]> git.ipfire.org Git - thirdparty/openssl.git/blame - test/evptests.txt
additional PSS tests for -1 and invalid salt length
[thirdparty/openssl.git] / test / evptests.txt
CommitLineData
44c8a5e2
RS
1#
2# Copyright 2001-2016 The OpenSSL Project Authors. All Rights Reserved.
3#
4# Licensed under the OpenSSL license (the "License"). You may not use
5# this file except in compliance with the License. You can obtain a copy
6# in the file LICENSE in the source distribution or at
7# https://www.openssl.org/source/license.html
8
78055aa6 9#cipher:key:iv:plaintext:ciphertext:0/1(decrypt/encrypt)
15652f98 10#aadcipher:key:iv:plaintext:ciphertext:aad:tag:0/1(decrypt/encrypt)
4897dc40
BL
11#digest:::input:output
12
2d0b4412 13# BLAKE2 tests, using same inputs as MD5
208527a7
KR
14# There are no official BLAKE2 test vectors we can use since they all use a key
15# Which is currently unsupported by OpenSSL. They were generated using the
16# reference implementation. RFC7693 also mentions the 616263 / "abc" values.
17Digest = BLAKE2s256
2d0b4412
BC
18Input =
19Output = 69217a3079908094e11121d042354a7c1f55b6482ca1a51e1b250dfd1ed0eef9
20
208527a7 21Digest = BLAKE2s256
2d0b4412
BC
22Input = 61
23Output = 4a0d129873403037c2cd9b9048203687f6233fb6738956e0349bd4320fec3e90
24
208527a7 25Digest = BLAKE2s256
2d0b4412
BC
26Input = 616263
27Output = 508c5e8c327c14e2e1a72ba34eeb452f37458b209ed63a294d999b4c86675982
28
208527a7 29Digest = BLAKE2s256
2d0b4412
BC
30Input = 6d65737361676520646967657374
31Output = fa10ab775acf89b7d3c8a6e823d586f6b67bdbac4ce207fe145b7d3ac25cd28c
32
208527a7 33Digest = BLAKE2s256
2d0b4412
BC
34Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
35Output = bdf88eb1f86a0cdf0e840ba88fa118508369df186c7355b4b16cf79fa2710a12
36
208527a7 37Digest = BLAKE2s256
2d0b4412
BC
38Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
39Output = c75439ea17e1de6fa4510c335dc3d3f343e6f9e1ce2773e25b4174f1df8b119b
40
208527a7 41Digest = BLAKE2s256
2d0b4412
BC
42Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
43Output = fdaedb290a0d5af9870864fec2e090200989dc9cd53a3c092129e8535e8b4f66
44
1fab06a6
AP
45Digest = BLAKE2s256
46Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
47Output = 1FA877DE67259D19863A2A34BCC6962A2B25FCBF5CBECD7EDE8F1FA36688A796
48
49Digest = BLAKE2s256
50Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
51Output = C80ABEEBB669AD5DEEB5F5EC8EA6B7A05DDF7D31EC4C0A2EE20B0B98CAEC6746
52
208527a7 53Digest = BLAKE2b512
2d0b4412
BC
54Input =
55Output = 786a02f742015903c6c6fd852552d272912f4740e15847618a86e217f71f5419d25e1031afee585313896444934eb04b903a685b1448b755d56f701afe9be2ce
56
208527a7 57Digest = BLAKE2b512
2d0b4412
BC
58Input = 61
59Output = 333fcb4ee1aa7c115355ec66ceac917c8bfd815bf7587d325aec1864edd24e34d5abe2c6b1b5ee3face62fed78dbef802f2a85cb91d455a8f5249d330853cb3c
60
208527a7 61Digest = BLAKE2b512
2d0b4412
BC
62Input = 616263
63Output = ba80a53f981c4d0d6a2797b69f12f6e94c212f14685ac4b74b12bb6fdbffa2d17d87c5392aab792dc252d5de4533cc9518d38aa8dbf1925ab92386edd4009923
64
208527a7 65Digest = BLAKE2b512
2d0b4412
BC
66Input = 6d65737361676520646967657374
67Output = 3c26ce487b1c0f062363afa3c675ebdbf5f4ef9bdc022cfbef91e3111cdc283840d8331fc30a8a0906cff4bcdbcd230c61aaec60fdfad457ed96b709a382359a
68
208527a7 69Digest = BLAKE2b512
2d0b4412
BC
70Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
71Output = c68ede143e416eb7b4aaae0d8e48e55dd529eafed10b1df1a61416953a2b0a5666c761e7d412e6709e31ffe221b7a7a73908cb95a4d120b8b090a87d1fbedb4c
72
208527a7 73Digest = BLAKE2b512
2d0b4412
BC
74Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
75Output = 99964802e5c25e703722905d3fb80046b6bca698ca9e2cc7e49b4fe1fa087c2edf0312dfbb275cf250a1e542fd5dc2edd313f9c491127c2e8c0c9b24168e2d50
76
208527a7 77Digest = BLAKE2b512
2d0b4412
BC
78Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
79Output = 686f41ec5afff6e87e1f076f542aa466466ff5fbde162c48481ba48a748d842799f5b30f5b67fc684771b33b994206d05cc310f31914edd7b97e41860d77d282
80
1fab06a6
AP
81Digest = BLAKE2b512
82Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
83Output = 2319E3789C47E2DAA5FE807F61BEC2A1A6537FA03F19FF32E87EECBFD64B7E0E8CCFF439AC333B040F19B0C4DDD11A61E24AC1FE0F10A039806C5DCC0DA3D115
84
85Digest = BLAKE2b512
86Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
87Output = DF0A9D0C212843A6A934E3902B2DD30D17FBA5F969D2030B12A546D8A6A45E80CF5635F071F0452E9C919275DA99BED51EB1173C1AF0518726B75B0EC3BAE2B5
88
e059b19d 89# SHA(1) tests (from shatest.c)
7303b472
DSH
90Digest = SHA1
91Input = 616263
92Output = a9993e364706816aba3e25717850c26c9cd0d89d
93
e059b19d 94
4897dc40 95# MD5 tests (from md5test.c)
7303b472
DSH
96Digest = MD5
97Input =
98Output = d41d8cd98f00b204e9800998ecf8427e
99
100Digest = MD5
101Input = 61
102Output = 0cc175b9c0f1b6a831c399e269772661
103
104Digest = MD5
105Input = 616263
106Output = 900150983cd24fb0d6963f7d28e17f72
107
108Digest = MD5
109Input = 6d65737361676520646967657374
110Output = f96b697d7cb7938d525a2f31aaf161d0
111
112Digest = MD5
113Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
114Output = c3fcd3d76192e4007dfb496cca67e13b
115
116Digest = MD5
117Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
118Output = d174ab98d277d9f5a5611c2c9f419d9f
119
120Digest = MD5
121Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
122Output = 57edf4a22be3c955ac49da2e2107b67a
123
7406e323
DSH
124# MD4 tests from md4test.c
125Digest = MD4
126Input = ""
127Output = 31d6cfe0d16ae931b73c59d7e0c089c0
128Digest = MD4
129Input = "a"
130Output = bde52cb31de33e46245e05fbdbd6fb24
131Digest = MD4
132Input = "abc"
133Output = a448017aaf21d8525fc10ae87aa6729d
134Digest = MD4
135Input = "message digest"
136Output = d9130a8164549fe818874806e1c7014b
137Digest = MD4
138Input = "abcdefghijklmnopqrstuvwxyz"
139Output = d79e1c308aa5bbcdeea8ed63df412da9
140Digest = MD4
141Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
142Output = 043f8582f241db351ce627e153e7f0e4
143Digest = MD4
144Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
145Output = e33b4ddc9c38f2199c3e7b164fcc0536
a8a00498 146
618be04e
DSH
147# RIPEMD160 tests from rmdtest.c
148Digest = RIPEMD160
149Input = ""
150Output = 9c1185a5c5e9fc54612808977ee8f548b2258d31
151Digest = RIPEMD160
152Input = "a"
153Output = 0bdc9d2d256b3ee9daae347be6f4dc835a467ffe
154Digest = RIPEMD160
155Input = "abc"
156Output = 8eb208f7e05d987a9b044a8e98c6b087f15a0bfc
157Digest = RIPEMD160
158Input = "message digest"
159Output = 5d0689ef49d2fae572b881b123a85ffa21595f36
160Digest = RIPEMD160
161Input = "abcdefghijklmnopqrstuvwxyz"
162Output = f71c27109c692c1b56bbdceb5b9d2865b3708dbc
163Digest = RIPEMD160
164Input = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq"
165Output = 12a053384a9c0c88e405a06c27dcf49ada62eb2b
166Digest = RIPEMD160
167Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
168Output = b0e20b6e3116640286ed3a87a5713079b21f5189
169Digest = RIPEMD160
170Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
171Output = 9b752e45573d4b39f4dbd3323cab82bf63326bfb
172
173# whirlpool tests from wp_test.c
174Digest = whirlpool
175Input = ""
176Output = 19FA61D75522A4669B44E39C1D2E1726C530232130D407F89AFEE0964997F7A73E83BE698B288FEBCF88E3E03C4F0757EA8964E59B63D93708B138CC42A66EB3
177Digest = whirlpool
178Input = "a"
179Output = 8ACA2602792AEC6F11A67206531FB7D7F0DFF59413145E6973C45001D0087B42D11BC645413AEFF63A42391A39145A591A92200D560195E53B478584FDAE231A
180Digest = whirlpool
181Input = "abc"
182Output = 4E2448A4C6F486BB16B6562C73B4020BF3043E3A731BCE721AE1B303D97E6D4C7181EEBDB6C57E277D0E34957114CBD6C797FC9D95D8B582D225292076D4EEF5
183Digest = whirlpool
184Input = "message digest"
185Output = 378C84A4126E2DC6E56DCC7458377AAC838D00032230F53CE1F5700C0FFB4D3B8421557659EF55C106B4B52AC5A4AAA692ED920052838F3362E86DBD37A8903E
186Digest = whirlpool
187Input = "abcdefghijklmnopqrstuvwxyz"
188Output = F1D754662636FFE92C82EBB9212A484A8D38631EAD4238F5442EE13B8054E41B08BF2A9251C30B6A0B8AAE86177AB4A6F68F673E7207865D5D9819A3DBA4EB3B
189Digest = whirlpool
190Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
191Output = DC37E008CF9EE69BF11F00ED9ABA26901DD7C28CDEC066CC6AF42E40F82F3A1E08EBA26629129D8FB7CB57211B9281A65517CC879D7B962142C65F5A7AF01467
192Digest = whirlpool
193Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
194Output = 466EF18BABB0154D25B9D38A6414F5C08784372BCCB204D6549C4AFADB6014294D5BD8DF2A6C44E538CD047B2681A51A2C60481E88C5A20B2C2A80CF3A9A083B
195Digest = whirlpool
196Input = "abcdbcdecdefdefgefghfghighijhijk"
197Output = 2A987EA40F917061F5D6F0A0E4644F488A7A5A52DEEE656207C562F988E95C6916BDC8031BC5BE1B7B947639FE050B56939BAAA0ADFF9AE6745B7B181C3BE3FD
198Digest = whirlpool
199Input = "aaaaaaaaaa"
200Count = 100000
201Output = 0C99005BEB57EFF50A7CF005560DDF5D29057FD86B20BFD62DECA0F1CCEA4AF51FC15490EDDC47AF32BB2B66C34FF9AD8C6008AD677F77126953B226E4ED8B01
202
fe2d1491
RS
203# DES EDE3 CFB1
204# echo -n "Hello World" |
205# apps/openssl enc -des-ede3-cfb1 \
206# -K 000102030405060708090A0B0C0D0E0F1011121314151617 -iv 0001020304050607 |
207# xxd -ps -u
208
209Cipher = DES-EDE3-CFB1
210Key = 000102030405060708090A0B0C0D0E0F1011121314151617
211IV = 0001020304050607
212Plaintext = "Hello World"
213Ciphertext = 3CF55D656E9C0664513358
214
215Cipher = DES-EDE3-CFB1
216Key = 000102030405060708090A0B0C0D0E0F1011121314151617
217IV = 0001020304050607
218Operation = DECRYPT
219Plaintext = "Hello World"
220Ciphertext = 3CF55D656E9C0664513358
221
7389c848 222# AES 128 ECB tests (from FIPS-197 test vectors, encrypt)
a8a00498 223
7303b472
DSH
224Cipher = AES-128-ECB
225Key = 000102030405060708090A0B0C0D0E0F
226Operation = ENCRYPT
227Plaintext = 00112233445566778899AABBCCDDEEFF
228Ciphertext = 69C4E0D86A7B0430D8CDB78070B4C55A
4d393410 229
7389c848 230# AES 192 ECB tests (from FIPS-197 test vectors, encrypt)
4d393410 231
7303b472
DSH
232Cipher = AES-192-ECB
233Key = 000102030405060708090A0B0C0D0E0F1011121314151617
234Operation = ENCRYPT
235Plaintext = 00112233445566778899AABBCCDDEEFF
236Ciphertext = DDA97CA4864CDFE06EAF70A0EC0D7191
237
4d393410 238
7389c848 239# AES 256 ECB tests (from FIPS-197 test vectors, encrypt)
4d393410 240
7303b472
DSH
241Cipher = AES-256-ECB
242Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
243Operation = ENCRYPT
244Plaintext = 00112233445566778899AABBCCDDEEFF
245Ciphertext = 8EA2B7CA516745BFEAFC49904B496089
246
a8a00498 247
52b66a62 248# AES 128 ECB tests (from NIST test vectors, encrypt)
2a814284 249
78055aa6 250#AES-128-ECB:00000000000000000000000000000000::00000000000000000000000000000000:C34C052CC0DA8D73451AFE5F03BE297F:1
52b66a62
RL
251
252# AES 128 ECB tests (from NIST test vectors, decrypt)
2a814284 253
78055aa6 254#AES-128-ECB:00000000000000000000000000000000::44416AC2D1F53C583303917E6BE9EBE0:00000000000000000000000000000000:0
52b66a62
RL
255
256# AES 192 ECB tests (from NIST test vectors, decrypt)
2a814284 257
78055aa6 258#AES-192-ECB:000000000000000000000000000000000000000000000000::48E31E9E256718F29229319C19F15BA4:00000000000000000000000000000000:0
52b66a62
RL
259
260# AES 256 ECB tests (from NIST test vectors, decrypt)
261
78055aa6 262#AES-256-ECB:0000000000000000000000000000000000000000000000000000000000000000::058CCFFDBBCB382D1F6F56585D8A4ADE:00000000000000000000000000000000:0
52b66a62 263
0e360199 264# AES 128 CBC tests (from NIST test vectors, encrypt)
a8a00498 265
78055aa6 266#AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:8A05FC5E095AF4848A08D328D3688E3D:1
4d393410
RL
267
268# AES 192 CBC tests (from NIST test vectors, encrypt)
269
78055aa6 270#AES-192-CBC:000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:7BD966D53AD8C1BB85D2ADFAE87BB104:1
4d393410
RL
271
272# AES 256 CBC tests (from NIST test vectors, encrypt)
273
78055aa6 274#AES-256-CBC:0000000000000000000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:FE3C53653E2F45B56FCD88B2CC898FF0:1
a8a00498 275
52b66a62 276# AES 128 CBC tests (from NIST test vectors, decrypt)
2a814284 277
78055aa6
RL
278#AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:FACA37E0B0C85373DF706E73F7C9AF86:00000000000000000000000000000000:0
279
280# AES tests from NIST document SP800-38A
281# For all ECB encrypts and decrypts, the transformed sequence is
282# AES-bits-ECB:key::plaintext:ciphertext:encdec
283# ECB-AES128.Encrypt and ECB-AES128.Decrypt
7303b472
DSH
284Cipher = AES-128-ECB
285Key = 2B7E151628AED2A6ABF7158809CF4F3C
286Plaintext = 6BC1BEE22E409F96E93D7E117393172A
287Ciphertext = 3AD77BB40D7A3660A89ECAF32466EF97
288
289Cipher = AES-128-ECB
290Key = 2B7E151628AED2A6ABF7158809CF4F3C
291Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
292Ciphertext = F5D3D58503B9699DE785895A96FDBAAF
293
294Cipher = AES-128-ECB
295Key = 2B7E151628AED2A6ABF7158809CF4F3C
296Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
297Ciphertext = 43B1CD7F598ECE23881B00E3ED030688
298
299Cipher = AES-128-ECB
300Key = 2B7E151628AED2A6ABF7158809CF4F3C
301Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
302Ciphertext = 7B0C785E27E8AD3F8223207104725DD4
303
304# ECB-AES192.Encrypt and ECB-AES192.Decrypt
305Cipher = AES-192-ECB
306Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
307Plaintext = 6BC1BEE22E409F96E93D7E117393172A
308Ciphertext = BD334F1D6E45F25FF712A214571FA5CC
309
310Cipher = AES-192-ECB
311Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
312Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
313Ciphertext = 974104846D0AD3AD7734ECB3ECEE4EEF
314
315Cipher = AES-192-ECB
316Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
317Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
318Ciphertext = EF7AFD2270E2E60ADCE0BA2FACE6444E
319
320Cipher = AES-192-ECB
321Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
322Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
323Ciphertext = 9A4B41BA738D6C72FB16691603C18E0E
324
325# ECB-AES256.Encrypt and ECB-AES256.Decrypt
326Cipher = AES-256-ECB
327Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
328Plaintext = 6BC1BEE22E409F96E93D7E117393172A
329Ciphertext = F3EED1BDB5D2A03C064B5A7E3DB181F8
330
331Cipher = AES-256-ECB
332Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
333Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
334Ciphertext = 591CCB10D410ED26DC5BA74A31362870
335
336Cipher = AES-256-ECB
337Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
338Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
339Ciphertext = B6ED21B99CA6F4F9F153E7B1BEAFED1D
340
341Cipher = AES-256-ECB
342Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
343Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
344Ciphertext = 23304B7A39F9F3FF067D8D8F9E24ECC7
345
78055aa6
RL
346# For all CBC encrypts and decrypts, the transformed sequence is
347# AES-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
348# CBC-AES128.Encrypt and CBC-AES128.Decrypt
349Cipher = AES-128-CBC
350Key = 2B7E151628AED2A6ABF7158809CF4F3C
351IV = 000102030405060708090A0B0C0D0E0F
352Plaintext = 6BC1BEE22E409F96E93D7E117393172A
353Ciphertext = 7649ABAC8119B246CEE98E9B12E9197D
354
355Cipher = AES-128-CBC
356Key = 2B7E151628AED2A6ABF7158809CF4F3C
357IV = 7649ABAC8119B246CEE98E9B12E9197D
358Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
359Ciphertext = 5086CB9B507219EE95DB113A917678B2
360
361Cipher = AES-128-CBC
362Key = 2B7E151628AED2A6ABF7158809CF4F3C
363IV = 5086CB9B507219EE95DB113A917678B2
364Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
365Ciphertext = 73BED6B8E3C1743B7116E69E22229516
366
367Cipher = AES-128-CBC
368Key = 2B7E151628AED2A6ABF7158809CF4F3C
369IV = 73BED6B8E3C1743B7116E69E22229516
370Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
371Ciphertext = 3FF1CAA1681FAC09120ECA307586E1A7
372
373# CBC-AES192.Encrypt and CBC-AES192.Decrypt
374Cipher = AES-192-CBC
375Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
376IV = 000102030405060708090A0B0C0D0E0F
377Plaintext = 6BC1BEE22E409F96E93D7E117393172A
378Ciphertext = 4F021DB243BC633D7178183A9FA071E8
379
380Cipher = AES-192-CBC
381Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
382IV = 4F021DB243BC633D7178183A9FA071E8
383Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
384Ciphertext = B4D9ADA9AD7DEDF4E5E738763F69145A
385
386Cipher = AES-192-CBC
387Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
388IV = B4D9ADA9AD7DEDF4E5E738763F69145A
389Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
390Ciphertext = 571B242012FB7AE07FA9BAAC3DF102E0
391
392Cipher = AES-192-CBC
393Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
394IV = 571B242012FB7AE07FA9BAAC3DF102E0
395Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
396Ciphertext = 08B0E27988598881D920A9E64F5615CD
397
398# CBC-AES256.Encrypt and CBC-AES256.Decrypt
399Cipher = AES-256-CBC
400Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
401IV = 000102030405060708090A0B0C0D0E0F
402Plaintext = 6BC1BEE22E409F96E93D7E117393172A
403Ciphertext = F58C4C04D6E5F1BA779EABFB5F7BFBD6
404
405Cipher = AES-256-CBC
406Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
407IV = F58C4C04D6E5F1BA779EABFB5F7BFBD6
408Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
409Ciphertext = 9CFC4E967EDB808D679F777BC6702C7D
410
411Cipher = AES-256-CBC
412Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
413IV = 9CFC4E967EDB808D679F777BC6702C7D
414Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
415Ciphertext = 39F23369A9D9BACFA530E26304231461
416
417Cipher = AES-256-CBC
418Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
419IV = 39F23369A9D9BACFA530E26304231461
420Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
421Ciphertext = B2EB05E2C39BE9FCDA6C19078C6A9D1B
422
78055aa6
RL
423# We don't support CFB{1,8}-AESxxx.{En,De}crypt
424# For all CFB128 encrypts and decrypts, the transformed sequence is
425# AES-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
426# CFB128-AES128.Encrypt
427Cipher = AES-128-CFB
428Key = 2B7E151628AED2A6ABF7158809CF4F3C
429IV = 000102030405060708090A0B0C0D0E0F
430Operation = ENCRYPT
431Plaintext = 6BC1BEE22E409F96E93D7E117393172A
432Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
433
434Cipher = AES-128-CFB
435Key = 2B7E151628AED2A6ABF7158809CF4F3C
436IV = 3B3FD92EB72DAD20333449F8E83CFB4A
437Operation = ENCRYPT
438Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
439Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
440
441Cipher = AES-128-CFB
442Key = 2B7E151628AED2A6ABF7158809CF4F3C
443IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
444Operation = ENCRYPT
445Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
446Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
447
448Cipher = AES-128-CFB
449Key = 2B7E151628AED2A6ABF7158809CF4F3C
450IV = 26751F67A3CBB140B1808CF187A4F4DF
451Operation = ENCRYPT
452Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
453Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
454
455# CFB128-AES128.Decrypt
456Cipher = AES-128-CFB
457Key = 2B7E151628AED2A6ABF7158809CF4F3C
458IV = 000102030405060708090A0B0C0D0E0F
459Operation = DECRYPT
460Plaintext = 6BC1BEE22E409F96E93D7E117393172A
461Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
462
463Cipher = AES-128-CFB
464Key = 2B7E151628AED2A6ABF7158809CF4F3C
465IV = 3B3FD92EB72DAD20333449F8E83CFB4A
466Operation = DECRYPT
467Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
468Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
469
470Cipher = AES-128-CFB
471Key = 2B7E151628AED2A6ABF7158809CF4F3C
472IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
473Operation = DECRYPT
474Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
475Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
476
477Cipher = AES-128-CFB
478Key = 2B7E151628AED2A6ABF7158809CF4F3C
479IV = 26751F67A3CBB140B1808CF187A4F4DF
480Operation = DECRYPT
481Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
482Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
483
78055aa6 484# CFB128-AES192.Encrypt
7303b472
DSH
485Cipher = AES-192-CFB
486Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
487IV = 000102030405060708090A0B0C0D0E0F
488Operation = ENCRYPT
489Plaintext = 6BC1BEE22E409F96E93D7E117393172A
490Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
491
492Cipher = AES-192-CFB
493Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
494IV = CDC80D6FDDF18CAB34C25909C99A4174
495Operation = ENCRYPT
496Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
497Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
498
499Cipher = AES-192-CFB
500Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
501IV = 67CE7F7F81173621961A2B70171D3D7A
502Operation = ENCRYPT
503Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
504Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
505
506Cipher = AES-192-CFB
507Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
508IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
509Operation = ENCRYPT
510Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
511Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
512
78055aa6 513# CFB128-AES192.Decrypt
7303b472
DSH
514Cipher = AES-192-CFB
515Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
516IV = 000102030405060708090A0B0C0D0E0F
517Operation = DECRYPT
518Plaintext = 6BC1BEE22E409F96E93D7E117393172A
519Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
520
521Cipher = AES-192-CFB
522Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
523IV = CDC80D6FDDF18CAB34C25909C99A4174
524Operation = DECRYPT
525Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
526Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
527
528Cipher = AES-192-CFB
529Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
530IV = 67CE7F7F81173621961A2B70171D3D7A
531Operation = DECRYPT
532Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
533Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
534
535Cipher = AES-192-CFB
536Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
537IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
538Operation = DECRYPT
539Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
540Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
541
542# CFB128-AES256.Encrypt
543Cipher = AES-256-CFB
544Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
545IV = 000102030405060708090A0B0C0D0E0F
546Operation = ENCRYPT
547Plaintext = 6BC1BEE22E409F96E93D7E117393172A
548Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
549
550Cipher = AES-256-CFB
551Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
552IV = DC7E84BFDA79164B7ECD8486985D3860
553Operation = ENCRYPT
554Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
555Ciphertext = 39FFED143B28B1C832113C6331E5407B
556
557Cipher = AES-256-CFB
558Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
559IV = 39FFED143B28B1C832113C6331E5407B
560Operation = ENCRYPT
561Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
562Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
563
564Cipher = AES-256-CFB
565Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
566IV = DF10132415E54B92A13ED0A8267AE2F9
567Operation = ENCRYPT
568Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
569Ciphertext = 75A385741AB9CEF82031623D55B1E471
570
571# CFB128-AES256.Decrypt
572Cipher = AES-256-CFB
573Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
574IV = 000102030405060708090A0B0C0D0E0F
575Operation = DECRYPT
576Plaintext = 6BC1BEE22E409F96E93D7E117393172A
577Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
578
579Cipher = AES-256-CFB
580Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
581IV = DC7E84BFDA79164B7ECD8486985D3860
582Operation = DECRYPT
583Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
584Ciphertext = 39FFED143B28B1C832113C6331E5407B
585
586Cipher = AES-256-CFB
587Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
588IV = 39FFED143B28B1C832113C6331E5407B
589Operation = DECRYPT
590Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
591Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
592
593Cipher = AES-256-CFB
594Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
595IV = DF10132415E54B92A13ED0A8267AE2F9
596Operation = DECRYPT
597Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
598Ciphertext = 75A385741AB9CEF82031623D55B1E471
599
78055aa6
RL
600# For all OFB encrypts and decrypts, the transformed sequence is
601# AES-bits-CFB:key:IV/output':plaintext:ciphertext:encdec
7303b472
DSH
602# OFB-AES128.Encrypt
603Cipher = AES-128-OFB
604Key = 2B7E151628AED2A6ABF7158809CF4F3C
605IV = 000102030405060708090A0B0C0D0E0F
606Operation = ENCRYPT
607Plaintext = 6BC1BEE22E409F96E93D7E117393172A
608Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
609
610Cipher = AES-128-OFB
611Key = 2B7E151628AED2A6ABF7158809CF4F3C
612IV = 50FE67CC996D32B6DA0937E99BAFEC60
613Operation = ENCRYPT
614Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
615Ciphertext = 7789508D16918F03F53C52DAC54ED825
616
617Cipher = AES-128-OFB
618Key = 2B7E151628AED2A6ABF7158809CF4F3C
619IV = D9A4DADA0892239F6B8B3D7680E15674
620Operation = ENCRYPT
621Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
622Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
623
624Cipher = AES-128-OFB
625Key = 2B7E151628AED2A6ABF7158809CF4F3C
626IV = A78819583F0308E7A6BF36B1386ABF23
627Operation = ENCRYPT
628Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
629Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
630
631# OFB-AES128.Decrypt
632Cipher = AES-128-OFB
633Key = 2B7E151628AED2A6ABF7158809CF4F3C
634IV = 000102030405060708090A0B0C0D0E0F
635Operation = DECRYPT
636Plaintext = 6BC1BEE22E409F96E93D7E117393172A
637Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
638
639Cipher = AES-128-OFB
640Key = 2B7E151628AED2A6ABF7158809CF4F3C
641IV = 50FE67CC996D32B6DA0937E99BAFEC60
642Operation = DECRYPT
643Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
644Ciphertext = 7789508D16918F03F53C52DAC54ED825
645
646Cipher = AES-128-OFB
647Key = 2B7E151628AED2A6ABF7158809CF4F3C
648IV = D9A4DADA0892239F6B8B3D7680E15674
649Operation = DECRYPT
650Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
651Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
652
653Cipher = AES-128-OFB
654Key = 2B7E151628AED2A6ABF7158809CF4F3C
655IV = A78819583F0308E7A6BF36B1386ABF23
656Operation = DECRYPT
657Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
658Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
659
660# OFB-AES192.Encrypt
661Cipher = AES-192-OFB
662Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
663IV = 000102030405060708090A0B0C0D0E0F
664Operation = ENCRYPT
665Plaintext = 6BC1BEE22E409F96E93D7E117393172A
666Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
667
668Cipher = AES-192-OFB
669Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
670IV = A609B38DF3B1133DDDFF2718BA09565E
671Operation = ENCRYPT
672Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
673Ciphertext = FCC28B8D4C63837C09E81700C1100401
674
675Cipher = AES-192-OFB
676Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
677IV = 52EF01DA52602FE0975F78AC84BF8A50
678Operation = ENCRYPT
679Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
680Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
681
682Cipher = AES-192-OFB
683Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
684IV = BD5286AC63AABD7EB067AC54B553F71D
685Operation = ENCRYPT
686Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
687Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
688
689# OFB-AES192.Decrypt
690Cipher = AES-192-OFB
691Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
692IV = 000102030405060708090A0B0C0D0E0F
693Operation = ENCRYPT
694Plaintext = 6BC1BEE22E409F96E93D7E117393172A
695Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
696
697Cipher = AES-192-OFB
698Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
699IV = A609B38DF3B1133DDDFF2718BA09565E
700Operation = ENCRYPT
701Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
702Ciphertext = FCC28B8D4C63837C09E81700C1100401
703
704Cipher = AES-192-OFB
705Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
706IV = 52EF01DA52602FE0975F78AC84BF8A50
707Operation = ENCRYPT
708Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
709Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
710
711Cipher = AES-192-OFB
712Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
713IV = BD5286AC63AABD7EB067AC54B553F71D
714Operation = ENCRYPT
715Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
716Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
717
718# OFB-AES256.Encrypt
719Cipher = AES-256-OFB
720Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
721IV = 000102030405060708090A0B0C0D0E0F
722Operation = ENCRYPT
723Plaintext = 6BC1BEE22E409F96E93D7E117393172A
724Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
725
726Cipher = AES-256-OFB
727Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
728IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
729Operation = ENCRYPT
730Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
731Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
732
733Cipher = AES-256-OFB
734Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
735IV = E1C656305ED1A7A6563805746FE03EDC
736Operation = ENCRYPT
737Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
738Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
739
740Cipher = AES-256-OFB
741Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
742IV = 41635BE625B48AFC1666DD42A09D96E7
743Operation = ENCRYPT
744Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
745Ciphertext = 0126141D67F37BE8538F5A8BE740E484
746
747# OFB-AES256.Decrypt
748Cipher = AES-256-OFB
749Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
750IV = 000102030405060708090A0B0C0D0E0F
751Operation = DECRYPT
752Plaintext = 6BC1BEE22E409F96E93D7E117393172A
753Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
754
755Cipher = AES-256-OFB
756Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
757IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
758Operation = DECRYPT
759Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
760Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
761
762Cipher = AES-256-OFB
763Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
764IV = E1C656305ED1A7A6563805746FE03EDC
765Operation = DECRYPT
766Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
767Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
768
769Cipher = AES-256-OFB
770Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
771IV = 41635BE625B48AFC1666DD42A09D96E7
772Operation = DECRYPT
773Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
774Ciphertext = 0126141D67F37BE8538F5A8BE740E484
775
52b66a62 776
d976f992 777# AES Counter test vectors from RFC3686
7303b472
DSH
778Cipher = aes-128-ctr
779Key = AE6852F8121067CC4BF7A5765577F39E
780IV = 00000030000000000000000000000001
781Operation = ENCRYPT
782Plaintext = 53696E676C6520626C6F636B206D7367
783Ciphertext = E4095D4FB7A7B3792D6175A3261311B8
d976f992 784
7303b472
DSH
785Cipher = aes-128-ctr
786Key = 7E24067817FAE0D743D6CE1F32539163
787IV = 006CB6DBC0543B59DA48D90B00000001
788Operation = ENCRYPT
789Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
790Ciphertext = 5104A106168A72D9790D41EE8EDAD388EB2E1EFC46DA57C8FCE630DF9141BE28
791
792Cipher = aes-128-ctr
793Key = 7691BE035E5020A8AC6E618529F9A0DC
794IV = 00E0017B27777F3F4A1786F000000001
795Operation = ENCRYPT
796Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
797Ciphertext = C1CF48A89F2FFDD9CF4652E9EFDB72D74540A42BDE6D7836D59A5CEAAEF3105325B2072F
798
799
800Cipher = aes-192-ctr
801Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
802IV = 0000004836733C147D6D93CB00000001
803Operation = ENCRYPT
804Plaintext = 53696E676C6520626C6F636B206D7367
805Ciphertext = 4B55384FE259C9C84E7935A003CBE928
806
807Cipher = aes-192-ctr
808Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
809IV = 0096B03B020C6EADC2CB500D00000001
810Operation = ENCRYPT
811Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
812Ciphertext = 453243FC609B23327EDFAAFA7131CD9F8490701C5AD4A79CFC1FE0FF42F4FB00
813
814Cipher = aes-192-ctr
815Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
816IV = 0007BDFD5CBD60278DCC091200000001
817Operation = ENCRYPT
818Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
819Ciphertext = 96893FC55E5C722F540B7DD1DDF7E758D288BC95C69165884536C811662F2188ABEE0935
820
821
822Cipher = aes-256-ctr
823Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
824IV = 00000060DB5672C97AA8F0B200000001
825Operation = ENCRYPT
826Plaintext = 53696E676C6520626C6F636B206D7367
827Ciphertext = 145AD01DBF824EC7560863DC71E3E0C0
828
829Cipher = aes-256-ctr
830Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
831IV = 00FAAC24C1585EF15A43D87500000001
832Operation = ENCRYPT
833Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
834Ciphertext = F05E231B3894612C49EE000B804EB2A9B8306B508F839D6A5530831D9344AF1C
835
836Cipher = aes-256-ctr
837Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
838IV = 001CC5B751A51D70A1C1114800000001
839Operation = ENCRYPT
840Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
841Ciphertext = EB6C52821D0BBBF7CE7594462ACA4FAAB407DF866569FD07F48CC0B583D6071F1EC0E6B8
d976f992 842
d976f992 843
b47f116b
AP
844# Self-generated vector to trigger false carry on big-endian platforms
845Cipher = aes-128-ctr
846Key = 7E24067817FAE0D743D6CE1F32539163
847IV = 00000000000000007FFFFFFFFFFFFFFF
848Operation = ENCRYPT
849Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
850Ciphertext = A2D459477E6432BD74184B1B5370D2243CDC202BC43583B2A55D288CDBBD1E03
851
0e360199 852# DES ECB tests (from destest)
a8a00498 853
7303b472
DSH
854Cipher = DES-ECB
855Key = 0000000000000000
856Plaintext = 0000000000000000
857Ciphertext = 8CA64DE9C1B123A7
858
859Cipher = DES-ECB
860Key = FFFFFFFFFFFFFFFF
861Plaintext = FFFFFFFFFFFFFFFF
862Ciphertext = 7359B2163E4EDC58
863
864Cipher = DES-ECB
865Key = 3000000000000000
866Plaintext = 1000000000000001
867Ciphertext = 958E6E627A05557B
868
869Cipher = DES-ECB
870Key = 1111111111111111
871Plaintext = 1111111111111111
872Ciphertext = F40379AB9E0EC533
873
874Cipher = DES-ECB
875Key = 0123456789ABCDEF
876Plaintext = 1111111111111111
877Ciphertext = 17668DFC7292532D
878
879Cipher = DES-ECB
880Key = 1111111111111111
881Plaintext = 0123456789ABCDEF
882Ciphertext = 8A5AE1F81AB8F2DD
883
884Cipher = DES-ECB
885Key = FEDCBA9876543210
886Plaintext = 0123456789ABCDEF
887Ciphertext = ED39D950FA74BCC4
888
c41ab9ad
BL
889
890# DESX-CBC tests (from destest)
7303b472
DSH
891Cipher = DESX-CBC
892Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
893IV = fedcba9876543210
894Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
895Ciphertext = 846B2914851E9A2954732F8AA0A611C115CDC2D7951B1053A63C5E03B21AA3C4
896
a8a00498 897
0e360199 898# DES EDE3 CBC tests (from destest)
7303b472
DSH
899Cipher = DES-EDE3-CBC
900Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
901IV = fedcba9876543210
902Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
903Ciphertext = 3FE301C962AC01D02213763C1CBD4CDC799657C064ECF5D41C673812CFDE9675
904
a8a00498 905
0e360199 906# RC4 tests (from rc4test)
7303b472
DSH
907Cipher = RC4
908Key = 0123456789abcdef0123456789abcdef
909Plaintext = 0123456789abcdef
910Ciphertext = 75b7878099e0c596
911
912Cipher = RC4
913Key = 0123456789abcdef0123456789abcdef
914Plaintext = 0000000000000000
915Ciphertext = 7494c2e7104b0879
916
917Cipher = RC4
918Key = 00000000000000000000000000000000
919Plaintext = 0000000000000000
920Ciphertext = de188941a3375d3a
921
922Cipher = RC4
923Key = ef012345ef012345ef012345ef012345
924Plaintext = 0000000000000000000000000000000000000000
925Ciphertext = d6a141a7ec3c38dfbd615a1162e1c7ba36b67858
926
927Cipher = RC4
928Key = 0123456789abcdef0123456789abcdef
929Plaintext = 123456789ABCDEF0123456789ABCDEF0123456789ABCDEF012345678
930Ciphertext = 66a0949f8af7d6891f7f832ba833c00c892ebe30143ce28740011ecf
931
932Cipher = RC4
933Key = ef012345ef012345ef012345ef012345
934Plaintext = 00000000000000000000
935Ciphertext = d6a141a7ec3c38dfbd61
936
f3dea9a5
BM
937
938
939# Camellia tests from RFC3713
940# For all ECB encrypts and decrypts, the transformed sequence is
941# CAMELLIA-bits-ECB:key::plaintext:ciphertext:encdec
7303b472
DSH
942Cipher = CAMELLIA-128-ECB
943Key = 0123456789abcdeffedcba9876543210
944Plaintext = 0123456789abcdeffedcba9876543210
945Ciphertext = 67673138549669730857065648eabe43
946
947Cipher = CAMELLIA-192-ECB
948Key = 0123456789abcdeffedcba98765432100011223344556677
949Plaintext = 0123456789abcdeffedcba9876543210
950Ciphertext = b4993401b3e996f84ee5cee7d79b09b9
951
952Cipher = CAMELLIA-256-ECB
953Key = 0123456789abcdeffedcba987654321000112233445566778899aabbccddeeff
954Plaintext = 0123456789abcdeffedcba9876543210
955Ciphertext = 9acc237dff16d76c20ef7c919e3a7509
956
f3dea9a5
BM
957
958# ECB-CAMELLIA128.Encrypt
7303b472
DSH
959Cipher = CAMELLIA-128-ECB
960Key = 000102030405060708090A0B0C0D0E0F
961Operation = ENCRYPT
962Plaintext = 00112233445566778899AABBCCDDEEFF
963Ciphertext = 77CF412067AF8270613529149919546F
964
965Cipher = CAMELLIA-192-ECB
966Key = 000102030405060708090A0B0C0D0E0F1011121314151617
967Operation = ENCRYPT
968Plaintext = 00112233445566778899AABBCCDDEEFF
969Ciphertext = B22F3C36B72D31329EEE8ADDC2906C68
970
971Cipher = CAMELLIA-256-ECB
972Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
973Operation = ENCRYPT
974Plaintext = 00112233445566778899AABBCCDDEEFF
975Ciphertext = 2EDF1F3418D53B88841FC8985FB1ECF2
976
977
978# ECB-CAMELLIA128.Encrypt and ECB-CAMELLIA128.Decrypt
979Cipher = CAMELLIA-128-ECB
980Key = 2B7E151628AED2A6ABF7158809CF4F3C
981Plaintext = 6BC1BEE22E409F96E93D7E117393172A
982Ciphertext = 432FC5DCD628115B7C388D770B270C96
983
984Cipher = CAMELLIA-128-ECB
985Key = 2B7E151628AED2A6ABF7158809CF4F3C
986Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
987Ciphertext = 0BE1F14023782A22E8384C5ABB7FAB2B
988
989Cipher = CAMELLIA-128-ECB
990Key = 2B7E151628AED2A6ABF7158809CF4F3C
991Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
992Ciphertext = A0A1ABCD1893AB6FE0FE5B65DF5F8636
993
994Cipher = CAMELLIA-128-ECB
995Key = 2B7E151628AED2A6ABF7158809CF4F3C
996Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
997Ciphertext = E61925E0D5DFAA9BB29F815B3076E51A
998
999
1000# ECB-CAMELLIA192.Encrypt and ECB-CAMELLIA192.Decrypt
1001Cipher = CAMELLIA-192-ECB
1002Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1003Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1004Ciphertext = CCCC6C4E138B45848514D48D0D3439D3
1005
1006Cipher = CAMELLIA-192-ECB
1007Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1008Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1009Ciphertext = 5713C62C14B2EC0F8393B6AFD6F5785A
1010
1011Cipher = CAMELLIA-192-ECB
1012Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1013Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1014Ciphertext = B40ED2B60EB54D09D030CF511FEEF366
1015
1016Cipher = CAMELLIA-192-ECB
1017Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1018Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1019Ciphertext = 909DBD95799096748CB27357E73E1D26
1020
1021
1022# ECB-CAMELLIA256.Encrypt and ECB-CAMELLIA256.Decrypt
1023Cipher = CAMELLIA-256-ECB
1024Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1025Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1026Ciphertext = BEFD219B112FA00098919CD101C9CCFA
1027
1028Cipher = CAMELLIA-256-ECB
1029Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1030Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1031Ciphertext = C91D3A8F1AEA08A9386CF4B66C0169EA
