blob: 81656eb9f001151d6f96afcef65360bc5b40046a [file] [log] [blame]
Alex Gaynor5951f462014-11-16 09:08:42 -08001# This file is dual licensed under the terms of the Apache License, Version
2# 2.0, and the BSD License. See the LICENSE file in the root of this repository
3# for complete details.
Alex Gaynorf312a5c2013-08-10 15:23:38 -04004
Alex Gaynorc37feed2014-03-08 08:32:56 -08005from __future__ import absolute_import, division, print_function
6
Alex Stapletonfb812d62014-04-15 16:07:25 +01007import binascii
Alex Gaynorab53bc52013-11-12 09:37:59 -08008import os
Donald Stufft9e1a48b2013-08-09 00:32:30 -04009import textwrap
10
Alex Gaynor2b3f9422013-12-24 21:55:24 -080011import pretend
12
Paul Kehrer79c16e92013-10-18 17:44:36 -050013import pytest
14
Alex Stapletona39a3192014-03-14 20:03:12 +000015import cryptography
Alex Stapleton112963e2014-03-26 17:39:29 +000016from cryptography.exceptions import UnsupportedAlgorithm, _Reasons
17
Alex Stapletona39a3192014-03-14 20:03:12 +000018import cryptography_vectors
19
Alex Gaynorafdddca2013-10-21 21:00:20 -070020from .utils import (
Paul Kehrera923b002017-06-20 01:12:35 -100021 check_backend_support, load_cryptrec_vectors, load_ed25519_vectors,
Alex Gaynor7aab8b42014-10-23 11:01:25 -070022 load_fips_dsa_key_pair_vectors, load_fips_dsa_sig_vectors,
23 load_fips_ecdsa_key_pair_vectors, load_fips_ecdsa_signing_vectors,
Simo Sorce917addb2015-04-29 19:41:26 -040024 load_hash_vectors, load_kasvs_dh_vectors,
Paul Kehrer33a41e72017-06-21 01:39:20 -100025 load_kasvs_ecdh_vectors, load_nist_ccm_vectors, load_nist_kbkdf_vectors,
26 load_nist_vectors, load_pkcs1_vectors, load_rsa_nist_vectors,
27 load_vectors_from_file, load_x963_vectors, raises_unsupported_algorithm
Alex Gaynorafdddca2013-10-21 21:00:20 -070028)
Donald Stufft9e1a48b2013-08-09 00:32:30 -040029
30
Paul Kehrer60fc8da2013-12-26 20:19:34 -060031def test_check_backend_support_skip():
Paul Kehrer5a8fdf82013-12-26 20:13:45 -060032 supported = pretend.stub(
33 kwargs={"only_if": lambda backend: False, "skip_message": "Nope"}
34 )
Paul Kehrer03229622018-09-06 22:56:46 -050035 node = pretend.stub(iter_markers=lambda x: [supported])
36 item = pretend.stub(node=node)
Paul Kehrer5a8fdf82013-12-26 20:13:45 -060037 with pytest.raises(pytest.skip.Exception) as exc_info:
Alex Gaynore6055fb2017-06-03 22:02:50 -040038 check_backend_support(True, item)
Paul Kehrerf03334e2014-01-02 23:16:14 -060039 assert exc_info.value.args[0] == "Nope (True)"
Paul Kehrer5a8fdf82013-12-26 20:13:45 -060040
41
Paul Kehrer60fc8da2013-12-26 20:19:34 -060042def test_check_backend_support_no_skip():
Paul Kehrer5a8fdf82013-12-26 20:13:45 -060043 supported = pretend.stub(
44 kwargs={"only_if": lambda backend: True, "skip_message": "Nope"}
45 )
Paul Kehrer03229622018-09-06 22:56:46 -050046 node = pretend.stub(iter_markers=lambda x: [supported])
47 item = pretend.stub(node=node)
Alex Gaynore6055fb2017-06-03 22:02:50 -040048 assert check_backend_support(None, item) is None
Paul Kehrer5a8fdf82013-12-26 20:13:45 -060049
50
Alex Gaynorcf5fb332013-11-11 15:39:52 -080051def test_load_nist_vectors():
Donald Stufft9e1a48b2013-08-09 00:32:30 -040052 vector_data = textwrap.dedent("""
53 # CAVS 11.1
54 # Config info for aes_values
55 # AESVS GFSbox test data for CBC
56 # State : Encrypt and Decrypt
57 # Key Length : 128
58 # Generated on Fri Apr 22 15:11:33 2011
59
60 [ENCRYPT]
61
62 COUNT = 0
63 KEY = 00000000000000000000000000000000
64 IV = 00000000000000000000000000000000
65 PLAINTEXT = f34481ec3cc627bacd5dc3fb08f273e6
66 CIPHERTEXT = 0336763e966d92595a567cc9ce537f5e
67
68 COUNT = 1
69 KEY = 00000000000000000000000000000000
70 IV = 00000000000000000000000000000000
71 PLAINTEXT = 9798c4640bad75c7c3227db910174e72
72 CIPHERTEXT = a9a1631bf4996954ebc093957b234589
73
74 [DECRYPT]
75
76 COUNT = 0
77 KEY = 00000000000000000000000000000000
78 IV = 00000000000000000000000000000000
79 CIPHERTEXT = 0336763e966d92595a567cc9ce537f5e
80 PLAINTEXT = f34481ec3cc627bacd5dc3fb08f273e6
81
82 COUNT = 1
83 KEY = 00000000000000000000000000000000
84 IV = 00000000000000000000000000000000
85 CIPHERTEXT = a9a1631bf4996954ebc093957b234589
86 PLAINTEXT = 9798c4640bad75c7c3227db910174e72
87 """).splitlines()
88
Alex Gaynord3ce7032013-11-11 14:46:20 -080089 assert load_nist_vectors(vector_data) == [
90 {
91 "key": b"00000000000000000000000000000000",
92 "iv": b"00000000000000000000000000000000",
93 "plaintext": b"f34481ec3cc627bacd5dc3fb08f273e6",
94 "ciphertext": b"0336763e966d92595a567cc9ce537f5e",
95 },
96 {
97 "key": b"00000000000000000000000000000000",
98 "iv": b"00000000000000000000000000000000",
99 "plaintext": b"9798c4640bad75c7c3227db910174e72",
100 "ciphertext": b"a9a1631bf4996954ebc093957b234589",
101 },
Alex Gaynor1fe70b12013-10-16 11:59:17 -0700102 {
103 "key": b"00000000000000000000000000000000",
104 "iv": b"00000000000000000000000000000000",
105 "plaintext": b"f34481ec3cc627bacd5dc3fb08f273e6",
106 "ciphertext": b"0336763e966d92595a567cc9ce537f5e",
107 },
108 {
109 "key": b"00000000000000000000000000000000",
110 "iv": b"00000000000000000000000000000000",
111 "plaintext": b"9798c4640bad75c7c3227db910174e72",
112 "ciphertext": b"a9a1631bf4996954ebc093957b234589",
113 },
Donald Stufft9e1a48b2013-08-09 00:32:30 -0400114 ]
115
116
Paul Kehrer6fb1a5a2014-01-29 13:44:07 -0600117def test_load_nist_vectors_with_null_chars():
118 vector_data = textwrap.dedent("""
119 COUNT = 0
120 KEY = thing\\0withnulls
121
122 COUNT = 1
123 KEY = 00000000000000000000000000000000
124 """).splitlines()
125
126 assert load_nist_vectors(vector_data) == [
127 {
128 "key": b"thing\x00withnulls",
129 },
130 {
131 "key": b"00000000000000000000000000000000",
132 },
133 ]
134
135
Paul Kehrera923b002017-06-20 01:12:35 -1000136def test_load_ed25519_vectors():
137 vector_data = (
138 "9d61b19deffd5a60ba844af492ec2cc44449c5697b326919703bac031cae7f60d75a9"
139 "80182b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f707511a:d75a98018"
140 "2b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f707511a::e5564300c360"
141 "ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc"
142 "61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b:\n"
143 "4ccd089b28ff96da9db6c346ec114e0f5b8a319f35aba624da8cf6ed4fb8a6fb3d401"
144 "7c3e843895a92b70aa74d1b7ebc9c982ccf2ec4968cc0cd55f12af4660c:3d4017c3e"
145 "843895a92b70aa74d1b7ebc9c982ccf2ec4968cc0cd55f12af4660c:72:92a009a9f0"
146 "d4cab8720e820b5f642540a2b27b5416503f8fb3762223ebdb69da085ac1e43e15996"
147 "e458f3613d0f11d8c387b2eaeb4302aeeb00d291612bb0c0072:\n"
148 "c5aa8df43f9f837bedb7442f31dcb7b166d38535076f094b85ce3a2e0b4458f7fc51c"
149 "d8e6218a1a38da47ed00230f0580816ed13ba3303ac5deb911548908025:fc51cd8e6"
150 "218a1a38da47ed00230f0580816ed13ba3303ac5deb911548908025:af82:6291d657"
151 "deec24024827e69c3abe01a30ce548a284743a445e3680d7db5ac3ac18ff9b538d16f"
152 "290ae67f760984dc6594a7c15e9716ed28dc027beceea1ec40aaf82:\n"
153 "0d4a05b07352a5436e180356da0ae6efa0345ff7fb1572575772e8005ed978e9e61a1"
154 "85bcef2613a6c7cb79763ce945d3b245d76114dd440bcf5f2dc1aa57057:e61a185bc"
155 "ef2613a6c7cb79763ce945d3b245d76114dd440bcf5f2dc1aa57057:cbc77b:d9868d"
156 "52c2bebce5f3fa5a79891970f309cb6591e3e1702a70276fa97c24b3a8e58606c38c9"
157 "758529da50ee31b8219cba45271c689afa60b0ea26c99db19b00ccbc77b:\n"
158 ).splitlines()
159
160 assert load_ed25519_vectors(vector_data) == [
161 {
162 "secret_key": (
163 "9d61b19deffd5a60ba844af492ec2cc44449c5697b326919703bac031cae7"
164 "f60"
165 ),
166 "public_key": (
167 "d75a980182b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f7075"
168 "11a"
169 ),
170 "message": "",
171 "signature": (
172 "e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e06522490"
173 "1555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e"
174 "7a100b"
175 )
176 },
177 {
178 "secret_key": (
179 "4ccd089b28ff96da9db6c346ec114e0f5b8a319f35aba624da8cf6ed4fb8a"
180 "6fb"
181 ),
182 "public_key": (
183 "3d4017c3e843895a92b70aa74d1b7ebc9c982ccf2ec4968cc0cd55f12af46"
184 "60c"
185 ),
186 "message": "72",
187 "signature": (
188 "92a009a9f0d4cab8720e820b5f642540a2b27b5416503f8fb3762223ebdb6"
189 "9da085ac1e43e15996e458f3613d0f11d8c387b2eaeb4302aeeb00d291612"
190 "bb0c00"
191 )
192 },
193 {
194 "secret_key": (
195 "c5aa8df43f9f837bedb7442f31dcb7b166d38535076f094b85ce3a2e0b445"
196 "8f7"
197 ),
198 "public_key": (
199 "fc51cd8e6218a1a38da47ed00230f0580816ed13ba3303ac5deb911548908"
200 "025"
201 ),
202 "message": "af82",
203 "signature": (
204 "6291d657deec24024827e69c3abe01a30ce548a284743a445e3680d7db5ac"
205 "3ac18ff9b538d16f290ae67f760984dc6594a7c15e9716ed28dc027beceea"
206 "1ec40a"
207 )
208 },
209 {
210 "secret_key": (
211 "0d4a05b07352a5436e180356da0ae6efa0345ff7fb1572575772e8005ed97"
212 "8e9"
213 ),
214 "public_key": (
215 "e61a185bcef2613a6c7cb79763ce945d3b245d76114dd440bcf5f2dc1aa57"
216 "057"
217 ),
218 "message": "cbc77b",
219 "signature": (
220 "d9868d52c2bebce5f3fa5a79891970f309cb6591e3e1702a70276fa97c24b"
221 "3a8e58606c38c9758529da50ee31b8219cba45271c689afa60b0ea26c99db"
222 "19b00c"
223 )
224 },
225 ]
226
227
Paul Kehrer1951bf62013-09-15 12:05:43 -0500228def test_load_cryptrec_vectors():
229 vector_data = textwrap.dedent("""
230 # Vectors taken from http://info.isl.ntt.co.jp/crypt/eng/camellia/
231 # Download is t_camelia.txt
232
233 # Camellia with 128-bit key
234
235 K No.001 : 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
236
237 P No.001 : 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
238 C No.001 : 07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C
239
240 P No.002 : 40 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
241 C No.002 : 48 CD 64 19 80 96 72 D2 34 92 60 D8 9A 08 D3 D3
242
243 K No.002 : 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
244
245 P No.001 : 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
246 C No.001 : 07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C
247 """).splitlines()
248
249 assert load_cryptrec_vectors(vector_data) == [
Alex Gaynor1fe70b12013-10-16 11:59:17 -0700250 {
251 "key": b"00000000000000000000000000000000",
252 "plaintext": b"80000000000000000000000000000000",
253 "ciphertext": b"07923A39EB0A817D1C4D87BDB82D1F1C",
254 },
255 {
256 "key": b"00000000000000000000000000000000",
257 "plaintext": b"40000000000000000000000000000000",
258 "ciphertext": b"48CD6419809672D2349260D89A08D3D3",
259 },
260 {
261 "key": b"10000000000000000000000000000000",
262 "plaintext": b"80000000000000000000000000000000",
263 "ciphertext": b"07923A39EB0A817D1C4D87BDB82D1F1C",
264 },
Paul Kehrer1951bf62013-09-15 12:05:43 -0500265 ]
266
267
Donald Stufft3359d7e2013-10-19 19:33:06 -0400268def test_load_cryptrec_vectors_invalid():
269 vector_data = textwrap.dedent("""
270 # Vectors taken from http://info.isl.ntt.co.jp/crypt/eng/camellia/
271 # Download is t_camelia.txt
272
273 # Camellia with 128-bit key
274
275 E No.001 : 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
276 """).splitlines()
277
278 with pytest.raises(ValueError):
279 load_cryptrec_vectors(vector_data)
280
281
Paul Kehrer69e06522013-10-18 17:28:39 -0500282def test_load_hash_vectors():
283 vector_data = textwrap.dedent("""
284
285 # http://tools.ietf.org/html/rfc1321
Paul Kehrer87cd0db2013-10-18 18:01:26 -0500286 [irrelevant]
Paul Kehrer69e06522013-10-18 17:28:39 -0500287
288 Len = 0
289 Msg = 00
290 MD = d41d8cd98f00b204e9800998ecf8427e
291
292 Len = 8
293 Msg = 61
294 MD = 0cc175b9c0f1b6a831c399e269772661
295
296 Len = 24
297 Msg = 616263
298 MD = 900150983cd24fb0d6963f7d28e17f72
299
300 Len = 112
301 Msg = 6d65737361676520646967657374
302 MD = f96b697d7cb7938d525a2f31aaf161d0
303 """).splitlines()
304 assert load_hash_vectors(vector_data) == [
Paul Kehrer79c16e92013-10-18 17:44:36 -0500305 (b"", "d41d8cd98f00b204e9800998ecf8427e"),
306 (b"61", "0cc175b9c0f1b6a831c399e269772661"),
307 (b"616263", "900150983cd24fb0d6963f7d28e17f72"),
308 (b"6d65737361676520646967657374", "f96b697d7cb7938d525a2f31aaf161d0"),
Paul Kehrer69e06522013-10-18 17:28:39 -0500309 ]
310
311
Paul Kehrer0317b042013-10-28 17:34:27 -0500312def test_load_hmac_vectors():
313 vector_data = textwrap.dedent("""
314Len = 224
315# "Jefe"
316Key = 4a656665
317# "what do ya want for nothing?"
318Msg = 7768617420646f2079612077616e7420666f72206e6f7468696e673f
319MD = 750c783e6ab0b503eaa86e310a5db738
320 """).splitlines()
321 assert load_hash_vectors(vector_data) == [
322 (b"7768617420646f2079612077616e7420666f72206e6f7468696e673f",
323 "750c783e6ab0b503eaa86e310a5db738",
324 b"4a656665"),
325 ]
326
327
Paul Kehrer69e06522013-10-18 17:28:39 -0500328def test_load_hash_vectors_bad_data():
329 vector_data = textwrap.dedent("""
330 # http://tools.ietf.org/html/rfc1321
331
332 Len = 0
333 Msg = 00
334 UNKNOWN=Hello World
335 """).splitlines()
336 with pytest.raises(ValueError):
337 load_hash_vectors(vector_data)
338
Alex Gaynor41172ab2013-11-12 10:00:42 -0800339
Alex Gaynorab53bc52013-11-12 09:37:59 -0800340def test_load_vectors_from_file():
341 vectors = load_vectors_from_file(
342 os.path.join("ciphers", "Blowfish", "bf-cfb.txt"),
343 load_nist_vectors,
Paul Kehrer2b758672013-10-30 09:01:38 -0500344 )
Alex Gaynorab53bc52013-11-12 09:37:59 -0800345 assert vectors == [
346 {
Alex Gaynorc2f45d52013-11-12 09:50:25 -0800347 "key": b"0123456789ABCDEFF0E1D2C3B4A59687",
348 "iv": b"FEDCBA9876543210",
Alex Gaynorab53bc52013-11-12 09:37:59 -0800349 "plaintext": (
Alex Gaynorc2f45d52013-11-12 09:50:25 -0800350 b"37363534333231204E6F77206973207468652074696D6520666F722000"
Alex Gaynorab53bc52013-11-12 09:37:59 -0800351 ),
352 "ciphertext": (
Alex Gaynorc2f45d52013-11-12 09:50:25 -0800353 b"E73214A2822139CAF26ECF6D2EB9E76E3DA3DE04D1517200519D57A6C3"
Alex Gaynorab53bc52013-11-12 09:37:59 -0800354 ),
355 }
356 ]
Paul Kehrera43b6692013-11-12 15:35:49 -0600357
358
359def test_load_nist_gcm_vectors():
360 vector_data = textwrap.dedent("""
361 [Keylen = 128]
362 [IVlen = 96]
363 [PTlen = 0]
364 [AADlen = 0]
365 [Taglen = 128]
366
367 Count = 0
368 Key = 11754cd72aec309bf52f7687212e8957
369 IV = 3c819d9a9bed087615030b65
370 PT =
371 AAD =
372 CT =
373 Tag = 250327c674aaf477aef2675748cf6971
374
375 Count = 1
376 Key = 272f16edb81a7abbea887357a58c1917
377 IV = 794ec588176c703d3d2a7a07
378 PT =
379 AAD =
380 CT =
381 Tag = b6e6f197168f5049aeda32dafbdaeb
382
383 Count = 2
384 Key = a49a5e26a2f8cb63d05546c2a62f5343
385 IV = 907763b19b9b4ab6bd4f0281
386 CT =
387 AAD =
388 Tag = a2be08210d8c470a8df6e8fbd79ec5cf
389 FAIL
390
391 Count = 3
392 Key = 5c1155084cc0ede76b3bc22e9f7574ef
393 IV = 9549e4ba69a61cad7856efc1
394 PT = d1448fa852b84408e2dad8381f363de7
395 AAD = e98e9d9c618e46fef32660976f854ee3
396 CT = f78b60ca125218493bea1c50a2e12ef4
397 Tag = d72da7f5c6cf0bca7242c71835809449
398
399 [Keylen = 128]
400 [IVlen = 96]
401 [PTlen = 0]
402 [AADlen = 0]
403 [Taglen = 120]
404
405 Count = 0
406 Key = eac258e99c55e6ae8ef1da26640613d7
407 IV = 4e8df20faaf2c8eebe922902
408 CT =
409 AAD =
410 Tag = e39aeaebe86aa309a4d062d6274339
411 PT =
412
413 Count = 1
414 Key = 3726cf02fcc6b8639a5497652c94350d
415 IV = 55fef82cde693ce76efcc193
416 CT =
417 AAD =
418 Tag = 3d68111a81ed22d2ef5bccac4fc27f
419 FAIL
420
421 Count = 2
422 Key = f202299d5fd74f03b12d2119a6c4c038
423 IV = eec51e7958c3f20a1bb71815
424 CT =
425 AAD =
426 Tag = a81886b3fb26e51fca87b267e1e157
427 FAIL
428
429 Count = 3
430 Key = fd52925f39546b4c55ffb6b20c59898c
431 IV = f5cf3227444afd905a5f6dba
432 CT =
433 AAD =
434 Tag = 1665b0f1a0b456e1664cfd3de08ccd
435 PT =
Paul Kehrerc985dbb2013-11-18 14:11:55 -0600436
437 [Keylen = 128]
438 [IVlen = 8]
439 [PTlen = 104]
440 [AADlen = 0]
441 [Taglen = 128]
442
443 Count = 0
444 Key = 58fab7632bcf10d2bcee58520bf37414
445 IV = 3c
446 CT = 15c4db4cbb451211179d57017f
447 AAD =
448 Tag = eae841d4355feeb3f786bc86625f1e5b
449 FAIL
Paul Kehrera43b6692013-11-12 15:35:49 -0600450 """).splitlines()
451 assert load_nist_vectors(vector_data) == [
452 {'aad': b'',
Paul Kehrer749ac5b2013-11-18 18:12:41 -0600453 'pt': b'',
454 'iv': b'3c819d9a9bed087615030b65',
455 'tag': b'250327c674aaf477aef2675748cf6971',
456 'key': b'11754cd72aec309bf52f7687212e8957',
457 'ct': b''},
458 {'aad': b'',
459 'pt': b'',
460 'iv': b'794ec588176c703d3d2a7a07',
461 'tag': b'b6e6f197168f5049aeda32dafbdaeb',
462 'key': b'272f16edb81a7abbea887357a58c1917',
463 'ct': b''},
464 {'aad': b'',
465 'iv': b'907763b19b9b4ab6bd4f0281',
466 'tag': b'a2be08210d8c470a8df6e8fbd79ec5cf',
467 'key': b'a49a5e26a2f8cb63d05546c2a62f5343',
468 'ct': b'',
Paul Kehrerc985dbb2013-11-18 14:11:55 -0600469 'fail': True},
Paul Kehrer749ac5b2013-11-18 18:12:41 -0600470 {'aad': b'e98e9d9c618e46fef32660976f854ee3',
471 'pt': b'd1448fa852b84408e2dad8381f363de7',
472 'iv': b'9549e4ba69a61cad7856efc1',
473 'tag': b'd72da7f5c6cf0bca7242c71835809449',
474 'key': b'5c1155084cc0ede76b3bc22e9f7574ef',
475 'ct': b'f78b60ca125218493bea1c50a2e12ef4'},
Paul Kehrerc985dbb2013-11-18 14:11:55 -0600476 {'aad': b'',
Paul Kehrera43b6692013-11-12 15:35:49 -0600477 'pt': b'',
478 'iv': b'4e8df20faaf2c8eebe922902',
479 'tag': b'e39aeaebe86aa309a4d062d6274339',
480 'key': b'eac258e99c55e6ae8ef1da26640613d7',
481 'ct': b''},
482 {'aad': b'',
483 'iv': b'55fef82cde693ce76efcc193',
484 'tag': b'3d68111a81ed22d2ef5bccac4fc27f',
485 'key': b'3726cf02fcc6b8639a5497652c94350d',
486 'ct': b'',
487 'fail': True},
488 {'aad': b'',
489 'iv': b'eec51e7958c3f20a1bb71815',
490 'tag': b'a81886b3fb26e51fca87b267e1e157',
491 'key': b'f202299d5fd74f03b12d2119a6c4c038',
492 'ct': b'',
493 'fail': True},
494 {'aad': b'',
495 'pt': b'',
496 'iv': b'f5cf3227444afd905a5f6dba',
497 'tag': b'1665b0f1a0b456e1664cfd3de08ccd',
498 'key': b'fd52925f39546b4c55ffb6b20c59898c',
499 'ct': b''},
500 {'aad': b'',
Paul Kehrer749ac5b2013-11-18 18:12:41 -0600501 'iv': b'3c',
502 'tag': b'eae841d4355feeb3f786bc86625f1e5b',
503 'key': b'58fab7632bcf10d2bcee58520bf37414',
504 'ct': b'15c4db4cbb451211179d57017f',
Paul Kehrera43b6692013-11-12 15:35:49 -0600505 'fail': True},
Paul Kehrera43b6692013-11-12 15:35:49 -0600506 ]
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000507
508
509def test_load_pkcs1_vectors():
510 vector_data = textwrap.dedent("""
511 Test vectors for RSA-PSS
512 ========================
513
514 This file contains an extract of the original pss-vect.txt
515
516 Key lengths:
517
518 Key 8: 1031 bits
519 Key 9: 1536 bits
520 ===========================================================================
521
522 <snip>
523
524 # Example 8: A 1031-bit RSA key pair
525 # -----------------------------------
526
527
528 # Public key
529 # ----------
530
531 # Modulus:
532 49 53 70 a1 fb 18 54 3c 16 d3 63 1e 31 63 25 5d
533 f6 2b e6 ee e8 90 d5 f2 55 09 e4 f7 78 a8 ea 6f
534 bb bc df 85 df f6 4e 0d 97 20 03 ab 36 81 fb ba
535 6d d4 1f d5 41 82 9b 2e 58 2d e9 f2 a4 a4 e0 a2
536 d0 90 0b ef 47 53 db 3c ee 0e e0 6c 7d fa e8 b1
537 d5 3b 59 53 21 8f 9c ce ea 69 5b 08 66 8e de aa
538 dc ed 94 63 b1 d7 90 d5 eb f2 7e 91 15 b4 6c ad
539 4d 9a 2b 8e fa b0 56 1b 08 10 34 47 39 ad a0 73
540 3f
541
542 # Exponent:
543 01 00 01
544
545 # Private key
546 # -----------
547
548 # Modulus:
549 49 53 70 a1 fb 18 54 3c 16 d3 63 1e 31 63 25 5d
550 f6 2b e6 ee e8 90 d5 f2 55 09 e4 f7 78 a8 ea 6f
551 bb bc df 85 df f6 4e 0d 97 20 03 ab 36 81 fb ba
552 6d d4 1f d5 41 82 9b 2e 58 2d e9 f2 a4 a4 e0 a2
553 d0 90 0b ef 47 53 db 3c ee 0e e0 6c 7d fa e8 b1
554 d5 3b 59 53 21 8f 9c ce ea 69 5b 08 66 8e de aa
555 dc ed 94 63 b1 d7 90 d5 eb f2 7e 91 15 b4 6c ad
556 4d 9a 2b 8e fa b0 56 1b 08 10 34 47 39 ad a0 73
557 3f
558
559 # Public exponent:
560 01 00 01
561
562 # Exponent:
563 6c 66 ff e9 89 80 c3 8f cd ea b5 15 98 98 83 61
564 65 f4 b4 b8 17 c4 f6 a8 d4 86 ee 4e a9 13 0f e9
565 b9 09 2b d1 36 d1 84 f9 5f 50 4a 60 7e ac 56 58
566 46 d2 fd d6 59 7a 89 67 c7 39 6e f9 5a 6e ee bb
567 45 78 a6 43 96 6d ca 4d 8e e3 de 84 2d e6 32 79
568 c6 18 15 9c 1a b5 4a 89 43 7b 6a 61 20 e4 93 0a
569 fb 52 a4 ba 6c ed 8a 49 47 ac 64 b3 0a 34 97 cb
570 e7 01 c2 d6 26 6d 51 72 19 ad 0e c6 d3 47 db e9
571
572 # Prime 1:
573 08 da d7 f1 13 63 fa a6 23 d5 d6 d5 e8 a3 19 32
574 8d 82 19 0d 71 27 d2 84 6c 43 9b 0a b7 26 19 b0
575 a4 3a 95 32 0e 4e c3 4f c3 a9 ce a8 76 42 23 05
576 bd 76 c5 ba 7b e9 e2 f4 10 c8 06 06 45 a1 d2 9e
577 db
578
579 # Prime 2:
580 08 47 e7 32 37 6f c7 90 0f 89 8e a8 2e b2 b0 fc
581 41 85 65 fd ae 62 f7 d9 ec 4c e2 21 7b 97 99 0d
582 d2 72 db 15 7f 99 f6 3c 0d cb b9 fb ac db d4 c4
583 da db 6d f6 77 56 35 8c a4 17 48 25 b4 8f 49 70
584 6d
585
586 # Prime exponent 1:
587 05 c2 a8 3c 12 4b 36 21 a2 aa 57 ea 2c 3e fe 03
588 5e ff 45 60 f3 3d de bb 7a da b8 1f ce 69 a0 c8
589 c2 ed c1 65 20 dd a8 3d 59 a2 3b e8 67 96 3a c6
590 5f 2c c7 10 bb cf b9 6e e1 03 de b7 71 d1 05 fd
591 85
592
593 # Prime exponent 2:
594 04 ca e8 aa 0d 9f aa 16 5c 87 b6 82 ec 14 0b 8e
595 d3 b5 0b 24 59 4b 7a 3b 2c 22 0b 36 69 bb 81 9f
596 98 4f 55 31 0a 1a e7 82 36 51 d4 a0 2e 99 44 79
597 72 59 51 39 36 34 34 e5 e3 0a 7e 7d 24 15 51 e1
598 b9
599
600 # Coefficient:
601 07 d3 e4 7b f6 86 60 0b 11 ac 28 3c e8 8d bb 3f
602 60 51 e8 ef d0 46 80 e4 4c 17 1e f5 31 b8 0b 2b
603 7c 39 fc 76 63 20 e2 cf 15 d8 d9 98 20 e9 6f f3
604 0d c6 96 91 83 9c 4b 40 d7 b0 6e 45 30 7d c9 1f
605 3f
606
607 # RSA-PSS signing of 6 random messages with random salts
608 # -------------------------------------------------------
Paul Kehrerefca2802014-02-17 20:55:13 -0600609 # PSS Example 8.1
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000610
Paul Kehrerefca2802014-02-17 20:55:13 -0600611 # -----------------
612
613 # Message to be signed:
614 81 33 2f 4b e6 29 48 41 5e a1 d8 99 79 2e ea cf
615 6c 6e 1d b1 da 8b e1 3b 5c ea 41 db 2f ed 46 70
616 92 e1 ff 39 89 14 c7 14 25 97 75 f5 95 f8 54 7f
617 73 56 92 a5 75 e6 92 3a f7 8f 22 c6 99 7d db 90
