1# 2# Copyright 2001-2020 The OpenSSL Project Authors. All Rights Reserved. 3# 4# Licensed under the Apache License 2.0 (the "License"). You may not use 5# this file except in compliance with the License. You can obtain a copy 6# in the file LICENSE in the source distribution or at 7# https://www.openssl.org/source/license.html 8 9# Tests start with one of these keywords 10# Cipher Decrypt Derive Digest Encoding KDF MAC PBE 11# PrivPubKeyPair Sign Verify VerifyRecover 12# and continue until a blank line. Lines starting with a pound sign are ignored. 13 14 15# Public key algorithm tests 16 17# Private keys used for PKEY operations. 18 19Title = X25519 test vectors (from RFC7748 6.1) 20 21PrivateKey=Alice-25519 22-----BEGIN PRIVATE KEY----- 23MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq 24-----END PRIVATE KEY----- 25 26PublicKey=Alice-25519-PUBLIC 27-----BEGIN PUBLIC KEY----- 28MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo= 29-----END PUBLIC KEY----- 30 31PrivPubKeyPair = Alice-25519:Alice-25519-PUBLIC 32 33PrivateKey=Bob-25519 34-----BEGIN PRIVATE KEY----- 35MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr 36-----END PRIVATE KEY----- 37 38PublicKey=Bob-25519-PUBLIC 39-----BEGIN PUBLIC KEY----- 40MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08= 41-----END PUBLIC KEY----- 42 43#Raw versions of the same keys as above 44 45PrivateKeyRaw=Alice-25519-Raw:X25519:77076d0a7318a57d3c16c17251b26645df4c2f87ebc0992ab177fba51db92c2a 46 47PublicKeyRaw=Alice-25519-PUBLIC-Raw:X25519:8520f0098930a754748b7ddcb43ef75a0dbf3a0d26381af4eba4a98eaa9b4e6a 48 49PrivPubKeyPair = Alice-25519-Raw:Alice-25519-PUBLIC-Raw 50 51PrivateKeyRaw=Bob-25519-Raw:X25519:5dab087e624a8a4b79e17f8b83800ee66f3bb1292618b6fd1c2f8b27ff88e0eb 52 53PublicKeyRaw=Bob-25519-PUBLIC-Raw:X25519:de9edb7d7b7dc1b4d35b61c2ece435373f8343c85b78674dadfc7e146f882b4f 54 55PrivPubKeyPair = Bob-25519:Bob-25519-PUBLIC 56 57PrivPubKeyPair = Bob-25519-Raw:Bob-25519-PUBLIC-Raw 58 59Derive=Alice-25519 60PeerKey=Bob-25519-PUBLIC 61SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742 62 63Derive=Bob-25519 64PeerKey=Alice-25519-PUBLIC 65SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742 66 67Derive=Alice-25519-Raw 68PeerKey=Bob-25519-PUBLIC-Raw 69SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742 70 71Derive=Bob-25519-Raw 72PeerKey=Alice-25519-PUBLIC-Raw 73SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742 74 75# Illegal sign/verify operations with X25519 key 76 77Sign=Alice-25519 78Result = KEYOP_INIT_ERROR 79Reason = operation not supported for this keytype 80 81Verify=Alice-25519 82Result = KEYOP_INIT_ERROR 83Reason = operation not supported for this keytype 84 85Title = X448 test vectors (from RFC7748 6.2) 86 87PrivateKey=Alice-448 88-----BEGIN PRIVATE KEY----- 89MEYCAQAwBQYDK2VvBDoEOJqPSSXRUZ9Xdc9GsEtYANTunui66LxVZdSYwo3Zybr1 