blob: 62c5de2d428de4d30035c92dece25bdfa262dbf7 [file] [log] [blame]
Paul Bakker33b43f12013-08-20 11:48:36 +02001/* BEGIN_HEADER */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +01002#include <polarssl/ecp.h>
Paul Bakkerdbd443d2013-08-16 13:38:47 +02003
4#define POLARSSL_ECP_PF_UNKNOWN -1
Paul Bakker33b43f12013-08-20 11:48:36 +02005/* END_HEADER */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +01006
Paul Bakker33b43f12013-08-20 11:48:36 +02007/* BEGIN_DEPENDENCIES
Manuel Pégourié-Gonnarda0f07472013-08-23 16:35:32 +02008 * depends_on:POLARSSL_ECP_C
Paul Bakker33b43f12013-08-20 11:48:36 +02009 * END_DEPENDENCIES
10 */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010011
Paul Bakker33b43f12013-08-20 11:48:36 +020012/* BEGIN_CASE */
13void ecp_small_add( int a_zero, char *x_a, char *y_a, int b_zero, char *x_b,
14 char *y_b, int c_zero, int x_c, int y_c )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010015{
16 ecp_group grp;
17 ecp_point A, B, C;
18
19 ecp_group_init( &grp );
20 ecp_point_init( &A ); ecp_point_init( &B ); ecp_point_init( &C );
21
22 TEST_ASSERT( ecp_group_read_string( &grp, 10,
23 "47", "4", "17", "42", "13" ) == 0 );
24
Paul Bakker33b43f12013-08-20 11:48:36 +020025 if( a_zero )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010026 ecp_set_zero( &A );
27 else
Paul Bakker33b43f12013-08-20 11:48:36 +020028 TEST_ASSERT( ecp_point_read_string( &A, 10, x_a, y_a ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010029
Paul Bakker33b43f12013-08-20 11:48:36 +020030 if( b_zero )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010031 ecp_set_zero( &B );
32 else
Paul Bakker33b43f12013-08-20 11:48:36 +020033 TEST_ASSERT( ecp_point_read_string( &B, 10, x_b, y_b ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010034
35 TEST_ASSERT( ecp_add( &grp, &C, &A, &B ) == 0 );
36
Paul Bakker33b43f12013-08-20 11:48:36 +020037 if( c_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +010038 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010039 else
40 {
Paul Bakker33b43f12013-08-20 11:48:36 +020041 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
42 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010043 }
44
45 TEST_ASSERT( ecp_add( &grp, &C, &B, &A ) == 0 );
46
Paul Bakker33b43f12013-08-20 11:48:36 +020047 if( c_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +010048 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010049 else
50 {
Paul Bakker33b43f12013-08-20 11:48:36 +020051 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
52 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010053 }
54
55 ecp_group_free( &grp );
56 ecp_point_free( &A ); ecp_point_free( &B ); ecp_point_free( &C );
57}
Paul Bakker33b43f12013-08-20 11:48:36 +020058/* END_CASE */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +010059
Paul Bakker33b43f12013-08-20 11:48:36 +020060/* BEGIN_CASE */
61void ecp_small_sub( int a_zero, char *x_a, char *y_a, int b_zero, char *x_b,
62 char *y_b, int c_zero, int x_c, int y_c )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010063{
64 ecp_group grp;
65 ecp_point A, B, C;
66
67 ecp_group_init( &grp );
68 ecp_point_init( &A ); ecp_point_init( &B ); ecp_point_init( &C );
69
70 TEST_ASSERT( ecp_group_read_string( &grp, 10,
71 "47", "4", "17", "42", "13" ) == 0 );
72
Paul Bakker33b43f12013-08-20 11:48:36 +020073 if( a_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010074 ecp_set_zero( &A );
75 else
