blob: 8a3ab281f08ba9b664066d4c9c7e33d5ed5118bf [file] [log] [blame]
Gabor Mezei95ecaaf2023-01-16 16:53:29 +01001"""Framework classes for generation of ecp test cases."""
2# Copyright The Mbed TLS Contributors
3# SPDX-License-Identifier: Apache-2.0
4#
5# Licensed under the Apache License, Version 2.0 (the "License"); you may
6# not use this file except in compliance with the License.
7# You may obtain a copy of the License at
8#
9# http://www.apache.org/licenses/LICENSE-2.0
10#
11# Unless required by applicable law or agreed to in writing, software
12# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
13# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14# See the License for the specific language governing permissions and
15# limitations under the License.
16
17from typing import List
18
Gabor Mezei95ecaaf2023-01-16 16:53:29 +010019from . import test_data_generation
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010020from . import bignum_common
Gabor Mezei95ecaaf2023-01-16 16:53:29 +010021
Gabor Mezeid034b3d2023-03-06 16:15:43 +010022
Gabor Mezei95ecaaf2023-01-16 16:53:29 +010023class EcpTarget(test_data_generation.BaseTarget):
24 #pylint: disable=abstract-method, too-few-public-methods
25 """Target for ecp test case generation."""
26 target_basename = 'test_suite_ecp.generated'
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010027
Gabor Mezeid034b3d2023-03-06 16:15:43 +010028
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010029class EcpP192R1Raw(bignum_common.ModOperationCommon,
30 EcpTarget):
Gabor Mezeid8c0e1a2023-03-28 15:34:49 +020031 """Test cases for ECP P192 fast reduction."""
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010032 symbol = "-"
Minos Galanakis13586482023-03-21 12:08:37 +000033 test_function = "ecp_mod_p_generic_raw"
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010034 test_name = "ecp_mod_p192_raw"
35 input_style = "fixed"
36 arity = 1
Minos Galanakis450abfd2023-06-09 14:23:55 +010037 dependencies = ["MBEDTLS_ECP_DP_SECP192R1_ENABLED",
38 "MBEDTLS_ECP_NIST_OPTIM"]
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010039
Gabor Mezeib6875082023-01-31 14:35:17 +010040 moduli = ["fffffffffffffffffffffffffffffffeffffffffffffffff"] # type: List[str]
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010041
42 input_values = [
43 "0", "1",
44
Gabor Mezei5c9f4012023-02-13 14:15:08 +010045 # Modulus - 1
46 "fffffffffffffffffffffffffffffffefffffffffffffffe",
47
Gabor Mezei62adc722023-03-28 15:04:48 +020048 # Modulus + 1
49 "ffffffffffffffffffffffffffffffff0000000000000000",
50
51 # 2^192 - 1
52 "ffffffffffffffffffffffffffffffffffffffffffffffff",
53
54 # Maximum canonical P192 multiplication result
55 ("fffffffffffffffffffffffffffffffdfffffffffffffffc"
56 "000000000000000100000000000000040000000000000004"),
57
58 # Generate an overflow during reduction
59 ("00000000000000000000000000000001ffffffffffffffff"
60 "ffffffffffffffffffffffffffffffff0000000000000000"),
61
62 # Generate an overflow during carry reduction
63 ("ffffffffffffffff00000000000000010000000000000000"
64 "fffffffffffffffeffffffffffffffff0000000000000000"),
65
Gabor Mezeibd23f3b2023-01-25 18:09:49 +010066 # First 8 number generated by random.getrandbits(384) - seed(2,2)
67 ("cf1822ffbc6887782b491044d5e341245c6e433715ba2bdd"
68 "177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
69 ("ffed9235288bc781ae66267594c9c9500925e4749b575bd1"
70 "3653f8dd9b1f282e4067c3584ee207f8da94e3e8ab73738f"),
71 ("ef8acd128b4f2fc15f3f57ebf30b94fa82523e86feac7eb7"
72 "dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"),
73 ("e8624fab5186ee32ee8d7ee9770348a05d300cb90706a045"
74 "defc044a09325626e6b58de744ab6cce80877b6f71e1f6d2"),
75 ("2d3d854e061b90303b08c6e33c7295782d6c797f8f7d9b78"
76 "2a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
77 ("fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f1"
78 "5c14bc4a829e07b0829a48d422fe99a22c70501e533c9135"),
79 ("97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561"
80 "867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"),
81 ("bd143fa9b714210c665d7435c1066932f4767f26294365b2"
82 "721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"),
83
84 # Next 2 number generated by random.getrandbits(192)
85 "47733e847d718d733ff98ff387c56473a7a83ee0761ebfd2",
86 "cbd4d3e2d4dec9ef83f0be4e80371eb97f81375eecc1cb63"
87 ]
88
89 @property
90 def arg_a(self) -> str:
91 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
92
93 def result(self) -> List[str]:
94 result = self.int_a % self.int_n
95 return [self.format_result(result)]
96
Gabor Mezeia2ef6a82023-03-06 16:57:25 +010097 @property
98 def is_valid(self) -> bool:
99 return True
100
Minos Galanakisaada68f2023-05-12 17:10:16 +0100101 def arguments(self)-> List[str]:
Minos Galanakis13586482023-03-21 12:08:37 +0000102 args = super().arguments()
103 return ["MBEDTLS_ECP_DP_SECP192R1"] + args
104
Gabor Mezeid034b3d2023-03-06 16:15:43 +0100105
Gabor Mezeif65a0592023-02-14 18:26:36 +0100106class EcpP224R1Raw(bignum_common.ModOperationCommon,
107 EcpTarget):
Gabor Mezeid8c0e1a2023-03-28 15:34:49 +0200108 """Test cases for ECP P224 fast reduction."""
