blob: d248ade187d9bef0ae762a35bf287ca68feb5984 [file] [log] [blame]
Gilles Peskine24827022018-09-25 18:49:23 +02001#!/usr/bin/env python3
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02002"""Test the program psa_constant_names.
Gilles Peskine24827022018-09-25 18:49:23 +02003Gather constant names from header files and test cases. Compile a C program
4to print out their numerical values, feed these numerical values to
5psa_constant_names, and check that the output is the original name.
6Return 0 if all test cases pass, 1 if the output was not always as expected,
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02007or 1 (with a Python backtrace) if there was an operational error.
8"""
Gilles Peskine24827022018-09-25 18:49:23 +02009
10import argparse
11import itertools
12import os
13import platform
14import re
15import subprocess
16import sys
17import tempfile
18
Gilles Peskinea0a315c2018-10-19 11:27:10 +020019class ReadFileLineException(Exception):
20 def __init__(self, filename, line_number):
21 message = 'in {} at {}'.format(filename, line_number)
22 super(ReadFileLineException, self).__init__(message)
23 self.filename = filename
24 self.line_number = line_number
25
26class read_file_lines:
Gilles Peskine54f54452019-05-27 18:31:59 +020027 # Dear Pylint, conventionally, a context manager class name is lowercase.
28 # pylint: disable=invalid-name,too-few-public-methods
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020029 """Context manager to read a text file line by line.
30
31 ```
32 with read_file_lines(filename) as lines:
33 for line in lines:
34 process(line)
35 ```
36 is equivalent to
37 ```
38 with open(filename, 'r') as input_file:
39 for line in input_file:
40 process(line)
41 ```
42 except that if process(line) raises an exception, then the read_file_lines
43 snippet annotates the exception with the file name and line number.
44 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +020045 def __init__(self, filename):
46 self.filename = filename
47 self.line_number = 'entry'
Gilles Peskine54f54452019-05-27 18:31:59 +020048 self.generator = None
Gilles Peskinea0a315c2018-10-19 11:27:10 +020049 def __enter__(self):
50 self.generator = enumerate(open(self.filename, 'r'))
51 return self
52 def __iter__(self):
53 for line_number, content in self.generator:
54 self.line_number = line_number
55 yield content
56 self.line_number = 'exit'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020057 def __exit__(self, exc_type, exc_value, exc_traceback):
58 if exc_type is not None:
Gilles Peskinea0a315c2018-10-19 11:27:10 +020059 raise ReadFileLineException(self.filename, self.line_number) \
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020060 from exc_value
Gilles Peskinea0a315c2018-10-19 11:27:10 +020061
Gilles Peskine24827022018-09-25 18:49:23 +020062class Inputs:
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020063 """Accumulate information about macros to test.
64 This includes macro names as well as information about their arguments
65 when applicable.
66 """
67
Gilles Peskine24827022018-09-25 18:49:23 +020068 def __init__(self):
69 # Sets of names per type
70 self.statuses = set(['PSA_SUCCESS'])
71 self.algorithms = set(['0xffffffff'])
72 self.ecc_curves = set(['0xffff'])
Gilles Peskinedcaefae2019-05-16 12:55:35 +020073 self.dh_groups = set(['0xffff'])
Gilles Peskine24827022018-09-25 18:49:23 +020074 self.key_types = set(['0xffffffff'])
75 self.key_usage_flags = set(['0x80000000'])
Gilles Peskine434899f2018-10-19 11:30:26 +020076 # Hard-coded value for unknown algorithms
Darryl Green61b7f612019-02-04 16:00:21 +000077 self.hash_algorithms = set(['0x010000fe'])
Gilles Peskine434899f2018-10-19 11:30:26 +020078 self.mac_algorithms = set(['0x02ff00ff'])
Gilles Peskine882e57e2019-04-12 00:12:07 +020079 self.ka_algorithms = set(['0x30fc0000'])
80 self.kdf_algorithms = set(['0x200000ff'])
Gilles Peskine434899f2018-10-19 11:30:26 +020081 # For AEAD algorithms, the only variability is over the tag length,
82 # and this only applies to known algorithms, so don't test an
83 # unknown algorithm.
