blob: 11221a1588e988da4768e820cc1cb5c209659b27 [file] [log] [blame]
Paul Bakker33b43f12013-08-20 11:48:36 +02001/* BEGIN_HEADER */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +01002#include <polarssl/ecp.h>
Paul Bakkerdbd443d2013-08-16 13:38:47 +02003
4#define POLARSSL_ECP_PF_UNKNOWN -1
Paul Bakker33b43f12013-08-20 11:48:36 +02005/* END_HEADER */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +01006
Paul Bakker33b43f12013-08-20 11:48:36 +02007/* BEGIN_DEPENDENCIES
Manuel Pégourié-Gonnarda0f07472013-08-23 16:35:32 +02008 * depends_on:POLARSSL_ECP_C
Paul Bakker33b43f12013-08-20 11:48:36 +02009 * END_DEPENDENCIES
10 */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010011
Paul Bakker33b43f12013-08-20 11:48:36 +020012/* BEGIN_CASE */
13void ecp_small_add( int a_zero, char *x_a, char *y_a, int b_zero, char *x_b,
14 char *y_b, int c_zero, int x_c, int y_c )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010015{
16 ecp_group grp;
17 ecp_point A, B, C;
18
19 ecp_group_init( &grp );
20 ecp_point_init( &A ); ecp_point_init( &B ); ecp_point_init( &C );
21
22 TEST_ASSERT( ecp_group_read_string( &grp, 10,
23 "47", "4", "17", "42", "13" ) == 0 );
24
Paul Bakker33b43f12013-08-20 11:48:36 +020025 if( a_zero )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010026 ecp_set_zero( &A );
27 else
Paul Bakker33b43f12013-08-20 11:48:36 +020028 TEST_ASSERT( ecp_point_read_string( &A, 10, x_a, y_a ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010029
Paul Bakker33b43f12013-08-20 11:48:36 +020030 if( b_zero )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010031 ecp_set_zero( &B );
32 else
Paul Bakker33b43f12013-08-20 11:48:36 +020033 TEST_ASSERT( ecp_point_read_string( &B, 10, x_b, y_b ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010034
35 TEST_ASSERT( ecp_add( &grp, &C, &A, &B ) == 0 );
36
Paul Bakker33b43f12013-08-20 11:48:36 +020037 if( c_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +010038 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010039 else
40 {
Paul Bakker33b43f12013-08-20 11:48:36 +020041 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
42 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010043 }
44
45 TEST_ASSERT( ecp_add( &grp, &C, &B, &A ) == 0 );
46
Paul Bakker33b43f12013-08-20 11:48:36 +020047 if( c_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +010048 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010049 else
50 {
Paul Bakker33b43f12013-08-20 11:48:36 +020051 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
52 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010053 }
54
55 ecp_group_free( &grp );
56 ecp_point_free( &A ); ecp_point_free( &B ); ecp_point_free( &C );
57}
Paul Bakker33b43f12013-08-20 11:48:36 +020058/* END_CASE */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010059
Paul Bakker33b43f12013-08-20 11:48:36 +020060/* BEGIN_CASE */
61void ecp_small_sub( int a_zero, char *x_a, char *y_a, int b_zero, char *x_b,
62 char *y_b, int c_zero, int x_c, int y_c )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010063{
64 ecp_group grp;
65 ecp_point A, B, C;
66
67 ecp_group_init( &grp );
68 ecp_point_init( &A ); ecp_point_init( &B ); ecp_point_init( &C );
69
70 TEST_ASSERT( ecp_group_read_string( &grp, 10,
71 "47", "4", "17", "42", "13" ) == 0 );
72
Paul Bakker33b43f12013-08-20 11:48:36 +020073 if( a_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010074 ecp_set_zero( &A );
75 else
Paul Bakker33b43f12013-08-20 11:48:36 +020076 TEST_ASSERT( ecp_point_read_string( &A, 10, x_a, y_a ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010077
Paul Bakker33b43f12013-08-20 11:48:36 +020078 if( b_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010079 ecp_set_zero( &B );
80 else
Paul Bakker33b43f12013-08-20 11:48:36 +020081 TEST_ASSERT( ecp_point_read_string( &B, 10, x_b, y_b ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010082
83 TEST_ASSERT( ecp_sub( &grp, &C, &A, &B ) == 0 );
84
Paul Bakker33b43f12013-08-20 11:48:36 +020085 if( c_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010086 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
87 else
88 {
Paul Bakker33b43f12013-08-20 11:48:36 +020089 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