618 fb 6f 72 d7 bb 0d d5 74 4a 31 de cd 3d c3 68 58
619 49 83 6e d3 4a ec 59 63 04 ad 11 84 3c 4f 88 48
620 9f 20 97 35 f5 fb 7f da f7 ce c8 ad dc 58 18 16
621 8f 88 0a cb f4 90 d5 10 05 b7 a8 e8 4e 43 e5 42
622 87 97 75 71 dd 99 ee a4 b1 61 eb 2d f1 f5 10 8f
623 12 a4 14 2a 83 32 2e db 05 a7 54 87 a3 43 5c 9a
624 78 ce 53 ed 93 bc 55 08 57 d7 a9 fb
625
626 # Salt:
627 1d 65 49 1d 79 c8 64 b3 73 00 9b e6 f6 f2 46 7b
628 ac 4c 78 fa
629
630 # Signature:
631 02 62 ac 25 4b fa 77 f3 c1 ac a2 2c 51 79 f8 f0
632 40 42 2b 3c 5b af d4 0a 8f 21 cf 0f a5 a6 67 cc
633 d5 99 3d 42 db af b4 09 c5 20 e2 5f ce 2b 1e e1
634 e7 16 57 7f 1e fa 17 f3 da 28 05 2f 40 f0 41 9b
635 23 10 6d 78 45 aa f0 11 25 b6 98 e7 a4 df e9 2d
636 39 67 bb 00 c4 d0 d3 5b a3 55 2a b9 a8 b3 ee f0
637 7c 7f ec db c5 42 4a c4 db 1e 20 cb 37 d0 b2 74
638 47 69 94 0e a9 07 e1 7f bb ca 67 3b 20 52 23 80
639 c5
640
641 # PSS Example 8.2
642
643 # -----------------
644
645 # Message to be signed:
646 e2 f9 6e af 0e 05 e7 ba 32 6e cc a0 ba 7f d2 f7
647 c0 23 56 f3 ce de 9d 0f aa bf 4f cc 8e 60 a9 73
648 e5 59 5f d9 ea 08
649
650 # Salt:
651 43 5c 09 8a a9 90 9e b2 37 7f 12 48 b0 91 b6 89
652 87 ff 18 38
653
654 # Signature:
655 27 07 b9 ad 51 15 c5 8c 94 e9 32 e8 ec 0a 28 0f
656 56 33 9e 44 a1 b5 8d 4d dc ff 2f 31 2e 5f 34 dc
657 fe 39 e8 9c 6a 94 dc ee 86 db bd ae 5b 79 ba 4e
658 08 19 a9 e7 bf d9 d9 82 e7 ee 6c 86 ee 68 39 6e
659 8b 3a 14 c9 c8 f3 4b 17 8e b7 41 f9 d3 f1 21 10
660 9b f5 c8 17 2f ad a2 e7 68 f9 ea 14 33 03 2c 00
661 4a 8a a0 7e b9 90 00 0a 48 dc 94 c8 ba c8 aa be
662 2b 09 b1 aa 46 c0 a2 aa 0e 12 f6 3f bb a7 75 ba
663 7e
664
665 # <snip>
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000666
667 # =============================================
668
669 # Example 9: A 1536-bit RSA key pair
670 # -----------------------------------
671
672
673 # Public key
674 # ----------
675
676 # Modulus:
677 e6 bd 69 2a c9 66 45 79 04 03 fd d0 f5 be b8 b9
678 bf 92 ed 10 00 7f c3 65 04 64 19 dd 06 c0 5c 5b
679 5b 2f 48 ec f9 89 e4 ce 26 91 09 97 9c bb 40 b4
680 a0 ad 24 d2 24 83 d1 ee 31 5a d4 cc b1 53 42 68
681 35 26 91 c5 24 f6 dd 8e 6c 29 d2 24 cf 24 69 73
682 ae c8 6c 5b f6 b1 40 1a 85 0d 1b 9a d1 bb 8c bc
683 ec 47 b0 6f 0f 8c 7f 45 d3 fc 8f 31 92 99 c5 43
684 3d db c2 b3 05 3b 47 de d2 ec d4 a4 ca ef d6 14
685 83 3d c8 bb 62 2f 31 7e d0 76 b8 05 7f e8 de 3f
686 84 48 0a d5 e8 3e 4a 61 90 4a 4f 24 8f b3 97 02
687 73 57 e1 d3 0e 46 31 39 81 5c 6f d4 fd 5a c5 b8
688 17 2a 45 23 0e cb 63 18 a0 4f 14 55 d8 4e 5a 8b
689
690 # Exponent:
691 01 00 01
692
693 # Private key
694 # -----------
695
696 # Modulus:
697 e6 bd 69 2a c9 66 45 79 04 03 fd d0 f5 be b8 b9
698 bf 92 ed 10 00 7f c3 65 04 64 19 dd 06 c0 5c 5b
699 5b 2f 48 ec f9 89 e4 ce 26 91 09 97 9c bb 40 b4
700 a0 ad 24 d2 24 83 d1 ee 31 5a d4 cc b1 53 42 68
701 35 26 91 c5 24 f6 dd 8e 6c 29 d2 24 cf 24 69 73
702 ae c8 6c 5b f6 b1 40 1a 85 0d 1b 9a d1 bb 8c bc
703 ec 47 b0 6f 0f 8c 7f 45 d3 fc 8f 31 92 99 c5 43
704 3d db c2 b3 05 3b 47 de d2 ec d4 a4 ca ef d6 14
705 83 3d c8 bb 62 2f 31 7e d0 76 b8 05 7f e8 de 3f
706 84 48 0a d5 e8 3e 4a 61 90 4a 4f 24 8f b3 97 02
707 73 57 e1 d3 0e 46 31 39 81 5c 6f d4 fd 5a c5 b8
708 17 2a 45 23 0e cb 63 18 a0 4f 14 55 d8 4e 5a 8b
709
710 # Public exponent:
711 01 00 01
712
713 # Exponent:
714 6a 7f d8 4f b8 5f ad 07 3b 34 40 6d b7 4f 8d 61
715 a6 ab c1 21 96 a9 61 dd 79 56 5e 9d a6 e5 18 7b
716 ce 2d 98 02 50 f7 35 95 75 35 92 70 d9 15 90 bb
717 0e 42 7c 71 46 0b 55 d5 14 10 b1 91 bc f3 09 fe
718 a1 31 a9 2c 8e 70 27 38 fa 71 9f 1e 00 41 f5 2e
719 40 e9 1f 22 9f 4d 96 a1 e6 f1 72 e1 55 96 b4 51
720 0a 6d ae c2 61 05 f2 be bc 53 31 6b 87 bd f2 13
721 11 66 60 70 e8 df ee 69 d5 2c 71 a9 76 ca ae 79
722 c7 2b 68 d2 85 80 dc 68 6d 9f 51 29 d2 25 f8 2b
723 3d 61 55 13 a8 82 b3 db 91 41 6b 48 ce 08 88 82
724 13 e3 7e eb 9a f8 00 d8 1c ab 32 8c e4 20 68 99
725 03 c0 0c 7b 5f d3 1b 75 50 3a 6d 41 96 84 d6 29
726
727 # Prime 1:
728 f8 eb 97 e9 8d f1 26 64 ee fd b7 61 59 6a 69 dd
729 cd 0e 76 da ec e6 ed 4b f5 a1 b5 0a c0 86 f7 92
730 8a 4d 2f 87 26 a7 7e 51 5b 74 da 41 98 8f 22 0b
731 1c c8 7a a1 fc 81 0c e9 9a 82 f2 d1 ce 82 1e dc
732 ed 79 4c 69 41 f4 2c 7a 1a 0b 8c 4d 28 c7 5e c6
733 0b 65 22 79 f6 15 4a 76 2a ed 16 5d 47 de e3 67
734
735 # Prime 2:
736 ed 4d 71 d0 a6 e2 4b 93 c2 e5 f6 b4 bb e0 5f 5f
737 b0 af a0 42 d2 04 fe 33 78 d3 65 c2 f2 88 b6 a8
738 da d7 ef e4 5d 15 3e ef 40 ca cc 7b 81 ff 93 40
739 02 d1 08 99 4b 94 a5 e4 72 8c d9 c9 63 37 5a e4
740 99 65 bd a5 5c bf 0e fe d8 d6 55 3b 40 27 f2 d8
741 62 08 a6 e6 b4 89 c1 76 12 80 92 d6 29 e4 9d 3d
742
743 # Prime exponent 1:
744 2b b6 8b dd fb 0c 4f 56 c8 55 8b ff af 89 2d 80
745 43 03 78 41 e7 fa 81 cf a6 1a 38 c5 e3 9b 90 1c
746 8e e7 11 22 a5 da 22 27 bd 6c de eb 48 14 52 c1
747 2a d3 d6 1d 5e 4f 77 6a 0a b5 56 59 1b ef e3 e5
748 9e 5a 7f dd b8 34 5e 1f 2f 35 b9 f4 ce e5 7c 32
749 41 4c 08 6a ec 99 3e 93 53 e4 80 d9 ee c6 28 9f
750
751 # Prime exponent 2:
752 4f f8 97 70 9f ad 07 97 46 49 45 78 e7 0f d8 54
753 61 30 ee ab 56 27 c4 9b 08 0f 05 ee 4a d9 f3 e4
754 b7 cb a9 d6 a5 df f1 13 a4 1c 34 09 33 68 33 f1
755 90 81 6d 8a 6b c4 2e 9b ec 56 b7 56 7d 0f 3c 9c
756 69 6d b6 19 b2 45 d9 01 dd 85 6d b7 c8 09 2e 77
757 e9 a1 cc cd 56 ee 4d ba 42 c5 fd b6 1a ec 26 69
758
759 # Coefficient:
760 77 b9 d1 13 7b 50 40 4a 98 27 29 31 6e fa fc 7d
761 fe 66 d3 4e 5a 18 26 00 d5 f3 0a 0a 85 12 05 1c
762 56 0d 08 1d 4d 0a 18 35 ec 3d 25 a6 0f 4e 4d 6a
763 a9 48 b2 bf 3d bb 5b 12 4c bb c3 48 92 55 a3 a9
764 48 37 2f 69 78 49 67 45 f9 43 e1 db 4f 18 38 2c
765 ea a5 05 df c6 57 57 bb 3f 85 7a 58 dc e5 21 56
766
Paul Kehrerefca2802014-02-17 20:55:13 -0600767 # PKCS#1 v1.5 Signature Example 2.17
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000768
Paul Kehrerefca2802014-02-17 20:55:13 -0600769 # -----------------
770
771 # Message to be signed:
772 06 ad d7 5a b6 89 de 06 77 44 e6 9a 2e bd 4b 90
773 fa 93 83 00 3c d0 5f f5 36 cb f2 94 cd 21 5f 09
774 23 b7 fc 90 04 f0 aa 18 52 71 a1 d0 06 1f d0 e9
775 77 7a d1 ec 0c 71 59 1f 57 8b f7 b8 e5 a1
776
777 # Signature:
778 45 14 21 0e 54 1d 5b ad 7d d6 0a e5 49 b9 43 ac
779 c4 4f 21 39 0d f5 b6 13 18 45 5a 17 61 0d f5 b7
780 4d 84 ae d2 32 f1 7e 59 d9 1d d2 65 99 22 f8 12
781 db d4 96 81 69 03 84 b9 54 e9 ad fb 9b 1a 96 8c
782 0c bf f7 63 ec ee d6 27 50 c5 91 64 b5 e0 80 a8
783 fe f3 d5 5b fe 2a cf ad 27 52 a6 a8 45 9f a1 fa
784 b4 9a d3 78 c6 96 4b 23 ee 97 fd 10 34 61 0c 5c
785 c1 4c 61 e0 eb fb 17 11 f8 ad e9 6f e6 55 7b 38
786
787 # <snip>
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000788
789 # =============================================
790
Paul Kehrerefca2802014-02-17 20:55:13 -0600791 # <snip>
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000792 """).splitlines()
793
794 vectors = tuple(load_pkcs1_vectors(vector_data))
795 expected = (
796 (
797 {
798 'modulus': int(
799 '495370a1fb18543c16d3631e3163255df62be6eee890d5f25509e4f77'
800 '8a8ea6fbbbcdf85dff64e0d972003ab3681fbba6dd41fd541829b2e58'
801 '2de9f2a4a4e0a2d0900bef4753db3cee0ee06c7dfae8b1d53b5953218'
802 'f9cceea695b08668edeaadced9463b1d790d5ebf27e9115b46cad4d9a'
803 '2b8efab0561b0810344739ada0733f', 16),
804 'public_exponent': int('10001', 16),
805 'private_exponent': int(
806 '6c66ffe98980c38fcdeab5159898836165f4b4b817c4f6a8d486ee4ea'
807 '9130fe9b9092bd136d184f95f504a607eac565846d2fdd6597a8967c7'
808 '396ef95a6eeebb4578a643966dca4d8ee3de842de63279c618159c1ab'
809 '54a89437b6a6120e4930afb52a4ba6ced8a4947ac64b30a3497cbe701'
810 'c2d6266d517219ad0ec6d347dbe9', 16),
811 'p': int(
812 '8dad7f11363faa623d5d6d5e8a319328d82190d7127d2846c439b0ab7'
813 '2619b0a43a95320e4ec34fc3a9cea876422305bd76c5ba7be9e2f410c'
814 '8060645a1d29edb', 16),
815 'q': int(
816 '847e732376fc7900f898ea82eb2b0fc418565fdae62f7d9ec4ce2217b'
817 '97990dd272db157f99f63c0dcbb9fbacdbd4c4dadb6df67756358ca41'
Paul Kehrer09328bb2014-02-12 23:57:27 -0600818 '74825b48f49706d', 16),
819 'dmp1': int(
820 '05c2a83c124b3621a2aa57ea2c3efe035eff4560f33ddebb7adab81fc'
821 'e69a0c8c2edc16520dda83d59a23be867963ac65f2cc710bbcfb96ee1'
822 '03deb771d105fd85', 16),
823 'dmq1': int(
824 '04cae8aa0d9faa165c87b682ec140b8ed3b50b24594b7a3b2c220b366'
825 '9bb819f984f55310a1ae7823651d4a02e99447972595139363434e5e3'
826 '0a7e7d241551e1b9', 16),
827 'iqmp': int(
828 '07d3e47bf686600b11ac283ce88dbb3f6051e8efd04680e44c171ef53'
829 '1b80b2b7c39fc766320e2cf15d8d99820e96ff30dc69691839c4b40d7'
Paul Kehrerefca2802014-02-17 20:55:13 -0600830 'b06e45307dc91f3f', 16),
831 'examples': [
832 {
Paul Kehrer26811802014-02-19 16:32:11 -0600833 'message': b'81332f4be62948415ea1d899792eeacf6c6e1db1d'
834 b'a8be13b5cea41db2fed467092e1ff398914c71425'
835 b'9775f595f8547f735692a575e6923af78f22c6997'
836 b'ddb90fb6f72d7bb0dd5744a31decd3dc368584983'
837 b'6ed34aec596304ad11843c4f88489f209735f5fb7'
838 b'fdaf7cec8addc5818168f880acbf490d51005b7a8'
839 b'e84e43e54287977571dd99eea4b161eb2df1f5108'
840 b'f12a4142a83322edb05a75487a3435c9a78ce53ed'
841 b'93bc550857d7a9fb',
842 'salt': b'1d65491d79c864b373009be6f6f2467bac4c78fa',
843 'signature': b'0262ac254bfa77f3c1aca22c5179f8f040422b3'
844 b'c5bafd40a8f21cf0fa5a667ccd5993d42dbafb4'
845 b'09c520e25fce2b1ee1e716577f1efa17f3da280'
846 b'52f40f0419b23106d7845aaf01125b698e7a4df'
847 b'e92d3967bb00c4d0d35ba3552ab9a8b3eef07c7'
848 b'fecdbc5424ac4db1e20cb37d0b2744769940ea9'
849 b'07e17fbbca673b20522380c5'
Paul Kehrerefca2802014-02-17 20:55:13 -0600850 }, {
Paul Kehrer26811802014-02-19 16:32:11 -0600851 'message': b'e2f96eaf0e05e7ba326ecca0ba7fd2f7c02356f3c'
852 b'ede9d0faabf4fcc8e60a973e5595fd9ea08',
853 'salt': b'435c098aa9909eb2377f1248b091b68987ff1838',
854 'signature': b'2707b9ad5115c58c94e932e8ec0a280f56339e4'
855 b'4a1b58d4ddcff2f312e5f34dcfe39e89c6a94dc'
856 b'ee86dbbdae5b79ba4e0819a9e7bfd9d982e7ee6'
857 b'c86ee68396e8b3a14c9c8f34b178eb741f9d3f1'
858 b'21109bf5c8172fada2e768f9ea1433032c004a8'
859 b'aa07eb990000a48dc94c8bac8aabe2b09b1aa46'
860 b'c0a2aa0e12f63fbba775ba7e'
Paul Kehrerefca2802014-02-17 20:55:13 -0600861 }
862 ]
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000863 },
864
865 {
866 'modulus': int(
867 '495370a1fb18543c16d3631e3163255df62be6eee890d5f25509e4f77'
868 '8a8ea6fbbbcdf85dff64e0d972003ab3681fbba6dd41fd541829b2e58'
869 '2de9f2a4a4e0a2d0900bef4753db3cee0ee06c7dfae8b1d53b5953218'
870 'f9cceea695b08668edeaadced9463b1d790d5ebf27e9115b46cad4d9a'
871 '2b8efab0561b0810344739ada0733f', 16),
872 'public_exponent': int('10001', 16)
873 }
874 ),
875 (
876 {
877 'modulus': int(
878 'e6bd692ac96645790403fdd0f5beb8b9bf92ed10007fc365046419dd0'
879 '6c05c5b5b2f48ecf989e4ce269109979cbb40b4a0ad24d22483d1ee31'
880 '5ad4ccb1534268352691c524f6dd8e6c29d224cf246973aec86c5bf6b'
881 '1401a850d1b9ad1bb8cbcec47b06f0f8c7f45d3fc8f319299c5433ddb'
882 'c2b3053b47ded2ecd4a4caefd614833dc8bb622f317ed076b8057fe8d'
883 'e3f84480ad5e83e4a61904a4f248fb397027357e1d30e463139815c6f'
884 'd4fd5ac5b8172a45230ecb6318a04f1455d84e5a8b', 16),
885 'public_exponent': int('10001', 16),
886 'private_exponent': int(
887 '6a7fd84fb85fad073b34406db74f8d61a6abc12196a961dd79565e9da'
888 '6e5187bce2d980250f7359575359270d91590bb0e427c71460b55d514'
889 '10b191bcf309fea131a92c8e702738fa719f1e0041f52e40e91f229f4'
890 'd96a1e6f172e15596b4510a6daec26105f2bebc53316b87bdf2131166'
891 '6070e8dfee69d52c71a976caae79c72b68d28580dc686d9f5129d225f'
892 '82b3d615513a882b3db91416b48ce08888213e37eeb9af800d81cab32'
893 '8ce420689903c00c7b5fd31b75503a6d419684d629', 16),
894 'p': int(
895 'f8eb97e98df12664eefdb761596a69ddcd0e76daece6ed4bf5a1b50ac'
896 '086f7928a4d2f8726a77e515b74da41988f220b1cc87aa1fc810ce99a'
897 '82f2d1ce821edced794c6941f42c7a1a0b8c4d28c75ec60b652279f61'
898 '54a762aed165d47dee367', 16),
899 'q': int(
900 'ed4d71d0a6e24b93c2e5f6b4bbe05f5fb0afa042d204fe3378d365c2f'
901 '288b6a8dad7efe45d153eef40cacc7b81ff934002d108994b94a5e472'
902 '8cd9c963375ae49965bda55cbf0efed8d6553b4027f2d86208a6e6b48'
Paul Kehrer09328bb2014-02-12 23:57:27 -0600903 '9c176128092d629e49d3d', 16),
904 'dmp1': int(
905 '2bb68bddfb0c4f56c8558bffaf892d8043037841e7fa81cfa61a38c5e'
906 '39b901c8ee71122a5da2227bd6cdeeb481452c12ad3d61d5e4f776a0a'
907 'b556591befe3e59e5a7fddb8345e1f2f35b9f4cee57c32414c086aec9'
908 '93e9353e480d9eec6289f', 16),
909 'dmq1': int(
910 '4ff897709fad079746494578e70fd8546130eeab5627c49b080f05ee4'
911 'ad9f3e4b7cba9d6a5dff113a41c3409336833f190816d8a6bc42e9bec'
912 '56b7567d0f3c9c696db619b245d901dd856db7c8092e77e9a1cccd56e'
913 'e4dba42c5fdb61aec2669', 16),
914 'iqmp': int(
915 '77b9d1137b50404a982729316efafc7dfe66d34e5a182600d5f30a0a8'
916 '512051c560d081d4d0a1835ec3d25a60f4e4d6aa948b2bf3dbb5b124c'
917 'bbc3489255a3a948372f6978496745f943e1db4f18382ceaa505dfc65'
Paul Kehrerefca2802014-02-17 20:55:13 -0600918 '757bb3f857a58dce52156', 16),
919 'examples': [
920 {
Paul Kehrer26811802014-02-19 16:32:11 -0600921 'message': b'06add75ab689de067744e69a2ebd4b90fa9383003'
922 b'cd05ff536cbf294cd215f0923b7fc9004f0aa1852'
923 b'71a1d0061fd0e9777ad1ec0c71591f578bf7b8e5a'
924 b'1',
925 'signature': b'4514210e541d5bad7dd60ae549b943acc44f213'
926 b'90df5b61318455a17610df5b74d84aed232f17e'
927 b'59d91dd2659922f812dbd49681690384b954e9a'
928 b'dfb9b1a968c0cbff763eceed62750c59164b5e0'
929 b'80a8fef3d55bfe2acfad2752a6a8459fa1fab49'
930 b'ad378c6964b23ee97fd1034610c5cc14c61e0eb'
931 b'fb1711f8ade96fe6557b38'
Paul Kehrerefca2802014-02-17 20:55:13 -0600932 }
933 ]
Alex Stapleton58f27ac2014-02-02 19:30:03 +0000934 },
935
936 {
937 'modulus': int(
938 'e6bd692ac96645790403fdd0f5beb8b9bf92ed10007fc365046419dd0'
939 '6c05c5b5b2f48ecf989e4ce269109979cbb40b4a0ad24d22483d1ee31'
940 '5ad4ccb1534268352691c524f6dd8e6c29d224cf246973aec86c5bf6b'
941 '1401a850d1b9ad1bb8cbcec47b06f0f8c7f45d3fc8f319299c5433ddb'
942 'c2b3053b47ded2ecd4a4caefd614833dc8bb622f317ed076b8057fe8d'
943 'e3f84480ad5e83e4a61904a4f248fb397027357e1d30e463139815c6f'
944 'd4fd5ac5b8172a45230ecb6318a04f1455d84e5a8b', 16),
945 'public_exponent': int('10001', 16)
946 }
947 )
948 )
949 assert vectors == expected
Ayrx4300f6c2014-02-09 15:15:13 +0800950
951
Paul Kehrer3fe91502014-03-29 12:08:39 -0500952def test_load_pkcs1_oaep_vectors():
953 vector_data = textwrap.dedent("""
954 Test vectors for RSA-OAEP
955 =========================
956
957 This file contains test vectors for the RSA-OAEP encryption
958
959 Key lengths:
960
961 Key 1: 1024 bits
962 # <snip>
963 ===========================================================================
964 # Example 1: A 1024-bit RSA key pair
965 # -----------------------------------
966
967
968 # Public key
969 # ----------
970
971 # Modulus:
972 a8 b3 b2 84 af 8e b5 0b 38 70 34 a8 60 f1 46 c4
973 91 9f 31 87 63 cd 6c 55 98 c8 ae 48 11 a1 e0 ab
974 c4 c7 e0 b0 82 d6 93 a5 e7 fc ed 67 5c f4 66 85
975 12 77 2c 0c bc 64 a7 42 c6 c6 30 f5 33 c8 cc 72
976 f6 2a e8 33 c4 0b f2 58 42 e9 84 bb 78 bd bf 97
977 c0 10 7d 55 bd b6 62 f5 c4 e0 fa b9 84 5c b5 14
978 8e f7 39 2d d3 aa ff 93 ae 1e 6b 66 7b b3 d4 24
979 76 16 d4 f5 ba 10 d4 cf d2 26 de 88 d3 9f 16 fb
980
981 # Exponent:
982 01 00 01
983
984 # Private key
985 # -----------
986
987 # Modulus:
988 a8 b3 b2 84 af 8e b5 0b 38 70 34 a8 60 f1 46 c4
989 91 9f 31 87 63 cd 6c 55 98 c8 ae 48 11 a1 e0 ab
990 c4 c7 e0 b0 82 d6 93 a5 e7 fc ed 67 5c f4 66 85
991 12 77 2c 0c bc 64 a7 42 c6 c6 30 f5 33 c8 cc 72
992 f6 2a e8 33 c4 0b f2 58 42 e9 84 bb 78 bd bf 97
993 c0 10 7d 55 bd b6 62 f5 c4 e0 fa b9 84 5c b5 14
994 8e f7 39 2d d3 aa ff 93 ae 1e 6b 66 7b b3 d4 24
995 76 16 d4 f5 ba 10 d4 cf d2 26 de 88 d3 9f 16 fb
996
997 # Public exponent:
998 01 00 01
999
1000 # Exponent:
1001 53 33 9c fd b7 9f c8 46 6a 65 5c 73 16 ac a8 5c
1002 55 fd 8f 6d d8 98 fd af 11 95 17 ef 4f 52 e8 fd
1003 8e 25 8d f9 3f ee 18 0f a0 e4 ab 29 69 3c d8 3b
1004 15 2a 55 3d 4a c4 d1 81 2b 8b 9f a5 af 0e 7f 55
1005 fe 73 04 df 41 57 09 26 f3 31 1f 15 c4 d6 5a 73
1006 2c 48 31 16 ee 3d 3d 2d 0a f3 54 9a d9 bf 7c bf
1007 b7 8a d8 84 f8 4d 5b eb 04 72 4d c7 36 9b 31 de
1008 f3 7d 0c f5 39 e9 cf cd d3 de 65 37 29 ea d5 d1
1009
1010 # Prime 1:
1011 d3 27 37 e7 26 7f fe 13 41 b2 d5 c0 d1 50 a8 1b
1012 58 6f b3 13 2b ed 2f 8d 52 62 86 4a 9c b9 f3 0a
1013 f3 8b e4 48 59 8d 41 3a 17 2e fb 80 2c 21 ac f1
1014 c1 1c 52 0c 2f 26 a4 71 dc ad 21 2e ac 7c a3 9d
1015
1016 # Prime 2:
1017 cc 88 53 d1 d5 4d a6 30 fa c0 04 f4 71 f2 81 c7
1018 b8 98 2d 82 24 a4 90 ed be b3 3d 3e 3d 5c c9 3c
1019 47 65 70 3d 1d d7 91 64 2f 1f 11 6a 0d d8 52 be
1020 24 19 b2 af 72 bf e9 a0 30 e8 60 b0 28 8b 5d 77
1021
1022 # Prime exponent 1:
1023 0e 12 bf 17 18 e9 ce f5 59 9b a1 c3 88 2f e8 04
1024 6a 90 87 4e ef ce 8f 2c cc 20 e4 f2 74 1f b0 a3
1025 3a 38 48 ae c9 c9 30 5f be cb d2 d7 68 19 96 7d
1026 46 71 ac c6 43 1e 40 37 96 8d b3 78 78 e6 95 c1
1027
1028 # Prime exponent 2:
1029 95 29 7b 0f 95 a2 fa 67 d0 07 07 d6 09 df d4 fc
1030 05 c8 9d af c2 ef 6d 6e a5 5b ec 77 1e a3 33 73
1031 4d 92 51 e7 90 82 ec da 86 6e fe f1 3c 45 9e 1a
1032 63 13 86 b7 e3 54 c8 99 f5 f1 12 ca 85 d7 15 83
1033
1034 # Coefficient:
1035 4f 45 6c 50 24 93 bd c0 ed 2a b7 56 a3 a6 ed 4d
1036 67 35 2a 69 7d 42 16 e9 32 12 b1 27 a6 3d 54 11
1037 ce 6f a9 8d 5d be fd 73 26 3e 37 28 14 27 43 81
1038 81 66 ed 7d d6 36 87 dd 2a 8c a1 d2 f4 fb d8 e1
1039
1040 # RSA-OAEP encryption of 6 random messages with random seeds
1041 # -----------------------------------------------------------
1042
1043 # OAEP Example 1.1
1044 # ------------------
1045
1046 # Message:
1047 66 28 19 4e 12 07 3d b0 3b a9 4c da 9e f9 53 23
1048 97 d5 0d ba 79 b9 87 00 4a fe fe 34
1049
1050 # Seed:
1051 18 b7 76 ea 21 06 9d 69 77 6a 33 e9 6b ad 48 e1
1052 dd a0 a5 ef
1053
1054 # Encryption:
1055 35 4f e6 7b 4a 12 6d 5d 35 fe 36 c7 77 79 1a 3f
1056 7b a1 3d ef 48 4e 2d 39 08 af f7 22 fa d4 68 fb
1057 21 69 6d e9 5d 0b e9 11 c2 d3 17 4f 8a fc c2 01
1058 03 5f 7b 6d 8e 69 40 2d e5 45 16 18 c2 1a 53 5f
1059 a9 d7 bf c5 b8 dd 9f c2 43 f8 cf 92 7d b3 13 22
1060 d6 e8 81 ea a9 1a 99 61 70 e6 57 a0 5a 26 64 26
1061 d9 8c 88 00 3f 84 77 c1 22 70 94 a0 d9 fa 1e 8c
1062 40 24 30 9c e1 ec cc b5 21 00 35 d4 7a c7 2e 8a
1063
1064 # OAEP Example 1.2
1065 # ------------------
1066
1067 # Message:
1068 75 0c 40 47 f5 47 e8 e4 14 11 85 65 23 29 8a c9
1069 ba e2 45 ef af 13 97 fb e5 6f 9d d5
1070
1071 # Seed:
1072 0c c7 42 ce 4a 9b 7f 32 f9 51 bc b2 51 ef d9 25
1073 fe 4f e3 5f
1074
1075 # Encryption:
1076 64 0d b1 ac c5 8e 05 68 fe 54 07 e5 f9 b7 01 df
1077 f8 c3 c9 1e 71 6c 53 6f c7 fc ec 6c b5 b7 1c 11
1078 65 98 8d 4a 27 9e 15 77 d7 30 fc 7a 29 93 2e 3f
1079 00 c8 15 15 23 6d 8d 8e 31 01 7a 7a 09 df 43 52
1080 d9 04 cd eb 79 aa 58 3a dc c3 1e a6 98 a4 c0 52
1081 83 da ba 90 89 be 54 91 f6 7c 1a 4e e4 8d c7 4b
1082 bb e6 64 3a ef 84 66 79 b4 cb 39 5a 35 2d 5e d1
1083 15 91 2d f6 96 ff e0 70 29 32 94 6d 71 49 2b 44
1084
1085 # =============================================
1086 """).splitlines()
1087
1088 vectors = load_pkcs1_vectors(vector_data)
1089 expected = [
1090 (
1091 {
1092 'modulus': int(
1093 'a8b3b284af8eb50b387034a860f146c4919f318763cd6c5598c8ae481'
1094 '1a1e0abc4c7e0b082d693a5e7fced675cf4668512772c0cbc64a742c6'
1095 'c630f533c8cc72f62ae833c40bf25842e984bb78bdbf97c0107d55bdb'
1096 '662f5c4e0fab9845cb5148ef7392dd3aaff93ae1e6b667bb3d4247616'
1097 'd4f5ba10d4cfd226de88d39f16fb', 16),
1098 'public_exponent': int('10001', 16),
1099 'private_exponent': int(
1100 '53339cfdb79fc8466a655c7316aca85c55fd8f6dd898fdaf119517ef4'
1101 'f52e8fd8e258df93fee180fa0e4ab29693cd83b152a553d4ac4d1812b'
1102 '8b9fa5af0e7f55fe7304df41570926f3311f15c4d65a732c483116ee3'
1103 'd3d2d0af3549ad9bf7cbfb78ad884f84d5beb04724dc7369b31def37d'
1104 '0cf539e9cfcdd3de653729ead5d1', 16),
1105 'p': int(
1106 'd32737e7267ffe1341b2d5c0d150a81b586fb3132bed2f8d5262864a9'
1107 'cb9f30af38be448598d413a172efb802c21acf1c11c520c2f26a471dc'
1108 'ad212eac7ca39d', 16),
1109 'q': int(
1110 'cc8853d1d54da630fac004f471f281c7b8982d8224a490edbeb33d3e3'
1111 'd5cc93c4765703d1dd791642f1f116a0dd852be2419b2af72bfe9a030'
1112 'e860b0288b5d77', 16),
1113 'dmp1': int(
1114 '0e12bf1718e9cef5599ba1c3882fe8046a90874eefce8f2ccc20e4f27'
1115 '41fb0a33a3848aec9c9305fbecbd2d76819967d4671acc6431e403796'
1116 '8db37878e695c1', 16),
1117 'dmq1': int(
1118 '95297b0f95a2fa67d00707d609dfd4fc05c89dafc2ef6d6ea55bec771'
1119 'ea333734d9251e79082ecda866efef13c459e1a631386b7e354c899f5'
1120 'f112ca85d71583', 16),
1121 'iqmp': int(
1122 '4f456c502493bdc0ed2ab756a3a6ed4d67352a697d4216e93212b127a'
1123 '63d5411ce6fa98d5dbefd73263e3728142743818166ed7dd63687dd2a'
1124 '8ca1d2f4fbd8e1', 16),
1125 'examples': [
1126 {
1127 'message': b'6628194e12073db03ba94cda9ef9532397d50dba7'
1128 b'9b987004afefe34',
1129 'seed': b'18b776ea21069d69776a33e96bad48e1dda0a5ef',
1130 'encryption': b'354fe67b4a126d5d35fe36c777791a3f7ba13d'
1131 b'ef484e2d3908aff722fad468fb21696de95d0b'
1132 b'e911c2d3174f8afcc201035f7b6d8e69402de5'
1133 b'451618c21a535fa9d7bfc5b8dd9fc243f8cf92'
1134 b'7db31322d6e881eaa91a996170e657a05a2664'
1135 b'26d98c88003f8477c1227094a0d9fa1e8c4024'
1136 b'309ce1ecccb5210035d47ac72e8a'
1137 }, {
1138 'message': b'750c4047f547e8e41411856523298ac9bae245efa'
1139 b'f1397fbe56f9dd5',
1140 'seed': b'0cc742ce4a9b7f32f951bcb251efd925fe4fe35f',
1141 'encryption': b'640db1acc58e0568fe5407e5f9b701dff8c3c9'
1142 b'1e716c536fc7fcec6cb5b71c1165988d4a279e'
1143 b'1577d730fc7a29932e3f00c81515236d8d8e31'
1144 b'017a7a09df4352d904cdeb79aa583adcc31ea6'
1145 b'98a4c05283daba9089be5491f67c1a4ee48dc7'
1146 b'4bbbe6643aef846679b4cb395a352d5ed11591'
1147 b'2df696ffe0702932946d71492b44'
1148 }
1149 ]
1150 },
1151
1152 {
1153 'modulus': int(
1154 'a8b3b284af8eb50b387034a860f146c4919f318763cd6c5598c8ae481'
1155 '1a1e0abc4c7e0b082d693a5e7fced675cf4668512772c0cbc64a742c6'
1156 'c630f533c8cc72f62ae833c40bf25842e984bb78bdbf97c0107d55bdb'
