blob: 56e715afbc121e6fc8b4911937d9d844676755b8 [file] [log] [blame]
Andres AG31f9b5b2016-10-04 17:14:38 +01001#! /usr/bin/env sh
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +01002
Simon Butcher3ea7f522016-03-07 23:22:10 +00003# all.sh
4#
SimonB2e23c822016-04-16 21:54:39 +01005# This file is part of mbed TLS (https://tls.mbed.org)
6#
Gilles Peskine192c72f2017-12-21 15:59:21 +01007# Copyright (c) 2014-2017, ARM Limited, All Rights Reserved
8
9
10
11################################################################
12#### Documentation
13################################################################
14
Simon Butcher3ea7f522016-03-07 23:22:10 +000015# Purpose
Gilles Peskine192c72f2017-12-21 15:59:21 +010016# -------
Simon Butcher3ea7f522016-03-07 23:22:10 +000017#
SimonB2e23c822016-04-16 21:54:39 +010018# To run all tests possible or available on the platform.
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +010019#
Gilles Peskine192c72f2017-12-21 15:59:21 +010020# Notes for users
21# ---------------
22#
SimonB2e23c822016-04-16 21:54:39 +010023# Warning: the test is destructive. It includes various build modes and
24# configurations, and can and will arbitrarily change the current CMake
Gilles Peskine192c72f2017-12-21 15:59:21 +010025# configuration. The following files must be committed into git:
26# * include/mbedtls/config.h
27# * Makefile, library/Makefile, programs/Makefile, tests/Makefile
28# After running this script, the CMake cache will be lost and CMake
29# will no longer be initialised.
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +010030#
Gilles Peskine192c72f2017-12-21 15:59:21 +010031# The script assumes the presence of a number of tools:
32# * Basic Unix tools (Windows users note: a Unix-style find must be before
33# the Windows find in the PATH)
34# * Perl
35# * GNU Make
36# * CMake
37# * GCC and Clang (recent enough for using ASan with gcc and MemSan with clang, or valgrind)
Andrzej Kurek05be06c2018-06-28 04:41:50 -040038# * G++
Gilles Peskine192c72f2017-12-21 15:59:21 +010039# * arm-gcc and mingw-gcc
40# * ArmCC 5 and ArmCC 6, unless invoked with --no-armcc
Gilles Peskine192c72f2017-12-21 15:59:21 +010041# * OpenSSL and GnuTLS command line tools, recent enough for the
42# interoperability tests. If they don't support SSLv3 then a legacy
43# version of these tools must be present as well (search for LEGACY
44# below).
45# See the invocation of check_tools below for details.
46#
47# This script must be invoked from the toplevel directory of a git
48# working copy of Mbed TLS.
49#
50# Note that the output is not saved. You may want to run
51# script -c tests/scripts/all.sh
52# or
53# tests/scripts/all.sh >all.log 2>&1
54#
55# Notes for maintainers
56# ---------------------
57#
Gilles Peskine8f073122018-11-27 15:58:47 +010058# The bulk of the code is organized into functions that follow one of the
59# following naming conventions:
60# * pre_XXX: things to do before running the tests, in order.
61# * component_XXX: independent components. They can be run in any order.
Gilles Peskine92bff7f2019-01-09 22:29:17 +010062# * component_check_XXX: quick tests that aren't worth parallelizing.
63# * component_build_XXX: build things but don't run them.
64# * component_test_XXX: build and test.
Gilles Peskine10726102019-01-06 20:50:38 +000065# * support_XXX: if support_XXX exists and returns false then
66# component_XXX is not run by default.
Gilles Peskine8f073122018-11-27 15:58:47 +010067# * post_XXX: things to do after running the tests.
68# * other: miscellaneous support functions.
69#
Gilles Peskine92bff7f2019-01-09 22:29:17 +010070# Each component must start by invoking `msg` with a short informative message.
71#
72# The framework performs some cleanup tasks after each component. This
73# means that components can assume that the working directory is in a
74# cleaned-up state, and don't need to perform the cleanup themselves.
75# * Run `make clean`.
76# * Restore `include/mbedtks/config.h` from a backup made before running
77# the component.
78# * Check out `Makefile`, `library/Makefile`, `programs/Makefile` and
79# `tests/Makefile` from git. This cleans up after an in-tree use of
80# CMake.
81#
82# Any command that is expected to fail must be protected so that the
83# script keeps running in --keep-going mode despite `set -e`. In keep-going
84# mode, if a protected command fails, this is logged as a failure and the
85# script will exit with a failure status once it has run all components.
86# Commands can be protected in any of the following ways:
87# * `make` is a function which runs the `make` command with protection.
88# Note that you must write `make VAR=value`, not `VAR=value make`,
89# because the `VAR=value make` syntax doesn't work with functions.
90# * Put `report_status` before the command to protect it.
91# * Put `if_build_successful` before a command. This protects it, and
92# additionally skips it if a prior invocation of `make` in the same
93# component failed.
94#
Gilles Peskine192c72f2017-12-21 15:59:21 +010095# The tests are roughly in order from fastest to slowest. This doesn't
96# have to be exact, but in general you should add slower tests towards
97# the end and fast checks near the beginning.
Gilles Peskine192c72f2017-12-21 15:59:21 +010098
99
100
101################################################################
102#### Initialization and command line parsing
103################################################################
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100104
SimonB2e23c822016-04-16 21:54:39 +0100105# Abort on errors (and uninitialised variables)
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100106set -eu
107
Gilles Peskine8f073122018-11-27 15:58:47 +0100108pre_check_environment () {
Gilles Peskinebdf3f522019-01-06 19:58:02 +0000109 if [ -d library -a -d include -a -d tests ]; then :; else
Gilles Peskine8f073122018-11-27 15:58:47 +0100110 echo "Must be run from mbed TLS root" >&2
111 exit 1
112 fi
113}
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100114
Gilles Peskine8f073122018-11-27 15:58:47 +0100115pre_initialize_variables () {
116 CONFIG_H='include/mbedtls/config.h'
117 CONFIG_BAK="$CONFIG_H.bak"
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200118
Gilles Peskine8f073122018-11-27 15:58:47 +0100119 MEMORY=0
120 FORCE=0
121 KEEP_GOING=0
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100122
Gilles Peskine8f073122018-11-27 15:58:47 +0100123 # Default commands, can be overriden by the environment
124 : ${OPENSSL:="openssl"}
125 : ${OPENSSL_LEGACY:="$OPENSSL"}
126 : ${OPENSSL_NEXT:="$OPENSSL"}
127 : ${GNUTLS_CLI:="gnutls-cli"}
128 : ${GNUTLS_SERV:="gnutls-serv"}
129 : ${GNUTLS_LEGACY_CLI:="$GNUTLS_CLI"}
130 : ${GNUTLS_LEGACY_SERV:="$GNUTLS_SERV"}
131 : ${OUT_OF_SOURCE_DIR:=./mbedtls_out_of_source_build}
132 : ${ARMC5_BIN_DIR:=/usr/bin}
133 : ${ARMC6_BIN_DIR:=/usr/bin}
Andres AGdc192212016-08-31 17:33:13 +0100134
Gilles Peskine8f073122018-11-27 15:58:47 +0100135 # if MAKEFLAGS is not set add the -j option to speed up invocations of make
Gilles Peskine55ae1622019-01-06 20:15:26 +0000136 if [ -z "${MAKEFLAGS+set}" ]; then
Gilles Peskine8f073122018-11-27 15:58:47 +0100137 export MAKEFLAGS="-j"
138 fi
Gilles Peskine10726102019-01-06 20:50:38 +0000139
140 # Gather the list of available components. These are the functions
141 # defined in this script whose name starts with "component_".
142 # Parse the script with sed, because in sh there is no way to list
143 # defined functions.
144 ALL_COMPONENTS=$(sed -n 's/^ *component_\([0-9A-Z_a-z]*\) *().*/\1/p' <"$0")
145
146 # Exclude components that are not supported on this platform.
147 SUPPORTED_COMPONENTS=
148 for component in $ALL_COMPONENTS; do
149 case $(type "support_$component" 2>&1) in
150 *' function'*)
151 if ! support_$component; then continue; fi;;
152 esac
153 SUPPORTED_COMPONENTS="$SUPPORTED_COMPONENTS $component"
154 done
Gilles Peskine8f073122018-11-27 15:58:47 +0100155}
Andres AG38495a32016-07-12 16:54:33 +0100156
Gilles Peskine10726102019-01-06 20:50:38 +0000157# Test whether $1 is excluded via the command line.
158is_component_excluded()
Gilles Peskine81b96ed2018-11-27 21:37:53 +0100159{
Gilles Peskine10726102019-01-06 20:50:38 +0000160 # Is $1 excluded via $COMPONENTS (a space-separated list of wildcard
161 # patterns)?
Gilles Peskine81b96ed2018-11-27 21:37:53 +0100162 set -f
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000163 for pattern in $COMMAND_LINE_COMPONENTS; do
Gilles Peskine81b96ed2018-11-27 21:37:53 +0100164 set +f
165 case ${1#component_} in $pattern) return 0;; esac
166 done
167 set +f
168 return 1
169}
170
Simon Butcher41eeccf2016-09-07 00:07:09 +0100171usage()
SimonB2e23c822016-04-16 21:54:39 +0100172{
Gilles Peskine709346a2017-12-10 23:43:39 +0100173 cat <<EOF
Gilles Peskine92525112018-11-27 18:15:35 +0100174Usage: $0 [OPTION]... [COMPONENT]...
Gilles Peskine348fb9a2018-11-27 17:04:29 +0100175Run mbedtls release validation tests.
Gilles Peskine92525112018-11-27 18:15:35 +0100176By default, run all tests. With one or more COMPONENT, run only those.
Gilles Peskine348fb9a2018-11-27 17:04:29 +0100177
178Special options:
179 -h|--help Print this help and exit.
Gilles Peskine10726102019-01-06 20:50:38 +0000180 --list-all-components List all available test components and exit.
181 --list-components List components supported on this platform and exit.
Gilles Peskine709346a2017-12-10 23:43:39 +0100182
183General options:
184 -f|--force Force the tests to overwrite any modified files.
Gilles Peskine7c652162017-12-11 00:01:40 +0100185 -k|--keep-going Run all tests and report errors at the end.
Gilles Peskine709346a2017-12-10 23:43:39 +0100186 -m|--memory Additional optional memory tests.
Gilles Peskinebca6ab92017-12-19 18:24:31 +0100187 --armcc Run ARM Compiler builds (on by default).
