1#
2# Copyright 2001-2020 The OpenSSL Project Authors. All Rights Reserved.
3#
4# Licensed under the Apache License 2.0 (the "License").  You may not use
5# this file except in compliance with the License.  You can obtain a copy
6# in the file LICENSE in the source distribution or at
7# https://www.openssl.org/source/license.html
8
9# Tests start with one of these keywords
10#       Cipher Decrypt Derive Digest Encoding KDF MAC PBE
11#       PrivPubKeyPair Sign Verify VerifyRecover
12# and continue until a blank line. Lines starting with a pound sign are ignored.
13
14
15# Public key algorithm tests
16
17# Private keys used for PKEY operations.
18
19Title = X25519 test vectors (from RFC7748 6.1)
20
21PrivateKey=Alice-25519
22-----BEGIN PRIVATE KEY-----
23MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq
24-----END PRIVATE KEY-----
25
26PublicKey=Alice-25519-PUBLIC
27-----BEGIN PUBLIC KEY-----
28MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo=
29-----END PUBLIC KEY-----
30
31PrivPubKeyPair = Alice-25519:Alice-25519-PUBLIC
32
33PrivateKey=Bob-25519
34-----BEGIN PRIVATE KEY-----
35MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr
36-----END PRIVATE KEY-----
37
38PublicKey=Bob-25519-PUBLIC
39-----BEGIN PUBLIC KEY-----
40MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08=
41-----END PUBLIC KEY-----
42
43#Raw  versions of the same keys as above
44
45PrivateKeyRaw=Alice-25519-Raw:X25519:77076d0a7318a57d3c16c17251b26645df4c2f87ebc0992ab177fba51db92c2a
46
47PublicKeyRaw=Alice-25519-PUBLIC-Raw:X25519:8520f0098930a754748b7ddcb43ef75a0dbf3a0d26381af4eba4a98eaa9b4e6a
48
49PrivPubKeyPair = Alice-25519-Raw:Alice-25519-PUBLIC-Raw
50
51PrivateKeyRaw=Bob-25519-Raw:X25519:5dab087e624a8a4b79e17f8b83800ee66f3bb1292618b6fd1c2f8b27ff88e0eb
52
53PublicKeyRaw=Bob-25519-PUBLIC-Raw:X25519:de9edb7d7b7dc1b4d35b61c2ece435373f8343c85b78674dadfc7e146f882b4f
54
55PrivPubKeyPair = Bob-25519:Bob-25519-PUBLIC
56
57PrivPubKeyPair = Bob-25519-Raw:Bob-25519-PUBLIC-Raw
58
59Derive=Alice-25519
60PeerKey=Bob-25519-PUBLIC
61SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
62
63Derive=Bob-25519
64PeerKey=Alice-25519-PUBLIC
65SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
66
67Derive=Alice-25519-Raw
68PeerKey=Bob-25519-PUBLIC-Raw
69SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
70
71Derive=Bob-25519-Raw
72PeerKey=Alice-25519-PUBLIC-Raw
73SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
74
75# Illegal sign/verify operations with X25519 key
76
77Sign=Alice-25519
78Result = KEYOP_INIT_ERROR