1157 '662f5c4e0fab9845cb5148ef7392dd3aaff93ae1e6b667bb3d4247616'
1158 'd4f5ba10d4cfd226de88d39f16fb', 16),
1159 'public_exponent': int('10001', 16),
1160 }
1161 )
1162 ]
1163 assert vectors == expected
1164
1165
Ayrx4300f6c2014-02-09 15:15:13 +08001166def test_load_hotp_vectors():
1167 vector_data = textwrap.dedent("""
1168 # HOTP Test Vectors
1169 # RFC 4226 Appendix D
1170
1171 COUNT = 0
1172 COUNTER = 0
1173 INTERMEDIATE = cc93cf18508d94934c64b65d8ba7667fb7cde4b0
1174 TRUNCATED = 4c93cf18
1175 HOTP = 755224
Ayrxefc68382014-02-10 00:01:05 +08001176 SECRET = 12345678901234567890
Ayrx4300f6c2014-02-09 15:15:13 +08001177
1178 COUNT = 1
1179 COUNTER = 1
1180 INTERMEDIATE = 75a48a19d4cbe100644e8ac1397eea747a2d33ab
1181 TRUNCATED = 41397eea
1182 HOTP = 287082
Ayrxefc68382014-02-10 00:01:05 +08001183 SECRET = 12345678901234567890
1184
Ayrx4300f6c2014-02-09 15:15:13 +08001185
1186 COUNT = 2
1187 COUNTER = 2
1188 INTERMEDIATE = 0bacb7fa082fef30782211938bc1c5e70416ff44
1189 TRUNCATED = 82fef30
1190 HOTP = 359152
Ayrxefc68382014-02-10 00:01:05 +08001191 SECRET = 12345678901234567890
1192
Ayrx4300f6c2014-02-09 15:15:13 +08001193
1194 COUNT = 3
1195 COUNTER = 3
1196 INTERMEDIATE = 66c28227d03a2d5529262ff016a1e6ef76557ece
1197 TRUNCATED = 66ef7655
1198 HOTP = 969429
Ayrxefc68382014-02-10 00:01:05 +08001199 SECRET = 12345678901234567890
Ayrx4300f6c2014-02-09 15:15:13 +08001200 """).splitlines()
1201
1202 assert load_nist_vectors(vector_data) == [
1203 {
1204 "counter": b"0",
1205 "intermediate": b"cc93cf18508d94934c64b65d8ba7667fb7cde4b0",
1206 "truncated": b"4c93cf18",
1207 "hotp": b"755224",
Ayrxefc68382014-02-10 00:01:05 +08001208 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001209 },
1210 {
1211 "counter": b"1",
1212 "intermediate": b"75a48a19d4cbe100644e8ac1397eea747a2d33ab",
1213 "truncated": b"41397eea",
1214 "hotp": b"287082",
Ayrxefc68382014-02-10 00:01:05 +08001215 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001216 },
1217 {
1218 "counter": b"2",
1219 "intermediate": b"0bacb7fa082fef30782211938bc1c5e70416ff44",
1220 "truncated": b"82fef30",
1221 "hotp": b"359152",
Ayrxefc68382014-02-10 00:01:05 +08001222 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001223 },
1224 {
1225 "counter": b"3",
1226 "intermediate": b"66c28227d03a2d5529262ff016a1e6ef76557ece",
1227 "truncated": b"66ef7655",
1228 "hotp": b"969429",
Ayrxefc68382014-02-10 00:01:05 +08001229 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001230 },
1231 ]
1232
1233
1234def test_load_totp_vectors():
1235 vector_data = textwrap.dedent("""
1236 # TOTP Test Vectors
1237 # RFC 6238 Appendix B
1238
1239 COUNT = 0
1240 TIME = 59
1241 TOTP = 94287082
1242 MODE = SHA1
Ayrxefc68382014-02-10 00:01:05 +08001243 SECRET = 12345678901234567890
Ayrx4300f6c2014-02-09 15:15:13 +08001244
1245 COUNT = 1
1246 TIME = 59
1247 TOTP = 46119246
1248 MODE = SHA256
Ayrxefc68382014-02-10 00:01:05 +08001249 SECRET = 12345678901234567890
Ayrx4300f6c2014-02-09 15:15:13 +08001250
1251 COUNT = 2
1252 TIME = 59
1253 TOTP = 90693936
1254 MODE = SHA512
Ayrxefc68382014-02-10 00:01:05 +08001255 SECRET = 12345678901234567890
Ayrx4300f6c2014-02-09 15:15:13 +08001256 """).splitlines()
1257
1258 assert load_nist_vectors(vector_data) == [
1259 {
1260 "time": b"59",
1261 "totp": b"94287082",
1262 "mode": b"SHA1",
Ayrxefc68382014-02-10 00:01:05 +08001263 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001264 },
1265 {
1266 "time": b"59",
1267 "totp": b"46119246",
1268 "mode": b"SHA256",
Ayrxefc68382014-02-10 00:01:05 +08001269 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001270 },
1271 {
1272 "time": b"59",
1273 "totp": b"90693936",
1274 "mode": b"SHA512",
Ayrxefc68382014-02-10 00:01:05 +08001275 "secret": b"12345678901234567890",
Ayrx4300f6c2014-02-09 15:15:13 +08001276 },
1277 ]
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001278
1279
1280def test_load_rsa_nist_vectors():
1281 vector_data = textwrap.dedent("""
Paul Kehrer61666eb2014-03-18 07:53:04 -04001282 # CAVS 11.4
1283 # "SigGen PKCS#1 RSASSA-PSS" information
1284 # Mod sizes selected: 1024 1536 2048 3072 4096
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001285 # SHA Algorithm selected:SHA1 SHA224 SHA256 SHA384 SHA512
1286 # Salt len: 20
1287
1288 [mod = 1024]
1289
1290 n = bcb47b2e0dafcba81ff2a2b5cb115ca7e757184c9d72bcdcda707a146b3b4e29989d
1291
1292 e = 00000000000000000000000000000000000000000000000000000000000000000010001
1293 SHAAlg = SHA1
1294 Msg = 1248f62a4389f42f7b4bb131053d6c88a994db2075b912ccbe3ea7dc611714f14e
1295 S = 682cf53c1145d22a50caa9eb1a9ba70670c5915e0fdfde6457a765de2a8fe12de97
1296
1297 SHAAlg = SHA384
1298 Msg = e511903c2f1bfba245467295ac95413ac4746c984c3750a728c388aa628b0ebf
1299 S = 9c748702bbcc1f9468864cd360c8c39d007b2d8aaee833606c70f7593cf0d1519
1300
1301 [mod = 1024]
1302
1303 n = 1234567890
1304
1305 e = 0010001
1306
1307 SHAAlg = SHA512
1308 Msg = 3456781293fab829
1309 S = deadbeef0000
1310 """).splitlines()
1311
1312 vectors = load_rsa_nist_vectors(vector_data)
1313 assert vectors == [
1314 {
1315 "modulus": int("bcb47b2e0dafcba81ff2a2b5cb115ca7e757184c9d72bcdcda"
1316 "707a146b3b4e29989d", 16),
1317 "public_exponent": 65537,
Paul Kehrerdde59332014-03-16 17:57:20 -04001318 "algorithm": "SHA1",
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001319 "salt_length": 20,
1320 "msg": b"1248f62a4389f42f7b4bb131053d6c88a994db2075b912ccbe3ea7dc6"
1321 b"11714f14e",
1322 "s": b"682cf53c1145d22a50caa9eb1a9ba70670c5915e0fdfde6457a765de2a8"
Paul Kehrer62707f12014-03-18 07:19:14 -04001323 b"fe12de97",
1324 "fail": False
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001325 },
1326 {
1327 "modulus": int("bcb47b2e0dafcba81ff2a2b5cb115ca7e757184c9d72bcdcda"
1328 "707a146b3b4e29989d", 16),
1329 "public_exponent": 65537,
Paul Kehrerdde59332014-03-16 17:57:20 -04001330 "algorithm": "SHA384",
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001331 "salt_length": 20,
1332 "msg": b"e511903c2f1bfba245467295ac95413ac4746c984c3750a728c388aa6"
1333 b"28b0ebf",
1334 "s": b"9c748702bbcc1f9468864cd360c8c39d007b2d8aaee833606c70f7593cf"
Paul Kehrer62707f12014-03-18 07:19:14 -04001335 b"0d1519",
1336 "fail": False
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001337 },
1338 {
1339 "modulus": 78187493520,
1340 "public_exponent": 65537,
Paul Kehrerdde59332014-03-16 17:57:20 -04001341 "algorithm": "SHA512",
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001342 "salt_length": 20,
1343 "msg": b"3456781293fab829",
Paul Kehrer62707f12014-03-18 07:19:14 -04001344 "s": b"deadbeef0000",
1345 "fail": False
1346 },
1347 ]
1348
1349
Paul Kehrerafc25182014-03-18 07:51:56 -04001350def test_load_rsa_nist_pkcs1v15_verification_vectors():
Paul Kehrer62707f12014-03-18 07:19:14 -04001351 vector_data = textwrap.dedent("""
Paul Kehrer61666eb2014-03-18 07:53:04 -04001352 # CAVS 11.0
1353 # "SigVer PKCS#1 Ver 1.5" information
1354 # Mod sizes selected: 1024 1536 2048 3072 4096
1355 # SHA Algorithm selected:SHA1 SHA224 SHA256 SHA384 SHA512
1356 # Generated on Wed Mar 02 00:13:02 2011
Paul Kehrer62707f12014-03-18 07:19:14 -04001357
1358 [mod = 1024]
1359
1360 n = be499b5e7f06c83fa0293e31465c8eb6b58af920bae52a7b5b9bfeb7aa72db126411
1361
1362 p = e7a80c5d211c06acb900939495f26d365fc2b4825b75e356f89003eaa5931e6be5c3
1363 q = d248aa248000f720258742da67b711940c8f76e1ecd52b67a6ffe1e49354d66ff84f
1364
1365 SHAAlg = SHA1
1366 e = 00000000000000000000000000000000000000000000000000000000000000000011
1367 d = 0d0f17362bdad181db4e1fe03e8de1a3208989914e14bf269558826bfa20faf4b68d
1368 Msg = 6b9cfac0ba1c7890b13e381ce752195cc1375237db2afcf6a9dcd1f95ec733a80c
1369 S = 562d87b5781c01d166fef3972669a0495c145b898a17df4743fbefb0a1582bd6ba9d
1370 SaltVal = 11223344555432167890
1371 Result = F (3 - Signature changed )
1372
1373 SHAAlg = SHA1
1374 e = 0000000000003
1375 d = bfa20faf4b68d
1376 Msg = 2a67c70ff14f9b34ddb42e6f89d5971057a0da980fc9ae70c81a84da0c0ac42737
1377 S = 2b91c6ae2b3c46ff18d5b7abe239634cb752d0acb53eea0ccd8ea8483036a50e8faf
1378 SaltVal = 11223344555432167890
1379 Result = P
1380 """).splitlines()
1381
1382 vectors = load_rsa_nist_vectors(vector_data)
1383 assert vectors == [
1384 {
1385 "modulus": int("be499b5e7f06c83fa0293e31465c8eb6b58af920bae52a7b5b"
1386 "9bfeb7aa72db126411", 16),
1387 "p": int("e7a80c5d211c06acb900939495f26d365fc2b4825b75e356f89003ea"
1388 "a5931e6be5c3", 16),
1389 "q": int("d248aa248000f720258742da67b711940c8f76e1ecd52b67a6ffe1e4"
1390 "9354d66ff84f", 16),
1391 "public_exponent": 17,
1392 "algorithm": "SHA1",
1393 "private_exponent": int("0d0f17362bdad181db4e1fe03e8de1a3208989914"
1394 "e14bf269558826bfa20faf4b68d", 16),
1395 "msg": b"6b9cfac0ba1c7890b13e381ce752195cc1375237db2afcf6a9dcd1f95"
1396 b"ec733a80c",
1397 "s": b"562d87b5781c01d166fef3972669a0495c145b898a17df4743fbefb0a15"
1398 b"82bd6ba9d",
1399 "saltval": b"11223344555432167890",
1400 "fail": True
1401 },
1402 {
1403 "modulus": int("be499b5e7f06c83fa0293e31465c8eb6b58af920bae52a7b5b"
1404 "9bfeb7aa72db126411", 16),
1405 "p": int("e7a80c5d211c06acb900939495f26d365fc2b4825b75e356f89003ea"
1406 "a5931e6be5c3", 16),
1407 "q": int("d248aa248000f720258742da67b711940c8f76e1ecd52b67a6ffe1e4"
1408 "9354d66ff84f", 16),
1409 "public_exponent": 3,
1410 "algorithm": "SHA1",
1411 "private_exponent": int("bfa20faf4b68d", 16),
1412 "msg": b"2a67c70ff14f9b34ddb42e6f89d5971057a0da980fc9ae70c81a84da0"
1413 b"c0ac42737",
1414 "s": b"2b91c6ae2b3c46ff18d5b7abe239634cb752d0acb53eea0ccd8ea848303"
1415 b"6a50e8faf",
1416 "saltval": b"11223344555432167890",
1417 "fail": False
Paul Kehrer2f2a2062014-03-10 23:30:28 -04001418 },
1419 ]
Mohammed Attia987cc702014-03-12 16:07:21 +02001420
1421
Paul Kehrerafc25182014-03-18 07:51:56 -04001422def test_load_rsa_nist_pss_verification_vectors():
1423 vector_data = textwrap.dedent("""
Paul Kehrer61666eb2014-03-18 07:53:04 -04001424 # CAVS 11.0
1425 # "SigVer PKCS#1 RSASSA-PSS" information
1426 # Mod sizes selected: 1024 1536 2048 3072 4096
Paul Kehrerafc25182014-03-18 07:51:56 -04001427 # SHA Algorithm selected:SHA1 SHA224 SHA256 SHA384 SHA512
1428 # Salt len: 10
1429 # Generated on Wed Mar 02 00:25:22 2011
1430
1431 [mod = 1024]
1432
1433 n = be499b5e7f06c83fa0293e31465c8eb6b5
1434
1435 p = e7a80c5d211c06acb900939495f26d365f
1436 q = d248aa248000f720258742da67b711940c
1437
1438 SHAAlg = SHA1
1439 e = 00000000000000011
1440 d = c8e26a88239672cf49b3422a07c4d834ba
1441 Msg = 6b9cfac0ba1c7890b13e381ce752195c
1442 S = 562d87b5781c01d166fef3972669a0495c
1443 SaltVal = 11223344555432167890
1444 Result = F (3 - Signature changed )
1445
1446 SHAAlg = SHA384
1447 e = 000003
1448 d = 0d0f17362bdad181db4e1fe03e8de1a320
1449 Msg = 2a67c70ff14f9b34ddb42e6f89d59710
1450 S = 2b91c6ae2b3c46ff18d5b7abe239634cb7
1451 SaltVal = 11223344555432167890
1452 Result = P
1453 """).splitlines()
1454
1455 vectors = load_rsa_nist_vectors(vector_data)
1456 assert vectors == [
1457 {
1458 "modulus": int("be499b5e7f06c83fa0293e31465c8eb6b5", 16),
1459 "p": int("e7a80c5d211c06acb900939495f26d365f", 16),
1460 "q": int("d248aa248000f720258742da67b711940c", 16),
1461 "public_exponent": 17,
1462 "algorithm": "SHA1",
1463 "private_exponent": int("c8e26a88239672cf49b3422a07c4d834ba", 16),
1464 "msg": b"6b9cfac0ba1c7890b13e381ce752195c",
1465 "s": b"562d87b5781c01d166fef3972669a0495c",
1466 "saltval": b"11223344555432167890",
1467 "salt_length": 10,
1468 "fail": True
1469 },
1470 {
1471 "modulus": int("be499b5e7f06c83fa0293e31465c8eb6b5", 16),
1472 "p": int("e7a80c5d211c06acb900939495f26d365f", 16),
1473 "q": int("d248aa248000f720258742da67b711940c", 16),
1474 "public_exponent": 3,
1475 "algorithm": "SHA384",
1476 "private_exponent": int("0d0f17362bdad181db4e1fe03e8de1a320", 16),
1477 "msg": b"2a67c70ff14f9b34ddb42e6f89d59710",
1478 "s": b"2b91c6ae2b3c46ff18d5b7abe239634cb7",
1479 "saltval": b"11223344555432167890",
1480 "salt_length": 10,
1481 "fail": False
1482 },
1483 ]
1484
1485
Mohammed Attia987cc702014-03-12 16:07:21 +02001486def test_load_fips_dsa_key_pair_vectors():
1487 vector_data = textwrap.dedent("""
1488 # CAVS 11.1
1489 # "KeyPair" information
1490 # Mod sizes selected: L=1024, N=160:: L=2048, N=224 :: L=2048, N=256 :: L
1491=3072, N=256
1492 # Generated on Wed May 04 08:50:52 2011
1493
1494
1495 [mod = L=1024, N=160]
1496
1497 P = d38311e2cd388c3ed698e82fdf88eb92b5a9a483dc88005d4b725ef341eabb47cf8a7a\
14988a41e792a156b7ce97206c4f9c5ce6fc5ae7912102b6b502e59050b5b21ce263dddb2044b65223\
14996f4d42ab4b5d6aa73189cef1ace778d7845a5c1c1c7147123188f8dc551054ee162b634d60f097\
1500f719076640e20980a0093113a8bd73
1501 Q = 96c5390a8b612c0e422bb2b0ea194a3ec935a281
1502 G = 06b7861abbd35cc89e79c52f68d20875389b127361ca66822138ce4991d2b862259d6b\
15034548a6495b195aa0e0b6137ca37eb23b94074d3c3d300042bdf15762812b6333ef7b07ceba7860\
15047610fcc9ee68491dbc1e34cd12615474e52b18bc934fb00c61d39e7da8902291c4434a4e2224c3\
1505f4fd9f93cd6f4f17fc076341a7e7d9
1506
1507 X = 8185fee9cc7c0e91fd85503274f1cd5a3fd15a49
1508 Y = 6f26d98d41de7d871b6381851c9d91fa03942092ab6097e76422070edb71db44ff5682\
150980fdb1709f8fc3feab39f1f824adaeb2a298088156ac31af1aa04bf54f475bdcfdcf2f8a2dd973\
1510e922d83e76f016558617603129b21c70bf7d0e5dc9e68fe332e295b65876eb9a12fe6fca9f1a1c\
1511e80204646bf99b5771d249a6fea627
1512
1513 X = 85322d6ea73083064376099ca2f65f56e8522d9b
1514 Y = 21f8690f717c9f4dcb8f4b6971de2f15b9231fcf41b7eeb997d781f240bfdddfd2090d\
151522083c26cca39bf37c9caf1ec89518ea64845a50d747b49131ffff6a2fd11ea7bacbb93c7d0513\
15167383a06365af82225dd3713ca5a45006316f53bd12b0e260d5f79795e5a4c9f353f12867a1d320\
15172394673ada8563b71555e53f415254
1518
Mohammed Attia2da00132014-03-13 15:07:20 +02001519 [mod = L=2048, N=256]
Mohammed Attia987cc702014-03-12 16:07:21 +02001520
1521 P = ea1fb1af22881558ef93be8a5f8653c5a559434c49c8c2c12ace5e9c41434c9cf0a8e9\
1522498acb0f4663c08b4484eace845f6fb17dac62c98e706af0fc74e4da1c6c2b3fbf5a1d58ff82fc\
15231a66f3e8b12252c40278fff9dd7f102eed2cb5b7323ebf1908c234d935414dded7f8d244e54561\
1524b0dca39b301de8c49da9fb23df33c6182e3f983208c560fb5119fbf78ebe3e6564ee235c6a15cb\
1525b9ac247baba5a423bc6582a1a9d8a2b4f0e9e3d9dbac122f750dd754325135257488b1f6ecabf2\
15261bff2947fe0d3b2cb7ffe67f4e7fcdf1214f6053e72a5bb0dd20a0e9fe6db2df0a908c36e95e60\
1527bf49ca4368b8b892b9c79f61ef91c47567c40e1f80ac5aa66ef7
1528 Q = 8ec73f3761caf5fdfe6e4e82098bf10f898740dcb808204bf6b18f507192c19d
1529 G = e4c4eca88415b23ecf811c96e48cd24200fe916631a68a684e6ccb6b1913413d344d1d\
15308d84a333839d88eee431521f6e357c16e6a93be111a98076739cd401bab3b9d565bf4fb99e9d18\
15315b1e14d61c93700133f908bae03e28764d107dcd2ea7674217622074bb19efff482f5f5c1a86d5\
1532551b2fc68d1c6e9d8011958ef4b9c2a3a55d0d3c882e6ad7f9f0f3c61568f78d0706b10a26f23b\
15334f197c322b825002284a0aca91807bba98ece912b80e10cdf180cf99a35f210c1655fbfdd74f13\
1534b1b5046591f8403873d12239834dd6c4eceb42bf7482e1794a1601357b629ddfa971f2ed273b14\
15356ec1ca06d0adf55dd91d65c37297bda78c6d210c0bc26e558302
1536
1537 X = 405772da6e90d809e77d5de796562a2dd4dfd10ef00a83a3aba6bd818a0348a1
1538 Y = 6b32e31ab9031dc4dd0b5039a78d07826687ab087ae6de4736f5b0434e1253092e8a0b\
1539231f9c87f3fc8a4cb5634eb194bf1b638b7a7889620ce6711567e36aa36cda4604cfaa601a4591\
15408371d4ccf68d8b10a50a0460eb1dc0fff62ef5e6ee4d473e18ea4a66c196fb7e677a49b48241a0\
1541b4a97128eff30fa437050501a584f8771e7280d26d5af30784039159c11ebfea10b692fd0a5821\
15425eeb18bff117e13f08db792ed4151a218e4bed8dddfb0793225bd1e9773505166f4bd8cedbb286\
1543ea28232972da7bae836ba97329ba6b0a36508e50a52a7675e476d4d4137eae13f22a9d2fefde70\
15448ba8f34bf336c6e76331761e4b0617633fe7ec3f23672fb19d27
1545
1546 X = 0e0b95e31fda3f888059c46c3002ef8f2d6be112d0209aeb9e9545da67aeea80
1547 Y = 778082b77ddba6f56597cc74c3a612abf2ddbd85cc81430c99ab843c1f630b9db01399\
154865f563978164f9bf3a8397256be714625cd41cd7fa0067d94ea66d7e073f7125af692ad01371d4\
1549a17f4550590378f2b074030c20e36911598a1018772f61be3b24de4be5a388ccc09e15a92819c3\
15501dec50de9fde105b49eaa097b9d13d9219eeb33b628facfd1c78a7159c8430d0647c506e7e3de7\
15514763cb351eada72c00bef3c9641881e6254870c1e6599f8ca2f1bbb74f39a905e3a34e4544168e\
15526e50c9e3305fd09cab6ed4aff6fda6e0d5bf375c81ac9054406d9193b003c89272f1bd83d48250\
1553134b65c77c2b6332d38d34d9016f0e8975536ad6c348a1faedb0
1554
Mohammed Attia2da00132014-03-13 15:07:20 +02001555 [mod = L=3072, N=256]
1556
1557 P = f335666dd1339165af8b9a5e3835adfe15c158e4c3c7bd53132e7d5828c352f593a9a7\
155887760ce34b789879941f2f01f02319f6ae0b756f1a842ba54c85612ed632ee2d79ef17f06b77c6\
155941b7b080aff52a03fc2462e80abc64d223723c236deeb7d201078ec01ca1fbc1763139e25099a8\
15604ec389159c409792080736bd7caa816b92edf23f2c351f90074aa5ea2651b372f8b58a0a65554d\
1561b2561d706a63685000ac576b7e4562e262a14285a9c6370b290e4eb7757527d80b6c0fd5df831d\
156236f3d1d35f12ab060548de1605fd15f7c7aafed688b146a02c945156e284f5b71282045aba9844\
1563d48b5df2e9e7a5887121eae7d7b01db7cdf6ff917cd8eb50c6bf1d54f90cce1a491a9c74fea88f\
15647e7230b047d16b5a6027881d6f154818f06e513faf40c8814630e4e254f17a47bfe9cb519b9828\
15659935bf17673ae4c8033504a20a898d0032ee402b72d5986322f3bdfb27400561f7476cd715eaab\
1566b7338b854e51fc2fa026a5a579b6dcea1b1c0559c13d3c1136f303f4b4d25ad5b692229957
1567 Q = d3eba6521240694015ef94412e08bf3cf8d635a455a398d6f210f6169041653b
1568 G = ce84b30ddf290a9f787a7c2f1ce92c1cbf4ef400e3cd7ce4978db2104d7394b493c183\
156932c64cec906a71c3778bd93341165dee8e6cd4ca6f13afff531191194ada55ecf01ff94d6cf7c4\
1570768b82dd29cd131aaf202aefd40e564375285c01f3220af4d70b96f1395420d778228f1461f5d0\
1571b8e47357e87b1fe3286223b553e3fc9928f16ae3067ded6721bedf1d1a01bfd22b9ae85fce7782\
15720d88cdf50a6bde20668ad77a707d1c60fcc5d51c9de488610d0285eb8ff721ff141f93a9fb23c1\
1573d1f7654c07c46e58836d1652828f71057b8aff0b0778ef2ca934ea9d0f37daddade2d823a4d8e3\
157462721082e279d003b575ee59fd050d105dfd71cd63154efe431a0869178d9811f4f231dc5dcf3b\
15750ec0f2b0f9896c32ec6c7ee7d60aa97109e09224907328d4e6acd10117e45774406c4c947da802\
15760649c3168f690e0bd6e91ac67074d1d436b58ae374523deaf6c93c1e6920db4a080b744804bb07\
15773cecfe83fa9398cf150afa286dc7eb7949750cf5001ce104e9187f7e16859afa8fd0d775ae
1578
1579 X = b2764c46113983777d3e7e97589f1303806d14ad9f2f1ef033097de954b17706
1580 Y = 814824e435e1e6f38daa239aad6dad21033afce6a3ebd35c1359348a0f2418871968c2\
1581babfc2baf47742148828f8612183178f126504da73566b6bab33ba1f124c15aa461555c2451d86\
1582c94ee21c3e3fc24c55527e01b1f03adcdd8ec5cb08082803a7b6a829c3e99eeb332a2cf5c035b0\
1583ce0078d3d414d31fa47e9726be2989b8d06da2e6cd363f5a7d1515e3f4925e0b32adeae3025cc5\
1584a996f6fd27494ea408763de48f3bb39f6a06514b019899b312ec570851637b8865cff3a52bf5d5\
15854ad5a19e6e400a2d33251055d0a440b50d53f4791391dc754ad02b9eab74c46b4903f9d76f8243\
158639914db108057af7cde657d41766a99991ac8787694f4185d6f91d7627048f827b405ec67bf2fe\
158756141c4c581d8c317333624e073e5879a82437cb0c7b435c0ce434e15965db1315d64895991e6b\
1588be7dac040c42052408bbc53423fd31098248a58f8a67da3a39895cd0cc927515d044c1e3cb6a32\
158959c3d0da354cce89ea3552c59609db10ee989986527436af21d9485ddf25f90f7dff6d2bae
1590
1591 X = 52e3e040efb30e1befd909a0bdbcfd140d005b1bff094af97186080262f1904d
1592 Y = a5ae6e8f9b7a68ab0516dad4d7b7d002126f811d5a52e3d35c6d387fcb43fd19bf7792\
1593362f9c98f8348aa058bb62376685f3d0c366c520d697fcd8416947151d4bbb6f32b53528a01647\
15949e99d2cd48d1fc679027c15f0042f207984efe05c1796bca8eba678dfdd00b80418e3ea840557e\
159573b09e003882f9a68edba3431d351d1ca07a8150b018fdbdf6c2f1ab475792a3ccaa6594472a45\
1596f8dc777b60bf67de3e0f65c20d11b7d59faedf83fbce52617f500d9e514947c455274c6e900464\
1597767fb56599b81344cf6d12c25cb2b7d038d7b166b6cf30534811c15d0e8ab880a2ac06786ae2dd\
1598de61329a78d526f65245380ce877e979c5b50de66c9c30d66382c8f254653d25a1eb1d3a4897d7\
1599623399b473ce712a2184cf2da1861706c41466806aefe41b497db82aca6c31c8f4aa68c17d1d9e\
1600380b57998917655783ec96e5234a131f7299398d36f1f5f84297a55ff292f1f060958c358fed34\
16016db2de45127ca728a9417b2c54203e33e53b9a061d924395b09afab8daf3e8dd7eedcec3ac
Mohammed Attia987cc702014-03-12 16:07:21 +02001602 """).splitlines()
1603
Mohammed Attia2da00132014-03-13 15:07:20 +02001604 expected = [
1605 {'g': int('06b7861abbd35cc89e79c52f68d20875389b127361ca66822138ce499'
1606 '1d2b862259d6b4548a6495b195aa0e0b6137ca37eb23b94074d3c3d3000'
1607 '42bdf15762812b6333ef7b07ceba78607610fcc9ee68491dbc1e34cd12'
1608 '615474e52b18bc934fb00c61d39e7da8902291c4434a4e2224c3f'
1609 '4fd9f93cd6f4f17fc076341a7e7d9', 16),
1610 'p': int('d38311e2cd388c3ed698e82fdf88eb92b5a9a483dc88005d4b725e'
1611 'f341eabb47cf8a7a8a41e792a156b7ce97206c4f9c5ce6fc5ae791210'
1612 '2b6b502e59050b5b21ce263dddb2044b652236f4d42ab4b5d6aa73189c'
1613 'ef1ace778d7845a5c1c1c7147123188f8dc551054ee162b634d60f097f7'
1614 '19076640e20980a0093113a8bd73', 16),
1615 'q': int('96c5390a8b612c0e422bb2b0ea194a3ec935a281', 16),
1616 'x': int('8185fee9cc7c0e91fd85503274f1cd5a3fd15a49', 16),
1617 'y': int('6f26d98d41de7d871b6381851c9d91fa03942092ab6097e76422'
1618 '070edb71db44ff568280fdb1709f8fc3feab39f1f824adaeb2a29808815'
1619 '6ac31af1aa04bf54f475bdcfdcf2f8a2dd973e922d83e76f01655861760'
1620 '3129b21c70bf7d0e5dc9e68fe332e295b65876eb9a12fe6fca9f1a1ce80'
1621 '204646bf99b5771d249a6fea627', 16)},
1622 {'g': int('06b7861abbd35cc89e79c52f68d20875389b127361ca66822138ce4991d'
1623 '2b862259d6b4548a6495b195aa0e0b6137ca37eb23b94074d3c3d30004'
1624 '2bdf15762812b6333ef7b07ceba78607610fcc9ee68491dbc1e34cd126'
1625 '15474e52b18bc934fb00c61d39e7da8902291c4434a4e2224c3f4fd9'
1626 'f93cd6f4f17fc076341a7e7d9', 16),
1627 'p': int('d38311e2cd388c3ed698e82fdf88eb92b5a9a483dc88005d4b725ef341e'
1628 'abb47cf8a7a8a41e792a156b7ce97206c4f9c5ce6fc5ae7912102b6b50'
1629 '2e59050b5b21ce263dddb2044b652236f4d42ab4b5d6aa73189cef1a'
1630 'ce778d7845a5c1c1c7147123188f8dc551054ee162b634d6'
1631 '0f097f719076640e20980a0093113a8bd73', 16),
1632 'q': int('96c5390a8b612c0e422bb2b0ea194a3ec935a281', 16),