Gilles Peskine81b96ed2018-11-27 21:37:53 +0100188 --except If some components are passed on the command line,
189 run all the tests except for these components. In
190 this mode, you can pass shell wildcard patterns as
191 component names, e.g. "$0 --except 'test_*'" to
192 exclude all components that run tests.
Gilles Peskinebca6ab92017-12-19 18:24:31 +0100193 --no-armcc Skip ARM Compiler builds.
Gilles Peskine38d81652018-03-21 08:40:26 +0100194 --no-force Refuse to overwrite modified files (default).
195 --no-keep-going Stop at the first error (default).
196 --no-memory No additional memory tests (default).
Gilles Peskine709346a2017-12-10 23:43:39 +0100197 --out-of-source-dir=<path> Directory used for CMake out-of-source build tests.
Gilles Peskine38d81652018-03-21 08:40:26 +0100198 --random-seed Use a random seed value for randomized tests (default).
Gilles Peskine709346a2017-12-10 23:43:39 +0100199 -r|--release-test Run this script in release mode. This fixes the seed value to 1.
200 -s|--seed Integer seed value to use for this test run.
201
202Tool path options:
203 --armc5-bin-dir=<ARMC5_bin_dir_path> ARM Compiler 5 bin directory.
204 --armc6-bin-dir=<ARMC6_bin_dir_path> ARM Compiler 6 bin directory.
205 --gnutls-cli=<GnuTLS_cli_path> GnuTLS client executable to use for most tests.
206 --gnutls-serv=<GnuTLS_serv_path> GnuTLS server executable to use for most tests.
207 --gnutls-legacy-cli=<GnuTLS_cli_path> GnuTLS client executable to use for legacy tests.
208 --gnutls-legacy-serv=<GnuTLS_serv_path> GnuTLS server executable to use for legacy tests.
209 --openssl=<OpenSSL_path> OpenSSL executable to use for most tests.
210 --openssl-legacy=<OpenSSL_path> OpenSSL executable to use for legacy tests e.g. SSLv3.
Manuel Pégourié-Gonnard6b368922018-02-20 12:02:07 +0100211 --openssl-next=<OpenSSL_path> OpenSSL executable to use for recent things like ARIA
Gilles Peskine709346a2017-12-10 23:43:39 +0100212EOF
SimonB2e23c822016-04-16 21:54:39 +0100213}
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100214
215# remove built files as well as the cmake cache/config
216cleanup()
217{
Gilles Peskinea71d64c2018-03-21 12:16:57 +0100218 if [ -n "${MBEDTLS_ROOT_DIR+set}" ]; then
219 cd "$MBEDTLS_ROOT_DIR"
220 fi
221
Gilles Peskine7c652162017-12-11 00:01:40 +0100222 command make clean
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200223
Gilles Peskine31b07e22018-03-21 12:15:06 +0100224 # Remove CMake artefacts
Simon Butcher3ad2efd2018-05-02 14:49:38 +0100225 find . -name .git -prune \
Gilles Peskine31b07e22018-03-21 12:15:06 +0100226 -iname CMakeFiles -exec rm -rf {} \+ -o \
227 \( -iname cmake_install.cmake -o \
228 -iname CTestTestfile.cmake -o \
229 -iname CMakeCache.txt \) -exec rm {} \+
230 # Recover files overwritten by in-tree CMake builds
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +0000231 rm -f include/Makefile include/mbedtls/Makefile programs/*/Makefile
Paul Bakkerfe0984d2014-06-13 00:13:45 +0200232 git update-index --no-skip-worktree Makefile library/Makefile programs/Makefile tests/Makefile
233 git checkout -- Makefile library/Makefile programs/Makefile tests/Makefile
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200234
235 if [ -f "$CONFIG_BAK" ]; then
236 mv "$CONFIG_BAK" "$CONFIG_H"
237 fi
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100238}
239
Gilles Peskine7c652162017-12-11 00:01:40 +0100240# Executed on exit. May be redefined depending on command line options.
241final_report () {
242 :
243}
244
245fatal_signal () {
246 cleanup
247 final_report $1
248 trap - $1
249 kill -$1 $$
250}
251
252trap 'fatal_signal HUP' HUP
253trap 'fatal_signal INT' INT
254trap 'fatal_signal TERM' TERM
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200255
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +0100256msg()
257{
Gilles Peskineffcdeff2018-12-04 12:49:28 +0100258 if [ -n "${current_component:-}" ]; then
259 current_section="${current_component#component_}: $1"
260 else
261 current_section="$1"
262 fi
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +0100263 echo ""
264 echo "******************************************************************"
Gilles Peskineffcdeff2018-12-04 12:49:28 +0100265 echo "* $current_section "
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +0000266 printf "* "; date
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +0100267 echo "******************************************************************"
268}
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100269
Gilles Peskine8f073122018-11-27 15:58:47 +0100270armc6_build_test()
271{
272 FLAGS="$1"
Andres AGa5cd9732016-10-17 15:23:10 +0100273
Gilles Peskine8f073122018-11-27 15:58:47 +0100274 msg "build: ARM Compiler 6 ($FLAGS), make"
275 ARM_TOOL_VARIANT="ult" CC="$ARMC6_CC" AR="$ARMC6_AR" CFLAGS="$FLAGS" \
276 WARNING_CFLAGS='-xc -std=c99' make lib
277 make clean
278}
Andres AGa5cd9732016-10-17 15:23:10 +0100279
Andres AGd9eba4b2016-08-26 14:42:14 +0100280err_msg()
281{
282 echo "$1" >&2
283}
284
285check_tools()
286{
287 for TOOL in "$@"; do
Andres AG98393602017-01-31 17:04:45 +0000288 if ! `type "$TOOL" >/dev/null 2>&1`; then
Andres AGd9eba4b2016-08-26 14:42:14 +0100289 err_msg "$TOOL not found!"
290 exit 1
291 fi
292 done
293}
294
Andrzej Kurek991f9fe2018-07-02 09:08:21 -0400295check_headers_in_cpp () {
296 ls include/mbedtls >headers.txt
297 <programs/test/cpp_dummy_build.cpp sed -n 's/"$//; s!^#include "mbedtls/!!p' |
298 sort |
299 diff headers.txt -
300 rm headers.txt
301}
302
Gilles Peskine8f073122018-11-27 15:58:47 +0100303pre_parse_command_line () {
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000304 COMMAND_LINE_COMPONENTS=
305 all_except=
Gilles Peskinee26ab182019-01-06 22:23:42 +0000306 no_armcc=
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000307
Gilles Peskine8f073122018-11-27 15:58:47 +0100308 while [ $# -gt 0 ]; do
Gilles Peskine06b385f2019-01-09 22:28:21 +0100309 case "$1" in
Gilles Peskinee26ab182019-01-06 22:23:42 +0000310 --armcc) no_armcc=;;
Gilles Peskine06b385f2019-01-09 22:28:21 +0100311 --armc5-bin-dir) shift; ARMC5_BIN_DIR="$1";;
312 --armc6-bin-dir) shift; ARMC6_BIN_DIR="$1";;
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000313 --except) all_except=1;;
Gilles Peskine06b385f2019-01-09 22:28:21 +0100314 --force|-f) FORCE=1;;
315 --gnutls-cli) shift; GNUTLS_CLI="$1";;
316 --gnutls-legacy-cli) shift; GNUTLS_LEGACY_CLI="$1";;
317 --gnutls-legacy-serv) shift; GNUTLS_LEGACY_SERV="$1";;
318 --gnutls-serv) shift; GNUTLS_SERV="$1";;
319 --help|-h) usage; exit;;
320 --keep-going|-k) KEEP_GOING=1;;
Gilles Peskine10726102019-01-06 20:50:38 +0000321 --list-all-components) printf '%s\n' $ALL_COMPONENTS; exit;;
322 --list-components) printf '%s\n' $SUPPORTED_COMPONENTS; exit;;
Gilles Peskine06b385f2019-01-09 22:28:21 +0100323 --memory|-m) MEMORY=1;;
Gilles Peskinee26ab182019-01-06 22:23:42 +0000324 --no-armcc) no_armcc=1;;
Gilles Peskine06b385f2019-01-09 22:28:21 +0100325 --no-force) FORCE=0;;
326 --no-keep-going) KEEP_GOING=0;;
327 --no-memory) MEMORY=0;;
328 --openssl) shift; OPENSSL="$1";;
329 --openssl-legacy) shift; OPENSSL_LEGACY="$1";;
330 --openssl-next) shift; OPENSSL_NEXT="$1";;
331 --out-of-source-dir) shift; OUT_OF_SOURCE_DIR="$1";;
332 --random-seed) unset SEED;;
333 --release-test|-r) SEED=1;;
334 --seed|-s) shift; SEED="$1";;
335 -*)
336 echo >&2 "Unknown option: $1"
337 echo >&2 "Run $0 --help for usage."
338 exit 120
339 ;;
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000340 *) COMMAND_LINE_COMPONENTS="$COMMAND_LINE_COMPONENTS $1";;
Gilles Peskine06b385f2019-01-09 22:28:21 +0100341 esac
342 shift
Gilles Peskine8f073122018-11-27 15:58:47 +0100343 done
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000344
345 if [ -z "$COMMAND_LINE_COMPONENTS" ]; then
346 all_except=1
347 fi
348
Gilles Peskinee26ab182019-01-06 22:23:42 +0000349 # --no-armcc is a legacy option. The modern way is --except '*_armcc*'.
350 # Ignore it if components are listed explicitly on the command line.
351 if [ -n "$no_armcc" ] && [ -n "$all_except" ]; then
352 COMMAND_LINE_COMPONENTS="$COMMAND_LINE_COMPONENTS *_armcc*"
353 fi
354
Gilles Peskine1bcb1c82019-01-06 22:11:25 +0000355 # Build the list of components to run.
