2017-11-14 17:34:43 -07:00
|
|
|
|
|
|
|
#define TEST_NAME "core_ed25519"
|
|
|
|
#include "cmptest.h"
|
|
|
|
|
|
|
|
int
|
|
|
|
main(void)
|
|
|
|
{
|
|
|
|
unsigned char *h;
|
|
|
|
unsigned char *p, *p2, *p3;
|
|
|
|
unsigned char *sc;
|
|
|
|
int i, j;
|
|
|
|
|
2017-11-14 17:37:33 -07:00
|
|
|
h = (unsigned char *) sodium_malloc(crypto_core_ed25519_UNIFORMBYTES);
|
|
|
|
p = (unsigned char *) sodium_malloc(crypto_core_ed25519_BYTES);
|
2017-11-14 17:34:43 -07:00
|
|
|
for (i = 0; i < 1000; i++) {
|
|
|
|
randombytes_buf(h, crypto_core_ed25519_UNIFORMBYTES);
|
|
|
|
if (crypto_core_ed25519_from_uniform(p, h) != 0) {
|
|
|
|
printf("crypto_core_ed25519_from_uniform() failed\n");
|
|
|
|
}
|
|
|
|
if (crypto_core_ed25519_is_valid_point(p) == 0) {
|
|
|
|
printf("crypto_core_ed25519_from_uniform() returned an invalid point\n");
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2017-11-14 17:37:33 -07:00
|
|
|
p2 = (unsigned char *) sodium_malloc(crypto_core_ed25519_BYTES);
|
|
|
|
p3 = (unsigned char *) sodium_malloc(crypto_core_ed25519_BYTES);
|
2017-11-14 17:34:43 -07:00
|
|
|
randombytes_buf(h, crypto_core_ed25519_UNIFORMBYTES);
|
|
|
|
crypto_core_ed25519_from_uniform(p2, h);
|
|
|
|
|
|
|
|
j = 1 + (int) randombytes_uniform(100);
|
|
|
|
memcpy(p3, p, crypto_core_ed25519_BYTES);
|
|
|
|
for (i = 0; i < j; i++) {
|
|
|
|
crypto_core_ed25519_add(p, p, p2);
|
|
|
|
if (crypto_core_ed25519_is_valid_point(p) != 1) {
|
|
|
|
printf("crypto_core_add() returned an invalid point\n");
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if (memcmp(p, p3, crypto_core_ed25519_BYTES) == 0) {
|
|
|
|
printf("crypto_core_add() failed\n");
|
|
|
|
}
|
|
|
|
for (i = 0; i < j; i++) {
|
|
|
|
crypto_core_ed25519_sub(p, p, p2);
|
|
|
|
}
|
|
|
|
if (memcmp(p, p3, crypto_core_ed25519_BYTES) != 0) {
|
|
|
|
printf("crypto_core_add() or crypto_core_sub() failed\n");
|
|
|
|
}
|
2017-11-14 17:37:33 -07:00
|
|
|
sc = (unsigned char *) sodium_malloc(crypto_scalarmult_ed25519_SCALARBYTES);
|
2017-11-14 17:34:43 -07:00
|
|
|
memset(sc, 0, crypto_scalarmult_ed25519_SCALARBYTES);
|
|
|
|
sc[0] = 8;
|
|
|
|
memcpy(p2, p, crypto_core_ed25519_BYTES);
|
|
|
|
memcpy(p3, p, crypto_core_ed25519_BYTES);
|
|
|
|
|
|
|
|
for (i = 0; i < 254; i++) {
|
|
|
|
crypto_core_ed25519_add(p2, p2, p2);
|
|
|
|
}
|
|
|
|
for (i = 0; i < 8; i++) {
|
|
|
|
crypto_core_ed25519_add(p2, p2, p);
|
|
|
|
}
|
|
|
|
if (crypto_scalarmult_ed25519(p3, sc, p) != 0) {
|
|
|
|
printf("crypto_scalarmult_ed25519() failed\n");
|
|
|
|
}
|
|
|
|
if (memcmp(p2, p3, crypto_core_ed25519_BYTES) != 0) {
|
|
|
|
printf("crypto_scalarmult_ed25519() is inconsistent with crypto_core_ed25519_add()\n");
|
|
|
|
}
|
|
|
|
|
|
|
|
sodium_free(sc);
|
|
|
|
sodium_free(p3);
|
|
|
|
sodium_free(p2);
|
|
|
|
sodium_free(p);
|
|
|
|
sodium_free(h);
|
|
|
|
|
|
|
|
printf("OK\n");
|
|
|
|
|
|
|
|
return 0;
|
|
|
|
}
|