1633 'x': int('85322d6ea73083064376099ca2f65f56e8522d9b', 16),
1634 'y': int('21f8690f717c9f4dcb8f4b6971de2f15b9231fcf41b7eeb997d781f240'
1635 'bfdddfd2090d22083c26cca39bf37c9caf1ec89518ea64845a50d747b49'
1636 '131ffff6a2fd11ea7bacbb93c7d05137383a06365af82225dd3713c'
1637 'a5a45006316f53bd12b0e260d5f79795e5a4c9f353f12867a1d3'
1638 '202394673ada8563b71555e53f415254', 16)},
Mohammed Attia987cc702014-03-12 16:07:21 +02001639
Mohammed Attia2da00132014-03-13 15:07:20 +02001640 {'g': int('e4c4eca88415b23ecf811c96e48cd24200fe916631a68a684e6ccb6b191'
1641 '3413d344d1d8d84a333839d88eee431521f6e357c16e6a93be111a9807'
1642 '6739cd401bab3b9d565bf4fb99e9d185b1e14d61c93700133f908bae0'
1643 '3e28764d107dcd2ea7674217622074bb19efff482f5f5c1a86d5551b2'
1644 'fc68d1c6e9d8011958ef4b9c2a3a55d0d3c882e6ad7f9f0f3c61568f78'
1645 'd0706b10a26f23b4f197c322b825002284a0aca91807bba98ece912'
1646 'b80e10cdf180cf99a35f210c1655fbfdd74f13b1b5046591f8403873d'
1647 '12239834dd6c4eceb42bf7482e1794a1601357b629ddfa971f2ed273b1'
1648 '46ec1ca06d0adf55dd91d65c37297bda78c6d210c0bc26e558302', 16),
1649 'p': int('ea1fb1af22881558ef93be8a5f8653c5a559434c49c8c2c12ace'
1650 '5e9c41434c9cf0a8e9498acb0f4663c08b4484eace845f6fb17d'
1651 'ac62c98e706af0fc74e4da1c6c2b3fbf5a1d58ff82fc1a66f3e8b122'
1652 '52c40278fff9dd7f102eed2cb5b7323ebf1908c234d935414dded7f8d2'
1653 '44e54561b0dca39b301de8c49da9fb23df33c6182e3f983208c560fb5'
1654 '119fbf78ebe3e6564ee235c6a15cbb9ac247baba5a423bc6582a1a9d8a'
1655 '2b4f0e9e3d9dbac122f750dd754325135257488b1f6ecabf21bff2947'
1656 'fe0d3b2cb7ffe67f4e7fcdf1214f6053e72a5bb0dd20a0e9fe6db2df0a'
1657 '908c36e95e60bf49ca4368b8b892b9c79f61ef91c47567c40e1f80ac'
1658 '5aa66ef7', 16),
1659 'q': int('8ec73f3761caf5fdfe6e4e82098bf10f898740dcb808204bf6b1'
1660 '8f507192c19d', 16),
1661 'x': int('405772da6e90d809e77d5de796562a2dd4dfd10ef00a83a3aba6'
1662 'bd818a0348a1', 16),
1663 'y': int('6b32e31ab9031dc4dd0b5039a78d07826687ab087ae6de4736f5'
1664 'b0434e1253092e8a0b231f9c87f3fc8a4cb5634eb194bf1b638'
1665 'b7a7889620ce6711567e36aa36cda4604cfaa601a45918371d'
1666 '4ccf68d8b10a50a0460eb1dc0fff62ef5e6ee4d473e18ea4a6'
1667 '6c196fb7e677a49b48241a0b4a97128eff30fa437050501a584'
1668 'f8771e7280d26d5af30784039159c11ebfea10b692fd0a58215ee'
1669 'b18bff117e13f08db792ed4151a218e4bed8dddfb0793225bd1e97'
1670 '73505166f4bd8cedbb286ea28232972da7bae836ba97329ba6b0a36508'
1671 'e50a52a7675e476d4d4137eae13f22a9d2fefde708ba8f34bf336c6e7'
1672 '6331761e4b0617633fe7ec3f23672fb19d27', 16)},
1673 {'g': int('e4c4eca88415b23ecf811c96e48cd24200fe916631a68a684e6ccb6b191'
1674 '3413d344d1d8d84a333839d88eee431521f6e357c16e6a93be111a9807'
1675 '6739cd401bab3b9d565bf4fb99e9d185b1e14d61c93700133f908bae0'
1676 '3e28764d107dcd2ea7674217622074bb19efff482f5f5c1a86d5551b2'
1677 'fc68d1c6e9d8011958ef4b9c2a3a55d0d3c882e6ad7f9f0f3c61568f78'
1678 'd0706b10a26f23b4f197c322b825002284a0aca91807bba98ece912'
1679 'b80e10cdf180cf99a35f210c1655fbfdd74f13b1b5046591f8403873d'
1680 '12239834dd6c4eceb42bf7482e1794a1601357b629ddfa971f2ed273b1'
1681 '46ec1ca06d0adf55dd91d65c37297bda78c6d210c0bc26e558302', 16),
1682 'p': int('ea1fb1af22881558ef93be8a5f8653c5a559434c49c8c2c12ace'
1683 '5e9c41434c9cf0a8e9498acb0f4663c08b4484eace845f6fb17d'
1684 'ac62c98e706af0fc74e4da1c6c2b3fbf5a1d58ff82fc1a66f3e8b122'
1685 '52c40278fff9dd7f102eed2cb5b7323ebf1908c234d935414dded7f8d2'
1686 '44e54561b0dca39b301de8c49da9fb23df33c6182e3f983208c560fb5'
1687 '119fbf78ebe3e6564ee235c6a15cbb9ac247baba5a423bc6582a1a9d8a'
1688 '2b4f0e9e3d9dbac122f750dd754325135257488b1f6ecabf21bff2947'
1689 'fe0d3b2cb7ffe67f4e7fcdf1214f6053e72a5bb0dd20a0e9fe6db2df0a'
1690 '908c36e95e60bf49ca4368b8b892b9c79f61ef91c47567c40e1f80ac'
1691 '5aa66ef7', 16),
1692 'q': int('8ec73f3761caf5fdfe6e4e82098bf10f898740dcb808204bf6b1'
1693 '8f507192c19d', 16),
1694 'x': int('0e0b95e31fda3f888059c46c3002ef8f2d6be112d0209aeb9e95'
1695 '45da67aeea80', 16),
1696 'y': int('778082b77ddba6f56597cc74c3a612abf2ddbd85cc81430c99ab'
1697 '843c1f630b9db0139965f563978164f9bf3a8397256be714625'
1698 'cd41cd7fa0067d94ea66d7e073f7125af692ad01371d4a17f45'
1699 '50590378f2b074030c20e36911598a1018772f61be3b24de4be'
1700 '5a388ccc09e15a92819c31dec50de9fde105b49eaa097b9d13d'
1701 '9219eeb33b628facfd1c78a7159c8430d0647c506e7e3de74763c'
1702 'b351eada72c00bef3c9641881e6254870c1e6599f8ca2f1bbb74f'
1703 '39a905e3a34e4544168e6e50c9e3305fd09cab6ed4aff6fda6e0d'
1704 '5bf375c81ac9054406d9193b003c89272f1bd83d48250134b65c77'
1705 'c2b6332d38d34d9016f0e8975536ad6c348a1faedb0', 16)},
1706
1707 {'g': int('ce84b30ddf290a9f787a7c2f1ce92c1cbf4ef400e3cd7ce4978d'
1708 'b2104d7394b493c18332c64cec906a71c3778bd93341165dee8'
1709 'e6cd4ca6f13afff531191194ada55ecf01ff94d6cf7c4768b82'
1710 'dd29cd131aaf202aefd40e564375285c01f3220af4d70b96f1'
1711 '395420d778228f1461f5d0b8e47357e87b1fe3286223b553e3'
1712 'fc9928f16ae3067ded6721bedf1d1a01bfd22b9ae85fce77820d88cdf'
1713 '50a6bde20668ad77a707d1c60fcc5d51c9de488610d0285eb8ff721f'
1714 'f141f93a9fb23c1d1f7654c07c46e58836d1652828f71057b8aff0b077'
1715 '8ef2ca934ea9d0f37daddade2d823a4d8e362721082e279d003b575ee'
1716 '59fd050d105dfd71cd63154efe431a0869178d9811f4f231dc5dcf3b'
1717 '0ec0f2b0f9896c32ec6c7ee7d60aa97109e09224907328d4e6acd1011'
1718 '7e45774406c4c947da8020649c3168f690e0bd6e91ac67074d1d436b'
1719 '58ae374523deaf6c93c1e6920db4a080b744804bb073cecfe83fa939'
1720 '8cf150afa286dc7eb7949750cf5001ce104e9187f7e16859afa8fd0d'
1721 '775ae', 16),
1722 'p': int('f335666dd1339165af8b9a5e3835adfe15c158e4c3c7bd53132e7d5828'
1723 'c352f593a9a787760ce34b789879941f2f01f02319f6ae0b756f1a842'
1724 'ba54c85612ed632ee2d79ef17f06b77c641b7b080aff52a03fc2462e8'
1725 '0abc64d223723c236deeb7d201078ec01ca1fbc1763139e25099a84ec'
1726 '389159c409792080736bd7caa816b92edf23f2c351f90074aa5ea2651'
1727 'b372f8b58a0a65554db2561d706a63685000ac576b7e4562e262a1428'
1728 '5a9c6370b290e4eb7757527d80b6c0fd5df831d36f3d1d35f12ab0605'
1729 '48de1605fd15f7c7aafed688b146a02c945156e284f5b71282045aba9'
1730 '844d48b5df2e9e7a5887121eae7d7b01db7cdf6ff917cd8eb50c6bf1d'
1731 '54f90cce1a491a9c74fea88f7e7230b047d16b5a6027881d6f154818f'
1732 '06e513faf40c8814630e4e254f17a47bfe9cb519b98289935bf17673a'
1733 'e4c8033504a20a898d0032ee402b72d5986322f3bdfb27400561f7476'
1734 'cd715eaabb7338b854e51fc2fa026a5a579b6dcea1b1c0559c13d3c11'
1735 '36f303f4b4d25ad5b692229957', 16),
1736 'q': int('d3eba6521240694015ef94412e08bf3cf8d635a455a398d6f210'
1737 'f6169041653b', 16),
1738 'x': int('b2764c46113983777d3e7e97589f1303806d14ad9f2f1ef03309'
1739 '7de954b17706', 16),
1740 'y': int('814824e435e1e6f38daa239aad6dad21033afce6a3ebd35c1359348a0f2'
1741 '418871968c2babfc2baf47742148828f8612183178f126504da73566b6'
1742 'bab33ba1f124c15aa461555c2451d86c94ee21c3e3fc24c55527e'
1743 '01b1f03adcdd8ec5cb08082803a7b6a829c3e99eeb332a2cf5c035b0c'
1744 'e0078d3d414d31fa47e9726be2989b8d06da2e6cd363f5a7d1515e3f4'
1745 '925e0b32adeae3025cc5a996f6fd27494ea408763de48f3bb39f6a06'
1746 '514b019899b312ec570851637b8865cff3a52bf5d54ad5a19e6e400'
1747 'a2d33251055d0a440b50d53f4791391dc754ad02b9eab74c46b4903'
1748 'f9d76f824339914db108057af7cde657d41766a99991ac8787694f'
1749 '4185d6f91d7627048f827b405ec67bf2fe56141c4c581d8c317333'
1750 '624e073e5879a82437cb0c7b435c0ce434e15965db1315d648959'
1751 '91e6bbe7dac040c42052408bbc53423fd31098248a58f8a67da3a'
1752 '39895cd0cc927515d044c1e3cb6a3259c3d0da354cce89ea3552c'
1753 '59609db10ee989986527436af21d9485ddf25f90f7dff6d2bae', 16)},
1754 {'g': int('ce84b30ddf290a9f787a7c2f1ce92c1cbf4ef400e3cd7ce4978d'
1755 'b2104d7394b493c18332c64cec906a71c3778bd93341165dee8'
1756 'e6cd4ca6f13afff531191194ada55ecf01ff94d6cf7c4768b82'
1757 'dd29cd131aaf202aefd40e564375285c01f3220af4d70b96f1'
1758 '395420d778228f1461f5d0b8e47357e87b1fe3286223b553e3'
1759 'fc9928f16ae3067ded6721bedf1d1a01bfd22b9ae85fce77820d88cdf'
1760 '50a6bde20668ad77a707d1c60fcc5d51c9de488610d0285eb8ff721f'
1761 'f141f93a9fb23c1d1f7654c07c46e58836d1652828f71057b8aff0b077'
1762 '8ef2ca934ea9d0f37daddade2d823a4d8e362721082e279d003b575ee'
1763 '59fd050d105dfd71cd63154efe431a0869178d9811f4f231dc5dcf3b'
1764 '0ec0f2b0f9896c32ec6c7ee7d60aa97109e09224907328d4e6acd1011'
1765 '7e45774406c4c947da8020649c3168f690e0bd6e91ac67074d1d436b'
1766 '58ae374523deaf6c93c1e6920db4a080b744804bb073cecfe83fa939'
1767 '8cf150afa286dc7eb7949750cf5001ce104e9187f7e16859afa8fd0d'
1768 '775ae', 16),
1769 'p': int('f335666dd1339165af8b9a5e3835adfe15c158e4c3c7bd53132e7d5828'
1770 'c352f593a9a787760ce34b789879941f2f01f02319f6ae0b756f1a842'
1771 'ba54c85612ed632ee2d79ef17f06b77c641b7b080aff52a03fc2462e8'
1772 '0abc64d223723c236deeb7d201078ec01ca1fbc1763139e25099a84ec'
1773 '389159c409792080736bd7caa816b92edf23f2c351f90074aa5ea2651'
1774 'b372f8b58a0a65554db2561d706a63685000ac576b7e4562e262a1428'
1775 '5a9c6370b290e4eb7757527d80b6c0fd5df831d36f3d1d35f12ab0605'
1776 '48de1605fd15f7c7aafed688b146a02c945156e284f5b71282045aba9'
1777 '844d48b5df2e9e7a5887121eae7d7b01db7cdf6ff917cd8eb50c6bf1d'
1778 '54f90cce1a491a9c74fea88f7e7230b047d16b5a6027881d6f154818f'
1779 '06e513faf40c8814630e4e254f17a47bfe9cb519b98289935bf17673a'
1780 'e4c8033504a20a898d0032ee402b72d5986322f3bdfb27400561f7476'
1781 'cd715eaabb7338b854e51fc2fa026a5a579b6dcea1b1c0559c13d3c11'
1782 '36f303f4b4d25ad5b692229957', 16),
1783 'q': int('d3eba6521240694015ef94412e08bf3cf8d635a455a398d6f210'
1784 'f6169041653b', 16),
1785 'x': int('52e3e040efb30e1befd909a0bdbcfd140d005b1bff094af97186'
1786 '080262f1904d', 16),
1787 'y': int('a5ae6e8f9b7a68ab0516dad4d7b7d002126f811d5a52e3d35c6d'
1788 '387fcb43fd19bf7792362f9c98f8348aa058bb62376685f3d0c3'
1789 '66c520d697fcd8416947151d4bbb6f32b53528a016479e99d2cd'
1790 '48d1fc679027c15f0042f207984efe05c1796bca8eba678dfdd0'
1791 '0b80418e3ea840557e73b09e003882f9a68edba3431d351d1ca0'
1792 '7a8150b018fdbdf6c2f1ab475792a3ccaa6594472a45f8dc777b'
1793 '60bf67de3e0f65c20d11b7d59faedf83fbce52617f500d9e5149'
1794 '47c455274c6e900464767fb56599b81344cf6d12c25cb2b7d038'
1795 'd7b166b6cf30534811c15d0e8ab880a2ac06786ae2ddde61329a'
1796 '78d526f65245380ce877e979c5b50de66c9c30d66382c8f25465'
1797 '3d25a1eb1d3a4897d7623399b473ce712a2184cf2da1861706c4'
1798 '1466806aefe41b497db82aca6c31c8f4aa68c17d1d9e380b5799'
1799 '8917655783ec96e5234a131f7299398d36f1f5f84297a55ff292'
1800 'f1f060958c358fed346db2de45127ca728a9417b2c54203e33e5'
1801 '3b9a061d924395b09afab8daf3e8dd7eedcec3ac', 16)}
1802 ]
Mohammed Attia987cc702014-03-12 16:07:21 +02001803
1804 assert expected == load_fips_dsa_key_pair_vectors(vector_data)
Alex Stapletona39a3192014-03-14 20:03:12 +00001805
1806
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001807def test_load_fips_dsa_sig_ver_vectors():
1808 vector_data = textwrap.dedent("""
1809 # CAVS 11.0
1810 # "SigVer" information
1811 # Mod sizes selected: SHA-1 L=1024, N=160,SHA-384 L=2048, N=256
1812 # Generated on Fri Apr 01 08:37:15 2011
Alex Stapleton112963e2014-03-26 17:39:29 +00001813
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001814 [mod = L=1024, N=160, SHA-1]
Alex Stapleton112963e2014-03-26 17:39:29 +00001815
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001816 P = dc5bf3a88b2d99e4c95cdd7a0501cc38630d425cf5c390af3429cff1f35147b795cae\
1817a923f0d3577158f8a0c89dabd1962c2c453306b5d70cacfb01430aceb54e5a5fa6f93\
181840d3bd2da612fceeb76b0ec1ebfae635a56ab141b108e00dc76eefe2edd0c514c21c4\
181957457c39065dba9d0ecb7569c247172d8438ad2827b60435b
1820 Q = e956602b83d195dbe945b3ac702fc61f81571f1d
1821 G = d7eb9ca20a3c7a079606bafc4c9261ccaba303a5dc9fe9953f197dfe548c234895baa\
182277f441ee6a2d97b909cbbd26ff7b869d24cae51b5c6edb127a4b5d75cd8b46608bfa1\
182348249dffdb59807c5d7dde3fe3080ca3a2d28312142becb1fa8e24003e21c72871081\
182474b95d5bc711e1c8d9b1076784f5dc37a964a5e51390da713
Alex Stapleton112963e2014-03-26 17:39:29 +00001825
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001826 Msg = 0fe1bfee500bdb76026099b1d37553f6bdfe48c82094ef98cb309dd777330bedfaa\
18272f94c823ef74ef4074b50d8706041ac0e371c7c22dcf70263b8d60e17a86c7c379c\
1828fda8f22469e0df9d49d59439fc99891873628fff25dda5fac5ac794e948babdde96\
18298143ba05f1128f34fdad5875edc4cd71c6c24ba2060ffbd439ce2b3
1830 X = 1d93010c29ecfc432188942f46f19f44f0e1bb5d
1831 Y = 6240ea0647117c38fe705106d56db578f3e10130928452d4f3587881b8a2bc6873a8b\
1832efc3237f20914e2a91c7f07a928ee22adeed23d74ab7f82ea11f70497e578f7a9b4cb\
1833d6f10226222b0b4da2ea1e49813d6bb9882fbf675c0846bb80cc891857b89b0ef1beb\
18346cce3378a9aab5d66ad4cb9277cf447dfe1e64434749432fb
1835 R = b5af307867fb8b54390013cc67020ddf1f2c0b81
1836 S = 620d3b22ab5031440c3e35eab6f481298f9e9f08
1837 Result = P
Alex Stapleton5e4c8c32014-03-27 16:38:00 +00001838
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001839 Msg = 97d50898025d2f9ba633866e968ca75e969d394edba6517204cb3dd537c2ba38778\
1840a2dc9dbc685a915e5676fcd43bc3726bc59ce3d7a9fae35565082a069c139fa37c9\
18410d922b126933db3fa6c5ef6b1edf00d174a51887bb76909c6a94fe994ecc7b7fc8f\
184226113b17f30f9d01693df99a125b4f17e184331c6b6e8ca00f54f3a
1843 X = 350e13534692a7e0c4b7d58836046c436fbb2322
1844 Y = 69974de550fe6bd3099150faea1623ad3fb6d9bf23a07215093f319725ad0877accff\
1845d291b6da18eb0cbe51676ceb0977504eb97c27c0b191883f72fb2710a9fbd8bcf13be\
18460bf854410b32f42b33ec89d3cc1cf892bcd536c4195ca9ada302ad600c3408739935d\
184777dc247529ca47f844cc86f5016a2fe962c6e20ca7c4d4e8f
1848 R = b5d05faa7005764e8dae0327c5bf1972ff7681b9
1849 S = 18ea15bd9f00475b25204cbc23f8c23e01588015
1850 Result = F (3 - R changed )
Alex Stapleton5e4c8c32014-03-27 16:38:00 +00001851
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001852 [mod = L=2048, N=256, SHA-384]
Alex Stapleton5e4c8c32014-03-27 16:38:00 +00001853
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001854 P = e7c1c86125db9ef417da1ced7ea0861bdad629216a3f3c745df42a46b989e59f4d984\
185525ee3c932fa3c2b6f637bdb6545bec526faa037e11f5578a4363b9fca5eba60d6a9cb\
1856aa2befd04141d989c7356285132c2eaf74f2d868521cdc0a17ae9a2546ef863027d3f\
18578cc7949631fd0e2971417a912c8b8c5c989730db6ea6e8baee0e667850429038093c8\
185851ccb6fb173bb081e0efe0bd7450e0946888f89f75e443ab93ef2da293a01622cf43c\
18596dd79625d41ba8f9ef7e3086ab39134283d8e96c89249488120fd061e4a87d34af410\
186069c0b4fd3934c31b589cbe85b68b912718d5dab859fda7082511fad1d152044905005\
1861546e19b14aa96585a55269bf2b831
1862 Q = 8e056ec9d4b7acb580087a6ed9ba3478711bb025d5b8d9c731ef9b38bd43db2f
1863 G = dc2bfb9776786ad310c8b0cdcbba3062402613c67e6959a8d8d1b05aab636528b7b1f\
1864e9cd33765f853d6dbe13d09f2681f8c7b1ed7886aaed70c7bd76dbe858ffb8bd86235\
1865ddf759244678f428c6519af593dc94eeadbd9852ba2b3d61664e8d58c29d2039af3c3\
1866d6d16f90988f6a8c824569f3d48050e30896a9e17cd0232ef01ab8790008f6973b84c\
1867763a72f4ae8b485abfb7e8efeb86808fa2b281d3e5d65d28f5992a34c077c5aa8026c\
1868b2fbc34a45f7e9bd216b10e6f12ecb172e9a6eb8f2e91316905b6add1fd22e83bc2f0\
186989f1d5e6a6e6707c18ff55ddcb7954e8bceaf0efc4e8314910c03b0e51175f344faaf\
1870ee476a373ac95743cec712b72cf2e
Alex Stapleton5e4c8c32014-03-27 16:38:00 +00001871
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001872 Msg = 6cd6ccfd66bcd832189c5f0c77994210e3bf2c43416f0fe77c4e92f31c5369538dc\
18732c003f146c5ac79df43194ccf3c44d470d9f1083bd15b99b5bcf88c32d8a9021f09\
1874ea2288d7b3bf345a12aef3949c1e121b9fb371a67c2d1377364206ac839dd784835\
187561426bda0303f285aa12e9c45d3cdfc6beae3549703b187deeb3296
1876 X = 56c897b5938ad5b3d437d7e4826da586a6b3be15e893fa1aaa946f20a028b6b3
1877 Y = 38ad44489e1a5778b9689f4dcf40e2acf23840fb954e987d6e8cb629106328ac64e1f\
18783c3eba48b21176ad4afe3b733bead382ee1597e1b83e4b43424f2daaba04e5bd79e14\
187936693ac2bddb79a298f026e57e200a252efd1e848a4a2e90be6e78f5242b468b9c0c6\
1880d2615047a5a40b9ae7e57a519114db55bf3bed65e580f894b094630ca9c217f6accd0\
188191e72d2f22da620044ff372d7273f9445017fad492959e59600b7494dbe766a03e401\
188225d4e6747c76f68a5b0cdc0e7d7cee12d08c6fb7d0fb049e420a33405075ed4463296\
1883345ca695fb7feab7c1b5333ae519fcd4bb6a043f4555378969114743d4face96cad31\
1884c0e0089da4e3f61b6d7dabc088ab7
1885 R = 3b85b17be240ed658beb3652c9d93e8e9eea160d35ee2459614305802963374e
1886 S = 726800a5174a53b56dce86064109c0273cd11fcfa3c92c5cd6aa910260c0e3c7
1887 Result = F (1 - Message changed)
Alex Stapleton5e4c8c32014-03-27 16:38:00 +00001888
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001889 Msg = 3ad6b0884f358dea09c31a9abc40c45a6000611fc2b907b30eac00413fd2819de70\
189015488a411609d46c499b8f7afa1b78b352ac7f8535bd805b8ff2a5eae557098c668\
1891f7ccd73af886d6823a6d456c29931ee864ed46d767382785728c2a83fcff5271007\
1892d2a67d06fa205fd7b9d1a42ea5d6dc76e5e18a9eb148cd1e8b262ae
1893 X = 2faf566a9f057960f1b50c69508f483d9966d6e35743591f3a677a9dc40e1555
1894 Y = 926425d617babe87c442b03903e32ba5bbf0cd9d602b59c4df791a4d64a6d4333ca0c\
18950d370552539197d327dcd1bbf8c454f24b03fc7805f862db34c7b066ddfddbb11dbd0\
189610b27123062d028fe041cb56a2e77488348ae0ab6705d87aac4d4e9e6600e9e706326\
1897d9979982cffa839beb9eacc3963bcca455a507e80c1c37ad4e765b2c9c0477a075e9b\
1898c584feacdf3a35a9391d4711f14e197c54022282bfed9a191213d64127f17a9c5affe\
1899c26e0c71f15d3a5b16098fec118c45bf8bb2f3b1560df0949254c1c0aeb0a16d5a95a\
190040fab8521fbe8ea77c51169b587cc3360e5733e6a23b9fded8c40724ea1f9e93614b3\
1901a6c9b4f8dbbe915b794497227ba62
1902 R = 343ea0a9e66277380f604d5880fca686bffab69ca97bfba015a102a7e23dce0e
1903 S = 6258488c770e0f5ad7b9da8bade5023fc0d17c6ec517bd08d53e6dc01ac5c2b3
1904 Result = P
1905 """).splitlines()
Alex Stapleton112963e2014-03-26 17:39:29 +00001906
Mohammed Attia0fb5d852014-04-21 10:31:15 +02001907 expected = [
1908 {
1909 'p': int('dc5bf3a88b2d99e4c95cdd7a0501cc38630d425cf5c390af3429cff1'
1910 'f35147b795caea923f0d3577158f8a0c89dabd1962c2c453306b5d70'
1911 'cacfb01430aceb54e5a5fa6f9340d3bd2da612fceeb76b0ec1ebfae6'
1912 '35a56ab141b108e00dc76eefe2edd0c514c21c457457c39065dba9d0'
1913 'ecb7569c247172d8438ad2827b60435b', 16),
1914 'q': int('e956602b83d195dbe945b3ac702fc61f81571f1d', 16),
1915 'g': int('d7eb9ca20a3c7a079606bafc4c9261ccaba303a5dc9fe9953f197dfe'
1916 '548c234895baa77f441ee6a2d97b909cbbd26ff7b869d24cae51b5c6'
1917 'edb127a4b5d75cd8b46608bfa148249dffdb59807c5d7dde3fe3080c'
1918 'a3a2d28312142becb1fa8e24003e21c7287108174b95d5bc711e1c8d'
1919 '9b1076784f5dc37a964a5e51390da713', 16),
1920 'digest_algorithm': 'SHA-1',
1921 'msg': binascii.unhexlify(
1922 b'0fe1bfee500bdb76026099b1d37553f6bdfe48c82094ef98cb309dd77733'
1923 b'0bedfaa2f94c823ef74ef4074b50d8706041ac0e371c7c22dcf70263b8d6'
1924 b'0e17a86c7c379cfda8f22469e0df9d49d59439fc99891873628fff25dda5'
1925 b'fac5ac794e948babdde968143ba05f1128f34fdad5875edc4cd71c6c24ba'
1926 b'2060ffbd439ce2b3'),
1927 'x': int('1d93010c29ecfc432188942f46f19f44f0e1bb5d', 16),
1928 'y': int('6240ea0647117c38fe705106d56db578f3e10130928452d4f3587881'
1929 'b8a2bc6873a8befc3237f20914e2a91c7f07a928ee22adeed23d74ab'
1930 '7f82ea11f70497e578f7a9b4cbd6f10226222b0b4da2ea1e49813d6b'
1931 'b9882fbf675c0846bb80cc891857b89b0ef1beb6cce3378a9aab5d66'
1932 'ad4cb9277cf447dfe1e64434749432fb', 16),
1933 'r': int('b5af307867fb8b54390013cc67020ddf1f2c0b81', 16),
1934 's': int('620d3b22ab5031440c3e35eab6f481298f9e9f08', 16),
1935 'result': 'P'},
1936 {
1937 'p': int('dc5bf3a88b2d99e4c95cdd7a0501cc38630d425cf5c390af3429cff1'
1938 'f35147b795caea923f0d3577158f8a0c89dabd1962c2c453306b5d70'
1939 'cacfb01430aceb54e5a5fa6f9340d3bd2da612fceeb76b0ec1ebfae6'
1940 '35a56ab141b108e00dc76eefe2edd0c514c21c457457c39065dba9d0'
1941 'ecb7569c247172d8438ad2827b60435b', 16),
1942 'q': int('e956602b83d195dbe945b3ac702fc61f81571f1d', 16),
1943 'g': int('d7eb9ca20a3c7a079606bafc4c9261ccaba303a5dc9fe9953f197dfe'
1944 '548c234895baa77f441ee6a2d97b909cbbd26ff7b869d24cae51b5c6'
1945 'edb127a4b5d75cd8b46608bfa148249dffdb59807c5d7dde3fe3080c'
1946 'a3a2d28312142becb1fa8e24003e21c7287108174b95d5bc711e1c8d'
1947 '9b1076784f5dc37a964a5e51390da713', 16),
1948 'digest_algorithm': 'SHA-1',
1949 'msg': binascii.unhexlify(
1950 b'97d50898025d2f9ba633866e968ca75e969d394edba6517204cb3dd537c2'
1951 b'ba38778a2dc9dbc685a915e5676fcd43bc3726bc59ce3d7a9fae35565082'
1952 b'a069c139fa37c90d922b126933db3fa6c5ef6b1edf00d174a51887bb7690'
1953 b'9c6a94fe994ecc7b7fc8f26113b17f30f9d01693df99a125b4f17e184331'
1954 b'c6b6e8ca00f54f3a'),
1955 'x': int('350e13534692a7e0c4b7d58836046c436fbb2322', 16),
1956 'y': int('69974de550fe6bd3099150faea1623ad3fb6d9bf23a07215093f3197'
1957 '25ad0877accffd291b6da18eb0cbe51676ceb0977504eb97c27c0b19'
1958 '1883f72fb2710a9fbd8bcf13be0bf854410b32f42b33ec89d3cc1cf8'
1959 '92bcd536c4195ca9ada302ad600c3408739935d77dc247529ca47f84'
1960 '4cc86f5016a2fe962c6e20ca7c4d4e8f', 16),
1961 'r': int('b5d05faa7005764e8dae0327c5bf1972ff7681b9', 16),
1962 's': int('18ea15bd9f00475b25204cbc23f8c23e01588015', 16),
1963 'result': 'F'},
1964 {
1965 'p': int('e7c1c86125db9ef417da1ced7ea0861bdad629216a3f3c745df42a4'
1966 '6b989e59f4d98425ee3c932fa3c2b6f637bdb6545bec526faa037e1'
1967 '1f5578a4363b9fca5eba60d6a9cbaa2befd04141d989c7356285132'
1968 'c2eaf74f2d868521cdc0a17ae9a2546ef863027d3f8cc7949631fd0'
1969 'e2971417a912c8b8c5c989730db6ea6e8baee0e667850429038093c'
1970 '851ccb6fb173bb081e0efe0bd7450e0946888f89f75e443ab93ef2d'
1971 'a293a01622cf43c6dd79625d41ba8f9ef7e3086ab39134283d8e96c'
1972 '89249488120fd061e4a87d34af41069c0b4fd3934c31b589cbe85b6'
1973 '8b912718d5dab859fda7082511fad1d152044905005546e19b14aa9'
1974 '6585a55269bf2b831', 16),
1975 'q': int('8e056ec9d4b7acb580087a6ed9ba3478711bb025d5b8d9c731ef9b3'
1976 '8bd43db2f', 16),
1977 'g': int('dc2bfb9776786ad310c8b0cdcbba3062402613c67e6959a8d8d1b05'
1978 'aab636528b7b1fe9cd33765f853d6dbe13d09f2681f8c7b1ed7886a'
1979 'aed70c7bd76dbe858ffb8bd86235ddf759244678f428c6519af593d'
1980 'c94eeadbd9852ba2b3d61664e8d58c29d2039af3c3d6d16f90988f6'
1981 'a8c824569f3d48050e30896a9e17cd0232ef01ab8790008f6973b84'
1982 'c763a72f4ae8b485abfb7e8efeb86808fa2b281d3e5d65d28f5992a'
1983 '34c077c5aa8026cb2fbc34a45f7e9bd216b10e6f12ecb172e9a6eb8'
1984 'f2e91316905b6add1fd22e83bc2f089f1d5e6a6e6707c18ff55ddcb'
