Add and use function test_pem to work out test filenames.
[openssl.git] / test / evptests.txt
1 #
2 # Copyright 2001-2017 The OpenSSL Project Authors. All Rights Reserved.
3 #
4 # Licensed under the OpenSSL license (the "License").  You may not use
5 # this file except in compliance with the License.  You can obtain a copy
6 # in the file LICENSE in the source distribution or at
7 # https://www.openssl.org/source/license.html
8
9 # SIPHASH tests - default values: 2,4 rounds, 16-byte mac
10 # There are no official test vectors, they are simple vectors 1, 2, 3, etc
11
12 MAC = SipHash
13 Key = 000102030405060708090A0B0C0D0E0F
14 Input =
15 Output = a3817f04ba25a8e66df67214c7550293
16
17 MAC = SipHash
18 Key = 000102030405060708090A0B0C0D0E0F
19 Input = 00
20 Output = da87c1d86b99af44347659119b22fc45
21
22 MAC = SipHash
23 Key = 000102030405060708090A0B0C0D0E0F
24 Input = 0001
25 Output = 8177228da4a45dc7fca38bdef60affe4
26
27 MAC = SipHash
28 Key = 000102030405060708090A0B0C0D0E0F
29 Input = 000102
30 Output = 9c70b60c5267a94e5f33b6b02985ed51
31
32 MAC = SipHash
33 Key = 000102030405060708090A0B0C0D0E0F
34 Input = 00010203
35 Output = f88164c12d9c8faf7d0f6e7c7bcd5579
36
37 MAC = SipHash
38 Key = 000102030405060708090A0B0C0D0E0F
39 Input = 0001020304
40 Output = 1368875980776f8854527a07690e9627
41
42 MAC = SipHash
43 Key = 000102030405060708090A0B0C0D0E0F
44 Input = 000102030405
45 Output = 14eeca338b208613485ea0308fd7a15e
46
47 MAC = SipHash
48 Key = 000102030405060708090A0B0C0D0E0F
49 Input = 00010203040506
50 Output = a1f1ebbed8dbc153c0b84aa61ff08239
51
52 MAC = SipHash
53 Key = 000102030405060708090A0B0C0D0E0F
54 Input = 0001020304050607
55 Output = 3b62a9ba6258f5610f83e264f31497b4
56
57 MAC = SipHash
58 Key = 000102030405060708090A0B0C0D0E0F
59 Input = 000102030405060708
60 Output = 264499060ad9baabc47f8b02bb6d71ed
61
62 MAC = SipHash
63 Key = 000102030405060708090A0B0C0D0E0F
64 Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E
65 Output = 5150d1772f50834a503e069a973fbd7c
66
67 # BLAKE2 tests, using same inputs as MD5
68 # There are no official BLAKE2 test vectors we can use since they all use a key
69 # Which is currently unsupported by OpenSSL.  They were generated using the
70 # reference implementation.  RFC7693 also mentions the 616263 / "abc" values.
71 Digest = BLAKE2s256
72 Input = 
73 Output = 69217a3079908094e11121d042354a7c1f55b6482ca1a51e1b250dfd1ed0eef9
74
75 Digest = BLAKE2s256
76 Input = 61
77 Output = 4a0d129873403037c2cd9b9048203687f6233fb6738956e0349bd4320fec3e90
78
79 Digest = BLAKE2s256
80 Input = 616263
81 Output = 508c5e8c327c14e2e1a72ba34eeb452f37458b209ed63a294d999b4c86675982
82
83 Digest = BLAKE2s256
84 Input = 6d65737361676520646967657374
85 Output = fa10ab775acf89b7d3c8a6e823d586f6b67bdbac4ce207fe145b7d3ac25cd28c
86
87 Digest = BLAKE2s256
88 Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
89 Output = bdf88eb1f86a0cdf0e840ba88fa118508369df186c7355b4b16cf79fa2710a12
90
91 Digest = BLAKE2s256
92 Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
93 Output = c75439ea17e1de6fa4510c335dc3d3f343e6f9e1ce2773e25b4174f1df8b119b
94
95 Digest = BLAKE2s256
96 Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
97 Output = fdaedb290a0d5af9870864fec2e090200989dc9cd53a3c092129e8535e8b4f66
98
99 Digest = BLAKE2s256
100 Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
101 Output = 1FA877DE67259D19863A2A34BCC6962A2B25FCBF5CBECD7EDE8F1FA36688A796
102
103 Digest = BLAKE2s256
104 Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
105 Output = C80ABEEBB669AD5DEEB5F5EC8EA6B7A05DDF7D31EC4C0A2EE20B0B98CAEC6746
106
107 Digest = BLAKE2b512
108 Input = 
109 Output = 786a02f742015903c6c6fd852552d272912f4740e15847618a86e217f71f5419d25e1031afee585313896444934eb04b903a685b1448b755d56f701afe9be2ce
110
111 Digest = BLAKE2b512
112 Input = 61
113 Output = 333fcb4ee1aa7c115355ec66ceac917c8bfd815bf7587d325aec1864edd24e34d5abe2c6b1b5ee3face62fed78dbef802f2a85cb91d455a8f5249d330853cb3c
114
115 Digest = BLAKE2b512
116 Input = 616263
117 Output = ba80a53f981c4d0d6a2797b69f12f6e94c212f14685ac4b74b12bb6fdbffa2d17d87c5392aab792dc252d5de4533cc9518d38aa8dbf1925ab92386edd4009923
118
119 Digest = BLAKE2b512
120 Input = 6d65737361676520646967657374
121 Output = 3c26ce487b1c0f062363afa3c675ebdbf5f4ef9bdc022cfbef91e3111cdc283840d8331fc30a8a0906cff4bcdbcd230c61aaec60fdfad457ed96b709a382359a
122
123 Digest = BLAKE2b512
124 Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
125 Output = c68ede143e416eb7b4aaae0d8e48e55dd529eafed10b1df1a61416953a2b0a5666c761e7d412e6709e31ffe221b7a7a73908cb95a4d120b8b090a87d1fbedb4c
126
127 Digest = BLAKE2b512
128 Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
129 Output = 99964802e5c25e703722905d3fb80046b6bca698ca9e2cc7e49b4fe1fa087c2edf0312dfbb275cf250a1e542fd5dc2edd313f9c491127c2e8c0c9b24168e2d50
130
131 Digest = BLAKE2b512
132 Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
133 Output = 686f41ec5afff6e87e1f076f542aa466466ff5fbde162c48481ba48a748d842799f5b30f5b67fc684771b33b994206d05cc310f31914edd7b97e41860d77d282
134
135 Digest = BLAKE2b512
136 Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
137 Output = 2319E3789C47E2DAA5FE807F61BEC2A1A6537FA03F19FF32E87EECBFD64B7E0E8CCFF439AC333B040F19B0C4DDD11A61E24AC1FE0F10A039806C5DCC0DA3D115
138
139 Digest = BLAKE2b512
140 Input = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F8081
141 Output = DF0A9D0C212843A6A934E3902B2DD30D17FBA5F969D2030B12A546D8A6A45E80CF5635F071F0452E9C919275DA99BED51EB1173C1AF0518726B75B0EC3BAE2B5
142
143 # SHA(1) tests (from shatest.c)
144 Digest = SHA1
145 Input = 616263
146 Output = a9993e364706816aba3e25717850c26c9cd0d89d
147
148
149 # MD5 tests (from md5test.c)
150 Digest = MD5
151 Input =
152 Output = d41d8cd98f00b204e9800998ecf8427e
153
154 Digest = MD5
155 Input = 61
156 Output = 0cc175b9c0f1b6a831c399e269772661
157
158 Digest = MD5
159 Input = 616263
160 Output = 900150983cd24fb0d6963f7d28e17f72
161
162 Digest = MD5
163 Input = 6d65737361676520646967657374
164 Output = f96b697d7cb7938d525a2f31aaf161d0
165
166 Digest = MD5
167 Input = 6162636465666768696a6b6c6d6e6f707172737475767778797a
168 Output = c3fcd3d76192e4007dfb496cca67e13b
169
170 Digest = MD5
171 Input = 4142434445464748494a4b4c4d4e4f505152535455565758595a6162636465666768696a6b6c6d6e6f707172737475767778797a30313233343536373839
172 Output = d174ab98d277d9f5a5611c2c9f419d9f
173
174 Digest = MD5
175 Input = 3132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930313233343536373839303132333435363738393031323334353637383930
176 Output = 57edf4a22be3c955ac49da2e2107b67a
177
178 # MD4 tests from md4test.c
179 Digest = MD4
180 Input = ""
181 Output = 31d6cfe0d16ae931b73c59d7e0c089c0
182 Digest = MD4
183 Input = "a"
184 Output = bde52cb31de33e46245e05fbdbd6fb24
185 Digest = MD4
186 Input = "abc"
187 Output = a448017aaf21d8525fc10ae87aa6729d
188 Digest = MD4
189 Input = "message digest"
190 Output = d9130a8164549fe818874806e1c7014b
191 Digest = MD4
192 Input = "abcdefghijklmnopqrstuvwxyz"
193 Output = d79e1c308aa5bbcdeea8ed63df412da9
194 Digest = MD4
195 Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
196 Output = 043f8582f241db351ce627e153e7f0e4
197 Digest = MD4
198 Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
199 Output = e33b4ddc9c38f2199c3e7b164fcc0536
200
201 # RIPEMD160 tests from rmdtest.c
202 Digest = RIPEMD160
203 Input = ""
204 Output = 9c1185a5c5e9fc54612808977ee8f548b2258d31
205 Digest = RIPEMD160
206 Input = "a"
207 Output = 0bdc9d2d256b3ee9daae347be6f4dc835a467ffe
208 Digest = RIPEMD160
209 Input = "abc"
210 Output = 8eb208f7e05d987a9b044a8e98c6b087f15a0bfc
211 Digest = RIPEMD160
212 Input = "message digest"
213 Output = 5d0689ef49d2fae572b881b123a85ffa21595f36
214 Digest = RIPEMD160
215 Input = "abcdefghijklmnopqrstuvwxyz"
216 Output = f71c27109c692c1b56bbdceb5b9d2865b3708dbc
217 Digest = RIPEMD160
218 Input = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq"
219 Output = 12a053384a9c0c88e405a06c27dcf49ada62eb2b
220 Digest = RIPEMD160
221 Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
222 Output = b0e20b6e3116640286ed3a87a5713079b21f5189
223 Digest = RIPEMD160
224 Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
225 Output = 9b752e45573d4b39f4dbd3323cab82bf63326bfb
226
227 # whirlpool tests from wp_test.c
228 Digest = whirlpool
229 Input = ""
230 Output = 19FA61D75522A4669B44E39C1D2E1726C530232130D407F89AFEE0964997F7A73E83BE698B288FEBCF88E3E03C4F0757EA8964E59B63D93708B138CC42A66EB3
231 Digest = whirlpool
232 Input = "a"
233 Output = 8ACA2602792AEC6F11A67206531FB7D7F0DFF59413145E6973C45001D0087B42D11BC645413AEFF63A42391A39145A591A92200D560195E53B478584FDAE231A
234 Digest = whirlpool
235 Input = "abc"
236 Output = 4E2448A4C6F486BB16B6562C73B4020BF3043E3A731BCE721AE1B303D97E6D4C7181EEBDB6C57E277D0E34957114CBD6C797FC9D95D8B582D225292076D4EEF5
237 Digest = whirlpool
238 Input = "message digest"
239 Output = 378C84A4126E2DC6E56DCC7458377AAC838D00032230F53CE1F5700C0FFB4D3B8421557659EF55C106B4B52AC5A4AAA692ED920052838F3362E86DBD37A8903E
240 Digest = whirlpool
241 Input = "abcdefghijklmnopqrstuvwxyz"
242 Output = F1D754662636FFE92C82EBB9212A484A8D38631EAD4238F5442EE13B8054E41B08BF2A9251C30B6A0B8AAE86177AB4A6F68F673E7207865D5D9819A3DBA4EB3B
243 Digest = whirlpool
244 Input = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789"
245 Output = DC37E008CF9EE69BF11F00ED9ABA26901DD7C28CDEC066CC6AF42E40F82F3A1E08EBA26629129D8FB7CB57211B9281A65517CC879D7B962142C65F5A7AF01467
246 Digest = whirlpool
247 Input = "12345678901234567890123456789012345678901234567890123456789012345678901234567890"
248 Output = 466EF18BABB0154D25B9D38A6414F5C08784372BCCB204D6549C4AFADB6014294D5BD8DF2A6C44E538CD047B2681A51A2C60481E88C5A20B2C2A80CF3A9A083B
249 Digest = whirlpool
250 Input = "abcdbcdecdefdefgefghfghighijhijk"
251 Output = 2A987EA40F917061F5D6F0A0E4644F488A7A5A52DEEE656207C562F988E95C6916BDC8031BC5BE1B7B947639FE050B56939BAAA0ADFF9AE6745B7B181C3BE3FD
252 Digest = whirlpool
253 Input = "aaaaaaaaaa"
254 Count = 100000
255 Output = 0C99005BEB57EFF50A7CF005560DDF5D29057FD86B20BFD62DECA0F1CCEA4AF51FC15490EDDC47AF32BB2B66C34FF9AD8C6008AD677F77126953B226E4ED8B01
256
257 # DES EDE3 CFB1
258 # echo -n "Hello World" |
259 #  apps/openssl enc -des-ede3-cfb1 \
260 #   -K 000102030405060708090A0B0C0D0E0F1011121314151617 -iv 0001020304050607 |
261 #  xxd -ps -u
262
263 Cipher = DES-EDE3-CFB1
264 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
265 IV = 0001020304050607
266 Plaintext = "Hello World"
267 Ciphertext = 3CF55D656E9C0664513358
268
269 Cipher = DES-EDE3-CFB1
270 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
271 IV = 0001020304050607
272 Operation = DECRYPT
273 Plaintext = "Hello World"
274 Ciphertext = 3CF55D656E9C0664513358
275
276 # AES 128 ECB tests (from FIPS-197 test vectors, encrypt)
277
278 Cipher = AES-128-ECB
279 Key = 000102030405060708090A0B0C0D0E0F
280 Operation = ENCRYPT
281 Plaintext = 00112233445566778899AABBCCDDEEFF
282 Ciphertext = 69C4E0D86A7B0430D8CDB78070B4C55A
283
284 # AES 192 ECB tests (from FIPS-197 test vectors, encrypt)
285
286 Cipher = AES-192-ECB
287 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
288 Operation = ENCRYPT
289 Plaintext = 00112233445566778899AABBCCDDEEFF
290 Ciphertext = DDA97CA4864CDFE06EAF70A0EC0D7191
291
292
293 # AES 256 ECB tests (from FIPS-197 test vectors, encrypt)
294
295 Cipher = AES-256-ECB
296 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
297 Operation = ENCRYPT
298 Plaintext = 00112233445566778899AABBCCDDEEFF
299 Ciphertext = 8EA2B7CA516745BFEAFC49904B496089
300
301
302 # AES 128 ECB tests (from NIST test vectors, encrypt)
303
304 #AES-128-ECB:00000000000000000000000000000000::00000000000000000000000000000000:C34C052CC0DA8D73451AFE5F03BE297F:1
305
306 # AES 128 ECB tests (from NIST test vectors, decrypt)
307
308 #AES-128-ECB:00000000000000000000000000000000::44416AC2D1F53C583303917E6BE9EBE0:00000000000000000000000000000000:0
309
310 # AES 192 ECB tests (from NIST test vectors, decrypt)
311
312 #AES-192-ECB:000000000000000000000000000000000000000000000000::48E31E9E256718F29229319C19F15BA4:00000000000000000000000000000000:0
313
314 # AES 256 ECB tests (from NIST test vectors, decrypt)
315
316 #AES-256-ECB:0000000000000000000000000000000000000000000000000000000000000000::058CCFFDBBCB382D1F6F56585D8A4ADE:00000000000000000000000000000000:0
317
318 # AES 128 CBC tests (from NIST test vectors, encrypt)
319
320 #AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:8A05FC5E095AF4848A08D328D3688E3D:1
321
322 # AES 192 CBC tests (from NIST test vectors, encrypt)
323
324 #AES-192-CBC:000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:7BD966D53AD8C1BB85D2ADFAE87BB104:1
325
326 # AES 256 CBC tests (from NIST test vectors, encrypt)
327
328 #AES-256-CBC:0000000000000000000000000000000000000000000000000000000000000000:00000000000000000000000000000000:00000000000000000000000000000000:FE3C53653E2F45B56FCD88B2CC898FF0:1
329
330 # AES 128 CBC tests (from NIST test vectors, decrypt)
331
332 #AES-128-CBC:00000000000000000000000000000000:00000000000000000000000000000000:FACA37E0B0C85373DF706E73F7C9AF86:00000000000000000000000000000000:0
333
334 # AES tests from NIST document SP800-38A
335 # For all ECB encrypts and decrypts, the transformed sequence is
336 #   AES-bits-ECB:key::plaintext:ciphertext:encdec
337 # ECB-AES128.Encrypt and ECB-AES128.Decrypt
338 Cipher = AES-128-ECB
339 Key = 2B7E151628AED2A6ABF7158809CF4F3C
340 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
341 Ciphertext = 3AD77BB40D7A3660A89ECAF32466EF97
342
343 Cipher = AES-128-ECB
344 Key = 2B7E151628AED2A6ABF7158809CF4F3C
345 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
346 Ciphertext = F5D3D58503B9699DE785895A96FDBAAF
347
348 Cipher = AES-128-ECB
349 Key = 2B7E151628AED2A6ABF7158809CF4F3C
350 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
351 Ciphertext = 43B1CD7F598ECE23881B00E3ED030688
352
353 Cipher = AES-128-ECB
354 Key = 2B7E151628AED2A6ABF7158809CF4F3C
355 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
356 Ciphertext = 7B0C785E27E8AD3F8223207104725DD4
357
358 # ECB-AES192.Encrypt and ECB-AES192.Decrypt
359 Cipher = AES-192-ECB
360 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
361 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
362 Ciphertext = BD334F1D6E45F25FF712A214571FA5CC
363
364 Cipher = AES-192-ECB
365 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
366 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
367 Ciphertext = 974104846D0AD3AD7734ECB3ECEE4EEF
368
369 Cipher = AES-192-ECB
370 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
371 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
372 Ciphertext = EF7AFD2270E2E60ADCE0BA2FACE6444E
373
374 Cipher = AES-192-ECB
375 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
376 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
377 Ciphertext = 9A4B41BA738D6C72FB16691603C18E0E
378
379 # ECB-AES256.Encrypt and ECB-AES256.Decrypt
380 Cipher = AES-256-ECB
381 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
382 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
383 Ciphertext = F3EED1BDB5D2A03C064B5A7E3DB181F8
384
385 Cipher = AES-256-ECB
386 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
387 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
388 Ciphertext = 591CCB10D410ED26DC5BA74A31362870
389
390 Cipher = AES-256-ECB
391 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
392 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
393 Ciphertext = B6ED21B99CA6F4F9F153E7B1BEAFED1D
394
395 Cipher = AES-256-ECB
396 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
397 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
398 Ciphertext = 23304B7A39F9F3FF067D8D8F9E24ECC7
399
400 # For all CBC encrypts and decrypts, the transformed sequence is
401 #   AES-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
402 # CBC-AES128.Encrypt and CBC-AES128.Decrypt
403 Cipher = AES-128-CBC
404 Key = 2B7E151628AED2A6ABF7158809CF4F3C
405 IV = 000102030405060708090A0B0C0D0E0F
406 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
407 Ciphertext = 7649ABAC8119B246CEE98E9B12E9197D
408
409 Cipher = AES-128-CBC
410 Key = 2B7E151628AED2A6ABF7158809CF4F3C
411 IV = 7649ABAC8119B246CEE98E9B12E9197D
412 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
413 Ciphertext = 5086CB9B507219EE95DB113A917678B2
414
415 Cipher = AES-128-CBC
416 Key = 2B7E151628AED2A6ABF7158809CF4F3C
417 IV = 5086CB9B507219EE95DB113A917678B2
418 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
419 Ciphertext = 73BED6B8E3C1743B7116E69E22229516
420
421 Cipher = AES-128-CBC
422 Key = 2B7E151628AED2A6ABF7158809CF4F3C
423 IV = 73BED6B8E3C1743B7116E69E22229516
424 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
425 Ciphertext = 3FF1CAA1681FAC09120ECA307586E1A7
426
427 # CBC-AES192.Encrypt and CBC-AES192.Decrypt
428 Cipher = AES-192-CBC
429 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
430 IV = 000102030405060708090A0B0C0D0E0F
431 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
432 Ciphertext = 4F021DB243BC633D7178183A9FA071E8
433
434 Cipher = AES-192-CBC
435 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
436 IV = 4F021DB243BC633D7178183A9FA071E8
437 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
438 Ciphertext = B4D9ADA9AD7DEDF4E5E738763F69145A
439
440 Cipher = AES-192-CBC
441 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
442 IV = B4D9ADA9AD7DEDF4E5E738763F69145A
443 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
444 Ciphertext = 571B242012FB7AE07FA9BAAC3DF102E0
445
446 Cipher = AES-192-CBC
447 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
448 IV = 571B242012FB7AE07FA9BAAC3DF102E0
449 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
450 Ciphertext = 08B0E27988598881D920A9E64F5615CD
451
452 # CBC-AES256.Encrypt and CBC-AES256.Decrypt
453 Cipher = AES-256-CBC
454 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
455 IV = 000102030405060708090A0B0C0D0E0F
456 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
457 Ciphertext = F58C4C04D6E5F1BA779EABFB5F7BFBD6
458
459 Cipher = AES-256-CBC
460 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
461 IV = F58C4C04D6E5F1BA779EABFB5F7BFBD6
462 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
463 Ciphertext = 9CFC4E967EDB808D679F777BC6702C7D
464
465 Cipher = AES-256-CBC
466 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
467 IV = 9CFC4E967EDB808D679F777BC6702C7D
468 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
469 Ciphertext = 39F23369A9D9BACFA530E26304231461
470
471 Cipher = AES-256-CBC
472 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
473 IV = 39F23369A9D9BACFA530E26304231461
474 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
475 Ciphertext = B2EB05E2C39BE9FCDA6C19078C6A9D1B
476
477 # We don't support CFB{1,8}-AESxxx.{En,De}crypt
478 # For all CFB128 encrypts and decrypts, the transformed sequence is
479 #   AES-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
480 # CFB128-AES128.Encrypt
481 Cipher = AES-128-CFB
482 Key = 2B7E151628AED2A6ABF7158809CF4F3C
483 IV = 000102030405060708090A0B0C0D0E0F
484 Operation = ENCRYPT
485 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
486 Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
487
488 Cipher = AES-128-CFB
489 Key = 2B7E151628AED2A6ABF7158809CF4F3C
490 IV = 3B3FD92EB72DAD20333449F8E83CFB4A
491 Operation = ENCRYPT
492 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
493 Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
494
495 Cipher = AES-128-CFB
496 Key = 2B7E151628AED2A6ABF7158809CF4F3C
497 IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
498 Operation = ENCRYPT
499 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
500 Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
501
502 Cipher = AES-128-CFB
503 Key = 2B7E151628AED2A6ABF7158809CF4F3C
504 IV = 26751F67A3CBB140B1808CF187A4F4DF
505 Operation = ENCRYPT
506 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
507 Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
508
509 # CFB128-AES128.Decrypt
510 Cipher = AES-128-CFB
511 Key = 2B7E151628AED2A6ABF7158809CF4F3C
512 IV = 000102030405060708090A0B0C0D0E0F
513 Operation = DECRYPT
514 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
515 Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
516
517 Cipher = AES-128-CFB
518 Key = 2B7E151628AED2A6ABF7158809CF4F3C
519 IV = 3B3FD92EB72DAD20333449F8E83CFB4A
520 Operation = DECRYPT
521 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
522 Ciphertext = C8A64537A0B3A93FCDE3CDAD9F1CE58B
523
524 Cipher = AES-128-CFB
525 Key = 2B7E151628AED2A6ABF7158809CF4F3C
526 IV = C8A64537A0B3A93FCDE3CDAD9F1CE58B
527 Operation = DECRYPT
528 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
529 Ciphertext = 26751F67A3CBB140B1808CF187A4F4DF
530
531 Cipher = AES-128-CFB
532 Key = 2B7E151628AED2A6ABF7158809CF4F3C
533 IV = 26751F67A3CBB140B1808CF187A4F4DF
534 Operation = DECRYPT
535 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
536 Ciphertext = C04B05357C5D1C0EEAC4C66F9FF7F2E6
537
538 # CFB128-AES192.Encrypt
539 Cipher = AES-192-CFB
540 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
541 IV = 000102030405060708090A0B0C0D0E0F
542 Operation = ENCRYPT
543 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
544 Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
545
546 Cipher = AES-192-CFB
547 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
548 IV = CDC80D6FDDF18CAB34C25909C99A4174
549 Operation = ENCRYPT
550 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
551 Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
552
553 Cipher = AES-192-CFB
554 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
555 IV = 67CE7F7F81173621961A2B70171D3D7A
556 Operation = ENCRYPT
557 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
558 Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
559
560 Cipher = AES-192-CFB
561 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
562 IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
563 Operation = ENCRYPT
564 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
565 Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
566
567 # CFB128-AES192.Decrypt
568 Cipher = AES-192-CFB
569 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
570 IV = 000102030405060708090A0B0C0D0E0F
571 Operation = DECRYPT
572 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
573 Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
574
575 Cipher = AES-192-CFB
576 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
577 IV = CDC80D6FDDF18CAB34C25909C99A4174
578 Operation = DECRYPT
579 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
580 Ciphertext = 67CE7F7F81173621961A2B70171D3D7A
581
582 Cipher = AES-192-CFB
583 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
584 IV = 67CE7F7F81173621961A2B70171D3D7A
585 Operation = DECRYPT
586 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
587 Ciphertext = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
588
589 Cipher = AES-192-CFB
590 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
591 IV = 2E1E8A1DD59B88B1C8E60FED1EFAC4C9
592 Operation = DECRYPT
593 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
594 Ciphertext = C05F9F9CA9834FA042AE8FBA584B09FF
595
596 # CFB128-AES256.Encrypt
597 Cipher = AES-256-CFB
598 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
599 IV = 000102030405060708090A0B0C0D0E0F
600 Operation = ENCRYPT
601 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
602 Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
603
604 Cipher = AES-256-CFB
605 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
606 IV = DC7E84BFDA79164B7ECD8486985D3860
607 Operation = ENCRYPT
608 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
609 Ciphertext = 39FFED143B28B1C832113C6331E5407B
610
611 Cipher = AES-256-CFB
612 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
613 IV = 39FFED143B28B1C832113C6331E5407B
614 Operation = ENCRYPT
615 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
616 Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
617
618 Cipher = AES-256-CFB
619 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
620 IV = DF10132415E54B92A13ED0A8267AE2F9
621 Operation = ENCRYPT
622 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
623 Ciphertext = 75A385741AB9CEF82031623D55B1E471
624
625 # CFB128-AES256.Decrypt
626 Cipher = AES-256-CFB
627 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
628 IV = 000102030405060708090A0B0C0D0E0F
629 Operation = DECRYPT
630 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
631 Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
632
633 Cipher = AES-256-CFB
634 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
635 IV = DC7E84BFDA79164B7ECD8486985D3860
636 Operation = DECRYPT
637 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
638 Ciphertext = 39FFED143B28B1C832113C6331E5407B
639
640 Cipher = AES-256-CFB
641 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
642 IV = 39FFED143B28B1C832113C6331E5407B
643 Operation = DECRYPT
644 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
645 Ciphertext = DF10132415E54B92A13ED0A8267AE2F9
646
647 Cipher = AES-256-CFB
648 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
649 IV = DF10132415E54B92A13ED0A8267AE2F9
650 Operation = DECRYPT
651 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
652 Ciphertext = 75A385741AB9CEF82031623D55B1E471
653
654 # For all OFB encrypts and decrypts, the transformed sequence is
655 #   AES-bits-CFB:key:IV/output':plaintext:ciphertext:encdec
656 # OFB-AES128.Encrypt
657 Cipher = AES-128-OFB
658 Key = 2B7E151628AED2A6ABF7158809CF4F3C
659 IV = 000102030405060708090A0B0C0D0E0F
