]> git.ipfire.org Git - thirdparty/openssl.git/blame - test/evptests.txt
Remove more redundant tests: md4, md5, rmd, rc4, p5_crpt2
[thirdparty/openssl.git] / test / evptests.txt
CommitLineData
44c8a5e2 1#
3f5616d7 2# Copyright 2001-2017 The OpenSSL Project Authors. All Rights Reserved.
44c8a5e2
RS
3#
4# Licensed under the OpenSSL license (the "License"). You may not use
5# this file except in compliance with the License. You can obtain a copy
6# in the file LICENSE in the source distribution or at
7# https://www.openssl.org/source/license.html
8
3f5616d7
TS
9# SIPHASH tests - default values: 2,4 rounds, 16-byte mac
10# There are no official test vectors, they are simple vectors 1, 2, 3, etc
11
12MAC = SipHash
13Key = 000102030405060708090A0B0C0D0E0F
14Input =
15Output = a3817f04ba25a8e66df67214c7550293
16
17MAC = SipHash
18Key = 000102030405060708090A0B0C0D0E0F
19Input = 00
20Output = da87c1d86b99af44347659119b22fc45
21
22MAC = SipHash
23Key = 000102030405060708090A0B0C0D0E0F
24Input = 0001
25Output = 8177228da4a45dc7fca38bdef60affe4
26
27MAC = SipHash
28Key = 000102030405060708090A0B0C0D0E0F
29Input = 000102
30Output = 9c70b60c5267a94e5f33b6b02985ed51
31
32MAC = SipHash
33Key = 000102030405060708090A0B0C0D0E0F
34Input = 00010203
35Output = f88164c12d9c8faf7d0f6e7c7bcd5579
36
37MAC = SipHash
38Key = 000102030405060708090A0B0C0D0E0F
39Input = 0001020304
40Output = 1368875980776f8854527a07690e9627
41
42MAC = SipHash
43Key = 000102030405060708090A0B0C0D0E0F
44Input = 000102030405
45Output = 14eeca338b208613485ea0308fd7a15e
46
47MAC = SipHash
48Key = 000102030405060708090A0B0C0D0E0F
49Input = 00010203040506
50Output = a1f1ebbed8dbc153c0b84aa61ff08239
51
52MAC = SipHash
53Key = 000102030405060708090A0B0C0D0E0F
54Input = 0001020304050607
55Output = 3b62a9ba6258f5610f83e264f31497b4
56
57MAC = SipHash
58Key = 000102030405060708090A0B0C0D0E0F
59Input = 000102030405060708
60Output = 264499060ad9baabc47f8b02bb6d71ed
61
62MAC = SipHash
63Key = 000102030405060708090A0B0C0D0E0F
64Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E
65Output = 5150d1772f50834a503e069a973fbd7c
4897dc40 66
2d0b4412 67# BLAKE2 tests, using same inputs as MD5
208527a7
KR
68# There are no official BLAKE2 test vectors we can use since they all use a key
69# Which is currently unsupported by OpenSSL. They were generated using the
70# reference implementation. RFC7693 also mentions the 616263 / "abc" values.
71Digest = BLAKE2s256
2d0b4412
BC
72Input =
73Output = 69217a3079908094e11121d042354a7c1f55b6482ca1a51e1b250dfd1ed0eef9
74
208527a7 75Digest = BLAKE2s256
2d0b4412
BC
76Input = 61
77Output = 4a0d129873403037c2cd9b9048203687f6233fb6738956e0349bd4320fec3e90
78
208527a7 79Digest = BLAKE2s256
2d0b4412
BC
80Input = 616263
81Output = 508c5e8c327c14e2e1a72ba34eeb452f37458b209ed63a294d999b4c86675982
82
208527a7 83Digest = BLAKE2s256
2d0b4412
BC
84Input = 6d65737361676520646967657374
85Output = fa10ab775acf89b7d3c8a6e823d586f6b67bdbac4ce207fe145b7d3ac25cd28c
86
208527a7 87Digest = BLAKE2s256
2d0b4412
BC
88Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
89Output = bdf88eb1f86a0cdf0e840ba88fa118508369df186c7355b4b16cf79fa2710a12
90
208527a7 91Digest = BLAKE2s256
2d0b4412
BC
92Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
93Output = c75439ea17e1de6fa4510c335dc3d3f343e6f9e1ce2773e25b4174f1df8b119b
94
208527a7 95Digest = BLAKE2s256
2d0b4412
BC
96Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
97Output = fdaedb290a0d5af9870864fec2e090200989dc9cd53a3c092129e8535e8b4f66
98
1fab06a6
AP
99Digest = BLAKE2s256
100Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
101Output = 1FA877DE67259D19863A2A34BCC6962A2B25FCBF5CBECD7EDE8F1FA36688A796
102
103Digest = BLAKE2s256
104Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
105Output = C80ABEEBB669AD5DEEB5F5EC8EA6B7A05DDF7D31EC4C0A2EE20B0B98CAEC6746
106
208527a7 107Digest = BLAKE2b512
2d0b4412
BC
108Input =
109Output = 786a02f742015903c6c6fd852552d272912f4740e15847618a86e217f71f5419d25e1031afee585313896444934eb04b903a685b1448b755d56f701afe9be2ce
110
208527a7 111Digest = BLAKE2b512
2d0b4412
BC
112Input = 61
113Output = 333fcb4ee1aa7c115355ec66ceac917c8bfd815bf7587d325aec1864edd24e34d5abe2c6b1b5ee3face62fed78dbef802f2a85cb91d455a8f5249d330853cb3c
114
208527a7 115Digest = BLAKE2b512
2d0b4412
BC
116Input = 616263
117Output = ba80a53f981c4d0d6a2797b69f12f6e94c212f14685ac4b74b12bb6fdbffa2d17d87c5392aab792dc252d5de4533cc9518d38aa8dbf1925ab92386edd4009923
118
208527a7 119Digest = BLAKE2b512
2d0b4412
BC
120Input = 6d65737361676520646967657374
121Output = 3c26ce487b1c0f062363afa3c675ebdbf5f4ef9bdc022cfbef91e3111cdc283840d8331fc30a8a0906cff4bcdbcd230c61aaec60fdfad457ed96b709a382359a
122
208527a7 123Digest = BLAKE2b512
2d0b4412
BC
124Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
125Output = c68ede143e416eb7b4aaae0d8e48e55dd529eafed10b1df1a61416953a2b0a5666c761e7d412e6709e31ffe221b7a7a73908cb95a4d120b8b090a87d1fbedb4c
126
208527a7 127Digest = BLAKE2b512
2d0b4412
BC
128Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
129Output = 99964802e5c25e703722905d3fb80046b6bca698ca9e2cc7e49b4fe1fa087c2edf0312dfbb275cf250a1e542fd5dc2edd313f9c491127c2e8c0c9b24168e2d50
130
208527a7 131Digest = BLAKE2b512
2d0b4412
BC
132Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
133Output = 686f41ec5afff6e87e1f076f542aa466466ff5fbde162c48481ba48a748d842799f5b30f5b67fc684771b33b994206d05cc310f31914edd7b97e41860d77d282
134
1fab06a6
AP
135Digest = BLAKE2b512
136Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
137Output = 2319E3789C47E2DAA5FE807F61BEC2A1A6537FA03F19FF32E87EECBFD64B7E0E8CCFF439AC333B040F19B0C4DDD11A61E24AC1FE0F10A039806C5DCC0DA3D115
138
139Digest = BLAKE2b512
140Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
141Output = DF0A9D0C212843A6A934E3902B2DD30D17FBA5F969D2030B12A546D8A6A45E80CF5635F071F0452E9C919275DA99BED51EB1173C1AF0518726B75B0EC3BAE2B5
142
e059b19d 143# SHA(1) tests (from shatest.c)
7303b472
DSH
144Digest = SHA1
145Input = 616263
146Output = a9993e364706816aba3e25717850c26c9cd0d89d
147
e059b19d 148
816060d2 149# MD5 tests
7303b472
DSH
150Digest = MD5
151Input =
152Output = d41d8cd98f00b204e9800998ecf8427e
153
154Digest = MD5
155Input = 61
156Output = 0cc175b9c0f1b6a831c399e269772661
157
158Digest = MD5
159Input = 616263
160Output = 900150983cd24fb0d6963f7d28e17f72
161
162Digest = MD5
163Input = 6d65737361676520646967657374
164Output = f96b697d7cb7938d525a2f31aaf161d0
165
166Digest = MD5
167Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
168Output = c3fcd3d76192e4007dfb496cca67e13b
169
170Digest = MD5
171Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
172Output = d174ab98d277d9f5a5611c2c9f419d9f
173
174Digest = MD5
175Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
176Output = 57edf4a22be3c955ac49da2e2107b67a
177
816060d2 178# MD4 tests
7406e323
DSH
179Digest = MD4
180Input = ""
181Output = 31d6cfe0d16ae931b73c59d7e0c089c0
182Digest = MD4
183Input = "a"
184Output = bde52cb31de33e46245e05fbdbd6fb24
185Digest = MD4
186Input = "abc"
187Output = a448017aaf21d8525fc10ae87aa6729d
188Digest = MD4
189Input = "message digest"
190Output = d9130a8164549fe818874806e1c7014b
191Digest = MD4
192Input = "abcdefghijklmnopqrstuvwxyz"
193Output = d79e1c308aa5bbcdeea8ed63df412da9
194Digest = MD4
195Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
196Output = 043f8582f241db351ce627e153e7f0e4
197Digest = MD4
198Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
199Output = e33b4ddc9c38f2199c3e7b164fcc0536
a8a00498 200
816060d2 201# RIPEMD160 tests
618be04e
DSH
202Digest = RIPEMD160
203Input = ""
204Output = 9c1185a5c5e9fc54612808977ee8f548b2258d31
205Digest = RIPEMD160
206Input = "a"
207Output = 0bdc9d2d256b3ee9daae347be6f4dc835a467ffe
208Digest = RIPEMD160
209Input = "abc"
210Output = 8eb208f7e05d987a9b044a8e98c6b087f15a0bfc
211Digest = RIPEMD160
212Input = "message digest"
213Output = 5d0689ef49d2fae572b881b123a85ffa21595f36
214Digest = RIPEMD160
215Input = "abcdefghijklmnopqrstuvwxyz"
216Output = f71c27109c692c1b56bbdceb5b9d2865b3708dbc
217Digest = RIPEMD160
218Input = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq"
219Output = 12a053384a9c0c88e405a06c27dcf49ada62eb2b
220Digest = RIPEMD160
221Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
222Output = b0e20b6e3116640286ed3a87a5713079b21f5189
223Digest = RIPEMD160
224Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
225Output = 9b752e45573d4b39f4dbd3323cab82bf63326bfb
226
a2121e14 227# ISO/IEC 10118-3 test vector set
618be04e
DSH
228Digest = whirlpool
229Input = ""
230Output = 19FA61D75522A4669B44E39C1D2E1726C530232130D407F89AFEE0964997F7A73E83BE698B288FEBCF88E3E03C4F0757EA8964E59B63D93708B138CC42A66EB3
231Digest = whirlpool
232Input = "a"
233Output = 8ACA2602792AEC6F11A67206531FB7D7F0DFF59413145E6973C45001D0087B42D11BC645413AEFF63A42391A39145A591A92200D560195E53B478584FDAE231A
234Digest = whirlpool
235Input = "abc"
236Output = 4E2448A4C6F486BB16B6562C73B4020BF3043E3A731BCE721AE1B303D97E6D4C7181EEBDB6C57E277D0E34957114CBD6C797FC9D95D8B582D225292076D4EEF5
237Digest = whirlpool
238Input = "message digest"
239Output = 378C84A4126E2DC6E56DCC7458377AAC838D00032230F53CE1F5700C0FFB4D3B8421557659EF55C106B4B52AC5A4AAA692ED920052838F3362E86DBD37A8903E
240Digest = whirlpool
241Input = "abcdefghijklmnopqrstuvwxyz"
242Output = F1D754662636FFE92C82EBB9212A484A8D38631EAD4238F5442EE13B8054E41B08BF2A9251C30B6A0B8AAE86177AB4A6F68F673E7207865D5D9819A3DBA4EB3B
243Digest = whirlpool
244Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
245Output = DC37E008CF9EE69BF11F00ED9ABA26901DD7C28CDEC066CC6AF42E40F82F3A1E08EBA26629129D8FB7CB57211B9281A65517CC879D7B962142C65F5A7AF01467
246Digest = whirlpool
247Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
248Output = 466EF18BABB0154D25B9D38A6414F5C08784372BCCB204D6549C4AFADB6014294D5BD8DF2A6C44E538CD047B2681A51A2C60481E88C5A20B2C2A80CF3A9A083B
249Digest = whirlpool
250Input = "abcdbcdecdefdefgefghfghighijhijk"
251Output = 2A987EA40F917061F5D6F0A0E4644F488A7A5A52DEEE656207C562F988E95C6916BDC8031BC5BE1B7B947639FE050B56939BAAA0ADFF9AE6745B7B181C3BE3FD
252Digest = whirlpool
253Input = "aaaaaaaaaa"
254Count = 100000
255Output = 0C99005BEB57EFF50A7CF005560DDF5D29057FD86B20BFD62DECA0F1CCEA4AF51FC15490EDDC47AF32BB2B66C34FF9AD8C6008AD677F77126953B226E4ED8B01
256
fe2d1491
RS
257# DES EDE3 CFB1
258# echo -n "Hello World" |
259# apps/openssl enc -des-ede3-cfb1 \
260# -K 000102030405060708090A0B0C0D0E0F1011121314151617 -iv 0001020304050607 |
261# xxd -ps -u
262
263Cipher = DES-EDE3-CFB1
264Key = 000102030405060708090A0B0C0D0E0F1011121314151617
265IV = 0001020304050607
266Plaintext = "Hello World"
267Ciphertext = 3CF55D656E9C0664513358
268
269Cipher = DES-EDE3-CFB1
270Key = 000102030405060708090A0B0C0D0E0F1011121314151617
271IV = 0001020304050607
272Operation = DECRYPT
273Plaintext = "Hello World"
274Ciphertext = 3CF55D656E9C0664513358
275
7389c848 276# AES 128 ECB tests (from FIPS-197 test vectors, encrypt)
a8a00498 277
7303b472
DSH
278Cipher = AES-128-ECB
279Key = 000102030405060708090A0B0C0D0E0F
280Operation = ENCRYPT
281Plaintext = 00112233445566778899AABBCCDDEEFF
282Ciphertext = 69C4E0D86A7B0430D8CDB78070B4C55A
4d393410 283
7389c848 284# AES 192 ECB tests (from FIPS-197 test vectors, encrypt)
4d393410 285
7303b472
DSH
286Cipher = AES-192-ECB
287Key = 000102030405060708090A0B0C0D0E0F1011121314151617
288Operation = ENCRYPT
289Plaintext = 00112233445566778899AABBCCDDEEFF
290Ciphertext = DDA97CA4864CDFE06EAF70A0EC0D7191
291
4d393410 292
7389c848 293# AES 256 ECB tests (from FIPS-197 test vectors, encrypt)
4d393410 294
7303b472
DSH
295Cipher = AES-256-ECB
296Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
297Operation = ENCRYPT
298Plaintext = 00112233445566778899AABBCCDDEEFF
299Ciphertext = 8EA2B7CA516745BFEAFC49904B496089
300
a8a00498 301
52b66a62 302# AES 128 ECB tests (from NIST test vectors, encrypt)
2a814284 303
78055aa6 304#AES-128-ECB:00000000000000000000000000000000::00000000000000000000000000000000:C34C052CC0DA8D73451AFE5F03BE297F:1
52b66a62
RL
305
306# AES 128 ECB tests (from NIST test vectors, decrypt)
2a814284 307
78055aa6 308#AES-128-ECB:00000000000000000000000000000000::44416AC2D1F53C583303917E6BE9EBE0:00000000000000000000000000000000:0
52b66a62
RL
309
310# AES 192 ECB tests (from NIST test vectors, decrypt)
2a814284 311
78055aa6 312#AES-192-ECB:000000000000000000000000000000000000000000000000::48E31E9E256718F29229319C19F15BA4:00000000000000000000000000000000:0
52b66a62
RL
313
314# AES 256 ECB tests (from NIST test vectors, decrypt)
315
78055aa6 316#AES-256-ECB:0000000000000000000000000000000000000000000000000000000000000000::058CCFFDBBCB382D1F6F56585D8A4ADE:00000000000000000000000000000000:0
52b66a62 317
0e360199 318# AES 128 CBC tests (from NIST test vectors, encrypt)
a8a00498 319
78055aa6 320#AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:8A05FC5E095AF4848A08D328D3688E3D:1
4d393410
RL
321
322# AES 192 CBC tests (from NIST test vectors, encrypt)
323
78055aa6 324#AES-192-CBC:000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:7BD966D53AD8C1BB85D2ADFAE87BB104:1
4d393410
RL
325
326# AES 256 CBC tests (from NIST test vectors, encrypt)
327
78055aa6 328#AES-256-CBC:0000000000000000000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:FE3C53653E2F45B56FCD88B2CC898FF0:1
a8a00498 329
52b66a62 330# AES 128 CBC tests (from NIST test vectors, decrypt)
2a814284 331
78055aa6
RL
332#AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:FACA37E0B0C85373DF706E73F7C9AF86:00000000000000000000000000000000:0
333
334# AES tests from NIST document SP800-38A
335# For all ECB encrypts and decrypts, the transformed sequence is
336# AES-bits-ECB:key::plaintext:ciphertext:encdec
337# ECB-AES128.Encrypt and ECB-AES128.Decrypt
7303b472
DSH
338Cipher = AES-128-ECB
339Key = 2B7E151628AED2A6ABF7158809CF4F3C
340Plaintext = 6BC1BEE22E409F96E93D7E117393172A
341Ciphertext = 3AD77BB40D7A3660A89ECAF32466EF97
342
343Cipher = AES-128-ECB
344Key = 2B7E151628AED2A6ABF7158809CF4F3C
345Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
346Ciphertext = F5D3D58503B9699DE785895A96FDBAAF
347
348Cipher = AES-128-ECB
349Key = 2B7E151628AED2A6ABF7158809CF4F3C
350Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
351Ciphertext = 43B1CD7F598ECE23881B00E3ED030688
352
353Cipher = AES-128-ECB
354Key = 2B7E151628AED2A6ABF7158809CF4F3C
355Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
356Ciphertext = 7B0C785E27E8AD3F8223207104725DD4
357
358# ECB-AES192.Encrypt and ECB-AES192.Decrypt
359Cipher = AES-192-ECB
360Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
361Plaintext = 6BC1BEE22E409F96E93D7E117393172A
362Ciphertext = BD334F1D6E45F25FF712A214571FA5CC
363
364Cipher = AES-192-ECB
365Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
366Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
367Ciphertext = 974104846D0AD3AD7734ECB3ECEE4EEF
368
369Cipher = AES-192-ECB
370Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
371Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
372Ciphertext = EF7AFD2270E2E60ADCE0BA2FACE6444E
373
374Cipher = AES-192-ECB
375Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
376Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
377Ciphertext = 9A4B41BA738D6C72FB16691603C18E0E
378
379# ECB-AES256.Encrypt and ECB-AES256.Decrypt
380Cipher = AES-256-ECB
381Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
382Plaintext = 6BC1BEE22E409F96E93D7E117393172A
383Ciphertext = F3EED1BDB5D2A03C064B5A7E3DB181F8
384
385Cipher = AES-256-ECB
386Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
387Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
388Ciphertext = 591CCB10D410ED26DC5BA74A31362870
389
390Cipher = AES-256-ECB
391Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
392Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
393Ciphertext = B6ED21B99CA6F4F9F153E7B1BEAFED1D
394
395Cipher = AES-256-ECB
396Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
397Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
398Ciphertext = 23304B7A39F9F3FF067D8D8F9E24ECC7
399
78055aa6
RL
400# For all CBC encrypts and decrypts, the transformed sequence is
401# AES-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
402# CBC-AES128.Encrypt and CBC-AES128.Decrypt
403Cipher = AES-128-CBC
404Key = 2B7E151628AED2A6ABF7158809CF4F3C
405IV = 000102030405060708090A0B0C0D0E0F
406Plaintext = 6BC1BEE22E409F96E93D7E117393172A
407Ciphertext = 7649ABAC8119B246CEE98E9B12E9197D
408
409Cipher = AES-128-CBC
410Key = 2B7E151628AED2A6ABF7158809CF4F3C
411IV = 7649ABAC8119B246CEE98E9B12E9197D
412Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
413Ciphertext = 5086CB9B507219EE95DB113A917678B2
414
415Cipher = AES-128-CBC
416Key = 2B7E151628AED2A6ABF7158809CF4F3C
417IV = 5086CB9B507219EE95DB113A917678B2
418Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
419Ciphertext = 73BED6B8E3C1743B7116E69E22229516
420
421Cipher = AES-128-CBC
422Key = 2B7E151628AED2A6ABF7158809CF4F3C
423IV = 73BED6B8E3C1743B7116E69E22229516
424Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
425Ciphertext = 3FF1CAA1681FAC09120ECA307586E1A7
426
427# CBC-AES192.Encrypt and CBC-AES192.Decrypt
428Cipher = AES-192-CBC
429Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
430IV = 000102030405060708090A0B0C0D0E0F
431Plaintext = 6BC1BEE22E409F96E93D7E117393172A
432Ciphertext = 4F021DB243BC633D7178183A9FA071E8
433
434Cipher = AES-192-CBC
435Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
436IV = 4F021DB243BC633D7178183A9FA071E8
437Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
438Ciphertext = B4D9ADA9AD7DEDF4E5E738763F69145A
439
440Cipher = AES-192-CBC
441Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
442IV = B4D9ADA9AD7DEDF4E5E738763F69145A
443Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
444Ciphertext = 571B242012FB7AE07FA9BAAC3DF102E0
445
446Cipher = AES-192-CBC
447Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
448IV = 571B242012FB7AE07FA9BAAC3DF102E0
449Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
450Ciphertext = 08B0E27988598881D920A9E64F5615CD
451
452# CBC-AES256.Encrypt and CBC-AES256.Decrypt
453Cipher = AES-256-CBC
454Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
455IV = 000102030405060708090A0B0C0D0E0F
456Plaintext = 6BC1BEE22E409F96E93D7E117393172A
457Ciphertext = F58C4C04D6E5F1BA779EABFB5F7BFBD6
458
459Cipher = AES-256-CBC
460Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
461IV = F58C4C04D6E5F1BA779EABFB5F7BFBD6
462Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
463Ciphertext = 9CFC4E967EDB808D679F777BC6702C7D
464
465Cipher = AES-256-CBC
466Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
467IV = 9CFC4E967EDB808D679F777BC6702C7D
468Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
469Ciphertext = 39F23369A9D9BACFA530E26304231461
470
471Cipher = AES-256-CBC
472Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
473IV = 39F23369A9D9BACFA530E26304231461
474Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
475Ciphertext = B2EB05E2C39BE9FCDA6C19078C6A9D1B
476
78055aa6
RL
477# We don't support CFB{1,8}-AESxxx.{En,De}crypt
478# For all CFB128 encrypts and decrypts, the transformed sequence is
479# AES-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
480# CFB128-AES128.Encrypt
481Cipher = AES-128-CFB
482Key = 2B7E151628AED2A6ABF7158809CF4F3C
483IV = 000102030405060708090A0B0C0D0E0F
484Operation = ENCRYPT
485Plaintext = 6BC1BEE22E409F96E93D7E117393172A
486Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
487
488Cipher = AES-128-CFB
489Key = 2B7E151628AED2A6ABF7158809CF4F3C
490IV = 3B3FD92EB72DAD20333449F8E83CFB4A
491Operation = ENCRYPT
492Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
493Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
494
495Cipher = AES-128-CFB
496Key = 2B7E151628AED2A6ABF7158809CF4F3C
497IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
498Operation = ENCRYPT
499Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
500Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
501
502Cipher = AES-128-CFB
503Key = 2B7E151628AED2A6ABF7158809CF4F3C
504IV = 26751F67A3CBB140B1808CF187A4F4DF
505Operation = ENCRYPT
506Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
507Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
508
509# CFB128-AES128.Decrypt
510Cipher = AES-128-CFB
511Key = 2B7E151628AED2A6ABF7158809CF4F3C
512IV = 000102030405060708090A0B0C0D0E0F
513Operation = DECRYPT
514Plaintext = 6BC1BEE22E409F96E93D7E117393172A
515Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
516
517Cipher = AES-128-CFB
518Key = 2B7E151628AED2A6ABF7158809CF4F3C
519IV = 3B3FD92EB72DAD20333449F8E83CFB4A
520Operation = DECRYPT
521Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
522Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
523
524Cipher = AES-128-CFB
525Key = 2B7E151628AED2A6ABF7158809CF4F3C
526IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
527Operation = DECRYPT
528Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
529Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
530
531Cipher = AES-128-CFB
532Key = 2B7E151628AED2A6ABF7158809CF4F3C
533IV = 26751F67A3CBB140B1808CF187A4F4DF
534Operation = DECRYPT
535Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
536Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
537
78055aa6 538# CFB128-AES192.Encrypt
7303b472
DSH
539Cipher = AES-192-CFB
540Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
541IV = 000102030405060708090A0B0C0D0E0F
542Operation = ENCRYPT
543Plaintext = 6BC1BEE22E409F96E93D7E117393172A
544Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
545
546Cipher = AES-192-CFB
547Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
548IV = CDC80D6FDDF18CAB34C25909C99A4174
549Operation = ENCRYPT
550Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
551Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
552
553Cipher = AES-192-CFB
554Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
555IV = 67CE7F7F81173621961A2B70171D3D7A
556Operation = ENCRYPT
557Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
558Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
559
560Cipher = AES-192-CFB
561Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
562IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
563Operation = ENCRYPT
564Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
565Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
566
78055aa6 567# CFB128-AES192.Decrypt
7303b472
DSH
568Cipher = AES-192-CFB
569Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
570IV = 000102030405060708090A0B0C0D0E0F
571Operation = DECRYPT
572Plaintext = 6BC1BEE22E409F96E93D7E117393172A
573Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
574
575Cipher = AES-192-CFB
576Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
577IV = CDC80D6FDDF18CAB34C25909C99A4174
578Operation = DECRYPT
579Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
580Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
581
582Cipher = AES-192-CFB
583Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
584IV = 67CE7F7F81173621961A2B70171D3D7A
585Operation = DECRYPT
586Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
587Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
588
589Cipher = AES-192-CFB
590Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
591IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
592Operation = DECRYPT
593Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
594Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
595
596# CFB128-AES256.Encrypt
597Cipher = AES-256-CFB
598Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
599IV = 000102030405060708090A0B0C0D0E0F
600Operation = ENCRYPT
601Plaintext = 6BC1BEE22E409F96E93D7E117393172A
602Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
603
604Cipher = AES-256-CFB
605Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
606IV = DC7E84BFDA79164B7ECD8486985D3860
607Operation = ENCRYPT
608Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
609Ciphertext = 39FFED143B28B1C832113C6331E5407B
610
611Cipher = AES-256-CFB
612Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
613IV = 39FFED143B28B1C832113C6331E5407B
614Operation = ENCRYPT
615Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
616Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
617
618Cipher = AES-256-CFB
619Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
620IV = DF10132415E54B92A13ED0A8267AE2F9
621Operation = ENCRYPT
622Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
623Ciphertext = 75A385741AB9CEF82031623D55B1E471
624
625# CFB128-AES256.Decrypt
626Cipher = AES-256-CFB
627Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
628IV = 000102030405060708090A0B0C0D0E0F
629Operation = DECRYPT
630Plaintext = 6BC1BEE22E409F96E93D7E117393172A
631Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
632
633Cipher = AES-256-CFB
634Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
635IV = DC7E84BFDA79164B7ECD8486985D3860
636Operation = DECRYPT
637Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
638Ciphertext = 39FFED143B28B1C832113C6331E5407B
639
640Cipher = AES-256-CFB
641Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
642IV = 39FFED143B28B1C832113C6331E5407B
643Operation = DECRYPT
644Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
645Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
646
647Cipher = AES-256-CFB
648Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
649IV = DF10132415E54B92A13ED0A8267AE2F9
650Operation = DECRYPT
651Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
652Ciphertext = 75A385741AB9CEF82031623D55B1E471
653
78055aa6
RL
654# For all OFB encrypts and decrypts, the transformed sequence is
655# AES-bits-CFB:key:IV/output':plaintext:ciphertext:encdec
7303b472
DSH
656# OFB-AES128.Encrypt
657Cipher = AES-128-OFB
658Key = 2B7E151628AED2A6ABF7158809CF4F3C
659IV = 000102030405060708090A0B0C0D0E0F
660Operation = ENCRYPT
661Plaintext = 6BC1BEE22E409F96E93D7E117393172A
662Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
663
664Cipher = AES-128-OFB
665Key = 2B7E151628AED2A6ABF7158809CF4F3C
666IV = 50FE67CC996D32B6DA0937E99BAFEC60
667Operation = ENCRYPT
668Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
669Ciphertext = 7789508D16918F03F53C52DAC54ED825
670
671Cipher = AES-128-OFB
672Key = 2B7E151628AED2A6ABF7158809CF4F3C
673IV = D9A4DADA0892239F6B8B3D7680E15674
674Operation = ENCRYPT
675Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
676Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
677
678Cipher = AES-128-OFB
679Key = 2B7E151628AED2A6ABF7158809CF4F3C
680IV = A78819583F0308E7A6BF36B1386ABF23
681Operation = ENCRYPT
682Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
683Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
684
685# OFB-AES128.Decrypt
686Cipher = AES-128-OFB
687Key = 2B7E151628AED2A6ABF7158809CF4F3C
688IV = 000102030405060708090A0B0C0D0E0F
689Operation = DECRYPT
690Plaintext = 6BC1BEE22E409F96E93D7E117393172A
691Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
692
693Cipher = AES-128-OFB
694Key = 2B7E151628AED2A6ABF7158809CF4F3C
695IV = 50FE67CC996D32B6DA0937E99BAFEC60
696Operation = DECRYPT
697Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
698Ciphertext = 7789508D16918F03F53C52DAC54ED825
699
700Cipher = AES-128-OFB
701Key = 2B7E151628AED2A6ABF7158809CF4F3C
702IV = D9A4DADA0892239F6B8B3D7680E15674
703Operation = DECRYPT
704Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
705Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
706
707Cipher = AES-128-OFB
708Key = 2B7E151628AED2A6ABF7158809CF4F3C
709IV = A78819583F0308E7A6BF36B1386ABF23
710Operation = DECRYPT
711Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
712Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
713
714# OFB-AES192.Encrypt
715Cipher = AES-192-OFB
716Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
717IV = 000102030405060708090A0B0C0D0E0F
718Operation = ENCRYPT
719Plaintext = 6BC1BEE22E409F96E93D7E117393172A
720Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
721
722Cipher = AES-192-OFB
723Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
724IV = A609B38DF3B1133DDDFF2718BA09565E
725Operation = ENCRYPT
726Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
727Ciphertext = FCC28B8D4C63837C09E81700C1100401
728
729Cipher = AES-192-OFB
730Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
731IV = 52EF01DA52602FE0975F78AC84BF8A50
732Operation = ENCRYPT
733Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
734Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
735
736Cipher = AES-192-OFB
737Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
738IV = BD5286AC63AABD7EB067AC54B553F71D
739Operation = ENCRYPT
740Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
741Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
742
743# OFB-AES192.Decrypt
744Cipher = AES-192-OFB
745Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
746IV = 000102030405060708090A0B0C0D0E0F
747Operation = ENCRYPT
748Plaintext = 6BC1BEE22E409F96E93D7E117393172A
749Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
750
751Cipher = AES-192-OFB
752Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
753IV = A609B38DF3B1133DDDFF2718BA09565E
754Operation = ENCRYPT
755Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
756Ciphertext = FCC28B8D4C63837C09E81700C1100401
757
758Cipher = AES-192-OFB
759Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
760IV = 52EF01DA52602FE0975F78AC84BF8A50
761Operation = ENCRYPT
762Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
763Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
764
765Cipher = AES-192-OFB
766Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
767IV = BD5286AC63AABD7EB067AC54B553F71D
768Operation = ENCRYPT
769Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
770Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
771
772# OFB-AES256.Encrypt
773Cipher = AES-256-OFB
774Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
775IV = 000102030405060708090A0B0C0D0E0F
776Operation = ENCRYPT
777Plaintext = 6BC1BEE22E409F96E93D7E117393172A
778Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
779
780Cipher = AES-256-OFB
781Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
782IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
783Operation = ENCRYPT
784Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
785Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
786
787Cipher = AES-256-OFB
788Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
789IV = E1C656305ED1A7A6563805746FE03EDC
790Operation = ENCRYPT
791Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
792Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
793
794Cipher = AES-256-OFB
795Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
796IV = 41635BE625B48AFC1666DD42A09D96E7
797Operation = ENCRYPT
798Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
799Ciphertext = 0126141D67F37BE8538F5A8BE740E484
800
801# OFB-AES256.Decrypt
802Cipher = AES-256-OFB
803Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
804IV = 000102030405060708090A0B0C0D0E0F
805Operation = DECRYPT
806Plaintext = 6BC1BEE22E409F96E93D7E117393172A
807Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
808
809Cipher = AES-256-OFB
810Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
811IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
812Operation = DECRYPT
813Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
814Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
815
816Cipher = AES-256-OFB
817Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
818IV = E1C656305ED1A7A6563805746FE03EDC
819Operation = DECRYPT
820Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
821Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
822
823Cipher = AES-256-OFB
824Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
825IV = 41635BE625B48AFC1666DD42A09D96E7
826Operation = DECRYPT
827Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
828Ciphertext = 0126141D67F37BE8538F5A8BE740E484
829
52b66a62 830
d976f992 831# AES Counter test vectors from RFC3686
7303b472
DSH
832Cipher = aes-128-ctr
833Key = AE6852F8121067CC4BF7A5765577F39E
834IV = 00000030000000000000000000000001
835Operation = ENCRYPT
836Plaintext = 53696E676C6520626C6F636B206D7367
837Ciphertext = E4095D4FB7A7B3792D6175A3261311B8
d976f992 838
7303b472
DSH
839Cipher = aes-128-ctr
840Key = 7E24067817FAE0D743D6CE1F32539163
841IV = 006CB6DBC0543B59DA48D90B00000001
842Operation = ENCRYPT
843Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
844Ciphertext = 5104A106168A72D9790D41EE8EDAD388EB2E1EFC46DA57C8FCE630DF9141BE28
845
846Cipher = aes-128-ctr
847Key = 7691BE035E5020A8AC6E618529F9A0DC
848IV = 00E0017B27777F3F4A1786F000000001
849Operation = ENCRYPT
850Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
851Ciphertext = C1CF48A89F2FFDD9CF4652E9EFDB72D74540A42BDE6D7836D59A5CEAAEF3105325B2072F
852
853
854Cipher = aes-192-ctr
855Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
856IV = 0000004836733C147D6D93CB00000001
857Operation = ENCRYPT
858Plaintext = 53696E676C6520626C6F636B206D7367
859Ciphertext = 4B55384FE259C9C84E7935A003CBE928
860
861Cipher = aes-192-ctr
862Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
863IV = 0096B03B020C6EADC2CB500D00000001
864Operation = ENCRYPT
865Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
866Ciphertext = 453243FC609B23327EDFAAFA7131CD9F8490701C5AD4A79CFC1FE0FF42F4FB00
867
868Cipher = aes-192-ctr
869Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
870IV = 0007BDFD5CBD60278DCC091200000001
871Operation = ENCRYPT
872Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
873Ciphertext = 96893FC55E5C722F540B7DD1DDF7E758D288BC95C69165884536C811662F2188ABEE0935
874
875
876Cipher = aes-256-ctr
877Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
878IV = 00000060DB5672C97AA8F0B200000001
879Operation = ENCRYPT
880Plaintext = 53696E676C6520626C6F636B206D7367
881Ciphertext = 145AD01DBF824EC7560863DC71E3E0C0
882
883Cipher = aes-256-ctr
884Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
885IV = 00FAAC24C1585EF15A43D87500000001
886Operation = ENCRYPT
887Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
888Ciphertext = F05E231B3894612C49EE000B804EB2A9B8306B508F839D6A5530831D9344AF1C
889
890Cipher = aes-256-ctr
891Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
892IV = 001CC5B751A51D70A1C1114800000001
893Operation = ENCRYPT
894Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
895Ciphertext = EB6C52821D0BBBF7CE7594462ACA4FAAB407DF866569FD07F48CC0B583D6071F1EC0E6B8
d976f992 896
d976f992 897
b47f116b
AP
898# Self-generated vector to trigger false carry on big-endian platforms
899Cipher = aes-128-ctr
900Key = 7E24067817FAE0D743D6CE1F32539163
901IV = 00000000000000007FFFFFFFFFFFFFFF
902Operation = ENCRYPT
903Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
904Ciphertext = A2D459477E6432BD74184B1B5370D2243CDC202BC43583B2A55D288CDBBD1E03
905
0e360199 906# DES ECB tests (from destest)
a8a00498 907
7303b472
DSH
908Cipher = DES-ECB
909Key = 0000000000000000
910Plaintext = 0000000000000000
911Ciphertext = 8CA64DE9C1B123A7
912
913Cipher = DES-ECB
914Key = FFFFFFFFFFFFFFFF
915Plaintext = FFFFFFFFFFFFFFFF
916Ciphertext = 7359B2163E4EDC58
917
918Cipher = DES-ECB
919Key = 3000000000000000
920Plaintext = 1000000000000001
921Ciphertext = 958E6E627A05557B
922
923Cipher = DES-ECB
924Key = 1111111111111111
925Plaintext = 1111111111111111
926Ciphertext = F40379AB9E0EC533
927
928Cipher = DES-ECB
929Key = 0123456789ABCDEF
930Plaintext = 1111111111111111
931Ciphertext = 17668DFC7292532D
932
933Cipher = DES-ECB
934Key = 1111111111111111
935Plaintext = 0123456789ABCDEF
936Ciphertext = 8A5AE1F81AB8F2DD
937
938Cipher = DES-ECB
939Key = FEDCBA9876543210
940Plaintext = 0123456789ABCDEF
941Ciphertext = ED39D950FA74BCC4
942
c41ab9ad
BL
943
944# DESX-CBC tests (from destest)
7303b472
DSH
945Cipher = DESX-CBC
946Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
947IV = fedcba9876543210
948Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
949Ciphertext = 846B2914851E9A2954732F8AA0A611C115CDC2D7951B1053A63C5E03B21AA3C4
950
a8a00498 951
0e360199 952# DES EDE3 CBC tests (from destest)
7303b472
DSH
953Cipher = DES-EDE3-CBC
954Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
955IV = fedcba9876543210
956Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
957Ciphertext = 3FE301C962AC01D02213763C1CBD4CDC799657C064ECF5D41C673812CFDE9675
958
a8a00498 959
816060d2 960# RC4 tests
7303b472
DSH
961Cipher = RC4
962Key = 0123456789abcdef0123456789abcdef
963Plaintext = 0123456789abcdef
964Ciphertext = 75b7878099e0c596
965
966Cipher = RC4
967Key = 0123456789abcdef0123456789abcdef
968Plaintext = 0000000000000000
969Ciphertext = 7494c2e7104b0879
970
971Cipher = RC4
972Key = 00000000000000000000000000000000
973Plaintext = 0000000000000000
974Ciphertext = de188941a3375d3a
975
976Cipher = RC4
977Key = ef012345ef012345ef012345ef012345
978Plaintext = 0000000000000000000000000000000000000000
979Ciphertext = d6a141a7ec3c38dfbd615a1162e1c7ba36b67858
980
981Cipher = RC4
982Key = 0123456789abcdef0123456789abcdef
983Plaintext = 123456789ABCDEF0123456789ABCDEF0123456789ABCDEF012345678
984Ciphertext = 66a0949f8af7d6891f7f832ba833c00c892ebe30143ce28740011ecf
985
986Cipher = RC4
987Key = ef012345ef012345ef012345ef012345
988Plaintext = 00000000000000000000
989Ciphertext = d6a141a7ec3c38dfbd61
990
f3dea9a5
BM
991
992
993# Camellia tests from RFC3713
994# For all ECB encrypts and decrypts, the transformed sequence is
995# CAMELLIA-bits-ECB:key::plaintext:ciphertext:encdec
7303b472
DSH
996Cipher = CAMELLIA-128-ECB
997Key = 0123456789abcdeffedcba9876543210
998Plaintext = 0123456789abcdeffedcba9876543210
999Ciphertext = 67673138549669730857065648eabe43
1000
1001Cipher = CAMELLIA-192-ECB
1002Key = 0123456789abcdeffedcba98765432100011223344556677
1003Plaintext = 0123456789abcdeffedcba9876543210
1004Ciphertext = b4993401b3e996f84ee5cee7d79b09b9
1005
1006Cipher = CAMELLIA-256-ECB
1007Key = 0123456789abcdeffedcba987654321000112233445566778899aabbccddeeff
1008Plaintext = 0123456789abcdeffedcba9876543210
1009Ciphertext = 9acc237dff16d76c20ef7c919e3a7509
1010
f3dea9a5
BM
1011
1012# ECB-CAMELLIA128.Encrypt
7303b472
DSH
1013Cipher = CAMELLIA-128-ECB
1014Key = 000102030405060708090A0B0C0D0E0F
1015Operation = ENCRYPT
1016Plaintext = 00112233445566778899AABBCCDDEEFF
1017Ciphertext = 77CF412067AF8270613529149919546F
1018
1019Cipher = CAMELLIA-192-ECB
1020Key = 000102030405060708090A0B0C0D0E0F1011121314151617
1021Operation = ENCRYPT
1022Plaintext = 00112233445566778899AABBCCDDEEFF
1023Ciphertext = B22F3C36B72D31329EEE8ADDC2906C68
1024
1025Cipher = CAMELLIA-256-ECB
1026Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1027Operation = ENCRYPT
1028Plaintext = 00112233445566778899AABBCCDDEEFF
1029Ciphertext = 2EDF1F3418D53B88841FC8985FB1ECF2
1030
1031
1032# ECB-CAMELLIA128.Encrypt and ECB-CAMELLIA128.Decrypt
1033Cipher = CAMELLIA-128-ECB
1034Key = 2B7E151628AED2A6ABF7158809CF4F3C
1035Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1036Ciphertext = 432FC5DCD628115B7C388D770B270C96
1037
1038Cipher = CAMELLIA-128-ECB
1039Key = 2B7E151628AED2A6ABF7158809CF4F3C
1040Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1041Ciphertext = 0BE1F14023782A22E8384C5ABB7FAB2B
1042
1043Cipher = CAMELLIA-128-ECB
1044Key = 2B7E151628AED2A6ABF7158809CF4F3C
1045Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1046Ciphertext = A0A1ABCD1893AB6FE0FE5B65DF5F8636
1047
1048Cipher = CAMELLIA-128-ECB
1049Key = 2B7E151628AED2A6ABF7158809CF4F3C
1050Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1051Ciphertext = E61925E0D5DFAA9BB29F815B3076E51A
1052
1053
1054# ECB-CAMELLIA192.Encrypt and ECB-CAMELLIA192.Decrypt
1055Cipher = CAMELLIA-192-ECB
1056Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1057Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1058Ciphertext = CCCC6C4E138B45848514D48D0D3439D3
1059
1060Cipher = CAMELLIA-192-ECB
1061Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1062Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1063Ciphertext = 5713C62C14B2EC0F8393B6AFD6F5785A
1064
1065Cipher = CAMELLIA-192-ECB
1066Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1067Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1068Ciphertext = B40ED2B60EB54D09D030CF511FEEF366
1069
1070Cipher = CAMELLIA-192-ECB
1071Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1072Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1073Ciphertext = 909DBD95799096748CB27357E73E1D26
1074
1075
1076# ECB-CAMELLIA256.Encrypt and ECB-CAMELLIA256.Decrypt
1077Cipher = CAMELLIA-256-ECB
1078Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1079Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1080Ciphertext = BEFD219B112FA00098919CD101C9CCFA
1081
1082Cipher = CAMELLIA-256-ECB
1083Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1084Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1085Ciphertext = C91D3A8F1AEA08A9386CF4B66C0169EA
1086
1087Cipher = CAMELLIA-256-ECB
1088Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1089Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1090Ciphertext = A623D711DC5F25A51BB8A80D56397D28
1091
1092Cipher = CAMELLIA-256-ECB
1093Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1094Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1095Ciphertext = 7960109FB6DC42947FCFE59EA3C5EB6B
1096
f3dea9a5
BM
1097
1098# For all CBC encrypts and decrypts, the transformed sequence is
1099# CAMELLIA-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
1100# CBC-CAMELLIA128.Encrypt and CBC-CAMELLIA128.Decrypt
1101Cipher = CAMELLIA-128-CBC
1102Key = 2B7E151628AED2A6ABF7158809CF4F3C
1103IV = 000102030405060708090A0B0C0D0E0F
1104Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1105Ciphertext = 1607CF494B36BBF00DAEB0B503C831AB
1106
1107Cipher = CAMELLIA-128-CBC
1108Key = 2B7E151628AED2A6ABF7158809CF4F3C
1109IV = 1607CF494B36BBF00DAEB0B503C831AB
1110Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1111Ciphertext = A2F2CF671629EF7840C5A5DFB5074887
1112
1113Cipher = CAMELLIA-128-CBC
1114Key = 2B7E151628AED2A6ABF7158809CF4F3C
1115IV = A2F2CF671629EF7840C5A5DFB5074887
1116Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1117Ciphertext = 0F06165008CF8B8B5A63586362543E54
1118
1119Cipher = CAMELLIA-128-CBC
1120Key = 2B7E151628AED2A6ABF7158809CF4F3C
1121IV = 36A84CDAFD5F9A85ADA0F0A993D6D577
1122Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1123Ciphertext = 74C64268CDB8B8FAF5B34E8AF3732980
1124
1125
1126# CBC-CAMELLIA192.Encrypt and CBC-CAMELLIA192.Decrypt
1127Cipher = CAMELLIA-192-CBC
1128Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1129IV = 000102030405060708090A0B0C0D0E0F
1130Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1131Ciphertext = 2A4830AB5AC4A1A2405955FD2195CF93
1132
1133Cipher = CAMELLIA-192-CBC
1134Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1135IV = 2A4830AB5AC4A1A2405955FD2195CF93
1136Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1137Ciphertext = 5D5A869BD14CE54264F892A6DD2EC3D5
1138
1139Cipher = CAMELLIA-192-CBC
1140Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1141IV = 5D5A869BD14CE54264F892A6DD2EC3D5
1142Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1143Ciphertext = 37D359C3349836D884E310ADDF68C449
1144
1145Cipher = CAMELLIA-192-CBC
1146Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1147IV = 37D359C3349836D884E310ADDF68C449
1148Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1149Ciphertext = 01FAAA930B4AB9916E9668E1428C6B08
1150
1151
1152# CBC-CAMELLIA256.Encrypt and CBC-CAMELLIA256.Decrypt
1153Cipher = CAMELLIA-256-CBC
1154Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1155IV = 000102030405060708090A0B0C0D0E0F
1156Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1157Ciphertext = E6CFA35FC02B134A4D2C0B6737AC3EDA
1158
1159Cipher = CAMELLIA-256-CBC
1160Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1161IV = E6CFA35FC02B134A4D2C0B6737AC3EDA
1162Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1163Ciphertext = 36CBEB73BD504B4070B1B7DE2B21EB50
1164
1165Cipher = CAMELLIA-256-CBC
1166Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1167IV = 36CBEB73BD504B4070B1B7DE2B21EB50
1168Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1169Ciphertext = E31A6055297D96CA3330CDF1B1860A83
1170
1171Cipher = CAMELLIA-256-CBC