1985 '7954e8bceaf0efc4e8314910c03b0e51175f344faafee476a373ac9'
1986 '5743cec712b72cf2e', 16),
1987 'digest_algorithm': 'SHA-384',
1988 'msg': binascii.unhexlify(
1989 b'6cd6ccfd66bcd832189c5f0c77994210e3bf2c43416f0fe77c4e92f31c5'
1990 b'369538dc2c003f146c5ac79df43194ccf3c44d470d9f1083bd15b99b5bc'
1991 b'f88c32d8a9021f09ea2288d7b3bf345a12aef3949c1e121b9fb371a67c2'
1992 b'd1377364206ac839dd78483561426bda0303f285aa12e9c45d3cdfc6bea'
1993 b'e3549703b187deeb3296'),
1994 'x': int('56c897b5938ad5b3d437d7e4826da586a6b3be15e893fa1aaa946f2'
1995 '0a028b6b3', 16),
1996 'y': int('38ad44489e1a5778b9689f4dcf40e2acf23840fb954e987d6e8cb62'
1997 '9106328ac64e1f3c3eba48b21176ad4afe3b733bead382ee1597e1b'
1998 '83e4b43424f2daaba04e5bd79e1436693ac2bddb79a298f026e57e2'
1999 '00a252efd1e848a4a2e90be6e78f5242b468b9c0c6d2615047a5a40'
2000 'b9ae7e57a519114db55bf3bed65e580f894b094630ca9c217f6accd'
2001 '091e72d2f22da620044ff372d7273f9445017fad492959e59600b74'
2002 '94dbe766a03e40125d4e6747c76f68a5b0cdc0e7d7cee12d08c6fb7'
2003 'd0fb049e420a33405075ed4463296345ca695fb7feab7c1b5333ae5'
2004 '19fcd4bb6a043f4555378969114743d4face96cad31c0e0089da4e3'
2005 'f61b6d7dabc088ab7', 16),
2006 'r': int('3b85b17be240ed658beb3652c9d93e8e9eea160d35ee24596143058'
2007 '02963374e', 16),
2008 's': int('726800a5174a53b56dce86064109c0273cd11fcfa3c92c5cd6aa910'
2009 '260c0e3c7', 16),
2010 'result': 'F'},
2011 {
2012 'p': int('e7c1c86125db9ef417da1ced7ea0861bdad629216a3f3c745df42a4'
2013 '6b989e59f4d98425ee3c932fa3c2b6f637bdb6545bec526faa037e1'
2014 '1f5578a4363b9fca5eba60d6a9cbaa2befd04141d989c7356285132'
2015 'c2eaf74f2d868521cdc0a17ae9a2546ef863027d3f8cc7949631fd0'
2016 'e2971417a912c8b8c5c989730db6ea6e8baee0e667850429038093c'
2017 '851ccb6fb173bb081e0efe0bd7450e0946888f89f75e443ab93ef2d'
2018 'a293a01622cf43c6dd79625d41ba8f9ef7e3086ab39134283d8e96c'
2019 '89249488120fd061e4a87d34af41069c0b4fd3934c31b589cbe85b6'
2020 '8b912718d5dab859fda7082511fad1d152044905005546e19b14aa9'
2021 '6585a55269bf2b831', 16),
2022 'q': int('8e056ec9d4b7acb580087a6ed9ba3478711bb025d5b8d9c731ef9b3'
2023 '8bd43db2f', 16),
2024 'g': int('dc2bfb9776786ad310c8b0cdcbba3062402613c67e6959a8d8d1b05'
2025 'aab636528b7b1fe9cd33765f853d6dbe13d09f2681f8c7b1ed7886a'
2026 'aed70c7bd76dbe858ffb8bd86235ddf759244678f428c6519af593d'
2027 'c94eeadbd9852ba2b3d61664e8d58c29d2039af3c3d6d16f90988f6'
2028 'a8c824569f3d48050e30896a9e17cd0232ef01ab8790008f6973b84'
2029 'c763a72f4ae8b485abfb7e8efeb86808fa2b281d3e5d65d28f5992a'
2030 '34c077c5aa8026cb2fbc34a45f7e9bd216b10e6f12ecb172e9a6eb8'
2031 'f2e91316905b6add1fd22e83bc2f089f1d5e6a6e6707c18ff55ddcb'
2032 '7954e8bceaf0efc4e8314910c03b0e51175f344faafee476a373ac9'
2033 '5743cec712b72cf2e', 16),
2034 'digest_algorithm': 'SHA-384',
2035 'msg': binascii.unhexlify(
2036 b'3ad6b0884f358dea09c31a9abc40c45a6000611fc2b907b30eac00413fd'
2037 b'2819de7015488a411609d46c499b8f7afa1b78b352ac7f8535bd805b8ff'
2038 b'2a5eae557098c668f7ccd73af886d6823a6d456c29931ee864ed46d7673'
2039 b'82785728c2a83fcff5271007d2a67d06fa205fd7b9d1a42ea5d6dc76e5e'
2040 b'18a9eb148cd1e8b262ae'),
2041 'x': int('2faf566a9f057960f1b50c69508f483d9966d6e35743591f3a677a9'
2042 'dc40e1555', 16),
2043 'y': int('926425d617babe87c442b03903e32ba5bbf0cd9d602b59c4df791a4d'
2044 '64a6d4333ca0c0d370552539197d327dcd1bbf8c454f24b03fc7805f'
2045 '862db34c7b066ddfddbb11dbd010b27123062d028fe041cb56a2e774'
2046 '88348ae0ab6705d87aac4d4e9e6600e9e706326d9979982cffa839be'
2047 'b9eacc3963bcca455a507e80c1c37ad4e765b2c9c0477a075e9bc584'
2048 'feacdf3a35a9391d4711f14e197c54022282bfed9a191213d64127f1'
2049 '7a9c5affec26e0c71f15d3a5b16098fec118c45bf8bb2f3b1560df09'
2050 '49254c1c0aeb0a16d5a95a40fab8521fbe8ea77c51169b587cc3360e'
2051 '5733e6a23b9fded8c40724ea1f9e93614b3a6c9b4f8dbbe915b79449'
2052 '7227ba62', 16),
2053 'r': int('343ea0a9e66277380f604d5880fca686bffab69ca97bfba015a102a'
2054 '7e23dce0e', 16),
2055 's': int('6258488c770e0f5ad7b9da8bade5023fc0d17c6ec517bd08d53e6dc'
2056 '01ac5c2b3', 16),
2057 'result': 'P'}
2058 ]
2059
Mohammed Attia3c9e1582014-04-22 14:24:44 +02002060 assert expected == load_fips_dsa_sig_vectors(vector_data)
2061
2062
2063def test_load_fips_dsa_sig_gen_vectors():
2064 vector_data = textwrap.dedent("""
2065 # CAVS 11.2
2066 # "SigGen" information for "dsa2_values"
2067 # Mod sizes selected: SHA-1 L=1024, N=160, SHA-256 L=2048, N=256
2068
2069 [mod = L=1024, N=160, SHA-1]
2070
2071 P = a8f9cd201e5e35d892f85f80e4db2599a5676a3b1d4f190330ed3256b26d0e80a0e49\
2072a8fffaaad2a24f472d2573241d4d6d6c7480c80b4c67bb4479c15ada7ea8424d2502fa01472e7\
207360241713dab025ae1b02e1703a1435f62ddf4ee4c1b664066eb22f2e3bf28bb70a2a76e4fd5eb\
2074e2d1229681b5b06439ac9c7e9d8bde283
2075 Q = f85f0f83ac4df7ea0cdf8f469bfeeaea14156495
2076 G = 2b3152ff6c62f14622b8f48e59f8af46883b38e79b8c74deeae9df131f8b856e3ad6c\
20778455dab87cc0da8ac973417ce4f7878557d6cdf40b35b4a0ca3eb310c6a95d68ce284ad4e25ea\
207828591611ee08b8444bd64b25f3f7c572410ddfb39cc728b9c936f85f419129869929cdb909a6a\
20793a99bbe089216368171bd0ba81de4fe33
2080
2081 Msg = 3b46736d559bd4e0c2c1b2553a33ad3c6cf23cac998d3d0c0e8fa4b19bca06f2f38\
20826db2dcff9dca4f40ad8f561ffc308b46c5f31a7735b5fa7e0f9e6cb512e63d7eea05538d66a75\
2083cd0d4234b5ccf6c1715ccaaf9cdc0a2228135f716ee9bdee7fc13ec27a03a6d11c5c5b3685f51\
2084900b1337153bc6c4e8f52920c33fa37f4e7
2085 Y = 313fd9ebca91574e1c2eebe1517c57e0c21b0209872140c5328761bbb2450b33f1b18\
2086b409ce9ab7c4cd8fda3391e8e34868357c199e16a6b2eba06d6749def791d79e95d3a4d09b24c\
2087392ad89dbf100995ae19c01062056bb14bce005e8731efde175f95b975089bdcdaea562b32786\
2088d96f5a31aedf75364008ad4fffebb970b
2089 R = 50ed0e810e3f1c7cb6ac62332058448bd8b284c0
2090 S = c6aded17216b46b7e4b6f2a97c1ad7cc3da83fde
2091
2092 Msg = d2bcb53b044b3e2e4b61ba2f91c0995fb83a6a97525e66441a3b489d9594238bc74\
20930bdeea0f718a769c977e2de003877b5d7dc25b182ae533db33e78f2c3ff0645f2137abc137d4e\
20947d93ccf24f60b18a820bc07c7b4b5fe08b4f9e7d21b256c18f3b9d49acc4f93e2ce6f3754c780\
20957757d2e1176042612cb32fc3f4f70700e25
2096 Y = 29bdd759aaa62d4bf16b4861c81cf42eac2e1637b9ecba512bdbc13ac12a80ae8de25\
209726b899ae5e4a231aef884197c944c732693a634d7659abc6975a773f8d3cd5a361fe2492386a3\
2098c09aaef12e4a7e73ad7dfc3637f7b093f2c40d6223a195c136adf2ea3fbf8704a675aa7817aa7\
2099ec7f9adfb2854d4e05c3ce7f76560313b
2100 R = a26c00b5750a2d27fe7435b93476b35438b4d8ab
2101 S = 61c9bfcb2938755afa7dad1d1e07c6288617bf70
2102
2103 [mod = L=2048, N=256, SHA-256]
2104
2105 P = a8adb6c0b4cf9588012e5deff1a871d383e0e2a85b5e8e03d814fe13a059705e66323\
21060a377bf7323a8fa117100200bfd5adf857393b0bbd67906c081e585410e38480ead51684dac3a\
210738f7b64c9eb109f19739a4517cd7d5d6291e8af20a3fbf17336c7bf80ee718ee087e322ee4104\
21087dabefbcc34d10b66b644ddb3160a28c0639563d71993a26543eadb7718f317bf5d9577a61565\
210961b082a10029cd44012b18de6844509fe058ba87980792285f2750969fe89c2cd6498db354563\
21108d5379d125dccf64e06c1af33a6190841d223da1513333a7c9d78462abaab31b9f96d5f34445c\
2111eb6309f2f6d2c8dde06441e87980d303ef9a1ff007e8be2f0be06cc15f
2112 Q = e71f8567447f42e75f5ef85ca20fe557ab0343d37ed09edc3f6e68604d6b9dfb
2113 G = 5ba24de9607b8998e66ce6c4f812a314c6935842f7ab54cd82b19fa104abfb5d84579\
2114a623b2574b37d22ccae9b3e415e48f5c0f9bcbdff8071d63b9bb956e547af3a8df99e5d306197\
21159652ff96b765cb3ee493643544c75dbe5bb39834531952a0fb4b0378b3fcbb4c8b5800a533039\
21162a2a04e700bb6ed7e0b85795ea38b1b962741b3f33b9dde2f4ec1354f09e2eb78e95f037a5804\
2117b6171659f88715ce1a9b0cc90c27f35ef2f10ff0c7c7a2bb0154d9b8ebe76a3d764aa879af372\
2118f4240de8347937e5a90cec9f41ff2f26b8da9a94a225d1a913717d73f10397d2183f1ba3b7b45\
2119a68f1ff1893caf69a827802f7b6a48d51da6fbefb64fd9a6c5b75c4561
2120
2121 Msg = 4e3a28bcf90d1d2e75f075d9fbe55b36c5529b17bc3a9ccaba6935c9e20548255b3\
2122dfae0f91db030c12f2c344b3a29c4151c5b209f5e319fdf1c23b190f64f1fe5b330cb7c8fa952\
2123f9d90f13aff1cb11d63181da9efc6f7e15bfed4862d1a62c7dcf3ba8bf1ff304b102b1ec3f149\
21247dddf09712cf323f5610a9d10c3d9132659
2125 Y = 5a55dceddd1134ee5f11ed85deb4d634a3643f5f36dc3a70689256469a0b651ad2288\
21260f14ab85719434f9c0e407e60ea420e2a0cd29422c4899c416359dbb1e592456f2b3cce233259\
2127c117542fd05f31ea25b015d9121c890b90e0bad033be1368d229985aac7226d1c8c2eab325ef3\
2128b2cd59d3b9f7de7dbc94af1a9339eb430ca36c26c46ecfa6c5481711496f624e188ad7540ef5d\
2129f26f8efacb820bd17a1f618acb50c9bc197d4cb7ccac45d824a3bf795c234b556b06aeb929173\
2130453252084003f69fe98045fe74002ba658f93475622f76791d9b2623d1b5fff2cc16844746efd\
21312d30a6a8134bfc4c8cc80a46107901fb973c28fc553130f3286c1489da
2132 R = 633055e055f237c38999d81c397848c38cce80a55b649d9e7905c298e2a51447
2133 S = 2bbf68317660ec1e4b154915027b0bc00ee19cfc0bf75d01930504f2ce10a8b0
2134
2135 Msg = a733b3f588d5ac9b9d4fe2f804df8c256403a9f8eef6f191fc48e1267fb5b4d546b\
2136a11e77b667844e489bf0d5f72990aeb061d01ccd7949a23def74a803b7d92d51abfadeb4885ff\
2137d8ffd58ab87548a15c087a39b8993b2fa64c9d31a594eeb7512da16955834336a234435c5a9d0\
2138dd9b15a94e116154dea63fdc8dd7a512181
2139 Y = 356ed47537fbf02cb30a8cee0537f300dff1d0c467399ce70b87a8758d5ec9dd25624\
21406fccaeb9dfe109f2a984f2ddaa87aad54ce0d31f907e504521baf4207d7073b0a4a9fc67d8ddd\
2141a99f87aed6e0367cec27f9c608af743bf1ee6e11d55a182d43b024ace534029b866f6422828bb\
214281a39aae9601ee81c7f81dd358e69f4e2edfa4654d8a65bc64311dc86aac4abc1fc7a3f651596\
214361a0d8e288eb8d665cb0adf5ac3d6ba8e9453facf7542393ae24fd50451d3828086558f7ec528\
2144e284935a53f67a1aa8e25d8ad5c4ad55d83aef883a4d9eeb6297e6a53f65049ba9e2c6b7953a7\
214560bc1dc46f78ceaaa2c02f5375dd82e708744aa40b15799eb81d7e5b1a
2146 R = bcd490568c0a89ba311bef88ea4f4b03d273e793722722327095a378dd6f3522
2147 S = 74498fc43091fcdd2d1ef0775f8286945a01cd72b805256b0451f9cbd943cf82
2148 """).splitlines()
2149
2150 expected = [
2151 {
2152 'p': int('a8f9cd201e5e35d892f85f80e4db2599a5676a3b1d4f190330ed325'
2153 '6b26d0e80a0e49a8fffaaad2a24f472d2573241d4d6d6c7480c80b4'
2154 'c67bb4479c15ada7ea8424d2502fa01472e760241713dab025ae1b0'
2155 '2e1703a1435f62ddf4ee4c1b664066eb22f2e3bf28bb70a2a76e4fd'
2156 '5ebe2d1229681b5b06439ac9c7e9d8bde283', 16),
2157 'q': int('f85f0f83ac4df7ea0cdf8f469bfeeaea14156495', 16),
2158 'g': int('2b3152ff6c62f14622b8f48e59f8af46883b38e79b8c74deeae9df1'
2159 '31f8b856e3ad6c8455dab87cc0da8ac973417ce4f7878557d6cdf40'
2160 'b35b4a0ca3eb310c6a95d68ce284ad4e25ea28591611ee08b8444bd'
2161 '64b25f3f7c572410ddfb39cc728b9c936f85f419129869929cdb909'
2162 'a6a3a99bbe089216368171bd0ba81de4fe33', 16),
2163 'digest_algorithm': 'SHA-1',
2164 'msg': binascii.unhexlify(
2165 b'3b46736d559bd4e0c2c1b2553a33ad3c6cf23cac998d3d0c0e8fa4b19bc'
2166 b'a06f2f386db2dcff9dca4f40ad8f561ffc308b46c5f31a7735b5fa7e0f9'
2167 b'e6cb512e63d7eea05538d66a75cd0d4234b5ccf6c1715ccaaf9cdc0a222'
2168 b'8135f716ee9bdee7fc13ec27a03a6d11c5c5b3685f51900b1337153bc6c'
2169 b'4e8f52920c33fa37f4e7'),
2170 'y': int('313fd9ebca91574e1c2eebe1517c57e0c21b0209872140c5328761b'
2171 'bb2450b33f1b18b409ce9ab7c4cd8fda3391e8e34868357c199e16a'
2172 '6b2eba06d6749def791d79e95d3a4d09b24c392ad89dbf100995ae1'
2173 '9c01062056bb14bce005e8731efde175f95b975089bdcdaea562b32'
2174 '786d96f5a31aedf75364008ad4fffebb970b', 16),
2175 'r': int('50ed0e810e3f1c7cb6ac62332058448bd8b284c0', 16),
2176 's': int('c6aded17216b46b7e4b6f2a97c1ad7cc3da83fde', 16)},
2177 {
2178 'p': int('a8f9cd201e5e35d892f85f80e4db2599a5676a3b1d4f190330ed325'
2179 '6b26d0e80a0e49a8fffaaad2a24f472d2573241d4d6d6c7480c80b4'
2180 'c67bb4479c15ada7ea8424d2502fa01472e760241713dab025ae1b0'
2181 '2e1703a1435f62ddf4ee4c1b664066eb22f2e3bf28bb70a2a76e4fd'
2182 '5ebe2d1229681b5b06439ac9c7e9d8bde283', 16),
2183 'q': int('f85f0f83ac4df7ea0cdf8f469bfeeaea14156495', 16),
2184 'g': int('2b3152ff6c62f14622b8f48e59f8af46883b38e79b8c74deeae9df1'
2185 '31f8b856e3ad6c8455dab87cc0da8ac973417ce4f7878557d6cdf40'
2186 'b35b4a0ca3eb310c6a95d68ce284ad4e25ea28591611ee08b8444bd'
2187 '64b25f3f7c572410ddfb39cc728b9c936f85f419129869929cdb909'
2188 'a6a3a99bbe089216368171bd0ba81de4fe33', 16),
2189 'digest_algorithm': 'SHA-1',
2190 'msg': binascii.unhexlify(
2191 b'd2bcb53b044b3e2e4b61ba2f91c0995fb83a6a97525e66441a3b489d959'
2192 b'4238bc740bdeea0f718a769c977e2de003877b5d7dc25b182ae533db33e'
2193 b'78f2c3ff0645f2137abc137d4e7d93ccf24f60b18a820bc07c7b4b5fe08'
2194 b'b4f9e7d21b256c18f3b9d49acc4f93e2ce6f3754c7807757d2e11760426'
2195 b'12cb32fc3f4f70700e25'),
2196 'y': int('29bdd759aaa62d4bf16b4861c81cf42eac2e1637b9ecba512bdbc13'
2197 'ac12a80ae8de2526b899ae5e4a231aef884197c944c732693a634d7'
2198 '659abc6975a773f8d3cd5a361fe2492386a3c09aaef12e4a7e73ad7'
2199 'dfc3637f7b093f2c40d6223a195c136adf2ea3fbf8704a675aa7817'
2200 'aa7ec7f9adfb2854d4e05c3ce7f76560313b', 16),
2201 'r': int('a26c00b5750a2d27fe7435b93476b35438b4d8ab', 16),
2202 's': int('61c9bfcb2938755afa7dad1d1e07c6288617bf70', 16)},
2203 {
2204 'p': int('a8adb6c0b4cf9588012e5deff1a871d383e0e2a85b5e8e03d814fe1'
2205 '3a059705e663230a377bf7323a8fa117100200bfd5adf857393b0bb'
2206 'd67906c081e585410e38480ead51684dac3a38f7b64c9eb109f1973'
2207 '9a4517cd7d5d6291e8af20a3fbf17336c7bf80ee718ee087e322ee4'
2208 '1047dabefbcc34d10b66b644ddb3160a28c0639563d71993a26543e'
2209 'adb7718f317bf5d9577a6156561b082a10029cd44012b18de684450'
2210 '9fe058ba87980792285f2750969fe89c2cd6498db3545638d5379d1'
2211 '25dccf64e06c1af33a6190841d223da1513333a7c9d78462abaab31'
2212 'b9f96d5f34445ceb6309f2f6d2c8dde06441e87980d303ef9a1ff00'
2213 '7e8be2f0be06cc15f', 16),
2214 'q': int('e71f8567447f42e75f5ef85ca20fe557ab0343d37ed09edc3f6e686'
2215 '04d6b9dfb', 16),
2216 'g': int('5ba24de9607b8998e66ce6c4f812a314c6935842f7ab54cd82b19fa'
2217 '104abfb5d84579a623b2574b37d22ccae9b3e415e48f5c0f9bcbdff'
2218 '8071d63b9bb956e547af3a8df99e5d3061979652ff96b765cb3ee49'
2219 '3643544c75dbe5bb39834531952a0fb4b0378b3fcbb4c8b5800a533'
2220 '0392a2a04e700bb6ed7e0b85795ea38b1b962741b3f33b9dde2f4ec'
2221 '1354f09e2eb78e95f037a5804b6171659f88715ce1a9b0cc90c27f3'
2222 '5ef2f10ff0c7c7a2bb0154d9b8ebe76a3d764aa879af372f4240de8'
2223 '347937e5a90cec9f41ff2f26b8da9a94a225d1a913717d73f10397d'
2224 '2183f1ba3b7b45a68f1ff1893caf69a827802f7b6a48d51da6fbefb'
2225 '64fd9a6c5b75c4561', 16),
2226 'digest_algorithm': 'SHA-256',
2227 'msg': binascii.unhexlify(
2228 b'4e3a28bcf90d1d2e75f075d9fbe55b36c5529b17bc3a9ccaba6935c9e20'
2229 b'548255b3dfae0f91db030c12f2c344b3a29c4151c5b209f5e319fdf1c23'
2230 b'b190f64f1fe5b330cb7c8fa952f9d90f13aff1cb11d63181da9efc6f7e1'
2231 b'5bfed4862d1a62c7dcf3ba8bf1ff304b102b1ec3f1497dddf09712cf323'
2232 b'f5610a9d10c3d9132659'),
2233 'y': int('5a55dceddd1134ee5f11ed85deb4d634a3643f5f36dc3a706892564'
2234 '69a0b651ad22880f14ab85719434f9c0e407e60ea420e2a0cd29422'
2235 'c4899c416359dbb1e592456f2b3cce233259c117542fd05f31ea25b'
2236 '015d9121c890b90e0bad033be1368d229985aac7226d1c8c2eab325'
2237 'ef3b2cd59d3b9f7de7dbc94af1a9339eb430ca36c26c46ecfa6c548'
2238 '1711496f624e188ad7540ef5df26f8efacb820bd17a1f618acb50c9'
2239 'bc197d4cb7ccac45d824a3bf795c234b556b06aeb92917345325208'
2240 '4003f69fe98045fe74002ba658f93475622f76791d9b2623d1b5fff'
2241 '2cc16844746efd2d30a6a8134bfc4c8cc80a46107901fb973c28fc5'
2242 '53130f3286c1489da', 16),
2243 'r': int('633055e055f237c38999d81c397848c38cce80a55b649d9e7905c29'
2244 '8e2a51447', 16),
2245 's': int('2bbf68317660ec1e4b154915027b0bc00ee19cfc0bf75d01930504f'
2246 '2ce10a8b0', 16)},
2247 {
2248 'p': int('a8adb6c0b4cf9588012e5deff1a871d383e0e2a85b5e8e03d814fe1'
2249 '3a059705e663230a377bf7323a8fa117100200bfd5adf857393b0bb'
2250 'd67906c081e585410e38480ead51684dac3a38f7b64c9eb109f1973'
2251 '9a4517cd7d5d6291e8af20a3fbf17336c7bf80ee718ee087e322ee4'
2252 '1047dabefbcc34d10b66b644ddb3160a28c0639563d71993a26543e'
2253 'adb7718f317bf5d9577a6156561b082a10029cd44012b18de684450'
2254 '9fe058ba87980792285f2750969fe89c2cd6498db3545638d5379d1'
2255 '25dccf64e06c1af33a6190841d223da1513333a7c9d78462abaab31'
2256 'b9f96d5f34445ceb6309f2f6d2c8dde06441e87980d303ef9a1ff00'
2257 '7e8be2f0be06cc15f', 16),
2258 'q': int('e71f8567447f42e75f5ef85ca20fe557ab0343d37ed09edc3f6e686'
2259 '04d6b9dfb', 16),
2260 'g': int('5ba24de9607b8998e66ce6c4f812a314c6935842f7ab54cd82b19fa'
2261 '104abfb5d84579a623b2574b37d22ccae9b3e415e48f5c0f9bcbdff'
2262 '8071d63b9bb956e547af3a8df99e5d3061979652ff96b765cb3ee49'
2263 '3643544c75dbe5bb39834531952a0fb4b0378b3fcbb4c8b5800a533'
2264 '0392a2a04e700bb6ed7e0b85795ea38b1b962741b3f33b9dde2f4ec'
2265 '1354f09e2eb78e95f037a5804b6171659f88715ce1a9b0cc90c27f3'
2266 '5ef2f10ff0c7c7a2bb0154d9b8ebe76a3d764aa879af372f4240de8'
2267 '347937e5a90cec9f41ff2f26b8da9a94a225d1a913717d73f10397d'
2268 '2183f1ba3b7b45a68f1ff1893caf69a827802f7b6a48d51da6fbefb'
2269 '64fd9a6c5b75c4561', 16),
2270 'digest_algorithm': 'SHA-256',
2271 'msg': binascii.unhexlify(
2272 b'a733b3f588d5ac9b9d4fe2f804df8c256403a9f8eef6f191fc48e1267fb'
2273 b'5b4d546ba11e77b667844e489bf0d5f72990aeb061d01ccd7949a23def7'
2274 b'4a803b7d92d51abfadeb4885ffd8ffd58ab87548a15c087a39b8993b2fa'
2275 b'64c9d31a594eeb7512da16955834336a234435c5a9d0dd9b15a94e11615'
2276 b'4dea63fdc8dd7a512181'),
2277 'y': int('356ed47537fbf02cb30a8cee0537f300dff1d0c467399ce70b87a87'
2278 '58d5ec9dd256246fccaeb9dfe109f2a984f2ddaa87aad54ce0d31f9'
2279 '07e504521baf4207d7073b0a4a9fc67d8ddda99f87aed6e0367cec2'
2280 '7f9c608af743bf1ee6e11d55a182d43b024ace534029b866f642282'
2281 '8bb81a39aae9601ee81c7f81dd358e69f4e2edfa4654d8a65bc6431'
2282 '1dc86aac4abc1fc7a3f65159661a0d8e288eb8d665cb0adf5ac3d6b'
2283 'a8e9453facf7542393ae24fd50451d3828086558f7ec528e284935a'
2284 '53f67a1aa8e25d8ad5c4ad55d83aef883a4d9eeb6297e6a53f65049'
2285 'ba9e2c6b7953a760bc1dc46f78ceaaa2c02f5375dd82e708744aa40'
2286 'b15799eb81d7e5b1a', 16),
2287 'r': int('bcd490568c0a89ba311bef88ea4f4b03d273e793722722327095a37'
2288 '8dd6f3522', 16),
2289 's': int('74498fc43091fcdd2d1ef0775f8286945a01cd72b805256b0451f9c'
2290 'bd943cf82', 16)}
2291 ]
2292 assert expected == load_fips_dsa_sig_vectors(vector_data)
Alex Stapletoncf048602014-04-12 12:48:59 +01002293
2294
2295def test_load_fips_ecdsa_key_pair_vectors():
2296 vector_data = textwrap.dedent("""
2297 # CAVS 11.0
2298 # "Key Pair" information
2299 # Curves selected: P-192 K-233 B-571
2300 # Generated on Wed Mar 16 16:16:42 2011
2301
2302
2303 [P-192]
2304
2305 [B.4.2 Key Pair Generation by Testing Candidates]
2306 N = 2
2307
2308 d = e5ce89a34adddf25ff3bf1ffe6803f57d0220de3118798ea
2309 Qx = 8abf7b3ceb2b02438af19543d3e5b1d573fa9ac60085840f
2310 Qy = a87f80182dcd56a6a061f81f7da393e7cffd5e0738c6b245
2311
2312 d = 7d14435714ad13ff23341cb567cc91198ff8617cc39751b2
2313 Qx = 39dc723b19527daa1e80425209c56463481b9b47c51f8cbd
2314 Qy = 432a3e84f2a16418834fabaf6b7d2341669512951f1672ad
2315
2316
2317 [K-233]
2318
2319 [B.4.2 Key Pair Generation by Testing Candidates]
2320 N = 2
2321
2322 d = 01da7422b50e3ff051f2aaaed10acea6cbf6110c517da2f4eaca8b5b87
2323 Qx = 01c7475da9a161e4b3f7d6b086494063543a979e34b8d7ac44204d47bf9f
2324 Qy = 0131cbd433f112871cc175943991b6a1350bf0cdd57ed8c831a2a7710c92
2325
2326 d = 530951158f7b1586978c196603c12d25607d2cb0557efadb23cd0ce8
2327 Qx = d37500a0391d98d3070d493e2b392a2c79dc736c097ed24b7dd5ddec44
2328 Qy = 01d996cc79f37d8dba143d4a8ad9a8a60ed7ea760aae1ddba34d883f65d9
2329
2330
2331 [B-571]
2332
2333 [B.4.2 Key Pair Generation by Testing Candidates]
2334 N = 2
2335
2336 d = 01443e93c7ef6802655f641ecbe95e75f1f15b02d2e172f49a32e22047d5c00ebe1b3f\
2337f0456374461360667dbf07bc67f7d6135ee0d1d46a226a530fefe8ebf3b926e9fbad8d57a6
2338 Qx = 053e3710d8e7d4138db0a369c97e5332c1be38a20a4a84c36f5e55ea9fd6f34545b86\
23394ea64f319e74b5ee9e4e1fa1b7c5b2db0e52467518f8c45b658824871d5d4025a6320ca06f8
2340 Qy = 03a22cfd370c4a449b936ae97ab97aab11c57686cca99d14ef184f9417fad8bedae4d\
2341f8357e3710bcda1833b30e297d4bf637938b995d231e557d13f062e81e830af5ab052208ead
2342
2343 d = 03d2bd44ca9eeee8c860a4873ed55a54bdfdf5dab4060df7292877960b85d1fd496aa3\
23443c587347213d7f6bf208a6ab4b430546e7b6ffbc3135bd12f44a28517867ca3c83a821d6f8
2345 Qx = 07a7af10f6617090bade18b2e092d0dfdc87cd616db7f2db133477a82bfe3ea421ebb\
23467d6289980819292a719eb247195529ea60ad62862de0a26c72bfc49ecc81c2f9ed704e3168f
2347 Qy = 0721496cf16f988b1aabef3368450441df8439a0ca794170f270ead56203d675b57f5\
2348a4090a3a2f602a77ff3bac1417f7e25a683f667b3b91f105016a47afad46a0367b18e2bdf0c
2349 """).splitlines()
2350
2351 expected = [
2352 {
2353 "curve": "secp192r1",
2354 "d": int("e5ce89a34adddf25ff3bf1ffe6803f57d0220de3118798ea", 16),
2355 "x": int("8abf7b3ceb2b02438af19543d3e5b1d573fa9ac60085840f", 16),
2356 "y": int("a87f80182dcd56a6a061f81f7da393e7cffd5e0738c6b245", 16)
2357 },
2358
2359 {
2360 "curve": "secp192r1",
2361 "d": int("7d14435714ad13ff23341cb567cc91198ff8617cc39751b2", 16),
2362 "x": int("39dc723b19527daa1e80425209c56463481b9b47c51f8cbd", 16),
2363 "y": int("432a3e84f2a16418834fabaf6b7d2341669512951f1672ad", 16),
2364 },
2365
2366 {
2367 "curve": "sect233k1",
2368 "d": int("1da7422b50e3ff051f2aaaed10acea6cbf6110c517da2f4e"
2369 "aca8b5b87", 16),
2370 "x": int("1c7475da9a161e4b3f7d6b086494063543a979e34b8d7ac4"
2371 "4204d47bf9f", 16),
2372 "y": int("131cbd433f112871cc175943991b6a1350bf0cdd57ed8c83"
2373 "1a2a7710c92", 16),
2374 },
2375
2376 {
2377 "curve": "sect233k1",
2378 "d": int("530951158f7b1586978c196603c12d25607d2cb0557efadb"
2379 "23cd0ce8", 16),
2380 "x": int("d37500a0391d98d3070d493e2b392a2c79dc736c097ed24b"
2381 "7dd5ddec44", 16),
2382 "y": int("1d996cc79f37d8dba143d4a8ad9a8a60ed7ea760aae1ddba"
2383 "34d883f65d9", 16),
2384 },
2385
2386 {
2387 "curve": "sect571r1",
2388 "d": int("1443e93c7ef6802655f641ecbe95e75f1f15b02d2e172f49"
2389 "a32e22047d5c00ebe1b3ff0456374461360667dbf07bc67f"
2390 "7d6135ee0d1d46a226a530fefe8ebf3b926e9fbad8d57a6", 16),
2391 "x": int("53e3710d8e7d4138db0a369c97e5332c1be38a20a4a84c36"
2392 "f5e55ea9fd6f34545b864ea64f319e74b5ee9e4e1fa1b7c5"
2393 "b2db0e52467518f8c45b658824871d5d4025a6320ca06f8", 16),
2394 "y": int("3a22cfd370c4a449b936ae97ab97aab11c57686cca99d14e"
