blob: 1f08721a78a2c99e7c80bc4f21667d29b1580ca8 [file] [log] [blame]
Gilles Peskine24827022018-09-25 18:49:23 +02001#!/usr/bin/env python3
2'''Test the program psa_constant_names.
3Gather constant names from header files and test cases. Compile a C program
4to print out their numerical values, feed these numerical values to
5psa_constant_names, and check that the output is the original name.
6Return 0 if all test cases pass, 1 if the output was not always as expected,
7or 1 (with a Python backtrace) if there was an operational error.'''
8
9import argparse
10import itertools
11import os
12import platform
13import re
14import subprocess
15import sys
16import tempfile
17
Gilles Peskinea0a315c2018-10-19 11:27:10 +020018class ReadFileLineException(Exception):
19 def __init__(self, filename, line_number):
20 message = 'in {} at {}'.format(filename, line_number)
21 super(ReadFileLineException, self).__init__(message)
22 self.filename = filename
23 self.line_number = line_number
24
25class read_file_lines:
Gilles Peskine54f54452019-05-27 18:31:59 +020026 # Dear Pylint, conventionally, a context manager class name is lowercase.
27 # pylint: disable=invalid-name,too-few-public-methods
Gilles Peskinea0a315c2018-10-19 11:27:10 +020028 '''Context manager to read a text file line by line.
29with read_file_lines(filename) as lines:
30 for line in lines:
31 process(line)
32is equivalent to
33with open(filename, 'r') as input_file:
34 for line in input_file:
35 process(line)
36except that if process(line) raises an exception, then the read_file_lines
37snippet annotates the exception with the file name and line number.'''
38 def __init__(self, filename):
39 self.filename = filename
40 self.line_number = 'entry'
Gilles Peskine54f54452019-05-27 18:31:59 +020041 self.generator = None
Gilles Peskinea0a315c2018-10-19 11:27:10 +020042 def __enter__(self):
43 self.generator = enumerate(open(self.filename, 'r'))
44 return self
45 def __iter__(self):
46 for line_number, content in self.generator:
47 self.line_number = line_number
48 yield content
49 self.line_number = 'exit'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020050 def __exit__(self, exc_type, exc_value, exc_traceback):
51 if exc_type is not None:
Gilles Peskinea0a315c2018-10-19 11:27:10 +020052 raise ReadFileLineException(self.filename, self.line_number) \
Gilles Peskine42a0a0a2019-05-27 18:29:47 +020053 from exc_value
Gilles Peskinea0a315c2018-10-19 11:27:10 +020054
Gilles Peskine24827022018-09-25 18:49:23 +020055class Inputs:
56 '''Accumulate information about macros to test.
57This includes macro names as well as information about their arguments
58when applicable.'''
59 def __init__(self):
60 # Sets of names per type
61 self.statuses = set(['PSA_SUCCESS'])
62 self.algorithms = set(['0xffffffff'])
63 self.ecc_curves = set(['0xffff'])
Gilles Peskinedcaefae2019-05-16 12:55:35 +020064 self.dh_groups = set(['0xffff'])
Gilles Peskine24827022018-09-25 18:49:23 +020065 self.key_types = set(['0xffffffff'])
66 self.key_usage_flags = set(['0x80000000'])
Gilles Peskine434899f2018-10-19 11:30:26 +020067 # Hard-coded value for unknown algorithms
Darryl Green61b7f612019-02-04 16:00:21 +000068 self.hash_algorithms = set(['0x010000fe'])
Gilles Peskine434899f2018-10-19 11:30:26 +020069 self.mac_algorithms = set(['0x02ff00ff'])
Gilles Peskine882e57e2019-04-12 00:12:07 +020070 self.ka_algorithms = set(['0x30fc0000'])
71 self.kdf_algorithms = set(['0x200000ff'])
Gilles Peskine434899f2018-10-19 11:30:26 +020072 # For AEAD algorithms, the only variability is over the tag length,
73 # and this only applies to known algorithms, so don't test an
74 # unknown algorithm.
