195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley/* ====================================================================
295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * Copyright (c) 2008 The OpenSSL Project.  All rights reserved.
395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * Redistribution and use in source and binary forms, with or without
595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * modification, are permitted provided that the following conditions
695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * are met:
795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 1. Redistributions of source code must retain the above copyright
995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    notice, this list of conditions and the following disclaimer.
1095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
1195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 2. Redistributions in binary form must reproduce the above copyright
1295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    notice, this list of conditions and the following disclaimer in
1395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    the documentation and/or other materials provided with the
1495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    distribution.
1595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
1695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 3. All advertising materials mentioning features or use of this
1795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    software must display the following acknowledgment:
1895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    "This product includes software developed by the OpenSSL Project
1995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
2095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
2195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
2295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    endorse or promote products derived from this software without
2395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    prior written permission. For written permission, please contact
2495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    openssl-core@openssl.org.
2595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
2695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 5. Products derived from this software may not be called "OpenSSL"
2795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    nor may "OpenSSL" appear in their names without prior written
2895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    permission of the OpenSSL Project.
2995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
3095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * 6. Redistributions of any form whatsoever must retain the following
3195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    acknowledgment:
3295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    "This product includes software developed by the OpenSSL Project
3395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
3495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley *
3595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
3695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
3795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
3895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
3995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
4095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
4195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
4295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
4395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
4495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
4595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
4695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * OF THE POSSIBILITY OF SUCH DAMAGE.
4795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley * ==================================================================== */
4895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
4995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley#include <stdio.h>
5095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
5195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley#include <openssl/aes.h>
52a70c75cfc0ca32a43985e3f24d737ca9cafcb910David Benjamin#include <openssl/crypto.h>
5395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley#include <openssl/mem.h>
5495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley#include <openssl/modes.h>
5595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
5695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley#include "internal.h"
5795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
5895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
5995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleystruct test_case {
6095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *key;
6195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *plaintext;
6295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *additional_data;
6395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *nonce;
6495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *ciphertext;
6595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const char *tag;
6695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley};
6795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
6895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleystatic const struct test_case test_cases[] = {
6995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
7095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
7195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
7295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
7395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
7495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
7595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "58e2fccefa7e3061367f1d57a4e7455a",
7695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
7795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
7895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
7995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
8095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
8195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
8295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "0388dace60b6a392f328c2b971b2fe78",
8395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "ab6e47d42cec13bdf53a67b21257bddf",
8495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
8595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
8695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308",
8795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255",
8895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
8995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
9095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091473f5985",
9195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "4d5c2af327cd64a62cf35abd2ba6fab4",
9295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
9395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
9495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308",
9595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
9695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
9795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
9895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "42831ec2217774244b7221b784d0d49ce3aa212f2c02a4e035c17e2329aca12e21d514b25466931c7d8f6a5aac84aa051ba30b396a0aac973d58e091",
9995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "5bc94fbc3221a5db94fae95ae7121a47",
10095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
10195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
10295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308",
10395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
10495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
10595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbad",
10695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "61353b4c2806934a777ff51fa22a4755699b2a714fcdc6f83766e5f97b6c742373806900e49f24b22b097544d4896b424989b5e1ebac0f07c23f4598",
10795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "3612d2e79e3b0785561be14aaca2fccb",
10895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
10995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
11095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308",
11195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
11295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
11395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b",
