crypto.c revision 1.1.1.6 1 1.1.1.5 christos /* $NetBSD: crypto.c,v 1.1.1.6 2016/05/01 15:57:23 christos Exp $ */
2 1.1.1.5 christos
3 1.1 christos #include "config.h"
4 1.1 christos #include "unity.h"
5 1.1 christos #include "ntp_types.h"
6 1.1 christos
7 1.1 christos #include "sntptest.h"
8 1.1 christos #include "crypto.h"
9 1.1 christos
10 1.1 christos #define MD5_LENGTH 16
11 1.1 christos #define SHA1_LENGTH 20
12 1.1 christos
13 1.1.1.3 christos
14 1.1.1.3 christos void test_MakeMd5Mac(void);
15 1.1.1.3 christos void test_MakeSHA1Mac(void);
16 1.1.1.3 christos void test_VerifyCorrectMD5(void);
17 1.1.1.3 christos void test_VerifySHA1(void);
18 1.1.1.3 christos void test_VerifyFailure(void);
19 1.1.1.3 christos void test_PacketSizeNotMultipleOfFourBytes(void);
20 1.1.1.3 christos
21 1.1.1.3 christos
22 1.1.1.3 christos void
23 1.1.1.6 christos test_MakeMd5Mac(void)
24 1.1.1.6 christos {
25 1.1 christos const char* PKT_DATA = "abcdefgh0123";
26 1.1 christos const int PKT_LEN = strlen(PKT_DATA);
27 1.1 christos const char* EXPECTED_DIGEST =
28 1.1 christos "\x52\x6c\xb8\x38\xaf\x06\x5a\xfb\x6c\x98\xbb\xc0\x9b\x0a\x7a\x1b";
29 1.1 christos char actual[MD5_LENGTH];
30 1.1 christos
31 1.1 christos struct key md5;
32 1.1 christos md5.next = NULL;
33 1.1 christos md5.key_id = 10;
34 1.1 christos md5.key_len = 6;
35 1.1 christos memcpy(&md5.key_seq, "md5seq", md5.key_len);
36 1.1 christos memcpy(&md5.type, "MD5", 4);
37 1.1 christos
38 1.1 christos TEST_ASSERT_EQUAL(MD5_LENGTH,
39 1.1.1.6 christos make_mac(PKT_DATA, PKT_LEN, MD5_LENGTH, &md5, actual));
40 1.1 christos
41 1.1 christos TEST_ASSERT_TRUE(memcmp(EXPECTED_DIGEST, actual, MD5_LENGTH) == 0);
42 1.1 christos }
43 1.1 christos
44 1.1 christos
45 1.1.1.3 christos void
46 1.1.1.6 christos test_MakeSHA1Mac(void)
47 1.1.1.6 christos {
48 1.1 christos #ifdef OPENSSL
49 1.1.1.6 christos
50 1.1 christos const char* PKT_DATA = "abcdefgh0123";
51 1.1 christos const int PKT_LEN = strlen(PKT_DATA);
52 1.1 christos const char* EXPECTED_DIGEST =
53 1.1 christos "\x17\xaa\x82\x97\xc7\x17\x13\x6a\x9b\xa9"
54 1.1 christos "\x63\x85\xb4\xce\xbe\x94\xa0\x97\x16\x1d";
55 1.1 christos char actual[SHA1_LENGTH];
56 1.1 christos
57 1.1 christos struct key sha1;
58 1.1 christos sha1.next = NULL;
59 1.1 christos sha1.key_id = 20;
60 1.1 christos sha1.key_len = 7;
61 1.1 christos memcpy(&sha1.key_seq, "sha1seq", sha1.key_len);
62 1.1 christos memcpy(&sha1.type, "SHA1", 5);
63 1.1 christos
64 1.1 christos TEST_ASSERT_EQUAL(SHA1_LENGTH,
65 1.1.1.6 christos make_mac(PKT_DATA, PKT_LEN, SHA1_LENGTH, &sha1, actual));
66 1.1 christos
67 1.1.1.3 christos TEST_ASSERT_EQUAL_MEMORY(EXPECTED_DIGEST, actual, SHA1_LENGTH);
68 1.1.1.6 christos
69 1.1 christos #else
70 1.1.1.6 christos
71 1.1 christos TEST_IGNORE_MESSAGE("OpenSSL not found, skipping...");
72 1.1.1.6 christos
73 1.1 christos #endif /* OPENSSL */
74 1.1 christos }
75 1.1 christos
76 1.1 christos
77 1.1.1.3 christos void
78 1.1.1.6 christos test_VerifyCorrectMD5(void)
79 1.1.1.6 christos {
80 1.1 christos const char* PKT_DATA =
81 1.1.1.6 christos "sometestdata" /* Data */
82 1.1.1.6 christos "\0\0\0\0" /* Key-ID (unused) */
83 1.1.1.6 christos "\xc7\x58\x99\xdd\x99\x32\x0f\x71" /* MAC */