90 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010091 }
92
93 ecp_group_free( &grp );
94 ecp_point_free( &A ); ecp_point_free( &B ); ecp_point_free( &C );
95}
Paul Bakker33b43f12013-08-20 11:48:36 +020096/* END_CASE */
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010097
Paul Bakker33b43f12013-08-20 11:48:36 +020098/* BEGIN_CASE */
99void ecp_small_mul( int m_str, int r_zero, int x_r, int y_r, int ret )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100100{
101 ecp_group grp;
102 ecp_point R;
103 mpi m;
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200104 rnd_pseudo_info rnd_info;
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100105
106 ecp_group_init( &grp );
107 ecp_point_init( &R );
108 mpi_init( &m );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200109 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100110
111 TEST_ASSERT( ecp_group_read_string( &grp, 10,
112 "47", "4", "17", "42", "13" ) == 0 );
113
Paul Bakker33b43f12013-08-20 11:48:36 +0200114 TEST_ASSERT( mpi_lset( &m, m_str ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100115
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200116 TEST_ASSERT( ecp_mul( &grp, &R, &m, &grp.G, NULL, NULL ) == ret );
117
118 if( r_zero )
119 TEST_ASSERT( mpi_cmp_int( &R.Z, 0 ) == 0 );
120 else
121 {
122 TEST_ASSERT( mpi_cmp_int( &R.X, x_r ) == 0 );
123 TEST_ASSERT( mpi_cmp_int( &R.Y, y_r ) == 0 );
124 }
125
126 /* try again with randomization */
127 ecp_point_free( &R );
128
129 TEST_ASSERT( ecp_mul( &grp, &R, &m, &grp.G,
130 &rnd_pseudo_rand, &rnd_info ) == ret );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100131
Paul Bakker33b43f12013-08-20 11:48:36 +0200132 if( r_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +0100133 TEST_ASSERT( mpi_cmp_int( &R.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100134 else
135 {
Paul Bakker33b43f12013-08-20 11:48:36 +0200136 TEST_ASSERT( mpi_cmp_int( &R.X, x_r ) == 0 );
137 TEST_ASSERT( mpi_cmp_int( &R.Y, y_r ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100138 }
139
140 ecp_group_free( &grp );
141 ecp_point_free( &R );
142 mpi_free( &m );
143}
Paul Bakker33b43f12013-08-20 11:48:36 +0200144/* END_CASE */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100145
Paul Bakker33b43f12013-08-20 11:48:36 +0200146/* BEGIN_CASE */
147void ecp_small_check_pub( int x, int y, int z, int ret )
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100148{
149 ecp_group grp;
150 ecp_point P;
151
152 ecp_group_init( &grp );
153 ecp_point_init( &P );
154
155 TEST_ASSERT( ecp_group_read_string( &grp, 10,
156 "47", "4", "17", "42", "13" ) == 0 );
157
Paul Bakker33b43f12013-08-20 11:48:36 +0200158 TEST_ASSERT( mpi_lset( &P.X, x ) == 0 );
159 TEST_ASSERT( mpi_lset( &P.Y, y ) == 0 );
160 TEST_ASSERT( mpi_lset( &P.Z, z ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100161
Paul Bakker33b43f12013-08-20 11:48:36 +0200162 TEST_ASSERT( ecp_check_pubkey( &grp, &P ) == ret );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100163
164 ecp_group_free( &grp );
165 ecp_point_free( &P );
166}
Paul Bakker33b43f12013-08-20 11:48:36 +0200167/* END_CASE */
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100168
Paul Bakker33b43f12013-08-20 11:48:36 +0200169/* BEGIN_CASE */
170void ecp_test_vect( int id, char *dA_str, char *xA_str, char *yA_str,
171 char *dB_str, char *xB_str, char *yB_str, char *xZ_str,
172 char *yZ_str )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100173{
174 ecp_group grp;
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100175 ecp_point R;
176 mpi dA, xA, yA, dB, xB, yB, xZ, yZ;
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200177 rnd_pseudo_info rnd_info;
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100178
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100179 ecp_group_init( &grp ); ecp_point_init( &R );
180 mpi_init( &dA ); mpi_init( &xA ); mpi_init( &yA ); mpi_init( &dB );
181 mpi_init( &xB ); mpi_init( &yB ); mpi_init( &xZ ); mpi_init( &yZ );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200182 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100183
Paul Bakker33b43f12013-08-20 11:48:36 +0200184 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100185
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100186 TEST_ASSERT( ecp_check_pubkey( &grp, &grp.G ) == 0 );
