a711b53e0b
This only updates the repository. We'll catch up with the new tests in a subsequent commit. Change-Id: I074a041479159ce1141af3241e7158599b648365 Reviewed-on: https://boringssl-review.googlesource.com/30844 Commit-Queue: David Benjamin <davidben@google.com> Reviewed-by: Adam Langley <agl@google.com>
2338 lines
64 KiB
Plaintext
2338 lines
64 KiB
Plaintext
# Imported from Wycheproof's aes_gcm_test.json.
|
|
# This file is generated by convert_wycheproof.go. Do not edit by hand.
|
|
#
|
|
# Algorithm: AES-GCM
|
|
# Generator version: 0.4.12
|
|
|
|
[ivSize = 96]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 1
|
|
aad =
|
|
ct = 26073cc1d851beff176384dc9896d5ff
|
|
iv = 028318abc1824029138141a2
|
|
key = 5b9604fe14eadba931b0ccf34843dab9
|
|
msg = 001d0c231287c1182784554ca3a21908
|
|
result = valid
|
|
tag = 0a3ea7a5487cb5f7d70fb6c58d038554
|
|
|
|
# tcId = 2
|
|
aad = 00112233445566778899aabbccddeeff
|
|
ct = 49d8b9783e911913d87094d1f63cc765
|
|
iv = 921d2507fa8007b7bd067d34
|
|
key = 5b9604fe14eadba931b0ccf34843dab9
|
|
msg = 001d0c231287c1182784554ca3a21908
|
|
result = valid
|
|
tag = 1e348ba07cca2cf04c618cb4d43a5b92
|
|
|
|
# tcId = 3
|
|
aad = aac39231129872a2
|
|
ct = eea945f3d0f98cc0fbab472a0cf24e87
|
|
iv = 0432bc49ac34412081288127
|
|
key = aa023d0478dcb2b2312498293d9a9129
|
|
msg = 2035af313d1346ab00154fea78322105
|
|
result = valid
|
|
tag = 4bb9b4812519dadf9e1232016d068133
|
|
|
|
# tcId = 4
|
|
aad =
|
|
ct = 54
|
|
iv = b30c084727ad1c592ac21d12
|
|
key = 384ea416ac3c2f51a76e7d8226346d4e
|
|
msg = 35
|
|
result = valid
|
|
tag = 7c1e4ae88bb27e5638343cb9fd3f6337
|
|
|
|
# tcId = 5
|
|
aad =
|
|
ct = a036ead03193903f
|
|
iv = b5e006ded553110e6dc56529
|
|
key = cae31cd9f55526eb038241fc44cac1e5
|
|
msg = d10989f2c52e94ad
|
|
result = valid
|
|
tag = 3b626940e0e9f0cbea8e18c437fd6011
|
|
|
|
# tcId = 6
|
|
aad =
|
|
ct = 8a9992388e735f80ee18f4a63c10ad
|
|
iv = ecb0c42f7000ef0e6f95f24d
|
|
key = dd6197cd63c963919cf0c273ef6b28bf
|
|
msg = 4dcc1485365866e25ac3f2ca6aba97
|
|
result = valid
|
|
tag = 1486a91cccf92c9a5b00f7b0e034891c
|
|
|
|
# tcId = 7
|
|
aad =
|
|
ct = f7bd379d130477176b8bb3cb23dbbbaa
|
|
iv = 0e1666f2dc652f7708fb8f0d
|
|
key = ffdf4228361ea1f8165852136b3480f7
|
|
msg = 25b12e28ac0ef6ead0226a3b2288c800
|
|
result = valid
|
|
tag = 1ee6513ce30c7873f59dd4350a588f42
|
|
|
|
# tcId = 8
|
|
aad =
|
|
ct = 0de51fe4f7f2d1f0f917569f5c6d1b009c
|
|
iv = 965ff6643116ac1443a2dec7
|
|
key = c15ed227dd2e237ecd087eaaaad19ea4
|
|
msg = fee62fde973fe025ad6b322dcdf3c63fc7
|
|
result = valid
|
|
tag = 6cd8521422c0177e83ef1b7a845d97db
|
|
|
|
# tcId = 9
|
|
aad =
|
|
ct = 7cd9f4e4f365704fff3b9900aa93ba54b672bac554275650
|
|
iv = fbbc04fd6e025b7193eb57f6
|
|
key = a8ee11b26d7ceb7f17eaa1e4b83a2cf6
|
|
msg = c08f085e6a9e0ef3636280c11ecfadf0c1e72919ffc17eaf
|
|
result = valid
|
|
tag = f4eb193241226db017b32ec38ca47217
|
|
|
|
# tcId = 10
|
|
aad = c3
|
|
ct = f58d453212c2c8a436e9283672f579f119122978
|
|
iv = 32bcb9b569e3b852d37c766a
|
|
key = 28ff3def08179311e2734c6d1c4e2871
|
|
msg = dfc61a20df8505b53e3cd59f25770d5018add3d6
|
|
result = valid
|
|
tag = 5901131d0760c8715901d881fdfd3bc0
|
|
|
|
# tcId = 11
|
|
aad = 834afdc5c737186b
|
|
ct = bf864616c2347509ca9b10446379b9bdbb3b8f64
|
|
iv = 9c3a4263d983456658aad4b1
|
|
key = e63a43216c08867210e248859eb5e99c
|
|
msg = b14da56b0462dc05b871fc815273ff4810f92f4b
|
|
result = valid
|
|
tag = a97d25b490390b53c5db91f6ee2a15b8
|
|
|
|
# tcId = 12
|
|
aad = 4020855c66ac4595058395f367201c4c
|
|
ct = a6f2ef3c7ef74a126dd2d5f6673964e27d5b34b6
|
|
iv = 33e90658416e7c1a7c005f11
|
|
key = 38449890234eb8afab0bbf82e2385454
|
|
msg = f762776bf83163b323ca63a6b3adeac1e1357262
|
|
result = valid
|
|
tag = b8bbdc4f5014bc752c8b4e9b87f650a3
|
|
|
|
# tcId = 13
|
|
aad = 76eb5f147250fa3c12bff0a6e3934a0b16860cf11646773b
|
|
ct = bd64802cfebaeb487d3a8f76ce943a37b3472dd5
|
|
iv = 9f0d85b605711f34cd2a35ba
|
|
key = 6a68671dfe323d419894381f85eb63fd
|
|
msg = 0fc67899c3f1bbe196d90f1eca3797389230aa37
|
|
result = valid
|
|
tag = fce9a5b530c7d7af718be1ec0ae9ed4d
|
|
|
|
# tcId = 14
|
|
# special case
|
|
aad =
|
|
ct = f62d84d649e56bc8cfedc5d74a51e2f7
|
|
iv = 000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = ebd4a3e10cf6d41c50aeae007563b072
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 15
|
|
# special case
|
|
aad =
|
|
ct = 431f31e6840931fd95f94bf88296ff69
|
|
iv = ffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = d593c4d8224f1b100c35e4f6c4006543
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 16
|
|
# Flipped bit 0 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d9847dbc326a06e988c77ad3863e6083
|
|
|
|
# tcId = 17
|
|
# Flipped bit 1 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = da847dbc326a06e988c77ad3863e6083
|
|
|
|
# tcId = 18
|
|
# Flipped bit 7 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 58847dbc326a06e988c77ad3863e6083
|
|
|
|
# tcId = 19
|
|
# Flipped bit 8 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8857dbc326a06e988c77ad3863e6083
|
|
|
|
# tcId = 20
|
|
# Flipped bit 31 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847d3c326a06e988c77ad3863e6083
|
|
|
|
# tcId = 21
|
|
# Flipped bit 32 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc336a06e988c77ad3863e6083
|
|
|
|
# tcId = 22
|
|
# Flipped bit 33 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc306a06e988c77ad3863e6083
|
|
|
|
# tcId = 23
|
|
# Flipped bit 63 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a066988c77ad3863e6083
|
|
|
|
# tcId = 24
|
|
# Flipped bit 64 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e989c77ad3863e6083
|
|
|
|
# tcId = 25
|
|
# Flipped bit 71 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e908c77ad3863e6083
|
|
|
|
# tcId = 26
|
|
# Flipped bit 77 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988e77ad3863e6083
|
|
|
|
# tcId = 27
|
|
# Flipped bit 80 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77bd3863e6083
|
|
|
|
# tcId = 28
|
|
# Flipped bit 96 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3873e6083
|
|
|
|
# tcId = 29
|
|
# Flipped bit 97 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3843e6083
|
|
|
|
# tcId = 30
|
|
# Flipped bit 103 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3063e6083
|
|
|
|
# tcId = 31
|
|