90dKlBl0SJc5EAY4Km8SerHZrC2MClmHJr 91-----END PRIVATE KEY----- 92 93PublicKey=Alice-448-PUBLIC 94-----BEGIN PUBLIC KEY----- 95MEIwBQYDK2VvAzkAmwj3zDG34+Z9ItWuoSEHSic70rg94Jxj+qc9LCLF2bvINmRy 96QdlT1AxbEtqIEg1TF3+A5TLEH6A= 97-----END PUBLIC KEY----- 98 99PrivPubKeyPair = Alice-448:Alice-448-PUBLIC 100 101PrivateKey=Bob-448 102-----BEGIN PRIVATE KEY----- 103MEYCAQAwBQYDK2VvBDoEOBwwanrCoOLgmQspRHDLoznmRTdysHWBHY+tDR1pJ8Eg 104u17olysNPiE3TJySGwnRsDZvELZRc5kt 105-----END PRIVATE KEY----- 106 107PublicKey=Bob-448-PUBLIC 108-----BEGIN PUBLIC KEY----- 109MEIwBQYDK2VvAzkAPreoKbDNIPW8/AtZm2/sz22kYnEHvbDU80W0MCfYuXL8PjT7 110QjKhPKcG3LV67D2uB73BxnvzNgk= 111-----END PUBLIC KEY----- 112 113PrivPubKeyPair = Bob-448:Bob-448-PUBLIC 114 115#Raw versions of the same keys as above 116 117PrivateKeyRaw=Alice-448-Raw:X448:9a8f4925d1519f5775cf46b04b5800d4ee9ee8bae8bc5565d498c28dd9c9baf574a9419744897391006382a6f127ab1d9ac2d8c0a598726b 118 119PublicKeyRaw=Alice-448-PUBLIC-Raw:X448:9b08f7cc31b7e3e67d22d5aea121074a273bd2b83de09c63faa73d2c22c5d9bbc836647241d953d40c5b12da88120d53177f80e532c41fa0 120 121PrivPubKeyPair = Alice-448-Raw:Alice-448-PUBLIC-Raw 122 123PrivateKeyRaw=Bob-448-Raw:X448:1c306a7ac2a0e2e0990b294470cba339e6453772b075811d8fad0d1d6927c120bb5ee8972b0d3e21374c9c921b09d1b0366f10b65173992d 124 125PublicKeyRaw=Bob-448-PUBLIC-Raw:X448:3eb7a829b0cd20f5bcfc0b599b6feccf6da4627107bdb0d4f345b43027d8b972fc3e34fb4232a13ca706dcb57aec3dae07bdc1c67bf33609 126 127PrivPubKeyPair = Bob-448-Raw:Bob-448-PUBLIC-Raw 128 129PublicKeyRaw=Bob-448-PUBLIC-Raw-NonCanonical:X448:ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff 130 131Derive=Alice-448 132PeerKey=Bob-448-PUBLIC 133SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d 134 135Derive=Bob-448 136PeerKey=Alice-448-PUBLIC 137SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d 138 139Derive=Alice-448-Raw 140PeerKey=Bob-448-PUBLIC-Raw 141SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d 142 143Derive=Bob-448-Raw 144PeerKey=Alice-448-PUBLIC-Raw 145SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d 146 147# Self-generated non-canonical 148Derive=Alice-448-Raw 149PeerKey=Bob-448-PUBLIC-Raw-NonCanonical 150SharedSecret=66e2e682b1f8e68c809f1bb3e406bd826921d9c1a5bfbfcbab7ae72feecee63660eabd54934f3382061d17607f581a90bdac917a064959fb 151 152# Illegal sign/verify operations with X448 key 153 154Sign=Alice-448 155Result = KEYOP_INIT_ERROR 156Reason = operation not supported for this keytype 157 158Verify=Alice-448 159Result = KEYOP_INIT_ERROR 160Reason = operation not supported for this keytype 161 162Title = ED25519 tests from RFC8032 163 164PrivateKey=ED25519-1 165-----BEGIN PRIVATE KEY----- 166MC4CAQAwBQYDK2VwBCIEIJ1hsZ3v/VpguoRK9JLsLMREScVpezJpGXA7rAMcrn9g 167-----END PRIVATE KEY----- 168 169PrivateKey=ED25519-2 170-----BEGIN PRIVATE KEY----- 171MC4CAQAwBQYDK2VwBCIEIEzNCJso/5banbbDRuwRTg9bijGfNaumJNqM9u1PuKb7 172-----END PRIVATE KEY----- 173 174PrivateKey=ED25519-3 175-----BEGIN PRIVATE KEY----- 176MC4CAQAwBQYDK2VwBCIEIMWqjfQ/n4N77bdELzHct7Fm04U1B28JS4XOOi4LRFj3 177-----END PRIVATE KEY----- 178 179PrivateKey=ED25519-4 180-----BEGIN PRIVATE KEY----- 181MC4CAQAwBQYDK2VwBCIEIPXldnzxUzGVF2MPImh2uGyBYMxYO8ATdExr8lX1zA7l 182-----END PRIVATE KEY----- 183 184PrivateKey=ED25519-5 185-----BEGIN PRIVATE KEY----- 186MC4CAQAwBQYDK2VwBCIEIIM/5iQJI3udYux3WHUgkR6adZzsHRl1W32pAbltyj1C 187-----END PRIVATE KEY----- 188 189PublicKey=ED25519-1-PUBLIC 190-----BEGIN PUBLIC KEY----- 191MCowBQYDK2VwAyEA11qYAYKxCrfVS/7TyWQHOg7hcvPapiMlrwIaaPcHURo= 192-----END PUBLIC KEY----- 193 194PublicKey=ED25519-2-PUBLIC 195-----BEGIN PUBLIC KEY----- 196MCowBQYDK2VwAyEAPUAXw+hDiVqStwqnTRt+vJyYLM8uxJaMwM1V8Sr0Zgw= 197-----END PUBLIC KEY----- 198 199PublicKey=ED25519-3-PUBLIC 200-----BEGIN PUBLIC KEY----- 201MCowBQYDK2VwAyEA/FHNjmIYoaONpH7QAjDwWAgW7RO6MwOsXeuRFUiQgCU= 202-----END PUBLIC KEY----- 203 204PublicKey=ED25519-4-PUBLIC 205-----BEGIN PUBLIC KEY----- 206MCowBQYDK2VwAyEAJ4EX/BRMcjQPZ9DyMW6Dhs7/vyskKMnFH+98WX8dQm4= 207-----END PUBLIC KEY----- 208 209PublicKey=ED25519-5-PUBLIC 210-----BEGIN PUBLIC KEY----- 211MCowBQYDK2VwAyEA7Bcrk61eVjv0kyxw4SRQNMNUZ+8u/U1k6/gZaDRn4r8= 212-----END PUBLIC KEY----- 213 214#Raw versions of the ED25519-1 keys 215PrivateKeyRaw=ED25519-1-Raw:ED25519:9d61b19deffd5a60ba844af492ec2cc44449c5697b326919703bac031cae7f60 216 217PublicKeyRaw=ED25519-1-PUBLIC-Raw:ED25519:d75a980182b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f707511a 218 219PrivPubKeyPair = ED25519-1:ED25519-1-PUBLIC 220 221PrivPubKeyPair = ED25519-1-Raw:ED25519-1-PUBLIC-Raw 222 223OneShotDigestSign = NULL 224Key = ED25519-1 225Input = "" 226Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b 227 228PrivPubKeyPair = ED25519-2:ED25519-2-PUBLIC 229 230OneShotDigestSign = NULL 231Key = ED25519-2 232Input = 72 233Output = 92a009a9f0d4cab8720e820b5f642540a2b27b5416503f8fb3762223ebdb69da085ac1e43e15996e458f3613d0f11d8c387b2eaeb4302aeeb00d291612bb0c00 234 235PrivPubKeyPair = ED25519-3:ED25519-3-PUBLIC 236 237OneShotDigestSign = NULL 238Key = ED25519-3 239Input = af82 240Output = 6291d657deec24024827e69c3abe01a30ce548a284743a445e3680d7db5ac3ac18ff9b538d16f290ae67f760984dc6594a7c15e9716ed28dc027beceea1ec40a 241 242PrivPubKeyPair = ED25519-4:ED25519-4-PUBLIC 243 244OneShotDigestSign = NULL 245Key = ED25519-4 246Input = 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 247Output = 0aab4c900501b3e24d7cdf4663326a3a87df5e4843b2cbdb67cbf6e460fec350aa5371b1508f9f4528ecea23c436d94b5e8fcd4f681e30a6ac00a9704a188a03 248 249PrivPubKeyPair = ED25519-5:ED25519-5-PUBLIC 250 251OneShotDigestSign = NULL 252Key = ED25519-5 253Input = ddaf35a193617abacc417349ae20413112e6fa4e89a97ea20a9eeee64b55d39a2192992a274fc1a836ba3c23a3feebbd454d4423643ce80e2a9ac94fa54ca49f 254Output = dc2a4459e7369633a52b1bf277839a00201009a3efbf3ecb69bea2186c26b58909351fc9ac90b3ecfdfbc7c66431e0303dca179c138ac17ad9bef1177331a704 255 256# Verify test 257OneShotDigestVerify = NULL 258Key = ED25519-1-PUBLIC 259Input = "" 260Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b 261 262# Corrupted input 263OneShotDigestVerify = NULL 264Key = ED25519-1-PUBLIC 265Input = "bad" 266Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b 267Result = VERIFY_ERROR 268 269# Corrupted signature 270OneShotDigestVerify = NULL 271Key = ED25519-1-PUBLIC 272Input = "" 273Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100c 274Result = VERIFY_ERROR 275 276PrivPubKeyPair = ED25519-1:ED25519-2-PUBLIC 277Result = KEYPAIR_MISMATCH 278 279# Make sure update calls return an error 280DigestSign = NULL 281Key = ED25519-1 282Input = "Test" 283Result = DIGESTUPDATE_ERROR 284 285DigestVerify = NULL 286Key = ED25519-1-PUBLIC 287Input = "Test" 288Result = DIGESTUPDATE_ERROR 289 290# Attempt to set invalid digest 291DigestSign = SHA256 292Key = ED25519-1 293Result = DIGESTSIGNINIT_ERROR 294 295# Raw tests 296 297OneShotDigestSign = NULL 298Key = ED25519-1-Raw 299Input = "" 300Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b 301 302OneShotDigestVerify = NULL 303Key = ED25519-1-PUBLIC-Raw 304Input = "" 305Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b 306 307#Signature maleability test. 308#Same as the verify operation above but with the order added to s 309OneShotDigestVerify = NULL 310Key = ED25519-1-PUBLIC-Raw 311Input = "" 312Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901554c8c7872aa064e049dbb3013fbf29380d25bf5f0595bbe24655141438e7a101b 313Result = VERIFY_ERROR 314 315Title = ED448 tests from RFC8032 316 317PrivateKey=ED448-1 318-----BEGIN PRIVATE KEY----- 319MEcCAQAwBQYDK2VxBDsEOWyCpWLLgI0Q1jK+ichRPr9skp803fqMn2PJlg7240ij 320UoyKP8wvBE45o/xblEkvjwMudUmiAJj5Ww== 321-----END PRIVATE KEY----- 322 323PrivateKey=ED448-2 324-----BEGIN PRIVATE KEY----- 325MEcCAQAwBQYDK2VxBDsEOcTqsF01cAfGMvPbtISJkk1VKwj+DDU6DUofAKzaLEY6 326++pnxejSh3xeO8OXplmUnvgCHpVOChInTg== 327-----END PRIVATE KEY----- 328 329PrivateKey=ED448-3 330-----BEGIN PRIVATE KEY----- 331MEcCAQAwBQYDK2VxBDsEOc0j0k9xQnTnRDQyN7kykPUR9kJfmOZEWf8gPomFCD/9 3329gUAVTq8DgXNAhhL24nEzNZ+GHlRJn6zKA== 333-----END PRIVATE KEY----- 334 335PrivateKey=ED448-4 336-----BEGIN PRIVATE KEY----- 337MEcCAQAwBQYDK2VxBDsEOSWM3UraMu2cn/VOY3Vq5YL7j6sqxyHyyOZ2pydoUT2T 338n2Pd21VgkTPymt+G7Jkp3MtSwcX9L/fiGw== 339-----END PRIVATE KEY----- 340 341PrivateKey=ED448-5 342-----BEGIN PRIVATE KEY----- 343MEcCAQAwBQYDK2VxBDsEOX706EVEI2dS+7VrjzGiOhDkKBT19VygN83MEcZMmjsp 344ScG7YHADFGEXMqbC/qmO68AmahGpOXAQDg== 345-----END PRIVATE KEY----- 346 347PrivateKey=ED448-6 348-----BEGIN PRIVATE KEY----- 349MEcCAQAwBQYDK2VxBDsEOdZd80GtE+AIVnaIuu3ajp3NwX3AJJdOpbQie2Uw4zm/ 3508h+Z5oymlo88ym3+D7n0+rT6E11VQuo/AQ== 351-----END PRIVATE KEY----- 352 353PrivateKey=ED448-7 354-----BEGIN PRIVATE KEY----- 355MEcCAQAwBQYDK2VxBDsEOS7F/jwXBFq9sTal5qkT4yq3WuaLU9L8FJt35QQTLTdW 356m352a6dKGb1hYjQ6IchZCqnOvKkBTGNt9Q== 357-----END PRIVATE KEY----- 358 359PrivateKey=ED448-8 360-----BEGIN PRIVATE KEY----- 361MEcCAQAwBQYDK2VxBDsEOYctCTeA9dNzDffCEmZLN7ig8k9WgQ2qg4LNT6P3djTs 362RNxU8cLtm+qG+vt2Mti+GZ6hZfWtVd2c6A== 363-----END PRIVATE KEY----- 364 365PublicKey=ED448-1-PUBLIC 366-----BEGIN PUBLIC KEY----- 367MEMwBQYDK2VxAzoAX9dEm1m0Yf0s54fsYWrUah2hNCSFpw4fig6nXYDpZ3jt8SR2 368m0bHBhvWeD3x5Q9s0foavq/oJWGA 369-----END PUBLIC KEY----- 370 371PublicKey=ED448-2-PUBLIC 372-----BEGIN PUBLIC KEY----- 373MEMwBQYDK2VxAzoAQ7oo9DDN/0Vq5TFUX37NCsg0pV2TWMA3K/oMbGeYwIZq6gHr 374AHQoArhDjqTLghacI1FgYntMOpSA 375-----END PUBLIC KEY----- 376 377PublicKey=ED448-3-PUBLIC 378-----BEGIN PUBLIC KEY----- 379MEMwBQYDK2VxAzoA3OqeePNaG/NJmoMbELhskKrAHNhLZ6AQm1WjbpMoseNl/OFh 3801xznExpUPqTLX36fHYsAaWRHABQA 381-----END PUBLIC KEY----- 382 383PublicKey=ED448-4-PUBLIC 384-----BEGIN PUBLIC KEY----- 385MEMwBQYDK2VxAzoAO6FtoMbyzB8wGHdAdW9eeY1rxfwBXXxjzJUQ7j/UStwk2Olo 386tuRub5TRm5RTYXJr114UnvCYF/WA 387-----END PUBLIC KEY----- 388 389PublicKey=ED448-5-PUBLIC 390-----BEGIN PUBLIC KEY----- 391MEMwBQYDK2VxAzoAs9oHmwqkk6V3ICnwRnuuvuWoES2dOiJTI2HaKU97s4FcXcWe 392F2tNnzgcoJOOE8bAexdL5l36V46A 393-----END PUBLIC KEY----- 394 395PublicKey=ED448-6-PUBLIC 396-----BEGIN PUBLIC KEY----- 397MEMwBQYDK2VxAzoA35cF9Y7bq4Asf4Njz+VWCrHGEywgqfHdFjSDom+KxTo51oCL 3989KHfvSYbCZuwOz+1CQbLKL2KCB8A 399-----END PUBLIC KEY----- 400 401PublicKey=ED448-7-PUBLIC 402-----BEGIN PUBLIC KEY----- 403MEMwBQYDK2VxAzoAeXVvAU3P4gefXdnnGL5BceLvJIagjyUYb2v/Q6mTa5v+EkAr 404CK5leYo9geIunsgOdpCGLvPU7ToA 405-----END PUBLIC KEY----- 406 407PublicKey=ED448-8-PUBLIC 408-----BEGIN PUBLIC KEY----- 409MEMwBQYDK2VxAzoAqBsuinClrJT/28ybrfw/6wgB8lhXi7EUrUTs4ewOeZ2gjv+4 410HF1oXAxW9k7srvjN8RzDhzeDjPQA 411-----END PUBLIC KEY----- 412 413#Raw versions of the ED448-1 keys 414PrivateKeyRaw=ED448-1-Raw:ED448:6c82a562cb808d10d632be89c8513ebf6c929f34ddfa8c9f63c9960ef6e348a3528c8a3fcc2f044e39a3fc5b94492f8f032e7549a20098f95b 415 416PublicKeyRaw=ED448-1-PUBLIC-Raw:ED448:5fd7449b59b461fd2ce787ec616ad46a1da1342485a70e1f8a0ea75d80e96778edf124769b46c7061bd6783df1e50f6cd1fa1abeafe8256180 417 418PrivPubKeyPair = ED448-1:ED448-1-PUBLIC 419 420PrivPubKeyPair = ED448-2:ED448-2-PUBLIC 421 422PrivPubKeyPair = ED448-3:ED448-3-PUBLIC 423 424PrivPubKeyPair = ED448-4:ED448-4-PUBLIC 425 426PrivPubKeyPair = ED448-5:ED448-5-PUBLIC 427 428PrivPubKeyPair = ED448-6:ED448-6-PUBLIC 429 430PrivPubKeyPair = ED448-7:ED448-7-PUBLIC 431 432PrivPubKeyPair = ED448-8:ED448-8-PUBLIC 433 434PrivPubKeyPair = ED448-1-Raw:ED448-1-PUBLIC-Raw 435 436OneShotDigestSign = NULL 437Key = ED448-1 438Input = "" 439Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600 440 441OneShotDigestSign = NULL 442Key = ED448-2 443Input = 03 444Output = 26b8f91727bd62897af15e41eb43c377efb9c610d48f2335cb0bd0087810f4352541b143c4b981b7e18f62de8ccdf633fc1bf037ab7cd779805e0dbcc0aae1cbcee1afb2e027df36bc04dcecbf154336c19f0af7e0a6472905e799f1953d2a0ff3348ab21aa4adafd1d234441cf807c03a00 445 446OneShotDigestSign = NULL 447Key = ED448-3 448Input = 0c3e544074ec63b0265e0c 449Output = 1f0a8888ce25e8d458a21130879b840a9089d999aaba039eaf3e3afa090a09d389dba82c4ff2ae8ac5cdfb7c55e94d5d961a29fe0109941e00b8dbdeea6d3b051068df7254c0cdc129cbe62db2dc957dbb47b51fd3f213fb8698f064774250a5028961c9bf8ffd973fe5d5c206492b140e00 450 451OneShotDigestSign = NULL 452Key = ED448-4 453Input = 64a65f3cdedcdd66811e2915 454Output = 7eeeab7c4e50fb799b418ee5e3197ff6bf15d43a14c34389b59dd1a7b1b85b4ae90438aca634bea45e3a2695f1270f07fdcdf7c62b8efeaf00b45c2c96ba457eb1a8bf075a3db28e5c24f6b923ed4ad747c3c9e03c7079efb87cb110d3a99861e72003cbae6d6b8b827e4e6c143064ff3c00 455 456OneShotDigestSign = NULL 457Key = ED448-5 458Input = 64a65f3cdedcdd66811e2915e7 459Output = 6a12066f55331b6c22acd5d5bfc5d71228fbda80ae8dec26bdd306743c5027cb4890810c162c027468675ecf645a83176c0d7323a2ccde2d80efe5a1268e8aca1d6fbc194d3f77c44986eb4ab4177919ad8bec33eb47bbb5fc6e28196fd1caf56b4e7e0ba5519234d047155ac727a1053100 460 461OneShotDigestSign = NULL 462Key = ED448-6 463Input = bd0f6a3747cd561bdddf4640a332461a4a30a12a434cd0bf40d766d9c6d458e5512204a30c17d1f50b5079631f64eb3112182da3005835461113718d1a5ef944 464Output = 554bc2480860b49eab8532d2a533b7d578ef473eeb58c98bb2d0e1ce488a98b18dfde9b9b90775e67f47d4a1c3482058efc9f40d2ca033a0801b63d45b3b722ef552bad3b4ccb667da350192b61c508cf7b6b5adadc2c8d9a446ef003fb05cba5f30e88e36ec2703b349ca229c2670833900 465 466OneShotDigestSign = NULL 467Key = ED448-7 468Input = 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 469Output = c650ddbb0601c19ca11439e1640dd931f43c518ea5bea70d3dcde5f4191fe53f00cf966546b72bcc7d58be2b9badef28743954e3a44a23f880e8d4f1cfce2d7a61452d26da05896f0a50da66a239a8a188b6d825b3305ad77b73fbac0836ecc60987fd08527c1a8e80d5823e65cafe2a3d00 470 471OneShotDigestSign = NULL 472Key = ED448-8 473Input = 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 474Output = e301345a41a39a4d72fff8df69c98075a0cc082b802fc9b2b6bc503f926b65bddf7f4c8f1cb49f6396afc8a70abe6d8aef0db478d4c6b2970076c6a0484fe76d76b3a97625d79f1ce240e7c576750d295528286f719b413de9ada3e8eb78ed573603ce30d8bb761785dc30dbc320869e1a00 475 476# Verify test 477OneShotDigestVerify = NULL 478Key = ED448-1-PUBLIC 479Input = "" 480Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600 481 482# Corrupted input 483OneShotDigestVerify = NULL 484Key = ED448-1-PUBLIC 485Input = "bad" 486Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600 487Result = VERIFY_ERROR 488 489# Corrupted signature 490OneShotDigestVerify = NULL 491Key = ED448-1-PUBLIC 492Input = "" 493Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652601 494Result = VERIFY_ERROR 495 496# Make sure update calls return an error 497DigestSign = NULL 498Key = ED448-1 499Input = "Test" 500Result = DIGESTUPDATE_ERROR 501 502DigestVerify = NULL 503Key = ED448-1-PUBLIC 504Input = "Test" 505Result = DIGESTUPDATE_ERROR 506 507# Attempt to set invalid digest 508DigestSign = SHA256 509Key = ED448-1 510Result = DIGESTSIGNINIT_ERROR 511 512# Raw keys 513OneShotDigestSign = NULL 514Key = ED448-1-Raw 515Input = "" 516Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600 517 518OneShotDigestVerify = NULL 519Key = ED448-1-PUBLIC-Raw 520Input = "" 521Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600 522 523#Signature malelability test. 524#Same as the verify operation above but with the order added to s 525OneShotDigestVerify = NULL 526Key = ED448-1-PUBLIC-Raw 527Input = "" 528Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980f25278d3667403c14bcec5f9cfde9955ebc8333c0ae78fc86e518317c5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e656600 529Result = VERIFY_ERROR 530 531 532Title = Chosen Wycheproof vectors 533 534PrivateKeyRaw = WychePRIVATE0:X25519:288796bc5aff4b81a37501757bc0753a3c21964790d38699308debc17a6eaf8d 535 536PublicKeyRaw = WychePUBLIC0:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff7f 537 538Derive=WychePRIVATE0 539PeerKey=WychePUBLIC0 540SharedSecret=b4e0dd76da7b071728b61f856771aa356e57eda78a5b1655cc3820fb5f854c5c 541 542PrivateKeyRaw = WychePRIVATE1:X25519:60887b3dc72443026ebedbbbb70665f42b87add1440e7768fbd7e8e2ce5f639d 543 544PublicKeyRaw = WychePUBLIC1:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff 545 546Derive=WychePRIVATE1 547PeerKey=WychePUBLIC1 548SharedSecret=38d6304c4a7e6d9f7959334fb5245bd2c754525d4c91db950206926234c1f633 549 550PrivateKeyRaw = WychePRIVATE2:X25519:a0a4f130b98a5be4b1cedb7cb85584a3520e142d474dc9ccb909a073a976bf63 551 552PublicKeyRaw = WychePUBLIC2:X25519:0ab4e76380d84dde4f6833c58f2a9fb8f83bb0169b172be4b6e0592887741a36 553 554Derive=WychePRIVATE2 555PeerKey=WychePUBLIC2 556SharedSecret=0200000000000000000000000000000000000000000000000000000000000000 557 558PublicKeyRaw = WychePUBLIC3:X25519:89e10d5701b4337d2d032181538b1064bd4084401ceca1fd12663a1959388000 559 560Derive=WychePRIVATE2 561PeerKey=WychePUBLIC3 562SharedSecret=0900000000000000000000000000000000000000000000000000000000000000 563 564PublicKeyRaw = WychePUBLIC4:X25519:2b55d3aa4a8f80c8c0b2ae5f933e85af49beac36c2fa7394bab76c8933f8f81d 565 566Derive=WychePRIVATE2 567PeerKey=WychePUBLIC4 568SharedSecret=1000000000000000000000000000000000000000000000000000000000000000 569 570Title = Test keypair mismatches 571 572PrivPubKeyPair = Alice-25519:Bob-25519-PUBLIC 573Result = KEYPAIR_MISMATCH 574 575PrivPubKeyPair = Bob-25519:Alice-25519-PUBLIC 576Result = KEYPAIR_MISMATCH 577 578PrivPubKeyPair = Alice-448:Bob-448-PUBLIC 579Result = KEYPAIR_MISMATCH 580 581PrivPubKeyPair = Bob-448:Alice-448-PUBLIC 582Result = KEYPAIR_MISMATCH 583