Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 1 | /* BEGIN_HEADER */ |
Manuel Pégourié-Gonnard | 7f80997 | 2015-03-09 17:05:11 +0000 | [diff] [blame] | 2 | #include "mbedtls/pk.h" |
| 3 | #include "mbedtls/pem.h" |
| 4 | #include "mbedtls/oid.h" |
Valerio Setti | fa49a8e | 2023-01-26 10:00:55 +0100 | [diff] [blame] | 5 | #include "mbedtls/ecp.h" |
Valerio Setti | aed8799 | 2023-07-04 19:58:43 +0200 | [diff] [blame] | 6 | #include "mbedtls/psa_util.h" |
Valerio Setti | 77a7568 | 2023-05-15 11:18:46 +0200 | [diff] [blame] | 7 | #include "pk_internal.h" |
Waleed Elmelegy | 38202a2 | 2023-09-21 15:21:10 +0100 | [diff] [blame] | 8 | |
| 9 | #if defined(MBEDTLS_PKCS12_C) || defined(MBEDTLS_PKCS5_C) |
| 10 | #define HAVE_mbedtls_pk_parse_key_pkcs8_encrypted_der |
| 11 | #endif |
| 12 | |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 13 | /* END_HEADER */ |
| 14 | |
| 15 | /* BEGIN_DEPENDENCIES |
Valerio Setti | c5d85e5 | 2023-07-26 18:12:23 +0200 | [diff] [blame] | 16 | * depends_on:MBEDTLS_PK_PARSE_C |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 17 | * END_DEPENDENCIES |
| 18 | */ |
| 19 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 20 | /* BEGIN_CASE depends_on:MBEDTLS_RSA_C:MBEDTLS_FS_IO */ |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 21 | void pk_parse_keyfile_rsa(char *key_file, char *password, int result) |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 22 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 23 | mbedtls_pk_context ctx; |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 24 | int res; |
| 25 | char *pwd = password; |
| 26 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 27 | mbedtls_pk_init(&ctx); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 28 | MD_PSA_INIT(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 29 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 30 | if (strcmp(pwd, "NULL") == 0) { |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 31 | pwd = NULL; |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 32 | } |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 33 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 34 | res = mbedtls_pk_parse_keyfile(&ctx, key_file, pwd, |
| 35 | mbedtls_test_rnd_std_rand, NULL); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 36 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 37 | TEST_ASSERT(res == result); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 38 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 39 | if (res == 0) { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 40 | mbedtls_rsa_context *rsa; |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 41 | TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_RSA)); |
| 42 | rsa = mbedtls_pk_rsa(ctx); |
| 43 | TEST_ASSERT(mbedtls_rsa_check_privkey(rsa) == 0); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 44 | } |
| 45 | |
Paul Bakker | bd51b26 | 2014-07-10 15:26:12 +0200 | [diff] [blame] | 46 | exit: |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 47 | mbedtls_pk_free(&ctx); |
Manuel Pégourié-Gonnard | fa99afa | 2023-03-17 11:59:12 +0100 | [diff] [blame] | 48 | MD_PSA_DONE(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 49 | } |
Manuel Pégourié-Gonnard | fa99afa | 2023-03-17 11:59:12 +0100 | [diff] [blame] | 50 | |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 51 | /* END_CASE */ |
| 52 | |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 53 | /* BEGIN_CASE depends_on:MBEDTLS_RSA_C:MBEDTLS_FS_IO */ |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 54 | void pk_parse_public_keyfile_rsa(char *key_file, int result) |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 55 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 56 | mbedtls_pk_context ctx; |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 57 | int res; |
| 58 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 59 | mbedtls_pk_init(&ctx); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 60 | MD_PSA_INIT(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 61 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 62 | res = mbedtls_pk_parse_public_keyfile(&ctx, key_file); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 63 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 64 | TEST_ASSERT(res == result); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 65 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 66 | if (res == 0) { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 67 | mbedtls_rsa_context *rsa; |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 68 | TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_RSA)); |
