bntest.c 20.4 KB
Newer Older
1
/* crypto/bn/bntest.c */
2
/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61
 * All rights reserved.
 *
 * This package is an SSL implementation written
 * by Eric Young (eay@cryptsoft.com).
 * The implementation was written so as to conform with Netscapes SSL.
 * 
 * This library is free for commercial and non-commercial use as long as
 * the following conditions are aheared to.  The following conditions
 * apply to all code found in this distribution, be it the RC4, RSA,
 * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
 * included with this distribution is covered by the same copyright terms
 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
 * 
 * Copyright remains Eric Young's, and as such any Copyright notices in
 * the code are not to be removed.
 * If this package is used in a product, Eric Young should be given attribution
 * as the author of the parts of the library used.
 * This can be in the form of a textual message at program startup or
 * in documentation (online or textual) provided with the package.
 * 
 * Redistribution and use in source and binary forms, with or without
 * modification, are permitted provided that the following conditions
 * are met:
 * 1. Redistributions of source code must retain the copyright
 *    notice, this list of conditions and the following disclaimer.
 * 2. Redistributions in binary form must reproduce the above copyright
 *    notice, this list of conditions and the following disclaimer in the
 *    documentation and/or other materials provided with the distribution.
 * 3. All advertising materials mentioning features or use of this software
 *    must display the following acknowledgement:
 *    "This product includes cryptographic software written by
 *     Eric Young (eay@cryptsoft.com)"
 *    The word 'cryptographic' can be left out if the rouines from the library
 *    being used are not cryptographic related :-).
 * 4. If you include any Windows specific code (or a derivative thereof) from 
 *    the apps directory (application code) you must include an acknowledgement:
 *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
 * 
 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
 * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
 * SUCH DAMAGE.
 * 
 * The licence and distribution terms for any publically available version or
 * derivative of this code cannot be changed.  i.e. this code cannot simply be
 * copied and put under another distribution licence
 * [including the GNU Public Licence.]
 */

#include <stdio.h>
#include <stdlib.h>
#include <string.h>
62

63
#include "openssl/e_os.h"
64

65 66 67 68 69
#include <openssl/bio.h>
#include <openssl/bn.h>
#include <openssl/rand.h>
#include <openssl/x509.h>
#include <openssl/err.h>
70

71 72 73 74
#ifdef WINDOWS
#include "../bio/bss_file.c"
#endif

75 76 77
const int num0 = 100; /* number of tests */
const int num1 = 50;  /* additional tests for some functions */
const int num2 = 5;   /* number of tests for slow functions */
78

79 80 81
int test_add(BIO *bp);
int test_sub(BIO *bp);
int test_lshift1(BIO *bp);
B
Ben Laurie 已提交
82
int test_lshift(BIO *bp,BN_CTX *ctx,BIGNUM *a_);
83
int test_rshift1(BIO *bp);
B
Ben Laurie 已提交
84
int test_rshift(BIO *bp,BN_CTX *ctx);
85 86 87 88 89 90 91 92
int test_div(BIO *bp,BN_CTX *ctx);
int test_div_recp(BIO *bp,BN_CTX *ctx);
int test_mul(BIO *bp);
int test_sqr(BIO *bp,BN_CTX *ctx);
int test_mont(BIO *bp,BN_CTX *ctx);
int test_mod(BIO *bp,BN_CTX *ctx);
int test_mod_mul(BIO *bp,BN_CTX *ctx);
int test_mod_exp(BIO *bp,BN_CTX *ctx);
93
int test_exp(BIO *bp,BN_CTX *ctx);
94 95 96
int rand_neg(void);
static int results=0;

97
#ifdef NO_STDIO
98
#define APPS_WIN16
99
#include "bss_file.c"
100 101
#endif

102
static unsigned char lst[]="\xC6\x4F\x43\x04\x2A\xEA\xCA\x6E\x58\x36\x80\x5B\xE8\xC9"
B
Ben Laurie 已提交
103 104
"\x9B\x04\x5D\x48\x36\xC2\xFD\x16\xC9\x64\xF0";

105 106
static const char rnd_seed[] = "string to make the random number generator think it has entropy";

107
static void message(BIO *out, char *m)
108 109
	{
	fprintf(stderr, "test %s\n", m);
U
Ulf Möller 已提交
110
#if defined(linux) || defined(__FreeBSD__) /* can we use GNU bc features? */
111 112 113 114 115 116
	BIO_puts(out, "print \"test ");
	BIO_puts(out, m);
	BIO_puts(out, "\\n\"\n");
#endif
	}

U
Ulf Möller 已提交
117
int main(int argc, char *argv[])
118 119 120 121 122
	{
	BN_CTX *ctx;
	BIO *out;
	char *outfile=NULL;

123 124
	results = 0;

125 126 127 128
	RAND_seed(rnd_seed, sizeof rnd_seed); /* or BN_rand may fail, and we don't
	                                       * even check its return value
	                                       * (which we should) */

129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165
	argc--;
	argv++;
	while (argc >= 1)
		{
		if (strcmp(*argv,"-results") == 0)
			results=1;
		else if (strcmp(*argv,"-out") == 0)
			{
			if (--argc < 1) break;
			outfile= *(++argv);
			}
		argc--;
		argv++;
		}


	ctx=BN_CTX_new();
	if (ctx == NULL) exit(1);

	out=BIO_new(BIO_s_file());
	if (out == NULL) exit(1);
	if (outfile == NULL)
		{
		BIO_set_fp(out,stdout,BIO_NOCLOSE);
		}
	else
		{
		if (!BIO_write_filename(out,outfile))
			{
			perror(outfile);
			exit(1);
			}
		}

	if (!results)
		BIO_puts(out,"obase=16\nibase=16\n");

B
Bodo Möller 已提交
166
#if 0
167
	message(out,"BN_add");
168
	if (!test_add(out)) goto err;
169
	BIO_flush(out);
170

171
	message(out,"BN_sub");
172
	if (!test_sub(out)) goto err;
173
	BIO_flush(out);
174

175
	message(out,"BN_lshift1");
176
	if (!test_lshift1(out)) goto err;
177
	BIO_flush(out);
178

179
	message(out,"BN_lshift (fixed)");
180
	if (!test_lshift(out,ctx,BN_bin2bn(lst,sizeof(lst)-1,NULL)))
B
Ben Laurie 已提交
181
	    goto err;
182
	BIO_flush(out);
B
Ben Laurie 已提交
183

184
	message(out,"BN_lshift");
B
Ben Laurie 已提交
185
	if (!test_lshift(out,ctx,NULL)) goto err;
186
	BIO_flush(out);
187

188
	message(out,"BN_rshift1");
189
	if (!test_rshift1(out)) goto err;
190
	BIO_flush(out);
191

192
	message(out,"BN_rshift");
B
Ben Laurie 已提交
193
	if (!test_rshift(out,ctx)) goto err;
194
	BIO_flush(out);
195

196
	message(out,"BN_sqr");
197
	if (!test_sqr(out,ctx)) goto err;
198
	BIO_flush(out);
199

200
	message(out,"BN_mul");
201
	if (!test_mul(out)) goto err;
202
	BIO_flush(out);
203

204
	message(out,"BN_div");
205
	if (!test_div(out,ctx)) goto err;
206
	BIO_flush(out);
207

208
	message(out,"BN_div_recp");
209
	if (!test_div_recp(out,ctx)) goto err;
210
	BIO_flush(out);
211

212
	message(out,"BN_mod");
213
	if (!test_mod(out,ctx)) goto err;
214
	BIO_flush(out);
215

216
	message(out,"BN_mod_mul");
217
	if (!test_mod_mul(out,ctx)) goto err;
218
	BIO_flush(out);
219

220
	message(out,"BN_mont");
221
	if (!test_mont(out,ctx)) goto err;
222
	BIO_flush(out);
B
Bodo Möller 已提交
223
#endif
B
Bodo Möller 已提交
224

225
	message(out,"BN_mod_exp");
226
	if (!test_mod_exp(out,ctx)) goto err;
227
	BIO_flush(out);
228

229
	message(out,"BN_exp");
230
	if (!test_exp(out,ctx)) goto err;
231
	BIO_flush(out);
232

233 234 235
	BN_CTX_free(ctx);
	BIO_free(out);

236 237 238
/**/
	exit(0);
err:
B
Bodo Möller 已提交
239 240
	BIO_puts(out,"1\n"); /* make sure the Perl script fed by bc notices
	                      * the failure, see test_bn in test/Makefile.ssl*/
241
	BIO_flush(out);
242
	ERR_load_crypto_strings();
243
	ERR_print_errors_fp(stderr);
244 245 246 247
	exit(1);
	return(1);
	}

U
Ulf Möller 已提交
248
int test_add(BIO *bp)
249
	{
250
	BIGNUM a,b,c;
251 252 253
	int i;
	int j;

254 255 256
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
257

258
	BN_rand(&a,512,0,0);
259
	for (i=0; i<num0; i++)
260
		{
261 262 263
		BN_rand(&b,450+i,0,0);
		a.neg=rand_neg();
		b.neg=rand_neg();
264 265
		if (bp == NULL)
			for (j=0; j<10000; j++)
266 267
				BN_add(&c,&a,&b);
		BN_add(&c,&a,&b);
268 269 270 271
		if (bp != NULL)
			{
			if (!results)
				{
272
				BN_print(bp,&a);
273
				BIO_puts(bp," + ");
274
				BN_print(bp,&b);
275 276
				BIO_puts(bp," - ");
				}
277
			BN_print(bp,&c);
278 279
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
280 281 282 283 284 285
		a.neg=!a.neg;
		b.neg=!b.neg;
		BN_add(&c,&c,&b);
		BN_add(&c,&c,&a);
		if(!BN_is_zero(&c))
		    {
286
		    fprintf(stderr,"Add test failed!\n");
B
Ben Laurie 已提交
287 288
		    return 0;
		    }
289
		}
290 291 292
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
293 294 295
	return(1);
	}

U
Ulf Möller 已提交
296
int test_sub(BIO *bp)
297
	{
298
	BIGNUM a,b,c;
299 300 301
	int i;
	int j;

302 303 304
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
305

306
	for (i=0; i<num0+num1; i++)
307
		{
308 309 310 311 312 313 314 315 316 317 318 319 320
		if (i < num1)
			{
			BN_rand(&a,512,0,0);
			BN_copy(&b,&a);
			if (BN_set_bit(&a,i)==0) return(0);
			BN_add_word(&b,i);
			}
		else
			{
			BN_rand(&b,400+i-num1,0,0);
			a.neg=rand_neg();
			b.neg=rand_neg();
			}
321 322
		if (bp == NULL)
			for (j=0; j<10000; j++)
323 324
				BN_sub(&c,&a,&b);
		BN_sub(&c,&a,&b);
325 326 327 328
		if (bp != NULL)
			{
			if (!results)
				{
329
				BN_print(bp,&a);
330
				BIO_puts(bp," - ");
331
				BN_print(bp,&b);
332 333
				BIO_puts(bp," - ");
				}
334
			BN_print(bp,&c);
335 336
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
337 338 339 340
		BN_add(&c,&c,&b);
		BN_sub(&c,&c,&a);
		if(!BN_is_zero(&c))
		    {
341
		    fprintf(stderr,"Subtract test failed!\n");
B
Ben Laurie 已提交
342 343
		    return 0;
		    }
344
		}
345 346 347
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
348 349 350
	return(1);
	}

U
Ulf Möller 已提交
351
int test_div(BIO *bp, BN_CTX *ctx)
352
	{
B
Ben Laurie 已提交
353
	BIGNUM a,b,c,d,e;
354 355 356
	int i;
	int j;

357 358 359 360
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
	BN_init(&d);
B
Ben Laurie 已提交
361
	BN_init(&e);
362

363
	for (i=0; i<num0+num1; i++)
364
		{
365 366 367 368 369 370 371 372 373
		if (i < num1)
			{
			BN_rand(&a,400,0,0);
			BN_copy(&b,&a);
			BN_lshift(&a,&a,i);
			BN_add_word(&a,i);
			}
		else
			BN_rand(&b,50+3*(i-num1),0,0);
374 375
		a.neg=rand_neg();
		b.neg=rand_neg();
376 377
		if (bp == NULL)
			for (j=0; j<100; j++)
378 379
				BN_div(&d,&c,&a,&b,ctx);
		BN_div(&d,&c,&a,&b,ctx);
380 381 382 383
		if (bp != NULL)
			{
			if (!results)
				{
384
				BN_print(bp,&a);
385
				BIO_puts(bp," / ");
386
				BN_print(bp,&b);
387 388
				BIO_puts(bp," - ");
				}
389
			BN_print(bp,&d);
390 391 392 393
			BIO_puts(bp,"\n");

			if (!results)
				{
394
				BN_print(bp,&a);
395
				BIO_puts(bp," % ");
396
				BN_print(bp,&b);
397 398
				BIO_puts(bp," - ");
				}
399
			BN_print(bp,&c);
400 401
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
402 403 404 405 406
		BN_mul(&e,&d,&b,ctx);
		BN_add(&d,&e,&c);
		BN_sub(&d,&d,&a);
		if(!BN_is_zero(&d))
		    {
407
		    fprintf(stderr,"Division test failed!\n");
B
Ben Laurie 已提交
408 409
		    return 0;
		    }
410
		}
411 412 413 414
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
	BN_free(&d);
B
Ben Laurie 已提交
415
	BN_free(&e);
416 417 418
	return(1);
	}

U
Ulf Möller 已提交
419
int test_div_recp(BIO *bp, BN_CTX *ctx)
420
	{
B
Ben Laurie 已提交
421
	BIGNUM a,b,c,d,e;
422 423 424 425 426 427 428 429 430
	BN_RECP_CTX recp;
	int i;
	int j;

	BN_RECP_CTX_init(&recp);
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
	BN_init(&d);
B
Ben Laurie 已提交
431
	BN_init(&e);
432

433
	for (i=0; i<num0+num1; i++)
434
		{
435 436 437 438 439 440 441 442 443
		if (i < num1)
			{
			BN_rand(&a,400,0,0);
			BN_copy(&b,&a);
			BN_lshift(&a,&a,i);
			BN_add_word(&a,i);
			}
		else
			BN_rand(&b,50+3*(i-num1),0,0);
444 445 446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472
		a.neg=rand_neg();
		b.neg=rand_neg();
		BN_RECP_CTX_set(&recp,&b,ctx);
		if (bp == NULL)
			for (j=0; j<100; j++)
				BN_div_recp(&d,&c,&a,&recp,ctx);
		BN_div_recp(&d,&c,&a,&recp,ctx);
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,&a);
				BIO_puts(bp," / ");
				BN_print(bp,&b);
				BIO_puts(bp," - ");
				}
			BN_print(bp,&d);
			BIO_puts(bp,"\n");

			if (!results)
				{
				BN_print(bp,&a);
				BIO_puts(bp," % ");
				BN_print(bp,&b);
				BIO_puts(bp," - ");
				}
			BN_print(bp,&c);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
473 474 475 476 477
		BN_mul(&e,&d,&b,ctx);
		BN_add(&d,&e,&c);
		BN_sub(&d,&d,&a);
		if(!BN_is_zero(&d))
		    {
478 479 480 481 482 483
		    fprintf(stderr,"Reciprocal division test failed!\n");
		    fprintf(stderr,"a=");
		    BN_print_fp(stderr,&a);
		    fprintf(stderr,"\nb=");
		    BN_print_fp(stderr,&b);
		    fprintf(stderr,"\n");
B
Ben Laurie 已提交
484 485
		    return 0;
		    }
486 487 488 489 490
		}
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
	BN_free(&d);
B
Ben Laurie 已提交
491
	BN_free(&e);
492
	BN_RECP_CTX_free(&recp);
493 494 495
	return(1);
	}

U
Ulf Möller 已提交
496
int test_mul(BIO *bp)
497
	{
B
Ben Laurie 已提交
498
	BIGNUM a,b,c,d,e;
499 500
	int i;
	int j;
501
	BN_CTX ctx;
502

503 504 505 506
	BN_CTX_init(&ctx);
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
B
Ben Laurie 已提交
507 508
	BN_init(&d);
	BN_init(&e);
509

510
	for (i=0; i<num0+num1; i++)
511
		{
512
		if (i <= num1)
513 514 515 516 517 518
			{
			BN_rand(&a,100,0,0);
			BN_rand(&b,100,0,0);
			}
		else
			BN_rand(&b,i-num1,0,0);
519 520
		a.neg=rand_neg();
		b.neg=rand_neg();
521 522
		if (bp == NULL)
			for (j=0; j<100; j++)
523 524
				BN_mul(&c,&a,&b,&ctx);
		BN_mul(&c,&a,&b,&ctx);
525 526 527 528
		if (bp != NULL)
			{
			if (!results)
				{
529
				BN_print(bp,&a);
530
				BIO_puts(bp," * ");
531
				BN_print(bp,&b);
532 533
				BIO_puts(bp," - ");
				}
534
			BN_print(bp,&c);
535 536
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
537 538 539 540
		BN_div(&d,&e,&c,&a,&ctx);
		BN_sub(&d,&d,&b);
		if(!BN_is_zero(&d) || !BN_is_zero(&e))
		    {
541
		    fprintf(stderr,"Multiplication test failed!\n");
B
Ben Laurie 已提交
542 543
		    return 0;
		    }
544
		}
545 546 547
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
B
Ben Laurie 已提交
548 549
	BN_free(&d);
	BN_free(&e);
550
	BN_CTX_free(&ctx);
551 552 553
	return(1);
	}

U
Ulf Möller 已提交
554
int test_sqr(BIO *bp, BN_CTX *ctx)
555
	{
B
Ben Laurie 已提交
556
	BIGNUM a,c,d,e;
557 558 559
	int i;
	int j;

560 561
	BN_init(&a);
	BN_init(&c);
B
Ben Laurie 已提交
562 563
	BN_init(&d);
	BN_init(&e);
564

565
	for (i=0; i<num0; i++)
566
		{
567 568
		BN_rand(&a,40+i*10,0,0);
		a.neg=rand_neg();
569 570
		if (bp == NULL)
			for (j=0; j<100; j++)
571 572
				BN_sqr(&c,&a,ctx);
		BN_sqr(&c,&a,ctx);
573 574 575 576
		if (bp != NULL)
			{
			if (!results)
				{
577
				BN_print(bp,&a);
578
				BIO_puts(bp," * ");
579
				BN_print(bp,&a);
580 581
				BIO_puts(bp," - ");
				}
582
			BN_print(bp,&c);
583 584
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
585 586 587 588
		BN_div(&d,&e,&c,&a,ctx);
		BN_sub(&d,&d,&a);
		if(!BN_is_zero(&d) || !BN_is_zero(&e))
		    {
589
		    fprintf(stderr,"Square test failed!\n");
B
Ben Laurie 已提交
590 591
		    return 0;
		    }
592
		}
593 594
	BN_free(&a);
	BN_free(&c);
B
Ben Laurie 已提交
595 596
	BN_free(&d);
	BN_free(&e);
597 598 599
	return(1);
	}

U
Ulf Möller 已提交
600
int test_mont(BIO *bp, BN_CTX *ctx)
601
	{
B
Ben Laurie 已提交
602
	BIGNUM a,b,c,d,A,B;
603
	BIGNUM n;
604 605 606 607
	int i;
	int j;
	BN_MONT_CTX *mont;

608 609 610
	BN_init(&a);
	BN_init(&b);
	BN_init(&c);
B
Ben Laurie 已提交
611
	BN_init(&d);
612 613 614
	BN_init(&A);
	BN_init(&B);
	BN_init(&n);
615 616 617

	mont=BN_MONT_CTX_new();

618 619
	BN_rand(&a,100,0,0); /**/
	BN_rand(&b,100,0,0); /**/
620
	for (i=0; i<num2; i++)
621
		{
622
		int bits = (200*(i+1))/num2;
B
Bodo Möller 已提交
623 624 625 626

		if (bits == 0)
			continue;
		BN_rand(&n,bits,0,1);
627
		BN_MONT_CTX_set(mont,&n,ctx);
628

629 630
		BN_to_montgomery(&A,&a,mont,ctx);
		BN_to_montgomery(&B,&b,mont,ctx);
631 632 633

		if (bp == NULL)
			for (j=0; j<100; j++)
634 635 636
				BN_mod_mul_montgomery(&c,&A,&B,mont,ctx);/**/
		BN_mod_mul_montgomery(&c,&A,&B,mont,ctx);/**/
		BN_from_montgomery(&A,&c,mont,ctx);/**/
637 638 639 640 641 642
		if (bp != NULL)
			{
			if (!results)
				{
#ifdef undef
fprintf(stderr,"%d * %d %% %d\n",
643 644
BN_num_bits(&a),
BN_num_bits(&b),
645 646
BN_num_bits(mont->N));
#endif
647
				BN_print(bp,&a);
648
				BIO_puts(bp," * ");
649
				BN_print(bp,&b);
650
				BIO_puts(bp," % ");
651
				BN_print(bp,&(mont->N));
652 653
				BIO_puts(bp," - ");
				}
654
			BN_print(bp,&A);
655 656
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
657 658 659 660
		BN_mod_mul(&d,&a,&b,&n,ctx);
		BN_sub(&d,&d,&A);
		if(!BN_is_zero(&d))
		    {
661
		    fprintf(stderr,"Montgomery multiplication test failed!\n");
B
Ben Laurie 已提交
662 663
		    return 0;
		    }
664 665
		}
	BN_MONT_CTX_free(mont);
666 667 668
	BN_free(&a);
	BN_free(&b);
	BN_free(&c);
B
Ben Laurie 已提交
669 670 671 672
	BN_free(&d);
	BN_free(&A);
	BN_free(&B);
	BN_free(&n);
673 674 675
	return(1);
	}

U
Ulf Möller 已提交
676
int test_mod(BIO *bp, BN_CTX *ctx)
677
	{
B
Ben Laurie 已提交
678
	BIGNUM *a,*b,*c,*d,*e;
679 680 681 682 683 684
	int i;
	int j;

	a=BN_new();
	b=BN_new();
	c=BN_new();
B
Ben Laurie 已提交
685 686
	d=BN_new();
	e=BN_new();
687 688

	BN_rand(a,1024,0,0); /**/
689
	for (i=0; i<num0; i++)
690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709
		{
		BN_rand(b,450+i*10,0,0); /**/
		a->neg=rand_neg();
		b->neg=rand_neg();
		if (bp == NULL)
			for (j=0; j<100; j++)
				BN_mod(c,a,b,ctx);/**/
		BN_mod(c,a,b,ctx);/**/
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," % ");
				BN_print(bp,b);
				BIO_puts(bp," - ");
				}
			BN_print(bp,c);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
710 711 712 713
		BN_div(d,e,a,b,ctx);
		BN_sub(e,e,c);
		if(!BN_is_zero(e))
		    {
714
		    fprintf(stderr,"Modulo test failed!\n");
B
Ben Laurie 已提交
715 716
		    return 0;
		    }
717 718 719 720
		}
	BN_free(a);
	BN_free(b);
	BN_free(c);
B
Ben Laurie 已提交
721 722
	BN_free(d);
	BN_free(e);
723 724 725
	return(1);
	}

U
Ulf Möller 已提交
726
int test_mod_mul(BIO *bp, BN_CTX *ctx)
727 728 729 730 731 732 733 734 735 736 737
	{
	BIGNUM *a,*b,*c,*d,*e;
	int i;

	a=BN_new();
	b=BN_new();
	c=BN_new();
	d=BN_new();
	e=BN_new();

	BN_rand(c,1024,0,0); /**/
738
	for (i=0; i<num0; i++)
739
		{
U
Ulf Möller 已提交
740 741
		BN_rand(a,475+i*10,0,0); /**/
		BN_rand(b,425+i*11,0,0); /**/
742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765
		a->neg=rand_neg();
		b->neg=rand_neg();
	/*	if (bp == NULL)
			for (j=0; j<100; j++)
				BN_mod_mul(d,a,b,c,ctx);*/ /**/

		if (!BN_mod_mul(e,a,b,c,ctx))
			{
			unsigned long l;

			while ((l=ERR_get_error()))
				fprintf(stderr,"ERROR:%s\n",
					ERR_error_string(l,NULL));
			exit(1);
			}
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," * ");
				BN_print(bp,b);
				BIO_puts(bp," % ");
				BN_print(bp,c);
B
Bodo Möller 已提交
766 767 768 769 770 771 772 773 774 775
				if ((a->neg ^ b->neg) && !BN_is_zero(e))
					{
					/* If  (a*b) % c  is negative,  c  must be added
					 * in order to obtain the normalized remainder
					 * (new with OpenSSL 0.9.7, previous versions of
					 * BN_mod_mul could generate negative results)
					 */
					BIO_puts(bp," + ");
					BN_print(bp,c);
					}
776 777 778 779 780
				BIO_puts(bp," - ");
				}
			BN_print(bp,e);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
781 782 783 784 785
		BN_mul(d,a,b,ctx);
		BN_sub(d,d,e);
		BN_div(a,b,d,c,ctx);
		if(!BN_is_zero(b))
		    {
786
		    fprintf(stderr,"Modulo multiply test failed!\n");
787
		    ERR_print_errors_fp(stderr);
B
Ben Laurie 已提交
788 789
		    return 0;
		    }
790 791 792 793 794 795 796 797 798
		}
	BN_free(a);
	BN_free(b);
	BN_free(c);
	BN_free(d);
	BN_free(e);
	return(1);
	}

U
Ulf Möller 已提交
799
int test_mod_exp(BIO *bp, BN_CTX *ctx)
800 801 802 803 804 805 806 807 808 809 810
	{
	BIGNUM *a,*b,*c,*d,*e;
	int i;

	a=BN_new();
	b=BN_new();
	c=BN_new();
	d=BN_new();
	e=BN_new();

	BN_rand(c,30,0,1); /* must be odd for montgomery */
811
	for (i=0; i<num2; i++)
812 813 814 815
		{
		BN_rand(a,20+i*5,0,0); /**/
		BN_rand(b,2+i,0,0); /**/

B
Bodo Möller 已提交
816 817
		BN_kronecker(a,b,ctx);

818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834
		if (!BN_mod_exp(d,a,b,c,ctx))
			return(00);

		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," ^ ");
				BN_print(bp,b);
				BIO_puts(bp," % ");
				BN_print(bp,c);
				BIO_puts(bp," - ");
				}
			BN_print(bp,d);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
835 836 837 838 839
		BN_exp(e,a,b,ctx);
		BN_sub(e,e,d);
		BN_div(a,b,e,c,ctx);
		if(!BN_is_zero(b))
		    {
840
		    fprintf(stderr,"Modulo exponentiation test failed!\n");
B
Ben Laurie 已提交
841 842
		    return 0;
		    }
843 844 845 846 847 848 849 850 851
		}
	BN_free(a);
	BN_free(b);
	BN_free(c);
	BN_free(d);
	BN_free(e);
	return(1);
	}

U
Ulf Möller 已提交
852
int test_exp(BIO *bp, BN_CTX *ctx)
853
	{
B
Ben Laurie 已提交
854
	BIGNUM *a,*b,*d,*e,*one;
855 856 857 858 859 860
	int i;

	a=BN_new();
	b=BN_new();
	d=BN_new();
	e=BN_new();
B
Ben Laurie 已提交
861 862
	one=BN_new();
	BN_one(one);
863

864
	for (i=0; i<num2; i++)
865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883
		{
		BN_rand(a,20+i*5,0,0); /**/
		BN_rand(b,2+i,0,0); /**/

		if (!BN_exp(d,a,b,ctx))
			return(00);

		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," ^ ");
				BN_print(bp,b);
				BIO_puts(bp," - ");
				}
			BN_print(bp,d);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
884 885 886 887 888 889
		BN_one(e);
		for( ; !BN_is_zero(b) ; BN_sub(b,b,one))
		    BN_mul(e,e,a,ctx);
		BN_sub(e,e,d);
		if(!BN_is_zero(e))
		    {
890
		    fprintf(stderr,"Exponentiation test failed!\n");
B
Ben Laurie 已提交
891 892
		    return 0;
		    }
893 894 895 896 897
		}
	BN_free(a);
	BN_free(b);
	BN_free(d);
	BN_free(e);
B
Ben Laurie 已提交
898
	BN_free(one);
899 900 901
	return(1);
	}

B
Ben Laurie 已提交
902
int test_lshift(BIO *bp,BN_CTX *ctx,BIGNUM *a_)
903
	{
B
Ben Laurie 已提交
904
	BIGNUM *a,*b,*c,*d;
905 906 907 908
	int i;

	b=BN_new();
	c=BN_new();
B
Ben Laurie 已提交
909
	d=BN_new();
910 911
	BN_one(c);

B
Ben Laurie 已提交
912 913 914 915 916 917 918 919
	if(a_)
	    a=a_;
	else
	    {
	    a=BN_new();
	    BN_rand(a,200,0,0); /**/
	    a->neg=rand_neg();
	    }
920
	for (i=0; i<num0; i++)
921 922 923 924 925 926 927 928 929 930 931 932 933 934 935
		{
		BN_lshift(b,a,i+1);
		BN_add(c,c,c);
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," * ");
				BN_print(bp,c);
				BIO_puts(bp," - ");
				}
			BN_print(bp,b);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
936 937 938 939
		BN_mul(d,a,c,ctx);
		BN_sub(d,d,b);
		if(!BN_is_zero(d))
		    {
940 941 942 943 944 945 946 947 948 949
		    fprintf(stderr,"Left shift test failed!\n");
		    fprintf(stderr,"a=");
		    BN_print_fp(stderr,a);
		    fprintf(stderr,"\nb=");
		    BN_print_fp(stderr,b);
		    fprintf(stderr,"\nc=");
		    BN_print_fp(stderr,c);
		    fprintf(stderr,"\nd=");
		    BN_print_fp(stderr,d);
		    fprintf(stderr,"\n");
B
Ben Laurie 已提交
950 951
		    return 0;
		    }
952 953 954 955
		}
	BN_free(a);
	BN_free(b);
	BN_free(c);
B
Ben Laurie 已提交
956
	BN_free(d);
957 958 959
	return(1);
	}

