evppkey_ecx.txt 25 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582
  1. #
  2. # Copyright 2001-2020 The OpenSSL Project Authors. All Rights Reserved.
  3. #
  4. # Licensed under the Apache License 2.0 (the "License"). You may not use
  5. # this file except in compliance with the License. You can obtain a copy
  6. # in the file LICENSE in the source distribution or at
  7. # https://www.openssl.org/source/license.html
  8. # Tests start with one of these keywords
  9. # Cipher Decrypt Derive Digest Encoding KDF MAC PBE
  10. # PrivPubKeyPair Sign Verify VerifyRecover
  11. # and continue until a blank line. Lines starting with a pound sign are ignored.
  12. # Public key algorithm tests
  13. # Private keys used for PKEY operations.
  14. Title = X25519 test vectors (from RFC7748 6.1)
  15. PrivateKey=Alice-25519
  16. -----BEGIN PRIVATE KEY-----
  17. MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq
  18. -----END PRIVATE KEY-----
  19. PublicKey=Alice-25519-PUBLIC
  20. -----BEGIN PUBLIC KEY-----
  21. MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo=
  22. -----END PUBLIC KEY-----
  23. PrivPubKeyPair = Alice-25519:Alice-25519-PUBLIC
  24. PrivateKey=Bob-25519
  25. -----BEGIN PRIVATE KEY-----
  26. MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr
  27. -----END PRIVATE KEY-----
  28. PublicKey=Bob-25519-PUBLIC
  29. -----BEGIN PUBLIC KEY-----
  30. MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08=
  31. -----END PUBLIC KEY-----
  32. #Raw versions of the same keys as above
  33. PrivateKeyRaw=Alice-25519-Raw:X25519:77076d0a7318a57d3c16c17251b26645df4c2f87ebc0992ab177fba51db92c2a
  34. PublicKeyRaw=Alice-25519-PUBLIC-Raw:X25519:8520f0098930a754748b7ddcb43ef75a0dbf3a0d26381af4eba4a98eaa9b4e6a
  35. PrivPubKeyPair = Alice-25519-Raw:Alice-25519-PUBLIC-Raw
  36. PrivateKeyRaw=Bob-25519-Raw:X25519:5dab087e624a8a4b79e17f8b83800ee66f3bb1292618b6fd1c2f8b27ff88e0eb
  37. PublicKeyRaw=Bob-25519-PUBLIC-Raw:X25519:de9edb7d7b7dc1b4d35b61c2ece435373f8343c85b78674dadfc7e146f882b4f
  38. PrivPubKeyPair = Bob-25519:Bob-25519-PUBLIC
  39. PrivPubKeyPair = Bob-25519-Raw:Bob-25519-PUBLIC-Raw
  40. Derive=Alice-25519
  41. PeerKey=Bob-25519-PUBLIC
  42. SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
  43. Derive=Bob-25519
  44. PeerKey=Alice-25519-PUBLIC
  45. SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
  46. Derive=Alice-25519-Raw
  47. PeerKey=Bob-25519-PUBLIC-Raw
  48. SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
  49. Derive=Bob-25519-Raw
  50. PeerKey=Alice-25519-PUBLIC-Raw
  51. SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
  52. # Illegal sign/verify operations with X25519 key
  53. Sign=Alice-25519
  54. Result = KEYOP_INIT_ERROR
  55. Reason = operation not supported for this keytype
  56. Verify=Alice-25519
  57. Result = KEYOP_INIT_ERROR
  58. Reason = operation not supported for this keytype
  59. Title = X448 test vectors (from RFC7748 6.2)
  60. PrivateKey=Alice-448