356 if [ -n "$all_except" ]; then
357 RUN_COMPONENTS=
358 for component in $SUPPORTED_COMPONENTS; do
359 if ! is_component_excluded "$component"; then
360 RUN_COMPONENTS="$RUN_COMPONENTS $component"
361 fi
362 done
363 else
364 RUN_COMPONENTS="$COMMAND_LINE_COMPONENTS"
365 fi
366
367 unset all_except
Gilles Peskinee26ab182019-01-06 22:23:42 +0000368 unset no_armcc
Gilles Peskine8f073122018-11-27 15:58:47 +0100369}
SimonB2e23c822016-04-16 21:54:39 +0100370
Gilles Peskine8f073122018-11-27 15:58:47 +0100371pre_check_git () {
372 if [ $FORCE -eq 1 ]; then
373 git checkout-index -f -q $CONFIG_H
374 cleanup
375 else
SimonB2e23c822016-04-16 21:54:39 +0100376
Gilles Peskine8f073122018-11-27 15:58:47 +0100377 if [ -d "$OUT_OF_SOURCE_DIR" ]; then
378 echo "Warning - there is an existing directory at '$OUT_OF_SOURCE_DIR'" >&2
379 echo "You can either delete this directory manually, or force the test by rerunning"
380 echo "the script as: $0 --force --out-of-source-dir $OUT_OF_SOURCE_DIR"
381 exit 1
382 fi
383
384 if ! git diff-files --quiet include/mbedtls/config.h; then
385 err_msg "Warning - the configuration file 'include/mbedtls/config.h' has been edited. "
386 echo "You can either delete or preserve your work, or force the test by rerunning the"
387 echo "script as: $0 --force"
388 exit 1
389 fi
Andres AGdc192212016-08-31 17:33:13 +0100390 fi
Gilles Peskine8f073122018-11-27 15:58:47 +0100391}
Andres AGdc192212016-08-31 17:33:13 +0100392
Gilles Peskine8f073122018-11-27 15:58:47 +0100393pre_setup_keep_going () {
Gilles Peskine7c652162017-12-11 00:01:40 +0100394 failure_summary=
395 failure_count=0
396 start_red=
397 end_color=
398 if [ -t 1 ]; then
Gilles Peskine9736b9d2018-01-02 21:54:17 +0100399 case "${TERM:-}" in
Gilles Peskine7c652162017-12-11 00:01:40 +0100400 *color*|cygwin|linux|rxvt*|screen|[Eex]term*)
401 start_red=$(printf '\033[31m')
402 end_color=$(printf '\033[0m')
403 ;;
404 esac
405 fi
406 record_status () {
407 if "$@"; then
408 last_status=0
409 else
410 last_status=$?
411 text="$current_section: $* -> $last_status"
412 failure_summary="$failure_summary
413$text"
414 failure_count=$((failure_count + 1))
415 echo "${start_red}^^^^$text^^^^${end_color}"
416 fi
417 }
418 make () {
419 case "$*" in
420 *test|*check)
421 if [ $build_status -eq 0 ]; then
422 record_status command make "$@"
423 else
424 echo "(skipped because the build failed)"
425 fi
426 ;;
427 *)
428 record_status command make "$@"
429 build_status=$last_status
430 ;;
431 esac
432 }
433 final_report () {
434 if [ $failure_count -gt 0 ]; then
435 echo
436 echo "!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!"
437 echo "${start_red}FAILED: $failure_count${end_color}$failure_summary"
438 echo "!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!"
Jaeden Amero7c1258d2018-07-20 16:42:14 +0100439 exit 1
Gilles Peskine7c652162017-12-11 00:01:40 +0100440 elif [ -z "${1-}" ]; then
441 echo "SUCCESS :)"
442 fi
443 if [ -n "${1-}" ]; then
444 echo "Killed by SIG$1."
445 fi
446 }
Gilles Peskine8f073122018-11-27 15:58:47 +0100447}
448
Gilles Peskine7c652162017-12-11 00:01:40 +0100449if_build_succeeded () {
450 if [ $build_status -eq 0 ]; then
451 record_status "$@"
452 fi
453}
454
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200455# to be used instead of ! for commands run with
456# record_status or if_build_succeeded
457not() {
458 ! "$@"
459}
460
Gilles Peskine8f073122018-11-27 15:58:47 +0100461pre_print_configuration () {
462 msg "info: $0 configuration"
463 echo "MEMORY: $MEMORY"
464 echo "FORCE: $FORCE"
465 echo "SEED: ${SEED-"UNSET"}"
466 echo "OPENSSL: $OPENSSL"
467 echo "OPENSSL_LEGACY: $OPENSSL_LEGACY"
468 echo "OPENSSL_NEXT: $OPENSSL_NEXT"
469 echo "GNUTLS_CLI: $GNUTLS_CLI"
470 echo "GNUTLS_SERV: $GNUTLS_SERV"
471 echo "GNUTLS_LEGACY_CLI: $GNUTLS_LEGACY_CLI"
472 echo "GNUTLS_LEGACY_SERV: $GNUTLS_LEGACY_SERV"
473 echo "ARMC5_BIN_DIR: $ARMC5_BIN_DIR"
474 echo "ARMC6_BIN_DIR: $ARMC6_BIN_DIR"
475}
Andres AG87bb5772016-09-27 15:05:15 +0100476
Gilles Peskine657f59a2019-01-06 22:40:00 +0000477# Make sure the tools we need are available.
Gilles Peskine8f073122018-11-27 15:58:47 +0100478pre_check_tools () {
Gilles Peskine2edf47c2019-01-06 22:46:21 +0000479 # Build the list of variables to pass to output_env.sh.
480 set env
481
Gilles Peskine657f59a2019-01-06 22:40:00 +0000482 case " $RUN_COMPONENTS " in
483 # Require OpenSSL and GnuTLS if running any tests (as opposed to
484 # only doing builds). Not all tests run OpenSSL and GnuTLS, but this
485 # is a good enough approximation in practice.
486 *" test_"*)
487 # To avoid setting OpenSSL and GnuTLS for each call to compat.sh
488 # and ssl-opt.sh, we just export the variables they require.
489 export OPENSSL_CMD="$OPENSSL"
490 export GNUTLS_CLI="$GNUTLS_CLI"
491 export GNUTLS_SERV="$GNUTLS_SERV"
492 # Avoid passing --seed flag in every call to ssl-opt.sh
493 if [ -n "${SEED-}" ]; then
494 export SEED
495 fi
Gilles Peskine2edf47c2019-01-06 22:46:21 +0000496 set "$@" OPENSSL="$OPENSSL" OPENSSL_LEGACY="$OPENSSL_LEGACY"
497 set "$@" GNUTLS_CLI="$GNUTLS_CLI" GNUTLS_SERV="$GNUTLS_SERV"
498 set "$@" GNUTLS_LEGACY_CLI="$GNUTLS_LEGACY_CLI"
499 set "$@" GNUTLS_LEGACY_SERV="$GNUTLS_LEGACY_SERV"
Gilles Peskine657f59a2019-01-06 22:40:00 +0000500 check_tools "$OPENSSL" "$OPENSSL_LEGACY" "$OPENSSL_NEXT" \
501 "$GNUTLS_CLI" "$GNUTLS_SERV" \
502 "$GNUTLS_LEGACY_CLI" "$GNUTLS_LEGACY_SERV"
503 ;;
504 esac
Andres AGd9eba4b2016-08-26 14:42:14 +0100505
Gilles Peskine657f59a2019-01-06 22:40:00 +0000506 case " $RUN_COMPONENTS " in
507 *_doxygen[_\ ]*) check_tools "doxygen" "dot";;
508 esac
Andres AGb2fdd042016-09-22 14:17:46 +0100509
Gilles Peskine657f59a2019-01-06 22:40:00 +0000510 case " $RUN_COMPONENTS " in
511 *_arm_none_eabi_gcc[_\ ]*) check_tools "arm-none-eabi-gcc";;
512 esac
Andres AG7770ea82016-10-10 15:46:20 +0100513
Gilles Peskine657f59a2019-01-06 22:40:00 +0000514 case " $RUN_COMPONENTS " in
515 *_mingw[_\ ]*) check_tools "i686-w64-mingw32-gcc";;
516 esac
517
518 case " $RUN_COMPONENTS " in
519 *" test_zeroize "*) check_tools "gdb";;
520 esac
521
522 case " $RUN_COMPONENTS " in
Gilles Peskinee26ab182019-01-06 22:23:42 +0000523 *_armcc*)
Gilles Peskine657f59a2019-01-06 22:40:00 +0000524 ARMC5_CC="$ARMC5_BIN_DIR/armcc"
525 ARMC5_AR="$ARMC5_BIN_DIR/armar"
526 ARMC6_CC="$ARMC6_BIN_DIR/armclang"
527 ARMC6_AR="$ARMC6_BIN_DIR/armar"
Gilles Peskinee26ab182019-01-06 22:23:42 +0000528 check_tools "$ARMC5_CC" "$ARMC5_AR" "$ARMC6_CC" "$ARMC6_AR";;
529 esac
Gilles Peskine2edf47c2019-01-06 22:46:21 +0000530
531 msg "info: output_env.sh"
532 case $RUN_COMPONENTS in
533 *_armcc*)
534 set "$@" ARMC5_CC="$ARMC5_CC" ARMC6_CC="$ARMC6_CC" RUN_ARMCC=1;;
535 *) set "$@" RUN_ARMCC=0;;
536 esac
537 "$@" scripts/output_env.sh
Gilles Peskine8f073122018-11-27 15:58:47 +0100538}
Gilles Peskine192c72f2017-12-21 15:59:21 +0100539
540
Gilles Peskine2edf47c2019-01-06 22:46:21 +0000541
Gilles Peskine192c72f2017-12-21 15:59:21 +0100542################################################################
543#### Basic checks
544################################################################
Andres AGd9eba4b2016-08-26 14:42:14 +0100545
SimonB2e23c822016-04-16 21:54:39 +0100546#
547# Test Suites to be executed
548#
Manuel Pégourié-Gonnard57255b12014-06-09 11:21:49 +0200549# The test ordering tries to optimize for the following criteria:
Manuel Pégourié-Gonnard89d69b32014-11-20 13:48:53 +0100550# 1. Catch possible problems early, by running first tests that run quickly
Manuel Pégourié-Gonnard61bc57a2014-08-14 11:29:06 +0200551# and/or are more likely to fail than others (eg I use Clang most of the
552# time, so start with a GCC build).
Manuel Pégourié-Gonnard57255b12014-06-09 11:21:49 +0200553# 2. Minimize total running time, by avoiding useless rebuilds
554#
555# Indicative running times are given for reference.