660 Operation = ENCRYPT
661 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
662 Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
663
664 Cipher = AES-128-OFB
665 Key = 2B7E151628AED2A6ABF7158809CF4F3C
666 IV = 50FE67CC996D32B6DA0937E99BAFEC60
667 Operation = ENCRYPT
668 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
669 Ciphertext = 7789508D16918F03F53C52DAC54ED825
670
671 Cipher = AES-128-OFB
672 Key = 2B7E151628AED2A6ABF7158809CF4F3C
673 IV = D9A4DADA0892239F6B8B3D7680E15674
674 Operation = ENCRYPT
675 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
676 Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
677
678 Cipher = AES-128-OFB
679 Key = 2B7E151628AED2A6ABF7158809CF4F3C
680 IV = A78819583F0308E7A6BF36B1386ABF23
681 Operation = ENCRYPT
682 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
683 Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
684
685 # OFB-AES128.Decrypt
686 Cipher = AES-128-OFB
687 Key = 2B7E151628AED2A6ABF7158809CF4F3C
688 IV = 000102030405060708090A0B0C0D0E0F
689 Operation = DECRYPT
690 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
691 Ciphertext = 3B3FD92EB72DAD20333449F8E83CFB4A
692
693 Cipher = AES-128-OFB
694 Key = 2B7E151628AED2A6ABF7158809CF4F3C
695 IV = 50FE67CC996D32B6DA0937E99BAFEC60
696 Operation = DECRYPT
697 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
698 Ciphertext = 7789508D16918F03F53C52DAC54ED825
699
700 Cipher = AES-128-OFB
701 Key = 2B7E151628AED2A6ABF7158809CF4F3C
702 IV = D9A4DADA0892239F6B8B3D7680E15674
703 Operation = DECRYPT
704 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
705 Ciphertext = 9740051E9C5FECF64344F7A82260EDCC
706
707 Cipher = AES-128-OFB
708 Key = 2B7E151628AED2A6ABF7158809CF4F3C
709 IV = A78819583F0308E7A6BF36B1386ABF23
710 Operation = DECRYPT
711 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
712 Ciphertext = 304C6528F659C77866A510D9C1D6AE5E
713
714 # OFB-AES192.Encrypt
715 Cipher = AES-192-OFB
716 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
717 IV = 000102030405060708090A0B0C0D0E0F
718 Operation = ENCRYPT
719 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
720 Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
721
722 Cipher = AES-192-OFB
723 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
724 IV = A609B38DF3B1133DDDFF2718BA09565E
725 Operation = ENCRYPT
726 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
727 Ciphertext = FCC28B8D4C63837C09E81700C1100401
728
729 Cipher = AES-192-OFB
730 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
731 IV = 52EF01DA52602FE0975F78AC84BF8A50
732 Operation = ENCRYPT
733 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
734 Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
735
736 Cipher = AES-192-OFB
737 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
738 IV = BD5286AC63AABD7EB067AC54B553F71D
739 Operation = ENCRYPT
740 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
741 Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
742
743 # OFB-AES192.Decrypt
744 Cipher = AES-192-OFB
745 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
746 IV = 000102030405060708090A0B0C0D0E0F
747 Operation = ENCRYPT
748 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
749 Ciphertext = CDC80D6FDDF18CAB34C25909C99A4174
750
751 Cipher = AES-192-OFB
752 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
753 IV = A609B38DF3B1133DDDFF2718BA09565E
754 Operation = ENCRYPT
755 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
756 Ciphertext = FCC28B8D4C63837C09E81700C1100401
757
758 Cipher = AES-192-OFB
759 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
760 IV = 52EF01DA52602FE0975F78AC84BF8A50
761 Operation = ENCRYPT
762 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
763 Ciphertext = 8D9A9AEAC0F6596F559C6D4DAF59A5F2
764
765 Cipher = AES-192-OFB
766 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
767 IV = BD5286AC63AABD7EB067AC54B553F71D
768 Operation = ENCRYPT
769 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
770 Ciphertext = 6D9F200857CA6C3E9CAC524BD9ACC92A
771
772 # OFB-AES256.Encrypt
773 Cipher = AES-256-OFB
774 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
775 IV = 000102030405060708090A0B0C0D0E0F
776 Operation = ENCRYPT
777 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
778 Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
779
780 Cipher = AES-256-OFB
781 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
782 IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
783 Operation = ENCRYPT
784 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
785 Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
786
787 Cipher = AES-256-OFB
788 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
789 IV = E1C656305ED1A7A6563805746FE03EDC
790 Operation = ENCRYPT
791 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
792 Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
793
794 Cipher = AES-256-OFB
795 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
796 IV = 41635BE625B48AFC1666DD42A09D96E7
797 Operation = ENCRYPT
798 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
799 Ciphertext = 0126141D67F37BE8538F5A8BE740E484
800
801 # OFB-AES256.Decrypt
802 Cipher = AES-256-OFB
803 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
804 IV = 000102030405060708090A0B0C0D0E0F
805 Operation = DECRYPT
806 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
807 Ciphertext = DC7E84BFDA79164B7ECD8486985D3860
808
809 Cipher = AES-256-OFB
810 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
811 IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
812 Operation = DECRYPT
813 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
814 Ciphertext = 4FEBDC6740D20B3AC88F6AD82A4FB08D
815
816 Cipher = AES-256-OFB
817 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
818 IV = E1C656305ED1A7A6563805746FE03EDC
819 Operation = DECRYPT
820 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
821 Ciphertext = 71AB47A086E86EEDF39D1C5BBA97C408
822
823 Cipher = AES-256-OFB
824 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
825 IV = 41635BE625B48AFC1666DD42A09D96E7
826 Operation = DECRYPT
827 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
828 Ciphertext = 0126141D67F37BE8538F5A8BE740E484
829
830
831 # AES Counter test vectors from RFC3686
832 Cipher = aes-128-ctr
833 Key = AE6852F8121067CC4BF7A5765577F39E
834 IV = 00000030000000000000000000000001
835 Operation = ENCRYPT
836 Plaintext = 53696E676C6520626C6F636B206D7367
837 Ciphertext = E4095D4FB7A7B3792D6175A3261311B8
838
839 Cipher = aes-128-ctr
840 Key = 7E24067817FAE0D743D6CE1F32539163
841 IV = 006CB6DBC0543B59DA48D90B00000001
842 Operation = ENCRYPT
843 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
844 Ciphertext = 5104A106168A72D9790D41EE8EDAD388EB2E1EFC46DA57C8FCE630DF9141BE28
845
846 Cipher = aes-128-ctr
847 Key = 7691BE035E5020A8AC6E618529F9A0DC
848 IV = 00E0017B27777F3F4A1786F000000001
849 Operation = ENCRYPT
850 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
851 Ciphertext = C1CF48A89F2FFDD9CF4652E9EFDB72D74540A42BDE6D7836D59A5CEAAEF3105325B2072F
852
853
854 Cipher = aes-192-ctr
855 Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
856 IV = 0000004836733C147D6D93CB00000001
857 Operation = ENCRYPT
858 Plaintext = 53696E676C6520626C6F636B206D7367
859 Ciphertext = 4B55384FE259C9C84E7935A003CBE928
860
861 Cipher = aes-192-ctr
862 Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
863 IV = 0096B03B020C6EADC2CB500D00000001
864 Operation = ENCRYPT
865 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
866 Ciphertext = 453243FC609B23327EDFAAFA7131CD9F8490701C5AD4A79CFC1FE0FF42F4FB00
867
868 Cipher = aes-192-ctr
869 Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
870 IV = 0007BDFD5CBD60278DCC091200000001
871 Operation = ENCRYPT
872 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
873 Ciphertext = 96893FC55E5C722F540B7DD1DDF7E758D288BC95C69165884536C811662F2188ABEE0935
874
875
876 Cipher = aes-256-ctr
877 Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
878 IV = 00000060DB5672C97AA8F0B200000001
879 Operation = ENCRYPT
880 Plaintext = 53696E676C6520626C6F636B206D7367
881 Ciphertext = 145AD01DBF824EC7560863DC71E3E0C0
882
883 Cipher = aes-256-ctr
884 Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
885 IV = 00FAAC24C1585EF15A43D87500000001
886 Operation = ENCRYPT
887 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
888 Ciphertext = F05E231B3894612C49EE000B804EB2A9B8306B508F839D6A5530831D9344AF1C
889
890 Cipher = aes-256-ctr
891 Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
892 IV = 001CC5B751A51D70A1C1114800000001
893 Operation = ENCRYPT
894 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
895 Ciphertext = EB6C52821D0BBBF7CE7594462ACA4FAAB407DF866569FD07F48CC0B583D6071F1EC0E6B8
896
897
898 # Self-generated vector to trigger false carry on big-endian platforms
899 Cipher = aes-128-ctr
900 Key = 7E24067817FAE0D743D6CE1F32539163
901 IV = 00000000000000007FFFFFFFFFFFFFFF
902 Operation = ENCRYPT
903 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
904 Ciphertext = A2D459477E6432BD74184B1B5370D2243CDC202BC43583B2A55D288CDBBD1E03
905
906 # DES ECB tests (from destest)
907
908 Cipher = DES-ECB
909 Key = 0000000000000000
910 Plaintext = 0000000000000000
911 Ciphertext = 8CA64DE9C1B123A7
912
913 Cipher = DES-ECB
914 Key = FFFFFFFFFFFFFFFF
915 Plaintext = FFFFFFFFFFFFFFFF
916 Ciphertext = 7359B2163E4EDC58
917
918 Cipher = DES-ECB
919 Key = 3000000000000000
920 Plaintext = 1000000000000001
921 Ciphertext = 958E6E627A05557B
922
923 Cipher = DES-ECB
924 Key = 1111111111111111
925 Plaintext = 1111111111111111
926 Ciphertext = F40379AB9E0EC533
927
928 Cipher = DES-ECB
929 Key = 0123456789ABCDEF
930 Plaintext = 1111111111111111
931 Ciphertext = 17668DFC7292532D
932
933 Cipher = DES-ECB
934 Key = 1111111111111111
935 Plaintext = 0123456789ABCDEF
936 Ciphertext = 8A5AE1F81AB8F2DD
937
938 Cipher = DES-ECB
939 Key = FEDCBA9876543210
940 Plaintext = 0123456789ABCDEF
941 Ciphertext = ED39D950FA74BCC4
942
943
944 # DESX-CBC tests (from destest)
945 Cipher = DESX-CBC
946 Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
947 IV = fedcba9876543210
948 Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
949 Ciphertext = 846B2914851E9A2954732F8AA0A611C115CDC2D7951B1053A63C5E03B21AA3C4
950
951
952 # DES EDE3 CBC tests (from destest)
953 Cipher = DES-EDE3-CBC
954 Key = 0123456789abcdeff1e0d3c2b5a49786fedcba9876543210
955 IV = fedcba9876543210
956 Plaintext = 37363534333231204E6F77206973207468652074696D6520666F722000000000
957 Ciphertext = 3FE301C962AC01D02213763C1CBD4CDC799657C064ECF5D41C673812CFDE9675
958
959
960 # RC4 tests (from rc4test)
961 Cipher = RC4
962 Key = 0123456789abcdef0123456789abcdef
963 Plaintext = 0123456789abcdef
964 Ciphertext = 75b7878099e0c596
965
966 Cipher = RC4
967 Key = 0123456789abcdef0123456789abcdef
968 Plaintext = 0000000000000000
969 Ciphertext = 7494c2e7104b0879
970
971 Cipher = RC4
972 Key = 00000000000000000000000000000000
973 Plaintext = 0000000000000000
974 Ciphertext = de188941a3375d3a
975
976 Cipher = RC4
977 Key = ef012345ef012345ef012345ef012345
978 Plaintext = 0000000000000000000000000000000000000000
979 Ciphertext = d6a141a7ec3c38dfbd615a1162e1c7ba36b67858
980
981 Cipher = RC4
982 Key = 0123456789abcdef0123456789abcdef
983 Plaintext = 123456789ABCDEF0123456789ABCDEF0123456789ABCDEF012345678
984 Ciphertext = 66a0949f8af7d6891f7f832ba833c00c892ebe30143ce28740011ecf
985
986 Cipher = RC4
987 Key = ef012345ef012345ef012345ef012345
988 Plaintext = 00000000000000000000
989 Ciphertext = d6a141a7ec3c38dfbd61
990
991
992
993 # Camellia tests from RFC3713
994 # For all ECB encrypts and decrypts, the transformed sequence is
995 #   CAMELLIA-bits-ECB:key::plaintext:ciphertext:encdec
996 Cipher = CAMELLIA-128-ECB
997 Key = 0123456789abcdeffedcba9876543210
998 Plaintext = 0123456789abcdeffedcba9876543210
999 Ciphertext = 67673138549669730857065648eabe43
1000
1001 Cipher = CAMELLIA-192-ECB
1002 Key = 0123456789abcdeffedcba98765432100011223344556677
1003 Plaintext = 0123456789abcdeffedcba9876543210
1004 Ciphertext = b4993401b3e996f84ee5cee7d79b09b9
1005
1006 Cipher = CAMELLIA-256-ECB
1007 Key = 0123456789abcdeffedcba987654321000112233445566778899aabbccddeeff
1008 Plaintext = 0123456789abcdeffedcba9876543210
1009 Ciphertext = 9acc237dff16d76c20ef7c919e3a7509
1010
1011
1012 # ECB-CAMELLIA128.Encrypt
1013 Cipher = CAMELLIA-128-ECB
1014 Key = 000102030405060708090A0B0C0D0E0F
1015 Operation = ENCRYPT
1016 Plaintext = 00112233445566778899AABBCCDDEEFF
1017 Ciphertext = 77CF412067AF8270613529149919546F
1018
1019 Cipher = CAMELLIA-192-ECB
1020 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
1021 Operation = ENCRYPT
1022 Plaintext = 00112233445566778899AABBCCDDEEFF
1023 Ciphertext = B22F3C36B72D31329EEE8ADDC2906C68
1024
1025 Cipher = CAMELLIA-256-ECB
1026 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1027 Operation = ENCRYPT
1028 Plaintext = 00112233445566778899AABBCCDDEEFF
1029 Ciphertext = 2EDF1F3418D53B88841FC8985FB1ECF2
1030
1031
1032 # ECB-CAMELLIA128.Encrypt and ECB-CAMELLIA128.Decrypt
1033 Cipher = CAMELLIA-128-ECB
1034 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1035 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1036 Ciphertext = 432FC5DCD628115B7C388D770B270C96
1037
1038 Cipher = CAMELLIA-128-ECB
1039 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1040 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1041 Ciphertext = 0BE1F14023782A22E8384C5ABB7FAB2B
1042
1043 Cipher = CAMELLIA-128-ECB
1044 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1045 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1046 Ciphertext = A0A1ABCD1893AB6FE0FE5B65DF5F8636
1047
1048 Cipher = CAMELLIA-128-ECB
1049 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1050 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1051 Ciphertext = E61925E0D5DFAA9BB29F815B3076E51A
1052
1053
1054 # ECB-CAMELLIA192.Encrypt and ECB-CAMELLIA192.Decrypt
1055 Cipher = CAMELLIA-192-ECB
1056 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1057 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1058 Ciphertext = CCCC6C4E138B45848514D48D0D3439D3
1059
1060 Cipher = CAMELLIA-192-ECB
1061 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1062 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1063 Ciphertext = 5713C62C14B2EC0F8393B6AFD6F5785A
1064
1065 Cipher = CAMELLIA-192-ECB
1066 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1067 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1068 Ciphertext = B40ED2B60EB54D09D030CF511FEEF366
1069
1070 Cipher = CAMELLIA-192-ECB
1071 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1072 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1073 Ciphertext = 909DBD95799096748CB27357E73E1D26
1074
1075
1076 # ECB-CAMELLIA256.Encrypt and ECB-CAMELLIA256.Decrypt
1077 Cipher = CAMELLIA-256-ECB
1078 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1079 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1080 Ciphertext = BEFD219B112FA00098919CD101C9CCFA
1081
1082 Cipher = CAMELLIA-256-ECB
1083 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1084 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1085 Ciphertext = C91D3A8F1AEA08A9386CF4B66C0169EA
1086
1087 Cipher = CAMELLIA-256-ECB
1088 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1089 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1090 Ciphertext = A623D711DC5F25A51BB8A80D56397D28
1091
1092 Cipher = CAMELLIA-256-ECB
1093 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1094 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1095 Ciphertext = 7960109FB6DC42947FCFE59EA3C5EB6B
1096
1097
1098 # For all CBC encrypts and decrypts, the transformed sequence is
1099 #   CAMELLIA-bits-CBC:key:IV/ciphertext':plaintext:ciphertext:encdec
1100 # CBC-CAMELLIA128.Encrypt and CBC-CAMELLIA128.Decrypt
1101 Cipher = CAMELLIA-128-CBC
1102 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1103 IV = 000102030405060708090A0B0C0D0E0F
1104 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1105 Ciphertext = 1607CF494B36BBF00DAEB0B503C831AB
1106
1107 Cipher = CAMELLIA-128-CBC
1108 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1109 IV = 1607CF494B36BBF00DAEB0B503C831AB
1110 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1111 Ciphertext = A2F2CF671629EF7840C5A5DFB5074887
1112
1113 Cipher = CAMELLIA-128-CBC
1114 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1115 IV = A2F2CF671629EF7840C5A5DFB5074887
1116 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1117 Ciphertext = 0F06165008CF8B8B5A63586362543E54
1118
1119 Cipher = CAMELLIA-128-CBC
1120 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1121 IV = 36A84CDAFD5F9A85ADA0F0A993D6D577
1122 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1123 Ciphertext = 74C64268CDB8B8FAF5B34E8AF3732980
1124
1125
1126 # CBC-CAMELLIA192.Encrypt and CBC-CAMELLIA192.Decrypt
1127 Cipher = CAMELLIA-192-CBC
1128 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1129 IV = 000102030405060708090A0B0C0D0E0F
1130 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1131 Ciphertext = 2A4830AB5AC4A1A2405955FD2195CF93
1132
1133 Cipher = CAMELLIA-192-CBC
1134 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1135 IV = 2A4830AB5AC4A1A2405955FD2195CF93
1136 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1137 Ciphertext = 5D5A869BD14CE54264F892A6DD2EC3D5
1138
1139 Cipher = CAMELLIA-192-CBC
1140 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1141 IV = 5D5A869BD14CE54264F892A6DD2EC3D5
1142 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1143 Ciphertext = 37D359C3349836D884E310ADDF68C449
1144
1145 Cipher = CAMELLIA-192-CBC
1146 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1147 IV = 37D359C3349836D884E310ADDF68C449
1148 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1149 Ciphertext = 01FAAA930B4AB9916E9668E1428C6B08
1150
1151
1152 # CBC-CAMELLIA256.Encrypt and CBC-CAMELLIA256.Decrypt
1153 Cipher = CAMELLIA-256-CBC
1154 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1155 IV = 000102030405060708090A0B0C0D0E0F
1156 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1157 Ciphertext = E6CFA35FC02B134A4D2C0B6737AC3EDA
1158
1159 Cipher = CAMELLIA-256-CBC
1160 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1161 IV = E6CFA35FC02B134A4D2C0B6737AC3EDA
1162 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1163 Ciphertext = 36CBEB73BD504B4070B1B7DE2B21EB50
1164
1165 Cipher = CAMELLIA-256-CBC
1166 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1167 IV = 36CBEB73BD504B4070B1B7DE2B21EB50
1168 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1169 Ciphertext = E31A6055297D96CA3330CDF1B1860A83
1170
1171 Cipher = CAMELLIA-256-CBC
1172 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1173 IV = E31A6055297D96CA3330CDF1B1860A83
1174 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1175 Ciphertext = 5D563F6D1CCCF236051C0C5C1C58F28F
1176
1177
1178 # We don't support CFB{1,8}-CAMELLIAxxx.{En,De}crypt
1179 # For all CFB128 encrypts and decrypts, the transformed sequence is
1180 #   CAMELLIA-bits-CFB:key:IV/ciphertext':plaintext:ciphertext:encdec
1181 # CFB128-CAMELLIA128.Encrypt
1182 Cipher = CAMELLIA-128-CFB
1183 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1184 IV = 000102030405060708090A0B0C0D0E0F
1185 Operation = ENCRYPT
1186 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1187 Ciphertext = 14F7646187817EB586599146B82BD719
1188
1189 Cipher = CAMELLIA-128-CFB
1190 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1191 IV = 14F7646187817EB586599146B82BD719
1192 Operation = ENCRYPT
1193 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1194 Ciphertext = A53D28BB82DF741103EA4F921A44880B
1195
1196 Cipher = CAMELLIA-128-CFB
1197 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1198 IV = A53D28BB82DF741103EA4F921A44880B
1199 Operation = ENCRYPT
1200 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1201 Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1202
1203 Cipher = CAMELLIA-128-CFB
1204 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1205 IV = 9C2157A664626D1DEF9EA420FDE69B96
1206 Operation = ENCRYPT
1207 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1208 Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1209
1210
1211 # CFB128-CAMELLIA128.Decrypt
1212 Cipher = CAMELLIA-128-CFB
1213 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1214 IV = 000102030405060708090A0B0C0D0E0F
1215 Operation = DECRYPT
1216 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1217 Ciphertext = 14F7646187817EB586599146B82BD719
1218
1219 Cipher = CAMELLIA-128-CFB
1220 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1221 IV = 14F7646187817EB586599146B82BD719
1222 Operation = DECRYPT
1223 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1224 Ciphertext = A53D28BB82DF741103EA4F921A44880B
1225
1226 Cipher = CAMELLIA-128-CFB
1227 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1228 IV = A53D28BB82DF741103EA4F921A44880B
1229 Operation = DECRYPT
1230 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1231 Ciphertext = 9C2157A664626D1DEF9EA420FDE69B96
1232
1233 Cipher = CAMELLIA-128-CFB
1234 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1235 IV = 9C2157A664626D1DEF9EA420FDE69B96
1236 Operation = DECRYPT
1237 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1238 Ciphertext = 742A25F0542340C7BAEF24CA8482BB09
1239
1240
1241 # CFB128-CAMELLIA192.Encrypt
1242 Cipher = CAMELLIA-192-CFB
1243 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1244 IV = 000102030405060708090A0B0C0D0E0F
1245 Operation = ENCRYPT
1246 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1247 Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1248
1249 Cipher = CAMELLIA-192-CFB
1250 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1251 IV = C832BB9780677DAA82D9B6860DCD565E
1252 Operation = ENCRYPT
1253 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1254 Ciphertext = 86F8491627906D780C7A6D46EA331F98
1255
1256 Cipher = CAMELLIA-192-CFB
1257 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1258 IV = 86F8491627906D780C7A6D46EA331F98
1259 Operation = ENCRYPT
1260 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1261 Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1262
1263 Cipher = CAMELLIA-192-CFB
1264 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1265 IV = 69511CCE594CF710CB98BB63D7221F01
1266 Operation = ENCRYPT
1267 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1268 Ciphertext = D5B5378A3ABED55803F25565D8907B84
1269
1270
1271 # CFB128-CAMELLIA192.Decrypt
1272 Cipher = CAMELLIA-192-CFB
1273 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1274 IV = 000102030405060708090A0B0C0D0E0F
1275 Operation = DECRYPT
1276 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1277 Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1278
1279 Cipher = CAMELLIA-192-CFB
1280 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1281 IV = C832BB9780677DAA82D9B6860DCD565E
1282 Operation = DECRYPT
1283 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1284 Ciphertext = 86F8491627906D780C7A6D46EA331F98
1285
1286 Cipher = CAMELLIA-192-CFB
1287 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1288 IV = 86F8491627906D780C7A6D46EA331F98
1289 Operation = DECRYPT
1290 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1291 Ciphertext = 69511CCE594CF710CB98BB63D7221F01
1292
1293 Cipher = CAMELLIA-192-CFB
1294 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1295 IV = 69511CCE594CF710CB98BB63D7221F01
1296 Operation = DECRYPT
1297 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1298 Ciphertext = D5B5378A3ABED55803F25565D8907B84
1299
1300
1301 # CFB128-CAMELLIA256.Encrypt
1302 Cipher = CAMELLIA-256-CFB
1303 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1304 IV = 000102030405060708090A0B0C0D0E0F
1305 Operation = ENCRYPT
1306 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1307 Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1308
1309 Cipher = CAMELLIA-256-CFB
1310 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1311 IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1312 Operation = ENCRYPT
1313 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1314 Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1315
1316 Cipher = CAMELLIA-256-CFB
1317 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1318 IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1319 Operation = ENCRYPT
1320 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1321 Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1322
1323 Cipher = CAMELLIA-256-CFB
1324 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1325 IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1326 Operation = ENCRYPT
1327 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1328 Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1329
1330
1331 # CFB128-CAMELLIA256.Decrypt
1332 Cipher = CAMELLIA-256-CFB
1333 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1334 IV = 000102030405060708090A0B0C0D0E0F
1335 Operation = DECRYPT
1336 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1337 Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1338
1339 Cipher = CAMELLIA-256-CFB
1340 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1341 IV = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1342 Operation = DECRYPT
1343 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1344 Ciphertext = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1345
1346 Cipher = CAMELLIA-256-CFB
1347 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1348 IV = 89BEDB4CCDD864EA11BA4CBE849B5E2B
1349 Operation = DECRYPT
1350 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1351 Ciphertext = 555FC3F34BDD2D54C62D9E3BF338C1C4