Paul Bakker33b43f12013-08-20 11:48:36 +020076 TEST_ASSERT( ecp_point_read_string( &A, 10, x_a, y_a ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010077
Paul Bakker33b43f12013-08-20 11:48:36 +020078 if( b_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010079 ecp_set_zero( &B );
80 else
Paul Bakker33b43f12013-08-20 11:48:36 +020081 TEST_ASSERT( ecp_point_read_string( &B, 10, x_b, y_b ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010082
83 TEST_ASSERT( ecp_sub( &grp, &C, &A, &B ) == 0 );
84
Paul Bakker33b43f12013-08-20 11:48:36 +020085 if( c_zero )
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010086 TEST_ASSERT( mpi_cmp_int( &C.Z, 0 ) == 0 );
87 else
88 {
Paul Bakker33b43f12013-08-20 11:48:36 +020089 TEST_ASSERT( mpi_cmp_int( &C.X, x_c ) == 0 );
90 TEST_ASSERT( mpi_cmp_int( &C.Y, y_c ) == 0 );
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010091 }
92
93 ecp_group_free( &grp );
94 ecp_point_free( &A ); ecp_point_free( &B ); ecp_point_free( &C );
95}
Paul Bakker33b43f12013-08-20 11:48:36 +020096/* END_CASE */
Manuel Pégourié-Gonnard9674fd02012-11-19 21:23:27 +010097
Paul Bakker33b43f12013-08-20 11:48:36 +020098/* BEGIN_CASE */
99void ecp_small_mul( int m_str, int r_zero, int x_r, int y_r, int ret )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100100{
101 ecp_group grp;
102 ecp_point R;
103 mpi m;
104
105 ecp_group_init( &grp );
106 ecp_point_init( &R );
107 mpi_init( &m );
108
109 TEST_ASSERT( ecp_group_read_string( &grp, 10,
110 "47", "4", "17", "42", "13" ) == 0 );
111
Paul Bakker33b43f12013-08-20 11:48:36 +0200112 TEST_ASSERT( mpi_lset( &m, m_str ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100113
Paul Bakker33b43f12013-08-20 11:48:36 +0200114 TEST_ASSERT( ecp_mul( &grp, &R, &m, &grp.G ) == ret );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100115
Paul Bakker33b43f12013-08-20 11:48:36 +0200116 if( r_zero )
Manuel Pégourié-Gonnard1c2782c2012-11-19 20:16:28 +0100117 TEST_ASSERT( mpi_cmp_int( &R.Z, 0 ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100118 else
119 {
Paul Bakker33b43f12013-08-20 11:48:36 +0200120 TEST_ASSERT( mpi_cmp_int( &R.X, x_r ) == 0 );
121 TEST_ASSERT( mpi_cmp_int( &R.Y, y_r ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100122 }
123
124 ecp_group_free( &grp );
125 ecp_point_free( &R );
126 mpi_free( &m );
127}
Paul Bakker33b43f12013-08-20 11:48:36 +0200128/* END_CASE */
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100129
Paul Bakker33b43f12013-08-20 11:48:36 +0200130/* BEGIN_CASE */
131void ecp_small_check_pub( int x, int y, int z, int ret )
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100132{
133 ecp_group grp;
134 ecp_point P;
135
136 ecp_group_init( &grp );
137 ecp_point_init( &P );
138
139 TEST_ASSERT( ecp_group_read_string( &grp, 10,
140 "47", "4", "17", "42", "13" ) == 0 );
141
Paul Bakker33b43f12013-08-20 11:48:36 +0200142 TEST_ASSERT( mpi_lset( &P.X, x ) == 0 );
143 TEST_ASSERT( mpi_lset( &P.Y, y ) == 0 );
144 TEST_ASSERT( mpi_lset( &P.Z, z ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100145
Paul Bakker33b43f12013-08-20 11:48:36 +0200146 TEST_ASSERT( ecp_check_pubkey( &grp, &P ) == ret );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100147
148 ecp_group_free( &grp );
149 ecp_point_free( &P );
150}
Paul Bakker33b43f12013-08-20 11:48:36 +0200151/* END_CASE */
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100152
Paul Bakker33b43f12013-08-20 11:48:36 +0200153/* BEGIN_CASE */
154void ecp_test_vect( int id, char *dA_str, char *xA_str, char *yA_str,
155 char *dB_str, char *xB_str, char *yB_str, char *xZ_str,
