blob: a4119a208a70f8bf72caf6e4b956b1b269876a15 [file] [log] [blame]
Paul Bakker33b43f12013-08-20 11:48:36 +02001/* BEGIN_HEADER */
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +00002#include "mbedtls/rsa.h"
3#include "mbedtls/md.h"
Paul Bakker33b43f12013-08-20 11:48:36 +02004/* END_HEADER */
Paul Bakker9dcc3222011-03-08 14:16:06 +00005
Paul Bakker33b43f12013-08-20 11:48:36 +02006/* BEGIN_DEPENDENCIES
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02007 * depends_on:MBEDTLS_PKCS1_V21:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Paul Bakker33b43f12013-08-20 11:48:36 +02008 * END_DEPENDENCIES
9 */
Paul Bakker5690efc2011-05-26 13:16:06 +000010
Paul Bakker33b43f12013-08-20 11:48:36 +020011/* BEGIN_CASE */
Azim Khanf1aaec92017-05-30 14:23:15 +010012void pkcs1_rsaes_oaep_encrypt( int mod, int radix_N, char * input_N,
13 int radix_E, char * input_E, int hash,
Azim Khan5fcca462018-06-29 11:05:32 +010014 data_t * message_str, data_t * rnd_buf,
Ronald Cronaea41df2020-06-26 14:33:03 +020015 data_t * result_str, int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +000016{
Ron Eldor5d7254a2018-11-22 15:49:49 +020017 unsigned char output[256];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020018 mbedtls_rsa_context ctx;
Paul Bakker4cce2bb2011-03-13 16:56:35 +000019 rnd_buf_info info;
Hanno Becker6326a6d2017-08-23 06:38:22 +010020 mbedtls_mpi N, E;
Paul Bakker9dcc3222011-03-08 14:16:06 +000021
Azim Khand30ca132017-06-09 04:32:58 +010022 info.buf = rnd_buf->x;
23 info.length = rnd_buf->len;
Paul Bakker9dcc3222011-03-08 14:16:06 +000024
Hanno Becker6326a6d2017-08-23 06:38:22 +010025 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020026 mbedtls_rsa_init( &ctx, MBEDTLS_RSA_PKCS_V21, hash );
Ron Eldor5d7254a2018-11-22 15:49:49 +020027 memset( output, 0x00, sizeof( output ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +000028
Hanno Becker6326a6d2017-08-23 06:38:22 +010029 TEST_ASSERT( mbedtls_mpi_read_string( &N, radix_N, input_N ) == 0 );
30 TEST_ASSERT( mbedtls_mpi_read_string( &E, radix_E, input_E ) == 0 );
31 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
32 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020033 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000034
Paul Bakker9dcc3222011-03-08 14:16:06 +000035
Azim Khand30ca132017-06-09 04:32:58 +010036 TEST_ASSERT( mbedtls_rsa_pkcs1_encrypt( &ctx, &rnd_buffer_rand, &info, MBEDTLS_RSA_PUBLIC, message_str->len, message_str->x, output ) == result );
Paul Bakker33b43f12013-08-20 11:48:36 +020037 if( result == 0 )
Paul Bakker9dcc3222011-03-08 14:16:06 +000038 {
Ronald Cronaea41df2020-06-26 14:33:03 +020039 TEST_ASSERT( mbedtls_test_hexcmp( output, result_str->x,
40 ctx.len, result_str->len ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000041 }
Paul Bakker58ef6ec2013-01-03 11:33:48 +010042
Paul Bakkerbd51b262014-07-10 15:26:12 +020043exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +010044 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020045 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +000046}
Paul Bakker33b43f12013-08-20 11:48:36 +020047/* END_CASE */
Paul Bakker9dcc3222011-03-08 14:16:06 +000048
Paul Bakker33b43f12013-08-20 11:48:36 +020049/* BEGIN_CASE */
Azim Khanf1aaec92017-05-30 14:23:15 +010050void pkcs1_rsaes_oaep_decrypt( int mod, int radix_P, char * input_P,
51 int radix_Q, char * input_Q, int radix_N,
52 char * input_N, int radix_E, char * input_E,
Ronald Cronaea41df2020-06-26 14:33:03 +020053 int hash, data_t * result_str,
Azim Khan5fcca462018-06-29 11:05:32 +010054 char * seed, data_t * message_str,
Azim Khand30ca132017-06-09 04:32:58 +010055 int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +000056{
Ron Eldor5d7254a2018-11-22 15:49:49 +020057 unsigned char output[64];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020058 mbedtls_rsa_context ctx;
Paul Bakkerf4a3f302011-04-24 15:53:29 +000059 size_t output_len;
Paul Bakker548957d2013-08-30 10:30:02 +020060 rnd_pseudo_info rnd_info;
Hanno Becker6326a6d2017-08-23 06:38:22 +010061 mbedtls_mpi N, P, Q, E;
Paul Bakkerdbd443d2013-08-16 13:38:47 +020062 ((void) seed);