1352
1353 Cipher = CAMELLIA-256-CFB
1354 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1355 IV = 555FC3F34BDD2D54C62D9E3BF338C1C4
1356 Operation = DECRYPT
1357 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1358 Ciphertext = 5953ADCE14DB8C7F39F1BD39F359BFFA
1359
1360
1361 # For all OFB encrypts and decrypts, the transformed sequence is
1362 #   CAMELLIA-bits-OFB:key:IV/output':plaintext:ciphertext:encdec
1363 # OFB-CAMELLIA128.Encrypt
1364 Cipher = CAMELLIA-128-OFB
1365 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1366 IV = 000102030405060708090A0B0C0D0E0F
1367 Operation = ENCRYPT
1368 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1369 Ciphertext = 14F7646187817EB586599146B82BD719
1370
1371 Cipher = CAMELLIA-128-OFB
1372 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1373 IV = 50FE67CC996D32B6DA0937E99BAFEC60
1374 Operation = ENCRYPT
1375 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1376 Ciphertext = 25623DB569CA51E01482649977E28D84
1377
1378 Cipher = CAMELLIA-128-OFB
1379 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1380 IV = D9A4DADA0892239F6B8B3D7680E15674
1381 Operation = ENCRYPT
1382 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1383 Ciphertext = C776634A60729DC657D12B9FCA801E98
1384
1385 Cipher = CAMELLIA-128-OFB
1386 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1387 IV = A78819583F0308E7A6BF36B1386ABF23
1388 Operation = ENCRYPT
1389 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1390 Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1391
1392
1393 # OFB-CAMELLIA128.Decrypt
1394 Cipher = CAMELLIA-128-OFB
1395 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1396 IV = 000102030405060708090A0B0C0D0E0F
1397 Operation = DECRYPT
1398 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1399 Ciphertext = 14F7646187817EB586599146B82BD719
1400
1401 Cipher = CAMELLIA-128-OFB
1402 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1403 IV = 50FE67CC996D32B6DA0937E99BAFEC60
1404 Operation = DECRYPT
1405 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1406 Ciphertext = 25623DB569CA51E01482649977E28D84
1407
1408 Cipher = CAMELLIA-128-OFB
1409 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1410 IV = D9A4DADA0892239F6B8B3D7680E15674
1411 Operation = DECRYPT
1412 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1413 Ciphertext = C776634A60729DC657D12B9FCA801E98
1414
1415 Cipher = CAMELLIA-128-OFB
1416 Key = 2B7E151628AED2A6ABF7158809CF4F3C
1417 IV = A78819583F0308E7A6BF36B1386ABF23
1418 Operation = DECRYPT
1419 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1420 Ciphertext = D776379BE0E50825E681DA1A4C980E8E
1421
1422
1423 # OFB-CAMELLIA192.Encrypt
1424 Cipher = CAMELLIA-192-OFB
1425 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1426 IV = 000102030405060708090A0B0C0D0E0F
1427 Operation = ENCRYPT
1428 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1429 Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1430
1431 Cipher = CAMELLIA-192-OFB
1432 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1433 IV = A609B38DF3B1133DDDFF2718BA09565E
1434 Operation = ENCRYPT
1435 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1436 Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1437
1438 Cipher = CAMELLIA-192-OFB
1439 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1440 IV = 52EF01DA52602FE0975F78AC84BF8A50
1441 Operation = ENCRYPT
1442 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1443 Ciphertext = BDD62DBBB9700846C53B507F544696F0
1444
1445 Cipher = CAMELLIA-192-OFB
1446 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1447 IV = BD5286AC63AABD7EB067AC54B553F71D
1448 Operation = ENCRYPT
1449 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1450 Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1451
1452
1453 # OFB-CAMELLIA192.Decrypt
1454 Cipher = CAMELLIA-192-OFB
1455 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1456 IV = 000102030405060708090A0B0C0D0E0F
1457 Operation = DECRYPT
1458 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1459 Ciphertext = C832BB9780677DAA82D9B6860DCD565E
1460
1461 Cipher = CAMELLIA-192-OFB
1462 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1463 IV = A609B38DF3B1133DDDFF2718BA09565E
1464 Operation = DECRYPT
1465 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1466 Ciphertext = 8ECEB7D0350D72C7F78562AEBDF99339
1467
1468 Cipher = CAMELLIA-192-OFB
1469 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1470 IV = 52EF01DA52602FE0975F78AC84BF8A50
1471 Operation = DECRYPT
1472 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1473 Ciphertext = BDD62DBBB9700846C53B507F544696F0
1474
1475 Cipher = CAMELLIA-192-OFB
1476 Key = 8E73B0F7DA0E6452C810F32B809079E562F8EAD2522C6B7B
1477 IV = BD5286AC63AABD7EB067AC54B553F71D
1478 Operation = DECRYPT
1479 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1480 Ciphertext = E28014E046B802F385C4C2E13EAD4A72
1481
1482
1483 # OFB-CAMELLIA256.Encrypt
1484 Cipher = CAMELLIA-256-OFB
1485 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1486 IV = 000102030405060708090A0B0C0D0E0F
1487 Operation = ENCRYPT
1488 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1489 Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1490
1491 Cipher = CAMELLIA-256-OFB
1492 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1493 IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1494 Operation = ENCRYPT
1495 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1496 Ciphertext = 127AD97E8E3994E4820027D7BA109368
1497
1498 Cipher = CAMELLIA-256-OFB
1499 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1500 IV = E1C656305ED1A7A6563805746FE03EDC
1501 Operation = ENCRYPT
1502 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1503 Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1504
1505 Cipher = CAMELLIA-256-OFB
1506 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1507 IV = 41635BE625B48AFC1666DD42A09D96E7
1508 Operation = ENCRYPT
1509 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1510 Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1511
1512
1513 # OFB-CAMELLIA256.Decrypt
1514 Cipher = CAMELLIA-256-OFB
1515 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1516 IV = 000102030405060708090A0B0C0D0E0F
1517 Operation = DECRYPT
1518 Plaintext = 6BC1BEE22E409F96E93D7E117393172A
1519 Ciphertext = CF6107BB0CEA7D7FB1BD31F5E7B06C93
1520
1521 Cipher = CAMELLIA-256-OFB
1522 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1523 IV = B7BF3A5DF43989DD97F0FA97EBCE2F4A
1524 Operation = DECRYPT
1525 Plaintext = AE2D8A571E03AC9C9EB76FAC45AF8E51
1526 Ciphertext = 127AD97E8E3994E4820027D7BA109368
1527
1528 Cipher = CAMELLIA-256-OFB
1529 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1530 IV = E1C656305ED1A7A6563805746FE03EDC
1531 Operation = DECRYPT
1532 Plaintext = 30C81C46A35CE411E5FBC1191A0A52EF
1533 Ciphertext = 6BFF6265A6A6B7A535BC65A80B17214E
1534
1535 Cipher = CAMELLIA-256-OFB
1536 Key = 603DEB1015CA71BE2B73AEF0857D77811F352C073B6108D72D9810A30914DFF4
1537 IV = 41635BE625B48AFC1666DD42A09D96E7
1538 Operation = DECRYPT
1539 Plaintext = F69F2445DF4F9B17AD2B417BE66C3710
1540 Ciphertext = 0A4A0404E26AA78A27CB271E8BF3CF20
1541
1542
1543 # Camellia test vectors from RFC5528
1544 Cipher = CAMELLIA-128-CTR
1545 Key = AE6852F8121067CC4BF7A5765577F39E
1546 IV = 00000030000000000000000000000001
1547 Operation = ENCRYPT
1548 Plaintext = 53696E676C6520626C6F636B206D7367
1549 Ciphertext = D09DC29A8214619A20877C76DB1F0B3F
1550
1551 Cipher = CAMELLIA-128-CTR
1552 Key = 7E24067817FAE0D743D6CE1F32539163
1553 IV = 006CB6DBC0543B59DA48D90B00000001
1554 Operation = ENCRYPT
1555 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1556 Ciphertext = DBF3C78DC08396D4DA7C907765BBCB442B8E8E0F31F0DCA72C7417E35360E048
1557
1558 Cipher = CAMELLIA-128-CTR
1559 Key = 7691BE035E5020A8AC6E618529F9A0DC
1560 IV = 00E0017B27777F3F4A1786F000000001
1561 Operation = ENCRYPT
1562 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1563 Ciphertext = B19D1FCDCB75EB882F849CE24D85CF739CE64B2B5C9D73F14F2D5D9DCE9889CDDF508696
1564
1565 Cipher = CAMELLIA-192-CTR
1566 Key = 16AF5B145FC9F579C175F93E3BFB0EED863D06CCFDB78515
1567 IV = 0000004836733C147D6D93CB00000001
1568 Operation = ENCRYPT
1569 Plaintext = 53696E676C6520626C6F636B206D7367
1570 Ciphertext = 2379399E8A8D2B2B16702FC78B9E9696
1571
1572 Cipher = CAMELLIA-192-CTR
1573 Key = 7C5CB2401B3DC33C19E7340819E0F69C678C3DB8E6F6A91A
1574 IV = 0096B03B020C6EADC2CB500D00000001
1575 Operation = ENCRYPT
1576 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1577 Ciphertext = 7DEF34F7A5D0E415674B7FFCAE67C75DD018B86FF23051E056392A99F35A4CED
1578
1579 Cipher = CAMELLIA-192-CTR
1580 Key = 02BF391EE8ECB159B959617B0965279BF59B60A786D3E0FE
1581 IV = 0007BDFD5CBD60278DCC091200000001
1582 Operation = ENCRYPT
1583 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1584 Ciphertext = 5710E556E1487A20B5AC0E73F19E4E7876F37FDC91B1EF4D4DADE8E666A64D0ED557AB57
1585
1586 Cipher = CAMELLIA-256-CTR
1587 Key = 776BEFF2851DB06F4C8A0542C8696F6C6A81AF1EEC96B4D37FC1D689E6C1C104
1588 IV = 00000060DB5672C97AA8F0B200000001
1589 Operation = ENCRYPT
1590 Plaintext = 53696E676C6520626C6F636B206D7367
1591 Ciphertext = 3401F9C8247EFFCEBD6994714C1BBB11
1592
1593 Cipher = CAMELLIA-256-CTR
1594 Key = F6D66D6BD52D59BB0796365879EFF886C66DD51A5B6A99744B50590C87A23884
1595 IV = 00FAAC24C1585EF15A43D87500000001
1596 Operation = ENCRYPT
1597 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
1598 Ciphertext = D6C30392246F7808A83C2B22A8839E45E51CD48A1CDF406EBC9CC2D3AB834108
1599
1600 Cipher = CAMELLIA-256-CTR
1601 Key = FF7A617CE69148E4F1726E2F43581DE2AA62D9F805532EDFF1EED687FB54153D
1602 IV = 001CC5B751A51D70A1C1114800000001
1603 Operation = ENCRYPT
1604 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F20212223
1605 Ciphertext = A4DA23FCE6A5FFAA6D64AE9A0652A42CD161A34B65F9679F75C01F101F71276F15EF0D8D
1606
1607 # SEED test vectors from RFC4269
1608 Cipher = SEED-ECB
1609 Key = 00000000000000000000000000000000
1610 Operation = DECRYPT
1611 Plaintext = 000102030405060708090A0B0C0D0E0F
1612 Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1613
1614 Cipher = SEED-ECB
1615 Key = 000102030405060708090A0B0C0D0E0F
1616 Operation = DECRYPT
1617 Plaintext = 00000000000000000000000000000000
1618 Ciphertext = C11F22F20140505084483597E4370F43
1619
1620 Cipher = SEED-ECB
1621 Key = 4706480851E61BE85D74BFB3FD956185
1622 Operation = DECRYPT
1623 Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1624 Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1625
1626 Cipher = SEED-ECB
1627 Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1628 Operation = DECRYPT
1629 Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1630 Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1631
1632 Cipher = SEED-ECB
1633 Key = 00000000000000000000000000000000
1634 Operation = ENCRYPT
1635 Plaintext = 000102030405060708090A0B0C0D0E0F
1636 Ciphertext = 5EBAC6E0054E166819AFF1CC6D346CDB
1637
1638 Cipher = SEED-ECB
1639 Key = 000102030405060708090A0B0C0D0E0F
1640 Operation = ENCRYPT
1641 Plaintext = 00000000000000000000000000000000
1642 Ciphertext = C11F22F20140505084483597E4370F43
1643
1644 Cipher = SEED-ECB
1645 Key = 4706480851E61BE85D74BFB3FD956185
1646 Operation = ENCRYPT
1647 Plaintext = 83A2F8A288641FB9A4E9A5CC2F131C7D
1648 Ciphertext = EE54D13EBCAE706D226BC3142CD40D4A
1649
1650 Cipher = SEED-ECB
1651 Key = 28DBC3BC49FFD87DCFA509B11D422BE7
1652 Operation = ENCRYPT
1653 Plaintext = B41E6BE2EBA84A148E2EED84593C5EC7
1654 Ciphertext = 9B9B7BFCD1813CB95D0B3618F40F5122
1655
1656
1657 # AES CCM 256 bit key
1658 Cipher = aes-256-ccm
1659 Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1660 IV = 5b8e40746f6b98e00f1d13ff41
1661 AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1662 Tag = 2024931d73bca480c24a24ece6b6c2bf
1663 Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1664 Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1665
1666 Cipher = aes-256-ccm
1667 Key = 1bde3251d41a8b5ea013c195ae128b218b3e0306376357077ef1c1c78548b92e
1668 IV = 5b8e40746f6b98e00f1d13ff41
1669 AAD = c17a32514eb6103f3249e076d4c871dc97e04b286699e54491dc18f6d734d4c0
1670 Tag = 2024931d73bca480c24a24ece6b6c2be
1671 Plaintext = 53bd72a97089e312422bf72e242377b3c6ee3e2075389b999c4ef7f28bd2b80a
1672 Ciphertext = 9a5fcccdb4cf04e7293d2775cc76a488f042382d949b43b7d6bb2b9864786726
1673 Operation = DECRYPT
1674 Result = CIPHERUPDATE_ERROR
1675
1676 # AES GCM test vectors from http://csrc.nist.gov/groups/ST/toolkit/BCM/documents/proposedmodes/gcm/gcm-spec.pdf
1677 Cipher = aes-128-gcm
1678 Key = 00000000000000000000000000000000
1679 IV = 000000000000000000000000
1680 AAD =
1681 Tag = 58e2fccefa7e3061367f1d57a4e7455a
1682 Plaintext =
1683 Ciphertext =
1684
1685 Cipher = aes-128-gcm
1686 Key = 00000000000000000000000000000000
1687 IV = 000000000000000000000000
1688 AAD =
1689 Tag = ab6e47d42cec13bdf53a67b21257bddf
1690 Plaintext = 00000000000000000000000000000000
1691 Ciphertext = 0388dace60b6a392f328c2b971b2fe78
1692
1693 Cipher = aes-128-gcm
1694 Key = feffe9928665731c6d6a8f9467308308
1695 IV = cafebabefacedbaddecaf888
1696 AAD =
1697 Tag = 4d5c2af327cd64a62cf35abd2ba6fab4
1698 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1699 Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091473f5985
1700
1701 Cipher = aes-128-gcm
1702 Key = feffe9928665731c6d6a8f9467308308
1703 IV = cafebabefacedbaddecaf888
1704 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1705 Tag = 5bc94fbc3221a5db94fae95ae7121a47
1706 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1707 Ciphertext = 42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091
1708
1709 Cipher = aes-128-gcm
1710 Key = feffe9928665731c6d6a8f9467308308
1711 IV = cafebabefacedbad
1712 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1713 Tag = 3612d2e79e3b0785561be14aaca2fccb
1714 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1715 Ciphertext = 61353b4c2806934a777ff51fa22a4755699b2a714fcdc6f83766e5f97b6c742373806900e49f24b22b097544d4896b424989b5e1ebac0f07c23f4598
1716
1717 Cipher = aes-128-gcm
1718 Key = feffe9928665731c6d6a8f9467308308
1719 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1720 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1721 Tag = 619cc5aefffe0bfa462af43c1699d050
1722 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1723 Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1724
1725 Cipher = aes-128-gcm
1726 Key = feffe9928665731c6d6a8f9467308308
1727 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1728 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1729 Tag = 619cc5aefffe0bfa462af43c1699d051
1730 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1731 Ciphertext = 8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5
1732 Operation = DECRYPT
1733 Result = CIPHERFINAL_ERROR
1734
1735 Cipher = aes-192-gcm
1736 Key = 000000000000000000000000000000000000000000000000
1737 IV = 000000000000000000000000
1738 AAD =
1739 Tag = cd33b28ac773f74ba00ed1f312572435
1740 Plaintext =
1741 Ciphertext =
1742
1743 Cipher = aes-192-gcm
1744 Key = 000000000000000000000000000000000000000000000000
1745 IV = 000000000000000000000000
1746 AAD =
1747 Tag = 2ff58d80033927ab8ef4d4587514f0fb
1748 Plaintext = 00000000000000000000000000000000
1749 Ciphertext = 98e7247c07f0fe411c267e4384b0f600
1750
1751 Cipher = aes-192-gcm
1752 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1753 IV = cafebabefacedbaddecaf888
1754 AAD =
1755 Tag = 9924a7c8587336bfb118024db8674a14
1756 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1757 Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710acade256
1758
1759 Cipher = aes-192-gcm
1760 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1761 IV = cafebabefacedbaddecaf888
1762 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1763 Tag = 2519498e80f1478f37ba55bd6d27618c
1764 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1765 Ciphertext = 3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710
1766
1767 Cipher = aes-192-gcm
1768 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1769 IV = cafebabefacedbad
1770 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1771 Tag = 65dcc57fcf623a24094fcca40d3533f8
1772 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1773 Ciphertext = 0f10f599ae14a154ed24b36e25324db8c566632ef2bbb34f8347280fc4507057fddc29df9a471f75c66541d4d4dad1c9e93a19a58e8b473fa0f062f7
1774
1775 Cipher = aes-192-gcm
1776 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1777 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1778 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1779 Tag = dcf566ff291c25bbb8568fc3d376a6d9
1780 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1781 Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1782
1783 Cipher = aes-192-gcm
1784 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c
1785 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1786 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1787 Tag = dcf566ff291c25bbb8568fc3d376a6d8
1788 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1789 Ciphertext = d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b
1790 Operation = DECRYPT
1791 Result = CIPHERFINAL_ERROR
1792
1793 Cipher = aes-256-gcm
1794 Key = 0000000000000000000000000000000000000000000000000000000000000000
1795 IV = 000000000000000000000000
1796 AAD =
1797 Tag = 530f8afbc74536b9a963b4f1c4cb738b
1798 Plaintext =
1799 Ciphertext =
1800
1801 Cipher = aes-256-gcm
1802 Key = 0000000000000000000000000000000000000000000000000000000000000000
1803 IV = 000000000000000000000000
1804 AAD =
1805 Tag = d0d1c8a799996bf0265b98b5d48ab919
1806 Plaintext = 00000000000000000000000000000000
1807 Ciphertext = cea7403d4d606b6e074ec5d3baf39d18
1808
1809 Cipher = aes-256-gcm
1810 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1811 IV = cafebabefacedbaddecaf888
1812 AAD =
1813 Tag = b094dac5d93471bdec1a502270e3cc6c
1814 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255
1815 Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1816
1817 Cipher = aes-256-gcm
1818 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1819 IV = cafebabefacedbaddecaf888
1820 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1821 Tag = 76fc6ece0f4e1768cddf8853bb2d551b
1822 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1823 Ciphertext = 522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662
1824
1825 Cipher = aes-256-gcm
1826 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1827 IV = cafebabefacedbad
1828 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1829 Tag = 3a337dbf46a792c45e454913fe2ea8f2
1830 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1831 Ciphertext = c3762df1ca787d32ae47c13bf19844cbaf1ae14d0b976afac52ff7d79bba9de0feb582d33934a4f0954cc2363bc73f7862ac430e64abe499f47c9b1f
1832
1833 Cipher = aes-256-gcm
1834 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1835 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1836 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1837 Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19a
1838 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1839 Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1840
1841 Cipher = aes-256-gcm
1842 Key = feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308
1843 IV = 9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b
1844 AAD = feedfacedeadbeeffeedfacedeadbeefabaddad2
1845 Tag = a44a8266ee1c8eb0c8b5d4cf5ae9f19b
1846 Plaintext = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39
1847 Ciphertext = 5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f
1848 Operation = DECRYPT
1849 Result = CIPHERFINAL_ERROR
1850
1851 # local add-ons, primarily streaming ghash tests
1852 # 128 bytes aad
1853 Cipher = aes-128-gcm
1854 Key = 00000000000000000000000000000000
1855 IV = 000000000000000000000000
1856 AAD = d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad
1857 Tag = 5fea793a2d6f974d37e68e0cb8ff9492
1858 Plaintext =
1859 Ciphertext =
1860
1861 # 48 bytes plaintext
1862 Cipher = aes-128-gcm
1863 Key = 00000000000000000000000000000000
1864 IV = 000000000000000000000000
1865 AAD =
1866 Tag = 9dd0a376b08e40eb00c35f29f9ea61a4
1867 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1868 Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0
1869
1870 # 80 bytes plaintext
1871 Cipher = aes-128-gcm
1872 Key = 00000000000000000000000000000000
1873 IV = 000000000000000000000000
1874 AAD =
1875 Tag = 98885a3a22bd4742fe7b72172193b163
1876 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1877 Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d5270291
1878
1879 # 128 bytes plaintext
1880 Cipher = aes-128-gcm
1881 Key = 00000000000000000000000000000000
1882 IV = 000000000000000000000000
1883 AAD =
1884 Tag = cac45f60e31efd3b5a43b98a22ce1aa1
1885 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1886 Ciphertext = 0388dace60b6a392f328c2b971b2fe78f795aaab494b5923f7fd89ff948bc1e0200211214e7394da2089b6acd093abe0c94da219118e297d7b7ebcbcc9c388f28ade7d85a8ee35616f7124a9d527029195b84d1b96c690ff2f2de30bf2ec89e00253786e126504f0dab90c48a30321de3345e6b0461e7c9e6c6b7afedde83f40
1887
1888 # 192 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
1889 Cipher = aes-128-gcm
1890 Key = 00000000000000000000000000000000
1891 IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1892 AAD =
1893 Tag = 566f8ef683078bfdeeffa869d751a017
1894 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1895 Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606
1896
1897 # 240 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
1898 Cipher = aes-128-gcm
1899 Key = 00000000000000000000000000000000
1900 IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1901 AAD =
1902 Tag = fd0c7011ff07f0071324bdfb2d0f3a29
1903 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1904 Ciphertext = 56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606872ca10dee15b3249b1a1b958f23134c4bccb7d03200bce420a2f8eb66dcf3644d1423c1b5699003c13ecef4bf38a3b6
1905
1906 # 288 bytes plaintext, iv is chosen so that initial counter LSB is 0xFF
1907 Cipher = aes-128-gcm
1908 Key = 00000000000000000000000000000000
1909 IV = ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1910 AAD =
1911 Tag = 8b307f6b33286d0ab026a9ed3fe1e85f
1912 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
1913 Ciphertext = 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
1914
1915 # 80 bytes plaintext, submitted by Intel
1916 Cipher = aes-128-gcm
1917 Key = 843ffcf5d2b72694d19ed01d01249412
1918 IV = dbcca32ebf9b804617c3aa9e
1919 AAD = 00000000000000000000000000000000101112131415161718191a1b1c1d1e1f
1920 Tag = 3b629ccfbc1119b7319e1dce2cd6fd6d
1921 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
1922 Ciphertext = 6268c6fa2a80b2d137467f092f657ac04d89be2beaa623d61b5a868c8f03ff95d3dcee23ad2f1ab3a6c80eaf4b140eb05de3457f0fbc111a6b43d0763aa422a3013cf1dc37fe417d1fbfc449b75d4cc5
1923
1924 #AES OCB Test vectors
1925 Cipher = aes-128-ocb
1926 Key = 000102030405060708090A0B0C0D0E0F
1927 IV = 000102030405060708090A0B
1928 AAD =
1929 Tag = 197B9C3C441D3C83EAFB2BEF633B9182
1930 Plaintext =
1931 Ciphertext =
1932
1933 Cipher = aes-128-ocb
1934 Key = 000102030405060708090A0B0C0D0E0F
1935 IV = 000102030405060708090A0B
1936 AAD = 0001020304050607
1937 Tag = 16DC76A46D47E1EAD537209E8A96D14E
1938 Plaintext = 0001020304050607
1939 Ciphertext = 92B657130A74B85A
1940
1941 Cipher = aes-128-ocb
1942 Key = 000102030405060708090A0B0C0D0E0F
1943 IV = 000102030405060708090A0B
1944 AAD = 0001020304050607
1945 Tag = 98B91552C8C009185044E30A6EB2FE21
1946 Plaintext =
1947 Ciphertext =
1948
1949 Cipher = aes-128-ocb
1950 Key = 000102030405060708090A0B0C0D0E0F
1951 IV = 000102030405060708090A0B
1952 AAD =
1953 Tag = 971EFFCAE19AD4716F88E87B871FBEED
1954 Plaintext = 0001020304050607
1955 Ciphertext = 92B657130A74B85A
1956
1957 Cipher = aes-128-ocb
1958 Key = 000102030405060708090A0B0C0D0E0F
1959 IV = 000102030405060708090A0B
1960 AAD = 000102030405060708090A0B0C0D0E0F
1961 Tag = 776C9924D6723A1FC4524532AC3E5BEB
1962 Plaintext = 000102030405060708090A0B0C0D0E0F
1963 Ciphertext = BEA5E8798DBE7110031C144DA0B26122
1964
1965 Cipher = aes-128-ocb
1966 Key = 000102030405060708090A0B0C0D0E0F
1967 IV = 000102030405060708090A0B
1968 AAD = 000102030405060708090A0B0C0D0E0F
1969 Tag = 7DDB8E6CEA6814866212509619B19CC6
1970 Plaintext =
1971 Ciphertext =
1972
1973 Cipher = aes-128-ocb
1974 Key = 000102030405060708090A0B0C0D0E0F
1975 IV = 000102030405060708090A0B
1976 AAD =
1977 Tag = 13CC8B747807121A4CBB3E4BD6B456AF
1978 Plaintext = 000102030405060708090A0B0C0D0E0F
1979 Ciphertext = BEA5E8798DBE7110031C144DA0B26122
1980
1981 Cipher = aes-128-ocb
1982 Key = 000102030405060708090A0B0C0D0E0F
1983 IV = 000102030405060708090A0B
1984 AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
1985 Tag = 5FA94FC3F38820F1DC3F3D1FD4E55E1C
1986 Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
1987 Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
1988
1989 Cipher = aes-128-ocb
1990 Key = 000102030405060708090A0B0C0D0E0F
1991 IV = 000102030405060708090A0B
1992 AAD = 000102030405060708090A0B0C0D0E0F1011121314151617
1993 Tag = 282026DA3068BC9FA118681D559F10F6
1994 Plaintext =
1995 Ciphertext =
1996
1997 Cipher = aes-128-ocb
1998 Key = 000102030405060708090A0B0C0D0E0F
1999 IV = 000102030405060708090A0B
2000 AAD =
2001 Tag = 6EF2F52587FDA0ED97DC7EEDE241DF68
2002 Plaintext = 000102030405060708090A0B0C0D0E0F1011121314151617
2003 Ciphertext = BEA5E8798DBE7110031C144DA0B26122FCFCEE7A2A8D4D48
2004
2005 Cipher = aes-128-ocb
2006 Key = 000102030405060708090A0B0C0D0E0F
2007 IV = 000102030405060708090A0B
2008 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2009 Tag = B2A040DD3BD5164372D76D7BB6824240