# Flipped bit 120 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3863e6082
|
|
|
|
# tcId = 32
|
|
# Flipped bit 121 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3863e6081
|
|
|
|
# tcId = 33
|
|
# Flipped bit 126 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3863e60c3
|
|
|
|
# tcId = 34
|
|
# Flipped bit 127 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a06e988c77ad3863e6003
|
|
|
|
# tcId = 35
|
|
# Flipped bits 0 and 64 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d9847dbc326a06e989c77ad3863e6083
|
|
|
|
# tcId = 36
|
|
# Flipped bits 31 and 63 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847d3c326a066988c77ad3863e6083
|
|
|
|
# tcId = 37
|
|
# Flipped bits 63 and 127 in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d8847dbc326a066988c77ad3863e6003
|
|
|
|
# tcId = 38
|
|
# all bits of tag flipped
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 277b8243cd95f9167738852c79c19f7c
|
|
|
|
# tcId = 39
|
|
# Tag changed to all zero
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 40
|
|
# tag changed to all 1
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 41
|
|
# msbs changed in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 5804fd3cb2ea86690847fa5306bee003
|
|
|
|
# tcId = 42
|
|
# lsbs changed in tag
|
|
aad =
|
|
ct = eb156d081ed6b6b55f4612f021d87b39
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = d9857cbd336b07e889c67bd2873f6182
|
|
|
|
[ivSize = 64]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 43
|
|
aad = aac39231129872a2
|
|
ct = 64c36bb3b732034e3a7d04efc5197785
|
|
iv = 0432bc49ac344120
|
|
key = aa023d0478dcb2b2312498293d9a9129
|
|
msg = 2035af313d1346ab00154fea78322105
|
|
result = valid
|
|
tag = b7d0dd70b00d65b97cfd080ff4b819d1
|
|
|
|
# tcId = 44
|
|
# unusual IV size
|
|
aad =
|
|
ct = 9a078a04d14938918e004358
|
|
iv = 68cbeafe8f9e8a66
|
|
key = 25dd4d6cad5a4604957847c8c6d3fc4e
|
|
msg = 5c347835b3fa61c2ce253e5a
|
|
result = valid
|
|
tag = 5452843e32c13c3e35ed8230fe3446c0
|
|
|
|
[ivSize = 128]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 45
|
|
aad = 1a0293d8f90219058902139013908190bc490890d3ff12a3
|
|
ct = 64069c2d58690561f27ee199e6b479b6369eec688672bde9
|
|
iv = 3254202d854734812398127a3d134421
|
|
key = 2034a82547276c83dd3212a813572bce
|
|
msg = 02efd2e5782312827ed5d230189a2a342b277ce048462193
|
|
result = valid
|
|
tag = 9b7abadd6e69c1d9ec925786534f5075
|
|
|
|
# tcId = 46
|
|
aad =
|
|
ct = fd
|
|
iv = 9477849d6ccdfca112d92e53fae4a7ca
|
|
key = 209e6dbf2ad26a105445fc0207cd9e9a
|
|
msg = 01
|
|
result = valid
|
|
tag = 032df7bba5d8ea1a14f16f70bd0e14ec
|
|
|
|
# tcId = 47
|
|
aad =
|
|
ct = 2f333087bdca58219f9bfc273e45cc
|
|
iv = 5171524568e81d97e8c4de4ba56c10a0
|
|
key = a549442e35154032d07c8666006aa6a2
|
|
msg = 1182e93596cac5608946400bc73f3a
|
|
result = valid
|
|
tag = e06d1ef473132957ad37eaef29733ca0
|
|
|
|
# tcId = 48
|
|
aad =
|
|
ct = a780bd01c80885156c88a973264c8ee5
|
|
iv = 1275115499ae722268515bf0c164b49c
|
|
key = cfb4c26f126f6a0acb8e4e220f6c56cd
|
|
msg = 09dfd7f080275257cf97e76f966b1ad9
|
|
result = valid
|
|
tag = 2adeffa682c8d8a81fada7d9fcdd2ee2
|
|
|
|
# tcId = 49
|
|
aad =
|
|
ct = 7e47e10fe3c6fbfa381770eaf5d48d1482e71e0c44dff1e30ca6f95d92052084
|
|
iv = 95c1dd8c0f1705ece68937901f7add7b
|
|
key = 0b11ef3a08c02970f74281c860691c75
|
|
msg = f693d4edd825dbb0618d91113128880dbebb23e25d00ed1f077d870be9cc7536
|
|
result = valid
|
|
tag = d01444fa5d9c499629d174ff3927a1ac
|
|
|
|
# tcId = 50
|
|
# J0:000102030405060708090a0b0c0d0e0f
|
|
aad =
|
|
ct = 00078d109d92143fcd5df56721b884fac64ac7762cc09eea2a3c68e92a17bdb575f87bda18be564e
|
|
iv = f95fde4a751913202aeeee32a0b55753
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 152a65045fe674f97627427af5be22da
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 51
|
|
# J0:00000000000000000000000000000000
|
|
aad =
|
|
ct = 84d4c9c08b4f482861e3a9c6c35bc4d91df927374513bfd49f436bd73f325285daef4ff7e13d46a6
|
|
iv = 7b95b8c356810a84711d68150a1b7750
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 213a3cb93855d18e69337eee66aeec07
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 52
|
|
# J0:ffffffffffffffffffffffffffffffff
|
|
aad =
|
|
ct = 948ca37a8e6649e88aeffb1c598f3607007702417ea0e0bc3c60ad5a949886de968cf53ea6462aed
|
|
iv = 1a552e67cdc4dc1a33b824874ebf0bed
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 99b381bfa2af9751c39d1b6e86d1be6a
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 53
|
|
# J0:fffffffffffffffffffffffffffffffe
|
|
aad =
|
|
ct = 64b19314c31af45accdf7e3c4db79f0d948ca37a8e6649e88aeffb1c598f3607007702417ea0e0bc
|
|
iv = dd9d0b4a0c3d681524bffca31d907661
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 5281efc7f13ac8e14ccf5dca7bfbfdd1
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 54
|
|
# J0:fffffffffffffffffffffffffffffffd
|
|
aad =
|
|
ct = 2bb69c3e5d1f91815c6b87a0d5bbea7164b19314c31af45accdf7e3c4db79f0d948ca37a8e6649e8
|
|
iv = 57c5643c4e37b4041db794cfe8e1f0f4
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = a3ea2c09ee4f8c8a12f45cddf9aeff81
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 55
|
|
# J0:000102030405060708090a0bffffffff
|
|
aad =
|
|
ct = 127af9b39ecdfc57bb11a2847c7c2d3d8f938f40f877e0c4af37d0fe9af033052bd537c4ae978f60
|
|
iv = 99821c2dd5daecded07300f577f7aff1
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 07eb2fe4a958f8434d40684899507c7c
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 56
|
|
# J0:000102030405060708090a0bfffffffe
|
|
aad =
|
|
ct = 0cf6ae47156b14dce03c8a07a2e172b1127af9b39ecdfc57bb11a2847c7c2d3d8f938f40f877e0c4
|
|
iv = 5e4a3900142358d1c774d8d124d8d27d
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = f145c2dcaf339eede427be934357eac0
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 57
|
|
# J0:000102030405060708090a0bfffffffd
|
|
aad =
|
|
ct = f0c6ffc18bd46df5569185a9afd169eb0cf6ae47156b14dce03c8a07a2e172b1127af9b39ecdfc57
|
|
iv = d4125676562984c0fe7cb0bdd1a954e8
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = facd0bfe8701b7b4a2ba96d98af52bd9
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 58
|
|
# J0:000102030405060708090a0b7fffffff
|
|
aad =
|
|
ct = d6928e094c06e0a7c4db42184cf7529e95de88b767edebe9b343000be3dab47ea08b744293eed698
|
|
iv = b97ec62a5e5900ccf9e4be332e336091