Gabor Mezeif65a0592023-02-14 18:26:36 +0100109 symbol = "-"
Minos Galanakis13586482023-03-21 12:08:37 +0000110 test_function = "ecp_mod_p_generic_raw"
Gabor Mezeif65a0592023-02-14 18:26:36 +0100111 test_name = "ecp_mod_p224_raw"
112 input_style = "arch_split"
113 arity = 1
Minos Galanakis450abfd2023-06-09 14:23:55 +0100114 dependencies = ["MBEDTLS_ECP_DP_SECP224R1_ENABLED",
115 "MBEDTLS_ECP_NIST_OPTIM"]
Gabor Mezeif65a0592023-02-14 18:26:36 +0100116
117 moduli = ["ffffffffffffffffffffffffffffffff000000000000000000000001"] # type: List[str]
118
119 input_values = [
120 "0", "1",
121
Gabor Mezei98791e72023-02-27 15:59:34 +0100122 # Modulus - 1
123 "ffffffffffffffffffffffffffffffff000000000000000000000000",
124
Gabor Mezei64a229f2023-03-28 15:05:57 +0200125 # Modulus + 1
126 "ffffffffffffffffffffffffffffffff000000000000000000000002",
127
128 # 2^224 - 1
129 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffff",
130
Gabor Mezei98791e72023-02-27 15:59:34 +0100131 # Maximum canonical P224 multiplication result
Gabor Mezei61ef3602023-03-06 16:26:18 +0100132 ("fffffffffffffffffffffffffffffffe000000000000000000000000"
133 "00000001000000000000000000000000000000000000000000000000"),
Gabor Mezei98791e72023-02-27 15:59:34 +0100134
135 # Generate an overflow during reduction
136 ("00000000000000000000000000010000000070000000002000001000"
Gabor Mezei931fd642023-03-01 16:50:00 +0100137 "ffffffffffff9fffffffffe00000efff000070000000002000001003"),
Gabor Mezei98791e72023-02-27 15:59:34 +0100138
139 # Generate an underflow during reduction
140 ("00000001000000000000000000000000000000000000000000000000"
Gabor Mezei931fd642023-03-01 16:50:00 +0100141 "00000000000dc0000000000000000001000000010000000100000003"),
Gabor Mezei98791e72023-02-27 15:59:34 +0100142
Gabor Mezeif65a0592023-02-14 18:26:36 +0100143 # First 8 number generated by random.getrandbits(448) - seed(2,2)
144 ("da94e3e8ab73738fcf1822ffbc6887782b491044d5e341245c6e4337"
145 "15ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
146 ("cdbd47d364be8049a372db8f6e405d93ffed9235288bc781ae662675"
147 "94c9c9500925e4749b575bd13653f8dd9b1f282e4067c3584ee207f8"),
148 ("defc044a09325626e6b58de744ab6cce80877b6f71e1f6d2ef8acd12"
149 "8b4f2fc15f3f57ebf30b94fa82523e86feac7eb7dc38f519b91751da"),
150 ("2d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c50556c71c4a6"
151 "6148a86fe8624fab5186ee32ee8d7ee9770348a05d300cb90706a045"),
152 ("8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0829a48d4"
153 "22fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"),
154 ("97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561867e5e15"
155 "bc01bfce6a27e0dfcbf8754472154e76e4c11ab2fec3f6b32e8d4b8a"),
156 ("a7a83ee0761ebfd2bd143fa9b714210c665d7435c1066932f4767f26"
157 "294365b2721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"),
158 ("74667bffe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e"
159 "80371eb97f81375eecc1cb6347733e847d718d733ff98ff387c56473"),
160
161 # Next 2 number generated by random.getrandbits(224)
162 "eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a",
163 "f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f258ebdbfe3"
164 ]
165
166 @property
167 def arg_a(self) -> str:
168 hex_digits = bignum_common.hex_digits_for_limb(448 // self.bits_in_limb, self.bits_in_limb)
169 return super().format_arg('{:x}'.format(self.int_a)).zfill(hex_digits)
170
171 def result(self) -> List[str]:
172 result = self.int_a % self.int_n
173 return [self.format_result(result)]
174
Gabor Mezeia2ef6a82023-03-06 16:57:25 +0100175 @property
176 def is_valid(self) -> bool:
177 return True
178
Minos Galanakisaada68f2023-05-12 17:10:16 +0100179 def arguments(self)-> List[str]:
Minos Galanakis13586482023-03-21 12:08:37 +0000180 args = super().arguments()
181 return ["MBEDTLS_ECP_DP_SECP224R1"] + args
182
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000183
Gabor Mezeic33a36b2023-03-28 15:32:47 +0200184class EcpP256R1Raw(bignum_common.ModOperationCommon,
185 EcpTarget):
186 """Test cases for ECP P256 fast reduction."""
187 symbol = "-"
Minos Galanakis13586482023-03-21 12:08:37 +0000188 test_function = "ecp_mod_p_generic_raw"
Gabor Mezeic33a36b2023-03-28 15:32:47 +0200189 test_name = "ecp_mod_p256_raw"
190 input_style = "fixed"
191 arity = 1
Minos Galanakis450abfd2023-06-09 14:23:55 +0100192 dependencies = ["MBEDTLS_ECP_DP_SECP256R1_ENABLED",
193 "MBEDTLS_ECP_NIST_OPTIM"]
Gabor Mezeic33a36b2023-03-28 15:32:47 +0200194
195 moduli = ["ffffffff00000001000000000000000000000000ffffffffffffffffffffffff"] # type: List[str]
196
197 input_values = [
198 "0", "1",
199
200 # Modulus - 1
201 "ffffffff00000001000000000000000000000000fffffffffffffffffffffffe",
202
203 # Modulus + 1
204 "ffffffff00000001000000000000000000000001000000000000000000000000",
205
206 # 2^256 - 1
207 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff",
208
209 # Maximum canonical P256 multiplication result
210 ("fffffffe00000002fffffffe0000000100000001fffffffe00000001fffffffc"
211 "00000003fffffffcfffffffffffffffffffffffc000000000000000000000004"),
212
213 # Generate an overflow during reduction
214 ("0000000000000000000000010000000000000000000000000000000000000000"
215 "00000000000000000000000000000000000000000000000000000000ffffffff"),
216
217 # Generate an underflow during reduction
218 ("0000000000000000000000000000000000000000000000000000000000000010"
219 "ffffffff00000000000000000000000000000000000000000000000000000000"),
220
221 # Generate an overflow during carry reduction
222 ("aaaaaaaa00000000000000000000000000000000000000000000000000000000"
223 "00000000000000000000000000000000aaaaaaacaaaaaaaaaaaaaaaa00000000"),
224
225 # Generate an underflow during carry reduction
226 ("000000000000000000000001ffffffff00000000000000000000000000000000"
227 "0000000000000000000000000000000000000002000000020000000100000002"),
228
229 # First 8 number generated by random.getrandbits(512) - seed(2,2)
230 ("4067c3584ee207f8da94e3e8ab73738fcf1822ffbc6887782b491044d5e34124"
231 "5c6e433715ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
232 ("82523e86feac7eb7dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"
233 "ffed9235288bc781ae66267594c9c9500925e4749b575bd13653f8dd9b1f282e"),
234 ("e8624fab5186ee32ee8d7ee9770348a05d300cb90706a045defc044a09325626"
235 "e6b58de744ab6cce80877b6f71e1f6d2ef8acd128b4f2fc15f3f57ebf30b94fa"),
236 ("829a48d422fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"
237 "2d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
238 ("e89204e2e8168561867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"
239 "fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0"),
240 ("bd143fa9b714210c665d7435c1066932f4767f26294365b2721dea3bf63f23d0"
241 "dbe53fcafb2147df5ca495fa5a91c89b97eeab64ca2ce6bc5d3fd983c34c769f"),
242 ("74667bffe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e80371eb9"
243 "7f81375eecc1cb6347733e847d718d733ff98ff387c56473a7a83ee0761ebfd2"),
244 ("d08f1bb2531d6460f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f25"
245 "8ebdbfe3eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a"),
246
247 # Next 2 number generated by random.getrandbits(256)
248 "c5e2486c44a4a8f69dc8db48e86ec9c6e06f291b2a838af8d5c44a4eb3172062",
249 "d4c0dca8b4c9e755cc9c3adcf515a8234da4daeb4f3f87777ad1f45ae9500ec9"
250 ]
251
252 @property
253 def arg_a(self) -> str:
254 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
255
256 def result(self) -> List[str]:
257 result = self.int_a % self.int_n
258 return [self.format_result(result)]
259
260 @property
261 def is_valid(self) -> bool:
262 return True
263
Minos Galanakisaada68f2023-05-12 17:10:16 +0100264 def arguments(self)-> List[str]:
Minos Galanakis13586482023-03-21 12:08:37 +0000265 args = super().arguments()
266 return ["MBEDTLS_ECP_DP_SECP256R1"] + args
267
Gabor Mezeic33a36b2023-03-28 15:32:47 +0200268
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000269class EcpP384R1Raw(bignum_common.ModOperationCommon,
270 EcpTarget):
Gabor Mezeid8c0e1a2023-03-28 15:34:49 +0200271 """Test cases for ECP P384 fast reduction."""
