blob: ce33228b28f26d4b4b25f1ed73812c27e7c3c34a [file] [log] [blame]
Gilles Peskinee59236f2018-01-27 23:32:46 +01001/* BEGIN_HEADER */
2#include "psa/crypto.h"
Gilles Peskine8c9def32018-02-08 10:02:12 +01003
4#include "mbedtls/md.h"
Gilles Peskinee59236f2018-01-27 23:32:46 +01005/* END_HEADER */
6
7/* BEGIN_DEPENDENCIES
8 * depends_on:MBEDTLS_PSA_CRYPTO_C
9 * END_DEPENDENCIES
10 */
11
12/* BEGIN_CASE */
13void init_deinit()
14{
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010015 psa_status_t status;
Gilles Peskinee59236f2018-01-27 23:32:46 +010016 int i;
17 for( i = 0; i <= 1; i++ )
18 {
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010019 status = psa_crypto_init( );
20 TEST_ASSERT( status == PSA_SUCCESS );
21 status = psa_crypto_init( );
22 TEST_ASSERT( status == PSA_SUCCESS );
Gilles Peskinee59236f2018-01-27 23:32:46 +010023 mbedtls_psa_crypto_free( );
24 }
25}
26/* END_CASE */
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010027
28/* BEGIN_CASE */
29void import( char *hex, int type, int expected_status )
30{
31 int slot = 1;
32 psa_status_t status;
33 unsigned char *data = NULL;
34 size_t data_size;
35
Gilles Peskine40f68b92018-03-07 16:43:36 +010036 data = unhexify_alloc( hex, &data_size );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010037 TEST_ASSERT( data != NULL );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010038 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
39
40 status = psa_import_key( slot, type, data, data_size );
41 TEST_ASSERT( status == (psa_status_t) expected_status );
42 if( status == PSA_SUCCESS )
43 TEST_ASSERT( psa_destroy_key( slot ) == PSA_SUCCESS );
44
45exit:
46 mbedtls_free( data );
47 mbedtls_psa_crypto_free( );
48}
49/* END_CASE */
50
51/* BEGIN_CASE */
52void import_export( char *hex, int type_arg,
53 int expected_bits,
54 int export_size_delta,
55 int expected_export_status,
56 int canonical_input )
57{
58 int slot = 1;
59 int slot2 = slot + 1;
60 psa_key_type_t type = type_arg;
61 psa_status_t status;
62 unsigned char *data = NULL;
63 unsigned char *exported = NULL;
64 unsigned char *reexported = NULL;
65 size_t data_size;
66 size_t export_size;
67 size_t exported_length;
68 size_t reexported_length;
69 psa_key_type_t got_type;
70 size_t got_bits;
mohammad1603a97cb8c2018-03-28 03:46:26 -070071 psa_key_policy_t policy = {0};
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010072
Gilles Peskine40f68b92018-03-07 16:43:36 +010073 data = unhexify_alloc( hex, &data_size );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010074 TEST_ASSERT( data != NULL );
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010075 export_size = (ssize_t) data_size + export_size_delta;
76 exported = mbedtls_calloc( 1, export_size );
77 TEST_ASSERT( exported != NULL );
78 if( ! canonical_input )
79 {
80 reexported = mbedtls_calloc( 1, export_size );
81 TEST_ASSERT( reexported != NULL );
82 }
83 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
84
mohammad1603a97cb8c2018-03-28 03:46:26 -070085 psa_key_policy_init( &policy );
86
87 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_EXPORT,
88 PSA_ALG_VENDOR_FLAG );
89
90 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
91
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +010092 /* Import the key */