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = a03e729dcfd7a03155655fece8affd7e
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 59
|
|
# J0:000102030405060708090a0b7ffffffe
|
|
aad =
|
|
ct = d82ce58771bf6487116bf8e96421877ed6928e094c06e0a7c4db42184cf7529e95de88b767edebe9
|
|
iv = 7eb6e3079fa0b4c3eee366177d1c1d1d
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 1e43926828bc9a1614c7b1639096c195
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 60
|
|
# J0:000102030405060708090a0bffff7fff
|
|
aad =
|
|
ct = a197a37a5d79697078536bc27fe46cd8d475526d9044aa94f088a054f8e380c64f79414795c61480
|
|
iv = 0314fcd10fdd675d3c612962c931f635
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = f08baddf0b5285c91fc06a67fe4708ca
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 61
|
|
# J0:000102030405060708090a0bffff7ffe
|
|
aad =
|
|
ct = 149fde9abbd3a43c2548575e0db9fb84a197a37a5d79697078536bc27fe46cd8d475526d9044aa94
|
|
iv = c4dcd9fcce24d3522b66f1469a1e8bb9
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 62a4b6875c288345d6a454399eac1afa
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 62
|
|
# special case
|
|
aad =
|
|
ct = 45a3f89d02918bfd0c8161658ccc9795
|
|
iv = 00000000000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = bec6fa05c1718b9b84c47345bbed7dcb
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 63
|
|
# special case
|
|
aad =
|
|
ct = 1cd5a06214235ceb044d4bad7b047312
|
|
iv = ffffffffffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff
|
|
msg = 4d82639c39d3f3490ee903dd0be7afcf
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
[ivSize = 96]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 64
|
|
aad = 00000000ffffffff
|
|
ct = e27abdd2d2a53d2f136b
|
|
iv = 00112233445566778899aabb
|
|
key = 92ace3e348cd821092cd921aa3546374299ab46209691bc28b8752d17f123c20
|
|
msg = 00010203040506070809
|
|
result = valid
|
|
tag = 9a4a2579529301bcfb71c78d4060f52c
|
|
|
|
# tcId = 65
|
|
aad = aabbccddeeff
|
|
ct =
|
|
iv = 00112233445566778899aabb
|
|
key = 29d3a44f8723dc640239100c365423a312934ac80239212ac3df3421a2098123
|
|
msg =
|
|
result = valid
|
|
tag = 2a7d77fa526b8250cb296078926b5020
|
|
|
|
# tcId = 66
|
|
aad =
|
|
ct = 06
|
|
iv = 99e23ec48985bccdeeab60f1
|
|
key = cc56b680552eb75008f5484b4cb803fa5063ebd6eab91f6ab6aef4916a766273
|
|
msg = 2a
|
|
result = valid
|
|
tag = 633c1e9703ef744ffffb40edf9d14355
|
|
|
|
# tcId = 67
|
|
aad =
|
|
ct = cf332a12fdee800b
|
|
iv = 4f07afedfdc3b6c2361823d3
|
|
key = 51e4bf2bad92b7aff1a4bc05550ba81df4b96fabf41c12c7b00e60e48db7e152
|
|
msg = be3308f72a2c6aed
|
|
result = valid
|
|
tag = 602e8d7c4799d62c140c9bb834876b09
|
|
|
|
# tcId = 68
|
|
aad =
|
|
ct = 43fc101bff4b32bfadd3daf57a590e
|
|
iv = 68ab7fdbf61901dad461d23c
|
|
key = 67119627bd988eda906219e08c0d0d779a07d208ce8a4fe0709af755eeec6dcb
|
|
msg = 51f8c1f731ea14acdb210a6d973e07
|
|
result = valid
|
|
tag = ec04aacb7148a8b8be44cb7eaf4efa69
|
|
|
|
# tcId = 69
|
|
aad =
|
|
ct = f58c16690122d75356907fd96b570fca
|
|
iv = 2fcb1b38a99e71b84740ad9b
|
|
key = 59d4eafb4de0cfc7d3db99a8f54b15d7b39f0acc8da69763b019c1699f87674a
|
|
msg = 549b365af913f3b081131ccb6b825588
|
|
result = valid
|
|
tag = 28752c20153092818faba2a334640d6e
|
|
|
|
# tcId = 70
|
|
aad =
|
|
ct = 73a6b6f45f6ccc5131e07f2caa1f2e2f56
|
|
iv = 45aaa3e5d16d2d42dc03445d
|
|
key = 3b2458d8176e1621c0cc24c0c0e24c1e80d72f7ee9149a4b166176629616d011
|
|
msg = 3ff1514b1c503915918f0c0c31094a6e1f
|
|
result = valid
|
|
tag = 2d7379ec1db5952d4e95d30c340b1b1d
|
|
|
|
# tcId = 71
|
|
aad =
|
|
ct = 0843fff52d934fc7a071ea62c0bd351ce85678cde3ea2c9e
|
|
iv = e6b1adf2fd58a8762c65f31b
|
|
key = 0212a8de5007ed87b33f1a7090b6114f9e08cefd9607f2c276bdcfdbc5ce9cd7
|
|
msg = 10f1ecf9c60584665d9ae5efe279e7f7377eea6916d2b111
|
|
result = valid
|
|
tag = 7355fde599006715053813ce696237a8
|
|
|
|
# tcId = 72
|
|
aad = c0
|
|
ct = eb5500e3825952866d911253f8de860c00831c81
|
|
iv = 98bc2c7438d5cd7665d76f6e
|
|
key = b279f57e19c8f53f2f963f5f2519fdb7c1779be2ca2b3ae8e1128b7d6c627fc4
|
|
msg = fcc515b294408c8645c9183e3f4ecee5127846d1
|
|
result = valid
|
|
tag = ecb660e1fb0541ec41e8d68a64141b3a
|
|
|
|
# tcId = 73
|
|
aad = 956846a209e087ed
|
|
ct = feca44952447015b5df1f456df8ca4bb4eee2ce2
|
|
iv = 376187894605a8d45e30de51
|
|
key = cdccfe3f46d782ef47df4e72f0c02d9c7f774def970d23486f11a57f54247f17
|
|
msg = e28e0e9f9d22463ac0e42639b530f42102fded75
|
|
result = valid
|
|
tag = 082e91924deeb77880e1b1c84f9b8d30
|
|
|
|
# tcId = 74
|
|
aad = ab2ac7c44c60bdf8228c7884adb20184
|
|
ct = 43dda832e942e286da314daa99bef5071d9d2c78
|
|
iv = 5a86a50a0e8a179c734b996d
|
|
key = f32364b1d339d82e4f132d8f4a0ec1ff7e746517fa07ef1a7f422f4e25a48194
|
|
msg = 43891bccb522b1e72a6b53cf31c074e9d6c2df8e
|
|
result = valid
|
|
tag = c3922583476ced575404ddb85dd8cd44
|
|
|
|
# tcId = 75
|
|
aad = 972ab4e06390caae8f99dd6e2187be6c7ff2c08a24be16ef
|
|
ct = a929ee7e67c7a2f91bbcec6389a3caf43ab49305
|
|
iv = bc2a7757d0ce2d8b1f14ccd9
|
|
key = ff0089ee870a4a39f645b0a5da774f7a5911e9696fc9cad646452c2aa8595a12
|
|
msg = 748b28031621d95ee61812b4b4f47d04c6fc2ff3
|
|
result = valid
|
|
tag = ebec6774b955e789591c822dab739e12
|
|
|
|
# tcId = 76
|
|
# special case
|
|
aad =
|
|
ct = 23293e9b07ca7d1b0cae7cc489a973b3
|
|
iv = 000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 561008fa07a68f5c61285cd013464eaf
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 77
|
|
# special case
|
|
aad =
|
|
ct = 7cb6fc7c6abc009efe9551a99f36a421
|
|
iv = ffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = c6152244cea1978d3e0bc274cf8c0b3b
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 78
|
|
# Flipped bit 0 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9de8fef6d8ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 79
|
|
# Flipped bit 1 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ee8fef6d8ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 80
|
|
# Flipped bit 7 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 1ce8fef6d8ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 81
|
|
# Flipped bit 8 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce9fef6d8ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 82
|
|
# Flipped bit 31 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fe76d8ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 83
|