84 self.aead_algorithms = set()
Gilles Peskine24827022018-09-25 18:49:23 +020085 # Identifier prefixes
86 self.table_by_prefix = {
87 'ERROR': self.statuses,
88 'ALG': self.algorithms,
89 'CURVE': self.ecc_curves,
Gilles Peskinedcaefae2019-05-16 12:55:35 +020090 'GROUP': self.dh_groups,
Gilles Peskine24827022018-09-25 18:49:23 +020091 'KEY_TYPE': self.key_types,
92 'KEY_USAGE': self.key_usage_flags,
93 }
94 # macro name -> list of argument names
95 self.argspecs = {}
96 # argument name -> list of values
Gilles Peskine434899f2018-10-19 11:30:26 +020097 self.arguments_for = {
98 'mac_length': ['1', '63'],
99 'tag_length': ['1', '63'],
100 }
Gilles Peskine24827022018-09-25 18:49:23 +0200101
102 def gather_arguments(self):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200103 """Populate the list of values for macro arguments.
104 Call this after parsing all the inputs.
105 """
Gilles Peskine24827022018-09-25 18:49:23 +0200106 self.arguments_for['hash_alg'] = sorted(self.hash_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200107 self.arguments_for['mac_alg'] = sorted(self.mac_algorithms)
Gilles Peskine882e57e2019-04-12 00:12:07 +0200108 self.arguments_for['ka_alg'] = sorted(self.ka_algorithms)
Gilles Peskine17542082019-01-04 19:46:31 +0100109 self.arguments_for['kdf_alg'] = sorted(self.kdf_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200110 self.arguments_for['aead_alg'] = sorted(self.aead_algorithms)
Gilles Peskine24827022018-09-25 18:49:23 +0200111 self.arguments_for['curve'] = sorted(self.ecc_curves)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200112 self.arguments_for['group'] = sorted(self.dh_groups)
Gilles Peskine24827022018-09-25 18:49:23 +0200113
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200114 @staticmethod
115 def _format_arguments(name, arguments):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200116 """Format a macro call with arguments.."""
Gilles Peskine24827022018-09-25 18:49:23 +0200117 return name + '(' + ', '.join(arguments) + ')'
118
119 def distribute_arguments(self, name):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200120 """Generate macro calls with each tested argument set.
121 If name is a macro without arguments, just yield "name".
122 If name is a macro with arguments, yield a series of
123 "name(arg1,...,argN)" where each argument takes each possible
124 value at least once.
125 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200126 try:
127 if name not in self.argspecs:
128 yield name
129 return
130 argspec = self.argspecs[name]
131 if argspec == []:
132 yield name + '()'
133 return
134 argument_lists = [self.arguments_for[arg] for arg in argspec]
135 arguments = [values[0] for values in argument_lists]
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200136 yield self._format_arguments(name, arguments)
Gilles Peskine54f54452019-05-27 18:31:59 +0200137 # Dear Pylint, enumerate won't work here since we're modifying
138 # the array.
139 # pylint: disable=consider-using-enumerate
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200140 for i in range(len(arguments)):
141 for value in argument_lists[i][1:]:
142 arguments[i] = value
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200143 yield self._format_arguments(name, arguments)
Gilles Peskinef96ed662018-10-19 11:29:56 +0200144 arguments[i] = argument_lists[0][0]
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200145 except BaseException as e:
146 raise Exception('distribute_arguments({})'.format(name)) from e
Gilles Peskine24827022018-09-25 18:49:23 +0200147
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200148 _argument_split_re = re.compile(r' *, *')
149 @classmethod
150 def _argument_split(cls, arguments):
151 return re.split(cls._argument_split_re, arguments)
152
Gilles Peskine24827022018-09-25 18:49:23 +0200153 # Regex for interesting header lines.