187
Paul Bakker33b43f12013-08-20 11:48:36 +0200188 TEST_ASSERT( mpi_read_string( &dA, 16, dA_str ) == 0 );
189 TEST_ASSERT( mpi_read_string( &xA, 16, xA_str ) == 0 );
190 TEST_ASSERT( mpi_read_string( &yA, 16, yA_str ) == 0 );
191 TEST_ASSERT( mpi_read_string( &dB, 16, dB_str ) == 0 );
192 TEST_ASSERT( mpi_read_string( &xB, 16, xB_str ) == 0 );
193 TEST_ASSERT( mpi_read_string( &yB, 16, yB_str ) == 0 );
194 TEST_ASSERT( mpi_read_string( &xZ, 16, xZ_str ) == 0 );
195 TEST_ASSERT( mpi_read_string( &yZ, 16, yZ_str ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100196
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200197 TEST_ASSERT( ecp_mul( &grp, &R, &dA, &grp.G,
198 &rnd_pseudo_rand, &rnd_info ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100199 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xA ) == 0 );
200 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yA ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100201 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200202 TEST_ASSERT( ecp_mul( &grp, &R, &dB, &R, NULL, NULL ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100203 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xZ ) == 0 );
204 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yZ ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100205 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100206
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200207 TEST_ASSERT( ecp_mul( &grp, &R, &dB, &grp.G, NULL, NULL ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100208 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xB ) == 0 );
209 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yB ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100210 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200211 TEST_ASSERT( ecp_mul( &grp, &R, &dA, &R,
212 &rnd_pseudo_rand, &rnd_info ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100213 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xZ ) == 0 );
214 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yZ ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100215 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100216
217 ecp_group_free( &grp ); ecp_point_free( &R );
218 mpi_free( &dA ); mpi_free( &xA ); mpi_free( &yA ); mpi_free( &dB );
219 mpi_free( &xB ); mpi_free( &yB ); mpi_free( &xZ ); mpi_free( &yZ );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100220}
Paul Bakker33b43f12013-08-20 11:48:36 +0200221/* END_CASE */
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100222
Paul Bakker33b43f12013-08-20 11:48:36 +0200223/* BEGIN_CASE */
224void ecp_fast_mod( int id, char *N_str )
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100225{
226 ecp_group grp;
227 mpi N, R;
228
229 mpi_init( &N ); mpi_init( &R );
230 ecp_group_init( &grp );
231
Paul Bakker33b43f12013-08-20 11:48:36 +0200232 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
233 TEST_ASSERT( mpi_read_string( &N, 16, N_str ) == 0 );
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100234
235 /*
236 * Store correct result before we touch N
237 */
238 TEST_ASSERT( mpi_mod_mpi( &R, &N, &grp.P ) == 0 );
239
240 TEST_ASSERT( grp.modp( &N ) == 0 );
241 TEST_ASSERT( mpi_msb( &N ) <= grp.pbits + 3 );
242
243 /*
244 * Use mod rather than addition/substraction in case previous test fails
245 */
246 TEST_ASSERT( mpi_mod_mpi( &N, &N, &grp.P ) == 0 );
247 TEST_ASSERT( mpi_cmp_mpi( &N, &R ) == 0 );
248
249 mpi_free( &N ); mpi_free( &R );
250 ecp_group_free( &grp );
251}
Paul Bakker33b43f12013-08-20 11:48:36 +0200252/* END_CASE */
Manuel Pégourié-Gonnardb4a310b2012-11-13 20:57:00 +0100253
Paul Bakker33b43f12013-08-20 11:48:36 +0200254/* BEGIN_CASE */
255void ecp_write_binary( int id, char *x, char *y, char *z, int format,
256 char *out, int blen, int ret )
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100257{
258 ecp_group grp;
259 ecp_point P;
260 unsigned char buf[256], str[512];
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100261 size_t olen;
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100262
263 memset( buf, 0, sizeof( buf ) );
264 memset( str, 0, sizeof( str ) );
265
266 ecp_group_init( &grp ); ecp_point_init( &P );
267