79Reason = operation not supported for this keytype
80
81Verify=Alice-25519
82Result = KEYOP_INIT_ERROR
83Reason = operation not supported for this keytype
84
85Title = X448 test vectors (from RFC7748 6.2)
86
87PrivateKey=Alice-448
88-----BEGIN PRIVATE KEY-----
89MEYCAQAwBQYDK2VvBDoEOJqPSSXRUZ9Xdc9GsEtYANTunui66LxVZdSYwo3Zybr1
90dKlBl0SJc5EAY4Km8SerHZrC2MClmHJr
91-----END PRIVATE KEY-----
92
93PublicKey=Alice-448-PUBLIC
94-----BEGIN PUBLIC KEY-----
95MEIwBQYDK2VvAzkAmwj3zDG34+Z9ItWuoSEHSic70rg94Jxj+qc9LCLF2bvINmRy
96QdlT1AxbEtqIEg1TF3+A5TLEH6A=
97-----END PUBLIC KEY-----
98
99PrivPubKeyPair = Alice-448:Alice-448-PUBLIC
100
101PrivateKey=Bob-448
102-----BEGIN PRIVATE KEY-----
103MEYCAQAwBQYDK2VvBDoEOBwwanrCoOLgmQspRHDLoznmRTdysHWBHY+tDR1pJ8Eg
104u17olysNPiE3TJySGwnRsDZvELZRc5kt
105-----END PRIVATE KEY-----
106
107PublicKey=Bob-448-PUBLIC
108-----BEGIN PUBLIC KEY-----
109MEIwBQYDK2VvAzkAPreoKbDNIPW8/AtZm2/sz22kYnEHvbDU80W0MCfYuXL8PjT7
110QjKhPKcG3LV67D2uB73BxnvzNgk=
111-----END PUBLIC KEY-----
112
113PrivPubKeyPair = Bob-448:Bob-448-PUBLIC
114
115#Raw  versions of the same keys as above
116
117PrivateKeyRaw=Alice-448-Raw:X448:9a8f4925d1519f5775cf46b04b5800d4ee9ee8bae8bc5565d498c28dd9c9baf574a9419744897391006382a6f127ab1d9ac2d8c0a598726b
118
119PublicKeyRaw=Alice-448-PUBLIC-Raw:X448:9b08f7cc31b7e3e67d22d5aea121074a273bd2b83de09c63faa73d2c22c5d9bbc836647241d953d40c5b12da88120d53177f80e532c41fa0
120
121PrivPubKeyPair = Alice-448-Raw:Alice-448-PUBLIC-Raw
122
123PrivateKeyRaw=Bob-448-Raw:X448:1c306a7ac2a0e2e0990b294470cba339e6453772b075811d8fad0d1d6927c120bb5ee8972b0d3e21374c9c921b09d1b0366f10b65173992d
124
125PublicKeyRaw=Bob-448-PUBLIC-Raw:X448:3eb7a829b0cd20f5bcfc0b599b6feccf6da4627107bdb0d4f345b43027d8b972fc3e34fb4232a13ca706dcb57aec3dae07bdc1c67bf33609
126
127PrivPubKeyPair = Bob-448-Raw:Bob-448-PUBLIC-Raw
128
129PublicKeyRaw=Bob-448-PUBLIC-Raw-NonCanonical:X448:ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
130
131Derive=Alice-448
132PeerKey=Bob-448-PUBLIC
133SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
134
135Derive=Bob-448
136PeerKey=Alice-448-PUBLIC
137SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
138
139Derive=Alice-448-Raw
140PeerKey=Bob-448-PUBLIC-Raw
141SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
142
143Derive=Bob-448-Raw
144PeerKey=Alice-448-PUBLIC-Raw
145SharedSecret=07fff4181ac6cc95ec1c16a94a0f74d12da232ce40a77552281d282bb60c0b56fd2464c335543936521c24403085d59a449a5037514a879d
146
147# Self-generated non-canonical
148Derive=Alice-448-Raw
149PeerKey=Bob-448-PUBLIC-Raw-NonCanonical
150SharedSecret=66e2e682b1f8e68c809f1bb3e406bd826921d9c1a5bfbfcbab7ae72feecee63660eabd54934f3382061d17607f581a90bdac917a064959fb
151
152# Illegal sign/verify operations with X448 key
153
154Sign=Alice-448
155Result = KEYOP_INIT_ERROR
156Reason = operation not supported for this keytype
157
158Verify=Alice-448
159Result = KEYOP_INIT_ERROR
160Reason = operation not supported for this keytype
161
162Title = ED25519 tests from RFC8032
163
164PrivateKey=ED25519-1
165-----BEGIN PRIVATE KEY-----
166MC4CAQAwBQYDK2VwBCIEIJ1hsZ3v/VpguoRK9JLsLMREScVpezJpGXA7rAMcrn9g
167-----END PRIVATE KEY-----
168
169PrivateKey=ED25519-2
170-----BEGIN PRIVATE KEY-----
171MC4CAQAwBQYDK2VwBCIEIEzNCJso/5banbbDRuwRTg9bijGfNaumJNqM9u1PuKb7
172-----END PRIVATE KEY-----
173
174PrivateKey=ED25519-3
175-----BEGIN PRIVATE KEY-----
176MC4CAQAwBQYDK2VwBCIEIMWqjfQ/n4N77bdELzHct7Fm04U1B28JS4XOOi4LRFj3
177-----END PRIVATE KEY-----
178
179PrivateKey=ED25519-4
180-----BEGIN PRIVATE KEY-----
181MC4CAQAwBQYDK2VwBCIEIPXldnzxUzGVF2MPImh2uGyBYMxYO8ATdExr8lX1zA7l
182-----END PRIVATE KEY-----
183
184PrivateKey=ED25519-5
185-----BEGIN PRIVATE KEY-----
186MC4CAQAwBQYDK2VwBCIEIIM/5iQJI3udYux3WHUgkR6adZzsHRl1W32pAbltyj1C
187-----END PRIVATE KEY-----
188
189PublicKey=ED25519-1-PUBLIC
190-----BEGIN PUBLIC KEY-----
191MCowBQYDK2VwAyEA11qYAYKxCrfVS/7TyWQHOg7hcvPapiMlrwIaaPcHURo=
192-----END PUBLIC KEY-----
193
194PublicKey=ED25519-2-PUBLIC
195-----BEGIN PUBLIC KEY-----
196MCowBQYDK2VwAyEAPUAXw+hDiVqStwqnTRt+vJyYLM8uxJaMwM1V8Sr0Zgw=
197-----END PUBLIC KEY-----
198
199PublicKey=ED25519-3-PUBLIC
200-----BEGIN PUBLIC KEY-----
201MCowBQYDK2VwAyEA/FHNjmIYoaONpH7QAjDwWAgW7RO6MwOsXeuRFUiQgCU=
202-----END PUBLIC KEY-----
203
204PublicKey=ED25519-4-PUBLIC
205-----BEGIN PUBLIC KEY-----
206MCowBQYDK2VwAyEAJ4EX/BRMcjQPZ9DyMW6Dhs7/vyskKMnFH+98WX8dQm4=
207-----END PUBLIC KEY-----
208
209PublicKey=ED25519-5-PUBLIC
210-----BEGIN PUBLIC KEY-----
211MCowBQYDK2VwAyEA7Bcrk61eVjv0kyxw4SRQNMNUZ+8u/U1k6/gZaDRn4r8=
212-----END PUBLIC KEY-----
213
214#Raw versions of the ED25519-1 keys
215PrivateKeyRaw=ED25519-1-Raw:ED25519:9d61b19deffd5a60ba844af492ec2cc44449c5697b326919703bac031cae7f60
216
217PublicKeyRaw=ED25519-1-PUBLIC-Raw:ED25519:d75a980182b10ab7d54bfed3c964073a0ee172f3daa62325af021a68f707511a
218
219PrivPubKeyPair = ED25519-1:ED25519-1-PUBLIC
220
221PrivPubKeyPair = ED25519-1-Raw:ED25519-1-PUBLIC-Raw
222
223OneShotDigestSign = NULL
224Key = ED25519-1
225Input = ""
226Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
227
228PrivPubKeyPair = ED25519-2:ED25519-2-PUBLIC
229
230OneShotDigestSign = NULL
231Key = ED25519-2
232Input = 72
233Output = 92a009a9f0d4cab8720e820b5f642540a2b27b5416503f8fb3762223ebdb69da085ac1e43e15996e458f3613d0f11d8c387b2eaeb4302aeeb00d291612bb0c00
234
235PrivPubKeyPair = ED25519-3:ED25519-3-PUBLIC
236
237OneShotDigestSign = NULL
238Key = ED25519-3
239Input = af82
240Output = 6291d657deec24024827e69c3abe01a30ce548a284743a445e3680d7db5ac3ac18ff9b538d16f290ae67f760984dc6594a7c15e9716ed28dc027beceea1ec40a
241
242PrivPubKeyPair = ED25519-4:ED25519-4-PUBLIC
243
244OneShotDigestSign = NULL
245Key = ED25519-4
246Input = 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
247Output = 0aab4c900501b3e24d7cdf4663326a3a87df5e4843b2cbdb67cbf6e460fec350aa5371b1508f9f4528ecea23c436d94b5e8fcd4f681e30a6ac00a9704a188a03
248
249PrivPubKeyPair = ED25519-5:ED25519-5-PUBLIC
250
251OneShotDigestSign = NULL
252Key = ED25519-5
253Input = ddaf35a193617abacc417349ae20413112e6fa4e89a97ea20a9eeee64b55d39a2192992a274fc1a836ba3c23a3feebbd454d4423643ce80e2a9ac94fa54ca49f
254Output = dc2a4459e7369633a52b1bf277839a00201009a3efbf3ecb69bea2186c26b58909351fc9ac90b3ecfdfbc7c66431e0303dca179c138ac17ad9bef1177331a704
255
256# Verify test
257OneShotDigestVerify = NULL
258Key = ED25519-1-PUBLIC
259Input = ""
260Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
261
262# Corrupted input
263OneShotDigestVerify = NULL
264Key = ED25519-1-PUBLIC
265Input = "bad"
266Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
267Result = VERIFY_ERROR
268
269# Corrupted signature
270OneShotDigestVerify = NULL
271Key = ED25519-1-PUBLIC
272Input = ""
273Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100c
274Result = VERIFY_ERROR
275
276PrivPubKeyPair = ED25519-1:ED25519-2-PUBLIC
277Result = KEYPAIR_MISMATCH
278
279# Make sure update calls return an error
280DigestSign = NULL
281Key = ED25519-1
282Input = "Test"
283Result = DIGESTUPDATE_ERROR
284
285DigestVerify = NULL
286Key = ED25519-1-PUBLIC
287Input = "Test"
288Result = DIGESTUPDATE_ERROR
289
290# Attempt to set invalid digest
291DigestSign = SHA256
292Key = ED25519-1
293Result = DIGESTSIGNINIT_ERROR
294
295# Raw tests
296
297OneShotDigestSign = NULL
298Key = ED25519-1-Raw
299Input = ""
300Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
301
302OneShotDigestVerify = NULL
303Key = ED25519-1-PUBLIC-Raw
304Input = ""
305Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901555fb8821590a33bacc61e39701cf9b46bd25bf5f0595bbe24655141438e7a100b
306
307#Signature maleability test.
308#Same as the verify operation above but with the order added to s
309OneShotDigestVerify = NULL
310Key = ED25519-1-PUBLIC-Raw
311Input = ""
312Output = e5564300c360ac729086e2cc806e828a84877f1eb8e5d974d873e065224901554c8c7872aa064e049dbb3013fbf29380d25bf5f0595bbe24655141438e7a101b
313Result = VERIFY_ERROR
314
315Title = ED448 tests from RFC8032
316
317PrivateKey=ED448-1
318-----BEGIN PRIVATE KEY-----
319MEcCAQAwBQYDK2VxBDsEOWyCpWLLgI0Q1jK+ichRPr9skp803fqMn2PJlg7240ij
320UoyKP8wvBE45o/xblEkvjwMudUmiAJj5Ww==
321-----END PRIVATE KEY-----
322
323PrivateKey=ED448-2
324-----BEGIN PRIVATE KEY-----
325MEcCAQAwBQYDK2VxBDsEOcTqsF01cAfGMvPbtISJkk1VKwj+DDU6DUofAKzaLEY6
326++pnxejSh3xeO8OXplmUnvgCHpVOChInTg==
327-----END PRIVATE KEY-----
328
329PrivateKey=ED448-3
330-----BEGIN PRIVATE KEY-----
331MEcCAQAwBQYDK2VxBDsEOc0j0k9xQnTnRDQyN7kykPUR9kJfmOZEWf8gPomFCD/9
3329gUAVTq8DgXNAhhL24nEzNZ+GHlRJn6zKA==
333-----END PRIVATE KEY-----
334
335PrivateKey=ED448-4
336-----BEGIN PRIVATE KEY-----
337MEcCAQAwBQYDK2VxBDsEOSWM3UraMu2cn/VOY3Vq5YL7j6sqxyHyyOZ2pydoUT2T
338n2Pd21VgkTPymt+G7Jkp3MtSwcX9L/fiGw==
339-----END PRIVATE KEY-----
340
341PrivateKey=ED448-5
342-----BEGIN PRIVATE KEY-----
343MEcCAQAwBQYDK2VxBDsEOX706EVEI2dS+7VrjzGiOhDkKBT19VygN83MEcZMmjsp
344ScG7YHADFGEXMqbC/qmO68AmahGpOXAQDg==
345-----END PRIVATE KEY-----
346
347PrivateKey=ED448-6
348-----BEGIN PRIVATE KEY-----
349MEcCAQAwBQYDK2VxBDsEOdZd80GtE+AIVnaIuu3ajp3NwX3AJJdOpbQie2Uw4zm/
3508h+Z5oymlo88ym3+D7n0+rT6E11VQuo/AQ==
351-----END PRIVATE KEY-----
352
353PrivateKey=ED448-7
354-----BEGIN PRIVATE KEY-----
355MEcCAQAwBQYDK2VxBDsEOS7F/jwXBFq9sTal5qkT4yq3WuaLU9L8FJt35QQTLTdW
356m352a6dKGb1hYjQ6IchZCqnOvKkBTGNt9Q==
357-----END PRIVATE KEY-----
358
359PrivateKey=ED448-8
360-----BEGIN PRIVATE KEY-----
361MEcCAQAwBQYDK2VxBDsEOYctCTeA9dNzDffCEmZLN7ig8k9WgQ2qg4LNT6P3djTs
362RNxU8cLtm+qG+vt2Mti+GZ6hZfWtVd2c6A==
363-----END PRIVATE KEY-----
364
365PublicKey=ED448-1-PUBLIC
366-----BEGIN PUBLIC KEY-----
367MEMwBQYDK2VxAzoAX9dEm1m0Yf0s54fsYWrUah2hNCSFpw4fig6nXYDpZ3jt8SR2
368m0bHBhvWeD3x5Q9s0foavq/oJWGA
369-----END PUBLIC KEY-----
370
371PublicKey=ED448-2-PUBLIC
372-----BEGIN PUBLIC KEY-----
373MEMwBQYDK2VxAzoAQ7oo9DDN/0Vq5TFUX37NCsg0pV2TWMA3K/oMbGeYwIZq6gHr
374AHQoArhDjqTLghacI1FgYntMOpSA
375-----END PUBLIC KEY-----
376
377PublicKey=ED448-3-PUBLIC
378-----BEGIN PUBLIC KEY-----
379MEMwBQYDK2VxAzoA3OqeePNaG/NJmoMbELhskKrAHNhLZ6AQm1WjbpMoseNl/OFh
3801xznExpUPqTLX36fHYsAaWRHABQA
381-----END PUBLIC KEY-----
382
383PublicKey=ED448-4-PUBLIC
384-----BEGIN PUBLIC KEY-----
385MEMwBQYDK2VxAzoAO6FtoMbyzB8wGHdAdW9eeY1rxfwBXXxjzJUQ7j/UStwk2Olo
386tuRub5TRm5RTYXJr114UnvCYF/WA
387-----END PUBLIC KEY-----
388
389PublicKey=ED448-5-PUBLIC
390-----BEGIN PUBLIC KEY-----
391MEMwBQYDK2VxAzoAs9oHmwqkk6V3ICnwRnuuvuWoES2dOiJTI2HaKU97s4FcXcWe
392F2tNnzgcoJOOE8bAexdL5l36V46A
393-----END PUBLIC KEY-----
394
395PublicKey=ED448-6-PUBLIC
396-----BEGIN PUBLIC KEY-----
397MEMwBQYDK2VxAzoA35cF9Y7bq4Asf4Njz+VWCrHGEywgqfHdFjSDom+KxTo51oCL
3989KHfvSYbCZuwOz+1CQbLKL2KCB8A
399-----END PUBLIC KEY-----
400
401PublicKey=ED448-7-PUBLIC
402-----BEGIN PUBLIC KEY-----
403MEMwBQYDK2VxAzoAeXVvAU3P4gefXdnnGL5BceLvJIagjyUYb2v/Q6mTa5v+EkAr
404CK5leYo9geIunsgOdpCGLvPU7ToA
405-----END PUBLIC KEY-----
406
407PublicKey=ED448-8-PUBLIC
408-----BEGIN PUBLIC KEY-----
409MEMwBQYDK2VxAzoAqBsuinClrJT/28ybrfw/6wgB8lhXi7EUrUTs4ewOeZ2gjv+4
410HF1oXAxW9k7srvjN8RzDhzeDjPQA
411-----END PUBLIC KEY-----
412
413#Raw versions of the ED448-1 keys
414PrivateKeyRaw=ED448-1-Raw:ED448:6c82a562cb808d10d632be89c8513ebf6c929f34ddfa8c9f63c9960ef6e348a3528c8a3fcc2f044e39a3fc5b94492f8f032e7549a20098f95b
415
416PublicKeyRaw=ED448-1-PUBLIC-Raw:ED448:5fd7449b59b461fd2ce787ec616ad46a1da1342485a70e1f8a0ea75d80e96778edf124769b46c7061bd6783df1e50f6cd1fa1abeafe8256180
417
418PrivPubKeyPair = ED448-1:ED448-1-PUBLIC
419
420PrivPubKeyPair = ED448-2:ED448-2-PUBLIC
421
422PrivPubKeyPair = ED448-3:ED448-3-PUBLIC
423
424PrivPubKeyPair = ED448-4:ED448-4-PUBLIC
425
426PrivPubKeyPair = ED448-5:ED448-5-PUBLIC
427
428PrivPubKeyPair = ED448-6:ED448-6-PUBLIC
429
430PrivPubKeyPair = ED448-7:ED448-7-PUBLIC
431
432PrivPubKeyPair = ED448-8:ED448-8-PUBLIC
433
434PrivPubKeyPair = ED448-1-Raw:ED448-1-PUBLIC-Raw
435
436OneShotDigestSign = NULL
437Key = ED448-1
438Input = ""
439Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
440
441OneShotDigestSign = NULL
442Key = ED448-2
443Input = 03
444Output = 26b8f91727bd62897af15e41eb43c377efb9c610d48f2335cb0bd0087810f4352541b143c4b981b7e18f62de8ccdf633fc1bf037ab7cd779805e0dbcc0aae1cbcee1afb2e027df36bc04dcecbf154336c19f0af7e0a6472905e799f1953d2a0ff3348ab21aa4adafd1d234441cf807c03a00
445
446OneShotDigestSign = NULL
447Key = ED448-3
448Input = 0c3e544074ec63b0265e0c
449Output = 1f0a8888ce25e8d458a21130879b840a9089d999aaba039eaf3e3afa090a09d389dba82c4ff2ae8ac5cdfb7c55e94d5d961a29fe0109941e00b8dbdeea6d3b051068df7254c0cdc129cbe62db2dc957dbb47b51fd3f213fb8698f064774250a5028961c9bf8ffd973fe5d5c206492b140e00
450
451OneShotDigestSign = NULL
452Key = ED448-4
453Input = 64a65f3cdedcdd66811e2915
454Output = 7eeeab7c4e50fb799b418ee5e3197ff6bf15d43a14c34389b59dd1a7b1b85b4ae90438aca634bea45e3a2695f1270f07fdcdf7c62b8efeaf00b45c2c96ba457eb1a8bf075a3db28e5c24f6b923ed4ad747c3c9e03c7079efb87cb110d3a99861e72003cbae6d6b8b827e4e6c143064ff3c00
455
456OneShotDigestSign = NULL
457Key = ED448-5
458Input = 64a65f3cdedcdd66811e2915e7