1032
1033Cipher = CAMELLIA-256-ECB
1034Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1035Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1036Ciphertext = A623D711DC5F25A51BB8A80D56397D28
1037
1038Cipher = CAMELLIA-256-ECB
1039Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1040Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1041Ciphertext = 7960109FB6DC42947FCFE59EA3C5EB6B
1042
f3dea9a5
BM
1043
1044# For all CBC encrypts and decrypts, the transformed sequence is
1045# CAMELLIA-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
1046# CBC-CAMELLIA128.Encrypt and CBC-CAMELLIA128.Decrypt
1047Cipher = CAMELLIA-128-CBC
1048Key = 2B7E151628AED2A6ABF7158809CF4F3C
1049IV = 000102030405060708090A0B0C0D0E0F
1050Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1051Ciphertext = 1607CF494B36BBF00DAEB0B503C831AB
1052
1053Cipher = CAMELLIA-128-CBC
1054Key = 2B7E151628AED2A6ABF7158809CF4F3C
1055IV = 1607CF494B36BBF00DAEB0B503C831AB
1056Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1057Ciphertext = A2F2CF671629EF7840C5A5DFB5074887
1058
1059Cipher = CAMELLIA-128-CBC
1060Key = 2B7E151628AED2A6ABF7158809CF4F3C
1061IV = A2F2CF671629EF7840C5A5DFB5074887
1062Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1063Ciphertext = 0F06165008CF8B8B5A63586362543E54
1064
1065Cipher = CAMELLIA-128-CBC
1066Key = 2B7E151628AED2A6ABF7158809CF4F3C
1067IV = 36A84CDAFD5F9A85ADA0F0A993D6D577
1068Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1069Ciphertext = 74C64268CDB8B8FAF5B34E8AF3732980
1070
1071
1072# CBC-CAMELLIA192.Encrypt and CBC-CAMELLIA192.Decrypt
1073Cipher = CAMELLIA-192-CBC
1074Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1075IV = 000102030405060708090A0B0C0D0E0F
1076Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1077Ciphertext = 2A4830AB5AC4A1A2405955FD2195CF93
1078
1079Cipher = CAMELLIA-192-CBC
1080Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1081IV = 2A4830AB5AC4A1A2405955FD2195CF93
1082Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1083Ciphertext = 5D5A869BD14CE54264F892A6DD2EC3D5
1084
1085Cipher = CAMELLIA-192-CBC
1086Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1087IV = 5D5A869BD14CE54264F892A6DD2EC3D5
1088Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1089Ciphertext = 37D359C3349836D884E310ADDF68C449
1090
1091Cipher = CAMELLIA-192-CBC
1092Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1093IV = 37D359C3349836D884E310ADDF68C449
1094Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1095Ciphertext = 01FAAA930B4AB9916E9668E1428C6B08
1096
1097
1098# CBC-CAMELLIA256.Encrypt and CBC-CAMELLIA256.Decrypt
1099Cipher = CAMELLIA-256-CBC
1100Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1101IV = 000102030405060708090A0B0C0D0E0F
1102Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1103Ciphertext = E6CFA35FC02B134A4D2C0B6737AC3EDA
1104
1105Cipher = CAMELLIA-256-CBC
1106Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1107IV = E6CFA35FC02B134A4D2C0B6737AC3EDA
1108Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1109Ciphertext = 36CBEB73BD504B4070B1B7DE2B21EB50
1110
1111Cipher = CAMELLIA-256-CBC
1112Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1113IV = 36CBEB73BD504B4070B1B7DE2B21EB50
1114Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1115Ciphertext = E31A6055297D96CA3330CDF1B1860A83
1116
1117Cipher = CAMELLIA-256-CBC
1118Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1119IV = E31A6055297D96CA3330CDF1B1860A83
1120Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1121Ciphertext = 5D563F6D1CCCF236051C0C5C1C58F28F
1122
f3dea9a5
BM
1123
1124# We don't support CFB{1,8}-CAMELLIAxxx.{En,De}crypt
1125# For all CFB128 encrypts and decrypts, the transformed sequence is
1126# CAMELLIA-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
1127# CFB128-CAMELLIA128.Encrypt
1128Cipher = CAMELLIA-128-CFB
1129Key = 2B7E151628AED2A6ABF7158809CF4F3C
1130IV = 000102030405060708090A0B0C0D0E0F
1131Operation = ENCRYPT
1132Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1133Ciphertext = 14F7646187817EB586599146B82BD719
1134
1135Cipher = CAMELLIA-128-CFB
1136Key = 2B7E151628AED2A6ABF7158809CF4F3C
1137IV = 14F7646187817EB586599146B82BD719
1138Operation = ENCRYPT
1139Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1140Ciphertext = A53D28BB82DF741103EA4F921A44880B
1141
1142Cipher = CAMELLIA-128-CFB
1143Key = 2B7E151628AED2A6ABF7158809CF4F3C
1144IV = A53D28BB82DF741103EA4F921A44880B
1145Operation = ENCRYPT
1146Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1147Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1148
1149Cipher = CAMELLIA-128-CFB
1150Key = 2B7E151628AED2A6ABF7158809CF4F3C
1151IV = 9C2157A664626D1DEF9EA420FDE69B96
1152Operation = ENCRYPT
1153Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1154Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1155
1156
1157# CFB128-CAMELLIA128.Decrypt
1158Cipher = CAMELLIA-128-CFB
1159Key = 2B7E151628AED2A6ABF7158809CF4F3C
1160IV = 000102030405060708090A0B0C0D0E0F
1161Operation = DECRYPT
1162Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1163Ciphertext = 14F7646187817EB586599146B82BD719
1164
1165Cipher = CAMELLIA-128-CFB
1166Key = 2B7E151628AED2A6ABF7158809CF4F3C
1167IV = 14F7646187817EB586599146B82BD719
1168Operation = DECRYPT
1169Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1170Ciphertext = A53D28BB82DF741103EA4F921A44880B
1171
1172Cipher = CAMELLIA-128-CFB
1173Key = 2B7E151628AED2A6ABF7158809CF4F3C
1174IV = A53D28BB82DF741103EA4F921A44880B
1175Operation = DECRYPT
1176Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1177Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1178
1179Cipher = CAMELLIA-128-CFB
1180Key = 2B7E151628AED2A6ABF7158809CF4F3C
1181IV = 9C2157A664626D1DEF9EA420FDE69B96
1182Operation = DECRYPT
1183Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1184Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1185
f3dea9a5
BM
1186
1187# CFB128-CAMELLIA192.Encrypt
7303b472
DSH
1188Cipher = CAMELLIA-192-CFB
1189Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1190IV = 000102030405060708090A0B0C0D0E0F
1191Operation = ENCRYPT
1192Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1193Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1194
1195Cipher = CAMELLIA-192-CFB
1196Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1197IV = C832BB9780677DAA82D9B6860DCD565E
1198Operation = ENCRYPT
1199Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1200Ciphertext = 86F8491627906D780C7A6D46EA331F98
1201
1202Cipher = CAMELLIA-192-CFB
1203Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1204IV = 86F8491627906D780C7A6D46EA331F98
1205Operation = ENCRYPT
1206Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1207Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1208
1209Cipher = CAMELLIA-192-CFB
1210Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1211IV = 69511CCE594CF710CB98BB63D7221F01
1212Operation = ENCRYPT
1213Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1214Ciphertext = D5B5378A3ABED55803F25565D8907B84
1215
f3dea9a5
BM
1216
1217# CFB128-CAMELLIA192.Decrypt
7303b472
DSH
1218Cipher = CAMELLIA-192-CFB
1219Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1220IV = 000102030405060708090A0B0C0D0E0F
1221Operation = DECRYPT
1222Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1223Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1224
1225Cipher = CAMELLIA-192-CFB
1226Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1227IV = C832BB9780677DAA82D9B6860DCD565E
1228Operation = DECRYPT
1229Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1230Ciphertext = 86F8491627906D780C7A6D46EA331F98
1231
1232Cipher = CAMELLIA-192-CFB
1233Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1234IV = 86F8491627906D780C7A6D46EA331F98
1235Operation = DECRYPT
1236Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1237Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1238
1239Cipher = CAMELLIA-192-CFB
1240Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1241IV = 69511CCE594CF710CB98BB63D7221F01
1242Operation = DECRYPT
1243Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1244Ciphertext = D5B5378A3ABED55803F25565D8907B84
1245
1246
1247# CFB128-CAMELLIA256.Encrypt
1248Cipher = CAMELLIA-256-CFB
1249Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1250IV = 000102030405060708090A0B0C0D0E0F
1251Operation = ENCRYPT
1252Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1253Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1254
1255Cipher = CAMELLIA-256-CFB
1256Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1257IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1258Operation = ENCRYPT
1259Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1260Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1261
1262Cipher = CAMELLIA-256-CFB
1263Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1264IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1265Operation = ENCRYPT
1266Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1267Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1268
1269Cipher = CAMELLIA-256-CFB
1270Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1271IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1272Operation = ENCRYPT
1273Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1274Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1275
1276
1277# CFB128-CAMELLIA256.Decrypt
1278Cipher = CAMELLIA-256-CFB
1279Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1280IV = 000102030405060708090A0B0C0D0E0F
1281Operation = DECRYPT
1282Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1283Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1284
1285Cipher = CAMELLIA-256-CFB
1286Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1287IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1288Operation = DECRYPT
1289Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1290Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1291
1292Cipher = CAMELLIA-256-CFB
1293Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1294IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1295Operation = DECRYPT
1296Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1297Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1298
1299Cipher = CAMELLIA-256-CFB
1300Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1301IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1302Operation = DECRYPT
1303Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1304Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1305
f3dea9a5
BM
1306
1307# For all OFB encrypts and decrypts, the transformed sequence is
1308# CAMELLIA-bits-OFB:key:IV/output':plaintext:ciphertext:encdec
7303b472
DSH
1309# OFB-CAMELLIA128.Encrypt
1310Cipher = CAMELLIA-128-OFB
1311Key = 2B7E151628AED2A6ABF7158809CF4F3C
1312IV = 000102030405060708090A0B0C0D0E0F
1313Operation = ENCRYPT
1314Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1315Ciphertext = 14F7646187817EB586599146B82BD719
1316
1317Cipher = CAMELLIA-128-OFB
1318Key = 2B7E151628AED2A6ABF7158809CF4F3C
1319IV = 50FE67CC996D32B6DA0937E99BAFEC60
1320Operation = ENCRYPT
1321Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1322Ciphertext = 25623DB569CA51E01482649977E28D84
1323
1324Cipher = CAMELLIA-128-OFB
1325Key = 2B7E151628AED2A6ABF7158809CF4F3C
1326IV = D9A4DADA0892239F6B8B3D7680E15674
1327Operation = ENCRYPT
1328Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1329Ciphertext = C776634A60729DC657D12B9FCA801E98
1330
1331Cipher = CAMELLIA-128-OFB
1332Key = 2B7E151628AED2A6ABF7158809CF4F3C
1333IV = A78819583F0308E7A6BF36B1386ABF23
1334Operation = ENCRYPT
1335Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1336Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1337
1338
1339# OFB-CAMELLIA128.Decrypt
1340Cipher = CAMELLIA-128-OFB
1341Key = 2B7E151628AED2A6ABF7158809CF4F3C
1342IV = 000102030405060708090A0B0C0D0E0F
1343Operation = DECRYPT
1344Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1345Ciphertext = 14F7646187817EB586599146B82BD719
1346
1347Cipher = CAMELLIA-128-OFB
1348Key = 2B7E151628AED2A6ABF7158809CF4F3C
1349IV = 50FE67CC996D32B6DA0937E99BAFEC60
1350Operation = DECRYPT
1351Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1352Ciphertext = 25623DB569CA51E01482649977E28D84
1353
1354Cipher = CAMELLIA-128-OFB
1355Key = 2B7E151628AED2A6ABF7158809CF4F3C
1356IV = D9A4DADA0892239F6B8B3D7680E15674
1357Operation = DECRYPT
1358Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1359Ciphertext = C776634A60729DC657D12B9FCA801E98
1360
1361Cipher = CAMELLIA-128-OFB
1362Key = 2B7E151628AED2A6ABF7158809CF4F3C
1363IV = A78819583F0308E7A6BF36B1386ABF23
1364Operation = DECRYPT
1365Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1366Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1367
1368
1369# OFB-CAMELLIA192.Encrypt
1370Cipher = CAMELLIA-192-OFB
1371Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1372IV = 000102030405060708090A0B0C0D0E0F
1373Operation = ENCRYPT
1374Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1375Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1376
1377Cipher = CAMELLIA-192-OFB
1378Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1379IV = A609B38DF3B1133DDDFF2718BA09565E
1380Operation = ENCRYPT
1381Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1382Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1383
1384Cipher = CAMELLIA-192-OFB
1385Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1386IV = 52EF01DA52602FE0975F78AC84BF8A50
1387Operation = ENCRYPT
1388Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1389Ciphertext = BDD62DBBB9700846C53B507F544696F0
1390
1391Cipher = CAMELLIA-192-OFB
1392Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1393IV = BD5286AC63AABD7EB067AC54B553F71D
1394Operation = ENCRYPT
1395Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1396Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1397
1398
1399# OFB-CAMELLIA192.Decrypt
1400Cipher = CAMELLIA-192-OFB
1401Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1402IV = 000102030405060708090A0B0C0D0E0F
1403Operation = DECRYPT
1404Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1405Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1406
1407Cipher = CAMELLIA-192-OFB
1408Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1409IV = A609B38DF3B1133DDDFF2718BA09565E
1410Operation = DECRYPT
1411Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1412Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1413
1414Cipher = CAMELLIA-192-OFB
1415Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1416IV = 52EF01DA52602FE0975F78AC84BF8A50
1417Operation = DECRYPT
1418Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1419Ciphertext = BDD62DBBB9700846C53B507F544696F0
1420
1421Cipher = CAMELLIA-192-OFB
1422Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1423IV = BD5286AC63AABD7EB067AC54B553F71D
1424Operation = DECRYPT
1425Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1426Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1427
1428
1429# OFB-CAMELLIA256.Encrypt
1430Cipher = CAMELLIA-256-OFB
1431Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1432IV = 000102030405060708090A0B0C0D0E0F
1433Operation = ENCRYPT
1434Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1435Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1436
1437Cipher = CAMELLIA-256-OFB
1438Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1439IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1440Operation = ENCRYPT
1441Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1442Ciphertext = 127AD97E8E3994E4820027D7BA109368
1443
1444Cipher = CAMELLIA-256-OFB
1445Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1446IV = E1C656305ED1A7A6563805746FE03EDC
1447Operation = ENCRYPT
1448Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1449Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1450
1451Cipher = CAMELLIA-256-OFB
1452Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1453IV = 41635BE625B48AFC1666DD42A09D96E7
1454Operation = ENCRYPT
1455Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1456Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1457
1458
1459# OFB-CAMELLIA256.Decrypt
1460Cipher = CAMELLIA-256-OFB
1461Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1462IV = 000102030405060708090A0B0C0D0E0F
1463Operation = DECRYPT
1464Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1465Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1466
1467Cipher = CAMELLIA-256-OFB
1468Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1469IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1470Operation = DECRYPT
1471Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1472Ciphertext = 127AD97E8E3994E4820027D7BA109368
1473
1474Cipher = CAMELLIA-256-OFB
1475Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1476IV = E1C656305ED1A7A6563805746FE03EDC
1477Operation = DECRYPT
1478Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1479Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1480
1481Cipher = CAMELLIA-256-OFB
1482Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1483IV = 41635BE625B48AFC1666DD42A09D96E7
1484Operation = DECRYPT
1485Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1486Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1487
f3dea9a5 1488
dda81999
AP
1489# Camellia test vectors from RFC5528
1490Cipher = CAMELLIA-128-CTR
1491Key = AE6852F8121067CC4BF7A5765577F39E
1492IV = 00000030000000000000000000000001
1493Operation = ENCRYPT
1494Plaintext = 53696E676C6520626C6F636B206D7367
1495Ciphertext = D09DC29A8214619A20877C76DB1F0B3F
1496
1497Cipher = CAMELLIA-128-CTR
1498Key = 7E24067817FAE0D743D6CE1F32539163
1499IV = 006CB6DBC0543B59DA48D90B00000001
1500Operation = ENCRYPT
1501Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1502Ciphertext = DBF3C78DC08396D4DA7C907765BBCB442B8E8E0F31F0DCA72C7417E35360E048
1503
1504Cipher = CAMELLIA-128-CTR
1505Key = 7691BE035E5020A8AC6E618529F9A0DC
1506IV = 00E0017B27777F3F4A1786F000000001
1507Operation = ENCRYPT
1508Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1509Ciphertext = B19D1FCDCB75EB882F849CE24D85CF739CE64B2B5C9D73F14F2D5D9DCE9889CDDF508696
1510
1511Cipher = CAMELLIA-192-CTR
1512Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
1513IV = 0000004836733C147D6D93CB00000001
1514Operation = ENCRYPT
1515Plaintext = 53696E676C6520626C6F636B206D7367
1516Ciphertext = 2379399E8A8D2B2B16702FC78B9E9696
1517
1518Cipher = CAMELLIA-192-CTR
1519Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
1520IV = 0096B03B020C6EADC2CB500D00000001
1521Operation = ENCRYPT
1522Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1523Ciphertext = 7DEF34F7A5D0E415674B7FFCAE67C75DD018B86FF23051E056392A99F35A4CED
1524
1525Cipher = CAMELLIA-192-CTR
1526Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
1527IV = 0007BDFD5CBD60278DCC091200000001
1528Operation = ENCRYPT
1529Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1530Ciphertext = 5710E556E1487A20B5AC0E73F19E4E7876F37FDC91B1EF4D4DADE8E666A64D0ED557AB57
1531
1532Cipher = CAMELLIA-256-CTR
1533Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
1534IV = 00000060DB5672C97AA8F0B200000001
1535Operation = ENCRYPT
1536Plaintext = 53696E676C6520626C6F636B206D7367
1537Ciphertext = 3401F9C8247EFFCEBD6994714C1BBB11
1538
1539Cipher = CAMELLIA-256-CTR
1540Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
1541IV = 00FAAC24C1585EF15A43D87500000001
1542Operation = ENCRYPT
1543Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1544Ciphertext = D6C30392246F7808A83C2B22A8839E45E51CD48A1CDF406EBC9CC2D3AB834108
1545
1546Cipher = CAMELLIA-256-CTR
1547Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
1548IV = 001CC5B751A51D70A1C1114800000001
