blob: efe716e6a7cc5c132eb4b8a36f27ef8b61326df0 [file] [log] [blame]
fbrosson533407a2018-04-04 21:44:29 +00001#!/usr/bin/env perl
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +02002
Simon Butcherf95c1762016-11-10 17:25:58 +00003# test-ref-configs.pl
4#
Bence Szépkúti1e148272020-08-07 13:07:28 +02005# Copyright The Mbed TLS Contributors
Dave Rodgman7ff79652023-11-03 12:04:52 +00006# SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Bence Szépkútic7da1fe2020-05-26 01:54:15 +02007#
Simon Butcherf95c1762016-11-10 17:25:58 +00008# Purpose
9#
10# For each reference configuration file in the configs directory, build the
Gilles Peskine7dc97042020-02-26 19:48:43 +010011# configuration, run the test suites and compat.sh
Manuel Pégourié-Gonnard827b6ce2014-04-30 12:05:29 +020012#
13# Usage: tests/scripts/test-ref-configs.pl [config-name [...]]
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020014
15use warnings;
16use strict;
17
18my %configs = (
Gilles Peskine7a78a1f2020-11-09 14:44:04 +010019 'config-ccm-psk-tls1_2.h' => {
Xiaofei Baif40545d2021-12-02 08:43:35 +000020 'compat' => '-m tls12 -f \'^TLS-PSK-WITH-AES-...-CCM-8\'',
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010021 'test_again_with_use_psa' => 1
Gilles Peskine7a78a1f2020-11-09 14:44:04 +010022 },
Gilles Peskine8c5c2932022-02-25 19:28:00 +010023 'config-ccm-psk-dtls1_2.h' => {
24 'compat' => '-m dtls12 -f \'^TLS-PSK-WITH-AES-...-CCM-8\'',
Gilles Peskinedcb13af2022-02-25 21:00:16 +010025 'opt' => ' ',
26 'opt_needs_debug' => 1,
Gilles Peskine8c5c2932022-02-25 19:28:00 +010027 'test_again_with_use_psa' => 1
28 },
Gilles Peskine12230eb2020-02-26 19:02:33 +010029 'config-mini-tls1_1.h' => {
Andrzej Kurek19d6ab02022-01-27 11:01:24 -050030 'compat' => '-m tls1_1 -f \'^DES-CBC3-SHA$\|^TLS-RSA-WITH-3DES-EDE-CBC-SHA$\'', #',
Gilles Peskinedcb13af2022-02-25 21:00:16 +010031 ## Skip ssl-opt testing for now because ssl-opt.sh is missing a lot
32 ## of requires_xxx so it would try to run tests that don't apply.
33 # 'opt' => ' ',
34 # 'opt_needs_debug' => 1,
Andrzej Kurek19d6ab02022-01-27 11:01:24 -050035 'test_again_with_use_psa' => 1
Gilles Peskinefec30642019-10-10 20:30:54 +020036 },
Gilles Peskine25fdebf2020-11-09 15:15:17 +010037 'config-no-entropy.h' => {
38 },
Manuel Pégourié-Gonnardeb47b872015-10-20 14:07:03 +020039 'config-suite-b.h' => {
Xiaofei Baif40545d2021-12-02 08:43:35 +000040 'compat' => "-m tls12 -f 'ECDHE-ECDSA.*AES.*GCM' -p mbedTLS",
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010041 'test_again_with_use_psa' => 1,
Gilles Peskinedcb13af2022-02-25 21:00:16 +010042 'opt' => ' ',
43 'opt_needs_debug' => 1,
Manuel Pégourié-Gonnardeb47b872015-10-20 14:07:03 +020044 },
Gilles Peskine12230eb2020-02-26 19:02:33 +010045 'config-symmetric-only.h' => {
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010046 'test_again_with_use_psa' => 0, # Uses PSA by default, no need to test it twice
Gilles Peskine12230eb2020-02-26 19:02:33 +010047 },
Gilles Peskine12230eb2020-02-26 19:02:33 +010048 'config-thread.h' => {
Gilles Peskine7dc97042020-02-26 19:48:43 +010049 'opt' => '-f ECJPAKE.*nolog',
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010050 'test_again_with_use_psa' => 1,
Gilles Peskine12230eb2020-02-26 19:02:33 +010051 },
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020052);
53
Manuel Pégourié-Gonnard827b6ce2014-04-30 12:05:29 +020054# If no config-name is provided, use all known configs.