|
# Flipped bit 32 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d9ab1bf1bf887232eab590dd
|
|
|
|
# tcId = 84
|
|
# Flipped bit 33 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6daab1bf1bf887232eab590dd
|
|
|
|
# tcId = 85
|
|
# Flipped bit 63 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1b71bf887232eab590dd
|
|
|
|
# tcId = 86
|
|
# Flipped bit 64 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1be887232eab590dd
|
|
|
|
# tcId = 87
|
|
# Flipped bit 71 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf13f887232eab590dd
|
|
|
|
# tcId = 88
|
|
# Flipped bit 77 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bfa87232eab590dd
|
|
|
|
# tcId = 89
|
|
# Flipped bit 80 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887332eab590dd
|
|
|
|
# tcId = 90
|
|
# Flipped bit 96 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232ebb590dd
|
|
|
|
# tcId = 91
|
|
# Flipped bit 97 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232e8b590dd
|
|
|
|
# tcId = 92
|
|
# Flipped bit 103 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf8872326ab590dd
|
|
|
|
# tcId = 93
|
|
# Flipped bit 120 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232eab590dc
|
|
|
|
# tcId = 94
|
|
# Flipped bit 121 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232eab590df
|
|
|
|
# tcId = 95
|
|
# Flipped bit 126 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232eab5909d
|
|
|
|
# tcId = 96
|
|
# Flipped bit 127 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1bf1bf887232eab5905d
|
|
|
|
# tcId = 97
|
|
# Flipped bits 0 and 64 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9de8fef6d8ab1bf1be887232eab590dd
|
|
|
|
# tcId = 98
|
|
# Flipped bits 31 and 63 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fe76d8ab1b71bf887232eab590dd
|
|
|
|
# tcId = 99
|
|
# Flipped bits 63 and 127 in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9ce8fef6d8ab1b71bf887232eab5905d
|
|
|
|
# tcId = 100
|
|
# all bits of tag flipped
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 631701092754e40e40778dcd154a6f22
|
|
|
|
# tcId = 101
|
|
# Tag changed to all zero
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 102
|
|
# tag changed to all 1
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 103
|
|
# msbs changed in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 1c687e76582b9b713f08f2b26a35105d
|
|
|
|
# tcId = 104
|
|
# lsbs changed in tag
|
|
aad =
|
|
ct = b2061457c0759fc1749f174ee1ccadfa
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 9de9fff7d9aa1af0be897333ebb491dc
|
|
|
|
[ivSize = 128]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 105
|
|
# J0:000102030405060708090a0b0c0d0e0f
|
|
aad =
|
|
ct = f83cee467336e1a09b75f24e9b4385c99c13e6af722256a66129ece961fe803b167bad206f5017fb
|
|
iv = 029e0e777db092b12535d043012f09ba
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 09338a42f0acc14f97c064f52f5f1688
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 106
|
|
# J0:00000000000000000000000000000000
|
|
aad =
|
|
ct = 0b32b648a2c28e9edd7cee08eeeb900034cae7215e5ab1e201bd2eed1032c5a97866ba582a3458a4
|
|
iv = f1be3b06b7feac07e7eab629f556047b
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 90be3606de58bd778fa5beff4a4102bd
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 107
|
|
# J0:ffffffffffffffffffffffffffffffff
|
|
aad =
|
|
ct = 575e2ecec2b3c72d4e80830d0d859ad9e42c29c4a68d8d9d8d23434de2cd07733be49d62ac1ae085
|
|
iv = de9eb63b1daed321a11b7547cc9e223c
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 6e4d6396125a10df5443bd0cbc8566d1
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 108
|
|
# J0:fffffffffffffffffffffffffffffffe
|
|
aad =
|
|
ct = 2a818888d1f09f32aa7beedd2869b446575e2ecec2b3c72d4e80830d0d859ad9e42c29c4a68d8d9d
|
|
iv = 40bb0abebc483ff6d5671241ff5d66c6
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = dc481f172545268eff63ab0490403dc3
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 109
|
|
# J0:fffffffffffffffffffffffffffffffd
|
|
aad =
|
|
ct = 96d36b795f8e7edf6a8e0dbcd20d6c072a818888d1f09f32aa7beedd2869b446575e2ecec2b3c72d
|
|
iv = 20d5cf305e630a8f49e3bb4bab18abc9
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 8a3a22bf2592958b930292aa47f590e8
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 110
|
|
# J0:000102030405060708090a0bffffffff
|
|
aad =
|
|
ct = cfce3d920f0e01f0bb49a751955b236d1b887baefd25c47f41303c46d5c7bf9ca4c2c45a8f1e6656
|
|
iv = 255358a71a0e5731f6dd6ce28e158ae6
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 2db9dc1b7fd315df1c95432432fcf474
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 111
|
|
# J0:000102030405060708090a0bfffffffe
|
|
aad =
|
|
ct = 69a24169792e9a07f6e6f4736fa972dccfce3d920f0e01f0bb49a751955b236d1b887baefd25c47f
|
|
iv = bb76e422bbe8bbe682a10be4bdd6ce1c
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 82ad967f7ac19084354f69a751443fb2
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 112
|
|
# J0:000102030405060708090a0bfffffffd
|
|
aad =
|
|
ct = 4e4417a83beac1eb7e24456a05f6ba5569a24169792e9a07f6e6f4736fa972dccfce3d920f0e01f0
|
|
iv = db1821ac59c38e9f1e25a2eee9930313
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 472d5dd582dc05ef5fc496b612023cb2
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 113
|
|
# J0:000102030405060708090a0b7fffffff
|
|
aad =
|
|
ct = 6f8e174efca3097299f784efd4caff0bf168c3e5165b9ad3d20062009848044eef8f31f7d2fead05
|
|
iv = f7a02ecca03064b2ef3cce9feab79f07
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = caff723826df150934aee3201ba175e7
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 114
|
|
# J0:000102030405060708090a0b7ffffffe
|
|
aad =
|
|
ct = af193090ce3d43a388a1d294a09616906f8e174efca3097299f784efd4caff0bf168c3e5165b9ad3
|
|
iv = 6985924901d688659b40a999d974dbfd
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 3b08958be1286c2b4acba02b3674adb2
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 115
|
|
# J0:000102030405060708090a0bffff7fff
|
|
aad =
|
|
ct = 5deccf838b2cf5f869c90d2a611160b1e578ab8121b93735cba4a1930647b8c4c84bf776333ee45a
|
|
iv = 3f1188546c65ed0fc55e75032c68ee44
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = c14d52208f0f51b816a48971eaf8ff7e
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 116
|
|