156 char *yZ_str )
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100157{
158 ecp_group grp;
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100159 ecp_point R;
160 mpi dA, xA, yA, dB, xB, yB, xZ, yZ;
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100161
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100162 ecp_group_init( &grp ); ecp_point_init( &R );
163 mpi_init( &dA ); mpi_init( &xA ); mpi_init( &yA ); mpi_init( &dB );
164 mpi_init( &xB ); mpi_init( &yB ); mpi_init( &xZ ); mpi_init( &yZ );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100165
Paul Bakker33b43f12013-08-20 11:48:36 +0200166 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100167
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100168 TEST_ASSERT( ecp_check_pubkey( &grp, &grp.G ) == 0 );
169
Paul Bakker33b43f12013-08-20 11:48:36 +0200170 TEST_ASSERT( mpi_read_string( &dA, 16, dA_str ) == 0 );
171 TEST_ASSERT( mpi_read_string( &xA, 16, xA_str ) == 0 );
172 TEST_ASSERT( mpi_read_string( &yA, 16, yA_str ) == 0 );
173 TEST_ASSERT( mpi_read_string( &dB, 16, dB_str ) == 0 );
174 TEST_ASSERT( mpi_read_string( &xB, 16, xB_str ) == 0 );
175 TEST_ASSERT( mpi_read_string( &yB, 16, yB_str ) == 0 );
176 TEST_ASSERT( mpi_read_string( &xZ, 16, xZ_str ) == 0 );
177 TEST_ASSERT( mpi_read_string( &yZ, 16, yZ_str ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100178
179 TEST_ASSERT( ecp_mul( &grp, &R, &dA, &grp.G ) == 0 );
180 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xA ) == 0 );
181 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yA ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100182 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100183 TEST_ASSERT( ecp_mul( &grp, &R, &dB, &R ) == 0 );
184 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xZ ) == 0 );
185 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yZ ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100186 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100187
188 TEST_ASSERT( ecp_mul( &grp, &R, &dB, &grp.G ) == 0 );
189 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xB ) == 0 );
190 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yB ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100191 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100192 TEST_ASSERT( ecp_mul( &grp, &R, &dA, &R ) == 0 );
193 TEST_ASSERT( mpi_cmp_mpi( &R.X, &xZ ) == 0 );
194 TEST_ASSERT( mpi_cmp_mpi( &R.Y, &yZ ) == 0 );
Manuel Pégourié-Gonnard1c330572012-11-24 12:05:44 +0100195 TEST_ASSERT( ecp_check_pubkey( &grp, &R ) == 0 );
Manuel Pégourié-Gonnarde739f012012-11-07 12:24:22 +0100196
197 ecp_group_free( &grp ); ecp_point_free( &R );
198 mpi_free( &dA ); mpi_free( &xA ); mpi_free( &yA ); mpi_free( &dB );
199 mpi_free( &xB ); mpi_free( &yB ); mpi_free( &xZ ); mpi_free( &yZ );
Manuel Pégourié-Gonnard4b8c3f22012-11-07 21:39:45 +0100200}
Paul Bakker33b43f12013-08-20 11:48:36 +0200201/* END_CASE */
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100202
Paul Bakker33b43f12013-08-20 11:48:36 +0200203/* BEGIN_CASE */
204void ecp_fast_mod( int id, char *N_str )
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100205{
206 ecp_group grp;
207 mpi N, R;
208
209 mpi_init( &N ); mpi_init( &R );
210 ecp_group_init( &grp );
211
Paul Bakker33b43f12013-08-20 11:48:36 +0200212 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
213 TEST_ASSERT( mpi_read_string( &N, 16, N_str ) == 0 );
Manuel Pégourié-Gonnard84338242012-11-11 20:45:18 +0100214
215 /*
216 * Store correct result before we touch N