84 1.1.1.6 christos "\x2b\x7b\xfe\x4f\xa2\x32\xcf\xac";
85 1.1 christos const int PKT_LEN = 12;
86 1.1 christos
87 1.1 christos struct key md5;
88 1.1 christos md5.next = NULL;
89 1.1 christos md5.key_id = 0;
90 1.1 christos md5.key_len = 6;
91 1.1 christos memcpy(&md5.key_seq, "md5key", md5.key_len);
92 1.1 christos memcpy(&md5.type, "MD5", 4);
93 1.1 christos
94 1.1.1.6 christos TEST_ASSERT_TRUE(auth_md5(PKT_DATA, PKT_LEN, MD5_LENGTH, &md5));
95 1.1 christos }
96 1.1 christos
97 1.1 christos
98 1.1.1.3 christos void
99 1.1.1.6 christos test_VerifySHA1(void)
100 1.1.1.6 christos {
101 1.1 christos #ifdef OPENSSL
102 1.1.1.6 christos
103 1.1 christos const char* PKT_DATA =
104 1.1.1.6 christos "sometestdata" /* Data */
105 1.1.1.6 christos "\0\0\0\0" /* Key-ID (unused) */
106 1.1.1.6 christos "\xad\x07\xde\x36\x39\xa6\x77\xfa\x5b\xce" /* MAC */
107 1.1.1.6 christos "\x2d\x8a\x7d\x06\x96\xe6\x0c\xbc\xed\xe1";
108 1.1 christos const int PKT_LEN = 12;
109 1.1 christos
110 1.1 christos struct key sha1;
111 1.1 christos sha1.next = NULL;
112 1.1 christos sha1.key_id = 0;
113 1.1 christos sha1.key_len = 7;
114 1.1 christos memcpy(&sha1.key_seq, "sha1key", sha1.key_len);
115 1.1 christos memcpy(&sha1.type, "SHA1", 5);
116 1.1 christos
117 1.1.1.6 christos TEST_ASSERT_TRUE(auth_md5(PKT_DATA, PKT_LEN, SHA1_LENGTH, &sha1));
118 1.1.1.6 christos
119 1.1 christos #else
120 1.1.1.6 christos
121 1.1 christos TEST_IGNORE_MESSAGE("OpenSSL not found, skipping...");
122 1.1.1.6 christos
123 1.1 christos #endif /* OPENSSL */
124 1.1 christos }
125 1.1 christos
126 1.1.1.3 christos void
127 1.1.1.6 christos test_VerifyFailure(void)
128 1.1.1.6 christos {
129 1.1.1.6 christos /* We use a copy of the MD5 verification code, but modify the
130 1.1.1.6 christos * last bit to make sure verification fails.
131 1.1.1.6 christos */
132 1.1 christos const char* PKT_DATA =
133 1.1.1.6 christos "sometestdata" /* Data */
134 1.1.1.6 christos "\0\0\0\0" /* Key-ID (unused) */
135 1.1.1.6 christos "\xc7\x58\x99\xdd\x99\x32\x0f\x71" /* MAC */
136 1.1.1.6 christos "\x2b\x7b\xfe\x4f\xa2\x32\xcf\x00"; /* Last byte is wrong! */
137 1.1 christos const int PKT_LEN = 12;
138 1.1 christos
139 1.1 christos struct key md5;
140 1.1 christos md5.next = NULL;
141 1.1 christos md5.key_id = 0;
142 1.1 christos md5.key_len = 6;
143 1.1 christos memcpy(&md5.key_seq, "md5key", md5.key_len);
144 1.1 christos memcpy(&md5.type, "MD5", 4);
145 1.1 christos
146 1.1.1.6 christos TEST_ASSERT_FALSE(auth_md5(PKT_DATA, PKT_LEN, MD5_LENGTH, &md5));
147 1.1 christos }
148 1.1 christos
149 1.1.1.3 christos
150 1.1.1.3 christos void
151 1.1.1.6 christos test_PacketSizeNotMultipleOfFourBytes(void)
152 1.1.1.6 christos {
153 1.1 christos const char* PKT_DATA = "123456";
154 1.1 christos const int PKT_LEN = 6;
155 1.1 christos char actual[MD5_LENGTH];
156 1.1 christos
157 1.1 christos struct key md5;
158 1.1 christos md5.next = NULL;
159 1.1 christos md5.key_id = 10;
160 1.1 christos md5.key_len = 6;
161 1.1 christos memcpy(&md5.key_seq, "md5seq", md5.key_len);
162 1.1 christos memcpy(&md5.type, "MD5", 4);
163 1.1 christos
164 1.1.1.6 christos TEST_ASSERT_EQUAL(0, make_mac(PKT_DATA, PKT_LEN, MD5_LENGTH, &md5, actual));
165 1.1 christos }
166