Minos Galanakis13586482023-03-21 12:08:37 +0000272 test_function = "ecp_mod_p_generic_raw"
Minos Galanakisf359c912023-03-06 11:39:54 +0000273 test_name = "ecp_mod_p384_raw"
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000274 input_style = "fixed"
Minos Galanakisf359c912023-03-06 11:39:54 +0000275 arity = 1
Minos Galanakis450abfd2023-06-09 14:23:55 +0100276 dependencies = ["MBEDTLS_ECP_DP_SECP384R1_ENABLED",
277 "MBEDTLS_ECP_NIST_OPTIM"]
Minos Galanakisf359c912023-03-06 11:39:54 +0000278
Gabor Mezeifede2762023-03-28 15:29:40 +0200279 moduli = [("ffffffffffffffffffffffffffffffffffffffffffffffff"
280 "fffffffffffffffeffffffff0000000000000000ffffffff")
Minos Galanakisf359c912023-03-06 11:39:54 +0000281 ] # type: List[str]
282
283 input_values = [
284 "0", "1",
285
286 # Modulus - 1
Gabor Mezeifede2762023-03-28 15:29:40 +0200287 ("ffffffffffffffffffffffffffffffffffffffffffffffff"
288 "fffffffffffffffeffffffff0000000000000000fffffffe"),
Minos Galanakisf359c912023-03-06 11:39:54 +0000289
Gabor Mezei54ad6472023-03-28 15:30:32 +0200290 # Modulus + 1
291 ("ffffffffffffffffffffffffffffffffffffffffffffffff"
292 "fffffffffffffffeffffffff000000000000000100000000"),
293
294 # 2^384 - 1
295 ("ffffffffffffffffffffffffffffffffffffffffffffffff"
296 "ffffffffffffffffffffffffffffffffffffffffffffffff"),
297
Minos Galanakisf359c912023-03-06 11:39:54 +0000298 # Maximum canonical P384 multiplication result
Gabor Mezeifede2762023-03-28 15:29:40 +0200299 ("ffffffffffffffffffffffffffffffffffffffffffffffff"
300 "fffffffffffffffdfffffffe0000000000000001fffffffc"
301 "000000000000000000000000000000010000000200000000"
302 "fffffffe000000020000000400000000fffffffc00000004"),
Minos Galanakisf359c912023-03-06 11:39:54 +0000303
304 # Testing with overflow in A(12) + A(21) + A(20);
Gabor Mezeifede2762023-03-28 15:29:40 +0200305 ("497811378624857a2c2af60d70583376545484cfae5c812f"
306 "e2999fc1abb51d18b559e8ca3b50aaf263fdf8f24bdfb98f"
307 "ffffffff20e65bf9099e4e73a5e8b517cf4fbeb8fd1750fd"
308 "ae6d43f2e53f82d5ffffffffffffffffcc6f1e06111c62e0"),
Minos Galanakisf359c912023-03-06 11:39:54 +0000309
310 # Testing with underflow in A(13) + A(22) + A(23) - A(12) - A(20);
Gabor Mezeifede2762023-03-28 15:29:40 +0200311 ("dfdd25e96777406b3c04b8c7b406f5fcf287e1e576003a09"
312 "2852a6fbe517f2712b68abef41dbd35183a0614fb7222606"
313 "ffffffff84396eee542f18a9189d94396c784059c17a9f18"
314 "f807214ef32f2f10ffffffff8a77fac20000000000000000"),
Minos Galanakisf359c912023-03-06 11:39:54 +0000315
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000316 # Testing with overflow in A(23) + A(20) + A(19) - A(22);
Gabor Mezeifede2762023-03-28 15:29:40 +0200317 ("783753f8a5afba6c1862eead1deb2fcdd907272be3ffd185"
318 "42b24a71ee8b26cab0aa33513610ff973042bbe1637cc9fc"
319 "99ad36c7f703514572cf4f5c3044469a8f5be6312c19e5d3"
320 "f8fc1ac6ffffffffffffffff8c86252400000000ffffffff"),
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000321
322 # Testing with underflow in A(23) + A(20) + A(19) - A(22);
Gabor Mezeifede2762023-03-28 15:29:40 +0200323 ("65e1d2362fce922663b7fd517586e88842a9b4bd092e93e6"
324 "251c9c69f278cbf8285d99ae3b53da5ba36e56701e2b17c2"
325 "25f1239556c5f00117fa140218b46ebd8e34f50d0018701f"
326 "a8a0a5cc00000000000000004410bcb4ffffffff00000000"),
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000327
Minos Galanakis4af90bb2023-03-20 12:20:46 +0000328 # Testing the second round of carry reduction
Gabor Mezeifede2762023-03-28 15:29:40 +0200329 ("000000000000000000000000ffffffffffffffffffffffff"
330 "ffffffffffffffffffffffffffffffff0000000000000000"
331 "0000000000000000ffffffff000000000000000000000001"
332 "00000000000000000000000000000000ffffffff00000001"),
Minos Galanakis4af90bb2023-03-20 12:20:46 +0000333
Minos Galanakisf359c912023-03-06 11:39:54 +0000334 # First 8 number generated by random.getrandbits(768) - seed(2,2)
Gabor Mezeifede2762023-03-28 15:29:40 +0200335 ("ffed9235288bc781ae66267594c9c9500925e4749b575bd1"
336 "3653f8dd9b1f282e4067c3584ee207f8da94e3e8ab73738f"
337 "cf1822ffbc6887782b491044d5e341245c6e433715ba2bdd"
338 "177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
339 ("e8624fab5186ee32ee8d7ee9770348a05d300cb90706a045"
340 "defc044a09325626e6b58de744ab6cce80877b6f71e1f6d2"
341 "ef8acd128b4f2fc15f3f57ebf30b94fa82523e86feac7eb7"
342 "dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"),
343 ("fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f1"
344 "5c14bc4a829e07b0829a48d422fe99a22c70501e533c9135"
345 "2d3d854e061b90303b08c6e33c7295782d6c797f8f7d9b78"
346 "2a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
347 ("bd143fa9b714210c665d7435c1066932f4767f26294365b2"
348 "721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"
349 "97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561"
350 "867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"),
351 ("8ebdbfe3eb9ac688b9d39cca91551e8259cc60b17604e4b4"
352 "e73695c3e652c71a74667bffe202849da9643a295a9ac6de"
353 "cbd4d3e2d4dec9ef83f0be4e80371eb97f81375eecc1cb63"
354 "47733e847d718d733ff98ff387c56473a7a83ee0761ebfd2"),
355 ("d4c0dca8b4c9e755cc9c3adcf515a8234da4daeb4f3f8777"
356 "7ad1f45ae9500ec9c5e2486c44a4a8f69dc8db48e86ec9c6"
357 "e06f291b2a838af8d5c44a4eb3172062d08f1bb2531d6460"
