blob: 724f8d94b00b2974e3275dbe54f1ead2d928b11a [file] [log] [blame]
Gilles Peskine24827022018-09-25 18:49:23 +02001#!/usr/bin/env python3
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02002"""Test the program psa_constant_names.
Gilles Peskine24827022018-09-25 18:49:23 +02003Gather constant names from header files and test cases. Compile a C program
4to print out their numerical values, feed these numerical values to
5psa_constant_names, and check that the output is the original name.
6Return 0 if all test cases pass, 1 if the output was not always as expected,
Gilles Peskinea3b93ff2019-06-03 11:23:56 +02007or 1 (with a Python backtrace) if there was an operational error.
8"""
Gilles Peskine24827022018-09-25 18:49:23 +02009
10import argparse
11import itertools
12import os
13import platform
14import re
15import subprocess
16import sys
17import tempfile
18
Gilles Peskinea0a315c2018-10-19 11:27:10 +020019class ReadFileLineException(Exception):
20 def __init__(self, filename, line_number):
21 message = 'in {} at {}'.format(filename, line_number)
22 super(ReadFileLineException, self).__init__(message)
23 self.filename = filename
24 self.line_number = line_number
25
26class read_file_lines:
Gilles Peskine54f54452019-05-27 18:31:59 +020027 # Dear Pylint, conventionally, a context manager class name is lowercase.
28 # pylint: disable=invalid-name,too-few-public-methods
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020029 """Context manager to read a text file line by line.
30
31 ```
32 with read_file_lines(filename) as lines:
33 for line in lines:
34 process(line)
35 ```
36 is equivalent to
37 ```
38 with open(filename, 'r') as input_file:
39 for line in input_file:
40 process(line)
41 ```
42 except that if process(line) raises an exception, then the read_file_lines
43 snippet annotates the exception with the file name and line number.
44 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +020045 def __init__(self, filename):
46 self.filename = filename
47 self.line_number = 'entry'
Gilles Peskine54f54452019-05-27 18:31:59 +020048 self.generator = None
Gilles Peskinea0a315c2018-10-19 11:27:10 +020049 def __enter__(self):
50 self.generator = enumerate(open(self.filename, 'r'))
51 return self
52 def __iter__(self):
53 for line_number, content in self.generator:
54 self.line_number = line_number
55 yield content
56 self.line_number = 'exit'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020057 def __exit__(self, exc_type, exc_value, exc_traceback):
58 if exc_type is not None:
Gilles Peskinea0a315c2018-10-19 11:27:10 +020059 raise ReadFileLineException(self.filename, self.line_number) \
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020060 from exc_value
Gilles Peskinea0a315c2018-10-19 11:27:10 +020061
Gilles Peskine24827022018-09-25 18:49:23 +020062class Inputs:
Gilles Peskinea3b93ff2019-06-03 11:23:56 +020063 """Accumulate information about macros to test.
64 This includes macro names as well as information about their arguments
65 when applicable.
66 """
67
Gilles Peskine24827022018-09-25 18:49:23 +020068 def __init__(self):
69 # Sets of names per type
70 self.statuses = set(['PSA_SUCCESS'])
71 self.algorithms = set(['0xffffffff'])
72 self.ecc_curves = set(['0xffff'])
Gilles Peskinedcaefae2019-05-16 12:55:35 +020073 self.dh_groups = set(['0xffff'])
Gilles Peskine24827022018-09-25 18:49:23 +020074 self.key_types = set(['0xffffffff'])
75 self.key_usage_flags = set(['0x80000000'])
Gilles Peskine434899f2018-10-19 11:30:26 +020076 # Hard-coded value for unknown algorithms
Darryl Green61b7f612019-02-04 16:00:21 +000077 self.hash_algorithms = set(['0x010000fe'])
Gilles Peskine434899f2018-10-19 11:30:26 +020078 self.mac_algorithms = set(['0x02ff00ff'])
Gilles Peskine882e57e2019-04-12 00:12:07 +020079 self.ka_algorithms = set(['0x30fc0000'])
80 self.kdf_algorithms = set(['0x200000ff'])
Gilles Peskine434899f2018-10-19 11:30:26 +020081 # For AEAD algorithms, the only variability is over the tag length,
82 # and this only applies to known algorithms, so don't test an
83 # unknown algorithm.
