 0xab, ],
308 [ 0x62, 0x24, 0x93, 0x9a, 0x79, 0xf5, 0xf5, 0x93, ],
309 [ 0xb0, 0xe4, 0xa9, 0x0b, 0xdf, 0x82, 0x00, 0x9e, ],
310 [ 0xf3, 0xb9, 0xdd, 0x94, 0xc5, 0xbb, 0x5d, 0x7a, ],
311 [ 0xa7, 0xad, 0x6b, 0x22, 0x46, 0x2f, 0xb3, 0xf4, ],
312 [ 0xfb, 0xe5, 0x0e, 0x86, 0xbc, 0x8f, 0x1e, 0x75, ],
313 [ 0x90, 0x3d, 0x84, 0xc0, 0x27, 0x56, 0xea, 0x14, ],
314 [ 0xee, 0xf2, 0x7a, 0x8e, 0x90, 0xca, 0x23, 0xf7, ],
315 [ 0xe5, 0x45, 0xbe, 0x49, 0x61, 0xca, 0x29, 0xa1, ],
316 [ 0xdb, 0x9b, 0xc2, 0x57, 0x7f, 0xcc, 0x2a, 0x3f, ],
317 [ 0x94, 0x47, 0xbe, 0x2c, 0xf5, 0xe9, 0x9a, 0x69, ],
318 [ 0x9c, 0xd3, 0x8d, 0x96, 0xf0, 0xb3, 0xc1, 0x4b, ],
319 [ 0xbd, 0x61, 0x79, 0xa7, 0x1d, 0xc9, 0x6d, 0xbb, ],
320 [ 0x98, 0xee, 0xa2, 0x1a, 0xf2, 0x5c, 0xd6, 0xbe, ],
321 [ 0xc7, 0x67, 0x3b, 0x2e, 0xb0, 0xcb, 0xf2, 0xd0, ],
322 [ 0x88, 0x3e, 0xa3, 0xe3, 0x95, 0x67, 0x53, 0x93, ],
323 [ 0xc8, 0xce, 0x5c, 0xcd, 0x8c, 0x03, 0x0c, 0xa8, ],
324 [ 0x94, 0xaf, 0x49, 0xf6, 0xc6, 0x50, 0xad, 0xb8, ],
325 [ 0xea, 0xb8, 0x85, 0x8a, 0xde, 0x92, 0xe1, 0xbc, ],
326 [ 0xf3, 0x15, 0xbb, 0x5b, 0xb8, 0x35, 0xd8, 0x17, ],
327 [ 0xad, 0xcf, 0x6b, 0x07, 0x63, 0x61, 0x2e, 0x2f, ],
328 [ 0xa5, 0xc9, 0x1d, 0xa7, 0xac, 0xaa, 0x4d, 0xde, ],
329 [ 0x71, 0x65, 0x95, 0x87, 0x66, 0x50, 0xa2, 0xa6, ],
330 [ 0x28, 0xef, 0x49, 0x5c, 0x53, 0xa3, 0x87, 0xad, ],
331 [ 0x42, 0xc3, 0x41, 0xd8, 0xfa, 0x92, 0xd8, 0x32, ],
332 [ 0xce, 0x7c, 0xf2, 0x72, 0x2f, 0x51, 0x27, 0x71, ],
333 [ 0xe3, 0x78, 0x59, 0xf9, 0x46, 0x23, 0xf3, 0xa7, ],
334 [ 0x38, 0x12, 0x05, 0xbb, 0x1a, 0xb0, 0xe0, 0x12, ],
335 [ 0xae, 0x97, 0xa1, 0x0f, 0xd4, 0x34, 0xe0, 0x15, ],
336 [ 0xb4, 0xa3, 0x15, 0x08, 0xbe, 0xff, 0x4d, 0x31, ],
337 [ 0x81, 0x39, 0x62, 0x29, 0xf0, 0x90, 0x79, 0x02, ],
338 [ 0x4d, 0x0c, 0xf4, 0x9e, 0xe5, 0xd4, 0xdc, 0xca, ],
339 [ 0x5c, 0x73, 0x33, 0x6a, 0x76, 0xd8, 0xbf, 0x9a, ],
340 [ 0xd0, 0xa7, 0x04, 0x53, 0x6b, 0xa9, 0x3e, 0x0e, ],
341 [ 0x92, 0x59, 0x58, 0xfc, 0xd6, 0x42, 0x0c, 0xad, ],
342 [ 0xa9, 0x15, 0xc2, 0x9b, 0xc8, 0x06, 0x73, 0x18, ],
343 [ 0x95, 0x2b, 0x79, 0xf3, 0xbc, 0x0a, 0xa6, 0xd4, ],
344 [ 0xf2, 0x1d, 0xf2, 0xe4, 0x1d, 0x45, 0x35, 0xf9, ],
345 [ 0x87, 0x57, 0x75, 0x19, 0x04, 0x8f, 0x53, 0xa9, ],
346 [ 0x10, 0xa5, 0x6c, 0xf5, 0xdf, 0xcd, 0x9a, 0xdb, ],
347 [ 0xeb, 0x75, 0x09, 0x5c, 0xcd, 0x98, 0x6c, 0xd0, ],
348 [ 0x51, 0xa9, 0xcb, 0x9e, 0xcb, 0xa3, 0x12, 0xe6, ],
349 [ 0x96, 0xaf, 0xad, 0xfc, 0x2c, 0xe6, 0x66, 0xc7, ],
350 [ 0x72, 0xfe, 0x52, 0x97, 0x5a, 0x43, 0x64, 0xee, ],