55# Otherwise, use the provided names only.
Gilles Peskine20e25b92022-02-26 18:16:07 +010056my @configs_to_test = sort keys %configs;
Paul Bakker30a30622013-12-19 17:09:49 +010057if ($#ARGV >= 0) {
Gilles Peskine20e25b92022-02-26 18:16:07 +010058 foreach my $conf_name ( @ARGV ) {
59 if( ! exists $configs{$conf_name} ) {
Manuel Pégourié-Gonnard827b6ce2014-04-30 12:05:29 +020060 die "Unknown configuration: $conf_name\n";
Manuel Pégourié-Gonnard827b6ce2014-04-30 12:05:29 +020061 }
Paul Bakker30a30622013-12-19 17:09:49 +010062 }
Gilles Peskine20e25b92022-02-26 18:16:07 +010063 @configs_to_test = @ARGV;
Paul Bakker30a30622013-12-19 17:09:49 +010064}
65
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020066-d 'library' && -d 'include' && -d 'tests' or die "Must be run from root\n";
67
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +000068my $config_h = 'include/mbedtls/config.h';
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020069
70system( "cp $config_h $config_h.bak" ) and die;
71sub abort {
72 system( "mv $config_h.bak $config_h" ) and warn "$config_h not restored\n";
Manuel Pégourié-Gonnard254eec82017-10-26 09:47:36 +020073 # use an exit code between 1 and 124 for git bisect (die returns 255)
Manuel Pégourié-Gonnarda7c4c8a2017-07-12 12:15:24 +020074 warn $_[0];
75 exit 1;
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020076}
77
Gilles Peskine581bfcf2019-10-11 17:19:45 +020078# Create a seedfile for configurations that enable MBEDTLS_ENTROPY_NV_SEED.
79# For test purposes, this doesn't have to be cryptographically random.
80if (!-e "tests/seedfile" || -s "tests/seedfile" < 64) {
81 local *SEEDFILE;
82 open SEEDFILE, ">tests/seedfile" or die;
83 print SEEDFILE "*" x 64 or die;
84 close SEEDFILE or die;
85}
86
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010087sub perform_test {
Gilles Peskinedef0e142022-03-14 19:05:48 +010088 my $conf_file = $_[0];
Andrzej Kurek19e83fa2022-01-17 16:05:43 +010089 my $data = $_[1];
90 my $test_with_psa = $_[2];
91
Gilles Peskinedef0e142022-03-14 19:05:48 +010092 my $conf_name = $conf_file;
93 if ( $test_with_psa )
94 {
95 $conf_name .= "+PSA";
96 }
97
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +020098 system( "cp $config_h.bak $config_h" ) and die;
99 system( "make clean" ) and die;
100
101 print "\n******************************************\n";
Gilles Peskinedef0e142022-03-14 19:05:48 +0100102 print "* Testing configuration: $conf_name\n";
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +0200103 print "******************************************\n";
Andrzej Kurek19e83fa2022-01-17 16:05:43 +0100104
Gilles Peskinedef0e142022-03-14 19:05:48 +0100105 $ENV{MBEDTLS_TEST_CONFIGURATION} = $conf_name;
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +0200106
Gilles Peskinedef0e142022-03-14 19:05:48 +0100107 system( "cp configs/$conf_file $config_h" )
108 and abort "Failed to activate $conf_file\n";
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +0200109
Andrzej Kurek19e83fa2022-01-17 16:05:43 +0100110 if ( $test_with_psa )
