blob: 6a7a2d12a913b22721f9ddc375a2231ccbd23334 [file] [log] [blame]
Gilles Peskinee59236f2018-01-27 23:32:46 +01001/* BEGIN_HEADER */
2#include "psa/crypto.h"
Gilles Peskine8c9def32018-02-08 10:02:12 +01003
4#include "mbedtls/md.h"
Gilles Peskinee59236f2018-01-27 23:32:46 +01005/* END_HEADER */
6
7/* BEGIN_DEPENDENCIES
8 * depends_on:MBEDTLS_PSA_CRYPTO_C
9 * END_DEPENDENCIES
10 */
11
12/* BEGIN_CASE */
13void init_deinit()
14{
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010015 psa_status_t status;
Gilles Peskinee59236f2018-01-27 23:32:46 +010016 int i;
17 for( i = 0; i <= 1; i++ )
18 {
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010019 status = psa_crypto_init( );
20 TEST_ASSERT( status == PSA_SUCCESS );
21 status = psa_crypto_init( );
22 TEST_ASSERT( status == PSA_SUCCESS );
Gilles Peskinee59236f2018-01-27 23:32:46 +010023 mbedtls_psa_crypto_free( );
24 }
25}
26/* END_CASE */
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010027
28/* BEGIN_CASE */
29void import( char *hex, int type, int expected_status )
30{
31 int slot = 1;
32 psa_status_t status;
33 unsigned char *data = NULL;
34 size_t data_size;
35
Gilles Peskine40f68b92018-03-07 16:43:36 +010036 data = unhexify_alloc( hex, &data_size );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010037 TEST_ASSERT( data != NULL );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010038 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
39
40 status = psa_import_key( slot, type, data, data_size );
41 TEST_ASSERT( status == (psa_status_t) expected_status );
42 if( status == PSA_SUCCESS )
43 TEST_ASSERT( psa_destroy_key( slot ) == PSA_SUCCESS );
44
45exit:
46 mbedtls_free( data );
47 mbedtls_psa_crypto_free( );
48}
49/* END_CASE */
50
51/* BEGIN_CASE */
52void import_export( char *hex, int type_arg,
53 int expected_bits,
54 int export_size_delta,
55 int expected_export_status,
56 int canonical_input )
57{
58 int slot = 1;
59 int slot2 = slot + 1;
60 psa_key_type_t type = type_arg;
61 psa_status_t status;
62 unsigned char *data = NULL;
63 unsigned char *exported = NULL;
64 unsigned char *reexported = NULL;
65 size_t data_size;
66 size_t export_size;
67 size_t exported_length;
68 size_t reexported_length;
69 psa_key_type_t got_type;
70 size_t got_bits;
mohammad1603a97cb8c2018-03-28 03:46:26 -070071 psa_key_policy_t policy = {0};
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010072
Gilles Peskine40f68b92018-03-07 16:43:36 +010073 data = unhexify_alloc( hex, &data_size );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010074 TEST_ASSERT( data != NULL );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010075 export_size = (ssize_t) data_size + export_size_delta;
76 exported = mbedtls_calloc( 1, export_size );
77 TEST_ASSERT( exported != NULL );
78 if( ! canonical_input )
79 {
80 reexported = mbedtls_calloc( 1, export_size );
81 TEST_ASSERT( reexported != NULL );
82 }
83 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
84
mohammad1603a97cb8c2018-03-28 03:46:26 -070085 psa_key_policy_init( &policy );
86
87 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_EXPORT,
88 PSA_ALG_VENDOR_FLAG );
89
90 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
91
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010092 /* Import the key */
93 TEST_ASSERT( psa_import_key( slot, type,
94 data, data_size ) == PSA_SUCCESS );
95
96 /* Test the key information */
97 TEST_ASSERT( psa_get_key_information( slot,
98 &got_type, &got_bits ) ==
99 PSA_SUCCESS );
100 TEST_ASSERT( got_type == type );
101 TEST_ASSERT( got_bits == (size_t) expected_bits );
102
103 /* Export the key */
104 status = psa_export_key( slot,
105 exported, export_size,
106 &exported_length );
107 TEST_ASSERT( status == (psa_status_t) expected_export_status );
108 if( status != PSA_SUCCESS )
109 goto destroy;
110
111 if( canonical_input )
112 {
113 TEST_ASSERT( exported_length == data_size );
114 TEST_ASSERT( memcmp( exported, data, data_size ) == 0 );