| 69 | rsa = mbedtls_pk_rsa(ctx); |
| 70 | TEST_ASSERT(mbedtls_rsa_check_pubkey(rsa) == 0); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 71 | } |
| 72 | |
Paul Bakker | bd51b26 | 2014-07-10 15:26:12 +0200 | [diff] [blame] | 73 | exit: |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 74 | mbedtls_pk_free(&ctx); |
Manuel Pégourié-Gonnard | fa99afa | 2023-03-17 11:59:12 +0100 | [diff] [blame] | 75 | MD_PSA_DONE(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 76 | } |
| 77 | /* END_CASE */ |
| 78 | |
Valerio Setti | 545a0d6 | 2023-06-14 14:56:48 +0200 | [diff] [blame] | 79 | /* BEGIN_CASE depends_on:MBEDTLS_FS_IO:MBEDTLS_PK_HAVE_ECC_KEYS */ |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 80 | void pk_parse_public_keyfile_ec(char *key_file, int result) |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 81 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 82 | mbedtls_pk_context ctx; |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 83 | int res; |
| 84 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 85 | mbedtls_pk_init(&ctx); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 86 | USE_PSA_INIT(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 87 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 88 | res = mbedtls_pk_parse_public_keyfile(&ctx, key_file); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 89 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 90 | TEST_ASSERT(res == result); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 91 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 92 | if (res == 0) { |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 93 | TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_ECKEY)); |
Valerio Setti | 483738e | 2023-05-17 15:37:29 +0200 | [diff] [blame] | 94 | #if defined(MBEDTLS_PK_USE_PSA_EC_DATA) |
| 95 | /* No need to check whether the parsed public point is on the curve or |
| 96 | * not because this is already done by the internal "pk_get_ecpubkey()" |
| 97 | * function */ |
| 98 | #else |
| 99 | const mbedtls_ecp_keypair *eckey; |
Valerio Setti | 77a7568 | 2023-05-15 11:18:46 +0200 | [diff] [blame] | 100 | eckey = mbedtls_pk_ec_ro(ctx); |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 101 | TEST_ASSERT(mbedtls_ecp_check_pubkey(&eckey->grp, &eckey->Q) == 0); |
Valerio Setti | 483738e | 2023-05-17 15:37:29 +0200 | [diff] [blame] | 102 | #endif |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 103 | } |
| 104 | |
Paul Bakker | bd51b26 | 2014-07-10 15:26:12 +0200 | [diff] [blame] | 105 | exit: |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 106 | mbedtls_pk_free(&ctx); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 107 | USE_PSA_DONE(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 108 | } |
| 109 | /* END_CASE */ |
| 110 | |
Valerio Setti | 545a0d6 | 2023-06-14 14:56:48 +0200 | [diff] [blame] | 111 | /* BEGIN_CASE depends_on:MBEDTLS_FS_IO:MBEDTLS_PK_HAVE_ECC_KEYS */ |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 112 | void pk_parse_keyfile_ec(char *key_file, char *password, int result) |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 113 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 114 | mbedtls_pk_context ctx; |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 115 | int res; |
| 116 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 117 | mbedtls_pk_init(&ctx); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 118 | USE_PSA_INIT(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 119 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 120 | res = mbedtls_pk_parse_keyfile(&ctx, key_file, password, |
| 121 | mbedtls_test_rnd_std_rand, NULL); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 122 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 123 | TEST_ASSERT(res == result); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 124 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 125 | if (res == 0) { |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 126 | TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_ECKEY)); |
Valerio Setti | 7237d5f | 2023-05-18 19:00:22 +0200 | [diff] [blame] | 127 | #if defined(MBEDTLS_ECP_C) |
| 128 | const mbedtls_ecp_keypair *eckey = mbedtls_pk_ec_ro(ctx); |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 129 | TEST_ASSERT(mbedtls_ecp_check_privkey(&eckey->grp, &eckey->d) == 0); |
Valerio Setti | 7237d5f | 2023-05-18 19:00:22 +0200 | [diff] [blame] | 130 | #else |
| 131 | /* PSA keys are already checked on import so nothing to do here. */ |
| 132 | #endif |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 133 | } |
| 134 | |
Paul Bakker | bd51b26 | 2014-07-10 15:26:12 +0200 | [diff] [blame] | 135 | exit: |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 136 | mbedtls_pk_free(&ctx); |
Valerio Setti | 3fddf25 | 2023-04-04 10:49:28 +0200 | [diff] [blame] | 137 | USE_PSA_DONE(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 138 | } |
| 139 | /* END_CASE */ |
| 140 | |
Manuel Pégourié-Gonnard | b65370f | 2020-02-10 10:50:16 +0100 | [diff] [blame] | 141 | /* BEGIN_CASE */ |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 142 | void pk_parse_key(data_t *buf, int result) |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 143 | { |
Manuel Pégourié-Gonnard | 2cf5a7c | 2015-04-08 12:49:31 +0200 | [diff] [blame] | 144 | mbedtls_pk_context pk; |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 145 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 146 | mbedtls_pk_init(&pk); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 147 | USE_PSA_INIT(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 148 | |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 149 | TEST_ASSERT(mbedtls_pk_parse_key(&pk, buf->x, buf->len, NULL, 0, |
| 150 | mbedtls_test_rnd_std_rand, NULL) == result); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 151 | |
Paul Bakker | bd51b26 | 2014-07-10 15:26:12 +0200 | [diff] [blame] | 152 | exit: |
Gilles Peskine | 449bd83 | 2023-01-11 14:50:10 +0100 | [diff] [blame] | 153 | mbedtls_pk_free(&pk); |
Valerio Setti | 14bfdbf | 2023-04-24 13:53:21 +0200 | [diff] [blame] | 154 | USE_PSA_DONE(); |
Paul Bakker | 1a7550a | 2013-09-15 13:01:22 +0200 | [diff] [blame] | 155 | } |
| 156 | /* END_CASE */ |
Valerio Setti | aed8799 | 2023-07-04 19:58:43 +0200 | [diff] [blame] | 157 | |
Waleed Elmelegy | 38202a2 | 2023-09-21 15:21:10 +0100 | [diff] [blame] | 158 | /* BEGIN_CASE depends_on:MBEDTLS_TEST_HOOKS:HAVE_mbedtls_pk_parse_key_pkcs8_encrypted_der */ |
Waleed Elmelegy | 1db5cda | 2023-09-20 18:00:48 +0100 | [diff] [blame] | 159 | void pk_parse_key_encrypted(data_t *buf, data_t *pass, int result) |
| 160 | { |
| 161 | mbedtls_pk_context pk; |
| 162 | |
| 163 | mbedtls_pk_init(&pk); |
| 164 | USE_PSA_INIT(); |
Waleed Elmelegy | 38202a2 | 2023-09-21 15:21:10 +0100 | [diff] [blame] | 165 | |
Waleed Elmelegy | 9d4d8eb | 2023-09-21 08:27:39 +0100 | [diff] [blame] | 166 | TEST_EQUAL(mbedtls_pk_parse_key_pkcs8_encrypted_der(&pk, buf->x, buf->len, |
Waleed Elmelegy | 556a079 | 2023-09-21 09:19:56 +0100 | [diff] [blame] | 167 | pass->x, pass->len, |
| 168 | mbedtls_test_rnd_std_rand, |
| 169 | NULL), result); |
Waleed Elmelegy | 1db5cda | 2023-09-20 18:00:48 +0100 | [diff] [blame] | 170 | exit: |
| 171 | mbedtls_pk_free(&pk); |
| 172 | USE_PSA_DONE(); |
| 173 | } |
| 174 | /* END_CASE */ |
| 175 | |
Valerio Setti | d476faa | 2023-07-05 10:33:53 +0200 | [diff] [blame] | 176 | /* BEGIN_CASE depends_on:MBEDTLS_PK_HAVE_ECC_KEYS:MBEDTLS_PK_WRITE_C */ |
| 177 | void pk_parse_fix_montgomery(data_t *input_key, data_t *exp_output) |
Valerio Setti | aed8799 | 2023-07-04 19:58:43 +0200 | [diff] [blame] | 178 | { |
| 179 | /* Montgomery keys have specific bits set to either 0 or 1 depending on |
| 180 | * their position. This is enforced during parsing (please see the implementation |
| 181 | * of mbedtls_ecp_read_key() for more details). The scope of this function |
| 182 | * is to verify this enforcing by feeding the parse algorithm with a x25519 |
| 183 | * key which does not have those bits set properly. */ |
| 184 | mbedtls_pk_context pk; |
| 185 | unsigned char *output_key = NULL; |
| 186 | size_t output_key_len = 0; |
| 187 | |
| 188 | mbedtls_pk_init(&pk); |
| 189 | USE_PSA_INIT(); |
| 190 | |
| 191 | TEST_EQUAL(mbedtls_pk_parse_key(&pk, input_key->x, input_key->len, NULL, 0, |
| 192 | mbedtls_test_rnd_std_rand, NULL), 0); |
| 193 | |
| 194 | output_key_len = input_key->len; |
Tom Cosgrove | 05b2a87 | 2023-07-21 11:31:13 +0100 | [diff] [blame] | 195 | TEST_CALLOC(output_key, output_key_len); |
Valerio Setti | aed8799 | 2023-07-04 19:58:43 +0200 | [diff] [blame] | 196 | /* output_key_len is updated with the real amount of data written to |
| 197 | * output_key buffer. */ |
| 198 | output_key_len = mbedtls_pk_write_key_der(&pk, output_key, output_key_len); |
| 199 | TEST_ASSERT(output_key_len > 0); |
| 200 | |
Tom Cosgrove | e4e9e7d | 2023-07-21 11:40:20 +0100 | [diff] [blame] | 201 | TEST_MEMORY_COMPARE(exp_output->x, exp_output->len, output_key, output_key_len); |
Valerio Setti | aed8799 | 2023-07-04 19:58:43 +0200 | [diff] [blame] | 202 | |
| 203 | exit: |
| 204 | if (output_key != NULL) { |
| 205 | mbedtls_free(output_key); |
| 206 | } |
| 207 | mbedtls_pk_free(&pk); |
| 208 | USE_PSA_DONE(); |
| 209 | } |
| 210 | /* END_CASE */ |