84 self.aead_algorithms = set()
Gilles Peskine24827022018-09-25 18:49:23 +020085 # Identifier prefixes
86 self.table_by_prefix = {
87 'ERROR': self.statuses,
88 'ALG': self.algorithms,
89 'CURVE': self.ecc_curves,
Gilles Peskinedcaefae2019-05-16 12:55:35 +020090 'GROUP': self.dh_groups,
Gilles Peskine24827022018-09-25 18:49:23 +020091 'KEY_TYPE': self.key_types,
92 'KEY_USAGE': self.key_usage_flags,
93 }
94 # macro name -> list of argument names
95 self.argspecs = {}
96 # argument name -> list of values
Gilles Peskine434899f2018-10-19 11:30:26 +020097 self.arguments_for = {
98 'mac_length': ['1', '63'],
99 'tag_length': ['1', '63'],
100 }
Gilles Peskine24827022018-09-25 18:49:23 +0200101
102 def gather_arguments(self):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200103 """Populate the list of values for macro arguments.
104 Call this after parsing all the inputs.
105 """
Gilles Peskine24827022018-09-25 18:49:23 +0200106 self.arguments_for['hash_alg'] = sorted(self.hash_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200107 self.arguments_for['mac_alg'] = sorted(self.mac_algorithms)
Gilles Peskine882e57e2019-04-12 00:12:07 +0200108 self.arguments_for['ka_alg'] = sorted(self.ka_algorithms)
Gilles Peskine17542082019-01-04 19:46:31 +0100109 self.arguments_for['kdf_alg'] = sorted(self.kdf_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200110 self.arguments_for['aead_alg'] = sorted(self.aead_algorithms)
Gilles Peskine24827022018-09-25 18:49:23 +0200111 self.arguments_for['curve'] = sorted(self.ecc_curves)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200112 self.arguments_for['group'] = sorted(self.dh_groups)
Gilles Peskine24827022018-09-25 18:49:23 +0200113
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200114 @staticmethod
115 def _format_arguments(name, arguments):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200116 """Format a macro call with arguments.."""
Gilles Peskine24827022018-09-25 18:49:23 +0200117 return name + '(' + ', '.join(arguments) + ')'
118
119 def distribute_arguments(self, name):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200120 """Generate macro calls with each tested argument set.
121 If name is a macro without arguments, just yield "name".
122 If name is a macro with arguments, yield a series of
123 "name(arg1,...,argN)" where each argument takes each possible
124 value at least once.
125 """
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200126 try:
127 if name not in self.argspecs:
128 yield name
129 return
130 argspec = self.argspecs[name]
131 if argspec == []:
132 yield name + '()'
133 return
134 argument_lists = [self.arguments_for[arg] for arg in argspec]
135 arguments = [values[0] for values in argument_lists]
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200136 yield self._format_arguments(name, arguments)
Gilles Peskine54f54452019-05-27 18:31:59 +0200137 # Dear Pylint, enumerate won't work here since we're modifying
138 # the array.
139 # pylint: disable=consider-using-enumerate
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200140 for i in range(len(arguments)):
141 for value in argument_lists[i][1:]:
142 arguments[i] = value
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200143 yield self._format_arguments(name, arguments)
Gilles Peskinef96ed662018-10-19 11:29:56 +0200144 arguments[i] = argument_lists[0][0]
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200145 except BaseException as e:
146 raise Exception('distribute_arguments({})'.format(name)) from e
Gilles Peskine24827022018-09-25 18:49:23 +0200147
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200148 _argument_split_re = re.compile(r' *, *')
149 @classmethod
150 def _argument_split(cls, arguments):
151 return re.split(cls._argument_split_re, arguments)
152
Gilles Peskine24827022018-09-25 18:49:23 +0200153 # Regex for interesting header lines.