154 # Groups: 1=macro name, 2=type, 3=argument list (optional).
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200155 _header_line_re = \
Gilles Peskine24827022018-09-25 18:49:23 +0200156 re.compile(r'#define +' +
157 r'(PSA_((?:KEY_)?[A-Z]+)_\w+)' +
158 r'(?:\(([^\n()]*)\))?')
159 # Regex of macro names to exclude.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200160 _excluded_name_re = re.compile(r'_(?:GET|IS|OF)_|_(?:BASE|FLAG|MASK)\Z')
Gilles Peskinec68ce962018-10-19 11:31:52 +0200161 # Additional excluded macros.
Darryl Greenb8fe0682019-02-06 13:21:31 +0000162 # PSA_ALG_ECDH and PSA_ALG_FFDH are excluded for now as the script
Jaeden Amero5e6d24c2019-02-21 10:41:29 +0000163 # currently doesn't support them. Deprecated errors are also excluded.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200164 _excluded_names = set(['PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH',
165 'PSA_ALG_FULL_LENGTH_MAC',
166 'PSA_ALG_ECDH',
167 'PSA_ALG_FFDH',
168 'PSA_ERROR_UNKNOWN_ERROR',
169 'PSA_ERROR_OCCUPIED_SLOT',
170 'PSA_ERROR_EMPTY_SLOT',
171 'PSA_ERROR_INSUFFICIENT_CAPACITY',
Jaeden Amero5e6d24c2019-02-21 10:41:29 +0000172 ])
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200173
Gilles Peskine24827022018-09-25 18:49:23 +0200174 def parse_header_line(self, line):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200175 """Parse a C header line, looking for "#define PSA_xxx"."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200176 m = re.match(self._header_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200177 if not m:
178 return
179 name = m.group(1)
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200180 if re.search(self._excluded_name_re, name) or \
181 name in self._excluded_names:
Gilles Peskine24827022018-09-25 18:49:23 +0200182 return
183 dest = self.table_by_prefix.get(m.group(2))
184 if dest is None:
185 return
186 dest.add(name)
187 if m.group(3):
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200188 self.argspecs[name] = self._argument_split(m.group(3))
Gilles Peskine24827022018-09-25 18:49:23 +0200189
190 def parse_header(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200191 """Parse a C header file, looking for "#define PSA_xxx"."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200192 with read_file_lines(filename) as lines:
193 for line in lines:
Gilles Peskine24827022018-09-25 18:49:23 +0200194 self.parse_header_line(line)
195
196 def add_test_case_line(self, function, argument):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200197 """Parse a test case data line, looking for algorithm metadata tests."""
Gilles Peskine24827022018-09-25 18:49:23 +0200198 if function.endswith('_algorithm'):
Darryl Greenb8fe0682019-02-06 13:21:31 +0000199 # As above, ECDH and FFDH algorithms are excluded for now.
200 # Support for them will be added in the future.