459Output = 6a12066f55331b6c22acd5d5bfc5d71228fbda80ae8dec26bdd306743c5027cb4890810c162c027468675ecf645a83176c0d7323a2ccde2d80efe5a1268e8aca1d6fbc194d3f77c44986eb4ab4177919ad8bec33eb47bbb5fc6e28196fd1caf56b4e7e0ba5519234d047155ac727a1053100
460
461OneShotDigestSign = NULL
462Key = ED448-6
463Input = bd0f6a3747cd561bdddf4640a332461a4a30a12a434cd0bf40d766d9c6d458e5512204a30c17d1f50b5079631f64eb3112182da3005835461113718d1a5ef944
464Output = 554bc2480860b49eab8532d2a533b7d578ef473eeb58c98bb2d0e1ce488a98b18dfde9b9b90775e67f47d4a1c3482058efc9f40d2ca033a0801b63d45b3b722ef552bad3b4ccb667da350192b61c508cf7b6b5adadc2c8d9a446ef003fb05cba5f30e88e36ec2703b349ca229c2670833900
465
466OneShotDigestSign = NULL
467Key = ED448-7
468Input = 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
469Output = c650ddbb0601c19ca11439e1640dd931f43c518ea5bea70d3dcde5f4191fe53f00cf966546b72bcc7d58be2b9badef28743954e3a44a23f880e8d4f1cfce2d7a61452d26da05896f0a50da66a239a8a188b6d825b3305ad77b73fbac0836ecc60987fd08527c1a8e80d5823e65cafe2a3d00
470
471OneShotDigestSign = NULL
472Key = ED448-8
473Input = 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
474Output = e301345a41a39a4d72fff8df69c98075a0cc082b802fc9b2b6bc503f926b65bddf7f4c8f1cb49f6396afc8a70abe6d8aef0db478d4c6b2970076c6a0484fe76d76b3a97625d79f1ce240e7c576750d295528286f719b413de9ada3e8eb78ed573603ce30d8bb761785dc30dbc320869e1a00
475
476# Verify test
477OneShotDigestVerify = NULL
478Key = ED448-1-PUBLIC
479Input = ""
480Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
481
482# Corrupted input
483OneShotDigestVerify = NULL
484Key = ED448-1-PUBLIC
485Input = "bad"
486Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
487Result = VERIFY_ERROR
488
489# Corrupted signature
490OneShotDigestVerify = NULL
491Key = ED448-1-PUBLIC
492Input = ""
493Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652601
494Result = VERIFY_ERROR
495
496# Make sure update calls return an error
497DigestSign = NULL
498Key = ED448-1
499Input = "Test"
500Result = DIGESTUPDATE_ERROR
501
502DigestVerify = NULL
503Key = ED448-1-PUBLIC
504Input = "Test"
505Result = DIGESTUPDATE_ERROR
506
507# Attempt to set invalid digest
508DigestSign = SHA256
509Key = ED448-1
510Result = DIGESTSIGNINIT_ERROR
511
512# Raw keys
513OneShotDigestSign = NULL
514Key = ED448-1-Raw
515Input = ""
516Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
517
518OneShotDigestVerify = NULL
519Key = ED448-1-PUBLIC-Raw
520Input = ""
521Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980ff0d2028d4b18a9df63e006c5d1c2d345b925d8dc00b4104852db99ac5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e652600
522
523#Signature malelability test.
524#Same as the verify operation above but with the order added to s
525OneShotDigestVerify = NULL
526Key = ED448-1-PUBLIC-Raw
527Input = ""
528Output = 533a37f6bbe457251f023c0d88f976ae2dfb504a843e34d2074fd823d41a591f2b233f034f628281f2fd7a22ddd47d7828c59bd0a21bfd3980f25278d3667403c14bcec5f9cfde9955ebc8333c0ae78fc86e518317c5c7cdda8530a113a0f4dbb61149f05a7363268c71d95808ff2e656600
529Result = VERIFY_ERROR
530
531
532Title = Chosen Wycheproof vectors
533
534PrivateKeyRaw = WychePRIVATE0:X25519:288796bc5aff4b81a37501757bc0753a3c21964790d38699308debc17a6eaf8d
535
536PublicKeyRaw = WychePUBLIC0:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff7f
537
538Derive=WychePRIVATE0
539PeerKey=WychePUBLIC0
540SharedSecret=b4e0dd76da7b071728b61f856771aa356e57eda78a5b1655cc3820fb5f854c5c
541
542PrivateKeyRaw = WychePRIVATE1:X25519:60887b3dc72443026ebedbbbb70665f42b87add1440e7768fbd7e8e2ce5f639d
543
544PublicKeyRaw = WychePUBLIC1:X25519:f0ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
545
546Derive=WychePRIVATE1
547PeerKey=WychePUBLIC1
548SharedSecret=38d6304c4a7e6d9f7959334fb5245bd2c754525d4c91db950206926234c1f633
549
550PrivateKeyRaw = WychePRIVATE2:X25519:a0a4f130b98a5be4b1cedb7cb85584a3520e142d474dc9ccb909a073a976bf63
551
552PublicKeyRaw = WychePUBLIC2:X25519:0ab4e76380d84dde4f6833c58f2a9fb8f83bb0169b172be4b6e0592887741a36
553
554Derive=WychePRIVATE2
555PeerKey=WychePUBLIC2
556SharedSecret=0200000000000000000000000000000000000000000000000000000000000000
557
558PublicKeyRaw = WychePUBLIC3:X25519:89e10d5701b4337d2d032181538b1064bd4084401ceca1fd12663a1959388000
559
560Derive=WychePRIVATE2
561PeerKey=WychePUBLIC3
562SharedSecret=0900000000000000000000000000000000000000000000000000000000000000
563
564PublicKeyRaw = WychePUBLIC4:X25519:2b55d3aa4a8f80c8c0b2ae5f933e85af49beac36c2fa7394bab76c8933f8f81d
565
566Derive=WychePRIVATE2
567PeerKey=WychePUBLIC4
568SharedSecret=1000000000000000000000000000000000000000000000000000000000000000
569
570Title = Test keypair mismatches
571
572PrivPubKeyPair = Alice-25519:Bob-25519-PUBLIC
573Result = KEYPAIR_MISMATCH
574
575PrivPubKeyPair = Bob-25519:Alice-25519-PUBLIC
576Result = KEYPAIR_MISMATCH
577
578PrivPubKeyPair = Alice-448:Bob-448-PUBLIC
579Result = KEYPAIR_MISMATCH
580
581PrivPubKeyPair = Bob-448:Alice-448-PUBLIC
582Result = KEYPAIR_MISMATCH
583