154 # Groups: 1=macro name, 2=type, 3=argument list (optional).
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200155 _header_line_re = \
Gilles Peskine24827022018-09-25 18:49:23 +0200156 re.compile(r'#define +' +
157 r'(PSA_((?:KEY_)?[A-Z]+)_\w+)' +
158 r'(?:\(([^\n()]*)\))?')
159 # Regex of macro names to exclude.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200160 _excluded_name_re = re.compile(r'_(?:GET|IS|OF)_|_(?:BASE|FLAG|MASK)\Z')
Gilles Peskinec68ce962018-10-19 11:31:52 +0200161 # Additional excluded macros.
Gilles Peskine5c196fb2019-05-17 12:04:41 +0200162 _excluded_names = set([
163 # Macros that provide an alternative way to build the same
164 # algorithm as another macro.
165 'PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH',
166 'PSA_ALG_FULL_LENGTH_MAC',
167 # Auxiliary macro whose name doesn't fit the usual patterns for
168 # auxiliary macros.
169 'PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH_CASE',
170 # PSA_ALG_ECDH and PSA_ALG_FFDH are excluded for now as the script
171 # currently doesn't support them.
172 'PSA_ALG_ECDH',
173 'PSA_ALG_FFDH',
174 # Deprecated aliases.
175 'PSA_ERROR_UNKNOWN_ERROR',
176 'PSA_ERROR_OCCUPIED_SLOT',
177 'PSA_ERROR_EMPTY_SLOT',
178 'PSA_ERROR_INSUFFICIENT_CAPACITY',
Gilles Peskine19835122019-05-17 12:06:55 +0200179 'PSA_ERROR_TAMPERING_DETECTED',
Gilles Peskine5c196fb2019-05-17 12:04:41 +0200180 ])
Gilles Peskine24827022018-09-25 18:49:23 +0200181 def parse_header_line(self, line):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200182 """Parse a C header line, looking for "#define PSA_xxx"."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200183 m = re.match(self._header_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200184 if not m:
185 return
186 name = m.group(1)
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200187 if re.search(self._excluded_name_re, name) or \
188 name in self._excluded_names:
Gilles Peskine24827022018-09-25 18:49:23 +0200189 return
190 dest = self.table_by_prefix.get(m.group(2))
191 if dest is None:
192 return
193 dest.add(name)
194 if m.group(3):
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200195 self.argspecs[name] = self._argument_split(m.group(3))
Gilles Peskine24827022018-09-25 18:49:23 +0200196
197 def parse_header(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200198 """Parse a C header file, looking for "#define PSA_xxx"."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200199 with read_file_lines(filename) as lines:
200 for line in lines:
Gilles Peskine24827022018-09-25 18:49:23 +0200201 self.parse_header_line(line)
202
203 def add_test_case_line(self, function, argument):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200204 """Parse a test case data line, looking for algorithm metadata tests."""
Gilles Peskine24827022018-09-25 18:49:23 +0200205 if function.endswith('_algorithm'):
Darryl Greenb8fe0682019-02-06 13:21:31 +0000206 # As above, ECDH and FFDH algorithms are excluded for now.
207 # Support for them will be added in the future.
Darryl Greenec079502019-01-29 15:48:00 +0000208 if 'ECDH' in argument or 'FFDH' in argument:
209 return
Gilles Peskine24827022018-09-25 18:49:23 +0200210 self.algorithms.add(argument)
211 if function == 'hash_algorithm':
212 self.hash_algorithms.add(argument)
Gilles Peskine434899f2018-10-19 11:30:26 +0200213 elif function in ['mac_algorithm', 'hmac_algorithm']:
214 self.mac_algorithms.add(argument)
215 elif function == 'aead_algorithm':
216 self.aead_algorithms.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200217 elif function == 'key_type':
218 self.key_types.add(argument)
219 elif function == 'ecc_key_types':
220 self.ecc_curves.add(argument)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200221 elif function == 'dh_key_types':
222 self.dh_groups.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200223
224 # Regex matching a *.data line containing a test function call and
225 # its arguments. The actual definition is partly positional, but this
226 # regex is good enough in practice.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200227 _test_case_line_re = re.compile(r'(?!depends_on:)(\w+):([^\n :][^:\n]*)')
Gilles Peskine24827022018-09-25 18:49:23 +0200228 def parse_test_cases(self, filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200229 """Parse a test case file (*.data), looking for algorithm metadata tests."""
