blob: 27b0990d74ae7061db0b93098bddac1d43204b1b [file] [log] [blame]
Paul Bakker33b43f12013-08-20 11:48:36 +02001/* BEGIN_HEADER */
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +00002#include "mbedtls/rsa.h"
3#include "mbedtls/md.h"
Paul Bakker33b43f12013-08-20 11:48:36 +02004/* END_HEADER */
Paul Bakker9dcc3222011-03-08 14:16:06 +00005
Paul Bakker33b43f12013-08-20 11:48:36 +02006/* BEGIN_DEPENDENCIES
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02007 * depends_on:MBEDTLS_PKCS1_V21:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Paul Bakker33b43f12013-08-20 11:48:36 +02008 * END_DEPENDENCIES
9 */
Paul Bakker5690efc2011-05-26 13:16:06 +000010
Paul Bakker33b43f12013-08-20 11:48:36 +020011/* BEGIN_CASE */
Cédric Meuterbc13cd92020-12-28 14:39:33 +010012void pkcs1_rsaes_oaep_encrypt( int mod, data_t * input_N, data_t * input_E,
13 int hash, data_t * message_str, data_t * rnd_buf,
Ronald Cronac6ae352020-06-26 14:33:03 +020014 data_t * result_str, int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +000015{
Ron Eldor5b8f1202018-11-22 15:49:49 +020016 unsigned char output[256];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020017 mbedtls_rsa_context ctx;
Ronald Cron351f0ee2020-06-10 12:12:18 +020018 mbedtls_test_rnd_buf_info info;
Hanno Becker6326a6d2017-08-23 06:38:22 +010019 mbedtls_mpi N, E;
Paul Bakker9dcc3222011-03-08 14:16:06 +000020
Gilles Peskineecacc3c2021-03-24 00:48:57 +010021 info.fallback_f_rng = mbedtls_test_rnd_std_rand;
22 info.fallback_p_rng = NULL;
Azim Khand30ca132017-06-09 04:32:58 +010023 info.buf = rnd_buf->x;
24 info.length = rnd_buf->len;
Paul Bakker9dcc3222011-03-08 14:16:06 +000025
Hanno Becker6326a6d2017-08-23 06:38:22 +010026 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Ronald Cronc1905a12021-06-05 11:11:14 +020027 mbedtls_rsa_init( &ctx );
Ronald Cron266b6d22021-06-08 10:03:49 +020028 TEST_ASSERT( mbedtls_rsa_set_padding( &ctx,
29 MBEDTLS_RSA_PKCS_V21, hash ) == 0 );
Ron Eldor5b8f1202018-11-22 15:49:49 +020030 memset( output, 0x00, sizeof( output ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +000031
Cédric Meuterbc13cd92020-12-28 14:39:33 +010032 TEST_ASSERT( mbedtls_mpi_read_binary( &N, input_N->x, input_N->len ) == 0 );
33 TEST_ASSERT( mbedtls_mpi_read_binary( &E, input_E->x, input_E->len ) == 0 );
Hanno Becker6326a6d2017-08-23 06:38:22 +010034 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
35 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020036 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000037
Gilles Peskine85a6dd42018-10-15 16:32:42 +020038 if( message_str->len == 0 )
39 message_str->x = NULL;
Ronald Cron6c5bd7f2020-06-10 14:08:26 +020040 TEST_ASSERT( mbedtls_rsa_pkcs1_encrypt( &ctx,
41 &mbedtls_test_rnd_buffer_rand,
Thomas Daubney21772772021-05-13 17:30:32 +010042 &info, message_str->len,
43 message_str->x,
Ronald Cron6c5bd7f2020-06-10 14:08:26 +020044 output ) == result );
Paul Bakker33b43f12013-08-20 11:48:36 +020045 if( result == 0 )
Paul Bakker9dcc3222011-03-08 14:16:06 +000046 {
Cédric Meuter6882b462021-01-10 11:31:12 +010047 ASSERT_COMPARE( output, ctx.len, result_str->x, result_str->len );
Paul Bakker9dcc3222011-03-08 14:16:06 +000048 }
Paul Bakker58ef6ec2013-01-03 11:33:48 +010049
Paul Bakkerbd51b262014-07-10 15:26:12 +020050exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +010051 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020052 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +000053}
Paul Bakker33b43f12013-08-20 11:48:36 +020054/* END_CASE */
Paul Bakker9dcc3222011-03-08 14:16:06 +000055
Paul Bakker33b43f12013-08-20 11:48:36 +020056/* BEGIN_CASE */
Cédric Meuterbc13cd92020-12-28 14:39:33 +010057void pkcs1_rsaes_oaep_decrypt( int mod, data_t * input_P, data_t * input_Q,
58 data_t * input_N, data_t * input_E, int hash,
59 data_t * result_str, char * seed, data_t * message_str,
Azim Khand30ca132017-06-09 04:32:58 +010060 int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +000061{
Ron Eldor5b8f1202018-11-22 15:49:49 +020062 unsigned char output[64];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020063 mbedtls_rsa_context ctx;
Paul Bakkerf4a3f302011-04-24 15:53:29 +000064 size_t output_len;
Ronald Cron351f0ee2020-06-10 12:12:18 +020065 mbedtls_test_rnd_pseudo_info rnd_info;