Paul Bakker33b43f12013-08-20 11:48:36 +0200268 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100269
Paul Bakker33b43f12013-08-20 11:48:36 +0200270 TEST_ASSERT( mpi_read_string( &P.X, 16, x ) == 0 );
271 TEST_ASSERT( mpi_read_string( &P.Y, 16, y ) == 0 );
272 TEST_ASSERT( mpi_read_string( &P.Z, 16, z ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100273
Paul Bakker33b43f12013-08-20 11:48:36 +0200274 TEST_ASSERT( ecp_point_write_binary( &grp, &P, format,
275 &olen, buf, blen ) == ret );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100276
Paul Bakker33b43f12013-08-20 11:48:36 +0200277 if( ret == 0 )
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100278 {
Manuel Pégourié-Gonnard37d218a2012-11-24 15:19:55 +0100279 hexify( str, buf, olen );
Paul Bakker33b43f12013-08-20 11:48:36 +0200280 TEST_ASSERT( strcasecmp( (char *) str, out ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100281 }
282
283 ecp_group_free( &grp ); ecp_point_free( &P );
284}
Paul Bakker33b43f12013-08-20 11:48:36 +0200285/* END_CASE */
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100286
Paul Bakker33b43f12013-08-20 11:48:36 +0200287/* BEGIN_CASE */
288void ecp_read_binary( int id, char *input, char *x, char *y, char *z,
289 int ret )
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100290{
291 ecp_group grp;
292 ecp_point P;
293 mpi X, Y, Z;
294 int ilen;
295 unsigned char buf[256];
296
297 memset( buf, 0, sizeof( buf ) );
298
299 ecp_group_init( &grp ); ecp_point_init( &P );
300 mpi_init( &X ); mpi_init( &Y ); mpi_init( &Z );
301
Paul Bakker33b43f12013-08-20 11:48:36 +0200302 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100303
Paul Bakker33b43f12013-08-20 11:48:36 +0200304 TEST_ASSERT( mpi_read_string( &X, 16, x ) == 0 );
305 TEST_ASSERT( mpi_read_string( &Y, 16, y ) == 0 );
306 TEST_ASSERT( mpi_read_string( &Z, 16, z ) == 0 );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100307
Paul Bakker33b43f12013-08-20 11:48:36 +0200308 ilen = unhexify( buf, input );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100309
Paul Bakker33b43f12013-08-20 11:48:36 +0200310 TEST_ASSERT( ecp_point_read_binary( &grp, &P, buf, ilen ) == ret );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100311
Paul Bakker33b43f12013-08-20 11:48:36 +0200312 if( ret == 0 )
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100313 {
314 TEST_ASSERT( mpi_cmp_mpi( &P.X, &X ) == 0 );
315 TEST_ASSERT( mpi_cmp_mpi( &P.Y, &Y ) == 0 );
316 TEST_ASSERT( mpi_cmp_mpi( &P.Z, &Z ) == 0 );
317 }
318
319 ecp_group_free( &grp ); ecp_point_free( &P );
320 mpi_free( &X ); mpi_free( &Y ); mpi_free( &Z );
321}
Paul Bakker33b43f12013-08-20 11:48:36 +0200322/* END_CASE */
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100323
Paul Bakker33b43f12013-08-20 11:48:36 +0200324/* BEGIN_CASE */
325void ecp_tls_read_point( int id, char *input, char *x, char *y, char *z,
326 int ret )
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100327{
328 ecp_group grp;
329 ecp_point P;
330 mpi X, Y, Z;
331 size_t ilen;
332 unsigned char buf[256];
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100333 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100334
335 memset( buf, 0, sizeof( buf ) );
336
337 ecp_group_init( &grp ); ecp_point_init( &P );
338 mpi_init( &X ); mpi_init( &Y ); mpi_init( &Z );
339
Paul Bakker33b43f12013-08-20 11:48:36 +0200340 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100341
Paul Bakker33b43f12013-08-20 11:48:36 +0200342 TEST_ASSERT( mpi_read_string( &X, 16, x ) == 0 );
343 TEST_ASSERT( mpi_read_string( &Y, 16, y ) == 0 );
344 TEST_ASSERT( mpi_read_string( &Z, 16, z ) == 0 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100345
Paul Bakker33b43f12013-08-20 11:48:36 +0200346 ilen = unhexify( buf, input );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100347
Paul Bakker33b43f12013-08-20 11:48:36 +0200348 TEST_ASSERT( ecp_tls_read_point( &grp, &P, &vbuf, ilen ) == ret );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100349
Paul Bakker33b43f12013-08-20 11:48:36 +0200350 if( ret == 0 )
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100351 {
352 TEST_ASSERT( mpi_cmp_mpi( &P.X, &X ) == 0 );
353 TEST_ASSERT( mpi_cmp_mpi( &P.Y, &Y ) == 0 );