2010 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2011 Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
2012
2013 Cipher = aes-128-ocb
2014 Key = 000102030405060708090A0B0C0D0E0F
2015 IV = 000102030405060708090A0B
2016 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2017 Tag = E1E072633BADE51A60E85951D9C42A1B
2018 Plaintext =
2019 Ciphertext =
2020
2021 Cipher = aes-128-ocb
2022 Key = 000102030405060708090A0B0C0D0E0F
2023 IV = 000102030405060708090A0B
2024 AAD =
2025 Tag = 4A3BAE824465CFDAF8C41FC50C7DF9D9
2026 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2027 Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB
2028
2029 Cipher = aes-128-ocb
2030 Key = 000102030405060708090A0B0C0D0E0F
2031 IV = 000102030405060708090A0B
2032 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2033 Tag = 659C623211DEEA0DE30D2C381879F4C8
2034 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2035 Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
2036
2037 Cipher = aes-128-ocb
2038 Key = 000102030405060708090A0B0C0D0E0F
2039 IV = 000102030405060708090A0B
2040 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2041 Tag = 7AEB7A69A1687DD082CA27B0D9A37096
2042 Plaintext =
2043 Ciphertext =
2044
2045 Cipher = aes-128-ocb
2046 Key = 000102030405060708090A0B0C0D0E0F
2047 IV = 000102030405060708090A0B
2048 AAD =
2049 Tag = 060C8467F4ABAB5E8B3C2067A2E115DC
2050 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2051 Ciphertext = BEA5E8798DBE7110031C144DA0B26122CEAAB9B05DF771A657149D53773463CB68C65778B058A635
2052
2053 #AES OCB Non standard test vectors - generated from reference implementation
2054 Cipher = aes-128-ocb
2055 Key = 000102030405060708090A0B0C0D0E0F
2056 IV = 000102030405060708090A0B
2057 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2058 Tag = 1b6c44f34e3abb3cbf8976e7
2059 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2060 Ciphertext = 09a4fd29de949d9a9aa9924248422097ad4883b4713e6c214ff6567ada08a96766fc4e2ee3e3a5a1
2061
2062 Cipher = aes-128-ocb
2063 Key = 000102030405060708090A0B0C0D0E0F
2064 IV = 000102030405060708090A0B0C0D0E
2065 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2066 Tag = 1ad62009901f40cba7cd7156f94a7324
2067 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2068 Ciphertext = 5e2fa7367ffbdb3938845cfd415fcc71ec79634eb31451609d27505f5e2978f43c44213d8fa441ee
2069
2070 Cipher = aes-128-ocb
2071 Key = 000102030405060708090A0B0C0D0E0F
2072 IV = 000102030405060708090A0B
2073 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2074 Tag = C203F98CE28F7DAD3F31C021
2075 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F3031
2076 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C822D6
2077
2078 Cipher = aes-128-ocb
2079 Key = 000102030405060708090A0B0C0D0E0F
2080 IV = 000102030405060708090A0B
2081 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2082 Tag = 8346D7D47C5D893ED472F5AB
2083 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F4041
2084 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F714FF
2085
2086 Cipher = aes-128-ocb
2087 Key = 000102030405060708090A0B0C0D0E0F
2088 IV = 000102030405060708090A0B
2089 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2090 Tag = 5822A9A70FDF55D29D2984A6
2091 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F5051
2092 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB8294170634D
2093
2094 Cipher = aes-128-ocb
2095 Key = 000102030405060708090A0B0C0D0E0F
2096 IV = 000102030405060708090A0B
2097 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2098 Tag = 81772B6741ABB4ECA9D2DEB2
2099 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F6061
2100 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7050FAA
2101
2102 Cipher = aes-128-ocb
2103 Key = 000102030405060708090A0B0C0D0E0F
2104 IV = 000102030405060708090A0B
2105 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2106 Tag = 3E52A01D068DE85456DB03B7
2107 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2108 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2109
2110 Cipher = aes-128-ocb
2111 Key = 000102030405060708090A0B0C0D0E0F
2112 IV = 000102030405060708090A0B
2113 AAD = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F2021222324252627
2114 Tag = 3E52A01D068DE85456DB03B6
2115 Plaintext = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F7071
2116 Ciphertext = 09A4FD29DE949D9A9AA9924248422097AD4883B4713E6C214FF6567ADA08A967B2176C12F110DD441B7CAA3A509B13C86A023AFCEE998BEE42028D44507B15F77C528A1DE6406B519BCEE8FCB829417001E54E15A7576C4DF32366E0F439C7051CB4824B8114E9A720CBC1CE0185B156B486
2117 Operation = DECRYPT
2118 Result = CIPHERFINAL_ERROR
2119
2120 # AES XTS test vectors from IEEE Std 1619-2007
2121 Cipher = aes-128-xts
2122 Key = 0000000000000000000000000000000000000000000000000000000000000000
2123 IV = 00000000000000000000000000000000
2124 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000
2125 Ciphertext = 917cf69ebd68b2ec9b9fe9a3eadda692cd43d2f59598ed858c02c2652fbf922e
2126
2127 Cipher = aes-128-xts
2128 Key = 1111111111111111111111111111111122222222222222222222222222222222
2129 IV = 33333333330000000000000000000000
2130 Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2131 Ciphertext = c454185e6a16936e39334038acef838bfb186fff7480adc4289382ecd6d394f0
2132
2133 Cipher = aes-128-xts
2134 Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f022222222222222222222222222222222
2135 IV = 33333333330000000000000000000000
2136 Plaintext = 4444444444444444444444444444444444444444444444444444444444444444
2137 Ciphertext = af85336b597afc1a900b2eb21ec949d292df4c047e0b21532186a5971a227a89
2138
2139 Cipher = aes-128-xts
2140 Key = 2718281828459045235360287471352631415926535897932384626433832795
2141 IV = 00000000000000000000000000000000
2142 Plaintext = 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
2143 Ciphertext = 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
2144
2145 Cipher = aes-128-xts
2146 Key = 2718281828459045235360287471352631415926535897932384626433832795
2147 IV = 01000000000000000000000000000000
2148 Plaintext = 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
2149 Ciphertext = 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
2150
2151 Cipher = aes-128-xts
2152 Key = 2718281828459045235360287471352631415926535897932384626433832795
2153 IV = 02000000000000000000000000000000
2154 Plaintext = 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
2155 Ciphertext = fa762a3680b76007928ed4a4f49a9456031b704782e65e16cecb54ed7d017b5e18abd67b338e81078f21edb7868d901ebe9c731a7c18b5e6dec1d6a72e078ac9a4262f860beefa14f4e821018272e411a951502b6e79066e84252c3346f3aa62344351a291d4bedc7a07618bdea2af63145cc7a4b8d4070691ae890cd65733e7946e9021a1dffc4c59f159425ee6d50ca9b135fa6162cea18a939838dc000fb386fad086acce5ac07cb2ece7fd580b00cfa5e98589631dc25e8e2a3daf2ffdec26531659912c9d8f7a15e5865ea8fb5816d6207052bd7128cd743c12c8118791a4736811935eb982a532349e31dd401e0b660a568cb1a4711f552f55ded59f1f15bf7196b3ca12a91e488ef59d64f3a02bf45239499ac6176ae321c4a211ec545365971c5d3f4f09d4eb139bfdf2073d33180b21002b65cc9865e76cb24cd92c874c24c18350399a936ab3637079295d76c417776b94efce3a0ef7206b15110519655c956cbd8b2489405ee2b09a6b6eebe0c53790a12a8998378b33a5b71159625f4ba49d2a2fdba59fbf0897bc7aabd8d707dc140a80f0f309f835d3da54ab584e501dfa0ee977fec543f74186a802b9a37adb3e8291eca04d66520d229e60401e7282bef486ae059aa70696e0e305d777140a7a883ecdcb69b9ff938e8a4231864c69ca2c2043bed007ff3e605e014bcf518138dc3a25c5e236171a2d01d6
2156
2157 Cipher = aes-128-xts
2158 Key = 2718281828459045235360287471352631415926535897932384626433832795
2159 IV = fd000000000000000000000000000000
2160 Plaintext = 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
2161 Ciphertext = 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
2162
2163 Cipher = aes-128-xts
2164 Key = 2718281828459045235360287471352631415926535897932384626433832795
2165 IV = fe000000000000000000000000000000
2166 Plaintext = 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
2167 Ciphertext = 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
2168
2169 Cipher = aes-128-xts
2170 Key = 2718281828459045235360287471352631415926535897932384626433832795
2171 IV = ff000000000000000000000000000000
2172 Plaintext = 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
2173 Ciphertext = 3260ae8dad1f4a32c5cafe3ab0eb95549d461a67ceb9e5aa2d3afb62dece0553193ba50c75be251e08d1d08f1088576c7efdfaaf3f459559571e12511753b07af073f35da06af0ce0bbf6b8f5ccc5cea500ec1b211bd51f63b606bf6528796ca12173ba39b8935ee44ccce646f90a45bf9ccc567f0ace13dc2d53ebeedc81f58b2e41179dddf0d5a5c42f5d8506c1a5d2f8f59f3ea873cbcd0eec19acbf325423bd3dcb8c2b1bf1d1eaed0eba7f0698e4314fbeb2f1566d1b9253008cbccf45a2b0d9c5c9c21474f4076e02be26050b99dee4fd68a4cf890e496e4fcae7b70f94ea5a9062da0daeba1993d2ccd1dd3c244b8428801495a58b216547e7e847c46d1d756377b6242d2e5fb83bf752b54e0df71e889f3a2bb0f4c10805bf3c590376e3c24e22ff57f7fa965577375325cea5d920db94b9c336b455f6e894c01866fe9fbb8c8d3f70a2957285f6dfb5dcd8cbf54782f8fe7766d4723819913ac773421e3a31095866bad22c86a6036b2518b2059b4229d18c8c2ccbdf906c6cc6e82464ee57bddb0bebcb1dc645325bfb3e665ef7251082c88ebb1cf203bd779fdd38675713c8daadd17e1cabee432b09787b6ddf3304e38b731b45df5df51b78fcfb3d32466028d0ba36555e7e11ab0ee0666061d1645d962444bc47a38188930a84b4d561395c73c087021927ca638b7afc8a8679ccb84c26555440ec7f10445cd
2174
2175
2176 Cipher = aes-256-xts
2177 Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2178 IV = ff000000000000000000000000000000
2179 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
2180 Ciphertext = 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
2181
2182 Cipher = aes-256-xts
2183 Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2184 IV = ffff0000000000000000000000000000
2185 Plaintext = 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
2186 Ciphertext = 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
2187
2188 Cipher = aes-256-xts
2189 Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2190 IV = ffffff00000000000000000000000000
2191 Plaintext = 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
2192 Ciphertext = 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
2193
2194 Cipher = aes-256-xts
2195 Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2196 IV = ffffffff000000000000000000000000
2197 Plaintext = 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
2198 Ciphertext = bf53d2dade78e822a4d949a9bc6766b01b06a8ef70d26748c6a7fc36d80ae4c5520f7c4ab0ac8544424fa405162fef5a6b7f229498063618d39f0003cb5fb8d1c86b643497da1ff945c8d3bedeca4f479702a7a735f043ddb1d6aaade3c4a0ac7ca7f3fa5279bef56f82cd7a2f38672e824814e10700300a055e1630b8f1cb0e919f5e942010a416e2bf48cb46993d3cb6a51c19bacf864785a00bc2ecff15d350875b246ed53e68be6f55bd7e05cfc2b2ed6432198a6444b6d8c247fab941f569768b5c429366f1d3f00f0345b96123d56204c01c63b22ce78baf116e525ed90fdea39fa469494d3866c31e05f295ff21fea8d4e6e13d67e47ce722e9698a1c1048d68ebcde76b86fcf976eab8aa9790268b7068e017a8b9b749409514f1053027fd16c3786ea1bac5f15cb79711ee2abe82f5cf8b13ae73030ef5b9e4457e75d1304f988d62dd6fc4b94ed38ba831da4b7634971b6cd8ec325d9c61c00f1df73627ed3745a5e8489f3a95c69639c32cd6e1d537a85f75cc844726e8a72fc0077ad22000f1d5078f6b866318c668f1ad03d5a5fced5219f2eabbd0aa5c0f460d183f04404a0d6f469558e81fab24a167905ab4c7878502ad3e38fdbe62a41556cec37325759533ce8f25f367c87bb5578d667ae93f9e2fd99bcbc5f2fbba88cf6516139420fcff3b7361d86322c4bd84c82f335abb152c4a93411373aaa8220
2199
2200 Cipher = aes-256-xts
2201 Key = 27182818284590452353602874713526624977572470936999595749669676273141592653589793238462643383279502884197169399375105820974944592
2202 IV = ffffffffff0000000000000000000000
2203 Plaintext = 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
2204 Ciphertext = 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
2205
2206
2207 Cipher = aes-128-xts
2208 Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2209 IV = 9a785634120000000000000000000000
2210 Plaintext = 000102030405060708090a0b0c0d0e0f10
2211 Ciphertext = 6c1625db4671522d3d7599601de7ca09ed
2212
2213 Cipher = aes-128-xts
2214 Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2215 IV = 9a785634120000000000000000000000
2216 Plaintext = 000102030405060708090a0b0c0d0e0f1011
2217 Ciphertext = d069444b7a7e0cab09e24447d24deb1fedbf
2218
2219 Cipher = aes-128-xts
2220 Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2221 IV = 9a785634120000000000000000000000
2222 Plaintext = 000102030405060708090a0b0c0d0e0f101112
2223 Ciphertext = e5df1351c0544ba1350b3363cd8ef4beedbf9d
2224
2225 Cipher = aes-128-xts
2226 Key = fffefdfcfbfaf9f8f7f6f5f4f3f2f1f0bfbebdbcbbbab9b8b7b6b5b4b3b2b1b0
2227 IV = 9a785634120000000000000000000000
2228 Plaintext = 000102030405060708090a0b0c0d0e0f10111213
2229 Ciphertext = 9d84c813f719aa2c7be3f66171c7c5c2edbf9dac
2230
2231 Cipher = aes-128-xts
2232 Key = e0e1e2e3e4e5e6e7e8e9eaebecedeeefc0c1c2c3c4c5c6c7c8c9cacbcccdcecf
2233 IV = 21436587a90000000000000000000000
2234 Plaintext = 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
2235 Ciphertext = 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
2236
2237 # Exercise different lengths covering even ciphertext stealing cases
2238 Cipher = aes-128-xts
2239 Key = 2718281828459045235360287471352631415926535897932384626433832795
2240 IV = 00000000000000000000000000000000
2241 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f
2242 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce
2243
2244 Cipher = aes-128-xts
2245 Key = 2718281828459045235360287471352631415926535897932384626433832795
2246 IV = 00000000000000000000000000000000
2247 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f6061
2248 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5B079C6307EA0914559C6D2FB6384F8AADF94
2249
2250 Cipher = aes-128-xts
2251 Key = 2718281828459045235360287471352631415926535897932384626433832795
2252 IV = 00000000000000000000000000000000
2253 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f
2254 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce84
2255
2256 Cipher = aes-128-xts
2257 Key = 2718281828459045235360287471352631415926535897932384626433832795
2258 IV = 00000000000000000000000000000000
2259 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f7071
2260 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CEF4F253466EF4953ADC8FE2F5BC1FF57593FD
2261
2262 Cipher = aes-128-xts
2263 Key = 2718281828459045235360287471352631415926535897932384626433832795
2264 IV = 00000000000000000000000000000000
2265 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f
2266 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad0265
2267
2268 Cipher = aes-128-xts
2269 Key = 2718281828459045235360287471352631415926535897932384626433832795
2270 IV = 00000000000000000000000000000000
2271 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f8081
2272 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE842973C68248EDDFE26FB9B096659C8A5D6BB7
2273
2274 Cipher = aes-128-xts
2275 Key = 2718281828459045235360287471352631415926535897932384626433832795
2276 IV = 00000000000000000000000000000000
2277 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f
2278 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51
2279
2280 Cipher = aes-128-xts
2281 Key = 2718281828459045235360287471352631415926535897932384626433832795
2282 IV = 00000000000000000000000000000000
2283 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f9091
2284 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD0265C4DD16E65A24575A709F174593F19FF85EA9
2285
2286 Cipher = aes-128-xts
2287 Key = 2718281828459045235360287471352631415926535897932384626433832795
2288 IV = 00000000000000000000000000000000
2289 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
2290 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8
2291
2292 Cipher = aes-128-xts
2293 Key = 2718281828459045235360287471352631415926535897932384626433832795
2294 IV = 00000000000000000000000000000000
2295 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1
2296 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE519215FA160C664D4B07D757A034AB3B35A10C
2297
2298 Cipher = aes-128-xts
2299 Key = 2718281828459045235360287471352631415926535897932384626433832795
2300 IV = 00000000000000000000000000000000
2301 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
2302 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f91
2303
2304 Cipher = aes-128-xts
2305 Key = 2718281828459045235360287471352631415926535897932384626433832795
2306 IV = 00000000000000000000000000000000
2307 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1
2308 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D82C6CBC24F9357BD1FB882AA4B2CC2E7FA750
2309
2310 Cipher = aes-128-xts
2311 Key = 2718281828459045235360287471352631415926535897932384626433832795
2312 IV = 00000000000000000000000000000000
2313 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebf
2314 Ciphertext = 27a7479befa1d476489f308cd4cfa6e2a96e4bbe3208ff25287dd3819616e89cc78cf7f5e543445f8333d8fa7f56000005279fa5d8b5e4ad40e736ddb4d35412328063fd2aab53e5ea1e0a9f332500a5df9487d07a5c92cc512c8866c7e860ce93fdf166a24912b422976146ae20ce846bb7dc9ba94a767aaef20c0d61ad02655ea92dc4c4e41a8952c651d33174be51a10c421110e6d81588ede82103a252d8a750e8768defffed9122810aaeb99f9172af82b604dc4b8e51bcb08235a6f434
2315
2316 Cipher = aes-128-xts
2317 Key = 2718281828459045235360287471352631415926535897932384626433832795
2318 IV = 00000000000000000000000000000000
2319 Plaintext = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f505152535455565758595a5b5c5d5e5f606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1
2320 Ciphertext = 27A7479BEFA1D476489F308CD4CFA6E2A96E4BBE3208FF25287DD3819616E89CC78CF7F5E543445F8333D8FA7F56000005279FA5D8B5E4AD40E736DDB4D35412328063FD2AAB53E5EA1E0A9F332500A5DF9487D07A5C92CC512C8866C7E860CE93FDF166A24912B422976146AE20CE846BB7DC9BA94A767AAEF20C0D61AD02655EA92DC4C4E41A8952C651D33174BE51A10C421110E6D81588EDE82103A252D8A750E8768DEFFFED9122810AAEB99F910409B03D164E727C31290FD4E039500872AF
2321
2322 # AES wrap tests from RFC3394
2323 Cipher = id-aes128-wrap
2324 Key = 000102030405060708090A0B0C0D0E0F
2325 Plaintext = 00112233445566778899AABBCCDDEEFF
2326 Ciphertext = 1FA68B0A8112B447AEF34BD8FB5A7B829D3E862371D2CFE5
2327
2328 Cipher = id-aes192-wrap
2329 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2330 Plaintext = 00112233445566778899AABBCCDDEEFF
2331 Ciphertext = 96778B25AE6CA435F92B5B97C050AED2468AB8A17AD84E5D
2332
2333 Cipher = id-aes256-wrap
2334 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2335 Plaintext = 00112233445566778899AABBCCDDEEFF
2336 Ciphertext = 64E8C3F9CE0F5BA263E9777905818A2A93C8191E7D6E8AE7
2337
2338 Cipher = id-aes192-wrap
2339 Key = 000102030405060708090A0B0C0D0E0F1011121314151617
2340 Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2341 Ciphertext = 031D33264E15D33268F24EC260743EDCE1C6C7DDEE725A936BA814915C6762D2
2342
2343 Cipher = id-aes256-wrap
2344 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2345 Plaintext = 00112233445566778899AABBCCDDEEFF0001020304050607
2346 Ciphertext = A8F9BC1612C68B3FF6E6F4FBE30E71E4769C8B80A32CB8958CD5D17D6B254DA1
2347
2348 Cipher = id-aes256-wrap
2349 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2350 Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2351 Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2352
2353 # Same as previous example but with invalid unwrap key: should be rejected
2354 # without returning any plaintext
2355 Cipher = id-aes256-wrap
2356 Operation = DECRYPT
2357 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E00
2358 Plaintext = 00112233445566778899AABBCCDDEEFF000102030405060708090A0B0C0D0E0F
2359 Ciphertext = 28C9F404C4B810F4CBCCB35CFB87F8263F5786E2D80ED326CBC7F0E71A99F43BFB988B9B7A02DD21
2360 Result = CIPHERUPDATE_ERROR
2361
2362 # AES wrap tests from RFC5649
2363 Cipher = id-aes192-wrap-pad
2364 Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2365 Plaintext = c37b7e6492584340bed12207808941155068f738
2366 Ciphertext = 138bdeaa9b8fa7fc61f97742e72248ee5ae6ae5360d1ae6a5f54f373fa543b6a
2367
2368 Cipher = id-aes192-wrap-pad
2369 Key = 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
2370 Plaintext = 466f7250617369
2371 Ciphertext = afbeb0f07dfbf5419200f2ccb50bb24f
2372
2373 # HMAC tests from RFC2104
2374 MAC = HMAC
2375 Algorithm = MD5
2376 Key = 0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
2377 Input = "Hi There"
2378 Output = 9294727a3638bb1c13f48ef8158bfc9d
2379
2380 MAC = HMAC
2381 Algorithm = MD5
2382 Key = "Jefe"
2383 Input = "what do ya want for nothing?"
2384 Output = 750c783e6ab0b503eaa86e310a5db738
2385
2386 MAC = HMAC
2387 Algorithm = MD5
2388 Key = AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
2389 Input = DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
2390 Output = 56be34521d144c88dbb8c733f0e8b3f6
2391
2392 # HMAC tests from NIST test data
2393
2394 MAC = HMAC
2395 Algorithm = SHA1
2396 Input = "Sample message for keylen=blocklen"
2397 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2398 Output = 5FD596EE78D5553C8FF4E72D266DFD192366DA29
2399 MAC = HMAC
2400 Algorithm = SHA1
2401 Input = "Sample message for keylen<blocklen"
2402 Key = 000102030405060708090A0B0C0D0E0F10111213
2403 Output = 4C99FF0CB1B31BD33F8431DBAF4D17FCD356A807
2404 MAC = HMAC
2405 Algorithm = SHA1
2406 Input = "Sample message for keylen=blocklen"
2407 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2408 Output = 2D51B2F7750E410584662E38F133435F4C4FD42A
2409 MAC = HMAC
2410 Algorithm = SHA224
2411 Input = "Sample message for keylen=blocklen"
2412 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2413 Output = C7405E3AE058E8CD30B08B4140248581ED174CB34E1224BCC1EFC81B
2414 MAC = HMAC
2415 Algorithm = SHA224
2416 Input = "Sample message for keylen<blocklen"
2417 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B
2418 Output = E3D249A8CFB67EF8B7A169E9A0A599714A2CECBA65999A51BEB8FBBE
2419 MAC = HMAC
2420 Algorithm = SHA224
2421 Input = "Sample message for keylen=blocklen"
2422 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2423 Output = 91C52509E5AF8531601AE6230099D90BEF88AAEFB961F4080ABC014D
2424 MAC = HMAC
2425 Algorithm = SHA256
2426 Input = "Sample message for keylen=blocklen"
2427 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2428 Output = 8BB9A1DB9806F20DF7F77B82138C7914D174D59E13DC4D0169C9057B133E1D62
2429 MAC = HMAC
2430 Algorithm = SHA256
2431 Input = "Sample message for keylen<blocklen"
2432 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F
2433 Output = A28CF43130EE696A98F14A37678B56BCFCBDD9E5CF69717FECF5480F0EBDF790
2434 MAC = HMAC
2435 Algorithm = SHA256
2436 Input = "Sample message for keylen=blocklen"
2437 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F60616263
2438 Output = BDCCB6C72DDEADB500AE768386CB38CC41C63DBB0878DDB9C7A38A431B78378D
2439 MAC = HMAC
2440 Algorithm = SHA384
2441 Input = "Sample message for keylen=blocklen"
2442 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2443 Output = 63C5DAA5E651847CA897C95814AB830BEDEDC7D25E83EEF9195CD45857A37F448947858F5AF50CC2B1B730DDF29671A9
2444 MAC = HMAC
2445 Algorithm = SHA384
2446 Input = "Sample message for keylen<blocklen"
2447 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F
2448 Output = 6EB242BDBB582CA17BEBFA481B1E23211464D2B7F8C20B9FF2201637B93646AF5AE9AC316E98DB45D9CAE773675EEED0
2449 MAC = HMAC
2450 Algorithm = SHA384
2451 Input = "Sample message for keylen=blocklen"
2452 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2453 Output = 5B664436DF69B0CA22551231A3F0A3D5B4F97991713CFA84BFF4D0792EFF96C27DCCBBB6F79B65D548B40E8564CEF594
2454 MAC = HMAC
2455 Algorithm = SHA512
2456 Input = "Sample message for keylen=blocklen"
2457 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F
2458 Output = FC25E240658CA785B7A811A8D3F7B4CA48CFA26A8A366BF2CD1F836B05FCB024BD36853081811D6CEA4216EBAD79DA1CFCB95EA4586B8A0CE356596A55FB1347
2459 MAC = HMAC
2460 Algorithm = SHA512
2461 Input = "Sample message for keylen<blocklen"
2462 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F
2463 Output = FD44C18BDA0BB0A6CE0E82B031BF2818F6539BD56EC00BDC10A8A2D730B3634DE2545D639B0F2CF710D0692C72A1896F1F211C2B922D1A96C392E07E7EA9FEDC
2464 MAC = HMAC
2465 Algorithm = SHA512
2466 Input = "Sample message for keylen=blocklen"
2467 Key = 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F303132333435363738393A3B3C3D3E3F404142434445464748494A4B4C4D4E4F505152535455565758595A5B5C5D5E5F606162636465666768696A6B6C6D6E6F707172737475767778797A7B7C7D7E7F808182838485868788898A8B8C8D8E8F909192939495969798999A9B9C9D9E9FA0A1A2A3A4A5A6A7A8A9AAABACADAEAFB0B1B2B3B4B5B6B7B8B9BABBBCBDBEBFC0C1C2C3C4C5C6C7
2468 Output = D93EC8D2DE1AD2A9957CB9B83F14E76AD6B5E0CCE285079A127D3B14BCCB7AA7286D4AC0D4CE64215F2BC9E6870B33D97438BE4AAA20CDA5C5A912B48B8E27F3
2469
2470 # CMAC tests from FIPS module
2471
2472 MAC = CMAC
2473 Algorithm = AES-128-CBC
2474 Key = 77A77FAF290C1FA30C683DF16BA7A77B
2475 Input = 020683E1F0392F4CAC54318B6029259E9C553DBC4B6AD998E64D58E4E7DC2E13
2476 Output = FBFEA41BF9740CB501F1292C21CEBB40
2477
2478 MAC = CMAC
2479 Algorithm = AES-192-CBC
2480 Key = 7B32391369AA4CA97558095BE3C3EC862BD057CEF1E32D62
2481 Input =
2482 Output = E4D9340B03E67DEFD4969CC1ED3735E6
2483
2484 MAC = CMAC
2485 Algorithm = AES-256-CBC
2486 Key = 0B122AC8F34ED1FE082A3625D157561454167AC145A10BBF77C6A70596D574F1
2487 Input = 498B53FDEC87EDCBF07097DCCDE93A084BAD7501A224E388DF349CE18959FE8485F8AD1537F0D896EA73BEDC7214713F
2488 Output = F62C46329B41085625669BAF51DEA66A
2489
2490 MAC = CMAC
2491 Algorithm = DES-EDE3-CBC
2492 Key = 89BCD952A8C8AB371AF48AC7D07085D5EFF702E6D62CDC23
2493 Input = FA620C1BBE97319E9A0CF0492121F7A20EB08A6A709DCBD00AAF38E4F99E754E
2494 Output = 8F49A1B7D6AA2258
2495
2496 # Public key algorithm tests
2497
2498 # Private keys used for PKEY operations.
2499
2500 # RSA 2048 bit key.
2501
2502 PrivateKey = RSA-2048
2503
2504 -----BEGIN PRIVATE KEY-----
2505 MIIEvAIBADANBgkqhkiG9w0BAQEFAASCBKYwggSiAgEAAoIBAQDNAIHqeyrh6gbV
2506 n3xz2f+5SglhXC5Lp8Y2zvCN01M+wxhVJbAVx2m5mnfWclv5w1Mqm25fZifV+4UW
2507 B2jT3anL01l0URcX3D0wnS/EfuQfl+Mq23+d2GShxHZ6Zm7NcbwarPXnUX9LOFlP
2508 6psF5C1a2pkSAIAT5FMWpNm7jtCGuI0odYusr5ItRqhotIXSOcm66w4rZFknEPQr
2509 LR6gpLSALAvsqzKPimiwBzvbVG/uqYCdKEmRKzkMFTK8finHZY+BdfrkbzQzL/h7
2510 yrPkBkm5hXeGnaDqcYNT8HInVIhpE2SHYNEivmduD8SD3SD/wxvalqMZZsmqLnWt
2511 A95H4cRPAgMBAAECggEAYCl6x5kbFnoG1rJHWLjL4gi+ubLZ7Jc4vYD5Ci41AF3X
2512 ziktnim6iFvTFv7x8gkTvArJDWsICLJBTYIQREHYYkozzgIzyPeApIs3Wv8C12cS
2513 IopwJITbP56+zM+77hcJ26GCgA2Unp5CFuC/81WDiPi9kNo3Oh2CdD7D+90UJ/0W
2514 glplejFpEuhpU2URfKL4RckJQF/KxV+JX8FdIDhsJu54yemQdQKaF4psHkzwwgDo
2515 qc+yfp0Vb4bmwq3CKxqEoc1cpbJ5CHXXlAfISzUjlcuBzD/tW7BDtp7eDAcgRVAC
2516 XO6MX0QBcLYSC7SOD3R7zY9SIRCFDfBDxCjf0YcFMQKBgQD2+WG0fLwDXTrt68fe
2517 hQqVa2Xs25z2B2QGPxWqSFU8WNly/mZ1BW413f3De/O58vYi7icTNyVoScm+8hdv
2518 6PfD+LuRujdN1TuvPeyBTSvewQwf3IjN0Wh28mse36PwlBl+301C/x+ylxEDuJjK
2519 hZxCcocIaoQqtBC7ac8tNa9r4wKBgQDUfnJKf/QQSLJwwlJKQQGHi3MVm7c9PbwY
2520 eyIOY1s1NPluJDoYTZP4YLa/u2txwe2aHh9FhYMCPDAelqaSwaCLU9DsnKkQEA2A
2521 RR47fcagG6xK7O+N95iEa8I1oIy7os9MBoBMwRIZ6VYIxxTj8UMNSR+tu6MqV1Gg
2522 T5d0WDTJpQKBgCHyRSu5uV39AoyRS/eZ8cp36JqV1Q08FtOE+EVfi9evnrPfo9WR
2523 2YQt7yNfdjCo5IwIj/ZkLhAXlFNakz4el2+oUJ/HKLLaDEoaCNf883q6rh/zABrK
2524 HcG7sF2d/7qhoJ9/se7zgjfZ68zHIrkzhDbd5xGREnmMJoCcGo3sQyBhAoGAH3UQ
2525 qmLC2N5KPFMoJ4H0HgLQ6LQCrnhDLkScSBEBYaEUA/AtAYgKjcyTgVLXlyGkcRpg
2526 esRHHr+WSBD5W+R6ReYEmeKfTJdzyDdzQE9gZjdyjC0DUbsDwybIu3OnIef6VEDq
2527 IXK7oUZfzDDcsNn4mTDoFaoff5cpqFfgDgM43VkCgYBNHw11b+d+AQmaZS9QqIt7
2528 aF3FvwCYHV0jdv0Mb+Kc1bY4c0R5MFpzrTwVmdOerjuuA1+9b+0Hwo3nBZM4eaBu
2529 SOamA2hu2OJWCl9q8fLCT69KqWDjghhvFe7c6aJJGucwaA3Uz3eLcPqoaCarMiNH
2530 fMkTd7GabVourqIZdgvu1Q==
2531 -----END PRIVATE KEY-----
2532
2533 # Corresponding public key
2534
2535 PublicKey = RSA-2048-PUBLIC
2536
2537 -----BEGIN PUBLIC KEY-----
2538 MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
2539 uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
2540 y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
2541 WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
2542 gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
2543 uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
2544 TwIDAQAB
2545 -----END PUBLIC KEY-----
2546
2547 # EC P-256 key
2548
2549 PrivateKey=P-256
2550
2551 -----BEGIN PRIVATE KEY-----
2552 MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQgiocvtiiTxNH/xbnw
2553 +RdYBp+DUuCPoFpJ+NuSbLVyhyWhRANCAAQsFQ9CnOcPIWwlLPXgYs4fY5zV0WXH
2554 +JQkBywnGX14szuSDpXNtmTpkNzwz+oNlOKo5q+dDlgFbmUxBJJbn+bJ
2555 -----END PRIVATE KEY-----
2556
2557 # EC public key for above
2558
2559 PublicKey=P-256-PUBLIC
2560
2561 -----BEGIN PUBLIC KEY-----
2562 MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAELBUPQpznDyFsJSz14GLOH2Oc1dFl
2563 x/iUJAcsJxl9eLM7kg6VzbZk6ZDc8M/qDZTiqOavnQ5YBW5lMQSSW5/myQ==
2564 -----END PUBLIC KEY-----
2565
2566 # Additional EC key for ECDH
2567 PrivateKey=P-256-Peer
2568 -----BEGIN PRIVATE KEY-----
2569 MIGHAgEAMBMGByqGSM49AgEGCCqGSM49AwEHBG0wawIBAQQg/URzu1TDNwUFWZ3i
2570 dLISAZpEY0vfJ2pLB7f+Xnjyl2OhRANCAAQgBuXhSgeKpz+4piXlYSVLvy0NT+wK
2571 uZWUI3LqUUCV07wg+RLLMY8yNK9kjqcgZDs/cB+bet64nQq+dNnvtpxG
2572 -----END PRIVATE KEY-----
2573
2574 PublicKey=P-256-Peer-PUBLIC
2575 -----BEGIN PUBLIC KEY-----
2576 MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEIAbl4UoHiqc/uKYl5WElS78tDU/s
2577 CrmVlCNy6lFAldO8IPkSyzGPMjSvZI6nIGQ7P3Afm3reuJ0KvnTZ77acRg==
2578 -----END PUBLIC KEY-----
2579
2580 # DSA key
2581 PrivateKey=DSA-1024
2582
2583 -----BEGIN PRIVATE KEY-----
2584 MIIBSwIBADCCASwGByqGSM44BAEwggEfAoGBAO0SwRpkAeM21qSM5ch4CLEHpFk4
2585 19R5ve1UUr421y3HEUURsrVpxYKvyx8aOBQC/akz95cYxNN3y1JnJJMxPklhdJrJ
2586 f/WDYPxjMk8BqNJmeZtLuCVLKGwQomuo7ZkG955WRyLHYEdQ6uC7K2QTPKpW6psF
2587 YFaDYjAjSEKk2MFxAhUAykDkKLZdhPWzwM8/qYaE31VmWz0CgYEApNVF8oFK41ez
2588 Qci9XbSZJHyPB+3jML1YQkHxiiInaIz6GEFtjUbIUEYA/ovY+6ECNI1aIDHTd7CH
2589 woS0mp33oQYs43nt29B6UwbtMmbzCOQ9vGGwWVho+JtHyyPWrDuLmkvLtoQPaxYt
2590 6PVa3gncr2v3njcVuH+EQ6DuFR93zksEFgIUbyv6pqH+UQurernJn/7sUm2U2i0=
2591 -----END PRIVATE KEY-----
2592
2593 PublicKey=DSA-1024-PUBLIC
2594
2595 -----BEGIN PUBLIC KEY-----
2596 MIIBtzCCASwGByqGSM44BAEwggEfAoGBAO0SwRpkAeM21qSM5ch4CLEHpFk419R5
2597 ve1UUr421y3HEUURsrVpxYKvyx8aOBQC/akz95cYxNN3y1JnJJMxPklhdJrJf/WD
2598 YPxjMk8BqNJmeZtLuCVLKGwQomuo7ZkG955WRyLHYEdQ6uC7K2QTPKpW6psFYFaD
2599 YjAjSEKk2MFxAhUAykDkKLZdhPWzwM8/qYaE31VmWz0CgYEApNVF8oFK41ezQci9
2600 XbSZJHyPB+3jML1YQkHxiiInaIz6GEFtjUbIUEYA/ovY+6ECNI1aIDHTd7CHwoS0
2601 mp33oQYs43nt29B6UwbtMmbzCOQ9vGGwWVho+JtHyyPWrDuLmkvLtoQPaxYt6PVa
2602 3gncr2v3njcVuH+EQ6DuFR93zksDgYQAAoGAVXFwJ5wTuF0rQ6AWfTitm3/zUeRW
2603 SeKFo+Rg0GrBI+Wg2Tj+Yn6V8Xs+Xyjim1wsd2P6/BlJzCEr4nHjP9JcBICqM3vI
2604 9zCaT/vYsLD7/T7rF9AF/jV+LnkGJCzLbDYF04IkhtLNHOQob+Uc8PWB78e/1Lc4
2605 SzJw2oHciIOt+UU=
2606 -----END PUBLIC KEY-----
2607
2608 # RSA tests
2609
2610 Sign = RSA-2048
2611 Ctrl = digest:SHA1
2612 Input = "0123456789ABCDEF1234"
2613 Output = c09d402423cbf233d26cae21f954547bc43fe80fd41360a0336cfdbe9aedad05bef6fd2eaee6cd60089a52482d4809a238149520df3bdde4cb9e23d9307b05c0a6f327052325a29adf2cc95b66523be7024e2a585c3d4db15dfbe146efe0ecdc0402e33fe5d40324ee96c5c3edd374a15cdc0f5d84aa243c0f07e188c6518fbfceae158a9943be398e31097da81b62074f626eff738be6160741d5a26957a482b3251fd85d8df78b98148459de10aa93305dbb4a5230aa1da291a9b0e481918f99b7638d72bb687f97661d304ae145d64a474437a4ef39d7b8059332ddeb07e92bf6e0e3acaf8afedc93795e4511737ec1e7aab6d5bc9466afc950c1c17b48ad
2614
2615 Verify = RSA-2048
2616 Ctrl = digest:SHA1
2617 Input = "0123456789ABCDEF1234"
2618 Output = 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
2619
2620 VerifyRecover = RSA-2048
2621 Ctrl = digest:SHA1
2622 Input = c09d402423cbf233d26cae21f954547bc43fe80fd41360a0336cfdbe9aedad05bef6fd2eaee6cd60089a52482d4809a238149520df3bdde4cb9e23d9307b05c0a6f327052325a29adf2cc95b66523be7024e2a585c3d4db15dfbe146efe0ecdc0402e33fe5d40324ee96c5c3edd374a15cdc0f5d84aa243c0f07e188c6518fbfceae158a9943be398e31097da81b62074f626eff738be6160741d5a26957a482b3251fd85d8df78b98148459de10aa93305dbb4a5230aa1da291a9b0e481918f99b7638d72bb687f97661d304ae145d64a474437a4ef39d7b8059332ddeb07e92bf6e0e3acaf8afedc93795e4511737ec1e7aab6d5bc9466afc950c1c17b48ad
2623 Output = "0123456789ABCDEF1234"
2624
2625 # Leading zero in the signature
2626 Verify = RSA-2048
2627 Ctrl = digest:SHA1
2628 Input = "0123456789ABCDEF1234"
2629 Output = 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
2630 Result = VERIFY_ERROR
2631
2632 VerifyRecover = RSA-2048
2633 Ctrl = digest:SHA1
2634 Input = 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
2635 Result = KEYOP_ERROR
2636
2637 # Digest too long
2638 Sign = RSA-2048
2639 Ctrl = digest:SHA1
2640 Input = "0123456789ABCDEF12345"
2641 Output = 00
2642 Result = KEYOP_ERROR
2643
2644 # Digest too short
2645 Sign = RSA-2048
2646 Ctrl = digest:SHA1
2647 Input = "0123456789ABCDEF12345"
2648 Output = 00
2649 Result = KEYOP_ERROR
2650
2651 # Mismatched digest
2652 Verify = RSA-2048
2653 Ctrl = digest:SHA1
2654 Input = "0123456789ABCDEF1233"
2655 Output = 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
2656 Result = VERIFY_ERROR
2657
2658 # Corrupted signature
2659 Verify = RSA-2048
2660 Ctrl = digest:SHA1
2661 Input = "0123456789ABCDEF1233"
2662 Output = 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
2663 Result = VERIFY_ERROR
2664
2665 # parameter is not NULL
2666 Verify = RSA-2048
2667 Ctrl = digest:sha1
2668 Input = "0123456789ABCDEF1234"
2669 Output = 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
2670 Result = VERIFY_ERROR
2671
2672 # embedded digest too long
2673 Verify = RSA-2048
2674 Ctrl = digest:sha1
2675 Input = "0123456789ABCDEF1234"
2676 Output = afec9a0d5330a08f54283bb4a9d4e7e7e70fc1342336c4c766fba713f66970151c6e27413c48c33864ea45a0238787004f338ed3e21b53b0fe9c1151c42c388cbc7cba5a06b706c407a5b48324fbe994dc7afc3a19fb3d2841e66222596c14cd72a0f0a7455a019d8eb554f59c0183f9552b75aa96fee8bf935945e079ca283d2bd3534a86f11351f6d6181fbf433e5b01a6d1422145c7a72214d3aacdd5d3af12b2d6bf6438f9f9a64010d8aeed801c87f0859412b236150b86a545f7239be022f4a7ad246b59df87514294cb4a4c7c5a997ee53c66054d9f38ca4e76c1f7af83c30f737ef70f83a45aebe18238ddb95e1998814ca4fc72388f1533147c169d
2677 Result = VERIFY_ERROR
2678
2679 VerifyRecover = RSA-2048
2680 Ctrl = digest:sha1
2681 Input = afec9a0d5330a08f54283bb4a9d4e7e7e70fc1342336c4c766fba713f66970151c6e27413c48c33864ea45a0238787004f338ed3e21b53b0fe9c1151c42c388cbc7cba5a06b706c407a5b48324fbe994dc7afc3a19fb3d2841e66222596c14cd72a0f0a7455a019d8eb554f59c0183f9552b75aa96fee8bf935945e079ca283d2bd3534a86f11351f6d6181fbf433e5b01a6d1422145c7a72214d3aacdd5d3af12b2d6bf6438f9f9a64010d8aeed801c87f0859412b236150b86a545f7239be022f4a7ad246b59df87514294cb4a4c7c5a997ee53c66054d9f38ca4e76c1f7af83c30f737ef70f83a45aebe18238ddb95e1998814ca4fc72388f1533147c169d
2682 Result = KEYOP_ERROR
2683
2684 # embedded digest too short
2685 Verify = RSA-2048
2686 Ctrl = digest:sha1
2687 Input = "0123456789ABCDEF1234"
2688 Output = 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
2689 Result = VERIFY_ERROR
2690
2691 VerifyRecover = RSA-2048
2692 Ctrl = digest:sha1
2693 Input = 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
2694 Result = KEYOP_ERROR
2695
2696 # Garbage after DigestInfo
2697 Verify = RSA-2048
2698 Ctrl = digest:sha1
2699 Input = "0123456789ABCDEF1234"
2700 Output = 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
2701 Result = VERIFY_ERROR
2702
2703 VerifyRecover = RSA-2048
2704 Ctrl = digest:sha1
2705 Input = 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
2706 Result = KEYOP_ERROR
2707
2708 # invalid tag for parameter
2709 Verify = RSA-2048
2710 Ctrl = digest:sha1
2711 Input = "0123456789ABCDEF1234"
2712 Output = 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
2713 Result = VERIFY_ERROR
2714
2715 VerifyRecover = RSA-2048
2716 Ctrl = digest:sha1
2717 Input = 49525db4d44c755e560cba980b1d85ea604b0e077fcadd4ba44072a3487bbddb835016200a7d8739cce2dc3223d9c20cbdd25059ab02277f1f21318efd18e21038ec89aa9d40680987129e8b41ba33bceb86518bdf47268b921cce2037acabca6575d832499538d6f40cdba0d40bd7f4d8ea6ca6e2eec87f294efc971407857f5d7db09f6a7b31e301f571c6d82a5e3d08d2bb3a36e673d28b910f5bec57f0fcc4d968fd7c94d0b9226dec17f5192ad8b42bcab6f26e1bea1fdc3b958199acb00f14ebcb2a352f3afcedd4c09000128a603bbeb9696dea13040445253972d46237a25c7845e3b464e6984c2348ea1f1210a9ff0b00d2d72b50db00c009bb39f9
2718 Result = KEYOP_ERROR
2719
2720 # MD5/SHA-1 combination
2721 Verify = RSA-2048
2722 Ctrl = digest:MD5-SHA1
2723 Input = "0123456789ABCDEF0123456789ABCDEF0123"
2724 Output = 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
2725
2726 VerifyRecover = RSA-2048
2727 Ctrl = digest:MD5-SHA1
2728 Input = 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
2729 Output = "0123456789ABCDEF0123456789ABCDEF0123"
2730
2731 # MD5/SHA-1 combination, digest mismatch
2732 Verify = RSA-2048
2733 Ctrl = digest:MD5-SHA1
2734 Input = "000000000000000000000000000000000000"
2735 Output = 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
2736 Result = VERIFY_ERROR
2737
2738 # MD5/SHA-1 combination, wrong signature digest length
2739 Verify = RSA-2048
2740 Ctrl = digest:MD5-SHA1
2741 Input = "0123456789ABCDEF0123456789ABCDEF0123"
2742 Output = 6c13511f97ffb8137545fce551a43cf2b5b3dbdd5c3ceaaccd4620a6a373f3c38cc523d95bbdd810c852743b981bc4393c6b0cdfb0da5e77a8cc0108b05ff95e0f4dd7a0125b7390af1408dca6ddefac3b05b768de7b0c3df3c74e5f102f62743d67813beee1777036078da4cff5b29f49f01a6df3a2e709c37a83737108517687fe754d9ee908cb36c55e88f67c0b537108707347d16049f5dfac3d400ea367222d36627937a7f822f451c3d2c2dbc9e2202bffd3dc1b22213e17270a6b657619c6f44cbf66b077d548cfc9e1a114f8b853412470f2bf8d828f04d0d9f1aef260d216acb0911329fb5bdc48c2be3b198bf6f96e1c3fb116ad4430140d0640d4
2743 Result = VERIFY_ERROR
2744
2745 VerifyRecover = RSA-2048
2746 Ctrl = digest:MD5-SHA1
2747 Input = 6c13511f97ffb8137545fce551a43cf2b5b3dbdd5c3ceaaccd4620a6a373f3c38cc523d95bbdd810c852743b981bc4393c6b0cdfb0da5e77a8cc0108b05ff95e0f4dd7a0125b7390af1408dca6ddefac3b05b768de7b0c3df3c74e5f102f62743d67813beee1777036078da4cff5b29f49f01a6df3a2e709c37a83737108517687fe754d9ee908cb36c55e88f67c0b537108707347d16049f5dfac3d400ea367222d36627937a7f822f451c3d2c2dbc9e2202bffd3dc1b22213e17270a6b657619c6f44cbf66b077d548cfc9e1a114f8b853412470f2bf8d828f04d0d9f1aef260d216acb0911329fb5bdc48c2be3b198bf6f96e1c3fb116ad4430140d0640d4
2748 Result = KEYOP_ERROR
2749
2750 # MD5/SHA-1 combination, wrong input digest length
2751 Verify = RSA-2048
2752 Ctrl = digest:MD5-SHA1
2753 Input = "0123456789ABCDEF0123456789ABCDEF012"
2754 Output = 7b80e0d4d2a6b7f4b018ce164bc0be21a0604b1b05e91c6204372458b05a0e4dbf0b36b3f80dbf04b278ad1fcf7ff6d982d5ca5d98b13b68240d846d400b8db6675b1a5fcbe2256322c5f691378bc941785326030fa835d240e334e2a4d35b17c1149b59dbb6e6d53b44326ebfc371f754449d36bad3722c1878af1699bb0a00c28e37162f99aba550b7c333228a70c906e3701c519a460a14fac29ff164ca9413efd19b431b31a9ad2988662cdbda9cdcff85f294b4be2cf072caceb1d3f52642edafea2e1d1e495061f18b5b3a130d2242cec830e44d506590e5df69bb974879a35e6bdc1ad00e3e31b362f2f5cdeabd8a0dfddfdb66a7c43993a3e189b80d
2755 Result = VERIFY_ERROR
2756
2757 # MD5/SHA-1 combination, wrong input and signature digest length
2758 Verify = RSA-2048
2759 Ctrl = digest:MD5-SHA1
2760 Input = "0123456789ABCDEF0123456789ABCDEF012"
2761 Output = 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
2762 Result = VERIFY_ERROR
2763
2764 # DigestInfo-wrapped MDC-2 signature
2765 Verify = RSA-2048
2766 Ctrl = digest:MDC2
2767 Input = "0123456789ABCDEF"
2768 Output = 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
2769
2770 VerifyRecover = RSA-2048
2771 Ctrl = digest:MDC2
2772 Input = 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
2773 Output = "0123456789ABCDEF"
2774
2775 # Legacy OCTET STRING MDC-2 signature
2776 Verify = RSA-2048
2777 Ctrl = digest:MDC2
2778 Input = "0123456789ABCDEF"
2779 Output = 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
2780
2781 VerifyRecover = RSA-2048
2782 Ctrl = digest:MDC2
2783 Input = 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
2784 Output = "0123456789ABCDEF"
2785
2786 # Legacy OCTET STRING MDC-2 signature, digest mismatch
2787 Verify = RSA-2048
2788 Ctrl = digest:MDC2
2789 Input = "0000000000000000"
2790 Output = 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
2791 Result = VERIFY_ERROR
2792
2793 # Legacy OCTET STRING MDC-2 signature, wrong input digest length
2794 Verify = RSA-2048
2795 Ctrl = digest:MDC2
2796 Input = "0123456789ABCDE"
2797 Output = 6cde46bbfc6a3b772c3d884640709be9f2fb70fcf199c14eaff7811369ea99733f984a9c48cd372578fa37cedeef24c93286d6d64f438df051e625ab2e125a7d9974a76240873e43efc3acbcbdccc2ee63769cdbf983b334ccb982273315c222b3bbdc3e928ac8a141a7412f1f794cfcabcc069a2ae4975d7bb68bea145d789634c9e0b02d324b5efd599c9bf2b1d32d077aba59aa0ad4a82cbbb90eaa9214e4f57104cf049c4139e2ddecf6edf219cd986f4d79cf25128c58667562c9d22be0291430d6cc7dad977d56e08315fcec133ea95d8db550f89735b4d5f233eaff0c86fce2b99f3f508e920f882c31f3e13f8775a3c8fa585c4f4c69eca89f648b7e
2798 Result = VERIFY_ERROR
2799
2800 # Legacy OCTET STRING MDC-2 signature, wrong signature digest length
2801 Verify = RSA-2048
2802 Ctrl = digest:MDC2
2803 Input = "0123456789ABCDEF"
2804 Output = 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
2805 Result = VERIFY_ERROR
2806
2807 VerifyRecover = RSA-2048
2808 Ctrl = digest:MDC2
2809 Input = 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
2810 Result = KEYOP_ERROR
2811
2812 # Legacy OCTET STRING MDC-2 signature, wrong input and signature digest length
2813 Verify = RSA-2048
2814 Ctrl = digest:MDC2
2815 Input = "0123456789ABCDE"
2816 Output = 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
2817 Result = VERIFY_ERROR
2818
2819 # Verify using public key
2820
2821 Verify = RSA-2048-PUBLIC
2822 Ctrl = digest:SHA1
2823 Input = "0123456789ABCDEF1234"
2824 Output = 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
2825
2826 # RSA decrypt
2827
2828 Decrypt = RSA-2048
2829 Input = 550AF55A2904E7B9762352F8FB7FA235A9CB053AACB2D5FCB8CA48453CB2EE3619746C701ABF2D4CC67003471A187900B05AA812BD25ED05C675DFC8C97A24A7BF49BD6214992CAD766D05A9A2B57B74F26A737E0237B8B76C45F1F226A836D7CFBC75BA999BDBE48DBC09227AA46C88F21DCCBA7840141AD5A5D71FD122E6BD6AC3E564780DFE623FC1CA9B995A6037BF0BBD43B205A84AC5444F34202C05CE9113087176432476576DE6FFFF9A52EA57C08BE3EC2F49676CB8E12F762AC71FA3C321E00AC988910C85FF52F93825666CE0D40FFAA0592078919D4493F46D95CCF76364C6D57760DD0B64805F9AFC76A2365A5575CA301D5103F0EA76CB9A78
2830 Output = "Hello World"
2831
2832 # Corrupted ciphertext
2833 Decrypt = RSA-2048
2834 Input = 550AF55A2904E7B9762352F8FB7FA235A9CB053AACB2D5FCB8CA48453CB2EE3619746C701ABF2D4CC67003471A187900B05AA812BD25ED05C675DFC8C97A24A7BF49BD6214992CAD766D05A9A2B57B74F26A737E0237B8B76C45F1F226A836D7CFBC75BA999BDBE48DBC09227AA46C88F21DCCBA7840141AD5A5D71FD122E6BD6AC3E564780DFE623FC1CA9B995A6037BF0BBD43B205A84AC5444F34202C05CE9113087176432476576DE6FFFF9A52EA57C08BE3EC2F49676CB8E12F762AC71FA3C321E00AC988910C85FF52F93825666CE0D40FFAA0592078919D4493F46D95CCF76364C6D57760DD0B64805F9AFC76A2365A5575CA301D5103F0EA76CB9A79
2835 Output = "Hello World"
2836 Result = KEYOP_ERROR
2837
2838 # OAEP padding
2839 Decrypt = RSA-2048
2840 Ctrl = rsa_padding_mode:oaep
2841 Input = 458708DFBD42A1297CE7A9C86C7087AB80B1754810929B89C5107CA55368587686986FCE94D86CC1595B3FB736223A656EC0F34D18BA1CC5665593610F56C58E26B272D584F3D983A5C91085700755AEBD921FB280BBA3EDA7046EC07B43E7298E52D59EDC92BE4639A8CE08B2F85976ECF6D98CC469EEB9D5D8E2A32EA8A6626EDAFE1038B3DF455668A9F3C77CAD8B92FB872E00058C3D2A7EDE1A1F03FC5622084AE04D9D24F6BF0995C58D35B93B699B9763595E123F2AB0863CC9229EB290E2EDE7715C7A8F39E0B9A3E2E1B56EBB62F1CBFBB5986FB212EBD785B83D01D968B11D1756C7337F70C1F1A63BFF03608E24F3A2FD44E67F832A8701C5D5AF
2842 Output = "Hello World"
2843
2844 # OAEP padding, corrupted ciphertext
2845 Decrypt = RSA-2048
2846 Ctrl = rsa_padding_mode:oaep
2847 Input = 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
2848 Output = "Hello World"
2849 Result = KEYOP_ERROR
2850
2851 # Illegal RSA key derivation
2852 Derive = RSA-2048
2853 Result = KEYOP_INIT_ERROR
2854 Function = EVP_PKEY_derive_init
2855 Reason = operation not supported for this keytype
2856
2857 # Invalid ctrl
2858 Sign = RSA-2048
2859 Ctrl = rsa_mgf1_md:sha1
2860 Result = PKEY_CTRL_INVALID
2861 Function = pkey_rsa_ctrl
2862 Reason = invalid mgf1 md
2863
2864 # EC tests
2865
2866 Verify = P-256
2867 Ctrl = digest:SHA1
2868 Input = "0123456789ABCDEF1234"
2869 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2870
2871 # Digest too long
2872 Verify = P-256
2873 Ctrl = digest:SHA1
2874 Input = "0123456789ABCDEF12345"
2875 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2876 Result = VERIFY_ERROR
2877
2878 # Digest too short
2879 Verify = P-256
2880 Ctrl = digest:SHA1
2881 Input = "0123456789ABCDEF123"
2882 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2883 Result = VERIFY_ERROR
2884
2885 # Digest invalid
2886 Verify = P-256
2887 Ctrl = digest:SHA1
2888 Input = "0123456789ABCDEF1235"
2889 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2890 Result = VERIFY_ERROR
2891
2892 # Invalid signature
2893 Verify = P-256
2894 Ctrl = digest:SHA1
2895 Input = "0123456789ABCDEF1234"
2896 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec7
2897 Result = VERIFY_ERROR
2898
2899 # Garbage after signature
2900 Verify = P-256
2901 Ctrl = digest:SHA1
2902 Input = "0123456789ABCDEF1234"
2903 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec800
2904 Result = VERIFY_ERROR
2905
2906 # BER signature
2907 Verify = P-256
2908 Ctrl = digest:SHA1
2909 Input = "0123456789ABCDEF1234"
2910 Output = 3080022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec80000
2911 Result = VERIFY_ERROR
2912
2913 Verify = P-256-PUBLIC
2914 Ctrl = digest:SHA1
2915 Input = "0123456789ABCDEF1234"
2916 Output = 3045022100b1d1cb1a577035bccdd5a86c6148c2cc7c633cd42b7234139b593076d041e15202201898cdd52b41ca502098184b409cf83a21bc945006746e3b7cea52234e043ec8
2917
2918 # DSA tests
2919 Verify = DSA-1024
2920 Ctrl = digest:SHA1
2921 Input = "0123456789ABCDEF1234"
2922 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2923
2924 Verify = DSA-1024-PUBLIC
2925 Ctrl = digest:SHA1
2926 Input = "0123456789ABCDEF1234"
2927 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2928
2929 # Modified signature
2930 Verify = DSA-1024-PUBLIC
2931 Ctrl = digest:SHA1
2932 Input = "0123456789ABCDEF1234"
2933 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d88
2934 Result = VERIFY_ERROR
2935
2936 # Digest too short
2937 Verify = DSA-1024-PUBLIC
2938 Ctrl = digest:SHA1
2939 Input = "0123456789ABCDEF123"
2940 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2941 Result = VERIFY_ERROR
2942
2943 # Digest too long
2944 Verify = DSA-1024-PUBLIC
2945 Ctrl = digest:SHA1
2946 Input = "0123456789ABCDEF12345"
2947 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2948 Result = VERIFY_ERROR
2949
2950 # Garbage after signature
2951 Verify = DSA-1024-PUBLIC
2952 Input = "0123456789ABCDEF1234"
2953 Output = 302d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d8700
2954 Result = VERIFY_ERROR
2955
2956 # Invalid tag
2957 Verify = DSA-1024-PUBLIC
2958 Ctrl = digest:SHA1
2959 Input = "0123456789ABCDEF1234"
2960 Output = 312d021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d87
2961 Result = VERIFY_ERROR
2962
2963 # BER signature
2964 Verify = DSA-1024-PUBLIC
2965 Ctrl = digest:SHA1
2966 Input = "0123456789ABCDEF1234"
2967 Output = 3080021500942b8c5850e05b59e24495116b1e8559e51b610e0214237aedf272d91f2397f63c9fc8790e1a6cde5d870000
2968 Result = VERIFY_ERROR
2969
2970 # RSA PSS padding tests.
2971
2972 # Zero salt length makes output deterministic
2973 Sign = RSA-2048
2974 Ctrl = rsa_padding_mode:pss
2975 Ctrl = rsa_pss_saltlen:0
2976 Ctrl = digest:sha256
2977 Input="0123456789ABCDEF0123456789ABCDEF"
2978 Output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
2979
2980 # Verify of above signature
2981 Verify = RSA-2048-PUBLIC
2982 Ctrl = rsa_padding_mode:pss
2983 Ctrl = rsa_pss_saltlen:0
2984 Ctrl = digest:sha256
2985 Input="0123456789ABCDEF0123456789ABCDEF"
2986 Output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
2987
2988 # Verify using salt length auto detect
2989 Verify = RSA-2048-PUBLIC
2990 Ctrl = rsa_padding_mode:pss
2991 Ctrl = rsa_pss_saltlen:auto
2992 Input="0123456789ABCDEF0123"
2993 Output = 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
2994
2995 # Digest too short
2996 Verify = RSA-2048-PUBLIC
2997 Ctrl = rsa_padding_mode:pss
2998 Ctrl = rsa_pss_saltlen:0
2999 Ctrl = digest:sha256
3000 Input="0123456789ABCDEF0123456789ABCDE"
3001 Output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
3002 Result = VERIFY_ERROR
3003
3004 # Digest too long
3005 Verify = RSA-2048-PUBLIC
3006 Ctrl = rsa_padding_mode:pss
3007 Ctrl = rsa_pss_saltlen:0
3008 Ctrl = digest:sha256
3009 Input="0123456789ABCDEF0123456789ABCDEF0"
3010 Output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
3011 Result = VERIFY_ERROR
3012
3013 # Wrong salt length
3014 Verify = RSA-2048
3015 Ctrl = rsa_padding_mode:pss
3016 Ctrl = rsa_pss_saltlen:2
3017 Ctrl = digest:sha256
3018 Input="0123456789ABCDEF0123456789ABCDEF"
3019 Output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
3020 Result = VERIFY_ERROR
3021
3022 # Wrong MGF1 digest
3023 Verify = RSA-2048
3024 Ctrl = rsa_padding_mode:pss
3025 Ctrl = rsa_pss_saltlen:0
3026 Ctrl = digest:sha256
3027 Ctrl = rsa_mgf1_md:sha1
3028 Input="0123456789ABCDEF0123456789ABCDEF"
3029 Output=4DE433D5844043EF08D354DA03CB29068780D52706D7D1E4D50EFB7D58C9D547D83A747DDD0635A96B28F854E50145518482CB49E963054621B53C60C498D07C16E9C2789C893CF38D4D86900DE71BDE463BD2761D1271E358C7480A1AC0BAB930DDF39602AD1BC165B5D7436B516B7A7858E8EB7AB1C420EEB482F4D207F0E462B1724959320A084E13848D11D10FB593E66BF680BF6D3F345FC3E9C3DE60ABBAC37E1C6EC80A268C8D9FC49626C679097AA690BC1AA662B95EB8DB70390861AA0898229F9349B4B5FDD030D4928C47084708A933144BE23BD3C6E661B85B2C0EF9ED36D498D5B7320E8194D363D4AD478C059BAE804181965E0B81B663158A
3030 Result = VERIFY_ERROR
3031
3032 # RSA PSS key tests
3033
3034 # PSS only key, no parameter restrictions
3035 PrivateKey = RSA-PSS
3036 -----BEGIN PRIVATE KEY-----
3037 MIIEugIBADALBgkqhkiG9w0BAQoEggSmMIIEogIBAAKCAQEAzQCB6nsq4eoG1Z98
3038 c9n/uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo
3039 092py9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qb
3040 BeQtWtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0e
3041 oKS0gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz
3042 5AZJuYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPe
3043 R+HETwIDAQABAoIBAGApeseZGxZ6BtayR1i4y+IIvrmy2eyXOL2A+QouNQBd184p
3044 LZ4puohb0xb+8fIJE7wKyQ1rCAiyQU2CEERB2GJKM84CM8j3gKSLN1r/AtdnEiKK
3045 cCSE2z+evszPu+4XCduhgoANlJ6eQhbgv/NVg4j4vZDaNzodgnQ+w/vdFCf9FoJa
3046 ZXoxaRLoaVNlEXyi+EXJCUBfysVfiV/BXSA4bCbueMnpkHUCmheKbB5M8MIA6KnP
3047 sn6dFW+G5sKtwisahKHNXKWyeQh115QHyEs1I5XLgcw/7VuwQ7ae3gwHIEVQAlzu
3048 jF9EAXC2Egu0jg90e82PUiEQhQ3wQ8Qo39GHBTECgYEA9vlhtHy8A1067evH3oUK
3049 lWtl7Nuc9gdkBj8VqkhVPFjZcv5mdQVuNd39w3vzufL2Iu4nEzclaEnJvvIXb+j3
3050 w/i7kbo3TdU7rz3sgU0r3sEMH9yIzdFodvJrHt+j8JQZft9NQv8fspcRA7iYyoWc
3051 QnKHCGqEKrQQu2nPLTWva+MCgYEA1H5ySn/0EEiycMJSSkEBh4tzFZu3PT28GHsi
3052 DmNbNTT5biQ6GE2T+GC2v7trccHtmh4fRYWDAjwwHpamksGgi1PQ7JypEBANgEUe
3053 O33GoBusSuzvjfeYhGvCNaCMu6LPTAaATMESGelWCMcU4/FDDUkfrbujKldRoE+X
3054 dFg0yaUCgYAh8kUrubld/QKMkUv3mfHKd+ialdUNPBbThPhFX4vXr56z36PVkdmE
3055 Le8jX3YwqOSMCI/2ZC4QF5RTWpM+HpdvqFCfxyiy2gxKGgjX/PN6uq4f8wAayh3B
3056 u7Bdnf+6oaCff7Hu84I32evMxyK5M4Q23ecRkRJ5jCaAnBqN7EMgYQKBgB91EKpi
3057 wtjeSjxTKCeB9B4C0Oi0Aq54Qy5EnEgRAWGhFAPwLQGICo3Mk4FS15chpHEaYHrE
3058 Rx6/lkgQ+VvkekXmBJnin0yXc8g3c0BPYGY3cowtA1G7A8MmyLtzpyHn+lRA6iFy
3059 u6FGX8ww3LDZ+Jkw6BWqH3+XKahX4A4DON1ZAoGATR8NdW/nfgEJmmUvUKiLe2hd
3060 xb8AmB1dI3b9DG/inNW2OHNEeTBac608FZnTnq47rgNfvW/tB8KN5wWTOHmgbkjm
3061 pgNobtjiVgpfavHywk+vSqlg44IYbxXu3OmiSRrnMGgN1M93i3D6qGgmqzIjR3zJ
3062 E3exmm1aLq6iGXYL7tU=
3063 -----END PRIVATE KEY-----
3064
3065 # PSS public key default parameters
3066 PublicKey = RSA-PSS-DEFAULT
3067 -----BEGIN PUBLIC KEY-----
3068 MIIBIjANBgkqhkiG9w0BAQowAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG1Z98c9n/
3069 uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuFFgdo092p
3070 y9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZT+qbBeQt
3071 WtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0Ky0eoKS0
3072 gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4e8qz5AZJ
3073 uYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51rQPeR+HE
3074 TwIDAQAB
3075 -----END PUBLIC KEY-----
3076 # Key with invalid negative minimum salt length
3077 PublicKey = RSA-PSS-BAD
3078 -----BEGIN PUBLIC KEY-----
3079 MIIBJzASBgkqhkiG9w0BAQowBaIDAgH/A4IBDwAwggEKAoIBAQDNAIHqeyrh6gbV
3080 n3xz2f+5SglhXC5Lp8Y2zvCN01M+wxhVJbAVx2m5mnfWclv5w1Mqm25fZifV+4UW
3081 B2jT3anL01l0URcX3D0wnS/EfuQfl+Mq23+d2GShxHZ6Zm7NcbwarPXnUX9LOFlP
3082 6psF5C1a2pkSAIAT5FMWpNm7jtCGuI0odYusr5ItRqhotIXSOcm66w4rZFknEPQr
3083 LR6gpLSALAvsqzKPimiwBzvbVG/uqYCdKEmRKzkMFTK8finHZY+BdfrkbzQzL/h7
3084 yrPkBkm5hXeGnaDqcYNT8HInVIhpE2SHYNEivmduD8SD3SD/wxvalqMZZsmqLnWt
3085 A95H4cRPAgMBAAE=
3086 -----END PUBLIC KEY-----
3087
3088 # Key with minimum salt length exceeding maximum permitted value
3089 PublicKey = RSA-PSS-BAD2
3090 -----BEGIN PUBLIC KEY-----
3091 MIIBKDATBgkqhkiG9w0BAQowBqIEAgIBAAOCAQ8AMIIBCgKCAQEAzQCB6nsq4eoG
3092 1Z98c9n/uUoJYVwuS6fGNs7wjdNTPsMYVSWwFcdpuZp31nJb+cNTKptuX2Yn1fuF
3093 Fgdo092py9NZdFEXF9w9MJ0vxH7kH5fjKtt/ndhkocR2emZuzXG8Gqz151F/SzhZ
3094 T+qbBeQtWtqZEgCAE+RTFqTZu47QhriNKHWLrK+SLUaoaLSF0jnJuusOK2RZJxD0
3095 Ky0eoKS0gCwL7Ksyj4posAc721Rv7qmAnShJkSs5DBUyvH4px2WPgXX65G80My/4
3096 e8qz5AZJuYV3hp2g6nGDU/ByJ1SIaRNkh2DRIr5nbg/Eg90g/8Mb2pajGWbJqi51
3097 rQPeR+HETwIDAQAB
3098 -----END PUBLIC KEY-----
3099
3100 # Verify using default parameters
3101 Verify = RSA-PSS-DEFAULT
3102 Input="0123456789ABCDEF0123"
3103 Output = 3EFE09D88509027D837BFA5F8471CF7B69E6DF395DD999BB9CA42021F15722D9AC76670507C6BCFB73F64FB2211B611B8F140E76EBDB064BD762FDBA89D019E304A0D6B274E1C2FE1DF50005598A0306AF805416094E2A5BA60BC72BDE38CE061E853ED40F14967A8B9CA4DC739B462F89558F12FDF2D8D19FBEF16AD66FE2DDDA8BEE983ECBD873064244849D8D94B5B33F45E076871A47ED653E73257A2BE2DB3C0878094B0D2B6B682C8007DFD989425FB39A1FEEC9EED5876414601A49176EC344F5E3EDEE81CA2DDD29B7364F4638112CB3A547E2BC170E28CB66BDABE863754BE8AD5BA230567B575266F4B6B4CF81F28310ABF05351CC9E2DB85D00BF
3104
3105 # Verify using default parameters, explicitly setting parameters
3106 Verify = RSA-PSS-DEFAULT
3107 Ctrl = rsa_padding_mode:pss
3108 Ctrl = rsa_pss_saltlen:20
3109 Ctrl = digest:sha1
3110 Input="0123456789ABCDEF0123"
3111 Output = 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
3112
3113 # Verify explicitly setting parameters "digest" salt length
3114 Verify = RSA-PSS-DEFAULT
3115 Ctrl = rsa_padding_mode:pss
3116 Ctrl = rsa_pss_saltlen:digest
3117 Ctrl = digest:sha1
3118 Input="0123456789ABCDEF0123"
3119 Output = 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
3120
3121 # Verify using salt length larger than minimum
3122 Verify = RSA-PSS-DEFAULT
3123 Ctrl = rsa_pss_saltlen:30
3124 Input="0123456789ABCDEF0123"
3125 Output = 6BF7EDC63A0BA184EEEC7F3020FEC8F5EBF38C2B76481881F48BCCE5796E7AB294548BA9AE810457C7723CABD1BDE94CF59CF7C0FC7461B22760C8ED703DD98E97BFDD61FA8D1181C411F6DEE5FF159F4850746D78EDEE385A363DC28E2CB373D5CAD7953F3BD5E639BE345732C03A1BDEA268814DA036EB1891C82D4012F3B903D86636055F87B96FC98806AD1B217685A4D754046A5DE0B0D7870664BE07902153EC85BA457BE7D7F89D7FE0F626D02A9CBBB2BB479DDA1A5CAE75247FB7BF6BFB15C1D3FD9E6B1573CCDBC72011C3B97716058BB11C7EA2E4E56ADAFE1F5DE6A7FD405AC5890100F9C3408EFFB5C73BF73F48177FF743B4B819D0699D507B
3126
3127 # Verify using maximum salt length
3128 Verify = RSA-PSS-DEFAULT
3129 Ctrl = rsa_pss_saltlen:max
3130 Input="0123456789ABCDEF0123"
3131 Output = 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
3132
3133 # Attempt to change salt length below minimum
3134 Verify = RSA-PSS-DEFAULT
3135 Ctrl = rsa_pss_saltlen:0
3136 Result = PKEY_CTRL_ERROR
3137
3138 # Attempt to change padding mode
3139 Verify = RSA-PSS-DEFAULT
3140 Ctrl = rsa_padding_mode:pkcs1
3141 Result = PKEY_CTRL_INVALID
3142
3143 # Attempt to change digest
3144 Verify = RSA-PSS-DEFAULT
3145 Ctrl = digest:sha256
3146 Result = PKEY_CTRL_ERROR
3147
3148 # Illegal decrypt
3149 Decrypt = RSA-PSS
3150 Result = KEYOP_INIT_ERROR
3151 Function = EVP_PKEY_decrypt_init
3152 Reason = operation not supported for this keytype
3153
3154 # Invalid key: rejected when we try to init
3155 Verify = RSA-PSS-BAD
3156 Result = KEYOP_INIT_ERROR
3157 Function = rsa_pss_get_param
3158 Reason = invalid salt length
3159
3160 # Invalid key: rejected when we try to init
3161 Verify = RSA-PSS-BAD2
3162 Result = KEYOP_INIT_ERROR
3163 Function = pkey_pss_init
3164 Reason = invalid salt length
3165
3166 # scrypt tests from draft-josefsson-scrypt-kdf-03
3167 PBE = scrypt
3168 Password = ""
3169 Salt = ""
3170 N = 16
3171 r = 1
3172 p = 1
3173 Key = 77d6576238657b203b19ca42c18a0497f16b4844e3074ae8dfdffa3fede21442fcd0069ded0948f8326a753a0fc81f17e8d3e0fb2e0d3628cf35e20c38d18906
3174
3175 PBE = scrypt
3176 Password = "password"
3177 Salt = "NaCl"
3178 N = 1024
3179 r = 8
3180 p = 16
3181 Key = fdbabe1c9d3472007856e7190d01e9fe7c6ad7cbc8237830e77376634b3731622eaf30d92e22a3886ff109279d9830dac727afb94a83ee6d8360cbdfa2cc0640
3182
3183 PBE = scrypt
3184 Password = "pleaseletmein"
3185 Salt = "SodiumChloride"
3186 N = 16384
3187 r = 8
3188 p = 1
3189 Key = 7023bdcb3afd7348461c06cd81fd38ebfda8fbba904f8e3ea9b543f6545da1f2d5432955613f0fcf62d49705242a9af9e61e85dc0d651e40dfcf017b45575887
3190
3191 # NB: this test requires more than 1GB of memory to run so it will hit the
3192 # scrypt memory limit and return an error. To run this test without error
3193 # uncomment out the "maxmem" line and comment out the "Result"
3194 # line
3195 PBE = scrypt
3196 Password = "pleaseletmein"
3197 Salt = "SodiumChloride"
3198 N = 1048576
3199 r = 8
3200 p = 1
3201 Key = 2101cb9b6a511aaeaddbbe09cf70f881ec568d574a2ffd4dabe5ee9820adaa478e56fd8f4ba5d09ffa1c6d927c40f4c337304049e8a952fbcbf45c6fa77a41a4
3202 #maxmem = 10000000000
3203 Result = SCRYPT_ERROR
3204
3205 # PKCS#12 tests
3206
3207 PBE = pkcs12
3208 id = 1
3209 iter = 1
3210 MD = SHA1
3211 Password = 0073006D006500670000
3212 Salt = 0A58CF64530D823F
3213 Key = 8AAAE6297B6CB04642AB5B077851284EB7128F1A2A7FBCA3
3214
3215 PBE = pkcs12
3216 id = 2
3217 iter = 1
3218 MD = SHA1
3219 Password = 0073006D006500670000
3220 Salt = 0A58CF64530D823F
3221 Key = 79993DFE048D3B76
3222
3223 PBE = pkcs12
3224 id = 3
3225 iter 1
3226 MD = SHA1
3227 Password = 0073006D006500670000
3228 Salt = 3D83C0E4546AC140
3229 Key = 8D967D88F6CAA9D714800AB3D48051D63F73A312
3230
3231 PBE = pkcs12
3232 id = 1
3233 iter = 1000
3234 MD = SHA1
3235 Password = 007100750065006500670000
3236 Salt = 1682C0FC5B3F7EC5
3237 Key = 483DD6E919D7DE2E8E648BA8F862F3FBFBDC2BCB2C02957F
3238
3239 PBE = pkcs12
3240 id = 2
3241 iter = 1000
3242 MD = SHA1
3243 Password = 007100750065006500670000
3244 Salt = 1682C0FC5B3F7EC5
3245 Key = 9D461D1B00355C50
3246
3247 PBE = pkcs12
3248 id = 3
3249 iter = 1000
3250 MD = SHA1
3251 Password = 007100750065006500670000
3252 Salt = 263216FCC2FAB31C
3253 Key = 5EC4C7A80DF652294C3925B6489A7AB857C83476
3254
3255 # PBKDF2 tests from p5_crpt2_test.c
3256 PBE = pbkdf2
3257 Password = "password"
3258 Salt = "salt"
3259 iter = 1
3260 MD = sha1
3261 Key = 0c60c80f961f0e71f3a9b524af6012062fe037a6
3262
3263 PBE = pbkdf2
3264 Password = "password"
3265 Salt = "salt"
3266 iter = 1
3267 MD = sha256
3268 Key = 120fb6cffcf8b32c43e7225256c4f837a86548c92ccc35480805987cb70be17b
3269
3270 PBE = pbkdf2
3271 Password = "password"
3272 Salt = "salt"
3273 iter = 1
3274 MD = sha512
3275 Key = 867f70cf1ade02cff3752599a3a53dc4af34c7a669815ae5d513554e1c8cf252c02d470a285a0501bad999bfe943c08f050235d7d68b1da55e63f73b60a57fce
3276
3277 PBE = pbkdf2
3278 Password = "password"
3279 Salt = "salt"
3280 iter = 2
3281 MD = sha1
3282 Key = ea6c014dc72d6f8ccd1ed92ace1d41f0d8de8957
3283
3284 PBE = pbkdf2
3285 Password = "password"
3286 Salt = "salt"
3287 iter = 2
3288 MD = sha256
3289 Key = ae4d0c95af6b46d32d0adff928f06dd02a303f8ef3c251dfd6e2d85a95474c43
3290
3291 PBE = pbkdf2
3292 Password = "password"
3293 Salt = "salt"
3294 iter = 2
3295 MD = sha512
3296 Key = e1d9c16aa681708a45f5c7c4e215ceb66e011a2e9f0040713f18aefdb866d53cf76cab2868a39b9f7840edce4fef5a82be67335c77a6068e04112754f27ccf4e
3297
3298 PBE = pbkdf2
3299 Password = "password"
3300 Salt = "salt"
3301 iter = 4096
3302 MD = sha1
3303 Key = 4b007901b765489abead49d926f721d065a429c1
3304
3305 PBE = pbkdf2
3306 Password = "password"
3307 Salt = "salt"
3308 iter = 4096
3309 MD = sha256
3310 Key = c5e478d59288c841aa530db6845c4c8d962893a001ce4e11a4963873aa98134a
3311
3312 PBE = pbkdf2
3313 Password = "password"
3314 Salt = "salt"
3315 iter = 4096
3316 MD = sha512
3317 Key = d197b1b33db0143e018b12f3d1d1479e6cdebdcc97c5c0f87f6902e072f457b5143f30602641b3d55cd335988cb36b84376060ecd532e039b742a239434af2d5
3318
3319 PBE = pbkdf2
3320 Password = "passwordPASSWORDpassword"
3321 Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3322 iter = 4096
3323 MD = sha1
3324 Key = 3d2eec4fe41c849b80c8d83662c0e44a8b291a964cf2f07038
3325
3326 PBE = pbkdf2
3327 Password = "passwordPASSWORDpassword"
3328 Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3329 iter = 4096
3330 MD = sha256
3331 Key = 348c89dbcbd32b2f32d814b8116e84cf2b17347ebc1800181c4e2a1fb8dd53e1c635518c7dac47e9
3332
3333 PBE = pbkdf2
3334 Password = "passwordPASSWORDpassword"
3335 Salt = "saltSALTsaltSALTsaltSALTsaltSALTsalt"
3336 iter = 4096
3337 MD = sha512
3338 Key = 8c0511f4c6e597c6ac6315d8f0362e225f3c501495ba23b868c005174dc4ee71115b59f9e60cd9532fa33e0f75aefe30225c583a186cd82bd4daea9724a3d3b8