115 }
116 else
117 {
mohammad1603a97cb8c2018-03-28 03:46:26 -0700118 TEST_ASSERT( psa_set_key_policy( slot2, &policy ) == PSA_SUCCESS );
119
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +0100120 TEST_ASSERT( psa_import_key( slot2, type,
121 exported, export_size ) ==
122 PSA_SUCCESS );
123 TEST_ASSERT( psa_export_key( slot2,
124 reexported, export_size,
125 &reexported_length ) ==
126 PSA_SUCCESS );
127 TEST_ASSERT( reexported_length == exported_length );
128 TEST_ASSERT( memcmp( reexported, exported,
129 exported_length ) == 0 );
130 }
131
132destroy:
133 /* Destroy the key */
134 TEST_ASSERT( psa_destroy_key( slot ) == PSA_SUCCESS );
135 TEST_ASSERT( psa_get_key_information(
136 slot, NULL, NULL ) == PSA_ERROR_EMPTY_SLOT );
137
138exit:
139 mbedtls_free( data );
140 mbedtls_psa_crypto_free( );
141}
142/* END_CASE */
Gilles Peskine20035e32018-02-03 22:44:14 +0100143
144/* BEGIN_CASE */
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100145void hash_finish( int alg_arg, char *input_hex, char *hash_hex )
146{
147 psa_algorithm_t alg = alg_arg;
148 unsigned char *input = NULL;
149 size_t input_size;
150 unsigned char expected_hash[MBEDTLS_MD_MAX_SIZE];
151 size_t expected_hash_length;
152 unsigned char actual_hash[MBEDTLS_MD_MAX_SIZE];
153 size_t actual_hash_length;
154 psa_hash_operation_t operation;
155
Gilles Peskine40f68b92018-03-07 16:43:36 +0100156 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100157 TEST_ASSERT( input != NULL );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100158 expected_hash_length = unhexify( expected_hash, hash_hex );
159
160 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
161
162 TEST_ASSERT( psa_hash_start( &operation, alg ) == PSA_SUCCESS );
163 TEST_ASSERT( psa_hash_update( &operation,
164 input, input_size ) == PSA_SUCCESS );
165 TEST_ASSERT( psa_hash_finish( &operation,
166 actual_hash, sizeof( actual_hash ),
167 &actual_hash_length ) == PSA_SUCCESS );
168 TEST_ASSERT( actual_hash_length == expected_hash_length );
169 TEST_ASSERT( memcmp( expected_hash, actual_hash,
170 expected_hash_length ) == 0 );
171
172exit:
173 mbedtls_free( input );
174 mbedtls_psa_crypto_free( );
175}
176/* END_CASE */
177
178/* BEGIN_CASE */
179void hash_verify( int alg_arg, char *input_hex, char *hash_hex )
180{
181 psa_algorithm_t alg = alg_arg;
182 unsigned char *input = NULL;
183 size_t input_size;
184 unsigned char expected_hash[MBEDTLS_MD_MAX_SIZE];
185 size_t expected_hash_length;
186 psa_hash_operation_t operation;
187
Gilles Peskine40f68b92018-03-07 16:43:36 +0100188 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100189 TEST_ASSERT( input != NULL );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100190 expected_hash_length = unhexify( expected_hash, hash_hex );
191
192 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
193
194 TEST_ASSERT( psa_hash_start( &operation, alg ) == PSA_SUCCESS );
195 TEST_ASSERT( psa_hash_update( &operation,
196 input, input_size ) == PSA_SUCCESS );
197 TEST_ASSERT( psa_hash_verify( &operation,
198 expected_hash,
199 expected_hash_length ) == PSA_SUCCESS );
200
201exit:
202 mbedtls_free( input );
203 mbedtls_psa_crypto_free( );
204}
205/* END_CASE */
206
207/* BEGIN_CASE */
Gilles Peskine8c9def32018-02-08 10:02:12 +0100208void mac_verify( int key_type_arg, char *key_hex,
209 int alg_arg, char *iv_hex,
210 char *input_hex, char *mac_hex )
211{
212 int key_slot = 1;
213 psa_key_type_t key_type = key_type_arg;
214 psa_algorithm_t alg = alg_arg;
215 unsigned char *key = NULL;
216 size_t key_size;
217 unsigned char *iv = NULL;
218 size_t iv_size;
219 unsigned char *input = NULL;
220 size_t input_size;
221 unsigned char *expected_mac = NULL;
222 size_t expected_mac_size;
223 psa_mac_operation_t operation;
mohammad16036df908f2018-04-02 08:34:15 -0700224 psa_key_policy_t policy;
Gilles Peskine8c9def32018-02-08 10:02:12 +0100225