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100556
Gilles Peskine8f073122018-11-27 15:58:47 +0100557component_check_recursion () {
558 msg "test: recursion.pl" # < 1s
559 record_status tests/scripts/recursion.pl library/*.c
560}
Manuel Pégourié-Gonnardea29d152014-11-20 17:32:33 +0100561
Gilles Peskine8f073122018-11-27 15:58:47 +0100562component_check_generated_files () {
563 msg "test: freshness of generated source files" # < 1s
564 record_status tests/scripts/check-generated-files.sh
565}
Manuel Pégourié-Gonnardb3b8e432015-02-13 14:52:19 +0000566
Gilles Peskine8f073122018-11-27 15:58:47 +0100567component_check_doxy_blocks () {
568 msg "test: doxygen markup outside doxygen blocks" # < 1s
569 record_status tests/scripts/check-doxy-blocks.pl
570}
Manuel Pégourié-Gonnardd09a6b52015-04-09 17:19:23 +0200571
Gilles Peskine8f073122018-11-27 15:58:47 +0100572component_check_files () {
573 msg "test: check-files.py" # < 1s
Gilles Peskine8f073122018-11-27 15:58:47 +0100574 record_status tests/scripts/check-files.py
575}
Darryl Greena07039c2018-03-13 16:48:16 +0000576
Gilles Peskine8f073122018-11-27 15:58:47 +0100577component_check_names () {
578 msg "test/build: declared and exported names" # < 3s
Gilles Peskine8f073122018-11-27 15:58:47 +0100579 record_status tests/scripts/check-names.sh
580}
Manuel Pégourié-Gonnarda687baf2015-04-09 11:09:03 +0200581
Gilles Peskine8f073122018-11-27 15:58:47 +0100582component_check_doxygen_warnings () {
583 msg "test: doxygen warnings" # ~ 3s
Gilles Peskine8f073122018-11-27 15:58:47 +0100584 record_status tests/scripts/doxygen.sh
585}
Manuel Pégourié-Gonnard1d552e72016-01-04 16:49:09 +0100586
Gilles Peskine192c72f2017-12-21 15:59:21 +0100587
Gilles Peskine192c72f2017-12-21 15:59:21 +0100588################################################################
589#### Build and test many configurations and targets
590################################################################
591
Gilles Peskine8f073122018-11-27 15:58:47 +0100592component_test_default_cmake_gcc_asan () {
593 msg "build: cmake, gcc, ASan" # ~ 1 min 50s
Gilles Peskine8f073122018-11-27 15:58:47 +0100594 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
595 make
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +0100596
Gilles Peskine8f073122018-11-27 15:58:47 +0100597 msg "test: main suites (inc. selftests) (ASan build)" # ~ 50s
598 make test
Manuel Pégourié-Gonnard57255b12014-06-09 11:21:49 +0200599
Gilles Peskine8f073122018-11-27 15:58:47 +0100600 msg "test: ssl-opt.sh (ASan build)" # ~ 1 min
601 if_build_succeeded tests/ssl-opt.sh
Manuel Pégourié-Gonnard57255b12014-06-09 11:21:49 +0200602
Gilles Peskine8f073122018-11-27 15:58:47 +0100603 msg "test: compat.sh (ASan build)" # ~ 6 min
604 if_build_succeeded tests/compat.sh
605}
Manuel Pégourié-Gonnard57255b12014-06-09 11:21:49 +0200606
Gilles Peskine782f4112018-11-27 16:11:09 +0100607component_test_ref_configs () {
608 msg "test/build: ref-configs (ASan build)" # ~ 6 min 20s
609 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
610 record_status tests/scripts/test-ref-configs.pl
611}
612
Gilles Peskine8f073122018-11-27 15:58:47 +0100613component_test_sslv3 () {
614 msg "build: Default + SSLv3 (ASan build)" # ~ 6 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100615 scripts/config.pl set MBEDTLS_SSL_PROTO_SSL3
616 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
617 make
Simon Butcher3ea7f522016-03-07 23:22:10 +0000618
Gilles Peskine8f073122018-11-27 15:58:47 +0100619 msg "test: SSLv3 - main suites (inc. selftests) (ASan build)" # ~ 50s
620 make test
Simon Butcher3ea7f522016-03-07 23:22:10 +0000621
Gilles Peskine8f073122018-11-27 15:58:47 +0100622 msg "build: SSLv3 - compat.sh (ASan build)" # ~ 6 min
623 if_build_succeeded tests/compat.sh -m 'tls1 tls1_1 tls1_2 dtls1 dtls1_2'
624 if_build_succeeded env OPENSSL_CMD="$OPENSSL_LEGACY" tests/compat.sh -m 'ssl3'
Simon Butcher3ea7f522016-03-07 23:22:10 +0000625
Gilles Peskine8f073122018-11-27 15:58:47 +0100626 msg "build: SSLv3 - ssl-opt.sh (ASan build)" # ~ 6 min
627 if_build_succeeded tests/ssl-opt.sh
628}
Simon Butcher3ea7f522016-03-07 23:22:10 +0000629
Gilles Peskine8f073122018-11-27 15:58:47 +0100630component_test_no_renegotiation () {
631 msg "build: Default + !MBEDTLS_SSL_RENEGOTIATION (ASan build)" # ~ 6 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100632 scripts/config.pl unset MBEDTLS_SSL_RENEGOTIATION
633 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
634 make
Hanno Becker134c2ab2017-10-12 15:29:50 +0100635
Gilles Peskine8f073122018-11-27 15:58:47 +0100636 msg "test: !MBEDTLS_SSL_RENEGOTIATION - main suites (inc. selftests) (ASan build)" # ~ 50s
637 make test
Hanno Becker134c2ab2017-10-12 15:29:50 +0100638
Gilles Peskine8f073122018-11-27 15:58:47 +0100639 msg "test: !MBEDTLS_SSL_RENEGOTIATION - ssl-opt.sh (ASan build)" # ~ 6 min
640 if_build_succeeded tests/ssl-opt.sh
641}
Manuel Pégourié-Gonnard246978d2014-11-20 13:29:53 +0100642
Gilles Peskine8f073122018-11-27 15:58:47 +0100643component_test_rsa_no_crt () {
644 msg "build: Default + RSA_NO_CRT (ASan build)" # ~ 6 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100645 scripts/config.pl set MBEDTLS_RSA_NO_CRT
646 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
647 make
Hanno Beckerd5ba5ef2017-09-28 12:53:51 +0100648
Gilles Peskine8f073122018-11-27 15:58:47 +0100649 msg "test: RSA_NO_CRT - main suites (inc. selftests) (ASan build)" # ~ 50s
650 make test
Hanno Beckerd5ba5ef2017-09-28 12:53:51 +0100651
Gilles Peskine8f073122018-11-27 15:58:47 +0100652 msg "test: RSA_NO_CRT - RSA-related part of ssl-opt.sh (ASan build)" # ~ 5s
653 if_build_succeeded tests/ssl-opt.sh -f RSA
Hanno Beckerd5ba5ef2017-09-28 12:53:51 +0100654
Gilles Peskine8f073122018-11-27 15:58:47 +0100655 msg "test: RSA_NO_CRT - RSA-related part of compat.sh (ASan build)" # ~ 3 min
656 if_build_succeeded tests/compat.sh -t RSA
657}
Hanno Beckerd5ba5ef2017-09-28 12:53:51 +0100658
Gilles Peskine8f073122018-11-27 15:58:47 +0100659component_test_small_ssl_out_content_len () {
660 msg "build: small SSL_OUT_CONTENT_LEN (ASan build)"
Gilles Peskine8f073122018-11-27 15:58:47 +0100661 scripts/config.pl set MBEDTLS_SSL_IN_CONTENT_LEN 16384
662 scripts/config.pl set MBEDTLS_SSL_OUT_CONTENT_LEN 4096
663 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
664 make
Angus Grattonc4dd0732018-04-11 16:28:39 +1000665
Gilles Peskine8f073122018-11-27 15:58:47 +0100666 msg "test: small SSL_OUT_CONTENT_LEN - ssl-opt.sh MFL and large packet tests"
667 if_build_succeeded tests/ssl-opt.sh -f "Max fragment\|Large packet"
668}
Angus Grattonc4dd0732018-04-11 16:28:39 +1000669
Gilles Peskine8f073122018-11-27 15:58:47 +0100670component_test_small_ssl_in_content_len () {
671 msg "build: small SSL_IN_CONTENT_LEN (ASan build)"
Gilles Peskine8f073122018-11-27 15:58:47 +0100672 scripts/config.pl set MBEDTLS_SSL_IN_CONTENT_LEN 4096
673 scripts/config.pl set MBEDTLS_SSL_OUT_CONTENT_LEN 16384
674 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
675 make
Angus Grattonc4dd0732018-04-11 16:28:39 +1000676
Gilles Peskine8f073122018-11-27 15:58:47 +0100677 msg "test: small SSL_IN_CONTENT_LEN - ssl-opt.sh MFL tests"
678 if_build_succeeded tests/ssl-opt.sh -f "Max fragment"
679}
Angus Grattonc4dd0732018-04-11 16:28:39 +1000680
Gilles Peskine8f073122018-11-27 15:58:47 +0100681component_test_small_ssl_dtls_max_buffering () {
682 msg "build: small MBEDTLS_SSL_DTLS_MAX_BUFFERING #0"
Gilles Peskine8f073122018-11-27 15:58:47 +0100683 scripts/config.pl set MBEDTLS_SSL_DTLS_MAX_BUFFERING 1000
684 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
685 make
Hanno Becker2f5aa4c2018-08-24 14:43:44 +0100686
Gilles Peskine8f073122018-11-27 15:58:47 +0100687 msg "test: small MBEDTLS_SSL_DTLS_MAX_BUFFERING #0 - ssl-opt.sh specific reordering test"
688 if_build_succeeded tests/ssl-opt.sh -f "DTLS reordering: Buffer out-of-order hs msg before reassembling next, free buffered msg"
689}
Hanno Becker2f5aa4c2018-08-24 14:43:44 +0100690
Gilles Peskine8f073122018-11-27 15:58:47 +0100691component_test_small_mbedtls_ssl_dtls_max_buffering () {
692 msg "build: small MBEDTLS_SSL_DTLS_MAX_BUFFERING #1"
Gilles Peskine8f073122018-11-27 15:58:47 +0100693 scripts/config.pl set MBEDTLS_SSL_DTLS_MAX_BUFFERING 240
694 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
695 make
Hanno Becker2f5aa4c2018-08-24 14:43:44 +0100696
Gilles Peskine8f073122018-11-27 15:58:47 +0100697 msg "test: small MBEDTLS_SSL_DTLS_MAX_BUFFERING #1 - ssl-opt.sh specific reordering test"
698 if_build_succeeded tests/ssl-opt.sh -f "DTLS reordering: Buffer encrypted Finished message, drop for fragmented NewSessionTicket"
699}
Hanno Becker2f5aa4c2018-08-24 14:43:44 +0100700
Gilles Peskine8f073122018-11-27 15:58:47 +0100701component_test_full_cmake_clang () {