1549Operation = ENCRYPT
1550Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1551Ciphertext = A4DA23FCE6A5FFAA6D64AE9A0652A42CD161A34B65F9679F75C01F101F71276F15EF0D8D
1552
96afc1cf 1553# SEED test vectors from RFC4269
7303b472
DSH
1554Cipher = SEED-ECB
1555Key = 00000000000000000000000000000000
1556Operation = DECRYPT
1557Plaintext = 000102030405060708090A0B0C0D0E0F
1558Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1559
1560Cipher = SEED-ECB
1561Key = 000102030405060708090A0B0C0D0E0F
1562Operation = DECRYPT
1563Plaintext = 00000000000000000000000000000000
1564Ciphertext = C11F22F20140505084483597E4370F43
1565
1566Cipher = SEED-ECB
1567Key = 4706480851E61BE85D74BFB3FD956185
1568Operation = DECRYPT
1569Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1570Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1571
1572Cipher = SEED-ECB
1573Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1574Operation = DECRYPT
1575Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1576Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1577
1578Cipher = SEED-ECB
1579Key = 00000000000000000000000000000000
1580Operation = ENCRYPT
1581Plaintext = 000102030405060708090A0B0C0D0E0F
1582Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1583
1584Cipher = SEED-ECB
1585Key = 000102030405060708090A0B0C0D0E0F
1586Operation = ENCRYPT
1587Plaintext = 00000000000000000000000000000000
1588Ciphertext = C11F22F20140505084483597E4370F43
1589
1590Cipher = SEED-ECB
1591Key = 4706480851E61BE85D74BFB3FD956185
1592Operation = ENCRYPT
1593Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1594Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1595
1596Cipher = SEED-ECB
1597Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1598Operation = ENCRYPT
1599Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1600Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1601
ca303d33 1602
15652f98 1603# AES CCM 256 bit key
7303b472
DSH
1604Cipher = aes-256-ccm
1605Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1606IV = 5b8e40746f6b98e00f1d13ff41
1607AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1608Tag = 2024931d73bca480c24a24ece6b6c2bf
1609Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1610Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1611
70d8b304
AP
1612Cipher = aes-256-ccm
1613Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1614IV = 5b8e40746f6b98e00f1d13ff41
1615AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1616Tag = 2024931d73bca480c24a24ece6b6c2be
1617Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1618Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1619Operation = DECRYPT
1620Result = CIPHERUPDATE_ERROR
ca303d33
AP
1621
1622# AES GCM test vectors from http://csrc.nist.gov/groups/ST/toolkit/BCM/documents/proposedmodes/gcm/gcm-spec.pdf
7303b472
DSH
1623Cipher = aes-128-gcm
1624Key = 00000000000000000000000000000000
1625IV = 000000000000000000000000
1626AAD =
1627Tag = 58e2fccefa7e3061367f1d57a4e7455a
1628Plaintext =
1629Ciphertext =
1630
1631Cipher = aes-128-gcm
1632Key = 00000000000000000000000000000000
1633IV = 000000000000000000000000
1634AAD =
1635Tag = ab6e47d42cec13bdf53a67b21257bddf
1636Plaintext = 00000000000000000000000000000000
1637Ciphertext = 0388dace60b6a392f328c2b971b2fe78
1638
1639Cipher = aes-128-gcm
1640Key = feffe9928665731c6d6a8f9467308308
1641IV = cafebabefacedbaddecaf888
1642AAD =
1643Tag = 4d5c2af327cd64a62cf35abd2ba6fab4
1644Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1645Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091473f5985
1646
1647Cipher = aes-128-gcm
1648Key = feffe9928665731c6d6a8f9467308308
1649IV = cafebabefacedbaddecaf888
1650AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1651Tag = 5bc94fbc3221a5db94fae95ae7121a47
1652Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1653Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091
1654
1655Cipher = aes-128-gcm
1656Key = feffe9928665731c6d6a8f9467308308
1657IV = cafebabefacedbad
1658AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1659Tag = 3612d2e79e3b0785561be14aaca2fccb
1660Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1661Ciphertext = 61353b4c2806934a777ff51fa22a4755699b2a714fcdc6f83766e5f97b6c742373806900e49f24b22b097544d4896b424989b5e1ebac0f07c23f4598
1662
1663Cipher = aes-128-gcm
1664Key = feffe9928665731c6d6a8f9467308308
1665IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1666AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1667Tag = 619cc5aefffe0bfa462af43c1699d050
1668Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1669Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1670
70d8b304
AP
1671Cipher = aes-128-gcm
1672Key = feffe9928665731c6d6a8f9467308308
1673IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1674AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1675Tag = 619cc5aefffe0bfa462af43c1699d051
1676Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1677Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1678Operation = DECRYPT
1679Result = CIPHERFINAL_ERROR
1680
7303b472
DSH
1681Cipher = aes-192-gcm
1682Key = 000000000000000000000000000000000000000000000000
1683IV = 000000000000000000000000
1684AAD =
1685Tag = cd33b28ac773f74ba00ed1f312572435
1686Plaintext =
1687Ciphertext =
1688
1689Cipher = aes-192-gcm
1690Key = 000000000000000000000000000000000000000000000000
1691IV = 000000000000000000000000
1692AAD =
1693Tag = 2ff58d80033927ab8ef4d4587514f0fb
1694Plaintext = 00000000000000000000000000000000
1695Ciphertext = 98e7247c07f0fe411c267e4384b0f600
1696
1697Cipher = aes-192-gcm
1698Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1699IV = cafebabefacedbaddecaf888
1700AAD =
1701Tag = 9924a7c8587336bfb118024db8674a14
1702Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1703Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710acade256
1704
1705Cipher = aes-192-gcm
1706Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1707IV = cafebabefacedbaddecaf888
1708AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1709Tag = 2519498e80f1478f37ba55bd6d27618c
1710Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1711Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710
1712
1713Cipher = aes-192-gcm
1714Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1715IV = cafebabefacedbad
1716AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1717Tag = 65dcc57fcf623a24094fcca40d3533f8
1718Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1719Ciphertext = 0f10f599ae14a154ed24b36e25324db8c566632ef2bbb34f8347280fc4507057fddc29df9a471f75c66541d4d4dad1c9e93a19a58e8b473fa0f062f7
1720
1721Cipher = aes-192-gcm
1722Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1723IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1724AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1725Tag = dcf566ff291c25bbb8568fc3d376a6d9
1726Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1727Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1728
70d8b304
AP
1729Cipher = aes-192-gcm
1730Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1731IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1732AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1733Tag = dcf566ff291c25bbb8568fc3d376a6d8
1734Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1735Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1736Operation = DECRYPT
1737Result = CIPHERFINAL_ERROR
1738
7303b472
DSH
1739Cipher = aes-256-gcm
1740Key = 0000000000000000000000000000000000000000000000000000000000000000
1741IV = 000000000000000000000000
1742AAD =
1743Tag = 530f8afbc74536b9a963b4f1c4cb738b
1744Plaintext =
1745Ciphertext =
1746
1747Cipher = aes-256-gcm
1748Key = 0000000000000000000000000000000000000000000000000000000000000000
1749IV = 000000000000000000000000
1750AAD =
1751Tag = d0d1c8a799996bf0265b98b5d48ab919
1752Plaintext = 00000000000000000000000000000000
1753Ciphertext = cea7403d4d606b6e074ec5d3baf39d18
1754
1755Cipher = aes-256-gcm
1756Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1757IV = cafebabefacedbaddecaf888
1758AAD =
1759Tag = b094dac5d93471bdec1a502270e3cc6c
1760Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1761Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1762
1763Cipher = aes-256-gcm
1764Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1765IV = cafebabefacedbaddecaf888
1766AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1767Tag = 76fc6ece0f4e1768cddf8853bb2d551b
1768Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1769Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662
1770
1771Cipher = aes-256-gcm
1772Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1773IV = cafebabefacedbad
1774AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1775Tag = 3a337dbf46a792c45e454913fe2ea8f2
1776Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1777Ciphertext = c3762df1ca787d32ae47c13bf19844cbaf1ae14d0b976afac52ff7d79bba9de0feb582d33934a4f0954cc2363bc73f7862ac430e64abe499f47c9b1f
1778
1779Cipher = aes-256-gcm
1780Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1781IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1782AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1783Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19a
1784Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1785Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1786
70d8b304
AP
1787Cipher = aes-256-gcm
1788Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1789IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1790AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1791Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19b
1792Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1793Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1794Operation = DECRYPT
1795Result = CIPHERFINAL_ERROR
1796
ca303d33
AP
1797# local add-ons, primarily streaming ghash tests
1798# 128 bytes aad
7303b472
DSH
1799Cipher = aes-128-gcm
1800Key = 00000000000000000000000000000000
1801IV = 000000000000000000000000
1802AAD = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1803Tag = 5fea793a2d6f974d37e68e0cb8ff9492
1804Plaintext =
1805Ciphertext =
1806
ca303d33 1807# 48 bytes plaintext
7303b472
DSH
1808Cipher = aes-128-gcm
1809Key = 00000000000000000000000000000000
1810IV = 000000000000000000000000
1811AAD =
1812Tag = 9dd0a376b08e40eb00c35f29f9ea61a4
1813Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1814Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0
1815
ca303d33 1816# 80 bytes plaintext
7303b472
DSH
1817Cipher = aes-128-gcm
1818Key = 00000000000000000000000000000000
1819IV = 000000000000000000000000
1820AAD =
1821Tag = 98885a3a22bd4742fe7b72172193b163
1822Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1823Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d5270291
1824
ca303d33 1825# 128 bytes plaintext
7303b472
DSH
1826Cipher = aes-128-gcm
1827Key = 00000000000000000000000000000000
1828IV = 000000000000000000000000
1829AAD =
1830Tag = cac45f60e31efd3b5a43b98a22ce1aa1
1831Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1832Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d527029195b84d1b96c690ff2f2de30bf2ec89e00253786e126504f0dab90c48a30321de3345e6b0461e7c9e6c6b7afedde83f40
1833
ca303d33 1834# 192 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
7303b472
DSH
1835Cipher = aes-128-gcm
1836Key = 00000000000000000000000000000000
1837IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1838AAD =
1839Tag = 566f8ef683078bfdeeffa869d751a017
1840Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1841Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606
1842
cc77d0d8
AP
1843# 240 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
1844Cipher = aes-128-gcm
1845Key = 00000000000000000000000000000000
1846IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1847AAD =
1848Tag = fd0c7011ff07f0071324bdfb2d0f3a29
1849Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1850Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606872ca10dee15b3249b1a1b958f23134c4bccb7d03200bce420a2f8eb66dcf3644d1423c1b5699003c13ecef4bf38a3b6
1851
4e049c52 1852# 288 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
7303b472
DSH
1853Cipher = aes-128-gcm
1854Key = 00000000000000000000000000000000
1855IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1856AAD =
1857Tag = 8b307f6b33286d0ab026a9ed3fe1e85f
1858Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1859Ciphertext = 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
1860
ca303d33 1861# 80 bytes plaintext, submitted by Intel
7303b472
DSH
1862Cipher = aes-128-gcm
1863Key = 843ffcf5d2b72694d19ed01d01249412
1864IV = dbcca32ebf9b804617c3aa9e
1865AAD = 00000000000000000000000000000000101112131415161718191a1b1c1d1e1f
1866Tag = 3b629ccfbc1119b7319e1dce2cd6fd6d
1867Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
1868Ciphertext = 6268c6fa2a80b2d137467f092f657ac04d89be2beaa623d61b5a868c8f03ff95d3dcee23ad2f1ab3a6c80eaf4b140eb05de3457f0fbc111a6b43d0763aa422a3013cf1dc37fe417d1fbfc449b75d4cc5
1869
2207ba7b
DSH
1870#AES OCB Test vectors
1871Cipher = aes-128-ocb
1872Key = 000102030405060708090A0B0C0D0E0F
1873IV = 000102030405060708090A0B
1874AAD =
1875Tag = 197B9C3C441D3C83EAFB2BEF633B9182
1876Plaintext =
1877Ciphertext =
1878
1879Cipher = aes-128-ocb
1880Key = 000102030405060708090A0B0C0D0E0F
1881IV = 000102030405060708090A0B
1882AAD = 0001020304050607
1883Tag = 16DC76A46D47E1EAD537209E8A96D14E
1884Plaintext = 0001020304050607
1885Ciphertext = 92B657130A74B85A
1886
1887Cipher = aes-128-ocb
1888Key = 000102030405060708090A0B0C0D0E0F
1889IV = 000102030405060708090A0B
1890AAD = 0001020304050607
1891Tag = 98B91552C8C009185044E30A6EB2FE21
1892Plaintext =
1893Ciphertext =
1894
1895Cipher = aes-128-ocb
1896Key = 000102030405060708090A0B0C0D0E0F
1897IV = 000102030405060708090A0B
1898AAD =
1899Tag = 971EFFCAE19AD4716F88E87B871FBEED
1900Plaintext = 0001020304050607
1901Ciphertext = 92B657130A74B85A
1902
1903Cipher = aes-128-ocb
1904Key = 000102030405060708090A0B0C0D0E0F
1905IV = 000102030405060708090A0B
1906AAD = 000102030405060708090A0B0C0D0E0F
1907Tag = 776C9924D6723A1FC4524532AC3E5BEB
1908Plaintext = 000102030405060708090A0B0C0D0E0F
1909Ciphertext = BEA5E8798DBE7110031C144DA0B26122
1910
1911Cipher = aes-128-ocb
1912Key = 000102030405060708090A0B0C0D0E0F
1913IV = 000102030405060708090A0B
1914AAD = 000102030405060708090A0B0C0D0E0F
1915Tag = 7DDB8E6CEA6814866212509619B19CC6
1916Plaintext =
1917Ciphertext =
1918
1919Cipher = aes-128-ocb
1920Key = 000102030405060708090A0B0C0D0E0F
1921IV = 000102030405060708090A0B
1922AAD =
1923Tag = 13CC8B747807121A4CBB3E4BD6B456AF
1924Plaintext = 000102030405060708090A0B0C0D0E0F
1925Ciphertext = BEA5E8798DBE7110031C144DA0B26122
1926
1927Cipher = aes-128-ocb
1928Key = 000102030405060708090A0B0C0D0E0F
1929IV = 000102030405060708090A0B
1930AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
1931Tag = 5FA94FC3F38820F1DC3F3D1FD4E55E1C
1932Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
1933Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
1934
1935Cipher = aes-128-ocb
1936Key = 000102030405060708090A0B0C0D0E0F
1937IV = 000102030405060708090A0B
1938AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
1939Tag = 282026DA3068BC9FA118681D559F10F6
1940Plaintext =
1941Ciphertext =
1942
1943Cipher = aes-128-ocb
1944Key = 000102030405060708090A0B0C0D0E0F
1945IV = 000102030405060708090A0B
1946AAD =
1947Tag = 6EF2F52587FDA0ED97DC7EEDE241DF68
1948Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
1949Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
1950
1951Cipher = aes-128-ocb
1952Key = 000102030405060708090A0B0C0D0E0F
1953IV = 000102030405060708090A0B
1954AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1955Tag = B2A040DD3BD5164372D76D7BB6824240
1956Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1957Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
1958
1959Cipher = aes-128-ocb
1960Key = 000102030405060708090A0B0C0D0E0F
1961IV = 000102030405060708090A0B
1962AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1963Tag = E1E072633BADE51A60E85951D9C42A1B
1964Plaintext =
1965Ciphertext =
1966
1967Cipher = aes-128-ocb
1968Key = 000102030405060708090A0B0C0D0E0F
1969IV = 000102030405060708090A0B
1970AAD =
1971Tag = 4A3BAE824465CFDAF8C41FC50C7DF9D9
1972Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1973Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
1974
1975Cipher = aes-128-ocb
1976Key = 000102030405060708090A0B0C0D0E0F
1977IV = 000102030405060708090A0B
1978AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
1979Tag = 659C623211DEEA0DE30D2C381879F4C8
1980Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
1981Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
1982
1983Cipher = aes-128-ocb
1984Key = 000102030405060708090A0B0C0D0E0F
1985IV = 000102030405060708090A0B
1986AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
1987Tag = 7AEB7A69A1687DD082CA27B0D9A37096
1988Plaintext =
1989Ciphertext =
1990
1991Cipher = aes-128-ocb
1992Key = 000102030405060708090A0B0C0D0E0F
1993IV = 000102030405060708090A0B
1994AAD =
1995Tag = 060C8467F4ABAB5E8B3C2067A2E115DC
1996Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
1997Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
1998
1999#AES OCB Non standard test vectors - generated from reference implementation
2000Cipher = aes-128-ocb
2001Key = 000102030405060708090A0B0C0D0E0F
2002IV = 000102030405060708090A0B
2003AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2004Tag = 1b6c44f34e3abb3cbf8976e7
2005Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2006Ciphertext = 09a4fd29de949d9a9aa9924248422097ad4883b4713e6c214ff6567ada08a96766fc4e2ee3e3a5a1
2007
2008Cipher = aes-128-ocb
2009Key = 000102030405060708090A0B0C0D0E0F
2010IV = 000102030405060708090A0B0C0D0E
2011AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2012Tag = 1ad62009901f40cba7cd7156f94a7324
2013Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2014Ciphertext = 5e2fa7367ffbdb3938845cfd415fcc71ec79634eb31451609d27505f5e2978f43c44213d8fa441ee
d827c5ed 2015
bd30091c
AP
2016Cipher = aes-128-ocb
2017Key = 000102030405060708090A0B0C0D0E0F
2018IV = 000102030405060708090A0B
2019AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2020Tag = C203F98CE28F7DAD3F31C021
2021Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F3031
2022Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C822D6
2023
2024Cipher = aes-128-ocb
2025Key = 000102030405060708090A0B0C0D0E0F
2026IV = 000102030405060708090A0B
2027AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2028Tag = 8346D7D47C5D893ED472F5AB
2029Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F4041
2030Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F714FF
2031
2032Cipher = aes-128-ocb
2033Key = 000102030405060708090A0B0C0D0E0F
2034IV = 000102030405060708090A0B
2035AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2036Tag = 5822A9A70FDF55D29D2984A6
2037Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F5051
2038Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB8294170634D
2039
2040Cipher = aes-128-ocb
2041Key = 000102030405060708090A0B0C0D0E0F
2042IV = 000102030405060708090A0B
2043AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2044Tag = 81772B6741ABB4ECA9D2DEB2
2045Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F6061
2046Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7050FAA
2047
2048Cipher = aes-128-ocb
2049Key = 000102030405060708090A0B0C0D0E0F
2050IV = 000102030405060708090A0B
2051AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2052Tag = 3E52A01D068DE85456DB03B7
2053Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2054Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2055
70d8b304
AP
2056Cipher = aes-128-ocb
2057Key = 000102030405060708090A0B0C0D0E0F