Gilles Peskine40f68b92018-03-07 16:43:36 +0100226 key = unhexify_alloc( key_hex, &key_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100227 TEST_ASSERT( key != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100228 if( iv_hex[0] != 0 )
Gilles Peskine8c9def32018-02-08 10:02:12 +0100229 {
Gilles Peskine40f68b92018-03-07 16:43:36 +0100230 iv = unhexify_alloc( iv_hex, &iv_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100231 TEST_ASSERT( iv != NULL );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100232 }
Gilles Peskine40f68b92018-03-07 16:43:36 +0100233 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100234 TEST_ASSERT( input != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100235 expected_mac = unhexify_alloc( mac_hex, &expected_mac_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100236 TEST_ASSERT( expected_mac != NULL );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100237
238 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
239
mohammad16036df908f2018-04-02 08:34:15 -0700240 psa_key_policy_init( &policy );
241
242 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_VERIFY, alg_arg );
243
244 TEST_ASSERT( psa_set_key_policy( key_slot, &policy ) == PSA_SUCCESS );
245
Gilles Peskine8c9def32018-02-08 10:02:12 +0100246 TEST_ASSERT( psa_import_key( key_slot, key_type,
247 key, key_size ) == PSA_SUCCESS );
248 // TODO: support IV
249 TEST_ASSERT( psa_mac_start( &operation, key_slot, alg ) == PSA_SUCCESS );
250 TEST_ASSERT( psa_destroy_key( key_slot ) == PSA_SUCCESS );
251 TEST_ASSERT( psa_mac_update( &operation,
252 input, input_size ) == PSA_SUCCESS );
253 TEST_ASSERT( psa_mac_verify( &operation,
254 expected_mac,
255 expected_mac_size ) == PSA_SUCCESS );
256
257exit:
258 mbedtls_free( key );
259 mbedtls_free( iv );
260 mbedtls_free( input );
261 mbedtls_free( expected_mac );
262 psa_destroy_key( key_slot );
263 mbedtls_psa_crypto_free( );
264}
265/* END_CASE */
266
267/* BEGIN_CASE */
Gilles Peskine0189e752018-02-03 23:57:22 +0100268void signature_size( int type_arg, int bits, int alg_arg, int expected_size_arg )
269{
270 psa_key_type_t type = type_arg;
271 psa_algorithm_t alg = alg_arg;
272 size_t actual_size = PSA_ASYMMETRIC_SIGN_OUTPUT_SIZE(type, bits, alg);
273 TEST_ASSERT( actual_size == (size_t) expected_size_arg );
274exit:
275 ;
276}
277/* END_CASE */
278
279/* BEGIN_CASE */
Gilles Peskine20035e32018-02-03 22:44:14 +0100280void sign_deterministic( int key_type_arg, char *key_hex,
281 int alg_arg, char *input_hex, char *output_hex )
282{
283 int slot = 1;
284 psa_key_type_t key_type = key_type_arg;
285 psa_algorithm_t alg = alg_arg;
286 unsigned char *key_data = NULL;
287 size_t key_size;
Gilles Peskine0189e752018-02-03 23:57:22 +0100288 size_t key_bits;
Gilles Peskine20035e32018-02-03 22:44:14 +0100289 unsigned char *input_data = NULL;
290 size_t input_size;
291 unsigned char *output_data = NULL;
292 size_t output_size;
Gilles Peskine0189e752018-02-03 23:57:22 +0100293 unsigned char *signature = NULL;
294 size_t signature_size;
Gilles Peskine93aa0332018-02-03 23:58:03 +0100295 size_t signature_length = 0xdeadbeef;
mohammad1603a97cb8c2018-03-28 03:46:26 -0700296 psa_key_policy_t policy = {0};
Gilles Peskine20035e32018-02-03 22:44:14 +0100297
Gilles Peskine40f68b92018-03-07 16:43:36 +0100298 key_data = unhexify_alloc( key_hex, &key_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100299 TEST_ASSERT( key_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100300 input_data = unhexify_alloc( input_hex, &input_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100301 TEST_ASSERT( input_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100302 output_data = unhexify_alloc( output_hex, &output_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100303 TEST_ASSERT( output_data != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100304
305 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
306
mohammad1603a97cb8c2018-03-28 03:46:26 -0700307 psa_key_policy_init( &policy );
308