75 self.aead_algorithms = set()
Gilles Peskine24827022018-09-25 18:49:23 +020076 # Identifier prefixes
77 self.table_by_prefix = {
78 'ERROR': self.statuses,
79 'ALG': self.algorithms,
80 'CURVE': self.ecc_curves,
Gilles Peskinedcaefae2019-05-16 12:55:35 +020081 'GROUP': self.dh_groups,
Gilles Peskine24827022018-09-25 18:49:23 +020082 'KEY_TYPE': self.key_types,
83 'KEY_USAGE': self.key_usage_flags,
84 }
85 # macro name -> list of argument names
86 self.argspecs = {}
87 # argument name -> list of values
Gilles Peskine434899f2018-10-19 11:30:26 +020088 self.arguments_for = {
89 'mac_length': ['1', '63'],
90 'tag_length': ['1', '63'],
91 }
Gilles Peskine24827022018-09-25 18:49:23 +020092
93 def gather_arguments(self):
94 '''Populate the list of values for macro arguments.
95Call this after parsing all the inputs.'''
96 self.arguments_for['hash_alg'] = sorted(self.hash_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +020097 self.arguments_for['mac_alg'] = sorted(self.mac_algorithms)
Gilles Peskine882e57e2019-04-12 00:12:07 +020098 self.arguments_for['ka_alg'] = sorted(self.ka_algorithms)
Gilles Peskine17542082019-01-04 19:46:31 +010099 self.arguments_for['kdf_alg'] = sorted(self.kdf_algorithms)
Gilles Peskine434899f2018-10-19 11:30:26 +0200100 self.arguments_for['aead_alg'] = sorted(self.aead_algorithms)
Gilles Peskine24827022018-09-25 18:49:23 +0200101 self.arguments_for['curve'] = sorted(self.ecc_curves)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200102 self.arguments_for['group'] = sorted(self.dh_groups)
Gilles Peskine24827022018-09-25 18:49:23 +0200103
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200104 @staticmethod
105 def _format_arguments(name, arguments):
Gilles Peskine24827022018-09-25 18:49:23 +0200106 '''Format a macro call with arguments..'''
107 return name + '(' + ', '.join(arguments) + ')'
108
109 def distribute_arguments(self, name):
110 '''Generate macro calls with each tested argument set.
111If name is a macro without arguments, just yield "name".
112If name is a macro with arguments, yield a series of "name(arg1,...,argN)"
113where each argument takes each possible value at least once.'''
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200114 try:
115 if name not in self.argspecs:
116 yield name
117 return
118 argspec = self.argspecs[name]
119 if argspec == []:
120 yield name + '()'
121 return
122 argument_lists = [self.arguments_for[arg] for arg in argspec]
123 arguments = [values[0] for values in argument_lists]
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200124 yield self._format_arguments(name, arguments)
Gilles Peskine54f54452019-05-27 18:31:59 +0200125 # Dear Pylint, enumerate won't work here since we're modifying
126 # the array.
127 # pylint: disable=consider-using-enumerate
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200128 for i in range(len(arguments)):
129 for value in argument_lists[i][1:]:
130 arguments[i] = value
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200131 yield self._format_arguments(name, arguments)
Gilles Peskinef96ed662018-10-19 11:29:56 +0200132 arguments[i] = argument_lists[0][0]
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200133 except BaseException as e:
134 raise Exception('distribute_arguments({})'.format(name)) from e
Gilles Peskine24827022018-09-25 18:49:23 +0200135
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200136 _argument_split_re = re.compile(r' *, *')
137 @classmethod
138 def _argument_split(cls, arguments):
139 return re.split(cls._argument_split_re, arguments)
140
Gilles Peskine24827022018-09-25 18:49:23 +0200141 # Regex for interesting header lines.
142 # Groups: 1=macro name, 2=type, 3=argument list (optional).