Hanno Becker6326a6d2017-08-23 06:38:22 +010066 mbedtls_mpi N, P, Q, E;
Paul Bakkerdbd443d2013-08-16 13:38:47 +020067 ((void) seed);
Paul Bakker9dcc3222011-03-08 14:16:06 +000068
Hanno Becker6326a6d2017-08-23 06:38:22 +010069 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &P );
70 mbedtls_mpi_init( &Q ); mbedtls_mpi_init( &E );
71
Ronald Cronc1905a12021-06-05 11:11:14 +020072 mbedtls_rsa_init( &ctx );
Ronald Cron266b6d22021-06-08 10:03:49 +020073 TEST_ASSERT( mbedtls_rsa_set_padding( &ctx,
74 MBEDTLS_RSA_PKCS_V21, hash ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000075
Ron Eldor5b8f1202018-11-22 15:49:49 +020076 memset( output, 0x00, sizeof( output ) );
Ronald Cron351f0ee2020-06-10 12:12:18 +020077 memset( &rnd_info, 0, sizeof( mbedtls_test_rnd_pseudo_info ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +000078
Cédric Meuterbc13cd92020-12-28 14:39:33 +010079 TEST_ASSERT( mbedtls_mpi_read_binary( &P, input_P->x, input_P->len ) == 0 );
80 TEST_ASSERT( mbedtls_mpi_read_binary( &Q, input_Q->x, input_Q->len ) == 0 );
81 TEST_ASSERT( mbedtls_mpi_read_binary( &N, input_N->x, input_N->len ) == 0 );
82 TEST_ASSERT( mbedtls_mpi_read_binary( &E, input_E->x, input_E->len ) == 0 );
Paul Bakker548957d2013-08-30 10:30:02 +020083
Hanno Becker6326a6d2017-08-23 06:38:22 +010084 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, &P, &Q, NULL, &E ) == 0 );
85 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Hanno Becker7f25f852017-10-10 16:56:22 +010086 TEST_ASSERT( mbedtls_rsa_complete( &ctx ) == 0 );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020087 TEST_ASSERT( mbedtls_rsa_check_privkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000088
Ronald Cronac6ae352020-06-26 14:33:03 +020089 if( result_str->len == 0 )
Paul Bakker9dcc3222011-03-08 14:16:06 +000090 {
Ronald Cron6c5bd7f2020-06-10 14:08:26 +020091 TEST_ASSERT( mbedtls_rsa_pkcs1_decrypt( &ctx,
92 &mbedtls_test_rnd_pseudo_rand,
93 &rnd_info,
Ronald Cron6c5bd7f2020-06-10 14:08:26 +020094 &output_len, message_str->x,
95 NULL, 0 ) == result );
Gilles Peskine85a6dd42018-10-15 16:32:42 +020096 }
97 else
98 {
Ronald Cron6c5bd7f2020-06-10 14:08:26 +020099 TEST_ASSERT( mbedtls_rsa_pkcs1_decrypt( &ctx,
100 &mbedtls_test_rnd_pseudo_rand,
101 &rnd_info,
Ronald Cron6c5bd7f2020-06-10 14:08:26 +0200102 &output_len, message_str->x,
103 output,
Ron Eldor5b8f1202018-11-22 15:49:49 +0200104 sizeof( output ) ) == result );
Gilles Peskine85a6dd42018-10-15 16:32:42 +0200105 if( result == 0 )
106 {
Cédric Meuter6882b462021-01-10 11:31:12 +0100107 ASSERT_COMPARE( output, output_len, result_str->x, result_str->len );
Gilles Peskine85a6dd42018-10-15 16:32:42 +0200108 }
Paul Bakker9dcc3222011-03-08 14:16:06 +0000109 }
Paul Bakker6c591fa2011-05-05 11:49:20 +0000110
Paul Bakkerbd51b262014-07-10 15:26:12 +0200111exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100112 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &P );
113 mbedtls_mpi_free( &Q ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200114 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000115}
Paul Bakker33b43f12013-08-20 11:48:36 +0200116/* END_CASE */
Paul Bakker9dcc3222011-03-08 14:16:06 +0000117
Paul Bakker33b43f12013-08-20 11:48:36 +0200118/* BEGIN_CASE */
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100119void pkcs1_rsassa_pss_sign( int mod, data_t * input_P, data_t * input_Q,
120 data_t * input_N, data_t * input_E, int digest,
121 int hash, data_t * message_str, data_t * rnd_buf,
Cédric Meuter61adfd62021-01-10 11:52:39 +0100122 data_t * result_str, int fixed_salt_length,
123 int result )
Cédric Meuter668a78d2020-04-30 11:57:04 +0200124{
125 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200126 const mbedtls_md_info_t *md_info = mbedtls_md_info_from_type( digest );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200127 unsigned char output[512];
128 mbedtls_rsa_context ctx;
129 mbedtls_test_rnd_buf_info info;
130 mbedtls_mpi N, P, Q, E;
131
Gilles Peskineecacc3c2021-03-24 00:48:57 +0100132 info.fallback_f_rng = mbedtls_test_rnd_std_rand;
133 info.fallback_p_rng = NULL;
Cédric Meuter668a78d2020-04-30 11:57:04 +0200134 info.buf = rnd_buf->x;
135 info.length = rnd_buf->len;
136