358 "f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f25"),
359 ("0227eeb7b9d7d01f5769da05d205bbfcc8c69069134bccd3"
360 "e1cf4f589f8e4ce0af29d115ef24bd625dd961e6830b54fa"
361 "7d28f93435339774bb1e386c4fd5079e681b8f5896838b76"
362 "9da59b74a6c3181c81e220df848b1df78feb994a81167346"),
363 ("d322a7353ead4efe440e2b4fda9c025a22f1a83185b98f5f"
364 "c11e60de1b343f52ea748db9e020307aaeb6db2c3a038a70"
365 "9779ac1f45e9dd320c855fdfa7251af0930cdbd30f0ad2a8"
366 "1b2d19a2beaa14a7ff3fe32a30ffc4eed0a7bd04e85bfcdd"),
Minos Galanakisf359c912023-03-06 11:39:54 +0000367
368 # Next 2 number generated by random.getrandbits(384)
Gabor Mezeifede2762023-03-28 15:29:40 +0200369 ("5c3747465cc36c270e8a35b10828d569c268a20eb78ac332"
370 "e5e138e26c4454b90f756132e16dce72f18e859835e1f291"),
371 ("eb2b5693babb7fbb0a76c196067cfdcb11457d9cf45e2fa0"
372 "1d7f4275153924800600571fac3a5b263fdf57cd2c006497")
Minos Galanakisf359c912023-03-06 11:39:54 +0000373 ]
374
375 @property
376 def arg_a(self) -> str:
Minos Galanakis37f4cb62023-03-09 11:15:15 +0000377 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
Minos Galanakisf359c912023-03-06 11:39:54 +0000378
379 def result(self) -> List[str]:
380 result = self.int_a % self.int_n
381 return [self.format_result(result)]
382
383 @property
384 def is_valid(self) -> bool:
385 return True
Gabor Mezeid034b3d2023-03-06 16:15:43 +0100386
Minos Galanakisaada68f2023-05-12 17:10:16 +0100387 def arguments(self)-> List[str]:
Minos Galanakis13586482023-03-21 12:08:37 +0000388 args = super().arguments()
389 return ["MBEDTLS_ECP_DP_SECP384R1"] + args
390
391
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100392class EcpP521R1Raw(bignum_common.ModOperationCommon,
393 EcpTarget):
Gabor Mezeid8c0e1a2023-03-28 15:34:49 +0200394 """Test cases for ECP P521 fast reduction."""
Minos Galanakis13586482023-03-21 12:08:37 +0000395 test_function = "ecp_mod_p_generic_raw"
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100396 test_name = "ecp_mod_p521_raw"
Gabor Mezei2c8e1442023-02-16 10:25:08 +0100397 input_style = "arch_split"
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100398 arity = 1
Minos Galanakis450abfd2023-06-09 14:23:55 +0100399 dependencies = ["MBEDTLS_ECP_DP_SECP521R1_ENABLED",
400 "MBEDTLS_ECP_NIST_OPTIM"]
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100401
402 moduli = [("01ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
403 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff")
404 ] # type: List[str]
405
406 input_values = [
407 "0", "1",
408
Gabor Mezeia9a68722023-03-28 15:06:51 +0200409 # Modulus - 1
410 ("01ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
411 "fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffe"),
412
413 # Modulus + 1
414 ("020000000000000000000000000000000000000000000000000000000000000000"
415 "000000000000000000000000000000000000000000000000000000000000000000"),
416
417 # Maximum canonical P521 multiplication result
Janos Follath755ff0e2023-02-07 15:27:44 +0000418 ("0003ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
419 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
420 "fffff800"
421 "0000000000000000000000000000000000000000000000000000000000000000"
422 "0000000000000000000000000000000000000000000000000000000000000004"),
423
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100424 # Test case for overflow during addition
425 ("0001efffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
426 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
427 "000001ef"
428 "0000000000000000000000000000000000000000000000000000000000000000"
429 "000000000000000000000000000000000000000000000000000000000f000000"),
430
431 # First 8 number generated by random.getrandbits(1042) - seed(2,2)
432 ("0003cc2e82523e86feac7eb7dc38f519b91751dacdbd47d364be8049a372db8f"
433 "6e405d93ffed9235288bc781ae66267594c9c9500925e4749b575bd13653f8dd"
434 "9b1f282e"
435 "4067c3584ee207f8da94e3e8ab73738fcf1822ffbc6887782b491044d5e34124"
436 "5c6e433715ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
437 ("00017052829e07b0829a48d422fe99a22c70501e533c91352d3d854e061b9030"
438 "3b08c6e33c7295782d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c5055"
439 "6c71c4a6"
440 "6148a86fe8624fab5186ee32ee8d7ee9770348a05d300cb90706a045defc044a"
441 "09325626e6b58de744ab6cce80877b6f71e1f6d2ef8acd128b4f2fc15f3f57eb"),
442 ("00021f15a7a83ee0761ebfd2bd143fa9b714210c665d7435c1066932f4767f26"
443 "294365b2721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b97eeab64"
444 "ca2ce6bc"
445 "5d3fd983c34c769fe89204e2e8168561867e5e15bc01bfce6a27e0dfcbf87544"
446 "72154e76e4c11ab2fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f1"),
447 ("000381bc2a838af8d5c44a4eb3172062d08f1bb2531d6460f0caeef038c89b38"
448 "a8acb5137c9260dc74e088a9b9492f258ebdbfe3eb9ac688b9d39cca91551e82"
449 "59cc60b1"
450 "7604e4b4e73695c3e652c71a74667bffe202849da9643a295a9ac6decbd4d3e2"
451 "d4dec9ef83f0be4e80371eb97f81375eecc1cb6347733e847d718d733ff98ff3"),
452 ("00034816c8c69069134bccd3e1cf4f589f8e4ce0af29d115ef24bd625dd961e6"
453 "830b54fa7d28f93435339774bb1e386c4fd5079e681b8f5896838b769da59b74"
454 "a6c3181c"
455 "81e220df848b1df78feb994a81167346d4c0dca8b4c9e755cc9c3adcf515a823"