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200143 _header_line_re = \
Gilles Peskine24827022018-09-25 18:49:23 +0200144 re.compile(r'#define +' +
145 r'(PSA_((?:KEY_)?[A-Z]+)_\w+)' +
146 r'(?:\(([^\n()]*)\))?')
147 # Regex of macro names to exclude.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200148 _excluded_name_re = re.compile(r'_(?:GET|IS|OF)_|_(?:BASE|FLAG|MASK)\Z')
Gilles Peskinec68ce962018-10-19 11:31:52 +0200149 # Additional excluded macros.
Darryl Greenb8fe0682019-02-06 13:21:31 +0000150 # PSA_ALG_ECDH and PSA_ALG_FFDH are excluded for now as the script
Jaeden Amero5e6d24c2019-02-21 10:41:29 +0000151 # currently doesn't support them. Deprecated errors are also excluded.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200152 _excluded_names = set(['PSA_ALG_AEAD_WITH_DEFAULT_TAG_LENGTH',
153 'PSA_ALG_FULL_LENGTH_MAC',
154 'PSA_ALG_ECDH',
155 'PSA_ALG_FFDH',
156 'PSA_ERROR_UNKNOWN_ERROR',
157 'PSA_ERROR_OCCUPIED_SLOT',
158 'PSA_ERROR_EMPTY_SLOT',
159 'PSA_ERROR_INSUFFICIENT_CAPACITY',
Jaeden Amero5e6d24c2019-02-21 10:41:29 +0000160 ])
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200161
Gilles Peskine24827022018-09-25 18:49:23 +0200162 def parse_header_line(self, line):
163 '''Parse a C header line, looking for "#define PSA_xxx".'''
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200164 m = re.match(self._header_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200165 if not m:
166 return
167 name = m.group(1)
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200168 if re.search(self._excluded_name_re, name) or \
169 name in self._excluded_names:
Gilles Peskine24827022018-09-25 18:49:23 +0200170 return
171 dest = self.table_by_prefix.get(m.group(2))
172 if dest is None:
173 return
174 dest.add(name)
175 if m.group(3):
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200176 self.argspecs[name] = self._argument_split(m.group(3))
Gilles Peskine24827022018-09-25 18:49:23 +0200177
178 def parse_header(self, filename):
179 '''Parse a C header file, looking for "#define PSA_xxx".'''
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200180 with read_file_lines(filename) as lines:
181 for line in lines:
Gilles Peskine24827022018-09-25 18:49:23 +0200182 self.parse_header_line(line)
183
184 def add_test_case_line(self, function, argument):
185 '''Parse a test case data line, looking for algorithm metadata tests.'''
186 if function.endswith('_algorithm'):
Darryl Greenb8fe0682019-02-06 13:21:31 +0000187 # As above, ECDH and FFDH algorithms are excluded for now.
188 # Support for them will be added in the future.
Darryl Greenec079502019-01-29 15:48:00 +0000189 if 'ECDH' in argument or 'FFDH' in argument:
190 return
Gilles Peskine24827022018-09-25 18:49:23 +0200191 self.algorithms.add(argument)
192 if function == 'hash_algorithm':
193 self.hash_algorithms.add(argument)
Gilles Peskine434899f2018-10-19 11:30:26 +0200194 elif function in ['mac_algorithm', 'hmac_algorithm']:
195 self.mac_algorithms.add(argument)
196 elif function == 'aead_algorithm':
197 self.aead_algorithms.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200198 elif function == 'key_type':
199 self.key_types.add(argument)
200 elif function == 'ecc_key_types':
201 self.ecc_curves.add(argument)
Gilles Peskinedcaefae2019-05-16 12:55:35 +0200202 elif function == 'dh_key_types':
203 self.dh_groups.add(argument)
Gilles Peskine24827022018-09-25 18:49:23 +0200204
205 # Regex matching a *.data line containing a test function call and
206 # its arguments. The actual definition is partly positional, but this
207 # regex is good enough in practice.