# J0:000102030405060708090a0bffff7ffe
|
|
aad =
|
|
ct = d2cae1684aa407a13a2e2da5357e29f55deccf838b2cf5f869c90d2a611160b1e578ab8121b93735
|
|
iv = a13434d1cd8301d8b12212051fabaabe
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = ea2d018099cd7925c507cef0ceddb0ae
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 117
|
|
# special case
|
|
aad =
|
|
ct = 541b835dc828d541073f7d7d7504ebf5
|
|
iv = 00000000000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 5c7d3f81d4b5055ed6f8db53614587a4
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 118
|
|
# special case
|
|
aad =
|
|
ct = a3f36154331c196624564bc395e49c3b
|
|
iv = ffffffffffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 6a347ad1190e72ede611044e7475f0eb
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 119
|
|
aad =
|
|
ct = dc
|
|
iv = 1e8259e0a43e571068f701cd2064fc0c
|
|
key = cee9abbc26b63e169f0ced621fe21d95904e75b881d93e6b
|
|
msg = 46
|
|
result = valid
|
|
tag = af1f5535b125b34fc466902ea40cb3a2
|
|
|
|
# tcId = 120
|
|
aad =
|
|
ct = 2aab5c87dcb4a4dae4e975ddb65aab
|
|
iv = c84442d6975f0359737de0fa828f958e
|
|
key = 189f0bd390ba40632586a45c39735c2b87113329c800f394
|
|
msg = b4bcd7b8eeca3050dd17682c6a914e
|
|
result = valid
|
|
tag = 6b03b7557c7131e2352e495d54e61aef
|
|
|
|
# tcId = 121
|
|
aad =
|
|
ct = d127fd2e67c0887d90eb92b91f357d97
|
|
iv = 13cd526ec77b58f62d48d03f8b88f2b8
|
|
key = b0724f15df5b792c2f49bc51df0ac5aad69be0030981613c
|
|
msg = 8da3ab9c3d195b04df452ad23953da4d
|
|
result = valid
|
|
tag = eb05bda937faeed27f8833295d4ba559
|
|
|
|
# tcId = 122
|
|
aad =
|
|
ct = 344c2cea17b06cb3da272e22a22a3a71ee0eaa1959a7facfff464660ddccedd1
|
|
iv = 1d3d62eccd8ac5e896f2654a7f606fc9
|
|
key = 998750ba784841e40a7c5b03985732b6397e5459a3843954
|
|
msg = 2f60ca3494a958dc3e6ebeb5d0b4e6dda0d0c4331ab9c957f6422a5100878ebf
|
|
result = valid
|
|
tag = bab7fbf499ff06aad5f757b1c1a4fcc0
|
|
|
|
[ivSize = 96]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 123
|
|
# special case
|
|
aad =
|
|
ct = 3f875c9bd7d8511448459468e398c3b2
|
|
iv = 000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 0b4dbbba8982e0f649f8ba85f3aa061b
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 124
|
|
# special case
|
|
aad =
|
|
ct = 210dabea4364c6d5b3429e7743322936
|
|
iv = ffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff1021324354657687
|
|
msg = 1ae93688ef7e2650a9342ad4718b2780
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 125
|
|
aad =
|
|
ct = fe
|
|
iv = 34047bc39b9c608384dff5b8
|
|
key = 21218af790428f8024d3e7e1428c9fcf578c216636d60e73
|
|
msg = e3
|
|
result = valid
|
|
tag = 2e982e24b81cd120d35a70fe6935e665
|
|
|
|
# tcId = 126
|
|
aad =
|
|
ct = 99f2ff1c8a44e5f2
|
|
iv = 4ebc13cf4636cc7c45e560a7
|
|
key = 3a8bf543c480925632118245bcbf5d01522b987a31a33da3
|
|
msg = 53fc72e71b59eeb3
|
|
result = valid
|
|
tag = 6870f104ddc514477b400336fb01860e
|
|
|
|
# tcId = 127
|
|
aad =
|
|
ct = afe8ef41591bfcc00db3c880ceb186
|
|
iv = 6e7ff7f0797685cfc44b05ff
|
|
key = 92f4d2672fceec43963ccffb17e6ea7578b11418b06a3b82
|
|
msg = c3ec16adb184affa8ae9738bffb916
|
|
result = valid
|
|
tag = 29fff7f285768645c9c8bf7a471c9393
|
|
|
|
# tcId = 128
|
|
aad =
|
|
ct = 90339dca02ef717f1603994aee6cf6d2
|
|
iv = be0326d23bdc2c64648d13f4
|
|
key = bcb6bc5ee6743df1396a34639327b25809ec9c81dd6a0c0e
|
|
msg = 80474a3a3b809560eee2ce7a7a33ea07
|
|
result = valid
|
|
tag = e3d33e01ce64f271783147de226228bc
|
|
|
|
# tcId = 129
|
|
aad =
|
|
ct = b98ed6321679941a3e521834296686ad98
|
|
iv = b6be6cd0681235d826aa28ea
|
|
key = 5e1d28213e092536525bbae09e214af4c891e202b2b4fa4f
|
|
msg = 53d59433a7db7f41b31ccb6d4a2d789965
|
|
result = valid
|
|
tag = 9f50c03e055e519712c582ec9db3235b
|
|
|
|
# tcId = 130
|
|
aad =
|
|
ct = addd303651119e52f6170dfc7a915064253d57532987b9ab
|
|
iv = b022067048505b20946216ef
|
|
key = 7f672d85e151aa490bc0eec8f66b5e5bee74af11642be3ff
|
|
msg = ef6412c72b03c643fa02565a0ae2378a9311c11a84065f80
|
|
result = valid
|
|
tag = fa0484f8baa95f5b7a31c56d1b34c58b
|
|
|
|
# tcId = 131
|
|
aad = cb
|
|
ct = 0d2c3a3c0cc4b40e70ed45e188e356a0e1533b31
|
|
iv = 817fe51c31f2879141a34335
|
|
key = 969fed5068541d65418c2c1de8fe1f845e036030496e1272
|
|
msg = 3d8233191a2823bf767e99167b1d4af4f4848458
|
|
result = valid
|
|
tag = 92909a80e90540e1878ab59ef300072b
|
|
|
|
# tcId = 132
|
|
aad = 2ed8487153e21b12
|
|
ct = c7c1cbb85ce2a0a3f32cb9ef01ad45ec1118b66d
|
|
iv = 62b9cf1e923bc1138d05d205
|
|
key = fa5b9b41f93f8b682c04ba816c3fecc24eec095b04dd7497
|
|
msg = 18159841813a69fc0f8f4229e1678da7c9016711
|
|
result = valid
|
|
tag = 253317f98bdab87531ece20475cd9ebb
|
|
|
|
# tcId = 133
|
|
aad = 74318d8876528243f1944b73eb77e96e
|
|
ct = ecf5e403f19c007c8da7a456caf0a6d75762829b
|
|
iv = 3f1a1e02e90a4ba7a1db9df2
|
|
key = fbfb395662787e2d25a2e7510f818e825936a35114e237c9
|
|
msg = 2952a3d64107d5cbb9602239d05a5c5c222cf72b
|
|
result = valid
|
|
tag = e0877a100f9dd9d6795f0e74c56a9fab
|
|
|
|
# tcId = 134
|
|
aad = 5ca354a4cb8e4fc9798aa209ad4f739dc7c232fdd1f22584
|
|
ct = 94d844d98b9467daa7e8dde7f4290037354d7fb2
|
|
iv = 0802ae86c75a73bf79561521
|
|
key = 5d8e9c2222316c9ed5ff94513cc957436ae447a6e1a73a29
|
|
msg = 42b4439e1d2116f834b91c516a26299df279956b
|
|
result = valid
|
|
tag = 62196638590cef429d6b1d1a59839c02
|
|
|
|
# tcId = 135
|
|
# Flipped bit 0 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b5e44c5b2fe90e4c78f358da0d99cb64
|
|
|
|
# tcId = 136
|
|
# Flipped bit 1 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b6e44c5b2fe90e4c78f358da0d99cb64
|
|
|
|
# tcId = 137
|
|
# Flipped bit 7 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 34e44c5b2fe90e4c78f358da0d99cb64
|
|
|
|
# tcId = 138
|
|
# Flipped bit 8 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e54c5b2fe90e4c78f358da0d99cb64
|
|
|
|
# tcId = 139
|
|
# Flipped bit 31 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44cdb2fe90e4c78f358da0d99cb64
|
|
|
|
# tcId = 140
|
|
# Flipped bit 32 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2ee90e4c78f358da0d99cb64
|
|
|
|
# tcId = 141
|
|
# Flipped bit 33 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2de90e4c78f358da0d99cb64
|
|
|
|
# tcId = 142
|
|
# Flipped bit 63 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90ecc78f358da0d99cb64
|
|
|
|
# tcId = 143
|
|
# Flipped bit 64 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c79f358da0d99cb64
|