702 msg "build: cmake, full config, clang" # ~ 50s
Gilles Peskine8f073122018-11-27 15:58:47 +0100703 scripts/config.pl full
704 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # too slow for tests
705 CC=clang cmake -D CMAKE_BUILD_TYPE:String=Check -D ENABLE_TESTING=On .
706 make
Manuel Pégourié-Gonnard3895f5a2014-03-27 14:44:04 +0100707
Gilles Peskine8f073122018-11-27 15:58:47 +0100708 msg "test: main suites (full config)" # ~ 5s
709 make test
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200710
Gilles Peskine8f073122018-11-27 15:58:47 +0100711 msg "test: ssl-opt.sh default, ECJPAKE, SSL async (full config)" # ~ 1s
712 if_build_succeeded tests/ssl-opt.sh -f 'Default\|ECJPAKE\|SSL async private'
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200713
Gilles Peskine8f073122018-11-27 15:58:47 +0100714 msg "test: compat.sh RC4, DES & NULL (full config)" # ~ 2 min
715 if_build_succeeded env OPENSSL_CMD="$OPENSSL_LEGACY" GNUTLS_CLI="$GNUTLS_LEGACY_CLI" GNUTLS_SERV="$GNUTLS_LEGACY_SERV" tests/compat.sh -e '3DES\|DES-CBC3' -f 'NULL\|DES\|RC4\|ARCFOUR'
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200716
Gilles Peskine8f073122018-11-27 15:58:47 +0100717 msg "test: compat.sh ARIA + ChachaPoly"
718 if_build_succeeded env OPENSSL_CMD="$OPENSSL_NEXT" tests/compat.sh -e '^$' -f 'ARIA\|CHACHA'
719}
Manuel Pégourié-Gonnard6b368922018-02-20 12:02:07 +0100720
Gilles Peskine8f073122018-11-27 15:58:47 +0100721component_build_deprecated () {
722 msg "build: make, full config + DEPRECATED_WARNING, gcc -O" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100723 scripts/config.pl full
724 scripts/config.pl set MBEDTLS_DEPRECATED_WARNING
725 # Build with -O -Wextra to catch a maximum of issues.
726 make CC=gcc CFLAGS='-O -Werror -Wall -Wextra' lib programs
727 make CC=gcc CFLAGS='-O -Werror -Wall -Wextra -Wno-unused-function' tests
Gilles Peskineb4ef45b2018-03-01 22:23:50 +0100728
Gilles Peskine8f073122018-11-27 15:58:47 +0100729 msg "build: make, full config + DEPRECATED_REMOVED, clang -O" # ~ 30s
730 # No cleanup, just tweak the configuration and rebuild
731 make clean
732 scripts/config.pl unset MBEDTLS_DEPRECATED_WARNING
733 scripts/config.pl set MBEDTLS_DEPRECATED_REMOVED
734 # Build with -O -Wextra to catch a maximum of issues.
735 make CC=clang CFLAGS='-O -Werror -Wall -Wextra' lib programs
736 make CC=clang CFLAGS='-O -Werror -Wall -Wextra -Wno-unused-function' tests
737}
Gilles Peskine0afe6242018-02-21 19:28:12 +0100738
Manuel Pégourié-Gonnarde73b2632014-07-12 04:00:00 +0200739
Gilles Peskine8f073122018-11-27 15:58:47 +0100740component_test_depends_curves () {
741 msg "test/build: curves.pl (gcc)" # ~ 4 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100742 record_status tests/scripts/curves.pl
743}
Manuel Pégourié-Gonnard1fe6bb92017-06-06 11:36:16 +0200744
Gilles Peskine8f073122018-11-27 15:58:47 +0100745component_test_depends_hashes () {
746 msg "test/build: depends-hashes.pl (gcc)" # ~ 2 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100747 record_status tests/scripts/depends-hashes.pl
748}
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200749
Gilles Peskine8f073122018-11-27 15:58:47 +0100750component_test_depends_pkalgs () {
751 msg "test/build: depends-pkalgs.pl (gcc)" # ~ 2 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100752 record_status tests/scripts/depends-pkalgs.pl
753}
Manuel Pégourié-Gonnard503a5ef2015-10-23 09:04:45 +0200754
Gilles Peskine8f073122018-11-27 15:58:47 +0100755component_build_key_exchanges () {
756 msg "test/build: key-exchanges (gcc)" # ~ 1 min
Gilles Peskine8f073122018-11-27 15:58:47 +0100757 record_status tests/scripts/key-exchanges.pl
758}
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +0100759
Gilles Peskine8f073122018-11-27 15:58:47 +0100760component_build_default_make_gcc_and_cxx () {
761 msg "build: Unix make, -Os (gcc)" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100762 make CC=gcc CFLAGS='-Werror -Wall -Wextra -Os'
Andrzej Kurek991f9fe2018-07-02 09:08:21 -0400763
Gilles Peskine8f073122018-11-27 15:58:47 +0100764 msg "test: verify header list in cpp_dummy_build.cpp"
765 record_status check_headers_in_cpp
Andrzej Kurek991f9fe2018-07-02 09:08:21 -0400766
Gilles Peskine8f073122018-11-27 15:58:47 +0100767 msg "build: Unix make, incremental g++"
768 make TEST_CPP=1
769}
Manuel Pégourié-Gonnarda71780e2015-02-13 13:56:55 +0000770
Gilles Peskine8f073122018-11-27 15:58:47 +0100771component_test_no_platform () {
772 # Full configuration build, without platform support, file IO and net sockets.
773 # This should catch missing mbedtls_printf definitions, and by disabling file
774 # IO, it should catch missing '#include <stdio.h>'
775 msg "build: full config except platform/fsio/net, make, gcc, C99" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100776 scripts/config.pl full
777 scripts/config.pl unset MBEDTLS_PLATFORM_C
778 scripts/config.pl unset MBEDTLS_NET_C
779 scripts/config.pl unset MBEDTLS_PLATFORM_MEMORY
780 scripts/config.pl unset MBEDTLS_PLATFORM_PRINTF_ALT
781 scripts/config.pl unset MBEDTLS_PLATFORM_FPRINTF_ALT
782 scripts/config.pl unset MBEDTLS_PLATFORM_SNPRINTF_ALT
783 scripts/config.pl unset MBEDTLS_PLATFORM_TIME_ALT
784 scripts/config.pl unset MBEDTLS_PLATFORM_EXIT_ALT
785 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
786 scripts/config.pl unset MBEDTLS_MEMORY_BUFFER_ALLOC_C
787 scripts/config.pl unset MBEDTLS_FS_IO
Gilles Peskine51585382019-01-05 10:27:47 +0100788 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_FILE_C
789 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_C
Gilles Peskine8f073122018-11-27 15:58:47 +0100790 # Note, _DEFAULT_SOURCE needs to be defined for platforms using glibc version >2.19,
791 # to re-enable platform integration features otherwise disabled in C99 builds
792 make CC=gcc CFLAGS='-Werror -Wall -Wextra -std=c99 -pedantic -O0 -D_DEFAULT_SOURCE' lib programs
793 make CC=gcc CFLAGS='-Werror -Wall -Wextra -O0' test
794}
Manuel Pégourié-Gonnarddccb80b2015-06-03 10:20:33 +0100795
Gilles Peskine8f073122018-11-27 15:58:47 +0100796component_build_no_std_function () {
797 # catch compile bugs in _uninit functions
798 msg "build: full config with NO_STD_FUNCTION, make, gcc" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100799 scripts/config.pl full
800 scripts/config.pl set MBEDTLS_PLATFORM_NO_STD_FUNCTIONS
801 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
802 make CC=gcc CFLAGS='-Werror -Wall -Wextra -O0'
803}
Manuel Pégourié-Gonnard66b8e952015-05-20 11:13:56 +0200804
Gilles Peskine8f073122018-11-27 15:58:47 +0100805component_build_no_ssl_srv () {
806 msg "build: full config except ssl_srv.c, make, gcc" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100807 scripts/config.pl full
808 scripts/config.pl unset MBEDTLS_SSL_SRV_C
809 make CC=gcc CFLAGS='-Werror -Wall -Wextra -O0'
810}
Manuel Pégourié-Gonnard66b8e952015-05-20 11:13:56 +0200811
Gilles Peskine8f073122018-11-27 15:58:47 +0100812component_build_no_ssl_cli () {
813 msg "build: full config except ssl_cli.c, make, gcc" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100814 scripts/config.pl full
815 scripts/config.pl unset MBEDTLS_SSL_CLI_C
816 make CC=gcc CFLAGS='-Werror -Wall -Wextra -O0'
817}
Manuel Pégourié-Gonnard009a2642015-05-29 10:31:13 +0200818
Gilles Peskine8f073122018-11-27 15:58:47 +0100819component_build_no_sockets () {
820 # Note, C99 compliance can also be tested with the sockets support disabled,
821 # as that requires a POSIX platform (which isn't the same as C99).
822 msg "build: full config except net_sockets.c, make, gcc -std=c99 -pedantic" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100823 scripts/config.pl full
824 scripts/config.pl unset MBEDTLS_NET_C # getaddrinfo() undeclared, etc.
