crypto.c revision 1.1.1.2 1 /* $NetBSD: crypto.c,v 1.1.1.2 2015/07/10 13:11:13 christos Exp $ */
2
3 #include "config.h"
4 #include "unity.h"
5 #include "ntp_types.h"
6
7 #include "sntptest.h"
8 #include "crypto.h"
9
10 #define MD5_LENGTH 16
11 #define SHA1_LENGTH 20
12
13 void test_MakeMd5Mac(void) {
14
15 const char* PKT_DATA = "abcdefgh0123";
16 const int PKT_LEN = strlen(PKT_DATA);
17 const char* EXPECTED_DIGEST =
18 "\x52\x6c\xb8\x38\xaf\x06\x5a\xfb\x6c\x98\xbb\xc0\x9b\x0a\x7a\x1b";
19 char actual[MD5_LENGTH];
20
21 struct key md5;
22 md5.next = NULL;
23 md5.key_id = 10;
24 md5.key_len = 6;
25 memcpy(&md5.key_seq, "md5seq", md5.key_len);
26 memcpy(&md5.type, "MD5", 4);
27
28 TEST_ASSERT_EQUAL(MD5_LENGTH,
29 make_mac((char*)PKT_DATA, PKT_LEN, MD5_LENGTH, &md5, actual));
30
31 TEST_ASSERT_TRUE(memcmp(EXPECTED_DIGEST, actual, MD5_LENGTH) == 0);
32 }
33
34
35 void test_MakeSHA1Mac(void) {
36 #ifdef OPENSSL
37 const char* PKT_DATA = "abcdefgh0123";
38 const int PKT_LEN = strlen(PKT_DATA);
39 const char* EXPECTED_DIGEST =
40 "\x17\xaa\x82\x97\xc7\x17\x13\x6a\x9b\xa9"
41 "\x63\x85\xb4\xce\xbe\x94\xa0\x97\x16\x1d";
42 char actual[SHA1_LENGTH];
43
44 struct key sha1;
45 sha1.next = NULL;
46 sha1.key_id = 20;
47 sha1.key_len = 7;
48 memcpy(&sha1.key_seq, "sha1seq", sha1.key_len);
49 memcpy(&sha1.type, "SHA1", 5);
50
51 TEST_ASSERT_EQUAL(SHA1_LENGTH,
52 make_mac((char*)PKT_DATA, PKT_LEN, SHA1_LENGTH, &sha1, actual));
53
54 TEST_ASSERT_TRUE(memcmp(EXPECTED_DIGEST, actual, SHA1_LENGTH) == 0);
55 #else
56 TEST_IGNORE_MESSAGE("OpenSSL not found, skipping...");
57 #endif /* OPENSSL */
58 }
59
60
61 void test_VerifyCorrectMD5(void) {
62 const char* PKT_DATA =
63 "sometestdata" // Data
64 "\0\0\0\0" // Key-ID (unused)
65 "\xc7\x58\x99\xdd\x99\x32\x0f\x71" // MAC
66 "\x2b\x7b\xfe\x4f\xa2\x32\xcf\xac";
67 const int PKT_LEN = 12;
68
69 struct key md5;
70 md5.next = NULL;
71 md5.key_id = 0;
72 md5.key_len = 6;
73 memcpy(&md5.key_seq, "md5key", md5.key_len);
74 memcpy(&md5.type, "MD5", 4);
75
76 TEST_ASSERT_TRUE(auth_md5((char*)PKT_DATA, PKT_LEN, MD5_LENGTH, &md5));
77 }
78
79
80 void test_VerifySHA1(void) {
81 #ifdef OPENSSL
82 const char* PKT_DATA =
83 "sometestdata" // Data
84 "\0\0\0\0" // Key-ID (unused)
85 "\xad\x07\xde\x36\x39\xa6\x77\xfa\x5b\xce" // MAC
86 "\x2d\x8a\x7d\x06\x96\xe6\x0c\xbc\xed\xe1";
87 const int PKT_LEN = 12;
88
89 struct key sha1;
90 sha1.next = NULL;
91 sha1.key_id = 0;
92 sha1.key_len = 7;
93 memcpy(&sha1.key_seq, "sha1key", sha1.key_len);
94 memcpy(&sha1.type, "SHA1", 5);
95
96 TEST_ASSERT_TRUE(auth_md5((char*)PKT_DATA, PKT_LEN, SHA1_LENGTH, &sha1));
97 #else
98 TEST_IGNORE_MESSAGE("OpenSSL not found, skipping...");
99 #endif /* OPENSSL */
100 }
101
102 void test_VerifyFailure(void) {
103 /* We use a copy of the MD5 verification code, but modify
104 * the last bit to make sure verification fails. */
105 const char* PKT_DATA =
106 "sometestdata" // Data
107 "\0\0\0\0" // Key-ID (unused)
108 "\xc7\x58\x99\xdd\x99\x32\x0f\x71" // MAC
109 "\x2b\x7b\xfe\x4f\xa2\x32\xcf\x00"; // Last byte is wrong!
110 const int PKT_LEN = 12;
111
112 struct key md5;
113 md5.next = NULL;
114 md5.key_id = 0;
115 md5.key_len = 6;
116 memcpy(&md5.key_seq, "md5key", md5.key_len);
117 memcpy(&md5.type, "MD5", 4);
118
119 TEST_ASSERT_FALSE(auth_md5((char*)PKT_DATA, PKT_LEN, MD5_LENGTH, &md5));
120 }
121
122 void test_PacketSizeNotMultipleOfFourBytes(void) {
123 const char* PKT_DATA = "123456";
124 const int PKT_LEN = 6;
125 char actual[MD5_LENGTH];
126
127 struct key md5;
128 md5.next = NULL;
129 md5.key_id = 10;
130 md5.key_len = 6;
131 memcpy(&md5.key_seq, "md5seq", md5.key_len);
132 memcpy(&md5.type, "MD5", 4);
133
134 TEST_ASSERT_EQUAL(0, make_mac((char*)PKT_DATA, PKT_LEN, MD5_LENGTH, &md5, actual));
135 }
136
137