From: Pauli Date: Thu, 8 Aug 2024 03:46:11 +0000 (+1000) Subject: test: add error reasons to TLS 1.3 KDF tests X-Git-Tag: openssl-3.4.0-alpha1~169 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=41a9aeb6722b63031ef6319170751f5f92bba5b6;p=thirdparty%2Fopenssl.git test: add error reasons to TLS 1.3 KDF tests Reviewed-by: Shane Lontis Reviewed-by: Tom Cosgrove (Merged from https://github.com/openssl/openssl/pull/25135) --- diff --git a/test/recipes/30-test_evp_data/evpkdf_tls13_kdf.txt b/test/recipes/30-test_evp_data/evpkdf_tls13_kdf.txt index f31208cd385..e27e478c099 100644 --- a/test/recipes/30-test_evp_data/evpkdf_tls13_kdf.txt +++ b/test/recipes/30-test_evp_data/evpkdf_tls13_kdf.txt @@ -4950,6 +4950,7 @@ Ctrl.mode = mode:EXTRACT_ONLY Ctrl.digest = digest:SHAKE-256 Ctrl.key = hexkey:f8af6aea2d397baf2948a25b2834200692cff17eee9165e4e27babee9edefd05 Result = KDF_CTRL_ERROR +Reason = xof digests not allowed Title = FIPS indicator tests @@ -4971,6 +4972,7 @@ Ctrl.mode = mode:EXTRACT_ONLY Ctrl.digest = digest:SHA512-256 Ctrl.key = hexkey:f8af6aea2d397baf2948a25b2834200692cff17eee9165e4e27babee9edefd05 Output = c8240b43113bb8bd211ee97c5145d389e8074f76eeeaac74eb55691062a436e4 +Reason = digest not allowed # Test that the key whose length is shorter than 112 bits is rejected FIPSversion = >=3.4.0 @@ -4979,6 +4981,7 @@ Ctrl.mode = mode:EXTRACT_ONLY Ctrl.digest = digest:SHA2-256 Ctrl.key = hexkey:0102030405060708090a0b Result = KDF_CTRL_ERROR +Reason = invalid key length FIPSversion = >=3.4.0 KDF = TLS13-KDF @@ -4989,6 +4992,7 @@ Ctrl.data = hexdata:7c92f68bd5bf3638ea338a6494722e1b44127e1b7e8aad535f2322a644ff Ctrl.prefix = hexprefix:746c73313320 Ctrl.label = hexlabel:6320652074726166666963 Result = KDF_CTRL_ERROR +Reason = invalid key length # Test that the key whose length is shorter than 112 bits is reported as # unapproved