93 TEST_ASSERT( psa_import_key( slot, type,
94 data, data_size ) == PSA_SUCCESS );
95
96 /* Test the key information */
97 TEST_ASSERT( psa_get_key_information( slot,
98 &got_type, &got_bits ) ==
99 PSA_SUCCESS );
100 TEST_ASSERT( got_type == type );
101 TEST_ASSERT( got_bits == (size_t) expected_bits );
102
103 /* Export the key */
104 status = psa_export_key( slot,
105 exported, export_size,
106 &exported_length );
107 TEST_ASSERT( status == (psa_status_t) expected_export_status );
108 if( status != PSA_SUCCESS )
109 goto destroy;
110
111 if( canonical_input )
112 {
113 TEST_ASSERT( exported_length == data_size );
114 TEST_ASSERT( memcmp( exported, data, data_size ) == 0 );
115 }
116 else
117 {
mohammad1603a97cb8c2018-03-28 03:46:26 -0700118 TEST_ASSERT( psa_set_key_policy( slot2, &policy ) == PSA_SUCCESS );
119
Gilles Peskine2f9c4dc2018-01-28 13:16:24 +0100120 TEST_ASSERT( psa_import_key( slot2, type,
121 exported, export_size ) ==
122 PSA_SUCCESS );
123 TEST_ASSERT( psa_export_key( slot2,
124 reexported, export_size,
125 &reexported_length ) ==
126 PSA_SUCCESS );
127 TEST_ASSERT( reexported_length == exported_length );
128 TEST_ASSERT( memcmp( reexported, exported,
129 exported_length ) == 0 );
130 }
131
132destroy:
133 /* Destroy the key */
134 TEST_ASSERT( psa_destroy_key( slot ) == PSA_SUCCESS );
135 TEST_ASSERT( psa_get_key_information(
136 slot, NULL, NULL ) == PSA_ERROR_EMPTY_SLOT );
137
138exit:
139 mbedtls_free( data );
140 mbedtls_psa_crypto_free( );
141}
142/* END_CASE */
Gilles Peskine20035e32018-02-03 22:44:14 +0100143
144/* BEGIN_CASE */
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100145void hash_finish( int alg_arg, char *input_hex, char *hash_hex )
146{
147 psa_algorithm_t alg = alg_arg;
148 unsigned char *input = NULL;
149 size_t input_size;
150 unsigned char expected_hash[MBEDTLS_MD_MAX_SIZE];
151 size_t expected_hash_length;
152 unsigned char actual_hash[MBEDTLS_MD_MAX_SIZE];
153 size_t actual_hash_length;
154 psa_hash_operation_t operation;
155
Gilles Peskine40f68b92018-03-07 16:43:36 +0100156 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100157 TEST_ASSERT( input != NULL );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100158 expected_hash_length = unhexify( expected_hash, hash_hex );
159
160 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
161
162 TEST_ASSERT( psa_hash_start( &operation, alg ) == PSA_SUCCESS );
163 TEST_ASSERT( psa_hash_update( &operation,
164 input, input_size ) == PSA_SUCCESS );
165 TEST_ASSERT( psa_hash_finish( &operation,
166 actual_hash, sizeof( actual_hash ),
167 &actual_hash_length ) == PSA_SUCCESS );
168 TEST_ASSERT( actual_hash_length == expected_hash_length );
169 TEST_ASSERT( memcmp( expected_hash, actual_hash,
170 expected_hash_length ) == 0 );
171
172exit:
173 mbedtls_free( input );
174 mbedtls_psa_crypto_free( );
175}
176/* END_CASE */
177
178/* BEGIN_CASE */
179void hash_verify( int alg_arg, char *input_hex, char *hash_hex )
180{
181 psa_algorithm_t alg = alg_arg;
182 unsigned char *input = NULL;
183 size_t input_size;
184 unsigned char expected_hash[MBEDTLS_MD_MAX_SIZE];
185 size_t expected_hash_length;
186 psa_hash_operation_t operation;
187
Gilles Peskine40f68b92018-03-07 16:43:36 +0100188 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100189 TEST_ASSERT( input != NULL );