309 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_SIGN, alg_arg );
310
311 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
312
Gilles Peskine20035e32018-02-03 22:44:14 +0100313 TEST_ASSERT( psa_import_key( slot, key_type,
314 key_data, key_size ) == PSA_SUCCESS );
Gilles Peskine0189e752018-02-03 23:57:22 +0100315 TEST_ASSERT( psa_get_key_information( slot,
316 NULL,
317 &key_bits ) == PSA_SUCCESS );
318
319 signature_size = PSA_ASYMMETRIC_SIGN_OUTPUT_SIZE( key_type, alg, key_bits );
320 TEST_ASSERT( signature_size != 0 );
321 signature = mbedtls_calloc( 1, signature_size );
322 TEST_ASSERT( signature != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100323
324 TEST_ASSERT( psa_asymmetric_sign( slot, alg,
325 input_data, input_size,
326 NULL, 0,
Gilles Peskine0189e752018-02-03 23:57:22 +0100327 signature, signature_size,
Gilles Peskine20035e32018-02-03 22:44:14 +0100328 &signature_length ) == PSA_SUCCESS );
329 TEST_ASSERT( signature_length == output_size );
330 TEST_ASSERT( memcmp( signature, output_data, output_size ) == 0 );
331
332exit:
333 psa_destroy_key( slot );
334 mbedtls_free( key_data );
335 mbedtls_free( input_data );
336 mbedtls_free( output_data );
Gilles Peskine0189e752018-02-03 23:57:22 +0100337 mbedtls_free( signature );
Gilles Peskine20035e32018-02-03 22:44:14 +0100338 mbedtls_psa_crypto_free( );
339}
340/* END_CASE */
341
342/* BEGIN_CASE */
343void sign_fail( int key_type_arg, char *key_hex,
344 int alg_arg, char *input_hex,
345 int signature_size, int expected_status_arg )
346{
347 int slot = 1;
348 psa_key_type_t key_type = key_type_arg;
349 psa_algorithm_t alg = alg_arg;
350 unsigned char *key_data = NULL;
351 size_t key_size;
352 unsigned char *input_data = NULL;
353 size_t input_size;
354 psa_status_t actual_status;
355 psa_status_t expected_status = expected_status_arg;
Gilles Peskine40f68b92018-03-07 16:43:36 +0100356 unsigned char *signature = NULL;
Gilles Peskine93aa0332018-02-03 23:58:03 +0100357 size_t signature_length = 0xdeadbeef;
mohammad1603a97cb8c2018-03-28 03:46:26 -0700358 psa_key_policy_t policy = {0};
Gilles Peskine20035e32018-02-03 22:44:14 +0100359
Gilles Peskine40f68b92018-03-07 16:43:36 +0100360 key_data = unhexify_alloc( key_hex, &key_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100361 TEST_ASSERT( key_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100362 input_data = unhexify_alloc( input_hex, &input_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100363 TEST_ASSERT( input_data != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100364 signature = mbedtls_calloc( 1, signature_size );
365 TEST_ASSERT( signature != NULL );
366
367 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
368
mohammad1603a97cb8c2018-03-28 03:46:26 -0700369 psa_key_policy_init( &policy );
370
371 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_SIGN, alg_arg );
372
373 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
374
Gilles Peskine20035e32018-02-03 22:44:14 +0100375 TEST_ASSERT( psa_import_key( slot, key_type,
376 key_data, key_size ) == PSA_SUCCESS );
377
378 actual_status = psa_asymmetric_sign( slot, alg,
379 input_data, input_size,
380 NULL, 0,
381 signature, signature_size,
382 &signature_length );
383 TEST_ASSERT( actual_status == expected_status );
Gilles Peskine93aa0332018-02-03 23:58:03 +0100384 TEST_ASSERT( signature_length == 0 );
Gilles Peskine20035e32018-02-03 22:44:14 +0100385
386exit:
387 psa_destroy_key( slot );
388 mbedtls_free( key_data );
389 mbedtls_free( input_data );
390 mbedtls_free( signature );
391 mbedtls_psa_crypto_free( );
392}
393/* END_CASE */
mohammad16038cc1cee2018-03-28 01:21:33 +0300394
395/* BEGIN_CASE */
396void key_policy( int usage_arg, int alg_arg )
397{
398 int key_slot = 1;
mohammad16034eed7572018-03-28 05:14:59 -0700399 psa_key_type_t key_type = PSA_KEY_TYPE_AES;
mohammad16038cc1cee2018-03-28 01:21:33 +0300400 unsigned char key[32] = {0};
401 psa_key_policy_t policy_set = {0};
402 psa_key_policy_t policy_get = {0};