351 [ 0x5a, 0x16, 0x45, 0xb2, 0x76, 0xd5, 0x92, 0xa1, ],
352 [ 0xb2, 0x74, 0xcb, 0x8e, 0xbf, 0x87, 0x87, 0x0a, ],
353 [ 0x6f, 0x9b, 0xb4, 0x20, 0x3d, 0xe7, 0xb3, 0x81, ],
354 [ 0xea, 0xec, 0xb2, 0xa3, 0x0b, 0x22, 0xa8, 0x7f, ],
355 [ 0x99, 0x24, 0xa4, 0x3c, 0xc1, 0x31, 0x57, 0x24, ],
356 [ 0xbd, 0x83, 0x8d, 0x3a, 0xaf, 0xbf, 0x8d, 0xb7, ],
357 [ 0x0b, 0x1a, 0x2a, 0x32, 0x65, 0xd5, 0x1a, 0xea, ],
358 [ 0x13, 0x50, 0x79, 0xa3, 0x23, 0x1c, 0xe6, 0x60, ],
359 [ 0x93, 0x2b, 0x28, 0x46, 0xe4, 0xd7, 0x06, 0x66, ],
360 [ 0xe1, 0x91, 0x5f, 0x5c, 0xb1, 0xec, 0xa4, 0x6c, ],
361 [ 0xf3, 0x25, 0x96, 0x5c, 0xa1, 0x6d, 0x62, 0x9f, ],
362 [ 0x57, 0x5f, 0xf2, 0x8e, 0x60, 0x38, 0x1b, 0xe5, ],
363 [ 0x72, 0x45, 0x06, 0xeb, 0x4c, 0x32, 0x8a, 0x95, ]
366 let k0 = 0x_07_06_05_04_03_02_01_00_u64;
367 let k1 = 0x_0f_0e_0d_0c_0b_0a_09_08_u64;
368 let mut buf = Vec::new();
370 let mut state_inc = SipState::new_with_keys(k0, k1);
371 let mut state_full = SipState::new_with_keys(k0, k1);
373 fn to_hex_str(r: &[u8, ..8]) -> String {
374 let mut s = String::new();
376 s.push_str(format!("{}", fmt::radix(*b, 16)).as_slice());
381 fn result_bytes(h: u64) -> Vec<u8> {
393 fn result_str(h: u64) -> String {
394 let r = result_bytes(h);
395 let mut s = String::new();
397 s.push_str(format!("{}", fmt::radix(*b, 16)).as_slice());
403 debug!("siphash test {}: {}", t, buf);
404 let vec = u8to64_le!(vecs[t], 0);
405 let out = hash_with_keys(k0, k1, &Bytes(buf.as_slice()));
406 debug!("got {}, expected {}", out, vec);
407 assert_eq!(vec, out);
410 state_full.write(buf.as_slice());
411 let f = result_str(state_full.result());
412 let i = result_str(state_inc.result());
413 let v = to_hex_str(&vecs[t]);
414 debug!("{}: ({}) => inc={} full={}", t, v, i, f);
420 state_inc.write(&[t as u8]);
426 #[test] #[cfg(target_arch = "arm")]
427 fn test_hash_uint() {
428 let val = 0xdeadbeef_deadbeef_u64;
429 assert!(hash(&(val as u64)) != hash(&(val as uint)));
430 assert_eq!(hash(&(val as u32)), hash(&(val as uint)));
432 #[test] #[cfg(target_arch = "x86_64")]
433 fn test_hash_uint() {
434 let val = 0xdeadbeef_deadbeef_u64;
435 assert_eq!(hash(&(val as u64)), hash(&(val as uint)));
436 assert!(hash(&(val as u32)) != hash(&(val as uint)));
438 #[test] #[cfg(target_arch = "x86")]
439 fn test_hash_uint() {
440 let val = 0xdeadbeef_deadbeef_u64;
441 assert!(hash(&(val as u64)) != hash(&(val as uint)));
442 assert_eq!(hash(&(val as u32)), hash(&(val as uint)));