825 scripts/config.pl set MBEDTLS_NO_PLATFORM_ENTROPY # uses syscall() on GNU/Linux
826 make CC=gcc CFLAGS='-Werror -Wall -Wextra -O0 -std=c99 -pedantic' lib
827}
Hanno Becker5175ac62017-09-18 15:36:25 +0100828
Gilles Peskine8f073122018-11-27 15:58:47 +0100829component_test_no_max_fragment_length () {
830 # Run max fragment length tests with MFL disabled
831 msg "build: default config except MFL extension (ASan build)" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +0100832 scripts/config.pl unset MBEDTLS_SSL_MAX_FRAGMENT_LENGTH
833 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
834 make
Manuel Pégourié-Gonnardedb2dc92015-02-10 14:36:31 +0000835
Gilles Peskine8f073122018-11-27 15:58:47 +0100836 msg "test: ssl-opt.sh, MFL-related tests"
837 if_build_succeeded tests/ssl-opt.sh -f "Max fragment length"
838}
Angus Grattonc4dd0732018-04-11 16:28:39 +1000839
Gilles Peskine8f073122018-11-27 15:58:47 +0100840component_test_no_max_fragment_length_small_ssl_out_content_len () {
841 msg "build: no MFL extension, small SSL_OUT_CONTENT_LEN (ASan build)"
Gilles Peskine8f073122018-11-27 15:58:47 +0100842 scripts/config.pl unset MBEDTLS_SSL_MAX_FRAGMENT_LENGTH
843 scripts/config.pl set MBEDTLS_SSL_IN_CONTENT_LEN 16384
844 scripts/config.pl set MBEDTLS_SSL_OUT_CONTENT_LEN 4096
845 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
846 make
Angus Grattonc4dd0732018-04-11 16:28:39 +1000847
Gilles Peskine8f073122018-11-27 15:58:47 +0100848 msg "test: MFL tests (disabled MFL extension case) & large packet tests"
849 if_build_succeeded tests/ssl-opt.sh -f "Max fragment length\|Large buffer"
850}
Janos Follath06c54002016-06-09 13:57:40 +0100851
Gilles Peskine8f073122018-11-27 15:58:47 +0100852component_test_null_entropy () {
853 msg "build: default config with MBEDTLS_TEST_NULL_ENTROPY (ASan build)"
Gilles Peskine8f073122018-11-27 15:58:47 +0100854 scripts/config.pl set MBEDTLS_TEST_NULL_ENTROPY
855 scripts/config.pl set MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES
856 scripts/config.pl set MBEDTLS_ENTROPY_C
857 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
858 scripts/config.pl unset MBEDTLS_ENTROPY_HARDWARE_ALT
859 scripts/config.pl unset MBEDTLS_HAVEGE_C
Gilles Peskine19275652019-01-06 19:48:30 +0000860 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan -D UNSAFE_BUILD=ON .
Gilles Peskine8f073122018-11-27 15:58:47 +0100861 make
Janos Follath06c54002016-06-09 13:57:40 +0100862
Gilles Peskine8f073122018-11-27 15:58:47 +0100863 msg "test: MBEDTLS_TEST_NULL_ENTROPY - main suites (inc. selftests) (ASan build)"
864 make test
865}
Hanno Beckere5fecec2018-10-11 11:02:52 +0100866
Gilles Peskine8f073122018-11-27 15:58:47 +0100867component_test_platform_calloc_macro () {
868 msg "build: MBEDTLS_PLATFORM_{CALLOC/FREE}_MACRO enabled (ASan build)"
Gilles Peskine8f073122018-11-27 15:58:47 +0100869 scripts/config.pl set MBEDTLS_PLATFORM_MEMORY
870 scripts/config.pl set MBEDTLS_PLATFORM_CALLOC_MACRO calloc
871 scripts/config.pl set MBEDTLS_PLATFORM_FREE_MACRO free
872 CC=gcc cmake -D CMAKE_BUILD_TYPE:String=Asan .
873 make
Hanno Beckere5fecec2018-10-11 11:02:52 +0100874
Gilles Peskine8f073122018-11-27 15:58:47 +0100875 msg "test: MBEDTLS_PLATFORM_{CALLOC/FREE}_MACRO enabled (ASan build)"
876 make test
877}
Hanno Becker83ebf782017-07-07 12:29:15 +0100878
Gilles Peskine8f073122018-11-27 15:58:47 +0100879component_test_aes_fewer_tables () {
880 msg "build: default config with AES_FEWER_TABLES enabled"
Gilles Peskine8f073122018-11-27 15:58:47 +0100881 scripts/config.pl set MBEDTLS_AES_FEWER_TABLES
882 make CC=gcc CFLAGS='-Werror -Wall -Wextra'
Hanno Becker83ebf782017-07-07 12:29:15 +0100883
Gilles Peskine8f073122018-11-27 15:58:47 +0100884 msg "test: AES_FEWER_TABLES"
885 make test
886}
Hanno Becker83ebf782017-07-07 12:29:15 +0100887
Gilles Peskine8f073122018-11-27 15:58:47 +0100888component_test_aes_rom_tables () {
889 msg "build: default config with AES_ROM_TABLES enabled"
Gilles Peskine8f073122018-11-27 15:58:47 +0100890 scripts/config.pl set MBEDTLS_AES_ROM_TABLES
891 make CC=gcc CFLAGS='-Werror -Wall -Wextra'
Hanno Becker83ebf782017-07-07 12:29:15 +0100892
Gilles Peskine8f073122018-11-27 15:58:47 +0100893 msg "test: AES_ROM_TABLES"
894 make test
895}
Hanno Becker83ebf782017-07-07 12:29:15 +0100896
Gilles Peskine8f073122018-11-27 15:58:47 +0100897component_test_aes_fewer_tables_and_rom_tables () {
898 msg "build: default config with AES_ROM_TABLES and AES_FEWER_TABLES enabled"
Gilles Peskine8f073122018-11-27 15:58:47 +0100899 scripts/config.pl set MBEDTLS_AES_FEWER_TABLES
900 scripts/config.pl set MBEDTLS_AES_ROM_TABLES
901 make CC=gcc CFLAGS='-Werror -Wall -Wextra'
Hanno Becker83ebf782017-07-07 12:29:15 +0100902
Gilles Peskine8f073122018-11-27 15:58:47 +0100903 msg "test: AES_FEWER_TABLES + AES_ROM_TABLES"
904 make test
905}
906
907component_test_make_shared () {
Gilles Peskine7ad603e2017-12-10 23:22:20 +0100908 msg "build/test: make shared" # ~ 40s
Gilles Peskine7ad603e2017-12-10 23:22:20 +0100909 make SHARED=1 all check
Gilles Peskine8f073122018-11-27 15:58:47 +0100910}
Manuel Pégourié-Gonnard9b06abe2015-06-25 09:56:07 +0200911
Gilles Peskine8f073122018-11-27 15:58:47 +0100912component_test_m32_o0 () {
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100913 # Build once with -O0, to compile out the i386 specific inline assembly
914 msg "build: i386, make, gcc -O0 (ASan build)" # ~ 30s
Simon Butcher7a6da6e2018-06-27 21:52:54 +0100915 scripts/config.pl full
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100916 make CC=gcc CFLAGS='-O0 -Werror -Wall -Wextra -m32 -fsanitize=address'
Andres Amaya Garcia84e6ce82017-05-04 11:35:51 +0100917
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100918 msg "test: i386, make, gcc -O0 (ASan build)"
919 make test
Gilles Peskine8f073122018-11-27 15:58:47 +0100920}
Gilles Peskine10726102019-01-06 20:50:38 +0000921support_test_m32_o0 () {
922 case $(uname -m) in
923 *64*) true;;
924 *) false;;
925 esac
926}
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100927
Gilles Peskine8f073122018-11-27 15:58:47 +0100928component_test_m32_o1 () {
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100929 # Build again with -O1, to compile in the i386 specific inline assembly
930 msg "build: i386, make, gcc -O1 (ASan build)" # ~ 30s
Simon Butcher8e6a22a2018-07-20 21:27:33 +0100931 scripts/config.pl full
932 make CC=gcc CFLAGS='-O1 -Werror -Wall -Wextra -m32 -fsanitize=address'
933
934 msg "test: i386, make, gcc -O1 (ASan build)"
Andres Amaya Garciaf4fbdda2017-05-08 11:19:19 +0100935 make test
Gilles Peskine8f073122018-11-27 15:58:47 +0100936}
Gilles Peskine10726102019-01-06 20:50:38 +0000937support_test_m32_o1 () {
938 support_test_m32_o0 "$@"
939}
Andres Amaya Garciaf4fbdda2017-05-08 11:19:19 +0100940
Gilles Peskine8f073122018-11-27 15:58:47 +0100941component_test_mx32 () {
Andres Amaya Garciaf4fbdda2017-05-08 11:19:19 +0100942 msg "build: 64-bit ILP32, make, gcc" # ~ 30s
Simon Butcher7a6da6e2018-06-27 21:52:54 +0100943 scripts/config.pl full
Andres Amaya Garciaf4fbdda2017-05-08 11:19:19 +0100944 make CC=gcc CFLAGS='-Werror -Wall -Wextra -mx32'
945
946 msg "test: 64-bit ILP32, make, gcc"
947 make test
Gilles Peskine8f073122018-11-27 15:58:47 +0100948}
Gilles Peskine10726102019-01-06 20:50:38 +0000949support_test_mx32 () {
950 case $(uname -m) in
951 amd64|x86_64) true;;
952 *) false;;
953 esac
954}
Manuel Pégourié-Gonnardedb2dc92015-02-10 14:36:31 +0000955
Gilles Peskine8f073122018-11-27 15:58:47 +0100956component_test_have_int32 () {
957 msg "build: gcc, force 32-bit bignum limbs"
Gilles Peskine8f073122018-11-27 15:58:47 +0100958 scripts/config.pl unset MBEDTLS_HAVE_ASM
959 scripts/config.pl unset MBEDTLS_AESNI_C
960 scripts/config.pl unset MBEDTLS_PADLOCK_C
961 make CC=gcc CFLAGS='-Werror -Wall -Wextra -DMBEDTLS_HAVE_INT32'
Andres Amaya Garcia84e6ce82017-05-04 11:35:51 +0100962
Gilles Peskine8f073122018-11-27 15:58:47 +0100963 msg "test: gcc, force 32-bit bignum limbs"
964 make test
965}
Andres Amaya Garciafe843a32017-07-20 13:21:34 +0100966
Gilles Peskine8f073122018-11-27 15:58:47 +0100967component_test_have_int64 () {
968 msg "build: gcc, force 64-bit bignum limbs"
Gilles Peskine8f073122018-11-27 15:58:47 +0100969 scripts/config.pl unset MBEDTLS_HAVE_ASM
970 scripts/config.pl unset MBEDTLS_AESNI_C
971 scripts/config.pl unset MBEDTLS_PADLOCK_C
972 make CC=gcc CFLAGS='-Werror -Wall -Wextra -DMBEDTLS_HAVE_INT64'
Gilles Peskine14c3c062018-01-29 21:25:12 +0100973
Gilles Peskine8f073122018-11-27 15:58:47 +0100974 msg "test: gcc, force 64-bit bignum limbs"
975 make test
976}
Manuel Pégourié-Gonnardedb2dc92015-02-10 14:36:31 +0000977
Gilles Peskine8f073122018-11-27 15:58:47 +0100978component_test_no_udbl_division () {
979 msg "build: MBEDTLS_NO_UDBL_DIVISION native" # ~ 10s
Gilles Peskine8f073122018-11-27 15:58:47 +0100980 scripts/config.pl full
981 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # too slow for tests
982 scripts/config.pl set MBEDTLS_NO_UDBL_DIVISION
983 make CFLAGS='-Werror -O1'
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200984
Gilles Peskine8f073122018-11-27 15:58:47 +0100985 msg "test: MBEDTLS_NO_UDBL_DIVISION native" # ~ 10s
986 make test
987}
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200988
Gilles Peskine8f073122018-11-27 15:58:47 +0100989component_test_no_64bit_multiplication () {