111 {
112 system( "scripts/config.py set MBEDTLS_PSA_CRYPTO_C" );
113 system( "scripts/config.py set MBEDTLS_USE_PSA_CRYPTO" );
114 }
115
Gilles Peskinedef0e142022-03-14 19:05:48 +0100116 system( "CFLAGS='-Os -Werror -Wall -Wextra' make" ) and abort "Failed to build: $conf_name\n";
117 system( "make test" ) and abort "Failed test suite: $conf_name\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100118
119 my $compat = $data->{'compat'};
120 if( $compat )
121 {
Gilles Peskinedef0e142022-03-14 19:05:48 +0100122 print "\nrunning compat.sh $compat ($conf_name)\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100123 system( "tests/compat.sh $compat" )
Gilles Peskinedef0e142022-03-14 19:05:48 +0100124 and abort "Failed compat.sh: $conf_name\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100125 }
126 else
127 {
Gilles Peskinedef0e142022-03-14 19:05:48 +0100128 print "\nskipping compat.sh ($conf_name)\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100129 }
130
131 my $opt = $data->{'opt'};
132 if( $opt )
133 {
Gilles Peskinedcb13af2022-02-25 21:00:16 +0100134 if( $data->{'opt_needs_debug'} )
135 {
Gilles Peskinedef0e142022-03-14 19:05:48 +0100136 print "\nrebuilding with debug traces for ssl-opt ($conf_name)\n";
137 $conf_name .= '+DEBUG';
138 $ENV{MBEDTLS_TEST_CONFIGURATION} = $conf_name;
Gilles Peskinedcb13af2022-02-25 21:00:16 +0100139 system( "make clean" );
140 system( "scripts/config.py set MBEDTLS_DEBUG_C" );
141 system( "scripts/config.py set MBEDTLS_ERROR_C" );
Gilles Peskinedef0e142022-03-14 19:05:48 +0100142 system( "CFLAGS='-Os -Werror -Wall -Wextra' make" ) and abort "Failed to build: $conf_name\n";
Gilles Peskinedcb13af2022-02-25 21:00:16 +0100143 }
144
Gilles Peskinedef0e142022-03-14 19:05:48 +0100145 print "\nrunning ssl-opt.sh $opt ($conf_name)\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100146 system( "tests/ssl-opt.sh $opt" )
Gilles Peskinedef0e142022-03-14 19:05:48 +0100147 and abort "Failed ssl-opt.sh: $conf_name\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100148 }
149 else
150 {
Gilles Peskinedef0e142022-03-14 19:05:48 +0100151 print "\nskipping ssl-opt.sh ($conf_name)\n";
Gilles Peskine7dc97042020-02-26 19:48:43 +0100152 }
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +0200153}
154
Gilles Peskine20e25b92022-02-26 18:16:07 +0100155foreach my $conf ( @configs_to_test ) {
156 my $test_with_psa = $configs{$conf}{'test_again_with_use_psa'};
Andrzej Kurek19e83fa2022-01-17 16:05:43 +0100157 if ( $test_with_psa )
158 {
Gilles Peskine20e25b92022-02-26 18:16:07 +0100159 perform_test( $conf, $configs{$conf}, $test_with_psa );
Andrzej Kurek19e83fa2022-01-17 16:05:43 +0100160 }
Gilles Peskine20e25b92022-02-26 18:16:07 +0100161 perform_test( $conf, $configs{$conf}, 0 );
Andrzej Kurek19e83fa2022-01-17 16:05:43 +0100162}
163
Manuel Pégourié-Gonnard64985402013-09-20 16:22:42 +0200164system( "mv $config_h.bak $config_h" ) and warn "$config_h not restored\n";
165system( "make clean" );
166exit 0;