blob: 1469c3d4154854ce1d07b4d9cff018a9ba3d4ba0 [file] [log] [blame]
Gilles Peskine24827022018-09-25 18:49:23 +02001#!/usr/bin/env python3
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02002"""Test the program psa_constant_names.
Gilles Peskine24827022018-09-25 18:49:23 +02003Gather constant names from header files and test cases. Compile a C program
4to print out their numerical values, feed these numerical values to
5psa_constant_names, and check that the output is the original name.
6Return 0 if all test cases pass, 1 if the output was not always as expected,
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02007or 1 (with a Python backtrace) if there was an operational error.
8"""
Gilles Peskine24827022018-09-25 18:49:23 +02009
10import argparse
11import itertools
12import os
13import platform
14import re
15import subprocess
16import sys
17import tempfile
18
Gilles Peskinea0a315c2018-10-19 11:27:10 +020019class ReadFileLineException(Exception):
20 def __init__(self, filename, line_number):
21 message = 'in {} at {}'.format(filename, line_number)
22 super(ReadFileLineException, self).__init__(message)
23 self.filename = filename
24 self.line_number = line_number
25
26class read_file_lines:
Gilles Peskine54f54452019-05-27 18:31:59 +020027 # Dear Pylint, conventionally, a context manager class name is lowercase.
28 # pylint: disable=invalid-name,too-few-public-methods
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020029 """Context manager to read a text file line by line.
30
31 ```
32 with read_file_lines(filename) as lines:
33 for line in lines:
34 process(line)
35 ```
36 is equivalent to
37 ```
38 with open(filename, 'r') as input_file:
39 for line in input_file:
40 process(line)
41 ```
42 except that if process(line) raises an exception, then the read_file_lines
43 snippet annotates the exception with the file name and line number.
44 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +020045 def __init__(self, filename):
46 self.filename = filename
47 self.line_number = 'entry'
Gilles Peskine54f54452019-05-27 18:31:59 +020048 self.generator = None
Gilles Peskinea0a315c2018-10-19 11:27:10 +020049 def __enter__(self):
50 self.generator = enumerate(open(self.filename, 'r'))
51 return self
52 def __iter__(self):
53 for line_number, content in self.generator:
54 self.line_number = line_number
55 yield content
56 self.line_number = 'exit'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020057 def __exit__(self, exc_type, exc_value, exc_traceback):
58 if exc_type is not None:
Gilles Peskinea0a315c2018-10-19 11:27:10 +020059 raise ReadFileLineException(self.filename, self.line_number) \
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020060 from exc_value
Gilles Peskinea0a315c2018-10-19 11:27:10 +020061
Gilles Peskine24827022018-09-25 18:49:23 +020062class Inputs:
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020063 """Accumulate information about macros to test.
64 This includes macro names as well as information about their arguments
65 when applicable.
66 """
67
Gilles Peskine24827022018-09-25 18:49:23 +020068 def __init__(self):
69 # Sets of names per type
70 self.statuses = set(['PSA_SUCCESS'])
71 self.algorithms = set(['0xffffffff'])
72 self.ecc_curves = set(['0xffff'])
Gilles Peskinedcaefae2019-05-16 12:55:35 +020073 self.dh_groups = set(['0xffff'])
Gilles Peskine24827022018-09-25 18:49:23 +020074 self.key_types = set(['0xffffffff'])
75 self.key_usage_flags = set(['0x80000000'])
Gilles Peskine434899f2018-10-19 11:30:26 +020076 # Hard-coded value for unknown algorithms
Darryl Green61b7f612019-02-04 16:00:21 +000077 self.hash_algorithms = set(['0x010000fe'])
Gilles Peskine434899f2018-10-19 11:30:26 +020078 self.mac_algorithms = set(['0x02ff00ff'])
Gilles Peskine882e57e2019-04-12 00:12:07 +020079 self.ka_algorithms = set(['0x30fc0000'])
80 self.kdf_algorithms = set(['0x200000ff'])
Gilles Peskine434899f2018-10-19 11:30:26 +020081 # For AEAD algorithms, the only variability is over the tag length,
82 # and this only applies to known algorithms, so don't test an
83 # unknown algorithm.