403
mohammad1603804cd712018-03-20 22:44:08 +0200404
mohammad16038cc1cee2018-03-28 01:21:33 +0300405 memset( key, 0x2a, sizeof( key ) );
406
407 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
408
409 psa_key_policy_init(& policy_set );
410 psa_key_policy_init(& policy_get );
411
412 psa_key_policy_set_usage( &policy_set, usage_arg, alg_arg );
413
414 TEST_ASSERT( psa_key_policy_get_usage( &policy_set ) == ( psa_key_usage_t )usage_arg );
415
416 TEST_ASSERT( psa_key_policy_get_algorithm( &policy_set) == ( psa_algorithm_t )alg_arg );
417
418 TEST_ASSERT( psa_set_key_policy( key_slot, &policy_set ) == PSA_SUCCESS );
419
420 TEST_ASSERT( psa_import_key( key_slot, key_type,
421 key, sizeof( key ) ) == PSA_SUCCESS );
422
423 TEST_ASSERT( psa_get_key_policy( key_slot, &policy_get ) == PSA_SUCCESS );
424
425 TEST_ASSERT( policy_get.usage == policy_set.usage );
426 TEST_ASSERT( policy_get.alg == policy_set.alg );
427
Gilles Peskinea0655c32018-04-30 17:06:50 +0200428
429
mohammad1603804cd712018-03-20 22:44:08 +0200430
mohammad16038cc1cee2018-03-28 01:21:33 +0300431exit:
432 psa_destroy_key( key_slot );
433 mbedtls_psa_crypto_free( );
434}
435/* END_CASE */
436
mohammad16034eed7572018-03-28 05:14:59 -0700437/* BEGIN_CASE */
438void key_policy_fail( int usage_arg, int alg_arg, int expected_status, char *key_hex )
439{
440 int key_slot = 1;
mohammad16034eed7572018-03-28 05:14:59 -0700441 unsigned char* keypair = NULL;
442 size_t key_size = 0;
443 size_t signature_length = 0;
444 psa_key_policy_t policy = {0};
445 int actual_status = PSA_SUCCESS;
mohammad16034eed7572018-03-28 05:14:59 -0700446
447 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
448
449 psa_key_policy_init( &policy );
450
451 psa_key_policy_set_usage( &policy, usage_arg, alg_arg );
452
453 TEST_ASSERT( psa_set_key_policy( key_slot, &policy ) == PSA_SUCCESS );
454
mohammad16036df908f2018-04-02 08:34:15 -0700455 if( usage_arg & PSA_KEY_USAGE_EXPORT )
mohammad16034eed7572018-03-28 05:14:59 -0700456 {
mohammad16036df908f2018-04-02 08:34:15 -0700457 keypair = unhexify_alloc( key_hex, &key_size );
458 TEST_ASSERT( keypair != NULL );
459 TEST_ASSERT( psa_import_key( key_slot, PSA_KEY_TYPE_RSA_KEYPAIR,
460 keypair, key_size ) == PSA_SUCCESS );
461 actual_status = psa_asymmetric_sign( key_slot,
462 ( psa_algorithm_t )alg_arg, NULL, 0, NULL, 0,
463 NULL, 0, &signature_length );
464 }
465
466 if( usage_arg & PSA_KEY_USAGE_SIGN )
467 {
mohammad1603d926b882018-04-16 01:53:20 -0700468 keypair = unhexify_alloc( key_hex, &key_size );
469 TEST_ASSERT( keypair != NULL );
mohammad16036df908f2018-04-02 08:34:15 -0700470 TEST_ASSERT( psa_import_key( key_slot, PSA_KEY_TYPE_RSA_KEYPAIR,
mohammad1603d926b882018-04-16 01:53:20 -0700471 keypair, key_size ) == PSA_SUCCESS );
mohammad16036df908f2018-04-02 08:34:15 -0700472 actual_status = psa_export_key( key_slot, NULL, 0, NULL );
mohammad16034eed7572018-03-28 05:14:59 -0700473 }
474
475 TEST_ASSERT( actual_status == expected_status );
476
477exit:
478 psa_destroy_key( key_slot );
mohammad1603d926b882018-04-16 01:53:20 -0700479 mbedtls_free( keypair );
mohammad16034eed7572018-03-28 05:14:59 -0700480 mbedtls_psa_crypto_free( );
481}
482/* END_CASE */
Gilles Peskinea0655c32018-04-30 17:06:50 +0200483
484/* BEGIN_CASE */
485void key_lifetime( int lifetime_arg )
486{
487 int key_slot = 1;
488 psa_key_type_t key_type = PSA_ALG_CBC_BASE;
489 unsigned char key[32] = {0};
490 psa_key_lifetime_t lifetime_set = (psa_key_lifetime_t) lifetime_arg;
491 psa_key_lifetime_t lifetime_get;
492 memset( key, 0x2a, sizeof( key ) );
493 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
494 TEST_ASSERT( psa_set_key_lifetime( key_slot,
495 lifetime_set ) == PSA_SUCCESS );
496 TEST_ASSERT( psa_import_key( key_slot, key_type,
497 key, sizeof( key ) ) == PSA_SUCCESS );
498 TEST_ASSERT( psa_get_key_lifetime( key_slot,
499 &lifetime_get ) == PSA_SUCCESS );
500 TEST_ASSERT( lifetime_get == lifetime_set );
501exit:
502 psa_destroy_key( key_slot );
503 mbedtls_psa_crypto_free( );
504}
505/* END_CASE */
mohammad1603804cd712018-03-20 22:44:08 +0200506
507/* BEGIN_CASE */
508void key_lifetime_set_fail( int key_slot_arg, int lifetime_arg, int expected_status_arg )
509{
510 int key_slot = 1;
mohammad1603804cd712018-03-20 22:44:08 +0200511 psa_key_lifetime_t lifetime_set = (psa_key_lifetime_t) lifetime_arg;
512 psa_status_t actual_status;
513 psa_status_t expected_status = expected_status_arg;
514
mohammad1603804cd712018-03-20 22:44:08 +0200515 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
516
mohammad1603804cd712018-03-20 22:44:08 +0200517 actual_status = psa_set_key_lifetime( key_slot_arg, lifetime_set );
518
519 if( actual_status == PSA_SUCCESS )
520 actual_status = psa_set_key_lifetime( key_slot_arg, lifetime_set );
521
522 TEST_ASSERT( expected_status == actual_status );
523
524exit:
mohammad1603804cd712018-03-20 22:44:08 +0200525 psa_destroy_key( key_slot );
526 mbedtls_psa_crypto_free( );
527}
528/* END_CASE */
mohammad1603d7d7ba52018-03-12 18:51:53 +0200529
530* BEGIN_CASE */
mohammad1603e6b67a12018-03-12 10:38:49 -0700531void cipher_test_positive( int alg_arg, int key_type_arg,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200532 char *key_hex,
533 char *input_hex )
534{
535 int key_slot = 1;
536 psa_key_type_t key_type = key_type_arg;
537 psa_algorithm_t alg = alg_arg;
538 unsigned char *key = NULL;
539 size_t key_size;
mohammad1603e6b67a12018-03-12 10:38:49 -0700540 unsigned char iv[16] = {0};
mohammad1603d7d7ba52018-03-12 18:51:53 +0200541 unsigned char *input = NULL;
542 size_t input_size = 0;
mohammad1603b152d4d2018-04-11 23:51:20 -0700543 unsigned char *output;
544 unsigned char *expected_output;
mohammad1603d7d7ba52018-03-12 18:51:53 +0200545 size_t output_size = 0;
546 size_t output_length = 0;
547 psa_cipher_operation_t operation;
548
Moran Peker3205a652018-03-20 17:09:59 +0200549
mohammad1603d7d7ba52018-03-12 18:51:53 +0200550 key = unhexify_alloc( key_hex, &key_size );
551 TEST_ASSERT( key != NULL );
552
553 input = unhexify_alloc( input_hex, &input_size );
554 TEST_ASSERT( input != NULL );
mohammad1603b152d4d2018-04-11 23:51:20 -0700555
556 expected_output = unhexify_alloc( output_hex, &output_size );
557 TEST_ASSERT( expected_output != NULL );
558
559 memset( iv, 0x2a, sizeof( iv ) );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200560
561 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
562
563 TEST_ASSERT( psa_import_key( key_slot, key_type,
564 key, key_size ) == PSA_SUCCESS );
565
Moran Peker3205a652018-03-20 17:09:59 +0200566 TEST_ASSERT( psa_encrypt_setup( &operation, key_slot, alg ) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200567
mohammad1603b152d4d2018-04-11 23:51:20 -0700568 TEST_ASSERT( psa_encrypt_set_iv( &operation, iv,
569 sizeof( iv ) ) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200570
Moran Pekerf55e8042018-05-29 16:28:28 +0300571 output = mbedtls_calloc(0, output_size);
mohammad1603d7d7ba52018-03-12 18:51:53 +0200572
573 TEST_ASSERT( psa_cipher_update( &operation, input, input_size,
574 output, output_size,
575 &output_length) == PSA_SUCCESS );
Moran Pekerf55e8042018-05-29 16:28:28 +0300576 TEST_ASSERT( psa_cipher_finish( &operation, output + output_length,
Moran Peker0071b872018-04-22 20:16:58 +0300577 output_size, &output_length) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200578
mohammad1603e6b67a12018-03-12 10:38:49 -0700579 TEST_ASSERT( psa_cipher_abort( &operation ) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200580
mohammad1603b152d4d2018-04-11 23:51:20 -0700581 TEST_ASSERT( input_size == output_size );
582 TEST_ASSERT( memcmp( expected_output, output, output_size ) == 0 );
583
mohammad1603d7d7ba52018-03-12 18:51:53 +0200584exit:
585 mbedtls_free( key );
586 mbedtls_free( input );
587 psa_destroy_key( key_slot );
588 mbedtls_psa_crypto_free( );
589}
590/* END_CASE */
591
Moran Peker96cc00a2018-05-31 14:03:56 +0300592/* BEGIN_CASE */