456 "4da4daeb4f3f87777ad1f45ae9500ec9c5e2486c44a4a8f69dc8db48e86ec9c6"),
457 ("000397846c4454b90f756132e16dce72f18e859835e1f291d322a7353ead4efe"
458 "440e2b4fda9c025a22f1a83185b98f5fc11e60de1b343f52ea748db9e020307a"
459 "aeb6db2c"
460 "3a038a709779ac1f45e9dd320c855fdfa7251af0930cdbd30f0ad2a81b2d19a2"
461 "beaa14a7ff3fe32a30ffc4eed0a7bd04e85bfcdd0227eeb7b9d7d01f5769da05"),
462 ("00002c3296e6bc4d62b47204007ee4fab105d83e85e951862f0981aebc1b00d9"
463 "2838e766ef9b6bf2d037fe2e20b6a8464174e75a5f834da70569c018eb2b5693"
464 "babb7fbb"
465 "0a76c196067cfdcb11457d9cf45e2fa01d7f4275153924800600571fac3a5b26"
466 "3fdf57cd2c0064975c3747465cc36c270e8a35b10828d569c268a20eb78ac332"),
467 ("00009d23b4917fc09f20dbb0dcc93f0e66dfe717c17313394391b6e2e6eacb0f"
468 "0bb7be72bd6d25009aeb7fa0c4169b148d2f527e72daf0a54ef25c0707e33868"
469 "7d1f7157"
470 "5653a45c49390aa51cf5192bbf67da14be11d56ba0b4a2969d8055a9f03f2d71"
471 "581d8e830112ff0f0948eccaf8877acf26c377c13f719726fd70bddacb4deeec"),
472
473 # Next 2 number generated by random.getrandbits(521)
474 ("12b84ae65e920a63ac1f2b64df6dff07870c9d531ae72a47403063238da1a1fe"
475 "3f9d6a179fa50f96cd4aff9261aa92c0e6f17ec940639bc2ccdf572df00790813e3"),
476 ("166049dd332a73fa0b26b75196cf87eb8a09b27ec714307c68c425424a1574f1"
477 "eedf5b0f16cdfdb839424d201e653f53d6883ca1c107ca6e706649889c0c7f38608")
478 ]
479
480 @property
481 def arg_a(self) -> str:
Gabor Mezeicf228702023-02-15 16:52:33 +0100482 # Number of limbs: 2 * N
483 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
Gabor Mezeid8f67b92023-02-06 15:49:42 +0100484
485 def result(self) -> List[str]:
486 result = self.int_a % self.int_n
487 return [self.format_result(result)]
Gabor Mezeia2ef6a82023-03-06 16:57:25 +0100488
489 @property
490 def is_valid(self) -> bool:
491 return True
Minos Galanakis13586482023-03-21 12:08:37 +0000492
Minos Galanakisaada68f2023-05-12 17:10:16 +0100493 def arguments(self)-> List[str]:
Minos Galanakis13586482023-03-21 12:08:37 +0000494 args = super().arguments()
495 return ["MBEDTLS_ECP_DP_SECP521R1"] + args
Gabor Mezeib86ead32023-04-11 15:43:12 +0200496
497
498class EcpP192K1Raw(bignum_common.ModOperationCommon,
499 EcpTarget):
500 """Test cases for ECP P192K1 fast reduction."""
501 symbol = "-"
Gabor Mezeidacfe562023-05-02 14:05:13 +0200502 test_function = "ecp_mod_p_generic_raw"
503 test_name = "ecp_mod_p192k1_raw"
Gabor Mezeib86ead32023-04-11 15:43:12 +0200504 input_style = "fixed"
505 arity = 1
Gabor Mezeicec50602023-04-17 14:56:03 +0200506 dependencies = ["MBEDTLS_ECP_DP_SECP192K1_ENABLED"]
Gabor Mezeib86ead32023-04-11 15:43:12 +0200507
508 moduli = ["fffffffffffffffffffffffffffffffffffffffeffffee37"] # type: List[str]
509
510 input_values = [
511 "0", "1",
512
513 # Modulus - 1
514 "fffffffffffffffffffffffffffffffffffffffeffffee36",
515
516 # Modulus + 1
517 "fffffffffffffffffffffffffffffffffffffffeffffee38",
518
519 # 2^192 - 1
520 "ffffffffffffffffffffffffffffffffffffffffffffffff",
521
522 # Maximum canonical P192K1 multiplication result
523 ("fffffffffffffffffffffffffffffffffffffffdffffdc6c"
524 "0000000000000000000000000000000100002394013c7364"),
525
Gabor Mezei23b10102023-05-08 17:28:21 +0200526 # Test case for overflow during addition
527 ("00000007ffff71b809e27dd832cfd5e04d9d2dbb9f8da217"
528 "0000000000000000000000000000000000000000520834f0"),
529
Gabor Mezeib86ead32023-04-11 15:43:12 +0200530 # First 8 number generated by random.getrandbits(384) - seed(2,2)
531 ("cf1822ffbc6887782b491044d5e341245c6e433715ba2bdd"
532 "177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
533 ("ffed9235288bc781ae66267594c9c9500925e4749b575bd1"
534 "3653f8dd9b1f282e4067c3584ee207f8da94e3e8ab73738f"),
535 ("ef8acd128b4f2fc15f3f57ebf30b94fa82523e86feac7eb7"
536 "dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"),
537 ("e8624fab5186ee32ee8d7ee9770348a05d300cb90706a045"
538 "defc044a09325626e6b58de744ab6cce80877b6f71e1f6d2"),
539 ("2d3d854e061b90303b08c6e33c7295782d6c797f8f7d9b78"
540 "2a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
541 ("fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f1"
542 "5c14bc4a829e07b0829a48d422fe99a22c70501e533c9135"),
543 ("97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561"
544 "867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"),
545 ("bd143fa9b714210c665d7435c1066932f4767f26294365b2"
546 "721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"),
547
548 # Next 2 number generated by random.getrandbits(192)
549 "47733e847d718d733ff98ff387c56473a7a83ee0761ebfd2",
550 "cbd4d3e2d4dec9ef83f0be4e80371eb97f81375eecc1cb63"
551 ]
552
553 @property
554 def arg_a(self) -> str:
555 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
556
557 def result(self) -> List[str]:
558 result = self.int_a % self.int_n
559 return [self.format_result(result)]
560
561 @property
562 def is_valid(self) -> bool:
563 return True
Minos Galanakise5dab972023-04-11 16:42:06 +0100564
Gabor Mezeidacfe562023-05-02 14:05:13 +0200565 def arguments(self):
566 args = super().arguments()
567 return ["MBEDTLS_ECP_DP_SECP192K1"] + args
568
Minos Galanakise5dab972023-04-11 16:42:06 +0100569
570class EcpP224K1Raw(bignum_common.ModOperationCommon,
571 EcpTarget):
572 """Test cases for ECP P224 fast reduction."""