84 self.aead_algorithms = set()
Gilles Peskine24827022018-09-25 18:49:23 +020085 # Identifier prefixes
86 self.table_by_prefix = {
87 'ERROR': self.statuses,
88 'ALG': self.algorithms,
89 'CURVE': self.ecc_curves,
Gilles Peskinedcaefae2019-05-16 12:55:35 +020090 'GROUP': self.dh_groups,
Gilles Peskine24827022018-09-25 18:49:23 +020091 'KEY_TYPE': self.key_types,
92 'KEY_USAGE': self.key_usage_flags,
93 }
94 # macro name -> list of argument names
95 self.argspecs = {}
96 # argument name -> list of values
Gilles Peskine434899f2018-10-19 11:30:26 +020097 self.arguments_for = {
98 'mac_length': ['1', '63'],
99 'tag_length': ['1', '63'],
100 }
Gilles Peskine24827022018-09-25 18:49:23 +0200101
102 def gather_arguments(self):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200103 """Populate the list of values for macro arguments.
104 Call this after parsing all the inputs.
105 """
Gilles Peskine24827022018-09-25 18:49:23 +0200106 self.arguments_for['hash_alg'] = sorted(self.hash_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200107 self.arguments_for['mac_alg'] = sorted(self.mac_algorithms)
Gilles Peskine882e57e2019-04-12 00:12:07 +0200108 self.arguments_for['ka_alg'] = sorted(self.ka_algorithms)
Gilles Peskine17542082019-01-04 19:46:31 +0100109 self.arguments_for['kdf_alg'] = sorted(self.kdf_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200110 self.arguments_for['aead_alg'] = sorted(self.aead_algorithms)
Gilles Peskine24827022018-09-25 18:49:23 +0200111 self.arguments_for['curve'] = sorted(self.ecc_curves)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200112 self.arguments_for['group'] = sorted(self.dh_groups)
Gilles Peskine24827022018-09-25 18:49:23 +0200113
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200114 @staticmethod
115 def _format_arguments(name, arguments):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200116 """Format a macro call with arguments.."""
Gilles Peskine24827022018-09-25 18:49:23 +0200117 return name + '(' + ', '.join(arguments) + ')'
118
119 def distribute_arguments(self, name):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200120 """Generate macro calls with each tested argument set.
121 If name is a macro without arguments, just yield "name".
122 If name is a macro with arguments, yield a series of
123 "name(arg1,...,argN)" where each argument takes each possible
124 value at least once.
125 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200126 try:
127 if name not in self.argspecs:
128 yield name
129 return
130 argspec = self.argspecs[name]
131 if argspec == []:
132 yield name + '()'
133 return
134 argument_lists = [self.arguments_for[arg] for arg in argspec]
135 arguments = [values[0] for values in argument_lists]
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200136 yield self._format_arguments(name, arguments)
Gilles Peskine54f54452019-05-27 18:31:59 +0200137 # Dear Pylint, enumerate won't work here since we're modifying
138 # the array.
139 # pylint: disable=consider-using-enumerate
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200140 for i in range(len(arguments)):
141 for value in argument_lists[i][1:]:
142 arguments[i] = value
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200143 yield self._format_arguments(name, arguments)
Gilles Peskinef96ed662018-10-19 11:29:56 +0200144 arguments[i] = argument_lists[0][0]
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200145 except BaseException as e:
146 raise Exception('distribute_arguments({})'.format(name)) from e
Gilles Peskine24827022018-09-25 18:49:23 +0200147
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200148 _argument_split_re = re.compile(r' *, *')
149 @classmethod
150 def _argument_split(cls, arguments):
151 return re.split(cls._argument_split_re, arguments)
152
Gilles Peskine24827022018-09-25 18:49:23 +0200153 # Regex for interesting header lines.