1172Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1173IV = E31A6055297D96CA3330CDF1B1860A83
1174Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1175Ciphertext = 5D563F6D1CCCF236051C0C5C1C58F28F
1176
f3dea9a5
BM
1177
1178# We don't support CFB{1,8}-CAMELLIAxxx.{En,De}crypt
1179# For all CFB128 encrypts and decrypts, the transformed sequence is
1180# CAMELLIA-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
7303b472
DSH
1181# CFB128-CAMELLIA128.Encrypt
1182Cipher = CAMELLIA-128-CFB
1183Key = 2B7E151628AED2A6ABF7158809CF4F3C
1184IV = 000102030405060708090A0B0C0D0E0F
1185Operation = ENCRYPT
1186Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1187Ciphertext = 14F7646187817EB586599146B82BD719
1188
1189Cipher = CAMELLIA-128-CFB
1190Key = 2B7E151628AED2A6ABF7158809CF4F3C
1191IV = 14F7646187817EB586599146B82BD719
1192Operation = ENCRYPT
1193Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1194Ciphertext = A53D28BB82DF741103EA4F921A44880B
1195
1196Cipher = CAMELLIA-128-CFB
1197Key = 2B7E151628AED2A6ABF7158809CF4F3C
1198IV = A53D28BB82DF741103EA4F921A44880B
1199Operation = ENCRYPT
1200Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1201Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1202
1203Cipher = CAMELLIA-128-CFB
1204Key = 2B7E151628AED2A6ABF7158809CF4F3C
1205IV = 9C2157A664626D1DEF9EA420FDE69B96
1206Operation = ENCRYPT
1207Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1208Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1209
1210
1211# CFB128-CAMELLIA128.Decrypt
1212Cipher = CAMELLIA-128-CFB
1213Key = 2B7E151628AED2A6ABF7158809CF4F3C
1214IV = 000102030405060708090A0B0C0D0E0F
1215Operation = DECRYPT
1216Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1217Ciphertext = 14F7646187817EB586599146B82BD719
1218
1219Cipher = CAMELLIA-128-CFB
1220Key = 2B7E151628AED2A6ABF7158809CF4F3C
1221IV = 14F7646187817EB586599146B82BD719
1222Operation = DECRYPT
1223Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1224Ciphertext = A53D28BB82DF741103EA4F921A44880B
1225
1226Cipher = CAMELLIA-128-CFB
1227Key = 2B7E151628AED2A6ABF7158809CF4F3C
1228IV = A53D28BB82DF741103EA4F921A44880B
1229Operation = DECRYPT
1230Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1231Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1232
1233Cipher = CAMELLIA-128-CFB
1234Key = 2B7E151628AED2A6ABF7158809CF4F3C
1235IV = 9C2157A664626D1DEF9EA420FDE69B96
1236Operation = DECRYPT
1237Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1238Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1239
f3dea9a5
BM
1240
1241# CFB128-CAMELLIA192.Encrypt
7303b472
DSH
1242Cipher = CAMELLIA-192-CFB
1243Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1244IV = 000102030405060708090A0B0C0D0E0F
1245Operation = ENCRYPT
1246Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1247Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1248
1249Cipher = CAMELLIA-192-CFB
1250Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1251IV = C832BB9780677DAA82D9B6860DCD565E
1252Operation = ENCRYPT
1253Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1254Ciphertext = 86F8491627906D780C7A6D46EA331F98
1255
1256Cipher = CAMELLIA-192-CFB
1257Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1258IV = 86F8491627906D780C7A6D46EA331F98
1259Operation = ENCRYPT
1260Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1261Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1262
1263Cipher = CAMELLIA-192-CFB
1264Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1265IV = 69511CCE594CF710CB98BB63D7221F01
1266Operation = ENCRYPT
1267Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1268Ciphertext = D5B5378A3ABED55803F25565D8907B84
1269
f3dea9a5
BM
1270
1271# CFB128-CAMELLIA192.Decrypt
7303b472
DSH
1272Cipher = CAMELLIA-192-CFB
1273Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1274IV = 000102030405060708090A0B0C0D0E0F
1275Operation = DECRYPT
1276Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1277Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1278
1279Cipher = CAMELLIA-192-CFB
1280Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1281IV = C832BB9780677DAA82D9B6860DCD565E
1282Operation = DECRYPT
1283Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1284Ciphertext = 86F8491627906D780C7A6D46EA331F98
1285
1286Cipher = CAMELLIA-192-CFB
1287Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1288IV = 86F8491627906D780C7A6D46EA331F98
1289Operation = DECRYPT
1290Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1291Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1292
1293Cipher = CAMELLIA-192-CFB
1294Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1295IV = 69511CCE594CF710CB98BB63D7221F01
1296Operation = DECRYPT
1297Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1298Ciphertext = D5B5378A3ABED55803F25565D8907B84
1299
1300
1301# CFB128-CAMELLIA256.Encrypt
1302Cipher = CAMELLIA-256-CFB
1303Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1304IV = 000102030405060708090A0B0C0D0E0F
1305Operation = ENCRYPT
1306Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1307Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1308
1309Cipher = CAMELLIA-256-CFB
1310Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1311IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1312Operation = ENCRYPT
1313Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1314Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1315
1316Cipher = CAMELLIA-256-CFB
1317Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1318IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1319Operation = ENCRYPT
1320Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1321Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1322
1323Cipher = CAMELLIA-256-CFB
1324Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1325IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1326Operation = ENCRYPT
1327Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1328Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1329
1330
1331# CFB128-CAMELLIA256.Decrypt
1332Cipher = CAMELLIA-256-CFB
1333Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1334IV = 000102030405060708090A0B0C0D0E0F
1335Operation = DECRYPT
1336Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1337Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1338
1339Cipher = CAMELLIA-256-CFB
1340Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1341IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1342Operation = DECRYPT
1343Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1344Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1345
1346Cipher = CAMELLIA-256-CFB
1347Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1348IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1349Operation = DECRYPT
1350Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1351Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1352
1353Cipher = CAMELLIA-256-CFB
1354Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1355IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1356Operation = DECRYPT
1357Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1358Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1359
f3dea9a5
BM
1360
1361# For all OFB encrypts and decrypts, the transformed sequence is
1362# CAMELLIA-bits-OFB:key:IV/output':plaintext:ciphertext:encdec
7303b472
DSH
1363# OFB-CAMELLIA128.Encrypt
1364Cipher = CAMELLIA-128-OFB
1365Key = 2B7E151628AED2A6ABF7158809CF4F3C
1366IV = 000102030405060708090A0B0C0D0E0F
1367Operation = ENCRYPT
1368Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1369Ciphertext = 14F7646187817EB586599146B82BD719
1370
1371Cipher = CAMELLIA-128-OFB
1372Key = 2B7E151628AED2A6ABF7158809CF4F3C
1373IV = 50FE67CC996D32B6DA0937E99BAFEC60
1374Operation = ENCRYPT
1375Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1376Ciphertext = 25623DB569CA51E01482649977E28D84
1377
1378Cipher = CAMELLIA-128-OFB
1379Key = 2B7E151628AED2A6ABF7158809CF4F3C
1380IV = D9A4DADA0892239F6B8B3D7680E15674
1381Operation = ENCRYPT
1382Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1383Ciphertext = C776634A60729DC657D12B9FCA801E98
1384
1385Cipher = CAMELLIA-128-OFB
1386Key = 2B7E151628AED2A6ABF7158809CF4F3C
1387IV = A78819583F0308E7A6BF36B1386ABF23
1388Operation = ENCRYPT
1389Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1390Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1391
1392
1393# OFB-CAMELLIA128.Decrypt
1394Cipher = CAMELLIA-128-OFB
1395Key = 2B7E151628AED2A6ABF7158809CF4F3C
1396IV = 000102030405060708090A0B0C0D0E0F
1397Operation = DECRYPT
1398Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1399Ciphertext = 14F7646187817EB586599146B82BD719
1400
1401Cipher = CAMELLIA-128-OFB
1402Key = 2B7E151628AED2A6ABF7158809CF4F3C
1403IV = 50FE67CC996D32B6DA0937E99BAFEC60
1404Operation = DECRYPT
1405Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1406Ciphertext = 25623DB569CA51E01482649977E28D84
1407
1408Cipher = CAMELLIA-128-OFB
1409Key = 2B7E151628AED2A6ABF7158809CF4F3C
1410IV = D9A4DADA0892239F6B8B3D7680E15674
1411Operation = DECRYPT
1412Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1413Ciphertext = C776634A60729DC657D12B9FCA801E98
1414
1415Cipher = CAMELLIA-128-OFB
1416Key = 2B7E151628AED2A6ABF7158809CF4F3C
1417IV = A78819583F0308E7A6BF36B1386ABF23
1418Operation = DECRYPT
1419Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1420Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1421
1422
1423# OFB-CAMELLIA192.Encrypt
1424Cipher = CAMELLIA-192-OFB
1425Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1426IV = 000102030405060708090A0B0C0D0E0F
1427Operation = ENCRYPT
1428Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1429Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1430
1431Cipher = CAMELLIA-192-OFB
1432Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1433IV = A609B38DF3B1133DDDFF2718BA09565E
1434Operation = ENCRYPT
1435Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1436Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1437
1438Cipher = CAMELLIA-192-OFB
1439Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1440IV = 52EF01DA52602FE0975F78AC84BF8A50
1441Operation = ENCRYPT
1442Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1443Ciphertext = BDD62DBBB9700846C53B507F544696F0
1444
1445Cipher = CAMELLIA-192-OFB
1446Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1447IV = BD5286AC63AABD7EB067AC54B553F71D
1448Operation = ENCRYPT
1449Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1450Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1451
1452
1453# OFB-CAMELLIA192.Decrypt
1454Cipher = CAMELLIA-192-OFB
1455Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1456IV = 000102030405060708090A0B0C0D0E0F
1457Operation = DECRYPT
1458Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1459Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1460
1461Cipher = CAMELLIA-192-OFB
1462Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1463IV = A609B38DF3B1133DDDFF2718BA09565E
1464Operation = DECRYPT
1465Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1466Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1467
1468Cipher = CAMELLIA-192-OFB
1469Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1470IV = 52EF01DA52602FE0975F78AC84BF8A50
1471Operation = DECRYPT
1472Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1473Ciphertext = BDD62DBBB9700846C53B507F544696F0
1474
1475Cipher = CAMELLIA-192-OFB
1476Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1477IV = BD5286AC63AABD7EB067AC54B553F71D
1478Operation = DECRYPT
1479Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1480Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1481
1482
1483# OFB-CAMELLIA256.Encrypt
1484Cipher = CAMELLIA-256-OFB
1485Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1486IV = 000102030405060708090A0B0C0D0E0F
1487Operation = ENCRYPT
1488Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1489Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1490
1491Cipher = CAMELLIA-256-OFB
1492Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1493IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1494Operation = ENCRYPT
1495Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1496Ciphertext = 127AD97E8E3994E4820027D7BA109368
1497
1498Cipher = CAMELLIA-256-OFB
1499Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1500IV = E1C656305ED1A7A6563805746FE03EDC
1501Operation = ENCRYPT
1502Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1503Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1504
1505Cipher = CAMELLIA-256-OFB
1506Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1507IV = 41635BE625B48AFC1666DD42A09D96E7
1508Operation = ENCRYPT
1509Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1510Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1511
1512
1513# OFB-CAMELLIA256.Decrypt
1514Cipher = CAMELLIA-256-OFB
1515Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1516IV = 000102030405060708090A0B0C0D0E0F
1517Operation = DECRYPT
1518Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1519Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1520
1521Cipher = CAMELLIA-256-OFB
1522Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1523IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1524Operation = DECRYPT
1525Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1526Ciphertext = 127AD97E8E3994E4820027D7BA109368
1527
1528Cipher = CAMELLIA-256-OFB
1529Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1530IV = E1C656305ED1A7A6563805746FE03EDC
1531Operation = DECRYPT
1532Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1533Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1534
1535Cipher = CAMELLIA-256-OFB
1536Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1537IV = 41635BE625B48AFC1666DD42A09D96E7
1538Operation = DECRYPT
1539Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1540Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1541
f3dea9a5 1542
dda81999
AP
1543# Camellia test vectors from RFC5528
1544Cipher = CAMELLIA-128-CTR
1545Key = AE6852F8121067CC4BF7A5765577F39E
1546IV = 00000030000000000000000000000001
1547Operation = ENCRYPT
1548Plaintext = 53696E676C6520626C6F636B206D7367
1549Ciphertext = D09DC29A8214619A20877C76DB1F0B3F
1550
1551Cipher = CAMELLIA-128-CTR
1552Key = 7E24067817FAE0D743D6CE1F32539163
1553IV = 006CB6DBC0543B59DA48D90B00000001
1554Operation = ENCRYPT
1555Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1556Ciphertext = DBF3C78DC08396D4DA7C907765BBCB442B8E8E0F31F0DCA72C7417E35360E048
1557
1558Cipher = CAMELLIA-128-CTR
1559Key = 7691BE035E5020A8AC6E618529F9A0DC
1560IV = 00E0017B27777F3F4A1786F000000001
1561Operation = ENCRYPT
1562Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1563Ciphertext = B19D1FCDCB75EB882F849CE24D85CF739CE64B2B5C9D73F14F2D5D9DCE9889CDDF508696
1564
1565Cipher = CAMELLIA-192-CTR
1566Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
1567IV = 0000004836733C147D6D93CB00000001
1568Operation = ENCRYPT
1569Plaintext = 53696E676C6520626C6F636B206D7367
1570Ciphertext = 2379399E8A8D2B2B16702FC78B9E9696
1571
1572Cipher = CAMELLIA-192-CTR
1573Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
1574IV = 0096B03B020C6EADC2CB500D00000001
1575Operation = ENCRYPT
1576Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1577Ciphertext = 7DEF34F7A5D0E415674B7FFCAE67C75DD018B86FF23051E056392A99F35A4CED
1578
1579Cipher = CAMELLIA-192-CTR
1580Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
1581IV = 0007BDFD5CBD60278DCC091200000001
1582Operation = ENCRYPT
1583Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1584Ciphertext = 5710E556E1487A20B5AC0E73F19E4E7876F37FDC91B1EF4D4DADE8E666A64D0ED557AB57
1585
1586Cipher = CAMELLIA-256-CTR
1587Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
1588IV = 00000060DB5672C97AA8F0B200000001
1589Operation = ENCRYPT
1590Plaintext = 53696E676C6520626C6F636B206D7367
1591Ciphertext = 3401F9C8247EFFCEBD6994714C1BBB11
1592
1593Cipher = CAMELLIA-256-CTR
1594Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
1595IV = 00FAAC24C1585EF15A43D87500000001
1596Operation = ENCRYPT
1597Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1598Ciphertext = D6C30392246F7808A83C2B22A8839E45E51CD48A1CDF406EBC9CC2D3AB834108
1599
1600Cipher = CAMELLIA-256-CTR
1601Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
1602IV = 001CC5B751A51D70A1C1114800000001
1603Operation = ENCRYPT
1604Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1605Ciphertext = A4DA23FCE6A5FFAA6D64AE9A0652A42CD161A34B65F9679F75C01F101F71276F15EF0D8D
1606
d42d0a4d
P
1607
1608# ARIA test vectors from RFC5794
1609Cipher = ARIA-128-ECB
1610Key = 000102030405060708090a0b0c0d0e0f
1611Plaintext = 00112233445566778899aabbccddeeff
1612Ciphertext = d718fbd6ab644c739da95f3be6451778
1613
1614Cipher = ARIA-192-ECB
1615Key = 000102030405060708090a0b0c0d0e0f1011121314151617
1616Plaintext = 00112233445566778899aabbccddeeff
1617Ciphertext = 26449c1805dbe7aa25a468ce263a9e79
1618
1619Cipher = ARIA-256-ECB
1620Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
1621Plaintext = 00112233445566778899aabbccddeeff
1622Ciphertext = f92bd7c79fb72e2f2b8f80c1972d24fc
1623
1624# Additional ARIA mode vectors from http://210.104.33.10/ARIA/doc/ARIA-testvector-e.pdf
1625Cipher = ARIA-128-ECB
1626Key = 00112233445566778899aabbccddeeff
1627Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1628Ciphertext = c6ecd08e22c30abdb215cf74e2075e6e29ccaac63448708d331b2f816c51b17d9e133d1528dbf0af5787c7f3a3f5c2bf6b6f345907a3055612ce072ff54de7d788424da6e8ccfe8172b391be499354165665ba7864917000a6eeb2ecb4a698edfc7887e7f556377614ab0a282293e6d884dbb84206cdb16ed1754e77a1f243fd086953f752cc1e46c7c794ae85537dcaec8dd721f55c93b6edfe2adea43873e8
1629
1630Cipher = ARIA-128-CBC
1631Key = 00112233445566778899aabbccddeeff
1632IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1633Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1634Ciphertext = 49d61860b14909109cef0d22a9268134fadf9fb23151e9645fba75018bdb1538b53334634bbf7d4cd4b5377033060c155fe3948ca75de1031e1d85619e0ad61eb419a866b3c2dbfd10a4ed18b22149f75897f0b8668b0c1c542c687778835fb7cd46e45f85eaa7072437dd9fa6793d6f8d4ccefc4eb1ac641ac1bd30b18c6d64c49bca137eb21c2e04da62712ca2b4f540c57112c38791852cfac7a5d19ed83a
1635
1636Cipher = ARIA-128-CFB
1637Key = 00112233445566778899aabbccddeeff
1638IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1639Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1640Ciphertext = 3720e53ba7d615383406b09f0a05a200c07c21e6370f413a5d132500a68285017c61b434c7b7ca9685a51071861e4d4bb873b599b479e2d573dddeafba89f812ac6a9e44d554078eb3be94839db4b33da3f59c063123a7ef6f20e10579fa4fd239100ca73b52d4fcafeadee73f139f78f9b7614c2b3b9dbe010f87db06a89a9435f79ce8121431371f4e87b984e0230c22a6dacb32fc42dcc6accef33285bf11
1641
1642Cipher = ARIA-128-CFB8
1643Key = 00112233445566778899aabbccddeeff
1644IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1645Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1646Ciphertext = 373c8f6a965599ec785cc8f8149f6c81b632ccb8e0c6eb6a9707ae52c59257a41f94701c1096933127a90195ed0c8e98690547572423bb45c3d70e4a18ee56b967c10e000ba4df5fba7c404134a343d8375d04b151d161ef83417fe1748447d30a6723c406733df7d18aa39a20752d2381942e244811bb97f72eae446b1815aa690cd1b1adcbd007c0088ecdc91cb2e2caf0e11e72459878137eea64ac62a9a1
1647
1648Cipher = ARIA-128-OFB
1649Key = 00112233445566778899aabbccddeeff
1650IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1651Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1652Ciphertext = 3720e53ba7d615383406b09f0a05a2000063063f0560083483faeb041c8adecef30cf80cefb002a0d280759168ec01db3d49f61aced260bd43eec0a2731730eec6fa4f2304319cf8ccac2d7be7833e4f8ae6ce967012c1c6badc5d28e7e4144f6bf5cebe01253ee202afce4bc61f28dec069a6f16f6c8a7dd2afae44148f6ff4d0029d5c607b5fa6b8c8a6301cde5c7033565cd0b8f0974ab490b236197ba04a
1653
1654Cipher = ARIA-128-CTR
1655Key = 00112233445566778899aabbccddeeff
1656IV = 00000000000000000000000000000000
1657Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1658Ciphertext = ac5d7de805a0bf1c57c854501af60fa11497e2a34519dea1569e91e5b5ccae2ff3bfa1bf975f4571f48be191613546c3911163c085f871f0e7ae5f2a085b81851c2a3ddf20ecb8fa51901aec8ee4ba32a35dab67bb72cd9140ad188a967ac0fbbdfa94ea6cce47dcf8525ab5a814cfeb2bb60ee2b126e2d9d847c1a9e96f9019e3e6a7fe40d3829afb73db1cc245646addb62d9b907baaafbe46a73dbc131d3d
1659
1660Cipher = ARIA-192-ECB
1661Key = 00112233445566778899aabbccddeeff0011223344556677
1662Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1663Ciphertext = 8d1470625f59ebacb0e55b534b3e462b5f23d33bff78f46c3c15911f4a21809aaccad80b4bda915aa9dae6bcebe06a6c83f77fd5391acfe61de2f646b5d447edbfd5bb49b12fbb9145b227895a757b2af1f7188734863d7b8b6ede5a5b2f06a0a233c8523d2db778fb31b0e311f32700152f33861e9d040c83b5eb40cd88ea49975709dc629365a189f78a3ec40345fc6a5a307a8f9a4413091e007eca5645a0
1664
1665Cipher = ARIA-192-CBC
1666Key = 00112233445566778899aabbccddeeff0011223344556677
1667IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1668Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1669Ciphertext = afe6cf23974b533c672a826264ea785f4e4f7f780dc7f3f1e0962b80902386d514e9c3e77259de92dd1102ffab086c1ea52a71260db5920a83295c25320e421147ca45d532f327b856ea947cd2196ae2e040826548b4c891b0ed0ca6e714dbc4631998d548110d666b3d54c2a091955c6f05beb4f62309368696c9791fc4c551564a2637f194346ec45fbca6c72a5b4612e208d531d6c34cc5c64eac6bd0cf8c
1670
1671Cipher = ARIA-192-CFB
1672Key = 00112233445566778899aabbccddeeff0011223344556677
1673IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1674Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1675Ciphertext = 4171f7192bf4495494d2736129640f5c4d87a9a213664c9448477c6ecc2013598d9766952dd8c3868f17e36ef66fd84bfa45d1593d2d6ee3ea2115047d710d4fb66187caa3a315b3c8ea2d313962edcfe5a3e2028d5ba9a09fd5c65c19d3440e477f0cab0628ec6902c73ee02f1afee9f80115be7b9df82d1e28228e28581a20560e195cbb9e2b327bf56fd2d0ae5502e42c13e9b4015d4da42dc859252e7da4
1676
1677Cipher = ARIA-192-CFB8
1678Key = 00112233445566778899aabbccddeeff0011223344556677