2058IV = 000102030405060708090A0B
2059AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2060Tag = 3E52A01D068DE85456DB03B6
2061Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2062Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2063Operation = DECRYPT
2064Result = CIPHERFINAL_ERROR
2065
c9a8e3d1 2066# AES XTS test vectors from IEEE Std 1619-2007
7303b472
DSH
2067Cipher = aes-128-xts
2068Key = 0000000000000000000000000000000000000000000000000000000000000000
2069IV = 00000000000000000000000000000000
2070Plaintext = 0000000000000000000000000000000000000000000000000000000000000000
2071Ciphertext = 917cf69ebd68b2ec9b9fe9a3eadda692cd43d2f59598ed858c02c2652fbf922e
2072
2073Cipher = aes-128-xts
2074Key = 1111111111111111111111111111111122222222222222222222222222222222
2075IV = 33333333330000000000000000000000
2076Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2077Ciphertext = c454185e6a16936e39334038acef838bfb186fff7480adc4289382ecd6d394f0
2078
2079Cipher = aes-128-xts
2080Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f022222222222222222222222222222222
2081IV = 33333333330000000000000000000000
2082Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2083Ciphertext = af85336b597afc1a900b2eb21ec949d292df4c047e0b21532186a5971a227a89
2084
2085Cipher = aes-128-xts
2086Key = 2718281828459045235360287471352631415926535897932384626433832795
2087IV = 00000000000000000000000000000000
2088Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
2089Ciphertext = 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
2090
2091Cipher = aes-128-xts
2092Key = 2718281828459045235360287471352631415926535897932384626433832795
2093IV = 01000000000000000000000000000000
2094Plaintext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f9172af82b604dc4b8e51bcb08235a6f4341332e4ca60482a4ba1a03b3e65008fc5da76b70bf1690db4eae29c5f1badd03c5ccf2a55d705ddcd86d449511ceb7ec30bf12b1fa35b913f9f747a8afd1b130e94bff94effd01a91735ca1726acd0b197c4e5b03393697e126826fb6bbde8ecc1e08298516e2c9ed03ff3c1b7860f6de76d4cecd94c8119855ef5297ca67e9f3e7ff72b1e99785ca0a7e7720c5b36dc6d72cac9574c8cbbc2f801e23e56fd344b07f22154beba0f08ce8891e643ed995c94d9a69c9f1b5f499027a78572aeebd74d20cc39881c213ee770b1010e4bea718846977ae119f7a023ab58cca0ad752afe656bb3c17256a9f6e9bf19fdd5a38fc82bbe872c5539edb609ef4f79c203ebb140f2e583cb2ad15b4aa5b655016a8449277dbd477ef2c8d6c017db738b18deb4a427d1923ce3ff262735779a418f20a282df920147beabe421ee5319d0568
2095Ciphertext = 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
2096
2097Cipher = aes-128-xts
2098Key = 2718281828459045235360287471352631415926535897932384626433832795
2099IV = 02000000000000000000000000000000
2100Plaintext = 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
2101Ciphertext = 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
2102
2103Cipher = aes-128-xts
2104Key = 2718281828459045235360287471352631415926535897932384626433832795
2105IV = fd000000000000000000000000000000
2106Plaintext = 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
2107Ciphertext = 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
2108
2109Cipher = aes-128-xts
2110Key = 2718281828459045235360287471352631415926535897932384626433832795
2111IV = fe000000000000000000000000000000
2112Plaintext = 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
2113Ciphertext = 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
2114
2115Cipher = aes-128-xts
2116Key = 2718281828459045235360287471352631415926535897932384626433832795
2117IV = ff000000000000000000000000000000
2118Plaintext = 72efc1ebfe1ee25975a6eb3aa8589dda2b261f1c85bdab442a9e5b2dd1d7c3957a16fc08e526d4b1223f1b1232a11af274c3d70dac57f83e0983c498f1a6f1aecb021c3e70085a1e527f1ce41ee5911a82020161529cd82773762daf5459de94a0a82adae7e1703c808543c29ed6fb32d9e004327c1355180c995a07741493a09c21ba01a387882da4f62534b87bb15d60d197201c0fd3bf30c1500a3ecfecdd66d8721f90bcc4c17ee925c61b0a03727a9c0d5f5ca462fbfa0af1c2513a9d9d4b5345bd27a5f6e653f751693e6b6a2b8ead57d511e00e58c45b7b8d005af79288f5c7c22fd4f1bf7a898b03a5634c6a1ae3f9fae5de4f296a2896b23e7ed43ed14fa5a2803f4d28f0d3ffcf24757677aebdb47bb388378708948a8d4126ed1839e0da29a537a8c198b3c66ab00712dd261674bf45a73d67f76914f830ca014b65596f27e4cf62de66125a5566df9975155628b400fbfb3a29040ed50faffdbb18aece7c5c44693260aab386c0a37b11b114f1c415aebb653be468179428d43a4d8bc3ec38813eca30a13cf1bb18d524f1992d44d8b1a42ea30b22e6c95b199d8d182f8840b09d059585c31ad691fa0619ff038aca2c39a943421157361717c49d322028a74648113bd8c9d7ec77cf3c89c1ec8718ceff8516d96b34c3c614f10699c9abc4ed0411506223bea16af35c883accdbe1104eef0cfdb54e12fb230a
2119Ciphertext = 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
2120
2121
2122Cipher = aes-256-xts
2123Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2124IV = ff000000000000000000000000000000
2125Plaintext = 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
2126Ciphertext = 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
2127
2128Cipher = aes-256-xts
2129Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2130IV = ffff0000000000000000000000000000
2131Plaintext = 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
2132Ciphertext = 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
2133
2134Cipher = aes-256-xts
2135Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2136IV = ffffff00000000000000000000000000
2137Plaintext = 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
2138Ciphertext = e387aaa58ba483afa7e8eb469778317ecf4cf573aa9d4eac23f2cdf914e4e200a8b490e42ee646802dc6ee2b471b278195d60918ececb44bf79966f83faba0499298ebc699c0c8634715a320bb4f075d622e74c8c932004f25b41e361025b5a87815391f6108fc4afa6a05d9303c6ba68a128a55705d415985832fdeaae6c8e19110e84d1b1f199a2692119edc96132658f09da7c623efcec712537a3d94c0bf5d7e352ec94ae5797fdb377dc1551150721adf15bd26a8efc2fcaad56881fa9e62462c28f30ae1ceaca93c345cf243b73f542e2074a705bd2643bb9f7cc79bb6e7091ea6e232df0f9ad0d6cf502327876d82207abf2115cdacf6d5a48f6c1879a65b115f0f8b3cb3c59d15dd8c769bc014795a1837f3901b5845eb491adfefe097b1fa30a12fc1f65ba22905031539971a10f2f36c321bb51331cdefb39e3964c7ef079994f5b69b2edd83a71ef549971ee93f44eac3938fcdd61d01fa71799da3a8091c4c48aa9ed263ff0749df95d44fef6a0bb578ec69456aa5408ae32c7af08ad7ba8921287e3bbee31b767be06a0e705c864a769137df28292283ea81a2480241b44d9921cdbec1bc28dc1fda114bd8e5217ac9d8ebafa720e9da4f9ace231cc949e5b96fe76ffc21063fddc83a6b8679c00d35e09576a875305bed5f36ed242c8900dd1fa965bc950dfce09b132263a1eef52dd6888c309f5a7d712826
2139
2140Cipher = aes-256-xts
2141Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2142IV = ffffffff000000000000000000000000
2143Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
2144Ciphertext = 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
2145
2146Cipher = aes-256-xts
2147Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2148IV = ffffffffff0000000000000000000000
2149Plaintext = 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
2150Ciphertext = 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
2151
2152
2153Cipher = aes-128-xts
2154Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2155IV = 9a785634120000000000000000000000
2156Plaintext = 000102030405060708090a0b0c0d0e0f10
2157Ciphertext = 6c1625db4671522d3d7599601de7ca09ed
2158
2159Cipher = aes-128-xts
2160Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2161IV = 9a785634120000000000000000000000
2162Plaintext = 000102030405060708090a0b0c0d0e0f1011
2163Ciphertext = d069444b7a7e0cab09e24447d24deb1fedbf
2164
2165Cipher = aes-128-xts
2166Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2167IV = 9a785634120000000000000000000000
2168Plaintext = 000102030405060708090a0b0c0d0e0f101112
2169Ciphertext = e5df1351c0544ba1350b3363cd8ef4beedbf9d
2170
2171Cipher = aes-128-xts
2172Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2173IV = 9a785634120000000000000000000000
2174Plaintext = 000102030405060708090a0b0c0d0e0f10111213
2175Ciphertext = 9d84c813f719aa2c7be3f66171c7c5c2edbf9dac
2176
2177Cipher = aes-128-xts
2178Key = e0e1e2e3e4e5e6e7e8e9eaebecedeeefc0c1c2c3c4c5c6c7c8c9cacbcccdcecf
2179IV = 21436587a90000000000000000000000
2180Plaintext = 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
2181Ciphertext = 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
2182
74daca72
AP
2183# Exercise different lengths covering even ciphertext stealing cases
2184Cipher = aes-128-xts
2185Key = 2718281828459045235360287471352631415926535897932384626433832795
2186IV = 00000000000000000000000000000000
2187Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f
2188Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce
2189
2190Cipher = aes-128-xts
2191Key = 2718281828459045235360287471352631415926535897932384626433832795
2192IV = 00000000000000000000000000000000
2193Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f6061
2194Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5B079C6307EA0914559C6D2FB6384F8AADF94
2195
2196Cipher = aes-128-xts
2197Key = 2718281828459045235360287471352631415926535897932384626433832795
2198IV = 00000000000000000000000000000000
2199Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f
2200Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce84
2201
2202Cipher = aes-128-xts
2203Key = 2718281828459045235360287471352631415926535897932384626433832795
2204IV = 00000000000000000000000000000000
2205Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f7071
2206Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CEF4F253466EF4953ADC8FE2F5BC1FF57593FD
2207
2208Cipher = aes-128-xts
2209Key = 2718281828459045235360287471352631415926535897932384626433832795
2210IV = 00000000000000000000000000000000
2211Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f
2212Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad0265
2213
2214Cipher = aes-128-xts
2215Key = 2718281828459045235360287471352631415926535897932384626433832795
2216IV = 00000000000000000000000000000000
2217Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f8081
2218Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE842973C68248EDDFE26FB9B096659C8A5D6BB7
2219
2220Cipher = aes-128-xts
2221Key = 2718281828459045235360287471352631415926535897932384626433832795
2222IV = 00000000000000000000000000000000
2223Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f
2224Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51
2225
2226Cipher = aes-128-xts
2227Key = 2718281828459045235360287471352631415926535897932384626433832795
2228IV = 00000000000000000000000000000000
2229Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f9091
2230Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD0265C4DD16E65A24575A709F174593F19FF85EA9
2231
2232Cipher = aes-128-xts
2233Key = 2718281828459045235360287471352631415926535897932384626433832795
2234IV = 00000000000000000000000000000000
2235Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
2236Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8
2237
2238Cipher = aes-128-xts
2239Key = 2718281828459045235360287471352631415926535897932384626433832795
2240IV = 00000000000000000000000000000000
2241Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1
2242Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE519215FA160C664D4B07D757A034AB3B35A10C
2243
2244Cipher = aes-128-xts
2245Key = 2718281828459045235360287471352631415926535897932384626433832795
2246IV = 00000000000000000000000000000000
2247Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
2248Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f91
2249
2250Cipher = aes-128-xts
2251Key = 2718281828459045235360287471352631415926535897932384626433832795
2252IV = 00000000000000000000000000000000
2253Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1
2254Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D82C6CBC24F9357BD1FB882AA4B2CC2E7FA750
2255
2256Cipher = aes-128-xts
2257Key = 2718281828459045235360287471352631415926535897932384626433832795
2258IV = 00000000000000000000000000000000
2259Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebf
2260Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f9172af82b604dc4b8e51bcb08235a6f434
2261
2262Cipher = aes-128-xts
2263Key = 2718281828459045235360287471352631415926535897932384626433832795
2264IV = 00000000000000000000000000000000
2265Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1
2266Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D8A750E8768DEFFFED9122810AAEB99F910409B03D164E727C31290FD4E039500872AF
2267
97cf1f6c 2268# AES wrap tests from RFC3394
7303b472
DSH
2269Cipher = id-aes128-wrap
2270Key = 000102030405060708090A0B0C0D0E0F
2271Plaintext = 00112233445566778899AABBCCDDEEFF
2272Ciphertext = 1FA68B0A8112B447AEF34BD8FB5A7B829D3E862371D2CFE5
2273
2274Cipher = id-aes192-wrap
2275Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2276Plaintext = 00112233445566778899AABBCCDDEEFF
2277Ciphertext = 96778B25AE6CA435F92B5B97C050AED2468AB8A17AD84E5D
2278
2279Cipher = id-aes256-wrap
2280Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2281Plaintext = 00112233445566778899AABBCCDDEEFF
2282Ciphertext = 64E8C3F9CE0F5BA263E9777905818A2A93C8191E7D6E8AE7
2283
2284Cipher = id-aes192-wrap
2285Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2286Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2287Ciphertext = 031D33264E15D33268F24EC260743EDCE1C6C7DDEE725A936BA814915C6762D2
2288
2289Cipher = id-aes256-wrap
2290Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2291Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2292Ciphertext = A8F9BC1612C68B3FF6E6F4FBE30E71E4769C8B80A32CB8958CD5D17D6B254DA1
2293
2294Cipher = id-aes256-wrap
2295Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2296Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2297Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2298
77e127ea
DSH
2299# Same as previous example but with invalid unwrap key: should be rejected
2300# without returning any plaintext
2301Cipher = id-aes256-wrap
2302Operation = DECRYPT
2303Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E00
2304Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2305Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2306Result = CIPHERUPDATE_ERROR
2307
d31fed73 2308# AES wrap tests from RFC5649
7303b472
DSH
2309Cipher = id-aes192-wrap-pad
2310Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2311Plaintext = c37b7e6492584340bed12207808941155068f738
2312Ciphertext = 138bdeaa9b8fa7fc61f97742e72248ee5ae6ae5360d1ae6a5f54f373fa543b6a
2313
2314Cipher = id-aes192-wrap-pad
2315Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2316Plaintext = 466f7250617369
2317Ciphertext = afbeb0f07dfbf5419200f2ccb50bb24f
2318
b8c792dc
DSH
2319# HMAC tests from RFC2104
2320MAC = HMAC
2321Algorithm = MD5
2322Key = 0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
2323Input = "Hi There"
2324Output = 9294727a3638bb1c13f48ef8158bfc9d
2325
2326MAC = HMAC
2327Algorithm = MD5
2328Key = "Jefe"
2329Input = "what do ya want for nothing?"
2330Output = 750c783e6ab0b503eaa86e310a5db738
2331
2332MAC = HMAC
2333Algorithm = MD5
2334Key = AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
2335Input = DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
2336Output = 56be34521d144c88dbb8c733f0e8b3f6
2337
2338# HMAC tests from NIST test data
2339
2340MAC = HMAC
2341Algorithm = SHA1
2342Input = "Sample message for keylen=blocklen"
2343Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2344Output = 5FD596EE78D5553C8FF4E72D266DFD192366DA29
2345MAC = HMAC
2346Algorithm = SHA1
2347Input = "Sample message for keylen<blocklen"
2348Key = 000102030405060708090A0B0C0D0E0F10111213
2349Output = 4C99FF0CB1B31BD33F8431DBAF4D17FCD356A807
2350MAC = HMAC
2351Algorithm = SHA1
2352Input = "Sample message for keylen=blocklen"
2353Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2354Output = 2D51B2F7750E410584662E38F133435F4C4FD42A
2355MAC = HMAC
2356Algorithm = SHA224
2357Input = "Sample message for keylen=blocklen"
2358Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2359Output = C7405E3AE058E8CD30B08B4140248581ED174CB34E1224BCC1EFC81B
2360MAC = HMAC
2361Algorithm = SHA224
2362Input = "Sample message for keylen<blocklen"
2363Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B
2364Output = E3D249A8CFB67EF8B7A169E9A0A599714A2CECBA65999A51BEB8FBBE
2365MAC = HMAC
2366Algorithm = SHA224
2367Input = "Sample message for keylen=blocklen"
2368Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2369Output = 91C52509E5AF8531601AE6230099D90BEF88AAEFB961F4080ABC014D
2370MAC = HMAC
2371Algorithm = SHA256
2372Input = "Sample message for keylen=blocklen"
2373Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2374Output = 8BB9A1DB9806F20DF7F77B82138C7914D174D59E13DC4D0169C9057B133E1D62
2375MAC = HMAC
2376Algorithm = SHA256
2377Input = "Sample message for keylen<blocklen"
2378Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2379Output = A28CF43130EE696A98F14A37678B56BCFCBDD9E5CF69717FECF5480F0EBDF790
2380MAC = HMAC
2381Algorithm = SHA256
2382Input = "Sample message for keylen=blocklen"
2383Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2384Output = BDCCB6C72DDEADB500AE768386CB38CC41C63DBB0878DDB9C7A38A431B78378D
2385MAC = HMAC
2386Algorithm = SHA384
2387Input = "Sample message for keylen=blocklen"
2388Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2389Output = 63C5DAA5E651847CA897C95814AB830BEDEDC7D25E83EEF9195CD45857A37F448947858F5AF50CC2B1B730DDF29671A9
2390MAC = HMAC
2391Algorithm = SHA384
2392Input = "Sample message for keylen<blocklen"
2393Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F
2394Output = 6EB242BDBB582CA17BEBFA481B1E23211464D2B7F8C20B9FF2201637B93646AF5AE9AC316E98DB45D9CAE773675EEED0
2395MAC = HMAC
2396Algorithm = SHA384
2397Input = "Sample message for keylen=blocklen"
2398Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2399Output = 5B664436DF69B0CA22551231A3F0A3D5B4F97991713CFA84BFF4D0792EFF96C27DCCBBB6F79B65D548B40E8564CEF594
2400MAC = HMAC
2401Algorithm = SHA512
2402Input = "Sample message for keylen=blocklen"
2403Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2404Output = FC25E240658CA785B7A811A8D3F7B4CA48CFA26A8A366BF2CD1F836B05FCB024BD36853081811D6CEA4216EBAD79DA1CFCB95EA4586B8A0CE356596A55FB1347
2405MAC = HMAC
2406Algorithm = SHA512
2407Input = "Sample message for keylen<blocklen"
2408Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2409Output = FD44C18BDA0BB0A6CE0E82B031BF2818F6539BD56EC00BDC10A8A2D730B3634DE2545D639B0F2CF710D0692C72A1896F1F211C2B922D1A96C392E07E7EA9FEDC
2410MAC = HMAC
2411Algorithm = SHA512
2412Input = "Sample message for keylen=blocklen"
2413Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2414Output = D93EC8D2DE1AD2A9957CB9B83F14E76AD6B5E0CCE285079A127D3B14BCCB7AA7286D4AC0D4CE64215F2BC9E6870B33D97438BE4AAA20CDA5C5A912B48B8E27F3
16cb8eb0
DSH
2415
2416# CMAC tests from FIPS module
2417
2418MAC = CMAC
2419Algorithm = AES-128-CBC
2420Key = 77A77FAF290C1FA30C683DF16BA7A77B
2421Input = 020683E1F0392F4CAC54318B6029259E9C553DBC4B6AD998E64D58E4E7DC2E13
2422Output = FBFEA41BF9740CB501F1292C21CEBB40
2423
2424MAC = CMAC
2425Algorithm = AES-192-CBC
2426Key = 7B32391369AA4CA97558095BE3C3EC862BD057CEF1E32D62
2427Input =
2428Output = E4D9340B03E67DEFD4969CC1ED3735E6
2429
2430MAC = CMAC
2431Algorithm = AES-256-CBC
2432Key = 0B122AC8F34ED1FE082A3625D157561454167AC145A10BBF77C6A70596D574F1
2433Input = 498B53FDEC87EDCBF07097DCCDE93A084BAD7501A224E388DF349CE18959FE8485F8AD1537F0D896EA73BEDC7214713F
2434Output = F62C46329B41085625669BAF51DEA66A
2435
2436MAC = CMAC
2437Algorithm = DES-EDE3-CBC
2438Key = 89BCD952A8C8AB371AF48AC7D07085D5EFF702E6D62CDC23
2439Input = FA620C1BBE97319E9A0CF0492121F7A20EB08A6A709DCBD00AAF38E4F99E754E
2440Output = 8F49A1B7D6AA2258
b9d4e97c
DSH
2441
2442# Public key algorithm tests
2443
2444# Private keys used for PKEY operations.
2445
2446# RSA 2048 bit key.
