blob: 3c6f06ce7a2722a35805484710d3828114b95c0e [file] [log] [blame]
Daniel King34b822c2016-05-15 17:28:08 -03001/* BEGIN_HEADER */
2#include "mbedtls/chacha20.h"
3/* END_HEADER */
4
5/* BEGIN_DEPENDENCIES
6 * depends_on:MBEDTLS_CHACHA20_C
7 * END_DEPENDENCIES
8 */
Daniel King6155cc82016-05-18 11:51:22 -03009
10/* BEGIN_CASE */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010011void chacha20_crypt(data_t *key_str,
12 data_t *nonce_str,
13 int counter,
14 data_t *src_str,
15 data_t *expected_output_str)
Daniel King6155cc82016-05-18 11:51:22 -030016{
Ronald Cron7e512712020-06-25 11:33:01 +020017 unsigned char output[375];
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020018 mbedtls_chacha20_context ctx;
Daniel King6155cc82016-05-18 11:51:22 -030019
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010020 memset(output, 0x00, sizeof(output));
Daniel King6155cc82016-05-18 11:51:22 -030021
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010022 TEST_ASSERT(src_str->len == expected_output_str->len);
23 TEST_ASSERT(key_str->len == 32U);
24 TEST_ASSERT(nonce_str->len == 12U);
Daniel King6155cc82016-05-18 11:51:22 -030025
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020026 /*
27 * Test the integrated API
28 */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010029 TEST_ASSERT(mbedtls_chacha20_crypt(key_str->x, nonce_str->x, counter, src_str->len, src_str->x,
30 output) == 0);
Daniel King6155cc82016-05-18 11:51:22 -030031
Tom Cosgroveba3b14d2023-09-04 11:23:02 +010032 TEST_MEMORY_COMPARE(output, expected_output_str->len,
Tom Cosgrovea240fe32023-09-04 11:29:39 +010033 expected_output_str->x, expected_output_str->len);
Daniel King6155cc82016-05-18 11:51:22 -030034
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020035 /*
36 * Test the streaming API
37 */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010038 mbedtls_chacha20_init(&ctx);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020039
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010040 TEST_ASSERT(mbedtls_chacha20_setkey(&ctx, key_str->x) == 0);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020041
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010042 TEST_ASSERT(mbedtls_chacha20_starts(&ctx, nonce_str->x, counter) == 0);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020043
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010044 memset(output, 0x00, sizeof(output));
45 TEST_ASSERT(mbedtls_chacha20_update(&ctx, src_str->len, src_str->x, output) == 0);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020046
Tom Cosgroveba3b14d2023-09-04 11:23:02 +010047 TEST_MEMORY_COMPARE(output, expected_output_str->len,
Tom Cosgrovea240fe32023-09-04 11:29:39 +010048 expected_output_str->x, expected_output_str->len);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020049
50 /*
51 * Test the streaming API again, piecewise
52 */
53
Manuel Pégourié-Gonnard14656022018-05-09 12:51:54 +020054 /* Don't free/init the context nor set the key again,
55 * in order to test that starts() does the right thing. */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010056 TEST_ASSERT(mbedtls_chacha20_starts(&ctx, nonce_str->x, counter) == 0);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020057
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010058 memset(output, 0x00, sizeof(output));
59 TEST_ASSERT(mbedtls_chacha20_update(&ctx, 1, src_str->x, output) == 0);
60 TEST_ASSERT(mbedtls_chacha20_update(&ctx, src_str->len - 1,
61 src_str->x + 1, output + 1) == 0);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020062
Tom Cosgroveba3b14d2023-09-04 11:23:02 +010063 TEST_MEMORY_COMPARE(output, expected_output_str->len,
Tom Cosgrovea240fe32023-09-04 11:29:39 +010064 expected_output_str->x, expected_output_str->len);
Manuel Pégourié-Gonnard55c0d092018-05-09 12:37:58 +020065
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010066 mbedtls_chacha20_free(&ctx);
Daniel King6155cc82016-05-18 11:51:22 -030067}
68/* END_CASE */
69
Andrzej Kurekc470b6b2019-01-31 08:20:20 -050070/* BEGIN_CASE depends_on:MBEDTLS_CHECK_PARAMS:!MBEDTLS_PARAM_FAILED_ALT */
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +020071void chacha20_bad_params()
72{
73 unsigned char key[32];
74 unsigned char nonce[12];
75 unsigned char src[1];
76 unsigned char dst[1];
77 uint32_t counter = 0;
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010078 size_t len = sizeof(src);
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +020079 mbedtls_chacha20_context ctx;
80
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010081 TEST_INVALID_PARAM(mbedtls_chacha20_init(NULL));
82 TEST_VALID_PARAM(mbedtls_chacha20_free(NULL));
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +020083
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010084 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
85 mbedtls_chacha20_setkey(NULL, key));
86 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
87 mbedtls_chacha20_setkey(&ctx, NULL));
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +020088
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010089 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
90 mbedtls_chacha20_starts(NULL, nonce, counter));
91 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
92 mbedtls_chacha20_starts(&ctx, NULL, counter));
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +020093
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010094 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
95 mbedtls_chacha20_update(NULL, 0, src, dst));
96 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
97 mbedtls_chacha20_update(&ctx, len, NULL, dst));
98 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
99 mbedtls_chacha20_update(&ctx, len, src, NULL));
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +0200100
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100101 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
102 mbedtls_chacha20_crypt(NULL, nonce, counter, 0, src, dst));
103 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
104 mbedtls_chacha20_crypt(key, NULL, counter, 0, src, dst));
105 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
106 mbedtls_chacha20_crypt(key, nonce, counter, len, NULL, dst));
107 TEST_INVALID_PARAM_RET(MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA,
108 mbedtls_chacha20_crypt(key, nonce, counter, len, src, NULL));
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +0200109
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500110exit:
111 return;
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +0200112
Manuel Pégourié-Gonnard2aca2362018-05-10 10:11:42 +0200113}
114/* END_CASE */
115
Daniel King34b822c2016-05-15 17:28:08 -0300116/* BEGIN_CASE depends_on:MBEDTLS_SELF_TEST */
117void chacha20_self_test()
118{
Gilles Peskine1b6c09a2023-01-11 14:52:35 +0100119 TEST_ASSERT(mbedtls_chacha20_self_test(1) == 0);
Daniel King34b822c2016-05-15 17:28:08 -0300120}
Manuel Pégourié-Gonnard528524b2018-05-09 11:21:21 +0200121/* END_CASE */