Darryl Greenec079502019-01-29 15:48:00 +0000201 if 'ECDH' in argument or 'FFDH' in argument:
202 return
Gilles Peskine24827022018-09-25 18:49:23 +0200203 self.algorithms.add(argument)
204 if function == 'hash_algorithm':
205 self.hash_algorithms.add(argument)
Gilles Peskine434899f2018-10-19 11:30:26 +0200206 elif function in ['mac_algorithm', 'hmac_algorithm']:
207 self.mac_algorithms.add(argument)
208 elif function == 'aead_algorithm':
209 self.aead_algorithms.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200210 elif function == 'key_type':
211 self.key_types.add(argument)
212 elif function == 'ecc_key_types':
213 self.ecc_curves.add(argument)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200214 elif function == 'dh_key_types':
215 self.dh_groups.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200216
217 # Regex matching a *.data line containing a test function call and
218 # its arguments. The actual definition is partly positional, but this
219 # regex is good enough in practice.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200220 _test_case_line_re = re.compile(r'(?!depends_on:)(\w+):([^\n :][^:\n]*)')
Gilles Peskine24827022018-09-25 18:49:23 +0200221 def parse_test_cases(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200222 """Parse a test case file (*.data), looking for algorithm metadata tests."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200223 with read_file_lines(filename) as lines:
224 for line in lines:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200225 m = re.match(self._test_case_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200226 if m:
227 self.add_test_case_line(m.group(1), m.group(2))
228
229def gather_inputs(headers, test_suites):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200230 """Read the list of inputs to test psa_constant_names with."""
Gilles Peskine24827022018-09-25 18:49:23 +0200231 inputs = Inputs()
232 for header in headers:
233 inputs.parse_header(header)
234 for test_cases in test_suites:
235 inputs.parse_test_cases(test_cases)
236 inputs.gather_arguments()
237 return inputs
238
239def remove_file_if_exists(filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200240 """Remove the specified file, ignoring errors."""
Gilles Peskine24827022018-09-25 18:49:23 +0200241 if not filename:
242 return
243 try:
244 os.remove(filename)
Gilles Peskine54f54452019-05-27 18:31:59 +0200245 except OSError:
Gilles Peskine24827022018-09-25 18:49:23 +0200246 pass
247
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200248def run_c(options, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200249 """Generate and run a program to print out numerical values for names."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200250 if type_word == 'status':
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100251 cast_to = 'long'
252 printf_format = '%ld'
253 else:
254 cast_to = 'unsigned long'
255 printf_format = '0x%08lx'
Gilles Peskine24827022018-09-25 18:49:23 +0200256 c_name = None
257 exe_name = None
258 try:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200259 c_fd, c_name = tempfile.mkstemp(prefix='tmp-{}-'.format(type_word),
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100260 suffix='.c',
Gilles Peskine24827022018-09-25 18:49:23 +0200261 dir='programs/psa')
262 exe_suffix = '.exe' if platform.system() == 'Windows' else ''
263 exe_name = c_name[:-2] + exe_suffix
264 remove_file_if_exists(exe_name)
265 c_file = os.fdopen(c_fd, 'w', encoding='ascii')
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100266 c_file.write('/* Generated by test_psa_constant_names.py for {} values */'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200267 .format(type_word))
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100268 c_file.write('''
Gilles Peskine24827022018-09-25 18:49:23 +0200269#include <stdio.h>
270#include <psa/crypto.h>
271int main(void)
272{
273''')
274 for name in names:
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100275 c_file.write(' printf("{}\\n", ({}) {});\n'
276 .format(printf_format, cast_to, name))
Gilles Peskine24827022018-09-25 18:49:23 +0200277 c_file.write(''' return 0;
278}
279''')
280 c_file.close()
281 cc = os.getenv('CC', 'cc')
282 subprocess.check_call([cc] +
283 ['-I' + dir for dir in options.include] +
284 ['-o', exe_name, c_name])
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200285 if options.keep_c:
286 sys.stderr.write('List of {} tests kept at {}\n'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200287 .format(type_word, c_name))
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200288 else:
289 os.remove(c_name)
Gilles Peskine24827022018-09-25 18:49:23 +0200290 output = subprocess.check_output([exe_name])
291 return output.decode('ascii').strip().split('\n')
292 finally:
293 remove_file_if_exists(exe_name)
294
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200295NORMALIZE_STRIP_RE = re.compile(r'\s+')
Gilles Peskine24827022018-09-25 18:49:23 +0200296def normalize(expr):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200297 """Normalize the C expression so as not to care about trivial differences.