217 */
218 TEST_ASSERT( mpi_mod_mpi( &R, &N, &grp.P ) == 0 );
219
220 TEST_ASSERT( grp.modp( &N ) == 0 );
221 TEST_ASSERT( mpi_msb( &N ) <= grp.pbits + 3 );
222
223 /*
224 * Use mod rather than addition/substraction in case previous test fails
225 */
226 TEST_ASSERT( mpi_mod_mpi( &N, &N, &grp.P ) == 0 );
227 TEST_ASSERT( mpi_cmp_mpi( &N, &R ) == 0 );
228
229 mpi_free( &N ); mpi_free( &R );
230 ecp_group_free( &grp );
231}
Paul Bakker33b43f12013-08-20 11:48:36 +0200232/* END_CASE */
Manuel Pégourié-Gonnardb4a310b2012-11-13 20:57:00 +0100233
Paul Bakker33b43f12013-08-20 11:48:36 +0200234/* BEGIN_CASE */
235void ecp_write_binary( int id, char *x, char *y, char *z, int format,
236 char *out, int blen, int ret )
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100237{
238 ecp_group grp;
239 ecp_point P;
240 unsigned char buf[256], str[512];
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100241 size_t olen;
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100242
243 memset( buf, 0, sizeof( buf ) );
244 memset( str, 0, sizeof( str ) );
245
246 ecp_group_init( &grp ); ecp_point_init( &P );
247
Paul Bakker33b43f12013-08-20 11:48:36 +0200248 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100249
Paul Bakker33b43f12013-08-20 11:48:36 +0200250 TEST_ASSERT( mpi_read_string( &P.X, 16, x ) == 0 );
251 TEST_ASSERT( mpi_read_string( &P.Y, 16, y ) == 0 );
252 TEST_ASSERT( mpi_read_string( &P.Z, 16, z ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100253
Paul Bakker33b43f12013-08-20 11:48:36 +0200254 TEST_ASSERT( ecp_point_write_binary( &grp, &P, format,
255 &olen, buf, blen ) == ret );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100256
Paul Bakker33b43f12013-08-20 11:48:36 +0200257 if( ret == 0 )
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100258 {
Manuel Pégourié-Gonnard37d218a2012-11-24 15:19:55 +0100259 hexify( str, buf, olen );
Paul Bakker33b43f12013-08-20 11:48:36 +0200260 TEST_ASSERT( strcasecmp( (char *) str, out ) == 0 );
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100261 }
262
263 ecp_group_free( &grp ); ecp_point_free( &P );
264}
Paul Bakker33b43f12013-08-20 11:48:36 +0200265/* END_CASE */
Manuel Pégourié-Gonnarde19feb52012-11-24 14:10:14 +0100266
Paul Bakker33b43f12013-08-20 11:48:36 +0200267/* BEGIN_CASE */
268void ecp_read_binary( int id, char *input, char *x, char *y, char *z,
269 int ret )
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100270{
271 ecp_group grp;
272 ecp_point P;
273 mpi X, Y, Z;
274 int ilen;
275 unsigned char buf[256];
276
277 memset( buf, 0, sizeof( buf ) );
278
279 ecp_group_init( &grp ); ecp_point_init( &P );
280 mpi_init( &X ); mpi_init( &Y ); mpi_init( &Z );
281
Paul Bakker33b43f12013-08-20 11:48:36 +0200282 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100283
Paul Bakker33b43f12013-08-20 11:48:36 +0200284 TEST_ASSERT( mpi_read_string( &X, 16, x ) == 0 );
285 TEST_ASSERT( mpi_read_string( &Y, 16, y ) == 0 );
286 TEST_ASSERT( mpi_read_string( &Z, 16, z ) == 0 );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100287
Paul Bakker33b43f12013-08-20 11:48:36 +0200288 ilen = unhexify( buf, input );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100289
Paul Bakker33b43f12013-08-20 11:48:36 +0200290 TEST_ASSERT( ecp_point_read_binary( &grp, &P, buf, ilen ) == ret );
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100291
Paul Bakker33b43f12013-08-20 11:48:36 +0200292 if( ret == 0 )
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100293 {