573 symbol = "-"
Gabor Mezeie42bb622023-05-02 14:10:57 +0200574 test_function = "ecp_mod_p_generic_raw"
575 test_name = "ecp_mod_p224k1_raw"
Minos Galanakise5dab972023-04-11 16:42:06 +0100576 input_style = "fixed"
577 arity = 1
578 dependencies = ["MBEDTLS_ECP_DP_SECP224K1_ENABLED"]
579
580 moduli = ["fffffffffffffffffffffffffffffffffffffffffffffffeffffe56d"] # type: List[str]
581
582 input_values = [
583 "0", "1",
584
585 # Modulus - 1
586 "fffffffffffffffffffffffffffffffffffffffffffffffeffffe56c",
587
588 # Modulus + 1
589 "fffffffffffffffffffffffffffffffffffffffffffffffeffffe56e",
590
591 # 2^224 - 1
592 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffff",
593
Gabor Mezeie42bb622023-05-02 14:10:57 +0200594 # Maximum canonical P224K1 multiplication result
Minos Galanakise5dab972023-04-11 16:42:06 +0100595 ("fffffffffffffffffffffffffffffffffffffffffffffffdffffcad8"
596 "00000000000000000000000000000000000000010000352802c26590"),
597
Gabor Mezei23b10102023-05-08 17:28:21 +0200598 # Test case for overflow during addition
599 ("0000007ffff2b68161180fd8cd92e1a109be158a19a99b1809db8032"
600 "0000000000000000000000000000000000000000000000000bf04f49"),
601
Minos Galanakise5dab972023-04-11 16:42:06 +0100602 # First 8 number generated by random.getrandbits(448) - seed(2,2)
603 ("da94e3e8ab73738fcf1822ffbc6887782b491044d5e341245c6e4337"
604 "15ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
605 ("cdbd47d364be8049a372db8f6e405d93ffed9235288bc781ae662675"
606 "94c9c9500925e4749b575bd13653f8dd9b1f282e4067c3584ee207f8"),
607 ("defc044a09325626e6b58de744ab6cce80877b6f71e1f6d2ef8acd12"
608 "8b4f2fc15f3f57ebf30b94fa82523e86feac7eb7dc38f519b91751da"),
609 ("2d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c50556c71c4a6"
610 "6148a86fe8624fab5186ee32ee8d7ee9770348a05d300cb90706a045"),
611 ("8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0829a48d4"
612 "22fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"),
613 ("97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561867e5e15"
614 "bc01bfce6a27e0dfcbf8754472154e76e4c11ab2fec3f6b32e8d4b8a"),
615 ("a7a83ee0761ebfd2bd143fa9b714210c665d7435c1066932f4767f26"
616 "294365b2721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"),
617 ("74667bffe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e"
618 "80371eb97f81375eecc1cb6347733e847d718d733ff98ff387c56473"),
619
620 # Next 2 number generated by random.getrandbits(224)
621 ("eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a"),
622 ("f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f258ebdbfe3"),
623 ]
624
625 @property
626 def arg_a(self) -> str:
627 hex_digits = bignum_common.hex_digits_for_limb(448 // self.bits_in_limb, self.bits_in_limb)
628 return super().format_arg('{:x}'.format(self.int_a)).zfill(hex_digits)
629
630 def result(self) -> List[str]:
631 result = self.int_a % self.int_n
632 return [self.format_result(result)]
633
634 @property
635 def is_valid(self) -> bool:
636 return True
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100637
Gabor Mezeie42bb622023-05-02 14:10:57 +0200638 def arguments(self):
639 args = super().arguments()
640 return ["MBEDTLS_ECP_DP_SECP224K1"] + args
641
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100642
643class EcpP256K1Raw(bignum_common.ModOperationCommon,
644 EcpTarget):
645 """Test cases for ECP P256 fast reduction."""