154 # Groups: 1=macro name, 2=type, 3=argument list (optional).
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200155 _header_line_re = \
Gilles Peskine24827022018-09-25 18:49:23 +0200156 re.compile(r'#define +' +
157 r'(PSA_((?:KEY_)?[A-Z]+)_\w+)' +
158 r'(?:\(([^\n()]*)\))?')
159 # Regex of macro names to exclude.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200160 _excluded_name_re = re.compile(r'_(?:GET|IS|OF)_|_(?:BASE|FLAG|MASK)\Z')
Gilles Peskinec68ce962018-10-19 11:31:52 +0200161 # Additional excluded macros.
Gilles Peskine5c196fb2019-05-17 12:04:41 +0200162 _excluded_names = set([
163 # Macros that provide an alternative way to build the same
164 # algorithm as another macro.
165 'PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH',
166 'PSA_ALG_FULL_LENGTH_MAC',
167 # Auxiliary macro whose name doesn't fit the usual patterns for
168 # auxiliary macros.
169 'PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH_CASE',
170 # PSA_ALG_ECDH and PSA_ALG_FFDH are excluded for now as the script
171 # currently doesn't support them.
172 'PSA_ALG_ECDH',
173 'PSA_ALG_FFDH',
174 # Deprecated aliases.
175 'PSA_ERROR_UNKNOWN_ERROR',
176 'PSA_ERROR_OCCUPIED_SLOT',
177 'PSA_ERROR_EMPTY_SLOT',
178 'PSA_ERROR_INSUFFICIENT_CAPACITY',
179 ])
Gilles Peskine24827022018-09-25 18:49:23 +0200180 def parse_header_line(self, line):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200181 """Parse a C header line, looking for "#define PSA_xxx"."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200182 m = re.match(self._header_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200183 if not m:
184 return
185 name = m.group(1)
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200186 if re.search(self._excluded_name_re, name) or \
187 name in self._excluded_names:
Gilles Peskine24827022018-09-25 18:49:23 +0200188 return
189 dest = self.table_by_prefix.get(m.group(2))
190 if dest is None:
191 return
192 dest.add(name)
193 if m.group(3):
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200194 self.argspecs[name] = self._argument_split(m.group(3))
Gilles Peskine24827022018-09-25 18:49:23 +0200195
196 def parse_header(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200197 """Parse a C header file, looking for "#define PSA_xxx"."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200198 with read_file_lines(filename) as lines:
199 for line in lines:
Gilles Peskine24827022018-09-25 18:49:23 +0200200 self.parse_header_line(line)
201
202 def add_test_case_line(self, function, argument):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200203 """Parse a test case data line, looking for algorithm metadata tests."""
Gilles Peskine24827022018-09-25 18:49:23 +0200204 if function.endswith('_algorithm'):
Darryl Greenb8fe0682019-02-06 13:21:31 +0000205 # As above, ECDH and FFDH algorithms are excluded for now.
206 # Support for them will be added in the future.
