Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 1 | Test Vectors |
| 2 | ============ |
| 3 | |
| 4 | Testing the correctness of the primitives implemented in each ``cryptography`` |
| 5 | backend requires trusted test vectors. Where possible these vectors are obtained |
| 6 | from official sources such as `NIST`_ or `IETF`_ RFCs. When this is not possible |
| 7 | ``cryptography`` has chosen to create a set of custom vectors using an official |
| 8 | vector file as input to verify consistency between implemented backends. |
| 9 | |
| 10 | Sources |
| 11 | ------- |
| 12 | |
| 13 | Asymmetric Ciphers |
| 14 | ~~~~~~~~~~~~~~~~~~ |
| 15 | |
Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 16 | * RSA PKCS #1 from the RSA FTP site (ftp://ftp.rsasecurity.com/pub/pkcs/pkcs-1/ |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 17 | and ftp://ftp.rsa.com/pub/rsalabs/tmp/). |
Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame^] | 18 | * OpenSSL PEM serialization vectors from the `OpenSSL test suite`_ and `GnuTLS |
| 19 | test suite`_. |
Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 20 | * PKCS #8 PEM serialization vectors from |
| 21 | |
Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame^] | 22 | * GnuTLS: `encpkcs8.pem`_, `enc2pkcs8.pem`_, `unencpkcs8.pem`_, |
| 23 | `pkcs12_s2k_pem.c`_. |
Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 24 | * `Botan's ECC private keys`_. |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 25 | |
| 26 | Hashes |
| 27 | ~~~~~~ |
| 28 | |
| 29 | * MD5 from :rfc:`1321`. |
| 30 | * RIPEMD160 from the `RIPEMD website`_. |
| 31 | * SHA1 from `NIST CAVP`_. |
| 32 | * SHA2 (224, 256, 384, 512) from `NIST CAVP`_. |
| 33 | * Whirlpool from the `Whirlpool website`_. |
| 34 | |
| 35 | HMAC |
| 36 | ~~~~ |
| 37 | |
| 38 | * HMAC-MD5 from :rfc:`2202`. |
| 39 | * HMAC-SHA1 from :rfc:`2202`. |
| 40 | * HMAC-RIPEMD160 from :rfc:`2286`. |
| 41 | * HMAC-SHA2 (224, 256, 384, 512) from :rfc:`4231`. |
| 42 | |
| 43 | Key Derivation Functions |
| 44 | ~~~~~~~~~~~~~~~~~~~~~~~~ |
| 45 | |
| 46 | * HKDF (SHA1, SHA256) from :rfc:`5869`. |
| 47 | * PBKDF2 (HMAC-SHA1) from :rfc:`6070`. |
Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame^] | 48 | * scrypt from the `draft RFC`_. |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 49 | |
| 50 | Recipes |
| 51 | ~~~~~~~ |
| 52 | |
| 53 | * Fernet from its `specification repository`_. |
| 54 | |
| 55 | Symmetric Ciphers |
| 56 | ~~~~~~~~~~~~~~~~~ |
| 57 | |
Paul Kehrer | e547d8f | 2014-02-15 21:37:52 -0600 | [diff] [blame] | 58 | * AES (CBC, CFB, ECB, GCM, OFB) from `NIST CAVP`_. |
| 59 | * AES CTR from :rfc:`3686`. |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 60 | * 3DES (CBC, CFB, ECB, OFB) from `NIST CAVP`_. |
| 61 | * ARC4 from :rfc:`6229`. |
| 62 | * Blowfish (CBC, CFB, ECB, OFB) from `Bruce Schneier's vectors`_. |
| 63 | * Camellia (ECB) from NTT's `Camellia page`_ as linked by `CRYPTREC`_. |
| 64 | * Camellia (CBC, CFB, OFB) from `OpenSSL's test vectors`_. |
| 65 | * CAST5 (ECB) from :rfc:`2144`. |
Paul Kehrer | cf6ffb5 | 2014-02-12 16:17:04 -0600 | [diff] [blame] | 66 | * CAST5 (CBC, CFB, OFB) generated by this project. |
| 67 | See: :doc:`/development/custom-vectors/cast5` |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 68 | |
Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 69 | Two Factor Authentication |