3339
3340 PBE = pbkdf2
3341 Password = 7061737300776f7264
3342 Salt = 7361006c74
3343 iter = 4096
3344 MD = sha1
3345 Key = 56fa6aa75548099dcc37d7f03425e0c3
3346
3347 PBE = pbkdf2
3348 Password = 7061737300776f7264
3349 Salt = 7361006c74
3350 iter = 4096
3351 MD = sha256
3352 Key = 89b69d0516f829893c696226650a8687
3353
3354 PBE = pbkdf2
3355 Password = 7061737300776f7264
3356 Salt = 7361006c74
3357 iter = 4096
3358 MD = sha512
3359 Key = 9d9e9c4cd21fe4be24d5b8244c759665
3360
3361 # Base64 tests
3362
3363 Encoding = canonical
3364 Input = ""
3365 Output = ""
3366
3367 Encoding = canonical
3368 Input = "h"
3369 Output = "aA==\n"
3370
3371 Encoding = canonical
3372 Input = "hello"
3373 Output = "aGVsbG8=\n"
3374
3375 Encoding = canonical
3376 Input = "hello world!"
3377 Output = "aGVsbG8gd29ybGQh\n"
3378
3379 Encoding = canonical
3380 Input = 00010203040506070809a0b0c0d0e0f000
3381 Output = "AAECAwQFBgcICaCwwNDg8AA=\n"
3382
3383 # Missing padding
3384 Encoding = invalid
3385 Output = "aGVsbG8"
3386
3387 Encoding = invalid
3388 Output = "aGVsbG8\n"
3389
3390 # Tolerate missing newline
3391 Encoding = valid
3392 Input = "hello"
3393 Output = "aGVsbG8="
3394
3395 # Don't tolerate extra trailing '='
3396 Encoding = invalid
3397 Input = "hello"
3398 Output = "aGVsbG8==\n"
3399
3400 Encoding = invalid
3401 Output = "aGVsbG8===\n"
3402
3403 # Don't tolerate data after '='
3404 Encoding = invalid
3405 Output = "aGV=sbG8=\n"
3406
3407 # Newlines are ignored
3408 Encoding = valid
3409 Input = "hello"
3410 Output = "aGV\nsbG8=\n"
3411
3412 Encoding = canonical
3413 Input = "hello"
3414 Output = 614756736247383d0a
3415
3416 # Invalid characters
3417 Encoding = invalid
3418 Output = 614756736247383d0a00
3419
3420 Encoding = invalid
3421 Output = 61475600736247383d0a
3422
3423 Encoding = invalid
3424 Output = 61475601736247383d0a
3425
3426 Encoding = invalid
3427 Output = 61475680736247383d0a
3428
3429 Encoding = invalid
3430 Output = e14756736247383d0a
3431
3432 Encoding = canonical
3433 Input = "OpenSSLOpenSSL\n"
3434 Output = "T3BlblNTTE9wZW5TU0wK\n"
3435
3436 Encoding = valid
3437 Input = "OpenSSLOpenSSL\n"
3438 Output = "T3BlblNTTE9wZW5TU0wK"
3439
3440 # Truncate 1-3 chars
3441 Encoding = invalid
3442 Output = "T3BlblNTTE9wZW5TU0w"
3443
3444 Encoding = invalid
3445 Output = "T3BlblNTTE9wZW5TU0"
3446
3447 Encoding = invalid
3448 Output = "T3BlblNTTE9wZW5TU"
3449
3450 Encoding = invalid
3451 Output = "T3BlblNTTE9wZW5TU0wK===="
3452
3453 Encoding = invalid
3454 Output = "T3BlblNTTE9wZW5TU0wK============================================\n"
3455
3456 Encoding = invalid
3457 Output = "YQ==YQ==YQ==\n"
3458
3459 Encoding = invalid
3460 Output = "A"
3461
3462 Encoding = invalid
3463 Output = "A\n"
3464
3465 Encoding = invalid
3466 Output = "A="
3467
3468 Encoding = invalid
3469 Output = "A==\n"
3470
3471 Encoding = invalid
3472 Output = "A===\n"
3473
3474 Encoding = invalid
3475 Output = "A====\n"
3476
3477 Encoding = valid
3478 Input = "OpenSSLOpenSSL\n"
3479 Output = "T3BlblNTTE9wZW5TU0wK\n\n"
3480
3481 Encoding = valid
3482 Input = "OpenSSLOpenSSL\n"
3483 Output = "T3BlblNTTE\n9wZW5TU0wK"
3484
3485 # CVE 2015-0292
3486 Encoding = invalid
3487 Output = "ZW5jb2RlIG1lCg==================================================================\n"
3488
3489 Encoding = canonical
3490 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3491 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3492
3493 Encoding = valid
3494 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3495 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA\n==\n"
3496
3497 Encoding = valid
3498 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3499 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA=\n=\n"
3500
3501 Encoding = invalid
3502 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA====\n"
3503
3504 # Multiline output without padding
3505 Encoding = canonical
3506 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3507 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4\n"
3508
3509 # Multiline output with padding
3510 Encoding = canonical
3511 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3512 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neHh4eHh4eHh4eHh4eHh4eA==\n"
3513
3514 # Multiline output with line break in the middle of a b64 block is accepted
3515 Encoding = valid
3516 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3517 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh\n4eHh4eHh4eHh4eHh4eHh4eA==\n"
3518
3519 # Long lines are accepted
3520 Encoding = valid
3521 Input = "xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"
3522 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\n"
3523
3524 # Multiline input with data after '='.
3525 Encoding = invalid
3526 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eA==\neHh4eHh4eHh4eHh4eHh4eHh4\n"
3527
3528 Encoding = invalid
3529 Output = "eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4eHh4\neA==eHh4eHh4eHh4eHh4eHh4\n"
3530
3531 # B64_EOF ('-') terminates input and trailing bytes are ignored
3532 Encoding = valid
3533 Input = "OpenSSLOpenSSL\n"
3534 Output = "T3BlblNTTE9wZW5TU0wK\n-abcd"
3535
3536 Encoding = valid
3537 Input = "OpenSSLOpenSSL\n"
3538 Output = "T3BlblNTTE9wZW5TU0wK-abcd"
3539
3540 Cipher = chacha20
3541 Key = 0000000000000000000000000000000000000000000000000000000000000000
3542 IV = 00000000000000000000000000000000
3543 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3544 Ciphertext = 76b8e0ada0f13d90405d6ae55386bd28bdd219b8a08ded1aa836efcc8b770dc7da41597c5157488d7724e03fb8d84a376a43b8f41518a11cc387b669b2ee6586
3545
3546 Cipher = chacha20
3547 Key = 0000000000000000000000000000000000000000000000000000000000000001
3548 IV = 00000000000000000000000000000000
3549 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3550 Ciphertext = 4540f05a9f1fb296d7736e7b208e3c96eb4fe1834688d2604f450952ed432d41bbe2a0b6ea7566d2a5d1e7e20d42af2c53d792b1c43fea817e9ad275ae546963
3551
3552 Cipher = chacha20
3553 Key = 0000000000000000000000000000000000000000000000000000000000000000
3554 IV = 00000000000000000000000000000001
3555 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3556 Ciphertext = de9cba7bf3d69ef5e786dc63973f653a0b49e015adbff7134fcb7df137821031e85a050278a7084527214f73efc7fa5b5277062eb7a0433e445f41e31afab757
3557
3558 Cipher = chacha20
3559 Key = 0000000000000000000000000000000000000000000000000000000000000000
3560 IV = 00000000000000000100000000000000
3561 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3562 Ciphertext = ef3fdfd6c61578fbf5cf35bd3dd33b8009631634d21e42ac33960bd138e50d32111e4caf237ee53ca8ad6426194a88545ddc497a0b466e7d6bbdb0041b2f586b
3563
3564 Cipher = chacha20
3565 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3566 IV = 00000000000000000001020304050607
3567 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3568 Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb
3569
3570 Cipher = chacha20
3571 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3572 IV = 00000000000000000001020304050607
3573 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3574 Ciphertext = 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
3575
3576 Cipher = chacha20
3577 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3578 IV = 00000000000000000001020304050607
3579 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3580 Ciphertext = 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
3581
3582 Cipher = chacha20
3583 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3584 IV = 00000000000000000001020304050607
3585 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3586 Ciphertext = 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
3587
3588 Cipher = chacha20
3589 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3590 IV = 00000000000000000001020304050607
3591 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3592 Ciphertext = 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
3593
3594 Cipher = chacha20
3595 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3596 IV = 00000000000000000001020304050607
3597 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3598 Ciphertext = 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
3599
3600 Cipher = chacha20
3601 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3602 IV = 00000000000000000001020304050607
3603 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3604 Ciphertext = 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
3605
3606 Cipher = chacha20
3607 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3608 IV = 00000000000000000001020304050607
3609 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3610 Ciphertext = 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
3611
3612 Cipher = chacha20
3613 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3614 IV = 00000000000000000001020304050607
3615 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3616 Ciphertext = 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
3617
3618 Cipher = chacha20
3619 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3620 IV = 00000000000000000001020304050607
3621 Plaintext = 000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3622 Ciphertext = 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
3623
3624 Cipher = chacha20
3625 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3626 IV = 00000000000000000001020304050607
3627 Plaintext = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3628 Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb3ab78fab78c94213668bbbd394c5de93b853178addd6b97f9fa1ec3e56c00c9ddff0a44a204241175a4cab0f961ba53ede9bdf960b94f9829b1f3414726429b362c5b538e391520f489b7ed8d20ae3fd49e9e259e44397514d618c96c4846be3c680bdc11c71dcbbe29ccf80d62a0938fa549391e6ea57ecbe2606790ec15d2224ae307c144226b7c4e8c2f97d2a1d67852d29beba110edd445197012062a393a9c92803ad3b4f31d7bc6033ccf7932cfed3f019044d25905916777286f82f9a4cc1ffe430ffd1dcfc27deed327b9f9630d2fa969fb6f0603cd19dd9a9519e673bcfcd9014125291a44669ef7285e74ed3729b677f801c3cdf058c50963168b496043716c7307cd9e0cdd137fccb0f05b47cdbb95c5f54831622c3652a32b2531fe326bcd6e2bbf56a194fa196fbd1a54952110f51c73433865f7664b836685e3664b3d8444aF89A242805E18C975F1146324996FDE17007CF3E6E8F4E764022533EDBFE07D4733E48BB372D75B0EF48EC983EB78532161CC529E5ABB89837DFCCA6261DBB37C7C5E6A87478BF41EE85A518C0F4EFA9BDE828C5A71B8E46597B634AFD204D3C501334239C3414285ED72D3A9169EABBD4DC25D52BB7516D3BA712D75AD8C0AE5D493C19E38A77939E7A058D713E9CCCCA58045F436B434B1C80D365472406E392951987DB6905C80D431DA18451135BE7E82BCAB358CB3971E61405B2FF17980D6E7E67E861E28201C1EE30B441040FD06878D65042C95582A4318207BFC700BE0CE32889AEC2FFE5085E8967910D879FA0E8C0FF85FDC510B9FF2FBF87CFCB29577D68099E04FFA05F752A73D377C70D3A8BC2DA80E6E780EC057182C33AD1DE387252258A1E18E6FAD910327CE7F42FD1E1E0515F9586E2F2EFCB9F472B1DBDBAC354A4162151E9D92C79FB08BB4DDC56F19448C0175A46E2E6C491FEC71419AA43A349BEA768A92C75DE68FD9591E68067F3197094D3FB87ED81785EA075E4B65E3E4C78F81DA9B751C5EFE024152301C48E63245B556C4C67AFF857E5EA15A908D83A1D9704F8E55E7352B20B694BF9970298E6B5AAD33EA2155D105D4E
3629
3630 Cipher = chacha20
3631 Key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
3632 IV = 00000000000000000001020304050607
3633 Plaintext = 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3634 Ciphertext = f798a189f195e66982105ffb640bb7757f579da31602fc93ec01ac56f85ac3c134a4547b733b46413042c9440049176905d3be59ea1c53f15916155c2be8241a38008b9a26bc35941e2444177c8ade6689de95264986d95889fb60e84629c9bd9a5acb1cc118be563eb9b3a4a472f82e09a7e778492b562ef7130e88dfe031c79db9d4f7c7a899151b9a475032b63fc385245fe054e3dd5a97a5f576fe064025d3ce042c566ab2c507b138db853e3d6959660996546cc9c4a6eafdc777c040d70eaf46f76dad3979e5c5360c3317166a1c894c94a371876a94df7628fe4eaaf2ccb27d5aaae0ad7ad0f9d4b6ad3b54098746d4524d38407a6deb3ab78fab78c94213668bbbd394c5de93b853178addd6b97f9fa1ec3e56c00c9ddff0a44a204241175a4cab0f961ba53ede9bdf960b94f9829b1f3414726429b362c5b538e391520f489b7ed8d20ae3fd49e9e259e44397514d618c96c4846be3c680bdc11c71dcbbe29ccf80d62a0938fa549391e6ea57ecbe2606790ec15d2224ae307c144226b7c4e8c2f97d2a1d67852d29beba110edd445197012062a393a9c92803ad3b4f31d7bc6033ccf7932cfed3f019044d25905916777286f82f9a4cc1ffe430ffd1dcfc27deed327b9f9630d2fa969fb6f0603cd19dd9a9519e673bcfcd9014125291a44669ef7285e74ed3729b677f801c3cdf058c50963168b496043716c7307cd9e0cdd137fccb0f05b47cdbb95c5f54831622c3652a32b2531fe326bcd6e2bbf56a194fa196fbd1a54952110f51c73433865f7664b836685e3664b3d8444aF89A242805E18C975F1146324996FDE17007CF3E6E8F4E764022533EDBFE07D4733E48BB372D75B0EF48EC983EB78532161CC529E5ABB89837DFCCA6261DBB37C7C5E6A87478BF41EE85A518C0F4EFA9BDE828C5A71B8E46597B634AFD204D3C501334239C3414285ED72D3A9169EABBD4DC25D52BB7516D3BA712D75AD8C0AE5D493C19E38A77939E7A058D713E9CCCCA58045F436B434B1C80D365472406E392951987DB6905C80D431DA18451135BE7E82BCAB358CB3971E61405B2FF17980D6E7E67E861E28201C1EE30B441040FD06878D65042C95582A4318207BFC700BE0CE32889AEC2FFE5085E8967910D879FA0E8C0FF85FDC510B9FF2FBF87CFCB29577D68099E04FFA05F752A73D377C70D3A8BC2DA80E6E780EC057182C33AD1DE387252258A1E18E6FAD910327CE7F42FD1E1E0515F9586E2F2EFCB9F472B1DBDBAC354A4162151E9D92C79FB08BB4DDC56F19448C0175A46E2E6C491FEC71419AA43A349BEA768A92C75DE68FD9591E68067F3197094D3FB87ED81785EA075E4B65E3E4C78F81DA9B751C5EFE024152301C48E63245B556C4C67AFF857E5EA15A908D83A1D9704F8E55E7352B20B694BF9970298E6B5AAD33EA2155D105D4E637D1E87C40A8E5F4E8C5A16A4B8F3DC27B31721D77A65FD1ED6F86BE25FB95DB29B1988493770A7C60E451FF97DD241A236851FC425691979FE30226559AD95
3635
3636 # RFC7539
3637 Cipher = chacha20-poly1305
3638 Key = 808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9f
3639 IV = 070000004041424344454647
3640 AAD = 50515253c0c1c2c3c4c5c6c7
3641 Tag = 1ae10b594f09e26a7e902ecbd0600691
3642 Plaintext = 4c616469657320616e642047656e746c656d656e206f662074686520636c617373206f66202739393a204966204920636f756c64206f6666657220796f75206f6e6c79206f6e652074697020666f7220746865206675747572652c2073756e73637265656e20776f756c642062652069742e
3643 Ciphertext = d31a8d34648e60db7b86afbc53ef7ec2a4aded51296e08fea9e2b5a736ee62d63dbea45e8ca9671282fafb69da92728b1a71de0a9e060b2905d6a5b67ecd3b3692ddbd7f2d778b8c9803aee328091b58fab324e4fad675945585808b4831d7bc3ff4def08e4b7a9de576d26586cec64b6116
3644
3645 Cipher = chacha20-poly1305
3646 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3647 IV = 000000000102030405060708
3648 AAD = f33388860000000000004e91
3649 Tag = eead9d67890cbb22392336fea1851f38
3650 Plaintext = 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
3651 Ciphertext = 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
3652
3653 Cipher = chacha20-poly1305
3654 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3655 IV = 000000000102030405060708
3656 AAD = f33388860000000000004e91
3657 Tag = eead9d67890cbb22392336fea1851f39
3658 Plaintext = 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
3659 Ciphertext = 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
3660 Operation = DECRYPT
3661 Result = CIPHERFINAL_ERROR
3662
3663 # self-generated vectors
3664 Cipher = chacha20-poly1305
3665 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3666 IV = 000000000102030405060708
3667 AAD = f33388860000000000004e91
3668 Tag = d96119a40cd17f2527306866a3ef0413
3669 Plaintext = 496e7465726e65742d4472616674732061726520647261667420646f63756d656e74732076616c696420666f722061206d6178696d756d206f6620736978206d6f6e74687320616e64206d617920626520757064617465642c207265706c616365642c206f72206f62736f6c65746564206279206f7468657220646f63756d656e747320617420616e792074696d652e20497420697320696e617070726f70726961746520746f2075736520496e7465726e65742d4472616674732061732072
3670 Ciphertext = 64a0861575861af460f062c79be643bd5e805cfd345cf389f108670ac76c8cb24c6cfc18755d43eea09ee94e382d26b0bdb7b73c321b0100d4f03b7f355894cf332f830e710b97ce98c8a84abd0b948114ad176e008d33bd60f982b1ff37c8559797a06ef4f0ef61c186324e2b3506383606907b6a7c02b0f9f6157b53c867e4b9166c767b804d46a59b5216cde7a4e99040c5a40433225ee282a1b0a06c523eaf4534d7f83fa1155b0047718cbc546a0d072b04b3564eea1b422273f548271a
3671
3672 Cipher = chacha20-poly1305
3673 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3674 IV = 000000000102030405060708
3675 AAD = f33388860000000000004e91
3676 Tag = 53aee3189d2b747032378a6186feb43f
3677 Plaintext = 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
3678 Ciphertext = 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
3679
3680 Cipher = chacha20-poly1305
3681 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3682 IV = 000000000102030405060708
3683 AAD = f33388860000000000004e91
3684 Tag = e0723bce23528ce6ccb10ff9627038bf
3685 Plaintext = 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
3686 Ciphertext = 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
3687
3688 # TLS1 PRF tests, from NIST test vectors
3689
3690 KDF=TLS1-PRF
3691 Ctrl.md = md:MD5-SHA1
3692 Ctrl.Secret = hexsecret:bded7fa5c1699c010be23dd06ada3a48349f21e5f86263d512c0c5cc379f0e780ec55d9844b2f1db02a96453513568d0
3693 Ctrl.label = seed:master secret
3694 Ctrl.client_random = hexseed:e5acaf549cd25c22d964c0d930fa4b5261d2507fad84c33715b7b9a864020693
3695 Ctrl.server_random = hexseed:135e4d557fdf3aa6406d82975d5c606a9734c9334b42136e96990fbd5358cdb2
3696 Output = 2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3697
3698 KDF=TLS1-PRF
3699 Ctrl.md = md:MD5-SHA1
3700 Ctrl.Secret = hexsecret:2f6962dfbc744c4b2138bb6b3d33054c5ecc14f24851d9896395a44ab3964efc2090c5bf51a0891209f46c1e1e998f62
3701 Ctrl.label = seed:key expansion
3702 Ctrl.server_random = hexseed:67267e650eb32444119d222a368c191af3082888dc35afe8368e638c828874be
3703 Ctrl.client_random = hexseed:d58a7b1cd4fedaa232159df652ce188f9d997e061b9bf48e83b62990440931f6
3704 Output = 3088825988e77fce68d19f756e18e43eb7fe672433504feaf99b3c503d9091b164f166db301d70c9fc0870b4a94563907bee1a61fb786cb717576890bcc51cb9ead97e01d0a2fea99c953377b195205ff07b369589178796edc963fd80fdbe518a2fc1c35c18ae8d
3705
3706 KDF=TLS1-PRF
3707 Ctrl.md = md:SHA256
3708 Ctrl.Secret = hexsecret:f8938ecc9edebc5030c0c6a441e213cd24e6f770a50dda07876f8d55da062bcadb386b411fd4fe4313a604fce6c17fbc
3709 Ctrl.label = seed:master secret
3710 Ctrl.client_random = hexseed:36c129d01a3200894b9179faac589d9835d58775f9b5ea3587cb8fd0364cae8c
3711 Ctrl.server_random = hexseed:f6c9575ed7ddd73e1f7d16eca115415812a43c2b747daaaae043abfb50053fce
3712 Output = 202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3713
3714 KDF=TLS1-PRF
3715 Ctrl.md = md:SHA256
3716 Ctrl.Secret = hexsecret:202c88c00f84a17a20027079604787461176455539e705be730890602c289a5001e34eeb3a043e5d52a65e66125188bf
3717 Ctrl.label = seed:key expansion
3718 Ctrl.server_random = hexseed:ae6c806f8ad4d80784549dff28a4b58fd837681a51d928c3e30ee5ff14f39868
3719 Ctrl.client_random = hexseed:62e1fd91f23f558a605f28478c58cf72637b89784d959df7e946d3f07bd1b616
3720 Output = d06139889fffac1e3a71865f504aa5d0d2a2e89506c6f2279b670c3e1b74f531016a2530c51a3a0f7e1d6590d0f0566b2f387f8d11fd4f731cdd572d2eae927f6f2f81410b25e6960be68985add6c38445ad9f8c64bf8068bf9a6679485d966f1ad6f68b43495b10a683755ea2b858d70ccac7ec8b053c6bd41ca299d4e51928
3721
3722 # Missing digest.
3723 KDF=TLS1-PRF
3724 Ctrl.Secret = hexsecret:01
3725 Ctrl.Seed = hexseed:02
3726 Output = 03
3727 Result = KDF_DERIVE_ERROR
3728
3729 # Missing secret.