1679IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1680Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1681Ciphertext = 411d3b4f57f705aa4d13c46e2cf426af7c8c916ed7923d889f0047bbf11471b6d54f8757ef519339105be3cb69babb976a57d5631fc23cc3051fe9d36e8b8e27a2b2c0c4d31928ccbf30ea8239b46ba1b77f6198e7ecd2ce27b35958148e826f06aaf385bd30362ff141583e7c1d8924d44d36a1133094074631e18adafa9d2e55de98f6895c89d4266ebd33f3d4be5153a96fa12132ece2e81e66e55baa7ade
1682
1683Cipher = ARIA-192-OFB
1684Key = 00112233445566778899aabbccddeeff0011223344556677
1685IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1686Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1687Ciphertext = 4171f7192bf4495494d2736129640f5cc224d26d364b5a06ddde13d0f1e74faa846de354c63cda77469d1a2d425c47ff41734c71b3fa1fcdc11e0b2de22bfeed54898e233df652c75ae136e61de6524e62b3f806fb2e8e616eb410a1b9500537e327ffb04f19f7f82fde2b122100261f81b82723bf936be7beaaf3067d1c036001f1ade71422268d274d7dc6c6ae1970b27a5f2c2f39c1d241fe8cac5ccd74e9
1688
1689Cipher = ARIA-192-CTR
1690Key = 00112233445566778899aabbccddeeff0011223344556677
1691IV = 00000000000000000000000000000000
1692Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1693Ciphertext = 08625ca8fe569c19ba7af3760a6ed1cef4d199263e999dde14082dbba7560b79a4c6b456b8707dce751f9854f18893dfdb3f4e5afa539733e6f1e70b98ba37891f8f81e95df8efc26c7ce043504cb18958b865e4e316cd2aa1c97f31bf23dc046ef326b95a692a191ba0f2a41c5fe9ae070f236ff7078e703b42666caafbdd20bad74ac4c20c0f46c7ca24c151716575c947da16c90cfe1bf217a41cfebe7531
1694
1695Cipher = ARIA-256-ECB
1696Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1697Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1698Ciphertext = 58a875e6044ad7fffa4f58420f7f442d8e191016f28e79aefc01e204773280d7018e5f7a938ec30711719953bae86542cd7ebc752474c1a5f6eaaace2a7e29462ee7dfa5afdb84177ead95ccd4b4bb6e1ed17b9534cff0a5fc2941429cfee2ee49c7adbeb7e9d1b0d2a8531d942079596a27ed79f5b1dd13ecd604b07a48885a3afa0627a0e4e60a3c703af292f1baa77b702f16c54aa74bc727ea95c7468b00
1699
1700Cipher = ARIA-256-CBC
1701Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1702IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1703Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1704Ciphertext = 523a8a806ae621f155fdd28dbc34e1ab7b9b42432ad8b2efb96e23b13f0a6e52f36185d50ad002c5f601bee5493f118b243ee2e313642bffc3902e7b2efd9a12fa682edd2d23c8b9c5f043c18b17c1ec4b5867918270fbec1027c19ed6af833da5d620994668ca22f599791d292dd6273b2959082aafb7a996167cce1eec5f0cfd15f610d87e2dda9ba68ce1260ca54b222491418374294e7909b1e8551cd8de
1705
1706Cipher = ARIA-256-CFB
1707Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1708IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1709Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1710Ciphertext = 26834705b0f2c0e2588d4a7f09009635f28bb93d8c31f870ec1e0bdb082b66fa402dd9c202be300c4517d196b14d4ce11dce97f7aaba54341b0d872cc9b63753a3e8556a14be6f7b3e27e3cfc39caf80f2a355aa50dc83c09c7b11828694f8e4aa726c528976b53f2c877f4991a3a8d28adb63bd751846ffb2350265e179d4990753ae8485ff9b4133ddad5875b84a90cbcfa62a045d726df71b6bda0eeca0be
1711
1712Cipher = ARIA-256-CFB8
1713Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1714IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1715Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1716Ciphertext = 26baa33651e1f66434fec88ef27fd2b9a79e246dd89a3ffa00e8bdb37155433e6c24bd0b87d9a85baa9f485ccb984f5ec24d6a3ef5e3c81396177f039cf580dfdb55d6e1c47a28921dfe369e12fd357b289ad3a5544e1c1bd616d454db9c5f91f603373f29d5b2ed1b4b51de80f28537bbd43d5e3b5dd071dc91153cbbe732dfc325821b06ed8acaae656dcf2da9f13e4f29db671476f1e644ff06d9b67d6bd4
1717
1718Cipher = ARIA-256-OFB
1719Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1720IV = 0f1e2d3c4b5a69788796a5b4c3d2e1f0
1721Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1722Ciphertext = 26834705b0f2c0e2588d4a7f0900963584c256815c4292b59f8d3f966a75b52345b4f5f98c785d3f368a8d5ff89b7f950ceab3cd63773c2621d652b8ef98b4196afb2c2b30496bc5b7d9e7f9084f9d855f63a511751c8909e7a6deadbe0a67a4fb89383ca5d209c6f66f793fc471195c476fb9c1eab2ac91e680e454b4f3ed9a67fb52f09c29b965b23cfa6f3f6bbb2a86c6cdbaa2857bf2486f543231892a52
1723
1724Cipher = ARIA-256-CTR
1725Key = 00112233445566778899aabbccddeeff00112233445566778899aabbccddeeff
1726IV = 00000000000000000000000000000000
1727Plaintext = 11111111aaaaaaaa11111111bbbbbbbb11111111cccccccc11111111dddddddd22222222aaaaaaaa22222222bbbbbbbb22222222cccccccc22222222dddddddd33333333aaaaaaaa33333333bbbbbbbb33333333cccccccc33333333dddddddd44444444aaaaaaaa44444444bbbbbbbb44444444cccccccc44444444dddddddd55555555aaaaaaaa55555555bbbbbbbb55555555cccccccc55555555dddddddd
1728Ciphertext = 30026c329666141721178b99c0a1f1b2f06940253f7b3089e2a30ea86aa3c88f5940f05ad7ee41d71347bb7261e348f18360473fdf7d4e7723bffb4411cc13f6cdd89f3bc7b9c768145022c7a74f14d7c305cd012a10f16050c23f1ae5c23f45998d13fbaa041e51619577e0772764896a5d4516d8ffceb3bf7e05f613edd9a60cdcedaff9cfcaf4e00d445a54334f73ab2cad944e51d266548e61c6eb0aa1cd
1729
1730
96afc1cf 1731# SEED test vectors from RFC4269
7303b472
DSH
1732Cipher = SEED-ECB
1733Key = 00000000000000000000000000000000
1734Operation = DECRYPT
1735Plaintext = 000102030405060708090A0B0C0D0E0F
1736Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1737
1738Cipher = SEED-ECB
1739Key = 000102030405060708090A0B0C0D0E0F
1740Operation = DECRYPT
1741Plaintext = 00000000000000000000000000000000
1742Ciphertext = C11F22F20140505084483597E4370F43
1743
1744Cipher = SEED-ECB
1745Key = 4706480851E61BE85D74BFB3FD956185
1746Operation = DECRYPT
1747Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1748Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1749
1750Cipher = SEED-ECB
1751Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1752Operation = DECRYPT
1753Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1754Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1755
1756Cipher = SEED-ECB
1757Key = 00000000000000000000000000000000
1758Operation = ENCRYPT
1759Plaintext = 000102030405060708090A0B0C0D0E0F
1760Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1761
1762Cipher = SEED-ECB
1763Key = 000102030405060708090A0B0C0D0E0F
1764Operation = ENCRYPT
1765Plaintext = 00000000000000000000000000000000
1766Ciphertext = C11F22F20140505084483597E4370F43
1767
1768Cipher = SEED-ECB
1769Key = 4706480851E61BE85D74BFB3FD956185
1770Operation = ENCRYPT
1771Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1772Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1773
1774Cipher = SEED-ECB
1775Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1776Operation = ENCRYPT
1777Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1778Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1779
ca303d33 1780
15652f98 1781# AES CCM 256 bit key
7303b472
DSH
1782Cipher = aes-256-ccm
1783Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1784IV = 5b8e40746f6b98e00f1d13ff41
1785AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1786Tag = 2024931d73bca480c24a24ece6b6c2bf
1787Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1788Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1789
70d8b304
AP
1790Cipher = aes-256-ccm
1791Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1792IV = 5b8e40746f6b98e00f1d13ff41
1793AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1794Tag = 2024931d73bca480c24a24ece6b6c2be
1795Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1796Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1797Operation = DECRYPT
1798Result = CIPHERUPDATE_ERROR
ca303d33
AP
1799
1800# AES GCM test vectors from http://csrc.nist.gov/groups/ST/toolkit/BCM/documents/proposedmodes/gcm/gcm-spec.pdf
7303b472
DSH
1801Cipher = aes-128-gcm
1802Key = 00000000000000000000000000000000
1803IV = 000000000000000000000000
1804AAD =
1805Tag = 58e2fccefa7e3061367f1d57a4e7455a
1806Plaintext =
1807Ciphertext =
1808
1809Cipher = aes-128-gcm
1810Key = 00000000000000000000000000000000
1811IV = 000000000000000000000000
1812AAD =
1813Tag = ab6e47d42cec13bdf53a67b21257bddf
1814Plaintext = 00000000000000000000000000000000
1815Ciphertext = 0388dace60b6a392f328c2b971b2fe78
1816
1817Cipher = aes-128-gcm
1818Key = feffe9928665731c6d6a8f9467308308
1819IV = cafebabefacedbaddecaf888
1820AAD =
1821Tag = 4d5c2af327cd64a62cf35abd2ba6fab4
1822Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1823Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091473f5985
1824
1825Cipher = aes-128-gcm
1826Key = feffe9928665731c6d6a8f9467308308
1827IV = cafebabefacedbaddecaf888
1828AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1829Tag = 5bc94fbc3221a5db94fae95ae7121a47
1830Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1831Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091
1832
1833Cipher = aes-128-gcm
1834Key = feffe9928665731c6d6a8f9467308308
1835IV = cafebabefacedbad
1836AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1837Tag = 3612d2e79e3b0785561be14aaca2fccb
1838Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1839Ciphertext = 61353b4c2806934a777ff51fa22a4755699b2a714fcdc6f83766e5f97b6c742373806900e49f24b22b097544d4896b424989b5e1ebac0f07c23f4598
1840
1841Cipher = aes-128-gcm
1842Key = feffe9928665731c6d6a8f9467308308
1843IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1844AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1845Tag = 619cc5aefffe0bfa462af43c1699d050
1846Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1847Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1848
70d8b304
AP
1849Cipher = aes-128-gcm
1850Key = feffe9928665731c6d6a8f9467308308
1851IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1852AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1853Tag = 619cc5aefffe0bfa462af43c1699d051
1854Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1855Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1856Operation = DECRYPT
1857Result = CIPHERFINAL_ERROR
1858
7303b472
DSH
1859Cipher = aes-192-gcm
1860Key = 000000000000000000000000000000000000000000000000
1861IV = 000000000000000000000000
1862AAD =
1863Tag = cd33b28ac773f74ba00ed1f312572435
1864Plaintext =
1865Ciphertext =
1866
1867Cipher = aes-192-gcm
1868Key = 000000000000000000000000000000000000000000000000
1869IV = 000000000000000000000000
1870AAD =
1871Tag = 2ff58d80033927ab8ef4d4587514f0fb
1872Plaintext = 00000000000000000000000000000000
1873Ciphertext = 98e7247c07f0fe411c267e4384b0f600
1874
1875Cipher = aes-192-gcm
1876Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1877IV = cafebabefacedbaddecaf888
1878AAD =
1879Tag = 9924a7c8587336bfb118024db8674a14
1880Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1881Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710acade256
1882
1883Cipher = aes-192-gcm
1884Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1885IV = cafebabefacedbaddecaf888
1886AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1887Tag = 2519498e80f1478f37ba55bd6d27618c
1888Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1889Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710
1890
1891Cipher = aes-192-gcm
1892Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1893IV = cafebabefacedbad
1894AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1895Tag = 65dcc57fcf623a24094fcca40d3533f8
1896Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1897Ciphertext = 0f10f599ae14a154ed24b36e25324db8c566632ef2bbb34f8347280fc4507057fddc29df9a471f75c66541d4d4dad1c9e93a19a58e8b473fa0f062f7
1898
1899Cipher = aes-192-gcm
1900Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1901IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1902AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1903Tag = dcf566ff291c25bbb8568fc3d376a6d9
1904Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1905Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1906
70d8b304
AP
1907Cipher = aes-192-gcm
1908Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1909IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1910AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1911Tag = dcf566ff291c25bbb8568fc3d376a6d8
1912Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1913Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1914Operation = DECRYPT
1915Result = CIPHERFINAL_ERROR
1916
7303b472
DSH
1917Cipher = aes-256-gcm
1918Key = 0000000000000000000000000000000000000000000000000000000000000000
1919IV = 000000000000000000000000
1920AAD =
1921Tag = 530f8afbc74536b9a963b4f1c4cb738b
1922Plaintext =
1923Ciphertext =
1924
1925Cipher = aes-256-gcm
1926Key = 0000000000000000000000000000000000000000000000000000000000000000
1927IV = 000000000000000000000000
1928AAD =
1929Tag = d0d1c8a799996bf0265b98b5d48ab919
1930Plaintext = 00000000000000000000000000000000
1931Ciphertext = cea7403d4d606b6e074ec5d3baf39d18
1932
1933Cipher = aes-256-gcm
1934Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1935IV = cafebabefacedbaddecaf888
1936AAD =
1937Tag = b094dac5d93471bdec1a502270e3cc6c
1938Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1939Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1940
1941Cipher = aes-256-gcm
1942Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1943IV = cafebabefacedbaddecaf888
1944AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1945Tag = 76fc6ece0f4e1768cddf8853bb2d551b
1946Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1947Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662
1948
1949Cipher = aes-256-gcm
1950Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1951IV = cafebabefacedbad
1952AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1953Tag = 3a337dbf46a792c45e454913fe2ea8f2
1954Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1955Ciphertext = c3762df1ca787d32ae47c13bf19844cbaf1ae14d0b976afac52ff7d79bba9de0feb582d33934a4f0954cc2363bc73f7862ac430e64abe499f47c9b1f
1956
1957Cipher = aes-256-gcm
1958Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1959IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1960AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1961Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19a
1962Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1963Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1964
70d8b304
AP
1965Cipher = aes-256-gcm
1966Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1967IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1968AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1969Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19b
1970Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1971Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1972Operation = DECRYPT
1973Result = CIPHERFINAL_ERROR
1974
ca303d33
AP
1975# local add-ons, primarily streaming ghash tests
1976# 128 bytes aad
7303b472
DSH
1977Cipher = aes-128-gcm
1978Key = 00000000000000000000000000000000
1979IV = 000000000000000000000000
1980AAD = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1981Tag = 5fea793a2d6f974d37e68e0cb8ff9492
1982Plaintext =
1983Ciphertext =
1984
ca303d33 1985# 48 bytes plaintext
7303b472
DSH
1986Cipher = aes-128-gcm
1987Key = 00000000000000000000000000000000
1988IV = 000000000000000000000000
1989AAD =
1990Tag = 9dd0a376b08e40eb00c35f29f9ea61a4
1991Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1992Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0
1993
ca303d33 1994# 80 bytes plaintext
7303b472
DSH
1995Cipher = aes-128-gcm
1996Key = 00000000000000000000000000000000
1997IV = 000000000000000000000000
1998AAD =
1999Tag = 98885a3a22bd4742fe7b72172193b163
2000Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2001Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d5270291
2002
ca303d33 2003# 128 bytes plaintext
7303b472
DSH
2004Cipher = aes-128-gcm
2005Key = 00000000000000000000000000000000
2006IV = 000000000000000000000000
2007AAD =
2008Tag = cac45f60e31efd3b5a43b98a22ce1aa1
2009Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2010Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d527029195b84d1b96c690ff2f2de30bf2ec89e00253786e126504f0dab90c48a30321de3345e6b0461e7c9e6c6b7afedde83f40
2011
ca303d33 2012# 192 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
7303b472
DSH
2013Cipher = aes-128-gcm
2014Key = 00000000000000000000000000000000
2015IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2016AAD =
2017Tag = 566f8ef683078bfdeeffa869d751a017
2018Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2019Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606
2020
cc77d0d8
AP
2021# 240 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
2022Cipher = aes-128-gcm
2023Key = 00000000000000000000000000000000
2024IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2025AAD =
2026Tag = fd0c7011ff07f0071324bdfb2d0f3a29
2027Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2028Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606872ca10dee15b3249b1a1b958f23134c4bccb7d03200bce420a2f8eb66dcf3644d1423c1b5699003c13ecef4bf38a3b6
2029
4e049c52 2030# 288 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
7303b472
DSH
2031Cipher = aes-128-gcm
2032Key = 00000000000000000000000000000000
2033IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2034AAD =
2035Tag = 8b307f6b33286d0ab026a9ed3fe1e85f
2036Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
2037Ciphertext = 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
2038
ca303d33 2039# 80 bytes plaintext, submitted by Intel
7303b472
DSH
2040Cipher = aes-128-gcm
2041Key = 843ffcf5d2b72694d19ed01d01249412
2042IV = dbcca32ebf9b804617c3aa9e
2043AAD = 00000000000000000000000000000000101112131415161718191a1b1c1d1e1f
2044Tag = 3b629ccfbc1119b7319e1dce2cd6fd6d
2045Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
2046Ciphertext = 6268c6fa2a80b2d137467f092f657ac04d89be2beaa623d61b5a868c8f03ff95d3dcee23ad2f1ab3a6c80eaf4b140eb05de3457f0fbc111a6b43d0763aa422a3013cf1dc37fe417d1fbfc449b75d4cc5
2047
2207ba7b
DSH
2048#AES OCB Test vectors
2049Cipher = aes-128-ocb
2050Key = 000102030405060708090A0B0C0D0E0F
2051IV = 000102030405060708090A0B
2052AAD =
2053Tag = 197B9C3C441D3C83EAFB2BEF633B9182
2054Plaintext =
2055Ciphertext =
2056
2057Cipher = aes-128-ocb
2058Key = 000102030405060708090A0B0C0D0E0F
2059IV = 000102030405060708090A0B
2060AAD = 0001020304050607
2061Tag = 16DC76A46D47E1EAD537209E8A96D14E
2062Plaintext = 0001020304050607
2063Ciphertext = 92B657130A74B85A
2064
2065Cipher = aes-128-ocb
2066Key = 000102030405060708090A0B0C0D0E0F
2067IV = 000102030405060708090A0B
2068AAD = 0001020304050607
2069Tag = 98B91552C8C009185044E30A6EB2FE21
2070Plaintext =
2071Ciphertext =
2072
2073Cipher = aes-128-ocb
2074Key = 000102030405060708090A0B0C0D0E0F
2075IV = 000102030405060708090A0B
2076AAD =
2077Tag = 971EFFCAE19AD4716F88E87B871FBEED
2078Plaintext = 0001020304050607
2079Ciphertext = 92B657130A74B85A
2080
2081Cipher = aes-128-ocb
2082Key = 000102030405060708090A0B0C0D0E0F
2083IV = 000102030405060708090A0B
2084AAD = 000102030405060708090A0B0C0D0E0F
2085Tag = 776C9924D6723A1FC4524532AC3E5BEB
2086Plaintext = 000102030405060708090A0B0C0D0E0F
2087Ciphertext = BEA5E8798DBE7110031C144DA0B26122
2088
2089Cipher = aes-128-ocb
2090Key = 000102030405060708090A0B0C0D0E0F
2091IV = 000102030405060708090A0B
2092AAD = 000102030405060708090A0B0C0D0E0F
2093Tag = 7DDB8E6CEA6814866212509619B19CC6
2094Plaintext =
2095Ciphertext =
2096
2097Cipher = aes-128-ocb
2098Key = 000102030405060708090A0B0C0D0E0F
2099IV = 000102030405060708090A0B
2100AAD =
2101Tag = 13CC8B747807121A4CBB3E4BD6B456AF
2102Plaintext = 000102030405060708090A0B0C0D0E0F
2103Ciphertext = BEA5E8798DBE7110031C144DA0B26122
2104
2105Cipher = aes-128-ocb
2106Key = 000102030405060708090A0B0C0D0E0F
2107IV = 000102030405060708090A0B
2108AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
2109Tag = 5FA94FC3F38820F1DC3F3D1FD4E55E1C
2110Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
2111Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
2112
2113Cipher = aes-128-ocb
2114Key = 000102030405060708090A0B0C0D0E0F
2115IV = 000102030405060708090A0B
2116AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
2117Tag = 282026DA3068BC9FA118681D559F10F6
2118Plaintext =
2119Ciphertext =
2120
2121Cipher = aes-128-ocb
2122Key = 000102030405060708090A0B0C0D0E0F
2123IV = 000102030405060708090A0B
2124AAD =
2125Tag = 6EF2F52587FDA0ED97DC7EEDE241DF68
2126Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
2127Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
2128
2129Cipher = aes-128-ocb
2130Key = 000102030405060708090A0B0C0D0E0F
2131IV = 000102030405060708090A0B
2132AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2133Tag = B2A040DD3BD5164372D76D7BB6824240
2134Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2135Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
2136
2137Cipher = aes-128-ocb
2138Key = 000102030405060708090A0B0C0D0E0F
2139IV = 000102030405060708090A0B
2140AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2141Tag = E1E072633BADE51A60E85951D9C42A1B
2142Plaintext =
2143Ciphertext =
2144
2145Cipher = aes-128-ocb
2146Key = 000102030405060708090A0B0C0D0E0F
2147IV = 000102030405060708090A0B
2148AAD =
2149Tag = 4A3BAE824465CFDAF8C41FC50C7DF9D9
2150Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2151Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
2152
2153Cipher = aes-128-ocb
2154Key = 000102030405060708090A0B0C0D0E0F
2155IV = 000102030405060708090A0B
2156AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2157Tag = 659C623211DEEA0DE30D2C381879F4C8
2158Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2159Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
2160
2161Cipher = aes-128-ocb
2162Key = 000102030405060708090A0B0C0D0E0F
2163IV = 000102030405060708090A0B
2164AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2165Tag = 7AEB7A69A1687DD082CA27B0D9A37096
2166Plaintext =
2167Ciphertext =
2168
2169Cipher = aes-128-ocb
2170Key = 000102030405060708090A0B0C0D0E0F
2171IV = 000102030405060708090A0B
2172AAD =
2173Tag = 060C8467F4ABAB5E8B3C2067A2E115DC
2174Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2175Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
2176
2177#AES OCB Non standard test vectors - generated from reference implementation
2178Cipher = aes-128-ocb
2179Key = 000102030405060708090A0B0C0D0E0F
2180IV = 000102030405060708090A0B
2181AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2182Tag = 1b6c44f34e3abb3cbf8976e7
2183Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2184Ciphertext = 09a4fd29de949d9a9aa9924248422097ad4883b4713e6c214ff6567ada08a96766fc4e2ee3e3a5a1