2447
2448PrivateKey = RSA-2048
2449
2450-----BEGIN PRIVATE KEY-----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2477-----END PRIVATE KEY-----
2478
80eab79d
DSH
2479# Corresponding public key
2480
2481PublicKey = RSA-2048-PUBLIC
2482
2483-----BEGIN PUBLIC KEY-----
2484MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
2485uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
2486y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
2487WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
2488gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
2489uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
2490TwIDAQAB
2491-----END PUBLIC KEY-----
2492
b9d4e97c
DSH
2493# EC P-256 key
2494
2495PrivateKey=P-256
2496
2497-----BEGIN PRIVATE KEY-----
2498MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQgiocvtiiTxNH/xbnw
2499+RdYBp+DUuCPoFpJ+NuSbLVyhyWhRANCAAQsFQ9CnOcPIWwlLPXgYs4fY5zV0WXH
2500+JQkBywnGX14szuSDpXNtmTpkNzwz+oNlOKo5q+dDlgFbmUxBJJbn+bJ
2501-----END PRIVATE KEY-----
2502
80eab79d
DSH
2503# EC public key for above
2504
2505PublicKey=P-256-PUBLIC
2506
2507-----BEGIN PUBLIC KEY-----
2508MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAELBUPQpznDyFsJSz14GLOH2Oc1dFl
2509x/iUJAcsJxl9eLM7kg6VzbZk6ZDc8M/qDZTiqOavnQ5YBW5lMQSSW5/myQ==
2510-----END PUBLIC KEY-----
2511
404cc933
DSH
2512# Additional EC key for ECDH
2513PrivateKey=P-256-Peer
995197ab
DSH
2514-----BEGIN PRIVATE KEY-----
2515MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQg/URzu1TDNwUFWZ3i
2516dLISAZpEY0vfJ2pLB7f+Xnjyl2OhRANCAAQgBuXhSgeKpz+4piXlYSVLvy0NT+wK
2517uZWUI3LqUUCV07wg+RLLMY8yNK9kjqcgZDs/cB+bet64nQq+dNnvtpxG
2518-----END PRIVATE KEY-----
404cc933
DSH
2519
2520PublicKey=P-256-Peer-PUBLIC
2521-----BEGIN PUBLIC KEY-----
2522MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEIAbl4UoHiqc/uKYl5WElS78tDU/s
2523CrmVlCNy6lFAldO8IPkSyzGPMjSvZI6nIGQ7P3Afm3reuJ0KvnTZ77acRg==
2524-----END PUBLIC KEY-----
2525
80eab79d
DSH
2526# DSA key
2527PrivateKey=DSA-1024
2528
2529-----BEGIN PRIVATE KEY-----
2530MIIBSwIBADCCASwGByqGSM44BAEwggEfAoGBAO0SwRpkAeM21qSM5ch4CLEHpFk4
253119R5ve1UUr421y3HEUURsrVpxYKvyx8aOBQC/akz95cYxNN3y1JnJJMxPklhdJrJ
2532f/WDYPxjMk8BqNJmeZtLuCVLKGwQomuo7ZkG955WRyLHYEdQ6uC7K2QTPKpW6psF
2533YFaDYjAjSEKk2MFxAhUAykDkKLZdhPWzwM8/qYaE31VmWz0CgYEApNVF8oFK41ez
2534Qci9XbSZJHyPB+3jML1YQkHxiiInaIz6GEFtjUbIUEYA/ovY+6ECNI1aIDHTd7CH
2535woS0mp33oQYs43nt29B6UwbtMmbzCOQ9vGGwWVho+JtHyyPWrDuLmkvLtoQPaxYt
25366PVa3gncr2v3njcVuH+EQ6DuFR93zksEFgIUbyv6pqH+UQurernJn/7sUm2U2i0=
2537-----END PRIVATE KEY-----
2538
2539PublicKey=DSA-1024-PUBLIC
2540
2541-----BEGIN PUBLIC KEY-----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2552-----END PUBLIC KEY-----
2553
b9d4e97c
DSH
2554# RSA tests
2555
2556Sign = RSA-2048
2557Ctrl = digest:SHA1
2558Input = "0123456789ABCDEF1234"
2559Output = c09d402423cbf233d26cae21f954547bc43fe80fd41360a0336cfdbe9aedad05bef6fd2eaee6cd60089a52482d4809a238149520df3bdde4cb9e23d9307b05c0a6f327052325a29adf2cc95b66523be7024e2a585c3d4db15dfbe146efe0ecdc0402e33fe5d40324ee96c5c3edd374a15cdc0f5d84aa243c0f07e188c6518fbfceae158a9943be398e31097da81b62074f626eff738be6160741d5a26957a482b3251fd85d8df78b98148459de10aa93305dbb4a5230aa1da291a9b0e481918f99b7638d72bb687f97661d304ae145d64a474437a4ef39d7b8059332ddeb07e92bf6e0e3acaf8afedc93795e4511737ec1e7aab6d5bc9466afc950c1c17b48ad
2560
2561Verify = RSA-2048
2562Ctrl = digest:SHA1
2563Input = "0123456789ABCDEF1234"
2564Output = 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
2565
f3205557
DB
2566VerifyRecover = RSA-2048
2567Ctrl = digest:SHA1
2568Input = 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
2569Output = "0123456789ABCDEF1234"
2570
2571# Leading zero in the signature
2572Verify = RSA-2048
2573Ctrl = digest:SHA1
2574Input = "0123456789ABCDEF1234"
2575Output = 00c09d402423cbf233d26cae21f954547bc43fe80fd41360a0336cfdbe9aedad05bef6fd2eaee6cd60089a52482d4809a238149520df3bdde4cb9e23d9307b05c0a6f327052325a29adf2cc95b66523be7024e2a585c3d4db15dfbe146efe0ecdc0402e33fe5d40324ee96c5c3edd374a15cdc0f5d84aa243c0f07e188c6518fbfceae158a9943be398e31097da81b62074f626eff738be6160741d5a26957a482b3251fd85d8df78b98148459de10aa93305dbb4a5230aa1da291a9b0e481918f99b7638d72bb687f97661d304ae145d64a474437a4ef39d7b8059332ddeb07e92bf6e0e3acaf8afedc93795e4511737ec1e7aab6d5bc9466afc950c1c17b48ad
2576Result = VERIFY_ERROR
2577
2578VerifyRecover = RSA-2048
2579Ctrl = digest:SHA1
2580Input = 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
2581Result = KEYOP_ERROR
2582
b9d4e97c
DSH
2583# Digest too long
2584Sign = RSA-2048
2585Ctrl = digest:SHA1
2586Input = "0123456789ABCDEF12345"
2587Output = 00
2588Result = KEYOP_ERROR
2589
2590# Digest too short
2591Sign = RSA-2048
2592Ctrl = digest:SHA1
2593Input = "0123456789ABCDEF12345"
2594Output = 00
2595Result = KEYOP_ERROR
2596
2597# Mismatched digest
2598Verify = RSA-2048
2599Ctrl = digest:SHA1
2600Input = "0123456789ABCDEF1233"
2601Output = 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
2602Result = VERIFY_ERROR
2603
2604# Corrupted signature
2605Verify = RSA-2048
2606Ctrl = digest:SHA1
2607Input = "0123456789ABCDEF1233"
2608Output = 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
2609Result = VERIFY_ERROR
2610
608a0264 2611# parameter is not NULL
f37879d0
DSH
2612Verify = RSA-2048
2613Ctrl = digest:sha1
2614Input = "0123456789ABCDEF1234"
2615Output = 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
608a0264 2616Result = VERIFY_ERROR
f37879d0
DSH
2617
2618# embedded digest too long
2619Verify = RSA-2048
2620Ctrl = digest:sha1
2621Input = "0123456789ABCDEF1234"
2622Output = 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
2623Result = VERIFY_ERROR
2624
f3205557
DB
2625VerifyRecover = RSA-2048
2626Ctrl = digest:sha1
2627Input = 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
2628Result = KEYOP_ERROR
2629
f37879d0
DSH
2630# embedded digest too short
2631Verify = RSA-2048
2632Ctrl = digest:sha1
2633Input = "0123456789ABCDEF1234"
2634Output = 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
2635Result = VERIFY_ERROR
2636
f3205557
DB
2637VerifyRecover = RSA-2048
2638Ctrl = digest:sha1
2639Input = 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
2640Result = KEYOP_ERROR
2641
f37879d0
DSH
2642# Garbage after DigestInfo
2643Verify = RSA-2048
2644Ctrl = digest:sha1
2645Input = "0123456789ABCDEF1234"
2646Output = 9ee34872d4271a7d8808af0a4052a145a6d6a8437d00da3ed14428c7f087cd39f4d43334c41af63e7fa1ba363fee7bcef401d9d36a662abbab55ce89a696e1be0dfa19a5d09ca617dd488787b6048baaefeb29bc8688b2fe3882de2b77c905b5a8b56cf9616041e5ec934ba6de863efe93acc4eef783fe7f72a00fa65d6093ed32bf98ce527e62ccb1d56317f4be18b7e0f55d7c36617d2d0678a306e3350956b662ac15df45215dd8f6b314babb9788e6c272fa461e4c9b512a11a4b92bc77c3a4c95c903fccb238794eca5c750477bf56ea6ee6a167367d881b485ae3889e7c489af8fdf38e0c0f2aed780831182e34abedd43c39281b290774bf35cc25274
2647Result = VERIFY_ERROR
2648
f3205557
DB
2649VerifyRecover = RSA-2048
2650Ctrl = digest:sha1
2651Input = 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
2652Result = KEYOP_ERROR
2653
f37879d0
DSH
2654# invalid tag for parameter
2655Verify = RSA-2048
2656Ctrl = digest:sha1
2657Input = "0123456789ABCDEF1234"
2658Output = 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
2659Result = VERIFY_ERROR
2660
f3205557
DB
2661VerifyRecover = RSA-2048
2662Ctrl = digest:sha1
2663Input = 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
2664Result = KEYOP_ERROR
2665
2666# MD5/SHA-1 combination
2667Verify = RSA-2048
2668Ctrl = digest:MD5-SHA1
2669Input = "0123456789ABCDEF0123456789ABCDEF0123"
2670Output = 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
2671
2672VerifyRecover = RSA-2048
2673Ctrl = digest:MD5-SHA1
2674Input = 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
2675Output = "0123456789ABCDEF0123456789ABCDEF0123"
2676
2677# MD5/SHA-1 combination, digest mismatch
2678Verify = RSA-2048
2679Ctrl = digest:MD5-SHA1
2680Input = "000000000000000000000000000000000000"
2681Output = 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
2682Result = VERIFY_ERROR
2683
2684# MD5/SHA-1 combination, wrong signature digest length
2685Verify = RSA-2048
2686Ctrl = digest:MD5-SHA1
2687Input = "0123456789ABCDEF0123456789ABCDEF0123"
2688Output = 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
2689Result = VERIFY_ERROR
2690
2691VerifyRecover = RSA-2048
2692Ctrl = digest:MD5-SHA1
2693Input = 6c13511f97ffb8137545fce551a43cf2b5b3dbdd5c3ceaaccd4620a6a373f3c38cc523d95bbdd810c852743b981bc4393c6b0cdfb0da5e77a8cc0108b05ff95e0f4dd7a0125b7390af1408dca6ddefac3b05b768de7b0c3df3c74e5f102f62743d67813beee1777036078da4cff5b29f49f01a6df3a2e709c37a83737108517687fe754d9ee908cb36c55e88f67c0b537108707347d16049f5dfac3d400ea367222d36627937a7f822f451c3d2c2dbc9e2202bffd3dc1b22213e17270a6b657619c6f44cbf66b077d548cfc9e1a114f8b853412470f2bf8d828f04d0d9f1aef260d216acb0911329fb5bdc48c2be3b198bf6f96e1c3fb116ad4430140d0640d4
2694Result = KEYOP_ERROR
2695
2696# MD5/SHA-1 combination, wrong input digest length
2697Verify = RSA-2048
2698Ctrl = digest:MD5-SHA1
2699Input = "0123456789ABCDEF0123456789ABCDEF012"
2700Output = 7b80e0d4d2a6b7f4b018ce164bc0be21a0604b1b05e91c6204372458b05a0e4dbf0b36b3f80dbf04b278ad1fcf7ff6d982d5ca5d98b13b68240d846d400b8db6675b1a5fcbe2256322c5f691378bc941785326030fa835d240e334e2a4d35b17c1149b59dbb6e6d53b44326ebfc371f754449d36bad3722c1878af1699bb0a00c28e37162f99aba550b7c333228a70c906e3701c519a460a14fac29ff164ca9413efd19b431b31a9ad2988662cdbda9cdcff85f294b4be2cf072caceb1d3f52642edafea2e1d1e495061f18b5b3a130d2242cec830e44d506590e5df69bb974879a35e6bdc1ad00e3e31b362f2f5cdeabd8a0dfddfdb66a7c43993a3e189b80d
2701Result = VERIFY_ERROR
2702
2703# MD5/SHA-1 combination, wrong input and signature digest length
2704Verify = RSA-2048
2705Ctrl = digest:MD5-SHA1
2706Input = "0123456789ABCDEF0123456789ABCDEF012"
2707Output = 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
2708Result = VERIFY_ERROR
2709
2710# DigestInfo-wrapped MDC-2 signature
2711Verify = RSA-2048
2712Ctrl = digest:MDC2
2713Input = "0123456789ABCDEF"
2714Output = 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
2715
2716VerifyRecover = RSA-2048
2717Ctrl = digest:MDC2
2718Input = 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
2719Output = "0123456789ABCDEF"
2720
2721# Legacy OCTET STRING MDC-2 signature
2722Verify = RSA-2048
2723Ctrl = digest:MDC2
2724Input = "0123456789ABCDEF"
2725Output = 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
2726
2727VerifyRecover = RSA-2048
2728Ctrl = digest:MDC2
2729Input = 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
2730Output = "0123456789ABCDEF"
2731
2732# Legacy OCTET STRING MDC-2 signature, digest mismatch
2733Verify = RSA-2048
2734Ctrl = digest:MDC2
2735Input = "0000000000000000"
2736Output = 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
2737Result = VERIFY_ERROR
2738
2739# Legacy OCTET STRING MDC-2 signature, wrong input digest length
2740Verify = RSA-2048
2741Ctrl = digest:MDC2
2742Input = "0123456789ABCDE"
2743Output = 6cde46bbfc6a3b772c3d884640709be9f2fb70fcf199c14eaff7811369ea99733f984a9c48cd372578fa37cedeef24c93286d6d64f438df051e625ab2e125a7d9974a76240873e43efc3acbcbdccc2ee63769cdbf983b334ccb982273315c222b3bbdc3e928ac8a141a7412f1f794cfcabcc069a2ae4975d7bb68bea145d789634c9e0b02d324b5efd599c9bf2b1d32d077aba59aa0ad4a82cbbb90eaa9214e4f57104cf049c4139e2ddecf6edf219cd986f4d79cf25128c58667562c9d22be0291430d6cc7dad977d56e08315fcec133ea95d8db550f89735b4d5f233eaff0c86fce2b99f3f508e920f882c31f3e13f8775a3c8fa585c4f4c69eca89f648b7e
2744Result = VERIFY_ERROR
2745
2746# Legacy OCTET STRING MDC-2 signature, wrong signature digest length
2747Verify = RSA-2048
2748Ctrl = digest:MDC2
2749Input = "0123456789ABCDEF"
2750Output = 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
2751Result = VERIFY_ERROR
2752
2753VerifyRecover = RSA-2048
2754Ctrl = digest:MDC2
2755Input = 08da512483ece70be57f28a75271612800ae30ffbadc62609bc88b80d497a1fc13c300fdfcab6dc80cf55373c10adcc249ae80479b87fa3e391a2cd4a74babd1c22a4976812d544dcd6729b161bbc48fd067cf635b05f9edaddaeb6f67f2117d6b54a23c5e6f08a246abfe0356a67d7f3929306515e6d9962f8ce205120ecdcd2d4e3783cd0b4a1f0196a1b13924d0d3649233312695c3c336ae04e0b1efddabcc878b57622db60f6f747a1124c38426dacf1425c92d304c2bb1052f987c1dd73e4cc4b20d23396d4f05f52f98cf5065c3fb7dc319425f1f6f1878b87f57afbd24fbff98909494581aadd04d80a639b85ce8684ea58409d8dbbbaacf256bb5c4
2756Result = KEYOP_ERROR
2757
2758# Legacy OCTET STRING MDC-2 signature, wrong input and signature digest length
2759Verify = RSA-2048
2760Ctrl = digest:MDC2
2761Input = "0123456789ABCDE"
2762Output = 08da512483ece70be57f28a75271612800ae30ffbadc62609bc88b80d497a1fc13c300fdfcab6dc80cf55373c10adcc249ae80479b87fa3e391a2cd4a74babd1c22a4976812d544dcd6729b161bbc48fd067cf635b05f9edaddaeb6f67f2117d6b54a23c5e6f08a246abfe0356a67d7f3929306515e6d9962f8ce205120ecdcd2d4e3783cd0b4a1f0196a1b13924d0d3649233312695c3c336ae04e0b1efddabcc878b57622db60f6f747a1124c38426dacf1425c92d304c2bb1052f987c1dd73e4cc4b20d23396d4f05f52f98cf5065c3fb7dc319425f1f6f1878b87f57afbd24fbff98909494581aadd04d80a639b85ce8684ea58409d8dbbbaacf256bb5c4
2763Result = VERIFY_ERROR
2764
80eab79d
DSH
2765# Verify using public key
2766
2767Verify = RSA-2048-PUBLIC
2768Ctrl = digest:SHA1
2769Input = "0123456789ABCDEF1234"
2770Output = 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
2771
13ab8708
DSH
2772# RSA decrypt
2773
2774Decrypt = RSA-2048
2775Input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
2776Output = "Hello World"
2777
2778# Corrupted ciphertext
2779Decrypt = RSA-2048
2780Input = 550AF55A2904E7B9762352F8FB7FA235A9CB053AACB2D5FCB8CA48453CB2EE3619746C701ABF2D4CC67003471A187900B05AA812BD25ED05C675DFC8C97A24A7BF49BD6214992CAD766D05A9A2B57B74F26A737E0237B8B76C45F1F226A836D7CFBC75BA999BDBE48DBC09227AA46C88F21DCCBA7840141AD5A5D71FD122E6BD6AC3E564780DFE623FC1CA9B995A6037BF0BBD43B205A84AC5444F34202C05CE9113087176432476576DE6FFFF9A52EA57C08BE3EC2F49676CB8E12F762AC71FA3C321E00AC988910C85FF52F93825666CE0D40FFAA0592078919D4493F46D95CCF76364C6D57760DD0B64805F9AFC76A2365A5575CA301D5103F0EA76CB9A79
2781Output = "Hello World"
2782Result = KEYOP_ERROR
2783
2784# OAEP padding
2785Decrypt = RSA-2048
2786Ctrl = rsa_padding_mode:oaep
2787Input = 458708DFBD42A1297CE7A9C86C7087AB80B1754810929B89C5107CA55368587686986FCE94D86CC1595B3FB736223A656EC0F34D18BA1CC5665593610F56C58E26B272D584F3D983A5C91085700755AEBD921FB280BBA3EDA7046EC07B43E7298E52D59EDC92BE4639A8CE08B2F85976ECF6D98CC469EEB9D5D8E2A32EA8A6626EDAFE1038B3DF455668A9F3C77CAD8B92FB872E00058C3D2A7EDE1A1F03FC5622084AE04D9D24F6BF0995C58D35B93B699B9763595E123F2AB0863CC9229EB290E2EDE7715C7A8F39E0B9A3E2E1B56EBB62F1CBFBB5986FB212EBD785B83D01D968B11D1756C7337F70C1F1A63BFF03608E24F3A2FD44E67F832A8701C5D5AF
2788Output = "Hello World"
2789
2790# OAEP padding, corrupted ciphertext
2791Decrypt = RSA-2048
2792Ctrl = rsa_padding_mode:oaep
2793Input = 458708DFBD42A1297CE7A9C86C7087AB80B1754810929B89C5107CA55368587686986FCE94D86CC1595B3FB736223A656EC0F34D18BA1CC5665593610F56C58E26B272D584F3D983A5C91085700755AEBD921FB280BBA3EDA7046EC07B43E7298E52D59EDC92BE4639A8CE08B2F85976ECF6D98CC469EEB9D5D8E2A32EA8A6626EDAFE1038B3DF455668A9F3C77CAD8B92FB872E00058C3D2A7EDE1A1F03FC5622084AE04D9D24F6BF0995C58D35B93B699B9763595E123F2AB0863CC9229EB290E2EDE7715C7A8F39E0B9A3E2E1B56EBB62F1CBFBB5986FB212EBD785B83D01D968B11D1756C7337F70C1F1A63BFF03608E24F3A2FD44E67F832A8701C5D5AC
2794Output = "Hello World"
2795Result = KEYOP_ERROR
2796
cce65266
DSH
2797# Illegal RSA key derivation
2798Derive = RSA-2048
2799Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
2800Function = EVP_PKEY_derive_init
2801Reason = operation not supported for this keytype
cce65266
DSH
2802
2803# Invalid ctrl
2804Sign = RSA-2048
2805Ctrl = rsa_mgf1_md:sha1
2806Result = PKEY_CTRL_INVALID
99f2f1dc
DSH
2807Function = pkey_rsa_ctrl
2808Reason = invalid mgf1 md
cce65266 2809
b9d4e97c
DSH
2810# EC tests
2811
2812Verify = P-256
2813Ctrl = digest:SHA1
2814Input = "0123456789ABCDEF1234"
2815Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2816
2817# Digest too long
2818Verify = P-256
2819Ctrl = digest:SHA1
2820Input = "0123456789ABCDEF12345"
2821Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2822Result = VERIFY_ERROR
2823
2824# Digest too short
2825Verify = P-256
2826Ctrl = digest:SHA1
2827Input = "0123456789ABCDEF123"
2828Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2829Result = VERIFY_ERROR
2830
2831# Digest invalid
2832Verify = P-256
2833Ctrl = digest:SHA1
2834Input = "0123456789ABCDEF1235"
2835Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2836Result = VERIFY_ERROR
2837
2838# Invalid signature
2839Verify = P-256
2840Ctrl = digest:SHA1
2841Input = "0123456789ABCDEF1234"
2842Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec7
2843Result = VERIFY_ERROR
2844
2845# Garbage after signature
2846Verify = P-256
2847Ctrl = digest:SHA1
2848Input = "0123456789ABCDEF1234"
2849Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec800
2850Result = VERIFY_ERROR
2851
2852# BER signature
2853Verify = P-256
2854Ctrl = digest:SHA1
2855Input = "0123456789ABCDEF1234"
2856Output = 3080022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec80000
2857Result = VERIFY_ERROR
3b53e18a 2858
80eab79d
DSH
2859Verify = P-256-PUBLIC
2860Ctrl = digest:SHA1
2861Input = "0123456789ABCDEF1234"
2862Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2863
2864# DSA tests
2865Verify = DSA-1024
2866Ctrl = digest:SHA1
2867Input = "0123456789ABCDEF1234"
2868Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2869
2870Verify = DSA-1024-PUBLIC
2871Ctrl = digest:SHA1
2872Input = "0123456789ABCDEF1234"
2873Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2874
2875# Modified signature
2876Verify = DSA-1024-PUBLIC
2877Ctrl = digest:SHA1
2878Input = "0123456789ABCDEF1234"
2879Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d88
2880Result = VERIFY_ERROR
2881
2882# Digest too short
2883Verify = DSA-1024-PUBLIC
2884Ctrl = digest:SHA1
2885Input = "0123456789ABCDEF123"
2886Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2887Result = VERIFY_ERROR
2888
2889# Digest too long
2890Verify = DSA-1024-PUBLIC
2891Ctrl = digest:SHA1
2892Input = "0123456789ABCDEF12345"
2893Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2894Result = VERIFY_ERROR
2895
2896# Garbage after signature
2897Verify = DSA-1024-PUBLIC
2898Input = "0123456789ABCDEF1234"
2899Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d8700
2900Result = VERIFY_ERROR
2901
2902# Invalid tag
2903Verify = DSA-1024-PUBLIC
2904Ctrl = digest:SHA1
2905Input = "0123456789ABCDEF1234"
2906Output = 312d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2907Result = VERIFY_ERROR
2908
2909# BER signature
2910Verify = DSA-1024-PUBLIC
2911Ctrl = digest:SHA1
2912Input = "0123456789ABCDEF1234"
2913Output = 3080021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d870000
2914Result = VERIFY_ERROR
2915
2d7bbd6c
DSH
2916# RSA PSS padding tests.
