/* BEGIN_HEADER */ #include "mbedtls/pk.h" #include "mbedtls/pem.h" #include "mbedtls/oid.h" #include "mbedtls/ecp.h" #include "pk_internal.h" /* END_HEADER */ /* BEGIN_DEPENDENCIES * depends_on:MBEDTLS_PK_PARSE_C:MBEDTLS_BIGNUM_C * END_DEPENDENCIES */ /* BEGIN_CASE depends_on:MBEDTLS_RSA_C:MBEDTLS_FS_IO */ void pk_parse_keyfile_rsa(char *key_file, char *password, int result) { mbedtls_pk_context ctx; int res; char *pwd = password; mbedtls_pk_init(&ctx); MD_PSA_INIT(); if (strcmp(pwd, "NULL") == 0) { pwd = NULL; } res = mbedtls_pk_parse_keyfile(&ctx, key_file, pwd, mbedtls_test_rnd_std_rand, NULL); TEST_ASSERT(res == result); if (res == 0) { mbedtls_rsa_context *rsa; TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_RSA)); rsa = mbedtls_pk_rsa(ctx); TEST_ASSERT(mbedtls_rsa_check_privkey(rsa) == 0); } exit: mbedtls_pk_free(&ctx); MD_PSA_DONE(); } /* END_CASE */ /* BEGIN_CASE depends_on:MBEDTLS_RSA_C:MBEDTLS_FS_IO */ void pk_parse_public_keyfile_rsa(char *key_file, int result) { mbedtls_pk_context ctx; int res; mbedtls_pk_init(&ctx); MD_PSA_INIT(); res = mbedtls_pk_parse_public_keyfile(&ctx, key_file); TEST_ASSERT(res == result); if (res == 0) { mbedtls_rsa_context *rsa; TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_RSA)); rsa = mbedtls_pk_rsa(ctx); TEST_ASSERT(mbedtls_rsa_check_pubkey(rsa) == 0); } exit: mbedtls_pk_free(&ctx); MD_PSA_DONE(); } /* END_CASE */ /* BEGIN_CASE depends_on:MBEDTLS_FS_IO:MBEDTLS_ECP_LIGHT */ void pk_parse_public_keyfile_ec(char *key_file, int result) { mbedtls_pk_context ctx; int res; mbedtls_pk_init(&ctx); USE_PSA_INIT(); res = mbedtls_pk_parse_public_keyfile(&ctx, key_file); TEST_ASSERT(res == result); if (res == 0) { TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_ECKEY)); #if defined(MBEDTLS_PK_USE_PSA_EC_DATA) /* No need to check whether the parsed public point is on the curve or * not because this is already done by the internal "pk_get_ecpubkey()" * function */ #else const mbedtls_ecp_keypair *eckey; eckey = mbedtls_pk_ec_ro(ctx); TEST_ASSERT(mbedtls_ecp_check_pubkey(&eckey->grp, &eckey->Q) == 0); #endif } exit: mbedtls_pk_free(&ctx); USE_PSA_DONE(); } /* END_CASE */ /* BEGIN_CASE depends_on:MBEDTLS_FS_IO:MBEDTLS_ECP_LIGHT */ void pk_parse_keyfile_ec(char *key_file, char *password, int result) { mbedtls_pk_context ctx; int res; mbedtls_pk_init(&ctx); USE_PSA_INIT(); res = mbedtls_pk_parse_keyfile(&ctx, key_file, password, mbedtls_test_rnd_std_rand, NULL); TEST_ASSERT(res == result); if (res == 0) { TEST_ASSERT(mbedtls_pk_can_do(&ctx, MBEDTLS_PK_ECKEY)); #if defined(MBEDTLS_ECP_C) const mbedtls_ecp_keypair *eckey = mbedtls_pk_ec_ro(ctx); TEST_ASSERT(mbedtls_ecp_check_privkey(&eckey->grp, &eckey->d) == 0); #else /* PSA keys are already checked on import so nothing to do here. */ #endif } exit: mbedtls_pk_free(&ctx); USE_PSA_DONE(); } /* END_CASE */ /* BEGIN_CASE */ void pk_parse_key(data_t *buf, int result) { mbedtls_pk_context pk; mbedtls_pk_init(&pk); USE_PSA_INIT(); TEST_ASSERT(mbedtls_pk_parse_key(&pk, buf->x, buf->len, NULL, 0, mbedtls_test_rnd_std_rand, NULL) == result); exit: mbedtls_pk_free(&pk); USE_PSA_DONE(); } /* END_CASE */