646 symbol = "-"
Gabor Mezei03558b82023-05-02 14:12:25 +0200647 test_function = "ecp_mod_p_generic_raw"
648 test_name = "ecp_mod_p256k1_raw"
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100649 input_style = "fixed"
650 arity = 1
651 dependencies = ["MBEDTLS_ECP_DP_SECP256K1_ENABLED"]
652
653 moduli = ["fffffffffffffffffffffffffffffffffffffffffffffffffffffffefffffc2f"] # type: List[str]
654
655 input_values = [
656 "0", "1",
657
658 # Modulus - 1
659 "fffffffffffffffffffffffffffffffffffffffffffffffffffffffefffffc2e",
660
661 # Modulus + 1
662 "fffffffffffffffffffffffffffffffffffffffffffffffffffffffefffffc30",
663
664 # 2^256 - 1
665 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff",
666
Gabor Mezei03558b82023-05-02 14:12:25 +0200667 # Maximum canonical P256K1 multiplication result
668 ("fffffffffffffffffffffffffffffffffffffffffffffffffffffffdfffff85c"
669 "000000000000000000000000000000000000000000000001000007a4000e9844"),
670
671 # Test case for overflow during addition
672 ("0000fffffc2f000e90a0c86a0a63234e5ba641f43a7e4aecc4040e67ec850562"
673 "00000000000000000000000000000000000000000000000000000000585674fd"),
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100674
Gabor Mezei23b10102023-05-08 17:28:21 +0200675 # Test case for overflow during addition
676 ("0000fffffc2f000e90a0c86a0a63234e5ba641f43a7e4aecc4040e67ec850562"
677 "00000000000000000000000000000000000000000000000000000000585674fd"),
678
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100679 # First 8 number generated by random.getrandbits(512) - seed(2,2)
680 ("4067c3584ee207f8da94e3e8ab73738fcf1822ffbc6887782b491044d5e34124"
681 "5c6e433715ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
682 ("82523e86feac7eb7dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"
683 "ffed9235288bc781ae66267594c9c9500925e4749b575bd13653f8dd9b1f282e"),
684 ("e8624fab5186ee32ee8d7ee9770348a05d300cb90706a045defc044a09325626"
685 "e6b58de744ab6cce80877b6f71e1f6d2ef8acd128b4f2fc15f3f57ebf30b94fa"),
686 ("829a48d422fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"
687 "2d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
688 ("e89204e2e8168561867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"
689 "fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0"),
690 ("bd143fa9b714210c665d7435c1066932f4767f26294365b2721dea3bf63f23d0"
691 "dbe53fcafb2147df5ca495fa5a91c89b97eeab64ca2ce6bc5d3fd983c34c769f"),
692 ("74667bffe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e80371eb9"
693 "7f81375eecc1cb6347733e847d718d733ff98ff387c56473a7a83ee0761ebfd2"),
694 ("d08f1bb2531d6460f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f25"
695 "8ebdbfe3eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a"),
696
697 # Next 2 number generated by random.getrandbits(256)
698 ("c5e2486c44a4a8f69dc8db48e86ec9c6e06f291b2a838af8d5c44a4eb3172062"),
699 ("d4c0dca8b4c9e755cc9c3adcf515a8234da4daeb4f3f87777ad1f45ae9500ec9"),
700 ]
701
702 @property
703 def arg_a(self) -> str:
Gabor Mezei9bf1aaf2023-05-05 16:32:28 +0200704 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
Minos Galanakisd6751dc2023-04-11 17:25:31 +0100705
706 def result(self) -> List[str]:
707 result = self.int_a % self.int_n
708 return [self.format_result(result)]
709
710 @property
711 def is_valid(self) -> bool:
712 return True
Paul Elliott16648be2023-04-23 23:19:21 +0100713
Gabor Mezei03558b82023-05-02 14:12:25 +0200714 def arguments(self):
715 args = super().arguments()
716 return ["MBEDTLS_ECP_DP_SECP256K1"] + args
717
Paul Elliott16648be2023-04-23 23:19:21 +0100718
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100719class EcpP255Raw(bignum_common.ModOperationCommon,
720 EcpTarget):
721 """Test cases for ECP 25519 fast reduction."""
722 symbol = "-"
723 test_function = "ecp_mod_p_generic_raw"
724 test_name = "mbedtls_ecp_mod_p255_raw"
725 input_style = "fixed"
726 arity = 1
727 dependencies = ["MBEDTLS_ECP_DP_CURVE25519_ENABLED"]
728
Minos Galanakisaada68f2023-05-12 17:10:16 +0100729 moduli = [("7fffffffffffffffffffffffffffffffffffffffffffffffff"
730 "ffffffffffffed")] # type: List[str]
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100731
732 input_values = [
733 "0", "1",
734
735 # Modulus - 1
Minos Galanakis2daa3742023-05-17 15:01:08 +0100736 ("7fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffec"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100737
738 # Modulus + 1
Minos Galanakis2daa3742023-05-17 15:01:08 +0100739 ("7fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffee"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100740
741 # 2^255 - 1
Minos Galanakis2daa3742023-05-17 15:01:08 +0100742 ("7fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100743
744 # Maximum canonical P255 multiplication result
Minos Galanakis2daa3742023-05-17 15:01:08 +0100745 ("3fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffec"
746 "0000000000000000000000000000000000000000000000000000000000000190"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100747
748 # First 8 number generated by random.getrandbits(510) - seed(2,2)
Minos Galanakis2daa3742023-05-17 15:01:08 +0100749 ("1019f0d64ee207f8da94e3e8ab73738fcf1822ffbc6887782b491044d5e34124"
750 "5c6e433715ba2bdd177219d30e7a269fd95bafc8f2a4d27bdcf4bb99f4bea973"),
751 ("20948fa1feac7eb7dc38f519b91751dacdbd47d364be8049a372db8f6e405d93"
752 "ffed9235288bc781ae66267594c9c9500925e4749b575bd13653f8dd9b1f282e"),
753 ("3a1893ea5186ee32ee8d7ee9770348a05d300cb90706a045defc044a09325626"
754 "e6b58de744ab6cce80877b6f71e1f6d2ef8acd128b4f2fc15f3f57ebf30b94fa"),
755 ("20a6923522fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"
756 "2d6c797f8f7d9b782a1be9cd8697bbd0e2520e33e44c50556c71c4a66148a86f"),
757 ("3a248138e8168561867e5e15bc01bfce6a27e0dfcbf8754472154e76e4c11ab2"
758 "fec3f6b32e8d4b8a8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0"),
759 ("2f450feab714210c665d7435c1066932f4767f26294365b2721dea3bf63f23d0"
760 "dbe53fcafb2147df5ca495fa5a91c89b97eeab64ca2ce6bc5d3fd983c34c769f"),
761 ("1d199effe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e80371eb9"
762 "7f81375eecc1cb6347733e847d718d733ff98ff387c56473a7a83ee0761ebfd2"),
763 ("3423c6ec531d6460f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f25"
764 "8ebdbfe3eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100765
766 # Next 2 number generated by random.getrandbits(255)
Minos Galanakis2daa3742023-05-17 15:01:08 +0100767 ("62f1243644a4a8f69dc8db48e86ec9c6e06f291b2a838af8d5c44a4eb3172062"),
768 ("6a606e54b4c9e755cc9c3adcf515a8234da4daeb4f3f87777ad1f45ae9500ec9"),
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100769 ]
770
771 @property
772 def arg_a(self) -> str:
773 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
774
775 def result(self) -> List[str]:
776 result = self.int_a % self.int_n
777 return [self.format_result(result)]
778
779 @property
780 def is_valid(self) -> bool:
781 return True
782
Minos Galanakisaada68f2023-05-12 17:10:16 +0100783 def arguments(self)-> List[str]:
Minos Galanakisc2c967b2023-05-11 09:59:05 +0100784 args = super().arguments()
785 return ["MBEDTLS_ECP_DP_CURVE25519"] + args
786
787
Paul Elliott16648be2023-04-23 23:19:21 +0100788class EcpP448Raw(bignum_common.ModOperationCommon,
789 EcpTarget):
790 """Test cases for ECP P448 fast reduction."""