593void cipher_test_encrypt( int alg_arg, int key_type_arg,
594 char *key_hex,
595 char *input_hex, char *output_hex )
596{
597 int key_slot = 1;
598 psa_key_type_t key_type = key_type_arg;
599 psa_algorithm_t alg = alg_arg;
600 unsigned char *key = NULL;
601 size_t key_size;
602 unsigned char iv[16] = {0};
603 unsigned char *input = NULL;
604 size_t input_size = 0;
605 unsigned char *output;
606 unsigned char *expected_output;
607 size_t output_size = 0;
608 size_t output_length = 0;
609 psa_cipher_operation_t operation;
610
611
612 key = unhexify_alloc( key_hex, &key_size );
613 TEST_ASSERT( key != NULL );
614
615 input = unhexify_alloc( input_hex, &input_size );
616 TEST_ASSERT( input != NULL );
617
618 expected_output = unhexify_alloc( output_hex, &output_size );
619 TEST_ASSERT( expected_output != NULL );
620
621 memset( iv, 0x2a, sizeof( iv ) );
622
623 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
624
625 TEST_ASSERT( psa_import_key( key_slot, key_type,
626 key, key_size ) == PSA_SUCCESS );
627
628 TEST_ASSERT( psa_encrypt_setup( &operation, key_slot, alg ) == PSA_SUCCESS );
629
630 TEST_ASSERT( psa_encrypt_set_iv( &operation, iv,
631 sizeof( iv ) ) == PSA_SUCCESS );
632
633 output = mbedtls_calloc(0, output_size);
634
635 TEST_ASSERT( psa_cipher_update( &operation, input, input_size,
636 output, output_size,
637 &output_length) == PSA_SUCCESS );
638 TEST_ASSERT( psa_cipher_finish( &operation, output + output_length,
639 output_size, &output_length) == PSA_SUCCESS );
640
641 TEST_ASSERT( psa_cipher_abort( &operation ) == PSA_SUCCESS );
642
643 TEST_ASSERT( input_size == output_size );
644 TEST_ASSERT( memcmp( expected_output, output, output_size ) == 0 );
645
646exit:
647 mbedtls_free( key );
648 mbedtls_free( input );
649 psa_destroy_key( key_slot );
650 mbedtls_psa_crypto_free( );
651}
652/* END_CASE */
mohammad1603b152d4d2018-04-11 23:51:20 -0700653
654/* BEGIN_CASE */
655void cipher_test_decrypt( int alg_arg, int key_type_arg,
656 char *key_hex,
657 char *input_hex, char *output_hex )
658{
659 int key_slot = 1;
660 psa_key_type_t key_type = key_type_arg;
661 psa_algorithm_t alg = alg_arg;
662 unsigned char *key = NULL;
663 size_t key_size;
664 unsigned char iv[16] = {0};
665 unsigned char *input = NULL;
666 size_t input_size = 0;
667 unsigned char *output;
668 unsigned char *expected_output;
669 size_t output_size = 0;
670 size_t output_length = 0;
671 psa_cipher_operation_t operation;
672
673
674 key = unhexify_alloc( key_hex, &key_size );
675 TEST_ASSERT( key != NULL );
676
677 input = unhexify_alloc( input_hex, &input_size );
678 TEST_ASSERT( input != NULL );
679
680 expected_output = unhexify_alloc( output_hex, &output_size );
681 TEST_ASSERT( expected_output != NULL );
682
683 memset( iv, 0x2a, sizeof( iv ) );
684
685 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
686
687 TEST_ASSERT( psa_import_key( key_slot, key_type,
688 key, key_size ) == PSA_SUCCESS );
689
690 TEST_ASSERT( psa_decrypt_setup( &operation, key_slot, alg ) == PSA_SUCCESS );
691
692 TEST_ASSERT( psa_encrypt_set_iv( &operation, iv,
693 sizeof( iv ) ) == PSA_SUCCESS );
694
Moran Pekerf55e8042018-05-29 16:28:28 +0300695 output = mbedtls_calloc(0, output_size);
mohammad1603b152d4d2018-04-11 23:51:20 -0700696
697 TEST_ASSERT( psa_cipher_update( &operation, input, input_size,
698 output, output_size,
699 &output_length) == PSA_SUCCESS );
Moran Pekerf55e8042018-05-29 16:28:28 +0300700 TEST_ASSERT( psa_cipher_finish( &operation, output + output_length,
Moran Peker0071b872018-04-22 20:16:58 +0300701 output_size, &output_length) == PSA_SUCCESS );
mohammad1603b152d4d2018-04-11 23:51:20 -0700702
703 TEST_ASSERT( psa_cipher_abort( &operation ) == PSA_SUCCESS );
704
705 TEST_ASSERT( input_size == output_size );
706 TEST_ASSERT( memcmp( expected_output, output, output_size ) == 0 );
707
708exit:
709 mbedtls_free( key );
710 mbedtls_free( input );
711 psa_destroy_key( key_slot );