Darryl Greenec079502019-01-29 15:48:00 +0000207 if 'ECDH' in argument or 'FFDH' in argument:
208 return
Gilles Peskine24827022018-09-25 18:49:23 +0200209 self.algorithms.add(argument)
210 if function == 'hash_algorithm':
211 self.hash_algorithms.add(argument)
Gilles Peskine434899f2018-10-19 11:30:26 +0200212 elif function in ['mac_algorithm', 'hmac_algorithm']:
213 self.mac_algorithms.add(argument)
214 elif function == 'aead_algorithm':
215 self.aead_algorithms.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200216 elif function == 'key_type':
217 self.key_types.add(argument)
218 elif function == 'ecc_key_types':
219 self.ecc_curves.add(argument)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200220 elif function == 'dh_key_types':
221 self.dh_groups.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200222
223 # Regex matching a *.data line containing a test function call and
224 # its arguments. The actual definition is partly positional, but this
225 # regex is good enough in practice.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200226 _test_case_line_re = re.compile(r'(?!depends_on:)(\w+):([^\n :][^:\n]*)')
Gilles Peskine24827022018-09-25 18:49:23 +0200227 def parse_test_cases(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200228 """Parse a test case file (*.data), looking for algorithm metadata tests."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200229 with read_file_lines(filename) as lines:
230 for line in lines:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200231 m = re.match(self._test_case_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200232 if m:
233 self.add_test_case_line(m.group(1), m.group(2))
234
235def gather_inputs(headers, test_suites):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200236 """Read the list of inputs to test psa_constant_names with."""
Gilles Peskine24827022018-09-25 18:49:23 +0200237 inputs = Inputs()
238 for header in headers:
239 inputs.parse_header(header)
240 for test_cases in test_suites:
241 inputs.parse_test_cases(test_cases)
242 inputs.gather_arguments()
243 return inputs
244
245def remove_file_if_exists(filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200246 """Remove the specified file, ignoring errors."""
Gilles Peskine24827022018-09-25 18:49:23 +0200247 if not filename:
248 return
249 try:
250 os.remove(filename)
Gilles Peskine54f54452019-05-27 18:31:59 +0200251 except OSError:
Gilles Peskine24827022018-09-25 18:49:23 +0200252 pass
253
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200254def run_c(options, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200255 """Generate and run a program to print out numerical values for names."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200256 if type_word == 'status':
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100257 cast_to = 'long'
258 printf_format = '%ld'
259 else:
260 cast_to = 'unsigned long'
261 printf_format = '0x%08lx'
Gilles Peskine24827022018-09-25 18:49:23 +0200262 c_name = None
263 exe_name = None
264 try:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200265 c_fd, c_name = tempfile.mkstemp(prefix='tmp-{}-'.format(type_word),
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100266 suffix='.c',
Gilles Peskine24827022018-09-25 18:49:23 +0200267 dir='programs/psa')
268 exe_suffix = '.exe' if platform.system() == 'Windows' else ''
269 exe_name = c_name[:-2] + exe_suffix
270 remove_file_if_exists(exe_name)
271 c_file = os.fdopen(c_fd, 'w', encoding='ascii')
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100272 c_file.write('/* Generated by test_psa_constant_names.py for {} values */'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200273 .format(type_word))
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100274 c_file.write('''
Gilles Peskine24827022018-09-25 18:49:23 +0200275#include <stdio.h>
276#include <psa/crypto.h>
277int main(void)
278{
279''')
280 for name in names:
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100281 c_file.write(' printf("{}\\n", ({}) {});\n'
282 .format(printf_format, cast_to, name))
Gilles Peskine24827022018-09-25 18:49:23 +0200283 c_file.write(''' return 0;
284}
285''')
286 c_file.close()
287 cc = os.getenv('CC', 'cc')
288 subprocess.check_call([cc] +
289 ['-I' + dir for dir in options.include] +
290 ['-o', exe_name, c_name])
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200291 if options.keep_c:
292 sys.stderr.write('List of {} tests kept at {}\n'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200293 .format(type_word, c_name))
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200294 else:
295 os.remove(c_name)
Gilles Peskine24827022018-09-25 18:49:23 +0200296 output = subprocess.check_output([exe_name])
297 return output.decode('ascii').strip().split('\n')
298 finally:
299 remove_file_if_exists(exe_name)
300
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200301NORMALIZE_STRIP_RE = re.compile(r'\s+')
Gilles Peskine24827022018-09-25 18:49:23 +0200302def normalize(expr):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200303 """Normalize the C expression so as not to care about trivial differences.