137 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &P );
138 mbedtls_mpi_init( &Q ); mbedtls_mpi_init( &E );
Ronald Cronc1905a12021-06-05 11:11:14 +0200139 mbedtls_rsa_init( &ctx );
Ronald Cron266b6d22021-06-08 10:03:49 +0200140 TEST_ASSERT( mbedtls_rsa_set_padding( &ctx,
141 MBEDTLS_RSA_PKCS_V21, hash ) == 0 );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200142
143 memset( hash_result, 0x00, sizeof( hash_result ) );
144 memset( output, 0x00, sizeof( output ) );
145
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100146 TEST_ASSERT( mbedtls_mpi_read_binary( &P, input_P->x, input_P->len ) == 0 );
147 TEST_ASSERT( mbedtls_mpi_read_binary( &Q, input_Q->x, input_Q->len ) == 0 );
148 TEST_ASSERT( mbedtls_mpi_read_binary( &N, input_N->x, input_N->len ) == 0 );
149 TEST_ASSERT( mbedtls_mpi_read_binary( &E, input_E->x, input_E->len ) == 0 );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200150
151 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, &P, &Q, NULL, &E ) == 0 );
152 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
153 TEST_ASSERT( mbedtls_rsa_complete( &ctx ) == 0 );
154 TEST_ASSERT( mbedtls_rsa_check_privkey( &ctx ) == 0 );
155
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200156 if( md_info != NULL )
157 TEST_ASSERT( mbedtls_md( md_info, message_str->x, message_str->len, hash_result ) == 0 );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200158
Cédric Meuter61adfd62021-01-10 11:52:39 +0100159 if (fixed_salt_length == MBEDTLS_RSA_SALT_LEN_ANY)
160 {
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200161 TEST_ASSERT( mbedtls_rsa_pkcs1_sign(
162 &ctx, &mbedtls_test_rnd_buffer_rand, &info,
163 digest, mbedtls_md_get_size( md_info ), hash_result,
164 output ) == result );
Cédric Meuter61adfd62021-01-10 11:52:39 +0100165 if( result == 0 )
166 {
167 ASSERT_COMPARE( output, ctx.len, result_str->x, result_str->len );
168 }
169
170 info.buf = rnd_buf->x;
171 info.length = rnd_buf->len;
172 }
173
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200174 TEST_ASSERT( mbedtls_rsa_rsassa_pss_sign_ext(
175 &ctx, &mbedtls_test_rnd_buffer_rand, &info,
176 digest, mbedtls_md_get_size( md_info ), hash_result,
177 fixed_salt_length, output ) == result );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200178 if( result == 0 )
179 {
Cédric Meuter6882b462021-01-10 11:31:12 +0100180 ASSERT_COMPARE( output, ctx.len, result_str->x, result_str->len );
Cédric Meuter668a78d2020-04-30 11:57:04 +0200181 }
182
183exit:
184 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &P );
185 mbedtls_mpi_free( &Q ); mbedtls_mpi_free( &E );
186 mbedtls_rsa_free( &ctx );
187}
188/* END_CASE */
189
190/* BEGIN_CASE */
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100191void pkcs1_rsassa_pss_verify( int mod, data_t * input_N, data_t * input_E,
192 int digest, int hash, data_t * message_str,
193 char * salt, data_t * result_str, int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000194{
Ron Eldor5b8f1202018-11-22 15:49:49 +0200195 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200196 const mbedtls_md_info_t *md_info = mbedtls_md_info_from_type( digest );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200197 mbedtls_rsa_context ctx;
Hanno Becker6326a6d2017-08-23 06:38:22 +0100198 mbedtls_mpi N, E;
Paul Bakkerdbd443d2013-08-16 13:38:47 +0200199 ((void) salt);
Paul Bakker9dcc3222011-03-08 14:16:06 +0000200
Hanno Becker6326a6d2017-08-23 06:38:22 +0100201 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Ronald Cronc1905a12021-06-05 11:11:14 +0200202 mbedtls_rsa_init( &ctx );
Ronald Cron266b6d22021-06-08 10:03:49 +0200203 TEST_ASSERT( mbedtls_rsa_set_padding( &ctx,
204 MBEDTLS_RSA_PKCS_V21, hash ) == 0 );
Ron Eldor5b8f1202018-11-22 15:49:49 +0200205 memset( hash_result, 0x00, sizeof( hash_result ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000206
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100207 TEST_ASSERT( mbedtls_mpi_read_binary( &N, input_N->x, input_N->len ) == 0 );
208 TEST_ASSERT( mbedtls_mpi_read_binary( &E, input_E->x, input_E->len ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000209
Hanno Becker6326a6d2017-08-23 06:38:22 +0100210 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
