fips_hmac_selftest.c revision 296465
1/* ====================================================================
2 * Copyright (c) 2005 The OpenSSL Project.  All rights reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
6 * are met:
7 *
8 * 1. Redistributions of source code must retain the above copyright
9 *    notice, this list of conditions and the following disclaimer.
10 *
11 * 2. Redistributions in binary form must reproduce the above copyright
12 *    notice, this list of conditions and the following disclaimer in
13 *    the documentation and/or other materials provided with the
14 *    distribution.
15 *
16 * 3. All advertising materials mentioning features or use of this
17 *    software must display the following acknowledgment:
18 *    "This product includes software developed by the OpenSSL Project
19 *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
20 *
21 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
22 *    endorse or promote products derived from this software without
23 *    prior written permission. For written permission, please contact
24 *    openssl-core@openssl.org.
25 *
26 * 5. Products derived from this software may not be called "OpenSSL"
27 *    nor may "OpenSSL" appear in their names without prior written
28 *    permission of the OpenSSL Project.
29 *
30 * 6. Redistributions of any form whatsoever must retain the following
31 *    acknowledgment:
32 *    "This product includes software developed by the OpenSSL Project
33 *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
34 *
35 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
36 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
37 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
38 * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
39 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
40 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
41 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
42 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
43 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
44 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
45 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
46 * OF THE POSSIBILITY OF SUCH DAMAGE.
47 *
48 */
49
50#include <string.h>
51#include <openssl/err.h>
52#include <openssl/fips.h>
53#include <openssl/hmac.h>
54
55#ifdef OPENSSL_FIPS
56typedef struct {
57    const EVP_MD *(*alg) (void);
58    const char *key, *iv;
59    unsigned char kaval[EVP_MAX_MD_SIZE];
60} HMAC_KAT;
61
62static const HMAC_KAT vector[] = {
63    {EVP_sha1,
64     /*
65      * from http://csrc.nist.gov/publications/fips/fips198/fips-198a.pdf
66      */
67     "0123456789:;<=>?@ABC",
68     "Sample #2",
69     {0x09, 0x22, 0xd3, 0x40, 0x5f, 0xaa, 0x3d, 0x19,
70      0x4f, 0x82, 0xa4, 0x58, 0x30, 0x73, 0x7d, 0x5c,
71      0xc6, 0xc7, 0x5d, 0x24}
72     },
73    {EVP_sha224,
74     /* just keep extending the above... */
75     "0123456789:;<=>?@ABC",
76     "Sample #2",
77     {0xdd, 0xef, 0x0a, 0x40, 0xcb, 0x7d, 0x50, 0xfb,
78      0x6e, 0xe6, 0xce, 0xa1, 0x20, 0xba, 0x26, 0xaa,
79      0x08, 0xf3, 0x07, 0x75, 0x87, 0xb8, 0xad, 0x1b,
80      0x8c, 0x8d, 0x12, 0xc7}
81     },
82    {EVP_sha256,
83     "0123456789:;<=>?@ABC",
84     "Sample #2",
85     {0xb8, 0xf2, 0x0d, 0xb5, 0x41, 0xea, 0x43, 0x09,
86      0xca, 0x4e, 0xa9, 0x38, 0x0c, 0xd0, 0xe8, 0x34,
87      0xf7, 0x1f, 0xbe, 0x91, 0x74, 0xa2, 0x61, 0x38,
88      0x0d, 0xc1, 0x7e, 0xae, 0x6a, 0x34, 0x51, 0xd9}
89     },
90    {EVP_sha384,
91     "0123456789:;<=>?@ABC",
92     "Sample #2",
93     {0x08, 0xbc, 0xb0, 0xda, 0x49, 0x1e, 0x87, 0xad,
94      0x9a, 0x1d, 0x6a, 0xce, 0x23, 0xc5, 0x0b, 0xf6,
95      0xb7, 0x18, 0x06, 0xa5, 0x77, 0xcd, 0x49, 0x04,
96      0x89, 0xf1, 0xe6, 0x23, 0x44, 0x51, 0x51, 0x9f,
97      0x85, 0x56, 0x80, 0x79, 0x0c, 0xbd, 0x4d, 0x50,
98      0xa4, 0x5f, 0x29, 0xe3, 0x93, 0xf0, 0xe8, 0x7f}
99     },
100    {EVP_sha512,
101     "0123456789:;<=>?@ABC",
102     "Sample #2",
103     {0x80, 0x9d, 0x44, 0x05, 0x7c, 0x5b, 0x95, 0x41,
104      0x05, 0xbd, 0x04, 0x13, 0x16, 0xdb, 0x0f, 0xac,
105      0x44, 0xd5, 0xa4, 0xd5, 0xd0, 0x89, 0x2b, 0xd0,
106      0x4e, 0x86, 0x64, 0x12, 0xc0, 0x90, 0x77, 0x68,
107      0xf1, 0x87, 0xb7, 0x7c, 0x4f, 0xae, 0x2c, 0x2f,
108      0x21, 0xa5, 0xb5, 0x65, 0x9a, 0x4f, 0x4b, 0xa7,
109      0x47, 0x02, 0xa3, 0xde, 0x9b, 0x51, 0xf1, 0x45,
110      0xbd, 0x4f, 0x25, 0x27, 0x42, 0x98, 0x99, 0x05}
111     },
112};
113
114int FIPS_selftest_hmac()
115{
116    size_t n;
117    unsigned int outlen;
118    unsigned char out[EVP_MAX_MD_SIZE];
119    const EVP_MD *md;
120    const HMAC_KAT *t;
121
122    for (n = 0, t = vector; n < sizeof(vector) / sizeof(vector[0]); n++, t++) {
123        md = (*t->alg) ();
124        HMAC(md, t->key, strlen(t->key),
125             (const unsigned char *)t->iv, strlen(t->iv), out, &outlen);
126
127        if (memcmp(out, t->kaval, outlen)) {
128            FIPSerr(FIPS_F_FIPS_SELFTEST_HMAC, FIPS_R_SELFTEST_FAILED);
129            return 0;
130        }
131    }
132    return 1;
133}
134#endif
135