|
|
|
# tcId = 144
|
|
# Flipped bit 71 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4cf8f358da0d99cb64
|
|
|
|
# tcId = 145
|
|
# Flipped bit 77 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78d358da0d99cb64
|
|
|
|
# tcId = 146
|
|
# Flipped bit 80 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f359da0d99cb64
|
|
|
|
# tcId = 147
|
|
# Flipped bit 96 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0c99cb64
|
|
|
|
# tcId = 148
|
|
# Flipped bit 97 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0f99cb64
|
|
|
|
# tcId = 149
|
|
# Flipped bit 103 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da8d99cb64
|
|
|
|
# tcId = 150
|
|
# Flipped bit 120 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0d99cb65
|
|
|
|
# tcId = 151
|
|
# Flipped bit 121 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0d99cb66
|
|
|
|
# tcId = 152
|
|
# Flipped bit 126 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0d99cb24
|
|
|
|
# tcId = 153
|
|
# Flipped bit 127 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90e4c78f358da0d99cbe4
|
|
|
|
# tcId = 154
|
|
# Flipped bits 0 and 64 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b5e44c5b2fe90e4c79f358da0d99cb64
|
|
|
|
# tcId = 155
|
|
# Flipped bits 31 and 63 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44cdb2fe90ecc78f358da0d99cb64
|
|
|
|
# tcId = 156
|
|
# Flipped bits 63 and 127 in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b4e44c5b2fe90ecc78f358da0d99cbe4
|
|
|
|
# tcId = 157
|
|
# all bits of tag flipped
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 4b1bb3a4d016f1b3870ca725f266349b
|
|
|
|
# tcId = 158
|
|
# Tag changed to all zero
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 159
|
|
# tag changed to all 1
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 160
|
|
# msbs changed in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = 3464ccdbaf698eccf873d85a8d194be4
|
|
|
|
# tcId = 161
|
|
# lsbs changed in tag
|
|
aad =
|
|
ct = 458256842dfd297f30bd2f8f15c92db0
|
|
iv = 505152535455565758595a5b
|
|
key = 000102030405060708090a0b0c0d0e0f1011121314151617
|
|
msg = 202122232425262728292a2b2c2d2e2f
|
|
result = invalid
|
|
tag = b5e54d5a2ee80f4d79f259db0c98ca65
|
|
|
|
[ivSize = 128]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 162
|
|
# J0:000102030405060708090a0b0c0d0e0f
|
|
aad =
|
|
ct = 28e1c5232f4ee8161dbe4c036309e0b3254e9212bef0a93431ce5e5604c8f6a73c18a3183018b770
|
|
iv = 5c2ea9b695fcf6e264b96074d6bfa572
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = d5808a1bd11a01129bf3c6919aff2339
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 163
|
|
# J0:00000000000000000000000000000000
|
|
aad =
|
|
ct = cceebeb4fe4cd90c514e52d2327a2ecd75393661006cf2476d8620149aef3d1cdce491fff3e7a7a3
|
|
iv = 57b3a81f2c36b6b06577ca0fbab8fa8e
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 8132e865b69d64ef37db261f80cbbe24
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 164
|
|
# J0:ffffffffffffffffffffffffffffffff
|
|
aad =
|
|
ct = 4f4350565d91d9aa8c5f4048550492ad6d6fdabf66da5d1e2af7bfe1a8aadaa0baa3de38a41d9713
|
|
iv = ce20a7e870696a5e68533c465bad2ba1
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 155da6441ec071ef2d8e6cffbacc1c7c
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 165
|
|
# J0:fffffffffffffffffffffffffffffffe
|
|
aad =
|
|
ct = 8316a53167b6de1a7575700693ffef274f4350565d91d9aa8c5f4048550492ad6d6fdabf66da5d1e
|
|
iv = 918e3c19dbdfee2db18156c5b93f3d75
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 6c574aa6a2490cc3b2f2f8f0ffbc56c4
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 166
|
|
# J0:fffffffffffffffffffffffffffffffd
|
|
aad =
|
|
ct = 5175927513e751eb309f45bc2ef225f28316a53167b6de1a7575700693ffef274f4350565d91d9aa
|
|
iv = 717d900b270462b9dbf7e9419e890609
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 8082a761e1d755344bf29622144e7d39
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 167
|
|
# J0:000102030405060708090a0bffffffff
|
|
aad =
|
|
ct = 36b3fbecd09178d04527fb37544f5579d20d60a41266f685c48098e1a52804ca387d90709d3268dd
|
|
iv = ecd52120af240e9b4bf3b9d1eeb49434
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 033e0ef2953ebfd8425737c7d393f89a
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 168
|
|
# J0:000102030405060708090a0bfffffffe
|
|
aad =
|
|
ct = 16929b773051f12b0adac95f65e21a7f36b3fbecd09178d04527fb37544f5579d20d60a41266f685
|
|
iv = b37bbad104928ae89221d3520c2682e0
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = ca448bb7e52e897eca234ef343d057d0
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 169
|
|
# J0:000102030405060708090a0bfffffffd
|
|
aad =
|
|
ct = 6d3faefaf691d58163846f8d4b9ffd5916929b773051f12b0adac95f65e21a7f36b3fbecd09178d0
|
|
iv = 538816c3f849067cf8576cd62b90b99c
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 84f49740e6757f63dd0df7cb7656d0ef
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 170
|
|
# J0:000102030405060708090a0b7fffffff
|
|
aad =
|
|
ct = d60196c2d14fcf30c0991d2721ddc52d385f407a16691dade82c9023c855fd8e2e8fbb562102f018
|
|
iv = d10e631943cd3bdababab2bbd13951c0
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = 877e15d9889e69a99fcc6d727465c391
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 171
|
|
# J0:000102030405060708090a0b7ffffffe
|
|
aad =
|
|
ct = 948fbceca12a6e4fabb79b6d965e336fd60196c2d14fcf30c0991d2721ddc52d385f407a16691dad
|
|
iv = 8ea0f8e8e87bbfa96368d83833ab4714
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = cd5757626945976ba9f0264bd6bee894
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 172
|
|
# J0:000102030405060708090a0bffff7fff
|
|
aad =
|
|
ct = a1a0120660ff52e6b1700b12c54d2d33b94b00cd7882d8857d84e6e183a1dea6ee85a7da84fbc35d
|
|
iv = 7b2df4fbed1de2727eb24898e5deabb9
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = b015d72da62c81cb4d267253b20db9e5
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 173
|
|
# J0:000102030405060708090a0bffff7ffe
|
|
aad =
|
|
ct = 5e3434b45edbf0d1f6e02d1144dbf867a1a0120660ff52e6b1700b12c54d2d33b94b00cd7882d885
|
|
iv = 24836f0a46ab6601a760221b074cbd6d
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 00000000000000000000000000000000000000000000000000000000000000000000000000000000
|
|
result = valid
|
|
tag = ee74ccb30d649ebf6916d05a7dbe5696
|
|
# The counter for AES-GCM is reduced modulo 2**32. This test vector was
|
|
# constructed to test for correct wrapping of the counter.
|
|
|
|
# tcId = 174
|
|
# special case
|
|
aad =
|
|
ct = 265c42e2b96ea1de9c24f7182e337390
|
|
iv = 00000000000000000000000000000000
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 8d74f1c97243d362577ff376c393d2dc
|
|
result = valid
|
|
tag = 00000000000000000000000000000000
|
|
|
|
# tcId = 175
|
|
# special case
|
|
aad =
|
|
ct = 988f47668ea650cbaa6714711abe268d
|
|
iv = ffffffffffffffffffffffffffffffff
|
|
key = 00112233445566778899aabbccddeeff102132435465768798a9bacbdcedfe0f
|
|
msg = 884df0e76f3ce227bf9595d103825a46
|
|
result = valid
|
|
tag = ffffffffffffffffffffffffffffffff
|
|
|
|
# tcId = 176
|
|
aad =
|
|
ct = 3f
|
|
iv = 0ad570d8863918fe89124e09d125a271
|
|
key = b7797eb0c1a6089ad5452d81fdb14828c040ddc4589c32b565aad8cb4de3e4a0
|
|
msg = ed
|
|
result = valid
|
|
tag = fd8f593b83314e33c5a72efbeb7095e8
|
|
|
|
# tcId = 177
|
|
aad =
|
|
ct = 041341078f0439e50b43c991635117
|
|
iv = 2a55caa137c5b0b66cf3809eb8f730c4
|
|
key = 4c010d9561c7234c308c01cea3040c925a9f324dc958ff904ae39b37e60e1e03
|
|
msg = 2a093c9ed72b8ff4994201e9f9e010
|
|
result = valid
|
|
tag = 5b8a2f2da20ef657c903da88ef5f57bb
|
|
|
|
# tcId = 178
|
|
aad =
|
|
ct = 469478d448f7e97d755541aa09ad95b0
|
|
iv = 7ee376910f08f497aa6c3aa7113697fd
|
|
key = e7f7a48df99edd92b81f508618aa96526b279debd9ddb292d385ddbae80b2259
|
|
msg = 5e51dbbb861b5ec60751c0996e00527f
|
|
result = valid
|
|
tag = 254ada5cf662d90c5e11b2bd9c4db4c4
|
|
|
|
# tcId = 179
|
|
aad =
|
|
ct = cb960201fa5ad41d41d1c2c8037c71d52b72e76b16b589d71b976627c9734c9d
|
|
iv = 5d1bde6fa0994b33efd8f23f531248a7
|
|
key = 4f84782bfbb64a973c3de3dcfa3430367fd68bc0b4c3b31e5d7c8141ba3e6a67
|
|
msg = 78cb6650a1908a842101ea85804fed00cc56fbdafafba0ef4d1ca607dcae57b6
|
|
result = valid
|
|
tag = 8dfce16467c3a6ebb3e7242c9a551962
|
|
|
|
[ivSize = 120]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 180
|
|
# unusual IV size
|
|
aad =
|
|
ct = 2bc3ef8e7402b4631f48e9be
|
|
iv = b0a73119a97d623806b49d45ddf4c7
|
|
key = 34c74e28182948e03af02a01f46eb4f7
|
|
msg = fe82ba66cf2e265741f2c86c
|
|
result = valid
|
|
tag = 4b6f6f5be291a90b9e93a8a82ddbc8d8
|
|
|
|
[ivSize = 160]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 181
|
|
# unusual IV size
|
|
aad =
|
|
ct = 4fe13ef29f118f85a63188f8
|
|
iv = e22b6b144ab26b5781316e7a42a76202ac4b2278
|
|
key = 55cb7cac77efe18a1ea3b30c65f3f346
|
|
msg = 2f3d11ea32bf5bc72cbe2b8d
|
|
result = valid
|
|
tag = 05975b175316df8045889f43e0c857e0
|
|
|
|
[ivSize = 64]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 182
|
|
# unusual IV size
|
|
aad =
|
|
ct = a2966fb189f8d9d391503857
|
|
iv = 60d6bfca67f5d810
|
|
key = f6a4bf8c4e15034699ce5801cbbac7509cd3f94cf28d8307
|
|
msg = de8eaa41e5e6a590c3cfbf61
|
|
result = valid
|
|
tag = e370e7dd328655929bd4691f396a1033
|
|
|
|
[ivSize = 120]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 183
|
|
# unusual IV size
|
|
aad =
|
|
ct = 9af1a022c61c4315aa0e923e
|
|
iv = edf93e16294f15eded83808f09320e
|
|
key = 66f75acbd8d3acf7af47d13e8384c2809d6b91503a7f294b
|
|
msg = a900c86b6b7e0e5563f8f826
|
|
result = valid
|
|
tag = 20529bff3c59222ec33353af337b1d40
|
|
|
|
[ivSize = 160]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 184
|
|
# unusual IV size
|
|
aad =
|
|
ct = 073a5291b11df379f31b4f16
|
|
iv = 130c14c839e35b7d56b3350b194b0da342e6b65d
|
|
key = ef2e299dd4ecd7e3b9cc62780922cc2c89f78840564d1276
|
|
msg = 03f59579b14437199583270e
|
|
result = valid
|
|
tag = 17205999491bd4c1d6c7ec3e56779c32
|
|
|
|
[ivSize = 64]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 185
|
|
# unusual IV size
|
|
aad =
|
|
ct = 99313a220d1fcb6658876283
|
|
iv = c0c568a400b7194f
|
|
key = df64c84ae52d9ca820a47421bed6e96f7165369fc4c1b65f8f6307b17ce1006c
|
|
msg = f5fafdded54a86a4edab44bd
|
|
result = valid
|
|
tag = 00955d7d27f66868cfec734bf59c5e6d
|
|
|
|
[ivSize = 120]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 186
|
|
# unusual IV size
|
|
aad =
|
|
ct = fc213602aa423b87d7c2a874
|
|
iv = 17ca250fb733877556263223eadde1
|
|
key = e98b0669a645eb14cd06df6968fc5f10edc9f54feed264e3d410cdc61b72ef51
|
|
msg = f384b3ed7b274641f5db60cf
|
|
result = valid
|
|
tag = 36b15bab6923b17218fe1c24048e2391
|
|
|
|
[ivSize = 160]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 187
|
|
# unusual IV size
|
|
aad =
|
|
ct = c1d76233e8c5042e92bf8d32
|
|
iv = 0f9d6ed7eef362dfa4a7dfa5c0f74c5b27bd4ebf
|
|
key = 849b3e6b8cdd85bdcfb8eb701aa5522ae2340fbe5214e389622cef76979225c4
|
|
msg = 8c5564e53051c0de273199b4
|
|
result = valid
|
|
tag = 7cf036d235d3b2dd349a8c804b65144a
|
|
|
|
[ivSize = 0]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 188
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct =
|
|
iv =
|
|
key = 8f3f52e3c75c58f5cb261f518f4ad30a
|
|
msg =
|
|
result = invalid
|
|
tag = cf71978ffcc778f3c85ac9c31b6fe191
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
# tcId = 189
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct = 00a29f0a5e2e7490279d1faf8b881c7b
|
|
iv =
|
|
key = 2a4bf90e56b70fdd8649d775c089de3b
|
|
msg = 324ced6cd15ecc5b3741541e22c18ad9
|
|
result = invalid
|
|
tag = a2c7e8d7a19b884f742dfec3e76c75ee
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
[ivSize = 0]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 190
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct =
|
|
iv =
|
|
key = 0b18d21337035c7baa08211b702fa780ac7c09be8f9ed11f
|
|
msg =
|
|
result = invalid
|
|
tag = ca69a2eb3a096ea36b1015d5dffff532
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
# tcId = 191
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct = 509b0658d09f7a5bb9db43b70c8387f7