2395 "f184f9417fad8bedae4df8357e3710bcda1833b30e297d4b"
2396 "f637938b995d231e557d13f062e81e830af5ab052208ead", 16),
2397 },
2398
2399 {
2400 "curve": "sect571r1",
2401 "d": int("3d2bd44ca9eeee8c860a4873ed55a54bdfdf5dab4060df72"
2402 "92877960b85d1fd496aa33c587347213d7f6bf208a6ab4b4"
2403 "30546e7b6ffbc3135bd12f44a28517867ca3c83a821d6f8", 16),
2404 "x": int("7a7af10f6617090bade18b2e092d0dfdc87cd616db7f2db1"
2405 "33477a82bfe3ea421ebb7d6289980819292a719eb2471955"
2406 "29ea60ad62862de0a26c72bfc49ecc81c2f9ed704e3168f", 16),
2407 "y": int("721496cf16f988b1aabef3368450441df8439a0ca794170f"
2408 "270ead56203d675b57f5a4090a3a2f602a77ff3bac1417f7"
2409 "e25a683f667b3b91f105016a47afad46a0367b18e2bdf0c", 16),
2410 },
2411 ]
2412
2413 assert expected == load_fips_ecdsa_key_pair_vectors(vector_data)
Alex Stapletonc387cf72014-04-13 13:58:02 +01002414
2415
2416def test_load_fips_ecdsa_signing_vectors():
2417 vector_data = textwrap.dedent("""
2418 # CAVS 11.2
2419 # "SigVer" information for "ecdsa_values"
2420 # Curves/SHAs selected: P-192, B-571,SHA-512
2421 # Generated on Tue Aug 16 15:27:42 2011
2422
2423 [P-192,SHA-1]
2424
2425 Msg = ebf748d748ebbca7d29fb473698a6e6b4fb10c865d4af024cc39ae3df3464ba4f1d6\
2426d40f32bf9618a91bb5986fa1a2af048a0e14dc51e5267eb05e127d689d0ac6f1a7f156ce066316\
2427b971cc7a11d0fd7a2093e27cf2d08727a4e6748cc32fd59c7810c5b9019df21cdcc0bca432c0a3\
2428eed0785387508877114359cee4a071cf
2429 d = e14f37b3d1374ff8b03f41b9b3fdd2f0ebccf275d660d7f3
2430 Qx = 07008ea40b08dbe76432096e80a2494c94982d2d5bcf98e6
2431 Qy = 76fab681d00b414ea636ba215de26d98c41bd7f2e4d65477
2432 k = cb0abc7043a10783684556fb12c4154d57bc31a289685f25
2433 R = 6994d962bdd0d793ffddf855ec5bf2f91a9698b46258a63e
2434 S = 02ba6465a234903744ab02bc8521405b73cf5fc00e1a9f41
Alex Stapleton6f729492014-04-19 09:01:25 +01002435 Result = F (3 - S changed)
Alex Stapletonc387cf72014-04-13 13:58:02 +01002436
2437 Msg = 0dcb3e96d77ee64e9d0a350d31563d525755fc675f0c833504e83fc69c030181b42f\
2438e80c378e86274a93922c570d54a7a358c05755ec3ae91928e02236e81b43e596e4ccbf6a910488\
24399c388072bec4e1faeae11fe4eb24fa4f9573560dcf2e3abc703c526d46d502c7a7222583431cc8\
2440178354ae7dbb84e3479917707bce0968
2441 d = 7a0235bea3d70445f14d56f9b7fb80ec8ff4eb2f76865244
2442 Qx = 0ea3c1fa1f124f26530cbfddeb831eecc67df31e08889d1d
2443 Qy = 7215a0cce0501b47903bd8fe1179c2dfe07bd076f89f5225
2444 k = 3c646b0f03f5575e5fd463d4319817ce8bd3022eaf551cef
2445 R = a3ba51c39c43991d87dff0f34d0bec7c883299e04f60f95e
2446 S = 8a7f9c59c6d65ad390e4c19636ba92b53be5d0f848b4e1f7
2447
2448 [B-571,SHA-512]
2449
2450 Msg = 10d2e00ae57176c79cdfc746c0c887abe799ee445b151b008e3d9f81eb69be40298d\
2451df37b5c45a9b6e5ff83785d8c140cf11e6a4c3879a2845796872363da24b10f1f8d9cc48f8af20\
2452681dceb60dd62095d6d3b1779a4a805de3d74e38983b24c0748618e2f92ef7cac257ff4bd1f411\
245313f2891eb13c47930e69ddbe91f270fb
2454 d = 03e1b03ffca4399d5b439fac8f87a5cb06930f00d304193d7daf83d5947d0c1e293f74\
2455aef8e56849f16147133c37a6b3d1b1883e5d61d6b871ea036c5291d9a74541f28878cb986
2456 Qx = 3b236fc135d849d50140fdaae1045e6ae35ef61091e98f5059b30eb16acdd0deb2bc0\
2457d3544bc3a666e0014e50030134fe5466a9e4d3911ed580e28851f3747c0010888e819d3d1f
2458 Qy = 3a8b6627a587d289032bd76374d16771188d7ff281c39542c8977f6872fa932e5daa1\
24594e13792dea9ffe8e9f68d6b525ec99b81a5a60cfb0590cc6f297cfff8d7ba1a8bb81fe2e16
2460 k = 2e56a94cfbbcd293e242f0c2a2e9df289a9480e6ba52e0f00fa19bcf2a7769bd155e6b\
246179ddbd6a8646b0e69c8baea27f8034a18796e8eb4fe6e0e2358c383521d9375d2b6b437f9
2462 R = 2eb1c5c1fc93cf3c8babed12c031cf1504e094174fd335104cbe4a2abd210b5a14b1c3\
2463a455579f1ed0517c31822340e4dd3c1f967e1b4b9d071a1072afc1a199f8c548cd449a634
2464 S = 22f97bb48641235826cf4e597fa8de849402d6bd6114ad2d7fbcf53a08247e5ee921f1\
2465bd5994dffee36eedff5592bb93b8bb148214da3b7baebffbd96b4f86c55b3f6bbac142442
Alex Stapleton6f729492014-04-19 09:01:25 +01002466 Result = P (0 )
Alex Stapletonc387cf72014-04-13 13:58:02 +01002467
2468 Msg = b61a0849a28672cb536fcf61ea2eb389d02ff7a09aa391744cae6597bd56703c40c5\
24690ca2dee5f7ee796acfd47322f03d8dbe4d99dc8eec588b4e5467f123075b2d74b2a0b0bbfd3ac5\
2470487a905fad6d6ac1421c2e564c0cf15e1f0f10bc31c249b7b46edd2462a55f85560d99bde9d5b0\
24716b97817d1dbe0a67c701d6e6e7878272
2472 d = 2e09ffd8b434bb7f67d1d3ccf482164f1653c6e4ec64dec2517aa21b7a93b2b21ea1ee\
2473bb54734882f29303e489f02e3b741a87287e2dcdf3858eb6d2ec668f8b5b26f442ce513a2
2474 Qx = 36f1be8738dd7dae4486b86a08fe90424f3673e76b10e739442e15f3bfafaf841842a\
2475c98e490521b7e7bb94c127529f6ec6a42cc6f06fc80606f1210fe020ff508148f93301c9d3
2476 Qy = 4d39666ebe99fe214336ad440d776c88eb916f2f4a3433548b87d2aebed840b424d15\
2477c8341b4a0a657bf6a234d4fe78631c8e07ac1f4dc7474cd6b4545d536b7b17c160db4562d9
2478 k = 378e7801566d7b77db7a474717ab2195b02957cc264a9449d4126a7cc574728ed5a476\
24799abd5dde987ca66cfe3d45b5fc52ffd266acb8a8bb3fcb4b60f7febbf48aebe33bd3efbdd
2480 R = 3d8105f87fe3166046c08e80a28acc98a80b8b7a729623053c2a9e80afd06756edfe09\
2481bdcf3035f6829ede041b745955d219dc5d30ddd8b37f6ba0f6d2857504cdc68a1ed812a10
2482 S = 34db9998dc53527114518a7ce3783d674ca8cced823fa05e2942e7a0a20b3cc583dcd9\
248330c43f9b93079c5ee18a1f5a66e7c3527c18610f9b47a4da7e245ef803e0662e4d2ad721c
2484 """).splitlines()
2485
2486 expected = [
2487 {
2488 "curve": "secp192r1",
2489 "digest_algorithm": "SHA-1",
Alex Stapletonfb812d62014-04-15 16:07:25 +01002490 "message": binascii.unhexlify(
Alex Stapletonc387cf72014-04-13 13:58:02 +01002491 b"ebf748d748ebbca7d29fb473698a6e6b4fb10c865d4af024cc39ae3df346"
2492 b"4ba4f1d6d40f32bf9618a91bb5986fa1a2af048a0e14dc51e5267eb05e12"
2493 b"7d689d0ac6f1a7f156ce066316b971cc7a11d0fd7a2093e27cf2d08727a4"
2494 b"e6748cc32fd59c7810c5b9019df21cdcc0bca432c0a3eed0785387508877"
2495 b"114359cee4a071cf"
2496 ),
2497 "d": int("e14f37b3d1374ff8b03f41b9b3fdd2f0ebccf275d660d7f3", 16),
2498 "x": int("7008ea40b08dbe76432096e80a2494c94982d2d5bcf98e6", 16),
2499 "y": int("76fab681d00b414ea636ba215de26d98c41bd7f2e4d65477", 16),
2500 "r": int("6994d962bdd0d793ffddf855ec5bf2f91a9698b46258a63e", 16),
Alex Stapleton6f729492014-04-19 09:01:25 +01002501 "s": int("02ba6465a234903744ab02bc8521405b73cf5fc00e1a9f41", 16),
2502 "fail": True
Alex Stapletonc387cf72014-04-13 13:58:02 +01002503 },
2504 {
2505 "curve": "secp192r1",
2506 "digest_algorithm": "SHA-1",
Alex Stapletonfb812d62014-04-15 16:07:25 +01002507 "message": binascii.unhexlify(
Alex Stapletonc387cf72014-04-13 13:58:02 +01002508 b"0dcb3e96d77ee64e9d0a350d31563d525755fc675f0c833504e83fc69c03"
2509 b"0181b42fe80c378e86274a93922c570d54a7a358c05755ec3ae91928e022"
2510 b"36e81b43e596e4ccbf6a9104889c388072bec4e1faeae11fe4eb24fa4f95"
2511 b"73560dcf2e3abc703c526d46d502c7a7222583431cc8178354ae7dbb84e3"
2512 b"479917707bce0968"
2513 ),
2514 "d": int("7a0235bea3d70445f14d56f9b7fb80ec8ff4eb2f76865244", 16),
2515 "x": int("ea3c1fa1f124f26530cbfddeb831eecc67df31e08889d1d", 16),
2516 "y": int("7215a0cce0501b47903bd8fe1179c2dfe07bd076f89f5225", 16),
2517 "r": int("a3ba51c39c43991d87dff0f34d0bec7c883299e04f60f95e", 16),
Alex Stapleton6f729492014-04-19 09:01:25 +01002518 "s": int("8a7f9c59c6d65ad390e4c19636ba92b53be5d0f848b4e1f7", 16),
Alex Stapletonc387cf72014-04-13 13:58:02 +01002519 },
2520 {
2521 "curve": "sect571r1",
2522 "digest_algorithm": "SHA-512",
Alex Stapletonfb812d62014-04-15 16:07:25 +01002523 "message": binascii.unhexlify(
Alex Stapletonc387cf72014-04-13 13:58:02 +01002524 b"10d2e00ae57176c79cdfc746c0c887abe799ee445b151b008e3d9f81eb69"
2525 b"be40298ddf37b5c45a9b6e5ff83785d8c140cf11e6a4c3879a2845796872"
2526 b"363da24b10f1f8d9cc48f8af20681dceb60dd62095d6d3b1779a4a805de3"
2527 b"d74e38983b24c0748618e2f92ef7cac257ff4bd1f41113f2891eb13c4793"
2528 b"0e69ddbe91f270fb"
2529 ),
2530 "d": int("3e1b03ffca4399d5b439fac8f87a5cb06930f00d304193d7daf83d59"
2531 "47d0c1e293f74aef8e56849f16147133c37a6b3d1b1883e5d61d6b87"
2532 "1ea036c5291d9a74541f28878cb986", 16),
2533 "x": int("3b236fc135d849d50140fdaae1045e6ae35ef61091e98f5059b30eb1"
2534 "6acdd0deb2bc0d3544bc3a666e0014e50030134fe5466a9e4d3911ed"
2535 "580e28851f3747c0010888e819d3d1f", 16),
2536 "y": int("3a8b6627a587d289032bd76374d16771188d7ff281c39542c8977f68"
2537 "72fa932e5daa14e13792dea9ffe8e9f68d6b525ec99b81a5a60cfb05"
2538 "90cc6f297cfff8d7ba1a8bb81fe2e16", 16),
2539 "r": int("2eb1c5c1fc93cf3c8babed12c031cf1504e094174fd335104cbe4a2a"
2540 "bd210b5a14b1c3a455579f1ed0517c31822340e4dd3c1f967e1b4b9d"
2541 "071a1072afc1a199f8c548cd449a634", 16),
2542 "s": int("22f97bb48641235826cf4e597fa8de849402d6bd6114ad2d7fbcf53a"
2543 "08247e5ee921f1bd5994dffee36eedff5592bb93b8bb148214da3b7b"
Alex Stapleton6f729492014-04-19 09:01:25 +01002544 "aebffbd96b4f86c55b3f6bbac142442", 16),
2545 "fail": False
Alex Stapletonc387cf72014-04-13 13:58:02 +01002546 },
2547 {
2548 "curve": "sect571r1",
2549 "digest_algorithm": "SHA-512",
Alex Stapleton24a2f072014-04-16 10:00:12 +01002550 "message": binascii.unhexlify(
Alex Stapletonc387cf72014-04-13 13:58:02 +01002551 b"b61a0849a28672cb536fcf61ea2eb389d02ff7a09aa391744cae6597bd56"
2552 b"703c40c50ca2dee5f7ee796acfd47322f03d8dbe4d99dc8eec588b4e5467"
2553 b"f123075b2d74b2a0b0bbfd3ac5487a905fad6d6ac1421c2e564c0cf15e1f"
2554 b"0f10bc31c249b7b46edd2462a55f85560d99bde9d5b06b97817d1dbe0a67"
2555 b"c701d6e6e7878272"
2556 ),
2557 "d": int("2e09ffd8b434bb7f67d1d3ccf482164f1653c6e4ec64dec2517aa21b"
2558 "7a93b2b21ea1eebb54734882f29303e489f02e3b741a87287e2dcdf3"
2559 "858eb6d2ec668f8b5b26f442ce513a2", 16),
2560 "x": int("36f1be8738dd7dae4486b86a08fe90424f3673e76b10e739442e15f3"
2561 "bfafaf841842ac98e490521b7e7bb94c127529f6ec6a42cc6f06fc80"
2562 "606f1210fe020ff508148f93301c9d3", 16),
2563 "y": int("4d39666ebe99fe214336ad440d776c88eb916f2f4a3433548b87d2ae"
2564 "bed840b424d15c8341b4a0a657bf6a234d4fe78631c8e07ac1f4dc74"
2565 "74cd6b4545d536b7b17c160db4562d9", 16),
2566 "r": int("3d8105f87fe3166046c08e80a28acc98a80b8b7a729623053c2a9e80"
2567 "afd06756edfe09bdcf3035f6829ede041b745955d219dc5d30ddd8b3"
2568 "7f6ba0f6d2857504cdc68a1ed812a10", 16),
2569 "s": int("34db9998dc53527114518a7ce3783d674ca8cced823fa05e2942e7a0"
2570 "a20b3cc583dcd930c43f9b93079c5ee18a1f5a66e7c3527c18610f9b"
2571 "47a4da7e245ef803e0662e4d2ad721c", 16)
2572 }
2573 ]
Alex Stapletonc387cf72014-04-13 13:58:02 +01002574 assert expected == load_fips_ecdsa_signing_vectors(vector_data)
Mohammed Attia0fb5d852014-04-21 10:31:15 +02002575
2576
Alex Stapleton839c09d2014-08-10 12:18:02 +01002577def test_load_kasvs_dh_vectors():
2578 vector_data = textwrap.dedent("""
2579 [SHA(s) supported (Used for hashing Z): SHA256 ]
2580 # Generated on Thu Mar 17 20:44:26 2011
2581
2582
2583
2584 [FA - SHA1]
2585 P = da3a8085d372437805de95b88b675122f575df976610c6a844de99f1df82a06848bf7a\
258642f18895c97402e81118e01a00d0855d51922f434c022350861d58ddf60d65bc6941fc6064b147\
2587071a4c30426d82fc90d888f94990267c64beef8c304a4b2b26fb93724d6a9472fa16bc50c5b9b8\
2588b59afb62cfe9ea3ba042c73a6ade35
2589 Q = f2ca7621eb250aa5f22cef1907011295defc50a7
2590 G = a51883e9ac0539859df3d25c716437008bb4bd8ec4786eb4bc643299daef5e3e5af586\
25913a6ac40a597b83a27583f6a658d408825105b16d31b6ed088fc623f648fd6d95e9cefcb0745763\
2592cddf564c87bcf4ba7928e74fd6a3080481f588d535e4c026b58a21e1e5ec412ff241b436043e29\
2593173f1dc6cb943c09742de989547288
2594
2595
2596
2597 COUNT = 0
2598 XstatCAVS = 42c6ee70beb7465928a1efe692d2281b8f7b53d6
2599 YstatCAVS = 5a7890f6d20ee9c7162cd84222cb0c7cb5b4f29244a58fc95327fc41045f47\
26006fb3da42fca76a1dd59222a7a7c3872d5af7d8dc254e003eccdb38f291619c51911df2b6ed67d0\
2601b459f4bc25819c0078777b9a1a24c72e7c037a3720a1edad5863ef5ac75ce816869c820859558d\
26025721089ddbe331f55bef741396a3bbf85c6c1a
2603 XstatIUT = 54081a8fef2127a1f22ed90440b1b09c331d0614
2604 YstatIUT = 0b92af0468b841ea5de4ca91d895b5e922245421de57ed7a88d2de41610b208\
2605e8e233705f17b2e9eb91914bad2fa87f0a58519a7da2980bc06e7411c925a6050526bd86e62150\
26065e6f610b63fdcd9afcfaa96bd087afca44d9197cc35b559f731357a5b979250c0f3a254bb8165f\
26075072156e3fd6f9a6e69bcf4b4578f78b3bde7
2608 Z = 8d8f4175e16e15a42eb9099b11528af88741cc206a088971d3064bb291eda608d1600b\
2609ff829624db258fd15e95d96d3e74c6be3232afe5c855b9c59681ce13b7aea9ff2b16707e4c02f0\
2610e82bf6dadf2149ac62630f6c62dea0e505e3279404da5ffd5a088e8474ae0c8726b8189cb3d2f0\
26114baffe700be849df9f91567fc2ebb8
2612 CAVSHashZZ = eb99e77ac2272c7a2ee70c59375ac4d167312c20
2613 Result = P (0 - Correct)
2614
2615
2616
2617 COUNT = 2
2618 XstatCAVS = 32e642683d745a23dccf4f12f989d8dfd1fd9894c422930950cb4c71
2619 YstatCAVS = 8cd371363b32fcc2e936e345f2278b77001f2efdf78512c3ee75c12f88507e\
26202d5c0e5cdded3bb78435506c8028a3f4d6f028c0f49a0d61f1285795197e56deac80279e723f2b\
26213746e213ac8ec60f1cefc2308ff17a7e9e2efab537e17406d2829fd85e0c54dda2d9f0b4fcda3d\
26222776110e096a817588e19588b77be8b41bafdd41ad91b0edf629333bd6ac1e461208ead124c31b\
26238a7935c723e1c450c5798dc05f8265ad9e35095ff112af9e889f00315fa337a76a450670866eca\
262412cc6ad0778576962eb9cdc12721d3c15e4d87b67488a145d400240670eb26695a42879cd3940a\
262555087f6527667277e1212a202dbe455c45c64b9be4a38153557bbb8fd755
2626 XstatIUT = 7d8ae93df3bc09d399a4157ec562126acf51092c3269ab27f60a3a2b
2627 YstatIUT = 22127e9728e906ea4b1512c8b1e80474b58446210c23ccfc800f83c2c15da81\
262859940e494b235266f6a9d5f80529067794f1a9edd566755d23d0a3060fe074c5a10122df3e4729\
262973bba39ea3a988e8387f5f0491e590b6b5edc299b4598ab1e79b72681a0be8cd8735a5adb85fa3\
26301310f29ec407c9654f1bb83bcdf7f771b68d176817f662e8d798b53ebb4e5dd407b7b1d8fdb62e\
2631a9e1b60d6c3d75d9bcf83f4b8d1ed39408bd8d973b4ea81e8e832eac361dcd530713388a60971e\
2632a9f8b1e69c1e99df1cca12bdaf293dacfa1419c5692ceffa91988aef3321ac8cbc2efae6c4337c\
26338808310fb5a240395a98e6004fe613c39e84f4177341746d9e388dcb2e8
2634 Z = 0efeaa399a182e0a603baf0dd95aa0fae5289ebd47d5f0f60c86bc936839c31c9f7f37\
2635bf04f76ab02f4094a8ab10ed907ec7291585cc085c3e8981df2bd46a01c19ec9a2f66709df1d4f\
2636efbeb48c8263554e46890f59eb642bf95ff7f0de70138621c22c4cc32be6c3d5c82c0c9a76a9f5\
2637a65bffe0c096a350f96a9da945d7e5095b15b566ce3cb8b0377cd9375b6c046afa9ea0bc084677\
26383445f16566b2c84cae4f6d212e89ee539a1ce7ea325273fd228053efce2a585eb9e8f308b48cf4\
2639e29593b6f7a02e8625e1e8bff1ea1405f8c8c34b8339a9a99c7c9de4eb9895df7719ccda9394f5\
26403080eff1226f6b9c7ae0a38941e18b1a137aabbb62308eb35ba2
2641 CAVSHashZZ = 76dedc997d5113573bbeeaf991f62b257511b7d9aa83270dfc4fec40
2642 Result = P (10 - Z value should have leading 0 nibble )
2643
2644
2645
2646 COUNT = 3
2647 XstatCAVS = 66502429aba271e2f2ee2197a2b336e5f0467f192aa28b60dcbf1194
2648 YstatCAVS = dfb001294215423d7146a2453cdb8598ccef01e1d931a913c3e4ed4a3cf38a\
2649912066c28e4eaf77dd80ff07183a6160bd95932f513402f864dcf7a70cbedc9b60bbfbc67f72a8\
26503d5f6463a2b5a4fc906d3e921f5e1069126113265b440e15ccf2d7164bad7131f1613fec35df7f\
2651470d45888e0c91be091f3f9552d670b8b7f479853193cb3c39f35fc7bd547ccb1bc579a67302b4\
2652ba948e6db51043d351bb74a952e6a694e6e7456f714c47d7c8eeeb4fd83ad93c86b78445f9393f\
2653dfd65c7dbd7fd6eba9794ddf183901b1d213321fd0ab3f7588ab0f6b3692f365a87131eda0e062\
2654505861988f6ce63150207545ecf9678e0971330253dfb7cfd546c5346fec
2655 XstatIUT = 106b358be4f068348ac240ecbb454e5c39ca80b078cb0fafd856e9c5
2656 YstatIUT = 715d0781975b7b03162f4401c1eda343fd9bf1140006034573b31828a618c35\
26576163554cd27da956f7179a69e860fb6efeaa2e2aa9f1261506a8344c4929953621381b13d6426e\
2658152c0f2f94bfcd2b758eca24923596d427ed8f957e8bc9b1c7d21a87ef02222a1477cf3bfaadc6\
26598106456ab9706026006eccd290b21543de6bb97d5b8cf4ccee1c081a6d1dd27aaef060fa93888a\
266047a4a416ad5c5bd490ea600e04379232fb1077fbf394f4579accdbe352714e25b88916dca8d8f7\
2661e0c4ed9594f7693f656a235a2e88ebda48b0d557e32da9f12d2a4c3180f05b16b4fba9bec79278\
2662a3971b77f9223b5ab78b857e0376c5008211592c8c72d521373ee3b22b8
2663 Z = cf879ebd107bb877457809c3fc410218b7acba3c5967495a8f1c3370d57f038a48dd69\
2664f9f69b9f4dd855e7c58a1e4ec32646a978266eb314db468ea1dfcee8a85a1644a5732498c4fbcd\
2665f85098c6ed0ce12e431e99142fd2335369b3f56620ada21aa69d883e82a0b5e35484dde32d17c2\
2666dc873f2cc5518eb7fc19695dff9fc94c9d9432bb4b09d8180323cfc561ebc2d6eff8dd5f8496f2\
2667b22377700a22bbfe61a6969c198129397454843e4fc3540026986039665095490056287e4fc49e\
26686cb3181cb2bf06444fd0040150271c9ce1f61c13ecd5dd022194a2dbf3e1c7fbc6bd19497c7b88\
26698b4da613d28fa6f378a43369cb8795a1c823f7d6cf4d84bba578
2670 CAVSHashZZ = ebac4fb70699224f85d9e3c799b1f3a56dab268b882aba49525df02d
2671 Result = F (5 - Z changed )
2672
2673
2674
2675 [FB - SHA224]
2676 P = f3722b9b911c6aede9eaeeaa406283de66a097f39a7225df6c3c916e57920d356e5047\
26778d307dbfd146bfb91b6f68ecbbcf54b3d19c33a4b17293fea3e3d6bff8ac4cca93a805386f062a\
26788a27ae906ef5da94d279fd7b3d7289e00956f76bae9c0d2b8d11742ca5809630632aae58f9c6dc\
2679e00c7380581deffde2187b022f83c6ceaeaadb0844a17fcbb04039ca6843c91f0c9058b22434b2\
268063c3dfda8de8429e087c5be97fc5c9db9526031ad3a218bd9916fb4a3c27966d208b1e360014c0\
26811e95530c148fb3cd27e6a7250d3c3b81dcd220ca14548dbccf99ebb9e334db6bcd14e632c98dd3\
2682f9860af7ae450f1b7809b45f0ec10e6f27672beebc9963befc73
2683 Q = a9a17de95a29091bf8e07dab53ea1aba9403be3c61027c6c8f48bac5
2684 G = 035513ec441402b78353ab1bba550b21c76c89973885a627170262ef52497d5d137b89\
268527a212aaab2f051198c90bb81dffd9eb10b36b7ca3b63565b4c1025aea3b5e9c4a348c9cfa17f3\
2686907a1e4469701c0dedb8a4b9e96c5965b1fb8c229b0c34baac774bf9dda4fc5ee8764358b3c848\
268712878aab7464bc09e97aecab7d7e3fbb4870e2a3b89667a4158bf1ed1a90dfaf47019fbb52b1b9\
26886365bb4e1e9474993fe382fd23480dc875861be152997a621fdb7aef977ea5b4d3d74486b162dc\
268928f95a64cf65587a919a57eef92934fc9410df7f09fa82f975328ed82ff29cc3e15a971f56f4ac\
26902dcb289252575e02a6cdb7fcc6cddd7b0dca9c422e63eb2b8f05
2691
2692
2693
2694 COUNT = 0
2695 XstatCAVS = 1610eaa4e0ccc8857e2b53149e008492b1fbd9025a6e8d95aaee9c0f
2696 YstatCAVS = 51ee21cd9f97015180f258fad5c94ff5a458806b1412087236bf77fe87aae1\
2697a36735816ed6e2160a731159814b6ae1f3f52c478dd9207094adfb62f7667d5c366327e66d2309\
26986395e938504db330953a708015f861fe9d9487611093b9fe7327518a7cc15994ab573313e15411\
26997c1a3ae88b8bdd1e316748249e4a9cbd1947f159836d13613d1f9449fc3442171d1970bc28958c\
27001cafa2776a6f14ccdb29db02f64911bd83bfdcdfc843dd14a4cab9acb0bda8b293d2f5f7050768\
2701e57533cbc415a29e6f31cc365e107f91ae3722484e2c7329a85af69055a5a104da37e810878896\
2702d1b247b02b75234ecff82b1958f42d7b031622e9394c98b5229112f7f620
2703 XstatIUT = 0c4c83d75b27864b052cadc556e500e25aabf0c9d1bc01f0e1fe3862
2704 YstatIUT = 467a857337a82472a1307a64dccc8e9994c5c63ec4312936885d17be419051a\
27055f037fbb052d7010ebe01634d9e8b8b522d9ab4749fdc274f465369b89e360df8f70b7865a3c71\
2706d2dbcd2df19e9293dab1153d3d63fcb7deb559b684dde6c6eed63214444807041c9a0ce3f52ca4\
270739ec16dd231995b5dc6f18e6801b6bd6454babccf9abbfacffb49c71e6494a4779cbfa550c5d71\
270844114e6fc193f460dcd0be7e6e06e546da7653770dc5859df87029e722dbe81361030569148d16\
270936988926bf0dcfe47c9d8a54698c08b3b5c70afe86b5c6f643463f8f34889d27d6cfd2d478c2d7\
2710b3d008a985c7380f0b43f10024b59c3543880883c42d0e7e0a07326ba3a
2711 Z = 10a30bacab82e652415376baffdbc008c7eb2e5a3aa68bc10ce486ca84983fd89b1b02\
27127bb40e75333406361005f5e756526a95fe01202df9217d81b1713d5187c368fdd4c9c2433d9e6c\
271318844769479b725c4140c92a304ee1bc5726d8f5321b5b1c54a1a6b67c527e6817c0ed613a0d4e\
271460db55de898788b7e8d4aa9a81ab5ed7f6282962c433d246ed640555bdd76d29c2874551264d74\
2715c76373f8a88871b41b041c98041b16f94f983ddf00f5bc7d2416d19168c90178974a0602436cd1\
271686748bcc63a629edc3a0db59415cccd37a65130ea477c89da92d41371f5972891cf41f9c7f0e75\
2717ccbff9893225384db30daa5e310f08e3e0fad98bcdf8ecf35fe5
2718 CAVSHashZZ = 014f5daea733d0e9e100f852e74d64a319f741cfbdb47975ab9dd3d0
2719 Result = F (3 - IUT's Static public key fails PKV 5.6.2.4)
2720
2721
2722 COUNT = 1
2723 XstatCAVS = 9ee22ac51664e40e0a24dbb94142dba40605e2b6eeaaa0268a0f6847
2724 YstatCAVS = c2630c9d38ed5c825d1c6a3eba7143f3fc8a049c8bcd1efc212d2af64eca99\
27254308208691d330aa8f27fc4a1e55de4e512113996d21375a667f8c26d76dee2f6809b15432a33f\
2726b735aca5c2263940f58712bded08f55443dee300b9489589e0462bd6bce19deaec4adc12fa61a6\
272794c8c5c999b28211d7835bac0ffd2b316850823e2dc1d1f58e05cbf75c673036d116b3f03b9687\
2728c89f9c2a0d43c4ffc9a605addbdcce0cb3790c6db846156bb857a7b3df40dc6ed04d19cc9eaebb\
27296bbc034e77c3d882a1a62317cce25b6130f0803e3bc49b5e36768260073a617034872be0b50bed\
273032740224beaf582d67fbcfef3b3ecc18f9c71c782e9a68495ef31dc7986e
2731 XstatIUT = 438093a468236658821bf64eb08456139963d4fb27121c3ed6c55876
2732 YstatIUT = e192da8e1244e27221c1765344a5bb379dce741d427a734b4bdb6c4d16b2490\
2733bd37564d745008e63ae46ef332331d79887ac63298ce143e125f8b320c0f859b7f5f2c1e0053e4\
2734a7a16997e6143ff702300c9863ae7caef5c1dfca0ecf5197c557745b793f0790a4fe678aeb93fd\
2735b52490d4f273a5553944dda3ac8b9b792c9b67f8d7b9496398e432a423ae87ebeba688be3ed67e\
2736ddd7575fa56431cd48579bf53c903bbe066dd78b23c0996ef3a880f0d91315104366a82f01abde\
2737cce96fd371f94e8420f8bc5b896c801df573554f749b03d0d28b1e1a990bc61c7e9659342ac7e2\
273868e9c0b7c40fdaab394f29cf0a54f780022f9a03b0bd28eb7db8b0b1b47
2739 Z = 56f8f40fa4b8f3580f9014b30d60a42933a53a62182a690142f458dc275c3b2f0e721b\
2740c5ee6e890b14516419110f5252ff1cceea8e274b2987aa78e3bae90c1935b276b7a1f1c944f79d\
27414774b7a85b3355bdf25cb02bddfbda4ee7918bc93a5c9ca6d7e8fdedbda8e6c8a6ca794bad055a\
274252b19c148958227344cbddd70271d4610316cfea1e559b0bc3a12d15023b30d9f2db602053a056\
27439c3bd2ce1faf59280ecd339f845dbcaaf2e883c5cc6263996f866b18b75d049d4c82097af8a5ce\
2744353e14416b3eeb31ba9bc4f6f3dbd846c5299fb5c0043a1b95b9149b39d14df9e6a69547abf8a4\
2745d518475576730ed528779366568e46b7dd4ed787cb72d0733c93
2746 CAVSHashZZ = 17dbbaa7a20c1390cd8cb3d31ee947bf9dde87739e067b9861ffeea9
2747 Result = P (0 - Correct)
2748 """).splitlines()
2749
2750 expected = [
2751 {
2752 'fail_agree': False,
2753 'fail_z': False,
2754 'g': int(
2755 "a51883e9ac0539859df3d25c716437008bb4bd8ec4786eb4bc643299daef5"
2756 "e3e5af5863a6ac40a597b83a27583f6a658d408825105b16d31b6ed088fc6"