712 mbedtls_psa_crypto_free( );
713}
714/* END_CASE */
715
716
mohammad1603d7d7ba52018-03-12 18:51:53 +0200717/* BEGIN_CASE */
mohammad1603e6b67a12018-03-12 10:38:49 -0700718void cipher_test_verify_output( int alg_arg, int key_type_arg,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200719 char *key_hex,
720 char *input_hex )
721{
722 int key_slot = 1;
723 psa_key_type_t key_type = key_type_arg;
724 psa_algorithm_t alg = alg_arg;
725 unsigned char *key = NULL;
726 size_t key_size;
mohammad1603e6b67a12018-03-12 10:38:49 -0700727 unsigned char iv[16] = {0};
mohammad1603d7d7ba52018-03-12 18:51:53 +0200728 size_t iv_size = 16;
729 size_t iv_length = 0;
730 unsigned char *input = NULL;
731 size_t input_size = 0;
Moran Peker3205a652018-03-20 17:09:59 +0200732 unsigned char *output1;
mohammad1603d7d7ba52018-03-12 18:51:53 +0200733 size_t output1_size = 0;
734 size_t output1_length = 0;
Moran Peker3205a652018-03-20 17:09:59 +0200735 unsigned char *output2;
mohammad1603d7d7ba52018-03-12 18:51:53 +0200736 size_t output2_size = 0;
737 size_t output2_length = 0;
738 size_t tmp_output_length = 0;
739 psa_cipher_operation_t operation1;
740 psa_cipher_operation_t operation2;
741
742 key = unhexify_alloc( key_hex, &key_size );
743 TEST_ASSERT( key != NULL );
744
745 input = unhexify_alloc( input_hex, &input_size );
746 TEST_ASSERT( input != NULL );
747
748 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
749
750 TEST_ASSERT( psa_import_key( key_slot, key_type,
751 key, key_size ) == PSA_SUCCESS );
752
Moran Pekerf55e8042018-05-29 16:28:28 +0300753 TEST_ASSERT( psa_encrypt_setup( &operation1, key_slot, alg ) == PSA_SUCCESS );
754 TEST_ASSERT( psa_decrypt_setup( &operation2, key_slot, alg ) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200755
mohammad16038481e742018-03-18 13:57:31 +0200756 TEST_ASSERT( psa_encrypt_generate_iv( &operation1, iv,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200757 iv_size, &iv_length) == PSA_SUCCESS );
Moran Pekerf55e8042018-05-29 16:28:28 +0300758 output1_size = input_size;
759 output1 = mbedtls_calloc(0, output1_size);
mohammad1603d7d7ba52018-03-12 18:51:53 +0200760 TEST_ASSERT( psa_cipher_update( &operation1, input, input_size,
761 output1, output1_size,
762 &output1_length) == PSA_SUCCESS );
Moran Pekerf55e8042018-05-29 16:28:28 +0300763 TEST_ASSERT( psa_cipher_finish( &operation1, output1 + output1_length,
764 output1_size, &tmp_output_length) == PSA_SUCCESS );
Moran Peker3205a652018-03-20 17:09:59 +0200765
mohammad1603d7d7ba52018-03-12 18:51:53 +0200766 output1_length += tmp_output_length;
767
768 TEST_ASSERT( psa_cipher_abort( &operation1 ) == PSA_SUCCESS );
769
Moran Pekerf55e8042018-05-29 16:28:28 +0300770 output2_size = output1_length;
771 output2 = mbedtls_calloc(0, output2_size);
mohammad1603d7d7ba52018-03-12 18:51:53 +0200772
Moran Pekerf55e8042018-05-29 16:28:28 +0300773 TEST_ASSERT( psa_encrypt_set_iv( &operation2, iv,
774 iv_length) == PSA_SUCCESS );
mohammad1603e6b67a12018-03-12 10:38:49 -0700775 TEST_ASSERT( psa_cipher_update( &operation2, output1, output1_length,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200776 output2, output2_size, &output2_length) == PSA_SUCCESS );
777 tmp_output_length = 0;
Moran Pekerf55e8042018-05-29 16:28:28 +0300778 TEST_ASSERT( psa_cipher_finish( &operation2, output2 + output2_length,
779 output2_size, &tmp_output_length) == PSA_SUCCESS );
780
781 output2_length += tmp_output_length;
mohammad1603d7d7ba52018-03-12 18:51:53 +0200782
783 TEST_ASSERT( psa_cipher_abort( &operation1 ) == PSA_SUCCESS );
784
785 TEST_ASSERT( input_size == output1_length );
786 TEST_ASSERT( output1_length == output2_length );
mohammad1603e6b67a12018-03-12 10:38:49 -0700787 TEST_ASSERT( memcmp( input, output2, input_size ) == 0 );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200788
789exit:
790 mbedtls_free( key );
791 mbedtls_free( input );
792 psa_destroy_key( key_slot );
793 mbedtls_psa_crypto_free( );
794}
795/* END_CASE */