Blame crypto/fips/fips_des_selftest.c

Packit Service 084de1
/* ====================================================================
Packit Service 084de1
 * Copyright (c) 2003 The OpenSSL Project.  All rights reserved.
Packit Service 084de1
 *
Packit Service 084de1
 * Redistribution and use in source and binary forms, with or without
Packit Service 084de1
 * modification, are permitted provided that the following conditions
Packit Service 084de1
 * are met:
Packit Service 084de1
 *
Packit Service 084de1
 * 1. Redistributions of source code must retain the above copyright
Packit Service 084de1
 *    notice, this list of conditions and the following disclaimer. 
Packit Service 084de1
 *
Packit Service 084de1
 * 2. Redistributions in binary form must reproduce the above copyright
Packit Service 084de1
 *    notice, this list of conditions and the following disclaimer in
Packit Service 084de1
 *    the documentation and/or other materials provided with the
Packit Service 084de1
 *    distribution.
Packit Service 084de1
 *
Packit Service 084de1
 * 3. All advertising materials mentioning features or use of this
Packit Service 084de1
 *    software must display the following acknowledgment:
Packit Service 084de1
 *    "This product includes software developed by the OpenSSL Project
Packit Service 084de1
 *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
Packit Service 084de1
 *
Packit Service 084de1
 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
Packit Service 084de1
 *    endorse or promote products derived from this software without
Packit Service 084de1
 *    prior written permission. For written permission, please contact
Packit Service 084de1
 *    openssl-core@openssl.org.
Packit Service 084de1
 *
Packit Service 084de1
 * 5. Products derived from this software may not be called "OpenSSL"
Packit Service 084de1
 *    nor may "OpenSSL" appear in their names without prior written
Packit Service 084de1
 *    permission of the OpenSSL Project.
Packit Service 084de1
 *
Packit Service 084de1
 * 6. Redistributions of any form whatsoever must retain the following
Packit Service 084de1
 *    acknowledgment:
Packit Service 084de1
 *    "This product includes software developed by the OpenSSL Project
Packit Service 084de1
 *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
Packit Service 084de1
 *
Packit Service 084de1
 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
Packit Service 084de1
 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
Packit Service 084de1
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
Packit Service 084de1
 * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
Packit Service 084de1
 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
Packit Service 084de1
 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
Packit Service 084de1
 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
Packit Service 084de1
 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
Packit Service 084de1
 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
Packit Service 084de1
 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
Packit Service 084de1
 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
Packit Service 084de1
 * OF THE POSSIBILITY OF SUCH DAMAGE.
Packit Service 084de1
 *
Packit Service 084de1
 */
Packit Service 084de1
Packit Service 084de1
#include <string.h>
Packit Service 084de1
#include <openssl/err.h>
Packit Service 084de1
#ifdef OPENSSL_FIPS
Packit Service 084de1
# include <openssl/fips.h>
Packit Service 084de1
# include "crypto/fips.h"
Packit Service 084de1
#endif
Packit Service 084de1
#include <openssl/opensslconf.h>
Packit Service 084de1
Packit Service 084de1
#ifdef OPENSSL_FIPS
Packit Service 084de1
Packit Service 084de1
static const struct {
Packit Service 084de1
    const unsigned char key[16];
Packit Service 084de1
    const unsigned char plaintext[8];
Packit Service 084de1
