blob: cc1e12af6cecb59010e850673787786a53c1621a [file] [log] [blame]
Randall Spanglerefa37b82014-11-12 16:20:50 -08001/* Copyright (c) 2014 The Chromium OS Authors. All rights reserved.
2 * Use of this source code is governed by a BSD-style license that can be
3 * found in the LICENSE file.
4 *
5 * Tests for api library, new style structs
6 */
7
8#include <stdio.h>
9
10#include "2sysincludes.h"
11#include "2api.h"
12#include "2common.h"
13#include "2misc.h"
14#include "2nvstorage.h"
15#include "2rsa.h"
16#include "2secdata.h"
17
Randall Spanglerc86f0412014-12-02 10:55:52 -080018#include "host_key2.h"
Randall Spanglerc644a8c2014-11-21 11:04:36 -080019#include "host_signature2.h"
20
Randall Spanglerefa37b82014-11-12 16:20:50 -080021#include "test_common.h"
Randall Spanglerefa37b82014-11-12 16:20:50 -080022
23/* Common context for tests */
24static uint8_t workbuf[VB2_WORKBUF_RECOMMENDED_SIZE]
25 __attribute__ ((aligned (16)));
26static struct vb2_context ctx;
27static struct vb2_shared_data *sd;
28
29static const uint8_t mock_body[320] = "Mock body";
30static const int mock_body_size = sizeof(mock_body);
31static const int mock_algorithm = VB2_ALG_RSA2048_SHA256;
32static const int mock_hash_alg = VB2_HASH_SHA256;
33static int mock_sig_size;
34
35static const struct vb2_guid test_guid[4] = {
36 {.raw = {0x11}},
37 {.raw = {0x22}},
38 {.raw = {0x33}},
39 {.raw = {0x44}},
40};
41
42/* Mocked function data */
43static int retval_vb2_load_fw_keyblock;
44static int retval_vb2_load_fw_preamble;
45
46/* Type of test to reset for */
47enum reset_type {
48 FOR_MISC,
49 FOR_EXTEND_HASH,
50 FOR_CHECK_HASH,
51};
52
53static void reset_common_data(enum reset_type t)
54{
Randall Spanglerc86f0412014-12-02 10:55:52 -080055 const struct vb2_private_key *hash_key;
Randall Spanglerefa37b82014-11-12 16:20:50 -080056 struct vb2_fw_preamble2 *pre;
57 struct vb2_signature2 *sig;
58 uint32_t sig_offset;
59
60 int i;
61
62 memset(workbuf, 0xaa, sizeof(workbuf));
63
64 memset(&ctx, 0, sizeof(ctx));
65 ctx.workbuf = workbuf;
66 ctx.workbuf_size = sizeof(workbuf);
67
68 vb2_init_context(&ctx);
69 sd = vb2_get_sd(&ctx);
70
71 vb2_nv_init(&ctx);
72
73 vb2_secdata_create(&ctx);
74 vb2_secdata_init(&ctx);
75
76 retval_vb2_load_fw_keyblock = VB2_SUCCESS;
77 retval_vb2_load_fw_preamble = VB2_SUCCESS;
78
Randall Spanglerc86f0412014-12-02 10:55:52 -080079 vb2_private_key_hash(&hash_key, mock_hash_alg);
80
Randall Spanglerefa37b82014-11-12 16:20:50 -080081 sd->workbuf_preamble_offset = ctx.workbuf_used;
82 pre = (struct vb2_fw_preamble2 *)
83 (ctx.workbuf + sd->workbuf_preamble_offset);
84 pre->hash_count = 3;
85 pre->hash_offset = sig_offset = sizeof(*pre);
86
87 for (i = 0; i < 3; i++) {