2757 "23f648fd6d95e9cefcb0745763cddf564c87bcf4ba7928e74fd6a3080481f"
2758 "588d535e4c026b58a21e1e5ec412ff241b436043e29173f1dc6cb943c0974"
2759 "2de989547288", 16),
2760 'p': int(
2761 "da3a8085d372437805de95b88b675122f575df976610c6a844de99f1df82a"
2762 "06848bf7a42f18895c97402e81118e01a00d0855d51922f434c022350861d"
2763 "58ddf60d65bc6941fc6064b147071a4c30426d82fc90d888f94990267c64b"
2764 "eef8c304a4b2b26fb93724d6a9472fa16bc50c5b9b8b59afb62cfe9ea3ba0"
2765 "42c73a6ade35", 16),
2766 'q': 1386090807861091316803998193774751098153687863463,
2767 'x1': 381229709512864262422021151581620734547375903702,
2768 'x2': 479735944608461101114916716909067001453470352916,
2769 'y1': int(
2770 "5a7890f6d20ee9c7162cd84222cb0c7cb5b4f29244a58fc95327fc41045f4"
2771 "76fb3da42fca76a1dd59222a7a7c3872d5af7d8dc254e003eccdb38f29161"
2772 "9c51911df2b6ed67d0b459f4bc25819c0078777b9a1a24c72e7c037a3720a"
2773 "1edad5863ef5ac75ce816869c820859558d5721089ddbe331f55bef741396"
2774 "a3bbf85c6c1a", 16),
2775 'y2': int(
2776 "b92af0468b841ea5de4ca91d895b5e922245421de57ed7a88d2de41610b20"
2777 "8e8e233705f17b2e9eb91914bad2fa87f0a58519a7da2980bc06e7411c925"
2778 "a6050526bd86e621505e6f610b63fdcd9afcfaa96bd087afca44d9197cc35"
2779 "b559f731357a5b979250c0f3a254bb8165f5072156e3fd6f9a6e69bcf4b45"
2780 "78f78b3bde7", 16),
2781 'z': binascii.unhexlify(
2782 b"8d8f4175e16e15a42eb9099b11528af88741cc206a088971d3064bb291ed"
2783 b"a608d1600bff829624db258fd15e95d96d3e74c6be3232afe5c855b9c596"
2784 b"81ce13b7aea9ff2b16707e4c02f0e82bf6dadf2149ac62630f6c62dea0e5"
2785 b"05e3279404da5ffd5a088e8474ae0c8726b8189cb3d2f04baffe700be849"
2786 b"df9f91567fc2ebb8"
2787 )
2788 },
2789 {
2790 'fail_agree': False,
2791 'fail_z': False,
2792 'g': int(
2793 "a51883e9ac0539859df3d25c716437008bb4bd8ec4786eb4bc643299daef5"
2794 "e3e5af5863a6ac40a597b83a27583f6a658d408825105b16d31b6ed088fc6"
2795 "23f648fd6d95e9cefcb0745763cddf564c87bcf4ba7928e74fd6a3080481f"
2796 "588d535e4c026b58a21e1e5ec412ff241b436043e29173f1dc6cb943c0974"
2797 "2de989547288", 16),
2798 'p': int(
2799 "da3a8085d372437805de95b88b675122f575df976610c6a844de99f1df82a"
2800 "06848bf7a42f18895c97402e81118e01a00d0855d51922f434c022350861d"
2801 "58ddf60d65bc6941fc6064b147071a4c30426d82fc90d888f94990267c64b"
2802 "eef8c304a4b2b26fb93724d6a9472fa16bc50c5b9b8b59afb62cfe9ea3ba0"
2803 "42c73a6ade35", 16),
2804 'q': 1386090807861091316803998193774751098153687863463,
2805 'x1': int(
2806 "32e642683d745a23dccf4f12f989d8dfd1fd9894c422930950cb4c71",
2807 16),
2808 'x2': int(
2809 "7d8ae93df3bc09d399a4157ec562126acf51092c3269ab27f60a3a2b",
2810 16),
2811 'y1': int(
2812 "8cd371363b32fcc2e936e345f2278b77001f2efdf78512c3ee75c12f88507"
2813 "e2d5c0e5cdded3bb78435506c8028a3f4d6f028c0f49a0d61f1285795197e"
2814 "56deac80279e723f2b3746e213ac8ec60f1cefc2308ff17a7e9e2efab537e"
2815 "17406d2829fd85e0c54dda2d9f0b4fcda3d2776110e096a817588e19588b7"
2816 "7be8b41bafdd41ad91b0edf629333bd6ac1e461208ead124c31b8a7935c72"
2817 "3e1c450c5798dc05f8265ad9e35095ff112af9e889f00315fa337a76a4506"
2818 "70866eca12cc6ad0778576962eb9cdc12721d3c15e4d87b67488a145d4002"
2819 "40670eb26695a42879cd3940a55087f6527667277e1212a202dbe455c45c6"
2820 "4b9be4a38153557bbb8fd755", 16),
2821 'y2': int(
2822 "22127e9728e906ea4b1512c8b1e80474b58446210c23ccfc800f83c2c15da"
2823 "8159940e494b235266f6a9d5f80529067794f1a9edd566755d23d0a3060fe"
2824 "074c5a10122df3e472973bba39ea3a988e8387f5f0491e590b6b5edc299b4"
2825 "598ab1e79b72681a0be8cd8735a5adb85fa31310f29ec407c9654f1bb83bc"
2826 "df7f771b68d176817f662e8d798b53ebb4e5dd407b7b1d8fdb62ea9e1b60d"
2827 "6c3d75d9bcf83f4b8d1ed39408bd8d973b4ea81e8e832eac361dcd5307133"
2828 "88a60971ea9f8b1e69c1e99df1cca12bdaf293dacfa1419c5692ceffa9198"
2829 "8aef3321ac8cbc2efae6c4337c8808310fb5a240395a98e6004fe613c39e8"
2830 "4f4177341746d9e388dcb2e8", 16),
2831 'z': binascii.unhexlify(
2832 b"0efeaa399a182e0a603baf0dd95aa0fae5289ebd47d5f0f60c86bc936839"
2833 b"c31c9f7f37bf04f76ab02f4094a8ab10ed907ec7291585cc085c3e8981df"
2834 b"2bd46a01c19ec9a2f66709df1d4fefbeb48c8263554e46890f59eb642bf9"
2835 b"5ff7f0de70138621c22c4cc32be6c3d5c82c0c9a76a9f5a65bffe0c096a3"
2836 b"50f96a9da945d7e5095b15b566ce3cb8b0377cd9375b6c046afa9ea0bc08"
2837 b"46773445f16566b2c84cae4f6d212e89ee539a1ce7ea325273fd228053ef"
2838 b"ce2a585eb9e8f308b48cf4e29593b6f7a02e8625e1e8bff1ea1405f8c8c3"
2839 b"4b8339a9a99c7c9de4eb9895df7719ccda9394f53080eff1226f6b9c7ae0"
2840 b"a38941e18b1a137aabbb62308eb35ba2"
2841 )
2842 },
2843 {
2844 'fail_agree': False,
2845 'fail_z': True,
2846 'g': int(
2847 "a51883e9ac0539859df3d25c716437008bb4bd8ec4786eb4bc643299daef5"
2848 "e3e5af5863a6ac40a597b83a27583f6a658d408825105b16d31b6ed088fc6"
2849 "23f648fd6d95e9cefcb0745763cddf564c87bcf4ba7928e74fd6a3080481f"
2850 "588d535e4c026b58a21e1e5ec412ff241b436043e29173f1dc6cb943c0974"
2851 "2de989547288", 16),
2852 'p': int(
2853 "da3a8085d372437805de95b88b675122f575df976610c6a844de99f1df82a"
2854 "06848bf7a42f18895c97402e81118e01a00d0855d51922f434c022350861d"
2855 "58ddf60d65bc6941fc6064b147071a4c30426d82fc90d888f94990267c64b"
2856 "eef8c304a4b2b26fb93724d6a9472fa16bc50c5b9b8b59afb62cfe9ea3ba0"
2857 "42c73a6ade35", 16),
2858 'q': 1386090807861091316803998193774751098153687863463,
2859 'x1': int(
2860 "66502429aba271e2f2ee2197a2b336e5f0467f192aa28b60dcbf1194",
2861 16),
2862 'x2': int(
2863 "106b358be4f068348ac240ecbb454e5c39ca80b078cb0fafd856e9c5",
2864 16),
2865 'y1': int(
2866 "dfb001294215423d7146a2453cdb8598ccef01e1d931a913c3e4ed4a3cf38"
2867 "a912066c28e4eaf77dd80ff07183a6160bd95932f513402f864dcf7a70cbe"
2868 "dc9b60bbfbc67f72a83d5f6463a2b5a4fc906d3e921f5e1069126113265b4"
2869 "40e15ccf2d7164bad7131f1613fec35df7f470d45888e0c91be091f3f9552"
2870 "d670b8b7f479853193cb3c39f35fc7bd547ccb1bc579a67302b4ba948e6db"
2871 "51043d351bb74a952e6a694e6e7456f714c47d7c8eeeb4fd83ad93c86b784"
2872 "45f9393fdfd65c7dbd7fd6eba9794ddf183901b1d213321fd0ab3f7588ab0"
2873 "f6b3692f365a87131eda0e062505861988f6ce63150207545ecf9678e0971"
2874 "330253dfb7cfd546c5346fec", 16),
2875 'y2': int(
2876 "715d0781975b7b03162f4401c1eda343fd9bf1140006034573b31828a618c"
2877 "356163554cd27da956f7179a69e860fb6efeaa2e2aa9f1261506a8344c492"
2878 "9953621381b13d6426e152c0f2f94bfcd2b758eca24923596d427ed8f957e"
2879 "8bc9b1c7d21a87ef02222a1477cf3bfaadc68106456ab9706026006eccd29"
2880 "0b21543de6bb97d5b8cf4ccee1c081a6d1dd27aaef060fa93888a47a4a416"
2881 "ad5c5bd490ea600e04379232fb1077fbf394f4579accdbe352714e25b8891"
2882 "6dca8d8f7e0c4ed9594f7693f656a235a2e88ebda48b0d557e32da9f12d2a"
2883 "4c3180f05b16b4fba9bec79278a3971b77f9223b5ab78b857e0376c500821"
2884 "1592c8c72d521373ee3b22b8", 16),
2885 'z': binascii.unhexlify(
2886 b"cf879ebd107bb877457809c3fc410218b7acba3c5967495a8f1c3370d57f"
2887 b"038a48dd69f9f69b9f4dd855e7c58a1e4ec32646a978266eb314db468ea1"
2888 b"dfcee8a85a1644a5732498c4fbcdf85098c6ed0ce12e431e99142fd23353"
2889 b"69b3f56620ada21aa69d883e82a0b5e35484dde32d17c2dc873f2cc5518e"
2890 b"b7fc19695dff9fc94c9d9432bb4b09d8180323cfc561ebc2d6eff8dd5f84"
2891 b"96f2b22377700a22bbfe61a6969c198129397454843e4fc3540026986039"
2892 b"665095490056287e4fc49e6cb3181cb2bf06444fd0040150271c9ce1f61c"
2893 b"13ecd5dd022194a2dbf3e1c7fbc6bd19497c7b888b4da613d28fa6f378a4"
2894 b"3369cb8795a1c823f7d6cf4d84bba578"
2895 )
2896 },
2897 {
2898 'fail_agree': True,
2899 'fail_z': False,
2900 'g': int(
2901 "35513ec441402b78353ab1bba550b21c76c89973885a627170262ef52497d"
2902 "5d137b8927a212aaab2f051198c90bb81dffd9eb10b36b7ca3b63565b4c10"
2903 "25aea3b5e9c4a348c9cfa17f3907a1e4469701c0dedb8a4b9e96c5965b1fb"
2904 "8c229b0c34baac774bf9dda4fc5ee8764358b3c84812878aab7464bc09e97"
2905 "aecab7d7e3fbb4870e2a3b89667a4158bf1ed1a90dfaf47019fbb52b1b963"
2906 "65bb4e1e9474993fe382fd23480dc875861be152997a621fdb7aef977ea5b"
2907 "4d3d74486b162dc28f95a64cf65587a919a57eef92934fc9410df7f09fa82"
2908 "f975328ed82ff29cc3e15a971f56f4ac2dcb289252575e02a6cdb7fcc6cdd"
2909 "d7b0dca9c422e63eb2b8f05", 16),
2910 'p': int(
2911 "f3722b9b911c6aede9eaeeaa406283de66a097f39a7225df6c3c916e57920"
2912 "d356e50478d307dbfd146bfb91b6f68ecbbcf54b3d19c33a4b17293fea3e3"
2913 "d6bff8ac4cca93a805386f062a8a27ae906ef5da94d279fd7b3d7289e0095"
2914 "6f76bae9c0d2b8d11742ca5809630632aae58f9c6dce00c7380581deffde2"
2915 "187b022f83c6ceaeaadb0844a17fcbb04039ca6843c91f0c9058b22434b26"
2916 "3c3dfda8de8429e087c5be97fc5c9db9526031ad3a218bd9916fb4a3c2796"
2917 "6d208b1e360014c01e95530c148fb3cd27e6a7250d3c3b81dcd220ca14548"
2918 "dbccf99ebb9e334db6bcd14e632c98dd3f9860af7ae450f1b7809b45f0ec1"
2919 "0e6f27672beebc9963befc73", 16),
2920 'q': int(
2921 "a9a17de95a29091bf8e07dab53ea1aba9403be3c61027c6c8f48bac5",
2922 16),
2923 'x1': int(
2924 "1610eaa4e0ccc8857e2b53149e008492b1fbd9025a6e8d95aaee9c0f",
2925 16),
2926 'x2': int(
2927 "c4c83d75b27864b052cadc556e500e25aabf0c9d1bc01f0e1fe3862",
2928 16),
2929 'y1': int(
2930 "51ee21cd9f97015180f258fad5c94ff5a458806b1412087236bf77fe87aae"
2931 "1a36735816ed6e2160a731159814b6ae1f3f52c478dd9207094adfb62f766"
2932 "7d5c366327e66d23096395e938504db330953a708015f861fe9d948761109"
2933 "3b9fe7327518a7cc15994ab573313e154117c1a3ae88b8bdd1e316748249e"
2934 "4a9cbd1947f159836d13613d1f9449fc3442171d1970bc28958c1cafa2776"
2935 "a6f14ccdb29db02f64911bd83bfdcdfc843dd14a4cab9acb0bda8b293d2f5"
2936 "f7050768e57533cbc415a29e6f31cc365e107f91ae3722484e2c7329a85af"
2937 "69055a5a104da37e810878896d1b247b02b75234ecff82b1958f42d7b0316"
2938 "22e9394c98b5229112f7f620", 16),
2939 'y2': int(
2940 "467a857337a82472a1307a64dccc8e9994c5c63ec4312936885d17be41905"
2941 "1a5f037fbb052d7010ebe01634d9e8b8b522d9ab4749fdc274f465369b89e"
2942 "360df8f70b7865a3c71d2dbcd2df19e9293dab1153d3d63fcb7deb559b684"
2943 "dde6c6eed63214444807041c9a0ce3f52ca439ec16dd231995b5dc6f18e68"
2944 "01b6bd6454babccf9abbfacffb49c71e6494a4779cbfa550c5d7144114e6f"
2945 "c193f460dcd0be7e6e06e546da7653770dc5859df87029e722dbe81361030"
2946 "569148d1636988926bf0dcfe47c9d8a54698c08b3b5c70afe86b5c6f64346"
2947 "3f8f34889d27d6cfd2d478c2d7b3d008a985c7380f0b43f10024b59c35438"
2948 "80883c42d0e7e0a07326ba3a", 16),
2949 'z': binascii.unhexlify(
2950 b"10a30bacab82e652415376baffdbc008c7eb2e5a3aa68bc10ce486ca8498"
2951 b"3fd89b1b027bb40e75333406361005f5e756526a95fe01202df9217d81b1"
2952 b"713d5187c368fdd4c9c2433d9e6c18844769479b725c4140c92a304ee1bc"
2953 b"5726d8f5321b5b1c54a1a6b67c527e6817c0ed613a0d4e60db55de898788"
2954 b"b7e8d4aa9a81ab5ed7f6282962c433d246ed640555bdd76d29c287455126"
2955 b"4d74c76373f8a88871b41b041c98041b16f94f983ddf00f5bc7d2416d191"
2956 b"68c90178974a0602436cd186748bcc63a629edc3a0db59415cccd37a6513"
2957 b"0ea477c89da92d41371f5972891cf41f9c7f0e75ccbff9893225384db30d"
2958 b"aa5e310f08e3e0fad98bcdf8ecf35fe5"
2959 )
2960 },
2961 {
2962 'fail_agree': False,
2963 'fail_z': False,
2964 'g': int("35513ec441402b78353ab1bba550b21c76c89973885a627170262ef5"
2965 "2497d5d137b8927a212aaab2f051198c90bb81dffd9eb10b36b7ca3b"
2966 "63565b4c1025aea3b5e9c4a348c9cfa17f3907a1e4469701c0dedb8a"
2967 "4b9e96c5965b1fb8c229b0c34baac774bf9dda4fc5ee8764358b3c84"
2968 "812878aab7464bc09e97aecab7d7e3fbb4870e2a3b89667a4158bf1e"
2969 "d1a90dfaf47019fbb52b1b96365bb4e1e9474993fe382fd23480dc87"
2970 "5861be152997a621fdb7aef977ea5b4d3d74486b162dc28f95a64cf6"
2971 "5587a919a57eef92934fc9410df7f09fa82f975328ed82ff29cc3e15"
2972 "a971f56f4ac2dcb289252575e02a6cdb7fcc6cddd7b0dca9c422e63e"
2973 "b2b8f05", 16),
2974 'p': int("f3722b9b911c6aede9eaeeaa406283de66a097f39a7225df6c3c916e"
2975 "57920d356e50478d307dbfd146bfb91b6f68ecbbcf54b3d19c33a4b1"
2976 "7293fea3e3d6bff8ac4cca93a805386f062a8a27ae906ef5da94d279"
2977 "fd7b3d7289e00956f76bae9c0d2b8d11742ca5809630632aae58f9c6"
2978 "dce00c7380581deffde2187b022f83c6ceaeaadb0844a17fcbb04039"
2979 "ca6843c91f0c9058b22434b263c3dfda8de8429e087c5be97fc5c9db"
2980 "9526031ad3a218bd9916fb4a3c27966d208b1e360014c01e95530c14"
2981 "8fb3cd27e6a7250d3c3b81dcd220ca14548dbccf99ebb9e334db6bcd"
2982 "14e632c98dd3f9860af7ae450f1b7809b45f0ec10e6f27672beebc99"
2983 "63befc73", 16),
2984 'q': int(
2985 "a9a17de95a29091bf8e07dab53ea1aba9403be3c61027c6c8f48bac5",
2986 16),
2987 'x1': int(
2988 "9ee22ac51664e40e0a24dbb94142dba40605e2b6eeaaa0268a0f6847",
2989 16),
2990 'x2': int(
2991 "438093a468236658821bf64eb08456139963d4fb27121c3ed6c55876",
2992 16),
2993 'y1': int(
2994 "c2630c9d38ed5c825d1c6a3eba7143f3fc8a049c8bcd1efc212d2af64eca9"
2995 "94308208691d330aa8f27fc4a1e55de4e512113996d21375a667f8c26d76d"
2996 "ee2f6809b15432a33fb735aca5c2263940f58712bded08f55443dee300b94"
2997 "89589e0462bd6bce19deaec4adc12fa61a694c8c5c999b28211d7835bac0f"
2998 "fd2b316850823e2dc1d1f58e05cbf75c673036d116b3f03b9687c89f9c2a0"
2999 "d43c4ffc9a605addbdcce0cb3790c6db846156bb857a7b3df40dc6ed04d19"
3000 "cc9eaebb6bbc034e77c3d882a1a62317cce25b6130f0803e3bc49b5e36768"
3001 "260073a617034872be0b50bed32740224beaf582d67fbcfef3b3ecc18f9c7"
3002 "1c782e9a68495ef31dc7986e", 16),
3003 'y2': int(
3004 "e192da8e1244e27221c1765344a5bb379dce741d427a734b4bdb6c4d16b24"
3005 "90bd37564d745008e63ae46ef332331d79887ac63298ce143e125f8b320c0"
3006 "f859b7f5f2c1e0053e4a7a16997e6143ff702300c9863ae7caef5c1dfca0e"
3007 "cf5197c557745b793f0790a4fe678aeb93fdb52490d4f273a5553944dda3a"
3008 "c8b9b792c9b67f8d7b9496398e432a423ae87ebeba688be3ed67eddd7575f"
3009 "a56431cd48579bf53c903bbe066dd78b23c0996ef3a880f0d91315104366a"
3010 "82f01abdecce96fd371f94e8420f8bc5b896c801df573554f749b03d0d28b"
3011 "1e1a990bc61c7e9659342ac7e268e9c0b7c40fdaab394f29cf0a54f780022"
3012 "f9a03b0bd28eb7db8b0b1b47", 16),
3013 'z': binascii.unhexlify(
3014 b"56f8f40fa4b8f3580f9014b30d60a42933a53a62182a690142f458dc275c"
3015 b"3b2f0e721bc5ee6e890b14516419110f5252ff1cceea8e274b2987aa78e3"
3016 b"bae90c1935b276b7a1f1c944f79d4774b7a85b3355bdf25cb02bddfbda4e"
3017 b"e7918bc93a5c9ca6d7e8fdedbda8e6c8a6ca794bad055a52b19c14895822"
3018 b"7344cbddd70271d4610316cfea1e559b0bc3a12d15023b30d9f2db602053"
3019 b"a0569c3bd2ce1faf59280ecd339f845dbcaaf2e883c5cc6263996f866b18"
3020 b"b75d049d4c82097af8a5ce353e14416b3eeb31ba9bc4f6f3dbd846c5299f"
3021 b"b5c0043a1b95b9149b39d14df9e6a69547abf8a4d518475576730ed52877"
3022 b"9366568e46b7dd4ed787cb72d0733c93"
3023 )
3024 }
3025 ]
3026
3027 assert expected == load_kasvs_dh_vectors(vector_data)
3028
3029
Paul Kehrerac78c862015-08-01 20:26:00 +01003030def test_load_kasvs_ecdh_vectors_empty_vector_data():
3031 assert [] == load_kasvs_ecdh_vectors([])
3032
3033
Simo Sorce917addb2015-04-29 19:41:26 -04003034def test_load_kasvs_ecdh_vectors():
3035 vector_data = textwrap.dedent("""
Paul Kehrerfcd7d702015-08-01 19:41:25 +01003036 # CAVS 11.0
Simo Sorce917addb2015-04-29 19:41:26 -04003037 # Parameter set(s) supported: EA EB EC ED EE
3038 # CAVSid: CAVSid (in hex: 434156536964)
3039 # IUTid: In hex: a1b2c3d4e5
3040 [EA]
3041
3042 [Curve selected: P-192]
3043 [SHA(s) supported (Used for hashing Z): SHA1]
3044 [EB]
3045
3046 [Curve selected: P-224]
3047 [SHA(s) supported (Used for hashing Z): SHA224]
3048 [EC]
3049
3050 [Curve selected: P-256]
3051 [SHA(s) supported (Used for hashing Z): SHA256]
3052 [ED]
3053
3054 [Curve selected: P-384]
3055 [SHA(s) supported (Used for hashing Z): SHA384]
3056 [EE]
3057
3058 [Curve selected: P-521]
3059 [SHA(s) supported (Used for hashing Z): SHA512]
3060 # Generated on Thu Mar 17 19:46:10 2011
3061
3062
3063
3064 [EA - SHA1]
3065
3066
3067 COUNT = 0
3068 dsCAVS = f70c297a683d6b7ef82b5af7349606c4447c8b4fc6fa5e80
3069 QsCAVSx = f7b5061fb557e516c50abf541d97dbfd76ca7172b22cf590
3070 QsCAVSy = 135e15e21f9e85c76205fd148a92ac19f9e6243ddab322d1
3071 dsIUT = a5b4bbad57f101ca48021cb7440cd681a9d40cd51b99d917
3072 QsIUTx = 79a77fcb18a32cdb59ed5d87740f29e8565d649dbf01ce86
3073 QsIUTy = f7187efaa0b1573f1fb00905d46810b880bf738b4c720bb7
3074 Z = 26382468d721761e14a87dc3bee67340095c6455962d1ba3
3075 CAVSHashZZ = af52ba700d3bbba7ce2916d6b729422c26c32364
3076 Result = P (0 - Correct)
3077
3078
3079
3080 COUNT = 2
3081 dsCAVS = 5f909dcb0ccce58c82fada748c47297579e6a981b5518a96
3082 QsCAVSx = 537f1ecfda0e366de393a9bc8188fcc280311bffefe21ecf
3083 QsCAVSy = a1fa1f98498d65f2754caff4e5303a4066a5ff89fde95381
3084 dsIUT = 3357aa7f47f3e09421602cc12cdce4434c68e330d44de05e
3085 QsIUTx = 6a33d43d9c72173eabc7a771a5687748c4774c62762e96ec
3086 QsIUTy = 8033f238b3abc69470aad4be8dbe4f60a2fd50207626c56a
3087 Z = 3153034f6617326f19c35be8c99a0585431adf09d2f8e0fd
3088 CAVSHashZZ = f8414e30c2d382e28d2a57a2447fdc203baa416b
3089 Result = F (8 - Z changed )
3090
3091
3092
3093 COUNT = 8
3094 dsCAVS = 8fcfaf0524cc868fad20e50410a2205319f1327308d98dc8
3095 QsCAVSx = 9b0243d80a9e328738080fb4d46bc450243d0efb7ead0c92
3096 QsCAVSy = ad5bebad7f03849693071537f60ef858cad214123beee7c7
3097 dsIUT = bba95dac90289cb68ca2b006f9757219b70579c299ad7a7d
3098 QsIUTx = 7733dc0cb365cd6312724196b9b4eb491fd4d2e31b9afdb1
3099 QsIUTy = 92ffa3722acc5b94d772258ba2d471b06c0f53f56fcd8662
3100 Z = 0f3c6e4a29a08296ae730f56a1ebf819ea2edfa6f0434e40
3101 CAVSHashZZ = c124545eed4b83a799e7e90371d806b5684a1bd2
3102 Result = P (13 - Z value should have leading 0 nibble )
3103
3104
3105 [EB - SHA224]
3106
3107
3108 COUNT = 0
3109 dsCAVS = e53a88af7cf8ce6bf13c8b9ad191494e37a6acc1368c71f4306e39e5
3110 QsCAVSx = 3a24217c4b957fea922eec9d9ac52d5cb4b3fcd95efde1e4fa0dd6e2
3111 QsCAVSy = 775b94025a808eb6f4af14ea4b57dca576c35373c6dc198b15b981df
3112 dsIUT = 09f51e302c6a0fe6ff48f34c208c6af91e70f65f88102e6fcab9af4a
3113 QsIUTx = c5d5706ccd7424c74fd616e699865af96e56f39adea6aa059e5092b5
3114 QsIUTy = f0729077bb602404d56d2f7e2ba5bb2f383df4a5425567881ff0165d
3115 Z = b1259ceedfb663d9515089cf727e7024fb3d86cbcec611b4ba0b4ab6
3116 CAVSHashZZ = 8b21fd05a4b50e401908cd8f26757f5c57f22b69f170aa7381f8596d
3117 Result = P (0 - Correct)
3118
3119
3120
3121 [EC - SHA256]
3122
3123
3124 COUNT = 0
3125 dsCAVS = 305dfb4a8850cc59280891147baf457bfe5e2bae984571634a77dc8d3472fa9b
3126 QsCAVSx = 202cb5a224e6c2a84e624094486edf04116c8d68ec1f4a0e0ed9ee090e1a900b
3127 QsCAVSy = cacf3a5789bb33954be600425d62d9eae5371f90f88167258814213e4a4f4b1a
3128 dsIUT = 72cc52808f294b64b6f7233c3d2f5d96cc1d29287320e39e1c151deef0bc14eb
3129 QsIUTx = 49a768c9a4ca56e374f685dd76a461b1016c59dcded2c8d8cbd9f23ca453831f
3130 QsIUTy = b1e3bb9b5f12a3b5ae788535d4554bd8c46e0e6130075e4e437d3854cf8f1c34
3131 Z = c0147c3c2691b450b5edc08b51aea224d9f4359ff67aab6da3146f396dbceaea
3132 CAVSHashZZ = ea9ffd54511979ab8c4b387784972cbd05fc5fd4ff78e048b0026557b56a5\
31331dd
3134 Result = F (2 - CAVS's Static public key Y fails PKV 5.6.2.5)
3135
3136
3137
3138 [ED - SHA384]
3139
3140
3141 COUNT = 0
3142 dsCAVS = 0e5c98ff2d2a3aab14ad0067b60dbe64e4f541ab5bed11c5a0c55ae1e60b51ff5\
3143faaf377837977d80cbfdc33c2ff542b
3144 QsCAVSx = d1bf2ac21637d66d6398aac01dcd56ac6f065fb45d1f6f16747bab9e9b01b463\
31450b59b20927aea147355bf41838acb482
3146 QsCAVSy = 4c9e23f1c5a41647d094086bf4ed31708651f21d996c47780688ac10f77deee2\
3147e43b5241b6caecd2fd5444bc50472e0e
3148 dsIUT = f865418473e5bf7d2e1bbcd9bd5a9270c003a9dd35e778133ca59fcab4bb64fe24\
3149d6800e7047bdd033abc8bfa8db35b5
3150 QsIUTx = 32b72ab9b558249dcbc6cbade234f58e4f7aa5d3f6420ea99a5f997e8c2a91fb7\
3151fd83779d0d2169428683771c745fd1a
3152 QsIUTy = c749e02a3719bb56bf1dfc4ba3820309c01ab6e84cb29db7cdd80f127233f5295\
3153687f8178f3a8704c1063b84c2ee472f
3154 Z = a781430e6078a179df3f9ee27cd8fdc6188f161b6c4ccc4053ef6c6ca6fc222946883a\
315553c06db08f0a020023ced055aa
3156 CAVSHashZZ = ccb70d0adbabe4d8956519db0d536605cbb366aed58fc55718f56ae3648fa\
31575c9ee7bae56cc463587cb74e2f9c6ace1cb
3158 Result = P (0 - Correct)
3159
3160
3161
3162 [EE - SHA512]
3163
3164
3165 COUNT = 0
3166 dsCAVS = 0000002fef62381162942889a6094a6bb9ac1f4ddf66d9cda9f618232d31b90c5\
31670d7da78a47ed91d40cae946898571db972dc294b109815f38feee9eaac0d5f7c3250728
3168 QsCAVSx = 0000004b05ffa025113390797f2736174aa1c784f4dd34e764ee40d40e4d2442\
3169677ebea3498086c9473e5c92789cbdb02bb327bbd61d58690f6a83d9ca73bccbde37dec4
3170 QsCAVSy = 0000004da67cffc98070b82af61feba78787efefb13bd810d80ff92304788e49\
3171a4e5b634b3565474a8ecb1615d7b1b77a7a27875adb73a8a5d8f3f84e5e8b744cda250b0
3172 dsIUT = 00000311a5e520e238141527671a38cb6f776d96a9f82ef70dffa11dc0895f4060\
3173f1abbb9ad6fd259e4a7beaf5f7266ea1bb45bcbfebfda2705e5c551e710fb1d745f57e
3174 QsIUTx = 0000010ba3778cb2cc965834c0a9593adc6a222692656d657fb0d15293edf0ab3\
31753762384a96a16fddea7540b7ccbcca46ec4ac9bcf95fdb5aa18e158aab4d91981bd733e
3176 QsIUTy = 0000018522df93ddd636e5bc94daecdc600fa241686ec18634fd30b7cbdfdc9ff\
3177ba1166ac08df34a31896f6fad191414929261ebd7187afb72919f8a0c926be37f99c1e5
3178 Z = 01a5e4b31be4b1346e53906b6767b1fe94ec1a8a5abc28fb6f01518c056959af3bc933\
31795dddab178b52318cc5512559931b8dc18de0ce810c2c7f15769d7ce70e719c
3180 CAVSHashZZ = d2d6538feb65d609f377b81a027dc800eed07b69c0e9eedb243369202ed47\
3181f47021022a6c9b45ed791d09d9540eb81ea065fc1959eca365001ee39928c343d75
3182 Result = F (7 - IUT's Static private key d changed-prikey validity)
3183
3184
3185
3186 """).splitlines()
3187
3188 expected = [
3189 {'errno': 0,
3190 'fail': False,
3191 'COUNT': 0,
3192 'CAVS': {
3193 'd': int("f70c297a683d6b7ef82b5af7349606c4447c8b4fc6fa5e80", 16),
3194 'x': int("f7b5061fb557e516c50abf541d97dbfd76ca7172b22cf590", 16),
3195 'y': int("135e15e21f9e85c76205fd148a92ac19f9e6243ddab322d1", 16)},
3196 'IUT': {
3197 'd': int("a5b4bbad57f101ca48021cb7440cd681a9d40cd51b99d917", 16),
3198 'x': int("79a77fcb18a32cdb59ed5d87740f29e8565d649dbf01ce86", 16),
3199 'y': int("f7187efaa0b1573f1fb00905d46810b880bf738b4c720bb7", 16)},
3200 'Z': int("26382468d721761e14a87dc3bee67340095c6455962d1ba3", 16),
3201 'curve': 'secp192r1'},
3202
3203 {'errno': 8,
3204 'fail': True,
3205 'COUNT': 2,
3206 'CAVS': {
3207 'd': int("5f909dcb0ccce58c82fada748c47297579e6a981b5518a96", 16),
3208 'x': int("537f1ecfda0e366de393a9bc8188fcc280311bffefe21ecf", 16),
3209 'y': int("a1fa1f98498d65f2754caff4e5303a4066a5ff89fde95381", 16)},
3210 'IUT': {
