blob: 33c7216594f084b06b276a8e12e8ec7125ed9514 [file] [log] [blame]
Gilles Peskine33ec8632021-03-30 23:44:22 +02001Diffie-Hellman full exchange: tiny x_size
2dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
3
Andrzej Kurekc470b6b2019-01-31 08:20:20 -05004Diffie-Hellman parameter validation
5dhm_invalid_params:
6
Gilles Peskine33ec8632021-03-30 23:44:22 +02007Diffie-Hellman full exchange: 5-bit, x_size=3
8dhm_do_dhm:10:"23":3:10:"5":0
9
10Diffie-Hellman full exchange: 5-bit, x_size=2
11dhm_do_dhm:10:"23":2:10:"5":0
12
Gilles Peskine9e966792021-04-13 22:16:45 +020013## Repeat this test case and a few similar ones several times. The RNG state
14## changes, so we get to exercise the code with a few different values.
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020015Diffie-Hellman full exchange: 5-bit #1
Gilles Peskine33ec8632021-03-30 23:44:22 +020016dhm_do_dhm:10:"23":1:10:"5":0
Paul Bakker5c60de22009-07-08 19:47:36 +000017
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020018Diffie-Hellman full exchange: 5-bit #2
Gilles Peskine33ec8632021-03-30 23:44:22 +020019dhm_do_dhm:10:"23":1:10:"5":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020020
21Diffie-Hellman full exchange: 5-bit #3
Gilles Peskine33ec8632021-03-30 23:44:22 +020022dhm_do_dhm:10:"23":1:10:"5":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020023
24Diffie-Hellman full exchange: 5-bit #4
Gilles Peskine33ec8632021-03-30 23:44:22 +020025dhm_do_dhm:10:"23":1:10:"5":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020026
27Diffie-Hellman full exchange: 5-bit #5
Gilles Peskine33ec8632021-03-30 23:44:22 +020028dhm_do_dhm:10:"23":1:10:"5":0
29
Gilles Peskine346d20d2021-04-13 22:26:27 +020030## This is x_size = P_size + 1. Arguably x_size > P_size makes no sense,
31## but it's the current undocumented behavior to treat it the same as when
32## x_size = P_size. If this behavior changes in the future, change the expected
33## return status from 0 to MBEDTLS_ERR_DHM_BAD_INPUT_DATA.
Gilles Peskine33ec8632021-03-30 23:44:22 +020034Diffie-Hellman full exchange: 97-bit, x_size=14
35dhm_do_dhm:10:"93450983094850938450983409623":14:10:"9345098304850938450983409622":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020036
37Diffie-Hellman full exchange: 97-bit #1
Gilles Peskine33ec8632021-03-30 23:44:22 +020038dhm_do_dhm:10:"93450983094850938450983409623":13:10:"9345098304850938450983409622":0
Paul Bakker5c60de22009-07-08 19:47:36 +000039
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020040Diffie-Hellman full exchange: 97-bit #2
Gilles Peskine33ec8632021-03-30 23:44:22 +020041dhm_do_dhm:10:"93450983094850938450983409623":13:10:"9345098304850938450983409622":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020042
43Diffie-Hellman full exchange: 97-bit #3
Gilles Peskine33ec8632021-03-30 23:44:22 +020044dhm_do_dhm:10:"93450983094850938450983409623":13:10:"9345098304850938450983409622":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020045
46Diffie-Hellman full exchange: 97-bit #4
Gilles Peskine33ec8632021-03-30 23:44:22 +020047dhm_do_dhm:10:"93450983094850938450983409623":13:10:"9345098304850938450983409622":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020048
49Diffie-Hellman full exchange: 97-bit #5
Gilles Peskine33ec8632021-03-30 23:44:22 +020050dhm_do_dhm:10:"93450983094850938450983409623":13:10:"9345098304850938450983409622":0
51