Randall Spanglerc86f0412014-12-02 10:55:52 -080088 vb2_sign_data(&sig, mock_body, mock_body_size - 16 * i,
89 hash_key, NULL);
Randall Spanglerefa37b82014-11-12 16:20:50 -080090 memcpy(&sig->guid, test_guid + i, sizeof(sig->guid));
91 memcpy((uint8_t *)pre + sig_offset, sig, sig->c.total_size);
92 sig_offset += sig->c.total_size;
93 mock_sig_size = sig->c.total_size;
94 free(sig);
95 }
96
97 sd->workbuf_preamble_size = sig_offset;
98 ctx.workbuf_used = sd->workbuf_preamble_offset
99 + sd->workbuf_preamble_size;
100
101 if (t == FOR_EXTEND_HASH || t == FOR_CHECK_HASH)
102 vb2api_init_hash2(&ctx, test_guid, NULL);
103
104 if (t == FOR_CHECK_HASH)
105 vb2api_extend_hash(&ctx, mock_body, mock_body_size);
106};
107
108/* Mocked functions */
109
110int vb2_load_fw_keyblock2(struct vb2_context *ctx)
111{
112 return retval_vb2_load_fw_keyblock;
113}
114
115int vb2_load_fw_preamble2(struct vb2_context *ctx)
116{
117 return retval_vb2_load_fw_preamble;
118}
119
120/* Tests */
121
122static void phase3_tests(void)
123{
124 reset_common_data(FOR_MISC);
125 TEST_SUCC(vb2api_fw_phase3_2(&ctx), "phase3 good");
126
127 reset_common_data(FOR_MISC);
128 retval_vb2_load_fw_keyblock = VB2_ERROR_MOCK;
129 TEST_EQ(vb2api_fw_phase3_2(&ctx), VB2_ERROR_MOCK, "phase3 keyblock");
130 TEST_EQ(vb2_nv_get(&ctx, VB2_NV_RECOVERY_REQUEST),
131 VB2_RECOVERY_RO_INVALID_RW, " recovery reason");
132
133 reset_common_data(FOR_MISC);
134 retval_vb2_load_fw_preamble = VB2_ERROR_MOCK;
135 TEST_EQ(vb2api_fw_phase3_2(&ctx), VB2_ERROR_MOCK, "phase3 keyblock");
136 TEST_EQ(vb2_nv_get(&ctx, VB2_NV_RECOVERY_REQUEST),
137 VB2_RECOVERY_RO_INVALID_RW, " recovery reason");
138}
139
140static void init_hash_tests(void)
141{
142 struct vb2_fw_preamble2 *pre;
143 struct vb2_signature2 *sig;
144 int wb_used_before;
145 uint32_t size;
146
147 reset_common_data(FOR_MISC);
148 pre = (struct vb2_fw_preamble2 *)
149 (ctx.workbuf + sd->workbuf_preamble_offset);
150 sig = (struct vb2_signature2 *)((uint8_t *)pre + pre->hash_offset);
151
152 wb_used_before = ctx.workbuf_used;
153 TEST_SUCC(vb2api_init_hash2(&ctx, test_guid, &size),
154 "init hash good");
155 TEST_EQ(sd->workbuf_hash_offset,
156 (wb_used_before + (VB2_WORKBUF_ALIGN - 1)) &
157 ~(VB2_WORKBUF_ALIGN - 1),
158 "hash context offset");
159 TEST_EQ(sd->workbuf_hash_size, sizeof(struct vb2_digest_context),
160 "hash context size");
161 TEST_EQ(ctx.workbuf_used,
162 sd->workbuf_hash_offset + sd->workbuf_hash_size,
163 "hash uses workbuf");
164 TEST_EQ(sd->hash_tag,
165 sd->workbuf_preamble_offset + pre->hash_offset,
166 "hash signature offset");
167 TEST_EQ(sd->hash_remaining_size, mock_body_size, "hash remaining");
168
169 wb_used_before = ctx.workbuf_used;
170 TEST_SUCC(vb2api_init_hash2(&ctx, test_guid + 2, NULL),
171 "init hash again");
172 TEST_EQ(ctx.workbuf_used, wb_used_before, "init hash reuses context");
173 TEST_EQ(sd->hash_tag,
174 sd->workbuf_preamble_offset + pre->hash_offset +
175 2 * mock_sig_size,
176 "hash signature offset 2");
177
178 reset_common_data(FOR_MISC);
179 TEST_EQ(vb2api_init_hash2(&ctx, test_guid + 3, &size),
180 VB2_ERROR_API_INIT_HASH_GUID, "init hash invalid guid");
181
182 reset_common_data(FOR_MISC);
183 sd->workbuf_preamble_size = 0;
184 TEST_EQ(vb2api_init_hash2(&ctx, test_guid, &size),
185 VB2_ERROR_API_INIT_HASH_PREAMBLE, "init hash preamble");
186
187 reset_common_data(FOR_MISC);
188 ctx.workbuf_used =
189 ctx.workbuf_size - sizeof(struct vb2_digest_context) + 8;
190 TEST_EQ(vb2api_init_hash2(&ctx, test_guid, &size),
191 VB2_ERROR_API_INIT_HASH_WORKBUF, "init hash workbuf");
192
193 reset_common_data(FOR_MISC);
194 sig->hash_alg = VB2_HASH_INVALID;
195 TEST_EQ(vb2api_init_hash2(&ctx, test_guid, &size),
196 VB2_ERROR_SHA_INIT_ALGORITHM, "init hash algorithm");
197}
198
199static void check_hash_tests(void)
200{
201 struct vb2_fw_preamble2 *pre;
202 struct vb2_signature2 *sig;
203 struct vb2_digest_context *dc;
204
205 reset_common_data(FOR_CHECK_HASH);
206 pre = (struct vb2_fw_preamble2 *)
207 (ctx.workbuf + sd->workbuf_preamble_offset);
208 sig = (struct vb2_signature2 *)((uint8_t *)pre + pre->hash_offset);
209 dc = (struct vb2_digest_context *)
210 (ctx.workbuf + sd->workbuf_hash_offset);
211
212 TEST_SUCC(vb2api_check_hash2(&ctx), "check hash good");
213
214 reset_common_data(FOR_CHECK_HASH);
215 sd->hash_tag = 0;
216 TEST_EQ(vb2api_check_hash2(&ctx),
217 VB2_ERROR_API_CHECK_HASH_TAG, "check hash tag");
218
219 reset_common_data(FOR_CHECK_HASH);
220 sd->workbuf_hash_size = 0;
221 TEST_EQ(vb2api_check_hash2(&ctx),
222 VB2_ERROR_API_CHECK_HASH_WORKBUF, "check hash no workbuf");
223
224 reset_common_data(FOR_CHECK_HASH);
225 sd->hash_remaining_size = 1;
226 TEST_EQ(vb2api_check_hash2(&ctx),
227 VB2_ERROR_API_CHECK_HASH_SIZE, "check hash size");
228
229 reset_common_data(FOR_CHECK_HASH);
230 ctx.workbuf_used = ctx.workbuf_size;
231 TEST_EQ(vb2api_check_hash2(&ctx),
232 VB2_ERROR_API_CHECK_HASH_WORKBUF_DIGEST, "check hash workbuf");
233
234 reset_common_data(FOR_CHECK_HASH);
235 dc->hash_alg = VB2_HASH_INVALID;
236 *((uint8_t *)sig + sig->sig_offset) ^= 0x55;
237 TEST_EQ(vb2api_check_hash2(&ctx),
238 VB2_ERROR_SHA_FINALIZE_ALGORITHM, "check hash finalize");
239
240 reset_common_data(FOR_CHECK_HASH);
241 *((uint8_t *)sig + sig->sig_offset) ^= 0x55;
242 TEST_EQ(vb2api_check_hash2(&ctx),
243 VB2_ERROR_API_CHECK_HASH_SIG, "check hash sig");
244}
245
246int main(int argc, char* argv[])
247{
248 phase3_tests();
249 init_hash_tests();
250 check_hash_tests();
251
252 return gTestSuccess ? 0 : 255;
253}