11495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "8ce24998625615b603a033aca13fb894be9112a5c3a211a8ba262a3cca7e2ca701e4a9a4fba43c90ccdcb281d48c7c6fd62875d2aca417034c34aee5",
11595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "619cc5aefffe0bfa462af43c1699d050",
11695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
11795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
11895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000000000000000000000000000",
11995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
12095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
12195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
12295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
12395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cd33b28ac773f74ba00ed1f312572435",
12495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
12595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
12695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000000000000000000000000000",
12795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
12895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
12995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
13095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "98e7247c07f0fe411c267e4384b0f600",
13195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "2ff58d80033927ab8ef4d4587514f0fb",
13295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
13395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
13495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c",
13595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255",
13695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
13795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
13895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710acade256",
13995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "9924a7c8587336bfb118024db8674a14",
14095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
14195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
14295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c",
14395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
14495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
14595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
14695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "3980ca0b3c00e841eb06fac4872a2757859e1ceaa6efd984628593b40ca1e19c7d773d00c144c525ac619d18c84a3f4718e2448b2fe324d9ccda2710",
14795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "2519498e80f1478f37ba55bd6d27618c",
14895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
14995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
15095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c",
15195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
15295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
15395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbad",
15495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "0f10f599ae14a154ed24b36e25324db8c566632ef2bbb34f8347280fc4507057fddc29df9a471f75c66541d4d4dad1c9e93a19a58e8b473fa0f062f7",
15595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "65dcc57fcf623a24094fcca40d3533f8",
15695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
15795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
15895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c",
15995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
16095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
16195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbad",
16295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "0f10f599ae14a154ed24b36e25324db8c566632ef2bbb34f8347280fc4507057fddc29df9a471f75c66541d4d4dad1c9e93a19a58e8b473fa0f062f7",
16395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "65dcc57fcf623a24094fcca40d3533f8",
16495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
16595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
16695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c",
16795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
16895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
16995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b",
17095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d27e88681ce3243c4830165a8fdcf9ff1de9a1d8e6b447ef6ef7b79828666e4581e79012af34ddd9e2f037589b292db3e67c036745fa22e7e9b7373b",
17195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "dcf566ff291c25bbb8568fc3d376a6d9",
17295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
17395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
17495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "0000000000000000000000000000000000000000000000000000000000000000",
17595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
17695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
17795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
17895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
17995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "530f8afbc74536b9a963b4f1c4cb738b",
18095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
18195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
18295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "0000000000000000000000000000000000000000000000000000000000000000",
18395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
18495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
18595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
18695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cea7403d4d606b6e074ec5d3baf39d18",
18795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d0d1c8a799996bf0265b98b5d48ab919",
18895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
18995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
19095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308",
19195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255",
19295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
19395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
19495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad",
19595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "b094dac5d93471bdec1a502270e3cc6c",
19695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
19795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
19895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308",
19995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
20095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
20195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbaddecaf888",
20295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662",
20395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "76fc6ece0f4e1768cddf8853bb2d551b",
20495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
20595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
20695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308",
20795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
20895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
20995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "cafebabefacedbad",
21095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "c3762df1ca787d32ae47c13bf19844cbaf1ae14d0b976afac52ff7d79bba9de0feb582d33934a4f0954cc2363bc73f7862ac430e64abe499f47c9b1f",
21195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "3a337dbf46a792c45e454913fe2ea8f2",
21295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
21395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
21495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feffe9928665731c6d6a8f9467308308feffe9928665731c6d6a8f9467308308",
21595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b39",
21695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "feedfacedeadbeeffeedfacedeadbeefabaddad2",
21795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "9313225df88406e555909c5aff5269aa6a7a9538534f7da1e4c303d2a318a728c3c0c95156809539fcf0e2429a6b525416aedbf5a0de6a57a637b39b",
21895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "5a8def2f0c9e53f1f75d7853659e2a20eeb2b22aafde6419a058ab4f6f746bf40fc0c3b780f244452da3ebf1c5d82cdea2418997200ef82e44ae7e3f",
21995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "a44a8266ee1c8eb0c8b5d4cf5ae9f19a",
22095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
22195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
22295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
22395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
22495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "d9313225f88406e5a55909c5aff5269a86a7a9531534f7da2e4c303d8a318a721c3c0c95956809532fcf0e2449a6b525b16aedf5aa0de657ba637b391aafd255522dc1f099567d07f47f37a32a84427d643a8cdcbfe5c0c97598a2bd2555d1aa8cb08e48590dbb3da7b08b1056828838c5f61e6393ba7a0abcc9f662898015ad",