3730 KDF=TLS1-PRF
3731 Ctrl.md = md:MD5-SHA1
3732 Ctrl.Seed = hexseed:02
3733 Output = 03
3734 Result = KDF_DERIVE_ERROR
3735
3736 # HKDF tests, from RFC5869 test vectors
3737
3738 KDF = HKDF
3739 Ctrl.md = md:SHA256
3740 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3741 Ctrl.salt = hexsalt:000102030405060708090a0b0c
3742 Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3743 Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3744
3745 KDF = HKDF
3746 Ctrl.mode = mode:EXTRACT_ONLY
3747 Ctrl.md = md:SHA256
3748 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3749 Ctrl.salt = hexsalt:000102030405060708090a0b0c
3750 Output = 077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3751
3752 KDF = HKDF
3753 Ctrl.mode = mode:EXPAND_ONLY
3754 Ctrl.md = md:SHA256
3755 Ctrl.IKM = hexkey:077709362c2e32df0ddc3f0dc47bba6390b6c73bb50f9c3122ec844ad7c2b3e5
3756 Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3757 Output = 3cb25f25faacd57a90434f64d0362f2a2d2d0a90cf1a5a4c5db02d56ecc4c5bf34007208d5b887185865
3758
3759 KDF = HKDF
3760 Ctrl.md = md:SHA256
3761 Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3762 Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3763 Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3764 Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3765
3766 KDF = HKDF
3767 Ctrl.mode = mode:EXTRACT_ONLY
3768 Ctrl.md = md:SHA256
3769 Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3770 Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3771 Output = 06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3772
3773 KDF = HKDF
3774 Ctrl.mode = mode:EXPAND_ONLY
3775 Ctrl.md = md:SHA256
3776 Ctrl.IKM = hexkey:06a6b88c5853361a06104c9ceb35b45cef760014904671014a193f40c15fc244
3777 Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3778 Output = b11e398dc80327a1c8e7f78c596a49344f012eda2d4efad8a050cc4c19afa97c59045a99cac7827271cb41c65e590e09da3275600c2f09b8367793a9aca3db71cc30c58179ec3e87c14c01d5c1f3434f1d87
3779
3780 KDF = HKDF
3781 Ctrl.md = md:SHA256
3782 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3783 Ctrl.salt = salt:
3784 Ctrl.info = info:
3785 Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3786
3787 KDF = HKDF
3788 Ctrl.mode = mode:EXTRACT_ONLY
3789 Ctrl.md = md:SHA256
3790 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3791 Ctrl.salt = salt:
3792 Ctrl.info = info:
3793 Output = 19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3794
3795 KDF = HKDF
3796 Ctrl.mode = mode:EXPAND_ONLY
3797 Ctrl.md = md:SHA256
3798 Ctrl.IKM = hexkey:19ef24a32c717b167f33a91d6f648bdf96596776afdb6377ac434c1c293ccb04
3799 Ctrl.info = info:
3800 Output = 8da4e775a563c18f715f802a063c5a31b8a11f5c5ee1879ec3454e5f3c738d2d9d201395faa4b61a96c8
3801
3802 KDF = HKDF
3803 Ctrl.md = md:SHA1
3804 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3805 Ctrl.salt = hexsalt:000102030405060708090a0b0c
3806 Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3807 Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3808
3809 KDF = HKDF
3810 Ctrl.mode = mode:EXTRACT_ONLY
3811 Ctrl.md = md:SHA1
3812 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b
3813 Ctrl.salt = hexsalt:000102030405060708090a0b0c
3814 Output = 9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3815
3816 KDF = HKDF
3817 Ctrl.mode = mode:EXPAND_ONLY
3818 Ctrl.md = md:SHA1
3819 Ctrl.IKM = hexkey:9b6c18c432a7bf8f0e71c8eb88f4b30baa2ba243
3820 Ctrl.info = hexinfo:f0f1f2f3f4f5f6f7f8f9
3821 Output = 085a01ea1b10f36933068b56efa5ad81a4f14b822f5b091568a9cdd4f155fda2c22e422478d305f3f896
3822
3823 KDF = HKDF
3824 Ctrl.md = md:SHA1
3825 Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3826 Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3827 Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3828 Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3829
3830 KDF = HKDF
3831 Ctrl.mode = mode:EXTRACT_ONLY
3832 Ctrl.md = md:SHA1
3833 Ctrl.IKM = hexkey:000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f202122232425262728292a2b2c2d2e2f303132333435363738393a3b3c3d3e3f404142434445464748494a4b4c4d4e4f
3834 Ctrl.salt = hexsalt:606162636465666768696a6b6c6d6e6f707172737475767778797a7b7c7d7e7f808182838485868788898a8b8c8d8e8f909192939495969798999a9b9c9d9e9fa0a1a2a3a4a5a6a7a8a9aaabacadaeaf
3835 Output = 8adae09a2a307059478d309b26c4115a224cfaf6
3836
3837 KDF = HKDF
3838 Ctrl.mode = mode:EXPAND_ONLY
3839 Ctrl.md = md:SHA1
3840 Ctrl.IKM = hexkey:8adae09a2a307059478d309b26c4115a224cfaf6
3841 Ctrl.info = hexinfo:b0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedfe0e1e2e3e4e5e6e7e8e9eaebecedeeeff0f1f2f3f4f5f6f7f8f9fafbfcfdfeff
3842 Output = 0bd770a74d1160f7c9f12cd5912a06ebff6adcae899d92191fe4305673ba2ffe8fa3f1a4e5ad79f3f334b3b202b2173c486ea37ce3d397ed034c7f9dfeb15c5e927336d0441f4c4300e2cff0d0900b52d3b4
3843
3844 KDF = HKDF
3845 Ctrl.md = md:SHA1
3846 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3847 Ctrl.salt = salt:
3848 Ctrl.info = info:
3849 Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3850
3851 KDF = HKDF
3852 Ctrl.mode = mode:EXTRACT_ONLY
3853 Ctrl.md = md:SHA1
3854 Ctrl.IKM = hexkey:0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b0b
3855 Ctrl.salt = salt:
3856 Output = da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
3857
3858 KDF = HKDF
3859 Ctrl.mode = mode:EXPAND_ONLY
3860 Ctrl.md = md:SHA1
3861 Ctrl.IKM = hexkey:da8c8a73c7fa77288ec6f5e7c297786aa0d32d01
3862 Ctrl.info = info:
3863 Output = 0ac1af7002b3d761d1e55298da9d0506b9ae52057220a306e07b6b87e8df21d0ea00033de03984d34918
3864
3865 KDF = HKDF
3866 Ctrl.md = md:SHA1
3867 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3868 Ctrl.salt = salt:
3869 Ctrl.info = info:
3870 Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3871
3872 KDF = HKDF
3873 Ctrl.mode = mode:EXTRACT_ONLY
3874 Ctrl.md = md:SHA1
3875 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3876 Ctrl.salt = salt:
3877 Output = 2adccada18779e7c2077ad2eb19d3f3e731385dd
3878
3879 KDF = HKDF
3880 Ctrl.mode = mode:EXPAND_ONLY
3881 Ctrl.md = md:SHA1
3882 Ctrl.IKM = hexkey:2adccada18779e7c2077ad2eb19d3f3e731385dd
3883 Ctrl.info = info:
3884 Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3885
3886 KDF = HKDF
3887 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3888 Ctrl.salt = salt:
3889 Ctrl.info = info:
3890 Output = 00
3891 Result = KDF_DERIVE_ERROR
3892
3893 KDF = HKDF
3894 Ctrl.md = md:SHA1
3895 Ctrl.salt = salt:
3896 Ctrl.info = info:
3897 Output = 00
3898 Result = KDF_DERIVE_ERROR
3899
3900 KDF = HKDF
3901 Ctrl.md = md:SHA1
3902 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3903 Ctrl.info = info:
3904 Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3905
3906 KDF = HKDF
3907 Ctrl.md = md:SHA1
3908 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3909 Ctrl.salt = salt:
3910 Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3911
3912 KDF = HKDF
3913 Ctrl.mode = mode:EXTRACT_AND_EXPAND
3914 Ctrl.md = md:SHA1
3915 Ctrl.IKM = hexkey:0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
3916 Ctrl.salt = salt:
3917 Output = 2c91117204d745f3500d636a62f64f0ab3bae548aa53d423b0d1f27ebba6f5e5673a081d70cce7acfc48
3918
3919 # ECDH tests
3920
3921 Derive=P-256
3922 PeerKey=P-256-Peer-PUBLIC
3923 SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
3924
3925 Derive=P-256-Peer
3926 PeerKey=P-256-PUBLIC
3927 SharedSecret=E3CC07DFBDDE76A1139811DB9FF5FAF9D17EF39944F1E77D1F6A208524BF7B1B
3928
3929 # X25519 test vectors from RFC7748 6.1
3930 PrivateKey=Alice-25519
3931 -----BEGIN PRIVATE KEY-----
3932 MC4CAQAwBQYDK2VuBCIEIHcHbQpzGKV9PBbBclGyZkXfTC+H68CZKrF3+6UduSwq
3933 -----END PRIVATE KEY-----
3934 PublicKey=Alice-25519-PUBLIC
3935 -----BEGIN PUBLIC KEY-----
3936 MCowBQYDK2VuAyEAhSDwCYkwp1R0i33ctD73Wg2/Og0mOBr066SpjqqbTmo=
3937 -----END PUBLIC KEY-----
3938 PrivateKey=Bob-25519
3939 -----BEGIN PRIVATE KEY-----
3940 MC4CAQAwBQYDK2VuBCIEIF2rCH5iSopLeeF/i4OADuZvO7EpJhi2/Rwviyf/iODr
3941 -----END PRIVATE KEY-----
3942 PublicKey=Bob-25519-PUBLIC
3943 -----BEGIN PUBLIC KEY-----
3944 MCowBQYDK2VuAyEA3p7bfXt9wbTTW2HC7OQ1Nz+DQ8hbeGdNrfx+FG+IK08=
3945 -----END PUBLIC KEY-----
3946
3947 Derive=Alice-25519
3948 PeerKey=Bob-25519-PUBLIC
3949 SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
3950
3951 Derive=Bob-25519
3952 PeerKey=Alice-25519-PUBLIC
3953 SharedSecret=4A5D9D5BA4CE2DE1728E3BF480350F25E07E21C947D19E3376F09B3C1E161742
3954
3955 # Illegal sign/verify operations with X25519 key
3956
3957 Sign=Alice-25519
3958 Result = KEYOP_INIT_ERROR
3959 Function = EVP_PKEY_sign_init
3960 Reason = operation not supported for this keytype
3961
3962 Verify=Alice-25519
3963 Result = KEYOP_INIT_ERROR
3964 Function = EVP_PKEY_verify_init
3965 Reason = operation not supported for this keytype
3966
3967 # Poly1305 Tests From RFC 7539
3968
3969 MAC = Poly1305
3970 Key = 0000000000000000000000000000000000000000000000000000000000000000
3971 Input = 00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
3972 Output = 00000000000000000000000000000000
3973
3974 MAC = Poly1305
3975 Key = 0000000000000000000000000000000036e5f6b5c5e06070f0efca96227a863e
3976 Input = 416e79207375626d697373696f6e20746f20746865204945544620696e74656e6465642062792074686520436f6e7472696275746f7220666f72207075626c69636174696f6e20617320616c6c206f722070617274206f6620616e204945544620496e7465726e65742d4472616674206f722052464320616e6420616e792073746174656d656e74206d6164652077697468696e2074686520636f6e74657874206f6620616e204945544620616374697669747920697320636f6e7369646572656420616e20224945544620436f6e747269627574696f6e222e20537563682073746174656d656e747320696e636c756465206f72616c2073746174656d656e747320696e20494554462073657373696f6e732c2061732077656c6c206173207772697474656e20616e6420656c656374726f6e696320636f6d6d756e69636174696f6e73206d61646520617420616e792074696d65206f7220706c6163652c207768696368206172652061646472657373656420746f
3977 Output = 36e5f6b5c5e06070f0efca96227a863e
3978
3979 MAC = Poly1305
3980 Key = 36e5f6b5c5e06070f0efca96227a863e00000000000000000000000000000000
3981 Input = 416e79207375626d697373696f6e20746f20746865204945544620696e74656e6465642062792074686520436f6e7472696275746f7220666f72207075626c69636174696f6e20617320616c6c206f722070617274206f6620616e204945544620496e7465726e65742d4472616674206f722052464320616e6420616e792073746174656d656e74206d6164652077697468696e2074686520636f6e74657874206f6620616e204945544620616374697669747920697320636f6e7369646572656420616e20224945544620436f6e747269627574696f6e222e20537563682073746174656d656e747320696e636c756465206f72616c2073746174656d656e747320696e20494554462073657373696f6e732c2061732077656c6c206173207772697474656e20616e6420656c656374726f6e696320636f6d6d756e69636174696f6e73206d61646520617420616e792074696d65206f7220706c6163652c207768696368206172652061646472657373656420746f
3982 Output = f3477e7cd95417af89a6b8794c310cf0
3983
3984 MAC = Poly1305
3985 Key = 1c9240a5eb55d38af333888604f6b5f0473917c1402b80099dca5cbc207075c0
3986 Input = 2754776173206272696c6c69672c20616e642074686520736c6974687920746f7665730a446964206779726520616e642067696d626c6520696e2074686520776162653a0a416c6c206d696d737920776572652074686520626f726f676f7665732c0a416e6420746865206d6f6d65207261746873206f757467726162652e
3987 Output = 4541669a7eaaee61e708dc7cbcc5eb62
3988
3989 # If one uses 130-bit partial reduction, does the code handle the case where partially reduced final result is not fully reduced?
3990 MAC = Poly1305
3991 Key = 0200000000000000000000000000000000000000000000000000000000000000
3992 Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
3993 Output = 03000000000000000000000000000000
3994
3995 # What happens if addition of s overflows modulo 2^128?
3996 MAC = Poly1305
3997 Key = 02000000000000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
3998 Input = 02000000000000000000000000000000
3999 Output = 03000000000000000000000000000000
4000
4001 # What happens if data limb is all ones and there is carry from lower limb?
4002 MAC = Poly1305
4003 Key = 0100000000000000000000000000000000000000000000000000000000000000
4004 Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF0FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF11000000000000000000000000000000
4005 Output = 05000000000000000000000000000000
4006
4007 # What happens if final result from polynomial part is exactly 2^130-5?
4008 MAC = Poly1305
4009 Key = 0100000000000000000000000000000000000000000000000000000000000000
4010 Input = FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFBFEFEFEFEFEFEFEFEFEFEFEFEFEFEFE01010101010101010101010101010101
4011 Output = 00000000000000000000000000000000
4012
4013 # What happens if final result from polynomial part is exactly 2^130-6?
4014 MAC = Poly1305
4015 Key = 0200000000000000000000000000000000000000000000000000000000000000
4016 Input = FDFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4017 Output = FAFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
4018
4019 # Taken from poly1305_internal_test.c
4020 # More RFC7539
4021
4022 MAC = Poly1305
4023 Input = 43727970746f6772617068696320466f72756d2052657365617263682047726f7570
4024 Key = 85d6be7857556d337f4452fe42d506a80103808afb0db2fd4abff6af4149f51b
4025 Output = a8061dc1305136c6c22b8baf0c0127a9
4026
4027 # test vectors from "The Poly1305-AES message-authentication code"
4028
4029 MAC = Poly1305
4030 Input = f3f6
4031 Key = 851fc40c3467ac0be05cc20404f3f700580b3b0f9447bb1e69d095b5928b6dbc
4032 Output = f4c633c3044fc145f84f335cb81953de
4033
4034 # No input?
4035 # MAC = Poly1305
4036 # Input =
4037 # Key = a0f3080000f46400d0c7e9076c834403dd3fab2251f11ac759f0887129cc2ee7
4038 # Output = dd3fab2251f11ac759f0887129cc2ee7
4039
4040 MAC = Poly1305
4041 Input = 663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4042 Key = 48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef
4043 Output = 0ee1c16bb73f0f4fd19881753c01cdbe
4044
4045 MAC = Poly1305
4046 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9
4047 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4048 Output = 5154ad0d2cb26e01274fc51148491f1b
4049
4050 # self-generated vectors exercise "significant" length such that* are handled by different code paths
4051
4052 MAC = Poly1305
4053 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af
4054 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4055 Output = 812059a5da198637cac7c4a631bee466
4056
4057 MAC = Poly1305
4058 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67
4059 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4060 Output = 5b88d7f6228b11e2e28579a5c0c1f761
4061
4062 MAC = Poly1305
4063 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4064 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4065 Output = bbb613b2b6d753ba07395b916aaece15
4066
4067 MAC = Poly1305
4068 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24
4069 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4070 Output = c794d7057d1778c4bbee0a39b3d97342
4071
4072 MAC = Poly1305
4073 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136
4074 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4075 Output = ffbcb9b371423152d7fca5ad042fbaa9
4076
4077 MAC = Poly1305
4078 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee466
4079 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4080 Output = 069ed6b8ef0f207b3e243bb1019fe632
4081
4082 MAC = Poly1305
4083 Input = ab0812724a7f1e342742cbed374d94d136c6b8795d45b3819830f2c04491faf0990c62e48b8018b2c3e4a0fa3134cb67fa83e158c994d961c4cb21095c1bf9af48443d0bb0d21109c89a100b5ce2c20883149c69b561dd88298a1798b10716ef663cea190ffb83d89593f3f476b6bc24d7e679107ea26adb8caf6652d0656136812059a5da198637cac7c4a631bee4665b88d7f6228b11e2e28579a5c0c1f761
4084 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4085 Output = cca339d9a45fa2368c2c68b3a4179133
4086
4087 MAC = Poly1305
4088 Input = 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
4089 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4090 Output = 53f6e828a2f0fe0ee815bf0bd5841a34
4091
4092 MAC = Poly1305
4093 Input = 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
4094 Key = 12976a08c4426d0ce8a82407c4f4820780f8c20aa71202d1e29179cbcb555a57
4095 Output = b846d44e9bbd53cedffbfbb6b7fa4933
4096
4097 # 4th power of the key spills to 131th bit in SIMD key setup
4098
4099 MAC = Poly1305
4100 Input = ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
4101 Key = ad628107e8351d0f2c231a05dc4a410600000000000000000000000000000000
4102 Output = 07145a4c02fe5fa32036de68fabe9066
4103
4104 # poly1305_ieee754.c failed this in final stage
4105
4106 MAC = Poly1305
4107 Input = 842364e156336c0998b933a6237726180d9e3fdcbde4cd5d17080fc3beb49614d7122c037463ff104d73f19c12704628d417c4c54a3fe30d3c3d7714382d43b0382a50a5dee54be844b076e8df88201a1cd43b90eb21643fa96f39b518aa8340c942ff3c31baf7c9bdbf0f31ae3fa096bf8c63030609829fe72e179824890bc8e08c315c1cce2a83144dbbff09f74e3efc770b54d0984a8f19b14719e63635641d6b1eedf63efbf080e1783d32445412114c20de0b837a0dfa33d6b82825fff44c9a70ea54ce47f07df698e6b03323b53079364a5fc3e9dd034392bdde86dccdda94321c5e44060489336cb65bf3989c36f7282c2f5d2b882c171e74
4108 Key = 95d5c005503e510d8cd0aa072c4a4d066eabc52d11653df47fbf63ab198bcc26
4109 Output = f248312e578d9d58f8b7bb4d19105431
4110
4111 # AVX2 in poly1305-x86.pl failed this with 176+32 split
4112
4113 MAC = Poly1305
4114 Input = 248ac31085b6c2adaaa38259a0d7192c5c35d1bb4ef39ad94c38d1c82479e2dd2159a077024b0589bc8a20101b506f0a1ad0bbab76e83a83f1b94be6beae74e874cab692c5963a75436b776121ec9f62399a3e66b2d22707dae81933b6277f3c8516bcbe26dbbd86f373103d7cf4cad1888c952118fbfbd0d7b4bedc4ae4936aff91157e7aa47c54442ea78d6ac251d324a0fbe49d89cc3521b66d16e9c66a3709894e4eb0a4eedc4ae19468e66b81f271351b1d921ea551047abcc6b87a901fde7db79fa1818c11336dbc07244a40eb
4115 Key = 000102030405060708090a0b0c0d0e0f00000000000000000000000000000000
4116 Output = bc939bc5281480fa99c6d68c258ec42f
4117
4118 # test vectors from Google
4119
4120 # No input?
4121 # MAC = Poly1305
4122 # Input =
4123 # Key = c8afaac331ee372cd6082de134943b174710130e9f6fea8d72293850a667d86c
4124 # Output = 4710130e9f6fea8d72293850a667d86c
4125
4126 MAC = Poly1305
4127 Input = 48656c6c6f20776f726c6421
4128 Key = 746869732069732033322d62797465206b657920666f7220506f6c7931333035
4129 Output = a6f745008f81c916a20dcc74eef2b2f0
4130
4131 MAC = Poly1305
4132 Input = 0000000000000000000000000000000000000000000000000000000000000000
4133 Key = 746869732069732033322d62797465206b657920666f7220506f6c7931333035
4134 Output = 49ec78090e481ec6c26b33b91ccc0307
4135
4136 MAC = Poly1305
4137 Input = 89dab80b7717c1db5db437860a3f70218e93e1b8f461fb677f16f35f6f87e2a91c99bc3a47ace47640cc95c345be5ecca5a3523c35cc01893af0b64a620334270372ec12482d1b1e363561698a578b359803495bb4e2ef1930b17a5190b580f141300df30adbeca28f6427a8bc1a999fd51c554a017d095d8c3e3127daf9f595
4138 Key = 2d773be37adb1e4d683bf0075e79c4ee037918535a7f99ccb7040fb5f5f43aea
4139 Output = c85d15ed44c378d6b00e23064c7bcd51
4140
4141 MAC = Poly1305
4142 Input = 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
4143 Key = 99e5822dd4173c995e3dae0ddefb97743fde3b080134b39f76e9bf8d0e88d546
4144 Output = 2637408fe13086ea73f971e3425e2820
4145
4146 # test vectors from Hanno Bock
4147
4148 MAC = Poly1305
4149 Input = cccccccccccccccccccccccccccccccccccccccccccccccccc80ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccceccccccccccccccccccccccccccccccccccccc5cccccccccccccccccccccccccccccccccccccccccce3ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccaccccccccccccccccccccce6cccccccccc000000afccccccccccccccccccfffffff5000000000000000000000000000000000000000000000000000000ffffffe70000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000719205a8521dfc
4150 Key = 7f1b02640000000000000000000000000000000000000000cccccccccccccccc
4151 Output = 8559b876eceed66eb37798c0457baff9
4152
4153 MAC = Poly1305
4154 Input = aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa000000000000000000800264
4155 Key = e00016000000000000000000000000000000aaaaaaaaaaaaaaaaaaaaaaaaaaaa
4156 Output = 00bd1258978e205444c9aaaa82006fed
4157
4158 MAC = Poly1305
4159 Input = 02fc
4160 Key = 0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c0c
4161 Output = 06120c0c0c0c0c0c0c0c0c0c0c0c0c0c
4162
4163 MAC = Poly1305
4164 Input = 7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7a7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b5c7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b6e7b007b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7a7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b5c7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b7b6e7b001300000000b300000000000000000000000000000000000000000000f20000000000000000000000000000000000002000efff0009000000000000000000000000100000000009000000640000000000000000000000001300000000b300000000000000000000000000000000000000000000f20000000000000000000000000000000000002000efff00090000000000000000007a000010000000000900000064000000000000000000000000000000000000000000000000fc
4165 Key = 00ff000000000000000000000000000000000000001e00000000000000007b7b
4166 Output = 33205bbf9e9f8f7212ab9e2ab9b7e4a5
4167
4168 MAC = Poly1305
4169 Input = 77777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777777ffffffe9e9acacacacacacacacacacac0000acacec0100acacac2caca2acacacacacacacacacacac64f2
4170 Key = 0000007f0000007f01000020000000000000cf77777777777777777777777777
4171 Output = 02ee7c8c546ddeb1a467e4c3981158b9
4172
4173 # test vectors from Andrew Moon - nacl
4174
4175 MAC = Poly1305
4176 Input = 8e993b9f48681273c29650ba32fc76ce48332ea7164d96a4476fb8c531a1186ac0dfc17c98dce87b4da7f011ec48c97271d2c20f9b928fe2270d6fb863d51738b48eeee314a7cc8ab932164548e526ae90224368517acfeabd6bb3732bc0e9da99832b61ca01b6de56244a9e88d5f9b37973f622a43d14a6599b1f654cb45a74e355a5
4177 Key = eea6a7251c1e72916d11c2cb214d3c252539121d8e234e652d651fa4c8cff880
4178 Output = f3ffc7703f9400e52a7dfb4b3d3305d9
4179
4180 # wrap 2^130-5
4181 MAC = Poly1305
4182 Input = ffffffffffffffffffffffffffffffff
4183 Key = 0200000000000000000000000000000000000000000000000000000000000000
4184 Output = 03000000000000000000000000000000
4185
4186 # wrap 2^128
4187 MAC = Poly1305
4188 Input = 02000000000000000000000000000000
4189 Key = 02000000000000000000000000000000ffffffffffffffffffffffffffffffff
4190 Output = 03000000000000000000000000000000
4191
4192 # limb carry
4193 MAC = Poly1305
4194 Input = fffffffffffffffffffffffffffffffff0ffffffffffffffffffffffffffffff11000000000000000000000000000000
4195 Key = 0100000000000000000000000000000000000000000000000000000000000000
4196 Output = 05000000000000000000000000000000
4197
4198 # 2^130-5
4199 MAC = Poly1305
4200 Input = fffffffffffffffffffffffffffffffffbfefefefefefefefefefefefefefefe01010101010101010101010101010101
4201 Key = 0100000000000000000000000000000000000000000000000000000000000000
4202 Output = 00000000000000000000000000000000
4203
4204 # 2^130-6
4205 MAC = Poly1305
4206 Input = fdffffffffffffffffffffffffffffff
4207 Key = 0200000000000000000000000000000000000000000000000000000000000000
4208 Output = faffffffffffffffffffffffffffffff
4209
4210 # 5*H+L reduction intermediate
4211 MAC = Poly1305
4212 Input = e33594d7505e43b900000000000000003394d7505e4379cd01000000000000000000000000000000000000000000000001000000000000000000000000000000
4213 Key = 0100000000000000040000000000000000000000000000000000000000000000
4214 Output = 14000000000000005500000000000000
4215
4216 # 5*H+L reduction final
4217 MAC = Poly1305
4218 Input = e33594d7505e43b900000000000000003394d7505e4379cd010000000000000000000000000000000000000000000000
4219 Key = 0100000000000000040000000000000000000000000000000000000000000000
4220 Output = 13000000000000000000000000000000