ed25519_tests.rs 6.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187
  1. // Copyright 2015-2017 Brian Smith.
  2. //
  3. // Permission to use, copy, modify, and/or distribute this software for any
  4. // purpose with or without fee is hereby granted, provided that the above
  5. // copyright notice and this permission notice appear in all copies.
  6. //
  7. // THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHORS DISCLAIM ALL WARRANTIES
  8. // WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
  9. // MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHORS BE LIABLE FOR ANY
  10. // SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
  11. // WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION
  12. // OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN
  13. // CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
  14. use ring::{
  15. error,
  16. signature::{self, Ed25519KeyPair, KeyPair},
  17. test, test_file,
  18. };
  19. /// Test vectors from BoringSSL.
  20. #[test]
  21. fn test_signature_ed25519() {
  22. test::run(test_file!("ed25519_tests.txt"), |section, test_case| {
  23. assert_eq!(section, "");
  24. let seed = test_case.consume_bytes("SEED");
  25. assert_eq!(32, seed.len());
  26. let public_key = test_case.consume_bytes("PUB");
  27. assert_eq!(32, public_key.len());
  28. let msg = test_case.consume_bytes("MESSAGE");
  29. let expected_sig = test_case.consume_bytes("SIG");
  30. {
  31. let key_pair = Ed25519KeyPair::from_seed_and_public_key(&seed, &public_key).unwrap();
  32. let actual_sig = key_pair.sign(&msg);
  33. assert_eq!(&expected_sig[..], actual_sig.as_ref());
  34. }
  35. // Test PKCS#8 generation, parsing, and private-to-public calculations.
  36. let rng = test::rand::FixedSliceRandom { bytes: &seed };
  37. let pkcs8 = Ed25519KeyPair::generate_pkcs8(&rng).unwrap();
  38. let key_pair = Ed25519KeyPair::from_pkcs8(pkcs8.as_ref()).unwrap();
  39. assert_eq!(public_key, key_pair.public_key().as_ref());
  40. // Test Signature generation.
  41. let actual_sig = key_pair.sign(&msg);
  42. assert_eq!(&expected_sig[..], actual_sig.as_ref());
  43. // Test Signature verification.
  44. test_signature_verification(&public_key, &msg, &expected_sig, Ok(()));
  45. let mut tampered_sig = expected_sig;
  46. tampered_sig[0] ^= 1;
  47. test_signature_verification(&public_key, &msg, &tampered_sig, Err(error::Unspecified));
  48. Ok(())
  49. });
  50. }
  51. /// Test vectors from BoringSSL.
  52. #[test]
  53. fn test_signature_ed25519_verify() {
  54. test::run(
  55. test_file!("ed25519_verify_tests.txt"),
  56. |section, test_case| {
  57. assert_eq!(section, "");
  58. let public_key = test_case.consume_bytes("PUB");
  59. let msg = test_case.consume_bytes("MESSAGE");
  60. let sig = test_case.consume_bytes("SIG");
  61. let expected_result = match test_case.consume_string("Result").as_str() {
  62. "P" => Ok(()),
  63. "F" => Err(error::Unspecified),
  64. s => panic!("{:?} is not a valid result", s),
  65. };
  66. test_signature_verification(&public_key, &msg, &sig, expected_result);
  67. Ok(())
  68. },
  69. );
  70. }
  71. fn test_signature_verification(
  72. public_key: &[u8],
  73. msg: &[u8],
  74. sig: &[u8],
  75. expected_result: Result<(), error::Unspecified>,
  76. ) {
  77. assert_eq!(
  78. expected_result,
  79. signature::UnparsedPublicKey::new(&signature::ED25519, public_key).verify(msg, sig)
  80. );
  81. }
  82. #[test]
  83. fn test_ed25519_from_seed_and_public_key_misuse() {
  84. const PRIVATE_KEY: &[u8] = include_bytes!("ed25519_test_private_key.bin");
  85. const PUBLIC_KEY: &[u8] = include_bytes!("ed25519_test_public_key.bin");
  86. assert!(Ed25519KeyPair::from_seed_and_public_key(PRIVATE_KEY, PUBLIC_KEY).is_ok());
  87. // Truncated private key.
  88. assert!(Ed25519KeyPair::from_seed_and_public_key(&PRIVATE_KEY[..31], PUBLIC_KEY).is_err());
  89. // Truncated public key.
  90. assert!(Ed25519KeyPair::from_seed_and_public_key(PRIVATE_KEY, &PUBLIC_KEY[..31]).is_err());
  91. // Swapped public and private key.
  92. assert!(Ed25519KeyPair::from_seed_and_public_key(PUBLIC_KEY, PRIVATE_KEY).is_err());
  93. }
  94. #[test]
  95. fn test_ed25519_from_pkcs8_unchecked() {
  96. // Just test that we can parse the input.
  97. test::run(
  98. test_file!("ed25519_from_pkcs8_unchecked_tests.txt"),
  99. |section, test_case| {
  100. assert_eq!(section, "");
  101. let input = test_case.consume_bytes("Input");
  102. let error = test_case.consume_optional_string("Error");
  103. match (Ed25519KeyPair::from_pkcs8_maybe_unchecked(&input), error) {
  104. (Ok(_), None) => (),
  105. (Err(e), None) => panic!("Failed with error \"{}\", but expected to succeed", e),
  106. (Ok(_), Some(e)) => panic!("Succeeded, but expected error \"{}\"", e),
  107. (Err(actual), Some(expected)) => assert_eq!(actual.description_(), expected),
  108. };
  109. Ok(())
  110. },
  111. );
  112. }
  113. #[test]
  114. fn test_ed25519_from_pkcs8() {
  115. // Just test that we can parse the input.
  116. test::run(
  117. test_file!("ed25519_from_pkcs8_tests.txt"),
  118. |section, test_case| {
  119. assert_eq!(section, "");
  120. let input = test_case.consume_bytes("Input");
  121. let error = test_case.consume_optional_string("Error");
  122. match (Ed25519KeyPair::from_pkcs8(&input), error) {
  123. (Ok(_), None) => (),
  124. (Err(e), None) => panic!("Failed with error \"{}\", but expected to succeed", e),
  125. (Ok(_), Some(e)) => panic!("Succeeded, but expected error \"{}\"", e),
  126. (Err(actual), Some(expected)) => assert_eq!(actual.description_(), expected),
  127. };
  128. Ok(())
  129. },
  130. );
  131. }
  132. #[test]
  133. fn ed25519_test_public_key_coverage() {
  134. const PRIVATE_KEY: &[u8] = include_bytes!("ed25519_test_private_key.p8");
  135. const PUBLIC_KEY: &[u8] = include_bytes!("ed25519_test_public_key.der");
  136. const PUBLIC_KEY_DEBUG: &str =
  137. "PublicKey(\"5809e9fef6dcec58f0f2e3b0d67e9880a11957e083ace85835c3b6c8fbaf6b7d\")";
  138. let key_pair = signature::Ed25519KeyPair::from_pkcs8(PRIVATE_KEY).unwrap();
  139. // Test `AsRef<[u8]>`
  140. assert_eq!(key_pair.public_key().as_ref(), PUBLIC_KEY);
  141. // Test `Clone`.
  142. #[allow(clippy::clone_on_copy)]
  143. let _: <Ed25519KeyPair as KeyPair>::PublicKey = key_pair.public_key().clone();
  144. // Test `Copy`.
  145. let _: <Ed25519KeyPair as KeyPair>::PublicKey = *key_pair.public_key();
  146. // Test `Debug`.
  147. assert_eq!(PUBLIC_KEY_DEBUG, format!("{:?}", key_pair.public_key()));
  148. assert_eq!(
  149. format!(
  150. "Ed25519KeyPair {{ public_key: {:?} }}",
  151. key_pair.public_key()
  152. ),
  153. format!("{:?}", key_pair)
  154. );
  155. }