211 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200212 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000213
Paul Bakker9dcc3222011-03-08 14:16:06 +0000214
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200215 if( md_info != NULL )
216 TEST_ASSERT( mbedtls_md( md_info, message_str->x, message_str->len, hash_result ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000217
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200218 TEST_ASSERT( mbedtls_rsa_pkcs1_verify( &ctx, digest, mbedtls_md_get_size( md_info ), hash_result, result_str->x ) == result );
Paul Bakker58ef6ec2013-01-03 11:33:48 +0100219
Paul Bakkerbd51b262014-07-10 15:26:12 +0200220exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100221 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200222 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000223}
Paul Bakker33b43f12013-08-20 11:48:36 +0200224/* END_CASE */
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200225
226/* BEGIN_CASE */
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100227void pkcs1_rsassa_pss_verify_ext( int mod, data_t * input_N, data_t * input_E,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200228 int msg_digest_id, int ctx_hash,
229 int mgf_hash, int salt_len,
Azim Khan5fcca462018-06-29 11:05:32 +0100230 data_t * message_str,
231 data_t * result_str, int result_simple,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200232 int result_full )
233{
Ron Eldor5b8f1202018-11-22 15:49:49 +0200234 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200235 mbedtls_rsa_context ctx;
Azim Khanf1aaec92017-05-30 14:23:15 +0100236 size_t hash_len;
Hanno Becker6326a6d2017-08-23 06:38:22 +0100237 mbedtls_mpi N, E;
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200238
Hanno Becker6326a6d2017-08-23 06:38:22 +0100239 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Ronald Cronc1905a12021-06-05 11:11:14 +0200240 mbedtls_rsa_init( &ctx );
Ronald Cron266b6d22021-06-08 10:03:49 +0200241 TEST_ASSERT( mbedtls_rsa_set_padding( &ctx,
242 MBEDTLS_RSA_PKCS_V21, ctx_hash ) == 0 );
Ron Eldor5b8f1202018-11-22 15:49:49 +0200243 memset( hash_result, 0x00, sizeof( hash_result ) );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200244
Cédric Meuterbc13cd92020-12-28 14:39:33 +0100245 TEST_ASSERT( mbedtls_mpi_read_binary( &N, input_N->x, input_N->len ) == 0 );
246 TEST_ASSERT( mbedtls_mpi_read_binary( &E, input_E->x, input_E->len ) == 0 );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200247
Hanno Becker6326a6d2017-08-23 06:38:22 +0100248 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
249 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200250 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200251
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200252
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200253 if( msg_digest_id != MBEDTLS_MD_NONE )
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200254 {
Gilles Peskine6e3187b2021-06-22 18:39:53 +0200255 const mbedtls_md_info_t *md_info =
256 mbedtls_md_info_from_type( msg_digest_id );
257 TEST_ASSERT( mbedtls_md( md_info,
258 message_str->x, message_str->len,
259 hash_result ) == 0 );
260 hash_len = mbedtls_md_get_size( md_info );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200261 }
262 else
263 {
Azim Khand30ca132017-06-09 04:32:58 +0100264 memcpy( hash_result, message_str->x, message_str->len );
265 hash_len = message_str->len;
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200266 }
267
Thomas Daubney68d9cbc2021-05-18 18:45:09 +0100268 TEST_ASSERT( mbedtls_rsa_pkcs1_verify( &ctx, msg_digest_id,
269 hash_len, hash_result,
270 result_str->x ) == result_simple );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200271
Thomas Daubney782a7f52021-05-19 12:27:35 +0100272 TEST_ASSERT( mbedtls_rsa_rsassa_pss_verify_ext( &ctx, msg_digest_id, hash_len,
273 hash_result, mgf_hash, salt_len,
274 result_str->x ) == result_full );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200275
Paul Bakkerbd51b262014-07-10 15:26:12 +0200276exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100277 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200278 mbedtls_rsa_free( &ctx );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200279}
280/* END_CASE */