|
|
iv =
|
|
key = ba76d594a6df915bb7ab7e6d1a8d024b2796336c1b8328a9
|
|
msg = d62f302742d61d823ea991b93430d589
|
|
result = invalid
|
|
tag = 2c9488d53a0b2b5308c2757dfac7219f
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
[ivSize = 0]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 192
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct =
|
|
iv =
|
|
key = 3f8ca47b9a940582644e8ecf9c2d44e8138377a8379c5c11aafe7fec19856cf1
|
|
msg =
|
|
result = invalid
|
|
tag = 1726aa695fbaa21a1db88455c670a4b0
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
# tcId = 193
|
|
# 0 size IV is not valid
|
|
aad =
|
|
ct = 7772ea358901f571d3d35c19497639d9
|
|
iv =
|
|
key = 7660d10966c6503903a552dde2a809ede9da490e5e5cc3e349da999671809883
|
|
msg = c314235341debfafa1526bb61044a7f1
|
|
result = invalid
|
|
tag = 8fe0520ad744a11f0ccfd228454363fa
|
|
# AES-GCM does not allow an IV of length 0. Encrypting with such an IV leaks the
|
|
# authentication key. Hence using an IV of length 0 is insecure even if the key
|
|
# itself is only used for a single encryption.
|
|
|
|
[ivSize = 8]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 194
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 80
|
|
key = 59a284f50aedd8d3e2a91637d3815579
|
|
msg =
|
|
result = acceptable
|
|
tag = af498f701d2470695f6e7c8327a2398b
|
|
|
|
# tcId = 195
|
|
# small IV sizes
|
|
aad =
|
|
ct = 0a24612a9d1cbe967dbfe804bf8440e5
|
|
iv = 9d
|
|
key = fec58aa8cf06bfe05de829f27ec77693
|
|
msg = f2d99a9f893378e0757d27c2e3a3101b
|
|
result = acceptable
|
|
tag = 96e6fd2cdc707e3ee0a1c90d34c9c36c
|
|
|
|
[ivSize = 16]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 196
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 0f2f
|
|
key = 88a972cce9eaf5a7813ce8149d0c1d0e
|
|
msg =
|
|
result = acceptable
|
|
tag = 4ccf1efb4da05b4ae4452aea42f5424b
|
|
|
|
# tcId = 197
|
|
# small IV sizes
|
|
aad =
|
|
ct = ba3e7f8b2999995c7fc4006ca4f475ff
|
|
iv = 8760
|
|
key = b43967ee933e4632bd6562ba1201bf83
|
|
msg = 5a6ad6db70591d1e520b0122f05021a0
|
|
result = acceptable
|
|
tag = 98f47a5279cebbcac214515710f6cd8a
|
|
|
|
[ivSize = 32]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 198
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = cc851957
|
|
key = 4e9a97d3ed54c7b54610793ab05052e1
|
|
msg =
|
|
result = acceptable
|
|
tag = e574b355bda2980e047e584feb1676ca
|
|
|
|
# tcId = 199
|
|
# small IV sizes
|
|
aad =
|
|
ct = 1b84baea9df1e65bee7b49e4a8cda1ec
|
|
iv = 7b5faeb2
|
|
key = d83c1d7a97c43f182409a4aa5609c1b1
|
|
msg = c8f07ba1d65554a9bd40390c30c5529c
|
|
result = acceptable
|
|
tag = 5c0bb79d8240041edce0f94bd4bb384f
|
|
|
|
[ivSize = 48]
|
|
[keySize = 128]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 200
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 4ad80c2854fb
|
|
key = c6a705677affb49e276d9511caa46145
|
|
msg =
|
|
result = acceptable
|
|
tag = 1e2ed72af590cafb8647d185865f5463
|
|
|
|
# tcId = 201
|
|
# small IV sizes
|
|
aad =
|
|
ct = 18291aa8dc7b07448aa8f71bb8e380bf
|
|
iv = d1dafc8de3e3
|
|
key = eba7699b56cc0aa2f66a2a5be9944413
|
|
msg = d021e53d9098a2df3d6b903cdad0cd9c
|
|
result = acceptable
|
|
tag = 9c0e22e5c41b1039ff5661ffaefa8e0f
|
|
|
|
[ivSize = 8]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 202
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = cb
|
|
key = c70ce38e84e5f53ed41c3f0d2ca493412ad32cb04c6e2efa
|
|
msg =
|
|
result = acceptable
|
|
tag = 08d96edb5e22874cd10cb2256ca04bc6
|
|
|
|
# tcId = 203
|
|
# small IV sizes
|
|
aad =
|
|
ct = 6c5e796ba9a3ddc64f401e68d135101d
|
|
iv = 0f
|
|
key = 74c816b83dfd287210a3e2c6da8d3053bbfbd9b156d3fdd8
|
|
msg = f2b7b2c9b312cf2af78f003df15c8e19
|
|
result = acceptable
|
|
tag = 96a132ed43924e98feb888ff682bdaef
|
|
|
|
[ivSize = 16]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 204
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 75e5
|
|
key = cbf45ba488932aea1a10e5862f92e4a7e277bda9f34af6d0
|
|
msg =
|
|
result = acceptable
|
|
tag = 1f0d23070fcd748e25bf6454f5c9136e
|
|
|
|
# tcId = 205
|
|
# small IV sizes
|
|
aad =
|
|
ct = 550b48a43e821fd76f49f0f1a897aead
|
|
iv = 8989
|
|
key = e1c0446f11ae6aa4fa254f9a846fc6e13e45e537e47f2042
|
|
msg = 3a2f5ad0eb216e546e0bcaa377b6cbc7
|
|
result = acceptable
|
|
tag = f6e0a979481f9957ddad0f21a777a73a
|
|
|
|
[ivSize = 32]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 206
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 68d7fc38
|
|
key = 567563bf4cf154902275a53bc57cd6dd7b370d27011bdac8
|
|
msg =
|
|
result = acceptable
|
|
tag = 1475563e3212f3b5e40062569afd71e3
|
|
|
|
# tcId = 207
|
|
# small IV sizes
|
|
aad =
|
|
ct = 309133e76159fe8a41b20843486511ab
|
|
iv = bb9d2aa3
|
|
key = 834d0bb601170865a78139428a1503695a6a291ebd747cd1
|
|
msg = 6f79e18b4acd5a03d3a5f7e1a8d0f183
|
|
result = acceptable
|
|
tag = 03ab26993b701910a2e8ecccd2ba9e52
|
|
|
|
[ivSize = 48]
|
|
[keySize = 192]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 208
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = a984bdcdcae2
|
|
key = 99fb18f5ba430bb9ea942968ecb799b43406e1af4b6425a1
|
|
msg =
|
|
result = acceptable
|
|
tag = d7b9a6b58a97982916e83219fbf71b1e
|
|
|
|
# tcId = 209
|
|
# small IV sizes
|
|
aad =
|
|
ct = e08261e46eaf90d978ea8f7889bccd4f
|
|
iv = 52aa01e0d0d6
|
|
key = b77b242aa0d51c92fda013e0cb0ef2437399ace5d3f507e4
|
|
msg = 4ba541a9914729216153801340ab1779
|
|
result = acceptable
|
|
tag = c052a55df3926a50990a532efe3d80ec
|
|
|
|
[ivSize = 8]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 210
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = a9
|
|
key = 8f9a38c1014966e4d9ae736139c5e79b99345874f42d4c7d2c81aa6797c417c0
|
|
msg =
|
|
result = acceptable
|
|
tag = 2a268bf3a75fd7b00ba230b904bbb014
|
|
|
|
# tcId = 211
|
|
# small IV sizes
|
|
aad =
|
|
ct = 7bea30ecc2f73f8e121263b37966954c
|
|
iv = b3
|
|
key = 144cd8279229e8bb2de99d24e615306663913fe9177fcd270fafec493d43bca1
|
|
msg = 976229f5538f9636476d69f0c328e29d
|
|
result = acceptable
|
|
tag = 8bbad4adc54b37a2b2f0f6e8617548c9
|
|
|
|
[ivSize = 16]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 212
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = c332
|
|
key = 7d31861f9d3536e14016a3216b1042e0d2f7d4614314268b6f834ec7f38bbb65
|
|
msg =
|
|
result = acceptable
|
|
tag = 1d978a693120c11f6d51a3ed88cd4ace
|
|
|
|
# tcId = 213
|
|
# small IV sizes
|
|
aad =
|
|
ct = 9c39f5b110361e9a770cc5e8b0f444bb
|
|
iv = da6c
|
|
key = 22b35fe9623ee11f8b60b6d22db3765b666ed972fa7ccd92b45f22deee02cab1
|
|
msg = 5341c78e4ce5bf8fbc3e077d1990dd5d
|
|
result = acceptable
|
|
tag = b63ff43c12073ec5572b1be70f17e231
|
|
|
|
[ivSize = 32]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 214
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = 6b30145e
|
|
key = c224e0bba3d7a99165f7996b67a0fce3e12f2c01179b197b69b7e628bca92096
|
|
msg =
|
|
result = acceptable
|
|
tag = ae6f7c9a29f0d8204ca50b14a1e0dcf2
|
|
|
|
# tcId = 215
|
|
# small IV sizes
|
|
aad =
|
|
ct = f73f72f976a296ba3ca94bc6eb08cd46
|
|
iv = 5110604c
|
|
key = 093eb12343537ee8e91c1f715b862603f8daf9d4e1d7d67212a9d68e5aac9358
|
|
msg = 33efb58c91e8c70271870ec00fe2e202
|
|
result = acceptable
|
|
tag = b824c33c13f289429659aa017c632f71
|
|
|
|
[ivSize = 48]
|
|
[keySize = 256]
|
|
[tagSize = 128]
|
|
|
|
# tcId = 216
|
|
# small IV sizes
|
|
aad =
|
|
ct =
|
|
iv = d4d857510888
|
|
key = 98e6f8ab673e804e865e32403a6551bf807a959343c60d34559360bc295ecb5b
|
|
msg =
|
|
result = acceptable
|
|
tag = 3db16725fafc828d414ab61c16a6c38f
|
|
|
|
# tcId = 217
|
|
# small IV sizes
|
|
aad =
|
|
ct = ed463f4f43336af3f4d7e08770201145
|
|
iv = 1bdcd44b663e
|
|
key = 0bd0e8e7781166e1d876dec8fad34ba95b032a27cac0551595116091005947b7
|
|
msg = 91222263b12cf5616a049cbe29ab9b5b
|
|
result = acceptable
|
|
tag = c8fc39906aca0c64e14a43ff750abd8a
|
|
|