  61. -----BEGIN PRIVATE KEY-----
  62. MEYCAQAwBQYDK2VvBDoEOJqPSSXRUZ9Xdc9GsEtYANTunui66LxVZdSYwo3Zybr1
  63. dKlBl0SJc5EAY4Km8SerHZrC2MClmHJr
  64. -----END PRIVATE KEY-----
  65. PublicKey=Alice-448-PUBLIC
  66. -----BEGIN PUBLIC KEY-----
  67. MEIwBQYDK2VvAzkAmwj3zDG34+Z9ItWuoSEHSic70rg94Jxj+qc9LCLF2bvINmRy
  68. QdlT1AxbEtqIEg1TF3+A5TLEH6A=
  69. -----END PUBLIC KEY-----
  70. PrivPubKeyPair = Alice-448:Alice-448-PUBLIC
  71. PrivateKey=Bob-448
  72. -----BEGIN PRIVATE KEY-----
  73. MEYCAQAwBQYDK2VvBDoEOBwwanrCoOLgmQspRHDLoznmRTdysHWBHY+tDR1pJ8Eg
  74. u17olysNPiE3TJySGwnRsDZvELZRc5kt
  75. -----END PRIVATE KEY-----
  76. PublicKey=Bob-448-PUBLIC
  77. -----BEGIN PUBLIC KEY-----
  78. MEIwBQYDK2VvAzkAPreoKbDNIPW8/AtZm2/sz22kYnEHvbDU80W0MCfYuXL8PjT7
  79. QjKhPKcG3LV67D2uB73BxnvzNgk=
  80. -----END PUBLIC KEY-----
  81. PrivPubKeyPair = Bob-448:Bob-448-PUBLIC
  82. #Raw versions of the same keys as above
  83. PrivateKeyRaw=Alice-448-Raw:X448:9a8f4925d1519f5775cf46b04b5800d4ee9ee8bae8bc5565d498c28dd9c9baf574a9419744897391006382a6f127ab1d9ac2d8c0a598726b
  84. PublicKeyRaw=Alice-448-PUBLIC-Raw:X448:9b08f7cc31b7e3e67d22d5aea121074a273bd2b83de09c63faa73d2c22c5d9bbc836647241d953d40c5b12da88120d53177f80e532c41fa0
  85. PrivPubKeyPair = Alice-448-Raw:Alice-448-PUBLIC-Raw
  86. PrivateKeyRaw=Bob-448-Raw:X448:1c306a7ac2a0e2e0990b294470cba339e6453772b075811d8fad0d1d6927c120bb5ee8972b0d3e21374c9c921b09d1b0366f10b65173992d
  87. PublicKeyRaw=Bob-448-PUBLIC-Raw:X448:3eb7a829b0cd20f5bcfc0b599b6feccf6da4627107bdb0d4f345b43027d8b972fc3e34fb4232a13ca706dcb57aec3dae07bdc1c67bf33609
  88. PrivPubKeyPair = Bob-448-Raw:Bob-448-PUBLIC-Raw
  89. PublicKeyRaw=Bob-448-PUBLIC-Raw-NonCanonical:X448:ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
  90. Derive=Alice-448
  91. PeerKey=Bob-448-PUBLIC
  92. SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
  93. Derive=Bob-448
  94. PeerKey=Alice-448-PUBLIC
  95. SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
  96. Derive=Alice-448-Raw
  97. PeerKey=Bob-448-PUBLIC-Raw
  98. SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
  99. Derive=Bob-448-Raw
  100. PeerKey=Alice-448-PUBLIC-Raw
  101. SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
  102. # Self-generated non-canonical
  103. Derive=Alice-448-Raw
  104. PeerKey=Bob-448-PUBLIC-Raw-NonCanonical
  105. SharedSecret=66e2e682b1f8e68c809f1bb3e406bd826921d9c1a5bfbfcbab7ae72feecee63660eabd54934f3382061d17607f581a90bdac917a064959fb
  106. # Illegal sign/verify operations with X448 key
  107. Sign=Alice-448
  108. Result = KEYOP_INIT_ERROR
  109. Reason = operation not supported for this keytype
  110. Verify=Alice-448
  111. Result = KEYOP_INIT_ERROR
  112. Reason = operation not supported for this keytype
  113. Title = ED25519 tests from RFC8032
  114. PrivateKey=ED25519-1
  115. -----BEGIN PRIVATE KEY-----
  116. MC4CAQAwBQYDK2VwBCIEIJ1hsZ3v/VpguoRK9JLsLMREScVpezJpGXA7rAMcrn9g
  117. -----END PRIVATE KEY-----
  118. PrivateKey=ED25519-2
  119. -----BEGIN PRIVATE KEY-----
  120. MC4CAQAwBQYDK2VwBCIEIEzNCJso/5banbbDRuwRTg9bijGfNaumJNqM9u1PuKb7
  121. -----END PRIVATE KEY-----
  122. PrivateKey=ED25519-3
  123. -----BEGIN PRIVATE KEY-----
  124. MC4CAQAwBQYDK2VwBCIEIMWqjfQ/n4N77bdELzHct7Fm04U1B28JS4XOOi4LRFj3
  125. -----END PRIVATE KEY-----
  126. PrivateKey=ED25519-4
  127. -----BEGIN PRIVATE KEY-----
  128. MC4CAQAwBQYDK2VwBCIEIPXldnzxUzGVF2MPImh2uGyBYMxYO8ATdExr8lX1zA7l
  129. -----END PRIVATE KEY-----
  130. PrivateKey=ED25519-5
  131. -----BEGIN PRIVATE KEY-----
  132. MC4CAQAwBQYDK2VwBCIEIIM/5iQJI3udYux3WHUgkR6adZzsHRl1W32pAbltyj1C
  133. -----END PRIVATE KEY-----
  134. PublicKey=ED25519-1-PUBLIC
  135. -----BEGIN PUBLIC KEY-----
  136. MCowBQYDK2VwAyEA11qYAYKxCrfVS/7TyWQHOg7hcvPapiMlrwIaaPcHURo=
  137. -----END PUBLIC KEY-----
  138. PublicKey=ED25519-2-PUBLIC
  139. -----BEGIN PUBLIC KEY-----
  140. MCowBQYDK2VwAyEAPUAXw+hDiVqStwqnTRt+vJyYLM8uxJaMwM1V8Sr0Zgw=
  141. -----END PUBLIC KEY-----
  142. PublicKey=ED25519-3-PUBLIC
  143. -----BEGIN PUBLIC KEY-----
  144. MCowBQYDK2VwAyEA/FHNjmIYoaONpH7QAjDwWAgW7RO6MwOsXeuRFUiQgCU=
  145. -----END PUBLIC KEY-----
  146. PublicKey=ED25519-4-PUBLIC
  147. -----BEGIN PUBLIC KEY-----
  148. MCowBQYDK2VwAyEAJ4EX/BRMcjQPZ9DyMW6Dhs7/vyskKMnFH+98WX8dQm4=
  149. -----END PUBLIC KEY-----
  150. PublicKey=ED25519-5-PUBLIC
  151. -----BEGIN PUBLIC KEY-----
  152. MCowBQYDK2VwAyEA7Bcrk61eVjv0kyxw4SRQNMNUZ+8u/U1k6/gZaDRn4r8=
  153. -----END PUBLIC KEY-----
  154. #Raw versions of the ED25519-1 keys
  155. PrivateKeyRaw=ED25519-1-Raw:ED25519:9d61b19deffd5a60ba844af492ec2cc44449c5697b326919703bac031cae7f60
  156. PublicKeyRaw=ED25519-1-PUBLIC-Raw:ED25519:d75a980182b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f707511a
  157. PrivPubKeyPair = ED25519-1:ED25519-1-PUBLIC
  158. PrivPubKeyPair = ED25519-1-Raw:ED25519-1-PUBLIC-Raw
  159. OneShotDigestSign = NULL
  160. Key = ED25519-1
  161. Input = ""
  162. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
  163. PrivPubKeyPair = ED25519-2:ED25519-2-PUBLIC
  164. OneShotDigestSign = NULL
  165. Key = ED25519-2
  166. Input = 72
  167. Output = 92a009a9f0d4cab8720e820b5f642540a2b27b5416503f8fb3762223ebdb69da085ac1e43e15996e458f3613d0f11d8c387b2eaeb4302aeeb00d291612bb0c00
  168. PrivPubKeyPair = ED25519-3:ED25519-3-PUBLIC
  169. OneShotDigestSign = NULL
  170. Key = ED25519-3
  171. Input = af82
  172. Output = 6291d657deec24024827e69c3abe01a30ce548a284743a445e3680d7db5ac3ac18ff9b538d16f290ae67f760984dc6594a7c15e9716ed28dc027beceea1ec40a
  173. PrivPubKeyPair = ED25519-4:ED25519-4-PUBLIC
  174. OneShotDigestSign = NULL
  175. Key = ED25519-4
  176. Input = 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
  177. Output = 0aab4c900501b3e24d7cdf4663326a3a87df5e4843b2cbdb67cbf6e460fec350aa5371b1508f9f4528ecea23c436d94b5e8fcd4f681e30a6ac00a9704a188a03
  178. PrivPubKeyPair = ED25519-5:ED25519-5-PUBLIC
  179. OneShotDigestSign = NULL
  180. Key = ED25519-5
  181. Input = ddaf35a193617abacc417349ae20413112e6fa4e89a97ea20a9eeee64b55d39a2192992a274fc1a836ba3c23a3feebbd454d4423643ce80e2a9ac94fa54ca49f
  182. Output = dc2a4459e7369633a52b1bf277839a00201009a3efbf3ecb69bea2186c26b58909351fc9ac90b3ecfdfbc7c66431e0303dca179c138ac17ad9bef1177331a704
  183. # Verify test
  184. OneShotDigestVerify = NULL
  185. Key = ED25519-1-PUBLIC
  186. Input = ""
  187. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
  188. # Corrupted input
  189. OneShotDigestVerify = NULL
  190. Key = ED25519-1-PUBLIC
  191. Input = "bad"
  192. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
  193. Result = VERIFY_ERROR
  194. # Corrupted signature
  195. OneShotDigestVerify = NULL
  196. Key = ED25519-1-PUBLIC
  197. Input = ""
  198. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100c
  199. Result = VERIFY_ERROR
  200. PrivPubKeyPair = ED25519-1:ED25519-2-PUBLIC
  201. Result = KEYPAIR_MISMATCH
  202. # Make sure update calls return an error
  203. DigestSign = NULL
  204. Key = ED25519-1
  205. Input = "Test"
  206. Result = DIGESTUPDATE_ERROR
  207. DigestVerify = NULL
  208. Key = ED25519-1-PUBLIC
  209. Input = "Test"
  210. Result = DIGESTUPDATE_ERROR
  211. # Attempt to set invalid digest
  212. DigestSign = SHA256
  213. Key = ED25519-1
  214. Result = DIGESTSIGNINIT_ERROR
  215. # Raw tests
  216. OneShotDigestSign = NULL
  217. Key = ED25519-1-Raw
  218. Input = ""
  219. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
  220. OneShotDigestVerify = NULL
  221. Key = ED25519-1-PUBLIC-Raw
  222. Input = ""
  223. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
  224. #Signature maleability test.
  225. #Same as the verify operation above but with the order added to s
  226. OneShotDigestVerify = NULL
  227. Key = ED25519-1-PUBLIC-Raw
  228. Input = ""
  229. Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901554c8c7872aa064e049dbb3013fbf29380d25bf5f0595bbe24655141438e7a101b
  230. Result = VERIFY_ERROR
  231. Title = ED448 tests from RFC8032
  232. PrivateKey=ED448-1
  233. -----BEGIN PRIVATE KEY-----
  234. MEcCAQAwBQYDK2VxBDsEOWyCpWLLgI0Q1jK+ichRPr9skp803fqMn2PJlg7240ij
  235. UoyKP8wvBE45o/xblEkvjwMudUmiAJj5Ww==
  236. -----END PRIVATE KEY-----
  237. PrivateKey=ED448-2
  238. -----BEGIN PRIVATE KEY-----
  239. MEcCAQAwBQYDK2VxBDsEOcTqsF01cAfGMvPbtISJkk1VKwj+DDU6DUofAKzaLEY6
  240. ++pnxejSh3xeO8OXplmUnvgCHpVOChInTg==
  241. -----END PRIVATE KEY-----
  242. PrivateKey=ED448-3
  243. -----BEGIN PRIVATE KEY-----
  244. MEcCAQAwBQYDK2VxBDsEOc0j0k9xQnTnRDQyN7kykPUR9kJfmOZEWf8gPomFCD/9
  245. 9gUAVTq8DgXNAhhL24nEzNZ+GHlRJn6zKA==
  246. -----END PRIVATE KEY-----
  247. PrivateKey=ED448-4
  248. -----BEGIN PRIVATE KEY-----
  249. MEcCAQAwBQYDK2VxBDsEOSWM3UraMu2cn/VOY3Vq5YL7j6sqxyHyyOZ2pydoUT2T
  250. n2Pd21VgkTPymt+G7Jkp3MtSwcX9L/fiGw==
  251. -----END PRIVATE KEY-----
  252. PrivateKey=ED448-5
  253. -----BEGIN PRIVATE KEY-----
  254. MEcCAQAwBQYDK2VxBDsEOX706EVEI2dS+7VrjzGiOhDkKBT19VygN83MEcZMmjsp
  255. ScG7YHADFGEXMqbC/qmO68AmahGpOXAQDg==
  256. -----END PRIVATE KEY-----
  257. PrivateKey=ED448-6
  258. -----BEGIN PRIVATE KEY-----
  259. MEcCAQAwBQYDK2VxBDsEOdZd80GtE+AIVnaIuu3ajp3NwX3AJJdOpbQie2Uw4zm/
  260. 8h+Z5oymlo88ym3+D7n0+rT6E11VQuo/AQ==
  261. -----END PRIVATE KEY-----
  262. PrivateKey=ED448-7
  263. -----BEGIN PRIVATE KEY-----
  264. MEcCAQAwBQYDK2VxBDsEOS7F/jwXBFq9sTal5qkT4yq3WuaLU9L8FJt35QQTLTdW
  265. m352a6dKGb1hYjQ6IchZCqnOvKkBTGNt9Q==
  266. -----END PRIVATE KEY-----
  267. PrivateKey=ED448-8
  268. -----BEGIN PRIVATE KEY-----
  269. MEcCAQAwBQYDK2VxBDsEOYctCTeA9dNzDffCEmZLN7ig8k9WgQ2qg4LNT6P3djTs
  270. RNxU8cLtm+qG+vt2Mti+GZ6hZfWtVd2c6A==
  271. -----END PRIVATE KEY-----
  272. PublicKey=ED448-1-PUBLIC
  273. -----BEGIN PUBLIC KEY-----
  274. MEMwBQYDK2VxAzoAX9dEm1m0Yf0s54fsYWrUah2hNCSFpw4fig6nXYDpZ3jt8SR2
  275. m0bHBhvWeD3x5Q9s0foavq/oJWGA
  276. -----END PUBLIC KEY-----
  277. PublicKey=ED448-2-PUBLIC
  278. -----BEGIN PUBLIC KEY-----
  279. MEMwBQYDK2VxAzoAQ7oo9DDN/0Vq5TFUX37NCsg0pV2TWMA3K/oMbGeYwIZq6gHr
  280. AHQoArhDjqTLghacI1FgYntMOpSA
  281. -----END PUBLIC KEY-----
  282. PublicKey=ED448-3-PUBLIC
  283. -----BEGIN PUBLIC KEY-----
  284. MEMwBQYDK2VxAzoA3OqeePNaG/NJmoMbELhskKrAHNhLZ6AQm1WjbpMoseNl/OFh
  285. 1xznExpUPqTLX36fHYsAaWRHABQA
  286. -----END PUBLIC KEY-----
  287. PublicKey=ED448-4-PUBLIC
  288. -----BEGIN PUBLIC KEY-----
  289. MEMwBQYDK2VxAzoAO6FtoMbyzB8wGHdAdW9eeY1rxfwBXXxjzJUQ7j/UStwk2Olo
  290. tuRub5TRm5RTYXJr114UnvCYF/WA
  291. -----END PUBLIC KEY-----
  292. PublicKey=ED448-5-PUBLIC
  293. -----BEGIN PUBLIC KEY-----
  294. MEMwBQYDK2VxAzoAs9oHmwqkk6V3ICnwRnuuvuWoES2dOiJTI2HaKU97s4FcXcWe
  295. F2tNnzgcoJOOE8bAexdL5l36V46A
  296. -----END PUBLIC KEY-----
  297. PublicKey=ED448-6-PUBLIC
  298. -----BEGIN PUBLIC KEY-----
  299. MEMwBQYDK2VxAzoA35cF9Y7bq4Asf4Njz+VWCrHGEywgqfHdFjSDom+KxTo51oCL
  300. 9KHfvSYbCZuwOz+1CQbLKL2KCB8A
  301. -----END PUBLIC KEY-----
  302. PublicKey=ED448-7-PUBLIC
  303. -----BEGIN PUBLIC KEY-----
  304. MEMwBQYDK2VxAzoAeXVvAU3P4gefXdnnGL5BceLvJIagjyUYb2v/Q6mTa5v+EkAr
  305. CK5leYo9geIunsgOdpCGLvPU7ToA
  306. -----END PUBLIC KEY-----
  307. PublicKey=ED448-8-PUBLIC
  308. -----BEGIN PUBLIC KEY-----
  309. MEMwBQYDK2VxAzoAqBsuinClrJT/28ybrfw/6wgB8lhXi7EUrUTs4ewOeZ2gjv+4
  310. HF1oXAxW9k7srvjN8RzDhzeDjPQA
  311. -----END PUBLIC KEY-----
  312. #Raw versions of the ED448-1 keys
  313. PrivateKeyRaw=ED448-1-Raw:ED448:6c82a562cb808d10d632be89c8513ebf6c929f34ddfa8c9f63c9960ef6e348a3528c8a3fcc2f044e39a3fc5b94492f8f032e7549a20098f95b
  314. PublicKeyRaw=ED448-1-PUBLIC-Raw:ED448:5fd7449b59b461fd2ce787ec616ad46a1da1342485a70e1f8a0ea75d80e96778edf124769b46c7061bd6783df1e50f6cd1fa1abeafe8256180
  315. PrivPubKeyPair = ED448-1:ED448-1-PUBLIC
  316. PrivPubKeyPair = ED448-2:ED448-2-PUBLIC
  317. PrivPubKeyPair = ED448-3:ED448-3-PUBLIC
  318. PrivPubKeyPair = ED448-4:ED448-4-PUBLIC
  319. PrivPubKeyPair = ED448-5:ED448-5-PUBLIC
  320. PrivPubKeyPair = ED448-6:ED448-6-PUBLIC
  321. PrivPubKeyPair = ED448-7:ED448-7-PUBLIC
  322. PrivPubKeyPair = ED448-8:ED448-8-PUBLIC
  323. PrivPubKeyPair = ED448-1-Raw:ED448-1-PUBLIC-Raw
  324. OneShotDigestSign = NULL
  325. Key = ED448-1
  326. Input = ""
  327. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
  328. OneShotDigestSign = NULL
  329. Key = ED448-2
  330. Input = 03
  331. Output = 26b8f91727bd62897af15e41eb43c377efb9c610d48f2335cb0bd0087810f4352541b143c4b981b7e18f62de8ccdf633fc1bf037ab7cd779805e0dbcc0aae1cbcee1afb2e027df36bc04dcecbf154336c19f0af7e0a6472905e799f1953d2a0ff3348ab21aa4adafd1d234441cf807c03a00
  332. OneShotDigestSign = NULL
  333. Key = ED448-3
  334. Input = 0c3e544074ec63b0265e0c
  335. Output = 1f0a8888ce25e8d458a21130879b840a9089d999aaba039eaf3e3afa090a09d389dba82c4ff2ae8ac5cdfb7c55e94d5d961a29fe0109941e00b8dbdeea6d3b051068df7254c0cdc129cbe62db2dc957dbb47b51fd3f213fb8698f064774250a5028961c9bf8ffd973fe5d5c206492b140e00
  336. OneShotDigestSign = NULL
  337. Key = ED448-4
  338. Input = 64a65f3cdedcdd66811e2915
  339. Output = 7eeeab7c4e50fb799b418ee5e3197ff6bf15d43a14c34389b59dd1a7b1b85b4ae90438aca634bea45e3a2695f1270f07fdcdf7c62b8efeaf00b45c2c96ba457eb1a8bf075a3db28e5c24f6b923ed4ad747c3c9e03c7079efb87cb110d3a99861e72003cbae6d6b8b827e4e6c143064ff3c00
  340. OneShotDigestSign = NULL
  341. Key = ED448-5
  342. Input = 64a65f3cdedcdd66811e2915e7
  343. Output = 6a12066f55331b6c22acd5d5bfc5d71228fbda80ae8dec26bdd306743c5027cb4890810c162c027468675ecf645a83176c0d7323a2ccde2d80efe5a1268e8aca1d6fbc194d3f77c44986eb4ab4177919ad8bec33eb47bbb5fc6e28196fd1caf56b4e7e0ba5519234d047155ac727a1053100
  344. OneShotDigestSign = NULL
  345. Key = ED448-6
  346. Input = bd0f6a3747cd561bdddf4640a332461a4a30a12a434cd0bf40d766d9c6d458e5512204a30c17d1f50b5079631f64eb3112182da3005835461113718d1a5ef944
  347. Output = 554bc2480860b49eab8532d2a533b7d578ef473eeb58c98bb2d0e1ce488a98b18dfde9b9b90775e67f47d4a1c3482058efc9f40d2ca033a0801b63d45b3b722ef552bad3b4ccb667da350192b61c508cf7b6b5adadc2c8d9a446ef003fb05cba5f30e88e36ec2703b349ca229c2670833900
  348. OneShotDigestSign = NULL
  349. Key = ED448-7
  350. Input = 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
  351. Output = c650ddbb0601c19ca11439e1640dd931f43c518ea5bea70d3dcde5f4191fe53f00cf966546b72bcc7d58be2b9badef28743954e3a44a23f880e8d4f1cfce2d7a61452d26da05896f0a50da66a239a8a188b6d825b3305ad77b73fbac0836ecc60987fd08527c1a8e80d5823e65cafe2a3d00
  352. OneShotDigestSign = NULL
  353. Key = ED448-8
  354. Input = 6ddf802e1aae4986935f7f981ba3f0351d6273c0a0c22c9c0e8339168e675412a3debfaf435ed651558007db4384b650fcc07e3b586a27a4f7a00ac8a6fec2cd86ae4bf1570c41e6a40c931db27b2faa15a8cedd52cff7362c4e6e23daec0fbc3a79b6806e316efcc7b68119bf46bc76a26067a53f296dafdbdc11c77f7777e972660cf4b6a9b369a6665f02e0cc9b6edfad136b4fabe723d2813db3136cfde9b6d044322fee2947952e031b73ab5c603349b307bdc27bc6cb8b8bbd7bd323219b8033a581b59eadebb09b3c4f3d2277d4f0343624acc817804728b25ab797172b4c5c21a22f9c7839d64300232eb66e53f31c723fa37fe387c7d3e50bdf9813a30e5bb12cf4cd930c40cfb4e1fc622592a49588794494d56d24ea4b40c89fc0596cc9ebb961c8cb10adde976a5d602b1c3f85b9b9a001ed3c6a4d3b1437f52096cd1956d042a597d561a596ecd3d1735a8d570ea0ec27225a2c4aaff26306d1526c1af3ca6d9cf5a2c98f47e1c46db9a33234cfd4d81f2c98538a09ebe76998d0d8fd25997c7d255c6d66ece6fa56f11144950f027795e653008f4bd7ca2dee85d8e90f3dc315130ce2a00375a318c7c3d97be2c8ce5b6db41a6254ff264fa6155baee3b0773c0f497c573f19bb4f4240281f0b1f4f7be857a4e59d416c06b4c50fa09e1810ddc6b1467baeac5a3668d11b6ecaa901440016f389f80acc4db977025e7f5924388c7e340a732e554440e76570f8dd71b7d640b3450d1fd5f0410a18f9a3494f707c717b79b4bf75c98400b096b21653b5d217cf3565c9597456f70703497a078763829bc01bb1cbc8fa04eadc9a6e3f6699587a9e75c94e5bab0036e0b2e711392cff0047d0d6b05bd2a588bc109718954259f1d86678a579a3120f19cfb2963f177aeb70f2d4844826262e51b80271272068ef5b3856fa8535aa2a88b2d41f2a0e2fda7624c2850272ac4a2f561f8f2f7a318bfd5caf9696149e4ac824ad3460538fdc25421beec2cc6818162d06bbed0c40a387192349db67a118bada6cd5ab0140ee273204f628aad1c135f770279a651e24d8c14d75a6059d76b96a6fd857def5e0b354b27ab937a5815d16b5fae407ff18222c6d1ed263be68c95f32d908bd895cd76207ae726487567f9a67dad79abec316f683b17f2d02bf07e0ac8b5bc6162cf94697b3c27cd1fea49b27f23ba2901871962506520c392da8b6ad0d99f7013fbc06c2c17a569500c8a7696481c1cd33e9b14e40b82e79a5f5db82571ba97bae3ad3e0479515bb0e2b0f3bfcd1fd33034efc6245eddd7ee2086ddae2600d8ca73e214e8c2b0bdb2b047c6a464a562ed77b73d2d841c4b34973551257713b753632efba348169abc90a68f42611a40126d7cb21b58695568186f7e569d2ff0f9e745d0487dd2eb997cafc5abf9dd102e62ff66cba87
  355. Output = e301345a41a39a4d72fff8df69c98075a0cc082b802fc9b2b6bc503f926b65bddf7f4c8f1cb49f6396afc8a70abe6d8aef0db478d4c6b2970076c6a0484fe76d76b3a97625d79f1ce240e7c576750d295528286f719b413de9ada3e8eb78ed573603ce30d8bb761785dc30dbc320869e1a00
  356. # Verify test
  357. OneShotDigestVerify = NULL
  358. Key = ED448-1-PUBLIC
  359. Input = ""
  360. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
  361. # Corrupted input
  362. OneShotDigestVerify = NULL
  363. Key = ED448-1-PUBLIC
  364. Input = "bad"
  365. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
  366. Result = VERIFY_ERROR
  367. # Corrupted signature
  368. OneShotDigestVerify = NULL
  369. Key = ED448-1-PUBLIC
  370. Input = ""
  371. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652601
  372. Result = VERIFY_ERROR
  373. # Make sure update calls return an error
  374. DigestSign = NULL
  375. Key = ED448-1
  376. Input = "Test"
  377. Result = DIGESTUPDATE_ERROR
  378. DigestVerify = NULL
  379. Key = ED448-1-PUBLIC
  380. Input = "Test"
  381. Result = DIGESTUPDATE_ERROR
  382. # Attempt to set invalid digest
  383. DigestSign = SHA256
  384. Key = ED448-1
  385. Result = DIGESTSIGNINIT_ERROR
  386. # Raw keys
  387. OneShotDigestSign = NULL
  388. Key = ED448-1-Raw
  389. Input = ""
  390. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
  391. OneShotDigestVerify = NULL
  392. Key = ED448-1-PUBLIC-Raw
  393. Input = ""
  394. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
  395. #Signature malelability test.
