blob: 92b4d5dc2a9a89a177bb0b3dfa7735ccaf374ad7 [file] [log] [blame]
Paul Elliottd6635432021-11-18 22:35:48 +00001/* BEGIN_HEADER */
2#include "mbedtls/pkcs12.h"
Paul Elliott6e7deb12021-12-03 18:55:31 +00003#include "common.h"
Paul Elliottd6635432021-11-18 22:35:48 +00004
Gilles Peskine449bd832023-01-11 14:50:10 +01005typedef enum {
6 USE_NULL_INPUT = 0,
7 USE_GIVEN_INPUT = 1,
Paul Elliottd6635432021-11-18 22:35:48 +00008} input_usage_method_t;
9
10/* END_HEADER */
11
12/* BEGIN_DEPENDENCIES
Paul Elliott3584ae42021-11-30 16:21:27 +000013 * depends_on:MBEDTLS_PKCS12_C
Paul Elliottd6635432021-11-18 22:35:48 +000014 * END_DEPENDENCIES
15 */
16
Waleed Elmelegy8317e912023-09-07 15:46:58 +010017/* BEGIN_CASE */
Gilles Peskine449bd832023-01-11 14:50:10 +010018void pkcs12_derive_key(int md_type, int key_size_arg,
19 data_t *password_arg, int password_usage,
20 data_t *salt_arg, int salt_usage,
21 int iterations,
22 data_t *expected_output, int expected_status)
Paul Elliottd6635432021-11-18 22:35:48 +000023
24{
Gilles Peskine449bd832023-01-11 14:50:10 +010025 unsigned char *output_data = NULL;
Paul Elliottd6635432021-11-18 22:35:48 +000026
Gilles Peskine449bd832023-01-11 14:50:10 +010027 unsigned char *password = NULL;
28 size_t password_len = 0;
29 unsigned char *salt = NULL;
30 size_t salt_len = 0;
31 size_t key_size = key_size_arg;
Paul Elliottd6635432021-11-18 22:35:48 +000032
Manuel Pégourié-Gonnardbe97afe2023-03-16 10:00:54 +010033 MD_PSA_INIT();
34
Gilles Peskine449bd832023-01-11 14:50:10 +010035 if (password_usage == USE_GIVEN_INPUT) {
36 password = password_arg->x;
37 }
Paul Elliott4768a302021-11-30 16:39:51 +000038
Gilles Peskine449bd832023-01-11 14:50:10 +010039 password_len = password_arg->len;
Paul Elliottd6635432021-11-18 22:35:48 +000040
Gilles Peskine449bd832023-01-11 14:50:10 +010041 if (salt_usage == USE_GIVEN_INPUT) {
42 salt = salt_arg->x;
43 }
Paul Elliott4768a302021-11-30 16:39:51 +000044
Gilles Peskine449bd832023-01-11 14:50:10 +010045 salt_len = salt_arg->len;
Paul Elliottd6635432021-11-18 22:35:48 +000046
Waleed Elmelegy8317e912023-09-07 15:46:58 +010047 TEST_CALLOC(output_data, key_size);
Paul Elliottd6635432021-11-18 22:35:48 +000048
Gilles Peskine449bd832023-01-11 14:50:10 +010049 int ret = mbedtls_pkcs12_derivation(output_data,
Gilles Peskinea844b4b2022-09-15 21:05:04 +020050 key_size,
51 password,
52 password_len,
53 salt,
54 salt_len,
55 md_type,
56 MBEDTLS_PKCS12_DERIVE_KEY,
Gilles Peskine449bd832023-01-11 14:50:10 +010057 iterations);
Paul Elliottd6635432021-11-18 22:35:48 +000058
Gilles Peskine449bd832023-01-11 14:50:10 +010059 TEST_EQUAL(ret, expected_status);
Paul Elliottd6635432021-11-18 22:35:48 +000060
Gilles Peskine449bd832023-01-11 14:50:10 +010061 if (expected_status == 0) {
Waleed Elmelegy75b9eb32023-09-07 17:02:37 +010062 TEST_MEMORY_COMPARE(expected_output->x, expected_output->len,
Waleed Elmelegy09601702023-09-07 17:48:40 +010063 output_data, key_size);
Gilles Peskine449bd832023-01-11 14:50:10 +010064 }
Paul Elliott6e7deb12021-12-03 18:55:31 +000065
Paul Elliottd6635432021-11-18 22:35:48 +000066exit:
Gilles Peskine449bd832023-01-11 14:50:10 +010067 mbedtls_free(output_data);
Manuel Pégourié-Gonnardbe97afe2023-03-16 10:00:54 +010068 MD_PSA_DONE();
Paul Elliottd6635432021-11-18 22:35:48 +000069}
70/* END_CASE */
Waleed Elmelegy255db802023-09-04 15:11:22 +010071
Waleed Elmelegy1f59ee02023-09-07 17:59:35 +010072/* BEGIN_CASE depends_on:MBEDTLS_ASN1_PARSE_C */
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +010073void pkcs12_pbe_encrypt(int params_tag, int cipher, int md, data_t *params_hex, data_t *pw,
74 data_t *data, int outsize, int ref_ret, data_t *ref_out)
Waleed Elmelegy255db802023-09-04 15:11:22 +010075{
76 int my_ret;
Waleed Elmelegy15de8092023-09-05 15:51:48 +010077 mbedtls_asn1_buf pbe_params;
Waleed Elmelegy255db802023-09-04 15:11:22 +010078 unsigned char *my_out = NULL;