    const unsigned char ciphertext[8];
Packit Service 084de1
} tests2[] = {
Packit Service 084de1
    {
Packit Service 084de1
        {
Packit Service 084de1
        0x7c, 0x4f, 0x6e, 0xf7, 0xa2, 0x04, 0x16, 0xec,
Packit Service 084de1
                0x0b, 0x6b, 0x7c, 0x9e, 0x5e, 0x19, 0xa7, 0xc4}, {
Packit Service 084de1
        0x06, 0xa7, 0xd8, 0x79, 0xaa, 0xce, 0x69, 0xef}, {
Packit Service 084de1
        0x4c, 0x11, 0x17, 0x55, 0xbf, 0xc4, 0x4e, 0xfd}
Packit Service 084de1
    }, {
Packit Service 084de1
        {
Packit Service 084de1
        0x5d, 0x9e, 0x01, 0xd3, 0x25, 0xc7, 0x3e, 0x34,
Packit Service 084de1
                0x01, 0x16, 0x7c, 0x85, 0x23, 0xdf, 0xe0, 0x68}, {
Packit Service 084de1
        0x9c, 0x50, 0x09, 0x0f, 0x5e, 0x7d, 0x69, 0x7e}, {
Packit Service 084de1
    0xd2, 0x0b, 0x18, 0xdf, 0xd9, 0x0d, 0x9e, 0xff},}
Packit Service 084de1
};
Packit Service 084de1
Packit Service 084de1
static const struct {
Packit Service 084de1
    const unsigned char key[24];
Packit Service 084de1
    const unsigned char plaintext[8];
Packit Service 084de1
    const unsigned char ciphertext[8];
Packit Service 084de1
} tests3[] = {
Packit Service 084de1
    {
Packit Service 084de1
        {
Packit Service 084de1
        0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
Packit Service 084de1
                0xFE, 0xDC, 0xBA, 0x98, 0x76, 0x54, 0x32, 0x10,
Packit Service 084de1
                0x12, 0x34, 0x56, 0x78, 0x9a, 0xbc, 0xde, 0xf0}, {
Packit Service 084de1
        0x8f, 0x8f, 0xbf, 0x9b, 0x5d, 0x48, 0xb4, 0x1c}, {
Packit Service 084de1
    0x59, 0x8c, 0xe5, 0xd3, 0x6c, 0xa2, 0xea, 0x1b},}, {
Packit Service 084de1
        {
Packit Service 084de1
        0xDC, 0xBA, 0x98, 0x76, 0x54, 0x32, 0x10, 0xFE,
Packit Service 084de1
                0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF,
Packit Service 084de1
                0xED, 0x39, 0xD9, 0x50, 0xFA, 0x74, 0xBC, 0xC4}, {
Packit Service 084de1
        0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF}, {
Packit Service 084de1
0x11, 0x25, 0xb0, 0x35, 0xbe, 0xa0, 0x82, 0x86},},};
Packit Service 084de1
Packit Service 084de1
int FIPS_selftest_des()
Packit Service 084de1
{
Packit Service 084de1
    int n, ret = 0;
Packit Service 084de1
    EVP_CIPHER_CTX *ctx;
Packit Service 084de1
Packit Service 084de1
    ctx = EVP_CIPHER_CTX_new();
Packit Service 084de1
    if (ctx == NULL)
Packit Service 084de1
        goto err;
Packit Service 084de1
Packit Service 084de1
    /* Encrypt/decrypt with 2-key 3DES and compare to known answers */
Packit Service 084de1
    for (n = 0; n < 2; ++n) {
Packit Service 084de1
        unsigned char plaintext[8];
Packit Service 084de1
Packit Service 084de1
        memcpy(plaintext, tests2[n].plaintext, sizeof(plaintext));
Packit Service 084de1
        if (!fips_cipher_test(ctx, EVP_des_ede_ecb(),
Packit Service 084de1
                              tests2[n].key, NULL,
Packit Service 084de1
                              plaintext, tests2[n].ciphertext, 8))
Packit Service 084de1
            goto err;
Packit Service 084de1
    }
Packit Service 084de1
Packit Service 084de1
    /* Encrypt/decrypt with 3DES and compare to known answers */
Packit Service 084de1
    for (n = 0; n < 2; ++n) {
Packit Service 084de1
        if (!fips_cipher_test(ctx, EVP_des_ede3_ecb(),
Packit Service 084de1
                              tests3[n].key, NULL,
Packit Service 084de1
                              tests3[n].plaintext, tests3[n].ciphertext, 8))
Packit Service 084de1
            goto err;
Packit Service 084de1
    }
Packit Service 084de1
    ret = 1;
Packit Service 084de1
 err:
Packit Service 084de1
    EVP_CIPHER_CTX_free(ctx);
Packit Service 084de1
    if (ret == 0)
Packit Service 084de1
        FIPSerr(FIPS_F_FIPS_SELFTEST_DES, FIPS_R_SELFTEST_FAILED);
Packit Service 084de1
Packit Service 084de1
    return ret;
Packit Service 084de1
}
Packit Service 084de1
#endif