2185
2186Cipher = aes-128-ocb
2187Key = 000102030405060708090A0B0C0D0E0F
2188IV = 000102030405060708090A0B0C0D0E
2189AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2190Tag = 1ad62009901f40cba7cd7156f94a7324
2191Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2192Ciphertext = 5e2fa7367ffbdb3938845cfd415fcc71ec79634eb31451609d27505f5e2978f43c44213d8fa441ee
d827c5ed 2193
bd30091c
AP
2194Cipher = aes-128-ocb
2195Key = 000102030405060708090A0B0C0D0E0F
2196IV = 000102030405060708090A0B
2197AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2198Tag = C203F98CE28F7DAD3F31C021
2199Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F3031
2200Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C822D6
2201
2202Cipher = aes-128-ocb
2203Key = 000102030405060708090A0B0C0D0E0F
2204IV = 000102030405060708090A0B
2205AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2206Tag = 8346D7D47C5D893ED472F5AB
2207Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F4041
2208Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F714FF
2209
2210Cipher = aes-128-ocb
2211Key = 000102030405060708090A0B0C0D0E0F
2212IV = 000102030405060708090A0B
2213AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2214Tag = 5822A9A70FDF55D29D2984A6
2215Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F5051
2216Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB8294170634D
2217
2218Cipher = aes-128-ocb
2219Key = 000102030405060708090A0B0C0D0E0F
2220IV = 000102030405060708090A0B
2221AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2222Tag = 81772B6741ABB4ECA9D2DEB2
2223Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F6061
2224Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7050FAA
2225
2226Cipher = aes-128-ocb
2227Key = 000102030405060708090A0B0C0D0E0F
2228IV = 000102030405060708090A0B
2229AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2230Tag = 3E52A01D068DE85456DB03B7
2231Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2232Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2233
70d8b304
AP
2234Cipher = aes-128-ocb
2235Key = 000102030405060708090A0B0C0D0E0F
2236IV = 000102030405060708090A0B
2237AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2238Tag = 3E52A01D068DE85456DB03B6
2239Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2240Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2241Operation = DECRYPT
2242Result = CIPHERFINAL_ERROR
2243
c9a8e3d1 2244# AES XTS test vectors from IEEE Std 1619-2007
7303b472
DSH
2245Cipher = aes-128-xts
2246Key = 0000000000000000000000000000000000000000000000000000000000000000
2247IV = 00000000000000000000000000000000
2248Plaintext = 0000000000000000000000000000000000000000000000000000000000000000
2249Ciphertext = 917cf69ebd68b2ec9b9fe9a3eadda692cd43d2f59598ed858c02c2652fbf922e
2250
2251Cipher = aes-128-xts
2252Key = 1111111111111111111111111111111122222222222222222222222222222222
2253IV = 33333333330000000000000000000000
2254Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2255Ciphertext = c454185e6a16936e39334038acef838bfb186fff7480adc4289382ecd6d394f0
2256
2257Cipher = aes-128-xts
2258Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f022222222222222222222222222222222
2259IV = 33333333330000000000000000000000
2260Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2261Ciphertext = af85336b597afc1a900b2eb21ec949d292df4c047e0b21532186a5971a227a89
2262
2263Cipher = aes-128-xts
2264Key = 2718281828459045235360287471352631415926535897932384626433832795
2265IV = 00000000000000000000000000000000
2266Plaintext = 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
2267Ciphertext = 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
2268
2269Cipher = aes-128-xts
2270Key = 2718281828459045235360287471352631415926535897932384626433832795
2271IV = 01000000000000000000000000000000
2272Plaintext = 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
2273Ciphertext = 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
2274
2275Cipher = aes-128-xts
2276Key = 2718281828459045235360287471352631415926535897932384626433832795
2277IV = 02000000000000000000000000000000
2278Plaintext = 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
2279Ciphertext = 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
2280
2281Cipher = aes-128-xts
2282Key = 2718281828459045235360287471352631415926535897932384626433832795
2283IV = fd000000000000000000000000000000
2284Plaintext = 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
2285Ciphertext = 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
2286
2287Cipher = aes-128-xts
2288Key = 2718281828459045235360287471352631415926535897932384626433832795
2289IV = fe000000000000000000000000000000
2290Plaintext = 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
2291Ciphertext = 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
2292
2293Cipher = aes-128-xts
2294Key = 2718281828459045235360287471352631415926535897932384626433832795
2295IV = ff000000000000000000000000000000
2296Plaintext = 72efc1ebfe1ee25975a6eb3aa8589dda2b261f1c85bdab442a9e5b2dd1d7c3957a16fc08e526d4b1223f1b1232a11af274c3d70dac57f83e0983c498f1a6f1aecb021c3e70085a1e527f1ce41ee5911a82020161529cd82773762daf5459de94a0a82adae7e1703c808543c29ed6fb32d9e004327c1355180c995a07741493a09c21ba01a387882da4f62534b87bb15d60d197201c0fd3bf30c1500a3ecfecdd66d8721f90bcc4c17ee925c61b0a03727a9c0d5f5ca462fbfa0af1c2513a9d9d4b5345bd27a5f6e653f751693e6b6a2b8ead57d511e00e58c45b7b8d005af79288f5c7c22fd4f1bf7a898b03a5634c6a1ae3f9fae5de4f296a2896b23e7ed43ed14fa5a2803f4d28f0d3ffcf24757677aebdb47bb388378708948a8d4126ed1839e0da29a537a8c198b3c66ab00712dd261674bf45a73d67f76914f830ca014b65596f27e4cf62de66125a5566df9975155628b400fbfb3a29040ed50faffdbb18aece7c5c44693260aab386c0a37b11b114f1c415aebb653be468179428d43a4d8bc3ec38813eca30a13cf1bb18d524f1992d44d8b1a42ea30b22e6c95b199d8d182f8840b09d059585c31ad691fa0619ff038aca2c39a943421157361717c49d322028a74648113bd8c9d7ec77cf3c89c1ec8718ceff8516d96b34c3c614f10699c9abc4ed0411506223bea16af35c883accdbe1104eef0cfdb54e12fb230a
2297Ciphertext = 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
2298
2299
2300Cipher = aes-256-xts
2301Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2302IV = ff000000000000000000000000000000
2303Plaintext = 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
2304Ciphertext = 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
2305
2306Cipher = aes-256-xts
2307Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2308IV = ffff0000000000000000000000000000
2309Plaintext = 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
2310Ciphertext = 77a31251618a15e6b92d1d66dffe7b50b50bad552305ba0217a610688eff7e11e1d0225438e093242d6db274fde801d4cae06f2092c728b2478559df58e837c2469ee4a4fa794e4bbc7f39bc026e3cb72c33b0888f25b4acf56a2a9804f1ce6d3d6e1dc6ca181d4b546179d55544aa7760c40d06741539c7e3cd9d2f6650b2013fd0eeb8c2b8e3d8d240ccae2d4c98320a7442e1c8d75a42d6e6cfa4c2eca1798d158c7aecdf82490f24bb9b38e108bcda12c3faf9a21141c3613b58367f922aaa26cd22f23d708dae699ad7cb40a8ad0b6e2784973dcb605684c08b8d6998c69aac049921871ebb65301a4619ca80ecb485a31d744223ce8ddc2394828d6a80470c092f5ba413c3378fa6054255c6f9df4495862bbb3287681f931b687c888abf844dfc8fc28331e579928cd12bd2390ae123cf03818d14dedde5c0c24c8ab018bfca75ca096f2d531f3d1619e785f1ada437cab92e980558b3dce1474afb75bfedbf8ff54cb2618e0244c9ac0d3c66fb51598cd2db11f9be39791abe447c63094f7c453b7ff87cb5bb36b7c79efb0872d17058b83b15ab0866ad8a58656c5a7e20dbdf308b2461d97c0ec0024a2715055249cf3b478ddd4740de654f75ca686e0d7345c69ed50cdc2a8b332b1f8824108ac937eb050585608ee734097fc09054fbff89eeaeea791f4a7ab1f9868294a4f9e27b42af8100cb9d59cef9645803
2311
2312Cipher = aes-256-xts
2313Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2314IV = ffffff00000000000000000000000000
2315Plaintext = 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
2316Ciphertext = e387aaa58ba483afa7e8eb469778317ecf4cf573aa9d4eac23f2cdf914e4e200a8b490e42ee646802dc6ee2b471b278195d60918ececb44bf79966f83faba0499298ebc699c0c8634715a320bb4f075d622e74c8c932004f25b41e361025b5a87815391f6108fc4afa6a05d9303c6ba68a128a55705d415985832fdeaae6c8e19110e84d1b1f199a2692119edc96132658f09da7c623efcec712537a3d94c0bf5d7e352ec94ae5797fdb377dc1551150721adf15bd26a8efc2fcaad56881fa9e62462c28f30ae1ceaca93c345cf243b73f542e2074a705bd2643bb9f7cc79bb6e7091ea6e232df0f9ad0d6cf502327876d82207abf2115cdacf6d5a48f6c1879a65b115f0f8b3cb3c59d15dd8c769bc014795a1837f3901b5845eb491adfefe097b1fa30a12fc1f65ba22905031539971a10f2f36c321bb51331cdefb39e3964c7ef079994f5b69b2edd83a71ef549971ee93f44eac3938fcdd61d01fa71799da3a8091c4c48aa9ed263ff0749df95d44fef6a0bb578ec69456aa5408ae32c7af08ad7ba8921287e3bbee31b767be06a0e705c864a769137df28292283ea81a2480241b44d9921cdbec1bc28dc1fda114bd8e5217ac9d8ebafa720e9da4f9ace231cc949e5b96fe76ffc21063fddc83a6b8679c00d35e09576a875305bed5f36ed242c8900dd1fa965bc950dfce09b132263a1eef52dd6888c309f5a7d712826
2317
2318Cipher = aes-256-xts
2319Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2320IV = ffffffff000000000000000000000000
2321Plaintext = 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
2322Ciphertext = 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
2323
2324Cipher = aes-256-xts
2325Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2326IV = ffffffffff0000000000000000000000
2327Plaintext = 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
2328Ciphertext = 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
2329
2330
2331Cipher = aes-128-xts
2332Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2333IV = 9a785634120000000000000000000000
2334Plaintext = 000102030405060708090a0b0c0d0e0f10
2335Ciphertext = 6c1625db4671522d3d7599601de7ca09ed
2336
2337Cipher = aes-128-xts
2338Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2339IV = 9a785634120000000000000000000000
2340Plaintext = 000102030405060708090a0b0c0d0e0f1011
2341Ciphertext = d069444b7a7e0cab09e24447d24deb1fedbf
2342
2343Cipher = aes-128-xts
2344Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2345IV = 9a785634120000000000000000000000
2346Plaintext = 000102030405060708090a0b0c0d0e0f101112
2347Ciphertext = e5df1351c0544ba1350b3363cd8ef4beedbf9d
2348
2349Cipher = aes-128-xts
2350Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2351IV = 9a785634120000000000000000000000
2352Plaintext = 000102030405060708090a0b0c0d0e0f10111213
2353Ciphertext = 9d84c813f719aa2c7be3f66171c7c5c2edbf9dac
2354
2355Cipher = aes-128-xts
2356Key = e0e1e2e3e4e5e6e7e8e9eaebecedeeefc0c1c2c3c4c5c6c7c8c9cacbcccdcecf
2357IV = 21436587a90000000000000000000000
2358Plaintext = 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
2359Ciphertext = 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
2360
74daca72
AP
2361# Exercise different lengths covering even ciphertext stealing cases
2362Cipher = aes-128-xts
2363Key = 2718281828459045235360287471352631415926535897932384626433832795
2364IV = 00000000000000000000000000000000
2365Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f
2366Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce
2367
2368Cipher = aes-128-xts
2369Key = 2718281828459045235360287471352631415926535897932384626433832795
2370IV = 00000000000000000000000000000000
2371Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f6061
2372Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5B079C6307EA0914559C6D2FB6384F8AADF94
2373
2374Cipher = aes-128-xts
2375Key = 2718281828459045235360287471352631415926535897932384626433832795
2376IV = 00000000000000000000000000000000
2377Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f
2378Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce84
2379
2380Cipher = aes-128-xts
2381Key = 2718281828459045235360287471352631415926535897932384626433832795
2382IV = 00000000000000000000000000000000
2383Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f7071
2384Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CEF4F253466EF4953ADC8FE2F5BC1FF57593FD
2385
2386Cipher = aes-128-xts
2387Key = 2718281828459045235360287471352631415926535897932384626433832795
2388IV = 00000000000000000000000000000000
2389Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f
2390Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad0265
2391
2392Cipher = aes-128-xts
2393Key = 2718281828459045235360287471352631415926535897932384626433832795
2394IV = 00000000000000000000000000000000
2395Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f8081
2396Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE842973C68248EDDFE26FB9B096659C8A5D6BB7
2397
2398Cipher = aes-128-xts
2399Key = 2718281828459045235360287471352631415926535897932384626433832795
2400IV = 00000000000000000000000000000000
2401Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f
2402Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51
2403
2404Cipher = aes-128-xts
2405Key = 2718281828459045235360287471352631415926535897932384626433832795
2406IV = 00000000000000000000000000000000
2407Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f9091
2408Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD0265C4DD16E65A24575A709F174593F19FF85EA9
2409
2410Cipher = aes-128-xts
2411Key = 2718281828459045235360287471352631415926535897932384626433832795
2412IV = 00000000000000000000000000000000
2413Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
2414Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8
2415
2416Cipher = aes-128-xts
2417Key = 2718281828459045235360287471352631415926535897932384626433832795
2418IV = 00000000000000000000000000000000
2419Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1
2420Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE519215FA160C664D4B07D757A034AB3B35A10C
2421
2422Cipher = aes-128-xts
2423Key = 2718281828459045235360287471352631415926535897932384626433832795
2424IV = 00000000000000000000000000000000
2425Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
2426Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f91
2427
2428Cipher = aes-128-xts
2429Key = 2718281828459045235360287471352631415926535897932384626433832795
2430IV = 00000000000000000000000000000000
2431Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1
2432Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D82C6CBC24F9357BD1FB882AA4B2CC2E7FA750
2433
2434Cipher = aes-128-xts
2435Key = 2718281828459045235360287471352631415926535897932384626433832795
2436IV = 00000000000000000000000000000000
2437Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebf
2438Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f9172af82b604dc4b8e51bcb08235a6f434
2439
2440Cipher = aes-128-xts
2441Key = 2718281828459045235360287471352631415926535897932384626433832795
2442IV = 00000000000000000000000000000000
2443Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1
2444Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D8A750E8768DEFFFED9122810AAEB99F910409B03D164E727C31290FD4E039500872AF
2445
97cf1f6c 2446# AES wrap tests from RFC3394
7303b472
DSH
2447Cipher = id-aes128-wrap
2448Key = 000102030405060708090A0B0C0D0E0F
2449Plaintext = 00112233445566778899AABBCCDDEEFF
2450Ciphertext = 1FA68B0A8112B447AEF34BD8FB5A7B829D3E862371D2CFE5
2451
2452Cipher = id-aes192-wrap
2453Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2454Plaintext = 00112233445566778899AABBCCDDEEFF
2455Ciphertext = 96778B25AE6CA435F92B5B97C050AED2468AB8A17AD84E5D
2456
2457Cipher = id-aes256-wrap
2458Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2459Plaintext = 00112233445566778899AABBCCDDEEFF
2460Ciphertext = 64E8C3F9CE0F5BA263E9777905818A2A93C8191E7D6E8AE7
2461
2462Cipher = id-aes192-wrap
2463Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2464Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2465Ciphertext = 031D33264E15D33268F24EC260743EDCE1C6C7DDEE725A936BA814915C6762D2
2466
2467Cipher = id-aes256-wrap
2468Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2469Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2470Ciphertext = A8F9BC1612C68B3FF6E6F4FBE30E71E4769C8B80A32CB8958CD5D17D6B254DA1
2471
2472Cipher = id-aes256-wrap
2473Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2474Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2475Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2476
77e127ea
DSH
2477# Same as previous example but with invalid unwrap key: should be rejected
2478# without returning any plaintext
2479Cipher = id-aes256-wrap
2480Operation = DECRYPT
2481Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E00
2482Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2483Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2484Result = CIPHERUPDATE_ERROR
2485
d31fed73 2486# AES wrap tests from RFC5649
7303b472
DSH
2487Cipher = id-aes192-wrap-pad
2488Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2489Plaintext = c37b7e6492584340bed12207808941155068f738
2490Ciphertext = 138bdeaa9b8fa7fc61f97742e72248ee5ae6ae5360d1ae6a5f54f373fa543b6a
2491
2492Cipher = id-aes192-wrap-pad
2493Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2494Plaintext = 466f7250617369
2495Ciphertext = afbeb0f07dfbf5419200f2ccb50bb24f
2496
b8c792dc
DSH
2497# HMAC tests from RFC2104
2498MAC = HMAC
2499Algorithm = MD5
2500Key = 0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
2501Input = "Hi There"
2502Output = 9294727a3638bb1c13f48ef8158bfc9d
2503
2504MAC = HMAC
2505Algorithm = MD5
2506Key = "Jefe"
2507Input = "what do ya want for nothing?"
2508Output = 750c783e6ab0b503eaa86e310a5db738
2509
2510MAC = HMAC
2511Algorithm = MD5
2512Key = AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
2513Input = DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
2514Output = 56be34521d144c88dbb8c733f0e8b3f6
2515
2516# HMAC tests from NIST test data
2517
2518MAC = HMAC
2519Algorithm = SHA1
2520Input = "Sample message for keylen=blocklen"
2521Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2522Output = 5FD596EE78D5553C8FF4E72D266DFD192366DA29
2523MAC = HMAC
2524Algorithm = SHA1
2525Input = "Sample message for keylen<blocklen"
2526Key = 000102030405060708090A0B0C0D0E0F10111213
2527Output = 4C99FF0CB1B31BD33F8431DBAF4D17FCD356A807
2528MAC = HMAC
2529Algorithm = SHA1
2530Input = "Sample message for keylen=blocklen"
2531Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2532Output = 2D51B2F7750E410584662E38F133435F4C4FD42A
2533MAC = HMAC
2534Algorithm = SHA224
2535Input = "Sample message for keylen=blocklen"
2536Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2537Output = C7405E3AE058E8CD30B08B4140248581ED174CB34E1224BCC1EFC81B
2538MAC = HMAC
2539Algorithm = SHA224
2540Input = "Sample message for keylen<blocklen"
2541Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B
2542Output = E3D249A8CFB67EF8B7A169E9A0A599714A2CECBA65999A51BEB8FBBE
2543MAC = HMAC
2544Algorithm = SHA224
2545Input = "Sample message for keylen=blocklen"
2546Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2547Output = 91C52509E5AF8531601AE6230099D90BEF88AAEFB961F4080ABC014D
2548MAC = HMAC
2549Algorithm = SHA256
2550Input = "Sample message for keylen=blocklen"
2551Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2552Output = 8BB9A1DB9806F20DF7F77B82138C7914D174D59E13DC4D0169C9057B133E1D62
2553MAC = HMAC
2554Algorithm = SHA256
2555Input = "Sample message for keylen<blocklen"
2556Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2557Output = A28CF43130EE696A98F14A37678B56BCFCBDD9E5CF69717FECF5480F0EBDF790
2558MAC = HMAC
2559Algorithm = SHA256
2560Input = "Sample message for keylen=blocklen"
2561Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2562Output = BDCCB6C72DDEADB500AE768386CB38CC41C63DBB0878DDB9C7A38A431B78378D
2563MAC = HMAC
2564Algorithm = SHA384
2565Input = "Sample message for keylen=blocklen"
2566Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2567Output = 63C5DAA5E651847CA897C95814AB830BEDEDC7D25E83EEF9195CD45857A37F448947858F5AF50CC2B1B730DDF29671A9
2568MAC = HMAC
2569Algorithm = SHA384
2570Input = "Sample message for keylen<blocklen"
2571Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F
2572Output = 6EB242BDBB582CA17BEBFA481B1E23211464D2B7F8C20B9FF2201637B93646AF5AE9AC316E98DB45D9CAE773675EEED0
2573MAC = HMAC
2574Algorithm = SHA384
2575Input = "Sample message for keylen=blocklen"
2576Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2577Output = 5B664436DF69B0CA22551231A3F0A3D5B4F97991713CFA84BFF4D0792EFF96C27DCCBBB6F79B65D548B40E8564CEF594
2578MAC = HMAC
2579Algorithm = SHA512
2580Input = "Sample message for keylen=blocklen"
2581Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2582Output = FC25E240658CA785B7A811A8D3F7B4CA48CFA26A8A366BF2CD1F836B05FCB024BD36853081811D6CEA4216EBAD79DA1CFCB95EA4586B8A0CE356596A55FB1347
2583MAC = HMAC
2584Algorithm = SHA512
2585Input = "Sample message for keylen<blocklen"
2586Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2587Output = FD44C18BDA0BB0A6CE0E82B031BF2818F6539BD56EC00BDC10A8A2D730B3634DE2545D639B0F2CF710D0692C72A1896F1F211C2B922D1A96C392E07E7EA9FEDC
2588MAC = HMAC
2589Algorithm = SHA512
2590Input = "Sample message for keylen=blocklen"
2591Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2592Output = D93EC8D2DE1AD2A9957CB9B83F14E76AD6B5E0CCE285079A127D3B14BCCB7AA7286D4AC0D4CE64215F2BC9E6870B33D97438BE4AAA20CDA5C5A912B48B8E27F3
16cb8eb0
DSH
2593
2594# CMAC tests from FIPS module
2595
2596MAC = CMAC
2597Algorithm = AES-128-CBC
2598Key = 77A77FAF290C1FA30C683DF16BA7A77B
2599Input = 020683E1F0392F4CAC54318B6029259E9C553DBC4B6AD998E64D58E4E7DC2E13
2600Output = FBFEA41BF9740CB501F1292C21CEBB40
2601
2602MAC = CMAC
2603Algorithm = AES-192-CBC
2604Key = 7B32391369AA4CA97558095BE3C3EC862BD057CEF1E32D62
2605Input =
2606Output = E4D9340B03E67DEFD4969CC1ED3735E6
2607
2608MAC = CMAC
2609Algorithm = AES-256-CBC
2610Key = 0B122AC8F34ED1FE082A3625D157561454167AC145A10BBF77C6A70596D574F1
2611Input = 498B53FDEC87EDCBF07097DCCDE93A084BAD7501A224E388DF349CE18959FE8485F8AD1537F0D896EA73BEDC7214713F
2612Output = F62C46329B41085625669BAF51DEA66A
2613
2614MAC = CMAC
2615Algorithm = DES-EDE3-CBC
2616Key = 89BCD952A8C8AB371AF48AC7D07085D5EFF702E6D62CDC23
2617Input = FA620C1BBE97319E9A0CF0492121F7A20EB08A6A709DCBD00AAF38E4F99E754E
2618Output = 8F49A1B7D6AA2258
b9d4e97c
DSH
2619
2620# Public key algorithm tests
2621
2622# Private keys used for PKEY operations.
2623
2624# RSA 2048 bit key.
