aboutsummaryrefslogtreecommitdiff
path: root/tests/suites/test_suite_psa_crypto_hash.function
blob: 20167fdabac5b60c924a5faeddd5082da53e0713 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
/* BEGIN_HEADER */

#include <stdint.h>
#include "psa/crypto.h"

/* END_HEADER */

/* BEGIN_DEPENDENCIES
 * depends_on:MBEDTLS_PSA_CRYPTO_C
 * END_DEPENDENCIES
 */

/* BEGIN_CASE */
void hash_finish(int alg_arg, data_t *input, data_t *expected_hash)
{
    psa_algorithm_t alg = alg_arg;
    unsigned char actual_hash[PSA_HASH_MAX_SIZE];
    size_t actual_hash_length;
    psa_hash_operation_t operation = PSA_HASH_OPERATION_INIT;

    PSA_ASSERT(psa_crypto_init());

    PSA_ASSERT(psa_hash_setup(&operation, alg));
    PSA_ASSERT(psa_hash_update(&operation,
                               input->x, input->len));
    PSA_ASSERT(psa_hash_finish(&operation,
                               actual_hash, sizeof(actual_hash),
                               &actual_hash_length));
    TEST_MEMORY_COMPARE(expected_hash->x, expected_hash->len,
                        actual_hash, actual_hash_length);

exit:
    psa_hash_abort(&operation);
    PSA_DONE();
}
/* END_CASE */

/* BEGIN_CASE */
void hmac(int alg_arg, char *input, data_t *expected_mac)
{
    psa_algorithm_t alg = PSA_ALG_HMAC(alg_arg);

    mbedtls_svc_key_id_t key = MBEDTLS_SVC_KEY_ID_INIT;
    psa_key_type_t key_type = PSA_KEY_TYPE_HMAC;
    const uint8_t key_data[] = { // 32 bytes of 0xaa
        0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa,
        0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa,
        0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa, 0xaa
    };
    psa_key_attributes_t attributes = PSA_KEY_ATTRIBUTES_INIT;

    PSA_ASSERT(psa_crypto_init());

    psa_set_key_usage_flags(&attributes, PSA_KEY_USAGE_SIGN_MESSAGE | PSA_KEY_USAGE_VERIFY_MESSAGE);
    psa_set_key_algorithm(&attributes, alg);
    psa_set_key_type(&attributes, key_type);
    PSA_ASSERT(psa_import_key(&attributes, key_data, sizeof(key_data), &key));

    uint8_t mac[PSA_MAC_MAX_SIZE + 10] = { 0 };
    size_t mac_length = 0;

    size_t input_len = strlen(input);
    PSA_ASSERT(psa_mac_compute(key, alg, (uint8_t const *) input, input_len, mac, sizeof(mac),
                               &mac_length));

    // manual comparison against expected MAC
    ASSERT_COMPARE(expected_mac->x, expected_mac->len, mac, mac_length);

    // use psa_mac_verify to compare to expected MAC
    PSA_ASSERT(psa_mac_verify(key, alg, (uint8_t const *) input, input_len, expected_mac->x,
                              expected_mac->len));

    // corrupt the MAC and check that psa_mac_verify fails
    expected_mac->x[0] ^= 0x7f;
    TEST_EQUAL(psa_mac_verify(key, alg, (uint8_t const *) input, input_len, expected_mac->x,
                              expected_mac->len), PSA_ERROR_INVALID_SIGNATURE);

    PSA_ASSERT(psa_destroy_key(key));
exit:
    PSA_DONE();
}
/* END_CASE */

/* BEGIN_CASE */
void hash_verify(int alg_arg, data_t *input, data_t *expected_hash)
{
    psa_algorithm_t alg = alg_arg;
    psa_hash_operation_t operation = PSA_HASH_OPERATION_INIT;

    PSA_ASSERT(psa_crypto_init());

    PSA_ASSERT(psa_hash_setup(&operation, alg));
    PSA_ASSERT(psa_hash_update(&operation,
                               input->x,
                               input->len));
    PSA_ASSERT(psa_hash_verify(&operation,
                               expected_hash->x,
                               expected_hash->len));

exit:
    psa_hash_abort(&operation);
    PSA_DONE();
}
/* END_CASE */

/* BEGIN_CASE */
void hash_multi_part(int alg_arg, data_t *input, data_t *expected_hash)
{
    psa_algorithm_t alg = alg_arg;
    unsigned char actual_hash[PSA_HASH_MAX_SIZE];
    size_t actual_hash_length;
    psa_hash_operation_t operation = PSA_HASH_OPERATION_INIT;
    psa_hash_operation_t operation2 = PSA_HASH_OPERATION_INIT;
    uint32_t len = 0;

    PSA_ASSERT(psa_crypto_init());

    do {
        memset(actual_hash, 0, sizeof(actual_hash));
        PSA_ASSERT(psa_hash_setup(&operation, alg));

        PSA_ASSERT(psa_hash_update(&operation,
                                   input->x, len));
        PSA_ASSERT(psa_hash_clone(&operation, &operation2));
        PSA_ASSERT(psa_hash_update(&operation,
                                   input->x + len, input->len - len));
        PSA_ASSERT(psa_hash_update(&operation2,
                                   input->x + len, input->len - len));

        PSA_ASSERT(psa_hash_finish(&operation,
                                   actual_hash, sizeof(actual_hash),
                                   &actual_hash_length));
        TEST_MEMORY_COMPARE(expected_hash->x, expected_hash->len,
                            actual_hash, actual_hash_length);

        PSA_ASSERT(psa_hash_finish(&operation2,
                                   actual_hash, sizeof(actual_hash),
                                   &actual_hash_length));
        TEST_MEMORY_COMPARE(expected_hash->x, expected_hash->len,
                            actual_hash, actual_hash_length);
    } while (len++ != input->len);

exit:
    psa_hash_abort(&operation);
    psa_hash_abort(&operation2);
    PSA_DONE();
}
/* END_CASE */