446 fn test_hash_idempotent() {
447 let val64 = 0xdeadbeef_deadbeef_u64;
448 assert_eq!(hash(&val64), hash(&val64));
449 let val32 = 0xdeadbeef_u32;
450 assert_eq!(hash(&val32), hash(&val32));
454 fn test_hash_no_bytes_dropped_64() {
455 let val = 0xdeadbeef_deadbeef_u64;
457 assert!(hash(&val) != hash(&zero_byte(val, 0)));
458 assert!(hash(&val) != hash(&zero_byte(val, 1)));
459 assert!(hash(&val) != hash(&zero_byte(val, 2)));
460 assert!(hash(&val) != hash(&zero_byte(val, 3)));
461 assert!(hash(&val) != hash(&zero_byte(val, 4)));
462 assert!(hash(&val) != hash(&zero_byte(val, 5)));
463 assert!(hash(&val) != hash(&zero_byte(val, 6)));
464 assert!(hash(&val) != hash(&zero_byte(val, 7)));
466 fn zero_byte(val: u64, byte: uint) -> u64 {
468 val & !(0xff << (byte * 8))
473 fn test_hash_no_bytes_dropped_32() {
474 let val = 0xdeadbeef_u32;
476 assert!(hash(&val) != hash(&zero_byte(val, 0)));
477 assert!(hash(&val) != hash(&zero_byte(val, 1)));
478 assert!(hash(&val) != hash(&zero_byte(val, 2)));
479 assert!(hash(&val) != hash(&zero_byte(val, 3)));
481 fn zero_byte(val: u32, byte: uint) -> u32 {
483 val & !(0xff << (byte * 8))
488 fn test_hash_no_concat_alias() {
489 let s = ("aa", "bb");
490 let t = ("aabb", "");
491 let u = ("a", "abb");
493 assert!(s != t && t != u);
494 assert!(hash(&s) != hash(&t) && hash(&s) != hash(&u));
496 let v: (&[u8], &[u8], &[u8]) = (&[1u8], &[0u8, 0], &[0u8]);
497 let w: (&[u8], &[u8], &[u8]) = (&[1u8, 0, 0, 0], &[], &[]);
500 assert!(hash(&v) != hash(&w));
504 fn bench_str_under_8_bytes(b: &mut Bencher) {
507 assert_eq!(hash(&s), 16262950014981195938);
512 fn bench_str_of_8_bytes(b: &mut Bencher) {
515 assert_eq!(hash(&s), 4898293253460910787);
520 fn bench_str_over_8_bytes(b: &mut Bencher) {
521 let s = "foobarbaz0";
523 assert_eq!(hash(&s), 10581415515220175264);
528 fn bench_long_str(b: &mut Bencher) {
529 let s = "Lorem ipsum dolor sit amet, consectetur adipisicing elit, sed do eiusmod tempor \
530 incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud \
531 exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute \
532 irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla \
533 pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui \
534 officia deserunt mollit anim id est laborum.";
536 assert_eq!(hash(&s), 17717065544121360093);
541 fn bench_u64(b: &mut Bencher) {
542 let u = 16262950014981195938u64;
544 assert_eq!(hash(&u), 5254097107239593357);