2625
2626PrivateKey = RSA-2048
2627
2628-----BEGIN PRIVATE KEY-----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2655-----END PRIVATE KEY-----
2656
80eab79d
DSH
2657# Corresponding public key
2658
2659PublicKey = RSA-2048-PUBLIC
2660
2661-----BEGIN PUBLIC KEY-----
2662MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
2663uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
2664y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
2665WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
2666gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
2667uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
2668TwIDAQAB
2669-----END PUBLIC KEY-----
2670
b9d4e97c
DSH
2671# EC P-256 key
2672
2673PrivateKey=P-256
2674
2675-----BEGIN PRIVATE KEY-----
2676MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQgiocvtiiTxNH/xbnw
2677+RdYBp+DUuCPoFpJ+NuSbLVyhyWhRANCAAQsFQ9CnOcPIWwlLPXgYs4fY5zV0WXH
2678+JQkBywnGX14szuSDpXNtmTpkNzwz+oNlOKo5q+dDlgFbmUxBJJbn+bJ
2679-----END PRIVATE KEY-----
2680
80eab79d
DSH
2681# EC public key for above
2682
2683PublicKey=P-256-PUBLIC
2684
2685-----BEGIN PUBLIC KEY-----
2686MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAELBUPQpznDyFsJSz14GLOH2Oc1dFl
2687x/iUJAcsJxl9eLM7kg6VzbZk6ZDc8M/qDZTiqOavnQ5YBW5lMQSSW5/myQ==
2688-----END PUBLIC KEY-----
2689
404cc933
DSH
2690# Additional EC key for ECDH
2691PrivateKey=P-256-Peer
995197ab
DSH
2692-----BEGIN PRIVATE KEY-----
2693MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQg/URzu1TDNwUFWZ3i
2694dLISAZpEY0vfJ2pLB7f+Xnjyl2OhRANCAAQgBuXhSgeKpz+4piXlYSVLvy0NT+wK
2695uZWUI3LqUUCV07wg+RLLMY8yNK9kjqcgZDs/cB+bet64nQq+dNnvtpxG
2696-----END PRIVATE KEY-----
404cc933
DSH
2697
2698PublicKey=P-256-Peer-PUBLIC
2699-----BEGIN PUBLIC KEY-----
2700MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEIAbl4UoHiqc/uKYl5WElS78tDU/s
2701CrmVlCNy6lFAldO8IPkSyzGPMjSvZI6nIGQ7P3Afm3reuJ0KvnTZ77acRg==
2702-----END PUBLIC KEY-----
2703
80eab79d
DSH
2704# DSA key
2705PrivateKey=DSA-1024
2706
2707-----BEGIN PRIVATE KEY-----
2708MIIBSwIBADCCASwGByqGSM44BAEwggEfAoGBAO0SwRpkAeM21qSM5ch4CLEHpFk4
270919R5ve1UUr421y3HEUURsrVpxYKvyx8aOBQC/akz95cYxNN3y1JnJJMxPklhdJrJ
2710f/WDYPxjMk8BqNJmeZtLuCVLKGwQomuo7ZkG955WRyLHYEdQ6uC7K2QTPKpW6psF
2711YFaDYjAjSEKk2MFxAhUAykDkKLZdhPWzwM8/qYaE31VmWz0CgYEApNVF8oFK41ez
2712Qci9XbSZJHyPB+3jML1YQkHxiiInaIz6GEFtjUbIUEYA/ovY+6ECNI1aIDHTd7CH
2713woS0mp33oQYs43nt29B6UwbtMmbzCOQ9vGGwWVho+JtHyyPWrDuLmkvLtoQPaxYt
27146PVa3gncr2v3njcVuH+EQ6DuFR93zksEFgIUbyv6pqH+UQurernJn/7sUm2U2i0=
2715-----END PRIVATE KEY-----
2716
2717PublicKey=DSA-1024-PUBLIC
2718
2719-----BEGIN PUBLIC KEY-----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2730-----END PUBLIC KEY-----
2731
b9d4e97c
DSH
2732# RSA tests
2733
2734Sign = RSA-2048
2735Ctrl = digest:SHA1
2736Input = "0123456789ABCDEF1234"
2737Output = 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
2738
2739Verify = RSA-2048
2740Ctrl = digest:SHA1
2741Input = "0123456789ABCDEF1234"
2742Output = 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
2743
f3205557
DB
2744VerifyRecover = RSA-2048
2745Ctrl = digest:SHA1
2746Input = c09d402423cbf233d26cae21f954547bc43fe80fd41360a0336cfdbe9aedad05bef6fd2eaee6cd60089a52482d4809a238149520df3bdde4cb9e23d9307b05c0a6f327052325a29adf2cc95b66523be7024e2a585c3d4db15dfbe146efe0ecdc0402e33fe5d40324ee96c5c3edd374a15cdc0f5d84aa243c0f07e188c6518fbfceae158a9943be398e31097da81b62074f626eff738be6160741d5a26957a482b3251fd85d8df78b98148459de10aa93305dbb4a5230aa1da291a9b0e481918f99b7638d72bb687f97661d304ae145d64a474437a4ef39d7b8059332ddeb07e92bf6e0e3acaf8afedc93795e4511737ec1e7aab6d5bc9466afc950c1c17b48ad
2747Output = "0123456789ABCDEF1234"
2748
2749# Leading zero in the signature
2750Verify = RSA-2048
2751Ctrl = digest:SHA1
2752Input = "0123456789ABCDEF1234"
2753Output = 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
2754Result = VERIFY_ERROR
2755
2756VerifyRecover = RSA-2048
2757Ctrl = digest:SHA1
2758Input = 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
2759Result = KEYOP_ERROR
2760
b9d4e97c
DSH
2761# Digest too long
2762Sign = RSA-2048
2763Ctrl = digest:SHA1
2764Input = "0123456789ABCDEF12345"
2765Output = 00
2766Result = KEYOP_ERROR
2767
2768# Digest too short
2769Sign = RSA-2048
2770Ctrl = digest:SHA1
2771Input = "0123456789ABCDEF12345"
2772Output = 00
2773Result = KEYOP_ERROR
2774
2775# Mismatched digest
2776Verify = RSA-2048
2777Ctrl = digest:SHA1
2778Input = "0123456789ABCDEF1233"
2779Output = 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
2780Result = VERIFY_ERROR
2781
2782# Corrupted signature
2783Verify = RSA-2048
2784Ctrl = digest:SHA1
2785Input = "0123456789ABCDEF1233"
2786Output = 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
2787Result = VERIFY_ERROR
2788
608a0264 2789# parameter is not NULL
f37879d0
DSH
2790Verify = RSA-2048
2791Ctrl = digest:sha1
2792Input = "0123456789ABCDEF1234"
2793Output = 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
608a0264 2794Result = VERIFY_ERROR
f37879d0
DSH
2795
2796# embedded digest too long
2797Verify = RSA-2048
2798Ctrl = digest:sha1
2799Input = "0123456789ABCDEF1234"
2800Output = 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
2801Result = VERIFY_ERROR
2802
f3205557
DB
2803VerifyRecover = RSA-2048
2804Ctrl = digest:sha1
2805Input = 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
2806Result = KEYOP_ERROR
2807
f37879d0
DSH
2808# embedded digest too short
2809Verify = RSA-2048
2810Ctrl = digest:sha1
2811Input = "0123456789ABCDEF1234"
2812Output = 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
2813Result = VERIFY_ERROR
2814
f3205557
DB
2815VerifyRecover = RSA-2048
2816Ctrl = digest:sha1
2817Input = afec9a0d5330a08f54283bb4a9d4e7e7e70fc1342336c4c766fba713f66970151c6e27413c48c33864ea45a0238787004f338ed3e21b53b0fe9c1151c42c388cbc7cba5a06b706c407a5b48324fbe994dc7afc3a19fb3d2841e66222596c14cd72a0f0a7455a019d8eb554f59c0183f9552b75aa96fee8bf935945e079ca283d2bd3534a86f11351f6d6181fbf433e5b01a6d1422145c7a72214d3aacdd5d3af12b2d6bf6438f9f9a64010d8aeed801c87f0859412b236150b86a545f7239be022f4a7ad246b59df87514294cb4a4c7c5a997ee53c66054d9f38ca4e76c1f7af83c30f737ef70f83a45aebe18238ddb95e1998814ca4fc72388f1533147c169d
2818Result = KEYOP_ERROR
2819
f37879d0
DSH
2820# Garbage after DigestInfo
2821Verify = RSA-2048
2822Ctrl = digest:sha1
2823Input = "0123456789ABCDEF1234"
2824Output = 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
2825Result = VERIFY_ERROR
2826
f3205557
DB
2827VerifyRecover = RSA-2048
2828Ctrl = digest:sha1
2829Input = 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
2830Result = KEYOP_ERROR
2831
f37879d0
DSH
2832# invalid tag for parameter
2833Verify = RSA-2048
2834Ctrl = digest:sha1
2835Input = "0123456789ABCDEF1234"
2836Output = 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
2837Result = VERIFY_ERROR
2838
f3205557
DB
2839VerifyRecover = RSA-2048
2840Ctrl = digest:sha1
2841Input = 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
2842Result = KEYOP_ERROR
2843
2844# MD5/SHA-1 combination
2845Verify = RSA-2048
2846Ctrl = digest:MD5-SHA1
2847Input = "0123456789ABCDEF0123456789ABCDEF0123"
2848Output = 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
2849
2850VerifyRecover = RSA-2048
2851Ctrl = digest:MD5-SHA1
2852Input = 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
2853Output = "0123456789ABCDEF0123456789ABCDEF0123"
2854
2855# MD5/SHA-1 combination, digest mismatch
2856Verify = RSA-2048
2857Ctrl = digest:MD5-SHA1
2858Input = "000000000000000000000000000000000000"
2859Output = 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
2860Result = VERIFY_ERROR
2861
2862# MD5/SHA-1 combination, wrong signature digest length
2863Verify = RSA-2048
2864Ctrl = digest:MD5-SHA1
2865Input = "0123456789ABCDEF0123456789ABCDEF0123"
2866Output = 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
2867Result = VERIFY_ERROR
2868
2869VerifyRecover = RSA-2048
2870Ctrl = digest:MD5-SHA1
2871Input = 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
2872Result = KEYOP_ERROR
2873
2874# MD5/SHA-1 combination, wrong input digest length
2875Verify = RSA-2048
2876Ctrl = digest:MD5-SHA1
2877Input = "0123456789ABCDEF0123456789ABCDEF012"
2878Output = 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
2879Result = VERIFY_ERROR
2880
2881# MD5/SHA-1 combination, wrong input and signature digest length
2882Verify = RSA-2048
2883Ctrl = digest:MD5-SHA1
2884Input = "0123456789ABCDEF0123456789ABCDEF012"
2885Output = 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
2886Result = VERIFY_ERROR
2887
2888# DigestInfo-wrapped MDC-2 signature
2889Verify = RSA-2048
2890Ctrl = digest:MDC2
2891Input = "0123456789ABCDEF"
2892Output = 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
2893
2894VerifyRecover = RSA-2048
2895Ctrl = digest:MDC2
2896Input = 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
2897Output = "0123456789ABCDEF"
2898
2899# Legacy OCTET STRING MDC-2 signature
2900Verify = RSA-2048
2901Ctrl = digest:MDC2
2902Input = "0123456789ABCDEF"
2903Output = 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
2904
2905VerifyRecover = RSA-2048
2906Ctrl = digest:MDC2
2907Input = 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
2908Output = "0123456789ABCDEF"
2909
2910# Legacy OCTET STRING MDC-2 signature, digest mismatch
2911Verify = RSA-2048
2912Ctrl = digest:MDC2
2913Input = "0000000000000000"
2914Output = 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
2915Result = VERIFY_ERROR
2916
2917# Legacy OCTET STRING MDC-2 signature, wrong input digest length
2918Verify = RSA-2048
2919Ctrl = digest:MDC2
2920Input = "0123456789ABCDE"
2921Output = 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
2922Result = VERIFY_ERROR
2923
2924# Legacy OCTET STRING MDC-2 signature, wrong signature digest length
2925Verify = RSA-2048
2926Ctrl = digest:MDC2
2927Input = "0123456789ABCDEF"
2928Output = 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
2929Result = VERIFY_ERROR
2930
2931VerifyRecover = RSA-2048
2932Ctrl = digest:MDC2
2933Input = 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
2934Result = KEYOP_ERROR
2935
2936# Legacy OCTET STRING MDC-2 signature, wrong input and signature digest length
2937Verify = RSA-2048
2938Ctrl = digest:MDC2
2939Input = "0123456789ABCDE"
2940Output = 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
2941Result = VERIFY_ERROR
2942
80eab79d
DSH
2943# Verify using public key
2944
2945Verify = RSA-2048-PUBLIC
2946Ctrl = digest:SHA1
2947Input = "0123456789ABCDEF1234"
2948Output = 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
2949
13ab8708
DSH
2950# RSA decrypt
2951
2952Decrypt = RSA-2048
2953Input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
2954Output = "Hello World"
2955
2956# Corrupted ciphertext
2957Decrypt = RSA-2048
2958Input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
2959Output = "Hello World"
2960Result = KEYOP_ERROR
2961
2962# OAEP padding
2963Decrypt = RSA-2048
2964Ctrl = rsa_padding_mode:oaep
2965Input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
2966Output = "Hello World"
2967
2968# OAEP padding, corrupted ciphertext
2969Decrypt = RSA-2048
2970Ctrl = rsa_padding_mode:oaep
2971Input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
2972Output = "Hello World"
2973Result = KEYOP_ERROR
2974
cce65266
DSH
2975# Illegal RSA key derivation
2976Derive = RSA-2048
2977Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
2978Function = EVP_PKEY_derive_init
2979Reason = operation not supported for this keytype
cce65266
DSH
2980
2981# Invalid ctrl
2982Sign = RSA-2048
2983Ctrl = rsa_mgf1_md:sha1
2984Result = PKEY_CTRL_INVALID
99f2f1dc
DSH
2985Function = pkey_rsa_ctrl
2986Reason = invalid mgf1 md
cce65266 2987
b9d4e97c
DSH
2988# EC tests
2989
2990Verify = P-256
2991Ctrl = digest:SHA1
2992Input = "0123456789ABCDEF1234"
2993Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2994
2995# Digest too long
2996Verify = P-256
2997Ctrl = digest:SHA1
2998Input = "0123456789ABCDEF12345"
2999Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
3000Result = VERIFY_ERROR
3001
3002# Digest too short
3003Verify = P-256
3004Ctrl = digest:SHA1
3005Input = "0123456789ABCDEF123"
3006Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
3007Result = VERIFY_ERROR
3008
3009# Digest invalid
3010Verify = P-256
3011Ctrl = digest:SHA1
3012Input = "0123456789ABCDEF1235"
3013Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
3014Result = VERIFY_ERROR
3015
3016# Invalid signature
3017Verify = P-256
3018Ctrl = digest:SHA1
3019Input = "0123456789ABCDEF1234"
3020Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec7
3021Result = VERIFY_ERROR
3022
3023# Garbage after signature
3024Verify = P-256
3025Ctrl = digest:SHA1
3026Input = "0123456789ABCDEF1234"
3027Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec800
3028Result = VERIFY_ERROR
3029
3030# BER signature
3031Verify = P-256
3032Ctrl = digest:SHA1
3033Input = "0123456789ABCDEF1234"
3034Output = 3080022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec80000
3035Result = VERIFY_ERROR
3b53e18a 3036
80eab79d
DSH
3037Verify = P-256-PUBLIC
3038Ctrl = digest:SHA1
3039Input = "0123456789ABCDEF1234"
3040Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
3041
3042# DSA tests
3043Verify = DSA-1024
3044Ctrl = digest:SHA1
3045Input = "0123456789ABCDEF1234"
3046Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
3047
3048Verify = DSA-1024-PUBLIC
3049Ctrl = digest:SHA1
3050Input = "0123456789ABCDEF1234"
3051Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
3052
3053# Modified signature
3054Verify = DSA-1024-PUBLIC
3055Ctrl = digest:SHA1
3056Input = "0123456789ABCDEF1234"
3057Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d88
3058Result = VERIFY_ERROR
3059
3060# Digest too short
3061Verify = DSA-1024-PUBLIC
3062Ctrl = digest:SHA1
3063Input = "0123456789ABCDEF123"
3064Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
3065Result = VERIFY_ERROR
3066
3067# Digest too long
3068Verify = DSA-1024-PUBLIC
3069Ctrl = digest:SHA1
3070Input = "0123456789ABCDEF12345"
3071Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
3072Result = VERIFY_ERROR
3073
3074# Garbage after signature
3075Verify = DSA-1024-PUBLIC
3076Input = "0123456789ABCDEF1234"
3077Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d8700
3078Result = VERIFY_ERROR
3079
3080# Invalid tag
3081Verify = DSA-1024-PUBLIC
3082Ctrl = digest:SHA1
3083Input = "0123456789ABCDEF1234"
3084Output = 312d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
3085Result = VERIFY_ERROR
3086
3087# BER signature
3088Verify = DSA-1024-PUBLIC
3089Ctrl = digest:SHA1
3090Input = "0123456789ABCDEF1234"
3091Output = 3080021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d870000
3092Result = VERIFY_ERROR
3093
2d7bbd6c
DSH
3094# RSA PSS padding tests.
3095
3096# Zero salt length makes output deterministic
3097Sign = RSA-2048
3098Ctrl = rsa_padding_mode:pss
3099Ctrl = rsa_pss_saltlen:0
3100Ctrl = digest:sha256
3101Input="0123456789ABCDEF0123456789ABCDEF"
3102Output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
3103
3104# Verify of above signature
3105Verify = RSA-2048-PUBLIC
3106Ctrl = rsa_padding_mode:pss
3107Ctrl = rsa_pss_saltlen:0
3108Ctrl = digest:sha256
3109Input="0123456789ABCDEF0123456789ABCDEF"
3110Output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
3111
137096a7
DSH
3112# Verify using salt length auto detect
3113Verify = RSA-2048-PUBLIC
3114Ctrl = rsa_padding_mode:pss
3115Ctrl = rsa_pss_saltlen:auto
3116Input="0123456789ABCDEF0123"
3117Output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
3118
2d7bbd6c
DSH
3119# Digest too short
3120Verify = RSA-2048-PUBLIC
3121Ctrl = rsa_padding_mode:pss
3122Ctrl = rsa_pss_saltlen:0
3123Ctrl = digest:sha256
3124Input="0123456789ABCDEF0123456789ABCDE"
3125Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
3126Result = VERIFY_ERROR
3127
3128# Digest too long
3129Verify = RSA-2048-PUBLIC
3130Ctrl = rsa_padding_mode:pss
3131Ctrl = rsa_pss_saltlen:0
3132Ctrl = digest:sha256
3133Input="0123456789ABCDEF0123456789ABCDEF0"
3134Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
3135Result = VERIFY_ERROR
3136
3137# Wrong salt length
3138Verify = RSA-2048
3139Ctrl = rsa_padding_mode:pss
3140Ctrl = rsa_pss_saltlen:2
3141Ctrl = digest:sha256
3142Input="0123456789ABCDEF0123456789ABCDEF"
3143Output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
3144Result = VERIFY_ERROR
3145
3146# Wrong MGF1 digest
3147Verify = RSA-2048
3148Ctrl = rsa_padding_mode:pss
3149Ctrl = rsa_pss_saltlen:0
3150Ctrl = digest:sha256
3151Ctrl = rsa_mgf1_md:sha1
3152Input="0123456789ABCDEF0123456789ABCDEF"
3153Output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
3154Result = VERIFY_ERROR
3155
1b214685
DSH
3156# RSA PSS key tests
3157
3158# PSS only key, no parameter restrictions
3159PrivateKey = RSA-PSS
3160-----BEGIN PRIVATE KEY-----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3187-----END PRIVATE KEY-----
3188
3189# PSS public key default parameters
3190PublicKey = RSA-PSS-DEFAULT
3191-----BEGIN PUBLIC KEY-----
3192MIIBIjANBgkqhkiG9w0BAQowAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
3193uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
3194y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
3195WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
3196gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
3197uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
3198TwIDAQAB
3199-----END PUBLIC KEY-----
23d674e8
DSH
3200# Key with invalid negative minimum salt length
3201PublicKey = RSA-PSS-BAD
3202-----BEGIN PUBLIC KEY-----
3203MIIBJzASBgkqhkiG9w0BAQowBaIDAgH/A4IBDwAwggEKAoIBAQDNAIHqeyrh6gbV
3204n3xz2f+5SglhXC5Lp8Y2zvCN01M+wxhVJbAVx2m5mnfWclv5w1Mqm25fZifV+4UW
3205B2jT3anL01l0URcX3D0wnS/EfuQfl+Mq23+d2GShxHZ6Zm7NcbwarPXnUX9LOFlP
32066psF5C1a2pkSAIAT5FMWpNm7jtCGuI0odYusr5ItRqhotIXSOcm66w4rZFknEPQr
3207LR6gpLSALAvsqzKPimiwBzvbVG/uqYCdKEmRKzkMFTK8finHZY+BdfrkbzQzL/h7
3208yrPkBkm5hXeGnaDqcYNT8HInVIhpE2SHYNEivmduD8SD3SD/wxvalqMZZsmqLnWt
3209A95H4cRPAgMBAAE=
3210-----END PUBLIC KEY-----
1b214685 3211
3c441c2e
DSH
3212# Key with minimum salt length exceeding maximum permitted value
3213PublicKey = RSA-PSS-BAD2
3214-----BEGIN PUBLIC KEY-----
3215MIIBKDATBgkqhkiG9w0BAQowBqIEAgIBAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG
32161Z98c9n/uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuF
3217Fgdo092py9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZ
3218T+qbBeQtWtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0
3219Ky0eoKS0gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4
3220e8qz5AZJuYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51
3221rQPeR+HETwIDAQAB
3222-----END PUBLIC KEY-----
3223
1b214685
DSH
3224# Verify using default parameters
3225Verify = RSA-PSS-DEFAULT
3226Input="0123456789ABCDEF0123"
3227Output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
3228
3229# Verify using default parameters, explicitly setting parameters
3230Verify = RSA-PSS-DEFAULT
3231Ctrl = rsa_padding_mode:pss
3232Ctrl = rsa_pss_saltlen:20
3233Ctrl = digest:sha1
3234Input="0123456789ABCDEF0123"
3235Output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
3236
137096a7 3237# Verify explicitly setting parameters "digest" salt length
3c441c2e
DSH
3238Verify = RSA-PSS-DEFAULT
3239Ctrl = rsa_padding_mode:pss
137096a7 3240Ctrl = rsa_pss_saltlen:digest
3c441c2e
DSH
3241Ctrl = digest:sha1
3242Input="0123456789ABCDEF0123"
3243Output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
3244
1b214685
DSH
3245# Verify using salt length larger than minimum
3246Verify = RSA-PSS-DEFAULT
3247Ctrl = rsa_pss_saltlen:30
3248Input="0123456789ABCDEF0123"
3249Output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
3250
137096a7
DSH
3251# Verify using maximum salt length
3252Verify = RSA-PSS-DEFAULT
3253Ctrl = rsa_pss_saltlen:max
3254Input="0123456789ABCDEF0123"
3255Output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
3256
1b214685
DSH
3257# Attempt to change salt length below minimum
3258Verify = RSA-PSS-DEFAULT
3259Ctrl = rsa_pss_saltlen:0
3260Result = PKEY_CTRL_ERROR
3261
3262# Attempt to change padding mode
3263Verify = RSA-PSS-DEFAULT
3264Ctrl = rsa_padding_mode:pkcs1
3265Result = PKEY_CTRL_INVALID
3266
3267# Attempt to change digest
3268Verify = RSA-PSS-DEFAULT
3269Ctrl = digest:sha256
3270Result = PKEY_CTRL_ERROR
3271
3272# Illegal decrypt
1b214685
DSH
3273Decrypt = RSA-PSS
3274Result = KEYOP_INIT_ERROR
3275Function = EVP_PKEY_decrypt_init
3276Reason = operation not supported for this keytype
3277
23d674e8
DSH
3278# Invalid key: rejected when we try to init
3279Verify = RSA-PSS-BAD
3280Result = KEYOP_INIT_ERROR
3281Function = rsa_pss_get_param
3282Reason = invalid salt length
3283
3c441c2e
DSH
3284# Invalid key: rejected when we try to init
3285Verify = RSA-PSS-BAD2
3286Result = KEYOP_INIT_ERROR
3287Function = pkey_pss_init
3288Reason = invalid salt length
3289
3b53e18a
DSH
3290# scrypt tests from draft-josefsson-scrypt-kdf-03
3291PBE = scrypt
3292Password = ""
3293Salt = ""
3294N = 16
3295r = 1
3296p = 1
3297Key = 77d6576238657b203b19ca42c18a0497f16b4844e3074ae8dfdffa3fede21442fcd0069ded0948f8326a753a0fc81f17e8d3e0fb2e0d3628cf35e20c38d18906
3298
3299PBE = scrypt
3300Password = "password"
3301Salt = "NaCl"
3302N = 1024
3303r = 8
3304p = 16
3305Key = fdbabe1c9d3472007856e7190d01e9fe7c6ad7cbc8237830e77376634b3731622eaf30d92e22a3886ff109279d9830dac727afb94a83ee6d8360cbdfa2cc0640
3306