52Diffie-Hellman full exchange: 97-bit, x_size=12
53dhm_do_dhm:10:"93450983094850938450983409623":12:10:"9345098304850938450983409622":0
54
55Diffie-Hellman full exchange: 97-bit, x_size=11
56dhm_do_dhm:10:"93450983094850938450983409623":11:10:"9345098304850938450983409622":0
57
58Diffie-Hellman full exchange: 97-bit, x_size=1 #1
59dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
60
61Diffie-Hellman full exchange: 97-bit, x_size=1 #2
62dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
63
64Diffie-Hellman full exchange: 97-bit, x_size=1 #3
65dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
66
67Diffie-Hellman full exchange: 97-bit, x_size=1 #4
68dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
69
70Diffie-Hellman full exchange: 97-bit, x_size=1 #5
71dhm_do_dhm:10:"93450983094850938450983409623":1:10:"9345098304850938450983409622":0
Gilles Peskinea2ce04e2021-03-30 23:33:49 +020072
73Diffie-Hellman full exchange: 286-bit
Gilles Peskine33ec8632021-03-30 23:44:22 +020074dhm_do_dhm:10:"93450983094850938450983409623982317398171298719873918739182739712938719287391879381271":36:10:"9345098309485093845098340962223981329819812792137312973297123912791271":0
Janos Follath4b151fa2017-09-20 13:46:37 +010075
76Diffie-Hellman trivial subgroup #1
Gilles Peskine33ec8632021-03-30 23:44:22 +020077dhm_do_dhm:10:"23":1:10:"1":MBEDTLS_ERR_DHM_BAD_INPUT_DATA
Janos Follath4b151fa2017-09-20 13:46:37 +010078
79Diffie-Hellman trivial subgroup #2
Gilles Peskine33ec8632021-03-30 23:44:22 +020080dhm_do_dhm:10:"23":1:10:"-1":MBEDTLS_ERR_DHM_BAD_INPUT_DATA
Janos Follath4b151fa2017-09-20 13:46:37 +010081
82Diffie-Hellman small modulus
Gilles Peskine16e36682021-03-31 23:04:50 +020083dhm_do_dhm:10:"3":1:10:"5":MBEDTLS_ERR_DHM_MAKE_PARAMS_FAILED+MBEDTLS_ERR_MPI_BAD_INPUT_DATA
Janos Follath4b151fa2017-09-20 13:46:37 +010084
85Diffie-Hellman zero modulus
Gilles Peskine33ec8632021-03-30 23:44:22 +020086dhm_do_dhm:10:"0":1:10:"5":MBEDTLS_ERR_DHM_BAD_INPUT_DATA
Paul Bakker40ce79f2013-09-15 17:43:54 +020087
Gilles Peskine346d20d2021-04-13 22:26:27 +020088Diffie-Hellman: x_size < 0
89dhm_do_dhm:10:"93450983094850938450983409623":-1:10:"9345098304850938450983409622":MBEDTLS_ERR_DHM_BAD_INPUT_DATA
90
Chris Jonesd10b3312020-12-02 10:41:50 +000091Diffie-Hellman MPI_MAX_SIZE modulus
92dhm_make_public:MBEDTLS_MPI_MAX_SIZE:10:"5":0
93
94Diffie-Hellman MPI_MAX_SIZE + 1 modulus
95dhm_make_public:MBEDTLS_MPI_MAX_SIZE + 1:10:"5":MBEDTLS_ERR_DHM_MAKE_PUBLIC_FAILED+MBEDTLS_ERR_MPI_BAD_INPUT_DATA
Chris Jones0c5875f2020-11-26 11:21:53 +000096
Gilles Peskineefa2ac82019-09-19 21:20:26 +020097Diffie-Hellman load parameters from file [#1]
Manuel Pégourié-Gonnard3fec2202014-03-29 16:42:38 +010098dhm_file:"data_files/dhparams.pem":"9e35f430443a09904f3a39a979797d070df53378e79c2438bef4e761f3c714553328589b041c809be1d6c6b5f1fc9f47d3a25443188253a992a56818b37ba9de5a40d362e56eff0be5417474c125c199272c8fe41dea733df6f662c92ae76556e755d10c64e6a50968f67fc6ea73d0dca8569be2ba204e23580d8bca2f4975b3":"02":128
99
Gilles Peskineefa2ac82019-09-19 21:20:26 +0200100Diffie-Hellman load parameters from file [#2]
Manuel Pégourié-Gonnard5119df22015-04-15 13:50:29 +0200101dhm_file:"data_files/dh.optlen.pem":"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":"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":256
102
Paul Bakker40ce79f2013-09-15 17:43:54 +0200103Diffie-Hellman selftest
104dhm_selftest: