openssl/test/recipes/30-test_evp_data
Todd Short 0113ec8460 Implement AES-GCM-SIV (RFC8452)
Fixes #16721

This uses AES-ECB to create a counter mode AES-CTR32 (32bit counter, I could
not get AES-CTR to work as-is), and GHASH to implement POLYVAL. Optimally,
there would be separate polyval assembly implementation(s), but the only one
I could find (and it was SSE2 x86_64 code) was not Apache 2.0 licensed.

This implementation lives only in the default provider; there is no legacy
implementation.

The code offered in #16721 is not used; that implementation sits on top of
OpenSSL, this one is embedded inside OpenSSL.

Full test vectors from RFC8452 are included, except the 0 length plaintext;
that is not supported; and I'm not sure it's worthwhile to do so.

Reviewed-by: Hugo Landau <hlandau@openssl.org>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
Reviewed-by: Paul Dale <pauli@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/18693)
2022-07-29 08:32:16 -04:00
..
evpciph_aes_ccm_cavs.txt Update copyright year 2022-05-03 13:34:51 +01:00
evpciph_aes_common.txt
evpciph_aes_cts.txt Update copyright year 2021-09-07 13:35:43 +02:00
evpciph_aes_gcm_siv.txt Implement AES-GCM-SIV (RFC8452) 2022-07-29 08:32:16 -04:00
evpciph_aes_ocb.txt AES OCB test vectors 2022-07-05 10:10:24 +02:00
evpciph_aes_siv.txt
evpciph_aes_stitched.txt Fix the RC4-MD5 cipher 2022-05-03 10:46:49 +01:00
evpciph_aes_wrap.txt
evpciph_aria.txt
evpciph_bf.txt
evpciph_camellia_cts.txt
evpciph_camellia.txt
evpciph_cast5.txt
evpciph_chacha.txt
evpciph_des3_common.txt Update copyright year 2022-05-03 13:34:51 +01:00
evpciph_des.txt
evpciph_idea.txt
evpciph_rc2.txt
evpciph_rc4_stitched.txt Fix the RC4-MD5 cipher 2022-05-03 10:46:49 +01:00
evpciph_rc4.txt
evpciph_rc5.txt
evpciph_seed.txt
evpciph_sm4.txt providers: Add SM4 GCM implementation 2021-09-28 19:27:58 +10:00
evpencod.txt
evpkdf_hkdf.txt
evpkdf_kbkdf_counter.txt Support different R_BITS lengths for KBKDF 2021-11-24 11:02:53 +10:00
evpkdf_krb5.txt
evpkdf_pbkdf1.txt
evpkdf_pbkdf2.txt add tests for PBKDF2 with SHA-3 2022-05-18 17:08:48 +02:00
evpkdf_pvkkdf.txt test: add some PVK KDF unit test cases 2021-09-28 18:08:42 +10:00
evpkdf_scrypt.txt Update copyright year 2021-09-07 13:35:43 +02:00
evpkdf_ss.txt
evpkdf_ssh.txt
evpkdf_tls11_prf.txt
evpkdf_tls12_prf.txt
evpkdf_tls13_kdf.txt
evpkdf_x942_des.txt
evpkdf_x942.txt
evpkdf_x963.txt
evpmac_blake.txt
evpmac_cmac_des.txt
evpmac_common.txt feat: add hmac-sm3 test cases from GM/T 0042-2015 Appendix D.3 2022-07-11 10:59:20 +10:00
evpmac_poly1305.txt Update copyright year 2022-05-03 13:34:51 +01:00
evpmac_siphash.txt
evpmac_sm3.txt feat: add hmac-sm3 test cases from GM/T 0042-2015 Appendix D.3 2022-07-11 10:59:20 +10:00
evpmd_blake.txt
evpmd_md.txt
evpmd_mdc2.txt
evpmd_ripemd.txt
evpmd_sha.txt Add default provider support for Keccak 224, 256, 384 and 512 2021-09-23 12:07:57 +10:00
evpmd_sm3.txt
evpmd_whirlpool.txt
evppbe_pbkdf2.txt add tests for PBKDF2 with SHA-3 2022-05-18 17:08:48 +02:00
evppbe_pkcs12.txt
evppbe_scrypt.txt
evppkey_brainpool.txt
evppkey_dh.txt
evppkey_dsa.txt
evppkey_ecc.txt
evppkey_ecdh.txt
evppkey_ecdsa.txt Testcase for regression by PPC64 fixed length montgomery multiplication 2022-06-15 09:54:02 +02:00
evppkey_ecx.txt
evppkey_ffdhe.txt Update copyright year 2022-05-03 13:34:51 +01:00
evppkey_kas.txt
evppkey_kdf_hkdf.txt
evppkey_kdf_scrypt.txt Update copyright year 2021-09-07 13:35:43 +02:00
evppkey_kdf_tls1_prf.txt
evppkey_mismatch.txt
evppkey_rsa_common.txt
evppkey_rsa.txt
evppkey_sm2.txt
evprand.txt