test_cbc_mode.c 5.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177
  1. /* test_cbc_mode.c - TinyCrypt implementation of some AES-CBC tests */
  2. /*
  3. * Copyright (C) 2017 by Intel Corporation, All Rights Reserved.
  4. *
  5. * Redistribution and use in source and binary forms, with or without
  6. * modification, are permitted provided that the following conditions are met:
  7. *
  8. * - Redistributions of source code must retain the above copyright notice,
  9. * this list of conditions and the following disclaimer.
  10. *
  11. * - Redistributions in binary form must reproduce the above copyright
  12. * notice, this list of conditions and the following disclaimer in the
  13. * documentation and/or other materials provided with the distribution.
  14. *
  15. * - Neither the name of Intel Corporation nor the names of its contributors
  16. * may be used to endorse or promote products derived from this software
  17. * without specific prior written permission.
  18. *
  19. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
  20. * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  21. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  22. * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
  23. * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
  24. * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
  25. * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
  26. * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
  27. * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  28. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
  29. * POSSIBILITY OF SUCH DAMAGE.
  30. */
  31. /*
  32. * DESCRIPTION
  33. * This module tests the following AES-CBC Mode routines:
  34. *
  35. * Scenarios tested include:
  36. * - AES128 CBC mode encryption SP 800-38a tests
  37. */
  38. #include <tinycrypt/cbc_mode.h>
  39. #include <tinycrypt/constants.h>
  40. #include <test_utils.h>
  41. #include <stdlib.h>
  42. #include <stdio.h>
  43. #include <string.h>
  44. /*
  45. * NIST test vectors from SP 800-38a:
  46. *
  47. * Block #1
  48. * Plaintext 6bc1bee22e409f96e93d7e117393172a
  49. * Input Block 6bc0bce12a459991e134741a7f9e1925
  50. * Output Block 7649abac8119b246cee98e9b12e9197d
  51. * Ciphertext 7649abac8119b246cee98e9b12e9197d
  52. * Block #2
  53. * Plaintext ae2d8a571e03ac9c9eb76fac45af8e51
  54. * Input Block d86421fb9f1a1eda505ee1375746972c
  55. * Output Block 5086cb9b507219ee95db113a917678b2
  56. * Ciphertext 5086cb9b507219ee95db113a917678b2
  57. * Block #3
  58. * Plaintext 30c81c46a35ce411e5fbc1191a0a52ef
  59. * Input Block 604ed7ddf32efdff7020d0238b7c2a5d
  60. * Output Block 73bed6b8e3c1743b7116e69e22229516
  61. * Ciphertext 73bed6b8e3c1743b7116e69e22229516
  62. * Block #4
  63. * Plaintext f69f2445df4f9b17ad2b417be66c3710
  64. * Input Block 8521f2fd3c8eef2cdc3da7e5c44ea206
  65. * Output Block 3ff1caa1681fac09120eca307586e1a7
  66. * Ciphertext 3ff1caa1681fac09120eca307586e1a7
  67. */
  68. const uint8_t key[16] = {
  69. 0x2b, 0x7e, 0x15, 0x16, 0x28, 0xae, 0xd2, 0xa6, 0xab, 0xf7, 0x15, 0x88,
  70. 0x09, 0xcf, 0x4f, 0x3c
  71. };
  72. const uint8_t iv[16] = {
  73. 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08, 0x09, 0x0a, 0x0b,