22595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000",
22695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
22795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "5fea793a2d6f974d37e68e0cb8ff9492",
22895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
22995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  {
23095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "00000000000000000000000000000000",
23195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000",
23295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    NULL,
23395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    /* This nonce results in 0xfff in counter LSB. */
23495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "ffffffff000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000",
23595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "56b3373ca9ef6e4a2b64fe1e9a17b61425f10d47a75a5fce13efc6bc784af24f4141bdd48cf7c770887afd573cca5418a9aeffcd7c5ceddfc6a78397b9a85b499da558257267caab2ad0b23ca476a53cb17fb41c4b8b475cb4f3f7165094c229c9e8c4dc0a2a5ff1903e501511221376a1cdb8364c5061a20cae74bc4acd76ceb0abc9fd3217ef9f8c90be402ddf6d8697f4f880dff15bfb7a6b28241ec8fe183c2d59e3f9dfff653c7126f0acb9e64211f42bae12af462b1070bef1ab5e3606872ca10dee15b3249b1a1b958f23134c4bccb7d03200bce420a2f8eb66dcf3644d1423c1b5699003c13ecef4bf38a3b60eedc34033bac1902783dc6d89e2e774188a439c7ebcc0672dbda4ddcfb2794613b0be41315ef778708a70ee7d75165c",
23695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    "8b307f6b33286d0ab026a9ed3fe1e85f",
23795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  },
23895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley};
23995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
24095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleystatic int from_hex(uint8_t *out, char in) {
24195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (in >= '0' && in <= '9') {
24295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    *out = in - '0';
24395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    return 1;
24495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
24595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (in >= 'a' && in <= 'f') {
24695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    *out = in - 'a' + 10;
24795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    return 1;
24895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
24995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (in >= 'A' && in <= 'F') {
25095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    *out = in - 'A' + 10;
25195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    return 1;
25295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
25395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
25495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  return 0;
25595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley}
25695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
25795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleystatic int decode_hex(uint8_t **out, size_t *out_len, const char *in,
25895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley                      unsigned test_num, const char *description) {
25995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  uint8_t *buf = NULL;
26095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  size_t i;
26195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
26295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (in == NULL) {
26395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    *out = NULL;
26495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    *out_len = 0;
26595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    return 1;
26695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
26795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
26895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  size_t len = strlen(in);
26995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (len & 1) {
27095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: Odd-length %s input.\n", test_num, description);
27195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto err;
27295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
27395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
27495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  buf = OPENSSL_malloc(len / 2);
27595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (buf == NULL) {
27695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: malloc failure.\n", test_num);
27795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto err;
27895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
27995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
28095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  for (i = 0; i < len; i += 2) {
28195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    uint8_t v, v2;
28295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    if (!from_hex(&v, in[i]) ||
28395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley        !from_hex(&v2, in[i+1])) {
28495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      fprintf(stderr, "%u: invalid hex digit in %s around offset %u.\n",
28595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley              test_num, description, (unsigned)i);
28695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      goto err;
28795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    }
28895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    buf[i/2] = (v << 4) | v2;
28995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
29095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
29195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  *out = buf;
29295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  *out_len = len/2;
29395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  return 1;
29495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
29595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleyerr:
29695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (buf) {
29795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(buf);
29895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
29995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  return 0;
30095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley}
30195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
30295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleyvoid hexdump(const char *msg, const void *in, size_t len) {
30395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  const uint8_t *data = in;
30495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  size_t i;
30595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
30695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  fprintf(stderr, "%s: ", msg);
30795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  for (i = 0; i < len; i++) {
30895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%02x", data[i]);
30995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
31095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  fprintf(stderr, "\n");
31195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley}
31295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
31395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleystatic int run_test_case(unsigned test_num, const struct test_case *test) {
31495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  size_t key_len, plaintext_len, additional_data_len, nonce_len, ciphertext_len,
31595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      tag_len;
31695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  uint8_t *key = NULL, *plaintext = NULL, *additional_data = NULL,
31795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley          *nonce = NULL, *ciphertext = NULL, *tag = NULL, *out = NULL;
31895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  int ret = 0;
31995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  AES_KEY aes_key;
32095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  GCM128_CONTEXT ctx;
32195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
32295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (!decode_hex(&key, &key_len, test->key, test_num, "key") ||
32395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      !decode_hex(&plaintext, &plaintext_len, test->plaintext, test_num,
32495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley                  "plaintext") ||