791 symbol = "-"
Paul Elliotta2e48f72023-06-02 16:00:05 +0100792 test_function = "ecp_mod_p_generic_raw"
793 test_name = "ecp_mod_p448_raw"
Paul Elliott16648be2023-04-23 23:19:21 +0100794 input_style = "fixed"
795 arity = 1
796 dependencies = ["MBEDTLS_ECP_DP_CURVE448_ENABLED"]
797
798 moduli = [("fffffffffffffffffffffffffffffffffffffffffffffffffffffffe"
799 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffff")] # type: List[str]
800
801 input_values = [
802 "0", "1",
803
804 # Modulus - 1
805 ("fffffffffffffffffffffffffffffffffffffffffffffffffffffffe"
806 "fffffffffffffffffffffffffffffffffffffffffffffffffffffffe"),
807
808 # Modulus + 1
809 ("ffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
810 "00000000000000000000000000000000000000000000000000000000"),
811
812 # 2^448 - 1
813 ("ffffffffffffffffffffffffffffffffffffffffffffffffffffffff"
814 "ffffffffffffffffffffffffffffffffffffffffffffffffffffffff"),
815
816 # Maximum canonical P448 multiplication result
817 ("fffffffffffffffffffffffffffffffffffffffffffffffffffffffd"
Paul Elliottb7fd1d62023-05-03 14:13:42 +0100818 "fffffffffffffffffffffffffffffffffffffffffffffffffffffffd"
819 "00000000000000000000000000000000000000000000000000000004"
820 "00000000000000000000000000000000000000000000000000000004"),
Paul Elliott16648be2023-04-23 23:19:21 +0100821
822 # First 8 number generated by random.getrandbits(896) - seed(2,2)
823 ("74667bffe202849da9643a295a9ac6decbd4d3e2d4dec9ef83f0be4e"
824 "80371eb97f81375eecc1cb6347733e847d718d733ff98ff387c56473"
825 "a7a83ee0761ebfd2bd143fa9b714210c665d7435c1066932f4767f26"
826 "294365b2721dea3bf63f23d0dbe53fcafb2147df5ca495fa5a91c89b"),
827 ("4da4daeb4f3f87777ad1f45ae9500ec9c5e2486c44a4a8f69dc8db48"
828 "e86ec9c6e06f291b2a838af8d5c44a4eb3172062d08f1bb2531d6460"
829 "f0caeef038c89b38a8acb5137c9260dc74e088a9b9492f258ebdbfe3"
830 "eb9ac688b9d39cca91551e8259cc60b17604e4b4e73695c3e652c71a"),
831 ("bc1b00d92838e766ef9b6bf2d037fe2e20b6a8464174e75a5f834da7"
832 "0569c018eb2b5693babb7fbb0a76c196067cfdcb11457d9cf45e2fa0"
833 "1d7f4275153924800600571fac3a5b263fdf57cd2c0064975c374746"
834 "5cc36c270e8a35b10828d569c268a20eb78ac332e5e138e26c4454b9"),
835 ("8d2f527e72daf0a54ef25c0707e338687d1f71575653a45c49390aa5"
836 "1cf5192bbf67da14be11d56ba0b4a2969d8055a9f03f2d71581d8e83"
837 "0112ff0f0948eccaf8877acf26c377c13f719726fd70bddacb4deeec"
838 "0b0c995e96e6bc4d62b47204007ee4fab105d83e85e951862f0981ae"),
839 ("84ae65e920a63ac1f2b64df6dff07870c9d531ae72a47403063238da"
840 "1a1fe3f9d6a179fa50f96cd4aff9261aa92c0e6f17ec940639bc2ccd"
841 "f572df00790813e32748dd1db4917fc09f20dbb0dcc93f0e66dfe717"
842 "c17313394391b6e2e6eacb0f0bb7be72bd6d25009aeb7fa0c4169b14"),
843 ("2bb3b36f29421c4021b7379f0897246a40c270b00e893302aba9e7b8"
844 "23fc5ad2f58105748ed5d1b7b310b730049dd332a73fa0b26b75196c"
845 "f87eb8a09b27ec714307c68c425424a1574f1eedf5b0f16cdfdb8394"
846 "24d201e653f53d6883ca1c107ca6e706649889c0c7f3860895bfa813"),
847 ("af3f5d7841b1256d5c1dc12fb5a1ae519fb8883accda6559caa538a0"
848 "9fc9370d3a6b86a7975b54a31497024640332b0612d4050771d7b14e"
849 "b6c004cc3b8367dc3f2bb31efe9934ad0809eae3ef232a32b5459d83"
850 "fbc46f1aea990e94821d46063b4dbf2ca294523d74115c86188b1044"),
851 ("7430051376e31f5aab63ad02854efa600641b4fa37a47ce41aeffafc"
852 "3b45402ac02659fe2e87d4150511baeb198ababb1a16daff3da95cd2"
853 "167b75dfb948f82a8317cba01c75f67e290535d868a24b7f627f2855"
854 "09167d4126af8090013c3273c02c6b9586b4625b475b51096c4ad652"),
855
Paul Elliottb7270422023-06-13 17:42:01 +0100856 # Corner case which causes maximum overflow
857 ("f4ae65e920a63ac1f2b64df6dff07870c9d531ae72a47403063238da1"
858 "a1fe3f9d6a179fa50f96cd4aff9261aa92c0e6f17ec940639bc2ccd0B"
859 "519A16DF59C53E0D49B209200F878F362ACE518D5B8BFCF9CDC725E5E"
860 "01C06295E8605AF06932B5006D9E556D3F190E8136BF9C643D332"),
861
Paul Elliott16648be2023-04-23 23:19:21 +0100862 # Next 2 number generated by random.getrandbits(448)
863 ("8f54f8ceacaab39e83844b40ffa9b9f15c14bc4a829e07b0829a48d4"
864 "22fe99a22c70501e533c91352d3d854e061b90303b08c6e33c729578"),
865 ("97eeab64ca2ce6bc5d3fd983c34c769fe89204e2e8168561867e5e15"
866 "bc01bfce6a27e0dfcbf8754472154e76e4c11ab2fec3f6b32e8d4b8a"),
867
868 ]
869
870 @property
871 def arg_a(self) -> str:
Paul Elliottb8bd47d2023-05-03 14:14:55 +0100872 return super().format_arg('{:x}'.format(self.int_a)).zfill(2 * self.hex_digits)
Paul Elliott16648be2023-04-23 23:19:21 +0100873
874 def result(self) -> List[str]:
875 result = self.int_a % self.int_n
876 return [self.format_result(result)]
877
878 @property
879 def is_valid(self) -> bool:
880 return True
Paul Elliotta2e48f72023-06-02 16:00:05 +0100881
882 def arguments(self):
883 args = super().arguments()
884 return ["MBEDTLS_ECP_DP_CURVE448"] + args