2917
2918# Zero salt length makes output deterministic
2919Sign = RSA-2048
2920Ctrl = rsa_padding_mode:pss
2921Ctrl = rsa_pss_saltlen:0
2922Ctrl = digest:sha256
2923Input="0123456789ABCDEF0123456789ABCDEF"
2924Output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
2925
2926# Verify of above signature
2927Verify = RSA-2048-PUBLIC
2928Ctrl = rsa_padding_mode:pss
2929Ctrl = rsa_pss_saltlen:0
2930Ctrl = digest:sha256
2931Input="0123456789ABCDEF0123456789ABCDEF"
2932Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
2933
2934# Digest too short
2935Verify = RSA-2048-PUBLIC
2936Ctrl = rsa_padding_mode:pss
2937Ctrl = rsa_pss_saltlen:0
2938Ctrl = digest:sha256
2939Input="0123456789ABCDEF0123456789ABCDE"
2940Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
2941Result = VERIFY_ERROR
2942
2943# Digest too long
2944Verify = RSA-2048-PUBLIC
2945Ctrl = rsa_padding_mode:pss
2946Ctrl = rsa_pss_saltlen:0
2947Ctrl = digest:sha256
2948Input="0123456789ABCDEF0123456789ABCDEF0"
2949Output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
2950Result = VERIFY_ERROR
2951
2952# Wrong salt length
2953Verify = RSA-2048
2954Ctrl = rsa_padding_mode:pss
2955Ctrl = rsa_pss_saltlen:2
2956Ctrl = digest:sha256
2957Input="0123456789ABCDEF0123456789ABCDEF"
2958Output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
2959Result = VERIFY_ERROR
2960
2961# Wrong MGF1 digest
2962Verify = RSA-2048
2963Ctrl = rsa_padding_mode:pss
2964Ctrl = rsa_pss_saltlen:0
2965Ctrl = digest:sha256
2966Ctrl = rsa_mgf1_md:sha1
2967Input="0123456789ABCDEF0123456789ABCDEF"
2968Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
2969Result = VERIFY_ERROR
2970
1b214685
DSH
2971# RSA PSS key tests
2972
2973# PSS only key, no parameter restrictions
2974PrivateKey = RSA-PSS
2975-----BEGIN PRIVATE KEY-----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3002-----END PRIVATE KEY-----
3003
3004# PSS public key default parameters
3005PublicKey = RSA-PSS-DEFAULT
3006-----BEGIN PUBLIC KEY-----
3007MIIBIjANBgkqhkiG9w0BAQowAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
3008uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
3009y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
3010WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
3011gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
3012uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
3013TwIDAQAB
3014-----END PUBLIC KEY-----
23d674e8
DSH
3015# Key with invalid negative minimum salt length
3016PublicKey = RSA-PSS-BAD
3017-----BEGIN PUBLIC KEY-----
3018MIIBJzASBgkqhkiG9w0BAQowBaIDAgH/A4IBDwAwggEKAoIBAQDNAIHqeyrh6gbV
3019n3xz2f+5SglhXC5Lp8Y2zvCN01M+wxhVJbAVx2m5mnfWclv5w1Mqm25fZifV+4UW
3020B2jT3anL01l0URcX3D0wnS/EfuQfl+Mq23+d2GShxHZ6Zm7NcbwarPXnUX9LOFlP
30216psF5C1a2pkSAIAT5FMWpNm7jtCGuI0odYusr5ItRqhotIXSOcm66w4rZFknEPQr
3022LR6gpLSALAvsqzKPimiwBzvbVG/uqYCdKEmRKzkMFTK8finHZY+BdfrkbzQzL/h7
3023yrPkBkm5hXeGnaDqcYNT8HInVIhpE2SHYNEivmduD8SD3SD/wxvalqMZZsmqLnWt
3024A95H4cRPAgMBAAE=
3025-----END PUBLIC KEY-----
1b214685 3026
3c441c2e
DSH
3027# Key with minimum salt length exceeding maximum permitted value
3028PublicKey = RSA-PSS-BAD2
3029-----BEGIN PUBLIC KEY-----
3030MIIBKDATBgkqhkiG9w0BAQowBqIEAgIBAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG
30311Z98c9n/uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuF
3032Fgdo092py9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZ
3033T+qbBeQtWtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0
3034Ky0eoKS0gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4
3035e8qz5AZJuYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51
3036rQPeR+HETwIDAQAB
3037-----END PUBLIC KEY-----
3038
1b214685
DSH
3039# Verify using default parameters
3040Verify = RSA-PSS-DEFAULT
3041Input="0123456789ABCDEF0123"
3042Output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
3043
3044# Verify using default parameters, explicitly setting parameters
3045Verify = RSA-PSS-DEFAULT
3046Ctrl = rsa_padding_mode:pss
3047Ctrl = rsa_pss_saltlen:20
3048Ctrl = digest:sha1
3049Input="0123456789ABCDEF0123"
3050Output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
3051
3c441c2e
DSH
3052# Verify using default parameters, explicitly setting parameters -1 salt length
3053Verify = RSA-PSS-DEFAULT
3054Ctrl = rsa_padding_mode:pss
3055Ctrl = rsa_pss_saltlen:-1
3056Ctrl = digest:sha1
3057Input="0123456789ABCDEF0123"
3058Output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
3059
1b214685
DSH
3060# Verify using salt length larger than minimum
3061Verify = RSA-PSS-DEFAULT
3062Ctrl = rsa_pss_saltlen:30
3063Input="0123456789ABCDEF0123"
3064Output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
3065
3066# Attempt to change salt length below minimum
3067Verify = RSA-PSS-DEFAULT
3068Ctrl = rsa_pss_saltlen:0
3069Result = PKEY_CTRL_ERROR
3070
3071# Attempt to change padding mode
3072Verify = RSA-PSS-DEFAULT
3073Ctrl = rsa_padding_mode:pkcs1
3074Result = PKEY_CTRL_INVALID
3075
3076# Attempt to change digest
3077Verify = RSA-PSS-DEFAULT
3078Ctrl = digest:sha256
3079Result = PKEY_CTRL_ERROR
3080
3081# Illegal decrypt
1b214685
DSH
3082Decrypt = RSA-PSS
3083Result = KEYOP_INIT_ERROR
3084Function = EVP_PKEY_decrypt_init
3085Reason = operation not supported for this keytype
3086
23d674e8
DSH
3087# Invalid key: rejected when we try to init
3088Verify = RSA-PSS-BAD
3089Result = KEYOP_INIT_ERROR
3090Function = rsa_pss_get_param
3091Reason = invalid salt length
3092
3c441c2e
DSH
3093# Invalid key: rejected when we try to init
3094Verify = RSA-PSS-BAD2
3095Result = KEYOP_INIT_ERROR
3096Function = pkey_pss_init
3097Reason = invalid salt length
3098
3b53e18a
DSH
3099# scrypt tests from draft-josefsson-scrypt-kdf-03
3100PBE = scrypt
3101Password = ""
3102Salt = ""
3103N = 16
3104r = 1
3105p = 1
3106Key = 77d6576238657b203b19ca42c18a0497f16b4844e3074ae8dfdffa3fede21442fcd0069ded0948f8326a753a0fc81f17e8d3e0fb2e0d3628cf35e20c38d18906
3107
3108PBE = scrypt
3109Password = "password"
3110Salt = "NaCl"
3111N = 1024
3112r = 8
3113p = 16
3114Key = fdbabe1c9d3472007856e7190d01e9fe7c6ad7cbc8237830e77376634b3731622eaf30d92e22a3886ff109279d9830dac727afb94a83ee6d8360cbdfa2cc0640
3115
3116PBE = scrypt
3117Password = "pleaseletmein"
3118Salt = "SodiumChloride"
3119N = 16384
3120r = 8
3121p = 1
3122Key = 7023bdcb3afd7348461c06cd81fd38ebfda8fbba904f8e3ea9b543f6545da1f2d5432955613f0fcf62d49705242a9af9e61e85dc0d651e40dfcf017b45575887
3123
941fbf71 3124# NB: this test requires more than 1GB of memory to run so it will hit the
3b53e18a
DSH
3125# scrypt memory limit and return an error. To run this test without error
3126# uncomment out the "maxmem" line and comment out the "Result"
3127# line
3128PBE = scrypt
3129Password = "pleaseletmein"
3130Salt = "SodiumChloride"
3131N = 1048576
3132r = 8
3133p = 1
3134Key = 2101cb9b6a511aaeaddbbe09cf70f881ec568d574a2ffd4dabe5ee9820adaa478e56fd8f4ba5d09ffa1c6d927c40f4c337304049e8a952fbcbf45c6fa77a41a4
3135#maxmem = 10000000000
3136Result = SCRYPT_ERROR
351fe214
DSH
3137
3138# PKCS#12 tests
3139
3140PBE = pkcs12
3141id = 1
3142iter = 1
3143MD = SHA1
3144Password = 0073006D006500670000
3145Salt = 0A58CF64530D823F
3146Key = 8AAAE6297B6CB04642AB5B077851284EB7128F1A2A7FBCA3
3147
3148PBE = pkcs12
3149id = 2
3150iter = 1
3151MD = SHA1
3152Password = 0073006D006500670000
3153Salt = 0A58CF64530D823F
3154Key = 79993DFE048D3B76
3155
3156PBE = pkcs12
3157id = 3
3158iter 1
3159MD = SHA1
3160Password = 0073006D006500670000
3161Salt = 3D83C0E4546AC140
3162Key = 8D967D88F6CAA9D714800AB3D48051D63F73A312
3163
3164PBE = pkcs12
3165id = 1
3166iter = 1000
3167MD = SHA1
3168Password = 007100750065006500670000
3169Salt = 1682C0FC5B3F7EC5
3170Key = 483DD6E919D7DE2E8E648BA8F862F3FBFBDC2BCB2C02957F
3171
3172PBE = pkcs12
3173id = 2
3174iter = 1000
3175MD = SHA1
3176Password = 007100750065006500670000
3177Salt = 1682C0FC5B3F7EC5
3178Key = 9D461D1B00355C50
3179
3180PBE = pkcs12
3181id = 3
3182iter = 1000
3183MD = SHA1
3184Password = 007100750065006500670000
3185Salt = 263216FCC2FAB31C
3186Key = 5EC4C7A80DF652294C3925B6489A7AB857C83476
3187
3188# PBKDF2 tests from p5_crpt2_test.c
3189PBE = pbkdf2
3190Password = "password"
3191Salt = "salt"
3192iter = 1
3193MD = sha1
3194Key = 0c60c80f961f0e71f3a9b524af6012062fe037a6
3195
3196PBE = pbkdf2
3197Password = "password"
3198Salt = "salt"
3199iter = 1
3200MD = sha256
3201Key = 120fb6cffcf8b32c43e7225256c4f837a86548c92ccc35480805987cb70be17b
3202
3203PBE = pbkdf2
3204Password = "password"
3205Salt = "salt"
3206iter = 1
3207MD = sha512
3208Key = 867f70cf1ade02cff3752599a3a53dc4af34c7a669815ae5d513554e1c8cf252c02d470a285a0501bad999bfe943c08f050235d7d68b1da55e63f73b60a57fce
3209
3210PBE = pbkdf2
3211Password = "password"
3212Salt = "salt"
3213iter = 2
3214MD = sha1
3215Key = ea6c014dc72d6f8ccd1ed92ace1d41f0d8de8957
3216
3217PBE = pbkdf2
3218Password = "password"
3219Salt = "salt"
3220iter = 2
3221MD = sha256
3222Key = ae4d0c95af6b46d32d0adff928f06dd02a303f8ef3c251dfd6e2d85a95474c43
3223
3224PBE = pbkdf2
3225Password = "password"
3226Salt = "salt"
3227iter = 2
3228MD = sha512
3229Key = e1d9c16aa681708a45f5c7c4e215ceb66e011a2e9f0040713f18aefdb866d53cf76cab2868a39b9f7840edce4fef5a82be67335c77a6068e04112754f27ccf4e
3230
3231PBE = pbkdf2
3232Password = "password"
3233Salt = "salt"
3234iter = 4096
3235MD = sha1
3236Key = 4b007901b765489abead49d926f721d065a429c1
3237
3238PBE = pbkdf2
3239Password = "password"
3240Salt = "salt"
3241iter = 4096
3242MD = sha256
3243Key = c5e478d59288c841aa530db6845c4c8d962893a001ce4e11a4963873aa98134a
3244
3245PBE = pbkdf2
3246Password = "password"
3247Salt = "salt"
3248iter = 4096
3249MD = sha512
3250Key = d197b1b33db0143e018b12f3d1d1479e6cdebdcc97c5c0f87f6902e072f457b5143f30602641b3d55cd335988cb36b84376060ecd532e039b742a239434af2d5
3251
3252PBE = pbkdf2
3253Password = "passwordPASSWORDpassword"
3254Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3255iter = 4096
3256MD = sha1
3257Key = 3d2eec4fe41c849b80c8d83662c0e44a8b291a964cf2f07038
3258
3259PBE = pbkdf2
3260Password = "passwordPASSWORDpassword"
3261Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3262iter = 4096
3263MD = sha256
3264Key = 348c89dbcbd32b2f32d814b8116e84cf2b17347ebc1800181c4e2a1fb8dd53e1c635518c7dac47e9
3265
3266PBE = pbkdf2
3267Password = "passwordPASSWORDpassword"
3268Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3269iter = 4096
3270MD = sha512
3271Key = 8c0511f4c6e597c6ac6315d8f0362e225f3c501495ba23b868c005174dc4ee71115b59f9e60cd9532fa33e0f75aefe30225c583a186cd82bd4daea9724a3d3b8
3272
3273PBE = pbkdf2
3274Password = 7061737300776f7264
3275Salt = 7361006c74
3276iter = 4096
3277MD = sha1
3278Key = 56fa6aa75548099dcc37d7f03425e0c3
3279
3280PBE = pbkdf2
3281Password = 7061737300776f7264
3282Salt = 7361006c74
3283iter = 4096
3284MD = sha256
3285Key = 89b69d0516f829893c696226650a8687
3286
3287PBE = pbkdf2
3288Password = 7061737300776f7264
3289Salt = 7361006c74
3290iter = 4096
3291MD = sha512
3292Key = 9d9e9c4cd21fe4be24d5b8244c759665
3cdd1e94
EK
3293
3294# Base64 tests
3295
3296Encoding = canonical
3297Input = ""
3298Output = ""
3299
3300Encoding = canonical
3301Input = "h"
3302Output = "aA==\n"
3303
3304Encoding = canonical
3305Input = "hello"
3306Output = "aGVsbG8=\n"
3307
3308Encoding = canonical
3309Input = "hello world!"
3310Output = "aGVsbG8gd29ybGQh\n"
3311
3312Encoding = canonical
3313Input = 00010203040506070809a0b0c0d0e0f000
3314Output = "AAECAwQFBgcICaCwwNDg8AA=\n"
3315
3316# Missing padding
3317Encoding = invalid
3318Output = "aGVsbG8"
3319
3320Encoding = invalid
3321Output = "aGVsbG8\n"
3322
3323# Tolerate missing newline
3324Encoding = valid
3325Input = "hello"
3326Output = "aGVsbG8="
3327
3328# Don't tolerate extra trailing '='
3329Encoding = invalid
3330Input = "hello"
3331Output = "aGVsbG8==\n"
3332
3333Encoding = invalid
3334Output = "aGVsbG8===\n"
3335
3336# Don't tolerate data after '='
3337Encoding = invalid
3338Output = "aGV=sbG8=\n"
3339
3340# Newlines are ignored
3341Encoding = valid
3342Input = "hello"
3343Output = "aGV\nsbG8=\n"
3344
3345Encoding = canonical
3346Input = "hello"
3347Output = 614756736247383d0a
3348
3349# Invalid characters
3350Encoding = invalid
3351Output = 614756736247383d0a00
3352
3353Encoding = invalid
3354Output = 61475600736247383d0a
3355
3356Encoding = invalid
3357Output = 61475601736247383d0a
3358
b785504a
EK
3359Encoding = invalid
3360Output = 61475680736247383d0a
3361
3362Encoding = invalid
3363Output = e14756736247383d0a
3364
3cdd1e94
EK
3365Encoding = canonical
3366Input = "OpenSSLOpenSSL\n"
3367Output = "T3BlblNTTE9wZW5TU0wK\n"
3368
3369Encoding = valid
3370Input = "OpenSSLOpenSSL\n"
3371Output = "T3BlblNTTE9wZW5TU0wK"
3372
3373# Truncate 1-3 chars
3374Encoding = invalid
3375Output = "T3BlblNTTE9wZW5TU0w"
3376
3377Encoding = invalid
3378Output = "T3BlblNTTE9wZW5TU0"
3379
3380Encoding = invalid
3381Output = "T3BlblNTTE9wZW5TU"
3382
3383Encoding = invalid
3384Output = "T3BlblNTTE9wZW5TU0wK===="
3385
3386Encoding = invalid
3387Output = "T3BlblNTTE9wZW5TU0wK============================================\n"
3388
3389Encoding = invalid
3390Output = "YQ==YQ==YQ==\n"
3391
3392Encoding = invalid
3393Output = "A"
3394
3395Encoding = invalid
3396Output = "A\n"
3397
3398Encoding = invalid
3399Output = "A="
3400
3401Encoding = invalid
3402Output = "A==\n"
3403
3404Encoding = invalid
3405Output = "A===\n"
3406
3407Encoding = invalid
3408Output = "A====\n"
3409
3410Encoding = valid
3411Input = "OpenSSLOpenSSL\n"
3412Output = "T3BlblNTTE9wZW5TU0wK\n\n"
3413
3414Encoding = valid
3415Input = "OpenSSLOpenSSL\n"
3416Output = "T3BlblNTTE\n9wZW5TU0wK"
3417
3418# CVE 2015-0292
3419Encoding = invalid
3420Output = "ZW5jb2RlIG1lCg==================================================================\n"
3421
3422Encoding = canonical
3423Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3424Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3425
3426Encoding = valid
3427Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3428Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA\n==\n"
3429
3430Encoding = valid
3431Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3432Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA=\n=\n"
3433
3434Encoding = invalid
3435Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA====\n"
3436
3437# Multiline output without padding
3438Encoding = canonical
3439Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3440Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4\n"
3441
3442# Multiline output with padding
3443Encoding = canonical
3444Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3445Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4eHh4eA==\n"
3446
3447# Multiline output with line break in the middle of a b64 block is accepted
3448Encoding = valid
3449Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3450Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh\n4eHh4eHh4eHh4eHh4eHh4eA==\n"
3451
3452# Long lines are accepted
3453Encoding = valid
3454Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3455Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3456
3457# Multiline input with data after '='.