Gilles Peskine9ef733f2018-02-07 21:05:37 +0100190 expected_hash_length = unhexify( expected_hash, hash_hex );
191
192 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
193
194 TEST_ASSERT( psa_hash_start( &operation, alg ) == PSA_SUCCESS );
195 TEST_ASSERT( psa_hash_update( &operation,
196 input, input_size ) == PSA_SUCCESS );
197 TEST_ASSERT( psa_hash_verify( &operation,
198 expected_hash,
199 expected_hash_length ) == PSA_SUCCESS );
200
201exit:
202 mbedtls_free( input );
203 mbedtls_psa_crypto_free( );
204}
205/* END_CASE */
206
207/* BEGIN_CASE */
Gilles Peskine8c9def32018-02-08 10:02:12 +0100208void mac_verify( int key_type_arg, char *key_hex,
209 int alg_arg, char *iv_hex,
210 char *input_hex, char *mac_hex )
211{
212 int key_slot = 1;
213 psa_key_type_t key_type = key_type_arg;
214 psa_algorithm_t alg = alg_arg;
215 unsigned char *key = NULL;
216 size_t key_size;
217 unsigned char *iv = NULL;
218 size_t iv_size;
219 unsigned char *input = NULL;
220 size_t input_size;
221 unsigned char *expected_mac = NULL;
222 size_t expected_mac_size;
223 psa_mac_operation_t operation;
mohammad16036df908f2018-04-02 08:34:15 -0700224 psa_key_policy_t policy;
Gilles Peskine8c9def32018-02-08 10:02:12 +0100225
Gilles Peskine40f68b92018-03-07 16:43:36 +0100226 key = unhexify_alloc( key_hex, &key_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100227 TEST_ASSERT( key != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100228 if( iv_hex[0] != 0 )
Gilles Peskine8c9def32018-02-08 10:02:12 +0100229 {
Gilles Peskine40f68b92018-03-07 16:43:36 +0100230 iv = unhexify_alloc( iv_hex, &iv_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100231 TEST_ASSERT( iv != NULL );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100232 }
Gilles Peskine40f68b92018-03-07 16:43:36 +0100233 input = unhexify_alloc( input_hex, &input_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100234 TEST_ASSERT( input != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100235 expected_mac = unhexify_alloc( mac_hex, &expected_mac_size );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100236 TEST_ASSERT( expected_mac != NULL );
Gilles Peskine8c9def32018-02-08 10:02:12 +0100237
238 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
239
mohammad16036df908f2018-04-02 08:34:15 -0700240 psa_key_policy_init( &policy );
241
242 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_VERIFY, alg_arg );
243
244 TEST_ASSERT( psa_set_key_policy( key_slot, &policy ) == PSA_SUCCESS );
245
Gilles Peskine8c9def32018-02-08 10:02:12 +0100246 TEST_ASSERT( psa_import_key( key_slot, key_type,
247 key, key_size ) == PSA_SUCCESS );
248 // TODO: support IV
249 TEST_ASSERT( psa_mac_start( &operation, key_slot, alg ) == PSA_SUCCESS );
250 TEST_ASSERT( psa_destroy_key( key_slot ) == PSA_SUCCESS );
251 TEST_ASSERT( psa_mac_update( &operation,
252 input, input_size ) == PSA_SUCCESS );
253 TEST_ASSERT( psa_mac_verify( &operation,
254 expected_mac,
255 expected_mac_size ) == PSA_SUCCESS );
256
257exit:
258 mbedtls_free( key );
259 mbedtls_free( iv );
260 mbedtls_free( input );
261 mbedtls_free( expected_mac );
262 psa_destroy_key( key_slot );
263 mbedtls_psa_crypto_free( );
264}
265/* END_CASE */
266
267/* BEGIN_CASE */
Gilles Peskine0189e752018-02-03 23:57:22 +0100268void signature_size( int type_arg, int bits, int alg_arg, int expected_size_arg )
269{
270 psa_key_type_t type = type_arg;
271 psa_algorithm_t alg = alg_arg;
272 size_t actual_size = PSA_ASYMMETRIC_SIGN_OUTPUT_SIZE(type, bits, alg);
273 TEST_ASSERT( actual_size == (size_t) expected_size_arg );
274exit:
275 ;
276}
277/* END_CASE */
278
279/* BEGIN_CASE */
Gilles Peskine20035e32018-02-03 22:44:14 +0100280void sign_deterministic( int key_type_arg, char *key_hex,
281 int alg_arg, char *input_hex, char *output_hex )
282{
283 int slot = 1;
284 psa_key_type_t key_type = key_type_arg;
285 psa_algorithm_t alg = alg_arg;
286 unsigned char *key_data = NULL;
287 size_t key_size;
Gilles Peskine0189e752018-02-03 23:57:22 +0100288 size_t key_bits;
Gilles Peskine20035e32018-02-03 22:44:14 +0100289 unsigned char *input_data = NULL;
290 size_t input_size;
291 unsigned char *output_data = NULL;
292 size_t output_size;
Gilles Peskine0189e752018-02-03 23:57:22 +0100293 unsigned char *signature = NULL;
294 size_t signature_size;
Gilles Peskine93aa0332018-02-03 23:58:03 +0100295 size_t signature_length = 0xdeadbeef;
mohammad1603a97cb8c2018-03-28 03:46:26 -0700296 psa_key_policy_t policy = {0};
Gilles Peskine20035e32018-02-03 22:44:14 +0100297
Gilles Peskine40f68b92018-03-07 16:43:36 +0100298 key_data = unhexify_alloc( key_hex, &key_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100299 TEST_ASSERT( key_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100300 input_data = unhexify_alloc( input_hex, &input_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100301 TEST_ASSERT( input_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100302 output_data = unhexify_alloc( output_hex, &output_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100303 TEST_ASSERT( output_data != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100304
305 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
306
mohammad1603a97cb8c2018-03-28 03:46:26 -0700307 psa_key_policy_init( &policy );
308
309 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_SIGN, alg_arg );
310
311 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
312
Gilles Peskine20035e32018-02-03 22:44:14 +0100313 TEST_ASSERT( psa_import_key( slot, key_type,
314 key_data, key_size ) == PSA_SUCCESS );
Gilles Peskine0189e752018-02-03 23:57:22 +0100315 TEST_ASSERT( psa_get_key_information( slot,
316 NULL,
317 &key_bits ) == PSA_SUCCESS );
318
319 signature_size = PSA_ASYMMETRIC_SIGN_OUTPUT_SIZE( key_type, alg, key_bits );
320 TEST_ASSERT( signature_size != 0 );
321 signature = mbedtls_calloc( 1, signature_size );
322 TEST_ASSERT( signature != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100323
324 TEST_ASSERT( psa_asymmetric_sign( slot, alg,
325 input_data, input_size,
326 NULL, 0,
Gilles Peskine0189e752018-02-03 23:57:22 +0100327 signature, signature_size,
Gilles Peskine20035e32018-02-03 22:44:14 +0100328 &signature_length ) == PSA_SUCCESS );
329 TEST_ASSERT( signature_length == output_size );
330 TEST_ASSERT( memcmp( signature, output_data, output_size ) == 0 );
331
332exit:
333 psa_destroy_key( slot );
334 mbedtls_free( key_data );
335 mbedtls_free( input_data );
336 mbedtls_free( output_data );