990 msg "build: MBEDTLS_NO_64BIT_MULTIPLICATION native" # ~ 10s
Gilles Peskine8f073122018-11-27 15:58:47 +0100991 scripts/config.pl full
992 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # too slow for tests
993 scripts/config.pl set MBEDTLS_NO_64BIT_MULTIPLICATION
994 make CFLAGS='-Werror -O1'
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200995
Gilles Peskine8f073122018-11-27 15:58:47 +0100996 msg "test: MBEDTLS_NO_64BIT_MULTIPLICATION native" # ~ 10s
997 make test
998}
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200999
Gilles Peskine8f073122018-11-27 15:58:47 +01001000component_build_arm_none_eabi_gcc () {
1001 msg "build: arm-none-eabi-gcc, make" # ~ 10s
Gilles Peskine8f073122018-11-27 15:58:47 +01001002 scripts/config.pl full
1003 scripts/config.pl unset MBEDTLS_NET_C
1004 scripts/config.pl unset MBEDTLS_TIMING_C
1005 scripts/config.pl unset MBEDTLS_FS_IO
Gilles Peskine51585382019-01-05 10:27:47 +01001006 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_FILE_C
1007 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_C
Gilles Peskine8f073122018-11-27 15:58:47 +01001008 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
1009 scripts/config.pl set MBEDTLS_NO_PLATFORM_ENTROPY
1010 # following things are not in the default config
1011 scripts/config.pl unset MBEDTLS_HAVEGE_C # depends on timing.c
1012 scripts/config.pl unset MBEDTLS_THREADING_PTHREAD
1013 scripts/config.pl unset MBEDTLS_THREADING_C
1014 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # execinfo.h
1015 scripts/config.pl unset MBEDTLS_MEMORY_BUFFER_ALLOC_C # calls exit
1016 make CC=arm-none-eabi-gcc AR=arm-none-eabi-ar LD=arm-none-eabi-ld CFLAGS='-Werror -Wall -Wextra' lib
1017}
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +02001018
Gilles Peskine8f073122018-11-27 15:58:47 +01001019component_build_arm_none_eabi_gcc_no_udbl_division () {
1020 msg "build: arm-none-eabi-gcc -DMBEDTLS_NO_UDBL_DIVISION, make" # ~ 10s
Gilles Peskine8f073122018-11-27 15:58:47 +01001021 scripts/config.pl full
1022 scripts/config.pl unset MBEDTLS_NET_C
1023 scripts/config.pl unset MBEDTLS_TIMING_C
1024 scripts/config.pl unset MBEDTLS_FS_IO
Gilles Peskine51585382019-01-05 10:27:47 +01001025 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_FILE_C
1026 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_C
Gilles Peskine8f073122018-11-27 15:58:47 +01001027 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
1028 scripts/config.pl set MBEDTLS_NO_PLATFORM_ENTROPY
1029 # following things are not in the default config
1030 scripts/config.pl unset MBEDTLS_HAVEGE_C # depends on timing.c
1031 scripts/config.pl unset MBEDTLS_THREADING_PTHREAD
1032 scripts/config.pl unset MBEDTLS_THREADING_C
1033 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # execinfo.h
1034 scripts/config.pl unset MBEDTLS_MEMORY_BUFFER_ALLOC_C # calls exit
1035 scripts/config.pl set MBEDTLS_NO_UDBL_DIVISION
1036 make CC=arm-none-eabi-gcc AR=arm-none-eabi-ar LD=arm-none-eabi-ld CFLAGS='-Werror -Wall -Wextra' lib
1037 echo "Checking that software 64-bit division is not required"
1038 if_build_succeeded not grep __aeabi_uldiv library/*.o
1039}
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +02001040
Gilles Peskine8f073122018-11-27 15:58:47 +01001041component_build_arm_none_eabi_gcc_no_64bit_multiplication () {
1042 msg "build: arm-none-eabi-gcc MBEDTLS_NO_64BIT_MULTIPLICATION, make" # ~ 10s
Gilles Peskine8f073122018-11-27 15:58:47 +01001043 scripts/config.pl full
1044 scripts/config.pl unset MBEDTLS_NET_C
1045 scripts/config.pl unset MBEDTLS_TIMING_C
1046 scripts/config.pl unset MBEDTLS_FS_IO
Gilles Peskine51585382019-01-05 10:27:47 +01001047 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_FILE_C
1048 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_C
Gilles Peskine8f073122018-11-27 15:58:47 +01001049 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
1050 scripts/config.pl set MBEDTLS_NO_PLATFORM_ENTROPY
1051 # following things are not in the default config
1052 scripts/config.pl unset MBEDTLS_HAVEGE_C # depends on timing.c
1053 scripts/config.pl unset MBEDTLS_THREADING_PTHREAD
1054 scripts/config.pl unset MBEDTLS_THREADING_C
1055 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # execinfo.h
1056 scripts/config.pl unset MBEDTLS_MEMORY_BUFFER_ALLOC_C # calls exit
1057 scripts/config.pl set MBEDTLS_NO_64BIT_MULTIPLICATION
1058 make CC=arm-none-eabi-gcc AR=arm-none-eabi-ar LD=arm-none-eabi-ld CFLAGS='-Werror -O1 -march=armv6-m -mthumb' lib
1059 echo "Checking that software 64-bit multiplication is not required"
1060 if_build_succeeded not grep __aeabi_lmul library/*.o
1061}
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +02001062
Gilles Peskine8f073122018-11-27 15:58:47 +01001063component_build_armcc () {
1064 msg "build: ARM Compiler 5, make"
Gilles Peskine8f073122018-11-27 15:58:47 +01001065 scripts/config.pl full
1066 scripts/config.pl unset MBEDTLS_NET_C
1067 scripts/config.pl unset MBEDTLS_TIMING_C
1068 scripts/config.pl unset MBEDTLS_FS_IO
Gilles Peskine51585382019-01-05 10:27:47 +01001069 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_FILE_C
1070 scripts/config.pl unset MBEDTLS_PSA_CRYPTO_STORAGE_C
Gilles Peskine8f073122018-11-27 15:58:47 +01001071 scripts/config.pl unset MBEDTLS_ENTROPY_NV_SEED
1072 scripts/config.pl unset MBEDTLS_HAVE_TIME
1073 scripts/config.pl unset MBEDTLS_HAVE_TIME_DATE
1074 scripts/config.pl set MBEDTLS_NO_PLATFORM_ENTROPY
1075 # following things are not in the default config
1076 scripts/config.pl unset MBEDTLS_DEPRECATED_WARNING
1077 scripts/config.pl unset MBEDTLS_HAVEGE_C # depends on timing.c
1078 scripts/config.pl unset MBEDTLS_THREADING_PTHREAD
1079 scripts/config.pl unset MBEDTLS_THREADING_C
1080 scripts/config.pl unset MBEDTLS_MEMORY_BACKTRACE # execinfo.h
1081 scripts/config.pl unset MBEDTLS_MEMORY_BUFFER_ALLOC_C # calls exit
1082 scripts/config.pl unset MBEDTLS_PLATFORM_TIME_ALT # depends on MBEDTLS_HAVE_TIME
Manuel Pégourié-Gonnardedb2dc92015-02-10 14:36:31 +00001083
Gilles Peskinee26ab182019-01-06 22:23:42 +00001084 make CC="$ARMC5_CC" AR="$ARMC5_AR" WARNING_CFLAGS='--strict --c99' lib
1085 make clean
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +02001086
Gilles Peskinee26ab182019-01-06 22:23:42 +00001087 # ARM Compiler 6 - Target ARMv7-A
1088 armc6_build_test "--target=arm-arm-none-eabi -march=armv7-a"
Gilles Peskineed942f82017-06-08 15:19:20 +02001089
Gilles Peskinee26ab182019-01-06 22:23:42 +00001090 # ARM Compiler 6 - Target ARMv7-M
1091 armc6_build_test "--target=arm-arm-none-eabi -march=armv7-m"
Andres AG87bb5772016-09-27 15:05:15 +01001092
Gilles Peskinee26ab182019-01-06 22:23:42 +00001093 # ARM Compiler 6 - Target ARMv8-A - AArch32
1094 armc6_build_test "--target=arm-arm-none-eabi -march=armv8.2-a"
Andres AG87bb5772016-09-27 15:05:15 +01001095
Gilles Peskinee26ab182019-01-06 22:23:42 +00001096 # ARM Compiler 6 - Target ARMv8-M
1097 armc6_build_test "--target=arm-arm-none-eabi -march=armv8-m.main"
Simon Butcher940737f2017-07-23 13:42:36 +02001098
Gilles Peskinee26ab182019-01-06 22:23:42 +00001099 # ARM Compiler 6 - Target ARMv8-A - AArch64
1100 armc6_build_test "--target=aarch64-arm-none-eabi -march=armv8.2-a"
Gilles Peskine8f073122018-11-27 15:58:47 +01001101}
Simon Butcher940737f2017-07-23 13:42:36 +02001102
Gilles Peskine8f073122018-11-27 15:58:47 +01001103component_test_allow_sha1 () {
1104 msg "build: allow SHA1 in certificates by default"
Gilles Peskine8f073122018-11-27 15:58:47 +01001105 scripts/config.pl set MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES
1106 make CFLAGS='-Werror -Wall -Wextra'
1107 msg "test: allow SHA1 in certificates by default"
1108 make test
1109 if_build_succeeded tests/ssl-opt.sh -f SHA-1
1110}
Simon Butcher940737f2017-07-23 13:42:36 +02001111
Gilles Peskine8f073122018-11-27 15:58:47 +01001112component_build_mingw () {
1113 msg "build: Windows cross build - mingw64, make (Link Library)" # ~ 30s
Gilles Peskine8f073122018-11-27 15:58:47 +01001114 make CC=i686-w64-mingw32-gcc AR=i686-w64-mingw32-ar LD=i686-w64-minggw32-ld CFLAGS='-Werror -Wall -Wextra' WINDOWS_BUILD=1 lib programs
Gilles Peskine2a458da2017-05-12 15:26:58 +02001115
Gilles Peskine8f073122018-11-27 15:58:47 +01001116 # note Make tests only builds the tests, but doesn't run them
1117 make CC=i686-w64-mingw32-gcc AR=i686-w64-mingw32-ar LD=i686-w64-minggw32-ld CFLAGS='-Werror' WINDOWS_BUILD=1 tests
1118 make WINDOWS_BUILD=1 clean
Hanno Beckere963efa2018-01-03 10:03:43 +00001119
Gilles Peskine8f073122018-11-27 15:58:47 +01001120 msg "build: Windows cross build - mingw64, make (DLL)" # ~ 30s
1121 make CC=i686-w64-mingw32-gcc AR=i686-w64-mingw32-ar LD=i686-w64-minggw32-ld CFLAGS='-Werror -Wall -Wextra' WINDOWS_BUILD=1 SHARED=1 lib programs
1122 make CC=i686-w64-mingw32-gcc AR=i686-w64-mingw32-ar LD=i686-w64-minggw32-ld CFLAGS='-Werror -Wall -Wextra' WINDOWS_BUILD=1 SHARED=1 tests
1123 make WINDOWS_BUILD=1 clean
1124}
Simon Butcher002bc622016-11-17 09:27:45 +00001125
Gilles Peskine8f073122018-11-27 15:58:47 +01001126component_test_memsan () {
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001127 msg "build: MSan (clang)" # ~ 1 min 20s
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001128 scripts/config.pl unset MBEDTLS_AESNI_C # memsan doesn't grok asm