354 TEST_ASSERT( mpi_cmp_mpi( &P.Z, &Z ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100355 TEST_ASSERT( *vbuf == 0x00 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100356 }
357
358 ecp_group_free( &grp ); ecp_point_free( &P );
359 mpi_free( &X ); mpi_free( &Y ); mpi_free( &Z );
360}
Paul Bakker33b43f12013-08-20 11:48:36 +0200361/* END_CASE */
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100362
Paul Bakker33b43f12013-08-20 11:48:36 +0200363/* BEGIN_CASE */
364void ecp_tls_write_read_point( int id )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100365{
366 ecp_group grp;
367 ecp_point pt;
368 unsigned char buf[256];
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100369 const unsigned char *vbuf;
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100370 size_t olen;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100371
372 ecp_group_init( &grp );
373 ecp_point_init( &pt );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100374
Paul Bakker33b43f12013-08-20 11:48:36 +0200375 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100376
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100377 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100378 TEST_ASSERT( ecp_tls_write_point( &grp, &grp.G,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100379 POLARSSL_ECP_PF_COMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100380 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100381 == POLARSSL_ERR_ECP_BAD_INPUT_DATA );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100382 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100383
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100384 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100385 TEST_ASSERT( ecp_tls_write_point( &grp, &grp.G,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100386 POLARSSL_ECP_PF_UNCOMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100387 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100388 TEST_ASSERT( mpi_cmp_mpi( &grp.G.X, &pt.X ) == 0 );
389 TEST_ASSERT( mpi_cmp_mpi( &grp.G.Y, &pt.Y ) == 0 );
390 TEST_ASSERT( mpi_cmp_mpi( &grp.G.Z, &pt.Z ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100391 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100392
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100393 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100394 TEST_ASSERT( ecp_set_zero( &pt ) == 0 );
395 TEST_ASSERT( ecp_tls_write_point( &grp, &pt,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100396 POLARSSL_ECP_PF_COMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100397 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100398 TEST_ASSERT( ecp_is_zero( &pt ) );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100399 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100400
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100401 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100402 TEST_ASSERT( ecp_set_zero( &pt ) == 0 );
403 TEST_ASSERT( ecp_tls_write_point( &grp, &pt,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100404 POLARSSL_ECP_PF_UNCOMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100405 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100406 TEST_ASSERT( ecp_is_zero( &pt ) );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100407 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100408
409 ecp_group_free( &grp );
410 ecp_point_free( &pt );
411}
Paul Bakker33b43f12013-08-20 11:48:36 +0200412/* END_CASE */
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100413
Paul Bakker33b43f12013-08-20 11:48:36 +0200414/* BEGIN_CASE */
415void ecp_tls_read_group( char *record, int result, int bits )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100416{
417 ecp_group grp;
418 unsigned char buf[10];
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100419 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100420 int len, ret;
421
422 ecp_group_init( &grp );
423 memset( buf, 0x00, sizeof( buf ) );
424
Paul Bakker33b43f12013-08-20 11:48:36 +0200425 len = unhexify( buf, record );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100426
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100427 ret = ecp_tls_read_group( &grp, &vbuf, len );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100428