32595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      !decode_hex(&additional_data, &additional_data_len, test->additional_data,
32695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley                  test_num, "additional_data") ||
32795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      !decode_hex(&nonce, &nonce_len, test->nonce, test_num, "nonce") ||
32895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      !decode_hex(&ciphertext, &ciphertext_len, test->ciphertext, test_num,
32995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley                  "ciphertext") ||
33095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      !decode_hex(&tag, &tag_len, test->tag, test_num, "tag")) {
33195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
33295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
33395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
33495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (plaintext_len != ciphertext_len) {
33595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: plaintext and ciphertext have differing lengths.\n",
33695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley            test_num);
33795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
33895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
33995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
34095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (key_len != 16 && key_len != 24 && key_len != 32) {
34195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: bad key length.\n", test_num);
34295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
34395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
34495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
34595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (tag_len != 16) {
34695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: bad tag length.\n", test_num);
34795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
34895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
34995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
35095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  out = OPENSSL_malloc(plaintext_len);
35195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (AES_set_encrypt_key(key, key_len*8, &aes_key)) {
35295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: AES_set_encrypt_key failed.\n", test_num);
35395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
35495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
35595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
35695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  CRYPTO_gcm128_init(&ctx, &aes_key, (block128_f) AES_encrypt);
35795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  CRYPTO_gcm128_setiv(&ctx, nonce, nonce_len);
35895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  memset(out, 0, plaintext_len);
35995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (additional_data) {
36095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    CRYPTO_gcm128_aad(&ctx, additional_data, additional_data_len);
36195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
36295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (plaintext) {
36395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    CRYPTO_gcm128_encrypt(&ctx, plaintext, out, plaintext_len);
36495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
36595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (!CRYPTO_gcm128_finish(&ctx, tag, tag_len) ||
36695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      (ciphertext && memcmp(out, ciphertext, plaintext_len) != 0)) {
36795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: encrypt failed.\n", test_num);
36895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    hexdump("got ", out, plaintext_len);
36995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    hexdump("want", ciphertext, plaintext_len);
37095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
37195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
37295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
37395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  CRYPTO_gcm128_setiv(&ctx, nonce, nonce_len);
37495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  memset(out, 0, plaintext_len);
37595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (additional_data) {
37695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    CRYPTO_gcm128_aad(&ctx, additional_data, additional_data_len);
37795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
37895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (ciphertext) {
37995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    CRYPTO_gcm128_decrypt(&ctx, ciphertext, out, plaintext_len);
38095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
38195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (!CRYPTO_gcm128_finish(&ctx, tag, tag_len)) {
38295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: decrypt failed.\n", test_num);
38395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
38495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
38595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (plaintext && memcmp(out, plaintext, plaintext_len)) {
38695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    fprintf(stderr, "%u: plaintext doesn't match.\n", test_num);
38795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    goto out;
38895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
38995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
39095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  ret = 1;
39195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
39295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langleyout:
39395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (key) {
39495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(key);
39595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
39695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (plaintext) {
39795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(plaintext);
39895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
39995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (additional_data) {
40095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(additional_data);
40195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
40295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (nonce) {
40395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(nonce);
40495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
40595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (ciphertext) {
40695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(ciphertext);
40795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
40895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (tag) {
40995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(tag);
41095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
41195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (out) {
41295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    OPENSSL_free(out);
41395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
41495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  return ret;
41595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley}
41695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
417c44d2f4cb8a892a603edbbe710fa82bcd30f9cb5David Benjaminint main(void) {
41895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  int ret = 0;
41995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  unsigned i;
42095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
421a70c75cfc0ca32a43985e3f24d737ca9cafcb910David Benjamin  CRYPTO_library_init();
422a70c75cfc0ca32a43985e3f24d737ca9cafcb910David Benjamin
42395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  for (i = 0; i < sizeof(test_cases) / sizeof(struct test_case); i++) {
42495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    if (!run_test_case(i, &test_cases[i])) {
42595c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley      ret = 1;
42695c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    }
42795c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
42895c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
42995c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  if (ret == 0) {
43095c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley    printf("PASS\n");
43195c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  }
43295c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley
43395c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley  return ret;
43495c29f3cd1f6c08c6c0927868683392eea727ccAdam Langley}
435