3307PBE = scrypt
3308Password = "pleaseletmein"
3309Salt = "SodiumChloride"
3310N = 16384
3311r = 8
3312p = 1
3313Key = 7023bdcb3afd7348461c06cd81fd38ebfda8fbba904f8e3ea9b543f6545da1f2d5432955613f0fcf62d49705242a9af9e61e85dc0d651e40dfcf017b45575887
3314
941fbf71 3315# NB: this test requires more than 1GB of memory to run so it will hit the
3b53e18a
DSH
3316# scrypt memory limit and return an error. To run this test without error
3317# uncomment out the "maxmem" line and comment out the "Result"
3318# line
3319PBE = scrypt
3320Password = "pleaseletmein"
3321Salt = "SodiumChloride"
3322N = 1048576
3323r = 8
3324p = 1
3325Key = 2101cb9b6a511aaeaddbbe09cf70f881ec568d574a2ffd4dabe5ee9820adaa478e56fd8f4ba5d09ffa1c6d927c40f4c337304049e8a952fbcbf45c6fa77a41a4
3326#maxmem = 10000000000
3327Result = SCRYPT_ERROR
351fe214
DSH
3328
3329# PKCS#12 tests
3330
3331PBE = pkcs12
3332id = 1
3333iter = 1
3334MD = SHA1
3335Password = 0073006D006500670000
3336Salt = 0A58CF64530D823F
3337Key = 8AAAE6297B6CB04642AB5B077851284EB7128F1A2A7FBCA3
3338
3339PBE = pkcs12
3340id = 2
3341iter = 1
3342MD = SHA1
3343Password = 0073006D006500670000
3344Salt = 0A58CF64530D823F
3345Key = 79993DFE048D3B76
3346
3347PBE = pkcs12
3348id = 3
3349iter 1
3350MD = SHA1
3351Password = 0073006D006500670000
3352Salt = 3D83C0E4546AC140
3353Key = 8D967D88F6CAA9D714800AB3D48051D63F73A312
3354
3355PBE = pkcs12
3356id = 1
3357iter = 1000
3358MD = SHA1
3359Password = 007100750065006500670000
3360Salt = 1682C0FC5B3F7EC5
3361Key = 483DD6E919D7DE2E8E648BA8F862F3FBFBDC2BCB2C02957F
3362
3363PBE = pkcs12
3364id = 2
3365iter = 1000
3366MD = SHA1
3367Password = 007100750065006500670000
3368Salt = 1682C0FC5B3F7EC5
3369Key = 9D461D1B00355C50
3370
3371PBE = pkcs12
3372id = 3
3373iter = 1000
3374MD = SHA1
3375Password = 007100750065006500670000
3376Salt = 263216FCC2FAB31C
3377Key = 5EC4C7A80DF652294C3925B6489A7AB857C83476
3378
816060d2 3379# PBKDF2 tests
351fe214
DSH
3380PBE = pbkdf2
3381Password = "password"
3382Salt = "salt"
3383iter = 1
3384MD = sha1
3385Key = 0c60c80f961f0e71f3a9b524af6012062fe037a6
3386
3387PBE = pbkdf2
3388Password = "password"
3389Salt = "salt"
3390iter = 1
3391MD = sha256
3392Key = 120fb6cffcf8b32c43e7225256c4f837a86548c92ccc35480805987cb70be17b
3393
3394PBE = pbkdf2
3395Password = "password"
3396Salt = "salt"
3397iter = 1
3398MD = sha512
3399Key = 867f70cf1ade02cff3752599a3a53dc4af34c7a669815ae5d513554e1c8cf252c02d470a285a0501bad999bfe943c08f050235d7d68b1da55e63f73b60a57fce
3400
3401PBE = pbkdf2
3402Password = "password"
3403Salt = "salt"
3404iter = 2
3405MD = sha1
3406Key = ea6c014dc72d6f8ccd1ed92ace1d41f0d8de8957
3407
3408PBE = pbkdf2
3409Password = "password"
3410Salt = "salt"
3411iter = 2
3412MD = sha256
3413Key = ae4d0c95af6b46d32d0adff928f06dd02a303f8ef3c251dfd6e2d85a95474c43
3414
3415PBE = pbkdf2
3416Password = "password"
3417Salt = "salt"
3418iter = 2
3419MD = sha512
3420Key = e1d9c16aa681708a45f5c7c4e215ceb66e011a2e9f0040713f18aefdb866d53cf76cab2868a39b9f7840edce4fef5a82be67335c77a6068e04112754f27ccf4e
3421
3422PBE = pbkdf2
3423Password = "password"
3424Salt = "salt"
3425iter = 4096
3426MD = sha1
3427Key = 4b007901b765489abead49d926f721d065a429c1
3428
3429PBE = pbkdf2
3430Password = "password"
3431Salt = "salt"
3432iter = 4096
3433MD = sha256
3434Key = c5e478d59288c841aa530db6845c4c8d962893a001ce4e11a4963873aa98134a
3435
3436PBE = pbkdf2
3437Password = "password"
3438Salt = "salt"
3439iter = 4096
3440MD = sha512
3441Key = d197b1b33db0143e018b12f3d1d1479e6cdebdcc97c5c0f87f6902e072f457b5143f30602641b3d55cd335988cb36b84376060ecd532e039b742a239434af2d5
3442
3443PBE = pbkdf2
3444Password = "passwordPASSWORDpassword"
3445Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3446iter = 4096
3447MD = sha1
3448Key = 3d2eec4fe41c849b80c8d83662c0e44a8b291a964cf2f07038
3449
3450PBE = pbkdf2
3451Password = "passwordPASSWORDpassword"
3452Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3453iter = 4096
3454MD = sha256
3455Key = 348c89dbcbd32b2f32d814b8116e84cf2b17347ebc1800181c4e2a1fb8dd53e1c635518c7dac47e9
3456
3457PBE = pbkdf2
3458Password = "passwordPASSWORDpassword"
3459Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3460iter = 4096
3461MD = sha512
3462Key = 8c0511f4c6e597c6ac6315d8f0362e225f3c501495ba23b868c005174dc4ee71115b59f9e60cd9532fa33e0f75aefe30225c583a186cd82bd4daea9724a3d3b8
3463
3464PBE = pbkdf2
3465Password = 7061737300776f7264
3466Salt = 7361006c74
3467iter = 4096
3468MD = sha1
3469Key = 56fa6aa75548099dcc37d7f03425e0c3
3470
3471PBE = pbkdf2
3472Password = 7061737300776f7264
3473Salt = 7361006c74
3474iter = 4096
3475MD = sha256
3476Key = 89b69d0516f829893c696226650a8687
3477
3478PBE = pbkdf2
3479Password = 7061737300776f7264
3480Salt = 7361006c74
3481iter = 4096
3482MD = sha512
3483Key = 9d9e9c4cd21fe4be24d5b8244c759665
3cdd1e94
EK
3484
3485# Base64 tests
3486
3487Encoding = canonical
3488Input = ""
3489Output = ""
3490
3491Encoding = canonical
3492Input = "h"
3493Output = "aA==\n"
3494
3495Encoding = canonical
3496Input = "hello"
3497Output = "aGVsbG8=\n"
3498
3499Encoding = canonical
3500Input = "hello world!"
3501Output = "aGVsbG8gd29ybGQh\n"
3502
3503Encoding = canonical
3504Input = 00010203040506070809a0b0c0d0e0f000
3505Output = "AAECAwQFBgcICaCwwNDg8AA=\n"
3506
3507# Missing padding
3508Encoding = invalid
3509Output = "aGVsbG8"
3510
3511Encoding = invalid
3512Output = "aGVsbG8\n"
3513
3514# Tolerate missing newline
3515Encoding = valid
3516Input = "hello"
3517Output = "aGVsbG8="
3518
3519# Don't tolerate extra trailing '='
3520Encoding = invalid
3521Input = "hello"
3522Output = "aGVsbG8==\n"
3523
3524Encoding = invalid
3525Output = "aGVsbG8===\n"
3526
3527# Don't tolerate data after '='
3528Encoding = invalid
3529Output = "aGV=sbG8=\n"
3530
3531# Newlines are ignored
3532Encoding = valid
3533Input = "hello"
3534Output = "aGV\nsbG8=\n"
3535
3536Encoding = canonical
3537Input = "hello"
3538Output = 614756736247383d0a
3539
3540# Invalid characters
3541Encoding = invalid
3542Output = 614756736247383d0a00
3543
3544Encoding = invalid
3545Output = 61475600736247383d0a
3546
3547Encoding = invalid
3548Output = 61475601736247383d0a
3549
b785504a
EK
3550Encoding = invalid
3551Output = 61475680736247383d0a
3552
3553Encoding = invalid
3554Output = e14756736247383d0a
3555
3cdd1e94
EK
3556Encoding = canonical
3557Input = "OpenSSLOpenSSL\n"
3558Output = "T3BlblNTTE9wZW5TU0wK\n"
3559
3560Encoding = valid
3561Input = "OpenSSLOpenSSL\n"
3562Output = "T3BlblNTTE9wZW5TU0wK"
3563
3564# Truncate 1-3 chars
3565Encoding = invalid
3566Output = "T3BlblNTTE9wZW5TU0w"
3567
3568Encoding = invalid
3569Output = "T3BlblNTTE9wZW5TU0"
3570
3571Encoding = invalid
3572Output = "T3BlblNTTE9wZW5TU"
3573
3574Encoding = invalid
3575Output = "T3BlblNTTE9wZW5TU0wK===="
3576
3577Encoding = invalid
3578Output = "T3BlblNTTE9wZW5TU0wK============================================\n"
3579
3580Encoding = invalid
3581Output = "YQ==YQ==YQ==\n"
3582
3583Encoding = invalid
3584Output = "A"
3585
3586Encoding = invalid
3587Output = "A\n"
3588
3589Encoding = invalid
3590Output = "A="
3591
3592Encoding = invalid
3593Output = "A==\n"
3594
3595Encoding = invalid
3596Output = "A===\n"
3597
3598Encoding = invalid
3599Output = "A====\n"
3600
3601Encoding = valid
3602Input = "OpenSSLOpenSSL\n"
3603Output = "T3BlblNTTE9wZW5TU0wK\n\n"
3604
3605Encoding = valid
3606Input = "OpenSSLOpenSSL\n"
3607Output = "T3BlblNTTE\n9wZW5TU0wK"
3608
3609# CVE 2015-0292
3610Encoding = invalid
3611Output = "ZW5jb2RlIG1lCg==================================================================\n"
3612
3613Encoding = canonical
3614Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3615Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3616
3617Encoding = valid
3618Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3619Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA\n==\n"
3620
3621Encoding = valid
3622Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3623Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA=\n=\n"
3624
3625Encoding = invalid
3626Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA====\n"
3627
3628# Multiline output without padding
3629Encoding = canonical
3630Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3631Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4\n"
3632
3633# Multiline output with padding
3634Encoding = canonical
3635Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3636Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4eHh4eA==\n"
3637
3638# Multiline output with line break in the middle of a b64 block is accepted
3639Encoding = valid
3640Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3641Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh\n4eHh4eHh4eHh4eHh4eHh4eA==\n"
3642
3643# Long lines are accepted
3644Encoding = valid
3645Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3646Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3647
3648# Multiline input with data after '='.
3649Encoding = invalid
3650Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\neHh4eHh4eHh4eHh4eHh4eHh4\n"
3651
3652Encoding = invalid
3653Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neA==eHh4eHh4eHh4eHh4eHh4\n"
3654
3655# B64_EOF ('-') terminates input and trailing bytes are ignored
3656Encoding = valid
3657Input = "OpenSSLOpenSSL\n"
3658Output = "T3BlblNTTE9wZW5TU0wK\n-abcd"
3659
3660Encoding = valid
3661Input = "OpenSSLOpenSSL\n"
3662Output = "T3BlblNTTE9wZW5TU0wK-abcd"
bd3385d8
AP
3663
3664Cipher = chacha20
3665Key = 0000000000000000000000000000000000000000000000000000000000000000
3666IV = 00000000000000000000000000000000
3667Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3668Ciphertext = 76b8e0ada0f13d90405d6ae55386bd28bdd219b8a08ded1aa836efcc8b770dc7da41597c5157488d7724e03fb8d84a376a43b8f41518a11cc387b669b2ee6586
3669
3670Cipher = chacha20
3671Key = 0000000000000000000000000000000000000000000000000000000000000001
3672IV = 00000000000000000000000000000000
3673Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3674Ciphertext = 4540f05a9f1fb296d7736e7b208e3c96eb4fe1834688d2604f450952ed432d41bbe2a0b6ea7566d2a5d1e7e20d42af2c53d792b1c43fea817e9ad275ae546963
3675
3676Cipher = chacha20
3677Key = 0000000000000000000000000000000000000000000000000000000000000000
3678IV = 00000000000000000000000000000001
3679Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3680Ciphertext = de9cba7bf3d69ef5e786dc63973f653a0b49e015adbff7134fcb7df137821031e85a050278a7084527214f73efc7fa5b5277062eb7a0433e445f41e31afab757
3681
3682Cipher = chacha20
3683Key = 0000000000000000000000000000000000000000000000000000000000000000
3684IV = 00000000000000000100000000000000
3685Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3686Ciphertext = ef3fdfd6c61578fbf5cf35bd3dd33b8009631634d21e42ac33960bd138e50d32111e4caf237ee53ca8ad6426194a88545ddc497a0b466e7d6bbdb0041b2f586b
3687
3688Cipher = chacha20
3689Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3690IV = 00000000000000000001020304050607
3691Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3692Ciphertext = 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
3693
3694Cipher = chacha20
3695Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3696IV = 00000000000000000001020304050607
3697Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3698Ciphertext = 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
3699
3700Cipher = chacha20
3701Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3702IV = 00000000000000000001020304050607
3703Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3704Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb3ab78fab78c94213668bbbd394c5de93b853178addd6b97f9fa1ec3e56c00c9ddff0a44a204241175a4cab0f961ba53ede9bdf960b94f9829b1f3414726429b362c5b538e391520f489b7ed8d20ae3fd49e9e259e44397514d618c96c4846be3c680bdc11c71dcbbe29ccf80d62a0938fa549391e6ea57ecbe2606790ec15d2224ae307c144226b7c4e8c2f97d2a1d67852d29beba110edd445197012062a393a9c92803ad3b4f31d7bc6033ccf7932cfed3f019044d25905916777286f82f9a4cc1ffe430ffd1dcfc27deed327b9f9630d2fa969fb6f0603cd19dd9a9519e673bcfcd9014125291a44669ef7285e74ed3729b677f801c3cdf058c50963168b496043716c730
3705
a98c648e
AP
3706Cipher = chacha20
3707Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3708IV = 00000000000000000001020304050607
3709Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3710Ciphertext = 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
3711
bd3385d8
AP
3712Cipher = chacha20
3713Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3714IV = 00000000000000000001020304050607
3715Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3716Ciphertext = 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
3717
a98c648e
AP
3718Cipher = chacha20
3719Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3720IV = 00000000000000000001020304050607
3721Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3722Ciphertext = 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
3723
3724Cipher = chacha20
3725Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3726IV = 00000000000000000001020304050607
3727Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3728Ciphertext = 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
3729
3730Cipher = chacha20
3731Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3732IV = 00000000000000000001020304050607
3733Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3734Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb3ab78fab78c94213668bbbd394c5de93b853178addd6b97f9fa1ec3e56c00c9ddff0a44a204241175a4cab0f961ba53ede9bdf960b94f9829b1f3414726429b362c5b538e391520f489b7ed8d20ae3fd49e9e259e44397514d618c96c4846be3c680bdc11c71dcbbe29ccf80d62a0938fa549391e6ea57ecbe2606790ec15d2224ae307c144226b7c4e8c2f97d2a1d67852d29beba110edd445197012062a393a9c92803ad3b4f31d7bc6033ccf7932cfed3f019044d25905916777286f82f9a4cc1ffe430ffd1dcfc27deed327b9f9630d2fa969fb6f0603cd19dd9a9519e673bcfcd9014125291a44669ef7285e74ed3729b677f801c3cdf058c50963168b496043716c7307cd9e0cdd137fccb0f05b47cdbb95c5f54831622c3652a32b2531fe326bcd6e2bbf56a194fa196fbd1a54952110f51c73433865f7664b836685e3664b3d8444aF89A242805E18C975F1146324996FDE17007CF3E6E8F4E764022533EDBFE07D4733E48BB372D75B0EF48EC983EB78532161CC529E5ABB89837DFCCA6261DBB37C7C5E6A87478BF41EE85A518C0F4EFA9BDE828C5A71B8E46597B634AFD204D3C501334239C3414285ED72D3A9169EABBD4DC25D52BB7516D3BA712D75AD8C0AE5D493C19E38A77939E7A058D713E9CCCCA58045F436B434B1C80D365472406E392951987DB6905C80D431DA18451135BE7E82BCAB358CB3971E61405B2FF17980D6E7E67E861E28201C1EE30B441040FD06878D65042C95582A4318207BFC700BE0CE32889AEC2FFE5085E8967910D879FA0E8C0FF85FDC510B9FF2FBF87CFCB
3735
3736Cipher = chacha20
3737Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3738IV = 00000000000000000001020304050607
3739Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3740Ciphertext = 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
3741
3742Cipher = chacha20
3743Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3744IV = 00000000000000000001020304050607
3745Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3746Ciphertext = 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
3747
3748Cipher = chacha20
3749Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3750IV = 00000000000000000001020304050607
3751Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3752Ciphertext = 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
3753
3754Cipher = chacha20
3755Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3756IV = 00000000000000000001020304050607
3757Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3758Ciphertext = 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
3759
bd3385d8
AP
3760# RFC7539
3761Cipher = chacha20-poly1305
3762Key = 808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
3763IV = 070000004041424344454647
3764AAD = 50515253c0c1c2c3c4c5c6c7
3765Tag = 1ae10b594f09e26a7e902ecbd0600691
3766Plaintext = 4c616469657320616e642047656e746c656d656e206f662074686520636c617373206f66202739393a204966204920636f756c64206f6666657220796f75206f6e6c79206f6e652074697020666f7220746865206675747572652c2073756e73637265656e20776f756c642062652069742e
3767Ciphertext = d31a8d34648e60db7b86afbc53ef7ec2a4aded51296e08fea9e2b5a736ee62d63dbea45e8ca9671282fafb69da92728b1a71de0a9e060b2905d6a5b67ecd3b3692ddbd7f2d778b8c9803aee328091b58fab324e4fad675945585808b4831d7bc3ff4def08e4b7a9de576d26586cec64b6116
3768
3769Cipher = chacha20-poly1305
3770Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3771IV = 000000000102030405060708
3772AAD = f33388860000000000004e91
3773Tag = eead9d67890cbb22392336fea1851f38
3774Plaintext = 496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d447261667473206173207265666572656e6365206d6174657269616c206f7220746f2063697465207468656d206f74686572207468616e206173202fe2809c776f726b20696e2070726f67726573732e2fe2809d
3775Ciphertext = 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
53a3a545 3776
70d8b304
AP
3777Cipher = chacha20-poly1305
3778Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3779IV = 000000000102030405060708
3780AAD = f33388860000000000004e91
3781Tag = eead9d67890cbb22392336fea1851f39
3782Plaintext = 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
3783Ciphertext = 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
3784Operation = DECRYPT
3785Result = CIPHERFINAL_ERROR
3786
abb8c44f
AP
3787# self-generated vectors
3788Cipher = chacha20-poly1305
3789Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3790IV = 000000000102030405060708
3791AAD = f33388860000000000004e91
3792Tag = d96119a40cd17f2527306866a3ef0413
3793Plaintext = 496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d4472616674732061732072
3794Ciphertext = 64a0861575861af460f062c79be643bd5e805cfd345cf389f108670ac76c8cb24c6cfc18755d43eea09ee94e382d26b0bdb7b73c321b0100d4f03b7f355894cf332f830e710b97ce98c8a84abd0b948114ad176e008d33bd60f982b1ff37c8559797a06ef4f0ef61c186324e2b3506383606907b6a7c02b0f9f6157b53c867e4b9166c767b804d46a59b5216cde7a4e99040c5a40433225ee282a1b0a06c523eaf4534d7f83fa1155b0047718cbc546a0d072b04b3564eea1b422273f548271a
3795
3796Cipher = chacha20-poly1305
3797Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3798IV = 000000000102030405060708
3799AAD = f33388860000000000004e91
3800Tag = 53aee3189d2b747032378a6186feb43f
3801Plaintext = 496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d447261667473206173207265666572656e6365206d6174657269616c206f7220746f2063697465207468656d206f74686572207468616e206173202fe2809c776f726b20696e2070726f67496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d447261667473206173207265666572656e6365206d6174657269616c206f7220746f2063697465207468656d206f74686572207468616e206173202fe2809c776f726b20696e2070726f67
3802Ciphertext = 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
3803
3804Cipher = chacha20-poly1305
3805Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3806IV = 000000000102030405060708
3807AAD = f33388860000000000004e91
3808Tag = e0723bce23528ce6ccb10ff9627038bf
3809Plaintext = 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
3810Ciphertext = 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
3811
53a3a545
DSH
3812# TLS1 PRF tests, from NIST test vectors
3813
3814KDF=TLS1-PRF
2ff9e743
DSH
3815Ctrl.md = md:MD5-SHA1
3816Ctrl.Secret = hexsecret:bded7fa5c1699c010be23dd06ada3a48349f21e5f86263d512c0c5cc379f0e780ec55d9844b2f1db02a96453513568d0
3817Ctrl.label = seed:master secret
3818Ctrl.client_random = hexseed:e5acaf549cd25c22d964c0d930fa4b5261d2507fad84c33715b7b9a864020693
3819Ctrl.server_random = hexseed:135e4d557fdf3aa6406d82975d5c606a9734c9334b42136e96990fbd5358cdb2
53a3a545
DSH
3820Output = 2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3821
3822KDF=TLS1-PRF
2ff9e743
DSH
3823Ctrl.md = md:MD5-SHA1
3824Ctrl.Secret = hexsecret:2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3825Ctrl.label = seed:key expansion
3826Ctrl.server_random = hexseed:67267e650eb32444119d222a368c191af3082888dc35afe8368e638c828874be
3827Ctrl.client_random = hexseed:d58a7b1cd4fedaa232159df652ce188f9d997e061b9bf48e83b62990440931f6
53a3a545
DSH
3828Output = 3088825988e77fce68d19f756e18e43eb7fe672433504feaf99b3c503d9091b164f166db301d70c9fc0870b4a94563907bee1a61fb786cb717576890bcc51cb9ead97e01d0a2fea99c953377b195205ff07b369589178796edc963fd80fdbe518a2fc1c35c18ae8d
3829
3830KDF=TLS1-PRF
2ff9e743
DSH
3831Ctrl.md = md:SHA256
3832Ctrl.Secret = hexsecret:f8938ecc9edebc5030c0c6a441e213cd24e6f770a50dda07876f8d55da062bcadb386b411fd4fe4313a604fce6c17fbc
3833Ctrl.label = seed:master secret
3834Ctrl.client_random = hexseed:36c129d01a3200894b9179faac589d9835d58775f9b5ea3587cb8fd0364cae8c
3835Ctrl.server_random = hexseed:f6c9575ed7ddd73e1f7d16eca115415812a43c2b747daaaae043abfb50053fce
53a3a545
DSH
3836Output = 202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3837
3838KDF=TLS1-PRF
2ff9e743
DSH
3839Ctrl.md = md:SHA256
3840Ctrl.Secret = hexsecret:202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3841Ctrl.label = seed:key expansion
3842Ctrl.server_random = hexseed:ae6c806f8ad4d80784549dff28a4b58fd837681a51d928c3e30ee5ff14f39868
3843Ctrl.client_random = hexseed:62e1fd91f23f558a605f28478c58cf72637b89784d959df7e946d3f07bd1b616
53a3a545
DSH
3844Output = d06139889fffac1e3a71865f504aa5d0d2a2e89506c6f2279b670c3e1b74f531016a2530c51a3a0f7e1d6590d0f0566b2f387f8d11fd4f731cdd572d2eae927f6f2f81410b25e6960be68985add6c38445ad9f8c64bf8068bf9a6679485d966f1ad6f68b43495b10a683755ea2b858d70ccac7ec8b053c6bd41ca299d4e51928
3845
3846# Missing digest.