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200208 _test_case_line_re = re.compile(r'(?!depends_on:)(\w+):([^\n :][^:\n]*)')
Gilles Peskine24827022018-09-25 18:49:23 +0200209 def parse_test_cases(self, filename):
210 '''Parse a test case file (*.data), looking for algorithm metadata tests.'''
Gilles Peskinea0a315c2018-10-19 11:27:10 +0200211 with read_file_lines(filename) as lines:
212 for line in lines:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200213 m = re.match(self._test_case_line_re, line)
Gilles Peskine24827022018-09-25 18:49:23 +0200214 if m:
215 self.add_test_case_line(m.group(1), m.group(2))
216
217def gather_inputs(headers, test_suites):
218 '''Read the list of inputs to test psa_constant_names with.'''
219 inputs = Inputs()
220 for header in headers:
221 inputs.parse_header(header)
222 for test_cases in test_suites:
223 inputs.parse_test_cases(test_cases)
224 inputs.gather_arguments()
225 return inputs
226
227def remove_file_if_exists(filename):
228 '''Remove the specified file, ignoring errors.'''
229 if not filename:
230 return
231 try:
232 os.remove(filename)
Gilles Peskine54f54452019-05-27 18:31:59 +0200233 except OSError:
Gilles Peskine24827022018-09-25 18:49:23 +0200234 pass
235
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200236def run_c(options, type_word, names):
Gilles Peskine24827022018-09-25 18:49:23 +0200237 '''Generate and run a program to print out numerical values for names.'''
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200238 if type_word == 'status':
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100239 cast_to = 'long'
240 printf_format = '%ld'
241 else:
242 cast_to = 'unsigned long'
243 printf_format = '0x%08lx'
Gilles Peskine24827022018-09-25 18:49:23 +0200244 c_name = None
245 exe_name = None
246 try:
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200247 c_fd, c_name = tempfile.mkstemp(prefix='tmp-{}-'.format(type_word),
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100248 suffix='.c',
Gilles Peskine24827022018-09-25 18:49:23 +0200249 dir='programs/psa')
250 exe_suffix = '.exe' if platform.system() == 'Windows' else ''
251 exe_name = c_name[:-2] + exe_suffix
252 remove_file_if_exists(exe_name)
253 c_file = os.fdopen(c_fd, 'w', encoding='ascii')
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100254 c_file.write('/* Generated by test_psa_constant_names.py for {} values */'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200255 .format(type_word))
Gilles Peskine95ab71a2019-01-04 19:46:59 +0100256 c_file.write('''
Gilles Peskine24827022018-09-25 18:49:23 +0200257#include <stdio.h>
258#include <psa/crypto.h>
259int main(void)
260{
261''')
262 for name in names:
Gilles Peskinec4cd2ad2019-02-13 18:42:53 +0100263 c_file.write(' printf("{}\\n", ({}) {});\n'
264 .format(printf_format, cast_to, name))
Gilles Peskine24827022018-09-25 18:49:23 +0200265 c_file.write(''' return 0;
266}
267''')
268 c_file.close()
269 cc = os.getenv('CC', 'cc')
270 subprocess.check_call([cc] +
271 ['-I' + dir for dir in options.include] +
272 ['-o', exe_name, c_name])
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200273 if options.keep_c:
274 sys.stderr.write('List of {} tests kept at {}\n'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200275 .format(type_word, c_name))
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200276 else:
277 os.remove(c_name)
Gilles Peskine24827022018-09-25 18:49:23 +0200278 output = subprocess.check_output([exe_name])
279 return output.decode('ascii').strip().split('\n')
280 finally:
281 remove_file_if_exists(exe_name)
282
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200283NORMALIZE_STRIP_RE = re.compile(r'\s+')
Gilles Peskine24827022018-09-25 18:49:23 +0200284def normalize(expr):
285 '''Normalize the C expression so as not to care about trivial differences.
286Currently "trivial differences" means whitespace.'''
