blob: 63917d7592958854d172162dab85baffe958689c [file] [log] [blame]
Paul Bakker33b43f12013-08-20 11:48:36 +02001/* BEGIN_HEADER */
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +01002#include <polarssl/ecdh.h>
Manuel Pégourié-Gonnard74468332013-10-21 13:56:40 +02003#define WANT_NOT_RND_MPI
Paul Bakker33b43f12013-08-20 11:48:36 +02004/* END_HEADER */
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +01005
Paul Bakker33b43f12013-08-20 11:48:36 +02006/* BEGIN_DEPENDENCIES
Manuel Pégourié-Gonnarda0f07472013-08-23 16:35:32 +02007 * depends_on:POLARSSL_ECDH_C
Paul Bakker33b43f12013-08-20 11:48:36 +02008 * END_DEPENDENCIES
9 */
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +010010
Paul Bakker33b43f12013-08-20 11:48:36 +020011/* BEGIN_CASE */
12void ecdh_primitive_random( int id )
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +010013{
14 ecp_group grp;
15 ecp_point qA, qB;
16 mpi dA, dB, zA, zB;
17 rnd_pseudo_info rnd_info;
18
19 ecp_group_init( &grp );
20 ecp_point_init( &qA ); ecp_point_init( &qB );
21 mpi_init( &dA ); mpi_init( &dB );
22 mpi_init( &zA ); mpi_init( &zB );
23 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
24
Paul Bakker33b43f12013-08-20 11:48:36 +020025 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +010026
27 TEST_ASSERT( ecdh_gen_public( &grp, &dA, &qA, &rnd_pseudo_rand, &rnd_info )
28 == 0 );
29 TEST_ASSERT( ecdh_gen_public( &grp, &dB, &qB, &rnd_pseudo_rand, &rnd_info )
30 == 0 );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +020031 TEST_ASSERT( ecdh_compute_shared( &grp, &zA, &qB, &dA,
32 &rnd_pseudo_rand, &rnd_info ) == 0 );
33 TEST_ASSERT( ecdh_compute_shared( &grp, &zB, &qA, &dB,
34 NULL, NULL ) == 0 );
Manuel Pégourié-Gonnard61ce13b2013-01-26 16:20:32 +010035
36 TEST_ASSERT( mpi_cmp_mpi( &zA, &zB ) == 0 );
37
38 ecp_group_free( &grp );
39 ecp_point_free( &qA ); ecp_point_free( &qB );
40 mpi_free( &dA ); mpi_free( &dB );
41 mpi_free( &zA ); mpi_free( &zB );
42}
Paul Bakker33b43f12013-08-20 11:48:36 +020043/* END_CASE */
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010044
Paul Bakker33b43f12013-08-20 11:48:36 +020045/* BEGIN_CASE */
46void ecdh_primitive_testvec( int id, char *dA_str, char *xA_str, char *yA_str,
47 char *dB_str, char *xB_str, char *yB_str,
48 char *z_str )
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010049{
50 ecp_group grp;
51 ecp_point qA, qB;
52 mpi dA, dB, zA, zB, check;
53
54 ecp_group_init( &grp );
55 ecp_point_init( &qA ); ecp_point_init( &qB );
56 mpi_init( &dA ); mpi_init( &dB );
57 mpi_init( &zA ); mpi_init( &zB ); mpi_init( &check );
58
Paul Bakker33b43f12013-08-20 11:48:36 +020059 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010060
Manuel Pégourié-Gonnard74468332013-10-21 13:56:40 +020061 TEST_ASSERT( ecdh_gen_public( &grp, &dA, &qA, &not_rnd_mpi, dA_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010062 TEST_ASSERT( ! ecp_is_zero( &qA ) );
Paul Bakker33b43f12013-08-20 11:48:36 +020063 TEST_ASSERT( mpi_read_string( &check, 16, xA_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010064 TEST_ASSERT( mpi_cmp_mpi( &qA.X, &check ) == 0 );