Paul Bakker33b43f12013-08-20 11:48:36 +0200429 TEST_ASSERT( ret == result );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100430 if( ret == 0)
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100431 {
Paul Bakker33b43f12013-08-20 11:48:36 +0200432 TEST_ASSERT( mpi_msb( &grp.P ) == (size_t) bits );
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100433 TEST_ASSERT( *vbuf == 0x00 );
434 }
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100435
436 ecp_group_free( &grp );
437}
Paul Bakker33b43f12013-08-20 11:48:36 +0200438/* END_CASE */
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100439
Paul Bakker33b43f12013-08-20 11:48:36 +0200440/* BEGIN_CASE */
441void ecp_tls_write_read_group( int id )
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100442{
443 ecp_group grp1, grp2;
444 unsigned char buf[10];
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100445 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100446 size_t len;
447 int ret;
448
449 ecp_group_init( &grp1 );
450 ecp_group_init( &grp2 );
451 memset( buf, 0x00, sizeof( buf ) );
452
Paul Bakker33b43f12013-08-20 11:48:36 +0200453 TEST_ASSERT( ecp_use_known_dp( &grp1, id ) == 0 );
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100454
455 TEST_ASSERT( ecp_tls_write_group( &grp1, &len, buf, 10 ) == 0 );
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100456 TEST_ASSERT( ( ret = ecp_tls_read_group( &grp2, &vbuf, len ) ) == 0 );
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100457
458 if( ret == 0 )
459 {
460 TEST_ASSERT( mpi_cmp_mpi( &grp1.N, &grp2.N ) == 0 );
461 TEST_ASSERT( grp1.id == grp2.id );
462 }
463
464 ecp_group_free( &grp1 );
465 ecp_group_free( &grp2 );
466}
Paul Bakker33b43f12013-08-20 11:48:36 +0200467/* END_CASE */
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100468
Paul Bakker33b43f12013-08-20 11:48:36 +0200469/* BEGIN_CASE */
470void ecp_check_privkey( int id )
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200471{
472 ecp_group grp;
473 mpi d;
474
475 ecp_group_init( &grp );
476 mpi_init( &d );
477
Paul Bakker33b43f12013-08-20 11:48:36 +0200478 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200479
480 TEST_ASSERT( mpi_lset( &d, 0 ) == 0 );
Manuel Pégourié-Gonnard456d3b92013-09-16 18:04:38 +0200481 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == POLARSSL_ERR_ECP_INVALID_KEY );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200482
483 TEST_ASSERT( mpi_copy( &d, &grp.N ) == 0 );
Manuel Pégourié-Gonnard456d3b92013-09-16 18:04:38 +0200484 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == POLARSSL_ERR_ECP_INVALID_KEY );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200485
486 ecp_group_free( &grp );
487 mpi_free( &d );
488}
Paul Bakker33b43f12013-08-20 11:48:36 +0200489/* END_CASE */
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200490
Paul Bakker33b43f12013-08-20 11:48:36 +0200491/* BEGIN_CASE */
492void ecp_gen_keypair( int id )
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100493{
494 ecp_group grp;
495 ecp_point Q;
496 mpi d;
497 rnd_pseudo_info rnd_info;
498
499 ecp_group_init( &grp );
500 ecp_point_init( &Q );
501 mpi_init( &d );
502 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
503
Paul Bakker33b43f12013-08-20 11:48:36 +0200504 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100505
506 TEST_ASSERT( ecp_gen_keypair( &grp, &d, &Q, &rnd_pseudo_rand, &rnd_info )
507 == 0 );
508
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200509 TEST_ASSERT( ecp_check_pubkey( &grp, &Q ) == 0 );
Paul Bakker8ea6c612013-07-16 17:15:03 +0200510 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == 0 );
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100511
512 ecp_group_free( &grp );
513 ecp_point_free( &Q );
514 mpi_free( &d );
515}
Paul Bakker33b43f12013-08-20 11:48:36 +0200516/* END_CASE */
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100517
Manuel Pégourié-Gonnard387a2112013-09-18 18:54:01 +0200518/* BEGIN_CASE depends_on:POLARSSL_SELFTEST_C */
Paul Bakker33b43f12013-08-20 11:48:36 +0200519void ecp_selftest()
Manuel Pégourié-Gonnardb4a310b2012-11-13 20:57:00 +0100520{
521 TEST_ASSERT( ecp_self_test( 0 ) == 0 );
522}
Paul Bakker33b43f12013-08-20 11:48:36 +0200523/* END_CASE */