| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 1 | Test vectors | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 2 | ============ | 
 | 3 |  | 
 | 4 | Testing the correctness of the primitives implemented in each ``cryptography`` | 
| Alex Stapleton | a39a319 | 2014-03-14 20:03:12 +0000 | [diff] [blame] | 5 | backend requires trusted test vectors. Where possible these vectors are | 
 | 6 | obtained from official sources such as `NIST`_ or `IETF`_ RFCs. When this is | 
 | 7 | not possible ``cryptography`` has chosen to create a set of custom vectors | 
 | 8 | using an official vector file as input to verify consistency between | 
 | 9 | implemented backends. | 
 | 10 |  | 
 | 11 | Vectors are kept in the `cryptography_vectors` package rather than within our | 
 | 12 | main test suite. | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 13 |  | 
 | 14 | Sources | 
 | 15 | ------- | 
 | 16 |  | 
| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 17 | Asymmetric ciphers | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 18 | ~~~~~~~~~~~~~~~~~~ | 
 | 19 |  | 
| Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 20 | * RSA PKCS #1 from the RSA FTP site (ftp://ftp.rsasecurity.com/pub/pkcs/pkcs-1/ | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 21 |   and ftp://ftp.rsa.com/pub/rsalabs/tmp/). | 
| Paul Kehrer | 7f0039c | 2014-03-03 22:32:11 -0400 | [diff] [blame] | 22 | * RSA FIPS 186-2 and PKCS1 v1.5 vulnerability test vectors from `NIST CAVP`_. | 
| Alex Stapleton | 07c6a39 | 2014-04-02 11:05:30 +0100 | [diff] [blame] | 23 | * FIPS 186-2 and FIPS 186-3 DSA test vectors from `NIST CAVP`_. | 
 | 24 | * FIPS 186-2 and FIPS 186-3 ECDSA test vectors from `NIST CAVP`_. | 
| Alex Stapleton | 833a8ea | 2014-04-02 14:50:56 +0100 | [diff] [blame] | 25 | * Ed25519 test vectors from the `Ed25519 website_`. | 
| Alex Stapleton | e7da0ab | 2014-03-02 14:04:33 +0000 | [diff] [blame] | 26 | * OpenSSL PEM RSA serialization vectors from the `OpenSSL example key`_ and | 
 | 27 |   `GnuTLS key parsing tests`_. | 
 | 28 | * OpenSSL PEM DSA serialization vectors from the `GnuTLS example keys`_. | 
| Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 29 | * PKCS #8 PEM serialization vectors from | 
 | 30 |  | 
| Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame] | 31 |   * GnuTLS: `encpkcs8.pem`_, `enc2pkcs8.pem`_, `unencpkcs8.pem`_, | 
 | 32 |     `pkcs12_s2k_pem.c`_. | 
| Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 33 |   * `Botan's ECC private keys`_. | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 34 |  | 
 | 35 | Hashes | 
 | 36 | ~~~~~~ | 
 | 37 |  | 
 | 38 | * MD5 from :rfc:`1321`. | 
 | 39 | * RIPEMD160 from the `RIPEMD website`_. | 
 | 40 | * SHA1 from `NIST CAVP`_. | 
 | 41 | * SHA2 (224, 256, 384, 512) from `NIST CAVP`_. | 
 | 42 | * Whirlpool from the `Whirlpool website`_. | 
 | 43 |  | 
 | 44 | HMAC | 
 | 45 | ~~~~ | 
 | 46 |  | 
 | 47 | * HMAC-MD5 from :rfc:`2202`. | 
 | 48 | * HMAC-SHA1 from :rfc:`2202`. | 
 | 49 | * HMAC-RIPEMD160 from :rfc:`2286`. | 
 | 50 | * HMAC-SHA2 (224, 256, 384, 512) from :rfc:`4231`. | 
 | 51 |  | 
| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 52 | Key derivation functions | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 53 | ~~~~~~~~~~~~~~~~~~~~~~~~ | 
 | 54 |  | 
 | 55 | * HKDF (SHA1, SHA256) from :rfc:`5869`. | 