3458Encoding = invalid
3459Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\neHh4eHh4eHh4eHh4eHh4eHh4\n"
3460
3461Encoding = invalid
3462Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neA==eHh4eHh4eHh4eHh4eHh4\n"
3463
3464# B64_EOF ('-') terminates input and trailing bytes are ignored
3465Encoding = valid
3466Input = "OpenSSLOpenSSL\n"
3467Output = "T3BlblNTTE9wZW5TU0wK\n-abcd"
3468
3469Encoding = valid
3470Input = "OpenSSLOpenSSL\n"
3471Output = "T3BlblNTTE9wZW5TU0wK-abcd"
bd3385d8
AP
3472
3473Cipher = chacha20
3474Key = 0000000000000000000000000000000000000000000000000000000000000000
3475IV = 00000000000000000000000000000000
3476Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3477Ciphertext = 76b8e0ada0f13d90405d6ae55386bd28bdd219b8a08ded1aa836efcc8b770dc7da41597c5157488d7724e03fb8d84a376a43b8f41518a11cc387b669b2ee6586
3478
3479Cipher = chacha20
3480Key = 0000000000000000000000000000000000000000000000000000000000000001
3481IV = 00000000000000000000000000000000
3482Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3483Ciphertext = 4540f05a9f1fb296d7736e7b208e3c96eb4fe1834688d2604f450952ed432d41bbe2a0b6ea7566d2a5d1e7e20d42af2c53d792b1c43fea817e9ad275ae546963
3484
3485Cipher = chacha20
3486Key = 0000000000000000000000000000000000000000000000000000000000000000
3487IV = 00000000000000000000000000000001
3488Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3489Ciphertext = de9cba7bf3d69ef5e786dc63973f653a0b49e015adbff7134fcb7df137821031e85a050278a7084527214f73efc7fa5b5277062eb7a0433e445f41e31afab757
3490
3491Cipher = chacha20
3492Key = 0000000000000000000000000000000000000000000000000000000000000000
3493IV = 00000000000000000100000000000000
3494Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3495Ciphertext = ef3fdfd6c61578fbf5cf35bd3dd33b8009631634d21e42ac33960bd138e50d32111e4caf237ee53ca8ad6426194a88545ddc497a0b466e7d6bbdb0041b2f586b
3496
3497Cipher = chacha20
3498Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3499IV = 00000000000000000001020304050607
3500Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3501Ciphertext = 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
3502
3503Cipher = chacha20
3504Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3505IV = 00000000000000000001020304050607
3506Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3507Ciphertext = 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
3508
3509Cipher = chacha20
3510Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3511IV = 00000000000000000001020304050607
3512Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3513Ciphertext = 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
3514
a98c648e
AP
3515Cipher = chacha20
3516Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3517IV = 00000000000000000001020304050607
3518Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3519Ciphertext = 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
3520
bd3385d8
AP
3521Cipher = chacha20
3522Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3523IV = 00000000000000000001020304050607
3524Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3525Ciphertext = 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
3526
a98c648e
AP
3527Cipher = chacha20
3528Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3529IV = 00000000000000000001020304050607
3530Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3531Ciphertext = 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
3532
3533Cipher = chacha20
3534Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3535IV = 00000000000000000001020304050607
3536Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3537Ciphertext = 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
3538
3539Cipher = chacha20
3540Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3541IV = 00000000000000000001020304050607
3542Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3543Ciphertext = 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
3544
3545Cipher = chacha20
3546Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3547IV = 00000000000000000001020304050607
3548Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3549Ciphertext = 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
3550
3551Cipher = chacha20
3552Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3553IV = 00000000000000000001020304050607
3554Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3555Ciphertext = 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
3556
3557Cipher = chacha20
3558Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3559IV = 00000000000000000001020304050607
3560Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3561Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb3ab78fab78c94213668bbbd394c5de93b853178addd6b97f9fa1ec3e56c00c9ddff0a44a204241175a4cab0f961ba53ede9bdf960b94f9829b1f3414726429b362c5b538e391520f489b7ed8d20ae3fd49e9e259e44397514d618c96c4846be3c680bdc11c71dcbbe29ccf80d62a0938fa549391e6ea57ecbe2606790ec15d2224ae307c144226b7c4e8c2f97d2a1d67852d29beba110edd445197012062a393a9c92803ad3b4f31d7bc6033ccf7932cfed3f019044d25905916777286f82f9a4cc1ffe430ffd1dcfc27deed327b9f9630d2fa969fb6f0603cd19dd9a9519e673bcfcd9014125291a44669ef7285e74ed3729b677f801c3cdf058c50963168b496043716c7307cd9e0cdd137fccb0f05b47cdbb95c5f54831622c3652a32b2531fe326bcd6e2bbf56a194fa196fbd1a54952110f51c73433865f7664b836685e3664b3d8444aF89A242805E18C975F1146324996FDE17007CF3E6E8F4E764022533EDBFE07D4733E48BB372D75B0EF48EC983EB78532161CC529E5ABB89837DFCCA6261DBB37C7C5E6A87478BF41EE85A518C0F4EFA9BDE828C5A71B8E46597B634AFD204D3C501334239C3414285ED72D3A9169EABBD4DC25D52BB7516D3BA712D75AD8C0AE5D493C19E38A77939E7A058D713E9CCCCA58045F436B434B1C80D365472406E392951987DB6905C80D431DA18451135BE7E82BCAB358CB3971E61405B2FF17980D6E7E67E861E28201C1EE30B441040FD06878D65042C95582A4318207BFC700BE0CE32889AEC2FFE5085E8967910D879FA0E8C0FF85FDC510B9FF2FBF87CFCB29577D68099E04FFA05F752A73D377C70D3A8BC2DA80E6E780EC057182C33AD1DE387252258A1E18E6FAD910327CE7F42FD1E1E0515F9586E2F2EFCB9F472B1DBDBAC354A4162151E9D92C79FB08BB4DDC56F19448C0175A46E2E6C491FEC71419AA43A349BEA768A92C75DE68FD9591E68067F3197094D3FB87ED81785EA075E4B65E3E4C78F81DA9B751C5EFE024152301C48E63245B556C4C67AFF857E5EA15A908D83A1D9704F8E55E7352B20B694BF9970298E6B5AAD33EA2155D105D4E
3562
3563Cipher = chacha20
3564Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3565IV = 00000000000000000001020304050607
3566Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3567Ciphertext = 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
3568
bd3385d8
AP
3569# RFC7539
3570Cipher = chacha20-poly1305
3571Key = 808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
3572IV = 070000004041424344454647
3573AAD = 50515253c0c1c2c3c4c5c6c7
3574Tag = 1ae10b594f09e26a7e902ecbd0600691
3575Plaintext = 4c616469657320616e642047656e746c656d656e206f662074686520636c617373206f66202739393a204966204920636f756c64206f6666657220796f75206f6e6c79206f6e652074697020666f7220746865206675747572652c2073756e73637265656e20776f756c642062652069742e
3576Ciphertext = d31a8d34648e60db7b86afbc53ef7ec2a4aded51296e08fea9e2b5a736ee62d63dbea45e8ca9671282fafb69da92728b1a71de0a9e060b2905d6a5b67ecd3b3692ddbd7f2d778b8c9803aee328091b58fab324e4fad675945585808b4831d7bc3ff4def08e4b7a9de576d26586cec64b6116
3577
3578Cipher = chacha20-poly1305
3579Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3580IV = 000000000102030405060708
3581AAD = f33388860000000000004e91
3582Tag = eead9d67890cbb22392336fea1851f38
3583Plaintext = 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
3584Ciphertext = 64a0861575861af460f062c79be643bd5e805cfd345cf389f108670ac76c8cb24c6cfc18755d43eea09ee94e382d26b0bdb7b73c321b0100d4f03b7f355894cf332f830e710b97ce98c8a84abd0b948114ad176e008d33bd60f982b1ff37c8559797a06ef4f0ef61c186324e2b3506383606907b6a7c02b0f9f6157b53c867e4b9166c767b804d46a59b5216cde7a4e99040c5a40433225ee282a1b0a06c523eaf4534d7f83fa1155b0047718cbc546a0d072b04b3564eea1b422273f548271a0bb2316053fa76991955ebd63159434ecebb4e466dae5a1073a6727627097a1049e617d91d361094fa68f0ff77987130305beaba2eda04df997b714d6c6f2c29a6ad5cb4022b02709b
53a3a545 3585
70d8b304
AP
3586Cipher = chacha20-poly1305
3587Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3588IV = 000000000102030405060708
3589AAD = f33388860000000000004e91
3590Tag = eead9d67890cbb22392336fea1851f39
3591Plaintext = 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
3592Ciphertext = 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
3593Operation = DECRYPT
3594Result = CIPHERFINAL_ERROR
3595
abb8c44f
AP
3596# self-generated vectors
3597Cipher = chacha20-poly1305
3598Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3599IV = 000000000102030405060708
3600AAD = f33388860000000000004e91
3601Tag = d96119a40cd17f2527306866a3ef0413
3602Plaintext = 496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d4472616674732061732072
3603Ciphertext = 64a0861575861af460f062c79be643bd5e805cfd345cf389f108670ac76c8cb24c6cfc18755d43eea09ee94e382d26b0bdb7b73c321b0100d4f03b7f355894cf332f830e710b97ce98c8a84abd0b948114ad176e008d33bd60f982b1ff37c8559797a06ef4f0ef61c186324e2b3506383606907b6a7c02b0f9f6157b53c867e4b9166c767b804d46a59b5216cde7a4e99040c5a40433225ee282a1b0a06c523eaf4534d7f83fa1155b0047718cbc546a0d072b04b3564eea1b422273f548271a
3604
3605Cipher = chacha20-poly1305
3606Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3607IV = 000000000102030405060708
3608AAD = f33388860000000000004e91
3609Tag = 53aee3189d2b747032378a6186feb43f
3610Plaintext = 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
3611Ciphertext = 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
3612
3613Cipher = chacha20-poly1305
3614Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3615IV = 000000000102030405060708
3616AAD = f33388860000000000004e91
3617Tag = e0723bce23528ce6ccb10ff9627038bf
3618Plaintext = 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
3619Ciphertext = 64a0861575861af460f062c79be643bd5e805cfd345cf389f108670ac76c8cb24c6cfc18755d43eea09ee94e382d26b0bdb7b73c321b0100d4f03b7f355894cf332f830e710b97ce98c8a84abd0b948114ad176e008d33bd60f982b1ff37c8559797a06ef4f0ef61c186324e2b3506383606907b6a7c02b0f9f6157b53c867e4b9166c767b804d46a59b5216cde7a4e99040c5a40433225ee282a1b0a06c523eaf4534d7f83fa1155b0047718cbc546a0d072b04b3564eea1b422273f548271a0bb2316053fa76991955ebd63159434ecebb4e466dae5a1073a6727627097a1049e617d91d361094fa68f0ff77987130305beaba2eda04df997b714d6c6f2c299da65ba25e6a85842bf0440fd98a9a2266b061c4b3a13327c090f9a0789f58aad805275e4378a525f19232bfbfb749ede38480f405cf43ec2f1f8619ebcbc80a89e92a859c7911e674977ab17d4a7126a6b8a477358ff14a344d276ef6e504e10268ac3619fcf90c2d6c03fc2e3d1f290d9bf26c1fa1495dd8f97eec6229a55c2354e4524143551a5cc370a1c622c9390530cff21c3e1ed50c5e3daf97518ccce34156bdbd7eafab8bd417aef25c6c927301731bd319d247a1d5c3186ed10bfd9a7a24bac30e3e4503ed9204154d338b79ea276e7058e7f20f4d4fd1ac93d63f611af7b6d006c2a72add0eedc497b19cb30a198816664f0da00155f2e2d6ac61045b296d614301e0ad4983308028850dd4feffe3a8163970306e4047f5a165cb4befbc129729cd2e286e837e9b606486d402acc3dec5bf8b92387f6e486f2140
3620
53a3a545
DSH
3621# TLS1 PRF tests, from NIST test vectors
3622
3623KDF=TLS1-PRF
2ff9e743
DSH
3624Ctrl.md = md:MD5-SHA1
3625Ctrl.Secret = hexsecret:bded7fa5c1699c010be23dd06ada3a48349f21e5f86263d512c0c5cc379f0e780ec55d9844b2f1db02a96453513568d0
3626Ctrl.label = seed:master secret
3627Ctrl.client_random = hexseed:e5acaf549cd25c22d964c0d930fa4b5261d2507fad84c33715b7b9a864020693
3628Ctrl.server_random = hexseed:135e4d557fdf3aa6406d82975d5c606a9734c9334b42136e96990fbd5358cdb2
53a3a545
DSH
3629Output = 2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3630
3631KDF=TLS1-PRF
2ff9e743
DSH
3632Ctrl.md = md:MD5-SHA1
3633Ctrl.Secret = hexsecret:2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3634Ctrl.label = seed:key expansion
3635Ctrl.server_random = hexseed:67267e650eb32444119d222a368c191af3082888dc35afe8368e638c828874be
3636Ctrl.client_random = hexseed:d58a7b1cd4fedaa232159df652ce188f9d997e061b9bf48e83b62990440931f6
53a3a545
DSH
3637Output = 3088825988e77fce68d19f756e18e43eb7fe672433504feaf99b3c503d9091b164f166db301d70c9fc0870b4a94563907bee1a61fb786cb717576890bcc51cb9ead97e01d0a2fea99c953377b195205ff07b369589178796edc963fd80fdbe518a2fc1c35c18ae8d
3638
3639KDF=TLS1-PRF
2ff9e743
DSH
3640Ctrl.md = md:SHA256
3641Ctrl.Secret = hexsecret:f8938ecc9edebc5030c0c6a441e213cd24e6f770a50dda07876f8d55da062bcadb386b411fd4fe4313a604fce6c17fbc
3642Ctrl.label = seed:master secret
3643Ctrl.client_random = hexseed:36c129d01a3200894b9179faac589d9835d58775f9b5ea3587cb8fd0364cae8c
3644Ctrl.server_random = hexseed:f6c9575ed7ddd73e1f7d16eca115415812a43c2b747daaaae043abfb50053fce
53a3a545
DSH
3645Output = 202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3646
3647KDF=TLS1-PRF
2ff9e743
DSH
3648Ctrl.md = md:SHA256
3649Ctrl.Secret = hexsecret:202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3650Ctrl.label = seed:key expansion
3651Ctrl.server_random = hexseed:ae6c806f8ad4d80784549dff28a4b58fd837681a51d928c3e30ee5ff14f39868
3652Ctrl.client_random = hexseed:62e1fd91f23f558a605f28478c58cf72637b89784d959df7e946d3f07bd1b616
53a3a545
DSH
3653Output = d06139889fffac1e3a71865f504aa5d0d2a2e89506c6f2279b670c3e1b74f531016a2530c51a3a0f7e1d6590d0f0566b2f387f8d11fd4f731cdd572d2eae927f6f2f81410b25e6960be68985add6c38445ad9f8c64bf8068bf9a6679485d966f1ad6f68b43495b10a683755ea2b858d70ccac7ec8b053c6bd41ca299d4e51928
3654
3655# Missing digest.
3656KDF=TLS1-PRF
2ff9e743
DSH
3657Ctrl.Secret = hexsecret:01
3658Ctrl.Seed = hexseed:02
53a3a545
DSH
3659Output = 03
3660Result = KDF_DERIVE_ERROR
3661
3662# Missing secret.
3663KDF=TLS1-PRF
2ff9e743
DSH
3664Ctrl.md = md:MD5-SHA1
3665Ctrl.Seed = hexseed:02
53a3a545
DSH
3666Output = 03
3667Result = KDF_DERIVE_ERROR
404cc933 3668
aacfb134
AG
3669# HKDF tests, from RFC5869 test vectors
3670
3671KDF = HKDF
3672Ctrl.md = md:SHA256
3673Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3674Ctrl.salt = hexsalt:000102030405060708090a0b0c
3675Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3676Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3677
ddd2c389
MC
3678KDF = HKDF
3679Ctrl.mode = mode:EXTRACT_ONLY
3680Ctrl.md = md:SHA256
3681Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3682Ctrl.salt = hexsalt:000102030405060708090a0b0c
3683Output = 077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3684
3685KDF = HKDF
3686Ctrl.mode = mode:EXPAND_ONLY
3687Ctrl.md = md:SHA256
3688Ctrl.IKM = hexkey:077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3689Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3690Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3691
aacfb134
AG
3692KDF = HKDF
3693Ctrl.md = md:SHA256
3694Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3695Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3696Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3697Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3698
ddd2c389
MC
3699KDF = HKDF
3700Ctrl.mode = mode:EXTRACT_ONLY
3701Ctrl.md = md:SHA256
3702Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3703Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3704Output = 06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3705
3706KDF = HKDF
3707Ctrl.mode = mode:EXPAND_ONLY
3708Ctrl.md = md:SHA256
3709Ctrl.IKM = hexkey:06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3710Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3711Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3712
aacfb134
AG
3713KDF = HKDF
3714Ctrl.md = md:SHA256
3715Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3716Ctrl.salt = salt:
3717Ctrl.info = info:
3718Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3719
ddd2c389
MC
3720KDF = HKDF
3721Ctrl.mode = mode:EXTRACT_ONLY
3722Ctrl.md = md:SHA256
3723Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3724Ctrl.salt = salt:
3725Ctrl.info = info:
3726Output = 19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3727
3728KDF = HKDF
3729Ctrl.mode = mode:EXPAND_ONLY
3730Ctrl.md = md:SHA256
3731Ctrl.IKM = hexkey:19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3732Ctrl.info = info:
3733Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3734
aacfb134
AG
3735KDF = HKDF
3736Ctrl.md = md:SHA1
3737Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3738Ctrl.salt = hexsalt:000102030405060708090a0b0c
3739Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3740Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3741
ddd2c389
MC
3742KDF = HKDF
3743Ctrl.mode = mode:EXTRACT_ONLY
3744Ctrl.md = md:SHA1
3745Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3746Ctrl.salt = hexsalt:000102030405060708090a0b0c
3747Output = 9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3748
3749KDF = HKDF
3750Ctrl.mode = mode:EXPAND_ONLY
3751Ctrl.md = md:SHA1
3752Ctrl.IKM = hexkey:9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3753Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3754Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3755
aacfb134
AG
3756KDF = HKDF
3757Ctrl.md = md:SHA1
3758Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3759Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3760Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3761Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3762
3763KDF = HKDF
ddd2c389
MC
3764Ctrl.mode = mode:EXTRACT_ONLY
3765Ctrl.md = md:SHA1
3766Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3767Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3768Output = 8adae09a2a307059478d309b26c4115a224cfaf6
3769
3770KDF = HKDF
3771Ctrl.mode = mode:EXPAND_ONLY
3772Ctrl.md = md:SHA1
3773Ctrl.IKM = hexkey:8adae09a2a307059478d309b26c4115a224cfaf6
3774Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3775Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3776
3777KDF = HKDF
3778Ctrl.md = md:SHA1
3779Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3780Ctrl.salt = salt:
3781Ctrl.info = info:
3782Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3783
3784KDF = HKDF
3785Ctrl.mode = mode:EXTRACT_ONLY
aacfb134
AG
3786Ctrl.md = md:SHA1
3787Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3788Ctrl.salt = salt:
ddd2c389
MC
3789Output = da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
3790
3791KDF = HKDF
3792Ctrl.mode = mode:EXPAND_ONLY
3793Ctrl.md = md:SHA1
3794Ctrl.IKM = hexkey:da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
aacfb134
AG
3795Ctrl.info = info:
3796Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3797
3798KDF = HKDF
3799Ctrl.md = md:SHA1
3800Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3801Ctrl.salt = salt:
3802Ctrl.info = info:
3803Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3804
ddd2c389
MC
3805KDF = HKDF
3806Ctrl.mode = mode:EXTRACT_ONLY
3807Ctrl.md = md:SHA1
3808Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3809Ctrl.salt = salt:
3810Output = 2adccada18779e7c2077ad2eb19d3f3e731385dd
3811
3812KDF = HKDF
3813Ctrl.mode = mode:EXPAND_ONLY
3814Ctrl.md = md:SHA1
3815Ctrl.IKM = hexkey:2adccada18779e7c2077ad2eb19d3f3e731385dd
3816Ctrl.info = info:
3817Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3818
aacfb134
AG
3819KDF = HKDF
3820Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3821Ctrl.salt = salt:
3822Ctrl.info = info:
3823Output = 00
3824Result = KDF_DERIVE_ERROR
3825
3826KDF = HKDF
3827Ctrl.md = md:SHA1
3828Ctrl.salt = salt:
3829Ctrl.info = info:
3830Output = 00
3831Result = KDF_DERIVE_ERROR
3832
3833KDF = HKDF
3834Ctrl.md = md:SHA1
3835Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3836Ctrl.info = info:
3837Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3838
3839KDF = HKDF
3840Ctrl.md = md:SHA1
3841Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3842Ctrl.salt = salt:
3843Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
404cc933 3844
ddd2c389
MC
3845KDF = HKDF
3846Ctrl.mode = mode:EXTRACT_AND_EXPAND
3847Ctrl.md = md:SHA1
3848Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3849Ctrl.salt = salt:
3850Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3851
404cc933
DSH
3852# ECDH tests
3853
3854Derive=P-256
3855PeerKey=P-256-Peer-PUBLIC
3856SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
3857
3858Derive=P-256-Peer
3859PeerKey=P-256-PUBLIC
3860SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
755031d9
DSH
3861
3862# X25519 test vectors from RFC7748 6.1
3863PrivateKey=Alice-25519
3864-----BEGIN PRIVATE KEY-----
10f8d0ea 3865MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq
755031d9
DSH
3866-----END PRIVATE KEY-----
3867PublicKey=Alice-25519-PUBLIC
3868-----BEGIN PUBLIC KEY-----
10f8d0ea 3869MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo=
755031d9
DSH
3870-----END PUBLIC KEY-----
3871PrivateKey=Bob-25519
3872-----BEGIN PRIVATE KEY-----
10f8d0ea 3873MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr
755031d9
DSH
3874-----END PRIVATE KEY-----
3875PublicKey=Bob-25519-PUBLIC
3876-----BEGIN PUBLIC KEY-----
10f8d0ea 3877MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08=
755031d9
DSH
3878-----END PUBLIC KEY-----
3879
3880Derive=Alice-25519
3881PeerKey=Bob-25519-PUBLIC
3882SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
3883
3884Derive=Bob-25519
3885PeerKey=Alice-25519-PUBLIC
3886SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
cce65266
DSH
3887
3888# Illegal sign/verify operations with X25519 key
3889
3890Sign=Alice-25519
3891Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
3892Function = EVP_PKEY_sign_init
3893Reason = operation not supported for this keytype
cce65266
DSH
3894
3895Verify=Alice-25519
3896Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
3897Function = EVP_PKEY_verify_init
3898Reason = operation not supported for this keytype