304 Currently "trivial differences" means whitespace.
305 """
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200306 expr = re.sub(NORMALIZE_STRIP_RE, '', expr, len(expr))
Gilles Peskine24827022018-09-25 18:49:23 +0200307 return expr.strip().split('\n')
308
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200309def do_test(options, inputs, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200310 """Test psa_constant_names for the specified type.
311 Run program on names.
312 Use inputs to figure out what arguments to pass to macros that
313 take arguments.
314 """
Gilles Peskine24827022018-09-25 18:49:23 +0200315 names = sorted(itertools.chain(*map(inputs.distribute_arguments, names)))
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200316 values = run_c(options, type_word, names)
317 output = subprocess.check_output([options.program, type_word] + values)
Gilles Peskine24827022018-09-25 18:49:23 +0200318 outputs = output.decode('ascii').strip().split('\n')
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200319 errors = [(type_word, name, value, output)
Gilles Peskine24827022018-09-25 18:49:23 +0200320 for (name, value, output) in zip(names, values, outputs)
321 if normalize(name) != normalize(output)]
322 return len(names), errors
323
324def report_errors(errors):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200325 """Describe each case where the output is not as expected."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200326 for type_word, name, value, output in errors:
Gilles Peskine24827022018-09-25 18:49:23 +0200327 print('For {} "{}", got "{}" (value: {})'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200328 .format(type_word, name, output, value))
Gilles Peskine24827022018-09-25 18:49:23 +0200329
330def run_tests(options, inputs):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200331 """Run psa_constant_names on all the gathered inputs.
332 Return a tuple (count, errors) where count is the total number of inputs
333 that were tested and errors is the list of cases where the output was
334 not as expected.
335 """
Gilles Peskine24827022018-09-25 18:49:23 +0200336 count = 0
337 errors = []
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200338 for type_word, names in [('status', inputs.statuses),
339 ('algorithm', inputs.algorithms),
340 ('ecc_curve', inputs.ecc_curves),
341 ('dh_group', inputs.dh_groups),
342 ('key_type', inputs.key_types),
343 ('key_usage', inputs.key_usage_flags)]:
344 c, e = do_test(options, inputs, type_word, names)
Gilles Peskine24827022018-09-25 18:49:23 +0200345 count += c
346 errors += e
347 return count, errors
348
Gilles Peskine54f54452019-05-27 18:31:59 +0200349def main():
Gilles Peskine24827022018-09-25 18:49:23 +0200350 parser = argparse.ArgumentParser(description=globals()['__doc__'])
351 parser.add_argument('--include', '-I',
352 action='append', default=['include'],
353 help='Directory for header files')
354 parser.add_argument('--program',
355 default='programs/psa/psa_constant_names',
356 help='Program to test')
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200357 parser.add_argument('--keep-c',
358 action='store_true', dest='keep_c', default=False,
359 help='Keep the intermediate C file')
360 parser.add_argument('--no-keep-c',
361 action='store_false', dest='keep_c',
362 help='Don\'t keep the intermediate C file (default)')
Gilles Peskine24827022018-09-25 18:49:23 +0200363 options = parser.parse_args()
Gilles Peskine6d194bd2019-01-04 19:44:59 +0100364 headers = [os.path.join(options.include[0], 'psa', h)
365 for h in ['crypto.h', 'crypto_extra.h', 'crypto_values.h']]
Gilles Peskine24827022018-09-25 18:49:23 +0200366 test_suites = ['tests/suites/test_suite_psa_crypto_metadata.data']
367 inputs = gather_inputs(headers, test_suites)
368 count, errors = run_tests(options, inputs)
369 report_errors(errors)
370 if errors == []:
371 print('{} test cases PASS'.format(count))
372 else:
373 print('{} test cases, {} FAIL'.format(count, len(errors)))
374 exit(1)
Gilles Peskine54f54452019-05-27 18:31:59 +0200375
376if __name__ == '__main__':
377 main()