 | 56 | * PBKDF2 (HMAC-SHA1) from :rfc:`6070`. | 
| Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame] | 57 | * scrypt from the `draft RFC`_. | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 58 |  | 
 | 59 | Recipes | 
 | 60 | ~~~~~~~ | 
 | 61 |  | 
 | 62 | * Fernet from its `specification repository`_. | 
 | 63 |  | 
| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 64 | Symmetric ciphers | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 65 | ~~~~~~~~~~~~~~~~~ | 
 | 66 |  | 
| Paul Kehrer | e547d8f | 2014-02-15 21:37:52 -0600 | [diff] [blame] | 67 | * AES (CBC, CFB, ECB, GCM, OFB) from `NIST CAVP`_. | 
 | 68 | * AES CTR from :rfc:`3686`. | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 69 | * 3DES (CBC, CFB, ECB, OFB) from `NIST CAVP`_. | 
 | 70 | * ARC4 from :rfc:`6229`. | 
 | 71 | * Blowfish (CBC, CFB, ECB, OFB) from `Bruce Schneier's vectors`_. | 
 | 72 | * Camellia (ECB) from NTT's `Camellia page`_ as linked by `CRYPTREC`_. | 
 | 73 | * Camellia (CBC, CFB, OFB) from `OpenSSL's test vectors`_. | 
 | 74 | * CAST5 (ECB) from :rfc:`2144`. | 
| Paul Kehrer | cf6ffb5 | 2014-02-12 16:17:04 -0600 | [diff] [blame] | 75 | * CAST5 (CBC, CFB, OFB) generated by this project. | 
 | 76 |   See: :doc:`/development/custom-vectors/cast5` | 
| Paul Kehrer | b09622c | 2014-02-16 19:32:04 -0600 | [diff] [blame] | 77 | * IDEA (ECB) from the `NESSIE IDEA vectors`_ created by `NESSIE`_. | 
 | 78 | * IDEA (CBC, CFB, OFB) generated by this project. | 
 | 79 |   See: :doc:`/development/custom-vectors/idea` | 
| Paul Kehrer | 1d0f973 | 2014-04-08 08:44:25 -0500 | [diff] [blame] | 80 | * SEED (ECB) from :rfc:`4269`. | 
| Paul Kehrer | f0e12ac | 2014-04-08 08:59:40 -0500 | [diff] [blame] | 81 | * SEED (CBC) from :rfc:`4196`. | 
| Paul Kehrer | 6d8f9b0 | 2014-04-08 09:17:02 -0500 | [diff] [blame] | 82 | * SEED (CFB, OFB) generated by this project. | 
 | 83 |   See: :doc:`/development/custom-vectors/seed` | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 84 |  | 
| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 85 | Two factor authentication | 
| Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 86 | ~~~~~~~~~~~~~~~~~~~~~~~~~ | 
 | 87 |  | 
 | 88 | * HOTP from :rfc:`4226` | 
| Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame] | 89 | * TOTP from :rfc:`6238` (Note that an `errata`_ for the test vectors in RFC | 
 | 90 |   6238 exists) | 
| Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 91 |  | 
| Alex Stapleton | c5fffd3 | 2014-03-18 15:29:00 +0000 | [diff] [blame] | 92 | Creating test vectors | 
| Paul Kehrer | cf6ffb5 | 2014-02-12 16:17:04 -0600 | [diff] [blame] | 93 | --------------------- | 
 | 94 |  | 
 | 95 | When official vectors are unavailable ``cryptography`` may choose to build | 
 | 96 | its own using existing vectors as source material. Current custom vectors: | 
 | 97 |  | 
 | 98 | .. toctree:: | 
 | 99 |     :maxdepth: 1 | 
 | 100 |  | 
 | 101 |     custom-vectors/cast5 | 
| Paul Kehrer | b09622c | 2014-02-16 19:32:04 -0600 | [diff] [blame] | 102 |     custom-vectors/idea | 
| Paul Kehrer | 6d8f9b0 | 2014-04-08 09:17:02 -0500 | [diff] [blame] | 103 |     custom-vectors/seed | 
| Paul Kehrer | cf6ffb5 | 2014-02-12 16:17:04 -0600 | [diff] [blame] | 104 |  | 
 | 105 | If official test vectors appear in the future the custom generated vectors | 
 | 106 | should be discarded. | 
 | 107 |  | 
 | 108 | Any vectors generated by this method must also be prefixed with the following | 
 | 109 | header format (substituting the correct information): | 
 | 110 |  | 
 | 111 | .. code-block:: python | 
 | 112 |  | 
 | 113 |     # CAST5 CBC vectors built for https://github.com/pyca/cryptography | 
 | 114 |     # Derived from the AESVS MMT test data for CBC | 
 | 115 |     # Verified against the CommonCrypto and Go crypto packages | 
 | 116 |     # Key Length : 128 | 
 | 117 |  | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 118 | .. _`NIST`: http://www.nist.gov/ | 
 | 119 | .. _`IETF`: https://www.ietf.org/ | 
 | 120 | .. _`NIST CAVP`: http://csrc.nist.gov/groups/STM/cavp/ | 
 | 121 | .. _`Bruce Schneier's vectors`: https://www.schneier.com/code/vectors.txt | 
 | 122 | .. _`Camellia page`: http://info.isl.ntt.co.jp/crypt/eng/camellia/ | 
 | 123 | .. _`CRYPTREC`: http://www.cryptrec.go.jp | 
 | 124 | .. _`OpenSSL's test vectors`: https://github.com/openssl/openssl/blob/97cf1f6c2854a3a955fd7dd3a1f113deba00c9ef/crypto/evp/evptests.txt#L232 | 
 | 125 | .. _`RIPEMD website`: http://homes.esat.kuleuven.be/~bosselae/ripemd160.html | 
 | 126 | .. _`Whirlpool website`: http://www.larc.usp.br/~pbarreto/WhirlpoolPage.html | 
| Alex Gaynor | 75e72ea | 2014-03-01 12:18:27 -0800 | [diff] [blame] | 127 | .. _`draft RFC`: https://tools.ietf.org/html/draft-josefsson-scrypt-kdf-01 | 
| Paul Kehrer | 1681a69 | 2014-02-11 23:43:51 -0600 | [diff] [blame] | 128 | .. _`Specification repository`: https://github.com/fernet/spec | 
| Ayrx | 933dd68 | 2014-02-18 23:26:11 +0800 | [diff] [blame] | 129 | .. _`errata`: http://www.rfc-editor.org/errata_search.php?rfc=6238 | 
| Alex Stapleton | e7da0ab | 2014-03-02 14:04:33 +0000 | [diff] [blame] | 130 | .. _`OpenSSL example key`: http://git.openssl.org/gitweb/?p=openssl.git;a=blob;f=test/testrsa.pem;h=aad21067a8f7cb93a52a511eb9162fd83be39135;hb=66e8211c0b1347970096e04b18aa52567c325200 | 
 | 131 | .. _`GnuTLS key parsing tests`: https://gitorious.org/gnutls/gnutls/commit/f16ef39ef0303b02d7fa590a37820440c466ce8d | 
| Alex Stapleton | abec8a1 | 2014-02-22 16:33:24 +0000 | [diff] [blame] | 132 | .. _`encpkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/encpkcs8.pem | 
 | 133 | .. _`enc2pkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/enc2pkcs8.pem | 
 | 134 | .. _`unencpkcs8.pem`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs8-decode/unencpkcs8.pem | 
 | 135 | .. _`pkcs12_s2k_pem.c`: https://gitorious.org/gnutls/gnutls/source/f8d943b38bf74eaaa11d396112daf43cb8aa82ae:tests/pkcs12_s2k_pem.c | 
 | 136 | .. _`Botan's ECC private keys`: https://github.com/randombit/botan/tree/4917f26a2b154e841cd27c1bcecdd41d2bdeb6ce/src/tests/data/ecc | 
| Alex Stapleton | e7da0ab | 2014-03-02 14:04:33 +0000 | [diff] [blame] | 137 | .. _`GnuTLS example keys`: https://gitorious.org/gnutls/gnutls/commit/ad2061deafdd7db78fd405f9d143b0a7c579da7b | 
| Paul Kehrer | b09622c | 2014-02-16 19:32:04 -0600 | [diff] [blame] | 138 | .. _`NESSIE IDEA vectors`: https://www.cosic.esat.kuleuven.be/nessie/testvectors/bc/idea/Idea-128-64.verified.test-vectors | 
 | 139 | .. _`NESSIE`: https://en.wikipedia.org/wiki/NESSIE | 
| Alex Stapleton | 833a8ea | 2014-04-02 14:50:56 +0100 | [diff] [blame] | 140 | .. _`Ed25519 website`: http://ed25519.cr.yp.to/software.html |