| 70 | ~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 71 | |
| 72 | * HOTP from :rfc:`4226` |
Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame^] | 73 | * TOTP from :rfc:`6238` (Note that an `errata`_ for the test vectors in RFC |
| 74 | 6238 exists) |
Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 75 | |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 76 | |
Paul Kehrer | cf6ffb5 | 2014-02-12 16:17:04 -0600 | [diff] [blame] | 77 | Creating Test Vectors |
| 78 | --------------------- |
| 79 | |
| 80 | When official vectors are unavailable ``cryptography`` may choose to build |
| 81 | its own using existing vectors as source material. Current custom vectors: |
| 82 | |
| 83 | .. toctree:: |
| 84 | :maxdepth: 1 |
| 85 | |
| 86 | custom-vectors/cast5 |
| 87 | |
| 88 | If official test vectors appear in the future the custom generated vectors |
| 89 | should be discarded. |
| 90 | |
| 91 | Any vectors generated by this method must also be prefixed with the following |
| 92 | header format (substituting the correct information): |
| 93 | |
| 94 | .. code-block:: python |
| 95 | |
| 96 | # CAST5 CBC vectors built for https://github.com/pyca/cryptography |
| 97 | # Derived from the AESVS MMT test data for CBC |
| 98 | # Verified against the CommonCrypto and Go crypto packages |
| 99 | # Key Length : 128 |
| 100 | |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 101 | .. _`NIST`: http://www.nist.gov/ |
| 102 | .. _`IETF`: https://www.ietf.org/ |
| 103 | .. _`NIST CAVP`: http://csrc.nist.gov/groups/STM/cavp/ |
| 104 | .. _`Bruce Schneier's vectors`: https://www.schneier.com/code/vectors.txt |
| 105 | .. _`Camellia page`: http://info.isl.ntt.co.jp/crypt/eng/camellia/ |
| 106 | .. _`CRYPTREC`: http://www.cryptrec.go.jp |
| 107 | .. _`OpenSSL's test vectors`: https://github.com/openssl/openssl/blob/97cf1f6c2854a3a955fd7dd3a1f113deba00c9ef/crypto/evp/evptests.txt#L232 |
| 108 | .. _`RIPEMD website`: http://homes.esat.kuleuven.be/~bosselae/ripemd160.html |
| 109 | .. _`Whirlpool website`: http://www.larc.usp.br/~pbarreto/WhirlpoolPage.html |
Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame^] | 110 | .. _`draft RFC`: https://tools.ietf.org/html/draft-josefsson-scrypt-kdf-01 |
Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 111 | .. _`Specification repository`: https://github.com/fernet/spec |
Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 112 | .. _`errata`: http://www.rfc-editor.org/errata_search.php?rfc=6238 |
Alex Stapleton | 58db154 | 2014-02-19 21:18:15 +0000 | [diff] [blame] | 113 | .. _`OpenSSL test suite`: http://git.openssl.org/gitweb/?p=openssl.git;a=blob;f=test/testrsa.pem;h=aad21067a8f7cb93a52a511eb9162fd83be39135;hb=66e8211c0b1347970096e04b18aa52567c325200 |
| 114 | .. _`GnuTLS test suite`: https://gitorious.org/gnutls/gnutls/commit/f16ef39ef0303b02d7fa590a37820440c466ce8d |
Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 115 | .. _`encpkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/encpkcs8.pem |
| 116 | .. _`enc2pkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/enc2pkcs8.pem |
| 117 | .. _`unencpkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/unencpkcs8.pem |
| 118 | .. _`pkcs12_s2k_pem.c`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs12_s2k_pem.c |
| 119 | .. _`Botan's ECC private keys`: https://github.com/randombit/botan/tree/4917f26a2b154e841cd27c1bcecdd41d2bdeb6ce/src/tests/data/ecc |