294 TEST_ASSERT( mpi_cmp_mpi( &P.X, &X ) == 0 );
295 TEST_ASSERT( mpi_cmp_mpi( &P.Y, &Y ) == 0 );
296 TEST_ASSERT( mpi_cmp_mpi( &P.Z, &Z ) == 0 );
297 }
298
299 ecp_group_free( &grp ); ecp_point_free( &P );
300 mpi_free( &X ); mpi_free( &Y ); mpi_free( &Z );
301}
Paul Bakker33b43f12013-08-20 11:48:36 +0200302/* END_CASE */
Manuel Pégourié-Gonnard5e402d82012-11-24 16:19:42 +0100303
Paul Bakker33b43f12013-08-20 11:48:36 +0200304/* BEGIN_CASE */
305void ecp_tls_read_point( int id, char *input, char *x, char *y, char *z,
306 int ret )
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100307{
308 ecp_group grp;
309 ecp_point P;
310 mpi X, Y, Z;
311 size_t ilen;
312 unsigned char buf[256];
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100313 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100314
315 memset( buf, 0, sizeof( buf ) );
316
317 ecp_group_init( &grp ); ecp_point_init( &P );
318 mpi_init( &X ); mpi_init( &Y ); mpi_init( &Z );
319
Paul Bakker33b43f12013-08-20 11:48:36 +0200320 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100321
Paul Bakker33b43f12013-08-20 11:48:36 +0200322 TEST_ASSERT( mpi_read_string( &X, 16, x ) == 0 );
323 TEST_ASSERT( mpi_read_string( &Y, 16, y ) == 0 );
324 TEST_ASSERT( mpi_read_string( &Z, 16, z ) == 0 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100325
Paul Bakker33b43f12013-08-20 11:48:36 +0200326 ilen = unhexify( buf, input );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100327
Paul Bakker33b43f12013-08-20 11:48:36 +0200328 TEST_ASSERT( ecp_tls_read_point( &grp, &P, &vbuf, ilen ) == ret );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100329
Paul Bakker33b43f12013-08-20 11:48:36 +0200330 if( ret == 0 )
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100331 {
332 TEST_ASSERT( mpi_cmp_mpi( &P.X, &X ) == 0 );
333 TEST_ASSERT( mpi_cmp_mpi( &P.Y, &Y ) == 0 );
334 TEST_ASSERT( mpi_cmp_mpi( &P.Z, &Z ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100335 TEST_ASSERT( *vbuf == 0x00 );
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100336 }
337
338 ecp_group_free( &grp ); ecp_point_free( &P );
339 mpi_free( &X ); mpi_free( &Y ); mpi_free( &Z );
340}
Paul Bakker33b43f12013-08-20 11:48:36 +0200341/* END_CASE */
Manuel Pégourié-Gonnard8c16f962013-02-10 13:00:20 +0100342
Paul Bakker33b43f12013-08-20 11:48:36 +0200343/* BEGIN_CASE */
344void ecp_tls_write_read_point( int id )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100345{
346 ecp_group grp;
347 ecp_point pt;
348 unsigned char buf[256];
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100349 const unsigned char *vbuf;
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100350 size_t olen;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100351
352 ecp_group_init( &grp );
353 ecp_point_init( &pt );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100354
Paul Bakker33b43f12013-08-20 11:48:36 +0200355 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100356
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100357 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100358 TEST_ASSERT( ecp_tls_write_point( &grp, &grp.G,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100359 POLARSSL_ECP_PF_COMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100360 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100361 == POLARSSL_ERR_ECP_BAD_INPUT_DATA );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100362 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100363