298 Currently "trivial differences" means whitespace.
299 """
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200300 expr = re.sub(NORMALIZE_STRIP_RE, '', expr, len(expr))
Gilles Peskine24827022018-09-25 18:49:23 +0200301 return expr.strip().split('\n')
302
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200303def do_test(options, inputs, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200304 """Test psa_constant_names for the specified type.
305 Run program on names.
306 Use inputs to figure out what arguments to pass to macros that
307 take arguments.
308 """
Gilles Peskine24827022018-09-25 18:49:23 +0200309 names = sorted(itertools.chain(*map(inputs.distribute_arguments, names)))
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200310 values = run_c(options, type_word, names)
311 output = subprocess.check_output([options.program, type_word] + values)
Gilles Peskine24827022018-09-25 18:49:23 +0200312 outputs = output.decode('ascii').strip().split('\n')
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200313 errors = [(type_word, name, value, output)
Gilles Peskine24827022018-09-25 18:49:23 +0200314 for (name, value, output) in zip(names, values, outputs)
315 if normalize(name) != normalize(output)]
316 return len(names), errors
317
318def report_errors(errors):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200319 """Describe each case where the output is not as expected."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200320 for type_word, name, value, output in errors:
Gilles Peskine24827022018-09-25 18:49:23 +0200321 print('For {} "{}", got "{}" (value: {})'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200322 .format(type_word, name, output, value))
Gilles Peskine24827022018-09-25 18:49:23 +0200323
324def run_tests(options, inputs):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200325 """Run psa_constant_names on all the gathered inputs.
326 Return a tuple (count, errors) where count is the total number of inputs
327 that were tested and errors is the list of cases where the output was
328 not as expected.
329 """
Gilles Peskine24827022018-09-25 18:49:23 +0200330 count = 0
331 errors = []
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200332 for type_word, names in [('status', inputs.statuses),
333 ('algorithm', inputs.algorithms),
334 ('ecc_curve', inputs.ecc_curves),
335 ('dh_group', inputs.dh_groups),
336 ('key_type', inputs.key_types),
337 ('key_usage', inputs.key_usage_flags)]:
338 c, e = do_test(options, inputs, type_word, names)
Gilles Peskine24827022018-09-25 18:49:23 +0200339 count += c
340 errors += e
341 return count, errors
342
Gilles Peskine54f54452019-05-27 18:31:59 +0200343def main():
Gilles Peskine24827022018-09-25 18:49:23 +0200344 parser = argparse.ArgumentParser(description=globals()['__doc__'])
345 parser.add_argument('--include', '-I',
346 action='append', default=['include'],
347 help='Directory for header files')
348 parser.add_argument('--program',
349 default='programs/psa/psa_constant_names',
350 help='Program to test')
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200351 parser.add_argument('--keep-c',
352 action='store_true', dest='keep_c', default=False,
353 help='Keep the intermediate C file')
354 parser.add_argument('--no-keep-c',
355 action='store_false', dest='keep_c',
356 help='Don\'t keep the intermediate C file (default)')
Gilles Peskine24827022018-09-25 18:49:23 +0200357 options = parser.parse_args()
Gilles Peskine6d194bd2019-01-04 19:44:59 +0100358 headers = [os.path.join(options.include[0], 'psa', h)
359 for h in ['crypto.h', 'crypto_extra.h', 'crypto_values.h']]
Gilles Peskine24827022018-09-25 18:49:23 +0200360 test_suites = ['tests/suites/test_suite_psa_crypto_metadata.data']
361 inputs = gather_inputs(headers, test_suites)
362 count, errors = run_tests(options, inputs)
363 report_errors(errors)
364 if errors == []:
365 print('{} test cases PASS'.format(count))
366 else:
367 print('{} test cases, {} FAIL'.format(count, len(errors)))
368 exit(1)
Gilles Peskine54f54452019-05-27 18:31:59 +0200369
370if __name__ == '__main__':
371 main()