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200287 expr = re.sub(NORMALIZE_STRIP_RE, '', expr, len(expr))
Gilles Peskine24827022018-09-25 18:49:23 +0200288 return expr.strip().split('\n')
289
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200290def do_test(options, inputs, type_word, names):
Gilles Peskine24827022018-09-25 18:49:23 +0200291 '''Test psa_constant_names for the specified type.
292Run program on names.
293Use inputs to figure out what arguments to pass to macros that take arguments.'''
294 names = sorted(itertools.chain(*map(inputs.distribute_arguments, names)))
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200295 values = run_c(options, type_word, names)
296 output = subprocess.check_output([options.program, type_word] + values)
Gilles Peskine24827022018-09-25 18:49:23 +0200297 outputs = output.decode('ascii').strip().split('\n')
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200298 errors = [(type_word, name, value, output)
Gilles Peskine24827022018-09-25 18:49:23 +0200299 for (name, value, output) in zip(names, values, outputs)
300 if normalize(name) != normalize(output)]
301 return len(names), errors
302
303def report_errors(errors):
304 '''Describe each case where the output is not as expected.'''
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200305 for type_word, name, value, output in errors:
Gilles Peskine24827022018-09-25 18:49:23 +0200306 print('For {} "{}", got "{}" (value: {})'
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200307 .format(type_word, name, output, value))
Gilles Peskine24827022018-09-25 18:49:23 +0200308
309def run_tests(options, inputs):
310 '''Run psa_constant_names on all the gathered inputs.
311Return a tuple (count, errors) where count is the total number of inputs
312that were tested and errors is the list of cases where the output was
313not as expected.'''
314 count = 0
315 errors = []
Gilles Peskine42a0a0a2019-05-27 18:29:47 +0200316 for type_word, names in [('status', inputs.statuses),
317 ('algorithm', inputs.algorithms),
318 ('ecc_curve', inputs.ecc_curves),
319 ('dh_group', inputs.dh_groups),
320 ('key_type', inputs.key_types),
321 ('key_usage', inputs.key_usage_flags)]:
322 c, e = do_test(options, inputs, type_word, names)
Gilles Peskine24827022018-09-25 18:49:23 +0200323 count += c
324 errors += e
325 return count, errors
326
Gilles Peskine54f54452019-05-27 18:31:59 +0200327def main():
Gilles Peskine24827022018-09-25 18:49:23 +0200328 parser = argparse.ArgumentParser(description=globals()['__doc__'])
329 parser.add_argument('--include', '-I',
330 action='append', default=['include'],
331 help='Directory for header files')
332 parser.add_argument('--program',
333 default='programs/psa/psa_constant_names',
334 help='Program to test')
Gilles Peskinecf9c18e2018-10-19 11:28:42 +0200335 parser.add_argument('--keep-c',
336 action='store_true', dest='keep_c', default=False,
337 help='Keep the intermediate C file')
338 parser.add_argument('--no-keep-c',
339 action='store_false', dest='keep_c',
340 help='Don\'t keep the intermediate C file (default)')
Gilles Peskine24827022018-09-25 18:49:23 +0200341 options = parser.parse_args()
Gilles Peskine6d194bd2019-01-04 19:44:59 +0100342 headers = [os.path.join(options.include[0], 'psa', h)
343 for h in ['crypto.h', 'crypto_extra.h', 'crypto_values.h']]
Gilles Peskine24827022018-09-25 18:49:23 +0200344 test_suites = ['tests/suites/test_suite_psa_crypto_metadata.data']
345 inputs = gather_inputs(headers, test_suites)
346 count, errors = run_tests(options, inputs)
347 report_errors(errors)
348 if errors == []:
349 print('{} test cases PASS'.format(count))
350 else:
351 print('{} test cases, {} FAIL'.format(count, len(errors)))
352 exit(1)
Gilles Peskine54f54452019-05-27 18:31:59 +0200353
354if __name__ == '__main__':
355 main()