3847KDF=TLS1-PRF
2ff9e743
DSH
3848Ctrl.Secret = hexsecret:01
3849Ctrl.Seed = hexseed:02
53a3a545
DSH
3850Output = 03
3851Result = KDF_DERIVE_ERROR
3852
3853# Missing secret.
3854KDF=TLS1-PRF
2ff9e743
DSH
3855Ctrl.md = md:MD5-SHA1
3856Ctrl.Seed = hexseed:02
53a3a545
DSH
3857Output = 03
3858Result = KDF_DERIVE_ERROR
404cc933 3859
aacfb134
AG
3860# HKDF tests, from RFC5869 test vectors
3861
3862KDF = HKDF
3863Ctrl.md = md:SHA256
3864Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3865Ctrl.salt = hexsalt:000102030405060708090a0b0c
3866Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3867Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3868
ddd2c389
MC
3869KDF = HKDF
3870Ctrl.mode = mode:EXTRACT_ONLY
3871Ctrl.md = md:SHA256
3872Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3873Ctrl.salt = hexsalt:000102030405060708090a0b0c
3874Output = 077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3875
3876KDF = HKDF
3877Ctrl.mode = mode:EXPAND_ONLY
3878Ctrl.md = md:SHA256
3879Ctrl.IKM = hexkey:077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3880Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3881Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3882
aacfb134
AG
3883KDF = HKDF
3884Ctrl.md = md:SHA256
3885Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3886Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3887Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3888Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3889
ddd2c389
MC
3890KDF = HKDF
3891Ctrl.mode = mode:EXTRACT_ONLY
3892Ctrl.md = md:SHA256
3893Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3894Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3895Output = 06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3896
3897KDF = HKDF
3898Ctrl.mode = mode:EXPAND_ONLY
3899Ctrl.md = md:SHA256
3900Ctrl.IKM = hexkey:06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3901Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3902Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3903
aacfb134
AG
3904KDF = HKDF
3905Ctrl.md = md:SHA256
3906Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3907Ctrl.salt = salt:
3908Ctrl.info = info:
3909Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3910
ddd2c389
MC
3911KDF = HKDF
3912Ctrl.mode = mode:EXTRACT_ONLY
3913Ctrl.md = md:SHA256
3914Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3915Ctrl.salt = salt:
3916Ctrl.info = info:
3917Output = 19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3918
3919KDF = HKDF
3920Ctrl.mode = mode:EXPAND_ONLY
3921Ctrl.md = md:SHA256
3922Ctrl.IKM = hexkey:19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3923Ctrl.info = info:
3924Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3925
aacfb134
AG
3926KDF = HKDF
3927Ctrl.md = md:SHA1
3928Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3929Ctrl.salt = hexsalt:000102030405060708090a0b0c
3930Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3931Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3932
ddd2c389
MC
3933KDF = HKDF
3934Ctrl.mode = mode:EXTRACT_ONLY
3935Ctrl.md = md:SHA1
3936Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3937Ctrl.salt = hexsalt:000102030405060708090a0b0c
3938Output = 9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3939
3940KDF = HKDF
3941Ctrl.mode = mode:EXPAND_ONLY
3942Ctrl.md = md:SHA1
3943Ctrl.IKM = hexkey:9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3944Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3945Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3946
aacfb134
AG
3947KDF = HKDF
3948Ctrl.md = md:SHA1
3949Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3950Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3951Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3952Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3953
3954KDF = HKDF
ddd2c389
MC
3955Ctrl.mode = mode:EXTRACT_ONLY
3956Ctrl.md = md:SHA1
3957Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3958Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3959Output = 8adae09a2a307059478d309b26c4115a224cfaf6
3960
3961KDF = HKDF
3962Ctrl.mode = mode:EXPAND_ONLY
3963Ctrl.md = md:SHA1
3964Ctrl.IKM = hexkey:8adae09a2a307059478d309b26c4115a224cfaf6
3965Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3966Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3967
3968KDF = HKDF
3969Ctrl.md = md:SHA1
3970Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3971Ctrl.salt = salt:
3972Ctrl.info = info:
3973Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3974
3975KDF = HKDF
3976Ctrl.mode = mode:EXTRACT_ONLY
aacfb134
AG
3977Ctrl.md = md:SHA1
3978Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3979Ctrl.salt = salt:
ddd2c389
MC
3980Output = da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
3981
3982KDF = HKDF
3983Ctrl.mode = mode:EXPAND_ONLY
3984Ctrl.md = md:SHA1
3985Ctrl.IKM = hexkey:da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
aacfb134
AG
3986Ctrl.info = info:
3987Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3988
3989KDF = HKDF
3990Ctrl.md = md:SHA1
3991Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3992Ctrl.salt = salt:
3993Ctrl.info = info:
3994Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3995
ddd2c389
MC
3996KDF = HKDF
3997Ctrl.mode = mode:EXTRACT_ONLY
3998Ctrl.md = md:SHA1
3999Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4000Ctrl.salt = salt:
4001Output = 2adccada18779e7c2077ad2eb19d3f3e731385dd
4002
4003KDF = HKDF
4004Ctrl.mode = mode:EXPAND_ONLY
4005Ctrl.md = md:SHA1
4006Ctrl.IKM = hexkey:2adccada18779e7c2077ad2eb19d3f3e731385dd
4007Ctrl.info = info:
4008Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
4009
aacfb134
AG
4010KDF = HKDF
4011Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4012Ctrl.salt = salt:
4013Ctrl.info = info:
4014Output = 00
4015Result = KDF_DERIVE_ERROR
4016
4017KDF = HKDF
4018Ctrl.md = md:SHA1
4019Ctrl.salt = salt:
4020Ctrl.info = info:
4021Output = 00
4022Result = KDF_DERIVE_ERROR
4023
4024KDF = HKDF
4025Ctrl.md = md:SHA1
4026Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4027Ctrl.info = info:
4028Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
4029
4030KDF = HKDF
4031Ctrl.md = md:SHA1
4032Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4033Ctrl.salt = salt:
4034Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
404cc933 4035
ddd2c389
MC
4036KDF = HKDF
4037Ctrl.mode = mode:EXTRACT_AND_EXPAND
4038Ctrl.md = md:SHA1
4039Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4040Ctrl.salt = salt:
4041Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
4042
404cc933
DSH
4043# ECDH tests
4044
4045Derive=P-256
4046PeerKey=P-256-Peer-PUBLIC
4047SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
4048
4049Derive=P-256-Peer
4050PeerKey=P-256-PUBLIC
4051SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
755031d9
DSH
4052
4053# X25519 test vectors from RFC7748 6.1
4054PrivateKey=Alice-25519
4055-----BEGIN PRIVATE KEY-----
10f8d0ea 4056MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq
755031d9
DSH
4057-----END PRIVATE KEY-----
4058PublicKey=Alice-25519-PUBLIC
4059-----BEGIN PUBLIC KEY-----
10f8d0ea 4060MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo=
755031d9
DSH
4061-----END PUBLIC KEY-----
4062PrivateKey=Bob-25519
4063-----BEGIN PRIVATE KEY-----
10f8d0ea 4064MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr
755031d9
DSH
4065-----END PRIVATE KEY-----
4066PublicKey=Bob-25519-PUBLIC
4067-----BEGIN PUBLIC KEY-----
10f8d0ea 4068MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08=
755031d9
DSH
4069-----END PUBLIC KEY-----
4070
4071Derive=Alice-25519
4072PeerKey=Bob-25519-PUBLIC
4073SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
4074
4075Derive=Bob-25519
4076PeerKey=Alice-25519-PUBLIC
4077SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
cce65266
DSH
4078
4079# Illegal sign/verify operations with X25519 key
4080
4081Sign=Alice-25519
4082Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
4083Function = EVP_PKEY_sign_init
4084Reason = operation not supported for this keytype
cce65266
DSH
4085
4086Verify=Alice-25519
4087Result = KEYOP_INIT_ERROR
99f2f1dc
DSH
4088Function = EVP_PKEY_verify_init
4089Reason = operation not supported for this keytype
52ad5b60
TS
4090
4091# Poly1305 Tests From RFC 7539
4092
4093MAC = Poly1305
4094Key = 0000000000000000000000000000000000000000000000000000000000000000
4095Input = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
4096Output = 00000000000000000000000000000000
4097
4098MAC = Poly1305
4099Key = 0000000000000000000000000000000036e5f6b5c5e06070f0efca96227a863e
4100Input = 416e79207375626d697373696f6e20746f20746865204945544620696e74656e6465642062792074686520436f6e7472696275746f7220666f72207075626c69636174696f6e20617320616c6c206f722070617274206f6620616e204945544620496e7465726e65742d4472616674206f722052464320616e6420616e792073746174656d656e74206d6164652077697468696e2074686520636f6e74657874206f6620616e204945544620616374697669747920697320636f6e7369646572656420616e20224945544620436f6e747269627574696f6e222e20537563682073746174656d656e747320696e636c756465206f72616c2073746174656d656e747320696e20494554462073657373696f6e732c2061732077656c6c206173207772697474656e20616e6420656c656374726f6e696320636f6d6d756e69636174696f6e73206d61646520617420616e792074696d65206f7220706c6163652c207768696368206172652061646472657373656420746f
4101Output = 36e5f6b5c5e06070f0efca96227a863e
4102
4103MAC = Poly1305
4104Key = 36e5f6b5c5e06070f0efca96227a863e00000000000000000000000000000000
4105Input = 416e79207375626d697373696f6e20746f20746865204945544620696e74656e6465642062792074686520436f6e7472696275746f7220666f72207075626c69636174696f6e20617320616c6c206f722070617274206f6620616e204945544620496e7465726e65742d4472616674206f722052464320616e6420616e792073746174656d656e74206d6164652077697468696e2074686520636f6e74657874206f6620616e204945544620616374697669747920697320636f6e7369646572656420616e20224945544620436f6e747269627574696f6e222e20537563682073746174656d656e747320696e636c756465206f72616c2073746174656d656e747320696e20494554462073657373696f6e732c2061732077656c6c206173207772697474656e20616e6420656c656374726f6e696320636f6d6d756e69636174696f6e73206d61646520617420616e792074696d65206f7220706c6163652c207768696368206172652061646472657373656420746f
4106Output = f3477e7cd95417af89a6b8794c310cf0
4107
4108MAC = Poly1305
4109Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
4110Input = 2754776173206272696c6c69672c20616e642074686520736c6974687920746f7665730a446964206779726520616e642067696d626c6520696e2074686520776162653a0a416c6c206d696d737920776572652074686520626f726f676f7665732c0a416e6420746865206d6f6d65207261746873206f757467726162652e
4111Output = 4541669a7eaaee61e708dc7cbcc5eb62
4112
4113# If one uses 130-bit partial reduction, does the code handle the case where partially reduced final result is not fully reduced?
4114MAC = Poly1305
4115Key = 0200000000000000000000000000000000000000000000000000000000000000
4116Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4117Output = 03000000000000000000000000000000
4118
4119# What happens if addition of s overflows modulo 2^128?
4120MAC = Poly1305
4121Key = 02000000000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4122Input = 02000000000000000000000000000000
4123Output = 03000000000000000000000000000000
4124
4125# What happens if data limb is all ones and there is carry from lower limb?
4126MAC = Poly1305
4127Key = 0100000000000000000000000000000000000000000000000000000000000000
4128Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF0FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF11000000000000000000000000000000
4129Output = 05000000000000000000000000000000
4130
4131# What happens if final result from polynomial part is exactly 2^130-5?
4132MAC = Poly1305
4133Key = 0100000000000000000000000000000000000000000000000000000000000000
4134Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFBFEFEFEFEFEFEFEFEFEFEFEFEFEFEFE01010101010101010101010101010101
4135Output = 00000000000000000000000000000000
4136
4137# What happens if final result from polynomial part is exactly 2^130-6?
4138MAC = Poly1305
4139Key = 0200000000000000000000000000000000000000000000000000000000000000
4140Input = FDFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4141Output = FAFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4142
4143# Taken from poly1305_internal_test.c
4144# More RFC7539
4145
4146MAC = Poly1305
4147Input = 43727970746f6772617068696320466f72756d2052657365617263682047726f7570
4148Key = 85d6be7857556d337f4452fe42d506a80103808afb0db2fd4abff6af4149f51b
4149Output = a8061dc1305136c6c22b8baf0c0127a9
4150
4151# test vectors from "The Poly1305-AES message-authentication code"
4152
4153MAC = Poly1305
4154Input = f3f6
4155Key = 851fc40c3467ac0be05cc20404f3f700580b3b0f9447bb1e69d095b5928b6dbc
4156Output = f4c633c3044fc145f84f335cb81953de
4157
4158# No input?
4159# MAC = Poly1305
4160# Input =
4161# Key = a0f3080000f46400d0c7e9076c834403dd3fab2251f11ac759f0887129cc2ee7
4162# Output = dd3fab2251f11ac759f0887129cc2ee7
4163
4164MAC = Poly1305
4165Input = 663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4166Key = 48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef
4167Output = 0ee1c16bb73f0f4fd19881753c01cdbe
4168
4169MAC = Poly1305
4170Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9
4171Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4172Output = 5154ad0d2cb26e01274fc51148491f1b
4173
4174# self-generated vectors exercise "significant" length such that* are handled by different code paths
4175
4176MAC = Poly1305
4177Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af
4178Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4179Output = 812059a5da198637cac7c4a631bee466
4180
4181MAC = Poly1305
4182Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67
4183Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4184Output = 5b88d7f6228b11e2e28579a5c0c1f761
4185
4186MAC = Poly1305
4187Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4188Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4189Output = bbb613b2b6d753ba07395b916aaece15
4190
4191MAC = Poly1305
4192Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24
4193Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4194Output = c794d7057d1778c4bbee0a39b3d97342
4195
4196MAC = Poly1305
4197Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4198Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4199Output = ffbcb9b371423152d7fca5ad042fbaa9
4200
4201MAC = Poly1305
4202Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee466
4203Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4204Output = 069ed6b8ef0f207b3e243bb1019fe632
4205
4206MAC = Poly1305
4207Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee4665b88d7f6228b11e2e28579a5c0c1f761
4208Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4209Output = cca339d9a45fa2368c2c68b3a4179133
4210
4211MAC = Poly1305
4212Input = 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
4213Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4214Output = 53f6e828a2f0fe0ee815bf0bd5841a34
4215
4216MAC = Poly1305
4217Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee4665b88d7f6228b11e2e28579a5c0c1f761ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee4665b88d7f6228b11e2e28579a5c0c1f761
4218Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4219Output = b846d44e9bbd53cedffbfbb6b7fa4933
4220
4221# 4th power of the key spills to 131th bit in SIMD key setup
4222
4223MAC = Poly1305
4224Input = ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
4225Key = ad628107e8351d0f2c231a05dc4a410600000000000000000000000000000000
4226Output = 07145a4c02fe5fa32036de68fabe9066
4227
4228# poly1305_ieee754.c failed this in final stage
4229
4230MAC = Poly1305
4231Input = 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
4232Key = 95d5c005503e510d8cd0aa072c4a4d066eabc52d11653df47fbf63ab198bcc26
4233Output = f248312e578d9d58f8b7bb4d19105431
4234
4235# AVX2 in poly1305-x86.pl failed this with 176+32 split
4236
4237MAC = Poly1305
4238Input = 248ac31085b6c2adaaa38259a0d7192c5c35d1bb4ef39ad94c38d1c82479e2dd2159a077024b0589bc8a20101b506f0a1ad0bbab76e83a83f1b94be6beae74e874cab692c5963a75436b776121ec9f62399a3e66b2d22707dae81933b6277f3c8516bcbe26dbbd86f373103d7cf4cad1888c952118fbfbd0d7b4bedc4ae4936aff91157e7aa47c54442ea78d6ac251d324a0fbe49d89cc3521b66d16e9c66a3709894e4eb0a4eedc4ae19468e66b81f271351b1d921ea551047abcc6b87a901fde7db79fa1818c11336dbc07244a40eb
4239Key = 000102030405060708090a0b0c0d0e0f00000000000000000000000000000000
4240Output = bc939bc5281480fa99c6d68c258ec42f
4241
4242# test vectors from Google
4243
4244# No input?
4245# MAC = Poly1305
4246# Input =
4247# Key = c8afaac331ee372cd6082de134943b174710130e9f6fea8d72293850a667d86c
4248# Output = 4710130e9f6fea8d72293850a667d86c
4249
4250MAC = Poly1305
4251Input = 48656c6c6f20776f726c6421
4252Key = 746869732069732033322d62797465206b657920666f7220506f6c7931333035
4253Output = a6f745008f81c916a20dcc74eef2b2f0
4254
4255MAC = Poly1305
4256Input = 0000000000000000000000000000000000000000000000000000000000000000
4257Key = 746869732069732033322d62797465206b657920666f7220506f6c7931333035
4258Output = 49ec78090e481ec6c26b33b91ccc0307
4259
4260MAC = Poly1305
4261Input = 89dab80b7717c1db5db437860a3f70218e93e1b8f461fb677f16f35f6f87e2a91c99bc3a47ace47640cc95c345be5ecca5a3523c35cc01893af0b64a620334270372ec12482d1b1e363561698a578b359803495bb4e2ef1930b17a5190b580f141300df30adbeca28f6427a8bc1a999fd51c554a017d095d8c3e3127daf9f595
4262Key = 2d773be37adb1e4d683bf0075e79c4ee037918535a7f99ccb7040fb5f5f43aea
4263Output = c85d15ed44c378d6b00e23064c7bcd51
4264
4265MAC = Poly1305
4266Input = 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
4267Key = 99e5822dd4173c995e3dae0ddefb97743fde3b080134b39f76e9bf8d0e88d546
4268Output = 2637408fe13086ea73f971e3425e2820
4269
4270# test vectors from Hanno Bock
4271
4272MAC = Poly1305
4273Input = cccccccccccccccccccccccccccccccccccccccccccccccccc80ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccceccccccccccccccccccccccccccccccccccccc5cccccccccccccccccccccccccccccccccccccccccce3ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccaccccccccccccccccccccce6cccccccccc000000afccccccccccccccccccfffffff5000000000000000000000000000000000000000000000000000000ffffffe70000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000719205a8521dfc
4274Key = 7f1b02640000000000000000000000000000000000000000cccccccccccccccc
4275Output = 8559b876eceed66eb37798c0457baff9
4276
4277MAC = Poly1305
4278Input = aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa000000000000000000800264
4279Key = e00016000000000000000000000000000000aaaaaaaaaaaaaaaaaaaaaaaaaaaa
4280Output = 00bd1258978e205444c9aaaa82006fed
4281
4282MAC = Poly1305
4283Input = 02fc
4284Key = 0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4285Output = 06120c0c0c0c0c0c0c0c0c0c0c0c0c0c
4286
4287MAC = Poly1305
4288Input = 7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7a7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b5c7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b6e7b007b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7a7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b5c7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b6e7b001300000000b300000000000000000000000000000000000000000000f20000000000000000000000000000000000002000efff0009000000000000000000000000100000000009000000640000000000000000000000001300000000b300000000000000000000000000000000000000000000f20000000000000000000000000000000000002000efff00090000000000000000007a000010000000000900000064000000000000000000000000000000000000000000000000fc
4289Key = 00ff000000000000000000000000000000000000001e00000000000000007b7b
4290Output = 33205bbf9e9f8f7212ab9e2ab9b7e4a5
4291
4292MAC = Poly1305
4293Input = 77777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777ffffffe9e9acacacacacacacacacacac0000acacec0100acacac2caca2acacacacacacacacacacac64f2
4294Key = 0000007f0000007f01000020000000000000cf77777777777777777777777777
4295Output = 02ee7c8c546ddeb1a467e4c3981158b9
4296
4297# test vectors from Andrew Moon - nacl
4298
4299MAC = Poly1305
4300Input = 8e993b9f48681273c29650ba32fc76ce48332ea7164d96a4476fb8c531a1186ac0dfc17c98dce87b4da7f011ec48c97271d2c20f9b928fe2270d6fb863d51738b48eeee314a7cc8ab932164548e526ae90224368517acfeabd6bb3732bc0e9da99832b61ca01b6de56244a9e88d5f9b37973f622a43d14a6599b1f654cb45a74e355a5
4301Key = eea6a7251c1e72916d11c2cb214d3c252539121d8e234e652d651fa4c8cff880
4302Output = f3ffc7703f9400e52a7dfb4b3d3305d9
4303
4304# wrap 2^130-5
4305MAC = Poly1305
4306Input = ffffffffffffffffffffffffffffffff
4307Key = 0200000000000000000000000000000000000000000000000000000000000000
4308Output = 03000000000000000000000000000000
4309
4310# wrap 2^128
4311MAC = Poly1305
4312Input = 02000000000000000000000000000000
4313Key = 02000000000000000000000000000000ffffffffffffffffffffffffffffffff
4314Output = 03000000000000000000000000000000
4315
4316# limb carry
4317MAC = Poly1305
4318Input = fffffffffffffffffffffffffffffffff0ffffffffffffffffffffffffffffff11000000000000000000000000000000
4319Key = 0100000000000000000000000000000000000000000000000000000000000000
4320Output = 05000000000000000000000000000000
4321
4322# 2^130-5
4323MAC = Poly1305
4324Input = fffffffffffffffffffffffffffffffffbfefefefefefefefefefefefefefefe01010101010101010101010101010101
4325Key = 0100000000000000000000000000000000000000000000000000000000000000
4326Output = 00000000000000000000000000000000
4327
4328# 2^130-6
4329MAC = Poly1305
4330Input = fdffffffffffffffffffffffffffffff
4331Key = 0200000000000000000000000000000000000000000000000000000000000000
4332Output = faffffffffffffffffffffffffffffff
4333
4334# 5*H+L reduction intermediate
4335MAC = Poly1305
4336Input = e33594d7505e43b900000000000000003394d7505e4379cd01000000000000000000000000000000000000000000000001000000000000000000000000000000
4337Key = 0100000000000000040000000000000000000000000000000000000000000000
4338Output = 14000000000000005500000000000000
4339
4340# 5*H+L reduction final
4341MAC = Poly1305
4342Input = e33594d7505e43b900000000000000003394d7505e4379cd010000000000000000000000000000000000000000000000
4343Key = 0100000000000000040000000000000000000000000000000000000000000000
4344Output = 13000000000000000000000000000000