Paul Bakker33b43f12013-08-20 11:48:36 +020065 TEST_ASSERT( mpi_read_string( &check, 16, yA_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010066 TEST_ASSERT( mpi_cmp_mpi( &qA.Y, &check ) == 0 );
67
Manuel Pégourié-Gonnard74468332013-10-21 13:56:40 +020068 TEST_ASSERT( ecdh_gen_public( &grp, &dB, &qB, &not_rnd_mpi, dB_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010069 TEST_ASSERT( ! ecp_is_zero( &qB ) );
Paul Bakker33b43f12013-08-20 11:48:36 +020070 TEST_ASSERT( mpi_read_string( &check, 16, xB_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010071 TEST_ASSERT( mpi_cmp_mpi( &qB.X, &check ) == 0 );
Paul Bakker33b43f12013-08-20 11:48:36 +020072 TEST_ASSERT( mpi_read_string( &check, 16, yB_str ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010073 TEST_ASSERT( mpi_cmp_mpi( &qB.Y, &check ) == 0 );
74
Paul Bakker33b43f12013-08-20 11:48:36 +020075 TEST_ASSERT( mpi_read_string( &check, 16, z_str ) == 0 );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +020076 TEST_ASSERT( ecdh_compute_shared( &grp, &zA, &qB, &dA, NULL, NULL ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010077 TEST_ASSERT( mpi_cmp_mpi( &zA, &check ) == 0 );
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +020078 TEST_ASSERT( ecdh_compute_shared( &grp, &zB, &qA, &dB, NULL, NULL ) == 0 );
Manuel Pégourié-Gonnard007b7172013-01-27 08:56:21 +010079 TEST_ASSERT( mpi_cmp_mpi( &zB, &check ) == 0 );
80
81 ecp_group_free( &grp );
82 ecp_point_free( &qA ); ecp_point_free( &qB );
83 mpi_free( &dA ); mpi_free( &dB );
84 mpi_free( &zA ); mpi_free( &zB ); mpi_free( &check );
85}
Paul Bakker33b43f12013-08-20 11:48:36 +020086/* END_CASE */
Manuel Pégourié-Gonnard854fbd72013-02-11 20:28:55 +010087
Paul Bakker33b43f12013-08-20 11:48:36 +020088/* BEGIN_CASE */
89void ecdh_exchange( int id )
Manuel Pégourié-Gonnard854fbd72013-02-11 20:28:55 +010090{
91 ecdh_context srv, cli;
92 unsigned char buf[1000];
93 const unsigned char *vbuf;
94 size_t len;
95 rnd_pseudo_info rnd_info;
96
97 ecdh_init( &srv );
98 ecdh_init( &cli );
99 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
100
Paul Bakker33b43f12013-08-20 11:48:36 +0200101 TEST_ASSERT( ecp_use_known_dp( &srv.grp, id ) == 0 );
Manuel Pégourié-Gonnard854fbd72013-02-11 20:28:55 +0100102
103 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
104 TEST_ASSERT( ecdh_make_params( &srv, &len, buf, 1000,
105 &rnd_pseudo_rand, &rnd_info ) == 0 );
106 TEST_ASSERT( ecdh_read_params( &cli, &vbuf, buf + len ) == 0 );
107
Manuel Pégourié-Gonnard424fda52013-02-11 22:05:42 +0100108 memset( buf, 0x00, sizeof( buf ) );
Manuel Pégourié-Gonnard5cceb412013-02-11 21:51:45 +0100109 TEST_ASSERT( ecdh_make_public( &cli, &len, buf, 1000,
110 &rnd_pseudo_rand, &rnd_info ) == 0 );
111 TEST_ASSERT( ecdh_read_public( &srv, buf, len ) == 0 );
112
Manuel Pégourié-Gonnarde09d2f82013-09-02 14:29:09 +0200113 TEST_ASSERT( ecdh_calc_secret( &srv, &len, buf, 1000,
114 &rnd_pseudo_rand, &rnd_info ) == 0 );
115 TEST_ASSERT( ecdh_calc_secret( &cli, &len, buf, 1000, NULL, NULL ) == 0 );
Manuel Pégourié-Gonnard424fda52013-02-11 22:05:42 +0100116 TEST_ASSERT( mpi_cmp_mpi( &srv.z, &cli.z ) == 0 );
117
Manuel Pégourié-Gonnard854fbd72013-02-11 20:28:55 +0100118 ecdh_free( &srv );
119 ecdh_free( &cli );
120}
Paul Bakker33b43f12013-08-20 11:48:36 +0200121/* END_CASE */