U
Ulf Möller 已提交
960
int test_lshift1(BIO *bp)
961
	{
B
Ben Laurie 已提交
962
	BIGNUM *a,*b,*c;
963 964 965 966
	int i;

	a=BN_new();
	b=BN_new();
B
Ben Laurie 已提交
967
	c=BN_new();
968 969 970

	BN_rand(a,200,0,0); /**/
	a->neg=rand_neg();
971
	for (i=0; i<num0; i++)
972 973 974 975 976 977 978 979 980 981 982 983 984
		{
		BN_lshift1(b,a);
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," * 2");
				BIO_puts(bp," - ");
				}
			BN_print(bp,b);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
985 986 987 988
		BN_add(c,a,a);
		BN_sub(a,b,c);
		if(!BN_is_zero(a))
		    {
989
		    fprintf(stderr,"Left shift one test failed!\n");
B
Ben Laurie 已提交
990 991 992
		    return 0;
		    }
		
993 994 995 996
		BN_copy(a,b);
		}
	BN_free(a);
	BN_free(b);
B
Ben Laurie 已提交
997
	BN_free(c);
998 999 1000
	return(1);
	}

B
Ben Laurie 已提交
1001
int test_rshift(BIO *bp,BN_CTX *ctx)
1002
	{
B
Ben Laurie 已提交
1003
	BIGNUM *a,*b,*c,*d,*e;
1004 1005 1006 1007 1008
	int i;

	a=BN_new();
	b=BN_new();
	c=BN_new();
B
Ben Laurie 已提交
1009 1010
	d=BN_new();
	e=BN_new();
1011 1012 1013 1014
	BN_one(c);

	BN_rand(a,200,0,0); /**/
	a->neg=rand_neg();
1015
	for (i=0; i<num0; i++)
1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030
		{
		BN_rshift(b,a,i+1);
		BN_add(c,c,c);
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," / ");
				BN_print(bp,c);
				BIO_puts(bp," - ");
				}
			BN_print(bp,b);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
1031 1032 1033 1034
		BN_div(d,e,a,c,ctx);
		BN_sub(d,d,b);
		if(!BN_is_zero(d))
		    {
1035
		    fprintf(stderr,"Right shift test failed!\n");
B
Ben Laurie 已提交
1036 1037
		    return 0;
		    }
1038 1039 1040 1041
		}
	BN_free(a);
	BN_free(b);
	BN_free(c);
B
Ben Laurie 已提交
1042 1043
	BN_free(d);
	BN_free(e);
1044 1045 1046
	return(1);
	}

U
Ulf Möller 已提交
1047
int test_rshift1(BIO *bp)
1048
	{
B
Ben Laurie 已提交
1049
	BIGNUM *a,*b,*c;
1050 1051 1052 1053
	int i;

	a=BN_new();
	b=BN_new();
B
Ben Laurie 已提交
1054
	c=BN_new();
1055 1056 1057

	BN_rand(a,200,0,0); /**/
	a->neg=rand_neg();
1058
	for (i=0; i<num0; i++)
1059 1060 1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071
		{
		BN_rshift1(b,a);
		if (bp != NULL)
			{
			if (!results)
				{
				BN_print(bp,a);
				BIO_puts(bp," / 2");
				BIO_puts(bp," - ");
				}
			BN_print(bp,b);
			BIO_puts(bp,"\n");
			}
B
Ben Laurie 已提交
1072 1073 1074 1075
		BN_sub(c,a,b);
		BN_sub(c,c,b);
		if(!BN_is_zero(c) && !BN_is_one(c))
		    {
1076
		    fprintf(stderr,"Right shift one test failed!\n");
B
Ben Laurie 已提交
1077 1078
		    return 0;
		    }
1079 1080 1081 1082
		BN_copy(a,b);
		}
	BN_free(a);
	BN_free(b);
B
Ben Laurie 已提交
1083
	BN_free(c);
1084 1085 1086
	return(1);
	}

U
Ulf Möller 已提交
1087
int rand_neg(void)
1088 1089 1090 1091 1092 1093
	{
	static unsigned int neg=0;
	static int sign[8]={0,0,0,1,1,0,1,1};

	return(sign[(neg++)%8]);
	}