Gilles Peskine0189e752018-02-03 23:57:22 +0100337 mbedtls_free( signature );
Gilles Peskine20035e32018-02-03 22:44:14 +0100338 mbedtls_psa_crypto_free( );
339}
340/* END_CASE */
341
342/* BEGIN_CASE */
343void sign_fail( int key_type_arg, char *key_hex,
344 int alg_arg, char *input_hex,
345 int signature_size, int expected_status_arg )
346{
347 int slot = 1;
348 psa_key_type_t key_type = key_type_arg;
349 psa_algorithm_t alg = alg_arg;
350 unsigned char *key_data = NULL;
351 size_t key_size;
352 unsigned char *input_data = NULL;
353 size_t input_size;
354 psa_status_t actual_status;
355 psa_status_t expected_status = expected_status_arg;
Gilles Peskine40f68b92018-03-07 16:43:36 +0100356 unsigned char *signature = NULL;
Gilles Peskine93aa0332018-02-03 23:58:03 +0100357 size_t signature_length = 0xdeadbeef;
mohammad1603a97cb8c2018-03-28 03:46:26 -0700358 psa_key_policy_t policy = {0};
Gilles Peskine20035e32018-02-03 22:44:14 +0100359
Gilles Peskine40f68b92018-03-07 16:43:36 +0100360 key_data = unhexify_alloc( key_hex, &key_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100361 TEST_ASSERT( key_data != NULL );
Gilles Peskine40f68b92018-03-07 16:43:36 +0100362 input_data = unhexify_alloc( input_hex, &input_size );
Gilles Peskine20035e32018-02-03 22:44:14 +0100363 TEST_ASSERT( input_data != NULL );
Gilles Peskine20035e32018-02-03 22:44:14 +0100364 signature = mbedtls_calloc( 1, signature_size );
365 TEST_ASSERT( signature != NULL );
366
367 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
368
mohammad1603a97cb8c2018-03-28 03:46:26 -0700369 psa_key_policy_init( &policy );
370
371 psa_key_policy_set_usage( &policy, PSA_KEY_USAGE_SIGN, alg_arg );
372
373 TEST_ASSERT( psa_set_key_policy( slot, &policy ) == PSA_SUCCESS );
374
Gilles Peskine20035e32018-02-03 22:44:14 +0100375 TEST_ASSERT( psa_import_key( slot, key_type,
376 key_data, key_size ) == PSA_SUCCESS );
377
378 actual_status = psa_asymmetric_sign( slot, alg,
379 input_data, input_size,
380 NULL, 0,
381 signature, signature_size,
382 &signature_length );
383 TEST_ASSERT( actual_status == expected_status );
Gilles Peskine93aa0332018-02-03 23:58:03 +0100384 TEST_ASSERT( signature_length == 0 );
Gilles Peskine20035e32018-02-03 22:44:14 +0100385
386exit:
387 psa_destroy_key( slot );
388 mbedtls_free( key_data );
389 mbedtls_free( input_data );
390 mbedtls_free( signature );
391 mbedtls_psa_crypto_free( );
392}
393/* END_CASE */
mohammad16038cc1cee2018-03-28 01:21:33 +0300394
395/* BEGIN_CASE */
396void key_policy( int usage_arg, int alg_arg )
397{
398 int key_slot = 1;
mohammad16034eed7572018-03-28 05:14:59 -0700399 psa_key_type_t key_type = PSA_KEY_TYPE_AES;
mohammad16038cc1cee2018-03-28 01:21:33 +0300400 unsigned char key[32] = {0};
401 psa_key_policy_t policy_set = {0};
402 psa_key_policy_t policy_get = {0};
403
mohammad1603804cd712018-03-20 22:44:08 +0200404
mohammad16038cc1cee2018-03-28 01:21:33 +0300405 memset( key, 0x2a, sizeof( key ) );
406
407 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
408
409 psa_key_policy_init(& policy_set );
410 psa_key_policy_init(& policy_get );
411
412 psa_key_policy_set_usage( &policy_set, usage_arg, alg_arg );
413
414 TEST_ASSERT( psa_key_policy_get_usage( &policy_set ) == ( psa_key_usage_t )usage_arg );
415