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100364 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100365 TEST_ASSERT( ecp_tls_write_point( &grp, &grp.G,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100366 POLARSSL_ECP_PF_UNCOMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100367 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100368 TEST_ASSERT( mpi_cmp_mpi( &grp.G.X, &pt.X ) == 0 );
369 TEST_ASSERT( mpi_cmp_mpi( &grp.G.Y, &pt.Y ) == 0 );
370 TEST_ASSERT( mpi_cmp_mpi( &grp.G.Z, &pt.Z ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100371 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100372
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100373 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100374 TEST_ASSERT( ecp_set_zero( &pt ) == 0 );
375 TEST_ASSERT( ecp_tls_write_point( &grp, &pt,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100376 POLARSSL_ECP_PF_COMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100377 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100378 TEST_ASSERT( ecp_is_zero( &pt ) );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100379 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100380
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100381 memset( buf, 0x00, sizeof( buf ) ); vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100382 TEST_ASSERT( ecp_set_zero( &pt ) == 0 );
383 TEST_ASSERT( ecp_tls_write_point( &grp, &pt,
Manuel Pégourié-Gonnard420f1eb2013-02-10 12:22:46 +0100384 POLARSSL_ECP_PF_UNCOMPRESSED, &olen, buf, 256 ) == 0 );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100385 TEST_ASSERT( ecp_tls_read_point( &grp, &pt, &vbuf, olen ) == 0 );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100386 TEST_ASSERT( ecp_is_zero( &pt ) );
Manuel Pégourié-Gonnard98f51812013-02-10 13:38:29 +0100387 TEST_ASSERT( vbuf == buf + olen );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100388
389 ecp_group_free( &grp );
390 ecp_point_free( &pt );
391}
Paul Bakker33b43f12013-08-20 11:48:36 +0200392/* END_CASE */
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100393
Paul Bakker33b43f12013-08-20 11:48:36 +0200394/* BEGIN_CASE */
395void ecp_tls_read_group( char *record, int result, int bits )
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100396{
397 ecp_group grp;
398 unsigned char buf[10];
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100399 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100400 int len, ret;
401
402 ecp_group_init( &grp );
403 memset( buf, 0x00, sizeof( buf ) );
404
Paul Bakker33b43f12013-08-20 11:48:36 +0200405 len = unhexify( buf, record );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100406
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100407 ret = ecp_tls_read_group( &grp, &vbuf, len );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100408
Paul Bakker33b43f12013-08-20 11:48:36 +0200409 TEST_ASSERT( ret == result );
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100410 if( ret == 0)
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100411 {
Paul Bakker33b43f12013-08-20 11:48:36 +0200412 TEST_ASSERT( mpi_msb( &grp.P ) == (size_t) bits );
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100413 TEST_ASSERT( *vbuf == 0x00 );
414 }
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100415
416 ecp_group_free( &grp );
417}
Paul Bakker33b43f12013-08-20 11:48:36 +0200418/* END_CASE */
Manuel Pégourié-Gonnard6282aca2013-02-10 11:15:11 +0100419
Paul Bakker33b43f12013-08-20 11:48:36 +0200420/* BEGIN_CASE */