Waleed Elmelegy15de8092023-09-05 15:51:48 +010079 mbedtls_cipher_type_t cipher_alg = (mbedtls_cipher_type_t) cipher;
80 mbedtls_md_type_t md_alg = (mbedtls_md_type_t) md;
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +010081#if defined(MBEDTLS_CIPHER_PADDING_PKCS7)
82 size_t my_out_len = 0;
83#endif
Waleed Elmelegy255db802023-09-04 15:11:22 +010084
85 MD_PSA_INIT();
86
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +010087 TEST_CALLOC(my_out, outsize);
Waleed Elmelegy255db802023-09-04 15:11:22 +010088
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +010089 pbe_params.tag = params_tag;
90 pbe_params.len = params_hex->len;
91 pbe_params.p = params_hex->x;
Waleed Elmelegy255db802023-09-04 15:11:22 +010092
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +010093 if (ref_ret != MBEDTLS_ERR_ASN1_BUF_TOO_SMALL) {
94 my_ret = mbedtls_pkcs12_pbe(&pbe_params, MBEDTLS_PKCS12_PBE_ENCRYPT, cipher_alg,
95 md_alg, pw->x, pw->len, data->x, data->len, my_out);
96 TEST_EQUAL(my_ret, ref_ret);
97 }
Waleed Elmelegy255db802023-09-04 15:11:22 +010098 if (ref_ret == 0) {
99 ASSERT_COMPARE(my_out, ref_out->len,
100 ref_out->x, ref_out->len);
101 }
102
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100103#if defined(MBEDTLS_CIPHER_PADDING_PKCS7)
104 my_ret = mbedtls_pkcs12_pbe_ext(&pbe_params, MBEDTLS_PKCS12_PBE_ENCRYPT, cipher_alg,
105 md_alg, pw->x, pw->len, data->x, data->len, my_out,
106 outsize, &my_out_len);
107 TEST_EQUAL(my_ret, ref_ret);
108 if (ref_ret == 0) {
109 ASSERT_COMPARE(my_out, my_out_len,
110 ref_out->x, ref_out->len);
111 }
112#endif
113
Waleed Elmelegy255db802023-09-04 15:11:22 +0100114exit:
115 mbedtls_free(my_out);
116 MD_PSA_DONE();
117}
118/* END_CASE */
119
Waleed Elmelegy1f59ee02023-09-07 17:59:35 +0100120/* BEGIN_CASE depends_on:MBEDTLS_ASN1_PARSE_C */
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100121void pkcs12_pbe_decrypt(int params_tag, int cipher, int md, data_t *params_hex, data_t *pw,
122 data_t *data, int outsize, int ref_ret, data_t *ref_out)
Waleed Elmelegy255db802023-09-04 15:11:22 +0100123{
124 int my_ret;
Waleed Elmelegy15de8092023-09-05 15:51:48 +0100125 mbedtls_asn1_buf pbe_params;
Waleed Elmelegy255db802023-09-04 15:11:22 +0100126 unsigned char *my_out = NULL;
Waleed Elmelegy15de8092023-09-05 15:51:48 +0100127 mbedtls_cipher_type_t cipher_alg = (mbedtls_cipher_type_t) cipher;
128 mbedtls_md_type_t md_alg = (mbedtls_md_type_t) md;
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100129#if defined(MBEDTLS_CIPHER_PADDING_PKCS7)
130 size_t my_out_len = 0;
131#endif
Waleed Elmelegy255db802023-09-04 15:11:22 +0100132
133 MD_PSA_INIT();
134
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100135 TEST_CALLOC(my_out, outsize);
Waleed Elmelegy255db802023-09-04 15:11:22 +0100136
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100137 pbe_params.tag = params_tag;
138 pbe_params.len = params_hex->len;
139 pbe_params.p = params_hex->x;
Waleed Elmelegy255db802023-09-04 15:11:22 +0100140
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100141 if (ref_ret != MBEDTLS_ERR_ASN1_BUF_TOO_SMALL) {
142 my_ret = mbedtls_pkcs12_pbe(&pbe_params, MBEDTLS_PKCS12_PBE_DECRYPT, cipher_alg,
143 md_alg, pw->x, pw->len, data->x, data->len, my_out);
144 TEST_EQUAL(my_ret, ref_ret);
145 }
146
Waleed Elmelegy255db802023-09-04 15:11:22 +0100147 if (ref_ret == 0) {
148 ASSERT_COMPARE(my_out, ref_out->len,
149 ref_out->x, ref_out->len);
150 }
151
Waleed Elmelegye1cb35b2023-09-06 15:48:08 +0100152#if defined(MBEDTLS_CIPHER_PADDING_PKCS7)
153 my_ret = mbedtls_pkcs12_pbe_ext(&pbe_params, MBEDTLS_PKCS12_PBE_DECRYPT, cipher_alg,
154 md_alg, pw->x, pw->len, data->x, data->len, my_out,
155 outsize, &my_out_len);
156 TEST_EQUAL(my_ret, ref_ret);
157 if (ref_ret == 0) {
158 ASSERT_COMPARE(my_out, my_out_len,
159 ref_out->x, ref_out->len);
160 }
161#endif
162
Waleed Elmelegy255db802023-09-04 15:11:22 +0100163exit:
164 mbedtls_free(my_out);
165 MD_PSA_DONE();
166}
167/* END_CASE */