  74. 0x0c, 0x0d, 0x0e, 0x0f
  75. };
  76. const uint8_t plaintext[64] = {
  77. 0x6b, 0xc1, 0xbe, 0xe2, 0x2e, 0x40, 0x9f, 0x96, 0xe9, 0x3d, 0x7e, 0x11,
  78. 0x73, 0x93, 0x17, 0x2a, 0xae, 0x2d, 0x8a, 0x57, 0x1e, 0x03, 0xac, 0x9c,
  79. 0x9e, 0xb7, 0x6f, 0xac, 0x45, 0xaf, 0x8e, 0x51, 0x30, 0xc8, 0x1c, 0x46,
  80. 0xa3, 0x5c, 0xe4, 0x11, 0xe5, 0xfb, 0xc1, 0x19, 0x1a, 0x0a, 0x52, 0xef,
  81. 0xf6, 0x9f, 0x24, 0x45, 0xdf, 0x4f, 0x9b, 0x17, 0xad, 0x2b, 0x41, 0x7b,
  82. 0xe6, 0x6c, 0x37, 0x10
  83. };
  84. const uint8_t ciphertext[80] = {
  85. 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08, 0x09, 0x0a, 0x0b,
  86. 0x0c, 0x0d, 0x0e, 0x0f, 0x76, 0x49, 0xab, 0xac, 0x81, 0x19, 0xb2, 0x46,
  87. 0xce, 0xe9, 0x8e, 0x9b, 0x12, 0xe9, 0x19, 0x7d, 0x50, 0x86, 0xcb, 0x9b,
  88. 0x50, 0x72, 0x19, 0xee, 0x95, 0xdb, 0x11, 0x3a, 0x91, 0x76, 0x78, 0xb2,
  89. 0x73, 0xbe, 0xd6, 0xb8, 0xe3, 0xc1, 0x74, 0x3b, 0x71, 0x16, 0xe6, 0x9e,
  90. 0x22, 0x22, 0x95, 0x16, 0x3f, 0xf1, 0xca, 0xa1, 0x68, 0x1f, 0xac, 0x09,
  91. 0x12, 0x0e, 0xca, 0x30, 0x75, 0x86, 0xe1, 0xa7
  92. };
  93. /*
  94. * NIST SP 800-38a CBC Test for encryption and decryption.
  95. */
  96. int test_1_and_2(void)
  97. {
  98. struct tc_aes_key_sched_struct a;
  99. uint8_t iv_buffer[16];
  100. uint8_t encrypted[80];
  101. uint8_t decrypted[64];
  102. uint8_t *p;
  103. unsigned int length;
  104. int result = TC_PASS;
  105. (void)tc_aes128_set_encrypt_key(&a, key);
  106. (void)memcpy(iv_buffer, iv, TC_AES_BLOCK_SIZE);
  107. TC_PRINT("CBC test #1 (encryption SP 800-38a tests):\n");
  108. if (tc_cbc_mode_encrypt(encrypted, sizeof(plaintext) + TC_AES_BLOCK_SIZE,
  109. plaintext, sizeof(plaintext), iv_buffer, &a) == 0) {
  110. TC_ERROR("CBC test #1 (encryption SP 800-38a tests) failed in "
  111. "%s.\n", __func__);
  112. result = TC_FAIL;
  113. goto exitTest1;
  114. }
  115. result = check_result(1, ciphertext, sizeof(encrypted), encrypted,
  116. sizeof(encrypted));
  117. TC_END_RESULT(result);
  118. TC_PRINT("CBC test #2 (decryption SP 800-38a tests):\n");
  119. (void)tc_aes128_set_decrypt_key(&a, key);
  120. p = &encrypted[TC_AES_BLOCK_SIZE];
  121. length = ((unsigned int) sizeof(encrypted)) - TC_AES_BLOCK_SIZE;
  122. if (tc_cbc_mode_decrypt(decrypted, length - TC_AES_BLOCK_SIZE, p, length,
  123. encrypted, &a) == 0) {
  124. TC_ERROR("CBC test #2 (decryption SP 800-38a tests) failed in. "
  125. "%s\n", __func__);
  126. result = TC_FAIL;
  127. goto exitTest1;
  128. }
  129. result = check_result(2, plaintext, sizeof(decrypted), decrypted,
  130. sizeof(decrypted));
  131. exitTest1:
  132. TC_END_RESULT(result);
  133. return result;
  134. }
  135. /*
  136. * Main task to test AES
  137. */
  138. int main(void)
  139. {
  140. int result = TC_PASS;
  141. TC_START("Performing AES128 tests:");
  142. TC_PRINT("Performing CBC tests:\n");
  143. result = test_1_and_2();
  144. if (result == TC_FAIL) {
  145. /* terminate test */
  146. TC_ERROR("CBC test #1 failed.\n");
  147. goto exitTest;
  148. }
  149. TC_PRINT("All CBC tests succeeded!\n");
  150. exitTest:
  151. TC_END_RESULT(result);
  152. TC_END_REPORT(result);
  153. return result;
  154. }