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200230 with read_file_lines(filename) as lines:
231 for line in lines:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200232 m = re.match(self._test_case_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200233 if m:
234 self.add_test_case_line(m.group(1), m.group(2))
235
236def gather_inputs(headers, test_suites):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200237 """Read the list of inputs to test psa_constant_names with."""
Gilles Peskine24827022018-09-25 18:49:23 +0200238 inputs = Inputs()
239 for header in headers:
240 inputs.parse_header(header)
241 for test_cases in test_suites:
242 inputs.parse_test_cases(test_cases)
243 inputs.gather_arguments()
244 return inputs
245
246def remove_file_if_exists(filename):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200247 """Remove the specified file, ignoring errors."""
Gilles Peskine24827022018-09-25 18:49:23 +0200248 if not filename:
249 return
250 try:
251 os.remove(filename)
Gilles Peskine54f54452019-05-27 18:31:59 +0200252 except OSError:
Gilles Peskine24827022018-09-25 18:49:23 +0200253 pass
254
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200255def run_c(options, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200256 """Generate and run a program to print out numerical values for names."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200257 if type_word == 'status':
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100258 cast_to = 'long'
259 printf_format = '%ld'
260 else:
261 cast_to = 'unsigned long'
262 printf_format = '0x%08lx'
Gilles Peskine24827022018-09-25 18:49:23 +0200263 c_name = None
264 exe_name = None
265 try:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200266 c_fd, c_name = tempfile.mkstemp(prefix='tmp-{}-'.format(type_word),
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100267 suffix='.c',
Gilles Peskine24827022018-09-25 18:49:23 +0200268 dir='programs/psa')
269 exe_suffix = '.exe' if platform.system() == 'Windows' else ''
270 exe_name = c_name[:-2] + exe_suffix
271 remove_file_if_exists(exe_name)
272 c_file = os.fdopen(c_fd, 'w', encoding='ascii')
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100273 c_file.write('/* Generated by test_psa_constant_names.py for {} values */'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200274 .format(type_word))
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100275 c_file.write('''
Gilles Peskine24827022018-09-25 18:49:23 +0200276#include <stdio.h>
277#include <psa/crypto.h>
278int main(void)
279{
280''')
281 for name in names:
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100282 c_file.write(' printf("{}\\n", ({}) {});\n'
283 .format(printf_format, cast_to, name))
Gilles Peskine24827022018-09-25 18:49:23 +0200284 c_file.write(''' return 0;
285}
286''')
287 c_file.close()
288 cc = os.getenv('CC', 'cc')
289 subprocess.check_call([cc] +
290 ['-I' + dir for dir in options.include] +
291 ['-o', exe_name, c_name])
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200292 if options.keep_c:
293 sys.stderr.write('List of {} tests kept at {}\n'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200294 .format(type_word, c_name))
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200295 else:
296 os.remove(c_name)
Gilles Peskine24827022018-09-25 18:49:23 +0200297 output = subprocess.check_output([exe_name])
298 return output.decode('ascii').strip().split('\n')
299 finally:
300 remove_file_if_exists(exe_name)
301
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200302NORMALIZE_STRIP_RE = re.compile(r'\s+')
Gilles Peskine24827022018-09-25 18:49:23 +0200303def normalize(expr):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200304 """Normalize the C expression so as not to care about trivial differences.
305 Currently "trivial differences" means whitespace.
306 """
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200307 expr = re.sub(NORMALIZE_STRIP_RE, '', expr, len(expr))
Gilles Peskine24827022018-09-25 18:49:23 +0200308 return expr.strip().split('\n')
309
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200310def do_test(options, inputs, type_word, names):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200311 """Test psa_constant_names for the specified type.
312 Run program on names.
313 Use inputs to figure out what arguments to pass to macros that
314 take arguments.
315 """
Gilles Peskine24827022018-09-25 18:49:23 +0200316 names = sorted(itertools.chain(*map(inputs.distribute_arguments, names)))
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200317 values = run_c(options, type_word, names)
318 output = subprocess.check_output([options.program, type_word] + values)
Gilles Peskine24827022018-09-25 18:49:23 +0200319 outputs = output.decode('ascii').strip().split('\n')
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200320 errors = [(type_word, name, value, output)
Gilles Peskine24827022018-09-25 18:49:23 +0200321 for (name, value, output) in zip(names, values, outputs)
322 if normalize(name) != normalize(output)]
323 return len(names), errors
324
325def report_errors(errors):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200326 """Describe each case where the output is not as expected."""
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200327 for type_word, name, value, output in errors:
Gilles Peskine24827022018-09-25 18:49:23 +0200328 print('For {} "{}", got "{}" (value: {})'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200329 .format(type_word, name, output, value))
Gilles Peskine24827022018-09-25 18:49:23 +0200330
331def run_tests(options, inputs):
Gilles Peskinea3b93ff2019-06-03 11:23:56 +0200332 """Run psa_constant_names on all the gathered inputs.
333 Return a tuple (count, errors) where count is the total number of inputs
334 that were tested and errors is the list of cases where the output was
335 not as expected.
336 """
Gilles Peskine24827022018-09-25 18:49:23 +0200337 count = 0
338 errors = []
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200339 for type_word, names in [('status', inputs.statuses),
340 ('algorithm', inputs.algorithms),
341 ('ecc_curve', inputs.ecc_curves),
342 ('dh_group', inputs.dh_groups),
343 ('key_type', inputs.key_types),
344 ('key_usage', inputs.key_usage_flags)]:
345 c, e = do_test(options, inputs, type_word, names)
Gilles Peskine24827022018-09-25 18:49:23 +0200346 count += c
347 errors += e
348 return count, errors
349
Gilles Peskine54f54452019-05-27 18:31:59 +0200350def main():
Gilles Peskine24827022018-09-25 18:49:23 +0200351 parser = argparse.ArgumentParser(description=globals()['__doc__'])
352 parser.add_argument('--include', '-I',
353 action='append', default=['include'],
354 help='Directory for header files')
355 parser.add_argument('--program',
356 default='programs/psa/psa_constant_names',
357 help='Program to test')
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200358 parser.add_argument('--keep-c',
359 action='store_true', dest='keep_c', default=False,
360 help='Keep the intermediate C file')
361 parser.add_argument('--no-keep-c',
362 action='store_false', dest='keep_c',
363 help='Don\'t keep the intermediate C file (default)')
Gilles Peskine24827022018-09-25 18:49:23 +0200364 options = parser.parse_args()
Gilles Peskine6d194bd2019-01-04 19:44:59 +0100365 headers = [os.path.join(options.include[0], 'psa', h)
366 for h in ['crypto.h', 'crypto_extra.h', 'crypto_values.h']]
Gilles Peskine24827022018-09-25 18:49:23 +0200367 test_suites = ['tests/suites/test_suite_psa_crypto_metadata.data']
368 inputs = gather_inputs(headers, test_suites)
369 count, errors = run_tests(options, inputs)
370 report_errors(errors)
371 if errors == []:
372 print('{} test cases PASS'.format(count))
373 else:
374 print('{} test cases, {} FAIL'.format(count, len(errors)))
375 exit(1)
Gilles Peskine54f54452019-05-27 18:31:59 +0200376
377if __name__ == '__main__':
378 main()