421void ecp_tls_write_read_group( int id )
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100422{
423 ecp_group grp1, grp2;
424 unsigned char buf[10];
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100425 const unsigned char *vbuf = buf;
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100426 size_t len;
427 int ret;
428
429 ecp_group_init( &grp1 );
430 ecp_group_init( &grp2 );
431 memset( buf, 0x00, sizeof( buf ) );
432
Paul Bakker33b43f12013-08-20 11:48:36 +0200433 TEST_ASSERT( ecp_use_known_dp( &grp1, id ) == 0 );
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100434
435 TEST_ASSERT( ecp_tls_write_group( &grp1, &len, buf, 10 ) == 0 );
Manuel Pégourié-Gonnard7c145c62013-02-10 13:20:52 +0100436 TEST_ASSERT( ( ret = ecp_tls_read_group( &grp2, &vbuf, len ) ) == 0 );
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100437
438 if( ret == 0 )
439 {
440 TEST_ASSERT( mpi_cmp_mpi( &grp1.N, &grp2.N ) == 0 );
441 TEST_ASSERT( grp1.id == grp2.id );
442 }
443
444 ecp_group_free( &grp1 );
445 ecp_group_free( &grp2 );
446}
Paul Bakker33b43f12013-08-20 11:48:36 +0200447/* END_CASE */
Manuel Pégourié-Gonnard46106a92013-02-10 12:51:17 +0100448
Paul Bakker33b43f12013-08-20 11:48:36 +0200449/* BEGIN_CASE */
450void ecp_check_privkey( int id )
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200451{
452 ecp_group grp;
453 mpi d;
454
455 ecp_group_init( &grp );
456 mpi_init( &d );
457
Paul Bakker33b43f12013-08-20 11:48:36 +0200458 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200459
460 TEST_ASSERT( mpi_lset( &d, 0 ) == 0 );
Paul Bakker8ea6c612013-07-16 17:15:03 +0200461 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == POLARSSL_ERR_ECP_GENERIC );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200462
463 TEST_ASSERT( mpi_copy( &d, &grp.N ) == 0 );
Paul Bakker8ea6c612013-07-16 17:15:03 +0200464 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == POLARSSL_ERR_ECP_GENERIC );
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200465
466 ecp_group_free( &grp );
467 mpi_free( &d );
468}
Paul Bakker33b43f12013-08-20 11:48:36 +0200469/* END_CASE */
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200470
Paul Bakker33b43f12013-08-20 11:48:36 +0200471/* BEGIN_CASE */
472void ecp_gen_keypair( int id )
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100473{
474 ecp_group grp;
475 ecp_point Q;
476 mpi d;
477 rnd_pseudo_info rnd_info;
478
479 ecp_group_init( &grp );
480 ecp_point_init( &Q );
481 mpi_init( &d );
482 memset( &rnd_info, 0x00, sizeof( rnd_pseudo_info ) );
483
Paul Bakker33b43f12013-08-20 11:48:36 +0200484 TEST_ASSERT( ecp_use_known_dp( &grp, id ) == 0 );
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100485
486 TEST_ASSERT( ecp_gen_keypair( &grp, &d, &Q, &rnd_pseudo_rand, &rnd_info )
487 == 0 );
488
Manuel Pégourié-Gonnardc8dc2952013-07-01 14:06:13 +0200489 TEST_ASSERT( ecp_check_pubkey( &grp, &Q ) == 0 );
Paul Bakker8ea6c612013-07-16 17:15:03 +0200490 TEST_ASSERT( ecp_check_privkey( &grp, &d ) == 0 );
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100491
492 ecp_group_free( &grp );
493 ecp_point_free( &Q );
494 mpi_free( &d );
495}
Paul Bakker33b43f12013-08-20 11:48:36 +0200496/* END_CASE */
Manuel Pégourié-Gonnard45a035a2013-01-26 14:42:45 +0100497
Paul Bakker33b43f12013-08-20 11:48:36 +0200498/* BEGIN_CASE */
499void ecp_selftest()
Manuel Pégourié-Gonnardb4a310b2012-11-13 20:57:00 +0100500{
501 TEST_ASSERT( ecp_self_test( 0 ) == 0 );
502}
Paul Bakker33b43f12013-08-20 11:48:36 +0200503/* END_CASE */