  396. #Same as the verify operation above but with the order added to s
  397. OneShotDigestVerify = NULL
  398. Key = ED448-1-PUBLIC-Raw
  399. Input = ""
  400. Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980f25278d3667403c14bcec5f9cfde9955ebc8333c0ae78fc86e518317c5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e656600
  401. Result = VERIFY_ERROR
  402. Title = Chosen Wycheproof vectors
  403. PrivateKeyRaw = WychePRIVATE0:X25519:288796bc5aff4b81a37501757bc0753a3c21964790d38699308debc17a6eaf8d
  404. PublicKeyRaw = WychePUBLIC0:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff7f
  405. Derive=WychePRIVATE0
  406. PeerKey=WychePUBLIC0
  407. SharedSecret=b4e0dd76da7b071728b61f856771aa356e57eda78a5b1655cc3820fb5f854c5c
  408. PrivateKeyRaw = WychePRIVATE1:X25519:60887b3dc72443026ebedbbbb70665f42b87add1440e7768fbd7e8e2ce5f639d
  409. PublicKeyRaw = WychePUBLIC1:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
  410. Derive=WychePRIVATE1
  411. PeerKey=WychePUBLIC1
  412. SharedSecret=38d6304c4a7e6d9f7959334fb5245bd2c754525d4c91db950206926234c1f633
  413. PrivateKeyRaw = WychePRIVATE2:X25519:a0a4f130b98a5be4b1cedb7cb85584a3520e142d474dc9ccb909a073a976bf63
  414. PublicKeyRaw = WychePUBLIC2:X25519:0ab4e76380d84dde4f6833c58f2a9fb8f83bb0169b172be4b6e0592887741a36
  415. Derive=WychePRIVATE2
  416. PeerKey=WychePUBLIC2
  417. SharedSecret=0200000000000000000000000000000000000000000000000000000000000000
  418. PublicKeyRaw = WychePUBLIC3:X25519:89e10d5701b4337d2d032181538b1064bd4084401ceca1fd12663a1959388000
  419. Derive=WychePRIVATE2
  420. PeerKey=WychePUBLIC3
  421. SharedSecret=0900000000000000000000000000000000000000000000000000000000000000
  422. PublicKeyRaw = WychePUBLIC4:X25519:2b55d3aa4a8f80c8c0b2ae5f933e85af49beac36c2fa7394bab76c8933f8f81d
  423. Derive=WychePRIVATE2
  424. PeerKey=WychePUBLIC4
  425. SharedSecret=1000000000000000000000000000000000000000000000000000000000000000
  426. Title = Test keypair mismatches
  427. PrivPubKeyPair = Alice-25519:Bob-25519-PUBLIC
  428. Result = KEYPAIR_MISMATCH
  429. PrivPubKeyPair = Bob-25519:Alice-25519-PUBLIC
  430. Result = KEYPAIR_MISMATCH
  431. PrivPubKeyPair = Alice-448:Bob-448-PUBLIC
  432. Result = KEYPAIR_MISMATCH
  433. PrivPubKeyPair = Bob-448:Alice-448-PUBLIC
  434. Result = KEYPAIR_MISMATCH