Paul Bakker9dcc3222011-03-08 14:16:06 +000063
Hanno Becker6326a6d2017-08-23 06:38:22 +010064 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &P );
65 mbedtls_mpi_init( &Q ); mbedtls_mpi_init( &E );
66
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020067 mbedtls_rsa_init( &ctx, MBEDTLS_RSA_PKCS_V21, hash );
Paul Bakker9dcc3222011-03-08 14:16:06 +000068
Ron Eldor5d7254a2018-11-22 15:49:49 +020069 memset( output, 0x00, sizeof( output ) );
Paul Bakker548957d2013-08-30 10:30:02 +020070 memset( &rnd_info, 0, sizeof( rnd_pseudo_info ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +000071
Hanno Becker6326a6d2017-08-23 06:38:22 +010072 TEST_ASSERT( mbedtls_mpi_read_string( &P, radix_P, input_P ) == 0 );
73 TEST_ASSERT( mbedtls_mpi_read_string( &Q, radix_Q, input_Q ) == 0 );
74 TEST_ASSERT( mbedtls_mpi_read_string( &N, radix_N, input_N ) == 0 );
75 TEST_ASSERT( mbedtls_mpi_read_string( &E, radix_E, input_E ) == 0 );
Paul Bakker548957d2013-08-30 10:30:02 +020076
Hanno Becker6326a6d2017-08-23 06:38:22 +010077 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, &P, &Q, NULL, &E ) == 0 );
78 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Hanno Becker7f25f852017-10-10 16:56:22 +010079 TEST_ASSERT( mbedtls_rsa_complete( &ctx ) == 0 );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020080 TEST_ASSERT( mbedtls_rsa_check_privkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000081
Ron Eldor5d7254a2018-11-22 15:49:49 +020082 TEST_ASSERT( mbedtls_rsa_pkcs1_decrypt( &ctx, &rnd_pseudo_rand, &rnd_info,
83 MBEDTLS_RSA_PRIVATE, &output_len,
84 message_str->x, output,
85 sizeof( output ) ) == result );
Paul Bakker33b43f12013-08-20 11:48:36 +020086 if( result == 0 )
Paul Bakker9dcc3222011-03-08 14:16:06 +000087 {
Ronald Cronaea41df2020-06-26 14:33:03 +020088 TEST_ASSERT( mbedtls_test_hexcmp( output, result_str->x,
Ronald Cron9fde3532020-06-10 11:42:32 +020089 output_len,
Ronald Cronaea41df2020-06-26 14:33:03 +020090 result_str->len ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +000091 }
Paul Bakker6c591fa2011-05-05 11:49:20 +000092
Paul Bakkerbd51b262014-07-10 15:26:12 +020093exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +010094 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &P );
95 mbedtls_mpi_free( &Q ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020096 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +000097}
Paul Bakker33b43f12013-08-20 11:48:36 +020098/* END_CASE */
Paul Bakker9dcc3222011-03-08 14:16:06 +000099
Paul Bakker33b43f12013-08-20 11:48:36 +0200100/* BEGIN_CASE */
Azim Khanf1aaec92017-05-30 14:23:15 +0100101void pkcs1_rsassa_pss_sign( int mod, int radix_P, char * input_P, int radix_Q,
102 char * input_Q, int radix_N, char * input_N,
103 int radix_E, char * input_E, int digest, int hash,
Azim Khan5fcca462018-06-29 11:05:32 +0100104 data_t * message_str, data_t * rnd_buf,
Ronald Cronaea41df2020-06-26 14:33:03 +0200105 data_t * result_str, int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000106{
Ron Eldor5d7254a2018-11-22 15:49:49 +0200107 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
108 unsigned char output[256];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200109 mbedtls_rsa_context ctx;
Paul Bakker4cce2bb2011-03-13 16:56:35 +0000110 rnd_buf_info info;
Hanno Becker6326a6d2017-08-23 06:38:22 +0100111 mbedtls_mpi N, P, Q, E;
Paul Bakker9dcc3222011-03-08 14:16:06 +0000112
Azim Khand30ca132017-06-09 04:32:58 +0100113 info.buf = rnd_buf->x;
114 info.length = rnd_buf->len;
Paul Bakker9dcc3222011-03-08 14:16:06 +0000115
Hanno Becker6326a6d2017-08-23 06:38:22 +0100116 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &P );
117 mbedtls_mpi_init( &Q ); mbedtls_mpi_init( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200118 mbedtls_rsa_init( &ctx, MBEDTLS_RSA_PKCS_V21, hash );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000119
Ron Eldor5d7254a2018-11-22 15:49:49 +0200120 memset( hash_result, 0x00, sizeof( hash_result ) );
121 memset( output, 0x00, sizeof( output ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000122
Hanno Becker6326a6d2017-08-23 06:38:22 +0100123 TEST_ASSERT( mbedtls_mpi_read_string( &P, radix_P, input_P ) == 0 );