416 TEST_ASSERT( psa_key_policy_get_algorithm( &policy_set) == ( psa_algorithm_t )alg_arg );
417
418 TEST_ASSERT( psa_set_key_policy( key_slot, &policy_set ) == PSA_SUCCESS );
419
420 TEST_ASSERT( psa_import_key( key_slot, key_type,
421 key, sizeof( key ) ) == PSA_SUCCESS );
422
423 TEST_ASSERT( psa_get_key_policy( key_slot, &policy_get ) == PSA_SUCCESS );
424
425 TEST_ASSERT( policy_get.usage == policy_set.usage );
426 TEST_ASSERT( policy_get.alg == policy_set.alg );
427
Gilles Peskinea0655c32018-04-30 17:06:50 +0200428
429
mohammad1603804cd712018-03-20 22:44:08 +0200430
mohammad16038cc1cee2018-03-28 01:21:33 +0300431exit:
432 psa_destroy_key( key_slot );
433 mbedtls_psa_crypto_free( );
434}
435/* END_CASE */
436
mohammad16034eed7572018-03-28 05:14:59 -0700437/* BEGIN_CASE */
438void key_policy_fail( int usage_arg, int alg_arg, int expected_status, char *key_hex )
439{
440 int key_slot = 1;
mohammad16034eed7572018-03-28 05:14:59 -0700441 unsigned char* keypair = NULL;
442 size_t key_size = 0;
443 size_t signature_length = 0;
444 psa_key_policy_t policy = {0};
445 int actual_status = PSA_SUCCESS;
mohammad16034eed7572018-03-28 05:14:59 -0700446
447 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
448
449 psa_key_policy_init( &policy );
450
451 psa_key_policy_set_usage( &policy, usage_arg, alg_arg );
452
453 TEST_ASSERT( psa_set_key_policy( key_slot, &policy ) == PSA_SUCCESS );
454
mohammad16036df908f2018-04-02 08:34:15 -0700455 if( usage_arg & PSA_KEY_USAGE_EXPORT )
mohammad16034eed7572018-03-28 05:14:59 -0700456 {
mohammad16036df908f2018-04-02 08:34:15 -0700457 keypair = unhexify_alloc( key_hex, &key_size );
458 TEST_ASSERT( keypair != NULL );
459 TEST_ASSERT( psa_import_key( key_slot, PSA_KEY_TYPE_RSA_KEYPAIR,
460 keypair, key_size ) == PSA_SUCCESS );
461 actual_status = psa_asymmetric_sign( key_slot,
462 ( psa_algorithm_t )alg_arg, NULL, 0, NULL, 0,
463 NULL, 0, &signature_length );
464 }
465
466 if( usage_arg & PSA_KEY_USAGE_SIGN )
467 {
mohammad1603d926b882018-04-16 01:53:20 -0700468 keypair = unhexify_alloc( key_hex, &key_size );
469 TEST_ASSERT( keypair != NULL );
mohammad16036df908f2018-04-02 08:34:15 -0700470 TEST_ASSERT( psa_import_key( key_slot, PSA_KEY_TYPE_RSA_KEYPAIR,
mohammad1603d926b882018-04-16 01:53:20 -0700471 keypair, key_size ) == PSA_SUCCESS );
mohammad16036df908f2018-04-02 08:34:15 -0700472 actual_status = psa_export_key( key_slot, NULL, 0, NULL );
mohammad16034eed7572018-03-28 05:14:59 -0700473 }
474
475 TEST_ASSERT( actual_status == expected_status );
476
477exit:
478 psa_destroy_key( key_slot );
mohammad1603d926b882018-04-16 01:53:20 -0700479 mbedtls_free( keypair );
mohammad16034eed7572018-03-28 05:14:59 -0700480 mbedtls_psa_crypto_free( );
481}
482/* END_CASE */
Gilles Peskinea0655c32018-04-30 17:06:50 +0200483
484/* BEGIN_CASE */
485void key_lifetime( int lifetime_arg )
486{
487 int key_slot = 1;
488 psa_key_type_t key_type = PSA_ALG_CBC_BASE;
489 unsigned char key[32] = {0};
490 psa_key_lifetime_t lifetime_set = (psa_key_lifetime_t) lifetime_arg;
491 psa_key_lifetime_t lifetime_get;
492 memset( key, 0x2a, sizeof( key ) );
493 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
494 TEST_ASSERT( psa_set_key_lifetime( key_slot,
495 lifetime_set ) == PSA_SUCCESS );
496 TEST_ASSERT( psa_import_key( key_slot, key_type,
497 key, sizeof( key ) ) == PSA_SUCCESS );
498 TEST_ASSERT( psa_get_key_lifetime( key_slot,
499 &lifetime_get ) == PSA_SUCCESS );
500 TEST_ASSERT( lifetime_get == lifetime_set );
501exit:
502 psa_destroy_key( key_slot );
503 mbedtls_psa_crypto_free( );
504}
505/* END_CASE */
mohammad1603804cd712018-03-20 22:44:08 +0200506
507/* BEGIN_CASE */
508void key_lifetime_set_fail( int key_slot_arg, int lifetime_arg, int expected_status_arg )
509{
510 int key_slot = 1;
mohammad1603804cd712018-03-20 22:44:08 +0200511 psa_key_lifetime_t lifetime_set = (psa_key_lifetime_t) lifetime_arg;
512 psa_status_t actual_status;
513 psa_status_t expected_status = expected_status_arg;
514
mohammad1603804cd712018-03-20 22:44:08 +0200515 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
516
mohammad1603804cd712018-03-20 22:44:08 +0200517 actual_status = psa_set_key_lifetime( key_slot_arg, lifetime_set );
518
519 if( actual_status == PSA_SUCCESS )
520 actual_status = psa_set_key_lifetime( key_slot_arg, lifetime_set );
521
522 TEST_ASSERT( expected_status == actual_status );
523
524exit:
mohammad1603804cd712018-03-20 22:44:08 +0200525 psa_destroy_key( key_slot );
526 mbedtls_psa_crypto_free( );
527}
528/* END_CASE */
mohammad1603d7d7ba52018-03-12 18:51:53 +0200529
530* BEGIN_CASE */
mohammad1603e6b67a12018-03-12 10:38:49 -0700531void cipher_test_positive( int alg_arg, int key_type_arg,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200532 char *key_hex,
533 char *input_hex )
534{
535 int key_slot = 1;
536 psa_key_type_t key_type = key_type_arg;
537 psa_algorithm_t alg = alg_arg;
538 unsigned char *key = NULL;
539 size_t key_size;
mohammad1603e6b67a12018-03-12 10:38:49 -0700540 unsigned char iv[16] = {0};
mohammad1603d7d7ba52018-03-12 18:51:53 +0200541 size_t iv_size = 16;
542 size_t iv_length = 0;
543 unsigned char *input = NULL;
544 size_t input_size = 0;
545 unsigned char *output = NULL;
546 size_t output_size = 0;
547 size_t output_length = 0;
548 psa_cipher_operation_t operation;
549
550 key = unhexify_alloc( key_hex, &key_size );
551 TEST_ASSERT( key != NULL );
552
553 input = unhexify_alloc( input_hex, &input_size );
554 TEST_ASSERT( input != NULL );
555
556 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
557
558 TEST_ASSERT( psa_import_key( key_slot, key_type,
559 key, key_size ) == PSA_SUCCESS );
560
561 TEST_ASSERT( psa_decrypt_setup( &operation, key_slot, alg ) == PSA_SUCCESS );
562
mohammad1603e6b67a12018-03-12 10:38:49 -0700563 TEST_ASSERT( psa_encrypt_generate_iv( iv,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200564 iv_size, &iv_length) == PSA_SUCCESS );
565
566 TEST_ASSERT( psa_encrypt_set_iv( &operation, iv,
567 iv_length) == PSA_SUCCESS );
568
569 TEST_ASSERT( psa_cipher_update( &operation, input, input_size,
570 output, output_size,
571 &output_length) == PSA_SUCCESS );
572
573 TEST_ASSERT( psa_cipher_finish( &operation, output + output_length,
574 output_size - output_length,
575 &output_length) == PSA_SUCCESS );
576
mohammad1603e6b67a12018-03-12 10:38:49 -0700577 TEST_ASSERT( psa_cipher_abort( &operation ) == PSA_SUCCESS );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200578
579exit:
580 mbedtls_free( key );
581 mbedtls_free( input );
582 psa_destroy_key( key_slot );
583 mbedtls_psa_crypto_free( );
584}
585/* END_CASE */
586
587/* BEGIN_CASE */
mohammad1603e6b67a12018-03-12 10:38:49 -0700588void cipher_test_verify_output( int alg_arg, int key_type_arg,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200589 char *key_hex,
590 char *input_hex )
591{
592 int key_slot = 1;
593 psa_key_type_t key_type = key_type_arg;
594 psa_algorithm_t alg = alg_arg;
595 unsigned char *key = NULL;
596 size_t key_size;
mohammad1603e6b67a12018-03-12 10:38:49 -0700597 unsigned char iv[16] = {0};
mohammad1603d7d7ba52018-03-12 18:51:53 +0200598 size_t iv_size = 16;
599 size_t iv_length = 0;
600 unsigned char *input = NULL;
601 size_t input_size = 0;
602 unsigned char *output1 = NULL;
603 size_t output1_size = 0;
604 size_t output1_length = 0;
605 unsigned char *output2 = NULL;
606 size_t output2_size = 0;
607 size_t output2_length = 0;
608 size_t tmp_output_length = 0;
609 psa_cipher_operation_t operation1;
610 psa_cipher_operation_t operation2;
611
612 key = unhexify_alloc( key_hex, &key_size );
613 TEST_ASSERT( key != NULL );
614
615 input = unhexify_alloc( input_hex, &input_size );
616 TEST_ASSERT( input != NULL );
617
618 TEST_ASSERT( psa_crypto_init( ) == PSA_SUCCESS );
619
620 TEST_ASSERT( psa_import_key( key_slot, key_type,
621 key, key_size ) == PSA_SUCCESS );
622
623 TEST_ASSERT( psa_decrypt_setup( &operation1, key_slot, alg ) == PSA_SUCCESS );
624
mohammad1603e6b67a12018-03-12 10:38:49 -0700625 TEST_ASSERT( psa_encrypt_generate_iv( iv,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200626 iv_size, &iv_length) == PSA_SUCCESS );
627
628 TEST_ASSERT( psa_encrypt_set_iv( &operation1, iv,
629 iv_length) == PSA_SUCCESS );
630
631 TEST_ASSERT( psa_cipher_update( &operation1, input, input_size,
632 output1, output1_size,
633 &output1_length) == PSA_SUCCESS );
634
635 TEST_ASSERT( psa_cipher_finish( &operation1, output1 + output1_length,
636 output1_size - output1_length,
637 &tmp_output_length) == PSA_SUCCESS );
638
639 output1_length += tmp_output_length;
640
641 TEST_ASSERT( psa_cipher_abort( &operation1 ) == PSA_SUCCESS );
642
643 TEST_ASSERT( psa_decrypt_setup( &operation2, key_slot, alg ) == PSA_SUCCESS );
644
645 TEST_ASSERT( psa_encrypt_set_iv( &operation2, iv,
646 iv_length) == PSA_SUCCESS );
647
mohammad1603e6b67a12018-03-12 10:38:49 -0700648 TEST_ASSERT( psa_cipher_update( &operation2, output1, output1_length,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200649 output2, output2_size, &output2_length) == PSA_SUCCESS );
650 tmp_output_length = 0;
mohammad1603e6b67a12018-03-12 10:38:49 -0700651 TEST_ASSERT( psa_cipher_finish( &operation2, output2 + output2_length,
mohammad1603d7d7ba52018-03-12 18:51:53 +0200652 output2_size - output2_length,
653 &tmp_output_length) == PSA_SUCCESS );
654
655 output2_length += tmp_output_length;
656
657 TEST_ASSERT( psa_cipher_abort( &operation1 ) == PSA_SUCCESS );
658
659 TEST_ASSERT( input_size == output1_length );
660 TEST_ASSERT( output1_length == output2_length );
mohammad1603e6b67a12018-03-12 10:38:49 -0700661 TEST_ASSERT( memcmp( input, output2, input_size ) == 0 );
mohammad1603d7d7ba52018-03-12 18:51:53 +0200662
663exit:
664 mbedtls_free( key );
665 mbedtls_free( input );
666 psa_destroy_key( key_slot );
667 mbedtls_psa_crypto_free( );
668}
669/* END_CASE */