1129 CC=clang cmake -D CMAKE_BUILD_TYPE:String=MemSan .
1130 make
Manuel Pégourié-Gonnard4a9dc2a2014-05-09 13:46:59 +02001131
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001132 msg "test: main suites (MSan)" # ~ 10s
1133 make test
Manuel Pégourié-Gonnard9bda9b32014-11-20 13:10:22 +01001134
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001135 msg "test: ssl-opt.sh (MSan)" # ~ 1 min
Gilles Peskine7c652162017-12-11 00:01:40 +01001136 if_build_succeeded tests/ssl-opt.sh
Manuel Pégourié-Gonnard9bda9b32014-11-20 13:10:22 +01001137
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001138 # Optional part(s)
Manuel Pégourié-Gonnard9bda9b32014-11-20 13:10:22 +01001139
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001140 if [ "$MEMORY" -gt 0 ]; then
1141 msg "test: compat.sh (MSan)" # ~ 6 min 20s
Gilles Peskine7c652162017-12-11 00:01:40 +01001142 if_build_succeeded tests/compat.sh
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001143 fi
Gilles Peskine8f073122018-11-27 15:58:47 +01001144}
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +01001145
Gilles Peskine8f073122018-11-27 15:58:47 +01001146component_test_memcheck () {
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001147 msg "build: Release (clang)"
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001148 CC=clang cmake -D CMAKE_BUILD_TYPE:String=Release .
1149 make
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001150
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001151 msg "test: main suites valgrind (Release)"
1152 make memcheck
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001153
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001154 # Optional part(s)
1155 # Currently broken, programs don't seem to receive signals
1156 # under valgrind on OS X
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001157
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001158 if [ "$MEMORY" -gt 0 ]; then
1159 msg "test: ssl-opt.sh --memcheck (Release)"
Gilles Peskine7c652162017-12-11 00:01:40 +01001160 if_build_succeeded tests/ssl-opt.sh --memcheck
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001161 fi
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001162
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001163 if [ "$MEMORY" -gt 1 ]; then
1164 msg "test: compat.sh --memcheck (Release)"
Gilles Peskine7c652162017-12-11 00:01:40 +01001165 if_build_succeeded tests/compat.sh --memcheck
Gilles Peskine7ad603e2017-12-10 23:22:20 +01001166 fi
Gilles Peskine8f073122018-11-27 15:58:47 +01001167}
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001168
Gilles Peskine8f073122018-11-27 15:58:47 +01001169component_test_cmake_out_of_source () {
1170 msg "build: cmake 'out-of-source' build"
Gilles Peskine8f073122018-11-27 15:58:47 +01001171 MBEDTLS_ROOT_DIR="$PWD"
1172 mkdir "$OUT_OF_SOURCE_DIR"
1173 cd "$OUT_OF_SOURCE_DIR"
1174 cmake "$MBEDTLS_ROOT_DIR"
1175 make
Manuel Pégourié-Gonnard392d3dd2015-01-26 14:03:56 +00001176
Gilles Peskine8f073122018-11-27 15:58:47 +01001177 msg "test: cmake 'out-of-source' build"
1178 make test
1179 # Test an SSL option that requires an auxiliary script in test/scripts/.
1180 # Also ensure that there are no error messages such as
1181 # "No such file or directory", which would indicate that some required
1182 # file is missing (ssl-opt.sh tolerates the absence of some files so
1183 # may exit with status 0 but emit errors).
1184 if_build_succeeded ./tests/ssl-opt.sh -f 'Fallback SCSV: beginning of list' 2>ssl-opt.err
1185 if [ -s ssl-opt.err ]; then
1186 cat ssl-opt.err >&2
1187 record_status [ ! -s ssl-opt.err ]
1188 rm ssl-opt.err
1189 fi
1190 cd "$MBEDTLS_ROOT_DIR"
1191 rm -rf "$OUT_OF_SOURCE_DIR"
1192 unset MBEDTLS_ROOT_DIR
1193}
Andres AGdc192212016-08-31 17:33:13 +01001194
Gilles Peskine8f073122018-11-27 15:58:47 +01001195component_test_zeroize () {
1196 # Test that the function mbedtls_platform_zeroize() is not optimized away by
1197 # different combinations of compilers and optimization flags by using an
1198 # auxiliary GDB script. Unfortunately, GDB does not return error values to the
1199 # system in all cases that the script fails, so we must manually search the
1200 # output to check whether the pass string is present and no failure strings
1201 # were printed.
Gilles Peskine74851d82019-01-06 19:52:22 +00001202
1203 # Don't try to disable ASLR. We don't care about ASLR here. We do care
1204 # about a spurious message if Gdb tries and fails, so suppress that.
1205 gdb_disable_aslr=
1206 if [ -z "$(gdb -batch -nw -ex 'set disable-randomization off' 2>&1)" ]; then
1207 gdb_disable_aslr='set disable-randomization off'
1208 fi
1209
Gilles Peskine8f073122018-11-27 15:58:47 +01001210 for optimization_flag in -O2 -O3 -Ofast -Os; do
Gilles Peskine06b385f2019-01-09 22:28:21 +01001211 for compiler in clang gcc; do
1212 msg "test: $compiler $optimization_flag, mbedtls_platform_zeroize()"
1213 make programs CC="$compiler" DEBUG=1 CFLAGS="$optimization_flag"
Gilles Peskine74851d82019-01-06 19:52:22 +00001214 if_build_succeeded gdb -ex "$gdb_disable_aslr" -x tests/scripts/test_zeroize.gdb -nw -batch -nx 2>&1 | tee test_zeroize.log
Gilles Peskine06b385f2019-01-09 22:28:21 +01001215 if_build_succeeded grep "The buffer was correctly zeroized" test_zeroize.log
1216 if_build_succeeded not grep -i "error" test_zeroize.log
1217 rm -f test_zeroize.log
1218 make clean
1219 done
Andres Amaya Garcia29673812017-10-25 10:35:51 +01001220 done
Gilles Peskine74851d82019-01-06 19:52:22 +00001221
1222 unset gdb_disable_aslr
Gilles Peskine8f073122018-11-27 15:58:47 +01001223}
Andres Amaya Garciad0d7bf62017-10-25 09:01:31 +01001224
Gilles Peskine8f073122018-11-27 15:58:47 +01001225component_check_python_files () {
1226 msg "Lint: Python scripts"
1227 record_status tests/scripts/check-python-files.sh
1228}
Gilles Peskine192c72f2017-12-21 15:59:21 +01001229
Gilles Peskine8f073122018-11-27 15:58:47 +01001230component_check_generate_test_code () {
1231 msg "uint test: generate_test_code.py"
1232 record_status ./tests/scripts/test_generate_test_code.py
1233}
Gilles Peskine192c72f2017-12-21 15:59:21 +01001234
1235################################################################
1236#### Termination
1237################################################################
1238
Gilles Peskine8f073122018-11-27 15:58:47 +01001239post_report () {
1240 msg "Done, cleaning up"
1241 cleanup
Manuel Pégourié-Gonnard80955ee2014-03-19 18:29:01 +01001242
Gilles Peskine8f073122018-11-27 15:58:47 +01001243 final_report
1244}
1245
1246
1247
1248################################################################
1249#### Run all the things
1250################################################################
1251
Gilles Peskinee48351a2018-11-27 16:06:30 +01001252# Run one component and clean up afterwards.
Gilles Peskine8f073122018-11-27 15:58:47 +01001253run_component () {
Gilles Peskine8ae15dd2019-01-02 18:57:02 +01001254 # Back up the configuration in case the component modifies it.
1255 # The cleanup function will restore it.
1256 cp -p "$CONFIG_H" "$CONFIG_BAK"
Gilles Peskineffcdeff2018-12-04 12:49:28 +01001257 current_component="$1"
Gilles Peskine8f073122018-11-27 15:58:47 +01001258 "$@"
Gilles Peskinee48351a2018-11-27 16:06:30 +01001259 cleanup
Gilles Peskine8f073122018-11-27 15:58:47 +01001260}
1261
1262# Preliminary setup
1263pre_check_environment
1264pre_initialize_variables
1265pre_parse_command_line "$@"
Gilles Peskine348fb9a2018-11-27 17:04:29 +01001266
Gilles Peskine10726102019-01-06 20:50:38 +00001267pre_check_git
1268build_status=0
1269if [ $KEEP_GOING -eq 1 ]; then
1270 pre_setup_keep_going
1271else
1272 record_status () {
1273 "$@"
1274 }
1275fi
1276pre_print_configuration
1277pre_check_tools
Gilles Peskine10726102019-01-06 20:50:38 +00001278cleanup
Gilles Peskine8f073122018-11-27 15:58:47 +01001279
Gilles Peskine1bcb1c82019-01-06 22:11:25 +00001280# Run the requested tests.
1281for component in $RUN_COMPONENTS; do
1282 run_component "component_$component"
1283done
Gilles Peskine8f073122018-11-27 15:58:47 +01001284
1285# We're done.
Gilles Peskine10726102019-01-06 20:50:38 +00001286post_report