3211 'd': int("3357aa7f47f3e09421602cc12cdce4434c68e330d44de05e", 16),
3212 'x': int("6a33d43d9c72173eabc7a771a5687748c4774c62762e96ec", 16),
3213 'y': int("8033f238b3abc69470aad4be8dbe4f60a2fd50207626c56a", 16)},
3214 'Z': int("3153034f6617326f19c35be8c99a0585431adf09d2f8e0fd", 16),
3215 'curve': 'secp192r1'},
3216
3217 {'errno': 13,
3218 'fail': False,
3219 'COUNT': 8,
3220 'CAVS': {
3221 'd': int("8fcfaf0524cc868fad20e50410a2205319f1327308d98dc8", 16),
3222 'x': int("9b0243d80a9e328738080fb4d46bc450243d0efb7ead0c92", 16),
3223 'y': int("ad5bebad7f03849693071537f60ef858cad214123beee7c7", 16)},
3224 'IUT': {
3225 'd': int("bba95dac90289cb68ca2b006f9757219b70579c299ad7a7d", 16),
3226 'x': int("7733dc0cb365cd6312724196b9b4eb491fd4d2e31b9afdb1", 16),
3227 'y': int("92ffa3722acc5b94d772258ba2d471b06c0f53f56fcd8662", 16)},
3228 'Z': int("0f3c6e4a29a08296ae730f56a1ebf819ea2edfa6f0434e40", 16),
3229 'curve': 'secp192r1'},
3230
3231 {'errno': 0,
3232 'fail': False,
3233 'COUNT': 0,
3234 'CAVS': {
3235 'd': int("e53a88af7cf8ce6bf13c8b9ad191494e37a6acc1368c71f4"
3236 "306e39e5", 16),
3237 'x': int("3a24217c4b957fea922eec9d9ac52d5cb4b3fcd95efde1e4"
3238 "fa0dd6e2", 16),
3239 'y': int("775b94025a808eb6f4af14ea4b57dca576c35373c6dc198b"
3240 "15b981df", 16)},
3241 'IUT': {
3242 'd': int("09f51e302c6a0fe6ff48f34c208c6af91e70f65f88102e6f"
3243 "cab9af4a", 16),
3244 'x': int("c5d5706ccd7424c74fd616e699865af96e56f39adea6aa05"
3245 "9e5092b5", 16),
3246 'y': int("f0729077bb602404d56d2f7e2ba5bb2f383df4a542556788"
3247 "1ff0165d", 16)},
3248 'Z': int("b1259ceedfb663d9515089cf727e7024fb3d86cbcec611b4"
3249 "ba0b4ab6", 16),
3250 'curve': 'secp224r1'},
3251
3252 {'errno': 2,
3253 'fail': True,
3254 'COUNT': 0,
3255 'CAVS': {
3256 'd': int("305dfb4a8850cc59280891147baf457bfe5e2bae98457163"
3257 "4a77dc8d3472fa9b", 16),
3258 'x': int("202cb5a224e6c2a84e624094486edf04116c8d68ec1f4a0e"
3259 "0ed9ee090e1a900b", 16),
3260 'y': int("cacf3a5789bb33954be600425d62d9eae5371f90f8816725"
3261 "8814213e4a4f4b1a", 16)},
3262 'IUT': {
3263 'd': int("72cc52808f294b64b6f7233c3d2f5d96cc1d29287320e39e"
3264 "1c151deef0bc14eb", 16),
3265 'x': int("49a768c9a4ca56e374f685dd76a461b1016c59dcded2c8d8"
3266 "cbd9f23ca453831f", 16),
3267 'y': int("b1e3bb9b5f12a3b5ae788535d4554bd8c46e0e6130075e4e"
3268 "437d3854cf8f1c34", 16)},
3269 'Z': int("c0147c3c2691b450b5edc08b51aea224d9f4359ff67aab6d"
3270 "a3146f396dbceaea", 16),
3271 'curve': 'secp256r1'},
3272
3273 {'errno': 0,
3274 'fail': False,
3275 'COUNT': 0,
3276 'CAVS': {
3277 'd': int("0e5c98ff2d2a3aab14ad0067b60dbe64e4f541ab5bed11c5"
3278 "a0c55ae1e60b51ff5faaf377837977d80cbfdc33c2ff542b", 16),
3279 'x': int("d1bf2ac21637d66d6398aac01dcd56ac6f065fb45d1f6f16"
3280 "747bab9e9b01b4630b59b20927aea147355bf41838acb482", 16),
3281 'y': int("4c9e23f1c5a41647d094086bf4ed31708651f21d996c4778"
3282 "0688ac10f77deee2e43b5241b6caecd2fd5444bc50472e0e", 16)},
3283 'IUT': {
3284 'd': int("f865418473e5bf7d2e1bbcd9bd5a9270c003a9dd35e77813"
3285 "3ca59fcab4bb64fe24d6800e7047bdd033abc8bfa8db35b5", 16),
3286 'x': int("32b72ab9b558249dcbc6cbade234f58e4f7aa5d3f6420ea9"
3287 "9a5f997e8c2a91fb7fd83779d0d2169428683771c745fd1a", 16),
3288 'y': int("c749e02a3719bb56bf1dfc4ba3820309c01ab6e84cb29db7"
3289 "cdd80f127233f5295687f8178f3a8704c1063b84c2ee472f", 16)},
3290 'Z': int("a781430e6078a179df3f9ee27cd8fdc6188f161b6c4ccc40"
3291 "53ef6c6ca6fc222946883a53c06db08f0a020023ced055aa", 16),
3292 'curve': 'secp384r1'},
3293
3294 {'errno': 7,
3295 'fail': True,
3296 'COUNT': 0,
3297 'CAVS': {
3298 'd': int("0000002fef62381162942889a6094a6bb9ac1f4ddf66d9cd"
3299 "a9f618232d31b90c50d7da78a47ed91d40cae946898571db"
3300 "972dc294b109815f38feee9eaac0d5f7c3250728", 16),
3301 'x': int("0000004b05ffa025113390797f2736174aa1c784f4dd34e7"
3302 "64ee40d40e4d2442677ebea3498086c9473e5c92789cbdb0"
3303 "2bb327bbd61d58690f6a83d9ca73bccbde37dec4", 16),
3304 'y': int("0000004da67cffc98070b82af61feba78787efefb13bd810"
3305 "d80ff92304788e49a4e5b634b3565474a8ecb1615d7b1b77"
3306 "a7a27875adb73a8a5d8f3f84e5e8b744cda250b0", 16)},
3307 'IUT': {
3308 'd': int("00000311a5e520e238141527671a38cb6f776d96a9f82ef7"
3309 "0dffa11dc0895f4060f1abbb9ad6fd259e4a7beaf5f7266e"
3310 "a1bb45bcbfebfda2705e5c551e710fb1d745f57e", 16),
3311 'x': int("0000010ba3778cb2cc965834c0a9593adc6a222692656d65"
3312 "7fb0d15293edf0ab33762384a96a16fddea7540b7ccbcca4"
3313 "6ec4ac9bcf95fdb5aa18e158aab4d91981bd733e", 16),
3314 'y': int("0000018522df93ddd636e5bc94daecdc600fa241686ec186"
3315 "34fd30b7cbdfdc9ffba1166ac08df34a31896f6fad191414"
3316 "929261ebd7187afb72919f8a0c926be37f99c1e5", 16)},
3317 'Z': int("01a5e4b31be4b1346e53906b6767b1fe94ec1a8a5abc28fb"
3318 "6f01518c056959af3bc9335dddab178b52318cc551255993"
3319 "1b8dc18de0ce810c2c7f15769d7ce70e719c", 16),
3320 'curve': 'secp521r1'}
3321 ]
3322
3323 assert expected == load_kasvs_ecdh_vectors(vector_data)
3324
3325
Simo Sorce83e563e2015-05-06 10:56:31 -04003326def test_load_kasvs_ecdh_kdf_vectors():
3327 vector_data = textwrap.dedent("""
3328 # Parameter set(s) supported: EB EC ED EE
3329 # CAVSid: CAVSid (in hex: 434156536964)
3330 # IUTid: In hex: a1b2c3d4e5
3331 [EB]
3332
3333 [Curve selected: P-224]
3334 [SHA(s) supported (Used in the KDF function): SHA224 SHA256 SHA384 SHA512]
3335 [MAC algorithm supported: HMAC]
3336 [HMAC SHAs supported: SHA512]
3337 [HMACKeySize(in bits): 112]
3338 [HMAC Tag length(in bits): 64]
3339
3340 # Generated on Mon Dec 22 11:45:18 2014
3341
3342
3343
3344 [EB - SHA224]
3345
3346
Simo Sorce6e3b1552015-10-13 14:45:21 -04003347 COUNT = 50
Simo Sorce83e563e2015-05-06 10:56:31 -04003348 dsCAVS = 540904b67b3716823dd621ed72ad3dbc615887b4f56f910b78a57199
3349 QsCAVSx = 28e5f3a72d8f6b8499dd1bcdfceafcecec68a0d715789bcf4b55fe15
3350 QsCAVSy = 8c8006a7da7c1a19f5328d7e865522b0c0dfb9a29b2c46dc96590d2a
3351 Nonce = 4eefb2a29a0e89c3898a7affdfa60dd7
3352 dsIUT = 5e717ae889fc8d67be11c2ebe1a7d3550051448d68a040b2dee8e327
3353 QsIUTx = ae7f3db340b647d61713f5374c019f1be2b28573cb6219bb7b747223
3354 QsIUTy = 800e6bffcf97c15864ec6e5673fb83359b45f89b8a26a27f6f3dfbff
3355 NonceDKMIUT = bb7f1b40d14ebd70443393990b57
3356 OI = a1b2c3d4e5bb7f1b40d14ebd70443393990b574341565369645b1582daab9cc6c30d6\
33571fdcf1cdfc7e9a304651e0fdb
3358 CAVSTag = 84de198c3a958c62
3359 Z = 43f23b2c760d686fc99cc008b63aea92f866e224265af60d2d8ae540
3360 MacData = 5374616e646172642054657374204d6573736167654eefb2a29a0e89c3898a7a\
3361ffdfa60dd7
3362 DKM = ad65fa2d12541c3a21f3cd223efb
3363 Result = F (12 - Tag changed )
3364 """).splitlines()
3365
3366 expected = [
3367 {'errno': 12,
3368 'fail': True,
Simo Sorce6e3b1552015-10-13 14:45:21 -04003369 'COUNT': 50,
Simo Sorce83e563e2015-05-06 10:56:31 -04003370 'CAVS': {
3371 'd': int("540904b67b3716823dd621ed72ad3dbc615887b4f56f910b"
3372 "78a57199", 16),
3373 'x': int("28e5f3a72d8f6b8499dd1bcdfceafcecec68a0d715789bcf"
3374 "4b55fe15", 16),
3375 'y': int("8c8006a7da7c1a19f5328d7e865522b0c0dfb9a29b2c46dc"
3376 "96590d2a", 16)},
3377 'IUT': {
3378 'd': int("5e717ae889fc8d67be11c2ebe1a7d3550051448d68a040b2"
3379 "dee8e327", 16),
3380 'x': int("ae7f3db340b647d61713f5374c019f1be2b28573cb6219bb"
3381 "7b747223", 16),
3382 'y': int("800e6bffcf97c15864ec6e5673fb83359b45f89b8a26a27f"
3383 "6f3dfbff", 16)},
3384 'OI': int("a1b2c3d4e5bb7f1b40d14ebd70443393990b574341565369"
3385 "645b1582daab9cc6c30d61fdcf1cdfc7e9a304651e0fdb", 16),
3386 'Z': int("43f23b2c760d686fc99cc008b63aea92f866e224265af60d"
3387 "2d8ae540", 16),
3388 'DKM': int("ad65fa2d12541c3a21f3cd223efb", 16),
3389 'curve': 'secp224r1'}
3390 ]
3391
3392 assert expected == load_kasvs_ecdh_vectors(vector_data)
3393
3394
Simo Sorce7600dee2015-09-22 21:56:20 -04003395def test_load_x963_vectors():
3396 vector_data = textwrap.dedent("""
3397 # CAVS 12.0
3398 # 'ANS X9.63-2001' information for sample
3399
3400 [SHA-1]
3401 [shared secret length = 192]
3402 [SharedInfo length = 0]
3403 [key data length = 128]
3404
3405 COUNT = 0
3406 Z = 1c7d7b5f0597b03d06a018466ed1a93e30ed4b04dc64ccdd
3407 SharedInfo =
3408 Counter = 00000001
3409 Hash input 1 = 1c7d7b5f0597b03d06a018466ed1a93e30ed4b04dc64ccdd00000001
3410 K1 = bf71dffd8f4d99223936beb46fee8ccc60439b7e
3411 key_data = bf71dffd8f4d99223936beb46fee8ccc
3412
3413 COUNT = 1
3414 Z = 5ed096510e3fcf782ceea98e9737993e2b21370f6cda2ab1
3415 SharedInfo =
3416 Counter = 00000001
3417 Hash input 1 = 5ed096510e3fcf782ceea98e9737993e2b21370f6cda2ab100000001
3418 K1 = ec3e224446bfd7b3be1df404104af953c1b2d0f5
3419 key_data = ec3e224446bfd7b3be1df404104af953
3420
3421 [SHA-512]
3422 [shared secret length = 521]
3423 [SharedInfo length = 128]
3424 [key data length = 1024]
3425
3426 COUNT = 0
3427 Z = 00aa5bb79b33e389fa58ceadc047197f14e73712f452caa9fc4c9adb369348b8150739\
34282f1a86ddfdb7c4ff8231c4bd0f44e44a1b55b1404747a9e2e753f55ef05a2d
3429 SharedInfo = e3b5b4c1b0d5cf1d2b3a2f9937895d31
3430 Counter = 00000001
3431 Hash input 1 = 00aa5bb79b33e389fa58ceadc047197f14e73712f452caa9fc4c9ad\
3432b369348b81507392f1a86ddfdb7c4ff8231c4bd0f44e44a1b55b1404747a9e2e753f55ef05a2d0\
34330000001e3b5b4c1b0d5cf1d2b3a2f9937895d31
3434 K1 = 4463f869f3cc18769b52264b0112b5858f7ad32a5a2d96d8cffabf7fa733633d6\
3435e4dd2a599acceb3ea54a6217ce0b50eef4f6b40a5c30250a5a8eeee20800226
3436 Counter = 00000002
3437 Hash input 2 = 00aa5bb79b33e389fa58ceadc047197f14e73712f452caa9fc4c9ad\
3438b369348b81507392f1a86ddfdb7c4ff8231c4bd0f44e44a1b55b1404747a9e2e753f55ef05a2d0\
34390000002e3b5b4c1b0d5cf1d2b3a2f9937895d31
3440 K2 = 7089dbf351f3f5022aa9638bf1ee419dea9c4ff745a25ac27bda33ca08bd56dd1\
3441a59b4106cf2dbbc0ab2aa8e2efa7b17902d34276951ceccab87f9661c3e8816
3442 key_data = 4463f869f3cc18769b52264b0112b5858f7ad32a5a2d96d8cffabf7fa733633\
3443d6e4dd2a599acceb3ea54a6217ce0b50eef4f6b40a5c30250a5a8eeee208002267089dbf351f3f\
34445022aa9638bf1ee419dea9c4ff745a25ac27bda33ca08bd56dd1a59b4106cf2dbbc0ab2aa8e2ef\
3445a7b17902d34276951ceccab87f9661c3e8816
3446 """).splitlines()
3447
3448 assert load_x963_vectors(vector_data) == [
3449 {"hash": "SHA-1", "count": 0,
Alex Gaynorace036d2015-09-24 20:23:08 -04003450 "shared_secret_length": 192,
Simo Sorce7600dee2015-09-22 21:56:20 -04003451 "Z": "1c7d7b5f0597b03d06a018466ed1a93e30ed4b04dc64ccdd",
Alex Gaynorace036d2015-09-24 20:23:08 -04003452 "sharedinfo_length": 0,
3453 "key_data_length": 128,
Simo Sorce7600dee2015-09-22 21:56:20 -04003454 "key_data": "bf71dffd8f4d99223936beb46fee8ccc"},
3455 {"hash": "SHA-1", "count": 1,
Alex Gaynorace036d2015-09-24 20:23:08 -04003456 "shared_secret_length": 192,
Simo Sorce7600dee2015-09-22 21:56:20 -04003457 "Z": "5ed096510e3fcf782ceea98e9737993e2b21370f6cda2ab1",
Alex Gaynorace036d2015-09-24 20:23:08 -04003458 "sharedinfo_length": 0,
3459 "key_data_length": 128,
Simo Sorce7600dee2015-09-22 21:56:20 -04003460 "key_data": "ec3e224446bfd7b3be1df404104af953"},
3461 {"hash": "SHA-512", "count": 0,
Alex Gaynorace036d2015-09-24 20:23:08 -04003462 "shared_secret_length": 521,
Simo Sorce7600dee2015-09-22 21:56:20 -04003463 "Z": "00aa5bb79b33e389fa58ceadc047197f14e73712f452caa9fc4c9adb369348b\
346481507392f1a86ddfdb7c4ff8231c4bd0f44e44a1b55b1404747a9e2e753f55ef05a2d",
Alex Gaynorace036d2015-09-24 20:23:08 -04003465 "sharedinfo_length": 128,
3466 "sharedinfo": "e3b5b4c1b0d5cf1d2b3a2f9937895d31",
3467 "key_data_length": 1024,
Simo Sorce7600dee2015-09-22 21:56:20 -04003468 "key_data": "4463f869f3cc18769b52264b0112b5858f7ad32a5a2d96d8cffabf7f\
3469a733633d6e4dd2a599acceb3ea54a6217ce0b50eef4f6b40a5c30250a5a8eeee208002267089db\
3470f351f3f5022aa9638bf1ee419dea9c4ff745a25ac27bda33ca08bd56dd1a59b4106cf2dbbc0ab2\
3471aa8e2efa7b17902d34276951ceccab87f9661c3e8816"},
3472 ]
3473
3474
Jaredcd258d52016-04-13 14:03:52 -07003475def test_load_kbkdf_vectors():
3476 vector_data = textwrap.dedent("""
3477 # CAVS 14.4
3478 # "SP800-108 - KDF" information for "test1"
3479 # KDF Mode Supported: Counter Mode
3480 # Location of counter tested: (Before Fixed Input Data)\
3481( After Fixed Input Data)(In Middle of Fixed Input Data before Context)
3482 # PRFs tested: CMAC with key sizes: AES128 AES192 AES256 TDES2 TDES3\
3483HMAC with key sizes: SHA1 SHA224 SHA256 SHA384 SHA512
3484 # Generated on Tue Apr 23 12:20:16 2013
3485
3486 [PRF=HMAC_SHA1]
3487 [CTRLOCATION=BEFORE_FIXED]
3488 [RLEN=8_BITS]
3489
3490 COUNT=0
3491 L = 128
3492 KI = 00a39bd547fb88b2d98727cf64c195c61e1cad6c
3493 FixedInputDataByteLen = 60
3494 FixedInputData = 98132c1ffaf59ae5cbc0a3133d84c551bb97e0c75ecaddfc30056f68\
349576f59803009bffc7d75c4ed46f40b8f80426750d15bc1ddb14ac5dcb69a68242
3496 Binary rep of i = 01
3497 instring = 0198132c1ffaf59ae5cbc0a3133d84c551bb97e0c75ecaddfc30056f68\
349876f59803009bffc7d75c4ed46f40b8f80426750d15bc1ddb14ac5dcb69a68242
3499 KO = 0611e1903609b47ad7a5fc2c82e47702
3500
3501 COUNT=1
3502 L = 128
3503 KI = a39bdf744ed7e33fdec060c8736e9725179885a8
3504 FixedInputDataByteLen = 60
3505 FixedInputData = af71b44940acff98949ad17f1ca20e8fdb3957cacdcd41e9c591e182\
350635019f90b9f8ee6e75700bcab2f8407525a104799b3e9725e27d738a9045e832
3507 Binary rep of i = 01
3508 instring = 01af71b44940acff98949ad17f1ca20e8fdb3957cacdcd41e9c591e182\
350935019f90b9f8ee6e75700bcab2f8407525a104799b3e9725e27d738a9045e832
3510 KO = 51dc4668947e3685099bc3b5f8527468
3511
3512 [PRF=HMAC_SHA224]
3513 [CTRLOCATION=AFTER_FIXED]
3514 [RLEN=8_BITS]
3515
3516 COUNT=0
3517 L = 128
3518 KI = ab56556b107a3a79fe084df0f1bb3ad049a6cc1490f20da4b3df282c
3519 FixedInputDataByteLen = 60
3520 FixedInputData = 7f50fc1f77c3ac752443154c1577d3c47b86fccffe82ff43aa1b91ee\
3521b5730d7e9e6aab78374d854aecb7143faba6b1eb90d3d9e7a2f6d78dd9a6c4a7
3522 Binary rep of i = 01
3523 instring = 7f50fc1f77c3ac752443154c1577d3c47b86fccffe82ff43aa1b91eeb5\
3524730d7e9e6aab78374d854aecb7143faba6b1eb90d3d9e7a2f6d78dd9a6c4a701
3525 KO = b8894c6133a46701909b5c8a84322dec
3526 """).splitlines()
3527
3528 assert load_nist_kbkdf_vectors(vector_data) == [
3529 {'prf': 'hmac_sha1',
3530 'ctrlocation': 'before_fixed',
3531 'rlen': 8,
3532 'l': 128,
3533 'ki': b'00a39bd547fb88b2d98727cf64c195c61e1cad6c',
3534 'fixedinputdatabytelen': b'60',
3535 'fixedinputdata': b'98132c1ffaf59ae5cbc0a3133d84c551bb97e0c75ecaddfc\
353630056f6876f59803009bffc7d75c4ed46f40b8f80426750d15bc1ddb14ac5dcb69a68242',
3537 'binary rep of i': b'01',
3538 'instring': b'0198132c1ffaf59ae5cbc0a3133d84c551bb97e0c75ecaddfc3005\
35396f6876f59803009bffc7d75c4ed46f40b8f80426750d15bc1ddb14ac5dcb69a68242',
3540 'ko': b'0611e1903609b47ad7a5fc2c82e47702'},
3541 {'prf': 'hmac_sha1',
3542 'ctrlocation': 'before_fixed',
3543 'rlen': 8,
3544 'l': 128,
3545 'ki': b'a39bdf744ed7e33fdec060c8736e9725179885a8',
3546 'fixedinputdatabytelen': b'60',
3547 'fixedinputdata': b'af71b44940acff98949ad17f1ca20e8fdb3957cacdcd41e9\
3548c591e18235019f90b9f8ee6e75700bcab2f8407525a104799b3e9725e27d738a9045e832',
3549 'binary rep of i': b'01',
3550 'instring': b'01af71b44940acff98949ad17f1ca20e8fdb3957cacdcd41e9c591\
3551e18235019f90b9f8ee6e75700bcab2f8407525a104799b3e9725e27d738a9045e832',
3552 'ko': b'51dc4668947e3685099bc3b5f8527468'},
3553 {'prf': 'hmac_sha224',
3554 'ctrlocation': 'after_fixed',
3555 'rlen': 8,
3556 'l': 128,
3557 'ki': b'ab56556b107a3a79fe084df0f1bb3ad049a6cc1490f20da4b3df282c',
3558 'fixedinputdatabytelen': b'60',
3559 'fixedinputdata': b'7f50fc1f77c3ac752443154c1577d3c47b86fccffe82ff43\
3560aa1b91eeb5730d7e9e6aab78374d854aecb7143faba6b1eb90d3d9e7a2f6d78dd9a6c4a7',
3561 'binary rep of i': b'01',
3562 'instring': b'7f50fc1f77c3ac752443154c1577d3c47b86fccffe82ff43aa1b91\
3563eeb5730d7e9e6aab78374d854aecb7143faba6b1eb90d3d9e7a2f6d78dd9a6c4a701',
3564 'ko': b'b8894c6133a46701909b5c8a84322dec'}
3565 ]
3566
3567
Paul Kehrer33a41e72017-06-21 01:39:20 -10003568def test_load_nist_ccm_vectors_dvpt():
3569 vector_data = textwrap.dedent("""
3570 # CAVS 11.0
3571 # "CCM-DVPT" information
3572 # AES Keylen: 128
3573 # Generated on Tue Mar 15 08:09:25 2011
3574
3575
3576 [Alen = 0, Plen = 0, Nlen = 7, Tlen = 4]
3577
3578 Key = 4ae701103c63deca5b5a3939d7d05992
3579
3580 Count = 0
3581 Nonce = 5a8aa485c316e9
3582 Adata = 00
3583 CT = 02209f55
3584 Result = Pass
3585 Payload = 00
3586
3587 Count = 1
3588 Nonce = 3796cf51b87266
3589 Adata = 00
3590 CT = 9a04c241
3591 Result = Fail
3592
3593 [Alen = 0, Plen = 0, Nlen = 7, Tlen = 16]
3594
3595 Key = 4bb3c4a4f893ad8c9bdc833c325d62b3
3596
3597 Count = 15
3598 Nonce = 5a8aa485c316e9
3599 Adata = 00
3600 CT = 75d582db43ce9b13ab4b6f7f14341330
3601 Result = Pass
3602 Payload = 00
3603
3604 Count = 16
3605 Nonce = 3796cf51b87266
3606 Adata = 00
3607 CT = 3a65e03af37b81d05acc7ec1bc39deb0
3608 Result = Fail
3609 """).splitlines()
3610 assert load_nist_ccm_vectors(vector_data) == [
3611 {
3612 'key': b'4ae701103c63deca5b5a3939d7d05992',
3613 'alen': 0,
3614 'plen': 0,
3615 'nlen': 7,
3616 'tlen': 4,
3617 'nonce': b'5a8aa485c316e9',
3618 'adata': b'00',
3619 'ct': b'02209f55',
3620 'fail': False,
3621 'payload': b'00'
3622 },
3623 {
3624 'key': b'4ae701103c63deca5b5a3939d7d05992',
3625 'alen': 0,
3626 'plen': 0,
3627 'nlen': 7,
3628 'tlen': 4,
3629 'nonce': b'3796cf51b87266',
3630 'adata': b'00',
3631 'ct': b'9a04c241',
3632 'fail': True,
3633 'payload': b'00'
3634 },
3635 {
3636 'key': b'4bb3c4a4f893ad8c9bdc833c325d62b3',
3637 'alen': 0,
3638 'plen': 0,
3639 'nlen': 7,
3640 'tlen': 16,
3641 'nonce': b'5a8aa485c316e9',
3642 'adata': b'00',
3643 'ct': b'75d582db43ce9b13ab4b6f7f14341330',
3644 'fail': False,
3645 'payload': b'00'
3646 },
3647 {
3648 'key': b'4bb3c4a4f893ad8c9bdc833c325d62b3',
3649 'alen': 0,
3650 'plen': 0,
3651 'nlen': 7,
3652 'tlen': 16,
3653 'nonce': b'3796cf51b87266',
3654 'adata': b'00',
3655 'ct': b'3a65e03af37b81d05acc7ec1bc39deb0',
3656 'fail': True,
3657 'payload': b'00'
3658 }
3659 ]
3660
3661
3662def test_load_nist_ccm_vectors_vadt():
3663 vector_data = textwrap.dedent("""
3664 # CAVS 11.0
3665 # "CCM-VADT" information
3666 # AES Keylen: 128
3667 # Generated on Tue Mar 15 08:09:24 2011
3668
3669 Plen = 24
3670 Nlen = 13
3671 Tlen = 16
3672
3673 [Alen = 0]
3674
3675 Key = d24a3d3dde8c84830280cb87abad0bb3
3676 Nonce = f1100035bb24a8d26004e0e24b
3677
3678 Count = 0
3679 Adata = 00
3680 Payload = 7c86135ed9c2a515aaae0e9a208133897269220f30870006
3681 CT = 1faeb0ee2ca2cd52f0aa3966578344f24e69b742c4ab37ab11233
3682
3683 Count = 1
3684 Adata = 00
3685 Payload = 48df73208cdc63d716752df7794807b1b2a80794a2433455
3686 CT = 2bf7d09079bc0b904c711a0b0e4a70ca8ea892d9566f03f8b77a1
3687 CT = 642145210f947bc4a0b1e678fd8c990c2c1d89d4110a95c954d61
3688
3689 [Alen = 1]
3690
3691 Key = 08b0da255d2083808a1b4d367090bacc
3692 Nonce = 777828b13679a9e2ca89568233
3693
3694 Count = 10
3695 Adata = dd
3696 Payload = 1b156d7e2bf7c9a25ad91cff7b0b02161cb78ff9162286b0
3697 CT = e8b80af4960d5417c15726406e345c5c46831192b03432eed16b6
3698
3699 Count = 11
3700 Adata = c5
3701 Payload = 032fee9dbffccc751e6a1ee6d07bb218b3a7ec6bf5740ead
3702 CT = f0828917020651c085e42459c544ec52e99372005362baf308ebe
3703 """).splitlines()
3704 assert load_nist_ccm_vectors(vector_data) == [
3705 {
3706 'plen': 24,
3707 'nlen': 13,
3708 'tlen': 16,
3709 'alen': 0,
3710 'key': b'd24a3d3dde8c84830280cb87abad0bb3',
3711 'nonce': b'f1100035bb24a8d26004e0e24b',
3712 'adata': b'00',
3713 'payload': b'7c86135ed9c2a515aaae0e9a208133897269220f30870006',
3714 'ct': b'1faeb0ee2ca2cd52f0aa3966578344f24e69b742c4ab37ab11233'
3715 },
3716 {
3717 'plen': 24,
3718 'nlen': 13,
3719 'tlen': 16,
3720 'alen': 0,
3721 'key': b'd24a3d3dde8c84830280cb87abad0bb3',
3722 'nonce': b'f1100035bb24a8d26004e0e24b',
3723 'adata': b'00',
3724 'payload': b'48df73208cdc63d716752df7794807b1b2a80794a2433455',
3725 'ct': b'642145210f947bc4a0b1e678fd8c990c2c1d89d4110a95c954d61'
3726 },
3727 {
3728 'plen': 24,
3729 'nlen': 13,
3730 'tlen': 16,
3731 'alen': 1,
3732 'key': b'08b0da255d2083808a1b4d367090bacc',
3733 'nonce': b'777828b13679a9e2ca89568233',
3734 'adata': b'dd',
3735 'payload': b'1b156d7e2bf7c9a25ad91cff7b0b02161cb78ff9162286b0',
3736 'ct': b'e8b80af4960d5417c15726406e345c5c46831192b03432eed16b6'
3737 },
3738 {
3739 'plen': 24,
3740 'nlen': 13,
3741 'tlen': 16,
3742 'alen': 1,
3743 'key': b'08b0da255d2083808a1b4d367090bacc',
3744 'nonce': b'777828b13679a9e2ca89568233',
3745 'adata': b'c5',
3746 'payload': b'032fee9dbffccc751e6a1ee6d07bb218b3a7ec6bf5740ead',
3747 'ct': b'f0828917020651c085e42459c544ec52e99372005362baf308ebe'
3748 }
3749 ]
3750
3751
Mohammed Attia0fb5d852014-04-21 10:31:15 +02003752def test_vector_version():
3753 assert cryptography.__version__ == cryptography_vectors.__version__
3754
3755
3756def test_raises_unsupported_algorithm_wrong_type():
3757 # Check that it raises if the wrong type of exception is raised.
3758 class TestException(Exception):
3759 pass
3760
3761 with pytest.raises(TestException):
3762 with raises_unsupported_algorithm(None):
3763 raise TestException
3764
3765
3766def test_raises_unsupported_algorithm_wrong_reason():
3767 # Check that it fails if the wrong reason code is raised.
3768 with pytest.raises(AssertionError):
3769 with raises_unsupported_algorithm(None):
3770 raise UnsupportedAlgorithm("An error.",
3771 _Reasons.BACKEND_MISSING_INTERFACE)
3772
3773
3774def test_raises_unsupported_no_exc():
3775 # Check that it fails if no exception is raised.
3776 with pytest.raises(pytest.fail.Exception):
3777 with raises_unsupported_algorithm(
3778 _Reasons.BACKEND_MISSING_INTERFACE
3779 ):
3780 pass
3781
3782
3783def test_raises_unsupported_algorithm():
Alex Gaynor462bd602014-04-25 07:49:08 -07003784 # Check that it doesn't assert if the right things are raised.
Mohammed Attia0fb5d852014-04-21 10:31:15 +02003785 with raises_unsupported_algorithm(
3786 _Reasons.BACKEND_MISSING_INTERFACE
3787 ) as exc_info:
3788 raise UnsupportedAlgorithm("An error.",
3789 _Reasons.BACKEND_MISSING_INTERFACE)
3790 assert exc_info.type is UnsupportedAlgorithm