124 TEST_ASSERT( mbedtls_mpi_read_string( &Q, radix_Q, input_Q ) == 0 );
125 TEST_ASSERT( mbedtls_mpi_read_string( &N, radix_N, input_N ) == 0 );
126 TEST_ASSERT( mbedtls_mpi_read_string( &E, radix_E, input_E ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000127
Hanno Becker6326a6d2017-08-23 06:38:22 +0100128 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, &P, &Q, NULL, &E ) == 0 );
129 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Hanno Becker7f25f852017-10-10 16:56:22 +0100130 TEST_ASSERT( mbedtls_rsa_complete( &ctx ) == 0 );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200131 TEST_ASSERT( mbedtls_rsa_check_privkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000132
Paul Bakker9dcc3222011-03-08 14:16:06 +0000133
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200134 if( mbedtls_md_info_from_type( digest ) != NULL )
Azim Khand30ca132017-06-09 04:32:58 +0100135 TEST_ASSERT( mbedtls_md( mbedtls_md_info_from_type( digest ), message_str->x, message_str->len, hash_result ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000136
Hanno Becker6326a6d2017-08-23 06:38:22 +0100137 TEST_ASSERT( mbedtls_rsa_pkcs1_sign( &ctx, &rnd_buffer_rand, &info, MBEDTLS_RSA_PRIVATE,
138 digest, 0, hash_result, output ) == result );
Paul Bakker33b43f12013-08-20 11:48:36 +0200139 if( result == 0 )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000140 {
Paul Bakker9dcc3222011-03-08 14:16:06 +0000141
Ronald Cronaea41df2020-06-26 14:33:03 +0200142 TEST_ASSERT( mbedtls_test_hexcmp( output, result_str->x,
143 ctx.len, result_str->len ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000144 }
Paul Bakker6c591fa2011-05-05 11:49:20 +0000145
Paul Bakkerbd51b262014-07-10 15:26:12 +0200146exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100147 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &P );
148 mbedtls_mpi_free( &Q ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200149 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000150}
Paul Bakker33b43f12013-08-20 11:48:36 +0200151/* END_CASE */
Paul Bakker9dcc3222011-03-08 14:16:06 +0000152
Paul Bakker33b43f12013-08-20 11:48:36 +0200153/* BEGIN_CASE */
Azim Khanf1aaec92017-05-30 14:23:15 +0100154void pkcs1_rsassa_pss_verify( int mod, int radix_N, char * input_N,
155 int radix_E, char * input_E, int digest,
Azim Khan5fcca462018-06-29 11:05:32 +0100156 int hash, data_t * message_str, char * salt,
157 data_t * result_str, int result )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000158{
Ron Eldor5d7254a2018-11-22 15:49:49 +0200159 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200160 mbedtls_rsa_context ctx;
Hanno Becker6326a6d2017-08-23 06:38:22 +0100161 mbedtls_mpi N, E;
Paul Bakkerdbd443d2013-08-16 13:38:47 +0200162 ((void) salt);
Paul Bakker9dcc3222011-03-08 14:16:06 +0000163
Hanno Becker6326a6d2017-08-23 06:38:22 +0100164 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200165 mbedtls_rsa_init( &ctx, MBEDTLS_RSA_PKCS_V21, hash );
Ron Eldor5d7254a2018-11-22 15:49:49 +0200166 memset( hash_result, 0x00, sizeof( hash_result ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000167
Hanno Becker6326a6d2017-08-23 06:38:22 +0100168 TEST_ASSERT( mbedtls_mpi_read_string( &N, radix_N, input_N ) == 0 );
169 TEST_ASSERT( mbedtls_mpi_read_string( &E, radix_E, input_E ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000170
Hanno Becker6326a6d2017-08-23 06:38:22 +0100171 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
172 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200173 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000174
Paul Bakker9dcc3222011-03-08 14:16:06 +0000175
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200176 if( mbedtls_md_info_from_type( digest ) != NULL )
Azim Khand30ca132017-06-09 04:32:58 +0100177 TEST_ASSERT( mbedtls_md( mbedtls_md_info_from_type( digest ), message_str->x, message_str->len, hash_result ) == 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000178
Azim Khand30ca132017-06-09 04:32:58 +0100179 TEST_ASSERT( mbedtls_rsa_pkcs1_verify( &ctx, NULL, NULL, MBEDTLS_RSA_PUBLIC, digest, 0, hash_result, result_str->x ) == result );
Paul Bakker58ef6ec2013-01-03 11:33:48 +0100180
Paul Bakkerbd51b262014-07-10 15:26:12 +0200181exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100182 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200183 mbedtls_rsa_free( &ctx );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000184}
Paul Bakker33b43f12013-08-20 11:48:36 +0200185/* END_CASE */
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200186
187/* BEGIN_CASE */
Azim Khanf1aaec92017-05-30 14:23:15 +0100188void pkcs1_rsassa_pss_verify_ext( int mod, int radix_N, char * input_N,
189 int radix_E, char * input_E,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200190 int msg_digest_id, int ctx_hash,
191 int mgf_hash, int salt_len,
Azim Khan5fcca462018-06-29 11:05:32 +0100192 data_t * message_str,
193 data_t * result_str, int result_simple,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200194 int result_full )
195{
Ron Eldor5d7254a2018-11-22 15:49:49 +0200196 unsigned char hash_result[MBEDTLS_MD_MAX_SIZE];
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200197 mbedtls_rsa_context ctx;
Azim Khanf1aaec92017-05-30 14:23:15 +0100198 size_t hash_len;
Hanno Becker6326a6d2017-08-23 06:38:22 +0100199 mbedtls_mpi N, E;
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200200
Hanno Becker6326a6d2017-08-23 06:38:22 +0100201 mbedtls_mpi_init( &N ); mbedtls_mpi_init( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200202 mbedtls_rsa_init( &ctx, MBEDTLS_RSA_PKCS_V21, ctx_hash );
Ron Eldor5d7254a2018-11-22 15:49:49 +0200203 memset( hash_result, 0x00, sizeof( hash_result ) );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200204
Hanno Becker6326a6d2017-08-23 06:38:22 +0100205 TEST_ASSERT( mbedtls_mpi_read_string( &N, radix_N, input_N ) == 0 );
206 TEST_ASSERT( mbedtls_mpi_read_string( &E, radix_E, input_E ) == 0 );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200207
Hanno Becker6326a6d2017-08-23 06:38:22 +0100208 TEST_ASSERT( mbedtls_rsa_import( &ctx, &N, NULL, NULL, NULL, &E ) == 0 );
209 TEST_ASSERT( mbedtls_rsa_get_len( &ctx ) == (size_t) ( ( mod + 7 ) / 8 ) );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200210 TEST_ASSERT( mbedtls_rsa_check_pubkey( &ctx ) == 0 );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200211
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200212
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200213 if( msg_digest_id != MBEDTLS_MD_NONE )
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200214 {
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200215 TEST_ASSERT( mbedtls_md( mbedtls_md_info_from_type( msg_digest_id ),
Azim Khand30ca132017-06-09 04:32:58 +0100216 message_str->x, message_str->len, hash_result ) == 0 );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200217 hash_len = 0;
218 }
219 else
220 {
Azim Khand30ca132017-06-09 04:32:58 +0100221 memcpy( hash_result, message_str->x, message_str->len );
222 hash_len = message_str->len;
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200223 }
224
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200225 TEST_ASSERT( mbedtls_rsa_pkcs1_verify( &ctx, NULL, NULL, MBEDTLS_RSA_PUBLIC,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200226 msg_digest_id, hash_len, hash_result,
Azim Khand30ca132017-06-09 04:32:58 +0100227 result_str->x ) == result_simple );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200228
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200229 TEST_ASSERT( mbedtls_rsa_rsassa_pss_verify_ext( &ctx, NULL, NULL, MBEDTLS_RSA_PUBLIC,
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200230 msg_digest_id, hash_len, hash_result,
231 mgf_hash, salt_len,
Azim Khand30ca132017-06-09 04:32:58 +0100232 result_str->x ) == result_full );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200233
Paul Bakkerbd51b262014-07-10 15:26:12 +0200234exit:
Hanno Becker6326a6d2017-08-23 06:38:22 +0100235 mbedtls_mpi_free( &N ); mbedtls_mpi_free( &E );
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200236 mbedtls_rsa_free( &ctx );
Manuel Pégourié-Gonnard5ec628a2014-06-03 11:44:06 +0200237}
238/* END_CASE */